VIRUS infecté par trojan.klone.h,win32.explor

chapoline Messages postés 10 Date d'inscription   Statut Membre Dernière intervention   -  
 chapoline -
tout d'abord bonjours a tous.

je n'arrive pas a me débarrasser de plusieurs virus.j'ai fait un scan

avec bitdefender en ligne qui ma trouvé plus de 20 virus..je vous

poste un rapport de hijackthis.si quelqu'un veux bien se pencher

sur mon souci ca serait sympa...



Logfile of HijackThis v1.99.1
Scan saved at 23:33:33, on 08/11/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Acer\Acer eConsole\MediaServerService.exe
C:\Acer\Empowering Technology\ePerformance\MemCheck.exe
C:\Program Files\Acer TV-FM\Kernel\TV\CLCapSvc.exe
C:\Program Files\Acer TV-FM\Kernel\CLML_NTService\CLMLServer.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
C:\Program Files\Acer TV-FM\Kernel\TV\CLSched.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\WINDOWS\system32\SysMonitor.exe
C:\Program Files\Acer\Acer eMode Management\AspireService.exe
C:\Program Files\Acer\Acer eConsole\MediaSync.exe
C:\Program Files\Acer TV-FM\PCMService.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe
C:\WINDOWS\CTHELPER.EXE
C:\WINDOWS\system32\RunDLL32.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIACE.EXE
D:\Program Files\DAEMON Tools\daemon.exe
C:\Program Files\Webroot\Spy Sweeper\SpySweeperUI.exe
C:\Program Files\a-squared Anti-Malware\a2guard.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Java\jre1.5.0_09\bin\jusched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe
C:\Acer\Empowering Technology\Acer.Empowering.Framework.Launcher.exe
C:\Program Files\Acer WLAN 11g USB Dongle\ZDWlan.exe
C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexStoreSvr.exe
C:\WINDOWS\System32\alg.exe
C:\Program Files\Fichiers communs\Symantec Shared\Security Console\NSCSRVCE.EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Google\GoogleToolbarNotifier\1.2.908.5008\GoogleToolbarNotifier.exe
C:\Program Files\Webroot\Spy Sweeper\SSU.EXE
D:\Program Files\eMule\emule.exe
C:\WINDOWS\TEMP\win5B3.tmp.exe
C:\Program Files\Hijackthis Version Française\VERSION TRADUITE ORIGINALE.EXE

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.broadcom.com/support/security-center
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://fr.yahoo.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - c:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
O2 - BHO: Alcohol Toolbar Helper - {8126A4A5-BFD3-46FE-BBDF-BFB5CF78E489} - C:\Program Files\Alcohol Toolbar\v3.1.0.0\Alcohol_Toolbar.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: NAV Helper - {A8F38D8D-E480-4D52-B7A2-731BB6995FDD} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: Norton AntiVirus - {C4069E3A-68F1-403E-B40E-20066696354B} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Alcohol Toolbar - {ED4BD629-C1B6-4399-8A34-02CCAA921DC9} - C:\Program Files\Alcohol Toolbar\v3.1.0.0\Alcohol_Toolbar.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [LaunchApp] Alaunch
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [ntiMUI] "c:\Program Files\NewTech Infosystems\NTI CD & DVD-Maker 7\ntiMUI.exe"
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [MSPY2002] "C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe" /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] "C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE" /SYNC
O4 - HKLM\..\Run: [PHIME2002A] "C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE" /IMEName
O4 - HKLM\..\Run: [Acer Empowering Technology Monitor] C:\WINDOWS\system32\SysMonitor.exe
O4 - HKLM\..\Run: [AspireService] "C:\Program Files\Acer\Acer eMode Management\AspireService.exe"
O4 - HKLM\..\Run: [MediaSync] "C:\Program Files\Acer\Acer eConsole\MediaSync.exe"
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Acer TV-FM\PCMService.exe"
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [CTRegRun] C:\WINDOWS\CTRegRun.EXE
O4 - HKLM\..\Run: [NvCplDaemon] "RUNDLL32.EXE" C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] "nwiz.exe" /install
O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE
O4 - HKLM\..\Run: [NvMediaCenter] "RunDLL32.exe" NvMCTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [UpdReg] C:\WINDOWS\UpdReg.EXE
O4 - HKLM\..\Run: [EPSON Stylus DX3800 Series] "C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIACE.EXE" /P26 "EPSON Stylus DX3800 Series" /O6 "USB001" /M "Stylus DX3800"
O4 - HKLM\..\Run: [DAEMON Tools] "D:\Program Files\DAEMON Tools\daemon.exe" -lang 1036
O4 - HKLM\..\Run: [SpySweeper] "C:\Program Files\Webroot\Spy Sweeper\SpySweeperUI.exe" /startintray
O4 - HKLM\..\Run: [a-squared] "C:\Program Files\a-squared Anti-Malware\a2guard.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_09\bin\jusched.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [SetDefaultMIDI] MIDIDef.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe"
O4 - Global Startup: Acer Empowering Technology.lnk = ?
O4 - Global Startup: Acer WLAN 11g USB Dongle.lnk = C:\Program Files\Acer WLAN 11g USB Dongle\ZDWlan.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan8/oscan8.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll
O23 - Service: Acer Media Server - Acer Inc. - C:\Program Files\Acer\Acer eConsole\MediaServerService.exe
O23 - Service: Memory Check Service (AcerMemUsageCheckService) - Acer Inc. - C:\Acer\Empowering Technology\ePerformance\MemCheck.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - C:\Program Files\Acer TV-FM\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Program Files\Acer TV-FM\Kernel\TV\CLSched.exe
O23 - Service: CyberLink Media Library Service - Cyberlink - C:\Program Files\Acer TV-FM\Kernel\CLML_NTService\CLMLServer.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: Service Norton AntiVirus Auto-Protect (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
O23 - Service: Norton Protection Center Service (NSCService) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\Security Console\NSCSRVCE.EXE
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: Symantec AVScan (SAVScan) - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
O23 - Service: SPBBCSvc - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: StarWind iSCSI Service (StarWindService) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: Moteur Webroot Spy Sweeper (WebrootSpySweeperService) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
A voir également:

8 réponses

Malekal_morte- Messages postés 180304 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   24 685
 
Bonsoir,

Télécharge DiagHelp : http://www.malekal.com/download/DiagHelp.zip sur ton bureau
- Ne double-clic pas dessus !! Fais un clic droit sur le fichier et extraire tout
- Un nouveau dossier chercher va être créé DiagHelp
- Ouvre le et double-clic sur go.cmd (le .cmd peut ne pas apparaître)
- Une fenêtre va s'ouvrir, choisis [b]l'option 1[/b]
- L'analyse va commencer, ceci peut durer quelques minutes, laisse faire et appuie sur une touche quand on te le demande
- Copie/colle le contenu du bloc-note qui s'ouvre, pour cela :
-- Dans le bloc-note, cliquez sur le menu Edition / Selectionner tout
-- A nouveau menu Edition / copier
-- Dans un nouveau message ici, faire un clic droit / coller
0
chapoline
 
merci pour ton attention.voici le rapport


C:\WINDOWS\System32\nvapps.xml -->08/11/2006 20:36:59
C:\WINDOWS\System32\jupdate-1.5.0_09-b03.log -->08/11/2006 18:00:19
C:\WINDOWS\System32\118290.54 -->08/11/2006 12:30:20
C:\WINDOWS\System32\ixt0.dll_tobedeleted -->07/11/2006 22:03:26
C:\WINDOWS\System32\wpa.dbl -->07/11/2006 18:30:29
C:\WINDOWS\System32\ot.ico -->07/11/2006 17:18:17
C:\WINDOWS\System32\issearch.exe -->07/11/2006 16:49:28
C:\WINDOWS\System32\iifgede.dll -->07/11/2006 16:40:45
C:\WINDOWS\System32\winrge32.dll -->07/11/2006 16:40:39
C:\WINDOWS\System32\Wnccdctl.log -->07/11/2006 15:21:51
C:\WINDOWS\System32\DVCState-{00000003-00000000-00000007-00001102-00000008-40021102}.rfx -->05/11/2006 14:15:34
C:\WINDOWS\System32\BMXStateBkp-{00000003-00000000-00000007-00001102-00000008-40021102}.rfx -->05/11/2006 14:15:34
C:\WINDOWS\System32\BMXState-{00000003-00000000-00000007-00001102-00000008-40021102}.rfx -->05/11/2006 14:15:34
C:\WINDOWS\System32\BMXCtrlState-{00000003-00000000-00000007-00001102-00000008-40021102}.rfx -->05/11/2006 14:15:34
C:\WINDOWS\System32\BMXBkpCtrlState-{00000003-00000000-00000007-00001102-00000008-40021102}.rfx -->05/11/2006 14:15:34
C:\WINDOWS\System32\perfh00C.dat -->29/10/2006 18:25:35
C:\WINDOWS\System32\perfh009.dat -->29/10/2006 18:25:35
C:\WINDOWS\System32\perfc00C.dat -->29/10/2006 18:25:35
C:\WINDOWS\System32\perfc009.dat -->29/10/2006 18:25:35
C:\WINDOWS\System32\PerfStringBackup.INI -->29/10/2006 18:25:34
C:\WINDOWS\System32\LoopyMusic.wav -->23/10/2006 13:56:01
C:\WINDOWS\System32\BuzzingBee.wav -->23/10/2006 13:56:01
C:\WINDOWS\System32\wrap_oal.dll -->12/10/2006 22:56:30
C:\WINDOWS\System32\OpenAL32.dll -->12/10/2006 22:56:30
C:\WINDOWS\System32\FNTCACHE.DAT -->12/10/2006 20:13:12

C:\WINDOWS\setupapi.log -->09/11/2006 00:25:05
C:\WINDOWS\NeroDigital.ini -->08/11/2006 22:31:04
C:\WINDOWS\WindowsUpdate.log -->08/11/2006 20:36:46
C:\WINDOWS\wiaservc.log -->08/11/2006 20:36:45
C:\WINDOWS\wiadebug.log -->08/11/2006 20:36:41
C:\WINDOWS\0.log -->08/11/2006 20:36:06
C:\WINDOWS\bootstat.dat -->08/11/2006 20:36:01
C:\WINDOWS\SchedLgU.Txt -->08/11/2006 20:34:53
C:\WINDOWS\118294.78 -->08/11/2006 12:30:20
C:\WINDOWS\win.ini -->07/11/2006 22:00:13
C:\WINDOWS\eReg.dat -->07/11/2006 17:26:19
C:\WINDOWS\ALCFDRTM.VER -->23/10/2006 13:56:01
C:\WINDOWS\ALCFDRTM.EXE -->23/10/2006 13:56:01
C:\WINDOWS\EPSMTL32.TXT -->15/10/2006 17:14:03
C:\WINDOWS\CDE DX3800EFGIPSD.ini -->15/10/2006 17:13:31

C:\WINDOWS\ALAUNCH.EXE |Acer Inc. |16/03/2006 14:56:22
C:\WINDOWS\ALCFDRTM.EXE |Realtek Semiconductor Corp. |23/10/2006 13:56:01
C:\WINDOWS\Alcohol_Toolbar_Uninstaller_6921.exe |Alcohol Soft |11/10/2006 19:25:04
C:\WINDOWS\alcrmv.exe |Realtek Semiconductor Corp. |09/09/2005 17:39:00
C:\WINDOWS\alcupd.exe |Realtek Semiconductor Corp. |12/08/2005 19:40:00
C:\WINDOWS\AMOVE.EXE |COMPANY |24/05/2002 01:34:46
C:\WINDOWS\APANEL.EXE |Acer Inc. |30/05/2002 23:24:48
C:\WINDOWS\bdoscandel.exe |COMPANY |25/05/2006 01:22:06
C:\WINDOWS\CTHELPER.EXE |Creative Technology Ltd |24/05/2005 09:28:18
C:\WINDOWS\Ctregrun.exe |Creative Technology Ltd |10/10/2006 22:04:09
C:\WINDOWS\IsUninst.exe |InstallShield Software Corporation |11/10/2006 17:32:19
C:\WINDOWS\lsb_un20.exe |COMPANY |18/09/2002 00:45:00
C:\WINDOWS\MIDIDEF.EXE |Creative Technology Ltd |24/05/2005 09:17:46
C:\WINDOWS\PowerOption.exe |COMPANY |10/10/2006 21:08:24
C:\WINDOWS\PSCONV.EXE |COMPANY |24/05/2005 09:28:18
C:\WINDOWS\READREG.EXE |Creative Technology Limited |24/05/2005 09:28:20
C:\WINDOWS\soundman.exe |Realtek Semiconductor Corp. |22/09/2005 17:42:00
C:\WINDOWS\twunk_16.exe |Twain Working Group |05/08/2004 06:00:00
C:\WINDOWS\twunk_32.exe |Twain Working Group |05/08/2004 06:00:00
C:\WINDOWS\UNNeroBackItUp.exe |Nero AG |14/07/2006 16:29:44
C:\WINDOWS\UNNeroMediaHome.exe |Nero AG |14/07/2006 16:29:44
C:\WINDOWS\UNNeroShowTime.exe |Nero AG |14/07/2006 16:29:44
C:\WINDOWS\UNNeroVision.exe |Nero AG |14/07/2006 16:29:44
C:\WINDOWS\UNRecode.exe |Nero AG |14/07/2006 16:29:44
C:\WINDOWS\Updreg.EXE |Creative Technology Ltd. |12/10/2006 20:25:13
C:\WINDOWS\CTDCRES.DLL |Creative Technology Ltd |24/05/2005 09:28:06
C:\WINDOWS\INRES.DLL |Creative Technology Limited |12/10/2006 20:22:24
C:\WINDOWS\PCDLIB32.DLL |Eastman Kodak |10/10/2006 21:10:21
C:\WINDOWS\twain.dll |Groupe de travail Twain |05/08/2004 06:00:00
C:\WINDOWS\twain_32.dll |Groupe de travail Twain |05/08/2004 06:00:00
C:\WINDOWS\WRUninstall.dll |Webroot Software, Inc |07/11/2006 22:00:03
C:\WINDOWS\system32\append.exe |COMPANY |05/08/2004 06:00:00
C:\WINDOWS\system32\CapabilityTable.exe |NVIDIA Corporation |28/09/2005 10:10:42
C:\WINDOWS\system32\ChCfg.exe |COMPANY |15/07/2005 17:48:00
C:\WINDOWS\system32\CheckD2DSystem.exe |Acer Inc. |10/10/2006 21:13:36
C:\WINDOWS\system32\ClearEvent.exe |COMPANY |10/10/2006 21:13:36
C:\WINDOWS\system32\debug.exe |COMPANY |05/08/2004 06:00:00
C:\WINDOWS\system32\dosx.exe |COMPANY |05/08/2004 06:00:00
C:\WINDOWS\system32\dvdplay.exe |COMPANY |05/08/2004 06:00:00
C:\WINDOWS\system32\edlin.exe |COMPANY |05/08/2004 06:00:00
C:\WINDOWS\system32\exe2bin.exe |COMPANY |05/08/2004 06:00:00
C:\WINDOWS\system32\fastopen.exe |COMPANY |05/08/2004 06:00:00
C:\WINDOWS\system32\InsD1211.exe |Windows (R) 2000 DDK provider |19/11/2004 23:38:40
C:\WINDOWS\system32\InsD1215.exe |Windows (R) 2000 DDK provider |15/11/2005 21:13:28
C:\WINDOWS\system32\issearch.exe |COMPANY |07/11/2006 16:49:28
C:\WINDOWS\system32\java.exe |Sun Microsystems, Inc. |08/11/2006 18:00:55
C:\WINDOWS\system32\javaw.exe |Sun Microsystems, Inc. |08/11/2006 18:00:55
C:\WINDOWS\system32\javaws.exe |Sun Microsystems, Inc. |08/11/2006 18:00:55
C:\WINDOWS\system32\KCMDNIns.exe |COMPANY |06/08/2003 18:32:24
C:\WINDOWS\system32\keystone.exe |COMPANY |11/10/2006 05:59:18
C:\WINDOWS\system32\Kill1211.exe |COMPANY |16/11/2005 21:11:52
C:\WINDOWS\system32\KILLAPPS.EXE |COMPANY |24/05/2005 09:18:00
C:\WINDOWS\system32\Machnm1.exe |COMPANY |08/11/2006 12:30:15
C:\WINDOWS\system32\mem.exe |COMPANY |05/08/2004 06:00:00
C:\WINDOWS\system32\mscdexnt.exe |COMPANY |05/08/2004 06:00:00
C:\WINDOWS\system32\nlsfunc.exe |COMPANY |05/08/2004 06:00:00
C:\WINDOWS\system32\nvappbar.exe |COMPANY |11/10/2006 05:59:19
C:\WINDOWS\system32\nvcolor.exe |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvcplui.exe |NVIDIA Corporation |01/06/2006 10:22:00
C:\WINDOWS\system32\nvdspsch.exe |COMPANY |11/10/2006 05:59:19
C:\WINDOWS\system32\nvsvc32.exe |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvudisp.exe |NVIDIA Corporation |10/10/2006 21:32:19
C:\WINDOWS\system32\NVUNINST.EXE |NVIDIA Corporation |22/02/2006 13:59:56
C:\WINDOWS\system32\nvunrm.exe |NVIDIA Corporation |22/02/2006 13:59:56
C:\WINDOWS\system32\nvusmb.exe |NVIDIA Corporation |22/02/2006 13:59:56
C:\WINDOWS\system32\nwiz.exe |COMPANY |11/10/2006 05:59:20
C:\WINDOWS\system32\OALINST.EXE |Creative Labs Inc. |24/03/2005 03:23:46
C:\WINDOWS\system32\reboot.exe |COMPANY |07/08/2003 08:51:32
C:\WINDOWS\system32\redir.exe |COMPANY |05/08/2004 06:00:00
C:\WINDOWS\system32\REGPLIB.EXE |COMPANY |24/05/2005 09:20:16
C:\WINDOWS\system32\RemD1211.exe |Windows (R) 2000 DDK provider |20/11/2004 01:42:04
C:\WINDOWS\system32\RemD1215.exe |Windows (R) 2000 DDK provider |15/11/2005 21:15:30
C:\WINDOWS\system32\rescan.exe |Windows (R) 2000 DDK provider |30/08/2004 00:37:26
C:\WINDOWS\system32\RTLCPL.exe |Realtek Semiconductor Corp. |22/09/2005 19:28:00
C:\WINDOWS\system32\setver.exe |COMPANY |05/08/2004 06:00:00
C:\WINDOWS\system32\share.exe |COMPANY |05/08/2004 06:00:00
C:\WINDOWS\system32\ssiefr.EXE |Webroot Software Inc (www.webroot.com) |07/11/2006 22:00:03
C:\WINDOWS\system32\SysMonitor.exe |COMPANY |10/10/2006 21:11:19
C:\WINDOWS\system32\Uninstall_eRecovery.exe |Acer Inc. |10/10/2006 21:13:36
C:\WINDOWS\system32\usrmlnka.exe |U.S. Robotics Corporation |05/08/2004 06:00:00
C:\WINDOWS\system32\usrprbda.exe |U.S. Robotics Corporation |05/08/2004 06:00:00
C:\WINDOWS\system32\usrshuta.exe |U.S. Robotics Corporation |05/08/2004 06:00:00
C:\WINDOWS\system32\ZyDelReg.exe |COMPANY |14/03/2003 11:24:00
C:\WINDOWS\system32\a3d.dll |COMPANY |10/10/2006 21:44:00
C:\WINDOWS\system32\AC3API.DLL |Creative Technology Ltd |24/05/2005 09:28:28
C:\WINDOWS\system32\Acer.Empowering.Windows.Forms.dll |acer inc. |10/10/2006 21:11:19
C:\WINDOWS\system32\amstream.dll |COMPANY |05/08/2004 06:00:00
C:\WINDOWS\system32\atmfd.dll |Adobe Systems Incorporated |05/08/2004 06:00:00
C:\WINDOWS\system32\atmlib.dll |Adobe Systems |05/08/2004 06:00:00
C:\WINDOWS\system32\bdco1.dll |NVIDIA Corporation |03/03/2006 12:29:26
C:\WINDOWS\system32\bdco1ins.dll |NVIDIA Corporation |03/03/2006 12:29:26
C:\WINDOWS\system32\CloseProcessWindow.dll |acer inc. |10/10/2006 21:13:36
C:\WINDOWS\system32\commonfx.dll |Creative Technology Ltd |12/10/2006 19:56:44
C:\WINDOWS\system32\compatUI.dll |COMPANY |05/08/2004 06:00:00
C:\WINDOWS\system32\CRLDS3D.DLL |Sensaura Ltd |07/07/2004 09:13:42
C:\WINDOWS\system32\CTAGENT.DLL |Creative Technology Ltd |24/05/2005 09:28:16
C:\WINDOWS\system32\CTASIO.DLL |Creative Technology Ltd |24/05/2005 09:20:56
C:\WINDOWS\system32\ctaudfx.dll |Creative Technology Ltd |12/10/2006 19:56:45
C:\WINDOWS\system32\CTBURST.DLL |COMPANY |24/05/2005 09:29:30
C:\WINDOWS\system32\ctcoinst.dll |Creative Technology Limited |12/10/2006 19:56:47
C:\WINDOWS\system32\CTDC0000.DLL |Creative Technology Ltd |24/05/2005 09:28:06
C:\WINDOWS\system32\CTDC0001.DLL |Creative Technology Ltd |24/05/2005 09:28:08
C:\WINDOWS\system32\CTDCIFCE.DLL |Creative Technology Ltd |24/05/2005 09:28:08
C:\WINDOWS\system32\ctdproxy.dll |Creative Technology Ltd |12/10/2006 19:56:46
C:\WINDOWS\system32\ctdvinst.dll |Creative Technology Limited |12/10/2006 19:56:48
C:\WINDOWS\system32\cteapsfx.dll |Creative Technology Ltd |12/10/2006 19:56:46
C:\WINDOWS\system32\CTEDASIO.DLL |Creative Technology, Ltd |24/05/2005 09:20:58
C:\WINDOWS\system32\CTEDSPFX.DLL |Creative Technology Ltd |24/05/2005 09:21:08
C:\WINDOWS\system32\CTEDSPIO.DLL |Creative Technology Ltd |24/05/2005 09:21:16
C:\WINDOWS\system32\CTEDSPSY.DLL |Creative Technology Ltd |24/05/2005 09:23:54
C:\WINDOWS\system32\ctemupia.dll |Creative Technology Ltd |12/10/2006 19:56:46
C:\WINDOWS\system32\CTMMACTL.DLL |COMPANY |24/05/2005 09:31:22
C:\WINDOWS\system32\CTMMEP.DLL |Creative Technology Ltd |24/05/2005 09:28:14
C:\WINDOWS\system32\CTOSUSER.DLL |Creative Technology Ltd |24/05/2005 09:20:24
C:\WINDOWS\system32\CTPCMCIA.DLL |Creative Technology Ltd |24/05/2005 09:28:14
C:\WINDOWS\system32\CTPRES.DLL |Creative Technology Ltd |24/05/2005 09:28:10
C:\WINDOWS\system32\ctsblfx.dll |Creative Technology Ltd |12/10/2006 19:56:45
C:\WINDOWS\system32\CTSCAL.DLL |Creative Technology Ltd |24/05/2005 09:28:08
C:\WINDOWS\system32\CTSPKHLP.DLL |Creative Technology Ltd |24/05/2005 09:28:16
C:\WINDOWS\system32\CTTHXCAL.DLL |Creative Technology Ltd |24/05/2005 09:28:10
C:\WINDOWS\system32\CT_OAL.DLL |Creative Technology Ltd |24/05/2005 09:20:58
C:\WINDOWS\system32\DEVREG.DLL |Creative Technology Ltd |24/05/2005 09:17:46
C:\WINDOWS\system32\dgrpsetu.dll |Digi International, Inc. |05/08/2004 06:00:00
C:\WINDOWS\system32\dgsetup.dll |Digi International |05/08/2004 06:00:00
C:\WINDOWS\system32\EAXAC3.DLL |Creative Labs |11/07/2001 03:51:00
C:\WINDOWS\system32\encdec.dll |COMPANY |05/08/2004 06:00:00
C:\WINDOWS\system32\EPPicMgr.dll |SEIKO EPSON CORPORATION |15/10/2006 16:50:45
C:\WINDOWS\system32\EpPicPrt.dll |SEIKO EPSON CORPORATION |15/10/2006 16:50:46
C:\WINDOWS\system32\EqnClass.Dll |Equinox Systems Inc. |05/08/2004 06:00:00
C:\WINDOWS\system32\eRecUtil.dll |Acer Inc. |10/10/2006 21:11:21
C:\WINDOWS\system32\esccmd.dll |SEIKO EPSON CORP. |15/10/2006 16:51:10
C:\WINDOWS\system32\escimgd.dll |SEIKO EPSON CORP. |15/10/2006 16:51:10
C:\WINDOWS\system32\escwiad.dll |SEIKO EPSON CORP. |15/10/2006 16:51:10
C:\WINDOWS\system32\E_DCINST.DLL |SEIKO EPSON CORP. |15/10/2006 16:50:16
C:\WINDOWS\system32\E_FBCBACE.DLL |SEIKO EPSON CORPORATION |15/10/2006 16:50:15
C:\WINDOWS\system32\E_FBCHACE.DLL |SEIKO EPSON CORPORATION |15/10/2006 16:50:15
C:\WINDOWS\system32\E_FLMACE.DLL |SEIKO EPSON CORPORATION |15/10/2006 16:50:15
C:\WINDOWS\system32\fdco1.dll |NVIDIA Corporation |03/03/2006 12:29:42
C:\WINDOWS\system32\fdco1ins.dll |NVIDIA Corporation |03/03/2006 12:29:42
C:\WINDOWS\system32\fdco_l1028.dll |NVIDIA Corporation |03/03/2006 12:29:48
C:\WINDOWS\system32\fdco_l1031.dll |NVIDIA Corporation |03/03/2006 12:29:54
C:\WINDOWS\system32\fdco_l1034.dll |NVIDIA Corporation |03/03/2006 12:30:02
C:\WINDOWS\system32\fdco_l1036.dll |NVIDIA Corporation |03/03/2006 12:29:52
C:\WINDOWS\system32\fdco_l1040.dll |NVIDIA Corporation |03/03/2006 12:29:54
C:\WINDOWS\system32\fdco_l1041.dll |NVIDIA Corporation |03/03/2006 12:29:56
C:\WINDOWS\system32\fdco_l1042.dll |NVIDIA Corporation |03/03/2006 12:29:58
C:\WINDOWS\system32\fdco_l1046.dll |NVIDIA Corporation |03/03/2006 12:30:00
C:\WINDOWS\system32\fdco_l2052.dll |NVIDIA Corporation |03/03/2006 12:29:50
C:\WINDOWS\system32\Hmpg12.dll |COMPANY |03/09/2001 22:46:38
C:\WINDOWS\system32\HMPV2_ENC.dll |COMPANY |30/07/2001 15:33:56
C:\WINDOWS\system32\HMPV2_ENC_MMX.dll |COMPANY |23/07/2001 21:04:36
C:\WINDOWS\system32\hticons.dll |Hilgraeve, Inc. |05/08/2004 06:00:00
C:\WINDOWS\system32\hypertrm.dll |Hilgraeve, Inc. |17/11/2004 18:42:34
C:\WINDOWS\system32\iccvid.dll |Radius Inc. |05/08/2004 06:00:00
C:\WINDOWS\system32\idecoi.dll |NVIDIA Corporation |12/08/2005 15:31:12
C:\WINDOWS\system32\ieencode.dll |COMPANY |05/08/2004 06:00:00
C:\WINDOWS\system32\iifgede.dll |COMPANY |07/11/2006 16:40:45
C:\WINDOWS\system32\imagX7.dll |Pegasus Imaging Corp. |26/07/2004 16:16:10
C:\WINDOWS\system32\imagXpr7.dll |Pegasus Imaging Corp. |26/07/2004 16:16:10
C:\WINDOWS\system32\imagXR7.dll |Pegasus Imaging Corp. |26/07/2004 16:16:10
C:\WINDOWS\system32\imagXRA7.dll |Pegasus Imaging Corp. |26/07/2004 16:16:10
C:\WINDOWS\system32\InsDrvZD.dll |COMPANY |23/03/2004 15:38:00
C:\WINDOWS\system32\InsDrvZD64.DLL |COMPANY |12/07/2005 13:44:42
C:\WINDOWS\system32\Interop.Shell32.dll |COMPANY |10/10/2006 21:11:19
C:\WINDOWS\system32\Ir32_32.dll |COMPANY |07/11/1995 13:46:00
C:\WINDOWS\system32\Ir41_qc.dll |Intel Corporation. |22/03/1998 14:34:14
C:\WINDOWS\system32\Ir41_qcx.dll |Intel Corporation. |22/03/1998 14:34:14
C:\WINDOWS\system32\Ir50_32.dll |Intel Corporation |17/05/1999 14:12:56
C:\WINDOWS\system32\ir50_lcs.dll |Intel Corporation. |06/11/1997 13:53:30
C:\WINDOWS\system32\Ir50_qc.dll |Intel Corporation. |07/10/1998 16:46:18
C:\WINDOWS\system32\Ir50_qcx.dll |Intel Corporation. |07/10/1998 16:50:22
C:\WINDOWS\system32\isrdbg32.dll |Intel Corporation |05/08/2004 06:00:00
C:\WINDOWS\system32\ixt0.dll_tobedeleted |COMPANY |07/11/2006 16:49:29
C:\WINDOWS\system32\jgaw400.dll |Johnson-Grace Company |05/08/2004 06:00:00
C:\WINDOWS\system32\jgdw400.dll |America Online |05/08/2004 06:00:00
C:\WINDOWS\system32\jgmd400.dll |Johnson-Grace Company |05/08/2004 06:00:00
C:\WINDOWS\system32\jgpl400.dll |Johnson-Grace Company |05/08/2004 06:00:00
C:\WINDOWS\system32\jgsd400.dll |America Online |05/08/2004 06:00:00
C:\WINDOWS\system32\jgsh400.dll |Johnson-Grace Company |05/08/2004 06:00:00
C:\WINDOWS\system32\mdwmdmsp.dll |RioPort |05/08/2004 06:00:00
C:\WINDOWS\system32\MMSwitch.dll |COMPANY |15/11/2002 13:11:26
C:\WINDOWS\system32\msdmo.dll |COMPANY |05/08/2004 06:00:00
C:\WINDOWS\system32\msencode.dll |COMPANY |05/08/2004 06:00:00
C:\WINDOWS\system32\multiplex_vcd.dll |COMPANY |26/12/2001 15:12:30
C:\WINDOWS\system32\MWLPS.dll |COMPANY |15/05/2006 16:55:04
C:\WINDOWS\system32\NeroCo.dll |Ahead Software AG
im Stoeckmaedle 18
76307 Karlsbad, Germany
Fax: ++49-7248-911-888
e-mail: info@nero.com |16/02/2005 14:18:04
C:\WINDOWS\system32\NTIBUN4.dll |COMPANY |15/05/2006 16:53:38
C:\WINDOWS\system32\NTICDMK7.dll |COMPANY |15/05/2006 16:52:34
C:\WINDOWS\system32\NTIFCD3.dll |COMPANY |15/05/2006 16:52:34
C:\WINDOWS\system32\NTIMP3.dll |COMPANY |15/05/2006 16:52:34
C:\WINDOWS\system32\NTIMPEG2.dll |COMPANY |15/05/2006 16:52:34
C:\WINDOWS\system32\nv4_disp.dll |NVIDIA Corporation |01/06/2006 10:22:00
C:\WINDOWS\system32\nvapi.dll |COMPANY |11/10/2006 05:59:19
C:\WINDOWS\system32\nvcod.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvcodins.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvconrm.dll |NVIDIA Corporation |22/02/2006 14:00:24
C:\WINDOWS\system32\nvcpl.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvcpluir.dll |NVIDIA Corporation |01/06/2006 10:22:00
C:\WINDOWS\system32\nvdisps.dll |NVIDIA Corporation |01/06/2006 10:22:00
C:\WINDOWS\system32\nvdispsr.dll |NVIDIA Corporation |01/06/2006 10:22:00
C:\WINDOWS\system32\nvexpbar.dll |NVIDIA Corporation |01/06/2006 10:22:00
C:\WINDOWS\system32\nvgames.dll |NVIDIA Corporation |01/06/2006 10:22:00
C:\WINDOWS\system32\nvgamesr.dll |NVIDIA Corporation |01/06/2006 10:22:00
C:\WINDOWS\system32\nvhwvid.dll |COMPANY |11/10/2006 05:59:19
C:\WINDOWS\system32\nview.dll |COMPANY |11/10/2006 05:59:19
C:\WINDOWS\system32\nvmccs.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvmccsrs.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvmccss.dll |NVIDIA Corporation |01/06/2006 10:22:00
C:\WINDOWS\system32\nvmccssr.dll |NVIDIA Corporation |01/06/2006 10:22:00
C:\WINDOWS\system32\nvmctray.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvmobls.dll |NVIDIA Corporation |01/06/2006 10:22:00
C:\WINDOWS\system32\nvmoblsr.dll |NVIDIA Corporation |01/06/2006 10:22:00
C:\WINDOWS\system32\nvnt4cpl.dll |COMPANY |11/10/2006 05:59:19
C:\WINDOWS\system32\nvoglnt.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvraidco.dll |NVIDIA Corporation |12/08/2005 15:31:16
C:\WINDOWS\system32\nvraiins.dll |NVIDIA Corporation |12/08/2005 15:31:16
C:\WINDOWS\system32\nvrsar.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvrscs.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvrsda.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvrsde.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvrsel.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvrseng.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvrses.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvrsesm.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvrsfi.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvrsfr.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvrshe.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvrshu.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvrsit.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvrsja.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvrsko.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvrsnl.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvrsno.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvrspl.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvrspt.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvrsptb.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvrsru.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvrssk.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvrssl.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvrssv.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvrstr.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvrszhc.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvrszht.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvshell.dll |COMPANY |11/10/2006 05:59:19
C:\WINDOWS\system32\nvvitvs.dll |NVIDIA Corporation |01/06/2006 10:22:00
C:\WINDOWS\system32\nvvitvsr.dll |NVIDIA Corporation |01/06/2006 10:22:00
C:\WINDOWS\system32\nvwddi.dll |NVIDIA Corporation |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwdmcpl.dll |COMPANY |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwimg.dll |COMPANY |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwrsar.dll |NVIDIA Corporation |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwrscs.dll |NVIDIA Corporation |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwrsda.dll |NVIDIA Corporation |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwrsde.dll |NVIDIA Corporation |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwrsel.dll |NVIDIA Corporation |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwrseng.dll |NVIDIA Corporation |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwrses.dll |NVIDIA Corporation |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwrsesm.dll |NVIDIA Corporation |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwrsfi.dll |NVIDIA Corporation |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwrsfr.dll |NVIDIA Corporation |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwrshe.dll |NVIDIA Corporation |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwrshu.dll |NVIDIA Corporation |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwrsit.dll |NVIDIA Corporation |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwrsja.dll |NVIDIA Corporation |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwrsko.dll |NVIDIA Corporation |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwrsnl.dll |NVIDIA Corporation |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwrsno.dll |NVIDIA Corporation |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwrspl.dll |NVIDIA Corporation |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwrspt.dll |NVIDIA Corporation |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwrsptb.dll |NVIDIA Corporation |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwrsru.dll |NVIDIA Corporation |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwrssk.dll |NVIDIA Corporation |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwrssl.dll |NVIDIA Corporation |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwrssv.dll |NVIDIA Corporation |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwrstr.dll |NVIDIA Corporation |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwrszhc.dll |NVIDIA Corporation |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwrszht.dll |NVIDIA Corporation |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwss.dll |NVIDIA Corporation |01/06/2006 10:22:00
C:\WINDOWS\system32\nvwssr.dll |NVIDIA Corporation |01/06/2006 10:22:00
C:\WINDOWS\system32\ogg.dll |COMPANY |14/12/2002 22:46:02
C:\WINDOWS\system32\oggDS.dll |COMPANY |14/12/2002 22:46:02
C:\WINDOWS\system32\OpenAL32.dll |NVIDIA Corporation |10/10/2006 21:44:58
C:\WINDOWS\system32\paqsp.dll |COMPANY |05/08/2004 06:00:00
C:\WINDOWS\system32\piaproxy.dll |Creative Technology Ltd |12/10/2006 19:56:46
C:\WINDOWS\system32\PICEntry.dll |SEIKO EPSON CORPORATION |15/10/2006 16:50:46
C:\WINDOWS\system32\PICSDK.dll |SEIKO EPSON CORPORATION |15/10/2006 16:50:46
C:\WINDOWS\system32\PICSDK2.dll |SEIKO EPSON CORPORATION |15/10/2006 16:50:46
C:\WINDOWS\system32\pvmjpg21.dll |Pegasus Imaging Corporation |12/12/2002 15:33:20
C:\WINDOWS\system32\qedwipes.dll |COMPANY |05/08/2004 06:00:00
C:\WINDOWS\system32\ReWire.dll |Propellerhead Software AB |11/10/2006 18:48:28
C:\WINDOWS\system32\REX Shared Library.dll |Propellerhead Software AB |11/10/2006 18:48:28
C:\WINDOWS\system32\RtlCPAPI.dll |COMPANY |16/09/2005 15:14:00
C:\WINDOWS\system32\S32EVNT1.DLL |Symantec Corporation |10/10/2006 21:14:51
C:\WINDOWS\system32\sbe.dll |COMPANY |05/08/2004 06:00:00
C:\WINDOWS\system32\ScrollBarLib.dll |COMPANY |10/10/2006 21:11:19
C:\WINDOWS\system32\SFMAN32.DLL |Creative Technology Ltd |24/05/2005 09:20:22
C:\WINDOWS\system32\SFMS32.DLL |Creative Technology Ltd |24/05/2005 09:20:20
C:\WINDOWS\system32\slbcsp.dll |Schlumberger Technology Corporation |05/08/2004 06:00:00
C:\WINDOWS\system32\slbiop.dll |Schlumberger Technology Corporation |05/08/2004 06:00:00
C:\WINDOWS\system32\slbrccsp.dll |Schlumberger Technology Corporation |05/08/2004 06:00:00
C:\WINDOWS\system32\spnike.dll |S3/Diamond Multimedia |05/08/2004 06:00:00
C:\WINDOWS\system32\sprio600.dll |S3/Diamond Multimedia |05/08/2004 06:00:00
C:\WINDOWS\system32\sprio800.dll |S3/Diamond Multimedia |05/08/2004 06:00:00
C:\WINDOWS\system32\spxcoins.dll |Perle Systems Ltd. |05/08/2004 06:00:00
C:\WINDOWS\system32\SymNeti.dll |Symantec Corporation |07/08/2006 15:02:32
C:\WINDOWS\system32\SymRedir.dll |Symantec Corporation |07/08/2006 15:02:30
C:\WINDOWS\system32\tsd32.dll |COMPANY |05/08/2004 06:00:00
C:\WINDOWS\system32\TwnLib4.dll |Pegasus Imaging Corp. |09/07/2004 08:43:56
C:\WINDOWS\system32\usrcntra.dll |U.S. Robotics Corporation |05/08/2004 06:00:00
C:\WINDOWS\system32\usrcoina.dll |U.S. Robotics Corporation |05/08/2004 06:00:00
C:\WINDOWS\system32\usrdpa.dll |U.S. Robotics Corporation |05/08/2004 06:00:00
C:\WINDOWS\system32\usrdtea.dll |U.S. Robotics Corporation |05/08/2004 06:00:00
C:\WINDOWS\system32\usrfaxa.dll |U.S. Robotics Corporation |05/08/2004 06:00:00
C:\WINDOWS\system32\usrlbva.dll |U.S. Robotics Corporation |05/08/2004 06:00:00
C:\WINDOWS\system32\usrrtosa.dll |U.S. Robotics Corporation |05/08/2004 06:00:00
C:\WINDOWS\system32\usrsdpia.dll |U.S. Robotics Corporation |05/08/2004 06:00:00
C:\WINDOWS\system32\usrsvpia.dll |U.S. Robotics Corporation |05/08/2004 06:00:00
C:\WINDOWS\system32\usrv42a.dll |U.S. Robotics Corporation |05/08/2004 06:00:00
C:\WINDOWS\system32\usrv80a.dll |U.S. Robotics Corporation |05/08/2004 06:00:00
C:\WINDOWS\system32\usrvoica.dll |U.S. Robotics Corporation |05/08/2004 06:00:00
C:\WINDOWS\system32\usrvpa.dll |U.S. Robotics Corporation |05/08/2004 06:00:00
C:\WINDOWS\system32\vorbis.dll |COMPANY |14/12/2002 22:46:02
C:\WINDOWS\system32\vorbisenc.dll |COMPANY |14/12/2002 21:46:04
C:\WINDOWS\system32\vp6vfw.dll |On2.com |30/08/2004 13:25:24
C:\WINDOWS\system32\VSFilter.dll |Gabest |12/08/2004 23:11:14
C:\WINDOWS\system32\win87em.dll |COMPANY |05/08/2004 06:00:00
C:\WINDOWS\system32\winrge32.dll |COMPANY |07/11/2006 16:40:39
C:\WINDOWS\system32\WNASPINT.DLL |NexiTech, Inc. |07/11/2006 14:53:24
C:\WINDOWS\system32\wrap_oal.dll |Creative Labs |10/10/2006 21:44:58
C:\WINDOWS\system32\WRLogonNtf.dll |Webroot Software, Inc. |07/11/2006 22:00:12
C:\WINDOWS\system32\wrlzma.dll |COMPANY |07/11/2006 22:00:03
C:\WINDOWS\system32\XceedCry.dll |Xceed Software Inc (450) 442-2626 support@xceedsoft.com www.xceedsoft.com |02/02/2003 11:01:34
C:\WINDOWS\system32\XceedSco.dll |Xceed Software Inc (450) 442-2626 support@xceedsoft.com www.xceedsoft.com |19/05/2003 10:37:20
C:\WINDOWS\system32\xvidcore.dll |COMPANY |20/12/2004 11:03:26
C:\WINDOWS\system32\xvidvfw.dll |COMPANY |20/12/2004 11:08:28
C:\WINDOWS\system32\ZDPN50.dll |Printing Communications Assoc., Inc. (PCAUSA) |14/01/2004 10:25:00
C:\WINDOWS\system32\_psisdecd.dll |COMPANY |10/10/2006 21:12:41

Le volume dans le lecteur C s'appelle ACER
Le numéro de série du volume est 4C5B-36B2

Répertoire de C:\WINDOWS\system

24/12/1998 17:15 345 983 RCDSETUP.EXE
1 fichier(s) 345 983 octets
0 Rép(s) 113 549 365 248 octets libres
Le volume dans le lecteur C s'appelle ACER
Le numéro de série du volume est 4C5B-36B2

Répertoire de C:\WINDOWS\system32

05/08/2004 06:00 6 144 csrss.exe
1 fichier(s) 6 144 octets
0 Rép(s) 113 549 365 248 octets libres

Contenu de Downloaded Program Files
Le volume dans le lecteur C s'appelle ACER
Le numéro de série du volume est 4C5B-36B2

Répertoire de C:\WINDOWS\Downloaded Program Files

09/11/2006 00:25 <REP> .
09/11/2006 00:25 <REP> ..
17/05/2006 14:32 231 072 avsniff.dll
17/05/2006 14:29 878 avsniff.inf
17/05/2006 14:32 198 304 avsniffdlgs.dll
17/05/2006 14:26 537 704 AXXPEE.dll
07/12/2004 16:07 32 bdcore.dll
01/03/2005 14:08 118 784 bdupd.dll
17/05/2006 14:29 241 CabSA.inf
01/11/2006 01:00 2 504 catalog.dat
15/05/2006 16:35 65 desktop.ini
25/07/2002 16:13 24 576 dwusplay.dll
25/07/2002 16:13 196 608 dwusplay.exe
01/11/2006 01:00 6 899 ecbootil.vxd
17/05/2006 14:26 42 112 ecmldr32.dll
01/11/2006 01:00 272 040 ecmsvr32.dll
01/03/2005 14:08 53 248 ipsupd.dll
25/07/2002 16:05 172 032 isusweb.dll
16/03/2005 11:34 7 407 lang.ini
07/12/2004 16:07 32 libfn.dll
14/03/2005 13:38 126 live.ini
17/05/2006 14:28 6 850 navapi.vxd
17/05/2006 14:28 201 896 navapi32.dll
01/11/2006 01:00 124 584 naveng32.dll
01/11/2006 01:00 882 344 navex32a.dll
01/06/2006 02:57 1 331 oscan8.inf
01/06/2006 02:54 471 040 oscan8.ocx
31/05/2006 04:15 10 oscan81.ocx_x
17/05/2006 14:32 161 480 rufsi.dll
14/03/2005 13:58 7 073 scanoptions.tsi
01/11/2006 01:00 97 648 scrauth.dat
22/06/2006 10:41 5 032 swflash.inf
01/11/2006 01:00 9 237 symaveng.cat
01/11/2006 01:00 1 061 symaveng.inf
01/11/2006 01:00 186 568 tcdefs.dat
01/11/2006 01:00 1 036 919 tcscan7.dat
01/11/2006 01:00 319 497 tcscan8.dat
01/11/2006 01:00 691 886 tcscan9.dat
01/11/2006 01:00 453 tinf.dat
01/11/2006 01:00 148 tinfidx.dat
01/11/2006 01:00 1 957 tinfl.dat
01/11/2006 01:00 60 395 tscan1.dat
01/11/2006 01:00 3 027 tscan1hd.dat
01/11/2006 01:00 4 778 v.grd
01/11/2006 01:00 2 269 v.sig
01/11/2006 01:00 106 244 virscan.inf
01/11/2006 01:00 970 759 virscan1.dat
01/11/2006 01:00 569 844 virscan2.dat
01/11/2006 01:00 146 756 virscan3.dat
01/11/2006 01:00 320 186 virscan4.dat
01/11/2006 01:00 2 882 753 virscan5.dat
01/11/2006 01:00 389 633 virscan6.dat
01/11/2006 01:00 4 873 158 virscan7.dat
01/11/2006 01:00 1 622 045 virscan8.dat
01/11/2006 01:00 3 807 757 virscan9.dat
01/11/2006 01:00 32 virscant.dat
01/11/2006 01:00 224 zdone.dat
55 fichier(s) 21 831 538 octets

Total des fichiers listés :
55 fichier(s) 21 831 538 octets
2 Rép(s) 113 549 361 152 octets libres

Recherche de rootkit! (Merci S!Ri)

Recherche d'infections connues
possible infection [b]faux codec[/b] : l'utilisation de SmitFraudFix est recommandé
possible infection [b]rogues[/b] : l'utilisation de SmitFraudFix est recommandé




Liste des programmes installes

a-squared Anti-Malware 2.1
Acer eConsole
Acer eMode Management
Acer Empowering Technology
Acer ePerformance Management
Acer WLAN 11g USB Dongle
Acer WLAN 11g USB Dongle
Adobe Flash Player 9 ActiveX
Adobe Reader 7.0
Alcohol Toolbar
Archiveur WinRAR
ASIO4ALL
Athlon 64 Processor Driver
ccCommon
CCleaner (remove only)
CDRWIN
CloneCD
Digital Audio System
EPSON Attach To Email
EPSON Attach To Email
EPSON Copy Utility 3
EPSON Easy Photo Print
EPSON File Manager
EPSON Image Clip Palette
EPSON Logiciel imprimante
EPSON Scan
EPSON Scan Assistant
ESDX3800 Guide d'utilisation
F1 2002
FireBurner
Google Toolbar for Internet Explorer
HijackThis 1.99.1
Hijackthis Version Française
Internet Worm Protection
J2SE Runtime Environment 5.0 Update 9
Language pack for Ad-Aware SE
LiveUpdate 3.0 (Symantec Corporation)
Microsoft .NET Framework 1.1
Microsoft .NET Framework 1.1
Microsoft .NET Framework 1.1 French Language Pack
Microsoft .NET Framework 1.1 Hotfix (KB886903)
Microsoft Office Excel Viewer 2003
Mise à jour de sécurité pour Windows XP (KB913433)
MotoGP
MSN
NAVShortcut
Need for Speed™ Carbon Demo
Nero 7
Norton AntiVirus 2006
Norton AntiVirus 2006 (Symantec Corporation)
Norton AntiVirus Help
Norton AntiVirus Parent MSI
Norton AntiVirus SYMLT MSI
Norton Protection Center
Norton WMI Update
NTI Backup NOW! 4
NTI Backup NOW! 4
NTI CD & DVD-Maker
NTI CD & DVD-Maker
NTI HomeVideo-Maker
NVIDIA Drivers
OCA Client history tool install
Philips Flat Panel Adjust
PIF DESIGNER
PowerDVD
Project64 1.6
Race Driver 3 Singleplayer Demo
Realtek AC'97 Audio
Reason 3.0
SkReasonExport 1.2
SLD Codec Pack
SPBBC
Spy Sweeper
Spybot - Search & Destroy 1.4
Symantec
SymNet
WebFldrs XP
Windows Genuine Advantage Validation Tool (KB892130)
Windows Live Messenger
Windows Live Sign-in Assistant
WinZip
Yahoo! Toolbar
Yahoo! Toolbar avec bloqueur de fenêtres pop-up



Le volume dans le lecteur C s'appelle ACER
Le numéro de série du volume est 4C5B-36B2

Répertoire de C:\Program Files

08/11/2006 17:59 <REP> .
08/11/2006 17:59 <REP> ..
08/11/2006 14:00 <REP> a-squared Anti-Malware
10/10/2006 21:12 <REP> Acer
10/10/2006 21:12 <REP> Acer TV-FM
11/10/2006 05:48 <REP> Acer WLAN 11g USB Dongle
11/10/2006 05:48 <REP> Adobe
11/10/2006 19:24 <REP> Alcohol Soft
11/10/2006 19:25 <REP> Alcohol Toolbar
11/10/2006 05:49 <REP> AMD
14/10/2006 11:43 <REP> ASIO4ALL v2
11/10/2006 05:49 <REP> AvRack
08/11/2006 00:51 <REP> CCleaner
07/11/2006 16:36 <REP> CDRWIN
12/10/2006 19:27 <REP> Common Files
15/05/2006 16:34 <REP> ComPlus Applications
10/10/2006 22:06 <REP> Creative
12/10/2006 20:21 <REP> Creative Professional
15/05/2006 16:54 <REP> CyberLink
08/11/2006 13:09 <REP> Defenza
15/10/2006 17:17 <REP> EPSON
08/11/2006 17:59 <REP> Fichiers communs
11/10/2006 17:32 <REP> GigaByte
28/10/2006 14:24 <REP> Google
08/11/2006 23:32 <REP> Hijackthis Version Française
10/10/2006 23:12 <REP> Internet Explorer
07/11/2006 18:29 <REP> iVideoCodec
08/11/2006 18:00 <REP> Java
07/11/2006 23:33 <REP> Lavasoft
11/10/2006 05:49 <REP> Messenger
11/10/2006 05:49 <REP> microsoft frontpage
15/10/2006 15:28 <REP> Microsoft Office
11/10/2006 05:49 <REP> Movie Maker
22/10/2006 16:15 <REP> MSN
15/05/2006 16:34 <REP> MSN Gaming Zone
15/10/2006 17:41 <REP> MSN Messenger
24/10/2006 18:37 <REP> Nero
11/10/2006 05:49 <REP> NetMeeting
10/10/2006 21:10 <REP> NewTech Infosystems
10/10/2006 21:30 <REP> Norton AntiVirus
11/10/2006 05:50 <REP> Oca History Tool
11/10/2006 05:50 <REP> Online Services
12/10/2006 23:14 <REP> Outlook Express
14/10/2006 10:55 <REP> Philips Flat Panel Adjust
11/10/2006 05:50 <REP> Realtek AC97
15/05/2006 16:47 <REP> Realtek Sound Manager
11/10/2006 05:50 <REP> Services en ligne
12/10/2006 23:11 <REP> SLD Codec Pack
07/11/2006 22:35 <REP> Spybot - Search & Destroy
12/10/2006 20:22 <REP> Steinberg
10/10/2006 21:26 <REP> Symantec
07/11/2006 16:53 <REP> VirusBursters
07/11/2006 22:00 <REP> Webroot
11/10/2006 05:50 <REP> Windows Media Player
11/10/2006 05:50 <REP> Windows NT
15/10/2006 15:32 <REP> WinRAR
15/10/2006 15:20 <REP> WinZip
11/10/2006 05:50 <REP> xerox
08/11/2006 00:51 <REP> Yahoo!
0 fichier(s) 0 octets
59 Rép(s) 113 549 348 864 octets libres
Le volume dans le lecteur C s'appelle ACER
Le numéro de série du volume est 4C5B-36B2

Répertoire de C:\Program Files\fichiers communs

08/11/2006 17:59 <REP> .
08/11/2006 17:59 <REP> ..
11/10/2006 05:49 <REP> Adobe
24/10/2006 18:39 <REP> Ahead
10/10/2006 21:10 <REP> ArcSoft
30/10/2006 18:08 <REP> DirectX
15/10/2006 17:22 <REP> InstallShield
08/11/2006 17:59 <REP> Java
15/10/2006 17:41 <REP> Microsoft Shared
11/10/2006 05:49 <REP> MSSoap
15/05/2006 16:53 <REP> muvee Technologies
11/10/2006 05:49 <REP> NewTech Infosystems
11/10/2006 05:49 <REP> ODBC
11/10/2006 05:49 <REP> Services
11/10/2006 05:49 <REP> SpeechEngines
27/10/2006 20:35 <REP> Symantec Shared
12/10/2006 23:14 <REP> System
07/11/2006 15:11 <REP> Wise Installation Wizard
0 fichier(s) 0 octets
18 Rép(s) 113 549 344 768 octets libres
Le volume dans le lecteur C s'appelle ACER
Le numéro de série du volume est 4C5B-36B2

Répertoire de C:\Program Files\fichiers communs\Microsoft Shared\Web Folders

11/10/2006 05:49 <REP> .
11/10/2006 05:49 <REP> ..
18/05/2001 14:57 561 209 MSONSEXT.DLL
03/06/1999 11:09 122 937 MSOWS409.DLL
07/03/2001 06:00 127 033 MSOWS40c.DLL
3 fichier(s) 811 179 octets
2 Rép(s) 113 549 344 768 octets libres
Le volume dans le lecteur C s'appelle ACER
Le numéro de série du volume est 4C5B-36B2

Répertoire de C:\Program Files\common files

12/10/2006 19:27 <REP> .
12/10/2006 19:27 <REP> ..
12/10/2006 19:27 <REP> InstallShield
0 fichier(s) 0 octets
3 Rép(s) 113 549 344 768 octets libres
Le volume dans le lecteur C s'appelle ACER
Le numéro de série du volume est 4C5B-36B2

Répertoire de C:\

07/11/2006 16:42 395 264 ac3_0010.exe
07/11/2006 16:41 18 457 DXC9.exe
07/11/2006 16:41 364 544 nwnmff_e51.exe
07/11/2006 16:41 442 368 windows_e51.exe
4 fichier(s) 1 220 633 octets
0 Rép(s) 113 549 344 768 octets libres
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\00C30CE2.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0318789B.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\05737EE0.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0614419D.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\07EA7F05.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\081D2684.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\08D37CE0.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0B37383D.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0BAC2774.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0C1A621F.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0E75413F.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\10193002.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\125A1FD1.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\16497C59.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\16F1130E.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\17394E2D.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\179D6B75.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\17D43CF0.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\18282001.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1AFE2098.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1B6C5B43.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1BE73DE1.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1C6149EE.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1DE85E3F.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1F717D1F.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\233A1B3F.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\26BE6ECF.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\272323CD.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2774452C.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\27C4668A.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\280F4BA5.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2B3F0AFE.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2BD8480D.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2C492CB5.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2ED44831.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2EDF7F93.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FF02EB0.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\32903E5F.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\350B60C8.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\367272F5.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\375E1ACD.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\384D6CA1.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\386A6E38.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\39C94BDA.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\39DB76A2.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3BDD466B.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3C2C2E5D.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3D1F2A2D.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3FAA45AA.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\41E56180.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\45BD1820.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\46B013F1.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\479F65C5.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\480A5706.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\481413D6.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4C727C2C.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4CAC1711.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\513006AB.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\550F1144.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\567C57FD.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\56EE34EC.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\57215C6B.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\57650CFB.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\57861169.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5BDA425C.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5D4979A4.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\60A64DA7.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\61A30892.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\645E606C.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\65DB7912.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\66914F6F.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\66D56091.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\67C53265.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\68AA0644.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6AA106F5.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6B1C6992.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6C9E1CC4.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\700244C1.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\717B11B3.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\71E358F8.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\725C6A73.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\73AC2F94.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\75301C33.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\76242FB8.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\779C6CAE.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\789805E1.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\798103BC.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7BEC1312.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7F446BF7.exe
c:\Documents and Settings\renegonde\Application Data\Microsoft\Installer\{9559F7CA-5E34-4237-A2D9-D856464AD727}\ARPPRODUCTICON.exe
c:\Documents and Settings\renegonde\Application Data\Microsoft\Installer\{9559F7CA-5E34-4237-A2D9-D856464AD727}\NewShortcut1_9559F7CA5E344237A2D9D856464AD727.exe
c:\Documents and Settings\renegonde\Application Data\Microsoft\Installer\{9559F7CA-5E34-4237-A2D9-D856464AD727}\Uninstall_Project64__9559F7CA5E344237A2D9D856464AD727.exe
c:\Documents and Settings\renegonde\Application Data\WholeSecurity\CAT\WSOOPScan.exe
c:\Documents and Settings\renegonde\Bureau\a2AntiMalwareSetup.exe
c:\Documents and Settings\renegonde\Bureau\ClearProg.exe
c:\Documents and Settings\renegonde\Bureau\CWShreddernettoyeur page dem.exe
c:\Documents and Settings\renegonde\Bureau\Defenza.exe
c:\Documents and Settings\renegonde\Bureau\HijackThisFR.exe
c:\Documents and Settings\renegonde\Bureau\IECacheCleaner.exe
c:\Documents and Settings\renegonde\Bureau\java 5.09 new.exe
c:\Documents and Settings\renegonde\Bureau\KillBox.exe
c:\Documents and Settings\renegonde\Bureau\speedupmypc3aff.exe
c:\Documents and Settings\renegonde\Bureau\VundoFix.exe
c:\Documents and Settings\renegonde\Bureau\alcohol 120\alcohol-120_alcohol_120_1.9.5_build_4521_francais_11016.exe
c:\Documents and Settings\renegonde\Bureau\codec dvd\sld.codec.pack.2.2.exe
c:\Documents and Settings\renegonde\Bureau\DiagHelp\diaghelp\blbetac.exe
c:\Documents and Settings\renegonde\Bureau\DiagHelp\diaghelp\FilesInfoCmd.exe
c:\Documents and Settings\renegonde\Bureau\DiagHelp\diaghelp\Fport.exe
c:\Documents and Settings\renegonde\Bureau\DiagHelp\diaghelp\grep.exe
c:\Documents and Settings\renegonde\Bureau\DiagHelp\diaghelp\LFiles.exe
c:\Documents and Settings\renegonde\Bureau\DiagHelp\diaghelp\LISTDLLS.exe
c:\Documents and Settings\renegonde\Bureau\DiagHelp\diaghelp\pslist.exe
c:\Documents and Settings\renegonde\Bureau\DiagHelp\diaghelp\streams.exe
c:\Documents and Settings\renegonde\Bureau\DiagHelp\diaghelp\swreg.exe
c:\Documents and Settings\renegonde\Bureau\ecran lcd\FP_Setup4.3.exe
c:\Documents and Settings\renegonde\Bureau\Nouveau dossier\epson24825eu.exe
c:\Documents and Settings\renegonde\Bureau\Nouveau dossier\epson27564eu.exe
c:\Documents and Settings\renegonde\Bureau\Nouveau dossier\epson28265eu.exe
c:\Documents and Settings\renegonde\Bureau\pilote asio\ASIO4ALL_2_7_English.exe
c:\Documents and Settings\renegonde\Bureau\pilote asio\visionneuse\XLVIEWER.EXE
c:\Documents and Settings\renegonde\Bureau\pilote asio\win rar\wrar361fr.exe
c:\Documents and Settings\renegonde\bureaux\nouveau dossier\Setup.exe
c:\Documents and Settings\renegonde\bureaux\nouveau dossier\Euro\setup.exe
c:\Documents and Settings\renegonde\bureaux\nouveau dossier\LIB\hhupd.exe
c:\Documents and Settings\renegonde\bureaux\nouveau dossier\SETUP\DEVICEOP.EXE
c:\Documents and Settings\renegonde\bureaux\nouveau dossier\SETUP\E_S1LAC2.EXE
c:\Documents and Settings\renegonde\bureaux\nouveau dossier\SETUP\E_SCHK03.EXE
c:\Documents and Settings\renegonde\bureaux\nouveau dossier\SETUP\OEMINF.EXE
c:\Documents and Settings\renegonde\bureaux\nouveau dossier\SETUP\SETUP.EXE
c:\Documents and Settings\renegonde\bureaux\nouveau dossier\vlc-0.8.5\vlc.exe
c:\Documents and Settings\All Users\Application Data\Microsoft\IdentityCRL\production\ppcrlconfig.dll
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1C681DE6.dll
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1C841172.dll
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1EAC2F17.dll
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\32312213.dll
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4CE94054.dll
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\521C16CD.dll
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6A9A32FC.dll
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6B7822E5.dll
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6B7B4CE2.dll
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6CB1618C.dll
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\722E1EA6.dll
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\72343B7C.dll
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\73FB40EA.dll
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7CC902FB.dll
0
Malekal_morte- Messages postés 180304 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   24 685
 
télécharges et installes :
Killbox de Option^Explicit https://www.bleepingcomputer.com/download/linux/
Aide Killbox : http://perso.wanadoo.fr/jesses/Docs/Logiciels/KillBox.htm


sélectionne entièrement la liste ci-dessous :

C:\WINDOWS\System32\winrge32.dll
C:\nwnmff_e51.exe
C:\windows_e51.exe


---> et tu fais clic droit / copier

Ouvres killbox
- Sélectionne "delete on reboot"
- Clique sur le menu "File" -> "Past from clip board"
- Clique sur All Files
- Clique sur la croix rouge et et blanche
- Répond yes et laisse redémarrer ton pc.
N'hésite pas à consulter l'[url=http://perso.wanadoo.fr/jesses/Docs/Logiciels/KillBox.htm]Aide killbox[/url]

[b]NOTE:[/b] Si tu reçois le message "PendingFileRenameOperations Registry Data has been removed by external process!" et que l'ordinateur ne redémarre pas, redémarre le manuellement ---> Menu Démarrer / arreter / redémarrer l'ordinateur


IMPORTANT : un dossier C:\!killbox doit être créé Si ce n'est pas le cas dis le nous!


Ensuite :

-- Télécharge SmitfraudFix[/url] de S!Ri, balltrap34 et moe31 http://siri.urz.free.fr/Fix/SmitfraudFix.zip
-- Fais un clic droit puis Extraire tout sur le fichier SmitfraudFix.zip, cela va tout décompresser dans un nouveau dossier SmitFraudfix
-- Redémarre en mode sans échec, si tu sais pas comment on fait lis ceci : http://forum.telecharger.01net.com/forum/high-tech/SECURITE/Securite/redemarrer-mode-echec-sujet_1526_1.htm
-- Ouvre le dossier SmitfraudFix double clic sur SmitfraudFix.cmd (ne
clique sur aucun autre fichier!!!)
-- Choisis l'option 2 et appuie sur Entrée
-- Réponds o (Oui) aux deux questions suivantes si elles sont posées
-- Un rapport sera généré sauvegarde le dans un dossier,


-- Redémarre en mode normal : Menu Démarrer / Arreter / Redémarre l'ordinateur
[b]Attention :[/b] dans le cas où l'ordinateur redémarre en boucle en mode sans échec, faire la manipulation inverse en décochant l'option /SAFEBOOT à l'aide de msconfig : voir à nouveau cette page : http://forum.telecharger.01net.com/forum/high-tech/SECURITE/Securite/redemarrer-mode-echec-sujet_1526_1.htm


Copie/colle le rapport ici.


Ouvre internet explorer --> Outils --> Options internet --> onglet "sécurité" --> Valide "niveau par défaut".
Toujours sur Internet explorer --> Outils --> Options internet --> onglet "avancé" --> valide "Paramètres par défaut".

Pour effectuer les scans, désactive ton antivirus, logiciels de protections et logiciels pouvant bloquer les popups (barres Google, barres Yahoo etc..).


Si le scan avec Kaspersky ne fonctionne pas, tu peux faire un scan en ligne avec Panda :
- Fais un scan panda : https://www.pandasecurity.com/?ref=www.pandasoftware.com/products/activescan.htm EN DESACTIVANT ton antivirus.
(Si tu es perdu, tu peux suivre ce tuto : https://www.malekal.com/scan-antivirus-ligne-nod32/#mozTocId237368
- Copie/colle le rapport panda ici
0
chapoline Messages postés 10 Date d'inscription   Statut Membre Dernière intervention  
 
bonjour.merci pour tes explications tres clair.hier soir, j'ai deja fait

un nettoyage avec smitfraudfix, dont en voici le rapport.

SmitFraudFix v2.119

Rapport fait à 1:13:05,62, 09/11/2006
Executé à partir de C:\Documents and Settings\renegonde\Bureau\SmitfraudFix
OS: Microsoft Windows XP [version 5.1.2600] - Windows_NT
Fix executé en mode sans echec

»»»»»»»»»»»»»»»»»»»»»»»» Avant SmitFraudFix
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll

»»»»»»»»»»»»»»»»»»»»»»»» Arret des processus


»»»»»»»»»»»»»»»»»»»»»»»» Generic Renos Fix

GenericRenosFix by S!Ri


»»»»»»»»»»»»»»»»»»»»»»»» Suppression des fichiers infectés

C:\WINDOWS\system32\issearch.exe supprimé
C:\WINDOWS\system32\ot.ico supprimé
C:\DOCUME~1\RENEGO~1\Favoris\Antivirus Test Online.url supprimé
C:\DOCUME~1\ALLUSE~1\MENUDM~1\Online Security Guide.url supprimé
C:\DOCUME~1\ALLUSE~1\MENUDM~1\Security Troubleshooting.url supprimé
C:\Program Files\iVideoCodec\ supprimé
C:\Program Files\VirusBursters\ supprimé

»»»»»»»»»»»»»»»»»»»»»»»» Suppression Fichiers Temporaires


»»»»»»»»»»»»»»»»»»»»»»»» Nettoyage du registre

Nettoyage terminé.

»»»»»»»»»»»»»»»»»»»»»»»» Après SmitFraudFix
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll


»»»»»»»»»»»»»»»»»»»»»»»» Fin

mais ce matin j'ai tout de meme fait ce que tu ma indiqué.j'ai

supprimé les fichiers avec killbox.et refait une desinfection avec

smitfraudix.voici le rapport:

SmitFraudFix v2.119

Rapport fait à 10:29:23,98, 09/11/2006
Executé à partir de C:\Documents and Settings\renegonde\Bureau\SmitfraudFix
OS: Microsoft Windows XP [version 5.1.2600] - Windows_NT
Fix executé en mode sans echec

»»»»»»»»»»»»»»»»»»»»»»»» Avant SmitFraudFix
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll

»»»»»»»»»»»»»»»»»»»»»»»» Arret des processus


»»»»»»»»»»»»»»»»»»»»»»»» Generic Renos Fix

GenericRenosFix by S!Ri


»»»»»»»»»»»»»»»»»»»»»»»» Suppression des fichiers infectés


»»»»»»»»»»»»»»»»»»»»»»»» Suppression Fichiers Temporaires


»»»»»»»»»»»»»»»»»»»»»»»» Nettoyage du registre

Nettoyage terminé.

»»»»»»»»»»»»»»»»»»»»»»»» Après SmitFraudFix
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll


»»»»»»»»»»»»»»»»»»»»»»»» Fin

voila, la je vais faire le scan en ligne et je te retient au courant
0
chapoline
 
alors volia le rapport de panda


Incident Statut Analyse

Dialer:Dialer.IBW No Désinfecté C:\!KillBox\win177.tmp
Dialer:Dialer.IBW No Désinfecté C:\!KillBox\win2Ec.tmp
Dialer:Dialer.IBW No Désinfecté C:\!KillBox\win2EC.tmp( 1)
Dialer:Dialer.IBW No Désinfecté C:\!KillBox\win2EC.tmp( 2)
Dialer:Dialer.IBW No Désinfecté C:\!KillBox\win6F.tmp
Dialer:Dialer.IBW No Désinfecté C:\!KillBox\winb9.tmp
Dialer:Dialer.IBW No Désinfecté C:\!KillBox\winfd.tmp
Adware:Adware/DollarRevenue No Désinfecté C:\!KillBox\winrge32.dll
Adware:Adware/DollarRevenue No Désinfecté C:\ac3_0010.exe
Outil indésirable:Application/Processor No Désinfecté C:\Documents and Settings\renegonde\Bureau\SmitfraudFix\Process.exe
Virus Eventuel. No Désinfecté C:\Documents and Settings\renegonde\Bureau\SmitfraudFix\swsc.exe
Outil indésirable:Application/Processor No Désinfecté C:\Documents and Settings\renegonde\Bureau\SmitfraudFix.zip[SmitfraudFix/Process.exe]
Virus Eventuel. No Désinfecté C:\Documents and Settings\renegonde\Bureau\SmitfraudFix.zip[SmitfraudFix/swsc.exe]
Virus Eventuel. No Désinfecté C:\VundoFix Backups\ddcya.dll.bad
Virus Eventuel. No Désinfecté C:\WINDOWS\system32\iifgede.dll
Outil indésirable:Application/Processor No Désinfecté C:\WINDOWS\system32\Process.exe
Virus Eventuel. No Désinfecté C:\WINDOWS\system32\swsc.exe
Dialer:Dialer.IBW No Désinfecté C:\WINDOWS\temp\win1D5.tmp.exe
Dialer:Dialer.IBW No Désinfecté C:\WINDOWS\temp\win2BE.tmp.exe
Dialer:Dialer.IBW No Désinfecté C:\WINDOWS\temp\win5B3.tmp.exe
Dialer:Dialer.IBW No Désinfecté C:\WINDOWS\temp\win63B.tmp.exe
Dialer:Dialer.IBW No Désinfecté C:\WINDOWS\temp\winAA.tmp.exe
Adware:Adware/SuperSpider No Désinfecté D:\Program Files\FireBurner\FireBurner v2[1].1.1 .rar[crack.exe]
Tjrs ce fameux dialer.je ne comprend pas il me met que fireburner est infecté, est ce par ce qu'il est ou juste parce que le scan ,lui, le detecte comme ca.
0
chapoline
 
je me permet de te remettre quelques rapports car j'ai fais quelques
modifs depuis le precedent.et quand je fais un scan avec spyboot,il

ne trouve rien. Mais je ne suis pas sur qu'il n'y est plus de

virus.
Par compte, rien a voir, peux tu me dire si je me trompe:exemple

c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6B7822E5.dll
\7CC902FB.dll

la, les fichiers dll qui sont apres quarantine sont des virus et en fait

la il me les detecte car il sont en quarantaine.idem quand je vois dans les rapports:

Dialer:Dialer.IBW No Désinfecté C:\!KillBox\win177.tmp

en fait il me dit qu'il na pas desinfecté killbox parce que pour

effacer ses virus il faut desintaller killbox.enfin je crois.*

la je voudrais savoir si j'ai bien compris,si c'est pas du tout ca, merci de me le dire.car ca m'interesse de comprendre.

voila je te post les rapports:
celui-ci de diag:
2006 15:58:32
C:\WINDOWS\System32\tmp.txt -->09/11/2006 15:26:20
C:\WINDOWS\System32\tmp.reg -->09/11/2006 15:26:20
C:\WINDOWS\System32\Uninstall.ico -->09/11/2006 13:15:18
C:\WINDOWS\System32\pavas.ico -->09/11/2006 13:15:18
C:\WINDOWS\System32\Help.ico -->09/11/2006 13:15:18
C:\WINDOWS\System32\asfiles.txt -->09/11/2006 11:10:39
C:\WINDOWS\System32\jupdate-1.5.0_09-b03.log -->08/11/2006 18:00:19
C:\WINDOWS\System32\118290.54 -->08/11/2006 12:30:20
C:\WINDOWS\System32\ixt0.dll_tobedeleted -->07/11/2006 22:03:26
C:\WINDOWS\System32\wpa.dbl -->07/11/2006 18:30:29
C:\WINDOWS\System32\iifgede.dll -->07/11/2006 16:40:45
C:\WINDOWS\System32\Wnccdctl.log -->07/11/2006 15:21:51
C:\WINDOWS\System32\DVCState-{00000003-00000000-00000007-00001102-00000008-40021102}.rfx -->05/11/2006 14:15:34
C:\WINDOWS\System32\BMXStateBkp-{00000003-00000000-00000007-00001102-00000008-40021102}.rfx -->05/11/2006 14:15:34
C:\WINDOWS\System32\BMXState-{00000003-00000000-00000007-00001102-00000008-40021102}.rfx -->05/11/2006 14:15:34
C:\WINDOWS\System32\BMXCtrlState-{00000003-00000000-00000007-00001102-00000008-40021102}.rfx -->05/11/2006 14:15:34
C:\WINDOWS\System32\BMXBkpCtrlState-{00000003-00000000-00000007-00001102-00000008-40021102}.rfx -->05/11/2006 14:15:34
C:\WINDOWS\System32\perfh00C.dat -->29/10/2006 18:25:35
C:\WINDOWS\System32\perfh009.dat -->29/10/2006 18:25:35
C:\WINDOWS\System32\perfc00C.dat -->29/10/2006 18:25:35
C:\WINDOWS\System32\perfc009.dat -->29/10/2006 18:25:35
C:\WINDOWS\System32\PerfStringBackup.INI -->29/10/2006 18:25:34
C:\WINDOWS\System32\LoopyMusic.wav -->23/10/2006 13:56:01
C:\WINDOWS\System32\BuzzingBee.wav -->23/10/2006 13:56:01

C:\WINDOWS\WindowsUpdate.log -->09/11/2006 15:58:17
C:\WINDOWS\wiadebug.log -->09/11/2006 15:58:12
C:\WINDOWS\wiaservc.log -->09/11/2006 15:58:09
C:\WINDOWS\Sti_Trace.log -->09/11/2006 15:58:09
C:\WINDOWS\SchedLgU.Txt -->09/11/2006 15:57:47
C:\WINDOWS\0.log -->09/11/2006 15:57:37
C:\WINDOWS\bootstat.dat -->09/11/2006 15:57:32
C:\WINDOWS\pavsig.txt -->09/11/2006 13:15:24
C:\WINDOWS\win.ini -->09/11/2006 11:10:13
C:\WINDOWS\NeroDigital.ini -->08/11/2006 22:31:04
C:\WINDOWS\118294.78 -->08/11/2006 12:30:20
C:\WINDOWS\eReg.dat -->07/11/2006 17:26:19
C:\WINDOWS\ALCFDRTM.VER -->23/10/2006 13:56:01
C:\WINDOWS\ALCFDRTM.EXE -->23/10/2006 13:56:01
C:\WINDOWS\EPSMTL32.TXT -->15/10/2006 17:14:03

C:\WINDOWS\ALAUNCH.EXE |Acer Inc. |16/03/2006 14:56:22
C:\WINDOWS\ALCFDRTM.EXE |Realtek Semiconductor Corp. |23/10/2006 13:56:01
C:\WINDOWS\Alcohol_Toolbar_Uninstaller_6921.exe |Alcohol Soft |11/10/2006 19:25:04
C:\WINDOWS\alcrmv.exe |Realtek Semiconductor Corp. |09/09/2005 17:39:00
C:\WINDOWS\alcupd.exe |Realtek Semiconductor Corp. |12/08/2005 19:40:00
C:\WINDOWS\AMOVE.EXE |COMPANY |24/05/2002 01:34:46
C:\WINDOWS\APANEL.EXE |Acer Inc. |30/05/2002 23:24:48
C:\WINDOWS\bdoscandel.exe |COMPANY |25/05/2006 01:22:06
C:\WINDOWS\CTHELPER.EXE |Creative Technology Ltd |24/05/2005 09:28:18
C:\WINDOWS\Ctregrun.exe |Creative Technology Ltd |10/10/2006 22:04:09
C:\WINDOWS\IsUninst.exe |InstallShield Software Corporation |11/10/2006 17:32:19
C:\WINDOWS\lsb_un20.exe |COMPANY |18/09/2002 00:45:00
C:\WINDOWS\MIDIDEF.EXE |Creative Technology Ltd |24/05/2005 09:17:46
C:\WINDOWS\PowerOption.exe |COMPANY |10/10/2006 21:08:24
C:\WINDOWS\PSCONV.EXE |COMPANY |24/05/2005 09:28:18
C:\WINDOWS\READREG.EXE |Creative Technology Limited |24/05/2005 09:28:20
C:\WINDOWS\soundman.exe |Realtek Semiconductor Corp. |22/09/2005 17:42:00
C:\WINDOWS\twunk_16.exe |Twain Working Group |05/08/2004 06:00:00
C:\WINDOWS\twunk_32.exe |Twain Working Group |05/08/2004 06:00:00
C:\WINDOWS\UNNeroBackItUp.exe |Nero AG |14/07/2006 16:29:44
C:\WINDOWS\UNNeroMediaHome.exe |Nero AG |14/07/2006 16:29:44
C:\WINDOWS\UNNeroShowTime.exe |Nero AG |14/07/2006 16:29:44
C:\WINDOWS\UNNeroVision.exe |Nero AG |14/07/2006 16:29:44
C:\WINDOWS\UNRecode.exe |Nero AG |14/07/2006 16:29:44
C:\WINDOWS\Updreg.EXE |Creative Technology Ltd. |12/10/2006 20:25:13
C:\WINDOWS\CTDCRES.DLL |Creative Technology Ltd |24/05/2005 09:28:06
C:\WINDOWS\INRES.DLL |Creative Technology Limited |12/10/2006 20:22:24
C:\WINDOWS\PCDLIB32.DLL |Eastman Kodak |10/10/2006 21:10:21
C:\WINDOWS\twain.dll |Groupe de travail Twain |05/08/2004 06:00:00
C:\WINDOWS\twain_32.dll |Groupe de travail Twain |05/08/2004 06:00:00
C:\WINDOWS\WRUninstall.dll |Webroot Software, Inc |07/11/2006 22:00:03
C:\WINDOWS\system32\append.exe |COMPANY |05/08/2004 06:00:00
C:\WINDOWS\system32\asuninst.exe |Panda Software |09/11/2006 11:07:51
C:\WINDOWS\system32\CapabilityTable.exe |NVIDIA Corporation |28/09/2005 10:10:42
C:\WINDOWS\system32\ChCfg.exe |COMPANY |15/07/2005 17:48:00
C:\WINDOWS\system32\CheckD2DSystem.exe |Acer Inc. |10/10/2006 21:13:36
C:\WINDOWS\system32\ClearEvent.exe |COMPANY |10/10/2006 21:13:36
C:\WINDOWS\system32\debug.exe |COMPANY |05/08/2004 06:00:00
C:\WINDOWS\system32\dosx.exe |COMPANY |05/08/2004 06:00:00
C:\WINDOWS\system32\dvdplay.exe |COMPANY |05/08/2004 06:00:00
C:\WINDOWS\system32\edlin.exe |COMPANY |05/08/2004 06:00:00
C:\WINDOWS\system32\exe2bin.exe |COMPANY |05/08/2004 06:00:00
C:\WINDOWS\system32\fastopen.exe |COMPANY |05/08/2004 06:00:00
C:\WINDOWS\system32\InsD1211.exe |Windows (R) 2000 DDK provider |19/11/2004 23:38:40
C:\WINDOWS\system32\InsD1215.exe |Windows (R) 2000 DDK provider |15/11/2005 21:13:28
C:\WINDOWS\system32\java.exe |Sun Microsystems, Inc. |08/11/2006 18:00:55
C:\WINDOWS\system32\javaw.exe |Sun Microsystems, Inc. |08/11/2006 18:00:55
C:\WINDOWS\system32\javaws.exe |Sun Microsystems, Inc. |08/11/2006 18:00:55
C:\WINDOWS\system32\KCMDNIns.exe |COMPANY |06/08/2003 18:32:24
C:\WINDOWS\system32\keystone.exe |COMPANY |11/10/2006 05:59:18
C:\WINDOWS\system32\Kill1211.exe |COMPANY |16/11/2005 21:11:52
C:\WINDOWS\system32\KILLAPPS.EXE |COMPANY |24/05/2005 09:18:00
C:\WINDOWS\system32\Machnm1.exe |COMPANY |08/11/2006 12:30:15
C:\WINDOWS\system32\mem.exe |COMPANY |05/08/2004 06:00:00
C:\WINDOWS\system32\mscdexnt.exe |COMPANY |05/08/2004 06:00:00
C:\WINDOWS\system32\nlsfunc.exe |COMPANY |05/08/2004 06:00:00
C:\WINDOWS\system32\nvappbar.exe |COMPANY |11/10/2006 05:59:19
C:\WINDOWS\system32\nvcolor.exe |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvcplui.exe |NVIDIA Corporation |01/06/2006 10:22:00
C:\WINDOWS\system32\nvdspsch.exe |COMPANY |11/10/2006 05:59:19
C:\WINDOWS\system32\nvsvc32.exe |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvudisp.exe |NVIDIA Corporation |10/10/2006 21:32:19
C:\WINDOWS\system32\NVUNINST.EXE |NVIDIA Corporation |22/02/2006 13:59:56
C:\WINDOWS\system32\nvunrm.exe |NVIDIA Corporation |22/02/2006 13:59:56
C:\WINDOWS\system32\nvusmb.exe |NVIDIA Corporation |22/02/2006 13:59:56
C:\WINDOWS\system32\nwiz.exe |COMPANY |11/10/2006 05:59:20
C:\WINDOWS\system32\OALINST.EXE |Creative Labs Inc. |24/03/2005 03:23:46
C:\WINDOWS\system32\Process.exe |https://www.beyondlogic.org/ |09/11/2006 01:03:05
C:\WINDOWS\system32\reboot.exe |COMPANY |07/08/2003 08:51:32
C:\WINDOWS\system32\redir.exe |COMPANY |05/08/2004 06:00:00
C:\WINDOWS\system32\REGPLIB.EXE |COMPANY |24/05/2005 09:20:16
C:\WINDOWS\system32\RemD1211.exe |Windows (R) 2000 DDK provider |20/11/2004 01:42:04
C:\WINDOWS\system32\RemD1215.exe |Windows (R) 2000 DDK provider |15/11/2005 21:15:30
C:\WINDOWS\system32\rescan.exe |Windows (R) 2000 DDK provider |30/08/2004 00:37:26
C:\WINDOWS\system32\RTLCPL.exe |Realtek Semiconductor Corp. |22/09/2005 19:28:00
C:\WINDOWS\system32\setver.exe |COMPANY |05/08/2004 06:00:00
C:\WINDOWS\system32\share.exe |COMPANY |05/08/2004 06:00:00
C:\WINDOWS\system32\SrchSTS.exe |S!Ri |09/11/2006 01:03:05
C:\WINDOWS\system32\ssiefr.EXE |Webroot Software Inc (www.webroot.com) |07/11/2006 22:00:03
C:\WINDOWS\system32\swreg.exe |SteelWerX |09/11/2006 01:03:05
C:\WINDOWS\system32\swsc.exe |COMPANY |09/11/2006 01:03:05
C:\WINDOWS\system32\SysMonitor.exe |COMPANY |10/10/2006 21:11:19
C:\WINDOWS\system32\Uninstall_eRecovery.exe |Acer Inc. |10/10/2006 21:13:36
C:\WINDOWS\system32\usrmlnka.exe |U.S. Robotics Corporation |05/08/2004 06:00:00
C:\WINDOWS\system32\usrprbda.exe |U.S. Robotics Corporation |05/08/2004 06:00:00
C:\WINDOWS\system32\usrshuta.exe |U.S. Robotics Corporation |05/08/2004 06:00:00
C:\WINDOWS\system32\ZyDelReg.exe |COMPANY |14/03/2003 11:24:00
C:\WINDOWS\system32\a3d.dll |COMPANY |10/10/2006 21:44:00
C:\WINDOWS\system32\AC3API.DLL |Creative Technology Ltd |24/05/2005 09:28:28
C:\WINDOWS\system32\Acer.Empowering.Windows.Forms.dll |acer inc. |10/10/2006 21:11:19
C:\WINDOWS\system32\amstream.dll |COMPANY |05/08/2004 06:00:00
C:\WINDOWS\system32\atmfd.dll |Adobe Systems Incorporated |05/08/2004 06:00:00
C:\WINDOWS\system32\atmlib.dll |Adobe Systems |05/08/2004 06:00:00
C:\WINDOWS\system32\bdco1.dll |NVIDIA Corporation |03/03/2006 12:29:26
C:\WINDOWS\system32\bdco1ins.dll |NVIDIA Corporation |03/03/2006 12:29:26
C:\WINDOWS\system32\CloseProcessWindow.dll |acer inc. |10/10/2006 21:13:36
C:\WINDOWS\system32\commonfx.dll |Creative Technology Ltd |12/10/2006 19:56:44
C:\WINDOWS\system32\compatUI.dll |COMPANY |05/08/2004 06:00:00
C:\WINDOWS\system32\CRLDS3D.DLL |Sensaura Ltd |07/07/2004 09:13:42
C:\WINDOWS\system32\CTAGENT.DLL |Creative Technology Ltd |24/05/2005 09:28:16
C:\WINDOWS\system32\CTASIO.DLL |Creative Technology Ltd |24/05/2005 09:20:56
C:\WINDOWS\system32\ctaudfx.dll |Creative Technology Ltd |12/10/2006 19:56:45
C:\WINDOWS\system32\CTBURST.DLL |COMPANY |24/05/2005 09:29:30
C:\WINDOWS\system32\ctcoinst.dll |Creative Technology Limited |12/10/2006 19:56:47
C:\WINDOWS\system32\CTDC0000.DLL |Creative Technology Ltd |24/05/2005 09:28:06
C:\WINDOWS\system32\CTDC0001.DLL |Creative Technology Ltd |24/05/2005 09:28:08
C:\WINDOWS\system32\CTDCIFCE.DLL |Creative Technology Ltd |24/05/2005 09:28:08
C:\WINDOWS\system32\ctdproxy.dll |Creative Technology Ltd |12/10/2006 19:56:46
C:\WINDOWS\system32\ctdvinst.dll |Creative Technology Limited |12/10/2006 19:56:48
C:\WINDOWS\system32\cteapsfx.dll |Creative Technology Ltd |12/10/2006 19:56:46
C:\WINDOWS\system32\CTEDASIO.DLL |Creative Technology, Ltd |24/05/2005 09:20:58
C:\WINDOWS\system32\CTEDSPFX.DLL |Creative Technology Ltd |24/05/2005 09:21:08
C:\WINDOWS\system32\CTEDSPIO.DLL |Creative Technology Ltd |24/05/2005 09:21:16
C:\WINDOWS\system32\CTEDSPSY.DLL |Creative Technology Ltd |24/05/2005 09:23:54
C:\WINDOWS\system32\ctemupia.dll |Creative Technology Ltd |12/10/2006 19:56:46
C:\WINDOWS\system32\CTMMACTL.DLL |COMPANY |24/05/2005 09:31:22
C:\WINDOWS\system32\CTMMEP.DLL |Creative Technology Ltd |24/05/2005 09:28:14
C:\WINDOWS\system32\CTOSUSER.DLL |Creative Technology Ltd |24/05/2005 09:20:24
C:\WINDOWS\system32\CTPCMCIA.DLL |Creative Technology Ltd |24/05/2005 09:28:14
C:\WINDOWS\system32\CTPRES.DLL |Creative Technology Ltd |24/05/2005 09:28:10
C:\WINDOWS\system32\ctsblfx.dll |Creative Technology Ltd |12/10/2006 19:56:45
C:\WINDOWS\system32\CTSCAL.DLL |Creative Technology Ltd |24/05/2005 09:28:08
C:\WINDOWS\system32\CTSPKHLP.DLL |Creative Technology Ltd |24/05/2005 09:28:16
C:\WINDOWS\system32\CTTHXCAL.DLL |Creative Technology Ltd |24/05/2005 09:28:10
C:\WINDOWS\system32\CT_OAL.DLL |Creative Technology Ltd |24/05/2005 09:20:58
C:\WINDOWS\system32\DEVREG.DLL |Creative Technology Ltd |24/05/2005 09:17:46
C:\WINDOWS\system32\dgrpsetu.dll |Digi International, Inc. |05/08/2004 06:00:00
C:\WINDOWS\system32\dgsetup.dll |Digi International |05/08/2004 06:00:00
C:\WINDOWS\system32\EAXAC3.DLL |Creative Labs |11/07/2001 03:51:00
C:\WINDOWS\system32\encdec.dll |COMPANY |05/08/2004 06:00:00
C:\WINDOWS\system32\EPPicMgr.dll |SEIKO EPSON CORPORATION |15/10/2006 16:50:45
C:\WINDOWS\system32\EpPicPrt.dll |SEIKO EPSON CORPORATION |15/10/2006 16:50:46
C:\WINDOWS\system32\EqnClass.Dll |Equinox Systems Inc. |05/08/2004 06:00:00
C:\WINDOWS\system32\eRecUtil.dll |Acer Inc. |10/10/2006 21:11:21
C:\WINDOWS\system32\esccmd.dll |SEIKO EPSON CORP. |15/10/2006 16:51:10
C:\WINDOWS\system32\escimgd.dll |SEIKO EPSON CORP. |15/10/2006 16:51:10
C:\WINDOWS\system32\escwiad.dll |SEIKO EPSON CORP. |15/10/2006 16:51:10
C:\WINDOWS\system32\E_DCINST.DLL |SEIKO EPSON CORP. |15/10/2006 16:50:16
C:\WINDOWS\system32\E_FBCBACE.DLL |SEIKO EPSON CORPORATION |15/10/2006 16:50:15
C:\WINDOWS\system32\E_FBCHACE.DLL |SEIKO EPSON CORPORATION |15/10/2006 16:50:15
C:\WINDOWS\system32\E_FLMACE.DLL |SEIKO EPSON CORPORATION |15/10/2006 16:50:15
C:\WINDOWS\system32\fdco1.dll |NVIDIA Corporation |03/03/2006 12:29:42
C:\WINDOWS\system32\fdco1ins.dll |NVIDIA Corporation |03/03/2006 12:29:42
C:\WINDOWS\system32\fdco_l1028.dll |NVIDIA Corporation |03/03/2006 12:29:48
C:\WINDOWS\system32\fdco_l1031.dll |NVIDIA Corporation |03/03/2006 12:29:54
C:\WINDOWS\system32\fdco_l1034.dll |NVIDIA Corporation |03/03/2006 12:30:02
C:\WINDOWS\system32\fdco_l1036.dll |NVIDIA Corporation |03/03/2006 12:29:52
C:\WINDOWS\system32\fdco_l1040.dll |NVIDIA Corporation |03/03/2006 12:29:54
C:\WINDOWS\system32\fdco_l1041.dll |NVIDIA Corporation |03/03/2006 12:29:56
C:\WINDOWS\system32\fdco_l1042.dll |NVIDIA Corporation |03/03/2006 12:29:58
C:\WINDOWS\system32\fdco_l1046.dll |NVIDIA Corporation |03/03/2006 12:30:00
C:\WINDOWS\system32\fdco_l2052.dll |NVIDIA Corporation |03/03/2006 12:29:50
C:\WINDOWS\system32\Hmpg12.dll |COMPANY |03/09/2001 22:46:38
C:\WINDOWS\system32\HMPV2_ENC.dll |COMPANY |30/07/2001 15:33:56
C:\WINDOWS\system32\HMPV2_ENC_MMX.dll |COMPANY |23/07/2001 21:04:36
C:\WINDOWS\system32\hticons.dll |Hilgraeve, Inc. |05/08/2004 06:00:00
C:\WINDOWS\system32\hypertrm.dll |Hilgraeve, Inc. |17/11/2004 18:42:34
C:\WINDOWS\system32\iccvid.dll |Radius Inc. |05/08/2004 06:00:00
C:\WINDOWS\system32\idecoi.dll |NVIDIA Corporation |12/08/2005 15:31:12
C:\WINDOWS\system32\ieencode.dll |COMPANY |05/08/2004 06:00:00
C:\WINDOWS\system32\iifgede.dll |COMPANY |07/11/2006 16:40:45
C:\WINDOWS\system32\imagX7.dll |Pegasus Imaging Corp. |26/07/2004 16:16:10
C:\WINDOWS\system32\imagXpr7.dll |Pegasus Imaging Corp. |26/07/2004 16:16:10
C:\WINDOWS\system32\imagXR7.dll |Pegasus Imaging Corp. |26/07/2004 16:16:10
C:\WINDOWS\system32\imagXRA7.dll |Pegasus Imaging Corp. |26/07/2004 16:16:10
C:\WINDOWS\system32\InsDrvZD.dll |COMPANY |23/03/2004 15:38:00
C:\WINDOWS\system32\InsDrvZD64.DLL |COMPANY |12/07/2005 13:44:42
C:\WINDOWS\system32\Interop.Shell32.dll |COMPANY |10/10/2006 21:11:19
C:\WINDOWS\system32\Ir32_32.dll |COMPANY |07/11/1995 13:46:00
C:\WINDOWS\system32\Ir41_qc.dll |Intel Corporation. |22/03/1998 14:34:14
C:\WINDOWS\system32\Ir41_qcx.dll |Intel Corporation. |22/03/1998 14:34:14
C:\WINDOWS\system32\Ir50_32.dll |Intel Corporation |17/05/1999 14:12:56
C:\WINDOWS\system32\ir50_lcs.dll |Intel Corporation. |06/11/1997 13:53:30
C:\WINDOWS\system32\Ir50_qc.dll |Intel Corporation. |07/10/1998 16:46:18
C:\WINDOWS\system32\Ir50_qcx.dll |Intel Corporation. |07/10/1998 16:50:22
C:\WINDOWS\system32\isrdbg32.dll |Intel Corporation |05/08/2004 06:00:00
C:\WINDOWS\system32\ixt0.dll_tobedeleted |COMPANY |07/11/2006 16:49:29
C:\WINDOWS\system32\jgaw400.dll |Johnson-Grace Company |05/08/2004 06:00:00
C:\WINDOWS\system32\jgdw400.dll |America Online |05/08/2004 06:00:00
C:\WINDOWS\system32\jgmd400.dll |Johnson-Grace Company |05/08/2004 06:00:00
C:\WINDOWS\system32\jgpl400.dll |Johnson-Grace Company |05/08/2004 06:00:00
C:\WINDOWS\system32\jgsd400.dll |America Online |05/08/2004 06:00:00
C:\WINDOWS\system32\jgsh400.dll |Johnson-Grace Company |05/08/2004 06:00:00
C:\WINDOWS\system32\mdwmdmsp.dll |RioPort |05/08/2004 06:00:00
C:\WINDOWS\system32\MMSwitch.dll |COMPANY |15/11/2002 13:11:26
C:\WINDOWS\system32\msdmo.dll |COMPANY |05/08/2004 06:00:00
C:\WINDOWS\system32\msencode.dll |COMPANY |05/08/2004 06:00:00
C:\WINDOWS\system32\multiplex_vcd.dll |COMPANY |26/12/2001 15:12:30
C:\WINDOWS\system32\MWLPS.dll |COMPANY |15/05/2006 16:55:04
C:\WINDOWS\system32\NeroCo.dll |Ahead Software AG
im Stoeckmaedle 18
76307 Karlsbad, Germany
Fax: ++49-7248-911-888
e-mail: info@nero.com |16/02/2005 14:18:04
C:\WINDOWS\system32\NTIBUN4.dll |COMPANY |15/05/2006 16:53:38
C:\WINDOWS\system32\NTICDMK7.dll |COMPANY |15/05/2006 16:52:34
C:\WINDOWS\system32\NTIFCD3.dll |COMPANY |15/05/2006 16:52:34
C:\WINDOWS\system32\NTIMP3.dll |COMPANY |15/05/2006 16:52:34
C:\WINDOWS\system32\NTIMPEG2.dll |COMPANY |15/05/2006 16:52:34
C:\WINDOWS\system32\nv4_disp.dll |NVIDIA Corporation |01/06/2006 10:22:00
C:\WINDOWS\system32\nvapi.dll |COMPANY |11/10/2006 05:59:19
C:\WINDOWS\system32\nvcod.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvcodins.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvconrm.dll |NVIDIA Corporation |22/02/2006 14:00:24
C:\WINDOWS\system32\nvcpl.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvcpluir.dll |NVIDIA Corporation |01/06/2006 10:22:00
C:\WINDOWS\system32\nvdisps.dll |NVIDIA Corporation |01/06/2006 10:22:00
C:\WINDOWS\system32\nvdispsr.dll |NVIDIA Corporation |01/06/2006 10:22:00
C:\WINDOWS\system32\nvexpbar.dll |NVIDIA Corporation |01/06/2006 10:22:00
C:\WINDOWS\system32\nvgames.dll |NVIDIA Corporation |01/06/2006 10:22:00
C:\WINDOWS\system32\nvgamesr.dll |NVIDIA Corporation |01/06/2006 10:22:00
C:\WINDOWS\system32\nvhwvid.dll |COMPANY |11/10/2006 05:59:19
C:\WINDOWS\system32\nview.dll |COMPANY |11/10/2006 05:59:19
C:\WINDOWS\system32\nvmccs.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvmccsrs.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvmccss.dll |NVIDIA Corporation |01/06/2006 10:22:00
C:\WINDOWS\system32\nvmccssr.dll |NVIDIA Corporation |01/06/2006 10:22:00
C:\WINDOWS\system32\nvmctray.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvmobls.dll |NVIDIA Corporation |01/06/2006 10:22:00
C:\WINDOWS\system32\nvmoblsr.dll |NVIDIA Corporation |01/06/2006 10:22:00
C:\WINDOWS\system32\nvnt4cpl.dll |COMPANY |11/10/2006 05:59:19
C:\WINDOWS\system32\nvoglnt.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvraidco.dll |NVIDIA Corporation |12/08/2005 15:31:16
C:\WINDOWS\system32\nvraiins.dll |NVIDIA Corporation |12/08/2005 15:31:16
C:\WINDOWS\system32\nvrsar.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvrscs.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvrsda.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvrsde.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvrsel.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvrseng.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvrses.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvrsesm.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvrsfi.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvrsfr.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvrshe.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvrshu.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvrsit.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvrsja.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvrsko.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvrsnl.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvrsno.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvrspl.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvrspt.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvrsptb.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvrsru.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvrssk.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvrssl.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvrssv.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvrstr.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvrszhc.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvrszht.dll |NVIDIA Corporation |11/10/2006 05:59:19
C:\WINDOWS\system32\nvshell.dll |COMPANY |11/10/2006 05:59:19
C:\WINDOWS\system32\nvvitvs.dll |NVIDIA Corporation |01/06/2006 10:22:00
C:\WINDOWS\system32\nvvitvsr.dll |NVIDIA Corporation |01/06/2006 10:22:00
C:\WINDOWS\system32\nvwddi.dll |NVIDIA Corporation |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwdmcpl.dll |COMPANY |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwimg.dll |COMPANY |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwrsar.dll |NVIDIA Corporation |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwrscs.dll |NVIDIA Corporation |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwrsda.dll |NVIDIA Corporation |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwrsde.dll |NVIDIA Corporation |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwrsel.dll |NVIDIA Corporation |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwrseng.dll |NVIDIA Corporation |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwrses.dll |NVIDIA Corporation |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwrsesm.dll |NVIDIA Corporation |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwrsfi.dll |NVIDIA Corporation |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwrsfr.dll |NVIDIA Corporation |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwrshe.dll |NVIDIA Corporation |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwrshu.dll |NVIDIA Corporation |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwrsit.dll |NVIDIA Corporation |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwrsja.dll |NVIDIA Corporation |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwrsko.dll |NVIDIA Corporation |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwrsnl.dll |NVIDIA Corporation |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwrsno.dll |NVIDIA Corporation |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwrspl.dll |NVIDIA Corporation |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwrspt.dll |NVIDIA Corporation |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwrsptb.dll |NVIDIA Corporation |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwrsru.dll |NVIDIA Corporation |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwrssk.dll |NVIDIA Corporation |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwrssl.dll |NVIDIA Corporation |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwrssv.dll |NVIDIA Corporation |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwrstr.dll |NVIDIA Corporation |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwrszhc.dll |NVIDIA Corporation |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwrszht.dll |NVIDIA Corporation |11/10/2006 05:59:20
C:\WINDOWS\system32\nvwss.dll |NVIDIA Corporation |01/06/2006 10:22:00
C:\WINDOWS\system32\nvwssr.dll |NVIDIA Corporation |01/06/2006 10:22:00
C:\WINDOWS\system32\ogg.dll |COMPANY |14/12/2002 22:46:02
C:\WINDOWS\system32\oggDS.dll |COMPANY |14/12/2002 22:46:02
C:\WINDOWS\system32\OpenAL32.dll |NVIDIA Corporation |10/10/2006 21:44:58
C:\WINDOWS\system32\paqsp.dll |COMPANY |05/08/2004 06:00:00
C:\WINDOWS\system32\piaproxy.dll |Creative Technology Ltd |12/10/2006 19:56:46
C:\WINDOWS\system32\PICEntry.dll |SEIKO EPSON CORPORATION |15/10/2006 16:50:46
C:\WINDOWS\system32\PICSDK.dll |SEIKO EPSON CORPORATION |15/10/2006 16:50:46
C:\WINDOWS\system32\PICSDK2.dll |SEIKO EPSON CORPORATION |15/10/2006 16:50:46
C:\WINDOWS\system32\pvmjpg21.dll |Pegasus Imaging Corporation |12/12/2002 15:33:20
C:\WINDOWS\system32\qedwipes.dll |COMPANY |05/08/2004 06:00:00
C:\WINDOWS\system32\ReWire.dll |Propellerhead Software AB |11/10/2006 18:48:28
C:\WINDOWS\system32\REX Shared Library.dll |Propellerhead Software AB |11/10/2006 18:48:28
C:\WINDOWS\system32\RtlCPAPI.dll |COMPANY |16/09/2005 15:14:00
C:\WINDOWS\system32\S32EVNT1.DLL |Symantec Corporation |10/10/2006 21:14:51
C:\WINDOWS\system32\sbe.dll |COMPANY |05/08/2004 06:00:00
C:\WINDOWS\system32\ScrollBarLib.dll |COMPANY |10/10/2006 21:11:19
C:\WINDOWS\system32\SFMAN32.DLL |Creative Technology Ltd |24/05/2005 09:20:22
C:\WINDOWS\system32\SFMS32.DLL |Creative Technology Ltd |24/05/2005 09:20:20
C:\WINDOWS\system32\slbcsp.dll |Schlumberger Technology Corporation |05/08/2004 06:00:00
C:\WINDOWS\system32\slbiop.dll |Schlumberger Technology Corporation |05/08/2004 06:00:00
C:\WINDOWS\system32\slbrccsp.dll |Schlumberger Technology Corporation |05/08/2004 06:00:00
C:\WINDOWS\system32\spnike.dll |S3/Diamond Multimedia |05/08/2004 06:00:00
C:\WINDOWS\system32\sprio600.dll |S3/Diamond Multimedia |05/08/2004 06:00:00
C:\WINDOWS\system32\sprio800.dll |S3/Diamond Multimedia |05/08/2004 06:00:00
C:\WINDOWS\system32\spxcoins.dll |Perle Systems Ltd. |05/08/2004 06:00:00
C:\WINDOWS\system32\SymNeti.dll |Symantec Corporation |07/08/2006 15:02:32
C:\WINDOWS\system32\SymRedir.dll |Symantec Corporation |07/08/2006 15:02:30
C:\WINDOWS\system32\tsd32.dll |COMPANY |05/08/2004 06:00:00
C:\WINDOWS\system32\TwnLib4.dll |Pegasus Imaging Corp. |09/07/2004 08:43:56
C:\WINDOWS\system32\usrcntra.dll |U.S. Robotics Corporation |05/08/2004 06:00:00
C:\WINDOWS\system32\usrcoina.dll |U.S. Robotics Corporation |05/08/2004 06:00:00
C:\WINDOWS\system32\usrdpa.dll |U.S. Robotics Corporation |05/08/2004 06:00:00
C:\WINDOWS\system32\usrdtea.dll |U.S. Robotics Corporation |05/08/2004 06:00:00
C:\WINDOWS\system32\usrfaxa.dll |U.S. Robotics Corporation |05/08/2004 06:00:00
C:\WINDOWS\system32\usrlbva.dll |U.S. Robotics Corporation |05/08/2004 06:00:00
C:\WINDOWS\system32\usrrtosa.dll |U.S. Robotics Corporation |05/08/2004 06:00:00
C:\WINDOWS\system32\usrsdpia.dll |U.S. Robotics Corporation |05/08/2004 06:00:00
C:\WINDOWS\system32\usrsvpia.dll |U.S. Robotics Corporation |05/08/2004 06:00:00
C:\WINDOWS\system32\usrv42a.dll |U.S. Robotics Corporation |05/08/2004 06:00:00
C:\WINDOWS\system32\usrv80a.dll |U.S. Robotics Corporation |05/08/2004 06:00:00
C:\WINDOWS\system32\usrvoica.dll |U.S. Robotics Corporation |05/08/2004 06:00:00
C:\WINDOWS\system32\usrvpa.dll |U.S. Robotics Corporation |05/08/2004 06:00:00
C:\WINDOWS\system32\vorbis.dll |COMPANY |14/12/2002 22:46:02
C:\WINDOWS\system32\vorbisenc.dll |COMPANY |14/12/2002 21:46:04
C:\WINDOWS\system32\vp6vfw.dll |On2.com |30/08/2004 13:25:24
C:\WINDOWS\system32\VSFilter.dll |Gabest |12/08/2004 23:11:14
C:\WINDOWS\system32\win87em.dll |COMPANY |05/08/2004 06:00:00
C:\WINDOWS\system32\WNASPINT.DLL |NexiTech, Inc. |07/11/2006 14:53:24
C:\WINDOWS\system32\wrap_oal.dll |Creative Labs |10/10/2006 21:44:58
C:\WINDOWS\system32\WRLogonNtf.dll |Webroot Software, Inc. |07/11/2006 22:00:12
C:\WINDOWS\system32\wrlzma.dll |COMPANY |07/11/2006 22:00:03
C:\WINDOWS\system32\XceedCry.dll |Xceed Software Inc (450) 442-2626 support@xceedsoft.com www.xceedsoft.com |02/02/2003 11:01:34
C:\WINDOWS\system32\XceedSco.dll |Xceed Software Inc (450) 442-2626 support@xceedsoft.com www.xceedsoft.com |19/05/2003 10:37:20
C:\WINDOWS\system32\xvidcore.dll |COMPANY |20/12/2004 11:03:26
C:\WINDOWS\system32\xvidvfw.dll |COMPANY |20/12/2004 11:08:28
C:\WINDOWS\system32\ZDPN50.dll |Printing Communications Assoc., Inc. (PCAUSA) |14/01/2004 10:25:00
C:\WINDOWS\system32\ZPORT4AS.dll |COMPANY |09/11/2006 11:07:50
C:\WINDOWS\system32\_psisdecd.dll |COMPANY |10/10/2006 21:12:41

Le volume dans le lecteur C s'appelle ACER
Le numéro de série du volume est 4C5B-36B2

Répertoire de C:\WINDOWS\system

24/12/1998 17:15 345 983 RCDSETUP.EXE
1 fichier(s) 345 983 octets
0 Rép(s) 113 550 036 992 octets libres
Le volume dans le lecteur C s'appelle ACER
Le numéro de série du volume est 4C5B-36B2

Répertoire de C:\WINDOWS\system32

05/08/2004 06:00 6 144 csrss.exe
1 fichier(s) 6 144 octets
0 Rép(s) 113 550 036 992 octets libres

Contenu de Downloaded Program Files
Le volume dans le lecteur C s'appelle ACER
Le numéro de série du volume est 4C5B-36B2

Répertoire de C:\WINDOWS\Downloaded Program Files

09/11/2006 13:24 <REP> .
09/11/2006 13:24 <REP> ..
24/08/2006 08:28 141 424 asinst.dll
22/08/2006 09:06 537 asinst.inf
17/05/2006 14:32 231 072 avsniff.dll
17/05/2006 14:29 878 avsniff.inf
17/05/2006 14:32 198 304 avsniffdlgs.dll
17/05/2006 14:26 537 704 AXXPEE.dll
07/12/2004 16:07 32 bdcore.dll
01/03/2005 14:08 118 784 bdupd.dll
17/05/2006 14:29 241 CabSA.inf
01/11/2006 01:00 2 504 catalog.dat
15/05/2006 16:35 65 desktop.ini
25/07/2002 16:13 24 576 dwusplay.dll
25/07/2002 16:13 196 608 dwusplay.exe
01/11/2006 01:00 6 899 ecbootil.vxd
17/05/2006 14:26 42 112 ecmldr32.dll
01/11/2006 01:00 272 040 ecmsvr32.dll
01/03/2005 14:08 53 248 ipsupd.dll
25/07/2002 16:05 172 032 isusweb.dll
16/03/2005 11:34 7 407 lang.ini
07/12/2004 16:07 32 libfn.dll
14/03/2005 13:38 126 live.ini
17/05/2006 14:28 6 850 navapi.vxd
17/05/2006 14:28 201 896 navapi32.dll
01/11/2006 01:00 124 584 naveng32.dll
01/11/2006 01:00 882 344 navex32a.dll
01/06/2006 02:57 1 331 oscan8.inf
01/06/2006 02:54 471 040 oscan8.ocx
31/05/2006 04:15 10 oscan81.ocx_x
17/05/2006 14:32 161 480 rufsi.dll
14/03/2005 13:58 7 073 scanoptions.tsi
01/11/2006 01:00 97 648 scrauth.dat
22/06/2006 10:41 5 032 swflash.inf
01/11/2006 01:00 9 237 symaveng.cat
01/11/2006 01:00 1 061 symaveng.inf
01/11/2006 01:00 186 568 tcdefs.dat
01/11/2006 01:00 1 036 919 tcscan7.dat
01/11/2006 01:00 319 497 tcscan8.dat
01/11/2006 01:00 691 886 tcscan9.dat
01/11/2006 01:00 453 tinf.dat
01/11/2006 01:00 148 tinfidx.dat
01/11/2006 01:00 1 957 tinfl.dat
01/11/2006 01:00 60 395 tscan1.dat
01/11/2006 01:00 3 027 tscan1hd.dat
01/11/2006 01:00 4 778 v.grd
01/11/2006 01:00 2 269 v.sig
01/11/2006 01:00 106 244 virscan.inf
01/11/2006 01:00 970 759 virscan1.dat
01/11/2006 01:00 569 844 virscan2.dat
01/11/2006 01:00 146 756 virscan3.dat
01/11/2006 01:00 320 186 virscan4.dat
01/11/2006 01:00 2 882 753 virscan5.dat
01/11/2006 01:00 389 633 virscan6.dat
01/11/2006 01:00 4 873 158 virscan7.dat
01/11/2006 01:00 1 622 045 virscan8.dat
01/11/2006 01:00 3 807 757 virscan9.dat
01/11/2006 01:00 32 virscant.dat
01/11/2006 01:00 224 zdone.dat
57 fichier(s) 21 973 499 octets

Total des fichiers listés :
57 fichier(s) 21 973 499 octets
2 Rép(s) 113 550 032 896 octets libres

Recherche de rootkit! (Merci S!Ri)

Recherche d'infections connues




Liste des programmes installes

a-squared Anti-Malware 2.1
Acer eConsole
Acer eMode Management
Acer Empowering Technology
Acer ePerformance Management
Acer WLAN 11g USB Dongle
Acer WLAN 11g USB Dongle
Adobe Flash Player 9 ActiveX
Adobe Reader 7.0
Alcohol Toolbar
Archiveur WinRAR
ASIO4ALL
Athlon 64 Processor Driver
ccCommon
CCleaner (remove only)
CDRWIN
CloneCD
Digital Audio System
EPSON Attach To Email
EPSON Attach To Email
EPSON Copy Utility 3
EPSON Easy Photo Print
EPSON File Manager
EPSON Image Clip Palette
EPSON Logiciel imprimante
EPSON Scan
EPSON Scan Assistant
ESDX3800 Guide d'utilisation
F1 2002
FireBurner
Google Toolbar for Internet Explorer
HijackThis 1.99.1
Hijackthis Version Française
Internet Worm Protection
J2SE Runtime Environment 5.0 Update 9
Language pack for Ad-Aware SE
LiveUpdate 3.0 (Symantec Corporation)
Microsoft .NET Framework 1.1
Microsoft .NET Framework 1.1
Microsoft .NET Framework 1.1 French Language Pack
Microsoft .NET Framework 1.1 Hotfix (KB886903)
Microsoft Office Excel Viewer 2003
Mise à jour de sécurité pour Windows XP (KB913433)
MotoGP
MSN
NAVShortcut
Need for Speed™ Carbon Demo
Nero 7
Norton AntiVirus 2006
Norton AntiVirus 2006 (Symantec Corporation)
Norton AntiVirus Help
Norton AntiVirus Parent MSI
Norton AntiVirus SYMLT MSI
Norton Protection Center
Norton WMI Update
NTI Backup NOW! 4
NTI Backup NOW! 4
NTI CD & DVD-Maker
NTI CD & DVD-Maker
NTI HomeVideo-Maker
NVIDIA Drivers
OCA Client history tool install
Panda ActiveScan
Philips Flat Panel Adjust
PIF DESIGNER
PowerDVD
Project64 1.6
Race Driver 3 Singleplayer Demo
Realtek AC'97 Audio
Reason 3.0
SkReasonExport 1.2
SLD Codec Pack
SPBBC
Spy Sweeper
Spybot - Search & Destroy 1.4
Symantec
SymNet
WebFldrs XP
Windows Genuine Advantage Validation Tool (KB892130)
Windows Live Messenger
Windows Live Sign-in Assistant
WinZip
Yahoo! Toolbar
Yahoo! Toolbar avec bloqueur de fenêtres pop-up



Le volume dans le lecteur C s'appelle ACER
Le numéro de série du volume est 4C5B-36B2

Répertoire de C:\Program Files

09/11/2006 01:13 <REP> .
09/11/2006 01:13 <REP> ..
09/11/2006 11:14 <REP> a-squared Anti-Malware
10/10/2006 21:12 <REP> Acer
09/11/2006 13:20 <REP> Acer TV-FM
09/11/2006 13:20 <REP> Acer WLAN 11g USB Dongle
11/10/2006 05:48 <REP> Adobe
11/10/2006 19:24 <REP> Alcohol Soft
11/10/2006 19:25 <REP> Alcohol Toolbar
11/10/2006 05:49 <REP> AMD
14/10/2006 11:43 <REP> ASIO4ALL v2
11/10/2006 05:49 <REP> AvRack
08/11/2006 00:51 <REP> CCleaner
07/11/2006 16:36 <REP> CDRWIN
12/10/2006 19:27 <REP> Common Files
15/05/2006 16:34 <REP> ComPlus Applications
10/10/2006 22:06 <REP> Creative
12/10/2006 20:21 <REP> Creative Professional
15/05/2006 16:54 <REP> CyberLink
08/11/2006 13:09 <REP> Defenza
15/10/2006 17:17 <REP> EPSON
08/11/2006 17:59 <REP> Fichiers communs
11/10/2006 17:32 <REP> GigaByte
09/11/2006 13:22 <REP> Google
09/11/2006 15:55 <REP> Hijackthis Version Française
09/11/2006 13:22 <REP> Internet Explorer
08/11/2006 18:00 <REP> Java
07/11/2006 23:33 <REP> Lavasoft
09/11/2006 13:22 <REP> Messenger
11/10/2006 05:49 <REP> microsoft frontpage
15/10/2006 15:28 <REP> Microsoft Office
11/10/2006 05:49 <REP> Movie Maker
22/10/2006 16:15 <REP> MSN
15/05/2006 16:34 <REP> MSN Gaming Zone
09/11/2006 13:22 <REP> MSN Messenger
24/10/2006 18:37 <REP> Nero
11/10/2006 05:49 <REP> NetMeeting
10/10/2006 21:10 <REP> NewTech Infosystems
10/10/2006 21:30 <REP> Norton AntiVirus
11/10/2006 05:50 <REP> Oca History Tool
11/10/2006 05:50 <REP> Online Services
12/10/2006 23:14 <REP> Outlook Express
14/10/2006 10:55 <REP> Philips Flat Panel Adjust
11/10/2006 05:50 <REP> Realtek AC97
15/05/2006 16:47 <REP> Realtek Sound Manager
11/10/2006 05:50 <REP> Services en ligne
12/10/2006 23:11 <REP> SLD Codec Pack
09/11/2006 13:24 <REP> Spybot - Search & Destroy
12/10/2006 20:22 <REP> Steinberg
09/11/2006 13:24 <REP> Symantec
07/11/2006 22:00 <REP> Webroot
11/10/2006 05:50 <REP> Windows Media Player
11/10/2006 05:50 <REP> Windows NT
15/10/2006 15:32 <REP> WinRAR
15/10/2006 15:20 <REP> WinZip
11/10/2006 05:50 <REP> xerox
08/11/2006 00:51 <REP> Yahoo!
0 fichier(s) 0 octets
57 Rép(s) 113 549 721 600 octets libres
Le volume dans le lecteur C s'appelle ACER
Le numéro de série du volume est 4C5B-36B2

Répertoire de C:\Program Files\fichiers communs

08/11/2006 17:59 <REP> .
08/11/2006 17:59 <REP> ..
11/10/2006 05:49 <REP> Adobe
24/10/2006 18:39 <REP> Ahead
10/10/2006 21:10 <REP> ArcSoft
30/10/2006 18:08 <REP> DirectX
15/10/2006 17:22 <REP> InstallShield
08/11/2006 17:59 <REP> Java
15/10/2006 17:41 <REP> Microsoft Shared
11/10/2006 05:49 <REP> MSSoap
15/05/2006 16:53 <REP> muvee Technologies
11/10/2006 05:49 <REP> NewTech Infosystems
11/10/2006 05:49 <REP> ODBC
11/10/2006 05:49 <REP> Services
11/10/2006 05:49 <REP> SpeechEngines
09/11/2006 13:22 <REP> Symantec Shared
12/10/2006 23:14 <REP> System
07/11/2006 15:11 <REP> Wise Installation Wizard
0 fichier(s) 0 octets
18 Rép(s) 113 549 717 504 octets libres
Le volume dans le lecteur C s'appelle ACER
Le numéro de série du volume est 4C5B-36B2

Répertoire de C:\Program Files\fichiers communs\Microsoft Shared\Web Folders

11/10/2006 05:49 <REP> .
11/10/2006 05:49 <REP> ..
18/05/2001 14:57 561 209 MSONSEXT.DLL
03/06/1999 11:09 122 937 MSOWS409.DLL
07/03/2001 06:00 127 033 MSOWS40c.DLL
3 fichier(s) 811 179 octets
2 Rép(s) 113 549 717 504 octets libres
Le volume dans le lecteur C s'appelle ACER
Le numéro de série du volume est 4C5B-36B2

Répertoire de C:\Program Files\common files

12/10/2006 19:27 <REP> .
12/10/2006 19:27 <REP> ..
12/10/2006 19:27 <REP> InstallShield
0 fichier(s) 0 octets
3 Rép(s) 113 549 717 504 octets libres
Le volume dans le lecteur C s'appelle ACER
Le numéro de série du volume est 4C5B-36B2

Répertoire de C:\

07/11/2006 16:41 18 457 DXC9.exe
1 fichier(s) 18 457 octets
0 Rép(s) 113 549 717 504 octets libres
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\00C30CE2.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\00DC03EB.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0318789B.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\04D002B7.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\05737EE0.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0614419D.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\07EA7F05.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\081D2684.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\08880DC3.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\08D37CE0.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0B37383D.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0BAC2774.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0C1A621F.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0E75413F.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\10193002.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\11B30163.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\125A1FD1.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\14284FD3.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\16497C59.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\16F1130E.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\17394E2D.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\179D6B75.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\17D43CF0.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\18282001.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\195F0B3B.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1AFE2098.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1B6C5B43.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1BE73DE1.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1C6149EE.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1DE85E3F.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1F717D1F.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\228A7EDC.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\233A1B3F.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\24FF4D4C.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\26BE6ECF.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\272323CD.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2774452C.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\27C4668A.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\280F4BA5.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\28AD5A63.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2B3F0AFE.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2BD8480D.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2C492CB5.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2ED44831.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2EDF7F93.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2FF02EB0.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\32655B69.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\32903E5F.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\33B53FF7.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\350B60C8.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\35D54AC4.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\367272F5.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\375E1ACD.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\384D6CA1.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\386A6E38.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\398457DB.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\39C94BDA.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\39DB76A2.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3BDD466B.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3C2C2E5D.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3D1F2A2D.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3FAA45AA.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\41E56180.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\437078A8.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\45BD1820.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\46AC483D.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\46B013F1.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\479F65C5.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\480A5706.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\481413D6.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4A5A5554.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4C727C2C.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4CAC1711.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\50814322.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\513006AB.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\52633034.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\550F1144.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\567C57FD.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\56EE34EC.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\57215C6B.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\57650CFB.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\578245B5.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\57861169.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\59B32271.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5BDA425C.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5D4979A4.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5FD9103F.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\60A64DA7.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\61A30892.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\632631C2.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\645E606C.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\65DB7912.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\66914F6F.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\66D56091.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\67C53265.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6859432E.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\68AA0644.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6A891FE9.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6AA106F5.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6B1C6992.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6C9E1CC4.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\700244C1.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\717B11B3.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\71E358F8.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\725C6A73.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\73AC2F94.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\73F9053E.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\75301C33.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\76242FB8.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\779C6CAE.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\77B1104A.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\789805E1.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\798103BC.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7B601D62.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7BEC1312.exe
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7F446BF7.exe
c:\Documents and Settings\renegonde\Application Data\Microsoft\Installer\{9559F7CA-5E34-4237-A2D9-D856464AD727}\ARPPRODUCTICON.exe
c:\Documents and Settings\renegonde\Application Data\Microsoft\Installer\{9559F7CA-5E34-4237-A2D9-D856464AD727}\NewShortcut1_9559F7CA5E344237A2D9D856464AD727.exe
c:\Documents and Settings\renegonde\Application Data\Microsoft\Installer\{9559F7CA-5E34-4237-A2D9-D856464AD727}\Uninstall_Project64__9559F7CA5E344237A2D9D856464AD727.exe
c:\Documents and Settings\renegonde\Bureau\a2AntiMalwareSetup.exe
c:\Documents and Settings\renegonde\Bureau\ClearProg.exe
c:\Documents and Settings\renegonde\Bureau\CWShreddernettoyeur page dem.exe
c:\Documents and Settings\renegonde\Bureau\Defenza.exe
c:\Documents and Settings\renegonde\Bureau\HijackThisFR.exe
c:\Documents and Settings\renegonde\Bureau\IECacheCleaner.exe
c:\Documents and Settings\renegonde\Bureau\java 5.09 new.exe
c:\Documents and Settings\renegonde\Bureau\KillBox.exe
c:\Documents and Settings\renegonde\Bureau\speedupmypc3aff.exe
c:\Documents and Settings\renegonde\Bureau\VundoFix.exe
c:\Documents and Settings\renegonde\Bureau\alcohol 120\alcohol-120_alcohol_120_1.9.5_build_4521_francais_11016.exe
c:\Documents and Settings\renegonde\Bureau\codec dvd\sld.codec.pack.2.2.exe
c:\Documents and Settings\renegonde\Bureau\DiagHelp\diaghelp\blbetac.exe
c:\Documents and Settings\renegonde\Bureau\DiagHelp\diaghelp\FilesInfoCmd.exe
c:\Documents and Settings\renegonde\Bureau\DiagHelp\diaghelp\Fport.exe
c:\Documents and Settings\renegonde\Bureau\DiagHelp\diaghelp\grep.exe
c:\Documents and Settings\renegonde\Bureau\DiagHelp\diaghelp\LFiles.exe
c:\Documents and Settings\renegonde\Bureau\DiagHelp\diaghelp\LISTDLLS.exe
c:\Documents and Settings\renegonde\Bureau\DiagHelp\diaghelp\pslist.exe
c:\Documents and Settings\renegonde\Bureau\DiagHelp\diaghelp\streams.exe
c:\Documents and Settings\renegonde\Bureau\DiagHelp\diaghelp\swreg.exe
c:\Documents and Settings\renegonde\Bureau\ecran lcd\FP_Setup4.3.exe
c:\Documents and Settings\renegonde\Bureau\Nouveau dossier\epson24825eu.exe
c:\Documents and Settings\renegonde\Bureau\Nouveau dossier\epson27564eu.exe
c:\Documents and Settings\renegonde\Bureau\Nouveau dossier\epson28265eu.exe
c:\Documents and Settings\renegonde\Bureau\pilote asio\ASIO4ALL_2_7_English.exe
c:\Documents and Settings\renegonde\Bureau\pilote asio\visionneuse\XLVIEWER.EXE
c:\Documents and Settings\renegonde\Bureau\pilote asio\win rar\wrar361fr.exe
c:\Documents and Settings\renegonde\Bureau\SmitfraudFix\dumphive.exe
c:\Documents and Settings\renegonde\Bureau\SmitfraudFix\GenericRenosFix.exe
c:\Documents and Settings\renegonde\Bureau\SmitfraudFix\Process.exe
c:\Documents and Settings\renegonde\Bureau\SmitfraudFix\Reboot.exe
c:\Documents and Settings\renegonde\Bureau\SmitfraudFix\restart.exe
c:\Documents and Settings\renegonde\Bureau\SmitfraudFix\SmiUpdate.exe
c:\Documents and Settings\renegonde\Bureau\SmitfraudFix\SrchSTS.exe
c:\Documents and Settings\renegonde\Bureau\SmitfraudFix\swreg.exe
c:\Documents and Settings\renegonde\Bureau\SmitfraudFix\swsc.exe
c:\Documents and Settings\renegonde\Bureau\SmitfraudFix\unzip.exe
c:\Documents and Settings\renegonde\bureaux\nouveau dossier\Setup.exe
c:\Documents and Settings\renegonde\bureaux\nouveau dossier\Euro\setup.exe
c:\Documents and Settings\renegonde\bureaux\nouveau dossier\LIB\hhupd.exe
c:\Documents and Settings\renegonde\bureaux\nouveau dossier\SETUP\DEVICEOP.EXE
c:\Documents and Settings\renegonde\bureaux\nouveau dossier\SETUP\E_S1LAC2.EXE
c:\Documents and Settings\renegonde\bureaux\nouveau dossier\SETUP\E_SCHK03.EXE
c:\Documents and Settings\renegonde\bureaux\nouveau dossier\SETUP\OEMINF.EXE
c:\Documents and Settings\renegonde\bureaux\nouveau dossier\SETUP\SETUP.EXE
c:\Documents and Settings\renegonde\bureaux\nouveau dossier\vlc-0.8.5\vlc.exe
c:\Documents and Settings\All Users\Application Data\Microsoft\IdentityCRL\production\ppcrlconfig.dll
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1C681DE6.dll
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1C841172.dll
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1EAC2F17.dll
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\32312213.dll
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4CE94054.dll
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\521C16CD.dll
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6A9A32FC.dll
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6B7822E5.dll
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6B7B4CE2.dll
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6CB1618C.dll
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\722E1EA6.dll
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\72343B7C.dll
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\73FB40EA.dll
c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7CC902FB.dll

et celui-la de hijackthis:

Logfile of HijackThis v1.99.1
Scan saved at 15:55:42, on 09/11/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Hijackthis Version Française\VERSION TRADUITE ORIGINALE.EXE

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - c:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
O2 - BHO: Alcohol Toolbar Helper - {8126A4A5-BFD3-46FE-BBDF-BFB5CF78E489} - C:\Program Files\Alcohol Toolbar\v3.1.0.0\Alcohol_Toolbar.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: NAV Helper - {A8F38D8D-E480-4D52-B7A2-731BB6995FDD} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: Norton AntiVirus - {C4069E3A-68F1-403E-B40E-20066696354B} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Alcohol Toolbar - {ED4BD629-C1B6-4399-8A34-02CCAA921DC9} - C:\Program Files\Alcohol Toolbar\v3.1.0.0\Alcohol_Toolbar.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [LaunchApp] Alaunch
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [ntiMUI] "c:\Program Files\NewTech Infosystems\NTI CD & DVD-Maker 7\ntiMUI.exe"
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [MSPY2002] "C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe" /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] "C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE" /SYNC
O4 - HKLM\..\Run: [PHIME2002A] "C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE" /IMEName
O4 - HKLM\..\Run: [Acer Empowering Technology Monitor] C:\WINDOWS\system32\SysMonitor.exe
O4 - HKLM\..\Run: [AspireService] "C:\Program Files\Acer\Acer eMode Management\AspireService.exe"
O4 - HKLM\..\Run: [MediaSync] "C:\Program Files\Acer\Acer eConsole\MediaSync.exe"
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Acer TV-FM\PCMService.exe"
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [CTRegRun] C:\WINDOWS\CTRegRun.EXE
O4 - HKLM\..\Run: [NvCplDaemon] "RUNDLL32.EXE" C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] "nwiz.exe" /install
O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE
O4 - HKLM\..\Run: [NvMediaCenter] "RunDLL32.exe" NvMCTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [UpdReg] C:\WINDOWS\UpdReg.EXE
O4 - HKLM\..\Run: [EPSON Stylus DX3800 Series] "C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIACE.EXE" /P26 "EPSON Stylus DX3800 Series" /O6 "USB001" /M "Stylus DX3800"
O4 - HKLM\..\Run: [DAEMON Tools] "D:\Program Files\DAEMON Tools\daemon.exe" -lang 1036
O4 - HKLM\..\Run: [SpySweeper] "C:\Program Files\Webroot\Spy Sweeper\SpySweeperUI.exe" /startintray
O4 - HKLM\..\Run: [a-squared] "C:\Program Files\a-squared Anti-Malware\a2guard.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
chapoline
 
je te reposte le rapport hijackthis car j'ai fait une erreur et il n'etait pas complet.

Logfile of HijackThis v1.99.1
Scan saved at 15:55:42, on 09/11/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Hijackthis Version Française\VERSION TRADUITE ORIGINALE.EXE

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - c:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
O2 - BHO: Alcohol Toolbar Helper - {8126A4A5-BFD3-46FE-BBDF-BFB5CF78E489} - C:\Program Files\Alcohol Toolbar\v3.1.0.0\Alcohol_Toolbar.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: NAV Helper - {A8F38D8D-E480-4D52-B7A2-731BB6995FDD} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: Norton AntiVirus - {C4069E3A-68F1-403E-B40E-20066696354B} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Alcohol Toolbar - {ED4BD629-C1B6-4399-8A34-02CCAA921DC9} - C:\Program Files\Alcohol Toolbar\v3.1.0.0\Alcohol_Toolbar.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [LaunchApp] Alaunch
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [ntiMUI] "c:\Program Files\NewTech Infosystems\NTI CD & DVD-Maker 7\ntiMUI.exe"
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [MSPY2002] "C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe" /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] "C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE" /SYNC
O4 - HKLM\..\Run: [PHIME2002A] "C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE" /IMEName
O4 - HKLM\..\Run: [Acer Empowering Technology Monitor] C:\WINDOWS\system32\SysMonitor.exe
O4 - HKLM\..\Run: [AspireService] "C:\Program Files\Acer\Acer eMode Management\AspireService.exe"
O4 - HKLM\..\Run: [MediaSync] "C:\Program Files\Acer\Acer eConsole\MediaSync.exe"
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Acer TV-FM\PCMService.exe"
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [CTRegRun] C:\WINDOWS\CTRegRun.EXE
O4 - HKLM\..\Run: [NvCplDaemon] "RUNDLL32.EXE" C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] "nwiz.exe" /install
O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE
O4 - HKLM\..\Run: [NvMediaCenter] "RunDLL32.exe" NvMCTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [UpdReg] C:\WINDOWS\UpdReg.EXE
O4 - HKLM\..\Run: [EPSON Stylus DX3800 Series] "C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIACE.EXE" /P26 "EPSON Stylus DX3800 Series" /O6 "USB001" /M "Stylus DX3800"
O4 - HKLM\..\Run: [DAEMON Tools] "D:\Program Files\DAEMON Tools\daemon.exe" -lang 1036
O4 - HKLM\..\Run: [SpySweeper] "C:\Program Files\Webroot\Spy Sweeper\SpySweeperUI.exe" /startintray
O4 - HKLM\..\Run: [a-squared] "C:\Program Files\a-squared Anti-Malware\a2guard.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_09\bin\jusched.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [SetDefaultMIDI] MIDIDef.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe"
O4 - Global Startup: Acer Empowering Technology.lnk = ?
O4 - Global Startup: Acer WLAN 11g USB Dongle.lnk = C:\Program Files\Acer WLAN 11g USB Dongle\ZDWlan.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan8/oscan8.cab
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - Winlogon Notify: winrge32 - winrge32.dll (file missing)
O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll
O23 - Service: Acer Media Server - Acer Inc. - C:\Program Files\Acer\Acer eConsole\MediaServerService.exe
O23 - Service: Memory Check Service (AcerMemUsageCheckService) - Acer Inc. - C:\Acer\Empowering Technology\ePerformance\MemCheck.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - C:\Program Files\Acer TV-FM\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Program Files\Acer TV-FM\Kernel\TV\CLSched.exe
O23 - Service: CyberLink Media Library Service - Cyberlink - C:\Program Files\Acer TV-FM\Kernel\CLML_NTService\CLMLServer.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: Service Norton AntiVirus Auto-Protect (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
O23 - Service: Norton Protection Center Service (NSCService) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\Security Console\NSCSRVCE.EXE
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: Symantec AVScan (SAVScan) - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
O23 - Service: SPBBCSvc - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: StarWind iSCSI Service (StarWindService) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: Moteur Webroot Spy Sweeper (WebrootSpySweeperService) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe

voila,je suis encore novice en info,alors j'espere que je suis assez explicite.merci
0
Malekal_morte- Messages postés 180304 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   24 685
 
Sur HijackThis, coche cette ligne :

O20 - Winlogon Notify: winrge32 - winrge32.dll (file missing)

--> clic sur fix checked

-- Ouvre le poste de travail
-- Clic sur le menu outils en haut à droite puis options des dossiers
-- Dans la nouvelle fenêtre, clic sur l'onglet Affichage en haut
-- Coche dans la liste "Afficher les fichiers cachés"
-- Décoche "masquer les fichier proteger du systeme d exploitation (recommandée)"
-- Tu vas recevoir un message qui te dit que cela peut endommager le système, n'en tiens pas compte.

Supprime :
C:\WINDOWS\System32\ixt0.dll_tobedeleted
C:\WINDOWS\System32\iifgede.dll
C:\ac3_0010.exe
C:\!KillBox\



C'est OK en suivant les dernières manipulations ci-dessous :)

Essaye de rapporter ton infection sur le site que je te donne ci-dessous, ce serait super cool ;)


- Nettoye ton ordinateur avec CCleaner : https://www.malekal.com/tutoriel-ccleaner/
- Désactive puis réactive la restauration du système :
http://service1.symantec.com/SUPPORT/INTER/tsgeninfointl.nsf/fr_docid/20020830101856924

Tu peux ensuite désinstaller tous les programmes que l'on a utilisé.

je t'invite à jeter un coup d'oeil à ces liens dans la mesure du possible, essaye de rapporter ton infection :

Comment se protéger des virus : - Tout ceci est résume sur cette page : https://www.malekal.com/proteger-pc-virus-pirates/

Rapporte ton infection pour faire condamner les auteurs sur Malware-Complaints. Pour faire entendre notre voix, nous devons être le plus nombreux possibles, alors rapport ton infection :
- Voir les règles : https://malwarecomplaints.info/
- Enregistre sur le forum à partir du bouton register en haut :
Si tu as plus de 13 ans, choisir : I Agree to these terms and am over or exactly 13 years of age
Si tu as moins, clic sur : I Agree to these terms and am under 13 years of age

Après t'être enregistré, tu as sous forme de liste les types d'infection (Look2Me, Smitfraud, SpywareQuake etc..) : http://www.malwarecomplaints.info/viewforum.php?f=10&sid=0ea0981a2025873f8e115fda8cee41a4

Si le malware que tu as eu n'apparaît pas dans la liste, ou si tu ne sais pas quelle infection tu as eu, créé un message dans le sujet "Autres infections" conforme au règle du forum (age, ville, département etc..) : https://malwarecomplaints.info/

Pour poster un message, clics sur le bouton "post reply" et remplir les informations - NE PAS CREER UN SUJET avec le bouton New Topic.

Pour toutes aides pour poster ton message, tu peux consulter ce lien : http://www.malekal.com/malwarecomplaints.html
Si tu as des questions ou des problèmes, n'hésites pas à me demander ici ou à contacter un des modérateurs du forum : Kimberly, AgnesD ou ipl_001.
0
chapoline
 
tout d'abord je tenais a te remercier pour ton aide si

précieuse.apparemment je n'ai plus de souci.Mais j'aurais voulu

quelques infos si tu as le temps.

peux tu me dire si je me trompe:exemple

c:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6B7822E5.dll
\7CC902FB.dll

la, les fichiers dll qui sont apres quarantine sont des virus et en fait

la il me les detecte car il sont en quarantaine.idem quand je vois dans les rapports:

Dialer:Dialer.IBW No Désinfecté C:\!KillBox\win177.tmp

en fait il me dit qu'il na pas desinfecté killbox parce que pour

effacer ses virus il faut desintaller killbox.enfin je crois.*

la je voudrais savoir si j'ai bien compris,si c'est pas du tout ca,

merci de me le dire.car ca m'interesse de comprendre.Et j'exagere

peut etre un peux mais j'aurais voulu savoir comment on arrive a

déterminer quel fichier est infecté.je pense que jai compris un

petit bout ,mais pas tout.Si tu n'as pas le temps de me répondre

peut etre pourrais tu m'indiquer des ouvrages ou tuto.encore

MERCI pour ton aide.
0
Malekal_morte- Messages postés 180304 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   24 685
 
Oui la DLL est bien dans la quarantaine norton.

Pour killbox, killbox a simplement déplacer les fichiers infectieux de leurs emplacements d'origines dans le dossier c:\!killbox (dans le cas où une erreur est faite, on peur revenir en arrière).
Il te faut supprimer simplement le dossier C:\!killbox et le programme killbox.

Pour la détermination des fichiers infectieux bha heuu recherche sur le net, habitudes etc..
0
chapoline
 
ok c'est impeccable c'est bien ce que j'avais compris.encore merci

et je vais essayer de me documenter ici et la.car ce sujet

m'interesse si jamais une info te revient ...
0