Help, pc infecté

Bonjour,

si kelk'un peut m'aider ca sera trés sympa de sa part, j'aimerais savoir est ce ke mon pc est infecté car mon antivirus est bloque j'arrive pas à l'activer et j'ai constate une autre copie des mes fichiers qui un peu invisible(flou).j pense ke j suis infecté d'un virus et j sais pas cmt remedier mon pc .
et merci d'avance

voila l rapport de hijack:

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 01:42:32, on 17/02/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\Internet Download Manager\IDMan.exe
C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
C:\Program Files\Microsoft Office\Office12\POWERPNT.EXE
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Internet Download Manager\IEMonitor.exe
C:\Program Files\Hewlett-Packard\Shared\HpqToaster.exe
C:\Program Files\HSDPA USB MODEM\USB Modem.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\fati\Bureau\HiJackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.hespress.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [hpWirelessAssistant] %ProgramFiles%\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [IDMan] C:\Program Files\Internet Download Manager\IDMan.exe /onboot
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: DSLMON.lnk = ?
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Télécharger avec IDM - C:\Program Files\Internet Download Manager\IEExt.htm
O8 - Extra context menu item: Télécharger le contenu de video FLV avec IDM - C:\Program Files\Internet Download Manager\IEGetVL.htm
O8 - Extra context menu item: Télécharger tous les liens avec IDM - C:\Program Files\Internet Download Manager\IEGetAll.htm
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
O17 - HKLM\System\CCS\Services\Tcpip\..\{0009AE2F-F588-4C0C-BCF7-CB6FD3C53591}: NameServer = 194.25.0.68 194.25.0.60
O17 - HKLM\System\CS1\Services\Tcpip\..\{0009AE2F-F588-4C0C-BCF7-CB6FD3C53591}: NameServer = 194.25.0.68 194.25.0.60
O23 - Service: Avira AntiVir Personal - Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: Avira AntiVir Personal - Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe

--
End of file - 5387 bytes
Configuration: Windows XP
Internet Explorer 6.0

24 réponses

  1. l rapport de TCleaner:
    [ Rapport ToolsCleaner version 2.3.1 (par A.Rothstein & dj QUIOU) ]

    -->- Recherche:

    C:\TB.txt: trouvé !
    C:\SDFIX: trouvé !
    C:\_OtMoveIt: trouvé !
    C:\Toolbar SD: trouvé !
    C:\Rsit: trouvé !
    C:\Documents and Settings\fati\Bureau\TB.txt: trouvé !
    C:\Documents and Settings\fati\Bureau\Rsit.exe: trouvé !

    ---------------------------------
    -->- Suppression:

    C:\TB.txt: supprimé !
    C:\Documents and Settings\fati\Bureau\TB.txt: supprimé !
    C:\Documents and Settings\fati\Bureau\Rsit.exe: supprimé !
    C:\SDFIX: supprimé !
    C:\_OtMoveIt: supprimé !
    C:\Toolbar SD: supprimé !
    C:\Rsit: supprimé !

    Restauration annulée !
    Corbeille vidée!
    Fichiers temporaires nettoyés !
    Sauvegarde du registre crée !
    0
    1. Ah...dans ce cas-la...un modem sur le poste de travail ?

      ma foi

      donc on va faire le menage car je ne vois plus d'infection :

      Télécharge ATF Cleaner par Atribune:
      http://www.atribune.org/ccount/click.php?id=1
      Double-clique ATF-Cleaner.exe afin de lancer le programme.
      Sous l'onglet Main, choisis : Select All
      Clique sur le bouton Empty Selected
      Si tu utilises le navigateur Firefox :
      Clique Firefox au haut et choisis : Select All
      Clique le bouton Empty Selected
      NOTE : Si tu veux conserver tes mots de passe sauvegardés, clique No à l'invite.
      Si tu utilises le navigateur Opera :
      Clique Opera au haut et choisis : Select All
      Clique le bouton Empty Selected
      NOTE : Si tu veux conserver tes mots de passe sauvegardés, clique No à l'invite.
      Clique Exit, du menu prinicipal, afin de fermer le programme.
      Pour obtenir du Support technique, double-clique l'adresse électronique située au bas de chacun des menus.

      __________________________________________________

      http://www.commentcamarche.net/telecharger/telechargement 34055291 toolscleaner
      ---> Télécharge ToolsCleaner2 sur ton Bureau.
      * Double-clique sur ToolsCleaner2.exe pour le lancer.
      * Clique sur Recherche et laisse le scan agir.
      * Clique sur Suppression pour finaliser.
      * Tu peux, si tu le souhaites, te servir des Options Facultatives.
      * Clique sur Quitter pour obtenir le rapport.
      * Poste le rapport (TCleaner.txt) qui se trouve à la racine de ton disque dur (C:\).
      _________________________________________________

      supprime toolscleaner2 manuellement

      _________________________________________________

      ---> Télécharge et installe CCleaner (N'installe pas la Yahoo Toolbar) :

      http://www.commentcamarche.net/telecharger/telecharger 168 ccleaner

      * Lance-le. Va dans Options puis Avancé et décoche la case Effacer uniquement les fichiers etc....
      * Va dans Nettoyeur, choisis Analyse. Une fois terminé, lance le nettoyage.
      * Ensuite, choisis Registre, puis Chercher des erreurs. Une fois terminé, répare toutes les erreurs tant de fois qu il en trouve a l analyse(Sauvegarde la base de registre).
      * Veille a ce que dans les options le reglage soit au demarrage de windows et réglé sur "effacement securisé" 35 passes (guttman)
      __________________________________________________

      Attention : ne pas toucher au PC pendant qu'il travaille !

      B-Nettoyage et Défragmentation de tes Disques
      *Nettoyage :
      Clic droit sur "poste de travail" ==>"ouvrir" ==>clic droit sur le disque C ==>Propriétés ==>onglet "Général"
      Cliques sur le bouton "nettoyage de disque", OK
      tu le fais pour chacun de tes disques
      ________________________________________________

      *Vérifications des erreurs :
      Clic droit sur "poste de travail" ==>"ouvrir" ==>clic droit sur le disque C ==>Propriétés ==>onglet "Outil"
      "Vérifier maintenant", une boîte s'ouvre, cocher les cases :
      -réparer automatiquement les erreurs...
      -rechercher et tenter une récupération...
      --->Démarrer, ok
      Note : s'il te dis de redémarrer ton Pc pour le faire , tu redémarres et tu laisses faire, cela prend un peu de temps c'est normal
      tu le fais pour chacun de tes disques
      ________________________________________________

      ensuite toujours dans le même onglet tu choisis :
      *Défragmentation :
      "défragmenter maintenant", OK
      une boîte s'ouvre, tu sélectionnes le disque à défragmenter, et tu cliques sur "analyser", puis après l'analyse, "défragmenter" . OK
      tu le fais pour chacun de tes disques
      _______________________________________________

      Note : si tu as un utilitaire pour défragmenter , utilises le à la place

      pour ce faire ceci est proposé :

      https://www.clubic.com/telecharger-fiche44314-defraggler.html
      _________________________________________________

      > Peux-tu vérifier ta console JAVA ici ? : https://www.java.com/fr/download/uninstalltool.jsp , et installer la nouvelle version si besoin est (dans ce cas désinstalle avant l'ancienne version).
      Pour info. ou en cas de problème : http://assiste.com.free.fr/p/abc/c/anti_java.html

      voici pour desinstaller :

      http://raproducts.org/click/click.php?id=1

      Décompresse le fichier sur le Bureau (Clic droit > Extraire tout).
      * Double-clique sur le répertoire JavaRa.
      * Puis double-clique sur le fichier JavaRa.exe (le exe peut ne pas s'afficher).
      * Choisis Français puis clique sur Select.
      * Clique sur Recherche de mises à jour.
      * Sélectionne Mettre à jour via jucheck.exe puis clique sur Rechercher.
      * Autorise le processus à se connecter s'il le demande, clique sur Installer et suis les instructions d'installation qui prennent quelques minutes.
      * L'installation est terminée, reviens à l'écran de JavaRa et clique sur Effacer les anciennes versions.
      * Clique sur Oui pour confirmer. Laisse travailler et clique ensuite sur OK, puis une deuxième fois sur OK.
      * Un rapport va s'ouvrir. Poste-le dans ta prochaine réponse.
      * Ferme l'application.

      Note : le rapport se trouve aussi dans C:\ sous le nom JavaRa.log.

      _________________________________________________

      > Mets à jour Acrobat si ce n'est pas le cas (désinstalle avant la version antérieure) : https://get2.adobe.com/reader/otherversions/
      __________________________________________________

      > Tu peux aussi vider ta corbeille,quoi que Ccleaner le fasse tout seul
      _____________________________________________________

      > Si nous avons utilisé MalwaresByte's Anti-Malware : vide sa quarantaine.
      - Lance le programme puis clique sur <Quarantaine>.
      - Sélectionne tous les éléments puis clique sur <supprime>.
      - Quitte la programme.
      ______________________________________________________

      > Idem pour ton antivirus : vide sa quarantaine si ce n'est pas déjà fait
      ______________________________________________________

      > Désactive et réactive la restauration de système, pour cela : suis les instructions de ce lien :

      liens XP:

      http://service1.symantec.com/SUPPORT/INTER/tsgeninfointl.nsf/fr_docid/20020830101856924

      liens Vista :

      http://service1.symantec.com/SUPPORT/INTER/tsgeninfointl.nsf/4f60eedf1156c8068525695b005ca288/c066b2e9a50cc948802572870032b170?OpenDocument
      ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

      Quelques conseils et recommandations pour l'avenir :

      > Passe un coup de MalwareByte's Anti-Malware de temps en temps (1 fois par semaine , suivant l'utilisation que tu fais de ton PC. Tu peux aussi décocher la casse dans l’onglet "Options" puis clique sur "Avancé" et décoche la case "Effacer uniquement les fichiers, du dossier temp de Windows, plus vieux que 48 heures").
      - Utilise aussi tes autres logiciels de protection (scannes antivirus, antispywares...). N'oublie pas de faire les mises à jour avant de les utiliser.
      - Pense aussi à faire une défragmentation de tes disques durs de temps en temps (garde suffisamment d'espace sur C:\ (1/3 de libre pour être à l'aise))
      _____________

      > Pour bien protéger ton PC :
      [1 seul Antivirus] + [1 seul Pare feu (/!\ les routeurs et box en possèdent un)] + [Un bon Antispyware avec immunisation] + [Mises à Jour récentes Windows et Logiciels de Protection] + [Utilisation de Firefox -ou autres- (Internet Explorer présente des failles de sécurité qui mettent longtemps avant d'être corrigées mais il faut absolument le conserver pour les mises à jour Windows et Windows live Messenger)]

      PS : En fait la meilleure des protections c'est toi même : ce que tu fais avec ton PC : où tu surfes, télécharges...ect....
      Les virus utilisent les failles de ton PC pour infecter un système. Info : http://assiste.com.free.fr/p/abc/a/zombies_et_botnets.html

      dans le souhait de vouloir desinstaller un antivirus au profit d'un autre , voici quelques liens :

      http://dlpro.antivir.com/down/windows/tool_en.exe
      http://files.avast.com/files/eng/aswclear.exe
      http://www.bitdefender.fr/KB333-fr--Desinstaller-BitDefender%C2%AD.html
      ftp://ftp.symantec.com/public/francais/removal_tools/Norton_Removal_Tool.exe
      https://www.micro-astuce.com/securite/kasper.php (sky)
      http://www.grisoft.cz/filedir/util/avg_arm_sup_____.dir/avgremover.exe
      _____________

      > Quelques liens utiles :
      - https://sebsauvage.net/safehex.html
      - https://www.zebulon.fr/telechargements/securite/protection-donnees-personnelles/spywareblaster.html (= petit logiciel qui bloque l'installation d'activ-X nuisibles au PC. Fonctionne en arrière plan)
      ____________

      Si tu as Vista n'oublie pas de réactiver le comptes des utilisateurs(UAC)
      ___________

      Voila,
      Bonne lecture, à bientot

      Gen-hackman

      0
      1. oui j l'ai trouver G c mon modem
        0
        1. pas de lettre G, il y a seulement C;D;E;F
          0
          1. ouvre ton poste de travail et dis moi a quoi correspond la lettre du lecteur
            0
            1. pardon ? j'ai pas compris tu veux dire koi par lecteur G?
              je crois ke ca appartient a un cd dans mon lecteur peut etre j sais po.
              0
              1. ok dis moi :

                quel est ton lecteur G:\ ?
                0
                1. ========== PROCESSES ==========
                  Process explorer.exe killed successfully.
                  ========== FILES ==========
                  File/Folder G:\LaunchU3.exe not found.
                  File/Folder G:\GuelmimG.bat not found.
                  File/Folder G:\log.exe not found.
                  C:\Recycled moved successfully.
                  C:\FOUND.004 moved successfully.
                  C:\FOUND.003 moved successfully.
                  C:\FOUND.002 moved successfully.
                  C:\FOUND.001 moved successfully.
                  C:\FOUND.000 moved successfully.
                  ========== REGISTRY ==========
                  Registry key HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{1c2c48c6-f16e-11dd-bae8-f35942e0daa8}\\ deleted successfully.
                  Registry key HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{30c33b2a-f6f8-11dd-bb05-001f3c3505b2}\\ deleted successfully.
                  Registry key HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{a14541ac-fac4-11dd-bb11-001f3c3505b2}\\ deleted successfully.
                  Registry key HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{bee2ba60-f1fe-11dd-baeb-f417185d68b5}\\ deleted successfully.
                  Registry key HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{d99b74c2-f1ff-11dd-baec-a760f36913b5}\\ deleted successfully.
                  ========== COMMANDS ==========
                  File delete failed. C:\DOCUME~1\fati\LOCALS~1\Temp\~DF4FDB.tmp scheduled to be deleted on reboot.
                  File delete failed. C:\DOCUME~1\fati\LOCALS~1\Temp\~DFD119.tmp scheduled to be deleted on reboot.
                  File delete failed. C:\DOCUME~1\fati\LOCALS~1\Temp\~DFD125.tmp scheduled to be deleted on reboot.
                  File delete failed. C:\DOCUME~1\fati\LOCALS~1\Temp\~DFE430.tmp scheduled to be deleted on reboot.
                  File delete failed. C:\DOCUME~1\fati\LOCALS~1\Temp\~DFE43C.tmp scheduled to be deleted on reboot.
                  User's Temp folder emptied.
                  User's Temporary Internet Files folder emptied.
                  User's Internet Explorer cache folder emptied.
                  Local Service Temp folder emptied.
                  Local Service Temporary Internet Files folder emptied.
                  File delete failed. C:\WINDOWS\temp\Perflib_Perfdata_6b8.dat scheduled to be deleted on reboot.
                  Windows Temp folder emptied.
                  Java cache emptied.
                  Temp folders emptied.
                  Explorer started successfully

                  OTMoveIt3 by OldTimer - Version 1.0.8.0 log created on 02232009_134506

                  Files moved on Reboot...
                  C:\DOCUME~1\fati\LOCALS~1\Temp\~DF4FDB.tmp moved successfully.
                  File C:\DOCUME~1\fati\LOCALS~1\Temp\~DFD119.tmp not found!
                  File C:\DOCUME~1\fati\LOCALS~1\Temp\~DFD125.tmp not found!
                  File C:\DOCUME~1\fati\LOCALS~1\Temp\~DFE430.tmp not found!
                  File C:\DOCUME~1\fati\LOCALS~1\Temp\~DFE43C.tmp not found!
                  File C:\WINDOWS\temp\Perflib_Perfdata_6b8.dat not found!
                  0
                  1. surtout pas ...

                    ---> Désactive ton antivirus le temps de la manipulation car OTMoveIt3 est détecté comme une infection à tort.

                    ---> Télécharge OTMoveIt3 (OldTimer) sur ton Bureau :
                    http://oldtimer.geekstogo.com/OTMoveIt3.exe

                    ---> Double-clique sur OTMoveIt3.exe afin de le lancer.

                    ---> Copie (Ctrl+C) le texte suivant ci-dessous :

                    :processes
                    explorer.exe

                    :files
                    G:\LaunchU3.exe
                    G:\GuelmimG.bat
                    G:\log.exe
                    C:\Recycled
                    C:\FOUND.004
                    C:\FOUND.003
                    C:\FOUND.002
                    C:\FOUND.001
                    C:\FOUND.000

                    :reg
                    [-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{1c2c48c6-f16e-11dd-bae8-f35942e0daa8}]
                    [-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{30c33b2a-f6f8-11dd-bb05-001f3c3505b2}]
                    [-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{a14541ac-fac4-11dd-bb11-001f3c3505b2}]
                    [-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{bee2ba60-f1fe-11dd-baeb-f417185d68b5}]
                    [-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{d99b74c2-f1ff-11dd-baec-a760f36913b5}]

                    :commands
                    [purity]
                    [emptytemp]
                    [start explorer]
                    [reboot]

                    ---> Colle (Ctrl+V) le texte précédemment copié dans le cadre Paste Instructions for Items to be Moved.

                    0
                    1. reslt,
                      j l'ai installé mais j'ai rencontré un prb lors du démarrage en mode sans echec , j 'ai choisis l"option mode ss echec mais windows demarre normalement avant il m'affiche ce msg " windows n'a pas demarré correctement, un nouveau logiciel ou materiel peut etre responsable de ce probléme"
                      donc que puis je faire ? j'entre en mode sans echec via msconfig?
                      0
                      1. Télécharge SDFix sur ton bureau :
                        ici http://downloads.andymanchesta.com/RemovalTools/SDFix.exe.
                        ou ici http://download.bleepingcomputer.com/andymanchesta/SDFix.exe­
                        ou ici http://sdfix.net/SDFix.exe

                        --> Double-clique sur SDFix.exe et choisis "Install" .

                        ( tuto ici : https://www.malekal.com/slenfbot-still-an-other-irc-bot/ )

                        Puis une fois l'installe faite ,

                        Impératif : Démarrer en mode sans echec .

                        /!\ Ne jamais démarrer en mode sans échec via MSCONFIG /!\

                        Comment aller en Mode sans échec :
                        1) Redémarre ton ordi .
                        2) Tapote la touche F8 immédiatement, (F5 sur certains PC) juste après le "Bip" .
                        3) Tu tapotes jusqu' à l'apparition de l'écran avec les options de démarrage .
                        4) Choisis la première option : Sans Échec , et valide en tapant sur [Entrée] .
                        5) Choisis ton compte habituel ( et pas Administrateur ).
                        attention : pas de connexion possible en mode sans échec , donc copie ou imprime bien la manipe pour éviter les erreurs ...

                        Ouvre le dossier SDFix qui vient d'être créé dans le répertoire C:\ et double-clique sur RunThis.bat pour lancer l'outil .
                        -->Tapes Y pour lancer le script ...
                        Le Fix supprime les services du virus et nettoie le registre, de ce fait un redémarrage est nécessaire , donc :
                        presses une touche pour redémarrer quand il te le sera demandé .

                        Le PC va mettre du temps avant de démarrer ( c'est normale ), après le chargement du Bureau presses une touche lorsque "Finished" s'affiche .

                        Le rapport SDFix s'ouvrira à l'écran et s'enregistrera aussi dans le dossier
                        C:\SDFix sous le nom "Report.txt".

                        Poste ce dernier dans ta prochaine réponse
                        0
                        1. ok, le voila:

                          Logfile of random's system information tool 1.05 (written by random/random)
                          Run by fati at 2009-02-23 11:56:55
                          Microsoft Windows XP Professionnel Service Pack 2
                          System drive C: has 21 GB (69%) free of 30 GB
                          Total RAM: 2039 MB (71% free)

                          HijackThis download failed

                          ======Registry dump======

                          [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0055C089-8582-441B-A0BF-17B458C2A3A8}]
                          IDMIEHlprObj Class - C:\Program Files\Internet Download Manager\IDMIECC.dll [2008-12-17 161200]

                          [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
                          Adobe PDF Link Helper - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11 75128]

                          [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
                          RealPlayer Download and Record Plugin for Internet Explorer - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll [2009-02-05 370296]

                          [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7E853D72-626A-48EC-A868-BA8D5E23E045}]

                          [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
                          Google Toolbar Helper - c:\program files\google\googletoolbar1.dll [2009-02-04 2436160]

                          [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
                          Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-02-21 35840]

                          [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
                          JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2009-02-21 73728]

                          [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
                          {2318C2B1-4965-11d4-9B18-009027A5CD4F} - &Google - c:\program files\google\googletoolbar1.dll [2009-02-04 2436160]

                          [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
                          "hpWirelessAssistant"=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [2007-03-01 472776]
                          "TkBellExe"=C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe [2009-02-05 185896]
                          "Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2008-06-12 34672]
                          "avgnt"=C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe [2008-06-12 266497]
                          "SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2009-02-21 148888]

                          [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
                          "CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2004-08-19 15360]
                          "MsnMsgr"=C:\Program Files\MSN Messenger\MsnMsgr.Exe [2007-01-19 5674352]
                          "IDMan"=C:\Program Files\Internet Download Manager\IDMan.exe [2008-12-17 2745776]

                          C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage
                          DSLMON.lnk - C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe

                          [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
                          C:\WINDOWS\system32\igfxdev.dll [2007-08-08 208896]

                          [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
                          UPnPMonitor - {e57ce738-33e8-4c51-8354-bb4de9d215d1} - C:\WINDOWS\system32\upnpui.dll [2004-08-19 240128]

                          [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
                          "authentication packages"=msv1_0
                          nwprovau

                          [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
                          "dontdisplaylastusername"=0
                          "legalnoticecaption"=
                          "legalnoticetext"=
                          "shutdownwithoutlogon"=1
                          "undockwithoutlogon"=1

                          [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
                          "NoDriveTypeAutoRun"=145

                          [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
                          "%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
                          "C:\Program Files\MSN Messenger\msnmsgr.exe"="C:\Program Files\MSN Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.1"
                          "C:\Program Files\MSN Messenger\livecall.exe"="C:\Program Files\MSN Messenger\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"
                          "C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
                          "C:\Program Files\ma-config.com\maconfservice.exe"="C:\Program Files\ma-config.com\maconfservice.exe:LocalSubNet:Enabled:maconfservice"
                          "C:\Program Files\Messenger\MSMSGS.EXE"="C:\Program Files\Messenger\MSMSGS.EXE:*:Enabled:Windows Messenger"
                          "C:\Program Files\LimeWire\LimeWire.exe"="C:\Program Files\LimeWire\LimeWire.exe:*:Enabled:LimeWire"

                          [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
                          "%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
                          "C:\Program Files\MSN Messenger\msnmsgr.exe"="C:\Program Files\MSN Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.1"
                          "C:\Program Files\MSN Messenger\livecall.exe"="C:\Program Files\MSN Messenger\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"

                          [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{1c2c48c6-f16e-11dd-bae8-f35942e0daa8}]
                          shell\AutoRun\command - GuelmimG.bat
                          shell\explore\command - GuelmimG.bat -e
                          shell\open\command - GuelmimG.bat

                          [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{30c33b2a-f6f8-11dd-bb05-001f3c3505b2}]
                          shell\AutoRun\command - G:\LaunchU3.exe -a

                          [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{a14541ac-fac4-11dd-bb11-001f3c3505b2}]
                          shell\AutoRun\command - G:\GuelmimG.bat
                          shell\explore\command - G:\GuelmimG.bat -e
                          shell\open\command - G:\GuelmimG.bat

                          [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{bee2ba60-f1fe-11dd-baeb-f417185d68b5}]
                          shell\AutoRun\command - C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL log.exe
                          shell\Ouvrir\command - G:\log.exe

                          [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{d99b74c2-f1ff-11dd-baec-a760f36913b5}]
                          shell\AutoRun\command - C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL log.exe
                          shell\Ouvrir\command - G:\log.exe

                          ======List of files/folders created in the last 2 months======

                          2009-02-23 09:31:38 ----A---- C:\TB.txt
                          2009-02-23 09:30:39 ----D---- C:\ToolBar SD
                          2009-02-23 09:28:15 ----SHD---- C:\Recycled
                          2009-02-23 09:28:09 ----D---- C:\_OTMoveIt
                          2009-02-23 08:41:04 ----D---- C:\Documents and Settings\fati\Application Data\LimeWire
                          2009-02-22 18:22:15 ----D---- C:\Program Files\trend micro
                          2009-02-22 18:22:14 ----D---- C:\rsit
                          2009-02-22 18:18:54 ----SHD---- C:\FOUND.004
                          2009-02-21 23:51:23 ----D---- C:\WINDOWS\Sun
                          2009-02-21 23:34:02 ----A---- C:\WINDOWS\system32\javaws.exe
                          2009-02-21 23:34:02 ----A---- C:\WINDOWS\system32\javaw.exe
                          2009-02-21 23:34:02 ----A---- C:\WINDOWS\system32\java.exe
                          2009-02-21 23:34:02 ----A---- C:\WINDOWS\system32\deploytk.dll
                          2009-02-21 23:33:49 ----D---- C:\Program Files\Java
                          2009-02-21 23:30:00 ----D---- C:\Documents and Settings\fati\Application Data\Sun
                          2009-02-21 23:28:56 ----D---- C:\Program Files\LimeWire
                          2009-02-19 21:36:07 ----D---- C:\WINDOWS\system32\LogFiles
                          2009-02-18 18:53:54 ----SHD---- C:\FOUND.003
                          2009-02-15 00:44:12 ----A---- C:\WINDOWS\IE4 Error Log.txt
                          2009-02-14 23:23:16 ----A---- C:\WINDOWS\cdplayer.ini
                          2009-02-13 18:23:16 ----A---- C:\WINDOWS\ModemLog_Mobile Connector #2.txt
                          2009-02-12 20:54:02 ----A---- C:\WINDOWS\ODBC.INI
                          2009-02-12 20:53:48 ----RA---- C:\WINDOWS\system32\WPWIZDLL.DLL
                          2009-02-12 20:53:48 ----RA---- C:\WINDOWS\system32\WEBPOST.DLL
                          2009-02-12 20:53:48 ----RA---- C:\WINDOWS\system32\POSTWPP.DLL
                          2009-02-12 20:53:48 ----RA---- C:\WINDOWS\system32\PIPARSE.DLL
                          2009-02-12 20:53:48 ----RA---- C:\WINDOWS\system32\FTPWPP.DLL
                          2009-02-12 20:53:48 ----RA---- C:\WINDOWS\system32\FPWPP.DLL
                          2009-02-12 20:53:48 ----RA---- C:\WINDOWS\system32\CRSWPP.DLL
                          2009-02-12 20:53:48 ----D---- C:\Program Files\Publication Web
                          2009-02-12 20:53:48 ----A---- C:\WINDOWS\wplog.txt
                          2009-02-10 19:27:36 ----D---- C:\Documents and Settings\fati\Application Data\Thinstall
                          2009-02-10 01:31:46 ----SHD---- C:\FOUND.002
                          2009-02-09 23:22:59 ----D---- C:\Documents and Settings\fati\Application Data\U3
                          2009-02-08 13:57:14 ----D---- C:\Documents and Settings\fati\Application Data\vlc
                          2009-02-08 13:32:21 ----D---- C:\Documents and Settings\fati\Application Data\dvdcss
                          2009-02-08 13:31:34 ----D---- C:\Program Files\VideoLAN
                          2009-02-07 20:28:53 ----D---- C:\WINDOWS\pss
                          2009-02-05 23:52:22 ----D---- C:\Program Files\Avira
                          2009-02-05 20:33:40 ----D---- C:\Documents and Settings\All Users\Application Data\Adobe
                          2009-02-05 18:59:44 ----D---- C:\Program Files\Fichiers communs\xing shared
                          2009-02-05 18:59:41 ----A---- C:\WINDOWS\system32\rmoc3260.dll
                          2009-02-05 18:59:36 ----A---- C:\WINDOWS\system32\pndx5032.dll
                          2009-02-05 18:59:36 ----A---- C:\WINDOWS\system32\pndx5016.dll
                          2009-02-05 18:59:35 ----A---- C:\WINDOWS\system32\pncrt.dll
                          2009-02-05 18:59:35 ----A---- C:\WINDOWS\system32\msvcr71.dll
                          2009-02-05 18:59:35 ----A---- C:\WINDOWS\system32\msvcp71.dll
                          2009-02-05 18:59:33 ----D---- C:\Program Files\Real
                          2009-02-05 18:59:33 ----D---- C:\Program Files\Fichiers communs\Real
                          2009-02-05 18:59:00 ----D---- C:\Documents and Settings\fati\Application Data\Real
                          2009-02-05 16:21:32 ----SHD---- C:\FOUND.001
                          2009-02-04 15:23:48 ----D---- C:\Documents and Settings\fati\Application Data\Google
                          2009-02-04 15:14:50 ----D---- C:\Documents and Settings\fati\Application Data\Macromedia
                          2009-02-04 15:14:31 ----D---- C:\Documents and Settings\All Users\Application Data\Google
                          2009-02-04 15:14:27 ----D---- C:\Program Files\Google
                          2009-02-04 14:40:29 ----D---- C:\Program Files\Broadcom
                          2009-02-04 14:40:28 ----D---- C:\Documents and Settings\fati\Application Data\InstallShield
                          2009-02-04 14:40:10 ----A---- C:\WINDOWS\system32\NETw5r32.dll
                          2009-02-04 14:40:10 ----A---- C:\WINDOWS\system32\NETw5c32.dll
                          2009-02-04 08:05:52 ----SHD---- C:\FOUND.000
                          2009-02-03 21:54:51 ----D---- C:\Program Files\CONEXANT
                          2009-02-03 21:54:50 ----A---- C:\WINDOWS\system32\ksuser.dll
                          2009-02-03 17:35:07 ----D---- C:\Documents and Settings\fati\Application Data\AdobeUM
                          2009-02-03 17:35:01 ----D---- C:\Documents and Settings\fati\Application Data\Adobe
                          2009-02-03 17:34:58 ----D---- C:\Program Files\Fichiers communs\Adobe
                          2009-02-03 17:23:32 ----D---- C:\Program Files\Adobe
                          2009-02-03 17:22:59 ----D---- C:\Program Files\WinRAR
                          2009-02-03 17:22:33 ----D---- C:\WINDOWS\Cache
                          2009-02-02 22:33:40 ----D---- C:\Program Files\ma-config.com
                          2009-02-02 22:33:40 ----D---- C:\Documents and Settings\All Users\Application Data\ma-config.com
                          2009-02-02 22:03:52 ----D---- C:\WINDOWS\system32\ReinstallBackups
                          2009-02-02 20:52:19 ----D---- C:\Documents and Settings\All Users\Application Data\Avira
                          2009-02-02 20:38:56 ----HD---- C:\WINDOWS\$NtUninstallKB915326$
                          2009-02-02 20:38:49 ----HD---- C:\WINDOWS\$NtUninstallKB889673$
                          2009-02-02 20:38:41 ----HD---- C:\WINDOWS\$NtUninstallKB888402$
                          2009-02-02 20:38:34 ----HD---- C:\WINDOWS\$NtUninstallKB885464$
                          2009-02-02 20:38:26 ----HD---- C:\WINDOWS\$NtUninstallKB883667$
                          2009-02-02 20:38:18 ----HD---- C:\WINDOWS\$NtUninstallKB918005$
                          2009-02-02 20:38:08 ----HD---- C:\WINDOWS\$NtUninstallKB912436$
                          2009-02-02 20:37:53 ----HD---- C:\WINDOWS\$NtUninstallKB909667$
                          2009-02-02 20:37:42 ----HD---- C:\WINDOWS\$NtUninstallKB909095$
                          2009-02-02 20:37:24 ----HD---- C:\WINDOWS\$NtUninstallKB956841$
                          2009-02-02 20:37:17 ----HD---- C:\WINDOWS\$NtUninstallKB896256$
                          2009-02-02 20:37:03 ----HD---- C:\WINDOWS\$NtUninstallKB892559-v3$
                          2009-02-02 20:36:53 ----HD---- C:\WINDOWS\$NtUninstallKB888239$
                          2009-02-02 20:36:36 ----N---- C:\WINDOWS\system32\spmsg.dll
                          2009-02-02 20:36:28 ----HD---- C:\WINDOWS\$NtUninstallKB885855$
                          2009-02-02 20:19:49 ----D---- C:\Documents and Settings\fati\Application Data\IDM
                          2009-02-02 20:19:48 ----D---- C:\Documents and Settings\fati\Application Data\DMCache
                          2009-02-02 20:19:45 ----D---- C:\Program Files\Internet Download Manager
                          2009-02-02 18:01:22 ----D---- C:\Program Files\Microsoft Works
                          2009-02-02 18:01:15 ----D---- C:\Program Files\MSBuild
                          2009-02-02 18:01:07 ----D---- C:\Program Files\Microsoft Visual Studio
                          2009-02-02 18:01:07 ----D---- C:\Program Files\Fichiers communs\DESIGNER
                          2009-02-02 17:57:26 ----D---- C:\WINDOWS\SHELLNEW
                          2009-02-02 17:57:04 ----D---- C:\Program Files\Microsoft Office
                          2009-02-02 17:57:03 ----D---- C:\Documents and Settings\All Users\Application Data\Microsoft Help
                          2009-02-02 17:56:32 ----RHD---- C:\MSOCache
                          2009-02-02 17:33:48 ----D---- C:\WINDOWS\system32\appmgmt
                          2009-02-02 17:29:33 ----A---- C:\WINDOWS\system32\igfxres.dll
                          2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\igxprd32.dll
                          2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\igxpgd32.dll
                          2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\igxpdx32.dll
                          2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\igxpdv32.dll
                          2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\iglicd32.dll
                          2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\igldev32.dll
                          2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\igfxzoom.exe
                          2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\igfxtray.exe
                          2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\igfxsrvc.exe
                          2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\igfxsrvc.dll
                          2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\igfxress.dll
                          2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\igfxpph.dll
                          2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\igfxpers.exe
                          2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\igfxext.exe
                          2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\igfxexps.dll
                          2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\igfxdo.dll
                          2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\igfxdev.dll
                          2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\igfxCoIn_v4859.dll
                          2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\igfxcfg.exe
                          2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\hkcmd.exe
                          2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\hccutils.dll
                          2009-02-02 17:26:28 ----D---- C:\WINDOWS\system32\Lang
                          2009-02-02 17:26:28 ----D---- C:\WINDOWS\system32\DRVSTORE
                          2009-02-02 17:26:28 ----A---- C:\WINDOWS\system32\igxpun.exe
                          2009-02-02 17:26:28 ----A---- C:\WINDOWS\system32\difxapi.dll
                          2009-02-02 17:26:22 ----D---- C:\Intel
                          2009-02-02 17:23:27 ----HD---- C:\WINDOWS\$NtUninstallKB888111WXPSP2$
                          2009-02-02 17:23:07 ----D---- C:\Program Files\Hewlett-Packard
                          2009-02-02 17:22:49 ----D---- C:\SWSetup
                          2009-02-02 17:20:49 ----D---- C:\Program Files\MSN Messenger
                          2009-02-02 17:19:53 ----D---- C:\Documents and Settings\fati\Application Data\Malwarebytes
                          2009-02-02 17:19:46 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
                          2009-02-02 17:19:46 ----D---- C:\Documents and Settings\All Users\Application Data\Malwarebytes
                          2009-02-02 13:07:26 ----A---- C:\WINDOWS\ModemLog_Mobile Connector.txt
                          2009-02-02 13:04:34 ----A---- C:\WINDOWS\system32\MyDIT_GenClassCoInst.dll
                          2009-02-02 13:04:33 ----D---- C:\Program Files\HSDPA USB MODEM
                          2009-02-02 09:54:27 ----A---- C:\WINDOWS\system32\chsbrkr.dll
                          2009-02-02 09:54:26 ----A---- C:\WINDOWS\system32\korwbrkr.dll
                          2009-02-02 09:54:26 ----A---- C:\WINDOWS\system32\chtbrkr.dll
                          2009-02-02 09:54:25 ----A---- C:\WINDOWS\system32\msir3jp.dll
                          2009-02-02 09:54:10 ----A---- C:\WINDOWS\system32\c_g18030.dll
                          2009-02-02 09:54:09 ----A---- C:\WINDOWS\system32\kbd101a.dll
                          2009-02-02 09:54:00 ----A---- C:\WINDOWS\system32\kbdlk41j.dll
                          2009-02-02 09:54:00 ----A---- C:\WINDOWS\system32\kbdlk41a.dll
                          2009-02-02 09:53:59 ----A---- C:\WINDOWS\system32\kbdnecNT.dll
                          2009-02-02 09:53:59 ----A---- C:\WINDOWS\system32\kbdnecAT.dll
                          2009-02-02 09:53:59 ----A---- C:\WINDOWS\system32\kbdnec95.dll
                          2009-02-02 09:53:59 ----A---- C:\WINDOWS\system32\kbdibm02.dll
                          2009-02-02 09:53:59 ----A---- C:\WINDOWS\system32\kbdax2.dll
                          2009-02-02 09:53:59 ----A---- C:\WINDOWS\system32\kbd106n.dll
                          2009-02-02 09:53:59 ----A---- C:\WINDOWS\system32\kbd101.dll
                          2009-02-02 09:53:59 ----A---- C:\WINDOWS\system32\f3ahvoas.dll
                          2009-02-02 09:53:40 ----A---- C:\WINDOWS\system32\c_is2022.dll
                          2009-02-02 09:53:37 ----A---- C:\WINDOWS\system32\uniime.dll
                          2009-02-02 09:53:31 ----A---- C:\WINDOWS\system32\imjp81k.dll
                          2009-02-02 09:53:28 ----RA---- C:\WINDOWS\system32\kbdarmw.dll
                          2009-02-02 09:53:28 ----RA---- C:\WINDOWS\system32\kbdarme.dll
                          2009-02-02 09:53:28 ----A---- C:\WINDOWS\system32\Thawbrkr.dll
                          2009-02-02 09:53:28 ----A---- C:\WINDOWS\system32\kbdkor.dll
                          2009-02-02 09:53:28 ----A---- C:\WINDOWS\system32\kbdjpn.dll
                          2009-02-02 09:53:28 ----A---- C:\WINDOWS\system32\kbd106.dll
                          2009-02-02 09:53:28 ----A---- C:\WINDOWS\system32\kbd103.dll
                          2009-02-02 09:53:28 ----A---- C:\WINDOWS\system32\kbd101c.dll
                          2009-02-02 09:53:28 ----A---- C:\WINDOWS\system32\kbd101b.dll
                          2009-02-02 09:53:27 ----RA---- C:\WINDOWS\system32\kbdvntc.dll
                          2009-02-02 09:53:27 ----RA---- C:\WINDOWS\system32\kbdintel.dll
                          2009-02-02 09:53:27 ----RA---- C:\WINDOWS\system32\kbdintam.dll
                          2009-02-02 09:53:27 ----RA---- C:\WINDOWS\system32\kbdinpun.dll
                          2009-02-02 09:53:27 ----RA---- C:\WINDOWS\system32\kbdinmar.dll
                          2009-02-02 09:53:27 ----RA---- C:\WINDOWS\system32\kbdinkan.dll
                          2009-02-02 09:53:27 ----RA---- C:\WINDOWS\system32\kbdinhin.dll
                          2009-02-02 09:53:27 ----RA---- C:\WINDOWS\system32\kbdinguj.dll
                          2009-02-02 09:53:27 ----RA---- C:\WINDOWS\system32\kbdindev.dll
                          2009-02-02 09:53:27 ----RA---- C:\WINDOWS\system32\kbdgeo.dll
                          2009-02-02 09:53:27 ----A---- C:\WINDOWS\system32\c_iscii.dll
                          2009-02-02 09:53:24 ----RA---- C:\WINDOWS\system32\kbdurdu.dll
                          2009-02-02 09:53:24 ----RA---- C:\WINDOWS\system32\kbdsyr2.dll
                          2009-02-02 09:53:24 ----RA---- C:\WINDOWS\system32\kbdsyr1.dll
                          2009-02-02 09:53:24 ----RA---- C:\WINDOWS\system32\kbdfa.dll
                          2009-02-02 09:53:24 ----RA---- C:\WINDOWS\system32\kbddiv2.dll
                          2009-02-02 09:53:24 ----RA---- C:\WINDOWS\system32\kbddiv1.dll
                          2009-02-02 09:53:24 ----RA---- C:\WINDOWS\system32\kbda3.dll
                          2009-02-02 09:53:24 ----RA---- C:\WINDOWS\system32\kbda2.dll
                          2009-02-02 09:53:24 ----RA---- C:\WINDOWS\system32\kbda1.dll
                          2009-02-02 09:53:24 ----A---- C:\WINDOWS\system32\kbdusa.dll
                          2009-02-02 09:53:20 ----RA---- C:\WINDOWS\system32\kbdheb.dll
                          2009-02-02 09:53:16 ----RA---- C:\WINDOWS\system32\kbdth3.dll
                          2009-02-02 09:53:16 ----RA---- C:\WINDOWS\system32\kbdth2.dll
                          2009-02-02 09:53:16 ----RA---- C:\WINDOWS\system32\kbdth1.dll
                          2009-02-02 09:53:15 ----RA---- C:\WINDOWS\system32\kbdth0.dll
                          2009-02-02 09:53:15 ----A---- C:\WINDOWS\system32\ftlx041e.dll
                          2009-02-02 03:16:51 ----HD---- C:\WINDOWS\$NtUninstallKB951376-v2$
                          2009-02-02 03:16:48 ----HD---- C:\WINDOWS\$NtUninstallKB952954$
                          2009-02-02 03:16:44 ----HD---- C:\WINDOWS\$NtUninstallKB946648$
                          2009-02-02 03:16:40 ----HD---- C:\WINDOWS\$NtUninstallKB956803$
                          2009-02-02 03:16:36 ----HD---- C:\WINDOWS\$NtUninstallKB955839$
                          2009-02-02 03:16:32 ----HD---- C:\WINDOWS\$NtUninstallKB956391$
                          2009-02-02 03:16:21 ----HD---- C:\WINDOWS\$NtUninstallKB958215$
                          2009-02-02 03:16:14 ----HD---- C:\WINDOWS\$NtUninstallKB950974$
                          2009-02-02 03:16:10 ----HD---- C:\WINDOWS\$NtUninstallKB951698$
                          2009-02-02 03:16:05 ----HD---- C:\WINDOWS\$NtUninstallKB954211$
                          2009-02-02 03:15:55 ----HD---- C:\WINDOWS\$NtUninstallKB956841_0$
                          2009-02-02 03:15:47 ----HD---- C:\WINDOWS\$NtUninstallKB960714$
                          2009-02-02 03:15:43 ----HD---- C:\WINDOWS\$NtUninstallKB950762$
                          2009-02-02 03:15:39 ----HD---- C:\WINDOWS\$NtUninstallKB957097$
                          2009-02-02 03:15:35 ----HD---- C:\WINDOWS\$NtUninstallKB958687$
                          2009-02-02 03:15:32 ----HD---- C:\WINDOWS\$NtUninstallKB952287$
                          2009-02-02 03:15:27 ----HD---- C:\WINDOWS\$NtUninstallKB951066$
                          2009-02-02 03:15:22 ----HD---- C:\WINDOWS\$NtUninstallKB951748$
                          2009-02-02 03:15:19 ----HD---- C:\WINDOWS\$NtUninstallKB938464$
                          2009-02-02 03:15:15 ----HD---- C:\WINDOWS\$NtUninstallKB954600$
                          2009-02-02 03:15:11 ----HD---- C:\WINDOWS\$NtUninstallKB958644$
                          2009-02-02 03:04:42 ----N---- C:\WINDOWS\system32\tzchange.exe
                          2009-02-02 03:00:16 ----D---- C:\WINDOWS\system32\PreInstall
                          2009-02-02 03:00:16 ----A---- C:\WINDOWS\system32\spupdsvc.exe
                          2009-02-02 03:00:15 ----HD---- C:\WINDOWS\$NtUninstallKB898461$
                          2009-02-02 03:00:14 ----HD---- C:\WINDOWS\$hf_mig$
                          2009-02-01 23:48:56 ----D---- C:\WINDOWS\system32\SoftwareDistribution
                          2009-02-01 23:45:46 ----A---- C:\WINDOWS\adidsl.ini
                          2009-02-01 23:45:44 ----A---- C:\WINDOWS\adiras.ini
                          2009-02-01 23:45:44 ----A---- C:\WINDOWS\adiras.exe
                          2009-02-01 23:45:43 ----A---- C:\WINDOWS\system32\IPDETECT.EXE
                          2009-02-01 23:45:43 ----A---- C:\WINDOWS\system32\AdADIx32.dll
                          2009-02-01 23:45:42 ----A---- C:\WINDOWS\system32\unaddrv.exe
                          2009-02-01 23:45:42 ----A---- C:\WINDOWS\system32\coclassfast.dll
                          2009-02-01 23:45:42 ----A---- C:\WINDOWS\system32\AdADIx2K.dll
                          2009-02-01 23:45:42 ----A---- C:\WINDOWS\system32\ADADIX16.DLL
                          2009-02-01 23:45:42 ----A---- C:\WINDOWS\enddisk32.exe
                          2009-02-01 23:45:41 ----HD---- C:\Program Files\InstallShield Installation Information
                          2009-02-01 23:45:41 ----A---- C:\WINDOWS\autoclk.exe
                          2009-02-01 23:45:38 ----D---- C:\Program Files\SAGEM
                          2009-02-01 23:45:37 ----D---- C:\Program Files\Fichiers communs\InstallShield
                          2009-02-01 23:41:57 ----D---- C:\Documents and Settings\fati\Application Data\Identities
                          2009-02-01 23:41:55 ----HD---- C:\Program Files\Uninstall Information
                          2009-02-01 23:41:52 ----SD---- C:\Documents and Settings\fati\Application Data\Microsoft
                          2009-02-01 23:41:52 ----ASH---- C:\Documents and Settings\fati\Application Data\desktop.ini
                          2009-02-01 23:41:14 ----SHD---- C:\System Volume Information
                          2009-02-01 23:41:12 ----D---- C:\WINDOWS\SoftwareDistribution
                          2009-02-01 23:41:11 ----SD---- C:\WINDOWS\system32\Microsoft
                          2009-02-01 23:41:11 ----D---- C:\WINDOWS\Prefetch
                          2009-02-01 23:41:11 ----A---- C:\WINDOWS\SchedLgU.Txt
                          2009-02-01 23:35:12 ----D---- C:\WINDOWS\system32\xircom
                          2009-02-01 23:35:12 ----D---- C:\Program Files\xerox
                          2009-02-01 23:35:12 ----D---- C:\Program Files\microsoft frontpage
                          2009-02-01 23:35:00 ----A---- C:\WINDOWS\control.ini
                          2009-02-01 23:35:00 ----A---- C:\AUTOEXEC.BAT
                          2009-02-01 23:34:52 ----A---- C:\WINDOWS\OEWABLog.txt
                          2009-02-01 23:34:49 ----A---- C:\WINDOWS\system32\mapi32.dll
                          2009-02-01 23:34:09 ----SD---- C:\WINDOWS\Downloaded Program Files
                          2009-02-01 23:34:09 ----RD---- C:\WINDOWS\Offline Web Pages
                          2009-02-01 23:34:08 ----RAH---- C:\WINDOWS\system32\logonui.exe.manifest
                          2009-02-01 23:34:04 ----RAH---- C:\WINDOWS\system32\cdplayer.exe.manifest
                          2009-02-01 23:34:01 ----HD---- C:\Program Files\WindowsUpdate
                          2009-02-01 23:33:59 ----D---- C:\Program Files\Services en ligne
                          2009-02-01 23:33:41 ----D---- C:\WINDOWS\system32\DirectX
                          2009-02-01 23:33:16 ----A---- C:\WINDOWS\system32\atrace.dll
                          2009-02-01 23:33:13 ----A---- C:\WINDOWS\system32\desktop.ini
                          2009-02-01 23:33:13 ----A---- C:\WINDOWS\desktop.ini
                          2009-02-01 23:33:05 ----A---- C:\WINDOWS\system32\nmevtmsg.dll
                          2009-02-01 23:33:04 ----A---- C:\WINDOWS\system32\acctres.dll
                          2009-02-01 23:33:03 ----D---- C:\Program Files\Fichiers communs\Services
                          2009-02-01 23:33:00 ----SD---- C:\WINDOWS\Tasks
                          2009-02-01 23:33:00 ----A---- C:\WINDOWS\system32\icfgnt5.dll
                          2009-02-01 23:32:59 ----D---- C:\Program Files\Fichiers communs\MSSoap
                          2009-02-01 23:32:54 ----D---- C:\WINDOWS\srchasst
                          2009-02-01 23:32:53 ----D---- C:\WINDOWS\system32\Macromed
                          2009-02-01 23:32:49 ----A---- C:\WINDOWS\system32\wuweb.dll
                          2009-02-01 23:32:49 ----A---- C:\WINDOWS\system32\wups.dll
                          2009-02-01 23:32:49 ----A---- C:\WINDOWS\system32\wucltui.dll
                          2009-02-01 23:32:49 ----A---- C:\WINDOWS\system32\wuauserv.dll
                          2009-02-01 23:32:49 ----A---- C:\WINDOWS\system32\wuaueng1.dll
                          2009-02-01 23:32:49 ----A---- C:\WINDOWS\system32\wuaueng.dll
                          2009-02-01 23:32:49 ----A---- C:\WINDOWS\system32\wuauclt1.exe
                          2009-02-01 23:32:48 ----A---- C:\WINDOWS\system32\wuauclt.exe
                          2009-02-01 23:32:48 ----A---- C:\WINDOWS\system32\wuapi.dll
                          2009-02-01 23:32:48 ----A---- C:\WINDOWS\system32\qmgrprxy.dll
                          2009-02-01 23:32:48 ----A---- C:\WINDOWS\system32\qmgr.dll
                          2009-02-01 23:32:48 ----A---- C:\WINDOWS\system32\bitsprx3.dll
                          2009-02-01 23:32:48 ----A---- C:\WINDOWS\system32\bitsprx2.dll
                          2009-02-01 23:32:42 ----D---- C:\Program Files\Movie Maker
                          2009-02-01 23:32:38 ----A---- C:\WINDOWS\system32\safrslv.dll
                          2009-02-01 23:32:38 ----A---- C:\WINDOWS\system32\safrdm.dll
                          2009-02-01 23:32:38 ----A---- C:\WINDOWS\system32\safrcdlg.dll
                          2009-02-01 23:32:38 ----A---- C:\WINDOWS\system32\racpldlg.dll
                          2009-02-01 23:32:33 ----A---- C:\WINDOWS\system32\fltMc.exe
                          2009-02-01 23:32:33 ----A---- C:\WINDOWS\system32\fltlib.dll
                          2009-02-01 23:32:32 ----D---- C:\WINDOWS\system32\Restore
                          2009-02-01 23:32:32 ----A---- C:\WINDOWS\system32\srsvc.dll
                          2009-02-01 23:32:32 ----A---- C:\WINDOWS\system32\srrstr.dll
                          2009-02-01 23:32:32 ----A---- C:\WINDOWS\system32\srclient.dll
                          2009-02-01 23:32:31 ----A---- C:\WINDOWS\system32\nmmkcert.dll
                          2009-02-01 23:32:31 ----A---- C:\WINDOWS\system32\msconf.dll
                          2009-02-01 23:32:31 ----A---- C:\WINDOWS\system32\mnmsrvc.exe
                          2009-02-01 23:32:31 ----A---- C:\WINDOWS\system32\mnmdd.dll
                          2009-02-01 23:32:31 ----A---- C:\WINDOWS\system32\isrdbg32.dll
                          2009-02-01 23:32:31 ----A---- C:\WINDOWS\system32\ils.dll
                          2009-02-01 23:32:28 ----D---- C:\Program Files\NetMeeting
                          2009-02-01 23:32:28 ----A---- C:\WINDOWS\system32\msoert2.dll
                          2009-02-01 23:32:27 ----A---- C:\WINDOWS\system32\msoeacct.dll
                          2009-02-01 23:32:26 ----A---- C:\WINDOWS\system32\inetres.dll
                          2009-02-01 23:32:26 ----A---- C:\WINDOWS\system32\inetcomm.dll
                          2009-02-01 23:32:24 ----D---- C:\Program Files\Outlook Express
                          2009-02-01 23:32:24 ----A---- C:\WINDOWS\system32\schedsvc.dll
                          2009-02-01 23:32:23 ----A---- C:\WINDOWS\system32\mstinit.exe
                          2009-02-01 23:32:23 ----A---- C:\WINDOWS\system32\mstask.dll
                          2009-02-01 23:32:23 ----A---- C:\WINDOWS\system32\isign32.dll
                          2009-02-01 23:32:23 ----A---- C:\WINDOWS\system32\icwphbk.dll
                          2009-02-01 23:32:23 ----A---- C:\WINDOWS\system32\icwdial.dll
                          2009-02-01 23:32:22 ----A---- C:\WINDOWS\system32\inetcfg.dll
                          2009-02-01 23:32:15 ----D---- C:\Program Files\Fichiers communs\System
                          2009-02-01 23:32:11 ----D---- C:\Program Files\Internet Explorer
                          2009-02-01 23:31:35 ----D---- C:\Program Files\ComPlus Applications
                          2009-02-01 23:31:33 ----A---- C:\WINDOWS\vbaddin.ini
                          2009-02-01 23:31:33 ----A---- C:\WINDOWS\vb.ini
                          2009-02-01 23:31:30 ----D---- C:\WINDOWS\Registration
                          2009-02-01 23:31:26 ----D---- C:\Program Files\Windows Media Player
                          2009-02-01 23:31:26 ----D---- C:\Program Files\Online Services
                          2009-02-01 23:31:20 ----D---- C:\Program Files\Messenger
                          2009-02-01 23:31:16 ----D---- C:\Program Files\MSN Gaming Zone
                          2009-02-01 23:31:16 ----A---- C:\WINDOWS\system32\write.exe
                          2009-02-01 23:31:05 ----A---- C:\WINDOWS\system32\sndvol32.exe
                          2009-02-01 23:31:05 ----A---- C:\WINDOWS\system32\hticons.dll
                          2009-02-01 23:31:04 ----A---- C:\WINDOWS\system32\avwav.dll
                          2009-02-01 23:31:04 ----A---- C:\WINDOWS\system32\avtapi.dll
                          2009-02-01 23:31:04 ----A---- C:\WINDOWS\system32\avmeter.dll
                          2009-02-01 23:31:03 ----A---- C:\WINDOWS\system32\winchat.exe
                          2009-02-01 23:30:56 ----A---- C:\WINDOWS\system32\getuname.dll
                          2009-02-01 23:30:55 ----A---- C:\WINDOWS\system32\sol.exe
                          2009-02-01 23:30:55 ----A---- C:\WINDOWS\system32\charmap.exe
                          2009-02-01 23:30:55 ----A---- C:\WINDOWS\system32\calc.exe
                          2009-02-01 23:30:54 ----A---- C:\WINDOWS\system32\winmine.exe
                          2009-02-01 23:30:54 ----A---- C:\WINDOWS\system32\reset.exe
                          2009-02-01 23:30:54 ----A---- C:\WINDOWS\system32\mshearts.exe
                          2009-02-01 23:30:54 ----A---- C:\WINDOWS\system32\freecell.exe
                          2009-02-01 23:30:53 ----A---- C:\WINDOWS\system32\usrlogon.cmd
                          2009-02-01 23:30:53 ----A---- C:\WINDOWS\system32\tsshutdn.exe
                          2009-02-01 23:30:53 ----A---- C:\WINDOWS\system32\tslabels.ini
                          2009-02-01 23:30:53 ----A---- C:\WINDOWS\system32\tskill.exe
                          2009-02-01 23:30:53 ----A---- C:\WINDOWS\system32\tsdiscon.exe
                          2009-02-01 23:30:53 ----A---- C:\WINDOWS\system32\tscon.exe
                          2009-02-01 23:30:53 ----A---- C:\WINDOWS\system32\shadow.exe
                          2009-02-01 23:30:53 ----A---- C:\WINDOWS\system32\rwinsta.exe
                          2009-02-01 23:30:53 ----A---- C:\WINDOWS\system32\regini.exe
                          2009-02-01 23:30:53 ----A---- C:\WINDOWS\system32\rdpcfgex.dll
                          2009-02-01 23:30:53 ----A---- C:\WINDOWS\system32\qwinsta.exe
                          2009-02-01 23:30:53 ----A---- C:\WINDOWS\system32\qappsrv.exe
                          2009-02-01 23:30:52 ----A---- C:\WINDOWS\system32\msg.exe
                          2009-02-01 23:30:52 ----A---- C:\WINDOWS\system32\msdtcprf.ini
                          2009-02-01 23:30:52 ----A---- C:\WINDOWS\system32\logoff.exe
                          2009-02-01 23:30:52 ----A---- C:\WINDOWS\system32\cdmodem.dll
                          2009-02-01 23:30:51 ----A---- C:\WINDOWS\system32\mtxlegih.dll
                          2009-02-01 23:30:51 ----A---- C:\WINDOWS\system32\mtxex.dll
                          2009-02-01 23:30:51 ----A---- C:\WINDOWS\system32\mtxdm.dll
                          2009-02-01 23:30:51 ----A---- C:\WINDOWS\system32\dcomcnfg.exe
                          2009-02-01 23:30:51 ----A---- C:\WINDOWS\system32\comrepl.dll
                          2009-02-01 23:30:51 ----A---- C:\WINDOWS\system32\comaddin.dll
                          2009-02-01 23:30:50 ----A---- C:\WINDOWS\system32\stclient.dll
                          2009-02-01 23:30:50 ----A---- C:\WINDOWS\system32\comsnap.dll
                          2009-02-01 23:30:44 ----A---- C:\WINDOWS\system32\wmimgmt.msc
                          2009-02-01 23:30:29 ----D---- C:\Program Files\MSN
                          2009-02-01 23:30:28 ----A---- C:\WINDOWS\system32\sndrec32.exe
                          2009-02-01 23:30:28 ----A---- C:\WINDOWS\system32\mplay32.exe
                          2009-02-01 23:30:28 ----A---- C:\WINDOWS\system32\accwiz.exe
                          2009-02-01 23:30:27 ----D---- C:\Program Files\Windows NT
                          2009-02-01 23:30:27 ----A---- C:\WINDOWS\system32\mspaint.exe
                          2009-02-01 23:30:27 ----A---- C:\WINDOWS\system32\hypertrm.dll
                          2009-02-01 23:30:26 ----A---- C:\WINDOWS\system32\spider.exe
                          2009-02-01 23:30:26 ----A---- C:\WINDOWS\system32\clipbrd.exe
                          2009-02-01 23:30:25 ----A---- C:\WINDOWS\system32\tscfgwmi.dll
                          2009-02-01 23:30:25 ----A---- C:\WINDOWS\system32\remotepg.dll
                          2009-02-01 23:30:25 ----A---- C:\WINDOWS\system32\rdsaddin.exe
                          2009-02-01 23:30:25 ----A---- C:\WINDOWS\system32\mstscax.dll
                          2009-02-01 23:30:25 ----A---- C:\WINDOWS\system32\mstsc.exe
                          2009-02-01 23:30:24 ----A---- C:\WINDOWS\system32\tscupgrd.exe
                          2009-02-01 23:30:24 ----A---- C:\WINDOWS\system32\termsrv.dll
                          2009-02-01 23:30:24 ----A---- C:\WINDOWS\system32\sessmgr.exe
                          2009-02-01 23:30:24 ----A---- C:\WINDOWS\system32\rdshost.exe
                          2009-02-01 23:30:24 ----A---- C:\WINDOWS\system32\rdpwsx.dll
                          2009-02-01 23:30:24 ----A---- C:\WINDOWS\system32\rdpsnd.dll
                          2009-02-01 23:30:24 ----A---- C:\WINDOWS\system32\rdpclip.exe
                          2009-02-01 23:30:24 ----A---- C:\WINDOWS\system32\rdchost.dll
                          2009-02-01 23:30:24 ----A---- C:\WINDOWS\system32\qprocess.exe
                          2009-02-01 23:30:23 ----D---- C:\WINDOWS\system32\MsDtc
                          2009-02-01 23:30:23 ----A---- C:\WINDOWS\system32\mtxoci.dll
                          2009-02-01 23:30:23 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
                          2009-02-01 23:30:23 ----A---- C:\WINDOWS\system32\msdtcprx.dll
                          2009-02-01 23:30:23 ----A---- C:\WINDOWS\system32\icaapi.dll
                          2009-02-01 23:30:23 ----A---- C:\WINDOWS\system32\cfgbkend.dll
                          2009-02-01 23:30:22 ----A---- C:\WINDOWS\system32\xolehlp.dll
                          2009-02-01 23:30:22 ----A---- C:\WINDOWS\system32\msdtctm.dll
                          2009-02-01 23:30:22 ----A---- C:\WINDOWS\system32\msdtclog.dll
                          2009-02-01 23:30:22 ----A---- C:\WINDOWS\system32\msdtc.exe
                          2009-02-01 23:30:21 ----D---- C:\WINDOWS\system32\Com
                          2009-02-01 23:30:21 ----A---- C:\WINDOWS\system32\colbact.dll
                          2009-02-01 23:30:21 ----A---- C:\WINDOWS\system32\clbcatex.dll
                          2009-02-01 23:30:21 ----A---- C:\WINDOWS\system32\catsrvps.dll
                          2009-02-01 23:30:20 ----A---- C:\WINDOWS\system32\comsvcs.dll
                          2009-02-01 23:30:20 ----A---- C:\WINDOWS\system32\catsrvut.dll
                          2009-02-01 23:30:20 ----A---- C:\WINDOWS\system32\catsrv.dll
                          2009-02-01 23:30:19 ----A---- C:\WINDOWS\system32\comuid.dll
                          2009-02-01 23:30:19 ----A---- C:\WINDOWS\system32\clbcatq.dll
                          2009-02-01 23:30:11 ----A---- C:\WINDOWS\system32\servdeps.dll
                          2009-02-01 23:30:11 ----A---- C:\WINDOWS\system32\mmfutil.dll
                          2009-02-01 23:30:11 ----A---- C:\WINDOWS\system32\licwmi.dll
                          2009-02-01 23:30:11 ----A---- C:\WINDOWS\system32\cmprops.dll
                          2009-02-01 23:29:18 ----A---- C:\WINDOWS\system32\h323log.txt
                          2009-02-01 23:28:23 ----A---- C:\WINDOWS\system32\usbui.dll
                          2009-02-01 23:27:22 ----A---- C:\WINDOWS\imsins.BAK
                          2009-02-01 23:27:20 ----SHD---- C:\WINDOWS\Installer
                          2009-02-01 23:27:20 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
                          2009-02-01 23:27:19 ----D---- C:\Program Files\Fichiers communs\ODBC
                          2009-02-01 23:27:19 ----A---- C:\WINDOWS\ODBCINST.INI
                          2009-02-01 23:27:16 ----D---- C:\Program Files\Fichiers communs\SpeechEngines
                          2009-02-01 23:27:15 ----RD---- C:\Program Files
                          2009-02-01 23:27:15 ----D---- C:\Program Files\Fichiers communs\Microsoft Shared
                          2009-02-01 23:27:15 ----D---- C:\Program Files\Fichiers communs
                          2009-02-01 23:27:12 ----RA---- C:\WINDOWS\system32\kbdtuq.dll
                          2009-02-01 23:27:12 ----RA---- C:\WINDOWS\system32\kbdtuf.dll
                          2009-02-01 23:27:12 ----RA---- C:\WINDOWS\system32\kbdazel.dll
                          2009-02-01 23:27:10 ----RA---- C:\WINDOWS\system32\kbdycc.dll
                          2009-02-01 23:27:10 ----RA---- C:\WINDOWS\system32\kbduzb.dll
                          2009-02-01 23:27:10 ----RA---- C:\WINDOWS\system32\kbdur.dll
                          2009-02-01 23:27:10 ----RA---- C:\WINDOWS\system32\kbdtat.dll
                          2009-02-01 23:27:10 ----RA---- C:\WINDOWS\system32\kbdru1.dll
                          2009-02-01 23:27:10 ----RA---- C:\WINDOWS\system32\kbdru.dll
                          2009-02-01 23:27:10 ----RA---- C:\WINDOWS\system32\kbdmon.dll
                          2009-02-01 23:27:10 ----RA---- C:\WINDOWS\system32\kbdkyr.dll
                          2009-02-01 23:27:10 ----RA---- C:\WINDOWS\system32\kbdkaz.dll
                          2009-02-01 23:27:10 ----RA---- C:\WINDOWS\system32\kbdaze.dll
                          2009-02-01 23:27:09 ----RA---- C:\WINDOWS\system32\kbdbu.dll
                          2009-02-01 23:27:09 ----RA---- C:\WINDOWS\system32\kbdblr.dll
                          2009-02-01 23:27:07 ----RA---- C:\WINDOWS\system32\kbdhept.dll
                          2009-02-01 23:27:07 ----RA---- C:\WINDOWS\system32\kbdhela3.dll
                          2009-02-01 23:27:07 ----RA---- C:\WINDOWS\system32\kbdhela2.dll
                          2009-02-01 23:27:07 ----RA---- C:\WINDOWS\system32\kbdhe319.dll
                          2009-02-01 23:27:07 ----RA---- C:\WINDOWS\system32\kbdhe220.dll
                          2009-02-01 23:27:07 ----RA---- C:\WINDOWS\system32\kbdhe.dll
                          2009-02-01 23:27:07 ----RA---- C:\WINDOWS\system32\kbdgkl.dll
                          2009-02-01 23:27:05 ----RA---- C:\WINDOWS\system32\kbdlv1.dll
                          2009-02-01 23:27:05 ----RA---- C:\WINDOWS\system32\kbdlv.dll
                          2009-02-01 23:27:05 ----RA---- C:\WINDOWS\system32\kbdlt1.dll
                          2009-02-01 23:27:05 ----RA---- C:\WINDOWS\system32\kbdlt.dll
                          2009-02-01 23:27:05 ----RA---- C:\WINDOWS\system32\kbdest.dll
                          2009-02-01 23:27:03 ----RA---- C:\WINDOWS\system32\kbdycl.dll
                          2009-02-01 23:27:03 ----RA---- C:\WINDOWS\system32\kbdsl1.dll
                          2009-02-01 23:27:03 ----RA---- C:\WINDOWS\system32\kbdsl.dll
                          2009-02-01 23:27:03 ----RA---- C:\WINDOWS\system32\kbdro.dll
                          2009-02-01 23:27:03 ----RA---- C:\WINDOWS\system32\kbdpl1.dll
                          2009-02-01 23:27:03 ----RA---- C:\WINDOWS\system32\kbdpl.dll
                          2009-02-01 23:27:03 ----RA---- C:\WINDOWS\system32\kbdhu1.dll
                          2009-02-01 23:27:03 ----RA---- C:\WINDOWS\system32\kbdhu.dll
                          2009-02-01 23:27:03 ----RA---- C:\WINDOWS\system32\kbdcz2.dll
                          2009-02-01 23:27:03 ----RA---- C:\WINDOWS\system32\kbdcz1.dll
                          2009-02-01 23:27:03 ----RA---- C:\WINDOWS\system32\kbdcz.dll
                          2009-02-01 23:27:03 ----RA---- C:\WINDOWS\system32\kbdcr.dll
                          2009-02-01 23:27:03 ----RA---- C:\WINDOWS\system32\KBDAL.DLL
                          2009-02-01 23:27:00 ----A---- C:\WINDOWS\system32\spxcoins.dll
                          2009-02-01 23:27:00 ----A---- C:\WINDOWS\system32\irclass.dll
                          2009-02-01 23:27:00 ----A---- C:\WINDOWS\system32\EqnClass.Dll
                          2009-02-01 23:27:00 ----A---- C:\WINDOWS\system32\dgsetup.dll
                          2009-02-01 23:27:00 ----A---- C:\WINDOWS\system32\dgrpsetu.dll
                          2009-02-01 23:26:57 ----N---- C:\WINDOWS\system32\CONFIG.TMP
                          2009-02-01 23:26:57 ----A---- C:\WINDOWS\TASKMAN.EXE
                          2009-02-01 23:26:57 ----A---- C:\WINDOWS\system32\batt.dll
                          2009-02-01 23:26:56 ----A---- C:\WINDOWS\system32\storprop.dll
                          2009-02-01 23:26:56 ----A---- C:\WINDOWS\NOTEPAD.EXE
                          2009-02-01 23:26:49 ----ASH---- C:\Documents and Settings\All Users\Application Data\desktop.ini
                          2009-02-01 23:26:45 ----RA---- C:\WINDOWS\SET8.tmp
                          2009-02-01 23:26:43 ----RA---- C:\WINDOWS\SET4.tmp
                          2009-02-01 23:26:41 ----RA---- C:\WINDOWS\SET3.tmp
                          2009-02-01 23:26:37 ----D---- C:\WINDOWS\system32\CatRoot2
                          2009-02-01 23:26:37 ----D---- C:\WINDOWS\system32\CatRoot
                          2009-02-01 23:26:31 ----SD---- C:\Documents and Settings\All Users\Application Data\Microsoft
                          2009-02-01 23:26:08 ----A---- C:\WINDOWS\setuplog.txt
                          2009-02-01 23:26:05 ----D---- C:\Documents and Settings
                          2009-02-01 23:25:27 ----SH---- C:\boot.ini
                          2009-02-01 23:19:56 ----RSHD---- C:\WINDOWS\system32\dllcache
                          2009-02-01 23:19:56 ----D---- C:\WINDOWS\WinSxS
                          2009-02-01 23:19:56 ----D---- C:\WINDOWS\twain_32
                          2009-02-01 23:19:56 ----D---- C:\WINDOWS\Temp
                          2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\usmt
                          2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\oobe
                          2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\mui
                          2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\inetsrv
                          2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\IME
                          2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\icsxml
                          2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\ias
                          2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\export
                          2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\3com_dmi
                          2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\3076
                          2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\2052
                          2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\1054
                          2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\1042
                          2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\1041
                          2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\1037
                          2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\1036
                          2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\1033
                          2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\1031
                          2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\1028
                          2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\1025
                          2009-02-01 23:19:56 ----D---- C:\WINDOWS\Resources
                          2009-02-01 23:19:56 ----D---- C:\WINDOWS\Provisioning
                          2009-02-01 23:19:56 ----D---- C:\WINDOWS\PeerNet
                          2009-02-01 23:19:56 ----D---- C:\WINDOWS\pchealth
                          2009-02-01 23:19:56 ----D---- C:\WINDOWS\mui
                          2009-02-01 23:19:56 ----D---- C:\WINDOWS\msapps
                          2009-02-01 23:19:56 ----D---- C:\WINDOWS\ime
                          2009-02-01 23:19:56 ----D---- C:\WINDOWS\ehome
                          2009-02-01 23:19:56 ----D---- C:\WINDOWS\Debug
                          2009-02-01 23:19:56 ----D---- C:\WINDOWS\AppPatch
                          2009-02-01 23:19:55 ----RSD---- C:\WINDOWS\Fonts
                          2009-02-01 23:19:55 ----RD---- C:\WINDOWS\Web
                          2009-02-01 23:19:55 ----HD---- C:\WINDOWS\inf
                          2009-02-01 23:19:55 ----D---- C:\WINDOWS\system32\wins
                          2009-02-01 23:19:55 ----D---- C:\WINDOWS\system32\wbem
                          2009-02-01 23:19:55 ----D---- C:\WINDOWS\system32\spool
                          2009-02-01 23:19:55 ----D---- C:\WINDOWS\system32\ShellExt
                          2009-02-01 23:19:55 ----D---- C:\WINDOWS\system32\Setup
                          2009-02-01 23:19:55 ----D---- C:\WINDOWS\system32\ras
                          2009-02-01 23:19:55 ----D---- C:\WINDOWS\system32\npp
                          2009-02-01 23:19:55 ----D---- C:\WINDOWS\system32\drivers
                          2009-02-01 23:19:55 ----D---- C:\WINDOWS\system32\dhcp
                          2009-02-01 23:19:55 ----D---- C:\WINDOWS\system32\config
                          2009-02-01 23:19:55 ----D---- C:\WINDOWS\system32
                          2009-02-01 23:19:55 ----D---- C:\WINDOWS\system
                          2009-02-01 23:19:55 ----D---- C:\WINDOWS\security
                          2009-02-01 23:19:55 ----D---- C:\WINDOWS\repair
                          2009-02-01 23:19:55 ----D---- C:\WINDOWS\msagent
                          2009-02-01 23:19:55 ----D---- C:\WINDOWS\Media
                          2009-02-01 23:19:55 ----D---- C:\WINDOWS\java
                          2009-02-01 23:19:55 ----D---- C:\WINDOWS\Help
                          2009-02-01 23:19:55 ----D---- C:\WINDOWS\Driver Cache
                          2009-02-01 23:19:55 ----D---- C:\WINDOWS\Cursors
                          2009-02-01 23:19:55 ----D---- C:\WINDOWS\Connection Wizard
                          2009-02-01 23:19:55 ----D---- C:\WINDOWS\Config
                          2009-02-01 23:19:55 ----D---- C:\WINDOWS\addins
                          2009-02-01 23:19:55 ----D---- C:\WINDOWS

                          ======List of files/folders modified in the last 2 months======

                          2009-02-17 09:21:14 ----A---- C:\WINDOWS\win.ini
                          2009-02-14 22:03:00 ----A---- C:\WINDOWS\system.ini

                          ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

                          R1 avgio;avgio; \??\C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgio.sys []
                          R1 avipbb;avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [2009-02-06 75072]
                          R1 intelppm;Pilote de processeur Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2004-08-19 40320]
                          R1 ssmdrv;ssmdrv; C:\WINDOWS\system32\DRIVERS\ssmdrv.sys [2007-03-01 28352]
                          R1 WmiAcpi;Interface de gestion Microsoft Windows pour ACPI; C:\WINDOWS\system32\DRIVERS\wmiacpi.sys [2004-08-03 8832]
                          R2 NwlnkIpx;Protocole de transport compatible NWLink IPX/SPX/NetBIOS; C:\WINDOWS\system32\DRIVERS\nwlnkipx.sys [2004-08-03 88448]
                          R2 NwlnkNb;NetBIOS NWLink; C:\WINDOWS\system32\DRIVERS\nwlnknb.sys [2001-09-28 63232]
                          R2 NwlnkSpx;Protocole NWLink SPX/SPXII; C:\WINDOWS\system32\DRIVERS\nwlnkspx.sys [2001-09-28 55936]
                          R3 avgntflt;avgntflt; \??\C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgntflt.sys []
                          R3 CmBatt;Pilote d'adaptateur secteur Microsoft; C:\WINDOWS\system32\DRIVERS\CmBatt.sys [2004-08-03 14080]
                          R3 E100B;Intel(R) PRO Network Connection Driver; C:\WINDOWS\system32\DRIVERS\e100b325.sys [2006-10-31 165760]
                          R3 HdAudAddService;Microsoft UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\CHDAud.sys [2007-02-12 625664]
                          R3 HDAudBus;Pilote de bus Microsoft UAA pour High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2005-01-07 138752]
                          R3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\igxpmp32.sys [2007-08-08 5776864]
                          R3 NETw5x32;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows XP 32 Bit; C:\WINDOWS\system32\DRIVERS\NETw5x32.sys [2008-06-26 3630080]
                          R3 NWRDR;NetWare Rdr; C:\WINDOWS\system32\DRIVERS\nwrdr.sys [2004-08-03 163584]
                          R3 qcusbser;Mobile Connector USB Device for Legacy Serial Communication; C:\WINDOWS\system32\DRIVERS\cmusbser.sys [2007-10-16 97408]
                          R3 usbccgp;Pilote parent générique USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2004-08-03 31616]
                          R3 usbehci;Pilote miniport de contrôleur d'hôte amélioré Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2006-04-19 30080]
                          R3 usbhub;Concentrateur USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2004-08-03 57600]
                          R3 usbuhci;Pilote miniport de contrôleur hôte universel USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2006-04-19 20608]
                          S2 IKANLOADER2;General Purpose USB Driver (e4ldr.sys); C:\WINDOWS\System32\Drivers\e4ldr.sys [2006-01-19 63555]
                          S3 driverhardwarev2;driverhardwarev2; \??\C:\Program Files\ma-config.com\Drivers\driverhardwarev2.sys []
                          S3 e4usbaw;USB ADSL2 WAN Adapter; C:\WINDOWS\system32\DRIVERS\e4usbaw.sys [2006-03-02 113976]
                          S3 NetApi000;NetApi000; \??\C:\NetApi000.sys []
                          S3 USBSTOR;Pilote de stockage de masse USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2004-08-03 26496]
                          S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []

                          ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

                          R2 AntiVirScheduler;Avira AntiVir Personal - Free Antivirus Scheduler; C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe [2009-02-06 68865]
                          R2 AntiVirService;Avira AntiVir Personal - Free Antivirus Guard; C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe [2009-02-06 151297]
                          R2 hpqwmiex;hpqwmiex; C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe [2006-05-02 135168]
                          R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2009-02-21 152984]
                          R2 NWCWorkstation;Service client pour NetWare; C:\WINDOWS\system32\svchost.exe [2004-08-19 14336]
                          S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-02-04 138168]
                          S3 maconfservice;Ma-Config Service; C:\Program Files\ma-config.com\maconfservice.exe [2009-01-24 216232]
                          S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
                          S3 ose;Office Source Engine; C:\Program Files\Fichiers communs\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
                          S3 usnjsvc;Service Messenger Sharing Folders USN Journal Reader; C:\Program Files\MSN Messenger\usnsvc.exe [2007-01-19 97136]

                          -----------------EOF-----------------
                          0
                          1. bjr,

                            le voila :
                            Logfile of random's system information tool 1.05 (written by random/random)
                            Run by fati at 2009-02-23 11:56:55
                            Microsoft Windows XP Professionnel Service Pack 2
                            System drive C: has 21 GB (69%) free of 30 GB
                            Total RAM: 2039 MB (71% free)

                            HijackThis download failed

                            ======Registry dump======

                            [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0055C089-8582-441B-A0BF-17B458C2A3A8}]
                            IDMIEHlprObj Class - C:\Program Files\Internet Download Manager\IDMIECC.dll [2008-12-17 161200]

                            [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
                            Adobe PDF Link Helper - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11 75128]

                            [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
                            RealPlayer Download and Record Plugin for Internet Explorer - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll [2009-02-05 370296]

                            [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7E853D72-626A-48EC-A868-BA8D5E23E045}]

                            [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
                            Google Toolbar Helper - c:\program files\google\googletoolbar1.dll [2009-02-04 2436160]

                            [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
                            Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-02-21 35840]

                            [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
                            JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2009-02-21 73728]

                            [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
                            {2318C2B1-4965-11d4-9B18-009027A5CD4F} - &Google - c:\program files\google\googletoolbar1.dll [2009-02-04 2436160]

                            [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
                            "hpWirelessAssistant"=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [2007-03-01 472776]
                            "TkBellExe"=C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe [2009-02-05 185896]
                            "Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2008-06-12 34672]
                            "avgnt"=C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe [2008-06-12 266497]
                            "SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2009-02-21 148888]

                            [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
                            "CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2004-08-19 15360]
                            "MsnMsgr"=C:\Program Files\MSN Messenger\MsnMsgr.Exe [2007-01-19 5674352]
                            "IDMan"=C:\Program Files\Internet Download Manager\IDMan.exe [2008-12-17 2745776]

                            C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage
                            DSLMON.lnk - C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe

                            [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
                            C:\WINDOWS\system32\igfxdev.dll [2007-08-08 208896]

                            [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
                            UPnPMonitor - {e57ce738-33e8-4c51-8354-bb4de9d215d1} - C:\WINDOWS\system32\upnpui.dll [2004-08-19 240128]

                            [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
                            "authentication packages"=msv1_0
                            nwprovau

                            [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
                            "dontdisplaylastusername"=0
                            "legalnoticecaption"=
                            "legalnoticetext"=
                            "shutdownwithoutlogon"=1
                            "undockwithoutlogon"=1

                            [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
                            "NoDriveTypeAutoRun"=145

                            [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
                            "%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
                            "C:\Program Files\MSN Messenger\msnmsgr.exe"="C:\Program Files\MSN Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.1"
                            "C:\Program Files\MSN Messenger\livecall.exe"="C:\Program Files\MSN Messenger\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"
                            "C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
                            "C:\Program Files\ma-config.com\maconfservice.exe"="C:\Program Files\ma-config.com\maconfservice.exe:LocalSubNet:Enabled:maconfservice"
                            "C:\Program Files\Messenger\MSMSGS.EXE"="C:\Program Files\Messenger\MSMSGS.EXE:*:Enabled:Windows Messenger"
                            "C:\Program Files\LimeWire\LimeWire.exe"="C:\Program Files\LimeWire\LimeWire.exe:*:Enabled:LimeWire"

                            [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
                            "%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
                            "C:\Program Files\MSN Messenger\msnmsgr.exe"="C:\Program Files\MSN Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.1"
                            "C:\Program Files\MSN Messenger\livecall.exe"="C:\Program Files\MSN Messenger\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"

                            [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{1c2c48c6-f16e-11dd-bae8-f35942e0daa8}]
                            shell\AutoRun\command - GuelmimG.bat
                            shell\explore\command - GuelmimG.bat -e
                            shell\open\command - GuelmimG.bat

                            [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{30c33b2a-f6f8-11dd-bb05-001f3c3505b2}]
                            shell\AutoRun\command - G:\LaunchU3.exe -a

                            [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{a14541ac-fac4-11dd-bb11-001f3c3505b2}]
                            shell\AutoRun\command - G:\GuelmimG.bat
                            shell\explore\command - G:\GuelmimG.bat -e
                            shell\open\command - G:\GuelmimG.bat

                            [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{bee2ba60-f1fe-11dd-baeb-f417185d68b5}]
                            shell\AutoRun\command - C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL log.exe
                            shell\Ouvrir\command - G:\log.exe

                            [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{d99b74c2-f1ff-11dd-baec-a760f36913b5}]
                            shell\AutoRun\command - C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL log.exe
                            shell\Ouvrir\command - G:\log.exe

                            ======List of files/folders created in the last 2 months======

                            2009-02-23 09:31:38 ----A---- C:\TB.txt
                            2009-02-23 09:30:39 ----D---- C:\ToolBar SD
                            2009-02-23 09:28:15 ----SHD---- C:\Recycled
                            2009-02-23 09:28:09 ----D---- C:\_OTMoveIt
                            2009-02-23 08:41:04 ----D---- C:\Documents and Settings\fati\Application Data\LimeWire
                            2009-02-22 18:22:15 ----D---- C:\Program Files\trend micro
                            2009-02-22 18:22:14 ----D---- C:\rsit
                            2009-02-22 18:18:54 ----SHD---- C:\FOUND.004
                            2009-02-21 23:51:23 ----D---- C:\WINDOWS\Sun
                            2009-02-21 23:34:02 ----A---- C:\WINDOWS\system32\javaws.exe
                            2009-02-21 23:34:02 ----A---- C:\WINDOWS\system32\javaw.exe
                            2009-02-21 23:34:02 ----A---- C:\WINDOWS\system32\java.exe
                            2009-02-21 23:34:02 ----A---- C:\WINDOWS\system32\deploytk.dll
                            2009-02-21 23:33:49 ----D---- C:\Program Files\Java
                            2009-02-21 23:30:00 ----D---- C:\Documents and Settings\fati\Application Data\Sun
                            2009-02-21 23:28:56 ----D---- C:\Program Files\LimeWire
                            2009-02-19 21:36:07 ----D---- C:\WINDOWS\system32\LogFiles
                            2009-02-18 18:53:54 ----SHD---- C:\FOUND.003
                            2009-02-15 00:44:12 ----A---- C:\WINDOWS\IE4 Error Log.txt
                            2009-02-14 23:23:16 ----A---- C:\WINDOWS\cdplayer.ini
                            2009-02-13 18:23:16 ----A---- C:\WINDOWS\ModemLog_Mobile Connector #2.txt
                            2009-02-12 20:54:02 ----A---- C:\WINDOWS\ODBC.INI
                            2009-02-12 20:53:48 ----RA---- C:\WINDOWS\system32\WPWIZDLL.DLL
                            2009-02-12 20:53:48 ----RA---- C:\WINDOWS\system32\WEBPOST.DLL
                            2009-02-12 20:53:48 ----RA---- C:\WINDOWS\system32\POSTWPP.DLL
                            2009-02-12 20:53:48 ----RA---- C:\WINDOWS\system32\PIPARSE.DLL
                            2009-02-12 20:53:48 ----RA---- C:\WINDOWS\system32\FTPWPP.DLL
                            2009-02-12 20:53:48 ----RA---- C:\WINDOWS\system32\FPWPP.DLL
                            2009-02-12 20:53:48 ----RA---- C:\WINDOWS\system32\CRSWPP.DLL
                            2009-02-12 20:53:48 ----D---- C:\Program Files\Publication Web
                            2009-02-12 20:53:48 ----A---- C:\WINDOWS\wplog.txt
                            2009-02-10 19:27:36 ----D---- C:\Documents and Settings\fati\Application Data\Thinstall
                            2009-02-10 01:31:46 ----SHD---- C:\FOUND.002
                            2009-02-09 23:22:59 ----D---- C:\Documents and Settings\fati\Application Data\U3
                            2009-02-08 13:57:14 ----D---- C:\Documents and Settings\fati\Application Data\vlc
                            2009-02-08 13:32:21 ----D---- C:\Documents and Settings\fati\Application Data\dvdcss
                            2009-02-08 13:31:34 ----D---- C:\Program Files\VideoLAN
                            2009-02-07 20:28:53 ----D---- C:\WINDOWS\pss
                            2009-02-05 23:52:22 ----D---- C:\Program Files\Avira
                            2009-02-05 20:33:40 ----D---- C:\Documents and Settings\All Users\Application Data\Adobe
                            2009-02-05 18:59:44 ----D---- C:\Program Files\Fichiers communs\xing shared
                            2009-02-05 18:59:41 ----A---- C:\WINDOWS\system32\rmoc3260.dll
                            2009-02-05 18:59:36 ----A---- C:\WINDOWS\system32\pndx5032.dll
                            2009-02-05 18:59:36 ----A---- C:\WINDOWS\system32\pndx5016.dll
                            2009-02-05 18:59:35 ----A---- C:\WINDOWS\system32\pncrt.dll
                            2009-02-05 18:59:35 ----A---- C:\WINDOWS\system32\msvcr71.dll
                            2009-02-05 18:59:35 ----A---- C:\WINDOWS\system32\msvcp71.dll
                            2009-02-05 18:59:33 ----D---- C:\Program Files\Real
                            2009-02-05 18:59:33 ----D---- C:\Program Files\Fichiers communs\Real
                            2009-02-05 18:59:00 ----D---- C:\Documents and Settings\fati\Application Data\Real
                            2009-02-05 16:21:32 ----SHD---- C:\FOUND.001
                            2009-02-04 15:23:48 ----D---- C:\Documents and Settings\fati\Application Data\Google
                            2009-02-04 15:14:50 ----D---- C:\Documents and Settings\fati\Application Data\Macromedia
                            2009-02-04 15:14:31 ----D---- C:\Documents and Settings\All Users\Application Data\Google
                            2009-02-04 15:14:27 ----D---- C:\Program Files\Google
                            2009-02-04 14:40:29 ----D---- C:\Program Files\Broadcom
                            2009-02-04 14:40:28 ----D---- C:\Documents and Settings\fati\Application Data\InstallShield
                            2009-02-04 14:40:10 ----A---- C:\WINDOWS\system32\NETw5r32.dll
                            2009-02-04 14:40:10 ----A---- C:\WINDOWS\system32\NETw5c32.dll
                            2009-02-04 08:05:52 ----SHD---- C:\FOUND.000
                            2009-02-03 21:54:51 ----D---- C:\Program Files\CONEXANT
                            2009-02-03 21:54:50 ----A---- C:\WINDOWS\system32\ksuser.dll
                            2009-02-03 17:35:07 ----D---- C:\Documents and Settings\fati\Application Data\AdobeUM
                            2009-02-03 17:35:01 ----D---- C:\Documents and Settings\fati\Application Data\Adobe
                            2009-02-03 17:34:58 ----D---- C:\Program Files\Fichiers communs\Adobe
                            2009-02-03 17:23:32 ----D---- C:\Program Files\Adobe
                            2009-02-03 17:22:59 ----D---- C:\Program Files\WinRAR
                            2009-02-03 17:22:33 ----D---- C:\WINDOWS\Cache
                            2009-02-02 22:33:40 ----D---- C:\Program Files\ma-config.com
                            2009-02-02 22:33:40 ----D---- C:\Documents and Settings\All Users\Application Data\ma-config.com
                            2009-02-02 22:03:52 ----D---- C:\WINDOWS\system32\ReinstallBackups
                            2009-02-02 20:52:19 ----D---- C:\Documents and Settings\All Users\Application Data\Avira
                            2009-02-02 20:38:56 ----HD---- C:\WINDOWS\$NtUninstallKB915326$
                            2009-02-02 20:38:49 ----HD---- C:\WINDOWS\$NtUninstallKB889673$
                            2009-02-02 20:38:41 ----HD---- C:\WINDOWS\$NtUninstallKB888402$
                            2009-02-02 20:38:34 ----HD---- C:\WINDOWS\$NtUninstallKB885464$
                            2009-02-02 20:38:26 ----HD---- C:\WINDOWS\$NtUninstallKB883667$
                            2009-02-02 20:38:18 ----HD---- C:\WINDOWS\$NtUninstallKB918005$
                            2009-02-02 20:38:08 ----HD---- C:\WINDOWS\$NtUninstallKB912436$
                            2009-02-02 20:37:53 ----HD---- C:\WINDOWS\$NtUninstallKB909667$
                            2009-02-02 20:37:42 ----HD---- C:\WINDOWS\$NtUninstallKB909095$
                            2009-02-02 20:37:24 ----HD---- C:\WINDOWS\$NtUninstallKB956841$
                            2009-02-02 20:37:17 ----HD---- C:\WINDOWS\$NtUninstallKB896256$
                            2009-02-02 20:37:03 ----HD---- C:\WINDOWS\$NtUninstallKB892559-v3$
                            2009-02-02 20:36:53 ----HD---- C:\WINDOWS\$NtUninstallKB888239$
                            2009-02-02 20:36:36 ----N---- C:\WINDOWS\system32\spmsg.dll
                            2009-02-02 20:36:28 ----HD---- C:\WINDOWS\$NtUninstallKB885855$
                            2009-02-02 20:19:49 ----D---- C:\Documents and Settings\fati\Application Data\IDM
                            2009-02-02 20:19:48 ----D---- C:\Documents and Settings\fati\Application Data\DMCache
                            2009-02-02 20:19:45 ----D---- C:\Program Files\Internet Download Manager
                            2009-02-02 18:01:22 ----D---- C:\Program Files\Microsoft Works
                            2009-02-02 18:01:15 ----D---- C:\Program Files\MSBuild
                            2009-02-02 18:01:07 ----D---- C:\Program Files\Microsoft Visual Studio
                            2009-02-02 18:01:07 ----D---- C:\Program Files\Fichiers communs\DESIGNER
                            2009-02-02 17:57:26 ----D---- C:\WINDOWS\SHELLNEW
                            2009-02-02 17:57:04 ----D---- C:\Program Files\Microsoft Office
                            2009-02-02 17:57:03 ----D---- C:\Documents and Settings\All Users\Application Data\Microsoft Help
                            2009-02-02 17:56:32 ----RHD---- C:\MSOCache
                            2009-02-02 17:33:48 ----D---- C:\WINDOWS\system32\appmgmt
                            2009-02-02 17:29:33 ----A---- C:\WINDOWS\system32\igfxres.dll
                            2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\igxprd32.dll
                            2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\igxpgd32.dll
                            2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\igxpdx32.dll
                            2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\igxpdv32.dll
                            2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\iglicd32.dll
                            2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\igldev32.dll
                            2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\igfxzoom.exe
                            2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\igfxtray.exe
                            2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\igfxsrvc.exe
                            2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\igfxsrvc.dll
                            2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\igfxress.dll
                            2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\igfxpph.dll
                            2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\igfxpers.exe
                            2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\igfxext.exe
                            2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\igfxexps.dll
                            2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\igfxdo.dll
                            2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\igfxdev.dll
                            2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\igfxCoIn_v4859.dll
                            2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\igfxcfg.exe
                            2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\hkcmd.exe
                            2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\hccutils.dll
                            2009-02-02 17:26:28 ----D---- C:\WINDOWS\system32\Lang
                            2009-02-02 17:26:28 ----D---- C:\WINDOWS\system32\DRVSTORE
                            2009-02-02 17:26:28 ----A---- C:\WINDOWS\system32\igxpun.exe
                            2009-02-02 17:26:28 ----A---- C:\WINDOWS\system32\difxapi.dll
                            2009-02-02 17:26:22 ----D---- C:\Intel
                            2009-02-02 17:23:27 ----HD---- C:\WINDOWS\$NtUninstallKB888111WXPSP2$
                            2009-02-02 17:23:07 ----D---- C:\Program Files\Hewlett-Packard
                            2009-02-02 17:22:49 ----D---- C:\SWSetup
                            2009-02-02 17:20:49 ----D---- C:\Program Files\MSN Messenger
                            2009-02-02 17:19:53 ----D---- C:\Documents and Settings\fati\Application Data\Malwarebytes
                            2009-02-02 17:19:46 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
                            2009-02-02 17:19:46 ----D---- C:\Documents and Settings\All Users\Application Data\Malwarebytes
                            2009-02-02 13:07:26 ----A---- C:\WINDOWS\ModemLog_Mobile Connector.txt
                            2009-02-02 13:04:34 ----A---- C:\WINDOWS\system32\MyDIT_GenClassCoInst.dll
                            2009-02-02 13:04:33 ----D---- C:\Program Files\HSDPA USB MODEM
                            2009-02-02 09:54:27 ----A---- C:\WINDOWS\system32\chsbrkr.dll
                            2009-02-02 09:54:26 ----A---- C:\WINDOWS\system32\korwbrkr.dll
                            2009-02-02 09:54:26 ----A---- C:\WINDOWS\system32\chtbrkr.dll
                            2009-02-02 09:54:25 ----A---- C:\WINDOWS\system32\msir3jp.dll
                            2009-02-02 09:54:10 ----A---- C:\WINDOWS\system32\c_g18030.dll
                            2009-02-02 09:54:09 ----A---- C:\WINDOWS\system32\kbd101a.dll
                            2009-02-02 09:54:00 ----A---- C:\WINDOWS\system32\kbdlk41j.dll
                            2009-02-02 09:54:00 ----A---- C:\WINDOWS\system32\kbdlk41a.dll
                            2009-02-02 09:53:59 ----A---- C:\WINDOWS\system32\kbdnecNT.dll
                            2009-02-02 09:53:59 ----A---- C:\WINDOWS\system32\kbdnecAT.dll
                            2009-02-02 09:53:59 ----A---- C:\WINDOWS\system32\kbdnec95.dll
                            2009-02-02 09:53:59 ----A---- C:\WINDOWS\system32\kbdibm02.dll
                            2009-02-02 09:53:59 ----A---- C:\WINDOWS\system32\kbdax2.dll
                            2009-02-02 09:53:59 ----A---- C:\WINDOWS\system32\kbd106n.dll
                            2009-02-02 09:53:59 ----A---- C:\WINDOWS\system32\kbd101.dll
                            2009-02-02 09:53:59 ----A---- C:\WINDOWS\system32\f3ahvoas.dll
                            2009-02-02 09:53:40 ----A---- C:\WINDOWS\system32\c_is2022.dll
                            2009-02-02 09:53:37 ----A---- C:\WINDOWS\system32\uniime.dll
                            2009-02-02 09:53:31 ----A---- C:\WINDOWS\system32\imjp81k.dll
                            2009-02-02 09:53:28 ----RA---- C:\WINDOWS\system32\kbdarmw.dll
                            2009-02-02 09:53:28 ----RA---- C:\WINDOWS\system32\kbdarme.dll
                            2009-02-02 09:53:28 ----A---- C:\WINDOWS\system32\Thawbrkr.dll
                            2009-02-02 09:53:28 ----A---- C:\WINDOWS\system32\kbdkor.dll
                            2009-02-02 09:53:28 ----A---- C:\WINDOWS\system32\kbdjpn.dll
                            2009-02-02 09:53:28 ----A---- C:\WINDOWS\system32\kbd106.dll
                            2009-02-02 09:53:28 ----A---- C:\WINDOWS\system32\kbd103.dll
                            2009-02-02 09:53:28 ----A---- C:\WINDOWS\system32\kbd101c.dll
                            2009-02-02 09:53:28 ----A---- C:\WINDOWS\system32\kbd101b.dll
                            2009-02-02 09:53:27 ----RA---- C:\WINDOWS\system32\kbdvntc.dll
                            2009-02-02 09:53:27 ----RA---- C:\WINDOWS\system32\kbdintel.dll
                            2009-02-02 09:53:27 ----RA---- C:\WINDOWS\system32\kbdintam.dll
                            2009-02-02 09:53:27 ----RA---- C:\WINDOWS\system32\kbdinpun.dll
                            2009-02-02 09:53:27 ----RA---- C:\WINDOWS\system32\kbdinmar.dll
                            2009-02-02 09:53:27 ----RA---- C:\WINDOWS\system32\kbdinkan.dll
                            2009-02-02 09:53:27 ----RA---- C:\WINDOWS\system32\kbdinhin.dll
                            2009-02-02 09:53:27 ----RA---- C:\WINDOWS\system32\kbdinguj.dll
                            2009-02-02 09:53:27 ----RA---- C:\WINDOWS\system32\kbdindev.dll
                            2009-02-02 09:53:27 ----RA---- C:\WINDOWS\system32\kbdgeo.dll
                            2009-02-02 09:53:27 ----A---- C:\WINDOWS\system32\c_iscii.dll
                            2009-02-02 09:53:24 ----RA---- C:\WINDOWS\system32\kbdurdu.dll
                            2009-02-02 09:53:24 ----RA---- C:\WINDOWS\system32\kbdsyr2.dll
                            2009-02-02 09:53:24 ----RA---- C:\WINDOWS\system32\kbdsyr1.dll
                            2009-02-02 09:53:24 ----RA---- C:\WINDOWS\system32\kbdfa.dll
                            2009-02-02 09:53:24 ----RA---- C:\WINDOWS\system32\kbddiv2.dll
                            2009-02-02 09:53:24 ----RA---- C:\WINDOWS\system32\kbddiv1.dll
                            2009-02-02 09:53:24 ----RA---- C:\WINDOWS\system32\kbda3.dll
                            2009-02-02 09:53:24 ----RA---- C:\WINDOWS\system32\kbda2.dll
                            2009-02-02 09:53:24 ----RA---- C:\WINDOWS\system32\kbda1.dll
                            2009-02-02 09:53:24 ----A---- C:\WINDOWS\system32\kbdusa.dll
                            2009-02-02 09:53:20 ----RA---- C:\WINDOWS\system32\kbdheb.dll
                            2009-02-02 09:53:16 ----RA---- C:\WINDOWS\system32\kbdth3.dll
                            2009-02-02 09:53:16 ----RA---- C:\WINDOWS\system32\kbdth2.dll
                            2009-02-02 09:53:16 ----RA---- C:\WINDOWS\system32\kbdth1.dll
                            2009-02-02 09:53:15 ----RA---- C:\WINDOWS\system32\kbdth0.dll
                            2009-02-02 09:53:15 ----A---- C:\WINDOWS\system32\ftlx041e.dll
                            2009-02-02 03:16:51 ----HD---- C:\WINDOWS\$NtUninstallKB951376-v2$
                            2009-02-02 03:16:48 ----HD---- C:\WINDOWS\$NtUninstallKB952954$
                            2009-02-02 03:16:44 ----HD---- C:\WINDOWS\$NtUninstallKB946648$
                            2009-02-02 03:16:40 ----HD---- C:\WINDOWS\$NtUninstallKB956803$
                            2009-02-02 03:16:36 ----HD---- C:\WINDOWS\$NtUninstallKB955839$
                            2009-02-02 03:16:32 ----HD---- C:\WINDOWS\$NtUninstallKB956391$
                            2009-02-02 03:16:21 ----HD---- C:\WINDOWS\$NtUninstallKB958215$
                            2009-02-02 03:16:14 ----HD---- C:\WINDOWS\$NtUninstallKB950974$
                            2009-02-02 03:16:10 ----HD---- C:\WINDOWS\$NtUninstallKB951698$
                            2009-02-02 03:16:05 ----HD---- C:\WINDOWS\$NtUninstallKB954211$
                            2009-02-02 03:15:55 ----HD---- C:\WINDOWS\$NtUninstallKB956841_0$
                            2009-02-02 03:15:47 ----HD---- C:\WINDOWS\$NtUninstallKB960714$
                            2009-02-02 03:15:43 ----HD---- C:\WINDOWS\$NtUninstallKB950762$
                            2009-02-02 03:15:39 ----HD---- C:\WINDOWS\$NtUninstallKB957097$
                            2009-02-02 03:15:35 ----HD---- C:\WINDOWS\$NtUninstallKB958687$
                            2009-02-02 03:15:32 ----HD---- C:\WINDOWS\$NtUninstallKB952287$
                            2009-02-02 03:15:27 ----HD---- C:\WINDOWS\$NtUninstallKB951066$
                            2009-02-02 03:15:22 ----HD---- C:\WINDOWS\$NtUninstallKB951748$
                            2009-02-02 03:15:19 ----HD---- C:\WINDOWS\$NtUninstallKB938464$
                            2009-02-02 03:15:15 ----HD---- C:\WINDOWS\$NtUninstallKB954600$
                            2009-02-02 03:15:11 ----HD---- C:\WINDOWS\$NtUninstallKB958644$
                            2009-02-02 03:04:42 ----N---- C:\WINDOWS\system32\tzchange.exe
                            2009-02-02 03:00:16 ----D---- C:\WINDOWS\system32\PreInstall
                            2009-02-02 03:00:16 ----A---- C:\WINDOWS\system32\spupdsvc.exe
                            2009-02-02 03:00:15 ----HD---- C:\WINDOWS\$NtUninstallKB898461$
                            2009-02-02 03:00:14 ----HD---- C:\WINDOWS\$hf_mig$
                            2009-02-01 23:48:56 ----D---- C:\WINDOWS\system32\SoftwareDistribution
                            2009-02-01 23:45:46 ----A---- C:\WINDOWS\adidsl.ini
                            2009-02-01 23:45:44 ----A---- C:\WINDOWS\adiras.ini
                            2009-02-01 23:45:44 ----A---- C:\WINDOWS\adiras.exe
                            2009-02-01 23:45:43 ----A---- C:\WINDOWS\system32\IPDETECT.EXE
                            2009-02-01 23:45:43 ----A---- C:\WINDOWS\system32\AdADIx32.dll
                            2009-02-01 23:45:42 ----A---- C:\WINDOWS\system32\unaddrv.exe
                            2009-02-01 23:45:42 ----A---- C:\WINDOWS\system32\coclassfast.dll
                            2009-02-01 23:45:42 ----A---- C:\WINDOWS\system32\AdADIx2K.dll
                            2009-02-01 23:45:42 ----A---- C:\WINDOWS\system32\ADADIX16.DLL
                            2009-02-01 23:45:42 ----A---- C:\WINDOWS\enddisk32.exe
                            2009-02-01 23:45:41 ----HD---- C:\Program Files\InstallShield Installation Information
                            2009-02-01 23:45:41 ----A---- C:\WINDOWS\autoclk.exe
                            2009-02-01 23:45:38 ----D---- C:\Program Files\SAGEM
                            2009-02-01 23:45:37 ----D---- C:\Program Files\Fichiers communs\InstallShield
                            2009-02-01 23:41:57 ----D---- C:\Documents and Settings\fati\Application Data\Identities
                            2009-02-01 23:41:55 ----HD---- C:\Program Files\Uninstall Information
                            2009-02-01 23:41:52 ----SD---- C:\Documents and Settings\fati\Application Data\Microsoft
                            2009-02-01 23:41:52 ----ASH---- C:\Documents and Settings\fati\Application Data\desktop.ini
                            2009-02-01 23:41:14 ----SHD---- C:\System Volume Information
                            2009-02-01 23:41:12 ----D---- C:\WINDOWS\SoftwareDistribution
                            2009-02-01 23:41:11 ----SD---- C:\WINDOWS\system32\Microsoft
                            2009-02-01 23:41:11 ----D---- C:\WINDOWS\Prefetch
                            2009-02-01 23:41:11 ----A---- C:\WINDOWS\SchedLgU.Txt
                            2009-02-01 23:35:12 ----D---- C:\WINDOWS\system32\xircom
                            2009-02-01 23:35:12 ----D---- C:\Program Files\xerox
                            2009-02-01 23:35:12 ----D---- C:\Program Files\microsoft frontpage
                            2009-02-01 23:35:00 ----A---- C:\WINDOWS\control.ini
                            2009-02-01 23:35:00 ----A---- C:\AUTOEXEC.BAT
                            2009-02-01 23:34:52 ----A---- C:\WINDOWS\OEWABLog.txt
                            2009-02-01 23:34:49 ----A---- C:\WINDOWS\system32\mapi32.dll
                            2009-02-01 23:34:09 ----SD---- C:\WINDOWS\Downloaded Program Files
                            2009-02-01 23:34:09 ----RD---- C:\WINDOWS\Offline Web Pages
                            2009-02-01 23:34:08 ----RAH---- C:\WINDOWS\system32\logonui.exe.manifest
                            2009-02-01 23:34:04 ----RAH---- C:\WINDOWS\system32\cdplayer.exe.manifest
                            2009-02-01 23:34:01 ----HD---- C:\Program Files\WindowsUpdate
                            2009-02-01 23:33:59 ----D---- C:\Program Files\Services en ligne
                            2009-02-01 23:33:41 ----D---- C:\WINDOWS\system32\DirectX
                            2009-02-01 23:33:16 ----A---- C:\WINDOWS\system32\atrace.dll
                            2009-02-01 23:33:13 ----A---- C:\WINDOWS\system32\desktop.ini
                            2009-02-01 23:33:13 ----A---- C:\WINDOWS\desktop.ini
                            2009-02-01 23:33:05 ----A---- C:\WINDOWS\system32\nmevtmsg.dll
                            2009-02-01 23:33:04 ----A---- C:\WINDOWS\system32\acctres.dll
                            2009-02-01 23:33:03 ----D---- C:\Program Files\Fichiers communs\Services
                            2009-02-01 23:33:00 ----SD---- C:\WINDOWS\Tasks
                            2009-02-01 23:33:00 ----A---- C:\WINDOWS\system32\icfgnt5.dll
                            2009-02-01 23:32:59 ----D---- C:\Program Files\Fichiers communs\MSSoap
                            2009-02-01 23:32:54 ----D---- C:\WINDOWS\srchasst
                            2009-02-01 23:32:53 ----D---- C:\WINDOWS\system32\Macromed
                            2009-02-01 23:32:49 ----A---- C:\WINDOWS\system32\wuweb.dll
                            2009-02-01 23:32:49 ----A---- C:\WINDOWS\system32\wups.dll
                            2009-02-01 23:32:49 ----A---- C:\WINDOWS\system32\wucltui.dll
                            2009-02-01 23:32:49 ----A---- C:\WINDOWS\system32\wuauserv.dll
                            2009-02-01 23:32:49 ----A---- C:\WINDOWS\system32\wuaueng1.dll
                            2009-02-01 23:32:49 ----A---- C:\WINDOWS\system32\wuaueng.dll
                            2009-02-01 23:32:49 ----A---- C:\WINDOWS\system32\wuauclt1.exe
                            2009-02-01 23:32:48 ----A---- C:\WINDOWS\system32\wuauclt.exe
                            2009-02-01 23:32:48 ----A---- C:\WINDOWS\system32\wuapi.dll
                            2009-02-01 23:32:48 ----A---- C:\WINDOWS\system32\qmgrprxy.dll
                            2009-02-01 23:32:48 ----A---- C:\WINDOWS\system32\qmgr.dll
                            2009-02-01 23:32:48 ----A---- C:\WINDOWS\system32\bitsprx3.dll
                            2009-02-01 23:32:48 ----A---- C:\WINDOWS\system32\bitsprx2.dll
                            2009-02-01 23:32:42 ----D---- C:\Program Files\Movie Maker
                            2009-02-01 23:32:38 ----A---- C:\WINDOWS\system32\safrslv.dll
                            2009-02-01 23:32:38 ----A---- C:\WINDOWS\system32\safrdm.dll
                            2009-02-01 23:32:38 ----A---- C:\WINDOWS\system32\safrcdlg.dll
                            2009-02-01 23:32:38 ----A---- C:\WINDOWS\system32\racpldlg.dll
                            2009-02-01 23:32:33 ----A---- C:\WINDOWS\system32\fltMc.exe
                            2009-02-01 23:32:33 ----A---- C:\WINDOWS\system32\fltlib.dll
                            2009-02-01 23:32:32 ----D---- C:\WINDOWS\system32\Restore
                            2009-02-01 23:32:32 ----A---- C:\WINDOWS\system32\srsvc.dll
                            2009-02-01 23:32:32 ----A---- C:\WINDOWS\system32\srrstr.dll
                            2009-02-01 23:32:32 ----A---- C:\WINDOWS\system32\srclient.dll
                            2009-02-01 23:32:31 ----A---- C:\WINDOWS\system32\nmmkcert.dll
                            2009-02-01 23:32:31 ----A---- C:\WINDOWS\system32\msconf.dll
                            2009-02-01 23:32:31 ----A---- C:\WINDOWS\system32\mnmsrvc.exe
                            2009-02-01 23:32:31 ----A---- C:\WINDOWS\system32\mnmdd.dll
                            2009-02-01 23:32:31 ----A---- C:\WINDOWS\system32\isrdbg32.dll
                            2009-02-01 23:32:31 ----A---- C:\WINDOWS\system32\ils.dll
                            2009-02-01 23:32:28 ----D---- C:\Program Files\NetMeeting
                            2009-02-01 23:32:28 ----A---- C:\WINDOWS\system32\msoert2.dll
                            2009-02-01 23:32:27 ----A---- C:\WINDOWS\system32\msoeacct.dll
                            2009-02-01 23:32:26 ----A---- C:\WINDOWS\system32\inetres.dll
                            2009-02-01 23:32:26 ----A---- C:\WINDOWS\system32\inetcomm.dll
                            2009-02-01 23:32:24 ----D---- C:\Program Files\Outlook Express
                            2009-02-01 23:32:24 ----A---- C:\WINDOWS\system32\schedsvc.dll
                            2009-02-01 23:32:23 ----A---- C:\WINDOWS\system32\mstinit.exe
                            2009-02-01 23:32:23 ----A---- C:\WINDOWS\system32\mstask.dll
                            2009-02-01 23:32:23 ----A---- C:\WINDOWS\system32\isign32.dll
                            2009-02-01 23:32:23 ----A---- C:\WINDOWS\system32\icwphbk.dll
                            2009-02-01 23:32:23 ----A---- C:\WINDOWS\system32\icwdial.dll
                            2009-02-01 23:32:22 ----A---- C:\WINDOWS\system32\inetcfg.dll
                            2009-02-01 23:32:15 ----D---- C:\Program Files\Fichiers communs\System
                            2009-02-01 23:32:11 ----D---- C:\Program Files\Internet Explorer
                            2009-02-01 23:31:35 ----D---- C:\Program Files\ComPlus Applications
                            2009-02-01 23:31:33 ----A---- C:\WINDOWS\vbaddin.ini
                            2009-02-01 23:31:33 ----A---- C:\WINDOWS\vb.ini
                            2009-02-01 23:31:30 ----D---- C:\WINDOWS\Registration
                            2009-02-01 23:31:26 ----D---- C:\Program Files\Windows Media Player
                            2009-02-01 23:31:26 ----D---- C:\Program Files\Online Services
                            2009-02-01 23:31:20 ----D---- C:\Program Files\Messenger
                            2009-02-01 23:31:16 ----D---- C:\Program Files\MSN Gaming Zone
                            2009-02-01 23:31:16 ----A---- C:\WINDOWS\system32\write.exe
                            2009-02-01 23:31:05 ----A---- C:\WINDOWS\system32\sndvol32.exe
                            2009-02-01 23:31:05 ----A---- C:\WINDOWS\system32\hticons.dll
                            2009-02-01 23:31:04 ----A---- C:\WINDOWS\system32\avwav.dll
                            2009-02-01 23:31:04 ----A---- C:\WINDOWS\system32\avtapi.dll
                            2009-02-01 23:31:04 ----A---- C:\WINDOWS\system32\avmeter.dll
                            2009-02-01 23:31:03 ----A---- C:\WINDOWS\system32\winchat.exe
                            2009-02-01 23:30:56 ----A---- C:\WINDOWS\system32\getuname.dll
                            2009-02-01 23:30:55 ----A---- C:\WINDOWS\system32\sol.exe
                            2009-02-01 23:30:55 ----A---- C:\WINDOWS\system32\charmap.exe
                            2009-02-01 23:30:55 ----A---- C:\WINDOWS\system32\calc.exe
                            2009-02-01 23:30:54 ----A---- C:\WINDOWS\system32\winmine.exe
                            2009-02-01 23:30:54 ----A---- C:\WINDOWS\system32\reset.exe
                            2009-02-01 23:30:54 ----A---- C:\WINDOWS\system32\mshearts.exe
                            2009-02-01 23:30:54 ----A---- C:\WINDOWS\system32\freecell.exe
                            2009-02-01 23:30:53 ----A---- C:\WINDOWS\system32\usrlogon.cmd
                            2009-02-01 23:30:53 ----A---- C:\WINDOWS\system32\tsshutdn.exe
                            2009-02-01 23:30:53 ----A---- C:\WINDOWS\system32\tslabels.ini
                            2009-02-01 23:30:53 ----A---- C:\WINDOWS\system32\tskill.exe
                            2009-02-01 23:30:53 ----A---- C:\WINDOWS\system32\tsdiscon.exe
                            2009-02-01 23:30:53 ----A---- C:\WINDOWS\system32\tscon.exe
                            2009-02-01 23:30:53 ----A---- C:\WINDOWS\system32\shadow.exe
                            2009-02-01 23:30:53 ----A---- C:\WINDOWS\system32\rwinsta.exe
                            2009-02-01 23:30:53 ----A---- C:\WINDOWS\system32\regini.exe
                            2009-02-01 23:30:53 ----A---- C:\WINDOWS\system32\rdpcfgex.dll
                            2009-02-01 23:30:53 ----A---- C:\WINDOWS\system32\qwinsta.exe
                            2009-02-01 23:30:53 ----A---- C:\WINDOWS\system32\qappsrv.exe
                            2009-02-01 23:30:52 ----A---- C:\WINDOWS\system32\msg.exe
                            2009-02-01 23:30:52 ----A---- C:\WINDOWS\system32\msdtcprf.ini
                            2009-02-01 23:30:52 ----A---- C:\WINDOWS\system32\logoff.exe
                            2009-02-01 23:30:52 ----A---- C:\WINDOWS\system32\cdmodem.dll
                            2009-02-01 23:30:51 ----A---- C:\WINDOWS\system32\mtxlegih.dll
                            2009-02-01 23:30:51 ----A---- C:\WINDOWS\system32\mtxex.dll
                            2009-02-01 23:30:51 ----A---- C:\WINDOWS\system32\mtxdm.dll
                            2009-02-01 23:30:51 ----A---- C:\WINDOWS\system32\dcomcnfg.exe
                            2009-02-01 23:30:51 ----A---- C:\WINDOWS\system32\comrepl.dll
                            2009-02-01 23:30:51 ----A---- C:\WINDOWS\system32\comaddin.dll
                            2009-02-01 23:30:50 ----A---- C:\WINDOWS\system32\stclient.dll
                            2009-02-01 23:30:50 ----A---- C:\WINDOWS\system32\comsnap.dll
                            2009-02-01 23:30:44 ----A---- C:\WINDOWS\system32\wmimgmt.msc
                            2009-02-01 23:30:29 ----D---- C:\Program Files\MSN
                            2009-02-01 23:30:28 ----A---- C:\WINDOWS\system32\sndrec32.exe
                            2009-02-01 23:30:28 ----A---- C:\WINDOWS\system32\mplay32.exe
                            2009-02-01 23:30:28 ----A---- C:\WINDOWS\system32\accwiz.exe
                            2009-02-01 23:30:27 ----D---- C:\Program Files\Windows NT
                            2009-02-01 23:30:27 ----A---- C:\WINDOWS\system32\mspaint.exe
                            2009-02-01 23:30:27 ----A---- C:\WINDOWS\system32\hypertrm.dll
                            2009-02-01 23:30:26 ----A---- C:\WINDOWS\system32\spider.exe
                            2009-02-01 23:30:26 ----A---- C:\WINDOWS\system32\clipbrd.exe
                            2009-02-01 23:30:25 ----A---- C:\WINDOWS\system32\tscfgwmi.dll
                            2009-02-01 23:30:25 ----A---- C:\WINDOWS\system32\remotepg.dll
                            2009-02-01 23:30:25 ----A---- C:\WINDOWS\system32\rdsaddin.exe
                            2009-02-01 23:30:25 ----A---- C:\WINDOWS\system32\mstscax.dll
                            2009-02-01 23:30:25 ----A---- C:\WINDOWS\system32\mstsc.exe
                            2009-02-01 23:30:24 ----A---- C:\WINDOWS\system32\tscupgrd.exe
                            2009-02-01 23:30:24 ----A---- C:\WINDOWS\system32\termsrv.dll
                            2009-02-01 23:30:24 ----A---- C:\WINDOWS\system32\sessmgr.exe
                            2009-02-01 23:30:24 ----A---- C:\WINDOWS\system32\rdshost.exe
                            2009-02-01 23:30:24 ----A---- C:\WINDOWS\system32\rdpwsx.dll
                            2009-02-01 23:30:24 ----A---- C:\WINDOWS\system32\rdpsnd.dll
                            2009-02-01 23:30:24 ----A---- C:\WINDOWS\system32\rdpclip.exe
                            2009-02-01 23:30:24 ----A---- C:\WINDOWS\system32\rdchost.dll
                            2009-02-01 23:30:24 ----A---- C:\WINDOWS\system32\qprocess.exe
                            2009-02-01 23:30:23 ----D---- C:\WINDOWS\system32\MsDtc
                            2009-02-01 23:30:23 ----A---- C:\WINDOWS\system32\mtxoci.dll
                            2009-02-01 23:30:23 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
                            2009-02-01 23:30:23 ----A---- C:\WINDOWS\system32\msdtcprx.dll
                            2009-02-01 23:30:23 ----A---- C:\WINDOWS\system32\icaapi.dll
                            2009-02-01 23:30:23 ----A---- C:\WINDOWS\system32\cfgbkend.dll
                            2009-02-01 23:30:22 ----A---- C:\WINDOWS\system32\xolehlp.dll
                            2009-02-01 23:30:22 ----A---- C:\WINDOWS\system32\msdtctm.dll
                            2009-02-01 23:30:22 ----A---- C:\WINDOWS\system32\msdtclog.dll
                            2009-02-01 23:30:22 ----A---- C:\WINDOWS\system32\msdtc.exe
                            2009-02-01 23:30:21 ----D---- C:\WINDOWS\system32\Com
                            2009-02-01 23:30:21 ----A---- C:\WINDOWS\system32\colbact.dll
                            2009-02-01 23:30:21 ----A---- C:\WINDOWS\system32\clbcatex.dll
                            2009-02-01 23:30:21 ----A---- C:\WINDOWS\system32\catsrvps.dll
                            2009-02-01 23:30:20 ----A---- C:\WINDOWS\system32\comsvcs.dll
                            2009-02-01 23:30:20 ----A---- C:\WINDOWS\system32\catsrvut.dll
                            2009-02-01 23:30:20 ----A---- C:\WINDOWS\system32\catsrv.dll
                            2009-02-01 23:30:19 ----A---- C:\WINDOWS\system32\comuid.dll
                            2009-02-01 23:30:19 ----A---- C:\WINDOWS\system32\clbcatq.dll
                            2009-02-01 23:30:11 ----A---- C:\WINDOWS\system32\servdeps.dll
                            2009-02-01 23:30:11 ----A---- C:\WINDOWS\system32\mmfutil.dll
                            2009-02-01 23:30:11 ----A---- C:\WINDOWS\system32\licwmi.dll
                            2009-02-01 23:30:11 ----A---- C:\WINDOWS\system32\cmprops.dll
                            2009-02-01 23:29:18 ----A---- C:\WINDOWS\system32\h323log.txt
                            2009-02-01 23:28:23 ----A---- C:\WINDOWS\system32\usbui.dll
                            2009-02-01 23:27:22 ----A---- C:\WINDOWS\imsins.BAK
                            2009-02-01 23:27:20 ----SHD---- C:\WINDOWS\Installer
                            2009-02-01 23:27:20 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
                            2009-02-01 23:27:19 ----D---- C:\Program Files\Fichiers communs\ODBC
                            2009-02-01 23:27:19 ----A---- C:\WINDOWS\ODBCINST.INI
                            2009-02-01 23:27:16 ----D---- C:\Program Files\Fichiers communs\SpeechEngines
                            2009-02-01 23:27:15 ----RD---- C:\Program Files
                            2009-02-01 23:27:15 ----D---- C:\Program Files\Fichiers communs\Microsoft Shared
                            2009-02-01 23:27:15 ----D---- C:\Program Files\Fichiers communs
                            2009-02-01 23:27:12 ----RA---- C:\WINDOWS\system32\kbdtuq.dll
                            2009-02-01 23:27:12 ----RA---- C:\WINDOWS\system32\kbdtuf.dll
                            2009-02-01 23:27:12 ----RA---- C:\WINDOWS\system32\kbdazel.dll
                            2009-02-01 23:27:10 ----RA---- C:\WINDOWS\system32\kbdycc.dll
                            2009-02-01 23:27:10 ----RA---- C:\WINDOWS\system32\kbduzb.dll
                            2009-02-01 23:27:10 ----RA---- C:\WINDOWS\system32\kbdur.dll
                            2009-02-01 23:27:10 ----RA---- C:\WINDOWS\system32\kbdtat.dll
                            2009-02-01 23:27:10 ----RA---- C:\WINDOWS\system32\kbdru1.dll
                            2009-02-01 23:27:10 ----RA---- C:\WINDOWS\system32\kbdru.dll
                            2009-02-01 23:27:10 ----RA---- C:\WINDOWS\system32\kbdmon.dll
                            2009-02-01 23:27:10 ----RA---- C:\WINDOWS\system32\kbdkyr.dll
                            2009-02-01 23:27:10 ----RA---- C:\WINDOWS\system32\kbdkaz.dll
                            2009-02-01 23:27:10 ----RA---- C:\WINDOWS\system32\kbdaze.dll
                            2009-02-01 23:27:09 ----RA---- C:\WINDOWS\system32\kbdbu.dll
                            2009-02-01 23:27:09 ----RA---- C:\WINDOWS\system32\kbdblr.dll
                            2009-02-01 23:27:07 ----RA---- C:\WINDOWS\system32\kbdhept.dll
                            2009-02-01 23:27:07 ----RA---- C:\WINDOWS\system32\kbdhela3.dll
                            2009-02-01 23:27:07 ----RA---- C:\WINDOWS\system32\kbdhela2.dll
                            2009-02-01 23:27:07 ----RA---- C:\WINDOWS\system32\kbdhe319.dll
                            2009-02-01 23:27:07 ----RA---- C:\WINDOWS\system32\kbdhe220.dll
                            2009-02-01 23:27:07 ----RA---- C:\WINDOWS\system32\kbdhe.dll
                            2009-02-01 23:27:07 ----RA---- C:\WINDOWS\system32\kbdgkl.dll
                            2009-02-01 23:27:05 ----RA---- C:\WINDOWS\system32\kbdlv1.dll
                            2009-02-01 23:27:05 ----RA---- C:\WINDOWS\system32\kbdlv.dll
                            2009-02-01 23:27:05 ----RA---- C:\WINDOWS\system32\kbdlt1.dll
                            2009-02-01 23:27:05 ----RA---- C:\WINDOWS\system32\kbdlt.dll
                            2009-02-01 23:27:05 ----RA---- C:\WINDOWS\system32\kbdest.dll
                            2009-02-01 23:27:03 ----RA---- C:\WINDOWS\system32\kbdycl.dll
                            2009-02-01 23:27:03 ----RA---- C:\WINDOWS\system32\kbdsl1.dll
                            2009-02-01 23:27:03 ----RA---- C:\WINDOWS\system32\kbdsl.dll
                            2009-02-01 23:27:03 ----RA---- C:\WINDOWS\system32\kbdro.dll
                            2009-02-01 23:27:03 ----RA---- C:\WINDOWS\system32\kbdpl1.dll
                            2009-02-01 23:27:03 ----RA---- C:\WINDOWS\system32\kbdpl.dll
                            2009-02-01 23:27:03 ----RA---- C:\WINDOWS\system32\kbdhu1.dll
                            2009-02-01 23:27:03 ----RA---- C:\WINDOWS\system32\kbdhu.dll
                            2009-02-01 23:27:03 ----RA---- C:\WINDOWS\system32\kbdcz2.dll
                            2009-02-01 23:27:03 ----RA---- C:\WINDOWS\system32\kbdcz1.dll
                            2009-02-01 23:27:03 ----RA---- C:\WINDOWS\system32\kbdcz.dll
                            2009-02-01 23:27:03 ----RA---- C:\WINDOWS\system32\kbdcr.dll
                            2009-02-01 23:27:03 ----RA---- C:\WINDOWS\system32\KBDAL.DLL
                            2009-02-01 23:27:00 ----A---- C:\WINDOWS\system32\spxcoins.dll
                            2009-02-01 23:27:00 ----A---- C:\WINDOWS\system32\irclass.dll
                            2009-02-01 23:27:00 ----A---- C:\WINDOWS\system32\EqnClass.Dll
                            2009-02-01 23:27:00 ----A---- C:\WINDOWS\system32\dgsetup.dll
                            2009-02-01 23:27:00 ----A---- C:\WINDOWS\system32\dgrpsetu.dll
                            2009-02-01 23:26:57 ----N---- C:\WINDOWS\system32\CONFIG.TMP
                            2009-02-01 23:26:57 ----A---- C:\WINDOWS\TASKMAN.EXE
                            2009-02-01 23:26:57 ----A---- C:\WINDOWS\system32\batt.dll
                            2009-02-01 23:26:56 ----A---- C:\WINDOWS\system32\storprop.dll
                            2009-02-01 23:26:56 ----A---- C:\WINDOWS\NOTEPAD.EXE
                            2009-02-01 23:26:49 ----ASH---- C:\Documents and Settings\All Users\Application Data\desktop.ini
                            2009-02-01 23:26:45 ----RA---- C:\WINDOWS\SET8.tmp
                            2009-02-01 23:26:43 ----RA---- C:\WINDOWS\SET4.tmp
                            2009-02-01 23:26:41 ----RA---- C:\WINDOWS\SET3.tmp
                            2009-02-01 23:26:37 ----D---- C:\WINDOWS\system32\CatRoot2
                            2009-02-01 23:26:37 ----D---- C:\WINDOWS\system32\CatRoot
                            2009-02-01 23:26:31 ----SD---- C:\Documents and Settings\All Users\Application Data\Microsoft
                            2009-02-01 23:26:08 ----A---- C:\WINDOWS\setuplog.txt
                            2009-02-01 23:26:05 ----D---- C:\Documents and Settings
                            2009-02-01 23:25:27 ----SH---- C:\boot.ini
                            2009-02-01 23:19:56 ----RSHD---- C:\WINDOWS\system32\dllcache
                            2009-02-01 23:19:56 ----D---- C:\WINDOWS\WinSxS
                            2009-02-01 23:19:56 ----D---- C:\WINDOWS\twain_32
                            2009-02-01 23:19:56 ----D---- C:\WINDOWS\Temp
                            2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\usmt
                            2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\oobe
                            2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\mui
                            2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\inetsrv
                            2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\IME
                            2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\icsxml
                            2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\ias
                            2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\export
                            2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\3com_dmi
                            2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\3076
                            2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\2052
                            2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\1054
                            2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\1042
                            2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\1041
                            2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\1037
                            2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\1036
                            2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\1033
                            2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\1031
                            2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\1028
                            2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\1025
                            2009-02-01 23:19:56 ----D---- C:\WINDOWS\Resources
                            2009-02-01 23:19:56 ----D---- C:\WINDOWS\Provisioning
                            2009-02-01 23:19:56 ----D---- C:\WINDOWS\PeerNet
                            2009-02-01 23:19:56 ----D---- C:\WINDOWS\pchealth
                            2009-02-01 23:19:56 ----D---- C:\WINDOWS\mui
                            2009-02-01 23:19:56 ----D---- C:\WINDOWS\msapps
                            2009-02-01 23:19:56 ----D---- C:\WINDOWS\ime
                            2009-02-01 23:19:56 ----D---- C:\WINDOWS\ehome
                            2009-02-01 23:19:56 ----D---- C:\WINDOWS\Debug
                            2009-02-01 23:19:56 ----D---- C:\WINDOWS\AppPatch
                            2009-02-01 23:19:55 ----RSD---- C:\WINDOWS\Fonts
                            2009-02-01 23:19:55 ----RD---- C:\WINDOWS\Web
                            2009-02-01 23:19:55 ----HD---- C:\WINDOWS\inf
                            2009-02-01 23:19:55 ----D---- C:\WINDOWS\system32\wins
                            2009-02-01 23:19:55 ----D---- C:\WINDOWS\system32\wbem
                            2009-02-01 23:19:55 ----D---- C:\WINDOWS\system32\spool
                            2009-02-01 23:19:55 ----D---- C:\WINDOWS\system32\ShellExt
                            2009-02-01 23:19:55 ----D---- C:\WINDOWS\system32\Setup
                            2009-02-01 23:19:55 ----D---- C:\WINDOWS\system32\ras
                            2009-02-01 23:19:55 ----D---- C:\WINDOWS\system32\npp
                            2009-02-01 23:19:55 ----D---- C:\WINDOWS\system32\drivers
                            2009-02-01 23:19:55 ----D---- C:\WINDOWS\system32\dhcp
                            2009-02-01 23:19:55 ----D---- C:\WINDOWS\system32\config
                            2009-02-01 23:19:55 ----D---- C:\WINDOWS\system32
                            2009-02-01 23:19:55 ----D---- C:\WINDOWS\system
                            2009-02-01 23:19:55 ----D---- C:\WINDOWS\security
                            2009-02-01 23:19:55 ----D---- C:\WINDOWS\repair
                            2009-02-01 23:19:55 ----D---- C:\WINDOWS\msagent
                            2009-02-01 23:19:55 ----D---- C:\WINDOWS\Media
                            2009-02-01 23:19:55 ----D---- C:\WINDOWS\java
                            2009-02-01 23:19:55 ----D---- C:\WINDOWS\Help
                            2009-02-01 23:19:55 ----D---- C:\WINDOWS\Driver Cache
                            2009-02-01 23:19:55 ----D---- C:\WINDOWS\Cursors
                            2009-02-01 23:19:55 ----D---- C:\WINDOWS\Connection Wizard
                            2009-02-01 23:19:55 ----D---- C:\WINDOWS\Config
                            2009-02-01 23:19:55 ----D---- C:\WINDOWS\addins
                            2009-02-01 23:19:55 ----D---- C:\WINDOWS

                            ======List of files/folders modified in the last 2 months======

                            2009-02-17 09:21:14 ----A---- C:\WINDOWS\win.ini
                            2009-02-14 22:03:00 ----A---- C:\WINDOWS\system.ini

                            ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

                            R1 avgio;avgio; \??\C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgio.sys []
                            R1 avipbb;avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [2009-02-06 75072]
                            R1 intelppm;Pilote de processeur Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2004-08-19 40320]
                            R1 ssmdrv;ssmdrv; C:\WINDOWS\system32\DRIVERS\ssmdrv.sys [2007-03-01 28352]
                            R1 WmiAcpi;Interface de gestion Microsoft Windows pour ACPI; C:\WINDOWS\system32\DRIVERS\wmiacpi.sys [2004-08-03 8832]
                            R2 NwlnkIpx;Protocole de transport compatible NWLink IPX/SPX/NetBIOS; C:\WINDOWS\system32\DRIVERS\nwlnkipx.sys [2004-08-03 88448]
                            R2 NwlnkNb;NetBIOS NWLink; C:\WINDOWS\system32\DRIVERS\nwlnknb.sys [2001-09-28 63232]
                            R2 NwlnkSpx;Protocole NWLink SPX/SPXII; C:\WINDOWS\system32\DRIVERS\nwlnkspx.sys [2001-09-28 55936]
                            R3 avgntflt;avgntflt; \??\C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgntflt.sys []
                            R3 CmBatt;Pilote d'adaptateur secteur Microsoft; C:\WINDOWS\system32\DRIVERS\CmBatt.sys [2004-08-03 14080]
                            R3 E100B;Intel(R) PRO Network Connection Driver; C:\WINDOWS\system32\DRIVERS\e100b325.sys [2006-10-31 165760]
                            R3 HdAudAddService;Microsoft UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\CHDAud.sys [2007-02-12 625664]
                            R3 HDAudBus;Pilote de bus Microsoft UAA pour High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2005-01-07 138752]
                            R3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\igxpmp32.sys [2007-08-08 5776864]
                            R3 NETw5x32;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows XP 32 Bit; C:\WINDOWS\system32\DRIVERS\NETw5x32.sys [2008-06-26 3630080]
                            R3 NWRDR;NetWare Rdr; C:\WINDOWS\system32\DRIVERS\nwrdr.sys [2004-08-03 163584]
                            R3 qcusbser;Mobile Connector USB Device for Legacy Serial Communication; C:\WINDOWS\system32\DRIVERS\cmusbser.sys [2007-10-16 97408]
                            R3 usbccgp;Pilote parent générique USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2004-08-03 31616]
                            R3 usbehci;Pilote miniport de contrôleur d'hôte amélioré Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2006-04-19 30080]
                            R3 usbhub;Concentrateur USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2004-08-03 57600]
                            R3 usbuhci;Pilote miniport de contrôleur hôte universel USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2006-04-19 20608]
                            S2 IKANLOADER2;General Purpose USB Driver (e4ldr.sys); C:\WINDOWS\System32\Drivers\e4ldr.sys [2006-01-19 63555]
                            S3 driverhardwarev2;driverhardwarev2; \??\C:\Program Files\ma-config.com\Drivers\driverhardwarev2.sys []
                            S3 e4usbaw;USB ADSL2 WAN Adapter; C:\WINDOWS\system32\DRIVERS\e4usbaw.sys [2006-03-02 113976]
                            S3 NetApi000;NetApi000; \??\C:\NetApi000.sys []
                            S3 USBSTOR;Pilote de stockage de masse USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2004-08-03 26496]
                            S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []

                            ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

                            R2 AntiVirScheduler;Avira AntiVir Personal - Free Antivirus Scheduler; C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe [2009-02-06 68865]
                            R2 AntiVirService;Avira AntiVir Personal - Free Antivirus Guard; C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe [2009-02-06 151297]
                            R2 hpqwmiex;hpqwmiex; C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe [2006-05-02 135168]
                            R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2009-02-21 152984]
                            R2 NWCWorkstation;Service client pour NetWare; C:\WINDOWS\system32\svchost.exe [2004-08-19 14336]
                            S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-02-04 138168]
                            S3 maconfservice;Ma-Config Service; C:\Program Files\ma-config.com\maconfservice.exe [2009-01-24 216232]
                            S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
                            S3 ose;Office Source Engine; C:\Program Files\Fichiers communs\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
                            S3 usnjsvc;Service Messenger Sharing Folders USN Journal Reader; C:\Program Files\MSN Messenger\usnsvc.exe [2007-01-19 97136]

                            -----------------EOF-----------------
                            0
                            1. Salut relance le log.txt de rsit stp
                              0
                              1. bjr,

                                2eme rapport:

                                -----------\\ ToolBar S&D 1.2.8 XP/Vista

                                Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 2
                                X86-based PC ( Multiprocessor Free : Intel(R) Core(TM)2 CPU T5200 @ 1.60GHz )
                                BIOS : KBC Version 82.15
                                USER : fati ( Administrator )
                                BOOT : Normal boot
                                Antivirus : Avira AntiVir PersonalEdition 8.0.1.30 (Not Activated)
                                C:\ (Local Disk) - FAT32 - Total:29 Go (Free:20 Go)
                                D:\ (Local Disk) - NTFS - Total:58 Go (Free:30 Go)
                                E:\ (Local Disk) - NTFS - Total:61 Go (Free:54 Go)
                                F:\ (CD or DVD) - UDF - Total:4 Go (Free:0 Go)

                                "C:\ToolBar SD" ( MAJ : 21-12-2008|20:47 )
                                Option : [1] ( 23/02/2009| 9:32 )

                                -----------\\ Recherche de Fichiers / Dossiers ...

                                -----------\\ [..\Internet Explorer\Main]

                                [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
                                "Local Page"="C:\\WINDOWS\\system32\\blank.htm"
                                "Start Page"="https://www.hespress.com/"
                                "Search Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"

                                [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
                                "Default_Page_URL"="http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome"
                                "Default_Search_URL"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
                                "Search Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
                                "Start Page"="http://www.microsoft.com/isapi/redir.dll?prd={SUB_PRD}&clcid={SUB_CLSID}&pver={SUB_PVER}&ar=home"

                                --------------------\\ Recherche d'autres infections

                                Aucune autre infection trouvée !

                                1 - "C:\ToolBar SD\TB_1.txt" - 23/02/2009| 9:32 - Option : [1]

                                -----------\\ Fin du rapport a 9:32:42,53
                                0
                                1. bonjour,

                                  merci infeniment ; volia le premier rapport:
                                  Error: Unable to interpret <processes > in the current context!
                                  Error: Unable to interpret <explorer.exe > in the current context!
                                  ========== FILES ==========
                                  File/Folder C:\FOUND.003 C:\Program Files\A360\av360.exe not found.
                                  C:\Recycled\Dc10 moved successfully.
                                  C:\Recycled\Dc8\application moved successfully.
                                  C:\Recycled\Dc8 moved successfully.
                                  C:\Recycled\Dc7 moved successfully.
                                  C:\Recycled\Dc6 moved successfully.
                                  C:\Recycled\Dc2 moved successfully.
                                  C:\Recycled\Dc1 moved successfully.
                                  C:\Recycled moved successfully.
                                  C:\WINDOWS\Fast800.ini moved successfully.
                                  ========== REGISTRY ==========
                                  Registry key HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{02e5bdb6-e8ff-11dc-a8b4-00192129faf6}\\ not found.
                                  Registry key HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{06bc315c-7439-11dd-a96c-00192129faf6}\\ not found.
                                  Registry key HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{0817463c-c7f0-11dc-a890-00192129faf6}\\ not found.
                                  Registry key HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{0817463d-c7f0-11dc-a890-00192129faf6}\\ not found.
                                  Registry key HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{0aa303c4-b2e9-11dd-a9bc-00192129faf6}\\ not found.
                                  Registry key HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{10977fbd-23f1-11dd-a907-00192129faf6}\\ not found.
                                  Registry key HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{32d7cf69-cf05-11dc-a898-00192129faf6}\\ not found.
                                  Registry key HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{32d7cf69-cf05-11dc-a898-00192129faf6}\\ not found.
                                  Registry key HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{4717c200-cc30-11dd-a9dc-00192129faf6}\\ not found.
                                  Registry key HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{74d68554-fd83-11dc-a8d1-00192129faf6}\\ not found.
                                  Registry key HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{83f6f8fa-99c3-11dd-a99d-00192129faf6}\\ not found.
                                  Registry key HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{83f6f8fc-99c3-11dd-a99d-00192129faf6}\\ not found.
                                  Registry key HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{83f6f8fd-99c3-11dd-a99d-00192129faf6}\\ not found.
                                  Registry key HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{8a372597-cffb-11dd-a9e3-00192129faf6}\\ not found.
                                  Registry key HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{8fa2131f-ce85-11dd-a9df-00192129faf6}\\ not found.
                                  Registry key HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{9b367b8a-c36c-11dd-a9d2-00192129faf6}\\ not found.
                                  Registry key HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{bcc0b414-346a-11dd-a91c-00192129faf6}\\ not found.
                                  Registry key HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{c3cb5216-c8bb-11dc-a891-00192129faf6}] [-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{d412cfd8-fb2d-11dc-a8cf-00192129faf6}\\ not found.
                                  Registry key HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{daa3d910-0487-11dd-a8de-00192129faf6}\\ not found.
                                  Registry key HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{de75ba32-f815-11dc-a8c6-00192129faf6}\\ not found.
                                  Registry key HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{e4873e56-ab12-11dd-a9b3-00192129faf6}\\ not found.
                                  Registry key HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{f0cfe4fc-0ebb-11dd-a8eb-00192129faf6}\\ not found.
                                  ========== COMMANDS ==========
                                  File delete failed. C:\DOCUME~1\fati\LOCALS~1\Temp\~DF5C88.tmp scheduled to be deleted on reboot.
                                  User's Temp folder emptied.
                                  User's Temporary Internet Files folder emptied.
                                  User's Internet Explorer cache folder emptied.
                                  Local Service Temp folder emptied.
                                  Local Service Temporary Internet Files folder emptied.
                                  File delete failed. C:\WINDOWS\temp\Perflib_Perfdata_610.dat scheduled to be deleted on reboot.
                                  Windows Temp folder emptied.
                                  Java cache emptied.
                                  Temp folders emptied.
                                  Explorer started successfully

                                  OTMoveIt3 by OldTimer - Version 1.0.8.0 log created on 02232009_092809

                                  Files moved on Reboot...
                                  C:\DOCUME~1\fati\LOCALS~1\Temp\~DF5C88.tmp moved successfully.
                                  File C:\WINDOWS\temp\Perflib_Perfdata_610.dat not found!
                                  0
                                  1. ---> Désactive ton antivirus le temps de la manipulation car OTMoveIt3 est détecté comme une infection à tort.

                                    ---> Télécharge OTMoveIt3 (OldTimer) sur ton Bureau :
                                    http://oldtimer.geekstogo.com/OTMoveIt3.exe

                                    ---> Double-clique sur OTMoveIt3.exe afin de le lancer.

                                    ---> Copie (Ctrl+C) le texte suivant ci-dessous :



                                    :processes
                                    explorer.exe

                                    :files
                                    C:\FOUND.003 C:\Program Files\A360\av360.exe
                                    C:\Recycled
                                    C:\WINDOWS\Fast800.ini

                                    :reg
                                    [-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{02e5bdb6-e8ff-11dc-a8b4-00192129faf6}]
                                    [-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{06bc315c-7439-11dd-a96c-00192129faf6}]
                                    [-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{0817463c-c7f0-11dc-a890-00192129faf6}]
                                    [-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{0817463d-c7f0-11dc-a890-00192129faf6}]
                                    [-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{0aa303c4-b2e9-11dd-a9bc-00192129faf6}]
                                    [-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{10977fbd-23f1-11dd-a907-00192129faf6}]
                                    [-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{32d7cf69-cf05-11dc-a898-00192129faf6}]
                                    [-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{32d7cf69-cf05-11dc-a898-00192129faf6}]
                                    [-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{4717c200-cc30-11dd-a9dc-00192129faf6}]
                                    [-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{74d68554-fd83-11dc-a8d1-00192129faf6}]
                                    [-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{83f6f8fa-99c3-11dd-a99d-00192129faf6}]
                                    [-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{83f6f8fc-99c3-11dd-a99d-00192129faf6}]
                                    [-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{83f6f8fd-99c3-11dd-a99d-00192129faf6}]
                                    [-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{8a372597-cffb-11dd-a9e3-00192129faf6}]
                                    [-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{8fa2131f-ce85-11dd-a9df-00192129faf6}]
                                    [-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{9b367b8a-c36c-11dd-a9d2-00192129faf6}]
                                    [-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{bcc0b414-346a-11dd-a91c-00192129faf6}]
                                    [-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{c3cb5216-c8bb-11dc-a891-00192129faf6}] [-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{d412cfd8-fb2d-11dc-a8cf-00192129faf6}]
                                    [-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{daa3d910-0487-11dd-a8de-00192129faf6}]
                                    [-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{de75ba32-f815-11dc-a8c6-00192129faf6}]
                                    [-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{e4873e56-ab12-11dd-a9b3-00192129faf6}]
                                    [-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{f0cfe4fc-0ebb-11dd-a8eb-00192129faf6}]

                                    :commands
                                    [purity]
                                    [emptytemp]
                                    [start explorer]
                                    [reboot]


                                    ---> Colle (Ctrl+V) le texte précédemment copié dans le cadre Paste Instructions for Items to be Moved.

                                    ---> Clique maintenant sur le bouton MoveIt! puis ferme OTMoveIt3.

                                    Si un fichier ou dossier ne peut pas être supprimé immédiatement, le logiciel te demandera de redémarrer.
                                    Accepte en cliquant sur YES.

                                    ---> Poste le rapport situé dans ce dossier : C:\_OTMoveIt\MovedFiles\
                                    Le nom du rapport correspond au moment de sa création : date_heure.log

                                    ensuite :


                                    Télécharge ToolBar S&D ( de Eric_71/Team IDN ) sur ton bureau :
                                    https://77b4795d-a-62cb3a1a-s-sites.googlegroups.com/site/eric71mespages/ToolBarSD.exe?attachauth=ANoY7cqJWPphpudyTqv7TRo5RQ3nm_Sx8JluVMO59X5E9cyE3j3LqKlmStIqiDqJdIgMJLi7MXn2nKVajQfoWuVvZZ2wIx_vkqO4k4P0K9jh-ra9jaKPXdZcoaVF2UqJZNH8ubL_42uIwh6f35xJ2GJMuzddVj2Qth1DgZ839lxEIFGkgWz3TdfvNMy-YtxfA3gqBUrj4U4LFeAPiWr3ClmjIP0t_Xs5PQ%3D%3D&attredirects=2

                                    ( Tuto : https://sites.google.com/site/toolbarsd/aideenimages )

                                    !! Déconnecte toi et ferme toutes tes applications en cours le temps de la manipe !!

                                    * Double-clique sur ToolBar SD.exe pour lancer l'outil et laisse toi guider ...
                                    --> Tapes ( option " recherche " ) puis tape sur [Entrée].

                                    Un rapport sera généré à la fin du processus : poste son contenu dans ta prochaine réponse

                                    ( le rapport est en outre sauvegardé ici -> C:\TB.txt )
                                    0
                                    1. le 2eme rapport
                                      desolé encore une fois pr l retard c hors de ma volonté.
                                      merci.
                                      info.txt logfile of random's system information tool 1.05 2009-02-22 18:25:58

                                      ======Uninstall list======

                                      -->C:\Program Files\Fichiers communs\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0
                                      -->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
                                      Adobe Flash Player 10 ActiveX-->C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
                                      Adobe Reader 9 - Français-->MsiExec.exe /I{AC76BA86-7AD7-1036-7B44-A90000000001}
                                      Archiveur WinRAR-->C:\Program Files\WinRAR\uninstall.exe
                                      Assistant Publication de sites Web Microsoft 1.53-->RunDll32 ADVPACK.DLL,LaunchINFSection C:\WINDOWS\INF\wpie3x86.inf,WebPostUninstall
                                      Avira AntiVir Personal - Free Antivirus-->C:\Program Files\Avira\AntiVir PersonalEdition Classic\SETUP.EXE /REMOVE
                                      Carte réseau local sans fil 802.11 Broadcom-->"C:\Program Files\Broadcom\Broadcom 802.11\Driver\bcmwlu00.exe" verbose /rootkey="Software\Broadcom\802.11\UninstallInfo" /rootdir="C:\Program Files\Broadcom\Broadcom 802.11\Driver"
                                      Conexant HD Audio-->C:\Program Files\CONEXANT\CNXT_HDAUDIO\UIU32a.exe -U -ICpV30D5a.INF
                                      Correctif pour Windows XP (KB892559-v3)-->"C:\WINDOWS\$NtUninstallKB892559-v3$\spuninst\spuninst.exe"
                                      Correctif pour Windows XP (KB896256)-->"C:\WINDOWS\$NtUninstallKB896256$\spuninst\spuninst.exe"
                                      Correctif pour Windows XP (KB909095)-->"C:\WINDOWS\$NtUninstallKB909095$\spuninst\spuninst.exe"
                                      Correctif pour Windows XP (KB909667)-->"C:\WINDOWS\$NtUninstallKB909667$\spuninst\spuninst.exe"
                                      Correctif pour Windows XP (KB912436)-->"C:\WINDOWS\$NtUninstallKB912436$\spuninst\spuninst.exe"
                                      Correctif pour Windows XP (KB915326)-->"C:\WINDOWS\$NtUninstallKB915326$\spuninst\spuninst.exe"
                                      Correctif pour Windows XP (KB918005)-->"C:\WINDOWS\$NtUninstallKB918005$\spuninst\spuninst.exe"
                                      Correctif pour Windows XP (KB952287)-->"C:\WINDOWS\$NtUninstallKB952287$\spuninst\spuninst.exe"
                                      Correctif Windows XP - KB883667-->C:\WINDOWS\$NtUninstallKB883667$\spuninst\spuninst.exe
                                      Correctif Windows XP - KB885464-->C:\WINDOWS\$NtUninstallKB885464$\spuninst\spuninst.exe
                                      Correctif Windows XP - KB885855-->C:\WINDOWS\$NtUninstallKB885855$\spuninst\spuninst.exe
                                      Correctif Windows XP - KB888239-->C:\WINDOWS\$NtUninstallKB888239$\spuninst\spuninst.exe
                                      Correctif Windows XP - KB888402-->C:\WINDOWS\$NtUninstallKB888402$\spuninst\spuninst.exe
                                      Correctif Windows XP - KB889673-->C:\WINDOWS\$NtUninstallKB889673$\spuninst\spuninst.exe
                                      Google Toolbar for Internet Explorer-->MsiExec.exe /I{DBEA1034-5882-4A88-8033-81C4EF0CFA29}
                                      Google Toolbar for Internet Explorer-->regsvr32 /u /s "c:\program files\google\googletoolbar1.dll"
                                      HijackThis 2.0.2-->"C:\Documents and Settings\fati\Bureau\ZIKZIK\francais\HijackThis.exe" /uninstall
                                      HP Wireless Assistant-->MsiExec.exe /I{D32067CD-7409-4792-BFA0-1469BCD8F0C8}
                                      HSDPA USB MODEM version 4.112-->"C:\Program Files\HSDPA USB MODEM\uninst\unins000.exe"
                                      Intel(R) Graphics Media Accelerator Driver-->C:\WINDOWS\system32\igxpun.exe -uninstall
                                      Intel(R) PRO Network Connections Drivers-->Prounstl.exe
                                      Internet Download Manager-->C:\Program Files\Internet Download Manager\Uninstall.exe
                                      Java(TM) 6 Update 12-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216012FF}
                                      LimeWire PRO 4.18.3-->"C:\Program Files\LimeWire\uninstall.exe"
                                      Ma-Config.com-->MsiExec.exe /X{8AFB8FC4-3EBA-4C67-943F-CF43DB2180F1}
                                      Malwarebytes' Anti-Malware-->"C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"
                                      Microsoft Office Access MUI (French) 2007-->MsiExec.exe /X{90120000-0015-040C-0000-0000000FF1CE}
                                      Microsoft Office Excel MUI (French) 2007-->MsiExec.exe /X{90120000-0016-040C-0000-0000000FF1CE}
                                      Microsoft Office InfoPath MUI (French) 2007-->MsiExec.exe /X{90120000-0044-040C-0000-0000000FF1CE}
                                      Microsoft Office Outlook MUI (French) 2007-->MsiExec.exe /X{90120000-001A-040C-0000-0000000FF1CE}
                                      Microsoft Office PowerPoint MUI (French) 2007-->MsiExec.exe /X{90120000-0018-040C-0000-0000000FF1CE}
                                      Microsoft Office Professional Plus 2007-->"C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall PROPLUS /dll OSETUP.DLL
                                      Microsoft Office Professional Plus 2007-->MsiExec.exe /X{90120000-0011-0000-0000-0000000FF1CE}
                                      Microsoft Office Proof (Arabic) 2007-->MsiExec.exe /X{90120000-001F-0401-0000-0000000FF1CE}
                                      Microsoft Office Proof (Dutch) 2007-->MsiExec.exe /X{90120000-001F-0413-0000-0000000FF1CE}
                                      Microsoft Office Proof (English) 2007-->MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
                                      Microsoft Office Proof (French) 2007-->MsiExec.exe /X{90120000-001F-040C-0000-0000000FF1CE}
                                      Microsoft Office Proof (German) 2007-->MsiExec.exe /X{90120000-001F-0407-0000-0000000FF1CE}
                                      Microsoft Office Proof (Spanish) 2007-->MsiExec.exe /X{90120000-001F-0C0A-0000-0000000FF1CE}
                                      Microsoft Office Proofing (French) 2007-->MsiExec.exe /X{90120000-002C-040C-0000-0000000FF1CE}
                                      Microsoft Office Publisher MUI (French) 2007-->MsiExec.exe /X{90120000-0019-040C-0000-0000000FF1CE}
                                      Microsoft Office Shared MUI (French) 2007-->MsiExec.exe /X{90120000-006E-040C-0000-0000000FF1CE}
                                      Microsoft Office Word MUI (French) 2007-->MsiExec.exe /X{90120000-001B-040C-0000-0000000FF1CE}
                                      Microsoft Visual Basic 6.0 Édition Entreprise (Français)-->"C:\Program Files\Microsoft Visual Studio\VB98\Setup\1036\Setup.exe"
                                      Mise à jour de sécurité pour Windows XP (KB938464)-->"C:\WINDOWS\$NtUninstallKB938464$\spuninst\spuninst.exe"
                                      Mise à jour de sécurité pour Windows XP (KB946648)-->"C:\WINDOWS\$NtUninstallKB946648$\spuninst\spuninst.exe"
                                      Mise à jour de sécurité pour Windows XP (KB950762)-->"C:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe"
                                      Mise à jour de sécurité pour Windows XP (KB950974)-->"C:\WINDOWS\$NtUninstallKB950974$\spuninst\spuninst.exe"
                                      Mise à jour de sécurité pour Windows XP (KB951066)-->"C:\WINDOWS\$NtUninstallKB951066$\spuninst\spuninst.exe"
                                      Mise à jour de sécurité pour Windows XP (KB951376-v2)-->"C:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe"
                                      Mise à jour de sécurité pour Windows XP (KB951698)-->"C:\WINDOWS\$NtUninstallKB951698$\spuninst\spuninst.exe"
                                      Mise à jour de sécurité pour Windows XP (KB951748)-->"C:\WINDOWS\$NtUninstallKB951748$\spuninst\spuninst.exe"
                                      Mise à jour de sécurité pour Windows XP (KB952954)-->"C:\WINDOWS\$NtUninstallKB952954$\spuninst\spuninst.exe"
                                      Mise à jour de sécurité pour Windows XP (KB954211)-->"C:\WINDOWS\$NtUninstallKB954211$\spuninst\spuninst.exe"
                                      Mise à jour de sécurité pour Windows XP (KB954600)-->"C:\WINDOWS\$NtUninstallKB954600$\spuninst\spuninst.exe"
                                      Mise à jour de sécurité pour Windows XP (KB956391)-->"C:\WINDOWS\$NtUninstallKB956391$\spuninst\spuninst.exe"
                                      Mise à jour de sécurité pour Windows XP (KB956803)-->"C:\WINDOWS\$NtUninstallKB956803$\spuninst\spuninst.exe"
                                      Mise à jour de sécurité pour Windows XP (KB956841)-->"C:\WINDOWS\$NtUninstallKB956841$\spuninst\spuninst.exe"
                                      Mise à jour de sécurité pour Windows XP (KB957097)-->"C:\WINDOWS\$NtUninstallKB957097$\spuninst\spuninst.exe"
                                      Mise à jour de sécurité pour Windows XP (KB958215)-->"C:\WINDOWS\$NtUninstallKB958215$\spuninst\spuninst.exe"
                                      Mise à jour de sécurité pour Windows XP (KB958644)-->"C:\WINDOWS\$NtUninstallKB958644$\spuninst\spuninst.exe"
                                      Mise à jour de sécurité pour Windows XP (KB958687)-->"C:\WINDOWS\$NtUninstallKB958687$\spuninst\spuninst.exe"
                                      Mise à jour de sécurité pour Windows XP (KB960714)-->"C:\WINDOWS\$NtUninstallKB960714$\spuninst\spuninst.exe"
                                      Mise à jour pour Windows XP (KB898461)-->"C:\WINDOWS\$NtUninstallKB898461$\spuninst\spuninst.exe"
                                      Mise à jour pour Windows XP (KB955839)-->"C:\WINDOWS\$NtUninstallKB955839$\spuninst\spuninst.exe"
                                      RealPlayer-->C:\Program Files\Fichiers communs\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0
                                      SAGEM F@st 800-840-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{4AE3A0CB-87B0-4F51-BECD-3D1F8DFDD62F}\Setup.exe" -l0x40c
                                      VideoLAN VLC media player 0.8.6i-->C:\Program Files\VideoLAN\VLC\uninstall.exe
                                      Windows Live Messenger-->MsiExec.exe /I{F6326B60-1B1D-4ABF-BFCD-7B7404F44411}

                                      ======Security center information======

                                      AV: Avira AntiVir PersonalEdition

                                      System event log

                                      Computer Name: PC
                                      Event Code: 26
                                      Message: Application popup : vlc.exe - Fichier endommagé : Le fichier ou le répertoire \Documents and Settings\FATI\Application Data\vlc\vlcrc est endommagé et illisible. Exécutez l'utilitaire CHKDSK.

                                      Record Number: 1329
                                      Source Name: Application Popup
                                      Time Written: 20090208225426.000000+060
                                      Event Type: Informations
                                      User:

                                      Computer Name: PC
                                      Event Code: 26
                                      Message: Application popup : vlc.exe - Fichier endommagé : Le fichier ou le répertoire \Documents and Settings\FATI\Application Data\vlc\vlcrc est endommagé et illisible. Exécutez l'utilitaire CHKDSK.

                                      Record Number: 1328
                                      Source Name: Application Popup
                                      Time Written: 20090208225426.000000+060
                                      Event Type: Informations
                                      User:

                                      Computer Name: PC
                                      Event Code: 26
                                      Message: Application popup : vlc.exe - Fichier endommagé : Le fichier ou le répertoire \Documents and Settings\FATI\Application Data\vlc\vlcrc est endommagé et illisible. Exécutez l'utilitaire CHKDSK.

                                      Record Number: 1327
                                      Source Name: Application Popup
                                      Time Written: 20090208225426.000000+060
                                      Event Type: Informations
                                      User:

                                      Computer Name: PC
                                      Event Code: 26
                                      Message: Application popup : vlc.exe - Fichier endommagé : Le fichier ou le répertoire \Documents and Settings\FATI\Application Data\vlc\vlcrc est endommagé et illisible. Exécutez l'utilitaire CHKDSK.

                                      Record Number: 1326
                                      Source Name: Application Popup
                                      Time Written: 20090208225426.000000+060
                                      Event Type: Informations
                                      User:

                                      Computer Name: PC
                                      Event Code: 26
                                      Message: Application popup : vlc.exe - Fichier endommagé : Le fichier ou le répertoire \Documents and Settings\FATI\Application Data\vlc\vlcrc est endommagé et illisible. Exécutez l'utilitaire CHKDSK.

                                      Record Number: 1325
                                      Source Name: Application Popup
                                      Time Written: 20090208225426.000000+060
                                      Event Type: Informations
                                      User:

                                      Application event log

                                      Computer Name: PC
                                      Event Code: 1000
                                      Message: Les compteurs de performances pour le service WmiApRpl (WmiApRpl) ont été chargés.
                                      Les données d'enregistrement contiennent les nouvelles valeurs d'index
                                      assignées à ce service.

                                      Record Number: 410
                                      Source Name: LoadPerf
                                      Time Written: 20090219232456.000000+060
                                      Event Type: Informations
                                      User:

                                      Computer Name: PC
                                      Event Code: 1001
                                      Message: Les compteurs de performances pour le service WmiApRpl (WmiApRpl) ont été supprimés.
                                      Les données d'enregistrement contiennent les nouvelles valeurs du dernier compteur système
                                      et les dernières entrées du registre d'aide.

                                      Record Number: 409
                                      Source Name: LoadPerf
                                      Time Written: 20090219232455.000000+060
                                      Event Type: Informations
                                      User:

                                      Computer Name: PC
                                      Event Code: 4096
                                      Message: The AntiVir service has been started successfully!

                                      Record Number: 408
                                      Source Name: Avira AntiVir
                                      Time Written: 20090219232041.000000+060
                                      Event Type: Informations
                                      User: AUTORITE NT\SYSTEM

                                      Computer Name: PC
                                      Event Code: 1800
                                      Message: Le service Centre de sécurité Windows a démarré.

                                      Record Number: 407
                                      Source Name: SecurityCenter
                                      Time Written: 20090219232040.000000+060
                                      Event Type: Informations
                                      User:

                                      Computer Name: PC
                                      Event Code: 4113
                                      Message:
                                      Record Number: 406
                                      Source Name: Avira AntiVir
                                      Time Written: 20090219221709.000000+060
                                      Event Type: Avertissement
                                      User: AUTORITE NT\SYSTEM

                                      ======Environment variables======

                                      "ComSpec"=%SystemRoot%\system32\cmd.exe
                                      "Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem
                                      "windir"=%SystemRoot%
                                      "FP_NO_HOST_CHECK"=NO
                                      "OS"=Windows_NT
                                      "PROCESSOR_ARCHITECTURE"=x86
                                      "PROCESSOR_LEVEL"=6
                                      "PROCESSOR_IDENTIFIER"=x86 Family 6 Model 15 Stepping 6, GenuineIntel
                                      "PROCESSOR_REVISION"=0f06
                                      "NUMBER_OF_PROCESSORS"=2
                                      "PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
                                      "TEMP"=%SystemRoot%\TEMP
                                      "TMP"=%SystemRoot%\TEMP

                                      -----------------EOF-----------------
                                      0
                                      1. salut,
                                        voila les 2 rapports:

                                        Logfile of random's system information tool 1.05 (written by random/random)
                                        Run by fati at 2009-02-22 18:25:56
                                        Microsoft Windows XP Professionnel Service Pack 2
                                        System drive C: has 21 GB (69%) free of 30 GB
                                        Total RAM: 2039 MB (83% free)

                                        HijackThis download failed

                                        ======Registry dump======

                                        [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0055C089-8582-441B-A0BF-17B458C2A3A8}]
                                        IDMIEHlprObj Class - C:\Program Files\Internet Download Manager\IDMIECC.dll [2008-12-17 161200]

                                        [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
                                        Adobe PDF Link Helper - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11 75128]

                                        [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
                                        RealPlayer Download and Record Plugin for Internet Explorer - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll [2009-02-05 370296]

                                        [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7E853D72-626A-48EC-A868-BA8D5E23E045}]

                                        [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
                                        Google Toolbar Helper - c:\program files\google\googletoolbar1.dll [2009-02-04 2436160]

                                        [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
                                        Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-02-21 35840]

                                        [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
                                        JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2009-02-21 73728]

                                        [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
                                        {2318C2B1-4965-11d4-9B18-009027A5CD4F} - &Google - c:\program files\google\googletoolbar1.dll [2009-02-04 2436160]

                                        [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
                                        "hpWirelessAssistant"=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [2007-03-01 472776]
                                        "TkBellExe"=C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe [2009-02-05 185896]
                                        "Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2008-06-12 34672]
                                        "avgnt"=C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe [2008-06-12 266497]
                                        "SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2009-02-21 148888]

                                        [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
                                        "CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2004-08-19 15360]
                                        "MsnMsgr"=C:\Program Files\MSN Messenger\MsnMsgr.Exe [2007-01-19 5674352]
                                        "IDMan"=C:\Program Files\Internet Download Manager\IDMan.exe [2008-12-17 2745776]

                                        C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage
                                        DSLMON.lnk - C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe

                                        [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
                                        C:\WINDOWS\system32\igfxdev.dll [2007-08-08 208896]

                                        [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
                                        UPnPMonitor - {e57ce738-33e8-4c51-8354-bb4de9d215d1} - C:\WINDOWS\system32\upnpui.dll [2004-08-19 240128]

                                        [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
                                        "authentication packages"=msv1_0
                                        nwprovau

                                        [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
                                        "dontdisplaylastusername"=0
                                        "legalnoticecaption"=
                                        "legalnoticetext"=
                                        "shutdownwithoutlogon"=1
                                        "undockwithoutlogon"=1

                                        [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
                                        "NoDriveTypeAutoRun"=145

                                        [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
                                        "%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
                                        "C:\Program Files\MSN Messenger\msnmsgr.exe"="C:\Program Files\MSN Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.1"
                                        "C:\Program Files\MSN Messenger\livecall.exe"="C:\Program Files\MSN Messenger\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"
                                        "C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
                                        "C:\Program Files\ma-config.com\maconfservice.exe"="C:\Program Files\ma-config.com\maconfservice.exe:LocalSubNet:Enabled:maconfservice"
                                        "C:\Program Files\Messenger\MSMSGS.EXE"="C:\Program Files\Messenger\MSMSGS.EXE:*:Enabled:Windows Messenger"

                                        [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
                                        "%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
                                        "C:\Program Files\MSN Messenger\msnmsgr.exe"="C:\Program Files\MSN Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.1"
                                        "C:\Program Files\MSN Messenger\livecall.exe"="C:\Program Files\MSN Messenger\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"

                                        [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{1c2c48c6-f16e-11dd-bae8-f35942e0daa8}]
                                        shell\AutoRun\command - GuelmimG.bat
                                        shell\explore\command - GuelmimG.bat -e
                                        shell\open\command - GuelmimG.bat

                                        [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{30c33b2a-f6f8-11dd-bb05-001f3c3505b2}]
                                        shell\AutoRun\command - G:\LaunchU3.exe -a

                                        [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{62c1c024-f121-11dd-bae1-b11b75282cb0}]
                                        shell\AutoRun\command - G:\.\ShowModem.exe

                                        [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{a14541ac-fac4-11dd-bb11-001f3c3505b2}]
                                        shell\AutoRun\command - G:\GuelmimG.bat
                                        shell\explore\command - G:\GuelmimG.bat -e
                                        shell\open\command - G:\GuelmimG.bat

                                        [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{bee2ba60-f1fe-11dd-baeb-f417185d68b5}]
                                        shell\AutoRun\command - C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL log.exe
                                        shell\Ouvrir\command - G:\log.exe

                                        [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{d99b74c2-f1ff-11dd-baec-a760f36913b5}]
                                        shell\AutoRun\command - C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL log.exe
                                        shell\Ouvrir\command - G:\log.exe

                                        ======List of files/folders created in the last 2 months======

                                        2009-02-22 18:22:15 ----D---- C:\Program Files\trend micro
                                        2009-02-22 18:22:14 ----D---- C:\rsit
                                        2009-02-22 18:18:54 ----SHD---- C:\FOUND.004
                                        2009-02-21 23:51:23 ----D---- C:\WINDOWS\Sun
                                        2009-02-21 23:34:02 ----A---- C:\WINDOWS\system32\javaws.exe
                                        2009-02-21 23:34:02 ----A---- C:\WINDOWS\system32\javaw.exe
                                        2009-02-21 23:34:02 ----A---- C:\WINDOWS\system32\java.exe
                                        2009-02-21 23:34:02 ----A---- C:\WINDOWS\system32\deploytk.dll
                                        2009-02-21 23:33:49 ----D---- C:\Program Files\Java
                                        2009-02-21 23:30:00 ----D---- C:\Documents and Settings\fati\Application Data\Sun
                                        2009-02-21 23:28:56 ----D---- C:\Program Files\LimeWire
                                        2009-02-19 21:36:07 ----D---- C:\WINDOWS\system32\LogFiles
                                        2009-02-18 18:53:54 ----SHD---- C:\FOUND.003
                                        2009-02-15 00:44:12 ----A---- C:\WINDOWS\IE4 Error Log.txt
                                        2009-02-14 23:23:16 ----A---- C:\WINDOWS\cdplayer.ini
                                        2009-02-13 18:23:16 ----A---- C:\WINDOWS\ModemLog_Mobile Connector #2.txt
                                        2009-02-12 20:54:02 ----A---- C:\WINDOWS\ODBC.INI
                                        2009-02-12 20:53:48 ----RA---- C:\WINDOWS\system32\WPWIZDLL.DLL
                                        2009-02-12 20:53:48 ----RA---- C:\WINDOWS\system32\WEBPOST.DLL
                                        2009-02-12 20:53:48 ----RA---- C:\WINDOWS\system32\POSTWPP.DLL
                                        2009-02-12 20:53:48 ----RA---- C:\WINDOWS\system32\PIPARSE.DLL
                                        2009-02-12 20:53:48 ----RA---- C:\WINDOWS\system32\FTPWPP.DLL
                                        2009-02-12 20:53:48 ----RA---- C:\WINDOWS\system32\FPWPP.DLL
                                        2009-02-12 20:53:48 ----RA---- C:\WINDOWS\system32\CRSWPP.DLL
                                        2009-02-12 20:53:48 ----D---- C:\Program Files\Publication Web
                                        2009-02-12 20:53:48 ----A---- C:\WINDOWS\wplog.txt
                                        2009-02-10 19:27:36 ----D---- C:\Documents and Settings\fati\Application Data\Thinstall
                                        2009-02-10 01:31:46 ----SHD---- C:\FOUND.002
                                        2009-02-09 23:22:59 ----D---- C:\Documents and Settings\fati\Application Data\U3
                                        2009-02-08 13:57:14 ----D---- C:\Documents and Settings\fati\Application Data\vlc
                                        2009-02-08 13:32:21 ----D---- C:\Documents and Settings\fati\Application Data\dvdcss
                                        2009-02-08 13:31:34 ----D---- C:\Program Files\VideoLAN
                                        2009-02-07 20:28:53 ----D---- C:\WINDOWS\pss
                                        2009-02-05 23:52:22 ----D---- C:\Program Files\Avira
                                        2009-02-05 20:33:40 ----D---- C:\Documents and Settings\All Users\Application Data\Adobe
                                        2009-02-05 18:59:44 ----D---- C:\Program Files\Fichiers communs\xing shared
                                        2009-02-05 18:59:41 ----A---- C:\WINDOWS\system32\rmoc3260.dll
                                        2009-02-05 18:59:36 ----A---- C:\WINDOWS\system32\pndx5032.dll
                                        2009-02-05 18:59:36 ----A---- C:\WINDOWS\system32\pndx5016.dll
                                        2009-02-05 18:59:35 ----A---- C:\WINDOWS\system32\pncrt.dll
                                        2009-02-05 18:59:35 ----A---- C:\WINDOWS\system32\msvcr71.dll
                                        2009-02-05 18:59:35 ----A---- C:\WINDOWS\system32\msvcp71.dll
                                        2009-02-05 18:59:33 ----D---- C:\Program Files\Real
                                        2009-02-05 18:59:33 ----D---- C:\Program Files\Fichiers communs\Real
                                        2009-02-05 18:59:00 ----D---- C:\Documents and Settings\fati\Application Data\Real
                                        2009-02-05 16:21:32 ----SHD---- C:\FOUND.001
                                        2009-02-04 15:23:48 ----D---- C:\Documents and Settings\fati\Application Data\Google
                                        2009-02-04 15:14:50 ----D---- C:\Documents and Settings\fati\Application Data\Macromedia
                                        2009-02-04 15:14:31 ----D---- C:\Documents and Settings\All Users\Application Data\Google
                                        2009-02-04 15:14:27 ----D---- C:\Program Files\Google
                                        2009-02-04 14:40:29 ----D---- C:\Program Files\Broadcom
                                        2009-02-04 14:40:28 ----D---- C:\Documents and Settings\fati\Application Data\InstallShield
                                        2009-02-04 14:40:10 ----A---- C:\WINDOWS\system32\NETw5r32.dll
                                        2009-02-04 14:40:10 ----A---- C:\WINDOWS\system32\NETw5c32.dll
                                        2009-02-04 08:05:52 ----SHD---- C:\FOUND.000
                                        2009-02-03 21:54:51 ----D---- C:\Program Files\CONEXANT
                                        2009-02-03 21:54:50 ----A---- C:\WINDOWS\system32\ksuser.dll
                                        2009-02-03 17:35:07 ----D---- C:\Documents and Settings\fati\Application Data\AdobeUM
                                        2009-02-03 17:35:01 ----D---- C:\Documents and Settings\fati\Application Data\Adobe
                                        2009-02-03 17:34:58 ----D---- C:\Program Files\Fichiers communs\Adobe
                                        2009-02-03 17:23:32 ----D---- C:\Program Files\Adobe
                                        2009-02-03 17:22:59 ----D---- C:\Program Files\WinRAR
                                        2009-02-03 17:22:33 ----D---- C:\WINDOWS\Cache
                                        2009-02-02 22:33:40 ----D---- C:\Program Files\ma-config.com
                                        2009-02-02 22:33:40 ----D---- C:\Documents and Settings\All Users\Application Data\ma-config.com
                                        2009-02-02 22:03:52 ----D---- C:\WINDOWS\system32\ReinstallBackups
                                        2009-02-02 20:52:19 ----D---- C:\Documents and Settings\All Users\Application Data\Avira
                                        2009-02-02 20:38:56 ----HD---- C:\WINDOWS\$NtUninstallKB915326$
                                        2009-02-02 20:38:49 ----HD---- C:\WINDOWS\$NtUninstallKB889673$
                                        2009-02-02 20:38:41 ----HD---- C:\WINDOWS\$NtUninstallKB888402$
                                        2009-02-02 20:38:34 ----HD---- C:\WINDOWS\$NtUninstallKB885464$
                                        2009-02-02 20:38:26 ----HD---- C:\WINDOWS\$NtUninstallKB883667$
                                        2009-02-02 20:38:18 ----HD---- C:\WINDOWS\$NtUninstallKB918005$
                                        2009-02-02 20:38:08 ----HD---- C:\WINDOWS\$NtUninstallKB912436$
                                        2009-02-02 20:37:53 ----HD---- C:\WINDOWS\$NtUninstallKB909667$
                                        2009-02-02 20:37:42 ----HD---- C:\WINDOWS\$NtUninstallKB909095$
                                        2009-02-02 20:37:24 ----HD---- C:\WINDOWS\$NtUninstallKB956841$
                                        2009-02-02 20:37:17 ----HD---- C:\WINDOWS\$NtUninstallKB896256$
                                        2009-02-02 20:37:03 ----HD---- C:\WINDOWS\$NtUninstallKB892559-v3$
                                        2009-02-02 20:36:53 ----HD---- C:\WINDOWS\$NtUninstallKB888239$
                                        2009-02-02 20:36:36 ----N---- C:\WINDOWS\system32\spmsg.dll
                                        2009-02-02 20:36:28 ----HD---- C:\WINDOWS\$NtUninstallKB885855$
                                        2009-02-02 20:31:25 ----SHD---- C:\Recycled
                                        2009-02-02 20:19:49 ----D---- C:\Documents and Settings\fati\Application Data\IDM
                                        2009-02-02 20:19:48 ----D---- C:\Documents and Settings\fati\Application Data\DMCache
                                        2009-02-02 20:19:45 ----D---- C:\Program Files\Internet Download Manager
                                        2009-02-02 18:01:22 ----D---- C:\Program Files\Microsoft Works
                                        2009-02-02 18:01:15 ----D---- C:\Program Files\MSBuild
                                        2009-02-02 18:01:07 ----D---- C:\Program Files\Microsoft Visual Studio
                                        2009-02-02 18:01:07 ----D---- C:\Program Files\Fichiers communs\DESIGNER
                                        2009-02-02 17:57:26 ----D---- C:\WINDOWS\SHELLNEW
                                        2009-02-02 17:57:04 ----D---- C:\Program Files\Microsoft Office
                                        2009-02-02 17:57:03 ----D---- C:\Documents and Settings\All Users\Application Data\Microsoft Help
                                        2009-02-02 17:56:32 ----RHD---- C:\MSOCache
                                        2009-02-02 17:33:48 ----D---- C:\WINDOWS\system32\appmgmt
                                        2009-02-02 17:29:33 ----A---- C:\WINDOWS\system32\igfxres.dll
                                        2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\igxprd32.dll
                                        2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\igxpgd32.dll
                                        2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\igxpdx32.dll
                                        2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\igxpdv32.dll
                                        2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\iglicd32.dll
                                        2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\igldev32.dll
                                        2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\igfxzoom.exe
                                        2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\igfxtray.exe
                                        2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\igfxsrvc.exe
                                        2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\igfxsrvc.dll
                                        2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\igfxress.dll
                                        2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\igfxpph.dll
                                        2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\igfxpers.exe
                                        2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\igfxext.exe
                                        2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\igfxexps.dll
                                        2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\igfxdo.dll
                                        2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\igfxdev.dll
                                        2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\igfxCoIn_v4859.dll
                                        2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\igfxcfg.exe
                                        2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\hkcmd.exe
                                        2009-02-02 17:26:29 ----A---- C:\WINDOWS\system32\hccutils.dll
                                        2009-02-02 17:26:28 ----D---- C:\WINDOWS\system32\Lang
                                        2009-02-02 17:26:28 ----D---- C:\WINDOWS\system32\DRVSTORE
                                        2009-02-02 17:26:28 ----A---- C:\WINDOWS\system32\igxpun.exe
                                        2009-02-02 17:26:28 ----A---- C:\WINDOWS\system32\difxapi.dll
                                        2009-02-02 17:26:22 ----D---- C:\Intel
                                        2009-02-02 17:23:27 ----HD---- C:\WINDOWS\$NtUninstallKB888111WXPSP2$
                                        2009-02-02 17:23:07 ----D---- C:\Program Files\Hewlett-Packard
                                        2009-02-02 17:22:49 ----D---- C:\SWSetup
                                        2009-02-02 17:20:49 ----D---- C:\Program Files\MSN Messenger
                                        2009-02-02 17:19:53 ----D---- C:\Documents and Settings\fati\Application Data\Malwarebytes
                                        2009-02-02 17:19:46 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
                                        2009-02-02 17:19:46 ----D---- C:\Documents and Settings\All Users\Application Data\Malwarebytes
                                        2009-02-02 13:07:26 ----A---- C:\WINDOWS\ModemLog_Mobile Connector.txt
                                        2009-02-02 13:04:34 ----A---- C:\WINDOWS\system32\MyDIT_GenClassCoInst.dll
                                        2009-02-02 13:04:33 ----D---- C:\Program Files\HSDPA USB MODEM
                                        2009-02-02 09:54:27 ----A---- C:\WINDOWS\system32\chsbrkr.dll
                                        2009-02-02 09:54:26 ----A---- C:\WINDOWS\system32\korwbrkr.dll
                                        2009-02-02 09:54:26 ----A---- C:\WINDOWS\system32\chtbrkr.dll
                                        2009-02-02 09:54:25 ----A---- C:\WINDOWS\system32\msir3jp.dll
                                        2009-02-02 09:54:10 ----A---- C:\WINDOWS\system32\c_g18030.dll
                                        2009-02-02 09:54:09 ----A---- C:\WINDOWS\system32\kbd101a.dll
                                        2009-02-02 09:54:00 ----A---- C:\WINDOWS\system32\kbdlk41j.dll
                                        2009-02-02 09:54:00 ----A---- C:\WINDOWS\system32\kbdlk41a.dll
                                        2009-02-02 09:53:59 ----A---- C:\WINDOWS\system32\kbdnecNT.dll
                                        2009-02-02 09:53:59 ----A---- C:\WINDOWS\system32\kbdnecAT.dll
                                        2009-02-02 09:53:59 ----A---- C:\WINDOWS\system32\kbdnec95.dll
                                        2009-02-02 09:53:59 ----A---- C:\WINDOWS\system32\kbdibm02.dll
                                        2009-02-02 09:53:59 ----A---- C:\WINDOWS\system32\kbdax2.dll
                                        2009-02-02 09:53:59 ----A---- C:\WINDOWS\system32\kbd106n.dll
                                        2009-02-02 09:53:59 ----A---- C:\WINDOWS\system32\kbd101.dll
                                        2009-02-02 09:53:59 ----A---- C:\WINDOWS\system32\f3ahvoas.dll
                                        2009-02-02 09:53:40 ----A---- C:\WINDOWS\system32\c_is2022.dll
                                        2009-02-02 09:53:37 ----A---- C:\WINDOWS\system32\uniime.dll
                                        2009-02-02 09:53:31 ----A---- C:\WINDOWS\system32\imjp81k.dll
                                        2009-02-02 09:53:28 ----RA---- C:\WINDOWS\system32\kbdarmw.dll
                                        2009-02-02 09:53:28 ----RA---- C:\WINDOWS\system32\kbdarme.dll
                                        2009-02-02 09:53:28 ----A---- C:\WINDOWS\system32\Thawbrkr.dll
                                        2009-02-02 09:53:28 ----A---- C:\WINDOWS\system32\kbdkor.dll
                                        2009-02-02 09:53:28 ----A---- C:\WINDOWS\system32\kbdjpn.dll
                                        2009-02-02 09:53:28 ----A---- C:\WINDOWS\system32\kbd106.dll
                                        2009-02-02 09:53:28 ----A---- C:\WINDOWS\system32\kbd103.dll
                                        2009-02-02 09:53:28 ----A---- C:\WINDOWS\system32\kbd101c.dll
                                        2009-02-02 09:53:28 ----A---- C:\WINDOWS\system32\kbd101b.dll
                                        2009-02-02 09:53:27 ----RA---- C:\WINDOWS\system32\kbdvntc.dll
                                        2009-02-02 09:53:27 ----RA---- C:\WINDOWS\system32\kbdintel.dll
                                        2009-02-02 09:53:27 ----RA---- C:\WINDOWS\system32\kbdintam.dll
                                        2009-02-02 09:53:27 ----RA---- C:\WINDOWS\system32\kbdinpun.dll
                                        2009-02-02 09:53:27 ----RA---- C:\WINDOWS\system32\kbdinmar.dll
                                        2009-02-02 09:53:27 ----RA---- C:\WINDOWS\system32\kbdinkan.dll
                                        2009-02-02 09:53:27 ----RA---- C:\WINDOWS\system32\kbdinhin.dll
                                        2009-02-02 09:53:27 ----RA---- C:\WINDOWS\system32\kbdinguj.dll
                                        2009-02-02 09:53:27 ----RA---- C:\WINDOWS\system32\kbdindev.dll
                                        2009-02-02 09:53:27 ----RA---- C:\WINDOWS\system32\kbdgeo.dll
                                        2009-02-02 09:53:27 ----A---- C:\WINDOWS\system32\c_iscii.dll
                                        2009-02-02 09:53:24 ----RA---- C:\WINDOWS\system32\kbdurdu.dll
                                        2009-02-02 09:53:24 ----RA---- C:\WINDOWS\system32\kbdsyr2.dll
                                        2009-02-02 09:53:24 ----RA---- C:\WINDOWS\system32\kbdsyr1.dll
                                        2009-02-02 09:53:24 ----RA---- C:\WINDOWS\system32\kbdfa.dll
                                        2009-02-02 09:53:24 ----RA---- C:\WINDOWS\system32\kbddiv2.dll
                                        2009-02-02 09:53:24 ----RA---- C:\WINDOWS\system32\kbddiv1.dll
                                        2009-02-02 09:53:24 ----RA---- C:\WINDOWS\system32\kbda3.dll
                                        2009-02-02 09:53:24 ----RA---- C:\WINDOWS\system32\kbda2.dll
                                        2009-02-02 09:53:24 ----RA---- C:\WINDOWS\system32\kbda1.dll
                                        2009-02-02 09:53:24 ----A---- C:\WINDOWS\system32\kbdusa.dll
                                        2009-02-02 09:53:20 ----RA---- C:\WINDOWS\system32\kbdheb.dll
                                        2009-02-02 09:53:16 ----RA---- C:\WINDOWS\system32\kbdth3.dll
                                        2009-02-02 09:53:16 ----RA---- C:\WINDOWS\system32\kbdth2.dll
                                        2009-02-02 09:53:16 ----RA---- C:\WINDOWS\system32\kbdth1.dll
                                        2009-02-02 09:53:15 ----RA---- C:\WINDOWS\system32\kbdth0.dll
                                        2009-02-02 09:53:15 ----A---- C:\WINDOWS\system32\ftlx041e.dll
                                        2009-02-02 03:16:51 ----HD---- C:\WINDOWS\$NtUninstallKB951376-v2$
                                        2009-02-02 03:16:48 ----HD---- C:\WINDOWS\$NtUninstallKB952954$
                                        2009-02-02 03:16:44 ----HD---- C:\WINDOWS\$NtUninstallKB946648$
                                        2009-02-02 03:16:40 ----HD---- C:\WINDOWS\$NtUninstallKB956803$
                                        2009-02-02 03:16:36 ----HD---- C:\WINDOWS\$NtUninstallKB955839$
                                        2009-02-02 03:16:32 ----HD---- C:\WINDOWS\$NtUninstallKB956391$
                                        2009-02-02 03:16:21 ----HD---- C:\WINDOWS\$NtUninstallKB958215$
                                        2009-02-02 03:16:14 ----HD---- C:\WINDOWS\$NtUninstallKB950974$
                                        2009-02-02 03:16:10 ----HD---- C:\WINDOWS\$NtUninstallKB951698$
                                        2009-02-02 03:16:05 ----HD---- C:\WINDOWS\$NtUninstallKB954211$
                                        2009-02-02 03:15:55 ----HD---- C:\WINDOWS\$NtUninstallKB956841_0$
                                        2009-02-02 03:15:47 ----HD---- C:\WINDOWS\$NtUninstallKB960714$
                                        2009-02-02 03:15:43 ----HD---- C:\WINDOWS\$NtUninstallKB950762$
                                        2009-02-02 03:15:39 ----HD---- C:\WINDOWS\$NtUninstallKB957097$
                                        2009-02-02 03:15:35 ----HD---- C:\WINDOWS\$NtUninstallKB958687$
                                        2009-02-02 03:15:32 ----HD---- C:\WINDOWS\$NtUninstallKB952287$
                                        2009-02-02 03:15:27 ----HD---- C:\WINDOWS\$NtUninstallKB951066$
                                        2009-02-02 03:15:22 ----HD---- C:\WINDOWS\$NtUninstallKB951748$
                                        2009-02-02 03:15:19 ----HD---- C:\WINDOWS\$NtUninstallKB938464$
                                        2009-02-02 03:15:15 ----HD---- C:\WINDOWS\$NtUninstallKB954600$
                                        2009-02-02 03:15:11 ----HD---- C:\WINDOWS\$NtUninstallKB958644$
                                        2009-02-02 03:04:42 ----N---- C:\WINDOWS\system32\tzchange.exe
                                        2009-02-02 03:00:16 ----D---- C:\WINDOWS\system32\PreInstall
                                        2009-02-02 03:00:16 ----A---- C:\WINDOWS\system32\spupdsvc.exe
                                        2009-02-02 03:00:15 ----HD---- C:\WINDOWS\$NtUninstallKB898461$
                                        2009-02-02 03:00:14 ----HD---- C:\WINDOWS\$hf_mig$
                                        2009-02-01 23:48:56 ----D---- C:\WINDOWS\system32\SoftwareDistribution
                                        2009-02-01 23:45:46 ----A---- C:\WINDOWS\Fast800.ini
                                        2009-02-01 23:45:46 ----A---- C:\WINDOWS\adidsl.ini
                                        2009-02-01 23:45:44 ----A---- C:\WINDOWS\adiras.ini
                                        2009-02-01 23:45:44 ----A---- C:\WINDOWS\adiras.exe
                                        2009-02-01 23:45:43 ----A---- C:\WINDOWS\system32\IPDETECT.EXE
                                        2009-02-01 23:45:43 ----A---- C:\WINDOWS\system32\AdADIx32.dll
                                        2009-02-01 23:45:42 ----A---- C:\WINDOWS\system32\unaddrv.exe
                                        2009-02-01 23:45:42 ----A---- C:\WINDOWS\system32\coclassfast.dll
                                        2009-02-01 23:45:42 ----A---- C:\WINDOWS\system32\AdADIx2K.dll
                                        2009-02-01 23:45:42 ----A---- C:\WINDOWS\system32\ADADIX16.DLL
                                        2009-02-01 23:45:42 ----A---- C:\WINDOWS\enddisk32.exe
                                        2009-02-01 23:45:41 ----HD---- C:\Program Files\InstallShield Installation Information
                                        2009-02-01 23:45:41 ----A---- C:\WINDOWS\autoclk.exe
                                        2009-02-01 23:45:38 ----D---- C:\Program Files\SAGEM
                                        2009-02-01 23:45:37 ----D---- C:\Program Files\Fichiers communs\InstallShield
                                        2009-02-01 23:41:57 ----D---- C:\Documents and Settings\fati\Application Data\Identities
                                        2009-02-01 23:41:55 ----HD---- C:\Program Files\Uninstall Information
                                        2009-02-01 23:41:52 ----SD---- C:\Documents and Settings\fati\Application Data\Microsoft
                                        2009-02-01 23:41:52 ----ASH---- C:\Documents and Settings\fati\Application Data\desktop.ini
                                        2009-02-01 23:41:14 ----SHD---- C:\System Volume Information
                                        2009-02-01 23:41:12 ----D---- C:\WINDOWS\SoftwareDistribution
                                        2009-02-01 23:41:11 ----SD---- C:\WINDOWS\system32\Microsoft
                                        2009-02-01 23:41:11 ----D---- C:\WINDOWS\Prefetch
                                        2009-02-01 23:41:11 ----A---- C:\WINDOWS\SchedLgU.Txt
                                        2009-02-01 23:35:12 ----D---- C:\WINDOWS\system32\xircom
                                        2009-02-01 23:35:12 ----D---- C:\Program Files\xerox
                                        2009-02-01 23:35:12 ----D---- C:\Program Files\microsoft frontpage
                                        2009-02-01 23:35:00 ----A---- C:\WINDOWS\control.ini
                                        2009-02-01 23:35:00 ----A---- C:\AUTOEXEC.BAT
                                        2009-02-01 23:34:52 ----A---- C:\WINDOWS\OEWABLog.txt
                                        2009-02-01 23:34:49 ----A---- C:\WINDOWS\system32\mapi32.dll
                                        2009-02-01 23:34:09 ----SD---- C:\WINDOWS\Downloaded Program Files
                                        2009-02-01 23:34:09 ----RD---- C:\WINDOWS\Offline Web Pages
                                        2009-02-01 23:34:08 ----RAH---- C:\WINDOWS\system32\logonui.exe.manifest
                                        2009-02-01 23:34:04 ----RAH---- C:\WINDOWS\system32\cdplayer.exe.manifest
                                        2009-02-01 23:34:01 ----HD---- C:\Program Files\WindowsUpdate
                                        2009-02-01 23:33:59 ----D---- C:\Program Files\Services en ligne
                                        2009-02-01 23:33:41 ----D---- C:\WINDOWS\system32\DirectX
                                        2009-02-01 23:33:16 ----A---- C:\WINDOWS\system32\atrace.dll
                                        2009-02-01 23:33:13 ----A---- C:\WINDOWS\system32\desktop.ini
                                        2009-02-01 23:33:13 ----A---- C:\WINDOWS\desktop.ini
                                        2009-02-01 23:33:05 ----A---- C:\WINDOWS\system32\nmevtmsg.dll
                                        2009-02-01 23:33:04 ----A---- C:\WINDOWS\system32\acctres.dll
                                        2009-02-01 23:33:03 ----D---- C:\Program Files\Fichiers communs\Services
                                        2009-02-01 23:33:00 ----SD---- C:\WINDOWS\Tasks
                                        2009-02-01 23:33:00 ----A---- C:\WINDOWS\system32\icfgnt5.dll
                                        2009-02-01 23:32:59 ----D---- C:\Program Files\Fichiers communs\MSSoap
                                        2009-02-01 23:32:54 ----D---- C:\WINDOWS\srchasst
                                        2009-02-01 23:32:53 ----D---- C:\WINDOWS\system32\Macromed
                                        2009-02-01 23:32:49 ----A---- C:\WINDOWS\system32\wuweb.dll
                                        2009-02-01 23:32:49 ----A---- C:\WINDOWS\system32\wups.dll
                                        2009-02-01 23:32:49 ----A---- C:\WINDOWS\system32\wucltui.dll
                                        2009-02-01 23:32:49 ----A---- C:\WINDOWS\system32\wuauserv.dll
                                        2009-02-01 23:32:49 ----A---- C:\WINDOWS\system32\wuaueng1.dll
                                        2009-02-01 23:32:49 ----A---- C:\WINDOWS\system32\wuaueng.dll
                                        2009-02-01 23:32:49 ----A---- C:\WINDOWS\system32\wuauclt1.exe
                                        2009-02-01 23:32:48 ----A---- C:\WINDOWS\system32\wuauclt.exe
                                        2009-02-01 23:32:48 ----A---- C:\WINDOWS\system32\wuapi.dll
                                        2009-02-01 23:32:48 ----A---- C:\WINDOWS\system32\qmgrprxy.dll
                                        2009-02-01 23:32:48 ----A---- C:\WINDOWS\system32\qmgr.dll
                                        2009-02-01 23:32:48 ----A---- C:\WINDOWS\system32\bitsprx3.dll
                                        2009-02-01 23:32:48 ----A---- C:\WINDOWS\system32\bitsprx2.dll
                                        2009-02-01 23:32:42 ----D---- C:\Program Files\Movie Maker
                                        2009-02-01 23:32:38 ----A---- C:\WINDOWS\system32\safrslv.dll
                                        2009-02-01 23:32:38 ----A---- C:\WINDOWS\system32\safrdm.dll
                                        2009-02-01 23:32:38 ----A---- C:\WINDOWS\system32\safrcdlg.dll
                                        2009-02-01 23:32:38 ----A---- C:\WINDOWS\system32\racpldlg.dll
                                        2009-02-01 23:32:33 ----A---- C:\WINDOWS\system32\fltMc.exe
                                        2009-02-01 23:32:33 ----A---- C:\WINDOWS\system32\fltlib.dll
                                        2009-02-01 23:32:32 ----D---- C:\WINDOWS\system32\Restore
                                        2009-02-01 23:32:32 ----A---- C:\WINDOWS\system32\srsvc.dll
                                        2009-02-01 23:32:32 ----A---- C:\WINDOWS\system32\srrstr.dll
                                        2009-02-01 23:32:32 ----A---- C:\WINDOWS\system32\srclient.dll
                                        2009-02-01 23:32:31 ----A---- C:\WINDOWS\system32\nmmkcert.dll
                                        2009-02-01 23:32:31 ----A---- C:\WINDOWS\system32\msconf.dll
                                        2009-02-01 23:32:31 ----A---- C:\WINDOWS\system32\mnmsrvc.exe
                                        2009-02-01 23:32:31 ----A---- C:\WINDOWS\system32\mnmdd.dll
                                        2009-02-01 23:32:31 ----A---- C:\WINDOWS\system32\isrdbg32.dll
                                        2009-02-01 23:32:31 ----A---- C:\WINDOWS\system32\ils.dll
                                        2009-02-01 23:32:28 ----D---- C:\Program Files\NetMeeting
                                        2009-02-01 23:32:28 ----A---- C:\WINDOWS\system32\msoert2.dll
                                        2009-02-01 23:32:27 ----A---- C:\WINDOWS\system32\msoeacct.dll
                                        2009-02-01 23:32:26 ----A---- C:\WINDOWS\system32\inetres.dll
                                        2009-02-01 23:32:26 ----A---- C:\WINDOWS\system32\inetcomm.dll
                                        2009-02-01 23:32:24 ----D---- C:\Program Files\Outlook Express
                                        2009-02-01 23:32:24 ----A---- C:\WINDOWS\system32\schedsvc.dll
                                        2009-02-01 23:32:23 ----A---- C:\WINDOWS\system32\mstinit.exe
                                        2009-02-01 23:32:23 ----A---- C:\WINDOWS\system32\mstask.dll
                                        2009-02-01 23:32:23 ----A---- C:\WINDOWS\system32\isign32.dll
                                        2009-02-01 23:32:23 ----A---- C:\WINDOWS\system32\icwphbk.dll
                                        2009-02-01 23:32:23 ----A---- C:\WINDOWS\system32\icwdial.dll
                                        2009-02-01 23:32:22 ----A---- C:\WINDOWS\system32\inetcfg.dll
                                        2009-02-01 23:32:15 ----D---- C:\Program Files\Fichiers communs\System
                                        2009-02-01 23:32:11 ----D---- C:\Program Files\Internet Explorer
                                        2009-02-01 23:31:35 ----D---- C:\Program Files\ComPlus Applications
                                        2009-02-01 23:31:33 ----A---- C:\WINDOWS\vbaddin.ini
                                        2009-02-01 23:31:33 ----A---- C:\WINDOWS\vb.ini
                                        2009-02-01 23:31:30 ----D---- C:\WINDOWS\Registration
                                        2009-02-01 23:31:26 ----D---- C:\Program Files\Windows Media Player
                                        2009-02-01 23:31:26 ----D---- C:\Program Files\Online Services
                                        2009-02-01 23:31:20 ----D---- C:\Program Files\Messenger
                                        2009-02-01 23:31:16 ----D---- C:\Program Files\MSN Gaming Zone
                                        2009-02-01 23:31:16 ----A---- C:\WINDOWS\system32\write.exe
                                        2009-02-01 23:31:05 ----A---- C:\WINDOWS\system32\sndvol32.exe
                                        2009-02-01 23:31:05 ----A---- C:\WINDOWS\system32\hticons.dll
                                        2009-02-01 23:31:04 ----A---- C:\WINDOWS\system32\avwav.dll
                                        2009-02-01 23:31:04 ----A---- C:\WINDOWS\system32\avtapi.dll
                                        2009-02-01 23:31:04 ----A---- C:\WINDOWS\system32\avmeter.dll
                                        2009-02-01 23:31:03 ----A---- C:\WINDOWS\system32\winchat.exe
                                        2009-02-01 23:30:56 ----A---- C:\WINDOWS\system32\getuname.dll
                                        2009-02-01 23:30:55 ----A---- C:\WINDOWS\system32\sol.exe
                                        2009-02-01 23:30:55 ----A---- C:\WINDOWS\system32\charmap.exe
                                        2009-02-01 23:30:55 ----A---- C:\WINDOWS\system32\calc.exe
                                        2009-02-01 23:30:54 ----A---- C:\WINDOWS\system32\winmine.exe
                                        2009-02-01 23:30:54 ----A---- C:\WINDOWS\system32\reset.exe
                                        2009-02-01 23:30:54 ----A---- C:\WINDOWS\system32\mshearts.exe
                                        2009-02-01 23:30:54 ----A---- C:\WINDOWS\system32\freecell.exe
                                        2009-02-01 23:30:53 ----A---- C:\WINDOWS\system32\usrlogon.cmd
                                        2009-02-01 23:30:53 ----A---- C:\WINDOWS\system32\tsshutdn.exe
                                        2009-02-01 23:30:53 ----A---- C:\WINDOWS\system32\tslabels.ini
                                        2009-02-01 23:30:53 ----A---- C:\WINDOWS\system32\tskill.exe
                                        2009-02-01 23:30:53 ----A---- C:\WINDOWS\system32\tsdiscon.exe
                                        2009-02-01 23:30:53 ----A---- C:\WINDOWS\system32\tscon.exe
                                        2009-02-01 23:30:53 ----A---- C:\WINDOWS\system32\shadow.exe
                                        2009-02-01 23:30:53 ----A---- C:\WINDOWS\system32\rwinsta.exe
                                        2009-02-01 23:30:53 ----A---- C:\WINDOWS\system32\regini.exe
                                        2009-02-01 23:30:53 ----A---- C:\WINDOWS\system32\rdpcfgex.dll
                                        2009-02-01 23:30:53 ----A---- C:\WINDOWS\system32\qwinsta.exe
                                        2009-02-01 23:30:53 ----A---- C:\WINDOWS\system32\qappsrv.exe
                                        2009-02-01 23:30:52 ----A---- C:\WINDOWS\system32\msg.exe
                                        2009-02-01 23:30:52 ----A---- C:\WINDOWS\system32\msdtcprf.ini
                                        2009-02-01 23:30:52 ----A---- C:\WINDOWS\system32\logoff.exe
                                        2009-02-01 23:30:52 ----A---- C:\WINDOWS\system32\cdmodem.dll
                                        2009-02-01 23:30:51 ----A---- C:\WINDOWS\system32\mtxlegih.dll
                                        2009-02-01 23:30:51 ----A---- C:\WINDOWS\system32\mtxex.dll
                                        2009-02-01 23:30:51 ----A---- C:\WINDOWS\system32\mtxdm.dll
                                        2009-02-01 23:30:51 ----A---- C:\WINDOWS\system32\dcomcnfg.exe
                                        2009-02-01 23:30:51 ----A---- C:\WINDOWS\system32\comrepl.dll
                                        2009-02-01 23:30:51 ----A---- C:\WINDOWS\system32\comaddin.dll
                                        2009-02-01 23:30:50 ----A---- C:\WINDOWS\system32\stclient.dll
                                        2009-02-01 23:30:50 ----A---- C:\WINDOWS\system32\comsnap.dll
                                        2009-02-01 23:30:44 ----A---- C:\WINDOWS\system32\wmimgmt.msc
                                        2009-02-01 23:30:29 ----D---- C:\Program Files\MSN
                                        2009-02-01 23:30:28 ----A---- C:\WINDOWS\system32\sndrec32.exe
                                        2009-02-01 23:30:28 ----A---- C:\WINDOWS\system32\mplay32.exe
                                        2009-02-01 23:30:28 ----A---- C:\WINDOWS\system32\accwiz.exe
                                        2009-02-01 23:30:27 ----D---- C:\Program Files\Windows NT
                                        2009-02-01 23:30:27 ----A---- C:\WINDOWS\system32\mspaint.exe
                                        2009-02-01 23:30:27 ----A---- C:\WINDOWS\system32\hypertrm.dll
                                        2009-02-01 23:30:26 ----A---- C:\WINDOWS\system32\spider.exe
                                        2009-02-01 23:30:26 ----A---- C:\WINDOWS\system32\clipbrd.exe
                                        2009-02-01 23:30:25 ----A---- C:\WINDOWS\system32\tscfgwmi.dll
                                        2009-02-01 23:30:25 ----A---- C:\WINDOWS\system32\remotepg.dll
                                        2009-02-01 23:30:25 ----A---- C:\WINDOWS\system32\rdsaddin.exe
                                        2009-02-01 23:30:25 ----A---- C:\WINDOWS\system32\mstscax.dll
                                        2009-02-01 23:30:25 ----A---- C:\WINDOWS\system32\mstsc.exe
                                        2009-02-01 23:30:24 ----A---- C:\WINDOWS\system32\tscupgrd.exe
                                        2009-02-01 23:30:24 ----A---- C:\WINDOWS\system32\termsrv.dll
                                        2009-02-01 23:30:24 ----A---- C:\WINDOWS\system32\sessmgr.exe
                                        2009-02-01 23:30:24 ----A---- C:\WINDOWS\system32\rdshost.exe
                                        2009-02-01 23:30:24 ----A---- C:\WINDOWS\system32\rdpwsx.dll
                                        2009-02-01 23:30:24 ----A---- C:\WINDOWS\system32\rdpsnd.dll
                                        2009-02-01 23:30:24 ----A---- C:\WINDOWS\system32\rdpclip.exe
                                        2009-02-01 23:30:24 ----A---- C:\WINDOWS\system32\rdchost.dll
                                        2009-02-01 23:30:24 ----A---- C:\WINDOWS\system32\qprocess.exe
                                        2009-02-01 23:30:23 ----D---- C:\WINDOWS\system32\MsDtc
                                        2009-02-01 23:30:23 ----A---- C:\WINDOWS\system32\mtxoci.dll
                                        2009-02-01 23:30:23 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
                                        2009-02-01 23:30:23 ----A---- C:\WINDOWS\system32\msdtcprx.dll
                                        2009-02-01 23:30:23 ----A---- C:\WINDOWS\system32\icaapi.dll
                                        2009-02-01 23:30:23 ----A---- C:\WINDOWS\system32\cfgbkend.dll
                                        2009-02-01 23:30:22 ----A---- C:\WINDOWS\system32\xolehlp.dll
                                        2009-02-01 23:30:22 ----A---- C:\WINDOWS\system32\msdtctm.dll
                                        2009-02-01 23:30:22 ----A---- C:\WINDOWS\system32\msdtclog.dll
                                        2009-02-01 23:30:22 ----A---- C:\WINDOWS\system32\msdtc.exe
                                        2009-02-01 23:30:21 ----D---- C:\WINDOWS\system32\Com
                                        2009-02-01 23:30:21 ----A---- C:\WINDOWS\system32\colbact.dll
                                        2009-02-01 23:30:21 ----A---- C:\WINDOWS\system32\clbcatex.dll
                                        2009-02-01 23:30:21 ----A---- C:\WINDOWS\system32\catsrvps.dll
                                        2009-02-01 23:30:20 ----A---- C:\WINDOWS\system32\comsvcs.dll
                                        2009-02-01 23:30:20 ----A---- C:\WINDOWS\system32\catsrvut.dll
                                        2009-02-01 23:30:20 ----A---- C:\WINDOWS\system32\catsrv.dll
                                        2009-02-01 23:30:19 ----A---- C:\WINDOWS\system32\comuid.dll
                                        2009-02-01 23:30:19 ----A---- C:\WINDOWS\system32\clbcatq.dll
                                        2009-02-01 23:30:11 ----A---- C:\WINDOWS\system32\servdeps.dll
                                        2009-02-01 23:30:11 ----A---- C:\WINDOWS\system32\mmfutil.dll
                                        2009-02-01 23:30:11 ----A---- C:\WINDOWS\system32\licwmi.dll
                                        2009-02-01 23:30:11 ----A---- C:\WINDOWS\system32\cmprops.dll
                                        2009-02-01 23:29:18 ----A---- C:\WINDOWS\system32\h323log.txt
                                        2009-02-01 23:28:23 ----A---- C:\WINDOWS\system32\usbui.dll
                                        2009-02-01 23:27:22 ----A---- C:\WINDOWS\imsins.BAK
                                        2009-02-01 23:27:20 ----SHD---- C:\WINDOWS\Installer
                                        2009-02-01 23:27:20 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
                                        2009-02-01 23:27:19 ----D---- C:\Program Files\Fichiers communs\ODBC
                                        2009-02-01 23:27:19 ----A---- C:\WINDOWS\ODBCINST.INI
                                        2009-02-01 23:27:16 ----D---- C:\Program Files\Fichiers communs\SpeechEngines
                                        2009-02-01 23:27:15 ----RD---- C:\Program Files
                                        2009-02-01 23:27:15 ----D---- C:\Program Files\Fichiers communs\Microsoft Shared
                                        2009-02-01 23:27:15 ----D---- C:\Program Files\Fichiers communs
                                        2009-02-01 23:27:12 ----RA---- C:\WINDOWS\system32\kbdtuq.dll
                                        2009-02-01 23:27:12 ----RA---- C:\WINDOWS\system32\kbdtuf.dll
                                        2009-02-01 23:27:12 ----RA---- C:\WINDOWS\system32\kbdazel.dll
                                        2009-02-01 23:27:10 ----RA---- C:\WINDOWS\system32\kbdycc.dll
                                        2009-02-01 23:27:10 ----RA---- C:\WINDOWS\system32\kbduzb.dll
                                        2009-02-01 23:27:10 ----RA---- C:\WINDOWS\system32\kbdur.dll
                                        2009-02-01 23:27:10 ----RA---- C:\WINDOWS\system32\kbdtat.dll
                                        2009-02-01 23:27:10 ----RA---- C:\WINDOWS\system32\kbdru1.dll
                                        2009-02-01 23:27:10 ----RA---- C:\WINDOWS\system32\kbdru.dll
                                        2009-02-01 23:27:10 ----RA---- C:\WINDOWS\system32\kbdmon.dll
                                        2009-02-01 23:27:10 ----RA---- C:\WINDOWS\system32\kbdkyr.dll
                                        2009-02-01 23:27:10 ----RA---- C:\WINDOWS\system32\kbdkaz.dll
                                        2009-02-01 23:27:10 ----RA---- C:\WINDOWS\system32\kbdaze.dll
                                        2009-02-01 23:27:09 ----RA---- C:\WINDOWS\system32\kbdbu.dll
                                        2009-02-01 23:27:09 ----RA---- C:\WINDOWS\system32\kbdblr.dll
                                        2009-02-01 23:27:07 ----RA---- C:\WINDOWS\system32\kbdhept.dll
                                        2009-02-01 23:27:07 ----RA---- C:\WINDOWS\system32\kbdhela3.dll
                                        2009-02-01 23:27:07 ----RA---- C:\WINDOWS\system32\kbdhela2.dll
                                        2009-02-01 23:27:07 ----RA---- C:\WINDOWS\system32\kbdhe319.dll
                                        2009-02-01 23:27:07 ----RA---- C:\WINDOWS\system32\kbdhe220.dll
                                        2009-02-01 23:27:07 ----RA---- C:\WINDOWS\system32\kbdhe.dll
                                        2009-02-01 23:27:07 ----RA---- C:\WINDOWS\system32\kbdgkl.dll
                                        2009-02-01 23:27:05 ----RA---- C:\WINDOWS\system32\kbdlv1.dll
                                        2009-02-01 23:27:05 ----RA---- C:\WINDOWS\system32\kbdlv.dll
                                        2009-02-01 23:27:05 ----RA---- C:\WINDOWS\system32\kbdlt1.dll
                                        2009-02-01 23:27:05 ----RA---- C:\WINDOWS\system32\kbdlt.dll
                                        2009-02-01 23:27:05 ----RA---- C:\WINDOWS\system32\kbdest.dll
                                        2009-02-01 23:27:03 ----RA---- C:\WINDOWS\system32\kbdycl.dll
                                        2009-02-01 23:27:03 ----RA---- C:\WINDOWS\system32\kbdsl1.dll
                                        2009-02-01 23:27:03 ----RA---- C:\WINDOWS\system32\kbdsl.dll
                                        2009-02-01 23:27:03 ----RA---- C:\WINDOWS\system32\kbdro.dll
                                        2009-02-01 23:27:03 ----RA---- C:\WINDOWS\system32\kbdpl1.dll
                                        2009-02-01 23:27:03 ----RA---- C:\WINDOWS\system32\kbdpl.dll
                                        2009-02-01 23:27:03 ----RA---- C:\WINDOWS\system32\kbdhu1.dll
                                        2009-02-01 23:27:03 ----RA---- C:\WINDOWS\system32\kbdhu.dll
                                        2009-02-01 23:27:03 ----RA---- C:\WINDOWS\system32\kbdcz2.dll
                                        2009-02-01 23:27:03 ----RA---- C:\WINDOWS\system32\kbdcz1.dll
                                        2009-02-01 23:27:03 ----RA---- C:\WINDOWS\system32\kbdcz.dll
                                        2009-02-01 23:27:03 ----RA---- C:\WINDOWS\system32\kbdcr.dll
                                        2009-02-01 23:27:03 ----RA---- C:\WINDOWS\system32\KBDAL.DLL
                                        2009-02-01 23:27:00 ----A---- C:\WINDOWS\system32\spxcoins.dll
                                        2009-02-01 23:27:00 ----A---- C:\WINDOWS\system32\irclass.dll
                                        2009-02-01 23:27:00 ----A---- C:\WINDOWS\system32\EqnClass.Dll
                                        2009-02-01 23:27:00 ----A---- C:\WINDOWS\system32\dgsetup.dll
                                        2009-02-01 23:27:00 ----A---- C:\WINDOWS\system32\dgrpsetu.dll
                                        2009-02-01 23:26:57 ----N---- C:\WINDOWS\system32\CONFIG.TMP
                                        2009-02-01 23:26:57 ----A---- C:\WINDOWS\TASKMAN.EXE
                                        2009-02-01 23:26:57 ----A---- C:\WINDOWS\system32\batt.dll
                                        2009-02-01 23:26:56 ----A---- C:\WINDOWS\system32\storprop.dll
                                        2009-02-01 23:26:56 ----A---- C:\WINDOWS\NOTEPAD.EXE
                                        2009-02-01 23:26:49 ----ASH---- C:\Documents and Settings\All Users\Application Data\desktop.ini
                                        2009-02-01 23:26:45 ----RA---- C:\WINDOWS\SET8.tmp
                                        2009-02-01 23:26:43 ----RA---- C:\WINDOWS\SET4.tmp
                                        2009-02-01 23:26:41 ----RA---- C:\WINDOWS\SET3.tmp
                                        2009-02-01 23:26:37 ----D---- C:\WINDOWS\system32\CatRoot2
                                        2009-02-01 23:26:37 ----D---- C:\WINDOWS\system32\CatRoot
                                        2009-02-01 23:26:31 ----SD---- C:\Documents and Settings\All Users\Application Data\Microsoft
                                        2009-02-01 23:26:08 ----A---- C:\WINDOWS\setuplog.txt
                                        2009-02-01 23:26:05 ----D---- C:\Documents and Settings
                                        2009-02-01 23:25:27 ----SH---- C:\boot.ini
                                        2009-02-01 23:19:56 ----RSHD---- C:\WINDOWS\system32\dllcache
                                        2009-02-01 23:19:56 ----D---- C:\WINDOWS\WinSxS
                                        2009-02-01 23:19:56 ----D---- C:\WINDOWS\twain_32
                                        2009-02-01 23:19:56 ----D---- C:\WINDOWS\Temp
                                        2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\usmt
                                        2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\oobe
                                        2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\mui
                                        2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\inetsrv
                                        2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\IME
                                        2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\icsxml
                                        2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\ias
                                        2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\export
                                        2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\3com_dmi
                                        2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\3076
                                        2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\2052
                                        2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\1054
                                        2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\1042
                                        2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\1041
                                        2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\1037
                                        2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\1036
                                        2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\1033
                                        2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\1031
                                        2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\1028
                                        2009-02-01 23:19:56 ----D---- C:\WINDOWS\system32\1025
                                        2009-02-01 23:19:56 ----D---- C:\WINDOWS\Resources
                                        2009-02-01 23:19:56 ----D---- C:\WINDOWS\Provisioning
                                        2009-02-01 23:19:56 ----D---- C:\WINDOWS\PeerNet
                                        2009-02-01 23:19:56 ----D---- C:\WINDOWS\pchealth
                                        2009-02-01 23:19:56 ----D---- C:\WINDOWS\mui
                                        2009-02-01 23:19:56 ----D---- C:\WINDOWS\msapps
                                        2009-02-01 23:19:56 ----D---- C:\WINDOWS\ime
                                        2009-02-01 23:19:56 ----D---- C:\WINDOWS\ehome
                                        2009-02-01 23:19:56 ----D---- C:\WINDOWS\Debug
                                        2009-02-01 23:19:56 ----D---- C:\WINDOWS\AppPatch
                                        2009-02-01 23:19:55 ----RSD---- C:\WINDOWS\Fonts
                                        2009-02-01 23:19:55 ----RD---- C:\WINDOWS\Web
                                        2009-02-01 23:19:55 ----HD---- C:\WINDOWS\inf
                                        2009-02-01 23:19:55 ----D---- C:\WINDOWS\system32\wins
                                        2009-02-01 23:19:55 ----D---- C:\WINDOWS\system32\wbem
                                        2009-02-01 23:19:55 ----D---- C:\WINDOWS\system32\spool
                                        2009-02-01 23:19:55 ----D---- C:\WINDOWS\system32\ShellExt
                                        2009-02-01 23:19:55 ----D---- C:\WINDOWS\system32\Setup
                                        2009-02-01 23:19:55 ----D---- C:\WINDOWS\system32\ras
                                        2009-02-01 23:19:55 ----D---- C:\WINDOWS\system32\npp
                                        2009-02-01 23:19:55 ----D---- C:\WINDOWS\system32\drivers
                                        2009-02-01 23:19:55 ----D---- C:\WINDOWS\system32\dhcp
                                        2009-02-01 23:19:55 ----D---- C:\WINDOWS\system32\config
                                        2009-02-01 23:19:55 ----D---- C:\WINDOWS\system32
                                        2009-02-01 23:19:55 ----D---- C:\WINDOWS\system
                                        2009-02-01 23:19:55 ----D---- C:\WINDOWS\security
                                        2009-02-01 23:19:55 ----D---- C:\WINDOWS\repair
                                        2009-02-01 23:19:55 ----D---- C:\WINDOWS\msagent
                                        2009-02-01 23:19:55 ----D---- C:\WINDOWS\Media
                                        2009-02-01 23:19:55 ----D---- C:\WINDOWS\java
                                        2009-02-01 23:19:55 ----D---- C:\WINDOWS\Help
                                        2009-02-01 23:19:55 ----D---- C:\WINDOWS\Driver Cache
                                        2009-02-01 23:19:55 ----D---- C:\WINDOWS\Cursors
                                        2009-02-01 23:19:55 ----D---- C:\WINDOWS\Connection Wizard
                                        2009-02-01 23:19:55 ----D---- C:\WINDOWS\Config
                                        2009-02-01 23:19:55 ----D---- C:\WINDOWS\addins
                                        2009-02-01 23:19:55 ----D---- C:\WINDOWS

                                        ======List of files/folders modified in the last 2 months======

                                        2009-02-17 09:21:14 ----A---- C:\WINDOWS\win.ini
                                        2009-02-14 22:03:00 ----A---- C:\WINDOWS\system.ini

                                        ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

                                        R1 avgio;avgio; \??\C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgio.sys []
                                        R1 avipbb;avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [2009-02-06 75072]
                                        R1 intelppm;Pilote de processeur Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2004-08-19 40320]
                                        R1 ssmdrv;ssmdrv; C:\WINDOWS\system32\DRIVERS\ssmdrv.sys [2007-03-01 28352]
                                        R1 WmiAcpi;Interface de gestion Microsoft Windows pour ACPI; C:\WINDOWS\system32\DRIVERS\wmiacpi.sys [2004-08-03 8832]
                                        R2 NwlnkIpx;Protocole de transport compatible NWLink IPX/SPX/NetBIOS; C:\WINDOWS\system32\DRIVERS\nwlnkipx.sys [2004-08-03 88448]
                                        R2 NwlnkNb;NetBIOS NWLink; C:\WINDOWS\system32\DRIVERS\nwlnknb.sys [2001-09-28 63232]
                                        R2 NwlnkSpx;Protocole NWLink SPX/SPXII; C:\WINDOWS\system32\DRIVERS\nwlnkspx.sys [2001-09-28 55936]
                                        R3 avgntflt;avgntflt; \??\C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgntflt.sys []
                                        R3 CmBatt;Pilote d'adaptateur secteur Microsoft; C:\WINDOWS\system32\DRIVERS\CmBatt.sys [2004-08-03 14080]
                                        R3 E100B;Intel(R) PRO Network Connection Driver; C:\WINDOWS\system32\DRIVERS\e100b325.sys [2006-10-31 165760]
                                        R3 HdAudAddService;Microsoft UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\CHDAud.sys [2007-02-12 625664]
                                        R3 HDAudBus;Pilote de bus Microsoft UAA pour High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2005-01-07 138752]
                                        R3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\igxpmp32.sys [2007-08-08 5776864]
                                        R3 NETw5x32;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows XP 32 Bit; C:\WINDOWS\system32\DRIVERS\NETw5x32.sys [2008-06-26 3630080]
                                        R3 NWRDR;NetWare Rdr; C:\WINDOWS\system32\DRIVERS\nwrdr.sys [2004-08-03 163584]
                                        R3 usbehci;Pilote miniport de contrôleur d'hôte amélioré Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2006-04-19 30080]
                                        R3 usbhub;Concentrateur USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2004-08-03 57600]
                                        R3 USBSTOR;Pilote de stockage de masse USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2004-08-03 26496]
                                        R3 usbuhci;Pilote miniport de contrôleur hôte universel USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2006-04-19 20608]
                                        S2 IKANLOADER2;General Purpose USB Driver (e4ldr.sys); C:\WINDOWS\System32\Drivers\e4ldr.sys [2006-01-19 63555]
                                        S3 driverhardwarev2;driverhardwarev2; \??\C:\Program Files\ma-config.com\Drivers\driverhardwarev2.sys []
                                        S3 e4usbaw;USB ADSL2 WAN Adapter; C:\WINDOWS\system32\DRIVERS\e4usbaw.sys [2006-03-02 113976]
                                        S3 NetApi000;NetApi000; \??\C:\NetApi000.sys []
                                        S3 qcusbser;Mobile Connector USB Device for Legacy Serial Communication; C:\WINDOWS\system32\DRIVERS\cmusbser.sys [2007-10-16 97408]
                                        S3 usbccgp;Pilote parent générique USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2004-08-03 31616]
                                        S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []

                                        ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

                                        R2 AntiVirScheduler;Avira AntiVir Personal - Free Antivirus Scheduler; C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe [2009-02-06 68865]
                                        R2 AntiVirService;Avira AntiVir Personal - Free Antivirus Guard; C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe [2009-02-06 151297]
                                        R2 hpqwmiex;hpqwmiex; C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe [2006-05-02 135168]
                                        R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2009-02-21 152984]
                                        R2 NWCWorkstation;Service client pour NetWare; C:\WINDOWS\system32\svchost.exe [2004-08-19 14336]
                                        S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-02-04 138168]
                                        S3 maconfservice;Ma-Config Service; C:\Program Files\ma-config.com\maconfservice.exe [2009-01-24 216232]
                                        S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
                                        S3 ose;Office Source Engine; C:\Program Files\Fichiers communs\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
                                        S3 usnjsvc;Service Messenger Sharing Folders USN Journal Reader; C:\Program Files\MSN Messenger\usnsvc.exe [2007-01-19 97136]

                                        -----------------EOF-----------------
                                        0
                                        • 1
                                        • 2