Rapport log.txt
Logfile of random's system information tool 1.05 (written by random/random)
Run by vincent13 at 2009-03-15 11:51:22
Microsoft® Windows Vista™ Édition Familiale Basique Service Pack 1
System drive C: has 82 GB (72%) free of 114 GB
Total RAM: 764 MB (24% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:51:55, on 15/03/2009
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18000)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Program Files\Hewlett-Packard\IAM\Bin\AsGHost.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\ActivIdentity\ActivClient\accrdsub.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe
C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\pthosttr.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Program Files\QuickTime\QTTask.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\ESET\ESET Smart Security\egui.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Users\vincent13\AppData\Local\cuwqaie.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\OpenOffice.org 2.4\program\soffice.exe
C:\Program Files\Hewlett-Packard\HP wireless Assistant\WiFiMsg.EXE
C:\Program Files\OpenOffice.org 2.4\program\soffice.BIN
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\VolCtrl.exe
C:\Program Files\Hewlett-Packard\Shared\HpqToaster.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Program Files\ActivIdentity\ActivClient\acevents.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\conime.exe
C:\Windows\explorer.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\vincent13\Desktop\RSIT.exe
C:\Program Files\trend micro\vincent13.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = fr.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O2 - BHO: Credential Manager for HP ProtectTools - {DF21F1DB-80C6-11D3-9483-B03D0EC10000} - C:\Program Files\Hewlett-Packard\IAM\Bin\ItIEAddIn.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe"
O4 - HKLM\..\Run: [accrdsub] "C:\Program Files\ActivIdentity\ActivClient\accrdsub.exe"
O4 - HKLM\..\Run: [CognizanceTS] rundll32.exe C:\PROGRA~1\HEWLET~1\IAM\Bin\ASTSVCC.dll,RegisterModule
O4 - HKLM\..\Run: [QlbCtrl.exe] C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [hpWirelessAssistant] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"
O4 - HKLM\..\Run: [WatchDog] C:\Program Files\InterVideo\DVD Check\DVDCheck.exe
O4 - HKLM\..\Run: [InfoSCC] "C:\ordina13 help\MessageSCC.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [SoundMAX] C:\Program Files\Analog Devices\SoundMAX\soundmax.exe /tray
O4 - HKLM\..\Run: [PTHOSTTR] C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\PTHOSTTR.EXE /Start
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [SuperCopier2.exe] C:\Program Files\SuperCopier2\SuperCopier2.exe
O4 - HKCU\..\Run: [cuwqaie] "c:\users\vincent13\appdata\local\cuwqaie.exe" cuwqaie
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
O4 - Startup: OpenOffice.org 2.4.lnk = C:\Program Files\OpenOffice.org 2.4\program\quickstart.exe
O4 - Global Startup: DVD Check.lnk = C:\Program Files\InterVideo\DVD Check\DVDCheck.exe
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O13 - Gopher Prefix:
O17 - HKLM\System\CCS\Services\Tcpip\..\{27FBC33F-C641-4290-A369-AA5211750AC3}: NameServer = 192.168.1.1
O20 - AppInit_DLLs: APSHook.dll
O23 - Service: ActivClient Middleware Service (accoca) - ActivIdentity - C:\Program Files\ActivIdentity\ActivClient\accoca.exe
O23 - Service: Andrea ADI Filters Service (AEADIFilters) - Andrea Electronics Corporation - C:\Windows\system32\AEADISRV.EXE
O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - Agere Systems - C:\Windows\system32\agrsmsvc.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe
O23 - Service: AuthenTec Fingerprint Service (ATService) - AuthenTec, Inc. - C:\Program Files\Fingerprint Sensor\AtService.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Com4QLBEx - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
O23 - Service: Eset HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe
O23 - Service: Eset Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: getPlus(R) Helper - NOS Microsystems Ltd. - C:\Program Files\NOS\bin\getPlus_HelperSvc.exe
O23 - Service: HP ProtectTools Service - Hewlett-Packard Development Company, L.P - C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\PTChangeFilterService.exe
O23 - Service: Drive Encryption Service (HpFkCryptService) - SafeBoot International - C:\Program Files\Hewlett-Packard\Drive Encryption\HpFkCrypt.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: HP Service (hpsrv) - Hewlett-Packard Corporation - C:\Windows\system32\Hpservice.exe
O23 - Service: Service de l’iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: IviRegMgr - InterVideo - C:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe
O23 - Service: RoxMediaDB10 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxMediaDB10.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
End of file - 9233 bytes
======Scheduled tasks folder======
C:\Windows\tasks\User_Feed_Synchronization-{E81EC49E-6831-4221-8D98-A3310C6CFB82}.job
C:\Windows\tasks\User_Feed_Synchronization-{EC327CCD-C48B-4018-B271-534BCFDA36D2}.job
C:\Windows\tasks\Vérifier les mises à jour de Windows Live Toolbar.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Aide pour le lien d'Adobe PDF Reader - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
SSVHelper Class - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll [2008-02-22 509328]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7E853D72-626A-48EC-A868-BA8D5E23E045}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Programme d'aide de l'Assistant de connexion Windows Live - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-02-17 408440]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0}]
Windows Live Toolbar Helper - C:\Program Files\Windows Live Toolbar\msntb.dll [2007-10-19 546320]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DF21F1DB-80C6-11D3-9483-B03D0EC10000}]
Credential Manager for HP ProtectTools - C:\Program Files\Hewlett-Packard\IAM\Bin\ItIEAddIn.dll [2008-05-21 58128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - Windows Live Toolbar - C:\Program Files\Windows Live Toolbar\msntb.dll [2007-10-19 546320]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-18 1008184]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2008-03-27 1045800]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2008-01-21 61440]
""= []
"accrdsub"=C:\Program Files\ActivIdentity\ActivClient\accrdsub.exe [2007-05-15 293168]
"CognizanceTS"=C:\PROGRA~1\HEWLET~1\IAM\Bin\ASTSVCC.dll [2008-05-21 24848]
"QlbCtrl.exe"=C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [2008-05-14 177456]
"hpWirelessAssistant"=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [2008-04-15 488752]
"SunJavaUpdateSched"=C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe [2008-02-22 144784]
"WatchDog"=C:\Program Files\InterVideo\DVD Check\DVDCheck.exe [2008-04-21 197904]
"InfoSCC"=C:\ordina13 help\MessageSCC.exe [2008-06-30 245493]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [2008-01-11 39792]
"SoundMAX"=C:\Program Files\Analog Devices\SoundMAX\soundmax.exe [2008-03-19 3842048]
"PTHOSTTR"=C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\PTHOSTTR.EXE [2008-06-02 238984]
"SoundMAXPnP"=C:\Program Files\Analog Devices\Core\smax4pnp.exe [2008-04-04 1314816]
"QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2009-01-05 413696]
"iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2009-01-06 290088]
"egui"=C:\Program Files\ESET\ESET Smart Security\egui.exe [2008-02-20 1443072]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2008-01-18 1233920]
"SuperCopier2.exe"=C:\Program Files\SuperCopier2\SuperCopier2.exe [2006-07-07 1052672]
"cuwqaie"=c:\users\vincent13\appdata\local\cuwqaie.exe [2009-03-14 219648]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
DVD Check.lnk - C:\Program Files\InterVideo\DVD Check\DVDCheck.exe
C:\Users\vincent13\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
OpenOffice.org 2.4.lnk - C:\Program Files\OpenOffice.org 2.4\program\quickstart.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLS"="APSHook.dll"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=scecli
ASWLNPkg
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"EnableLUA"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======List of files/folders created in the last 3 months======
2009-03-15 11:51:23 ----D---- C:\Program Files\trend micro
2009-03-15 11:51:22 ----D---- C:\rsit
2009-03-15 11:31:16 ----D---- C:\ProgramData\NortonInstaller
2009-03-15 10:53:17 ----A---- C:\Windows\ntbtlog.txt
2009-03-14 19:58:56 ----D---- C:\Users\vincent13\AppData\Roaming\live-player
2009-03-14 19:58:56 ----D---- C:\Program Files\Live-Player
2009-03-11 16:22:48 ----D---- C:\Users\vincent13\AppData\Roaming\DivX
2009-03-11 16:10:26 ----D---- C:\Program Files\DivX
2009-03-11 10:21:06 ----A---- C:\Windows\system32\wmp.dll
2009-03-11 10:21:03 ----A---- C:\Windows\system32\spwmp.dll
2009-03-11 10:21:03 ----A---- C:\Windows\system32\dxmasf.dll
2009-03-11 10:21:00 ----A---- C:\Windows\system32\wmploc.DLL
2009-03-11 10:20:55 ----A---- C:\Windows\system32\schannel.dll
2009-02-28 20:12:21 ----D---- C:\Program Files\Enigma Software Group
2009-02-28 19:22:15 ----D---- C:\Program Files\Unlocker
2009-02-28 19:10:29 ----A---- C:\Windows\system32\vcredist_x86.exe
2009-02-28 19:10:29 ----A---- C:\Windows\system32\readme.txt
2009-02-28 19:10:29 ----A---- C:\Windows\system32\license.txt
2009-02-28 19:10:26 ----D---- C:\Windows\system32\lib
2009-02-28 19:10:23 ----D---- C:\Windows\system32\inc
2009-02-28 12:20:40 ----D---- C:\Program Files\Bonjour
2009-02-21 15:59:27 ----D---- C:\Program Files\CCleaner
2009-02-18 16:25:10 ----D---- C:\Users\vincent13\AppData\Roaming\Malwarebytes
2009-02-18 16:25:00 ----D---- C:\ProgramData\Malwarebytes
2009-02-12 12:44:13 ----D---- C:\Users\vincent13\AppData\Roaming\Blumentals
2009-02-12 12:44:13 ----D---- C:\Program Files\Screensaver Factory 4 Pro
2009-02-12 09:22:49 ----D---- C:\Users\vincent13\AppData\Roaming\Wireshark
2009-02-12 09:19:27 ----D---- C:\Program Files\HHD Software
2009-02-11 19:23:12 ----D---- C:\ProgramData\NOS
2009-02-11 19:23:12 ----D---- C:\Program Files\NOS
2009-02-11 10:40:53 ----D---- C:\Program Files\eMule
2009-02-11 10:33:46 ----A---- C:\Windows\system32\csdlocalmon.dll
2009-02-11 10:33:09 ----D---- C:\Program Files\iriver
2009-02-11 09:23:30 ----A---- C:\Windows\system32\mshtml.dll
2009-02-11 09:23:19 ----A---- C:\Windows\system32\ieframe.dll
2009-02-11 09:23:09 ----A---- C:\Windows\system32\urlmon.dll
2009-02-11 09:23:06 ----A---- C:\Windows\system32\msfeeds.dll
2009-02-11 09:23:02 ----A---- C:\Windows\system32\wininet.dll
2009-02-11 09:22:59 ----A---- C:\Windows\system32\mstime.dll
2009-02-11 09:22:55 ----A---- C:\Windows\system32\iertutil.dll
2009-02-11 09:22:50 ----A---- C:\Windows\system32\jsproxy.dll
2009-02-09 11:29:49 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2009-02-09 11:29:49 ----A---- C:\Windows\system32\infocardapi.dll
2009-02-09 11:29:47 ----A---- C:\Windows\system32\icardres.dll
2009-02-09 11:29:47 ----A---- C:\Windows\system32\icardagt.exe
2009-02-09 11:29:46 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2009-02-09 11:29:44 ----A---- C:\Windows\system32\PresentationNative_v0300.dll
2009-02-09 11:29:39 ----A---- C:\Windows\system32\PresentationHost.exe
2009-02-09 11:23:32 ----A---- C:\Windows\system32\dfshim.dll
2009-02-09 11:23:30 ----A---- C:\Windows\system32\netfxperf.dll
2009-02-09 11:23:30 ----A---- C:\Windows\system32\mscoree.dll
2009-02-09 11:23:19 ----A---- C:\Windows\system32\mscorier.dll
2009-02-09 11:23:14 ----A---- C:\Windows\system32\mscories.dll
2009-02-08 17:16:40 ----D---- C:\Program Files\Roman Bowl
2009-02-07 12:40:47 ----D---- C:\Program Files\Audacity
2009-02-07 12:33:43 ----D---- C:\ProgramData\SiComponents
2009-02-07 12:33:18 ----D---- C:\Program Files\Common Files\DVDVIDEOSOFT
2009-02-07 12:33:10 ----D---- C:\Program Files\DVDVIDEOSOFT
2009-02-06 12:35:56 ----A---- C:\Windows\system32\LegitCheckControl.DLL
2009-01-31 19:11:49 ----D---- C:\Windows\system32\Samsung_USB_Drivers
2009-01-31 19:11:45 ----D---- C:\Program Files\Samsung
2009-01-28 16:08:06 ----D---- C:\Program Files\SupraASCIIArt
2009-01-28 13:13:15 ----D---- C:\Users\vincent13\AppData\Roaming\LimeWire
2009-01-26 20:19:45 ----D---- C:\Users\vincent13\AppData\Roaming\FLV Extract
2009-01-26 20:16:33 ----D---- C:\Users\vincent13\AppData\Roaming\FMZilla
2009-01-26 20:16:33 ----D---- C:\downloads
2009-01-26 19:28:12 ----D---- C:\Program Files\StuffPlug3
2009-01-25 16:53:31 ----D---- C:\Users\vincent13\AppData\Roaming\Morpheus Software
2009-01-22 18:41:04 ----D---- C:\Program Files\PhotoFiltre
2009-01-22 18:30:41 ----D---- C:\Users\vincent13\AppData\Roaming\Apple Computer
2009-01-22 18:29:54 ----A---- C:\Windows\system32\GEARAspi.dll
2009-01-22 18:29:53 ----DC---- C:\Windows\system32\DRVSTORE
2009-01-22 18:29:30 ----D---- C:\Program Files\iPod
2009-01-22 18:29:25 ----D---- C:\ProgramData\{3276BE95_AF08_429F_A64F_CA64CB79BCF6}
2009-01-22 18:29:25 ----D---- C:\Program Files\iTunes
2009-01-22 18:28:01 ----D---- C:\Program Files\QuickTime
2009-01-22 18:27:58 ----D---- C:\ProgramData\Apple Computer
2009-01-22 18:27:00 ----D---- C:\Program Files\Apple Software Update
2009-01-22 18:26:22 ----D---- C:\ProgramData\Apple
2009-01-22 18:26:22 ----D---- C:\Program Files\Common Files\Apple
2009-01-16 21:21:24 ----D---- C:\Users\vincent13\AppData\Roaming\InterVideo
2009-01-16 21:18:55 ----D---- C:\Users\vincent13\AppData\Roaming\dvdcss
2009-01-11 17:03:00 ----D---- C:\Users\vincent13\AppData\Roaming\WinRAR
2009-01-11 17:01:51 ----D---- C:\Program Files\WinRAR
2009-01-10 13:12:27 ----D---- C:\ProgramData\EscapeTheMuseum
2009-01-10 13:05:05 ----SHD---- C:\Users\vincent13\AppData\Roaming\.#
2009-01-08 12:25:00 ----D---- C:\Program Files\SuperCopier2
2009-01-08 12:10:35 ----D---- C:\Program Files\7-Zip
2009-01-07 14:50:15 ----D---- C:\Users\vincent13\AppData\Roaming\vlc
2009-01-07 14:32:55 ----D---- C:\Program Files\VideoLAN
2008-12-29 14:43:58 ----D---- C:\Users\vincent13\AppData\Roaming\Encyclopedie Hachette
2008-12-27 12:09:42 ----D---- C:\Users\vincent13\AppData\Roaming\PetShowCraze
2008-12-19 19:02:01 ----D---- C:\Games
======List of files/folders modified in the last 3 months======
2009-03-15 11:51:46 ----D---- C:\Windows\Prefetch
2009-03-15 11:51:38 ----D---- C:\Windows\Temp
2009-03-15 11:51:23 ----RD---- C:\Program Files
2009-03-15 11:36:50 ----D---- C:\Windows\system32\Tasks
2009-03-15 11:32:42 ----HD---- C:\ProgramData
2009-03-15 11:20:36 ----D---- C:\Windows\Logs
2009-03-15 11:06:37 ----D---- C:\Windows\System32
2009-03-15 11:06:36 ----D---- C:\Windows\inf
2009-03-15 11:06:36 ----A---- C:\Windows\system32\PerfStringBackup.INI
2009-03-15 11:02:26 ----D---- C:\Users\vincent13\AppData\Roaming\OpenOffice.org2
2009-03-15 11:00:03 ----D---- C:\ProgramData\hpqLog
2009-03-15 10:53:17 ----D---- C:\Windows
2009-03-15 10:28:42 ----SD---- C:\Windows\Downloaded Program Files
2009-03-15 10:17:53 ----D---- C:\Windows\system32\drivers
2009-03-14 19:59:33 ----SHD---- C:\Windows\Installer
2009-03-11 17:56:27 ----D---- C:\Windows\winsxs
2009-03-11 17:46:20 ----D---- C:\Windows\system32\catroot
2009-03-11 17:44:29 ----D---- C:\Program Files\Windows Media Player
2009-03-11 17:44:29 ----D---- C:\Program Files\Windows Mail
2009-03-11 16:11:29 ----D---- C:\Program Files\Common Files\PX Storage Engine
2009-03-11 10:20:44 ----D---- C:\Windows\system32\catroot2
2009-03-08 03:01:48 ----D---- C:\Program Files\Common Files\microsoft shared
2009-02-28 16:04:19 ----SHD---- C:\System Volume Information
2009-02-27 12:12:11 ----D---- C:\Program Files\ESET
2009-02-27 09:05:06 ----SD---- C:\Users\vincent13\AppData\Roaming\Microsoft
2009-02-25 12:55:00 ----A---- C:\Windows\system32\mrt.exe
2009-02-21 16:02:20 ----D---- C:\Windows\Minidump
2009-02-19 18:17:04 ----D---- C:\Program Files\Messenger Plus! Live
2009-02-16 03:00:54 ----RSD---- C:\Windows\assembly
2009-02-14 19:26:55 ----D---- C:\Windows\system32\WDI
2009-02-11 18:46:34 ----D---- C:\Windows\Microsoft.NET
2009-02-11 17:36:14 ----D---- C:\Windows\rescache
2009-02-11 17:14:58 ----D---- C:\Windows\system32\fr-FR
2009-02-11 17:14:43 ----D---- C:\Windows\system32\XPSViewer
2009-02-11 17:14:43 ----D---- C:\Windows\system32\wbem
2009-02-11 17:14:43 ----D---- C:\Windows\system32\en-US
2009-02-11 10:41:19 ----D---- C:\ProgramData\eMule
2009-02-07 12:33:18 ----D---- C:\Program Files\Common Files
2009-01-31 19:11:39 ----HD---- C:\Program Files\InstallShield Installation Information
2009-01-11 18:19:42 ----D---- C:\Program Files\Incredijeux
2009-01-11 14:27:51 ----AD---- C:\ProgramData\TEMP
2009-01-11 14:17:09 ----D---- C:\Program Files\Oberon Media
2009-01-10 15:21:31 ----D---- C:\Program Files\Windows Live
2009-01-10 15:20:53 ----D---- C:\Program Files\Zylom Games
2009-01-10 15:20:08 ----D---- C:\Program Files\Steam
2009-01-08 12:20:20 ----A---- C:\Windows\system32\srvany.exe
2009-01-08 12:20:19 ----A---- C:\Windows\system32\instsrv.exe
2008-12-21 22:37:03 ----D---- C:\Users\vincent13\AppData\Roaming\Adobe
2008-12-20 19:08:49 ----D---- C:\ProgramData\QuickTime
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 easdrv;easdrv; C:\Windows\system32\DRIVERS\easdrv.sys [2008-02-20 29704]
R1 epfwtdi;epfwtdi; C:\Windows\system32\DRIVERS\epfwtdi.sys [2008-02-20 54280]
R1 RsvLock;RsvLock; C:\Windows\system32\drivers\RsvLock.sys [2008-05-30 12496]
R2 eamon;EAMON; C:\Windows\system32\DRIVERS\eamon.sys [2008-02-20 39944]
R2 epfw;epfw; C:\Windows\system32\DRIVERS\epfw.sys [2008-02-20 71176]
R3 Accelerometer;HP Accelerometer; C:\Windows\system32\DRIVERS\Accelerometer.sys [2008-04-07 34664]
R3 ADIHdAudAddService;ADI UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\ADIHdAud.sys [2008-04-11 382464]
R3 AgereSoftModem;Agere Systems Soft Modem; C:\Windows\system32\DRIVERS\AGRSM.sys [2008-02-29 1202560]
R3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2008-05-21 3552768]
R3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2007-11-29 181760]
R3 CmBatt;Pilote pour Batterie à méthode de contrôle ACPI Microsoft; C:\Windows\system32\DRIVERS\CmBatt.sys [2008-01-18 14208]
R3 Epfwndis;Eset Personal Firewall; C:\Windows\system32\DRIVERS\Epfwndis.sys [2008-02-20 30728]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys [2008-04-17 15464]
R3 HBtnKey;HBtnKey; C:\Windows\system32\DRIVERS\cpqbttn.sys [2008-04-14 9344]
R3 HpqKbFiltr;HpqKbFilter Driver; C:\Windows\system32\DRIVERS\HpqKbFiltr.sys [2007-06-18 16768]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2008-03-27 199472]
R3 TPM;Module de plateforme sécurisée (TPM); C:\Windows\system32\drivers\tpm.sys [2008-01-18 45624]
R3 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\DRIVERS\wmiacpi.sys [2008-01-18 11264]
S3 ATSwpWDF;AuthenTec TruePrint USB WDF Driver; C:\Windows\System32\Drivers\ATSwpWDF.sys [2008-05-13 475520]
S3 BCM43XX;Pilote pour carte réseau Broadcom 802.11; C:\Windows\system32\DRIVERS\bcmwl6.sys [2008-06-25 1207288]
S3 BthEnum;Pilote de bloc de demande Bluetooth; C:\Windows\system32\DRIVERS\BthEnum.sys [2008-06-25 19456]
S3 BthPan;Périphérique Bluetooth (réseau personnel); C:\Windows\system32\DRIVERS\bthpan.sys [2008-01-18 92160]
S3 BTHPORT;Pilote de port Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2008-06-25 220160]
S3 BTHUSB;Pilote USB radio Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2008-06-25 29184]
S3 drmkaud;Filtre de décodeur DRM (Noyau Microsoft); C:\Windows\system32\drivers\drmkaud.sys [2008-01-18 5632]
S3 HdAudAddService;Pilote de fonction UAA 1.1 Microsoft pour le service High Definition Audio; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]
S3 MSKSSRV;Proxy de service de répartition Microsoft; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-18 8192]
S3 MSPCLOCK;Proxy d'horloge de répartition Microsoft; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-18 5888]
S3 MSPQM;Proxy de gestion de qualité de répartition Microsoft; C:\Windows\system32\drivers\MSPQM.sys [2008-01-18 5504]
S3 MSTEE;Convertisseur en T/site-à-site de répartition Microsoft; C:\Windows\system32\drivers\MSTEE.sys [2008-01-18 6016]
S3 RFCOMM;Périphérique Bluetooth (TDI protocole RFCOMM); C:\Windows\system32\DRIVERS\rfcomm.sys [2008-01-18 49664]
S3 ssm_bus;SAMSUNG Mobile USB Device II 1.0 driver (WDM); C:\Windows\system32\DRIVERS\ssm_bus.sys [2005-08-30 58320]
S3 ssm_mdfl;SAMSUNG Mobile USB Modem II 1.0 Filter; C:\Windows\system32\DRIVERS\ssm_mdfl.sys [2007-05-02 15112]
S3 ssm_mdm;SAMSUNG Mobile USB Modem II 1.0 Drivers; C:\Windows\system32\DRIVERS\ssm_mdm.sys [2007-05-02 109704]
S3 UIUSys;Conexant Setup API; C:\Windows\system32\DRIVERS\UIUSYS.SYS []
S3 USBAAPL;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl.sys [2008-11-07 32000]
S3 usbvideo;Périphérique vidéo USB (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2008-01-18 134016]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 accoca;ActivClient Middleware Service; C:\Program Files\ActivIdentity\ActivClient\accoca.exe [2007-05-15 182576]
R2 AEADIFilters;Andrea ADI Filters Service; C:\Windows\system32\AEADISRV.EXE [2007-10-19 86016]
R2 AgereModemAudio;Agere Modem Call Progress Audio; C:\Windows\system32\agrsmsvc.exe [2007-12-11 12800]
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [2008-11-07 132424]
R2 ASBroker;Logon Session Broker; C:\Windows\System32\svchost.exe [2008-01-18 21504]
R2 ASChannel;Canal de communication local; C:\Windows\System32\svchost.exe [2008-01-18 21504]
R2 Ati External Event Utility;Ati External Event Utility; C:\Windows\system32\Ati2evxx.exe [2008-05-21 671744]
R2 ATService;AuthenTec Fingerprint Service; C:\Program Files\Fingerprint Sensor\AtService.exe [2008-05-09 1168632]
R2 Bonjour Service;Service Bonjour; C:\Program Files\Bonjour\mDNSResponder.exe [2008-12-12 238888]
R2 BthServ;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2008-01-18 21504]
R2 ekrn;Eset Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2008-02-20 472320]
R2 HP ProtectTools Service;HP ProtectTools Service; C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\PTChangeFilterService.exe [2008-06-02 18944]
R2 HpFkCryptService;Drive Encryption Service; C:\Program Files\Hewlett-Packard\Drive Encryption\HpFkCrypt.exe [2008-05-30 256512]
R2 hpsrv;HP Service; C:\Windows\system32\Hpservice.exe [2008-04-07 24936]
R2 IviRegMgr;IviRegMgr; C:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe [2007-01-04 112152]
R3 Com4QLBEx;Com4QLBEx; C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [2008-04-03 193840]
R3 hpqwmiex;hpqwmiex; C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe [2008-04-16 165192]
R3 iPod Service;Service de l’iPod; C:\Program Files\iPod\bin\iPodService.exe [2009-01-06 536872]
S3 EhttpSrv;Eset HTTP Server; C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe [2008-02-20 19200]
S3 getPlus(R) Helper;getPlus(R) Helper; C:\Program Files\NOS\bin\getPlus_HelperSvc.exe [2008-12-01 33752]
S3 RoxMediaDB10;RoxMediaDB10; C:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxMediaDB10.exe [2008-04-08 1112560]
S3 Steam Client Service;Steam Client Service; C:\Program Files\Common Files\Steam\SteamService.exe [2008-10-26 87288]
S3 stllssvr;stllssvr; C:\Program Files\Common Files\SureThing Shared\stllssvr.exe [2008-03-24 74384]
S3 usnjsvc;Service Messenger Sharing Folders USN Journal Reader; C:\Program Files\Windows Live\Messenger\usnsvc.exe [2007-10-18 98328]
S3 WLSetupSvc;Windows Live Setup Service; C:\Program Files\Windows Live\installer\WLSetupSvc.exe [2007-10-25 266240]
-----------------EOF-----------------
--
Il vaut parfois mieux se taire et passer pour un c*n que parler et dissiper tous les doutes.