Voila
Logfile of random's system information tool 1.06 (written by random/random)
Run by Nicolas at 2009-05-27 21:10:32
Microsoft® Windows Vista™ Édition Familiale Premium Service Pack 1
System drive C: has 90 GB (63%) free of 143 GB
Total RAM: 3068 MB (63% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 21:10:41, on 27/05/2009
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\HP\QuickPlay\QPService.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe
C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\Windows Live\Family Safety\fsui.exe
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Windows\ehome\ehtray.exe
C:\Windows\ehome\ehmsas.exe
C:\Program Files\Hewlett-Packard\HP wireless Assistant\WiFiMsg.EXE
C:\Program Files\Hewlett-Packard\Shared\HpqToaster.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Nicolas\Desktop\RSIT.exe
C:\Program Files\Trend Micro\HijackThis\Nicolas.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/...
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/webhp?sourceid=navclient&hl=fr&ie=UTF-8
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/...
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/...
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Windows Live Family Safety Browser Helper - {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - C:\Program Files\Windows Live\Family Safety\fssbho.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll
O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [UCam_Menu] "C:\Program Files\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\YouCam" update "Software\CyberLink\YouCam\2.0"
O4 - HKLM\..\Run: [QPService] "C:\Program Files\HP\QuickPlay\QPService.exe"
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [QlbCtrl.exe] C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [hpWirelessAssistant] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [fssui] "C:\Program Files\Windows Live\Family Safety\fsui.exe" -autorun
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [HP Health Check Scheduler] c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
O4 - Startup: OneNote 2007 - Capture d'écran et lancement.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O13 - Gopher Prefix:
O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} - http://appldnld.apple.com.edgesuite.net/...
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O18 - Filter: x-sdch - {B1759355-3EEC-4C1E-B0F1-B719FE26E377} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll
O23 - Service: Avira AntiVir Planificateur (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Com4QLBEx - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
O23 - Service: GameConsoleService - Unknown owner - C:\Program Files\HP Games\My HP Game Console\GameConsoleService.exe (file missing)
O23 - Service: Google Update Service (gupdate1c98b6da7a82ad0) (gupdate1c98b6da7a82ad0) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HP Health Check Service - Hewlett-Packard - c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: Recovery Service for Windows - Unknown owner - C:\Windows\SMINST\BLService.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe
End of file - 9052 bytes
======Scheduled tasks folder======
C:\Windows\tasks\Google Software Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachine.job
C:\Windows\tasks\User_Feed_Synchronization-{DA366EE0-A512-4315-ABBB-C72F62742EAA}.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4f3ed5cd-0726-42a9-87f5-d13f3d2976ac}]
Windows Live Family Safety Browser Helper Class - C:\Program Files\Windows Live\Family Safety\fssbho.dll [2009-02-06 61808]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2009-05-19 137600]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Programme d'aide de l'Assistant de connexion Windows Live - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-02-17 408440]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll [2009-05-01 259696]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll [2009-03-24 668656]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C84D72FE-E17D-4195-BB24-76C02E2E7C4E}]
Google Dictionary Compression sdch - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll [2009-05-01 470512]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-03-09 35840]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
Windows Live Toolbar Helper - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll [2009-05-01 259696]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2008-04-17 1049896]
"NvCplDaemon"=C:\Windows\system32\NvCpl.dll [2008-06-10 13543968]
"NvMediaCenter"=C:\Windows\system32\NvMcTray.dll [2008-06-10 92704]
"UCam_Menu"=C:\Program Files\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe [2007-12-24 222504]
"QPService"=C:\Program Files\HP\QuickPlay\QPService.exe [2008-06-11 468264]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-21 1008184]
"QlbCtrl.exe"=C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [2008-05-12 202032]
"HP Software Update"=C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe [2007-05-08 54840]
"hpWirelessAssistant"=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [2008-04-15 488752]
"SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2009-03-09 148888]
"fssui"=C:\Program Files\Windows Live\Family Safety\fsui.exe [2009-02-06 454000]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-02-27 35696]
"HP Health Check Scheduler"=c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe [2008-10-09 75008]
"avgnt"=C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [2009-03-02 209153]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2009-01-26 39408]
"ehTray.exe"=C:\Windows\ehome\ehTray.exe [2008-01-21 125952]
C:\Users\Nicolas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
OneNote 2007 - Capture d'écran et lancement.lnk - C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{896b1c56-349f-11de-9534-001f16405981}]
shell\Auto\command - tel.xls.exe
shell\AutoRun\command - C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL tel.xls.exe
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 2 months======
2009-05-27 21:08:00 ----D---- C:\rsit
2009-05-23 22:21:30 ----D---- C:\Abe's Oddysee Demo
2009-05-23 14:18:07 ----D---- C:\Users\Nicolas\AppData\Roaming\Malwarebytes
2009-05-23 14:18:02 ----D---- C:\ProgramData\Malwarebytes
2009-05-23 14:18:02 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2009-05-22 21:35:54 ----D---- C:\ProgramData\Estsoft
2009-05-22 18:36:26 ----D---- C:\ProgramData\Apple
2009-05-22 18:36:26 ----D---- C:\Program Files\Apple Software Update
2009-05-22 17:40:08 ----D---- C:\Program Files\Sunbelt Software
2009-05-20 21:09:09 ----D---- C:\Users\Nicolas\AppData\Roaming\ESTsoft
2009-05-20 21:09:09 ----D---- C:\Program Files\ESTsoft
2009-05-20 20:26:25 ----D---- C:\Users\Nicolas\AppData\Roaming\muvee Technologies
2009-05-20 18:49:09 ----D---- C:\Users\Nicolas\AppData\Roaming\WinRAR
2009-05-20 18:48:46 ----D---- C:\Program Files\WinRAR
2009-05-19 22:02:57 ----D---- C:\Windows\BDOSCAN8
2009-05-18 20:28:41 ----D---- C:\Program Files\Trend Micro
2009-05-17 11:26:57 ----D---- C:\Program Files\Avira
2009-05-16 10:58:02 ----SHD---- C:\Windows\system32\%APPDATA%
2009-05-05 18:03:30 ----D---- C:\Program Files\Software Informer
2009-05-04 18:33:28 ----D---- C:\Program Files\LimeWire
2009-05-01 11:18:02 ----A---- C:\Windows\system32\msls31.dll
2009-05-01 11:18:02 ----A---- C:\Windows\system32\mshtmler.dll
2009-05-01 11:18:02 ----A---- C:\Windows\system32\mshtmled.dll
2009-05-01 11:18:02 ----A---- C:\Windows\system32\jsproxy.dll
2009-05-01 11:18:02 ----A---- C:\Windows\system32\ieui.dll
2009-05-01 11:18:02 ----A---- C:\Windows\system32\icardie.dll
2009-05-01 11:18:02 ----A---- C:\Windows\system32\corpol.dll
2009-05-01 11:18:02 ----A---- C:\Windows\system32\admparse.dll
2009-05-01 11:18:01 ----A---- C:\Windows\system32\imgutil.dll
2009-05-01 11:18:01 ----A---- C:\Windows\system32\iernonce.dll
2009-05-01 11:18:01 ----A---- C:\Windows\system32\ieakeng.dll
2009-05-01 11:18:01 ----A---- C:\Windows\system32\dxtrans.dll
2009-05-01 11:18:01 ----A---- C:\Windows\system32\dxtmsft.dll
2009-05-01 11:18:00 ----A---- C:\Windows\system32\webcheck.dll
2009-05-01 11:18:00 ----A---- C:\Windows\system32\occache.dll
2009-05-01 11:18:00 ----A---- C:\Windows\system32\msrating.dll
2009-05-01 11:18:00 ----A---- C:\Windows\system32\msfeedsbs.dll
2009-05-01 11:18:00 ----A---- C:\Windows\system32\licmgr10.dll
2009-05-01 11:18:00 ----A---- C:\Windows\system32\inseng.dll
2009-05-01 11:18:00 ----A---- C:\Windows\system32\iesetup.dll
2009-05-01 11:18:00 ----A---- C:\Windows\system32\iepeers.dll
2009-05-01 11:18:00 ----A---- C:\Windows\system32\ieaksie.dll
2009-05-01 11:17:59 ----A---- C:\Windows\system32\WinFXDocObj.exe
2009-05-01 11:17:59 ----A---- C:\Windows\system32\wextract.exe
2009-05-01 11:17:59 ----A---- C:\Windows\system32\pngfilt.dll
2009-05-01 11:17:59 ----A---- C:\Windows\system32\mstime.dll
2009-05-01 11:17:59 ----A---- C:\Windows\system32\msfeedssync.exe
2009-05-01 11:17:59 ----A---- C:\Windows\system32\msfeeds.dll
2009-05-01 11:17:59 ----A---- C:\Windows\system32\ieakui.dll
2009-05-01 11:17:59 ----A---- C:\Windows\system32\advpack.dll
2009-05-01 11:17:58 ----A---- C:\Windows\system32\vbscript.dll
2009-05-01 11:17:58 ----A---- C:\Windows\system32\url.dll
2009-05-01 11:17:58 ----A---- C:\Windows\system32\jscript.dll
2009-05-01 11:17:58 ----A---- C:\Windows\system32\iedkcs32.dll
2009-05-01 11:17:58 ----A---- C:\Windows\system32\ieapfltr.dll
2009-05-01 11:17:57 ----A---- C:\Windows\system32\mshta.exe
2009-05-01 11:17:57 ----A---- C:\Windows\system32\iexpress.exe
2009-05-01 11:17:56 ----A---- C:\Windows\system32\wininet.dll
2009-05-01 11:17:56 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2009-05-01 11:17:56 ----A---- C:\Windows\system32\SetDepNx.exe
2009-05-01 11:17:56 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2009-05-01 11:17:56 ----A---- C:\Windows\system32\PDMSetup.exe
2009-05-01 11:17:56 ----A---- C:\Windows\system32\ieUnatt.exe
2009-05-01 11:17:56 ----A---- C:\Windows\system32\iesysprep.dll
2009-05-01 11:17:56 ----A---- C:\Windows\system32\iertutil.dll
2009-05-01 11:17:56 ----A---- C:\Windows\system32\ie4uinit.exe
2009-05-01 11:17:55 ----A---- C:\Windows\system32\urlmon.dll
2009-05-01 11:17:54 ----A---- C:\Windows\system32\mshtml.dll
2009-05-01 11:17:54 ----A---- C:\Windows\system32\ieframe.dll
2009-04-22 20:11:42 ----D---- C:\Program Files\Axon Data
2009-04-20 19:48:07 ----D---- C:\Users\Nicolas\AppData\Roaming\dvdcss
2009-04-18 18:23:47 ----D---- C:\Program Files\AKVIS
2009-04-17 00:55:52 ----D---- C:\ProgramData\PlayFirst
2009-04-16 17:11:55 ----A---- C:\Windows\system32\winhttp.dll
2009-04-16 17:11:42 ----A---- C:\Windows\system32\rpcss.dll
2009-04-16 17:11:41 ----A---- C:\Windows\system32\ntkrnlpa.exe
2009-04-16 17:11:40 ----A---- C:\Windows\system32\ntoskrnl.exe
2009-04-16 17:11:37 ----A---- C:\Windows\system32\sdohlp.dll
2009-04-16 17:11:37 ----A---- C:\Windows\system32\printfilterpipelinesvc.exe
2009-04-16 17:11:37 ----A---- C:\Windows\system32\printfilterpipelineprxy.dll
2009-04-16 17:11:36 ----A---- C:\Windows\system32\iasrecst.dll
2009-04-16 17:11:36 ----A---- C:\Windows\system32\iashost.exe
2009-04-16 17:11:36 ----A---- C:\Windows\system32\iasdatastore.dll
2009-04-16 17:11:36 ----A---- C:\Windows\system32\iasads.dll
2009-04-16 17:11:31 ----A---- C:\Windows\system32\msdtcprx.dll
2009-04-16 17:11:30 ----A---- C:\Windows\system32\xolehlp.dll
2009-04-16 17:11:24 ----A---- C:\Windows\system32\lsasrv.dll
2009-04-16 17:11:24 ----A---- C:\Windows\system32\kernel32.dll
2009-04-16 17:11:23 ----A---- C:\Windows\system32\secur32.dll
2009-04-16 17:11:23 ----A---- C:\Windows\system32\apilogen.dll
2009-04-16 17:11:23 ----A---- C:\Windows\system32\amxread.dll
2009-04-16 01:07:10 ----D---- C:\Program Files\Mozilla Firefox
2009-04-15 23:23:37 ----A---- C:\ProgramData\mwmmgr.txt
2009-04-15 23:23:29 ----HD---- C:\Windows\system32\mwmmgr32
2009-04-10 21:20:17 ----D---- C:\Users\Nicolas\AppData\Roaming\CyberLink
2009-04-08 22:07:24 ----D---- C:\ProgramData\Avira
2009-04-06 11:50:20 ----D---- C:\ProgramData\Spybot - Search & Destroy
2009-04-04 23:20:37 ----D---- C:\Program Files\Common Files\Adobe
2009-03-31 20:53:36 ----D---- C:\ProgramData\LightScribe
2009-03-28 21:14:58 ----D---- C:\Users\Nicolas\AppData\Roaming\gtk-2.0
2009-03-28 21:03:14 ----D---- C:\Program Files\GIMP-2.0
======List of files/folders modified in the last 2 months======
2009-05-27 21:10:38 ----D---- C:\Windows\Temp
2009-05-27 19:32:20 ----D---- C:\Windows\Tasks
2009-05-27 19:32:12 ----D---- C:\ProgramData\Google Updater
2009-05-27 16:53:59 ----D---- C:\Users\Nicolas\AppData\Roaming\LimeWire
2009-05-27 16:17:51 ----D---- C:\Windows\System32
2009-05-27 16:17:51 ----A---- C:\Windows\system32\PerfStringBackup.INI
2009-05-27 16:17:50 ----D---- C:\Windows\inf
2009-05-27 15:25:36 ----SHD---- C:\Windows\Installer
2009-05-27 15:24:50 ----D---- C:\Windows\winsxs
2009-05-27 15:24:50 ----D---- C:\Program Files\Internet Explorer
2009-05-27 15:24:43 ----SHD---- C:\System Volume Information
2009-05-27 13:19:15 ----D---- C:\Windows\system32\catroot
2009-05-26 22:22:12 ----D---- C:\Windows\system32\drivers
2009-05-26 17:47:45 ----D---- C:\Program Files\Google
2009-05-24 21:56:45 ----RD---- C:\Program Files
2009-05-23 17:07:55 ----D---- C:\Windows
2009-05-23 14:18:02 ----HD---- C:\ProgramData
2009-05-23 13:38:07 ----D---- C:\Program Files\Common Files
2009-05-23 11:02:20 ----D---- C:\Program Files\Common Files\Symantec Shared
2009-05-22 21:53:39 ----D---- C:\Users\Nicolas\AppData\Roaming\vlc
2009-05-22 21:36:01 ----D---- C:\Windows\system32\Tasks
2009-05-22 20:42:50 ----SD---- C:\Windows\Downloaded Program Files
2009-05-22 18:47:53 ----D---- C:\Program Files\QuickTime
2009-05-17 21:34:37 ----D---- C:\Windows\system32\catroot2
2009-05-16 17:00:11 ----D---- C:\ProgramData\WildTangent
2009-05-16 11:17:30 ----D---- C:\Windows\Debug
2009-05-16 10:58:51 ----D---- C:\ProgramData\Microsoft Help
2009-05-16 10:58:24 ----RSD---- C:\Windows\assembly
2009-05-16 10:55:30 ----D---- C:\Program Files\Windows Mail
2009-05-07 09:16:29 ----A---- C:\Windows\system32\mrt.exe
2009-05-05 20:31:55 ----SD---- C:\Users\Nicolas\AppData\Roaming\Microsoft
2009-05-01 11:57:58 ----D---- C:\Windows\rescache
2009-05-01 11:39:11 ----D---- C:\Windows\system32\fr-FR
2009-05-01 11:39:10 ----D---- C:\Windows\system32\migration
2009-05-01 11:39:10 ----D---- C:\Windows\system32\en-US
2009-05-01 11:39:10 ----D---- C:\Windows\PolicyDefinitions
2009-05-01 11:28:25 ----D---- C:\Windows\system
2009-05-01 11:25:47 ----D---- C:\Program Files\Common Files\microsoft shared
2009-05-01 11:22:50 ----RSD---- C:\Windows\Fonts
2009-05-01 11:21:02 ----A---- C:\Windows\win.ini
2009-04-23 20:00:53 ----D---- C:\Windows\Prefetch
2009-04-18 18:42:41 ----AD---- C:\ProgramData\TEMP
2009-04-18 16:41:17 ----D---- C:\Windows\SMINST
2009-04-17 00:55:52 ----D---- C:\Users\Nicolas\AppData\Roaming\PlayFirst
2009-04-16 17:35:51 ----D---- C:\Windows\system32\wbem
2009-04-16 17:35:50 ----D---- C:\Windows\system32\manifeststore
2009-04-16 17:35:50 ----D---- C:\Windows\AppPatch
2009-04-16 01:07:19 ----D---- C:\Users\Nicolas\AppData\Roaming\Mozilla
2009-04-13 19:58:17 ----D---- C:\Windows\system32\LogFiles
2009-04-09 13:43:43 ----HD---- C:\Program Files\InstallShield Installation Information
2009-04-09 13:43:37 ----D---- C:\Program Files\Hewlett-Packard
2009-04-09 13:42:19 ----D---- C:\SWSetup
2009-04-06 17:42:07 ----D---- C:\Users\Nicolas\AppData\Roaming\Hewlett-Packard
2009-04-06 17:33:36 ----D---- C:\ProgramData\Hewlett-Packard
2009-04-04 23:20:49 ----D---- C:\ProgramData\Adobe
2009-04-03 19:14:59 ----D---- C:\Windows\Microsoft.NET
2009-04-03 17:51:43 ----D---- C:\Program Files\Windows Live
2009-04-03 17:51:09 ----SD---- C:\ProgramData\Microsoft
2009-04-01 16:42:50 ----D---- C:\ProgramData\AOL
2009-04-01 12:46:42 ----D---- C:\Windows\system32\Macromed
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 avgio;avgio; \??\C:\Program Files\Avira\AntiVir Desktop\avgio.sys [2009-02-13 11608]
R1 avipbb;avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [2009-03-30 96104]
R1 ssmdrv;ssmdrv; C:\Windows\system32\DRIVERS\ssmdrv.sys [2009-02-13 28376]
R2 avgntflt;avgntflt; C:\Windows\system32\DRIVERS\avgntflt.sys [2009-03-24 55640]
R2 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2008-12-08 55264]
R2 mdmxsdk;mdmxsdk; C:\Windows\system32\DRIVERS\mdmxsdk.sys [2006-06-19 12672]
R2 XAudio;XAudio; C:\Windows\system32\DRIVERS\xaudio.sys [2007-10-18 8704]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athr.sys [2008-04-27 909824]
R3 CmBatt;Pilote pour Batterie à méthode de contrôle ACPI Microsoft; C:\Windows\system32\DRIVERS\CmBatt.sys [2008-01-21 14208]
R3 CnxtHdAudService;Conexant UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\CHDRT32.sys [2008-10-03 222208]
R3 HpqKbFiltr;HpqKbFilter Driver; C:\Windows\system32\DRIVERS\HpqKbFiltr.sys [2007-06-18 16768]
R3 HSF_DPV;HSF_DPV; C:\Windows\system32\DRIVERS\HSX_DPV.sys [2007-11-01 985600]
R3 HSXHWAZL;HSXHWAZL; C:\Windows\system32\DRIVERS\HSXHWAZL.sys [2007-11-01 208896]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda32v.sys [2008-06-10 43040]
R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2008-06-10 7522624]
R3 RTL8169;Realtek 8169 NT Driver; C:\Windows\system32\DRIVERS\Rtlh86.sys [2008-06-10 123904]
R3 RTSTOR;Realtek USB 2.0 Card Reader; C:\Windows\system32\drivers\RTSTOR.SYS [2009-03-26 64000]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2008-04-17 199344]
R3 usbvideo;Périphérique vidéo USB (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2008-01-21 134016]
R3 winachsf;winachsf; C:\Windows\system32\DRIVERS\HSX_CNXT.sys [2007-11-01 661504]
R3 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\DRIVERS\wmiacpi.sys [2008-01-21 11264]
S3 BCM43XV;Broadcom Extensible 802.11 Network Adapter Driver; C:\Windows\system32\DRIVERS\bcmwl6.sys [2006-11-02 464384]
S3 drmkaud;Filtre de décodeur DRM (Noyau Microsoft); C:\Windows\system32\drivers\drmkaud.sys [2008-01-21 5632]
S3 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2008-01-21 6656]
S3 HdAudAddService;Pilote de fonction UAA 1.1 Microsoft pour le service High Definition Audio; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]
S3 HPZid412;IEEE-1284.4 Driver HPZid412; C:\Windows\system32\DRIVERS\HPZid412.sys [2006-04-13 49664]
S3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; C:\Windows\system32\DRIVERS\HPZipr12.sys [2006-04-13 16496]
S3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:\Windows\system32\DRIVERS\HPZius12.sys [2006-04-13 21568]
S3 HSFHWAZL;HSFHWAZL; C:\Windows\system32\DRIVERS\VSTAZL3.SYS [2008-01-21 200704]
S3 MSKSSRV;Proxy de service de répartition Microsoft; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-21 8192]
S3 MSPCLOCK;Proxy d'horloge de répartition Microsoft; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-21 5888]
S3 MSPQM;Proxy de gestion de qualité de répartition Microsoft; C:\Windows\system32\drivers\MSPQM.sys [2008-01-21 5504]
S3 MSTEE;Convertisseur en T/site-à-site de répartition Microsoft; C:\Windows\system32\drivers\MSTEE.sys [2008-01-21 6016]
S3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvm60x32.sys [2006-11-02 429056]
S3 se59bus;Sony Ericsson Device 089 driver (WDM); C:\Windows\system32\DRIVERS\se59bus.sys [2006-09-05 61536]
S3 se59mdfl;Sony Ericsson Device 089 USB WMC Modem Filter; C:\Windows\system32\DRIVERS\se59mdfl.sys [2006-09-05 9360]
S3 se59mdm;Sony Ericsson Device 089 USB WMC Modem Driver; C:\Windows\system32\DRIVERS\se59mdm.sys [2006-09-05 97088]
S3 se59mgmt;Sony Ericsson Device 089 USB WMC Device Management Drivers (WDM); C:\Windows\system32\DRIVERS\se59mgmt.sys [2006-09-05 88624]
S3 se59obex;Sony Ericsson Device 089 USB WMC OBEX Interface; C:\Windows\system32\DRIVERS\se59obex.sys [2006-09-05 86432]
S3 se59unic;Sony Ericsson Device 089 USB Ethernet Emulation SEMC59 (WDM); C:\Windows\system32\DRIVERS\se59unic.sys [2006-09-05 90800]
S3 USBIO;USBIO Driver (usbio.sys); C:\Windows\System32\Drivers\usbio.sys [2001-05-07 19805]
S3 usbscan;Pilote de scanneur USB; C:\Windows\system32\DRIVERS\usbscan.sys [2008-01-21 35328]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-21 83328]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AntiVirSchedulerService;Avira AntiVir Planificateur; C:\Program Files\Avira\AntiVir Desktop\sched.exe [2009-04-01 108289]
R2 AntiVirService;Avira AntiVir Guard; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [2009-03-02 185089]
R2 ezSharedSvc;Easybits Shared Services for Windows; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 fsssvc;Windows Live Contrôle parental; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2009-02-06 533360]
R2 HP Health Check Service;HP Health Check Service; c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe [2008-10-09 94208]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2008-02-26 73728]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2008-06-10 196608]
R2 Recovery Service for Windows;Recovery Service for Windows; C:\Windows\SMINST\BLService.exe [2008-04-26 361808]
R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files\CyberLink\Shared Files\RichVideo.exe [2007-01-09 272024]
R2 SeaPort;SeaPort; C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2009-05-19 240512]
R2 XAudioService;XAudioService; C:\Windows\system32\DRIVERS\xaudio.exe [2007-10-18 386560]
R3 Com4QLBEx;Com4QLBEx; C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [2008-04-03 193840]
R3 hpqwmiex;hpqwmiex; C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe [2008-05-01 165192]
S2 gupdate1c98b6da7a82ad0;Google Update Service (gupdate1c98b6da7a82ad0); C:\Program Files\Google\Update\GoogleUpdate.exe [2009-02-10 133104]
S2 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-03-24 183280]
S3 GameConsoleService;GameConsoleService; C:\Program Files\HP Games\My HP Game Console\GameConsoleService.exe []
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
-----------------EOF-----------------