Bonjour ami photographe!
alors j'ai suivi ce que tu as écrit, par contre je n'ai pas trouvé comment envoyé un fichier joint sur le forum donc voici le résultat:
Logfile of random's system information tool 1.06 (written by random/random)
Run by Sandra at 2009-07-09 22:55:26
Microsoft® Windows Vista™ Ultimate Service Pack 1
System drive C: has 4 GB (10%) free of 42 GB
Total RAM: 511 MB (32% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 10:56:06 PM, on 7/9/2009
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Windows\SOUNDMAN.EXE
C:\Windows\ATK0100\Hcontrol.exe
C:\Program Files\pdfforge Toolbar\SearchSettings.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\Sony\Wireless Switch Setting Utility\Switcher.exe
C:\Windows\ATK0100\ATKOSD.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Windows\System32\mobsync.exe
C:\Windows\system32\DllHost.exe
C:\Users\Sandra\Downloads\RSIT.exe
C:\Program Files\Trend Micro\HijackThis\Sandra.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\pdfforge Toolbar\SearchSettings.dll
R3 - URLSearchHook: P2P Max France Toolbar - {fe37be35-b028-49f9-bb0c-6a38c4e55b97} - C:\Program Files\P2P_Max_France\tbP2P_.dll
O1 - Hosts: ::1 localhost
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: AskBar BHO - {201f27d4-3704-41d6-89c1-aa35e39143ed} - C:\Program Files\AskBarDis\bar\bin\askBar.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: pdfforge Toolbar - {B922D405-6D13-4A2B-AE89-08A030DA4402} - C:\Program Files\pdfforge Toolbar\WidgiToolbarIE.dll
O2 - BHO: (no name) - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\pdfforge Toolbar\SearchSettings.dll
O2 - BHO: P2P Max France Toolbar - {fe37be35-b028-49f9-bb0c-6a38c4e55b97} - C:\Program Files\P2P_Max_France\tbP2P_.dll
O3 - Toolbar: pdfforge Toolbar - {B922D405-6D13-4A2B-AE89-08A030DA4402} - C:\Program Files\pdfforge Toolbar\WidgiToolbarIE.dll
O3 - Toolbar: Ask Toolbar - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - C:\Program Files\AskBarDis\bar\bin\askBar.dll
O3 - Toolbar: P2P Max France Toolbar - {fe37be35-b028-49f9-bb0c-6a38c4e55b97} - C:\Program Files\P2P_Max_France\tbP2P_.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [Hcontrol] C:\Windows\ATK0100\Hcontrol.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [SearchSettings] C:\Program Files\pdfforge Toolbar\SearchSettings.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\PROGRA~1\Java\JRE16~1.0_0\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\PROGRA~1\Java\JRE16~1.0_0\bin\ssv.dll
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O13 - Gopher Prefix:
O16 - DPF: {3860DD98-0549-4D50-AA72-5D17D200EE10} (Windows Live OneCare safety scanner control) - http://cdn.scan.onecare.live.com/resource/download/scanner/fr-fr/wlscctrl2.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: VAIO Event Service - Sony Corporation - C:\Program Files\Sony\VAIO Event Service\VESMgr.exe
End of file - 6568 bytes
======Scheduled tasks folder======
C:\Windows\tasks\Maintenance en 1 clic.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Aide pour le lien d'Adobe PDF Reader - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{201f27d4-3704-41d6-89c1-aa35e39143ed}]
AskBar BHO - C:\Program Files\AskBarDis\bar\bin\askBar.dll [2008-12-09 333192]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
RealPlayer Download and Record Plugin for Internet Explorer - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll [2008-11-03 308832]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
SSVHelper Class - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll [2008-06-10 509328]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-02-17 408440]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B922D405-6D13-4A2B-AE89-08A030DA4402}]
pdfforge Toolbar - C:\Program Files\pdfforge Toolbar\WidgiToolbarIE.dll [2009-01-30 650752]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E312764E-7706-43F1-8DAB-FCDD2B1E416D}]
C:\Program Files\pdfforge Toolbar\SearchSettings.dll [2009-01-30 1114112]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{fe37be35-b028-49f9-bb0c-6a38c4e55b97}]
P2P Max France Toolbar - C:\Program Files\P2P_Max_France\tbP2P_.dll [2009-04-01 2086936]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{B922D405-6D13-4A2B-AE89-08A030DA4402} - pdfforge Toolbar - C:\Program Files\pdfforge Toolbar\WidgiToolbarIE.dll [2009-01-30 650752]
{3041d03e-fd4b-44e0-b742-2d9b88305f98} - Ask Toolbar - C:\Program Files\AskBarDis\bar\bin\askBar.dll [2008-12-09 333192]
{fe37be35-b028-49f9-bb0c-6a38c4e55b97} - P2P Max France Toolbar - C:\Program Files\P2P_Max_France\tbP2P_.dll [2009-04-01 2086936]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-19 1008184]
"SoundMan"=C:\Windows\SOUNDMAN.EXE [2007-03-09 598016]
"Hcontrol"=C:\Windows\ATK0100\Hcontrol.exe [2007-04-06 61440]
"TkBellExe"=C:\Program Files\Common Files\Real\Update_OB\realsched.exe [2008-11-03 185872]
"SearchSettings"=C:\Program Files\pdfforge Toolbar\SearchSettings.exe [2009-01-30 992256]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\VESWinlogon]
C:\Windows\system32\VESWinlogon.dll [2007-01-11 98304]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{872664ba-5ed8-11de-b514-e79397d8c488}]
shell\AutoRun\command - explorer .
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{a01697b8-2b43-11dd-9ab6-080046dd0223}]
shell\AutoRun\command - Iexplores.exe
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 3 months======
2009-07-09 22:55:26 ----D---- C:\rsit
2009-07-09 22:55:26 ----D---- \rsit
2009-07-09 21:16:05 ----HD---- C:\Config.Msi
2009-07-09 21:16:05 ----HD---- \Config.Msi
2009-07-09 15:10:49 ----D---- C:\Program Files\Windows Live Safety Center
2009-07-02 21:31:50 ----D---- C:\Program Files\Conduit
2009-07-02 21:31:39 ----D---- C:\Program Files\P2P_Max_France
2009-07-02 21:31:12 ----D---- C:\ProgramData\Azureus
2009-07-02 21:31:02 ----D---- C:\Program Files\AskBarDis
2009-07-02 21:29:37 ----D---- C:\Program Files\Vuze
2009-06-17 12:01:30 ----A---- C:\Windows\system32\EncDec.dll
2009-06-17 12:01:29 ----A---- C:\Windows\system32\psisdecd.dll
2009-06-13 19:09:06 ----D---- C:\ProgramData\DVD Shrink
2009-06-13 19:09:02 ----D---- C:\Program Files\DVD Shrink
2009-06-12 15:51:47 ----A---- C:\Windows\system32\mshtml.dll
2009-06-12 15:51:42 ----A---- C:\Windows\system32\ieframe.dll
2009-06-12 15:51:40 ----A---- C:\Windows\system32\iertutil.dll
2009-06-12 15:51:39 ----A---- C:\Windows\system32\urlmon.dll
2009-06-12 15:51:38 ----A---- C:\Windows\system32\wininet.dll
2009-06-12 15:51:37 ----A---- C:\Windows\system32\iedkcs32.dll
2009-06-12 15:51:32 ----A---- C:\Windows\system32\jsproxy.dll
2009-06-12 15:51:32 ----A---- C:\Windows\system32\ieui.dll
2009-06-12 15:51:30 ----A---- C:\Windows\system32\ie4uinit.exe
2009-06-12 15:51:29 ----A---- C:\Windows\system32\iesetup.dll
2009-06-12 15:51:28 ----A---- C:\Windows\system32\iernonce.dll
2009-06-11 22:51:27 ----A---- C:\Windows\system32\localspl.dll
2009-06-11 21:20:09 ----A---- C:\Windows\system32\rpcrt4.dll
2009-06-05 18:17:44 ----D---- C:\Program Files\iPod
2009-06-05 18:17:05 ----D---- C:\Program Files\iTunes
2009-05-29 13:36:16 ----A---- C:\Windows\system32\usbaaplrc.dll
2009-04-30 11:11:34 ----HD---- C:\Windows\msdownld.tmp
2009-04-30 10:58:17 ----A---- C:\Windows\system32\mshtmled.dll
2009-04-30 10:58:17 ----A---- C:\Windows\system32\icardie.dll
2009-04-30 10:58:16 ----A---- C:\Windows\system32\msls31.dll
2009-04-30 10:58:16 ----A---- C:\Windows\system32\mshtmler.dll
2009-04-30 10:58:16 ----A---- C:\Windows\system32\corpol.dll
2009-04-30 10:58:16 ----A---- C:\Windows\system32\admparse.dll
2009-04-30 10:58:14 ----A---- C:\Windows\system32\imgutil.dll
2009-04-30 10:58:14 ----A---- C:\Windows\system32\ieakeng.dll
2009-04-30 10:58:14 ----A---- C:\Windows\system32\dxtrans.dll
2009-04-30 10:58:14 ----A---- C:\Windows\system32\dxtmsft.dll
2009-04-30 10:58:13 ----A---- C:\Windows\system32\msfeedsbs.dll
2009-04-30 10:58:13 ----A---- C:\Windows\system32\licmgr10.dll
2009-04-30 10:58:13 ----A---- C:\Windows\system32\inseng.dll
2009-04-30 10:58:13 ----A---- C:\Windows\system32\iepeers.dll
2009-04-30 10:58:12 ----A---- C:\Windows\system32\webcheck.dll
2009-04-30 10:58:12 ----A---- C:\Windows\system32\occache.dll
2009-04-30 10:58:12 ----A---- C:\Windows\system32\msrating.dll
2009-04-30 10:58:12 ----A---- C:\Windows\system32\ieaksie.dll
2009-04-30 10:58:11 ----A---- C:\Windows\system32\WinFXDocObj.exe
2009-04-30 10:58:11 ----A---- C:\Windows\system32\wextract.exe
2009-04-30 10:58:11 ----A---- C:\Windows\system32\mstime.dll
2009-04-30 10:58:11 ----A---- C:\Windows\system32\msfeedssync.exe
2009-04-30 10:58:11 ----A---- C:\Windows\system32\ieakui.dll
2009-04-30 10:58:10 ----A---- C:\Windows\system32\pngfilt.dll
2009-04-30 10:58:10 ----A---- C:\Windows\system32\msfeeds.dll
2009-04-30 10:58:10 ----A---- C:\Windows\system32\advpack.dll
2009-04-30 10:58:09 ----A---- C:\Windows\system32\ieapfltr.dll
2009-04-30 10:58:08 ----A---- C:\Windows\system32\vbscript.dll
2009-04-30 10:58:07 ----A---- C:\Windows\system32\url.dll
2009-04-30 10:58:07 ----A---- C:\Windows\system32\jscript.dll
2009-04-30 10:58:02 ----A---- C:\Windows\system32\mshta.exe
2009-04-30 10:58:02 ----A---- C:\Windows\system32\iexpress.exe
2009-04-30 10:58:01 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2009-04-30 10:58:01 ----A---- C:\Windows\system32\SetDepNx.exe
2009-04-30 10:58:01 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2009-04-30 10:58:01 ----A---- C:\Windows\system32\PDMSetup.exe
2009-04-30 10:58:01 ----A---- C:\Windows\system32\ieUnatt.exe
2009-04-30 10:58:01 ----A---- C:\Windows\system32\iesysprep.dll
2009-04-17 16:10:18 ----AD---- C:\ProgramData\rkfree
2009-04-17 13:28:22 ----D---- C:\Program Files\MSECache
2009-04-17 06:02:17 ----A---- C:\Windows\system32\winhttp.dll
2009-04-17 06:02:13 ----A---- C:\Windows\system32\xolehlp.dll
2009-04-17 06:02:13 ----A---- C:\Windows\system32\msdtcprx.dll
2009-04-17 06:01:47 ----A---- C:\Windows\system32\rpcss.dll
2009-04-17 06:01:47 ----A---- C:\Windows\system32\ntkrnlpa.exe
2009-04-17 06:01:46 ----A---- C:\Windows\system32\ntoskrnl.exe
2009-04-17 06:01:44 ----A---- C:\Windows\system32\printfilterpipelinesvc.exe
2009-04-17 06:01:43 ----A---- C:\Windows\system32\sdohlp.dll
2009-04-17 06:01:43 ----A---- C:\Windows\system32\printfilterpipelineprxy.dll
2009-04-17 06:01:43 ----A---- C:\Windows\system32\iasrecst.dll
2009-04-17 06:01:43 ----A---- C:\Windows\system32\iashost.exe
2009-04-17 06:01:43 ----A---- C:\Windows\system32\iasdatastore.dll
2009-04-17 06:01:43 ----A---- C:\Windows\system32\iasads.dll
2009-04-17 06:01:34 ----A---- C:\Windows\system32\lsasrv.dll
2009-04-17 06:01:34 ----A---- C:\Windows\system32\kernel32.dll
2009-04-17 06:01:33 ----A---- C:\Windows\system32\secur32.dll
2009-04-17 06:01:33 ----A---- C:\Windows\system32\apilogen.dll
2009-04-17 06:01:33 ----A---- C:\Windows\system32\amxread.dll
2009-04-12 19:34:34 ----D---- C:\Temp
2009-04-12 19:34:34 ----D---- \Temp
2009-04-12 19:24:01 ----D---- C:\Program Files\pdfforge Toolbar
2009-04-12 19:21:28 ----A---- C:\Windows\system32\pdfcmnnt.dll
2009-04-12 19:21:20 ----A---- C:\Windows\system32\VB6FR.DLL
2009-04-12 19:21:20 ----A---- C:\Windows\system32\MSCMCFR.DLL
2009-04-12 19:21:20 ----A---- C:\Windows\system32\MSCC2FR.DLL
2009-04-12 19:21:19 ----A---- C:\Windows\system32\MSMPIDE.DLL
2009-04-12 19:21:18 ----D---- C:\Program Files\PDFCreator
2009-04-10 03:00:43 ----A---- C:\Windows\system32\GEARAspi.dll
2009-04-10 02:59:42 ----D---- C:\ProgramData\{8CD7F5AF-ECFA-4793-BF40-D8F42DBFF906}
======List of files/folders modified in the last 3 months======
2009-07-09 22:55:39 ----D---- C:\Windows\Temp
2009-07-09 22:55:38 ----D---- C:\Windows\Prefetch
2009-07-09 21:50:39 ----D---- C:\Windows\System32
2009-07-09 21:50:39 ----D---- C:\Windows\inf
2009-07-09 21:50:39 ----A---- C:\Windows\system32\PerfStringBackup.INI
2009-07-09 21:30:18 ----RD---- C:\Program Files
2009-07-09 21:30:18 ----RD---- \Program Files
2009-07-09 21:25:10 ----HD---- C:\ProgramData
2009-07-09 21:25:10 ----HD---- \ProgramData
2009-07-09 21:25:00 ----D---- C:\Windows\system32\drivers
2009-07-09 21:24:13 ----SHD---- C:\System Volume Information
2009-07-09 21:24:13 ----SHD---- \System Volume Information
2009-07-09 21:16:23 ----SD---- C:\Windows\system32\Microsoft
2009-07-09 21:11:47 ----D---- C:\Program Files\RKFree
2009-07-09 15:50:35 ----SHD---- C:\Windows\Installer
2009-07-09 15:10:54 ----SD---- C:\Windows\Downloaded Program Files
2009-07-09 11:17:50 ----D---- C:\Windows\system32\catroot2
2009-07-02 20:55:42 ----D---- C:\Program Files\BitComet
2009-06-30 11:31:13 ----SD---- C:\ProgramData\Microsoft
2009-06-29 00:31:46 ----D---- C:\Windows\tracing
2009-06-25 01:16:12 ----D---- C:\Windows\winsxs
2009-06-25 01:16:12 ----D---- C:\Program Files\Internet Explorer
2009-06-24 13:34:14 ----D---- C:\Windows\system32\catroot
2009-06-23 23:46:43 ----D---- C:\Windows\system32\FxsTmp
2009-06-23 23:39:29 ----D---- C:\Windows
2009-06-23 23:39:29 ----D---- \Windows
2009-06-18 01:12:03 ----D---- C:\Windows\Microsoft.NET
2009-06-18 01:11:48 ----D---- C:\Windows\ehome
2009-06-18 01:10:51 ----D---- C:\ProgramData\Microsoft Help
2009-06-13 18:30:58 ----D---- C:\Windows\system
2009-06-13 18:30:41 ----D---- C:\Windows\system32\Tasks
2009-06-13 11:02:52 ----D---- C:\Program Files\Mozilla Firefox
2009-06-13 10:53:29 ----D---- C:\Windows\system32\migration
2009-06-05 18:17:39 ----D---- C:\Program Files\Common Files\Apple
2009-06-02 00:51:12 ----A---- C:\Windows\system32\mrt.exe
2009-05-14 08:10:33 ----RSD---- C:\Windows\assembly
2009-05-14 08:06:49 ----D---- C:\Program Files\Windows Mail
2009-05-10 00:54:13 ----D---- C:\Program Files\Common Files
2009-05-10 00:51:15 ----D---- C:\Program Files\Windows Live
2009-05-08 22:29:01 ----D---- C:\Windows\Minidump
2009-04-30 11:48:04 ----D---- C:\Windows\rescache
2009-04-30 11:21:32 ----D---- C:\Windows\system32\fr-FR
2009-04-30 11:21:24 ----D---- C:\Windows\system32\en-US
2009-04-30 11:21:24 ----D---- C:\Windows\PolicyDefinitions
2009-04-18 03:18:32 ----D---- C:\Windows\system32\wbem
2009-04-18 03:18:29 ----D---- C:\Windows\system32\manifeststore
2009-04-18 03:18:29 ----D---- C:\Windows\AppPatch
2009-04-10 03:00:41 ----DC---- C:\Windows\system32\DRVSTORE
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 CSC;Offline Files Driver; C:\Windows\system32\drivers\csc.sys [2008-01-19 350720]
R1 DMICall;Sony DMI Call service; C:\Windows\system32\DRIVERS\DMICall.sys [2006-10-19 10216]
R1 ssmdrv;ssmdrv; C:\Windows\system32\DRIVERS\ssmdrv.sys [2007-03-01 28352]
R3 Afc;PPdus ASPI Shell; C:\Windows\system32\drivers\Afc.sys [2005-02-23 11776]
R3 ALCXWDM;Service for Realtek AC97 Audio (WDM); C:\Windows\system32\drivers\RTKVAC.SYS [2008-03-25 4137312]
R3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2008-06-03 3695104]
R3 BthEnum;Bluetooth Request Block Driver; C:\Windows\system32\DRIVERS\BthEnum.sys [2008-01-19 19456]
R3 BTHUSB;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2008-04-29 29184]
R3 CmBatt;Microsoft ACPI Control Method Battery Driver; C:\Windows\system32\DRIVERS\CmBatt.sys [2008-01-19 14208]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys [2009-03-19 23400]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\Windows\system32\DRIVERS\ATKACPI.sys [2007-07-31 7680]
R3 NETw2v32;Intel(R) PRO/Wireless 2200BG Network Connection Driver for Windows Vista; C:\Windows\system32\DRIVERS\NETw2v32.sys [2006-11-02 2589184]
R3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2008-01-19 49664]
R3 SNC;Sony Notebook Control Device; C:\Windows\System32\Drivers\SonyNC.sys [2000-11-10 48896]
R3 SPI;Sony Programmable I/O Control Device; C:\Windows\system32\DRIVERS\SonyPI.sys [2002-08-20 71961]
R3 tifmsony;tifmsony; C:\Windows\system32\drivers\tifmsony.sys [2004-03-04 64512]
R3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-19 83328]
S3 ac97intc;Intel(r) 82801 Audio Driver Install Service (WDM); C:\Windows\system32\drivers\ac97intc.sys [2006-11-02 108032]
S3 auulgev4;auulgev4; C:\Windows\system32\drivers\auulgev4.sys []
S3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2008-01-19 92160]
S3 BTHPORT;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys [2008-04-29 220160]
S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2008-01-19 5632]
S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-19 8192]
S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-19 5888]
S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-19 5504]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2008-01-19 6016]
S3 R300;R300; C:\Windows\system32\DRIVERS\atikmdag.sys [2008-06-03 3695104]
S3 USBAAPL;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl.sys [2009-05-29 39424]
S3 usbscan;USB Scanner Driver; C:\Windows\system32\DRIVERS\usbscan.sys [2008-01-19 35328]
S4 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\drivers\wmiacpi.sys [2006-11-02 11264]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [2009-05-29 144712]
R2 Ati External Event Utility;Ati External Event Utility; C:\Windows\system32\Ati2evxx.exe [2008-06-03 684032]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2008-12-12 238888]
R2 BthServ;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2008-01-19 21504]
R2 CCALib8;Canon Camera Access Library 8; C:\Program Files\Canon\CAL\CALMAIN.exe [2005-09-30 96341]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2008-01-19 21504]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe [2006-10-26 335872]
R2 VAIO Event Service;VAIO Event Service; C:\Program Files\Sony\VAIO Event Service\VESMgr.exe [2007-01-11 202360]
S3 Adobe LM Service;Adobe LM Service; C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [2008-05-26 72704]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2008-01-19 21504]
S3 Fax;@%systemroot%\system32\fxsresm.dll,-118; C:\Windows\system32\fxssvc.exe [2008-01-19 523776]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [2005-11-14 69632]
S3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2009-05-30 541992]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2007-08-24 443776]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2008-01-19 21504]
S3 wbengine;@%systemroot%\system32\wbengine.exe,-104; C:\Windows\system32\wbengine.exe [2008-01-19 917504]
-----------------EOF-----------------