Maintenant, je joint ici le rapport de RSIT :
Merci beaucoup pour ton aide.
RSIT :
Logfile of random's system information tool 1.06 (written by random/random)
Run by Administrateur at 2009-10-09 13:41:22
Microsoft Windows XP Professionnel Service Pack 2
System drive I: has 60 GB (41%) free of 147 GB
Total RAM: 1013 MB (61% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 13:41:25, on 09/10/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
I:\WINDOWS\System32\smss.exe
I:\WINDOWS\system32\winlogon.exe
I:\WINDOWS\system32\services.exe
I:\WINDOWS\system32\lsass.exe
I:\WINDOWS\system32\svchost.exe
I:\WINDOWS\System32\svchost.exe
I:\WINDOWS\system32\spoolsv.exe
I:\Program Files\ANI\ANIWZCS2 Service\ANIWZCSdS.exe
I:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe
I:\WINDOWS\system32\CBASE.EXE
I:\WINDOWS\system32\svchost.exe
I:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe
I:\WINDOWS\explorer.exe
I:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe
I:\Program Files\Internet Explorer\IEXPLORE.EXE
I:\WINDOWS\system32\NOTEPAD.EXE
I:\WINDOWS\system32\NOTEPAD.EXE
I:\Documents and Settings\Administrateur\Bureau\FIX\RSIT.exe
I:\Program Files\trend micro\Administrateur.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.fr/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://fr.rd.yahoo.com/customize/ycomp/defaults/su/*http://fr.yahoo.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - I:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - I:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - I:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: SingleInstance Class - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - I:\Program Files\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - I:\WINDOWS\system32\msdxm.ocx
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - I:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [NeroFilterCheck] I:\Program Files\Fichiers communs\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [D-Link AirPlus XtremeG] I:\Program Files\D-Link\AirPlus XtremeG\AirPlusCFG.exe
O4 - HKLM\..\Run: [ANIWZCS2Service] I:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe
O4 - HKLM\..\Run: [IgfxTray] I:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] I:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] I:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [Omnipage] I:\Program Files\ScanSoft\OmniPageSE\opware32.exe
O4 - HKLM\..\Run: [aWINWORD.EXE] C:\security\Win32.vbs
O4 - HKLM\..\Run: [YSearchProtection] "I:\Program Files\Yahoo!\Search Protection\SearchProtection.exe"
O4 - HKLM\..\Run: [Malwarebytes Anti-Malware (reboot)] "I:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript
O4 - HKCU\..\Run: [Yahoo! Pager] "I:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quiet
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "I:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [Cld2000.exe] I:\Program Files\Calendrier\Cld2000.exe
O4 - HKCU\..\Run: [Search Protection] I:\Program Files\Yahoo!\Search Protection\SearchProtection.exe
O4 - HKCU\..\Run: [YSearchProtection] I:\Program Files\Yahoo!\Search Protection\SearchProtection.exe
O4 - Startup: Adobe Media Player.lnk = I:\Program Files\Adobe Media Player\Adobe Media Player.exe
O8 - Extra context menu item: Ajouter à Kaspersky Anti-Bannière - I:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\ie_banner_deny.htm
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://I:\PROGRA~1\Microsoft Office\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - I:\Program Files\Java\j2re1.4.2_05\bin\npjpi142_05.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - I:\Program Files\Java\j2re1.4.2_05\bin\npjpi142_05.dll
O9 - Extra button: Statistiques d’Anti-Virus Internet - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - I:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\SCIEPlgn.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - I:\PROGRA~1\Microsoft Office\Office12\REFIEBAR.DLL
O9 - Extra button: Barre de recherche Encarta - {B205A35E-1FC4-4CE3-818B-899DBBB3388C} - I:\Program Files\Fichiers communs\Microsoft Shared\Encarta Search Bar\ENCSBAR.DLL
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - I:\Program Files\Yahoo!\Common\Yinsthelper200711281.dll
O16 - DPF: {F7EDBBEA-1AD2-4EBF-AA07-D453CC29EE65} (Flash Casino Helper Control) - https://plugins.valueactive.eu/flashax/iefax.cab
O23 - Service: ANIWZCSd Service (ANIWZCSdService) - Alpha Networks Inc. - I:\Program Files\ANI\ANIWZCS2 Service\ANIWZCSdS.exe
O23 - Service: Kaspersky Internet Security 7.0 (AVP) - Kaspersky Lab - I:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe
O23 - Service: Sage Serveur - Sage - I:\WINDOWS\system32\CBASE.EXE
O23 - Service: Yahoo! Updater (YahooAUService) - Yahoo! Inc. - I:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe
End of file - 5891 bytes
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4efb-9B51-7695ECA05670}]
&Yahoo! Toolbar Helper - I:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll [2009-08-21 1180400]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
AcroIEHlprObj Class - I:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll [2003-11-03 54248]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FDAD4DA1-61A2-4FD8-9C17-86F7AC245081}]
SingleInstance Class - I:\Program Files\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll [2009-08-21 157936]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{8E718888-423F-11D2-876E-00A0C9082467} - &Radio - I:\WINDOWS\system32\msdxm.ocx [2004-08-04 848922]
{EF99BD32-C1FB-11D2-892F-0090271D4F88} - Yahoo! Toolbar - I:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll [2009-08-21 1180400]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NeroFilterCheck"=I:\Program Files\Fichiers communs\Ahead\Lib\NeroCheck.exe [2006-01-12 155648]
"D-Link AirPlus XtremeG"=I:\Program Files\D-Link\AirPlus XtremeG\AirPlusCFG.exe [2006-06-16 1323008]
"ANIWZCS2Service"=I:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe [2006-06-01 49152]
"IgfxTray"=I:\WINDOWS\system32\igfxtray.exe [2007-09-07 141848]
"HotKeysCmds"=I:\WINDOWS\system32\hkcmd.exe [2007-09-07 166424]
"Persistence"=I:\WINDOWS\system32\igfxpers.exe [2007-09-07 137752]
"Omnipage"=I:\Program Files\ScanSoft\OmniPageSE\opware32.exe [2002-06-03 49152]
"aWINWORD.EXE"=C:\security\Win32.vbs [2008-02-11 6494]
"YSearchProtection"=I:\Program Files\Yahoo!\Search Protection\SearchProtection.exe [2009-02-03 111856]
"Malwarebytes Anti-Malware (reboot)"=I:\Program Files\Malwarebytes' Anti-Malware\mbam.exe [2009-09-10 1312080]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Yahoo! Pager"=I:\Program Files\Yahoo!\Messenger\YahooMessenger.exe [2008-08-26 4670704]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=I:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe [2006-06-01 94208]
"Cld2000.exe"=I:\Program Files\Calendrier\Cld2000.exe [2008-10-30 3083776]
"Search Protection"=I:\Program Files\Yahoo!\Search Protection\SearchProtection.exe [2009-02-03 111856]
"YSearchProtection"=I:\Program Files\Yahoo!\Search Protection\SearchProtection.exe [2009-02-03 111856]
I:\Documents and Settings\Administrateur\Menu Démarrer\Programmes\Démarrage
Adobe Media Player.lnk - I:\Program Files\Adobe Media Player\Adobe Media Player.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
I:\WINDOWS\system32\igfxdev.dll [2007-08-24 208896]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\klogon]
I:\WINDOWS\system32\klogon.dll [2008-02-08 219664]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
UPnPMonitor - {e57ce738-33e8-4c51-8354-bb4de9d215d1} - I:\WINDOWS\system32\upnpui.dll [2004-08-04 240128]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"HonorAutoRunSetting"=1
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=
"NoDriveTypeAutoRun"=
"NoDrives"=
"HonorAutoRunSetting"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"I:\Program Files\MSN Messenger\msnmsgr.exe"="I:\Program Files\MSN Messenger\msnmsgr.exe:*:Enabled:MSN Messenger 6.2"
"I:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="I:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"I:\Program Files\Yahoo!\Messenger\YahooMessenger.exe"="I:\Program Files\Yahoo!\Messenger\YahooMessenger.exe:*:Enabled:Yahoo! Messenger"
"I:\Program Files\Yahoo!\Messenger\YServer.exe"="I:\Program Files\Yahoo!\Messenger\YServer.exe:*:Enabled:Yahoo! FT Server"
"I:\Program Files\FlightGear\bin\win32\fgfs.exe"="I:\Program Files\FlightGear\bin\win32\fgfs.exe:*:Enabled:fgfs"
"I:\Program Files\Nero\Nero 7\Nero ShowTime\ShowTime.exe"="I:\Program Files\Nero\Nero 7\Nero ShowTime\ShowTime.exe:*:Enabled:Nero ShowTime Essentials"
"I:\Program Files\Nero\Nero 7\Nero Home\NeroHome.exe"="I:\Program Files\Nero\Nero 7\Nero Home\NeroHome.exe:*:Disabled:Nero Home"
"I:\WINDOWS\system32\dpvsetup.exe"="I:\WINDOWS\system32\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test"
"I:\Documents and Settings\Administrateur\Bureau\HCopter.exe"="I:\Documents and Settings\Administrateur\Bureau\HCopter.exe:*:Enabled:Hell-Copter"
"I:\Program Files\ScanSoft\OmniPageSE\EregFre\NAVBrowser.exe"="I:\Program Files\ScanSoft\OmniPageSE\EregFre\NAVBrowser.exe:*:Enabled:NAVBrowser"
"I:\Documents and Settings\All Users\Application Data\Kaspersky Lab Setup Files\Kaspersky Internet Security 7.0.1.325\French\setup.exe"="I:\Documents and Settings\All Users\Application Data\Kaspersky Lab Setup Files\Kaspersky Internet Security 7.0.1.325\French\setup.exe:*:Enabled:Programme d'installation de Kaspersky Internet Security 7.0"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"I:\Program Files\MSN Messenger\msnmsgr.exe"="I:\Program Files\MSN Messenger\msnmsgr.exe:*:Enabled:MSN Messenger 6.2"
======List of files/folders created in the last 3 months======
2009-10-09 13:23:19 ----D---- I:\WINDOWS\temp
2009-10-09 13:23:09 ----A---- I:\ComboFix.txt
2009-10-07 12:00:29 ----A---- I:\WINDOWS\system32\WIN2PDFS.DLL
2009-10-07 12:00:29 ----A---- I:\WINDOWS\system32\WIN2PDFM.DLL
2009-10-07 12:00:29 ----A---- I:\WINDOWS\1way.ini
2009-10-07 10:00:58 ----A---- I:\WINDOWS\system32\LedCommon.dll
2009-10-07 10:00:57 ----A---- I:\WINDOWS\system32\ZlibOCX2.dll
2009-10-07 10:00:56 ----D---- I:\Program Files\LedConsommation
2009-09-28 12:39:46 ----A---- I:\WINDOWS\WININIT.INI
2009-09-24 10:33:43 ----D---- I:\My albums
2009-09-23 10:36:14 ----D---- I:\Documents and Settings\Administrateur\Application Data\Malwarebytes
2009-09-23 10:36:09 ----D---- I:\Program Files\Malwarebytes' Anti-Malware
2009-09-23 10:36:09 ----D---- I:\Documents and Settings\All Users\Application Data\Malwarebytes
2009-09-23 10:24:00 ----RAD---- I:\autorun.inf
2009-09-23 09:48:24 ----A---- I:\UsbFix.txt
2009-09-23 09:12:04 ----D---- I:\UsbFix
2009-09-22 15:12:36 ----A---- I:\WINDOWS\OEWABLog.txt
2009-09-22 14:57:35 ----A---- I:\WINDOWS\ntbtlog.txt
2009-09-22 14:45:37 ----D---- I:\Program Files\CCleaner
2009-09-22 13:57:35 ----A---- I:\WINDOWS\zip.exe
2009-09-22 13:57:35 ----A---- I:\WINDOWS\SWXCACLS.exe
2009-09-22 13:57:35 ----A---- I:\WINDOWS\SWSC.exe
2009-09-22 13:57:35 ----A---- I:\WINDOWS\SWREG.exe
2009-09-22 13:57:35 ----A---- I:\WINDOWS\sed.exe
2009-09-22 13:57:35 ----A---- I:\WINDOWS\PEV.exe
2009-09-22 13:57:35 ----A---- I:\WINDOWS\NIRCMD.exe
2009-09-22 13:57:35 ----A---- I:\WINDOWS\grep.exe
2009-09-22 13:57:23 ----D---- I:\WINDOWS\ERDNT
2009-09-22 13:53:51 ----D---- I:\Qoobox
2009-09-22 08:39:30 ----D---- I:\Program Files\trend micro
2009-09-22 08:39:29 ----D---- I:\rsit
2009-09-22 08:39:13 ----A---- I:\RSIT.exe
2009-09-18 15:28:40 ----D---- I:\Program Files\Enigma Software Group
2009-09-18 14:53:35 ----HD---- I:\WINDOWS\system32\GroupPolicy
2009-09-18 13:51:27 ----D---- I:\Program Files\Fichiers communs\Scanner
2009-09-18 13:51:24 ----D---- I:\Program Files\CA Yahoo! Anti-Spy
2009-09-18 13:44:41 ----D---- I:\Documents and Settings\All Users\Application Data\Yahoo! Companion
2009-09-18 13:00:32 ----D---- I:\Backups
2009-09-18 12:38:15 ----D---- I:\WINDOWS\ERUNT
2009-09-16 13:19:52 ----D---- I:\SDFix
2009-09-16 12:59:23 ----D---- I:\fixwareout
2009-08-21 08:19:37 ----D---- I:\Documents and Settings\All Users\Application Data\Kaspersky Lab Setup Files
2009-08-10 16:45:32 ----D---- I:\Microgaming
2009-08-10 16:45:32 ----D---- I:\Documents and Settings\All Users\Application Data\Microgaming
2009-08-10 16:45:32 ----D---- I:\Documents and Settings\All Users\Application Data\MGS
2009-07-30 18:43:19 ----D---- I:\Documents and Settings\All Users\Application Data\ScanSoft
2009-07-27 14:38:07 ----A---- I:\WINDOWS\system32\VBAR332.DLL
2009-07-27 14:38:07 ----A---- I:\WINDOWS\system32\VB5DB.DLL
2009-07-27 14:38:07 ----A---- I:\WINDOWS\system32\MSXBSE35.DLL
2009-07-27 14:38:07 ----A---- I:\WINDOWS\system32\MSTEXT35.DLL
2009-07-27 14:38:07 ----A---- I:\WINDOWS\system32\MSREPL35.DLL
2009-07-27 14:38:07 ----A---- I:\WINDOWS\system32\MSRD2X35.DLL
2009-07-27 14:38:07 ----A---- I:\WINDOWS\system32\MSPDOX35.DLL
2009-07-27 14:38:07 ----A---- I:\WINDOWS\system32\MSLTUS35.DLL
2009-07-27 14:38:07 ----A---- I:\WINDOWS\system32\MSJTER35.DLL
2009-07-27 14:38:07 ----A---- I:\WINDOWS\system32\MSJINT35.DLL
2009-07-27 14:38:07 ----A---- I:\WINDOWS\system32\MSJET35.DLL
2009-07-27 14:38:07 ----A---- I:\WINDOWS\system32\MSEXCL35.DLL
2009-07-27 14:38:04 ----D---- I:\Program Files\PaieFie2004
2009-07-27 14:37:51 ----A---- I:\WINDOWS\unin040c.exe
======List of files/folders modified in the last 3 months======
2009-10-09 13:35:47 ----D---- I:\Documents and Settings\All Users\Application Data\Kaspersky Lab
2009-10-09 13:23:23 ----D---- I:\WINDOWS\system32
2009-10-09 13:23:19 ----D---- I:\WINDOWS
2009-10-09 13:20:24 ----A---- I:\WINDOWS\system.ini
2009-10-09 13:18:12 ----D---- I:\WINDOWS\system32\drivers
2009-10-09 13:18:12 ----D---- I:\WINDOWS\AppPatch
2009-10-09 13:18:07 ----D---- I:\Program Files\Fichiers communs
2009-10-09 13:13:55 ----D---- I:\WINDOWS\system32\CatRoot2
2009-10-09 13:13:21 ----A---- I:\WINDOWS\SchedLgU.Txt
2009-10-09 13:10:57 ----RSHDC---- I:\WINDOWS\system32\dllcache
2009-10-09 13:04:21 ----D---- I:\WINDOWS\Prefetch
2009-10-09 12:39:44 ----RD---- I:\Program Files
2009-10-07 12:01:35 ----D---- I:\Documents and Settings\Administrateur\Application Data\Canon
2009-10-05 15:44:28 ----SHD---- I:\WINDOWS\Installer
2009-10-05 08:23:15 ----D---- I:\Documents and Settings\Administrateur\Application Data\dvdcss
2009-10-02 10:04:21 ----A---- I:\WINDOWS\NeroDigital.ini
2009-09-28 12:39:46 ----D---- I:\Program Files\Ubisoft
2009-09-22 15:12:19 ----D---- I:\Documents and Settings
2009-09-22 14:53:21 ----D---- I:\WINDOWS\Debug
2009-09-18 18:07:11 ----D---- I:\Program Files\Internet Explorer
2009-09-18 14:42:18 ----SHD---- I:\System Volume Information
2009-09-18 14:42:18 ----D---- I:\WINDOWS\system32\Restore
2009-09-18 13:47:03 ----D---- I:\Documents and Settings\Administrateur\Application Data\Yahoo!
2009-09-18 13:45:59 ----D---- I:\Program Files\Yahoo!
2009-09-18 13:45:22 ----D---- I:\Documents and Settings\All Users\Application Data\Yahoo!
2009-09-18 12:41:20 ----D---- I:\INSTALL
2009-09-16 13:27:20 ----D---- I:\Documents and Settings\Administrateur\Application Data\U3
2009-09-16 12:12:49 ----D---- I:\Program Files\Zylom Games
2009-09-14 16:00:04 ----D---- I:\Documents and Settings\Administrateur\Application Data\AdobeUM
2009-08-21 08:21:28 ----HD---- I:\WINDOWS\inf
2009-08-21 08:21:23 ----D---- I:\WINDOWS\system32\CatRoot
2009-08-21 08:21:03 ----D---- I:\Program Files\Kaspersky Lab
2009-08-10 16:46:32 ----SD---- I:\WINDOWS\Downloaded Program Files
2009-07-31 09:28:40 ----D---- I:\Documents and Settings\All Users\Application Data\SSScanAppDataDir
2009-07-27 14:45:36 ----A---- I:\WINDOWS\control.ini
2009-07-27 12:16:35 ----SD---- I:\Documents and Settings\Administrateur\Application Data\Microsoft
2009-07-10 08:56:30 ----A---- I:\WINDOWS\CSTBox.INI
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 intelppm;Pilote de processeur Intel; I:\WINDOWS\system32\DRIVERS\intelppm.sys [2004-08-04 40320]
R1 klif;Klif; \??\I:\WINDOWS\system32\drivers\klif.sys []
R2 ANIO;ANIO Service; \??\I:\WINDOWS\system32\ANIO.SYS []
R2 Aspi32;Aspi32; I:\WINDOWS\system32\drivers\Aspi32.sys [2002-07-17 16877]
R3 A3AB;D-Link AirPro 802.11a/b Wireless Adapter Service(A3AB); I:\WINDOWS\system32\DRIVERS\A3AB.sys [2006-05-11 472096]
R3 catchme;catchme; \??\I:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\catchme.sys []
R3 HDAudBus;Pilote de bus Microsoft UAA pour High Definition Audio; I:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2005-01-07 138752]
R3 ialm;ialm; I:\WINDOWS\system32\DRIVERS\igxpmp32.sys [2007-08-24 5776928]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); I:\WINDOWS\system32\drivers\RtkHDAud.sys [2007-05-30 4424192]
R3 klim5;Kaspersky Anti-Virus NDIS Filter; I:\WINDOWS\system32\DRIVERS\klim5.sys [2007-12-13 24592]
R3 pfc;Padus ASPI Shell; I:\WINDOWS\system32\drivers\pfc.sys [2003-03-20 9856]
R3 usbehci;Pilote miniport de contrôleur d'hôte amélioré Microsoft USB 2.0; I:\WINDOWS\system32\DRIVERS\usbehci.sys [2004-08-03 26624]
R3 usbhub;Pilote de concentrateur standard USB Microsoft; I:\WINDOWS\system32\DRIVERS\usbhub.sys [2004-08-03 57600]
R3 usbscan;Pilote de scanneur USB; I:\WINDOWS\system32\DRIVERS\usbscan.sys [2004-08-03 15104]
R3 usbstor;Pilote de stockage de masse USB; I:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2004-08-03 26496]
R3 usbuhci;Pilote miniport de contrôleur hôte universel USB Microsoft; I:\WINDOWS\system32\DRIVERS\usbuhci.sys [2004-08-03 20480]
S3 b57w2k;Broadcom NetXtreme Gigabit Ethernet; I:\WINDOWS\system32\DRIVERS\b57xp32.sys [2001-08-23 97248]
S3 CCDECODE;Décodeur sous-titre fermé; I:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2004-08-03 17024]
S3 HidUsb;Pilote de classe HID Microsoft; I:\WINDOWS\system32\DRIVERS\hidusb.sys [2001-08-17 9600]
S3 MSTEE;Convertisseur en T/site-à-site de répartition Microsoft; I:\WINDOWS\system32\drivers\MSTEE.sys [2004-08-03 5504]
S3 NABTSFEC;Codec NABTS/FEC VBI; I:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2004-08-03 85376]
S3 NdisIP;Connection TV/vidéo Microsoft; I:\WINDOWS\system32\DRIVERS\NdisIP.sys [2004-08-03 10880]
S3 SLIP;Détrameur décalage BDA; I:\WINDOWS\system32\DRIVERS\SLIP.sys [2004-08-03 11136]
S3 streamip;BDA IPSink; I:\WINDOWS\system32\DRIVERS\StreamIP.sys [2004-08-03 15360]
S3 usbccgp;Pilote parent générique USB Microsoft; I:\WINDOWS\system32\DRIVERS\usbccgp.sys [2004-08-03 31616]
S3 usbprint;Classe d'imprimantes USB Microsoft; I:\WINDOWS\system32\DRIVERS\usbprint.sys [2004-08-03 25856]
S3 usbvideo;Périphérique vidéo USB (WDM); I:\WINDOWS\System32\Drivers\usbvideo.sys [2004-08-03 78464]
S3 WpdUsb;WpdUsb; I:\WINDOWS\System32\Drivers\wpdusb.sys [2004-08-11 18944]
S3 WSTCODEC;Codec Teletext standard; I:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2004-08-03 19328]
S4 IntelIde;IntelIde; I:\WINDOWS\system32\drivers\IntelIde.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 ANIWZCSdService;ANIWZCSd Service; I:\Program Files\ANI\ANIWZCS2 Service\ANIWZCSdS.exe [2005-10-19 49152]
R2 AVP;Kaspersky Internet Security 7.0; I:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe [2008-02-08 227856]
R2 Sage Serveur;Sage Serveur; I:\WINDOWS\system32\CBASE.EXE [2007-11-09 405504]
R2 UMWdf;Windows User Mode Driver Framework; I:\WINDOWS\system32\wdfmgr.exe [2004-08-11 38912]
R2 YahooAUService;Yahoo! Updater; I:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe [2008-11-09 602392]
S3 aspnet_state;ASP.NET State Service; I:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2005-09-23 29896]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; I:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2005-09-23 66240]
S3 odserv;Microsoft Office Diagnostics Service; I:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; I:\Program Files\Fichiers communs\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
-----------------EOF-----------------