voici le rapport :
SpyHolesList Version:2.1
2007-06-21 19:29:06
WinDir=C:\WINDOWS
Startup=C:\Documents and Settings\Propriétaire\Menu Démarrer\Programmes\Démarrage\
Common Startup=C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage\
Microsoft Windows XP Service Pack 2 (5.1.2600)
Internet Explorer 7.0.5730.11
[Internet Explorer]
[Default Home Page] :HKLM Default_Page_URL=
http://go.microsoft.com/fwlink/?LinkId=69157
[Current Home Page] :HKCU Start Page=
http://mail.google.com/...
[Current Home Page] :HKCU HOMEOldSP=""
[Search URL Template] :HKLM 1=www.%s.com
[Search URL Template] :HKLM 2=www.%s.org
[Search URL Template] :HKLM 3=www.%s.net
[Search URL Template] :HKLM 4=www.%s.edu
[All Users Search] :HKLM Default_Search_URL=
http://go.microsoft.com/fwlink/?LinkId=54896
[All Users Search] :HKLM Search Page=
http://go.microsoft.com/fwlink/?LinkId=54896
[Current Users Search] :HKCU Search Page=
http://www.google.com
[Current Users Search] :HKCU Search Bar=
http://www.google.com/ie
[IE Local Blank Page] :HKCU Local Page=C:\WINDOWS\system32\blank.htm
[IE Local Blank Page] :HKLM Local Page=%SystemRoot%\system32\blank.htm
[Browser Helper Objects] {02559246-DCAD-4EF3-BF06-022B103795BF}
[Browser Helper Objects] {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}=C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
[Browser Helper Objects] {07D7F044-2F5F-41B2-BAA5-936814AF0163}=C:\Program Files\Pure Networks\Network Magic\nmbrhelp.dll
[Browser Helper Objects] {0C5F8E13-4386-484F-97BD-09CBB27B9447}=C:\Program Files\Pure Networks\Network Magic\nmbrhelp.dll
[Browser Helper Objects] {22BF413B-C6D2-4d91-82A9-A0F997BA588C}=C:\PROGRA~1\Skype\Phone\IEPlugin\SKYPEI~1.DLL
[Browser Helper Objects] {53707962-6F74-2D53-2644-206D7942484F}=C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
[Browser Helper Objects] {761497BB-D6F0-462C-B6EB-D4DAF1D92D43}=C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
[Browser Helper Objects] {7DC4B28A-24C9-4226-99CA-D4A663EE6312}=C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
[Browser Helper Objects] {9030D464-4C02-4ABF-8ECC-5164760863C6}=C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
[Browser Helper Objects] {AA58ED58-01DD-4d91-8333-CF10577473F7}=c:\program files\google\googletoolbar2.dll
[Browser Helper Objects] {AF69DE43-7D58-4638-B6FA-CE66B5AD205D}=C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.5672\swg.dll
[Auto Search URL] :HKCU provider=""
[Auto Search URL] :HKCU "Default Value"=""
[Search Assistant] :HKCU SearchAssistant=""
[Search Assistant] :HKLM SearchAssistant=
http://www.google.com/ie
[Search Assistant] :HKCU CustomizeSearch=""
[Search Assistant] :HKLM CustomizeSearch=
http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
[CustomizeSearch] :HKLM CustomizeSearch=""
[URLSearchHook] :HKCU {CFBFAE00-17A6-11D0-99CB-00C04FD64497}=C:\WINDOWS\system32\ieframe.dll
[Default Prefix] :HKLM "Default Value"=
http://
[URL Default Prefixes] :HKLM ftp=
ftp://
[URL Default Prefixes] :HKLM gopher=gopher://
[URL Default Prefixes] :HKLM home=
http://
[URL Default Prefixes] :HKLM mosaic=
http://
[URL Default Prefixes] :HKLM www=
http://
[Safe Sites] :HKLM ie.search.msn.com=
http://ie.search.msn.com/*
[AboutURLs] :HKLM NavigationFailure=res://ieframe.dll/navcancl.htm
[AboutURLs] :HKLM DesktopItemNavigationFailure=res://ieframe.dll/navcancl.htm
[AboutURLs] :HKLM NavigationCanceled=res://ieframe.dll/navcancl.htm
[AboutURLs] :HKLM OfflineInformation=res://ieframe.dll/offcancl.htm
[AboutURLs] :HKLM Home=270
[AboutURLs] :HKLM blank=res://mshtml.dll/blank.htm
[AboutURLs] :HKLM PostNotCached=res://ieframe.dll/repost.htm
[AboutURLs] :HKLM NoAdd-ons=res://ieframe.dll/noaddon.htm
[AboutURLs] :HKLM NoAdd-onsInfo=res://ieframe.dll/noaddoninfo.htm
[AboutURLs] :HKLM SecurityRisk=res://ieframe.dll/securityatrisk.htm
[AboutURLs] :HKLM Tabs=res://ieframe.dll/tabswelcome.htm
[User Style Sheet] :HKCU User Stylesheet=""
[User Style Sheet] :HKUS User Stylesheet=""
[User Style Sheet] :HKCU Use My Stylesheet=0
[User Style Sheet] :HKUS Use My Stylesheet=0
[Execute unsigned ActiveX in My Computer Zone] :HKCU 1201=1
[Execute unsigned ActiveX in My Computer Zone] :HKLM 1201=1
[Execute unsigned ActiveX in Local Intranet Zone] :HKCU 1201=3
[Execute unsigned ActiveX in Local Intranet Zone] :HKLM 1201=3
[Execute unsigned ActiveX in Internet Zone] :HKCU 1201=3
[Execute unsigned ActiveX in Internet Zone] :HKLM 1201=3
[Links Toolbar] :HKCU LinksFolderName=Liens
[Toolbars] :HKLM {2318C2B1-4965-11d4-9B18-009027A5CD4F}=c:\program files\google\googletoolbar2.dll
[Explorer Bars] :HKLM {4D5C8C25-D075-11d0-B416-00C04FB90376}=%SystemRoot%\system32\shdocvw.dll
[IE Extensions - All Users] :HKLM {08B0E5C0-4FCB-11CF-AAA5-00401C608501}=%SystemRoot%\system32\shdocvw.dll
[IE Extensions - All Users] :HKLM {77BF5300-1474-4EC7-9980-D32B190E9B07}=%SystemRoot%\system32\shdocvw.dll
[IE Extensions - All Users] :HKLM {92780B25-18CC-41C8-B9BE-3C9C571A8263}=C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
[IE Extensions - All Users] :HKLM {e2e2dd38-d088-4134-82b7-f2ba38496583}=%windir%\Network Diagnostic\xpnetdiag.exe
[IE Extensions - All Users] :HKLM {FB5F1910-F110-11d2-BB9E-00C04F795683}=C:\Program Files\Messenger\msmsgs.exe
[Proxy] :HKCU ProxyServer=""
[Proxy] :HKCU ProxyEnable=0
[Network Settings]
[Hosts File Path] :HKLM DataBasePath=%SystemRoot%\System32\drivers\etc
[Hosts File Contents] :HKLM 127.0.0.1 localhost
[Domain Name] :HKLM Domain=""
[Name Server] {30914C43-61F9-4532-B9CB-99F893E7EAEC}=192.168.0.1
[WinSock2 Components] :HKLM mswsock.dll=%SystemRoot%\System32\mswsock.dll
[WinSock2 Components] :HKLM winrnr.dll=%SystemRoot%\System32\winrnr.dll
[WinSock2 Components] :HKLM rsvpsp.dll=%SystemRoot%\system32\rsvpsp.dll
[Software Components]
[Internet Components] :HKLM C:\WINDOWS\system32\LegitCheckControl.DLL=C:\WINDOWS\system32\LegitCheckControl.DLL
[Internet Components] :HKLM C:\WINDOWS\system32\muweb.dll=C:\WINDOWS\system32\muweb.dll
[Windows Shell]
[Display Scrap's Extensions] :HKLM NeverShowExt=""
[ScreenSaver] :HKCU SCRNSAVE.EXE=C:\WINDOWS\system32\ssmypics.scr
[System.ini] shell=Explorer.exe
[Main File Extensions] :HKLM .exe="%1" %*
[Main File Extensions] :HKLM .com="%1" %*
[Main File Extensions] :HKLM .pif="%1" %*
[Main File Extensions] :HKLM .cmd="%1" %*
[Main File Extensions] :HKLM .scr="%1" /S
[Main File Extensions] :HKLM .jpg=rundll32.exe C:\WINDOWS\system32\shimgvw.dll,ImageView_Fullscreen %1
[Main File Extensions] :HKLM .jpeg=rundll32.exe C:\WINDOWS\system32\shimgvw.dll,ImageView_Fullscreen %1
[Shell Execute Hooks] :HKLM {AEB6717E-7E19-11d0-97EE-00C04FD91972}=shell32.dll
[Shell Execute Hooks] :HKLM {C72F5FE1-85FF-4BE1-AA6D-BC39456D39CB}=shell32.dll
[Shell Execute Hooks] :HKLM {57B86673-276A-48B2-BAE7-C6DBB3020EB8}=C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\shellexecutehook.dll
[UserInit Value] :HKLM UserInit=C:\WINDOWS\system32\userinit.exe,
[Winlogon Notification] :HKLM AtiExtEvent=Ati2evxx.dll
[Winlogon Notification] :HKLM crypt32chain=crypt32.dll
[Winlogon Notification] :HKLM cryptnet=cryptnet.dll
[Winlogon Notification] :HKLM cscdll=cscdll.dll
[Winlogon Notification] :HKLM gebyy=C:\WINDOWS\system32\gebyy.dll
[Winlogon Notification] :HKLM jkkjk=C:\WINDOWS\system32\jkkjk.dll
[Winlogon Notification] :HKLM pmnnlmm=pmnnlmm.dll
[Winlogon Notification] :HKLM ScCertProp=wlnotify.dll
[Winlogon Notification] :HKLM Schedule=wlnotify.dll
[Winlogon Notification] :HKLM sclgntfy=sclgntfy.dll
[Winlogon Notification] :HKLM SensLogn=WlNotify.dll
[Winlogon Notification] :HKLM ssqpm=C:\WINDOWS\system32\ssqpm.dll
[Winlogon Notification] :HKLM termsrv=wlnotify.dll
[Winlogon Notification] :HKLM WgaLogon=WgaLogon.dll
[Winlogon Notification] :HKLM wlballoon=wlnotify.dll
[Shell Services DelayLoad] :HKLM PostBootReminder=%SystemRoot%\system32\SHELL32.dll
[Shell Services DelayLoad] :HKLM CDBurn=%SystemRoot%\system32\SHELL32.dll
[Shell Services DelayLoad] :HKLM WebCheck=C:\WINDOWS\system32\webcheck.dll
[Shell Services DelayLoad] :HKLM SysTray=C:\WINDOWS\system32\stobject.dll
[Shell Services DelayLoad] :HKLM WPDShServiceObj=C:\WINDOWS\system32\WPDShServiceObj.dll
[Prevents Display in Control Panel from running.] :HKCU NoDispCpl=0
[Disable Registry Tools] :HKCU DisableRegistryTools =0
[SharedTaskScheduler] :HKLM {438755C2-A8BA-11D1-B96B-00A0C90312E1}=%SystemRoot%\system32\browseui.dll
[SharedTaskScheduler] :HKLM {8C7461EF-2B13-11d2-BE35-3078302C2030}=%SystemRoot%\system32\browseui.dll
[Kernel Auto Boot]
[ActiveSetup] >{22d6f312-b0f6-11d0-94ab-0080c74c7e95}=C:\WINDOWS\inf\unregmp2.exe /ShowWMP
[Bootexecute] :HKLM BootExecute=Partizan
autocheck autochk *
[KnownDLLs] :HKLM advapi32=advapi32.dll
[KnownDLLs] :HKLM comdlg32=comdlg32.dll
[KnownDLLs] :HKLM DllDirectory=%SystemRoot%\system32
[KnownDLLs] :HKLM gdi32=gdi32.dll
[KnownDLLs] :HKLM imagehlp=imagehlp.dll
[KnownDLLs] :HKLM kernel32=kernel32.dll
[KnownDLLs] :HKLM lz32=lz32.dll
[KnownDLLs] :HKLM ole32=ole32.dll
[KnownDLLs] :HKLM oleaut32=oleaut32.dll
[KnownDLLs] :HKLM olecli32=olecli32.dll
[KnownDLLs] :HKLM olecnv32=olecnv32.dll
[KnownDLLs] :HKLM olesvr32=olesvr32.dll
[KnownDLLs] :HKLM olethk32=olethk32.dll
[KnownDLLs] :HKLM rpcrt4=rpcrt4.dll
[KnownDLLs] :HKLM shell32=shell32.dll
[KnownDLLs] :HKLM url=url.dll
[KnownDLLs] :HKLM urlmon=urlmon.dll
[KnownDLLs] :HKLM user32=user32.dll
[KnownDLLs] :HKLM version=version.dll
[KnownDLLs] :HKLM wininet=wininet.dll
[KnownDLLs] :HKLM wldap32=wldap32.dll
[Environment - Path] :HKLM Path=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\ATI Technologies\ATI Control Panel;C:\Program Files\Fichiers communs\Adobe\AGL;C:\Program Files\QuickTime\QTSystem\
[List of Injected DLLs] :HKLM AppInit_DLLs=C:\PROGRA~1\Google\GOOGLE~4\GOEC62~1.DLL
[Auto Services] aswUpdSv
[Auto Services] Ati HotKey Poller
[Auto Services] AudioSrv
[Auto Services] avast! Antivirus
[Auto Services] AVG Anti-Spyware Guard
[Auto Services] Browser
[Auto Services] CLTNetCnService
[Auto Services] CryptSvc
[Auto Services] DcomLaunch
[Auto Services] Dhcp
[Auto Services] Dnscache
[Auto Services] ERSvc
[Auto Services] Eventlog
[Auto Services] gusvc
[Auto Services] helpsvc
[Auto Services] HidServ
[Auto Services] Irmon
[Auto Services] lanmanserver
[Auto Services] lanmanworkstation
[Auto Services] LmHosts
[Auto Services] nmservice
[Auto Services] PlugPlay
[Auto Services] PolicyAgent
[Auto Services] ProtectedStorage
[Auto Services] RpcSs
[Auto Services] SamSs
[Auto Services] Schedule
[Auto Services] seclogon
[Auto Services] SENS
[Auto Services] SharedAccess
[Auto Services] ShellHWDetection
[Auto Services] Spooler
[Auto Services] srservice
[Auto Services] stisvc
[Auto Services] Themes
[Auto Services] TrkWks
[Auto Services] W32Time
[Auto Services] WebClient
[Auto Services] winmgmt
[Auto Services] wuauserv
[Auto Services] WZCSVC
[Drivers] ntkrnlpa.exe=C:\WINDOWS\SYSTEM32\NTKRNLPA.EXE
[Drivers] hal.dll=C:\WINDOWS\SYSTEM32\HAL.DLL
[Drivers] KDCOM.DLL=C:\WINDOWS\SYSTEM32\KDCOM.DLL
[Drivers] BOOTVID.dll=C:\WINDOWS\SYSTEM32\BOOTVID.DLL
[Drivers] ACPI.sys=C:\WINDOWS\system32\DRIVERS\ACPI.sys
[Drivers] WMILIB.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\WMILIB.SYS
[Drivers] pci.sys=C:\WINDOWS\system32\DRIVERS\pci.sys
[Drivers] isapnp.sys=C:\WINDOWS\system32\DRIVERS\isapnp.sys
[Drivers] ohci1394.sys=C:\WINDOWS\system32\DRIVERS\ohci1394.sys
[Drivers] 1394BUS.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\1394BUS.SYS
[Drivers] compbatt.sys=C:\WINDOWS\system32\DRIVERS\compbatt.sys
[Drivers] BATTC.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\BATTC.SYS
[Drivers] pciide.sys=C:\WINDOWS\system32\DRIVERS\pciide.sys
[Drivers] PCIIDEX.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\PCIIDEX.SYS
[Drivers] intelide.sys=C:\WINDOWS\system32\DRIVERS\intelide.sys
[Drivers] pcmcia.sys=C:\WINDOWS\system32\DRIVERS\pcmcia.sys
[Drivers] MountMgr.sys=C:\WINDOWS\system32\DRIVERS\MountMgr.sys
[Drivers] ftdisk.sys=C:\WINDOWS\system32\DRIVERS\ftdisk.sys
[Drivers] ACPIEC.sys=C:\WINDOWS\system32\DRIVERS\ACPIEC.sys
[Drivers] OPRGHDLR.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\OPRGHDLR.SYS
[Drivers] PartMgr.sys=C:\WINDOWS\system32\DRIVERS\PartMgr.sys
[Drivers] VolSnap.sys=C:\WINDOWS\system32\DRIVERS\VolSnap.sys
[Drivers] atapi.sys=C:\WINDOWS\system32\DRIVERS\atapi.sys
[Drivers] disk.sys=C:\WINDOWS\system32\DRIVERS\disk.sys
[Drivers] CLASSPNP.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\CLASSPNP.SYS
[Drivers] fltMgr.sys=C:\WINDOWS\system32\DRIVERS\fltMgr.sys
[Drivers] PxHelp20.sys=C:\WINDOWS\system32\DRIVERS\PxHelp20.sys
[Drivers] KSecDD.sys=C:\WINDOWS\system32\DRIVERS\KSecDD.sys
[Drivers] Ntfs.sys=C:\WINDOWS\system32\DRIVERS\Ntfs.sys
[Drivers] NDIS.sys=C:\WINDOWS\system32\DRIVERS\NDIS.sys
[Drivers] Mup.sys=C:\WINDOWS\system32\DRIVERS\Mup.sys
[Drivers] nic1394.sys=C:\WINDOWS\SYSTEM32\DRIVERS\NIC1394.SYS
[Drivers] intelppm.sys=C:\WINDOWS\SYSTEM32\DRIVERS\INTELPPM.SYS
[Drivers] wmiacpi.sys=C:\WINDOWS\SYSTEM32\DRIVERS\WMIACPI.SYS
[Drivers] CmBatt.sys=C:\WINDOWS\SYSTEM32\DRIVERS\CMBATT.SYS
[Drivers] ati2mtag.sys=C:\WINDOWS\SYSTEM32\DRIVERS\ATI2MTAG.SYS
[Drivers] VIDEOPRT.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\VIDEOPRT.SYS
[Drivers] HDAudBus.sys=C:\WINDOWS\SYSTEM32\DRIVERS\HDAUDBUS.SYS
[Drivers] yk51x86.sys=C:\WINDOWS\SYSTEM32\DRIVERS\YK51X86.SYS
[Drivers] usbuhci.sys=C:\WINDOWS\SYSTEM32\DRIVERS\USBUHCI.SYS
[Drivers] USBPORT.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\USBPORT.SYS
[Drivers] usbehci.sys=C:\WINDOWS\SYSTEM32\DRIVERS\USBEHCI.SYS
[Drivers] tifm.sys=C:\WINDOWS\SYSTEM32\DRIVERS\TIFM.SYS
[Drivers] w29n51.sys=C:\WINDOWS\SYSTEM32\DRIVERS\W29N51.SYS
[Drivers] serial.sys=C:\WINDOWS\SYSTEM32\DRIVERS\SERIAL.SYS
[Drivers] serenum.sys=C:\WINDOWS\SYSTEM32\DRIVERS\SERENUM.SYS
[Drivers] parport.sys=C:\WINDOWS\SYSTEM32\DRIVERS\PARPORT.SYS
[Drivers] smcirda.sys=C:\WINDOWS\SYSTEM32\DRIVERS\SMCIRDA.SYS
[Drivers] irenum.sys=C:\WINDOWS\SYSTEM32\DRIVERS\IRENUM.SYS
[Drivers] i8042prt.sys=C:\WINDOWS\SYSTEM32\DRIVERS\I8042PRT.SYS
[Drivers] kbdclass.sys=C:\WINDOWS\SYSTEM32\DRIVERS\KBDCLASS.SYS
[Drivers] SynTP.sys=C:\WINDOWS\SYSTEM32\DRIVERS\SYNTP.SYS
[Drivers] USBD.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\USBD.SYS
[Drivers] mouclass.sys=C:\WINDOWS\SYSTEM32\DRIVERS\MOUCLASS.SYS
[Drivers] imapi.sys=C:\WINDOWS\SYSTEM32\DRIVERS\IMAPI.SYS
[Drivers] pfc.sys=C:\WINDOWS\SYSTEM32\DRIVERS\PFC.SYS
[Drivers] cdrom.sys=C:\WINDOWS\SYSTEM32\DRIVERS\CDROM.SYS
[Drivers] redbook.sys=C:\WINDOWS\SYSTEM32\DRIVERS\REDBOOK.SYS
[Drivers] ks.sys=C:\WINDOWS\SYSTEM32\DRIVERS\KS.SYS
[Drivers] GEARAspiWDM.sys=C:\WINDOWS\SYSTEM32\DRIVERS\GEARASPIWDM.SYS
[Drivers] audstub.sys=C:\WINDOWS\SYSTEM32\DRIVERS\AUDSTUB.SYS
[Drivers] rasirda.sys=C:\WINDOWS\SYSTEM32\DRIVERS\RASIRDA.SYS
[Drivers] TDI.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\TDI.SYS
[Drivers] rasl2tp.sys=C:\WINDOWS\SYSTEM32\DRIVERS\RASL2TP.SYS
[Drivers] ndistapi.sys=C:\WINDOWS\SYSTEM32\DRIVERS\NDISTAPI.SYS
[Drivers] ndiswan.sys=C:\WINDOWS\SYSTEM32\DRIVERS\NDISWAN.SYS
[Drivers] raspppoe.sys=C:\WINDOWS\SYSTEM32\DRIVERS\RASPPPOE.SYS
[Drivers] raspptp.sys=C:\WINDOWS\SYSTEM32\DRIVERS\RASPPTP.SYS
[Drivers] psched.sys=C:\WINDOWS\SYSTEM32\DRIVERS\PSCHED.SYS
[Drivers] msgpc.sys=C:\WINDOWS\SYSTEM32\DRIVERS\MSGPC.SYS
[Drivers] ptilink.sys=C:\WINDOWS\SYSTEM32\DRIVERS\PTILINK.SYS
[Drivers] raspti.sys=C:\WINDOWS\SYSTEM32\DRIVERS\RASPTI.SYS
[Drivers] termdd.sys=C:\WINDOWS\SYSTEM32\DRIVERS\TERMDD.SYS
[Drivers] swenum.sys=C:\WINDOWS\SYSTEM32\DRIVERS\SWENUM.SYS
[Drivers] update.sys=C:\WINDOWS\SYSTEM32\DRIVERS\UPDATE.SYS
[Drivers] mssmbios.sys=C:\WINDOWS\SYSTEM32\DRIVERS\MSSMBIOS.SYS
[Drivers] NDProxy.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\NDPROXY.SYS
[Drivers] cmudax.sys=C:\WINDOWS\SYSTEM32\DRIVERS\CMUDAX.SYS
[Drivers] portcls.sys=C:\WINDOWS\SYSTEM32\DRIVERS\PORTCLS.SYS
[Drivers] drmk.sys=C:\WINDOWS\SYSTEM32\DRIVERS\DRMK.SYS
[Drivers] lgsnd_filter.sys=C:\WINDOWS\SYSTEM32\DRIVERS\LGSND_FILTER.SYS
[Drivers] AGRSM.sys=C:\WINDOWS\SYSTEM32\DRIVERS\AGRSM.SYS
[Drivers] Modem.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\MODEM.SYS
[Drivers] usbhub.sys=C:\WINDOWS\SYSTEM32\DRIVERS\USBHUB.SYS
[Drivers] Fs_Rec.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\FS_REC.SYS
[Drivers] Null.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\NULL.SYS
[Drivers] Beep.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\BEEP.SYS
[Drivers] AvgAsCln.sys=C:\WINDOWS\SYSTEM32\DRIVERS\AVGASCLN.SYS
[Drivers] HIDPARSE.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\HIDPARSE.SYS
[Drivers] vga.sys=C:\WINDOWS\SYSTEM32\DRIVERS\VGA.SYS
[Drivers] mnmdd.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\MNMDD.SYS
[Drivers] RDPCDD.sys=C:\WINDOWS\SYSTEM32\DRIVERS\RDPCDD.SYS
[Drivers] Msfs.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\MSFS.SYS
[Drivers] Npfs.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\NPFS.SYS
[Drivers] rasacd.sys=C:\WINDOWS\SYSTEM32\DRIVERS\RASACD.SYS
[Drivers] ipsec.sys=C:\WINDOWS\SYSTEM32\DRIVERS\IPSEC.SYS
[Drivers] tcpip.sys=C:\WINDOWS\SYSTEM32\DRIVERS\TCPIP.SYS
[Drivers] aswTdi.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\ASWTDI.SYS
[Drivers] netbt.sys=C:\WINDOWS\SYSTEM32\DRIVERS\NETBT.SYS
[Drivers] ndisipo.sys=C:\WINDOWS\SYSTEM32\DRIVERS\NDISIPO.SYS
[Drivers] afd.sys=C:\WINDOWS\SYSTEM32\DRIVERS\AFD.SYS
[Drivers] netbios.sys=C:\WINDOWS\SYSTEM32\DRIVERS\NETBIOS.SYS
[Drivers] rdbss.sys=C:\WINDOWS\SYSTEM32\DRIVERS\RDBSS.SYS
[Drivers] mrxsmb.sys=C:\WINDOWS\SYSTEM32\DRIVERS\MRXSMB.SYS
[Drivers] Fips.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\FIPS.SYS
[Drivers] ipnat.sys=C:\WINDOWS\SYSTEM32\DRIVERS\IPNAT.SYS
[Drivers] wanarp.sys=C:\WINDOWS\SYSTEM32\DRIVERS\WANARP.SYS
[Drivers] arp1394.sys=C:\WINDOWS\SYSTEM32\DRIVERS\ARP1394.SYS
[Drivers] eeCtrl.sys=C:\PROGRAM FILES\FICHIERS COMMUNS\SYMANTEC SHARED\EENGINE\EECTRL.SYS
[Drivers] guard.sys=C:\PROGRAM FILES\GRISOFT\AVG ANTI-SPYWARE 7.5\GUARD.SYS
[Drivers] Aavmker4.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\AAVMKER4.SYS
[Drivers] hidusb.sys=C:\WINDOWS\SYSTEM32\DRIVERS\HIDUSB.SYS
[Drivers] HIDCLASS.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\HIDCLASS.SYS
[Drivers] mouhid.sys=C:\WINDOWS\SYSTEM32\DRIVERS\MOUHID.SYS
[Drivers] Cdfs.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\CDFS.SYS
[Drivers] kbdhid.sys=C:\WINDOWS\SYSTEM32\DRIVERS\KBDHID.SYS
[Drivers] atapi.sys=C:\WINDOWS\SYSTEM32\DRIVERS\DUMP_ATAPI.SYS
[Drivers] WMILIB.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\DUMP_WMILIB.SYS
[Drivers] win32k.sys=C:\WINDOWS\SYSTEM32\WIN32K.SYS
[Drivers] Dxapi.sys=C:\WINDOWS\SYSTEM32\DRIVERS\DXAPI.SYS
[Drivers] watchdog.sys=C:\WINDOWS\SYSTEM32\WATCHDOG.SYS
[Drivers] dxg.sys=C:\WINDOWS\SYSTEM32\DRIVERS\DXG.SYS
[Drivers] dxgthk.sys=C:\WINDOWS\SYSTEM32\DRIVERS\DXGTHK.SYS
[Drivers] ati2dvag.dll=C:\WINDOWS\SYSTEM32\ATI2DVAG.DLL
[Drivers] ati2cqag.dll=C:\WINDOWS\SYSTEM32\ATI2CQAG.DLL
[Drivers] atikvmag.dll=C:\WINDOWS\SYSTEM32\ATIKVMAG.DLL
[Drivers] ati3duag.dll=C:\WINDOWS\SYSTEM32\ATI3DUAG.DLL
[Drivers] ativvaxx.dll=C:\WINDOWS\SYSTEM32\ATIVVAXX.DLL
[Drivers] irda.sys=C:\WINDOWS\SYSTEM32\DRIVERS\IRDA.SYS
[Drivers] ndisuio.sys=C:\WINDOWS\SYSTEM32\DRIVERS\NDISUIO.SYS
[Drivers] purendis.sys=C:\WINDOWS\SYSTEM32\DRIVERS\PURENDIS.SYS
[Drivers] aswMon2.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\ASWMON2.SYS
[Drivers] mrxdav.sys=C:\WINDOWS\SYSTEM32\DRIVERS\MRXDAV.SYS
[Drivers] wdmaud.sys=C:\WINDOWS\SYSTEM32\DRIVERS\WDMAUD.SYS
[Drivers] sysaudio.sys=C:\WINDOWS\SYSTEM32\DRIVERS\SYSAUDIO.SYS
[Drivers] ParVdm.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\PARVDM.SYS
[Drivers] srv.sys=C:\WINDOWS\SYSTEM32\DRIVERS\SRV.SYS
[Drivers] aswRdr.SYS=C:\WINDOWS\SYSTEM32\DRIVERS\ASWRDR.SYS
[Drivers] HTTP.sys=C:\WINDOWS\SYSTEM32\DRIVERS\HTTP.SYS
[Drivers] kmixer.sys=C:\WINDOWS\SYSTEM32\DRIVERS\KMIXER.SYS
[Drivers] ntdll.dll=C:\WINDOWS\SYSTEM32\NTDLL.DLL
[Services detected by Partizan] :HKLM Aavmker4
[Services detected by Partizan] :HKLM Abiosdsk
[Services detected by Partizan] :HKLM abp480n5
[Services detected by Partizan] :HKLM ACPI=system32\DRIVERS\ACPI.sys
[Services detected by Partizan] :HKLM ACPIEC=system32\DRIVERS\ACPIEC.sys
[Services detected by Partizan] :HKLM Adobe LM Service="C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe"
[Services detected by Partizan] :HKLM adpu160m
[Services detected by Partizan] :HKLM aec=system32\drivers\aec.sys
[Services detected by Partizan] :HKLM AFD=\SystemRoot\System32\drivers\afd.sys
[Services detected by Partizan] :HKLM AgereSoftModem=system32\DRIVERS\AGRSM.sys
[Services detected by Partizan] :HKLM Aha154x
[Services detected by Partizan] :HKLM aic78u2
[Services detected by Partizan] :HKLM aic78xx
[Services detected by Partizan] :HKLM Alerter=%SystemRoot%\system32\svchost.exe -k LocalService
[Services detected by Partizan] :HKLM ALG=%SystemRoot%\System32\alg.exe
[Services detected by Partizan] :HKLM AliIde
[Services detected by Partizan] :HKLM amsint
[Services detected by Partizan] :HKLM AppMgmt=%SystemRoot%\system32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM Arp1394=system32\DRIVERS\arp1394.sys
[Services detected by Partizan] :HKLM asc
[Services detected by Partizan] :HKLM asc3350p
[Services detected by Partizan] :HKLM asc3550
[Services detected by Partizan] :HKLM aswMon2
[Services detected by Partizan] :HKLM aswRdr
[Services detected by Partizan] :HKLM aswTdi
[Services detected by Partizan] :HKLM aswUpdSv="C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe"
[Services detected by Partizan] :HKLM AsyncMac=system32\DRIVERS\asyncmac.sys
[Services detected by Partizan] :HKLM atapi=system32\DRIVERS\atapi.sys
[Services detected by Partizan] :HKLM Atdisk
[Services detected by Partizan] :HKLM Ati HotKey Poller=%SystemRoot%\system32\Ati2evxx.exe
[Services detected by Partizan] :HKLM ati2mtag=system32\DRIVERS\ati2mtag.sys
[Services detected by Partizan] :HKLM Atierecord
[Services detected by Partizan] :HKLM Atmarpc=system32\DRIVERS\atmarpc.sys
[Services detected by Partizan] :HKLM AudioSrv=%SystemRoot%\System32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM audstub=system32\DRIVERS\audstub.sys
[Services detected by Partizan] :HKLM avast! Antivirus="C:\Program Files\Alwil Software\Avast4\ashServ.exe"
[Services detected by Partizan] :HKLM avast! Mail Scanner="C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service
[Services detected by Partizan] :HKLM avast! Web Scanner="C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service
[Services detected by Partizan] :HKLM AVG Anti-Spyware Driver=\??\C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.sys
[Services detected by Partizan] :HKLM AVG Anti-Spyware Guard=C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
[Services detected by Partizan] :HKLM AvgAsCln=System32\DRIVERS\AvgAsCln.sys
[Services detected by Partizan] :HKLM BattC
[Services detected by Partizan] :HKLM Beep
[Services detected by Partizan] :HKLM BITS=%SystemRoot%\system32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM Browser=%SystemRoot%\system32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM cbidf2k
[Services detected by Partizan] :HKLM CCDECODE=system32\DRIVERS\CCDECODE.sys
[Services detected by Partizan] :HKLM cd20xrnt
[Services detected by Partizan] :HKLM Cdaudio
[Services detected by Partizan] :HKLM Cdfs
[Services detected by Partizan] :HKLM Cdrom=system32\DRIVERS\cdrom.sys
[Services detected by Partizan] :HKLM Changer
[Services detected by Partizan] :HKLM CiSvc=%SystemRoot%\system32\cisvc.exe
[Services detected by Partizan] :HKLM ClipSrv=%SystemRoot%\system32\clipsrv.exe
[Services detected by Partizan] :HKLM CLTNetCnService="C:\Program Files\Fichiers communs\Symantec Shared\ccSvcHst.exe" /h ccCommon
[Services detected by Partizan] :HKLM CmBatt=system32\DRIVERS\CmBatt.sys
[Services detected by Partizan] :HKLM CmdIde
[Services detected by Partizan] :HKLM cmudax=system32\drivers\cmudax.sys
[Services detected by Partizan] :HKLM Compbatt=system32\DRIVERS\compbatt.sys
[Services detected by Partizan] :HKLM COMSysApp=C:\WINDOWS\system32\dllhost.exe /Processid:{02D4B3F1-FD88-11D1-960D-00805FC79235}
[Services detected by Partizan] :HKLM ContentFilter
[Services detected by Partizan] :HKLM ContentIndex
[Services detected by Partizan] :HKLM Cpqarray
[Services detected by Partizan] :HKLM CryptSvc=%SystemRoot%\system32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM dac2w2k
[Services detected by Partizan] :HKLM dac960nt
[Services detected by Partizan] :HKLM DcomLaunch=%SystemRoot%\system32\svchost -k DcomLaunch
[Services detected by Partizan] :HKLM Dhcp=%SystemRoot%\system32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM Disk=system32\DRIVERS\disk.sys
[Services detected by Partizan] :HKLM dmadmin=%SystemRoot%\System32\dmadmin.exe /com
[Services detected by Partizan] :HKLM dmboot=System32\drivers\dmboot.sys
[Services detected by Partizan] :HKLM dmio=System32\drivers\dmio.sys
[Services detected by Partizan] :HKLM dmload=System32\drivers\dmload.sys
[Services detected by Partizan] :HKLM dmserver=%SystemRoot%\System32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM DMusic=system32\drivers\DMusic.sys
[Services detected by Partizan] :HKLM Dnscache=%SystemRoot%\system32\svchost.exe -k NetworkService
[Services detected by Partizan] :HKLM dpti2o
[Services detected by Partizan] :HKLM drmkaud=system32\drivers\drmkaud.sys
[Services detected by Partizan] :HKLM eeCtrl=\??\C:\Program Files\Fichiers communs\Symantec Shared\EENGINE\eeCtrl.sys
[Services detected by Partizan] :HKLM ERSvc=%SystemRoot%\System32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM Eventlog=%SystemRoot%\system32\services.exe
[Services detected by Partizan] :HKLM EventSystem=C:\WINDOWS\system32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM Fastfat
[Services detected by Partizan] :HKLM FastUserSwitchingCompatibility=%SystemRoot%\System32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM Fdc
[Services detected by Partizan] :HKLM Fips
[Services detected by Partizan] :HKLM Flpydisk
[Services detected by Partizan] :HKLM FltMgr=system32\DRIVERS\fltMgr.sys
[Services detected by Partizan] :HKLM Fs_Rec
[Services detected by Partizan] :HKLM Ftdisk=system32\DRIVERS\ftdisk.sys
[Services detected by Partizan] :HKLM GEARAspiWDM=System32\Drivers\GEARAspiWDM.sys
[Services detected by Partizan] :HKLM GoogleDesktopManager="C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe"
[Services detected by Partizan] :HKLM Gpc=system32\DRIVERS\msgpc.sys
[Services detected by Partizan] :HKLM gusvc="C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe"
[Services detected by Partizan] :HKLM HdAudAddService=system32\drivers\HdAudio.sys
[Services detected by Partizan] :HKLM HDAudBus=system32\DRIVERS\HDAudBus.sys
[Services detected by Partizan] :HKLM helpsvc=%SystemRoot%\System32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM HidServ=%SystemRoot%\System32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM hidusb=system32\DRIVERS\hidusb.sys
[Services detected by Partizan] :HKLM hpn
[Services detected by Partizan] :HKLM HTTP=System32\Drivers\HTTP.sys
[Services detected by Partizan] :HKLM HTTPFilter=%SystemRoot%\System32\svchost.exe -k HTTPFilter
[Services detected by Partizan] :HKLM i2omgmt
[Services detected by Partizan] :HKLM i2omp
[Services detected by Partizan] :HKLM i8042prt=system32\DRIVERS\i8042prt.sys
[Services detected by Partizan] :HKLM Imapi=system32\DRIVERS\imapi.sys
[Services detected by Partizan] :HKLM ImapiService=C:\WINDOWS\system32\imapi.exe
[Services detected by Partizan] :HKLM inetaccs
[Services detected by Partizan] :HKLM ini910u
[Services detected by Partizan] :HKLM Inport
[Services detected by Partizan] :HKLM IntelIde=system32\DRIVERS\intelide.sys
[Services detected by Partizan] :HKLM intelppm=system32\DRIVERS\intelppm.sys
[Services detected by Partizan] :HKLM Ip6Fw=system32\DRIVERS\Ip6Fw.sys
[Services detected by Partizan] :HKLM IpFilterDriver=system32\DRIVERS\ipfltdrv.sys
[Services detected by Partizan] :HKLM IpInIp=system32\DRIVERS\ipinip.sys
[Services detected by Partizan] :HKLM IpNat=system32\DRIVERS\ipnat.sys
[Services detected by Partizan] :HKLM iPod Service="C:\Program Files\iPod\bin\iPodService.exe"
[Services detected by Partizan] :HKLM IPOperator
[Services detected by Partizan] :HKLM IPSec=system32\DRIVERS\ipsec.sys
[Services detected by Partizan] :HKLM irda=system32\DRIVERS\irda.sys
[Services detected by Partizan] :HKLM IRENUM=system32\DRIVERS\irenum.sys
[Services detected by Partizan] :HKLM Irmon=%SystemRoot%\system32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM ISAPISearch
[Services detected by Partizan] :HKLM isapnp=system32\DRIVERS\isapnp.sys
[Services detected by Partizan] :HKLM Kbdclass=system32\DRIVERS\kbdclass.sys
[Services detected by Partizan] :HKLM kbdhid=system32\DRIVERS\kbdhid.sys
[Services detected by Partizan] :HKLM kmixer=system32\drivers\kmixer.sys
[Services detected by Partizan] :HKLM KSecDD
[Services detected by Partizan] :HKLM lanmanserver=%SystemRoot%\system32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM lanmanworkstation=%SystemRoot%\system32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM lbrtfdc
[Services detected by Partizan] :HKLM ldap
[Services detected by Partizan] :HKLM LGCPU100
[Services detected by Partizan] :HKLM lgsnd_filter=system32\drivers\lgsnd_filter.sys
[Services detected by Partizan] :HKLM LG_Wallpaper
[Services detected by Partizan] :HKLM LicenseService
[Services detected by Partizan] :HKLM LmHosts=%SystemRoot%\system32\svchost.exe -k LocalService
[Services detected by Partizan] :HKLM Messenger=%SystemRoot%\system32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM mnmdd
[Services detected by Partizan] :HKLM mnmsrvc=C:\WINDOWS\system32\mnmsrvc.exe
[Services detected by Partizan] :HKLM Modem
[Services detected by Partizan] :HKLM Mouclass=system32\DRIVERS\mouclass.sys
[Services detected by Partizan] :HKLM mouhid=system32\DRIVERS\mouhid.sys
[Services detected by Partizan] :HKLM MountMgr
[Services detected by Partizan] :HKLM mraid35x
[Services detected by Partizan] :HKLM MRxDAV=system32\DRIVERS\mrxdav.sys
[Services detected by Partizan] :HKLM MRxSmb=system32\DRIVERS\mrxsmb.sys
[Services detected by Partizan] :HKLM MSDTC=C:\WINDOWS\system32\msdtc.exe
[Services detected by Partizan] :HKLM Msfs
[Services detected by Partizan] :HKLM MSIServer=C:\WINDOWS\system32\msiexec.exe /V
[Services detected by Partizan] :HKLM MSKSSRV=system32\drivers\MSKSSRV.sys
[Services detected by Partizan] :HKLM MSPCLOCK=system32\drivers\MSPCLOCK.sys
[Services detected by Partizan] :HKLM MSPQM=system32\drivers\MSPQM.sys
[Services detected by Partizan] :HKLM mssmbios=system32\DRIVERS\mssmbios.sys
[Services detected by Partizan] :HKLM MSTEE=system32\drivers\MSTEE.sys
[Services detected by Partizan] :HKLM Mup
[Services detected by Partizan] :HKLM NABTSFEC=system32\DRIVERS\NABTSFEC.sys
[Services detected by Partizan] :HKLM NDIS
[Services detected by Partizan] :HKLM NdisIP=system32\DRIVERS\NdisIP.sys
[Services detected by Partizan] :HKLM Ndisipo=system32\DRIVERS\ndisipo.sys
[Services detected by Partizan] :HKLM NdisTapi=system32\DRIVERS\ndistapi.sys
[Services detected by Partizan] :HKLM Ndisuio=system32\DRIVERS\ndisuio.sys
[Services detected by Partizan] :HKLM NdisWan=system32\DRIVERS\ndiswan.sys
[Services detected by Partizan] :HKLM NDProxy
[Services detected by Partizan] :HKLM NetBIOS=system32\DRIVERS\netbios.sys
[Services detected by Partizan] :HKLM NetBT=system32\DRIVERS\netbt.sys
[Services detected by Partizan] :HKLM NetDDE=%SystemRoot%\system32\netdde.exe
[Services detected by Partizan] :HKLM NetDDEdsdm=%SystemRoot%\system32\netdde.exe
[Services detected by Partizan] :HKLM Netlogon=%SystemRoot%\system32\lsass.exe
[Services detected by Partizan] :HKLM Netman=%SystemRoot%\System32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM NIC1394=system32\DRIVERS\nic1394.sys
[Services detected by Partizan] :HKLM Nla=%SystemRoot%\system32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM nmraapache="C:\Program Files\Pure Networks\Network Magic\WebServer\bin\nmraapache.exe" -k runservice
[Services detected by Partizan] :HKLM nmservice="C:\Program Files\Pure Networks\Network Magic\nmsrvc.exe"
[Services detected by Partizan] :HKLM Npfs
[Services detected by Partizan] :HKLM Ntfs
[Services detected by Partizan] :HKLM NtLmSsp=%SystemRoot%\system32\lsass.exe
[Services detected by Partizan] :HKLM NtmsSvc=%SystemRoot%\system32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM Null
[Services detected by Partizan] :HKLM NwlnkFlt=system32\DRIVERS\nwlnkflt.sys
[Services detected by Partizan] :HKLM NwlnkFwd=system32\DRIVERS\nwlnkfwd.sys
[Services detected by Partizan] :HKLM ohci1394=system32\DRIVERS\ohci1394.sys
[Services detected by Partizan] :HKLM ose="C:\Program Files\Fichiers communs\Microsoft Shared\Source Engine\OSE.EXE"
[Services detected by Partizan] :HKLM Parport=system32\DRIVERS\parport.sys
[Services detected by Partizan] :HKLM Partizan=system32\drivers\Partizan.sys
[Services detected by Partizan] :HKLM PartMgr
[Services detected by Partizan] :HKLM ParVdm
[Services detected by Partizan] :HKLM PCI=system32\DRIVERS\pci.sys
[Services detected by Partizan] :HKLM PCIDump
[Services detected by Partizan] :HKLM PCIIde=system32\DRIVERS\pciide.sys
[Services detected by Partizan] :HKLM Pcmcia=system32\DRIVERS\pcmcia.sys
[Services detected by Partizan] :HKLM PDCOMP
[Services detected by Partizan] :HKLM PDFRAME
[Services detected by Partizan] :HKLM PDRELI
[Services detected by Partizan] :HKLM PDRFRAME
[Services detected by Partizan] :HKLM perc2
[Services detected by Partizan] :HKLM perc2hib
[Services detected by Partizan] :HKLM PerfDisk
[Services detected by Partizan] :HKLM PerfNet
[Services detected by Partizan] :HKLM PerfOS
[Services detected by Partizan] :HKLM PerfProc
[Services detected by Partizan] :HKLM pfc=system32\drivers\pfc.sys
[Services detected by Partizan] :HKLM PlugPlay=%SystemRoot%\system32\services.exe
[Services detected by Partizan] :HKLM PolicyAgent=%SystemRoot%\system32\lsass.exe
[Services detected by Partizan] :HKLM PptpMiniport=system32\DRIVERS\raspptp.sys
[Services detected by Partizan] :HKLM ProtectedStorage=%SystemRoot%\system32\lsass.exe
[Services detected by Partizan] :HKLM PSched=system32\DRIVERS\psched.sys
[Services detected by Partizan] :HKLM Ptilink=system32\DRIVERS\ptilink.sys
[Services detected by Partizan] :HKLM purendis=system32\DRIVERS\purendis.sys
[Services detected by Partizan] :HKLM PxHelp20=System32\Drivers\PxHelp20.sys
[Services detected by Partizan] :HKLM ql1080
[Services detected by Partizan] :HKLM Ql10wnt
[Services detected by Partizan] :HKLM ql12160
[Services detected by Partizan] :HKLM ql1240
[Services detected by Partizan] :HKLM ql1280
[Services detected by Partizan] :HKLM RasAcd=system32\DRIVERS\rasacd.sys
[Services detected by Partizan] :HKLM RasAuto=%SystemRoot%\system32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM Rasirda=system32\DRIVERS\rasirda.sys
[Services detected by Partizan] :HKLM Rasl2tp=system32\DRIVERS\rasl2tp.sys
[Services detected by Partizan] :HKLM RasMan=%SystemRoot%\system32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM RasPppoe=system32\DRIVERS\raspppoe.sys
[Services detected by Partizan] :HKLM Raspti=system32\DRIVERS\raspti.sys
[Services detected by Partizan] :HKLM Rdbss=system32\DRIVERS\rdbss.sys
[Services detected by Partizan] :HKLM RDPCDD=System32\DRIVERS\RDPCDD.sys
[Services detected by Partizan] :HKLM RDPDD
[Services detected by Partizan] :HKLM RDPNP
[Services detected by Partizan] :HKLM RDPWD
[Services detected by Partizan] :HKLM RDSessMgr=C:\WINDOWS\system32\sessmgr.exe
[Services detected by Partizan] :HKLM redbook=system32\DRIVERS\redbook.sys
[Services detected by Partizan] :HKLM RemoteAccess=%SystemRoot%\system32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM RMan
[Services detected by Partizan] :HKLM RpcLocator=%SystemRoot%\system32\locator.exe
[Services detected by Partizan] :HKLM RpcSs=%SystemRoot%\system32\svchost -k rpcss
[Services detected by Partizan] :HKLM RSVP=%SystemRoot%\system32\rsvp.exe
[Services detected by Partizan] :HKLM SamSs=%SystemRoot%\system32\lsass.exe
[Services detected by Partizan] :HKLM SCardSvr=%SystemRoot%\System32\SCardSvr.exe
[Services detected by Partizan] :HKLM Schedule=%SystemRoot%\System32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM Secdrv=system32\DRIVERS\secdrv.sys
[Services detected by Partizan] :HKLM seclogon=%SystemRoot%\System32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM SENS=%SystemRoot%\system32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM serenum=system32\DRIVERS\serenum.sys
[Services detected by Partizan] :HKLM Serial=system32\DRIVERS\serial.sys
[Services detected by Partizan] :HKLM Sfloppy
[Services detected by Partizan] :HKLM SharedAccess=%SystemRoot%\system32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM ShellHWDetection=%SystemRoot%\System32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM Simbad
[Services detected by Partizan] :HKLM SLIP=system32\DRIVERS\SLIP.sys
[Services detected by Partizan] :HKLM SMCIRDA=system32\DRIVERS\smcirda.sys
[Services detected by Partizan] :HKLM Sparrow
[Services detected by Partizan] :HKLM splitter=system32\drivers\splitter.sys
[Services detected by Partizan] :HKLM Spooler=%SystemRoot%\system32\spoolsv.exe
[Services detected by Partizan] :HKLM sr=\SystemRoot\system32\DRIVERS\sr.sys
[Services detected by Partizan] :HKLM srservice=%SystemRoot%\system32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM Srv=system32\DRIVERS\srv.sys
[Services detected by Partizan] :HKLM SSDPSRV=%SystemRoot%\system32\svchost.exe -k LocalService
[Services detected by Partizan] :HKLM stisvc=%SystemRoot%\system32\svchost.exe -k imgsvc
[Services detected by Partizan] :HKLM streamip=system32\DRIVERS\StreamIP.sys
[Services detected by Partizan] :HKLM swenum=system32\DRIVERS\swenum.sys
[Services detected by Partizan] :HKLM swmidi=system32\drivers\swmidi.sys
[Services detected by Partizan] :HKLM SwPrv=C:\WINDOWS\system32\dllhost.exe /Processid:{7B06F0E1-5FA9-4BCA-BF53-B24A4DFD2308}
[Services detected by Partizan] :HKLM symc810
[Services detected by Partizan] :HKLM symc8xx
[Services detected by Partizan] :HKLM sym_hi
[Services detected by Partizan] :HKLM sym_u3
[Services detected by Partizan] :HKLM SynTP=system32\DRIVERS\SynTP.sys
[Services detected by Partizan] :HKLM sysaudio=system32\drivers\sysaudio.sys
[Services detected by Partizan] :HKLM SysmonLog=%SystemRoot%\system32\smlogsvc.exe
[Services detected by Partizan] :HKLM TapiSrv=%SystemRoot%\System32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM Tcpip=system32\DRIVERS\tcpip.sys
[Services detected by Partizan] :HKLM TDPIPE
[Services detected by Partizan] :HKLM TDTCP
[Services detected by Partizan] :HKLM TermDD=system32\DRIVERS\termdd.sys
[Services detected by Partizan] :HKLM TermService=%SystemRoot%\System32\svchost -k DComLaunch
[Services detected by Partizan] :HKLM Themes=%SystemRoot%\System32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM tifm=system32\drivers\tifm.sys
[Services detected by Partizan] :HKLM TosIde
[Services detected by Partizan] :HKLM TrkWks=%SystemRoot%\system32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM TSDDD
[Services detected by Partizan] :HKLM Udfs
[Services detected by Partizan] :HKLM ultra
[Services detected by Partizan] :HKLM Update=system32\DRIVERS\update.sys
[Services detected by Partizan] :HKLM upnphost=%SystemRoot%\system32\svchost.exe -k LocalService
[Services detected by Partizan] :HKLM UPS=%SystemRoot%\System32\ups.exe
[Services detected by Partizan] :HKLM usbehci=system32\DRIVERS\usbehci.sys
[Services detected by Partizan] :HKLM usbhub=system32\DRIVERS\usbhub.sys
[Services detected by Partizan] :HKLM USBSTOR=system32\DRIVERS\USBSTOR.SYS
[Services detected by Partizan] :HKLM usbuhci=system32\DRIVERS\usbuhci.sys
[Services detected by Partizan] :HKLM usnsvc=C:\WINDOWS\system32\svchost.exe -k usnsvc
[Services detected by Partizan] :HKLM VgaSave=\SystemRoot\System32\drivers\vga.sys
[Services detected by Partizan] :HKLM ViaIde
[Services detected by Partizan] :HKLM VolSnap
[Services detected by Partizan] :HKLM VSS=%SystemRoot%\System32\vssvc.exe
[Services detected by Partizan] :HKLM VXD
[Services detected by Partizan] :HKLM w29n51=system32\DRIVERS\w29n51.sys
[Services detected by Partizan] :HKLM W32Time=%SystemRoot%\System32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM W3SVC
[Services detected by Partizan] :HKLM Wanarp=system32\DRIVERS\wanarp.sys
[Services detected by Partizan] :HKLM WDICA
[Services detected by Partizan] :HKLM wdmaud=system32\drivers\wdmaud.sys
[Services detected by Partizan] :HKLM WebClient=%SystemRoot%\system32\svchost.exe -k LocalService
[Services detected by Partizan] :HKLM winmgmt=%systemroot%\system32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM Winsock
[Services detected by Partizan] :HKLM WinSock2
[Services detected by Partizan] :HKLM WinTrust
[Services detected by Partizan] :HKLM WmdmPmSN=%SystemRoot%\System32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM WmiAcpi=system32\DRIVERS\wmiacpi.sys
[Services detected by Partizan] :HKLM WmiApRpl
[Services detected by Partizan] :HKLM WmiApSrv=C:\WINDOWS\system32\wbem\wmiapsrv.exe
[Services detected by Partizan] :HKLM WMPNetworkSvc="C:\Program Files\Windows Media Player\WMPNetwk.exe"
[Services detected by Partizan] :HKLM WS2IFSL=\SystemRoot\System32\drivers\ws2ifsl.sys
[Services detected by Partizan] :HKLM wscsvc=%SystemRoot%\System32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM WSTCODEC=system32\DRIVERS\WSTCODEC.SYS
[Services detected by Partizan] :HKLM wuauserv=%systemroot%\system32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM WudfPf=system32\DRIVERS\WudfPf.sys
[Services detected by Partizan] :HKLM WudfRd=system32\DRIVERS\wudfrd.sys
[Services detected by Partizan] :HKLM WudfSvc=%SystemRoot%\system32\svchost.exe -k WudfServiceGroup
[Services detected by Partizan] :HKLM WZCSVC=%SystemRoot%\System32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM xmlprov=%SystemRoot%\System32\svchost.exe -k netsvcs
[Services detected by Partizan] :HKLM yukonwxp=system32\DRIVERS\yk51x86.sys
[Services detected by Partizan] :HKLM {30914C43-61F9-4532-B9CB-99F893E7EAEC}
[Services detected by Partizan] :HKLM {32469DC6-18E9-4E94-AE6A-EC49B2BDF37E}
[Services detected by Partizan] :HKLM {55A62DFA-6926-4820-B525-EEFFB082782C}
[Services detected by Partizan] :HKLM {5F3B1B36-1DF9-453C-8AF7-4CEC9DFB2988}
[Auto Start Apps]
[Registry Run] :HKCU EPSON Stylus C60 Series=C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_A10IC2.EXE /P23 "EPSON Stylus C60 Series" /O5 "LPT1:" /M "Stylus C60"
[Registry Run] :HKCU ctfmon.exe=C:\WINDOWS\system32\ctfmon.exe
[Registry Run] :HKCU swg=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
[Registry Run] :HKLM ATIPTA=C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
[Registry Run] :HKLM LG Intelligent Update="C:\Program Files\lg_swupdate\autoupdate.exe" Gilautouc
[Registry Run] :HKLM Raccourci vers la page des propriétés de High Definition Audio=HDAShCut.exe
[Registry Run] :HKLM Cmaudio=RunDll32 cmicnfg.cpl,CMICtrlWnd
[Registry Run] :HKLM SynTPLpr=C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
[Registry Run] :HKLM SynTPEnh=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
[Registry Run] :HKLM AGRSMMSG=AGRSMMSG.exe
[Registry Run] :HKLM RMan=C:\Program Files\LG Software\RMan\RMan.exe
[Registry Run] :HKLM IPO3="C:\Program Files\LG Software\IP Operator 2005\IP Operator 2005.exe" -aUtOsTaRtFrOmReG
[Registry Run] :HKLM batterymiser="C:\Program Files\LG Software\Battery Miser 2005\batterymiser.exe"
[Registry Run] :HKLM QuickTime Task="C:\Program Files\QuickTime\qttask.exe" -atboottime
[Registry Run] :HKLM iTunesHelper="C:\Program Files\iTunes\iTunesHelper.exe"
[Registry Run] :HKLM RemoteControl="C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
[Registry Run] :HKLM NeroFilterCheck=C:\WINDOWS\system32\NeroCheck.exe
[Registry Run] :HKLM nmapp="C:\Program Files\Pure Networks\Network Magic\nmapp.exe" -autorun -nosplash
[Registry Run] :HKLM SunJavaUpdateSched="C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe"
[Registry Run] :HKLM KernelFaultCheck=%systemroot%\system32\dumprep 0 -k
[Registry Run] :HKLM Adobe Photo Downloader="C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.2\Apps\apdproxy.exe"
[Registry Run] :HKLM Adobe Reader Speed Launcher="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
[Registry Run] :HKLM avast!=C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
[Registry Run] :HKLM !AVG Anti-Spyware="C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
[Registry RunOnceEx] :HKLM @Regrun2
[Win.ini] load=""
[Win.ini] run=""
[Common Startup Folder] Adobe Gamma.lnk=C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
[Common Startup Folder] Adobe Reader Synchronizer.lnk=C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe
[In memory]
[Running Processes] C:\WINDOWS\SYSTEM32\SMSS.EXE
[Running Processes] C:\WINDOWS\SYSTEM32\WINLOGON.EXE
[Running Processes] C:\WINDOWS\SYSTEM32\SERVICES.EXE
[Running Processes] C:\WINDOWS\SYSTEM32\LSASS.EXE
[Running Processes] C:\WINDOWS\SYSTEM32\ATI2EVXX.EXE
[Running Processes] C:\WINDOWS\SYSTEM32\SVCHOST.EXE
[Running Processes] C:\WINDOWS\SYSTEM32\SVCHOST.EXE
[Running Processes] C:\WINDOWS\SYSTEM32\ATI2EVXX.EXE
[Running Processes] C:\WINDOWS\EXPLORER.EXE
[Running Processes] C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASWUPDSV.EXE
[Running Processes] C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASHSERV.EXE
[Running Processes] C:\WINDOWS\SYSTEM32\RUNDLL32.EXE
[Running Processes] C:\RANIMA~1\REANIM~1.EXE
[Running Processes] C:\WINDOWS\SYSTEM32\SPOOLSV.EXE
[Running Processes] C:\PROGRAM FILES\GRISOFT\AVG ANTI-SPYWARE 7.5\GUARD.EXE
[Running Processes] C:\PROGRAM FILES\GOOGLE\COMMON\GOOGLE UPDATER\GOOGLEUPDATERSERVICE.EXE
[Running Processes] C:\WINDOWS\SYSTEM32\SVCHOST.EXE
[Running Processes] C:\PROGRAM FILES\PURE NETWORKS\NETWORK MAGIC\NMSRVC.EXE
[Running Processes] C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASHMAISV.EXE
[Running Processes] C:\WINDOWS\SYSTEM32\WUAUCLT.EXE
[Running Processes] C:\PROGRAM FILES\ALWIL SOFTWARE\AVAST4\ASHWEBSV.EXE
[Loaded DLLs] C:\PROGRA~1\ALWILS~1\Avast4\AhResWs.dll
[Loaded DLLs] C:\WINDOWS\system32\OLEACC.dll
[Loaded DLLs] C:\Program Files\Alwil Software\Avast4\ashWsFtr.dll
[Loaded DLLs] C:\WINDOWS\system32\security.dll
[Loaded DLLs] C:\Program Files\Alwil Software\Avast4\French\langmai.dll
[Loaded DLLs] C:\Program Files\Alwil Software\Avast4\French\Lang.dll
[Loaded DLLs] C:\WINDOWS\system32\MFC71.DLL
[Loaded DLLs] C:\Program Files\Alwil Software\Avast4\XT1922.dll
[Loaded DLLs] C:\Program Files\Alwil Software\Avast4\ashUInt.dll
[Loaded DLLs] C:\WINDOWS\system32\SSDPAPI.dll
[Loaded DLLs] C:\WINDOWS\system32\upnp.dll
[Loaded DLLs] C:\WINDOWS\system32\wuapi.dll
[Loaded DLLs] C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.2600.2180_x-ww_522f9f82\gdiplus.dll
[Loaded DLLs] C:\WINDOWS\system32\Normaliz.dll
[Loaded DLLs] C:\Program Files\Pure Networks\Network Magic\nmrasv.dll
[Loaded DLLs] C:\Program Files\Pure Networks\Network Magic\svcrsrc.dll
[Loaded DLLs] C:\Program Files\Pure Networks\Network Magic\nmcore.dll
[Loaded DLLs] C:\Program Files\Pure Networks\Network Magic\nmagnt.dll
[Loaded DLLs] C:\WINDOWS\system32\MSVCR70.dll
[Loaded DLLs] C:\WINDOWS\system32\MSVCP70.dll
[Loaded DLLs] C:\WINDOWS\system32\actxprxy.dll
[Loaded DLLs] c:\windows\system32\mscms.dll
[Loaded DLLs] c:\windows\system32\CFGMGR32.dll
[Loaded DLLs] c:\windows\system32\wiaservc.dll
[Loaded DLLs] C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\engine.dll
[Loaded DLLs] C:\WINDOWS\system32\inetpp.dll
[Loaded DLLs] C:\WINDOWS\system32\NETRAP.dll
[Loaded DLLs] C:\WINDOWS\system32\win32spl.dll
[Loaded DLLs] C:\WINDOWS\System32\spool\PRTPROCS\W32X86\mdippr.dll
[Loaded DLLs] C:\WINDOWS\system32\usbmon.dll
[Loaded DLLs] C:\WINDOWS\system32\tcpmon.dll
[Loaded DLLs] C:\WINDOWS\system32\pjlmon.dll
[Loaded DLLs] C:\WINDOWS\system32\mdimon.dll
[Loaded DLLs] C:\WINDOWS\system32\EBPMON3.DLL
[Loaded DLLs] C:\WINDOWS\system32\cnbjmon.dll
[Loaded DLLs] C:\WINDOWS\system32\localspl.dll
[Loaded DLLs] C:\WINDOWS\system32\SPOOLSS.DLL
[Loaded DLLs] C:\WINDOWS\system32\mstask.dll
[Loaded DLLs] C:\WINDOWS\system32\ntshrui.dll
[Loaded DLLs] C:\WINDOWS\system32\LINKINFO.dll
[Loaded DLLs] C:\WINDOWS\system32\RICHED20.dll
[Loaded DLLs] C:\WINDOWS\system32\RICHED32.DLL
[Loaded DLLs] C:\WINDOWS\system32\OLEPRO32.DLL
[Loaded DLLs] C:\WINDOWS\system32\SHFOLDER.DLL
[Loaded DLLs] C:\WINDOWS\system32\urlmon.dll
[Loaded DLLs] C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\shellexecutehook.dll
[Loaded DLLs] C:\WINDOWS\system32\bmpsap.dll
[Loaded DLLs] C:\WINDOWS\system32\MLANG.dll
[Loaded DLLs] C:\WINDOWS\system32\iernonce.dll
[Loaded DLLs] C:\WINDOWS\system32\perfos.dll
[Loaded DLLs] C:\WINDOWS\system32\ICMP.DLL
[Loaded DLLs] C:\Program Files\Alwil Software\Avast4\ashSSqlt.dll
[Loaded DLLs] C:\Program Files\Alwil Software\Avast4\AhResWS.dll
[Loaded DLLs] C:\Program Files\Alwil Software\Avast4\AhResStd.dll
[Loaded DLLs] C:\Program Files\Alwil Software\Avast4\ahResP2P.dll
[Loaded DLLs] C:\Program Files\Alwil Software\Avast4\AhResOut.dll
[Loaded DLLs] C:\Program Files\Alwil Software\Avast4\AhResNS.dll
[Loaded DLLs] C:\Program Files\Alwil Software\Avast4\ahResMes.dll
[Loaded DLLs] C:\Program Files\Alwil Software\Avast4\AhResMai.dll
[Loaded DLLs] C:\Program Files\Alwil Software\Avast4\UNACEV2.DLL
[Loaded DLLs] C:\Program Files\Alwil Software\Avast4\French\Base.dll
[Loaded DLLs] C:\WINDOWS\system32\dbghelp.dll
[Loaded DLLs] C:\Program Files\Alwil Software\Avast4\Aavm4h.dll
[Loaded DLLs] C:\Program Files\Alwil Software\Avast4\aswIdle.dll
[Loaded DLLs] C:\Program Files\Alwil Software\Avast4\aswInteg.dll
[Loaded DLLs] C:\Program Files\Alwil Software\Avast4\ashTask.dll
[Loaded DLLs] C:\Program Files\Alwil Software\Avast4\ashBase.dll
[Loaded DLLs] C:\Program Files\Alwil Software\Avast4\aswScan.dll
[Loaded DLLs] C:\Program Files\Alwil Software\Avast4\aswEngin.dll
[Loaded DLLs] C:\Program Files\Alwil Software\Avast4\aswAux.dll
[Loaded DLLs] C:\Program Files\Alwil Software\Avast4\aswCmnB.dll
[Loaded DLLs] C:\WINDOWS\system32\MSVCR71.dll
[Loaded DLLs] C:\WINDOWS\system32\MSVCP71.dll
[Loaded DLLs] C:\Program Files\Alwil Software\Avast4\aswCmnOS.dll
[Loaded DLLs] C:\Program Files\Alwil Software\Avast4\aswCmnS.dll
[Loaded DLLs] C:\WINDOWS\system32\MSIMG32.dll
[Loaded DLLs] C:\WINDOWS\system32\themeui.dll
[Loaded DLLs] C:\WINDOWS\system32\Normaliz.dll
[Loaded DLLs] C:\WINDOWS\system32\SHDOCVW.dll
[Loaded DLLs] C:\WINDOWS\system32\BROWSEUI.dll
[Loaded DLLs] C:\WINDOWS\system32\Ati2edxx.dll
[Loaded DLLs] C:\WINDOWS\system32\wbem\wbemprox.dll
[Loaded DLLs] C:\WINDOWS\system32\msi.dll
[Loaded DLLs] C:\WINDOWS\system32\advpack.dll
[Loaded DLLs] C:\WINDOWS\System32\winrnr.dll
[Loaded DLLs] C:\WINDOWS\System32\rastls.dll
[Loaded DLLs] C:\WINDOWS\System32\raschap.dll
[Loaded DLLs] C:\WINDOWS\System32\ntlsapi.dll
[Loaded DLLs] C:\WINDOWS\System32\rasppp.dll
[Loaded DLLs] C:\WINDOWS\System32\hidphone.tsp
[Loaded DLLs] C:\WINDOWS\system32\wups2.dll
[Loaded DLLs] C:\WINDOWS\System32\h323.tsp
[Loaded DLLs] C:\WINDOWS\System32\ipconf.tsp
[Loaded DLLs] C:\WINDOWS\System32\ndptsp.tsp
[Loaded DLLs] C:\WINDOWS\System32\kmddsp.tsp
[Loaded DLLs] C:\WINDOWS\system32\modemui.dll
[Loaded DLLs] C:\WINDOWS\System32\unimdmat.dll
[Loaded DLLs] C:\WINDOWS\System32\uniplat.dll
[Loaded DLLs] C:\WINDOWS\System32\unimdm.tsp
[Loaded DLLs] C:\WINDOWS\System32\rastapi.dll
[Loaded DLLs] c:\windows\system32\tapisrv.dll
[Loaded DLLs] C:\WINDOWS\System32\netcfgx.dll
[Loaded DLLs] C:\WINDOWS\System32\rasmans.dll
[Loaded DLLs] C:\WINDOWS\System32\rasadhlp.dll
[Loaded DLLs] C:\WINDOWS\system32\msxml3.dll
[Loaded DLLs] C:\WINDOWS\system32\wbem\ncprov.dll
[Loaded DLLs] C:\WINDOWS\system32\wups.dll
[Loaded DLLs] C:\WINDOWS\system32\wbem\wbemess.dll
[Loaded DLLs] C:\WINDOWS\system32\wbem\wmiprvsd.dll
[Loaded DLLs] C:\WINDOWS\system32\wbem\repdrvfs.dll
[Loaded DLLs] C:\WINDOWS\system32\wbem\wmiutils.dll
[Loaded DLLs] C:\WINDOWS\system32\wbem\wbemsvc.dll
[Loaded DLLs] C:\WINDOWS\System32\Wbem\FastProx.dll
[Loaded DLLs] C:\WINDOWS\System32\Wbem\wbemcomn.dll
[Loaded DLLs] C:\WINDOWS\System32\Wbem\esscli.dll
[Loaded DLLs] C:\WINDOWS\System32\Wbem\wbemcore.dll
[Loaded DLLs] c:\windows\system32\browser.dll
[Loaded DLLs] c:\windows\system32\ipnathlp.dll
[Loaded DLLs] c:\windows\system32\sens.dll
[Loaded DLLs] C:\WINDOWS\System32\RESUTILS.DLL
[Loaded DLLs] C:\WINDOWS\System32\CLUSAPI.DLL
[Loaded DLLs] C:\WINDOWS\system32\WSOCK32.dll
[Loaded DLLs] C:\WINDOWS\system32\MTXCLU.DLL
[Loaded DLLs] C:\WINDOWS\system32\colbact.DLL
[Loaded DLLs] C:\WINDOWS\system32\comsvcs.dll
[Loaded DLLs] c:\windows\pchealth\helpctr\binaries\pchsvc.dll
[Loaded DLLs] c:\windows\system32\HID.DLL
[Loaded DLLs] c:\windows\system32\hidserv.dll
[Loaded DLLs] c:\windows\system32\srvsvc.dll
[Loaded DLLs] c:\windows\system32\credui.dll
[Loaded DLLs] c:\windows\system32\netshell.dll
[Loaded DLLs] c:\windows\system32\netman.dll
[Loaded DLLs] c:\windows\system32\seclogon.dll
[Loaded DLLs] c:\windows\system32\POWRPROF.dll
[Loaded DLLs] c:\windows\system32\srsvc.dll
[Loaded DLLs] c:\windows\system32\trkwks.dll
[Loaded DLLs] C:\WINDOWS\System32\mspatcha.dll
[Loaded DLLs] C:\WINDOWS\System32\Cabinet.dll
[Loaded DLLs] C:\WINDOWS\System32\WINHTTP.dll
[Loaded DLLs] C:\WINDOWS\system32\wuaueng.dll
[Loaded DLLs] C:\WINDOWS\system32\VSSAPI.DLL
[Loaded DLLs] c:\windows\system32\wbem\wmisvc.dll
[Loaded DLLs] c:\windows\system32\wuauserv.dll
[Loaded DLLs] c:\windows\system32\ersvc.dll
[Loaded DLLs] c:\windows\system32\es.dll
[Loaded DLLs] c:\windows\system32\certcli.dll
[Loaded DLLs] c:\windows\system32\cryptsvc.dll
[Loaded DLLs] c:\windows\system32\wkssvc.dll
[Loaded DLLs] c:\windows\system32\audiosrv.dll
[Loaded DLLs] C:\WINDOWS\System32\MSIDLE.DLL
[Loaded DLLs] c:\windows\system32\schedsvc.dll
[Loaded DLLs] C:\WINDOWS\System32\WZCSAPI.DLL
[Loaded DLLs] C:\WINDOWS\System32\TAPI32.dll
[Loaded DLLs] C:\WINDOWS\System32\rasman.dll
[Loaded DLLs] C:\WINDOWS\System32\RASAPI32.dll
[Loaded DLLs] C:\WINDOWS\System32\MPRAPI.dll
[Loaded DLLs] C:\WINDOWS\system32\iertutil.dll
[Loaded DLLs] C:\WINDOWS\system32\Normaliz.dll
[Loaded DLLs] C:\WINDOWS\system32\WININET.dll
[Loaded DLLs] C:\WINDOWS\system32\CRYPTUI.dll
[Loaded DLLs] C:\WINDOWS\System32\wshirda.dll
[Loaded DLLs] c:\windows\system32\irmon.dll
[Loaded DLLs] c:\windows\system32\ESENT.dll
[Loaded DLLs] c:\windows\system32\WMI.dll
[Loaded DLLs] c:\windows\system32\rtutils.dll
[Loaded DLLs] c:\windows\system32\wzcsvc.dll
[Loaded DLLs] c:\windows\system32\dhcpcsvc.dll
[Loaded DLLs] c:\windows\system32\ATL.DLL
[Loaded DLLs] c:\windows\system32\adsldpc.dll
[Loaded DLLs] c:\windows\system32\ACTIVEDS.dll
[Loaded DLLs] c:\windows\system32\mstlsapi.dll
[Loaded DLLs] c:\windows\system32\ICAAPI.dll
[Loaded DLLs] c:\windows\system32\termsrv.dll
[Loaded DLLs] C:\WINDOWS\system32\xpsp2res.dll
[Loaded DLLs] c:\windows\system32\rpcss.dll
[Loaded DLLs] C:\WINDOWS\system32\Ati2edxx.dll
[Loaded DLLs] C:\WINDOWS\system32\dssenh.dll
[Loaded DLLs] C:\WINDOWS\system32\psbase.dll
[Loaded DLLs] C:\WINDOWS\System32\wshtcpip.dll
[Loaded DLLs] C:\WINDOWS\system32\hnetcfg.dll
[Loaded DLLs] C:\WINDOWS\system32\mswsock.dll
[Loaded DLLs] C:\WINDOWS\system32\pstorsvc.dll
[Loaded DLLs] C:\WINDOWS\system32\WINIPSEC.DLL
[Loaded DLLs] C:\WINDOWS\system32\oakley.DLL
[Loaded DLLs] C:\WINDOWS\system32\ipsecsvc.dll
[Loaded DLLs] C:\WINDOWS\system32\scecli.dll
[Loaded DLLs] C:\WINDOWS\system32\wdigest.dll
[Loaded DLLs] C:\WINDOWS\system32\schannel.dll
[Loaded DLLs] C:\WINDOWS\system32\w32time.dll
[Loaded DLLs] C:\WINDOWS\system32\netlogon.dll
[Loaded DLLs] C:\WINDOWS\system32\kerberos.dll
[Loaded DLLs] C:\WINDOWS\system32\msprivs.dll
[Loaded DLLs] C:\WINDOWS\AppPatch\AcGenral.DLL
[Loaded DLLs] C:\WINDOWS\system32\cryptdll.dll
[Loaded DLLs] C:\WINDOWS\system32\SAMSRV.dll
[Loaded DLLs] C:\WINDOWS\system32\DNSAPI.dll
[Loaded DLLs] C:\WINDOWS\system32\NTDSAPI.dll
[Loaded DLLs] C:\WINDOWS\system32\LSASRV.dll
[Loaded DLLs] C:\WINDOWS\system32\eventlog.dll
[Loaded DLLs] C:\WINDOWS\AppPatch\AcAdProc.dll
[Loaded DLLs] C:\WINDOWS\system32\ShimEng.dll
[Loaded DLLs] C:\WINDOWS\system32\MSVCP60.dll
[Loaded DLLs] C:\WINDOWS\system32\NCObjAPI.DLL
[Loaded DLLs] C:\WINDOWS\system32\umpnpmgr.dll
[Loaded DLLs] C:\WINDOWS\system32\SCESRV.dll
[Loaded DLLs] C:\WINDOWS\system32\midimap.dll
[Loaded DLLs] C:\WINDOWS\system32\MSACM32.dll
[Loaded DLLs] C:\WINDOWS\system32\msacm32.drv
[Loaded DLLs] C:\WINDOWS\system32\wdmaud.drv
[Loaded DLLs] C:\WINDOWS\system32\xpsp2res.dll
[Loaded DLLs] C:\WINDOWS\system32\cscui.dll
[Loaded DLLs] C:\WINDOWS\system32\iphlpapi.dll
[Loaded DLLs] C:\WINDOWS\system32\msv1_0.dll
[Loaded DLLs] C:\WINDOWS\system32\COMRes.dll
[Loaded DLLs] C:\WINDOWS\system32\CLBCATQ.DLL
[Loaded DLLs] C:\WINDOWS\system32\SAMLIB.dll
[Loaded DLLs] C:\WINDOWS\system32\WLDAP32.dll
[Loaded DLLs] C:\WINDOWS\system32\NTMARTA.DLL
[Loaded DLLs] C:\WINDOWS\system32\OLEAUT32.dll
[Loaded DLLs] C:\WINDOWS\system32\WgaLogon.dll
[Loaded DLLs] C:\WINDOWS\system32\MPR.dll
[Loaded DLLs] C:\WINDOWS\system32\WINSPOOL.DRV
[Loaded DLLs] C:\WINDOWS\system32\WlNotify.dll
[Loaded DLLs] C:\WINDOWS\system32\cscdll.dll
[Loaded DLLs] C:\WINDOWS\system32\rsaenh.dll
[Loaded DLLs] C:\WINDOWS\system32\Ati2evxx.dll
[Loaded DLLs] C:\WINDOWS\system32\WINMM.dll
[Loaded DLLs] C:\WINDOWS\system32\uxtheme.dll
[Loaded DLLs] C:\WINDOWS\system32\WTSAPI32.dll
[Loaded DLLs] C:\WINDOWS\system32\WINSCARD.DLL
[Loaded DLLs] C:\WINDOWS\system32\sxs.dll
[Loaded DLLs] C:\WINDOWS\system32\msctfime.ime
[Loaded DLLs] C:\WINDOWS\system32\Apphelp.dll
[Loaded DLLs] C:\WINDOWS\system32\ole32.dll
[Loaded