voila pour SREng:
[CODE]
2008-02-05,22:28:00
System Repair Engineer 2.5.16.900
Smallfrogs (
http://www.KZTechs.com)
Windows XP Professional Service Pack 2 (Build 2600) - Administrative User - Completed Functions Allowed
Follow item(s) have been choosed:
All Boot Items (Including Registry, Startup Folders, Services and so on)
Browser Add-ons
Runing Processes (Including process model information)
File Associations
Winsock Provider
Autorun.Inf
HOSTS File
Process Privileges Scan
Boot Items
Registry
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
<Steam><"E:\APPS\steam\Steam.exe" -silent> [(Verified)Valve]
<lzkusdbyzv><c:\windows\system32\lzkusdbyzv.exe lzkusdbyzv> [N/A]
[HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows]
<load><> [N/A]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<Cmaudio><RunDll32 cmicnfg.cpl,CMICtrlWnd> [N/A]
<Media Access><C:\Program Files\Media Access\MediaAccK.exe> [N/A]
<OlStatusMon><"C:\Program Files\Olivetti\ANY_WAY\olDvcStatus.exe" dvcStatusMinimize> [N/A]
<MaBtSh><C:\Program Files\Mobile Action\Bluetooth Manager\MaBtSh.exe> [Mobile Action Technology Inc.]
<PCSuiteTrayApplication><C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe -startup> [Nokia]
<Norman ZANDA><C:\Norman\Nvc\BIN\ZLH.EXE /LOAD /SPLASH> [N/A]
<qatdnzw><c:\windows\system32\qatdnzw.exe qatdnzw> [N/A]
<QuickTime Task><"C:\Program Files\QuickTime\qttask.exe" -atboottime> [Apple Inc.]
<iTunesHelper><"C:\Program Files\iTunes\iTunesHelper.exe"> [(Verified)Apple Inc.]
<avast!><C:\PROGRA~1\ANTIVI~1\ashDisp.exe> [(Verified)ALWIL Software]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunServices]
<Microsoftf DDEs ContrDL><runm.pif> [N/A]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
<shell><Explorer.exe> [(Verified)Microsoft Windows Component Publisher]
<Userinit><C:\WINDOWS\system32\userinit.exe,setup32.exe> [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]
<AppInit_DLLs><> [N/A]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
<UIHost><logonui.exe> [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{26923b43-4d38-484f-9b9e-de460746276c}]
<Internet Explorer><%systemroot%\system32\shmgrate.exe OCInstallUserConfigIE> [N/A]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{881dd1c5-3dcf-431b-b061-f3f88e8be88a}]
<Outlook Express><%systemroot%\system32\shmgrate.exe OCInstallUserConfigOE> [N/A]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{2C7339CF-2B09-4501-B3F3-F3508C9228ED}]
<Themes Setup><%SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll> [N/A]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA840-CC51-11CF-AAFA-00AA00B6015C}]
<Microsoft Outlook Express 6><"%ProgramFiles%\Outlook Express\setup50.exe" /APP:OE /CALLER:WINNT /user /install> [N/A]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA842-CC51-11CF-AAFA-00AA00B6015B}]
<NetMeeting 3.01><rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msnetmtg.inf,NetMtg.Install.PerUser.NT> [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{5945c046-1e7d-11d1-bc44-00c04fd912be}]
<Windows Messenger 4.7><rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msmsgs.inf,BLC.QuietInstall.PerUser> [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{6BF52A52-394A-11d3-B153-00C04F79FAA6}]
<Microsoft Windows Media Player><rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\wmp11.inf,PerUserStub> [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{7790769C-0471-11d2-AF11-00C04FA35D02}]
<Carnet d'adresses 6><"%ProgramFiles%\Outlook Express\setup50.exe" /APP:WAB /CALLER:WINNT /user /install> [N/A]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{89B4C1CD-B018-4511-B0A1-5476DBF70820}]
<N/A><C:\WINDOWS\System32\Rundll32.exe C:\WINDOWS\System32\mscories.dll,Install> [Microsoft Corporation]
==================================
Startup Folders
[Microsoft Office]
<C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage\Microsoft Office.lnk --> C:\PROGRA~1\MICROS~2\Office\OSA9.EXE [Microsoft Corporation]><N>
==================================
Services
[ASP.NET State Service / aspnet_state][Stopped/Manual Start]
<C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_state.exe><Microsoft Corporation>
[avast! iAVS4 Control Service / aswUpdSv][Running/Auto Start]
<"C:\Program Files\Antivirus\aswUpdSv.exe"><ALWIL Software>
[avast! Antivirus / avast! Antivirus][Running/Auto Start]
<"C:\Program Files\Antivirus\ashServ.exe"><ALWIL Software>
[avast! Mail Scanner / avast! Mail Scanner][Stopped/Manual Start]
<"C:\Program Files\Antivirus\ashMaiSv.exe" /service><ALWIL Software>
[avast! Web Scanner / avast! Web Scanner][Stopped/Manual Start]
<"C:\Program Files\Antivirus\ashWebSv.exe" /service><ALWIL Software>
[Accès du périphérique d'interface utilisateur / HidServ][Stopped/Disabled]
<C:\WINDOWS\System32\svchost.exe -k netsvcs-->%SystemRoot%\System32\hidserv.dll><N/A>
[InstallDriver Table Manager / IDriverT][Stopped/Manual Start]
<"C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe"><N/A>
[Service de l'iPod / iPod Service][Running/Manual Start]
<"C:\Program Files\iPod\bin\iPodService.exe"><Apple Inc.>
[Kerio Personal Firewall 4 / KPF4][Stopped/Auto Start]
<"C:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe"><Kerio Technologies>
[LexBce Server / LexBceS][Running/Auto Start]
<C:\WINDOWS\system32\LEXBCES.EXE><Lexmark International, Inc.>
[Norman ZANDA / Norman ZANDA][Stopped/Auto Start]
<C:\Norman\Nvc\BIN\Zanda.exe><N/A>
[NVIDIA Display Driver Service / NVSvc][Stopped/Auto Start]
<C:\WINDOWS\System32\nvsvc32.exe><N/A>
[olMntrService / olMntrService][Running/Auto Start]
<"C:\Program Files\Olivetti\ANY_WAY\olMntrService.exe"><Olivetti>
[SiSoftware Database Agent Service / SandraDataSrv][Stopped/Manual Start]
<d:\SiSoftware Sandra Lite XIIc\Win32\RpcDataSrv.exe><SiSoftware>
[SiSoftware Sandra Agent Service / SandraTheSrv][Stopped/Manual Start]
<d:\SiSoftware Sandra Lite XIIc\RpcSandraSrv.exe><SiSoftware>
[ServiceLayer / ServiceLayer][Stopped/Manual Start]
<"C:\Program Files\PC Connectivity Solution\ServiceLayer.exe"><Nokia.>
==================================
Drivers
[atksgt / atksgt][Running/Auto Start]
<System32\DRIVERS\atksgt.sys><N/A>
[catchme / catchme][Stopped/Manual Start]
<\??\C:\DOCUME~1\helene\LOCALS~1\Temp\catchme.sys><N/A>
[C-Media High Definition Audio Interface / cmudax][Running/Manual Start]
<system32\drivers\cmudax.sys><C-Media Inc>
[Pilote de la carte EtherLink XL 90XB/C 3Com / EL90XBC][Running/Manual Start]
<System32\DRIVERS\el90xbc5.sys><3Com Corporation>
[GEARAspiWDM / GEARAspiWDM][Running/Manual Start]
<System32\Drivers\GEARAspiWDM.sys><GEAR Software Inc.>
[GMSIPCI / GMSIPCI][Stopped/Manual Start]
<\??\D:\INSTALL\GMSIPCI.SYS><N/A>
[Pilote de fonction Microsoft UAA pour Service High Definition Audio / HdAudAddService][Stopped/Manual Start]
<system32\drivers\HdAudio.sys><Windows (R) Server 2003 DDK provider>
[Pilote de bus Microsoft UAA pour High Definition Audio / HDAudBus][Running/Manual Start]
<System32\DRIVERS\HDAudBus.sys><Windows (R) Server 2003 DDK provider>
[Intel(r) PC Camera CS120 / ICAM8USB][Running/Manual Start]
<System32\Drivers\Icm8D2.SYS><Intel Corporation>
[lirsgt / lirsgt][Running/Auto Start]
<System32\DRIVERS\lirsgt.sys><N/A>
[MA730 Bluetooth Core Driver / Ma730c][Stopped/Manual Start]
<system32\DRIVERS\MA730C.sys><Mobile Action Technology Inc.>
[MA730 Bluetooth VCOM Driver / Ma730Pt][Running/Manual Start]
<system32\DRIVERS\Ma730Pt.sys><Mobile Action Technology Inc.>
[MA730 Bluetooth Audio / Ma730Vad][Running/Manual Start]
<system32\DRIVERS\Ma730Vad.sys><Mobile Action Technology Inc.>
[msdirectx / msdirectx][Stopped/System Start]
<2 - Le fichier spécifié est introuvable.
><N/A>
[nv / nv][Running/Manual Start]
<System32\DRIVERS\nv4_mini.sys><NVIDIA Corporation>
[PCAMPR5 NDIS Protocol Driver / PCAMPR5][Stopped/Manual Start]
<\??\C:\WINDOWS\System32\PCAMPR5.SYS><N/A>
[PCANDIS5 NDIS Protocol Driver / PCANDIS5][Stopped/Manual Start]
<\??\C:\WINDOWS\System32\PCANDIS5.SYS><Printing Communications Assoc., Inc. (PCAUSA)>
[PPPoEWin Miniport / PPPoEWin][Stopped/Manual Start]
<System32\DRIVERS\PPPoEWin.SYS><N/A>
[Pilote de liaison parallèle directe / Ptilink][Running/Manual Start]
<System32\DRIVERS\ptilink.sys><Parallel Technologies, Inc.>
[PxHelp20 / PxHelp20][Running/Boot Start]
<\SystemRoot\System32\Drivers\PxHelp20.sys><Sonic Solutions>
[Sony Ericsson Device 046 Driver driver (WDM) / SE2Ebus][Stopped/Manual Start]
<System32\DRIVERS\SE2Ebus.sys><MCCI>
[Sony Ericsson Device 046 USB WMC Modem Filter / SE2Emdfl][Stopped/Manual Start]
<System32\DRIVERS\SE2Emdfl.sys><MCCI>
[Sony Ericsson Device 046 USB WMC Modem Driver / SE2Emdm][Stopped/Manual Start]
<System32\DRIVERS\SE2Emdm.sys><MCCI>
[Sony Ericsson Device 046 USB WMC Device Management Drivers (WDM) / SE2Emgmt][Stopped/Manual Start]
<System32\DRIVERS\SE2Emgmt.sys><MCCI>
[Sony Ericsson Device 046 USB Ethernet Emulation SEMC46 (NDIS) / se2End5][Stopped/Manual Start]
<System32\DRIVERS\se2End5.sys><MCCI>
[Sony Ericsson Device 046 USB WMC OBEX Interface / SE2Eobex][Stopped/Manual Start]
<System32\DRIVERS\SE2Eobex.sys><MCCI>
[Sony Ericsson Device 046 USB Ethernet Emulation SEMC46 (WDM) / se2Eunic][Stopped/Manual Start]
<System32\DRIVERS\se2Eunic.sys><MCCI>
[Secdrv / Secdrv][Running/Auto Start]
<System32\DRIVERS\secdrv.sys><Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.>
[viamraid / viamraid][Running/Boot Start]
<\SystemRoot\System32\DRIVERS\viamraid.sys><VIA Technologies inc,.ltd>
[VIA USB Host Controller Lower Filter / vulfnths][Stopped/Manual Start]
<\SystemRoot\System32\Drivers\vulfnth.sys><VIA Technologies, Inc.>
[VIA USB Roothub Lower Filter / vulfntrs][Stopped/Manual Start]
<\SystemRoot\System32\Drivers\vulfntr.sys><VIA Technologies, Inc.>
[World Standard Teletext Codec / WSTCODEC][Stopped/Manual Start]
<System32\DRIVERS\WSTCODEC.SYS><Microsoft Corporation>
[NDIS5.1 Miniport Driver for Marvell Yukon Ethernet Controller / yukonwxp][Stopped/Manual Start]
<System32\DRIVERS\yk51x86.sys><Marvell>
[zlportio / zlportio][Stopped/Manual Start]
<\??\C:\Documents and Settings\theo\Bureau\zlportio.sys><N/A>
==================================
Browser Add-ons
[AcroIEHlprObj Class]
{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} <C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll, Adobe Systems Incorporated>
[SolidConverter PDF]
{259F616C-A300-44F5-B04A-ED001A26C85C} <C:\Program Files\SolidDocuments\SolidConverterPDF\ExploreExtPDF.dll, VoyagerSoft, LLC>
[GetRight IE Download Helper]
{31FF080D-12A3-439A-A2EF-4BA95A3148E8} <C:\Program Files\GetRight\xx2gr.dll, Headlight Software, Inc.>
[SSVHelper Class]
{761497BB-D6F0-462C-B6EB-D4DAF1D92D43} <C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll, Sun Microsystems, Inc.>
[Windows Live Sign-in Helper]
{9030D464-4C02-4ABF-8ECC-5164760863C6} <C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll, Microsoft Corporation>
[Java Plug-in 1.5.0_11]
{08B0E5C0-4FCB-11CF-AAA5-00401C608501} <C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll, Sun Microsystems, Inc.>
[PartyPoker.com]
{B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} <C:\Program Files\PartyGaming\PartyPoker\RunApp.exe, >
[PokerStars.net]
{FA9B9510-9FCB-4ca0-818C-5D0987B47C4D} <C:\Program Files\PokerStars.NET\PokerStarsUpdate.exe, PokerStars>
[QuickTime Object]
{02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} <C:\Program Files\QuickTime\QTPlugin.ocx, Apple Inc.>
[AcroIEHlprObj Class]
{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} <C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll, Adobe Systems Incorporated>
[Web Browser Applet Control]
{08B0E5C0-4FCB-11CF-AAA5-00401C608501} <, N/A>
[Windows Media Player]
{22D6F312-B0F6-11D0-94AB-0080C74C7E95} <C:\WINDOWS\system32\wmpdxm.dll, Microsoft Corporation>
[HTML Document]
{25336920-03F9-11CF-8FD0-00AA00686F13} <%SystemRoot%\System32\mshtml.dll, N/A>
[SolidConverter PDF]
{259F616C-A300-44F5-B04A-ED001A26C85C} <C:\Program Files\SolidDocuments\SolidConverterPDF\ExploreExtPDF.dll, VoyagerSoft, LLC>
[HtmlDlgSafeHelper Class]
{3050F819-98B5-11CF-BB82-00AA00BDCE0B} <C:\WINDOWS\System32\mshtmled.dll, Microsoft Corporation>
[GetRight IE Download Helper]
{31FF080D-12A3-439A-A2EF-4BA95A3148E8} <C:\Program Files\GetRight\xx2gr.dll, Headlight Software, Inc.>
[QuickTime Object]
{4063BE15-3B08-470D-A0D5-B37161CFFD69} <C:\Program Files\QuickTime\QTPlugin.ocx, Apple Inc.>
[XML Document]
{48123BC4-99D9-11D1-A6B3-00C04FD91555} <%SystemRoot%\System32\msxml3.dll, N/A>
[DivXBrowserPlugin Object]
{67DABFBF-D0AB-41FA-9C46-CC0F21721616} <C:\Program Files\DivX\DivX Web Player\npdivx32.dll, DivX,Inc.>
[Windows Media Player]
{6BF52A52-394A-11D3-B153-00C04F79FAA6} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
[SSVHelper Class]
{761497BB-D6F0-462C-B6EB-D4DAF1D92D43} <C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll, Sun Microsystems, Inc.>
[Navigateur Web Microsoft]
{8856F961-340A-11D0-A96B-00C04FD705A2} <C:\WINDOWS\System32\shdocvw.dll, Microsoft Corporation>
[Java Plug-in 1.5.0_11]
{8AD9C840-044E-11D1-B3E9-00805F499D93} <C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll, Sun Microsystems, Inc.>
[Windows Live Sign-in Helper]
{9030D464-4C02-4ABF-8ECC-5164760863C6} <C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll, Microsoft Corporation>
[SearchAssistantOC]
{B45FF030-4447-11D2-85DE-00C04FA35C89} <%SystemRoot%\System32\shdocvw.dll, N/A>
[Windows Live Sign-in Control]
{D2517915-48CE-4286-970F-921E881B8C5C} <C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll, Microsoft Corporation>
[Shockwave Flash Object]
{D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\System32\Macromed\Flash\Flash9b.ocx, Adobe Systems, Inc.>
[iTunesDetector Class]
{D719897A-B07A-4C0C-AEA9-9B663A28DFCB} <C:\Program Files\iTunes\ITDetector.ocx, Apple Computer, Inc.>
[]
{F06608C7-1874-4EEA-B3B2-DF99EBB144B8} <C:\PROGRA~1\MSNMES~1\MSGSC8~1.DLL, Microsoft Corporation>
==================================
Running Processes
[PID: 484 / SYSTEM][\SystemRoot\System32\smss.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 532 / SYSTEM][\??\C:\WINDOWS\system32\csrss.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 556 / SYSTEM][\??\C:\WINDOWS\system32\winlogon.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\msacm32.drv] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[PID: 600 / SYSTEM][C:\WINDOWS\system32\services.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\AppPatch\AcAdProc.dll] [Microsoft Corporation, 5.1.2600.3008 (xpsp.061004-0027)]
[PID: 612 / SYSTEM][C:\WINDOWS\system32\lsass.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 768 / SYSTEM][C:\WINDOWS\system32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 824 / SERVICE RÉSEAU][C:\WINDOWS\system32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 892 / SYSTEM][C:\WINDOWS\System32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 964 / SERVICE RÉSEAU][C:\WINDOWS\System32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1020 / SERVICE LOCAL][C:\WINDOWS\System32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1088 / SYSTEM][C:\Program Files\Antivirus\aswUpdSv.exe] [ALWIL Software, 4, 7, 1098, 0]
[C:\Program Files\Antivirus\aswCmnS.dll] [ALWIL Software, 4, 7, 1098, 0]
[C:\Program Files\Antivirus\aswCmnOS.dll] [ALWIL Software, 4, 7, 1098, 0]
[C:\WINDOWS\system32\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[C:\WINDOWS\system32\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\Program Files\Antivirus\aswCmnB.dll] [ALWIL Software, 4, 7, 1098, 0]
[PID: 1140 / SYSTEM][C:\Program Files\Antivirus\ashServ.exe] [ALWIL Software, 4, 7, 1098, 0]
[C:\Program Files\Antivirus\aswAux.dll] [ALWIL Software, 4, 7, 1098, 0]
[C:\WINDOWS\system32\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[C:\WINDOWS\system32\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\Program Files\Antivirus\aswCmnB.dll] [ALWIL Software, 4, 7, 1098, 0]
[C:\Program Files\Antivirus\aswCmnOS.dll] [ALWIL Software, 4, 7, 1098, 0]
[C:\Program Files\Antivirus\aswEngin.dll] [ALWIL Software, 4, 7, 1098, 0]
[C:\Program Files\Antivirus\aswScan.dll] [ALWIL Software, 4, 7, 1098, 0]
[C:\Program Files\Antivirus\aswCmnS.dll] [ALWIL Software, 4, 7, 1098, 0]
[C:\Program Files\Antivirus\ashBase.dll] [ALWIL Software, 4, 7, 1098, 0]
[C:\Program Files\Antivirus\ashTask.dll] [ALWIL Software, 4, 7, 1098, 0]
[C:\Program Files\Antivirus\aswInteg.dll] [ALWIL Software, 4, 7, 1098, 0]
[C:\Program Files\Antivirus\aswIdle.dll] [ALWIL Software, 4, 7, 1098, 0]
[C:\Program Files\Antivirus\Aavm4h.dll] [ALWIL Software, 4, 7, 1098, 0]
[C:\Program Files\Antivirus\French\Base.dll] [ALWIL Software, 4, 7, 1098, 0]
[C:\Program Files\Antivirus\UNACEV2.DLL] [N/A, ]
[C:\Program Files\Antivirus\AhResMai.dll] [ALWIL Software, 4, 7, 1098, 0]
[C:\Program Files\Antivirus\AhResNS.dll] [ALWIL Software, 4, 7, 1098, 0]
[C:\Program Files\Antivirus\AhResOut.dll] [ALWIL Software, 4, 7, 1098, 0]
[C:\Program Files\Antivirus\ahResP2P.dll] [ALWIL Software, 4, 7, 1098, 0]
[C:\Program Files\Antivirus\AhResStd.dll] [ALWIL Software, 4, 7, 1098, 0]
[C:\Program Files\Antivirus\AhResWS.dll] [ALWIL Software, 4, 7, 1098, 0]
[C:\Program Files\Antivirus\ashSSqlt.dll] [ALWIL Software, 4, 7, 1098, 0]
[C:\Program Files\Antivirus\aswRes.dll] [ALWIL Software, 4, 7, 1098, 0]
[PID: 1436 / SYSTEM][C:\WINDOWS\system32\LEXBCES.EXE] [Lexmark International, Inc., 7.4]
[PID: 1468 / SYSTEM][C:\WINDOWS\system32\LEXPPS.EXE] [N/A, ]
[C:\WINDOWS\system32\LEXBCE.DLL] [Lexmark International, Inc., 7.4]
[PID: 1708 / SYSTEM][C:\Program Files\Olivetti\ANY_WAY\olMntrService.exe] [Olivetti, 2.0.027]
[C:\Program Files\Olivetti\ANY_WAY\olMntrHid.dll] [Olivetti, 2.0.027]
[PID: 1852 / SYSTEM][C:\WINDOWS\System32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 500 / SERVICE LOCAL][C:\WINDOWS\System32\alg.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1884 / helene][C:\WINDOWS\Explorer.EXE] [Microsoft Corporation, 6.00.2900.3156 (xpsp_sp2_gdr.070613-1234)]
[C:\Program Files\Adobe\Acrobat 7.0\ActiveX\PDFShell.dll] [Adobe Systems, Inc., 7.0.0.0]
[C:\Program Files\WinRAR\rarext.dll] [N/A, ]
[C:\PROGRA~1\VISICO~1\FTPEXP~1\ftpcntxt.dll] [Visicom Media Inc., 3.6.2.0]
[C:\Program Files\SolidDocuments\SolidConverterPDF\ExploreExtPDF.dll] [VoyagerSoft, LLC, VERSION_MAJOR.0.BUILD_MAJOR.0]
[C:\Program Files\Antivirus\ashShell.dll] [ALWIL Software, 4, 7, 1098, 0]
[C:\Program Files\SolidDocuments\SolidConverterPDF\ConverterCore.dll] [VoyagerSoft, LLC, VERSION_MAJOR.0.BUILD_MAJOR.0]
[C:\Program Files\SolidDocuments\SolidConverterPDF\SolidCore.dll] [VoyagerSoft, LLC, VERSION_MAJOR.0.BUILD_MAJOR.0]
[C:\Program Files\SolidDocuments\SolidConverterPDF\MSLUP71.dll] [Sample Corporation, 7.10.0000]
[C:\Program Files\SolidDocuments\SolidConverterPDF\MSLUR71.dll] [Sample Corporation, 7.10.0000]
[C:\Program Files\SolidDocuments\SolidConverterPDF\MFC71LU.DLL] [Microsoft Corporation, 7.10.3077.0]
[C:\Program Files\GetRight\xx2gr.dll] [Headlight Software, Inc., 6.3]
[C:\WINDOWS\system32\msacm32.drv] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll] [Adobe Systems Incorporated, 7.0.0.2004121400]
[C:\WINDOWS\system32\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[PID: 3708 / helene][C:\WINDOWS\system32\RunDll32.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system\cmicnfg.cpl] [C-Media Corporation, 1, 0, 42, 10]
[C:\WINDOWS\System32\udaprop.dll] [C-Media Corporation, 1.0.2.3]
[PID: 3720 / helene][C:\Program Files\Olivetti\ANY_WAY\olDvcStatus.exe] [Olivetti, 2.0.027]
[C:\Program Files\Olivetti\ANY_WAY\olMntrHid.dll] [Olivetti, 2.0.027]
[C:\Program Files\Olivetti\ANY_WAY\MFC71.DLL] [Microsoft Corporation, 7.10.3077.0]
[C:\Program Files\Olivetti\ANY_WAY\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\Program Files\Olivetti\ANY_WAY\olDvcStatusRC.dll] [Olivetti, 2.0.027]
[PID: 3728 / helene][C:\Program Files\Mobile Action\Bluetooth Manager\MaBtSh.exe] [Mobile Action Technology Inc., 1, 0, 0, 1]
[PID: 3752 / helene][C:\Program Files\iTunes\iTunesHelper.exe] [Apple Inc., 7.5.0.20]
[C:\Program Files\iTunes\iTunesHelper.Resources\fr.lproj\iTunesHelperLocalized.DLL] [Apple Inc., 7.5.0.13]
[C:\Program Files\iTunes\iTunesHelper.Resources\iTunesHelper.DLL] [Apple Inc., 7.5.0.20]
[C:\Program Files\QuickTime\QTSystem\QuickTime.qts] [Apple Inc., 7.3.1]
[C:\Program Files\QuickTime\QTSystem\CoreVideo.qtx] [Apple Computer, Inc., 7.3.1]
[C:\Program Files\QuickTime\QTSystem\QuickTime3GPP.qtx] [Apple Inc., 7.3.1]
[C:\Program Files\QuickTime\QTSystem\QuickTime3GPPAuthoring.qtx] [Apple Inc., 7.3.1]
[C:\Program Files\QuickTime\QTSystem\QuickTimeAudioSupport.qtx] [Apple Computer, Inc., 7.3.1]
[C:\Program Files\QuickTime\QTSystem\QuickTimeAuthoring.qtx] [Apple Inc., 7.3.1]
[C:\Program Files\QuickTime\QTSystem\QuickTimeCapture.qtx] [Apple Inc., 7.3.1]
[C:\WINDOWS\system32\msacm32.drv] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[C:\Program Files\QuickTime\QTSystem\QuickTimeEffects.qtx] [Apple Inc., 7.3.1]
[C:\Program Files\QuickTime\QTSystem\QuickTimeEssentials.qtx] [Apple Inc., 7.3.1]
[C:\Program Files\QuickTime\QTSystem\QuickTimeH264.qtx] [Apple Inc., 7.3.1]
[C:\Program Files\QuickTime\QTSystem\QuickTimeImage.qtx] [Apple Inc., 7.3.1]
[C:\Program Files\QuickTime\QTSystem\QuickTimeInternetExtras.qtx] [Apple Inc., 7.3.1]
[C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG.qtx] [Apple Inc., 7.3.1]
[C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG4.qtx] [Apple Inc., 7.3.1]
[C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG4Authoring.qtx] [Apple Inc., 7.3.1]
[C:\Program Files\QuickTime\QTSystem\QuickTimeMusic.qtx] [Apple Inc., 7.3.1]
[C:\Program Files\QuickTime\QTSystem\QuickTimeQD3D.qtx] [Apple Inc., 7.3.1]
[C:\Program Files\QuickTime\QTSystem\QuickTimeStreaming.qtx] [Apple Inc., 7.3.1]
[C:\Program Files\QuickTime\QTSystem\QuickTimeStreamingAuthoring.qtx] [Apple Inc., 7.3.1]
[C:\Program Files\QuickTime\QTSystem\QuickTimeStreamingExtras.qtx] [Apple Inc., 7.3.1]
[C:\Program Files\QuickTime\QTSystem\QuickTimeVR.qtx] [Apple Inc., 7.3.1]
[PID: 3760 / helene][C:\PROGRA~1\ANTIVI~1\ashDisp.exe] [ALWIL Software, 4, 7, 1098, 0]
[C:\PROGRA~1\ANTIVI~1\aswCmnOS.dll] [ALWIL Software, 4, 7, 1098, 0]
[C:\WINDOWS\system32\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[C:\WINDOWS\system32\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\PROGRA~1\ANTIVI~1\ashBase.dll] [ALWIL Software, 4, 7, 1098, 0]
[C:\PROGRA~1\ANTIVI~1\aswCmnB.dll] [ALWIL Software, 4, 7, 1098, 0]
[C:\PROGRA~1\ANTIVI~1\aswCmnS.dll] [ALWIL Software, 4, 7, 1098, 0]
[C:\PROGRA~1\ANTIVI~1\ashTask.dll] [ALWIL Software, 4, 7, 1098, 0]
[C:\PROGRA~1\ANTIVI~1\aswAux.dll] [ALWIL Software, 4, 7, 1098, 0]
[C:\PROGRA~1\ANTIVI~1\Aavm4h.dll] [ALWIL Software, 4, 7, 1098, 0]
[C:\Program Files\Antivirus\French\Base.dll] [ALWIL Software, 4, 7, 1098, 0]
[C:\Program Files\Antivirus\French\Lang.dll] [ALWIL Software, 4, 7, 1098, 0]
[C:\WINDOWS\system32\MFC71.DLL] [Microsoft Corporation, 7.10.3077.0]
[C:\PROGRA~1\ANTIVI~1\AavmRpch.dll] [ALWIL Software, 4, 7, 1098, 0]
[c:\program files\antivirus\ahruimai.dll] [ALWIL Software, 4, 7, 1098, 0]
[C:\PROGRA~1\ANTIVI~1\ashUInt.dll] [ALWIL Software, 4, 7, 1098, 0]
[C:\PROGRA~1\ANTIVI~1\XT1922.dll] [Codejock Software, 1, 9, 4, 0]
[c:\program files\antivirus\ahruins.dll] [ALWIL Software, 4, 7, 1098, 0]
[c:\program files\antivirus\ahruiout.dll] [ALWIL Software, 4, 7, 1098, 0]
[C:\WINDOWS\system32\MAPI32.dll] [Microsoft Corporation, 1.0.2536.0]
[c:\program files\antivirus\ahruip2p.dll] [ALWIL Software, 4, 7, 1098, 0]
[c:\program files\antivirus\ahruistd.dll] [ALWIL Software, 4, 7, 1098, 0]
[c:\program files\antivirus\ahruiws.dll] [ALWIL Software, 4, 7, 1098, 0]
[C:\WINDOWS\system32\msacm32.drv] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[PID: 3876 / helene][C:\Program Files\Mozilla Firefox\firefox.exe] [Mozilla Corporation, 1.8.1.11: 2007112718]
[C:\Program Files\Mozilla Firefox\js3250.dll] [Netscape Communications Corporation, 4.0]
[C:\Program Files\Mozilla Firefox\nspr4.dll] [Netscape Communications Corporation, 4.6.7]
[C:\Program Files\Mozilla Firefox\xpcom_core.dll] [Mozilla Foundation, 1.8.1.11: 2007112718]
[C:\Program Files\Mozilla Firefox\plc4.dll] [Netscape Communications Corporation, 4.6.7]
[C:\Program Files\Mozilla Firefox\plds4.dll] [Netscape Communications Corporation, 4.6.7]
[C:\Program Files\Mozilla Firefox\smime3.dll] [Mozilla Foundation, 3.11.5 Basic ECC]
[C:\Program Files\Mozilla Firefox\nss3.dll] [Mozilla Foundation, 3.11.5 Basic ECC]
[C:\Program Files\Mozilla Firefox\softokn3.dll] [Mozilla Foundation, 3.11.4 Basic ECC]
[C:\Program Files\Mozilla Firefox\ssl3.dll] [Mozilla Foundation, 3.11.5 Basic ECC]
[C:\Program Files\Mozilla Firefox\xpcom_compat.dll] [Mozilla Foundation, 1.8.1.11: 2007112718]
[C:\Program Files\Mozilla Firefox\components\myspell.dll] [Mozilla Foundation, 1.8.1.11: 2007112718]
[C:\Program Files\Mozilla Firefox\components\jar50.dll] [Mozilla Foundation, 1.8.1.11: 2007112718]
[C:\Program Files\Mozilla Firefox\freebl3.dll] [Mozilla Foundation, 3.11.4 Basic ECC]
[C:\PROGRA~1\MOZILL~1\nssckbi.dll] [Mozilla Foundation, 1.64]
[C:\Program Files\Mozilla Firefox\components\spellchk.dll] [Mozilla Foundation, 1.8.1.11: 2007112718]
[C:\WINDOWS\system32\PortableDeviceApi.dll] [Microsoft Corporation, 5.2.5721.5145 (WMP_11.061018-2006)]
[C:\Program Files\Adobe\Acrobat 7.0\ActiveX\PDFShell.dll] [Adobe Systems, Inc., 7.0.0.0]
[PID: 4028 / SYSTEM][C:\Program Files\iPod\bin\iPodService.exe] [Apple Inc., 7.5.0.20]
[C:\Program Files\iPod\bin\iPodService.Resources\fr.lproj\iPodServiceLocalized.DLL] [Apple Inc., 7.5.0.13]
[C:\Program Files\iPod\bin\iPodService.Resources\iPodService.DLL] [Apple Inc., 7.5.0.20]
[PID: 2596 / helene][C:\WINDOWS\system32\wscntfy.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 2756 / helene][C:\Documents and Settings\helene\Bureau\sreng2\SREngPS.EXE] [Smallfrogs Studio, 2.5.16.900]
[C:\Documents and Settings\helene\Bureau\sreng2\Upload\3rdUpd.DLL] [Smallfrogs Studio, 2, 1, 0, 15]
==================================
File Associations
.TXT OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE OK. ["%1" %*]
.COM OK. ["%1" %*]
.PIF OK. ["%1" %*]
.REG OK. [regedit.exe "%1"]
.BAT OK. ["%1" %*]
.SCR OK. ["%1" /S]
.CHM OK. ["C:\WINDOWS\hh.exe" %1]
.HLP OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK OK. [{00021401-0000-0000-C000-000000000046}]
==================================
Winsock Provider
N/A
==================================
Autorun.Inf
N/A
==================================
HOSTS File
127.0.0.1 localhost
==================================
Process Privileges Scan
Special Privilege Enabled: SeLoadDriverPrivilege [PID = 1708, C:\PROGRAM FILES\OLIVETTI\ANY_WAY\OLMNTRSERVICE.EXE]
==================================
API HOOK
N/A
==================================
Hidden Process
N/A
==================================
/CODE