Voila le rapport log.txt :
Logfile of random’s system information tool 1.05 (written by random/random)
Run by Florian at 2008-12-18 21:47:27
Microsoft Windows XP Professionnel Service Pack 3
System drive C: has 4 GB (20%) free of 20 GB
Total RAM: 2047 MB (66% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 21:47:28, on 18/12/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16762)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\fsgk32st.exe
C:\Program Files\Securitoo\av_fw\Common\FSMA32.EXE
C:\Program Files\Securitoo\av_fw\Anti-Virus\FSGK32.EXE
C:\WINDOWS\System32\FTRTSVC.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Securitoo\av_fw\Common\FSMB32.EXE
C:\WINDOWS\system32\PnkBstrA.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Securitoo\av_fw\Common\FCH32.EXE
C:\Program Files\Securitoo\av_fw\Anti-Virus\fssm32.exe
C:\Program Files\Securitoo\av_fw\FSAUA\program\fsaua.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\fsqh.exe
C:\Program Files\Securitoo\av_fw\Common\FAMEH32.EXE
C:\Program Files\Securitoo\av_fw\FWES\Program\fsdfwd.exe
C:\Program Files\Securitoo\av_fw\FSAUA\program\fsus.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\fsav32.exe
C:\Program Files\Securitoo\av_fw\Common\FSM32.EXE
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\Securitoo\av_fw\FSGUI\fsguidll.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Documents and Settings\Florian\Bureau\RSIT.exe
D:\Hijackthis\Florian.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.fr…
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = go.microsoft.com…
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = go.microsoft.com…
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = go.microsoft.com…
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = go.microsoft.com…
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d’aide de l’Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: BHO Barre de Confiance - {988B07F5-7392-455A-8A1F-64935CB8B6ED} - C:\Program Files\BarreConfCMCIC\TAPBar.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: Barre de confiance - {55BDF3B0-C0A8-481A-B8A6-01CD2BE0F3FD} - C:\Program Files\BarreConfCMCIC\TAPBar.dll
O4 - HKLM…\Run: [F-Secure Manager] “C:\Program Files\Securitoo\av_fw\Common\FSM32.EXE” /splash
O4 - HKLM…\Run: [F-Secure TNB] “C:\Program Files\Securitoo\av_fw\FSGUI\TNBUtil.exe” /CHECKALL /WAITFORSW
O4 - HKLM…\Run: [JMB36X IDE Setup] C:\WINDOWS\RaidTool\xInsIDE.exe
O4 - HKLM…\Run: [36X Raid Configurer] C:\WINDOWS\system32\xRaidSetup.exe boot
O4 - HKLM…\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM…\Run: [nwiz] nwiz.exe /install
O4 - HKLM…\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKCU…\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU…\Run: [MSMSGS] “C:\Program Files\Messenger\msmsgs.exe” /background
O4 - HKUS\S-1-5-18…\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User ‘SYSTEM’)
O4 - HKUS.DEFAULT…\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User ‘Default user’)
O8 - Extra context menu item: E&xporter vers Microsoft Excel - D:\OFFICE\OFFICE11\EXCEL.EXE…
O8 - Extra context menu item: Easy-WebPrint Ajouter à la liste d’impressions - C:\Program… Files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint Impression rapide - C:\Program… Files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Imprimer - C:\Program… Files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html
O8 - Extra context menu item: Easy-WebPrint Prévisualiser - C:\Program… Files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra ‘Tools’ menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\OFFICE\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra ‘Tools’ menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra ‘Tools’ menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: Orange - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - www.orange.fr… (file missing) (HKCU)
O16 - DPF: {5AEF5128-FE70-49E8-9E86-45F0A2D7E4EE} (OpendiscLight Control) - go.opendisc.net…
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} - download.divx.com…
O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} - fichiers.touslesdrivers.com…
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.6.0) - sdlc-esd.sun.com…
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - messenger.zone.msn.com…
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - messenger.zone.msn.com…
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: FSGKHS (F-Secure Gatekeeper Handler Starter) - F-Secure Corporation - C:\Program Files\Securitoo\av_fw\Anti-Virus\fsgk32st.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Fichiers communs\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: F-Secure Automatic Update Agent (FSAUA) - F-Secure Corporation - C:\Program Files\Securitoo\av_fw\FSAUA\program\fsaua.exe
O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\Securitoo\av_fw\FWES\Program\fsdfwd.exe
O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\Securitoo\av_fw\Common\FSMA32.EXE
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
–
End of file - 8335 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\At1.job
C:\WINDOWS\tasks\At10.job
C:\WINDOWS\tasks\At11.job
C:\WINDOWS\tasks\At12.job
C:\WINDOWS\tasks\At13.job
C:\WINDOWS\tasks\At14.job
C:\WINDOWS\tasks\At15.job
C:\WINDOWS\tasks\At16.job
C:\WINDOWS\tasks\At17.job
C:\WINDOWS\tasks\At18.job
C:\WINDOWS\tasks\At19.job
C:\WINDOWS\tasks\At2.job
C:\WINDOWS\tasks\At20.job
C:\WINDOWS\tasks\At21.job
C:\WINDOWS\tasks\At22.job
C:\WINDOWS\tasks\At23.job
C:\WINDOWS\tasks\At24.job
C:\WINDOWS\tasks\At3.job
C:\WINDOWS\tasks\At4.job
C:\WINDOWS\tasks\At5.job
C:\WINDOWS\tasks\At6.job
C:\WINDOWS\tasks\At7.job
C:\WINDOWS\tasks\At8.job
C:\WINDOWS\tasks\At9.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
AcroIEHlprObj Class - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll [2004-12-14 63136]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
SSVHelper Class - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll [2008-02-22 509328]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects{7E853D72-626A-48EC-A868-BA8D5E23E045}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Programme d’aide de l’Assistant de connexion Windows Live - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2007-09-20 328752]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects{988B07F5-7392-455A-8A1F-64935CB8B6ED}]
BHO Barre de Confiance - C:\Program Files\BarreConfCMCIC\TAPBar.dll [2007-09-14 225280]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{327C2873-E90D-4c37-AA9D-10AC9BABA46C} - Easy-WebPrint - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll [2004-08-26 405504]
{55BDF3B0-C0A8-481A-B8A6-01CD2BE0F3FD} - Barre de confiance - C:\Program Files\BarreConfCMCIC\TAPBar.dll [2007-09-14 225280]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
“F-Secure Manager”=C:\Program Files\Securitoo\av_fw\Common\FSM32.EXE [2007-06-13 176177]
“F-Secure TNB”=C:\Program Files\Securitoo\av_fw\FSGUI\TNBUtil.exe [2007-06-13 733184]
“JMB36X IDE Setup”=C:\WINDOWS\RaidTool\xInsIDE.exe [2007-03-20 36864]
“36X Raid Configurer”=C:\WINDOWS\system32\xRaidSetup.exe [2007-11-19 1970176]
“NvCplDaemon”=C:\WINDOWS\system32\NvCpl.dll [2008-12-02 13680640]
“nwiz”=nwiz.exe /install []
“NvMediaCenter”=C:\WINDOWS\system32\NvMcTray.dll [2008-12-02 86016]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
“CTFMON.EXE”=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
“MSMSGS”=C:\Program Files\Messenger\msmsgs.exe [2008-04-14 1695232]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Alcmtr]
C:\WINDOWS\ALCMTR.EXE [2005-05-03 69632]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools]
D:\Daemon Tools\daemon.exe [2006-11-12 157592]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\OpwareSE2]
D:\OMNIPAGE\OpwareSE2.exe [2003-05-08 49152]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDCPL]
C:\WINDOWS\RTHDCPL.EXE [2006-07-21 16261632]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SkyTel]
C:\WINDOWS\SkyTel.EXE [2006-05-16 2879488]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WOOWATCH]
C:\PROGRA~1\Wanadoo\Watch.exe [2004-08-23 20480]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^Lancement rapide d’Adobe Reader.lnk]
C:\PROGRA~1\Adobe\ACROBA~1.0\Reader\READER~1.EXE [2004-12-14 29696]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2008-09-05 267304]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
“dontdisplaylastusername”=0
“legalnoticecaption”=
“legalnoticetext”=
“shutdownwithoutlogon”=1
“undockwithoutlogon”=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
“NoDriveTypeAutoRun”=323
“NoDrives”=0
“NoDriveAutoRun”=67108863
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
“NoDriveTypeAutoRun”=
“NoDrives”=
“NoDriveAutoRun”=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
“%windir%\system32\sessmgr.exe”="%windir%\system32\sessmgr.exe::enabled:@xpsp2res.dll,-22019"
“%windir%\Network Diagnostic\xpnetdiag.exe”="%windir%\Network Diagnostic\xpnetdiag.exe::Enabled:@xpsp3res.dll,-20000"
“C:\WINDOWS\system32\PnkBstrA.exe”=“C:\WINDOWS\system32\PnkBstrA.exe::Enabled:PnkBstrA"
“C:\WINDOWS\system32\PnkBstrB.exe”="C:\WINDOWS\system32\PnkBstrB.exe::Enabled:PnkBstrB”
“C:\Program Files\Bonjour\mDNSResponder.exe”=“C:\Program Files\Bonjour\mDNSResponder.exe::Enabled:Bonjour"
“D:\CoH opposing fronts\RelicCOH.exe”="D:\CoH opposing fronts\RelicCOH.exe::Enabled:Company of Heroes - Opposing Fronts”
“C:\WINDOWS\system32\muzapp.exe”=“C:\WINDOWS\system32\muzapp.exe::Enabled:MUZ AOD APP player"
“D:\Crysis\Bin32\Crysis.exe”="D:\Crysis\Bin32\Crysis.exe::Enabled:Crysis_32”
“D:\Crysis\Bin32\CrysisDedicatedServer.exe”=“D:\Crysis\Bin32\CrysisDedicatedServer.exe::Enabled:CrysisDedicatedServer_32"
“C:\Program Files\Windows Live\Messenger\msnmsgr.exe”="C:\Program Files\Windows Live\Messenger\msnmsgr.exe::Enabled:Windows Live Messenger”
“C:\Program Files\Windows Live\Messenger\livecall.exe”=“C:\Program Files\Windows Live\Messenger\livecall.exe::Enabled:Windows Live Messenger (Phone)"
“D:\PES 2009\pes2009.exe”="D:\PES 2009\pes2009.exe::Enabled:Pro Evolution Soccer 2009”
“D:\GTA IV\Rockstar Games Social Club\RGSCLauncher.exe”=“D:\GTA IV\Rockstar Games Social Club\RGSCLauncher.exe::Enabled:Rockstar Games Social Club"
“D:\GTA IV\GTA IV\Grand Theft Auto IV\LaunchGTAIV.exe”="D:\GTA IV\GTA IV\Grand Theft Auto IV\LaunchGTAIV.exe::Enabled:Grand Theft Auto IV”
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
“%windir%\system32\sessmgr.exe”="%windir%\system32\sessmgr.exe::enabled:@xpsp2res.dll,-22019"
“%windir%\Network Diagnostic\xpnetdiag.exe”="%windir%\Network Diagnostic\xpnetdiag.exe::Enabled:@xpsp3res.dll,-20000"
“C:\Program Files\Windows Live\Messenger\msnmsgr.exe”=“C:\Program Files\Windows Live\Messenger\msnmsgr.exe::Enabled:Windows Live Messenger"
“C:\Program Files\Windows Live\Messenger\livecall.exe”="C:\Program Files\Windows Live\Messenger\livecall.exe::Enabled:Windows Live Messenger (Phone)”
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2{43b964d2-8ff3-11dd-9ab8-0019db4ab03e}]
shell\AutoRun\command - C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL NoLimit.exe
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2{5a131ac2-41c0-11dc-bd7d-806d6172696f}]
shell\AutoRun\command - F:\Livebox.EXE
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2{b2342196-5146-11dc-ba8e-806d6172696f}]
shell\AutoRun\command - F:\FarCryAutoCD.exe
======List of files/folders created in the last 1 months======
2008-12-18 21:47:27 ----D---- C:\rsit
2008-12-18 21:25:08 ----A---- C:\ComboFix.txt
2008-12-18 21:20:01 ----D---- C:\flobo
2008-12-17 14:25:28 ----A---- C:\Boot.bak
2008-12-17 14:25:25 ----RASHD---- C:\cmdcons
2008-12-17 14:23:38 ----A---- C:\WINDOWS\zip.exe
2008-12-17 14:23:38 ----A---- C:\WINDOWS\VFIND.exe
2008-12-17 14:23:38 ----A---- C:\WINDOWS\SWXCACLS.exe
2008-12-17 14:23:38 ----A---- C:\WINDOWS\SWSC.exe
2008-12-17 14:23:38 ----A---- C:\WINDOWS\SWREG.exe
2008-12-17 14:23:38 ----A---- C:\WINDOWS\sed.exe
2008-12-17 14:23:38 ----A---- C:\WINDOWS\NIRCMD.exe
2008-12-17 14:23:38 ----A---- C:\WINDOWS\grep.exe
2008-12-17 14:23:38 ----A---- C:\WINDOWS\fdsv.exe
2008-12-16 22:17:16 ----A---- C:\WINDOWS\ntbtlog.txt
2008-12-16 21:30:21 ----D---- C:\WINDOWS\ERDNT
2008-12-16 21:30:21 ----D---- C:\Qoobox
2008-12-16 19:57:22 ----D---- C:\Documents and Settings\Florian\Application Data\Malwarebytes
2008-12-16 19:57:15 ----D---- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2008-12-14 15:24:40 ----A---- C:\WINDOWS\system32\Q23Jc8P5.exe
2008-12-13 12:53:21 ----A---- C:\WINDOWS\system32\gdiplus.dll
2008-12-12 17:44:49 ----HDC---- C:\WINDOWS$NtUninstallKB955839$
2008-12-12 17:42:09 ----HDC---- C:\WINDOWS$NtUninstallKB952069_WM9$
2008-12-12 17:41:40 ----HDC---- C:\WINDOWS$NtUninstallKB954600$
2008-12-12 17:41:32 ----HDC---- C:\WINDOWS$NtUninstallKB956802$
2008-12-09 17:59:22 ----A---- C:\WINDOWS\system32\D3DX9_40.dll
2008-12-09 17:59:22 ----A---- C:\WINDOWS\system32\d3dx10_40.dll
2008-12-09 17:59:22 ----A---- C:\WINDOWS\system32\D3DCompiler_40.dll
2008-12-09 17:59:21 ----A---- C:\WINDOWS\system32\XAudio2_3.dll
2008-12-09 17:59:21 ----A---- C:\WINDOWS\system32\XAPOFX1_2.dll
2008-12-09 17:59:21 ----A---- C:\WINDOWS\system32\xactengine3_3.dll
2008-12-09 17:59:21 ----A---- C:\WINDOWS\system32\X3DAudio1_5.dll
2008-12-09 17:59:20 ----A---- C:\WINDOWS\system32\XAudio2_2.dll
2008-12-09 17:59:20 ----A---- C:\WINDOWS\system32\XAPOFX1_1.dll
2008-12-09 17:59:20 ----A---- C:\WINDOWS\system32\xactengine3_2.dll
2008-12-09 17:59:19 ----A---- C:\WINDOWS\system32\D3DX9_39.dll
2008-12-09 17:59:19 ----A---- C:\WINDOWS\system32\d3dx10_39.dll
2008-12-09 17:59:19 ----A---- C:\WINDOWS\system32\D3DCompiler_39.dll
2008-12-06 21:25:39 ----D---- C:\Documents and Settings\All Users\Application Data\nView_Profiles
2008-12-06 21:21:22 ----D---- C:\WINDOWS\nview
2008-12-06 21:21:22 ----A---- C:\WINDOWS\system32\nvudisp.exe
2008-12-06 21:21:01 ----A---- C:\WINDOWS\system32\NVUNINST.EXE
2008-12-05 18:08:43 ----N---- C:\WINDOWS\system32\spmsg.dll
2008-12-05 18:07:00 ----D---- C:\WINDOWS\SxsCaPendDel
2008-12-03 15:11:34 ----A---- C:\WINDOWS\system32\nv4_disp.dll
2008-12-03 14:44:52 ----A---- C:\WINDOWS\system32\CmdLineExt.dll
2008-12-03 13:22:49 ----RHD---- C:\Documents and Settings\Florian\Application Data\SecuROM
2008-12-03 13:17:30 ----D---- C:\WINDOWS\system32\xlive
2008-12-03 13:17:28 ----D---- C:\Program Files\Microsoft Games for Windows - LIVE
2008-12-03 12:33:32 ----HDC---- C:\WINDOWS$NtUninstallXPSEPSCLP$
2008-12-03 12:31:50 ----D---- C:\Program Files\MSBuild
2008-12-03 12:30:44 ----D---- C:\WINDOWS\system32\XPSViewer
2008-12-03 12:30:42 ----D---- C:\WINDOWS\system32\en-us
2008-12-03 12:30:12 ----D---- C:\Program Files\Reference Assemblies
2008-12-03 12:29:56 ----N---- C:\WINDOWS\system32\spmsg2.dll
2008-12-02 23:11:00 ----A---- C:\WINDOWS\system32\nwiz.exe
2008-12-02 23:11:00 ----A---- C:\WINDOWS\system32\nvwss.dll
2008-12-02 23:11:00 ----A---- C:\WINDOWS\system32\nvwimg.dll
2008-12-02 23:11:00 ----A---- C:\WINDOWS\system32\nvwdmcpl.dll
2008-12-02 23:11:00 ----A---- C:\WINDOWS\system32\nvwddi.dll
2008-12-02 23:11:00 ----A---- C:\WINDOWS\system32\nvvitvs.dll
2008-12-02 23:11:00 ----A---- C:\WINDOWS\system32\nvsvc32.exe
2008-12-02 23:11:00 ----A---- C:\WINDOWS\system32\nvshell.dll
2008-12-02 23:11:00 ----A---- C:\WINDOWS\system32\nvoglnt.dll
2008-12-02 23:11:00 ----A---- C:\WINDOWS\system32\nvmobls.dll
2008-12-02 23:11:00 ----A---- C:\WINDOWS\system32\nvmctray.dll
2008-12-02 23:11:00 ----A---- C:\WINDOWS\system32\nvmccss.dll
2008-12-02 23:11:00 ----A---- C:\WINDOWS\system32\nvmccsrs.dll
2008-12-02 23:11:00 ----A---- C:\WINDOWS\system32\nvmccs.dll
2008-12-02 23:11:00 ----A---- C:\WINDOWS\system32\nview.dll
2008-12-02 23:11:00 ----A---- C:\WINDOWS\system32\nvgames.dll
2008-12-02 23:11:00 ----A---- C:\WINDOWS\system32\nvdspsch.exe
2008-12-02 23:11:00 ----A---- C:\WINDOWS\system32\nvdisps.dll
2008-12-02 23:11:00 ----A---- C:\WINDOWS\system32\nvcuda.dll
2008-12-02 23:11:00 ----A---- C:\WINDOWS\system32\nvcplui.exe
2008-12-02 23:11:00 ----A---- C:\WINDOWS\system32\nvcpl.dll
2008-12-02 23:11:00 ----A---- C:\WINDOWS\system32\nvcolor.exe
2008-12-02 23:11:00 ----A---- C:\WINDOWS\system32\nvcodins.dll
2008-12-02 23:11:00 ----A---- C:\WINDOWS\system32\nvcod.dll
2008-12-02 23:11:00 ----A---- C:\WINDOWS\system32\nvappbar.exe
2008-12-02 23:11:00 ----A---- C:\WINDOWS\system32\nvapi.dll
2008-12-02 23:11:00 ----A---- C:\WINDOWS\system32\keystone.exe
======List of files/folders modified in the last 1 months======
2008-12-18 21:47:28 ----D---- C:\WINDOWS\Temp
2008-12-18 21:25:11 ----D---- C:\WINDOWS\system32\drivers
2008-12-18 21:25:11 ----D---- C:\WINDOWS\system32
2008-12-18 21:25:10 ----D---- C:\WINDOWS
2008-12-18 21:25:00 ----D---- C:\WINDOWS\Prefetch
2008-12-18 21:23:35 ----A---- C:\WINDOWS\system.ini
2008-12-18 21:23:11 ----D---- C:\WINDOWS\system32\CatRoot2
2008-12-18 21:21:14 ----D---- C:\WINDOWS\AppPatch
2008-12-18 21:21:14 ----D---- C:\Program Files\Fichiers communs
2008-12-18 21:20:22 ----A---- C:\WINDOWS\SchedLgU.Txt
2008-12-18 20:23:37 ----D---- C:\Program Files\Wanadoo
2008-12-17 14:25:28 ----RASH---- C:\boot.ini
2008-12-16 16:32:38 ----ASH---- C:\WINDOWS\system32\lanadata.dll
2008-12-14 15:53:33 ----HD---- C:\WINDOWS\inf
2008-12-14 15:50:32 ----D---- C:\WINDOWS\Debug
2008-12-14 15:47:16 ----D---- C:\Documents and Settings\Florian\Application Data\LimeWire
2008-12-14 15:24:41 ----SD---- C:\WINDOWS\Tasks
2008-12-12 17:44:43 ----SHD---- C:\WINDOWS\Installer
2008-12-12 17:44:36 ----A---- C:\WINDOWS\win.ini
2008-12-12 17:43:56 ----RSHDC---- C:\WINDOWS\system32\dllcache
2008-12-12 17:43:55 ----D---- C:\Program Files\Internet Explorer
2008-12-12 17:43:47 ----D---- C:\WINDOWS\ie7updates
2008-12-12 17:43:39 ----HD---- C:\WINDOWS$hf_mig$
2008-12-09 17:59:04 ----RSD---- C:\WINDOWS\assembly
2008-12-09 17:58:47 ----D---- C:\WINDOWS\system32\DirectX
2008-12-06 21:21:25 ----D---- C:\WINDOWS\Help
2008-12-05 19:59:30 ----D---- C:\WINDOWS\Microsoft.NET
2008-12-05 18:16:45 ----D---- C:\WINDOWS\system32\CatRoot
2008-12-05 18:12:03 ----D---- C:\WINDOWS\system32\fr-fr
2008-12-05 18:09:25 ----RSD---- C:\WINDOWS\Fonts
2008-12-05 18:05:20 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2008-12-05 18:05:07 ----D---- C:\WINDOWS\WinSxS
2008-12-03 14:09:18 ----HD---- C:\Program Files\InstallShield Installation Information
2008-12-03 13:18:44 ----D---- C:\Program Files\Windows Media Player
2008-12-03 13:17:30 ----SD---- C:\Documents and Settings\All Users\Application Data\Microsoft
2008-12-03 13:17:28 ----D---- C:\Program Files
2008-12-03 12:33:25 ----D---- C:\WINDOWS\system32\mui
2008-12-03 12:30:01 ----D---- C:\WINDOWS\system32\spool
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 F-Secure HIPS;F-Secure HIPS; ??\C:\Program Files\Securitoo\av_fw\HIPS\fshs.sys []
R1 intelppm;Pilote de processeur Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40576]
R1 kbdhid;Pilote HID de clavier; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14720]
R3 Arp1394;Protocole client ARP 1394; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-13 60800]
R3 F-Secure Gatekeeper;F-Secure Gatekeeper; ??\C:\Program Files\Securitoo\av_fw\Anti-Virus\minifilter\fsgk.sys []
R3 HDAudBus;Pilote de bus Microsoft UAA pour High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 HidUsb;Pilote de classe HID Microsoft; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2006-07-24 4353024]
R3 mouhid;Pilote HID de souris; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-08-23 12288]
R3 NIC1394;Pilote réseau 1394; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-13 61824]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2008-12-02 6209536]
R3 RTLE8023xp;Realtek 10/100/1000 PCI-E NIC Family NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtenicxp.sys [2006-07-21 82432]
R3 usbccgp;Pilote parent générique USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
R3 usbehci;Pilote miniport de contrôleur d’hôte amélioré Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-13 30208]
R3 usbhub;Concentrateur USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-13 59520]
R3 usbstor;Pilote de stockage de masse USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
R3 usbuhci;Pilote miniport de contrôleur hôte universel USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
S3 apcixy8z;apcixy8z; C:\WINDOWS\system32\drivers\apcixy8z.sys []
S3 DigiCellDriver;DigiCellDriver; ??\C:\Program Files\MSI\DigiCell\NTGLM7X.sys []
S3 driverhardwarev2;driverhardwarev2; ??\C:\Program Files\ma-config.com\Drivers\driverhardwarev2.sys []
S3 GMSIPCI;GMSIPCI; ??\F:\INSTALL\GMSIPCI.SYS []
S3 PCAMPR5;PCAMPR5 NDIS Protocol Driver; ??\C:\WINDOWS\system32\PCAMPR5.SYS []
S3 PCANDIS5;PCANDIS5 NDIS Protocol Driver; ??\C:\WINDOWS\system32\PCANDIS5.SYS []
S3 PCASp50;PCASp50 NDIS Protocol Driver; C:\WINDOWS\System32\Drivers\PCASp50.sys []
S3 RushTopDevice2;RushTopDevice2; ??\C:\Program Files\MSI\DualCoreCenter\RushTop.sys []
S3 ssm_bus;SAMSUNG Mobile USB Device II 1.0 driver (WDM); C:\WINDOWS\system32\DRIVERS\ssm_bus.sys [2005-08-30 58320]
S3 ssm_mdfl;SAMSUNG Mobile USB Modem II 1.0 Filter; C:\WINDOWS\system32\DRIVERS\ssm_mdfl.sys [2005-08-30 8336]
S3 ssm_mdm;SAMSUNG Mobile USB Modem II 1.0 Drivers; C:\WINDOWS\system32\DRIVERS\ssm_mdm.sys [2005-08-30 94000]
S3 usbprint;Classe d’imprimantes USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Pilote de scanneur USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 wceusbsh;Windows CE USB Serial Host Driver; C:\WINDOWS\system32\DRIVERS\wceusbsh.sys [2006-11-06 28672]
S3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2006-10-18 38528]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S4 F-Secure Filter;F-Secure File System Filter; ??\C:\Program Files\Securitoo\av_fw\Anti-Virus\Win2K\FSfilter.sys []
S4 F-Secure Recognizer;F-Secure File System Recognizer; ??\C:\Program Files\Securitoo\av_fw\Anti-Virus\Win2K\FSrec.sys []
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Bonjour Service;##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762##; C:\Program Files\Bonjour\mDNSResponder.exe [2006-02-28 229376]
R2 F-Secure Gatekeeper Handler Starter;FSGKHS; C:\Program Files\Securitoo\av_fw\Anti-Virus\fsgk32st.exe [2007-06-13 41043]
R2 FSMA;F-Secure Management Agent; C:\Program Files\Securitoo\av_fw\Common\FSMA32.EXE [2007-06-13 106546]
R2 FTRTSVC;France Telecom Routing Table Service; C:\WINDOWS\System32\FTRTSVC.exe [2004-08-23 40960]
R2 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2008-12-02 163908]
R2 PnkBstrA;PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [2008-07-31 66872]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R3 FSAUA;F-Secure Automatic Update Agent; C:\Program Files\Securitoo\av_fw\FSAUA\program\fsaua.exe [2007-06-13 450560]
R3 FSDFWD;F-Secure Anti-Virus Firewall Daemon; C:\Program Files\Securitoo\av_fw\FWES\Program\fsdfwd.exe [2007-06-13 446464]
R3 usnjsvc;Service Messenger Sharing Folders USN Journal Reader; C:\Program Files\Windows Live\Messenger\usnsvc.exe [2007-10-18 98328]
S3 aspnet_state;Service d’état ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Fichiers communs\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2007-12-28 654848]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 ose;Office Source Engine; C:\Program Files\Fichiers communs\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 WLSetupSvc;Windows Live Setup Service; C:\Program Files\Windows Live\installer\WLSetupSvc.exe [2007-10-25 266240]
S3 WMPNetworkSvc;Service Partage réseau du Lecteur Windows Media; C:\Program Files\Windows Media Player\WMPNetwk.exe [2006-10-24 918016]
S4 NetTcpPortSharing;Service de partage de ports Net.Tcp; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
-----------------EOF-----------------
Et voila le rapport info.txt :
info.txt logfile of random’s system information tool 1.05 2008-12-18 21:47:29
======Uninstall list======
–>“C:\Program Files\Securitoo\av_fw\Uninstall\fsuninst.exe” /UninstRegKey:“F-Secure Anti-Spyware Scanner”
–>“C:\Program Files\Securitoo\av_fw\Uninstall\fsuninst.exe” /UninstRegKey:“F-Secure Anti-Spyware”
–>“C:\Program Files\Securitoo\av_fw\Uninstall\fsuninst.exe” /UninstRegKey:“F-Secure Anti-Virus Client Security Installer”
–>“C:\Program Files\Securitoo\av_fw\Uninstall\fsuninst.exe” /UninstRegKey:“F-Secure Anti-Virus”
–>“C:\Program Files\Securitoo\av_fw\Uninstall\fsuninst.exe” /UninstRegKey:“F-Secure Automatic Update Agent”
–>“C:\Program Files\Securitoo\av_fw\Uninstall\fsuninst.exe” /UninstRegKey:“F-Secure DAAS”
–>“C:\Program Files\Securitoo\av_fw\Uninstall\fsuninst.exe” /UninstRegKey:“F-Secure Diagnostics”
–>“C:\Program Files\Securitoo\av_fw\Uninstall\fsuninst.exe” /UninstRegKey:“F-Secure E-mail Scanning”
–>“C:\Program Files\Securitoo\av_fw\Uninstall\fsuninst.exe” /UninstRegKey:“F-Secure FWES”
–>“C:\Program Files\Securitoo\av_fw\Uninstall\fsuninst.exe” /UninstRegKey:“F-Secure GateKeeper Interface”
–>“C:\Program Files\Securitoo\av_fw\Uninstall\fsuninst.exe” /UninstRegKey:“F-Secure Gemini”
–>“C:\Program Files\Securitoo\av_fw\Uninstall\fsuninst.exe” /UninstRegKey:“F-Secure GUI”
–>“C:\Program Files\Securitoo\av_fw\Uninstall\fsuninst.exe” /UninstRegKey:“F-Secure Help”
–>“C:\Program Files\Securitoo\av_fw\Uninstall\fsuninst.exe” /UninstRegKey:“F-Secure HIPS”
–>“C:\Program Files\Securitoo\av_fw\Uninstall\fsuninst.exe” /UninstRegKey:“F-Secure Internet Shield”
–>“C:\Program Files\Securitoo\av_fw\Uninstall\fsuninst.exe” /UninstRegKey:“F-Secure Localization API”
–>“C:\Program Files\Securitoo\av_fw\Uninstall\fsuninst.exe” /UninstRegKey:“F-Secure Management Agent”
–>“C:\Program Files\Securitoo\av_fw\Uninstall\fsuninst.exe” /UninstRegKey:“F-Secure Pegasus Engine”
–>“C:\Program Files\Securitoo\av_fw\Uninstall\fsuninst.exe” /UninstRegKey:“F-Secure Spam Control”
–>“C:\Program Files\Securitoo\av_fw\Uninstall\fsuninst.exe” /UninstRegKey:“F-Secure Spam Scanner”
–>“C:\Program Files\Securitoo\av_fw\Uninstall\fsuninst.exe” /UninstRegKey:“F-Secure TNB”
–>“C:\Program Files\Securitoo\av_fw\Uninstall\fsuninst.exe” /UninstRegKey:“F-Secure Uninstall”
–>C:\WINDOWS\UNIN040C.EXE -fd:\photoshop\imageready\DeIsL1.isu
–>rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
Adobe Anchor Service CS3–>MsiExec.exe /I{90176341-0A8B-4CCC-A78D-F862228A6B95}
Adobe Asset Services CS3–>MsiExec.exe /I{6FF5DD7A-FE28-4439-B8CF-1E9AF4EA0A61}
Adobe Bridge CS3–>MsiExec.exe /I{9C9824D9-9000-4373-A6A5-D0E5D4831394}
Adobe Bridge Start Meeting–>MsiExec.exe /I{08B32819-6EEF-4057-AEDA-5AB681A36A23}
Adobe Camera Raw 4.0–>MsiExec.exe /I{B3BF6689-A81D-40D8-9A86-4AC4ACD9FC1C}
Adobe CMaps–>MsiExec.exe /I{A2B242BD-FF8D-4840-9DAA-9170EABEC59C}
Adobe Color - Photoshop Specific–>MsiExec.exe /I{A2D81E70-2A98-4A08-A628-94388B063C5E}
Adobe Color Common Settings–>MsiExec.exe /I{DADD7B8A-BCB0-44F5-967A-ECB6B4F2ECD9}
Adobe Color EU Recommended Settings–>MsiExec.exe /I{73B5D990-04EA-4751-B10F-5534770B91F2}
Adobe Color JA Extra Settings–>MsiExec.exe /I{DD7DB3C5-6FA3-4FA3-8A71-C2F2940EB029}
Adobe Color NA Extra Settings–>MsiExec.exe /I{FF29A7E2-FF40-4D07-B7E4-2093DE59E10A}
Adobe Default Language CS3–>MsiExec.exe /I{B9B35331-B7E4-4E5C-BF4C-7BC87856124D}
Adobe Device Central CS3–>MsiExec.exe /I{8D2BA474-F406-4710-9AE4-D4F22D21F0DD}
Adobe ExtendScript Toolkit 2–>MsiExec.exe /I{C2D69781-F392-4118-A5A7-C7E9C38DBFC2}
Adobe Flash Player 10 ActiveX–>C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
Adobe Flash Player Plugin–>C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
Adobe Fonts All–>MsiExec.exe /I{6ABE0BEE-D572-4FE8-B434-9E72A289431B}
Adobe Help Viewer CS3–>MsiExec.exe /I{04AF207D-9A77-465A-8B76-991F6AB66245}
Adobe Linguistics CS3–>MsiExec.exe /I{54793AA1-5001-42F4-ABB6-C364617C6078}
Adobe PDF Library Files–>MsiExec.exe /I{D2559B88-CC9D-4B48-81BB-F492BAA9C48C}
Adobe Photoshop CS3–>C:\Program Files\Fichiers communs\Adobe\Installers\32e9033392a51340b32fdc6ad893ab7\Setup.exe
Adobe Photoshop CS3–>MsiExec.exe /I{BF794769-8875-4E01-B7BE-E00104604F4A}
Adobe Reader 7.0 - Français–>MsiExec.exe /I{AC76BA86-7AD7-1036-7B44-A70000000000}
Adobe Setup–>MsiExec.exe /I{926DEB4E-2B0A-4C5C-AE4A-BF6C06949702}
Adobe Stock Photos CS3–>MsiExec.exe /I{29E5EA97-5F74-4A57-B8B2-D4F169117183}
Adobe Type Support–>MsiExec.exe /I{8E6808E2-613D-4FCD-81A2-6C8FA8E03312}
Adobe Update Manager CS3–>MsiExec.exe /I{E69AE897-9E0B-485C-8552-7841F48D42D8}
Adobe Version Cue CS3 Client–>MsiExec.exe /I{D0DFF92A-492E-4C40-B862-A74A173C25C5}
Adobe WinSoft Linguistics Plugin–>MsiExec.exe /I{184CE391-7E0E-4C63-9935-D7A10EDFD3C6}
Adobe XMP Panels CS3–>MsiExec.exe /I{802771A9-A856-4A41-ACF7-1450E523C923}
AIDA32 v3.93–>“D:\AIDA32 - Personal System Information\unins000.exe”
Archiveur WinRAR–>D:\WinRAR\uninstall.exe
ArcSoft PhotoStudio 5.5–>RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup “C:\Program Files\InstallShield Installation Information{85309D89-7BE9-4094-BB17-24999C6118FC}\SETUP.EXE” -l0x40c
Assistant de connexion Windows Live–>MsiExec.exe /I{AFA4E5FD-ED70-4D92-99D0-162FD56DC986}
Barre de confiance CM-CIC–>“C:\Program Files\BarreConfCMCIC\Setup.exe” -u
Canon MP Navigator 2.0–>“C:\Program Files\Canon\MP Navigator 2.0\Maint.exe” /UninstallRemove C:\Program Files\Canon\MP Navigator 2.0\uninst.ini
Canon MP170–>“C:\WINDOWS\system32\CanonMP Uninstaller Information{91175441-4E5D-4e13-B116-828FD352CDB2}\DelDrv.exe” /U:{91175441-4E5D-4e13-B116-828FD352CDB2} /L0x000c
Canon Utilities Easy-PhotoPrint–>C:\Program Files\Canon\Easy-PhotoPrint\uninst.exe uninst.ini
CCleaner (remove only)–>“D:\CC Cleaner\CCleaner\uninst.exe”
Company of Heroes - FAKEMSI–>MsiExec.exe /I{14574B7F-75D1-4718-B7F2-EBF6E2862A35}
Company of Heroes - FAKEMSI–>MsiExec.exe /I{199E6632-EB28-4F73-AECB-3E192EB92D18}
Company of Heroes - FAKEMSI–>MsiExec.exe /I{25724802-CC14-4B90-9F3B-3D6955EE27B1}
Company of Heroes - FAKEMSI–>MsiExec.exe /I{32C4A4EB-C97D-414E-99C5-38F8DFD31D5D}
Company of Heroes - FAKEMSI–>MsiExec.exe /I{50193078-F553-4EBA-AA77-64C9FAA12F98}
Company of Heroes - FAKEMSI–>MsiExec.exe /I{51D718D1-DA81-4FAD-919F-5C1CE3C33379}
Company of Heroes - FAKEMSI–>MsiExec.exe /I{66F78C51-D108-4F0C-A93C-1CBE74CE338F}
Company of Heroes - FAKEMSI–>MsiExec.exe /I{7F4B1592-222F-4E5F-A100-E5AFD61A0BB3}
Company of Heroes - FAKEMSI–>MsiExec.exe /I{80D03817-7943-4839-8E96-B9F924C5E67D}
Company of Heroes - FAKEMSI–>MsiExec.exe /I{97E5205F-EA4F-438F-B211-F1846419F1C1}
Company of Heroes - FAKEMSI–>MsiExec.exe /I{99A7722D-9ACB-43F3-A222-ABC7133F159E}
Company of Heroes - FAKEMSI–>MsiExec.exe /I{BA801B94-C28D-46EE-B806-E1E021A3D519}
Company of Heroes - FAKEMSI–>MsiExec.exe /I{D4D244D1-05E0-4D24-86A2-B2433C435671}
Company of Heroes - FAKEMSI–>MsiExec.exe /I{EAF636A9-F664-4703-A659-85A894DA264F}
Company of Heroes–>“D:\CoH opposing fronts\Uninstall_French.exe”
Correctif pour Lecteur Windows Media 11 (KB939683)–>“C:\WINDOWS$NtUninstallKB939683$\spuninst\spuninst.exe”
Correctif pour Windows Internet Explorer 7 (KB947864)–>“C:\WINDOWS\ie7updates\KB947864-IE7\spuninst\spuninst.exe”
Correctif pour Windows XP (KB952287)–>“C:\WINDOWS$NtUninstallKB952287$\spuninst\spuninst.exe”
Crysis®–>MsiExec.exe /I{000E79B7-E725-4F01-870A-C12942B7F8E4}
DeepBurner v1.9.0.228–>“D:\DeepBurner\Uninstall.exe” “D:\DeepBurner\install.log” -u
Easy-WebPrint–>C:\WINDOWS\IsUn040c.exe -f"C:\Program Files\Canon\Easy-WebPrint\Uninst.isu"
EAX Unified–>C:\WINDOWS\IsUninst.exe -f"C:\Program Files\Creative\EAX Unified\Uninst.isu"
EmoDio–>“C:\Program Files\InstallShield Installation Information{C20CE592-B0F8-4D20-BF31-0151CA6331A6}\setup.exe” -runfromtemp -l0x040c -removeonly
EmoDio–>MsiExec.exe /X{C20CE592-B0F8-4D20-BF31-0151CA6331A6}
Free Mp3 Wma Converter V 1.6.0–>“D:\Convertisseur audio\Free Audio Pack\unins000.exe”
Galerie de photos Windows Live–>MsiExec.exe /X{A70FA218-6598-4AC9-813D-63597C5DD068}
Gestionnaire Internet–>C:\PROGRA~1\Wanadoo\uninstall.exe
Grand Theft Auto IV–>“C:\Program Files\InstallShield Installation Information{579BA58C-F33D-4970-9953-B94B43768AC3}\setup.exe” -runfromtemp -l0x040c -removeonly
High Definition Audio Driver Package - KB888111–>“C:\WINDOWS$NtUninstallKB888111WXPSP2$\spuninst\spuninst.exe”
HijackThis 2.0.2–>“D:\Hijackthis\HijackThis.exe” /uninstall
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)–>C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT=""
Hotfix for Windows Media Format 11 SDK (KB929399)–>“C:\WINDOWS$NtUninstallKB929399$\spuninst\spuninst.exe”
Java™ 6 Update 5–>MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160050}
JMB36X Raid Configurer–>RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup “C:\Program Files\InstallShield Installation Information{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}\setup.exe” -l0x40c -removeonly
K-Lite Codec Pack 3.8.0 Full–>“E:\Codecs\K-Lite Codec Pack\unins000.exe”
Lecteur Windows Media 11–>“C:\Program Files\Windows Media Player\Setup_wm.exe” /Uninstall
Ma-Config.com plugin–>MsiExec.exe /I{D2D7529F-6B55-4C1C-BC9C-D6F1BCC066B6}
Mafia Game–>C:\WINDOWS\system32\MafiaSetup.exe
Mafia–>D:\Mafia\Mafia\patch.exe
Malwarebytes’ Anti-Malware–>“D:\MalwareByte’s Anti-Malware\Malwarebytes’ Anti-Malware\unins000.exe”
Messenger Plus! Live–>“C:\Program Files\Messenger Plus! Live\Uninstall.exe”
Microsoft .NET Framework 2.0 Service Pack 2 Language Pack - FRA–>MsiExec.exe /I{72AD53CC-CCC0-3757-8480-9EE176866A7C}
Microsoft .NET Framework 2.0 Service Pack 2–>MsiExec.exe /I{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}
Microsoft .NET Framework 3.0 French Language Pack–>MsiExec.exe /X{E3C080B0-23F5-49AF-89F8-8E8DBC89E659}
Microsoft .NET Framework 3.0 Service Pack 2 Language Pack - FRA–>MsiExec.exe /I{0BD83598-C2EF-3343-847B-7D2E84599128}
Microsoft .NET Framework 3.0 Service Pack 2–>MsiExec.exe /I{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}
Microsoft .NET Framework 3.5 Language Pack SP1 - fra–>MsiExec.exe /I{3E31821C-7917-367E-938E-E65FC413EA31}
Microsoft .NET Framework 3.5 SP1–>C:\WINDOWS\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
Microsoft .NET Framework 3.5 SP1–>MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
Microsoft Compression Client Pack 1.0 for Windows XP–>“C:\WINDOWS$NtUninstallMSCompPackV1$\spuninst\spuninst.exe”
Microsoft Games for Windows - LIVE -->MsiExec.exe /X{4AA3D64E-9EC3-4B0F-AB91-5885AC55641F}
Microsoft Games for Windows - LIVE Redistributable–>MsiExec.exe /X{FD052FB9-FE90-4438-B355-15EDC89D8FB1}
Microsoft Internationalized Domain Names Mitigation APIs–>“C:\WINDOWS$NtServicePackUninstallIDNMitigationAPIs$\spuninst\spuninst.exe”
Microsoft National Language Support Downlevel APIs–>“C:\WINDOWS$NtServicePackUninstallNLSDownlevelMapping$\spuninst\spuninst.exe”
Microsoft Office Standard Edition 2003–>MsiExec.exe /I{9112040C-6000-11D3-8CFE-0150048383C9}
Microsoft SQL Server 2005 Compact Edition [ENU]–>MsiExec.exe /I{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}
Microsoft User-Mode Driver Framework Feature Pack 1.0–>“C:\WINDOWS$NtUninstallWudf01000$\spuninst\spuninst.exe”
Microsoft Visual C++ 2005 Redistributable–>MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
Mise à jour de sécurité pour Lecteur Windows Media (KB952069)–>“C:\WINDOWS$NtUninstallKB952069_WM9$\spuninst\spuninst.exe”
Mise à jour de sécurité pour Lecteur Windows Media 11 (KB936782)–>“C:\WINDOWS$NtUninstallKB936782_WMP11$\spuninst\spuninst.exe”
Mise à jour de sécurité pour Lecteur Windows Media 11 (KB954154)–>“C:\WINDOWS$NtUninstallKB954154_WM11$\spuninst\spuninst.exe”
Mise à jour de sécurité pour Lecteur Windows Media 9 (KB917734)–>“C:\WINDOWS$NtUninstallKB917734_WMP9$\spuninst\spuninst.exe”
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB938127)–>“C:\WINDOWS\ie7updates\KB938127-IE7\spuninst\spuninst.exe”
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB944533)–>“C:\WINDOWS\ie7updates\KB944533-IE7\spuninst\spuninst.exe”
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB950759)–>“C:\WINDOWS\ie7updates\KB950759-IE7\spuninst\spuninst.exe”
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB953838)–>“C:\WINDOWS\ie7updates\KB953838-IE7\spuninst\spuninst.exe”
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB956390)–>“C:\WINDOWS\ie7updates\KB956390-IE7\spuninst\spuninst.exe”
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB958215)–>“C:\WINDOWS\ie7updates\KB958215-IE7\spuninst\spuninst.exe”
Mise à jour de sécurité pour Windows XP (KB938464)–>“C:\WINDOWS$NtUninstallKB938464$\spuninst\spuninst.exe”
Mise à jour de sécurité pour Windows XP (KB941569)–>“C:\WINDOWS$NtUninstallKB941569$\spuninst\spuninst.exe”
Mise à jour de sécurité pour Windows XP (KB946648)–>“C:\WINDOWS$NtUninstallKB946648$\spuninst\spuninst.exe”
Mise à jour de sécurité pour Windows XP (KB950760)–>“C:\WINDOWS$NtUninstallKB950760$\spuninst\spuninst.exe”
Mise à jour de sécurité pour Windows XP (KB950762)–>“C:\WINDOWS$NtUninstallKB950762$\spuninst\spuninst.exe”
Mise à jour de sécurité pour Windows XP (KB950974)–>“C:\WINDOWS$NtUninstallKB950974$\spuninst\spuninst.exe”
Mise à jour de sécurité pour Windows XP (KB951066)–>“C:\WINDOWS$NtUninstallKB951066$\spuninst\spuninst.exe”
Mise à jour de sécurité pour Windows XP (KB951376)–>“C:\WINDOWS$NtUninstallKB951376$\spuninst\spuninst.exe”
Mise à jour de sécurité pour Windows XP (KB951376-v2)–>“C:\WINDOWS$NtUninstallKB951376-v2$\spuninst\spuninst.exe”
Mise à jour de sécurité pour Windows XP (KB951698)–>“C:\WINDOWS$NtUninstallKB951698$\spuninst\spuninst.exe”
Mise à jour de sécurité pour Windows XP (KB951748)–>“C:\WINDOWS$NtUninstallKB951748$\spuninst\spuninst.exe”
Mise à jour de sécurité pour Windows XP (KB952954)–>“C:\WINDOWS$NtUninstallKB952954$\spuninst\spuninst.exe”
Mise à jour de sécurité pour Windows XP (KB953839)–>“C:\WINDOWS$NtUninstallKB953839$\spuninst\spuninst.exe”
Mise à jour de sécurité pour Windows XP (KB954211)–>“C:\WINDOWS$NtUninstallKB954211$\spuninst\spuninst.exe”
Mise à jour de sécurité pour Windows XP (KB954459)–>“C:\WINDOWS$NtUninstallKB954459$\spuninst\spuninst.exe”
Mise à jour de sécurité pour Windows XP (KB954600)–>“C:\WINDOWS$NtUninstallKB954600$\spuninst\spuninst.exe”
Mise à jour de sécurité pour Windows XP (KB955069)–>“C:\WINDOWS$NtUninstallKB955069$\spuninst\spuninst.exe”
Mise à jour de sécurité pour Windows XP (KB956391)–>“C:\WINDOWS$NtUninstallKB956391$\spuninst\spuninst.exe”
Mise à jour de sécurité pour Windows XP (KB956802)–>“C:\WINDOWS$NtUninstallKB956802$\spuninst\spuninst.exe”
Mise à jour de sécurité pour Windows XP (KB956803)–>“C:\WINDOWS$NtUninstallKB956803$\spuninst\spuninst.exe”
Mise à jour de sécurité pour Windows XP (KB956841)–>“C:\WINDOWS$NtUninstallKB956841$\spuninst\spuninst.exe”
Mise à jour de sécurité pour Windows XP (KB957095)–>“C:\WINDOWS$NtUninstallKB957095$\spuninst\spuninst.exe”
Mise à jour de sécurité pour Windows XP (KB957097)–>“C:\WINDOWS$NtUninstallKB957097$\spuninst\spuninst.exe”
Mise à jour de sécurité pour Windows XP (KB958644)–>“C:\WINDOWS$NtUninstallKB958644$\spuninst\spuninst.exe”
Mise à jour pour Windows XP (KB951072-v2)–>“C:\WINDOWS$NtUninstallKB951072-v2$\spuninst\spuninst.exe”
Mise à jour pour Windows XP (KB951978)–>“C:\WINDOWS$NtUninstallKB951978$\spuninst\spuninst.exe”
Mise à jour pour Windows XP (KB955839)–>“C:\WINDOWS$NtUninstallKB955839$\spuninst\spuninst.exe”
Module de prise en charge linguistique du français de Microsoft .NET Framework 3.0–>C:\WINDOWS\Microsoft.NET\Framework\v3.0\Microsoft .NET Framework 3.0 French Language Pack\setup.exe
Module linguistique Microsoft .NET Framework 3.5 SP1- fra–>C:\WINDOWS\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack SP1 - fra\setup.exe
Mp3tag v2.41–>D:\MP3tag\Mp3tagUninstall.EXE
MSXML 4.0 SP2 (KB936181)–>MsiExec.exe /I{C04E32E0-0416-434D-AFB9-6969D703A9EF}
MSXML 4.0 SP2 (KB954430)–>MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
MSXML 6.0 Parser (KB925673)–>MsiExec.exe /I{FE9126DB-5F84-495A-BB46-3C724F1C2D08}
MyFreeCodec–>D:\MyFreeCodecPack\09c beta\uninstall.exe
Navigateur Orange–>C:\PROGRA~1\Wanadoo\Shell.exe inst\uninst_FTBrowser.shl
NVIDIA Drivers–>C:\WINDOWS\system32\nvuninst.exe UninstallGUI
OmniPage SE 2.0–>MsiExec.exe /I{79D5997E-BF79-48BB-8B41-9BE59C15C2D7}
Opendisc Light ActiveX Control 1.0–>RunDll32 advpack.dll,LaunchINFSection C:\WINDOWS\INF\OpendiscLight.inf,DefaultUninstall,5
PDF Settings–>MsiExec.exe /I{AC5B0C19-D851-42F4-BDA0-410ECF7F70A5}
Pro Evolution Soccer 2009–>MsiExec.exe /X{A8DB611A-D80E-450D-85F6-3ACDD164BE31}
PunkBuster Services–>C:\WINDOWS\system32\pbsvc.exe -u
Realtek High Definition Audio Driver–>RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup “C:\Program Files\InstallShield Installation Information{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}\Setup.exe” -l0x40c -removeonly
Rockstar Games Social Club–>“C:\Program Files\InstallShield Installation Information{08B3869E-D282-424C-9AFC-870E04A4BA14}\setup.exe” -runfromtemp -l0x040c -removeonly
SAMSUNG CDMA Modem Driver Set–>C:\WINDOWS\system32\Samsung_USB_Drivers\3\SSCDUninstall.exe
SAMSUNG Mobile USB Modem ^^–>C:\WINDOWS\system32\Samsung_USB_Drivers\4\SSVDUninstall.exe
SAMSUNG Mobile USB Modem 1.0 Software–>C:\WINDOWS\system32\Samsung_USB_Drivers\1\SS_Uninstall.exe
SAMSUNG Mobile USB Modem Software–>C:\WINDOWS\system32\Samsung_USB_Drivers\2\SSM_Uninstall.exe
Samsung PC Studio–>RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\10\50\Intel32\Ctor.dll,LaunchSetup “C:\Program Files\InstallShield Installation Information{C4A4722E-79F9-417C-BD72-8D359A090C97}\setup.exe” -l0x40c -removeonly
Samsung Samples Installer–>RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\10\50\Intel32\Ctor.dll,LaunchSetup “C:\Program Files\InstallShield Installation Information{7AC15160-A49B-4A89-B181-D4619C025FFF}\setup.exe” -l0x40c -removeonly
Securitoo AntiVirus Firewall–>“C:\Program Files\Securitoo\av_fw\FSGUI\PostInstall.exe” /tUnInstall
Twin USB Vibration Gamepad–>RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0700\Intel32\Ctor.dll,LaunchSetup “C:\Program Files\InstallShield Installation Information{BA12FD6D-169A-11D7-A6A9-00C026281E5A}\setup.exe” -l0x9
VideoLAN VLC media player 0.8.5–>C:\Program Files\VideoLAN\VLC\uninstall.exe
Wanadoo Messager–>C:\PROGRA~1\WANADO~1\UNWISE.EXE C:\PROGRA~1\WANADO~1\INSTALL.LOG
Windows Imaging Component–>“C:\WINDOWS$NtUninstallWIC$\spuninst\spuninst.exe”
Windows Live installer–>MsiExec.exe /X{FD44E544-E7D0-4DBA-9FA0-8AE1A1300390}
Windows Live Messenger–>MsiExec.exe /X{BADF6744-3787-48F6-B8C9-4C4995401D65}
Windows Media Format 11 runtime–>“C:\Program Files\Windows Media Player\wmsetsdk.exe” /UninstallAll
Windows Media Format 11 runtime–>“C:\WINDOWS$NtUninstallWMFDist11$\spuninst\spuninst.exe”
Windows Media Player 11–>“C:\WINDOWS$NtUninstallwmp11$\spuninst\spuninst.exe”
Windows Presentation Foundation Language Pack (FRA)–>MsiExec.exe /X{6901DD22-527A-41EF-9059-E81FEDE9E494}
Windows Presentation Foundation–>MsiExec.exe /X{BAF78226-3200-4DB4-BE33-4D922A799840}
Windows XP Service Pack 3–>“C:\WINDOWS$NtServicePackUninstall$\spuninst\spuninst.exe”
XML Paper Specification Shared Components Language Pack 1.0–>“C:\WINDOWS$NtUninstallXPSEPSCLP$\spuninst\spuninst.exe”
======Security center information======
AV: Securitoo AntiVirus Firewall 7.00
FW: Securitoo AntiVirus Firewall 7.00
System event log
Computer Name: PC-3257AB58FDE9
Event Code: 7035
Message: Un contrôle Démarrer a correctement été envoyé au service F-Secure Automatic Update Agent.
Record Number: 32600
Source Name: Service Control Manager
Time Written: 20081127180017.000000+060
Event Type: Informations
User: AUTORITE NT\SYSTEM
Computer Name: PC-3257AB58FDE9
Event Code: 7036
Message: Le service F-Secure Automatic Update Agent est entré dans l’état : en cours d’exécution.
Record Number: 32599
Source Name: Service Control Manager
Time Written: 20081127180017.000000+060
Event Type: Informations
User:
Computer Name: PC-3257AB58FDE9
Event Code: 7035
Message: Un contrôle Démarrer a correctement été envoyé au service Service de découvertes SSDP.
Record Number: 32598
Source Name: Service Control Manager
Time Written: 20081127180017.000000+060
Event Type: Informations
User: AUTORITE NT\SYSTEM
Computer Name: PC-3257AB58FDE9
Event Code: 7036
Message: Le service NLA (Network Location Awareness) est entré dans l’état : en cours d’exécution.
Record Number: 32597
Source Name: Service Control Manager
Time Written: 20081127180017.000000+060
Event Type: Informations
User:
Computer Name: PC-3257AB58FDE9
Event Code: 7035
Message: Un contrôle Démarrer a correctement été envoyé au service NLA (Network Location Awareness).
Record Number: 32596
Source Name: Service Control Manager
Time Written: 20081127180017.000000+060
Event Type: Informations
User: AUTORITE NT\SYSTEM
Application event log
Computer Name: PC-3257AB58FDE9
Event Code: 100
Message: msnmsgr (3876) Le moteur de base de données 5.01.2600.2780 est démarré.
Record Number: 12286
Source Name: ESENT
Time Written: 20081003230318.000000+120
Event Type: Informations
User:
Computer Name: PC-3257AB58FDE9
Event Code: 101
Message: msnmsgr (3876) Le moteur de base de données est arrêté.
Record Number: 12285
Source Name: ESENT
Time Written: 20081003230203.000000+120
Event Type: Informations
User:
Computer Name: PC-3257AB58FDE9
Event Code: 103
Message: msnmsgr (3876) \.\C:\Documents and Settings\Florian\Local Settings\Application Data\Microsoft\Messenger\flobo.44@hotmail.fr\SharingMetadata\Working\database_9AFC_2573_FC25_4B39\dfsr.db: Le moteur de base de données a arrêté une instance (0).
Record Number: 12284
Source Name: ESENT
Time Written: 20081003230203.000000+120
Event Type: Informations
User:
Computer Name: PC-3257AB58FDE9
Event Code: 102
Message: msnmsgr (3876) \.\C:\Documents and Settings\Florian\Local Settings\Application Data\Microsoft\Messenger\flobo.44@hotmail.fr\SharingMetadata\Working\database_9AFC_2573_FC25_4B39\dfsr.db: Le moteur de base de données a démarré une nouvelle instance (0).
Record Number: 12283
Source Name: ESENT
Time Written: 20081003225747.000000+120
Event Type: Informations
User:
Computer Name: PC-3257AB58FDE9
Event Code: 100
Message: msnmsgr (3876) Le moteur de base de données 5.01.2600.2780 est démarré.
Record Number: 12282
Source Name: ESENT
Time Written: 20081003225747.000000+120
Event Type: Informations
User:
======Environment variables======
“ComSpec”=%SystemRoot%\system32\cmd.exe
“Path”=%systemroot%\system32;%systemroot%;%systemroot%\system32\wbem;C:\Program Files;C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727
“windir”=%SystemRoot%
“FP_NO_HOST_CHECK”=NO
“OS”=Windows_NT
“PROCESSOR_ARCHITECTURE”=x86
“PROCESSOR_LEVEL”=6
“PROCESSOR_IDENTIFIER”=x86 Family 6 Model 15 Stepping 6, GenuineIntel
“PROCESSOR_REVISION”=0f06
“NUMBER_OF_PROCESSORS”=2
“PATHEXT”=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
“TEMP”=%SystemRoot%\TEMP
“TMP”=%SystemRoot%\TEMP
“RGSCLauncher”=D:\GTA IV\Rockstar Games Social Club
“RGSC”=D:\GTA IV\Rockstar Games Social Club\1_0_0_0
-----------------EOF-----------------