Forum Clubic

Intrusion.Win.MSSQL.worm.Helkern

Bonjour

J’ai eu un petit soucis avec Kaspersky hier, j’ai eu cela d’affiché: 18/01/2010 16:32:49 UDP de 218.204.137.156 sur le port local 1434 Absent Détectés: Intrusion.Win.MSSQL.worm.Helkern

Cela s’est passé alors que j’étais sorti.

J’ai passé un coup d’antivirus et de mbam.
Rien pour l’antivirus et quelques broutilles pour mbam.
La faute à moi car j’ai coché comme conseillé par Kaspersky le contrôle de quelques ports seulement…
Faute corrigée bien sur!

Si quelqu’un peu me vérifier ceci ce serait super cool :wink:

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 10:05:02, on 19/01/2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Program Files\Analog Devices\SoundMAX\Smax4.exe
C:\Program Files\D-Link\AirPlus XtremeG DWL-G520\AirPlusCFG.exe
C:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\a-squared Free\a2service.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\WINDOWS\system32\PSIService.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\Wacom_Tablet.exe
C:\Program Files\Raxco\PerfectDisk\PDSched.exe
C:\WINDOWS\system32\WTablet\Wacom_TabletUser.exe
C:\WINDOWS\system32\Wacom_Tablet.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = go.microsoft.com…
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = go.microsoft.com…
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = go.microsoft.com…
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = go.microsoft.com…
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\ievkbd.dll
O2 - BHO: Java™ Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM…\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM…\Run: [SoundMAX] “C:\Program Files\Analog Devices\SoundMAX\Smax4.exe” /tray
O4 - HKLM…\Run: [D-Link AirPlus XtremeG DWL-G520] C:\Program Files\D-Link\AirPlus XtremeG DWL-G520\AirPlusCFG.exe
O4 - HKLM…\Run: [ANIWZCS2Service] C:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe
O4 - HKLM…\Run: [AVP] “C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe”
O4 - HKLM…\Run: [nwiz] C:\Program Files\NVIDIA Corporation\nView\nwiz.exe /install
O4 - HKLM…\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM…\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKCU…\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19…\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User ‘SERVICE LOCAL’)
O4 - HKUS\S-1-5-20…\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User ‘SERVICE RÉSEAU’)
O4 - HKUS\S-1-5-18…\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User ‘SYSTEM’)
O4 - HKUS.DEFAULT…\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User ‘Default user’)
O8 - Extra context menu item: Ajouter à Kaspersky Anti-Bannière - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\ie_banner_deny.htm
O8 - Extra context menu item: E&xporter vers Microsoft Excel - C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE…
O9 - Extra button: Statistiques de la protection du trafic Internet - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\SCIEPlgn.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra ‘Tools’ menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra ‘Tools’ menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - update.microsoft.com…
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - update.microsoft.com…
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} (get_atlcom Class) - platformdl.adobe.com…
O20 - AppInit_DLLs: C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd3.dll,C:\PROGRA~1\KASPER~1\KASPER~1\adialhk.dll,C:\PROGRA~1\KASPER~1\KASPER~1\kloehk.dll
O23 - Service: a-squared Free Service (a2free) - Emsi Software GmbH - C:\Program Files\a-squared Free\a2service.exe
O23 - Service: ANIWZCSd Service (ANIWZCSdService) - Wireless Service - C:\Program Files\ANI\ANIWZCS2 Service\ANIWZCSdS.exe
O23 - Service: Kaspersky Internet Security (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe
O23 - Service: Service Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: PDEngine - Raxco Software, Inc. - C:\Program Files\Raxco\PerfectDisk\PDEngine.exe
O23 - Service: PDScheduler (PDSched) - Raxco Software, Inc. - C:\Program Files\Raxco\PerfectDisk\PDSched.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: ProtexisLicensing - Unknown owner - C:\WINDOWS\system32\PSIService.exe
O23 - Service: TabletServiceWacom - Wacom Technology, Corp. - C:\WINDOWS\system32\Wacom_Tablet.exe


End of file - 6603 bytes

encore merci d’avance.

Bonjour dyazy

Ton log est bon pas de problème. :super:

Bonne journée @+ :hello:

armaguedon27

Bonjour dyazy,

Rien d’apparent dans le rapport :super: Kaspersky a fait son boulôt.

Tu peut également consulté ce tuto pour bien paramétrer ton kaspersky forum.pcastuces.com…

Bonne journée.

Salut

Autrement rien dans ce Log Hijackthis,quelques lignes superflues

Lances Hijackthis

http://i47.tinypic.com/b4t6kl.gif

Cliques sur ==> Do a System Scan Only

coches ces Lignes

Fermes tes autres applications

et Cliques sur ==> Fix Checked

si tu as encore des doutes

Télécharge Random’s System Information Tool (RSIT) par random/random et sauvegarde-le sur ton Bureau.

http://i46.tinypic.com/i5q0c7.png

==>RSIT

==> Double-clique sur RSIT.exe afin de lancer RSIT.

==> Clique sur Continue à l’écran Disclaimer.
==> Si l’outil HijackThis (version à jour) n’est pas présent ou non détecté sur l’ordinateur, RSIT le téléchargera et tu devras accepter la licence.
==>Lorsque l’analyse sera terminée, deux fichiers texte s’ouvriront.

==> Poste le contenu de log.txt (<==qui sera affiché) ainsi que de info.txt (<==qui sera réduit dans la Barre des Tâches).

Note : Les deux rapports sont également sauvegardés %systemroot%\rsit

cricri58
Edité le 20/01/2010 à 15:22

[Photo supprimée] cricri58

Merci beaucoup pour toutes ces réponses :wink:

j’ai fixer les lignes comme demandé et voici les résultats de l’analyse.

log.txt

Logfile of random’s system information tool 1.06 (written by random/random)
Run by herve at 2010-01-20 09:36:22
Microsoft Windows XP Professionnel Service Pack 3
System drive C: has 571 GB (80%) free of 715 GB
Total RAM: 3327 MB (85% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 09:36:23, on 20/01/2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Program Files\Analog Devices\SoundMAX\Smax4.exe
C:\Program Files\D-Link\AirPlus XtremeG DWL-G520\AirPlusCFG.exe
C:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\a-squared Free\a2service.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\WINDOWS\system32\PSIService.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\Wacom_Tablet.exe
C:\Program Files\Raxco\PerfectDisk\PDSched.exe
C:\WINDOWS\system32\WTablet\Wacom_TabletUser.exe
C:\WINDOWS\system32\Wacom_Tablet.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\Documents and Settings\herve\Mes documents\Téléchargements\RSIT.exe
C:\Program Files\Trend Micro\HijackThis\herve.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = go.microsoft.com…
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = go.microsoft.com…
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = go.microsoft.com…
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = go.microsoft.com…
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\ievkbd.dll
O2 - BHO: Java™ Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM…\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM…\Run: [SoundMAX] “C:\Program Files\Analog Devices\SoundMAX\Smax4.exe” /tray
O4 - HKLM…\Run: [D-Link AirPlus XtremeG DWL-G520] C:\Program Files\D-Link\AirPlus XtremeG DWL-G520\AirPlusCFG.exe
O4 - HKLM…\Run: [ANIWZCS2Service] C:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe
O4 - HKLM…\Run: [AVP] “C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe”
O4 - HKLM…\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM…\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O8 - Extra context menu item: Ajouter à Kaspersky Anti-Bannière - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\ie_banner_deny.htm
O8 - Extra context menu item: E&xporter vers Microsoft Excel - C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE…
O9 - Extra button: Statistiques de la protection du trafic Internet - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\SCIEPlgn.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra ‘Tools’ menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra ‘Tools’ menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - update.microsoft.com…
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - update.microsoft.com…
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} (get_atlcom Class) - platformdl.adobe.com…
O20 - AppInit_DLLs: C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd3.dll,C:\PROGRA~1\KASPER~1\KASPER~1\adialhk.dll,C:\PROGRA~1\KASPER~1\KASPER~1\kloehk.dll
O23 - Service: a-squared Free Service (a2free) - Emsi Software GmbH - C:\Program Files\a-squared Free\a2service.exe
O23 - Service: ANIWZCSd Service (ANIWZCSdService) - Wireless Service - C:\Program Files\ANI\ANIWZCS2 Service\ANIWZCSdS.exe
O23 - Service: Kaspersky Internet Security (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe
O23 - Service: Service Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: PDEngine - Raxco Software, Inc. - C:\Program Files\Raxco\PerfectDisk\PDEngine.exe
O23 - Service: PDScheduler (PDSched) - Raxco Software, Inc. - C:\Program Files\Raxco\PerfectDisk\PDSched.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: ProtexisLicensing - Unknown owner - C:\WINDOWS\system32\PSIService.exe
O23 - Service: TabletServiceWacom - Wacom Technology, Corp. - C:\WINDOWS\system32\Wacom_Tablet.exe


End of file - 6070 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\GlaryInitialize.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\tasks\OGALogon.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects{59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C}]
IEVkbdBHO Class - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\ievkbd.dll [2009-08-27 64016]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java™ Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-10-23 41760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2009-10-23 73728]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
“SoundMAXPnP”=C:\Program Files\Analog Devices\Core\smax4pnp.exe [2007-10-08 1036288]
“SoundMAX”=C:\Program Files\Analog Devices\SoundMAX\Smax4.exe [2007-10-07 864256]
“D-Link AirPlus XtremeG DWL-G520”=C:\Program Files\D-Link\AirPlus XtremeG DWL-G520\AirPlusCFG.exe [2007-06-21 1327104]
“ANIWZCS2Service”=C:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe [2007-01-19 49152]
“AVP”=C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe [2009-08-27 208616]
“NvCplDaemon”=C:\WINDOWS\system32\NvCpl.dll [2009-09-27 13918208]
“NvMediaCenter”=C:\WINDOWS\system32\NvMcTray.dll [2009-09-27 86016]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
“AppInit_DLLS”=“C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd3.dll,C:\PROGRA~1\KASPER~1\KASPER~1\adialhk.dll,C:\PROGRA~1\KASPER~1\KASPER~1\kloehk.dll”

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\klogon]
C:\WINDOWS\system32\klogon.dll [2009-08-27 219664]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265088]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
“dontdisplaylastusername”=0
“legalnoticecaption”=
“legalnoticetext”=
“shutdownwithoutlogon”=1
“undockwithoutlogon”=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
“NoDriveTypeAutoRun”=145

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
“HonorAutoRunSetting”=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
“%windir%\Network Diagnostic\xpnetdiag.exe”="%windir%\Network Diagnostic\xpnetdiag.exe::Enabled:@xpsp3res.dll,-20000"
“C:\Program Files\Free Music Zilla\FMZilla.exe”="C:\Program Files\Free Music Zilla\FMZilla.exe:
:Enabled:FMZilla"
“C:\Program Files\Steam\steamapps\common\star wars the clone wars\RepublicHeroesLauncher.exe”=“C:\Program Files\Steam\steamapps\common\star wars the clone wars\RepublicHeroesLauncher.exe::Enabled:Star Wars The Clone Wars: Republic Heroes"
“C:\WINDOWS\system32\sessmgr.exe”="C:\WINDOWS\system32\sessmgr.exe:
:Disabled:@xpsp2res.dll,-22019”
“C:\Program Files\Steam\steamapps\common\burnout™ paradise the ultimate box\BurnoutParadise.exe”=“C:\Program Files\Steam\steamapps\common\burnout™ paradise the ultimate box\BurnoutParadise.exe::Enabled:Burnout Paradise: The Ultimate Box"
“C:\Program Files\Steam\steamapps\common\burnout™ paradise the ultimate box\BurnoutConfigTool.exe”="C:\Program Files\Steam\steamapps\common\burnout™ paradise the ultimate box\BurnoutConfigTool.exe:
:Enabled:Burnout Paradise: The Ultimate Box”
“C:\Program Files\Steam\steamapps\common\clutch\Clutch.exe”=“C:\Program Files\Steam\steamapps\common\clutch\Clutch.exe::Enabled:Clutch"
“C:\Program Files\Steam\steamapps\common\penguins arena\PenguinsArena.exe”="C:\Program Files\Steam\steamapps\common\penguins arena\PenguinsArena.exe:
:Enabled:Penguins Arena: Sedna’s World”
“C:\Program Files\Steam\steamapps\common\tomb raider underworld\tru.exe”=“C:\Program Files\Steam\steamapps\common\tomb raider underworld\tru.exe::Enabled:Tomb Raider: Underworld"
“C:\Program Files\Steam\steamapps\common\grid\grid.exe”="C:\Program Files\Steam\steamapps\common\grid\grid.exe:
:Enabled:GRID”
“C:\Program Files\Steam\steamapps\common\mini ninjas\ninja.exe”=“C:\Program Files\Steam\steamapps\common\mini ninjas\ninja.exe::Enabled:Mini Ninjas"
“C:\Program Files\Steam\steamapps\common\lego star wars saga\LEGOStarWarsSaga.exe”="C:\Program Files\Steam\steamapps\common\lego star wars saga\LEGOStarWarsSaga.exe:
:Enabled:Lego Star Wars Saga”
“C:\Program Files\Steam\Steam.exe”=“C:\Program Files\Steam\Steam.exe::Enabled:Steam"
“C:\Program Files\Steam\steamapps\common\world in conflict\wic.exe”="C:\Program Files\Steam\steamapps\common\world in conflict\wic.exe:
:Enabled:World in Conflict”
“C:\Program Files\Steam\steamapps\common\need for speed undercover\nfs.exe”=“C:\Program Files\Steam\steamapps\common\need for speed undercover\nfs.exe::Enabled:Need for Speed: Undercover"
“C:\Program Files\Steam\steamapps\common\jedi outcast\GameData\jk2sp.exe”="C:\Program Files\Steam\steamapps\common\jedi outcast\GameData\jk2sp.exe:
:Enabled:Star Wars Jedi Knight II: Jedi Outcast”
“C:\Program Files\Steam\steamapps\common\jedi outcast\GameData\jk2mp.exe”=“C:\Program Files\Steam\steamapps\common\jedi outcast\GameData\jk2mp.exe::Enabled:Star Wars Jedi Knight II: Jedi Outcast"
“C:\Program Files\Steam\steamapps\common\jedi academy\GameData\jasp.exe”="C:\Program Files\Steam\steamapps\common\jedi academy\GameData\jasp.exe:
:Enabled:Star Wars Jedi Knight: Jedi Academy”
“C:\Program Files\Steam\steamapps\common\jedi academy\GameData\jamp.exe”=“C:\Program Files\Steam\steamapps\common\jedi academy\GameData\jamp.exe::Enabled:Star Wars Jedi Knight: Jedi Academy"
“C:\Program Files\Steam\steamapps\common\fallout 3\FalloutLauncher.exe”="C:\Program Files\Steam\steamapps\common\fallout 3\FalloutLauncher.exe:
:Enabled:Fallout 3”
“C:\Program Files\Steam\steamapps\common\left 4 dead\left4dead.exe”=“C:\Program Files\Steam\steamapps\common\left 4 dead\left4dead.exe::Enabled:Left 4 Dead"
“C:\Program Files\Steam\steamapps\common\call of duty 4\iw3sp.exe”="C:\Program Files\Steam\steamapps\common\call of duty 4\iw3sp.exe:
:Enabled:Call of Duty 4: Modern Warfare”
“C:\Program Files\Steam\steamapps\common\call of duty 4\iw3mp.exe”=“C:\Program Files\Steam\steamapps\common\call of duty 4\iw3mp.exe::Enabled:Call of Duty 4: Modern Warfare"
“C:\Program Files\Steam\steamapps\common\wings of prey demo\launcher.exe”="C:\Program Files\Steam\steamapps\common\wings of prey demo\launcher.exe:
:Enabled:Wings of Prey Demo”
“C:\Program Files\Steam\steamapps\common\far cry 2\bin\FarCry2.exe”=“C:\Program Files\Steam\steamapps\common\far cry 2\bin\FarCry2.exe::Enabled:Far Cry 2"
“C:\Program Files\Steam\steamapps\common\far cry 2\bin\FC2Editor.exe”="C:\Program Files\Steam\steamapps\common\far cry 2\bin\FC2Editor.exe:
:Enabled:Far Cry 2”
“C:\Program Files\Steam\steamapps\common\far cry 2\bin\FC2BenchmarkTool.exe”=“C:\Program Files\Steam\steamapps\common\far cry 2\bin\FC2BenchmarkTool.exe::Enabled:Far Cry 2"
“C:\Program Files\Steam\steamapps\common\far cry 2\bin\FC2ServerLauncher.exe”="C:\Program Files\Steam\steamapps\common\far cry 2\bin\FC2ServerLauncher.exe:
:Enabled:Far Cry 2”

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
“%windir%\system32\sessmgr.exe”="%windir%\system32\sessmgr.exe::enabled:@xpsp2res.dll,-22019"
“%windir%\Network Diagnostic\xpnetdiag.exe”="%windir%\Network Diagnostic\xpnetdiag.exe:
:Enabled:@xpsp3res.dll,-20000"

======List of files/folders created in the last 3 months======

2010-01-20 09:36:22 ----D---- C:\rsit
2010-01-18 19:34:33 ----D---- C:\Documents and Settings\herve\Application Data\Malwarebytes
2010-01-18 19:34:24 ----D---- C:\Program Files\Malwarebytes’ Anti-Malware
2010-01-18 19:34:24 ----D---- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2010-01-18 19:01:09 ----D---- C:\Program Files\a-squared Free
2010-01-18 18:41:06 ----D---- C:\Program Files\Trend Micro
2010-01-18 11:11:26 ----D---- C:\Documents and Settings\All Users\Application Data\Test Drive Unlimited
2010-01-18 11:09:55 ----RHD---- C:\Documents and Settings\herve\Application Data\SecuROM
2010-01-18 11:09:50 ----A---- C:\WINDOWS\system32\CmdLineExt.dll
2010-01-18 10:04:46 ----D---- C:\Program Files\Atari
2010-01-13 20:35:55 ----HDC---- C:\WINDOWS$NtUninstallKB972270$
2010-01-13 20:35:38 ----HDC---- C:\WINDOWS$NtUninstallKB955759$
2009-12-09 18:55:37 ----D---- C:\Program Files\rFactor
2009-12-09 07:47:36 ----HDC---- C:\WINDOWS$NtUninstallKB970430$
2009-12-09 07:47:31 ----HDC---- C:\WINDOWS$NtUninstallKB974318$
2009-12-09 07:46:57 ----HDC---- C:\WINDOWS$NtUninstallKB973904$
2009-12-09 07:46:53 ----HDC---- C:\WINDOWS$NtUninstallKB974392$
2009-12-09 07:46:49 ----HDC---- C:\WINDOWS$NtUninstallKB971737$
2009-12-06 18:03:14 ----D---- C:\Documents and Settings\herve\Application Data\ProtectDisc
2009-12-06 17:47:57 ----D---- C:\Program Files\ProtectDisc Driver Installer
2009-12-05 19:00:59 ----D---- C:\Documents and Settings\All Users\Application Data\Office Genuine Advantage
2009-12-05 19:00:56 ----D---- C:\Documents and Settings\herve\Application Data\Office Genuine Advantage
2009-12-05 18:51:58 ----D---- C:\Documents and Settings\herve\Application Data\Google
2009-12-05 18:45:01 ----D---- C:\Program Files\Google
2009-12-04 09:27:49 ----D---- C:\WINDOWS\system32\zh-TW
2009-12-04 09:27:49 ----D---- C:\WINDOWS\system32\zh-HK
2009-12-04 09:27:48 ----D---- C:\WINDOWS\system32\tr-TR
2009-12-04 09:27:48 ----D---- C:\WINDOWS\system32\sv-SE
2009-12-04 09:27:48 ----D---- C:\WINDOWS\system32\pt-BR
2009-12-04 09:27:48 ----D---- C:\WINDOWS\system32\nl-NL
2009-12-04 09:27:48 ----D---- C:\WINDOWS\system32\nb-NO
2009-12-04 09:27:48 ----D---- C:\WINDOWS\system32\ko-KR
2009-12-04 09:27:48 ----D---- C:\WINDOWS\system32\it-IT
2009-12-04 09:27:48 ----D---- C:\WINDOWS\system32\he-IL
2009-12-04 09:27:48 ----D---- C:\WINDOWS\system32\fi-FI
2009-12-04 09:27:48 ----D---- C:\WINDOWS\system32\es-ES
2009-12-04 09:27:48 ----D---- C:\WINDOWS\system32\el-GR
2009-12-04 09:27:48 ----D---- C:\WINDOWS\system32\de-DE
2009-12-04 09:27:48 ----D---- C:\WINDOWS\system32\da-DK
2009-12-04 09:27:48 ----D---- C:\WINDOWS\system32\ar-SA
2009-11-30 09:58:53 ----D---- C:\Documents and Settings\All Users\Application Data\Trymedia
2009-11-28 07:49:41 ----D---- C:\Program Files\Adobe
2009-11-27 17:39:21 ----D---- C:\Documents and Settings\herve\Application Data\dvdcss
2009-11-24 23:18:38 ----HDC---- C:\WINDOWS$NtUninstallKB976098-v2$
2009-11-24 23:18:00 ----HDC---- C:\WINDOWS$NtUninstallKB973687$
2009-11-19 14:30:32 ----D---- C:\Program Files\MSECache
2009-11-11 07:53:24 ----HDC---- C:\WINDOWS$NtUninstallKB969947$
2009-11-04 22:53:07 ----A---- C:\WINDOWS\system32\PnkBstrB.exe
2009-11-04 22:52:50 ----A---- C:\WINDOWS\system32\PnkBstrA.exe
2009-11-04 18:49:49 ----D---- C:\WINDOWS\system32\AGEIA
2009-11-04 18:49:49 ----D---- C:\Program Files\AGEIA Technologies
2009-11-04 18:49:35 ----D---- C:\Program Files\Fichiers communs\Wise Installation Wizard
2009-11-04 18:30:11 ----D---- C:\Documents and Settings\herve\Application Data\WTablet
2009-11-04 18:29:59 ----D---- C:\Program Files\TabletPlugins
2009-11-04 18:29:45 ----D---- C:\WINDOWS\system32\WTablet
2009-11-04 18:29:42 ----A---- C:\WINDOWS\system32\Wintab32.dll
2009-11-04 18:29:42 ----A---- C:\WINDOWS\system32\Wacom_Tablet.exe
2009-11-04 18:29:42 ----A---- C:\WINDOWS\system32\Wacom_Tablet.dll
2009-11-04 18:29:37 ----D---- C:\Program Files\Tablet
2009-10-31 14:24:59 ----D---- C:\Documents and Settings\herve\Application Data\FastStone
2009-10-31 13:57:16 ----A---- C:\WINDOWS\system32\ptpusb.dll
2009-10-31 13:57:15 ----A---- C:\WINDOWS\system32\ptpusd.dll
2009-10-27 17:26:06 ----N---- C:\WINDOWS\system32\spmsg.dll
2009-10-27 17:25:54 ----A---- C:\WINDOWS\system32\wmpns.dll
2009-10-26 17:09:40 ----D---- C:\Documents and Settings\herve\Application Data\Ahead
2009-10-26 08:38:28 ----D---- C:\Documents and Settings\All Users\Application Data\EPSON
2009-10-26 08:38:24 ----D---- C:\Program Files\ABBYY FineReader 6.0 Sprint
2009-10-26 08:38:24 ----A---- C:\WINDOWS\system32\E_FLBCAL.DLL
2009-10-26 08:38:24 ----A---- C:\WINDOWS\system32\E_FD4BCAL.DLL
2009-10-26 08:35:32 ----A---- C:\WINDOWS\system32\PICSDK2.dll
2009-10-26 08:35:32 ----A---- C:\WINDOWS\system32\PICSDK.ini
2009-10-26 08:35:32 ----A---- C:\WINDOWS\system32\PICSDK.dll
2009-10-26 08:35:32 ----A---- C:\WINDOWS\system32\PICEntry.dll
2009-10-26 08:35:32 ----A---- C:\WINDOWS\system32\EpPicPrt.dll
2009-10-26 08:35:29 ----A---- C:\WINDOWS\system32\EpPicMgr.dll
2009-10-26 08:33:58 ----D---- C:\Program Files\epson
2009-10-26 08:33:57 ----A---- C:\WINDOWS\system32\eswiaml.dll
2009-10-26 08:33:57 ----A---- C:\WINDOWS\system32\eswia7e.dll
2009-10-26 08:33:57 ----A---- C:\WINDOWS\system32\esint7e.dll
2009-10-26 08:32:21 ----A---- C:\WINDOWS\EPCX5600.ini
2009-10-24 19:28:36 ----A---- C:\WINDOWS\NeroDigital.ini
2009-10-24 17:42:44 ----D---- C:\Program Files\OpenAL
2009-10-24 17:42:44 ----A---- C:\WINDOWS\system32\wrap_oal.dll
2009-10-24 17:42:38 ----A---- C:\WINDOWS\system32\OpenAL32.dll
2009-10-24 17:32:13 ----D---- C:\Program Files\Death Rally
2009-10-24 17:31:17 ----D---- C:\Program Files\3D Starstrike
2009-10-24 16:50:05 ----D---- C:\Documents and Settings\herve\Application Data\vlc
2009-10-24 12:34:23 ----D---- C:\Documents and Settings\herve\Application Data\FMZilla
2009-10-24 12:34:18 ----D---- C:\Program Files\Free Music Zilla
2009-10-24 12:26:44 ----D---- C:\Documents and Settings\herve\Application Data\WinRAR
2009-10-23 19:50:44 ----A---- C:\WINDOWS\system32\javaws.exe
2009-10-23 19:50:44 ----A---- C:\WINDOWS\system32\javaw.exe
2009-10-23 19:50:44 ----A---- C:\WINDOWS\system32\java.exe
2009-10-23 19:50:44 ----A---- C:\WINDOWS\system32\deploytk.dll
2009-10-23 19:50:35 ----D---- C:\Program Files\Java
2009-10-23 19:45:00 ----D---- C:\Documents and Settings\herve\Application Data\Sun
2009-10-23 19:17:18 ----D---- C:\Program Files\Microsoft Silverlight
2009-10-23 18:39:36 ----D---- C:\WINDOWS\system32\appmgmt
2009-10-23 18:29:48 ----D---- C:\Program Files\Mozilla Firefox
2009-10-23 18:25:53 ----D---- C:\Program Files\NOS
2009-10-23 17:22:07 ----D---- C:\Program Files\Mozilla Firefox(2)
2009-10-23 17:05:12 ----D---- C:\Documents and Settings\All Users\Application Data\NOS
2009-10-23 16:54:23 ----SHD---- C:\Config.Msi
2009-10-23 11:30:33 ----D---- C:\Documents and Settings\herve\Application Data\GlarySoft
2009-10-23 10:23:43 ----D---- C:\Program Files\VS Revo Group
2009-10-23 10:18:38 ----D---- C:\Documents and Settings\All Users\Application Data\TEMP
2009-10-23 10:16:25 ----D---- C:\Program Files\Glary Utilities
2009-10-23 10:15:09 ----D---- C:\Program Files\WinRAR
2009-10-23 10:01:12 ----D---- C:\Program Files\FastStone Image Viewer
2009-10-23 09:59:37 ----D---- C:\Documents and Settings\All Users\Application Data\Adobe
2009-10-23 09:58:11 ----D---- C:\Program Files\VLCPortable
2009-10-23 08:58:05 ----D---- C:\Temp
2009-10-23 08:48:04 ----N---- C:\WINDOWS\system32\spmsg2.dll
2009-10-23 08:48:03 ----HDC---- C:\WINDOWS$NtUninstallXPSEPSCLP$
2009-10-23 08:27:08 ----D---- C:\Documents and Settings\All Users\Application Data\Raxco
2009-10-23 08:26:01 ----D---- C:\Program Files\Raxco
2009-10-23 08:26:01 ----D---- C:\Program Files\Fichiers communs\Raxco
2009-10-22 18:30:10 ----D---- C:\WINDOWS\pss
2009-10-22 17:12:33 ----HDC---- C:\WINDOWS$NtUninstallKB961118$
2009-10-22 17:05:56 ----D---- C:\Program Files\Steam
2009-10-22 16:10:31 ----D---- C:\WINDOWS\system32\XPSViewer
2009-10-22 16:10:29 ----D---- C:\Program Files\MSBuild
2009-10-22 16:10:28 ----D---- C:\WINDOWS\system32\en-US
2009-10-22 16:10:26 ----D---- C:\Program Files\Reference Assemblies
2009-10-22 16:10:10 ----N---- C:\WINDOWS\system32\xpssvcs.dll
2009-10-22 16:10:10 ----N---- C:\WINDOWS\system32\xpsshhdr.dll
2009-10-22 16:10:10 ----N---- C:\WINDOWS\system32\prntvpt.dll
2009-10-22 16:07:53 ----RSD---- C:\WINDOWS\assembly
2009-10-22 16:07:53 ----D---- C:\WINDOWS\Microsoft.NET
2009-10-22 16:07:52 ----D---- C:\WINDOWS\system32\URTTemp
2009-10-22 13:48:58 ----A---- C:\WINDOWS\system32\mucltui.dll.mui
2009-10-22 13:48:58 ----A---- C:\WINDOWS\system32\mucltui.dll
2009-10-22 13:42:18 ----D---- C:\Program Files\MSXML 4.0
2009-10-22 13:19:05 ----A---- C:\WINDOWS\ODBC.INI
2009-10-22 13:18:35 ----D---- C:\Program Files\Fichiers communs\Designer
2009-10-22 13:17:40 ----D---- C:\WINDOWS\ShellNew
2009-10-22 13:17:35 ----D---- C:\Program Files\Microsoft Office
2009-10-22 12:45:47 ----A---- C:\WINDOWS\system32\XAudio2_5.dll
2009-10-22 12:45:47 ----A---- C:\WINDOWS\system32\xactengine3_5.dll
2009-10-22 12:45:47 ----A---- C:\WINDOWS\system32\D3DCompiler_42.dll
2009-10-22 12:45:46 ----A---- C:\WINDOWS\system32\D3DX9_42.dll
2009-10-22 12:45:46 ----A---- C:\WINDOWS\system32\d3dx11_42.dll
2009-10-22 12:45:46 ----A---- C:\WINDOWS\system32\d3dx10_42.dll
2009-10-22 12:45:46 ----A---- C:\WINDOWS\system32\d3dx10_41.dll
2009-10-22 12:45:46 ----A---- C:\WINDOWS\system32\d3dcsx_42.dll
2009-10-22 12:45:46 ----A---- C:\WINDOWS\system32\D3DCompiler_41.dll
2009-10-22 12:45:45 ----A---- C:\WINDOWS\system32\XAudio2_4.dll
2009-10-22 12:45:45 ----A---- C:\WINDOWS\system32\XAPOFX1_3.dll
2009-10-22 12:45:45 ----A---- C:\WINDOWS\system32\xactengine3_4.dll
2009-10-22 12:45:45 ----A---- C:\WINDOWS\system32\X3DAudio1_6.dll
2009-10-22 12:45:45 ----A---- C:\WINDOWS\system32\D3DX9_41.dll
2009-10-22 12:45:44 ----A---- C:\WINDOWS\system32\XAudio2_3.dll
2009-10-22 12:45:44 ----A---- C:\WINDOWS\system32\XAPOFX1_2.dll
2009-10-22 12:45:44 ----A---- C:\WINDOWS\system32\xactengine3_3.dll
2009-10-22 12:45:44 ----A---- C:\WINDOWS\system32\D3DX9_40.dll
2009-10-22 12:45:44 ----A---- C:\WINDOWS\system32\d3dx10_40.dll
2009-10-22 12:45:44 ----A---- C:\WINDOWS\system32\D3DCompiler_40.dll
2009-10-22 12:45:43 ----A---- C:\WINDOWS\system32\XAudio2_2.dll
2009-10-22 12:45:43 ----A---- C:\WINDOWS\system32\XAPOFX1_1.dll
2009-10-22 12:45:43 ----A---- C:\WINDOWS\system32\xactengine3_2.dll
2009-10-22 12:45:43 ----A---- C:\WINDOWS\system32\X3DAudio1_5.dll
2009-10-22 12:45:43 ----A---- C:\WINDOWS\system32\d3dx10_39.dll
2009-10-22 12:45:43 ----A---- C:\WINDOWS\system32\D3DCompiler_39.dll
2009-10-22 12:45:42 ----A---- C:\WINDOWS\system32\XAudio2_1.dll
2009-10-22 12:45:42 ----A---- C:\WINDOWS\system32\XAPOFX1_0.dll
2009-10-22 12:45:42 ----A---- C:\WINDOWS\system32\xactengine3_1.dll
2009-10-22 12:45:42 ----A---- C:\WINDOWS\system32\X3DAudio1_4.dll
2009-10-22 12:45:42 ----A---- C:\WINDOWS\system32\D3DX9_39.dll
2009-10-22 12:45:42 ----A---- C:\WINDOWS\system32\d3dx10_38.dll
2009-10-22 12:45:42 ----A---- C:\WINDOWS\system32\D3DCompiler_38.dll
2009-10-22 12:45:41 ----A---- C:\WINDOWS\system32\XAudio2_0.dll
2009-10-22 12:45:41 ----A---- C:\WINDOWS\system32\xactengine3_0.dll
2009-10-22 12:45:41 ----A---- C:\WINDOWS\system32\X3DAudio1_3.dll
2009-10-22 12:45:41 ----A---- C:\WINDOWS\system32\D3DX9_38.dll
2009-10-22 12:45:41 ----A---- C:\WINDOWS\system32\d3dx10_37.dll
2009-10-22 12:45:41 ----A---- C:\WINDOWS\system32\D3DCompiler_37.dll
2009-10-22 12:45:40 ----A---- C:\WINDOWS\system32\xactengine2_10.dll
2009-10-22 12:45:40 ----A---- C:\WINDOWS\system32\D3DX9_37.dll
2009-10-22 12:45:40 ----A---- C:\WINDOWS\system32\d3dx10_36.dll
2009-10-22 12:45:40 ----A---- C:\WINDOWS\system32\D3DCompiler_36.dll
2009-10-22 12:45:39 ----A---- C:\WINDOWS\system32\xactengine2_9.dll
2009-10-22 12:45:39 ----A---- C:\WINDOWS\system32\d3dx9_36.dll
2009-10-22 12:45:39 ----A---- C:\WINDOWS\system32\d3dx9_35.dll
2009-10-22 12:45:39 ----A---- C:\WINDOWS\system32\d3dx10_35.dll
2009-10-22 12:45:39 ----A---- C:\WINDOWS\system32\D3DCompiler_35.dll
2009-10-22 12:45:38 ----A---- C:\WINDOWS\system32\xactengine2_8.dll
2009-10-22 12:45:38 ----A---- C:\WINDOWS\system32\X3DAudio1_2.dll
2009-10-22 12:45:38 ----A---- C:\WINDOWS\system32\d3dx9_34.dll
2009-10-22 12:45:38 ----A---- C:\WINDOWS\system32\d3dx10_34.dll
2009-10-22 12:45:38 ----A---- C:\WINDOWS\system32\D3DCompiler_34.dll
2009-10-22 12:45:37 ----A---- C:\WINDOWS\system32\xinput1_3.dll
2009-10-22 12:45:37 ----A---- C:\WINDOWS\system32\xactengine2_7.dll
2009-10-22 12:45:37 ----A---- C:\WINDOWS\system32\d3dx10_33.dll
2009-10-22 12:45:37 ----A---- C:\WINDOWS\system32\D3DCompiler_33.dll
2009-10-22 12:45:35 ----A---- C:\WINDOWS\system32\xactengine2_6.dll
2009-10-22 12:45:35 ----A---- C:\WINDOWS\system32\xactengine2_5.dll
2009-10-22 12:45:35 ----A---- C:\WINDOWS\system32\xactengine2_4.dll
2009-10-22 12:45:35 ----A---- C:\WINDOWS\system32\x3daudio1_1.dll
2009-10-22 12:45:35 ----A---- C:\WINDOWS\system32\d3dx9_33.dll
2009-10-22 12:45:35 ----A---- C:\WINDOWS\system32\d3dx9_32.dll
2009-10-22 12:45:34 ----A---- C:\WINDOWS\system32\d3dx9_31.dll
2009-10-22 12:44:52 ----D---- C:\WINDOWS\Logs
2009-10-22 09:49:49 ----A---- C:\WINDOWS\DeliveryReader.INI
2009-10-22 09:49:42 ----D---- C:\Program Files\Fichiers communs\Adobe
2009-10-22 09:19:46 ----A---- C:\WINDOWS\system32\xactengine2_3.dll
2009-10-22 09:19:45 ----A---- C:\WINDOWS\system32\xinput1_2.dll
2009-10-22 09:19:45 ----A---- C:\WINDOWS\system32\xinput1_1.dll
2009-10-22 09:19:45 ----A---- C:\WINDOWS\system32\xactengine2_2.dll
2009-10-22 09:19:45 ----A---- C:\WINDOWS\system32\xactengine2_1.dll
2009-10-22 09:19:44 ----A---- C:\WINDOWS\system32\d3dx9_30.dll
2009-10-22 09:19:42 ----A---- C:\WINDOWS\system32\xactengine2_0.dll
2009-10-22 09:19:42 ----A---- C:\WINDOWS\system32\x3daudio1_0.dll
2009-10-22 09:19:42 ----A---- C:\WINDOWS\system32\d3dx9_29.dll
2009-10-22 09:19:41 ----A---- C:\WINDOWS\system32\xinput9_1_0.dll
2009-10-22 09:19:41 ----A---- C:\WINDOWS\system32\d3dx9_28.dll
2009-10-22 09:19:41 ----A---- C:\WINDOWS\system32\d3dx9_27.dll
2009-10-22 09:19:40 ----A---- C:\WINDOWS\system32\d3dx9_26.dll
2009-10-22 09:19:40 ----A---- C:\WINDOWS\system32\d3dx9_25.dll
2009-10-22 09:19:39 ----A---- C:\WINDOWS\system32\d3dx9_24.dll
2009-10-22 09:12:46 ----D---- C:\Program Files\LucasArts
2009-10-22 09:09:36 ----N---- C:\WINDOWS\UNNMP.exe
2009-10-22 09:07:12 ----A---- C:\WINDOWS\system32\NeroCheck.exe
2009-10-22 09:04:32 ----N---- C:\WINDOWS\UNNeroVision.exe
2009-10-22 09:04:32 ----A---- C:\WINDOWS\system32\msxml3a.dll
2009-10-22 09:03:58 ----D---- C:\Documents and Settings\All Users\Application Data\Ahead
2009-10-22 09:03:57 ----A---- C:\WINDOWS\system32\TwnLib20.dll
2009-10-22 09:03:57 ----A---- C:\WINDOWS\system32\picn20.dll
2009-10-22 09:03:57 ----A---- C:\WINDOWS\system32\imagx5.dll
2009-10-22 09:03:54 ----A---- C:\WINDOWS\system32\ImagXpr5.dll
2009-10-22 09:03:54 ----A---- C:\WINDOWS\system32\imagr5.dll
2009-10-22 09:03:49 ----D---- C:\Program Files\Fichiers communs\Ahead
2009-10-22 09:03:43 ----D---- C:\Program Files\Ahead
2009-10-22 08:40:19 ----D---- C:\Documents and Settings\herve\Application Data\Corel
2009-10-22 08:33:45 ----D---- C:\Documents and Settings\All Users\Application Data\Corel
2009-10-22 08:32:22 ----D---- C:\Program Files\Fichiers communs\Corel
2009-10-22 08:31:18 ----D---- C:\Program Files\Corel
2009-10-22 06:47:02 ----D---- C:\Documents and Settings\All Users\Application Data\NVIDIA Corporation
2009-10-22 06:46:43 ----D---- C:\Program Files\NVIDIA Corporation
2009-10-22 06:45:55 ----D---- C:\NVIDIA
2009-10-21 22:25:21 ----D---- C:\downloads
2009-10-21 22:23:04 ----HDC---- C:\WINDOWS$NtUninstallKB954154_WM11$
2009-10-21 22:23:00 ----HDC---- C:\WINDOWS$NtUninstallKB929399$
2009-10-21 22:22:51 ----HDC---- C:\WINDOWS$NtUninstallKB939683$
2009-10-21 22:22:40 ----HDC---- C:\WINDOWS$NtUninstallKB941569$
2009-10-21 22:14:32 ----D---- C:\Documents and Settings\herve\Application Data\Delivery
2009-10-21 22:08:17 ----D---- C:\Documents and Settings\herve\Application Data\Macromedia
2009-10-21 22:08:17 ----D---- C:\Documents and Settings\herve\Application Data\Adobe
2009-10-21 21:56:30 ----HDC---- C:\WINDOWS$NtUninstallMSCompPackV1$
2009-10-21 21:56:19 ----D---- C:\Program Files\Windows Media Connect 2
2009-10-21 21:56:14 ----HDC---- C:\WINDOWS$NtUninstallwmp11$
2009-10-21 21:55:49 ----HDC---- C:\WINDOWS$NtUninstallWMFDist11$
2009-10-21 21:55:34 ----D---- C:\WINDOWS\system32\LogFiles
2009-10-21 21:55:31 ----HDC---- C:\WINDOWS$NtUninstallWudf01000$
2009-10-21 21:44:49 ----D---- C:\Documents and Settings\herve\Application Data\Mozilla
2009-10-21 21:37:14 ----HDC---- C:\WINDOWS$NtUninstallKB975467$
2009-10-21 21:37:10 ----HDC---- C:\WINDOWS$NtUninstallKB968389$
2009-10-21 21:36:44 ----HDC---- C:\WINDOWS$NtUninstallKB969059$
2009-10-21 21:36:41 ----HDC---- C:\WINDOWS$NtUninstallKB958869$
2009-10-21 21:36:36 ----HDC---- C:\WINDOWS$NtUninstallKB971486$
2009-10-21 21:36:32 ----HDC---- C:\WINDOWS$NtUninstallKB974112$
2009-10-21 21:36:28 ----HDC---- C:\WINDOWS$NtUninstallKB974571$
2009-10-21 21:36:25 ----HDC---- C:\WINDOWS$NtUninstallKB975025$
2009-10-21 21:36:22 ----HDC---- C:\WINDOWS$NtUninstallKB954155_WM9$
2009-10-21 21:36:17 ----HDC---- C:\WINDOWS$NtUninstallKB974455$
2009-10-21 21:36:14 ----HDC---- C:\WINDOWS$NtUninstallKB968816_WM9$
2009-10-21 21:36:11 ----HDC---- C:\WINDOWS$NtUninstallKB971961$
2009-10-21 21:36:07 ----HDC---- C:\WINDOWS$NtUninstallKB956844$
2009-10-21 21:35:49 ----D---- C:\WINDOWS\ie8updates
2009-10-21 21:35:39 ----D---- C:\WINDOWS\WBEM
2009-10-21 21:35:01 ----HDC---- C:\WINDOWS\ie8
2009-10-21 21:34:38 ----A---- C:\WINDOWS\system32\MRT.exe
2009-10-21 21:29:07 ----HDC---- C:\WINDOWS$NtUninstallKB961371-v2$
2009-10-21 21:29:04 ----HDC---- C:\WINDOWS$NtUninstallKB971657$
2009-10-21 21:29:01 ----HDC---- C:\WINDOWS$NtUninstallKB973815$
2009-10-21 21:28:58 ----HDC---- C:\WINDOWS$NtUninstallKB960859$
2009-10-21 21:28:54 ----HDC---- C:\WINDOWS$NtUninstallKB973507$
2009-10-21 21:28:51 ----HDC---- C:\WINDOWS$NtUninstallKB973354$
2009-10-21 21:28:47 ----HDC---- C:\WINDOWS$NtUninstallKB956744$
2009-10-21 21:28:44 ----HDC---- C:\WINDOWS$NtUninstallKB973869$
2009-10-21 21:28:40 ----HDC---- C:\WINDOWS$NtUninstallKB973540_WM9$
2009-10-21 21:28:37 ----HDC---- C:\WINDOWS$NtUninstallKB971557$
2009-10-21 21:28:34 ----HDC---- C:\WINDOWS$NtUninstallKB971633$
2009-10-21 21:28:31 ----HDC---- C:\WINDOWS$NtUninstallKB970238$
2009-10-21 21:28:27 ----HDC---- C:\WINDOWS$NtUninstallKB968537$
2009-10-21 21:28:24 ----HDC---- C:\WINDOWS$NtUninstallKB961501$
2009-10-21 21:28:21 ----HDC---- C:\WINDOWS$NtUninstallKB959426$
2009-10-21 21:28:17 ----HDC---- C:\WINDOWS$NtUninstallKB960803$
2009-10-21 21:28:14 ----HDC---- C:\WINDOWS$NtUninstallKB952004$
2009-10-21 21:28:07 ----HDC---- C:\WINDOWS$NtUninstallKB956572$
2009-10-21 21:28:03 ----HDC---- C:\WINDOWS$NtUninstallKB923561$
2009-10-21 21:27:56 ----HDC---- C:\WINDOWS$NtUninstallKB967715$
2009-10-21 21:27:53 ----HDC---- C:\WINDOWS$NtUninstallKB960225$
2009-10-21 21:27:50 ----HDC---- C:\WINDOWS$NtUninstallKB958687$
2009-10-21 21:27:47 ----HDC---- C:\WINDOWS$NtUninstallKB956803$
2009-10-21 21:27:43 ----HDC---- C:\WINDOWS$NtUninstallKB952069_WM9$
2009-10-21 21:27:40 ----HDC---- C:\WINDOWS$NtUninstallKB956802$
2009-10-21 21:27:37 ----HDC---- C:\WINDOWS$NtUninstallKB957097$
2009-10-21 21:27:34 ----HDC---- C:\WINDOWS$NtUninstallKB954459$
2009-10-21 21:27:30 ----HDC---- C:\WINDOWS$NtUninstallKB955069$
2009-10-21 21:27:27 ----HDC---- C:\WINDOWS$NtUninstallKB952287$
2009-10-21 21:27:24 ----HDC---- C:\WINDOWS$NtUninstallKB950974$
2009-10-21 21:27:20 ----HDC---- C:\WINDOWS$NtUninstallKB952954$
2009-10-21 21:27:17 ----HDC---- C:\WINDOWS$NtUninstallKB946648$
2009-10-21 21:27:14 ----HDC---- C:\WINDOWS$NtUninstallKB951066$
2009-10-21 21:27:10 ----HDC---- C:\WINDOWS$NtUninstallKB951748$
2009-10-21 21:27:06 ----HDC---- C:\WINDOWS$NtUninstallKB951978$
2009-10-21 21:27:03 ----HDC---- C:\WINDOWS$NtUninstallKB951376-v2$
2009-10-21 21:26:58 ----HDC---- C:\WINDOWS$NtUninstallKB950762$
2009-10-21 21:24:44 ----D---- C:\Program Files\CCleaner
2009-10-21 21:12:36 ----D---- C:\WINDOWS\Prefetch
2009-10-21 20:22:43 ----HDC---- C:\WINDOWS$NtUninstallKB958644$
2009-10-21 20:21:01 ----D---- C:\WINDOWS\system32\fr-fr
2009-10-21 20:21:00 ----D---- C:\WINDOWS\system32\fr
2009-10-21 20:21:00 ----D---- C:\WINDOWS\system32\bits
2009-10-21 20:21:00 ----D---- C:\WINDOWS\l2schemas
2009-10-21 20:20:07 ----D---- C:\WINDOWS\ServicePackFiles
2009-10-21 20:18:50 ----D---- C:\WINDOWS\network diagnostic
2009-10-21 20:17:16 ----HDC---- C:\WINDOWS$NtServicePackUninstall$
2009-10-21 19:56:11 ----D---- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
2009-10-21 19:00:20 ----HDC---- C:\WINDOWS$NtUninstallKB973525$
2009-10-21 19:00:16 ----HDC---- C:\WINDOWS$NtUninstallKB958644_0$
2009-10-21 19:00:12 ----HDC---- C:\WINDOWS$NtUninstallKB970653-v3$
2009-10-21 18:59:07 ----SHD---- C:\RECYCLER
2009-10-21 18:58:55 ----N---- C:\WINDOWS\system32\tzchange.exe
2009-10-21 18:54:14 ----HDC---- C:\WINDOWS$MSI31Uninstall_KB893803v2$
2009-10-21 18:54:08 ----D---- C:\WINDOWS\system32\PreInstall
2009-10-21 18:54:06 ----HDC---- C:\WINDOWS$NtUninstallKB898461$
2009-10-21 18:54:06 ----HD---- C:\WINDOWS$hf_mig$
2009-10-21 18:52:56 ----A---- C:\WINDOWS\system32\wpa.bak
2009-10-21 18:52:53 ----D---- C:\Program Files\Kaspersky Lab
2009-10-21 18:52:53 ----D---- C:\Documents and Settings\All Users\Application Data\Kaspersky Lab
2009-10-21 18:52:04 ----D---- C:\Documents and Settings\All Users\Application Data\Kaspersky Lab Setup Files
2009-10-21 18:26:11 ----D---- C:\WINDOWS\system32\SoftwareDistribution
2009-10-21 12:39:32 ----A---- C:\WINDOWS\system32\h323log.txt
2009-10-21 12:31:41 ----A---- C:\WINDOWS\system32\usbui.dll
2009-10-21 12:30:43 ----SHD---- C:\WINDOWS\Installer
2009-10-21 12:30:43 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2009-10-21 12:30:42 ----D---- C:\Program Files\Fichiers communs\ODBC
2009-10-21 12:30:42 ----A---- C:\WINDOWS\ODBCINST.INI
2009-10-21 12:30:40 ----RD---- C:\Program Files
2009-10-21 12:30:40 ----D---- C:\Program Files\Fichiers communs\SpeechEngines
2009-10-21 12:30:40 ----D---- C:\Program Files\Fichiers communs\Microsoft Shared
2009-10-21 12:30:40 ----D---- C:\Program Files\Fichiers communs
2009-10-21 12:30:38 ----RA---- C:\WINDOWS\system32\kbdtuq.dll
2009-10-21 12:30:38 ----RA---- C:\WINDOWS\system32\kbdtuf.dll
2009-10-21 12:30:38 ----RA---- C:\WINDOWS\system32\kbdazel.dll
2009-10-21 12:30:37 ----RA---- C:\WINDOWS\system32\kbdycc.dll
2009-10-21 12:30:37 ----RA---- C:\WINDOWS\system32\kbduzb.dll
2009-10-21 12:30:37 ----RA---- C:\WINDOWS\system32\kbdur.dll
2009-10-21 12:30:37 ----RA---- C:\WINDOWS\system32\kbdtat.dll
2009-10-21 12:30:37 ----RA---- C:\WINDOWS\system32\kbdmon.dll
2009-10-21 12:30:37 ----RA---- C:\WINDOWS\system32\kbdkyr.dll
2009-10-21 12:30:37 ----RA---- C:\WINDOWS\system32\kbdkaz.dll
2009-10-21 12:30:37 ----RA---- C:\WINDOWS\system32\kbdaze.dll
2009-10-21 12:30:36 ----RA---- C:\WINDOWS\system32\kbdru1.dll
2009-10-21 12:30:36 ----RA---- C:\WINDOWS\system32\kbdru.dll
2009-10-21 12:30:36 ----RA---- C:\WINDOWS\system32\kbdbu.dll
2009-10-21 12:30:36 ----RA---- C:\WINDOWS\system32\kbdblr.dll
2009-10-21 12:30:35 ----RA---- C:\WINDOWS\system32\kbdhept.dll
2009-10-21 12:30:35 ----RA---- C:\WINDOWS\system32\kbdhela3.dll
2009-10-21 12:30:35 ----RA---- C:\WINDOWS\system32\kbdhela2.dll
2009-10-21 12:30:35 ----RA---- C:\WINDOWS\system32\kbdhe319.dll
2009-10-21 12:30:35 ----RA---- C:\WINDOWS\system32\kbdhe220.dll
2009-10-21 12:30:35 ----RA---- C:\WINDOWS\system32\kbdhe.dll
2009-10-21 12:30:35 ----RA---- C:\WINDOWS\system32\kbdgkl.dll
2009-10-21 12:30:34 ----RA---- C:\WINDOWS\system32\kbdlv1.dll
2009-10-21 12:30:34 ----RA---- C:\WINDOWS\system32\kbdlv.dll
2009-10-21 12:30:34 ----RA---- C:\WINDOWS\system32\kbdlt1.dll
2009-10-21 12:30:34 ----RA---- C:\WINDOWS\system32\kbdlt.dll
2009-10-21 12:30:34 ----RA---- C:\WINDOWS\system32\kbdest.dll
2009-10-21 12:30:33 ----RA---- C:\WINDOWS\system32\kbdsl1.dll
2009-10-21 12:30:33 ----RA---- C:\WINDOWS\system32\kbdsl.dll
2009-10-21 12:30:33 ----RA---- C:\WINDOWS\system32\kbdro.dll
2009-10-21 12:30:33 ----RA---- C:\WINDOWS\system32\kbdpl1.dll
2009-10-21 12:30:33 ----RA---- C:\WINDOWS\system32\kbdpl.dll
2009-10-21 12:30:33 ----RA---- C:\WINDOWS\system32\kbdhu1.dll
2009-10-21 12:30:33 ----RA---- C:\WINDOWS\system32\kbdhu.dll
2009-10-21 12:30:33 ----RA---- C:\WINDOWS\system32\kbdcz2.dll
2009-10-21 12:30:33 ----RA---- C:\WINDOWS\system32\kbdcz1.dll
2009-10-21 12:30:33 ----RA---- C:\WINDOWS\system32\kbdcz.dll
2009-10-21 12:30:33 ----RA---- C:\WINDOWS\system32\kbdcr.dll
2009-10-21 12:30:33 ----RA---- C:\WINDOWS\system32\KBDAL.DLL
2009-10-21 12:30:32 ----RA---- C:\WINDOWS\system32\kbdycl.dll
2009-10-21 12:30:31 ----A---- C:\WINDOWS\system32\spxcoins.dll
2009-10-21 12:30:31 ----A---- C:\WINDOWS\system32\irclass.dll
2009-10-21 12:30:31 ----A---- C:\WINDOWS\system32\EqnClass.Dll
2009-10-21 12:30:31 ----A---- C:\WINDOWS\system32\dgsetup.dll
2009-10-21 12:30:31 ----A---- C:\WINDOWS\system32\dgrpsetu.dll
2009-10-21 12:30:29 ----N---- C:\WINDOWS\system32\CONFIG.TMP
2009-10-21 12:30:29 ----A---- C:\WINDOWS\TASKMAN.EXE
2009-10-21 12:30:29 ----A---- C:\WINDOWS\system32\batt.dll
2009-10-21 12:30:28 ----A---- C:\WINDOWS\system32\storprop.dll
2009-10-21 12:30:28 ----A---- C:\WINDOWS\notepad.exe
2009-10-21 12:30:23 ----ASH---- C:\Documents and Settings\All Users\Application Data\desktop.ini
2009-10-21 12:30:21 ----RA---- C:\WINDOWS\SET8.tmp
2009-10-21 12:30:19 ----RA---- C:\WINDOWS\SET4.tmp
2009-10-21 12:30:19 ----RA---- C:\WINDOWS\SET3.tmp
2009-10-21 12:30:15 ----D---- C:\WINDOWS\system32\CatRoot2
2009-10-21 12:30:15 ----D---- C:\WINDOWS\system32\CatRoot
2009-10-21 12:30:10 ----SD---- C:\Documents and Settings\All Users\Application Data\Microsoft
2009-10-21 12:29:56 ----SHD---- C:\System Volume Information
2009-10-21 12:29:56 ----D---- C:\Documents and Settings
2009-10-21 12:28:53 ----SH---- C:\boot.ini
2009-10-21 12:26:07 ----RSHDC---- C:\WINDOWS\system32\dllcache
2009-10-21 12:26:07 ----RSD---- C:\WINDOWS\Fonts
2009-10-21 12:26:07 ----RD---- C:\WINDOWS\Web
2009-10-21 12:26:07 ----HD---- C:\WINDOWS\inf
2009-10-21 12:26:07 ----D---- C:\WINDOWS\WinSxS
2009-10-21 12:26:07 ----D---- C:\WINDOWS\twain_32
2009-10-21 12:26:07 ----D---- C:\WINDOWS\Temp
2009-10-21 12:26:07 ----D---- C:\WINDOWS\system32\wins
2009-10-21 12:26:07 ----D---- C:\WINDOWS\system32\wbem
2009-10-21 12:26:07 ----D---- C:\WINDOWS\system32\usmt
2009-10-21 12:26:07 ----D---- C:\WINDOWS\system32\spool
2009-10-21 12:26:07 ----D---- C:\WINDOWS\system32\ShellExt
2009-10-21 12:26:07 ----D---- C:\WINDOWS\system32\Setup
2009-10-21 12:26:07 ----D---- C:\WINDOWS\system32\ras
2009-10-21 12:26:07 ----D---- C:\WINDOWS\system32\oobe
2009-10-21 12:26:07 ----D---- C:\WINDOWS\system32\npp
2009-10-21 12:26:07 ----D---- C:\WINDOWS\system32\mui
2009-10-21 12:26:07 ----D---- C:\WINDOWS\system32\inetsrv
2009-10-21 12:26:07 ----D---- C:\WINDOWS\system32\IME
2009-10-21 12:26:07 ----D---- C:\WINDOWS\system32\icsxml
2009-10-21 12:26:07 ----D---- C:\WINDOWS\system32\ias
2009-10-21 12:26:07 ----D---- C:\WINDOWS\system32\export
2009-10-21 12:26:07 ----D---- C:\WINDOWS\system32\drivers
2009-10-21 12:26:07 ----D---- C:\WINDOWS\system32\dhcp
2009-10-21 12:26:07 ----D---- C:\WINDOWS\system32\config
2009-10-21 12:26:07 ----D---- C:\WINDOWS\system32\3com_dmi
2009-10-21 12:26:07 ----D---- C:\WINDOWS\system32\3076
2009-10-21 12:26:07 ----D---- C:\WINDOWS\system32\2052
2009-10-21 12:26:07 ----D---- C:\WINDOWS\system32\1054
2009-10-21 12:26:07 ----D---- C:\WINDOWS\system32\1042
2009-10-21 12:26:07 ----D---- C:\WINDOWS\system32\1041
2009-10-21 12:26:07 ----D---- C:\WINDOWS\system32\1037
2009-10-21 12:26:07 ----D---- C:\WINDOWS\system32\1036
2009-10-21 12:26:07 ----D---- C:\WINDOWS\system32\1033
2009-10-21 12:26:07 ----D---- C:\WINDOWS\system32\1031
2009-10-21 12:26:07 ----D---- C:\WINDOWS\system32\1028
2009-10-21 12:26:07 ----D---- C:\WINDOWS\system32\1025
2009-10-21 12:26:07 ----D---- C:\WINDOWS\system32
2009-10-21 12:26:07 ----D---- C:\WINDOWS\system
2009-10-21 12:26:07 ----D---- C:\WINDOWS\security
2009-10-21 12:26:07 ----D---- C:\WINDOWS\Resources
2009-10-21 12:26:07 ----D---- C:\WINDOWS\repair
2009-10-21 12:26:07 ----D---- C:\WINDOWS\Provisioning
2009-10-21 12:26:07 ----D---- C:\WINDOWS\PeerNet
2009-10-21 12:26:07 ----D---- C:\WINDOWS\pchealth
2009-10-21 12:26:07 ----D---- C:\WINDOWS\mui
2009-10-21 12:26:07 ----D---- C:\WINDOWS\msapps
2009-10-21 12:26:07 ----D---- C:\WINDOWS\msagent
2009-10-21 12:26:07 ----D---- C:\WINDOWS\Media
2009-10-21 12:26:07 ----D---- C:\WINDOWS\java
2009-10-21 12:26:07 ----D---- C:\WINDOWS\ime
2009-10-21 12:26:07 ----D---- C:\WINDOWS\Help
2009-10-21 12:26:07 ----D---- C:\WINDOWS\ehome
2009-10-21 12:26:07 ----D---- C:\WINDOWS\Driver Cache
2009-10-21 12:26:07 ----D---- C:\WINDOWS\Debug
2009-10-21 12:26:07 ----D---- C:\WINDOWS\Cursors
2009-10-21 12:26:07 ----D---- C:\WINDOWS\Connection Wizard
2009-10-21 12:26:07 ----D---- C:\WINDOWS\Config
2009-10-21 12:26:07 ----D---- C:\WINDOWS\AppPatch
2009-10-21 12:26:07 ----D---- C:\WINDOWS\addins
2009-10-21 12:26:07 ----D---- C:\WINDOWS
2009-10-21 11:23:53 ----A---- C:\WINDOWS\system32\wnicapi.dll
2009-10-21 11:23:53 ----A---- C:\WINDOWS\system32\WlanApp.dll
2009-10-21 11:23:53 ----A---- C:\WINDOWS\system32\odSupp_M.dll
2009-10-21 11:23:53 ----A---- C:\WINDOWS\system32\JJAKEn.dll
2009-10-21 11:23:53 ----A---- C:\WINDOWS\system32\AQCKGen.dll
2009-10-21 11:23:53 ----A---- C:\WINDOWS\system32\ANIWZCS2.dll
2009-10-21 11:23:53 ----A---- C:\WINDOWS\system32\ANICtl.dll
2009-10-21 11:23:53 ----A---- C:\WINDOWS\system32\aIPH.dll
2009-10-21 11:23:43 ----D---- C:\Program Files\ANI
2009-10-21 11:23:43 ----A---- C:\WINDOWS\system32\ANIOApi.dll
2009-10-21 11:23:30 ----A---- C:\WINDOWS\system32\DWLInst.dll
2009-10-21 11:23:29 ----D---- C:\Program Files\D-Link
2009-10-21 11:22:26 ----D---- C:\Documents and Settings\herve\Application Data\InstallShield
2009-10-21 11:08:51 ----RA---- C:\WINDOWS\system32\AsIO.dll
2009-10-21 11:08:49 ----D---- C:\Program Files\ASUS
2009-10-21 11:06:51 ----D---- C:\Program Files\Marvell
2009-10-21 11:06:44 ----D---- C:\Documents and Settings\herve\Application Data\TMP
2009-10-21 11:03:42 ----RA---- C:\WINDOWS\system32\PostProc.dll
2009-10-21 11:03:42 ----RA---- C:\WINDOWS\system32\a3d.dll
2009-10-21 11:03:41 ----A---- C:\WINDOWS\system32\ksuser.dll
2009-10-21 11:03:38 ----N---- C:\WINDOWS\system32\wdmioctl.dll
2009-10-21 11:03:37 ----N---- C:\WINDOWS\system32\SMMedia.dll
2009-10-21 11:03:37 ----N---- C:\WINDOWS\system32\DSndUp.exe
2009-10-21 11:03:37 ----N---- C:\WINDOWS\system32\CleanUp.exe
2009-10-21 11:03:37 ----D---- C:\Program Files\Analog Devices
2009-10-21 11:03:36 ----HD---- C:\Program Files\InstallShield Installation Information
2009-10-21 11:03:13 ----HDC---- C:\WINDOWS$NtUninstallKB888111WXPSP2$
2009-10-21 11:03:13 ----A---- C:\WINDOWS\system32\spupdsvc.exe
2009-10-21 11:02:46 ----D---- C:\Program Files\Fichiers communs\InstallShield
2009-10-21 11:00:35 ----D---- C:\WINDOWS\ASUSInstAll
2009-10-21 10:57:25 ----D---- C:\WINDOWS\system32\ReinstallBackups
2009-10-21 10:57:24 ----DC---- C:\WINDOWS\system32\DRVSTORE
2009-10-21 10:57:24 ----D---- C:\Program Files\Intel
2009-10-21 10:57:18 ----D---- C:\Intel
2009-10-21 10:57:03 ----A---- C:\WINDOWS\Ascd_log.ini
2009-10-21 10:50:25 ----A---- C:\WINDOWS\Ascd_tmp.ini
2009-10-21 10:48:25 ----D---- C:\Documents and Settings\herve\Application Data\Identities
2009-10-21 10:48:24 ----HD---- C:\Program Files\Uninstall Information
2009-10-21 10:48:20 ----SD---- C:\Documents and Settings\herve\Application Data\Microsoft
2009-10-21 10:48:20 ----ASH---- C:\Documents and Settings\herve\Application Data\desktop.ini
2009-10-21 10:47:23 ----D---- C:\WINDOWS\SoftwareDistribution
2009-10-21 10:47:21 ----SD---- C:\WINDOWS\system32\Microsoft
2009-10-21 10:47:21 ----A---- C:\WINDOWS\SchedLgU.Txt
2009-10-21 10:45:21 ----D---- C:\WINDOWS\system32\xircom
2009-10-21 10:45:21 ----D---- C:\Program Files\xerox
2009-10-21 10:45:21 ----D---- C:\Program Files\microsoft frontpage
2009-10-21 10:45:11 ----A---- C:\WINDOWS\control.ini
2009-10-21 10:45:11 ----A---- C:\AUTOEXEC.BAT
2009-10-21 10:45:03 ----A---- C:\WINDOWS\system32\mapi32.dll
2009-10-21 10:44:34 ----SD---- C:\WINDOWS\Downloaded Program Files
2009-10-21 10:44:34 ----RD---- C:\WINDOWS\Offline Web Pages
2009-10-21 10:44:34 ----RAH---- C:\WINDOWS\system32\logonui.exe.manifest
2009-10-21 10:44:31 ----RAH---- C:\WINDOWS\system32\cdplayer.exe.manifest
2009-10-21 10:44:29 ----HD---- C:\Program Files\WindowsUpdate
2009-10-21 10:44:26 ----D---- C:\Program Files\Services en ligne
2009-10-21 10:44:17 ----D---- C:\WINDOWS\system32\DirectX
2009-10-21 10:44:04 ----A---- C:\WINDOWS\system32\atrace.dll
2009-10-21 10:44:02 ----A---- C:\WINDOWS\system32\desktop.ini
2009-10-21 10:44:02 ----A---- C:\WINDOWS\desktop.ini
2009-10-21 10:43:57 ----A---- C:\WINDOWS\system32\nmevtmsg.dll
2009-10-21 10:43:56 ----D---- C:\Program Files\Fichiers communs\Services
2009-10-21 10:43:56 ----A---- C:\WINDOWS\system32\acctres.dll
2009-10-21 10:43:54 ----SD---- C:\WINDOWS\Tasks
2009-10-21 10:43:54 ----D---- C:\Program Files\Fichiers communs\MSSoap
2009-10-21 10:43:54 ----A---- C:\WINDOWS\system32\icfgnt5.dll
2009-10-21 10:43:51 ----D---- C:\WINDOWS\system32\Macromed
2009-10-21 10:43:51 ----D---- C:\WINDOWS\srchasst
2009-10-21 10:43:49 ----A---- C:\WINDOWS\system32\wuweb.dll
2009-10-21 10:43:49 ----A---- C:\WINDOWS\system32\wucltui.dll
2009-10-21 10:43:49 ----A---- C:\WINDOWS\system32\wuauserv.dll
2009-10-21 10:43:49 ----A---- C:\WINDOWS\system32\wuaueng1.dll
2009-10-21 10:43:48 ----A---- C:\WINDOWS\system32\wups.dll
2009-10-21 10:43:48 ----A---- C:\WINDOWS\system32\wuaueng.dll
2009-10-21 10:43:48 ----A---- C:\WINDOWS\system32\wuauclt1.exe
2009-10-21 10:43:48 ----A---- C:\WINDOWS\system32\wuauclt.exe
2009-10-21 10:43:48 ----A---- C:\WINDOWS\system32\wuapi.dll
2009-10-21 10:43:48 ----A---- C:\WINDOWS\system32\qmgrprxy.dll
2009-10-21 10:43:48 ----A---- C:\WINDOWS\system32\qmgr.dll
2009-10-21 10:43:48 ----A---- C:\WINDOWS\system32\bitsprx3.dll
2009-10-21 10:43:48 ----A---- C:\WINDOWS\system32\bitsprx2.dll
2009-10-21 10:43:45 ----D---- C:\Program Files\Movie Maker
2009-10-21 10:43:43 ----A---- C:\WINDOWS\system32\safrslv.dll
2009-10-21 10:43:43 ----A---- C:\WINDOWS\system32\safrdm.dll
2009-10-21 10:43:43 ----A---- C:\WINDOWS\system32\safrcdlg.dll
2009-10-21 10:43:43 ----A---- C:\WINDOWS\system32\racpldlg.dll
2009-10-21 10:43:41 ----A---- C:\WINDOWS\system32\fltmc.exe
2009-10-21 10:43:41 ----A---- C:\WINDOWS\system32\fltlib.dll
2009-10-21 10:43:40 ----D---- C:\WINDOWS\system32\Restore
2009-10-21 10:43:40 ----A---- C:\WINDOWS\system32\srsvc.dll
2009-10-21 10:43:40 ----A---- C:\WINDOWS\system32\srrstr.dll
2009-10-21 10:43:40 ----A---- C:\WINDOWS\system32\srclient.dll
2009-10-21 10:43:40 ----A---- C:\WINDOWS\system32\mnmdd.dll
2009-10-21 10:43:40 ----A---- C:\WINDOWS\system32\isrdbg32.dll
2009-10-21 10:43:40 ----A---- C:\WINDOWS\system32\ils.dll
2009-10-21 10:43:39 ----A---- C:\WINDOWS\system32\nmmkcert.dll
2009-10-21 10:43:39 ----A---- C:\WINDOWS\system32\msconf.dll
2009-10-21 10:43:39 ----A---- C:\WINDOWS\system32\mnmsrvc.exe
2009-10-21 10:43:37 ----D---- C:\Program Files\NetMeeting
2009-10-21 10:43:37 ----A---- C:\WINDOWS\system32\msoert2.dll
2009-10-21 10:43:37 ----A---- C:\WINDOWS\system32\msoeacct.dll
2009-10-21 10:43:37 ----A---- C:\WINDOWS\system32\inetres.dll
2009-10-21 10:43:37 ----A---- C:\WINDOWS\system32\inetcomm.dll
2009-10-21 10:43:35 ----D---- C:\Program Files\Outlook Express
2009-10-21 10:43:35 ----A---- C:\WINDOWS\system32\schedsvc.dll
2009-10-21 10:43:35 ----A---- C:\WINDOWS\system32\mstinit.exe
2009-10-21 10:43:35 ----A---- C:\WINDOWS\system32\mstask.dll
2009-10-21 10:43:35 ----A---- C:\WINDOWS\system32\isign32.dll
2009-10-21 10:43:35 ----A---- C:\WINDOWS\system32\inetcfg.dll
2009-10-21 10:43:35 ----A---- C:\WINDOWS\system32\icwphbk.dll
2009-10-21 10:43:35 ----A---- C:\WINDOWS\system32\icwdial.dll
2009-10-21 10:43:31 ----D---- C:\Program Files\Internet Explorer
2009-10-21 10:43:31 ----D---- C:\Program Files\Fichiers communs\System
2009-10-21 10:43:11 ----D---- C:\Program Files\ComPlus Applications
2009-10-21 10:43:10 ----A---- C:\WINDOWS\vbaddin.ini
2009-10-21 10:43:10 ----A---- C:\WINDOWS\vb.ini
2009-10-21 10:43:07 ----D---- C:\WINDOWS\Registration
2009-10-21 10:43:02 ----D---- C:\Program Files\Windows Media Player
2009-10-21 10:42:59 ----D---- C:\Program Files\Messenger
2009-10-21 10:42:56 ----D---- C:\Program Files\MSN Gaming Zone
2009-10-21 10:42:56 ----A---- C:\WINDOWS\system32\write.exe
2009-10-21 10:42:50 ----A---- C:\WINDOWS\system32\winchat.exe
2009-10-21 10:42:50 ----A---- C:\WINDOWS\system32\sndvol32.exe
2009-10-21 10:42:50 ----A---- C:\WINDOWS\system32\hticons.dll
2009-10-21 10:42:50 ----A---- C:\WINDOWS\system32\avwav.dll
2009-10-21 10:42:50 ----A---- C:\WINDOWS\system32\avtapi.dll
2009-10-21 10:42:50 ----A---- C:\WINDOWS\system32\avmeter.dll
2009-10-21 10:42:45 ----A---- C:\WINDOWS\system32\getuname.dll
2009-10-21 10:42:45 ----A---- C:\WINDOWS\system32\charmap.exe
2009-10-21 10:42:45 ----A---- C:\WINDOWS\system32\calc.exe
2009-10-21 10:42:44 ----A---- C:\WINDOWS\system32\usrlogon.cmd
2009-10-21 10:42:44 ----A---- C:\WINDOWS\system32\tsshutdn.exe
2009-10-21 10:42:44 ----A---- C:\WINDOWS\system32\tslabels.ini
2009-10-21 10:42:44 ----A---- C:\WINDOWS\system32\tskill.exe
2009-10-21 10:42:44 ----A---- C:\WINDOWS\system32\tsdiscon.exe
2009-10-21 10:42:44 ----A---- C:\WINDOWS\system32\tscon.exe
2009-10-21 10:42:44 ----A---- C:\WINDOWS\system32\shadow.exe
2009-10-21 10:42:44 ----A---- C:\WINDOWS\system32\rwinsta.exe
2009-10-21 10:42:44 ----A---- C:\WINDOWS\system32\reset.exe
2009-10-21 10:42:44 ----A---- C:\WINDOWS\system32\regini.exe
2009-10-21 10:42:44 ----A---- C:\WINDOWS\system32\rdpcfgex.dll
2009-10-21 10:42:44 ----A---- C:\WINDOWS\system32\qwinsta.exe
2009-10-21 10:42:44 ----A---- C:\WINDOWS\system32\qappsrv.exe
2009-10-21 10:42:44 ----A---- C:\WINDOWS\system32\msg.exe
2009-10-21 10:42:44 ----A---- C:\WINDOWS\system32\logoff.exe
2009-10-21 10:42:44 ----A---- C:\WINDOWS\system32\cdmodem.dll
2009-10-21 10:42:43 ----A---- C:\WINDOWS\system32\mtxlegih.dll
2009-10-21 10:42:43 ----A---- C:\WINDOWS\system32\mtxex.dll
2009-10-21 10:42:43 ----A---- C:\WINDOWS\system32\mtxdm.dll
2009-10-21 10:42:43 ----A---- C:\WINDOWS\system32\msdtcprf.ini
2009-10-21 10:42:43 ----A---- C:\WINDOWS\system32\dcomcnfg.exe
2009-10-21 10:42:43 ----A---- C:\WINDOWS\system32\comrepl.dll
2009-10-21 10:42:43 ----A---- C:\WINDOWS\system32\comaddin.dll
2009-10-21 10:42:42 ----A---- C:\WINDOWS\system32\stclient.dll
2009-10-21 10:42:42 ----A---- C:\WINDOWS\system32\comsnap.dll
2009-10-21 10:42:39 ----A---- C:\WINDOWS\system32\wmimgmt.msc
2009-10-21 10:42:33 ----D---- C:\Program Files\MSN
2009-10-21 10:42:32 ----D---- C:\Program Files\Windows NT
2009-10-21 10:42:32 ----A---- C:\WINDOWS\system32\sndrec32.exe
2009-10-21 10:42:32 ----A---- C:\WINDOWS\system32\mspaint.exe
2009-10-21 10:42:32 ----A---- C:\WINDOWS\system32\mplay32.exe
2009-10-21 10:42:32 ----A---- C:\WINDOWS\system32\hypertrm.dll
2009-10-21 10:42:32 ----A---- C:\WINDOWS\system32\accwiz.exe
2009-10-21 10:42:31 ----A---- C:\WINDOWS\system32\tscfgwmi.dll
2009-10-21 10:42:31 ----A---- C:\WINDOWS\system32\remotepg.dll
2009-10-21 10:42:31 ----A---- C:\WINDOWS\system32\rdsaddin.exe
2009-10-21 10:42:31 ----A---- C:\WINDOWS\system32\mstscax.dll
2009-10-21 10:42:31 ----A---- C:\WINDOWS\system32\mstsc.exe
2009-10-21 10:42:31 ----A---- C:\WINDOWS\system32\clipbrd.exe
2009-10-21 10:42:30 ----D---- C:\WINDOWS\system32\MsDtc
2009-10-21 10:42:30 ----A---- C:\WINDOWS\system32\tscupgrd.exe
2009-10-21 10:42:30 ----A---- C:\WINDOWS\system32\termsrv.dll
2009-10-21 10:42:30 ----A---- C:\WINDOWS\system32\sessmgr.exe
2009-10-21 10:42:30 ----A---- C:\WINDOWS\system32\rdshost.exe
2009-10-21 10:42:30 ----A---- C:\WINDOWS\system32\rdpwsx.dll
2009-10-21 10:42:30 ----A---- C:\WINDOWS\system32\rdpsnd.dll
2009-10-21 10:42:30 ----A---- C:\WINDOWS\system32\rdpclip.exe
2009-10-21 10:42:30 ----A---- C:\WINDOWS\system32\rdchost.dll
2009-10-21 10:42:30 ----A---- C:\WINDOWS\system32\qprocess.exe
2009-10-21 10:42:30 ----A---- C:\WINDOWS\system32\mtxoci.dll
2009-10-21 10:42:30 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
2009-10-21 10:42:30 ----A---- C:\WINDOWS\system32\icaapi.dll
2009-10-21 10:42:30 ----A---- C:\WINDOWS\system32\cfgbkend.dll
2009-10-21 10:42:29 ----A---- C:\WINDOWS\system32\xolehlp.dll
2009-10-21 10:42:29 ----A---- C:\WINDOWS\system32\msdtctm.dll
2009-10-21 10:42:29 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2009-10-21 10:42:29 ----A---- C:\WINDOWS\system32\msdtclog.dll
2009-10-21 10:42:29 ----A---- C:\WINDOWS\system32\msdtc.exe
2009-10-21 10:42:28 ----D---- C:\WINDOWS\system32\Com
2009-10-21 10:42:28 ----A---- C:\WINDOWS\system32\comuid.dll
2009-10-21 10:42:28 ----A---- C:\WINDOWS\system32\comsvcs.dll
2009-10-21 10:42:28 ----A---- C:\WINDOWS\system32\colbact.dll
2009-10-21 10:42:28 ----A---- C:\WINDOWS\system32\clbcatq.dll
2009-10-21 10:42:28 ----A---- C:\WINDOWS\system32\clbcatex.dll
2009-10-21 10:42:28 ----A---- C:\WINDOWS\system32\catsrvut.dll
2009-10-21 10:42:28 ----A---- C:\WINDOWS\system32\catsrvps.dll
2009-10-21 10:42:28 ----A---- C:\WINDOWS\system32\catsrv.dll
2009-10-21 10:42:24 ----A---- C:\WINDOWS\system32\servdeps.dll
2009-10-21 10:42:24 ----A---- C:\WINDOWS\system32\mmfutil.dll
2009-10-21 10:42:23 ----A---- C:\WINDOWS\system32\licwmi.dll
2009-10-21 10:42:23 ----A---- C:\WINDOWS\system32\cmprops.dll

======List of files/folders modified in the last 3 months======

2009-10-29 01:42:33 ----A---- C:\WINDOWS\system32\wininet.dll
2009-10-29 01:42:33 ----A---- C:\WINDOWS\system32\urlmon.dll
2009-10-29 01:42:32 ----N---- C:\WINDOWS\system32\occache.dll
2009-10-29 01:42:32 ----A---- C:\WINDOWS\system32\mshtml.dll
2009-10-29 01:42:31 ----A---- C:\WINDOWS\system32\msfeedsbs.dll
2009-10-29 01:42:31 ----A---- C:\WINDOWS\system32\msfeeds.dll
2009-10-29 01:42:30 ----A---- C:\WINDOWS\system32\jsproxy.dll
2009-10-29 01:42:30 ----A---- C:\WINDOWS\system32\iertutil.dll
2009-10-29 01:42:29 ----A---- C:\WINDOWS\system32\iepeers.dll
2009-10-29 01:42:29 ----A---- C:\WINDOWS\system32\ieframe.dll
2009-10-29 01:42:27 ----N---- C:\WINDOWS\system32\iedkcs32.dll
2009-10-28 08:40:47 ----N---- C:\WINDOWS\system32\ie4uinit.exe
2009-10-21 22:16:28 ----A---- C:\WINDOWS\win.ini
2009-10-21 12:30:39 ----A---- C:\WINDOWS\system.ini

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 AsIO;AsIO; C:\WINDOWS\system32\drivers\AsIO.sys [2007-12-17 12400]
R1 intelppm;Pilote de processeur Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-13 40576]
R1 KLIF;Kaspersky Lab Driver; C:\WINDOWS\system32\DRIVERS\klif.sys [2009-10-21 227344]
R2 acedrv11;acedrv11; ??\C:\WINDOWS\system32\drivers\acedrv11.sys []
R2 ANIO;ANIO Service; ??\C:\WINDOWS\system32\ANIO.SYS []
R2 Defrag32;Defrag32; C:\WINDOWS\system32\drivers\Defrag32.sys [2005-11-22 61456]
R3 A3AB;D-Link AirPro 802.11a/b Wireless Adapter Service(A3AB); C:\WINDOWS\system32\DRIVERS\A3AB.sys [2007-05-23 547744]
R3 ADIHdAudAddService;ADI UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\ADIHdAud.sys [2007-10-09 313856]
R3 AEAudio;AE Audio Service; C:\WINDOWS\system32\drivers\AEAudio.sys [2007-06-18 103424]
R3 Arp1394;Protocole client ARP 1394; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-13 60800]
R3 HDAudBus;Pilote de bus Microsoft UAA pour High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 hidusb;Pilote de classe HID Microsoft; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 KLFLTDEV;Kaspersky Lab KLFltDev; C:\WINDOWS\system32\DRIVERS\klfltdev.sys [2008-03-13 26640]
R3 klim5;Kaspersky Anti-Virus NDIS Filter; C:\WINDOWS\system32\DRIVERS\klim5.sys [2009-05-13 31760]
R3 mouhid;Pilote HID de souris; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-08-23 12288]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\WINDOWS\system32\DRIVERS\ASACPI.sys [2004-08-12 5810]
R3 NIC1394;Pilote réseau 1394; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-13 61824]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2009-09-27 7655872]
R3 SenFiltService;SenFilt Service; C:\WINDOWS\system32\drivers\Senfilt.sys [2006-03-17 392960]
R3 usbccgp;Pilote parent générique USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
R3 usbehci;Pilote miniport de contrôleur d’hôte amélioré Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-13 30208]
R3 usbhub;Concentrateur USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-13 59520]
R3 usbuhci;Pilote miniport de contrôleur hôte universel USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
R3 wacommousefilter;Wacom Mouse Filter Driver; C:\WINDOWS\system32\DRIVERS\wacommousefilter.sys [2007-02-16 11312]
R3 wacomvhid;Wacom Virtual Hid Driver; C:\WINDOWS\system32\DRIVERS\wacomvhid.sys [2009-05-20 13736]
R3 yukonwxp;NDIS5.1 Miniport Driver for Marvell Yukon Ethernet Controller; C:\WINDOWS\system32\DRIVERS\yk51x86.sys [2007-12-06 285952]
S3 usbprint;Classe d’imprimantes USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Pilote de scanneur USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 USBSTOR;Pilote de stockage de masse USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 wacmoumonitor;Wacom Mode Helper; C:\WINDOWS\system32\DRIVERS\wacmoumonitor.sys [2009-08-27 16168]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 a2free;a-squared Free Service; C:\Program Files\a-squared Free\a2service.exe [2009-10-01 1858144]
R2 AVP;Kaspersky Internet Security; C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe [2009-08-27 208616]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2009-10-23 153376]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2009-09-27 172100]
R2 PDSched;PDScheduler; C:\Program Files\Raxco\PerfectDisk\PDSched.exe [2006-01-03 241731]
R2 PnkBstrA;PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [2009-11-04 66872]
R2 ProtexisLicensing;ProtexisLicensing; C:\WINDOWS\system32\PSIService.exe [2006-12-12 174656]
R2 TabletServiceWacom;TabletServiceWacom; C:\WINDOWS\system32\Wacom_Tablet.exe [2009-10-06 4463400]
S2 ANIWZCSdService;ANIWZCSd Service; C:\Program Files\ANI\ANIWZCS2 Service\ANIWZCSdS.exe [2007-01-19 49152]
S2 gupdate;Service Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2009-12-05 135664]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 getPlusHelper;getPlus® Helper; C:\WINDOWS\System32\svchost.exe [2008-04-13 14336]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 PDEngine;PDEngine; C:\Program Files\Raxco\PerfectDisk\PDEngine.exe [2006-01-03 483397]
S3 WMPNetworkSvc;Service Partage réseau du Lecteur Windows Media; C:\Program Files\Windows Media Player\WMPNetwk.exe [2006-10-24 918016]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-13 14336]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------

info.txt

info.txt logfile of random’s system information tool 1.06 2010-01-20 09:36:25

======Uninstall list======

–>MsiExec /X{C5C1C0F0-D62F-4DBF-81D4-D7EF397C228B}
–>rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
ABBYY FineReader 6.0 Sprint–>MsiExec.exe /I{ACF60000-22B9-4CE9-98D6-2CCF359BAC07}
Adobe Download Manager–>“C:\WINDOWS\system32\rundll32.exe” “C:\Program Files\NOS\bin\getPlus_Helper.dll”,Uninstall /IE2883E8F-472F-4fb0-9522-AC9BF37916A7 /Get1
Adobe Flash Player 10 ActiveX–>C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
Adobe Flash Player 10 Plugin–>C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
Adobe Reader 9.2 - Français–>MsiExec.exe /I{AC76BA86-7AD7-1036-7B44-A92000000001}
AI Suite–>RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup “C:\Program Files\InstallShield Installation Information{310BC5E2-31AF-49BB-904D-E71EB93645DC}\Setup.exe” -l0x40c
AirPlus XtremeG DWL-G520–>C:\Program Files\InstallShield Installation Information{EE3A1D30-B97D-4EC0-BA65-EEE4131ECA9A}\setup.exe -runfromtemp -l0x040c -removeonly
ANIO Service–>RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup “C:\Program Files\InstallShield Installation Information{7B5CE976-C7A9-4E38-A7F3-6C8EF025DD8E}\Setup.exe”
ANIWZCS2 Service–>RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup “C:\Program Files\InstallShield Installation Information{4C590030-7469-453E-8589-D15DA9D03F52}\Setup.exe”
a-squared Free 4.5–>“C:\Program Files\a-squared Free\unins000.exe”
Buccaneer: The Pursuit of Infamy–>“C:\Program Files\Steam\steam.exe” uninstall…
Burnout Paradise: The Ultimate Box–>“C:\Program Files\Steam\steam.exe” uninstall…
Call of Duty 4: Modern Warfare–>“C:\Program Files\Steam\steam.exe” uninstall…
CCleaner (remove only)–>“C:\Program Files\CCleaner\uninst.exe”
Clutch–>“C:\Program Files\Steam\steam.exe” [