Contenu du compte rendu

arabica -  
 arabica -
Bonjour,
Voici mon resultat Il y a t il un virus? pour quelle raison l'image de mon pc portable saute?

Logfile of random's system information tool 1.06 (written by random/random)
Run by isabelle at 2009-10-27 21:38:19
Microsoft® Windows Vista™ Édition Familiale Basique Service Pack 2
System drive C: has 58 GB (61%) free of 96 GB
Total RAM: 2038 MB (28% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 21:38:22, on 27/10/2009
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18828)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskeng.exe
C:\Windows\Explorer.EXE
C:\Windows\RtHDVCpl.exe
C:\Program Files\Synaptics\SynTP\SynTPStart.exe
C:\Program Files\Launch Manager\HotkeyApp.exe
C:\Program Files\AVG\AVG8\avgtray.exe
C:\Program Files\Controle Parental\bin\OPTGui.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Winsudate\gibusr.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Users\isabelle\AppData\Local\ahcierws.exe
C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Windows\system32\igfxsrvc.exe
C:\Program Files\OrangeHSS\Launcher\Launcher.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\PROGRA~1\COMMON~1\France Telecom\Shared Modules\AlertModule\0\AlertModule.exe
C:\Program Files\OrangeHSS\systray\systrayapp.exe
C:\Program Files\OrangeHSS\Deskboard\deskboard.exe
C:\Program Files\OrangeHSS\connectivity\connectivitymanager.exe
C:\Program Files\OrangeHSS\connectivity\CoreCom\CoreCom.exe
C:\Program Files\OrangeHSS\connectivity\CoreCom\OraConfigRecover.exe
C:\PROGRA~1\COMMON~1\France Telecom\Shared Modules\FTCOMModule\0\FTCOMModule.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\Program Files\Windows Live\Toolbar\wltuser.exe
C:\Windows\system32\wuauclt.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Google\Google Toolbar\GoogleToolbarUser_32.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Windows\system32\Macromed\Flash\FlashUtil10c.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\isabelle\Pictures\DCIM\100DSCIM\RSIT.exe
C:\Users\isabelle\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A5UEEBPD\RSIT[1].exe
C:\Program Files\trend micro\isabelle.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.orange.fr/portail?kw=
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG8\Toolbar\IEToolbar.dll
R3 - URLSearchHook: (no name) - *{08C06D61-F1F3-4799-86F8-BE1A89362C85} - (no file)
R3 - URLSearchHook: (no name) - *{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
O1 - Hosts: ::1 localhost
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: Windows Live Family Safety Browser Helper - {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - C:\Program Files\Windows Live\Family Safety\fssbho.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG8\Toolbar\IEToolbar.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.3.4501.1418\swg.dll
O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_B7C5AC242193BB3E.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: AVG Security Toolbar - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\Program Files\AVG\AVG8\Toolbar\IEToolbar.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [CtrlVol] C:\Program Files\Launch Manager\CtrlVol.exe
O4 - HKLM\..\Run: [SynTPStart] C:\Program Files\Synaptics\SynTP\SynTPStart.exe
O4 - HKLM\..\Run: [ORAHSSSessionManager] C:\Program Files\OrangeHSS\SessionManager\SessionManager.exe
O4 - HKLM\..\Run: [LaunchAp] C:\Program Files\Launch Manager\LaunchAp.exe
O4 - HKLM\..\Run: [Wbutton] C:\Program Files\Launch Manager\WButton.exe
O4 - HKLM\..\Run: [NPCTray] C:\Program Files\Norman\npc\bin\npc_tray.exe /LOAD
O4 - HKLM\..\Run: [HotkeyApp] "C:\Program Files\Launch Manager\HotkeyApp.exe"
O4 - HKLM\..\Run: [FSCRecovery] c:\Program Files\Fujitsu Siemens Computers\Fujitsu Siemens Computers Recovery\FSCRecoveryReminder.exe
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [Norman ZANDA] "C:\Program Files\Norman\Npm\bin\ZLH.EXE" /LOAD /SPLASH
O4 - HKLM\..\Run: [fssui] "C:\Program Files\Windows Live\Family Safety\fsui.exe" -autorun
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKLM\..\Run: [OPTENET_GUI] C:\PROGRA~1\CONTRO~1\bin\optgui.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Nero\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [Google EULA Launcher] c:\Program Files\Google\Google EULA\GoogleEULALauncher.exe IE PA
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Skytel] Skytel.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKCU\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [WinUsr] C:\Program Files\Winsudate\gibusr.exe
O4 - HKCU\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [ahcierws] "c:\users\isabelle\appdata\local\ahcierws.exe" ahcierws
O4 - HKCU\..\RunOnce: [Shockwave Updater] C:\Windows\System32\Adobe\SHOCKW~1\SWHELP~1.EXE -Update -1103472 -"Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0; GTB6; SLCC1; .NET CLR 2.0.50727; OfficeLiveConnector.1.3; OfficeLivePatch.0.0; .NET CLR 3.5.30729; .NET CLR 3.0.30618; Orange 8.0)" -"https://www.jeux-gratuits.com/jeu-gratuit-quad-fury.html"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [fsc-reg] C:\ProgramData\fsc-reg\fscreg.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [fsc-reg] C:\ProgramData\fsc-reg\fscreg.exe (User 'Default user')
O4 - Startup: OneNote 2007 - Capture d'écran et lancement.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O13 - Gopher Prefix:
O15 - Trusted Zone: http://*.mappy.com
O15 - Trusted Zone: http://*.orange.fr
O15 - Trusted Zone: http://rw.search.ke.voila.fr
O15 - Trusted Zone: http://orange.weborama.fr
O16 - DPF: {0972B098-DEE9-4279-AC7E-4BAAA029102D} (PhotoboxPhotowaysUploader5 Control) - http://assets.photobox.com/assets/aurigma/ImageUploader5.cab?20091023104836
O16 - DPF: {D0C0F75C-683A-4390-A791-1ACFD5599AB8} (Oberon Flash Game Host) - http://jeuxmultijoueurs.orange.fr/Gameshell/GameHost/1.0/OberonGameHost.cab
O16 - DPF: {E77F23EB-E7AB-4502-8F37-247DBAF1A147} (Windows Live Hotmail Photo Upload Tool) - http://gfx2.hotmail.com/mail/w4/pr01/photouploadcontrol/VistaMSNPUpldfr-fr.cab
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~2\GOEC62~1.DLL,avgrsstx.dll
O23 - Service: AVG Free8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgemc.exe
O23 - Service: AVG Free8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom SA - C:\PROGRA~1\COMMON~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
O23 - Service: Google Desktop Manager 5.7.802.22438 (GoogleDesktopManager-022208-143751) - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: IviRegMgr - InterVideo - c:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe
O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
O23 - Service: Orange Contrôle Parental (OPTENET_FILTER) - Orange - C:\Program Files\Controle Parental\bin\optproxy.exe
O23 - Service: Fujitsu Siemens Computers Diagnostic Testhandler (TestHandler) - Fujitsu Siemens Computers - C:\Program Files\Fujitsu Siemens Computers\SystemDiagnostics\OnlineDiagnostic\TestManager\TestHandler.exe
O23 - Service: Gestionnaire de mise à jour Winsudate (WinSvc) - Winsudate - C:\Program Files\Winsudate\gibsvc.exe
O23 - Service: WisLMSvc - Wistron Corp. - C:\Program Files\Launch Manager\WisLMSvc.exe

--
End of file - 12384 bytes

======Scheduled tasks folder======

C:\Windows\tasks\User_Feed_Synchronization-{0FC52F66-1D34-40B4-9595-BA079DF2C405}.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Aide pour le lien d'Adobe PDF Reader - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files\AVG\AVG8\avgssie.dll [2009-09-12 1111320]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4f3ed5cd-0726-42a9-87f5-d13f3d2976ac}]
Windows Live Family Safety Browser Helper Class - C:\Program Files\Windows Live\Family Safety\fssbho.dll [2009-08-05 113512]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2009-05-19 137600]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Programme d'aide de l'Assistant de connexion Windows Live ID - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-03-30 403824]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A3BC75A2-1F87-4686-AA43-5347D756017C}]
AVG Security Toolbar BHO - C:\Program Files\AVG\AVG8\Toolbar\IEToolbar.dll [2009-09-02 1107200]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2009-09-13 256112]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.3.4501.1418\swg.dll [2009-10-09 762864]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C84D72FE-E17D-4195-BB24-76C02E2E7C4E}]
Google Dictionary Compression sdch - C:\Program Files\Google\Google Toolbar\Component\fastsearch_B7C5AC242193BB3E.dll [2009-09-13 458736]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-07-31 41760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
Windows Live Toolbar Helper - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]
{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - AVG Security Toolbar - C:\Program Files\AVG\AVG8\Toolbar\IEToolbar.dll [2009-09-02 1107200]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2009-09-13 256112]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Windows\RtHDVCpl.exe [2007-07-06 4669440]
"CtrlVol"=C:\Program Files\Launch Manager\CtrlVol.exe []
"SynTPStart"=C:\Program Files\Synaptics\SynTP\SynTPStart.exe [2007-08-17 102400]
"ORAHSSSessionManager"=C:\Program Files\OrangeHSS\SessionManager\SessionManager.exe [2007-12-12 107248]
"LaunchAp"=C:\Program Files\Launch Manager\LaunchAp.exe []
"Wbutton"=C:\Program Files\Launch Manager\WButton.exe []
"NPCTray"=C:\Program Files\Norman\npc\bin\npc_tray.exe /LOAD []
"HotkeyApp"=C:\Program Files\Launch Manager\HotkeyApp.exe [2007-07-26 192512]
"FSCRecovery"=c:\Program Files\Fujitsu Siemens Computers\Fujitsu Siemens Computers Recovery\FSCRecoveryReminder.exe [2008-05-08 268096]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-21 1008184]
"Norman ZANDA"=C:\Program Files\Norman\Npm\bin\ZLH.EXE /LOAD /SPLASH []
"fssui"=C:\Program Files\Windows Live\Family Safety\fsui.exe [2009-08-05 647520]
"AVG8_TRAY"=C:\PROGRA~1\AVG\AVG8\avgtray.exe [2009-10-17 2025752]
"OPTENET_GUI"=C:\PROGRA~1\CONTRO~1\bin\optgui.exe [2006-12-20 404536]
"NeroFilterCheck"=C:\Program Files\Common Files\Nero\Lib\NeroCheck.exe [2007-03-01 153136]
"Google EULA Launcher"=c:\Program Files\Google\Google EULA\GoogleEULALauncher.exe [2008-05-28 20480]
"Google Desktop Search"=C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [2008-12-20 29744]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [2008-10-15 39792]
"Skytel"=C:\Windows\Skytel.exe [2007-06-15 1826816]
"SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2009-07-31 149280]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2008-02-11 141848]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2008-02-11 166424]
"Persistence"=C:\Windows\system32\igfxpers.exe [2008-02-11 133656]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"WindowsWelcomeCenter"=oobefldr.dll,ShowWelcomeCenter []
"swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2009-02-21 39408]
"WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2008-01-21 202240]
"WinUsr"=C:\Program Files\Winsudate\gibusr.exe [2009-09-12 88304]
"Picasa Media Detector"=C:\Program Files\Picasa2\PicasaMediaDetector.exe []
"MsnMsgr"=C:\Program Files\Windows Live\Messenger\msnmsgr.exe [2009-07-26 3883856]
"ahcierws"=c:\users\isabelle\appdata\local\ahcierws.exe [2009-10-23 434176]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Shockwave Updater"=C:\Windows\System32\Adobe\SHOCKW~1\SWHELP~1.EXE [2009-01-16 460216]

C:\Users\isabelle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
OneNote 2007 - Capture d'écran et lancement.lnk - C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLS"="C:\PROGRA~1\Google\GOOGLE~2\GOEC62~1.DLL,avgrsstx.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2008-02-11 204800]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PEVSystemStart]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\procexp90.Sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files\OrangeHSS\Connectivity\ConnectivityManager.exe"="C:\Program Files\OrangeHSS\Connectivity\ConnectivityManager.exe:*:enabled:CSS"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 months======

2009-10-27 21:31:19 ----D---- C:\rsit
2009-10-27 21:31:19 ----D---- C:\Program Files\trend micro
2009-10-26 22:22:20 ----D---- C:\Qoobox
2009-10-22 15:48:16 ----A---- C:\Windows\system32\jscript.dll
2009-10-21 20:41:45 ----A---- C:\Windows\system32\occache.dll
2009-10-21 20:41:44 ----A---- C:\Windows\system32\msfeedsbs.dll
2009-10-21 20:41:44 ----A---- C:\Windows\system32\msfeeds.dll
2009-10-21 20:41:44 ----A---- C:\Windows\system32\jsproxy.dll
2009-10-21 20:41:44 ----A---- C:\Windows\system32\ieui.dll
2009-10-21 20:41:44 ----A---- C:\Windows\system32\iepeers.dll
2009-10-21 20:41:43 ----A---- C:\Windows\system32\wininet.dll
2009-10-21 20:41:43 ----A---- C:\Windows\system32\msfeedssync.exe
2009-10-21 20:41:43 ----A---- C:\Windows\system32\iesetup.dll
2009-10-21 20:41:43 ----A---- C:\Windows\system32\iernonce.dll
2009-10-21 20:41:43 ----A---- C:\Windows\system32\ie4uinit.exe
2009-10-21 20:41:42 ----A---- C:\Windows\system32\urlmon.dll
2009-10-21 20:41:42 ----A---- C:\Windows\system32\ieUnatt.exe
2009-10-21 20:41:42 ----A---- C:\Windows\system32\iesysprep.dll
2009-10-21 20:41:42 ----A---- C:\Windows\system32\iertutil.dll
2009-10-21 20:41:42 ----A---- C:\Windows\system32\iedkcs32.dll
2009-10-21 20:41:41 ----A---- C:\Windows\system32\ieframe.dll
2009-10-21 20:41:40 ----A---- C:\Windows\system32\mshtml.dll
2009-10-21 20:40:05 ----A---- C:\Windows\system32\mshtmled.dll
2009-10-21 20:40:04 ----A---- C:\Windows\system32\msls31.dll
2009-10-21 20:40:04 ----A---- C:\Windows\system32\mshtmler.dll
2009-10-21 20:40:04 ----A---- C:\Windows\system32\icardie.dll
2009-10-21 20:40:04 ----A---- C:\Windows\system32\corpol.dll
2009-10-21 20:40:04 ----A---- C:\Windows\system32\admparse.dll
2009-10-21 20:40:03 ----A---- C:\Windows\system32\licmgr10.dll
2009-10-21 20:40:03 ----A---- C:\Windows\system32\inseng.dll
2009-10-21 20:40:03 ----A---- C:\Windows\system32\imgutil.dll
2009-10-21 20:40:03 ----A---- C:\Windows\system32\ieakeng.dll
2009-10-21 20:40:03 ----A---- C:\Windows\system32\dxtrans.dll
2009-10-21 20:40:03 ----A---- C:\Windows\system32\dxtmsft.dll
2009-10-21 20:40:02 ----A---- C:\Windows\system32\WinFXDocObj.exe
2009-10-21 20:40:02 ----A---- C:\Windows\system32\wextract.exe
2009-10-21 20:40:02 ----A---- C:\Windows\system32\webcheck.dll
2009-10-21 20:40:02 ----A---- C:\Windows\system32\mstime.dll
2009-10-21 20:40:02 ----A---- C:\Windows\system32\msrating.dll
2009-10-21 20:40:02 ----A---- C:\Windows\system32\ieakui.dll
2009-10-21 20:40:02 ----A---- C:\Windows\system32\ieaksie.dll
2009-10-21 20:40:01 ----A---- C:\Windows\system32\advpack.dll
2009-10-21 20:40:00 ----A---- C:\Windows\system32\pngfilt.dll
2009-10-21 20:39:59 ----A---- C:\Windows\system32\vbscript.dll
2009-10-21 20:39:59 ----A---- C:\Windows\system32\url.dll
2009-10-21 20:39:59 ----A---- C:\Windows\system32\ieapfltr.dll
2009-10-21 20:39:58 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2009-10-21 20:39:58 ----A---- C:\Windows\system32\SetDepNx.exe
2009-10-21 20:39:58 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2009-10-21 20:39:58 ----A---- C:\Windows\system32\PDMSetup.exe
2009-10-21 20:39:58 ----A---- C:\Windows\system32\mshta.exe
2009-10-21 20:39:58 ----A---- C:\Windows\system32\iexpress.exe
2009-10-20 22:10:02 ----A---- C:\Windows\system32\javaws.exe
2009-10-20 22:10:02 ----A---- C:\Windows\system32\javaw.exe
2009-10-20 22:10:02 ----A---- C:\Windows\system32\java.exe
2009-10-20 13:17:44 ----D---- C:\Windows\system32\eu-ES
2009-10-20 13:17:44 ----D---- C:\Windows\system32\ca-ES
2009-10-20 13:17:39 ----D---- C:\Windows\system32\vi-VN
2009-10-20 12:31:23 ----D---- C:\Windows\system32\EventProviders
2009-10-20 12:17:34 ----A---- C:\Windows\system32\NlsLexicons0007.dll
2009-10-20 12:17:20 ----A---- C:\Windows\system32\SLsvc.exe
2009-10-20 12:17:20 ----A---- C:\Windows\system32\SLCExt.dll
2009-10-20 12:17:18 ----A---- C:\Windows\system32\DevicePairingWizard.exe
2009-10-20 12:17:17 ----A---- C:\Windows\system32\FunctionDiscoveryFolder.dll
2009-10-20 12:17:15 ----A---- C:\Windows\system32\NlsLexicons0009.dll
2009-10-20 12:17:11 ----A---- C:\Windows\system32\mssrch.dll
2009-10-20 12:17:08 ----A---- C:\Windows\system32\tquery.dll
2009-10-20 12:17:06 ----A---- C:\Windows\system32\PresentationNative_v0300.dll
2009-10-20 12:17:05 ----A---- C:\Windows\system32\RMActivate_isv.exe
2009-10-20 12:17:04 ----A---- C:\Windows\system32\scavenge.dll
2009-10-20 12:17:04 ----A---- C:\Windows\system32\RMActivate.exe
2009-10-20 12:17:02 ----A---- C:\Windows\system32\msi.dll
2009-10-20 12:16:59 ----A---- C:\Windows\system32\imapi2fs.dll
2009-10-20 12:16:58 ----A---- C:\Windows\system32\secproc_isv.dll
2009-10-20 12:16:57 ----A---- C:\Windows\system32\WscEapPr.dll
2009-10-20 12:16:57 ----A---- C:\Windows\system32\wcnwiz2.dll
2009-10-20 12:16:56 ----A---- C:\Windows\system32\sysmain.dll
2009-10-20 12:16:54 ----A---- C:\Windows\system32\icardagt.exe
2009-10-20 12:16:52 ----A---- C:\Windows\system32\EhStorShell.dll
2009-10-20 12:16:50 ----A---- C:\Windows\system32\spreview.exe
2009-10-20 12:16:50 ----A---- C:\Windows\system32\spinstall.exe
2009-10-20 12:16:49 ----A---- C:\Windows\system32\drmv2clt.dll
2009-10-20 12:16:48 ----A---- C:\Windows\system32\spwizui.dll
2009-10-20 12:16:47 ----A---- C:\Windows\system32\secproc.dll
2009-10-20 12:16:47 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2009-10-20 12:16:46 ----A---- C:\Windows\system32\shell32.dll
2009-10-20 12:16:44 ----A---- C:\Windows\system32\SearchIndexer.exe
2009-10-20 12:16:44 ----A---- C:\Windows\system32\p2psvc.dll
2009-10-20 12:16:44 ----A---- C:\Windows\system32\mssvp.dll
2009-10-20 12:16:43 ----A---- C:\Windows\system32\mssphtb.dll
2009-10-20 12:16:43 ----A---- C:\Windows\system32\mssph.dll
2009-10-20 12:16:43 ----A---- C:\Windows\system32\mscoree.dll
2009-10-20 12:16:43 ----A---- C:\Windows\system32\imapi2.dll
2009-10-20 12:16:41 ----A---- C:\Windows\system32\sdohlp.dll
2009-10-20 12:16:40 ----A---- C:\Windows\system32\IMJP10K.DLL
2009-10-20 12:16:40 ----A---- C:\Windows\system32\esent.dll
2009-10-20 12:16:39 ----A---- C:\Windows\system32\DevicePairing.dll
2009-10-20 12:16:38 ----A---- C:\Windows\system32\sperror.dll
2009-10-20 12:16:38 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2009-10-20 12:16:37 ----A---- C:\Windows\system32\wevtsvc.dll
2009-10-20 12:16:37 ----A---- C:\Windows\system32\korwbrkr.dll
2009-10-20 12:16:36 ----A---- C:\Windows\system32\SLC.dll
2009-10-20 12:16:36 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2009-10-20 12:16:36 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2009-10-20 12:16:36 ----A---- C:\Windows\system32\IasMigReader.exe
2009-10-20 12:16:35 ----A---- C:\Windows\system32\msshsq.dll
2009-10-20 12:16:31 ----A---- C:\Windows\system32\msjet40.dll
2009-10-20 12:16:30 ----A---- C:\Windows\system32\msxml6.dll
2009-10-20 12:16:30 ----A---- C:\Windows\system32\MPSSVC.dll
2009-10-20 12:16:29 ----A---- C:\Windows\system32\Query.dll
2009-10-20 12:16:28 ----A---- C:\Windows\system32\qmgr.dll
2009-10-20 12:16:27 ----A---- C:\Windows\system32\P2PGraph.dll
2009-10-20 12:16:27 ----A---- C:\Windows\system32\msexch40.dll
2009-10-20 12:16:27 ----A---- C:\Windows\system32\diagperf.dll
2009-10-20 12:16:26 ----A---- C:\Windows\system32\srchadmin.dll
2009-10-20 12:16:26 ----A---- C:\Windows\system32\ole32.dll
2009-10-20 12:16:26 ----A---- C:\Windows\system32\ntdll.dll
2009-10-20 12:16:26 ----A---- C:\Windows\system32\msxml3.dll
2009-10-20 12:16:25 ----A---- C:\Windows\system32\winload.exe
2009-10-20 12:16:25 ----A---- C:\Windows\system32\mblctr.exe
2009-10-20 12:16:25 ----A---- C:\Windows\system32\EncDec.dll
2009-10-20 12:16:24 ----A---- C:\Windows\system32\uDWM.dll
2009-10-20 12:16:24 ----A---- C:\Windows\system32\mmc.exe
2009-10-20 12:16:23 ----A---- C:\Windows\system32\riched20.dll
2009-10-20 12:16:23 ----A---- C:\Windows\system32\IasMigPlugin.dll
2009-10-20 12:16:23 ----A---- C:\Windows\system32\dfsr.exe
2009-10-20 12:16:22 ----A---- C:\Windows\system32\RacEngn.dll
2009-10-20 12:16:22 ----A---- C:\Windows\system32\fdBth.dll
2009-10-20 12:16:21 ----A---- C:\Windows\system32\kernel32.dll
2009-10-20 12:16:20 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2009-10-20 12:16:20 ----A---- C:\Windows\system32\SearchFilterHost.exe
2009-10-20 12:16:20 ----A---- C:\Windows\system32\milcore.dll
2009-10-20 12:16:20 ----A---- C:\Windows\system32\EhStorAPI.dll
2009-10-20 12:16:20 ----A---- C:\Windows\system32\CertEnroll.dll
2009-10-20 12:16:19 ----A---- C:\Windows\system32\spoolss.dll
2009-10-20 12:16:19 ----A---- C:\Windows\system32\schedsvc.dll
2009-10-20 12:16:19 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2009-10-20 12:16:17 ----A---- C:\Windows\system32\WinSAT.exe
2009-10-20 12:16:17 ----A---- C:\Windows\system32\msvcp60.dll
2009-10-20 12:16:17 ----A---- C:\Windows\system32\msjtes40.dll
2009-10-20 12:16:17 ----A---- C:\Windows\system32\infocardapi.dll
2009-10-20 12:16:17 ----A---- C:\Windows\system32\gpedit.dll
2009-10-20 12:16:16 ----A---- C:\Windows\system32\Magnify.exe
2009-10-20 12:16:16 ----A---- C:\Windows\system32\es.dll
2009-10-20 12:16:15 ----A---- C:\Windows\system32\mstext40.dll
2009-10-20 12:16:15 ----A---- C:\Windows\system32\advapi32.dll
2009-10-20 12:16:14 ----A---- C:\Windows\system32\WMPhoto.dll
2009-10-20 12:16:14 ----A---- C:\Windows\system32\WebClnt.dll
2009-10-20 12:16:14 ----A---- C:\Windows\system32\msexcl40.dll
2009-10-20 12:16:13 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeCPL.dll
2009-10-20 12:16:13 ----A---- C:\Windows\system32\slwmi.dll
2009-10-20 12:16:13 ----A---- C:\Windows\system32\msxbde40.dll
2009-10-20 12:16:13 ----A---- C:\Windows\system32\comsvcs.dll
2009-10-20 12:16:12 ----A---- C:\Windows\system32\vssapi.dll
2009-10-20 12:16:11 ----A---- C:\Windows\system32\authui.dll
2009-10-20 12:16:10 ----A---- C:\Windows\system32\PresentationHost.exe
2009-10-20 12:16:10 ----A---- C:\Windows\system32\msrepl40.dll
2009-10-20 12:16:09 ----A---- C:\Windows\system32\propsys.dll
2009-10-20 12:16:09 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2009-10-20 12:16:09 ----A---- C:\Windows\system32\newdev.dll
2009-10-20 12:16:09 ----A---- C:\Windows\system32\iasrecst.dll
2009-10-20 12:16:08 ----A---- C:\Windows\system32\gpsvc.dll
2009-10-20 12:16:08 ----A---- C:\Windows\system32\eudcedit.exe
2009-10-20 12:16:08 ----A---- C:\Windows\system32\crypt32.dll
2009-10-20 12:16:08 ----A---- C:\Windows\explorer.exe
2009-10-20 12:16:07 ----A---- C:\Windows\system32\setupapi.dll
2009-10-20 12:16:07 ----A---- C:\Windows\system32\rpcss.dll
2009-10-20 12:16:06 ----A---- C:\Windows\system32\mspbde40.dll
2009-10-20 12:16:06 ----A---- C:\Windows\system32\d3d9.dll
2009-10-20 12:16:05 ----A---- C:\Windows\system32\msltus40.dll
2009-10-20 12:16:05 ----A---- C:\Windows\system32\mfc42.dll
2009-10-20 12:16:05 ----A---- C:\Windows\system32\davclnt.dll
2009-10-20 12:16:04 ----A---- C:\Windows\system32\shlwapi.dll
2009-10-20 12:16:04 ----A---- C:\Windows\system32\msrd3x40.dll
2009-10-20 12:16:04 ----A---- C:\Windows\system32\msdtctm.dll
2009-10-20 12:16:04 ----A---- C:\Windows\system32\EhStorPwdMgr.dll
2009-10-20 12:16:04 ----A---- C:\Windows\system32\EhStorAuthn.dll
2009-10-20 12:16:04 ----A---- C:\Windows\system32\browseui.dll
2009-10-20 12:16:03 ----A---- C:\Windows\system32\wevtapi.dll
2009-10-20 12:16:03 ----A---- C:\Windows\system32\photowiz.dll
2009-10-20 12:16:03 ----A---- C:\Windows\system32\nlhtml.dll
2009-10-20 12:16:01 ----A---- C:\Windows\system32\user32.dll
2009-10-20 12:16:00 ----A---- C:\Windows\system32\samsrv.dll
2009-10-20 12:16:00 ----A---- C:\Windows\system32\ci.dll
2009-10-20 12:15:59 ----A---- C:\Windows\system32\win32spl.dll
2009-10-20 12:15:59 ----A---- C:\Windows\system32\quartz.dll
2009-10-20 12:15:58 ----A---- C:\Windows\system32\WcnNetsh.dll
2009-10-20 12:15:58 ----A---- C:\Windows\system32\SLCommDlg.dll
2009-10-20 12:15:58 ----A---- C:\Windows\system32\printfilterpipelinesvc.exe
2009-10-20 12:15:58 ----A---- C:\Windows\system32\oleaut32.dll
2009-10-20 12:15:58 ----A---- C:\Windows\system32\IKEEXT.DLL
2009-10-20 12:15:57 ----A---- C:\Windows\system32\netshell.dll
2009-10-20 12:15:57 ----A---- C:\Windows\system32\compcln.exe
2009-10-20 12:15:57 ----A---- C:\Windows\system32\apds.dll
2009-10-20 12:15:56 ----A---- C:\Windows\system32\winhttp.dll
2009-10-20 12:15:56 ----A---- C:\Windows\system32\mswstr10.dll
2009-10-20 12:15:56 ----A---- C:\Windows\system32\audiosrv.dll
2009-10-20 12:15:55 ----A---- C:\Windows\system32\xmlfilter.dll
2009-10-20 12:15:55 ----A---- C:\Windows\system32\msctf.dll
2009-10-20 12:15:55 ----A---- C:\Windows\system32\emdmgmt.dll
2009-10-20 12:15:54 ----A---- C:\Windows\system32\VSSVC.exe
2009-10-20 12:15:54 ----A---- C:\Windows\system32\QAGENTRT.DLL
2009-10-20 12:15:54 ----A---- C:\Windows\system32\msvcrt.dll
2009-10-20 12:15:54 ----A---- C:\Windows\system32\gdi32.dll
2009-10-20 12:15:53 ----A---- C:\Windows\system32\SLUI.exe
2009-10-20 12:15:53 ----A---- C:\Windows\system32\mfc42u.dll
2009-10-20 12:15:53 ----A---- C:\Windows\system32\iphlpsvc.dll
2009-10-20 12:15:52 ----A---- C:\Windows\system32\sqlsrv32.dll
2009-10-20 12:15:52 ----A---- C:\Windows\system32\msrd2x40.dll
2009-10-20 12:15:52 ----A---- C:\Windows\system32\eapphost.dll
2009-10-20 12:15:51 ----A---- C:\Windows\system32\winresume.exe
2009-10-20 12:15:51 ----A---- C:\Windows\system32\propdefs.dll
2009-10-20 12:15:51 ----A---- C:\Windows\system32\odbc32.dll
2009-10-20 12:15:50 ----A---- C:\Windows\system32\shdocvw.dll
2009-10-20 12:15:49 ----A---- C:\Windows\system32\wevtutil.exe
2009-10-20 12:15:49 ----A---- C:\Windows\system32\mssitlb.dll
2009-10-20 12:15:49 ----A---- C:\Windows\system32\dbgeng.dll
2009-10-20 12:15:47 ----A---- C:\Windows\system32\WsmSvc.dll
2009-10-20 12:15:47 ----A---- C:\Windows\system32\swprv.dll
2009-10-20 12:15:47 ----A---- C:\Windows\system32\mmcndmgr.dll
2009-10-20 12:15:46 ----A---- C:\Windows\system32\usp10.dll
2009-10-20 12:15:45 ----A---- C:\Windows\system32\vds.exe
2009-10-20 12:15:44 ----A---- C:\Windows\system32\netlogon.dll
2009-10-20 12:15:44 ----A---- C:\Windows\system32\msscb.dll
2009-10-20 12:15:44 ----A---- C:\Windows\system32\msctfp.dll
2009-10-20 12:15:44 ----A---- C:\Windows\system32\fdBthProxy.dll
2009-10-20 12:15:44 ----A---- C:\Windows\system32\drvinst.exe
2009-10-20 12:15:44 ----A---- C:\Windows\system32\devmgr.dll
2009-10-20 12:15:44 ----A---- C:\Windows\system32\DevicePairingProxy.dll
2009-10-20 12:15:44 ----A---- C:\Windows\system32\BFE.DLL
2009-10-20 12:15:44 ----A---- C:\Windows\system32\adsldpc.dll
2009-10-20 12:15:43 ----A---- C:\Windows\system32\wcnwiz.dll
2009-10-20 12:15:43 ----A---- C:\Windows\system32\evr.dll
2009-10-20 12:15:42 ----A---- C:\Windows\system32\WSDApi.dll
2009-10-20 12:15:42 ----A---- C:\Windows\system32\WMVSDECD.DLL
2009-10-20 12:15:42 ----A---- C:\Windows\system32\Wldap32.dll
2009-10-20 12:15:42 ----A---- C:\Windows\system32\PhotoMetadataHandler.dll
2009-10-20 12:15:41 ----A---- C:\Windows\system32\WindowsCodecs.dll
2009-10-20 12:15:40 ----A---- C:\Windows\system32\wercon.exe
2009-10-20 12:15:40 ----A---- C:\Windows\system32\services.exe
2009-10-20 12:15:40 ----A---- C:\Windows\system32\comdlg32.dll
2009-10-20 12:15:40 ----A---- C:\Windows\system32\adtschema.dll
2009-10-20 12:15:39 ----A---- C:\Windows\system32\wcncsvc.dll
2009-10-20 12:15:39 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2009-10-20 12:15:39 ----A---- C:\Windows\system32\msdrm.dll
2009-10-20 12:15:39 ----A---- C:\Windows\system32\mimefilt.dll
2009-10-20 12:15:39 ----A---- C:\Windows\system32\certcli.dll
2009-10-20 12:15:38 ----A---- C:\Windows\system32\umpnpmgr.dll
2009-10-20 12:15:38 ----A---- C:\Windows\system32\taskeng.exe
2009-10-20 12:15:38 ----A---- C:\Windows\system32\rtffilt.dll
2009-10-20 12:15:38 ----A---- C:\Windows\system32\reg.exe
2009-10-20 12:15:38 ----A---- C:\Windows\system32\mswdat10.dll
2009-10-20 12:15:38 ----A---- C:\Windows\system32\msjter40.dll
2009-10-20 12:15:38 ----A---- C:\Windows\system32\msdtcprx.dll
2009-10-20 12:15:38 ----A---- C:\Windows\system32\ipsmsnap.dll
2009-10-20 12:15:38 ----A---- C:\Windows\system32\dnsapi.dll
2009-10-20 12:15:38 ----A---- C:\Windows\system32\certutil.exe
2009-10-20 12:15:37 ----A---- C:\Windows\system32\WMNetMgr.dll
2009-10-20 12:15:36 ----A---- C:\Windows\system32\w32time.dll
2009-10-20 12:15:36 ----A---- C:\Windows\system32\msshooks.dll
2009-10-20 12:15:36 ----A---- C:\Windows\system32\msscntrs.dll
2009-10-20 12:15:36 ----A---- C:\Windows\system32\IPSECSVC.DLL
2009-10-20 12:15:36 ----A---- C:\Windows\system32\bthserv.dll
2009-10-20 12:15:36 ----A---- C:\Windows\system32\bcrypt.dll
2009-10-20 12:15:35 ----A---- C:\Windows\system32\TsWpfWrp.exe
2009-10-20 12:15:35 ----A---- C:\Windows\system32\rsaenh.dll
2009-10-20 12:15:35 ----A---- C:\Windows\system32\msstrc.dll
2009-10-20 12:15:35 ----A---- C:\Windows\system32\msihnd.dll
2009-10-20 12:15:35 ----A---- C:\Windows\system32\MMDevAPI.dll
2009-10-20 12:15:34 ----A---- C:\Windows\system32\netapi32.dll
2009-10-20 12:15:34 ----A---- C:\Windows\system32\mtxclu.dll
2009-10-20 12:15:34 ----A---- C:\Windows\system32\inetpp.dll
2009-10-20 12:15:34 ----A---- C:\Windows\system32\inetcomm.dll
2009-10-20 12:15:34 ----A---- C:\Windows\system32\fundisc.dll
2009-10-20 12:15:34 ----A---- C:\Windows\system32\dfshim.dll
2009-10-20 12:15:34 ----A---- C:\Windows\system32\cryptsvc.dll
2009-10-20 12:15:33 ----A---- C:\Windows\system32\wmicmiplugin.dll
2009-10-20 12:15:33 ----A---- C:\Windows\system32\termsrv.dll
2009-10-20 12:15:33 ----A---- C:\Windows\system32\profsvc.dll
2009-10-20 12:15:33 ----A---- C:\Windows\system32\mscories.dll
2009-10-20 12:15:33 ----A---- C:\Windows\system32\hidserv.dll
2009-10-20 12:15:33 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2009-10-20 12:15:32 ----A---- C:\Windows\system32\imapi.dll
2009-10-20 12:15:31 ----A---- C:\Windows\system32\wdc.dll
2009-10-20 12:15:31 ----A---- C:\Windows\system32\shsvcs.dll
2009-10-20 12:15:31 ----A---- C:\Windows\system32\msiexec.exe
2009-10-20 12:15:31 ----A---- C:\Windows\system32\chsbrkr.dll
2009-10-20 12:15:30 ----A---- C:\Windows\system32\spoolsv.exe
2009-10-20 12:15:30 ----A---- C:\Windows\system32\rasmans.dll
2009-10-20 12:15:30 ----A---- C:\Windows\system32\pnidui.dll
2009-10-20 12:15:30 ----A---- C:\Windows\system32\icardres.dll
2009-10-20 12:15:30 ----A---- C:\Windows\system32\iassdo.dll
2009-10-20 12:15:30 ----A---- C:\Windows\system32\autofmt.exe
2009-10-20 12:15:29 ----A---- C:\Windows\system32\wersvc.dll
2009-10-20 12:15:29 ----A---- C:\Windows\system32\slmgr.vbs
2009-10-20 12:15:29 ----A---- C:\Windows\system32\scrrun.dll
2009-10-20 12:15:29 ----A---- C:\Windows\system32\PSHED.DLL
2009-10-20 12:15:29 ----A---- C:\Windows\system32\pdh.dll
2009-10-20 12:15:29 ----A---- C:\Windows\system32\dhcpcsvc.dll
2009-10-20 12:15:29 ----A---- C:\Windows\system32\azroles.dll
2009-10-20 12:15:28 ----A---- C:\Windows\system32\pidgenx.dll
2009-10-20 12:15:28 ----A---- C:\Windows\system32\CertEnrollUI.dll
2009-10-20 12:15:27 ----A---- C:\Windows\system32\wmpmde.dll
2009-10-20 12:15:27 ----A---- C:\Windows\system32\winlogon.exe
2009-10-20 12:15:26 ----A---- C:\Windows\system32\SyncCenter.dll
2009-10-20 12:15:25 ----A---- C:\Windows\system32\SLUINotify.dll
2009-10-20 12:15:25 ----A---- C:\Windows\system32\msjetoledb40.dll
2009-10-20 12:15:25 ----A---- C:\Windows\system32\comuid.dll
2009-10-20 12:15:24 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2009-10-20 12:15:24 ----A---- C:\Windows\system32\sethc.exe
2009-10-20 12:15:24 ----A---- C:\Windows\system32\ncrypt.dll
2009-10-20 12:15:24 ----A---- C:\Windows\system32\kd1394.dll
2009-10-20 12:15:24 ----A---- C:\Windows\system32\iassam.dll
2009-10-20 12:15:24 ----A---- C:\Windows\system32\certmgr.dll
2009-10-20 12:15:23 ----A---- C:\Windows\system32\wisptis.exe
2009-10-20 12:15:23 ----A---- C:\Windows\system32\untfs.dll
2009-10-20 12:15:23 ----A---- C:\Windows\system32\taskcomp.dll
2009-10-20 12:15:23 ----A---- C:\Windows\system32\spp.dll
2009-10-20 12:15:23 ----A---- C:\Windows\system32\scrobj.dll
2009-10-20 12:15:23 ----A---- C:\Windows\system32\rtutils.dll
2009-10-20 12:15:23 ----A---- C:\Windows\system32\dwm.exe
2009-10-20 12:15:22 ----A---- C:\Windows\system32\printui.dll
2009-10-20 12:15:22 ----A---- C:\Windows\system32\iasnap.dll
2009-10-20 12:15:22 ----A---- C:\Windows\system32\autochk.exe
2009-10-20 12:15:21 ----A---- C:\Windows\system32\winsrv.dll
2009-10-20 12:15:21 ----A---- C:\Windows\system32\autoconv.exe
2009-10-20 12:15:20 ----A---- C:\Windows\system32\userenv.dll
2009-10-20 12:15:20 ----A---- C:\Windows\system32\onex.dll
2009-10-20 12:15:20 ----A---- C:\Windows\system32\kdcom.dll
2009-10-20 12:15:20 ----A---- C:\Windows\system32\cscript.exe
2009-10-20 12:15:20 ----A---- C:\Windows\system32\basecsp.dll
2009-10-20 12:15:20 ----A---- C:\Windows\system32\audiodg.exe
2009-10-20 12:15:19 ----A---- C:\Windows\system32\wow32.dll
2009-10-20 12:15:19 ----A---- C:\Windows\system32\osk.exe
2009-10-20 12:15:19 ----A---- C:\Windows\system32\mswsock.dll
2009-10-20 12:15:19 ----A---- C:\Windows\system32\kdusb.dll
2009-10-20 12:15:18 ----A---- C:\Windows\system32\WinSCard.dll
2009-10-20 12:15:18 ----A---- C:\Windows\system32\winmm.dll
2009-10-20 12:15:18 ----A---- C:\Windows\system32\spcmsg.dll
2009-10-20 12:15:18 ----A---- C:\Windows\system32\RelMon.dll
2009-10-20 12:15:18 ----A---- C:\Windows\system32\rdpencom.dll
2009-10-20 12:15:18 ----A---- C:\Windows\system32\msftedit.dll
2009-10-20 12:15:17 ----A---- C:\Windows\system32\WerFaultSecure.exe
2009-10-20 12:15:17 ----A---- C:\Windows\system32\offfilt.dll
2009-10-20 12:15:17 ----A---- C:\Windows\system32\dnsrslvr.dll
2009-10-20 12:15:16 ----A---- C:\Windows\system32\wsepno.dll
2009-10-20 12:15:16 ----A---- C:\Windows\system32\WerFault.exe
2009-10-20 12:15:16 ----A---- C:\Windows\system32\Utilman.exe
2009-10-20 12:15:16 ----A---- C:\Windows\system32\stobject.dll
2009-10-20 12:15:16 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2009-10-20 12:15:16 ----A---- C:\Windows\system32\secproc_ssp.dll
2009-10-20 12:15:16 ----A---- C:\Windows\system32\mfplat.dll
2009-10-20 12:15:16 ----A---- C:\Windows\system32\diskraid.exe
2009-10-20 12:15:15 ----A---- C:\Windows\system32\wiaservc.dll
2009-10-20 12:15:15 ----A---- C:\Windows\system32\sysclass.dll
2009-10-20 12:15:15 ----A---- C:\Windows\system32\SndVol.exe
2009-10-20 12:15:15 ----A---- C:\Windows\system32\prnntfy.dll
2009-10-20 12:15:15 ----A---- C:\Windows\system32\msnetobj.dll
2009-10-20 12:15:15 ----A---- C:\Windows\system32\mscms.dll
2009-10-20 12:15:15 ----A---- C:\Windows\system32\apphelp.dll
2009-10-20 12:15:15 ----A---- C:\Windows\system32\adsmsext.dll
2009-10-20 12:15:14 ----A---- C:\Windows\system32\wscript.exe
2009-10-20 12:15:14 ----A---- C:\Windows\system32\ulib.dll
2009-10-20 12:15:14 ----A---- C:\Windows\system32\odbccp32.dll
2009-10-20 12:15:14 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2009-10-20 12:15:14 ----A---- C:\Windows\system32\iasdatastore.dll
2009-10-20 12:15:14 ----A---- C:\Windows\system32\dsound.dll
2009-10-20 12:15:14 ----A---- C:\Windows\system32\cryptui.dll
2009-10-20 12:15:13 ----A---- C:\Windows\system32\wscntfy.dll
2009-10-20 12:15:13 ----A---- C:\Windows\system32\rastapi.dll
2009-10-20 12:15:13 ----A---- C:\Windows\system32\pnpsetup.dll
2009-10-20 12:15:13 ----A---- C:\Windows\system32\ipsecsnp.dll
2009-10-20 12:15:13 ----A---- C:\Windows\system32\fdProxy.dll
2009-10-20 12:15:12 ----A---- C:\Windows\system32\wlangpui.dll
2009-10-20 12:15:12 ----A---- C:\Windows\system32\gpapi.dll
2009-10-20 12:15:12 ----A---- C:\Windows\system32\diskpart.exe
2009-10-20 12:15:12 ----A---- C:\Windows\system32\brcpl.dll
2009-10-20 12:15:11 ----A---- C:\Windows\system32\wscsvc.dll
2009-10-20 12:15:11 ----A---- C:\Windows\system32\vdsdyn.dll
2009-10-20 12:15:11 ----A---- C:\Windows\system32\rastls.dll
2009-10-20 12:15:11 ----A---- C:\Windows\system32\logman.exe
2009-10-20 12:15:11 ----A---- C:\Windows\system32\iashlpr.dll
2009-10-20 12:15:10 ----A---- C:\Windows\system32\WMVENCOD.DLL
2009-10-20 12:15:09 ----A---- C:\Windows\system32\regsvc.dll
2009-10-20 12:15:09 ----A---- C:\Windows\system32\rasapi32.dll
2009-10-20 12:15:09 ----A---- C:\Windows\system32\ntprint.dll
2009-10-20 12:15:08 ----A---- C:\Windows\system32\wusa.exe
2009-10-20 12:15:08 ----A---- C:\Windows\system32\mscorier.dll
2009-10-20 12:15:07 ----A---- C:\Windows\system32\zipfldr.dll
2009-10-20 12:15:07 ----A---- C:\Windows\system32\wshext.dll
2009-10-20 12:15:07 ----A---- C:\Windows\system32\iasrad.dll
2009-10-20 12:15:07 ----A---- C:\Windows\system32\findstr.exe
2009-10-20 12:15:06 ----A---- C:\Windows\system32\wpccpl.dll
2009-10-20 12:15:06 ----A---- C:\Windows\system32\rasdlg.dll
2009-10-20 12:15:06 ----A---- C:\Windows\system32\netcenter.dll
2009-10-20 12:15:05 ----A---- C:\Windows\system32\wsnmp32.dll
2009-10-20 12:15:05 ----A---- C:\Windows\system32\wer.dll
2009-10-20 12:15:05 ----A---- C:\Windows\system32\themecpl.dll
2009-10-20 12:15:05 ----A---- C:\Windows\system32\iassvcs.dll
2009-10-20 12:15:04 ----A---- C:\Windows\system32\uxsms.dll
2009-10-20 12:15:04 ----A---- C:\Windows\system32\srvsvc.dll
2009-10-20 12:15:04 ----A---- C:\Windows\system32\mssprxy.dll
2009-10-20 12:15:03 ----A---- C:\Windows\system32\tsbyuv.dll
2009-10-20 12:15:03 ----A---- C:\Windows\system32\slcc.dll
2009-10-20 12:15:03 ----A---- C:\Windows\system32\scansetting.dll
2009-10-20 12:15:03 ----A---- C:\Windows\system32\ntmarta.dll
2009-10-20 12:15:03 ----A---- C:\Windows\system32\msutb.dll
2009-10-20 12:15:03 ----A---- C:\Windows\system32\mstlsapi.dll
2009-10-20 12:15:03 ----A---- C:\Windows\system32\iasads.dll
2009-10-20 12:15:02 ----A---- C:\Windows\system32\powrprof.dll
2009-10-20 12:15:02 ----A---- C:\Windows\system32\networkmap.dll
2009-10-20 12:15:02 ----A---- C:\Windows\system32\mstsc.exe
2009-10-20 12:15:02 ----A---- C:\Windows\system32\iasacct.dll
2009-10-20 12:15:01 ----A---- C:\Windows\system32\powercpl.dll
2009-10-20 12:15:01 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2009-10-20 12:15:01 ----A---- C:\Windows\system32\newdev.exe
2009-10-20 12:15:01 ----A---- C:\Windows\system32\connect.dll
2009-10-20 12:15:01 ----A---- C:\Windows\system32\authz.dll
2009-10-20 12:15:00 ----A---- C:\Windows\system32\systemcpl.dll
2009-10-20 12:15:00 ----A---- C:\Windows\system32\sud.dll
2009-10-20 12:15:00 ----A---- C:\Windows\system32\pcaui.dll
2009-10-20 12:15:00 ----A---- C:\Windows\system32\dot3svc.dll
2009-10-20 12:14:59 ----A---- C:\Windows\system32\usercpl.dll
2009-10-20 12:14:59 ----A---- C:\Windows\system32\themeui.dll
2009-10-20 12:14:59 ----A---- C:\Windows\system32\samlib.dll
2009-10-20 12:14:59 ----A---- C:\Windows\system32\mmci.dll
2009-10-20 12:14:59 ----A---- C:\Windows\system32\accessibilitycpl.dll
2009-10-20 12:14:58 ----A---- C:\Windows\system32\wlanpref.dll
2009-10-20 12:14:58 ----A---- C:\Windows\system32\rpchttp.dll
2009-10-20 12:14:58 ----A---- C:\Windows\system32\qdvd.dll
2009-10-20 12:14:58 ----A---- C:\Windows\system32\autoplay.dll
2009-10-20 12:14:57 ----A---- C:\Windows\system32\wpcao.dll
2009-10-20 12:14:57 ----A---- C:\Windows\system32\vdsutil.dll
2009-10-20 12:14:57 ----A---- C:\Windows\system32\regapi.dll
2009-10-20 12:14:57 ----A---- C:\Windows\system32\msinfo32.exe
2009-10-20 12:14:56 ----A---- C:\Windows\system32\wscisvif.dll
2009-10-20 12:14:56 ----A---- C:\Windows\system32\tapisrv.dll
2009-10-20 12:14:56 ----A---- C:\Windows\system32\scksp.dll
2009-10-20 12:14:56 ----A---- C:\Windows\system32\scesrv.dll
2009-10-20 12:14:56 ----A---- C:\Windows\system32\rekeywiz.exe
2009-10-20 12:14:56 ----A---- C:\Windows\system32\psisdecd.dll
2009-10-20 12:14:56 ----A---- C:\Windows\system32\oleprn.dll
2009-10-20 12:14:56 ----A---- C:\Windows\system32\mpr.dll
2009-10-20 12:14:56 ----A---- C:\Windows\system32\imm32.dll
2009-10-20 12:14:56 ----A---- C:\Windows\system32\feclient.dll
2009-10-20 12:14:56 ----A---- C:\Windows\system32\Faultrep.dll
2009-10-20 12:14:56 ----A---- C:\Windows\system32\dot3msm.dll
2009-10-20 12:14:56 ----A---- C:\Windows\system32\AudioSes.dll
2009-10-20 12:14:55 ----A---- C:\Windows\system32\sdclt.exe
2009-10-20 12:14:55 ----A---- C:\Windows\system32\qedit.dll
2009-10-20 12:14:55 ----A---- C:\Windows\system32\pnpui.dll
2009-10-20 12:14:55 ----A---- C:\Windows\system32\perfdisk.dll
2009-10-20 12:14:55 ----A---- C:\Windows\system32\ncryptui.dll
2009-10-20 12:14:55 ----A---- C:\Windows\system32\iaspolcy.dll
2009-10-20 12:14:55 ----A---- C:\Windows\system32\dpapimig.exe
2009-10-20 12:14:55 ----A---- C:\Windows\system32\DeviceEject.exe
2009-10-20 12:14:55 ----A---- C:\Windows\system32\certreq.exe
2009-10-20 12:14:54 ----A---- C:\Windows\system32\TSTheme.exe
2009-10-20 12:14:54 ----A---- C:\Windows\system32\spwinsat.dll
2009-10-20 12:14:54 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2009-10-20 12:14:54 ----A---- C:\Windows\system32\scecli.dll
2009-10-20 12:14:54 ----A---- C:\Windows\system32\rasplap.dll
2009-10-20 12:14:54 ----A---- C:\Windows\system32\rasgcw.dll
2009-10-20 12:14:54 ----A---- C:\Windows\system32\hdwwiz.exe
2009-10-20 12:14:54 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2009-10-20 12:14:53 ----A---- C:\Windows\system32\whealogr.dll
2009-10-20 12:14:53 ----A---- C:\Windows\system32\tcpmon.dll
2009-10-20 12:14:53 ----A---- C:\Windows\system32\tcpipcfg.dll
2009-10-20 12:14:53 ----A---- C:\Windows\system32\PnPUnattend.exe
2009-10-20 12:14:53 ----A---- C:\Windows\system32\fdWSD.dll
2009-10-20 12:14:53 ----A---- C:\Windows\system32\cmmon32.exe
2009-10-20 12:14:52 ----A---- C:\Windows\system32\srcore.dll
2009-10-20 12:14:52 ----A---- C:\Windows\system32\SCardSvr.dll
2009-10-20 12:14:52 ----A---- C:\Windows\system32\raschap.dll
2009-10-20 12:14:52 ----A---- C:\Windows\system32\fontext.dll
2009-10-20 12:14:52 ----A---- C:\Windows\system32\conime.exe
2009-10-20 12:14:52 ----A---- C:\Windows\system32\cmdial32.dll
2009-10-20 12:14:51 ----A---- C:\Windows\system32\wiaaut.dll
2009-10-20 12:14:51 ----A---- C:\Windows\system32\MSVidCtl.dll
2009-10-20 12:14:50 ----A---- C:\Windows\system32\WMVXENCD.DLL
2009-10-20 12:14:50 ----A---- C:\Windows\system32\wlanui.dll
2009-10-20 12:14:50 ----A---- C:\Windows\system32\rasppp.dll
2009-10-20 12:14:50 ----A---- C:\Windows\system32\PnPutil.exe
2009-10-20 12:14:50 ----A---- C:\Windows\system32\dsprop.dll
2009-10-20 12:14:49 ----A---- C:\Windows\system32\shwebsvc.dll
2009-10-20 12:14:49 ----A---- C:\Windows\system32\oobefldr.dll
2009-10-20 12:14:49 ----A---- C:\Windows\system32\dimsroam.dll
2009-10-20 12:14:48 ----A---- C:\Windows\system32\shsetup.dll
2009-10-20 12:14:48 ----A---- C:\Windows\system32\rasmontr.dll
2009-10-20 12:14:48 ----A---- C:\Windows\system32\mscandui.dll
2009-10-20 12:14:48 ----A---- C:\Windows\system32\modemui.dll
2009-10-20 12:14:48 ----A---- C:\Windows\system32\chtbrkr.dll
2009-10-20 12:14:47 ----A---- C:\Windows\system32\wmdrmsdk.dll
2009-10-20 12:14:47 ----A---- C:\Windows\system32\dataclen.dll
2009-10-20 12:14:46 ----A---- C:\Windows\system32\wlgpclnt.dll
2009-10-20 12:14:46 ----A---- C:\Windows\system32\smss.exe
2009-10-20 12:14:46 ----A---- C:\Windows\system32\rdpwsx.dll
2009-10-20 12:14:46 ----A---- C:\Windows\system32\netplwiz.dll
2009-10-20 12:14:46 ----A---- C:\Windows\system32\credui.dll
2009-10-20 12:14:46 ----A---- C:\Windows\system32\blackbox.dll
2009-10-20 12:14:45 ----A---- C:\Windows\system32\WSDMon.dll
2009-10-20 12:14:45 ----A---- C:\Windows\system32\wmpeffects.dll
2009-10-20 12:14:45 ----A---- C:\Windows\system32\certprop.dll
2009-10-20 12:14:44 ----A---- C:\Windows\system32\wscapi.dll
2009-10-20 12:14:44 ----A---- C:\Windows\system32\wpcsvc.dll
2009-10-20 12:14:44 ----A---- C:\Windows\system32\networkexplorer.dll
2009-10-20 12:14:44 ----A---- C:\Windows\system32\msscp.dll
2009-10-20 12:14:44 ----A---- C:\Windows\system32\msimtf.dll
2009-10-20 12:14:44 ----A---- C:\Windows\system32\logagent.exe
2009-10-20 12:14:44 ----A---- C:\Windows\system32\InkEd.dll
2009-10-20 12:14:44 ----A---- C:\Windows\system32\ifmon.dll
2009-10-20 12:14:44 ----A---- C:\Windows\system32\gpresult.exe
2009-10-20 12:14:44 ----A---- C:\Windows\system32\cipher.exe
2009-10-20 12:14:43 ----A---- C:\Windows\system32\thawbrkr.dll
2009-10-20 12:14:42 ----A---- C:\Windows\system32\softkbd.dll
2009-10-20 12:14:42 ----A---- C:\Windows\system32\sendmail.dll
2009-10-20 12:14:42 ----A---- C:\Windows\system32\olepro32.dll
2009-10-20 12:14:42 ----A---- C:\Windows\system32\msctfui.dll
2009-10-20 12:14:42 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
2009-10-20 12:14:42 ----A---- C:\Windows\system32\dmsynth.dll
2009-10-20 12:14:41 ----A---- C:\Windows\system32\wshbth.dll
2009-10-20 12:14:41 ----A---- C:\Windows\system32\version.dll
2009-10-20 12:14:41 ----A---- C:\Windows\system32\SLLUA.exe
2009-10-20 12:14:41 ----A---- C:\Windows\system32\puiapi.dll
2009-10-20 12:14:41 ----A---- C:\Windows\system32\msisip.dll
2009-10-20 12:14:41 ----A---- C:\Windows\system32\mprapi.dll
2009-10-20 12:14:41 ----A---- C:\Windows\system32\input.dll
2009-10-20 12:14:41 ----A---- C:\Windows\system32\ExplorerFrame.dll
2009-10-20 12:14:41 ----A---- C:\Windows\system32\drmmgrtn.dll
2009-10-20 12:14:41 ----A---- C:\Windows\system32\cdd.dll
2009-10-20 12:14:40 ----A---- C:\Windows\system32\fdSSDP.dll
2009-10-20 12:14:40 ----A---- C:\Windows\system32\fc.exe
2009-10-20 12:14:40 ----A---- C:\Windows\system32\dmusic.dll
2009-10-20 12:14:39 ----A---- C:\Windows\system32\printfilterpipelineprxy.dll
2009-10-20 12:14:39 ----A---- C:\Windows\system32\PortableDeviceClassExtension.dll
2009-10-20 12:14:39 ----A---- C:\Windows\system32\msjint40.dll
2009-10-20 12:14:39 ----A---- C:\Windows\system32\MsCtfMonitor.dll
2009-10-20 12:14:39 ----A---- C:\Windows\system32\l2nacp.dll
2009-10-20 12:14:39 ----A---- C:\Windows\system32\ftp.exe
2009-10-20 12:14:39 ----A---- C:\Windows\system32\eapp3hst.dll
2009-10-20 12:14:39 ----A---- C:\Windows\system32\cscdll.dll
2009-10-20 12:14:39 ----A---- C:\Windows\system32\cscapi.dll
2009-10-20 12:14:38 ----A---- C:\Windows\system32\wsdchngr.dll
2009-10-20 12:14:38 ----A---- C:\Windows\system32\Storprop.dll
2009-10-20 12:14:38 ----A---- C:\Windows\system32\SMBHelperClass.dll
2009-10-20 12:14:38 ----A---- C:\Windows\system32\rasdial.exe
2009-10-20 12:14:38 ----A---- C:\Windows\system32\rasdiag.dll
2009-10-20 12:14:38 ----A---- C:\Windows\system32\PortableDeviceTypes.dll
2009-10-20 12:14:38 ----A---- C:\Windows\system32\fdWCN.dll
2009-10-20 12:14:38 ----A---- C:\Windows\system32\dot3cfg.dll
2009-10-20 12:14:38 ----A---- C:\Windows\system32\bthudtask.exe
2009-10-20 12:14:38 ----A---- C:\Windows\system32\bthci.dll
2009-10-20 12:14:37 ----A---- C:\Windows\system32\tscupgrd.exe
2009-10-20 12:14:37 ----A---- C:\Windows\system32\slcinst.dll
2009-10-20 12:14:37 ----A---- C:\Windows\system32\nslookup.exe
2009-10-20 12:14:37 ----A---- C:\Windows\system32\networkitemfactory.dll
2009-10-20 12:14:37 ----A---- C:\Windows\system32\ipconfig.exe
2009-10-20 12:14:37 ----A---- C:\Windows\system32\eappcfg.dll
2009-10-20 12:14:37 ----A---- C:\Windows\system32\CHxReadingStringIME.dll
2009-10-20 12:14:36 ----A---- C:\Windows\system32\ocsetup.exe
2009-10-20 12:14:36 ----A---- C:\Windows\system32\hbaapi.dll
2009-10-20 12:14:36 ----A---- C:\Windows\system32\FwRemoteSvr.dll
2009-10-20 12:14:36 ----A---- C:\Windows\system32\fdeploy.dll
2009-10-20 12:14:36 ----A---- C:\Windows\system32\eappgnui.dll
2009-10-20 12:14:35 ----A---- C:\Windows\system32\PNPXAssoc.dll
2009-10-20 12:14:35 ----A---- C:\Windows\system32\mmcico.dll
2009-10-20 12:14:34 ----A---- C:\Windows\system32\gpupdate.exe
2009-10-20 12:14:34 ----A---- C:\Windows\system32\csrstub.exe
2009-10-20 12:14:34 ----A---- C:\Windows\system32\cbsra.exe
2009-10-20 12:14:33 ----A---- C:\Windows\system32\NcdProp.dll
2009-10-20 12:14:33 ----A---- C:\Windows\system32\iscsilog.dll
2009-10-20 12:14:33 ----A---- C:\Windows\system32\bitsigd.dll
2009-10-20 12:14:32 ----A---- C:\Windows\system32\vdmdbg.dll
2009-10-20 12:14:32 ----A---- C:\Windows\system32\odbcconf.dll
2009-10-20 12:14:31 ----A---- C:\Windows\system32\winrnr.dll
2009-10-20 12:14:31 ----A---- C:\Windows\system32\slwga.dll
2009-10-20 12:14:31 ----A---- C:\Windows\system32\midimap.dll
2009-10-20 12:14:31 ----A---- C:\Windows\system32\inetppui.dll
2009-10-20 12:14:23 ----A---- C:\Windows\system32\msimsg.dll
2009-10-20 12:14:23 ----A---- C:\Windows\system32\f3ahvoas.dll
2009-10-20 12:13:48 ----A---- C:\Windows\system32\SmiEngine.dll
2009-10-20 12:13:44 ----A---- C:\Windows\system32\wdscore.dll
2009-10-20 12:13:44 ----A---- C:\Windows\system32\PkgMgr.exe
2009-10-20 12:13:24 ----A---- C:\Windows\system32\drvstore.dll
2009-10-13 20:46:49 ----A---- C:\Windows\system32\msv1_0.dll
2009-10-13 20:46:46 ----A---- C:\Windows\system32\msasn1.dll
2009-10-13 20:43:02 ----A---- C:\Windows\system32\nt

4 réponses

sansfilet Messages postés 3661 Statut Contributeur sécurité 280
 
Salut,

Tu es effectivement infecté.
Commence par désactiver l'UAC Aide en images.

Ensuite :
• Télécharge sur le bureau Navilog1

• Si ton antivirus s'affole , le désactiver

• sous Vista : Clic-droit sur le raccourci Navilog1 présent sur le bureau et choisis "Exécuter en tant qu'administrateur"

• sous XP : double-clic dessus pour le lancer

• taper F

• Appuyer sur une touche jusqu' arriver aux options

• Choisir Recherche/Désinfection automatique ( = taper 1 )

• un rapport : fixnavi.txt dans ==> C :

• le copier et le coller dans la réponse
0
arabica
 
Bonsoir,
J'ai suivi tes conseils ; au cours de la recherche de Navilog1, ça stoppe et voici ce que ça me dit : Utilitaire (QGREP) de recherche de chaînes de caractères a cessé de fonctionner. Que faire?
Peux-tu me dire de quoi je suis infecté exactement?
Merci
0
jacques.gache Messages postés 34829 Statut Contributeur sécurité 1 645
 
bonjour, pourquoi ne pas avoir continué sur le premier sujet https://forums.commentcamarche.net/forum/affich-14913518-symptome-du-cheval-de-troie
0
arabica
 
En effet, c'est une erreur!!
0
sansfilet Messages postés 3661 Statut Contributeur sécurité 280
 
Oui, continue sur ton premier post, merci.
0
arabica
 
Oui, mais il ne m a pas repondu. Tu ne veux plus m'aider... Dommage! je suis bien ennuyée
0
sansfilet Messages postés 3661 Statut Contributeur sécurité 280
 
Comme tu as commencé avec lui, je préfère que tu continues.
Commence par poster le rapport que tu as mis ici dans l'autre sujet et patiente un peu.
0
arabica
 
Ok, merci sincèrement
0