Impossible d'executer un antivirus
Lili
-
Fish66 Messages postés 18337 Statut Contributeur sécurité -
Fish66 Messages postés 18337 Statut Contributeur sécurité -
Bonjour,
Je n'arrive pas exécuter l'antivirus Avast 7
Ci-dessous le logfile
Pouvez-vous m'aider er merci beaucoup
PS : je ne suis pas experte
Logfile of random's system information tool 1.09 (written by random/random)
Run by Saber at 2005-10-13 01:09:05
Microsoft Windows XP Professionnel Service Pack 3
System drive C: has 75 GB (84%) free of 90 GB
Total RAM: 766 MB (27% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 01:09:18, on 13/10/2005
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Documents and Settings\tazebama.dl_
C:\Documents and Settings\All Users\Application Data\Dim@net\OnlineUpdate\ouc.exe
C:\Documents and Settings\All Users\Application Data\DatacardService\HWDeviceService.exe
C:\Documents and Settings\Saber\Local Settings\Application Data\MAJTuto\MAJTuto.exe
C:\Program Files\Ralink\Common\RaRegistry.exe
C:\Program Files\CyberLink\Shared files\RichVideo.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\stsystra.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\Program Files\Agence-Exclusive\pctuto.exe
C:\Documents and Settings\Saber\Application Data\Agence-Exclusive\Agence-Exclusive\autoupdater.exe
C:\WINDOWS\system32\wBee.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\SuperCopier2\SuperCopier2.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\EDUP\11n USB Wireless LAN Utility\RtWLan.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Documents and Settings\Saber\Mes documents\Téléchargements\RSIT.exe
C:\Program Files\trend micro\Saber.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.tn/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: PCTBHO - {293A63F7-C3B6-423a-9845-901AC0A7EE6E} - C:\Program Files\Agence-Exclusive\pctutoBHO.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O4 - HKLM\..\Run: [SigmatelSysTrayApp] stsystra.exe
O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [LanguageShortcut] "C:\Program Files\CyberLink\PowerDVD\Language\Language.exe"
O4 - HKLM\..\Run: [pctuto] "C:\Program Files\Agence-Exclusive\pctuto.exe"
O4 - HKLM\..\Run: [autoupdater] C:\Documents and Settings\Saber\Application Data\Agence-Exclusive\Agence-Exclusive\autoupdater.exe
O4 - HKLM\..\Run: [comnetwork] "C:\Documents and Settings\Saber\Local Settings\Application Data\comnetwork\comnetwork.exe"
O4 - HKLM\..\Run: [Bee] C:\WINDOWS\system32\wBee.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [SuperCopier2.exe] C:\Program Files\SuperCopier2\SuperCopier2.exe
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\Saber\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: EDUP 11n USB Wireless LAN Utility.lnk = C:\Program Files\EDUP\11n USB Wireless LAN Utility\RtWLan.exe
O4 - Global Startup: Ralink Wireless Utility.lnk = C:\Program Files\Ralink\Common\RaUI.exe
O7 - HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableRegedit=1
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O22 - SharedTaskScheduler: Pré-chargeur Browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Démon de cache des catégories de composant - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Dim@net. OUC (Dim@net. RunOuc) - Unknown owner - C:\Program Files\Dim@net\UpdateDog\ouc.exe
O23 - Service: Service d'administration du Gestionnaire de disque logique (dmadmin) - Unknown owner - C:\WINDOWS\System32\dmadmin.exe
O23 - Service: Journal des événements (Eventlog) - Unknown owner - C:\WINDOWS\system32\services.exe
O23 - Service: HWDeviceService.exe - Unknown owner - C:\Documents and Settings\All Users\Application Data\DatacardService\HWDeviceService.exe
O23 - Service: Service COM de gravage de CD IMAPI (ImapiService) - Unknown owner - C:\WINDOWS\system32\imapi.exe
O23 - Service: MAJTuto - Unknown owner - C:\Documents and Settings\Saber\Local Settings\Application Data\MAJTuto\MAJTuto.exe
O23 - Service: Partage de Bureau à distance NetMeeting (mnmsrvc) - Unknown owner - C:\WINDOWS\system32\mnmsrvc.exe
O23 - Service: Plug-and-Play (PlugPlay) - Unknown owner - C:\WINDOWS\system32\services.exe
O23 - Service: Ralink Registry Writer (RalinkRegistryWriter) - Ralink Technology, Corp. - C:\Program Files\Ralink\Common\RaRegistry.exe
O23 - Service: Gestionnaire de session d'aide sur le Bureau à distance (RDSessMgr) - Unknown owner - C:\WINDOWS\system32\sessmgr.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo.exe
O23 - Service: Carte à puce (SCardSvr) - Unknown owner - C:\WINDOWS\System32\SCardSvr.exe
O23 - Service: Journaux et alertes de performance (SysmonLog) - Unknown owner - C:\WINDOWS\system32\smlogsvc.exe
O23 - Service: Cliché instantané de volume (VSS) - Unknown owner - C:\WINDOWS\System32\vssvc.exe
O23 - Service: Carte de performance WMI (WmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\wmiapsrv.exe
--
End of file - 8168 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1275210071-682003330-1606980848-1003Core.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1275210071-682003330-1606980848-1003UA.job
=========Mozilla firefox=========
ProfilePath - C:\Documents and Settings\Saber\Application Data\Mozilla\Firefox\Profiles\40hww4fw.default
prefs.js - "browser.startup.homepage" - "http://www.google.fr/"
prefs.js - "keyword.URL" - "http://www.bing.com/search?mkt=fr-FR&form=MIAWB1&q="
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=1.0.3]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll
C:\Program Files\Mozilla Firefox\extensions\
{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
{972ce4c6-7e08-4474-a285-3208198ce6fd}
C:\Program Files\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
C:\Program Files\Mozilla Firefox\searchplugins\
amazon-france.xml
bing.xml
cnrtl-tlfi-fr.xml
eBay-france.xml
google.xml
wikipedia-fr.xml
yahoo-france.xml
C:\Documents and Settings\Saber\Application Data\Mozilla\Firefox\Profiles\40hww4fw.default\searchplugins\
bing.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{293A63F7-C3B6-423a-9845-901AC0A7EE6E}]
PCTBHO Class - C:\Program Files\Agence-Exclusive\pctutoBHO.dll [2011-11-02 228200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Programme d'aide de l'Assistant de connexion Windows Live - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2011-11-29 3844768]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SigmatelSysTrayApp"=C:\WINDOWS\stsystra.exe [2005-10-13 574319]
"ATIPTA"=C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe [2005-10-13 570223]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2008-06-12 104304]
"RemoteControl"=C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe [2005-10-13 264559]
"LanguageShortcut"=C:\Program Files\CyberLink\PowerDVD\Language\Language.exe [2005-10-13 283503]
"pctuto"=C:\Program Files\Agence-Exclusive\pctuto.exe [2005-10-13 1277655]
"autoupdater"=C:\Documents and Settings\Saber\Application Data\Agence-Exclusive\Agence-Exclusive\autoupdater.exe [2005-10-13 872151]
"comnetwork"=C:\Documents and Settings\Saber\Local Settings\Application Data\comnetwork\comnetwork.exe [2005-10-13 3811183]
"Bee"=C:\WINDOWS\system32\wBee.exe [2010-02-13 1444463]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"SuperCopier2.exe"=C:\Program Files\SuperCopier2\SuperCopier2.exe [2005-10-13 1214319]
"Google Update"=C:\Documents and Settings\Saber\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2005-10-13 366431]
"msnmsgr"=C:\Program Files\Windows Live\Messenger\msnmsgr.exe [2005-10-13 4098239]
"MSMSGS"=C:\Program Files\Messenger\msmsgs.exe [2005-10-13 1933679]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2011-10-13 17351304]
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage
EDUP 11n USB Wireless LAN Utility.lnk - C:\Program Files\EDUP\11n USB Wireless LAN Utility\RtWLan.exe
Ralink Wireless Utility.lnk - C:\Program Files\Ralink\Common\RaUI.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265088]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"authentication packages"=msv1_0
nwprovau
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableTaskMgr"=1
"DisableRegistryTools"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableLUA"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Program Files\ma-config.com\maconfservice.exe"="C:\Program Files\ma-config.com\maconfservice.exe:LocalSubNet:Enabled:maconfservice"
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:ipsec"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:ipsec"
"G:\RECYCLER\S-1-6-21-2434476501-1644491937-600003330-1213\plzrunmes.exe"="G:\RECYCLER\S-1-6-21-2434476501-1644491937-600003330-1213\plzrunmes.exe:*:Enabled:ipsec"
"C:\WINDOWS\Explorer.EXE"="C:\WINDOWS\Explorer.EXE:*:Enabled:ipsec"
"C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"="C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe:*:Enabled:ipsec"
"C:\Documents and Settings\Saber\Local Settings\Application Data\Google\Update\GoogleUpdate.exe"="C:\Documents and Settings\Saber\Local Settings\Application Data\Google\Update\GoogleUpdate.exe:*:Enabled:ipsec"
"C:\Documents and Settings\Saber\Local Settings\Application Data\Google\Update\1.3.21.79\GoogleCrashHandler.exe"="C:\Documents and Settings\Saber\Local Settings\Application Data\Google\Update\1.3.21.79\GoogleCrashHandler.exe:*:Enabled:ipsec"
"C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"="C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe:*:Enabled:ipsec"
"C:\WINDOWS\stsystra.exe"="C:\WINDOWS\stsystra.exe:*:Enabled:ipsec"
"C:\Program Files\Dim@net\UpdateDog\ouc.exe"="C:\Program Files\Dim@net\UpdateDog\ouc.exe:*:Enabled:ipsec"
"C:\Documents and Settings\All Users\Application Data\Dim@net\OnlineUpdate\ouc.exe"="C:\Documents and Settings\All Users\Application Data\Dim@net\OnlineUpdate\ouc.exe:*:Enabled:ipsec"
"C:\WINDOWS\system32\ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe:*:Enabled:ipsec"
"C:\Program Files\Agence-Exclusive\pctuto.exe"="C:\Program Files\Agence-Exclusive\pctuto.exe:*:Enabled:ipsec"
"C:\Program Files\Internet Explorer\IEXPLORE.EXE"="C:\Program Files\Internet Explorer\IEXPLORE.EXE:*:Enabled:ipsec"
"C:\Program Files\Ralink\Common\RaUI.exe"="C:\Program Files\Ralink\Common\RaUI.exe:*:Enabled:ipsec"
"C:\Documents and Settings\Saber\Local Settings\Application Data\comnetwork\comnetwork.exe"="C:\Documents and Settings\Saber\Local Settings\Application Data\comnetwork\comnetwork.exe:*:Enabled:ipsec"
"C:\Documents and Settings\Saber\Local Settings\Application Data\Google\Chrome\Application\chrome.exe"="C:\Documents and Settings\Saber\Local Settings\Application Data\Google\Chrome\Application\chrome.exe:*:Enabled:ipsec"
"C:\Program Files\Windows Media Player\wmplayer.exe"="C:\Program Files\Windows Media Player\wmplayer.exe:*:Enabled:ipsec"
"C:\Documents and Settings\Saber\Application Data\Agence-Exclusive\Agence-Exclusive\autoupdater.exe"="C:\Documents and Settings\Saber\Application Data\Agence-Exclusive\Agence-Exclusive\autoupdater.exe:*:Enabled:ipsec"
"C:\WINDOWS\system32\KB905474\wgasetup.exe"="C:\WINDOWS\system32\KB905474\wgasetup.exe:*:Enabled:ipsec"
"C:\Program Files\Mozilla Firefox\firefox.exe"="C:\Program Files\Mozilla Firefox\firefox.exe:*:Enabled:ipsec"
"C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"="C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe:*:Enabled:ipsec"
"C:\Program Files\Mozilla Firefox\crashreporter.exe"="C:\Program Files\Mozilla Firefox\crashreporter.exe:*:Enabled:ipsec"
"C:\Program Files\EDUP\11n USB Wireless LAN Utility\RtWLan.exe"="C:\Program Files\EDUP\11n USB Wireless LAN Utility\RtWLan.exe:*:Enabled:ipsec"
"D:\gta_sa.exe"="D:\gta_sa.exe:*:Enabled:ipsec"
"C:\WINDOWS\system32\wuauclt.exe"="C:\WINDOWS\system32\wuauclt.exe:*:Enabled:ipsec"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"VIDC.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"VIDC.YVYU"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"vidc.i263"=i263_32.drv
"msacm.l3fhg"=mp3fhg.acm
"msacm.divxa32"=divxa32.acm
"VIDC.X264"=x264vfw.dll
"VIDC.HFYU"=huffyuv.dll
"VIDC.VP70"=vp7vfw.dll
"VIDC.XVID"=xvidvfw.dll
"VIDC.LAGS"=lagarith.dll
"VIDC.YV12"=yv12vfw.dll
"msacm.ac3acm"=ac3acm.acm
"msacm.lameacm"=lameACM.acm
"VIDC.FFDS"=ff_vfw.dll
"msacm.siren"=sirenacm.dll
"MSVideo8"=VfWWDM32.dll
======List of files/folders created in the last 1 month======
2012-12-13 15:43:36 ----D---- C:\Documents and Settings\Saber\Application Data\Mozilla
2012-12-11 01:06:07 ----A---- C:\WINDOWS\system32\drivers\MSTEE.sys
2012-12-11 01:06:05 ----A---- C:\WINDOWS\system32\drivers\NdisIP.sys
2012-12-11 01:06:04 ----A---- C:\WINDOWS\system32\drivers\StreamIP.sys
2012-12-11 01:06:02 ----A---- C:\WINDOWS\system32\drivers\SLIP.sys
2012-12-11 01:06:00 ----A---- C:\WINDOWS\system32\drivers\WSTCODEC.SYS
2012-12-11 01:05:57 ----A---- C:\WINDOWS\system32\drivers\NABTSFEC.sys
2012-12-11 01:05:56 ----A---- C:\WINDOWS\system32\drivers\CCDECODE.sys
2012-12-11 01:05:49 ----A---- C:\WINDOWS\system32\vfwwdm32.dll
2012-12-11 01:05:49 ----A---- C:\WINDOWS\system32\drivers\usbvideo.sys
2012-12-10 21:47:40 ----D---- C:\WINDOWS\Minidump
2012-12-08 14:49:38 ----D---- C:\Program Files\pctuto
2012-12-08 14:49:22 ----D---- C:\Program Files\Agence-Exclusive
2012-12-08 14:49:22 ----D---- C:\Documents and Settings\Saber\Application Data\Agence-Exclusive
2012-12-07 02:54:20 ----N---- C:\WINDOWS\system32\drivers\bthport.sys
2012-12-07 02:37:21 ----D---- C:\WINDOWS\system32\appmgmt
2012-01-17 01:21:47 ----A---- C:\WINDOWS\system32\MRT.exe
2012-01-17 01:21:45 ----D---- C:\2937c077c5bc241dc864
2012-01-15 23:40:50 ----HDC---- C:\WINDOWS\$NtUninstallKB2585542$
2012-01-13 23:12:50 ----HDC---- C:\WINDOWS\$NtUninstallKB2345886$
2012-01-13 23:12:45 ----HDC---- C:\WINDOWS\$NtUninstallKB970430$
2012-01-13 23:12:37 ----HDC---- C:\WINDOWS\$NtUninstallKB971737$
2012-01-12 22:31:24 ----HDC---- C:\WINDOWS\$NtUninstallKB2443105$
2012-01-12 16:42:22 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2012-01-12 16:42:18 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2012-01-12 16:42:13 ----HDC---- C:\WINDOWS\$NtUninstallKB959426$
2012-01-12 16:42:08 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2012-01-12 16:42:02 ----HDC---- C:\WINDOWS\$NtUninstallKB2387149$
2012-01-12 16:41:57 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$
2012-01-12 16:41:52 ----HDC---- C:\WINDOWS\$NtUninstallKB2479943$
2012-01-12 16:41:47 ----HDC---- C:\WINDOWS\$NtUninstallKB2564958$
2012-01-12 16:41:43 ----HDC---- C:\WINDOWS\$NtUninstallKB2478971$
2012-01-12 16:41:38 ----HDC---- C:\WINDOWS\$NtUninstallKB2544893-v2$
2012-01-12 16:41:10 ----HDC---- C:\WINDOWS\$NtUninstallKB2536276-v2$
2012-01-12 16:41:06 ----HDC---- C:\WINDOWS\$NtUninstallKB2646524$
2012-01-12 16:41:01 ----HDC---- C:\WINDOWS\$NtUninstallKB2631813$
2012-01-12 16:40:55 ----HDC---- C:\WINDOWS\$NtUninstallKB2296011$
2012-01-12 16:40:49 ----HDC---- C:\WINDOWS\$NtUninstallKB2115168$
2012-01-12 16:40:43 ----HDC---- C:\WINDOWS\$NtUninstallKB975558_WM8$
2012-01-12 16:40:38 ----HDC---- C:\WINDOWS\$NtUninstallKB955759$
2012-01-12 16:40:23 ----HDC---- C:\WINDOWS\$NtUninstallKB2378111_WM9$
2012-01-12 16:40:19 ----HDC---- C:\WINDOWS\$NtUninstallKB974318$
2012-01-12 16:40:13 ----HDC---- C:\WINDOWS\$NtUninstallKB951978$
2012-01-12 16:40:06 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2012-01-12 16:40:00 ----HDC---- C:\WINDOWS\$NtUninstallKB2229593$
2012-01-12 16:39:55 ----HDC---- C:\WINDOWS\$NtUninstallKB961503$
2012-01-12 16:39:50 ----HDC---- C:\WINDOWS\$NtUninstallKB2639417$
2012-01-12 16:39:44 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2012-01-12 16:39:39 ----HDC---- C:\WINDOWS\$NtUninstallKB2481109$
2012-01-12 16:39:34 ----HDC---- C:\WINDOWS\$NtUninstallKB975713$
2012-01-12 16:39:29 ----HDC---- C:\WINDOWS\$NtUninstallKB2485663$
2012-01-12 16:39:24 ----HDC---- C:\WINDOWS\$NtUninstallKB2598479$
2012-01-12 16:39:19 ----HDC---- C:\WINDOWS\$NtUninstallKB2440591$
2012-01-12 16:39:13 ----HDC---- C:\WINDOWS\$NtUninstallKB982132$
2012-01-12 16:39:08 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$
2012-01-12 16:39:04 ----HDC---- C:\WINDOWS\$NtUninstallKB978338$
2012-01-12 16:38:58 ----HDC---- C:\WINDOWS\$NtUninstallKB954155_WM9$
2012-01-12 16:38:33 ----HDC---- C:\WINDOWS\$NtUninstallKB2507938$
2012-01-12 16:38:28 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2012-01-12 16:38:23 ----HDC---- C:\WINDOWS\$NtUninstallKB956744$
2012-01-12 16:38:18 ----HDC---- C:\WINDOWS\$NtUninstallKB2476490$
2012-01-12 16:38:13 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2012-01-12 16:38:06 ----HDC---- C:\WINDOWS\$NtUninstallKB956572$
2012-01-12 16:37:59 ----HDC---- C:\WINDOWS\$NtUninstallKB2347290$
2012-01-12 16:37:54 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
2012-01-12 16:37:47 ----HDC---- C:\WINDOWS\$NtUninstallKB2641690$
2012-01-12 16:37:39 ----HDC---- C:\WINDOWS\$NtUninstallKB2483185$
2012-01-12 16:37:34 ----HDC---- C:\WINDOWS\$NtUninstallKB961501$
2012-01-12 16:37:29 ----HDC---- C:\WINDOWS\$NtUninstallKB2079403$
2012-01-12 16:37:24 ----HDC---- C:\WINDOWS\$NtUninstallKB2624667$
2012-01-12 16:36:55 ----HDC---- C:\WINDOWS\$NtUninstallKB979687$
2012-01-12 16:36:50 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$
2012-01-12 16:36:46 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$
2012-01-12 16:36:40 ----HDC---- C:\WINDOWS\$NtUninstallKB952004$
2012-01-12 16:36:34 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2012-01-12 16:36:30 ----HDC---- C:\WINDOWS\$NtUninstallKB2592799$
2012-01-12 16:36:24 ----HDC---- C:\WINDOWS\$NtUninstallKB975560$
2012-01-12 16:36:17 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$
2012-01-12 16:36:00 ----HDC---- C:\WINDOWS\$NtUninstallKB2570222$
2012-01-12 16:35:55 ----HDC---- C:\WINDOWS\$NtUninstallKB2535512$
2012-01-12 16:35:51 ----HDC---- C:\WINDOWS\$NtUninstallKB977816$
2012-01-12 16:35:46 ----HDC---- C:\WINDOWS\$NtUninstallKB973687$
2012-01-12 16:35:40 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2012-01-12 16:35:37 ----HDC---- C:\WINDOWS\$NtUninstallKB2412687$
2012-01-12 16:35:33 ----HDC---- C:\WINDOWS\$NtUninstallKB978601$
2012-01-12 16:35:28 ----HDC---- C:\WINDOWS\$NtUninstallKB2570947$
2012-01-12 16:35:24 ----HDC---- C:\WINDOWS\$NtUninstallKB980436$
2012-01-12 16:35:18 ----HDC---- C:\WINDOWS\$NtUninstallKB981322$
2012-01-12 16:35:14 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2012-01-12 16:35:09 ----HDC---- C:\WINDOWS\$NtUninstallKB978695_WM9$
2012-01-12 16:35:06 ----HDC---- C:\WINDOWS\$NtUninstallKB2507618$
2012-01-12 16:35:01 ----HDC---- C:\WINDOWS\$NtUninstallKB2603381$
2012-01-12 16:34:56 ----HDC---- C:\WINDOWS\$NtUninstallKB973904$
2012-01-12 16:34:49 ----HDC---- C:\WINDOWS\$NtUninstallKB973540_WM9$
2012-01-12 16:34:43 ----HDC---- C:\WINDOWS\$NtUninstallKB2419632$
2012-01-12 16:34:38 ----HDC---- C:\WINDOWS\$NtUninstallKB2508429$
2012-01-12 16:34:33 ----HDC---- C:\WINDOWS\$NtUninstallKB974392$
2012-01-12 16:34:25 ----HDC---- C:\WINDOWS\$NtUninstallKB971029$
2012-01-12 16:34:20 ----HDC---- C:\WINDOWS\$NtUninstallKB954459$
2012-01-12 16:34:14 ----HDC---- C:\WINDOWS\$NtUninstallKB2506212$
2012-01-12 16:34:09 ----HDC---- C:\WINDOWS\$NtUninstallKB952069_WM9$
2012-01-12 16:34:04 ----HDC---- C:\WINDOWS\$NtUninstallKB2633952$
2012-01-12 16:34:00 ----HDC---- C:\WINDOWS\$NtUninstallKB977914$
2012-01-12 16:33:53 ----HDC---- C:\WINDOWS\$NtUninstallKB2619339$
2012-01-12 16:33:48 ----HDC---- C:\WINDOWS\$NtUninstallKB978542$
2012-01-12 16:33:44 ----HDC---- C:\WINDOWS\$NtUninstallKB979309$
2012-01-12 16:33:40 ----HDC---- C:\WINDOWS\$NtUninstallKB979482$
2012-01-12 16:33:35 ----HDC---- C:\WINDOWS\$NtUninstallKB978706$
2012-01-12 16:33:30 ----HDC---- C:\WINDOWS\$NtUninstallKB981997$
2012-01-12 16:33:26 ----HDC---- C:\WINDOWS\$NtUninstallKB960803$
2012-01-12 16:33:21 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$
2012-01-12 16:33:17 ----HDC---- C:\WINDOWS\$NtUninstallKB2618451$
2012-01-12 16:33:13 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$
2012-01-12 16:32:54 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$
2012-01-12 16:32:47 ----HDC---- C:\WINDOWS\$NtUninstallKB2509553$
2012-01-12 16:32:34 ----HDC---- C:\WINDOWS\$NtUninstallKB982665$
2012-01-12 16:32:30 ----HDC---- C:\WINDOWS\$NtUninstallKB2541763$
2012-01-12 16:32:26 ----D---- C:\WINDOWS\ie8updates
2012-01-12 16:32:22 ----HDC---- C:\WINDOWS\$NtUninstallKB2478960$
2012-01-12 16:32:17 ----HDC---- C:\WINDOWS\$NtUninstallKB2393802$
2012-01-12 16:32:10 ----HDC---- C:\WINDOWS\$NtUninstallKB923561$
2012-01-12 16:32:06 ----HDC---- C:\WINDOWS\$NtUninstallKB2620712$
2012-01-12 16:32:01 ----HDC---- C:\WINDOWS\$NtUninstallKB2566454$
2012-01-12 16:31:56 ----HDC---- C:\WINDOWS\$NtUninstallKB2584146$
2012-01-12 16:31:50 ----HDC---- C:\WINDOWS\$NtUninstallKB2633171$
2012-01-12 16:31:43 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2012-01-12 16:31:36 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$
2012-01-12 16:31:30 ----HDC---- C:\WINDOWS\$NtUninstallKB2423089$
2012-01-12 16:31:24 ----HDC---- C:\WINDOWS\$NtUninstallKB2360937$
2011-10-28 21:00:09 ----D---- C:\WINDOWS\system32\PreInstall
2011-10-28 21:00:08 ----HDC---- C:\WINDOWS\$NtUninstallKB898461$
2011-10-28 21:00:08 ----HD---- C:\WINDOWS\$hf_mig$
2011-10-28 20:03:41 ----D---- C:\Documents and Settings\Saber\Application Data\Skype
2011-10-28 20:03:36 ----RD---- C:\Program Files\Skype
2011-10-28 20:00:13 ----D---- C:\Documents and Settings\Saber\Application Data\IDM
2011-10-28 20:00:10 ----D---- C:\Program Files\Internet Download Manager
2011-09-26 12:41:40 ----N---- C:\WINDOWS\system32\uiautomationcore.dll
2010-08-13 19:44:52 ----A---- C:\WINDOWS\system32\xpsp4res.dll
2010-04-16 22:12:18 ----A---- C:\WINDOWS\system32\sirenacm.dll
2009-08-17 23:33:52 ----A---- C:\WINDOWS\system32\FM20.DLL
2009-08-06 19:24:10 ----A---- C:\WINDOWS\system32\wups2.dll
2009-07-22 17:49:44 ----A---- C:\WINDOWS\system32\sfcfiles.dll
2009-07-22 17:49:25 ----A---- C:\WINDOWS\system32\syssetup.dll
2009-03-10 23:18:20 ----N---- C:\WINDOWS\system32\WgaTray.exe
2009-03-10 23:18:20 ----N---- C:\WINDOWS\system32\LegitCheckControl.dll
2009-03-10 23:18:00 ----N---- C:\WINDOWS\system32\WgaLogon.dll
2009-03-08 04:32:52 ----A---- C:\WINDOWS\system32\ieudinit.exe
2009-01-07 18:20:38 ----A---- C:\WINDOWS\system32\nlsdl.dll
2009-01-07 18:20:36 ----A---- C:\WINDOWS\system32\normaliz.dll
2009-01-07 18:20:36 ----A---- C:\WINDOWS\system32\idndl.dll
2009-01-07 18:20:18 ----A---- C:\WINDOWS\system32\msdbg2.dll
2008-04-14 13:00:00 ----RASH---- C:\NTDETECT.COM
2008-04-14 13:00:00 ----R---- C:\WINDOWS\system32\rsop.msc
2008-04-14 13:00:00 ----R---- C:\WINDOWS\system32\perfmon.msc
2008-04-14 13:00:00 ----N---- C:\WINDOWS\system32\notepad.exe
2008-04-14 13:00:00 ----ASH---- C:\WINDOWS\fonts\desktop.ini
2008-04-14 13:00:00 ----A---- C:\WINDOWS\winhlp32.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\winhelp.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\win.ini
2008-04-14 13:00:00 ----A---- C:\WINDOWS\vmmreg32.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\twunk_32.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\twunk_16.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\twain_32.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\twain.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\zipfldr.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\xpsp3res.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\xpsp2res.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\xpsp1res.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\xpob2res.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\xmlprovi.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\xmlprov.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\xmllite.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\xenroll.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\xcopy.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\xactsrv.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wzcdlg.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wupdmgr.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wtsapi32.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wstdecod.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wsock32.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wsnmp32.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wshtcpip.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\WshRm.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wshnetbs.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wshisn.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wship6.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wshfr.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wshext.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wshcon.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wshbth.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wshatm.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wsecedit.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wscsvc.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wscript.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wscntfy.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\ws2help.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\ws2_32.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wpnpinst.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wpabaln.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wowexec.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wowdeb.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wow32.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wmvdmoe2.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wmvdmod.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\WMVCore.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wmstream.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wmspdmoe.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wmspdmod.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wmsdmoe2.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wmsdmoe.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wmsdmod.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wmpui.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wmpshell.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wmploc.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wmphoto.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wmpdxm.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wmpcore.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wmpcd.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wmpasf.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wmp.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\WMNetmgr.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wmiscmgr.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wmiprop.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wmidx.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wmi.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wmerror.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wmerrFRA.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wmdmps.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wmdmlog.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wmasf.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wmadmoe.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wmadmod.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wlnotify.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wldap32.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wlanapi.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wkssvc.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\winver.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wintrust.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\winstrm.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\winsta.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\winsrv.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\winspool.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\winsock.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\winshfhc.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\winscard.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\winrnr.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\winntbbu.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\winnls.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\winmsd.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\winmm.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\winlogon.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\winipsec.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wininet.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\winhttp.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\winhlp32.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\winfax.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\windowscodecsext.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\windowscodecs.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\winbrand.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\win87em.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\win32spl.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\win32k.sys
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\win.com
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wifeman.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wiavusd.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wiavideo.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wiashext.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wiaservc.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wiascr.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wiadss.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wiadefui.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wiaacmgr.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wextract.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\webvw.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\webhits.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\webclnt.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\webcheck.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wdigest.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wavemsp.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\watchdog.sys
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\w3ssl.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\w32topl.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\w32tm.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\w32time.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\vwipxspx.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\vwipxspx.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\vssvc.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\vssapi.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\vssadmin.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\vss_ps.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\vjoy.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\vga64k.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\vga256.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\vga.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\vfpodbc.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\version.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\verifier.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\verifier.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\verclsid.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\ver.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\vdmredir.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\vdmdbg.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\vcdex.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\vbsfr.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\vbscript.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\vbajet32.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\uxtheme.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\utilman.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\utildll.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\usp10.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\userinit.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\userenv.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\user32.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\user.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\usbmon.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\urlmon.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\url.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\ureg.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\ups.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\upnpui.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\upnphost.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\upnpcont.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\upnp.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\untfs.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\unlodctr.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\uniplat.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\unimdmat.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\umpnpmgr.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\umdmxfrm.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\umandlg.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\ulib.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\ufat.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\udhisapi.dll
Je n'arrive pas exécuter l'antivirus Avast 7
Ci-dessous le logfile
Pouvez-vous m'aider er merci beaucoup
PS : je ne suis pas experte
Logfile of random's system information tool 1.09 (written by random/random)
Run by Saber at 2005-10-13 01:09:05
Microsoft Windows XP Professionnel Service Pack 3
System drive C: has 75 GB (84%) free of 90 GB
Total RAM: 766 MB (27% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 01:09:18, on 13/10/2005
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Documents and Settings\tazebama.dl_
C:\Documents and Settings\All Users\Application Data\Dim@net\OnlineUpdate\ouc.exe
C:\Documents and Settings\All Users\Application Data\DatacardService\HWDeviceService.exe
C:\Documents and Settings\Saber\Local Settings\Application Data\MAJTuto\MAJTuto.exe
C:\Program Files\Ralink\Common\RaRegistry.exe
C:\Program Files\CyberLink\Shared files\RichVideo.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\stsystra.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\Program Files\Agence-Exclusive\pctuto.exe
C:\Documents and Settings\Saber\Application Data\Agence-Exclusive\Agence-Exclusive\autoupdater.exe
C:\WINDOWS\system32\wBee.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\SuperCopier2\SuperCopier2.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\EDUP\11n USB Wireless LAN Utility\RtWLan.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Documents and Settings\Saber\Mes documents\Téléchargements\RSIT.exe
C:\Program Files\trend micro\Saber.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.tn/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: PCTBHO - {293A63F7-C3B6-423a-9845-901AC0A7EE6E} - C:\Program Files\Agence-Exclusive\pctutoBHO.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O4 - HKLM\..\Run: [SigmatelSysTrayApp] stsystra.exe
O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [LanguageShortcut] "C:\Program Files\CyberLink\PowerDVD\Language\Language.exe"
O4 - HKLM\..\Run: [pctuto] "C:\Program Files\Agence-Exclusive\pctuto.exe"
O4 - HKLM\..\Run: [autoupdater] C:\Documents and Settings\Saber\Application Data\Agence-Exclusive\Agence-Exclusive\autoupdater.exe
O4 - HKLM\..\Run: [comnetwork] "C:\Documents and Settings\Saber\Local Settings\Application Data\comnetwork\comnetwork.exe"
O4 - HKLM\..\Run: [Bee] C:\WINDOWS\system32\wBee.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [SuperCopier2.exe] C:\Program Files\SuperCopier2\SuperCopier2.exe
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\Saber\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: EDUP 11n USB Wireless LAN Utility.lnk = C:\Program Files\EDUP\11n USB Wireless LAN Utility\RtWLan.exe
O4 - Global Startup: Ralink Wireless Utility.lnk = C:\Program Files\Ralink\Common\RaUI.exe
O7 - HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableRegedit=1
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O22 - SharedTaskScheduler: Pré-chargeur Browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Démon de cache des catégories de composant - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Dim@net. OUC (Dim@net. RunOuc) - Unknown owner - C:\Program Files\Dim@net\UpdateDog\ouc.exe
O23 - Service: Service d'administration du Gestionnaire de disque logique (dmadmin) - Unknown owner - C:\WINDOWS\System32\dmadmin.exe
O23 - Service: Journal des événements (Eventlog) - Unknown owner - C:\WINDOWS\system32\services.exe
O23 - Service: HWDeviceService.exe - Unknown owner - C:\Documents and Settings\All Users\Application Data\DatacardService\HWDeviceService.exe
O23 - Service: Service COM de gravage de CD IMAPI (ImapiService) - Unknown owner - C:\WINDOWS\system32\imapi.exe
O23 - Service: MAJTuto - Unknown owner - C:\Documents and Settings\Saber\Local Settings\Application Data\MAJTuto\MAJTuto.exe
O23 - Service: Partage de Bureau à distance NetMeeting (mnmsrvc) - Unknown owner - C:\WINDOWS\system32\mnmsrvc.exe
O23 - Service: Plug-and-Play (PlugPlay) - Unknown owner - C:\WINDOWS\system32\services.exe
O23 - Service: Ralink Registry Writer (RalinkRegistryWriter) - Ralink Technology, Corp. - C:\Program Files\Ralink\Common\RaRegistry.exe
O23 - Service: Gestionnaire de session d'aide sur le Bureau à distance (RDSessMgr) - Unknown owner - C:\WINDOWS\system32\sessmgr.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo.exe
O23 - Service: Carte à puce (SCardSvr) - Unknown owner - C:\WINDOWS\System32\SCardSvr.exe
O23 - Service: Journaux et alertes de performance (SysmonLog) - Unknown owner - C:\WINDOWS\system32\smlogsvc.exe
O23 - Service: Cliché instantané de volume (VSS) - Unknown owner - C:\WINDOWS\System32\vssvc.exe
O23 - Service: Carte de performance WMI (WmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\wmiapsrv.exe
--
End of file - 8168 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1275210071-682003330-1606980848-1003Core.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1275210071-682003330-1606980848-1003UA.job
=========Mozilla firefox=========
ProfilePath - C:\Documents and Settings\Saber\Application Data\Mozilla\Firefox\Profiles\40hww4fw.default
prefs.js - "browser.startup.homepage" - "http://www.google.fr/"
prefs.js - "keyword.URL" - "http://www.bing.com/search?mkt=fr-FR&form=MIAWB1&q="
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=1.0.3]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll
C:\Program Files\Mozilla Firefox\extensions\
{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
{972ce4c6-7e08-4474-a285-3208198ce6fd}
C:\Program Files\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
C:\Program Files\Mozilla Firefox\searchplugins\
amazon-france.xml
bing.xml
cnrtl-tlfi-fr.xml
eBay-france.xml
google.xml
wikipedia-fr.xml
yahoo-france.xml
C:\Documents and Settings\Saber\Application Data\Mozilla\Firefox\Profiles\40hww4fw.default\searchplugins\
bing.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{293A63F7-C3B6-423a-9845-901AC0A7EE6E}]
PCTBHO Class - C:\Program Files\Agence-Exclusive\pctutoBHO.dll [2011-11-02 228200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Programme d'aide de l'Assistant de connexion Windows Live - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2011-11-29 3844768]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SigmatelSysTrayApp"=C:\WINDOWS\stsystra.exe [2005-10-13 574319]
"ATIPTA"=C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe [2005-10-13 570223]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2008-06-12 104304]
"RemoteControl"=C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe [2005-10-13 264559]
"LanguageShortcut"=C:\Program Files\CyberLink\PowerDVD\Language\Language.exe [2005-10-13 283503]
"pctuto"=C:\Program Files\Agence-Exclusive\pctuto.exe [2005-10-13 1277655]
"autoupdater"=C:\Documents and Settings\Saber\Application Data\Agence-Exclusive\Agence-Exclusive\autoupdater.exe [2005-10-13 872151]
"comnetwork"=C:\Documents and Settings\Saber\Local Settings\Application Data\comnetwork\comnetwork.exe [2005-10-13 3811183]
"Bee"=C:\WINDOWS\system32\wBee.exe [2010-02-13 1444463]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"SuperCopier2.exe"=C:\Program Files\SuperCopier2\SuperCopier2.exe [2005-10-13 1214319]
"Google Update"=C:\Documents and Settings\Saber\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2005-10-13 366431]
"msnmsgr"=C:\Program Files\Windows Live\Messenger\msnmsgr.exe [2005-10-13 4098239]
"MSMSGS"=C:\Program Files\Messenger\msmsgs.exe [2005-10-13 1933679]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2011-10-13 17351304]
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage
EDUP 11n USB Wireless LAN Utility.lnk - C:\Program Files\EDUP\11n USB Wireless LAN Utility\RtWLan.exe
Ralink Wireless Utility.lnk - C:\Program Files\Ralink\Common\RaUI.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265088]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"authentication packages"=msv1_0
nwprovau
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableTaskMgr"=1
"DisableRegistryTools"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableLUA"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Program Files\ma-config.com\maconfservice.exe"="C:\Program Files\ma-config.com\maconfservice.exe:LocalSubNet:Enabled:maconfservice"
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:ipsec"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:ipsec"
"G:\RECYCLER\S-1-6-21-2434476501-1644491937-600003330-1213\plzrunmes.exe"="G:\RECYCLER\S-1-6-21-2434476501-1644491937-600003330-1213\plzrunmes.exe:*:Enabled:ipsec"
"C:\WINDOWS\Explorer.EXE"="C:\WINDOWS\Explorer.EXE:*:Enabled:ipsec"
"C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"="C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe:*:Enabled:ipsec"
"C:\Documents and Settings\Saber\Local Settings\Application Data\Google\Update\GoogleUpdate.exe"="C:\Documents and Settings\Saber\Local Settings\Application Data\Google\Update\GoogleUpdate.exe:*:Enabled:ipsec"
"C:\Documents and Settings\Saber\Local Settings\Application Data\Google\Update\1.3.21.79\GoogleCrashHandler.exe"="C:\Documents and Settings\Saber\Local Settings\Application Data\Google\Update\1.3.21.79\GoogleCrashHandler.exe:*:Enabled:ipsec"
"C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"="C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe:*:Enabled:ipsec"
"C:\WINDOWS\stsystra.exe"="C:\WINDOWS\stsystra.exe:*:Enabled:ipsec"
"C:\Program Files\Dim@net\UpdateDog\ouc.exe"="C:\Program Files\Dim@net\UpdateDog\ouc.exe:*:Enabled:ipsec"
"C:\Documents and Settings\All Users\Application Data\Dim@net\OnlineUpdate\ouc.exe"="C:\Documents and Settings\All Users\Application Data\Dim@net\OnlineUpdate\ouc.exe:*:Enabled:ipsec"
"C:\WINDOWS\system32\ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe:*:Enabled:ipsec"
"C:\Program Files\Agence-Exclusive\pctuto.exe"="C:\Program Files\Agence-Exclusive\pctuto.exe:*:Enabled:ipsec"
"C:\Program Files\Internet Explorer\IEXPLORE.EXE"="C:\Program Files\Internet Explorer\IEXPLORE.EXE:*:Enabled:ipsec"
"C:\Program Files\Ralink\Common\RaUI.exe"="C:\Program Files\Ralink\Common\RaUI.exe:*:Enabled:ipsec"
"C:\Documents and Settings\Saber\Local Settings\Application Data\comnetwork\comnetwork.exe"="C:\Documents and Settings\Saber\Local Settings\Application Data\comnetwork\comnetwork.exe:*:Enabled:ipsec"
"C:\Documents and Settings\Saber\Local Settings\Application Data\Google\Chrome\Application\chrome.exe"="C:\Documents and Settings\Saber\Local Settings\Application Data\Google\Chrome\Application\chrome.exe:*:Enabled:ipsec"
"C:\Program Files\Windows Media Player\wmplayer.exe"="C:\Program Files\Windows Media Player\wmplayer.exe:*:Enabled:ipsec"
"C:\Documents and Settings\Saber\Application Data\Agence-Exclusive\Agence-Exclusive\autoupdater.exe"="C:\Documents and Settings\Saber\Application Data\Agence-Exclusive\Agence-Exclusive\autoupdater.exe:*:Enabled:ipsec"
"C:\WINDOWS\system32\KB905474\wgasetup.exe"="C:\WINDOWS\system32\KB905474\wgasetup.exe:*:Enabled:ipsec"
"C:\Program Files\Mozilla Firefox\firefox.exe"="C:\Program Files\Mozilla Firefox\firefox.exe:*:Enabled:ipsec"
"C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"="C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe:*:Enabled:ipsec"
"C:\Program Files\Mozilla Firefox\crashreporter.exe"="C:\Program Files\Mozilla Firefox\crashreporter.exe:*:Enabled:ipsec"
"C:\Program Files\EDUP\11n USB Wireless LAN Utility\RtWLan.exe"="C:\Program Files\EDUP\11n USB Wireless LAN Utility\RtWLan.exe:*:Enabled:ipsec"
"D:\gta_sa.exe"="D:\gta_sa.exe:*:Enabled:ipsec"
"C:\WINDOWS\system32\wuauclt.exe"="C:\WINDOWS\system32\wuauclt.exe:*:Enabled:ipsec"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"VIDC.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"VIDC.YVYU"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"vidc.i263"=i263_32.drv
"msacm.l3fhg"=mp3fhg.acm
"msacm.divxa32"=divxa32.acm
"VIDC.X264"=x264vfw.dll
"VIDC.HFYU"=huffyuv.dll
"VIDC.VP70"=vp7vfw.dll
"VIDC.XVID"=xvidvfw.dll
"VIDC.LAGS"=lagarith.dll
"VIDC.YV12"=yv12vfw.dll
"msacm.ac3acm"=ac3acm.acm
"msacm.lameacm"=lameACM.acm
"VIDC.FFDS"=ff_vfw.dll
"msacm.siren"=sirenacm.dll
"MSVideo8"=VfWWDM32.dll
======List of files/folders created in the last 1 month======
2012-12-13 15:43:36 ----D---- C:\Documents and Settings\Saber\Application Data\Mozilla
2012-12-11 01:06:07 ----A---- C:\WINDOWS\system32\drivers\MSTEE.sys
2012-12-11 01:06:05 ----A---- C:\WINDOWS\system32\drivers\NdisIP.sys
2012-12-11 01:06:04 ----A---- C:\WINDOWS\system32\drivers\StreamIP.sys
2012-12-11 01:06:02 ----A---- C:\WINDOWS\system32\drivers\SLIP.sys
2012-12-11 01:06:00 ----A---- C:\WINDOWS\system32\drivers\WSTCODEC.SYS
2012-12-11 01:05:57 ----A---- C:\WINDOWS\system32\drivers\NABTSFEC.sys
2012-12-11 01:05:56 ----A---- C:\WINDOWS\system32\drivers\CCDECODE.sys
2012-12-11 01:05:49 ----A---- C:\WINDOWS\system32\vfwwdm32.dll
2012-12-11 01:05:49 ----A---- C:\WINDOWS\system32\drivers\usbvideo.sys
2012-12-10 21:47:40 ----D---- C:\WINDOWS\Minidump
2012-12-08 14:49:38 ----D---- C:\Program Files\pctuto
2012-12-08 14:49:22 ----D---- C:\Program Files\Agence-Exclusive
2012-12-08 14:49:22 ----D---- C:\Documents and Settings\Saber\Application Data\Agence-Exclusive
2012-12-07 02:54:20 ----N---- C:\WINDOWS\system32\drivers\bthport.sys
2012-12-07 02:37:21 ----D---- C:\WINDOWS\system32\appmgmt
2012-01-17 01:21:47 ----A---- C:\WINDOWS\system32\MRT.exe
2012-01-17 01:21:45 ----D---- C:\2937c077c5bc241dc864
2012-01-15 23:40:50 ----HDC---- C:\WINDOWS\$NtUninstallKB2585542$
2012-01-13 23:12:50 ----HDC---- C:\WINDOWS\$NtUninstallKB2345886$
2012-01-13 23:12:45 ----HDC---- C:\WINDOWS\$NtUninstallKB970430$
2012-01-13 23:12:37 ----HDC---- C:\WINDOWS\$NtUninstallKB971737$
2012-01-12 22:31:24 ----HDC---- C:\WINDOWS\$NtUninstallKB2443105$
2012-01-12 16:42:22 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2012-01-12 16:42:18 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2012-01-12 16:42:13 ----HDC---- C:\WINDOWS\$NtUninstallKB959426$
2012-01-12 16:42:08 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2012-01-12 16:42:02 ----HDC---- C:\WINDOWS\$NtUninstallKB2387149$
2012-01-12 16:41:57 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$
2012-01-12 16:41:52 ----HDC---- C:\WINDOWS\$NtUninstallKB2479943$
2012-01-12 16:41:47 ----HDC---- C:\WINDOWS\$NtUninstallKB2564958$
2012-01-12 16:41:43 ----HDC---- C:\WINDOWS\$NtUninstallKB2478971$
2012-01-12 16:41:38 ----HDC---- C:\WINDOWS\$NtUninstallKB2544893-v2$
2012-01-12 16:41:10 ----HDC---- C:\WINDOWS\$NtUninstallKB2536276-v2$
2012-01-12 16:41:06 ----HDC---- C:\WINDOWS\$NtUninstallKB2646524$
2012-01-12 16:41:01 ----HDC---- C:\WINDOWS\$NtUninstallKB2631813$
2012-01-12 16:40:55 ----HDC---- C:\WINDOWS\$NtUninstallKB2296011$
2012-01-12 16:40:49 ----HDC---- C:\WINDOWS\$NtUninstallKB2115168$
2012-01-12 16:40:43 ----HDC---- C:\WINDOWS\$NtUninstallKB975558_WM8$
2012-01-12 16:40:38 ----HDC---- C:\WINDOWS\$NtUninstallKB955759$
2012-01-12 16:40:23 ----HDC---- C:\WINDOWS\$NtUninstallKB2378111_WM9$
2012-01-12 16:40:19 ----HDC---- C:\WINDOWS\$NtUninstallKB974318$
2012-01-12 16:40:13 ----HDC---- C:\WINDOWS\$NtUninstallKB951978$
2012-01-12 16:40:06 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2012-01-12 16:40:00 ----HDC---- C:\WINDOWS\$NtUninstallKB2229593$
2012-01-12 16:39:55 ----HDC---- C:\WINDOWS\$NtUninstallKB961503$
2012-01-12 16:39:50 ----HDC---- C:\WINDOWS\$NtUninstallKB2639417$
2012-01-12 16:39:44 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2012-01-12 16:39:39 ----HDC---- C:\WINDOWS\$NtUninstallKB2481109$
2012-01-12 16:39:34 ----HDC---- C:\WINDOWS\$NtUninstallKB975713$
2012-01-12 16:39:29 ----HDC---- C:\WINDOWS\$NtUninstallKB2485663$
2012-01-12 16:39:24 ----HDC---- C:\WINDOWS\$NtUninstallKB2598479$
2012-01-12 16:39:19 ----HDC---- C:\WINDOWS\$NtUninstallKB2440591$
2012-01-12 16:39:13 ----HDC---- C:\WINDOWS\$NtUninstallKB982132$
2012-01-12 16:39:08 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$
2012-01-12 16:39:04 ----HDC---- C:\WINDOWS\$NtUninstallKB978338$
2012-01-12 16:38:58 ----HDC---- C:\WINDOWS\$NtUninstallKB954155_WM9$
2012-01-12 16:38:33 ----HDC---- C:\WINDOWS\$NtUninstallKB2507938$
2012-01-12 16:38:28 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2012-01-12 16:38:23 ----HDC---- C:\WINDOWS\$NtUninstallKB956744$
2012-01-12 16:38:18 ----HDC---- C:\WINDOWS\$NtUninstallKB2476490$
2012-01-12 16:38:13 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2012-01-12 16:38:06 ----HDC---- C:\WINDOWS\$NtUninstallKB956572$
2012-01-12 16:37:59 ----HDC---- C:\WINDOWS\$NtUninstallKB2347290$
2012-01-12 16:37:54 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
2012-01-12 16:37:47 ----HDC---- C:\WINDOWS\$NtUninstallKB2641690$
2012-01-12 16:37:39 ----HDC---- C:\WINDOWS\$NtUninstallKB2483185$
2012-01-12 16:37:34 ----HDC---- C:\WINDOWS\$NtUninstallKB961501$
2012-01-12 16:37:29 ----HDC---- C:\WINDOWS\$NtUninstallKB2079403$
2012-01-12 16:37:24 ----HDC---- C:\WINDOWS\$NtUninstallKB2624667$
2012-01-12 16:36:55 ----HDC---- C:\WINDOWS\$NtUninstallKB979687$
2012-01-12 16:36:50 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$
2012-01-12 16:36:46 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$
2012-01-12 16:36:40 ----HDC---- C:\WINDOWS\$NtUninstallKB952004$
2012-01-12 16:36:34 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2012-01-12 16:36:30 ----HDC---- C:\WINDOWS\$NtUninstallKB2592799$
2012-01-12 16:36:24 ----HDC---- C:\WINDOWS\$NtUninstallKB975560$
2012-01-12 16:36:17 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$
2012-01-12 16:36:00 ----HDC---- C:\WINDOWS\$NtUninstallKB2570222$
2012-01-12 16:35:55 ----HDC---- C:\WINDOWS\$NtUninstallKB2535512$
2012-01-12 16:35:51 ----HDC---- C:\WINDOWS\$NtUninstallKB977816$
2012-01-12 16:35:46 ----HDC---- C:\WINDOWS\$NtUninstallKB973687$
2012-01-12 16:35:40 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2012-01-12 16:35:37 ----HDC---- C:\WINDOWS\$NtUninstallKB2412687$
2012-01-12 16:35:33 ----HDC---- C:\WINDOWS\$NtUninstallKB978601$
2012-01-12 16:35:28 ----HDC---- C:\WINDOWS\$NtUninstallKB2570947$
2012-01-12 16:35:24 ----HDC---- C:\WINDOWS\$NtUninstallKB980436$
2012-01-12 16:35:18 ----HDC---- C:\WINDOWS\$NtUninstallKB981322$
2012-01-12 16:35:14 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2012-01-12 16:35:09 ----HDC---- C:\WINDOWS\$NtUninstallKB978695_WM9$
2012-01-12 16:35:06 ----HDC---- C:\WINDOWS\$NtUninstallKB2507618$
2012-01-12 16:35:01 ----HDC---- C:\WINDOWS\$NtUninstallKB2603381$
2012-01-12 16:34:56 ----HDC---- C:\WINDOWS\$NtUninstallKB973904$
2012-01-12 16:34:49 ----HDC---- C:\WINDOWS\$NtUninstallKB973540_WM9$
2012-01-12 16:34:43 ----HDC---- C:\WINDOWS\$NtUninstallKB2419632$
2012-01-12 16:34:38 ----HDC---- C:\WINDOWS\$NtUninstallKB2508429$
2012-01-12 16:34:33 ----HDC---- C:\WINDOWS\$NtUninstallKB974392$
2012-01-12 16:34:25 ----HDC---- C:\WINDOWS\$NtUninstallKB971029$
2012-01-12 16:34:20 ----HDC---- C:\WINDOWS\$NtUninstallKB954459$
2012-01-12 16:34:14 ----HDC---- C:\WINDOWS\$NtUninstallKB2506212$
2012-01-12 16:34:09 ----HDC---- C:\WINDOWS\$NtUninstallKB952069_WM9$
2012-01-12 16:34:04 ----HDC---- C:\WINDOWS\$NtUninstallKB2633952$
2012-01-12 16:34:00 ----HDC---- C:\WINDOWS\$NtUninstallKB977914$
2012-01-12 16:33:53 ----HDC---- C:\WINDOWS\$NtUninstallKB2619339$
2012-01-12 16:33:48 ----HDC---- C:\WINDOWS\$NtUninstallKB978542$
2012-01-12 16:33:44 ----HDC---- C:\WINDOWS\$NtUninstallKB979309$
2012-01-12 16:33:40 ----HDC---- C:\WINDOWS\$NtUninstallKB979482$
2012-01-12 16:33:35 ----HDC---- C:\WINDOWS\$NtUninstallKB978706$
2012-01-12 16:33:30 ----HDC---- C:\WINDOWS\$NtUninstallKB981997$
2012-01-12 16:33:26 ----HDC---- C:\WINDOWS\$NtUninstallKB960803$
2012-01-12 16:33:21 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$
2012-01-12 16:33:17 ----HDC---- C:\WINDOWS\$NtUninstallKB2618451$
2012-01-12 16:33:13 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$
2012-01-12 16:32:54 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$
2012-01-12 16:32:47 ----HDC---- C:\WINDOWS\$NtUninstallKB2509553$
2012-01-12 16:32:34 ----HDC---- C:\WINDOWS\$NtUninstallKB982665$
2012-01-12 16:32:30 ----HDC---- C:\WINDOWS\$NtUninstallKB2541763$
2012-01-12 16:32:26 ----D---- C:\WINDOWS\ie8updates
2012-01-12 16:32:22 ----HDC---- C:\WINDOWS\$NtUninstallKB2478960$
2012-01-12 16:32:17 ----HDC---- C:\WINDOWS\$NtUninstallKB2393802$
2012-01-12 16:32:10 ----HDC---- C:\WINDOWS\$NtUninstallKB923561$
2012-01-12 16:32:06 ----HDC---- C:\WINDOWS\$NtUninstallKB2620712$
2012-01-12 16:32:01 ----HDC---- C:\WINDOWS\$NtUninstallKB2566454$
2012-01-12 16:31:56 ----HDC---- C:\WINDOWS\$NtUninstallKB2584146$
2012-01-12 16:31:50 ----HDC---- C:\WINDOWS\$NtUninstallKB2633171$
2012-01-12 16:31:43 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2012-01-12 16:31:36 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$
2012-01-12 16:31:30 ----HDC---- C:\WINDOWS\$NtUninstallKB2423089$
2012-01-12 16:31:24 ----HDC---- C:\WINDOWS\$NtUninstallKB2360937$
2011-10-28 21:00:09 ----D---- C:\WINDOWS\system32\PreInstall
2011-10-28 21:00:08 ----HDC---- C:\WINDOWS\$NtUninstallKB898461$
2011-10-28 21:00:08 ----HD---- C:\WINDOWS\$hf_mig$
2011-10-28 20:03:41 ----D---- C:\Documents and Settings\Saber\Application Data\Skype
2011-10-28 20:03:36 ----RD---- C:\Program Files\Skype
2011-10-28 20:00:13 ----D---- C:\Documents and Settings\Saber\Application Data\IDM
2011-10-28 20:00:10 ----D---- C:\Program Files\Internet Download Manager
2011-09-26 12:41:40 ----N---- C:\WINDOWS\system32\uiautomationcore.dll
2010-08-13 19:44:52 ----A---- C:\WINDOWS\system32\xpsp4res.dll
2010-04-16 22:12:18 ----A---- C:\WINDOWS\system32\sirenacm.dll
2009-08-17 23:33:52 ----A---- C:\WINDOWS\system32\FM20.DLL
2009-08-06 19:24:10 ----A---- C:\WINDOWS\system32\wups2.dll
2009-07-22 17:49:44 ----A---- C:\WINDOWS\system32\sfcfiles.dll
2009-07-22 17:49:25 ----A---- C:\WINDOWS\system32\syssetup.dll
2009-03-10 23:18:20 ----N---- C:\WINDOWS\system32\WgaTray.exe
2009-03-10 23:18:20 ----N---- C:\WINDOWS\system32\LegitCheckControl.dll
2009-03-10 23:18:00 ----N---- C:\WINDOWS\system32\WgaLogon.dll
2009-03-08 04:32:52 ----A---- C:\WINDOWS\system32\ieudinit.exe
2009-01-07 18:20:38 ----A---- C:\WINDOWS\system32\nlsdl.dll
2009-01-07 18:20:36 ----A---- C:\WINDOWS\system32\normaliz.dll
2009-01-07 18:20:36 ----A---- C:\WINDOWS\system32\idndl.dll
2009-01-07 18:20:18 ----A---- C:\WINDOWS\system32\msdbg2.dll
2008-04-14 13:00:00 ----RASH---- C:\NTDETECT.COM
2008-04-14 13:00:00 ----R---- C:\WINDOWS\system32\rsop.msc
2008-04-14 13:00:00 ----R---- C:\WINDOWS\system32\perfmon.msc
2008-04-14 13:00:00 ----N---- C:\WINDOWS\system32\notepad.exe
2008-04-14 13:00:00 ----ASH---- C:\WINDOWS\fonts\desktop.ini
2008-04-14 13:00:00 ----A---- C:\WINDOWS\winhlp32.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\winhelp.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\win.ini
2008-04-14 13:00:00 ----A---- C:\WINDOWS\vmmreg32.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\twunk_32.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\twunk_16.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\twain_32.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\twain.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\zipfldr.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\xpsp3res.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\xpsp2res.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\xpsp1res.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\xpob2res.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\xmlprovi.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\xmlprov.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\xmllite.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\xenroll.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\xcopy.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\xactsrv.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wzcdlg.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wupdmgr.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wtsapi32.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wstdecod.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wsock32.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wsnmp32.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wshtcpip.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\WshRm.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wshnetbs.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wshisn.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wship6.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wshfr.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wshext.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wshcon.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wshbth.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wshatm.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wsecedit.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wscsvc.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wscript.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wscntfy.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\ws2help.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\ws2_32.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wpnpinst.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wpabaln.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wowexec.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wowdeb.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wow32.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wmvdmoe2.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wmvdmod.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\WMVCore.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wmstream.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wmspdmoe.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wmspdmod.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wmsdmoe2.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wmsdmoe.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wmsdmod.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wmpui.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wmpshell.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wmploc.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wmphoto.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wmpdxm.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wmpcore.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wmpcd.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wmpasf.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wmp.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\WMNetmgr.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wmiscmgr.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wmiprop.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wmidx.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wmi.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wmerror.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wmerrFRA.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wmdmps.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wmdmlog.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wmasf.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wmadmoe.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wmadmod.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wlnotify.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wldap32.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wlanapi.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wkssvc.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\winver.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wintrust.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\winstrm.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\winsta.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\winsrv.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\winspool.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\winsock.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\winshfhc.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\winscard.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\winrnr.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\winntbbu.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\winnls.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\winmsd.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\winmm.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\winlogon.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\winipsec.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wininet.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\winhttp.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\winhlp32.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\winfax.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\windowscodecsext.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\windowscodecs.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\winbrand.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\win87em.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\win32spl.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\win32k.sys
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\win.com
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wifeman.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wiavusd.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wiavideo.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wiashext.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wiaservc.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wiascr.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wiadss.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wiadefui.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wiaacmgr.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wextract.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\webvw.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\webhits.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\webclnt.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\webcheck.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wdigest.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\wavemsp.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\watchdog.sys
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\w3ssl.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\w32topl.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\w32tm.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\w32time.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\vwipxspx.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\vwipxspx.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\vssvc.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\vssapi.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\vssadmin.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\vss_ps.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\vjoy.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\vga64k.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\vga256.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\vga.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\vfpodbc.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\version.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\verifier.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\verifier.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\verclsid.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\ver.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\vdmredir.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\vdmdbg.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\vcdex.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\vbsfr.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\vbscript.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\vbajet32.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\uxtheme.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\utilman.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\utildll.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\usp10.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\userinit.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\userenv.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\user32.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\user.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\usbmon.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\urlmon.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\url.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\ureg.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\ups.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\upnpui.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\upnphost.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\upnpcont.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\upnp.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\untfs.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\unlodctr.exe
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\uniplat.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\unimdmat.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\umpnpmgr.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\umdmxfrm.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\umandlg.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\ulib.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\ufat.dll
2008-04-14 13:00:00 ----A---- C:\WINDOWS\system32\udhisapi.dll
A voir également:
- Impossible d'executer un antivirus
- Comodo antivirus - Télécharger - Sécurité
- Avast antivirus gratuit - Télécharger - Antivirus & Antimalwares
- Antivirus windows - Guide
- Norton antivirus gratuit - Télécharger - Antivirus & Antimalwares
- Panda antivirus - Télécharger - Antivirus & Antimalwares
1 réponse
Salut,
1/
* Telecharge et install link officiel : >>>USBFix ICI<<<
ou : >>> ICI <<<
(!) Branche tes sources de données externes à ton PC, (clé USB, disque dur externe, etc...) suceptible d avoir été infectés sans les ouvrir
* Double clique sur le raccourci UsbFix sur ton Bureau (clique droit avec la souris
:exécuter en tant qu'administrateur pour vista/seven), l'installation se fera
automatiquement
* Clique sur "Recherche"
* Laisse travailler l'outil
* A la fin, le rapport va s'afficher : poste le dans ta prochaine réponse (il est aussi sauvegardé a la racine du disque dur : C:\UsbFix.txt )
2/
Télécharge AdwCleaner (merci à Xplode)
Lance AdwCleaner
Clique sur le bouton [ Suppression ]
Patiente...
Poste le rapport qui apparait en fin de recherche.
@+
1/
* Telecharge et install link officiel : >>>USBFix ICI<<<
ou : >>> ICI <<<
(!) Branche tes sources de données externes à ton PC, (clé USB, disque dur externe, etc...) suceptible d avoir été infectés sans les ouvrir
* Double clique sur le raccourci UsbFix sur ton Bureau (clique droit avec la souris
:exécuter en tant qu'administrateur pour vista/seven), l'installation se fera
automatiquement
* Clique sur "Recherche"
* Laisse travailler l'outil
* A la fin, le rapport va s'afficher : poste le dans ta prochaine réponse (il est aussi sauvegardé a la racine du disque dur : C:\UsbFix.txt )
2/
Télécharge AdwCleaner (merci à Xplode)
Lance AdwCleaner
Clique sur le bouton [ Suppression ]
Patiente...
Poste le rapport qui apparait en fin de recherche.
@+