Et le RSIT:
Logfile of random's system information tool 1.06 (written by random/random)
Run by moloch at 2009-12-18 01:33:01
Microsoft Windows XP Édition familiale Service Pack 3
System drive C: has 99 GB (86%) free of 114 GB
Total RAM: 1023 MB (35% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 01:33:04, on 18/12/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
c:\Program Files\Microsoft Security Essentials\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\PC Tools Firewall Plus\FWService.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesService32.exe
C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesApp32.exe
C:\WINDOWS\explorer.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\moloch\Bureau\RSIT.exe
C:\Program Files\trend micro\moloch.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://fr.msn.com/R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Windows Internet Explorer
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\Program Files\OrangeHSS\SearchURLHook\SearchPageURL.dll
O2 - BHO: Canon Easy Web Print Helper - {68F9551E-0411-48E4-9AAF-4BC42A6A46BE} - C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [ORAHSSSessionManager] C:\Program Files\OrangeHSS\SessionManager\SessionManager.exe
O4 - HKLM\..\Run: [MSSE] "c:\Program Files\Microsoft Security Essentials\msseces.exe" -hide
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe"
O4 - HKLM\..\Run: [00PCTFW] "C:\Program Files\PC Tools Firewall Plus\FirewallGUI.exe" -s
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [gdjif] C:\Documents and Settings\moloch\gdjif.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O17 - HKLM\System\CCS\Services\Tcpip\..\{B69B26BB-12B8-4964-A3C6-649E0AEBFF77}: NameServer = 192.168.1.1
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom SA - C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: PC Tools Firewall Plus (PCToolsFirewallPlus) - PC Tools - C:\Program Files\PC Tools Firewall Plus\FWService.exe
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software - C:\Program Files\TuneUp Utilities 2010\TuneUpDefragService.exe
O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesService32.exe
--
End of file - 4426 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\MP Scheduled Scan.job
C:\WINDOWS\tasks\Recherche de problèmes automatique.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{68F9551E-0411-48E4-9AAF-4BC42A6A46BE}]
EWPBrowseObject Class - C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll [2006-04-18 34304]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{327C2873-E90D-4c37-AA9D-10AC9BABA46C} - Easy-WebPrint - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll [2006-04-18 552960]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SoundMan"=C:\WINDOWS\SOUNDMAN.EXE [2004-11-15 77824]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2006-02-13 7557120]
"nwiz"=nwiz.exe /install []
"NvMediaCenter"=C:\WINDOWS\system32\NvMcTray.dll [2006-02-13 86016]
"ORAHSSSessionManager"=C:\Program Files\OrangeHSS\SessionManager\SessionManager.exe [2007-12-12 107248]
"MSSE"=c:\Program Files\Microsoft Security Essentials\msseces.exe [2009-09-13 1048392]
"SSBkgdUpdate"=C:\Program Files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe [2003-09-30 155648]
"OpwareSE4"=C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe [2006-03-21 69632]
"00PCTFW"=C:\Program Files\PC Tools Firewall Plus\FirewallGUI.exe [2009-11-27 2971608]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"gdjif"=C:\Documents and Settings\moloch\gdjif.exe [2009-12-13 73728]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{1a3e09be-1e45-494b-9174-d7385b45bbf5}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
"NoDriveAutoRun"=145
"HonorAutoRunSetting"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=
"NoDriveAutoRun"=
"NoDriveTypeAutoRun"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\OrangeHSS\Connectivity\ConnectivityManager.exe"="C:\Program Files\OrangeHSS\Connectivity\ConnectivityManager.exe:*:enabled:CSS"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
======List of files/folders created in the last 1 months======
2009-12-17 13:52:43 ----RASHD---- C:\autorun.inf
2009-12-17 13:50:07 ----A---- C:\UsbFix.txt
2009-12-16 15:15:20 ----D---- C:\Documents and Settings\moloch\Application Data\Media Player Classic
2009-12-16 14:52:32 ----D---- C:\UsbFix
2009-12-15 22:41:00 ----D---- C:\Program Files\trend micro
2009-12-15 22:40:54 ----D---- C:\rsit
2009-12-15 16:57:57 ----SHD---- C:\Config.Msi
2009-12-15 11:53:01 ----D---- C:\Program Files\CCleaner
2009-12-15 11:28:12 ----A---- C:\WINDOWS\system32\TURegOpt.exe
2009-12-15 11:28:11 ----A---- C:\WINDOWS\system32\uxtuneup.dll
2009-12-15 11:27:52 ----D---- C:\Documents and Settings\moloch\Application Data\TuneUp Software
2009-12-15 11:27:41 ----D---- C:\Program Files\TuneUp Utilities 2010
2009-12-15 11:27:16 ----D---- C:\Documents and Settings\All Users\Application Data\TuneUp Software
2009-12-15 11:27:03 ----SHD---- C:\Documents and Settings\All Users\Application Data\{D3742F82-1C1A-4DCC-ABBD-0E7C3C0185CC}
2009-12-14 16:53:50 ----HDC---- C:\WINDOWS\$NtUninstallKB970430$
2009-12-14 16:53:26 ----HDC---- C:\WINDOWS\$NtUninstallKB951978$
2009-12-14 16:52:00 ----HDC---- C:\WINDOWS\$NtUninstallKB961118$
2009-12-14 16:51:13 ----HDC---- C:\WINDOWS\$NtUninstallKB956744$
2009-12-14 16:01:09 ----D---- C:\Program Files\Microsoft CAPICOM 2.1.0.2
2009-12-14 15:59:25 ----HDC---- C:\WINDOWS\$NtUninstallKB973540_WM9$
2009-12-14 15:59:05 ----HDC---- C:\WINDOWS\$NtUninstallKB971737$
2009-12-14 15:56:56 ----D---- C:\Program Files\MSXML 4.0
2009-12-14 14:43:30 ----A---- C:\WINDOWS\system32\muweb.dll
2009-12-14 14:43:30 ----A---- C:\WINDOWS\system32\mucltui.dll.mui
2009-12-14 14:43:30 ----A---- C:\WINDOWS\system32\mucltui.dll
2009-12-14 13:14:18 ----A---- C:\WINDOWS\system32\ptpusb.dll
2009-12-14 13:14:17 ----A---- C:\WINDOWS\system32\ptpusd.dll
2009-12-14 01:01:02 ----D---- C:\Documents and Settings\All Users\Application Data\Azureus
2009-12-14 01:00:58 ----D---- C:\Documents and Settings\moloch\Application Data\Azureus
2009-12-14 00:59:39 ----D---- C:\Program Files\Vuze
2009-12-14 00:59:39 ----D---- C:\Program Files\Fichiers communs\i4j_jres
2009-12-14 00:50:54 ----D---- C:\Documents and Settings\moloch\Application Data\eMule
2009-12-14 00:50:50 ----D---- C:\Program Files\eMule
2009-12-14 00:49:37 ----D---- C:\Program Files\Satsuki Decoder Pack
2009-12-14 00:48:45 ----D---- C:\Program Files\VideoLAN
2009-12-14 00:10:02 ----D---- C:\Documents and Settings\moloch\Application Data\Sun
2009-12-13 23:54:46 ----D---- C:\Program Files\WBFS
2009-12-13 23:54:32 ----N---- C:\WINDOWS\system32\spmsg2.dll
2009-12-13 23:54:28 ----HDC---- C:\WINDOWS\$NtUninstallXPSEPSCLP$
2009-12-13 23:51:41 ----D---- C:\WINDOWS\system32\XPSViewer
2009-12-13 23:51:36 ----D---- C:\Program Files\MSBuild
2009-12-13 23:51:34 ----D---- C:\WINDOWS\system32\en-US
2009-12-13 23:51:27 ----D---- C:\Program Files\Reference Assemblies
2009-12-13 23:50:40 ----N---- C:\WINDOWS\system32\xpssvcs.dll
2009-12-13 23:50:40 ----N---- C:\WINDOWS\system32\xpsshhdr.dll
2009-12-13 23:50:40 ----N---- C:\WINDOWS\system32\prntvpt.dll
2009-12-13 23:50:39 ----D---- C:\628eb152c0b372c09d428b
2009-12-13 23:49:51 ----RSD---- C:\WINDOWS\assembly
2009-12-13 23:49:08 ----D---- C:\WINDOWS\Microsoft.NET
2009-12-13 23:42:16 ----D---- C:\WINDOWS\Prefetch
2009-12-13 23:27:26 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2009-12-13 23:27:10 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$
2009-12-13 23:26:57 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2009-12-13 23:26:44 ----HDC---- C:\WINDOWS\$NtUninstallKB974392$
2009-12-13 23:26:32 ----HDC---- C:\WINDOWS\$NtUninstallKB974318$
2009-12-13 23:26:15 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2009-12-13 23:26:00 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$
2009-12-13 23:25:45 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$
2009-12-13 23:25:30 ----HDC---- C:\WINDOWS\$NtUninstallKB973687$
2009-12-13 23:25:18 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$
2009-12-13 23:25:05 ----HDC---- C:\WINDOWS\$NtUninstallKB973354$
2009-12-13 23:24:54 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$
2009-12-13 23:24:41 ----HDC---- C:\WINDOWS\$NtUninstallKB971633$
2009-12-13 23:24:31 ----HDC---- C:\WINDOWS\$NtUninstallKB971557$
2009-12-13 23:24:11 ----D---- C:\Documents and Settings\moloch\Application Data\WinRAR
2009-12-13 23:24:07 ----HDC---- C:\WINDOWS\$NtUninstallKB971486$
2009-12-13 23:23:55 ----HDC---- C:\WINDOWS\$NtUninstallKB970238$
2009-12-13 23:23:41 ----HDC---- C:\WINDOWS\$NtUninstallKB969947$
2009-12-13 23:23:30 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2009-12-13 23:23:15 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$
2009-12-13 23:23:03 ----HDC---- C:\WINDOWS\$NtUninstallKB967715$
2009-12-13 23:22:52 ----HDC---- C:\WINDOWS\$NtUninstallKB961501$
2009-12-13 23:22:43 ----HDC---- C:\WINDOWS\$NtUninstallKB961371-v2$
2009-12-13 23:22:30 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$
2009-12-13 23:22:20 ----HDC---- C:\WINDOWS\$NtUninstallKB960803$
2009-12-13 23:22:08 ----HDC---- C:\WINDOWS\$NtUninstallKB960225$
2009-12-13 23:21:57 ----HDC---- C:\WINDOWS\$NtUninstallKB959426$
2009-12-13 23:21:44 ----HDC---- C:\WINDOWS\$NtUninstallKB958687$
2009-12-13 23:21:33 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$
2009-12-13 23:21:23 ----HDC---- C:\WINDOWS\$NtUninstallKB957097$
2009-12-13 23:21:11 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
2009-12-13 23:21:01 ----HDC---- C:\WINDOWS\$NtUninstallKB956803$
2009-12-13 23:20:49 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$
2009-12-13 23:20:28 ----HDC---- C:\WINDOWS\$NtUninstallKB956572$
2009-12-13 23:20:03 ----HDC---- C:\WINDOWS\$NtUninstallKB973687_1$
2009-12-13 23:19:47 ----HDC---- C:\WINDOWS\$NtUninstallKB955069$
2009-12-13 23:19:37 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2009-12-13 23:19:26 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2009-12-13 23:19:15 ----HDC---- C:\WINDOWS\$NtUninstallKB952004$
2009-12-13 23:19:03 ----HDC---- C:\WINDOWS\$NtUninstallKB951748$
2009-12-13 23:18:50 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2009-12-13 23:18:34 ----HDC---- C:\WINDOWS\$NtUninstallKB951066$
2009-12-13 23:18:19 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2009-12-13 23:18:10 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2009-12-13 23:18:00 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2009-12-13 23:17:44 ----HDC---- C:\WINDOWS\$NtUninstallKB923561$
2009-12-13 23:13:14 ----D---- C:\WINDOWS\l2schemas
2009-12-13 23:13:13 ----D---- C:\WINDOWS\system32\fr
2009-12-13 23:13:13 ----D---- C:\WINDOWS\system32\bits
2009-12-13 23:05:19 ----D---- C:\WINDOWS\network diagnostic
2009-12-13 23:04:08 ----D---- C:\Program Files\WinRAR
2009-12-13 23:00:20 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2009-12-13 23:00:17 ----D---- C:\WINDOWS\EHome
2009-12-13 22:06:08 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2_0$
2009-12-13 22:05:35 ----HDC---- C:\WINDOWS\$NtUninstallKB952954_0$
2009-12-13 22:05:01 ----HDC---- C:\WINDOWS\$NtUninstallKB959426_0$
2009-12-13 22:04:28 ----HDC---- C:\WINDOWS\$NtUninstallKB946648_0$
2009-12-13 22:03:53 ----HDC---- C:\WINDOWS\$NtUninstallKB956803_0$
2009-12-13 22:03:19 ----HDC---- C:\WINDOWS\$NtUninstallKB960859_0$
2009-12-13 22:02:48 ----HDC---- C:\WINDOWS\$NtUninstallKB958869$
2009-12-13 22:02:20 ----HDC---- C:\WINDOWS\$NtUninstallKB954155_WM9$
2009-12-13 22:01:50 ----HDC---- C:\WINDOWS\$NtUninstallKB976098-v2$
2009-12-13 22:01:21 ----HDC---- C:\WINDOWS\$NtUninstallKB974318_0$
2009-12-13 22:00:45 ----HDC---- C:\WINDOWS\$NtUninstallKB969059_0$
2009-12-13 22:00:10 ----HDC---- C:\WINDOWS\$NtUninstallKB961371-v2_0$
2009-12-13 21:58:07 ----D---- C:\WINDOWS\ie8updates
2009-12-13 21:56:09 ----D---- C:\WINDOWS\WBEM
2009-12-13 21:53:43 ----HDC---- C:\WINDOWS\ie8
2009-12-13 21:53:42 ----D---- C:\WINDOWS\system32\fr-FR
2009-12-13 21:49:15 ----HDC---- C:\WINDOWS\$NtUninstallKB950974_0$
2009-12-13 21:48:47 ----HDC---- C:\WINDOWS\$NtUninstallKB971657_0$
2009-12-13 21:48:15 ----HDC---- C:\WINDOWS\$NtUninstallKB971557_0$
2009-12-13 21:47:46 ----HDC---- C:\WINDOWS\$NtUninstallKB960225_0$
2009-12-13 21:47:15 ----HDC---- C:\WINDOWS\$NtUninstallKB974112_0$
2009-12-13 21:46:05 ----HDC---- C:\WINDOWS\$NtUninstallKB956572_0$
2009-12-13 21:45:12 ----HDC---- C:\WINDOWS\$NtUninstallKB956844_0$
2009-12-13 21:44:40 ----HDC---- C:\WINDOWS\$NtUninstallKB961501_0$
2009-12-13 21:44:08 ----HDC---- C:\WINDOWS\$NtUninstallKB968816_WM9$
2009-12-13 21:43:32 ----HDC---- C:\WINDOWS\$NtUninstallKB971633_0$
2009-12-13 21:42:49 ----HDC---- C:\WINDOWS\$NtUninstallKB952069_WM9$
2009-12-13 21:42:14 ----HDC---- C:\WINDOWS\$NtUninstallKB973869_0$
2009-12-13 21:41:45 ----HDC---- C:\WINDOWS\$NtUninstallKB975025_0$
2009-12-13 21:41:26 ----HDC---- C:\WINDOWS\$NtUninstallKB973540_WM9L$
2009-12-13 21:40:51 ----HDC---- C:\WINDOWS\$NtUninstallKB952004_0$
2009-12-13 21:40:35 ----HDC---- C:\WINDOWS\$NtUninstallKB974571_0$
2009-12-13 21:40:05 ----HDC---- C:\WINDOWS\$NtUninstallKB976325$
2009-12-13 21:39:45 ----HDC---- C:\WINDOWS\$NtUninstallKB973507_0$
2009-12-13 21:39:32 ----HDC---- C:\WINDOWS\$NtUninstallKB973687_0$
2009-12-13 21:39:25 ----HDC---- C:\WINDOWS\$NtUninstallKB950762_0$
2009-12-13 21:39:17 ----HDC---- C:\WINDOWS\$NtUninstallKB957097_0$
2009-12-13 21:39:09 ----HDC---- C:\WINDOWS\$NtUninstallKB958687_0$
2009-12-13 21:39:04 ----HDC---- C:\WINDOWS\$NtUninstallKB952287_0$
2009-12-13 21:38:57 ----HDC---- C:\WINDOWS\$NtUninstallKB973354_0$
2009-12-13 21:38:49 ----HDC---- C:\WINDOWS\$NtUninstallKB973904$
2009-12-13 21:38:37 ----HDC---- C:\WINDOWS\$NtUninstallKB967715_0$
2009-12-13 21:38:29 ----HDC---- C:\WINDOWS\$NtUninstallKB951066_0$
2009-12-13 21:38:22 ----HDC---- C:\WINDOWS\$NtUninstallKB974392_0$
2009-12-13 21:38:15 ----HDC---- C:\WINDOWS\$NtUninstallKB951748_0$
2009-12-13 21:38:08 ----HDC---- C:\WINDOWS\$NtUninstallKB971961$
2009-12-13 21:38:02 ----HDC---- C:\WINDOWS\$NtUninstallKB970238_0$
2009-12-13 21:37:52 ----HDC---- C:\WINDOWS\$NtUninstallKB971486_0$
2009-12-13 21:37:42 ----D---- C:\WINDOWS\ServicePackFiles
2009-12-13 21:37:41 ----HDC---- C:\WINDOWS\$NtUninstallKB958470$
2009-12-13 21:37:32 ----HDC---- C:\WINDOWS\$NtUninstallKB960803_0$
2009-12-13 21:37:24 ----HDC---- C:\WINDOWS\$NtUninstallKB973815_0$
2009-12-13 21:37:18 ----HDC---- C:\WINDOWS\$NtUninstallKB973525$
2009-12-13 21:36:34 ----A---- C:\WINDOWS\system32\MRT.exe
2009-12-13 21:36:11 ----HDC---- C:\WINDOWS\$NtUninstallKB958644_0$
2009-12-13 21:36:02 ----HDC---- C:\WINDOWS\$NtUninstallKB955069_0$
2009-12-13 21:35:55 ----HDC---- C:\WINDOWS\$NtUninstallKB956802_0$
2009-12-13 21:35:39 ----HDC---- C:\WINDOWS\$NtUninstallKB944338-v2$
2009-12-13 21:35:18 ----HDC---- C:\WINDOWS\$NtUninstallKB923561_0$
2009-12-13 21:35:11 ----D---- C:\Documents and Settings\moloch\Application Data\Malwarebytes
2009-12-13 21:35:04 ----HDC---- C:\WINDOWS\$NtUninstallKB975467_0$
2009-12-13 21:35:00 ----D---- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2009-12-13 21:34:52 ----HDC---- C:\WINDOWS\$NtUninstallKB968389_0$
2009-12-13 21:34:52 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2009-12-13 21:34:17 ----HDC---- C:\WINDOWS\$NtUninstallKB969947_0$
2009-12-13 21:32:34 ----D---- C:\Documents and Settings\moloch\Application Data\PCToolsFirewallPlus
2009-12-13 21:24:56 ----AD---- C:\Documents and Settings\All Users\Application Data\TEMP
2009-12-13 21:24:03 ----D---- C:\Program Files\Fichiers communs\PC Tools
2009-12-13 21:22:17 ----D---- C:\Program Files\PC Tools Firewall Plus
2009-12-13 21:15:47 ----D---- C:\Documents and Settings\moloch\Application Data\Adobe
2009-12-13 21:10:53 ----A---- C:\WINDOWS\MAXLINK.INI
2009-12-13 21:10:52 ----D---- C:\Documents and Settings\All Users\Application Data\InstallShield
2009-12-13 21:10:51 ----D---- C:\Documents and Settings\moloch\Application Data\ScanSoft
2009-12-13 21:10:46 ----D---- C:\Program Files\Fichiers communs\ScanSoft Shared
2009-12-13 21:10:46 ----D---- C:\Documents and Settings\All Users\Application Data\ScanSoft
2009-12-13 21:10:03 ----D---- C:\Program Files\ScanSoft
2009-12-13 21:08:53 ----A---- C:\WINDOWS\PCDLIB32.DLL
2009-12-13 21:08:51 ----D---- C:\Program Files\ArcSoft
2009-12-13 21:05:30 ----D---- C:\Program Files\Fichiers communs\CANON
2009-12-13 21:03:31 ----A---- C:\WINDOWS\IsUn040c.exe
2009-12-13 21:03:05 ----HD---- C:\Documents and Settings\All Users\Application Data\CanonBJ
2009-12-13 21:02:58 ----A---- C:\WINDOWS\system32\CNMLM87.DLL
2009-12-13 21:02:54 ----HD---- C:\WINDOWS\system32\CanonIJ Uninstaller Information
2009-12-13 21:02:46 ----A---- C:\WINDOWS\system32\cnco600.dll
2009-12-13 21:02:45 ----A---- C:\WINDOWS\system32\CNCL600.DLL
2009-12-13 21:02:45 ----A---- C:\WINDOWS\system32\CNCI600.DLL
2009-12-13 21:02:45 ----A---- C:\WINDOWS\system32\CNCC600.DLL
2009-12-13 21:02:25 ----HD---- C:\Program Files\CanonBJ
2009-12-13 21:01:43 ----D---- C:\Documents and Settings\moloch\Application Data\Mozilla
2009-12-13 21:01:35 ----D---- C:\Program Files\Mozilla Firefox
2009-12-13 20:59:46 ----D---- C:\Program Files\Canon
2009-12-13 19:18:39 ----N---- C:\WINDOWS\system32\tzchange.exe
2009-12-13 19:14:51 ----N---- C:\WINDOWS\system32\MpSigStub.exe
2009-12-13 19:13:24 ----D---- C:\Program Files\Microsoft Security Essentials
2009-12-13 19:10:55 ----HDC---- C:\WINDOWS\$MSI31Uninstall_KB893803v2$
2009-12-13 19:10:45 ----D---- C:\WINDOWS\system32\PreInstall
2009-12-13 19:10:44 ----A---- C:\WINDOWS\system32\spupdsvc.exe
2009-12-13 19:10:43 ----HDC---- C:\WINDOWS\$NtUninstallKB898461$
2009-12-13 19:07:26 ----D---- C:\WINDOWS\system32\SoftwareDistribution
2009-12-13 19:03:59 ----D---- C:\WINDOWS\SxsCaPendDel
2009-12-13 19:03:40 ----HDC---- C:\WINDOWS\$NtUninstallKB914882$
2009-12-13 19:03:25 ----D---- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
2009-12-13 19:03:10 ----A---- C:\WINDOWS\system32\wpa.bak
2009-12-13 18:58:48 ----D---- C:\Documents and Settings\moloch\Application Data\Macromedia
2009-12-13 18:13:18 ----D---- C:\Program Files\Securitoo
2009-12-13 18:12:53 ----A---- C:\WINDOWS\system32\Autodial2000.dll
2009-12-13 18:12:52 ----A---- C:\WINDOWS\system32\w32n50.dll
2009-12-13 18:12:45 ----D---- C:\Program Files\OrangeHSS
2009-12-13 18:12:26 ----D---- C:\Program Files\Fichiers communs\France Telecom
2009-12-13 18:12:26 ----A---- C:\WINDOWS\system32\MSVCR71.dll
2009-12-13 18:12:26 ----A---- C:\WINDOWS\system32\msvcp71.dll
2009-12-13 18:12:26 ----A---- C:\WINDOWS\system32\MFC71.dll
2009-12-13 18:12:26 ----A---- C:\WINDOWS\system32\atl71.dll
2009-12-13 18:07:54 ----A---- C:\WINDOWS\system32\h323log.txt
2009-12-13 18:00:38 ----D---- C:\WINDOWS\nview
2009-12-13 18:00:38 ----A---- C:\WINDOWS\system32\nvudisp.exe
2009-12-13 17:58:52 ----A---- C:\WINDOWS\ALCFDRTM.EXE
2009-12-13 17:58:49 ----D---- C:\WINDOWS\system32\Lang
2009-12-13 17:57:58 ----A---- C:\WINDOWS\system32\hidserv.dll
2009-12-13 17:57:08 ----D---- C:\Program Files\Realtek Sound Manager
2009-12-13 17:57:06 ----N---- C:\WINDOWS\avrack.ini
2009-12-13 17:57:06 ----D---- C:\Program Files\AvRack
2009-12-13 17:57:02 ----N---- C:\WINDOWS\system32\ChCfg.exe
2009-12-13 17:57:02 ----A---- C:\WINDOWS\system32\RTLCPAPI.dll
2009-12-13 17:57:02 ----A---- C:\WINDOWS\SOUNDMAN.EXE
2009-12-13 17:56:59 ----A---- C:\WINDOWS\system32\RTLCPL.EXE
2009-12-13 17:56:47 ----N---- C:\WINDOWS\alcupd.exe
2009-12-13 17:56:46 ----N---- C:\WINDOWS\alcrmv.exe
2009-12-13 17:56:45 ----HD---- C:\Program Files\InstallShield Installation Information
2009-12-13 17:56:42 ----A---- C:\WINDOWS\system32\ksuser.dll
2009-12-13 17:56:17 ----A---- C:\WINDOWS\system32\usbui.dll
2009-12-13 17:55:10 ----SHD---- C:\WINDOWS\Installer
2009-12-13 17:55:10 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2009-12-13 17:55:09 ----D---- C:\Program Files\Fichiers communs\ODBC
2009-12-13 17:55:09 ----A---- C:\WINDOWS\ODBCINST.INI
2009-12-13 17:55:06 ----RD---- C:\Program Files
2009-12-13 17:55:06 ----D---- C:\Program Files\Fichiers communs\SpeechEngines
2009-12-13 17:55:06 ----D---- C:\Program Files\Fichiers communs\Microsoft Shared
2009-12-13 17:55:06 ----D---- C:\Program Files\Fichiers communs
2009-12-13 17:55:03 ----RA---- C:\WINDOWS\system32\kbdtuq.dll
2009-12-13 17:55:03 ----RA---- C:\WINDOWS\system32\kbdazel.dll
2009-12-13 17:55:02 ----RA---- C:\WINDOWS\system32\kbdtuf.dll
2009-12-13 17:55:01 ----RA---- C:\WINDOWS\system32\kbdycc.dll
2009-12-13 17:55:01 ----RA---- C:\WINDOWS\system32\kbduzb.dll
2009-12-13 17:55:01 ----RA---- C:\WINDOWS\system32\kbdur.dll
2009-12-13 17:55:01 ----RA---- C:\WINDOWS\system32\kbdtat.dll
2009-12-13 17:55:01 ----RA---- C:\WINDOWS\system32\kbdru1.dll
2009-12-13 17:55:01 ----RA---- C:\WINDOWS\system32\kbdru.dll
2009-12-13 17:55:01 ----RA---- C:\WINDOWS\system32\kbdmon.dll
2009-12-13 17:55:01 ----RA---- C:\WINDOWS\system32\kbdkyr.dll
2009-12-13 17:55:01 ----RA---- C:\WINDOWS\system32\kbdkaz.dll
2009-12-13 17:55:01 ----RA---- C:\WINDOWS\system32\kbdbu.dll
2009-12-13 17:55:01 ----RA---- C:\WINDOWS\system32\kbdblr.dll
2009-12-13 17:55:01 ----RA---- C:\WINDOWS\system32\kbdaze.dll
2009-12-13 17:54:59 ----RA---- C:\WINDOWS\system32\kbdhept.dll
2009-12-13 17:54:59 ----RA---- C:\WINDOWS\system32\kbdhela3.dll
2009-12-13 17:54:59 ----RA---- C:\WINDOWS\system32\kbdhela2.dll
2009-12-13 17:54:59 ----RA---- C:\WINDOWS\system32\kbdhe319.dll
2009-12-13 17:54:59 ----RA---- C:\WINDOWS\system32\kbdhe220.dll
2009-12-13 17:54:59 ----RA---- C:\WINDOWS\system32\kbdhe.dll
2009-12-13 17:54:59 ----RA---- C:\WINDOWS\system32\kbdgkl.dll
2009-12-13 17:54:58 ----RA---- C:\WINDOWS\system32\kbdlv1.dll
2009-12-13 17:54:58 ----RA---- C:\WINDOWS\system32\kbdlv.dll
2009-12-13 17:54:58 ----RA---- C:\WINDOWS\system32\kbdlt1.dll
2009-12-13 17:54:58 ----RA---- C:\WINDOWS\system32\kbdlt.dll
2009-12-13 17:54:58 ----RA---- C:\WINDOWS\system32\kbdest.dll
2009-12-13 17:54:57 ----RA---- C:\WINDOWS\system32\kbdycl.dll
2009-12-13 17:54:57 ----RA---- C:\WINDOWS\system32\kbdsl1.dll
2009-12-13 17:54:57 ----RA---- C:\WINDOWS\system32\kbdsl.dll
2009-12-13 17:54:57 ----RA---- C:\WINDOWS\system32\kbdro.dll
2009-12-13 17:54:57 ----RA---- C:\WINDOWS\system32\kbdpl1.dll
2009-12-13 17:54:57 ----RA---- C:\WINDOWS\system32\kbdpl.dll
2009-12-13 17:54:57 ----RA---- C:\WINDOWS\system32\kbdhu1.dll
2009-12-13 17:54:57 ----RA---- C:\WINDOWS\system32\kbdhu.dll
2009-12-13 17:54:57 ----RA---- C:\WINDOWS\system32\kbdcz2.dll
2009-12-13 17:54:57 ----RA---- C:\WINDOWS\system32\kbdcz1.dll
2009-12-13 17:54:57 ----RA---- C:\WINDOWS\system32\kbdcz.dll
2009-12-13 17:54:57 ----RA---- C:\WINDOWS\system32\kbdcr.dll
2009-12-13 17:54:57 ----RA---- C:\WINDOWS\system32\KBDAL.DLL
2009-12-13 17:54:55 ----A---- C:\WINDOWS\system32\irclass.dll
2009-12-13 17:54:54 ----A---- C:\WINDOWS\system32\spxcoins.dll
2009-12-13 17:54:54 ----A---- C:\WINDOWS\system32\EqnClass.Dll
2009-12-13 17:54:54 ----A---- C:\WINDOWS\system32\dgsetup.dll
2009-12-13 17:54:54 ----A---- C:\WINDOWS\system32\dgrpsetu.dll
2009-12-13 17:54:53 ----A---- C:\WINDOWS\TASKMAN.EXE
2009-12-13 17:54:52 ----N---- C:\WINDOWS\system32\CONFIG.TMP
2009-12-13 17:54:52 ----A---- C:\WINDOWS\system32\batt.dll
2009-12-13 17:54:52 ----A---- C:\WINDOWS\notepad.exe
2009-12-13 17:54:51 ----A---- C:\WINDOWS\system32\storprop.dll
2009-12-13 17:54:44 ----ASH---- C:\Documents and Settings\All Users\Application Data\desktop.ini
2009-12-13 17:54:43 ----RA---- C:\WINDOWS\SET25.tmp
2009-12-13 17:54:41 ----RA---- C:\WINDOWS\SET8.tmp
2009-12-13 17:54:39 ----RA---- C:\WINDOWS\SET4.tmp
2009-12-13 17:54:38 ----RA---- C:\WINDOWS\SET3.tmp
2009-12-13 17:54:32 ----D---- C:\WINDOWS\system32\CatRoot2
2009-12-13 17:54:32 ----D---- C:\WINDOWS\system32\CatRoot
2009-12-13 17:54:26 ----SD---- C:\Documents and Settings\All Users\Application Data\Microsoft
2009-12-13 17:53:57 ----D---- C:\Documents and Settings
2009-12-13 17:52:58 ----SH---- C:\boot.ini
2009-12-13 17:49:39 ----A---- C:\WINDOWS\system32\CapabilityTable.exe
2009-12-13 17:49:28 ----RA---- C:\WINDOWS\system32\idecoi.dll
2009-12-13 17:48:17 ----RSHDC---- C:\WINDOWS\system32\dllcache
2009-12-13 17:48:17 ----RSD---- C:\WINDOWS\Fonts
2009-12-13 17:48:17 ----RD---- C:\WINDOWS\Web
2009-12-13 17:48:17 ----HD---- C:\WINDOWS\inf
2009-12-13 17:48:17 ----D---- C:\WINDOWS\WinSxS
2009-12-13 17:48:17 ----D---- C:\WINDOWS\twain_32
2009-12-13 17:48:17 ----D---- C:\WINDOWS\Temp
2009-12-13 17:48:17 ----D---- C:\WINDOWS\system32\wins
2009-12-13 17:48:17 ----D---- C:\WINDOWS\system32\wbem
2009-12-13 17:48:17 ----D---- C:\WINDOWS\system32\usmt
2009-12-13 17:48:17 ----D---- C:\WINDOWS\system32\spool
2009-12-13 17:48:17 ----D---- C:\WINDOWS\system32\ShellExt
2009-12-13 17:48:17 ----D---- C:\WINDOWS\system32\Setup
2009-12-13 17:48:17 ----D---- C:\WINDOWS\system32\ras
2009-12-13 17:48:17 ----D---- C:\WINDOWS\system32\oobe
2009-12-13 17:48:17 ----D---- C:\WINDOWS\system32\npp
2009-12-13 17:48:17 ----D---- C:\WINDOWS\system32\mui
2009-12-13 17:48:17 ----D---- C:\WINDOWS\system32\inetsrv
2009-12-13 17:48:17 ----D---- C:\WINDOWS\system32\IME
2009-12-13 17:48:17 ----D---- C:\WINDOWS\system32\icsxml
2009-12-13 17:48:17 ----D---- C:\WINDOWS\system32\ias
2009-12-13 17:48:17 ----D---- C:\WINDOWS\system32\export
2009-12-13 17:48:17 ----D---- C:\WINDOWS\system32\drivers
2009-12-13 17:48:17 ----D---- C:\WINDOWS\system32\dhcp
2009-12-13 17:48:17 ----D---- C:\WINDOWS\system32\config
2009-12-13 17:48:17 ----D---- C:\WINDOWS\system32\3com_dmi
2009-12-13 17:48:17 ----D---- C:\WINDOWS\system32\3076
2009-12-13 17:48:17 ----D---- C:\WINDOWS\system32\2052
2009-12-13 17:48:17 ----D---- C:\WINDOWS\system32\1054
2009-12-13 17:48:17 ----D---- C:\WINDOWS\system32\1042
2009-12-13 17:48:17 ----D---- C:\WINDOWS\system32\1041
2009-12-13 17:48:17 ----D---- C:\WINDOWS\system32\1037
2009-12-13 17:48:17 ----D---- C:\WINDOWS\system32\1036
2009-12-13 17:48:17 ----D---- C:\WINDOWS\system32\1033
2009-12-13 17:48:17 ----D---- C:\WINDOWS\system32\1031
2009-12-13 17:48:17 ----D---- C:\WINDOWS\system32\1028
2009-12-13 17:48:17 ----D---- C:\WINDOWS\system32\1025
2009-12-13 17:48:17 ----D---- C:\WINDOWS\system32
2009-12-13 17:48:17 ----D---- C:\WINDOWS\system
2009-12-13 17:48:17 ----D---- C:\WINDOWS\security
2009-12-13 17:48:17 ----D---- C:\WINDOWS\Resources
2009-12-13 17:48:17 ----D---- C:\WINDOWS\repair
2009-12-13 17:48:17 ----D---- C:\WINDOWS\Provisioning
2009-12-13 17:48:17 ----D---- C:\WINDOWS\PeerNet
2009-12-13 17:48:17 ----D---- C:\WINDOWS\pchealth
2009-12-13 17:48:17 ----D---- C:\WINDOWS\mui
2009-12-13 17:48:17 ----D---- C:\WINDOWS\msapps
2009-12-13 17:48:17 ----D---- C:\WINDOWS\msagent
2009-12-13 17:48:17 ----D---- C:\WINDOWS\Media
2009-12-13 17:48:17 ----D---- C:\WINDOWS\java
2009-12-13 17:48:17 ----D---- C:\WINDOWS\ime
2009-12-13 17:48:17 ----D---- C:\WINDOWS\Help
2009-12-13 17:48:17 ----D---- C:\WINDOWS\Driver Cache
2009-12-13 17:48:17 ----D---- C:\WINDOWS\Debug
2009-12-13 17:48:17 ----D---- C:\WINDOWS\Cursors
2009-12-13 17:48:17 ----D---- C:\WINDOWS\Connection Wizard
2009-12-13 17:48:17 ----D---- C:\WINDOWS\Config
2009-12-13 17:48:17 ----D---- C:\WINDOWS\AppPatch
2009-12-13 17:48:17 ----D---- C:\WINDOWS\addins
2009-12-13 17:48:17 ----D---- C:\WINDOWS
2009-12-13 17:47:44 ----RA---- C:\WINDOWS\system32\fdco1ins.dll
2009-12-13 17:47:44 ----RA---- C:\WINDOWS\system32\fdco1.dll
2009-12-13 17:47:42 ----A---- C:\WINDOWS\system32\nvunrm.exe
2009-12-13 17:47:41 ----RA---- C:\WINDOWS\system32\nvconrm.dll
2009-12-13 17:47:41 ----RA---- C:\WINDOWS\system32\bdco1ins.dll
2009-12-13 17:47:41 ----RA---- C:\WINDOWS\system32\bdco1.dll
2009-12-13 17:47:39 ----A---- C:\WINDOWS\system32\nvusmb.exe
2009-12-13 17:47:39 ----A---- C:\WINDOWS\system32\NVUNINST.EXE
2009-12-13 17:47:29 ----D---- C:\WINDOWS\system32\ReinstallBackups
2009-12-13 17:47:11 ----D---- C:\Program Files\Fichiers communs\InstallShield
2009-12-13 17:47:07 ----RA---- C:\WINDOWS\system32\raidmgmt.ini
2009-12-13 17:46:41 ----A---- C:\WINDOWS\Ascd_tmp.ini
2009-12-13 17:35:16 ----D---- C:\Documents and Settings\moloch\Application Data\Identities
2009-12-13 17:35:15 ----HD---- C:\Program Files\Uninstall Information
2009-12-13 17:35:11 ----ASH---- C:\Documents and Settings\moloch\Application Data\desktop.ini
2009-12-13 17:35:10 ----SD---- C:\Documents and Settings\moloch\Application Data\Microsoft
2009-12-13 17:17:14 ----D---- C:\WINDOWS\SoftwareDistribution
2009-12-13 17:17:12 ----SD---- C:\WINDOWS\system32\Microsoft
2009-12-13 17:17:12 ----A---- C:\WINDOWS\SchedLgU.Txt
2009-12-13 17:13:52 ----D---- C:\WINDOWS\system32\xircom
2009-12-13 17:13:52 ----D---- C:\Program Files\xerox
2009-12-13 17:13:52 ----D---- C:\Program Files\microsoft frontpage
2009-12-13 17:13:49 ----N---- C:\WINDOWS\system32\spmsg.dll
2009-12-13 17:13:48 ----HD---- C:\WINDOWS\$hf_mig$
2009-12-13 17:13:33 ----A---- C:\WINDOWS\control.ini
2009-12-13 17:13:33 ----A---- C:\AUTOEXEC.BAT
2009-12-13 17:13:14 ----A---- C:\WINDOWS\system32\mapi32.dll
2009-12-13 17:12:29 ----RD---- C:\WINDOWS\Offline Web Pages
2009-12-13 17:12:28 ----SD---- C:\WINDOWS\Downloaded Program Files
2009-12-13 17:12:28 ----RAH---- C:\WINDOWS\system32\logonui.exe.manifest
2009-12-13 17:12:22 ----RAH---- C:\WINDOWS\system32\cdplayer.exe.manifest
2009-12-13 17:12:17 ----HD---- C:\Program Files\WindowsUpdate
2009-12-13 17:12:13 ----D---- C:\Program Files\Services en ligne
2009-12-13 17:11:59 ----D---- C:\WINDOWS\system32\DirectX
2009-12-13 17:11:45 ----A---- C:\WINDOWS\system32\atrace.dll
2009-12-13 17:11:43 ----A---- C:\WINDOWS\system32\desktop.ini
2009-12-13 17:11:43 ----A---- C:\WINDOWS\desktop.ini
2009-12-13 17:11:38 ----A---- C:\WINDOWS\system32\nmevtmsg.dll
2009-12-13 17:11:37 ----A---- C:\WINDOWS\system32\acctres.dll
2009-12-13 17:11:36 ----D---- C:\Program Files\Fichiers communs\Services
2009-12-13 17:11:34 ----SD---- C:\WINDOWS\Tasks
2009-12-13 17:11:34 ----D---- C:\Program Files\Fichiers communs\MSSoap
2009-12-13 17:11:34 ----A---- C:\WINDOWS\system32\icfgnt5.dll
2009-12-13 17:11:31 ----D---- C:\WINDOWS\srchasst
2009-12-13 17:11:30 ----D---- C:\WINDOWS\system32\Macromed
2009-12-13 17:11:28 ----A---- C:\WINDOWS\system32\wuweb.dll
2009-12-13 17:11:28 ----A---- C:\WINDOWS\system32\wups.dll
2009-12-13 17:11:28 ----A---- C:\WINDOWS\system32\wucltui.dll
2009-12-13 17:11:28 ----A---- C:\WINDOWS\system32\wuauserv.dll
2009-12-13 17:11:28 ----A---- C:\WINDOWS\system32\wuaueng1.dll
2009-12-13 17:11:28 ----A---- C:\WINDOWS\system32\wuaueng.dll
2009-12-13 17:11:28 ----A---- C:\WINDOWS\system32\wuauclt1.exe
2009-12-13 17:11:28 ----A---- C:\WINDOWS\system32\wuauclt.exe
2009-12-13 17:11:27 ----A---- C:\WINDOWS\system32\wuapi.dll
2009-12-13 17:11:27 ----A---- C:\WINDOWS\system32\qmgrprxy.dll
2009-12-13 17:11:27 ----A---- C:\WINDOWS\system32\bitsprx3.dll
2009-12-13 17:11:27 ----A---- C:\WINDOWS\system32\bitsprx2.dll
2009-12-13 17:11:26 ----A---- C:\WINDOWS\system32\qmgr.dll
2009-12-13 17:11:19 ----D---- C:\Program Files\Movie Maker
2009-12-13 17:11:13 ----A---- C:\WINDOWS\system32\safrslv.dll
2009-12-13 17:11:13 ----A---- C:\WINDOWS\system32\safrdm.dll
2009-12-13 17:11:13 ----A---- C:\WINDOWS\system32\safrcdlg.dll
2009-12-13 17:11:13 ----A---- C:\WINDOWS\system32\racpldlg.dll
2009-12-13 17:11:07 ----A---- C:\WINDOWS\system32\fltmc.exe
2009-12-13 17:11:07 ----A---- C:\WINDOWS\system32\fltlib.dll
2009-12-13 17:11:06 ----D---- C:\WINDOWS\system32\Restore
2009-12-13 17:11:06 ----A---- C:\WINDOWS\system32\srsvc.dll
2009-12-13 17:11:06 ----A---- C:\WINDOWS\system32\srrstr.dll
2009-12-13 17:11:05 ----A---- C:\WINDOWS\system32\srclient.dll
2009-12-13 17:11:04 ----A---- C:\WINDOWS\system32\nmmkcert.dll
2009-12-13 17:11:04 ----A---- C:\WINDOWS\system32\mnmsrvc.exe
2009-12-13 17:11:04 ----A---- C:\WINDOWS\system32\mnmdd.dll
2009-12-13 17:11:04 ----A---- C:\WINDOWS\system32\isrdbg32.dll
2009-12-13 17:11:04 ----A---- C:\WINDOWS\system32\ils.dll
2009-12-13 17:11:03 ----A---- C:\WINDOWS\system32\msconf.dll
2009-12-13 17:10:59 ----D---- C:\Program Files\NetMeeting
2009-12-13 17:10:59 ----A---- C:\WINDOWS\system32\msoert2.dll
2009-12-13 17:10:59 ----A---- C:\WINDOWS\system32\msoeacct.dll
2009-12-13 17:10:57 ----A---- C:\WINDOWS\system32\inetres.dll
2009-12-13 17:10:56 ----A---- C:\WINDOWS\system32\inetcomm.dll
2009-12-13 17:10:52 ----D---- C:\Program Files\Outlook Express
2009-12-13 17:10:52 ----A---- C:\WINDOWS\system32\schedsvc.dll
2009-12-13 17:10:52 ----A---- C:\WINDOWS\system32\mstinit.exe
2009-12-13 17:10:52 ----A---- C:\WINDOWS\system32\mstask.dll
2009-12-13 17:10:51 ----A---- C:\WINDOWS\system32\isign32.dll
2009-12-13 17:10:51 ----A---- C:\WINDOWS\system32\inetcfg.dll
2009-12-13 17:10:51 ----A---- C:\WINDOWS\system32\icwphbk.dll
2009-12-13 17:10:51 ----A---- C:\WINDOWS\system32\icwdial.dll
2009-12-13 17:10:41 ----D---- C:\Program Files\Fichiers communs\System
2009-12-13 17:10:40 ----D---- C:\Program Files\Internet Explorer
2009-12-13 17:10:28 ----D---- C:\Program Files\ComPlus Applications
2009-12-13 17:10:25 ----A---- C:\WINDOWS\vbaddin.ini
2009-12-13 17:10:25 ----A---- C:\WINDOWS\vb.ini
2009-12-13 17:10:20 ----D---- C:\WINDOWS\Registration
2009-12-13 17:09:52 ----D---- C:\Program Files\Windows Media Player
2009-12-13 17:09:52 ----D---- C:\Program Files\Online Services
2009-12-13 17:09:48 ----D---- C:\Program Files\Messenger
2009-12-13 17:09:45 ----D---- C:\Program Files\MSN Gaming Zone
2009-12-13 17:09:45 ----A---- C:\WINDOWS\system32\write.exe
2009-12-13 17:09:39 ----A---- C:\WINDOWS\system32\sndvol32.exe
2009-12-13 17:09:39 ----A---- C:\WINDOWS\system32\hticons.dll
2009-12-13 17:09:38 ----A---- C:\WINDOWS\system32\winchat.exe
2009-12-13 17:09:38 ----A---- C:\WINDOWS\system32\avwav.dll
2009-12-13 17:09:38 ----A---- C:\WINDOWS\system32\avtapi.dll
2009-12-13 17:09:38 ----A---- C:\WINDOWS\system32\avmeter.dll
2009-12-13 17:09:33 ----A---- C:\WINDOWS\system32\getuname.dll
2009-12-13 17:09:33 ----A---- C:\WINDOWS\system32\charmap.exe
2009-12-13 17:09:33 ----A---- C:\WINDOWS\system32\calc.exe
2009-12-13 17:09:32 ----A---- C:\WINDOWS\system32\winmine.exe
2009-12-13 17:09:32 ----A---- C:\WINDOWS\system32\usrlogon.cmd
2009-12-13 17:09:32 ----A---- C:\WINDOWS\system32\tsshutdn.exe
2009-12-13 17:09:32 ----A---- C:\WINDOWS\system32\tslabels.ini
2009-12-13 17:09:32 ----A---- C:\WINDOWS\system32\tskill.exe
2009-12-13 17:09:32 ----A---- C:\WINDOWS\system32\tsdiscon.exe
2009-12-13 17:09:32 ----A---- C:\WINDOWS\system32\tscon.exe
2009-12-13 17:09:32 ----A---- C:\WINDOWS\system32\sol.exe
2009-12-13 17:09:32 ----A---- C:\WINDOWS\system32\reset.exe
2009-12-13 17:09:32 ----A---- C:\WINDOWS\system32\mshearts.exe
2009-12-13 17:09:32 ----A---- C:\WINDOWS\system32\freecell.exe
2009-12-13 17:09:31 ----A---- C:\WINDOWS\system32\shadow.exe
2009-12-13 17:09:31 ----A---- C:\WINDOWS\system32\rwinsta.exe
2009-12-13 17:09:31 ----A---- C:\WINDOWS\system32\regini.exe
2009-12-13 17:09:31 ----A---- C:\WINDOWS\system32\rdpcfgex.dll
2009-12-13 17:09:31 ----A---- C:\WINDOWS\system32\qwinsta.exe
2009-12-13 17:09:31 ----A---- C:\WINDOWS\system32\qappsrv.exe
2009-12-13 17:09:31 ----A---- C:\WINDOWS\system32\msg.exe
2009-12-13 17:09:31 ----A---- C:\WINDOWS\system32\msdtcprf.ini
2009-12-13 17:09:31 ----A---- C:\WINDOWS\system32\logoff.exe
2009-12-13 17:09:31 ----A---- C:\WINDOWS\system32\cdmodem.dll
2009-12-13 17:09:30 ----A---- C:\WINDOWS\system32\stclient.dll
2009-12-13 17:09:30 ----A---- C:\WINDOWS\system32\mtxlegih.dll
2009-12-13 17:09:30 ----A---- C:\WINDOWS\system32\mtxex.dll
2009-12-13 17:09:30 ----A---- C:\WINDOWS\system32\mtxdm.dll
2009-12-13 17:09:30 ----A---- C:\WINDOWS\system32\dcomcnfg.exe
2009-12-13 17:09:30 ----A---- C:\WINDOWS\system32\comrepl.dll
2009-12-13 17:09:30 ----A---- C:\WINDOWS\system32\comaddin.dll
2009-12-13 17:09:29 ----A---- C:\WINDOWS\system32\comsnap.dll
2009-12-13 17:09:26 ----A---- C:\WINDOWS\system32\wmimgmt.msc
2009-12-13 17:09:20 ----D---- C:\Program Files\MSN
2009-12-13 17:09:19 ----A---- C:\WINDOWS\system32\sndrec32.exe
2009-12-13 17:09:19 ----A---- C:\WINDOWS\system32\mplay32.exe
2009-12-13 17:09:19 ----A---- C:\WINDOWS\system32\hypertrm.dll
2009-12-13 17:09:19 ----A---- C:\WINDOWS\system32\accwiz.exe
2009-12-13 17:09:18 ----D---- C:\Program Files\Windows NT
2009-12-13 17:09:18 ----A---- C:\WINDOWS\system32\tscfgwmi.dll
2009-12-13 17:09:18 ----A---- C:\WINDOWS\system32\spider.exe
2009-12-13 17:09:18 ----A---- C:\WINDOWS\system32\mspaint.exe
2009-12-13 17:09:18 ----A---- C:\WINDOWS\system32\clipbrd.exe
2009-12-13 17:09:17 ----A---- C:\WINDOWS\system32\tscupgrd.exe
2009-12-13 17:09:17 ----A---- C:\WINDOWS\system32\termsrv.dll
2009-12-13 17:09:17 ----A---- C:\WINDOWS\system32\sessmgr.exe
2009-12-13 17:09:17 ----A---- C:\WINDOWS\system32\remotepg.dll
2009-12-13 17:09:17 ----A---- C:\WINDOWS\system32\rdshost.exe
2009-12-13 17:09:17 ----A---- C:\WINDOWS\system32\rdsaddin.exe
2009-12-13 17:09:17 ----A---- C:\WINDOWS\system32\rdpwsx.dll
2009-12-13 17:09:17 ----A---- C:\WINDOWS\system32\rdchost.dll
2009-12-13 17:09:17 ----A---- C:\WINDOWS\system32\mstscax.dll
2009-12-13 17:09:17 ----A---- C:\WINDOWS\system32\mstsc.exe
2009-12-13 17:09:16 ----D---- C:\WINDOWS\system32\MsDtc
2009-12-13 17:09:16 ----A---- C:\WINDOWS\system32\rdpsnd.dll
2009-12-13 17:09:16 ----A---- C:\WINDOWS\system32\rdpclip.exe
2009-12-13 17:09:16 ----A---- C:\WINDOWS\system32\qprocess.exe
2009-12-13 17:09:16 ----A---- C:\WINDOWS\system32\mtxoci.dll
2009-12-13 17:09:16 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
2009-12-13 17:09:16 ----A---- C:\WINDOWS\system32\icaapi.dll
2009-12-13 17:09:16 ----A---- C:\WINDOWS\system32\cfgbkend.dll
2009-12-13 17:09:14 ----A---- C:\WINDOWS\system32\msdtctm.dll
2009-12-13 17:09:14 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2009-12-13 17:09:13 ----A---- C:\WINDOWS\system32\xolehlp.dll
2009-12-13 17:09:13 ----A---- C:\WINDOWS\system32\msdtclog.dll
2009-12-13 17:09:13 ----A---- C:\WINDOWS\system32\msdtc.exe
2009-12-13 17:09:11 ----D---- C:\WINDOWS\system32\Com
2009-12-13 17:09:11 ----A---- C:\WINDOWS\system32\colbact.dll
2009-12-13 17:09:11 ----A---- C:\WINDOWS\system32\clbcatex.dll
2009-12-13 17:09:11 ----A---- C:\WINDOWS\system32\catsrvps.dll
2009-12-13 17:09:10 ----A---- C:\WINDOWS\system32\catsrvut.dll
2009-12-13 17:09:10 ----A---- C:\WINDOWS\system32\catsrv.dll
2009-12-13 17:09:09 ----A---- C:\WINDOWS\system32\comsvcs.dll
2009-12-13 17:09:08 ----A---- C:\WINDOWS\system32\comuid.dll
2009-12-13 17:09:07 ----A---- C:\WINDOWS\system32\clbcatq.dll
2009-12-13 17:08:59 ----A---- C:\WINDOWS\system32\servdeps.dll
2009-12-13 17:08:59 ----A---- C:\WINDOWS\system32\mmfutil.dll
2009-12-13 17:08:59 ----A---- C:\WINDOWS\system32\licwmi.dll
2009-12-13 17:08:59 ----A---- C:\WINDOWS\system32\cmprops.dll
2009-11-29 02:56:02 ----A---- C:\022.part.met.bak
2009-11-29 02:56:01 ----A---- C:\019.part.met.bak
2009-11-29 02:56:00 ----A---- C:\017.part.met.bak
======List of files/folders modified in the last 1 months======
2009-12-17 13:52:06 ----SHD---- C:\RECYCLER
2009-12-13 17:55:04 ----A---- C:\WINDOWS\system.ini
2009-12-13 17:17:13 ----SHD---- C:\System Volume Information
2009-12-13 17:13:33 ----A---- C:\WINDOWS\win.ini
2009-11-24 16:58:09 ----D---- C:\104K7300
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 kbdhid;Pilote HID de clavier; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14720]
R1 MpFilter;Microsoft Malware Protection Driver; C:\WINDOWS\system32\DRIVERS\MpFilter.sys [2009-06-18 142832]
R1 pctgntdi;pctgntdi; \??\C:\WINDOWS\system32\drivers\pctgntdi.sys []
R2 PCTAppEvent;PCTAppEvent Driver; \??\C:\WINDOWS\system32\drivers\PCTAppEvent.sys []
R3 ALCXWDM;Service for Realtek AC97 Audio (WDM); C:\WINDOWS\system32\drivers\ALCXWDM.SYS [2004-11-17 2297664]
R3 hidusb;Pilote de classe HID Microsoft; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 mouhid;Pilote HID de souris; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2006-03-02 12288]
R3 ms_mpu401;Pilote UART MIDI MPU-401 Microsoft; C:\WINDOWS\system32\drivers\msmpu401.sys [2001-08-17 2944]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\WINDOWS\system32\DRIVERS\ASACPI.sys [2004-08-13 5810]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2006-02-13 3642784]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\WINDOWS\system32\DRIVERS\NVENETFD.sys [2005-04-05 33536]
R3 nvnetbus;NVIDIA Network Bus Enumerator; C:\WINDOWS\system32\DRIVERS\nvnetbus.sys [2005-04-05 12928]
R3 PCTFW-DNS;PCTools Firewall - DNS driver; \??\C:\WINDOWS\system32\drivers\pctNdis-DNS.sys []
R3 PCTFW-PacketFilter;PCTools Firewall - Packet filter driver; \??\C:\WINDOWS\system32\drivers\pctNdis-PacketFilter.sys []
R3 pctNDIS;PC Tools Driver; C:\WINDOWS\system32\DRIVERS\pctNdis.sys [2009-11-24 56512]
R3 pctplfw;pctplfw; \??\C:\WINDOWS\system32\drivers\pctplfw.sys []
R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv; \??\C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesDriver32.sys []
R3 usbccgp;Pilote parent générique USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
R3 usbehci;Pilote miniport de contrôleur d'hôte amélioré Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-13 30208]
R3 usbhub;Pilote de concentrateur standard USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-13 59520]
R3 usbohci;Pilote miniport de contrôleur hôte ouvert USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbohci.sys [2008-04-13 17152]
S3 PCAMPR5;PCAMPR5 NDIS Protocol Driver; \??\C:\WINDOWS\system32\PCAMPR5.SYS []
S3 PCANDIS5;PCANDIS5 NDIS Protocol Driver; \??\C:\WINDOWS\system32\PCANDIS5.SYS []
S3 usbprint;Classe d'imprimantes USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Pilote de scanneur USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 USBSTOR;Pilote de stockage de masse USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 FTRTSVC;France Telecom Routing Table Service; C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe [2007-12-11 65536]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Essentials\MsMpEng.exe [2009-07-02 17904]
R2 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2006-02-13 143426]
R2 PCToolsFirewallPlus;PC Tools Firewall Plus; C:\Program Files\PC Tools Firewall Plus\FWService.exe [2009-11-09 818432]
R2 TuneUp.UtilitiesSvc;TuneUp Utilities Service; C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesService32.exe [2009-11-13 1021256]
R2 UxTuneUp;TuneUp Extension de thème; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
S3 aspnet_state;Service d'état ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 TuneUp.Defrag;TuneUp Drive Defrag Service; C:\Program Files\TuneUp Utilities 2010\TuneUpDefragService.exe [2009-12-15 435016]
S4 NetTcpPortSharing;Service de partage de ports Net.Tcp; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
-----------------EOF-----------------