Logfile of random's system information tool 1.08 (written by random/random)
Merci a toi d'avoir répondu. Voici le premier rapport que RSIT.exe m a directement affiché apres l'avoir télécharger.
Run by Benoit at 2010-09-05 12:43:42
Microsoft Windows 7 Édition Familiale Premium
System drive C: has 108 GB (63%) free of 170 GB
Total RAM: 3327 MB (66% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:43:47, on 5/09/2010
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16385)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskeng.exe
C:\Windows\Explorer.EXE
C:\Program Files\ASUS\EPU-4 Engine\FourEngine.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\VIA\VIAudioi\VDeck\VDeck.exe
C:\Program Files\NEC Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Alwil Software\Avast5\AvastUI.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\FlashGet Network\FlashGet 3\Flashget3.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Benoit\Downloads\RSIT.exe
C:\Program Files\trend micro\Benoit.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://google.flashget.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: FlashGetBHO - {b070d3e3-fec0-47d9-8e8a-99d4eeb3d3b0} - C:\Users\Benoit\AppData\Roaming\FlashGetBHO\FlashGetBHO3.dll
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [HDAudDeck] C:\Program Files\VIA\VIAudioi\VDeck\VDeck.exe -r
O4 - HKLM\..\Run: [NUSB3MON] "C:\Program Files\NEC Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [avast5] "C:\Program Files\Alwil Software\Avast5\avastUI.exe" /nogui
O4 - HKLM\..\Run: [snpstd] C:\Windows\vsnpstd.exe
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [Steam] "C:\Program Files\Steam\Steam.exe" -silent
O4 - HKCU\..\Run: [FlashGet 3] "C:\Program Files\FlashGet Network\FlashGet 3\FlashGet3.exe" -minimize
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'SERVICE RÉSEAU')
O8 - Extra context menu item: Download all by FlashGet3 - C:\Users\Benoit\AppData\Roaming\FlashGetBHO\GetAllUrl.htm
O8 - Extra context menu item: Download by FlashGet3 - C:\Users\Benoit\AppData\Roaming\FlashGetBHO\GetUrl.htm
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: @%SystemRoot%\system32\aelupsvc.dll,-1 (AeLookupSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: @%systemroot%\system32\appidsvc.dll,-100 (AppIDSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\appinfo.dll,-100 (Appinfo) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\audiosrv.dll,-204 (AudioEndpointBuilder) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\audiosrv.dll,-200 (Audiosrv) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Mail Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Web Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: @%SystemRoot%\system32\AxInstSV.dll,-103 (AxInstSV) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\bdesvc.dll,-100 (BDESVC) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\bfe.dll,-1001 (BFE) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\qmgr.dll,-1000 (BITS) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\browser.dll,-100 (Browser) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\bthserv.dll,-101 (bthserv) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\certprop.dll,-11 (CertPropSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\cryptsvc.dll,-1001 (CryptSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @oleres.dll,-5012 (DcomLaunch) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\defragsvc.dll,-101 (defragsvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\dhcpcore.dll,-100 (Dhcp) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\dnsapi.dll,-101 (Dnscache) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\dot3svc.dll,-1102 (dot3svc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\dps.dll,-500 (DPS) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\eapsvc.dll,-1 (EapHost) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\ehome\ehrecvr.exe,-101 (ehRecvr) - Unknown owner - C:\Windows\ehome\ehRecvr.exe
O23 - Service: @%SystemRoot%\ehome\ehsched.exe,-101 (ehSched) - Unknown owner - C:\Windows\ehome\ehsched.exe
O23 - Service: @%SystemRoot%\system32\wevtsvc.dll,-200 (eventlog) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @comres.dll,-2450 (EventSystem) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\fdPHost.dll,-100 (fdPHost) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\fdrespub.dll,-100 (FDResPub) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\FntCache.dll,-100 (FontCache) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @gpapi.dll,-112 (gpsvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: Service Google Update (gupdate) (gupdate) - Unknown owner - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\System32\hidserv.dll,-101 (hidserv) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\kmsvc.dll,-6 (hkmsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\ListSvc.dll,-100 (HomeGroupListener) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\provsvc.dll,-100 (HomeGroupProvider) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\ikeext.dll,-501 (IKEEXT) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\IPBusEnum.dll,-102 (IPBusEnum) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\iphlpsvc.dll,-500 (iphlpsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @comres.dll,-2946 (KtmRm) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\srvsvc.dll,-100 (LanmanServer) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\wkssvc.dll,-100 (LanmanWorkstation) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\lltdres.dll,-1 (lltdsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\lmhsvc.dll,-101 (lmhosts) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\mmcss.dll,-100 (MMCSS) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\FirewallAPI.dll,-23090 (MpsSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe
O23 - Service: @%SystemRoot%\system32\iscsidsc.dll,-5000 (MSiSCSI) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\msimsg.dll,-27 (msiserver) - Unknown owner - C:\Windows\system32\msiexec.exe
O23 - Service: @%SystemRoot%\system32\qagentrt.dll,-6 (napagent) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\netman.dll,-109 (Netman) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\netprofm.dll,-202 (netprofm) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\nlasvc.dll,-1 (NlaSvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\nsisvc.dll,-200 (nsi) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\pnrpsvc.dll,-8004 (p2pimsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\p2psvc.dll,-8006 (p2psvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\pcasvc.dll,-1 (PcaSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\pla.dll,-500 (pla) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\umpnpmgr.dll,-100 (PlugPlay) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%SystemRoot%\system32\pnrpauto.dll,-8002 (PNRPAutoReg) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\pnrpsvc.dll,-8000 (PNRPsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\polstore.dll,-5010 (PolicyAgent) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\umpo.dll,-100 (Power) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\profsvc.dll,-300 (ProfSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\qwave.dll,-1 (QWAVE) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%Systemroot%\system32\rasauto.dll,-200 (RasAuto) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%Systemroot%\system32\rasmans.dll,-200 (RasMan) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @regsvc.dll,-1 (RemoteRegistry) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%windir%\system32\RpcEpMap.dll,-1001 (RpcEptMapper) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe
O23 - Service: @oleres.dll,-5010 (RpcSs) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\SCardSvr.dll,-1 (SCardSvr) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\schedsvc.dll,-100 (Schedule) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\certprop.dll,-13 (SCPolicySvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\sdrsvc.dll,-107 (SDRSVC) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\seclogon.dll,-7001 (seclogon) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\Sens.dll,-200 (SENS) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\sensrsvc.dll,-1000 (SensrSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\SessEnv.dll,-1026 (SessionEnv) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\shsvcs.dll,-12288 (ShellHWDetection) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe
O23 - Service: @%SystemRoot%\system32\sppuinotify.dll,-103 (sppuinotify) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\ssdpsrv.dll,-100 (SSDPSRV) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\sstpsvc.dll,-200 (SstpSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\wiaservc.dll,-9 (StiSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\swprv.dll,-103 (swprv) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\sysmain.dll,-1000 (SysMain) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\TabSvc.dll,-100 (TabletInputService) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\tapisrv.dll,-10100 (TapiSrv) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\tbssvc.dll,-100 (TBS) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\termsrv.dll,-268 (TermService) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\themeservice.dll,-8192 (Themes) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\mmcss.dll,-102 (THREADORDER) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\trkwks.dll,-1 (TrkWks) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\servicing\TrustedInstaller.exe,-100 (TrustedInstaller) - Unknown owner - C:\Windows\servicing\TrustedInstaller.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe
O23 - Service: @%systemroot%\system32\upnphost.dll,-213 (upnphost) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\dwm.exe,-2000 (UxSms) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe
O23 - Service: @%SystemRoot%\system32\w32time.dll,-200 (W32Time) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe
O23 - Service: @%systemroot%\system32\wbiosrvc.dll,-100 (WbioSrvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\wcncsvc.dll,-3 (wcncsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\WcsPlugInService.dll,-200 (WcsPlugInService) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\wdi.dll,-502 (WdiServiceHost) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\wdi.dll,-500 (WdiSystemHost) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\webclnt.dll,-100 (WebClient) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\wecsvc.dll,-200 (Wecsvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\wercplsupport.dll,-101 (wercplsupport) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\wersvc.dll,-100 (WerSvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%ProgramFiles%\Windows Defender\MsMpRes.dll,-103 (WinDefend) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\winhttp.dll,-100 (WinHttpAutoProxySvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%Systemroot%\system32\wbem\wmisvc.dll,-205 (Winmgmt) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%Systemroot%\system32\wsmsvc.dll,-101 (WinRM) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\wlansvc.dll,-257 (Wlansvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files\Windows Media Player\wmpnetwk.exe
O23 - Service: @%SystemRoot%\system32\wpcsvc.dll,-100 (WPCSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\wpdbusenum.dll,-100 (WPDBusEnum) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\wscsvc.dll,-200 (wscsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\SearchIndexer.exe,-103 (WSearch) - Unknown owner - C:\Windows\system32\SearchIndexer.exe
O23 - Service: @%systemroot%\system32\wuaueng.dll,-105 (wuauserv) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\wudfsvc.dll,-1000 (wudfsvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\wwansvc.dll,-257 (WwanSvc) - Unknown owner - C:\Windows\system32\svchost.exe
--
End of file - 20588 bytes
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype add-on for Internet Explorer - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2010-02-08 804136]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{b070d3e3-fec0-47d9-8e8a-99d4eeb3d3b0}]
FlashGetBHO - C:\Users\Benoit\AppData\Roaming\FlashGetBHO\FlashGetBHO3.dll [2010-05-11 144944]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2010-05-04 102400]
"HDAudDeck"=C:\Program Files\VIA\VIAudioi\VDeck\VDeck.exe [2009-06-05 1417216]
"NUSB3MON"=C:\Program Files\NEC Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [2009-10-21 106496]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2008-10-25 31072]
"avast5"=C:\Program Files\Alwil Software\Avast5\avastUI.exe [2010-06-28 2837864]
"snpstd"=C:\Windows\vsnpstd.exe [2005-10-11 339968]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-07-14 1173504]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2010-05-13 26192168]
"Steam"=C:\Program Files\Steam\Steam.exe [2010-08-24 1242448]
"FlashGet 3"=C:\Program Files\FlashGet Network\FlashGet 3\FlashGet3.exe [2010-05-11 2385456]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayL oad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHoo ks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewall policy\standardprofile\authorizedapplications\list]
"C:\Program Files\FlashGet Network\FlashGet 3\FlashGet3.exe"="C:\Program Files\FlashGet Network\FlashGet 3\FlashGet3.exe:*:Enabled:Flashget3"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewall policy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 months======
2010-09-05 12:43:42 ----D---- C:\rsit
2010-09-05 12:43:42 ----D---- C:\Program Files\trend micro
2010-09-02 19:21:25 ----D---- C:\Users\Benoit\AppData\Roaming\Mumble
2010-09-02 18:55:49 ----D---- C:\Program Files\Lavalys
2010-09-02 18:53:55 ----D---- C:\Program Files\OCCT
2010-09-02 17:38:50 ----D---- C:\Program Files\Mumble
2010-09-02 16:40:15 ----D---- C:\Users\Benoit\AppData\Roaming\Ubisoft
2010-09-02 16:23:24 ----D---- C:\Program Files\Ubisoft
2010-09-01 17:11:51 ----D---- C:\ProgramData\Office Genuine Advantage
2010-09-01 17:02:31 ----D---- C:\Program Files\SEGA
2010-09-01 17:01:42 ----D---- C:\Users\Benoit\AppData\Roaming\InstallShield
2010-08-25 14:44:06 ----A---- C:\Windows\system32\drivers\PnkBstrK.sys
2010-08-25 14:44:06 ----A---- C:\Users\Benoit\AppData\Roaming\PnkBstrK.sys
2010-08-25 14:43:39 ----A---- C:\Windows\system32\PnkBstrB.exe
2010-08-25 14:43:38 ----A---- C:\Windows\system32\PnkBstrA.exe
2010-08-25 14:43:38 ----A---- C:\Windows\system32\pbsvc(1).exe
2010-08-25 14:39:08 ----D---- C:\Windows\system32\Macromed
2010-08-25 14:21:47 ----D---- C:\Users\Benoit\AppData\Roaming\vlc
2010-08-25 14:21:37 ----D---- C:\Program Files\VideoLAN
2010-08-25 13:48:50 ----A---- C:\Windows\libem.INI
2010-08-25 13:48:30 ----D---- C:\Users\Benoit\AppData\Roaming\FlashGet
2010-08-25 13:48:28 ----D---- C:\Users\Benoit\AppData\Roaming\BITS
2010-08-25 13:48:27 ----D---- C:\Users\Benoit\AppData\Roaming\FlashGetBHO
2010-08-25 13:48:24 ----D---- C:\Program Files\FlashGet Network
2010-08-25 10:14:04 ----A---- C:\Windows\system32\oleaut32.dll
2010-08-24 14:48:40 ----D---- C:\Users\Benoit\AppData\Roaming\The Creative Assembly
2010-08-24 13:51:55 ----D---- C:\Program Files\Common Files\Steam
2010-08-24 13:51:53 ----D---- C:\Program Files\Steam
2010-08-23 22:20:20 ----A---- C:\Windows\system32\msv1_0.dll
2010-08-23 22:20:03 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2010-08-23 22:20:03 ----A---- C:\Windows\system32\PresentationHost.exe
2010-08-23 22:20:03 ----A---- C:\Windows\system32\netfxperf.dll
2010-08-23 22:20:03 ----A---- C:\Windows\system32\mscoree.dll
2010-08-23 22:20:03 ----A---- C:\Windows\system32\dfshim.dll
2010-08-23 22:15:16 ----A---- C:\Windows\system32\MRT.exe
2010-08-23 21:08:58 ----D---- C:\Users\Benoit\AppData\Roaming\skypePM
2010-08-23 21:04:45 ----D---- C:\Users\Benoit\AppData\Roaming\Skype
2010-08-23 21:04:28 ----D---- C:\Program Files\Common Files\Skype
2010-08-23 21:04:26 ----RD---- C:\Program Files\Skype
2010-08-23 21:04:24 ----D---- C:\ProgramData\Skype
2010-08-23 20:39:21 ----D---- C:\Program Files\Electronic Arts
2010-08-23 20:39:21 ----A---- C:\Windows\system32\XAudio2_5.dll
2010-08-23 20:39:21 ----A---- C:\Windows\system32\xactengine3_5.dll
2010-08-23 20:39:21 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2010-08-23 20:39:20 ----A---- C:\Windows\system32\XAudio2_4.dll
2010-08-23 20:39:20 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2010-08-23 20:39:20 ----A---- C:\Windows\system32\D3DX9_42.dll
2010-08-23 20:39:20 ----A---- C:\Windows\system32\D3DX9_41.dll
2010-08-23 20:39:20 ----A---- C:\Windows\system32\d3dx11_42.dll
2010-08-23 20:39:20 ----A---- C:\Windows\system32\d3dx10_42.dll
2010-08-23 20:39:20 ----A---- C:\Windows\system32\d3dx10_41.dll
2010-08-23 20:39:20 ----A---- C:\Windows\system32\d3dcsx_42.dll
2010-08-23 20:39:20 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2010-08-23 20:39:19 ----A---- C:\Windows\system32\XAudio2_3.dll
2010-08-23 20:39:19 ----A---- C:\Windows\system32\XAudio2_2.dll
2010-08-23 20:39:19 ----A---- C:\Windows\system32\XAudio2_1.dll
2010-08-23 20:39:19 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2010-08-23 20:39:19 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2010-08-23 20:39:19 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2010-08-23 20:39:19 ----A---- C:\Windows\system32\xactengine3_4.dll
2010-08-23 20:39:19 ----A---- C:\Windows\system32\xactengine3_3.dll
2010-08-23 20:39:19 ----A---- C:\Windows\system32\xactengine3_2.dll
2010-08-23 20:39:19 ----A---- C:\Windows\system32\xactengine3_1.dll
2010-08-23 20:39:19 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2010-08-23 20:39:19 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2010-08-23 20:39:19 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2010-08-23 20:39:19 ----A---- C:\Windows\system32\D3DX9_40.dll
2010-08-23 20:39:19 ----A---- C:\Windows\system32\D3DX9_39.dll
2010-08-23 20:39:19 ----A---- C:\Windows\system32\d3dx10_40.dll
2010-08-23 20:39:19 ----A---- C:\Windows\system32\d3dx10_39.dll
2010-08-23 20:39:19 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2010-08-23 20:39:19 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2010-08-23 20:39:18 ----A---- C:\Windows\system32\XAudio2_0.dll
2010-08-23 20:39:18 ----A---- C:\Windows\system32\xactengine3_0.dll
2010-08-23 20:39:18 ----A---- C:\Windows\system32\xactengine2_9.dll
2010-08-23 20:39:18 ----A---- C:\Windows\system32\xactengine2_10.dll
2010-08-23 20:39:18 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2010-08-23 20:39:18 ----A---- C:\Windows\system32\D3DX9_38.dll
2010-08-23 20:39:18 ----A---- C:\Windows\system32\D3DX9_37.dll
2010-08-23 20:39:18 ----A---- C:\Windows\system32\d3dx9_36.dll
2010-08-23 20:39:18 ----A---- C:\Windows\system32\d3dx9_35.dll
2010-08-23 20:39:18 ----A---- C:\Windows\system32\d3dx10_38.dll
2010-08-23 20:39:18 ----A---- C:\Windows\system32\d3dx10_37.dll
2010-08-23 20:39:18 ----A---- C:\Windows\system32\d3dx10_36.dll
2010-08-23 20:39:18 ----A---- C:\Windows\system32\d3dx10_35.dll
2010-08-23 20:39:18 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2010-08-23 20:39:18 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2010-08-23 20:39:18 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2010-08-23 20:39:18 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2010-08-23 20:39:17 ----A---- C:\Windows\system32\xinput1_3.dll
2010-08-23 20:39:17 ----A---- C:\Windows\system32\xactengine2_8.dll
2010-08-23 20:39:17 ----A---- C:\Windows\system32\xactengine2_7.dll
2010-08-23 20:39:17 ----A---- C:\Windows\system32\xactengine2_6.dll
2010-08-23 20:39:17 ----A---- C:\Windows\system32\xactengine2_5.dll
2010-08-23 20:39:17 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2010-08-23 20:39:17 ----A---- C:\Windows\system32\d3dx9_34.dll
2010-08-23 20:39:17 ----A---- C:\Windows\system32\d3dx9_33.dll
2010-08-23 20:39:17 ----A---- C:\Windows\system32\d3dx10_34.dll
2010-08-23 20:39:17 ----A---- C:\Windows\system32\d3dx10_33.dll
2010-08-23 20:39:17 ----A---- C:\Windows\system32\d3dx10.dll
2010-08-23 20:39:17 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2010-08-23 20:39:17 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2010-08-23 20:39:16 ----A---- C:\Windows\system32\xinput1_2.dll
2010-08-23 20:39:16 ----A---- C:\Windows\system32\xinput1_1.dll
2010-08-23 20:39:16 ----A---- C:\Windows\system32\xactengine2_4.dll
2010-08-23 20:39:16 ----A---- C:\Windows\system32\xactengine2_3.dll
2010-08-23 20:39:16 ----A---- C:\Windows\system32\xactengine2_2.dll
2010-08-23 20:39:16 ----A---- C:\Windows\system32\xactengine2_1.dll
2010-08-23 20:39:16 ----A---- C:\Windows\system32\x3daudio1_1.dll
2010-08-23 20:39:16 ----A---- C:\Windows\system32\d3dx9_32.dll
2010-08-23 20:39:16 ----A---- C:\Windows\system32\d3dx9_31.dll
2010-08-23 20:39:14 ----A---- C:\Windows\system32\xactengine2_0.dll
2010-08-23 20:39:14 ----A---- C:\Windows\system32\x3daudio1_0.dll
2010-08-23 20:39:14 ----A---- C:\Windows\system32\d3dx9_30.dll
2010-08-23 20:39:14 ----A---- C:\Windows\system32\d3dx9_29.dll
2010-08-23 20:39:14 ----A---- C:\Windows\system32\d3dx9_28.dll
2010-08-23 20:39:14 ----A---- C:\Windows\system32\d3dx9_27.dll
2010-08-23 20:39:14 ----A---- C:\Windows\system32\d3dx9_26.dll
2010-08-23 20:39:14 ----A---- C:\Windows\system32\d3dx9_25.dll
2010-08-23 20:39:13 ----A---- C:\Windows\system32\d3dx9_24.dll
2010-08-23 20:17:57 ----D---- C:\Windows\system32\Wat
2010-08-23 20:17:43 ----A---- C:\Windows\system32\browserchoice.exe
2010-08-23 20:17:23 ----D---- C:\Users\Benoit\AppData\Roaming\Macromedia
2010-08-23 20:17:23 ----D---- C:\Users\Benoit\AppData\Roaming\Adobe
2010-08-23 20:16:41 ----D---- C:\Program Files\Google
2010-08-23 20:16:40 ----A---- C:\Windows\system32\drivers\aswSP.sys
2010-08-23 20:16:40 ----A---- C:\Windows\system32\drivers\aswFsBlk.sys
2010-08-23 20:16:37 ----A---- C:\Windows\system32\drivers\aswRdr.sys
2010-08-23 20:16:36 ----A---- C:\Windows\system32\drivers\aswTdi.sys
2010-08-23 20:16:33 ----A---- C:\Windows\system32\drivers\aswMonFlt.sys
2010-08-23 20:16:31 ----A---- C:\Windows\system32\drivers\tcpip.sys
2010-08-23 20:16:24 ----A---- C:\Windows\system32\drivers\fvevol.sys
2010-08-23 20:16:22 ----A---- C:\Windows\system32\aswBoot.exe
2010-08-23 20:16:11 ----A---- C:\Windows\system32\ir32_32.dll
2010-08-23 20:16:11 ----A---- C:\Windows\system32\iccvid.dll
2010-08-23 20:16:10 ----A---- C:\Windows\system32\winlogon.exe
2010-08-23 20:16:10 ----A---- C:\Windows\explorer.exe
2010-08-23 20:16:09 ----A---- C:\Windows\system32\msasn1.dll
2010-08-23 20:16:08 ----A---- C:\Windows\system32\lsasrv.dll
2010-08-23 20:16:08 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2010-08-23 20:16:05 ----A---- C:\Windows\system32\rtutils.dll
2010-08-23 20:16:04 ----A---- C:\Windows\system32\inetcomm.dll
2010-08-23 20:16:03 ----A---- C:\Windows\system32\msxml3.dll
2010-08-23 20:16:02 ----A---- C:\Windows\system32\ntdll.dll
2010-08-23 20:16:01 ----A---- C:\Windows\system32\wmploc.DLL
2010-08-23 20:16:01 ----A---- C:\Windows\system32\wmp.dll
2010-08-23 20:16:01 ----A---- C:\Windows\system32\winresume.exe
2010-08-23 20:16:01 ----A---- C:\Windows\system32\winload.exe
2010-08-23 20:16:01 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2010-08-23 20:16:01 ----A---- C:\Windows\system32\CertEnroll.dll
2010-08-23 20:15:56 ----A---- C:\Windows\system32\drivers\srvnet.sys
2010-08-23 20:15:56 ----A---- C:\Windows\system32\drivers\srv2.sys
2010-08-23 20:15:56 ----A---- C:\Windows\system32\drivers\srv.sys
2010-08-23 20:15:56 ----A---- C:\Windows\system32\asycfilt.dll
2010-08-23 20:15:55 ----A---- C:\Windows\system32\CPFilters.dll
2010-08-23 20:15:54 ----A---- C:\Windows\system32\psisdecd.dll
2010-08-23 20:15:54 ----A---- C:\Windows\system32\msdri.dll
2010-08-23 20:15:50 ----A---- C:\Windows\system32\jscript.dll
2010-08-23 20:15:49 ----A---- C:\Windows\system32\t2embed.dll
2010-08-23 20:15:49 ----A---- C:\Windows\system32\kernel32.dll
2010-08-23 20:15:49 ----A---- C:\Windows\system32\apphelp.dll
2010-08-23 20:15:48 ----A---- C:\Windows\system32\tsbyuv.dll
2010-08-23 20:15:48 ----A---- C:\Windows\system32\quartz.dll
2010-08-23 20:15:48 ----A---- C:\Windows\system32\ntoskrnl.exe
2010-08-23 20:15:48 ----A---- C:\Windows\system32\msyuv.dll
2010-08-23 20:15:48 ----A---- C:\Windows\system32\msvidc32.dll
2010-08-23 20:15:48 ----A---- C:\Windows\system32\msrle32.dll
2010-08-23 20:15:48 ----A---- C:\Windows\system32\mciavi32.dll
2010-08-23 20:15:48 ----A---- C:\Windows\system32\iyuv_32.dll
2010-08-23 20:15:48 ----A---- C:\Windows\system32\avifil32.dll
2010-08-23 20:15:47 ----A---- C:\Windows\system32\ntkrnlpa.exe
2010-08-23 20:15:45 ----A---- C:\Windows\system32\mshtml.dll
2010-08-23 20:15:44 ----A---- C:\Windows\system32\wininet.dll
2010-08-23 20:15:44 ----A---- C:\Windows\system32\urlmon.dll
2010-08-23 20:15:44 ----A---- C:\Windows\system32\mstime.dll
2010-08-23 20:15:44 ----A---- C:\Windows\system32\ieframe.dll
2010-08-23 20:15:44 ----A---- C:\Windows\system32\iedkcs32.dll
2010-08-23 20:15:43 ----A---- C:\Windows\system32\msfeedssync.exe
2010-08-23 20:15:43 ----A---- C:\Windows\system32\msfeedsbs.dll
2010-08-23 20:15:43 ----A---- C:\Windows\system32\jsproxy.dll
2010-08-23 20:15:43 ----A---- C:\Windows\system32\ieui.dll
2010-08-23 20:15:43 ----A---- C:\Windows\system32\iepeers.dll
2010-08-23 20:15:42 ----A---- C:\Windows\system32\shell32.dll
2010-08-23 20:15:40 ----A---- C:\Windows\system32\vbscript.dll
2010-08-23 20:15:04 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2010-08-23 20:15:04 ----A---- C:\Windows\system32\secproc_ssp.dll
2010-08-23 20:15:04 ----A---- C:\Windows\system32\secproc_isv.dll
2010-08-23 20:15:04 ----A---- C:\Windows\system32\secproc.dll
2010-08-23 20:15:04 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2010-08-23 20:15:04 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2010-08-23 20:15:04 ----A---- C:\Windows\system32\RMActivate_isv.exe
2010-08-23 20:15:04 ----A---- C:\Windows\system32\RMActivate.exe
2010-08-23 20:15:01 ----A---- C:\Windows\system32\tzres.dll
2010-08-23 20:14:58 ----A---- C:\Windows\system32\schannel.dll
2010-08-23 20:14:55 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2010-08-23 20:14:55 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2010-08-23 20:14:55 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2010-08-23 20:14:53 ----N---- C:\Windows\system32\MpSigStub.exe
2010-08-23 20:14:51 ----A---- C:\Windows\system32\win32k.sys
2010-08-23 20:14:39 ----A---- C:\Windows\system32\fontsub.dll
2010-08-23 20:14:39 ----A---- C:\Windows\system32\atmlib.dll
2010-08-23 20:14:39 ----A---- C:\Windows\system32\atmfd.dll
2010-08-23 20:12:17 ----A---- C:\Windows\system32\wintrust.dll
2010-08-23 20:12:16 ----A---- C:\Windows\system32\cabview.dll
2010-08-23 20:03:21 ----A---- C:\Windows\system32\msonpmon.dll
2010-08-23 20:02:56 ----D---- C:\Program Files\Microsoft Works
2010-08-23 20:02:47 ----D---- C:\Program Files\Microsoft Visual Studio
2010-08-23 20:02:47 ----D---- C:\Program Files\Common Files\DESIGNER
2010-08-23 20:02:40 ----D---- C:\Windows\PCHEALTH
2010-08-23 20:02:40 ----D---- C:\Program Files\Microsoft.NET
2010-08-23 20:01:14 ----D---- C:\Program Files\Microsoft Visual Studio 8
2010-08-23 20:00:44 ----D---- C:\ProgramData\Microsoft Help
2010-08-23 20:00:44 ----D---- C:\Program Files\Microsoft Office
2010-08-23 20:00:27 ----RHD---- C:\MSOCache
2010-08-20 15:21:53 ----D---- C:\Windows\Panther
2010-08-20 15:21:48 ----RASH---- C:\BOOTSECT.BAK
2010-08-20 15:21:46 ----SHD---- C:\Boot
2010-08-20 15:10:55 ----D---- C:\ProgramData\Alwil Software
2010-08-20 15:10:55 ----D---- C:\Program Files\Alwil Software
2010-08-20 15:01:36 ----D---- C:\Program Files\NEC Electronics
2010-08-20 14:58:43 ----A---- C:\Windows\system32\VIASysFx.dll
2010-08-20 14:58:43 ----A---- C:\Windows\system32\VIAPropPageExt.dll
2010-08-20 14:58:43 ----A---- C:\Windows\system32\ViaMicArrayPropPageExt.dll
2010-08-20 14:58:43 ----A---- C:\Windows\system32\ViaMicArrayAPO.dll
2010-08-20 14:58:43 ----A---- C:\Windows\system32\ppChain.dll
2010-08-20 14:58:43 ----A---- C:\Windows\system32\nQPropPageExt.dll
2010-08-20 14:58:43 ----A---- C:\Windows\system32\nQAPO.dll
2010-08-20 14:58:43 ----A---- C:\Windows\system32\Dts2PropPageExt.dll
2010-08-20 14:58:43 ----A---- C:\Windows\system32\Dts2APO.dll
2010-08-20 14:58:43 ----A---- C:\Windows\system32\drivers\viahduaa.sys
2010-08-20 14:58:43 ----A---- C:\Windows\system32\DaisyWrp.dll
2010-08-20 14:58:43 ----A---- C:\Windows\system32\CTAPO32.dll
2010-08-20 14:56:59 ----D---- C:\Program Files\VIA
2010-08-20 14:55:59 ----D---- C:\Program Files\Marvell
2010-08-20 14:53:48 ----A---- C:\Windows\system32\RtNicProp32.dll
2010-08-20 14:53:38 ----A---- C:\Windows\system32\drivers\Rt86win7.sys
2010-08-20 14:53:37 ----D---- C:\Program Files\Realtek
2010-08-20 14:53:12 ----RA---- C:\Windows\system32\drivers\AsIO.sys
2010-08-20 14:53:12 ----RA---- C:\Windows\system32\AsIO.dll
2010-08-20 14:53:10 ----A---- C:\Windows\system32\drivers\AsInsHelp64.sys
2010-08-20 14:53:10 ----A---- C:\Windows\system32\drivers\AsInsHelp32.sys
2010-08-20 14:53:09 ----HD---- C:\Program Files\InstallShield Installation Information
2010-08-20 14:53:09 ----D---- C:\Program Files\ASUS
2010-08-20 14:52:58 ----D---- C:\Program Files\Common Files\InstallShield
2010-08-20 14:52:28 ----A---- C:\Windows\Language_trs.ini
2010-08-20 14:52:25 ----A---- C:\Windows\Ascd_tmp.ini
2010-08-20 14:50:42 ----D---- C:\Users\Benoit\AppData\Roaming\ATI
2010-08-20 14:50:42 ----D---- C:\ProgramData\ATI
2010-08-20 14:48:46 ----D---- C:\Program Files\Common Files\ATI Technologies
2010-08-20 14:48:42 ----A---- C:\Windows\system32\drivers\AtiHdmi.sys
2010-08-20 14:48:38 ----A---- C:\Windows\system32\coinst.dll
2010-08-20 14:48:38 ----A---- C:\Windows\system32\ATIDEMGX.dll
2010-08-20 14:48:12 ----SHD---- C:\Windows\Installer
2010-08-20 14:47:47 ----D---- C:\Program Files\ATI Technologies
2010-08-20 14:47:39 ----D---- C:\Program Files\ATI
2010-08-20 14:31:44 ----A---- C:\Windows\system32\PerfStringBackup.INI
2010-08-20 14:29:54 ----D---- C:\Users\Benoit\AppData\Roaming\Identities
2010-08-20 14:29:46 ----SD---- C:\Users\Benoit\AppData\Roaming\Microsoft
2010-08-20 14:29:46 ----D---- C:\Users\Benoit\AppData\Roaming\Media Center Programs
2010-08-20 14:29:41 ----SHD---- C:\Recovery
2010-08-20 14:29:41 ----SHD---- C:\ProgramData\Modèles
2010-08-20 14:29:41 ----SHD---- C:\ProgramData\Menu Démarrer
2010-08-20 14:29:41 ----SHD---- C:\ProgramData\Favoris
2010-08-20 14:29:41 ----SHD---- C:\ProgramData\Bureau
2010-08-20 14:29:41 ----SHD---- C:\Program Files\Fichiers communs
2010-08-20 14:29:39 ----D---- C:\Windows\SoftwareDistribution
2010-08-20 14:23:26 ----D---- C:\Windows\Prefetch
2010-08-20 14:23:14 ----ASH---- C:\pagefile.sys
2010-08-20 14:23:12 ----SHD---- C:\System Volume Information
2010-08-20 14:23:12 ----ASH---- C:\hiberfil.sys
======List of files/folders modified in the last 1 months======
2010-09-05 12:43:45 ----D---- C:\Windows\Temp
2010-09-05 12:43:42 ----RD---- C:\Program Files
2010-09-05 12:11:45 ----D---- C:\Windows\Downloaded Program Files
2010-09-05 12:09:48 ----D---- C:\Windows\System32
2010-09-05 12:09:48 ----D---- C:\Windows\inf
2010-09-05 12:08:10 ----D---- C:\Windows\system32\config
2010-09-05 12:04:58 ----D---- C:\Windows\system32\wbem
2010-09-05 12:04:47 ----D---- C:\Windows
2010-09-05 11:59:43 ----D---- C:\Windows\Tasks
2010-09-05 11:59:43 ----D---- C:\Windows\system32\wfp
2010-09-05 11:58:51 ----D---- C:\Windows\system32\DriverStore
2010-09-05 11:58:51 ----D---- C:\Windows\system32\catroot2
2010-09-05 11:58:50 ----D---- C:\Windows\system32\drivers
2010-09-05 11:58:50 ----D---- C:\Windows\system32\CodeIntegrity
2010-09-05 11:58:30 ----D---- C:\Windows\system32\Tasks
2010-09-05 11:58:26 ----RSD---- C:\Windows\assembly
2010-09-05 11:58:24 ----HD---- C:\ProgramData
2010-09-01 17:24:47 ----D---- C:\Windows\Logs
2010-08-31 20:16:02 ----D---- C:\Windows\rescache
2010-08-25 15:24:55 ----D---- C:\Windows\system32\NDF
2010-08-25 15:22:55 ----D---- C:\Windows\system32\LogFiles
2010-08-25 12:59:40 ----D---- C:\Windows\winsxs
2010-08-25 11:08:39 ----D---- C:\Windows\AppPatch
2010-08-25 10:13:54 ----D---- C:\Windows\system32\catroot
2010-08-24 20:09:10 ----D---- C:\Windows\Microsoft.NET
2010-08-24 13:51:55 ----D---- C:\Program Files\Common Files
2010-08-24 09:29:06 ----D---- C:\Program Files\Windows Media Player
2010-08-24 09:29:06 ----D---- C:\Program Files\Windows Mail
2010-08-24 09:29:05 ----D---- C:\Windows\system32\Boot
2010-08-24 09:29:05 ----D---- C:\Windows\ehome
2010-08-24 09:29:01 ----D---- C:\Program Files\Internet Explorer
2010-08-24 09:28:59 ----D---- C:\Windows\system32\migration
2010-08-23 22:18:24 ----D---- C:\Windows\twain_32
2010-08-23 22:17:02 ----RSD---- C:\Windows\Fonts
2010-08-23 22:17:00 ----D---- C:\Program Files\Common Files\microsoft shared
2010-08-23 22:16:07 ----D---- C:\Program Files\Common Files\System
2010-08-23 22:16:07 ----A---- C:\Windows\win.ini
2010-08-23 22:15:17 ----D---- C:\Windows\debug
2010-08-23 20:17:57 ----D---- C:\Windows\system32\fr-FR
2010-08-23 20:09:31 ----SD---- C:\ProgramData\Microsoft
2010-08-23 20:02:51 ----D---- C:\Program Files\MSBuild
2010-08-23 20:02:46 ----D---- C:\Windows\ShellNew
2010-08-20 15:08:56 ----D---- C:\Windows\system32\wdi
2010-08-20 14:53:04 ----D---- C:\Windows\system32\restore
2010-08-20 14:29:53 ----SHD---- C:\$Recycle.Bin
2010-08-20 14:29:46 ----RD---- C:\Users
2010-08-20 14:29:41 ----D---- C:\Program Files\Windows NT
2010-08-20 14:25:21 ----D---- C:\Windows\system32\sysprep
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 mv61xx;mv61xx; C:\Windows\system32\DRIVERS\mv61xx.sys [2009-05-12 154664]
R0 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys [2009-07-14 12368]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2009-07-14 173648]
R1 AsIO;AsIO; C:\Windows\system32\drivers\AsIO.sys [2007-12-17 12400]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2010-06-28 23376]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2010-06-28 165456]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2010-06-28 46672]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2010-06-28 17744]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2010-06-28 50256]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2010-05-05 5550592]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2010-05-05 176128]
R3 AtiHdmiService;ATI Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\AtiHdmi.sys [2010-03-09 107024]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2009-05-13 6504]
R3 nusb3hub;NEC Electronics USB 3.0 Hub Driver; C:\Windows\system32\DRIVERS\nusb3hub.sys [2009-10-26 58240]
R3 nusb3xhc;NEC Electronics USB 3.0 Host Controller Driver; C:\Windows\system32\DRIVERS\nusb3xhc.sys [2009-10-26 136704]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt86win7.sys [2009-05-22 167936]
R3 snpstd;Trust Webcam 14823; C:\Windows\system32\DRIVERS\snpstd.sys [2006-05-03 390784]
R3 VIAHdAudAddService;VIA High Definition Audio Driver Service; C:\Windows\system32\drivers\viahduaa.sys [2009-06-02 1056256]
S2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\DRIVERS\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\DRIVERS\sisagp.sys [2009-07-14 52304]
S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\DRIVERS\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2010-05-05 172032]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-06-28 40384]
R2 PnkBstrA;PnkBstrA; C:\Windows\system32\PnkBstrA.exe [2010-08-25 75064]
R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-06-28 40384]
R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-06-28 40384]
S2 gupdate;Service Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-08-23 136176]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2008-10-25 65888]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 Steam Client Service;Steam Client Service; C:\Program Files\Common Files\Steam\SteamService.exe [2010-08-31 407336]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2010-08-23 1343400]
-----------------EOF-----------------