Désinfecter mon PC!!! Virus cachés

sammou79 sammou79
34 contributions
Membre depuis le 24/04/2006
Envoyé le 05/12/2009 à 19:15


Bonjour

Merci de lire ce rapport et me dire l\'étape qui pourra désinfecter mon PC;

info.txt logfile of random\'s system information tool 1.06 2009-12-04 20:38:45

======Uninstall list======

-->C:\\Program Files\\DivX\\DivXConverterUninstall.exe /CONVERTER
-->MsiExec.exe /I{0394CDC8-FABD-4ED8-B104-03393876DFDF}
-->MsiExec.exe /I{0D397393-9B50-4C52-84D5-77E344289F87}
-->MsiExec.exe /I{11F93B4B-48F0-4A4E-AE77-DFA96A99664B}
-->MsiExec.exe /I{619CDD8A-14B6-43A1-AB6C-0F4EE48CE048}
-->MsiExec.exe /I{83FFCFC7-88C6-41C6-8752-958A45325C82}
-->MsiExec.exe /I{C8B0680B-CDAE-4809-9F91-387B6DE00F7C}
Activation Assistant for the 2007 Microsoft Office suites-->\"C:\\ProgramData\\{174892B1-CBE7-44F5-86FF-AB555EFD73A3}\\Microsoft Office Activation Assistant.exe\" REMOVE=TRUE MODIFY=FALSE
Adobe Flash Player 10 ActiveX-->C:\\Windows\\system32\\Macromed\\Flash\\uninstall_activeX.exe
Adobe Reader 8.1.0 - Français-->MsiExec.exe /I{AC76BA86-7AD7-1036-7B44-A81000000003}
AppMon Utility-->\"C:\\Program Files\\InstallShield Installation Information\\{09A84598-E18A-4E7B-A49A-E19BB8D5C648}\\setup.exe\" -runfromtemp -l0x040c -removeonly
Archiveur WinRAR-->C:\\Program Files\\WinRAR\\uninstall.exe
ArcSoft Magic-i Visual Effects-->RunDll32 C:\\PROGRA~1\\COMMON~1\\INSTAL~1\\engine\\6\\INTEL3~1\\Ctor.dll,LaunchSetup \"C:\\Program Files\\InstallShield Installation Information\\{56345504-DE57-4528-A18B-A567D1E52928}\\Setup.exe\" -l0x40c
Assistant de connexion Windows Live-->MsiExec.exe /I{D3116CC7-24DC-4CA3-9CE1-23FED836E9F2}
AVG Free 9.0-->C:\\Program Files\\AVG\\AVG9\\setup.exe /UNINSTALL
Browser Address Error Redirector-->regsvr32 /u /s \"C:\\PROGRA~1\\GOOGLE~1\\BAE.dll\"
CCleaner (remove only)-->\"C:\\Program Files\\CCleaner\\uninst.exe\"
Click to Disc Editor-->C:\\Program Files\\InstallShield Installation Information\\{4DCEA9C1-4D6E-41BF-A854-28CFA8B56DBF}\\setup.exe -runfromtemp -l0x040c
Click to Disc-->C:\\Program Files\\InstallShield Installation Information\\{68A69CFF-130D-4CDE-AB0E-7374ECB144C8}\\setup.exe -runfromtemp -l0x040c -removeonly
DivX Codec-->C:\\Program Files\\DivX\\DivXCodecUninstall.exe /CODEC
DivX Converter-->C:\\Program Files\\DivX\\DivXConverterUninstall.exe /CONVERTER
DivX Player-->C:\\Program Files\\DivX\\DivXPlayerUninstall.exe /PLAYER
doPDF 6.1 printer-->\"C:\\Program Files\\Softland\\doPDF 6\\unins000.exe\"
DSD Direct-->RunDll32 C:\\PROGRA~1\\COMMON~1\\INSTAL~1\\PROFES~1\\RunTime\\11\\00\\Intel32\\Ctor.dll,LaunchSetup \"C:\\Program Files\\InstallShield Installation Information\\{82D5BACA-3619-4D34-99DB-3A65CFB4DA33}\\setup.exe\" -l0x40c -removeonly
DSD Playback Plug-in-->RunDll32 C:\\PROGRA~1\\COMMON~1\\INSTAL~1\\PROFES~1\\RunTime\\11\\00\\Intel32\\Ctor.dll,LaunchSetup \"C:\\Program Files\\InstallShield Installation Information\\{009E7FB7-1775-4D89-8956-F5C9A1C019FC}\\setup.exe\" -l0x40c -removeonly
Galerie de photos Windows Live-->MsiExec.exe /X{B131E59D-202C-43C6-84C9-68F0C37541F1}
GearDrvs-->MsiExec.exe /I{206FD69B-F9FE-4164-81BD-D52552BC9C23}
GearDrvs-->MsiExec.exe /I{CB84F0F2-927B-458D-9DC5-87832E3DC653}
Google Desktop-->C:\\Program Files\\Google\\Google Desktop Search\\GoogleDesktopSetup.exe -uninstall
Google Earth-->MsiExec.exe /I{1E04F83B-2AB9-4301-9EF7-E86307F79C72}
Google Toolbar for Internet Explorer-->\"C:\\Program Files\\Google\\Google Toolbar\\Component\\GoogleToolbarManager_E582EA556D8DE101.exe\" /uninstall
Google Toolbar for Internet Explorer-->MsiExec.exe /I{18455581-E099-4BA8-BC6B-F34B2F06600C}
HDAUDIO SoftV92 Data Fax Modem with SmartCP-->C:\\Program Files\\CONEXANT\\CNXT_MODEM_HDAUDIO_VEN_14F1&DEV_2BFA&SUBSYS_104D0200\\UIU32m.exe -U -ISnSZIRXz.inf
HijackThis 2.0.2-->\"C:\\Program Files\\trend micro\\HijackThis.exe\" /uninstall
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)-->C:\\Windows\\system32\\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT=\"\"
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)-->C:\\Windows\\system32\\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT=\"\"
Huawei SmartAX MT810-->RunDll32 C:\\PROGRA~1\\COMMON~1\\INSTAL~1\\engine\\6\\INTEL3~1\\Ctor.dll,LaunchSetup \"C:\\Program Files\\InstallShield Installation Information\\{4AE3A0CB-87B0-4F51-BECD-3D1F8DFDD62F}\\Setup.exe\" -l0x40c -L0x40c
IDT Audio-->RunDll32 C:\\PROGRA~1\\COMMON~1\\INSTAL~1\\PROFES~1\\RunTime\\10\\01\\Intel32\\Ctor.dll,LaunchSetup \"C:\\Program Files\\InstallShield Installation Information\\{07D8511D-C9FE-4A93-933F-EAA5C8F20095}\\setup.exe\" -l0x40c -remove -removeonly
Installation Windows Live-->C:\\Program Files\\Windows Live\\Installer\\wlarp.exe
Installation Windows Live-->MsiExec.exe /I{46ABBC54-1872-4AA3-95E2-F2C063A63F31}
Intel(R) Matrix Storage Manager-->C:\\Windows\\System32\\Imsmudlg.exe
Java(TM) 6 Update 2-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160020}
Junk Mail filter update-->MsiExec.exe /I{E2DFE069-083E-4631-9B6C-43C48E991DE5}
Lecteur CANALPLAY 2.3-->RunDll32 C:\\PROGRA~1\\COMMON~1\\INSTAL~1\\PROFES~1\\RunTime\\10\\01\\Intel32\\Ctor.dll,LaunchSetup \"C:\\Program Files\\InstallShield Installation Information\\{E9E37358-E3E1-47BA-9E21-375EF3616BC9}\\setup.exe\" -l0x40c -removeonly
Microsoft .NET Framework 3.5 SP1-->c:\\Windows\\Microsoft.NET\\Framework\\v3.5\\Microsoft .NET Framework 3.5 SP1\\setup.exe
Microsoft .NET Framework 3.5 SP1-->MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
Microsoft Choice Guard-->MsiExec.exe /X{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0015-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0016-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0018-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0019-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001A-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001B-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0044-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-006E-040C-0000-0000000FF1CE} /uninstall {B165D3C2-40AE-4D39-86F7-E5C87C4264C0}
Microsoft Office Access MUI (French) 2007-->MsiExec.exe /X{90120000-0015-040C-0000-0000000FF1CE}
Microsoft Office Excel MUI (French) 2007-->MsiExec.exe /X{90120000-0016-040C-0000-0000000FF1CE}
Microsoft Office InfoPath MUI (French) 2007-->MsiExec.exe /X{90120000-0044-040C-0000-0000000FF1CE}
Microsoft Office Live Add-in 1.3-->MsiExec.exe /I{57F0ED40-8F11-41AA-B926-4A66D0D1A9CC}
Microsoft Office Outlook Connector-->MsiExec.exe /I{95120000-0122-040C-0000-0000000FF1CE}
Microsoft Office Outlook MUI (French) 2007-->MsiExec.exe /X{90120000-001A-040C-0000-0000000FF1CE}
Microsoft Office PowerPoint MUI (French) 2007-->MsiExec.exe /X{90120000-0018-040C-0000-0000000FF1CE}
Microsoft Office Professional Plus 2007-->\"C:\\Program Files\\Common Files\\Microsoft Shared\\OFFICE12\\Office Setup Controller\\setup.exe\" /uninstall PROPLUS /dll OSETUP.DLL
Microsoft Office Professional Plus 2007-->MsiExec.exe /X{90120000-0011-0000-0000-0000000FF1CE}
Microsoft Office Proof (Arabic) 2007-->MsiExec.exe /X{90120000-001F-0401-0000-0000000FF1CE}
Microsoft Office Proof (Dutch) 2007-->MsiExec.exe /X{90120000-001F-0413-0000-0000000FF1CE}
Microsoft Office Proof (English) 2007-->MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
Microsoft Office Proof (French) 2007-->MsiExec.exe /X{90120000-001F-040C-0000-0000000FF1CE}
Microsoft Office Proof (German) 2007-->MsiExec.exe /X{90120000-001F-0407-0000-0000000FF1CE}
Microsoft Office Proof (Spanish) 2007-->MsiExec.exe /X{90120000-001F-0C0A-0000-0000000FF1CE}
Microsoft Office Proofing (French) 2007-->MsiExec.exe /X{90120000-002C-040C-0000-0000000FF1CE}
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0401-0000-0000000FF1CE} /uninstall {14809F99-C601-4D4A-9391-F1E8FAA964C5}
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0407-0000-0000000FF1CE} /uninstall {A0516415-ED61-419A-981D-93596DA74165}
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0409-0000-0000000FF1CE} /uninstall {ABDDE972-355B-4AF1-89A8-DA50B7B5C045}
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-040C-0000-0000000FF1CE} /uninstall {F580DDD5-8D37-4998-968E-EBB76BB86787}
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0413-0000-0000000FF1CE} /uninstall {D66D5A44-E480-4BA4-B4F2-C554F6B30EBB}
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0C0A-0000-0000000FF1CE} /uninstall {187308AB-5FA7-4F14-9AB9-D290383A10D9}
Microsoft Office Publisher MUI (French) 2007-->MsiExec.exe /X{90120000-0019-040C-0000-0000000FF1CE}
Microsoft Office Shared MUI (French) 2007-->MsiExec.exe /X{90120000-006E-040C-0000-0000000FF1CE}
Microsoft Office Word MUI (French) 2007-->MsiExec.exe /X{90120000-001B-040C-0000-0000000FF1CE}
Microsoft Search Enhancement Pack-->MsiExec.exe /X{4CBA3D4C-8F51-4D60-B27E-F6B641C571E7}
Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
Microsoft SQL Server 2005 Compact Edition [ENU]-->MsiExec.exe /I{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}
Microsoft Sync Framework Runtime Native v1.0 (x86)-->MsiExec.exe /I{8A74E887-8F0F-4017-AF53-CBA42211AAA5}
Microsoft Sync Framework Services Native v1.0 (x86)-->MsiExec.exe /I{BD64AF4A-8C80-4152-AD77-FCDDF05208AB}
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053-->MsiExec.exe /X{770657D0-A123-3C07-8E44-1C83EC895118}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{837b34e3-7c30-493c-8f6a-2b0f04e2912c}
Microsoft Works-->MsiExec.exe /I{6B1CB38D-E2E4-4A30-933D-EFDEBA76AD9C}
MSVCRT-->MsiExec.exe /I{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
MSXML 4.0 SP2 (KB927978)-->MsiExec.exe /I{37477865-A3F1-4772-AD43-AAFC6BCFF99F}
MSXML 4.0 SP2 (KB936181)-->MsiExec.exe /I{C04E32E0-0416-434D-AFB9-6969D703A9EF}
MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
MSXML 4.0 SP2 (KB973688)-->MsiExec.exe /I{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
Norton 360-->MsiExec.exe /I{63A6E9A9-A190-46D4-9430-2DB28654AFD8}
NVIDIA Drivers-->C:\\Windows\\system32\\NVUNINST.EXE UninstallGUI
OpenMG Limited Patch 4.7-07-15-19-01-->C:\\Program Files\\Common Files\\Sony Shared\\OpenMG\\HotFixes\\HotFix4.7-07-15-19-01\\HotFixSetup\\setup.exe /u
OpenMG Secure Module 4.7.00-->C:\\PROGRA~1\\COMMON~1\\INSTAL~1\\Driver\\1150\\INTEL3~1\\IDriver.exe /M{CCD663AE-610D-4BDF-AAB0-E914B044527D} UNINSTALL
Outil de restauration de données VAIO-->C:\\Program Files\\InstallShield Installation Information\\{57B955CE-B5D3-495D-AF1B-FAEE0540BFEF}\\setup.exe -runfromtemp -l0x040c -removeonly
Outil de téléchargement Windows Live-->MsiExec.exe /I{205C6BDD-7B73-42DE-8505-9A093F35A238}
Outil VAIO Media Registration 6.0-->RunDll32 C:\\PROGRA~1\\COMMON~1\\INSTAL~1\\PROFES~1\\RunTime\\11\\50\\Intel32\\Ctor.dll,LaunchSetup \"C:\\Program Files\\InstallShield Installation Information\\{AF9A04EB-7D8E-41DE-9EDE-4AB9BB2B71B6}\\setup.exe\" -l0x40c UNINSTALL -removeonly
Picasa 2-->\"C:\\Program Files\\Picasa2\\Uninstall.exe\"
RealPlayer-->C:\\Program Files\\Common Files\\Real\\Update_OB\\r1puninst.exe RealNetworks|RealPlayer|12.0
Realtek High Definition Audio Driver-->RunDll32 C:\\PROGRA~1\\COMMON~1\\INSTAL~1\\PROFES~1\\RunTime\\11\\50\\Intel32\\Ctor.dll,LaunchSetup \"C:\\Program Files\\InstallShield Installation Information\\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}\\Setup.exe\" -l0x40c -removeonly
Roxio Activation Module-->MsiExec.exe /I{07159635-9DFE-4105-BFC0-2817DB540C68}
Roxio Easy Media Creator Home-->MsiExec.exe /I{B7FB0C86-41A4-4402-9A33-912C462042A0}
Security Update for 2007 Microsoft Office System (KB969559)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {69F52148-9BF6-4CDC-BF76-103DEAF3DD08}
Security Update for 2007 Microsoft Office System (KB973704)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {E626DC89-A787-4553-9BB3-DC2EC7E1593F}
Security Update for Microsoft Office Excel 2007 (KB973593)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {7D6255E3-3423-4D8B-A328-F6F8D28DD5FE}
Security Update for Microsoft Office Outlook 2007 (KB972363)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {120BE9A0-9B09-4855-9E0C-7DEE45CB03C0}
Security Update for Microsoft Office PowerPoint 2007 (KB957789)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {7559E742-FF9F-4FAE-B279-008ED296CB4D}
Security Update for Microsoft Office Publisher 2007 (KB969693)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {7BE67088-1EB3-4569-8E75-DDAFBF61BC4E}
Security Update for Microsoft Office system 2007 (972581)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {3D019598-7B59-447A-80AE-815B703B84FF}
Security Update for Microsoft Office system 2007 (KB969613)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {5ECEB317-CBE9-4E08-AB10-756CB6F0FB6C}
Security Update for Microsoft Office system 2007 (KB974234)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {FCD742B9-7A55-44BC-A776-F795F21FEDDC}
Security Update for Microsoft Office Visio Viewer 2007 (KB973709)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {71127777-8B2C-4F97-AF7A-6CF8CAC8224D}
Security Update for Microsoft Office Word 2007 (KB969604)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {CF3D6499-709C-43D0-8908-BC5652656050}
Setting Utility Series-->\"C:\\Program Files\\InstallShield Installation Information\\{A7DA438C-2E43-4C20-BFDA-C1F4A6208558}\\setup.exe\" -runfromtemp -l0x040c -removeonly
Skype™ 3.5-->MsiExec.exe /X{5C82DAE5-6EB0-4374-9254-BE3319BA4E82}
SonicStage Mastering Studio Audio Filter Custom Preset-->RunDll32 C:\\PROGRA~1\\COMMON~1\\INSTAL~1\\PROFES~1\\RunTime\\11\\00\\Intel32\\Ctor.dll,LaunchSetup \"C:\\Program Files\\InstallShield Installation Information\\{EC37A846-53AC-4DA7-98FA-76A4E74AA900}\\setup.exe\" -l0x40c -removeonly
SonicStage Mastering Studio Audio Filter-->RunDll32 C:\\PROGRA~1\\COMMON~1\\INSTAL~1\\PROFES~1\\RunTime\\11\\00\\Intel32\\Ctor.dll,LaunchSetup \"C:\\Program Files\\InstallShield Installation Information\\{DF7DB916-90E5-40F2-9010-B8125EB5FD6F}\\setup.exe\" -l0x40c -removeonly
SonicStage Mastering Studio Plugins-->RunDll32 C:\\PROGRA~1\\COMMON~1\\INSTAL~1\\PROFES~1\\RunTime\\11\\00\\Intel32\\Ctor.dll,LaunchSetup \"C:\\Program Files\\InstallShield Installation Information\\{9C1C8A04-F8CA-4472-A92D-4288CE32DE86}\\setup.exe\" -l0x40c -removeonly
SonicStage Mastering Studio-->RunDll32 C:\\PROGRA~1\\COMMON~1\\INSTAL~1\\PROFES~1\\RunTime\\11\\00\\Intel32\\Ctor.dll,LaunchSetup \"C:\\Program Files\\InstallShield Installation Information\\{6332AFF1-9D9A-429C-AA03-F82749FA4F49}\\setup.exe\" -l0x40c -removeonly
Sony Video Shared Library-->C:\\Program Files\\InstallShield Installation Information\\{01FDC9FC-4D4F-4DB0-ACD1-D3E8E1D52902}\\setup.exe -runfromtemp -l0x040c -removeonly
Synaptics Pointing Device Driver-->rundll32.exe \"C:\\Program Files\\Synaptics\\SynTP\\SynISDLL.dll\",standAloneUninstall
Update for 2007 Microsoft Office System (KB967642)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {C444285D-5E4F-48A4-91DD-47AAAA68E92D}
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)-->C:\\Windows\\system32\\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {B2AE9C82-DC7B-3641-BFC8-87275C4F3607} /qb+ REBOOTPROMPT=\"\"
Update for Outlook 2007 Junk Email Filter (kb975960)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {F1AB1BED-7477-4D5A-BD0C-04C2109459A5}
VAIO Camera Capture Utility-->\"C:\\Program Files\\InstallShield Installation Information\\{6D2576EC-A0E9-418A-A09A-409933A3B6F4}\\setup.exe\" -runfromtemp -l0x040c -removeonly
VAIO Content Folder Setting-->\"C:\\Program Files\\InstallShield Installation Information\\{23825B69-36DF-4DAD-9CFD-118D11D80F16}\\setup.exe\" -runfromtemp -l0x040c -removeonly
VAIO Content Metadata Intelligent Analyzing Manager-->C:\\Program Files\\InstallShield Installation Information\\{ABF29EC7-47C1-4C63-8FE7-3824FD66F357}\\setup.exe -runfromtemp -l0x040c -removeonly
VAIO Content Metadata Manager Setting-->C:\\Program Files\\InstallShield Installation Information\\{69351E9E-23ED-41D5-B146-EDBF83C63B66}\\setup.exe -runfromtemp -l0x040c -removeonly
VAIO Content Metadata XML Interface Library-->C:\\Program Files\\InstallShield Installation Information\\{B5E2DF30-1061-4DB4-AF28-08996C8E5680}\\setup.exe -runfromtemp -l0x040c -removeonly
VAIO Control Center-->\"C:\\Program Files\\InstallShield Installation Information\\{72042FA6-5609-489F-A8EA-3C2DD650F667}\\setup.exe\" -runfromtemp -l0x040c -removeonly
VAIO DVD Menu Data Basic-->C:\\Program Files\\InstallShield Installation Information\\{596BED91-A1D8-4DF1-8CD1-1C777F7588AC}\\setup.exe -runfromtemp -l0x040c -removeonly
VAIO Entertainment Platform-->C:\\Program Files\\InstallShield Installation Information\\{6B1F20F2-6321-4669-A58C-33DF8E7517FF}\\setup.exe -runfromtemp -l0x040c -removeonly
VAIO Event Service-->\"C:\\Program Files\\InstallShield Installation Information\\{C7477742-DDB4-43E5-AC8D-0259E1E661B1}\\setup.exe\" -runfromtemp -l0x040c -removeonly
VAIO Launcher-->\"C:\\Program Files\\InstallShield Installation Information\\{15D5C238-4C2E-4AEA-A66D-D6989A4C586B}\\setup.exe\" -runfromtemp -l0x040c -removeonly
Vaio Marketing Tools-->C:\\Program Files\\Sony\\Marketing Tools\\Uninstaller.exe /bootstrap
VAIO Media 6.0-->RunDll32 C:\\PROGRA~1\\COMMON~1\\INSTAL~1\\PROFES~1\\RunTime\\11\\50\\Intel32\\Ctor.dll,LaunchSetup \"C:\\Program Files\\InstallShield Installation Information\\{560F6B2E-F0DF-44E5-8190-A4A161F0E205}\\setup.exe\" -l0x40c UNINSTALL -removeonly
VAIO Media AC3 Decoder 1.0-->RunDll32 C:\\PROGRA~1\\COMMON~1\\INSTAL~1\\engine\\6\\INTEL3~1\\Ctor.dll,LaunchSetup \"C:\\Program Files\\InstallShield Installation Information\\{2063C2E8-3812-4BBD-9998-6610F80C1DD4}\\Setup.exe\" -l0x40c UNINSTALL
VAIO Media Content Collection 6.0-->RunDll32 C:\\PROGRA~1\\COMMON~1\\INSTAL~1\\PROFES~1\\RunTime\\11\\50\\Intel32\\Ctor.dll,LaunchSetup \"C:\\Program Files\\InstallShield Installation Information\\{500162A0-4DD5-460A-BAFD-895AAE48C532}\\setup.exe\" -l0x40c UNINSTALL -removeonly
VAIO Media Integrated Server 6.1-->RunDll32 C:\\PROGRA~1\\COMMON~1\\INSTAL~1\\PROFES~1\\RunTime\\11\\50\\Intel32\\Ctor.dll,LaunchSetup \"C:\\Program Files\\InstallShield Installation Information\\{785EB1D4-ECEC-4195-99B4-73C47E187721}\\setup.exe\" -l0x40c UNINSTALL -removeonly
VAIO Media Redistribution 6.0-->RunDll32 C:\\PROGRA~1\\COMMON~1\\INSTAL~1\\PROFES~1\\RunTime\\11\\50\\Intel32\\Ctor.dll,LaunchSetup \"C:\\Program Files\\InstallShield Installation Information\\{5855C127-1F20-404D-B7FB-1FD84D7EAB5E}\\setup.exe\" -l0x40c UNINSTALL -removeonly
VAIO Movie Story Template Data-->C:\\Program Files\\InstallShield Installation Information\\{6FA8BA2C-052B-4072-B8E2-2302C268BE9E}\\setup.exe -runfromtemp -l0x040c -removeonly
VAIO Movie Story-->C:\\Program Files\\InstallShield Installation Information\\{B25563A0-41F4-4A81-A6C1-6DBC0911B1F3}\\setup.exe -runfromtemp -l0x040c -removeonly
VAIO MusicBox Sample Music-->\"C:\\Program Files\\InstallShield Installation Information\\{98FC7A64-774B-49B5-B046-4B4EBC053FA9}\\setup.exe\" -runfromtemp -l0x040c -removeonly
VAIO MusicBox-->\"C:\\Program Files\\InstallShield Installation Information\\{4EA55D20-27FB-45D7-8726-147E8A5F6C62}\\setup.exe\" -runfromtemp -l0x040c -removeonly
VAIO Original Function Setting-->\"C:\\Program Files\\InstallShield Installation Information\\{A63E7492-A0BC-4BB9-89A7-352965222380}\\setup.exe\" -runfromtemp -l0x040c -removeonly
VAIO Power Management-->\"C:\\Program Files\\InstallShield Installation Information\\{802889F8-6AF5-45A5-9764-CA5B999E50FC}\\setup.exe\" -runfromtemp -l0x040c -removeonly
VAIO Update 4-->\"C:\\Program Files\\InstallShield Installation Information\\{83CDA18E-0BF3-4ACA-872C-B4CDABF2360E}\\setup.exe\" -runfromtemp -l0x040c -removeonly
VAIO Wallpaper Contents-->\"C:\\Program Files\\InstallShield Installation Information\\{D60F97EC-EF06-4E1E-B0D1-C2CBABA62FA3}\\setup.exe\" -runfromtemp -l0x040c -removeonly
WIDCOMM Bluetooth Software 6.1.0.2000-->MsiExec.exe /X{03D1988F-469F-4843-8E6E-E5FE9D17889D}
Windows Live Call-->MsiExec.exe /I{82C7B308-0BDD-49D8-8EA5-9CD3A3F9DF41}
Windows Live Communications Platform-->MsiExec.exe /I{ED00D08A-3C5F-488D-93A0-A04F21F23956}
Windows Live Contrôle parental-->MsiExec.exe /X{D5D81435-B8DE-4CAF-867F-7998F2B92CFC}
Windows Live FolderShare-->MsiExec.exe /X{2075CB0A-D26F-4DAA-B424-5079296B43BA}
Windows Live Mail-->MsiExec.exe /I{5DD76286-9BE7-4894-A990-E905E91AC818}
Windows Live Messenger-->MsiExec.exe /X{770F1BEC-2871-4E70-B837-FB8525FFA3B1}
Windows Live Movie Maker-->MsiExec.exe /X{53B20C18-D8D4-4588-8737-9BBFE303C354}
Windows Live Toolbar-->MsiExec.exe /X{F7D27C70-90F5-49B9-B188-0A133C0CE353}
Windows Live Writer-->MsiExec.exe /X{4634B21A-CC07-4396-890C-2B8168661FEA}
WinDVD for VAIO-->C:\\Program Files\\InstallShield Installation Information\\{20471B27-D702-4FE8-8DEC-0702CC8C0A85}\\setup.exe -runfromtemp -l0x040c
Wireless Switch Setting Utility-->RunDll32 C:\\PROGRA~1\\COMMON~1\\INSTAL~1\\PROFES~1\\RunTime\\11\\50\\Intel32\\Ctor.dll,LaunchSetup \"C:\\Program Files\\InstallShield Installation Information\\{2A0F3EF9-68EE-49E9-A05B-ED5B82DF63E5}\\setup.exe\" -l0x40c -removeonly

======Security center information======

AV: AVG Anti-Virus Free
AS: AVG Anti-Virus Free (disabled)
AS: Windows Defender (disabled)

======System event log======

Computer Name: PC-de-OPCuser
Event Code: 4001
Message: Le Service d’autoconfiguration WLAN s’est arrêté correctement.

Record Number: 66282
Source Name: Microsoft-Windows-WLAN-AutoConfig
Time Written: 20091204081142.097800-000
Event Type: Avertissement
User: AUTORITE NT\\SYSTEM

Computer Name: PC-de-OPCuser
Event Code: 7000
Message: Le service General Purpose USB Driver (adildr.sys) n\'a pas pu démarrer en raison de l\'erreur :
Le service ne peut pas être démarré parce qu\'il est désactivé ou qu\'aucun périphérique activé ne lui est associé.
Record Number: 66303
Source Name: Service Control Manager
Time Written: 20091204162950.000000-000
Event Type: Erreur
User:

Computer Name: PC-de-OPCuser
Event Code: 7000
Message: Le service Parallel port driver n\'a pas pu démarrer en raison de l\'erreur :
Le service ne peut pas être démarré parce qu\'il est désactivé ou qu\'aucun périphérique activé ne lui est associé.
Record Number: 66338
Source Name: Service Control Manager
Time Written: 20091204162950.000000-000
Event Type: Erreur
User:

Computer Name: PC-de-OPCuser
Event Code: 4
Message: Le spouleur d’impression n’a pas pu rouvrir une connexion d’imprimante existante car il n’a pas pu lire les informations de configuration dans la clé de Registre S-1-5-18\\Printers\\Connections. Le spouleur d’impression n’a pas pu ouvrir la clé de Registre. Ceci peut se produire si la clé de Registre est endommagée ou absente, ou si le Registre est momentanément indisponible.
Record Number: 66399
Source Name: Microsoft-Windows-SpoolerWin32SPL
Time Written: 20091204163335.000000-000
Event Type: Avertissement
User:

Computer Name: PC-de-OPCuser
Event Code: 4
Message: Le spouleur d’impression n’a pas pu rouvrir une connexion d’imprimante existante car il n’a pas pu lire les informations de configuration dans la clé de Registre S-1-5-18\\Printers\\Connections. Le spouleur d’impression n’a pas pu ouvrir la clé de Registre. Ceci peut se produire si la clé de Registre est endommagée ou absente, ou si le Registre est momentanément indisponible.
Record Number: 66400
Source Name: Microsoft-Windows-SpoolerWin32SPL
Time Written: 20091204163335.000000-000
Event Type: Avertissement
User:

=====Application event log=====

Computer Name: PC-de-OPCuser
Event Code: 20227
Message: CoID={7B318A56-B20C-4F54-B210-0E7988EB0437} : L\'utilisateur PC-de-OPCuser\\OPCuser a composé le numéro de la connexion fawri. La connexion a échoué. Code d\'erreur retourné : 691.
Record Number: 19232
Source Name: RasClient
Time Written: 20091204163044.000000-000
Event Type: Erreur
User:

Computer Name: PC-de-OPCuser
Event Code: 20227
Message: CoID={36FFFC13-1ECA-45D3-A100-D7EE95CA05A9} : L\'utilisateur PC-de-OPCuser\\OPCuser a composé le numéro de la connexion fawri. La connexion a échoué. Code d\'erreur retourné : 691.
Record Number: 19238
Source Name: RasClient
Time Written: 20091204163053.000000-000
Event Type: Erreur
User:

Computer Name: PC-de-OPCuser
Event Code: 11
Message: Échec de l\'extraction de la liste racine tierce partie depuis le fichier CAB de mise à jour automatique à : www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab avec l\'erreur : Une chaîne de certificats n\'a pas pu être établie vers une autorité racine de confiance.
.
Record Number: 19240
Source Name: Microsoft-Windows-CAPI2
Time Written: 20091204163055.000000-000
Event Type: Erreur
User:

Computer Name: PC-de-OPCuser
Event Code: 484
Message: wlcomm (4204) C:\\Users\\OPCuser\\AppData\\Local\\Microsoft\\Windows Live Contacts\\{b9775132-bfcf-4518-8e55-82ff78734392}\\: An attempt to remove the folder \"C:\\Users\\OPCuser\\AppData\\Local\\Microsoft\\Windows Live Contacts\\{b9775132-bfcf-4518-8e55-82ff78734392}\\DBStore\\Backup\\old\" failed with system error 145 (0x00000091): \"Le répertoire n\'est pas vide. \". The remove folder operation will fail with error -1022 (0xfffffc02).
Record Number: 19249
Source Name: ESENT
Time Written: 20091204163729.000000-000
Event Type: Erreur
User:

Computer Name: PC-de-OPCuser
Event Code: 215
Message: wlcomm (4204) C:\\Users\\OPCuser\\AppData\\Local\\Microsoft\\Windows Live Contacts\\{b9775132-bfcf-4518-8e55-82ff78734392}\\: The backup has been stopped because it was halted by the client or the connection with the client failed.
Record Number: 19250
Source Name: ESENT
Time Written: 20091204163729.000000-000
Event Type: Erreur
User:

=====Security event log=====

Computer Name: PC-de-OPCuser
Event Code: 5038
Message: L’intégrité du code a déterminé que le hachage de l’image d’un fichier n’est pas valide. Le fichier peut être endommagé en raison d’une modification non autorisée ou le hachage non valide peut indiquer une erreur d’unité de disque potentielle.

Nom du fichier : \\Device\\HarddiskVolume2\\Windows\\System32\\nvd3dum.dll
Record Number: 15660
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20091204173121.777878-000
Event Type: Échec de l\'audit
User:

Computer Name: PC-de-OPCuser
Event Code: 5038
Message: L’intégrité du code a déterminé que le hachage de l’image d’un fichier n’est pas valide. Le fichier peut être endommagé en raison d’une modification non autorisée ou le hachage non valide peut indiquer une erreur d’unité de disque potentielle.

Nom du fichier : \\Device\\HarddiskVolume2\\Windows\\System32\\SonyAIwd.dll
Record Number: 15661
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20091204173124.846878-000
Event Type: Échec de l\'audit
User:

Computer Name: PC-de-OPCuser
Event Code: 5038
Message: L’intégrité du code a déterminé que le hachage de l’image d’un fichier n’est pas valide. Le fichier peut être endommagé en raison d’une modification non autorisée ou le hachage non valide peut indiquer une erreur d’unité de disque potentielle.

Nom du fichier : \\Device\\HarddiskVolume2\\Windows\\System32\\SonyAIwd.dll
Record Number: 15662
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20091204173124.890878-000
Event Type: Échec de l\'audit
User:

Computer Name: PC-de-OPCuser
Event Code: 4904
Message: Une tentative d’inscription de la source d’un événement de sécurité a été effectuée.

Sujet :
ID de sécurité : S-1-5-18
Nom du compte : PC-DE-OPCUSER$
Domaine du compte : WORKGROUP
ID d’ouverture de session : 0x3e7

Processus :
ID du processus : 0x1334
Nom du processus : C:\\Windows\\System32\\VSSVC.exe

Source de l’événement :
Nom de la source : VSSAudit
ID de la source de l’événement : 0xdbdd1e
Record Number: 15663
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20091204180401.400878-000
Event Type: Succès de l\'audit
User:

Computer Name: PC-de-OPCuser
Event Code: 4905
Message: Une tentative d’annulation d’inscription de la source d’un événement de sécurité a été effectuée.

Sujet :
ID de sécurité : S-1-5-18
Nom du compte : PC-DE-OPCUSER$
Domaine du compte : WORKGROUP
ID d’ouverture de session : 0x3e7

Processus :
ID du processus : 0x1334
Nom du processus : C:\\Windows\\System32\\VSSVC.exe

Source de l’événement :
Nom de la source : VSSAudit
ID de la source de l’événement : 0xdbdd1e
Record Number: 15664
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20091204180401.400878-000
Event Type: Succès de l\'audit
User:

======Environment variables======

\"ComSpec\"=%SystemRoot%\\system32\\cmd.exe
\"FP_NO_HOST_CHECK\"=NO
\"OS\"=Windows_NT
\"Path\"=%SystemRoot%\\system32;%SystemRoot%;%SystemRoot%\\System32\\Wbem;C:\\Program Files\\Common Files\\Roxio Shared\\DLLShared\\;C:\\Program Files\\Common Files\\Roxio Shared\\DLLShared\\;C:\\Program Files\\Common Files\\Roxio Shared\\9.0\\DLLShared\\
\"PATHEXT\"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
\"PROCESSOR_ARCHITECTURE\"=x86
\"TEMP\"=%SystemRoot%\\TEMP
\"TMP\"=%SystemRoot%\\TEMP
\"USERNAME\"=SYSTEM
\"windir\"=%SystemRoot%
\"PROCESSOR_LEVEL\"=6
\"PROCESSOR_IDENTIFIER\"=x86 Family 6 Model 15 Stepping 13, GenuineIntel
\"PROCESSOR_REVISION\"=0f0d
\"NUMBER_OF_PROCESSORS\"=2
\"configsetroot\"=%SystemRoot%\\ConfigSetRoot
\"RoxioCentral\"=C:\\Program Files\\Common Files\\Roxio Shared\\9.0\\Roxio Central33\\

-----------------EOF-----------------

Le 2ème rapport à suivre :

sammou79 sammou79
34 contributions
Membre depuis le 24/04/2006
Envoyé le 05/12/2009 à 19:17


la suite :

Logfile of random\'s system information tool 1.06 (written by random/random)
Run by OPCuser at 2009-12-04 20:37:53
Microsoft® Windows Vista™ Édition Familiale Premium
System drive C: has 113 GB (63%) free of 180 GB
Total RAM: 2046 MB (54% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 20:38:43, on 04/12/2009
Platform: Windows Vista (WinNT 6.00.1904)
MSIE: Internet Explorer v7.00 (7.00.6000.16916)
Boot mode: Normal

Running processes:
C:\\Windows\\system32\\Dwm.exe
C:\\Windows\\Explorer.EXE
C:\\Windows\\system32\\taskeng.exe
C:\\Windows\\System32\\rundll32.exe
C:\\Windows\\RtHDVCpl.exe
C:\\Windows\\System32\\rundll32.exe
C:\\Program Files\\Synaptics\\SynTP\\SynTPEnh.exe
C:\\Program Files\\Sony\\ISB Utility\\ISBMgr.exe
C:\\Program Files\\Google\\Google Desktop Search\\GoogleDesktop.exe
C:\\Program Files\\Intel\\Intel Matrix Storage Manager\\IAAnotif.exe
C:\\Program Files\\Sony\\Marketing Tools\\MarketingTools.exe
C:\\Program Files\\Java\\jre1.6.0_02\\bin\\jusched.exe
C:\\Program Files\\Sony\\AppMonUtil\\AppMonUtility.exe
C:\\Program Files\\AVG\\AVG9\\avgtray.exe
C:\\Program Files\\Common Files\\Real\\Update_OB\\realsched.exe
C:\\Program Files\\Picasa2\\PicasaMediaDetector.exe
C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe
C:\\Program Files\\Google\\GoogleToolbarNotifier\\GoogleToolbarNotifier.exe
C:\\Program Files\\WIDCOMM\\Bluetooth Software\\BTTray.exe
C:\\Program Files\\Sony\\SonicStage Mastering Studio\\Audio Filter\\SSMSFilter.exe
C:\\Windows\\system32\\taskeng.exe
C:\\Program Files\\Sony\\VAIO Update 4\\VAIOUpdt.exe
C:\\Program Files\\Sony\\Wireless Switch Setting Utility\\Switcher.exe
C:\\Program Files\\Google\\Google Desktop Search\\GoogleDesktop.exe
C:\\Windows\\System32\\mobsync.exe
C:\\Program Files\\Windows Media Player\\wmplayer.exe
C:\\Program Files\\Windows Media Player\\WMPNSCFG.exe
C:\\Windows\\system32\\wuauclt.exe
C:\\Program Files\\Windows Live\\Contacts\\wlcomm.exe
C:\\Program Files\\Internet Explorer\\ieuser.exe
C:\\Windows\\system32\\Macromed\\Flash\\FlashUtil10c.exe
C:\\Program Files\\Skype\\Phone\\Skype.exe
C:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe
C:\\Users\\OPCuser\\Desktop\\RSIT.exe
C:\\Windows\\system32\\SearchFilterHost.exe
C:\\Program Files\\trend micro\\OPCuser.exe

R1 - HKCU\\Software\\Microsoft\\Internet Explorer\\Main,Default_Page_URL = http://www.club-vaio.com
R1 - HKLM\\Software\\Microsoft\\Internet Explorer\\Main,Default_Page_URL = http://www.club-vaio.com
R1 - HKLM\\Software\\Microsoft\\Internet Explorer\\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\\Software\\Microsoft\\Internet Explorer\\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\\Software\\Microsoft\\Internet Explorer\\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\\Software\\Microsoft\\Internet Explorer\\Search,SearchAssistant =
R0 - HKLM\\Software\\Microsoft\\Internet Explorer\\Search,CustomizeSearch =
R0 - HKCU\\Software\\Microsoft\\Internet Explorer\\Toolbar,LinksFolderName =
R3 - URLSearchHook: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\\Program Files\\AVG\\AVG9\\Toolbar\\IEToolbar.dll
R3 - URLSearchHook: (no name) - *{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
O1 - Hosts: ::1 localhost
O2 - BHO: Aide pour le lien d\'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\\Program Files\\Common Files\\Adobe\\Acrobat\\ActiveX\\AcroIEHelper.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - c:\\program files\\real\\realplayer\\rpbrowserrecordplugin.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\\Program Files\\AVG\\AVG9\\avgssie.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\\Program Files\\Microsoft\\Search Enhancement Pack\\Search Helper\\SEPsearchhelperie.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\\Program Files\\Java\\jre1.6.0_02\\bin\\ssv.dll
O2 - BHO: Programme d\'aide de l\'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\\Program Files\\Common Files\\Microsoft Shared\\Windows Live\\WindowsLiveLogin.dll
O2 - BHO: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\\Program Files\\AVG\\AVG9\\Toolbar\\IEToolbar.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\\Program Files\\Google\\Google Toolbar\\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\\Program Files\\Google\\GoogleToolbarNotifier\\5.4.4525.1752\\swg.dll
O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\\Program Files\\Google\\Google Toolbar\\Component\\fastsearch_B7C5AC242193BB3E.dll
O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\\PROGRA~1\\GOOGLE~1\\BAE.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\\Program Files\\Windows Live\\Toolbar\\wltcore.dll
O3 - Toolbar: AVG Security Toolbar - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\\Program Files\\AVG\\AVG9\\Toolbar\\IEToolbar.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\\Program Files\\Google\\Google Toolbar\\GoogleToolbar_32.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\\Program Files\\Windows Live\\Toolbar\\wltcore.dll
O4 - HKLM\\..\\Run: [Windows Defender] %ProgramFiles%\\Windows Defender\\MSASCui.exe -hide
O4 - HKLM\\..\\Run: [NvSvc] RUNDLL32.EXE C:\\Windows\\system32\\nvsvc.dll,nvsvcStart
O4 - HKLM\\..\\Run: [NvCplDaemon] RUNDLL32.EXE C:\\Windows\\system32\\NvCpl.dll,NvStartup
O4 - HKLM\\..\\Run: [NvMediaCenter] RUNDLL32.EXE C:\\Windows\\system32\\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\\..\\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\\..\\Run: [Skytel] Skytel.exe
O4 - HKLM\\..\\Run: [SynTPEnh] C:\\Program Files\\Synaptics\\SynTP\\SynTPEnh.exe
O4 - HKLM\\..\\Run: [Adobe Reader Speed Launcher] \"C:\\Program Files\\Adobe\\Reader 8.0\\Reader\\Reader_sl.exe\"
O4 - HKLM\\..\\Run: [ISBMgr.exe] \"C:\\Program Files\\Sony\\ISB Utility\\ISBMgr.exe\"
O4 - HKLM\\..\\Run: [Google Desktop Search] \"C:\\Program Files\\Google\\Google Desktop Search\\GoogleDesktop.exe\" /startup
O4 - HKLM\\..\\Run: [IAAnotif] \"C:\\Program Files\\Intel\\Intel Matrix Storage Manager\\Iaanotif.exe\"
O4 - HKLM\\..\\Run: [MarketingTools] C:\\Program Files\\Sony\\Marketing Tools\\MarketingTools.exe
O4 - HKLM\\..\\Run: [SunJavaUpdateSched] \"C:\\Program Files\\Java\\jre1.6.0_02\\bin\\jusched.exe\"
O4 - HKLM\\..\\Run: [AppMon Utility] \"C:\\Program Files\\Sony\\AppMonUtil\\AppMonUtility.exe\" @@@Start
O4 - HKLM\\..\\Run: [AVG9_TRAY] C:\\PROGRA~1\\AVG\\AVG9\\avgtray.exe
O4 - HKLM\\..\\Run: [TkBellExe] \"C:\\Program Files\\Common Files\\Real\\Update_OB\\realsched.exe\" -osboot
O4 - HKCU\\..\\Run: [Picasa Media Detector] C:\\Program Files\\Picasa2\\PicasaMediaDetector.exe
O4 - HKCU\\..\\Run: [MsnMsgr] \"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe\" /background
O4 - HKCU\\..\\Run: [Yahoo Messengger] C:\\Windows\\system32\\SSVICHOSST.exe
O4 - HKCU\\..\\Run: [swg] \"C:\\Program Files\\Google\\GoogleToolbarNotifier\\GoogleToolbarNotifier.exe\"
O4 - HKUS\\S-1-5-19\\..\\Run: [Sidebar] %ProgramFiles%\\Windows Sidebar\\Sidebar.exe /detectMem (User \'SERVICE LOCAL\')
O4 - HKUS\\S-1-5-19\\..\\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User \'SERVICE LOCAL\')
O4 - HKUS\\S-1-5-20\\..\\Run: [Sidebar] %ProgramFiles%\\Windows Sidebar\\Sidebar.exe /detectMem (User \'SERVICE RÉSEAU\')
O4 - Startup: Audio Filter.lnk = C:\\Program Files\\Sony\\SonicStage Mastering Studio\\Audio Filter\\SSMSFilter.exe
O4 - Global Startup: BTTray.lnk = ?
O4 - Global Startup: DSLMON.lnk = ?
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\\PROGRA~1\\MICROS~2\\Office12\\EXCEL.EXE/3000
O8 - Extra context menu item: Envoyer au périphérique &Bluetooth... - C:\\Program Files\\WIDCOMM\\Bluetooth Software\\btsendto_ie.htm
O8 - Extra context menu item: Envoyer l\'&image au périphérique Bluetooth... - C:\\Program Files\\WIDCOMM\\Bluetooth Software\\btsendto_ie_ctx.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\\Program Files\\Java\\jre1.6.0_02\\bin\\ssv.dll
O9 - Extra \'Tools\' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\\Program Files\\Java\\jre1.6.0_02\\bin\\ssv.dll
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\\Program Files\\Windows Live\\Writer\\WriterBrowserExtension.dll
O9 - Extra \'Tools\' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\\Program Files\\Windows Live\\Writer\\WriterBrowserExtension.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\\PROGRA~1\\MICROS~2\\Office12\\REFIEBAR.DLL
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\\Program Files\\WIDCOMM\\Bluetooth Software\\btsendto_ie.htm
O9 - Extra \'Tools\' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\\Program Files\\WIDCOMM\\Bluetooth Software\\btsendto_ie.htm
O13 - Gopher Prefix:
O15 - Trusted Zone: *.canalplay.com
O15 - Trusted Zone: *.canalplusactive.com
O15 - Trusted Zone: *.canalplay.com (HKLM)
O15 - Trusted Zone: *.canalplusactive.com (HKLM)
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://messenger.zone.msn.com/binary/ZIntro.cab56649.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O16 - DPF: {E6187999-9FEC-46A1-A20F-F4CA977D5643} (ZoneChess Object) - http://messenger.zone.msn.com/binary/Chess.cab57176.cab
O17 - HKLM\\System\\CCS\\Services\\Tcpip\\..\\{3551FAD0-E625-4D37-97D7-65B6A6C51C1E}: NameServer = 41.221.20.4
O17 - HKLM\\System\\CS1\\Services\\Tcpip\\..\\{3551FAD0-E625-4D37-97D7-65B6A6C51C1E}: NameServer = 41.221.20.4
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\\Program Files\\AVG\\AVG9\\avgpp.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\\PROGRA~1\\COMMON~1\\Skype\\SKYPE4~1.DLL
O20 - AppInit_DLLs: C:\\PROGRA~1\\Google\\GOOGLE~1\\GOEC62~1.DLL,avgrsstx.dll
O23 - Service: AVG Free WatchDog (avg9wd) - AVG Technologies CZ, s.r.o. - C:\\Program Files\\AVG\\AVG9\\avgwdsvc.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\\Program Files\\Common Files\\Symantec Shared\\ccSvcHst.exe (file missing)
O23 - Service: Google Desktop Manager 5.7.806.10245 (GoogleDesktopManager-061008-081103) - Google - C:\\Program Files\\Google\\Google Desktop Search\\GoogleDesktop.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\\Program Files\\Google\\Common\\Google Updater\\GoogleUpdaterService.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\\Program Files\\Intel\\Intel Matrix Storage Manager\\Iaantmon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\\Program Files\\Common Files\\InstallShield\\Driver\\1150\\Intel 32\\IDriverT.exe
O23 - Service: IviRegMgr - InterVideo - C:\\Program Files\\Common Files\\InterVideo\\RegMgr\\iviRegMgr.exe
O23 - Service: MSCSPTISRV - Sony Corporation - C:\\Program Files\\Common Files\\Sony Shared\\AVLib\\MSCSPTISRV.exe
O23 - Service: PACSPTISVR - Unknown owner - C:\\Program Files\\Common Files\\Sony Shared\\AVLib\\PACSPTISVR.exe
O23 - Service: Service CANALPLAY - Canal+ Active - C:\\Program Files\\Lecteur CANALPLAY\\CanalPlayService.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\\Program Files\\Common Files\\Sony Shared\\AVLib\\SPTISRV.exe
O23 - Service: SigmaTel Audio Service (STacSV) - IDT, Inc. - C:\\Windows\\system32\\stacsv.exe
O23 - Service: CamMonitor (uCamMonitor) - ArcSoft, Inc. - C:\\Program Files\\ArcSoft\\Magic-i Visual Effects\\uCamMonitor.exe
O23 - Service: VAIO Entertainment TV Device Arbitration Service - Sony Corporation - C:\\Program Files\\Common Files\\Sony Shared\\VAIO Entertainment Platform\\VzCs\\VzHardwareResourceManager\\VzHardwareResourceManager.exe
O23 - Service: VAIO Event Service - Sony Corporation - C:\\Program Files\\Sony\\VAIO Event Service\\VESMgr.exe
O23 - Service: VAIO Media Integrated Server (VAIOMediaPlatform-IntegratedServer-AppServer) - Sony Corporation - C:\\Program Files\\Sony\\VAIO Media Integrated Server\\VMISrv.exe
O23 - Service: VAIO Media Integrated Server (HTTP) (VAIOMediaPlatform-IntegratedServer-HTTP) - Sony Corporation - C:\\Program Files\\Sony\\VAIO Media Integrated Server\\Platform\\SV_Httpd.exe
O23 - Service: VAIO Media Integrated Server (UPnP) (VAIOMediaPlatform-IntegratedServer-UPnP) - Sony Corporation - C:\\Program Files\\Sony\\VAIO Media Integrated Server\\Platform\\UPnPFramework.exe
O23 - Service: VAIO Media Gateway Server (VAIOMediaPlatform-Mobile-Gateway) - Sony Corporation - C:\\Program Files\\Sony\\VAIO Media Integrated Server\\Platform\\VmGateway.exe
O23 - Service: VAIO Media Content Collection (VAIOMediaPlatform-UCLS-AppServer) - Sony Corporation - C:\\Program Files\\Sony\\VAIO Media Integrated Server\\UCLS.exe
O23 - Service: VAIO Media Content Collection (HTTP) (VAIOMediaPlatform-UCLS-HTTP) - Sony Corporation - C:\\Program Files\\Sony\\VAIO Media Integrated Server\\Platform\\SV_Httpd.exe
O23 - Service: VAIO Media Content Collection (UPnP) (VAIOMediaPlatform-UCLS-UPnP) - Sony Corporation - C:\\Program Files\\Sony\\VAIO Media Integrated Server\\Platform\\UPnPFramework.exe
O23 - Service: VAIO Content Metadata Intelligent Analyzing Manager (VcmIAlzMgr) - Sony Corporation - C:\\Program Files\\Sony\\VCM Intelligent Analyzing Manager\\VcmIAlzMgr.exe
O23 - Service: VAIO Content Metadata XML Interface (VcmXmlIfHelper) - Sony Corporation - C:\\Program Files\\Common Files\\Sony Shared\\VcmXml\\VcmXmlIfHelper.exe
O23 - Service: VAIO Entertainment UPnP Client Adapter (Vcsw) - Sony Corporation - C:\\Program Files\\Common Files\\Sony Shared\\VAIO Entertainment Platform\\VCSW\\VCSW.exe
O23 - Service: VAIO Entertainment Database Service (VzCdbSvc) - Sony Corporation - C:\\Program Files\\Common Files\\Sony Shared\\VAIO Entertainment Platform\\VzCdb\\VzCdbSvc.exe
O23 - Service: VAIO Entertainment File Import Service (VzFw) - Sony Corporation - C:\\Program Files\\Common Files\\Sony Shared\\VAIO Entertainment Platform\\VzCdb\\VzFw.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\\Windows\\system32\\DRIVERS\\xaudio.exe

--
End of file - 14205 bytes

======Registry dump======

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Browser Helper Objects\\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Aide pour le lien d\'Adobe PDF Reader - C:\\Program Files\\Common Files\\Adobe\\Acrobat\\ActiveX\\AcroIEHelper.dll [2006-10-22 62080]

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Browser Helper Objects\\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
RealPlayer Download and Record Plugin for Internet Explorer - c:\\program files\\real\\realplayer\\rpbrowserrecordplugin.dll [2009-12-02 329312]

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Browser Helper Objects\\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\\Program Files\\AVG\\AVG9\\avgssie.dll [2009-12-02 1475864]

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Browser Helper Objects\\{5C255C8A-E604-49b4-9D64-90988571CECB}]

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Browser Helper Objects\\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\\Program Files\\Microsoft\\Search Enhancement Pack\\Search Helper\\SEPsearchhelperie.dll [2009-05-19 137600]

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Browser Helper Objects\\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
SSVHelper Class - C:\\Program Files\\Java\\jre1.6.0_02\\bin\\ssv.dll [2007-07-12 501136]

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Browser Helper Objects\\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Programme d\'aide de l\'Assistant de connexion Windows Live - C:\\Program Files\\Common Files\\Microsoft Shared\\Windows Live\\WindowsLiveLogin.dll [2009-02-17 408440]

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Browser Helper Objects\\{A3BC75A2-1F87-4686-AA43-5347D756017C}]
AVG Security Toolbar BHO - C:\\Program Files\\AVG\\AVG9\\Toolbar\\IEToolbar.dll [2009-10-16 1119488]

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Browser Helper Objects\\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\\Program Files\\Google\\Google Toolbar\\GoogleToolbar_32.dll [2009-09-22 256112]

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Browser Helper Objects\\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\\Program Files\\Google\\GoogleToolbarNotifier\\5.4.4525.1752\\swg.dll [2009-12-02 764912]

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Browser Helper Objects\\{C84D72FE-E17D-4195-BB24-76C02E2E7C4E}]
Google Dictionary Compression sdch - C:\\Program Files\\Google\\Google Toolbar\\Component\\fastsearch_B7C5AC242193BB3E.dll [2009-09-22 458736]

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Browser Helper Objects\\{CA6319C0-31B7-401E-A518-A07C3DB8F777}]
CBrowserHelperObject Object - C:\\PROGRA~1\\GOOGLE~1\\BAE.dll [2006-06-23 98304]

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Browser Helper Objects\\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
Windows Live Toolbar Helper - C:\\Program Files\\Windows Live\\Toolbar\\wltcore.dll [2009-02-06 1068904]

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Internet Explorer\\Toolbar]
{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - AVG Security Toolbar - C:\\Program Files\\AVG\\AVG9\\Toolbar\\IEToolbar.dll [2009-10-16 1119488]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\\Program Files\\Google\\Google Toolbar\\GoogleToolbar_32.dll [2009-09-22 256112]
{21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar - C:\\Program Files\\Windows Live\\Toolbar\\wltcore.dll [2009-02-06 1068904]

[HKEY_LOCAL_MACHINE\\Software\\Microsoft\\Windows\\CurrentVersion\\Run]
\"Windows Defender\"=C:\\Program Files\\Windows Defender\\MSASCui.exe [2007-11-21 1006264]
\"NvSvc\"=C:\\Windows\\system32\\nvsvc.dll [2007-11-07 86016]
\"NvCplDaemon\"=C:\\Windows\\system32\\NvCpl.dll [2007-11-07 8497696]
\"NvMediaCenter\"=C:\\Windows\\system32\\NvMcTray.dll [2007-11-07 81920]
\"RtHDVCpl\"=C:\\Windows\\RtHDVCpl.exe [2007-08-25 4669440]
\"Skytel\"=C:\\Windows\\Skytel.exe [2007-08-25 1826816]
\"SynTPEnh\"=C:\\Program Files\\Synaptics\\SynTP\\SynTPEnh.exe [2007-03-10 835584]
\"Adobe Reader Speed Launcher\"=C:\\Program Files\\Adobe\\Reader 8.0\\Reader\\Reader_sl.exe [2007-05-11 40048]
\"ISBMgr.exe\"=C:\\Program Files\\Sony\\ISB Utility\\ISBMgr.exe [2007-09-19 311296]
\"Google Desktop Search\"=C:\\Program Files\\Google\\Google Desktop Search\\GoogleDesktop.exe [2008-12-13 29744]
\"IAAnotif\"=C:\\Program Files\\Intel\\Intel Matrix Storage Manager\\Iaanotif.exe [2007-02-12 174872]
\"MarketingTools\"=C:\\Program Files\\Sony\\Marketing Tools\\MarketingTools.exe [2007-11-21 36864]
\"SunJavaUpdateSched\"=C:\\Program Files\\Java\\jre1.6.0_02\\bin\\jusched.exe [2007-07-12 132496]
\"AppMon Utility\"=C:\\Program Files\\Sony\\AppMonUtil\\AppMonUtility.exe [2007-09-20 542560]
\"AVG9_TRAY\"=C:\\PROGRA~1\\AVG\\AVG9\\avgtray.exe [2009-12-02 2020120]
\"TkBellExe\"=C:\\Program Files\\Common Files\\Real\\Update_OB\\realsched.exe [2009-12-02 198160]

[HKEY_CURRENT_USER\\Software\\Microsoft\\Windows\\CurrentVersion\\Run]
\"Picasa Media Detector\"=C:\\Program Files\\Picasa2\\PicasaMediaDetector.exe [2007-09-12 443968]
\"MsnMsgr\"=C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe [2009-07-26 3883856]
\"Yahoo Messengger\"=C:\\Windows\\system32\\SSVICHOSST.exe []
\"swg\"=C:\\Program Files\\Google\\GoogleToolbarNotifier\\GoogleToolbarNotifier.exe [2009-04-25 39408]

C:\\ProgramData\\Microsoft\\Windows\\Start Menu\\Programs\\Startup
BTTray.lnk - C:\\Program Files\\WIDCOMM\\Bluetooth Software\\BTTray.exe
DSLMON.lnk - C:\\Program Files\\Huawei Technologies\\Huawei SmartAX MT810\\dslmon.exe

C:\\Users\\OPCuser\\AppData\\Roaming\\Microsoft\\Windows\\Start Menu\\Programs\\Startup
Audio Filter.lnk - C:\\Program Files\\Sony\\SonicStage Mastering Studio\\Audio Filter\\SSMSFilter.exe

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows NT\\CurrentVersion\\Windows]
\"AppInit_DLLS\"=\"C:\\PROGRA~1\\Google\\GOOGLE~1\\GOEC62~1.DLL,avgrsstx.dll\"

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows NT\\CurrentVersion\\Winlogon\\Notify\\VESWinlogon]
C:\\Windows\\system32\\VESWinlogon.dll [2007-08-14 98304]

[HKEY_LOCAL_MACHINE\\Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\System]
\"dontdisplaylastusername\"=0
\"legalnoticecaption\"=
\"legalnoticetext\"=
\"shutdownwithoutlogon\"=1
\"undockwithoutlogon\"=1

[HKEY_CURRENT_USER\\Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\explorer]
\"NoDriveTypeAutoRun\"=149

[HKEY_LOCAL_MACHINE\\system\\currentcontrolset\\services\\sharedaccess\\parameters\\firewallpolicy\\standardprofile\\authorizedapplications\\list]

[HKEY_LOCAL_MACHINE\\system\\currentcontrolset\\services\\sharedaccess\\parameters\\firewallpolicy\\domainprofile\\authorizedapplications\\list]

[HKEY_CURRENT_USER\\software\\microsoft\\windows\\currentversion\\explorer\\mountpoints2\\{1f5dd748-d66e-11dd-92f9-00730446ce1e}]
shell\\AutoRun\\command - G:\\oq.cmd
shell\\explore\\command - G:\\oq.cmd
shell\\open\\command - G:\\oq.cmd

[HKEY_CURRENT_USER\\software\\microsoft\\windows\\currentversion\\explorer\\mountpoints2\\{8efd1b44-df56-11dd-9164-00730446ce1e}]
shell\\AutoRun\\command - H:\\RavMon.exe
shell\\open\\command - H:\\RavMon.exe

[HKEY_CURRENT_USER\\software\\microsoft\\windows\\currentversion\\explorer\\mountpoints2\\{9af899d1-a850-11dd-ab56-001cbf93c6c0}]
shell\\AutoRun\\command - G:\\vva0hc0p.cmd
shell\\explore\\command - G:\\vva0hc0p.cmd
shell\\open\\command - G:\\vva0hc0p.cmd

[HKEY_CURRENT_USER\\software\\microsoft\\windows\\currentversion\\explorer\\mountpoints2\\{a3a2b4d4-b7e7-11dd-abaf-001cbf93c6c0}]
shell\\AutoRun\\command - C:\\Windows\\system32\\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL Wscript.exe /e:vbs winfile.jpg

[HKEY_CURRENT_USER\\software\\microsoft\\windows\\currentversion\\explorer\\mountpoints2\\{c7949655-35a5-11de-b506-001cbf93c6c0}]
shell\\AutoRun\\command - G:\\zPharaoh.exe
shell\\explore\\command - G:\\zPharaoh.exe
shell\\open\\command - G:\\zPharaoh.exe


======List of files/folders created in the last 1 months======

2009-12-04 20:37:53 ----D---- C:\\rsit
2009-12-04 20:37:53 ----D---- C:\\Program Files\\trend micro
2009-12-02 21:47:56 ----A---- C:\\Windows\\system32\\tzres.dll
2009-12-02 21:16:35 ----A---- C:\\Windows\\cdplayer.ini
2009-12-02 21:16:22 ----D---- C:\\My Music
2009-12-02 21:12:32 ----D---- C:\\ProgramData\\Real
2009-12-02 21:11:57 ----A---- C:\\Windows\\system32\\rmoc3260.dll
2009-12-02 21:11:46 ----A---- C:\\Windows\\system32\\pndx5032.dll
2009-12-02 21:11:46 ----A---- C:\\Windows\\system32\\pndx5016.dll
2009-12-02 21:11:40 ----D---- C:\\Program Files\\Common Files\\xing shared
2009-12-02 19:44:00 ----A---- C:\\Windows\\system32\\msxml6r.dll
2009-12-02 19:44:00 ----A---- C:\\Windows\\system32\\msxml6.dll
2009-12-02 19:44:00 ----A---- C:\\Windows\\system32\\msxml3r.dll
2009-12-02 19:44:00 ----A---- C:\\Windows\\system32\\msxml3.dll
2009-11-23 16:45:55 ----HD---- C:\\$AVG
2009-11-23 16:45:54 ----A---- C:\\Windows\\system32\\avgrsstx.dll
2009-11-23 16:45:27 ----D---- C:\\ProgramData\\AVG Security Toolbar
2009-11-23 16:45:11 ----D---- C:\\ProgramData\\avg9
2009-11-20 22:14:13 ----D---- C:\\Program Files\\CCleaner
2009-11-15 17:29:33 ----D---- C:\\ProgramData\\NOS
2009-11-14 18:23:42 ----D---- C:\\Users\\OPCuser\\AppData\\Roaming\\uTorrent
2009-11-11 21:44:54 ----D---- C:\\Program Files\\Microsoft Silverlight
2009-11-11 21:44:24 ----D---- C:\\Program Files\\Microsoft Office Outlook Connector
2009-11-11 21:42:38 ----D---- C:\\Program Files\\Microsoft Sync Framework
2009-11-11 21:38:51 ----D---- C:\\Program Files\\Microsoft SQL Server Compact Edition
2009-11-11 21:37:48 ----A---- C:\\Windows\\system32\\WindowsCodecsExt.dll
2009-11-11 21:37:48 ----A---- C:\\Windows\\system32\\WindowsCodecs.dll
2009-11-11 21:33:47 ----D---- C:\\Program Files\\Microsoft
2009-11-11 21:32:59 ----D---- C:\\Program Files\\Windows Live SkyDrive
2009-11-11 20:01:05 ----D---- C:\\Program Files\\Common Files\\Windows Live
2009-11-11 19:59:57 ----A---- C:\\Windows\\system32\\WSDApi.dll

======List of files/folders modified in the last 1 months======

2009-12-04 20:38:40 ----D---- C:\\Windows\\Prefetch
2009-12-04 20:37:53 ----RD---- C:\\Program Files
2009-12-04 20:37:47 ----D---- C:\\Windows\\Temp
2009-12-04 20:37:31 ----D---- C:\\Windows
2009-12-04 20:23:38 ----D---- C:\\Users\\OPCuser\\AppData\\Roaming\\Skype
2009-12-04 19:13:02 ----SHD---- C:\\System Volume Information
2009-12-03 20:24:06 ----D---- C:\\Windows\\System32
2009-12-02 21:50:13 ----D---- C:\\Windows\\winsxs
2009-12-02 21:49:45 ----D---- C:\\Windows\\system32\\fr-FR
2009-12-02 21:49:14 ----D---- C:\\Windows\\system32\\catroot2
2009-12-02 21:49:14 ----D---- C:\\Windows\\system32\\catroot
2009-12-02 21:47:41 ----SHD---- C:\\Windows\\Installer
2009-12-02 21:12:32 ----HD---- C:\\ProgramData
2009-12-02 21:12:32 ----D---- C:\\Users\\OPCuser\\AppData\\Roaming\\Real
2009-12-02 21:12:05 ----D---- C:\\Program Files\\Common Files\\Real
2009-12-02 21:11:40 ----D---- C:\\Program Files\\Common Files
2009-12-02 21:11:01 ----A---- C:\\Windows\\system32\\pncrt.dll
2009-12-02 19:40:53 ----D---- C:\\Windows\\system32\\drivers
2009-11-24 05:43:37 ----D---- C:\\Windows\\inf
2009-11-24 05:43:37 ----A---- C:\\Windows\\system32\\PerfStringBackup.INI
2009-11-24 05:36:35 ----D---- C:\\Program Files\\Reganam
2009-11-24 05:36:35 ----D---- C:\\Program Files\\Conduit
2009-11-23 16:45:12 ----D---- C:\\Program Files\\AVG
2009-11-23 16:44:49 ----D---- C:\\Program Files\\Common Files\\microsoft shared
2009-11-23 14:00:02 ----D---- C:\\Windows\\Minidump
2009-11-23 13:32:00 ----D---- C:\\ProgramData\\Norton
2009-11-23 13:27:41 ----D---- C:\\Program Files\\Common Files\\Symantec Shared
2009-11-20 22:26:19 ----D---- C:\\Windows\\Debug
2009-11-17 15:03:29 ----SD---- C:\\Windows\\Downloaded Program Files
2009-11-14 19:52:49 ----D---- C:\\Windows\\system32\\Tasks
2009-11-14 00:16:31 ----D---- C:\\ProgramData\\Microsoft Help
2009-11-14 00:16:30 ----RSD---- C:\\Windows\\assembly
2009-11-14 00:14:59 ----RSD---- C:\\Windows\\Fonts
2009-11-14 00:14:25 ----D---- C:\\Program Files\\Microsoft Works
2009-11-14 00:12:18 ----A---- C:\\Windows\\win.ini
2009-11-12 22:11:35 ----D---- C:\\Windows\\Microsoft.NET
2009-11-11 21:50:17 ----D---- C:\\Windows\\system32\\NDF
2009-11-11 21:50:11 ----SD---- C:\\Users\\OPCuser\\AppData\\Roaming\\Microsoft
2009-11-11 21:44:25 ----D---- C:\\Program Files\\Common Files\\System
2009-11-11 21:44:05 ----DC---- C:\\Windows\\system32\\DRVSTORE
2009-11-11 21:44:03 ----D---- C:\\Program Files\\Windows Live
2009-11-11 21:42:15 ----SD---- C:\\ProgramData\\Microsoft
2009-11-11 21:37:05 ----D---- C:\\Windows\\SoftwareDistribution
2009-11-05 18:36:21 ----A---- C:\\Windows\\system32\\mrt.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 AvgLdx86;AVG Free AVI Loader Driver x86; C:\\Windows\\System32\\Drivers\\avgldx86.sys [2009-11-23 333192]
R1 AvgMfx86;AVG Free On-access Scanner Minifilter Driver x86; C:\\Windows\\System32\\Drivers\\avgmfx86.sys [2009-11-23 28424]
R1 AvgTdiX;AVG Free Network Redirector; C:\\Windows\\System32\\Drivers\\avgtdix.sys [2009-12-02 360584]
R1 DMICall;Sony DMI Call service; C:\\Windows\\system32\\DRIVERS\\DMICall.sys [2007-09-19 10216]
R1 eeCtrl;Symantec Eraser Control driver; \\??\\C:\\Program Files\\Common Files\\Symantec Shared\\EENGINE\\eeCtrl.sys [2009-10-29 371248]
R2 mdmxsdk;mdmxsdk; C:\\Windows\\system32\\DRIVERS\\mdmxsdk.sys [2007-09-27 12672]
R2 regi;regi; C:\\Windows\\system32\\drivers\\regi.sys [2007-04-17 11032]
R2 XAudio;XAudio; C:\\Windows\\system32\\DRIVERS\\xaudio.sys [2007-09-27 8192]
R3 adiusbae;USB ADSL LAN Adapter; C:\\Windows\\system32\\DRIVERS\\adiusbae.sys [2005-10-27 117289]
R3 ArcSoftKsUFilter;ArcSoft Magic-I Visual Effect; C:\\Windows\\system32\\DRIVERS\\ArcSoftKsUFilter.sys [2007-10-29 17920]
R3 CmBatt;Pilote pour Batterie à méthode de contrôle ACPI Microsoft; C:\\Windows\\system32\\DRIVERS\\CmBatt.sys [2006-11-02 14208]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\\Windows\\System32\\Drivers\\GEARAspiWDM.sys [2008-04-17 15464]
R3 HSF_DPV;HSF_DPV; C:\\Windows\\system32\\DRIVERS\\HSX_DPV.sys [2007-09-27 985600]
R3 HSXHWAZL;HSXHWAZL; C:\\Windows\\system32\\DRIVERS\\HSXHWAZL.sys [2007-09-27 207360]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\\Windows\\system32\\drivers\\RTKVHDA.sys [2007-08-25 1841312]
R3 NETw4v32;Pilote de carte Intel(R) Wireless WiFi Link pour Windows Vista 32 bits; C:\\Windows\\system32\\DRIVERS\\NETw4v32.sys [2007-09-19 2222080]
R3 nvlddmkm;nvlddmkm; C:\\Windows\\system32\\DRIVERS\\nvlddmkm.sys [2007-11-07 7626400]
R3 R5U870FLx86;R5U870 UVC Lower Filter ; C:\\Windows\\System32\\Drivers\\R5U870FLx86.sys [2007-11-08 73472]
R3 R5U870FUx86;R5U870 UVC Upper Filter ; C:\\Windows\\System32\\Drivers\\R5U870FUx86.sys [2007-11-08 43904]
R3 SFEP;Sony Firmware Extension Parser; C:\\Windows\\system32\\DRIVERS\\SFEP.sys [2007-08-29 9344]
R3 STHDA;IDT High Definition Audio CODEC; C:\\Windows\\system32\\drivers\\stwrt.sys [2007-10-27 330240]
R3 SynTP;Synaptics TouchPad Driver; C:\\Windows\\system32\\DRIVERS\\SynTP.sys [2007-03-10 181560]
R3 ti21sony;ti21sony; C:\\Windows\\system32\\drivers\\ti21sony.sys [2007-06-06 812544]
R3 usbvideo;R5U870 (UVC) ; C:\\Windows\\System32\\Drivers\\usbvideo.sys [2007-11-21 132608]
R3 winachsf;winachsf; C:\\Windows\\system32\\DRIVERS\\HSX_CNXT.sys [2007-09-27 659968]
R3 WUDFRd;WUDFRd; C:\\Windows\\system32\\DRIVERS\\WUDFRd.sys [2006-11-02 82560]
R3 yukonwlh;NDIS6.0 Miniport Driver for Marvell Yukon Ethernet Controller; C:\\Windows\\system32\\DRIVERS\\yk60x86.sys [2007-09-27 246784]
S2 ADILOADER;General Purpose USB Driver (adildr.sys); C:\\Windows\\System32\\Drivers\\adildr.sys [2005-10-27 50007]
S3 BthEnum;Pilote de bloc de demande Bluetooth; C:\\Windows\\system32\\DRIVERS\\BthEnum.sys [2007-11-21 19456]
S3 BthPan;Périphérique Bluetooth (réseau personnel); C:\\Windows\\system32\\DRIVERS\\bthpan.sys [2006-11-02 92160]
S3 BTHPORT;Pilote de port Bluetooth; C:\\Windows\\System32\\Drivers\\BTHport.sys [2007-11-21 220160]
S3 BTHUSB;Pilote USB radio Bluetooth; C:\\Windows\\System32\\Drivers\\BTHUSB.sys [2007-11-21 29184]
S3 btwaudio;Périphérique audio Bluetooth; C:\\Windows\\system32\\drivers\\btwaudio.sys [2007-10-10 81448]
S3 btwavdt;Bluetooth AVDT; C:\\Windows\\system32\\drivers\\btwavdt.sys [2007-10-10 99880]
S3 btwl2cap;Bluetooth L2CAP Service; C:\\Windows\\system32\\DRIVERS\\btwl2cap.sys [2007-10-10 28464]
S3 btwrchid;btwrchid; C:\\Windows\\system32\\DRIVERS\\btwrchid.sys [2007-10-10 17448]
S3 drmkaud;Filtre de décodeur DRM (Noyau Microsoft); C:\\Windows\\system32\\drivers\\drmkaud.sys [2006-11-02 5632]
S3 EraserUtilRebootDrv;EraserUtilRebootDrv; \\??\\C:\\Program Files\\Common Files\\Symantec Shared\\EENGINE\\EraserUtilRebootDrv.sys [2009-10-29 102448]
S3 fssfltr;FssFltr; C:\\Windows\\system32\\DRIVERS\\fssfltr.sys [2009-08-05 54632]
S3 HdAudAddService;Pilote de fonction UAA 1.1 Microsoft pour le service High Definition Audio; C:\\Windows\\system32\\drivers\\HdAudio.sys [2006-11-02 235520]
S3 HSFHWAZL;HSFHWAZL; C:\\Windows\\system32\\DRIVERS\\VSTAZL3.SYS [2006-11-02 200704]
S3 MSKSSRV;Proxy de service de répartition Microsoft; C:\\Windows\\system32\\drivers\\MSKSSRV.sys [2006-11-02 8192]
S3 MSPCLOCK;Proxy d\'horloge de répartition Microsoft; C:\\Windows\\system32\\drivers\\MSPCLOCK.sys [2006-11-02 5888]
S3 MSPQM;Proxy de gestion de qualité de répartition Microsoft; C:\\Windows\\system32\\drivers\\MSPQM.sys [2006-11-02 5504]
S3 MSTEE;Convertisseur en T/site-à-site de répartition Microsoft; C:\\Windows\\system32\\drivers\\MSTEE.sys [2006-11-02 6016]
S3 NETw3v32;Pilote de carte Intel(R) PRO/Wireless 3945ABG pour Windows Vista 32 bits; C:\\Windows\\system32\\DRIVERS\\NETw3v32.sys [2006-11-02 1781760]
S3 RFCOMM;Périphérique Bluetooth (TDI protocole RFCOMM); C:\\Windows\\system32\\DRIVERS\\rfcomm.sys [2006-11-02 49664]
S3 WimFltr;WimFltr; C:\\Windows\\system32\\DRIVERS\\wimfltr.sys [2007-05-26 128104]
S4 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\\Windows\\system32\\drivers\\wmiacpi.sys [2006-11-02 11264]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 avg9wd;AVG Free WatchDog; C:\\Program Files\\AVG\\AVG9\\avgwdsvc.exe [2009-11-23 285392]
R2 BthServ;@%SystemRoot%\\System32\\bthserv.dll,-101; C:\\Windows\\system32\\svchost.exe [2006-11-02 22016]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\\Program Files\\Intel\\Intel Matrix Storage Manager\\Iaantmon.exe [2007-02-12 355096]
R2 IviRegMgr;IviRegMgr; C:\\Program Files\\Common Files\\InterVideo\\RegMgr\\iviRegMgr.exe [2007-01-04 112152]
R2 SeaPort;SeaPort; C:\\Program Files\\Microsoft\\Search Enhancement Pack\\SeaPort\\SeaPort.exe [2009-05-19 240512]
R2 STacSV;SigmaTel Audio Service; C:\\Windows\\system32\\stacsv.exe [2007-10-27 102400]
R2 uCamMonitor;CamMonitor; C:\\Program Files\\ArcSoft\\Magic-i Visual Effects\\uCamMonitor.exe [2007-10-31 125440]
R2 VAIO Event Service;VAIO Event Service; C:\\Program Files\\Sony\\VAIO Event Service\\VESMgr.exe [2007-08-14 182392]
R2 VzCdbSvc;VAIO Entertainment Database Service; C:\\Program Files\\Common Files\\Sony Shared\\VAIO Entertainment Platform\\VzCdb\\VzCdbSvc.exe [2007-08-28 192512]
R2 VzFw;VAIO Entertainment File Import Service; C:\\Program Files\\Common Files\\Sony Shared\\VAIO Entertainment Platform\\VzCdb\\VzFw.exe [2007-08-28 131072]
R2 XAudioService;XAudioService; C:\\Windows\\system32\\DRIVERS\\xaudio.exe [2007-09-27 386560]
R3 Vcsw;VAIO Entertainment UPnP Client Adapter; C:\\Program Files\\Common Files\\Sony Shared\\VAIO Entertainment Platform\\VCSW\\VCSW.exe [2007-06-28 274432]
S2 CLTNetCnService;Symantec Lic NetConnect service; C:\\Program Files\\Common Files\\Symantec Shared\\ccSvcHst.exe /h ccCommon []
S3 fsssvc;Service Windows Live Contrôle parental; C:\\Program Files\\Windows Live\\Family Safety\\fsssvc.exe [2009-08-05 704864]
S3 GoogleDesktopManager-061008-081103;Google Desktop Manager 5.7.806.10245; C:\\Program Files\\Google\\Google Desktop Search\\GoogleDesktop.exe [2008-12-13 29744]
S3 gusvc;Google Software Updater; C:\\Program Files\\Google\\Common\\Google Updater\\GoogleUpdaterService.exe [2009-04-25 182768]
S3 IDriverT;InstallDriver Table Manager; C:\\Program Files\\Common Files\\InstallShield\\Driver\\1150\\Intel 32\\IDriverT.exe [2005-11-14 69632]
S3 MSCSPTISRV;MSCSPTISRV; C:\\Program Files\\Common Files\\Sony Shared\\AVLib\\MSCSPTISRV.exe [2006-12-14 45056]
S3 odserv;Microsoft Office Diagnostics Service; C:\\Program Files\\Common Files\\Microsoft Shared\\OFFICE12\\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\\Program Files\\Common Files\\Microsoft Shared\\Source Engine\\OSE.EXE [2006-10-26 145184]
S3 PACSPTISVR;PACSPTISVR; C:\\Program Files\\Common Files\\Sony Shared\\AVLib\\PACSPTISVR.exe [2006-12-14 57344]
S3 Service CANALPLAY;Service CANALPLAY; C:\\Program Files\\Lecteur CANALPLAY\\CanalPlayService.exe [2007-07-09 415392]
S3 SPTISRV;Sony SPTI Service; C:\\Program Files\\Common Files\\Sony Shared\\AVLib\\SPTISRV.exe [2006-12-14 69632]
S3 VAIO Entertainment TV Device Arbitration Service;VAIO Entertainment TV Device Arbitration Service; C:\\Program Files\\Common Files\\Sony Shared\\VAIO Entertainment Platform\\VzCs\\VzHardwareResourceManager\\VzHardwareResourceManager.exe [2007-06-28 73728]
S3 VAIOMediaPlatform-IntegratedServer-AppServer;VAIO Media Integrated Server; C:\\Program Files\\Sony\\VAIO Media Integrated Server\\VMISrv.exe [2007-06-20 2523136]
S3 VAIOMediaPlatform-IntegratedServer-HTTP;VAIO Media Integrated Server (HTTP); C:\\Program Files\\Sony\\VAIO Media Integrated Server\\Platform\\SV_Httpd.exe [2007-06-20 397312]
S3 VAIOMediaPlatform-IntegratedServer-UPnP;VAIO Media Integrated Server (UPnP); C:\\Program Files\\Sony\\VAIO Media Integrated Server\\Platform\\UPnPFramework.exe [2007-06-20 1089536]
S3 VAIOMediaPlatform-Mobile-Gateway;VAIO Media Gateway Server; C:\\Program Files\\Sony\\VAIO Media Integrated Server\\Platform\\VmGateway.exe [2007-06-20 499712]
S3 VAIOMediaPlatform-UCLS-AppServer;VAIO Media Content Collection; C:\\Program Files\\Sony\\VAIO Media Integrated Server\\UCLS.exe [2007-01-10 745472]
S3 VAIOMediaPlatform-UCLS-HTTP;VAIO Media Content Collection (HTTP); C:\\Program Files\\Sony\\VAIO Media Integrated Server\\Platform\\SV_Httpd.exe [2007-06-20 397312]
S3 VAIOMediaPlatform-UCLS-UPnP;VAIO Media Content Collection (UPnP); C:\\Program Files\\Sony\\VAIO Media Integrated Server\\Platform\\UPnPFramework.exe [2007-06-20 1089536]
S3 VcmIAlzMgr;VAIO Content Metadata Intelligent Analyzing Manager; C:\\Program Files\\Sony\\VCM Intelligent Analyzing Manager\\VcmIAlzMgr.exe [2007-09-28 292128]
S3 VcmXmlIfHelper;VAIO Content Metadata XML Interface; C:\\Program Files\\Common Files\\Sony Shared\\VcmXml\\VcmXmlIfHelper.exe [2007-09-20 79136]

-----------------EOF-----------------
Merci, j\'attends vos réponses!!!




malwarebleach malwarebleach
2 125 contributions
Membre depuis le 12/09/2009
Envoyé le 05/12/2009 à 19:25


Salut, [;)]

Merci de lire ce rapport et me dire l\'étape qui pourra désinfecter mon PC;



J\'ai donc lu tes rapports RSIT et j\'ai bien vu que tu es victime de belles infections qui se propagent par support amovible. [:o]

Voici la première étape de la désinfection :

  • Télécharge UsbFix et enregistre-le sur ton bureau

  • tutoriel recherche

  • Branche tes sources de données externes à ton PC, (clé USB, disque dur externe, etc...) suceptible d\'avoir été infectés sans les ouvrir

  • Double clic sur le raccourci UsbFix sur ton bureau, l\'installation se fera automatiquement

  • Choisi l\'option 1 (recherche)

  • Laisse travailler l\'outil

  • Ensuite post le rapport UsbFix.txt qui apparaîtra

  • Note : le rapport UsbFix.txt est sauvegardé a la racine du disque

* Note : \"Process.exe\", une composante de l\'outil, est détecté par certains antivirus (AntiVir, Dr.Web, Kaspersky Anti-Virus) comme étant un RiskTool.
Il ne s\'agit pas d\'un virus, mais d\'un utilitaire destiné à mettre fin à des processus.
Mis entre de mauvaises mains, cet utilitaire pourrait arrêter des logiciels de sécurité (Antivirus, Firewall...) d\'où l\'alerte émise par ces antivirus
Si tu ne sais pas demande, si tu sais partage !!
sammou79 sammou79
34 contributions
Membre depuis le 24/04/2006
Envoyé le 05/12/2009 à 19:54



############################## | UsbFix V6.059 |

User : OPCuser (Administrateurs) # PC-DE-OPCUSER
Update on 01/12/2009 by Chiquitine29, C_XX & Chimay8
Start at: 19:50:32 | 05/12/2009
Website : http://pagesperso-orange.fr/NosTools/index.html
Contact : FindyKill.Contact@gmail.com

Intel(R) Core(TM)2 Duo CPU T5450 @ 1.66GHz
Microsoft® Windows Vista™ Édition Familiale Premium (6.0.6000 32-bit) #
Internet Explorer 7.0.6000.16916
Windows Firewall Status : Enabled
AV : AVG Anti-Virus Free 9.0 [ Enabled | Updated ]

C:\\ -> Disque fixe local # 175,86 Go (110,3 Go free) # NTFS
D:\\ -> Disque amovible
E:\\ -> Disque amovible
F:\\ -> Disque CD-ROM
G:\\ -> Disque amovible # 245,6 Mo (17,03 Mo free) [SAMIRA] # FAT
H:\\ -> Disque amovible # 955,72 Mo (659,05 Mo free) [FIFITO] # FAT

############################## | Processus actifs |

C:\\Windows\\System32\\smss.exe 520
C:\\Windows\\system32\\csrss.exe 584
C:\\Windows\\system32\\csrss.exe 632
C:\\Windows\\system32\\wininit.exe 640
C:\\Program Files\\AVG\\AVG9\\avgchsvx.exe 652
C:\\Program Files\\AVG\\AVG9\\avgrsx.exe 660
C:\\Program Files\\AVG\\AVG9\\avgcsrvx.exe 708
C:\\Windows\\system32\\services.exe 736
C:\\Windows\\system32\\lsass.exe 760
C:\\Windows\\system32\\lsm.exe 768
C:\\Windows\\system32\\svchost.exe 1040
C:\\Windows\\system32\\winlogon.exe 1048
C:\\Windows\\system32\\svchost.exe 1132
C:\\Windows\\System32\\svchost.exe 1280
C:\\Windows\\System32\\svchost.exe 1304
C:\\Windows\\system32\\svchost.exe 1336
C:\\Windows\\system32\\SLsvc.exe 1604
C:\\Windows\\system32\\svchost.exe 1656
C:\\Windows\\system32\\svchost.exe 1780
C:\\Windows\\System32\\spoolsv.exe 352
C:\\Windows\\system32\\Dwm.exe 440
C:\\Windows\\system32\\taskeng.exe 448
C:\\Windows\\system32\\svchost.exe 532
C:\\Windows\\Explorer.EXE 904
C:\\Program Files\\AVG\\AVG9\\avgwdsvc.exe 1408
C:\\Windows\\system32\\svchost.exe 2120
C:\\Windows\\System32\\rundll32.exe 2132
C:\\Windows\\RtHDVCpl.exe 2152
C:\\Program Files\\Synaptics\\SynTP\\SynTPEnh.exe 2172
C:\\Program Files\\Sony\\ISB Utility\\ISBMgr.exe 2192
C:\\Program Files\\Google\\Google Desktop Search\\GoogleDesktop.exe 2200
C:\\Program Files\\Intel\\Intel Matrix Storage Manager\\IAAnotif.exe 2212
C:\\Program Files\\Sony\\Marketing Tools\\MarketingTools.exe 2220
C:\\Program Files\\Java\\jre1.6.0_02\\bin\\jusched.exe 2228
C:\\Program Files\\Sony\\AppMonUtil\\AppMonUtility.exe 2268
C:\\Program Files\\AVG\\AVG9\\avgtray.exe 2312
C:\\Program Files\\Common Files\\Real\\Update_OB\\realsched.exe 2324
C:\\Program Files\\Picasa2\\PicasaMediaDetector.exe 2332
C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe 2340
C:\\Program Files\\Intel\\Intel Matrix Storage Manager\\Iaantmon.exe 2440
C:\\Program Files\\Google\\GoogleToolbarNotifier\\GoogleToolbarNotifier.exe 2580
C:\\Program Files\\Common Files\\InterVideo\\RegMgr\\iviRegMgr.exe 2628
C:\\Program Files\\AVG\\AVG9\\avgnsx.exe 2716
C:\\Windows\\system32\\svchost.exe 2800
C:\\Program Files\\Microsoft\\Search Enhancement Pack\\SeaPort\\SeaPort.exe 2856
C:\\Windows\\system32\\stacsv.exe 2968
C:\\Program Files\\WIDCOMM\\Bluetooth Software\\BTTray.exe 3052
C:\\Windows\\system32\\svchost.exe 3064
C:\\Program Files\\ArcSoft\\Magic-i Visual Effects\\uCamMonitor.exe 3088
C:\\Program Files\\Sony\\VAIO Event Service\\VESMgr.exe 3112
C:\\Program Files\\Common Files\\Sony Shared\\VAIO Entertainment Platform\\VCSW\\VCSW.exe 3172
C:\\Program Files\\Sony\\SonicStage Mastering Studio\\Audio Filter\\SSMSFilter.exe 3204
C:\\Windows\\System32\\rundll32.exe 3232
C:\\Windows\\System32\\svchost.exe 3264
C:\\Windows\\system32\\SearchIndexer.exe 3296
C:\\Windows\\system32\\DRIVERS\\xaudio.exe 3356
C:\\Program Files\\Common Files\\Sony Shared\\VAIO Entertainment Platform\\VzCdb\\VzCdbSvc.exe 3392
C:\\Program Files\\Common Files\\Sony Shared\\VAIO Entertainment Platform\\VzCdb\\VzFw.exe 3556
C:\\Windows\\system32\\WUDFHost.exe 3620
C:\\Program Files\\Sony\\VAIO Event Service\\VESMgrSub.exe 3708
C:\\Windows\\system32\\taskeng.exe 3860
C:\\Program Files\\Sony\\VAIO Update 4\\VAIOUpdt.exe 2236
C:\\Windows\\system32\\taskeng.exe 1984
C:\\Program Files\\Sony\\Wireless Switch Setting Utility\\Switcher.exe 552
C:\\Program Files\\Google\\Google Desktop Search\\GoogleDesktop.exe 1236
C:\\Program Files\\Sony\\VAIO Power Management\\SPMgr.exe 628
C:\\Program Files\\Internet Explorer\\ieuser.exe 4596
C:\\Program Files\\Internet Explorer\\iexplore.exe 4612
C:\\Program Files\\Google\\Google Toolbar\\GoogleToolbarUser_32.exe 5156
C:\\Program Files\\Windows Live\\Toolbar\\wltuser.exe 5296
C:\\ProgramData\\Google\\Google Toolbar\\Update\\gtb254D.tmp.exe 1532
C:\\Windows\\system32\\wuauclt.exe 4524
C:\\Program Files\\Windows Live\\Contacts\\wlcomm.exe 3896
C:\\Windows\\system32\\Macromed\\Flash\\FlashUtil10c.exe 5124
C:\\Program Files\\Internet Explorer\\iexplore.exe 1648
C:\\Program Files\\Internet Explorer\\iexplore.exe 6132
C:\\Program Files\\Internet Explorer\\iexplore.exe 6084
C:\\Program Files\\Internet Explorer\\iexplore.exe 10492
C:\\Program Files\\Internet Explorer\\iexplore.exe 12252
\\\\?\\C:\\Windows\\system32\\wbem\\WMIADAP.EXE 13156
C:\\Windows\\system32\\wbem\\wmiprvse.exe 13232
C:\\Windows\\system32\\SearchProtocolHost.exe 14280
C:\\Windows\\system32\\SearchFilterHost.exe 13564
C:\\Windows\\system32\\conime.exe 13624
C:\\Windows\\system32\\wbem\\wmiprvse.exe 12612

################## | Fichiers # Dossiers infectieux |

H:\\winfile.jpg

################## | Spyware.OnlineGames |


################## | Registre # Clés infectieuses |

[HKCU\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run] \"Yahoo Messengger\"

################## | Registre # Mountpoints2 |

HKCU\\..\\..\\Explorer\\MountPoints2\\{1f5dd748-d66e-11dd-92f9-00730446ce1e}
shell\\AutoRun\\command =G:\\oq.cmd
shell\\explore\\Command =G:\\oq.cmd
shell\\open\\Command =G:\\oq.cmd

HKCU\\..\\..\\Explorer\\MountPoints2\\{8efd1b44-df56-11dd-9164-00730446ce1e}
shell\\AutoRun\\command =H:\\RavMon.exe
shell\\open\\Command =H:\\RavMon.exe

HKCU\\..\\..\\Explorer\\MountPoints2\\{9af899d1-a850-11dd-ab56-001cbf93c6c0}
shell\\AutoRun\\command =G:\\vva0hc0p.cmd
shell\\explore\\Command =G:\\vva0hc0p.cmd
shell\\open\\Command =G:\\vva0hc0p.cmd

HKCU\\..\\..\\Explorer\\MountPoints2\\{c7949655-35a5-11de-b506-001cbf93c6c0}
shell\\AutoRun\\command =G:\\zPharaoh.exe
shell\\explore\\command =G:\\zPharaoh.exe
shell\\open\\command =G:\\zPharaoh.exe

################## | Cracks / Keygens / Serials |


################## | ! Fin du rapport # UsbFix V6.059 ! |

Merci Malwarebleach [;)]

malwarebleach malwarebleach
2 125 contributions
Membre depuis le 12/09/2009
Envoyé le 05/12/2009 à 20:16


Merci Malwarebleach [;)]



Y\'a pas de quoi !! [:o)]

Tu vas passer à l\'option de suppression, les infections par support amovible sont confirmées :

  • tutoriel nettoyage

  • Branche tes sources de données externes à ton PC, (clé USB, disque dur externe, etc...) susceptible d avoir été infectés sans les ouvrir

  • Fais un clic droit sur le raccourci UsbFix présent sur ton bureau et choisi \"Exécuter en tant qu\'administrateur\" .

  • choisi l\'option 2 ( Suppression )

  • Ton bureau disparaîtra et le pc redémarrera .

  • Au redémarrage , UsbFix scannera ton pc , laisse travailler l\'outil.

  • Ensuite post le rapport UsbFix.txt qui apparaîtra avec le bureau .

  • Note : Le rapport UsbFix.txt est sauvegardé a la racine du disque.( C:\\UsbFix.txt )

  • ( CTRL+A Pour tout selectionner , CTRL+C pour copier et CTRL+V pour coller )

  • :!: UsbFix te proposera d\'uploader un dossier compressé à cette adresse : chiquitine.changelog.fr/Sample/Upload.php

  • Ce dossier a été créé par UsbFix et est enregistré sur ton bureau.

  • Merci de l\'envoyer à l\'adresse indiquée afin d\'aider l\'auteur de UsbFix dans ses recherches.

  • Merci d\'avance pour ta contribution !


Je dois m\'absenter, je reprendrai plus tard la suite de la chasse. [:o)]

Donc poste le rapport de suppression de UsbFix et fais aussi un nouveau rapport avec RSIT, cette fois tu n\'auras que le rapport log.txt qui va apparaître. Je n\'ai besoin que de celui-ci

A plus tard. [8D]
Si tu ne sais pas demande, si tu sais partage !!
sammou79 sammou79
34 contributions
Membre depuis le 24/04/2006
Envoyé le 05/12/2009 à 20:19


OK à plus tard et encore merci

sammou79 sammou79
34 contributions
Membre depuis le 24/04/2006
Envoyé le 05/12/2009 à 20:41


Le rapport :

Logfile of random\'s system information tool 1.06 (written by random/random)
Run by OPCuser at 2009-12-05 20:41:01
Microsoft® Windows Vista™ Édition Familiale Premium
System drive C: has 113 GB (63%) free of 180 GB
Total RAM: 2046 MB (56% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 20:41:10, on 05/12/2009
Platform: Windows Vista (WinNT 6.00.1904)
MSIE: Internet Explorer v7.00 (7.00.6000.16916)
Boot mode: Normal

Running processes:
C:\\Windows\\system32\\Dwm.exe
C:\\Windows\\system32\\taskeng.exe
C:\\Windows\\system32\\taskeng.exe
C:\\Program Files\\Sony\\VAIO Update 4\\VAIOUpdt.exe
C:\\Program Files\\Sony\\Wireless Switch Setting Utility\\Switcher.exe
C:\\Windows\\system32\\conime.exe
C:\\Windows\\explorer.exe
C:\\Program Files\\WIDCOMM\\Bluetooth Software\\BTTray.exe
C:\\Program Files\\Sony\\SonicStage Mastering Studio\\Audio Filter\\SSMSFilter.exe
C:\\Program Files\\Internet Explorer\\iexplore.exe
C:\\Program Files\\Google\\GoogleToolbarNotifier\\GoogleToolbarNotifier.exe
C:\\Program Files\\Windows Live\\Toolbar\\wltuser.exe
C:\\Users\\OPCuser\\Desktop\\RSIT.exe
C:\\Program Files\\trend micro\\OPCuser.exe

R1 - HKCU\\Software\\Microsoft\\Internet Explorer\\Main,Default_Page_URL = http://www.club-vaio.com
R1 - HKLM\\Software\\Microsoft\\Internet Explorer\\Main,Default_Page_URL = http://www.club-vaio.com
R1 - HKLM\\Software\\Microsoft\\Internet Explorer\\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\\Software\\Microsoft\\Internet Explorer\\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\\Software\\Microsoft\\Internet Explorer\\Main,Start Page = http://fr.msn.com/
R0 - HKLM\\Software\\Microsoft\\Internet Explorer\\Search,SearchAssistant =
R0 - HKLM\\Software\\Microsoft\\Internet Explorer\\Search,CustomizeSearch =
R1 - HKCU\\Software\\Microsoft\\Internet Explorer\\Main,Window Title = Windows Internet Explorer
R0 - HKCU\\Software\\Microsoft\\Internet Explorer\\Toolbar,LinksFolderName =
R3 - URLSearchHook: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\\Program Files\\AVG\\AVG9\\Toolbar\\IEToolbar.dll
R3 - URLSearchHook: (no name) - *{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
O1 - Hosts: ::1 localhost
O2 - BHO: Aide pour le lien d\'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\\Program Files\\Common Files\\Adobe\\Acrobat\\ActiveX\\AcroIEHelper.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - c:\\program files\\real\\realplayer\\rpbrowserrecordplugin.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\\Program Files\\AVG\\AVG9\\avgssie.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\\Program Files\\Microsoft\\Search Enhancement Pack\\Search Helper\\SEPsearchhelperie.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\\Program Files\\Java\\jre1.6.0_02\\bin\\ssv.dll
O2 - BHO: Programme d\'aide de l\'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\\Program Files\\Common Files\\Microsoft Shared\\Windows Live\\WindowsLiveLogin.dll
O2 - BHO: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\\Program Files\\AVG\\AVG9\\Toolbar\\IEToolbar.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\\Program Files\\Google\\Google Toolbar\\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\\Program Files\\Google\\GoogleToolbarNotifier\\5.4.4525.1752\\swg.dll
O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\\PROGRA~1\\GOOGLE~1\\BAE.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\\Program Files\\Windows Live\\Toolbar\\wltcore.dll
O3 - Toolbar: AVG Security Toolbar - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\\Program Files\\AVG\\AVG9\\Toolbar\\IEToolbar.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\\Program Files\\Windows Live\\Toolbar\\wltcore.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\\Program Files\\Google\\Google Toolbar\\GoogleToolbar_32.dll
O4 - HKLM\\..\\Run: [Windows Defender] %ProgramFiles%\\Windows Defender\\MSASCui.exe -hide
O4 - HKLM\\..\\Run: [NvSvc] RUNDLL32.EXE C:\\Windows\\system32\\nvsvc.dll,nvsvcStart
O4 - HKLM\\..\\Run: [NvCplDaemon] RUNDLL32.EXE C:\\Windows\\system32\\NvCpl.dll,NvStartup
O4 - HKLM\\..\\Run: [NvMediaCenter] RUNDLL32.EXE C:\\Windows\\system32\\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\\..\\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\\..\\Run: [Skytel] Skytel.exe
O4 - HKLM\\..\\Run: [SynTPEnh] C:\\Program Files\\Synaptics\\SynTP\\SynTPEnh.exe
O4 - HKLM\\..\\Run: [Adobe Reader Speed Launcher] \"C:\\Program Files\\Adobe\\Reader 8.0\\Reader\\Reader_sl.exe\"
O4 - HKLM\\..\\Run: [ISBMgr.exe] \"C:\\Program Files\\Sony\\ISB Utility\\ISBMgr.exe\"
O4 - HKLM\\..\\Run: [Google Desktop Search] \"C:\\Program Files\\Google\\Google Desktop Search\\GoogleDesktop.exe\" /startup
O4 - HKLM\\..\\Run: [IAAnotif] \"C:\\Program Files\\Intel\\Intel Matrix Storage Manager\\Iaanotif.exe\"
O4 - HKLM\\..\\Run: [MarketingTools] C:\\Program Files\\Sony\\Marketing Tools\\MarketingTools.exe
O4 - HKLM\\..\\Run: [SunJavaUpdateSched] \"C:\\Program Files\\Java\\jre1.6.0_02\\bin\\jusched.exe\"
O4 - HKLM\\..\\Run: [AppMon Utility] \"C:\\Program Files\\Sony\\AppMonUtil\\AppMonUtility.exe\" @@@Start
O4 - HKLM\\..\\Run: [AVG9_TRAY] C:\\PROGRA~1\\AVG\\AVG9\\avgtray.exe
O4 - HKLM\\..\\Run: [TkBellExe] \"C:\\Program Files\\Common Files\\Real\\Update_OB\\realsched.exe\" -osboot
O4 - HKCU\\..\\Run: [Picasa Media Detector] C:\\Program Files\\Picasa2\\PicasaMediaDetector.exe
O4 - HKCU\\..\\Run: [MsnMsgr] \"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe\" /background
O4 - HKCU\\..\\Run: [swg] \"C:\\Program Files\\Google\\GoogleToolbarNotifier\\GoogleToolbarNotifier.exe\"
O4 - HKUS\\S-1-5-19\\..\\Run: [Sidebar] %ProgramFiles%\\Windows Sidebar\\Sidebar.exe /detectMem (User \'SERVICE LOCAL\')
O4 - HKUS\\S-1-5-19\\..\\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User \'SERVICE LOCAL\')
O4 - HKUS\\S-1-5-20\\..\\Run: [Sidebar] %ProgramFiles%\\Windows Sidebar\\Sidebar.exe /detectMem (User \'SERVICE RÉSEAU\')
O4 - Startup: Audio Filter.lnk = C:\\Program Files\\Sony\\SonicStage Mastering Studio\\Audio Filter\\SSMSFilter.exe
O4 - Global Startup: BTTray.lnk = ?
O4 - Global Startup: DSLMON.lnk = ?
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\\PROGRA~1\\MICROS~2\\Office12\\EXCEL.EXE/3000
O8 - Extra context menu item: Envoyer au périphérique &Bluetooth... - C:\\Program Files\\WIDCOMM\\Bluetooth Software\\btsendto_ie.htm
O8 - Extra context menu item: Envoyer l\'&image au périphérique Bluetooth... - C:\\Program Files\\WIDCOMM\\Bluetooth Software\\btsendto_ie_ctx.htm
O8 - Extra context menu item: Google Sidewiki... - res://C:\\Program Files\\Google\\Google Toolbar\\Component\\GoogleToolbarDynamic_mui_en_60D6097707281E79.dll/cmsidewiki.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\\Program Files\\Java\\jre1.6.0_02\\bin\\ssv.dll
O9 - Extra \'Tools\' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\\Program Files\\Java\\jre1.6.0_02\\bin\\ssv.dll
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\\Program Files\\Windows Live\\Writer\\WriterBrowserExtension.dll
O9 - Extra \'Tools\' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\\Program Files\\Windows Live\\Writer\\WriterBrowserExtension.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\\PROGRA~1\\MICROS~2\\Office12\\REFIEBAR.DLL
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\\Program Files\\WIDCOMM\\Bluetooth Software\\btsendto_ie.htm
O9 - Extra \'Tools\' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\\Program Files\\WIDCOMM\\Bluetooth Software\\btsendto_ie.htm
O13 - Gopher Prefix:
O15 - Trusted Zone: *.canalplay.com
O15 - Trusted Zone: *.canalplusactive.com
O15 - Trusted Zone: *.canalplay.com (HKLM)
O15 - Trusted Zone: *.canalplusactive.com (HKLM)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O17 - HKLM\\System\\CCS\\Services\\Tcpip\\..\\{3551FAD0-E625-4D37-97D7-65B6A6C51C1E}: NameServer = 41.221.20.4
O17 - HKLM\\System\\CS1\\Services\\Tcpip\\..\\{3551FAD0-E625-4D37-97D7-65B6A6C51C1E}: NameServer = 41.221.20.4
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\\Program Files\\AVG\\AVG9\\avgpp.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\\PROGRA~1\\COMMON~1\\Skype\\SKYPE4~1.DLL
O20 - AppInit_DLLs: C:\\PROGRA~1\\Google\\GOOGLE~1\\GOEC62~1.DLL,avgrsstx.dll
O23 - Service: AVG Free WatchDog (avg9wd) - AVG Technologies CZ, s.r.o. - C:\\Program Files\\AVG\\AVG9\\avgwdsvc.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\\Program Files\\Common Files\\Symantec Shared\\ccSvcHst.exe (file missing)
O23 - Service: Google Desktop Manager 5.7.806.10245 (GoogleDesktopManager-061008-081103) - Google - C:\\Program Files\\Google\\Google Desktop Search\\GoogleDesktop.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\\Program Files\\Google\\Common\\Google Updater\\GoogleUpdaterService.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\\Program Files\\Intel\\Intel Matrix Storage Manager\\Iaantmon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\\Program Files\\Common Files\\InstallShield\\Driver\\1150\\Intel 32\\IDriverT.exe
O23 - Service: IviRegMgr - InterVideo - C:\\Program Files\\Common Files\\InterVideo\\RegMgr\\iviRegMgr.exe
O23 - Service: MSCSPTISRV - Sony Corporation - C:\\Program Files\\Common Files\\Sony Shared\\AVLib\\MSCSPTISRV.exe
O23 - Service: PACSPTISVR - Unknown owner - C:\\Program Files\\Common Files\\Sony Shared\\AVLib\\PACSPTISVR.exe
O23 - Service: Service CANALPLAY - Canal+ Active - C:\\Program Files\\Lecteur CANALPLAY\\CanalPlayService.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\\Program Files\\Common Files\\Sony Shared\\AVLib\\SPTISRV.exe
O23 - Service: SigmaTel Audio Service (STacSV) - IDT, Inc. - C:\\Windows\\system32\\stacsv.exe
O23 - Service: CamMonitor (uCamMonitor) - ArcSoft, Inc. - C:\\Program Files\\ArcSoft\\Magic-i Visual Effects\\uCamMonitor.exe
O23 - Service: VAIO Entertainment TV Device Arbitration Service - Sony Corporation - C:\\Program Files\\Common Files\\Sony Shared\\VAIO Entertainment Platform\\VzCs\\VzHardwareResourceManager\\VzHardwareResourceManager.exe
O23 - Service: VAIO Event Service - Sony Corporation - C:\\Program Files\\Sony\\VAIO Event Service\\VESMgr.exe
O23 - Service: VAIO Media Integrated Server (VAIOMediaPlatform-IntegratedServer-AppServer) - Sony Corporation - C:\\Program Files\\Sony\\VAIO Media Integrated Server\\VMISrv.exe
O23 - Service: VAIO Media Integrated Server (HTTP) (VAIOMediaPlatform-IntegratedServer-HTTP) - Sony Corporation - C:\\Program Files\\Sony\\VAIO Media Integrated Server\\Platform\\SV_Httpd.exe
O23 - Service: VAIO Media Integrated Server (UPnP) (VAIOMediaPlatform-IntegratedServer-UPnP) - Sony Corporation - C:\\Program Files\\Sony\\VAIO Media Integrated Server\\Platform\\UPnPFramework.exe
O23 - Service: VAIO Media Gateway Server (VAIOMediaPlatform-Mobile-Gateway) - Sony Corporation - C:\\Program Files\\Sony\\VAIO Media Integrated Server\\Platform\\VmGateway.exe
O23 - Service: VAIO Media Content Collection (VAIOMediaPlatform-UCLS-AppServer) - Sony Corporation - C:\\Program Files\\Sony\\VAIO Media Integrated Server\\UCLS.exe
O23 - Service: VAIO Media Content Collection (HTTP) (VAIOMediaPlatform-UCLS-HTTP) - Sony Corporation - C:\\Program Files\\Sony\\VAIO Media Integrated Server\\Platform\\SV_Httpd.exe
O23 - Service: VAIO Media Content Collection (UPnP) (VAIOMediaPlatform-UCLS-UPnP) - Sony Corporation - C:\\Program Files\\Sony\\VAIO Media Integrated Server\\Platform\\UPnPFramework.exe
O23 - Service: VAIO Content Metadata Intelligent Analyzing Manager (VcmIAlzMgr) - Sony Corporation - C:\\Program Files\\Sony\\VCM Intelligent Analyzing Manager\\VcmIAlzMgr.exe
O23 - Service: VAIO Content Metadata XML Interface (VcmXmlIfHelper) - Sony Corporation - C:\\Program Files\\Common Files\\Sony Shared\\VcmXml\\VcmXmlIfHelper.exe
O23 - Service: VAIO Entertainment UPnP Client Adapter (Vcsw) - Sony Corporation - C:\\Program Files\\Common Files\\Sony Shared\\VAIO Entertainment Platform\\VCSW\\VCSW.exe
O23 - Service: VAIO Entertainment Database Service (VzCdbSvc) - Sony Corporation - C:\\Program Files\\Common Files\\Sony Shared\\VAIO Entertainment Platform\\VzCdb\\VzCdbSvc.exe
O23 - Service: VAIO Entertainment File Import Service (VzFw) - Sony Corporation - C:\\Program Files\\Common Files\\Sony Shared\\VAIO Entertainment Platform\\VzCdb\\VzFw.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\\Windows\\system32\\DRIVERS\\xaudio.exe

--
End of file - 12718 bytes

======Registry dump======

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Browser Helper Objects\\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Aide pour le lien d\'Adobe PDF Reader - C:\\Program Files\\Common Files\\Adobe\\Acrobat\\ActiveX\\AcroIEHelper.dll [2006-10-22 62080]

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Browser Helper Objects\\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
RealPlayer Download and Record Plugin for Internet Explorer - c:\\program files\\real\\realplayer\\rpbrowserrecordplugin.dll [2009-12-02 329312]

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Browser Helper Objects\\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\\Program Files\\AVG\\AVG9\\avgssie.dll [2009-12-02 1475864]

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Browser Helper Objects\\{5C255C8A-E604-49b4-9D64-90988571CECB}]

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Browser Helper Objects\\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\\Program Files\\Microsoft\\Search Enhancement Pack\\Search Helper\\SEPsearchhelperie.dll [2009-05-19 137600]

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Browser Helper Objects\\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
SSVHelper Class - C:\\Program Files\\Java\\jre1.6.0_02\\bin\\ssv.dll [2007-07-12 501136]

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Browser Helper Objects\\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Programme d\'aide de l\'Assistant de connexion Windows Live - C:\\Program Files\\Common Files\\Microsoft Shared\\Windows Live\\WindowsLiveLogin.dll [2009-02-17 408440]

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Browser Helper Objects\\{A3BC75A2-1F87-4686-AA43-5347D756017C}]
AVG Security Toolbar BHO - C:\\Program Files\\AVG\\AVG9\\Toolbar\\IEToolbar.dll [2009-10-16 1119488]

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Browser Helper Objects\\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\\Program Files\\Google\\Google Toolbar\\GoogleToolbar_32.dll [2009-12-05 263280]

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Browser Helper Objects\\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\\Program Files\\Google\\GoogleToolbarNotifier\\5.4.4525.1752\\swg.dll [2009-12-02 764912]

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Browser Helper Objects\\{CA6319C0-31B7-401E-A518-A07C3DB8F777}]
CBrowserHelperObject Object - C:\\PROGRA~1\\GOOGLE~1\\BAE.dll [2006-06-23 98304]

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Browser Helper Objects\\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
Windows Live Toolbar Helper - C:\\Program Files\\Windows Live\\Toolbar\\wltcore.dll [2009-02-06 1068904]

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Internet Explorer\\Toolbar]
{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - AVG Security Toolbar - C:\\Program Files\\AVG\\AVG9\\Toolbar\\IEToolbar.dll [2009-10-16 1119488]
{21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar - C:\\Program Files\\Windows Live\\Toolbar\\wltcore.dll [2009-02-06 1068904]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\\Program Files\\Google\\Google Toolbar\\GoogleToolbar_32.dll [2009-12-05 263280]

[HKEY_LOCAL_MACHINE\\Software\\Microsoft\\Windows\\CurrentVersion\\Run]
\"Windows Defender\"=C:\\Program Files\\Windows Defender\\MSASCui.exe [2007-11-21 1006264]
\"NvSvc\"=C:\\Windows\\system32\\nvsvc.dll [2007-11-07 86016]
\"NvCplDaemon\"=C:\\Windows\\system32\\NvCpl.dll [2007-11-07 8497696]
\"NvMediaCenter\"=C:\\Windows\\system32\\NvMcTray.dll [2007-11-07 81920]
\"RtHDVCpl\"=C:\\Windows\\RtHDVCpl.exe [2007-08-25 4669440]
\"Skytel\"=C:\\Windows\\Skytel.exe [2007-08-25 1826816]
\"SynTPEnh\"=C:\\Program Files\\Synaptics\\SynTP\\SynTPEnh.exe [2007-03-10 835584]
\"Adobe Reader Speed Launcher\"=C:\\Program Files\\Adobe\\Reader 8.0\\Reader\\Reader_sl.exe [2007-05-11 40048]
\"ISBMgr.exe\"=C:\\Program Files\\Sony\\ISB Utility\\ISBMgr.exe [2007-09-19 311296]
\"Google Desktop Search\"=C:\\Program Files\\Google\\Google Desktop Search\\GoogleDesktop.exe [2008-12-13 29744]
\"IAAnotif\"=C:\\Program Files\\Intel\\Intel Matrix Storage Manager\\Iaanotif.exe [2007-02-12 174872]
\"MarketingTools\"=C:\\Program Files\\Sony\\Marketing Tools\\MarketingTools.exe [2007-11-21 36864]
\"SunJavaUpdateSched\"=C:\\Program Files\\Java\\jre1.6.0_02\\bin\\jusched.exe [2007-07-12 132496]
\"AppMon Utility\"=C:\\Program Files\\Sony\\AppMonUtil\\AppMonUtility.exe [2007-09-20 542560]
\"AVG9_TRAY\"=C:\\PROGRA~1\\AVG\\AVG9\\avgtray.exe [2009-12-02 2020120]
\"TkBellExe\"=C:\\Program Files\\Common Files\\Real\\Update_OB\\realsched.exe [2009-12-02 198160]

[HKEY_CURRENT_USER\\Software\\Microsoft\\Windows\\CurrentVersion\\Run]
\"Picasa Media Detector\"=C:\\Program Files\\Picasa2\\PicasaMediaDetector.exe [2007-09-12 443968]
\"MsnMsgr\"=C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe [2009-07-26 3883856]
\"swg\"=C:\\Program Files\\Google\\GoogleToolbarNotifier\\GoogleToolbarNotifier.exe [2009-04-25 39408]

C:\\ProgramData\\Microsoft\\Windows\\Start Menu\\Programs\\Startup
BTTray.lnk - C:\\Program Files\\WIDCOMM\\Bluetooth Software\\BTTray.exe
DSLMON.lnk - C:\\Program Files\\Huawei Technologies\\Huawei SmartAX MT810\\dslmon.exe

C:\\Users\\OPCuser\\AppData\\Roaming\\Microsoft\\Windows\\Start Menu\\Programs\\Startup
Audio Filter.lnk - C:\\Program Files\\Sony\\SonicStage Mastering Studio\\Audio Filter\\SSMSFilter.exe

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows NT\\CurrentVersion\\Windows]
\"AppInit_DLLS\"=\"C:\\PROGRA~1\\Google\\GOOGLE~1\\GOEC62~1.DLL,avgrsstx.dll\"

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows NT\\CurrentVersion\\Winlogon\\Notify\\VESWinlogon]
C:\\Windows\\system32\\VESWinlogon.dll [2007-08-14 98304]

[HKEY_LOCAL_MACHINE\\Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\System]
\"dontdisplaylastusername\"=0
\"legalnoticecaption\"=
\"legalnoticetext\"=
\"shutdownwithoutlogon\"=1
\"undockwithoutlogon\"=1

[HKEY_CURRENT_USER\\Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\explorer]
\"NoDriveTypeAutoRun\"=145
\"NoDriveAutoRun\"=145
\"HonorAutoRunSetting\"=0

[HKEY_LOCAL_MACHINE\\Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\explorer]
\"NoDriveAutoRun\"=
\"NoDriveTypeAutoRun\"=
\"HonorAutoRunSetting\"=

[HKEY_LOCAL_MACHINE\\system\\currentcontrolset\\services\\sharedaccess\\parameters\\firewallpolicy\\standardprofile\\authorizedapplications\\list]

[HKEY_LOCAL_MACHINE\\system\\currentcontrolset\\services\\sharedaccess\\parameters\\firewallpolicy\\domainprofile\\authorizedapplications\\list]

======List of files/folders created in the last 1 months======

2009-12-05 20:29:07 ----RASHD---- C:\\autorun.inf
2009-12-05 20:25:57 ----A---- C:\\UsbFix.txt
2009-12-05 19:50:06 ----D---- C:\\UsbFix
2009-12-04 20:37:53 ----D---- C:\\rsit
2009-12-04 20:37:53 ----D---- C:\\Program Files\\trend micro
2009-12-02 21:47:56 ----A---- C:\\Windows\\system32\\tzres.dll
2009-12-02 21:16:35 ----A---- C:\\Windows\\cdplayer.ini
2009-12-02 21:16:22 ----D---- C:\\My Music
2009-12-02 21:12:32 ----D---- C:\\ProgramData\\Real
2009-12-02 21:11:57 ----A---- C:\\Windows\\system32\\rmoc3260.dll
2009-12-02 21:11:46 ----A---- C:\\Windows\\system32\\pndx5032.dll
2009-12-02 21:11:46 ----A---- C:\\Windows\\system32\\pndx5016.dll
2009-12-02 21:11:40 ----D---- C:\\Program Files\\Common Files\\xing shared
2009-12-02 19:44:00 ----A---- C:\\Windows\\system32\\msxml6r.dll
2009-12-02 19:44:00 ----A---- C:\\Windows\\system32\\msxml6.dll
2009-12-02 19:44:00 ----A---- C:\\Windows\\system32\\msxml3r.dll
2009-12-02 19:44:00 ----A---- C:\\Windows\\system32\\msxml3.dll
2009-11-23 16:45:55 ----HD---- C:\\$AVG
2009-11-23 16:45:54 ----A---- C:\\Windows\\system32\\avgrsstx.dll
2009-11-23 16:45:27 ----D---- C:\\ProgramData\\AVG Security Toolbar
2009-11-23 16:45:11 ----D---- C:\\ProgramData\\avg9
2009-11-20 22:14:13 ----D---- C:\\Program Files\\CCleaner
2009-11-15 17:29:33 ----D---- C:\\ProgramData\\NOS
2009-11-14 18:23:42 ----D---- C:\\Users\\OPCuser\\AppData\\Roaming\\uTorrent
2009-11-11 21:44:54 ----D---- C:\\Program Files\\Microsoft Silverlight
2009-11-11 21:44:24 ----D---- C:\\Program Files\\Microsoft Office Outlook Connector
2009-11-11 21:42:38 ----D---- C:\\Program Files\\Microsoft Sync Framework
2009-11-11 21:38:51 ----D---- C:\\Program Files\\Microsoft SQL Server Compact Edition
2009-11-11 21:37:48 ----A---- C:\\Windows\\system32\\WindowsCodecsExt.dll
2009-11-11 21:37:48 ----A---- C:\\Windows\\system32\\WindowsCodecs.dll
2009-11-11 21:33:47 ----D---- C:\\Program Files\\Microsoft
2009-11-11 21:32:59 ----D---- C:\\Program Files\\Windows Live SkyDrive
2009-11-11 20:01:05 ----D---- C:\\Program Files\\Common Files\\Windows Live
2009-11-11 19:59:57 ----A---- C:\\Windows\\system32\\WSDApi.dll

======List of files/folders modified in the last 1 months======

2009-12-05 20:40:32 ----D---- C:\\Windows\\Temp
2009-12-05 20:36:24 ----D---- C:\\Windows\\Prefetch
2009-12-05 20:29:00 ----SD---- C:\\Windows\\Downloaded Program Files
2009-12-05 20:27:30 ----SHD---- C:\\$Recycle.Bin
2009-12-05 20:23:18 ----SHD---- C:\\Windows\\Installer
2009-12-05 19:51:23 ----D---- C:\\Windows\\System32
2009-12-05 19:51:23 ----D---- C:\\Windows\\inf
2009-12-05 19:51:23 ----A---- C:\\Windows\\system32\\PerfStringBackup.INI
2009-12-04 23:23:37 ----D---- C:\\Users\\OPCuser\\AppData\\Roaming\\Skype
2009-12-04 22:59:18 ----SHD---- C:\\System Volume Information
2009-12-04 20:37:53 ----RD---- C:\\Program Files
2009-12-04 20:37:31 ----D---- C:\\Windows
2009-12-02 21:50:13 ----D---- C:\\Windows\\winsxs
2009-12-02 21:49:45 ----D---- C:\\Windows\\system32\\fr-FR
2009-12-02 21:49:14 ----D---- C:\\Windows\\system32\\catroot2
2009-12-02 21:49:14 ----D---- C:\\Windows\\system32\\catroot
2009-12-02 21:12:32 ----HD---- C:\\ProgramData
2009-12-02 21:12:32 ----D---- C:\\Users\\OPCuser\\AppData\\Roaming\\Real
2009-12-02 21:12:05 ----D---- C:\\Program Files\\Common Files\\Real
2009-12-02 21:11:40 ----D---- C:\\Program Files\\Common Files
2009-12-02 21:11:01 ----A---- C:\\Windows\\system32\\pncrt.dll
2009-12-02 19:40:53 ----D---- C:\\Windows\\system32\\drivers
2009-11-24 05:36:35 ----D---- C:\\Program Files\\Reganam
2009-11-24 05:36:35 ----D---- C:\\Program Files\\Conduit
2009-11-23 16:45:12 ----D---- C:\\Program Files\\AVG
2009-11-23 16:44:49 ----D---- C:\\Program Files\\Common Files\\microsoft shared
2009-11-23 14:00:02 ----D---- C:\\Windows\\Minidump
2009-11-23 13:32:00 ----D---- C:\\ProgramData\\Norton
2009-11-23 13:27:41 ----D---- C:\\Program Files\\Common Files\\Symantec Shared
2009-11-20 22:26:19 ----D---- C:\\Windows\\Debug
2009-11-14 19:52:49 ----D---- C:\\Windows\\system32\\Tasks
2009-11-14 00:16:31 ----D---- C:\\ProgramData\\Microsoft Help
2009-11-14 00:16:30 ----RSD---- C:\\Windows\\assembly
2009-11-14 00:14:59 ----RSD---- C:\\Windows\\Fonts
2009-11-14 00:14:25 ----D---- C:\\Program Files\\Microsoft Works
2009-11-14 00:12:18 ----A---- C:\\Windows\\win.ini
2009-11-12 22:11:35 ----D---- C:\\Windows\\Microsoft.NET
2009-11-11 21:50:17 ----D---- C:\\Windows\\system32\\NDF
2009-11-11 21:50:11 ----SD---- C:\\Users\\OPCuser\\AppData\\Roaming\\Microsoft
2009-11-11 21:44:25 ----D---- C:\\Program Files\\Common Files\\System
2009-11-11 21:44:05 ----DC---- C:\\Windows\\system32\\DRVSTORE
2009-11-11 21:44:03 ----D---- C:\\Program Files\\Windows Live
2009-11-11 21:42:15 ----SD---- C:\\ProgramData\\Microsoft
2009-11-11 21:37:05 ----D---- C:\\Windows\\SoftwareDistribution

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 AvgLdx86;AVG Free AVI Loader Driver x86; C:\\Windows\\System32\\Drivers\\avgldx86.sys [2009-11-23 333192]
R1 AvgMfx86;AVG Free On-access Scanner Minifilter Driver x86; C:\\Windows\\System32\\Drivers\\avgmfx86.sys [2009-11-23 28424]
R1 AvgTdiX;AVG Free Network Redirector; C:\\Windows\\System32\\Drivers\\avgtdix.sys [2009-12-02 360584]
R1 DMICall;Sony DMI Call service; C:\\Windows\\system32\\DRIVERS\\DMICall.sys [2007-09-19 10216]
R1 eeCtrl;Symantec Eraser Control driver; \\??\\C:\\Program Files\\Common Files\\Symantec Shared\\EENGINE\\eeCtrl.sys [2009-10-29 371248]
R2 mdmxsdk;mdmxsdk; C:\\Windows\\system32\\DRIVERS\\mdmxsdk.sys [2007-09-27 12672]
R2 regi;regi; C:\\Windows\\system32\\drivers\\regi.sys [2007-04-17 11032]
R2 XAudio;XAudio; C:\\Windows\\system32\\DRIVERS\\xaudio.sys [2007-09-27 8192]
R3 adiusbae;USB ADSL LAN Adapter; C:\\Windows\\system32\\DRIVERS\\adiusbae.sys [2005-10-27 117289]
R3 ArcSoftKsUFilter;ArcSoft Magic-I Visual Effect; C:\\Windows\\system32\\DRIVERS\\ArcSoftKsUFilter.sys [2007-10-29 17920]
R3 CmBatt;Pilote pour Batterie à méthode de contrôle ACPI Microsoft; C:\\Windows\\system32\\DRIVERS\\CmBatt.sys [2006-11-02 14208]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\\Windows\\System32\\Drivers\\GEARAspiWDM.sys [2008-04-17 15464]
R3 HSF_DPV;HSF_DPV; C:\\Windows\\system32\\DRIVERS\\HSX_DPV.sys [2007-09-27 985600]
R3 HSXHWAZL;HSXHWAZL; C:\\Windows\\system32\\DRIVERS\\HSXHWAZL.sys [2007-09-27 207360]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\\Windows\\system32\\drivers\\RTKVHDA.sys [2007-08-25 1841312]
R3 NETw4v32;Pilote de carte Intel(R) Wireless WiFi Link pour Windows Vista 32 bits; C:\\Windows\\system32\\DRIVERS\\NETw4v32.sys [2007-09-19 2222080]
R3 nvlddmkm;nvlddmkm; C:\\Windows\\system32\\DRIVERS\\nvlddmkm.sys [2007-11-07 7626400]
R3 R5U870FLx86;R5U870 UVC Lower Filter ; C:\\Windows\\System32\\Drivers\\R5U870FLx86.sys [2007-11-08 73472]
R3 R5U870FUx86;R5U870 UVC Upper Filter ; C:\\Windows\\System32\\Drivers\\R5U870FUx86.sys [2007-11-08 43904]
R3 SFEP;Sony Firmware Extension Parser; C:\\Windows\\system32\\DRIVERS\\SFEP.sys [2007-08-29 9344]
R3 STHDA;IDT High Definition Audio CODEC; C:\\Windows\\system32\\drivers\\stwrt.sys [2007-10-27 330240]
R3 SynTP;Synaptics TouchPad Driver; C:\\Windows\\system32\\DRIVERS\\SynTP.sys [2007-03-10 181560]
R3 ti21sony;ti21sony; C:\\Windows\\system32\\drivers\\ti21sony.sys [2007-06-06 812544]
R3 usbvideo;R5U870 (UVC) ; C:\\Windows\\System32\\Drivers\\usbvideo.sys [2007-11-21 132608]
R3 winachsf;winachsf; C:\\Windows\\system32\\DRIVERS\\HSX_CNXT.sys [2007-09-27 659968]
R3 WUDFRd;WUDFRd; C:\\Windows\\system32\\DRIVERS\\WUDFRd.sys [2006-11-02 82560]
R3 yukonwlh;NDIS6.0 Miniport Driver for Marvell Yukon Ethernet Controller; C:\\Windows\\system32\\DRIVERS\\yk60x86.sys [2007-09-27 246784]
S2 ADILOADER;General Purpose USB Driver (adildr.sys); C:\\Windows\\System32\\Drivers\\adildr.sys [2005-10-27 50007]
S3 BthEnum;Pilote de bloc de demande Bluetooth; C:\\Windows\\system32\\DRIVERS\\BthEnum.sys [2007-11-21 19456]
S3 BthPan;Périphérique Bluetooth (réseau personnel); C:\\Windows\\system32\\DRIVERS\\bthpan.sys [2006-11-02 92160]
S3 BTHPORT;Pilote de port Bluetooth; C:\\Windows\\System32\\Drivers\\BTHport.sys [2007-11-21 220160]
S3 BTHUSB;Pilote USB radio Bluetooth; C:\\Windows\\System32\\Drivers\\BTHUSB.sys [2007-11-21 29184]
S3 btwaudio;Périphérique audio Bluetooth; C:\\Windows\\system32\\drivers\\btwaudio.sys [2007-10-10 81448]
S3 btwavdt;Bluetooth AVDT; C:\\Windows\\system32\\drivers\\btwavdt.sys [2007-10-10 99880]
S3 btwl2cap;Bluetooth L2CAP Service; C:\\Windows\\system32\\DRIVERS\\btwl2cap.sys [2007-10-10 28464]
S3 btwrchid;btwrchid; C:\\Windows\\system32\\DRIVERS\\btwrchid.sys [2007-10-10 17448]
S3 drmkaud;Filtre de décodeur DRM (Noyau Microsoft); C:\\Windows\\system32\\drivers\\drmkaud.sys [2006-11-02 5632]
S3 EraserUtilRebootDrv;EraserUtilRebootDrv; \\??\\C:\\Program Files\\Common Files\\Symantec Shared\\EENGINE\\EraserUtilRebootDrv.sys [2009-10-29 102448]
S3 fssfltr;FssFltr; C:\\Windows\\system32\\DRIVERS\\fssfltr.sys [2009-08-05 54632]
S3 HdAudAddService;Pilote de fonction UAA 1.1 Microsoft pour le service High Definition Audio; C:\\Windows\\system32\\drivers\\HdAudio.sys [2006-11-02 235520]
S3 HSFHWAZL;HSFHWAZL; C:\\Windows\\system32\\DRIVERS\\VSTAZL3.SYS [2006-11-02 200704]
S3 MSKSSRV;Proxy de service de répartition Microsoft; C:\\Windows\\system32\\drivers\\MSKSSRV.sys [2006-11-02 8192]
S3 MSPCLOCK;Proxy d\'horloge de répartition Microsoft; C:\\Windows\\system32\\drivers\\MSPCLOCK.sys [2006-11-02 5888]
S3 MSPQM;Proxy de gestion de qualité de répartition Microsoft; C:\\Windows\\system32\\drivers\\MSPQM.sys [2006-11-02 5504]
S3 MSTEE;Convertisseur en T/site-à-site de répartition Microsoft; C:\\Windows\\system32\\drivers\\MSTEE.sys [2006-11-02 6016]
S3 NETw3v32;Pilote de carte Intel(R) PRO/Wireless 3945ABG pour Windows Vista 32 bits; C:\\Windows\\system32\\DRIVERS\\NETw3v32.sys [2006-11-02 1781760]
S3 RFCOMM;Périphérique Bluetooth (TDI protocole RFCOMM); C:\\Windows\\system32\\DRIVERS\\rfcomm.sys [2006-11-02 49664]
S3 WimFltr;WimFltr; C:\\Windows\\system32\\DRIVERS\\wimfltr.sys [2007-05-26 128104]
S4 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\\Windows\\system32\\drivers\\wmiacpi.sys [2006-11-02 11264]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 avg9wd;AVG Free WatchDog; C:\\Program Files\\AVG\\AVG9\\avgwdsvc.exe [2009-11-23 285392]
R2 BthServ;@%SystemRoot%\\System32\\bthserv.dll,-101; C:\\Windows\\system32\\svchost.exe [2006-11-02 22016]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\\Program Files\\Intel\\Intel Matrix Storage Manager\\Iaantmon.exe [2007-02-12 355096]
R2 IviRegMgr;IviRegMgr; C:\\Program Files\\Common Files\\InterVideo\\RegMgr\\iviRegMgr.exe [2007-01-04 112152]
R2 SeaPort;SeaPort; C:\\Program Files\\Microsoft\\Search Enhancement Pack\\SeaPort\\SeaPort.exe [2009-05-19 240512]
R2 STacSV;SigmaTel Audio Service; C:\\Windows\\system32\\stacsv.exe [2007-10-27 102400]
R2 uCamMonitor;CamMonitor; C:\\Program Files\\ArcSoft\\Magic-i Visual Effects\\uCamMonitor.exe [2007-10-31 125440]
R2 VAIO Event Service;VAIO Event Service; C:\\Program Files\\Sony\\VAIO Event Service\\VESMgr.exe [2007-08-14 182392]
R2 VzCdbSvc;VAIO Entertainment Database Service; C:\\Program Files\\Common Files\\Sony Shared\\VAIO Entertainment Platform\\VzCdb\\VzCdbSvc.exe [2007-08-28 192512]
R2 VzFw;VAIO Entertainment File Import Service; C:\\Program Files\\Common Files\\Sony Shared\\VAIO Entertainment Platform\\VzCdb\\VzFw.exe [2007-08-28 131072]
R2 XAudioService;XAudioService; C:\\Windows\\system32\\DRIVERS\\xaudio.exe [2007-09-27 386560]
R3 Vcsw;VAIO Entertainment UPnP Client Adapter; C:\\Program Files\\Common Files\\Sony Shared\\VAIO Entertainment Platform\\VCSW\\VCSW.exe [2007-06-28 274432]
S2 CLTNetCnService;Symantec Lic NetConnect service; C:\\Program Files\\Common Files\\Symantec Shared\\ccSvcHst.exe /h ccCommon []
S3 fsssvc;Service Windows Live Contrôle parental; C:\\Program Files\\Windows Live\\Family Safety\\fsssvc.exe [2009-08-05 704864]
S3 GoogleDesktopManager-061008-081103;Google Desktop Manager 5.7.806.10245; C:\\Program Files\\Google\\Google Desktop Search\\GoogleDesktop.exe [2008-12-13 29744]
S3 gusvc;Google Software Updater; C:\\Program Files\\Google\\Common\\Google Updater\\GoogleUpdaterService.exe [2009-04-25 182768]
S3 IDriverT;InstallDriver Table Manager; C:\\Program Files\\Common Files\\InstallShield\\Driver\\1150\\Intel 32\\IDriverT.exe [2005-11-14 69632]
S3 MSCSPTISRV;MSCSPTISRV; C:\\Program Files\\Common Files\\Sony Shared\\AVLib\\MSCSPTISRV.exe [2006-12-14 45056]
S3 odserv;Microsoft Office Diagnostics Service; C:\\Program Files\\Common Files\\Microsoft Shared\\OFFICE12\\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\\Program Files\\Common Files\\Microsoft Shared\\Source Engine\\OSE.EXE [2006-10-26 145184]
S3 PACSPTISVR;PACSPTISVR; C:\\Program Files\\Common Files\\Sony Shared\\AVLib\\PACSPTISVR.exe [2006-12-14 57344]
S3 Service CANALPLAY;Service CANALPLAY; C:\\Program Files\\Lecteur CANALPLAY\\CanalPlayService.exe [2007-07-09 415392]
S3 SPTISRV;Sony SPTI Service; C:\\Program Files\\Common Files\\Sony Shared\\AVLib\\SPTISRV.exe [2006-12-14 69632]
S3 VAIO Entertainment TV Device Arbitration Service;VAIO Entertainment TV Device Arbitration Service; C:\\Program Files\\Common Files\\Sony Shared\\VAIO Entertainment Platform\\VzCs\\VzHardwareResourceManager\\VzHardwareResourceManager.exe [2007-06-28 73728]
S3 VAIOMediaPlatform-IntegratedServer-AppServer;VAIO Media Integrated Server; C:\\Program Files\\Sony\\VAIO Media Integrated Server\\VMISrv.exe [2007-06-20 2523136]
S3 VAIOMediaPlatform-IntegratedServer-HTTP;VAIO Media Integrated Server (HTTP); C:\\Program Files\\Sony\\VAIO Media Integrated Server\\Platform\\SV_Httpd.exe [2007-06-20 397312]
S3 VAIOMediaPlatform-IntegratedServer-UPnP;VAIO Media Integrated Server (UPnP); C:\\Program Files\\Sony\\VAIO Media Integrated Server\\Platform\\UPnPFramework.exe [2007-06-20 1089536]
S3 VAIOMediaPlatform-Mobile-Gateway;VAIO Media Gateway Server; C:\\Program Files\\Sony\\VAIO Media Integrated Server\\Platform\\VmGateway.exe [2007-06-20 499712]
S3 VAIOMediaPlatform-UCLS-AppServer;VAIO Media Content Collection; C:\\Program Files\\Sony\\VAIO Media Integrated Server\\UCLS.exe [2007-01-10 745472]
S3 VAIOMediaPlatform-UCLS-HTTP;VAIO Media Content Collection (HTTP); C:\\Program Files\\Sony\\VAIO Media Integrated Server\\Platform\\SV_Httpd.exe [2007-06-20 397312]
S3 VAIOMediaPlatform-UCLS-UPnP;VAIO Media Content Collection (UPnP); C:\\Program Files\\Sony\\VAIO Media Integrated Server\\Platform\\UPnPFramework.exe [2007-06-20 1089536]
S3 VcmIAlzMgr;VAIO Content Metadata Intelligent Analyzing Manager; C:\\Program Files\\Sony\\VCM Intelligent Analyzing Manager\\VcmIAlzMgr.exe [2007-09-28 292128]
S3 VcmXmlIfHelper;VAIO Content Metadata XML Interface; C:\\Program Files\\Common Files\\Sony Shared\\VcmXml\\VcmXmlIfHelper.exe [2007-09-20 79136]

-----------------EOF-----------------

A ton retour Malwarebleach!!!! [:)(]

malwarebleach malwarebleach
2 125 contributions
Membre depuis le 12/09/2009
Envoyé le 06/12/2009 à 02:03


Salut,

Peux tu m\'envoyer le rapport de suppression de UsbFix stp. [:D]

Si tu ne sais pas demande, si tu sais partage !!
sammou79 sammou79
34 contributions
Membre depuis le 24/04/2006
Envoyé le 11/12/2009 à 18:06


Salut à tous et surtout à Mister Malwarebleach [:Z]

Pas trop en retard mon rapport le voici :


############################## | UsbFix V6.059 |

User : OPCuser (Administrateurs) # PC-DE-OPCUSER
Update on 01/12/2009 by Chiquitine29, C_XX & Chimay8
Start at: 17:57:55 | 11/12/2009
Website : http://pagesperso-orange.fr/NosTools/index.html
Contact : FindyKill.Contact@gmail.com

Intel(R) Core(TM)2 Duo CPU T5450 @ 1.66GHz
Microsoft® Windows Vista™ Édition Familiale Premium (6.0.6000 32-bit) #
Internet Explorer 7.0.6000.16945
Windows Firewall Status : Enabled
AV : AVG Anti-Virus Free 9.0 [ Enabled | Updated ]

C:\\ -> Disque fixe local # 175,86 Go (110,32 Go free) # NTFS
D:\\ -> Disque amovible
E:\\ -> Disque amovible
F:\\ -> Disque CD-ROM
G:\\ -> Disque amovible # 245,6 Mo (17,03 Mo free) [SAMIRA] # FAT
H:\\ -> Disque amovible # 955,72 Mo (780,47 Mo free) [FIFITO] # FAT

############################## | Processus actifs |

C:\\Windows\\System32\\smss.exe 452
C:\\Windows\\system32\\csrss.exe 588
C:\\Windows\\system32\\wininit.exe 636
C:\\Windows\\system32\\csrss.exe 648
C:\\Program Files\\AVG\\AVG9\\avgchsvx.exe 656
C:\\Program Files\\AVG\\AVG9\\avgrsx.exe 664
C:\\Windows\\system32\\services.exe 696
C:\\Windows\\system32\\lsass.exe 708
C:\\Windows\\system32\\lsm.exe 716
C:\\Program Files\\AVG\\AVG9\\avgcsrvx.exe 744
C:\\Windows\\system32\\winlogon.exe 872
C:\\Windows\\system32\\svchost.exe 1188
C:\\Windows\\system32\\svchost.exe 1244
C:\\Windows\\system32\\LogonUI.exe 1324
C:\\Windows\\System32\\svchost.exe 1368
C:\\Windows\\System32\\svchost.exe 1412
C:\\Windows\\system32\\svchost.exe 1432
C:\\Windows\\system32\\SLsvc.exe 1592
C:\\Windows\\system32\\svchost.exe 1732
C:\\Windows\\system32\\svchost.exe 1872
C:\\Windows\\system32\\Dwm.exe 376
C:\\Windows\\Explorer.EXE 12
C:\\Windows\\System32\\spoolsv.exe 576
C:\\Windows\\system32\\svchost.exe 1020
C:\\Windows\\system32\\taskeng.exe 1072
C:\\Program Files\\AVG\\AVG9\\avgwdsvc.exe 1304
C:\\Windows\\system32\\svchost.exe 2020
C:\\Program Files\\Intel\\Intel Matrix Storage Manager\\Iaantmon.exe 268
C:\\Program Files\\Common Files\\InterVideo\\RegMgr\\iviRegMgr.exe 2084
C:\\Windows\\system32\\svchost.exe 2132
C:\\Program Files\\Microsoft\\Search Enhancement Pack\\SeaPort\\SeaPort.exe 2148
C:\\Windows\\system32\\stacsv.exe 2196
C:\\Program Files\\AVG\\AVG9\\avgnsx.exe 2280
C:\\Windows\\system32\\svchost.exe 2476
C:\\Program Files\\ArcSoft\\Magic-i Visual Effects\\uCamMonitor.exe 2500
C:\\Program Files\\Sony\\VAIO Event Service\\VESMgr.exe 2524
C:\\Program Files\\Common Files\\Sony Shared\\VAIO Entertainment Platform\\VCSW\\VCSW.exe 2628
C:\\Windows\\System32\\svchost.exe 2652
C:\\Windows\\system32\\SearchIndexer.exe 2672
C:\\Windows\\system32\\DRIVERS\\xaudio.exe 2728
C:\\Program Files\\Common Files\\Sony Shared\\VAIO Entertainment Platform\\VzCdb\\VzCdbSvc.exe 2756
C:\\Program Files\\Common Files\\Sony Shared\\VAIO Entertainment Platform\\VzCdb\\VzFw.exe 2844
C:\\Windows\\system32\\WUDFHost.exe 2916
C:\\Program Files\\Sony\\VAIO Event Service\\VESMgrSub.exe 2996
C:\\Windows\\system32\\taskeng.exe 3372
C:\\Windows\\system32\\taskeng.exe 3436
C:\\Program Files\\Sony\\VAIO Update 4\\VAIOUpdt.exe 3444
C:\\Windows\\system32\\runonce.exe 3484
C:\\Program Files\\Sony\\Wireless Switch Setting Utility\\Switcher.exe 3492
C:\\Windows\\system32\\wbem\\wmiprvse.exe 3536
C:\\Windows\\system32\\conime.exe 3580
C:\\Program Files\\Sony\\VAIO Power Management\\SPMgr.exe 3812

################## | Fichiers # Dossiers infectieux |

Supprimé ! H:\\1t6yxlxx.cmd
Supprimé ! H:\\iwjj.com

################## | Spyware.OnlineGames |


################## | Registre # Clés infectieuses |


################## | Registre # Mountpoints2 |


################## | Listing des fichiers présent |

[18/09/2006 22:43|--a------|24] C:\\autoexec.bat
[02/11/2006 10:53|-rahs----|438840] C:\\bootmgr
[21/11/2007 18:34|-ra-s----|8192] C:\\BOOTSECT.BAK
[18/09/2006 22:43|--a------|10] C:\\config.sys
[?|?|?] C:\\hiberfil.sys
[?|?|?] C:\\pagefile.sys
[11/12/2009 18:00|--a------|3830] C:\\UsbFix.txt
[15/08/1995 02:00|--a------|523664] G:\\ZEEK1.EXE
[27/05/2009 09:42|--a------|15182] G:\\BOOTEX.LOG
[01/01/2004 00:00|--a------|512] G:\\REC01.wav
[12/05/2008 12:21|--a------|269] G:\\Raccourci vers 55.lnk
[28/05/2009 18:59|--a------|307221] G:\\Profile des interleukines IL.docx
[30/03/2009 16:02|--a------|150843] G:\\Red Cells Histopathology of experimentally induced asthma in a murine model of sickle cell disease.htm
[17/01/2005 10:47|--a------|307200] G:\\minouche.EXE
[04/08/2004 11:42|-rahs----|978248] H:\\fgsres.exe
[09/12/2009 14:34|--a------|849760] H:\\clonage.pptx
[07/11/2009 14:12|--a------|12081063] H:\\Album photo.pptx
[17/10/2009 19:04|--a------|12097805] H:\\Album photo.ppsx
[11/11/2002 11:57|--a------|23040] H:\\WAWAMA.xls
[09/12/2009 01:17|--a------|68295] H:\\cloo.pptx
[27/05/2002 15:42|---hs----|72] H:\\desktop.ini
[08/11/2009 21:14|--a------|10917] H:\\Bonjour.docx
[05/12/2009 01:28|--a------|841018] H:\\L‚gislation.pdf
[05/12/2009 01:27|--a------|78992] H:\\180356f.pdf
[05/12/2009 01:16|--a------|12703] H:\\lexique.php.htm
[05/12/2009 01:25|--a------|203852] H:\\clonage.pdf
[08/11/2009 20:48|--a------|15666] H:\\Curriculum Vitae.docx
[05/12/2009 01:09|--a------|16708] H:\\opinion-sondages-clonage.php.htm
[23/11/2009 19:48|--a------|94960] H:\\questionnaire-pour-une-entreprise.pdf
[05/12/2009 01:14|--a------|15092] H:\\pourquoi-cloner.php.htm
[05/12/2009 01:16|--a------|14425] H:\\sources-liens.php.htm
[05/12/2009 01:09|--a------|11778] H:\\types-clonage.php.htm
[02/12/2009 13:00|--a------|14336] H:\\Classeur2.xls
[02/12/2009 13:00|--a------|13824] H:\\Classeur1.xls
[21/11/2009 19:24|--a------|53668] H:\\CV SAMIRA .pdf
[06/12/2009 21:57|--a------|131814] H:\\clo.pptx
[05/12/2009 01:07|--a------|20966] H:\\TPE - Le clonage humain limite ‚thique ou scientifique.htm
[05/12/2009 01:14|--a------|21589] H:\\arguments-contre-clonage.php.htm
[05/12/2009 01:09|--a------|13697] H:\\bissection-embryon.php.htm
[05/12/2009 01:13|--a------|21857] H:\\cloner-animal-cloner-homme.php.htm
[05/12/2009 01:14|--a------|11234] H:\\conclusion.php.htm
[05/12/2009 01:14|--a------|14761] H:\\contre-arguments.php.htm
[05/12/2009 01:08|--a------|23544] H:\\historique-clonage.php.htm
[05/12/2009 01:09|--a------|22981] H:\\legislation-clonage.php.htm
[05/12/2009 01:04|--a------|323584] H:\\Les fondements juridiques de la bio‚thique.doc
[09/12/2009 22:23|--a------|2300416] H:\\HJKJKJKLML.ppt
[05/12/2009 01:17|--a------|1026727] H:\\Le clonage humain.pdf
[09/12/2009 22:24|--a------|2297344] H:\\Copy of HJKJKJKLML222.ppt

################## | Vaccination |

# C:\\autorun.inf -> Dossier créé par UsbFix.
# G:\\autorun.inf -> Dossier créé par UsbFix.
# H:\\autorun.inf -> Dossier créé par UsbFix.

################## | Cracks / Keygens / Serials |


################## | Upload |

Veuillez envoyer le fichier : C:\\Users\\OPCuser\\Desktop\\UsbFix_Upload_Me_PC-de-OPCuser.zip : http://chiquitine.changelog.fr/Sample/Upload.php
Merci pour votre contribution .


sammou79 sammou79
34 contributions
Membre depuis le 24/04/2006
Envoyé le 11/12/2009 à 18:07


Et le rapport de RIST

Logfile of random\'s system information tool 1.06 (written by random/random)
Run by OPCuser at 2009-12-11 18:07:55
Microsoft® Windows Vista™ Édition Familiale Premium
System drive C: has 113 GB (63%) free of 180 GB
Total RAM: 2046 MB (51% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:08:04, on 11/12/2009
Platform: Windows Vista (WinNT 6.00.1904)
MSIE: Internet Explorer v7.00 (7.00.6000.16945)
Boot mode: Normal

Running processes:
C:\\Windows\\system32\\Dwm.exe
C:\\Windows\\system32\\taskeng.exe
C:\\Windows\\system32\\taskeng.exe
C:\\Program Files\\Sony\\VAIO Update 4\\VAIOUpdt.exe
C:\\Windows\\system32\\runonce.exe
C:\\Program Files\\Sony\\Wireless Switch Setting Utility\\Switcher.exe
C:\\Windows\\system32\\cmd.exe
C:\\Windows\\system32\\conime.exe
C:\\Windows\\explorer.exe
C:\\Program Files\\WIDCOMM\\Bluetooth Software\\BTTray.exe
C:\\Program Files\\Sony\\SonicStage Mastering Studio\\Audio Filter\\SSMSFilter.exe
C:\\Program Files\\Internet Explorer\\iexplore.exe
C:\\Program Files\\Windows Live\\Toolbar\\wltuser.exe
C:\\Program Files\\Google\\GoogleToolbarNotifier\\GoogleToolbarNotifier.exe
C:\\Windows\\system32\\NOTEPAD.EXE
C:\\Users\\OPCuser\\Desktop\\RSIT.exe
C:\\Program Files\\trend micro\\OPCuser.exe

R1 - HKCU\\Software\\Microsoft\\Internet Explorer\\Main,Default_Page_URL = http://www.club-vaio.com
R1 - HKLM\\Software\\Microsoft\\Internet Explorer\\Main,Default_Page_URL = http://www.club-vaio.com
R1 - HKLM\\Software\\Microsoft\\Internet Explorer\\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\\Software\\Microsoft\\Internet Explorer\\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\\Software\\Microsoft\\Internet Explorer\\Main,Start Page = http://fr.msn.com/
R0 - HKLM\\Software\\Microsoft\\Internet Explorer\\Search,SearchAssistant =
R0 - HKLM\\Software\\Microsoft\\Internet Explorer\\Search,CustomizeSearch =
R1 - HKCU\\Software\\Microsoft\\Internet Explorer\\Main,Window Title = Windows Internet Explorer
R0 - HKCU\\Software\\Microsoft\\Internet Explorer\\Toolbar,LinksFolderName =
R3 - URLSearchHook: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\\Program Files\\AVG\\AVG9\\Toolbar\\IEToolbar.dll
R3 - URLSearchHook: (no name) - *{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
O1 - Hosts: ::1 localhost
O2 - BHO: Aide pour le lien d\'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\\Program Files\\Common Files\\Adobe\\Acrobat\\ActiveX\\AcroIEHelper.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - c:\\program files\\real\\realplayer\\rpbrowserrecordplugin.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\\Program Files\\AVG\\AVG9\\avgssie.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\\Program Files\\Microsoft\\Search Enhancement Pack\\Search Helper\\SEPsearchhelperie.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\\Program Files\\Java\\jre1.6.0_02\\bin\\ssv.dll
O2 - BHO: Programme d\'aide de l\'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\\Program Files\\Common Files\\Microsoft Shared\\Windows Live\\WindowsLiveLogin.dll
O2 - BHO: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\\Program Files\\AVG\\AVG9\\Toolbar\\IEToolbar.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\\Program Files\\Google\\Google Toolbar\\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\\Program Files\\Google\\GoogleToolbarNotifier\\5.4.4525.1752\\swg.dll
O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\\PROGRA~1\\GOOGLE~1\\BAE.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\\Program Files\\Windows Live\\Toolbar\\wltcore.dll
O3 - Toolbar: AVG Security Toolbar - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\\Program Files\\AVG\\AVG9\\Toolbar\\IEToolbar.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\\Program Files\\Windows Live\\Toolbar\\wltcore.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\\Program Files\\Google\\Google Toolbar\\GoogleToolbar_32.dll
O4 - HKLM\\..\\Run: [Windows Defender] %ProgramFiles%\\Windows Defender\\MSASCui.exe -hide
O4 - HKLM\\..\\Run: [NvSvc] RUNDLL32.EXE C:\\Windows\\system32\\nvsvc.dll,nvsvcStart
O4 - HKLM\\..\\Run: [NvCplDaemon] RUNDLL32.EXE C:\\Windows\\system32\\NvCpl.dll,NvStartup
O4 - HKLM\\..\\Run: [NvMediaCenter] RUNDLL32.EXE C:\\Windows\\system32\\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\\..\\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\\..\\Run: [Skytel] Skytel.exe
O4 - HKLM\\..\\Run: [SynTPEnh] C:\\Program Files\\Synaptics\\SynTP\\SynTPEnh.exe
O4 - HKLM\\..\\Run: [Adobe Reader Speed Launcher] \"C:\\Program Files\\Adobe\\Reader 8.0\\Reader\\Reader_sl.exe\"
O4 - HKLM\\..\\Run: [ISBMgr.exe] \"C:\\Program Files\\Sony\\ISB Utility\\ISBMgr.exe\"
O4 - HKLM\\..\\Run: [Google Desktop Search] \"C:\\Program Files\\Google\\Google Desktop Search\\GoogleDesktop.exe\" /startup
O4 - HKLM\\..\\Run: [IAAnotif] \"C:\\Program Files\\Intel\\Intel Matrix Storage Manager\\Iaanotif.exe\"
O4 - HKLM\\..\\Run: [MarketingTools] C:\\Program Files\\Sony\\Marketing Tools\\MarketingTools.exe
O4 - HKLM\\..\\Run: [SunJavaUpdateSched] \"C:\\Program Files\\Java\\jre1.6.0_02\\bin\\jusched.exe\"
O4 - HKLM\\..\\Run: [AppMon Utility] \"C:\\Program Files\\Sony\\AppMonUtil\\AppMonUtility.exe\" @@@Start
O4 - HKLM\\..\\Run: [AVG9_TRAY] C:\\PROGRA~1\\AVG\\AVG9\\avgtray.exe
O4 - HKLM\\..\\Run: [TkBellExe] \"C:\\Program Files\\Common Files\\Real\\Update_OB\\realsched.exe\" -osboot
O4 - HKCU\\..\\Run: [Picasa Media Detector] C:\\Program Files\\Picasa2\\PicasaMediaDetector.exe
O4 - HKCU\\..\\Run: [MsnMsgr] \"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe\" /background
O4 - HKCU\\..\\Run: [swg] \"C:\\Program Files\\Google\\GoogleToolbarNotifier\\GoogleToolbarNotifier.exe\"
O4 - HKUS\\S-1-5-19\\..\\Run: [Sidebar] %ProgramFiles%\\Windows Sidebar\\Sidebar.exe /detectMem (User \'SERVICE LOCAL\')
O4 - HKUS\\S-1-5-19\\..\\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User \'SERVICE LOCAL\')
O4 - HKUS\\S-1-5-20\\..\\Run: [Sidebar] %ProgramFiles%\\Windows Sidebar\\Sidebar.exe /detectMem (User \'SERVICE RÉSEAU\')
O4 - Startup: Audio Filter.lnk = C:\\Program Files\\Sony\\SonicStage Mastering Studio\\Audio Filter\\SSMSFilter.exe
O4 - Global Startup: BTTray.lnk = ?
O4 - Global Startup: DSLMON.lnk = ?
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\\PROGRA~1\\MICROS~2\\Office12\\EXCEL.EXE/3000
O8 - Extra context menu item: Envoyer au périphérique &Bluetooth... - C:\\Program Files\\WIDCOMM\\Bluetooth Software\\btsendto_ie.htm
O8 - Extra context menu item: Envoyer l\'&image au périphérique Bluetooth... - C:\\Program Files\\WIDCOMM\\Bluetooth Software\\btsendto_ie_ctx.htm
O8 - Extra context menu item: Google Sidewiki... - res://C:\\Program Files\\Google\\Google Toolbar\\Component\\GoogleToolbarDynamic_mui_en_60D6097707281E79.dll/cmsidewiki.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\\Program Files\\Java\\jre1.6.0_02\\bin\\ssv.dll
O9 - Extra \'Tools\' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\\Program Files\\Java\\jre1.6.0_02\\bin\\ssv.dll
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\\Program Files\\Windows Live\\Writer\\WriterBrowserExtension.dll
O9 - Extra \'Tools\' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\\Program Files\\Windows Live\\Writer\\WriterBrowserExtension.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\\PROGRA~1\\MICROS~2\\Office12\\REFIEBAR.DLL
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\\Program Files\\WIDCOMM\\Bluetooth Software\\btsendto_ie.htm
O9 - Extra \'Tools\' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\\Program Files\\WIDCOMM\\Bluetooth Software\\btsendto_ie.htm
O13 - Gopher Prefix:
O15 - Trusted Zone: *.canalplay.com
O15 - Trusted Zone: *.canalplusactive.com
O15 - Trusted Zone: *.canalplay.com (HKLM)
O15 - Trusted Zone: *.canalplusactive.com (HKLM)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O17 - HKLM\\System\\CCS\\Services\\Tcpip\\..\\{3551FAD0-E625-4D37-97D7-65B6A6C51C1E}: NameServer = 41.221.20.4 66.28.0.45
O17 - HKLM\\System\\CS1\\Services\\Tcpip\\..\\{3551FAD0-E625-4D37-97D7-65B6A6C51C1E}: NameServer = 41.221.20.4 66.28.0.45
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\\Program Files\\AVG\\AVG9\\avgpp.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\\PROGRA~1\\COMMON~1\\Skype\\SKYPE4~1.DLL
O20 - AppInit_DLLs: C:\\PROGRA~1\\Google\\GOOGLE~1\\GOEC62~1.DLL,avgrsstx.dll
O23 - Service: AVG Free WatchDog (avg9wd) - AVG Technologies CZ, s.r.o. - C:\\Program Files\\AVG\\AVG9\\avgwdsvc.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\\Program Files\\Common Files\\Symantec Shared\\ccSvcHst.exe (file missing)
O23 - Service: Google Desktop Manager 5.7.806.10245 (GoogleDesktopManager-061008-081103) - Google - C:\\Program Files\\Google\\Google Desktop Search\\GoogleDesktop.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\\Program Files\\Google\\Common\\Google Updater\\GoogleUpdaterService.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\\Program Files\\Intel\\Intel Matrix Storage Manager\\Iaantmon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\\Program Files\\Common Files\\InstallShield\\Driver\\1150\\Intel 32\\IDriverT.exe
O23 - Service: IviRegMgr - InterVideo - C:\\Program Files\\Common Files\\InterVideo\\RegMgr\\iviRegMgr.exe
O23 - Service: MSCSPTISRV - Sony Corporation - C:\\Program Files\\Common Files\\Sony Shared\\AVLib\\MSCSPTISRV.exe
O23 - Service: PACSPTISVR - Unknown owner - C:\\Program Files\\Common Files\\Sony Shared\\AVLib\\PACSPTISVR.exe
O23 - Service: Service CANALPLAY - Canal+ Active - C:\\Program Files\\Lecteur CANALPLAY\\CanalPlayService.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\\Program Files\\Common Files\\Sony Shared\\AVLib\\SPTISRV.exe
O23 - Service: SigmaTel Audio Service (STacSV) - IDT, Inc. - C:\\Windows\\system32\\stacsv.exe
O23 - Service: CamMonitor (uCamMonitor) - ArcSoft, Inc. - C:\\Program Files\\ArcSoft\\Magic-i Visual Effects\\uCamMonitor.exe
O23 - Service: VAIO Entertainment TV Device Arbitration Service - Sony Corporation - C:\\Program Files\\Common Files\\Sony Shared\\VAIO Entertainment Platform\\VzCs\\VzHardwareResourceManager\\VzHardwareResourceManager.exe
O23 - Service: VAIO Event Service - Sony Corporation - C:\\Program Files\\Sony\\VAIO Event Service\\VESMgr.exe
O23 - Service: VAIO Media Integrated Server (VAIOMediaPlatform-IntegratedServer-AppServer) - Sony Corporation - C:\\Program Files\\Sony\\VAIO Media Integrated Server\\VMISrv.exe
O23 - Service: VAIO Media Integrated Server (HTTP) (VAIOMediaPlatform-IntegratedServer-HTTP) - Sony Corporation - C:\\Program Files\\Sony\\VAIO Media Integrated Server\\Platform\\SV_Httpd.exe
O23 - Service: VAIO Media Integrated Server (UPnP) (VAIOMediaPlatform-IntegratedServer-UPnP) - Sony Corporation - C:\\Program Files\\Sony\\VAIO Media Integrated Server\\Platform\\UPnPFramework.exe
O23 - Service: VAIO Media Gateway Server (VAIOMediaPlatform-Mobile-Gateway) - Sony Corporation - C:\\Program Files\\Sony\\VAIO Media Integrated Server\\Platform\\VmGateway.exe
O23 - Service: VAIO Media Content Collection (VAIOMediaPlatform-UCLS-AppServer) - Sony Corporation - C:\\Program Files\\Sony\\VAIO Media Integrated Server\\UCLS.exe
O23 - Service: VAIO Media Content Collection (HTTP) (VAIOMediaPlatform-UCLS-HTTP) - Sony Corporation - C:\\Program Files\\Sony\\VAIO Media Integrated Server\\Platform\\SV_Httpd.exe
O23 - Service: VAIO Media Content Collection (UPnP) (VAIOMediaPlatform-UCLS-UPnP) - Sony Corporation - C:\\Program Files\\Sony\\VAIO Media Integrated Server\\Platform\\UPnPFramework.exe
O23 - Service: VAIO Content Metadata Intelligent Analyzing Manager (VcmIAlzMgr) - Sony Corporation - C:\\Program Files\\Sony\\VCM Intelligent Analyzing Manager\\VcmIAlzMgr.exe
O23 - Service: VAIO Content Metadata XML Interface (VcmXmlIfHelper) - Sony Corporation - C:\\Program Files\\Common Files\\Sony Shared\\VcmXml\\VcmXmlIfHelper.exe
O23 - Service: VAIO Entertainment UPnP Client Adapter (Vcsw) - Sony Corporation - C:\\Program Files\\Common Files\\Sony Shared\\VAIO Entertainment Platform\\VCSW\\VCSW.exe
O23 - Service: VAIO Entertainment Database Service (VzCdbSvc) - Sony Corporation - C:\\Program Files\\Common Files\\Sony Shared\\VAIO Entertainment Platform\\VzCdb\\VzCdbSvc.exe
O23 - Service: VAIO Entertainment File Import Service (VzFw) - Sony Corporation - C:\\Program Files\\Common Files\\Sony Shared\\VAIO Entertainment Platform\\VzCdb\\VzFw.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\\Windows\\system32\\DRIVERS\\xaudio.exe

--
End of file - 12835 bytes

======Registry dump======

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Browser Helper Objects\\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Aide pour le lien d\'Adobe PDF Reader - C:\\Program Files\\Common Files\\Adobe\\Acrobat\\ActiveX\\AcroIEHelper.dll [2006-10-22 62080]

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Browser Helper Objects\\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
RealPlayer Download and Record Plugin for Internet Explorer - c:\\program files\\real\\realplayer\\rpbrowserrecordplugin.dll [2009-12-02 329312]

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Browser Helper Objects\\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\\Program Files\\AVG\\AVG9\\avgssie.dll [2009-12-02 1475864]

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Browser Helper Objects\\{5C255C8A-E604-49b4-9D64-90988571CECB}]

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Browser Helper Objects\\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\\Program Files\\Microsoft\\Search Enhancement Pack\\Search Helper\\SEPsearchhelperie.dll [2009-05-19 137600]

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Browser Helper Objects\\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
SSVHelper Class - C:\\Program Files\\Java\\jre1.6.0_02\\bin\\ssv.dll [2007-07-12 501136]

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Browser Helper Objects\\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Programme d\'aide de l\'Assistant de connexion Windows Live - C:\\Program Files\\Common Files\\Microsoft Shared\\Windows Live\\WindowsLiveLogin.dll [2009-02-17 408440]

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Browser Helper Objects\\{A3BC75A2-1F87-4686-AA43-5347D756017C}]
AVG Security Toolbar BHO - C:\\Program Files\\AVG\\AVG9\\Toolbar\\IEToolbar.dll [2009-10-16 1119488]

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Browser Helper Objects\\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\\Program Files\\Google\\Google Toolbar\\GoogleToolbar_32.dll [2009-12-05 263280]

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Browser Helper Objects\\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\\Program Files\\Google\\GoogleToolbarNotifier\\5.4.4525.1752\\swg.dll [2009-12-02 764912]

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Browser Helper Objects\\{CA6319C0-31B7-401E-A518-A07C3DB8F777}]
CBrowserHelperObject Object - C:\\PROGRA~1\\GOOGLE~1\\BAE.dll [2006-06-23 98304]

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Browser Helper Objects\\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
Windows Live Toolbar Helper - C:\\Program Files\\Windows Live\\Toolbar\\wltcore.dll [2009-02-06 1068904]

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Internet Explorer\\Toolbar]
{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - AVG Security Toolbar - C:\\Program Files\\AVG\\AVG9\\Toolbar\\IEToolbar.dll [2009-10-16 1119488]
{21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar - C:\\Program Files\\Windows Live\\Toolbar\\wltcore.dll [2009-02-06 1068904]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\\Program Files\\Google\\Google Toolbar\\GoogleToolbar_32.dll [2009-12-05 263280]

[HKEY_LOCAL_MACHINE\\Software\\Microsoft\\Windows\\CurrentVersion\\Run]
\"Windows Defender\"=C:\\Program Files\\Windows Defender\\MSASCui.exe [2007-11-21 1006264]
\"NvSvc\"=C:\\Windows\\system32\\nvsvc.dll [2007-11-07 86016]
\"NvCplDaemon\"=C:\\Windows\\system32\\NvCpl.dll [2007-11-07 8497696]
\"NvMediaCenter\"=C:\\Windows\\system32\\NvMcTray.dll [2007-11-07 81920]
\"RtHDVCpl\"=C:\\Windows\\RtHDVCpl.exe [2007-08-25 4669440]
\"Skytel\"=C:\\Windows\\Skytel.exe [2007-08-25 1826816]
\"SynTPEnh\"=C:\\Program Files\\Synaptics\\SynTP\\SynTPEnh.exe [2007-03-10 835584]
\"Adobe Reader Speed Launcher\"=C:\\Program Files\\Adobe\\Reader 8.0\\Reader\\Reader_sl.exe [2007-05-11 40048]
\"ISBMgr.exe\"=C:\\Program Files\\Sony\\ISB Utility\\ISBMgr.exe [2007-09-19 311296]
\"Google Desktop Search\"=C:\\Program Files\\Google\\Google Desktop Search\\GoogleDesktop.exe [2008-12-13 29744]
\"IAAnotif\"=C:\\Program Files\\Intel\\Intel Matrix Storage Manager\\Iaanotif.exe [2007-02-12 174872]
\"MarketingTools\"=C:\\Program Files\\Sony\\Marketing Tools\\MarketingTools.exe [2007-11-21 36864]
\"SunJavaUpdateSched\"=C:\\Program Files\\Java\\jre1.6.0_02\\bin\\jusched.exe [2007-07-12 132496]
\"AppMon Utility\"=C:\\Program Files\\Sony\\AppMonUtil\\AppMonUtility.exe [2007-09-20 542560]
\"AVG9_TRAY\"=C:\\PROGRA~1\\AVG\\AVG9\\avgtray.exe [2009-12-02 2020120]
\"TkBellExe\"=C:\\Program Files\\Common Files\\Real\\Update_OB\\realsched.exe [2009-12-02 198160]

[HKEY_CURRENT_USER\\Software\\Microsoft\\Windows\\CurrentVersion\\Run]
\"Picasa Media Detector\"=C:\\Program Files\\Picasa2\\PicasaMediaDetector.exe [2007-09-12 443968]
\"MsnMsgr\"=C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe [2009-07-26 3883856]
\"swg\"=C:\\Program Files\\Google\\GoogleToolbarNotifier\\GoogleToolbarNotifier.exe [2009-04-25 39408]

C:\\ProgramData\\Microsoft\\Windows\\Start Menu\\Programs\\Startup
BTTray.lnk - C:\\Program Files\\WIDCOMM\\Bluetooth Software\\BTTray.exe
DSLMON.lnk - C:\\Program Files\\Huawei Technologies\\Huawei SmartAX MT810\\dslmon.exe

C:\\Users\\OPCuser\\AppData\\Roaming\\Microsoft\\Windows\\Start Menu\\Programs\\Startup
Audio Filter.lnk - C:\\Program Files\\Sony\\SonicStage Mastering Studio\\Audio Filter\\SSMSFilter.exe

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows NT\\CurrentVersion\\Windows]
\"AppInit_DLLS\"=\"C:\\PROGRA~1\\Google\\GOOGLE~1\\GOEC62~1.DLL,avgrsstx.dll\"

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows NT\\CurrentVersion\\Winlogon\\Notify\\VESWinlogon]
C:\\Windows\\system32\\VESWinlogon.dll [2007-08-14 98304]

[HKEY_LOCAL_MACHINE\\Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\System]
\"dontdisplaylastusername\"=0
\"legalnoticecaption\"=
\"legalnoticetext\"=
\"shutdownwithoutlogon\"=1
\"undockwithoutlogon\"=1

[HKEY_CURRENT_USER\\Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\explorer]
\"NoDriveTypeAutoRun\"=145
\"NoDriveAutoRun\"=145
\"HonorAutoRunSetting\"=0

[HKEY_LOCAL_MACHINE\\Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\explorer]
\"NoDriveAutoRun\"=
\"NoDriveTypeAutoRun\"=
\"HonorAutoRunSetting\"=

[HKEY_LOCAL_MACHINE\\system\\currentcontrolset\\services\\sharedaccess\\parameters\\firewallpolicy\\standardprofile\\authorizedapplications\\list]

[HKEY_LOCAL_MACHINE\\system\\currentcontrolset\\services\\sharedaccess\\parameters\\firewallpolicy\\domainprofile\\authorizedapplications\\list]

======List of files/folders created in the last 1 months======

2009-12-11 18:01:00 ----RASHD---- C:\\autorun.inf
2009-12-11 17:57:52 ----A---- C:\\UsbFix.txt
2009-12-10 23:14:11 ----A---- C:\\Windows\\system32\\mshtml.dll
2009-12-10 23:14:09 ----A---- C:\\Windows\\system32\\wininet.dll
2009-12-10 23:14:09 ----A---- C:\\Windows\\system32\\urlmon.dll
2009-12-10 23:14:08 ----A---- C:\\Windows\\system32\\ieframe.dll
2009-12-10 23:14:07 ----A---- C:\\Windows\\system32\\mstime.dll
2009-12-10 23:14:07 ----A---- C:\\Windows\\system32\\ieapfltr.dll
2009-12-10 23:14:06 ----A---- C:\\Windows\\system32\\occache.dll
2009-12-10 23:14:06 ----A---- C:\\Windows\\system32\\msfeeds.dll
2009-12-10 23:14:06 ----A---- C:\\Windows\\system32\\iertutil.dll
2009-12-10 23:14:06 ----A---- C:\\Windows\\system32\\iedkcs32.dll
2009-12-10 23:14:06 ----A---- C:\\Windows\\system32\\dxtmsft.dll
2009-12-10 23:14:05 ----A---- C:\\Windows\\system32\\mshtmled.dll
2009-12-10 23:14:05 ----A---- C:\\Windows\\system32\\ieencode.dll
2009-12-10 23:14:05 ----A---- C:\\Windows\\system32\\ieaksie.dll
2009-12-10 23:14:05 ----A---- C:\\Windows\\system32\\icardie.dll
2009-12-10 23:14:05 ----A---- C:\\Windows\\system32\\dxtrans.dll
2009-12-10 23:14:04 ----A---- C:\\Windows\\system32\\jsproxy.dll
2009-12-10 23:14:04 ----A---- C:\\Windows\\system32\\advpack.dll
2009-12-10 23:14:04 ----A---- C:\\Windows\\system32\\admparse.dll
2009-12-10 23:14:03 ----A---- C:\\Windows\\system32\\ieui.dll
2009-12-10 23:14:03 ----A---- C:\\Windows\\system32\\iesetup.dll
2009-12-10 23:14:03 ----A---- C:\\Windows\\system32\\iernonce.dll
2009-12-10 23:14:03 ----A---- C:\\Windows\\system32\\ie4uinit.exe
2009-12-10 23:14:02 ----A---- C:\\Windows\\system32\\pngfilt.dll
2009-12-10 23:14:02 ----A---- C:\\Windows\\system32\\mshtmler.dll
2009-12-10 23:14:02 ----A---- C:\\Windows\\system32\\ieUnatt.exe
2009-12-10 23:14:02 ----A---- C:\\Windows\\system32\\ieakui.dll
2009-12-10 23:10:17 ----A---- C:\\Windows\\system32\\httpapi.dll
2009-12-10 23:10:16 ----A---- C:\\Windows\\system32\\nshhttp.dll
2009-12-10 23:03:19 ----A---- C:\\Windows\\system32\\winhttp.dll
2009-12-10 21:48:43 ----A---- C:\\Windows\\system32\\rastls.dll
2009-12-10 21:48:42 ----A---- C:\\Windows\\system32\\raschap.dll
2009-12-05 19:50:06 ----D---- C:\\UsbFix
2009-12-04 20:37:53 ----D---- C:\\rsit
2009-12-04 20:37:53 ----D---- C:\\Program Files\\trend micro
2009-12-02 21:47:56 ----A---- C:\\Windows\\system32\\tzres.dll
2009-12-02 21:16:35 ----A---- C:\\Windows\\cdplayer.ini
2009-12-02 21:16:22 ----D---- C:\\My Music
2009-12-02 21:12:32 ----D---- C:\\ProgramData\\Real
2009-12-02 21:11:57 ----A---- C:\\Windows\\system32\\rmoc3260.dll
2009-12-02 21:11:46 ----A---- C:\\Windows\\system32\\pndx5032.dll
2009-12-02 21:11:46 ----A---- C:\\Windows\\system32\\pndx5016.dll
2009-12-02 21:11:40 ----D---- C:\\Program Files\\Common Files\\xing shared
2009-12-02 19:44:00 ----A---- C:\\Windows\\system32\\msxml6r.dll
2009-12-02 19:44:00 ----A---- C:\\Windows\\system32\\msxml6.dll
2009-12-02 19:44:00 ----A---- C:\\Windows\\system32\\msxml3r.dll
2009-12-02 19:44:00 ----A---- C:\\Windows\\system32\\msxml3.dll
2009-11-23 16:45:55 ----HD---- C:\\$AVG
2009-11-23 16:45:54 ----A---- C:\\Windows\\system32\\avgrsstx.dll
2009-11-23 16:45:27 ----D---- C:\\ProgramData\\AVG Security Toolbar
2009-11-23 16:45:11 ----D---- C:\\ProgramData\\avg9
2009-11-20 22:14:13 ----D---- C:\\Program Files\\CCleaner
2009-11-15 17:29:33 ----D---- C:\\ProgramData\\NOS
2009-11-14 18:23:42 ----D---- C:\\Users\\OPCuser\\AppData\\Roaming\\uTorrent

======List of files/folders modified in the last 1 months======

2009-12-11 18:06:36 ----D---- C:\\Windows\\Temp
2009-12-11 18:00:31 ----D---- C:\\Windows\\Prefetch
2009-12-11 17:59:41 ----SHD---- C:\\$Recycle.Bin
2009-12-11 17:06:12 ----D---- C:\\Windows\\System32
2009-12-11 17:06:12 ----D---- C:\\Program Files\\Internet Explorer
2009-12-11 17:06:11 ----D---- C:\\Windows\\system32\\migration
2009-12-11 17:06:10 ----D---- C:\\Windows\\system32\\fr-FR
2009-12-11 17:06:10 ----D---- C:\\Windows\\AppPatch
2009-12-11 17:06:09 ----D---- C:\\Windows\\system32\\drivers
2009-12-11 16:50:28 ----D---- C:\\Windows\\winsxs
2009-12-11 16:50:16 ----SHD---- C:\\System Volume Information
2009-12-11 16:49:20 ----SHD---- C:\\Windows\\Installer
2009-12-11 16:49:20 ----D---- C:\\ProgramData\\Microsoft Help
2009-12-11 16:48:17 ----RSD---- C:\\Windows\\assembly
2009-12-11 16:47:30 ----D---- C:\\Windows\\inf
2009-12-11 16:41:47 ----D---- C:\\Windows\\Debug
2009-12-10 22:53:09 ----D---- C:\\Windows\\system32\\catroot2
2009-12-10 22:53:09 ----D---- C:\\Windows\\system32\\catroot
2009-12-05 22:17:21 ----D---- C:\\Users\\OPCuser\\AppData\\Roaming\\Skype
2009-12-05 20:29:00 ----SD---- C:\\Windows\\Downloaded Program Files
2009-12-05 19:51:23 ----A---- C:\\Windows\\system32\\PerfStringBackup.INI
2009-12-04 20:37:53 ----RD---- C:\\Program Files
2009-12-04 20:37:31 ----D---- C:\\Windows
2009-12-02 21:12:32 ----HD---- C:\\ProgramData
2009-12-02 21:12:32 ----D---- C:\\Users\\OPCuser\\AppData\\Roaming\\Real
2009-12-02 21:12:05 ----D---- C:\\Program Files\\Common Files\\Real
2009-12-02 21:11:40 ----D---- C:\\Program Files\\Common Files
2009-12-02 21:11:01 ----A---- C:\\Windows\\system32\\pncrt.dll
2009-12-01 21:06:19 ----A---- C:\\Windows\\system32\\mrt.exe
2009-11-24 05:36:35 ----D---- C:\\Program Files\\Reganam
2009-11-24 05:36:35 ----D---- C:\\Program Files\\Conduit
2009-11-23 16:45:12 ----D---- C:\\Program Files\\AVG
2009-11-23 16:44:49 ----D---- C:\\Program Files\\Common Files\\microsoft shared
2009-11-23 14:00:02 ----D---- C:\\Windows\\Minidump
2009-11-23 13:32:00 ----D---- C:\\ProgramData\\Norton
2009-11-23 13:27:41 ----D---- C:\\Program Files\\Common Files\\Symantec Shared
2009-11-14 19:52:49 ----D---- C:\\Windows\\system32\\Tasks
2009-11-14 00:14:59 ----RSD---- C:\\Windows\\Fonts
2009-11-14 00:14:25 ----D---- C:\\Program Files\\Microsoft Works
2009-11-14 00:12:18 ----A---- C:\\Windows\\win.ini
2009-11-13 17:58:27 ----D---- C:\\Program Files\\Microsoft Silverlight
2009-11-12 22:11:35 ----D---- C:\\Windows\\Microsoft.NET

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 AvgLdx86;AVG Free AVI Loader Driver x86; C:\\Windows\\System32\\Drivers\\avgldx86.sys [2009-11-23 333192]
R1 AvgMfx86;AVG Free On-access Scanner Minifilter Driver x86; C:\\Windows\\System32\\Drivers\\avgmfx86.sys [2009-11-23 28424]
R1 AvgTdiX;AVG Free Network Redirector; C:\\Windows\\System32\\Drivers\\avgtdix.sys [2009-12-02 360584]
R1 DMICall;Sony DMI Call service; C:\\Windows\\system32\\DRIVERS\\DMICall.sys [2007-09-19 10216]
R1 eeCtrl;Symantec Eraser Control driver; \\??\\C:\\Program Files\\Common Files\\Symantec Shared\\EENGINE\\eeCtrl.sys [2009-10-29 371248]
R2 mdmxsdk;mdmxsdk; C:\\Windows\\system32\\DRIVERS\\mdmxsdk.sys [2007-09-27 12672]
R2 regi;regi; C:\\Windows\\system32\\drivers\\regi.sys [2007-04-17 11032]
R2 XAudio;XAudio; C:\\Windows\\system32\\DRIVERS\\xaudio.sys [2007-09-27 8192]
R3 adiusbae;USB ADSL LAN Adapter; C:\\Windows\\system32\\DRIVERS\\adiusbae.sys [2005-10-27 117289]
R3 ArcSoftKsUFilter;ArcSoft Magic-I Visual Effect; C:\\Windows\\system32\\DRIVERS\\ArcSoftKsUFilter.sys [2007-10-29 17920]
R3 CmBatt;Pilote pour Batterie à méthode de contrôle ACPI Microsoft; C:\\Windows\\system32\\DRIVERS\\CmBatt.sys [2006-11-02 14208]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\\Windows\\System32\\Drivers\\GEARAspiWDM.sys [2008-04-17 15464]
R3 HSF_DPV;HSF_DPV; C:\\Windows\\system32\\DRIVERS\\HSX_DPV.sys [2007-09-27 985600]
R3 HSXHWAZL;HSXHWAZL; C:\\Windows\\system32\\DRIVERS\\HSXHWAZL.sys [2007-09-27 207360]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\\Windows\\system32\\drivers\\RTKVHDA.sys [2007-08-25 1841312]
R3 NETw4v32;Pilote de carte Intel(R) Wireless WiFi Link pour Windows Vista 32 bits; C:\\Windows\\system32\\DRIVERS\\NETw4v32.sys [2007-09-19 2222080]
R3 nvlddmkm;nvlddmkm; C:\\Windows\\system32\\DRIVERS\\nvlddmkm.sys [2007-11-07 7626400]
R3 R5U870FLx86;R5U870 UVC Lower Filter ; C:\\Windows\\System32\\Drivers\\R5U870FLx86.sys [2007-11-08 73472]
R3 R5U870FUx86;R5U870 UVC Upper Filter ; C:\\Windows\\System32\\Drivers\\R5U870FUx86.sys [2007-11-08 43904]
R3 SFEP;Sony Firmware Extension Parser; C:\\Windows\\system32\\DRIVERS\\SFEP.sys [2007-08-29 9344]
R3 STHDA;IDT High Definition Audio CODEC; C:\\Windows\\system32\\drivers\\stwrt.sys [2007-10-27 330240]
R3 SynTP;Synaptics TouchPad Driver; C:\\Windows\\system32\\DRIVERS\\SynTP.sys [2007-03-10 181560]
R3 ti21sony;ti21sony; C:\\Windows\\system32\\drivers\\ti21sony.sys [2007-06-06 812544]
R3 usbvideo;R5U870 (UVC) ; C:\\Windows\\System32\\Drivers\\usbvideo.sys [2007-11-21 132608]
R3 winachsf;winachsf; C:\\Windows\\system32\\DRIVERS\\HSX_CNXT.sys [2007-09-27 659968]
R3 WUDFRd;WUDFRd; C:\\Windows\\system32\\DRIVERS\\WUDFRd.sys [2006-11-02 82560]
R3 yukonwlh;NDIS6.0 Miniport Driver for Marvell Yukon Ethernet Controller; C:\\Windows\\system32\\DRIVERS\\yk60x86.sys [2007-09-27 246784]
S2 ADILOADER;General Purpose USB Driver (adildr.sys); C:\\Windows\\System32\\Drivers\\adildr.sys [2005-10-27 50007]
S3 BthEnum;Pilote de bloc de demande Bluetooth; C:\\Windows\\system32\\DRIVERS\\BthEnum.sys [2007-11-21 19456]
S3 BthPan;Périphérique Bluetooth (réseau personnel); C:\\Windows\\system32\\DRIVERS\\bthpan.sys [2006-11-02 92160]
S3 BTHPORT;Pilote de port Bluetooth; C:\\Windows\\System32\\Drivers\\BTHport.sys [2007-11-21 220160]
S3 BTHUSB;Pilote USB radio Bluetooth; C:\\Windows\\System32\\Drivers\\BTHUSB.sys [2007-11-21 29184]
S3 btwaudio;Périphérique audio Bluetooth; C:\\Windows\\system32\\drivers\\btwaudio.sys [2007-10-10 81448]
S3 btwavdt;Bluetooth AVDT; C:\\Windows\\system32\\drivers\\btwavdt.sys [2007-10-10 99880]
S3 btwl2cap;Bluetooth L2CAP Service; C:\\Windows\\system32\\DRIVERS\\btwl2cap.sys [2007-10-10 28464]
S3 btwrchid;btwrchid; C:\\Windows\\system32\\DRIVERS\\btwrchid.sys [2007-10-10 17448]
S3 drmkaud;Filtre de décodeur DRM (Noyau Microsoft); C:\\Windows\\system32\\drivers\\drmkaud.sys [2006-11-02 5632]
S3 EraserUtilRebootDrv;EraserUtilRebootDrv; \\??\\C:\\Program Files\\Common Files\\Symantec Shared\\EENGINE\\EraserUtilRebootDrv.sys [2009-10-29 102448]
S3 fssfltr;FssFltr; C:\\Windows\\system32\\DRIVERS\\fssfltr.sys [2009-08-05 54632]
S3 HdAudAddService;Pilote de fonction UAA 1.1 Microsoft pour le service High Definition Audio; C:\\Windows\\system32\\drivers\\HdAudio.sys [2006-11-02 235520]
S3 HSFHWAZL;HSFHWAZL; C:\\Windows\\system32\\DRIVERS\\VSTAZL3.SYS [2006-11-02 200704]
S3 MSKSSRV;Proxy de service de répartition Microsoft; C:\\Windows\\system32\\drivers\\MSKSSRV.sys [2006-11-02 8192]
S3 MSPCLOCK;Proxy d\'horloge de répartition Microsoft; C:\\Windows\\system32\\drivers\\MSPCLOCK.sys [2006-11-02 5888]
S3 MSPQM;Proxy de gestion de qualité de répartition Microsoft; C:\\Windows\\system32\\drivers\\MSPQM.sys [2006-11-02 5504]
S3 MSTEE;Convertisseur en T/site-à-site de répartition Microsoft; C:\\Windows\\system32\\drivers\\MSTEE.sys [2006-11-02 6016]
S3 NETw3v32;Pilote de carte Intel(R) PRO/Wireless 3945ABG pour Windows Vista 32 bits; C:\\Windows\\system32\\DRIVERS\\NETw3v32.sys [2006-11-02 1781760]
S3 RFCOMM;Périphérique Bluetooth (TDI protocole RFCOMM); C:\\Windows\\system32\\DRIVERS\\rfcomm.sys [2006-11-02 49664]
S3 WimFltr;WimFltr; C:\\Windows\\system32\\DRIVERS\\wimfltr.sys [2007-05-26 128104]
S4 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\\Windows\\system32\\drivers\\wmiacpi.sys [2006-11-02 11264]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 avg9wd;AVG Free WatchDog; C:\\Program Files\\AVG\\AVG9\\avgwdsvc.exe [2009-11-23 285392]
R2 BthServ;@%SystemRoot%\\System32\\bthserv.dll,-101; C:\\Windows\\system32\\svchost.exe [2006-11-02 22016]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\\Program Files\\Intel\\Intel Matrix Storage Manager\\Iaantmon.exe [2007-02-12 355096]
R2 IviRegMgr;IviRegMgr; C:\\Program Files\\Common Files\\InterVideo\\RegMgr\\iviRegMgr.exe [2007-01-04 112152]
R2 SeaPort;SeaPort; C:\\Program Files\\Microsoft\\Search Enhancement Pack\\SeaPort\\SeaPort.exe [2009-05-19 240512]
R2 STacSV;SigmaTel Audio Service; C:\\Windows\\system32\\stacsv.exe [2007-10-27 102400]
R2 uCamMonitor;CamMonitor; C:\\Program Files\\ArcSoft\\Magic-i Visual Effects\\uCamMonitor.exe [2007-10-31 125440]
R2 VAIO Event Service;VAIO Event Service; C:\\Program Files\\Sony\\VAIO Event Service\\VESMgr.exe [2007-08-14 182392]
R2 VzCdbSvc;VAIO Entertainment Database Service; C:\\Program Files\\Common Files\\Sony Shared\\VAIO Entertainment Platform\\VzCdb\\VzCdbSvc.exe [2007-08-28 192512]
R2 VzFw;VAIO Entertainment File Import Service; C:\\Program Files\\Common Files\\Sony Shared\\VAIO Entertainment Platform\\VzCdb\\VzFw.exe [2007-08-28 131072]
R2 XAudioService;XAudioService; C:\\Windows\\system32\\DRIVERS\\xaudio.exe [2007-09-27 386560]
R3 Vcsw;VAIO Entertainment UPnP Client Adapter; C:\\Program Files\\Common Files\\Sony Shared\\VAIO Entertainment Platform\\VCSW\\VCSW.exe [2007-06-28 274432]
S2 CLTNetCnService;Symantec Lic NetConnect service; C:\\Program Files\\Common Files\\Symantec Shared\\ccSvcHst.exe /h ccCommon []
S3 fsssvc;Service Windows Live Contrôle parental; C:\\Program Files\\Windows Live\\Family Safety\\fsssvc.exe [2009-08-05 704864]
S3 GoogleDesktopManager-061008-081103;Google Desktop Manager 5.7.806.10245; C:\\Program Files\\Google\\Google Desktop Search\\GoogleDesktop.exe [2008-12-13 29744]
S3 gusvc;Google Software Updater; C:\\Program Files\\Google\\Common\\Google Updater\\GoogleUpdaterService.exe [2009-04-25 182768]
S3 IDriverT;InstallDriver Table Manager; C:\\Program Files\\Common Files\\InstallShield\\Driver\\1150\\Intel 32\\IDriverT.exe [2005-11-14 69632]
S3 MSCSPTISRV;MSCSPTISRV; C:\\Program Files\\Common Files\\Sony Shared\\AVLib\\MSCSPTISRV.exe [2006-12-14 45056]
S3 odserv;Microsoft Office Diagnostics Service; C:\\Program Files\\Common Files\\Microsoft Shared\\OFFICE12\\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\\Program Files\\Common Files\\Microsoft Shared\\Source Engine\\OSE.EXE [2006-10-26 145184]
S3 PACSPTISVR;PACSPTISVR; C:\\Program Files\\Common Files\\Sony Shared\\AVLib\\PACSPTISVR.exe [2006-12-14 57344]
S3 Service CANALPLAY;Service CANALPLAY; C:\\Program Files\\Lecteur CANALPLAY\\CanalPlayService.exe [2007-07-09 415392]
S3 SPTISRV;Sony SPTI Service; C:\\Program Files\\Common Files\\Sony Shared\\AVLib\\SPTISRV.exe [2006-12-14 69632]
S3 VAIO Entertainment TV Device Arbitration Service;VAIO Entertainment TV Device Arbitration Service; C:\\Program Files\\Common Files\\Sony Shared\\VAIO Entertainment Platform\\VzCs\\VzHardwareResourceManager\\VzHardwareResourceManager.exe [2007-06-28 73728]
S3 VAIOMediaPlatform-IntegratedServer-AppServer;VAIO Media Integrated Server; C:\\Program Files\\Sony\\VAIO Media Integrated Server\\VMISrv.exe [2007-06-20 2523136]
S3 VAIOMediaPlatform-IntegratedServer-HTTP;VAIO Media Integrated Server (HTTP); C:\\Program Files\\Sony\\VAIO Media Integrated Server\\Platform\\SV_Httpd.exe [2007-06-20 397312]
S3 VAIOMediaPlatform-IntegratedServer-UPnP;VAIO Media Integrated Server (UPnP); C:\\Program Files\\Sony\\VAIO Media Integrated Server\\Platform\\UPnPFramework.exe [2007-06-20 1089536]
S3 VAIOMediaPlatform-Mobile-Gateway;VAIO Media Gateway Server; C:\\Program Files\\Sony\\VAIO Media Integrated Server\\Platform\\VmGateway.exe [2007-06-20 499712]
S3 VAIOMediaPlatform-UCLS-AppServer;VAIO Media Content Collection; C:\\Program Files\\Sony\\VAIO Media Integrated Server\\UCLS.exe [2007-01-10 745472]
S3 VAIOMediaPlatform-UCLS-HTTP;VAIO Media Content Collection (HTTP); C:\\Program Files\\Sony\\VAIO Media Integrated Server\\Platform\\SV_Httpd.exe [2007-06-20 397312]
S3 VAIOMediaPlatform-UCLS-UPnP;VAIO Media Content Collection (UPnP); C:\\Program Files\\Sony\\VAIO Media Integrated Server\\Platform\\UPnPFramework.exe [2007-06-20 1089536]
S3 VcmIAlzMgr;VAIO Content Metadata Intelligent Analyzing Manager; C:\\Program Files\\Sony\\VCM Intelligent Analyzing Manager\\VcmIAlzMgr.exe [2007-09-28 292128]
S3 VcmXmlIfHelper;VAIO Content Metadata XML Interface; C:\\Program Files\\Common Files\\Sony Shared\\VcmXml\\VcmXmlIfHelper.exe [2007-09-20 79136]

-----------------EOF-----------------
j\'attend Malwarebleach .... à l\'aide [;)]

malwarebleach malwarebleach
2 125 contributions
Membre depuis le 12/09/2009
Envoyé le 11/12/2009 à 18:10


Salut,

Je suis patient, souvent les internautes aidés en désinfection abandonnent, j\'ai l\'habitude. Tant mieux que tu sois repassé.

Je vais avoir besoin d\'un nouveau rapport RSIT :

  • lance RSIT
  • clique sur continue
  • seul le bloc-notes nommé log.txt va apparaitre cette fois-ci
  • copie/colle son contenu dans ta prochaine réponse.


On va voir où en est ton ordinateur... [;)]
Si tu ne sais pas demande, si tu sais partage !!
sammou79 sammou79
34 contributions
Membre depuis le 24/04/2006
Envoyé le 11/12/2009 à 20:02


OK .... et un grand merci pour ce grand patient [:)(]

Logfile of random\'s system information tool 1.06 (written by random/random)
Run by OPCuser at 2009-12-11 18:07:55
Microsoft® Windows Vista™ Édition Familiale Premium
System drive C: has 113 GB (63%) free of 180 GB
Total RAM: 2046 MB (51% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:08:04, on 11/12/2009
Platform: Windows Vista (WinNT 6.00.1904)
MSIE: Internet Explorer v7.00 (7.00.6000.16945)
Boot mode: Normal

Running processes:
C:\\Windows\\system32\\Dwm.exe
C:\\Windows\\system32\\taskeng.exe
C:\\Windows\\system32\\taskeng.exe
C:\\Program Files\\Sony\\VAIO Update 4\\VAIOUpdt.exe
C:\\Windows\\system32\\runonce.exe
C:\\Program Files\\Sony\\Wireless Switch Setting Utility\\Switcher.exe
C:\\Windows\\system32\\cmd.exe
C:\\Windows\\system32\\conime.exe
C:\\Windows\\explorer.exe
C:\\Program Files\\WIDCOMM\\Bluetooth Software\\BTTray.exe
C:\\Program Files\\Sony\\SonicStage Mastering Studio\\Audio Filter\\SSMSFilter.exe
C:\\Program Files\\Internet Explorer\\iexplore.exe
C:\\Program Files\\Windows Live\\Toolbar\\wltuser.exe
C:\\Program Files\\Google\\GoogleToolbarNotifier\\GoogleToolbarNotifier.exe
C:\\Windows\\system32\\NOTEPAD.EXE
C:\\Users\\OPCuser\\Desktop\\RSIT.exe
C:\\Program Files\\trend micro\\OPCuser.exe

R1 - HKCU\\Software\\Microsoft\\Internet Explorer\\Main,Default_Page_URL = http://www.club-vaio.com
R1 - HKLM\\Software\\Microsoft\\Internet Explorer\\Main,Default_Page_URL = http://www.club-vaio.com
R1 - HKLM\\Software\\Microsoft\\Internet Explorer\\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\\Software\\Microsoft\\Internet Explorer\\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\\Software\\Microsoft\\Internet Explorer\\Main,Start Page = http://fr.msn.com/
R0 - HKLM\\Software\\Microsoft\\Internet Explorer\\Search,SearchAssistant =
R0 - HKLM\\Software\\Microsoft\\Internet Explorer\\Search,CustomizeSearch =
R1 - HKCU\\Software\\Microsoft\\Internet Explorer\\Main,Window Title = Windows Internet Explorer
R0 - HKCU\\Software\\Microsoft\\Internet Explorer\\Toolbar,LinksFolderName =
R3 - URLSearchHook: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\\Program Files\\AVG\\AVG9\\Toolbar\\IEToolbar.dll
R3 - URLSearchHook: (no name) - *{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
O1 - Hosts: ::1 localhost
O2 - BHO: Aide pour le lien d\'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\\Program Files\\Common Files\\Adobe\\Acrobat\\ActiveX\\AcroIEHelper.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - c:\\program files\\real\\realplayer\\rpbrowserrecordplugin.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\\Program Files\\AVG\\AVG9\\avgssie.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\\Program Files\\Microsoft\\Search Enhancement Pack\\Search Helper\\SEPsearchhelperie.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\\Program Files\\Java\\jre1.6.0_02\\bin\\ssv.dll
O2 - BHO: Programme d\'aide de l\'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\\Program Files\\Common Files\\Microsoft Shared\\Windows Live\\WindowsLiveLogin.dll
O2 - BHO: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\\Program Files\\AVG\\AVG9\\Toolbar\\IEToolbar.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\\Program Files\\Google\\Google Toolbar\\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\\Program Files\\Google\\GoogleToolbarNotifier\\5.4.4525.1752\\swg.dll
O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\\PROGRA~1\\GOOGLE~1\\BAE.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\\Program Files\\Windows Live\\Toolbar\\wltcore.dll
O3 - Toolbar: AVG Security Toolbar - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\\Program Files\\AVG\\AVG9\\Toolbar\\IEToolbar.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\\Program Files\\Windows Live\\Toolbar\\wltcore.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\\Program Files\\Google\\Google Toolbar\\GoogleToolbar_32.dll
O4 - HKLM\\..\\Run: [Windows Defender] %ProgramFiles%\\Windows Defender\\MSASCui.exe -hide
O4 - HKLM\\..\\Run: [NvSvc] RUNDLL32.EXE C:\\Windows\\system32\\nvsvc.dll,nvsvcStart
O4 - HKLM\\..\\Run: [NvCplDaemon] RUNDLL32.EXE C:\\Windows\\system32\\NvCpl.dll,NvStartup
O4 - HKLM\\..\\Run: [NvMediaCenter] RUNDLL32.EXE C:\\Windows\\system32\\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\\..\\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\\..\\Run: [Skytel] Skytel.exe
O4 - HKLM\\..\\Run: [SynTPEnh] C:\\Program Files\\Synaptics\\SynTP\\SynTPEnh.exe
O4 - HKLM\\..\\Run: [Adobe Reader Speed Launcher] \"C:\\Program Files\\Adobe\\Reader 8.0\\Reader\\Reader_sl.exe\"
O4 - HKLM\\..\\Run: [ISBMgr.exe] \"C:\\Program Files\\Sony\\ISB Utility\\ISBMgr.exe\"
O4 - HKLM\\..\\Run: [Google Desktop Search] \"C:\\Program Files\\Google\\Google Desktop Search\\GoogleDesktop.exe\" /startup
O4 - HKLM\\..\\Run: [IAAnotif] \"C:\\Program Files\\Intel\\Intel Matrix Storage Manager\\Iaanotif.exe\"
O4 - HKLM\\..\\Run: [MarketingTools] C:\\Program Files\\Sony\\Marketing Tools\\MarketingTools.exe
O4 - HKLM\\..\\Run: [SunJavaUpdateSched] \"C:\\Program Files\\Java\\jre1.6.0_02\\bin\\jusched.exe\"
O4 - HKLM\\..\\Run: [AppMon Utility] \"C:\\Program Files\\Sony\\AppMonUtil\\AppMonUtility.exe\" @@@Start
O4 - HKLM\\..\\Run: [AVG9_TRAY] C:\\PROGRA~1\\AVG\\AVG9\\avgtray.exe
O4 - HKLM\\..\\Run: [TkBellExe] \"C:\\Program Files\\Common Files\\Real\\Update_OB\\realsched.exe\" -osboot
O4 - HKCU\\..\\Run: [Picasa Media Detector] C:\\Program Files\\Picasa2\\PicasaMediaDetector.exe
O4 - HKCU\\..\\Run: [MsnMsgr] \"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe\" /background
O4 - HKCU\\..\\Run: [swg] \"C:\\Program Files\\Google\\GoogleToolbarNotifier\\GoogleToolbarNotifier.exe\"
O4 - HKUS\\S-1-5-19\\..\\Run: [Sidebar] %ProgramFiles%\\Windows Sidebar\\Sidebar.exe /detectMem (User \'SERVICE LOCAL\')
O4 - HKUS\\S-1-5-19\\..\\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User \'SERVICE LOCAL\')
O4 - HKUS\\S-1-5-20\\..\\Run: [Sidebar] %ProgramFiles%\\Windows Sidebar\\Sidebar.exe /detectMem (User \'SERVICE RÉSEAU\')
O4 - Startup: Audio Filter.lnk = C:\\Program Files\\Sony\\SonicStage Mastering Studio\\Audio Filter\\SSMSFilter.exe
O4 - Global Startup: BTTray.lnk = ?
O4 - Global Startup: DSLMON.lnk = ?
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\\PROGRA~1\\MICROS~2\\Office12\\EXCEL.EXE/3000
O8 - Extra context menu item: Envoyer au périphérique &Bluetooth... - C:\\Program Files\\WIDCOMM\\Bluetooth Software\\btsendto_ie.htm
O8 - Extra context menu item: Envoyer l\'&image au périphérique Bluetooth... - C:\\Program Files\\WIDCOMM\\Bluetooth Software\\btsendto_ie_ctx.htm
O8 - Extra context menu item: Google Sidewiki... - res://C:\\Program Files\\Google\\Google Toolbar\\Component\\GoogleToolbarDynamic_mui_en_60D6097707281E79.dll/cmsidewiki.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\\Program Files\\Java\\jre1.6.0_02\\bin\\ssv.dll
O9 - Extra \'Tools\' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\\Program Files\\Java\\jre1.6.0_02\\bin\\ssv.dll
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\\Program Files\\Windows Live\\Writer\\WriterBrowserExtension.dll
O9 - Extra \'Tools\' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\\Program Files\\Windows Live\\Writer\\WriterBrowserExtension.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\\PROGRA~1\\MICROS~2\\Office12\\REFIEBAR.DLL
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\\Program Files\\WIDCOMM\\Bluetooth Software\\btsendto_ie.htm
O9 - Extra \'Tools\' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\\Program Files\\WIDCOMM\\Bluetooth Software\\btsendto_ie.htm
O13 - Gopher Prefix:
O15 - Trusted Zone: *.canalplay.com
O15 - Trusted Zone: *.canalplusactive.com
O15 - Trusted Zone: *.canalplay.com (HKLM)
O15 - Trusted Zone: *.canalplusactive.com (HKLM)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O17 - HKLM\\System\\CCS\\Services\\Tcpip\\..\\{3551FAD0-E625-4D37-97D7-65B6A6C51C1E}: NameServer = 41.221.20.4 66.28.0.45
O17 - HKLM\\System\\CS1\\Services\\Tcpip\\..\\{3551FAD0-E625-4D37-97D7-65B6A6C51C1E}: NameServer = 41.221.20.4 66.28.0.45
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\\Program Files\\AVG\\AVG9\\avgpp.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\\PROGRA~1\\COMMON~1\\Skype\\SKYPE4~1.DLL
O20 - AppInit_DLLs: C:\\PROGRA~1\\Google\\GOOGLE~1\\GOEC62~1.DLL,avgrsstx.dll
O23 - Service: AVG Free WatchDog (avg9wd) - AVG Technologies CZ, s.r.o. - C:\\Program Files\\AVG\\AVG9\\avgwdsvc.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\\Program Files\\Common Files\\Symantec Shared\\ccSvcHst.exe (file missing)
O23 - Service: Google Desktop Manager 5.7.806.10245 (GoogleDesktopManager-061008-081103) - Google - C:\\Program Files\\Google\\Google Desktop Search\\GoogleDesktop.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\\Program Files\\Google\\Common\\Google Updater\\GoogleUpdaterService.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\\Program Files\\Intel\\Intel Matrix Storage Manager\\Iaantmon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\\Program Files\\Common Files\\InstallShield\\Driver\\1150\\Intel 32\\IDriverT.exe
O23 - Service: IviRegMgr - InterVideo - C:\\Program Files\\Common Files\\InterVideo\\RegMgr\\iviRegMgr.exe
O23 - Service: MSCSPTISRV - Sony Corporation - C:\\Program Files\\Common Files\\Sony Shared\\AVLib\\MSCSPTISRV.exe
O23 - Service: PACSPTISVR - Unknown owner - C:\\Program Files\\Common Files\\Sony Shared\\AVLib\\PACSPTISVR.exe
O23 - Service: Service CANALPLAY - Canal+ Active - C:\\Program Files\\Lecteur CANALPLAY\\CanalPlayService.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\\Program Files\\Common Files\\Sony Shared\\AVLib\\SPTISRV.exe
O23 - Service: SigmaTel Audio Service (STacSV) - IDT, Inc. - C:\\Windows\\system32\\stacsv.exe
O23 - Service: CamMonitor (uCamMonitor) - ArcSoft, Inc. - C:\\Program Files\\ArcSoft\\Magic-i Visual Effects\\uCamMonitor.exe
O23 - Service: VAIO Entertainment TV Device Arbitration Service - Sony Corporation - C:\\Program Files\\Common Files\\Sony Shared\\VAIO Entertainment Platform\\VzCs\\VzHardwareResourceManager\\VzHardwareResourceManager.exe
O23 - Service: VAIO Event Service - Sony Corporation - C:\\Program Files\\Sony\\VAIO Event Service\\VESMgr.exe
O23 - Service: VAIO Media Integrated Server (VAIOMediaPlatform-IntegratedServer-AppServer) - Sony Corporation - C:\\Program Files\\Sony\\VAIO Media Integrated Server\\VMISrv.exe
O23 - Service: VAIO Media Integrated Server (HTTP) (VAIOMediaPlatform-IntegratedServer-HTTP) - Sony Corporation - C:\\Program Files\\Sony\\VAIO Media Integrated Server\\Platform\\SV_Httpd.exe
O23 - Service: VAIO Media Integrated Server (UPnP) (VAIOMediaPlatform-IntegratedServer-UPnP) - Sony Corporation - C:\\Program Files\\Sony\\VAIO Media Integrated Server\\Platform\\UPnPFramework.exe
O23 - Service: VAIO Media Gateway Server (VAIOMediaPlatform-Mobile-Gateway) - Sony Corporation - C:\\Program Files\\Sony\\VAIO Media Integrated Server\\Platform\\VmGateway.exe
O23 - Service: VAIO Media Content Collection (VAIOMediaPlatform-UCLS-AppServer) - Sony Corporation - C:\\Program Files\\Sony\\VAIO Media Integrated Server\\UCLS.exe
O23 - Service: VAIO Media Content Collection (HTTP) (VAIOMediaPlatform-UCLS-HTTP) - Sony Corporation - C:\\Program Files\\Sony\\VAIO Media Integrated Server\\Platform\\SV_Httpd.exe
O23 - Service: VAIO Media Content Collection (UPnP) (VAIOMediaPlatform-UCLS-UPnP) - Sony Corporation - C:\\Program Files\\Sony\\VAIO Media Integrated Server\\Platform\\UPnPFramework.exe
O23 - Service: VAIO Content Metadata Intelligent Analyzing Manager (VcmIAlzMgr) - Sony Corporation - C:\\Program Files\\Sony\\VCM Intelligent Analyzing Manager\\VcmIAlzMgr.exe
O23 - Service: VAIO Content Metadata XML Interface (VcmXmlIfHelper) - Sony Corporation - C:\\Program Files\\Common Files\\Sony Shared\\VcmXml\\VcmXmlIfHelper.exe
O23 - Service: VAIO Entertainment UPnP Client Adapter (Vcsw) - Sony Corporation - C:\\Program Files\\Common Files\\Sony Shared\\VAIO Entertainment Platform\\VCSW\\VCSW.exe
O23 - Service: VAIO Entertainment Database Service (VzCdbSvc) - Sony Corporation - C:\\Program Files\\Common Files\\Sony Shared\\VAIO Entertainment Platform\\VzCdb\\VzCdbSvc.exe
O23 - Service: VAIO Entertainment File Import Service (VzFw) - Sony Corporation - C:\\Program Files\\Common Files\\Sony Shared\\VAIO Entertainment Platform\\VzCdb\\VzFw.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\\Windows\\system32\\DRIVERS\\xaudio.exe

--
End of file - 12835 bytes

======Registry dump======

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Browser Helper Objects\\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Aide pour le lien d\'Adobe PDF Reader - C:\\Program Files\\Common Files\\Adobe\\Acrobat\\ActiveX\\AcroIEHelper.dll [2006-10-22 62080]

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Browser Helper Objects\\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
RealPlayer Download and Record Plugin for Internet Explorer - c:\\program files\\real\\realplayer\\rpbrowserrecordplugin.dll [2009-12-02 329312]

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Browser Helper Objects\\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\\Program Files\\AVG\\AVG9\\avgssie.dll [2009-12-02 1475864]

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Browser Helper Objects\\{5C255C8A-E604-49b4-9D64-90988571CECB}]

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Browser Helper Objects\\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\\Program Files\\Microsoft\\Search Enhancement Pack\\Search Helper\\SEPsearchhelperie.dll [2009-05-19 137600]

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Browser Helper Objects\\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
SSVHelper Class - C:\\Program Files\\Java\\jre1.6.0_02\\bin\\ssv.dll [2007-07-12 501136]

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Browser Helper Objects\\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Programme d\'aide de l\'Assistant de connexion Windows Live - C:\\Program Files\\Common Files\\Microsoft Shared\\Windows Live\\WindowsLiveLogin.dll [2009-02-17 408440]

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Browser Helper Objects\\{A3BC75A2-1F87-4686-AA43-5347D756017C}]
AVG Security Toolbar BHO - C:\\Program Files\\AVG\\AVG9\\Toolbar\\IEToolbar.dll [2009-10-16 1119488]

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Browser Helper Objects\\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\\Program Files\\Google\\Google Toolbar\\GoogleToolbar_32.dll [2009-12-05 263280]

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Browser Helper Objects\\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\\Program Files\\Google\\GoogleToolbarNotifier\\5.4.4525.1752\\swg.dll [2009-12-02 764912]

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Browser Helper Objects\\{CA6319C0-31B7-401E-A518-A07C3DB8F777}]
CBrowserHelperObject Object - C:\\PROGRA~1\\GOOGLE~1\\BAE.dll [2006-06-23 98304]

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Browser Helper Objects\\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
Windows Live Toolbar Helper - C:\\Program Files\\Windows Live\\Toolbar\\wltcore.dll [2009-02-06 1068904]

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Internet Explorer\\Toolbar]
{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - AVG Security Toolbar - C:\\Program Files\\AVG\\AVG9\\Toolbar\\IEToolbar.dll [2009-10-16 1119488]
{21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar - C:\\Program Files\\Windows Live\\Toolbar\\wltcore.dll [2009-02-06 1068904]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\\Program Files\\Google\\Google Toolbar\\GoogleToolbar_32.dll [2009-12-05 263280]

[HKEY_LOCAL_MACHINE\\Software\\Microsoft\\Windows\\CurrentVersion\\Run]
\"Windows Defender\"=C:\\Program Files\\Windows Defender\\MSASCui.exe [2007-11-21 1006264]
\"NvSvc\"=C:\\Windows\\system32\\nvsvc.dll [2007-11-07 86016]
\"NvCplDaemon\"=C:\\Windows\\system32\\NvCpl.dll [2007-11-07 8497696]
\"NvMediaCenter\"=C:\\Windows\\system32\\NvMcTray.dll [2007-11-07 81920]
\"RtHDVCpl\"=C:\\Windows\\RtHDVCpl.exe [2007-08-25 4669440]
\"Skytel\"=C:\\Windows\\Skytel.exe [2007-08-25 1826816]
\"SynTPEnh\"=C:\\Program Files\\Synaptics\\SynTP\\SynTPEnh.exe [2007-03-10 835584]
\"Adobe Reader Speed Launcher\"=C:\\Program Files\\Adobe\\Reader 8.0\\Reader\\Reader_sl.exe [2007-05-11 40048]
\"ISBMgr.exe\"=C:\\Program Files\\Sony\\ISB Utility\\ISBMgr.exe [2007-09-19 311296]
\"Google Desktop Search\"=C:\\Program Files\\Google\\Google Desktop Search\\GoogleDesktop.exe [2008-12-13 29744]
\"IAAnotif\"=C:\\Program Files\\Intel\\Intel Matrix Storage Manager\\Iaanotif.exe [2007-02-12 174872]
\"MarketingTools\"=C:\\Program Files\\Sony\\Marketing Tools\\MarketingTools.exe [2007-11-21 36864]
\"SunJavaUpdateSched\"=C:\\Program Files\\Java\\jre1.6.0_02\\bin\\jusched.exe [2007-07-12 132496]
\"AppMon Utility\"=C:\\Program Files\\Sony\\AppMonUtil\\AppMonUtility.exe [2007-09-20 542560]
\"AVG9_TRAY\"=C:\\PROGRA~1\\AVG\\AVG9\\avgtray.exe [2009-12-02 2020120]
\"TkBellExe\"=C:\\Program Files\\Common Files\\Real\\Update_OB\\realsched.exe [2009-12-02 198160]

[HKEY_CURRENT_USER\\Software\\Microsoft\\Windows\\CurrentVersion\\Run]
\"Picasa Media Detector\"=C:\\Program Files\\Picasa2\\PicasaMediaDetector.exe [2007-09-12 443968]
\"MsnMsgr\"=C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe [2009-07-26 3883856]
\"swg\"=C:\\Program Files\\Google\\GoogleToolbarNotifier\\GoogleToolbarNotifier.exe [2009-04-25 39408]

C:\\ProgramData\\Microsoft\\Windows\\Start Menu\\Programs\\Startup
BTTray.lnk - C:\\Program Files\\WIDCOMM\\Bluetooth Software\\BTTray.exe
DSLMON.lnk - C:\\Program Files\\Huawei Technologies\\Huawei SmartAX MT810\\dslmon.exe

C:\\Users\\OPCuser\\AppData\\Roaming\\Microsoft\\Windows\\Start Menu\\Programs\\Startup
Audio Filter.lnk - C:\\Program Files\\Sony\\SonicStage Mastering Studio\\Audio Filter\\SSMSFilter.exe

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows NT\\CurrentVersion\\Windows]
\"AppInit_DLLS\"=\"C:\\PROGRA~1\\Google\\GOOGLE~1\\GOEC62~1.DLL,avgrsstx.dll\"

[HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows NT\\CurrentVersion\\Winlogon\\Notify\\VESWinlogon]
C:\\Windows\\system32\\VESWinlogon.dll [2007-08-14 98304]

[HKEY_LOCAL_MACHINE\\Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\System]
\"dontdisplaylastusername\"=0
\"legalnoticecaption\"=
\"legalnoticetext\"=
\"shutdownwithoutlogon\"=1
\"undockwithoutlogon\"=1

[HKEY_CURRENT_USER\\Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\explorer]
\"NoDriveTypeAutoRun\"=145
\"NoDriveAutoRun\"=145
\"HonorAutoRunSetting\"=0

[HKEY_LOCAL_MACHINE\\Software\\Microsoft\\Windows\\CurrentVersion\\Policies\\explorer]
\"NoDriveAutoRun\"=
\"NoDriveTypeAutoRun\"=
\"HonorAutoRunSetting\"=

[HKEY_LOCAL_MACHINE\\system\\currentcontrolset\\services\\sharedaccess\\parameters\\firewallpolicy\\standardprofile\\authorizedapplications\\list]

[HKEY_LOCAL_MACHINE\\system\\currentcontrolset\\services\\sharedaccess\\parameters\\firewallpolicy\\domainprofile\\authorizedapplications\\list]

======List of files/folders created in the last 1 months======

2009-12-11 18:01:00 ----RASHD---- C:\\autorun.inf
2009-12-11 17:57:52 ----A---- C:\\UsbFix.txt
2009-12-10 23:14:11 ----A---- C:\\Windows\\system32\\mshtml.dll
2009-12-10 23:14:09 ----A---- C:\\Windows\\system32\\wininet.dll
2009-12-10 23:14:09 ----A---- C:\\Windows\\system32\\urlmon.dll
2009-12-10 23:14:08 ----A---- C:\\Windows\\system32\\ieframe.dll
2009-12-10 23:14:07 ----A---- C:\\Windows\\system32\\mstime.dll
2009-12-10 23:14:07 ----A---- C:\\Windows\\system32\\ieapfltr.dll
2009-12-10 23:14:06 ----A---- C:\\Windows\\system32\\occache.dll
2009-12-10 23:14:06 ----A---- C:\\Windows\\system32\\msfeeds.dll
2009-12-10 23:14:06 ----A---- C:\\Windows\\system32\\iertutil.dll
2009-12-10 23:14:06 ----A---- C:\\Windows\\system32\\iedkcs32.dll
2009-12-10 23:14:06 ----A---- C:\\Windows\\system32\\dxtmsft.dll
2009-12-10 23:14:05 ----A---- C:\\Windows\\system32\\mshtmled.dll
2009-12-10 23:14:05 ----A---- C:\\Windows\\system32\\ieencode.dll
2009-12-10 23:14:05 ----A---- C:\\Windows\\system32\\ieaksie.dll
2009-12-10 23:14:05 ----A---- C:\\Windows\\system32\\icardie.dll
2009-12-10 23:14:05 ----A---- C:\\Windows\\system32\\dxtrans.dll
2009-12-10 23:14:04 ----A---- C:\\Windows\\system32\\jsproxy.dll
2009-12-10 23:14:04 ----A---- C:\\Windows\\system32\\advpack.dll
2009-12-10 23:14:04 ----A---- C:\\Windows\\system32\\admparse.dll
2009-12-10 23:14:03 ----A---- C:\\Windows\\system32\\ieui.dll
2009-12-10 23:14:03 ----A---- C:\\Windows\\system32\\iesetup.dll
2009-12-10 23:14:03 ----A---- C:\\Windows\\system32\\iernonce.dll
2009-12-10 23:14:03 ----A---- C:\\Windows\\system32\\ie4uinit.exe
2009-12-10 23:14:02 ----A---- C:\\Windows\\system32\\pngfilt.dll
2009-12-10 23:14:02 ----A---- C:\\Windows\\system32\\mshtmler.dll
2009-12-10 23:14:02 ----A---- C:\\Windows\\system32\\ieUnatt.exe
2009-12-10 23:14:02 ----A---- C:\\Windows\\system32\\ieakui.dll
2009-12-10 23:10:17 ----A---- C:\\Windows\\system32\\httpapi.dll
2009-12-10 23:10:16 ----A---- C:\\Windows\\system32\\nshhttp.dll
2009-12-10 23:03:19 ----A---- C:\\Windows\\system32\\winhttp.dll
2009-12-10 21:48:43 ----A---- C:\\Windows\\system32\\rastls.dll
2009-12-10 21:48:42 ----A---- C:\\Windows\\system32\\raschap.dll
2009-12-05 19:50:06 ----D---- C:\\UsbFix
2009-12-04 20:37:53 ----D---- C:\\rsit
2009-12-04 20:37:53 ----D---- C:\\Program Files\\trend micro
2009-12-02 21:47:56 ----A---- C:\\Windows\\system32\\tzres.dll
2009-12-02 21:16:35 ----A---- C:\\Windows\\cdplayer.ini
2009-12-02 21:16:22 ----D---- C:\\My Music
2009-12-02 21:12:32 ----D---- C:\\ProgramData\\Real
2009-12-02 21:11:57 ----A---- C:\\Windows\\system32\\rmoc3260.dll
2009-12-02 21:11:46 ----A---- C:\\Windows\\system32\\pndx5032.dll
2009-12-02 21:11:46 ----A---- C:\\Windows\\system32\\pndx5016.dll
2009-12-02 21:11:40 ----D---- C:\\Program Files\\Common Files\\xing shared
2009-12-02 19:44:00 ----A---- C:\\Windows\\system32\\msxml6r.dll
2009-12-02 19:44:00 ----A---- C:\\Windows\\system32\\msxml6.dll
2009-12-02 19:44:00 ----A---- C:\\Windows\\system32\\msxml3r.dll
2009-12-02 19:44:00 ----A---- C:\\Windows\\system32\\msxml3.dll
2009-11-23 16:45:55 ----HD---- C:\\$AVG
2009-11-23 16:45:54 ----A---- C:\\Windows\\system32\\avgrsstx.dll
2009-11-23 16:45:27 ----D---- C:\\ProgramData\\AVG Security Toolbar
2009-11-23 16:45:11 ----D---- C:\\ProgramData\\avg9
2009-11-20 22:14:13 ----D---- C:\\Program Files\\CCleaner
2009-11-15 17:29:33 ----D---- C:\\ProgramData\\NOS
2009-11-14 18:23:42 ----D---- C:\\Users\\OPCuser\\AppData\\Roaming\\uTorrent

======List of files/folders modified in the last 1 months======

2009-12-11 18:06:36 ----D---- C:\\Windows\\Temp
2009-12-11 18:00:31 ----D---- C:\\Windows\\Prefetch
2009-12-11 17:59:41 ----SHD---- C:\\$Recycle.Bin
2009-12-11 17:06:12 ----D---- C:\\Windows\\System32
2009-12-11 17:06:12 ----D---- C:\\Program Files\\Internet Explorer
2009-12-11 17:06:11 ----D---- C:\\Windows\\system32\\migration
2009-12-11 17:06:10 ----D---- C:\\Windows\\system32\\fr-FR
2009-12-11 17:06:10 ----D---- C:\\Windows\\AppPatch
2009-12-11 17:06:09 ----D---- C:\\Windows\\system32\\drivers
2009-12-11 16:50:28 ----D---- C:\\Windows\\winsxs
2009-12-11 16:50:16 ----SHD---- C:\\System Volume Information
2009-12-11 16:49:20 ----SHD---- C:\\Windows\\Installer
2009-12-11 16:49:20 ----D---- C:\\ProgramData\\Microsoft Help
2009-12-11 16:48:17 ----RSD---- C:\\Windows\\assembly
2009-12-11 16:47:30 ----D---- C:\\Windows\\inf
2009-12-11 16:41:47 ----D---- C:\\Windows\\Debug
2009-12-10 22:53:09 ----D---- C:\\Windows\\system32\\catroot2
2009-12-10 22:53:09 ----D---- C:\\Windows\\system32\\catroot
2009-12-05 22:17:21 ----D---- C:\\Users\\OPCuser\\AppData\\Roaming\\Skype
2009-12-05 20:29:00 ----SD---- C:\\Windows\\Downloaded Program Files
2009-12-05 19:51:23 ----A---- C:\\Windows\\system32\\PerfStringBackup.INI
2009-12-04 20:37:53 ----RD---- C:\\Program Files
2009-12-04 20:37:31 ----D---- C:\\Windows
2009-12-02 21:12:32 ----HD---- C:\\ProgramData
2009-12-02 21:12:32 ----D---- C:\\Users\\OPCuser\\AppData\\Roaming\\Real
2009-12-02 21:12:05 ----D---- C:\\Program Files\\Common Files\\Real
2009-12-02 21:11:40 ----D---- C:\\Program Files\\Common Files
2009-12-02 21:11:01 ----A---- C:\\Windows\\system32\\pncrt.dll
2009-12-01 21:06:19 ----A---- C:\\Windows\\system32\\mrt.exe
2009-11-24 05:36:35 ----D---- C:\\Program Files\\Reganam
2009-11-24 05:36:35 ----D---- C:\\Program Files\\Conduit
2009-11-23 16:45:12 ----D---- C:\\Program Files\\AVG
2009-11-23 16:44:49 ----D---- C:\\Program Files\\Common Files\\microsoft shared
2009-11-23 14:00:02 ----D---- C:\\Windows\\Minidump
2009-11-23 13:32:00 ----D---- C:\\ProgramData\\Norton
2009-11-23 13:27:41 ----D---- C:\\Program Files\\Common Files\\Symantec Shared
2009-11-14 19:52:49 ----D---- C:\\Windows\\system32\\Tasks
2009-11-14 00:14:59 ----RSD---- C:\\Windows\\Fonts
2009-11-14 00:14:25 ----D---- C:\\Program Files\\Microsoft Works
2009-11-14 00:12:18 ----A---- C:\\Windows\\win.ini
2009-11-13 17:58:27 ----D---- C:\\Program Files\\Microsoft Silverlight
2009-11-12 22:11:35 ----D---- C:\\Windows\\Microsoft.NET

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 AvgLdx86;AVG Free AVI Loader Driver x86; C:\\Windows\\System32\\Drivers\\avgldx86.sys [2009-11-23 333192]
R1 AvgMfx86;AVG Free On-access Scanner Minifilter Driver x86; C:\\Windows\\System32\\Drivers\\avgmfx86.sys [2009-11-23 28424]
R1 AvgTdiX;AVG Free Network Redirector; C:\\Windows\\System32\\Drivers\\avgtdix.sys [2009-12-02 360584]
R1 DMICall;Sony DMI Call service; C:\\Windows\\system32\\DRIVERS\\DMICall.sys [2007-09-19 10216]
R1 eeCtrl;Symantec Eraser Control driver; \\??\\C:\\Program Files\\Common Files\\Symantec Shared\\EENGINE\\eeCtrl.sys [2009-10-29 371248]
R2 mdmxsdk;mdmxsdk; C:\\Windows\\system32\\DRIVERS\\mdmxsdk.sys [2007-09-27 12672]
R2 regi;regi; C:\\Windows\\system32\\drivers\\regi.sys [2007-04-17 11032]
R2 XAudio;XAudio; C:\\Windows\\system32\\DRIVERS\\xaudio.sys [2007-09-27 8192]
R3 adiusbae;USB ADSL LAN Adapter; C:\\Windows\\system32\\DRIVERS\\adiusbae.sys [2005-10-27 117289]
R3 ArcSoftKsUFilter;ArcSoft Magic-I Visual Effect; C:\\Windows\\system32\\DRIVERS\\ArcSoftKsUFilter.sys [2007-10-29 17920]
R3 CmBatt;Pilote pour Batterie à méthode de contrôle ACPI Microsoft; C:\\Windows\\system32\\DRIVERS\\CmBatt.sys [2006-11-02 14208]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\\Windows\\System32\\Drivers\\GEARAspiWDM.sys [2008-04-17 15464]
R3 HSF_DPV;HSF_DPV; C:\\Windows\\system32\\DRIVERS\\HSX_DPV.sys [2007-09-27 985600]
R3 HSXHWAZL;HSXHWAZL; C:\\Windows\\system32\\DRIVERS\\HSXHWAZL.sys [2007-09-27 207360]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\\Windows\\system32\\drivers\\RTKVHDA.sys [2007-08-25 1841312]
R3 NETw4v32;Pilote de carte Intel(R) Wireless WiFi Link pour Windows Vista 32 bits; C:\\Windows\\system32\\DRIVERS\\NETw4v32.sys [2007-09-19 2222080]
R3 nvlddmkm;nvlddmkm; C:\\Windows\\system32\\DRIVERS\\nvlddmkm.sys [2007-11-07 7626400]
R3 R5U870FLx86;R5U870 UVC Lower Filter ; C:\\Windows\\System32\\Drivers\\R5U870FLx86.sys [2007-11-08 73472]
R3 R5U870FUx86;R5U870 UVC Upper Filter ; C:\\Windows\\System32\\Drivers\\R5U870FUx86.sys [2007-11-08 43904]
R3 SFEP;Sony Firmware Extension Parser; C:\\Windows\\system32\\DRIVERS\\SFEP.sys [2007-08-29 9344]
R3 STHDA;IDT High Definition Audio CODEC; C:\\Windows\\system32\\drivers\\stwrt.sys [2007-10-27 330240]
R3 SynTP;Synaptics TouchPad Driver; C:\\Windows\\system32\\DRIVERS\\SynTP.sys [2007-03-10 181560]
R3 ti21sony;ti21sony; C:\\Windows\\system32\\drivers\\ti21sony.sys [2007-06-06 812544]
R3 usbvideo;R5U870 (UVC) ; C:\\Windows\\System32\\Drivers\\usbvideo.sys [2007-11-21 132608]
R3 winachsf;winachsf; C:\\Windows\\system32\\DRIVERS\\HSX_CNXT.sys [2007-09-27 659968]
R3 WUDFRd;WUDFRd; C:\\Windows\\system32\\DRIVERS\\WUDFRd.sys [2006-11-02 82560]
R3 yukonwlh;NDIS6.0 Miniport Driver for Marvell Yukon Ethernet Controller; C:\\Windows\\system32\\DRIVERS\\yk60x86.sys [2007-09-27 246784]
S2 ADILOADER;General Purpose USB Driver (adildr.sys); C:\\Windows\\System32\\Drivers\\adildr.sys [2005-10-27 50007]
S3 BthEnum;Pilote de bloc de demande Bluetooth; C:\\Windows\\system32\\DRIVERS\\BthEnum.sys [2007-11-21 19456]
S3 BthPan;Périphérique Bluetooth (réseau personnel); C:\\Windows\\system32\\DRIVERS\\bthpan.sys [2006-11-02 92160]
S3 BTHPORT;Pilote de port Bluetooth; C:\\Windows\\System32\\Drivers\\BTHport.sys [2007-11-21 220160]
S3 BTHUSB;Pilote USB radio Bluetooth; C:\\Windows\\System32\\Drivers\\BTHUSB.sys [2007-11-21 29184]
S3 btwaudio;Périphérique audio Bluetooth; C:\\Windows\\system32\\drivers\\btwaudio.sys [2007-10-10 81448]
S3 btwavdt;Bluetooth AVDT; C:\\Windows\\system32\\drivers\\btwavdt.sys [2007-10-10 99880]
S3 btwl2cap;Bluetooth L2CAP Service; C:\\Windows\\system32\\DRIVERS\\btwl2cap.sys [2007-10-10 28464]
S3 btwrchid;btwrchid; C:\\Windows\\system32\\DRIVERS\\btwrchid.sys [2007-10-10 17448]
S3 drmkaud;Filtre de décodeur DRM (Noyau Microsoft); C:\\Windows\\system32\\drivers\\drmkaud.sys [2006-11-02 5632]
S3 EraserUtilRebootDrv;EraserUtilRebootDrv; \\??\\C:\\Program Files\\Common Files\\Symantec Shared\\EENGINE\\EraserUtilRebootDrv.sys [2009-10-29 102448]
S3 fssfltr;FssFltr; C:\\Windows\\system32\\DRIVERS\\fssfltr.sys [2009-08-05 54632]
S3 HdAudAddService;Pilote de fonction UAA 1.1 Microsoft pour le service High Definition Audio; C:\\Windows\\system32\\drivers\\HdAudio.sys [2006-11-02 235520]
S3 HSFHWAZL;HSFHWAZL; C:\\Windows\\system32\\DRIVERS\\VSTAZL3.SYS [2006-11-02 200704]
S3 MSKSSRV;Proxy de service de répartition Microsoft; C:\\Windows\\system32\\drivers\\MSKSSRV.sys [2006-11-02 8192]
S3 MSPCLOCK;Proxy d\'horloge de répartition Microsoft; C:\\Windows\\system32\\drivers\\MSPCLOCK.sys [2006-11-02 5888]
S3 MSPQM;Proxy de gestion de qualité de répartition Microsoft; C:\\Windows\\system32\\drivers\\MSPQM.sys [2006-11-02 5504]
S3 MSTEE;Convertisseur en T/site-à-site de répartition Microsoft; C:\\Windows\\system32\\drivers\\MSTEE.sys [2006-11-02 6016]
S3 NETw3v32;Pilote de carte Intel(R) PRO/Wireless 3945ABG pour Windows Vista 32 bits; C:\\Windows\\system32\\DRIVERS\\NETw3v32.sys [2006-11-02 1781760]
S3 RFCOMM;Périphérique Bluetooth (TDI protocole RFCOMM); C:\\Windows\\system32\\DRIVERS\\rfcomm.sys [2006-11-02 49664]
S3 WimFltr;WimFltr; C:\\Windows\\system32\\DRIVERS\\wimfltr.sys [2007-05-26 128104]
S4 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\\Windows\\system32\\drivers\\wmiacpi.sys [2006-11-02 11264]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 avg9wd;AVG Free WatchDog; C:\\Program Files\\AVG\\AVG9\\avgwdsvc.exe [2009-11-23 285392]
R2 BthServ;@%SystemRoot%\\System32\\bthserv.dll,-101; C:\\Windows\\system32\\svchost.exe [2006-11-02 22016]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\\Program Files\\Intel\\Intel Matrix Storage Manager\\Iaantmon.exe [2007-02-12 355096]
R2 IviRegMgr;IviRegMgr; C:\\Program Files\\Common Files\\InterVideo\\RegMgr\\iviRegMgr.exe [2007-01-04 112152]
R2 SeaPort;SeaPort; C:\\Program Files\\Microsoft\\Search Enhancement Pack\\SeaPort\\SeaPort.exe [2009-05-19 240512]
R2 STacSV;SigmaTel Audio Service; C:\\Windows\\system32\\stacsv.exe [2007-10-27 102400]
R2 uCamMonitor;CamMonitor; C:\\Program Files\\ArcSoft\\Magic-i Visual Effects\\uCamMonitor.exe [2007-10-31 125440]
R2 VAIO Event Service;VAIO Event Service; C:\\Program Files\\Sony\\VAIO Event Service\\VESMgr.exe [2007-08-14 182392]
R2 VzCdbSvc;VAIO Entertainment Database Service; C:\\Program Files\\Common Files\\Sony Shared\\VAIO Entertainment Platform\\VzCdb\\VzCdbSvc.exe [2007-08-28 192512]
R2 VzFw;VAIO Entertainment File Import Service; C:\\Program Files\\Common Files\\Sony Shared\\VAIO Entertainment Platform\\VzCdb\\VzFw.exe [2007-08-28 131072]
R2 XAudioService;XAudioService; C:\\Windows\\system32\\DRIVERS\\xaudio.exe [2007-09-27 386560]
R3 Vcsw;VAIO Entertainment UPnP Client Adapter; C:\\Program Files\\Common Files\\Sony Shared\\VAIO Entertainment Platform\\VCSW\\VCSW.exe [2007-06-28 274432]
S2 CLTNetCnService;Symantec Lic NetConnect service; C:\\Program Files\\Common Files\\Symantec Shared\\ccSvcHst.exe /h ccCommon []
S3 fsssvc;Service Windows Live Contrôle parental; C:\\Program Files\\Windows Live\\Family Safety\\fsssvc.exe [2009-08-05 704864]
S3 GoogleDesktopManager-061008-081103;Google Desktop Manager 5.7.806.10245; C:\\Program Files\\Google\\Google Desktop Search\\GoogleDesktop.exe [2008-12-13 29744]
S3 gusvc;Google Software Updater; C:\\Program Files\\Google\\Common\\Google Updater\\GoogleUpdaterService.exe [2009-04-25 182768]
S3 IDriverT;InstallDriver Table Manager; C:\\Program Files\\Common Files\\InstallShield\\Driver\\1150\\Intel 32\\IDriverT.exe [2005-11-14 69632]
S3 MSCSPTISRV;MSCSPTISRV; C:\\Program Files\\Common Files\\Sony Shared\\AVLib\\MSCSPTISRV.exe [2006-12-14 45056]
S3 odserv;Microsoft Office Diagnostics Service; C:\\Program Files\\Common Files\\Microsoft Shared\\OFFICE12\\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\\Program Files\\Common Files\\Microsoft Shared\\Source Engine\\OSE.EXE [2006-10-26 145184]
S3 PACSPTISVR;PACSPTISVR; C:\\Program Files\\Common Files\\Sony Shared\\AVLib\\PACSPTISVR.exe [2006-12-14 57344]
S3 Service CANALPLAY;Service CANALPLAY; C:\\Program Files\\Lecteur CANALPLAY\\CanalPlayService.exe [2007-07-09 415392]
S3 SPTISRV;Sony SPTI Service; C:\\Program Files\\Common Files\\Sony Shared\\AVLib\\SPTISRV.exe [2006-12-14 69632]
S3 VAIO Entertainment TV Device Arbitration Service;VAIO Entertainment TV Device Arbitration Service; C:\\Program Files\\Common Files\\Sony Shared\\VAIO Entertainment Platform\\VzCs\\VzHardwareResourceManager\\VzHardwareResourceManager.exe [2007-06-28 73728]
S3 VAIOMediaPlatform-IntegratedServer-AppServer;VAIO Media Integrated Server; C:\\Program Files\\Sony\\VAIO Media Integrated Server\\VMISrv.exe [2007-06-20 2523136]
S3 VAIOMediaPlatform-IntegratedServer-HTTP;VAIO Media Integrated Server (HTTP); C:\\Program Files\\Sony\\VAIO Media Integrated Server\\Platform\\SV_Httpd.exe [2007-06-20 397312]
S3 VAIOMediaPlatform-IntegratedServer-UPnP;VAIO Media Integrated Server (UPnP); C:\\Program Files\\Sony\\VAIO Media Integrated Server\\Platform\\UPnPFramework.exe [2007-06-20 1089536]
S3 VAIOMediaPlatform-Mobile-Gateway;VAIO Media Gateway Server; C:\\Program Files\\Sony\\VAIO Media Integrated Server\\Platform\\VmGateway.exe [2007-06-20 499712]
S3 VAIOMediaPlatform-UCLS-AppServer;VAIO Media Content Collection; C:\\Program Files\\Sony\\VAIO Media Integrated Server\\UCLS.exe [2007-01-10 745472]
S3 VAIOMediaPlatform-UCLS-HTTP;VAIO Media Content Collection (HTTP); C:\\Program Files\\Sony\\VAIO Media Integrated Server\\Platform\\SV_Httpd.exe [2007-06-20 397312]
S3 VAIOMediaPlatform-UCLS-UPnP;VAIO Media Content Collection (UPnP); C:\\Program Files\\Sony\\VAIO Media Integrated Server\\Platform\\UPnPFramework.exe [2007-06-20 1089536]
S3 VcmIAlzMgr;VAIO Content Metadata Intelligent Analyzing Manager; C:\\Program Files\\Sony\\VCM Intelligent Analyzing Manager\\VcmIAlzMgr.exe [2007-09-28 292128]
S3 VcmXmlIfHelper;VAIO Content Metadata XML Interface; C:\\Program Files\\Common Files\\Sony Shared\\VcmXml\\VcmXmlIfHelper.exe [2007-09-20 79136]

-----------------EOF-----------------


sammou79 sammou79
34 contributions
Membre depuis le 24/04/2006
Envoyé le 11/12/2009 à 20:07


Encore une question Mister ...

J\'ai un probleme avec quelques dossiers qui veulent plus s\'ouvrir, comme Documents and setting, ça me donne comme message :

Documents and setting n\'est pas accessible /
Acces refusé

pffffffffff... vraiment une cata... serai t il un vilain virus???

Help me please.

malwarebleach malwarebleach
2 125 contributions
Membre depuis le 12/09/2009
Envoyé le 11/12/2009 à 20:41 Modifié par malwarebleach le 11/12/2009 à 


Pour ton problème d\'accès à certains dossier, c\'est un problème de droit !

Pourtant tu es en session administrateur il me semble.

Quels sont les autres dossiers qui te posent problème ?

Fais ceci maintenant :


  • Télécharge Malwarebytes

  • Un Tutoriel pour t\'aider à l\'utiliser

  • Fais la mise à jour du logiciel (elle se fait normalement à l\'installation)

  • Lance une analyse complète en cliquant sur \"Exécuter un examen complet\"

  • Sélectionnes les disques que tu veux analyser et cliques sur \"Lancer l\'examen\"

  • L\'analyse peut durer un bon moment.....

  • Une fois l\'analyse terminée, cliques sur \"OK\" puis sur \"Afficher les résultats\"

  • Vérifies que tout est bien coché et cliques sur \"Supprimer la sélection\" => et ensuite sur \"OK\"

  • Un rapport va s\'ouvrir dans le bloc note... Fais un copié/collé du rapport dans ta prochaine réponse sur le forum


  • Il se pourrait que certains fichiers devront être supprimés au redémarrage du PC... Fais le en cliquant sur \"oui\" à la question posée

Si tu ne sais pas demande, si tu sais partage !!
sammou79 sammou79
34 contributions
Membre depuis le 24/04/2006
Envoyé le 11/12/2009 à 20:58


Oui je suis en Administateur, en plus je n\'ai pas d\'autre utilisateur!!!!

Les dossiers s\'ouvraient avant... enfin y a quelques temps [8(]

C\'est le seul fichier qui ne veut pas s\'ouvrir

Bref je fait ce que tu me demande et je reviens!

sammou79 sammou79
34 contributions
Membre depuis le 24/04/2006
Envoyé le 11/12/2009 à 22:50


Malwarebytes\' Anti-Malware 1.42
Version de la base de données: 3347
Windows 6.0.6000
Internet Explorer 7.0.6000.16945

11/12/2009 22:50:13
mbam-log-2009-12-11 (22-50-13).txt

Type de recherche: Examen complet (C:\\|D:\\|E:\\|)
Eléments examinés: 224248
Temps écoulé: 1 hour(s), 25 minute(s), 30 second(s)

Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 0
Valeur(s) du Registre infectée(s): 0
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 0

Processus mémoire infecté(s):
(Aucun élément nuisible détecté)

Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)

Clé(s) du Registre infectée(s):
(Aucun élément nuisible détecté)

Valeur(s) du Registre infectée(s):
(Aucun élément nuisible détecté)

Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)

Dossier(s) infecté(s):
(Aucun élément nuisible détecté)

Fichier(s) infecté(s):
(Aucun élément nuisible détecté)

Merci


malwarebleach malwarebleach
2 125 contributions
Membre depuis le 12/09/2009
Envoyé le 11/12/2009 à 23:36


Rien à dire sur ton rapport malwarebytes.

Pour ton problème de droit, peux tu me donner le chemin d\'accès à documents and settings.

Essaye d\'accéder à ton dossier en désactivant le contrôle des comptes utilisateurs au préalable :

Désactive le contrôle des comptes utilisateurs (tu le réactiveras après ta désinfection):

==> Vas dans \"Démarrer\" puis Panneau de configuration.
==> Double Clique sur l\'icône Comptes d\'utilisateurs et sur Activer ou désactiver le contrôle des comptes d\'utilisateurs.
==> Clique sur Continuer.
==> Décoche la case Utiliser le contrôle des comptes d\'utilisateurs pour vous aider à protéger votre ordinateur.
==> Valide par OK et redémarre.

On reprend la désinfection un peu plus tard, on va tenter de régler ce problème de droit.
Si tu ne sais pas demande, si tu sais partage !!
sammou79 sammou79
34 contributions
Membre depuis le 24/04/2006
Envoyé le 12/12/2009 à 12:26


Bonjour Malwarebleach... ça va avec cette belle matinée!!!

Suivant tes directives j\'ai désactivé le contrôle des comptes, mais toujours ce dossier est inouvrable!!!

Son chemin :

Disque local (C:)\\ Documents and settings

Remarques :
1- a coté du nom du dossier y un l\'icone raccourci // ie : c\'est un raccourci au dossier!!!!

2- Chaque démarage de mon PC, j\'ai un message d\'erreur qui m\'ennui et je voulais posé une question apart (j\'espère que je ne te perturbe pas, mais peut etre y a un lien) :

ADIMON MFC APPLICATION a cessé de fonctionner
le détail du probleme :
Nom d’événement de problème: APPCRASH
Nom de l’application: dslmon.exe
Version de l’application: 1.0.0.1
Horodatage de l\'application: 4361d4b5
Nom du module par défaut: ntdll.dll
Version du module par défaut: 6.0.6000.16386
Horodateur du module par défaut: 4549bdc9
Code de l’exception: c0000005
Décalage de l’exception: 00067036
Version du système: 6.0.6000.2.0.0.768.3
Identificateur de paramètres régionaux: 1036
Information supplémentaire n° 1: 7190
Information supplémentaire n° 2: f2912bf45484a1251035a0295b5bb613
Information supplémentaire n° 3: 154c
Information supplémentaire n° 4: 932760d41fef412f14c5022321f88f61
Si tu pense que le 2 eme probleme n\'a pas de lien avec le premier alors ignore le, et je posterai une question à part. OK

Attendant tes lumières pour la suite de la désinfection de mon Laptop. merci


Discussion trop ancienne

Cette discussion a été automatiquement fermée car elle n'a plus reçue de nouveau message depuis trop longtemps.

Nous vous suggérons de créer un nouveau message

« Retour sur la liste des messages de ce forum