Merci kelko pour ta réponse,
J'ai installé Housecall sur mon pc puisque ce n'est maintenant plus possible de scanner directement sur le site, enfin je crois.
Après scan, Housecall n'a détecté aucun virus.
Pour l'option RSIT, j'ai fait un scan et l'erreur 5 apparait.
J'ai donc downloader directement Hijackthis, et la même erreur survient, voici le log:
Merci!
Logfile of random's system information tool 1.08 (written by random/random)
Run by Luc Jobin at 2010-08-22 10:08:13
Microsoft Windows XP Home Edition Service Pack 2
System drive C: has 14 GB (42%) free of 34 GB
Total RAM: 495 MB (32% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:08:28 AM, on 22/08/2010
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\ZONELABS\vsmon.exe
C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\ATKKBService.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\ATK0100\HControl.exe
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\explorer.exe
C:\WINDOWS\ATK0100\ATKOSD.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\DOCUME~1\LUCJOB~1\LOCALS~1\Temp\HouseCall\housecall.bin
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\msiexec.exe
C:\Documents and Settings\Luc Jobin\Desktop\RSIT.exe
C:\WINDOWS\system32\dwwin.exe
C:\Program Files\trend micro\Luc Jobin.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.mywebsearch.com/index.jhtml?ptnrS=ZNxpt471YYCA&ptb=dWvLKMpCeRSxPc2LRyEaIQ&n=77cf6a80
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.asus.com
R3 - URLSearchHook: ZoneAlarm Toolbar - {66f2e20d-0da8-4c11-a9c8-dd8477b88acd} - C:\Program Files\ZoneAlarm\tbZone.dll (file missing)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - c:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: ZoneAlarm Toolbar - {66f2e20d-0da8-4c11-a9c8-dd8477b88acd} - C:\Program Files\ZoneAlarm\tbZone.dll (file missing)
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: ZoneAlarm Security Engine Registrar - {8A4A36C2-0535-4D2C-BD3D-496CB7EED6E3} - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O3 - Toolbar: ZoneAlarm Toolbar - {66f2e20d-0da8-4c11-a9c8-dd8477b88acd} - C:\Program Files\ZoneAlarm\tbZone.dll (file missing)
O3 - Toolbar: ZoneAlarm Security Engine - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll
O4 - HKLM\..\Run: [HControl] C:\WINDOWS\ATK0100\HControl.exe
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [High Definition Audio Property Page Shortcut] HDAShCut.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [AlcWzrd] ALCWZRD.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [ASUS Live Update] C:\Program Files\ASUS\ASUS Live Update\ALU.exe
O4 - HKLM\..\Run: [Wireless Console 2] C:\Program Files\ASUS\Wireless Console 2\wcourier.exe
O4 - HKLM\..\Run: [Power_Gear] C:\Program Files\ASUS\Power4 Gear\BatteryLife.exe 1
O4 - HKLM\..\Run: [agentantidote.exe] "C:\Program Files\Druide\Antidote 7\Programmes32\agentantidote.exe" /LancementSession
O4 - HKLM\..\Run: [Samsung PanelMgr] C:\WINDOWS\Samsung\PanelMgr\ssmmgr.exe /autorun
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [ISW] "C:\Program Files\CheckPoint\ZAForceField\ForceField.exe" /icon="hidden"
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [{16C3AB7C-39AF-7317-EAD6-EFC27990E47C}] "C:\Documents and Settings\Luc Jobin\Application Data\Hago\ikfo.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: ASUS ChkMail.lnk = C:\Program Files\ASUS\Asus ChkMail\ChkMail.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: &Search - http://edits.mywebsearch.com/toolbaredits/menusearch.jhtml?s=100000349&p=ZNxpt471YYCA&si=80591&a=dWvLKMpCeRSxPc2LRyEaIQ&n=2010081920
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_96D6FF0C6D236BF8.dll/cmsidewiki.html
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=http://www.asus.com
O16 - DPF: {1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB} - http://ak.exe.imgfarm.com/images/nocache/funwebproducts/ei-4/SmileyCentralInitialSetup1.0.1.1.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} (get_atlcom Class) - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: ATK Keyboard Service (ATKKeyboardService) - ASUSTeK COMPUTER INC. - C:\WINDOWS\ATKKBService.exe
O23 - Service: ZoneAlarm Toolbar IswSvc (IswSvc) - Check Point Software Technologies - C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe
--
End of file - 6568 bytes
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
AcroIEHlprObj Class - c:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll [2004-12-14 63136]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{66f2e20d-0da8-4c11-a9c8-dd8477b88acd}]
ZoneAlarm Toolbar - C:\Program Files\ZoneAlarm\tbZone.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8A4A36C2-0535-4D2C-BD3D-496CB7EED6E3}]
ZoneAlarm Security Engine Registrar - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll [2010-05-26 591336]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Programme d'aide de l'Assistant de connexion Windows Live - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{66f2e20d-0da8-4c11-a9c8-dd8477b88acd} - ZoneAlarm Toolbar - C:\Program Files\ZoneAlarm\tbZone.dll []
{EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - ZoneAlarm Security Engine - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll [2010-05-26 591336]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"HControl"=C:\WINDOWS\ATK0100\HControl.exe [2005-08-28 102400]
"igfxtray"=C:\WINDOWS\system32\igfxtray.exe [2005-07-18 94208]
"igfxhkcmd"=C:\WINDOWS\system32\hkcmd.exe [2005-07-18 77824]
"igfxpers"=C:\WINDOWS\system32\igfxpers.exe [2005-07-18 114688]
"High Definition Audio Property Page Shortcut"=C:\WINDOWS\system32\HDAShCut.exe [2005-01-07 61952]
"SoundMan"=C:\WINDOWS\SOUNDMAN.EXE [2005-08-17 86016]
"AlcWzrd"=C:\WINDOWS\ALCWZRD.EXE [2005-07-26 2806784]
"Alcmtr"=C:\WINDOWS\ALCMTR.EXE [2005-05-03 69632]
"ASUS Live Update"=C:\Program Files\ASUS\ASUS Live Update\ALU.exe [2003-09-19 172032]
"Wireless Console 2"=C:\Program Files\ASUS\Wireless Console 2\wcourier.exe [2005-08-23 987136]
"Power_Gear"=C:\Program Files\ASUS\Power4 Gear\BatteryLife.exe [2005-06-16 86016]
"agentantidote.exe"=C:\Program Files\Druide\Antidote 7\Programmes32\agentantidote.exe [2009-10-18 600256]
"Samsung PanelMgr"=C:\WINDOWS\Samsung\PanelMgr\ssmmgr.exe [2006-02-14 507904]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2008-10-25 31072]
"ZoneAlarm Client"=C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe [2010-06-23 1043968]
"ISW"=C:\Program Files\CheckPoint\ZAForceField\ForceField.exe [2010-05-26 730600]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"MSMSGS"=C:\Program Files\Messenger\msmsgs.exe [2004-08-04 1667584]
"{16C3AB7C-39AF-7317-EAD6-EFC27990E47C}"=C:\Documents and Settings\Luc Jobin\Application Data\Hago\ikfo.exe [2010-07-11 149504]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2004-08-04 15360]
C:\Documents and Settings\All Users\Start Menu\Programs\Startup
ASUS ChkMail.lnk - C:\Program Files\ASUS\Asus ChkMail\ChkMail.exe
Adobe Reader Speed Launch.lnk - C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2005-07-18 135168]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vsmon]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Messenger\msmsgs.exe"="C:\Program Files\Messenger\msmsgs.exe:*:Enabled:Windows Messenger"
"C:\Program Files\Vuze\Azureus.exe"="C:\Program Files\Vuze\Azureus.exe:*:Enabled:Azureus / Vuze"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Program Files\Microsoft Office\Office12\groove.exe"="C:\Program Files\Microsoft Office\Office12\groove.exe:*:Enabled:Microsoft Office Groove"
"C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE"="C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote"
"C:\Program Files\eMule\emule.exe"="C:\Program Files\eMule\emule.exe:*:Enabled:eMule"
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\WINDOWS\System32\ZoneLabs\vsmon.exe"="C:\WINDOWS\System32\ZoneLabs\vsmon.exe:*:Enabled:vsmon"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
======List of files/folders created in the last 3 months======
2010-08-22 09:54:31 ----D---- C:\Program Files\trend micro
2010-08-22 09:54:26 ----D---- C:\rsit
2010-08-22 09:51:21 ----A---- C:\WINDOWS\system32\drivers\tmcomm.sys
2010-08-21 21:58:46 ----HD---- C:\WINDOWS\$NtUninstallKB961503$
2010-08-21 21:58:32 ----D---- C:\Program Files\Microsoft CAPICOM 2.1.0.2
2010-08-21 19:05:53 ----D---- C:\Program Files\CheckPoint
2010-08-21 19:05:49 ----A---- C:\WINDOWS\system32\vsregexp.dll
2010-08-21 19:05:47 ----A---- C:\WINDOWS\system32\zlcommdb.dll
2010-08-21 19:05:47 ----A---- C:\WINDOWS\system32\zlcomm.dll
2010-08-21 19:05:39 ----A---- C:\WINDOWS\system32\vswmi.dll
2010-08-21 19:05:38 ----A---- C:\WINDOWS\system32\zpeng25.dll
2010-08-21 19:05:38 ----A---- C:\WINDOWS\system32\vsxml.dll
2010-08-21 19:05:37 ----A---- C:\WINDOWS\system32\vspubapi.dll
2010-08-21 19:05:37 ----A---- C:\WINDOWS\system32\vsmonapi.dll
2010-08-21 19:05:35 ----A---- C:\WINDOWS\system32\vsdatant.sys
2010-08-21 19:05:33 ----D---- C:\Program Files\Zone Labs
2010-08-21 19:05:16 ----D---- C:\WINDOWS\system32\Zonelabs
2010-08-21 19:05:14 ----A---- C:\WINDOWS\system32\vsutil.dll
2010-08-21 19:05:14 ----A---- C:\WINDOWS\system32\vsinit.dll
2010-08-21 19:05:14 ----A---- C:\WINDOWS\system32\vsdata.dll
2010-08-21 19:02:16 ----SHD---- C:\FOUND.005
2010-08-20 12:34:28 ----A---- C:\WINDOWS\system32\muweb.dll
2010-08-20 12:34:28 ----A---- C:\WINDOWS\system32\mucltui.dll.mui
2010-08-20 12:34:28 ----A---- C:\WINDOWS\system32\mucltui.dll
2010-08-19 20:54:57 ----D---- C:\Program Files\Microsoft
2010-08-19 20:54:35 ----D---- C:\Program Files\Windows Live SkyDrive
2010-08-19 20:54:05 ----D---- C:\Program Files\Windows Live
2010-08-19 20:50:01 ----D---- C:\Program Files\Common Files\Windows Live
2010-08-17 01:15:07 ----HD---- C:\WINDOWS\$NtUninstallKB970430$
2010-08-17 01:14:59 ----HD---- C:\WINDOWS\$NtUninstallKB971737$
2010-08-16 22:37:39 ----D---- C:\WINDOWS\system32\CatRoot_bak
2010-08-12 12:24:24 ----HD---- C:\WINDOWS\$NtUninstallKB980218$
2010-08-12 12:24:20 ----HD---- C:\WINDOWS\$NtUninstallKB951376-v2$
2010-08-12 12:24:15 ----HD---- C:\WINDOWS\$NtUninstallKB952954$
2010-08-12 12:24:09 ----HD---- C:\WINDOWS\$NtUninstallKB959426$
2010-08-12 12:24:04 ----HD---- C:\WINDOWS\$NtUninstallKB946648$
2010-08-12 12:23:59 ----HD---- C:\WINDOWS\$NtUninstallKB956803$
2010-08-12 12:23:54 ----HD---- C:\WINDOWS\$NtUninstallKB960859$
2010-08-12 12:23:50 ----HD---- C:\WINDOWS\$NtUninstallKB971468$
2010-08-12 12:23:38 ----HD---- C:\WINDOWS\$NtUninstallKB979683$
2010-08-12 12:23:32 ----HD---- C:\WINDOWS\$NtUninstallKB935448$
2010-08-12 12:23:28 ----HD---- C:\WINDOWS\$NtUninstallKB958869$
2010-08-12 12:23:24 ----HD---- C:\WINDOWS\$NtUninstallKB954155_WM9$
2010-08-12 12:23:20 ----HD---- C:\WINDOWS\$NtUninstallKB980195$
2010-08-12 12:23:16 ----HD---- C:\WINDOWS\$NtUninstallKB923723$
2010-08-12 12:23:04 ----HD---- C:\WINDOWS\$NtUninstallKB980232$
2010-08-12 12:23:00 ----HD---- C:\WINDOWS\$NtUninstallKB981350$
2010-08-12 12:22:52 ----HD---- C:\WINDOWS\$NtUninstallKB955759$
2010-08-12 12:22:47 ----HD---- C:\WINDOWS\$NtUninstallKB974318$
2010-08-12 12:22:41 ----HD---- C:\WINDOWS\$NtUninstallKB969059$
2010-08-12 12:22:36 ----HD---- C:\WINDOWS\$NtUninstallKB2229593$
2010-08-12 12:22:30 ----HD---- C:\WINDOWS\$NtUninstallKB950974$
2010-08-12 12:22:26 ----HD---- C:\WINDOWS\$NtUninstallKB978037$
2010-08-12 12:22:21 ----HD---- C:\WINDOWS\$NtUninstallKB975713$
2010-08-12 12:22:16 ----HD---- C:\WINDOWS\$NtUninstallKB971657$
2010-08-12 12:22:11 ----HD---- C:\WINDOWS\$NtUninstallKB978338$
2010-08-12 12:22:07 ----HD---- C:\WINDOWS\$NtUninstallKB960225$
2010-08-12 12:22:02 ----HD---- C:\WINDOWS\$NtUninstallKB972270$
2010-08-12 12:21:57 ----HD---- C:\WINDOWS\$NtUninstallKB974112$
2010-08-12 12:21:39 ----HD---- C:\WINDOWS\$NtUninstallKB956572$
2010-08-12 12:21:32 ----HD---- C:\WINDOWS\$NtUninstallKB956844$
2010-08-12 12:21:27 ----HD---- C:\WINDOWS\$NtUninstallKB961501$
2010-08-12 12:21:13 ----HD---- C:\WINDOWS\$NtUninstallKB975561$
2010-08-12 12:21:08 ----HD---- C:\WINDOWS\$NtUninstallKB952069_WM9$
2010-08-12 12:21:04 ----HD---- C:\WINDOWS\$NtUninstallKB973869$
2010-08-12 12:21:00 ----HD---- C:\WINDOWS\$NtUninstallKB975025$
2010-08-12 12:20:53 ----HD---- C:\WINDOWS\$NtUninstallKB973540_WM9L$
2010-08-12 12:20:46 ----HD---- C:\WINDOWS\$NtUninstallKB952004$
2010-08-12 12:20:41 ----HD---- C:\WINDOWS\$NtUninstallKB974571$
2010-08-12 12:20:35 ----HD---- C:\WINDOWS\$NtUninstallKB975560$
2010-08-12 12:20:27 ----HD---- C:\WINDOWS\$NtUninstallKB973507$
2010-08-12 12:20:22 ----HD---- C:\WINDOWS\$NtUninstallKB977816$
2010-08-12 12:20:16 ----HD---- C:\WINDOWS\$NtUninstallKB973687$
2010-08-12 12:20:11 ----HD---- C:\WINDOWS\$NtUninstallKB950762$
2010-08-12 12:20:06 ----HD---- C:\WINDOWS\$NtUninstallKB981793$
2010-08-12 12:20:02 ----HD---- C:\WINDOWS\$NtUninstallKB978601$
2010-08-12 12:19:56 ----HD---- C:\WINDOWS\$NtUninstallKB979559$
2010-08-12 12:19:51 ----HD---- C:\WINDOWS\$NtUninstallKB952287$
2010-08-12 12:19:45 ----HD---- C:\WINDOWS\$NtUninstallKB973904$
2010-08-12 12:19:34 ----HD---- C:\WINDOWS\$NtUninstallKB967715$
2010-08-12 12:19:29 ----HD---- C:\WINDOWS\$NtUninstallKB950760$
2010-08-12 12:19:24 ----HD---- C:\WINDOWS\$NtUninstallKB974392$
2010-08-12 12:19:18 ----HD---- C:\WINDOWS\$NtUninstallKB977914$
2010-08-12 12:19:04 ----HD---- C:\WINDOWS\$NtUninstallKB951748$
2010-08-12 12:18:59 ----HD---- C:\WINDOWS\$NtUninstallKB971961$
2010-08-12 12:18:52 ----HD---- C:\WINDOWS\$NtUninstallKB978542$
2010-08-12 12:18:47 ----HD---- C:\WINDOWS\$NtUninstallKB970238$
2010-08-12 12:18:42 ----HD---- C:\WINDOWS\$NtUninstallKB979309$
2010-08-12 12:18:37 ----HD---- C:\WINDOWS\$NtUninstallKB978695_WM9$
2010-08-12 12:18:33 ----HD---- C:\WINDOWS\$NtUninstallKB979482$
2010-08-12 12:18:29 ----HD---- C:\WINDOWS\$NtUninstallKB978706$
2010-08-12 12:18:20 ----D---- C:\WINDOWS\ServicePackFiles
2010-08-12 12:18:18 ----HD---- C:\WINDOWS\$NtUninstallKB958470$
2010-08-12 12:18:13 ----HD---- C:\WINDOWS\$NtUninstallKB960803$
2010-08-12 12:18:07 ----HD---- C:\WINDOWS\$NtUninstallKB973815$
2010-08-12 12:18:02 ----HD---- C:\WINDOWS\$NtUninstallKB975562$
2010-08-12 12:17:56 ----HD---- C:\WINDOWS\$NtUninstallKB958644$
2010-08-12 12:17:50 ----HD---- C:\WINDOWS\$NtUninstallKB955069$
2010-08-12 12:17:42 ----HD---- C:\WINDOWS\$NtUninstallKB979402_WM9L$
2010-08-12 12:17:38 ----HD---- C:\WINDOWS\$NtUninstallKB956802$
2010-08-12 12:17:15 ----HD---- C:\WINDOWS\$NtUninstallKB982381$
2010-08-12 12:17:05 ----D---- C:\Program Files\MSXML 4.0
2010-08-12 12:16:56 ----HD---- C:\WINDOWS\$NtUninstallKB944338-v2$
2010-08-12 12:16:48 ----HD---- C:\WINDOWS\$NtUninstallKB923561$
2010-08-12 12:16:43 ----HD---- C:\WINDOWS\$NtUninstallKB975467$
2010-08-12 12:16:33 ----HD---- C:\WINDOWS\$NtUninstallKB968389$
2010-08-12 10:35:43 ----N---- C:\WINDOWS\system32\drivers\bthport.sys
2010-08-12 10:29:05 ----N---- C:\WINDOWS\system32\tzchange.exe
2010-08-12 10:24:34 ----A---- C:\WINDOWS\system32\xpsp3res.dll
2010-08-11 17:42:33 ----D---- C:\WINDOWS\system32\PreInstall
2010-08-11 17:42:30 ----HD---- C:\WINDOWS\$NtUninstallKB898461$
2010-08-11 17:42:30 ----HD---- C:\WINDOWS\$hf_mig$
2010-07-19 12:17:19 ----A---- C:\WINDOWS\system32\unrar.dll
2010-07-19 12:17:18 ----A---- C:\WINDOWS\avisplitter.ini
2010-07-19 12:17:16 ----A---- C:\WINDOWS\system32\yv12vfw.dll
2010-07-19 12:17:15 ----A---- C:\WINDOWS\system32\dpl100.dll
2010-07-19 12:17:13 ----A---- C:\WINDOWS\system32\ff_vfw.dll.manifest
2010-07-19 12:17:13 ----A---- C:\WINDOWS\system32\ff_vfw.dll
2010-07-19 12:17:13 ----A---- C:\WINDOWS\system32\divx.dll
2010-07-19 12:17:08 ----D---- C:\Program Files\K-Lite Codec Pack
2010-07-19 08:13:58 ----SHD---- C:\FOUND.004
2010-07-19 07:24:05 ----D---- C:\Documents and Settings\Luc Jobin\Application Data\NCH Software
2010-07-19 07:22:02 ----D---- C:\Documents and Settings\All Users\Application Data\NCH Software
2010-07-15 02:16:24 ----D---- C:\WINDOWS\system32\SoftwareDistribution
2010-07-13 23:08:27 ----D---- C:\Documents and Settings\Luc Jobin\Application Data\dvdcss
2010-07-13 23:07:14 ----D---- C:\Documents and Settings\Luc Jobin\Application Data\vlc
2010-07-13 23:06:31 ----D---- C:\Program Files\VideoLAN
2010-07-11 11:04:58 ----D---- C:\Documents and Settings\Luc Jobin\Application Data\Hago
2010-07-07 14:18:50 ----D---- C:\Program Files\SLD Codec Pack
2010-07-06 19:33:20 ----D---- C:\WINDOWS\system32\NtmsData
2010-07-06 18:27:41 ----A---- C:\WINDOWS\ALCFDRTM.EXE
2010-06-17 08:55:33 ----D---- C:\Documents and Settings\Luc Jobin\Application Data\Begoo
2010-06-13 02:03:57 ----D---- C:\Documents and Settings\Luc Jobin\Application Data\CyberLink
2010-06-13 02:03:01 ----A---- C:\WINDOWS\system32\msxml3a.dll
2010-06-13 02:02:57 ----D---- C:\Program Files\Common Files\CyberLink
2010-06-13 02:01:14 ----D---- C:\Documents and Settings\All Users\Application Data\Temp
2010-06-05 11:08:12 ----SHD---- C:\FOUND.003
2010-06-05 03:48:03 ----D---- C:\Program Files\eMule1
2010-06-05 03:19:20 ----SHD---- C:\FOUND.002
2010-06-05 03:13:13 ----D---- C:\Program Files\eMule
2010-06-01 18:26:22 ----SHD---- C:\FOUND.001
2010-05-31 14:50:56 ----D---- C:\Documents and Settings\Luc Jobin\Application Data\AdobeUM
2010-05-31 09:51:54 ----SHD---- C:\FOUND.000
2010-05-24 23:21:48 ----A---- C:\WINDOWS\system32\msonpmon.dll
2010-05-24 23:20:34 ----D---- C:\Program Files\Microsoft Works
2010-05-24 23:20:21 ----D---- C:\Program Files\MSBuild
2010-05-24 23:19:51 ----D---- C:\Program Files\Microsoft Visual Studio
2010-05-24 23:19:50 ----D---- C:\Program Files\Common Files\DESIGNER
2010-05-24 23:15:21 ----D---- C:\WINDOWS\SHELLNEW
2010-05-24 23:14:36 ----D---- C:\Program Files\Microsoft Office
2010-05-24 23:14:32 ----D---- C:\Documents and Settings\All Users\Application Data\Microsoft Help
2010-05-24 23:13:49 ----RHD---- C:\MSOCache
======List of files/folders modified in the last 3 months======
2010-08-22 09:38:52 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2010-08-21 21:59:14 ----A---- C:\WINDOWS\SchedLgU.Txt
2010-08-21 21:52:40 ----A---- C:\WINDOWS\win.ini
2010-08-17 01:15:12 ----A---- C:\WINDOWS\imsins.BAK
2010-07-06 18:39:34 ----A---- C:\WINDOWS\system.ini
2010-06-23 19:53:44 ----A---- C:\ASWL2K.ini
2010-06-08 09:10:50 ----A---- C:\WINDOWS\system32\xvidvfw.dll
2010-06-08 09:10:50 ----A---- C:\WINDOWS\system32\xvidcore.dll
2010-05-31 15:12:00 ----A---- C:\WINDOWS\Antidote7.ini
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 ohci1394;OHCI Compliant IEEE 1394 Host Controller; C:\WINDOWS\system32\DRIVERS\ohci1394.sys [2004-08-04 61056]
R0 rimsptsk;rimsptsk; C:\WINDOWS\system32\DRIVERS\rimsptsk.sys [2004-12-06 51328]
R0 risdptsk;risdptsk; C:\WINDOWS\system32\DRIVERS\risdptsk.sys [2005-04-18 27136]
R1 asuskbnt;Enhanced Display Driver Helper Service; C:\WINDOWS\system32\drivers\atkkbnt.sys [2004-07-20 20096]
R1 intelppm;Intel Processor Driver; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2004-08-04 36096]
R1 vsdatant;vsdatant; C:\WINDOWS\System32\vsdatant.sys [2010-05-13 532224]
R2 ISWKL;ZoneAlarm Toolbar ISWKL; \??\C:\Program Files\CheckPoint\ZAForceField\ISWKL.sys []
R2 MDC8021X;AEGIS Protocol (IEEE 802.1x) v2.3.1.9; C:\WINDOWS\system32\DRIVERS\mdc8021x.sys [2010-05-14 15781]
R2 mdmxsdk;mdmxsdk; C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys [2005-02-16 13059]
R2 tmcomm;tmcomm; \??\C:\WINDOWS\system32\drivers\tmcomm.sys []
R3 Arp1394;1394 ARP Client Protocol; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2004-08-04 60800]
R3 ASNDIS5;ASNDIS5 Protocol Driver; \??\C:\WINDOWS\system32\ASNDIS5.SYS []
R3 BCM43XX;ASUS 802.11 Network Adapter Driver; C:\WINDOWS\system32\DRIVERS\bcmwl5.sys [2005-02-11 371712]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2005-01-07 138752]
R3 HidUsb;Microsoft HID Class Driver; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2001-08-17 9600]
R3 HSF_DP;HSF_DP; C:\WINDOWS\system32\DRIVERS\HSF_DP.sys [2005-02-16 1036928]
R3 HSFHWAZL;HSFHWAZL; C:\WINDOWS\system32\DRIVERS\HSFHWAZL.sys [2005-02-16 163328]
R3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\ialmnt5.sys [2005-07-18 1049180]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2005-08-18 3856896]
R3 mouhid;Mouse HID Driver; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-08-17 12160]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\WINDOWS\system32\DRIVERS\ATKACPI.sys [2005-02-17 5632]
R3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2004-08-04 61824]
R3 RTL8023xp;Realtek RTL8139/810x/8169/8110 all in one NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtlnicxp.sys [2005-02-16 70144]
R3 SynMini;USB2.0 1.3M Web Cam; C:\WINDOWS\System32\Drivers\SynMini.sys [2005-04-22 702326]
R3 SynScan;USB2.0 1.3M Web Cam Still Image; C:\WINDOWS\System32\Drivers\SynScan.sys [2005-04-19 4790]
R3 usbprint;Microsoft USB PRINTER Class; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2004-08-03 25856]
R3 USBSTOR;USB Mass Storage Driver; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2004-08-03 26496]
R3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2004-08-03 20480]
R3 Video3D;ASUS Video3D Service; C:\WINDOWS\System32\Drivers\Video3D.sys [2004-07-06 44544]
R3 winachsf;winachsf; C:\WINDOWS\system32\DRIVERS\HSF_CNXT.sys [2005-02-16 702592]
S2 DgiVecp;Team MFP Comm Driver; C:\WINDOWS\System32\Drivers\DgiVecp.sys [2004-08-10 41984]
S3 CCDECODE;Closed Caption Decoder; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2004-08-03 17024]
S3 HdAudAddService;Microsoft UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\HdAudio.sys [2005-01-07 145920]
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\WINDOWS\system32\drivers\mbamswissarmy.sys []
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2004-08-03 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2004-08-03 85376]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2004-08-03 10880]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2004-08-03 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2004-08-03 15360]
S3 usbaudio;USB Audio Driver (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2004-08-03 59264]
S3 usbccgp;Microsoft USB Generic Parent Driver; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2004-08-04 31616]
S3 WSTCODEC;World Standard Teletext Codec; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2004-08-03 19328]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 ATKKeyboardService;ATK Keyboard Service; C:\WINDOWS\ATKKBService.exe [2004-07-20 90112]
R2 IswSvc;ZoneAlarm Toolbar IswSvc; C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe [2010-05-26 493032]
R2 vsmon;TrueVector Internet Monitor; C:\WINDOWS\system32\ZONELABS\vsmon.exe [2010-06-23 2435592]
S3 getPlusHelper;getPlus(R) Helper; C:\WINDOWS\System32\svchost.exe [2004-08-04 14336]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2008-10-25 65888]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 SM_sugo3_FUService;sugo3 Status Monitor Service; C:\Program Files\Samsung\Samsung ML-2510 Series\SPanel\ssmsrvc /Service []
-----------------EOF-----------------