Bonjour,
voilu sans rien fermer :
Logfile of random's system information tool 1.06 (written by random/random)
Run by Lo at 2010-02-26 15:23:59
Microsoft® Windows Vista™ Édition Familiale Premium Service Pack 2
System drive C: has 201 GB (43%) free of 464 GB
Total RAM: 3070 MB (47% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 15:24:17, on 26/02/2010
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18882)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Windows\RtHDVCpl.exe
C:\Windows\System32\nvraidservice.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\Common Files\Hewlett-Packard\HP Device Communication Services\AppInterfaces\HPDeviceService.exe
C:\Program Files\Hewlett-Packard\HP Easy Printer Care\HPPRun.exe
C:\Program Files\Mediafour\MacDrive 7\MacDrive.exe
C:\Program Files\Common Files\Hewlett-Packard\HP Device Communication Services\AppInterfaces\HPDeviceHost.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Norton Internet Security\Engine\17.5.0.127\ccSvcHst.exe
C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE
C:\Program Files\Lavalys\EVEREST Ultimate Edition\everest.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files\HP\Digital Imaging\bin\hpqbam08.exe
C:\Program Files\HP\Digital Imaging\bin\hpqgpc01.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Windows\system32\conime.exe
C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_clipbook.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Lo\Desktop\RSIT.exe
C:\Program Files\trend micro\Lo.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://fr.fr.acer.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://fr.fr.acer.yahoo.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: Vuze Remote Toolbar - {ba14329e-9550-4989-b3f2-9732e92d17cc} - C:\Program Files\Vuze_Remote\tbVuze.dll
O1 - Hosts: ::1 localhost
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Symantec NCO BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files\Norton Internet Security\Engine\17.5.0.127\coIEPlg.dll
O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files\Norton Internet Security\Engine\17.5.0.127\IPSBHO.DLL
O2 - BHO: ShowBarObj Class - {83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} - C:\Acer\Empowering Technology\eDataSecurity\x86\ActiveToolBand.dll
O2 - BHO: Vuze Remote Toolbar - {ba14329e-9550-4989-b3f2-9732e92d17cc} - C:\Program Files\Vuze_Remote\tbVuze.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\Acer\Empowering Technology\eDataSecurity\x86\eDStoolbar.dll
O3 - Toolbar: (no name) - {0BF43445-2F28-4351-9252-17FE6E806AA0} - (no file)
O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: Vuze Remote Toolbar - {ba14329e-9550-4989-b3f2-9732e92d17cc} - C:\Program Files\Vuze_Remote\tbVuze.dll
O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton Internet Security\Engine\17.5.0.127\coIEPlg.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [NVRaidService] C:\Windows\system32\nvraidservice.exe
O4 - HKLM\..\Run: [Ad-Watch] C:\Program Files\Lavasoft\Ad-Aware 2007\Ad-Watch2007.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [DelReg] C:\Program Files\MSI\DualCoreCenter\DelReg.exe
O4 - HKLM\..\Run: [hpqSRMon] C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe
O4 - HKLM\..\Run: [KnexStarter] C:\Program Files\Common Files\Hewlett-Packard\HP Device Communication Services\Appinterfaces\HPDeviceService.exe
O4 - HKLM\..\Run: [RunTasktray] "C:\Program Files\Hewlett-Packard\HP Easy Printer Care\HPPRun.exe" --regkeypath=Software\Hewlett-Packard\HP Easy Printer Care\HPPRun --valuename=InstallTTM
O4 - HKLM\..\Run: [MacDrive application] "C:\Program Files\Mediafour\MacDrive 7\MacDrive.exe"
O4 - HKLM\..\Run: [UpdateLBPShortCut] "C:\Program Files\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\LabelPrint" UpdateWithCreateOnce "Software\CyberLink\LabelPrint\2.0"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter
O4 - HKCU\..\Run: [EVEREST AutoStart] C:\Program Files\Lavalys\EVEREST Ultimate Edition\everest_start.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Microsoft Office Outlook 2007.lnk = ?
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: Sélection intelligente HP - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O13 - Gopher Prefix:
O15 - Trusted Zone: http://*.hp.com (HKLM)
O16 - DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} (Zylom Games Player) -
http://game.zylom.com/activex/zylomgamesplayer.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} -
http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: HPDCS - {BA135F49-A12C-4E26-A2C4-6EA945999072} - C:\Program Files\Common Files\Hewlett-Packard\HP Device Communication Services\APP\hpdcsapp.dll
O18 - Protocol: hppfile - {C4E2084B-ED27-4893-A43D-488CA3F370E2} - C:\Program Files\Hewlett-Packard\HP Easy Printer Care\HPPCtrls.dll
O18 - Protocol: hppsam - {C4E2084B-ED27-4893-A43D-488CA3F370E2} - C:\Program Files\Hewlett-Packard\HP Easy Printer Care\HPPCtrls.dll
O18 - Protocol: hppzip - {C4E2084B-ED27-4893-A43D-488CA3F370E2} - C:\Program Files\Hewlett-Packard\HP Easy Printer Care\HPPCtrls.dll
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: Acer HomeMedia Connect Service - CyberLink - C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\CLMSServer.exe
O23 - Service: ePerformance Service (AcerMemUsageCheckService) - Unknown owner - C:\Acer\Empowering Technology\ePerformance\MemCheck.exe
O23 - Service: ALaunch Service (ALaunchService) - Unknown owner - C:\Acer\ALaunch\ALaunchSvc.exe
O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe
O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe
O23 - Service: distributed.net client (dnetc) - Distributed Computing Technologies, Inc. - C:\Windows\dnetc.exe
O23 - Service: eDataSecurity Service - Egis Incorporated - C:\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe
O23 - Service: eRecovery Service (eRecoveryService) - Acer Inc. - C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe
O23 - Service: eSettings Service (eSettingsService) - Unknown owner - C:\Acer\Empowering Technology\eSettings\Service\capuserv.exe
O23 - Service: Service Google Update (gupdate1caa8af6bfe3469) (gupdate1caa8af6bfe3469) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: Lsdiorw - Logiciels & Services Duhem, Paris, France - C:\Users\Lo\Downloads\lsdiorw4\lsdiorw.exe
O23 - Service: MacDrive service (MacDriveService) - Mediafour Corporation - C:\Program Files\Mediafour\MacDrive 7\MacDriveService.exe
O23 - Service: Norton Internet Security (NIS) - Symantec Corporation - C:\Program Files\Norton Internet Security\Engine\17.5.0.127\ccSvcHst.exe
O23 - Service: NMSAccessU - Unknown owner - C:\Program Files\CDBurnerXP\NMSAccessU.exe
O23 - Service: Norton Ghost - Symantec Corporation - C:\Program Files\Norton Ghost\Agent\VProSvc.exe
O23 - Service: O&O Defrag - O&O Software GmbH - C:\Windows\system32\oodag.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: SymSnapService - Symantec - C:\Program Files\Norton Ghost\Shared\Drivers\SymSnapService.exe
O23 - Service: @%SystemRoot%\System32\TuneUpDefragService.exe,-1 (TuneUp.Defrag) - TuneUp Software - C:\Windows\System32\TuneUpDefragService.exe
O23 - Service: @%SystemRoot%\System32\TUProgSt.exe,-1 (TuneUp.ProgramStatisticsSvc) - TuneUp Software - C:\Windows\System32\TUProgSt.exe
--
End of file - 11476 bytes
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\Maintenance en 1 clic.job
C:\Windows\tasks\User_Feed_Synchronization-{039BD5B3-B235-4A88-BA1F-D4DDB7E87A85}.job
C:\Windows\tasks\User_Feed_Synchronization-{EB57C80C-FE52-41A4-8025-BDA9059A3A0B}.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4EFB-9B51-7695ECA05670}]
Yahoo! Toolbar Helper - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll [2006-11-29 436288]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-12-21 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}]
Spybot-S&D IE Protection - C:\PROGRA~1\SPYBOT~1\SDHelper.dll [2008-09-15 1562960]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}]
Symantec NCO BHO - C:\Program Files\Norton Internet Security\Engine\17.5.0.127\coIEPlg.dll [2009-12-10 394608]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}]
Symantec Intrusion Prevention - C:\Program Files\Norton Internet Security\Engine\17.5.0.127\IPSBHO.DLL [2009-11-17 79224]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{83A2F9B1-01A2-4AA5-87D1-45B6B8505E96}]
ShowBarObj Class - C:\Acer\Empowering Technology\eDataSecurity\x86\ActiveToolBand.dll [2008-03-04 312880]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{ba14329e-9550-4989-b3f2-9732e92d17cc}]
Vuze Remote Toolbar - C:\Program Files\Vuze_Remote\tbVuze.dll [2009-12-31 2349080]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-02-14 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856}]
HP Smart BHO Class - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll [2008-10-16 505136]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - Acer eDataSecurity Management - C:\Acer\Empowering Technology\eDataSecurity\x86\eDStoolbar.dll [2008-03-04 142896]
{0BF43445-2F28-4351-9252-17FE6E806AA0}
{EF99BD32-C1FB-11D2-892F-0090271D4F88} - Yahoo! Toolbar avec bloqueur de fenêtres pop-up - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll [2006-11-29 436288]
{ba14329e-9550-4989-b3f2-9732e92d17cc} - Vuze Remote Toolbar - C:\Program Files\Vuze_Remote\tbVuze.dll [2009-12-31 2349080]
{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Norton Toolbar - C:\Program Files\Norton Internet Security\Engine\17.5.0.127\coIEPlg.dll [2009-12-10 394608]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-19 1008184]
"NvSvc"=C:\Windows\system32\nvsvc.dll [2007-12-21 86016]
"RtHDVCpl"=C:\Windows\RtHDVCpl.exe [2007-10-11 4702208]
"NVRaidService"=C:\Windows\system32\nvraidservice.exe [2007-12-07 196128]
"Ad-Watch"=C:\Program Files\Lavasoft\Ad-Aware 2007\Ad-Watch2007.exe [2008-01-11 2684280]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2008-01-21 61440]
"DelReg"=C:\Program Files\MSI\DualCoreCenter\DelReg.exe [2008-05-13 196608]
"hpqSRMon"=C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe [2008-08-20 150016]
"KnexStarter"=C:\Program Files\Common Files\Hewlett-Packard\HP Device Communication Services\Appinterfaces\HPDeviceService.exe [2009-03-23 159744]
"RunTasktray"=C:\Program Files\Hewlett-Packard\HP Easy Printer Care\HPPRun.exe [2009-03-23 101376]
"MacDrive application"=C:\Program Files\Mediafour\MacDrive 7\MacDrive.exe [2008-07-09 201304]
"UpdateLBPShortCut"=C:\Program Files\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe [2008-12-03 218408]
""= []
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-12-22 35760]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-04-11 1233920]
"WindowsWelcomeCenter"=oobefldr.dll,ShowWelcomeCenter []
"EVEREST AutoStart"=C:\Program Files\Lavalys\EVEREST Ultimate Edition\everest_start.exe [2009-05-25 334928]
"SpybotSD TeaTimer"=C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe [2009-03-05 2260480]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
HP Digital Imaging Monitor.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
Microsoft Office Outlook 2007.lnk - C:\Windows\Installer\{90120000-0011-0000-0000-0000000FF1CE}\outicon.exe
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aawservice]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\aawservice]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"EnableLUA"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files\Hewlett-Packard\HP Easy Printer Care\HPPRun.exe"="C:\Program Files\Hewlett-Packard\HP Easy Printer Care\HPPRun.exe:*:Enabled:HP Easy Printer Care HPPRun"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"C:\Program Files\Hewlett-Packard\HP Easy Printer Care\HPPRun.exe"="C:\Program Files\Hewlett-Packard\HP Easy Printer Care\HPPRun.exe:*:Enabled:HP Easy Printer Care HPPRun"
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
.reg - edit -
.reg - open -
======List of files/folders created in the last 1 months======
2010-02-26 15:23:59 ----D---- C:\rsit
2010-02-26 15:23:59 ----D---- C:\Program Files\trend micro
2010-02-25 15:12:29 ----D---- C:\Users\Lo\AppData\Roaming\XnView
2010-02-25 15:10:26 ----D---- C:\Program Files\XnView
2010-02-25 08:54:07 ----D---- C:\ProgramData\Norton
2010-02-25 08:54:07 ----D---- C:\Program Files\Norton Internet Security
2010-02-25 08:53:17 ----D---- C:\ProgramData\NortonInstaller
2010-02-25 08:53:17 ----D---- C:\Program Files\NortonInstaller
2010-02-24 15:11:29 ----A---- C:\Windows\system32\jscript.dll
2010-02-24 15:11:23 ----A---- C:\Windows\system32\tzres.dll
2010-02-16 15:00:24 ----D---- C:\Program Files\Common Files\Adobe
2010-02-16 15:00:24 ----D---- C:\Program Files\Adobe
2010-02-14 20:26:34 ----D---- C:\Users\Lo\AppData\Roaming\Canneverbe Limited
2010-02-14 20:12:29 ----D---- C:\ProgramData\Canneverbe Limited
2010-02-14 20:12:29 ----D---- C:\Program Files\CDBurnerXP
2010-02-14 18:38:22 ----D---- C:\m4ng_TMP
2010-02-14 18:37:21 ----A---- C:\Windows\NeroDigital.ini
2010-02-14 18:11:48 ----D---- C:\Users\Lo\AppData\Roaming\Thunderbird
2010-02-14 18:11:37 ----D---- C:\Program Files\Mozilla Thunderbird
2010-02-14 15:52:22 ----D---- C:\Windows\Sun
2010-02-14 15:51:52 ----D---- C:\ProgramData\Sun
2010-02-14 15:51:51 ----D---- C:\Program Files\Common Files\Java
2010-02-14 15:51:26 ----A---- C:\Windows\system32\javaws.exe
2010-02-14 15:51:26 ----A---- C:\Windows\system32\javaw.exe
2010-02-14 15:51:26 ----A---- C:\Windows\system32\java.exe
2010-02-14 15:51:26 ----A---- C:\Windows\system32\deploytk.dll
2010-02-14 15:51:07 ----D---- C:\Program Files\Java
2010-02-14 15:40:21 ----D---- C:\ProgramData\Zylom
2010-02-14 15:03:26 ----D---- C:\Users\Lo\AppData\Roaming\ToutMail
2010-02-14 15:03:20 ----D---- C:\Program Files\Fookes Software
2010-02-14 14:58:18 ----D---- C:\Program Files\Outlook Express
2010-02-11 19:13:08 ----A---- C:\Windows\system32\quartz.dll
2010-02-11 19:13:07 ----A---- C:\Windows\system32\tsbyuv.dll
2010-02-11 19:13:07 ----A---- C:\Windows\system32\msyuv.dll
2010-02-11 19:13:07 ----A---- C:\Windows\system32\msvidc32.dll
2010-02-11 19:13:07 ----A---- C:\Windows\system32\msrle32.dll
2010-02-11 19:13:06 ----A---- C:\Windows\system32\mciavi32.dll
2010-02-11 19:13:06 ----A---- C:\Windows\system32\iyuv_32.dll
2010-02-11 19:13:05 ----A---- C:\Windows\system32\msvfw32.dll
2010-02-11 19:13:05 ----A---- C:\Windows\system32\avifil32.dll
2010-02-08 13:37:56 ----D---- C:\divx
2010-02-08 12:31:12 ----A---- C:\QuEnc.bat
2010-02-08 12:31:10 ----A---- C:\mediainfo.txt
2010-02-08 12:30:15 ----A---- C:\finfos.txt
2010-02-08 12:10:59 ----D---- C:\Program Files\Common Files\DivX Shared
2010-02-08 12:10:58 ----D---- C:\Program Files\Google
2010-02-08 11:53:14 ----D---- C:\Users\Lo\AppData\Roaming\Canon
2010-02-08 11:28:00 ----D---- C:\Users\Lo\AppData\Roaming\KC Softwares
2010-02-06 14:15:51 ----D---- C:\Users\Lo\AppData\Roaming\ZoomBrowser EX
2010-02-06 10:50:16 ----D---- C:\ProgramData\ZoomBrowser
2010-02-06 10:49:46 ----D---- C:\Program Files\Canon
2010-02-06 10:09:30 ----D---- C:\Program Files\Common Files\Canon
2010-02-05 14:53:23 ----D---- C:\Users\Lo\AppData\Roaming\HpUpdate
2010-02-05 14:53:21 ----D---- C:\Windows\Hewlett-Packard
2010-02-03 18:38:43 ----D---- C:\ProgramData\NtiDvdCopy
2010-02-02 22:36:39 ----D---- C:\Users\Lo\AppData\Roaming\vlc
2010-02-02 19:53:32 ----D---- C:\ProgramData\Azureus
2010-02-02 19:53:27 ----D---- C:\Users\Lo\AppData\Roaming\Azureus
2010-02-02 19:52:52 ----D---- C:\Program Files\Vuze
2010-02-02 19:52:52 ----D---- C:\Program Files\Common Files\i4j_jres
2010-02-02 19:52:41 ----D---- C:\Program Files\Conduit
2010-02-02 19:52:40 ----D---- C:\Program Files\Vuze_Remote
2010-02-02 19:49:55 ----D---- C:\Users\Lo\AppData\Roaming\Nero
2010-02-02 19:47:25 ----A---- C:\Windows\system32\MsiExec.exe.log
2010-02-02 19:46:03 ----D---- C:\ProgramData\Nero
2010-02-02 19:46:03 ----D---- C:\Program Files\Nero
2010-02-02 19:46:03 ----D---- C:\Program Files\Common Files\Nero
2010-02-02 19:43:47 ----A---- C:\Windows\system32\d3dx9_30.dll
2010-02-02 19:43:47 ----A---- C:\Windows\system32\d3dx9_28.dll
2010-02-02 19:38:49 ----D---- C:\MyWorks
2010-02-02 19:38:28 ----N---- C:\Windows\system32\msxml3a.dll
2010-02-02 19:37:28 ----D---- C:\Users\Lo\AppData\Roaming\CyberLink
2010-02-02 19:30:33 ----D---- C:\Users\Lo\AppData\Roaming\DivX
2010-02-01 14:10:59 ----D---- C:\Users\Lo\AppData\Roaming\HP
2010-02-01 12:05:02 ----D---- C:\Program Files\Common Files\Mediafour
2010-02-01 12:05:01 ----D---- C:\ProgramData\Mediafour
2010-02-01 12:04:41 ----D---- C:\Program Files\Mediafour
2010-02-01 10:46:26 ----A---- C:\Windows\system32\cw3230.dll
2010-02-01 10:46:26 ----A---- C:\Windows\system32\cc3280mt.dll
2010-02-01 10:46:26 ----A---- C:\Windows\system32\cc3260mt.dll
2010-02-01 10:46:26 ----A---- C:\Windows\system32\borlndmm.dll
2010-02-01 10:46:25 ----D---- C:\Program Files\LS_Duhem
2010-02-01 10:25:52 ----D---- C:\ProgramData\Apple
2010-02-01 10:25:52 ----D---- C:\Program Files\Apple Software Update
2010-01-29 16:15:07 ----D---- C:\Users\Lo\AppData\Roaming\Symantec
2010-01-29 11:28:30 ----D---- C:\Program Files\SecondLife
2010-01-27 14:34:23 ----D---- C:\Users\Lo\AppData\Roaming\Auslogics
2010-01-27 14:34:20 ----D---- C:\Program Files\Auslogics
2010-01-27 11:23:36 ----D---- C:\Users\Lo\AppData\Roaming\TuneUp Software
2010-01-27 10:26:11 ----D---- C:\Windows\system32\vi-VN
2010-01-27 10:26:11 ----D---- C:\Windows\system32\eu-ES
2010-01-27 10:26:11 ----D---- C:\Windows\system32\ca-ES
2010-01-27 09:53:39 ----D---- C:\Windows\system32\EventProviders
======List of files/folders modified in the last 1 months======
2010-02-26 15:23:59 ----RD---- C:\Program Files
2010-02-26 15:23:42 ----D---- C:\Windows\Temp
2010-02-26 15:21:30 ----D---- C:\Windows\System32
2010-02-26 15:21:30 ----D---- C:\Windows\inf
2010-02-26 15:21:30 ----A---- C:\Windows\system32\PerfStringBackup.INI
2010-02-26 15:16:04 ----A---- C:\Windows\system32\everest_cpl.ini
2010-02-26 15:16:01 ----SHD---- C:\System Volume Information
2010-02-26 15:15:55 ----D---- C:\Windows\Registration
2010-02-25 09:12:26 ----D---- C:\Program Files\Common Files\Symantec Shared
2010-02-25 08:58:03 ----D---- C:\Windows\system32\Tasks
2010-02-25 08:57:22 ----D---- C:\Windows\system32\drivers
2010-02-25 08:57:22 ----D---- C:\Program Files\Symantec
2010-02-25 08:54:07 ----HD---- C:\ProgramData
2010-02-25 08:35:08 ----SHD---- C:\Windows\Installer
2010-02-25 08:35:08 ----HD---- C:\Config.Msi
2010-02-24 17:13:03 ----D---- C:\Windows\Prefetch
2010-02-24 17:06:54 ----D---- C:\Windows\rescache
2010-02-24 15:13:27 ----D---- C:\Windows\winsxs
2010-02-24 15:13:17 ----D---- C:\Windows\system32\fr-FR
2010-02-24 15:10:17 ----D---- C:\Windows\system32\catroot
2010-02-24 15:09:21 ----D---- C:\Windows\system32\catroot2
2010-02-16 15:19:03 ----SD---- C:\Windows\Downloaded Program Files
2010-02-16 15:01:16 ----D---- C:\ProgramData\Adobe
2010-02-16 15:00:24 ----D---- C:\Program Files\Common Files
2010-02-16 14:55:03 ----D---- C:\ProgramData\Spybot - Search & Destroy
2010-02-16 14:48:26 ----D---- C:\Windows\system32\WDI
2010-02-16 14:42:53 ----SD---- C:\Users\Lo\AppData\Roaming\Microsoft
2010-02-14 20:07:42 ----D---- C:\Program Files\m4ng
2010-02-14 19:57:02 ----SHD---- C:\$RECYCLE.BIN
2010-02-14 18:37:21 ----D---- C:\Windows
2010-02-14 18:12:20 ----D---- C:\Windows\system32\migwiz
2010-02-11 19:15:24 ----D---- C:\ProgramData\Microsoft Help
2010-02-08 12:29:36 ----D---- C:\Windows\Tasks
2010-02-08 12:12:36 ----D---- C:\Program Files\DivX
2010-02-06 14:24:58 ----D---- C:\ProgramData\CyberLink
2010-02-05 14:53:33 ----D---- C:\Program Files\HP
2010-02-05 10:29:15 ----D---- C:\Windows\system32\LogFiles
2010-02-03 18:40:53 ----D---- C:\my dvd
2010-02-02 19:49:19 ----HD---- C:\Program Files\InstallShield Installation Information
2010-02-02 19:49:13 ----D---- C:\Program Files\CyberLink
2010-02-02 19:48:21 ----D---- C:\ProgramData\TEMP
2010-02-02 19:46:02 ----D---- C:\Windows\Cursors
2010-02-01 20:26:20 ----A---- C:\Windows\system32\mrt.exe
2010-01-28 18:28:26 ----D---- C:\Windows\Microsoft.NET
2010-01-28 18:28:19 ----RSD---- C:\Windows\assembly
2010-01-28 17:50:13 ----RSD---- C:\Windows\Fonts
2010-01-28 17:50:08 ----D---- C:\Program Files\Common Files\microsoft shared
2010-01-28 17:49:51 ----D---- C:\Program Files\Microsoft Works
2010-01-28 17:48:20 ----D---- C:\Program Files\Common Files\System
2010-01-28 17:48:20 ----A---- C:\Windows\win.ini
2010-01-27 12:01:17 ----D---- C:\Users\Lo\AppData\Roaming\Adobe
2010-01-27 10:32:23 ----SHD---- C:\Boot
2010-01-27 10:26:30 ----D---- C:\Program Files\Windows Calendar
2010-01-27 10:26:29 ----D---- C:\Windows\servicing
2010-01-27 10:26:29 ----D---- C:\Windows\ehome
2010-01-27 10:26:29 ----D---- C:\Program Files\Windows Sidebar
2010-01-27 10:26:29 ----D---- C:\Program Files\Windows Photo Gallery
2010-01-27 10:26:29 ----D---- C:\Program Files\Windows Media Player
2010-01-27 10:26:29 ----D---- C:\Program Files\Windows Mail
2010-01-27 10:26:29 ----D---- C:\Program Files\Windows Journal
2010-01-27 10:26:29 ----D---- C:\Program Files\Windows Defender
2010-01-27 10:26:29 ----D---- C:\Program Files\Windows Collaboration
2010-01-27 10:26:29 ----D---- C:\Program Files\Movie Maker
2010-01-27 10:26:29 ----D---- C:\Program Files\Internet Explorer
2010-01-27 10:26:27 ----D---- C:\Windows\system32\XPSViewer
2010-01-27 10:26:27 ----D---- C:\Windows\system32\sk-SK
2010-01-27 10:26:27 ----D---- C:\Windows\system32\lv-LV
2010-01-27 10:26:27 ----D---- C:\Windows\system32\ko-KR
2010-01-27 10:26:27 ----D---- C:\Windows\system32\hr-HR
2010-01-27 10:26:27 ----D---- C:\Windows\system32\et-EE
2010-01-27 10:26:27 ----D---- C:\Windows\system32\en-US
2010-01-27 10:26:27 ----D---- C:\Windows\system32\da-DK
2010-01-27 10:26:27 ----D---- C:\Windows\IME
2010-01-27 10:26:26 ----D---- C:\Windows\system32\de-DE
2010-01-27 10:26:23 ----D---- C:\Windows\system32\oobe
2010-01-27 10:26:23 ----D---- C:\Windows\system32\migration
2010-01-27 10:26:23 ----D---- C:\Windows\system32\it-IT
2010-01-27 10:26:23 ----D---- C:\Windows\system32\fr
2010-01-27 10:26:23 ----D---- C:\Windows\system32\el-GR
2010-01-27 10:26:22 ----D---- C:\Windows\system32\ru-RU
2010-01-27 10:26:22 ----D---- C:\Windows\system32\AdvancedInstallers
2010-01-27 10:26:21 ----D---- C:\Windows\system32\zh-TW
2010-01-27 10:26:21 ----D---- C:\Windows\system32\zh-CN
2010-01-27 10:26:21 ----D---- C:\Windows\system32\wbem
2010-01-27 10:26:21 ----D---- C:\Windows\system32\uk-UA
2010-01-27 10:26:21 ----D---- C:\Windows\system32\tr-TR
2010-01-27 10:26:21 ----D---- C:\Windows\system32\th-TH
2010-01-27 10:26:21 ----D---- C:\Windows\system32\sv-SE
2010-01-27 10:26:21 ----D---- C:\Windows\system32\sr-Latn-CS
2010-01-27 10:26:21 ----D---- C:\Windows\system32\SLUI
2010-01-27 10:26:21 ----D---- C:\Windows\system32\sl-SI
2010-01-27 10:26:21 ----D---- C:\Windows\system32\setup
2010-01-27 10:26:21 ----D---- C:\Windows\system32\ro-RO
2010-01-27 10:26:21 ----D---- C:\Windows\system32\pt-PT
2010-01-27 10:26:21 ----D---- C:\Windows\system32\pl-PL
2010-01-27 10:26:21 ----D---- C:\Windows\system32\nl-NL
2010-01-27 10:26:21 ----D---- C:\Windows\system32\nb-NO
2010-01-27 10:26:21 ----D---- C:\Windows\system32\manifeststore
2010-01-27 10:26:21 ----D---- C:\Windows\system32\lt-LT
2010-01-27 10:26:21 ----D---- C:\Windows\system32\ja-JP
2010-01-27 10:26:21 ----D---- C:\Windows\system32\hu-HU
2010-01-27 10:26:21 ----D---- C:\Windows\system32\he-IL
2010-01-27 10:26:21 ----D---- C:\Windows\system32\fi-FI
2010-01-27 10:26:21 ----D---- C:\Windows\system32\es-ES
2010-01-27 10:26:21 ----D---- C:\Windows\system32\cs-CZ
2010-01-27 10:26:21 ----D---- C:\Windows\system32\bg-BG
2010-01-27 10:26:21 ----D---- C:\Windows\system32\ar-SA
2010-01-27 10:26:20 ----D---- C:\Windows\system32\pt-BR
2010-01-27 10:26:16 ----D---- C:\Windows\AppPatch
2010-01-27 10:26:11 ----D---- C:\Windows\system32\Boot
2010-01-27 10:24:43 ----D---- C:\Windows\system32\RTCOM
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 BHDrvx86;BHDrvx86; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_17.5.0.127\Definitions\BASHDefs\20100211.001\BHDrvx86.sys [2010-02-11 536112]
R1 ccHP;Symantec Hash Provider; C:\Windows\system32\drivers\NIS\1105000.07F\ccHPx86.sys [2009-12-09 501888]
R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys [2010-02-25 371248]
R1 IDSVix86;IDSVix86; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_17.5.0.127\Definitions\IPSDefs\20100218.001\IDSvix86.sys [2009-11-17 343088]
R1 SCDEmu;SCDEmu; C:\Windows\system32\drivers\SCDEmu.sys [2008-06-12 56108]
R1 SRTSPX;Symantec Real Time Storage Protection (PEL); C:\Windows\system32\drivers\NIS\1105000.07F\SRTSPX.SYS [2009-12-03 43696]
R1 SymIRON;Symantec Iron Driver; C:\Windows\system32\drivers\NIS\1105000.07F\Ironx86.SYS [2009-11-26 116272]
R1 SYMTDIv;Symantec Vista Network Dispatch Driver; C:\Windows\system32\drivers\NIS\1105000.07F\SYMTDIV.SYS [2009-11-22 340016]
R2 int15;int15; \??\C:\Acer\Empowering Technology\eRecovery\int15.sys [2007-07-03 15392]
R2 PSDNServ;PSDNServ; C:\Windows\system32\DRIVERS\PSDNServ.sys [2008-03-04 16944]
R2 psdvdisk;PSDVdisk; C:\Windows\system32\DRIVERS\PSDVdisk.sys [2008-03-04 60464]
R2 tvicport;tvicport; \??\C:\Windows\system32\drivers\tvicport.sys [2007-11-06 14544]
R2 v2imount;Symantec V2i Mount Driver; C:\Windows\system32\DRIVERS\v2imount.sys [2008-01-19 38112]
R2 zntport;zntport; \??\C:\Windows\system32\drivers\zntport.sys [2007-11-06 6080]
R3 Ad-Watch Connect Filter;Ad-Watch Connect Kernel Filter; \??\C:\Windows\system32\drivers\NSDriver.sys [2007-08-07 9344]
R3 Ad-Watch Real-Time Scanner;AW Real-Time Scanner; \??\C:\Windows\system32\drivers\AWRTPD.sys [2007-07-11 6272]
R3 Ad-Watch Registry Filter;Ad-Watch Registry Kernel Filter; \??\C:\Windows\system32\drivers\AWRTRD.sys [2007-08-07 8320]
R3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2008-02-19 3514368]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv; \??\C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2010-02-25 102448]
R3 EverestDriver;Lavalys EVEREST Kernel Driver; \??\C:\Program Files\Lavalys\EVEREST Ultimate Edition\kerneld.wnt [2009-05-25 26736]
R3 GEARAspiWDM;GearAspiWDM; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys [2008-01-19 15664]
R3 HdAudAddService;Pilote de fonction UAA 1.1 Microsoft pour le service High Definition Audio; C:\Windows\system32\drivers\HdAudio.sys [2009-04-11 236544]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2007-10-17 1971928]
R3 NAVENG;NAVENG; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_17.5.0.127\Definitions\VirusDefs\20100224.068\NAVENG.SYS [2010-02-25 84912]
R3 NAVEX15;NAVEX15; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_17.5.0.127\Definitions\VirusDefs\20100224.068\NAVEX15.SYS [2010-02-25 1324720]
R3 NTIDrvr;Upper Class Filter Driver; C:\Windows\system32\DRIVERS\NTIDrvr.sys [2008-03-29 6144]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvmfdx32.sys [2007-11-18 1040544]
R3 NVHDA;Service for NVIDIA HDMI Audio Driver; C:\Windows\system32\drivers\nvhda32v.sys [2007-07-16 30752]
R3 nvsmu;nvsmu; C:\Windows\system32\DRIVERS\nvsmu.sys [2007-07-07 12032]
R3 P1131VID;Creative WebCam NX Pro (WDM); C:\Windows\system32\DRIVERS\P1131Vid.sys [2004-05-04 91241]
R3 SRTSP;Symantec Real Time Storage Protection; C:\Windows\system32\drivers\NIS\1105000.07F\SRTSP.SYS [2009-12-03 325168]
R3 SymEvent;SymEvent; \??\C:\Windows\system32\Drivers\SYMEVENT.SYS [2010-02-25 124976]
R3 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\DRIVERS\wmiacpi.sys [2008-01-19 11264]
R3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-19 83328]
S3 Dot4;Pilote MS IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4.sys [2008-01-19 131584]
S3 Dot4Print;Pilote de classe Imprimante pour IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4Prt.sys [2008-01-19 16384]
S3 dot4usb;MS Dot4USB Filter Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2008-01-19 36864]
S3 drmkaud;Filtre de décodeur DRM (Noyau Microsoft); C:\Windows\system32\drivers\drmkaud.sys [2008-01-19 5632]
S3 fbxusb;Carte réseau virtuelle FreeBox USB; C:\Windows\system32\DRIVERS\fbxusb32.sys [2004-10-20 21344]
S3 MSKSSRV;Proxy de service de répartition Microsoft; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-19 8192]
S3 MSPCLOCK;Proxy d'horloge de répartition Microsoft; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-19 5888]
S3 MSPQM;Proxy de gestion de qualité de répartition Microsoft; C:\Windows\system32\drivers\MSPQM.sys [2008-01-19 5504]
S3 MSTEE;Convertisseur en T/site-à-site de répartition Microsoft; C:\Windows\system32\drivers\MSTEE.sys [2008-01-19 6016]
S3 NuidFltr;NUID filter driver; C:\Windows\system32\DRIVERS\NuidFltr.sys [2007-01-15 9728]
S3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2007-12-21 7629632]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfd.sys [2008-08-26 18816]
S3 StarOpen;StarOpen; C:\Windows\system32\drivers\StarOpen.sys []
S3 StillCam;Pilote d'appareil photo numérique série; C:\Windows\system32\DRIVERS\serscan.sys [2008-01-19 9216]
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerflt.sys []
S3 usbscan;Pilote de scanneur USB; C:\Windows\system32\DRIVERS\usbscan.sys [2008-01-19 35328]
S3 VProEventMonitor;Symantec Event Monitor Driver; C:\Windows\system32\DRIVERS\vproeventmonitor.sys [2008-01-19 15088]
S3 WimFltr;WimFltr; C:\Windows\system32\DRIVERS\wimfltr.sys [2008-01-19 128104]
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2008-01-19 39936]
S3 WSDPrintDevice;Prise en charge de l’impression WSD via UMB; C:\Windows\system32\DRIVERS\WSDPrint.sys [2008-01-19 16896]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 aawservice;Ad-Aware 2007 Service; C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe [2008-01-04 587096]
R2 Acer HomeMedia Connect Service;Acer HomeMedia Connect Service; C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\CLMSServer.exe [2007-06-21 269448]
R2 AcerMemUsageCheckService;ePerformance Service; C:\Acer\Empowering Technology\ePerformance\MemCheck.exe [2007-04-16 28672]
R2 ALaunchService;ALaunch Service; C:\Acer\ALaunch\ALaunchSvc.exe [2007-01-26 50688]
R2 Ati External Event Utility;Ati External Event Utility; C:\Windows\system32\Ati2evxx.exe [2008-02-19 655360]
R2 CCALib8;Canon Camera Access Library 8; C:\Program Files\Canon\CAL\CALMAIN.exe [2005-09-30 96341]
R2 dnetc;distributed.net client; C:\Windows\dnetc.exe [2006-09-10 539136]
R2 eDataSecurity Service;eDataSecurity Service; C:\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe [2008-03-04 500784]
R2 eRecoveryService;eRecovery Service; C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe [2007-09-10 57344]
R2 eSettingsService;eSettings Service; C:\Acer\Empowering Technology\eSettings\Service\capuserv.exe [2007-12-19 24576]
R2 hpqddsvc;Service HP CUE DeviceDiscovery; C:\Windows\system32\svchost.exe [2008-01-19 21504]
R2 HPSLPSVC;HP Network Devices Support; C:\Windows\system32\svchost.exe [2008-01-19 21504]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2007-01-17 61440]
R2 Lsdiorw;Lsdiorw; C:\Users\Lo\Downloads\lsdiorw4\lsdiorw.exe [2005-04-07 38400]
R2 MacDriveService;MacDrive service; C:\Program Files\Mediafour\MacDrive 7\MacDriveService.exe [2008-05-02 150528]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\Windows\System32\svchost.exe [2008-01-19 21504]
R2 NIS;Norton Internet Security; C:\Program Files\Norton Internet Security\Engine\17.5.0.127\ccSvcHst.exe [2009-12-09 126392]
R2 NMSAccessU;NMSAccessU; C:\Program Files\CDBurnerXP\NMSAccessU.exe [2009-11-12 71096]
R2 Norton Ghost;Norton Ghost; C:\Program Files\Norton Ghost\Agent\VProSvc.exe [2008-01-19 4388192]
R2 O&O Defrag;O&O Defrag; C:\Windows\system32\oodag.exe [2007-05-11 1050120]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2008-01-19 21504]
R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files\CyberLink\Shared Files\RichVideo.exe [2006-07-19 262247]
R2 SBSDWSCService;SBSD Security Center Service; C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe [2009-01-26 1153368]
R2 Symantec SymSnap VSS Provider;Symantec SymSnap VSS Provider; C:\Windows\system32\dllhost.exe [2006-11-02 7168]
R2 TuneUp.ProgramStatisticsSvc;@%SystemRoot%\System32\TUProgSt.exe,-1; C:\Windows\System32\TUProgSt.exe [2010-01-18 603904]
R2 UxTuneUp;@%SystemRoot%\System32\uxtuneup.dll,-4096; C:\Windows\System32\svchost.exe [2008-01-19 21504]
R3 hpqcxs08;hpqcxs08; C:\Windows\system32\svchost.exe [2008-01-19 21504]
R3 SymSnapService;SymSnapService; C:\Program Files\Norton Ghost\Shared\Drivers\SymSnapService.exe [2007-12-20 1553896]
S2 gupdate1caa8af6bfe3469;Service Google Update (gupdate1caa8af6bfe3469); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-02-08 133104]
S3 LiveUpdate;LiveUpdate; C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE [2007-09-12 2999664]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2008-11-11 620544]
S3 TuneUp.Defrag;@%SystemRoot%\System32\TuneUpDefragService.exe,-1; C:\Windows\System32\TuneUpDefragService.exe [2010-01-18 362240]
-----------------EOF-----------------