Bonjour Chantal et merci pour votre reponse.
J'ai supprimé l'antivirus grace à un scan complet du system puis NOD32 m'a demandé de redemarrer mon pc pour que la desinfection soit complete, apres j'ai fais aussi un online scan pour m'assurer que tout va bien et je crois que c'est le cas.
voici le rapport de hijackthis :
================================================================================================================================================
log.txt
Logfile of random's system information tool 1.06 (written by random/random)
Run by Red at 2010-04-15 12:19:00
Microsoft Windows 7 Édition Intégrale Service Pack 2
System drive C: has 19 GB (9%) free of 228 GB
Total RAM: 3069 MB (63% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 12:19:33, on 15/04/2010
Platform: Unknown Windows (WinNT 6.01.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16385)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Internet Download Manager\IDMan.exe
C:\Appz\utorrent.exe
C:\Program Files (x86)\Internet Download Manager\IEMonitor.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
C:\Users\Red\Desktop\RSIT.exe
C:\Program Files (x86)\trend micro\Red.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
https://www.aui.ma:444/login.nsf
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll
O4 - HKCU\..\Run: [IDMan] C:\Program Files (x86)\Internet Download Manager\IDMan.exe /onboot
O4 - HKCU\..\Run: [uTorrent] "C:\Appz\utorrent.exe"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'SERVICE RÉSEAU')
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O7 - HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableRegedit=1
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~3\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Télécharger avec IDM - C:\Program Files (x86)\Internet Download Manager\IEExt.htm
O8 - Extra context menu item: Télécharger le contenu de video FLV avec IDM - C:\Program Files (x86)\Internet Download Manager\IEGetVL.htm
O8 - Extra context menu item: Télécharger tous les liens avec IDM - C:\Program Files (x86)\Internet Download Manager\IEGetAll.htm
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~3\Office12\REFIEBAR.DLL
O13 - Gopher Prefix:
O16 - DPF: {75AA409D-05F9-4F27-BD53-C7339D4B1D0A} (IBM Lotus iNotes 8.5 Control) -
https://www.aui.ma:444/dwa85W.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) -
http://fpdownload2.macromedia.com/get/s ... wflash.cab
O16 - DPF: {DE625294-70E6-45ED-B895-CFFA13AEB044} (AxisMediaControlEmb Class) -
http://webcam.aui.ma/activex/AMC.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files (x86)\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_ccf0dd3cb081af84\AESTSr64.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files (x86)\Bonjour\mDNSResponder.exe
O23 - Service: Com4QLBEx - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: Service de l’iPod (iPod Service) - Apple Inc. - C:\Program Files (x86)\iPod\bin\iPodService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Audio Service (STacSV) - IDT, Inc. - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_ccf0dd3cb081af84\STacSV64.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 9031 bytes
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0055C089-8582-441B-A0BF-17B458C2A3A8}]
IDMIEHlprObj Class - C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll [2009-04-02 169392]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-12-21 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Programme d'aide de l'Assistant de connexion Windows Live - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2010-02-05 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{32099AAC-C132-4136-9E9A-4E364A424E17} - DAEMON Tools Toolbar - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll [2009-11-24 953800]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"IDMan"=C:\Program Files (x86)\Internet Download Manager\IDMan.exe [2010-03-03 2794928]
"uTorrent"=C:\Appz\utorrent.exe [2010-03-06 319792]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Adobe Gamma Loader.lnk - C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\EFS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Power]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\RpcEptMapper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vmms]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\EFS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ndiscap]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Power]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\RpcEptMapper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VaultSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vmms]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableRegistryTools"=1
"DisableTaskMgr"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoFind"=1
"NoRun"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=
"NoActiveDesktopChanges"=
"ForceActiveDesktopOn"=
"NoDriveTypeAutoRun"=
"NoFolderOptions"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 months======
2010-04-15 12:19:00 ----D---- C:\rsit
2010-04-15 12:19:00 ----D---- C:\Program Files (x86)\trend micro
2010-04-14 19:03:10 ----A---- C:\Windows\system32\vbscript.dll
2010-04-14 19:03:06 ----A---- C:\Windows\system32\ntoskrnl.exe
2010-04-14 19:03:05 ----A---- C:\Windows\system32\ntkrnlpa.exe
2010-04-14 13:30:06 ----A---- C:\Windows\system32\wintrust.dll
2010-04-14 13:30:01 ----A---- C:\Windows\system32\cabview.dll
2010-04-06 15:22:27 ----A---- C:\Windows\system32\secproc_isv.dll
2010-04-06 15:22:27 ----A---- C:\Windows\system32\secproc.dll
2010-04-06 15:22:27 ----A---- C:\Windows\system32\RMActivate_isv.exe
2010-04-06 15:22:27 ----A---- C:\Windows\system32\RMActivate.exe
2010-04-06 15:22:26 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2010-04-06 15:22:26 ----A---- C:\Windows\system32\secproc_ssp.dll
2010-04-06 15:22:26 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2010-04-06 15:22:26 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2010-04-06 15:22:09 ----A---- C:\Windows\system32\setup16.exe
2010-04-06 15:22:08 ----A---- C:\Windows\system32\wow32.dll
2010-04-06 15:22:08 ----A---- C:\Windows\system32\ntvdm64.dll
2010-04-06 15:22:08 ----A---- C:\Windows\system32\instnm.exe
2010-04-06 15:22:07 ----A---- C:\Windows\system32\user.exe
2010-04-06 15:21:59 ----A---- C:\Windows\system32\CPFilters.dll
2010-04-06 15:21:57 ----A---- C:\Windows\system32\psisdecd.dll
2010-04-05 21:42:06 ----A---- C:\Windows\system32\msv1_0.dll
2010-04-05 21:39:15 ----A---- C:\Windows\system32\wmp.dll
2010-04-05 21:39:11 ----A---- C:\Windows\system32\CertEnroll.dll
2010-04-05 21:39:08 ----A---- C:\Windows\system32\wmploc.DLL
2010-04-05 21:32:39 ----D---- C:\ProgramData\XoftSpySE
2010-04-05 21:28:32 ----A---- C:\Windows\system32\mshtml.dll
2010-04-05 21:28:29 ----A---- C:\Windows\system32\ieframe.dll
2010-04-05 21:28:27 ----A---- C:\Windows\system32\mstime.dll
2010-04-05 21:28:26 ----A---- C:\Windows\system32\urlmon.dll
2010-04-05 21:28:25 ----A---- C:\Windows\system32\wininet.dll
2010-04-05 21:28:25 ----A---- C:\Windows\system32\msfeedsbs.dll
2010-04-05 21:28:25 ----A---- C:\Windows\system32\iedkcs32.dll
2010-04-05 21:25:17 ----A---- C:\Windows\system32\explorer.exe
2010-04-05 21:25:17 ----A---- C:\Windows\explorer.exe
2010-04-05 21:25:14 ----A---- C:\Windows\system32\tzres.dll
2010-04-05 21:24:41 ----A---- C:\Windows\system32\quartz.dll
2010-04-05 21:24:41 ----A---- C:\Windows\system32\mciavi32.dll
2010-04-05 21:24:40 ----A---- C:\Windows\system32\msvidc32.dll
2010-04-05 21:24:40 ----A---- C:\Windows\system32\avifil32.dll
2010-04-05 21:24:39 ----A---- C:\Windows\system32\msyuv.dll
2010-04-05 21:24:39 ----A---- C:\Windows\system32\msrle32.dll
2010-04-05 21:24:39 ----A---- C:\Windows\system32\iyuv_32.dll
2010-04-05 21:24:38 ----A---- C:\Windows\system32\tsbyuv.dll
2010-04-05 21:24:36 ----A---- C:\Windows\system32\t2embed.dll
2010-04-05 21:24:36 ----A---- C:\Windows\system32\atmfd.dll
2010-04-05 21:24:35 ----A---- C:\Windows\system32\fontsub.dll
2010-04-05 21:23:48 ----A---- C:\Windows\system32\msasn1.dll
2010-04-05 21:23:46 ----A---- C:\Windows\system32\jscript.dll
2010-04-05 21:09:51 ----SHD---- C:\ProgramData\Modèles
2010-04-05 21:09:51 ----SHD---- C:\ProgramData\Menu Démarrer
2010-04-05 21:09:50 ----SHD---- C:\ProgramData\Favoris
2010-04-05 21:09:50 ----SHD---- C:\ProgramData\Bureau
2010-04-05 20:23:36 ----SD---- C:\Users\Red\AppData\Roaming\Microsoft
2010-04-05 20:23:36 ----D---- C:\Users\Red\AppData\Roaming\Media Center Programs
2010-04-05 20:22:20 ----D---- C:\ProgramData\NVIDIA
2010-04-05 20:22:05 ----SHD---- C:\Windows\Installer
2010-04-05 20:20:56 ----A---- C:\Windows\sttray64.exe
2010-04-05 20:17:49 ----D---- C:\Windows\Prefetch
2010-04-05 19:32:39 ----D---- C:\Win7
2010-04-05 19:16:28 ----D---- C:\Windows\Panther
2010-04-05 19:03:08 ----D---- C:\$WINDOWS.~Q
2010-04-02 09:28:04 ----D---- C:\Program Files (x86)\CCleaner
2010-04-02 09:26:41 ----D---- C:\Program Files (x86)\ESET
2010-03-25 14:27:53 ----A---- C:\Windows\system32\rmoc3260.dll
2010-03-25 14:27:53 ----A---- C:\Windows\system32\pndx5032.dll
2010-03-25 14:27:53 ----A---- C:\Windows\system32\pndx5016.dll
2010-03-25 14:27:53 ----A---- C:\Windows\system32\pncrt.dll
2010-03-25 14:27:40 ----A---- C:\Windows\system32\x264vfw.dll
2010-03-25 14:27:40 ----A---- C:\Windows\system32\vp7vfw.dll
2010-03-25 14:27:40 ----A---- C:\Windows\system32\vp6vfw.dll
2010-03-25 14:27:40 ----A---- C:\Windows\system32\huffyuv.dll
2010-03-25 14:27:39 ----A---- C:\Windows\system32\qt-dx331.dll
2010-03-25 14:27:39 ----A---- C:\Windows\system32\dpl100.dll
2010-03-25 14:27:30 ----A---- C:\Windows\system32\divx.dll
2010-03-25 14:27:25 ----A---- C:\Windows\system32\pthreadGC2.dll
2010-03-25 14:27:22 ----D---- C:\Users\Red\AppData\Roaming\Real
2010-03-25 14:27:22 ----D---- C:\ProgramData\Real
2010-03-25 14:26:03 ----D---- C:\Program Files (x86)\Haali
2010-03-25 14:25:55 ----D---- C:\Program Files (x86)\CoreCodec
2010-03-25 13:16:54 ----A---- C:\Windows\system32\XAudio2_6.dll
2010-03-25 13:16:54 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2010-03-25 13:16:52 ----A---- C:\Windows\system32\xactengine3_6.dll
2010-03-25 13:16:51 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2010-03-23 14:39:03 ----D---- C:\Program Files (x86)\Common Files\Macrovision Shared
2010-03-18 13:58:58 ----D---- C:\Program Files (x86)\Technitium
2010-03-17 10:50:22 ----D---- C:\ProgramData\Macrovision
2010-03-17 10:50:19 ----D---- C:\Program Files (x86)\Common Files\Adobe Systems Shared
======List of files/folders modified in the last 1 months======
2010-04-15 12:19:29 ----D---- C:\Windows\Temp
2010-04-15 12:19:28 ----D---- C:\Users\Red\AppData\Roaming\uTorrent
2010-04-15 12:19:00 ----RD---- C:\Program Files (x86)
2010-04-15 12:10:35 ----D---- C:\Windows\System32
2010-04-15 12:10:35 ----D---- C:\Windows\inf
2010-04-15 12:06:23 ----D---- C:\Users\Red\AppData\Roaming\DMCache
2010-04-15 03:19:02 ----RD---- C:\Bittorrent
2010-04-15 03:19:02 ----HD---- C:\Animes
2010-04-15 01:37:57 ----D---- C:\Windows\winsxs
2010-04-15 01:36:40 ----D---- C:\Windows\SysWOW64
2010-04-15 00:39:07 ----D---- C:\Users\Red\AppData\Roaming\vlc
2010-04-14 22:31:09 ----D---- C:\ProgramData\Microsoft Help
2010-04-14 22:29:00 ----D---- C:\Windows\debug
2010-04-12 14:52:39 ----D---- C:\Program Files (x86)\Runic Games
2010-04-12 14:52:01 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2010-04-12 14:46:04 ----D---- C:\Windows\system32\drivers
2010-04-12 14:45:21 ----RD---- C:\Program Files
2010-04-12 14:17:39 ----HD---- C:\ProgramData
2010-04-12 14:14:05 ----D---- C:\Windows\Tasks
2010-04-12 14:14:05 ----D---- C:\Program Files (x86)\Common Files
2010-04-07 03:15:51 ----D---- C:\Program Files (x86)\Internet Explorer
2010-04-07 03:15:49 ----D---- C:\Windows\AppPatch
2010-04-07 03:07:18 ----D---- C:\Windows\Microsoft.NET
2010-04-07 03:06:45 ----RSD---- C:\Windows\assembly
2010-04-07 03:00:25 ----D---- C:\Windows\ehome
2010-04-06 03:49:15 ----D---- C:\Windows\rescache
2010-04-06 01:08:45 ----D---- C:\Movies
2010-04-05 23:09:35 ----D---- C:\Users\Red\AppData\Roaming\Adobe
2010-04-05 21:49:11 ----D---- C:\Program Files (x86)\Windows Media Player
2010-04-05 21:49:10 ----D---- C:\Windows
2010-04-05 21:49:09 ----D---- C:\Windows\system32\fr-FR
2010-04-05 21:09:51 ----SHD---- C:\Recovery
2010-04-05 21:04:47 ----D---- C:\Windows\SoftwareDistribution
2010-04-05 20:58:11 ----D---- C:\Windows\Registration
2010-04-05 20:52:13 ----RD---- C:\Users
2010-04-05 20:48:30 ----D---- C:\Users\Red\AppData\Roaming\WinRAR
2010-04-05 20:48:28 ----RHD---- C:\Users\Red\AppData\Roaming\SecuROM
2010-04-05 20:48:28 ----D---- C:\Users\Red\AppData\Roaming\SystemRequirementsLab
2010-04-05 20:48:27 ----D---- C:\Users\Red\AppData\Roaming\runic games
2010-04-05 20:48:27 ----D---- C:\Users\Red\AppData\Roaming\Notepad++
2010-04-05 20:48:26 ----D---- C:\Users\Red\AppData\Roaming\Mozilla
2010-04-05 20:48:20 ----D---- C:\Users\Red\AppData\Roaming\Media Player Classic
2010-04-05 20:48:19 ----D---- C:\Users\Red\AppData\Roaming\Macromedia
2010-04-05 20:48:19 ----D---- C:\Users\Red\AppData\Roaming\InstallShield
2010-04-05 20:48:19 ----D---- C:\Users\Red\AppData\Roaming\IDM
2010-04-05 20:48:09 ----D---- C:\Users\Red\AppData\Roaming\Identities
2010-04-05 20:48:09 ----D---- C:\Users\Red\AppData\Roaming\hpqLog
2010-04-05 20:48:09 ----D---- C:\Users\Red\AppData\Roaming\dvdcss
2010-04-05 20:48:08 ----D---- C:\Users\Red\AppData\Roaming\DAEMON Tools Lite
2010-04-05 20:48:08 ----D---- C:\Users\Red\AppData\Roaming\Bioshock
2010-04-05 20:48:08 ----D---- C:\Users\Red\AppData\Roaming\Apple Computer
2010-04-05 20:39:14 ----D---- C:\Windows\system32\xlive
2010-04-05 20:39:12 ----D---- C:\Windows\system32\spool
2010-04-05 20:39:12 ----D---- C:\Windows\system32\Macromed
2010-04-05 20:39:08 ----D---- C:\Windows\system32\AGEIA
2010-04-05 20:38:38 ----D---- C:\Windows\ShellNew
2010-04-05 20:38:36 ----D---- C:\Windows\pss
2010-04-05 20:38:14 ----D---- C:\Windows\Logs
2010-04-05 20:37:55 ----RSD---- C:\Windows\Fonts
2010-04-05 20:37:36 ----D---- C:\Windows\Downloaded Program Files
2010-04-05 20:37:35 ----D---- C:\Windows\1C4551A64743409391E41477CD655043.TMP
2010-04-05 20:37:29 ----SD---- C:\ProgramData\Microsoft
2010-04-05 20:37:29 ----D---- C:\ProgramData\Sun
2010-04-05 20:37:29 ----D---- C:\ProgramData\{0DD0EEEE-2A7C-411C-9243-1AE62F445FC3}
2010-04-05 20:37:13 ----D---- C:\ProgramData\Messenger Plus!
2010-04-05 20:37:13 ----D---- C:\ProgramData\McAfee
2010-04-05 20:37:13 ----D---- C:\ProgramData\FLEXnet
2010-04-05 20:37:11 ----D---- C:\ProgramData\ESET
2010-04-05 20:37:11 ----D---- C:\ProgramData\DAEMON Tools Lite
2010-04-05 20:37:11 ----D---- C:\ProgramData\Apple Computer
2010-04-05 20:37:11 ----D---- C:\ProgramData\Apple
2010-04-05 20:37:11 ----D---- C:\ProgramData\Adobe
2010-04-05 20:37:11 ----D---- C:\Program Files (x86)\WinRAR
2010-04-05 20:37:09 ----D---- C:\Program Files (x86)\Windows Live SkyDrive
2010-04-05 20:37:09 ----D---- C:\Program Files (x86)\Windows Live Safety Center
2010-04-05 20:37:09 ----D---- C:\Program Files (x86)\Windows Live
2010-04-05 20:37:04 ----D---- C:\Program Files (x86)\VideoLAN
2010-04-05 20:37:04 ----D---- C:\Program Files (x86)\uTorrent
2010-04-05 20:37:04 ----D---- C:\Program Files (x86)\THQ
2010-04-05 20:37:02 ----D---- C:\Program Files (x86)\SystemRequirementsLab
2010-04-05 20:36:59 ----D---- C:\Program Files (x86)\RivaTuner v2.24 MSI Master Overclocking Arena 2009 edition
2010-04-05 20:36:48 ----D---- C:\Program Files (x86)\QuickTime
2010-04-05 20:36:42 ----D---- C:\Program Files (x86)\Notepad++
2010-04-05 20:36:40 ----D---- C:\Program Files (x86)\NCSoft
2010-04-05 20:36:20 ----D---- C:\Program Files (x86)\MSBuild
2010-04-05 20:36:20 ----D---- C:\Program Files (x86)\Mozilla Firefox
2010-04-05 20:36:18 ----D---- C:\Program Files (x86)\Microsoft.NET
2010-04-05 20:36:18 ----D---- C:\Program Files (x86)\Microsoft Works
2010-04-05 20:36:18 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 8
2010-04-05 20:36:17 ----D---- C:\Program Files (x86)\Microsoft Visual Studio
2010-04-05 20:36:16 ----D---- C:\Program Files (x86)\Microsoft Office
2010-04-05 20:35:42 ----D---- C:\Program Files (x86)\Microsoft Games for Windows - LIVE
2010-04-05 20:35:41 ----D---- C:\Program Files (x86)\Microsoft
2010-04-05 20:35:41 ----D---- C:\Program Files (x86)\Messenger Plus! Live
2010-04-05 20:35:40 ----D---- C:\Program Files (x86)\K-Lite Codec Pack
2010-04-05 20:35:33 ----D---- C:\Program Files (x86)\Java
2010-04-05 20:35:33 ----D---- C:\Program Files (x86)\iTunes
2010-04-05 20:35:13 ----D---- C:\Program Files (x86)\iPod
2010-04-05 20:35:13 ----D---- C:\Program Files (x86)\Internet Download Manager
2010-04-05 20:35:11 ----D---- C:\Program Files (x86)\Hewlett-Packard
2010-04-05 20:35:09 ----D---- C:\Program Files (x86)\Deskshare
2010-04-05 20:35:08 ----D---- C:\Program Files (x86)\DAEMON Tools Toolbar
2010-04-05 20:35:08 ----D---- C:\Program Files (x86)\DAEMON Tools Lite
2010-04-05 20:35:07 ----D---- C:\Program Files (x86)\Common Files\Wise Installation Wizard
2010-04-05 20:35:07 ----D---- C:\Program Files (x86)\Common Files\Windows Live
2010-04-05 20:35:06 ----D---- C:\Program Files (x86)\Common Files\System
2010-04-05 20:35:05 ----D---- C:\Program Files (x86)\Common Files\microsoft shared
2010-04-05 20:34:58 ----D---- C:\Program Files (x86)\Common Files\Java
2010-04-05 20:34:58 ----D---- C:\Program Files (x86)\Common Files\InstallShield
2010-04-05 20:34:58 ----D---- C:\Program Files (x86)\Common Files\Futuremark Shared
2010-04-05 20:34:58 ----D---- C:\Program Files (x86)\Common Files\DESIGNER
2010-04-05 20:34:47 ----D---- C:\Program Files (x86)\Common Files\Apple
2010-04-05 20:34:45 ----D---- C:\Program Files (x86)\Common Files\Adobe AIR
2010-04-05 20:34:44 ----D---- C:\Program Files (x86)\Common Files\Adobe
2010-04-05 20:32:50 ----D---- C:\Program Files (x86)\Cheat Engine
2010-04-05 20:32:19 ----D---- C:\Program Files (x86)\CAPCOM
2010-04-05 20:32:19 ----D---- C:\Program Files (x86)\Bonjour
2010-04-05 20:32:19 ----D---- C:\Program Files (x86)\Axis Communications
2010-04-05 20:32:19 ----D---- C:\Program Files (x86)\Apple Software Update
2010-04-05 20:32:18 ----D---- C:\Program Files (x86)\AGEIA Technologies
2010-04-05 20:32:16 ----D---- C:\Program Files (x86)\Adobe
2010-04-05 20:31:10 ----D---- C:\Program Files (x86)\ACDSee32
2010-04-05 20:22:14 ----D---- C:\Windows\Help
2010-04-05 20:18:38 ----D---- C:\Windows\CSC
2010-04-05 19:16:14 ----RASH---- C:\BOOTSECT.BAK
2010-04-05 19:16:11 ----SHD---- C:\Boot
2010-04-05 19:00:59 ----D---- C:\Appz
2010-04-01 22:38:31 ----HD---- C:\pix
2010-04-01 22:38:25 ----HD---- C:\girls
2010-03-31 15:06:49 ----SHD---- C:\System Volume Information
2010-03-30 03:40:47 ----HD---- C:\bureau
2010-03-25 13:16:34 ----HD---- C:\Windows\msdownld.tmp
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys []
R1 discache;@%systemroot%\system32\drivers\discache.sys,-102; C:\Windows\System32\drivers\discache.sys []
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys []
R1 RDPREFMP;@%systemroot%\system32\drivers\RdpRefMp.sys,-101; C:\Windows\system32\drivers\rdprefmp.sys []
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys []
R1 WfpLwf;WFP Lightweight Filter; C:\Windows\system32\DRIVERS\wfplwf.sys []
R2 adfs;adfs; C:\Windows\system32\drivers\adfs.sys []
R2 atksgt;atksgt; C:\Windows\system32\DRIVERS\atksgt.sys []
R2 eamon;eamon; C:\Windows\system32\DRIVERS\eamon.sys []
R2 epfwwfpr;epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys []
R2 lirsgt;lirsgt; C:\Windows\system32\DRIVERS\lirsgt.sys []
R3 1394ohci;Contrôleur d’hôte compatible OHCI 1394; C:\Windows\system32\DRIVERS\1394ohci.sys []
R3 AgereSoftModem;Agere Systems Soft Modem; C:\Windows\system32\DRIVERS\agrsm64.sys []
R3 BCM43XX;Pilote de la carte réseau Broadcom 802.11; C:\Windows\system32\DRIVERS\bcmwl664.sys []
R3 CmBatt;Pilote pour Batterie à méthode de contrôle ACPI Microsoft; C:\Windows\system32\DRIVERS\CmBatt.sys []
R3 CompositeBus;Pilote de l’énumérateur de bus composite; C:\Windows\system32\DRIVERS\CompositeBus.sys []
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys []
R3 HpqKbFiltr;HpqKbFilter Driver; C:\Windows\system32\DRIVERS\HpqKbFiltr.sys []
R3 ksthunk;Kernel Streaming Thunks; C:\Windows\system32\drivers\ksthunk.sys []
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys []
R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys []
R3 RasAgileVpn;WAN Miniport (IKEv2); C:\Windows\system32\DRIVERS\AgileVpn.sys []
R3 rdpbus;Remote Desktop Device Redirector Bus Driver; C:\Windows\system32\DRIVERS\rdpbus.sys []
R3 RTL8167;Pilote Realtek 8167 NT; C:\Windows\system32\DRIVERS\Rt64win7.sys []
R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys []
R3 STHDA;IDT High Definition Audio CODEC; C:\Windows\system32\DRIVERS\stwrt64.sys []
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys []
R3 usbvideo;Périphérique vidéo USB (WDM); C:\Windows\System32\Drivers\usbvideo.sys []
R3 vwifibus;Pilote de bus WiFi virtuel; C:\Windows\system32\DRIVERS\vwifibus.sys []
R3 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\DRIVERS\wmiacpi.sys []
R3 WudfPf;User Mode Driver Frameworks Platform Driver; C:\Windows\system32\drivers\WudfPf.sys []
S3 AcpiPmi;ACPI Power Meter Driver; C:\Windows\system32\DRIVERS\acpipmi.sys []
S3 AmdPPM;AMD Processor Driver; C:\Windows\system32\DRIVERS\amdppm.sys []
S3 amdsata;amdsata; C:\Windows\system32\DRIVERS\amdsata.sys []
S3 amdsbs;amdsbs; C:\Windows\system32\DRIVERS\amdsbs.sys []
S3 AppID;@%systemroot%\system32\appidsvc.dll,-102; C:\Windows\system32\drivers\appid.sys []
S3 b06bdrv;Broadcom NetXtreme II VBD; C:\Windows\system32\DRIVERS\bxvbda.sys []
S3 b57nd60a;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60a.sys []
S3 drmkaud;Pilotes audio approuvés par Microsoft; C:\Windows\system32\drivers\drmkaud.sys []
S3 ebdrv;Broadcom NetXtreme II 10 GigE VBD; C:\Windows\system32\DRIVERS\evbda.sys []
S3 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\DRIVERS\errdev.sys []
S3 FsDepends;@%SystemRoot%\system32\drivers\fsdepends.sys,-10001; C:\Windows\System32\drivers\FsDepends.sys []
S3 hcw85cir;Hauppauge Consumer Infrared Receiver; C:\Windows\system32\drivers\hcw85cir.sys []
S3 HidBatt;HID UPS Battery Driver; C:\Windows\system32\DRIVERS\HidBatt.sys []
S3 HpSAMD;HpSAMD; C:\Windows\system32\DRIVERS\HpSAMD.sys []
S3 LSI_SAS2;LSI_SAS2; C:\Windows\system32\DRIVERS\lsi_sas2.sys []
S3 MegaSR;MegaSR; C:\Windows\system32\DRIVERS\MegaSR.sys []
S3 mshidkmdf;@%SystemRoot%\system32\drivers\mshidkmdf.sys,-100; C:\Windows\System32\drivers\mshidkmdf.sys []
S3 MSKSSRV;Proxy de service de répartition Microsoft; C:\Windows\system32\drivers\MSKSSRV.sys []
S3 MSPCLOCK;Proxy d'horloge de répartition Microsoft; C:\Windows\system32\drivers\MSPCLOCK.sys []
S3 MSPQM;Proxy de gestion de qualité de répartition Microsoft; C:\Windows\system32\drivers\MSPQM.sys []
S3 MSTEE;Convertisseur en T/site-à-site de répartition Microsoft; C:\Windows\system32\drivers\MSTEE.sys []
S3 MTConfig;Microsoft Input Configuration Driver; C:\Windows\system32\DRIVERS\MTConfig.sys []
S3 NdisCap;NDIS Capture LightWeight Filter; C:\Windows\system32\DRIVERS\ndiscap.sys []
S3 RivaTuner64;RivaTuner64; \??\C:\Program Files (x86)\RivaTuner v2.24 MSI Master Overclocking Arena 2009 edition\RivaTuner64.sys [2010-02-22 19952]
S3 s3cap;s3cap; C:\Windows\system32\DRIVERS\vms3cap.sys []
S3 scfilter;@%SystemRoot%\System32\drivers\scfilter.sys,-11; C:\Windows\System32\DRIVERS\scfilter.sys []
S3 stexstor;stexstor; C:\Windows\system32\DRIVERS\stexstor.sys []
S3 storvsc;storvsc; C:\Windows\system32\DRIVERS\storvsc.sys []
S3 UmPass;Microsoft UMPass Driver; C:\Windows\system32\DRIVERS\umpass.sys []
S3 vhdmp;vhdmp; C:\Windows\system32\DRIVERS\vhdmp.sys []
S3 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\DRIVERS\vmbus.sys []
S3 VMBusHID;VMBusHID; C:\Windows\system32\DRIVERS\VMBusHID.sys []
S3 WIMMount;WIMMount; C:\Windows\system32\drivers\wimmount.sys [2009-07-14 19008]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AESTFilters;Andrea ST Filters Service; C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_ccf0dd3cb081af84\AESTSr64.exe [2009-03-01 89600]
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [2009-08-28 144672]
R2 Bonjour Service;Service Bonjour; C:\Program Files (x86)\Bonjour\mDNSResponder.exe [2008-12-12 238888]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [2009-11-16 735960]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe []
R2 Power;@%SystemRoot%\system32\umpo.dll,-100; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 RpcEptMapper;@%windir%\system32\RpcEpMap.dll,-1001; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 STacSV;Audio Service; C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_ccf0dd3cb081af84\STacSV64.exe [2009-07-21 240128]
S2 sppsvc;@%SystemRoot%\system32\sppsvc.exe,-101; C:\Windows\system32\sppsvc.exe []
S3 Adobe LM Service;Adobe LM Service; C:\Program Files (x86)\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [2010-03-17 68096]
S3 AppIDSvc;@%systemroot%\system32\appidsvc.dll,-100; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 AxInstSV;@%SystemRoot%\system32\AxInstSV.dll,-103; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 BDESVC;@%SystemRoot%\system32\bdesvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 bthserv;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 clr_optimization_v2.0.50727_64;Microsoft .NET Framework NGEN v2.0.50727_X64; C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe [2009-06-10 89920]
S3 Com4QLBEx;Com4QLBEx; C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [2009-05-05 228408]
S3 defragsvc;@%SystemRoot%\system32\defragsvc.dll,-101; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 EFS;@%SystemRoot%\system32\efssvc.dll,-100; C:\Windows\System32\lsass.exe []
S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe [2009-11-16 23296]
S3 Fax;@%systemroot%\system32\fxsresm.dll,-118; C:\Windows\system32\fxssvc.exe []
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2010-03-23 654848]
S3 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 HomeGroupListener;@%SystemRoot%\System32\ListSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 HomeGroupProvider;@%SystemRoot%\System32\provsvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 hpqwmiex;hpqwmiex; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe [2009-04-30 229944]
S3 iPod Service;Service de l’iPod; C:\Program Files (x86)\iPod\bin\iPodService.exe [2010-02-15 660256]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2008-10-25 65888]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 PerfHost;@%systemroot%\sysWow64\perfhost.exe,-2; C:\Windows\SysWow64\perfhost.exe [2009-07-14 20992]
S3 SensrSvc;@%SystemRoot%\System32\sensrsvc.dll,-1000; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 sppuinotify;@%SystemRoot%\system32\sppuinotify.dll,-103; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 VaultSvc;@%SystemRoot%\system32\vaultsvc.dll,-1003; C:\Windows\system32\lsass.exe []
S3 wbengine;@%systemroot%\system32\wbengine.exe,-104; C:\Windows\system32\wbengine.exe []
S3 WbioSrvc;@%systemroot%\system32\wbiosrvc.dll,-100; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 WwanSvc;@%SystemRoot%\System32\wwansvc.dll,-257; C:\Windows\system32\svchost.exe [2009-07-14 20992]
-----------------EOF-----------------