Bonjour voici le premier
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:16:53, on 03/04/2009
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\ASUS\ATK Media\DMedia.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Windows\System32\ASUSTPE.exe
C:\Windows\ASScrPro.exe
C:\Program Files\Alwil Software\Avast4\ashDisp.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\VistaOSX09\RKLauncher.exe
C:\Users\Chihiro\AppData\Roaming\Microsoft\Notification de cadeaux MSN\lsnfier.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\ASUS\ASUS Live Update\ALU.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\Windows\System32\mobsync.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Windows\system32\conime.exe
C:\Windows\system32\Macromed\Flash\FlashUtil10a.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Chihiro\Downloads\RSIT.exe
C:\Program Files\trend micro\Chihiro.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.google.be/intl/fr/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.asus.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O1 - Hosts: ::1 localhost
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll
O3 - Toolbar: (no name) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - (no file)
O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [ATKMEDIA] C:\Program Files\ASUS\ATK Media\DMEDIA.EXE
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [ASUSTPE] C:\Windows\system32\ASUSTPE.exe
O4 - HKLM\..\Run: [ASUS Camera ScreenSaver] C:\Windows\ASScrProlog.exe
O4 - HKLM\..\Run: [ASUS Screen Saver Protector] C:\Windows\ASScrPro.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKCU\..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
O4 - Startup: Dock.lnk = C:\VistaOSX09\RKLauncher.exe
O4 - Startup: Notification de cadeaux MSN.lnk = C:\Users\Chihiro\AppData\Roaming\Microsoft\Notification de cadeaux MSN\lsnfier.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\PROGRA~1\Java\JRE16~1.0_0\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\PROGRA~1\Java\JRE16~1.0_0\bin\ssv.dll
O13 - Gopher Prefix:
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: ASLDR Service (ASLDRService) - Unknown owner - C:\Program Files\ATK Hotkey\ASLDRSrv.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Google Update Service (gupdate1c987e068f65513) (gupdate1c987e068f65513) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Service de l’iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: spmgr - Unknown owner - C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe
--
End of file - 7044 bytes
======Scheduled tasks folder======
C:\Windows\tasks\Google Software Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachine.job
C:\Windows\tasks\Maintenance en 1 clic.job
C:\Windows\tasks\User_Feed_Synchronization-{68044FB5-DD98-4D4A-A42A-D7BD0EEC3592}.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4EFB-9B51-7695ECA05670}]
Yahoo! Toolbar Helper - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll [2006-11-29 436288]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Aide pour le lien d'Adobe PDF Reader - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-23 62080]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
SSVHelper Class - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll [2008-06-10 509328]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Programme d'aide de l'Assistant de connexion Windows Live - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-02-17 408440]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll [2009-03-23 668656]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA}
{EF99BD32-C1FB-11D2-892F-0090271D4F88} - Yahoo! Toolbar avec bloqueur de fenêtres pop-up - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll [2006-11-29 436288]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-21 1008184]
"RtHDVCpl"=C:\Windows\RtHDVCpl.exe [2007-02-15 4390912]
"ATKMEDIA"=C:\Program Files\ASUS\ATK Media\DMEDIA.EXE [2006-11-02 61440]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2006-11-23 815104]
"ASUSTPE"=C:\Windows\system32\ASUSTPE.exe [2006-12-13 106496]
"ASUS Camera ScreenSaver"=C:\Windows\ASScrProlog.exe [2008-07-19 37232]
"ASUS Screen Saver Protector"=C:\Windows\ASScrPro.exe [2008-07-19 33136]
"avast!"=C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe [2009-02-05 81000]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [2008-10-15 39792]
"QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2009-01-05 413696]
"iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2009-03-12 342312]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
""= []
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2006-11-10 90112]
"msnmsgr"=C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe [2009-02-06 3885408]
C:\Users\Chihiro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Dock.lnk - C:\VistaOSX09\RKLauncher.exe
Notification de cadeaux MSN.lnk - C:\Users\Chihiro\AppData\Roaming\Microsoft\Notification de cadeaux MSN\lsnfier.exe
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{852cd7ea-e21e-11dd-bf8b-0022152b092c}]
shell\AutoRun\command - D:\CarryItEasy.exe /AUTORUN
shell\configure\command - D:\CarryItEasy.exe
shell\install\command - D:\CarryItEasy.exe
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 months======
2009-04-03 11:16:28 ----D---- C:\Program Files\trend micro
2009-04-03 11:16:27 ----DC---- C:\rsit
2009-04-03 04:38:23 ----AC---- C:\Debug.txt
2009-03-30 03:18:18 ----HD---- C:\Windows\msdownld.tmp
2009-03-30 03:14:55 ----A---- C:\Windows\system32\mshtmled.dll
2009-03-30 03:14:55 ----A---- C:\Windows\system32\icardie.dll
2009-03-30 03:14:54 ----A---- C:\Windows\system32\mshtmler.dll
2009-03-30 03:14:54 ----A---- C:\Windows\system32\jsproxy.dll
2009-03-30 03:14:54 ----A---- C:\Windows\system32\ieui.dll
2009-03-30 03:14:54 ----A---- C:\Windows\system32\admparse.dll
2009-03-30 03:14:53 ----A---- C:\Windows\system32\msls31.dll
2009-03-30 03:14:53 ----A---- C:\Windows\system32\imgutil.dll
2009-03-30 03:14:53 ----A---- C:\Windows\system32\iernonce.dll
2009-03-30 03:14:53 ----A---- C:\Windows\system32\ieakeng.dll
2009-03-30 03:14:53 ----A---- C:\Windows\system32\corpol.dll
2009-03-30 03:14:52 ----A---- C:\Windows\system32\dxtrans.dll
2009-03-30 03:14:52 ----A---- C:\Windows\system32\dxtmsft.dll
2009-03-30 03:14:51 ----A---- C:\Windows\system32\occache.dll
2009-03-30 03:14:51 ----A---- C:\Windows\system32\msfeedsbs.dll
2009-03-30 03:14:51 ----A---- C:\Windows\system32\licmgr10.dll
2009-03-30 03:14:51 ----A---- C:\Windows\system32\inseng.dll
2009-03-30 03:14:51 ----A---- C:\Windows\system32\iepeers.dll
2009-03-30 03:14:50 ----A---- C:\Windows\system32\ieaksie.dll
2009-03-30 03:14:49 ----A---- C:\Windows\system32\wextract.exe
2009-03-30 03:14:49 ----A---- C:\Windows\system32\webcheck.dll
2009-03-30 03:14:49 ----A---- C:\Windows\system32\msrating.dll
2009-03-30 03:14:49 ----A---- C:\Windows\system32\iesetup.dll
2009-03-30 03:14:49 ----A---- C:\Windows\system32\ieakui.dll
2009-03-30 03:14:48 ----A---- C:\Windows\system32\WinFXDocObj.exe
2009-03-30 03:14:48 ----A---- C:\Windows\system32\mstime.dll
2009-03-30 03:14:48 ----A---- C:\Windows\system32\msfeedssync.exe
2009-03-30 03:14:47 ----A---- C:\Windows\system32\pngfilt.dll
2009-03-30 03:14:47 ----A---- C:\Windows\system32\msfeeds.dll
2009-03-30 03:14:47 ----A---- C:\Windows\system32\advpack.dll
2009-03-30 03:14:46 ----A---- C:\Windows\system32\vbscript.dll
2009-03-30 03:14:46 ----A---- C:\Windows\system32\ieapfltr.dll
2009-03-30 03:14:45 ----A---- C:\Windows\system32\url.dll
2009-03-30 03:14:45 ----A---- C:\Windows\system32\jscript.dll
2009-03-30 03:14:45 ----A---- C:\Windows\system32\iedkcs32.dll
2009-03-30 03:14:42 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2009-03-30 03:14:42 ----A---- C:\Windows\system32\SetDepNx.exe
2009-03-30 03:14:42 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2009-03-30 03:14:42 ----A---- C:\Windows\system32\PDMSetup.exe
2009-03-30 03:14:42 ----A---- C:\Windows\system32\mshta.exe
2009-03-30 03:14:42 ----A---- C:\Windows\system32\iexpress.exe
2009-03-30 03:14:42 ----A---- C:\Windows\system32\ieUnatt.exe
2009-03-30 03:14:42 ----A---- C:\Windows\system32\iesysprep.dll
2009-03-30 03:14:41 ----A---- C:\Windows\system32\iertutil.dll
2009-03-30 03:14:41 ----A---- C:\Windows\system32\ie4uinit.exe
2009-03-30 03:14:40 ----A---- C:\Windows\system32\wininet.dll
2009-03-30 03:14:39 ----A---- C:\Windows\system32\urlmon.dll
2009-03-30 03:14:36 ----A---- C:\Windows\system32\ieframe.dll
2009-03-30 03:14:35 ----A---- C:\Windows\system32\mshtml.dll
2009-03-30 03:13:18 ----D---- C:\Program Files\Microsoft Silverlight
2009-03-26 00:56:29 ----A---- C:\Windows\ntbtlog.txt
2009-03-23 22:45:41 ----A---- C:\Windows\system32\GEARAspi.dll
2009-03-23 22:45:05 ----D---- C:\Program Files\iPod
2009-03-23 22:44:57 ----D---- C:\ProgramData\{00D89592-F643-4D8D-8F0F-AFAE0F14D4C3}
2009-03-23 22:44:57 ----D---- C:\Program Files\iTunes
2009-03-23 22:43:00 ----D---- C:\Program Files\Bonjour
2009-03-23 22:41:22 ----D---- C:\Program Files\QuickTime
2009-03-18 21:22:53 ----D---- C:\Program Files\Microsoft
2009-03-17 18:33:07 ----A---- C:\Windows\system32\CmdLineExt.dll
2009-03-17 16:54:36 ----RA---- C:\Windows\system32\vp6vfw.dll
2009-03-14 05:32:25 ----AC---- C:\NIS2008.TXT
2009-03-11 09:34:05 ----A---- C:\Windows\system32\wmp.dll
2009-03-11 09:34:03 ----A---- C:\Windows\system32\spwmp.dll
2009-03-11 09:34:02 ----A---- C:\Windows\system32\dxmasf.dll
2009-03-11 09:34:01 ----A---- C:\Windows\system32\wmploc.DLL
2009-03-11 09:33:56 ----A---- C:\Windows\system32\schannel.dll
2009-03-06 04:06:27 ----D---- C:\Program Files\JRE
2009-03-06 00:59:00 ----A---- C:\Windows\system32\usbaaplrc.dll
======List of files/folders modified in the last 1 months======
2009-04-03 11:16:40 ----D---- C:\Windows\Prefetch
2009-04-03 11:16:32 ----D---- C:\Windows\Temp
2009-04-03 11:16:28 ----RD---- C:\Program Files
2009-04-03 09:58:19 ----SHD---- C:\System Volume Information
2009-04-03 09:32:54 ----D---- C:\Windows\System32
2009-04-03 09:32:54 ----A---- C:\Windows\system32\PerfStringBackup.INI
2009-04-03 09:32:53 ----D---- C:\Windows\inf
2009-04-03 09:30:46 ----D---- C:\Windows\Tasks
2009-04-03 07:26:10 ----DC---- C:\VistaOSX09
2009-04-03 07:13:14 ----SD---- C:\Users\Chihiro\AppData\Roaming\Microsoft
2009-04-03 07:13:13 ----SD---- C:\ProgramData\Microsoft
2009-04-03 05:29:59 ----A---- C:\Windows\system32\acovcnt.exe
2009-04-03 05:28:12 ----D---- C:\Windows\system32\catroot
2009-04-03 04:43:14 ----SHD---- C:\Windows\Installer
2009-04-03 04:43:12 ----D---- C:\Program Files\ASUS
2009-04-03 04:38:22 ----D---- C:\Windows\system32\drivers
2009-04-03 02:27:52 ----D---- C:\ProgramData\Google Updater
2009-04-02 19:44:28 ----D---- C:\Windows\system32\catroot2
2009-03-31 21:17:28 ----SD---- C:\Windows\Downloaded Program Files
2009-03-30 08:00:43 ----D---- C:\Windows\rescache
2009-03-30 03:35:22 ----D---- C:\Windows\system32\Tasks
2009-03-30 03:18:56 ----D---- C:\Windows\system32\fr-FR
2009-03-30 03:18:56 ----D---- C:\Program Files\Internet Explorer
2009-03-30 03:18:54 ----D---- C:\Windows\system32\migration
2009-03-30 03:18:54 ----D---- C:\Windows\system32\en-US
2009-03-30 03:18:54 ----D---- C:\Windows\PolicyDefinitions
2009-03-30 03:18:18 ----D---- C:\Windows
2009-03-30 03:17:58 ----D---- C:\Windows\winsxs
2009-03-28 12:50:31 ----D---- C:\Program Files\Mozilla Firefox
2009-03-26 08:05:48 ----D---- C:\Users\Chihiro\AppData\Roaming\LimeWire
2009-03-26 02:25:38 ----D---- C:\Windows\system32\LogFiles
2009-03-25 23:53:59 ----D---- C:\Windows\Debug
2009-03-23 22:45:41 ----DC---- C:\Windows\system32\DRVSTORE
2009-03-23 22:45:01 ----D---- C:\Program Files\Common Files\Apple
2009-03-23 22:44:57 ----HD---- C:\ProgramData
2009-03-18 21:23:38 ----D---- C:\Program Files\Windows Live
2009-03-13 22:18:45 ----D---- C:\Program Files\LimeWire
2009-03-12 06:13:19 ----D---- C:\Program Files\Windows Media Player
2009-03-12 06:13:19 ----D---- C:\Program Files\Windows Mail
2009-03-07 16:02:36 ----D---- C:\Windows\system32\WDI
2009-03-06 06:46:22 ----D---- C:\Users\Chihiro\AppData\Roaming\dvdcss
2009-03-06 04:10:13 ----RSD---- C:\Windows\assembly
2009-03-06 04:07:30 ----RSD---- C:\Windows\Fonts
2009-03-06 04:06:17 ----D---- C:\Program Files\OpenOffice.org 3
2009-03-06 04:01:03 ----D---- C:\Program Files\Common Files\microsoft shared
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2009-02-05 23152]
R1 aswSP;avast! Self Protection; C:\Windows\system32\drivers\aswSP.sys [2009-02-05 114768]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2009-02-05 51376]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\DRIVERS\aswFsBlk.sys [2009-02-05 20560]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\DRIVERS\aswMonFlt.sys [2009-02-05 51792]
R2 ghaio;ghaio; \??\C:\Program Files\ASUS\NB Probe\SPM\ghaio.sys [2007-08-03 20936]
R3 Atc002;NDIS Miniport Driver for Atheros L2 Fast Ethernet Controller; C:\Windows\system32\DRIVERS\l260x86.sys [2007-08-17 28672]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athr.sys [2007-07-31 743424]
R3 CmBatt;Microsoft ACPI Control Method Battery Driver; C:\Windows\system32\DRIVERS\CmBatt.sys [2008-01-21 14208]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\System32\Drivers\GEARAspiWDM.sys [2009-01-15 23848]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2007-02-14 1740904]
R3 MODEMCSA;Unimodem Streaming Filter Device; C:\Windows\system32\drivers\MODEMCSA.sys [2008-01-21 18432]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\Windows\system32\DRIVERS\ATKACPI.sys [2006-12-14 7680]
R3 R300;R300; C:\Windows\system32\DRIVERS\atikmdag.sys [2007-02-02 2385920]
R3 RTSTOR;USB Mass Storage Device; C:\Windows\system32\drivers\RTSTOR.SYS [2007-11-10 57856]
R3 smserial;smserial; C:\Windows\system32\DRIVERS\smserial.sys [2006-11-22 982272]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2007-10-01 1769984]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2006-11-23 181304]
R3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-21 83328]
S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2008-01-21 5632]
S3 HdAudAddService;Microsoft 1.1 UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]
S3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2007-01-24 5632]
S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-21 8192]
S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-21 5888]
S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-21 5504]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2008-01-21 6016]
S3 SymIM;Symantec Network Security Intermediate Filter Service; C:\Windows\system32\DRIVERS\SymIM.sys []
S3 SymIMMP;SymIMMP; C:\Windows\system32\DRIVERS\SymIM.sys []
S3 USBAAPL;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl.sys [2009-03-06 36864]
S3 usbvideo;USB Video Device (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2008-01-21 134016]
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2008-01-21 39936]
S3 yukonwlh;NDIS6.0 Miniport Driver for Marvell Yukon Ethernet Controller; C:\Windows\system32\DRIVERS\yk60x86.sys [2006-11-02 194048]
S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2008-01-21 6656]
S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-01-21 386616]
S4 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2008-01-21 88576]
S4 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\DRIVERS\wmiacpi.sys [2008-01-21 11264]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [2009-03-06 132424]
R2 ASLDRService;ASLDR Service; C:\Program Files\ATK Hotkey\ASLDRSrv.exe [2007-02-06 94208]
R2 aswUpdSv;avast! iAVS4 Control Service; C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe [2009-02-05 18752]
R2 Ati External Event Utility;Ati External Event Utility; C:\Windows\system32\Ati2evxx.exe [2007-02-02 565248]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast4\ashServ.exe [2009-02-05 138680]
R2 Bonjour Service;Service Bonjour; C:\Program Files\Bonjour\mDNSResponder.exe [2008-12-12 238888]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2008-03-18 73728]
R2 spmgr;spmgr; C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe [2007-08-03 125496]
R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe [2009-02-05 254040]
R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast4\ashWebSv.exe [2009-02-05 352920]
R3 iPod Service;Service de l’iPod; C:\Program Files\iPod\bin\iPodService.exe [2009-03-12 656168]
S2 gupdate1c987e068f65513;Google Update Service (gupdate1c987e068f65513); C:\Program Files\Google\Update\GoogleUpdate.exe [2009-02-06 133104]
S2 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-03-23 183280]