report.txt
SDFix: Version 1.185 Run by Francky on 27/05/2008 at 00:04
Microsoft Windows XP [version 5.1.2600]
Running From: C:\DOCUME~1\Francky\Bureau\sdfix\SDFix
Checking Services :
Restoring Windows Registry Values
Restoring Windows Default Hosts File
Rebooting
Checking Files :
Trojan Files Found:
C:\Documents and Settings\Francky\Application Data\addon.dat - Deleted
Removing Temp Files
ADS Check :
C:\WINDOWS
:services 1276
Total size: 1276 bytes.
WINDOWS: deleted 1276 bytes in 1 streams.
Checking for remaining Streams
C:\WINDOWS
No streams found.
Final Check :
catchme 0.3.1361.2 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.netRootkit scan 2008-05-27 00:26:35
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden services & system hive ...
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC]
"p0"="C:\Program Files\DAEMON Tools Pro\"
"h0"=dword:00000001
"hdf12"=hex:63,d4,42,27,e1,2a,fb,52,94,1c,8a,09,4b,db,cc,32,37,ab,52,01,5d,..
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001]
"a0"=hex:20,01,00,00,be,cb,50,68,8d,fe,d1,1b,2a,ee,18,6c,3e,0d,3a,8f,30,..
"hdf12"=hex:fe,08,fb,3c,d7,ab,ff,d0,00,ff,82,6a,96,da,2e,ae,73,e2,96,a2,fb,..
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0]
"hdf12"=hex:bb,e7,ad,96,db,85,60,53,50,e4,6a,3e,1d,3a,8f,ef,46,f5,73,4a,c3,..
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4]
"h0"=dword:00000000
"khjeh"=hex:5a,0c,ed,ec,9e,c4,bb,46,e5,1c,34,d6,e8,f3,6f,03,b5,3c,a4,e1,f4,..
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\HID\Vid_046d&Pid_c001\6&2620f9b3&0&0000]
"Capabilities"=dword:000000a0
"UINumber"=dword:00000000
"HardwareID"=str(7):"HID\Vid_046d&Pid_c001&Rev_2900\0HID\Vid_046d&Pid_c001\0HID_DEVICE_SYSTEM_MOUSE\0HID_DEVICE_UP:0001_U:0002\0HID_DEVICE\0"
"CompatibleIDs"=str(7):"\0"
"ClassGUID"="{4D36E96F-E325-11CE-BFC1-08002BE10318}"
"Class"="Mouse"
"Driver"="{4D36E96F-E325-11CE-BFC1-08002BE10318}\0001"
"Mfg"="Logitech"
"Service"="mouhid"
"DeviceDesc"="Logitech USB First/Pilot Mouse+"
"ConfigFlags"=dword:00000020
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\HID\Vid_046d&Pid_c001\6&2620f9b3&0&0000\Device Parameters]
"Migrated"=dword:00000001
"FlipFlopWheel"=dword:00000000
"ForceAbsolute"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\HID\Vid_046d&Pid_c001\6&2620f9b3&0&0000\LogConf]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\HID\WACVIRTUALHID&Col03\1&10a8b2d&0&0002]
"Capabilities"=dword:000000a0
"HardwareID"=str(7):"HID\WACVIRTUALHID&Col03\0HID_DEVICE_SYSTEM_MOUSE\0HID_DEVICE_UP:0001_U:0001\0HID_DEVICE\0"
"CompatibleIDs"=str(7):"\0"
"ClassGUID"="{4D36E96F-E325-11CE-BFC1-08002BE10318}"
"Service"="mouhid"
"ConfigFlags"=dword:00000020
"Driver"="{4D36E96F-E325-11CE-BFC1-08002BE10318}\0015"
"Class"="Mouse"
"Mfg"="Wacom Technology"
"DeviceDesc"="Wacom Mouse"
"UpperFilters"=str(7):"wacommousefilter\0"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\HID\WACVIRTUALHID&Col03\1&10a8b2d&0&0002\Device Parameters]
"Migrated"=dword:00000001
"FlipFlopWheel"=dword:00000000
"ForceAbsolute"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\HID\WACVIRTUALHID&Col03\1&10a8b2d&0&0002\LogConf]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\HID\WACVIRTUALHID&Col03\1&1731f3ea&0&0002]
"Capabilities"=dword:000000a0
"HardwareID"=str(7):"HID\WACVIRTUALHID&Col03\0HID_DEVICE_SYSTEM_MOUSE\0HID_DEVICE_UP:0001_U:0001\0HID_DEVICE\0"
"CompatibleIDs"=str(7):"\0"
"ClassGUID"="{4D36E96F-E325-11CE-BFC1-08002BE10318}"
"Service"="mouhid"
"ConfigFlags"=dword:00000020
"Driver"="{4D36E96F-E325-11CE-BFC1-08002BE10318}\0010"
"UpperFilters"=str(7):"wacommousefilter\0"
"Class"="Mouse"
"Mfg"="Wacom Technology"
"DeviceDesc"="Wacom Mouse"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\HID\WACVIRTUALHID&Col03\1&1731f3ea&0&0002\Device Parameters]
"Migrated"=dword:00000001
"FlipFlopWheel"=dword:00000000
"ForceAbsolute"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\HID\WACVIRTUALHID&Col03\1&1731f3ea&0&0002\LogConf]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\HID\WACVIRTUALHID&Col03\1&1731f3ea&1&0002]
"Capabilities"=dword:000000a0
"HardwareID"=str(7):"HID\WACVIRTUALHID&Col03\0HID_DEVICE_SYSTEM_MOUSE\0HID_DEVICE_UP:0001_U:0001\0HID_DEVICE\0"
"CompatibleIDs"=str(7):"\0"
"ClassGUID"="{4D36E96F-E325-11CE-BFC1-08002BE10318}"
"Service"="mouhid"
"ConfigFlags"=dword:00000020
"Driver"="{4D36E96F-E325-11CE-BFC1-08002BE10318}\0013"
"Class"="Mouse"
"Mfg"="Wacom Technology"
"DeviceDesc"="Wacom Mouse"
"UpperFilters"=str(7):"wacommousefilter\0"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\HID\WACVIRTUALHID&Col03\1&1731f3ea&1&0002\Device Parameters]
"Migrated"=dword:00000001
"FlipFlopWheel"=dword:00000000
"ForceAbsolute"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\HID\WACVIRTUALHID&Col03\1&1731f3ea&1&0002\LogConf]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\HID\WACVIRTUALHID&Col03\1&29eba48f&0&0002]
"Capabilities"=dword:000000a0
"HardwareID"=str(7):"HID\WACVIRTUALHID&Col03\0HID_DEVICE_SYSTEM_MOUSE\0HID_DEVICE_UP:0001_U:0001\0HID_DEVICE\0"
"CompatibleIDs"=str(7):"\0"
"ClassGUID"="{4D36E96F-E325-11CE-BFC1-08002BE10318}"
"Service"="mouhid"
"ConfigFlags"=dword:00000020
"Driver"="{4D36E96F-E325-11CE-BFC1-08002BE10318}\0014"
"Class"="Mouse"
"Mfg"="Wacom Technology"
"DeviceDesc"="Wacom Mouse"
"UpperFilters"=str(7):"wacommousefilter\0"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\HID\WACVIRTUALHID&Col03\1&29eba48f&0&0002\Device Parameters]
"Migrated"=dword:00000001
"FlipFlopWheel"=dword:00000000
"ForceAbsolute"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\HID\WACVIRTUALHID&Col03\1&29eba48f&0&0002\LogConf]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\HID\WACVIRTUALHID&Col03\1&2d595ca7&0&0002]
"Capabilities"=dword:000000a0
"HardwareID"=str(7):"HID\WACVIRTUALHID&Col03\0HID_DEVICE_SYSTEM_MOUSE\0HID_DEVICE_UP:0001_U:0001\0HID_DEVICE\0"
"CompatibleIDs"=str(7):"\0"
"ClassGUID"="{4D36E96F-E325-11CE-BFC1-08002BE10318}"
"Service"="mouhid"
"ConfigFlags"=dword:00000020
"Driver"="{4D36E96F-E325-11CE-BFC1-08002BE10318}\0006"
"Class"="Mouse"
"Mfg"="Wacom Technology"
"DeviceDesc"="Wacom Mouse"
"UpperFilters"=str(7):"wacommousefilter\0"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\HID\WACVIRTUALHID&Col03\1&2d595ca7&0&0002\Device Parameters]
"Migrated"=dword:00000001
"FlipFlopWheel"=dword:00000000
"ForceAbsolute"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\HID\WACVIRTUALHID&Col03\1&2d595ca7&0&0002\LogConf]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\HID\WACVIRTUALHID&Col03\1&2d595ca7&1&0002]
"Capabilities"=dword:000000a0
"HardwareID"=str(7):"HID\WACVIRTUALHID&Col03\0HID_DEVICE_SYSTEM_MOUSE\0HID_DEVICE_UP:0001_U:0001\0HID_DEVICE\0"
"CompatibleIDs"=str(7):"\0"
"ClassGUID"="{4D36E96F-E325-11CE-BFC1-08002BE10318}"
"Service"="mouhid"
"ConfigFlags"=dword:00000020
"Driver"="{4D36E96F-E325-11CE-BFC1-08002BE10318}\0007"
"Class"="Mouse"
"Mfg"="Wacom Technology"
"DeviceDesc"="Wacom Mouse"
"UpperFilters"=str(7):"wacommousefilter\0"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\HID\WACVIRTUALHID&Col03\1&2d595ca7&1&0002\Device Parameters]
"Migrated"=dword:00000001
"FlipFlopWheel"=dword:00000000
"ForceAbsolute"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\HID\WACVIRTUALHID&Col03\1&2d595ca7&1&0002\LogConf]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\HID\WACVIRTUALHID&Col03\1&4784345&0&0002]
"Capabilities"=dword:000000a0
"HardwareID"=str(7):"HID\WACVIRTUALHID&Col03\0HID_DEVICE_SYSTEM_MOUSE\0HID_DEVICE_UP:0001_U:0001\0HID_DEVICE\0"
"CompatibleIDs"=str(7):"\0"
"ClassGUID"="{4D36E96F-E325-11CE-BFC1-08002BE10318}"
"ConfigFlags"=dword:00000020
"Class"="Mouse"
"Mfg"="Wacom Technology"
"DeviceDesc"="Wacom Mouse"
"Service"="mouhid"
"Driver"="{4D36E96F-E325-11CE-BFC1-08002BE10318}\0009"
"UpperFilters"=str(7):"wacommousefilter\0"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\HID\WACVIRTUALHID&Col03\1&4784345&0&0002\Device Parameters]
"Migrated"=dword:00000001
"FlipFlopWheel"=dword:00000000
"ForceAbsolute"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\HID\WACVIRTUALHID&Col03\1&4784345&0&0002\LogConf]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\HID\WACVIRTUALHID&Col03\1&4784345&1&0002]
"Capabilities"=dword:000000a0
"HardwareID"=str(7):"HID\WACVIRTUALHID&Col03\0HID_DEVICE_SYSTEM_MOUSE\0HID_DEVICE_UP:0001_U:0001\0HID_DEVICE\0"
"CompatibleIDs"=str(7):"\0"
"ClassGUID"="{4D36E96F-E325-11CE-BFC1-08002BE10318}"
"Service"="mouhid"
"ConfigFlags"=dword:00000020
"Driver"="{4D36E96F-E325-11CE-BFC1-08002BE10318}\0012"
"Class"="Mouse"
"Mfg"="Wacom Technology"
"DeviceDesc"="Wacom Mouse"
"UpperFilters"=str(7):"wacommousefilter\0"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\HID\WACVIRTUALHID&Col03\1&4784345&1&0002\Device Parameters]
"Migrated"=dword:00000001
"FlipFlopWheel"=dword:00000000
"ForceAbsolute"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\HID\WACVIRTUALHID&Col03\1&4784345&1&0002\LogConf]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC]
"p0"="C:\Program Files\DAEMON Tools Pro\"
"h0"=dword:00000001
"hdf12"=hex:63,d4,42,27,e1,2a,fb,52,94,1c,8a,09,4b,db,cc,32,37,ab,52,01,5d,..
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001]
"a0"=hex:20,01,00,00,be,cb,50,68,8d,fe,d1,1b,2a,ee,18,6c,3e,0d,3a,8f,30,..
"hdf12"=hex:fe,08,fb,3c,d7,ab,ff,d0,00,ff,82,6a,96,da,2e,ae,73,e2,96,a2,fb,..
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0]
"hdf12"=hex:bb,e7,ad,96,db,85,60,53,50,e4,6a,3e,1d,3a,8f,ef,46,f5,73,4a,c3,..
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4]
"h0"=dword:00000000
"khjeh"=hex:5a,0c,ed,ec,9e,c4,bb,46,e5,1c,34,d6,e8,f3,6f,03,b5,3c,a4,e1,f4,..
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\HID\Vid_046d&Pid_c001\6&2620f9b3&0&0000]
"Capabilities"=dword:000000a0
"UINumber"=dword:00000000
"HardwareID"=str(7):"HID\Vid_046d&Pid_c001&Rev_2900\0HID\Vid_046d&Pid_c001\0HID_DEVICE_SYSTEM_MOUSE\0HID_DEVICE_UP:0001_U:0002\0HID_DEVICE\0"
"CompatibleIDs"=str(7):"\0"
"ClassGUID"="{4D36E96F-E325-11CE-BFC1-08002BE10318}"
"Class"="Mouse"
"Driver"="{4D36E96F-E325-11CE-BFC1-08002BE10318}\0001"
"Mfg"="Logitech"
"Service"="mouhid"
"DeviceDesc"="Logitech USB First/Pilot Mouse+"
"ConfigFlags"=dword:00000020
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\HID\Vid_046d&Pid_c001\6&2620f9b3&0&0000\Device Parameters]
"Migrated"=dword:00000001
"FlipFlopWheel"=dword:00000000
"ForceAbsolute"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\HID\Vid_046d&Pid_c001\6&2620f9b3&0&0000\LogConf]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\HID\WACVIRTUALHID&Col03\1&10a8b2d&0&0002]
"Capabilities"=dword:000000a0
"HardwareID"=str(7):"HID\WACVIRTUALHID&Col03\0HID_DEVICE_SYSTEM_MOUSE\0HID_DEVICE_UP:0001_U:0001\0HID_DEVICE\0"
"CompatibleIDs"=str(7):"\0"
"ClassGUID"="{4D36E96F-E325-11CE-BFC1-08002BE10318}"
"Service"="mouhid"
"ConfigFlags"=dword:00000020
"Driver"="{4D36E96F-E325-11CE-BFC1-08002BE10318}\0015"
"Class"="Mouse"
"Mfg"="Wacom Technology"
"DeviceDesc"="Wacom Mouse"
"UpperFilters"=str(7):"wacommousefilter\0"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\HID\WACVIRTUALHID&Col03\1&10a8b2d&0&0002\Device Parameters]
"Migrated"=dword:00000001
"FlipFlopWheel"=dword:00000000
"ForceAbsolute"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\HID\WACVIRTUALHID&Col03\1&10a8b2d&0&0002\LogConf]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\HID\WACVIRTUALHID&Col03\1&1731f3ea&0&0002]
"Capabilities"=dword:000000a0
"HardwareID"=str(7):"HID\WACVIRTUALHID&Col03\0HID_DEVICE_SYSTEM_MOUSE\0HID_DEVICE_UP:0001_U:0001\0HID_DEVICE\0"
"CompatibleIDs"=str(7):"\0"
"ClassGUID"="{4D36E96F-E325-11CE-BFC1-08002BE10318}"
"Service"="mouhid"
"ConfigFlags"=dword:00000020
"Driver"="{4D36E96F-E325-11CE-BFC1-08002BE10318}\0010"
"UpperFilters"=str(7):"wacommousefilter\0"
"Class"="Mouse"
"Mfg"="Wacom Technology"
"DeviceDesc"="Wacom Mouse"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\HID\WACVIRTUALHID&Col03\1&1731f3ea&0&0002\Device Parameters]
"Migrated"=dword:00000001
"FlipFlopWheel"=dword:00000000
"ForceAbsolute"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\HID\WACVIRTUALHID&Col03\1&1731f3ea&0&0002\LogConf]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\HID\WACVIRTUALHID&Col03\1&1731f3ea&1&0002]
"Capabilities"=dword:000000a0
"HardwareID"=str(7):"HID\WACVIRTUALHID&Col03\0HID_DEVICE_SYSTEM_MOUSE\0HID_DEVICE_UP:0001_U:0001\0HID_DEVICE\0"
"CompatibleIDs"=str(7):"\0"
"ClassGUID"="{4D36E96F-E325-11CE-BFC1-08002BE10318}"
"Service"="mouhid"
"ConfigFlags"=dword:00000020
"Driver"="{4D36E96F-E325-11CE-BFC1-08002BE10318}\0013"
"Class"="Mouse"
"Mfg"="Wacom Technology"
"DeviceDesc"="Wacom Mouse"
"UpperFilters"=str(7):"wacommousefilter\0"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\HID\WACVIRTUALHID&Col03\1&1731f3ea&1&0002\Device Parameters]
"Migrated"=dword:00000001
"FlipFlopWheel"=dword:00000000
"ForceAbsolute"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\HID\WACVIRTUALHID&Col03\1&1731f3ea&1&0002\LogConf]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\HID\WACVIRTUALHID&Col03\1&29eba48f&0&0002]
"Capabilities"=dword:000000a0
"HardwareID"=str(7):"HID\WACVIRTUALHID&Col03\0HID_DEVICE_SYSTEM_MOUSE\0HID_DEVICE_UP:0001_U:0001\0HID_DEVICE\0"
"CompatibleIDs"=str(7):"\0"
"ClassGUID"="{4D36E96F-E325-11CE-BFC1-08002BE10318}"
"Service"="mouhid"
"ConfigFlags"=dword:00000020
"Driver"="{4D36E96F-E325-11CE-BFC1-08002BE10318}\0014"
"Class"="Mouse"
"Mfg"="Wacom Technology"
"DeviceDesc"="Wacom Mouse"
"UpperFilters"=str(7):"wacommousefilter\0"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\HID\WACVIRTUALHID&Col03\1&29eba48f&0&0002\Device Parameters]
"Migrated"=dword:00000001
"FlipFlopWheel"=dword:00000000
"ForceAbsolute"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\HID\WACVIRTUALHID&Col03\1&29eba48f&0&0002\LogConf]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\HID\WACVIRTUALHID&Col03\1&2d595ca7&0&0002]
"Capabilities"=dword:000000a0
"HardwareID"=str(7):"HID\WACVIRTUALHID&Col03\0HID_DEVICE_SYSTEM_MOUSE\0HID_DEVICE_UP:0001_U:0001\0HID_DEVICE\0"
"CompatibleIDs"=str(7):"\0"
"ClassGUID"="{4D36E96F-E325-11CE-BFC1-08002BE10318}"
"Service"="mouhid"
"ConfigFlags"=dword:00000020
"Driver"="{4D36E96F-E325-11CE-BFC1-08002BE10318}\0006"
"Class"="Mouse"
"Mfg"="Wacom Technology"
"DeviceDesc"="Wacom Mouse"
"UpperFilters"=str(7):"wacommousefilter\0"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\HID\WACVIRTUALHID&Col03\1&2d595ca7&0&0002\Device Parameters]
"Migrated"=dword:00000001
"FlipFlopWheel"=dword:00000000
"ForceAbsolute"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\HID\WACVIRTUALHID&Col03\1&2d595ca7&0&0002\LogConf]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\HID\WACVIRTUALHID&Col03\1&2d595ca7&1&0002]
"Capabilities"=dword:000000a0
"HardwareID"=str(7):"HID\WACVIRTUALHID&Col03\0HID_DEVICE_SYSTEM_MOUSE\0HID_DEVICE_UP:0001_U:0001\0HID_DEVICE\0"
"CompatibleIDs"=str(7):"\0"
"ClassGUID"="{4D36E96F-E325-11CE-BFC1-08002BE10318}"
"Service"="mouhid"
"ConfigFlags"=dword:00000020
"Driver"="{4D36E96F-E325-11CE-BFC1-08002BE10318}\0007"
"Class"="Mouse"
"Mfg"="Wacom Technology"
"DeviceDesc"="Wacom Mouse"
"UpperFilters"=str(7):"wacommousefilter\0"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\HID\WACVIRTUALHID&Col03\1&2d595ca7&1&0002\Device Parameters]
"Migrated"=dword:00000001
"FlipFlopWheel"=dword:00000000
"ForceAbsolute"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\HID\WACVIRTUALHID&Col03\1&2d595ca7&1&0002\LogConf]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\HID\WACVIRTUALHID&Col03\1&4784345&0&0002]
"Capabilities"=dword:000000a0
"HardwareID"=str(7):"HID\WACVIRTUALHID&Col03\0HID_DEVICE_SYSTEM_MOUSE\0HID_DEVICE_UP:0001_U:0001\0HID_DEVICE\0"
"CompatibleIDs"=str(7):"\0"
"ClassGUID"="{4D36E96F-E325-11CE-BFC1-08002BE10318}"
"ConfigFlags"=dword:00000020
"Class"="Mouse"
"Mfg"="Wacom Technology"
"DeviceDesc"="Wacom Mouse"
"Service"="mouhid"
"Driver"="{4D36E96F-E325-11CE-BFC1-08002BE10318}\0009"
"UpperFilters"=str(7):"wacommousefilter\0"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\HID\WACVIRTUALHID&Col03\1&4784345&0&0002\Device Parameters]
"Migrated"=dword:00000001
"FlipFlopWheel"=dword:00000000
"ForceAbsolute"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\HID\WACVIRTUALHID&Col03\1&4784345&0&0002\LogConf]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\HID\WACVIRTUALHID&Col03\1&4784345&1&0002]
"Capabilities"=dword:000000a0
"HardwareID"=str(7):"HID\WACVIRTUALHID&Col03\0HID_DEVICE_SYSTEM_MOUSE\0HID_DEVICE_UP:0001_U:0001\0HID_DEVICE\0"
"CompatibleIDs"=str(7):"\0"
"ClassGUID"="{4D36E96F-E325-11CE-BFC1-08002BE10318}"
"Service"="mouhid"
"ConfigFlags"=dword:00000020
"Driver"="{4D36E96F-E325-11CE-BFC1-08002BE10318}\0012"
"Class"="Mouse"
"Mfg"="Wacom Technology"
"DeviceDesc"="Wacom Mouse"
"UpperFilters"=str(7):"wacommousefilter\0"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\HID\WACVIRTUALHID&Col03\1&4784345&1&0002\Device Parameters]
"Migrated"=dword:00000001
"FlipFlopWheel"=dword:00000000
"ForceAbsolute"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\HID\WACVIRTUALHID&Col03\1&4784345&1&0002\LogConf]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC]
"p0"="C:\Program Files\DAEMON Tools Pro\"
"h0"=dword:00000001
"hdf12"=hex:63,d4,42,27,e1,2a,fb,52,94,1c,8a,09,4b,db,cc,32,37,ab,52,01,5d,..
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001]
"a0"=hex:20,01,00,00,be,cb,50,68,8d,fe,d1,1b,2a,ee,18,6c,3e,0d,3a,8f,30,..
"hdf12"=hex:fe,08,fb,3c,d7,ab,ff,d0,00,ff,82,6a,96,da,2e,ae,73,e2,96,a2,fb,..
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0]
"hdf12"=hex:bb,e7,ad,96,db,85,60,53,50,e4,6a,3e,1d,3a,8f,ef,46,f5,73,4a,c3,..
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4]
"h0"=dword:00000000
"khjeh"=hex:5a,0c,ed,ec,9e,c4,bb,46,e5,1c,34,d6,e8,f3,6f,03,b5,3c,a4,e1,f4,..
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\HID\Vid_046d&Pid_c001\6&2620f9b3&0&0000]
"Capabilities"=dword:000000a0
"UINumber"=dword:00000000
"HardwareID"=str(7):"HID\Vid_046d&Pid_c001&Rev_2900\0HID\Vid_046d&Pid_c001\0HID_DEVICE_SYSTEM_MOUSE\0HID_DEVICE_UP:0001_U:0002\0HID_DEVICE\0"
"CompatibleIDs"=str(7):"\0"
"ClassGUID"="{4D36E96F-E325-11CE-BFC1-08002BE10318}"
"Class"="Mouse"
"Driver"="{4D36E96F-E325-11CE-BFC1-08002BE10318}\0001"
"Mfg"="Logitech"
"Service"="mouhid"
"DeviceDesc"="Logitech USB First/Pilot Mouse+"
"ConfigFlags"=dword:00000020
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\HID\Vid_046d&Pid_c001\6&2620f9b3&0&0000\Device Parameters]
"Migrated"=dword:00000001
"FlipFlopWheel"=dword:00000000
"ForceAbsolute"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\HID\Vid_046d&Pid_c001\6&2620f9b3&0&0000\LogConf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\HID\WACVIRTUALHID&Col03\1&10a8b2d&0&0002]
"Capabilities"=dword:000000a0
"HardwareID"=str(7):"HID\WACVIRTUALHID&Col03\0HID_DEVICE_SYSTEM_MOUSE\0HID_DEVICE_UP:0001_U:0001\0HID_DEVICE\0"
"CompatibleIDs"=str(7):"\0"
"ClassGUID"="{4D36E96F-E325-11CE-BFC1-08002BE10318}"
"Service"="mouhid"
"ConfigFlags"=dword:00000020
"Driver"="{4D36E96F-E325-11CE-BFC1-08002BE10318}\0015"
"Class"="Mouse"
"Mfg"="Wacom Technology"
"DeviceDesc"="Wacom Mouse"
"UpperFilters"=str(7):"wacommousefilter\0"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\HID\WACVIRTUALHID&Col03\1&10a8b2d&0&0002\Device Parameters]
"Migrated"=dword:00000001
"FlipFlopWheel"=dword:00000000
"ForceAbsolute"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\HID\WACVIRTUALHID&Col03\1&10a8b2d&0&0002\LogConf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\HID\WACVIRTUALHID&Col03\1&1731f3ea&0&0002]
"Capabilities"=dword:000000a0
"HardwareID"=str(7):"HID\WACVIRTUALHID&Col03\0HID_DEVICE_SYSTEM_MOUSE\0HID_DEVICE_UP:0001_U:0001\0HID_DEVICE\0"
"CompatibleIDs"=str(7):"\0"
"ClassGUID"="{4D36E96F-E325-11CE-BFC1-08002BE10318}"
"Service"="mouhid"
"ConfigFlags"=dword:00000020
"Driver"="{4D36E96F-E325-11CE-BFC1-08002BE10318}\0010"
"UpperFilters"=str(7):"wacommousefilter\0"
"Class"="Mouse"
"Mfg"="Wacom Technology"
"DeviceDesc"="Wacom Mouse"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\HID\WACVIRTUALHID&Col03\1&1731f3ea&0&0002\Device Parameters]
"Migrated"=dword:00000001
"FlipFlopWheel"=dword:00000000
"ForceAbsolute"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\HID\WACVIRTUALHID&Col03\1&1731f3ea&0&0002\LogConf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\HID\WACVIRTUALHID&Col03\1&1731f3ea&1&0002]
"Capabilities"=dword:000000a0
"HardwareID"=str(7):"HID\WACVIRTUALHID&Col03\0HID_DEVICE_SYSTEM_MOUSE\0HID_DEVICE_UP:0001_U:0001\0HID_DEVICE\0"
"CompatibleIDs"=str(7):"\0"
"ClassGUID"="{4D36E96F-E325-11CE-BFC1-08002BE10318}"
"Service"="mouhid"
"ConfigFlags"=dword:00000020
"Driver"="{4D36E96F-E325-11CE-BFC1-08002BE10318}\0013"
"Class"="Mouse"
"Mfg"="Wacom Technology"
"DeviceDesc"="Wacom Mouse"
"UpperFilters"=str(7):"wacommousefilter\0"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\HID\WACVIRTUALHID&Col03\1&1731f3ea&1&0002\Device Parameters]
"Migrated"=dword:00000001
"FlipFlopWheel"=dword:00000000
"ForceAbsolute"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\HID\WACVIRTUALHID&Col03\1&1731f3ea&1&0002\LogConf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\HID\WACVIRTUALHID&Col03\1&29eba48f&0&0002]
"Capabilities"=dword:000000a0
"HardwareID"=str(7):"HID\WACVIRTUALHID&Col03\0HID_DEVICE_SYSTEM_MOUSE\0HID_DEVICE_UP:0001_U:0001\0HID_DEVICE\0"
"CompatibleIDs"=str(7):"\0"
"ClassGUID"="{4D36E96F-E325-11CE-BFC1-08002BE10318}"
"Service"="mouhid"
"ConfigFlags"=dword:00000020
"Driver"="{4D36E96F-E325-11CE-BFC1-08002BE10318}\0014"
"Class"="Mouse"
"Mfg"="Wacom Technology"
"DeviceDesc"="Wacom Mouse"
"UpperFilters"=str(7):"wacommousefilter\0"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\HID\WACVIRTUALHID&Col03\1&29eba48f&0&0002\Device Parameters]
"Migrated"=dword:00000001
"FlipFlopWheel"=dword:00000000
"ForceAbsolute"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\HID\WACVIRTUALHID&Col03\1&29eba48f&0&0002\LogConf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\HID\WACVIRTUALHID&Col03\1&2d595ca7&0&0002]
"Capabilities"=dword:000000a0
"HardwareID"=str(7):"HID\WACVIRTUALHID&Col03\0HID_DEVICE_SYSTEM_MOUSE\0HID_DEVICE_UP:0001_U:0001\0HID_DEVICE\0"
"CompatibleIDs"=str(7):"\0"
"ClassGUID"="{4D36E96F-E325-11CE-BFC1-08002BE10318}"
"Service"="mouhid"
"ConfigFlags"=dword:00000020
"Driver"="{4D36E96F-E325-11CE-BFC1-08002BE10318}\0006"
"Class"="Mouse"
"Mfg"="Wacom Technology"
"DeviceDesc"="Wacom Mouse"
"UpperFilters"=str(7):"wacommousefilter\0"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\HID\WACVIRTUALHID&Col03\1&2d595ca7&0&0002\Device Parameters]
"Migrated"=dword:00000001
"FlipFlopWheel"=dword:00000000
"ForceAbsolute"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\HID\WACVIRTUALHID&Col03\1&2d595ca7&0&0002\LogConf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\HID\WACVIRTUALHID&Col03\1&2d595ca7&1&0002]
"Capabilities"=dword:000000a0
"HardwareID"=str(7):"HID\WACVIRTUALHID&Col03\0HID_DEVICE_SYSTEM_MOUSE\0HID_DEVICE_UP:0001_U:0001\0HID_DEVICE\0"
"CompatibleIDs"=str(7):"\0"
"ClassGUID"="{4D36E96F-E325-11CE-BFC1-08002BE10318}"
"Service"="mouhid"
"ConfigFlags"=dword:00000020
"Driver"="{4D36E96F-E325-11CE-BFC1-08002BE10318}\0007"
"Class"="Mouse"
"Mfg"="Wacom Technology"
"DeviceDesc"="Wacom Mouse"
"UpperFilters"=str(7):"wacommousefilter\0"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\HID\WACVIRTUALHID&Col03\1&2d595ca7&1&0002\Device Parameters]
"Migrated"=dword:00000001
"FlipFlopWheel"=dword:00000000
"ForceAbsolute"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\HID\WACVIRTUALHID&Col03\1&2d595ca7&1&0002\LogConf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\HID\WACVIRTUALHID&Col03\1&4784345&0&0002]
"Capabilities"=dword:000000a0
"HardwareID"=str(7):"HID\WACVIRTUALHID&Col03\0HID_DEVICE_SYSTEM_MOUSE\0HID_DEVICE_UP:0001_U:0001\0HID_DEVICE\0"
"CompatibleIDs"=str(7):"\0"
"ClassGUID"="{4D36E96F-E325-11CE-BFC1-08002BE10318}"
"ConfigFlags"=dword:00000020
"Class"="Mouse"
"Mfg"="Wacom Technology"
"DeviceDesc"="Wacom Mouse"
"Service"="mouhid"
"Driver"="{4D36E96F-E325-11CE-BFC1-08002BE10318}\0009"
"UpperFilters"=str(7):"wacommousefilter\0"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\HID\WACVIRTUALHID&Col03\1&4784345&0&0002\Device Parameters]
"Migrated"=dword:00000001
"FlipFlopWheel"=dword:00000000
"ForceAbsolute"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\HID\WACVIRTUALHID&Col03\1&4784345&0&0002\LogConf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\HID\WACVIRTUALHID&Col03\1&4784345&1&0002]
"Capabilities"=dword:000000a0
"HardwareID"=str(7):"HID\WACVIRTUALHID&Col03\0HID_DEVICE_SYSTEM_MOUSE\0HID_DEVICE_UP:0001_U:0001\0HID_DEVICE\0"
"CompatibleIDs"=str(7):"\0"
"ClassGUID"="{4D36E96F-E325-11CE-BFC1-08002BE10318}"
"Service"="mouhid"
"ConfigFlags"=dword:00000020
"Driver"="{4D36E96F-E325-11CE-BFC1-08002BE10318}\0012"
"Class"="Mouse"
"Mfg"="Wacom Technology"
"DeviceDesc"="Wacom Mouse"
"UpperFilters"=str(7):"wacommousefilter\0"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\HID\WACVIRTUALHID&Col03\1&4784345&1&0002\Device Parameters]
"Migrated"=dword:00000001
"FlipFlopWheel"=dword:00000000
"ForceAbsolute"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\HID\WACVIRTUALHID&Col03\1&4784345&1&0002\LogConf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC]
"p0"="C:\Program Files\DAEMON Tools Pro\"
"h0"=dword:00000001
"hdf12"=hex:63,d4,42,27,e1,2a,fb,52,94,1c,8a,09,4b,db,cc,32,37,ab,52,01,5d,..
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001]
"a0"=hex:20,01,00,00,be,cb,50,68,8d,fe,d1,1b,2a,ee,18,6c,3e,0d,3a,8f,30,..
"hdf12"=hex:fe,08,fb,3c,d7,ab,ff,d0,00,ff,82,6a,96,da,2e,ae,73,e2,96,a2,fb,..
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0]
"hdf12"=hex:bb,e7,ad,96,db,85,60,53,50,e4,6a,3e,1d,3a,8f,ef,46,f5,73,4a,c3,..
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4]
"h0"=dword:00000000
"khjeh"=hex:5a,0c,ed,ec,9e,c4,bb,46,e5,1c,34,d6,e8,f3,6f,03,b5,3c,a4,e1,f4,..
scanning hidden registry entries ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden services: 0
hidden files: 0
Remaining Services :
Authorized Application Key Export:
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\Azureus\\Azureus.exe"="C:\\Program Files\\Azureus\\Azureus.exe:*:Enabled:Azureus"
"C:\\Program Files\\Zattoo\\Zattoo2.exe"="C:\\Program Files\\Zattoo\\Zattoo2.exe:*:Enabled: "
"C:\\Program Files\\Logitech\\Desktop Messenger\\8876480\\Program\\LogitechDesktopMessenger.exe"="C:\\Program Files\\Logitech\\Desktop Messenger\\8876480\\Program\\LogitechDesktopMessenger.exe:*:Enabled:Logitech Desktop Messenger"
"C:\\Program Files\\adslTV\\vlc.exe"="C:\\Program Files\\adslTV\\vlc.exe:*:Enabled:VLC media player"
"C:\\Program Files\\FripTV-Orange\\FripTVGUI2.exe"="C:\\Program Files\\FripTV-Orange\\FripTVGUI2.exe:*:Enabled:FripTVGUI2.exe"
"C:\\Program Files\\FripTV-Orange\\friptv.exe"="C:\\Program Files\\FripTV-Orange\\friptv.exe:*:Enabled:friptv.exe"
"C:\\Program Files\\Fichiers communs\\McAfee\\MNA\\McNASvc.exe"="C:\\Program Files\\Fichiers communs\\McAfee\\MNA\\McNASvc.exe:*:Enabled:McAfee Network Agent"
"C:\\Program Files\\Bonjour\\mDNSResponder.exe"="C:\\Program Files\\Bonjour\\mDNSResponder.exe:*:Enabled:Bonjour"
"C:\\Program Files\\Skype\\Phone\\Skype.exe"="C:\\Program Files\\Skype\\Phone\\Skype.exe:*:Enabled:Skype"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"="C:\\Program Files\\Windows Live\\Messenger\\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\Logitech\\Desktop Messenger\\8876480\\Program\\LogitechDesktopMessenger.exe"="C:\\Program Files\\Logitech\\Desktop Messenger\\8876480\\Program\\LogitechDesktopMessenger.exe:*:Enabled:Logitech Desktop Messenger"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"="C:\\Program Files\\Windows Live\\Messenger\\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"
Remaining Files :
File Backups: - C:\DOCUME~1\Francky\Bureau\sdfix\SDFix\backups\backups.zip
Files with Hidden Attributes :
Wed 1 Nov 2006 216 ..SH. --- "C:\BOOT.BAK"
Mon 28 Jan 2008 1,404,240 A.SHR --- "C:\Program Files\Spybot - Search & Destroy\SDUpdate.exe"
Mon 28 Jan 2008 5,146,448 A.SHR --- "C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe"
Mon 28 Jan 2008 2,097,488 A.SHR --- "C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe"
Sat 31 Mar 2007 512,197 A.SH. --- "C:\WINDOWS\system32\qqtwa.tmp"
Sun 1 Apr 2007 177 A.SH. --- "C:\WINDOWS\system32\rwaxpuvy.tmp"
Wed 12 Apr 2006 4,348 ..SH. --- "C:\Documents and Settings\All Users\DRM\DRMv1.bak"
Tue 15 Apr 2008 20,487 A.SHR --- "C:\Program Files\McAfee\MQC\MRU.bak"
Tue 15 Apr 2008 265 A.SHR --- "C:\Program Files\McAfee\MQC\qcconf.bak"
Wed 4 Apr 2001 28,738 A..HR --- "C:\Program Files\microsoft office\MSDE2000\SQLRESLD.DLL"
Thu 23 Aug 2007 71,168 A.SHR --- "C:\Program Files\Mio Technology\MioSync\Setup.exe"
Sat 9 Jul 2005 16,384 A.SHR --- "C:\Program Files\Mio Technology\MioSync\_Setup.dll"
Sun 10 Feb 2008 71,168 ..SHR --- "C:\Program Files\Mio Technology\SpeedCAM Tool\Setup.exe"
Sat 9 Jul 2005 16,384 A.SHR --- "C:\Program Files\Mio Technology\SpeedCAM Tool\_Setup.dll"
Sat 23 Feb 2008 0 A.SH. --- "C:\Documents and Settings\All Users\DRM\Cache\Indiv02.tmp"
Finished!hijackthis log
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 00:40:26, on 27/05/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5730.0013)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\a-squared Free\a2service.exe
C:\Program Files\Adobe\Photoshop Elements 6.0\PhotoshopElementsFileAgent.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\PROGRA~1\CACHEM~1\CachemanXP.exe
C:\Program Files\Fichiers communs\Portrait Displays\Shared\DTSRVC.exe
C:\Program Files\CA\SharedComponents\CA_LIC\LogWatNT.exe
C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
c:\PROGRA~1\FICHIE~1\mcafee\mna\mcnasvc.exe
c:\PROGRA~1\FICHIE~1\mcafee\mcproxy\mcproxy.exe
C:\Program Files\McAfee\VirusScan\McShield.exe
C:\Program Files\McAfee\MPF\MPFSrv.exe
C:\Program Files\McAfee\MSK\MskSrver.exe
C:\Program Files\Microsoft SQL Server\MSSQL\Binn\sqlservr.exe
C:\PROGRA~1\McAfee.com\Agent\mcagent.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\Pen_Tablet.exe
C:\WINDOWS\system32\WTablet\Pen_TabletUser.exe
C:\WINDOWS\system32\Pen_Tablet.exe
C:\Program Files\Canon\CAL\CALMAIN.exe
C:\WINDOWS\system32\wscntfy.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\notepad.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\WINDOWS\system32\Rundll32.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Slim Multimedia Keyboard\MagicKey.exe
C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe
C:\WINDOWS\BricoPacks\Vista Inspirat 2\UberIcon\UberIcon Manager.exe
C:\WINDOWS\BricoPacks\Vista Inspirat 2\YzShadow\YzShadow.exe
C:\Program Files\Slim Multimedia Keyboard\OSD.EXE
C:\Documents and Settings\Francky\Bureau\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [BM9b630aeb] Rundll32.exe "C:\WINDOWS\system32\yfsfixid.dll",s
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - Startup: RocketDock.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe
O4 - Startup: TransBar.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat 2\TransBar\TransBar.exe
O4 - Startup: UberIcon.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat 2\UberIcon\UberIcon Manager.exe
O4 - Startup: Y'z Shadow.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat 2\YzShadow\YzShadow.exe
O4 - Global Startup: Slim Multimedia Keyboard.lnk = C:\Program Files\Slim Multimedia Keyboard\MagicKey.exe
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\WINDOWS\system32\shdocvw.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\WINDOWS\system32\shdocvw.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) -
http://go.microsoft.com/fwlink/?linkid=39204O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
http://update.microsoft.com/windowsupda ... 4667564125O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) -
http://a840.g.akamai.net/7/840/537/2005 ... scan53.cabO23 - Service: a-squared Free Service (a2free) - Emsi Software GmbH - C:\Program Files\a-squared Free\a2service.exe
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Adobe Active File Monitor V6 (AdobeActiveFileMonitor6.0) - Unknown owner - C:\Program Files\Adobe\Photoshop Elements 6.0\PhotoshopElementsFileAgent.exe
O23 - Service: Avira AntiVir Personal – Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: Avira AntiVir Personal – Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: CachemanXP (CachemanXPService) - OuterTechnologies - C:\PROGRA~1\CACHEM~1\CachemanXP.exe
O23 - Service: CA License Client (CA_LIC_CLNT) - Computer Associates International Inc. - C:\Program Files\CA\SharedComponents\CA_LIC\lic98rmt.exe
O23 - Service: CA License Server (CA_LIC_SRVR) - Computer Associates International Inc. - C:\Program Files\CA\SharedComponents\CA_LIC\lic98rmtd.exe
O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe
O23 - Service: Portrait Displays Display Tune Service (DTSRVC) - Unknown owner - C:\Program Files\Fichiers communs\Portrait Displays\Shared\DTSRVC.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Fichiers communs\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Fichiers communs\Logitech\Bluetooth\LBTServ.exe
O23 - Service: Event Log Watch (LogWatch) - Computer Associates - C:\Program Files\CA\SharedComponents\CA_LIC\LogWatNT.exe
O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - c:\PROGRA~1\FICHIE~1\mcafee\mna\mcnasvc.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - c:\PROGRA~1\FICHIE~1\mcafee\mcproxy\mcproxy.exe
O23 - Service: McAfee Real-time Scanner (McShield) - McAfee, Inc. - C:\Program Files\McAfee\VirusScan\McShield.exe
O23 - Service: McAfee SystemGuards (McSysmon) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee, Inc. - C:\Program Files\McAfee\MPF\MPFSrv.exe
O23 - Service: McAfee Anti-Spam Service (MSK80Service) - McAfee, Inc. - C:\Program Files\McAfee\MSK\MskSrver.exe
O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Program Files\Spyware Doctor\pctsAuxs.exe
O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Program Files\Spyware Doctor\pctsSvc.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
O23 - Service: TabletServicePen - Wacom Technology, Corp. - C:\WINDOWS\system32\Pen_Tablet.exe
--
End of file - 8573 bytes