Aller au contenu

Toum_

Membres
  • Compteur de contenus

    58
  • Inscription

  • Dernière visite

Messages posté(e)s par Toum_

  1. Bonjour,

    voici le rapport Drweb que je vient de refaire:

     

    UsbFix.exe\Tools\Kill_P.exe;C:\Documents and Settings\Toum\Desktop\UsbFix.exe;Tool.Prockill;;

    UsbFix.exe;C:\Documents and Settings\Toum\Desktop;L'archive contient des éléments infectés;Quarantaine.;

    foot_bridge_03.gmt;C:\Documents and Settings\Toum\DoctorWeb\Quarantine;Modification de Win32.Arrow.1296;Quarantaine.;

    gmt.x\GameData/Locations/Vara/MODELS/foot_bridge_03.gmt;C:\Documents and Settings\Toum\DoctorWeb\Quarantine\gmt.x;Modification de Win32.Arrow.1296;;

    gmt.x;C:\Documents and Settings\Toum\DoctorWeb\Quarantine;L'archive contient des éléments infectés;Quarantaine.;

    SlgClientServicesRedists.exe\data002;C:\Documents and Settings\Toum\DoctorWeb\Quarantine\SlgClientServicesRedists.exe;Adware.SpywareStorm;;

    SlgClientServicesRedists.exe;C:\Documents and Settings\Toum\DoctorWeb\Quarantine;L'archive contient des éléments infectés;Quarantaine.;

    uninst.exe\data002;C:\Documents and Settings\Toum\DoctorWeb\Quarantine\uninst.exe;Tool.ProcessKill;;

    uninst.exe;C:\Documents and Settings\Toum\DoctorWeb\Quarantine;L'archive contient des éléments infectés;Quarantaine.;

    UsbFix.exe\Tools\Kill_P.exe;C:\Documents and Settings\Toum\DoctorWeb\Quarantine\UsbFix.exe;Tool.Prockill;;

    UsbFix.exe;C:\Documents and Settings\Toum\DoctorWeb\Quarantine;L'archive contient des éléments infectés;Quarantaine.;

    slghex.dll;C:\Program Files\Common Files\Sandlot Shared;Adware.SpywareStorm;;

    slghex.dll;C:\Program Files\Fichiers communs\Sandlot Shared;Adware.SpywareStorm;;

    Kill_P.exe;C:\UsbFix\Tools;Tool.Prockill;;

     

     

     

     

    Merci, à plus tard.

  2. J'avais déja fais une analyse mbam:

     

    Malwarebytes' Anti-Malware 1.37

    Version de la base de données: 2182

    Windows 6.0.6002 Service Pack 2

     

    17/10/2009 09:51:14

    mbam-log-2009-10-17 (09-51-14).txt

     

    Type de recherche: Examen complet (C:\|D:\|E:\|G:\|H:\|)

    Eléments examinés: 317325

    Temps écoulé: 1 hour(s), 28 minute(s), 7 second(s)

     

    Processus mémoire infecté(s): 0

    Module(s) mémoire infecté(s): 0

    Clé(s) du Registre infectée(s): 1

    Valeur(s) du Registre infectée(s): 0

    Elément(s) de données du Registre infecté(s): 0

    Dossier(s) infecté(s): 0

    Fichier(s) infecté(s): 0

     

    Processus mémoire infecté(s):

    (Aucun élément nuisible détecté)

     

    Module(s) mémoire infecté(s):

    (Aucun élément nuisible détecté)

     

    Clé(s) du Registre infectée(s):

    HKEY_LOCAL_MACHINE\SOFTWARE\EoRezo (Rogue.Eorezo) -> Quarantined and deleted successfully.

     

    Valeur(s) du Registre infectée(s):

    (Aucun élément nuisible détecté)

     

    Elément(s) de données du Registre infecté(s):

    (Aucun élément nuisible détecté)

     

    Dossier(s) infecté(s):

    (Aucun élément nuisible détecté)

     

    Fichier(s) infecté(s):

    (Aucun élément nuisible détecté)

     

     

     

     

    et voici le rapport de la premiere etape usb fix:

     

     

    ############################## | UsbFix V6.042 |

     

    User : Toum (Administrateurs) # PC-DE-TOUM

    Update on 15/10/2009 by Chiquitine29, C_XX & Chimay8

    Start at: 15:12:46 | 20/10/2009

    Website : http://pagesperso-orange.fr/NosTools/index.html

     

    Intel® Core2 Duo CPU T5800 @ 2.00GHz

    Microsoft® Windows Vista Édition Familiale Premium (6.0.6002 32-bit) # Service Pack 2

    Internet Explorer 7.0.6002.18005

    Windows Firewall Status : Enabled

     

    C:\ -> Disque fixe local # 144,04 Go (13,27 Go free) [ACER] # NTFS

    D:\ -> Disque fixe local # 137,5 Go (12,97 Go free) [DATA] # NTFS

    E:\ -> Disque CD-ROM

    F:\ -> Disque fixe local # 74,52 Go (842,7 Mo free) [HP_PAVILION] # NTFS

    G:\ -> Disque CD-ROM

    H:\ -> Disque CD-ROM

     

    ############################## | Processus actifs |

     

    C:\Windows\System32\smss.exe

    C:\Windows\system32\csrss.exe

    C:\Windows\system32\csrss.exe

    C:\Windows\system32\wininit.exe

    C:\Windows\system32\services.exe

    C:\Windows\system32\lsass.exe

    C:\Windows\system32\lsm.exe

    C:\Windows\system32\svchost.exe

    C:\Windows\system32\nvvsvc.exe

    C:\Windows\system32\svchost.exe

    C:\Windows\System32\svchost.exe

    C:\Windows\System32\svchost.exe

    C:\Windows\system32\winlogon.exe

    C:\Windows\System32\svchost.exe

    C:\Windows\system32\svchost.exe

    C:\Windows\system32\SLsvc.exe

    C:\Windows\system32\svchost.exe

    C:\Program Files\Acer\Acer Bio Protection\CompPtcVUI.exe

    C:\Windows\system32\nvvsvc.exe

    C:\Windows\system32\Dwm.exe

    C:\Windows\system32\vfsFPService.exe

    C:\Windows\system32\svchost.exe

    C:\Windows\Explorer.EXE

    C:\Users\Toum\AppData\Roaming\eoRezo\SoftwareUpdate\SoftwareUpdateHP.exe

    C:\Windows\system32\svchost.exe

    C:\Windows\system32\agrsmsvc.exe

    C:\Windows\System32\alg.exe

    C:\Windows\system32\svchost.exe

    C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe

    C:\Windows\system32\svchost.exe

    C:\Program Files\NewTech Infosystems\NTI Backup Now 5\Client\Agentsvc.exe

    C:\Program Files\Acer Arcade Deluxe\HomeMedia\Kernel\DMP\CLHNService.exe

    C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe

    C:\Program Files\Acer\Empowering Technology\Service\ETService.exe

    C:\Program Files\Google\Update\GoogleUpdate.

     

     

     

     

    merci

     

    voici le rapport après désinfection usb fix:

     

    ############################## | UsbFix V6.042 |

     

    User : Toum (Administrateurs) # PC-DE-TOUM

    Update on 15/10/2009 by Chiquitine29, C_XX & Chimay8

    Start at: 15:41:32 | 20/10/2009

    Website : http://pagesperso-orange.fr/NosTools/index.html

     

    Intel® Core2 Duo CPU T5800 @ 2.00GHz

    Microsoft® Windows Vista Édition Familiale Premium (6.0.6002 32-bit) # Service Pack 2

    Internet Explorer 7.0.6002.18005

    Windows Firewall Status : Enabled

     

    C:\ -> Disque fixe local # 144,04 Go (13,29 Go free) [ACER] # NTFS

    D:\ -> Disque fixe local # 137,5 Go (12,97 Go free) [DATA] # NTFS

    E:\ -> Disque CD-ROM

    F:\ -> Disque fixe local # 74,52 Go (1,61 Go free) [HP_PAVILION] # NTFS

    G:\ -> Disque CD-ROM

    H:\ -> Disque CD-ROM

     

    ############################## | Processus actifs |

     

    C:\Windows\System32\smss.exe

    C:\Windows\system32\csrss.exe

    C:\Windows\system32\wininit.exe

    C:\Windows\system32\csrss.exe

    C:\Windows\system32\services.exe

    C:\Windows\system32\lsass.exe

    C:\Windows\system32\lsm.exe

    C:\Windows\system32\svchost.exe

    C:\Windows\system32\nvvsvc.exe

    C:\Windows\system32\svchost.exe

    C:\Windows\system32\winlogon.exe

    C:\Windows\System32\svchost.exe

    C:\Windows\System32\svchost.exe

    C:\Windows\System32\svchost.exe

    C:\Windows\system32\svchost.exe

    C:\Windows\system32\SLsvc.exe

    C:\Windows\system32\svchost.exe

    C:\Program Files\Acer\Acer Bio Protection\CompPtcVUI.exe

    C:\Windows\system32\nvvsvc.exe

    C:\Windows\Explorer.EXE

    C:\Windows\system32\runonce.exe

    C:\Windows\system32\Dwm.exe

    C:\Windows\system32\vfsFPService.exe

    C:\Users\Toum\AppData\Roaming\eoRezo\SoftwareUpdate\SoftwareUpdateHP.exe

    C:\Windows\system32\svchost.exe

    C:\Windows\system32\svchost.exe

    C:\Windows\system32\agrsmsvc.exe

    C:\Windows\System32\alg.exe

    C:\Windows\system32\svchost.exe

    C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe

    C:\Windows\system32\svchost.exe

    C:\Program Files\NewTech Infosystems\NTI Backup Now 5\Client\Agentsvc.exe

    C:\Program Files\Acer Arcade Deluxe\HomeMedia\Kernel\DMP\CLHNService.exe

    C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe

    C:\Program Files\Acer\Empowering Technology\Service\ETService.exe

    C:\Program Files\Google\Update\GoogleUpdate.exe

    C:\Program Files\Acer\Acer Bio Protection\BASVC.exe

    C:\Program Files\Common Files\LightScribe\LSSrvc.exe

    C:\Acer\Mobility Center\MobilityService.exe

    C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe

    C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe

    C:\Windows\system32\PnkBstrA.exe

    C:\Program Files\Cyberlink\Shared files\RichVideo.exe

    C:\Windows\system32\locator.exe

    C:\Program Files\Acer\Acer VCM\RS_Service.exe

    C:\Windows\system32\svchost.exe

    C:\Windows\system32\svchost.exe

    C:\Windows\System32\svchost.exe

    C:\Windows\system32\SearchIndexer.exe

    C:\Windows\system32\UI0Detect.exe

    C:\Windows\system32\wbem\unsecapp.exe

    C:\Windows\system32\wbem\wmiprvse.exe

    C:\Windows\system32\wbem\wmiprvse.exe

     

    ################## | Fichiers # Dossiers infectieux |

     

    Supprimé ! C:\Users\Toum\AppData\Local\Temp\Vista-clef activation pour tous les vista.rar

     

    ################## | Registre # Clés Run infectieuses |

     

     

    ################## | Registre # Mountpoints2 |

     

    Supprimé ! HKCU\...\Explorer\MountPoints2\{116b1652-238e-11de-9aa8-00a0d1aac029}\Shell\AutoRun\Command

    Supprimé ! HKCU\...\Explorer\MountPoints2\{1db4e9af-15fa-11de-9ca6-00a0d1aac029}\Shell\AutoRun\Command

    Supprimé ! HKCU\...\Explorer\MountPoints2\{52b98d53-e88c-11dd-b288-00a0d1aac029}\Shell\AutoRun\Command

    Supprimé ! HKCU\...\Explorer\MountPoints2\{932a51ae-3186-11de-a3c4-00a0d1aac029}\Shell\AutoRun\Command

    Supprimé ! HKCU\...\Explorer\MountPoints2\{9de4d972-beea-11dd-909c-00a0d1aac029}\Shell\AutoRun\Command

    Supprimé ! HKCU\...\Explorer\MountPoints2\{e5b2f6ae-49f4-11de-ab21-00a0d1aac029}\Shell\AutoRun\Command

     

    ################## | Listing des fichiers présent |

     

    [18/09/2006 23:43|--a------|24] C:\autoexec.bat

    [10/04/2009 23:36|-rahs----|333257] C:\bootmgr

    [26/03/2008 07:02|-ra-s----|8192] C:\BOOTSECT.BAK

    [15/01/2009 21:33|--a------|3409] C:\cleannavi.txt

    [18/09/2006 23:43|--a------|10] C:\config.sys

    [23/05/2009 13:01|--a------|475] C:\ConfigurateurLog.txt

    [30/05/2009 23:28|--a------|0] C:\DFR2D8D.tmp

    [30/05/2009 19:28|--a------|0] C:\DFRE580.tmp

    [15/01/2009 21:19|--a------|3243] C:\fixnavi.txt

    [01/03/2009 19:40|-rahs----|0] C:\IO.SYS

    [06/09/2008 12:57|--a------|20] C:\Medion.ini

    [01/03/2009 19:40|-rahs----|0] C:\MSDOS.SYS

    [?|?|?] C:\pagefile.sys

    [06/09/2008 12:53|--a------|60] C:\Partition.txt

    [26/03/2008 14:22|--a------|477] C:\RHDSetup.log

    [22/02/2009 16:02|--a------|167] C:\Setup.log

    [18/02/2009 03:57|--ah-----|268] C:\sqmdata00.sqm

    [21/02/2009 14:24|--ah-----|268] C:\sqmdata01.sqm

    [21/02/2009 16:47|--ah-----|268] C:\sqmdata02.sqm

    [21/02/2009 21:30|--ah-----|268] C:\sqmdata03.sqm

    [23/02/2009 13:57|--ah-----|268] C:\sqmdata04.sqm

    [23/02/2009 14:30|--ah-----|268] C:\sqmdata05.sqm

    [23/02/2009 18:37|--ah-----|268] C:\sqmdata06.sqm

    [23/02/2009 22:19|--ah-----|268] C:\sqmdata07.sqm

    [24/02/2009 18:40|--ah-----|268] C:\sqmdata08.sqm

    [24/02/2009 21:58|--ah-----|268] C:\sqmdata09.sqm

    [25/02/2009 14:59|--ah-----|268] C:\sqmdata10.sqm

    [17/10/2009 00:30|--ah-----|244] C:\sqmdata11.sqm

    [17/10/2009 00:43|--ah-----|244] C:\sqmdata12.sqm

    [17/10/2009 02:38|--ah-----|268] C:\sqmdata13.sqm

    [19/10/2009 19:50|--ah-----|268] C:\sqmdata14.sqm

    [18/02/2009 03:57|--ah-----|244] C:\sqmnoopt00.sqm

    [21/02/2009 14:24|--ah-----|244] C:\sqmnoopt01.sqm

    [21/02/2009 16:47|--ah-----|244] C:\sqmnoopt02.sqm

    [21/02/2009 21:30|--ah-----|244] C:\sqmnoopt03.sqm

    [23/02/2009 13:57|--ah-----|244] C:\sqmnoopt04.sqm

    [23/02/2009 14:30|--ah-----|244] C:\sqmnoopt05.sqm

    [23/02/2009 18:37|--ah-----|244] C:\sqmnoopt06.sqm

    [23/02/2009 22:19|--ah-----|244] C:\sqmnoopt07.sqm

    [24/02/2009 18:40|--ah-----|244] C:\sqmnoopt08.sqm

    [24/02/2009 21:58|--ah-----|244] C:\sqmnoopt09.sqm

    [25/02/2009 14:59|--ah-----|244] C:\sqmnoopt10.sqm

    [17/10/2009 00:30|--ah-----|244] C:\sqmnoopt11.sqm

    [17/10/2009 00:43|--ah-----|244] C:\sqmnoopt12.sqm

    [17/10/2009 02:38|--ah-----|244] C:\sqmnoopt13.sqm

    [19/10/2009 19:50|--ah-----|244] C:\sqmnoopt14.sqm

    [20/10/2009 15:44|--a------|6262] C:\UsbFix.txt

    [10/12/2008 00:28|--a------|279] D:\ACER © - Raccourci.lnk

    [04/03/2009 01:19|--a------|426] D:\copier sur acer - Raccourci.lnk

    [22/11/2006 22:16|--a------|3498295296] D:\rld-tsp2.iso

    [20/05/2005 15:59|--a------|729284608] F:\36_Quai_Des_Orfevres.FRENCH.DVDRip-XViD.avi

    [16/08/2006 18:09|--a------|733440000] F:\40.Ans.Toujours.Puceau.FRENCH.UNRATED.DVDRip.XviD-As-GooD-As-PoSSiBLe.avi

    [19/10/2009 19:40|--a------|3350731] F:\41099-CF.exe

    [20/10/2009 14:58|--a------|4045528] F:\64475-MB.exe

    [05/11/2008 06:23|--a------|728670208] F:\99f (99 francs) Jean Dujardin - Comedie.avi

    [28/09/2002 16:22|--a------|662048768] F:\Arnaque crime et Botanique.avi

    [25/09/2001 15:33|---------|0] F:\AUTOEXEC.BAT

    [12/11/2008 15:49|--a------|735336448] F:\bade6te2.avi

    [12/08/2007 17:40|--a------|737003686] F:\Blood Diamond.avi

    [28/09/2001 14:36|-r-hs----|198] F:\boot.ini

    [28/08/2001 14:00|-r-hs----|4952] F:\Bootfont.bin

    [08/05/2007 18:06|--a------|734402560] F:\Borat.FRENCH.DVDRiP.XviD-BORAT.avi

    [17/11/2003 14:37|--a------|685381632] F:\Chicken run.avi

    [25/09/2001 15:33|---------|0] F:\CONFIG.SYS

    [24/11/2006 13:25|--a------|5568598] F:\Dadoo - Sale Gosse.mp3

    [18/03/2007 10:09|--a------|733853696] F:\Dans.La.Peau.De.Jacques.Chirac.FRENCH.DVDRip.XviD-OTHERS-D3M0N.avi

    [19/10/2009 20:56|--a------|18763448] F:\drweb-cureit.exe

    [26/06/2004 11:15|--a------|733489152] F:\Fight club.AVI

    [05/09/2007 03:57|--a------|734978048] F:\Francais - Bourne Identity 2 - La Mort Dans La Peau (vf - The Bourne Supremacy) (Matt Damon, Brian Cox, Franka Potente) (Espionage) (2004).avi

    [01/08/2006 09:06|--a------|738385920] F:\Grease.-.[DivX.Fr.-.French.-.Francais].-.ripped.by.daxou.teste.par.eMule-Paradise.com.avi

    [11/11/2008 06:21|--a------|733896704] F:\Hitch..Expert.en.Seduction FRANCAIS.avi

    [25/06/2007 02:23|--a------|733945856] F:\Hors De Prix.avi

    [05/03/2009 18:38|--a------|241] F:\hotspot.txt

    [19/10/2009 19:12|--a------|23994] F:\info.txt

    [25/09/2001 15:33|-r-hs----|0] F:\IO.SYS

    [16/12/2008 19:37|--a------|1035684394] F:\James Bond 007 - Goldeneye - Fr - Pierce Brosnan - Sean Bean - Izabella Scorupco - Famke Janssen.avi

    [05/11/2004 22:09|--a------|730767360] F:\Jeux D'Enfants (Le Vrai,M Cotillard, G Canet)Top Qualite.avi

    [05/11/2008 07:55|--a------|734996480] F:\joyeuses funerailles.FRENCH.DVDRiP.XviD-iD-CHACAL.-dvdphoenix.fr.st-.avi

    [08/12/2008 15:42|--a------|731230208] F:\L affaire thomas crown-Divx-French.teste.avi

    [17/09/2007 19:46|--a------|776750080] F:\La Memoire Dans La Peaux Divx Fr.avi

    [27/09/2006 00:14|--a------|733956096] F:\La.Doublure-DVDRip-XviD.avi

    [25/06/2004 16:59|--a------|668015616] F:\Las_Vegas_Parano.avi

    [17/09/2007 08:34|--a------|733021020] F:\La_M‚moire_Dans_La_Peau_French_DVD-RIP_by_Tip0un3.avi

    [04/12/2008 18:17|--a------|735824637] F:\Les Infiltr‚s (The Departed) (Martin Scorsese) (Leonardo Dicaprio, Matt Damon, Jack Nicholson) (Dvdrip Vost Fr 2006).mkv

    [15/10/2008 14:11|--a------|932] F:\lettre.rtf

    [19/10/2009 19:12|--a------|25641] F:\log.txt

    [20/10/2009 15:11|--a------|1079] F:\mbam-log-2009-10-17 (09-51-14).txt

    [15/01/2009 21:38|--a------|2737808] F:\mbam-setup.exe

    [10/01/2007 08:01|--a------|729225216] F:\Memoires De Nos Peres.avi

    [29/06/2004 22:10|--a------|732643554] F:\Minority.Report.VF.DVDRip5.02.by.[LittleTeam](Test‚ Divxovore.com).avi

    [06/01/2007 17:37|--a------|731165886] F:\Moulin-Rouge.French.DVD-RIP.AVI

    [25/09/2001 15:33|-r-hs----|0] F:\MSDOS.SYS

    [31/10/2007 20:29|--a------|1469618176] F:\Ne Le Dis A Personne DVDRip.avi

    [23/11/2007 18:12|--a------|734236142] F:\Next.avi

    [28/08/2001 14:00|-r-hs----|45124] F:\NTDETECT.COM

    [28/08/2001 14:00|-r-hs----|224048] F:\ntldr

    [15/10/2008 14:00|--a------|2135] F:\R-mi_Thoumelinn-_le_25_novembre1988[1].doc

    [20/01/2009 01:30|--a------|878840] F:\remi st hilaire 011.jpg

    [10/11/2008 04:03|--a------|733212672] F:\Retour vers le futur 3 (Fr Dolby Surround) Divx 502 2pass 51.avi

    [11/11/2008 05:13|--a------|736972800] F:\Retour.Vers.Le.Future.1.FRENCH.DVDRiP.XVID.avi

    [19/10/2009 19:06|--a------|781909] F:\RSIT.exe

    [17/05/2008 09:13|--a------|673661440] F:\Sexe.Intentions.Divx.fr.test‚.avi

    [23/01/2007 09:19|--a------|731949056] F:\Snatch (Brad Pitt) Dvdrip Francais.avi

    [17/02/2003 03:21|--a------|104014626] F:\South Park (fr) - 56 (4x08) - Chef pete les plombs.avi

    [16/12/2008 03:47|--a------|734056448] F:\SuperGrave.FRENCH.DVDRip.XViD.avi

    [14/07/2006 02:26|--a------|731891712] F:\Super_Size_Me.FRENCH.DVDRip-XViD.[Verifie_par_www.divx-planet.com].avi

    [02/08/2007 11:14|--a------|733982720] F:\Thank you for smoking.avi

    [08/03/2006 23:19|--a------|734986240] F:\the girl nexte door.avi

    [29/11/2008 02:29|--ahs----|7680] F:\Thumbs.db

    [20/10/2009 15:00|--a------|813796] F:\UsbFix.exe

    [20/10/2009 15:23|--a------|5104] F:\UsbFix.txt

    [02/10/2006 23:28|--a------|734154752] F:\Va, vis et deviens (Radu Mihaileanu, 2005).avi

     

    ################## | Vaccination |

     

    # C:\autorun.inf -> Folder created by UsbFix.

    # D:\autorun.inf -> Folder created by UsbFix.

    # F:\autorun.inf -> Folder created by UsbFix.

  3. J'avais déja fais une analyse mbam:

     

    Malwarebytes' Anti-Malware 1.37

    Version de la base de données: 2182

    Windows 6.0.6002 Service Pack 2

     

    17/10/2009 09:51:14

    mbam-log-2009-10-17 (09-51-14).txt

     

    Type de recherche: Examen complet (C:\|D:\|E:\|G:\|H:\|)

    Eléments examinés: 317325

    Temps écoulé: 1 hour(s), 28 minute(s), 7 second(s)

     

    Processus mémoire infecté(s): 0

    Module(s) mémoire infecté(s): 0

    Clé(s) du Registre infectée(s): 1

    Valeur(s) du Registre infectée(s): 0

    Elément(s) de données du Registre infecté(s): 0

    Dossier(s) infecté(s): 0

    Fichier(s) infecté(s): 0

     

    Processus mémoire infecté(s):

    (Aucun élément nuisible détecté)

     

    Module(s) mémoire infecté(s):

    (Aucun élément nuisible détecté)

     

    Clé(s) du Registre infectée(s):

    HKEY_LOCAL_MACHINE\SOFTWARE\EoRezo (Rogue.Eorezo) -> Quarantined and deleted successfully.

     

    Valeur(s) du Registre infectée(s):

    (Aucun élément nuisible détecté)

     

    Elément(s) de données du Registre infecté(s):

    (Aucun élément nuisible détecté)

     

    Dossier(s) infecté(s):

    (Aucun élément nuisible détecté)

     

    Fichier(s) infecté(s):

    (Aucun élément nuisible détecté)

     

     

     

     

    et voici le rapport de la premiere etape usb fix:

     

     

    ############################## | UsbFix V6.042 |

     

    User : Toum (Administrateurs) # PC-DE-TOUM

    Update on 15/10/2009 by Chiquitine29, C_XX & Chimay8

    Start at: 15:12:46 | 20/10/2009

    Website : http://pagesperso-orange.fr/NosTools/index.html

     

    Intel® Core2 Duo CPU T5800 @ 2.00GHz

    Microsoft® Windows Vista Édition Familiale Premium (6.0.6002 32-bit) # Service Pack 2

    Internet Explorer 7.0.6002.18005

    Windows Firewall Status : Enabled

     

    C:\ -> Disque fixe local # 144,04 Go (13,27 Go free) [ACER] # NTFS

    D:\ -> Disque fixe local # 137,5 Go (12,97 Go free) [DATA] # NTFS

    E:\ -> Disque CD-ROM

    F:\ -> Disque fixe local # 74,52 Go (842,7 Mo free) [HP_PAVILION] # NTFS

    G:\ -> Disque CD-ROM

    H:\ -> Disque CD-ROM

     

    ############################## | Processus actifs |

     

    C:\Windows\System32\smss.exe

    C:\Windows\system32\csrss.exe

    C:\Windows\system32\csrss.exe

    C:\Windows\system32\wininit.exe

    C:\Windows\system32\services.exe

    C:\Windows\system32\lsass.exe

    C:\Windows\system32\lsm.exe

    C:\Windows\system32\svchost.exe

    C:\Windows\system32\nvvsvc.exe

    C:\Windows\system32\svchost.exe

    C:\Windows\System32\svchost.exe

    C:\Windows\System32\svchost.exe

    C:\Windows\system32\winlogon.exe

    C:\Windows\System32\svchost.exe

    C:\Windows\system32\svchost.exe

    C:\Windows\system32\SLsvc.exe

    C:\Windows\system32\svchost.exe

    C:\Program Files\Acer\Acer Bio Protection\CompPtcVUI.exe

    C:\Windows\system32\nvvsvc.exe

    C:\Windows\system32\Dwm.exe

    C:\Windows\system32\vfsFPService.exe

    C:\Windows\system32\svchost.exe

    C:\Windows\Explorer.EXE

    C:\Users\Toum\AppData\Roaming\eoRezo\SoftwareUpdate\SoftwareUpdateHP.exe

    C:\Windows\system32\svchost.exe

    C:\Windows\system32\agrsmsvc.exe

    C:\Windows\System32\alg.exe

    C:\Windows\system32\svchost.exe

    C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe

    C:\Windows\system32\svchost.exe

    C:\Program Files\NewTech Infosystems\NTI Backup Now 5\Client\Agentsvc.exe

    C:\Program Files\Acer Arcade Deluxe\HomeMedia\Kernel\DMP\CLHNService.exe

    C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe

    C:\Program Files\Acer\Empowering Technology\Service\ETService.exe

    C:\Program Files\Google\Update\GoogleUpdate.

     

     

     

     

    merci

  4. Bonjour,

    j'ai fait l'analyse complète, Dr web a trouvé une dizaine de virus qu'il a mis en quarantaine ou supprimer mais je n'ai pas trouvé l'icone: http://users.telenet.be/bluepatchy/miekiem...mages/check.gif

    et lorsque j'ai cliqué sur enregistrer le rapport, l'ordinateur à planter, une page bleu s'est affiché dans laquelle on m'inviter à redémarrer l'ordi si cela m'arrivai pour la première fois ce que j'ai fais et toujours les même problèmes après redémarrage.

     

    Que faire? Merci

     

     

    Ps: Je pense que cela n'a aucun rapport mais juste avant que c'est problèmes apparaissent j'ai cassé mon écran il n'y a plus que la moitié qui fonctionne je dois branché un autres écran pour utiliser l'ordi.

  5. Re,

     

    voici le log.xt:

     

    Logfile of random's system information tool 1.06 (written by random/random)

    Run by Toum at 2009-10-19 19:09:47

    Microsoft® Windows Vista Édition Familiale Premium Service Pack 2

    System drive C: has 8 GB (5%) free of 148 GB

    Total RAM: 3070 MB (69% free)

     

    HijackThis download failed

     

    ======Scheduled tasks folder======

     

    C:\Windows\tasks\Driver Robot.job

    C:\Windows\tasks\Google Software Updater.job

    C:\Windows\tasks\GoogleUpdateTaskMachineCore.job

    C:\Windows\tasks\GoogleUpdateTaskMachineUA.job

    C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2353890901-2394073789-3873714821-1000Core.job

    C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2353890901-2394073789-3873714821-1000UA.job

     

    ======Registry dump======

     

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4efb-9B51-7695ECA05670}]

     

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]

    Adobe PDF Reader Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080]

     

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]

    Java Plug-In SSV Helper - C:\Program Files\Java\jre6\bin\ssv.dll [2008-12-25 320920]

     

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7E853D72-626A-48EC-A868-BA8D5E23E045}]

     

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]

    Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll [2009-05-31 668656]

     

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]

    Java Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2008-12-25 34816]

     

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]

    {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - Acer eDataSecurity Management - C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDStoolbar.dll [2008-03-05 142896]

    {0FBB9689-D3D7-4f7a-A2E2-585B10099BFC} - Veoh Web Player Video Finder - C:\Program Files\Veoh Networks\VeohWebPlayer\VeohIEToolbar.dll [2009-03-07 429816]

     

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]

    "eRecoveryService"= []

    "EoEngine"= []

    "avast!"=C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe [2009-08-17 81000]

    "ZPdtWzdVitaKey MC3000"=C:\Program Files\Acer\Acer Bio Protection\PdtWzd.exe [2008-09-06 3659264]

    "eDataSecurity Loader"=C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSloader.exe [2008-03-05 526896]

    "WinDVR SchSvr"=C:\Program Files\Common Files\InterVideo\SchSvr\SchSvr.exe [2004-04-21 151552]

    "Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-21 1008184]

    "WarReg_PopUp"=C:\Program Files\Acer\WR_PopUp\WarReg_PopUp.exe [2008-01-29 303104]

    "TkBellExe"=C:\Program Files\Common Files\Real\Update_OB\realsched.exe [2008-12-08 185872]

    "SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2008-04-04 1037608]

    "SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2008-12-25 136600]

    "RtHDVCpl"=C:\Windows\RtHDVCpl.exe [2008-03-11 5296128]

    "PLFSetI"=C:\Windows\PLFSetI.exe [2007-10-23 200704]

    "PlayMovie"=C:\Program Files\Acer Arcade Deluxe\PlayMovie\PMVService.exe [2008-10-17 167936]

    "PCSuiteTrayApplication"=C:\Program Files\Nokia\Nokia PC Suite 6\Launch Application 2.exe -onlytray []

    "NvMediaCenter"=C:\Windows\system32\NvMcTray.dll [2009-08-19 92704]

    "NvCplDaemon"=C:\Windows\system32\NvCpl.dll [2009-08-19 13793824]

    "LManager"=C:\PROGRA~1\LAUNCH~1\LManager.exe [2008-04-28 809480]

    "IAAnotif"=C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe [2007-10-03 178712]

    "ePower_DMC"=C:\Program Files\Acer\Empowering Technology\ePower\ePower_DMC.exe [2008-03-11 397312]

    "eAudio"=C:\Program Files\Acer\Empowering Technology\eAudio\eAudio.exe [2008-03-07 544768]

    "Driver for Printer"=sdphost.exe []

    "DataLayer"=C:\PROGRA~1\COMMON~1\PCSuite\DATALA~1\DATALA~1.EXE []

    "CLMLServer"=C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\Kernel\CLML\CLMLSvc.exe [2008-07-24 167936]

    "BkupTray"=C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BkupTray.exe [2008-02-25 34040]

    "AVShow110"=C:\Program Files\USB20TvTuner\Remoter.exe [2003-12-26 73728]

    "ArcadeDeluxeAgent"=C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe [2008-07-24 147456]

    "AdobeCS4ServiceManager"=C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe [2008-08-14 611712]

    "Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [2008-10-15 39792]

     

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]

    "SoftwareHelper"=C:\Users\Toum\AppData\Roaming\eoRezo\SoftwareUpdate\SoftwareUpdateHP.exe [2008-12-09 368224]

     

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]

    "WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2008-01-21 202240]

    "VeohPlugin"=C:\Program Files\Veoh Networks\VeohWebPlayer\veohwebplayer.exe [2009-03-07 3558136]

    "RGSC"=C:\Program Files\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe /silent []

    "PcSync"=C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog []

    "msnmsgr"=C:\Program Files\Windows Live\Messenger\msnmsgr.exe [2007-10-18 5724184]

    "Google Update"=C:\Users\Toum\AppData\Local\Google\Update\GoogleUpdate.exe [2009-05-10 133104]

    "ehTray.exe"=C:\Windows\ehome\ehTray.exe [2008-01-21 125952]

     

    C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup

    Acer VCM.lnk - C:\Program Files\Acer\Acer VCM\AcerVCM.exe

    BTTray.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe

    InterVideo WinCinema Manager.lnk - C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe

     

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AWinNotifyVitaKey MC3000]

    C:\Program Files\Acer\Acer Bio Protection\WinNotify.dll [2008-09-06 3024896]

     

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]

    "notification packages"=scecli

    C:\Program Files\Acer\Acer Bio Protection\PwdFilter

     

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]

     

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]

     

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]

     

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]

     

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]

    "EnableLUA"=0

    "dontdisplaylastusername"=0

    "legalnoticecaption"=

    "legalnoticetext"=

    "shutdownwithoutlogon"=1

    "undockwithoutlogon"=1

    "EnableUIADesktopToggle"=0

     

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]

    "BindDirectlyToPropertySetStorage"=

     

    [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

    "C:\Program Files\BitTorrent\bittorrent.exe"="C:\Program Files\BitTorrent\bittorrent.exe:*:Enabled:BitTorrent"

    "C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSfsu.exe"="C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSfsu.exe:*:Enabled:eDSfsu"

    "C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\encryption.exe"="C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\encryption.exe:*:Enabled:encryption"

    "C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\decryption.exe"="C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\decryption.exe:*:Enabled:decryption"

    "C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSMgr.exe"="C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSMgr.exe:*:Enabled:eDSMgr"

    "C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDStbmngr.exe"="C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDStbmngr.exe:*:Enabled:eDStbmngr"

    "C:\Program Files\Acer\Empowering Technology\eDataSecurity\x64\eDSfsu.exe"="C:\Program Files\Acer\Empowering Technology\eDataSecurity\x64\eDSfsu.exe:*:Enabled:eDSfsu"

    "C:\Program Files\Acer\Empowering Technology\eDataSecurity\x64\encryption.exe"="C:\Program Files\Acer\Empowering Technology\eDataSecurity\x64\encryption.exe:*:Enabled:encryption"

    "C:\Program Files\Acer\Empowering Technology\eDataSecurity\x64\decryption.exe"="C:\Program Files\Acer\Empowering Technology\eDataSecurity\x64\decryption.exe:*:Enabled:decryption"

    "C:\Program Files\Acer\Empowering Technology\eDataSecurity\x64\eDSMgr.exe"="C:\Program Files\Acer\Empowering Technology\eDataSecurity\x64\eDSMgr.exe:*:Enabled:eDSMgr"

    "C:\Program Files\Acer\Empowering Technology\eDataSecurity\x64\eDStbmngr.exe"="C:\Program Files\Acer\Empowering Technology\eDataSecurity\x64\eDStbmngr.exe:*:Enabled:eDStbmngr"

     

    [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

     

    [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{116b1652-238e-11de-9aa8-00a0d1aac029}]

    shell\AutoRun\command - .\Encryption Tool\MaxtorEncryption.exe

     

    [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{1db4e9af-15fa-11de-9ca6-00a0d1aac029}]

    shell\AutoRun\command - H:\WD_Windows_Tools\setup.exe

     

    [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{52b98d53-e88c-11dd-b288-00a0d1aac029}]

    shell\AutoRun\command - ab31.exe

    shell\explore\command - ab31.exe

    shell\open\command - ab31.exe

     

    [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{932a51ae-3186-11de-a3c4-00a0d1aac029}]

    shell\AutoRun\command - C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL H:\copy.exe

     

    [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{9de4d972-beea-11dd-909c-00a0d1aac029}]

    shell\AutoRun\command - G:\Launch.exe

     

    [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{e5b2f6ae-49f4-11de-ab21-00a0d1aac029}]

    shell\AutoRun\command - H:\setup\rsrc\Autorun.exe

    shell\dinstall\command - H:\Directx\dxsetup.exe

     

     

    ======List of files/folders created in the last 1 months======

     

    2009-10-19 19:09:48 ----D---- C:\Program Files\trend micro

    2009-10-19 19:09:47 ----D---- C:\rsit

    2009-10-17 02:18:29 ----A---- C:\Windows\ntbtlog.txt

    2009-10-17 01:11:48 ----D---- C:\inetpub

    2009-10-17 00:41:02 ----SHD---- C:\Config.Msi

    2009-10-06 04:39:02 ----A---- C:\Windows\system32\wups2.dll

    2009-10-06 04:39:02 ----A---- C:\Windows\system32\wucltux.dll

    2009-10-06 04:39:02 ----A---- C:\Windows\system32\wuauclt.exe

    2009-10-06 04:39:01 ----A---- C:\Windows\system32\wuaueng.dll

    2009-10-06 04:38:39 ----A---- C:\Windows\system32\wups.dll

    2009-10-06 04:38:39 ----A---- C:\Windows\system32\wudriver.dll

    2009-10-06 04:38:38 ----A---- C:\Windows\system32\wuapi.dll

    2009-10-06 04:38:25 ----A---- C:\Windows\system32\wuwebv.dll

    2009-10-06 04:38:25 ----A---- C:\Windows\system32\wuapp.exe

    2009-10-02 18:25:02 ----N---- C:\Windows\system32\MpSigStub.exe

    2009-09-29 16:33:57 ----D---- C:\ProgramData\Aspyr

    2009-09-29 16:32:18 ----A---- C:\Windows\system32\CmdLineExt.dll

    2009-09-28 00:36:09 ----D---- C:\Intel

    2009-09-28 00:28:45 ----D---- C:\Users\Toum\AppData\Roaming\Blitware

    2009-09-26 16:32:54 ----D---- C:\ProgramData\InterVideo

    2009-09-26 16:32:15 ----D---- C:\Program Files\Common Files\InterVideo

    2009-09-26 16:31:39 ----A---- C:\Windows\system32\IVIresizeW7.dll

    2009-09-26 16:31:39 ----A---- C:\Windows\system32\IVIresizePX.dll

    2009-09-26 16:31:39 ----A---- C:\Windows\system32\IVIresizeP6.dll

    2009-09-26 16:31:39 ----A---- C:\Windows\system32\IVIresizeM6.dll

    2009-09-26 16:31:39 ----A---- C:\Windows\system32\IVIresizeA6.dll

    2009-09-26 16:31:39 ----A---- C:\Windows\system32\IVIresize.dll

    2009-09-26 16:31:36 ----D---- C:\Program Files\InterVideo

    2009-09-26 16:25:28 ----D---- C:\Program Files\USB20TvTuner

    2009-09-26 15:05:26 ----A---- C:\Windows\SoundConverter.INI

     

    ======List of files/folders modified in the last 1 months======

     

    2009-10-19 19:09:48 ----RD---- C:\Program Files

    2009-10-19 19:09:46 ----D---- C:\Windows\Temp

    2009-10-19 18:22:42 ----D---- C:\Windows\System32

    2009-10-19 18:22:42 ----D---- C:\Windows\inf

    2009-10-19 18:22:42 ----A---- C:\Windows\system32\PerfStringBackup.INI

    2009-10-19 18:18:59 ----D---- C:\Windows\Tasks

    2009-10-17 02:27:26 ----D---- C:\Windows\pss

    2009-10-17 02:18:29 ----D---- C:\Windows

    2009-10-17 01:32:23 ----D---- C:\Windows\system32\wbem

    2009-10-17 01:31:24 ----SHD---- C:\Windows\Installer

    2009-10-17 01:31:24 ----D---- C:\Windows\system32\Tasks

    2009-10-17 01:31:24 ----D---- C:\Windows\system32\spool

    2009-10-17 01:31:24 ----D---- C:\Windows\system32\drivers

    2009-10-17 01:31:24 ----D---- C:\Windows\system32\CodeIntegrity

    2009-10-17 01:31:24 ----D---- C:\Windows\system32\catroot2

    2009-10-17 01:31:24 ----D---- C:\Windows\rescache

    2009-10-17 01:31:21 ----D---- C:\Windows\ehome

    2009-10-17 01:31:20 ----D---- C:\Users\Toum\AppData\Roaming\dvdcss

    2009-10-17 01:31:20 ----D---- C:\Users\Toum\AppData\Roaming\Azureus

    2009-10-17 01:31:20 ----D---- C:\Program Files\WinamaxPoker

    2009-10-17 01:31:19 ----D---- C:\Windows\registration

    2009-10-17 01:27:27 ----SHD---- C:\System Volume Information

    2009-10-17 01:14:39 ----RSD---- C:\Windows\assembly

    2009-10-17 01:14:39 ----D---- C:\Windows\Microsoft.NET

    2009-10-17 01:11:53 ----D---- C:\Windows\winsxs

    2009-10-17 01:11:52 ----D---- C:\Windows\system32\migration

    2009-10-17 01:11:52 ----D---- C:\Windows\system32\inetsrv

    2009-10-17 01:11:52 ----D---- C:\Windows\system32\fr-FR

    2009-10-17 01:11:52 ----D---- C:\Windows\system32\040C

    2009-10-17 00:57:54 ----SD---- C:\Users\Toum\AppData\Roaming\Microsoft

    2009-10-16 22:12:27 ----D---- C:\Windows\Prefetch

    2009-10-16 15:53:02 ----D---- C:\Windows\system32\catroot

    2009-10-02 17:31:30 ----D---- C:\ProgramData\NVIDIA

    2009-09-29 16:33:57 ----HD---- C:\ProgramData

    2009-09-27 21:59:46 ----HD---- C:\Program Files\InstallShield Installation Information

    2009-09-26 16:32:15 ----D---- C:\Program Files\Common Files

    2009-09-26 16:25:27 ----SD---- C:\Windows\Downloaded Program Files

    2009-09-26 16:25:25 ----D---- C:\Program Files\Common Files\InstallShield

    2009-09-26 16:22:10 ----D---- C:\Windows\twain_32

    2009-09-26 15:37:18 ----D---- C:\Program Files\Common Files\Wise Installation Wizard

    2009-09-26 15:37:04 ----D---- C:\Program Files\AGEIA Technologies

    2009-09-26 15:30:53 ----D---- C:\NVIDIA

    2009-09-26 15:09:41 ----D---- C:\Program Files\Nokia

    2009-09-26 15:06:57 ----D---- C:\Program Files\DivX

    2009-09-26 15:05:56 ----D---- C:\Program Files\Common Files\DivX Shared

     

    ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

     

    R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2009-08-17 23152]

    R1 aswSP;avast! Self Protection; C:\Windows\system32\drivers\aswSP.sys [2009-08-17 114768]

    R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2009-08-17 51376]

    R1 DritekPortIO;Dritek General Port I/O; \??\C:\PROGRA~1\LAUNCH~1\DPortIO.sys [2006-11-02 20112]

    R2 {49DE1C67-83F8-4102-99E0-C16DCC7EEC796};Power Control [2008/12/19 23:50:49]; \??\C:\Program Files\Acer Arcade Deluxe\PlayMovie\000.fcl [2008-10-17 87536]

    R2 aswFsBlk;aswFsBlk; C:\Windows\system32\DRIVERS\aswFsBlk.sys [2009-08-17 20560]

    R2 aswMonFlt;aswMonFlt; C:\Windows\system32\DRIVERS\aswMonFlt.sys [2009-08-17 53328]

    R2 int15;int15; \??\C:\Windows\system32\drivers\int15.sys [2008-03-21 15392]

    R2 mbmiodrvr;mbmiodrvr; \??\C:\Windows\system32\mbmiodrvr.sys [2004-04-10 2944]

    R2 NTIPPKernel;NTIPPKernel; \??\C:\Program Files\Acer Arcade Deluxe\HomeMedia\Kernel\DMP\NTIPPKernel.sys [2008-01-16 122368]

    R2 PSDNServ;PSDNServ; C:\Windows\system32\DRIVERS\PSDNServ.sys [2008-03-05 16944]

    R2 psdvdisk;PSDVdisk; C:\Windows\system32\DRIVERS\PSDVdisk.sys [2008-03-05 60464]

    R2 RMCAST;Pilote du protocole RMCAT PGMP; C:\Windows\system32\DRIVERS\RMCAST.sys [2009-04-10 113664]

    R3 AgereSoftModem;Agere Systems Soft Modem; C:\Windows\system32\DRIVERS\AGRSM.sys [2008-02-29 1202560]

    R3 CmBatt;Pilote pour Batterie à méthode de contrôle ACPI Microsoft; C:\Windows\system32\DRIVERS\CmBatt.sys [2008-01-21 14208]

    R3 DKbFltr;Dritek Keyboard Filter Driver; C:\Windows\system32\DRIVERS\DKbFltr.sys [2006-11-02 21264]

    R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys [2009-01-15 23848]

    R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2008-03-11 2077080]

    R3 itecir;ITECIR Infrared Receiver; C:\Windows\system32\DRIVERS\itecir.sys [2007-12-18 54784]

    R3 L1E;NDIS Miniport Driver for Atheros AR8121/AR8113/AR8114 PCI-E Ethernet Controller; C:\Windows\system32\DRIVERS\L1E60x86.sys [2008-03-11 48128]

    R3 NETw4v32;Pilote de carte Intel® Wireless WiFi Link pour Windows Vista 32 bits; C:\Windows\system32\DRIVERS\NETw4v32.sys [2008-01-08 2554368]

    R3 NTIDrvr;Upper Class Filter Driver; C:\Windows\system32\DRIVERS\NTIDrvr.sys [2008-01-30 14848]

    R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2009-08-19 9787488]

    R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2008-04-04 196784]

    R3 usbvideo;Périphérique vidéo USB (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2008-01-21 134016]

    R3 vfs101x;vfs101x; C:\Windows\system32\drivers\vfs101x.sys [2008-04-22 40752]

    R3 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\DRIVERS\wmiacpi.sys [2008-01-21 11264]

    S2 adfs;adfs; C:\Windows\system32\drivers\adfs.sys []

    S3 ag942x4o;ag942x4o; C:\Windows\system32\drivers\ag942x4o.sys []

    S3 BthEnum;Pilote de bloc de demande Bluetooth; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-04-10 22528]

    S3 BthPan;Périphérique Bluetooth (réseau personnel); C:\Windows\system32\DRIVERS\bthpan.sys [2008-01-21 92160]

    S3 BthPort;Pilote de port Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2009-04-10 507904]

    S3 BTHUSB;Pilote USB radio Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2009-04-10 29696]

    S3 btwaudio;Périphérique audio Bluetooth; C:\Windows\system32\drivers\btwaudio.sys [2007-03-29 79664]

    S3 btwavdt;Bluetooth AVDT; C:\Windows\system32\drivers\btwavdt.sys [2007-02-27 81200]

    S3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2007-02-27 16432]

    S3 catchme;catchme; \??\C:\Users\Toum\AppData\Local\Temp\catchme.sys []

    S3 DCamUSBEMPIA;USB 2800 Video; C:\Windows\system32\DRIVERS\emDevice.sys [2005-09-08 168704]

    S3 Dot4;Pilote MS IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4.sys [2008-01-21 131584]

    S3 Dot4Print;Pilote de classe Imprimante pour IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4Prt.sys [2008-01-21 16384]

    S3 dot4usb;MS Dot4USB Filter Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2008-01-21 36864]

    S3 drmkaud;Filtre de décodeur DRM (Noyau Microsoft); C:\Windows\system32\drivers\drmkaud.sys [2008-01-21 5632]

    S3 FiltUSBEMPIA;USB Device Lower Filter; C:\Windows\system32\DRIVERS\emFilter.sys [2005-09-08 5248]

    S3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2008-12-13 17480]

    S3 HdAudAddService;Pilote de fonction UAA 1.1 Microsoft pour le service High Definition Audio; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]

    S3 JMCR;JMCR; C:\Windows\system32\DRIVERS\jmcr.sys [2008-04-11 84240]

    S3 MSKSSRV;Proxy de service de répartition Microsoft; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-21 8192]

    S3 MSPCLOCK;Proxy d'horloge de répartition Microsoft; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-21 5888]

    S3 MSPQM;Proxy de gestion de qualité de répartition Microsoft; C:\Windows\system32\drivers\MSPQM.sys [2008-01-21 5504]

    S3 MSTEE;Convertisseur en T/site-à-site de répartition Microsoft; C:\Windows\system32\drivers\MSTEE.sys [2008-01-21 6016]

    S3 NPF;Netgroup Packet Filter; C:\Windows\system32\drivers\npf.sys [2008-12-31 42512]

    S3 RFCOMM;Périphérique Bluetooth (TDI protocole RFCOMM); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-04-10 148992]

    S3 ScanUSBEMPIA;USB Still Image Capture Device; C:\Windows\system32\DRIVERS\emScan.sys [2005-09-08 5120]

    S3 USB_RNDIS;ADSL2+ Modem USB RNDIS Adapter; C:\Windows\system32\DRIVERS\usb8023.sys [2009-04-10 15872]

    S3 USBAAPL;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl.sys [2009-03-05 36864]

    S3 usbscan;Pilote de scanneur USB; C:\Windows\system32\DRIVERS\usbscan.sys [2008-01-21 35328]

    S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2008-01-21 39936]

    S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-21 83328]

    S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2008-01-21 6656]

    S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-01-21 386616]

     

    ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

     

    R2 AgereModemAudio;Agere Modem Call Progress Audio; C:\Windows\system32\agrsmsvc.exe [2007-12-11 12800]

    R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\Windows\system32\svchost.exe [2008-01-21 21504]

    R2 aswUpdSv;avast! iAVS4 Control Service; C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe [2009-08-17 18752]

    R2 BthServ;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2008-01-21 21504]

    R2 BUNAgentSvc;NTI Backup Now 5 Agent Service; C:\Program Files\NewTech Infosystems\NTI Backup Now 5\Client\Agentsvc.exe [2008-02-25 21752]

    R2 CLHNService;CLHNService; C:\Program Files\Acer Arcade Deluxe\HomeMedia\Kernel\DMP\CLHNService.exe [2008-01-16 81504]

    R2 eDataSecurity Service;eDataSecurity Service; C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe [2008-03-05 500784]

    R2 ETService;Empowering Technology Service; C:\Program Files\Acer\Empowering Technology\Service\ETService.exe [2008-03-21 24576]

    R2 IGBASVC;iGroupTec Service; C:\Program Files\Acer\Acer Bio Protection\BASVC.exe [2008-09-06 3474432]

    R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2007-01-17 61440]

    R2 MobilityService;MobilityService; C:\Acer\Mobility Center\MobilityService.exe [2007-12-06 110592]

    R2 Nero BackItUp Scheduler 4.0;Nero BackItUp Scheduler 4.0; C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe [2008-12-05 935208]

    R2 NTISchedulerSvc;NTI Backup Now 5 Scheduler Service; C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe [2008-02-25 131072]

    R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2009-08-19 211488]

    R2 PnkBstrA;PnkBstrA; C:\Windows\system32\PnkBstrA.exe [2009-05-27 66872]

    R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files\Cyberlink\Shared files\RichVideo.exe [2007-01-09 272024]

    R2 RS_Service;Raw Socket Service; C:\Program Files\Acer\Acer VCM\RS_Service.exe [2008-01-10 233472]

    R2 vfsFPService;Validity Fingerprint Service; C:\Windows\system32\vfsFPService.exe [2008-04-22 599344]

    R2 W3SVC;@%windir%\system32\inetsrv\iisres.dll,-30003; C:\Windows\system32\svchost.exe [2008-01-21 21504]

    R3 WAS;@%windir%\system32\inetsrv\iisres.dll,-30001; C:\Windows\system32\svchost.exe [2008-01-21 21504]

    S2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [2009-03-06 132424]

    S2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast4\ashServ.exe [2009-08-17 138680]

    S2 Bonjour Service;Service Bonjour; C:\Program Files\Bonjour\mDNSResponder.exe [2008-12-12 238888]

    S2 gupdate1c9e234d8a4de30;Service Google Update (gupdate1c9e234d8a4de30); C:\Program Files\Google\Update\GoogleUpdate.exe [2009-05-31 133104]

    S2 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-05-31 183280]

    S2 IAANTMON;Intel® Matrix Storage Event Monitor; C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe [2007-10-03 358936]

    S2 NTIBackupSvc;NTI Backup Now 5 Backup Service; C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe [2008-02-25 49152]

    S2 simptcp;@%SystemRoot%\system32\simptcp.dll,-200; C:\Windows\System32\tcpsvcs.exe [2009-08-14 9728]

    S3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe [2009-08-17 254040]

    S3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast4\ashWebSv.exe [2009-08-17 352920]

    S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2009-02-05 655624]

    S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]

    S3 iPod Service;Service de l’iPod; C:\Program Files\iPod\bin\iPodService.exe [2009-03-12 656168]

    S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]

    S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]

    S3 usnjsvc;Service Messenger Sharing Folders USN Journal Reader; C:\Program Files\Windows Live\Messenger\usnsvc.exe [2007-10-18 98328]

    S3 WLSetupSvc;Windows Live Setup Service; C:\Program Files\Windows Live\installer\WLSetupSvc.exe [2007-10-25 266240]

     

    -----------------EOF-----------------

     

     

    et le info.txt:

     

    info.txt logfile of random's system information tool 1.06 2009-10-19 19:09:55

     

    ======Uninstall list======

     

    -->C:\Program Files\Common Files\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0

    -->C:\Program Files\DivX\DivXConverterUninstall.exe /CONVERTER

    -->MsiExec /X{B83FC356-B7C0-441F-8A4D-D71E088E7974}

    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{A450831D-25F6-4F42-9662-D000B25E0D82}\Setup.exe" -uninstall

    -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{AA4BF92B-2AAF-11DA-9D78-000129760D75}\Setup.exe" -uninstall

    Acer Arcade Deluxe-->"C:\Program Files\InstallShield Installation Information\{2637C347-9DAD-11D6-9EA2-00055D0CA761}\Setup.exe" /z-uninstall

    Acer Bio Protection

     

    AAV 6.0.00.12-->"C:\Program Files\Acer\Acer Bio Protection\uninstall.exe"

    Acer Crystal Eye webcam Ver:1.1.58.429-->C:\Program Files\InstallShield Installation Information\{D0ACE89D-EC7F-470F-80BE-4C98ED366B32}\setup.exe -runfromtemp -l0x040c -removeonly

    Acer eAudio Management-->"C:\Program Files\InstallShield Installation Information\{57265292-228A-41FA-9AEC-4620CBCC2739}\Setup.exe" -uninstall

    Acer eDataSecurity Management-->C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSnstHelper.exe -Operation UNINSTALL

    Acer Empowering Technology-->"C:\Program Files\InstallShield Installation Information\{8F1B6239-FEA0-450A-A950-B05276CE177C}\setup.exe" -runfromtemp -l0x040c -removeonly

    Acer ePower Management-->"C:\Program Files\InstallShield Installation Information\{58E5844B-7CE2-413D-83D1-99294BF6C74F}\setup.exe" -runfromtemp -l0x040c -removeonly

    Acer eRecovery Management-->"C:\Program Files\InstallShield Installation Information\{7F811A54-5A09-4579-90E1-C93498E230D9}\setup.exe" -runfromtemp -l0x040c -removeonly

    Acer eSettings Management-->"C:\Program Files\InstallShield Installation Information\{13D85C14-2B85-419F-AC41-C7F21E68B25D}\setup.exe" -runfromtemp -l0x040c -removeonly

    Acer GameZone Console 2.0.1.1-->"C:\Program Files\Acer GameZone\GameConsole\unins000.exe"

    Acer GridVista-->C:\Windows\GVUni.exe GridV.UNI

    Acer Mobility Center Plug-In-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{11316260-6666-467B-AC34-183FCB5D4335}\setup.exe" -l0x40c -removeonly

    Acer ScreenSaver-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{79DD56FC-DB8B-47F5-9C80-78B62E05F9BC}\setup.exe" -l0x9 -removeonly

    Acer VCM-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{047F790A-7A2A-4B6A-AD02-38092BA63DAC}\setup.exe" -l0x40c -removeonly

    Activation Assistant for the 2007 Microsoft Office suites-->"C:\ProgramData\{174892B1-CBE7-44F5-86FF-AB555EFD73A3}\Microsoft Office Activation Assistant.exe" REMOVE=TRUE MODIFY=FALSE

    Adobe AIR-->c:\Program Files\Common Files\Adobe AIR\Versions\1.0\Resources\Adobe AIR Updater.exe -arp:uninstall

    Adobe AIR-->MsiExec.exe /I{197A3012-8C85-4FD3-AB66-9EC7E13DB92E}

    Adobe Anchor Service CS4-->MsiExec.exe /I{1618734A-3957-4ADD-8199-F973763109A8}

    Adobe CMaps CS4-->MsiExec.exe /I{94D398EB-D2FD-4FD1-B8C4-592635E8A191}

    Adobe CSI CS4-->MsiExec.exe /I{0F723FC1-7606-4867-866C-CE80AD292DAF}

    Adobe Default Language CS4-->MsiExec.exe /I{C52E3EC1-048C-45E1-8D53-10B0C6509683}

    Adobe ExtendScript Toolkit CS4-->MsiExec.exe /I{F8EF2B3F-C345-4F20-8FE4-791A20333CD5}

    Adobe Extension Manager CS4-->MsiExec.exe /I{054EFA56-2AC1-48F4-A883-0AB89874B972}

    Adobe Flash Player 10 ActiveX-->C:\Windows\system32\Macromed\Flash\uninstall_activeX.exe

    Adobe Flash Player 10 Plugin-->C:\Windows\system32\Macromed\Flash\uninstall_plugin.exe

    Adobe Output Module-->MsiExec.exe /I{BB4E33EC-8181-4685-96F7-8554293DEC6A}

    Adobe PDF Library Files CS4-->MsiExec.exe /I{F93C84A6-0DC6-42AF-89FA-776F7C377353}

    Adobe Photoshop CS4-->C:\Program Files\Common Files\Adobe\Installers\faf656ef605427ee2f42989c3ad31b8\Setup.exe --uninstall=1

    Adobe Photoshop Lightroom 2.2-->MsiExec.exe /I{A4EE4223-98B1-4874-BA6E-E8A574F9C0FF}

    Adobe Reader 8.1.3-->MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A81300000003}

    Adobe Search for Help-->MsiExec.exe /I{F0E64E2E-3A60-40D8-A55D-92F6831875DA}

    Adobe Service Manager Extension-->MsiExec.exe /I{4943EFF5-229F-435D-BEA9-BE3CAEA783A7}

    Adobe Setup-->MsiExec.exe /I{0D67A4E4-5BE0-4C9A-8AD8-AB552B433F23}

    Adobe Type Support CS4-->MsiExec.exe /I{820D3F45-F6EE-4AAF-81EF-CE21FF21D230}

    Adobe Update Manager CS4-->MsiExec.exe /I{05308C4E-7285-4066-BAE3-6B50DA6ED755}

    Agatha Christie Death on the Nile-->"C:\Program Files\Acer GameZone\Agatha Christie Death on the Nile\Uninstall.exe" "C:\Program Files\Acer GameZone\Agatha Christie Death on the Nile\install.log"

    Agere Systems HDA Modem-->agrsmdel

    Alice Greenfingers-->"C:\Program Files\Acer GameZone\Alice Greenfingers\Uninstall.exe" "C:\Program Files\Acer GameZone\Alice Greenfingers\install.log"

    Analyseur et SDK MSXML 4.0 SP2-->MsiExec.exe /I{716E0306-8318-4364-8B8F-0CC4E9376BAC}

    Apple Mobile Device Support-->MsiExec.exe /I{162B71B8-8464-4680-A086-601D555B331D}

    Apple Software Update-->MsiExec.exe /I{6956856F-B6B3-4BE0-BA0B-8F495BE32033}

    Archiveur WinRAR-->C:\Program Files\WinRAR\uninstall.exe

    Atheros Communications Inc.® AR8121/AR8113/AR8114 Gigabit/Fast Ethernet Driver-->"C:\Program Files\InstallShield Installation Information\{3108C217-BE83-42E4-AE9E-A56A2A92E549}\setup.exe" -runfromtemp -l0x040c -removeonly

    Atrise Wakeup 2.1.0-->C:\Program Files\Atrise\Wakeup\uninstall.exe

    avast! Antivirus-->C:\Program Files\Alwil Software\Avast4\aswRunDll.exe "C:\Program Files\Alwil Software\Avast4\Setup\setiface.dll",RunSetup

    AVerMedia A309 (MiniCard, DVB-T) 1.0.0.43-->C:\Program Files\AVerMedia\AVerMedia A309 (MiniCard, DVB-T)\uninst.exe

    Azada-->"C:\Program Files\Acer GameZone\Azada\Uninstall.exe" "C:\Program Files\Acer GameZone\Azada\install.log"

    Backspin Billiards-->"C:\Program Files\Acer GameZone\Backspin Billiards\Uninstall.exe" "C:\Program Files\Acer GameZone\Backspin Billiards\install.log"

    Battlefield 2-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{04858915-9F49-4B2A-AED4-DC49A7DE6A7B}\setup.exe" -l0x40c -removeonly

    Big Kahuna Reef-->"C:\Program Files\Acer GameZone\Big Kahuna Reef\Uninstall.exe" "C:\Program Files\Acer GameZone\Big Kahuna Reef\install.log"

    Bonjour-->MsiExec.exe /I{07287123-B8AC-41CE-8346-3D777245C35B}

    Bricks of Egypt-->"C:\Program Files\Acer GameZone\Bricks of Egypt\Uninstall.exe" "C:\Program Files\Acer GameZone\Bricks of Egypt\install.log"

    BSPlayer-->"C:\Program Files\Webteh\BSplayer\uninstall.exe"

    Cake Mania-->"C:\Program Files\Acer GameZone\Cake Mania\Uninstall.exe" "C:\Program Files\Acer GameZone\Cake Mania\install.log"

    Call of Duty® 4 - Modern Warfare-->C:\Program Files\InstallShield Installation Information\{E48469CC-635E-4FD5-A122-1497C286D217}\CODsetup.exe -runfromtemp -l0x0409

    Call of Juarez - Bound in Blood-->C:\Program Files\InstallShield Installation Information\{FEFAF112-4DA8-479C-89E2-7DE25091711A}\Setup.exe -runfromtemp -l0x040c

    CanoScan Toolbox Ver4.1-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{BCE46757-7674-4416-BEDB-68205A60409E}\Setup.exe" -l0x40c anything

    Chicken Invaders 3-->"C:\Program Files\Acer GameZone\Chicken Invaders 3\Uninstall.exe" "C:\Program Files\Acer GameZone\Chicken Invaders 3\install.log"

    Combined Community Codec Pack 2008-09-21 16:18-->"C:\Program Files\Combined Community Codec Pack\unins000.exe"

    Diner Dash Flo on the Go-->"C:\Program Files\Acer GameZone\Diner Dash Flo on the Go\Uninstall.exe" "C:\Program Files\Acer GameZone\Diner Dash Flo on the Go\install.log"

    DivX Codec-->C:\Program Files\DivX\DivXCodecUninstall.exe /CODEC

    DivX Converter-->C:\Program Files\DivX\DivXConverterUninstall.exe /CONVERTER

    DivX Player-->C:\Program Files\DivX\DivXPlayerUninstall.exe /PLAYER

    DivX Plus DirectShow Filters-->C:\Program Files\DivX\DivXDSFiltersUninstall.exe /DSFILTERS

    DivX Web Player-->C:\Program Files\DivX\DivXWebPlayerUninstall.exe /PLUGIN

    eSobi v2-->C:\Program Files\InstallShield Installation Information\{15D967B5-A4BE-42AE-9E84-64CD062B25AA}\setup.exe -runfromtemp -l0x040c

    Favorit-->c:\users\toum\appdata\local\drgvraf.bat

    ffdshow [rev 2734] [2009-03-01]-->"C:\Program Files\Combined Community Codec Pack\Filters\FFDShow\unins000.exe"

    Google Update Helper-->MsiExec.exe /I{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}

    Google Earth-->MsiExec.exe /X{CC016F21-3970-11DE-B878-005056806466}

    GRID-->"C:\Program Files\InstallShield Installation Information\{5A0B7BA5-4682-4273-81C2-69B17E649103}\setup.exe" -runfromtemp -l0x0009 -removeonly

    Hamachi 1.0.1.5-->d:\Program Files\Hamachi\uninstall.exe

    HijackThis 2.0.2-->"C:\Users\Toum\Downloads\HijackThis.exe" /uninstall

    Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT=""

    Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT=""

    Images of Chaos Screen Saver-->C:\Windows\Images of Chaos.scr /u

    ImgBurn-->"C:\Program Files\ImgBurn\uninstall.exe"

    Intel® Matrix Storage Manager-->C:\Windows\system32\imsmudlg.exe -uninstall

    InterVideo WinDVR 3-->"C:\Program Files\InstallShield Installation Information\{6BF4613C-0A46-43AA-8FA8-0CB9F2C1A548}\setup.exe" REMOVEALL

    ITECIR Driver-->C:\Program Files\InstallShield Installation Information\{FCED9B62-34FF-4C15-8A23-F65221F7874D}\setup.exe -runfromtemp -l0x040c -removeonly

    iTunes-->MsiExec.exe /I{C26B06A9-27BB-45B0-9873-9C623EC2BA38}

    Java 6 Update 11-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216011FF}

    Jewel Quest Solitaire-->"C:\Program Files\Acer GameZone\Jewel Quest Solitaire\Uninstall.exe" "C:\Program Files\Acer GameZone\Jewel Quest Solitaire\install.log"

    JMicron JMB38X Flash Media Controller-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{26604C7E-A313-4D12-867F-7C6E7820BE4C}\setup.exe" -l0x40c -removeonly

    kuler-->MsiExec.exe /I{098727E1-775A-4450-B573-3F441F1CA243}

    Launch Manager-->C:\Windows\UnInst32.exe LManager.UNI

    Les Sims 3-->"C:\Program Files\InstallShield Installation Information\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}\Sims3Setup.exe" -runfromtemp -l0x040c -removeonly

    Mahjong Escape Ancient China-->"C:\Program Files\Acer GameZone\Mahjong Escape Ancient China\Uninstall.exe" "C:\Program Files\Acer GameZone\Mahjong Escape Ancient China\install.log"

    Mahjongg Artifacts-->"C:\Program Files\Acer GameZone\Mahjongg Artifacts\Uninstall.exe" "C:\Program Files\Acer GameZone\Mahjongg Artifacts\install.log"

    Malwarebytes' Anti-Malware-->"C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"

    Microsoft .NET Framework 3.5 Language Pack SP1 - fra-->MsiExec.exe /I{3E31821C-7917-367E-938E-E65FC413EA31}

    Microsoft .NET Framework 3.5 SP1-->C:\Windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe

    Microsoft .NET Framework 3.5 SP1-->MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}

    Microsoft Games for Windows - LIVE Redistributable-->MsiExec.exe /X{2E660A2A-A55F-43CD-9F73-CAD7382EEB78}

    Microsoft Games for Windows - LIVE-->MsiExec.exe /X{F112F66E-25CA-42DD-983C-6118EB38F606}

    Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0016-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}

    Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0018-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}

    Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001B-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}

    Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-006E-040C-0000-0000000FF1CE} /uninstall {B165D3C2-40AE-4D39-86F7-E5C87C4264C0}

    Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-00A1-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}

    Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}

    Microsoft Office Excel MUI (French) 2007-->MsiExec.exe /X{90120000-0016-040C-0000-0000000FF1CE}

    Microsoft Office Home and Student 2007-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall HOMESTUDENTR /dll OSETUP.DLL

    Microsoft Office Home and Student 2007-->MsiExec.exe /X{91120000-002F-0000-0000-0000000FF1CE}

    Microsoft Office OneNote MUI (French) 2007-->MsiExec.exe /X{90120000-00A1-040C-0000-0000000FF1CE}

    Microsoft Office PowerPoint MUI (French) 2007-->MsiExec.exe /X{90120000-0018-040C-0000-0000000FF1CE}

    Microsoft Office Proof (Arabic) 2007-->MsiExec.exe /X{90120000-001F-0401-0000-0000000FF1CE}

    Microsoft Office Proof (Dutch) 2007-->MsiExec.exe /X{90120000-001F-0413-0000-0000000FF1CE}

    Microsoft Office Proof (English) 2007-->MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}

    Microsoft Office Proof (French) 2007-->MsiExec.exe /X{90120000-001F-040C-0000-0000000FF1CE}

    Microsoft Office Proof (German) 2007-->MsiExec.exe /X{90120000-001F-0407-0000-0000000FF1CE}

    Microsoft Office Proof (Spanish) 2007-->MsiExec.exe /X{90120000-001F-0C0A-0000-0000000FF1CE}

    Microsoft Office Proofing (French) 2007-->MsiExec.exe /X{90120000-002C-040C-0000-0000000FF1CE}

    Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0401-0000-0000000FF1CE} /uninstall {14809F99-C601-4D4A-9391-F1E8FAA964C5}

    Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0407-0000-0000000FF1CE} /uninstall {A0516415-ED61-419A-981D-93596DA74165}

    Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0409-0000-0000000FF1CE} /uninstall {ABDDE972-355B-4AF1-89A8-DA50B7B5C045}

    Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-040C-0000-0000000FF1CE} /uninstall {F580DDD5-8D37-4998-968E-EBB76BB86787}

    Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0413-0000-0000000FF1CE} /uninstall {D66D5A44-E480-4BA4-B4F2-C554F6B30EBB}

    Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0C0A-0000-0000000FF1CE} /uninstall {187308AB-5FA7-4F14-9AB9-D290383A10D9}

    Microsoft Office Shared MUI (French) 2007-->MsiExec.exe /X{90120000-006E-040C-0000-0000000FF1CE}

    Microsoft Office Word MUI (French) 2007-->MsiExec.exe /X{90120000-001B-040C-0000-0000000FF1CE}

    Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053-->MsiExec.exe /X{770657D0-A123-3C07-8E44-1C83EC895118}

    Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}

    Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{A49F249F-0C91-497F-86DF-B2585E8E76B7}

    Microsoft Works-->MsiExec.exe /I{6B1CB38D-E2E4-4A30-933D-EFDEBA76AD9C}

    Microsoft WSE 3.0 Runtime-->MsiExec.exe /X{E3E71D07-CD27-46CB-8448-16D4FB29AA13}

    Mise à jour Microsoft Office Excel 2007 Help (KB963678)-->msiexec /package {90120000-0016-040C-0000-0000000FF1CE} /uninstall {B761869A-B85C-40E2-994C-A1CE78AC8F2C}

    Mise à jour Microsoft Office Powerpoint 2007 Help (KB963669)-->msiexec /package {90120000-0018-040C-0000-0000000FF1CE} /uninstall {C3DCA38E-005E-41BA-A52A-7C3429F351C3}

    Mise à jour Microsoft Office Word 2007 Help (KB963665)-->msiexec /package {90120000-001B-040C-0000-0000000FF1CE} /uninstall {81536A04-DBFB-4DB3-978F-0F284590C223}

    MobileMe Control Panel-->MsiExec.exe /I{C7EEC93A-2A61-4B1E-B696-A264680A889D}

    Module linguistique Microsoft .NET Framework 3.5 SP1- fra-->C:\Windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack SP1 - fra\setup.exe

    Motherboard Monitor 5-->"C:\Program Files\Motherboard Monitor 5\unins000.exe"

    Mozilla Firefox (3.0.14)-->C:\Program Files\Mozilla Firefox\uninstall\helper.exe

    MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}

    Mystery Case Files - Huntsville-->"C:\Program Files\Acer GameZone\Mystery Case Files - Huntsville\Uninstall.exe" "C:\Program Files\Acer GameZone\Mystery Case Files - Huntsville\install.log"

    Mystery Solitaire - Secret Island-->"C:\Program Files\Acer GameZone\Mystery Solitaire - Secret Island\Uninstall.exe" "C:\Program Files\Acer GameZone\Mystery Solitaire - Secret Island\install.log"

    neroxml-->MsiExec.exe /I{56C049BE-79E9-4502-BEA7-9754A3E60F9B}

    neuf Talk 1.4-->C:\Program Files\neuf Talk\uninst.exe

    NTI Backup Now 5-->C:\Program Files\InstallShield Installation Information\{12EFA1A4-AC3B-443C-8143-237EDE760403}\setup.exe -runfromtemp -l0x040c

    NTI Media Maker 8-->C:\Program Files\InstallShield Installation Information\{2413930C-8309-47A6-BC61-5EF27A4222BC}\setup.exe -runfromtemp -l0x040c

    NVIDIA Drivers-->C:\Windows\system32\nvuninst.exe UninstallGUI

    NVIDIA PhysX-->MsiExec.exe /X{B83FC356-B7C0-441F-8A4D-D71E088E7974}

    OpenAL-->"C:\Program Files\OpenAL\OalinstGridRelease.exe" /U

    OpenOffice.org 3.0-->MsiExec.exe /I{1572F66F-F9AD-4D45-B0D2-0F45A0D5A0F6}

    Orion-->MsiExec.exe /X{0BF78E88-A7C9-4406-89CF-0BA473BA7821}

    Outil de mise à jour Google-->"C:\Program Files\Google\Google Updater\GoogleUpdater.exe" -uninstall

    PhotoNow!-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{D36DD326-7280-11D8-97C8-000129760CBE}\Setup.exe" -uninstall

    PowerDirector-->"C:\Program Files\InstallShield Installation Information\{CB099890-1D5F-11D5-9EA9-0050BAE317E1}\setup.exe" /z-uninstall

    PunkBuster Services-->C:\Windows\system32\pbsvc.exe -u

    QuickTime-->MsiExec.exe /I{216AB108-2AE1-4130-B3D5-20B2C4C80F8F}

    RealPlayer-->C:\Program Files\Common Files\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0

    Realtek High Definition Audio Driver-->RtlUpd.exe -r -m

    Rockstar Games Social Club-->"C:\Program Files\InstallShield Installation Information\{08B3869E-D282-424C-9AFC-870E04A4BA14}\setup.exe" -runfromtemp -l0x040c -removeonly

    Safari-->MsiExec.exe /I{D90AFDE3-3E67-407A-ACA8-F0BAAD012F08}

    Security Update for 2007 Microsoft Office System (KB969559)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {69F52148-9BF6-4CDC-BF76-103DEAF3DD08}

    Security Update for 2007 Microsoft Office System (KB969679)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {C66E4A6C-6E07-4C63-8CCD-2493B5087C73}

    Security Update for Microsoft Office Excel 2007 (KB969682)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {C03803BD-745A-46F8-8557-817DED578780}

    Security Update for Microsoft Office PowerPoint 2007 (KB957789)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {7559E742-FF9F-4FAE-B279-008ED296CB4D}

    Security Update for Microsoft Office system 2007 (KB969613)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {5ECEB317-CBE9-4E08-AB10-756CB6F0FB6C}

    Security Update for Microsoft Office Word 2007 (KB969604)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {CF3D6499-709C-43D0-8908-BC5652656050}

    SFR - Kit de connexion-->C:\Program Files\SFR\Kit\uninstall.exe

    SoftwareUpdate 1.0-->"C:\Users\Toum\AppData\Roaming\eoRezo\SoftwareUpdate\unins000.exe"

    SP Cartman Sucks Screen Saver-->C:\Windows\system32\SP Cartman Sucks.scr /u

    STCC - The Game-->"D:\Games\STCC - The Game\Uninstall\unins000.exe"

    Suite Shared Configuration CS4-->MsiExec.exe /I{842B4B72-9E8F-4962-B3C1-1C422A5C4434}

    Synaptics Pointing Device Driver-->rundll32.exe "C:\Program Files\Synaptics\SynTP\SynISDLL.dll",standAloneUninstall

    System Requirements Lab-->C:\Program Files\SystemRequirementsLab\Uninstall.exe

    Tom Clancy's H.A.W.X-->MsiExec.exe /I{E8A0E0FF-D022-43AC-B860-A61FCF91501C}

    Top Spin 2-->MsiExec.exe /I{4D5B5CDD-77BD-48FB-8E2C-42A41ADC7CEC}

    Turbo Pizza-->"C:\Program Files\Acer GameZone\Turbo Pizza\Uninstall.exe" "C:\Program Files\Acer GameZone\Turbo Pizza\install.log"

    Update for 2007 Microsoft Office System (KB967642)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {C444285D-5E4F-48A4-91DD-47AAAA68E92D}

    Update for Microsoft .NET Framework 3.5 SP1 (KB963707)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {B2AE9C82-DC7B-3641-BFC8-87275C4F3607} /qb+ REBOOTPROMPT=""

    USB20TvTuner-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{1D0B41BB-2984-46B7-BDB8-89BC194EC335}\setup.exe" -l0x40c

    Validity Sensors software-->MsiExec.exe /X{567E8236-C414-4888-8211-3D61608D57AE}

    VC80CRTRedist - 8.0.50727.762-->MsiExec.exe /I{767CC44C-9BBC-438D-BAD3-FD4595DD148B}

    Veoh Web Player Beta-->"C:\Program Files\Veoh Networks\VeohWebPlayer\uninst.exe"

    VideoLAN VLC media player 0.8.6b-->C:\Program Files\VideoLAN\VLC\uninstall.exe

    Vuze-->C:\Program Files\Vuze\uninstall.exe

    WIDCOMM Bluetooth Software 6.0.1.5000-->MsiExec.exe /X{03D1988F-469F-4843-8E6E-E5FE9D17889D}

    Winamax Poker (remove only)-->"C:\Program Files\WinamaxPoker\uninst.exe"

    Windows Live installer-->MsiExec.exe /X{FD44E544-E7D0-4DBA-9FA0-8AE1A1300390}

    Windows Live Messenger-->MsiExec.exe /X{BADF6744-3787-48F6-B8C9-4C4995401D65}

    Windows Media Player Firefox Plugin-->MsiExec.exe /I{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}

    Zuma Deluxe-->"C:\Program Files\Acer GameZone\Zuma Deluxe\Uninstall.exe" "C:\Program Files\Acer GameZone\Zuma Deluxe\install.log"

     

    ======Security center information======

     

    AS: Windows Defender

     

    ======Environment variables======

     

    "ComSpec"=%SystemRoot%\system32\cmd.exe

    "FP_NO_HOST_CHECK"=NO

    "OS"=Windows_NT

    "Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\Acer\Empowering Technology\eDataSecurity\;C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86;C:\Program Files\Acer\Empowering Technology\eDataSecurity\x64;C:\Program Files\QuickTime\QTSystem\;C:\Program Files\Common Files\DivX Shared\

    "PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC

    "PROCESSOR_ARCHITECTURE"=x86

    "TEMP"=%SystemRoot%\TEMP

    "TMP"=%SystemRoot%\TEMP

    "USERNAME"=SYSTEM

    "windir"=%SystemRoot%

    "PROCESSOR_LEVEL"=6

    "PROCESSOR_IDENTIFIER"=x86 Family 6 Model 15 Stepping 13, GenuineIntel

    "PROCESSOR_REVISION"=0f0d

    "NUMBER_OF_PROCESSORS"=2

    "TRACE_FORMAT_SEARCH_PATH"=\\NTREL202.ntdev.corp.microsoft.com\4F18C3A5-CA09-4DBD-B6FC-219FDD4C6BE0\TraceFormat

    "DFSTRACINGON"=FALSE

    "Pathtem"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\Acer\Empowering Technology\eDataSecurity\;C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86;C:\Program Files\Acer\Empowering Technology\eDataSecurity\x64

    "NTIPath"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\Acer\Empowering Technology\eDataSecurity\;C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86;C:\Program Files\Acer\Empowering Technology\eDataSecurity\x64;C:\Program Files\NewTech Infosystems\NTI Backup Now 5\;

    "CLASSPATH"=.;C:\Program Files\Java\jre6\lib\ext\QTJava.zip

    "QTJAVA"=C:\Program Files\Java\jre6\lib\ext\QTJava.zip

    "RGSCLauncher"=C:\Program Files\Rockstar Games\Rockstar Games Social Club

    "RGSC"=C:\Program Files\Rockstar Games\Rockstar Games Social Club\1_0_0_0

     

    -----------------EOF-----------------

     

    Merci,

     

    à plus tard.

  6. Bonsoir,

     

    J'ai un problème sur mon Acer aspire 6920g, sous vista, je n'ai plus de connexion internet (le wifi ne semble plus marcher), le système de sécurité par emprunte digital ne marche plus non plus, mon antivirus avast ne démarre plus, l'aide windows non plus et quelques autres petites choses du genre. Est-ce un virus, dois-je générer un rapport Hijackthis si oui comment?

     

    Merci d'avance.

     

    Rémi

  7. Les films venaient d'une clé usb qu'elle n'a plus elle les a copier dans un repertoire sur le disque DATA, pour le fond d'écran ce sont par alternance les deux qu'elle a utilisée ou celui d'origine, pour les mélanges de fichiers; de la musique s'est retrouvée dans les photos et un fichier itunes dans les image, concernant l'explore pas de message d'erreur son processus est démarer à l'alumage mais l'explorer est invisible.

     

    Merci.

  8. Rebonjour.

    J'ai fait une analyse MBAM hier dont voici le raport:Malwarebytes' Anti-Malware 1.34

    Version de la base de données: 1820

    Windows 6.0.6001 Service Pack 1

     

    07/03/2009 01:17:44

    mbam-log-2009-03-07 (01-17-44).txt

     

    Type de recherche: Examen complet (C:\|D:\|)

    Eléments examinés: 150081

    Temps écoulé: 2 hour(s), 35 minute(s), 58 second(s)

     

    Processus mémoire infecté(s): 0

    Module(s) mémoire infecté(s): 0

    Clé(s) du Registre infectée(s): 0

    Valeur(s) du Registre infectée(s): 0

    Elément(s) de données du Registre infecté(s): 0

    Dossier(s) infecté(s): 0

    Fichier(s) infecté(s): 0

     

    Processus mémoire infecté(s):

    (Aucun élément nuisible détecté)

     

    Module(s) mémoire infecté(s):

    (Aucun élément nuisible détecté)

     

    Clé(s) du Registre infectée(s):

    (Aucun élément nuisible détecté)

     

    Valeur(s) du Registre infectée(s):

    (Aucun élément nuisible détecté)

     

    Elément(s) de données du Registre infecté(s):

    (Aucun élément nuisible détecté)

     

    Dossier(s) infecté(s):

    (Aucun élément nuisible détecté)

     

    Fichier(s) infecté(s):

    (Aucun élément nuisible détecté)

     

     

     

     

     

    Pour les problèmes rencontrés d'après ce que m'a dit mon amie et ce que j'ai constaté; le fond d'écran change à chaque démarage, certains dossiers ont changés d'emplacement et j'ai aussi remarqué que l'explorer ne se lance pas au démarage je doit donc fermer sont processus et le relancer, c'est problèmes sont apparut apres un transfert de films d'un disque externe il doit donc etre infecté.

     

     

    Merci pour ta réponse.

  9. ainsi que info.txt:

     

     

    info.txt logfile of random's system information tool 1.05 2009-03-07 10:13:09

     

    ======Uninstall list======

     

    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0015-0407-0000-0000000FF1CE} /uninstall {DCBECE36-8F23-4B33-925E-A1C6183C0DBD}

    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0015-0409-0000-0000000FF1CE} /uninstall {4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}

    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0015-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}

    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0015-0410-0000-0000000FF1CE} /uninstall {741A792D-4ED8-4C66-B32E-A47865FA1163}

    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0015-0413-0000-0000000FF1CE} /uninstall {4059772C-68BA-4FE4-9B6E-3EC37C0C4624}

    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0016-0407-0000-0000000FF1CE} /uninstall {DCBECE36-8F23-4B33-925E-A1C6183C0DBD}

    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0016-0409-0000-0000000FF1CE} /uninstall {4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}

    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0016-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}

    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0016-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}

    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0016-0410-0000-0000000FF1CE} /uninstall {741A792D-4ED8-4C66-B32E-A47865FA1163}

    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0016-0413-0000-0000000FF1CE} /uninstall {4059772C-68BA-4FE4-9B6E-3EC37C0C4624}

    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0018-0407-0000-0000000FF1CE} /uninstall {DCBECE36-8F23-4B33-925E-A1C6183C0DBD}

    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0018-0409-0000-0000000FF1CE} /uninstall {4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}

    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0018-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}

    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0018-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}

    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0018-0410-0000-0000000FF1CE} /uninstall {741A792D-4ED8-4C66-B32E-A47865FA1163}

    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0018-0413-0000-0000000FF1CE} /uninstall {4059772C-68BA-4FE4-9B6E-3EC37C0C4624}

    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0019-0407-0000-0000000FF1CE} /uninstall {DCBECE36-8F23-4B33-925E-A1C6183C0DBD}

    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0019-0409-0000-0000000FF1CE} /uninstall {4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}

    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0019-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}

    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0019-0410-0000-0000000FF1CE} /uninstall {741A792D-4ED8-4C66-B32E-A47865FA1163}

    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0019-0413-0000-0000000FF1CE} /uninstall {4059772C-68BA-4FE4-9B6E-3EC37C0C4624}

    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001A-0407-0000-0000000FF1CE} /uninstall {DCBECE36-8F23-4B33-925E-A1C6183C0DBD}

    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001A-0409-0000-0000000FF1CE} /uninstall {4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}

    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001A-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}

    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001A-0410-0000-0000000FF1CE} /uninstall {741A792D-4ED8-4C66-B32E-A47865FA1163}

    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001A-0413-0000-0000000FF1CE} /uninstall {4059772C-68BA-4FE4-9B6E-3EC37C0C4624}

    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001B-0407-0000-0000000FF1CE} /uninstall {DCBECE36-8F23-4B33-925E-A1C6183C0DBD}

    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001B-0409-0000-0000000FF1CE} /uninstall {4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}

    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001B-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}

    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001B-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}

    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001B-0410-0000-0000000FF1CE} /uninstall {741A792D-4ED8-4C66-B32E-A47865FA1163}

    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001B-0413-0000-0000000FF1CE} /uninstall {4059772C-68BA-4FE4-9B6E-3EC37C0C4624}

    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-0401-0000-0000000FF1CE} /uninstall {5A2F65A4-808F-4A1E-973E-92E17824982D}

    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-0401-0000-0000000FF1CE} /uninstall {5A2F65A4-808F-4A1E-973E-92E17824982D}

    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-0407-0000-0000000FF1CE} /uninstall {2AB528A5-BB1B-4EBE-8E51-AD0C4CD33CA9}

    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-0407-0000-0000000FF1CE} /uninstall {2AB528A5-BB1B-4EBE-8E51-AD0C4CD33CA9}

    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-0409-0000-0000000FF1CE} /uninstall {3EC77D26-799B-4CD8-914F-C1565E796173}

    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-0409-0000-0000000FF1CE} /uninstall {3EC77D26-799B-4CD8-914F-C1565E796173}

    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-040C-0000-0000000FF1CE} /uninstall {430971B1-C31E-45DA-81E0-72C095BAB72C}

    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-040C-0000-0000000FF1CE} /uninstall {430971B1-C31E-45DA-81E0-72C095BAB72C}

    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-0410-0000-0000000FF1CE} /uninstall {58FC5E37-DD28-4D4A-A549-125744C6763C}

    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-0413-0000-0000000FF1CE} /uninstall {B3F4DC34-7F60-4B7C-A79F-1C13012D99D4}

    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-0413-0000-0000000FF1CE} /uninstall {B3F4DC34-7F60-4B7C-A79F-1C13012D99D4}

    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-0C0A-0000-0000000FF1CE} /uninstall {F7A31780-33C4-4E39-951A-5EC9B91D7BF1}

    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-0C0A-0000-0000000FF1CE} /uninstall {F7A31780-33C4-4E39-951A-5EC9B91D7BF1}

    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-006E-0407-0000-0000000FF1CE} /uninstall {888B9AC7-8F5C-456B-A27A-157A6C310E52}

    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-006E-0409-0000-0000000FF1CE} /uninstall {FAD8A83E-9BAC-4179-9268-A35948034D85}

    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-006E-0410-0000-0000000FF1CE} /uninstall {B9896689-DF51-4A16-AAD5-002622D86C72}

    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-006E-0413-0000-0000000FF1CE} /uninstall {1120A001-69F4-43D2-83CE-716B2DC4366F}

    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-00A1-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}

    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0115-0409-0000-0000000FF1CE} /uninstall {FAD8A83E-9BAC-4179-9268-A35948034D85}

    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0117-0409-0000-0000000FF1CE} /uninstall {4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}

    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {BEE75E01-DD3F-4D5F-B96C-609E6538D419}

    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {91120000-0031-0000-0000-0000000FF1CE} /uninstall {BEE75E01-DD3F-4D5F-B96C-609E6538D419}

    2007 Microsoft Office system-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall PROHYBRIDR /dll OSETUP.DLL

    Activation Assistant for the 2007 Microsoft Office suites-->"C:\ProgramData\{623D32E9-0C62-4453-AD44-98B31F52A5E1}\Microsoft Office Activation Assistant.exe" REMOVE=TRUE MODIFY=FALSE

    Adobe Flash Player 9 ActiveX-->C:\Windows\system32\Macromed\Flash\UninstFl.exe -q

    Adobe Reader 8.1.3 - Français-->MsiExec.exe /I{AC76BA86-7AD7-1036-7B44-A81300000003}

    Agere Systems HDA Modem-->agrsmdel

    AMD USB Audio Driver Filter-->MsiExec.exe /X{E6DB139F-DE64-4F3A-AFBD-5ABF7E434F12}

    Apple Mobile Device Support-->MsiExec.exe /I{976C2B2A-CE59-4AB3-83FB-BF895E28F2E6}

    Apple Software Update-->MsiExec.exe /I{6956856F-B6B3-4BE0-BA0B-8F495BE32033}

    Assistant de connexion Windows Live-->MsiExec.exe /I{D3116CC7-24DC-4CA3-9CE1-23FED836E9F2}

    ASUS CopyProtect-->MsiExec.exe /I{6B77A7F6-DD63-4F13-A6FF-83137A5AC354}

    ASUS LifeFrame3-->MsiExec.exe /I{1DBD1F12-ED93-49C0-A7CC-56CBDE488158}

    ASUS Live Update-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{E657B243-9AD4-4ECC-BE81-4CCF8D667FD0}\setup.exe" -l0x9

    ASUS Power4Gear Hybrid-->MsiExec.exe /I{9B6239BF-4E85-4590-8D72-51E30DB1A9AA}

    ASUS Security Protect Manager-->rundll32.exe "C:\Program Files\ASUS Security Center\ASUS Security Protect Manager\Bin\SetupHelper.dll",ExecMain /Uninstall {D8D4AF9A-6ADE-4B14-A7F5-BA858792729E}

    ASUS SmartLogon-->MsiExec.exe /I{64452561-169F-4A36-A2FF-B5E118EC65F5}

    ASUS Splendid Video Enhancement Technology-->MsiExec.exe /I{0969AF05-4FF6-4C00-9406-43599238DE0D}

    Asus_Camera_ScreenSaver-->"C:\Windows\ASUS Camera ScreenSaver Uninstaller.exe"

    Atheros Client Installation Program-->C:\Program Files\InstallShield Installation Information\{28006915-2739-4EBE-B5E8-49B25D32EB33}\SETUP.exe -runfromtemp -l0x0009 -removeonly

    ATK Generic Function Service-->C:\Program Files\InstallShield Installation Information\{D3D54F3E-C5C3-443D-978F-87A72E5616E8}\setup.exe -runfromtemp -l0x0009 -removeonly

    ATK Hotkey-->C:\Program Files\InstallShield Installation Information\{3912D529-02BC-4CA8-B5ED-0D0C20EB6003}\SETUP.exe -runfromtemp -l0x0009 -removeonly

    ATK Media-->MsiExec.exe /I{D1E5870E-E3E5-4475-98A6-ADD614524ADF}

    ATKOSD2-->C:\Program Files\InstallShield Installation Information\{5C1DB4ED-E9B4-402D-BB14-D75D97D6C1A6}\SETUP.exe -runfromtemp -l0x0009 -removeonly

    AuthenTec Fingerprint Sensor Minimum Install-->MsiExec.exe /I{EB4DF30B-102B-4F0C-927A-D50E037A325D}

    avast! Antivirus-->C:\Program Files\Alwil Software\Avast4\aswRunDll.exe "C:\Program Files\Alwil Software\Avast4\Setup\setiface.dll",RunSetup

    Bonjour-->MsiExec.exe /I{8A25392D-C5D2-4E79-A2BD-C15DDC5B0959}

    Cisco EAP-FAST Module-->MsiExec.exe /I{415B2719-AD3A-4944-B404-C472DB6085B3}

    Cisco LEAP Module-->MsiExec.exe /I{83770D14-21B9-44B3-8689-F7B523F94560}

    Cisco PEAP Module-->MsiExec.exe /I{669C7BD8-DAA2-49B6-966C-F1E2AAE6B17E}

    CyberLink LabelPrint-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{C59C179C-668D-49A9-B6EA-0121CCFC1243}\setup.exe" -uninstall

    DartyBox-->C:\Program Files\InstallShield Installation Information\{4A975AC1-1E5B-43B7-B42B-6E617B39C936}\setup.exe -runfromtemp -l0x040c -removeonly

    Dolby Control Center-->MsiExec.exe /I{DE66EFAD-B9CC-4FD4-9157-6C18E5100161}

    Express Gate-->MsiExec.exe /I{27D51A76-371D-48B6-B06E-4137A15B7583}

    HijackThis 2.0.2-->"C:\Program Files\trend micro\HijackThis.exe" /uninstall

    ITECIR Driver-->C:\Program Files\InstallShield Installation Information\{FCED9B62-34FF-4C15-8A23-F65221F7874D}\SETUP.exe -runfromtemp -l0x0009 -removeonly

    iTunes-->MsiExec.exe /I{DDDE0BE3-0CBE-4BF6-B75A-E3F69C947843}

    L'Assistant DartyBox-->C:\Program Files\Assistant Dartybox\Uninstall_ADBox.exe

    LightScribe System Software 1.12.37.1-->MsiExec.exe /X{004C5DA2-2051-4D25-94BA-51CF810C91EB}

    Malwarebytes' Anti-Malware-->"C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"

    Microsoft Office Access MUI (Dutch) 2007-->MsiExec.exe /X{90120000-0015-0413-0000-0000000FF1CE}

    Microsoft Office Access MUI (English) 2007-->MsiExec.exe /X{90120000-0015-0409-0000-0000000FF1CE}

    Microsoft Office Access MUI (French) 2007-->MsiExec.exe /X{90120000-0015-040C-0000-0000000FF1CE}

    Microsoft Office Access MUI (German) 2007-->MsiExec.exe /X{90120000-0015-0407-0000-0000000FF1CE}

    Microsoft Office Access MUI (Italian) 2007-->MsiExec.exe /X{90120000-0015-0410-0000-0000000FF1CE}

    Microsoft Office Access Setup Metadata MUI (English) 2007-->MsiExec.exe /X{90120000-0117-0409-0000-0000000FF1CE}

    Microsoft Office Excel MUI (Dutch) 2007-->MsiExec.exe /X{90120000-0016-0413-0000-0000000FF1CE}

    Microsoft Office Excel MUI (English) 2007-->MsiExec.exe /X{90120000-0016-0409-0000-0000000FF1CE}

    Microsoft Office Excel MUI (French) 2007-->MsiExec.exe /X{90120000-0016-040C-0000-0000000FF1CE}

    Microsoft Office Excel MUI (German) 2007-->MsiExec.exe /X{90120000-0016-0407-0000-0000000FF1CE}

    Microsoft Office Excel MUI (Italian) 2007-->MsiExec.exe /X{90120000-0016-0410-0000-0000000FF1CE}

    Microsoft Office Home and Student 2007-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall HOMESTUDENTR /dll OSETUP.DLL

    Microsoft Office Home and Student 2007-->MsiExec.exe /X{91120000-002F-0000-0000-0000000FF1CE}

    Microsoft Office Language Pack 2007 Service Pack 1 (SP1)-->msiexec /package {90120000-006E-040C-0000-0000000FF1CE} /uninstall {EC50B538-CBE1-42E6-B7FE-87AA540AADFB}

    Microsoft Office Language Pack 2007 Service Pack 1 (SP1)-->msiexec /package {90120000-006E-040C-0000-0000000FF1CE} /uninstall {EC50B538-CBE1-42E6-B7FE-87AA540AADFB}

    Microsoft Office OneNote MUI (French) 2007-->MsiExec.exe /X{90120000-00A1-040C-0000-0000000FF1CE}

    Microsoft Office Outlook MUI (Dutch) 2007-->MsiExec.exe /X{90120000-001A-0413-0000-0000000FF1CE}

    Microsoft Office Outlook MUI (English) 2007-->MsiExec.exe /X{90120000-001A-0409-0000-0000000FF1CE}

    Microsoft Office Outlook MUI (French) 2007-->MsiExec.exe /X{90120000-001A-040C-0000-0000000FF1CE}

    Microsoft Office Outlook MUI (German) 2007-->MsiExec.exe /X{90120000-001A-0407-0000-0000000FF1CE}

    Microsoft Office Outlook MUI (Italian) 2007-->MsiExec.exe /X{90120000-001A-0410-0000-0000000FF1CE}

    Microsoft Office PowerPoint MUI (Dutch) 2007-->MsiExec.exe /X{90120000-0018-0413-0000-0000000FF1CE}

    Microsoft Office PowerPoint MUI (English) 2007-->MsiExec.exe /X{90120000-0018-0409-0000-0000000FF1CE}

    Microsoft Office PowerPoint MUI (French) 2007-->MsiExec.exe /X{90120000-0018-040C-0000-0000000FF1CE}

    Microsoft Office PowerPoint MUI (German) 2007-->MsiExec.exe /X{90120000-0018-0407-0000-0000000FF1CE}

    Microsoft Office PowerPoint MUI (Italian) 2007-->MsiExec.exe /X{90120000-0018-0410-0000-0000000FF1CE}

    Microsoft Office Professional Hybrid 2007-->MsiExec.exe /X{91120000-0031-0000-0000-0000000FF1CE}

    Microsoft Office Proof (Arabic) 2007-->MsiExec.exe /X{90120000-001F-0401-0000-0000000FF1CE}

    Microsoft Office Proof (Dutch) 2007-->MsiExec.exe /X{90120000-001F-0413-0000-0000000FF1CE}

    Microsoft Office Proof (English) 2007-->MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}

    Microsoft Office Proof (French) 2007-->MsiExec.exe /X{90120000-001F-040C-0000-0000000FF1CE}

    Microsoft Office Proof (German) 2007-->MsiExec.exe /X{90120000-001F-0407-0000-0000000FF1CE}

    Microsoft Office Proof (Italian) 2007-->MsiExec.exe /X{90120000-001F-0410-0000-0000000FF1CE}

    Microsoft Office Proof (Spanish) 2007-->MsiExec.exe /X{90120000-001F-0C0A-0000-0000000FF1CE}

    Microsoft Office Proofing (Dutch) 2007-->MsiExec.exe /X{90120000-002C-0413-0000-0000000FF1CE}

    Microsoft Office Proofing (English) 2007-->MsiExec.exe /X{90120000-002C-0409-0000-0000000FF1CE}

    Microsoft Office Proofing (French) 2007-->MsiExec.exe /X{90120000-002C-040C-0000-0000000FF1CE}

    Microsoft Office Proofing (German) 2007-->MsiExec.exe /X{90120000-002C-0407-0000-0000000FF1CE}

    Microsoft Office Proofing (Italian) 2007-->MsiExec.exe /X{90120000-002C-0410-0000-0000000FF1CE}

    Microsoft Office Publisher MUI (Dutch) 2007-->MsiExec.exe /X{90120000-0019-0413-0000-0000000FF1CE}

    Microsoft Office Publisher MUI (English) 2007-->MsiExec.exe /X{90120000-0019-0409-0000-0000000FF1CE}

    Microsoft Office Publisher MUI (French) 2007-->MsiExec.exe /X{90120000-0019-040C-0000-0000000FF1CE}

    Microsoft Office Publisher MUI (German) 2007-->MsiExec.exe /X{90120000-0019-0407-0000-0000000FF1CE}

    Microsoft Office Publisher MUI (Italian) 2007-->MsiExec.exe /X{90120000-0019-0410-0000-0000000FF1CE}

    Microsoft Office Shared MUI (Dutch) 2007-->MsiExec.exe /X{90120000-006E-0413-0000-0000000FF1CE}

    Microsoft Office Shared MUI (English) 2007-->MsiExec.exe /X{90120000-006E-0409-0000-0000000FF1CE}

    Microsoft Office Shared MUI (French) 2007-->MsiExec.exe /X{90120000-006E-040C-0000-0000000FF1CE}

    Microsoft Office Shared MUI (German) 2007-->MsiExec.exe /X{90120000-006E-0407-0000-0000000FF1CE}

    Microsoft Office Shared MUI (Italian) 2007-->MsiExec.exe /X{90120000-006E-0410-0000-0000000FF1CE}

    Microsoft Office Shared Setup Metadata MUI (English) 2007-->MsiExec.exe /X{90120000-0115-0409-0000-0000000FF1CE}

    Microsoft Office Word MUI (Dutch) 2007-->MsiExec.exe /X{90120000-001B-0413-0000-0000000FF1CE}

    Microsoft Office Word MUI (English) 2007-->MsiExec.exe /X{90120000-001B-0409-0000-0000000FF1CE}

    Microsoft Office Word MUI (French) 2007-->MsiExec.exe /X{90120000-001B-040C-0000-0000000FF1CE}

    Microsoft Office Word MUI (German) 2007-->MsiExec.exe /X{90120000-001B-0407-0000-0000000FF1CE}

    Microsoft Office Word MUI (Italian) 2007-->MsiExec.exe /X{90120000-001B-0410-0000-0000000FF1CE}

    Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}

    NB Probe-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{6324A1EF-CEF4-43E3-8BCD-9EF3F67317FD}\setup.exe" -l0x9

    Power2Go-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{40BF1E83-20EB-11D8-97C5-0009C5020658}\setup.exe" -uninstall

    QuickTime-->MsiExec.exe /I{8DC42D05-680B-41B0-8878-6C14D24602DB}

    Realtek 8169 8168 8101E 8102E Ethernet Driver-->C:\Program Files\InstallShield Installation Information\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}\SETUP.exe -runfromtemp -l0x0009 -removeonly

    Realtek High Definition Audio Driver-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}\SETUP.exe" -removeonly

    RICOH R5C83x/84x Flash Media Controller Driver Ver.3.55.01-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{59F6A514-9813-47A3-948C-8A155460CC2A}\SETUP.EXE" -l0x9 anything

    Safely Remove Disk Drive-->"C:\Program Files\InstallShield Installation Information\{0F97342A-56FA-4E9B-9F58-87DBD9DE9D9A}\setup.exe" -runfromtemp -l0x0409 -removeonly

    Safely Remove Disk Drive-->MsiExec.exe /I{0F97342A-56FA-4E9B-9F58-87DBD9DE9D9A}

    Security Update for 2007 Microsoft Office System (KB951550)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {B243E9A5-ED77-4F1B-B338-2486FD82DC85}

    Security Update for 2007 Microsoft Office System (KB951550)-->msiexec /package {91120000-0031-0000-0000-0000000FF1CE} /uninstall {B243E9A5-ED77-4F1B-B338-2486FD82DC85}

    Security Update for 2007 Microsoft Office System (KB951944)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {797AE457-BA17-4BBC-B501-25FB3A0103C7}

    Security Update for 2007 Microsoft Office System (KB951944)-->msiexec /package {91120000-0031-0000-0000-0000000FF1CE} /uninstall {797AE457-BA17-4BBC-B501-25FB3A0103C7}

    Security Update for 2007 Microsoft Office System (KB958439)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {6491B8AA-D11C-4648-A461-6234B31EB7E2}

    Security Update for 2007 Microsoft Office System (KB958439)-->msiexec /package {91120000-0031-0000-0000-0000000FF1CE} /uninstall {6491B8AA-D11C-4648-A461-6234B31EB7E2}

    Security Update for Microsoft Office Excel 2007 (KB958437)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {648FC016-2D6B-4A16-8D87-404533642F4B}

    Security Update for Microsoft Office Excel 2007 (KB958437)-->msiexec /package {91120000-0031-0000-0000-0000000FF1CE} /uninstall {648FC016-2D6B-4A16-8D87-404533642F4B}

    Security Update for Microsoft Office OneNote 2007 (KB950130)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {F1B2401C-B610-4BF2-AA1C-52C55827A8F4}

    Security Update for Microsoft Office PowerPoint 2007 (KB951338)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {558B709B-821B-4FC5-90FC-9A8890641E77}

    Security Update for Microsoft Office PowerPoint 2007 (KB951338)-->msiexec /package {91120000-0031-0000-0000-0000000FF1CE} /uninstall {558B709B-821B-4FC5-90FC-9A8890641E77}

    Security Update for Microsoft Office Publisher 2007 (KB950114)-->msiexec /package {91120000-0031-0000-0000-0000000FF1CE} /uninstall {F9C3CDBA-1F00-4D4D-959D-75C9D3ACDD85}

    Security Update for Microsoft Office system 2007 (KB954326)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {5F7F6FFF-395D-480E-8450-64F385D82C5F}

    Security Update for Microsoft Office system 2007 (KB954326)-->msiexec /package {91120000-0031-0000-0000-0000000FF1CE} /uninstall {5F7F6FFF-395D-480E-8450-64F385D82C5F}

    Security Update for Microsoft Office system 2007 (KB956828)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {885E081B-72BD-4E76-8E98-30B4BE468FAC}

    Security Update for Microsoft Office system 2007 (KB956828)-->msiexec /package {91120000-0031-0000-0000-0000000FF1CE} /uninstall {885E081B-72BD-4E76-8E98-30B4BE468FAC}

    Security Update for Microsoft Office Word 2007 (KB956358)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {4551666D-0FD6-4C69-8A81-1C6F2E64517C}

    Security Update for Microsoft Office Word 2007 (KB956358)-->msiexec /package {91120000-0031-0000-0000-0000000FF1CE} /uninstall {4551666D-0FD6-4C69-8A81-1C6F2E64517C}

    Spelling Dictionaries Support For Adobe Reader 8-->MsiExec.exe /I{AC76BA86-7AD7-5464-3428-800000000003}

    Synaptics Pointing Device Driver-->rundll32.exe "C:\Program Files\Synaptics\SynTP\SynISDLL.dll",standAloneUninstall

    Update for Microsoft Office 2007 Help for Common Features (KB957244)-->msiexec /package {90120000-006E-0409-0000-0000000FF1CE} /uninstall {C8C72583-C907-4D20-8973-C3858D96BD9E}

    Update for Microsoft Office Access 2007 Help (KB957241)-->msiexec /package {90120000-0015-0409-0000-0000000FF1CE} /uninstall {D670F9B9-3E84-47B5-8A4A-618B65DB1593}

    Update for Microsoft Office Excel 2007 Help (KB957242)-->msiexec /package {90120000-0016-0407-0000-0000000FF1CE} /uninstall {535AFBFD-FBD1-4C17-8723-CFB7FDFB7928}

    Update for Microsoft Office Excel 2007 Help (KB957242)-->msiexec /package {90120000-0016-0409-0000-0000000FF1CE} /uninstall {51864046-74C8-487B-97CD-6167A4B1DB56}

    Update for Microsoft Office Excel 2007 Help (KB957242)-->msiexec /package {90120000-0016-040C-0000-0000000FF1CE} /uninstall {49E314EE-81FA-4007-8F1A-8D39BDBB4498}

    Update for Microsoft Office Excel 2007 Help (KB957242)-->msiexec /package {90120000-0016-040C-0000-0000000FF1CE} /uninstall {49E314EE-81FA-4007-8F1A-8D39BDBB4498}

    Update for Microsoft Office Excel 2007 Help (KB957242)-->msiexec /package {90120000-0016-0410-0000-0000000FF1CE} /uninstall {953BC502-A4D3-478D-811F-B1494A2ED9D8}

    Update for Microsoft Office Outlook 2007 (KB952142)-->msiexec /package {91120000-0031-0000-0000-0000000FF1CE} /uninstall {4AD3A076-427C-491F-A5B7-7D1DE788A756}

    Update for Microsoft Office Outlook 2007 Help (KB957246)-->msiexec /package {90120000-001A-0407-0000-0000000FF1CE} /uninstall {40EDB4D3-A95E-413F-9578-F2E01A3D209B}

    Update for Microsoft Office Outlook 2007 Help (KB957246)-->msiexec /package {90120000-001A-0409-0000-0000000FF1CE} /uninstall {6F0E4983-E419-4591-B7DD-EFB0073D3E47}

    Update for Microsoft Office Outlook 2007 Help (KB957246)-->msiexec /package {90120000-001A-040C-0000-0000000FF1CE} /uninstall {80E46078-C1C5-4AE8-8744-3EAFC812E118}

    Update for Microsoft Office Outlook 2007 Help (KB957246)-->msiexec /package {90120000-001A-0410-0000-0000000FF1CE} /uninstall {F9CE58F3-9B2B-4DE4-9506-BF82230EB84D}

    Update for Microsoft Office PowerPoint 2007 Help (KB957247)-->msiexec /package {90120000-0018-0409-0000-0000000FF1CE} /uninstall {B20E2C59-EEC5-4102-9E50-5DBB2093C37D}

    Update for Microsoft Office Publisher 2007 Help (KB957249)-->msiexec /package {90120000-0019-0409-0000-0000000FF1CE} /uninstall {4E140A5A-4A90-404A-B955-10C2D98CD3EE}

    Update for Microsoft Office Word 2007 Help (KB957252)-->msiexec /package {90120000-001B-0409-0000-0000000FF1CE} /uninstall {54DF3345-0720-4224-9740-C7E00303F565}

    Update for Microsoft Script Editor Help (KB957253)-->msiexec /package {90120000-006E-0409-0000-0000000FF1CE} /uninstall {F21BF703-548C-47B2-B92A-6876E9566C42}

    Update for Office 2007 (KB946691)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {A420F522-7395-4872-9882-C591B4B92278}

    Update for Office 2007 (KB946691)-->msiexec /package {91120000-0031-0000-0000-0000000FF1CE} /uninstall {A420F522-7395-4872-9882-C591B4B92278}

    Update for Outlook 2007 Junk Email Filter (kb959634)-->msiexec /package {91120000-0031-0000-0000-0000000FF1CE} /uninstall {50C77E2F-5C1C-467D-9BC8-3CA07D28C9F2}

    USB2.0 UVC 1.3M WebCam-->C:\Windows\snuninst.exe /name='USB2.0 UVC 1.3M WebCam'

    VLC media player 0.9.4-->C:\Program Files\VideoLAN\VLC\uninstall.exe

    Windows Driver Package - ITE Tech.Inc. (itecir) HIDClass (06/20/2007 5.0.0004.2)-->C:\PROGRA~1\DIFX\F46A63020E122F0A\DPInst.exe /u C:\Windows\System32\DriverStore\FileRepository\itecir.inf_709ef2e8\itecir.inf

    Windows Live installer-->MsiExec.exe /X{FD44E544-E7D0-4DBA-9FA0-8AE1A1300390}

    Windows Live Mail-->MsiExec.exe /I{C514C594-23AA-4F13-A070-DB8BDB27594F}

    Windows Live Messenger-->MsiExec.exe /X{BADF6744-3787-48F6-B8C9-4C4995401D65}

    Windows Live Writer-->MsiExec.exe /X{3DFF4274-EBB0-4356-9692-972965018954}

    WinFlash-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{DE10AB76-4756-4913-BE25-55D1C1051F9A}\setup.exe" -l0x9

    Wireless Console 2-->C:\Program Files\InstallShield Installation Information\{83F73CB1-7705-49D1-9852-84D839CA2A45}\SETUP.exe -runfromtemp -l0x0009 -removeonly

     

    ======Security center information======

     

    AV: avast! antivirus 4.8.1229 [VPS 090113-0]

    AS: Windows Defender

    AS: avast! antivirus 4.8.1229 [VPS 090113-0]

     

    System event log

     

    Computer Name: PC-de-juju

    Event Code: 102

    Message: Le service a momentanément arrêté la publication à cause d’un événement d’alimentation.

    Record Number: 31803

    Source Name: Microsoft-Windows-ResourcePublication

    Time Written: 20090307085453.122000-000

    Event Type: Information

    User: AUTORITE NT\SERVICE LOCAL

     

    Computer Name: PC-de-juju

    Event Code: 104

    Message: Le service effectue la publication sur le réseau.

    Record Number: 31804

    Source Name: Microsoft-Windows-ResourcePublication

    Time Written: 20090307085534.867600-000

    Event Type: Information

    User: AUTORITE NT\SERVICE LOCAL

     

    Computer Name: PC-de-juju

    Event Code: 1003

    Message: Votre ordinateur n'a pas pu renouveler son adresse à partir du réseau (à partir du serveur DHCP) pour la carte réseau dont l'adresse réseau est 0015AFCE94FD. Il s'est produit l'erreur suivante :

    L'opération a été annulée par l'utilisateur.. Votre ordinateur va continuer à essayer d'obtenir sa propre adresse auprès du serveur d'adresse réseau (DHCP).

    Record Number: 31805

    Source Name: Microsoft-Windows-Dhcp-Client

    Time Written: 20090307085603.000000-000

    Event Type: Avertissement

    User:

     

    Computer Name: PC-de-juju

    Event Code: 1103

    Message: Votre ordinateur a obtenu une adresse auprès du réseau, et vous pouvez maintenant vous connecter à d'autres ordinateurs.

    Record Number: 31806

    Source Name: Microsoft-Windows-Dhcp-Client

    Time Written: 20090307085806.000000-000

    Event Type: Information

    User:

     

    Computer Name: PC-de-juju

    Event Code: 1103

    Message: Votre ordinateur a obtenu une adresse auprès du réseau, et vous pouvez maintenant vous connecter à d'autres ordinateurs.

    Record Number: 31807

    Source Name: Microsoft-Windows-Dhcp-Client

    Time Written: 20090307090806.000000-000

    Event Type: Information

    User:

     

    Application event log

     

    Computer Name: PC-de-juju

    Event Code: 1001

    Message: Récipient d’erreurs 0, type 0

    Événement : MpTelemetry

    Réponse : Aucun

    ID de CAB : 0

     

    Signature du problème :

    P1 : 80244018

    P2 : EndSearch

    P3 : Search

    P4 : 1.1.1600.0

    P5 : MpSigDwn.dll

    P6 : 1.1.1600.0

    P7 : Windows Defender

    P8 :

    P9 :

    P10 :

     

    Fichiers joints :

    C:\Windows\Temp\MPTelemetrySubmit\client_manifest.txt

     

    Ces fichiers sont peut-être disponibles ici :

    C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Report1088424f

    Record Number: 4746

    Source Name: Windows Error Reporting

    Time Written: 20090307003228.000000-000

    Event Type: Information

    User:

     

    Computer Name: PC-de-juju

    Event Code: 8194

    Message: Point de restauration correctement créé (Processus = C:\Windows\system32\rundll32.exe /d srrstr.dll,ExecuteScheduledSPPCreation ; Description = Point de contrôle planifié).

    Record Number: 4747

    Source Name: System Restore

    Time Written: 20090307004258.000000-000

    Event Type: Information

    User:

     

    Computer Name: PC-de-juju

    Event Code: 8211

    Message: Le point de restauration planifié a été correctement créé.

    Record Number: 4748

    Source Name: System Restore

    Time Written: 20090307004258.000000-000

    Event Type: Information

    User:

     

    Computer Name: PC-de-juju

    Event Code: 8224

    Message: Le service VSS s’arrête, car le délai d’inactivité est dépassé.

    Record Number: 4749

    Source Name: VSS

    Time Written: 20090307004558.000000-000

    Event Type: Information

    User:

     

    Computer Name: PC-de-juju

    Event Code: 5

    Message: Unsupported service control request (see data below)

    Record Number: 4750

    Source Name: LightScribeService

    Time Written: 20090307091308.000000-000

    Event Type: Information

    User:

     

    Security event log

     

    Computer Name: PC-de-juju

    Event Code: 5038

    Message: L’intégrité du code a déterminé que le hachage de l’image d’un fichier n’est pas valide. Le fichier peut être endommagé en raison d’une modification non autorisée ou le hachage non valide peut indiquer une erreur d’unité de disque potentielle.

     

    Nom du fichier : \Device\HarddiskVolume2\Windows\System32\drivers\tcpip.sys

    Record Number: 10609

    Source Name: Microsoft-Windows-Security-Auditing

    Time Written: 20090307091304.663400-000

    Event Type: Échec de l'audit

    User:

     

    Computer Name: PC-de-juju

    Event Code: 5038

    Message: L’intégrité du code a déterminé que le hachage de l’image d’un fichier n’est pas valide. Le fichier peut être endommagé en raison d’une modification non autorisée ou le hachage non valide peut indiquer une erreur d’unité de disque potentielle.

     

    Nom du fichier : \Device\HarddiskVolume2\Windows\System32\drivers\tcpip.sys

    Record Number: 10610

    Source Name: Microsoft-Windows-Security-Auditing

    Time Written: 20090307091304.772600-000

    Event Type: Échec de l'audit

    User:

     

    Computer Name: PC-de-juju

    Event Code: 5038

    Message: L’intégrité du code a déterminé que le hachage de l’image d’un fichier n’est pas valide. Le fichier peut être endommagé en raison d’une modification non autorisée ou le hachage non valide peut indiquer une erreur d’unité de disque potentielle.

     

    Nom du fichier : \Device\HarddiskVolume2\Windows\System32\drivers\tcpip.sys

    Record Number: 10611

    Source Name: Microsoft-Windows-Security-Auditing

    Time Written: 20090307091304.835000-000

    Event Type: Échec de l'audit

    User:

     

    Computer Name: PC-de-juju

    Event Code: 5038

    Message: L’intégrité du code a déterminé que le hachage de l’image d’un fichier n’est pas valide. Le fichier peut être endommagé en raison d’une modification non autorisée ou le hachage non valide peut indiquer une erreur d’unité de disque potentielle.

     

    Nom du fichier : \Device\HarddiskVolume2\Windows\System32\drivers\tcpip.sys

    Record Number: 10612

    Source Name: Microsoft-Windows-Security-Auditing

    Time Written: 20090307091304.897400-000

    Event Type: Échec de l'audit

    User:

     

    Computer Name: PC-de-juju

    Event Code: 5038

    Message: L’intégrité du code a déterminé que le hachage de l’image d’un fichier n’est pas valide. Le fichier peut être endommagé en raison d’une modification non autorisée ou le hachage non valide peut indiquer une erreur d’unité de disque potentielle.

     

    Nom du fichier : \Device\HarddiskVolume2\Windows\System32\drivers\tcpip.sys

    Record Number: 10613

    Source Name: Microsoft-Windows-Security-Auditing

    Time Written: 20090307091304.959800-000

    Event Type: Échec de l'audit

    User:

     

    ======Environment variables======

     

    "ComSpec"=%SystemRoot%\system32\cmd.exe

    "FP_NO_HOST_CHECK"=NO

    "OS"=Windows_NT

    "Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\ATI Technologies\ATI.ACE\Core-Static;C:\Program Files\ASUS Security Center\ASUS Security Protect Manager\bin;C:\Program Files\QuickTime\QTSystem\

    "PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC

    "PROCESSOR_ARCHITECTURE"=x86

    "TEMP"=%SystemRoot%\TEMP

    "TMP"=%SystemRoot%\TEMP

    "USERNAME"=SYSTEM

    "windir"=%SystemRoot%

    "PROCESSOR_LEVEL"=17

    "PROCESSOR_IDENTIFIER"=x86 Family 17 Model 3 Stepping 1, AuthenticAMD

    "PROCESSOR_REVISION"=0301

    "NUMBER_OF_PROCESSORS"=2

    "TRACE_FORMAT_SEARCH_PATH"=\\NTREL202.ntdev.corp.microsoft.com\4F18C3A5-CA09-4DBD-B6FC-219FDD4C6BE0\TraceFormat

    "DFSTRACINGON"=FALSE

    "configsetroot"=%SystemRoot%\ConfigSetRoot

    "CLASSPATH"=.;C:\Program Files\QuickTime\QTSystem\QTJava.zip

    "QTJAVA"=C:\Program Files\QuickTime\QTSystem\QTJava.zip

     

    -----------------EOF-----------------

     

     

     

    A plus tard, merci.

  10. Voici le raport géneré:

     

    Logfile of random's system information tool 1.05 (written by random/random)

    Run by juju at 2009-03-07 10:12:08

    Microsoft® Windows Vista Édition Familiale Premium Service Pack 1

    System drive C: has 104 GB (68%) free of 153 GB

    Total RAM: 3070 MB (60% free)

     

    Logfile of Trend Micro HijackThis v2.0.2

    Scan saved at 10:13:05, on 07/03/2009

    Platform: Windows Vista SP1 (WinNT 6.00.1905)

    MSIE: Internet Explorer v7.00 (7.00.6001.18000)

    Boot mode: Normal

     

    Running processes:

    C:\Windows\system32\Dwm.exe

    C:\Windows\system32\taskeng.exe

    C:\Windows\system32\taskeng.exe

    C:\Program Files\ASUS\SmartLogon\sensorsrv.exe

    C:\Program Files\ASUS\ASUS Live Update\ALU.exe

    C:\Program Files\Windows Defender\MSASCui.exe

    C:\Program Files\ATKOSD2\ATKOSD2.exe

    C:\Windows\RtHDVCpl.exe

    C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

    C:\Program Files\ASUS\ATK Media\DMedia.exe

    C:\Windows\ASScrPro.exe

    C:\Program Files\Alwil Software\Avast4\ashDisp.exe

    C:\Program Files\iTunes\iTunesHelper.exe

    C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe

    C:\Program Files\Assistant Dartybox\upgrade_manager.exe

    C:\Program Files\Windows Live\Messenger\msnmsgr.exe

    C:\Windows\ehome\ehtray.exe

    C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE

    C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe

    C:\Windows\ehome\ehmsas.exe

    C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe

    C:\Program Files\Synaptics\SynTP\SynTPHelper.exe

    C:\Program Files\Windows Media Player\wmpnscfg.exe

    C:\Program Files\ASUS Security Center\ASUS Security Protect Manager\Bin\AsGHost.exe

    C:\Windows\System32\mobsync.exe

    C:\Windows\system32\Taskmgr.exe

    C:\Windows\explorer.exe

    C:\Program Files\Internet Explorer\ieuser.exe

    C:\Users\juju\Desktop\RSIT.exe

    C:\Program Files\trend micro\juju.exe

     

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.asus.com

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://portail.dartybox.com

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.asus.com

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =

    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =

    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local

    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

    O1 - Hosts: ::1 localhost

    O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll

    O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)

    O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

    O2 - BHO: ASUS Security Protect Manager - {DF21F1DB-80C6-11D3-9483-B03D0EC10000} - C:\Program Files\ASUS Security Center\ASUS Security Protect Manager\Bin\ItIEAddIn.dll

    O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide

    O4 - HKLM\..\Run: [startCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun

    O4 - HKLM\..\Run: [ATKOSD2] "C:\Program Files\ATKOSD2\ATKOSD2.exe"

    O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe

    O4 - HKLM\..\Run: [synTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

    O4 - HKLM\..\Run: [ATKMEDIA] C:\Program Files\ASUS\ATK Media\DMedia.exe

    O4 - HKLM\..\Run: [ASUS Camera ScreenSaver] C:\Windows\AsScrProlog.exe

    O4 - HKLM\..\Run: [ASUS Screen Saver Protector] C:\Windows\ASScrPro.exe

    O4 - HKLM\..\Run: [CognizanceTS] rundll32.exe C:\PROGRA~1\ASUSSE~1\ASUSSE~1\Bin\ASTSVCC.dll,RegisterModule

    O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe

    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime

    O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"

    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"

    O4 - HKLM\..\RunOnce: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent

    O4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun

    O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe -hidden

    O4 - HKCU\..\Run: [L'Assistant DartyBox] C:\Program Files\Assistant Dartybox\Upgrade_Manager.exe

    O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background

    O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe

    O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')

    O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')

    O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')

    O4 - Startup: OneNote 2007 - Capture d'écran et lancement.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE

    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000

    O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000

    O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll

    O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll

    O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll

    O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll

    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL

    O13 - Gopher Prefix:

    O20 - AppInit_DLLs: APSHook.dll

    O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - Agere Systems - C:\Windows\system32\agrsmsvc.exe

    O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe

    O23 - Service: ASLDR Service (ASLDRService) - Unknown owner - C:\Program Files\ATK Hotkey\ASLDRSrv.exe

    O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe

    O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe

    O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - Unknown owner - C:\Program Files\ATKGFNEX\GFNEXSrv.exe

    O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe

    O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe

    O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe

    O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe

    O23 - Service: Service de l’iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe

    O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe

    O23 - Service: AMD Safely Remove Disk Drive (SafeRemove) - AMD - C:\Program Files\AMD\Safely Remove Disk\SafeRemoveService.exe

    O23 - Service: spmgr - Unknown owner - C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe

     

    --

    End of file - 7932 bytes

     

    ======Registry dump======

     

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]

    Aide pour le lien d'Adobe PDF Reader - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080]

     

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7E853D72-626A-48EC-A868-BA8D5E23E045}]

     

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]

    Programme d'aide de l'Assistant de connexion Windows Live - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-02-17 408440]

     

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DF21F1DB-80C6-11D3-9483-B03D0EC10000}]

    ASUS Security Protect Manager - C:\Program Files\ASUS Security Center\ASUS Security Protect Manager\Bin\ItIEAddIn.dll [2006-11-20 70928]

     

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]

    "Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-21 1008184]

    "StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2008-01-21 61440]

    "ATKOSD2"=C:\Program Files\ATKOSD2\ATKOSD2.exe [2007-10-18 7737344]

    "RtHDVCpl"=C:\Windows\RtHDVCpl.exe [2008-06-13 6183456]

    "SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2007-12-06 1029416]

    "ATKMEDIA"=C:\Program Files\ASUS\ATK Media\DMedia.exe [2008-06-25 159744]

    "ASUS Camera ScreenSaver"=C:\Windows\AsScrProlog.exe [2008-08-11 47672]

    "ASUS Screen Saver Protector"=C:\Windows\ASScrPro.exe [2008-08-11 33136]

    "CognizanceTS"=C:\PROGRA~1\ASUSSE~1\ASUSSE~1\Bin\ASTSVCC.dll [2003-12-21 17920]

    "avast!"=C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe [2009-02-05 81000]

    "QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2008-09-06 413696]

    "iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2008-10-01 289576]

    "Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [2008-10-15 39792]

     

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]

    "Malwarebytes' Anti-Malware"=C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe [2009-02-11 399504]

     

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]

    "Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2008-01-21 1233920]

    "LightScribe Control Panel"=C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [2008-03-18 2289664]

    "L'Assistant DartyBox"=C:\Program Files\Assistant Dartybox\Upgrade_Manager.exe [2007-06-05 151552]

    "MsnMsgr"=C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe [2007-10-18 5724184]

    "ehTray.exe"=C:\Windows\ehome\ehTray.exe [2008-01-21 125952]

     

    C:\Users\juju\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup

    OneNote 2007 - Capture d'écran et lancement.lnk - C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE

     

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]

    "AppInit_DLLS"="APSHook.dll"

     

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]

    "notification packages"=scecli

    ASWLNPkg

     

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]

    "dontdisplaylastusername"=0

    "legalnoticecaption"=

    "legalnoticetext"=

    "shutdownwithoutlogon"=1

    "undockwithoutlogon"=1

    "EnableUIADesktopToggle"=0

     

    [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

     

    [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

     

    [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{d3acdfcb-abdb-11dd-8429-00221577aba0}]

    shell\AutoRun\command - C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL wscript.exe MS32DLL.dll.vbs

     

     

    ======List of files/folders created in the last 1 months======

     

    2009-03-07 10:12:08 ----D---- C:\rsit

    2009-03-07 10:12:08 ----D---- C:\Program Files\trend micro

    2009-03-06 17:46:49 ----D---- C:\Users\juju\AppData\Roaming\Malwarebytes

    2009-03-06 17:46:31 ----D---- C:\ProgramData\Malwarebytes

    2009-03-06 17:46:29 ----D---- C:\Program Files\Malwarebytes' Anti-Malware

    2009-02-19 21:54:30 ----A---- C:\Windows\system32\EncDec.dll

    2009-02-19 21:54:26 ----A---- C:\Windows\system32\psisdecd.dll

    2009-02-19 21:53:20 ----A---- C:\Windows\system32\mshtml.dll

    2009-02-19 21:53:18 ----A---- C:\Windows\system32\ieframe.dll

    2009-02-19 21:53:17 ----A---- C:\Windows\system32\urlmon.dll

    2009-02-19 21:53:15 ----A---- C:\Windows\system32\msfeeds.dll

    2009-02-19 21:53:14 ----A---- C:\Windows\system32\wininet.dll

    2009-02-19 21:53:14 ----A---- C:\Windows\system32\mstime.dll

    2009-02-19 21:53:13 ----A---- C:\Windows\system32\iertutil.dll

    2009-02-19 21:53:12 ----A---- C:\Windows\system32\jsproxy.dll

     

    ======List of files/folders modified in the last 1 months======

     

    2009-03-07 10:12:26 ----D---- C:\Windows\Prefetch

    2009-03-07 10:12:18 ----D---- C:\Windows\Temp

    2009-03-07 10:12:08 ----RD---- C:\Program Files

    2009-03-07 01:42:47 ----SHD---- C:\System Volume Information

    2009-03-06 19:02:25 ----D---- C:\Windows\System32

    2009-03-06 19:02:25 ----D---- C:\Windows\inf

    2009-03-06 19:02:25 ----A---- C:\Windows\system32\PerfStringBackup.INI

    2009-03-06 18:15:55 ----SD---- C:\ProgramData\Microsoft

    2009-03-06 17:48:44 ----D---- C:\Windows\system32\drivers

    2009-03-06 17:46:31 ----HD---- C:\ProgramData

    2009-03-06 09:06:40 ----SHD---- C:\Windows\Installer

    2009-03-06 09:06:38 ----D---- C:\Program Files\Common Files\microsoft shared

    2009-02-21 22:01:56 ----D---- C:\Windows\winsxs

    2009-02-21 17:53:39 ----D---- C:\Windows\Microsoft.NET

    2009-02-21 17:53:02 ----D---- C:\Windows\system32\catroot

    2009-02-21 17:52:21 ----D---- C:\Windows\ehome

    2009-02-21 17:50:47 ----D---- C:\ProgramData\Microsoft Help

    2009-02-21 17:47:03 ----D---- C:\Windows\system32\catroot2

    2009-02-21 17:46:49 ----D---- C:\Program Files\Windows Mail

    2009-02-17 20:52:08 ----D---- C:\Users\juju\AppData\Roaming\dvdcss

    2009-02-13 17:52:27 ----SD---- C:\Users\juju\AppData\Roaming\Microsoft

    2009-02-12 05:56:17 ----A---- C:\Windows\system32\mrt.exe

     

    ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

     

    R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2009-02-05 23152]

    R1 aswSP;avast! Self Protection; C:\Windows\system32\drivers\aswSP.sys [2009-02-05 114768]

    R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2009-02-05 51376]

    R2 ASMMAP;ASMMAP; \??\C:\Program Files\ATKGFNEX\ASMMAP.sys [2007-07-24 13880]

    R2 aswFsBlk;aswFsBlk; C:\Windows\system32\DRIVERS\aswFsBlk.sys [2009-02-05 20560]

    R2 aswMonFlt;aswMonFlt; C:\Windows\system32\DRIVERS\aswMonFlt.sys [2009-02-05 51792]

    R2 ghaio;ghaio; \??\C:\Program Files\ASUS\NB Probe\SPM\ghaio.sys [2007-08-03 20936]

    R2 rimmptsk;rimmptsk; C:\Windows\system32\DRIVERS\rimmptsk.sys [2008-02-16 46592]

    R2 rimsptsk;rimsptsk; C:\Windows\system32\DRIVERS\rimsptsk.sys [2007-07-30 43008]

    R2 rismxdp;Ricoh xD-Picture Card Driver; C:\Windows\system32\DRIVERS\rixdptsk.sys [2007-07-30 38400]

    R3 AgereSoftModem;Agere Systems Soft Modem; C:\Windows\system32\DRIVERS\AGRSM.sys [2007-08-23 1201312]

    R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athr.sys [2008-04-27 909824]

    R3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2008-07-11 3698176]

    R3 ATSWPDRV;AuthenTec TruePrint USB Driver (SwipeSensor); C:\Windows\system32\DRIVERS\ATSwpDrv.sys [2007-06-17 146824]

    R3 CmBatt;Microsoft ACPI Control Method Battery Driver; C:\Windows\system32\DRIVERS\CmBatt.sys [2008-01-21 14208]

    R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys [2008-04-17 15464]

    R3 HdAudAddService;Microsoft 1.1 UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]

    R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2008-06-17 2153688]

    R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2008-06-03 15928]

    R3 MODEMCSA;Unimodem Streaming Filter Device; C:\Windows\system32\drivers\MODEMCSA.sys [2008-01-21 18432]

    R3 MTsensor;ATK0100 ACPI UTILITY; C:\Windows\system32\DRIVERS\ATKACPI.sys [2006-12-14 7680]

    R3 RTL8169;Realtek 8169 NT Driver; C:\Windows\system32\DRIVERS\Rtlh86.sys [2008-05-02 122368]

    R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2008-01-21 88576]

    R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2008-05-13 1772544]

    R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2007-12-06 196400]

    R3 usbfilter;AMD USB Filter Driver; C:\Windows\system32\DRIVERS\usbfilter.sys [2008-03-20 22072]

    R3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-21 83328]

    S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2008-01-21 5632]

    S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-21 8192]

    S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-21 5888]

    S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-21 5504]

    S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2008-01-21 6016]

    S3 smserial;smserial; C:\Windows\system32\DRIVERS\smserial.sys [2006-11-02 1010560]

    S3 usbvideo;USB Video Device (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2008-01-21 134016]

    S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2008-01-21 39936]

    S3 yukonwlh;NDIS6.0 Miniport Driver for Marvell Yukon Ethernet Controller; C:\Windows\system32\DRIVERS\yk60x86.sys [2006-11-02 194048]

    S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2008-01-21 6656]

    S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-01-21 386616]

    S4 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\DRIVERS\wmiacpi.sys [2008-01-21 11264]

     

    ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

     

    R2 AgereModemAudio;Agere Modem Call Progress Audio; C:\Windows\system32\agrsmsvc.exe [2007-08-23 13312]

    R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [2008-10-01 116040]

    R2 ASBroker;Courtier de session de connexion; C:\Windows\System32\svchost.exe [2008-01-21 21504]

    R2 ASChannel;Canal de communication local; C:\Windows\System32\svchost.exe [2008-01-21 21504]

    R2 ASLDRService;ASLDR Service; C:\Program Files\ATK Hotkey\ASLDRSrv.exe [2007-10-03 94208]

    R2 aswUpdSv;avast! iAVS4 Control Service; C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe [2009-02-05 18752]

    R2 Ati External Event Utility;Ati External Event Utility; C:\Windows\system32\Ati2evxx.exe [2008-07-11 692224]

    R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files\ATKGFNEX\GFNEXSrv.exe [2007-08-08 94208]

    R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast4\ashServ.exe [2009-02-05 138680]

    R2 Bonjour Service;Service Bonjour; C:\Program Files\Bonjour\mDNSResponder.exe [2008-08-29 238888]

    R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2008-03-18 73728]

    R2 SafeRemove;AMD Safely Remove Disk Drive; C:\Program Files\AMD\Safely Remove Disk\SafeRemoveService.exe [2008-07-07 147456]

    R2 spmgr;spmgr; C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe [2007-08-03 125496]

    R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe [2009-02-05 254040]

    R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast4\ashWebSv.exe [2009-02-05 352920]

    R3 iPod Service;Service de l’iPod; C:\Program Files\iPod\bin\iPodService.exe [2008-10-01 536872]

    S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2007-08-24 443776]

    S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]

    S3 usnjsvc;Service Messenger Sharing Folders USN Journal Reader; C:\Program Files\Windows Live\Messenger\usnsvc.exe [2007-10-18 98328]

    S3 WLSetupSvc;Windows Live Setup Service; C:\Program Files\Windows Live\installer\WLSetupSvc.exe [2007-10-25 266240]

     

    -----------------EOF-----------------

     

     

     

     

     

    Merci.

  11. J'ai lu ton document sur la sécurité, très intéressant, (je vais faire gaffe aux sites porno que je visite :P ), j'ai installé récemment InternetGameBox c'est peut être lui qui ma infecté?

     

    Aurais-tu un antispyware à me conseiller, j'ai comme antivirus McAfee...

     

    Je vais aussi essayé de modifier mes droit d'utilisateur pour internet (j'ai un peu de mal :P )

     

    En tous cas merci encore, et merci pour votre lutte...

     

    A+

×
×
  • Créer...