

hhaasseenn
Membres-
Compteur de contenus
7 -
Inscription
-
Dernière visite
Autres informations
-
Mes langues
ENG, SPA, FRA
hhaasseenn's Achievements

Junior Member (3/12)
0
Réputation sur la communauté
-
[Résolu] Eradication Total security
hhaasseenn a répondu à un(e) sujet de hhaasseenn dans Analyses et éradication malwares
Merci le sioux ! -
[Résolu] Eradication Total security
hhaasseenn a répondu à un(e) sujet de hhaasseenn dans Analyses et éradication malwares
Salut, et désolé pour le temps d'absence... Antivir est bien configuré comme indiqué. Voici le Scan délivré par Bitdefender: BitDefender Online Scanner - Rapport virus en temps réel Généré à: Fri, Sep 04, 2009 - 21:53:05 Encore merci le Sioux, et désolé pour l'absence... Info d'analyse Fichiers scannés 126288 Infectés Fichiers 0 Virus Détectés Aucun virus trouvé. Ce sommaire du processus d'analyse sera utilisé par les laboratoires Antivirus BitDefender pour créer des statistiques agréguées sur l'activité des virus dans le monde. -
[Résolu] Eradication Total security
hhaasseenn a répondu à un(e) sujet de hhaasseenn dans Analyses et éradication malwares
Salut! Alors j'ai opté pour antivir, qui est plus réactif... plus de pop up Total security! voici le logfile fournit par MBAM: Malwarebytes' Anti-Malware 1.40 Version de la base de données: 2713 Windows 5.1.2600 Service Pack 3 31/08/2009 21:17:58 mbam-log-2009-08-31 (21-17-58).txt Type de recherche: Examen complet (C:\|E:\|F:\|G:\|H:\|) Eléments examinés: 232564 Temps écoulé: 1 hour(s), 58 minute(s), 9 second(s) Processus mémoire infecté(s): 0 Module(s) mémoire infecté(s): 0 Clé(s) du Registre infectée(s): 0 Valeur(s) du Registre infectée(s): 0 Elément(s) de données du Registre infecté(s): 0 Dossier(s) infecté(s): 0 Fichier(s) infecté(s): 1 Processus mémoire infecté(s): (Aucun élément nuisible détecté) Module(s) mémoire infecté(s): (Aucun élément nuisible détecté) Clé(s) du Registre infectée(s): (Aucun élément nuisible détecté) Valeur(s) du Registre infectée(s): (Aucun élément nuisible détecté) Elément(s) de données du Registre infecté(s): (Aucun élément nuisible détecté) Dossier(s) infecté(s): (Aucun élément nuisible détecté) Fichier(s) infecté(s): C:\System Volume Information\_restore{BAADBF63-A8B9-4FD1-926A-BA71FFD5292A}\RP15\A0002478.exe (Rogue.SystemSecurity) -> Quarantined and deleted successfully. Il a donc résisté (il me rappelle Cell dans DBZ)!? ------------------------------------------------- ------------------------------------------------- Voici le rapport de Toolscleaner V2: [ Rapport ToolsCleaner version 2.3.10 (par A.Rothstein & dj QUIOU) ] --> Recherche: C:\_OTM: trouvé ! C:\Rsit: trouvé ! C:\Documents and Settings\Hassen\Mes documents\Téléchargements\OTM.exe: trouvé ! C:\Documents and Settings\Hassen\Mes documents\Téléchargements\Rsit.exe: trouvé ! C:\Program Files\trend micro\HijackThis.exe: trouvé ! C:\Program Files\trend micro\hijackthis.log: trouvé ! --------------------------------- --> Suppression: C:\Documents and Settings\Hassen\Mes documents\Téléchargements\OTM.exe: supprimé ! C:\Program Files\trend micro\HijackThis.exe: supprimé ! C:\Documents and Settings\Hassen\Mes documents\Téléchargements\Rsit.exe: supprimé ! C:\Program Files\trend micro\hijackthis.log: supprimé ! C:\_OTM: ERREUR DE SUPPRESSION !! C:\Rsit: supprimé ! Corbeille vidée! Sauvegarde du registre crée ! Encore merci le Sioux! -
[Résolu] Eradication Total security
hhaasseenn a répondu à un(e) sujet de hhaasseenn dans Analyses et éradication malwares
oups, j'ai lancé ma réponse avant d'avoir fini de l'écrire! je disais: Pour Info: -J'ai changé d'antivirus(Bye Bye Avast, après 3 ans de bons et loyaux services, so long). -j'ai aussi lancé un scan Malwarebyte. Encore un grand merci!!! -
[Résolu] Eradication Total security
hhaasseenn a répondu à un(e) sujet de hhaasseenn dans Analyses et éradication malwares
Cool le Sioux t'assures grave! voici le log OTM: All processes killed ========== SERVICES/DRIVERS ========== Service\Driver glaide32 not found. Service\Driver glaide32 not found. Service\Driver glaide32 not found. Service\Driver SVRPEDRV deleted successfully. ========== FILES ========== File/Folder C:\WINDOWS\system32\drivers\glaide32.sys not found. C:\DOCUME~1\Hassen\LOCALS~1\Temp\RarSFX0\S10VWF\PEDRV.sys moved successfully. File/Folder C:\WINDOWS\Temp\wpv621250826839.exe not found. File/Folder C:\Documents and Settings\All Users\Application Data\17745154\17745154.exe not found. File/Folder C:\Documents and Settings\All Users\Application Data\17745154 not found. C:\Documents and Settings\All Users\Application Data\{8CD7F5AF-ECFA-4793-BF40-D8F42DBFF906}\x86\x86 moved successfully. C:\Documents and Settings\All Users\Application Data\{8CD7F5AF-ECFA-4793-BF40-D8F42DBFF906}\x86 moved successfully. C:\Documents and Settings\All Users\Application Data\{8CD7F5AF-ECFA-4793-BF40-D8F42DBFF906} moved successfully. C:\Documents and Settings\All Users\Application Data\{174892B1-CBE7-44F5-86FF-AB555EFD73A3} moved successfully. File/Folder C:\Documents and Settings\Hassen\Menu Démarrer\Programmes\Démarrage\ikowin32.exe not found. C:\Program Files\Ask.com moved successfully. C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job moved successfully. C:\Documents and Settings\Hassen\Application Data\BitTorrent moved successfully. C:\Program Files\BitTorrent moved successfully. ========== REGISTRY ========== Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\17745154" not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}\ deleted successfully. Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{D4027C7F-154A-4066-A1AD-4243D8127440} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}\ not found. Registry value HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list\\C:\Program Files\BitTorrent\bittorrent.exe deleted successfully. ========== COMMANDS ========== [EMPTYTEMP] User: Administrateur ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 32768 bytes User: All Users User: Default User ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 32902 bytes User: Hassen ->Temp folder emptied: 129616031 bytes ->Temporary Internet Files folder emptied: 26816437 bytes ->Java cache emptied: 13425902 bytes ->FireFox cache emptied: 90593404 bytes User: LocalService ->Temp folder emptied: 82255 bytes ->Temporary Internet Files folder emptied: 33170 bytes User: NetworkService ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes %systemdrive% .tmp files removed: 0 bytes C:\WINDOWS\msdownld.tmp folder deleted successfully. %systemroot% .tmp files removed: 0 bytes %systemroot%\System32 .tmp files removed: 3072 bytes Windows Temp folder emptied: 20400387 bytes RecycleBin emptied: 0 bytes Total Files Cleaned = 268,02 mb OTM by OldTimer - Version 3.0.0.6 log created on 08312009_000404 Files moved on Reboot... Registry entries deleted on Reboot... Et le nouveau rapport RSIT Logfile of random's system information tool 1.06 (written by random/random) Run by Hassen at 2009-08-31 00:10:46 Microsoft Windows XP Professionnel Service Pack 2 System drive C: has 53 GB (70%) free of 76 GB Total RAM: 1526 MB (67% free) Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 00:10:52, on 31/08/2009 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v8.00 (8.00.6001.18702) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Avira\AntiVir Desktop\sched.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\agrsmsvc.exe C:\Program Files\Avira\AntiVir Desktop\avguard.exe C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe C:\Program Files\Bonjour\mDNSResponder.exe C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe C:\Program Files\Java\jre6\bin\jqs.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\TODDSrv.exe C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe C:\WINDOWS\system32\wbem\wmiapsrv.exe C:\WINDOWS\notepad.exe C:\Program Files\TOSHIBA\E-KEY\CeEKey.exe C:\WINDOWS\system32\wuauclt.exe C:\Program Files\TOSHIBA\TouchPad\TPTray.exe C:\Program Files\TOSHIBA\Commandes TOSHIBA\TFncKy.exe C:\WINDOWS\system32\TDispVol.exe C:\WINDOWS\system32\ZoomingHook.exe C:\Program Files\TOSHIBA\Utilitaire de zoom TOSHIBA\SmoothView.exe C:\Program Files\TOSHIBA\ConfigFree\NDSTray.exe C:\Program Files\TOSHIBA\TOSHIBA Direct Disc Writer\ddwmon.exe C:\WINDOWS\RTHDCPL.EXE C:\WINDOWS\system32\igfxtray.exe C:\WINDOWS\system32\hkcmd.exe C:\WINDOWS\system32\igfxpers.exe C:\Program Files\Synaptics\SynTP\SynTPEnh.exe C:\Program Files\iTunes\iTunesHelper.exe C:\Program Files\Java\jre6\bin\jusched.exe C:\Program Files\Avira\AntiVir Desktop\avgnt.exe C:\Program Files\Toshiba\Tvs\TvsTray.exe C:\Program Files\ltmoh\Ltmoh.exe C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\iPod\bin\iPodService.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\Documents and Settings\Hassen\Mes documents\Téléchargements\RSIT.exe C:\Program Files\trend micro\Hassen.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll O4 - HKLM\..\Run: [CeEKEY] C:\Program Files\TOSHIBA\E-KEY\CeEKey.exe O4 - HKLM\..\Run: [HWSetup] C:\Program Files\TOSHIBA\TOSHIBA Applet\HWSetup.exe hwSetUP O4 - HKLM\..\Run: [sVPWUTIL] C:\Program Files\Toshiba\Windows Utilities\SVPWUTIL.exe SVPwUTIL O4 - HKLM\..\Run: [TPNF] C:\Program Files\TOSHIBA\TouchPad\TPTray.exe O4 - HKLM\..\Run: [TCtryIOHook] TCtrlIOHook.exe O4 - HKLM\..\Run: [TFncKy] TFncKy.exe O4 - HKLM\..\Run: [TDispVol] TDispVol.exe O4 - HKLM\..\Run: [TPSMain] TPSMain.exe O4 - HKLM\..\Run: [Zooming] ZoomingHook.exe O4 - HKLM\..\Run: [smoothView] C:\Program Files\TOSHIBA\Utilitaire de zoom TOSHIBA\SmoothView.exe O4 - HKLM\..\Run: [NDSTray.exe] NDSTray.exe O4 - HKLM\..\Run: [DDWMon] C:\Program Files\TOSHIBA\TOSHIBA Direct Disc Writer\\ddwmon.exe O4 - HKLM\..\Run: [topi] C:\Program Files\TOSHIBA\Toshiba Online Product Information\topi.exe -startup O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint2K\Apoint.exe O4 - HKLM\..\Run: [synTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe" O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min O4 - HKLM\..\Run: [Tvs] C:\Program Files\Toshiba\Tvs\TvsTray.exe O4 - HKCU\..\Run: [LtMoh] C:\Program Files\ltmoh\Ltmoh.exe O4 - HKCU\..\Run: [TOSCDSPD] C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [EPSON Stylus SX400 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIEGE.EXE /FU "C:\WINDOWS\TEMP\E_S5F.tmp" /EF "HKCU" O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL') O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU') O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user') O4 - Global Startup: Adobe Reader Synchronizer.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000 O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - Agere Systems - C:\WINDOWS\system32\agrsmsvc.exe O23 - Service: Avira AntiVir Planificateur (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: ConfigFree Service (CFSvcs) - TOSHIBA CORPORATION - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe O23 - Service: Service de l’iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe O23 - Service: Planificateur LiveUpdate automatique - Unknown owner - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe (file missing) O23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv) - TOSHIBA Corporation - C:\WINDOWS\system32\TODDSrv.exe O23 - Service: TOSHIBA Bluetooth Service - TOSHIBA CORPORATION - C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe -- End of file - 8058 bytes ======Scheduled tasks folder====== C:\WINDOWS\tasks\AppleSoftwareUpdate.job C:\WINDOWS\tasks\Rappel d'enregistrement 1.job C:\WINDOWS\tasks\Rappel d'enregistrement 2.job C:\WINDOWS\tasks\Rappel d'enregistrement 3.job ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}] Aide pour le lien d'Adobe PDF Reader - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}] Java Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-07-25 41760] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}] JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2009-07-25 73728] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "CeEKEY"=C:\Program Files\TOSHIBA\E-KEY\CeEKey.exe [2006-04-12 638976] ""= [] "HWSetup"=C:\Program Files\TOSHIBA\TOSHIBA Applet\HWSetup.exe [2004-05-01 28672] "SVPWUTIL"=C:\Program Files\Toshiba\Windows Utilities\SVPWUTIL.exe [2006-05-25 65536] "TPNF"=C:\Program Files\TOSHIBA\TouchPad\TPTray.exe [2007-06-01 53248] "TCtryIOHook"=C:\WINDOWS\system32\TCtrlIOHook.exe [2007-06-30 28672] "TFncKy"=TFncKy.exe [] "TDispVol"=C:\WINDOWS\system32\TDispVol.exe [2005-12-27 73728] "TPSMain"=C:\WINDOWS\system32\TPSMain.exe [2005-08-12 266240] "Zooming"=C:\WINDOWS\system32\ZoomingHook.exe [2005-06-06 24576] "SmoothView"=C:\Program Files\TOSHIBA\Utilitaire de zoom TOSHIBA\SmoothView.exe [2007-05-11 143360] "NDSTray.exe"=NDSTray.exe [] "DDWMon"=C:\Program Files\TOSHIBA\TOSHIBA Direct Disc Writer\\ddwmon.exe [2007-04-26 495616] "topi"=C:\Program Files\TOSHIBA\Toshiba Online Product Information\topi.exe [2007-07-10 581632] "RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2007-06-13 16377344] "Alcmtr"=C:\WINDOWS\ALCMTR.EXE [2005-05-04 69632] "igfxtray"=C:\WINDOWS\system32\igfxtray.exe [2006-02-07 94208] "igfxhkcmd"=C:\WINDOWS\system32\hkcmd.exe [2006-02-07 77824] "igfxpers"=C:\WINDOWS\system32\igfxpers.exe [2006-02-07 118784] "Apoint"=C:\Program Files\Apoint2K\Apoint.exe [2004-03-24 196608] "SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2009-07-20 1545512] "QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2009-05-26 413696] "iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2009-07-13 292128] "SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2009-07-25 149280] "avgnt"=C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [2009-03-02 209153] "Tvs"=C:\Program Files\Toshiba\Tvs\TvsTray.exe [2006-02-02 73728] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "LtMoh"=C:\Program Files\ltmoh\Ltmoh.exe [2007-01-09 191552] "TOSCDSPD"=C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe [2005-04-11 65536] "ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2004-08-05 15360] "EPSON Stylus SX400 Series"=C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIEGE.EXE [2007-12-17 188928] C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage Adobe Reader Synchronizer.lnk - C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui] C:\WINDOWS\system32\igfxdev.dll [2006-02-07 139264] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon] C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265088] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "shutdownwithoutlogon"=1 "undockwithoutlogon"=1 [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "NoDriveTypeAutoRun"=145 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "HonorAutoRunSetting"= [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] "%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019" "C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook" "C:\Documents and Settings\Hassen\Local Settings\Temp\7zS8.tmp\SymNRT.exe"="C:\Documents and Settings\Hassen\Local Settings\Temp\7zS8.tmp\SymNRT.exe:*:Enabled:Norton Removal Tool" "C:\Program Files\Bonjour\mDNSResponder.exe"="C:\Program Files\Bonjour\mDNSResponder.exe:*:Enabled:Bonjour" "C:\Program Files\iTunes\iTunes.exe"="C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes" [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] "%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019" ======List of files/folders created in the last 1 months====== 2009-08-31 00:04:04 ----D---- C:\_OTM 2009-08-30 22:06:34 ----D---- C:\Documents and Settings\Hassen\Application Data\OpenOffice.org 2009-08-30 16:07:05 ----A---- C:\WINDOWS\system32\E_DCINST.DLL 2009-08-30 16:06:58 ----A---- C:\WINDOWS\system32\E_FD4BEGE.DLL 2009-08-30 16:06:57 ----A---- C:\WINDOWS\system32\E_FLBEGE.DLL 2009-08-30 16:03:15 ----A---- C:\WINDOWS\system32\escwiad.dll 2009-08-30 16:03:13 ----D---- C:\Program Files\epson 2009-08-30 16:00:55 ----D---- C:\Documents and Settings\All Users\Application Data\EPSON 2009-08-30 02:09:07 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$ 2009-08-30 02:08:59 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$ 2009-08-30 02:08:51 ----HDC---- C:\WINDOWS\$NtUninstallKB959426$ 2009-08-30 02:08:43 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$ 2009-08-30 02:08:37 ----HDC---- C:\WINDOWS\$NtUninstallKB956803$ 2009-08-30 02:08:29 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$ 2009-08-30 02:08:22 ----HDC---- C:\WINDOWS\$NtUninstallKB935448$ 2009-08-30 02:08:15 ----HDC---- C:\WINDOWS\$NtUninstallKB923723$ 2009-08-30 02:07:54 ----HDC---- C:\WINDOWS\$NtUninstallKB961371-v2$ 2009-08-30 02:07:46 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$ 2009-08-30 02:07:38 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$ 2009-08-30 02:07:31 ----HDC---- C:\WINDOWS\$NtUninstallKB971557$ 2009-08-30 02:07:25 ----HDC---- C:\WINDOWS\$NtUninstallKB960225$ 2009-08-30 02:07:19 ----HDC---- C:\WINDOWS\$NtUninstallKB973346$ 2009-08-30 02:01:55 ----D---- C:\WINDOWS\system32\XPSViewer 2009-08-30 02:01:50 ----D---- C:\Program Files\MSBuild 2009-08-30 02:01:48 ----D---- C:\WINDOWS\system32\en-US 2009-08-30 02:01:39 ----D---- C:\Program Files\Reference Assemblies 2009-08-30 02:01:07 ----N---- C:\WINDOWS\system32\xpsshhdr.dll 2009-08-30 02:01:07 ----N---- C:\WINDOWS\system32\prntvpt.dll 2009-08-30 02:01:06 ----N---- C:\WINDOWS\system32\xpssvcs.dll 2009-08-30 01:58:01 ----HDC---- C:\WINDOWS\$NtUninstallWIC$ 2009-08-30 01:54:58 ----HDC---- C:\WINDOWS\$NtUninstallKB956572$ 2009-08-30 01:54:44 ----HDC---- C:\WINDOWS\$NtUninstallKB961501$ 2009-08-30 01:54:37 ----D---- C:\Program Files\MSXML 6.0 2009-08-30 01:54:24 ----HDC---- C:\WINDOWS\$NtUninstallKB938464-v2$ 2009-08-30 01:54:16 ----HDC---- C:\WINDOWS\$NtUninstallKB971633$ 2009-08-30 01:54:07 ----HDC---- C:\WINDOWS\$NtUninstallKB952069_WM9$ 2009-08-30 01:54:01 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$ 2009-08-30 01:53:49 ----HDC---- C:\WINDOWS\$NtUninstallKB973540_WM9L$ 2009-08-30 01:53:40 ----HDC---- C:\WINDOWS\$NtUninstallKB952004$ 2009-08-30 01:53:06 ----SHD---- C:\Config.Msi 2009-08-30 01:52:32 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$ 2009-08-30 01:52:27 ----HDC---- C:\WINDOWS\$NtUninstallKB941569$ 2009-08-30 01:51:44 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$ 2009-08-30 01:51:37 ----HDC---- C:\WINDOWS\$NtUninstallKB957097$ 2009-08-30 01:51:31 ----HDC---- C:\WINDOWS\$NtUninstallKB958687$ 2009-08-30 01:51:25 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$ 2009-08-30 01:51:17 ----HDC---- C:\WINDOWS\$NtUninstallKB973354$ 2009-08-30 01:51:07 ----HDC---- C:\WINDOWS\$NtUninstallKB967715$ 2009-08-30 01:50:59 ----HDC---- C:\WINDOWS\$NtUninstallKB951066$ 2009-08-30 01:50:51 ----HDC---- C:\WINDOWS\$NtUninstallKB951748$ 2009-08-30 01:50:42 ----HDC---- C:\WINDOWS\$NtUninstallKB970238$ 2009-08-30 01:50:33 ----D---- C:\WINDOWS\ServicePackFiles 2009-08-30 01:50:31 ----HDC---- C:\WINDOWS\$NtUninstallKB958470$ 2009-08-30 01:50:23 ----HDC---- C:\WINDOWS\$NtUninstallKB960803$ 2009-08-30 01:50:15 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$ 2009-08-30 01:50:08 ----HDC---- C:\WINDOWS\$NtUninstallKB968537$ 2009-08-30 01:49:58 ----HDC---- C:\WINDOWS\$NtUninstallKB971032$ 2009-08-30 01:49:50 ----HDC---- C:\WINDOWS\$NtUninstallKB954600$ 2009-08-30 01:49:44 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$ 2009-08-30 01:49:37 ----HDC---- C:\WINDOWS\$NtUninstallKB955069$ 2009-08-30 01:49:31 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$ 2009-08-30 01:49:14 ----HDC---- C:\WINDOWS\$NtUninstallKB923561$ 2009-08-30 01:48:49 ----HDC---- C:\WINDOWS\$NtUninstallKB970653-v3$ 2009-08-30 01:47:10 ----A---- C:\WINDOWS\system32\NETw5r32.dll 2009-08-30 01:47:10 ----A---- C:\WINDOWS\system32\NETw5c32.dll 2009-08-29 23:42:15 ----D---- C:\Program Files\WinRAR 2009-08-29 22:30:01 ----D---- C:\Documents and Settings\Hassen\Application Data\Malwarebytes 2009-08-29 22:29:53 ----D---- C:\Program Files\Malwarebytes' Anti-Malware 2009-08-29 22:29:53 ----D---- C:\Documents and Settings\All Users\Application Data\Malwarebytes 2009-08-29 19:54:18 ----D---- C:\WINDOWS\system32\CatRoot_bak 2009-08-29 19:42:22 ----D---- C:\Program Files\Avira 2009-08-29 19:42:22 ----D---- C:\Documents and Settings\All Users\Application Data\Avira 2009-08-29 18:08:16 ----D---- C:\Program Files\WinPcap 2009-08-29 17:26:09 ----D---- C:\Program Files\trend micro 2009-08-29 17:26:08 ----D---- C:\rsit 2009-08-29 17:09:41 ----D---- C:\Program Files\Enigma Software Group 2009-08-29 16:58:53 ----A---- C:\WINDOWS\system32\javaws.exe 2009-08-29 16:58:53 ----A---- C:\WINDOWS\system32\javaw.exe 2009-08-29 16:58:53 ----A---- C:\WINDOWS\system32\java.exe 2009-08-29 16:50:05 ----D---- C:\WINDOWS\Sun 2009-08-29 15:53:06 ----D---- C:\Program Files\JRE 2009-08-29 15:52:57 ----D---- C:\Program Files\OpenOffice.org 3 2009-08-29 15:52:34 ----A---- C:\WINDOWS\system32\deploytk.dll 2009-08-29 15:02:57 ----A---- C:\WINDOWS\system32\ptpusb.dll 2009-08-29 15:02:55 ----A---- C:\WINDOWS\system32\ptpusd.dll 2009-08-29 14:54:55 ----D---- C:\Documents and Settings\Hassen\Application Data\vlc 2009-08-29 14:52:27 ----D---- C:\Program Files\VideoLAN 2009-08-29 14:45:05 ----D---- C:\Documents and Settings\Hassen\Application Data\WinRAR 2009-08-29 14:34:08 ----D---- C:\Documents and Settings\All Users\Application Data\NOS 2009-08-29 13:22:57 ----N---- C:\WINDOWS\system32\vxblock.dll 2009-08-29 13:22:57 ----N---- C:\WINDOWS\system32\pxwave.dll 2009-08-29 13:22:57 ----N---- C:\WINDOWS\system32\pxsfs.dll 2009-08-29 13:22:57 ----N---- C:\WINDOWS\system32\pxmas.dll 2009-08-29 13:22:57 ----N---- C:\WINDOWS\system32\pxinsi64.exe 2009-08-29 13:22:57 ----N---- C:\WINDOWS\system32\pxinsa64.exe 2009-08-29 13:22:57 ----N---- C:\WINDOWS\system32\pxhpinst.exe 2009-08-29 13:22:57 ----N---- C:\WINDOWS\system32\pxdrv.dll 2009-08-29 13:22:57 ----N---- C:\WINDOWS\system32\pxcpyi64.exe 2009-08-29 13:22:57 ----N---- C:\WINDOWS\system32\pxcpya64.exe 2009-08-29 13:22:57 ----N---- C:\WINDOWS\system32\pxafs.dll 2009-08-29 13:22:57 ----N---- C:\WINDOWS\system32\px.dll 2009-08-29 13:14:07 ----D---- C:\Documents and Settings\Hassen\Application Data\Apple Computer 2009-08-29 13:14:01 ----A---- C:\WINDOWS\system32\GEARAspi.dll 2009-08-29 13:13:43 ----D---- C:\Program Files\iPod 2009-08-29 13:13:40 ----D---- C:\Program Files\iTunes 2009-08-29 13:13:25 ----D---- C:\Program Files\Bonjour 2009-08-29 13:12:54 ----D---- C:\Program Files\QuickTime 2009-08-29 13:12:53 ----D---- C:\Documents and Settings\All Users\Application Data\Apple Computer 2009-08-29 13:12:40 ----D---- C:\Program Files\Apple Software Update 2009-08-29 13:12:32 ----A---- C:\WINDOWS\system32\usbaaplrc.dll 2009-08-29 13:12:17 ----D---- C:\Program Files\Fichiers communs\Apple 2009-08-29 13:12:17 ----D---- C:\Documents and Settings\All Users\Application Data\Apple 2009-08-29 12:59:26 ----A---- C:\WINDOWS\system32\hidserv.dll 2009-08-29 05:01:02 ----D---- C:\Documents and Settings\Hassen\Application Data\Macromedia 2009-08-29 04:55:43 ----D---- C:\WINDOWS\ie8updates 2009-08-29 04:54:59 ----D---- C:\WINDOWS\WBEM 2009-08-29 04:53:40 ----HDC---- C:\WINDOWS\ie8 2009-08-29 04:51:13 ----D---- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage 2009-08-29 04:36:57 ----N---- C:\WINDOWS\system32\spmsgXP_2k3.dll 2009-08-29 04:36:52 ----HDC---- C:\WINDOWS\$NtUninstallWdf01007$ 2009-08-29 04:36:43 ----D---- C:\Program Files\Synaptics 2009-08-29 04:36:31 ----A---- C:\WINDOWS\system32\SynTPCo4.dll 2009-08-29 04:36:31 ----A---- C:\WINDOWS\system32\SynTPAPI.dll 2009-08-29 04:36:31 ----A---- C:\WINDOWS\system32\SynCtrl.dll 2009-08-29 04:36:30 ----A---- C:\WINDOWS\system32\WdfCoInstaller01007.dll 2009-08-29 04:36:30 ----A---- C:\WINDOWS\system32\SynCOM.dll 2009-08-29 04:25:39 ----D---- C:\WINDOWS\pss 2009-08-29 04:09:15 ----D---- C:\WINDOWS\system32\PreInstall 2009-08-29 04:09:13 ----HDC---- C:\WINDOWS\$NtUninstallKB898461$ 2009-08-29 03:52:29 ----D---- C:\Program Files\Alwil Software 2009-08-29 03:29:20 ----SHD---- C:\RECYCLER 2009-08-29 03:12:47 ----A---- C:\WINDOWS\system32\MRT.exe 2009-08-29 03:12:31 ----HDC---- C:\WINDOWS\$NtUninstallKB932823-v3$ 2009-08-29 03:10:25 ----D---- C:\Documents and Settings\Hassen\Application Data\Mozilla 2009-08-29 03:10:15 ----D---- C:\Program Files\Mozilla Firefox 2009-08-29 03:03:11 ----D---- C:\WINDOWS\system32\SoftwareDistribution 2009-08-29 02:55:50 ----A---- C:\WINDOWS\system32\igfxres.dll 2009-08-29 02:54:38 ----ASH---- C:\Documents and Settings\Hassen\Application Data\desktop.ini 2009-08-29 02:54:36 ----D---- C:\Documents and Settings\Hassen\Application Data\InstallShield 2009-08-29 02:54:36 ----D---- C:\Documents and Settings\Hassen\Application Data\Identities 2009-08-29 02:54:36 ----D---- C:\Documents and Settings\Hassen\Application Data\Adobe 2009-08-29 02:54:35 ----SD---- C:\Documents and Settings\Hassen\Application Data\Microsoft 2009-08-29 02:54:35 ----D---- C:\Documents and Settings\Hassen\Application Data\toshiba 2009-08-29 02:54:35 ----D---- C:\Documents and Settings\Hassen\Application Data\Sun 2009-08-29 02:53:23 ----D---- C:\Program Files\Apoint2K 2009-08-29 02:53:23 ----A---- C:\WINDOWS\system32\Vxdif.dll ======List of files/folders modified in the last 1 months====== 2009-08-31 00:07:41 ----D---- C:\WINDOWS\Prefetch 2009-08-31 00:06:29 ----D---- C:\WINDOWS\Temp 2009-08-31 00:06:27 ----D---- C:\WINDOWS\system32\CatRoot2 2009-08-31 00:06:22 ----D---- C:\WINDOWS 2009-08-31 00:04:56 ----A---- C:\WINDOWS\SchedLgU.Txt 2009-08-31 00:04:35 ----D---- C:\WINDOWS\system32 2009-08-31 00:04:10 ----SD---- C:\WINDOWS\Tasks 2009-08-31 00:04:10 ----RD---- C:\Program Files 2009-08-31 00:04:09 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI 2009-08-30 19:04:11 ----HD---- C:\WINDOWS\inf 2009-08-30 19:03:58 ----HD---- C:\WINDOWS\$hf_mig$ 2009-08-30 16:06:47 ----RSHDC---- C:\WINDOWS\system32\dllcache 2009-08-30 16:06:42 ----D---- C:\WINDOWS\system32\drivers 2009-08-30 16:03:13 ----D---- C:\WINDOWS\twain_32 2009-08-30 16:01:13 ----DC---- C:\WINDOWS\system32\DRVSTORE 2009-08-30 02:25:22 ----D---- C:\WINDOWS\Microsoft.NET 2009-08-30 02:25:20 ----RSD---- C:\WINDOWS\assembly 2009-08-30 02:10:08 ----D---- C:\WINDOWS\system32\wbem 2009-08-30 02:10:07 ----D---- C:\WINDOWS\system32\Setup 2009-08-30 02:10:06 ----D---- C:\WINDOWS\AppPatch 2009-08-30 02:09:04 ----A---- C:\WINDOWS\imsins.BAK 2009-08-30 02:08:45 ----D---- C:\Program Files\Messenger 2009-08-30 02:07:15 ----SHD---- C:\WINDOWS\Installer 2009-08-30 02:05:14 ----D---- C:\WINDOWS\WinSxS 2009-08-30 02:01:46 ----RSD---- C:\WINDOWS\Fonts 2009-08-30 02:01:19 ----D---- C:\WINDOWS\system32\spool 2009-08-30 01:51:19 ----D---- C:\Program Files\Outlook Express 2009-08-30 01:47:15 ----D---- C:\WINDOWS\system32\ReinstallBackups 2009-08-30 01:39:52 ----HD---- C:\Program Files\InstallShield Installation Information 2009-08-30 01:39:52 ----D---- C:\Program Files\Toshiba 2009-08-29 20:14:54 ----D---- C:\WINDOWS\system32\CatRoot 2009-08-29 19:54:18 ----D---- C:\WINDOWS\Debug 2009-08-29 19:42:35 ----SD---- C:\WINDOWS\Downloaded Program Files 2009-08-29 19:31:53 ----D---- C:\Program Files\Fichiers communs\Microsoft Shared 2009-08-29 16:58:51 ----D---- C:\Program Files\Java 2009-08-29 13:37:30 ----D---- C:\Program Files\Fichiers communs\Adobe 2009-08-29 13:25:04 ----D---- C:\Documents and Settings\All Users\Application Data\Adobe 2009-08-29 13:22:40 ----D---- C:\Program Files\Adobe 2009-08-29 13:12:17 ----D---- C:\Program Files\Fichiers communs 2009-08-29 09:41:24 ----D---- C:\WINDOWS\system32\IME 2009-08-29 09:39:43 ----D---- C:\WINDOWS\msapps 2009-08-29 09:38:57 ----D---- C:\WINDOWS\java 2009-08-29 09:35:41 ----D---- C:\WINDOWS\ehome 2009-08-29 09:33:21 ----HDC---- C:\WINDOWS\$NtUninstallWdf01005$ 2009-08-29 09:33:21 ----HDC---- C:\WINDOWS\$NtUninstallKB932168$ 2009-08-29 09:33:21 ----HDC---- C:\WINDOWS\$NtUninstallKB931768$ 2009-08-29 09:33:14 ----HDC---- C:\WINDOWS\$NtUninstallKB931261$ 2009-08-29 09:33:13 ----HDC---- C:\WINDOWS\$NtUninstallKB930916$ 2009-08-29 09:33:13 ----HDC---- C:\WINDOWS\$NtUninstallKB930178$ 2009-08-29 09:33:12 ----HDC---- C:\WINDOWS\$NtUninstallKB929969$ 2009-08-29 09:33:12 ----HDC---- C:\WINDOWS\$NtUninstallKB929338$ 2009-08-29 09:33:08 ----HDC---- C:\WINDOWS\$NtUninstallKB929120$ 2009-08-29 09:33:07 ----HDC---- C:\WINDOWS\$NtUninstallKB928843$ 2009-08-29 09:33:07 ----HDC---- C:\WINDOWS\$NtUninstallKB928388$ 2009-08-29 09:33:07 ----HDC---- C:\WINDOWS\$NtUninstallKB928090$ 2009-08-29 09:32:59 ----HDC---- C:\WINDOWS\$NtUninstallKB927779$ 2009-08-29 09:32:58 ----HDC---- C:\WINDOWS\$NtUninstallKB925902$ 2009-08-29 09:32:57 ----HDC---- C:\WINDOWS\$NtUninstallKB924270$ 2009-08-29 09:32:56 ----HDC---- C:\WINDOWS\$NtUninstallKB924191$ 2009-08-29 09:32:54 ----HDC---- C:\WINDOWS\$NtUninstallKB923689$ 2009-08-29 09:32:54 ----HDC---- C:\WINDOWS\$NtUninstallKB923191$ 2009-08-29 09:32:53 ----HDC---- C:\WINDOWS\$NtUninstallKB922582$ 2009-08-29 09:32:53 ----HDC---- C:\WINDOWS\$NtUninstallKB921883$ 2009-08-29 09:32:53 ----HDC---- C:\WINDOWS\$NtUninstallKB921398$ 2009-08-29 09:32:47 ----HDC---- C:\WINDOWS\$NtUninstallKB920872$ 2009-08-29 09:32:46 ----HDC---- C:\WINDOWS\$NtUninstallKB920685$ 2009-08-29 09:32:45 ----HDC---- C:\WINDOWS\$NtUninstallKB920683$ 2009-08-29 09:32:45 ----HDC---- C:\WINDOWS\$NtUninstallKB920670$ 2009-08-29 09:32:45 ----HDC---- C:\WINDOWS\$NtUninstallKB920214$ 2009-08-29 09:32:45 ----HDC---- C:\WINDOWS\$NtUninstallKB920213$ 2009-08-29 09:32:44 ----HDC---- C:\WINDOWS\$NtUninstallKB919007$ 2009-08-29 09:32:44 ----HDC---- C:\WINDOWS\$NtUninstallKB918649$ 2009-08-29 09:32:37 ----HDC---- C:\WINDOWS\$NtUninstallKB918439$ 2009-08-29 09:32:37 ----HDC---- C:\WINDOWS\$NtUninstallKB918005$ 2009-08-29 09:32:37 ----HDC---- C:\WINDOWS\$NtUninstallKB917953$ 2009-08-29 09:32:34 ----HDC---- C:\WINDOWS\$NtUninstallKB917734_WMP10$ 2009-08-29 09:32:34 ----HDC---- C:\WINDOWS\$NtUninstallKB917422$ 2009-08-29 09:32:33 ----HDC---- C:\WINDOWS\$NtUninstallKB917344$ 2009-08-29 09:32:33 ----HDC---- C:\WINDOWS\$NtUninstallKB917332$ 2009-08-29 09:32:33 ----HDC---- C:\WINDOWS\$NtUninstallKB917159$ 2009-08-29 09:32:33 ----HDC---- C:\WINDOWS\$NtUninstallKB916281$ 2009-08-29 09:32:28 ----HDC---- C:\WINDOWS\$NtUninstallKB914389$ 2009-08-29 09:32:27 ----HDC---- C:\WINDOWS\$NtUninstallKB914388$ 2009-08-29 09:32:27 ----HDC---- C:\WINDOWS\$NtUninstallKB912919$ 2009-08-29 09:32:26 ----HDC---- C:\WINDOWS\$NtUninstallKB911927$ 2009-08-29 09:32:26 ----HDC---- C:\WINDOWS\$NtUninstallKB911567$ 2009-08-29 09:32:25 ----HDC---- C:\WINDOWS\$NtUninstallKB911564$ 2009-08-29 09:32:24 ----HDC---- C:\WINDOWS\$NtUninstallKB911562$ 2009-08-29 09:32:24 ----HDC---- C:\WINDOWS\$NtUninstallKB911280$ 2009-08-29 09:32:24 ----HDC---- C:\WINDOWS\$NtUninstallKB910728$ 2009-08-29 09:32:24 ----HDC---- C:\WINDOWS\$NtUninstallKB910437$ 2009-08-29 09:32:23 ----HDC---- C:\WINDOWS\$NtUninstallKB908531$ 2009-08-29 09:32:17 ----HDC---- C:\WINDOWS\$NtUninstallKB908519$ 2009-08-29 09:32:16 ----HDC---- C:\WINDOWS\$NtUninstallKB905749$ 2009-08-29 09:32:16 ----HDC---- C:\WINDOWS\$NtUninstallKB905414$ 2009-08-29 09:32:16 ----HDC---- C:\WINDOWS\$NtUninstallKB904706$ 2009-08-29 09:32:15 ----HDC---- C:\WINDOWS\$NtUninstallKB902400$ 2009-08-29 09:32:10 ----HDC---- C:\WINDOWS\$NtUninstallKB901214$ 2009-08-29 09:32:09 ----HDC---- C:\WINDOWS\$NtUninstallKB901190$ 2009-08-29 09:32:09 ----HDC---- C:\WINDOWS\$NtUninstallKB901017$ 2009-08-29 09:32:08 ----HDC---- C:\WINDOWS\$NtUninstallKB900725$ 2009-08-29 09:32:05 ----HDC---- C:\WINDOWS\$NtUninstallKB899591$ 2009-08-29 09:32:04 ----HDC---- C:\WINDOWS\$NtUninstallKB899589$ 2009-08-29 09:32:04 ----HDC---- C:\WINDOWS\$NtUninstallKB899587$ 2009-08-29 09:32:04 ----HDC---- C:\WINDOWS\$NtUninstallKB898458$ 2009-08-29 09:32:04 ----HDC---- C:\WINDOWS\$NtUninstallKB896428$ 2009-08-29 09:32:02 ----HDC---- C:\WINDOWS\$NtUninstallKB896424$ 2009-08-29 09:32:02 ----HDC---- C:\WINDOWS\$NtUninstallKB896423$ 2009-08-29 09:32:02 ----HDC---- C:\WINDOWS\$NtUninstallKB896422$ 2009-08-29 09:32:01 ----HDC---- C:\WINDOWS\$NtUninstallKB896358$ 2009-08-29 09:32:01 ----HDC---- C:\WINDOWS\$NtUninstallKB896256$ 2009-08-29 09:31:57 ----HDC---- C:\WINDOWS\$NtUninstallKB896243$ 2009-08-29 09:31:56 ----HDC---- C:\WINDOWS\$NtUninstallKB895200$ 2009-08-29 09:31:54 ----HDC---- C:\WINDOWS\$NtUninstallKB894871$ 2009-08-29 09:31:53 ----HDC---- C:\WINDOWS\$NtUninstallKB894391_0$ 2009-08-29 09:31:52 ----HDC---- C:\WINDOWS\$NtUninstallKB894391$ 2009-08-29 09:31:51 ----HDC---- C:\WINDOWS\$NtUninstallKB893756$ 2009-08-29 09:31:50 ----HDC---- C:\WINDOWS\$NtUninstallKB893357$ 2009-08-29 09:31:49 ----HDC---- C:\WINDOWS\$NtUninstallKB893056$ 2009-08-29 09:31:49 ----HDC---- C:\WINDOWS\$NtUninstallKB891781$ 2009-08-29 09:31:49 ----HDC---- C:\WINDOWS\$NtUninstallKB890859$ 2009-08-29 09:31:45 ----HDC---- C:\WINDOWS\$NtUninstallKB890046_0$ 2009-08-29 09:31:45 ----HDC---- C:\WINDOWS\$NtUninstallKB890046$ 2009-08-29 09:31:45 ----HDC---- C:\WINDOWS\$NtUninstallKB889673$ 2009-08-29 09:31:45 ----HDC---- C:\WINDOWS\$NtUninstallKB888622$ 2009-08-29 09:31:45 ----HDC---- C:\WINDOWS\$NtUninstallKB888302$ 2009-08-29 09:31:45 ----HDC---- C:\WINDOWS\$NtUninstallKB888113$ 2009-08-29 09:31:44 ----HDC---- C:\WINDOWS\$NtUninstallKB888111WXPSP2$ 2009-08-29 09:31:44 ----HDC---- C:\WINDOWS\$NtUninstallKB887472$ 2009-08-29 09:31:43 ----HDC---- C:\WINDOWS\$NtUninstallKB886185$ 2009-08-29 09:31:43 ----HDC---- C:\WINDOWS\$NtUninstallKB885855$ 2009-08-29 09:31:43 ----HDC---- C:\WINDOWS\$NtUninstallKB885836$ 2009-08-29 09:31:43 ----HDC---- C:\WINDOWS\$NtUninstallKB885835$ 2009-08-29 09:31:42 ----HDC---- C:\WINDOWS\$NtUninstallKB873339$ 2009-08-29 09:31:42 ----HDC---- C:\WINDOWS\$MSI31Uninstall_KB893803v2$ 2009-08-29 09:30:55 ----D---- C:\VALUEADD 2009-08-29 09:30:12 ----D---- C:\SUPPORT 2009-08-29 09:30:12 ----D---- C:\Program Files\xerox 2009-08-29 09:29:30 ----D---- C:\Program Files\Services en ligne 2009-08-29 09:29:30 ----D---- C:\Program Files\Realtek 2009-08-29 09:29:15 ----D---- C:\Program Files\Online Services 2009-08-29 09:29:05 ----D---- C:\Program Files\NetMeeting 2009-08-29 09:29:03 ----D---- C:\Program Files\MSN Gaming Zone 2009-08-29 09:28:52 ----D---- C:\Program Files\MSN 2009-08-29 09:28:52 ----D---- C:\Program Files\Movie Maker 2009-08-29 09:28:48 ----D---- C:\Program Files\Microsoft.NET 2009-08-29 09:28:47 ----D---- C:\Program Files\Microsoft Works 2009-08-29 09:28:46 ----D---- C:\Program Files\Microsoft Visual Studio 2009-08-29 09:24:58 ----D---- C:\Program Files\microsoft frontpage 2009-08-29 09:24:58 ----D---- C:\Program Files\ltmoh 2009-08-29 09:24:26 ----D---- C:\Program Files\Intel 2009-08-29 09:24:12 ----D---- C:\Program Files\Fichiers communs\System 2009-08-29 09:22:47 ----D---- C:\Program Files\Fichiers communs\SpeechEngines 2009-08-29 09:22:47 ----D---- C:\Program Files\Fichiers communs\Services 2009-08-29 09:22:46 ----D---- C:\Program Files\Fichiers communs\ODBC 2009-08-29 09:22:46 ----D---- C:\Program Files\Fichiers communs\MSSoap 2009-08-29 09:21:15 ----D---- C:\Program Files\Fichiers communs\Java 2009-08-29 09:21:13 ----D---- C:\Program Files\Fichiers communs\InstallShield 2009-08-29 09:21:11 ----D---- C:\Program Files\Fichiers communs\DESIGNER 2009-08-29 09:20:19 ----D---- C:\Program Files\Activation Assistant for the 2007 Microsoft Office suites 2009-08-29 09:15:42 ----RHD---- C:\MSOCache 2009-08-29 09:15:42 ----D---- C:\I386 2009-08-29 09:10:47 ----D---- C:\Documents and Settings\All Users\Application Data\Vista64 2009-08-29 09:10:37 ----D---- C:\Documents and Settings\All Users\Application Data\SBSI 2009-08-29 09:10:37 ----D---- C:\Documents and Settings\All Users\Application Data\Microsoft Help 2009-08-29 04:58:35 ----SD---- C:\Documents and Settings\All Users\Application Data\Microsoft 2009-08-29 04:57:17 ----D---- C:\WINDOWS\Help 2009-08-29 04:57:17 ----D---- C:\Program Files\Internet Explorer 2009-08-29 04:54:59 ----D---- C:\WINDOWS\system32\fr-FR 2009-08-29 04:54:51 ----D---- C:\WINDOWS\Media 2009-08-29 04:46:18 ----D---- C:\WINDOWS\SoftwareDistribution 2009-08-29 04:41:00 ----D---- C:\WINDOWS\system32\config 2009-08-29 04:27:11 ----A---- C:\WINDOWS\setuplog.txt 2009-08-29 03:41:06 ----D---- C:\Program Files\Fichiers communs\Symantec Shared 2009-08-29 03:40:59 ----D---- C:\Documents and Settings\All Users\Application Data\Symantec 2009-08-29 02:55:28 ----A---- C:\WINDOWS\OEWABLog.txt 2009-08-29 02:55:17 ----AD---- C:\WINDOWS\oemdrv 2009-08-29 02:54:33 ----D---- C:\Documents and Settings 2009-08-29 02:53:36 ----SHD---- C:\System Volume Information 2009-08-29 02:53:17 ----RASH---- C:\boot.ini 2009-08-29 02:50:55 ----D---- C:\WINDOWS\Registration 2009-08-29 02:50:26 ----D---- C:\WINDOWS\security 2009-08-29 02:46:42 ----A---- C:\WINDOWS\system.ini 2009-08-05 11:06:31 ----A---- C:\WINDOWS\system32\mswebdvd.dll ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R1 avgio;avgio; \??\C:\Program Files\Avira\AntiVir Desktop\avgio.sys [] R1 avipbb;avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [2009-03-30 96104] R1 intelppm;Pilote de processeur Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2004-08-05 40320] R1 ssmdrv;ssmdrv; C:\WINDOWS\system32\DRIVERS\ssmdrv.sys [2009-08-29 28520] R1 TPwSav;TPwSav; \??\C:\WINDOWS\system32\drivers\TPwSav.sys [] R2 avgntflt;avgntflt; C:\WINDOWS\system32\DRIVERS\avgntflt.sys [2009-08-29 55656] R2 Netdevio;TOSHIBA Network Device Usermode I/O Protocol; C:\WINDOWS\system32\DRIVERS\netdevio.sys [2003-01-29 12032] R2 npf;NetGroup Packet Filter Driver; C:\WINDOWS\system32\drivers\npf.sys [2007-11-15 34064] R2 tdudf;TOSHIBA UDF File System Driver; C:\WINDOWS\system32\DRIVERS\tdudf.sys [2007-03-26 105856] R2 trudf;TOSHIBA DVD-RAM UDF File System Driver; C:\WINDOWS\system32\DRIVERS\trudf.sys [2007-02-19 134016] R3 AgereSoftModem;TOSHIBA V92 Software Modem; C:\WINDOWS\system32\DRIVERS\AGRSM.sys [2006-11-29 1161888] R3 Arp1394;Protocole client ARP 1394; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2004-08-05 60800] R3 CmBatt;Pilote d'adaptateur secteur Microsoft; C:\WINDOWS\system32\DRIVERS\CmBatt.sys [2004-08-04 14080] R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys [2009-03-19 23400] R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2005-01-07 138752] R3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\ialmnt5.sys [2006-02-07 1399615] R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2007-06-15 4429312] R3 NETw5x32;Intel® Wireless WiFi Link 5000 Series Adapter Driver for Windows XP 32 Bit; C:\WINDOWS\system32\DRIVERS\NETw5x32.sys [2009-03-04 4202496] R3 NIC1394;Pilote réseau 1394; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2004-08-05 61824] R3 sdbus;sdbus; C:\WINDOWS\system32\DRIVERS\sdbus.sys [2006-01-13 76544] R3 sffdisk;Pilote de classe de stockage SFF; C:\WINDOWS\system32\DRIVERS\sffdisk.sys [2006-01-13 11136] R3 sffp_sd;Pilote de protocole de stockage SFF pour SDBus; C:\WINDOWS\system32\DRIVERS\sffp_sd.sys [2006-01-13 10368] R3 SynTP;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2009-07-20 213552] R3 tdcmdpst;TOSHIBA Writing Engine Filter Driver; C:\WINDOWS\system32\DRIVERS\tdcmdpst.sys [2007-02-22 16128] R3 tifm21;tifm21; C:\WINDOWS\system32\drivers\tifm21.sys [2007-01-24 290304] R3 Tvs;TOSHIBA Virtual Sound with SRS technologies; C:\WINDOWS\system32\DRIVERS\Tvs.sys [2006-12-13 46592] R3 usbehci;Pilote miniport de contrôleur d'hôte amélioré Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2006-10-23 30208] R3 usbhub;Concentrateur USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2006-10-23 59264] R3 USBSTOR;Pilote de stockage de masse USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2004-08-03 26496] R3 usbuhci;Pilote miniport de contrôleur hôte universel USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2006-10-23 20608] R3 Wdf01000;Wdf01000; C:\WINDOWS\system32\DRIVERS\Wdf01000.sys [2008-03-27 503008] S3 ApfiltrService;Alps Pointing-device Filter Driver; C:\WINDOWS\system32\DRIVERS\Apfiltr.sys [2004-11-16 101874] S3 CCDECODE;Décodeur sous-titre fermé; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2004-08-04 17024] S3 HidUsb;Pilote de classe HID Microsoft; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2001-08-17 9600] S3 mouhid;Pilote HID de souris; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-08-23 12288] S3 MSTEE;Convertisseur en T/site-à-site de répartition Microsoft; C:\WINDOWS\system32\drivers\MSTEE.sys [2004-08-04 5504] S3 NABTSFEC;Codec NABTS/FEC VBI; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2004-08-04 85376] S3 NdisIP;Connection TV/vidéo Microsoft; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2004-08-04 10880] S3 NETw4x32;Pilote de carte Intel® Wireless WiFi Link pour Windows XP 32 bits; C:\WINDOWS\system32\DRIVERS\NETw4x32.sys [2007-04-27 2203520] S3 RTLE8023xp;Realtek 10/100/1000 PCI-E NIC Family NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtenicxp.sys [2007-02-07 90880] S3 SLIP;Détrameur décalage BDA; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2004-08-04 11136] S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2004-08-04 15360] S3 Tosrfcom;Tosrfcom; C:\WINDOWS\system32\drivers\Tosrfcom.sys [] S3 tosrfec;Bluetooth ACPI; C:\WINDOWS\system32\DRIVERS\tosrfec.sys [2006-10-23 9216] S3 TpChoice;Touch Pad Detection Filter driver; C:\WINDOWS\system32\DRIVERS\TpChoice.sys [] S3 USBAAPL;Apple Mobile USB Driver; C:\WINDOWS\System32\Drivers\usbaapl.sys [2009-07-09 39424] S3 usbccgp;Pilote parent générique USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2004-08-05 31616] S3 usbprint;Classe d'imprimantes USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2004-08-03 25856] S3 usbscan;Pilote de scanneur USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2004-08-03 15104] S3 usbvideo;Périphérique vidéo USB (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2004-08-04 78464] S3 WSTCODEC;Codec Teletext standard; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2004-08-04 19328] S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys [] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 AgereModemAudio;Agere Modem Call Progress Audio; C:\WINDOWS\system32\agrsmsvc.exe [2006-10-05 9216] R2 AntiVirSchedulerService;Avira AntiVir Planificateur; C:\Program Files\Avira\AntiVir Desktop\sched.exe [2009-08-29 108289] R2 AntiVirService;Avira AntiVir Guard; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [2009-08-29 185089] R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [2009-07-09 144712] R2 Bonjour Service;Service Bonjour; C:\Program Files\Bonjour\mDNSResponder.exe [2008-12-12 238888] R2 CFSvcs;ConfigFree Service; C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe [2005-01-18 40960] R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2009-07-25 153376] R2 TODDSrv;TOSHIBA Optical Disc Drive Service; C:\WINDOWS\system32\TODDSrv.exe [2006-05-25 114688] R2 TOSHIBA Bluetooth Service;TOSHIBA Bluetooth Service; C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe [2007-02-25 125048] R2 UMWdf;Windows User Mode Driver Framework; C:\WINDOWS\system32\wdfmgr.exe [2004-08-10 38912] R3 iPod Service;Service de l’iPod; C:\Program Files\iPod\bin\iPodService.exe [2009-07-13 542496] S2 MSSQL$MSSMLBIZ;SQL Server (MSSMLBIZ); C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe [2006-04-14 28933976] S2 Planificateur LiveUpdate automatique;Planificateur LiveUpdate automatique; C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe [] S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312] S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632] S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104] S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728] S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664] S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136] S3 ose;Office Source Engine; C:\Program Files\Fichiers communs\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184] S3 SQLWriter;Enregistreur VSS SQL Server; C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2006-04-14 87840] S4 MSSQLServerADHelper;SQL Server Active Directory Helper; C:\Program Files\Microsoft SQL Server\90\Shared\sqladhlp90.exe [2005-10-14 45272] S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096] S4 SQLBrowser;SQL Server Browser; C:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe [2006-04-14 240416] -----------------EOF----------------- Merci beaucoup! On dirait que c'est calmé déjà. Pour info j'a -
[Résolu] Eradication Total security
hhaasseenn a posté un sujet dans Analyses et éradication malwares
Bonjour à tous, [Résolu] Total Security est présent et m'ennuie beaucoup. J'ai réinstallé XP pro hier soir après une première infection! J'ai suivi les instructions données par Le Sioux: Voici donc mes rapports rendus par RSIT: Dans le fichier log.txt: Logfile of random's system information tool 1.06 (written by random/random) Run by Hassen at 2009-08-29 17:26:08 Microsoft Windows XP Professionnel Service Pack 2 System drive C: has 55 GB (72%) free of 76 GB Total RAM: 1526 MB (66% free) Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 17:26:18, on 29/08/2009 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v8.00 (8.00.6001.18702) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\csrss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe C:\Program Files\Alwil Software\Avast4\ashServ.exe C:\WINDOWS\Explorer.EXE C:\Program Files\TOSHIBA\E-KEY\CeEKey.exe C:\Program Files\TOSHIBA\TouchPad\TPTray.exe C:\WINDOWS\system32\TDispVol.exe C:\WINDOWS\system32\ZoomingHook.exe C:\Program Files\TOSHIBA\Utilitaire de zoom TOSHIBA\SmoothView.exe C:\Program Files\TOSHIBA\ConfigFree\NDSTray.exe C:\Program Files\TOSHIBA\TOSHIBA Direct Disc Writer\ddwmon.exe C:\Program Files\TOSHIBA\Toshiba Online Product Information\topi.exe C:\WINDOWS\RTHDCPL.EXE C:\WINDOWS\system32\igfxtray.exe C:\WINDOWS\system32\hkcmd.exe C:\WINDOWS\system32\igfxpers.exe C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe C:\Program Files\Synaptics\SynTP\SynTPEnh.exe C:\Program Files\ltmoh\Ltmoh.exe C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe C:\WINDOWS\system32\ctfmon.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\system32\agrsmsvc.exe C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\TODDSrv.exe C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe C:\WINDOWS\system32\wdfmgr.exe C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe C:\Program Files\Alwil Software\Avast4\ashWebSv.exe C:\WINDOWS\System32\alg.exe C:\Program Files\Toshiba\Commandes TOSHIBA\TFncKy.exe C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe C:\Program Files\Bonjour\mDNSResponder.exe C:\Program Files\iPod\bin\iPodService.exe C:\Program Files\iTunes\iTunesHelper.exe C:\WINDOWS\system32\igfxsrvc.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\Temp\wpv621250826839.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\Program Files\Java\jre6\bin\jusched.exe C:\Program Files\Java\jre6\bin\jqs.exe C:\WINDOWS\system32\wbem\wmiapsrv.exe C:\Documents and Settings\Hassen\Mes documents\Téléchargements\RSIT.exe C:\WINDOWS\system32\wbem\wmiprvse.exe C:\Program Files\trend micro\Hassen.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll O3 - Toolbar: Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll O4 - HKLM\..\Run: [CeEKEY] C:\Program Files\TOSHIBA\E-KEY\CeEKey.exe O4 - HKLM\..\Run: [HWSetup] C:\Program Files\TOSHIBA\TOSHIBA Applet\HWSetup.exe hwSetUP O4 - HKLM\..\Run: [sVPWUTIL] C:\Program Files\Toshiba\Windows Utilities\SVPWUTIL.exe SVPwUTIL O4 - HKLM\..\Run: [TPNF] C:\Program Files\TOSHIBA\TouchPad\TPTray.exe O4 - HKLM\..\Run: [TCtryIOHook] TCtrlIOHook.exe O4 - HKLM\..\Run: [TFncKy] TFncKy.exe O4 - HKLM\..\Run: [TDispVol] TDispVol.exe O4 - HKLM\..\Run: [TPSMain] TPSMain.exe O4 - HKLM\..\Run: [Zooming] ZoomingHook.exe O4 - HKLM\..\Run: [smoothView] C:\Program Files\TOSHIBA\Utilitaire de zoom TOSHIBA\SmoothView.exe O4 - HKLM\..\Run: [NDSTray.exe] NDSTray.exe O4 - HKLM\..\Run: [DDWMon] C:\Program Files\TOSHIBA\TOSHIBA Direct Disc Writer\\ddwmon.exe O4 - HKLM\..\Run: [topi] C:\Program Files\TOSHIBA\Toshiba Online Product Information\topi.exe -startup O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint2K\Apoint.exe O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe O4 - HKLM\..\Run: [synTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [17745154] C:\Documents and Settings\All Users\Application Data\17745154\17745154.exe O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe" O4 - HKLM\..\RunOnce: [uninstall Adobe Download Manager] "C:\WINDOWS\system32\rundll32.exe" "C:\Program Files\NOS\bin\getPlus_Helper.dll",Uninstall /Get1noarp O4 - HKCU\..\Run: [LtMoh] C:\Program Files\ltmoh\Ltmoh.exe O4 - HKCU\..\Run: [TOSCDSPD] C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL') O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU') O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user') O4 - Startup: ikowin32.exe O4 - Global Startup: Adobe Reader Synchronizer.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - Agere Systems - C:\WINDOWS\system32\agrsmsvc.exe O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: ConfigFree Service (CFSvcs) - TOSHIBA CORPORATION - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe O23 - Service: Service de l’iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe O23 - Service: Planificateur LiveUpdate automatique - Unknown owner - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe (file missing) O23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv) - TOSHIBA Corporation - C:\WINDOWS\system32\TODDSrv.exe O23 - Service: TOSHIBA Bluetooth Service - TOSHIBA CORPORATION - C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe -- End of file - 8729 bytes ======Scheduled tasks folder====== C:\WINDOWS\tasks\AppleSoftwareUpdate.job C:\WINDOWS\tasks\Rappel d'enregistrement 1.job C:\WINDOWS\tasks\Rappel d'enregistrement 2.job C:\WINDOWS\tasks\Rappel d'enregistrement 3.job C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}] Aide pour le lien d'Adobe PDF Reader - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}] Ask Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2009-07-10 1174920] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}] Java Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-07-25 41760] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}] JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2009-07-25 73728] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar] {D4027C7F-154A-4066-A1AD-4243D8127440} - Ask Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2009-07-10 1174920] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "CeEKEY"=C:\Program Files\TOSHIBA\E-KEY\CeEKey.exe [2006-04-12 638976] ""= [] "HWSetup"=C:\Program Files\TOSHIBA\TOSHIBA Applet\HWSetup.exe [2004-05-01 28672] "SVPWUTIL"=C:\Program Files\Toshiba\Windows Utilities\SVPWUTIL.exe [2006-05-25 65536] "TPNF"=C:\Program Files\TOSHIBA\TouchPad\TPTray.exe [2007-06-01 53248] "TCtryIOHook"=C:\WINDOWS\system32\TCtrlIOHook.exe [2007-06-30 28672] "TFncKy"=TFncKy.exe [] "TDispVol"=C:\WINDOWS\system32\TDispVol.exe [2005-12-27 73728] "TPSMain"=C:\WINDOWS\system32\TPSMain.exe [2005-08-12 266240] "Zooming"=C:\WINDOWS\system32\ZoomingHook.exe [2005-06-06 24576] "SmoothView"=C:\Program Files\TOSHIBA\Utilitaire de zoom TOSHIBA\SmoothView.exe [2007-05-11 143360] "NDSTray.exe"=NDSTray.exe [] "DDWMon"=C:\Program Files\TOSHIBA\TOSHIBA Direct Disc Writer\\ddwmon.exe [2007-04-26 495616] "topi"=C:\Program Files\TOSHIBA\Toshiba Online Product Information\topi.exe [2007-07-10 581632] "RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2007-06-13 16377344] "Alcmtr"=C:\WINDOWS\ALCMTR.EXE [2005-05-04 69632] "igfxtray"=C:\WINDOWS\system32\igfxtray.exe [2006-02-07 94208] "igfxhkcmd"=C:\WINDOWS\system32\hkcmd.exe [2006-02-07 77824] "igfxpers"=C:\WINDOWS\system32\igfxpers.exe [2006-02-07 118784] "Apoint"=C:\Program Files\Apoint2K\Apoint.exe [2004-03-24 196608] "avast!"=C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe [2009-08-17 81000] "SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2009-07-20 1545512] "QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2009-05-26 413696] "iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2009-07-13 292128] "17745154"=C:\Documents and Settings\All Users\Application Data\17745154\17745154 [2009-08-29 56] "SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2009-07-25 149280] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce] "Uninstall Adobe Download Manager"=C:\Program Files\NOS\bin\getPlus_Helper.dll [2009-08-07 45816] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "LtMoh"=C:\Program Files\ltmoh\Ltmoh.exe [2007-01-09 191552] "TOSCDSPD"=C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe [2005-04-11 65536] "ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2004-08-05 15360] C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage Adobe Reader Synchronizer.lnk - C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe C:\Documents and Settings\Hassen\Menu Démarrer\Programmes\Démarrage ikowin32.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui] C:\WINDOWS\system32\igfxdev.dll [2006-02-07 139264] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "shutdownwithoutlogon"=1 "undockwithoutlogon"=1 [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "NoDriveTypeAutoRun"=145 [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] "%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019" "C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook" "C:\Documents and Settings\Hassen\Local Settings\Temp\7zS8.tmp\SymNRT.exe"="C:\Documents and Settings\Hassen\Local Settings\Temp\7zS8.tmp\SymNRT.exe:*:Enabled:Norton Removal Tool" "C:\Program Files\Bonjour\mDNSResponder.exe"="C:\Program Files\Bonjour\mDNSResponder.exe:*:Enabled:Bonjour" "C:\Program Files\iTunes\iTunes.exe"="C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes" "C:\Program Files\BitTorrent\bittorrent.exe"="C:\Program Files\BitTorrent\bittorrent.exe:*:Enabled:BitTorrent" [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] "%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019" ======List of files/folders created in the last 1 months====== 2009-08-29 17:26:09 ----D---- C:\Program Files\trend micro 2009-08-29 17:26:08 ----D---- C:\rsit 2009-08-29 17:09:41 ----D---- C:\Program Files\Enigma Software Group 2009-08-29 16:58:53 ----A---- C:\WINDOWS\system32\javaws.exe 2009-08-29 16:58:53 ----A---- C:\WINDOWS\system32\javaw.exe 2009-08-29 16:58:53 ----A---- C:\WINDOWS\system32\java.exe 2009-08-29 16:53:16 ----D---- C:\Documents and Settings\All Users\Application Data\17745154 2009-08-29 16:50:05 ----D---- C:\WINDOWS\Sun 2009-08-29 15:53:06 ----D---- C:\Program Files\JRE 2009-08-29 15:52:57 ----D---- C:\Program Files\OpenOffice.org 3 2009-08-29 15:52:34 ----A---- C:\WINDOWS\system32\deploytk.dll 2009-08-29 15:02:57 ----A---- C:\WINDOWS\system32\ptpusb.dll 2009-08-29 15:02:55 ----A---- C:\WINDOWS\system32\ptpusd.dll 2009-08-29 14:54:55 ----D---- C:\Documents and Settings\Hassen\Application Data\vlc 2009-08-29 14:52:27 ----D---- C:\Program Files\VideoLAN 2009-08-29 14:45:05 ----D---- C:\Documents and Settings\Hassen\Application Data\WinRAR 2009-08-29 14:34:08 ----D---- C:\Program Files\NOS 2009-08-29 14:34:08 ----D---- C:\Documents and Settings\All Users\Application Data\NOS 2009-08-29 13:22:57 ----N---- C:\WINDOWS\system32\vxblock.dll 2009-08-29 13:22:57 ----N---- C:\WINDOWS\system32\pxwave.dll 2009-08-29 13:22:57 ----N---- C:\WINDOWS\system32\pxsfs.dll 2009-08-29 13:22:57 ----N---- C:\WINDOWS\system32\pxmas.dll 2009-08-29 13:22:57 ----N---- C:\WINDOWS\system32\pxinsi64.exe 2009-08-29 13:22:57 ----N---- C:\WINDOWS\system32\pxinsa64.exe 2009-08-29 13:22:57 ----N---- C:\WINDOWS\system32\pxhpinst.exe 2009-08-29 13:22:57 ----N---- C:\WINDOWS\system32\pxdrv.dll 2009-08-29 13:22:57 ----N---- C:\WINDOWS\system32\pxcpyi64.exe 2009-08-29 13:22:57 ----N---- C:\WINDOWS\system32\pxcpya64.exe 2009-08-29 13:22:57 ----N---- C:\WINDOWS\system32\pxafs.dll 2009-08-29 13:22:57 ----N---- C:\WINDOWS\system32\px.dll 2009-08-29 13:17:44 ----D---- C:\Documents and Settings\Hassen\Application Data\BitTorrent 2009-08-29 13:17:35 ----D---- C:\Program Files\BitTorrent 2009-08-29 13:17:28 ----D---- C:\Program Files\Ask.com 2009-08-29 13:14:07 ----D---- C:\Documents and Settings\Hassen\Application Data\Apple Computer 2009-08-29 13:14:01 ----A---- C:\WINDOWS\system32\GEARAspi.dll 2009-08-29 13:13:43 ----D---- C:\Program Files\iPod 2009-08-29 13:13:40 ----D---- C:\Program Files\iTunes 2009-08-29 13:13:40 ----D---- C:\Documents and Settings\All Users\Application Data\{8CD7F5AF-ECFA-4793-BF40-D8F42DBFF906} 2009-08-29 13:13:25 ----D---- C:\Program Files\Bonjour 2009-08-29 13:12:54 ----D---- C:\Program Files\QuickTime 2009-08-29 13:12:53 ----D---- C:\Documents and Settings\All Users\Application Data\Apple Computer 2009-08-29 13:12:40 ----D---- C:\Program Files\Apple Software Update 2009-08-29 13:12:33 ----D---- C:\WINDOWS\LastGood 2009-08-29 13:12:32 ----A---- C:\WINDOWS\system32\usbaaplrc.dll 2009-08-29 13:12:17 ----D---- C:\Program Files\Fichiers communs\Apple 2009-08-29 13:12:17 ----D---- C:\Documents and Settings\All Users\Application Data\Apple 2009-08-29 12:59:26 ----A---- C:\WINDOWS\system32\hidserv.dll 2009-08-29 05:01:02 ----D---- C:\Documents and Settings\Hassen\Application Data\Macromedia 2009-08-29 04:56:09 ----HD---- C:\WINDOWS\msdownld.tmp 2009-08-29 04:55:43 ----D---- C:\WINDOWS\ie8updates 2009-08-29 04:54:59 ----D---- C:\WINDOWS\WBEM 2009-08-29 04:53:40 ----HDC---- C:\WINDOWS\ie8 2009-08-29 04:51:13 ----D---- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage 2009-08-29 04:36:57 ----N---- C:\WINDOWS\system32\spmsgXP_2k3.dll 2009-08-29 04:36:52 ----HDC---- C:\WINDOWS\$NtUninstallWdf01007$ 2009-08-29 04:36:43 ----D---- C:\Program Files\Synaptics 2009-08-29 04:36:31 ----A---- C:\WINDOWS\system32\SynTPCo4.dll 2009-08-29 04:36:31 ----A---- C:\WINDOWS\system32\SynTPAPI.dll 2009-08-29 04:36:31 ----A---- C:\WINDOWS\system32\SynCtrl.dll 2009-08-29 04:36:30 ----A---- C:\WINDOWS\system32\WdfCoInstaller01007.dll 2009-08-29 04:36:30 ----A---- C:\WINDOWS\system32\SynCOM.dll 2009-08-29 04:25:39 ----D---- C:\WINDOWS\pss 2009-08-29 04:09:15 ----D---- C:\WINDOWS\system32\PreInstall 2009-08-29 04:09:13 ----HDC---- C:\WINDOWS\$NtUninstallKB898461$ 2009-08-29 03:52:32 ----A---- C:\WINDOWS\system32\aswBoot.exe 2009-08-29 03:52:29 ----D---- C:\Program Files\Alwil Software 2009-08-29 03:29:20 ----SHD---- C:\RECYCLER 2009-08-29 03:12:47 ----A---- C:\WINDOWS\system32\MRT.exe 2009-08-29 03:12:31 ----HDC---- C:\WINDOWS\$NtUninstallKB932823-v3$ 2009-08-29 03:10:25 ----D---- C:\Documents and Settings\Hassen\Application Data\Mozilla 2009-08-29 03:10:15 ----D---- C:\Program Files\Mozilla Firefox 2009-08-29 03:03:11 ----D---- C:\WINDOWS\system32\SoftwareDistribution 2009-08-29 02:55:50 ----A---- C:\WINDOWS\system32\igfxres.dll 2009-08-29 02:54:38 ----ASH---- C:\Documents and Settings\Hassen\Application Data\desktop.ini 2009-08-29 02:54:36 ----D---- C:\Documents and Settings\Hassen\Application Data\InstallShield 2009-08-29 02:54:36 ----D---- C:\Documents and Settings\Hassen\Application Data\Identities 2009-08-29 02:54:36 ----D---- C:\Documents and Settings\Hassen\Application Data\Adobe 2009-08-29 02:54:35 ----SD---- C:\Documents and Settings\Hassen\Application Data\Microsoft 2009-08-29 02:54:35 ----D---- C:\Documents and Settings\Hassen\Application Data\toshiba 2009-08-29 02:54:35 ----D---- C:\Documents and Settings\Hassen\Application Data\Sun 2009-08-29 02:53:23 ----D---- C:\Program Files\Apoint2K 2009-08-29 02:53:23 ----A---- C:\WINDOWS\system32\Vxdif.dll ======List of files/folders modified in the last 1 months====== 2009-08-29 17:26:09 ----RD---- C:\Program Files 2009-08-29 17:16:18 ----D---- C:\WINDOWS\system32 2009-08-29 17:10:22 ----D---- C:\WINDOWS\system32\drivers 2009-08-29 16:59:16 ----SHD---- C:\WINDOWS\Installer 2009-08-29 16:58:55 ----D---- C:\WINDOWS\Temp 2009-08-29 16:58:51 ----D---- C:\Program Files\Java 2009-08-29 16:55:30 ----RSHDC---- C:\WINDOWS\system32\dllcache 2009-08-29 16:50:05 ----D---- C:\WINDOWS 2009-08-29 15:54:18 ----RSD---- C:\WINDOWS\assembly 2009-08-29 15:54:13 ----D---- C:\WINDOWS\WinSxS 2009-08-29 15:53:26 ----RSD---- C:\WINDOWS\Fonts 2009-08-29 15:02:46 ----HD---- C:\WINDOWS\inf 2009-08-29 13:37:30 ----D---- C:\Program Files\Fichiers communs\Adobe 2009-08-29 13:25:04 ----D---- C:\Documents and Settings\All Users\Application Data\Adobe 2009-08-29 13:22:40 ----D---- C:\Program Files\Adobe 2009-08-29 13:17:31 ----SD---- C:\WINDOWS\Tasks 2009-08-29 13:14:01 ----DC---- C:\WINDOWS\system32\DRVSTORE 2009-08-29 13:12:17 ----D---- C:\Program Files\Fichiers communs 2009-08-29 12:59:18 ----D---- C:\WINDOWS\system32\CatRoot2 2009-08-29 09:41:24 ----D---- C:\WINDOWS\system32\IME 2009-08-29 09:39:43 ----D---- C:\WINDOWS\msapps 2009-08-29 09:38:57 ----D---- C:\WINDOWS\java 2009-08-29 09:35:41 ----D---- C:\WINDOWS\ehome 2009-08-29 09:34:48 ----SD---- C:\WINDOWS\Downloaded Program Files 2009-08-29 09:33:23 ----D---- C:\WINDOWS\AppPatch 2009-08-29 09:33:21 ----HDC---- C:\WINDOWS\$NtUninstallWdf01005$ 2009-08-29 09:33:21 ----HDC---- C:\WINDOWS\$NtUninstallKB932168$ 2009-08-29 09:33:21 ----HDC---- C:\WINDOWS\$NtUninstallKB931768$ 2009-08-29 09:33:14 ----HDC---- C:\WINDOWS\$NtUninstallKB931261$ 2009-08-29 09:33:13 ----HDC---- C:\WINDOWS\$NtUninstallKB930916$ 2009-08-29 09:33:13 ----HDC---- C:\WINDOWS\$NtUninstallKB930178$ 2009-08-29 09:33:12 ----HDC---- C:\WINDOWS\$NtUninstallKB929969$ 2009-08-29 09:33:12 ----HDC---- C:\WINDOWS\$NtUninstallKB929338$ 2009-08-29 09:33:08 ----HDC---- C:\WINDOWS\$NtUninstallKB929120$ 2009-08-29 09:33:07 ----HDC---- C:\WINDOWS\$NtUninstallKB928843$ 2009-08-29 09:33:07 ----HDC---- C:\WINDOWS\$NtUninstallKB928388$ 2009-08-29 09:33:07 ----HDC---- C:\WINDOWS\$NtUninstallKB928090$ 2009-08-29 09:32:59 ----HDC---- C:\WINDOWS\$NtUninstallKB927779$ 2009-08-29 09:32:58 ----HDC---- C:\WINDOWS\$NtUninstallKB925902$ 2009-08-29 09:32:57 ----HDC---- C:\WINDOWS\$NtUninstallKB924270$ 2009-08-29 09:32:56 ----HDC---- C:\WINDOWS\$NtUninstallKB924191$ 2009-08-29 09:32:54 ----HDC---- C:\WINDOWS\$NtUninstallKB923689$ 2009-08-29 09:32:54 ----HDC---- C:\WINDOWS\$NtUninstallKB923191$ 2009-08-29 09:32:53 ----HDC---- C:\WINDOWS\$NtUninstallKB922582$ 2009-08-29 09:32:53 ----HDC---- C:\WINDOWS\$NtUninstallKB921883$ 2009-08-29 09:32:53 ----HDC---- C:\WINDOWS\$NtUninstallKB921398$ 2009-08-29 09:32:47 ----HDC---- C:\WINDOWS\$NtUninstallKB920872$ 2009-08-29 09:32:46 ----HDC---- C:\WINDOWS\$NtUninstallKB920685$ 2009-08-29 09:32:45 ----HDC---- C:\WINDOWS\$NtUninstallKB920683$ 2009-08-29 09:32:45 ----HDC---- C:\WINDOWS\$NtUninstallKB920670$ 2009-08-29 09:32:45 ----HDC---- C:\WINDOWS\$NtUninstallKB920214$ 2009-08-29 09:32:45 ----HDC---- C:\WINDOWS\$NtUninstallKB920213$ 2009-08-29 09:32:44 ----HDC---- C:\WINDOWS\$NtUninstallKB919007$ 2009-08-29 09:32:44 ----HDC---- C:\WINDOWS\$NtUninstallKB918649$ 2009-08-29 09:32:37 ----HDC---- C:\WINDOWS\$NtUninstallKB918439$ 2009-08-29 09:32:37 ----HDC---- C:\WINDOWS\$NtUninstallKB918005$ 2009-08-29 09:32:37 ----HDC---- C:\WINDOWS\$NtUninstallKB917953$ 2009-08-29 09:32:34 ----HDC---- C:\WINDOWS\$NtUninstallKB917734_WMP10$ 2009-08-29 09:32:34 ----HDC---- C:\WINDOWS\$NtUninstallKB917422$ 2009-08-29 09:32:33 ----HDC---- C:\WINDOWS\$NtUninstallKB917344$ 2009-08-29 09:32:33 ----HDC---- C:\WINDOWS\$NtUninstallKB917332$ 2009-08-29 09:32:33 ----HDC---- C:\WINDOWS\$NtUninstallKB917159$ 2009-08-29 09:32:33 ----HDC---- C:\WINDOWS\$NtUninstallKB916281$ 2009-08-29 09:32:28 ----HDC---- C:\WINDOWS\$NtUninstallKB914389$ 2009-08-29 09:32:27 ----HDC---- C:\WINDOWS\$NtUninstallKB914388$ 2009-08-29 09:32:27 ----HDC---- C:\WINDOWS\$NtUninstallKB912919$ 2009-08-29 09:32:26 ----HDC---- C:\WINDOWS\$NtUninstallKB911927$ 2009-08-29 09:32:26 ----HDC---- C:\WINDOWS\$NtUninstallKB911567$ 2009-08-29 09:32:25 ----HDC---- C:\WINDOWS\$NtUninstallKB911564$ 2009-08-29 09:32:24 ----HDC---- C:\WINDOWS\$NtUninstallKB911562$ 2009-08-29 09:32:24 ----HDC---- C:\WINDOWS\$NtUninstallKB911280$ 2009-08-29 09:32:24 ----HDC---- C:\WINDOWS\$NtUninstallKB910728$ 2009-08-29 09:32:24 ----HDC---- C:\WINDOWS\$NtUninstallKB910437$ 2009-08-29 09:32:23 ----HDC---- C:\WINDOWS\$NtUninstallKB908531$ 2009-08-29 09:32:17 ----HDC---- C:\WINDOWS\$NtUninstallKB908519$ 2009-08-29 09:32:16 ----HDC---- C:\WINDOWS\$NtUninstallKB905749$ 2009-08-29 09:32:16 ----HDC---- C:\WINDOWS\$NtUninstallKB905414$ 2009-08-29 09:32:16 ----HDC---- C:\WINDOWS\$NtUninstallKB904706$ 2009-08-29 09:32:15 ----HDC---- C:\WINDOWS\$NtUninstallKB902400$ 2009-08-29 09:32:10 ----HDC---- C:\WINDOWS\$NtUninstallKB901214$ 2009-08-29 09:32:09 ----HDC---- C:\WINDOWS\$NtUninstallKB901190$ 2009-08-29 09:32:09 ----HDC---- C:\WINDOWS\$NtUninstallKB901017$ 2009-08-29 09:32:08 ----HDC---- C:\WINDOWS\$NtUninstallKB900725$ 2009-08-29 09:32:05 ----HDC---- C:\WINDOWS\$NtUninstallKB899591$ 2009-08-29 09:32:04 ----HDC---- C:\WINDOWS\$NtUninstallKB899589$ 2009-08-29 09:32:04 ----HDC---- C:\WINDOWS\$NtUninstallKB899587$ 2009-08-29 09:32:04 ----HDC---- C:\WINDOWS\$NtUninstallKB898458$ 2009-08-29 09:32:04 ----HDC---- C:\WINDOWS\$NtUninstallKB896428$ 2009-08-29 09:32:02 ----HDC---- C:\WINDOWS\$NtUninstallKB896424$ 2009-08-29 09:32:02 ----HDC---- C:\WINDOWS\$NtUninstallKB896423$ 2009-08-29 09:32:02 ----HDC---- C:\WINDOWS\$NtUninstallKB896422$ 2009-08-29 09:32:01 ----HDC---- C:\WINDOWS\$NtUninstallKB896358$ 2009-08-29 09:32:01 ----HDC---- C:\WINDOWS\$NtUninstallKB896256$ 2009-08-29 09:31:57 ----HDC---- C:\WINDOWS\$NtUninstallKB896243$ 2009-08-29 09:31:56 ----HDC---- C:\WINDOWS\$NtUninstallKB895200$ 2009-08-29 09:31:54 ----HDC---- C:\WINDOWS\$NtUninstallKB894871$ 2009-08-29 09:31:53 ----HDC---- C:\WINDOWS\$NtUninstallKB894391_0$ 2009-08-29 09:31:52 ----HDC---- C:\WINDOWS\$NtUninstallKB894391$ 2009-08-29 09:31:51 ----HDC---- C:\WINDOWS\$NtUninstallKB893756$ 2009-08-29 09:31:50 ----HDC---- C:\WINDOWS\$NtUninstallKB893357$ 2009-08-29 09:31:49 ----HDC---- C:\WINDOWS\$NtUninstallKB893056$ 2009-08-29 09:31:49 ----HDC---- C:\WINDOWS\$NtUninstallKB891781$ 2009-08-29 09:31:49 ----HDC---- C:\WINDOWS\$NtUninstallKB890859$ 2009-08-29 09:31:45 ----HDC---- C:\WINDOWS\$NtUninstallKB890046_0$ 2009-08-29 09:31:45 ----HDC---- C:\WINDOWS\$NtUninstallKB890046$ 2009-08-29 09:31:45 ----HDC---- C:\WINDOWS\$NtUninstallKB889673$ 2009-08-29 09:31:45 ----HDC---- C:\WINDOWS\$NtUninstallKB888622$ 2009-08-29 09:31:45 ----HDC---- C:\WINDOWS\$NtUninstallKB888302$ 2009-08-29 09:31:45 ----HDC---- C:\WINDOWS\$NtUninstallKB888113$ 2009-08-29 09:31:44 ----HDC---- C:\WINDOWS\$NtUninstallKB888111WXPSP2$ 2009-08-29 09:31:44 ----HDC---- C:\WINDOWS\$NtUninstallKB887472$ 2009-08-29 09:31:43 ----HDC---- C:\WINDOWS\$NtUninstallKB886185$ 2009-08-29 09:31:43 ----HDC---- C:\WINDOWS\$NtUninstallKB885855$ 2009-08-29 09:31:43 ----HDC---- C:\WINDOWS\$NtUninstallKB885836$ 2009-08-29 09:31:43 ----HDC---- C:\WINDOWS\$NtUninstallKB885835$ 2009-08-29 09:31:42 ----HDC---- C:\WINDOWS\$NtUninstallKB873339$ 2009-08-29 09:31:42 ----HDC---- C:\WINDOWS\$MSI31Uninstall_KB893803v2$ 2009-08-29 09:30:55 ----D---- C:\VALUEADD 2009-08-29 09:30:12 ----D---- C:\SUPPORT 2009-08-29 09:30:12 ----D---- C:\Program Files\xerox 2009-08-29 09:29:30 ----D---- C:\Program Files\Services en ligne 2009-08-29 09:29:30 ----D---- C:\Program Files\Realtek 2009-08-29 09:29:17 ----D---- C:\Program Files\Outlook Express 2009-08-29 09:29:15 ----D---- C:\Program Files\Online Services 2009-08-29 09:29:05 ----D---- C:\Program Files\NetMeeting 2009-08-29 09:29:03 ----D---- C:\Program Files\MSN Gaming Zone 2009-08-29 09:28:52 ----D---- C:\Program Files\MSN 2009-08-29 09:28:52 ----D---- C:\Program Files\Movie Maker 2009-08-29 09:28:48 ----D---- C:\Program Files\Microsoft.NET 2009-08-29 09:28:47 ----D---- C:\Program Files\Microsoft Works 2009-08-29 09:28:46 ----D---- C:\Program Files\Microsoft Visual Studio 2009-08-29 09:24:58 ----D---- C:\Program Files\microsoft frontpage 2009-08-29 09:24:58 ----D---- C:\Program Files\Messenger 2009-08-29 09:24:58 ----D---- C:\Program Files\ltmoh 2009-08-29 09:24:26 ----D---- C:\Program Files\Intel 2009-08-29 09:24:12 ----D---- C:\Program Files\Fichiers communs\System 2009-08-29 09:22:47 ----D---- C:\Program Files\Fichiers communs\SpeechEngines 2009-08-29 09:22:47 ----D---- C:\Program Files\Fichiers communs\Services 2009-08-29 09:22:46 ----D---- C:\Program Files\Fichiers communs\ODBC 2009-08-29 09:22:46 ----D---- C:\Program Files\Fichiers communs\MSSoap 2009-08-29 09:21:15 ----D---- C:\Program Files\Fichiers communs\Java 2009-08-29 09:21:13 ----D---- C:\Program Files\Fichiers communs\InstallShield 2009-08-29 09:21:11 ----D---- C:\Program Files\Fichiers communs\DESIGNER 2009-08-29 09:20:19 ----D---- C:\Program Files\Activation Assistant for the 2007 Microsoft Office suites 2009-08-29 09:15:42 ----RHD---- C:\MSOCache 2009-08-29 09:15:42 ----D---- C:\I386 2009-08-29 09:10:48 ----D---- C:\Documents and Settings\All Users\Application Data\{174892B1-CBE7-44F5-86FF-AB555EFD73A3} 2009-08-29 09:10:47 ----D---- C:\Documents and Settings\All Users\Application Data\Vista64 2009-08-29 09:10:37 ----D---- C:\Documents and Settings\All Users\Application Data\SBSI 2009-08-29 09:10:37 ----D---- C:\Documents and Settings\All Users\Application Data\Microsoft Help 2009-08-29 05:02:00 ----A---- C:\WINDOWS\SchedLgU.Txt 2009-08-29 04:58:35 ----SD---- C:\Documents and Settings\All Users\Application Data\Microsoft 2009-08-29 04:57:17 ----D---- C:\WINDOWS\Help 2009-08-29 04:57:17 ----D---- C:\Program Files\Internet Explorer 2009-08-29 04:56:03 ----HD---- C:\WINDOWS\$hf_mig$ 2009-08-29 04:56:00 ----A---- C:\WINDOWS\imsins.BAK 2009-08-29 04:54:59 ----D---- C:\WINDOWS\system32\fr-FR 2009-08-29 04:54:51 ----D---- C:\WINDOWS\Media 2009-08-29 04:46:18 ----D---- C:\WINDOWS\SoftwareDistribution 2009-08-29 04:41:00 ----D---- C:\WINDOWS\system32\config 2009-08-29 04:36:39 ----D---- C:\WINDOWS\system32\ReinstallBackups 2009-08-29 04:27:11 ----A---- C:\WINDOWS\setuplog.txt 2009-08-29 03:41:06 ----D---- C:\Program Files\Fichiers communs\Symantec Shared 2009-08-29 03:40:59 ----D---- C:\Documents and Settings\All Users\Application Data\Symantec 2009-08-29 03:12:48 ----D---- C:\WINDOWS\Debug 2009-08-29 03:04:40 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI 2009-08-29 02:55:28 ----A---- C:\WINDOWS\OEWABLog.txt 2009-08-29 02:55:17 ----AD---- C:\WINDOWS\oemdrv 2009-08-29 02:54:33 ----D---- C:\Documents and Settings 2009-08-29 02:53:36 ----SHD---- C:\System Volume Information 2009-08-29 02:53:23 ----HD---- C:\Program Files\InstallShield Installation Information 2009-08-29 02:53:17 ----RASH---- C:\boot.ini 2009-08-29 02:50:55 ----D---- C:\WINDOWS\Registration 2009-08-29 02:50:26 ----D---- C:\WINDOWS\security 2009-08-29 02:46:42 ----A---- C:\WINDOWS\system.ini ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R1 Aavmker4;avast! Asynchronous Virus Monitor; C:\WINDOWS\system32\drivers\Aavmker4.sys [2009-08-17 26944] R1 aswSP;avast! Self Protection; C:\WINDOWS\system32\drivers\aswSP.sys [2009-08-17 114768] R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2009-08-17 51376] R1 intelppm;Pilote de processeur Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2004-08-05 40320] R1 TPwSav;TPwSav; \??\C:\WINDOWS\system32\drivers\TPwSav.sys [] R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\DRIVERS\aswFsBlk.sys [2009-08-17 20560] R2 aswMon2;avast! Standard Shield Support; C:\WINDOWS\system32\drivers\aswMon2.sys [2009-08-17 94160] R2 Netdevio;TOSHIBA Network Device Usermode I/O Protocol; C:\WINDOWS\system32\DRIVERS\netdevio.sys [2003-01-29 12032] R2 tdudf;TOSHIBA UDF File System Driver; C:\WINDOWS\system32\DRIVERS\tdudf.sys [2007-03-26 105856] R2 trudf;TOSHIBA DVD-RAM UDF File System Driver; C:\WINDOWS\system32\DRIVERS\trudf.sys [2007-02-19 134016] R3 AgereSoftModem;TOSHIBA V92 Software Modem; C:\WINDOWS\system32\DRIVERS\AGRSM.sys [2006-11-29 1161888] R3 Arp1394;Protocole client ARP 1394; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2004-08-05 60800] R3 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2009-08-17 23152] R3 CmBatt;Pilote d'adaptateur secteur Microsoft; C:\WINDOWS\system32\DRIVERS\CmBatt.sys [2004-08-04 14080] R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys [2009-03-19 23400] R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2005-01-07 138752] R3 HidUsb;Pilote de classe HID Microsoft; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2001-08-17 9600] R3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\ialmnt5.sys [2006-02-07 1399615] R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2007-06-15 4429312] R3 mouhid;Pilote HID de souris; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-08-23 12288] R3 NETw4x32;Pilote de carte Intel® Wireless WiFi Link pour Windows XP 32 bits; C:\WINDOWS\system32\DRIVERS\NETw4x32.sys [2007-04-27 2203520] R3 NIC1394;Pilote réseau 1394; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2004-08-05 61824] R3 sdbus;sdbus; C:\WINDOWS\system32\DRIVERS\sdbus.sys [2006-01-13 76544] R3 SynTP;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2009-07-20 213552] R3 tdcmdpst;TOSHIBA Writing Engine Filter Driver; C:\WINDOWS\system32\DRIVERS\tdcmdpst.sys [2007-02-22 16128] R3 tifm21;tifm21; C:\WINDOWS\system32\drivers\tifm21.sys [2007-01-24 290304] R3 USBAAPL;Apple Mobile USB Driver; C:\WINDOWS\System32\Drivers\usbaapl.sys [2009-07-09 39424] R3 usbehci;Pilote miniport de contrôleur d'hôte amélioré Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2006-10-23 30208] R3 usbhub;Concentrateur USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2006-10-23 59264] R3 usbscan;Pilote de scanneur USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2004-08-03 15104] R3 USBSTOR;Pilote de stockage de masse USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2004-08-03 26496] R3 usbuhci;Pilote miniport de contrôleur hôte universel USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2006-10-23 20608] R3 Wdf01000;Wdf01000; C:\WINDOWS\system32\DRIVERS\Wdf01000.sys [2008-03-27 503008] S1 glaide32;glaide32; \??\C:\WINDOWS\system32\drivers\glaide32.sys [] S3 ApfiltrService;Alps Pointing-device Filter Driver; C:\WINDOWS\system32\DRIVERS\Apfiltr.sys [2004-11-16 101874] S3 CCDECODE;Décodeur sous-titre fermé; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2004-08-04 17024] S3 MSTEE;Convertisseur en T/site-à-site de répartition Microsoft; C:\WINDOWS\system32\drivers\MSTEE.sys [2004-08-04 5504] S3 NABTSFEC;Codec NABTS/FEC VBI; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2004-08-04 85376] S3 NdisIP;Connection TV/vidéo Microsoft; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2004-08-04 10880] S3 RTLE8023xp;Realtek 10/100/1000 PCI-E NIC Family NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtenicxp.sys [2007-02-07 90880] S3 SLIP;Détrameur décalage BDA; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2004-08-04 11136] S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2004-08-04 15360] S3 SVRPEDRV;SVRPEDRV; \??\C:\DOCUME~1\Hassen\LOCALS~1\Temp\RarSFX0\S10VWF\PEDrv.sys [] S3 Tosrfcom;Tosrfcom; C:\WINDOWS\system32\drivers\Tosrfcom.sys [] S3 tosrfec;Bluetooth ACPI; C:\WINDOWS\system32\DRIVERS\tosrfec.sys [2006-10-23 9216] S3 TpChoice;Touch Pad Detection Filter driver; C:\WINDOWS\system32\DRIVERS\TpChoice.sys [] S3 usbccgp;Pilote parent générique USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2004-08-05 31616] S3 usbvideo;Périphérique vidéo USB (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2004-08-04 78464] S3 WSTCODEC;Codec Teletext standard; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2004-08-04 19328] S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys [] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 AgereModemAudio;Agere Modem Call Progress Audio; C:\WINDOWS\system32\agrsmsvc.exe [2006-10-05 9216] R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [2009-07-09 144712] R2 aswUpdSv;avast! iAVS4 Control Service; C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe [2009-08-17 18752] R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast4\ashServ.exe [2009-08-17 138680] R2 Bonjour Service;Service Bonjour; C:\Program Files\Bonjour\mDNSResponder.exe [2008-12-12 238888] R2 CFSvcs;ConfigFree Service; C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe [2005-01-18 40960] R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2009-07-25 153376] R2 TODDSrv;TOSHIBA Optical Disc Drive Service; C:\WINDOWS\system32\TODDSrv.exe [2006-05-25 114688] R2 TOSHIBA Bluetooth Service;TOSHIBA Bluetooth Service; C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe [2007-02-25 125048] R2 UMWdf;Windows User Mode Driver Framework; C:\WINDOWS\system32\wdfmgr.exe [2004-08-10 38912] R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe [2009-08-17 254040] R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast4\ashWebSv.exe [2009-08-17 352920] R3 iPod Service;Service de l’iPod; C:\Program Files\iPod\bin\iPodService.exe [2009-07-13 542496] S2 MSSQL$MSSMLBIZ;SQL Server (MSSMLBIZ); C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe [2006-04-14 28933976] S2 Planificateur LiveUpdate automatique;Planificateur LiveUpdate automatique; C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe [] S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2005-09-23 29896] S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2005-09-23 66240] S3 getPlusHelper;getPlus® Helper; C:\WINDOWS\System32\svchost.exe [2004-08-05 14336] S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728] S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136] S3 ose;Office Source Engine; C:\Program Files\Fichiers communs\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184] S3 SQLWriter;Enregistreur VSS SQL Server; C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2006-04-14 87840] S4 MSSQLServerADHelper;SQL Server Active Directory Helper; C:\Program Files\Microsoft SQL Server\90\Shared\sqladhlp90.exe [2005-10-14 45272] S4 SQLBrowser;SQL Server Browser; C:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe [2006-04-14 240416] -----------------EOF----------------- Dans le fichier info.txt: info.txt logfile of random's system information tool 1.06 2009-08-29 17:26:22 ======Uninstall list====== -->C:\WINDOWS\IsUn040c.exe -fC:\WINDOWS\orun32.isu -->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf 2007 Microsoft Office system-->"C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall PROHYBRIDR /dll OSETUP.DLL Activation Assistant for the 2007 Microsoft Office suites-->"C:\Documents and Settings\All Users\Application Data\{174892B1-CBE7-44F5-86FF-AB555EFD73A3}\Microsoft Office Activation Assistant.exe" REMOVE=TRUE MODIFY=FALSE Adobe Download Manager-->"C:\WINDOWS\system32\rundll32.exe" "C:\Program Files\NOS\bin\getPlus_Helper.dll",Uninstall /Get1 Adobe Flash Player 10 Plugin-->C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe Adobe Photoshop Lightroom 2.2-->MsiExec.exe /I{A4EE4223-98B1-4874-BA6E-E8A574F9C0FF} Adobe Reader 8 - Français-->MsiExec.exe /I{AC76BA86-7AD7-1036-7B44-A80000000002} ALPS Touch Pad Driver-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}\setup.exe" UNINSTALL Analyseur MSXML 6.0-->MsiExec.exe /I{CEEE4B46-D156-44B9-91A6-4DF113C79DE9} Apple Mobile Device Support-->MsiExec.exe /I{C337BDAF-CB4E-47E2-BE1A-CB31BB7DD0E3} Apple Software Update-->MsiExec.exe /I{6956856F-B6B3-4BE0-BA0B-8F495BE32033} Ask Toolbar-->MsiExec.exe /I{86D4B82A-ABED-442A-BE86-96357B70F4FE} Assist TOSHIBA-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{12B3A009-A080-4619-9A2A-C6DB151D8D67}\Setup.exe" -l0x40c avast! Antivirus-->C:\Program Files\Alwil Software\Avast4\aswRunDll.exe "C:\Program Files\Alwil Software\Avast4\Setup\setiface.dll",RunSetup Bluetooth Stack for Windows by Toshiba-->MsiExec.exe /X{CEBB6BFB-D708-4F99-A633-BC2600E01EF6} Bonjour-->MsiExec.exe /I{07287123-B8AC-41CE-8346-3D777245C35B} Commandes TOSHIBA-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{A6690C0E-B96E-4F0F-A8EB-D5B332454AC6}\Setup.exe" -l0x40c UNINSTALL Correctif pour Windows XP (KB893357)-->"C:\WINDOWS\$NtUninstallKB893357$\spuninst\spuninst.exe" Correctif pour Windows XP (KB894871)-->"C:\WINDOWS\$NtUninstallKB894871$\spuninst\spuninst.exe" Correctif pour Windows XP (KB896243)-->"C:\WINDOWS\$NtUninstallKB896243$\spuninst\spuninst.exe" Correctif pour Windows XP (KB896256)-->"C:\WINDOWS\$NtUninstallKB896256$\spuninst\spuninst.exe" Correctif pour Windows XP (KB910728)-->"C:\WINDOWS\$NtUninstallKB910728$\spuninst\spuninst.exe" Correctif pour Windows XP (KB917332)-->"C:\WINDOWS\$NtUninstallKB917332$\spuninst\spuninst.exe" Correctif pour Windows XP (KB918005)-->"C:\WINDOWS\$NtUninstallKB918005$\spuninst\spuninst.exe" Correctif pour Windows XP (KB918649)-->"C:\WINDOWS\$NtUninstallKB918649$\spuninst\spuninst.exe" Correctif pour Windows XP (KB928388)-->"C:\WINDOWS\$NtUninstallKB928388$\spuninst\spuninst.exe" Correctif pour Windows XP (KB929120)-->"C:\WINDOWS\$NtUninstallKB929120$\spuninst\spuninst.exe" Correctif Windows XP - KB873339-->C:\WINDOWS\$NtUninstallKB873339$\spuninst\spuninst.exe Correctif Windows XP - KB885835-->C:\WINDOWS\$NtUninstallKB885835$\spuninst\spuninst.exe Correctif Windows XP - KB885836-->C:\WINDOWS\$NtUninstallKB885836$\spuninst\spuninst.exe Correctif Windows XP - KB885855-->C:\WINDOWS\$NtUninstallKB885855$\spuninst\spuninst.exe Correctif Windows XP - KB886185-->C:\WINDOWS\$NtUninstallKB886185$\spuninst\spuninst.exe Correctif Windows XP - KB887472-->C:\WINDOWS\$NtUninstallKB887472$\spuninst\spuninst.exe Correctif Windows XP - KB888113-->C:\WINDOWS\$NtUninstallKB888113$\spuninst\spuninst.exe Correctif Windows XP - KB888302-->C:\WINDOWS\$NtUninstallKB888302$\spuninst\spuninst.exe Correctif Windows XP - KB888622-->C:\WINDOWS\$NtUninstallKB888622$\spuninst\spuninst.exe Correctif Windows XP - KB889673-->C:\WINDOWS\$NtUninstallKB889673$\spuninst\spuninst.exe Correctif Windows XP - KB890859-->"C:\WINDOWS\$NtUninstallKB890859$\spuninst\spuninst.exe" Correctif Windows XP - KB891781-->C:\WINDOWS\$NtUninstallKB891781$\spuninst\spuninst.exe Correctif Windows XP - KB893056-->C:\WINDOWS\$NtUninstallKB893056$\spuninst\spuninst.exe Correctif Windows XP - KB895200-->"C:\WINDOWS\$NtUninstallKB895200$\spuninst\spuninst.exe" Fichiers de prise en charge de l'installation de Microsoft SQL Server (Français)-->MsiExec.exe /X{3380F354-C5F7-4E71-8F51-EEE6C3F06C62} Gestion d'énergie TOSHIBA-->C:\WINDOWS\IsUn040c.exe -f"C:\Program Files\TOSHIBA\Power Saver\Uninst.isu" -c"C:\WINDOWS\system32\TPSDel.dll" Gestionnaire de contacts professionnels pour Outlook 2007-->"c:\Program Files\Microsoft Small Business\Business Contact Manager\SetupBootstrap\Setup.exe" /remove {69ca8988-1c6c-4285-b8af-db780a6e42af} Gestionnaire de contacts professionnels pour Outlook 2007-->MsiExec.exe /X{69ca8988-1c6c-4285-b8af-db780a6e42af} High Definition Audio Driver Package - KB888111-->"C:\WINDOWS\$NtUninstallKB888111WXPSP2$\spuninst\spuninst.exe" HijackThis 2.0.2-->"C:\Program Files\trend micro\HijackThis.exe" /uninstall Hotfix for Microsoft .NET Framework 2.0 (KB922981)-->c:\WINDOWS\system32\msiexec.exe /promptrestart /uninstall {A1D5A6B2-B620-41F9-B435-10A4FF3C18A2} /package {7131646D-CD3C-40F4-97B9-CD9E4E6262EF} Hotfix pour Microsoft .NET Framework 2.0 (KB923319)-->c:\WINDOWS\system32\msiexec.exe /promptrestart /uninstall {3C87D1CF-1592-4BFA-9B3E-380580EFAF51} /package {7131646D-CD3C-40F4-97B9-CD9E4E6262EF} Intel® Graphics Media Accelerator Driver-->RUNDLL32.EXE C:\WINDOWS\system32\ialmrem.dll,UninstallW2KIGfx2ID PCI\VEN_8086&DEV_27A6 PCI\VEN_8086&DEV_27A2 InterVideo WinDVD for TOSHIBA-->"C:\Program Files\InstallShield Installation Information\{91810AFC-A4F8-4EBA-A5AA-B198BBC81144}\setup.exe" REMOVEALL iTunes-->MsiExec.exe /I{99ECF41F-5CCA-42BD-B8B8-A8333E2E2944} Java 6 Update 15-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216013FF} Java SE Runtime Environment 6-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160000} Lecteur Windows Media 10-->"C:\Program Files\Windows Media Player\Setup_wm.exe" /Uninstall Macromedia Flash Player-->MsiExec.exe /X{0456ebd7-5f67-4ab6-852e-63781e3f389c} Manuels TOSHIBA-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{5B1DD5AA-FF34-4D6E-A912-CB46BB7378DC}\setup.exe" -l0x40c -removeonly Microsoft .NET Framework 1.1 French Language Pack-->MsiExec.exe /X{9A394342-4A68-4EBA-85A6-55B559F4E700} Microsoft .NET Framework 1.1-->msiexec.exe /X {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1} Microsoft .NET Framework 1.1-->MsiExec.exe /X{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1} Microsoft .NET Framework 2.0-->C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft .NET Framework 2.0\install.exe Microsoft Kernel-Mode Driver Framework Feature Pack 1.5-->"C:\WINDOWS\$NtUninstallWdf01005$\spuninst\spuninst.exe" Microsoft Kernel-Mode Driver Framework Feature Pack 1.7-->"C:\WINDOWS\$NtUninstallWdf01007$\spuninst\spuninst.exe" Microsoft Office 2003 Web Components-->MsiExec.exe /I{90A4040C-6000-11D3-8CFE-0150048383C9} Microsoft Office 2007 Primary Interop Assemblies-->MsiExec.exe /X{50120000-1105-0000-0000-0000000FF1CE} Microsoft Office Access MUI (French) 2007-->MsiExec.exe /X{90120000-0015-040C-0000-0000000FF1CE} Microsoft Office Excel MUI (French) 2007-->MsiExec.exe /X{90120000-0016-040C-0000-0000000FF1CE} Microsoft Office Outlook MUI (French) 2007-->MsiExec.exe /X{90120000-001A-040C-0000-0000000FF1CE} Microsoft Office PowerPoint MUI (French) 2007-->MsiExec.exe /X{90120000-0018-040C-0000-0000000FF1CE} Microsoft Office Professional Hybrid 2007-->MsiExec.exe /X{91120000-0031-0000-0000-0000000FF1CE} Microsoft Office Proof (Arabic) 2007-->MsiExec.exe /X{90120000-001F-0401-0000-0000000FF1CE} Microsoft Office Proof (Dutch) 2007-->MsiExec.exe /X{90120000-001F-0413-0000-0000000FF1CE} Microsoft Office Proof (English) 2007-->MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE} Microsoft Office Proof (French) 2007-->MsiExec.exe /X{90120000-001F-040C-0000-0000000FF1CE} Microsoft Office Proof (German) 2007-->MsiExec.exe /X{90120000-001F-0407-0000-0000000FF1CE} Microsoft Office Proof (Spanish) 2007-->MsiExec.exe /X{90120000-001F-0C0A-0000-0000000FF1CE} Microsoft Office Proofing (French) 2007-->MsiExec.exe /X{90120000-002C-040C-0000-0000000FF1CE} Microsoft Office Publisher MUI (French) 2007-->MsiExec.exe /X{90120000-0019-040C-0000-0000000FF1CE} Microsoft Office Shared MUI (French) 2007-->MsiExec.exe /X{90120000-006E-040C-0000-0000000FF1CE} Microsoft Office Small Business Connectivity Components-->MsiExec.exe /X{A939D341-5A04-4E0A-BB55-3E65B386432D} Microsoft Office Word MUI (French) 2007-->MsiExec.exe /X{90120000-001B-040C-0000-0000000FF1CE} Microsoft SQL Server 2005 Express Edition (MSSMLBIZ)-->MsiExec.exe /I{480DBB60-F0B6-45F2-B26F-1A2E11197791} Microsoft SQL Server 2005-->"C:\Program Files\Microsoft SQL Server\90\Setup Bootstrap\ARPWrapper.exe" /Remove Microsoft SQL Server Native Client-->MsiExec.exe /I{90283F22-0731-43B6-81FD-E6DD911A31FB} Microsoft SQL Server VSS Writer-->MsiExec.exe /I{C74B273E-DF20-4955-899B-15205119894C} Mise à jour de sécurité pour Lecteur Windows Media (KB911564)-->"C:\WINDOWS\$NtUninstallKB911564$\spuninst\spuninst.exe" Mise à jour de sécurité pour Lecteur Windows Media 10 (KB917734)-->"C:\WINDOWS\$NtUninstallKB917734_WMP10$\spuninst\spuninst.exe" Mise à jour de sécurité pour Step by Step Interactive Training (KB898458)-->"C:\WINDOWS\$NtUninstallKB898458$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows Internet Explorer 8 (KB972260)-->"C:\WINDOWS\ie8updates\KB972260-IE8\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB890046)-->"C:\WINDOWS\$NtUninstallKB890046$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB893756)-->"C:\WINDOWS\$NtUninstallKB893756$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB896358)-->"C:\WINDOWS\$NtUninstallKB896358$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB896422)-->"C:\WINDOWS\$NtUninstallKB896422$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB896423)-->"C:\WINDOWS\$NtUninstallKB896423$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB896424)-->"C:\WINDOWS\$NtUninstallKB896424$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB896428)-->"C:\WINDOWS\$NtUninstallKB896428$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB899587)-->"C:\WINDOWS\$NtUninstallKB899587$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB899589)-->"C:\WINDOWS\$NtUninstallKB899589$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB899591)-->"C:\WINDOWS\$NtUninstallKB899591$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB900725)-->"C:\WINDOWS\$NtUninstallKB900725$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB901017)-->"C:\WINDOWS\$NtUninstallKB901017$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB901190)-->"C:\WINDOWS\$NtUninstallKB901190$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB901214)-->"C:\WINDOWS\$NtUninstallKB901214$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB902400)-->"C:\WINDOWS\$NtUninstallKB902400$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB904706)-->"C:\WINDOWS\$NtUninstallKB904706$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB905414)-->"C:\WINDOWS\$NtUninstallKB905414$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB905749)-->"C:\WINDOWS\$NtUninstallKB905749$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB908519)-->"C:\WINDOWS\$NtUninstallKB908519$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB908531)-->"C:\WINDOWS\$NtUninstallKB908531$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB911562)-->"C:\WINDOWS\$NtUninstallKB911562$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB911567)-->"C:\WINDOWS\$NtUninstallKB911567$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB911927)-->"C:\WINDOWS\$NtUninstallKB911927$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB912919)-->"C:\WINDOWS\$NtUninstallKB912919$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB914388)-->"C:\WINDOWS\$NtUninstallKB914388$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB914389)-->"C:\WINDOWS\$NtUninstallKB914389$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB916281)-->"C:\WINDOWS\$NtUninstallKB916281$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB917159)-->"C:\WINDOWS\$NtUninstallKB917159$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB917344)-->"C:\WINDOWS\$NtUninstallKB917344$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB917422)-->"C:\WINDOWS\$NtUninstallKB917422$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB917953)-->"C:\WINDOWS\$NtUninstallKB917953$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB918439)-->"C:\WINDOWS\$NtUninstallKB918439$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB919007)-->"C:\WINDOWS\$NtUninstallKB919007$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB920213)-->"C:\WINDOWS\$NtUninstallKB920213$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB920214)-->"C:\WINDOWS\$NtUninstallKB920214$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB920670)-->"C:\WINDOWS\$NtUninstallKB920670$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB920683)-->"C:\WINDOWS\$NtUninstallKB920683$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB920685)-->"C:\WINDOWS\$NtUninstallKB920685$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB921398)-->"C:\WINDOWS\$NtUninstallKB921398$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB921883)-->"C:\WINDOWS\$NtUninstallKB921883$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB923191)-->"C:\WINDOWS\$NtUninstallKB923191$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB923689)-->"C:\WINDOWS\$NtUninstallKB923689$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB924191)-->"C:\WINDOWS\$NtUninstallKB924191$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB924270)-->"C:\WINDOWS\$NtUninstallKB924270$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB925902)-->"C:\WINDOWS\$NtUninstallKB925902$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB927779)-->"C:\WINDOWS\$NtUninstallKB927779$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB928090)-->"C:\WINDOWS\$NtUninstallKB928090$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB928843)-->"C:\WINDOWS\$NtUninstallKB928843$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB929969)-->"C:\WINDOWS\$NtUninstallKB929969$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB930178)-->"C:\WINDOWS\$NtUninstallKB930178$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB931261)-->"C:\WINDOWS\$NtUninstallKB931261$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB931768)-->"C:\WINDOWS\$NtUninstallKB931768$\spuninst\spuninst.exe" Mise à jour de sécurité pour Windows XP (KB932168)-->"C:\WINDOWS\$NtUninstallKB932168$\spuninst\spuninst.exe" Mise à jour pour Windows Internet Explorer 8 (KB973874)-->"C:\WINDOWS\ie8updates\KB973874-IE8\spuninst\spuninst.exe" Mise à jour pour Windows XP (KB894391)-->"C:\WINDOWS\$NtUninstallKB894391$\spuninst\spuninst.exe" Mise à jour pour Windows XP (KB898461)-->"C:\WINDOWS\$NtUninstallKB898461$\spuninst\spuninst.exe" Mise à jour pour Windows XP (KB910437)-->"C:\WINDOWS\$NtUninstallKB910437$\spuninst\spuninst.exe" Mise à jour pour Windows XP (KB911280)-->"C:\WINDOWS\$NtUninstallKB911280$\spuninst\spuninst.exe" Mise à jour pour Windows XP (KB920872)-->"C:\WINDOWS\$NtUninstallKB920872$\spuninst\spuninst.exe" Mise à jour pour Windows XP (KB922582)-->"C:\WINDOWS\$NtUninstallKB922582$\spuninst\spuninst.exe" Mise à jour pour Windows XP (KB929338)-->"C:\WINDOWS\$NtUninstallKB929338$\spuninst\spuninst.exe" Mise à jour pour Windows XP (KB930916)-->"C:\WINDOWS\$NtUninstallKB930916$\spuninst\spuninst.exe" Mise à jour pour Windows XP (KB932823-v3)-->"C:\WINDOWS\$NtUninstallKB932823-v3$\spuninst\spuninst.exe" Mozilla Firefox (3.5.2)-->C:\Program Files\Mozilla Firefox\uninstall\helper.exe MSXML 4.0 SP2 (KB927978)-->MsiExec.exe /I{37477865-A3F1-4772-AD43-AAFC6BCFF99F} OpenOffice.org 3.1-->MsiExec.exe /I{0FA44E79-CD7D-4E8D-A2EE-26FE05F509B6} Outil de diagnostic PC TOSHIBA-->C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\1050\INTEL3~1\IDriver.exe /M{2C38F661-26B7-445D-B87D-B53FE2D3BD42} QuickTime-->MsiExec.exe /I{C78EAC6F-7A73-452E-8134-DBB2165C5A68} REALTEK GbE & FE Ethernet PCI-E NIC Driver-->C:\Program Files\InstallShield Installation Information\{C9BED750-1211-4480-B1A5-718A3BE15525}\setup.exe -runfromtemp -l0x040c -removeonly Realtek High Definition Audio Driver-->RtlUpd.exe -r -m Réducteur de bruit lect. CD/DVD-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{9FE35071-CAB2-4E79-93E7-BFC6A2DC5C5D}\Setup.exe" -l0x40c Synaptics Pointing Device Driver-->rundll32.exe "%ProgramFiles%\Synaptics\SynTP\SynISDLL.dll",standAloneUninstall Texas Instruments PCIxx21/x515/xx12 drivers.-->C:\Program Files\InstallShield Installation Information\{DB780B85-B4B5-4864-A49C-9B706B169C93}\setup.exe -runfromtemp -l0x040c TOSHIBA Accessibility-->C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{3A57482F-BEBC-47E4-ADA1-6302403C7E50} /l1036 TOSHIBA ConfigFree-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{BDD83DC9-BEE9-4654-A5DA-CC46C250088D}\setup.exe" -l0x40c UNINSTALL TOSHIBA Direct Disc Writer-->MsiExec.exe /X{400830CA-F056-4BBE-80A3-9DF9CA4FB889} TOSHIBA Disc Creator-->MsiExec.exe /X{5DA0E02F-970B-424B-BF41-513A5018E4C0} TOSHIBA Hardware Setup-->C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{5279374D-87FE-4879-9385-F17278EBB9D3} /l1036 TOSHIBA Mot de passe responsable-->C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{51B4E156-14A5-4904-9AE4-B1AA2A0E46BE} /l1036 Toshiba Online Product Information-->C:\Program Files\InstallShield Installation Information\{2290A680-4083-410A-ADCC-7092C67FC052}\setup.exe -runfromtemp -l0x040c -removeonly TOSHIBA SD Memory Utilities-->MsiExec.exe /X{EBFF48F5-3CFA-436F-8FD5-94FB01D3A0A7} TOSHIBA Software Modem-->Tosmreg -U Update for Office 2007 (KB934528)-->msiexec /package {91120000-0031-0000-0000-0000000FF1CE} /uninstall {2B939677-2FFD-48F6-9075-7BF48CB87C80} Update for Office System 2007 Setup (KB929722)-->msiexec /package {91120000-0031-0000-0000-0000000FF1CE} /uninstall {D8E9BEBD-655F-467D-8176-CA9959C140A3} Utilitaire de zoom TOSHIBA-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\10\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{64212898-097F-4F3F-AECA-6D34A7EF82DF}\setup.exe" -l0x40c -removeonly Utilitaire Hotkey TOSHIBA-->C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{7900D3A6-A9E8-4954-ACCB-AB15867978BF} /l1036 Utilitaire TouchPad ON/OFF-->C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{80977342-27E8-4FF7-8B6A-D8D89461DA7F} /l1036 VLC media player 1.0.1-->C:\Program Files\VideoLAN\VLC\uninstall.exe Windows Installer 3.1 (KB893803)-->"C:\WINDOWS\$MSI31Uninstall_KB893803v2$\spuninst\spuninst.exe" Windows Internet Explorer 8-->"C:\WINDOWS\ie8\spuninst\spuninst.exe" Windows Media Format Runtime-->"C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll Zune Desktop Theme-->MsiExec.exe /X{7E20EFE6-E604-48C6-8B39-BA4742F2CDB4} ======Hosts File====== 127.0.0.1 localhost ======Security center information====== AV: avast! antivirus 4.8.1351 [VPS 090828-0] ======System event log====== Computer Name: YOUR-FE01724F88 Event Code: 4201 Message: Le système a détecté que la carte réseau \DEVICE\TCPIP_{FB423A90-6E10-487C-8A63-6916C5A46B12} était connectée au réseau, et a lancé une opération normale sur la carte réseau. Record Number: 5 Source Name: Tcpip Time Written: 20090829025447.000000+120 Event Type: Informations User: Computer Name: YOUR-FE01724F88 Event Code: 7036 Message: Le service est entré dans l'état : \DEVICE\{FB423A90-6E10-487C-8A63-6916C5A46B12}. Record Number: 4 Source Name: NETw4x32 Time Written: 20090829025447.000000+120 Event Type: Informations User: Computer Name: YOUR-FE01724F88 Event Code: 6005 Message: Le service d'Enregistrement d'événement a démarré. Record Number: 3 Source Name: EventLog Time Written: 20090829025429.000000+120 Event Type: Informations User: Computer Name: YOUR-FE01724F88 Event Code: 6009 Message: Microsoft ® Windows ® 5.01. 2600 Service Pack 2 Multiprocessor Free. Record Number: 2 Source Name: EventLog Time Written: 20090829025429.000000+120 Event Type: Informations User: Computer Name: YOUR-FE01724F88 Event Code: 115 Message: Le suivi de la Restauration système a été activé sur tous les lecteurs. Record Number: 1 Source Name: SRService Time Written: 20090829025342.000000+120 Event Type: Informations User: =====Application event log===== Computer Name: YOUR-FE01724F88 Event Code: 34 Message: Record Number: 5 Source Name: ccSvcHst Time Written: 20090829025442.000000+120 Event Type: Informations User: AUTORITE NT\SYSTEM Computer Name: YOUR-FE01724F88 Event Code: 35 Message: Record Number: 4 Source Name: ccSvcHst Time Written: 20090829025442.000000+120 Event Type: Informations User: AUTORITE NT\SYSTEM Computer Name: YOUR-FE01724F88 Event Code: 34 Message: Record Number: 3 Source Name: ccSvcHst Time Written: 20090829025438.000000+120 Event Type: Informations User: AUTORITE NT\SYSTEM Computer Name: YOUR-FE01724F88 Event Code: 101 Message: wuauclt (1812) Le moteur de base de données est arrêté. Record Number: 2 Source Name: ESENT Time Written: 20090829025337.000000+120 Event Type: Informations User: Computer Name: YOUR-FE01724F88 Event Code: 103 Message: wuaueng.dll (1812) SUS20ClientDataStore: Le moteur de base de données a arrêté une instance (0). Record Number: 1 Source Name: ESENT Time Written: 20090829025337.000000+120 Event Type: Informations User: ======Environment variables====== "ComSpec"=%SystemRoot%\system32\cmd.exe "Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\Microsoft SQL Server\90\Tools\binn\;C:\Program Files\QuickTime\QTSystem\ "windir"=%SystemRoot% "FP_NO_HOST_CHECK"=NO "OS"=Windows_NT "PROCESSOR_ARCHITECTURE"=x86 "PROCESSOR_LEVEL"=6 "PROCESSOR_IDENTIFIER"=x86 Family 6 Model 14 Stepping 8, GenuineIntel "PROCESSOR_REVISION"=0e08 "NUMBER_OF_PROCESSORS"=2 "PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH "TEMP"=%SystemRoot%\TEMP "TMP"=%SystemRoot%\TEMP "CLASSPATH"=.;C:\Program Files\Java\jre1.6.0\lib\ext\QTJava.zip "QTJAVA"=C:\Program Files\Java\jre1.6.0\lib\ext\QTJava.zip -----------------EOF----------------- En vous remerciant d'avance pour vos soluces. Bye!