Aller au contenu

ana

Membres
  • Compteur de contenus

    14
  • Inscription

  • Dernière visite

Tout ce qui a été posté par ana

  1. Bonjour Thanos! Oui le problème persiste pourtant mon mot de passe est considéré comme fort... Je ne sais plus quoi faire
  2. Bonjour! Désolée du petit retard! Voici le rapport que tu m'as demandé: GMER 1.0.15.15252 - http://www.gmer.net Rootkit scan 2009-11-26 20:33:52 Windows 6.0.6002 Service Pack 2 Running: gmer.exe; Driver: C:\Users\UTILIS~1\AppData\Local\Temp\kwnoyuob.sys ---- Kernel code sections - GMER 1.0.15 ---- .text C:\Windows\system32\DRIVERS\tos_sps32.sys section is writeable [0x88354000, 0x4036D, 0xE8000020] .dsrt C:\Windows\system32\DRIVERS\tos_sps32.sys unknown last section [0x8839D000, 0x510, 0x40000040] .text C:\Windows\system32\DRIVERS\atikmdag.sys section is writeable [0x8BE05000, 0x1E73A0, 0xE8000020] ---- User code sections - GMER 1.0.15 ---- .text C:\Program Files\Camera Assistant Software for Toshiba\CEC_MAIN.exe[3728] ntdll.dll!DbgBreakPoint 776B8B2E 1 Byte [90] .text C:\Program Files\Internet Explorer\iexplore.exe[4040] USER32.dll!CreateDialogParamW 75D272A2 5 Bytes JMP 6A9DDA08 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation) .text C:\Program Files\Internet Explorer\iexplore.exe[4040] USER32.dll!GetAsyncKeyState 75D2863C 5 Bytes JMP 6A8F90EF C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation) .text C:\Program Files\Internet Explorer\iexplore.exe[4040] USER32.dll!SetWindowsHookExW 75D287AD 5 Bytes JMP 6A9D97F5 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation) .text C:\Program Files\Internet Explorer\iexplore.exe[4040] USER32.dll!CallNextHookEx 75D28E3B 5 Bytes JMP 6A9CCE79 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation) .text C:\Program Files\Internet Explorer\iexplore.exe[4040] USER32.dll!UnhookWindowsHookEx 75D298DB 5 Bytes JMP 6A94466C C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation) .text C:\Program Files\Internet Explorer\iexplore.exe[4040] USER32.dll!EnableWindow 75D2CD8B 5 Bytes JMP 6A9DD895 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation) .text C:\Program Files\Internet Explorer\iexplore.exe[4040] USER32.dll!CreateWindowExW 75D31305 5 Bytes JMP 6A9DD67C C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation) .text C:\Program Files\Internet Explorer\iexplore.exe[4040] USER32.dll!GetKeyState 75D38CB1 5 Bytes JMP 6A9DCE43 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation) .text C:\Program Files\Internet Explorer\iexplore.exe[4040] USER32.dll!IsDialogMessageW 75D40745 5 Bytes JMP 6A905947 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation) .text C:\Program Files\Internet Explorer\iexplore.exe[4040] USER32.dll!CreateDialogParamA 75D417AA 5 Bytes JMP 6AAD4DFB C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation) .text C:\Program Files\Internet Explorer\iexplore.exe[4040] USER32.dll!IsDialogMessage 75D41847 5 Bytes JMP 6AAD4697 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation) .text C:\Program Files\Internet Explorer\iexplore.exe[4040] USER32.dll!CreateDialogIndirectParamA 75D426F1 5 Bytes JMP 6AAD4E32 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation) .text C:\Program Files\Internet Explorer\iexplore.exe[4040] USER32.dll!CreateDialogIndirectParamW 75D49A62 5 Bytes JMP 6AAD4E69 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation) .text C:\Program Files\Internet Explorer\iexplore.exe[4040] USER32.dll!SetKeyboardState 75D50987 5 Bytes JMP 6AAD4A06 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation) .text C:\Program Files\Internet Explorer\iexplore.exe[4040] USER32.dll!DialogBoxParamW 75D510B0 5 Bytes JMP 6A905435 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation) .text C:\Program Files\Internet Explorer\iexplore.exe[4040] USER32.dll!DialogBoxIndirectParamW 75D52EF5 5 Bytes JMP 6AAD418F C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation) .text C:\Program Files\Internet Explorer\iexplore.exe[4040] USER32.dll!SendInput 75D52F75 5 Bytes JMP 6AAD55C3 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation) .text C:\Program Files\Internet Explorer\iexplore.exe[4040] USER32.dll!EndDialog 75D5326E 5 Bytes JMP 6A907DEE C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation) .text C:\Program Files\Internet Explorer\iexplore.exe[4040] USER32.dll!SetCursorPos 75D66FB2 5 Bytes JMP 6AAD5617 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation) .text C:\Program Files\Internet Explorer\iexplore.exe[4040] USER32.dll!DialogBoxParamA 75D68152 5 Bytes JMP 6AAD412C C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation) .text C:\Program Files\Internet Explorer\iexplore.exe[4040] USER32.dll!DialogBoxIndirectParamA 75D6847D 5 Bytes JMP 6AAD41F2 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation) .text C:\Program Files\Internet Explorer\iexplore.exe[4040] USER32.dll!MessageBoxIndirectA 75D7D4D9 5 Bytes JMP 6AAD40C1 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation) .text C:\Program Files\Internet Explorer\iexplore.exe[4040] USER32.dll!MessageBoxIndirectW 75D7D5D3 5 Bytes JMP 6AAD4056 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation) .text C:\Program Files\Internet Explorer\iexplore.exe[4040] USER32.dll!MessageBoxExA 75D7D639 5 Bytes JMP 6AAD3FF4 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation) .text C:\Program Files\Internet Explorer\iexplore.exe[4040] USER32.dll!MessageBoxExW 75D7D65D 5 Bytes JMP 6AAD3F92 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation) .text C:\Program Files\Internet Explorer\iexplore.exe[4040] USER32.dll!keybd_event 75D7D972 5 Bytes JMP 6AAD5947 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation) .text C:\Program Files\Internet Explorer\iexplore.exe[4040] SHELL32.dll!SHRestricted + D95 76528988 4 Bytes [4D, 30, 85, 70] .text C:\Program Files\Internet Explorer\iexplore.exe[4040] SHELL32.dll!SHRestricted + D9D 76528990 8 Bytes [57, 2F, 85, 70, 9C, 5B, 84, ...] .text C:\Program Files\Internet Explorer\iexplore.exe[4040] ole32.dll!OleLoadFromStream 75DE1E12 5 Bytes JMP 6AAD44F7 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation) .text C:\Program Files\Internet Explorer\iexplore.exe[4040] ole32.dll!CoCreateInstance 75E19EA6 5 Bytes JMP 6A9DD6D8 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation) .text C:\Program Files\Internet Explorer\iexplore.exe[4040] ws2_32.dll!closesocket 777E330C 5 Bytes JMP 6BABEEE9 C:\Program Files\Microsoft\Search Enhancement Pack\SeaNote\SeaNote.dll (Microsoft Search Note/Microsoft Corporation) .text C:\Program Files\Internet Explorer\iexplore.exe[4040] ws2_32.dll!recv 777E343A 5 Bytes JMP 6BABF1C3 C:\Program Files\Microsoft\Search Enhancement Pack\SeaNote\SeaNote.dll (Microsoft Search Note/Microsoft Corporation) .text C:\Program Files\Internet Explorer\iexplore.exe[4040] ws2_32.dll!socket 777E36D1 5 Bytes JMP 6BABE59E C:\Program Files\Microsoft\Search Enhancement Pack\SeaNote\SeaNote.dll (Microsoft Search Note/Microsoft Corporation) .text C:\Program Files\Internet Explorer\iexplore.exe[4040] ws2_32.dll!connect 777E40D9 5 Bytes JMP 6BABE62A C:\Program Files\Microsoft\Search Enhancement Pack\SeaNote\SeaNote.dll (Microsoft Search Note/Microsoft Corporation) .text C:\Program Files\Internet Explorer\iexplore.exe[4040] ws2_32.dll!getaddrinfo 777E418A 5 Bytes JMP 6BABE71D C:\Program Files\Microsoft\Search Enhancement Pack\SeaNote\SeaNote.dll (Microsoft Search Note/Microsoft Corporation) .text C:\Program Files\Internet Explorer\iexplore.exe[4040] ws2_32.dll!send 777E659B 5 Bytes JMP 6BABE9ED C:\Program Files\Microsoft\Search Enhancement Pack\SeaNote\SeaNote.dll (Microsoft Search Note/Microsoft Corporation) .text C:\Program Files\Internet Explorer\iexplore.exe[4404] USER32.dll!CreateWindowExW 75D31305 5 Bytes JMP 6A9DD67C C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation) .text C:\Program Files\Internet Explorer\iexplore.exe[4404] USER32.dll!DialogBoxParamW 75D510B0 5 Bytes JMP 6A905435 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation) .text C:\Program Files\Internet Explorer\iexplore.exe[4404] USER32.dll!DialogBoxIndirectParamW 75D52EF5 5 Bytes JMP 6AAD418F C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation) .text C:\Program Files\Internet Explorer\iexplore.exe[4404] USER32.dll!DialogBoxParamA 75D68152 5 Bytes JMP 6AAD412C C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation) .text C:\Program Files\Internet Explorer\iexplore.exe[4404] USER32.dll!DialogBoxIndirectParamA 75D6847D 5 Bytes JMP 6AAD41F2 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation) .text C:\Program Files\Internet Explorer\iexplore.exe[4404] USER32.dll!MessageBoxIndirectA 75D7D4D9 5 Bytes JMP 6AAD40C1 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation) .text C:\Program Files\Internet Explorer\iexplore.exe[4404] USER32.dll!MessageBoxIndirectW 75D7D5D3 5 Bytes JMP 6AAD4056 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation) .text C:\Program Files\Internet Explorer\iexplore.exe[4404] USER32.dll!MessageBoxExA 75D7D639 5 Bytes JMP 6AAD3FF4 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation) .text C:\Program Files\Internet Explorer\iexplore.exe[4404] USER32.dll!MessageBoxExW 75D7D65D 5 Bytes JMP 6AAD3F92 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation) ---- User IAT/EAT - GMER 1.0.15 ---- IAT C:\Windows\system32\services.exe[664] @ C:\Windows\system32\services.exe [ADVAPI32.dll!CreateProcessAsUserW] 00190002 IAT C:\Windows\system32\services.exe[664] @ C:\Windows\system32\services.exe [KERNEL32.dll!CreateProcessW] 00190000 IAT C:\Windows\Explorer.EXE[3572] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdiplusShutdown] [73A37817] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396 ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation) IAT C:\Windows\Explorer.EXE[3572] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipCloneImage] [73A8A86D] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396 ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation) IAT C:\Windows\Explorer.EXE[3572] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipDrawImageRectI] [73A3BB22] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396 ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation) IAT C:\Windows\Explorer.EXE[3572] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipSetInterpolationMode] [73A2F695] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396 ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation) IAT C:\Windows\Explorer.EXE[3572] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdiplusStartup] [73A375E9] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396 ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation) IAT C:\Windows\Explorer.EXE[3572] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipCreateFromHDC] [73A2E7CA] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396 ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation) IAT C:\Windows\Explorer.EXE[3572] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipCreateBitmapFromStreamICM] [73A68395] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396 ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation) IAT C:\Windows\Explorer.EXE[3572] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipCreateBitmapFromStream] [73A3DA60] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396 ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation) IAT C:\Windows\Explorer.EXE[3572] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipGetImageHeight] [73A2FFFA] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396 ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation) IAT C:\Windows\Explorer.EXE[3572] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipGetImageWidth] [73A2FF61] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396 ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation) IAT C:\Windows\Explorer.EXE[3572] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipDisposeImage] [73A271CF] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396 ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation) IAT C:\Windows\Explorer.EXE[3572] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipLoadImageFromFileICM] [73ABCAE2] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396 ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation) IAT C:\Windows\Explorer.EXE[3572] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipLoadImageFromFile] [73A5C8D8] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396 ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation) IAT C:\Windows\Explorer.EXE[3572] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipDeleteGraphics] [73A2D968] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396 ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation) IAT C:\Windows\Explorer.EXE[3572] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipFree] [73A26853] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396 ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation) IAT C:\Windows\Explorer.EXE[3572] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipAlloc] [73A2687E] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396 ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation) IAT C:\Windows\Explorer.EXE[3572] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipSetCompositingMode] [73A32AD1] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396 ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\ADVAPI32.dll [KERNEL32.dll!GetProcAddress] [708382F6] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\RPCRT4.dll [KERNEL32.dll!GetProcAddress] [708382F6] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!SearchPathW] [70841AEC] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!LoadLibraryExW] [7084007C] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!CopyFileW] [7083E1E9] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!MoveFileW] [70840994] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!DeleteFileW] [7083EE46] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!CreateProcessW] [7083A3FB] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!SetCurrentDirectoryW] [70841D56] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!FindClose] [70843ADC] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!FindNextFileW] [70842999] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!FindFirstFileW] [70843035] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!LoadLibraryA] [7083FBE1] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!CreateFileW] [7083E860] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!WritePrivateProfileStringW] [7083DC5C] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!LoadLibraryW] [7083FD66] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!GetProcAddress] [708382F6] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\USER32.dll [KERNEL32.dll!GetPrivateProfileStringW] [7083D4B8] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\USER32.dll [ADVAPI32.dll!RegQueryInfoKeyW] [7084FBB3] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\USER32.dll [ADVAPI32.dll!RegEnumValueW] [7085051D] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\USER32.dll [ADVAPI32.dll!RegOpenKeyExW] [7084EB3D] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\USER32.dll [ADVAPI32.dll!RegQueryValueExW] [7084F817] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\USER32.dll [ADVAPI32.dll!RegDeleteKeyW] [7084EF31] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\USER32.dll [ADVAPI32.dll!RegCreateKeyExW] [7084E5C5] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\USER32.dll [ADVAPI32.dll!RegCloseKey] [7084ED95] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\GDI32.dll [KERNEL32.dll!LoadLibraryExW] [7084007C] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\GDI32.dll [KERNEL32.dll!LoadLibraryA] [7083FBE1] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\GDI32.dll [KERNEL32.dll!CopyFileW] [7083E1E9] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\GDI32.dll [KERNEL32.dll!GetProcAddress] [708382F6] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\GDI32.dll [KERNEL32.dll!LoadLibraryW] [7083FD66] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\GDI32.dll [KERNEL32.dll!CreateFileW] [7083E860] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\GDI32.dll [KERNEL32.dll!SearchPathW] [70841AEC] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\GDI32.dll [KERNEL32.dll!DeleteFileW] [7083EE46] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!FindClose] [70843ADC] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!FindFirstFileA] [70842CD2] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!FindNextFileA] [70842926] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!FindFirstFileW] [70843035] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!FindNextFileW] [70842999] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!GetFileAttributesA] [7083BD77] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!SetCurrentDirectoryA] [7084173F] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!SetFileAttributesA] [7083BFCD] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!CreateDirectoryA] [70840F0F] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!RemoveDirectoryA] [708414E9] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!DeleteFileA] [7083ED1B] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!GetFileAttributesW] [7083BEA2] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!SetCurrentDirectoryW] [70841D56] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!SetFileAttributesW] [7083C0FB] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!CreateDirectoryW] [7084103D] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!DeleteFileW] [7083EE46] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!MoveFileW] [70840994] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!RemoveDirectoryW] [70841614] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!MoveFileA] [70840921] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!GetProcAddress] [708382F6] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!LoadLibraryA] [7083FBE1] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!CreateProcessA] [7083A073] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!CreateProcessW] [7083A3FB] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!CreateFileA] [7083E717] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!CreateFileW] [7083E860] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\msvcrt.dll [KERNEL32.dll!LoadLibraryW] [7083FD66] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryW] [7083FD66] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!ReplaceFileW] [70840C95] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!WritePrivateProfileStringW] [7083DC5C] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!GetPrivateProfileStringW] [7083D4B8] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!GetPrivateProfileStringA] [7083D361] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!DeleteFileW] [7083EE46] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryExW] [7084007C] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!SetFileAttributesW] [7083C0FB] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!CreateFileW] [7083E860] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!FindFirstFileW] [70843035] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!FindNextFileW] [70842999] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!SearchPathW] [70841AEC] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!GetFileAttributesW] [7083BEA2] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!SetFileAttributesA] [7083BFCD] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!CreateFileA] [7083E717] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!FindFirstFileA] [70842CD2] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!FindNextFileA] [70842926] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!FindClose] [70843ADC] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!SearchPathA] [708423A5] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!GetFileAttributesA] [7083BD77] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!LoadLibraryA] [7083FBE1] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHLWAPI.dll [KERNEL32.dll!GetProcAddress] [708382F6] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHLWAPI.dll [uSER32.dll!WinHelpW] [7083FAAA] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHLWAPI.dll [uSER32.dll!WinHelpA] [7083F973] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHLWAPI.dll [ADVAPI32.dll!RegCloseKey] [7084ED95] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHLWAPI.dll [ADVAPI32.dll!RegCreateKeyExA] [7084E43D] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHLWAPI.dll [ADVAPI32.dll!RegDeleteKeyA] [7084EDE8] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHLWAPI.dll [ADVAPI32.dll!RegQueryInfoKeyA] [7084F9B7] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHLWAPI.dll [ADVAPI32.dll!RegOpenKeyExA] [7084E9C5] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHLWAPI.dll [ADVAPI32.dll!RegCreateKeyExW] [7084E5C5] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHLWAPI.dll [ADVAPI32.dll!RegOpenKeyExW] [7084EB3D] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHLWAPI.dll [ADVAPI32.dll!RegEnumKeyExW] [7085020D] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHLWAPI.dll [ADVAPI32.dll!RegQueryValueW] [7084F4DB] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHLWAPI.dll [ADVAPI32.dll!RegDeleteKeyW] [7084EF31] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHLWAPI.dll [ADVAPI32.dll!RegQueryInfoKeyW] [7084FBB3] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHLWAPI.dll [ADVAPI32.dll!RegQueryValueExW] [7084F817] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHLWAPI.dll [ADVAPI32.dll!RegEnumValueW] [7085051D] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHLWAPI.dll [ADVAPI32.dll!RegEnumKeyW] [7084FF19] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHLWAPI.dll [ADVAPI32.dll!RegEnumKeyExA] [70850085] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHLWAPI.dll [ADVAPI32.dll!RegEnumValueA] [70850395] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHLWAPI.dll [ADVAPI32.dll!RegEnumKeyA] [7084FDAF] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHLWAPI.dll [ADVAPI32.dll!RegQueryValueExA] [7084F677] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!GetPrivateProfileSectionW] [7083CFA8] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!FindNextFileW] [70842999] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!ReplaceFileW] [70840C95] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!GetPrivateProfileSectionNamesW] [7083D22A] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!WritePrivateProfileSectionW] [7083D9DA] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!WritePrivateProfileStringW] [7083DC5C] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!CreateHardLinkW] [7083EB68] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!SetCurrentDirectoryW] [70841D56] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!CopyFileW] [7083E1E9] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!GetBinaryTypeW] [7083CAA7] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryExW] [7084007C] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!CreateProcessW] [7083A3FB] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!MoveFileW] [70840994] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!FindFirstFileW] [70843035] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!FindClose] [70843ADC] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!GetShortPathNameA] [7083C709] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!GetFileAttributesA] [7083BD77] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!SearchPathW] [70841AEC] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!GetPrivateProfileIntW] [7083CD20] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!GetPrivateProfileStringW] [7083D4B8] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!RemoveDirectoryW] [70841614] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!CreateDirectoryW] [7084103D] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!DeleteFileW] [7083EE46] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!SetFileAttributesW] [7083C0FB] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!GetFileAttributesW] [7083BEA2] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!MoveFileExW] [708409B9] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!GetShortPathNameW] [7083C848] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryW] [7083FD66] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!CreateFileW] [7083E860] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!GetFileAttributesExW] [7083C368] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!LoadLibraryA] [7083FBE1] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [KERNEL32.dll!GetLongPathNameW] [7083C5D8] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [uSER32.dll!LoadImageW] [7083F0D0] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [uSER32.dll!WinHelpW] [7083FAAA] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [uSER32.dll!PrivateExtractIconsW] [7083F5C5] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [sHLWAPI.dll!PathCreateFromUrlW] [708465DA] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [sHLWAPI.dll!AssocQueryStringByKeyW] [7084620B] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [sHLWAPI.dll!SHCreateStreamOnFileW] [70847595] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [sHLWAPI.dll!AssocQueryKeyW] [708460AE] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [sHLWAPI.dll!AssocQueryStringW] [7084615B] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [sHLWAPI.dll!SHDeleteKeyA] [708475E7] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [sHLWAPI.dll!PathCombineW] [70846533] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [sHLWAPI.dll!SHOpenRegStream2W] [7084799A] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [sHLWAPI.dll!PathIsDirectoryW] [7084684F] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [sHLWAPI.dll!PathIsURLW] [70846E45] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [sHLWAPI.dll!PathIsRootA] [70846AFB] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [sHLWAPI.dll!PathIsRootW] [70846B47] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [sHLWAPI.dll!PathStripToRootW] [70847281] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [sHLWAPI.dll!PathFindOnPathW] [70846716] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [sHLWAPI.dll!PathStripPathW] [708471ED] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [sHLWAPI.dll!PathRemoveArgsW] [70847021] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [sHLWAPI.dll!SHRegGetBoolUSValueW] [70847FBE] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [sHLWAPI.dll!PathSkipRootW] [70847159] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [sHLWAPI.dll!PathIsDirectoryEmptyW] [708468E7] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [sHLWAPI.dll!PathIsSystemFolderW] [70846BE2] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [sHLWAPI.dll!PathIsDirectoryA] [70846803] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [sHLWAPI.dll!PathRelativePathToW] [70846F81] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [sHLWAPI.dll!PathBuildRootA] [708463A5] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [sHLWAPI.dll!SHRegGetPathW] [708480BD] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [sHLWAPI.dll!SHRegSetPathW] [70848513] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [sHLWAPI.dll!SHRegGetUSValueW] [70848176] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [sHLWAPI.dll!SHQueryValueExW] [70847BA4] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [sHLWAPI.dll!SHRegGetValueW] [70848235] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [sHLWAPI.dll!PathIsNetworkPathW] [7084697F] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [sHLWAPI.dll!PathIsUNCServerShareW] [70846DAD] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [sHLWAPI.dll!PathIsUNCServerW] [70846D15] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [sHLWAPI.dll!PathUnExpandEnvStringsW] [7084731F] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [sHLWAPI.dll!PathMakeSystemFolderW] [70846EDD] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [sHLWAPI.dll!PathIsUNCW] [70846C7D] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [sHLWAPI.dll!PathIsRelativeW] [70846AAF] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [sHLWAPI.dll!SHGetValueW] [708478EA] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [sHLWAPI.dll!PathBuildRootW] [708463F4] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [sHLWAPI.dll!SHDeleteValueW] [708476D7] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [sHLWAPI.dll!SHSetValueW] [70848732] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [sHLWAPI.dll!SHEnumKeyExW] [7084777E] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [sHLWAPI.dll!SHEnumValueW] [70847831] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [sHLWAPI.dll!PathFileExistsW] [7084667B] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [sHLWAPI.dll!SHDeleteKeyW] [70847636] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SHELL32.dll [ntdll.dll!NtQueryDirectoryFile] [7083BB38] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!FindClose] [70843ADC] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!FindFirstFileW] [70843035] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!LoadLibraryExW] [7084007C] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!SearchPathW] [70841AEC] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!CreateProcessW] [7083A3FB] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!DeleteFileW] [7083EE46] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!GetShortPathNameW] [7083C848] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!GetFileAttributesExW] [7083C368] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!CreateFileW] [7083E860] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!LoadLibraryW] [7083FD66] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!GetFileAttributesW] [7083BEA2] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\ole32.dll [KERNEL32.dll!LoadLibraryA] [7083FBE1] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\USERENV.dll [KERNEL32.dll!GetProcAddress] [708382F6] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\Secur32.dll [KERNEL32.dll!GetProcAddress] [708382F6] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\WININET.dll [sHLWAPI.dll!SHRegGetValueW] [70848235] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\WININET.dll [sHLWAPI.dll!SHRegGetValueA] [708481D7] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\WININET.dll [sHLWAPI.dll!PathUnExpandEnvStringsA] [708472CD] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\WININET.dll [sHLWAPI.dll!SHDeleteKeyA] [708475E7] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\WININET.dll [sHLWAPI.dll!SHDeleteValueW] [708476D7] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\WININET.dll [sHLWAPI.dll!PathCreateFromUrlW] [708465DA] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\WININET.dll [sHLWAPI.dll!SHGetValueA] [7084788F] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\WININET.dll [sHLWAPI.dll!SHSetValueA] [708486D7] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\WININET.dll [sHLWAPI.dll!SHGetValueW] [708478EA] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\WININET.dll [sHLWAPI.dll!SHSetValueW] [70848732] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\WININET.dll [sHLWAPI.dll!PathCombineW] [70846533] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\WININET.dll [KERNEL32.dll!GetProcAddress] [708382F6] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\ws2_32.dll [KERNEL32.dll!GetProcAddress] [708382F6] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\SAMLIB.dll [KERNEL32.dll!GetProcAddress] [708382F6] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\NETAPI32.dll [KERNEL32.dll!GetProcAddress] [708382F6] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\CRYPT32.dll [KERNEL32.dll!GetProcAddress] [708382F6] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) IAT C:\Program Files\Internet Explorer\iexplore.exe[4040] @ C:\Windows\system32\IPHLPAPI.DLL [KERNEL32.dll!GetProcAddress] [708382F6] C:\Program Files\Internet Explorer\IEShims.dll (Internet Explorer Compatibility Shims/Microsoft Corporation) ---- Devices - GMER 1.0.15 ---- AttachedDevice \Driver\kbdclass \Device\KeyboardClass0 Wdf01000.sys (WDF dynamique/Microsoft Corporation) AttachedDevice \Driver\kbdclass \Device\KeyboardClass1 Wdf01000.sys (WDF dynamique/Microsoft Corporation) AttachedDevice \Driver\tdx \Device\Tcp aswTdi.SYS (avast! TDI Filter Driver/ALWIL Software) AttachedDevice \Driver\tdx \Device\Udp aswTdi.SYS (avast! TDI Filter Driver/ALWIL Software) ---- Disk sectors - GMER 1.0.15 ---- Disk \Device\Harddisk0\DR0 sector 61: copy of MBR Disk \Device\Harddisk0\DR0 sector 62: copy of MBR ---- EOF - GMER 1.0.15 ----
  3. Bonjour, voici le nouveau rapport: --------------------\\ Lop S&D 4.2.5-0 XP/Vista Microsoft® Windows Vista™ Édition Familiale Premium ( v6.0.6002 ) Service Pack 2 X86-based PC ( Multiprocessor Free : Intel® Core2 Duo CPU T8100 @ 2.10GHz ) BIOS : PhoenixBIOS 4.0 Release 6.1 USER : utilisateur ( Administrator ) BOOT : Normal boot Antivirus : avast! antivirus 4.8.1335 [VPS 090228-0] 4.8.1335 (Activated) C:\ (Local Disk) - NTFS - Total:117 Go (Free:11 Go) E:\ (Local Disk) - NTFS - Total:113 Go (Free:108 Go) F:\ (CD or DVD) "C:\Lop SD" ( MAJ : 19-12-2008|23:40 ) Option : [4] ( 23/11/2009|20:11 ) [ UAC => 1 ] \\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ Lop Script C:\ProgramData\great barb C:\Users\All Users\great barb \\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ SUPPRESSION Supprime! - C:\ProgramData\great barb ... C:\Users\All Users\great barb -> n'existe pas ! Supprime! - C:\Users\UTILIS~1\AppData\Roaming\MICROS~1\Windows\Cookies\utilisateur@advertstream[2].txt Supprime! - C:\Users\UTILIS~1\AppData\Roaming\MICROS~1\Windows\Cookies\utilisateur@d2.advertserve[1].txt Supprime! - C:\Users\UTILIS~1\AppData\Roaming\MICROS~1\Windows\Cookies\utilisateur@adultfriendfinder[1].txt \\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ --------------------\\ Listing des dossiers dans Local [17/05/2008|13:37] C:\Users\UTILIS~1\AppData\Local\Adobe [17/05/2008|11:16] C:\Users\UTILIS~1\AppData\Local\Application Data [17/05/2008|11:20] C:\Users\UTILIS~1\AppData\Local\ATI [04/09/2009|12:56] C:\Users\UTILIS~1\AppData\Local\d3d9caps.dat [23/11/2009|19:56] C:\Users\UTILIS~1\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [19/05/2009|20:40] C:\Users\UTILIS~1\AppData\Local\eMule [25/07/2009|02:10] C:\Users\UTILIS~1\AppData\Local\GDIPFONTCACHEV1.DAT [15/10/2009|21:56] C:\Users\UTILIS~1\AppData\Local\Google [17/05/2008|11:16] C:\Users\UTILIS~1\AppData\Local\Historique [18/11/2009|03:19] C:\Users\UTILIS~1\AppData\Local\IconCache.db [03/08/2008|18:48] C:\Users\UTILIS~1\AppData\Local\JollyBear [21/05/2008|18:01] C:\Users\UTILIS~1\AppData\Local\Lphant [14/11/2009|21:08] C:\Users\UTILIS~1\AppData\Local\Microsoft [06/11/2009|14:20] C:\Users\UTILIS~1\AppData\Local\Microsoft Games [07/11/2008|11:36] C:\Users\UTILIS~1\AppData\Local\Microsoft Help [21/09/2008|20:24] C:\Users\UTILIS~1\AppData\Local\Seven Zip [23/11/2009|20:11] C:\Users\UTILIS~1\AppData\Local\Temp [17/05/2008|11:16] C:\Users\UTILIS~1\AppData\Local\Temporary Internet Files [17/05/2008|11:20] C:\Users\UTILIS~1\AppData\Local\Toshiba [17/05/2008|13:37] C:\Users\UTILIS~1\AppData\Local\VirtualStore [08/02/2009|11:48] C:\Users\UTILIS~1\AppData\Local\Zylom Games --------------------\\ Tâches planifiées dans C:\Windows\tasks [23/11/2009 05:16][--ah-----] C:\Windows\tasks\User_Feed_Synchronization-{9972FA03-8046-448B-BEF5-D28E3ACDB978}.job [18/11/2009 03:21][--ah-----] C:\Windows\tasks\SA.DAT [18/11/2009 03:19][--a------] C:\Windows\tasks\SCHEDLGU.TXT --------------------\\ Listing des dossiers dans C:\ProgramData [10/01/2009|20:04] C:\ProgramData\Adobe [02/11/2006|14:02] C:\ProgramData\Application Data [17/05/2008|11:20] C:\ProgramData\ATI [31/05/2008|19:51] C:\ProgramData\Azureus [17/05/2008|11:13] C:\ProgramData\Bureau [02/11/2006|14:02] C:\ProgramData\Desktop [02/11/2006|14:02] C:\ProgramData\Documents [19/05/2009|20:40] C:\ProgramData\eMule [27/07/2008|21:36] C:\ProgramData\ezsidmv.dat [17/05/2008|11:13] C:\ProgramData\Favoris [02/11/2006|14:02] C:\ProgramData\Favorites [19/10/2009|22:25] C:\ProgramData\Fugazo [15/10/2009|21:56] C:\ProgramData\Google [15/07/2008|19:08] C:\ProgramData\Hewlett-Packard [16/07/2008|16:24] C:\ProgramData\HP [16/11/2008|23:11] C:\ProgramData\HP Product Assistant [15/07/2008|19:13] C:\ProgramData\HPSSUPPLY [20/06/2009|07:43] C:\ProgramData\hpzinstall.log [03/08/2008|18:48] C:\ProgramData\JollyBear [11/11/2009|12:20] C:\ProgramData\Malwarebytes [04/09/2008|17:21] C:\ProgramData\McAfee [17/05/2008|11:13] C:\ProgramData\Menu D‚marrer [26/05/2008|18:30] C:\ProgramData\Messenger Plus! [20/03/2009|22:42] C:\ProgramData\Microsoft [13/11/2009|03:03] C:\ProgramData\Microsoft Help [17/05/2008|11:13] C:\ProgramData\ModŠles [26/10/2009|12:29] C:\ProgramData\Nero [04/10/2009|20:29] C:\ProgramData\Office Genuine Advantage [08/02/2009|11:55] C:\ProgramData\Skype [25/10/2009|15:02] C:\ProgramData\Spybot - Search & Destroy [02/11/2006|14:02] C:\ProgramData\Start Menu [14/06/2009|11:41] C:\ProgramData\Studio-Scrap2 [02/11/2006|14:02] C:\ProgramData\Templates [17/05/2008|10:11] C:\ProgramData\Toshiba [17/05/2008|11:17] C:\ProgramData\ToshibaEurope [18/02/2008|16:08] C:\ProgramData\Ulead Systems [15/07/2008|19:18] C:\ProgramData\WEBREG [17/05/2008|14:01] C:\ProgramData\WLInstaller --------------------\\ Listing des dossiers dans C:\Program Files [10/01/2009|20:04] C:\Program Files\Adobe [04/09/2008|19:41] C:\Program Files\Alwil Software [17/05/2008|10:03] C:\Program Files\ATI [17/05/2008|10:04] C:\Program Files\ATI Technologies [26/03/2009|19:10] C:\Program Files\Azureus [17/05/2008|10:08] C:\Program Files\Camera Assistant Software for Toshiba [25/10/2009|14:44] C:\Program Files\CCleaner [19/11/2009|20:59] C:\Program Files\Common Files [17/05/2008|10:01] C:\Program Files\CONEXANT [04/12/2008|18:25] C:\Program Files\DivX [19/05/2009|20:39] C:\Program Files\eMule [22/11/2009|11:36] C:\Program Files\ESET [17/05/2008|11:13] C:\Program Files\Fichiers communs [C:\Program Files\Common Files] [29/10/2009|03:19] C:\Program Files\Google [01/09/2008|15:14] C:\Program Files\Hewlett-Packard [15/07/2008|19:16] C:\Program Files\HP [18/02/2008|16:15] C:\Program Files\IDM [08/02/2009|11:54] C:\Program Files\InstallShield Installation Information [17/05/2008|10:04] C:\Program Files\Intel [29/10/2009|03:17] C:\Program Files\Internet Explorer [18/02/2008|16:09] C:\Program Files\InterVideo [04/10/2009|11:21] C:\Program Files\Java [11/06/2009|23:39] C:\Program Files\JRE [25/08/2009|09:01] C:\Program Files\LimeWire [21/05/2008|12:07] C:\Program Files\Lphant [11/11/2009|12:20] C:\Program Files\Malwarebytes' Anti-Malware [18/02/2008|15:37] C:\Program Files\Marvell [31/10/2009|22:27] C:\Program Files\Messenger Plus! Live [20/03/2009|22:45] C:\Program Files\Microsoft [02/11/2006|13:37] C:\Program Files\Microsoft Games [21/09/2008|20:47] C:\Program Files\Microsoft Office [04/10/2009|11:18] C:\Program Files\Microsoft Office Outlook Connector [11/09/2009|02:10] C:\Program Files\Microsoft Silverlight [20/03/2009|22:37] C:\Program Files\Microsoft SQL Server Compact Edition [20/03/2009|22:42] C:\Program Files\Microsoft Sync Framework [21/09/2008|20:46] C:\Program Files\Microsoft Visual Studio [21/09/2008|20:40] C:\Program Files\Microsoft Visual Studio 8 [12/06/2009|02:09] C:\Program Files\Microsoft Works [21/09/2008|20:45] C:\Program Files\Microsoft.NET [29/09/2009|22:38] C:\Program Files\Movie Maker [21/09/2008|20:47] C:\Program Files\MSBuild [18/02/2008|15:17] C:\Program Files\MSXML 4.0 [26/10/2009|12:29] C:\Program Files\Nero [18/02/2008|15:44] C:\Program Files\O2Micro Flash Memory Card Driver [11/06/2009|23:39] C:\Program Files\OpenOffice.org 3 [19/11/2009|21:11] C:\Program Files\PhotoFiltre Studio [17/05/2008|14:06] C:\Program Files\Picasa2 [02/11/2006|13:37] C:\Program Files\Reference Assemblies [03/06/2008|21:07] C:\Program Files\RM-X Player V5.2 [17/09/2009|12:40] C:\Program Files\SGPSA [15/10/2009|21:18] C:\Program Files\Spybot - Search & Destroy [14/06/2009|10:46] C:\Program Files\StudioScrap2-Decouverte [17/05/2008|10:04] C:\Program Files\Synaptics [17/05/2008|10:12] C:\Program Files\Toshiba [14/06/2009|10:47] C:\Program Files\Tracker Software [17/11/2009|21:36] C:\Program Files\trend micro [18/02/2008|16:05] C:\Program Files\Ulead Systems [02/11/2006|14:01] C:\Program Files\Uninstall Information [25/05/2008|20:43] C:\Program Files\VideoLAN [29/09/2009|22:38] C:\Program Files\Windows Calendar [29/09/2009|22:38] C:\Program Files\Windows Collaboration [29/09/2009|22:38] C:\Program Files\Windows Defender [29/09/2009|22:38] C:\Program Files\Windows Journal [04/10/2009|11:17] C:\Program Files\Windows Live [20/03/2009|22:31] C:\Program Files\Windows Live SkyDrive [13/11/2009|03:19] C:\Program Files\Windows Mail [18/02/2008|16:08] C:\Program Files\Windows Media Components [29/10/2009|03:17] C:\Program Files\Windows Media Player [17/05/2008|11:13] C:\Program Files\Windows NT [29/09/2009|22:38] C:\Program Files\Windows Photo Gallery [18/11/2009|03:19] C:\Program Files\Windows Portable Devices [29/09/2009|22:38] C:\Program Files\Windows Sidebar [19/05/2008|18:22] C:\Program Files\WinRAR [25/10/2009|14:51] C:\Program Files\Yahoo! --------------------\\ Listing des dossiers dans C:\Program Files\Common Files [10/01/2009|20:05] C:\Program Files\Common Files\Adobe [21/09/2008|20:46] C:\Program Files\Common Files\DESIGNER [15/07/2008|19:12] C:\Program Files\Common Files\Hewlett-Packard [15/07/2008|19:16] C:\Program Files\Common Files\HP [18/02/2008|16:09] C:\Program Files\Common Files\InstallShield [18/02/2008|15:21] C:\Program Files\Common Files\Java [24/07/2009|06:23] C:\Program Files\Common Files\microsoft shared [26/10/2009|12:30] C:\Program Files\Common Files\Nero [04/12/2008|18:25] C:\Program Files\Common Files\PX Storage Engine [02/11/2006|12:18] C:\Program Files\Common Files\Services [02/11/2006|12:18] C:\Program Files\Common Files\SpeechEngines [04/10/2009|11:18] C:\Program Files\Common Files\System [17/05/2008|10:11] C:\Program Files\Common Files\Toshiba Shared [18/02/2008|16:09] C:\Program Files\Common Files\Ulead Systems [20/03/2009|18:54] C:\Program Files\Common Files\Windows Live [17/05/2008|14:27] C:\Program Files\Common Files\WindowsLiveInstaller --------------------\\ Process ( 75 Processes ) ... OK ! --------------------\\ Recherche avec S_Lop Aucun fichier / dossier Lop trouvé ! --------------------\\ Recherche de Fichiers / Dossiers Lop Aucun fichier / dossier Lop trouvé ! --------------------\\ Verification du Registre ..... OK ! --------------------\\ Verification du fichier Hosts Fichier Hosts PROPRE --------------------\\ Recherche de fichiers avec Catchme catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2009-11-23 20:12:35 Windows 6.0.6002 Service Pack 2 NTFS scanning hidden processes ... scanning hidden files ... scan completed successfully hidden processes: 0 hidden files: 2 --------------------\\ Recherche d'autres infections --------------------\\ Cracks & Keygens .. C:\Users\UTILIS~1\AppData\Roaming\Microsoft\Windows\Recent\Crack.lnk C:\PROGRA~2\Fugazo\Cooking Academy\cached\sounds\eggcrack.wav [F:63][D:9]-> C:\Users\UTILIS~1\AppData\Local\Temp [F:849][D:1]-> C:\Users\UTILIS~1\AppData\Roaming\MICROS~1\Windows\Cookies [F:2652][D:9]-> C:\Users\UTILIS~1\AppData\Local\MICROS~1\Windows\TEMPOR~1\content.IE5 [F:13][D:1]-> C:\$Recycle.Bin 1 - "C:\Lop SD\LopR_1.txt" - 13/11/2009|16:42 - Option : [1] 2 - "C:\Lop SD\LopR_2.txt" - 13/11/2009|16:47 - Option : [1] 3 - "C:\Lop SD\LopR_3.txt" - 13/11/2009|16:55 - Option : [2] 4 - "C:\Lop SD\LopR_4.txt" - 14/11/2009| 9:03 - Option : [2] 5 - "C:\Lop SD\LopR_5.txt" - 14/11/2009|20:15 - Option : [2] 6 - "C:\Lop SD\LopR_6.txt" - 23/11/2009|20:15 - Option : [4] --------------------\\ Fin du rapport a 20:15:57 [ UAC => 1 ]
  4. Bonjour voila le rapport ESET: ESETSmartInstaller@High as CAB hook log: OnlineScanner.ocx - registred OK # version=7 # iexplore.exe=8.00.6001.18702 (longhorn_ie8_rtm(wmbla).090308-0339) # OnlineScanner.ocx=1.0.0.6211 # api_version=3.0.2 # EOSSerial=f5972c414bb07a48aea06d35486260cc # end=finished # remove_checked=false # archives_checked=false # unwanted_checked=true # unsafe_checked=false # antistealth_checked=true # utc_time=2009-11-22 11:23:05 # local_time=2009-11-22 12:23:05 (+0100, Paris, Madrid) # country="France" # lang=1033 # osver=6.0.6002 NT Service Pack 2 # compatibility_mode=512 16777215 100 0 399936 399936 0 0 # compatibility_mode=769 16775165 100 98 60094 195174865 52933 0 # compatibility_mode=5892 16776573 100 100 0 96419239 0 0 # compatibility_mode=8192 67108863 100 0 3921 3921 0 0 # scanned=138395 # found=8 # cleaned=0 # scan_time=2474 C:\ProgramData\great barb\BASH 1 TEAM MODE.exe a variant of Win32/TrojanDownloader.Swizzor.NCV trojan 00000000000000000000000000000000 I C:\ProgramData\great barb\fubodazt.exe probably a variant of Win32/TrojanDownloader.Swizzor.NBD trojan 00000000000000000000000000000000 I C:\ProgramData\great barb\puieyzgx.exe a variant of Win32/TrojanDownloader.Swizzor.NBZ trojan 00000000000000000000000000000000 I C:\ProgramData\great barb\uzgbcwne.exe a variant of Win32/TrojanDownloader.Swizzor.NCR trojan 00000000000000000000000000000000 I C:\Users\All Users\great barb\BASH 1 TEAM MODE.exe a variant of Win32/TrojanDownloader.Swizzor.NCV trojan 00000000000000000000000000000000 I C:\Users\All Users\great barb\fubodazt.exe probably a variant of Win32/TrojanDownloader.Swizzor.NBD trojan 00000000000000000000000000000000 I C:\Users\All Users\great barb\puieyzgx.exe a variant of Win32/TrojanDownloader.Swizzor.NBZ trojan 00000000000000000000000000000000 I C:\Users\All Users\great barb\uzgbcwne.exe a variant of Win32/TrojanDownloader.Swizzor.NCR trojan 00000000000000000000000000000000 I
  5. Bonjour voici le rapport gmer: GMER 1.0.15.15227 - http://www.gmer.net Rootkit scan 2009-11-20 21:20:29 Windows 6.0.6002 Service Pack 2 Running: gmer.exe; Driver: C:\Users\UTILIS~1\AppData\Local\Temp\kwnoyuob.sys ---- User code sections - GMER 1.0.15 ---- .text C:\Program Files\Camera Assistant Software for Toshiba\CEC_MAIN.exe[1504] ntdll.dll!DbgBreakPoint 77D48B2E 1 Byte [90] ---- User IAT/EAT - GMER 1.0.15 ---- IAT C:\Windows\system32\services.exe[664] @ C:\Windows\system32\services.exe [ADVAPI32.dll!CreateProcessAsUserW] 00680002 IAT C:\Windows\system32\services.exe[664] @ C:\Windows\system32\services.exe [KERNEL32.dll!CreateProcessW] 00680000 IAT C:\Windows\Explorer.EXE[3612] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdiplusShutdown] [740D7817] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396 ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation) IAT C:\Windows\Explorer.EXE[3612] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipCloneImage] [7412A86D] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396 ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation) IAT C:\Windows\Explorer.EXE[3612] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipDrawImageRectI] [740DBB22] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396 ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation) IAT C:\Windows\Explorer.EXE[3612] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipSetInterpolationMode] [740CF695] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396 ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation) IAT C:\Windows\Explorer.EXE[3612] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdiplusStartup] [740D75E9] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396 ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation) IAT C:\Windows\Explorer.EXE[3612] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipCreateFromHDC] [740CE7CA] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396 ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation) IAT C:\Windows\Explorer.EXE[3612] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipCreateBitmapFromStreamICM] [74108395] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396 ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation) IAT C:\Windows\Explorer.EXE[3612] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipCreateBitmapFromStream] [740DDA60] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396 ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation) IAT C:\Windows\Explorer.EXE[3612] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipGetImageHeight] [740CFFFA] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396 ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation) IAT C:\Windows\Explorer.EXE[3612] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipGetImageWidth] [740CFF61] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396 ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation) IAT C:\Windows\Explorer.EXE[3612] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipDisposeImage] [740C71CF] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396 ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation) IAT C:\Windows\Explorer.EXE[3612] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipLoadImageFromFileICM] [7415CAE2] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396 ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation) IAT C:\Windows\Explorer.EXE[3612] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipLoadImageFromFile] [740FC8D8] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396 ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation) IAT C:\Windows\Explorer.EXE[3612] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipDeleteGraphics] [740CD968] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396 ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation) IAT C:\Windows\Explorer.EXE[3612] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipFree] [740C6853] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396 ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation) IAT C:\Windows\Explorer.EXE[3612] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipAlloc] [740C687E] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396 ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation) IAT C:\Windows\Explorer.EXE[3612] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipSetCompositingMode] [740D2AD1] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396 ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation) ---- Devices - GMER 1.0.15 ---- AttachedDevice \Driver\kbdclass \Device\KeyboardClass0 Wdf01000.sys (WDF dynamique/Microsoft Corporation) AttachedDevice \Driver\kbdclass \Device\KeyboardClass1 Wdf01000.sys (WDF dynamique/Microsoft Corporation) AttachedDevice \Driver\tdx \Device\Tcp aswTdi.SYS (avast! TDI Filter Driver/ALWIL Software) AttachedDevice \Driver\tdx \Device\Udp aswTdi.SYS (avast! TDI Filter Driver/ALWIL Software) ---- Disk sectors - GMER 1.0.15 ---- Disk \Device\Harddisk0\DR0 sector 61: copy of MBR Disk \Device\Harddisk0\DR0 sector 62: copy of MBR ---- EOF - GMER 1.0.15 ----
  6. Bonjour! Le problème n'est pas encore résolu en effet mon adresse mail a encore envoyé des mails de pubs à toute ma liste de contacts depuis le dernier rapport posté comme tu peux le voir sur cet imprimé écran...
  7. Voila le rapport RSIT: Logfile of random's system information tool 1.06 (written by random/random) Run by utilisateur at 2009-11-17 21:36:12 Microsoft® Windows Vista™ Édition Familiale Premium Service Pack 2 System drive C: has 12 GB (10%) free of 120 GB Total RAM: 2046 MB (40% free) Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 21:36:42, on 17/11/2009 Platform: Windows Vista SP2 (WinNT 6.00.1906) MSIE: Internet Explorer v8.00 (8.00.6001.18828) Boot mode: Normal Running processes: C:\Windows\system32\Dwm.exe C:\Windows\Explorer.EXE C:\Windows\system32\taskeng.exe C:\Program Files\Windows Defender\MSASCui.exe C:\Program Files\Toshiba\ConfigFree\NDSTray.exe C:\Program Files\Toshiba\Toshiba Online Product Information\TOPI.exe C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE C:\Program Files\Synaptics\SynTP\SynTPEnh.exe C:\Program Files\Camera Assistant Software for Toshiba\traybar.exe C:\Program Files\Toshiba\HDMICtrlMan\HDMICtrlMan.exe C:\Program Files\Toshiba\Power Saver\TPwrMain.exe C:\Program Files\Toshiba\SmoothView\SmoothView.exe C:\Program Files\Toshiba\FlashCards\TCrdMain.exe C:\Program Files\HP\HP Software Update\hpwuSchd2.exe C:\Program Files\Alwil Software\Avast4\ashDisp.exe C:\Program Files\Camera Assistant Software for Toshiba\CEC_MAIN.exe C:\Program Files\Java\jre6\bin\jusched.exe C:\Program Files\Windows Sidebar\sidebar.exe C:\Program Files\Toshiba\TOSCDSPD\TOSCDSPD.exe C:\Program Files\Windows Live\Messenger\msnmsgr.exe C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe C:\Program Files\Toshiba\ConfigFree\CFSwMgr.exe C:\Program Files\Windows Live\Contacts\wlcomm.exe C:\Program Files\Synaptics\SynTP\SynTPHelper.exe C:\Program Files\eMule\emule.exe C:\Windows\system32\conime.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Windows\system32\wuauclt.exe C:\Program Files\Common Files\Adobe\Updater5\AdobeUpdater.exe C:\Program Files\Microsoft Games\SpiderSolitaire\SpiderSolitaire.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Windows\system32\SearchFilterHost.exe C:\Users\utilisateur\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\QPK8AD8F\RSIT[1].exe C:\Program Files\trend micro\utilisateur.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.fr R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/ig?hl=fr R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.fr R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = R3 - URLSearchHook: (no name) - {91C18ED5-5E1C-4AE5-A148-A861DE8C8E16} - (no file) O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide O4 - HKLM\..\Run: [NDSTray.exe] NDSTray.exe O4 - HKLM\..\Run: [topi] C:\Program Files\TOSHIBA\Toshiba Online Product Information\topi.exe -startup O4 - HKLM\..\Run: [startCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" O4 - HKLM\..\Run: [synTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe O4 - HKLM\..\Run: [Camera Assistant Software] "C:\Program Files\Camera Assistant Software for Toshiba\traybar.exe" /start O4 - HKLM\..\Run: [HDMICtrlMan] C:\Program Files\TOSHIBA\HDMICtrlMan\HDMICtrlMan.exe O4 - HKLM\..\Run: [TPwrMain] %ProgramFiles%\TOSHIBA\Power Saver\TPwrMain.EXE O4 - HKLM\..\Run: [HSON] %ProgramFiles%\TOSHIBA\TBS\HSON.exe O4 - HKLM\..\Run: [smoothView] %ProgramFiles%\Toshiba\SmoothView\SmoothView.exe O4 - HKLM\..\Run: [00TCrdMain] %ProgramFiles%\TOSHIBA\FlashCards\TCrdMain.exe O4 - HKLM\..\Run: [Toshiba Registration] C:\Program Files\Toshiba\Registration\ToshibaRegistration.exe O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe" O4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe O4 - HKCU\..\Run: [TOSCDSPD] TOSCDSPD.EXE O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL') O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL') O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU') O4 - .DEFAULT User Startup: TRDCReminder.lnk = C:\Program Files\Toshiba\TRDCReminder\TRDCReminder.exe (User 'Default user') O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000 O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: eBay - Achetez, Vendez - {76577871-04EC-495E-A12B-91F7C3600AFA} - http://rover.ebay.com/rover/1/709-44555-9400-3/4 (file missing) O9 - Extra button: Amazon.fr - {8A918C1D-E123-4E36-B562-5C1519E434CE} - http://www.amazon.fr/exec/obidos/redirect-...1&site=home (file missing) O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll O9 - Extra 'Tools' menuitem: Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll O13 - Gopher Prefix: O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe O23 - Service: Boonty Games - BOONTY - C:\Program Files\Common Files\BOONTY Shared\Service\Boonty.exe O23 - Service: ConfigFree Service - TOSHIBA CORPORATION - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe O23 - Service: O2Micro Flash Memory Card Service (o2flash) - O2Micro International - C:\Program Files\O2Micro Flash Memory Card Driver\o2flash.exe O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe O23 - Service: TOSHIBA Navi Support Service (TNaviSrv) - TOSHIBA Corporation - C:\Program Files\Toshiba\TOSHIBA DVD PLAYER\TNaviSrv.exe O23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv) - TOSHIBA Corporation - C:\Windows\system32\TODDSrv.exe O23 - Service: TOSHIBA Power Saver (TosCoSrv) - TOSHIBA Corporation - C:\Program Files\Toshiba\Power Saver\TosCoSrv.exe O23 - Service: TOSHIBA Bluetooth Service - Unknown owner - c:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe (file missing) O23 - Service: TOSHIBA SMART Log Service - TOSHIBA Corporation - C:\Program Files\TOSHIBA\SMARTLogService\TosIPCSrv.exe O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe -- End of file - 9667 bytes ======Scheduled tasks folder====== C:\Windows\tasks\User_Feed_Synchronization-{9972FA03-8046-448B-BEF5-D28E3ACDB978}.job ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}] Aide pour le lien d'Adobe PDF Reader - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}] Spybot-S&D IE Protection - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll [2009-01-26 1879896] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}] Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2009-05-19 137600] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}] Programme d'aide de l'Assistant de connexion Windows Live - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-02-17 408440] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}] Java Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-07-25 41760] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}] Windows Live Toolbar Helper - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar] {21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-21 1008184] "NDSTray.exe"=NDSTray.exe [] "topi"=C:\Program Files\TOSHIBA\Toshiba Online Product Information\topi.exe [2007-07-10 581632] "StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2006-11-10 90112] "SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2007-11-29 1029416] "Camera Assistant Software"=C:\Program Files\Camera Assistant Software for Toshiba\traybar.exe [2007-10-25 413696] "HDMICtrlMan"=C:\Program Files\TOSHIBA\HDMICtrlMan\HDMICtrlMan.exe [2008-01-25 716800] "TPwrMain"=C:\Program Files\TOSHIBA\Power Saver\TPwrMain.EXE [2008-01-17 431456] "HSON"=C:\Program Files\TOSHIBA\TBS\HSON.exe [2007-10-31 54608] "SmoothView"=C:\Program Files\Toshiba\SmoothView\SmoothView.exe [2008-01-25 509816] "00TCrdMain"=C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe [2008-01-22 712704] "Toshiba Registration"=C:\Program Files\Toshiba\Registration\ToshibaRegistration.exe [2007-05-04 571024] "HP Software Update"=C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [2006-12-10 49152] "avast!"=C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe [2009-02-05 81000] "Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [2008-10-15 39792] "SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2009-07-25 149280] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-04-11 1233920] "TOSCDSPD"=TOSCDSPD.EXE [] "MsnMsgr"=C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe [2009-07-26 3883856] C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup SA.DAT SCHEDLGU.TXT User_Feed_Synchronization-{9972FA03-8046-448B-BEF5-D28E3ACDB978}.job [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui] igfxdev.dll [] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "EnableLUA"=0 "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "shutdownwithoutlogon"=1 "undockwithoutlogon"=1 "FilterAdministratorToken"=1 "EnableUIADesktopToggle"=0 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "BindDirectlyToPropertySetStorage"= [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\G] shell\AutoRun\command - G:\LaunchU3.exe -a [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{874a680f-3e00-11de-9eab-001e682e128e}] shell\AutoRun\command - G:\LaunchU3.exe -a ======File associations====== .js - edit - C:\Windows\System32\Notepad.exe %1 .js - open - C:\Windows\System32\WScript.exe "%1" %* ======List of files/folders created in the last 1 months====== 2009-11-16 15:07:42 ----A---- C:\Windows\ToDisc.INI 2009-11-13 16:39:42 ----A---- C:\lopR.txt 2009-11-13 16:38:55 ----D---- C:\Lop SD 2009-11-12 18:50:24 ----D---- C:\Program Files\trend micro 2009-11-12 18:50:23 ----D---- C:\rsit 2009-11-12 18:48:25 ----A---- C:\Windows\system32\WSDApi.dll 2009-11-11 12:20:38 ----D---- C:\Users\utilisateur\AppData\Roaming\Malwarebytes 2009-11-11 12:20:30 ----D---- C:\ProgramData\Malwarebytes 2009-11-11 12:20:30 ----D---- C:\Program Files\Malwarebytes' Anti-Malware 2009-11-04 19:31:57 ----A---- C:\Windows\system32\mshtml.dll 2009-10-28 13:07:01 ----A---- C:\Windows\system32\wmp.dll 2009-10-28 13:06:58 ----A---- C:\Windows\system32\unregmp2.exe 2009-10-28 13:06:53 ----A---- C:\Windows\system32\wmploc.DLL 2009-10-26 12:31:23 ----D---- C:\Users\utilisateur\AppData\Roaming\Nero 2009-10-26 12:29:10 ----D---- C:\Program Files\Nero 2009-10-26 12:28:53 ----D---- C:\ProgramData\Nero 2009-10-26 12:28:52 ----D---- C:\Program Files\Common Files\Nero 2009-10-25 14:44:13 ----D---- C:\Users\utilisateur\AppData\Roaming\Yahoo! 2009-10-25 14:44:11 ----D---- C:\Program Files\Yahoo! 2009-10-25 14:44:09 ----D---- C:\Program Files\CCleaner 2009-10-19 22:25:16 ----D---- C:\ProgramData\Fugazo 2009-10-19 22:24:48 ----D---- C:\ProgramData\BOONTY 2009-10-19 22:24:43 ----D---- C:\Program Files\Common Files\BOONTY Shared 2009-10-19 22:24:22 ----D---- C:\Program Files\BoontyGames 2009-10-19 21:53:45 ----D---- C:\Boonty ======List of files/folders modified in the last 1 months====== 2009-11-17 21:36:25 ----D---- C:\Windows\Prefetch 2009-11-17 21:36:17 ----D---- C:\Windows\Temp 2009-11-17 16:02:02 ----SHD---- C:\System Volume Information 2009-11-16 15:07:42 ----D---- C:\Windows 2009-11-16 10:57:33 ----D---- C:\Windows\inf 2009-11-16 10:57:33 ----AD---- C:\Windows\System32 2009-11-16 10:57:33 ----A---- C:\Windows\system32\PerfStringBackup.INI 2009-11-14 20:12:01 ----RD---- C:\Program Files 2009-11-13 16:55:22 ----HD---- C:\ProgramData 2009-11-13 16:44:08 ----D---- C:\Windows\system32\Tasks 2009-11-13 16:28:37 ----D---- C:\Windows\winsxs 2009-11-13 03:22:24 ----D---- C:\Windows\system32\catroot 2009-11-13 03:19:35 ----D---- C:\Program Files\Windows Mail 2009-11-13 03:03:50 ----SHD---- C:\Windows\Installer 2009-11-13 03:03:50 ----D---- C:\ProgramData\Microsoft Help 2009-11-13 03:01:34 ----D---- C:\Windows\Debug 2009-11-13 03:00:30 ----D---- C:\Windows\system32\catroot2 2009-11-11 12:20:32 ----D---- C:\Windows\system32\drivers 2009-11-05 18:36:21 ----A---- C:\Windows\system32\mrt.exe 2009-11-02 20:42:06 ----N---- C:\Windows\system32\MpSigStub.exe 2009-10-31 22:27:31 ----D---- C:\Program Files\Messenger Plus! Live 2009-10-29 03:35:56 ----D---- C:\Windows\rescache 2009-10-29 03:19:07 ----D---- C:\Program Files\Google 2009-10-29 03:17:34 ----D---- C:\Windows\system32\fr-FR 2009-10-29 03:17:34 ----D---- C:\Program Files\Windows Media Player 2009-10-29 03:17:34 ----D---- C:\Program Files\Internet Explorer 2009-10-26 12:28:52 ----D---- C:\Program Files\Common Files 2009-10-25 15:02:34 ----D---- C:\ProgramData\Spybot - Search & Destroy 2009-10-25 14:56:13 ----D---- C:\Users\utilisateur\AppData\Roaming\Azureus ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2009-02-05 23152] R1 aswSP;avast! Self Protection; C:\Windows\system32\drivers\aswSP.sys [2009-02-05 114768] R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2009-02-05 51376] R2 aswFsBlk;aswFsBlk; C:\Windows\system32\DRIVERS\aswFsBlk.sys [2009-02-05 20560] R2 aswMonFlt;aswMonFlt; C:\Windows\system32\DRIVERS\aswMonFlt.sys [2009-02-05 51792] R2 mdmxsdk;mdmxsdk; C:\Windows\system32\DRIVERS\mdmxsdk.sys [2006-06-18 12672] R2 XAudio;XAudio; C:\Windows\system32\DRIVERS\xaudio.sys [2007-10-17 8704] R3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2008-01-30 3483648] R3 CmBatt;Pilote pour Batterie à méthode de contrôle ACPI Microsoft; C:\Windows\system32\DRIVERS\CmBatt.sys [2008-01-21 14208] R3 CnxtHdAudAddService;Microsoft UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\CHDART.sys [2008-02-01 187904] R3 HdAudAddService;Pilote de fonction UAA 1.1 Microsoft pour le service High Definition Audio; C:\Windows\system32\drivers\HdAudio.sys [2009-04-11 236544] R3 HSF_DPV;HSF_DPV; C:\Windows\system32\DRIVERS\HSX_DPV.sys [2007-11-01 985600] R3 HSXHWAZL;HSXHWAZL; C:\Windows\system32\DRIVERS\HSXHWAZL.sys [2007-11-01 208896] R3 NETw4v32;Pilote de carte Intel® Wireless WiFi Link pour Windows Vista 32 bits; C:\Windows\system32\DRIVERS\NETw4v32.sys [2007-09-26 2251776] R3 O2MDRDR;O2MDRDR; C:\Windows\system32\DRIVERS\o2media.sys [2008-01-15 48472] R3 QIOMem;Generic IO & Memory Access; C:\Windows\system32\DRIVERS\QIOMem.sys [2007-04-09 8192] R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2009-04-11 89088] R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2007-11-29 196144] R3 tdcmdpst;TOSHIBA Writing Engine Filter Driver; C:\Windows\system32\DRIVERS\tdcmdpst.sys [2006-10-18 16128] R3 usbvideo;Chicony USB 2.0 Camera; C:\Windows\System32\Drivers\usbvideo.sys [2008-01-21 134016] R3 UVCFTR;UVCFTR; C:\Windows\System32\Drivers\UVCFTR_S.SYS [2007-12-17 18432] R3 winachsf;winachsf; C:\Windows\system32\DRIVERS\HSX_CNXT.sys [2007-11-01 661504] R3 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\DRIVERS\wmiacpi.sys [2008-01-21 11264] R3 yukonwlh;NDIS6.0 Miniport Driver for Marvell Yukon Ethernet Controller; C:\Windows\system32\DRIVERS\yk60x86.sys [2007-12-06 298496] S3 athr;Pilote de périphérique LAN sans fil extensible Atheros; C:\Windows\system32\DRIVERS\athr.sys [2006-11-02 467456] S3 Dot4;Pilote MS IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4.sys [2008-01-21 131584] S3 Dot4Print;Pilote de classe Imprimante pour IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4Prt.sys [2008-01-21 16384] S3 dot4usb;MS Dot4USB Filter Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2008-01-21 36864] S3 drmkaud;Filtre de décodeur DRM (Noyau Microsoft); C:\Windows\system32\drivers\drmkaud.sys [2008-01-21 5632] S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2009-08-05 54632] S3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [] S3 IntcHdmiAddService;Intel® High Definition Audio HDMI Service; C:\Windows\system32\drivers\IntcHdmi.sys [] S3 MSKSSRV;Proxy de service de répartition Microsoft; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-21 8192] S3 MSPCLOCK;Proxy d'horloge de répartition Microsoft; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-21 5888] S3 MSPQM;Proxy de gestion de qualité de répartition Microsoft; C:\Windows\system32\drivers\MSPQM.sys [2008-01-21 5504] S3 MSTEE;Convertisseur en T/site-à-site de répartition Microsoft; C:\Windows\system32\drivers\MSTEE.sys [2008-01-21 6016] S3 NETw3v32;Pilote de carte Intel® PRO/sans fil 3945ABG pour Windows Vista 32 bits; C:\Windows\system32\DRIVERS\NETw3v32.sys [2008-01-21 2225664] S3 Tosrfcom;Tosrfcom; C:\Windows\system32\drivers\Tosrfcom.sys [] S3 tosrfec;Bluetooth ACPI; C:\Windows\system32\DRIVERS\tosrfec.sys [2006-10-23 9216] S3 usbscan;Pilote de scanneur USB; C:\Windows\system32\DRIVERS\usbscan.sys [2008-01-21 35328] S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2008-01-21 39936] S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-21 83328] S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2008-01-21 6656] S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-01-21 386616] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 aswUpdSv;avast! iAVS4 Control Service; C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe [2009-02-05 18752] R2 Ati External Event Utility;Ati External Event Utility; C:\Windows\system32\Ati2evxx.exe [2008-01-30 643072] R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast4\ashServ.exe [2009-02-05 138680] R2 ConfigFree Service;ConfigFree Service; C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe [2007-12-25 40960] R2 hpqddsvc;Service HP CUE DeviceDiscovery; C:\Windows\system32\svchost.exe [2008-01-21 21504] R2 Nero BackItUp Scheduler 4.0;Nero BackItUp Scheduler 4.0; C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe [2009-07-20 935208] R2 o2flash;O2Micro Flash Memory Card Service; C:\Program Files\O2Micro Flash Memory Card Driver\o2flash.exe [2007-02-12 65536] R2 SBSDWSCService;SBSD Security Center Service; C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe [2009-01-26 1153368] R2 SeaPort;SeaPort; C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2009-05-19 240512] R2 TNaviSrv;TOSHIBA Navi Support Service; C:\Program Files\Toshiba\TOSHIBA DVD PLAYER\TNaviSrv.exe [2008-01-21 83312] R2 TODDSrv;TOSHIBA Optical Disc Drive Service; C:\Windows\system32\TODDSrv.exe [2007-11-21 129632] R2 TosCoSrv;TOSHIBA Power Saver; C:\Program Files\Toshiba\Power Saver\TosCoSrv.exe [2008-01-17 431456] R2 TOSHIBA SMART Log Service;TOSHIBA SMART Log Service; C:\Program Files\TOSHIBA\SMARTLogService\TosIPCSrv.exe [2007-12-03 126976] R2 UleadBurningHelper;Ulead Burning Helper; C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe [2006-08-23 49152] R2 XAudioService;XAudioService; C:\Windows\system32\DRIVERS\xaudio.exe [2007-10-17 386560] R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe [2009-02-05 254040] R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast4\ashWebSv.exe [2009-02-05 352920] R3 hpqcxs08;hpqcxs08; C:\Windows\system32\svchost.exe [2008-01-21 21504] S2 Net Driver HPZ12;Net Driver HPZ12; C:\Windows\System32\svchost.exe [2008-01-21 21504] S2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2008-01-21 21504] S2 TOSHIBA Bluetooth Service;TOSHIBA Bluetooth Service; c:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe [] S3 Boonty Games;Boonty Games; C:\Program Files\Common Files\BOONTY Shared\Service\Boonty.exe [2009-10-19 69120] S3 fsssvc;Service Windows Live Contrôle parental; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2009-08-05 704864] S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632] S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712] S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184] -----------------EOF----------------- Ps: Encore merci de prendre le temps de m'aider parce que c'est quand même du boulot tout ça!
  8. J'ai bien cherché et aucun fichier LopR_6.txt n'a été créé...Je n'ai que les fichiers LopR_1.txt à LopR_5.txt. ...
  9. petit problème le 1er rapport se s'affiche pas! Une fenêtre à fond bleu s'offre quelques secondes puis se referme... Et juste pour infos: c'est quoi le RSIT? Merci
  10. Voilà c'est fait! Voici le rapport: --------------------\\ Lop S&D 4.2.5-0 XP/Vista Microsoft® Windows Vista™ Édition Familiale Premium ( v6.0.6002 ) Service Pack 2 X86-based PC ( Multiprocessor Free : Intel® Core2 Duo CPU T8100 @ 2.10GHz ) BIOS : PhoenixBIOS 4.0 Release 6.1 USER : utilisateur ( Administrator ) BOOT : Normal boot Antivirus : avast! antivirus 4.8.1335 [VPS 090228-0] 4.8.1335 (Activated) C:\ (Local Disk) - NTFS - Total:117 Go (Free:9 Go) E:\ (Local Disk) - NTFS - Total:113 Go (Free:108 Go) F:\ (CD or DVD) "C:\Lop SD" ( MAJ : 19-12-2008|23:40 ) Option : [2] ( 14/11/2009|20:11 ) [ UAC => 0 ] \\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ SUPPRESSION Supprime! - C:\Program Files\Circle Developement - [ Fichier Hosts ] .. Restaure! \\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ --------------------\\ Listing des dossiers dans Local [17/05/2008|13:37] C:\Users\UTILIS~1\AppData\Local\Adobe [17/05/2008|11:16] C:\Users\UTILIS~1\AppData\Local\Application Data [17/05/2008|11:20] C:\Users\UTILIS~1\AppData\Local\ATI [04/09/2009|12:56] C:\Users\UTILIS~1\AppData\Local\d3d9caps.dat [13/11/2009|22:02] C:\Users\UTILIS~1\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [19/05/2009|20:40] C:\Users\UTILIS~1\AppData\Local\eMule [25/07/2009|02:10] C:\Users\UTILIS~1\AppData\Local\GDIPFONTCACHEV1.DAT [15/10/2009|21:56] C:\Users\UTILIS~1\AppData\Local\Google [17/05/2008|11:16] C:\Users\UTILIS~1\AppData\Local\Historique [14/11/2009|20:08] C:\Users\UTILIS~1\AppData\Local\IconCache.db [03/08/2008|18:48] C:\Users\UTILIS~1\AppData\Local\JollyBear [21/05/2008|18:01] C:\Users\UTILIS~1\AppData\Local\Lphant [14/10/2009|11:28] C:\Users\UTILIS~1\AppData\Local\Microsoft [06/11/2009|14:20] C:\Users\UTILIS~1\AppData\Local\Microsoft Games [07/11/2008|11:36] C:\Users\UTILIS~1\AppData\Local\Microsoft Help [21/09/2008|20:24] C:\Users\UTILIS~1\AppData\Local\Seven Zip [14/11/2009|20:11] C:\Users\UTILIS~1\AppData\Local\Temp [17/05/2008|11:16] C:\Users\UTILIS~1\AppData\Local\Temporary Internet Files [17/05/2008|11:20] C:\Users\UTILIS~1\AppData\Local\Toshiba [17/05/2008|13:37] C:\Users\UTILIS~1\AppData\Local\VirtualStore [08/02/2009|11:48] C:\Users\UTILIS~1\AppData\Local\Zylom Games --------------------\\ Tâches planifiées dans C:\Windows\tasks [14/11/2009 01:21][--ah-----] C:\Windows\tasks\User_Feed_Synchronization-{9972FA03-8046-448B-BEF5-D28E3ACDB978}.job [14/11/2009 20:10][--ah-----] C:\Windows\tasks\SA.DAT [14/11/2009 20:09][--a------] C:\Windows\tasks\SCHEDLGU.TXT --------------------\\ Listing des dossiers dans C:\ProgramData [10/01/2009|20:04] C:\ProgramData\Adobe [02/11/2006|14:02] C:\ProgramData\Application Data [17/05/2008|11:20] C:\ProgramData\ATI [31/05/2008|19:51] C:\ProgramData\Azureus [19/10/2009|22:24] C:\ProgramData\BOONTY [17/05/2008|11:13] C:\ProgramData\Bureau [02/11/2006|14:02] C:\ProgramData\Desktop [02/11/2006|14:02] C:\ProgramData\Documents [19/05/2009|20:40] C:\ProgramData\eMule [27/07/2008|21:36] C:\ProgramData\ezsidmv.dat [17/05/2008|11:13] C:\ProgramData\Favoris [02/11/2006|14:02] C:\ProgramData\Favorites [19/10/2009|22:25] C:\ProgramData\Fugazo [15/10/2009|21:56] C:\ProgramData\Google [11/05/2009|08:23] C:\ProgramData\great barb [15/07/2008|19:08] C:\ProgramData\Hewlett-Packard [16/07/2008|16:24] C:\ProgramData\HP [16/11/2008|23:11] C:\ProgramData\HP Product Assistant [15/07/2008|19:13] C:\ProgramData\HPSSUPPLY [20/06/2009|07:43] C:\ProgramData\hpzinstall.log [03/08/2008|18:48] C:\ProgramData\JollyBear [11/11/2009|12:20] C:\ProgramData\Malwarebytes [04/09/2008|17:21] C:\ProgramData\McAfee [17/05/2008|11:13] C:\ProgramData\Menu D‚marrer [26/05/2008|18:30] C:\ProgramData\Messenger Plus! [20/03/2009|22:42] C:\ProgramData\Microsoft [13/11/2009|03:03] C:\ProgramData\Microsoft Help [17/05/2008|11:13] C:\ProgramData\ModŠles [26/10/2009|12:29] C:\ProgramData\Nero [04/10/2009|20:29] C:\ProgramData\Office Genuine Advantage [08/02/2009|11:55] C:\ProgramData\Skype [25/10/2009|15:02] C:\ProgramData\Spybot - Search & Destroy [02/11/2006|14:02] C:\ProgramData\Start Menu [14/06/2009|11:41] C:\ProgramData\Studio-Scrap2 [02/11/2006|14:02] C:\ProgramData\Templates [17/05/2008|10:11] C:\ProgramData\Toshiba [17/05/2008|11:17] C:\ProgramData\ToshibaEurope [18/02/2008|16:08] C:\ProgramData\Ulead Systems [15/07/2008|19:18] C:\ProgramData\WEBREG [17/05/2008|14:01] C:\ProgramData\WLInstaller --------------------\\ Listing des dossiers dans C:\Program Files [10/01/2009|20:04] C:\Program Files\Adobe [04/09/2008|19:41] C:\Program Files\Alwil Software [17/05/2008|10:03] C:\Program Files\ATI [17/05/2008|10:04] C:\Program Files\ATI Technologies [26/03/2009|19:10] C:\Program Files\Azureus [20/10/2009|17:05] C:\Program Files\BoontyGames [17/05/2008|10:08] C:\Program Files\Camera Assistant Software for Toshiba [25/10/2009|14:44] C:\Program Files\CCleaner [26/10/2009|12:28] C:\Program Files\Common Files [17/05/2008|10:01] C:\Program Files\CONEXANT [04/12/2008|18:25] C:\Program Files\DivX [19/05/2009|20:39] C:\Program Files\eMule [17/05/2008|11:13] C:\Program Files\Fichiers communs [C:\Program Files\Common Files] [29/10/2009|03:19] C:\Program Files\Google [01/09/2008|15:14] C:\Program Files\Hewlett-Packard [15/07/2008|19:16] C:\Program Files\HP [18/02/2008|16:15] C:\Program Files\IDM [08/02/2009|11:54] C:\Program Files\InstallShield Installation Information [17/05/2008|10:04] C:\Program Files\Intel [29/10/2009|03:17] C:\Program Files\Internet Explorer [18/02/2008|16:09] C:\Program Files\InterVideo [04/10/2009|11:21] C:\Program Files\Java [11/06/2009|23:39] C:\Program Files\JRE [25/08/2009|09:01] C:\Program Files\LimeWire [21/05/2008|12:07] C:\Program Files\Lphant [11/11/2009|12:20] C:\Program Files\Malwarebytes' Anti-Malware [18/02/2008|15:37] C:\Program Files\Marvell [31/10/2009|22:27] C:\Program Files\Messenger Plus! Live [20/03/2009|22:45] C:\Program Files\Microsoft [02/11/2006|13:37] C:\Program Files\Microsoft Games [21/09/2008|20:47] C:\Program Files\Microsoft Office [04/10/2009|11:18] C:\Program Files\Microsoft Office Outlook Connector [11/09/2009|02:10] C:\Program Files\Microsoft Silverlight [20/03/2009|22:37] C:\Program Files\Microsoft SQL Server Compact Edition [20/03/2009|22:42] C:\Program Files\Microsoft Sync Framework [21/09/2008|20:46] C:\Program Files\Microsoft Visual Studio [21/09/2008|20:40] C:\Program Files\Microsoft Visual Studio 8 [12/06/2009|02:09] C:\Program Files\Microsoft Works [21/09/2008|20:45] C:\Program Files\Microsoft.NET [29/09/2009|22:38] C:\Program Files\Movie Maker [21/09/2008|20:47] C:\Program Files\MSBuild [18/02/2008|15:17] C:\Program Files\MSXML 4.0 [26/10/2009|12:29] C:\Program Files\Nero [18/02/2008|15:44] C:\Program Files\O2Micro Flash Memory Card Driver [11/06/2009|23:39] C:\Program Files\OpenOffice.org 3 [19/05/2008|18:11] C:\Program Files\PhotoFiltre Studio [17/05/2008|14:06] C:\Program Files\Picasa2 [02/11/2006|13:37] C:\Program Files\Reference Assemblies [03/06/2008|21:07] C:\Program Files\RM-X Player V5.2 [17/09/2009|12:40] C:\Program Files\SGPSA [15/10/2009|21:18] C:\Program Files\Spybot - Search & Destroy [14/06/2009|10:46] C:\Program Files\StudioScrap2-Decouverte [17/05/2008|10:04] C:\Program Files\Synaptics [17/05/2008|10:12] C:\Program Files\Toshiba [14/06/2009|10:47] C:\Program Files\Tracker Software [12/11/2009|18:50] C:\Program Files\trend micro [18/02/2008|16:05] C:\Program Files\Ulead Systems [02/11/2006|14:01] C:\Program Files\Uninstall Information [25/05/2008|20:43] C:\Program Files\VideoLAN [29/09/2009|22:38] C:\Program Files\Windows Calendar [29/09/2009|22:38] C:\Program Files\Windows Collaboration [29/09/2009|22:38] C:\Program Files\Windows Defender [29/09/2009|22:38] C:\Program Files\Windows Journal [04/10/2009|11:17] C:\Program Files\Windows Live [20/03/2009|22:31] C:\Program Files\Windows Live SkyDrive [13/11/2009|03:19] C:\Program Files\Windows Mail [18/02/2008|16:08] C:\Program Files\Windows Media Components [29/10/2009|03:17] C:\Program Files\Windows Media Player [17/05/2008|11:13] C:\Program Files\Windows NT [29/09/2009|22:38] C:\Program Files\Windows Photo Gallery [29/09/2009|22:38] C:\Program Files\Windows Sidebar [19/05/2008|18:22] C:\Program Files\WinRAR [25/10/2009|14:51] C:\Program Files\Yahoo! --------------------\\ Listing des dossiers dans C:\Program Files\Common Files [10/01/2009|20:05] C:\Program Files\Common Files\Adobe [19/10/2009|22:24] C:\Program Files\Common Files\BOONTY Shared [21/09/2008|20:46] C:\Program Files\Common Files\DESIGNER [15/07/2008|19:12] C:\Program Files\Common Files\Hewlett-Packard [15/07/2008|19:16] C:\Program Files\Common Files\HP [18/02/2008|16:09] C:\Program Files\Common Files\InstallShield [18/02/2008|15:21] C:\Program Files\Common Files\Java [24/07/2009|06:23] C:\Program Files\Common Files\microsoft shared [26/10/2009|12:30] C:\Program Files\Common Files\Nero [04/12/2008|18:25] C:\Program Files\Common Files\PX Storage Engine [02/11/2006|12:18] C:\Program Files\Common Files\Services [02/11/2006|12:18] C:\Program Files\Common Files\SpeechEngines [04/10/2009|11:18] C:\Program Files\Common Files\System [17/05/2008|10:11] C:\Program Files\Common Files\Toshiba Shared [18/02/2008|16:09] C:\Program Files\Common Files\Ulead Systems [20/03/2009|18:54] C:\Program Files\Common Files\Windows Live [17/05/2008|14:27] C:\Program Files\Common Files\WindowsLiveInstaller --------------------\\ Process ( 77 Processes ) ... OK ! --------------------\\ Recherche avec S_Lop Aucun fichier / dossier Lop trouvé ! --------------------\\ Recherche de Fichiers / Dossiers Lop Aucun fichier / dossier Lop trouvé ! --------------------\\ Verification du Registre ..... OK ! --------------------\\ Verification du fichier Hosts Fichier Hosts PROPRE --------------------\\ Recherche de fichiers avec Catchme catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2009-11-14 20:12:06 Windows 6.0.6002 Service Pack 2 NTFS scanning hidden processes ... scanning hidden files ... scan completed successfully hidden processes: 0 hidden files: 2 --------------------\\ Recherche d'autres infections --------------------\\ Cracks & Keygens .. C:\PROGRA~2\Fugazo\Cooking Academy\cached\sounds\eggcrack.wav [F:140][D:21]-> C:\Users\UTILIS~1\AppData\Local\Temp [F:527][D:1]-> C:\Users\UTILIS~1\AppData\Roaming\MICROS~1\Windows\Cookies [F:575][D:5]-> C:\Users\UTILIS~1\AppData\Local\MICROS~1\Windows\TEMPOR~1\content.IE5 [F:5][D:1]-> C:\$Recycle.Bin 1 - "C:\Lop SD\LopR_1.txt" - 13/11/2009|16:42 - Option : [1] 2 - "C:\Lop SD\LopR_2.txt" - 13/11/2009|16:47 - Option : [1] 3 - "C:\Lop SD\LopR_3.txt" - 13/11/2009|16:55 - Option : [2] 4 - "C:\Lop SD\LopR_4.txt" - 14/11/2009| 9:03 - Option : [2] 5 - "C:\Lop SD\LopR_5.txt" - 14/11/2009|20:15 - Option : [2] --------------------\\ Fin du rapport a 20:15:29 [ UAC => 1 ] ainsi que le rapport de MBAM Malwarebytes' Anti-Malware 1.41 Version de la base de données: 3160 Windows 6.0.6002 Service Pack 2 14/11/2009 21:22:33 mbam-log-2009-11-14 (21-22-33).txt Type de recherche: Examen complet (C:\|D:\|E:\|G:\|) Eléments examinés: 239883 Temps écoulé: 50 minute(s), 52 second(s) Processus mémoire infecté(s): 0 Module(s) mémoire infecté(s): 0 Clé(s) du Registre infectée(s): 0 Valeur(s) du Registre infectée(s): 0 Elément(s) de données du Registre infecté(s): 0 Dossier(s) infecté(s): 0 Fichier(s) infecté(s): 0 Processus mémoire infecté(s): (Aucun élément nuisible détecté) Module(s) mémoire infecté(s): (Aucun élément nuisible détecté) Clé(s) du Registre infectée(s): (Aucun élément nuisible détecté) Valeur(s) du Registre infectée(s): (Aucun élément nuisible détecté) Elément(s) de données du Registre infecté(s): (Aucun élément nuisible détecté) Dossier(s) infecté(s): (Aucun élément nuisible détecté) Fichier(s) infecté(s): (Aucun élément nuisible détecté)
  11. Bonjour! je crois qu'il a un petit problème... hier je me souviens avoir fait l'option suppression mais avec un léger doute j'ai quand même refait l'application mais il est vrai que le rapport qui s'affiche est celui de l'option 1 Durant le déroulement de la suppression, plus d'une fois cela écrit "accès refusé" est ce que ça aurait rapport? Car déjà avec Spybot je ne pouvais pas supprimer les erreurs car il disait que je n'étais pas l'administrateur de mon pc alors que je le suis !
  12. Bonjour Thanos voici les rapports que tu m'as demandé. Le 1er: --------------------\\ Lop S&D 4.2.5-0 XP/Vista Microsoft® Windows Vista™ Édition Familiale Premium ( v6.0.6002 ) Service Pack 2 X86-based PC ( Multiprocessor Free : Intel® Core2 Duo CPU T8100 @ 2.10GHz ) BIOS : PhoenixBIOS 4.0 Release 6.1 USER : utilisateur ( Administrator ) BOOT : Normal boot Antivirus : avast! antivirus 4.8.1335 [VPS 090228-0] 4.8.1335 (Activated) C:\ (Local Disk) - NTFS - Total:117 Go (Free:20 Go) E:\ (Local Disk) - NTFS - Total:113 Go (Free:108 Go) F:\ (CD or DVD) "C:\Lop SD" ( MAJ : 19-12-2008|23:40 ) Option : [1] ( 13/11/2009|16:39 ) [ UAC => 1 ] --------------------\\ Listing des dossiers dans Local [17/05/2008|13:37] C:\Users\UTILIS~1\AppData\Local\Adobe [17/05/2008|11:16] C:\Users\UTILIS~1\AppData\Local\Application Data [17/05/2008|11:20] C:\Users\UTILIS~1\AppData\Local\ATI [04/09/2009|12:56] C:\Users\UTILIS~1\AppData\Local\d3d9caps.dat [07/11/2009|09:48] C:\Users\UTILIS~1\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [19/05/2009|20:40] C:\Users\UTILIS~1\AppData\Local\eMule [25/07/2009|02:10] C:\Users\UTILIS~1\AppData\Local\GDIPFONTCACHEV1.DAT [15/10/2009|21:56] C:\Users\UTILIS~1\AppData\Local\Google [17/05/2008|11:16] C:\Users\UTILIS~1\AppData\Local\Historique [13/11/2009|03:19] C:\Users\UTILIS~1\AppData\Local\IconCache.db [03/08/2008|18:48] C:\Users\UTILIS~1\AppData\Local\JollyBear [21/05/2008|18:01] C:\Users\UTILIS~1\AppData\Local\Lphant [14/10/2009|11:28] C:\Users\UTILIS~1\AppData\Local\Microsoft [06/11/2009|14:20] C:\Users\UTILIS~1\AppData\Local\Microsoft Games [07/11/2008|11:36] C:\Users\UTILIS~1\AppData\Local\Microsoft Help [21/09/2008|20:24] C:\Users\UTILIS~1\AppData\Local\Seven Zip [13/11/2009|16:38] C:\Users\UTILIS~1\AppData\Local\Temp [17/05/2008|11:16] C:\Users\UTILIS~1\AppData\Local\Temporary Internet Files [17/05/2008|11:20] C:\Users\UTILIS~1\AppData\Local\Toshiba [17/05/2008|13:37] C:\Users\UTILIS~1\AppData\Local\VirtualStore [08/02/2009|11:48] C:\Users\UTILIS~1\AppData\Local\Zylom Games --------------------\\ Tâches planifiées dans C:\Windows\tasks [12/11/2009 23:13][--ah-----] C:\Windows\tasks\User_Feed_Synchronization-{9972FA03-8046-448B-BEF5-D28E3ACDB978}.job [13/11/2009 03:22][--ah-----] C:\Windows\tasks\SA.DAT [13/11/2009 03:19][--a------] C:\Windows\tasks\SCHEDLGU.TXT --------------------\\ Listing des dossiers dans C:\ProgramData [10/01/2009|20:04] C:\ProgramData\Adobe [02/11/2006|14:02] C:\ProgramData\Application Data [17/05/2008|11:20] C:\ProgramData\ATI [31/05/2008|19:51] C:\ProgramData\Azureus [19/10/2009|22:24] C:\ProgramData\BOONTY [17/05/2008|11:13] C:\ProgramData\Bureau [02/11/2006|14:02] C:\ProgramData\Desktop [02/11/2006|14:02] C:\ProgramData\Documents [19/05/2009|20:40] C:\ProgramData\eMule [27/07/2008|21:36] C:\ProgramData\ezsidmv.dat [17/05/2008|11:13] C:\ProgramData\Favoris [02/11/2006|14:02] C:\ProgramData\Favorites [02/02/2009|15:55] C:\ProgramData\File Coal Seek.456pykz [19/10/2009|22:25] C:\ProgramData\Fugazo [15/10/2009|21:56] C:\ProgramData\Google [11/05/2009|08:23] C:\ProgramData\great barb [15/07/2008|19:08] C:\ProgramData\Hewlett-Packard [07/05/2009|08:02] C:\ProgramData\Hold Trust Amok Mode [16/07/2008|16:24] C:\ProgramData\HP [16/11/2008|23:11] C:\ProgramData\HP Product Assistant [15/07/2008|19:13] C:\ProgramData\HPSSUPPLY [20/06/2009|07:43] C:\ProgramData\hpzinstall.log [03/08/2008|18:48] C:\ProgramData\JollyBear [11/11/2009|12:20] C:\ProgramData\Malwarebytes [04/09/2008|17:21] C:\ProgramData\McAfee [17/05/2008|11:13] C:\ProgramData\Menu D‚marrer [26/05/2008|18:30] C:\ProgramData\Messenger Plus! [20/03/2009|22:42] C:\ProgramData\Microsoft [13/11/2009|03:03] C:\ProgramData\Microsoft Help [17/05/2008|11:13] C:\ProgramData\ModŠles [26/10/2009|12:29] C:\ProgramData\Nero [04/10/2009|20:29] C:\ProgramData\Office Genuine Advantage [02/01/2009|16:32] C:\ProgramData\Plus surf surf.2j3udss [26/11/2008|20:01] C:\ProgramData\Plus surf surf.b9i2h8 [28/09/2008|10:30] C:\ProgramData\Plus surf surf.bksfh [02/02/2009|15:54] C:\ProgramData\Plus surf surf.fjt7zbo [29/12/2008|22:12] C:\ProgramData\Plus surf surf.k55kj [31/08/2008|15:15] C:\ProgramData\Plus surf surf.qpqj9d [02/02/2009|15:54] C:\ProgramData\Plus surf surf.zgpp1nq [08/02/2009|11:55] C:\ProgramData\Skype [25/10/2009|15:02] C:\ProgramData\Spybot - Search & Destroy [02/11/2006|14:02] C:\ProgramData\Start Menu [14/06/2009|11:41] C:\ProgramData\Studio-Scrap2 [02/11/2006|14:02] C:\ProgramData\Templates [17/05/2008|10:11] C:\ProgramData\Toshiba [17/05/2008|11:17] C:\ProgramData\ToshibaEurope [18/02/2008|16:08] C:\ProgramData\Ulead Systems [15/07/2008|19:18] C:\ProgramData\WEBREG [17/05/2008|14:01] C:\ProgramData\WLInstaller --------------------\\ Listing des dossiers dans C:\Program Files [10/01/2009|20:04] C:\Program Files\Adobe [04/09/2008|19:41] C:\Program Files\Alwil Software [17/05/2008|10:03] C:\Program Files\ATI [17/05/2008|10:04] C:\Program Files\ATI Technologies [26/03/2009|19:10] C:\Program Files\Azureus [20/10/2009|17:05] C:\Program Files\BoontyGames [17/05/2008|10:08] C:\Program Files\Camera Assistant Software for Toshiba [25/10/2009|14:44] C:\Program Files\CCleaner [05/02/2009|21:29] C:\Program Files\Circle Developement [26/10/2009|12:28] C:\Program Files\Common Files [17/05/2008|10:01] C:\Program Files\CONEXANT [04/12/2008|18:25] C:\Program Files\DivX [19/05/2009|20:39] C:\Program Files\eMule [17/05/2008|11:13] C:\Program Files\Fichiers communs [C:\Program Files\Common Files] [29/10/2009|03:19] C:\Program Files\Google [01/09/2008|15:14] C:\Program Files\Hewlett-Packard [15/07/2008|19:16] C:\Program Files\HP [18/02/2008|16:15] C:\Program Files\IDM [08/02/2009|11:54] C:\Program Files\InstallShield Installation Information [17/05/2008|10:04] C:\Program Files\Intel [29/10/2009|03:17] C:\Program Files\Internet Explorer [18/02/2008|16:09] C:\Program Files\InterVideo [04/10/2009|11:21] C:\Program Files\Java [11/06/2009|23:39] C:\Program Files\JRE [25/08/2009|09:01] C:\Program Files\LimeWire [21/05/2008|12:07] C:\Program Files\Lphant [11/11/2009|12:20] C:\Program Files\Malwarebytes' Anti-Malware [18/02/2008|15:37] C:\Program Files\Marvell [31/10/2009|22:27] C:\Program Files\Messenger Plus! Live [20/03/2009|22:45] C:\Program Files\Microsoft [02/11/2006|13:37] C:\Program Files\Microsoft Games [21/09/2008|20:47] C:\Program Files\Microsoft Office [04/10/2009|11:18] C:\Program Files\Microsoft Office Outlook Connector [11/09/2009|02:10] C:\Program Files\Microsoft Silverlight [20/03/2009|22:37] C:\Program Files\Microsoft SQL Server Compact Edition [20/03/2009|22:42] C:\Program Files\Microsoft Sync Framework [21/09/2008|20:46] C:\Program Files\Microsoft Visual Studio [21/09/2008|20:40] C:\Program Files\Microsoft Visual Studio 8 [12/06/2009|02:09] C:\Program Files\Microsoft Works [21/09/2008|20:45] C:\Program Files\Microsoft.NET [29/09/2009|22:38] C:\Program Files\Movie Maker [21/09/2008|20:47] C:\Program Files\MSBuild [18/02/2008|15:17] C:\Program Files\MSXML 4.0 [26/10/2009|12:29] C:\Program Files\Nero [18/02/2008|15:44] C:\Program Files\O2Micro Flash Memory Card Driver [11/06/2009|23:39] C:\Program Files\OpenOffice.org 3 [19/05/2008|18:11] C:\Program Files\PhotoFiltre Studio [17/05/2008|14:06] C:\Program Files\Picasa2 [02/11/2006|13:37] C:\Program Files\Reference Assemblies [03/06/2008|21:07] C:\Program Files\RM-X Player V5.2 [17/09/2009|12:40] C:\Program Files\SGPSA [15/10/2009|21:18] C:\Program Files\Spybot - Search & Destroy [14/06/2009|10:46] C:\Program Files\StudioScrap2-Decouverte [17/05/2008|10:04] C:\Program Files\Synaptics [17/05/2008|10:12] C:\Program Files\Toshiba [14/06/2009|10:47] C:\Program Files\Tracker Software [12/11/2009|18:50] C:\Program Files\trend micro [18/02/2008|16:05] C:\Program Files\Ulead Systems [02/11/2006|14:01] C:\Program Files\Uninstall Information [25/05/2008|20:43] C:\Program Files\VideoLAN [29/09/2009|22:38] C:\Program Files\Windows Calendar [29/09/2009|22:38] C:\Program Files\Windows Collaboration [29/09/2009|22:38] C:\Program Files\Windows Defender [29/09/2009|22:38] C:\Program Files\Windows Journal [04/10/2009|11:17] C:\Program Files\Windows Live [20/03/2009|22:31] C:\Program Files\Windows Live SkyDrive [13/11/2009|03:19] C:\Program Files\Windows Mail [18/02/2008|16:08] C:\Program Files\Windows Media Components [29/10/2009|03:17] C:\Program Files\Windows Media Player [17/05/2008|11:13] C:\Program Files\Windows NT [29/09/2009|22:38] C:\Program Files\Windows Photo Gallery [29/09/2009|22:38] C:\Program Files\Windows Sidebar [19/05/2008|18:22] C:\Program Files\WinRAR [25/10/2009|14:51] C:\Program Files\Yahoo! --------------------\\ Listing des dossiers dans C:\Program Files\Common Files [10/01/2009|20:05] C:\Program Files\Common Files\Adobe [19/10/2009|22:24] C:\Program Files\Common Files\BOONTY Shared [21/09/2008|20:46] C:\Program Files\Common Files\DESIGNER [15/07/2008|19:12] C:\Program Files\Common Files\Hewlett-Packard [15/07/2008|19:16] C:\Program Files\Common Files\HP [18/02/2008|16:09] C:\Program Files\Common Files\InstallShield [18/02/2008|15:21] C:\Program Files\Common Files\Java [24/07/2009|06:23] C:\Program Files\Common Files\microsoft shared [26/10/2009|12:30] C:\Program Files\Common Files\Nero [04/12/2008|18:25] C:\Program Files\Common Files\PX Storage Engine [02/11/2006|12:18] C:\Program Files\Common Files\Services [02/11/2006|12:18] C:\Program Files\Common Files\SpeechEngines [04/10/2009|11:18] C:\Program Files\Common Files\System [17/05/2008|10:11] C:\Program Files\Common Files\Toshiba Shared [18/02/2008|16:09] C:\Program Files\Common Files\Ulead Systems [20/03/2009|18:54] C:\Program Files\Common Files\Windows Live [17/05/2008|14:27] C:\Program Files\Common Files\WindowsLiveInstaller --------------------\\ Process ( 79 Processes ) iexplore.exe ~ [PID:5456] iexplore.exe ~ [PID:492] iexplore.exe ~ [PID:3324] iexplore.exe ~ [PID:2144] --------------------\\ Recherche avec S_Lop C:\ProgramData\Plus surf surf.bksfh C:\ProgramData\Plus surf surf.k55kj C:\ProgramData\Plus surf surf.b9i2h8 C:\ProgramData\Plus surf surf.qpqj9d C:\ProgramData\File Coal Seek.456pykz C:\ProgramData\Plus surf surf.2j3udss C:\ProgramData\Plus surf surf.fjt7zbo C:\ProgramData\Plus surf surf.zgpp1nq --------------------\\ Recherche de Fichiers / Dossiers Lop C:\ProgramData\Hold Trust Amok Mode C:\ProgramData\Hold Trust Amok Mode\Eggs Load.dat C:\Program Files\Circle Developement --------------------\\ Verification du Registre [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "BendDart"="\"C:\\ProgramData\\Plus surf surf.fjt7zbo\"" "Amok Mode Dupe Platform"="\"C:\\ProgramData\\File Coal Seek.456pykz\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] --------------------\\ Verification du fichier Hosts Fichier Hosts PROPRE --------------------\\ Recherche de fichiers avec Catchme catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2009-11-13 16:39:54 Windows 6.0.6002 Service Pack 2 NTFS scanning hidden processes ... scanning hidden files ... C:\Users\UTILIS~1\AppData\Local\Temp\~DFA97A.tmp 32768 bytes scan completed successfully hidden processes: 0 hidden files: 3 --------------------\\ Recherche d'autres infections --------------------\\ Cracks & Keygens .. C:\PROGRA~2\Fugazo\Cooking Academy\cached\sounds\eggcrack.wav [F:133][D:20]-> C:\Users\UTILIS~1\AppData\Local\Temp [F:505][D:1]-> C:\Users\UTILIS~1\AppData\Roaming\MICROS~1\Windows\Cookies [F:494][D:5]-> C:\Users\UTILIS~1\AppData\Local\MICROS~1\Windows\TEMPOR~1\content.IE5 [F:5][D:1]-> C:\$Recycle.Bin 1 - "C:\Lop SD\LopR_1.txt" - 13/11/2009|16:42 - Option : [1] Le 2e: --------------------\\ Lop S&D 4.2.5-0 XP/Vista Microsoft® Windows Vista™ Édition Familiale Premium ( v6.0.6002 ) Service Pack 2 X86-based PC ( Multiprocessor Free : Intel® Core2 Duo CPU T8100 @ 2.10GHz ) BIOS : PhoenixBIOS 4.0 Release 6.1 USER : utilisateur ( Administrator ) BOOT : Normal boot Antivirus : avast! antivirus 4.8.1335 [VPS 090228-0] 4.8.1335 (Activated) C:\ (Local Disk) - NTFS - Total:117 Go (Free:20 Go) E:\ (Local Disk) - NTFS - Total:113 Go (Free:108 Go) F:\ (CD or DVD) "C:\Lop SD" ( MAJ : 19-12-2008|23:40 ) Option : [1] ( 13/11/2009|16:44 ) [ UAC => 1 ] --------------------\\ Listing des dossiers dans Local [17/05/2008|13:37] C:\Users\UTILIS~1\AppData\Local\Adobe [17/05/2008|11:16] C:\Users\UTILIS~1\AppData\Local\Application Data [17/05/2008|11:20] C:\Users\UTILIS~1\AppData\Local\ATI [04/09/2009|12:56] C:\Users\UTILIS~1\AppData\Local\d3d9caps.dat [07/11/2009|09:48] C:\Users\UTILIS~1\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [19/05/2009|20:40] C:\Users\UTILIS~1\AppData\Local\eMule [25/07/2009|02:10] C:\Users\UTILIS~1\AppData\Local\GDIPFONTCACHEV1.DAT [15/10/2009|21:56] C:\Users\UTILIS~1\AppData\Local\Google [17/05/2008|11:16] C:\Users\UTILIS~1\AppData\Local\Historique [13/11/2009|03:19] C:\Users\UTILIS~1\AppData\Local\IconCache.db [03/08/2008|18:48] C:\Users\UTILIS~1\AppData\Local\JollyBear [21/05/2008|18:01] C:\Users\UTILIS~1\AppData\Local\Lphant [14/10/2009|11:28] C:\Users\UTILIS~1\AppData\Local\Microsoft [06/11/2009|14:20] C:\Users\UTILIS~1\AppData\Local\Microsoft Games [07/11/2008|11:36] C:\Users\UTILIS~1\AppData\Local\Microsoft Help [21/09/2008|20:24] C:\Users\UTILIS~1\AppData\Local\Seven Zip [13/11/2009|16:44] C:\Users\UTILIS~1\AppData\Local\Temp [17/05/2008|11:16] C:\Users\UTILIS~1\AppData\Local\Temporary Internet Files [17/05/2008|11:20] C:\Users\UTILIS~1\AppData\Local\Toshiba [17/05/2008|13:37] C:\Users\UTILIS~1\AppData\Local\VirtualStore [08/02/2009|11:48] C:\Users\UTILIS~1\AppData\Local\Zylom Games --------------------\\ Tâches planifiées dans C:\Windows\tasks [12/11/2009 23:13][--ah-----] C:\Windows\tasks\User_Feed_Synchronization-{9972FA03-8046-448B-BEF5-D28E3ACDB978}.job [13/11/2009 03:22][--ah-----] C:\Windows\tasks\SA.DAT [13/11/2009 03:19][--a------] C:\Windows\tasks\SCHEDLGU.TXT --------------------\\ Listing des dossiers dans C:\ProgramData [10/01/2009|20:04] C:\ProgramData\Adobe [02/11/2006|14:02] C:\ProgramData\Application Data [17/05/2008|11:20] C:\ProgramData\ATI [31/05/2008|19:51] C:\ProgramData\Azureus [19/10/2009|22:24] C:\ProgramData\BOONTY [17/05/2008|11:13] C:\ProgramData\Bureau [02/11/2006|14:02] C:\ProgramData\Desktop [02/11/2006|14:02] C:\ProgramData\Documents [19/05/2009|20:40] C:\ProgramData\eMule [27/07/2008|21:36] C:\ProgramData\ezsidmv.dat [17/05/2008|11:13] C:\ProgramData\Favoris [02/11/2006|14:02] C:\ProgramData\Favorites [02/02/2009|15:55] C:\ProgramData\File Coal Seek.456pykz [19/10/2009|22:25] C:\ProgramData\Fugazo [15/10/2009|21:56] C:\ProgramData\Google [11/05/2009|08:23] C:\ProgramData\great barb [15/07/2008|19:08] C:\ProgramData\Hewlett-Packard [07/05/2009|08:02] C:\ProgramData\Hold Trust Amok Mode [16/07/2008|16:24] C:\ProgramData\HP [16/11/2008|23:11] C:\ProgramData\HP Product Assistant [15/07/2008|19:13] C:\ProgramData\HPSSUPPLY [20/06/2009|07:43] C:\ProgramData\hpzinstall.log [03/08/2008|18:48] C:\ProgramData\JollyBear [11/11/2009|12:20] C:\ProgramData\Malwarebytes [04/09/2008|17:21] C:\ProgramData\McAfee [17/05/2008|11:13] C:\ProgramData\Menu D‚marrer [26/05/2008|18:30] C:\ProgramData\Messenger Plus! [20/03/2009|22:42] C:\ProgramData\Microsoft [13/11/2009|03:03] C:\ProgramData\Microsoft Help [17/05/2008|11:13] C:\ProgramData\ModŠles [26/10/2009|12:29] C:\ProgramData\Nero [04/10/2009|20:29] C:\ProgramData\Office Genuine Advantage [02/01/2009|16:32] C:\ProgramData\Plus surf surf.2j3udss [26/11/2008|20:01] C:\ProgramData\Plus surf surf.b9i2h8 [28/09/2008|10:30] C:\ProgramData\Plus surf surf.bksfh [02/02/2009|15:54] C:\ProgramData\Plus surf surf.fjt7zbo [29/12/2008|22:12] C:\ProgramData\Plus surf surf.k55kj [31/08/2008|15:15] C:\ProgramData\Plus surf surf.qpqj9d [02/02/2009|15:54] C:\ProgramData\Plus surf surf.zgpp1nq [08/02/2009|11:55] C:\ProgramData\Skype [25/10/2009|15:02] C:\ProgramData\Spybot - Search & Destroy [02/11/2006|14:02] C:\ProgramData\Start Menu [14/06/2009|11:41] C:\ProgramData\Studio-Scrap2 [02/11/2006|14:02] C:\ProgramData\Templates [17/05/2008|10:11] C:\ProgramData\Toshiba [17/05/2008|11:17] C:\ProgramData\ToshibaEurope [18/02/2008|16:08] C:\ProgramData\Ulead Systems [15/07/2008|19:18] C:\ProgramData\WEBREG [17/05/2008|14:01] C:\ProgramData\WLInstaller --------------------\\ Listing des dossiers dans C:\Program Files [10/01/2009|20:04] C:\Program Files\Adobe [04/09/2008|19:41] C:\Program Files\Alwil Software [17/05/2008|10:03] C:\Program Files\ATI [17/05/2008|10:04] C:\Program Files\ATI Technologies [26/03/2009|19:10] C:\Program Files\Azureus [20/10/2009|17:05] C:\Program Files\BoontyGames [17/05/2008|10:08] C:\Program Files\Camera Assistant Software for Toshiba [25/10/2009|14:44] C:\Program Files\CCleaner [05/02/2009|21:29] C:\Program Files\Circle Developement [26/10/2009|12:28] C:\Program Files\Common Files [17/05/2008|10:01] C:\Program Files\CONEXANT [04/12/2008|18:25] C:\Program Files\DivX [19/05/2009|20:39] C:\Program Files\eMule [17/05/2008|11:13] C:\Program Files\Fichiers communs [C:\Program Files\Common Files] [29/10/2009|03:19] C:\Program Files\Google [01/09/2008|15:14] C:\Program Files\Hewlett-Packard [15/07/2008|19:16] C:\Program Files\HP [18/02/2008|16:15] C:\Program Files\IDM [08/02/2009|11:54] C:\Program Files\InstallShield Installation Information [17/05/2008|10:04] C:\Program Files\Intel [29/10/2009|03:17] C:\Program Files\Internet Explorer [18/02/2008|16:09] C:\Program Files\InterVideo [04/10/2009|11:21] C:\Program Files\Java [11/06/2009|23:39] C:\Program Files\JRE [25/08/2009|09:01] C:\Program Files\LimeWire [21/05/2008|12:07] C:\Program Files\Lphant [11/11/2009|12:20] C:\Program Files\Malwarebytes' Anti-Malware [18/02/2008|15:37] C:\Program Files\Marvell [31/10/2009|22:27] C:\Program Files\Messenger Plus! Live [20/03/2009|22:45] C:\Program Files\Microsoft [02/11/2006|13:37] C:\Program Files\Microsoft Games [21/09/2008|20:47] C:\Program Files\Microsoft Office [04/10/2009|11:18] C:\Program Files\Microsoft Office Outlook Connector [11/09/2009|02:10] C:\Program Files\Microsoft Silverlight [20/03/2009|22:37] C:\Program Files\Microsoft SQL Server Compact Edition [20/03/2009|22:42] C:\Program Files\Microsoft Sync Framework [21/09/2008|20:46] C:\Program Files\Microsoft Visual Studio [21/09/2008|20:40] C:\Program Files\Microsoft Visual Studio 8 [12/06/2009|02:09] C:\Program Files\Microsoft Works [21/09/2008|20:45] C:\Program Files\Microsoft.NET [29/09/2009|22:38] C:\Program Files\Movie Maker [21/09/2008|20:47] C:\Program Files\MSBuild [18/02/2008|15:17] C:\Program Files\MSXML 4.0 [26/10/2009|12:29] C:\Program Files\Nero [18/02/2008|15:44] C:\Program Files\O2Micro Flash Memory Card Driver [11/06/2009|23:39] C:\Program Files\OpenOffice.org 3 [19/05/2008|18:11] C:\Program Files\PhotoFiltre Studio [17/05/2008|14:06] C:\Program Files\Picasa2 [02/11/2006|13:37] C:\Program Files\Reference Assemblies [03/06/2008|21:07] C:\Program Files\RM-X Player V5.2 [17/09/2009|12:40] C:\Program Files\SGPSA [15/10/2009|21:18] C:\Program Files\Spybot - Search & Destroy [14/06/2009|10:46] C:\Program Files\StudioScrap2-Decouverte [17/05/2008|10:04] C:\Program Files\Synaptics [17/05/2008|10:12] C:\Program Files\Toshiba [14/06/2009|10:47] C:\Program Files\Tracker Software [12/11/2009|18:50] C:\Program Files\trend micro [18/02/2008|16:05] C:\Program Files\Ulead Systems [02/11/2006|14:01] C:\Program Files\Uninstall Information [25/05/2008|20:43] C:\Program Files\VideoLAN [29/09/2009|22:38] C:\Program Files\Windows Calendar [29/09/2009|22:38] C:\Program Files\Windows Collaboration [29/09/2009|22:38] C:\Program Files\Windows Defender [29/09/2009|22:38] C:\Program Files\Windows Journal [04/10/2009|11:17] C:\Program Files\Windows Live [20/03/2009|22:31] C:\Program Files\Windows Live SkyDrive [13/11/2009|03:19] C:\Program Files\Windows Mail [18/02/2008|16:08] C:\Program Files\Windows Media Components [29/10/2009|03:17] C:\Program Files\Windows Media Player [17/05/2008|11:13] C:\Program Files\Windows NT [29/09/2009|22:38] C:\Program Files\Windows Photo Gallery [29/09/2009|22:38] C:\Program Files\Windows Sidebar [19/05/2008|18:22] C:\Program Files\WinRAR [25/10/2009|14:51] C:\Program Files\Yahoo! --------------------\\ Listing des dossiers dans C:\Program Files\Common Files [10/01/2009|20:05] C:\Program Files\Common Files\Adobe [19/10/2009|22:24] C:\Program Files\Common Files\BOONTY Shared [21/09/2008|20:46] C:\Program Files\Common Files\DESIGNER [15/07/2008|19:12] C:\Program Files\Common Files\Hewlett-Packard [15/07/2008|19:16] C:\Program Files\Common Files\HP [18/02/2008|16:09] C:\Program Files\Common Files\InstallShield [18/02/2008|15:21] C:\Program Files\Common Files\Java [24/07/2009|06:23] C:\Program Files\Common Files\microsoft shared [26/10/2009|12:30] C:\Program Files\Common Files\Nero [04/12/2008|18:25] C:\Program Files\Common Files\PX Storage Engine [02/11/2006|12:18] C:\Program Files\Common Files\Services [02/11/2006|12:18] C:\Program Files\Common Files\SpeechEngines [04/10/2009|11:18] C:\Program Files\Common Files\System [17/05/2008|10:11] C:\Program Files\Common Files\Toshiba Shared [18/02/2008|16:09] C:\Program Files\Common Files\Ulead Systems [20/03/2009|18:54] C:\Program Files\Common Files\Windows Live [17/05/2008|14:27] C:\Program Files\Common Files\WindowsLiveInstaller --------------------\\ Process ( 78 Processes ) iexplore.exe ~ [PID:5456] iexplore.exe ~ [PID:3324] --------------------\\ Recherche avec S_Lop C:\ProgramData\Plus surf surf.bksfh C:\ProgramData\Plus surf surf.k55kj C:\ProgramData\Plus surf surf.b9i2h8 C:\ProgramData\Plus surf surf.qpqj9d C:\ProgramData\File Coal Seek.456pykz C:\ProgramData\Plus surf surf.2j3udss C:\ProgramData\Plus surf surf.fjt7zbo C:\ProgramData\Plus surf surf.zgpp1nq --------------------\\ Recherche de Fichiers / Dossiers Lop C:\ProgramData\Hold Trust Amok Mode C:\ProgramData\Hold Trust Amok Mode\Eggs Load.dat C:\Program Files\Circle Developement --------------------\\ Verification du Registre [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "BendDart"="\"C:\\ProgramData\\Plus surf surf.fjt7zbo\"" "Amok Mode Dupe Platform"="\"C:\\ProgramData\\File Coal Seek.456pykz\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] --------------------\\ Verification du fichier Hosts Fichier Hosts PROPRE --------------------\\ Recherche de fichiers avec Catchme catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2009-11-13 16:44:42 Windows 5.1.2600 Service Pack 2 NTFS detected NTDLL code modification: ZwEnumerateKey, ZwQueryKey, ZwOpenKey, ZwClose, ZwEnumerateValueKey, ZwQueryValueKey, ZwOpenFile, ZwQueryDirectoryFile, ZwQuerySystemInformation scanning hidden processes ... scanning hidden files ... scan completed successfully hidden processes: 0 hidden files: 2 --------------------\\ Recherche d'autres infections --------------------\\ Cracks & Keygens .. C:\PROGRA~2\Fugazo\Cooking Academy\cached\sounds\eggcrack.wav [F:133][D:21]-> C:\Users\UTILIS~1\AppData\Local\Temp [F:505][D:1]-> C:\Users\UTILIS~1\AppData\Roaming\MICROS~1\Windows\Cookies [F:494][D:5]-> C:\Users\UTILIS~1\AppData\Local\MICROS~1\Windows\TEMPOR~1\content.IE5 [F:5][D:1]-> C:\$Recycle.Bin 1 - "C:\Lop SD\LopR_1.txt" - 13/11/2009|16:42 - Option : [1] 2 - "C:\Lop SD\LopR_2.txt" - 13/11/2009|16:47 - Option : [1] --------------------\\ Fin du rapport a 16:47:36 [ UAC => 1 ] Et le 3e Malwarebytes' Anti-Malware 1.41 Version de la base de données: 3160 Windows 6.0.6002 Service Pack 2 13/11/2009 21:14:02 mbam-log-2009-11-13 (21-14-02).txt Type de recherche: Examen complet (C:\|D:\|E:\|G:\|) Eléments examinés: 241702 Temps écoulé: 51 minute(s), 3 second(s) Processus mémoire infecté(s): 0 Module(s) mémoire infecté(s): 0 Clé(s) du Registre infectée(s): 0 Valeur(s) du Registre infectée(s): 0 Elément(s) de données du Registre infecté(s): 0 Dossier(s) infecté(s): 0 Fichier(s) infecté(s): 0 Processus mémoire infecté(s): (Aucun élément nuisible détecté) Module(s) mémoire infecté(s): (Aucun élément nuisible détecté) Clé(s) du Registre infectée(s): (Aucun élément nuisible détecté) Valeur(s) du Registre infectée(s): (Aucun élément nuisible détecté) Elément(s) de données du Registre infecté(s): (Aucun élément nuisible détecté) Dossier(s) infecté(s): (Aucun élément nuisible détecté) Fichier(s) infecté(s): (Aucun élément nuisible détecté)
  13. Tout d'abord merci pour vos réponses, Tititeange je comprends très bien ton desarroi . Thanos voici les deux rapports: Logfile of random's system information tool 1.06 (written by random/random) Run by utilisateur at 2009-11-12 18:50:23 Microsoft® Windows Vista™ Édition Familiale Premium Service Pack 2 System drive C: has 22 GB (19%) free of 120 GB Total RAM: 2046 MB (38% free) Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 18:50:42, on 12/11/2009 Platform: Windows Vista SP2 (WinNT 6.00.1906) MSIE: Internet Explorer v8.00 (8.00.6001.18828) Boot mode: Normal Running processes: C:\Windows\system32\taskeng.exe C:\Windows\system32\Dwm.exe C:\Windows\Explorer.EXE C:\Program Files\Toshiba\ConfigFree\NDSTray.exe C:\Program Files\Toshiba\Toshiba Online Product Information\TOPI.exe C:\Program Files\Camera Assistant Software for Toshiba\traybar.exe C:\Program Files\Toshiba\HDMICtrlMan\HDMICtrlMan.exe C:\Program Files\Toshiba\Power Saver\TPwrMain.exe C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE C:\Program Files\Toshiba\SmoothView\SmoothView.exe C:\Program Files\Toshiba\FlashCards\TCrdMain.exe C:\Program Files\HP\HP Software Update\hpwuSchd2.exe C:\Program Files\Alwil Software\Avast4\ashDisp.exe C:\Program Files\Java\jre6\bin\jusched.exe C:\Program Files\Toshiba\TOSCDSPD\TOSCDSPD.exe C:\Program Files\Windows Live\Messenger\msnmsgr.exe C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe C:\Program Files\Windows Defender\MSASCui.exe C:\Program Files\Windows Sidebar\sidebar.exe C:\Program Files\Windows Media Player\wmpnscfg.exe C:\Program Files\Camera Assistant Software for Toshiba\CEC_MAIN.exe C:\Program Files\Toshiba\ConfigFree\CFSwMgr.exe C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe C:\Program Files\Windows Live\Contacts\wlcomm.exe C:\Program Files\Synaptics\SynTP\SynTPHelper.exe C:\Program Files\Common Files\Adobe\Updater5\AdobeUpdater.exe C:\Windows\System32\notepad.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Windows\system32\wuauclt.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Windows\system32\Macromed\Flash\FlashUtil10b.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Users\utilisateur\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\521GS866\RSIT[1].exe C:\Windows\system32\SearchProtocolHost.exe C:\Windows\system32\SearchFilterHost.exe C:\Program Files\trend micro\utilisateur.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.fr R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/ig?hl=fr R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.fr R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = R3 - URLSearchHook: (no name) - {91C18ED5-5E1C-4AE5-A148-A861DE8C8E16} - (no file) O1 - Hosts: ::1 localhost O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file) O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file) O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll O2 - BHO: (no name) - {F0626A63-410B-45E2-99A1-3F2475B2D695} - (no file) O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide O4 - HKLM\..\Run: [NDSTray.exe] NDSTray.exe O4 - HKLM\..\Run: [topi] C:\Program Files\TOSHIBA\Toshiba Online Product Information\topi.exe -startup O4 - HKLM\..\Run: [startCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" O4 - HKLM\..\Run: [synTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe O4 - HKLM\..\Run: [Camera Assistant Software] "C:\Program Files\Camera Assistant Software for Toshiba\traybar.exe" /start O4 - HKLM\..\Run: [HDMICtrlMan] C:\Program Files\TOSHIBA\HDMICtrlMan\HDMICtrlMan.exe O4 - HKLM\..\Run: [TPwrMain] %ProgramFiles%\TOSHIBA\Power Saver\TPwrMain.EXE O4 - HKLM\..\Run: [HSON] %ProgramFiles%\TOSHIBA\TBS\HSON.exe O4 - HKLM\..\Run: [smoothView] %ProgramFiles%\Toshiba\SmoothView\SmoothView.exe O4 - HKLM\..\Run: [00TCrdMain] %ProgramFiles%\TOSHIBA\FlashCards\TCrdMain.exe O4 - HKLM\..\Run: [Toshiba Registration] C:\Program Files\Toshiba\Registration\ToshibaRegistration.exe O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe" O4 - HKLM\..\RunOnce: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent O4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe O4 - HKCU\..\Run: [TOSCDSPD] TOSCDSPD.EXE O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background O4 - HKCU\..\Run: [bendDart] "C:\ProgramData\Plus surf surf.fjt7zbo" O4 - HKCU\..\Run: [Amok Mode Dupe Platform] "C:\ProgramData\File Coal Seek.456pykz" O4 - HKCU\..\Run: [spybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL') O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL') O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU') O4 - .DEFAULT User Startup: TRDCReminder.lnk = C:\Program Files\Toshiba\TRDCReminder\TRDCReminder.exe (User 'Default user') O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000 O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: eBay - Achetez, Vendez - {76577871-04EC-495E-A12B-91F7C3600AFA} - http://rover.ebay.com/rover/1/709-44555-9400-3/4 (file missing) O9 - Extra button: Amazon.fr - {8A918C1D-E123-4E36-B562-5C1519E434CE} - http://www.amazon.fr/exec/obidos/redirect-...1&site=home (file missing) O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll O9 - Extra 'Tools' menuitem: Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll O13 - Gopher Prefix: O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe O23 - Service: Boonty Games - BOONTY - C:\Program Files\Common Files\BOONTY Shared\Service\Boonty.exe O23 - Service: ConfigFree Service - TOSHIBA CORPORATION - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe O23 - Service: O2Micro Flash Memory Card Service (o2flash) - O2Micro International - C:\Program Files\O2Micro Flash Memory Card Driver\o2flash.exe O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe O23 - Service: TOSHIBA Navi Support Service (TNaviSrv) - TOSHIBA Corporation - C:\Program Files\Toshiba\TOSHIBA DVD PLAYER\TNaviSrv.exe O23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv) - TOSHIBA Corporation - C:\Windows\system32\TODDSrv.exe O23 - Service: TOSHIBA Power Saver (TosCoSrv) - TOSHIBA Corporation - C:\Program Files\Toshiba\Power Saver\TosCoSrv.exe O23 - Service: TOSHIBA Bluetooth Service - Unknown owner - c:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe (file missing) O23 - Service: TOSHIBA SMART Log Service - TOSHIBA Corporation - C:\Program Files\TOSHIBA\SMARTLogService\TosIPCSrv.exe O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe -- End of file - 10298 bytes ======Scheduled tasks folder====== C:\Windows\tasks\User_Feed_Synchronization-{9972FA03-8046-448B-BEF5-D28E3ACDB978}.job ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4efb-9B51-7695ECA05670}] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}] Aide pour le lien d'Adobe PDF Reader - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}] Spybot-S&D IE Protection - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll [2009-01-26 1879896] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}] Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2009-05-19 137600] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}] Programme d'aide de l'Assistant de connexion Windows Live - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-02-17 408440] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}] Java Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-07-25 41760] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}] Windows Live Toolbar Helper - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F0626A63-410B-45E2-99A1-3F2475B2D695}] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar] {21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-21 1008184] "NDSTray.exe"=NDSTray.exe [] "topi"=C:\Program Files\TOSHIBA\Toshiba Online Product Information\topi.exe [2007-07-10 581632] "StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2006-11-10 90112] "SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2007-11-29 1029416] "Camera Assistant Software"=C:\Program Files\Camera Assistant Software for Toshiba\traybar.exe [2007-10-25 413696] "HDMICtrlMan"=C:\Program Files\TOSHIBA\HDMICtrlMan\HDMICtrlMan.exe [2008-01-25 716800] "TPwrMain"=C:\Program Files\TOSHIBA\Power Saver\TPwrMain.EXE [2008-01-17 431456] "HSON"=C:\Program Files\TOSHIBA\TBS\HSON.exe [2007-10-31 54608] "SmoothView"=C:\Program Files\Toshiba\SmoothView\SmoothView.exe [2008-01-25 509816] "00TCrdMain"=C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe [2008-01-22 712704] "Toshiba Registration"=C:\Program Files\Toshiba\Registration\ToshibaRegistration.exe [2007-05-04 571024] "HP Software Update"=C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [2006-12-10 49152] "avast!"=C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe [2009-02-05 81000] "Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [2008-10-15 39792] "SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2009-07-25 149280] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce] "Malwarebytes' Anti-Malware"=C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe [2009-09-10 420176] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-04-11 1233920] "TOSCDSPD"=TOSCDSPD.EXE [] "MsnMsgr"=C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe [2009-07-26 3883856] "BendDart"=C:\ProgramData\Plus surf surf.fjt7zbo [2009-02-02 380944] "Amok Mode Dupe Platform"=C:\ProgramData\File Coal Seek.456pykz [2009-02-02 81936] "SpybotSD TeaTimer"=C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe [2009-01-26 2144088] C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup SA.DAT SCHEDLGU.TXT User_Feed_Synchronization-{9972FA03-8046-448B-BEF5-D28E3ACDB978}.job C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup SA.DAT SCHEDLGU.TXT User_Feed_Synchronization-{9972FA03-8046-448B-BEF5-D28E3ACDB978}.job [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui] igfxdev.dll [] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "shutdownwithoutlogon"=1 "undockwithoutlogon"=1 "EnableUIADesktopToggle"=0 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "BindDirectlyToPropertySetStorage"= [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\G] shell\AutoRun\command - G:\LaunchU3.exe -a [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{874a680f-3e00-11de-9eab-001e682e128e}] shell\AutoRun\command - G:\LaunchU3.exe -a [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{ab2d6ee1-1641-11de-984a-001e682e128e}] shell\Auto\command - AdobeR.exe e shell\AutoRun\command - C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL G:\ [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{ab2d6ee3-1641-11de-984a-001e682e128e}] shell\Auto\command - AdobeR.exe e shell\AutoRun\command - C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL D:\ ======File associations====== .js - edit - C:\Windows\System32\Notepad.exe %1 .js - open - C:\Windows\System32\WScript.exe "%1" %* ======List of files/folders created in the last 1 months====== 2009-11-12 18:50:24 ----D---- C:\Program Files\trend micro 2009-11-12 18:50:23 ----D---- C:\rsit 2009-11-11 12:20:38 ----D---- C:\Users\utilisateur\AppData\Roaming\Malwarebytes 2009-11-11 12:20:30 ----D---- C:\ProgramData\Malwarebytes 2009-11-11 12:20:30 ----D---- C:\Program Files\Malwarebytes' Anti-Malware 2009-11-04 19:31:57 ----A---- C:\Windows\system32\mshtml.dll 2009-10-28 13:07:01 ----A---- C:\Windows\system32\wmp.dll 2009-10-28 13:06:58 ----A---- C:\Windows\system32\unregmp2.exe 2009-10-28 13:06:53 ----A---- C:\Windows\system32\wmploc.DLL 2009-10-26 12:31:23 ----D---- C:\Users\utilisateur\AppData\Roaming\Nero 2009-10-26 12:29:10 ----D---- C:\Program Files\Nero 2009-10-26 12:28:53 ----D---- C:\ProgramData\Nero 2009-10-26 12:28:52 ----D---- C:\Program Files\Common Files\Nero 2009-10-25 14:44:13 ----D---- C:\Users\utilisateur\AppData\Roaming\Yahoo! 2009-10-25 14:44:11 ----D---- C:\Program Files\Yahoo! 2009-10-25 14:44:09 ----D---- C:\Program Files\CCleaner 2009-10-19 22:25:16 ----D---- C:\ProgramData\Fugazo 2009-10-19 22:24:48 ----D---- C:\ProgramData\BOONTY 2009-10-19 22:24:43 ----D---- C:\Program Files\Common Files\BOONTY Shared 2009-10-19 22:24:22 ----D---- C:\Program Files\BoontyGames 2009-10-19 21:53:45 ----D---- C:\Boonty 2009-10-15 21:18:13 ----D---- C:\ProgramData\Spybot - Search & Destroy 2009-10-15 21:18:13 ----D---- C:\Program Files\Spybot - Search & Destroy 2009-10-14 11:34:22 ----A---- C:\Windows\system32\ieframe.dll 2009-10-14 11:34:21 ----A---- C:\Windows\system32\iertutil.dll 2009-10-14 11:34:20 ----A---- C:\Windows\system32\urlmon.dll 2009-10-14 11:34:19 ----A---- C:\Windows\system32\wininet.dll 2009-10-14 11:34:18 ----A---- C:\Windows\system32\msfeeds.dll 2009-10-14 11:34:17 ----A---- C:\Windows\system32\occache.dll 2009-10-14 11:34:17 ----A---- C:\Windows\system32\iedkcs32.dll 2009-10-14 11:34:14 ----A---- C:\Windows\system32\ieui.dll 2009-10-14 11:34:13 ----A---- C:\Windows\system32\ieUnatt.exe 2009-10-14 11:34:13 ----A---- C:\Windows\system32\iepeers.dll 2009-10-14 11:34:12 ----A---- C:\Windows\system32\msfeedsbs.dll 2009-10-14 11:34:12 ----A---- C:\Windows\system32\jsproxy.dll 2009-10-14 11:34:12 ----A---- C:\Windows\system32\iesysprep.dll 2009-10-14 11:34:11 ----A---- C:\Windows\system32\ie4uinit.exe 2009-10-14 11:34:10 ----A---- C:\Windows\system32\msfeedssync.exe 2009-10-14 11:34:10 ----A---- C:\Windows\system32\iesetup.dll 2009-10-14 11:34:10 ----A---- C:\Windows\system32\iernonce.dll 2009-10-14 10:55:55 ----A---- C:\Windows\system32\msv1_0.dll 2009-10-14 10:54:06 ----A---- C:\Windows\system32\ntoskrnl.exe 2009-10-14 10:54:06 ----A---- C:\Windows\system32\ntkrnlpa.exe 2009-10-14 10:30:19 ----A---- C:\Windows\system32\msasn1.dll 2009-10-14 10:25:10 ----A---- C:\Windows\system32\WMSPDMOD.DLL ======List of files/folders modified in the last 1 months====== 2009-11-12 18:50:42 ----D---- C:\Windows\Prefetch 2009-11-12 18:50:35 ----D---- C:\Windows\Temp 2009-11-12 18:50:24 ----RD---- C:\Program Files 2009-11-12 18:43:33 ----D---- C:\Windows\system32\catroot 2009-11-12 18:43:31 ----D---- C:\Windows\winsxs 2009-11-11 20:28:52 ----SHD---- C:\System Volume Information 2009-11-11 12:20:32 ----D---- C:\Windows\system32\drivers 2009-11-11 12:20:30 ----HD---- C:\ProgramData 2009-11-06 00:54:28 ----D---- C:\Windows\system32\catroot2 2009-11-05 03:26:31 ----D---- C:\Windows\inf 2009-11-05 03:26:31 ----AD---- C:\Windows\System32 2009-11-05 03:26:31 ----A---- C:\Windows\system32\PerfStringBackup.INI 2009-11-02 20:42:06 ----N---- C:\Windows\system32\MpSigStub.exe 2009-10-31 22:27:31 ----D---- C:\Program Files\Messenger Plus! Live 2009-10-29 03:35:56 ----D---- C:\Windows\rescache 2009-10-29 03:19:07 ----D---- C:\Windows 2009-10-29 03:19:07 ----D---- C:\Program Files\Google 2009-10-29 03:17:34 ----D---- C:\Windows\system32\fr-FR 2009-10-29 03:17:34 ----D---- C:\Program Files\Windows Media Player 2009-10-29 03:17:34 ----D---- C:\Program Files\Internet Explorer 2009-10-26 12:30:31 ----SHD---- C:\Windows\Installer 2009-10-26 12:28:52 ----D---- C:\Program Files\Common Files 2009-10-25 14:56:13 ----D---- C:\Windows\Debug 2009-10-25 14:56:13 ----D---- C:\Users\utilisateur\AppData\Roaming\Azureus 2009-10-20 20:07:26 ----D---- C:\Windows\system32\Tasks 2009-10-15 21:56:17 ----D---- C:\ProgramData\Google 2009-10-15 02:34:31 ----D---- C:\Windows\Microsoft.NET 2009-10-15 02:34:24 ----RSD---- C:\Windows\assembly 2009-10-15 02:23:29 ----D---- C:\Windows\system32\migration 2009-10-15 02:23:29 ----D---- C:\Windows\ehome 2009-10-15 02:23:29 ----D---- C:\Program Files\Windows Mail 2009-10-15 02:04:23 ----D---- C:\ProgramData\Microsoft Help 2009-10-14 11:29:50 ----SD---- C:\Windows\Downloaded Program Files ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2009-02-05 23152] R1 aswSP;avast! Self Protection; C:\Windows\system32\drivers\aswSP.sys [2009-02-05 114768] R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2009-02-05 51376] R2 aswFsBlk;aswFsBlk; C:\Windows\system32\DRIVERS\aswFsBlk.sys [2009-02-05 20560] R2 aswMonFlt;aswMonFlt; C:\Windows\system32\DRIVERS\aswMonFlt.sys [2009-02-05 51792] R2 mdmxsdk;mdmxsdk; C:\Windows\system32\DRIVERS\mdmxsdk.sys [2006-06-18 12672] R2 XAudio;XAudio; C:\Windows\system32\DRIVERS\xaudio.sys [2007-10-17 8704] R3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2008-01-30 3483648] R3 CmBatt;Pilote pour Batterie à méthode de contrôle ACPI Microsoft; C:\Windows\system32\DRIVERS\CmBatt.sys [2008-01-21 14208] R3 CnxtHdAudAddService;Microsoft UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\CHDART.sys [2008-02-01 187904] R3 HdAudAddService;Pilote de fonction UAA 1.1 Microsoft pour le service High Definition Audio; C:\Windows\system32\drivers\HdAudio.sys [2009-04-11 236544] R3 HSF_DPV;HSF_DPV; C:\Windows\system32\DRIVERS\HSX_DPV.sys [2007-11-01 985600] R3 HSXHWAZL;HSXHWAZL; C:\Windows\system32\DRIVERS\HSXHWAZL.sys [2007-11-01 208896] R3 NETw4v32;Pilote de carte Intel® Wireless WiFi Link pour Windows Vista 32 bits; C:\Windows\system32\DRIVERS\NETw4v32.sys [2007-09-26 2251776] R3 O2MDRDR;O2MDRDR; C:\Windows\system32\DRIVERS\o2media.sys [2008-01-15 48472] R3 QIOMem;Generic IO & Memory Access; C:\Windows\system32\DRIVERS\QIOMem.sys [2007-04-09 8192] R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2009-04-11 89088] R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2007-11-29 196144] R3 tdcmdpst;TOSHIBA Writing Engine Filter Driver; C:\Windows\system32\DRIVERS\tdcmdpst.sys [2006-10-18 16128] R3 usbvideo;Chicony USB 2.0 Camera; C:\Windows\System32\Drivers\usbvideo.sys [2008-01-21 134016] R3 UVCFTR;UVCFTR; C:\Windows\System32\Drivers\UVCFTR_S.SYS [2007-12-17 18432] R3 winachsf;winachsf; C:\Windows\system32\DRIVERS\HSX_CNXT.sys [2007-11-01 661504] R3 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\DRIVERS\wmiacpi.sys [2008-01-21 11264] R3 yukonwlh;NDIS6.0 Miniport Driver for Marvell Yukon Ethernet Controller; C:\Windows\system32\DRIVERS\yk60x86.sys [2007-12-06 298496] S3 athr;Pilote de périphérique LAN sans fil extensible Atheros; C:\Windows\system32\DRIVERS\athr.sys [2006-11-02 467456] S3 Dot4;Pilote MS IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4.sys [2008-01-21 131584] S3 Dot4Print;Pilote de classe Imprimante pour IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4Prt.sys [2008-01-21 16384] S3 dot4usb;MS Dot4USB Filter Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2008-01-21 36864] S3 drmkaud;Filtre de décodeur DRM (Noyau Microsoft); C:\Windows\system32\drivers\drmkaud.sys [2008-01-21 5632] S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2009-08-05 54632] S3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [] S3 IntcHdmiAddService;Intel® High Definition Audio HDMI Service; C:\Windows\system32\drivers\IntcHdmi.sys [] S3 MSKSSRV;Proxy de service de répartition Microsoft; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-21 8192] S3 MSPCLOCK;Proxy d'horloge de répartition Microsoft; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-21 5888] S3 MSPQM;Proxy de gestion de qualité de répartition Microsoft; C:\Windows\system32\drivers\MSPQM.sys [2008-01-21 5504] S3 MSTEE;Convertisseur en T/site-à-site de répartition Microsoft; C:\Windows\system32\drivers\MSTEE.sys [2008-01-21 6016] S3 NETw3v32;Pilote de carte Intel® PRO/sans fil 3945ABG pour Windows Vista 32 bits; C:\Windows\system32\DRIVERS\NETw3v32.sys [2008-01-21 2225664] S3 Tosrfcom;Tosrfcom; C:\Windows\system32\drivers\Tosrfcom.sys [] S3 tosrfec;Bluetooth ACPI; C:\Windows\system32\DRIVERS\tosrfec.sys [2006-10-23 9216] S3 usbscan;Pilote de scanneur USB; C:\Windows\system32\DRIVERS\usbscan.sys [2008-01-21 35328] S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2008-01-21 39936] S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-21 83328] S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2008-01-21 6656] S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-01-21 386616] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 aswUpdSv;avast! iAVS4 Control Service; C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe [2009-02-05 18752] R2 Ati External Event Utility;Ati External Event Utility; C:\Windows\system32\Ati2evxx.exe [2008-01-30 643072] R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast4\ashServ.exe [2009-02-05 138680] R2 ConfigFree Service;ConfigFree Service; C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe [2007-12-25 40960] R2 hpqddsvc;Service HP CUE DeviceDiscovery; C:\Windows\system32\svchost.exe [2008-01-21 21504] R2 Nero BackItUp Scheduler 4.0;Nero BackItUp Scheduler 4.0; C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe [2009-07-20 935208] R2 o2flash;O2Micro Flash Memory Card Service; C:\Program Files\O2Micro Flash Memory Card Driver\o2flash.exe [2007-02-12 65536] R2 SBSDWSCService;SBSD Security Center Service; C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe [2009-01-26 1153368] R2 SeaPort;SeaPort; C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2009-05-19 240512] R2 TNaviSrv;TOSHIBA Navi Support Service; C:\Program Files\Toshiba\TOSHIBA DVD PLAYER\TNaviSrv.exe [2008-01-21 83312] R2 TODDSrv;TOSHIBA Optical Disc Drive Service; C:\Windows\system32\TODDSrv.exe [2007-11-21 129632] R2 TosCoSrv;TOSHIBA Power Saver; C:\Program Files\Toshiba\Power Saver\TosCoSrv.exe [2008-01-17 431456] R2 TOSHIBA SMART Log Service;TOSHIBA SMART Log Service; C:\Program Files\TOSHIBA\SMARTLogService\TosIPCSrv.exe [2007-12-03 126976] R2 UleadBurningHelper;Ulead Burning Helper; C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe [2006-08-23 49152] R2 XAudioService;XAudioService; C:\Windows\system32\DRIVERS\xaudio.exe [2007-10-17 386560] R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe [2009-02-05 254040] R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast4\ashWebSv.exe [2009-02-05 352920] R3 hpqcxs08;hpqcxs08; C:\Windows\system32\svchost.exe [2008-01-21 21504] S2 Net Driver HPZ12;Net Driver HPZ12; C:\Windows\System32\svchost.exe [2008-01-21 21504] S2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2008-01-21 21504] S2 TOSHIBA Bluetooth Service;TOSHIBA Bluetooth Service; c:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe [] S3 Boonty Games;Boonty Games; C:\Program Files\Common Files\BOONTY Shared\Service\Boonty.exe [2009-10-19 69120] S3 fsssvc;Service Windows Live Contrôle parental; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2009-08-05 704864] S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632] S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712] S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184] -----------------EOF----------------- info.txt logfile of random's system information tool 1.06 2009-11-12 18:50:45 ======Uninstall list====== -->"C:\Program Files\InstallShield Installation Information\{A644254B-92F6-4970-8635-AB0775371E72}\setup.exe" --u:{A644254B-92F6-4970-8635-AB0775371E72} -->C:\Program Files\DivX\DivXConverterUninstall.exe /CONVERTER -->C:\Windows\system32\Macromed\Flash\uninstall_plugin.exe -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{622E6F16-0904-49B6-BBE1-4CC836314CCF}\setup.exe" -l0x40c -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{697AFC77-F318-4CD4-BF16-F50F4C1072DA}\setup.exe" -l0x40c 32 Bit HP CIO Components Installer-->MsiExec.exe /I{F1E63043-54FC-429B-AB2C-31AF9FBA4BC7} Adobe Flash Player 10 ActiveX-->C:\Windows\system32\Macromed\Flash\uninstall_activeX.exe Adobe Flash Player 10 Plugin-->MsiExec.exe /X{ECA1A3B6-898F-4DCE-9F04-714CF3BA126B} Adobe Reader 8.1.4 - Français-->MsiExec.exe /I{AC76BA86-7AD7-1036-7B44-A81300000003} Adobe Shockwave Player 11.5-->C:\Windows\system32\Adobe\uninstaller.exe Advertising Center-->MsiExec.exe /X{b2ec4a38-b545-4a00-8214-13fe0e915e6d} Assistant de connexion Windows Live-->MsiExec.exe /I{D3116CC7-24DC-4CA3-9CE1-23FED836E9F2} avast! Antivirus-->C:\Program Files\Alwil Software\Avast4\aswRunDll.exe "C:\Program Files\Alwil Software\Avast4\Setup\setiface.dll",RunSetup Azureus Vuze-->C:\Program Files\Azureus\uninstall.exe Bluetooth Stack for Windows by Toshiba-->MsiExec.exe /X{CEBB6BFB-D708-4F99-A633-BC2600E01EF6} Camera Assistant Software for Toshiba-->C:\Program Files\InstallShield Installation Information\{37C866E4-AA67-4725-9E95-A39968DD7960}\setup.exe -runfromtemp -l0x040c Catalyst Control Center - Branding-->MsiExec.exe /I{D58A1E94-9EEA-4C6E-B9FB-D7C63DC6C941} CCleaner (remove only)-->"C:\Program Files\CCleaner\uninst.exe" Codeur Windows Media Série 9-->msiexec.exe /I {E38C00D0-A68B-4318-A8A6-F7D4B5B1DF0E} Codeur Windows Media Série 9-->MsiExec.exe /I{E38C00D0-A68B-4318-A8A6-F7D4B5B1DF0E} Conexant HD Audio-->C:\Program Files\CONEXANT\CNXT_AUDIO_HDA\UIU32a.exe -U -ITE1HERza.INF DivX Codec-->C:\Program Files\DivX\DivXCodecUninstall.exe /CODEC DivX Converter-->C:\Program Files\DivX\DivXConverterUninstall.exe /CONVERTER DivX Player-->C:\Program Files\DivX\DivXPlayerUninstall.exe /PLAYER DivX Web Player-->C:\Program Files\DivX\DivXWebPlayerUninstall.exe /PLUGIN DVD MovieFactory for TOSHIBA-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{F214EAA4-A069-4BAF-9DA4-4DB8BEEDE485}\setup.exe" -l0x40c eMule-->"C:\Program Files\eMule\Uninstall.exe" Galerie de photos Windows Live-->MsiExec.exe /X{B131E59D-202C-43C6-84C9-68F0C37541F1} HDAUDIO Soft Data Fax Modem with SmartCP-->C:\Program Files\CONEXANT\CNXT_MODEM_HDAUDIO_VEN_14F1&DEV_5051&SUBSYS_1179\UIU32m.exe -U -ITE1HERzm.INF HDMI Control Manager-->C:\Program Files\InstallShield Installation Information\{CBDF64B0-8CAB-45C7-B3B2-4637C9F88769}\setup.exe -runfromtemp -l0x040c -removeonly HijackThis 2.0.2-->"C:\Program Files\trend micro\HijackThis.exe" /uninstall Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT="" Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT="" HP Customer Participation Program 8.0-->C:\Program Files\HP\Digital Imaging\ExtCapUninstall\hpzscr01.exe -datfile hpqhsc01.dat HP Deskjet All-In-One Driver Software 9.0.A Corporate Edition-->C:\Program Files\HP\Digital Imaging\{B2C61EBB-F47C-48ba-B375-27A40F8F48F7}\setup\hpzscr01.exe -datfile hposcr14.dat HP Deskjet All-In-One Software 8.0-->C:\Program Files\HP\Digital Imaging\{24557DC0-0839-496f-82F9-C4EB72EFE4FA}\setup\hpzscr01.exe -datfile hposcr12.dat HP Imaging Device Functions 8.0-->C:\Program Files\HP\Digital Imaging\DeviceManagement\hpzscr01.exe -datfile hpqbud01.dat HP Photosmart Essential-->MsiExec.exe /X{EB21A812-671B-4D08-B974-2A347F0D8F70} HP Product Assistant-->MsiExec.exe /I{36FDBE6E-6684-462B-AE98-9A39A1B200CC} HP Solution Center 8.0-->C:\Program Files\HP\Digital Imaging\eSupport\hpzscr01.exe -datfile hpqbud05.dat HP Update-->MsiExec.exe /X{7059BDA7-E1DB-442C-B7A1-6144596720A4} HPSSupply-->MsiExec.exe /X{EB75DE50-5754-4F6F-875D-126EDF8E4CB3} Installation Windows Live-->C:\Program Files\Windows Live\Installer\wlarp.exe Installation Windows Live-->MsiExec.exe /I{46ABBC54-1872-4AA3-95E2-F2C063A63F31} Intel® Matrix Storage Manager-->C:\Windows\system32\imsmudlg.exe -uninstall Java 6 Update 15-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216013FF} Java 6 Update 3-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160030} Java 6 Update 7-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160070} Junk Mail filter update-->MsiExec.exe /I{E2DFE069-083E-4631-9B6C-43C48E991DE5} LimeWire 5.2.13-->"C:\Program Files\LimeWire\uninstall.exe" Lphant v3.51-->"C:\Program Files\Lphant\unins000.exe" Malwarebytes' Anti-Malware-->"C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe" Manuels TOSHIBA-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{5B1DD5AA-FF34-4D6E-A912-CB46BB7378DC}\setup.exe" -l0x40c -removeonly Marvell Miniport Driver-->MsiExec.exe /X{C950420B-4182-49EA-850A-A6A2ABF06C6B} Messenger Plus! Live & Sponsor (CiD)-->"C:\Program Files\Messenger Plus! Live\Uninstall.exe" Microsoft .NET Framework 3.5 Language Pack SP1 - fra-->MsiExec.exe /I{3E31821C-7917-367E-938E-E65FC413EA31} Microsoft .NET Framework 3.5 SP1-->C:\Windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe Microsoft .NET Framework 3.5 SP1-->MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} Microsoft Choice Guard-->MsiExec.exe /X{F0E12BBA-AD66-4022-A453-A1C8A0C4D570} Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B} Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0015-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C} Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0016-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C} Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0018-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C} Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0019-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C} Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001A-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C} Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001B-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C} Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0044-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C} Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-006E-040C-0000-0000000FF1CE} /uninstall {B165D3C2-40AE-4D39-86F7-E5C87C4264C0} Microsoft Office Access MUI (French) 2007-->MsiExec.exe /X{90120000-0015-040C-0000-0000000FF1CE} Microsoft Office Excel MUI (French) 2007-->MsiExec.exe /X{90120000-0016-040C-0000-0000000FF1CE} Microsoft Office InfoPath MUI (French) 2007-->MsiExec.exe /X{90120000-0044-040C-0000-0000000FF1CE} Microsoft Office Live Add-in 1.3-->MsiExec.exe /I{57F0ED40-8F11-41AA-B926-4A66D0D1A9CC} Microsoft Office Outlook Connector-->MsiExec.exe /I{95120000-0122-040C-0000-0000000FF1CE} Microsoft Office Outlook MUI (French) 2007-->MsiExec.exe /X{90120000-001A-040C-0000-0000000FF1CE} Microsoft Office PowerPoint MUI (French) 2007-->MsiExec.exe /X{90120000-0018-040C-0000-0000000FF1CE} Microsoft Office PowerPoint Viewer 2007 (French)-->MsiExec.exe /X{95120000-00AF-040C-0000-0000000FF1CE} Microsoft Office Professional Plus 2007-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall PROPLUS /dll OSETUP.DLL Microsoft Office Professional Plus 2007-->MsiExec.exe /X{90120000-0011-0000-0000-0000000FF1CE} Microsoft Office Proof (Arabic) 2007-->MsiExec.exe /X{90120000-001F-0401-0000-0000000FF1CE} Microsoft Office Proof (Dutch) 2007-->MsiExec.exe /X{90120000-001F-0413-0000-0000000FF1CE} Microsoft Office Proof (English) 2007-->MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE} Microsoft Office Proof (French) 2007-->MsiExec.exe /X{90120000-001F-040C-0000-0000000FF1CE} Microsoft Office Proof (German) 2007-->MsiExec.exe /X{90120000-001F-0407-0000-0000000FF1CE} Microsoft Office Proof (Spanish) 2007-->MsiExec.exe /X{90120000-001F-0C0A-0000-0000000FF1CE} Microsoft Office Proofing (French) 2007-->MsiExec.exe /X{90120000-002C-040C-0000-0000000FF1CE} Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0401-0000-0000000FF1CE} /uninstall {14809F99-C601-4D4A-9391-F1E8FAA964C5} Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0407-0000-0000000FF1CE} /uninstall {A0516415-ED61-419A-981D-93596DA74165} Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0409-0000-0000000FF1CE} /uninstall {ABDDE972-355B-4AF1-89A8-DA50B7B5C045} Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-040C-0000-0000000FF1CE} /uninstall {F580DDD5-8D37-4998-968E-EBB76BB86787} Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0413-0000-0000000FF1CE} /uninstall {D66D5A44-E480-4BA4-B4F2-C554F6B30EBB} Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0C0A-0000-0000000FF1CE} /uninstall {187308AB-5FA7-4F14-9AB9-D290383A10D9} Microsoft Office Publisher MUI (French) 2007-->MsiExec.exe /X{90120000-0019-040C-0000-0000000FF1CE} Microsoft Office Shared MUI (French) 2007-->MsiExec.exe /X{90120000-006E-040C-0000-0000000FF1CE} Microsoft Office Word MUI (French) 2007-->MsiExec.exe /X{90120000-001B-040C-0000-0000000FF1CE} Microsoft Search Enhancement Pack-->MsiExec.exe /X{4CBA3D4C-8F51-4D60-B27E-F6B641C571E7} Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} Microsoft SQL Server 2005 Compact Edition [ENU]-->MsiExec.exe /I{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8} Microsoft Sync Framework Runtime Native v1.0 (x86)-->MsiExec.exe /I{8A74E887-8F0F-4017-AF53-CBA42211AAA5} Microsoft Sync Framework Services Native v1.0 (x86)-->MsiExec.exe /I{BD64AF4A-8C80-4152-AD77-FCDDF05208AB} Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053-->MsiExec.exe /X{770657D0-A123-3C07-8E44-1C83EC895118} Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d} Microsoft Works-->MsiExec.exe /I{3B160861-7250-451E-B5EE-8B92BF30A710} Mise à jour Microsoft Office Excel 2007 Help (KB963678)-->msiexec /package {90120000-0016-040C-0000-0000000FF1CE} /uninstall {B761869A-B85C-40E2-994C-A1CE78AC8F2C} Mise à jour Microsoft Office Outlook 2007 Help (KB963677)-->msiexec /package {90120000-001A-040C-0000-0000000FF1CE} /uninstall {51EFB347-1F3D-4BAC-8B79-F056B904FE21} Mise à jour Microsoft Office Powerpoint 2007 Help (KB963669)-->msiexec /package {90120000-0018-040C-0000-0000000FF1CE} /uninstall {C3DCA38E-005E-41BA-A52A-7C3429F351C3} Mise à jour Microsoft Office Word 2007 Help (KB963665)-->msiexec /package {90120000-001B-040C-0000-0000000FF1CE} /uninstall {81536A04-DBFB-4DB3-978F-0F284590C223} Module de compatibilité pour Microsoft Office System 2007-->MsiExec.exe /X{90120000-0020-040C-0000-0000000FF1CE} Module linguistique Microsoft .NET Framework 3.5 SP1- fra-->C:\Windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack SP1 - fra\setup.exe MSVCRT-->MsiExec.exe /I{22B775E7-6C42-4FC5-8E10-9A5E3257BD94} MSXML 4.0 SP2 (KB941833)-->MsiExec.exe /I{C523D256-313D-4866-B36A-F3DE528246EF} MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71} Nero 9 Essentials-->C:\Program Files\Common Files\Nero\Nero ProductInstaller 4\SetupX.exe REMOVESERIALNUMBER="XM02-508X-MHAT-19WU-9Z3Z-0CH0-3U6E-85W5-MMHH-6647-1Z5L-7M8C-0U45-758P-0000" Nero ControlCenter-->MsiExec.exe /X{bd5ca0da-71ad-43da-b19e-6eee0c9adc9a} Nero Installer-->MsiExec.exe /X{e8a80433-302b-4ff1-815d-fcc8eac482ff} Nero Online Upgrade-->MsiExec.exe /X{dba84796-8503-4ff0-af57-1747dd9a166d} Nero StartSmart OEM-->MsiExec.exe /X{4D43D635-6FDA-4fa5-AA9B-23CF73D058EA} Nero StartSmart-->MsiExec.exe /X{7748ac8c-18e3-43bb-959b-088faea16fb2} neroxml-->MsiExec.exe /I{56C049BE-79E9-4502-BEA7-9754A3E60F9B} O2Micro Flash Memory Card Reader Driver (x86)-->MsiExec.exe /X{372B31CF-77FB-4E29-860C-A0EA2985AB7F} OGA Notifier 2.0.0048.0-->MsiExec.exe /I{B2544A03-10D0-4E5E-BA69-0362FFC20D18} OpenOffice.org 3.1-->MsiExec.exe /I{0FA44E79-CD7D-4E8D-A2EE-26FE05F509B6} Outil de téléchargement Windows Live-->MsiExec.exe /I{205C6BDD-7B73-42DE-8505-9A093F35A238} PDF-XChange 3-->"C:\Program Files\Tracker Software\PDF-XChange 3\unins000.exe" PhotoFiltre Studio-->"C:\Program Files\PhotoFiltre Studio\Uninst.exe" Réducteur de bruit du lecteur de CD/DVD-->C:\Program Files\InstallShield Installation Information\{9FE35071-CAB2-4E79-93E7-BFC6A2DC5C5D}\setup.exe -runfromtemp -l0x040c -removeonly Security Update for 2007 Microsoft Office System (KB969559)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {69F52148-9BF6-4CDC-BF76-103DEAF3DD08} Security Update for 2007 Microsoft Office System (KB969679)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {C66E4A6C-6E07-4C63-8CCD-2493B5087C73} Security Update for Microsoft Office Excel 2007 (KB969682)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {C03803BD-745A-46F8-8557-817DED578780} Security Update for Microsoft Office Outlook 2007 (KB972363)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {120BE9A0-9B09-4855-9E0C-7DEE45CB03C0} Security Update for Microsoft Office PowerPoint 2007 (KB957789)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {7559E742-FF9F-4FAE-B279-008ED296CB4D} Security Update for Microsoft Office Publisher 2007 (KB969693)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {7BE67088-1EB3-4569-8E75-DDAFBF61BC4E} Security Update for Microsoft Office system 2007 (972581)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {3D019598-7B59-447A-80AE-815B703B84FF} Security Update for Microsoft Office system 2007 (KB969613)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {5ECEB317-CBE9-4E08-AB10-756CB6F0FB6C} Security Update for Microsoft Office system 2007 (KB974234)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {FCD742B9-7A55-44BC-A776-F795F21FEDDC} Security Update for Microsoft Office Visio Viewer 2007 (KB973709)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {71127777-8B2C-4F97-AF7A-6CF8CAC8224D} Security Update for Microsoft Office Word 2007 (KB969604)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {CF3D6499-709C-43D0-8908-BC5652656050} Security Update for Windows Media Encoder (KB954156)-->msiexec.exe /I {E38C00D0-A68B-4318-A8A6-F7D4B5B1DF0E} MSIPATCHREMOVE={E836F1B7-43FB-46B0-A0D9-E4D2A5951659} /qb Spelling Dictionaries Support For Adobe Reader 8-->MsiExec.exe /I{AC76BA86-7AD7-5464-3428-800000000003} Spybot - Search & Destroy-->"C:\Program Files\Spybot - Search & Destroy\unins000.exe" Studio-Scrap 2-->"C:\Program Files\StudioScrap2-Decouverte\unins000.exe" Synaptics Pointing Device Driver-->rundll32.exe "C:\Program Files\Synaptics\SynTP\SynISDLL.dll",standAloneUninstall TOSHIBA Assist-->C:\Program Files\InstallShield Installation Information\{12B3A009-A080-4619-9A2A-C6DB151D8D67}\setup.exe -runfromtemp -l0x040c -removeonly TOSHIBA ConfigFree-->MsiExec.exe /X{78C6A78A-8B03-48C8-A47C-78BA1FCA2307} TOSHIBA Disc Creator-->MsiExec.exe /X{5DA0E02F-970B-424B-BF41-513A5018E4C0} TOSHIBA DVD PLAYER-->C:\Program Files\InstallShield Installation Information\{6C5F3BDC-0A1B-4436-A696-5939629D5C31}\setup.exe -runfromtemp -l0x040c -ADDREMOVE -removeonly TOSHIBA Extended Tiles for Windows Mobility Center-->C:\Program Files\InstallShield Installation Information\{617C36FD-0CBE-4600-84B2-441CEB12FADF}\setup.exe -runfromtemp -l0x040c TOSHIBA Face Recognition-->"C:\Program Files\InstallShield Installation Information\{C730E42C-935A-45BB-A0C5-37E5234D111B}\setup.exe" -runfromtemp -l0x040c -removeonly TOSHIBA Face Recognition-->MsiExec.exe /I{C730E42C-935A-45BB-A0C5-37E5234D111B} TOSHIBA Hardware Setup-->C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\11\INTEL3~1\IDriver.exe /M{52573F8D-F099-4CB5-9EDE-5C27ECB4A02B} /l1036 Toshiba Online Product Information-->C:\Program Files\InstallShield Installation Information\{2290A680-4083-410A-ADCC-7092C67FC052}\setup.exe -runfromtemp -l0x040c -removeonly TOSHIBA Recovery Disc Creator-->MsiExec.exe /X{B65BBB06-1F8E-48F5-8A54-B024A9E15FDF} TOSHIBA SD Memory Utilities-->MsiExec.exe /X{EBFF48F5-3CFA-436F-8FD5-94FB01D3A0A7} TOSHIBA Supervisor Password-->C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\11\INTEL3~1\IDriver.exe /M{491DD193-1B57-4D1C-8B14-18B96992A89F} /l1036 TOSHIBA Value Added Package-->C:\Program Files\InstallShield Installation Information\{FEDD27A0-B306-45EF-BF58-B527406B42C8}\setup.exe -runfromtemp -l0x040c TRDCReminder-->C:\Program Files\InstallShield Installation Information\{773970F1-5EBA-4474-ADEE-1EA3B0A59492}\setup.exe -runfromtemp -l0x040c TRORDCLauncher-->C:\Program Files\InstallShield Installation Information\{E65C7D8E-186D-484B-BEA8-DEF0331CE600}\setup.exe -runfromtemp -l0x040c Update for 2007 Microsoft Office System (KB967642)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {C444285D-5E4F-48A4-91DD-47AAAA68E92D} Update for Microsoft .NET Framework 3.5 SP1 (KB963707)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {B2AE9C82-DC7B-3641-BFC8-87275C4F3607} /qb+ REBOOTPROMPT="" Update for Outlook 2007 Junk Email Filter (KB974810)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {C05FBAD5-A211-4E86-BB51-7E07B80C9233} VideoLAN VLC media player 0.8.6f-->C:\Program Files\VideoLAN\VLC\uninstall.exe Windows Live Call-->MsiExec.exe /I{82C7B308-0BDD-49D8-8EA5-9CD3A3F9DF41} Windows Live Communications Platform-->MsiExec.exe /I{3B4E636E-9D65-4D67-BA61-189800823F52} Windows Live Contrôle parental-->MsiExec.exe /X{D5D81435-B8DE-4CAF-867F-7998F2B92CFC} Windows Live FolderShare-->MsiExec.exe /X{2075CB0A-D26F-4DAA-B424-5079296B43BA} Windows Live Mail-->MsiExec.exe /I{5DD76286-9BE7-4894-A990-E905E91AC818} Windows Live Messenger-->MsiExec.exe /X{770F1BEC-2871-4E70-B837-FB8525FFA3B1} Windows Live Movie Maker-->MsiExec.exe /X{53B20C18-D8D4-4588-8737-9BBFE303C354} Windows Live Toolbar-->MsiExec.exe /X{F7D27C70-90F5-49B9-B188-0A133C0CE353} Windows Live Writer-->MsiExec.exe /X{4634B21A-CC07-4396-890C-2B8168661FEA} WinRAR archiver-->C:\Program Files\WinRAR\uninstall.exe ======Security center information====== AV: avast! antivirus 4.8.1335 [VPS 090228-0] AS: Spybot - Search and Destroy (outdated) AS: Windows Defender AS: avast! antivirus 4.8.1335 [VPS 090228-0] =====Application event log===== Computer Name: PC-de-utilisate Event Code: 4621 Message: Le système d'événements de COM+ n'a pas pu supprimer l'objet EventSystem.EventSubscription {CEB8B221-89C5-41A8-98CE-79B413BF150B}-{00000000-0000-0000-0000-000000000000}-{00000000-0000-0000-0000-000000000000}. HRESULT : 80070005. Record Number: 754 Source Name: Microsoft-Windows-EventSystem Time Written: 20080517104832.000000-000 Event Type: Erreur User: Computer Name: PC-de-utilisate Event Code: 10 Message: Le filtre d’événement avec la requête « SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99 » n’a pas pu être réactivé dans l’espace de noms « //./root/CIMV2 » à cause de l’erreur 0x80041003. Les événements ne peuvent pas être délivrés à travers ce filtre tant que le problème ne sera pas corrigé. Record Number: 750 Source Name: Microsoft-Windows-WMI Time Written: 20080517102338.000000-000 Event Type: Erreur User: Computer Name: PC-de-utilisate Event Code: 1530 Message: Windows a détecté que votre fichier de Registre est toujours utilisé par d'autres applications ou services. Le fichier va être déchargé. Les applications ou services qui ont accès à votre Registre risquent de ne pas fonctionner correctement après cela. DÉTAIL - 1 user registry handles leaked from \Registry\User\S-1-5-21-3621383982-3240807562-3576991656-1000: Process 604 (\Device\HarddiskVolume2\Windows\System32\winlogon.exe) has opened key \REGISTRY\USER\S-1-5-21-3621383982-3240807562-3576991656-1000 Record Number: 732 Source Name: Microsoft-Windows-User Profiles Service Time Written: 20080517102045.000000-000 Event Type: Avertissement User: AUTORITE NT\SYSTEM Computer Name: PC-de-utilisate Event Code: 4621 Message: Le système d'événements de COM+ n'a pas pu supprimer l'objet EventSystem.EventSubscription {CEB8B221-89C5-41A8-98CE-79B413BF150B}-{00000000-0000-0000-0000-000000000000}-{00000000-0000-0000-0000-000000000000}. HRESULT : 80070005. Record Number: 729 Source Name: Microsoft-Windows-EventSystem Time Written: 20080517102043.000000-000 Event Type: Erreur User: Computer Name: WIN-4VNA5C5BBF4 Event Code: 1036 Message: Échec de InitializePrintProvider pour le fournisseur inetpp.dll. Cela peut se produire à la suite d’une instabilité du système ou d’une insuffisance des ressources système. Record Number: 556 Source Name: Microsoft-Windows-SpoolerSpoolss Time Written: 20080517090323.000000-000 Event Type: Avertissement User: AUTORITE NT\SYSTEM =====Security event log===== Computer Name: WIN-4VNA5C5BBF4 Event Code: 4647 Message: Fermeture de session initiée par l’utilisateur : Sujet : ID de sécurité : S-1-5-21-2147041312-2129722670-2810075626-500 Nom du compte : Administrator Domaine du compte : WIN-4VNA5C5BBF4 ID d’ouverture de session : 0x27b47 Cet événement est généré lorsqu’une fermeture de session est initiée, mais que le nombre de références du jeton n’étant pas zéro, la session ouverte ne peut pas être supprimée. Aucune autre activité initiée par l’utilisateur ne peut se produire. Cet événement peut être interprété comme un événement de fermeture de session. Record Number: 616 Source Name: Microsoft-Windows-Security-Auditing Time Written: 20080226161457.768400-000 Event Type: Succès de l'audit User: Computer Name: WIN-4VNA5C5BBF4 Event Code: 4634 Message: Fermeture de session d’un compte. Sujet : ID de sécurité : S-1-5-7 Nom du compte : ANONYMOUS LOGON Domaine du compte : AUTORITE NT ID du compte : 0x1c358 Type d’ouverture de session : 3 Cet événement est généré lorsqu’une session ouverte est supprimée. Il peut être associé à un événement d’ouverture de session en utilisant la valeur ID d’ouverture de session. Les ID d’ouverture de session ne sont uniques qu’entre les redémarrages sur un même ordinateur. Record Number: 615 Source Name: Microsoft-Windows-Security-Auditing Time Written: 20080226161449.360000-000 Event Type: Succès de l'audit User: Computer Name: WIN-4VNA5C5BBF4 Event Code: 4616 Message: L’heure du système a été modifiée. Sujet : ID de sécurité : S-1-5-19 Nom du compte : SERVICE LOCAL Domaine du compte : AUTORITE NT ID d’ouverture de session : 0x3e5 Informations sur le processus : ID du processus : 0x454 Nom : C:\Windows\System32\svchost.exe Heure précédente : 17:14:44 26/02/2008 Nouvelle heure : 17:14:44 26/02/2008 Cet événement est généré lorsque l’heure du système est modifiée. Le changement régulier de l’heure du système est une opération normale de la part du service de temps Windows qui s’exécute avec des privilèges système. Mais, d’autres modifications de l’heure du système peuvent indiquer des tentatives de falsification de l’ordinateur. Record Number: 614 Source Name: Microsoft-Windows-Security-Auditing Time Written: 20080226161446.817200-000 Event Type: Succès de l'audit User: Computer Name: WIN-4VNA5C5BBF4 Event Code: 1100 Message: Le service d’enregistrement des événements a été arrêté. Record Number: 613 Source Name: Microsoft-Windows-Eventlog Time Written: 20080226161443.650804-000 Event Type: Succès de l'audit User: Computer Name: WIN-4VNA5C5BBF4 Event Code: 1102 Message: Le journal d’audit a été effacé. Objet : ID de sécurité : S-1-5-21-2147041312-2129722670-2810075626-500 Nom de compte : Administrator Nom de domaine : WIN-4VNA5C5BBF4 ID de connexion : 0x27b47 Record Number: 612 Source Name: Microsoft-Windows-Eventlog Time Written: 20080226161411.530404-000 Event Type: Succès de l'audit User: ======Environment variables====== "ComSpec"=%SystemRoot%\system32\cmd.exe "FP_NO_HOST_CHECK"=NO "OS"=Windows_NT "Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\PROGRA~1\COMMON~1\ULEADS~1\MPEG;C:\Program Files\ATI Technologies\ATI.ACE\Core-Static "PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC "PROCESSOR_ARCHITECTURE"=x86 "TEMP"=%SystemRoot%\TEMP "TMP"=%SystemRoot%\TEMP "USERNAME"=SYSTEM "windir"=%SystemRoot% "PROCESSOR_LEVEL"=6 "PROCESSOR_IDENTIFIER"=x86 Family 6 Model 23 Stepping 6, GenuineIntel "PROCESSOR_REVISION"=1706 "NUMBER_OF_PROCESSORS"=2 "TRACE_FORMAT_SEARCH_PATH"=\\NTREL202.ntdev.corp.microsoft.com\4F18C3A5-CA09-4DBD-B6FC-219FDD4C6BE0\TraceFormat "DFSTRACINGON"=FALSE -----------------EOF----------------- En espèrant ne pas m'être trompée et à nouveau je vous dit merci d'avance de m'aider.
  14. Bonjour, Je voudrais aujourd'hui vous faire part d'un problème qui persiste depuis des mois car je n'ai toujours trouvé comment le résoudre. Le fait est que des mails comportant des pubs (ebay etc) sont envoyés à tous mes contacts automatiquement. J'ai donc fait un scan anti virus qui n'a rien donné puis un scan avec un antispyware spybot. Celui a trouvé 2 problèmes avec FastbrowserSearchToolbar (or il est vrai que l'adresse http://tab.fastbrowsersearch.com/?v=18&tid=0 s'est automatiquement elle aussi mise comme page de démarrage de mes onglets. Avec Spybot dans le descriptif des 2 erreurs sont des clés du registre FastBrowserSearchToolbar: [sBI $B4FBE6F2] Browser helper object (Clé du registre, nothing done) HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F0626A63-410B-45E2-99A1-3F2475B2D695} FastBrowserSearchToolbar: [sBI $3E653768] Class ID (Clé du registre, nothing done) HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1BB22D38-A411-4B13-A746-C2A4F4EC7344} Et c'est là que je demande votre aide car je ne sais pas trop si je dois toucher à quelque chose des clés ou non et si d'ailleurs mon problème de mails est relié à ces erreurs ou à autre chose. Merci. Ana
×
×
  • Créer...