Aller au contenu

Guillaume L

Membres
  • Compteur de contenus

    49
  • Inscription

  • Dernière visite

Tout ce qui a été posté par Guillaume L

  1. bon je suis passé par cjoint : du coup ca donne ca le rapport zhpdiag : http://www.cjoint.com/c/GJEmT6b2D3t merci pour l'aide
  2. bonjour Pear, je n'arrive pas à copier coller le rapport sur le forum, ca me dit que mon message est trop court ? je comprends pas comment faire
  3. bonjour à tous, je ne sais plus quoi faire, mon ordinateur est extremement lent, c'en est une catastrophe. Je ne sais pas d'où cela peut venir. J'ai deja fait une analyse avec mon anti virus je ne trouve rien. Au cas ou je poste un rapport hijackthis, je ne sais pas si cela peut aider. Merci pour votre aide !! Guillaume PS : je suis sous windows 7 Edit de Notpa : Masqué long rapport pour faciliter la lecture/
  4. bonjour, voilà le rapport demandé : Rapport de ZHPFix 2013.7.20.5 par Nicolas Coolman, Update du 20/07/2013 Fichier d'export Registre : Run by Guilaume at 03/08/2013 11:00:23 High Elevated Privileges : OK Windows 7 Home Premium Edition, 64-bit Service Pack 1 (Build 7601) Corbeille vidée ========== Clé(s) du Registre ========== SUPPRIME Key*: HKLM\Software\Classes\Interface\{db885111-f39f-4d88-9ee5-c88460b6df7b} SUPPRIME Key*: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\9EC6D81181F59F2459A84176A626F9ED SUPPRIME Key*: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\F1057DD419AED0B468AD8888429E139A SUPPRIME Key: HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{31111111-1111-1111-1111-110211701196} SUPPRIME CLSID MPSK: {41dcacbe-06f2-11e2-bc9d-002243c48132} SUPPRIME Key*: StartupReg: Akamai NetSession Interface SUPPRIME Key*: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375 SUPPRIME Key*: HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5 ========== Valeur(s) du Registre ========== SUPPRIME RunValue: AdobeBridge ABSENT RunValue: AdobeBridge SUPPRIME AAKE KeyValue: C:\WINDOWS\System32\slpd.exe SUPPRIME ServiceLocationProtocolTool-In SUPPRIME ServiceLocationProtocol-In SUPPRIME {AF04B5B4-B657-4350-A026-3DC543BD95EC} SUPPRIME {7336E9E7-0106-4FC0-B290-EB88B641B06B} SUPPRIME TCP Query User{51490D02-B9E5-4D84-9D7F-010971F96C1E}C:\users\guilaume\appdata\local\akamai\netsession_win.exe SUPPRIME UDP Query User{35942901-7A0A-447F-9B13-847FB10D9B7A}C:\users\guilaume\appdata\local\akamai\netsession_win.exe SUPPRIME TCP Query User{DF26B368-8BF2-479A-9125-4EA433ECEFC4}C:\users\guilaume\appdata\local\akamai\netsession_win.exe SUPPRIME UDP Query User{A0D3071B-DA56-4B9E-BC44-051F423E2021}C:\users\guilaume\appdata\local\akamai\netsession_win.exe ABSENT Valeur Standard Profile: FirewallRaz : ABSENT Valeur Domain Profile: FirewallRaz : ========== Dossier(s) ========== Aucun dossiers CLSID Local utilisateur vide ========== Fichier(s) ========== SUPPRIME File: c:\users\guilaume\desktop\webplayer.lnk ABSENT File: c:\users\guilaume\appdata\roaming\microsoft\installer\{9937e55b-6331-4804-93ef-77e992f204bd}\_481820ca410c366184e158.exe ABSENT Folder/File: c:\users\guilaume\appdata\roaming\microsoft\installer\{9937e55b-6331-4804-93ef-77e992f204bd}\_481820ca410c366184e158.exe ABSENT File: c:\users\guilaume\appdata\roaming\microsoft\windows\sendto\o4 - gs\sendto: dropbox.lnk SUPPRIME File: c:\users\guilaume\desktop\débrancher usb.lnk ABSENT File: ystem32\rundll32.exe SUPPRIME File: c:\users\guilaume\desktop\ordinateur - raccourci.lnk SUPPRIME Reboot c:\windows\slpd.log ABSENT File: c:\windows\system32\slpd.exe ABSENT File: c:\users\guilaume\appdata\local\akamai\netsession_win.exe SUPPRIME Flash Cookies SUPPRIME Temporaires Windows ========== Tache planifiée ========== SUPPRIME Task: Ad-Aware Update (Weekly) ========== Restauration Système ========== Point de restauration du système créé avec succès ========== Récapitulatif ========== 8 : Clé(s) du Registre 13 : Valeur(s) du Registre 1 : Dossier(s) 12 : Fichier(s) 1 : Tache planifiée 1 : Restauration Système End of clean in 01mn 30s ========== Chemin de fichier rapport ========== C:\ZHP\ZHPFix[R1].txt - 03/08/2013 09:57:41 [434] C:\ZHP\ZHPFix[R2].txt - 03/08/2013 11:00:28 [3489] et sinon je comprends pas mais maintenant j'ai des pubs qui apparaissent... merci de votre aide pour tout cela
  5. bonsoir voilà mes rapports : © CJoint.com, 2012 © CJoint.com, 2012 © CJoint.com, 2012 © CJoint.com, 2012 et enfin le rapport zhpdiag © CJoint.com, 2012 voilà merci encore pour votre aide Que dois je faire maintenant ? bonne soirée
  6. bonjour, merci pour ce debut de soutien voilà le lien avec le rapport zhpdiag © CJoint.com, 2012 merci
  7. bonjour à tous j'ai mon internet qui est devenu tres lent. ca rame et met dit souvent que la page est innacessible. Le reste du systeme souffre aussi de lenteur. je vous poste le rapport hijackthis pour voir si vous trouvez qqc. Merci de votre aide ! Bonne journée Guillaume Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 13:51:20, on 02/08/2013 Platform: Windows 7 SP1 (WinNT 6.00.3505) MSIE: Internet Explorer v10.0 (10.00.9200.16635) FIREFOX: 22.0 (fr) Boot mode: Normal Running processes: C:\Users\Guilaume\AppData\Roaming\Dropbox\bin\Dropbox.exe C:\Program Files (x86)\ASUS\ATKOSD2\ATKOSD2.exe C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe C:\Program Files (x86)\Microsoft Office\Office12\EXCEL.EXE C:\Program Files (x86)\Mozilla Firefox\firefox.exe C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_8_800_94.exe C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_8_800_94.exe C:\Users\Guilaume\Downloads\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Bing R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN.fr - Actualités, magazines people & féminin, Outlook et Hotmail R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = MSN.fr - Actualités, magazines people & féminin, Outlook et Hotmail R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = F2 - REG:system.ini: UserInit=userinit.exe O1 - Hosts: ::1 localhost O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll O4 - HKLM\..\Run: [ATKOSD2] C:\Program Files (x86)\ASUS\ATKOSD2\ATKOSD2.exe O4 - HKLM\..\Run: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'SERVICE LOCAL') O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'SERVICE LOCAL') O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'SERVICE RÉSEAU') O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'SERVICE RÉSEAU') O4 - Startup: Dropbox.lnk = Guilaume\AppData\Roaming\Dropbox\bin\Dropbox.exe O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~2\Office12\EXCEL.EXE/3000 O8 - Extra context menu item: ÔÚFoxmailÖÐÌí¼Ó¸ÃRSSƵµÀ/ƵµÀ×é - res://C:\Windows\system32\rsslink.dll/201 O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~2\Office12\REFIEBAR.DLL O9 - Extra button: Afficher ou masquer l'HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O16 - DPF: {8A5BE387-D09A-4DFA-A56B-DCB89BD11468} (20-20 3D Viewer for WEB) - http://hygena.2020.net/planner/Core/Player/2020PlayerAX_WEB_Win32.cab O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: @%SystemRoot%\system32\aelupsvc.dll,-1 (AeLookupSvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing) O23 - Service: Avira Planificateur (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe O23 - Service: Avira Protection temps réel (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe O23 - Service: @%systemroot%\system32\appidsvc.dll,-100 (AppIDSvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\appinfo.dll,-100 (Appinfo) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\audiosrv.dll,-204 (AudioEndpointBuilder) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\audiosrv.dll,-200 (AudioSrv) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\AxInstSV.dll,-103 (AxInstSV) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\bdesvc.dll,-100 (BDESVC) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\bfe.dll,-1001 (BFE) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\qmgr.dll,-1000 (BITS) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%systemroot%\system32\browser.dll,-100 (Browser) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\System32\bthserv.dll,-101 (bthserv) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe O23 - Service: @%SystemRoot%\system32\cryptsvc.dll,-1001 (CryptSvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @oleres.dll,-5012 (DcomLaunch) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\defragsvc.dll,-101 (defragsvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\dhcpcore.dll,-100 (Dhcp) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\System32\dnsapi.dll,-101 (Dnscache) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\dot3svc.dll,-1102 (dot3svc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\dps.dll,-500 (DPS) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%systemroot%\system32\eapsvc.dll,-1 (EapHost) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\ehome\ehrecvr.exe,-101 (ehRecvr) - Unknown owner - C:\Windows\ehome\ehRecvr.exe O23 - Service: @%SystemRoot%\ehome\ehsched.exe,-101 (ehSched) - Unknown owner - C:\Windows\ehome\ehsched.exe O23 - Service: @%SystemRoot%\system32\wevtsvc.dll,-200 (eventlog) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @comres.dll,-2450 (EventSystem) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing) O23 - Service: @%systemroot%\system32\fdPHost.dll,-100 (fdPHost) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\fdrespub.dll,-100 (FDResPub) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\FntCache.dll,-100 (FontCache) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @gpapi.dll,-112 (gpsvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\System32\hidserv.dll,-101 (hidserv) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\kmsvc.dll,-6 (hkmsvc) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\System32\ListSvc.dll,-100 (HomeGroupListener) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\System32\provsvc.dll,-100 (HomeGroupProvider) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: hpqcxs08 - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: Service HP CUE DeviceDiscovery (hpqddsvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: HP Network Devices Support (HPSLPSVC) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\ikeext.dll,-501 (IKEEXT) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\IPBusEnum.dll,-102 (IPBusEnum) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\iphlpsvc.dll,-500 (iphlpsvc) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @comres.dll,-2946 (KtmRm) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%systemroot%\system32\srvsvc.dll,-100 (LanmanServer) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\wkssvc.dll,-100 (LanmanWorkstation) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\lltdres.dll,-1 (lltdsvc) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\lmhsvc.dll,-101 (lmhosts) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\mmcss.dll,-100 (MMCSS) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe O23 - Service: @%SystemRoot%\system32\FirewallAPI.dll,-23090 (MpsSvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing) O23 - Service: @%SystemRoot%\system32\msimsg.dll,-27 (msiserver) - Unknown owner - C:\Windows\system32\msiexec.exe O23 - Service: @%SystemRoot%\system32\qagentrt.dll,-6 (napagent) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: Net Driver HPZ12 - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\netman.dll,-109 (Netman) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\netprofm.dll,-202 (netprofm) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\System32\nlasvc.dll,-1 (NlaSvc) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\nsisvc.dll,-200 (nsi) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing) O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe O23 - Service: @%SystemRoot%\system32\pnrpsvc.dll,-8004 (p2pimsvc) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\p2psvc.dll,-8006 (p2psvc) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\pcasvc.dll,-1 (PcaSvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\sysWow64\perfhost.exe,-2 (PerfHost) - Unknown owner - C:\Windows\SysWow64\perfhost.exe O23 - Service: @%systemroot%\system32\pla.dll,-500 (pla) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\umpnpmgr.dll,-100 (PlugPlay) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: Pml Driver HPZ12 - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\pnrpauto.dll,-8002 (PNRPAutoReg) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\pnrpsvc.dll,-8000 (PNRPsvc) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\System32\polstore.dll,-5010 (PolicyAgent) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\umpo.dll,-100 (Power) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\profsvc.dll,-300 (ProfSvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\qwave.dll,-1 (QWAVE) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%Systemroot%\system32\rasauto.dll,-200 (RasAuto) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%Systemroot%\system32\rasmans.dll,-200 (RasMan) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @regsvc.dll,-1 (RemoteRegistry) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%windir%\system32\RpcEpMap.dll,-1001 (RpcEptMapper) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing) O23 - Service: Remote Procedure Call (RPC) Net (rpcnet) - Absolute Software Corp. - C:\Windows\SysWOW64\rpcnet.exe O23 - Service: @oleres.dll,-5010 (RpcSs) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\schedsvc.dll,-100 (Schedule) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\sdrsvc.dll,-107 (SDRSVC) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\seclogon.dll,-7001 (seclogon) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\Sens.dll,-200 (SENS) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\System32\sensrsvc.dll,-1000 (SensrSvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: Sentinel Keys Server (SentinelKeysServer) - SafeNet, Inc. - C:\Program Files (x86)\Common Files\SafeNet Sentinel\Sentinel Keys Server\sntlkeyssrvr.exe O23 - Service: Sentinel Protection Server (SentinelProtectionServer) - SafeNet, Inc - C:\Program Files (x86)\Common Files\SafeNet Sentinel\Sentinel Protection Server\WinNT\spnsrvnt.exe O23 - Service: @%SystemRoot%\System32\SessEnv.dll,-1026 (SessionEnv) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\ipnathlp.dll,-106 (SharedAccess) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\System32\shsvcs.dll,-12288 (ShellHWDetection) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: Service Location Protocol (slpd) - Unknown owner - C:\Windows\SysWOW64\slpd.exe O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing) O23 - Service: spmgr - Unknown owner - C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppuinotify.dll,-103 (sppuinotify) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\ssdpsrv.dll,-100 (SSDPSRV) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\sstpsvc.dll,-200 (SstpSvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe O23 - Service: @%SystemRoot%\system32\wiaservc.dll,-9 (stisvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe O23 - Service: @%SystemRoot%\System32\swprv.dll,-103 (swprv) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\sysmain.dll,-1000 (SysMain) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\TabSvc.dll,-100 (TabletInputService) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\tapisrv.dll,-10100 (TapiSrv) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\tbssvc.dll,-100 (TBS) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\System32\termsrv.dll,-268 (TermService) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\System32\themeservice.dll,-8192 (Themes) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%systemroot%\system32\mmcss.dll,-102 (THREADORDER) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\trkwks.dll,-1 (TrkWks) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\servicing\TrustedInstaller.exe,-100 (TrustedInstaller) - Unknown owner - C:\Windows\servicing\TrustedInstaller.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing) O23 - Service: @%systemroot%\system32\upnphost.dll,-213 (upnphost) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\dwm.exe,-2000 (UxSms) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing) O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing) O23 - Service: @%systemroot%\system32\wbiosrvc.dll,-100 (WbioSrvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\wcncsvc.dll,-3 (wcncsvc) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\WcsPlugInService.dll,-200 (WcsPlugInService) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%systemroot%\system32\wdi.dll,-502 (WdiServiceHost) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%systemroot%\system32\wdi.dll,-500 (WdiSystemHost) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%systemroot%\system32\webclnt.dll,-100 (WebClient) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\wecsvc.dll,-200 (Wecsvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\System32\wercplsupport.dll,-101 (wercplsupport) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\System32\wersvc.dll,-100 (WerSvc) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%ProgramFiles%\Windows Defender\MsMpRes.dll,-103 (WinDefend) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\system32\winhttp.dll,-100 (WinHttpAutoProxySvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%Systemroot%\system32\wbem\wmisvc.dll,-205 (Winmgmt) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%Systemroot%\system32\wsmsvc.dll,-101 (WinRM) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%SystemRoot%\System32\wlansvc.dll,-257 (Wlansvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) O23 - Service: @%SystemRoot%\system32\wpdbusenum.dll,-100 (WPDBusEnum) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\System32\wscsvc.dll,-200 (wscsvc) - Unknown owner - C:\Windows\System32\svchost.exe O23 - Service: @%systemroot%\system32\SearchIndexer.exe,-103 (WSearch) - Unknown owner - C:\Windows\system32\SearchIndexer.exe O23 - Service: @%systemroot%\system32\wuaueng.dll,-105 (wuauserv) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\system32\wudfsvc.dll,-1000 (wudfsvc) - Unknown owner - C:\Windows\system32\svchost.exe O23 - Service: @%SystemRoot%\System32\wwansvc.dll,-257 (WwanSvc) - Unknown owner - C:\Windows\system32\svchost.exe -- End of file - 22619 bytes
  8. bonsoir, je n'arrive toujours pas à installer et executer antivir 10. C'est pourtant la dernière version qui vient de sortir... est elle stable ? Firefox plante toujours inopinément. Par contre j'ai l'impression qu'internet est plus rapide. Merci
  9. bonsoir, firefox plante toujours mais je n'ai pas encore essayé d'installer les autres programmes. Je m'y attèle des suite
  10. Bonsoir Pear et les autres, j'ai fais la suite de la procédure deja celle "si je suis d'accord" et j'ai posté le rapport, c'est mon message precedent. Alors maintenant je fais quoi comme procédure ? merci
  11. bonjour, voilà le rapport de MBR MBRCheck, version 1.2.3 © 2010, AD Command-line: Windows Version: Windows XP Home Edition Windows Information: Service Pack 3 (build 2600) Logical Drives Mask: 0x000000ed Kernel Drivers (total 119): 0x804D7000 \WINDOWS\system32\ntoskrnl.exe 0x806EF000 \WINDOWS\system32\hal.dll 0xF8A36000 \WINDOWS\system32\KDCOM.DLL 0xF8946000 \WINDOWS\system32\BOOTVID.dll 0xF8414000 splo.sys 0xF8A38000 \WINDOWS\System32\Drivers\WMILIB.SYS 0xF83FC000 \WINDOWS\System32\Drivers\SCSIPORT.SYS 0xF83CD000 ACPI.sys 0xF83BC000 pci.sys 0xF8536000 isapnp.sys 0xF8AFE000 pciide.sys 0xF87B6000 \WINDOWS\system32\DRIVERS\PCIIDEX.SYS 0xF8546000 MountMgr.sys 0xF839D000 ftdisk.sys 0xF87BE000 PartMgr.sys 0xF8556000 VolSnap.sys 0xF8385000 atapi.sys 0xF8566000 disk.sys 0xF8576000 \WINDOWS\system32\DRIVERS\CLASSPNP.SYS 0xF8365000 fltMgr.sys 0xF8353000 sr.sys 0xF833C000 KSecDD.sys 0xF82AF000 Ntfs.sys 0xF8282000 NDIS.sys 0xF8586000 sisagp.sys 0xF8268000 Mup.sys 0xF8766000 \SystemRoot\system32\DRIVERS\processr.sys 0xF7BDF000 \SystemRoot\system32\DRIVERS\nv4_mini.sys 0xF7B9C000 \SystemRoot\system32\DRIVERS\VIDEOPRT.SYS 0xF883E000 \SystemRoot\system32\DRIVERS\kbdclass.sys 0xF8846000 \SystemRoot\system32\DRIVERS\fdc.sys 0xF7B69000 \SystemRoot\system32\DRIVERS\serial.sys 0xF89F2000 \SystemRoot\system32\DRIVERS\serenum.sys 0xF7B55000 \SystemRoot\system32\DRIVERS\parport.sys 0xF89F6000 \SystemRoot\system32\DRIVERS\gameenum.sys 0xF8B74000 \SystemRoot\system32\drivers\msmpu401.sys 0xF7B31000 \SystemRoot\system32\drivers\portcls.sys 0xF8786000 \SystemRoot\system32\drivers\drmk.sys 0xF7B0E000 \SystemRoot\system32\drivers\ks.sys 0xF884E000 \SystemRoot\system32\DRIVERS\usbohci.sys 0xF7AEA000 \SystemRoot\system32\DRIVERS\USBPORT.SYS 0xF8796000 \SystemRoot\system32\DRIVERS\cdrom.sys 0xF87A6000 \SystemRoot\system32\DRIVERS\redbook.sys 0xF85B6000 \SystemRoot\system32\DRIVERS\imapi.sys 0xF76FB000 \SystemRoot\system32\drivers\ALCXWDM.SYS 0xF8856000 \SystemRoot\system32\DRIVERS\RTL8139.SYS 0xF76C3000 \SystemRoot\System32\Drivers\aj9af03i.SYS 0xF8B87000 \SystemRoot\system32\DRIVERS\audstub.sys 0xF85C6000 \SystemRoot\system32\DRIVERS\rasl2tp.sys 0xF8A0E000 \SystemRoot\system32\DRIVERS\ndistapi.sys 0xF76AC000 \SystemRoot\system32\DRIVERS\ndiswan.sys 0xF85D6000 \SystemRoot\system32\DRIVERS\raspppoe.sys 0xF85E6000 \SystemRoot\system32\DRIVERS\raspptp.sys 0xF88BE000 \SystemRoot\system32\DRIVERS\TDI.SYS 0xF769B000 \SystemRoot\system32\DRIVERS\psched.sys 0xF85F6000 \SystemRoot\system32\DRIVERS\msgpc.sys 0xF88C6000 \SystemRoot\system32\DRIVERS\ptilink.sys 0xF88CE000 \SystemRoot\system32\DRIVERS\raspti.sys 0xF8606000 \SystemRoot\system32\DRIVERS\termdd.sys 0xF88D6000 \SystemRoot\system32\DRIVERS\mouclass.sys 0xF8A4E000 \SystemRoot\system32\DRIVERS\swenum.sys 0xF7615000 \SystemRoot\system32\DRIVERS\update.sys 0xF8A1E000 \SystemRoot\system32\DRIVERS\mssmbios.sys 0xF8616000 \SystemRoot\System32\Drivers\NDProxy.SYS 0xF88E6000 \SystemRoot\system32\DRIVERS\flpydisk.sys 0xF8636000 \SystemRoot\system32\DRIVERS\usbhub.sys 0xF8A50000 \SystemRoot\system32\DRIVERS\USBD.SYS 0xF8A52000 \SystemRoot\System32\Drivers\Fs_Rec.SYS 0xF8C18000 \SystemRoot\System32\Drivers\Null.SYS 0xF8A54000 \SystemRoot\System32\Drivers\Beep.SYS 0xF8646000 \SystemRoot\system32\DRIVERS\i8042prt.sys 0xF88FE000 \SystemRoot\system32\DRIVERS\HIDPARSE.SYS 0xF8C25000 \SystemRoot\System32\DRIVERS\lkbdfltr.sys 0xF8906000 \SystemRoot\System32\drivers\vga.sys 0xF8A56000 \SystemRoot\System32\Drivers\mnmdd.SYS 0xF8A58000 \SystemRoot\System32\DRIVERS\RDPCDD.sys 0xF890E000 \SystemRoot\System32\Drivers\Msfs.SYS 0xF8916000 \SystemRoot\System32\Drivers\Npfs.SYS 0xF8224000 \SystemRoot\system32\DRIVERS\rasacd.sys 0xF641A000 \SystemRoot\system32\DRIVERS\ipsec.sys 0xF63C1000 \SystemRoot\system32\DRIVERS\tcpip.sys 0xF6399000 \SystemRoot\system32\DRIVERS\netbt.sys 0xF6377000 \SystemRoot\System32\drivers\afd.sys 0xF8676000 \SystemRoot\system32\DRIVERS\netbios.sys 0xF891E000 \SystemRoot\system32\DRIVERS\ssmdrv.sys 0xF634C000 \SystemRoot\system32\DRIVERS\rdbss.sys 0xF62DC000 \SystemRoot\system32\DRIVERS\mrxsmb.sys 0xF89D2000 \SystemRoot\System32\Drivers\lkbdhlpr.sys 0xF8686000 \SystemRoot\System32\Drivers\Fips.SYS 0xF62B6000 \SystemRoot\system32\DRIVERS\ipnat.sys 0xF6293000 \SystemRoot\system32\DRIVERS\avipbb.sys 0xF86C6000 \SystemRoot\system32\DRIVERS\wanarp.sys 0xF8A60000 \??\C:\Program Files\Avira\AntiVir Desktop\avgio.sys 0xF6247000 \SystemRoot\System32\Drivers\Fastfat.SYS 0xF8926000 \SystemRoot\system32\DRIVERS\usbccgp.sys 0xF8A02000 \SystemRoot\system32\DRIVERS\hidusb.sys 0xF86E6000 \SystemRoot\system32\DRIVERS\HIDCLASS.SYS 0xF8A0A000 \SystemRoot\system32\DRIVERS\kbdhid.sys 0xF622F000 \SystemRoot\System32\Drivers\dump_atapi.sys 0xF8A68000 \SystemRoot\System32\Drivers\dump_WMILIB.SYS 0xBF800000 \SystemRoot\System32\win32k.sys 0xF7673000 \SystemRoot\System32\drivers\Dxapi.sys 0xF8936000 \SystemRoot\System32\watchdog.sys 0xBF000000 \SystemRoot\System32\drivers\dxg.sys 0xF8B20000 \SystemRoot\System32\drivers\dxgthk.sys 0xF89EE000 \SystemRoot\system32\DRIVERS\mouhid.sys 0xBF012000 \SystemRoot\System32\nv4_disp.dll 0xBA773000 \SystemRoot\system32\DRIVERS\avgntflt.sys 0xBA7B0000 \SystemRoot\system32\DRIVERS\ndisuio.sys 0xBA608000 \??\C:\WINDOWS\system32\vsdatant.sys 0xBA4EB000 \SystemRoot\system32\DRIVERS\mrxdav.sys 0xBA3E6000 \SystemRoot\system32\drivers\wdmaud.sys 0xF6475000 \SystemRoot\system32\drivers\sysaudio.sys 0xF8AF2000 \SystemRoot\System32\Drivers\ParVdm.SYS 0xF892E000 \SystemRoot\System32\Drivers\DLPortIO.SYS 0xBA1FE000 \SystemRoot\System32\Drivers\Cdfs.SYS 0xBA096000 \SystemRoot\system32\DRIVERS\srv.sys 0xB9348000 \SystemRoot\System32\Drivers\HTTP.sys 0x7C910000 \WINDOWS\system32\ntdll.dll Processes (total 36): 0 System Idle Process 4 System 452 C:\WINDOWS\system32\smss.exe 508 csrss.exe 540 C:\WINDOWS\system32\winlogon.exe 584 C:\WINDOWS\system32\services.exe 596 C:\WINDOWS\system32\lsass.exe 760 C:\WINDOWS\system32\svchost.exe 820 svchost.exe 884 C:\WINDOWS\system32\svchost.exe 940 svchost.exe 1024 svchost.exe 1156 C:\WINDOWS\system32\spoolsv.exe 1200 C:\Program Files\Avira\AntiVir Desktop\sched.exe 1328 svchost.exe 1644 C:\WINDOWS\explorer.exe 1892 C:\PROGRA~1\Logitech\iTouch\iTouch.exe 1960 C:\Program Files\Avira\AntiVir Desktop\avgnt.exe 1972 C:\Program Files\Avira\AntiVir Desktop\avguard.exe 1980 C:\WINDOWS\system32\ctfmon.exe 1996 C:\Program Files\Zone Labs\ZoneAlarm\zonealarm.exe 140 C:\WINDOWS\system32\svchost.exe 188 C:\WINDOWS\system32\svchost.exe 224 C:\Program Files\Java\jre6\bin\jqs.exe 268 C:\Program Files\Avira\AntiVir Desktop\avshadow.exe 360 C:\WINDOWS\system32\svchost.exe 856 C:\WINDOWS\system32\nvsvc32.exe 876 C:\WINDOWS\system32\svchost.exe 972 C:\WINDOWS\system32\svchost.exe 1240 D:\Program Files\TomTom HOME 2\TomTomHOMEService.exe 1336 C:\WINDOWS\system32\ZoneLabs\vsmon.exe 1376 C:\WINDOWS\system32\config\systemprofile\Local Settings\Application Data\Windows Internet Name Service\wins.exe 2556 C:\WINDOWS\system32\wscntfy.exe 2808 alg.exe 3268 C:\Program Files\Mozilla Firefox\firefox.exe 3732 C:\Documents and Settings\Guigui\Bureau\MBRCheck.exe \\.\C: --> \\.\PhysicalDrive0 at offset 0x00000000`00007e00 (NTFS) \\.\D: --> \\.\PhysicalDrive1 at offset 0x00000000`00007e00 (FAT32) PhysicalDrive0 Model Number: WDCWD200BB-00AUA1, Rev: 18.20D18 PhysicalDrive1 Model Number: WDCWD800JB-00ETA0, Rev: 77.07W77 Size Device Name MBR Status -------------------------------------------- 18 GB \\.\PhysicalDrive0 Windows XP MBR code detected SHA1: 8637A6CD1F8DC55758E12C0B860CDE1133CA5719 74 GB \\.\PhysicalDrive1 Unknown MBR code SHA1: C2E46E21FF271E2D22BDC5AF2FF9A6DC69E0A4EF Found non-standard or infected MBR. Enter 'Y' and hit ENTER for more options, or 'N' to exit: Options: [1] Dump the MBR of a physical disk to file. [2] Restore the MBR of a physical disk with a standard boot code. [3] Exit. Enter your choice: Enter the physical disk number to fix (0-99, -1 to cancel): 1Available MBR codes: [ 0] Default (Windows XP) [ 1] Windows XP [ 2] Windows Server 2003 [ 3] Windows Vista [ 4] Windows 2008 [ 5] Windows 7 [-1] Cancel Please select the MBR code to write to this drive: 0 Do you want to fix the MBR code? Type 'YES' and hit ENTER to continue: yes Successfully wrote new MBR code! Please reboot your computer to complete the fix. Done! Que dois je faire maintenant ?
  12. bonjour voici les autres rapports de adremover. Il y en a deux qui s'appellent Ad-Report-SCAN[1] les voici : . ======= RAPPORT D'AD-REMOVER 1.1.4.6_E | UNIQUEMENT XP/VISTA/7 ======= . Mit à jour par C_XX le 06.12.2009 à 17:18 Contact: AdRemover.contact@gmail.com Site web: Orange . Lancé à: 10:58:29, 10/12/2009 | Mode Normal | Option: SCAN Exécuté de: C:\Program Files\Ad-Remover\ Système d'exploitation: Microsoft® Windows XP™ Service Pack 3 v5.1.2600 Nom du PC: GUILLAUME | Utilisateur actuel: Guigui . ============== ÉLÉMENT(S) TROUVÉ(S) ============== . . HKCU\software\Live-Player HKLM\software\Live-Player HKLM\Software\Microsoft\Internet Explorer\Extension Compatibility\{77FEF28E-EB96-44FF-B511-3185DEA48697} HKLM\Software\Microsoft\Internet Explorer\Extension Compatibility\{B580CF65-E151-49C3-B73F-70B13FCA8E86} HKU\s-1-5-21-839522115-1078145449-842925246-1003\software\Live-Player . ============== Scan additionnel ============== . . * Mozilla FireFox Version 2.0.0.20 [fr] * . Nom du profil: 3dry6mua.default (Guigui) . (Guigui, prefs.js) Browser.startup.homepage, www.ethicle.fr . . * Internet Explorer Version 8.0.6001.18702 * . [HKEY_CURRENT_USER\..\Internet Explorer\Main] . Do404Search: 01000000 Local Page: C:\WINDOWS\system32\blank.htm Show_ToolBar: yes Start Page: hxxp://www.ethicle.fr/ Search Page: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch Enable Browser Extensions: yes . [HKEY_LOCAL_MACHINE\..\Internet Explorer\Main] . Default_Page_URL: hxxp://go.microsoft.com/fwlink/?LinkId=69157 Default_Search_URL: hxxp://go.microsoft.com/fwlink/?LinkId=54896 Search Page: hxxp://go.microsoft.com/fwlink/?LinkId=54896 Delete_Temp_Files_On_Exit: yes Local Page: C:\WINDOWS\system32\blank.htm Start Page: hxxp://go.microsoft.com/fwlink/?LinkId=69157 . [HKEY_LOCAL_MACHINE\..\Internet Explorer\ABOUTURLS] . Tabs: res://ieframe.dll/tabswelcome.htm . =================================== . 1915 Octet(s) - C:\Ad-Report-SCAN[1].log . 101 Fichier(s) - C:\DOCUME~1\Guigui\LOCALS~1\Temp 4 Fichier(s) - C:\WINDOWS\Temp . 2 Fichier(s) - C:\Program Files\Ad-Remover\BACKUP 0 Fichier(s) - C:\Program Files\Ad-Remover\QUARANTINE . Fin à: 11:05:49 | 10/12/2009 - SCAN[1] . ============== E.O.F ============== . Le second : ======= RAPPORT D'AD-REMOVER 2.0.0.2,B | UNIQUEMENT XP/VISTA/7 ======= Mis à jour par TeamXscript le 25/10/10 à 11:40 Contact: AdRemover[DOT]contact[AT]gmail[DOT]com Site web: TEAM X SCRIPT : UsbFix - AD-Remover - FindyKill C:\Program Files\Ad-Remover\main.exe (SCAN [1]) -> Lancé à 15:00:08 le 29/10/2010, Mode normal Microsoft Windows XP Édition familiale Service Pack 3 (X86) Guigui@GUILLAUMEMAISON ( ) ============== RECHERCHE ============== Fichier trouvé: C:\Program Files\Mozilla FireFox\searchplugins\SearchquWebSearch.xml Dossier trouvé: C:\Program Files\Windows Searchqu Toolbar Dossier trouvé: C:\Documents and Settings\Guigui\Application Data\Mozilla\FireFox\Profiles\3dry6mua.default\searchqutb Fichier trouvé: C:\Documents and Settings\Guigui\Application Data\Mozilla\FireFox\Profiles\3dry6mua.default\searchplugins\SearchquWebSearch.xml Dossier trouvé: C:\Documents and Settings\Nolwenn\Application Data\Mozilla\FireFox\Profiles\yk0g79kt.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020} Dossier trouvé: C:\Documents and Settings\Nolwenn\Application Data\Mozilla\FireFox\Profiles\yk0g79kt.default\searchqutb Dossier trouvé: C:\Documents and Settings\Guigui\Application Data\SearchquTB Dossier trouvé: C:\Documents and Settings\Guigui\Application Data\Sky-Banners Dossier trouvé: C:\Documents and Settings\Guigui\Application Data\Street-Ads Clé trouvée: HKLM\Software\Classes\CLSID\{47C6C527-6204-4F91-849D-66E234DEE015} Clé trouvée: HKLM\Software\Classes\CLSID\{9461b922-3c5a-11d2-bf8b-00c04fb93661} Clé trouvée: HKLM\Software\Classes\CLSID\{B791A095-A4AC-4312-8894-5B7E8FF5B3CD} Clé trouvée: HKLM\Software\Classes\Interface\{477F210A-2A86-4666-9C4B-1189634D2C84} Clé trouvée: HKLM\Software\Classes\Interface\{FF871E51-2655-4D06-AED5-745962A96B32} Clé trouvée: HKLM\Software\Classes\TypeLib\{ECA4E801-17AE-4863-9F5C-AF4047AABEE0} Clé trouvée: HKLM\Software\Classes\BandooCore.BandooCore Clé trouvée: HKLM\Software\Classes\BandooCore.BandooCore.1 Clé trouvée: HKLM\Software\Classes\BandooCore.ResourcesMngr Clé trouvée: HKLM\Software\Classes\BandooCore.ResourcesMngr.1 Clé trouvée: HKLM\Software\Classes\BandooCore.SettingsMngr Clé trouvée: HKLM\Software\Classes\BandooCore.SettingsMngr.1 Clé trouvée: HKLM\Software\Classes\BandooCore.StatisticMngr Clé trouvée: HKLM\Software\Classes\BandooCore.StatisticMngr.1 Clé trouvée: HKLM\Software\Classes\AppID\BandooCore.EXE Clé trouvée: HKLM\Software\Classes\AppID\{1301A8A5-3DFB-4731-A162-B357D00C9644} Clé trouvée: HKLM\Software\bandoo Clé trouvée: HKLM\Software\DataMngr Clé trouvée: HKLM\Software\Sky-Banners Clé trouvée: HKCU\Software\DataMngr Clé trouvée: HKCU\Software\Sky-Banners Clé trouvée: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{8A96AF9E-4074-43b7-BEA3-87217BDA7403} Clé trouvée: HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{8A96AF9E-4074-43b7-BEA3-87217BDA7403} Clé trouvée: HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\Searchqu MediaBar Valeur trouvée: HKLM\Software\Microsoft\Windows\CurrentVersion\Run|DataMngr ============== SCAN ADDITIONNEL ============== ** Mozilla Firefox Version [3.6.12 (fr)] ** -- C:\Documents and Settings\Guigui\Application Data\Mozilla\FireFox\Profiles\3dry6mua.default\Prefs.js -- browser.download.lastDir, C:\\Documents and Settings\\Guigui\\Bureau\\Photos Malika browser.search.defaultenginename, Web Search browser.search.selectedEngine, Web Search browser.startup.homepage, hxxp://www.google.fr/ browser.startup.homepage_override.mstone, rv:1.9.2.12 keyword.URL, hxxp://www.searchqu.com/web?src=ffb&systemid=403&q= -- C:\Documents and Settings\Nolwenn\Application Data\Mozilla\FireFox\Profiles\yk0g79kt.default\Prefs.js -- browser.startup.homepage_override.mstone, rv:1.8.1.20 ======================================== ** Internet Explorer Version [8.0.6001.18702] ** [HKCU\Software\Microsoft\Internet Explorer\Main] Default_Page_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome Default_Search_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch Do404Search: 0x01000000 Enable Browser Extensions: yes Local Page: C:\WINDOWS\system32\blank.htm Search bar: hxxp://go.microsoft.com/fwlink/?linkid=54896 Show_ToolBar: yes Start Page: hxxp://www.msn.com/ [HKLM\Software\Microsoft\Internet Explorer\Main] Default_Page_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome Default_Search_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch Delete_Temp_Files_On_Exit: yes Local Page: C:\WINDOWS\system32\blank.htm Search bar: hxxp://search.msn.com/spbasic.htm Search Page: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch Start Page: hxxp://fr.msn.com/ [HKLM\Software\Microsoft\Internet Explorer\ABOUTURLS] Tabs: res://ieframe.dll/tabswelcome.htm Blank: res://mshtml.dll/blank.htm ======================================== C:\Program Files\Ad-Remover\Quarantine: 0 Fichier(s) C:\Program Files\Ad-Remover\Backup: 13 Fichier(s) C:\Ad-Report-SCAN[1].txt - 29/10/2010 (3071 Octet(s)) Fin à: 15:01:48, 29/10/2010 ============== E.O.F ============== Le premier rapport suite au nettoyage : . ======= RAPPORT D'AD-REMOVER 1.1.4.6_E | UNIQUEMENT XP/VISTA/7 ======= . Mit à jour par C_XX le 06.12.2009 à 17:18 Contact: AdRemover.contact@gmail.com Site web: Orange . Lancé à: 11:33:50, 10/12/2009 | Mode Normal | Option: CLEAN Exécuté de: C:\Program Files\Ad-Remover\ Système d'exploitation: Microsoft® Windows XP™ Service Pack 3 v5.1.2600 Nom du PC: GUILLAUME | Utilisateur actuel: Guigui . ============== ÉLÉMENT(S) NEUTRALISÉ(S) ============== . (!) -- Fichiers temporaires supprimés. . HKCU\software\Live-Player HKLM\software\Live-Player HKLM\Software\Microsoft\Internet Explorer\Extension Compatibility\{77FEF28E-EB96-44FF-B511-3185DEA48697} HKLM\Software\Microsoft\Internet Explorer\Extension Compatibility\{B580CF65-E151-49C3-B73F-70B13FCA8E86} . ============== Scan additionnel ============== . . * Mozilla FireFox Version 2.0.0.20 [fr] * . Nom du profil: 3dry6mua.default (Guigui) . (Guigui, prefs.js) Browser.startup.homepage, www.ethicle.fr . . * Internet Explorer Version 8.0.6001.18702 * . [HKEY_CURRENT_USER\..\Internet Explorer\Main] . Do404Search: 01000000 Local Page: C:\WINDOWS\system32\blank.htm Show_ToolBar: yes Start Page: hxxp://fr.msn.com/ Enable Browser Extensions: yes Default_search_url: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch Default_page_url: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome Search bar: hxxp://go.microsoft.com/fwlink/?linkid=54896 . [HKEY_LOCAL_MACHINE\..\Internet Explorer\Main] . Default_Page_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome Default_Search_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch Search Page: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch Delete_Temp_Files_On_Exit: yes Local Page: C:\WINDOWS\system32\blank.htm Start Page: hxxp://fr.msn.com/ Search bar: hxxp://search.msn.com/spbasic.htm . [HKEY_LOCAL_MACHINE\..\Internet Explorer\ABOUTURLS] . Tabs: res://ieframe.dll/tabswelcome.htm . =================================== . 2112 Octet(s) - C:\Ad-Report-CLEAN[1].log 2242 Octet(s) - C:\Ad-Report-SCAN[1].log . 0 Fichier(s) - C:\DOCUME~1\Guigui\LOCALS~1\Temp 1 Fichier(s) - C:\WINDOWS\Temp . 19 Fichier(s) - C:\Program Files\Ad-Remover\BACKUP 0 Fichier(s) - C:\Program Files\Ad-Remover\QUARANTINE . Fin à: 11:41:02 | 10/12/2009 - CLEAN[1] . ============== E.O.F ============== . Le second : ======= RAPPORT D'AD-REMOVER 2.0.0.2,B | UNIQUEMENT XP/VISTA/7 ======= Mis à jour par TeamXscript le 25/10/10 à 11:40 Contact: AdRemover[DOT]contact[AT]gmail[DOT]com Site web: TEAM X SCRIPT : UsbFix - AD-Remover - FindyKill C:\Program Files\Ad-Remover\main.exe (CLEAN [1]) -> Lancé à 15:03:56 le 29/10/2010, Mode normal Microsoft Windows XP Édition familiale Service Pack 3 (X86) Guigui@GUILLAUMEMAISON ( ) ============== ACTION(S) ============== Fichier supprimé: C:\Program Files\Mozilla FireFox\searchplugins\SearchquWebSearch.xml Dossier supprimé: C:\Program Files\Windows Searchqu Toolbar Dossier supprimé: C:\Documents and Settings\Guigui\Application Data\Mozilla\FireFox\Profiles\3dry6mua.default\searchqutb Fichier supprimé: C:\Documents and Settings\Guigui\Application Data\Mozilla\FireFox\Profiles\3dry6mua.default\searchplugins\SearchquWebSearch.xml Dossier supprimé: C:\Documents and Settings\Nolwenn\Application Data\Mozilla\FireFox\Profiles\yk0g79kt.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020} Dossier supprimé: C:\Documents and Settings\Nolwenn\Application Data\Mozilla\FireFox\Profiles\yk0g79kt.default\searchqutb Dossier supprimé: C:\Documents and Settings\Guigui\Application Data\SearchquTB Dossier supprimé: C:\Documents and Settings\Guigui\Application Data\Sky-Banners Dossier supprimé: C:\Documents and Settings\Guigui\Application Data\Street-Ads (!) -- Fichiers temporaires supprimés. Clé supprimée: HKLM\Software\Classes\CLSID\{47C6C527-6204-4F91-849D-66E234DEE015} Clé supprimée: HKLM\Software\Classes\CLSID\{9461b922-3c5a-11d2-bf8b-00c04fb93661} Clé supprimée: HKLM\Software\Classes\CLSID\{B791A095-A4AC-4312-8894-5B7E8FF5B3CD} Clé supprimée: HKLM\Software\Classes\Interface\{477F210A-2A86-4666-9C4B-1189634D2C84} Clé supprimée: HKLM\Software\Classes\Interface\{FF871E51-2655-4D06-AED5-745962A96B32} Clé supprimée: HKLM\Software\Classes\TypeLib\{ECA4E801-17AE-4863-9F5C-AF4047AABEE0} Clé supprimée: HKLM\Software\Classes\BandooCore.BandooCore Clé supprimée: HKLM\Software\Classes\BandooCore.BandooCore.1 Clé supprimée: HKLM\Software\Classes\BandooCore.ResourcesMngr Clé supprimée: HKLM\Software\Classes\BandooCore.ResourcesMngr.1 Clé supprimée: HKLM\Software\Classes\BandooCore.SettingsMngr Clé supprimée: HKLM\Software\Classes\BandooCore.SettingsMngr.1 Clé supprimée: HKLM\Software\Classes\BandooCore.StatisticMngr Clé supprimée: HKLM\Software\Classes\BandooCore.StatisticMngr.1 Clé supprimée: HKLM\Software\Classes\AppID\BandooCore.EXE Clé supprimée: HKLM\Software\Classes\AppID\{1301A8A5-3DFB-4731-A162-B357D00C9644} Clé supprimée: HKLM\Software\bandoo Clé supprimée: HKLM\Software\DataMngr Clé supprimée: HKLM\Software\Sky-Banners Clé supprimée: HKCU\Software\DataMngr Clé supprimée: HKCU\Software\Sky-Banners Clé supprimée: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{8A96AF9E-4074-43b7-BEA3-87217BDA7403} Clé supprimée: HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{8A96AF9E-4074-43b7-BEA3-87217BDA7403} Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\Searchqu MediaBar Valeur supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Run|DataMngr ============== SCAN ADDITIONNEL ============== ** Mozilla Firefox Version [3.6.12 (fr)] ** -- C:\Documents and Settings\Guigui\Application Data\Mozilla\FireFox\Profiles\3dry6mua.default\Prefs.js -- browser.download.lastDir, C:\\Documents and Settings\\Guigui\\Bureau\\Photos Malika browser.search.defaultenginename, Web Search browser.search.selectedEngine, Web Search browser.startup.homepage, hxxp://www.google.fr/ browser.startup.homepage_override.mstone, rv:1.9.2.12 keyword.URL, hxxp://www.searchqu.com/web?src=ffb&systemid=403&q= -- C:\Documents and Settings\Nolwenn\Application Data\Mozilla\FireFox\Profiles\yk0g79kt.default\Prefs.js -- browser.startup.homepage_override.mstone, rv:1.8.1.20 ======================================== ** Internet Explorer Version [8.0.6001.18702] ** [HKCU\Software\Microsoft\Internet Explorer\Main] Default_Page_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome Default_Search_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch Do404Search: 0x01000000 Enable Browser Extensions: yes Local Page: C:\WINDOWS\system32\blank.htm Search bar: hxxp://go.microsoft.com/fwlink/?linkid=54896 Show_ToolBar: yes Start Page: hxxp://fr.msn.com/ [HKLM\Software\Microsoft\Internet Explorer\Main] Default_Page_URL: hxxp://go.microsoft.com/fwlink/?LinkId=54896 Default_Search_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch Delete_Temp_Files_On_Exit: yes Local Page: C:\WINDOWS\system32\blank.htm Search bar: hxxp://search.msn.com/spbasic.htm Search Page: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch Start Page: hxxp://fr.msn.com/ [HKLM\Software\Microsoft\Internet Explorer\ABOUTURLS] Tabs: res://ieframe.dll/tabswelcome.htm Blank: res://mshtml.dll/blank.htm ======================================== C:\Program Files\Ad-Remover\Quarantine: 893 Fichier(s) C:\Program Files\Ad-Remover\Backup: 26 Fichier(s) C:\Ad-Report-CLEAN[1].txt - 29/10/2010 (5033 Octet(s)) C:\Ad-Report-SCAN[1].txt - 29/10/2010 (5178 Octet(s)) Fin à: 15:06:01, 29/10/2010 ============== E.O.F ============== Voilà je vais continuer la procédure. A tout à l'heure et merci
  13. bonjour voici le 1° rapport suite à l'analyse de ad remover ======= RAPPORT D'AD-REMOVER 2.0.0.2,B | UNIQUEMENT XP/VISTA/7 ======= Mis à jour par TeamXscript le 25/10/10 à 11:40 Contact: AdRemover[DOT]contact[AT]gmail[DOT]com Site web: TEAM X SCRIPT : UsbFix - AD-Remover - FindyKill C:\Program Files\Ad-Remover\main.exe (SCAN [1]) -> Lancé à 15:00:08 le 29/10/2010, Mode normal Microsoft Windows XP Édition familiale Service Pack 3 (X86) Guigui@GUILLAUMEMAISON ( ) ============== RECHERCHE ============== Fichier trouvé: C:\Program Files\Mozilla FireFox\searchplugins\SearchquWebSearch.xml Dossier trouvé: C:\Program Files\Windows Searchqu Toolbar Dossier trouvé: C:\Documents and Settings\Guigui\Application Data\Mozilla\FireFox\Profiles\3dry6mua.default\searchqutb Fichier trouvé: C:\Documents and Settings\Guigui\Application Data\Mozilla\FireFox\Profiles\3dry6mua.default\searchplugins\SearchquWebSearch.xml Dossier trouvé: C:\Documents and Settings\Nolwenn\Application Data\Mozilla\FireFox\Profiles\yk0g79kt.default\extensions\{7FF99715-3016-4381-84CE-E4E4C9673020} Dossier trouvé: C:\Documents and Settings\Nolwenn\Application Data\Mozilla\FireFox\Profiles\yk0g79kt.default\searchqutb Dossier trouvé: C:\Documents and Settings\Guigui\Application Data\SearchquTB Dossier trouvé: C:\Documents and Settings\Guigui\Application Data\Sky-Banners Dossier trouvé: C:\Documents and Settings\Guigui\Application Data\Street-Ads Clé trouvée: HKLM\Software\Classes\CLSID\{47C6C527-6204-4F91-849D-66E234DEE015} Clé trouvée: HKLM\Software\Classes\CLSID\{9461b922-3c5a-11d2-bf8b-00c04fb93661} Clé trouvée: HKLM\Software\Classes\CLSID\{B791A095-A4AC-4312-8894-5B7E8FF5B3CD} Clé trouvée: HKLM\Software\Classes\Interface\{477F210A-2A86-4666-9C4B-1189634D2C84} Clé trouvée: HKLM\Software\Classes\Interface\{FF871E51-2655-4D06-AED5-745962A96B32} Clé trouvée: HKLM\Software\Classes\TypeLib\{ECA4E801-17AE-4863-9F5C-AF4047AABEE0} Clé trouvée: HKLM\Software\Classes\BandooCore.BandooCore Clé trouvée: HKLM\Software\Classes\BandooCore.BandooCore.1 Clé trouvée: HKLM\Software\Classes\BandooCore.ResourcesMngr Clé trouvée: HKLM\Software\Classes\BandooCore.ResourcesMngr.1 Clé trouvée: HKLM\Software\Classes\BandooCore.SettingsMngr Clé trouvée: HKLM\Software\Classes\BandooCore.SettingsMngr.1 Clé trouvée: HKLM\Software\Classes\BandooCore.StatisticMngr Clé trouvée: HKLM\Software\Classes\BandooCore.StatisticMngr.1 Clé trouvée: HKLM\Software\Classes\AppID\BandooCore.EXE Clé trouvée: HKLM\Software\Classes\AppID\{1301A8A5-3DFB-4731-A162-B357D00C9644} Clé trouvée: HKLM\Software\bandoo Clé trouvée: HKLM\Software\DataMngr Clé trouvée: HKLM\Software\Sky-Banners Clé trouvée: HKCU\Software\DataMngr Clé trouvée: HKCU\Software\Sky-Banners Clé trouvée: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{8A96AF9E-4074-43b7-BEA3-87217BDA7403} Clé trouvée: HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{8A96AF9E-4074-43b7-BEA3-87217BDA7403} Clé trouvée: HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\Searchqu MediaBar Valeur trouvée: HKLM\Software\Microsoft\Windows\CurrentVersion\Run|DataMngr ============== SCAN ADDITIONNEL ============== ** Mozilla Firefox Version [3.6.12 (fr)] ** -- C:\Documents and Settings\Guigui\Application Data\Mozilla\FireFox\Profiles\3dry6mua.default\Prefs.js -- browser.download.lastDir, C:\\Documents and Settings\\Guigui\\Bureau\\Photos Malika browser.search.defaultenginename, Web Search browser.search.selectedEngine, Web Search browser.startup.homepage, hxxp://www.google.fr/ browser.startup.homepage_override.mstone, rv:1.9.2.12 keyword.URL, hxxp://www.searchqu.com/web?src=ffb&systemid=403&q= -- C:\Documents and Settings\Nolwenn\Application Data\Mozilla\FireFox\Profiles\yk0g79kt.default\Prefs.js -- browser.startup.homepage_override.mstone, rv:1.8.1.20 ======================================== ** Internet Explorer Version [8.0.6001.18702] ** [HKCU\Software\Microsoft\Internet Explorer\Main] Default_Page_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome Default_Search_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch Do404Search: 0x01000000 Enable Browser Extensions: yes Local Page: C:\WINDOWS\system32\blank.htm Search bar: hxxp://go.microsoft.com/fwlink/?linkid=54896 Show_ToolBar: yes Start Page: hxxp://www.msn.com/ [HKLM\Software\Microsoft\Internet Explorer\Main] Default_Page_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome Default_Search_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch Delete_Temp_Files_On_Exit: yes Local Page: C:\WINDOWS\system32\blank.htm Search bar: hxxp://search.msn.com/spbasic.htm Search Page: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch Start Page: hxxp://fr.msn.com/ [HKLM\Software\Microsoft\Internet Explorer\ABOUTURLS] Tabs: res://ieframe.dll/tabswelcome.htm Blank: res://mshtml.dll/blank.htm ======================================== C:\Program Files\Ad-Remover\Quarantine: 0 Fichier(s) C:\Program Files\Ad-Remover\Backup: 13 Fichier(s) C:\Ad-Report-SCAN[1].txt - 29/10/2010 (3071 Octet(s)) Fin à: 15:01:48, 29/10/2010 ============== E.O.F ==============
  14. a ca y est c'est terminé voici le rapport Rapport de ZHPDiag v1.22.06 par Nicolas Coolman, Update du 14/10/2010 Run by Guigui at 29/10/2010 14:05:40 Web site : ZHPDiag Outil de diagnostic Contact : nicolascoolman@yahoo.fr ---\\ Web Browser MSIE: Internet Explorer v8.0.6001.18702 MFIE: Mozilla Firefox (3.6.12) ---\\ System Information Platform : Microsoft Windows XP (5.1.2600) Service Pack 3 Processor: x86 Family 6 Model 4 Stepping 2, AuthenticAMD Operating System: 32 Bits Boot mode: Normal (Normal boot) Total RAM: 511 MB (32% free) System drive C: has 7 GB (34%) free of 19 GB ---\\ Logged in mode Computer Name: GUILLAUMEMAISON User Name: Guigui All Users Names: Nolwenn, HelpAssistant, Guigui, ASPNET, Administrateur, Unselected Option: None Logged in as Administrator ---\\ DOS/Devices A:\ Floppy drive, Flash card reader, USB Key (Not Inserted) C:\ Hard drive, Flash drive, Thumb drive (Free 7 Go of 19 Go) D:\ Hard drive, Flash drive, Thumb drive (Free 34 Go of 75 Go) F:\ CD-ROM drive (Not Inserted) G:\ CD-ROM drive (Not Inserted) H:\ CD-ROM drive (Not Inserted) ---\\ Security Center & Tools Informations [HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center] FirewallDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center] UpdatesDisableNotify: OK ---\\ Processus lancés [MD5.7207DB389CEAD101251883511A676F91] - (.Avira GmbH - Antivirus Scheduler.) -- C:\Program Files\Avira\AntiVir Desktop\sched.exe [135336] [MD5.8942C0BE637B7EBFBA304D48665B516E] - (.Avira GmbH - Antivirus On-Access Service.) -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe [267944] [MD5.1834C96FB1F9280BCF6DDFA6DE8338BF] - (.Sun Microsystems, Inc. - Java Quick Starter Service.) -- C:\Program Files\Java\jre6\bin\jqs.exe [153376] [MD5.CDE000884FD7BAF0C1FDFE029B0891DE] - (.Avira GmbH - AntiVir shadow copy service.) -- C:\Program Files\Avira\AntiVir Desktop\avshadow.exe [76968] [MD5.0C41C4ACFE00D826DB479C40C1D9EDC8] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 175.1.) -- C:\WINDOWS\system32\nvsvc32.exe [159812] [MD5.CB9C765F80AAF6DBD6149ED394BD174F] - (.Logitech Inc. - iTouch Application.) -- C:\PROGRA~1\Logitech\iTouch\iTouch.exe [143360] [MD5.FBD16717FD68B206C4CE3BB3C9EE5CB3] - (.TomTom - Windows Service for TomTom HOME.) -- d:\Program Files\TomTom HOME 2\TomTomHOMEService.exe [92008] [MD5.1600FCCBE1F8B062FAFA82BDBA2BBA63] - (.Pas de propriétaire - Data Manager.) -- C:\PROGRA~1\WINDOW~4\Datamngr\DATAMN~1.EXE [796608] [MD5.9D5E8B45BD348DF0882C69EED0E83111] - (.Avira GmbH - Antivirus System Tray Tool.) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [281768] [MD5.75F8818A2E154159DAFDE5538D692635] - (.Zone Labs Inc. - TrueVector Service.) -- C:\WINDOWS\system32\ZoneLabs\vsmon.exe [922720] [MD5.B8C10FEE5A526C95377A355DF650F141] - (.Zone Labs Inc. - ZoneAlarm.) -- C:\Program Files\Zone Labs\ZoneAlarm\zonealarm.exe [623720] [MD5.E0FD084369610A50003F21FAACA9E634] - (.Pas de propriétaire - Provides Internet Name Service.) -- C:\WINDOWS\system32\config\systemprofile\Local Settings\Application Data\Windows Internet Name Service\wins.exe [4627968] [MD5.CBAC41ADDDD6D5C761CDDD2C015CEF2C] - (.Nicolas Coolman - Diagnostic Tool.) -- C:\Program Files\ZHPDiag\ZHPDiag.exe [580096] ---\\ Page de démarrage de Mozilla Firefox (M0) M0 - MFSP: prefs.js [Guigui - 3dry6mua.default] Google ---\\ Plugins de navigateurs Opera/Firefox(P1/P2) P2 - FPN:Firefox Plugin Navigator . (.Sun Microsystems, Inc. - NPRuntime Script Plug-in Library for Java Deploy.) -- C:\Program Files\Mozilla Firefox\Plugins\npdeployJava1.dll P2 - FPN:Firefox Plugin Navigator . (.Foxit Software Company - Foxit Reader Plug-In For Firefox and Netscape.) -- C:\Program Files\Mozilla Firefox\Plugins\npFoxitReaderPlugin.dll P2 - FPN:Firefox Plugin Navigator . (.mozilla.org - Default Plug-in.) -- C:\Program Files\Mozilla Firefox\Plugins\npnul32.dll P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin.dll P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin2.dll P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin3.dll P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin4.dll P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin5.dll P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin6.dll P2 - FPN:Firefox Plugin Navigator . (.Apple Inc. - The QuickTime Plugin allows you to view a wide variety of multimedia c.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin7.dll P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll P2 - FPN: [HKLM] [@videolan.org/vlc,version=1.0.1] - (.the VideoLAN Team - Version 1.0.1, copyright 1996-2009 The VideoLAN Team<br><a href="http:.) -- C:\Program Files\VideoLAN\VLC\npvlc.dll ---\\ Modification d'une valeur Ini (Changed inifile value, mapped to Registry) (F2) F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe, F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl" ---\\ Pages de démarrage d'Internet Explorer (R0) R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = MSN : Hotmail, Messenger, Bing, Actualité et Sport R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = MSN : Hotmail, Messenger, Actualité, Sport et Vidéo ---\\ Pages de recherche d'Internet Explorer (R1) R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN : Hotmail, Messenger, Bing, Actualité et Sport R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Sign In R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Sign In R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN : Hotmail, Messenger, Bing, Actualité et Sport R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Sign In R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk R1 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm ---\\ Internet Explorer URLSearchHook (R3) R3 - URLSearchHook: Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Internet Explorer.) (8.00.6001.18968 (longhorn_ie8_gdr.100824-1830)) -- C:\WINDOWS\system32\ieframe.dll ---\\ Applications démarrées par registre & par dossier (O4) O4 - HKLM\..\Run: [zBrowser Launcher] . (.Logitech Inc. - iTouch Application.) -- C:\PROGRA~1\Logitech\iTouch\iTouch.exe O4 - HKLM\..\Run: [EM_EXEC] . (.Logitech Inc. - Control Center.) -- C:\PROGRA~1\Logitech\MOUSEW~1\SYSTEM\EM_exeC.exe O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl O4 - HKLM\..\Run: [NvCplDaemon] . (.NVIDIA Corporation - NVIDIA Display Properties Extension.) -- C:\WINDOWS\system32\NvCpl.dll O4 - HKLM\..\Run: [DATAMNGR] . (.Pas de propriétaire - Data Manager.) -- C:\PROGRA~1\WINDOW~4\Datamngr\DATAMN~1.exe O4 - HKLM\..\Run: [avgnt] . (.Avira GmbH - Antivirus System Tray Tool.) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe O4 - HKCU\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\CTFMON.exe O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\CTFMON.exe O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\CTFMON.exe O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\CTFMON.exe O4 - HKUS\S-1-5-21-839522115-1078145449-842925246-1003\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Démarrage\ZoneAlarm.lnk . (.Zone Labs Inc..) -- C:\Program Files\Zone Labs\ZoneAlarm\zonealarm.exe ---\\ Autres liens utilisateurs (O4) O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Apple Software Update.lnk . (.Pas de propriétaire.) -- C:\WINDOWS\Installer\{6956856F-B6B3-4BE0-BA0B-8F495BE32033}\AppleSoftwareUpdateIco.exe O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Microsoft Access.lnk . (.Pas de propriétaire.) -- C:\WINDOWS\Installer\{0000040C-78E1-11D2-B60F-006097C998E7}\accicons.exe O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Microsoft Excel.lnk . (.Pas de propriétaire.) -- C:\WINDOWS\Installer\{0000040C-78E1-11D2-B60F-006097C998E7}\xlicons.exe O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Microsoft FrontPage.lnk . (.Pas de propriétaire.) -- C:\WINDOWS\Installer\{0000040C-78E1-11D2-B60F-006097C998E7}\misc.exe O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Microsoft Outlook.lnk . (.Pas de propriétaire.) -- C:\WINDOWS\Installer\{0000040C-78E1-11D2-B60F-006097C998E7}\outicon.exe O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Microsoft PowerPoint.lnk . (.Pas de propriétaire.) -- C:\WINDOWS\Installer\{0000040C-78E1-11D2-B60F-006097C998E7}\pptico.exe O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Microsoft Word.lnk . (.Pas de propriétaire.) -- C:\WINDOWS\Installer\{0000040C-78E1-11D2-B60F-006097C998E7}\wordicon.exe O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\MSN.lnk . (.Microsoft Corporation.) -- C:\Program Files\MSN\MSNCoreFiles\Install\msnsusii.exe O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Windows Messenger.lnk . (.Microsoft Corporation.) -- C:\Program Files\Messenger\msmsgs.exe O4 - Global Startup: C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Windows Movie Maker.lnk . (.Microsoft Corporation.) -- C:\Program Files\Movie Maker\moviemk.exe O4 - Global Startup: C:\Documents And Settings\Guigui\Menu Démarrer\Programmes\Assistance à distance.lnk . (.Microsoft Corporation.) -- C:\WINDOWS\system32\rcimlby.exe O4 - Global Startup: C:\Documents And Settings\Guigui\Menu Démarrer\Programmes\Internet Explorer.lnk . (.Microsoft Corporation.) -- C:\Program Files\Internet Explorer\iexplore.exe O4 - Global Startup: C:\Documents And Settings\Guigui\Menu Démarrer\Programmes\Lecteur Windows Media.lnk . (.Microsoft Corporation.) -- C:\Program Files\Windows Media Player\wmplayer.exe O4 - Global Startup: C:\Documents And Settings\Guigui\Menu Démarrer\Programmes\Outlook Express.lnk . (.Microsoft Corporation.) -- C:\Program Files\Outlook Express\msimn.exe ---\\ Winsock hijacker (Layered Service Provider) (O10) O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\WINDOWS\system32\mswsock.dll O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\WINDOWS\system32\winrnr.dll O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\WINDOWS\system32\mswsock.dll ---\\ Modification Domaine/Adresses DNS (O17) O17 - HKLM\System\CCS\Services\Tcpip\..\{393B3C9E-65E1-4F72-88E6-6E2AABDAE12E}: NameServer = 212.27.40.241,212.27.40.240 O17 - HKLM\System\CS1\Services\Tcpip\..\{393B3C9E-65E1-4F72-88E6-6E2AABDAE12E}: NameServer = 212.27.40.241,212.27.40.240 O17 - HKLM\System\CS2\Services\Tcpip\..\{393B3C9E-65E1-4F72-88E6-6E2AABDAE12E}: NameServer = 212.27.40.241,212.27.40.240 ---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20) O20 - Winlogon Notify: crypt32chain . (.Microsoft Corporation - Crypto API32.) -- C:\Windows\System32\crypt32.dll O20 - Winlogon Notify: cryptnet . (.Microsoft Corporation - Crypto Network Related API.) -- C:\Windows\System32\cryptnet.dll O20 - Winlogon Notify: cscdll . (.Microsoft Corporation - Agent réseau hors connexion.) -- C:\Windows\System32\cscdll.dll O20 - Winlogon Notify: ScCertProp . (.Microsoft Corporation - DLL commune de réception des notifications.) -- C:\Windows\System32\wlnotify.dll O20 - Winlogon Notify: Schedule . (.Microsoft Corporation - DLL commune de réception des notifications.) -- C:\Windows\System32\wlnotify.dll O20 - Winlogon Notify: sclgntfy . (.Microsoft Corporation - DLL secondaire de notification de service d.) -- C:\Windows\System32\sclgntfy.dll O20 - Winlogon Notify: SensLogn . (.Microsoft Corporation - DLL commune de réception des notifications.) -- C:\Windows\System32\WlNotify.dll O20 - Winlogon Notify: termsrv . (.Microsoft Corporation - DLL commune de réception des notifications.) -- C:\Windows\System32\wlnotify.dll O20 - Winlogon Notify: wlballoon . (.Microsoft Corporation - DLL commune de réception des notifications.) -- C:\Windows\System32\wlnotify.dll ---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20) O20 - AppInit_DLLs: . (.Pas de propriétaire - Data Manager.) - c:\progra~1\window~4\datamngr\datamngr.dll ---\\ Clé de Registre autorun ShellServiceObjectDelayLoad (SSO/SSODL) (O21) O21 - SSODL: PostBootReminder - {7849596a-48ea-486e-8937-a2a3009f31a9} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\SHELL32.dll O21 - SSODL: CDBurn - {fbeb8a05-beee-4442-804e-409d6c4515e9} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\SHELL32.dll O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} . (.Microsoft Corporation - Web Site Monitor.) -- C:\WINDOWS\system32\webcheck.dll O21 - SSODL: SysTray - {35CEC8A3-2BE6-11D2-8773-92E220524153} . (.Microsoft Corporation - Objet du service d'environnement Systray.) -- C:\WINDOWS\system32\stobject.dll ---\\ Clé de Registre autorun SharedTaskScheduler (STS) (O22) O22 - SharedTaskScheduler: (no name) - {8C7461EF-2B13-11d2-BE35-3078302C2030} . (.Microsoft Corporation - Bibliothèque de l'interface utilisateur du.) -- C:\WINDOWS\system32\browseui.dll ---\\ Liste des services NT non Microsoft et non désactivés (O23) O23 - Service: Avira AntiVir Planificateur (AntiVirSchedulerService) . (.Avira GmbH - Antivirus Scheduler.) - C:\Program Files\Avira\AntiVir Desktop\sched.exe O23 - Service: Avira AntiVir Guard (AntiVirService) . (.Avira GmbH - Antivirus On-Access Service.) - C:\Program Files\Avira\AntiVir Desktop\avguard.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) . (.Sun Microsystems, Inc. - Java Quick Starter Service.) - C:\Program Files\Java\jre6\bin\jqs.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 175.1.) - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: TomTomHOMEService (TomTomHOMEService) . (.TomTom - Windows Service for TomTom HOME.) - d:\Program Files\TomTom HOME 2\TomTomHOMEService.exe O23 - Service: TrueVector Internet Monitor (vsmon) . (.Zone Labs Inc. - TrueVector Service.) - C:\WINDOWS\system32\ZoneLabs\vsmon.exe O23 - Service: Windows Internet Name Service (Windows Internet Name Service) . (.Pas de propriétaire - Provides Internet Name Service.) - C:\WINDOWS\system32\config\systemprofile\Local Settings\Application Data\Windows Internet Name Service\wins.exe ---\\ Enumération Active Desktop & MHTML Editor (O24) O24 - Desktop General: BackupWallPaper - .(.Pas de propriétaire - Pas de description.) - C:\WINDOWS\web\wallpaper\Colline verdoyante.bmp O24 - Desktop General: WallPaper - .(.Pas de propriétaire - Pas de description.) - C:\WINDOWS\web\wallpaper\Colline verdoyante.bmp O24 - Default MHTML Editor: Last - .(.Pas de propriétaire - Pas de description.) - (.not file.) ---\\ Tâches planifiées en automatique (O39) O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\Ad-Aware Update (Weekly).job O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\AppleSoftwareUpdate.job O39 - APT:Automatic Planified Task - C:\WINDOWS\Tasks\DMEPeriodicTask.job ---\\ Composants installés (ActiveSetup Installed Components) (O40) O40 - ASIC: Personnalisation du navigateur - >{60B49E34-C7CC-11D0-8953-00A0C90347FF}MICROS . (.Pas de propriétaire - Pas de description.) -- Rundll32 IEDKCS32.dll O40 - ASIC: Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608500} . (.Sun Microsystems, Inc. - Java Platform SE binary.) -- C:\Program Files\Java\jre6\bin\regutils.dll O40 - ASIC: NetMeeting 3.01 - {44BBA842-CC51-11CF-AAFA-00AA00B6015B} . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\INF\msnetmtg.inf O40 - ASIC: Windows Messenger 4.7 - {5945c046-1e7d-11d1-bc44-00c04fd912be} . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\INF\msmsgs.inf O40 - ASIC: Microsoft Windows Media Player - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\INF\wmp.inf O40 - ASIC: Adobe Flash Player - {D27CDB6E-AE6D-11cf-96B8-444553540000} . (.Adobe Systems, Inc. - Adobe Flash Player 10.1 r53.) -- C:\WINDOWS\system32\Macromed\Flash\Flash10h.ocx ---\\ Pilotes lancés au démarrage (O41) O41 - Driver: avgio (avgio) . (.Avira GmbH - Avira AntiVir Support for Minifilter.) - C:\Program Files\Avira\AntiVir Desktop\avgio.sys O41 - Driver: avipbb (avipbb) . (.Avira GmbH - Avira Driver for Security Enhancement.) - C:\Windows\system32\DRIVERS\avipbb.sys O41 - Driver: Programme de gestion Class Filter de clavier Logitech (lkbdfltr) . (.Logitech - Logitech Keyboard Filter Driver.) - C:\Windows\system32\DRIVERS\lkbdfltr.sys O41 - Driver: Logitech Keyboard Class Helper Driver (lkbdhlpr) . (.Logitech Inc. - Keyboard Helper Driver.) - C:\Windows\system32\Drivers\lkbdhlpr.sys O41 - Driver: Programme de gestion Class Filter de souris Logitech (lmoufltr) . (.Logitech - Logitech Mouse Filter Driver.) - C:\Windows\system32\DRIVERS\lmoufltr.sys O41 - Driver: Programme de gestion pour souris série Logitech (LSERMOUS) . (.Logitech - Logitech Serial Mouse Port Driver.) - C:\Windows\system32\DRIVERS\lsermous.sys O41 - Driver: ssmdrv (ssmdrv) . (.Avira GmbH - AVIRA SnapShot Driver.) - C:\Windows\system32\DRIVERS\ssmdrv.sys ---\\ Logiciels installés (O42) O42 - Logiciel: 32 Bit HP CIO Components Installer - (.Hewlett-Packard.) [HKLM] -- {92127AF5-FDD8-4ADF-BC40-C356C9EE0B7D} O42 - Logiciel: 7-Zip 4.65 - (.Pas de propriétaire.) [HKLM] -- 7-Zip O42 - Logiciel: Able2Extract 7.0 - (.Investintech.com Inc..) [HKLM] -- {49272E0B-CF97-4BD6-85A0-9B1C59495850}_is1 O42 - Logiciel: Adobe Flash Player 10 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX O42 - Logiciel: Adobe Flash Player 10 ActiveX - (.Adobe Systems, Inc..) [HKLM] -- {922E8525-AC7E-4294-ACAA-43712D4423C0} O42 - Logiciel: Adobe Flash Player 10 Plugin - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player Plugin O42 - Logiciel: Agfa ScanWise 2.00 - (.Pas de propriétaire.) [HKLM] -- Agfa ScanWise 2.00 O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM] -- {3FA365DF-2D68-45ED-8F83-8C8A33E65143} O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM] -- {6956856F-B6B3-4BE0-BA0B-8F495BE32033} O42 - Logiciel: AutoCAD 2005 - Français - (.Autodesk.) [HKLM] -- {5783F2D7-0301-040C-0002-0060B0CE6BBA} O42 - Logiciel: Autodesk DWF Viewer - (.Autodesk, Inc..) [HKLM] -- Autodesk DWF Viewer O42 - Logiciel: Avira AntiVir Personal - Free Antivirus - (.Avira GmbH.) [HKLM] -- Avira AntiVir Desktop O42 - Logiciel: C-Media WDM Audio Driver - (.Pas de propriétaire.) [HKLM] -- C-Media Audio Driver O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner O42 - Logiciel: CDex 1.40 Fr [Extraction Audio] - (.Pas de propriétaire.) [HKLM] -- CDex O42 - Logiciel: Cogniview PDF2XL OCR Evaluation - (.Cogniview.) [HKLM] -- InstallShield_{4BE1E11D-4580-41BE-899F-60B5DC1DB2EA} O42 - Logiciel: DLight - (.Théâtre des Opéraions.) [HKLM] -- DLight O42 - Logiciel: Foxit PDF Editor - (.Foxit Software.) [HKLM] -- Foxit PDF Editor O42 - Logiciel: Foxit PDF IFilter - (.Foxit Software.) [HKLM] -- {4448ABF6-786D-4C3D-A49D-7BB237E6DD17} O42 - Logiciel: Foxit Reader - (.Foxit Software Company.) [HKLM] -- Foxit Reader O42 - Logiciel: Free - Kit de connexion - (.Free.) [HKLM] -- Free.fr O42 - Logiciel: GIMP 2.6.8 - (.Pas de propriétaire.) [HKLM] -- WinGimp-2.0_is1 O42 - Logiciel: GPL Ghostscript 8.70 - (.Pas de propriétaire.) [HKLM] -- GPL Ghostscript 8.70 O42 - Logiciel: Guide de l'utilisateur Logitech - (.Pas de propriétaire.) [HKLM] -- User's Guide O42 - Logiciel: HP Customer Participation Program 13.0 - (.HP.) [HKLM] -- HPExtendedCapabilities O42 - Logiciel: HP Imaging Device Functions 13.0 - (.HP.) [HKLM] -- HP Imaging Device Functions O42 - Logiciel: HP Photosmart Plus B209a-m All-In-One Driver Software 13.0 Rel .6 - (.HP.) [HKLM] -- {9FEF1A18-8F26-4F49-A5A4-956C12210624} O42 - Logiciel: HP Print Projects 1.0 - (.HP.) [HKLM] -- HP Print Projects O42 - Logiciel: HP Smart Web Printing 4.5 - (.HP.) [HKLM] -- HP Smart Web Printing O42 - Logiciel: HP Solution Center 13.0 - (.HP.) [HKLM] -- HP Solution Center & Imaging Support Tools O42 - Logiciel: HP Update - (.Hewlett-Packard.) [HKLM] -- {7059BDA7-E1DB-442C-B7A1-6144596720A4} O42 - Logiciel: Hotfix for Windows XP (KB976002-v5) - (.Microsoft Corporation.) [HKLM] -- KB976002-v5 O42 - Logiciel: ISOBuddy - (.Pas de propriétaire.) [HKLM] -- ISOBuddy O42 - Logiciel: IZArc 3.81 - (.Ivan Zahariev.) [HKLM] -- {97C82B44-D408-4F14-9252-47FC1636D23E}_is1 O42 - Logiciel: Java 6 Update 20 - (.Sun Microsystems, Inc..) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83216020FF} O42 - Logiciel: Logiciel iTouch de Logitech - (.Pas de propriétaire.) [HKLM] -- Logitech iTouch O42 - Logiciel: Logitech MouseWare 9.12 - (.Pas de propriétaire.) [HKLM] -- Logitech MouseWare O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} O42 - Logiciel: Microsoft .NET Framework 1.1 - (.Microsoft.) [HKLM] -- {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1} O42 - Logiciel: Microsoft .NET Framework 1.1 - (.Pas de propriétaire.) [HKLM] -- Microsoft .NET Framework 1.1 (1033) O42 - Logiciel: Microsoft .NET Framework 1.1 French Language Pack - (.Microsoft.) [HKLM] -- {9A394342-4A68-4EBA-85A6-55B559F4E700} O42 - Logiciel: Microsoft .NET Framework 1.1 Security Update (KB2416447) - (.Pas de propriétaire.) [HKLM] -- M2416447 O42 - Logiciel: Microsoft .NET Framework 1.1 Security Update (KB979906) - (.Pas de propriétaire.) [HKLM] -- M979906 O42 - Logiciel: Microsoft Office 2000 Premium - (.Microsoft Corporation.) [HKLM] -- {0000040C-78E1-11D2-B60F-006097C998E7} O42 - Logiciel: Microsoft Office XP Professional avec FrontPage - (.Microsoft Corporation.) [HKLM] -- {9028040C-6000-11D3-8CFE-0050048383C9} O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 - (.Microsoft Corporation.) [HKLM] -- {9A25302D-30C0-39D9-BD6F-21E6EC160475} O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM] -- {1F1C2DFC-2D24-3E06-BCB8-725134ADF989} O42 - Logiciel: Mozilla Firefox (3.6.12) - (.Mozilla.) [HKLM] -- Mozilla Firefox (3.6.12) O42 - Logiciel: NVIDIA Drivers - (.Pas de propriétaire.) [HKLM] -- NVIDIA Drivers O42 - Logiciel: OverCAD PDF TO DWG 1.30 - (.OverCAD.) [HKLM] -- OverCAD PDF TO DWG O42 - Logiciel: PDFCreator - (.Frank Heindörfer, Philip Chinery.) [HKLM] -- {0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D} O42 - Logiciel: ProfPDF Protection Manager 1.5 - (.llionsoft.) [HKLM] -- ProfPDF Protection Manager_is1 O42 - Logiciel: QuickTime - (.Apple Inc..) [HKLM] -- {1451DE6B-ABE1-4F62-BE9A-B363A17588A2} O42 - Logiciel: Realtek AC'97 Audio - (.Realtek Semiconductor Corp..) [HKLM] -- {FB08F381-6533-4108-B7DD-039E11FBC27E} O42 - Logiciel: Scribus 1.3.3.14 - (.The Scribus Team.) [HKLM] -- Scribus 1.3.3.14 O42 - Logiciel: Shop for HP Supplies - (.HP.) [HKLM] -- Shop for HP Supplies O42 - Logiciel: TomTom HOME 2.7.3.1894 - (.TomTom.) [HKLM] -- TomTom HOME O42 - Logiciel: TomTom HOME Visual Studio Merge Modules - (.TomTom International B.V..) [HKLM] -- {8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533} O42 - Logiciel: VLC media player 1.0.1 - (.VideoLAN Team.) [HKLM] -- VLC media player O42 - Logiciel: WinRAR archiver - (.Pas de propriétaire.) [HKLM] -- WinRAR archiver O42 - Logiciel: Windows Internet Explorer 8 - (.Microsoft Corporation.) [HKLM] -- ie8 O42 - Logiciel: Windows Searchqu Toolbar - (.Discordia Limited.) [HKLM] -- Searchqu MediaBar O42 - Logiciel: ZoneAlarm - (.Zone Labs, Inc.) [HKLM] -- ZoneAlarm O42 - Logiciel: eMule - (.Pas de propriétaire.) [HKLM] -- eMule O42 - Logiciel: hp deskjet 940c series (Supprimer uniquement) - (.Pas de propriétaire.) [HKLM] -- hp deskjet 940c series O42 - Logiciel: progeCAD 2009 Smart! ENG - (.Pas de propriétaire.) [HKLM] -- progeCAD 2009 Smart! ENG ---\\ HKCU & HKLM Software Keys [HKCU\Software\7-Zip] [HKCU\Software\Adobe] [HKCU\Software\Agfa] [HKCU\Software\AppDataLow\Software] [HKCU\Software\AppDataLow] [HKCU\Software\Apple Computer, Inc.] [HKCU\Software\Autodesk] [HKCU\Software\Avira] [HKCU\Software\Claris Corp.] [HKCU\Software\Classes] [HKCU\Software\Clients] [HKCU\Software\Cogniview] [HKCU\Software\DLight] [HKCU\Software\DT Soft] [HKCU\Software\DataMngr] [HKCU\Software\Foxit Software] [HKCU\Software\HP] [HKCU\Software\Headlight] [HKCU\Software\Hewlett-Packard] [HKCU\Software\IZSoftware] [HKCU\Software\Intel] [HKCU\Software\Investintech.com Inc.] [HKCU\Software\JavaSoft] [HKCU\Software\Local AppWizard-Generated Applications] [HKCU\Software\Logitech] [HKCU\Software\Macromedia] [HKCU\Software\Malwarebytes' Anti-Malware] [HKCU\Software\Mozilla] [HKCU\Software\NVIDIA Corporation] [HKCU\Software\Netscape] [HKCU\Software\Novell] [HKCU\Software\ODBC] [HKCU\Software\PDFCreator] [HKCU\Software\Piriform] [HKCU\Software\Policies] [HKCU\Software\Sensaura] [HKCU\Software\Sky-Banners] [HKCU\Software\Softonic] [HKCU\Software\Sysinternals] [HKCU\Software\TomTom] [HKCU\Software\Trolltech] [HKCU\Software\VB and VBA Program Settings] [HKCU\Software\WinRAR SFX] [HKCU\Software\WinRAR] [HKCU\Software\YahooPartnerToolbar] [HKCU\Software\Yahoo] [HKCU\Software\Zone Labs] [HKCU\Software\eMule] [HKCU\Software\llionsoft] [HKCU\Software\progeSOFT] [HKLM\Software\ACE Compression Software] [HKLM\Software\Adobe] [HKLM\Software\Agfa] [HKLM\Software\Apple Computer, Inc.] [HKLM\Software\Apple Inc.] [HKLM\Software\Autodesk] [HKLM\Software\Avira] [HKLM\Software\Bandoo] [HKLM\Software\C07ft5Y] [HKLM\Software\CAST Lighting Limited] [HKLM\Software\Classes] [HKLM\Software\Clients] [HKLM\Software\CogniView] [HKLM\Software\Comet] [HKLM\Software\DT Soft] [HKLM\Software\DataMngr] [HKLM\Software\Foxit Software] [HKLM\Software\FullCircle] [HKLM\Software\GPL Ghostscript] [HKLM\Software\Gemplus] [HKLM\Software\Google] [HKLM\Software\Hewlett-Packard] [HKLM\Software\IZSoftware] [HKLM\Software\InstallShield] [HKLM\Software\Intel] [HKLM\Software\Investintech.com Inc.] [HKLM\Software\JavaSoft] [HKLM\Software\JreMetrics] [HKLM\Software\Logitech] [HKLM\Software\Macromedia] [HKLM\Software\Malwarebytes' Anti-Malware] [HKLM\Software\Mi?rosoft] [HKLM\Software\MimarSinan] [HKLM\Software\MozillaPlugins] [HKLM\Software\Mozilla] [HKLM\Software\NVIDIA Corporation] [HKLM\Software\Novell] [HKLM\Software\ODBC] [HKLM\Software\PDFCreator] [HKLM\Software\Policies] [HKLM\Software\Program Groups] [HKLM\Software\Realtek Semiconductor Corp.] [HKLM\Software\Realtek] [HKLM\Software\RegisteredApplications] [HKLM\Software\Schlumberger] [HKLM\Software\SearchquMediabarTb] [HKLM\Software\Secure] [HKLM\Software\Sky-Banners] [HKLM\Software\Soeperman Enterprises Ltd.] [HKLM\Software\TomTom] [HKLM\Software\TrendMicro] [HKLM\Software\Uniblue] [HKLM\Software\VideoLAN] [HKLM\Software\WexTech Systems] [HKLM\Software\WinRAR] [HKLM\Software\Windows 3.1 Migration Status] [HKLM\Software\Windows] [HKLM\Software\X-AVCSD] [HKLM\Software\Yahoo] [HKLM\Software\Zone Labs] [HKLM\Software\earth resource mapping] [HKLM\Software\mozilla.org] [HKLM\Software\progeSOFT] ---\\ Contenu des dossiers ProgramFiles/ProgramData (O43) O43 - CFD:Common File Directory ----D- C:\Program Files\7-Zip O43 - CFD:Common File Directory ----D- C:\Program Files\Ad-Remover O43 - CFD:Common File Directory ----D- C:\Program Files\Agfa O43 - CFD:Common File Directory ----D- C:\Program Files\AnswerWorks 4.0 O43 - CFD:Common File Directory ----D- C:\Program Files\Apple Software Update O43 - CFD:Common File Directory ----D- C:\Program Files\AutoCAD 2005 O43 - CFD:Common File Directory ----D- C:\Program Files\Autodesk O43 - CFD:Common File Directory ----D- C:\Program Files\Avira O43 - CFD:Common File Directory ----D- C:\Program Files\CCleaner O43 - CFD:Common File Directory ----D- C:\Program Files\CDex O43 - CFD:Common File Directory ----D- C:\Program Files\ComPlus Applications O43 - CFD:Common File Directory ----D- C:\Program Files\DAEMON Tools Lite O43 - CFD:Common File Directory ----D- C:\Program Files\DAEMON Tools Toolbar O43 - CFD:Common File Directory ----D- C:\Program Files\DLight2.5.1 O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers communs O43 - CFD:Common File Directory ----D- C:\Program Files\Foxit Software O43 - CFD:Common File Directory ----D- C:\Program Files\Free.fr O43 - CFD:Common File Directory ----D- C:\Program Files\Hewlett-Packard O43 - CFD:Common File Directory ----D- C:\Program Files\HP O43 - CFD:Common File Directory ----D- C:\Program Files\hp deskjet 940c series O43 - CFD:Common File Directory ----D- C:\Program Files\icons O43 - CFD:Common File Directory --H-D- C:\Program Files\InstallShield Installation Information O43 - CFD:Common File Directory ----D- C:\Program Files\Internet Explorer O43 - CFD:Common File Directory ----D- C:\Program Files\IZArc O43 - CFD:Common File Directory ----D- C:\Program Files\Java O43 - CFD:Common File Directory ----D- C:\Program Files\Lavasoft O43 - CFD:Common File Directory ----D- C:\Program Files\Logitech O43 - CFD:Common File Directory ----D- C:\Program Files\ma-config.com O43 - CFD:Common File Directory ----D- C:\Program Files\Messenger O43 - CFD:Common File Directory ----D- C:\Program Files\microsoft frontpage O43 - CFD:Common File Directory ----D- C:\Program Files\Microsoft Office O43 - CFD:Common File Directory ----D- C:\Program Files\Microsoft Visual Studio O43 - CFD:Common File Directory ----D- C:\Program Files\Movie Maker O43 - CFD:Common File Directory ----D- C:\Program Files\Mozilla Firefox O43 - CFD:Common File Directory ----D- C:\Program Files\MSN O43 - CFD:Common File Directory ----D- C:\Program Files\MSN Gaming Zone O43 - CFD:Common File Directory ----D- C:\Program Files\MSXML 4.0 O43 - CFD:Common File Directory ----D- C:\Program Files\NetMeeting O43 - CFD:Common File Directory ----D- C:\Program Files\Online Services O43 - CFD:Common File Directory ----D- C:\Program Files\Outlook Express O43 - CFD:Common File Directory ----D- C:\Program Files\PDFCreator O43 - CFD:Common File Directory ----D- C:\Program Files\QuickTime O43 - CFD:Common File Directory ----D- C:\Program Files\Realtek AC97 O43 - CFD:Common File Directory ----D- C:\Program Files\Services en ligne O43 - CFD:Common File Directory ----D- C:\Program Files\TomTom International B.V O43 - CFD:Common File Directory --H-D- C:\Program Files\Uninstall Information O43 - CFD:Common File Directory ----D- C:\Program Files\VideoLAN O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Media Player O43 - CFD:Common File Directory ----D- C:\Program Files\Windows NT O43 - CFD:Common File Directory ----D- C:\Program Files\Windows Searchqu Toolbar O43 - CFD:Common File Directory --H-D- C:\Program Files\WindowsUpdate O43 - CFD:Common File Directory ----D- C:\Program Files\xerox O43 - CFD:Common File Directory ----D- C:\Program Files\Yahoo! O43 - CFD:Common File Directory ----D- C:\Program Files\ZHPDiag O43 - CFD:Common File Directory ----D- C:\Program Files\Zone Labs O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\Adobe O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\Agfa O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\Apple O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\Autodesk Shared O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\Designer O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\Hewlett-Packard O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\HP O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\InstallShield O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\Java O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\Logitech O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\Microsoft Shared O43 - CFD:Common File Directory RSHADC C:\Program Files\Fichiers Communs\Microsoft ShaUed O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\MSSoap O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\ODBC O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\Real O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\Services O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\SpeechEngines O43 - CFD:Common File Directory ----D- C:\Program Files\Fichiers Communs\System ---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44) O44 - LFC:[MD5.00000000000000000000000000000000] - 29/10/2010 - 13:05:55 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\WindowsUpdate.log [1737881] O44 - LFC:[MD5.1BA92BD943DD31EB6362586B94DCEDC2] - 29/10/2010 - 13:05:12 --HA- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\vsconfig.xml [237] O44 - LFC:[MD5.96F05206865279D285D64168679EBF92] - 29/10/2010 - 13:04:33 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\nvapps.xml [181104] O44 - LFC:[MD5.00000000000000000000000000000000] - 29/10/2010 - 13:04:23 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\wiadebug.log [157] O44 - LFC:[MD5.00000000000000000000000000000000] - 29/10/2010 - 13:04:22 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\wiaservc.log [50] O44 - LFC:[MD5.6A2CB42966136854F4464516FBB4AE72] - 29/10/2010 - 13:03:56 -S-A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\bootstat.dat [2048] O44 - LFC:[MD5.00000000000000000000000000000000] - 29/10/2010 - 13:02:47 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\SchedLgU.Txt [32502] O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 29/10/2010 - 13:02:08 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\0.log [0] O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 29/10/2010 - 12:59:58 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\MEMORY.DMP [0] O44 - LFC:[MD5.A36EE93698802CD899F98BFD553D8185] - 29/10/2010 - 11:40:06 ---A- . (.Avira GmbH - AVIRA SnapShot Driver.) -- C:\WINDOWS\System32\drivers\ssmdrv.sys [28520] O44 - LFC:[MD5.87451AA7CC6B6A590EBCEA05E755075A] - 29/10/2010 - 11:40:03 ---A- . (.Avira GmbH - Avira AntiVir File Filter Driver Manager.) -- C:\WINDOWS\System32\drivers\avgntmgr.sys [22360] O44 - LFC:[MD5.5B44C214F9CD9F590BE9125347610380] - 29/10/2010 - 11:40:03 ---A- . (.Avira GmbH - Avira AntiVir File Filter Driver.) -- C:\WINDOWS\System32\drivers\avgntdd.sys [45416] O44 - LFC:[MD5.F8C56231ED5ECF7D1B46B0330880CCEF] - 29/10/2010 - 11:40:03 ---A- . (.Avira GmbH - Avira Driver for Security Enhancement.) -- C:\WINDOWS\System32\drivers\avipbb.sys [126856] O44 - LFC:[MD5.1EB7D72A82F94F7E9496D363FCE00B68] - 29/10/2010 - 11:40:03 ---A- . (.Avira GmbH - Avira Minifilter Driver.) -- C:\WINDOWS\System32\drivers\avgntflt.sys [60936] O44 - LFC:[MD5.ABF3502315D4CCA0612B4CDDB69DC549] - 27/10/2010 - 22:26:11 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\wpa.dbl [13646] O44 - LFC:[MD5.1309223C0F4DFA0C989F6DA373C32CEC] - 25/10/2010 - 21:51:23 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\setupapi.log [155582] O44 - LFC:[MD5.076C10DE795996687015B7BC1AD18869] - 25/10/2010 - 21:51:19 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\setupact.log [880] O44 - LFC:[MD5.DB73E6B512A9C00D597707ADF8687F1B] - 15/10/2010 - 09:51:01 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\FaxSetup.log [179304] O44 - LFC:[MD5.8C03B8810AE4F24162A5E8199C9D15D8] - 15/10/2010 - 09:51:01 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\KB2296011.log [8190] O44 - LFC:[MD5.55CB084482A0C9A0B0080193D76C9D2C] - 15/10/2010 - 09:51:01 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\comsetup.log [60276] O44 - LFC:[MD5.4EE804F90CA445AB1F4209FA1F805731] - 15/10/2010 - 09:51:01 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\iis6.log [28728] O44 - LFC:[MD5.2520FCCE4228590E11984A7C6627DF5D] - 15/10/2010 - 09:51:01 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\imsins.log [1393] O44 - LFC:[MD5.50D854B2914A5DE7FB5E2203B5170093] - 15/10/2010 - 09:51:01 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\msgsocm.log [8961] O44 - LFC:[MD5.6B44F1FD21974C2030D89CB3D0FC4C8B] - 15/10/2010 - 09:51:01 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\ntdtcsetup.log [36490] O44 - LFC:[MD5.EABF5DDEFF40DE872E4C8EC3D3BF426E] - 15/10/2010 - 09:51:01 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\ocgen.log [85724] O44 - LFC:[MD5.7F2551353C87550568C2CAF44B60CB29] - 15/10/2010 - 09:51:01 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\ocmsn.log [9918] O44 - LFC:[MD5.3FF6781C96F1337225C116FD45B4718A] - 15/10/2010 - 09:51:01 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\tsoc.log [68416] O44 - LFC:[MD5.CC9956938CD6AD09E55AF54C771D5A75] - 15/10/2010 - 09:50:35 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\imsins.BAK [1393] O44 - LFC:[MD5.4C93256B5C25919E73B3390F0DCA4FC9] - 15/10/2010 - 09:50:34 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\KB2360131-IE8.log [14461] O44 - LFC:[MD5.7C680D89A9443E0C0F517493270B3D0E] - 15/10/2010 - 09:50:17 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\updspapi.log [11250] O44 - LFC:[MD5.48CBA3BDE7BA3291535B001B403570B8] - 15/10/2010 - 09:28:23 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\spupdsvc.log [1084] O44 - LFC:[MD5.D73238ED48E243F3409821B6F10C390C] - 15/10/2010 - 09:27:25 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\FNTCACHE.DAT [189000] O44 - LFC:[MD5.210AEC0616CA40C8E17BDC9B05BAA7D3] - 15/10/2010 - 09:16:28 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\KB2387149.log [11329] O44 - LFC:[MD5.6BF529D5B118DCED42FF6BCB2B5759E0] - 15/10/2010 - 09:16:10 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\KB2279986.log [14086] O44 - LFC:[MD5.9E1FCE30B3815891D692FF3C1496BD32] - 15/10/2010 - 09:16:01 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\KB2345886.log [15372] O44 - LFC:[MD5.0F4CB31A1B08C4E61B4592784F67A5D3] - 15/10/2010 - 09:15:51 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\KB2378111.log [8322] O44 - LFC:[MD5.9C679FD223FBA047A857116ECBF303EC] - 15/10/2010 - 09:15:51 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\wmsetup.log [371] O44 - LFC:[MD5.5969D872E2B648F54E2441FC72C12A94] - 15/10/2010 - 09:15:42 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\KB982132.log [13766] O44 - LFC:[MD5.22A9292A142731246732F136E8598D0D] - 15/10/2010 - 09:15:31 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\KB979687.log [14370] O44 - LFC:[MD5.EA511477C696F1955139EFB9960B0B39] - 15/10/2010 - 09:07:43 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\KB981957.log [13146] O44 - LFC:[MD5.B44A4618F99C2469E920CB652AF62958] - 15/10/2010 - 09:07:32 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\KB2360937.log [8512] O44 - LFC:[MD5.2DFE9BDFE9709206C5BCEBA32D817502] - 12/10/2010 - 23:02:05 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\CV Petites Utopies.doc [25088] ---\\ Derniers fichiers créés dans Windows Prefetcher (O45) O45 - LFCP:[MD5.CE60F182E736DED7A164487FEA76783B] - 29/10/2010 - 09:12:05 ---A- - C:\WINDOWS\Prefetch\PLUGIN-CONTAINER.EXE-15EDC9DD.pf O45 - LFCP:[MD5.F176DFE8A9D61573C5078B99CBD7A57E] - 29/10/2010 - 09:12:06 ---A- - C:\WINDOWS\Prefetch\DRWTSN32.EXE-2B4B52AC.pf O45 - LFCP:[MD5.9680683F2039D40D26924EB4D7724B30] - 29/10/2010 - 10:09:40 ---A- - C:\WINDOWS\Prefetch\RUNDLL32.EXE-1714B23E.pf O45 - LFCP:[MD5.D3012031F17BBFCB38942C3F1C670860] - 29/10/2010 - 10:19:47 ---A- - C:\WINDOWS\Prefetch\IEXPLORE.EXE-27122324.pf O45 - LFCP:[MD5.8EE6480E19C42A3E612A22EE4381DFB8] - 29/10/2010 - 10:28:41 ---A- - C:\WINDOWS\Prefetch\ULTRAISO.EXE-083AC999.pf O45 - LFCP:[MD5.E4BF9976D19F6D6D72ACA70BD5CE13B6] - 29/10/2010 - 10:29:55 ---A- - C:\WINDOWS\Prefetch\GUARDGUI.EXE-00ECD849.pf O45 - LFCP:[MD5.F98CFDE4A4FB10E379EC8B6C1E7F4077] - 29/10/2010 - 10:30:51 ---A- - C:\WINDOWS\Prefetch\NSMD4.TMP-082990B9.pf O45 - LFCP:[MD5.FFAA974AF504D6A3E3F32442533838F8] - 29/10/2010 - 10:33:26 ---A- - C:\WINDOWS\Prefetch\BANDOO.EXE-021D9329.pf O45 - LFCP:[MD5.2D99E998834FCDEA18F9DBF05822808A] - 29/10/2010 - 10:43:56 ---A- - C:\WINDOWS\Prefetch\MSIEXEC.EXE-2F8A8CAE.pf O45 - LFCP:[MD5.20F941C21BFC915DCBB5752069433723] - 29/10/2010 - 10:56:02 ---A- - C:\WINDOWS\Prefetch\EXPLORER.EXE-082F38A9.pf O45 - LFCP:[MD5.D1F88FDA64F4BE23CFB95A298C8D2B79] - 29/10/2010 - 11:24:24 ---A- - C:\WINDOWS\Prefetch\IZARC.EXE-2B73BBEB.pf O45 - LFCP:[MD5.05FFEEB593A3714DFDA9C6C483F3028A] - 29/10/2010 - 11:30:27 ---A- - C:\WINDOWS\Prefetch\CRASHREPORTER.EXE-29951F6F.pf O45 - LFCP:[MD5.A28C1EC6AF7B41BAADE1889830627801] - 29/10/2010 - 11:40:26 ---A- - C:\WINDOWS\Prefetch\GRPCONV.EXE-111CD845.pf O45 - LFCP:[MD5.A6A615474779B784956EB61969D5F3CA] - 29/10/2010 - 11:40:26 ---A- - C:\WINDOWS\Prefetch\RUNONCE.EXE-2803F297.pf O45 - LFCP:[MD5.AB071AF5388D09DE968A0114DA29665E] - 29/10/2010 - 11:41:26 ---A- - C:\WINDOWS\Prefetch\AVGNT.EXE-200FEF40.pf O45 - LFCP:[MD5.D6798C101E8B50C03BE9FDF3D5A2E4F7] - 29/10/2010 - 11:41:35 ---A- - C:\WINDOWS\Prefetch\AVCENTER.EXE-1A970FA0.pf O45 - LFCP:[MD5.B620867DE7F3F0588C704C79F05E705B] - 29/10/2010 - 11:41:39 ---A- - C:\WINDOWS\Prefetch\UPDATE.EXE-2577D203.pf O45 - LFCP:[MD5.1898327C795D37DF2E65238C715142C7] - 29/10/2010 - 11:42:01 ---A- - C:\WINDOWS\Prefetch\FIREFOX.EXE-28641590.pf O45 - LFCP:[MD5.24BA5B449D152536C771F955F348706F] - 29/10/2010 - 12:12:13 ---A- - C:\WINDOWS\Prefetch\LOGON.SCR-151EFAEA.pf O45 - LFCP:[MD5.F10BE815C1710CEAD6401C06F33BEAEE] - 29/10/2010 - 12:16:46 ---A- - C:\WINDOWS\Prefetch\Layout.ini O45 - LFCP:[MD5.F98D83A7F9FF0637F86D2B3675FCD337] - 29/10/2010 - 12:16:56 ---A- - C:\WINDOWS\Prefetch\DEFRAG.EXE-273F131E.pf O45 - LFCP:[MD5.C82AEBFAAC29A03CBDB7D56CBE481CF5] - 29/10/2010 - 12:16:58 ---A- - C:\WINDOWS\Prefetch\DFRGNTFS.EXE-269967DF.pf O45 - LFCP:[MD5.DCC0CD906F390F51D5D036848D7F6181] - 29/10/2010 - 12:35:54 ---A- - C:\WINDOWS\Prefetch\ZHPDIAG.EXE-2A945AE0.pf O45 - LFCP:[MD5.E61F462FCBD14804016F2F423B721648] - 29/10/2010 - 12:35:54 ---A- - C:\WINDOWS\Prefetch\ZHPDIAG.TMP-1E1E6E8E.pf O45 - LFCP:[MD5.3D73F3954E893EFC2B17948A120B43A0] - 29/10/2010 - 12:44:58 ---A- - C:\WINDOWS\Prefetch\LADS.EXE-06335087.pf O45 - LFCP:[MD5.80A8DB06F7F4F8E42A5BEDDC74F0E695] - 29/10/2010 - 12:45:01 ---A- - C:\WINDOWS\Prefetch\SETACL.EXE-33B348AC.pf O45 - LFCP:[MD5.4B797012CFE134A6EF493189A2DBCD45] - 29/10/2010 - 12:45:01 ---A- - C:\WINDOWS\Prefetch\SUBINACL.EXE-17974576.pf O45 - LFCP:[MD5.69BA934025D520E82DAE9C6FD279AE39] - 29/10/2010 - 12:45:11 ---A- - C:\WINDOWS\Prefetch\CMD.EXE-087B4001.pf O45 - LFCP:[MD5.8328009086A7CA8E108E59E3A1DBE2A1] - 29/10/2010 - 12:45:11 ---A- - C:\WINDOWS\Prefetch\SIGCHECK.EXE-306CABDB.pf O45 - LFCP:[MD5.C583317A6A30890810DFB3CEA4CF9B78] - 29/10/2010 - 12:54:57 ---A- - C:\WINDOWS\Prefetch\REGSVR32.EXE-25EEFE2F.pf O45 - LFCP:[MD5.C32740AC4D6169E4D924D63F78B4BF0C] - 29/10/2010 - 12:55:01 ---A- - C:\WINDOWS\Prefetch\UNINS000.EXE-15535578.pf O45 - LFCP:[MD5.CA6ECB118504F5364E34E90BF3C5F28F] - 29/10/2010 - 12:55:02 ---A- - C:\WINDOWS\Prefetch\MBAM.EXE-0BEE0439.pf O45 - LFCP:[MD5.16BF1071F8234F1C7B4713ACB73A9002] - 29/10/2010 - 12:55:02 ---A- - C:\WINDOWS\Prefetch\MBAMGUI.EXE-1286D63B.pf O45 - LFCP:[MD5.F98BC3A5F2729F5A4115748D1FAF42BC] - 29/10/2010 - 12:55:02 ---A- - C:\WINDOWS\Prefetch\_IU14D2N.TMP-0C19BA1C.pf O45 - LFCP:[MD5.485231E31C876D27E0916C9CCF9D4BBE] - 29/10/2010 - 12:55:06 ---A- - C:\WINDOWS\Prefetch\VERCLSID.EXE-3667BD89.pf O45 - LFCP:[MD5.71DAB68D552B49A371069C83836F0C59] - 29/10/2010 - 13:02:10 ---A- - C:\WINDOWS\Prefetch\DUMPREP.EXE-1B46F901.pf O45 - LFCP:[MD5.58FDCA6D0D3D1D9B2F1D251D800F4D0C] - 29/10/2010 - 13:02:10 ---A- - C:\WINDOWS\Prefetch\TASKMGR.EXE-20256C55.pf O45 - LFCP:[MD5.1DAEB6A4CA7EC709D6415821C422C9EA] - 29/10/2010 - 13:02:13 ---A- - C:\WINDOWS\Prefetch\DWWIN.EXE-30875ADC.pf O45 - LFCP:[MD5.1BAF0F06E87EA934E74CA1B68998760A] - 29/10/2010 - 13:02:36 ---A- - C:\WINDOWS\Prefetch\HPPROMO.EXE-34DE8C8D.pf O45 - LFCP:[MD5.4D199D3C966011761C73B43FF8D66107] - 29/10/2010 - 13:02:46 ---A- - C:\WINDOWS\Prefetch\LOGONUI.EXE-0AF22957.pf O45 - LFCP:[MD5.7FF07653D0E904BADFDF1377709D1518] - 29/10/2010 - 13:05:48 ---A- - C:\WINDOWS\Prefetch\NTOSBOOT-B00DFAAD.pf O45 - LFCP:[MD5.1BA8043296A88356893ED848B39BFF4D] - 29/10/2010 - 13:05:48 ---A- - C:\WINDOWS\Prefetch\UPDATER.EXE-0287600A.pf O45 - LFCP:[MD5.CE3E3F6797B98603C3A6FB68BAA8C01E] - 29/10/2010 - 13:05:49 ---A- - C:\WINDOWS\Prefetch\WUAUCLT.EXE-399A8E72.pf O45 - LFCP:[MD5.21D36059E2DE7401A6ED1806AC10F74F] - 29/10/2010 - 13:05:53 ---A- - C:\WINDOWS\Prefetch\ZHPDIAG.EXE-021B7932.pf O45 - LFCP:[MD5.25BD6A5752B61DAD26BC9777BCB11823] - 29/10/2010 - 13:05:57 ---A- - C:\WINDOWS\Prefetch\WMIPRVSE.EXE-28F301A9.pf O45 - LFCP:[MD5.193B9B2A9E24D48D8B2585401C18AF7B] - 29/10/2010 - 13:06:12 ---A- - C:\WINDOWS\Prefetch\RUNDLL32.EXE-35A483DA.pf O45 - LFCP:[MD5.28BCF46E1484C2B2A8EF9B1140E089F6] - 29/10/2010 - 13:06:15 ---A- - C:\WINDOWS\Prefetch\WMIAPSRV.EXE-1E2270A5.pf O45 - LFCP:[MD5.76BE39EACBEEB452BF29EE1710AE5E8E] - 29/10/2010 - 13:06:18 ---A- - C:\WINDOWS\Prefetch\AVWSC.EXE-0283F9DD.pf O45 - LFCP:[MD5.9BB6CC82A6B6A5F62140822B46E4A245] - 29/10/2010 - 13:06:18 ---A- - C:\WINDOWS\Prefetch\WSCNTFY.EXE-1B24F5EB.pf O45 - LFCP:[MD5.CA5E94A614A60109610D902713D43ED0] - 29/10/2010 - 13:06:19 ---A- - C:\WINDOWS\Prefetch\IMAPI.EXE-0BF740A4.pf O45 - LFCP:[MD5.2C97FD98700900C5C8D9F34A6A2FE5AC] - 29/10/2010 - 13:06:25 ---A- - C:\WINDOWS\Prefetch\ALG.EXE-0F138680.pf ---\\ Opérations et fonctions au démarrage de Windows Explorer (O46) O46 - SEH:ShellExecuteHooks - URL Exec Hook - {AEB6717E-7E19-11d0-97EE-00C04FD91972} - shell32.dll ---\\ Export de clé d'application autorisée (ECAA) (O47) O47 - AAKE:Key Export SP - "%windir%\Network Diagnostic\xpnetdiag.exe" [Enabled] .(.Microsoft Corporation - Network Diagnostic for Windows XP.) -- C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O47 - AAKE:Key Export SP - "%windir%\system32\sessmgr.exe" [Enabled] .(.Microsoft Corporation - Gestionnaire de session de l'aide sur le Bureau à distance de Microsoft®.) -- C:\WINDOWS\system32\sessmgr.exe O47 - AAKE:Key Export SP - "C:\Program Files\ma-config.com\maconfservice.exe" [Enabled] .(.Pas de propriétaire - Pas de description.) (.not file.) -- C:\Program Files\ma-config.com\maconfservice.exe O47 - AAKE:Key Export SP - "C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe" [Enabled] .(.Hewlett-Packard Co. - HP Digital Imaging Monitor.) (.not file.) -- C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe O47 - AAKE:Key Export SP - "C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe" [Enabled] .(.Hewlett-Packard Co. - HP CUE Status Root.) (.not file.) -- C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe O47 - AAKE:Key Export SP - "C:\Program Files\HP\Digital Imaging\bin\hposid01.exe" [Enabled] .(.Hewlett-Packard Co. - HP All-in-One Launcher Utility.) (.not file.) -- C:\Program Files\HP\Digital Imaging\bin\hposid01.exe O47 - AAKE:Key Export SP - "C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe" [Enabled] .(.Hewlett-Packard - HP CUE-Scanning Flow Component.) (.not file.) -- C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe O47 - AAKE:Key Export SP - "C:\Program Files\HP\Digital Imaging\bin\hpfcCopy.exe" [Enabled] .(.Pas de propriétaire - HP CUE-Print Component.) (.not file.) -- C:\Program Files\HP\Digital Imaging\bin\hpfcCopy.exe O47 - AAKE:Key Export SP - "C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe" [Enabled] .(.Hewlett-Packard Co. - Embedded Web Server Link application.) (.not file.) -- C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe O47 - AAKE:Key Export SP - "C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe" [Enabled] .(.Hewlett-Packard - HP Scan Application.) (.not file.) -- C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe O47 - AAKE:Key Export SP - "C:\Program Files\HP\Digital Imaging\bin\hpqgplgtupl.exe" [Enabled] .(.Hewlett-Packard Co. - HP Guided Solutions.) (.not file.) -- C:\Program Files\HP\Digital Imaging\bin\hpqgplgtupl.exe O47 - AAKE:Key Export SP - "C:\Program Files\HP\Digital Imaging\bin\hpqgpc01.exe" [Enabled] .(.Hewlett-Packard - GPCore COM object.) (.not file.) -- C:\Program Files\HP\Digital Imaging\bin\hpqgpc01.exe O47 - AAKE:Key Export SP - "C:\Program Files\HP\Digital Imaging\bin\hpqusgm.exe" [Enabled] .(.Hewlett-Packard Co. - HP Customer Participation Program.) (.not file.) -- C:\Program Files\HP\Digital Imaging\bin\hpqusgm.exe O47 - AAKE:Key Export SP - "C:\Program Files\HP\Digital Imaging\bin\hpqusgh.exe" [Enabled] .(.Hewlett-Packard Co. - HP Customer Participation Program.) (.not file.) -- C:\Program Files\HP\Digital Imaging\bin\hpqusgh.exe O47 - AAKE:Key Export SP - "C:\Program Files\HP\HP Software Update\HPWUCli.exe" [Enabled] .(.Hewlett-Packard - HP Software Update Client.) (.not file.) -- C:\Program Files\HP\HP Software Update\HPWUCli.exe O47 - AAKE:Key Export SP - "C:\Program Files\HP\Digital Imaging\smart web printing\SmartWebPrintExe.exe" [Enabled] .(.Hewlett-Packard Co. - .) (.not file.) -- C:\Program Files\HP\Digital Imaging\smart web printing\SmartWebPrintexe.exe O47 - AAKE:Key Export SP - "D:\eMule3\emule.exe" [Enabled] .(.http://www.emule-project.net - eMule.) (.not file.) -- D:\eMule3\emule.exe O47 - AAKE:Key Export SP - "D:\Program Files\eMule\emule.exe" [Enabled] .(.http://www.emule-project.net - eMule.) (.not file.) -- D:\Program Files\eMule\emule.exe O47 - AAKE:Key Export SP - "C:\WINDOWS\system32\config\systemprofile\Local Settings\Application Data\Windows Internet Name Service\wins.exe" [Enabled] .(.Pas de propriétaire - .) (.not file.) -- C:\WINDOWS\system32\config\systemprofile\Local Settings\Application Data\Windows Internet Name Service\wins.exe O47 - AAKE:Key Export DP - "%windir%\Network Diagnostic\xpnetdiag.exe" [Enabled] .(.Microsoft Corporation - Network Diagnostic for Windows XP.) -- C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O47 - AAKE:Key Export DP - "%windir%\system32\sessmgr.exe" [Enabled] .(.Microsoft Corporation - Gestionnaire de session de l'aide sur le Bureau à distance de Microsoft®.) -- C:\WINDOWS\system32\sessmgr.exe O47 - AAKE:Key Export DP - "C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe" [Enabled] .(.Hewlett-Packard Co. - HP Digital Imaging Monitor.) -- C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe O47 - AAKE:Key Export DP - "C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe" [Enabled] .(.Hewlett-Packard Co. - HP CUE Status Root.) -- C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe O47 - AAKE:Key Export DP - "C:\Program Files\HP\Digital Imaging\bin\hposid01.exe" [Enabled] .(.Hewlett-Packard Co. - HP All-in-One Launcher Utility.) -- C:\Program Files\HP\Digital Imaging\bin\hposid01.exe O47 - AAKE:Key Export DP - "C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe" [Enabled] .(.Hewlett-Packard - HP CUE-Scanning Flow Component.) -- C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe O47 - AAKE:Key Export DP - "C:\Program Files\HP\Digital Imaging\bin\hpfcCopy.exe" [Enabled] .(.Pas de propriétaire - HP CUE-Print Component.) -- C:\Program Files\HP\Digital Imaging\bin\hpfcCopy.exe O47 - AAKE:Key Export DP - "C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe" [Enabled] .(.Hewlett-Packard Co. - Embedded Web Server Link application.) -- C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe O47 - AAKE:Key Export DP - "C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe" [Enabled] .(.Hewlett-Packard - HP Scan Application.) -- C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe O47 - AAKE:Key Export DP - "C:\Program Files\HP\Digital Imaging\bin\hpqgplgtupl.exe" [Enabled] .(.Hewlett-Packard Co. - HP Guided Solutions.) -- C:\Program Files\HP\Digital Imaging\bin\hpqgplgtupl.exe O47 - AAKE:Key Export DP - "C:\Program Files\HP\Digital Imaging\bin\hpqgpc01.exe" [Enabled] .(.Hewlett-Packard - GPCore COM object.) -- C:\Program Files\HP\Digital Imaging\bin\hpqgpc01.exe O47 - AAKE:Key Export DP - "C:\Program Files\HP\Digital Imaging\bin\hpqusgm.exe" [Enabled] .(.Hewlett-Packard Co. - HP Customer Participation Program.) -- C:\Program Files\HP\Digital Imaging\bin\hpqusgm.exe O47 - AAKE:Key Export DP - "C:\Program Files\HP\Digital Imaging\bin\hpqusgh.exe" [Enabled] .(.Hewlett-Packard Co. - HP Customer Participation Program.) -- C:\Program Files\HP\Digital Imaging\bin\hpqusgh.exe O47 - AAKE:Key Export DP - "C:\Program Files\HP\HP Software Update\HPWUCli.exe" [Enabled] .(.Hewlett-Packard - HP Software Update Client.) -- C:\Program Files\HP\HP Software Update\HPWUCli.exe O47 - AAKE:Key Export DP - "C:\Program Files\HP\Digital Imaging\smart web printing\SmartWebPrintExe.exe" [Enabled] .(.Hewlett-Packard Co. - .) -- C:\Program Files\HP\Digital Imaging\smart web printing\SmartWebPrintexe.exe ---\\ Déni du service (Local Security Authority) (LSA) (O48) O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\WINDOWS\System32\msv1_0.dll O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Moteur du client de l'Éditeur de configuration de sécurité Windows.) -- C:\WINDOWS\System32\scecli.dll O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\WINDOWS\System32\msv1_0.dll ---\\ Image File Execution Options (IFEO) (O50) O50 - IFEO:Image File Execution Options - Your Image File Name Here without a path - ntsd -d ---\\ MountPoints2 Shell Key (MPSK) (O51) O51 - MPSK:{db503023-579a-11df-8caf-0050fc235ec1}\Shell\AutoRun\command. (.Pas de propriétaire - Pas de description.) -- E:\InstallTomTomHOME.exe ---\\ Trojan Driver Search Data (HKLM)(TDSD) (O52) O52 - TDSD: \Drivers32\"msacm.trspch"="tssoft32.acm" . (.DSP GROUP, INC. - Codec audio TrueSpeech DSP Group pour MSACM V3.50.) -- C:\WINDOWS\System32\tssoft32.acm O52 - TDSD: \Drivers32\"vidc.cvid"="iccvid.dll" . (.Radius Inc. - Cinepak® Codec.) -- C:\WINDOWS\System32\iccvid.dll O52 - TDSD: \Drivers32\"vidc.iv31"="ir32_32.dll" . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\ir32_32.dll O52 - TDSD: \Drivers32\"vidc.iv32"="ir32_32.dll" . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\ir32_32.dll O52 - TDSD: \Drivers32\"vidc.iv41"="ir41_32.ax" . (.Intel Corporation - Intel Indeo® Video 4.5.) -- C:\WINDOWS\System32\ir41_32.ax O52 - TDSD: \Drivers32\"msacm.sl_anet"="sl_anet.acm" . (.Sipro Lab Telecom Inc. - Audio codec for MS ACM.) -- C:\WINDOWS\System32\sl_anet.acm O52 - TDSD: \Drivers32\"msacm.iac2"="C:\WINDOWS\system32\iac25_32.ax" . (.Intel Corporation - Indeo® audio software.) -- C:\WINDOWS\system32\iac25_32.ax O52 - TDSD: \Drivers32\"vidc.iv50"="ir50_32.dll" . (.Intel Corporation - Intel Indeo® video 5.10.) -- C:\WINDOWS\System32\ir50_32.dll O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\WINDOWS\system32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\WINDOWS\system32\l3codeca.acm O52 - TDSD: \drivers.desc\"sl_anet.acm"="Sipro Lab Telecom Audio Codec" . (.Sipro Lab Telecom Inc. - Audio codec for MS ACM.) -- C:\WINDOWS\System32\sl_anet.acm O52 - TDSD: \drivers.desc\"C:\WINDOWS\system32\iac25_32.ax"="Indeo® audio software" . (.Intel Corporation - Indeo® audio software.) -- C:\WINDOWS\system32\iac25_32.ax O52 - TDSD: \drivers.desc\"ir50_32.dll"="Indeo® video 5.10" . (.Pas de propriétaire - Pas de description.) -- (.not file.) O52 - TDSD: \drivers.desc\"C:\WINDOWS\system32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\WINDOWS\system32\l3codeca.acm ---\\ Microsoft Control Security Providers (MCSP) (O54) O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Client DPA pour plate-forme 32 bit.) -- C:\WINDOWS\system32\msapsspc.dll O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\WINDOWS\system32\schannel.dll O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - Package d'authentification Digest SSPI.) -- C:\WINDOWS\system32\digest.dll O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Client DPA pour plate-forme 32 bit.) -- C:\WINDOWS\system32\msapsspc.dll O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\WINDOWS\system32\schannel.dll O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - Package d'authentification Digest SSPI.) -- C:\WINDOWS\system32\digest.dll ---\\ Microsoft Windows Policies System (MWPS) (O55) O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0 O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"= O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"= O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1 O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1 ---\\ Microsoft Windows Policies Explorer (MWPE) (O56) O56 - MWPE:[HKCU\...\policies\Explorer] - "NoDriveTypeAutoRun"=145 O56 - MWPE:[HKLM\...\policies\Explorer] - "HonorAutoRunSetting"=1 ---\\ Liste des Drivers Système (SDL) (O58) O58 - SDL:[MD5.DD8520280304B6145A6BE31008748C7C] - 24/09/2008 - 09:40:22 R--A- . (.Realtek Semiconductor Corp. - Realtek AC'97 Audio Driver (WDM).) -- C:\WINDOWS\system32\drivers\alcxwdm.sys O58 - SDL:[MD5.5B44C214F9CD9F590BE9125347610380] - 17/06/2010 - 14:28:03 ---A- . (.Avira GmbH - Avira AntiVir File Filter Driver.) -- C:\WINDOWS\system32\drivers\avgntdd.sys O58 - SDL:[MD5.1EB7D72A82F94F7E9496D363FCE00B68] - 17/08/2010 - 12:39:11 ---A- . (.Avira GmbH - Avira Minifilter Driver.) -- C:\WINDOWS\system32\drivers\avgntflt.sys O58 - SDL:[MD5.87451AA7CC6B6A590EBCEA05E755075A] - 17/06/2010 - 14:28:03 ---A- . (.Avira GmbH - Avira AntiVir File Filter Driver Manager.) -- C:\WINDOWS\system32\drivers\avgntmgr.sys O58 - SDL:[MD5.F8C56231ED5ECF7D1B46B0330880CCEF] - 17/08/2010 - 12:39:11 ---A- . (.Avira GmbH - Avira Driver for Security Enhancement.) -- C:\WINDOWS\system32\drivers\avipbb.sys O58 - SDL:[MD5.C9B25AE9B8ABD983C5AD3F8CBFAB0F9C] - 14/04/2008 - 13:00:00 ---A- . (.RAVISENT Technologies Inc. - Pilote principal CineMaster C 1.2 WDM.) -- C:\WINDOWS\system32\drivers\cinemst2.sys O58 - SDL:[MD5.53F4CC55F3C255439C5973E31F0ADCE7] - 09/06/2006 - 21:58:22 ---A- . (.C-Media Inc - C-Media Audio WDM Driver.) -- C:\WINDOWS\system32\drivers\cmuda.sys O58 - SDL:[MD5.9624293E55AD405415862B504CA95B73] - 14/04/2008 - 13:00:00 ---A- . (.Compaq Computer Corporation - Compaq PA-1 Player Driver.) -- C:\WINDOWS\system32\drivers\cpqdap01.sys O58 - SDL:[MD5.1D95D36DB805787D54EB50E45ED4AF40] - 10/01/1999 - 12:00:00 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\drivers\dlportio.sys O58 - SDL:[MD5.573C7D0A32852B48F3058CFD8026F511] - 14/04/2008 - 13:00:00 ---A- . (.Windows ® Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) -- C:\WINDOWS\system32\drivers\hdaudbus.sys O58 - SDL:[MD5.D03D10F7DED688FECF50F8FBF1EA9B8A] - 28/10/2008 - 04:27:07 R--A- . (.HP - IEEE-1284.4-1999 Driver (Windows 2000).) -- C:\WINDOWS\system32\drivers\HPZid412.sys O58 - SDL:[MD5.89F41658929393487B6B7D13C8528CE3] - 28/10/2008 - 04:27:07 R--A- . (.HP - IEEE-1284.4-1999 Print Class Driver.) -- C:\WINDOWS\system32\drivers\HPZipr12.sys O58 - SDL:[MD5.ABCB05CCDBF03000354B9553820E39F8] - 28/10/2008 - 04:27:07 R--A- . (.HP - 1284.4<->Usb Datalink Driver (Windows 2000).) -- C:\WINDOWS\system32\drivers\HPZius12.sys O58 - SDL:[MD5.89393347582070997B554CF1CB72125F] - 23/06/2000 - 10:11:00 ---A- . (.Logitech - Logitech i8042 Port Driver.) -- C:\WINDOWS\system32\drivers\L8042PRT.SYS O58 - SDL:[MD5.CD2966911A947C7BBCC8B44EF08866A7] - 23/06/2000 - 10:11:00 ---A- . (.Logitech - Logitech Keyboard Filter Driver.) -- C:\WINDOWS\system32\drivers\LKBDFLTR.SYS O58 - SDL:[MD5.E9F20EDF13A578B03C30FA5F57E8731D] - 20/07/2000 - 02:50:00 ---A- . (.Logitech Inc. - Keyboard Helper Driver.) -- C:\WINDOWS\system32\drivers\LKBDHLPR.SYS O58 - SDL:[MD5.71A5D229B5F68925EB716E8220A1AEA0] - 23/06/2000 - 10:11:00 ---A- . (.Logitech - Logitech Mouse Filter Driver.) -- C:\WINDOWS\system32\drivers\LMOUFLTR.SYS O58 - SDL:[MD5.C11BC77A1E298EA624B777BA365941E2] - 23/06/2000 - 10:11:00 ---A- . (.Logitech - Logitech Serial Mouse Port Driver.) -- C:\WINDOWS\system32\drivers\LSERMOUS.SYS O58 - SDL:[MD5.9F4384AA43548DDD438F7B7825D11699] - 16/05/2008 - 14:01:00 ---A- . (.NVIDIA Corporation - NVIDIA Compatible Windows 2000 Miniport Driver, Version 175.19.) -- C:\WINDOWS\system32\drivers\nv4_mini.sys O58 - SDL:[MD5.80D317BD1C3DBC5D4FE7B1678C60CADD] - 14/04/2008 - 13:00:00 ---A- . (.Parallel Technologies, Inc. - Parallel Technologies DirectParallel IO Library.) -- C:\WINDOWS\system32\drivers\ptilink.sys O58 - SDL:[MD5.D507C1400284176573224903819FFDA3] - 13/04/2008 - 10:35:40 ---A- . (.Realtek Semiconductor Corporation - Realtek RTL8139 NDIS 5.0 Driver.) -- C:\WINDOWS\system32\drivers\RTL8139.sys O58 - SDL:[MD5.90A3935D05B494A5A39D37E71F09A677] - 14/04/2008 - 13:00:00 ---A- . (.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) -- C:\WINDOWS\system32\drivers\secdrv.sys O58 - SDL:[MD5.6B33D0EBD30DB32E27D1D78FE946A754] - 13/04/2008 - 12:36:40 ---A- . (.Silicon Integrated Systems Corporation - SiS NT AGP Filter.) -- C:\WINDOWS\system32\drivers\SISAGP.SYS O58 - SDL:[MD5.00000000000000000000000000000000] - 15/09/2009 - 02:56:13 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\drivers\sptd.sys O58 - SDL:[MD5.A36EE93698802CD899F98BFD553D8185] - 17/06/2010 - 14:28:02 ---A- . (.Avira GmbH - AVIRA SnapShot Driver.) -- C:\WINDOWS\system32\drivers\ssmdrv.sys O58 - SDL:[MD5.6D3ADA4CE95CECA7BCE527A08C4C474E] - 14/04/2008 - 13:00:00 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\ansi.sys O58 - SDL:[MD5.0FE9F16075C9ACB941C957B7C649176E] - 14/04/2008 - 13:00:00 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\country.sys O58 - SDL:[MD5.C6D29F29DE7427B1B0775E53E577B623] - 14/04/2008 - 13:00:00 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\himem.sys O58 - SDL:[MD5.582BCDD47CF4B68B5CB528F18E3CB808] - 14/04/2008 - 13:00:00 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\key01.sys O58 - SDL:[MD5.FBBCFEC1379C5C02D88A361993EDF1B8] - 14/04/2008 - 13:00:00 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\keyboard.sys O58 - SDL:[MD5.7D30A74B5FB9FE3B245A6CE5FBCD71D5] - 14/04/2008 - 13:00:00 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\ntdos.sys O58 - SDL:[MD5.CF9ED169FF86D935E47999E82359E898] - 14/04/2008 - 13:00:00 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\ntdos404.sys O58 - SDL:[MD5.03B945AC0481CD8BB161C3569D8ED1C3] - 14/04/2008 - 13:00:00 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\ntdos411.sys O58 - SDL:[MD5.BBC957DC18C17CC027EB80B7C77F2AEA] - 14/04/2008 - 13:00:00 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\ntdos412.sys O58 - SDL:[MD5.3CFFAEFFF23B0D208214A6D3061A5B1B] - 14/04/2008 - 13:00:00 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\ntdos804.sys O58 - SDL:[MD5.CAAA108FD7BF71989946B39704323455] - 14/04/2008 - 13:00:00 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\ntio.sys O58 - SDL:[MD5.6F73F50162DEF60C84B725C18CD9140F] - 14/04/2008 - 13:00:00 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\ntio404.sys O58 - SDL:[MD5.0FDD5E69C1FF3B58043D44F2CC743D45] - 14/04/2008 - 13:00:00 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\ntio411.sys O58 - SDL:[MD5.8842837C4D8311BF8E72BEE8CCC42217] - 14/04/2008 - 13:00:00 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\ntio412.sys O58 - SDL:[MD5.6B56CEB3C6F9D5CD7293DBD9FE23B311] - 14/04/2008 - 13:00:00 ---A- . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\ntio804.sys O58 - SDL:[MD5.B52648E6836CB2ED508C130EFA9FD49B] - 14/07/2003 - 12:04:30 ---A- . (.Zone Labs Inc. - TrueVector Device Driver.) -- C:\WINDOWS\system32\vsdatant.sys ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61) O61 - LFC:Last File Created 27/10/2010 - 22:29:55 ---A- C:\Documents And Settings\Guigui\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\settings.sol [1774] O61 - LFC:Last File Created 27/10/2010 - 22:54:49 ---A- C:\Documents And Settings\Guigui\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\bookmarkbackups\bookmarks-2010-10-27.json [3850] O61 - LFC:Last File Created 29/10/2010 - 06:40:07 ---A- C:\Documents And Settings\Guigui\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\bookmarkbackups\bookmarks-2010-10-29.json [3850] O61 - LFC:Last File Created 29/10/2010 - 08:36:39 ---A- C:\Documents And Settings\Guigui\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\blocklist.xml [4496] O61 - LFC:Last File Created 29/10/2010 - 08:55:25 -S-A- C:\Documents And Settings\Guigui\Application Data\Microsoft\CryptnetUrlCache\Content\5F74056C561F814B7771CB2993A44DEB [45494] O61 - LFC:Last File Created 29/10/2010 - 08:55:25 -S-A- C:\Documents And Settings\Guigui\Application Data\Microsoft\CryptnetUrlCache\MetaData\5F74056C561F814B7771CB2993A44DEB [104] O61 - LFC:Last File Created 29/10/2010 - 08:55:27 -S-A- C:\Documents And Settings\Guigui\Application Data\Microsoft\CryptnetUrlCache\Content\23B523C9E7746F715D33C6527C18EB9D [2418] O61 - LFC:Last File Created 29/10/2010 - 08:55:27 -S-A- C:\Documents And Settings\Guigui\Application Data\Microsoft\CryptnetUrlCache\MetaData\23B523C9E7746F715D33C6527C18EB9D [112] O61 - LFC:Last File Created 29/10/2010 - 08:56:29 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Mozilla Firefox\updates\last-update.log [66266] O61 - LFC:Last File Created 29/10/2010 - 08:56:39 ---A- C:\Documents And Settings\Guigui\Application Data\Mozilla\Firefox\Crash Reports\InstallTime20101026210630 [10] O61 - LFC:Last File Created 29/10/2010 - 08:56:41 ---A- C:\Documents And Settings\Guigui\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\compatibility.ini [188] O61 - LFC:Last File Created 29/10/2010 - 08:56:59 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Mozilla Firefox\active-update.xml [57] O61 - LFC:Last File Created 29/10/2010 - 08:56:59 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Mozilla Firefox\updates.xml [1233] O61 - LFC:Last File Created 29/10/2010 - 08:57:07 ---A- C:\Documents And Settings\Guigui\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\cookies.sqlite [2048] O61 - LFC:Last File Created 29/10/2010 - 08:59:05 ---A- C:\Documents And Settings\Guigui\Application Data\Macromedia\Flash Player\#SharedObjects\GW8PB2XT\mail.google.com\wakeup.sol [37] O61 - LFC:Last File Created 29/10/2010 - 09:00:48 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\OfflineCache\index.sqlite [10240] O61 - LFC:Last File Created 29/10/2010 - 09:00:57 ---A- C:\Documents And Settings\Guigui\Recent\Téléchargements.lnk [285] O61 - LFC:Last File Created 29/10/2010 - 09:00:57 ---A- C:\Documents And Settings\Guigui\Recent\vdf_fusebundle.lnk [392] O61 - LFC:Last File Created 29/10/2010 - 09:01:22 ---A- C:\Documents And Settings\Guigui\Application Data\Mozilla\Firefox\Crash Reports\submit.log [228] O61 - LFC:Last File Created 29/10/2010 - 09:01:22 ---A- C:\Documents And Settings\Guigui\Application Data\Mozilla\Firefox\Crash Reports\submitted\bp-57e99d82-1a5b-4324-81d2-392532101029.txt [59] O61 - LFC:Last File Created 29/10/2010 - 09:07:15 ---A- C:\Documents And Settings\Guigui\Application Data\Adobe\Flash Player\AssetCache\XP7FD9XP\1846548181EAE8A4BB86AFC74FD021D9A0F6DFA6.heu [150] O61 - LFC:Last File Created 29/10/2010 - 09:08:30 ---A- C:\Documents And Settings\Guigui\Recent\Planning 2009 2010.lnk [531] O61 - LFC:Last File Created 29/10/2010 - 09:08:33 ---A- C:\Documents And Settings\Guigui\Application Data\Microsoft\Office\Récents\EUROTOOL.lnk [858] O61 - LFC:Last File Created 29/10/2010 - 09:08:33 ---A- C:\Documents And Settings\Guigui\Application Data\Microsoft\Office\Récents\Macrolib.lnk [743] O61 - LFC:Last File Created 29/10/2010 - 09:08:35 ---A- C:\Documents And Settings\Guigui\Application Data\Microsoft\Office\Récents\Bureau.lnk [304] O61 - LFC:Last File Created 29/10/2010 - 09:08:35 ---A- C:\Documents And Settings\Guigui\Application Data\Microsoft\Office\Récents\Planning 2009 2010.lnk [469] O61 - LFC:Last File Created 29/10/2010 - 09:08:39 ---A- C:\Documents And Settings\Guigui\Application Data\Microsoft\Excel\Excel.xlb [12327] O61 - LFC:Last File Created 29/10/2010 - 09:08:39 ---A- C:\Documents And Settings\Guigui\Application Data\Microsoft\Office\Excel.pip [1356] O61 - LFC:Last File Created 29/10/2010 - 09:10:39 ---A- C:\Documents And Settings\Guigui\Application Data\Microsoft\Office\Récents\Serial.lnk [347] O61 - LFC:Last File Created 29/10/2010 - 09:10:40 ---A- C:\Documents And Settings\Guigui\Application Data\Microsoft\Office\Récents\FILE MAKER 10.lnk [266] O61 - LFC:Last File Created 29/10/2010 - 09:12:06 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Dr Watson\drwtsn32.log [6077540] O61 - LFC:Last File Created 29/10/2010 - 09:12:06 ---A- C:\Documents And Settings\All Users\Application Data\Microsoft\Dr Watson\user.dmp [22476] O61 - LFC:Last File Created 29/10/2010 - 09:12:14 ---A- C:\Documents And Settings\Guigui\Application Data\Microsoft\Office\Word.pip [1468] O61 - LFC:Last File Created 29/10/2010 - 09:12:14 ---A- C:\Documents And Settings\Guigui\Recent\FILE MAKER 10.lnk [266] O61 - LFC:Last File Created 29/10/2010 - 09:12:14 ---A- C:\Documents And Settings\Guigui\Recent\Serial.lnk [381] O61 - LFC:Last File Created 29/10/2010 - 09:31:13 -S-A- C:\Documents And Settings\Guigui\Application Data\Microsoft\CryptnetUrlCache\Content\0797C381B2F87EB5A1D5573BD15BA4F4 [33714] O61 - LFC:Last File Created 29/10/2010 - 09:31:14 -S-A- C:\Documents And Settings\Guigui\Application Data\Microsoft\CryptnetUrlCache\MetaData\0797C381B2F87EB5A1D5573BD15BA4F4 [132] O61 - LFC:Last File Created 29/10/2010 - 09:31:49 ---A- C:\Documents And Settings\All Users\Bureau\ISOBuddy.lnk [564] O61 - LFC:Last File Created 29/10/2010 - 09:31:49 ---A- C:\Documents And Settings\All Users\Menu Démarrer\Programmes\ISOBuddy\DVD-Ranger - Homepage.url [51] O61 - LFC:Last File Created 29/10/2010 - 09:31:49 ---A- C:\Documents And Settings\All Users\Menu Démarrer\Programmes\ISOBuddy\DVD-Ranger - Support.url [63] O61 - LFC:Last File Created 29/10/2010 - 09:31:49 ---A- C:\Documents And Settings\All Users\Menu Démarrer\Programmes\ISOBuddy\Run ISOBuddy.lnk [564] O61 - LFC:Last File Created 29/10/2010 - 09:31:49 ---A- C:\Documents And Settings\All Users\Menu Démarrer\Programmes\ISOBuddy\Uninstall.lnk [477] O61 - LFC:Last File Created 29/10/2010 - 09:35:37 ---A- C:\Documents And Settings\Guigui\Recent\FileMaker Pro 8 Advanced.lnk [536] O61 - LFC:Last File Created 29/10/2010 - 09:45:49 ---A- C:\Documents And Settings\Guigui\Recent\FileMaker_Pro_Advanced_v11.0.1_MULTiLANGUAGE-CYGiSO.lnk [681] O61 - LFC:Last File Created 29/10/2010 - 09:48:27 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [23552] O61 - LFC:Last File Created 29/10/2010 - 09:49:25 ---A- C:\Documents And Settings\Guigui\Recent\essai bis.lnk [755] O61 - LFC:Last File Created 29/10/2010 - 09:49:25 ---A- C:\Documents And Settings\Guigui\Recent\sortie strasbourg 18.5.2001.lnk [539] O61 - LFC:Last File Created 29/10/2010 - 09:51:40 ---A- C:\Documents And Settings\Guigui\Application Data\vlc\CACHEDIR.TAG [193] O61 - LFC:Last File Created 29/10/2010 - 09:51:40 ---A- C:\Documents And Settings\Guigui\Application Data\vlc\ml.xspf [304] O61 - LFC:Last File Created 29/10/2010 - 09:51:40 ---A- C:\Documents And Settings\Guigui\Application Data\vlc\plugins-04041e.dat [397808] O61 - LFC:Last File Created 29/10/2010 - 09:51:40 ---A- C:\Documents And Settings\Guigui\Application Data\vlc\vlc-qt-interface.ini [1087] O61 - LFC:Last File Created 29/10/2010 - 09:51:40 ---A- C:\Documents And Settings\Guigui\Application Data\vlc\vlcrc [76444] O61 - LFC:Last File Created 29/10/2010 - 09:54:03 ---A- C:\Documents And Settings\Guigui\Recent\dmg2iso.dmg.lnk [322] O61 - LFC:Last File Created 29/10/2010 - 09:54:05 ---A- C:\Documents And Settings\Guigui\Bureau\dmg2iso.dmg.zip [51130] O61 - LFC:Last File Created 29/10/2010 - 09:56:36 ---A- C:\Documents And Settings\Guigui\Application Data\DAEMON Tools Lite\ImageCatalog.xml [3144] O61 - LFC:Last File Created 29/10/2010 - 10:05:41 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Microsoft\Internet Explorer\Recovery\Active\{A2003CC0-E33B-11DF-8D85-0050FC235EC1}.dat [8192] O61 - LFC:Last File Created 29/10/2010 - 10:07:06 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\tasks\nsv94.tmp [6917152] O61 - LFC:Last File Created 29/10/2010 - 10:07:08 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\nsu98.tmp [0] O61 - LFC:Last File Created 29/10/2010 - 10:09:31 -SHA- C:\Documents And Settings\Guigui\Application Data\Microsoft\Internet Explorer\UserData\index.dat [32768] O61 - LFC:Last File Created 29/10/2010 - 10:09:31 -SHA- C:\Documents And Settings\Guigui\Local Settings\Application Data\Microsoft\Internet Explorer\DOMStore\index.dat [32768] O61 - LFC:Last File Created 29/10/2010 - 10:09:36 -SH-- C:\Documents And Settings\Guigui\Local Settings\Historique\History.IE5\desktop.ini [67] O61 - LFC:Last File Created 29/10/2010 - 10:09:59 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\nsfAA.tmp [0] O61 - LFC:Last File Created 29/10/2010 - 10:13:10 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Microsoft\Internet Explorer\Recovery\Active\{B83F8210-E33C-11DF-8D85-0050FC235EC1}.dat [9728] O61 - LFC:Last File Created 29/10/2010 - 10:13:59 ---A- C:\Documents And Settings\Guigui\Recent\Incoming.lnk [399] O61 - LFC:Last File Created 29/10/2010 - 10:13:59 ---A- C:\Documents And Settings\Guigui\Recent\ultraiso.premium.edition.v9.3.1.2633.incl.s.by.lnk [666] O61 - LFC:Last File Created 29/10/2010 - 10:19:32 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Microsoft\Internet Explorer\Recovery\Active\{9A2405D0-E33D-11DF-8D85-0050FC235EC1}.dat [8192] O61 - LFC:Last File Created 29/10/2010 - 10:20:12 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Microsoft\Internet Explorer\Recovery\Active\{A03921EE-E33D-11DF-8D85-0050FC235EC1}.dat [8192] O61 - LFC:Last File Created 29/10/2010 - 10:23:25 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\Ultra$ISO\~BIC9.tmp [0] O61 - LFC:Last File Created 29/10/2010 - 10:24:41 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\Ultra$ISO\~BICB.tmp [0] O61 - LFC:Last File Created 29/10/2010 - 10:25:22 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\Ultra$ISO\~BICC.tmp [0] O61 - LFC:Last File Created 29/10/2010 - 10:26:28 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\Ultra$ISO\~BICD.tmp [0] O61 - LFC:Last File Created 29/10/2010 - 10:26:50 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\Ultra$ISO\~BICE.tmp [0] O61 - LFC:Last File Created 29/10/2010 - 10:27:05 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\Ultra$ISO\~BICF.tmp [0] O61 - LFC:Last File Created 29/10/2010 - 10:28:28 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\Ultra$ISO\~BID0.tmp [0] O61 - LFC:Last File Created 29/10/2010 - 10:28:38 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\Ultra$ISO\~BID1.tmp [0] O61 - LFC:Last File Created 29/10/2010 - 10:29:02 -SHA- C:\Documents And Settings\Guigui\IECompatCache\index.dat [851968] O61 - LFC:Last File Created 29/10/2010 - 10:29:02 -SHA- C:\Documents And Settings\Guigui\PrivacIE\index.dat [1818624] O61 - LFC:Last File Created 29/10/2010 - 10:29:06 ---A- C:\Documents And Settings\Guigui\Cookies\guigui@zumasoft[2].txt [352] O61 - LFC:Last File Created 29/10/2010 - 10:29:09 ---A- C:\Documents And Settings\Guigui\Cookies\guigui@addthis[1].txt [159] O61 - LFC:Last File Created 29/10/2010 - 10:29:13 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Microsoft\Internet Explorer\Recovery\Active\{F7006F40-E33E-11DF-8D85-0050FC235EC1}.dat [9728] O61 - LFC:Last File Created 29/10/2010 - 10:30:46 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\tasks\nsmD4.tmp [6917152] O61 - LFC:Last File Created 29/10/2010 - 10:30:47 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\nsgD9.tmp [0] O61 - LFC:Last File Created 29/10/2010 - 10:30:58 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\tasks\IconDrop.exe [262463] O61 - LFC:Last File Created 29/10/2010 - 10:31:00 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\tasks\IPFilter.exe [673629] O61 - LFC:Last File Created 29/10/2010 - 10:31:01 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\tasks\msindex.exe [334469] O61 - LFC:Last File Created 29/10/2010 - 10:31:05 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\tasks\lib\zlib1.dll [35840] O61 - LFC:Last File Created 29/10/2010 - 10:31:06 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\tasks\TCChecker.exe [1609946] O61 - LFC:Last File Created 29/10/2010 - 10:31:09 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\Searchqu.ini [226] O61 - LFC:Last File Created 29/10/2010 - 10:31:20 -SHA- C:\Documents And Settings\Guigui\Local Settings\Application Data\Microsoft\Feeds Cache\index.dat [32768] O61 - LFC:Last File Created 29/10/2010 - 10:31:23 ---A- C:\Documents And Settings\Guigui\Cookies\guigui@cnfg.2010adz[1].txt [107] O61 - LFC:Last File Created 29/10/2010 - 10:31:25 ---A- C:\Documents And Settings\Guigui\Cookies\guigui@cnfg.net-secured-app[1].txt [115] O61 - LFC:Last File Created 29/10/2010 - 10:31:27 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Microsoft\Internet Explorer\Recovery\Active\{497FF9B0-E33F-11DF-8D85-0050FC235EC1}.dat [4096] O61 - LFC:Last File Created 29/10/2010 - 10:32:04 ---A- C:\Documents And Settings\Guigui\Application Data\searchqutb\guid.dat [38] O61 - LFC:Last File Created 29/10/2010 - 10:32:06 ---A- C:\Documents And Settings\Guigui\Application Data\searchqutb\dtx.ini [15] O61 - LFC:Last File Created 29/10/2010 - 10:32:50 ---A- C:\Documents And Settings\Guigui\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\searchqutb\guid.dat [38] O61 - LFC:Last File Created 29/10/2010 - 10:32:58 ---A- C:\Documents And Settings\Guigui\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\searchqutb\setupCfg.xml [235] O61 - LFC:Last File Created 29/10/2010 - 10:32:58 ---A- C:\Documents And Settings\Guigui\Application Data\searchqutb\setupCfg.xml [235] O61 - LFC:Last File Created 29/10/2010 - 10:32:58 ---A- C:\Documents And Settings\Nolwenn\Application Data\Mozilla\Firefox\Profiles\yk0g79kt.default\searchqutb\guid.dat [38] O61 - LFC:Last File Created 29/10/2010 - 10:32:58 ---A- C:\Documents And Settings\Nolwenn\Application Data\Mozilla\Firefox\Profiles\yk0g79kt.default\searchqutb\setupCfg.xml [235] O61 - LFC:Last File Created 29/10/2010 - 10:33:07 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\nslEF.tmp [0] O61 - LFC:Last File Created 29/10/2010 - 10:33:47 ---A- C:\Documents And Settings\Guigui\Cookies\guigui@reports.mag-net-work[1].txt [117] O61 - LFC:Last File Created 29/10/2010 - 10:36:32 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\AVSETUP_4cca9519\setup.log [31996] O61 - LFC:Last File Created 29/10/2010 - 10:37:42 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\2.tmp [16384] O61 - LFC:Last File Created 29/10/2010 - 10:37:42 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\34.tmp [16384] O61 - LFC:Last File Created 29/10/2010 - 10:37:42 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\5.tmp [16384] O61 - LFC:Last File Created 29/10/2010 - 10:37:42 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\65.tmp [16384] O61 - LFC:Last File Created 29/10/2010 - 10:37:42 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\DIO2D1.tmp [47416] O61 - LFC:Last File Created 29/10/2010 - 10:37:42 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\DIO2D2.tmp [47416] O61 - LFC:Last File Created 29/10/2010 - 10:37:42 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\DIO2D3.tmp [47416] O61 - LFC:Last File Created 29/10/2010 - 10:37:42 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\DIO5.tmp [47416] O61 - LFC:Last File Created 29/10/2010 - 10:37:42 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\~DF2D30.tmp [65536] O61 - LFC:Last File Created 29/10/2010 - 10:37:42 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\~DF3A97.tmp [32768] O61 - LFC:Last File Created 29/10/2010 - 10:37:42 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\~DF3B22.tmp [16384] O61 - LFC:Last File Created 29/10/2010 - 10:37:42 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\~DF3B80.tmp [32768] O61 - LFC:Last File Created 29/10/2010 - 10:37:42 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\~DF60AE.tmp [65536] O61 - LFC:Last File Created 29/10/2010 - 10:37:42 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\~DF6F7.tmp [16384] O61 - LFC:Last File Created 29/10/2010 - 10:37:42 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\~DF70AC.tmp [16384] O61 - LFC:Last File Created 29/10/2010 - 10:37:42 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\~DF7168.tmp [16384] O61 - LFC:Last File Created 29/10/2010 - 10:37:42 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\~DF8641.tmp [65536] O61 - LFC:Last File Created 29/10/2010 - 10:37:42 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\~DF86C3.tmp [16384] O61 - LFC:Last File Created 29/10/2010 - 10:37:42 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\~DF9574.tmp [16384] O61 - LFC:Last File Created 29/10/2010 - 10:37:42 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\~DF993D.tmp [16384] O61 - LFC:Last File Created 29/10/2010 - 10:37:42 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\~DF9B0.tmp [16384] O61 - LFC:Last File Created 29/10/2010 - 10:37:42 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\~DFA5D1.tmp [16384] O61 - LFC:Last File Created 29/10/2010 - 10:37:42 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\~DFCD68.tmp [32768] O61 - LFC:Last File Created 29/10/2010 - 10:37:42 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\~DFE54F.tmp [32768] O61 - LFC:Last File Created 29/10/2010 - 10:37:42 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\~DFF62B.tmp [32768] O61 - LFC:Last File Created 29/10/2010 - 10:37:42 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\~DFFAE.tmp [65536] O61 - LFC:Last File Created 29/10/2010 - 10:37:42 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\~DFFC38.tmp [16384] O61 - LFC:Last File Created 29/10/2010 - 10:37:42 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\~DFFD81.tmp [32768] O61 - LFC:Last File Created 29/10/2010 - 10:37:48 ---A- C:\Documents And Settings\Guigui\Recent\BASE DONNEES écoles.lnk [536] O61 - LFC:Last File Created 29/10/2010 - 10:37:51 ---A- C:\Documents And Settings\Guigui\Bureau\BASE DONNEES écoles.FP3 [1458176] O61 - LFC:Last File Created 29/10/2010 - 10:38:52 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Microsoft\Internet Explorer\Recovery\Active\RecoveryStore.{BC6C1D53-E334-11DF-8D85-0050FC235EC1}.dat [6656] O61 - LFC:Last File Created 29/10/2010 - 10:41:52 ---A- C:\Documents And Settings\Guigui\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\extensions.cache [558] O61 - LFC:Last File Created 29/10/2010 - 10:41:52 ---A- C:\Documents And Settings\Guigui\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\extensions.ini [220] O61 - LFC:Last File Created 29/10/2010 - 10:41:53 ---A- C:\Documents And Settings\Guigui\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\extensions.rdf [3499] O61 - LFC:Last File Created 29/10/2010 - 10:41:56 ---A- C:\Documents And Settings\Guigui\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\xpti.dat [102077] O61 - LFC:Last File Created 29/10/2010 - 10:42:00 ---A- C:\Documents And Settings\Guigui\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\compreg.dat [148091] O61 - LFC:Last File Created 29/10/2010 - 10:43:26 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\XPC.mfl [2404612] O61 - LFC:Last File Created 29/10/2010 - 10:43:44 -S-A- C:\Documents And Settings\Guigui\Application Data\Microsoft\CryptnetUrlCache\Content\7B2238AACCEDC3F1FFE8E7EB5F575EC9 [552] O61 - LFC:Last File Created 29/10/2010 - 10:43:44 -S-A- C:\Documents And Settings\Guigui\Application Data\Microsoft\CryptnetUrlCache\MetaData\7B2238AACCEDC3F1FFE8E7EB5F575EC9 [132] O61 - LFC:Last File Created 29/10/2010 - 10:44:06 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\dd_vcredistMSI2FCD.txt [524134] O61 - LFC:Last File Created 29/10/2010 - 10:44:06 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\dd_vcredistUI2FCD.txt [11678] O61 - LFC:Last File Created 29/10/2010 - 10:45:13 -S-A- C:\Documents And Settings\Guigui\Application Data\Microsoft\CryptnetUrlCache\Content\8C60E8C3F81A2F579A31769EEBE5E360 [487] O61 - LFC:Last File Created 29/10/2010 - 10:45:13 -S-A- C:\Documents And Settings\Guigui\Application Data\Microsoft\CryptnetUrlCache\Content\8DD2A2DB5F08B0D640FDD66A42355BE9 [490] O61 - LFC:Last File Created 29/10/2010 - 10:45:13 -S-A- C:\Documents And Settings\Guigui\Application Data\Microsoft\CryptnetUrlCache\MetaData\8C60E8C3F81A2F579A31769EEBE5E360 [128] O61 - LFC:Last File Created 29/10/2010 - 10:45:13 -S-A- C:\Documents And Settings\Guigui\Application Data\Microsoft\CryptnetUrlCache\MetaData\8DD2A2DB5F08B0D640FDD66A42355BE9 [126] O61 - LFC:Last File Created 29/10/2010 - 11:30:19 ---A- C:\Documents And Settings\Guigui\Application Data\Mozilla\Firefox\Crash Reports\LastCrash [10] O61 - LFC:Last File Created 29/10/2010 - 11:38:49 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\093D9293d01 [17277] O61 - LFC:Last File Created 29/10/2010 - 11:40:28 ---A- C:\Documents And Settings\All Users\Bureau\Avira AntiVir Control Center.lnk [1707] O61 - LFC:Last File Created 29/10/2010 - 11:40:28 ---A- C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Avira\AntiVir Desktop\Afficher le fichier Lisez-moi.lnk [847] O61 - LFC:Last File Created 29/10/2010 - 11:40:28 ---A- C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Avira\AntiVir Desktop\Aide AntiVir.lnk [1702] O61 - LFC:Last File Created 29/10/2010 - 11:40:28 ---A- C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Avira\AntiVir Desktop\AntiVir sur Internet.lnk [1718] O61 - LFC:Last File Created 29/10/2010 - 11:40:28 ---A- C:\Documents And Settings\All Users\Menu Démarrer\Programmes\Avira\AntiVir Desktop\Démarrer AntiVir.lnk [1725] O61 - LFC:Last File Created 29/10/2010 - 11:42:00 -SHA- C:\Documents And Settings\Guigui\IETldCache\index.dat [262144] O61 - LFC:Last File Created 29/10/2010 - 11:42:16 -SHA- C:\Documents And Settings\Guigui\Local Settings\Historique\History.IE5\MSHist012010102920101030\index.dat [49152] O61 - LFC:Last File Created 29/10/2010 - 11:42:22 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\7C9D1634d01 [29529] O61 - LFC:Last File Created 29/10/2010 - 11:42:22 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\B10AB35Ed01 [29390] O61 - LFC:Last File Created 29/10/2010 - 11:42:28 ---A- C:\Documents And Settings\Guigui\Cookies\guigui@notifier.avira[1].txt [359] O61 - LFC:Last File Created 29/10/2010 - 11:42:48 ---A- C:\Documents And Settings\All Users\Application Data\Avira\AntiVir Desktop\REPORTS\a3a6b9d7.avl [1542] O61 - LFC:Last File Created 29/10/2010 - 11:42:49 ---A- C:\Documents And Settings\All Users\Application Data\Avira\AntiVir Desktop\LOGFILES\Upd-2010-10-29-12-41-36.log [41874] O61 - LFC:Last File Created 29/10/2010 - 11:43:32 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\B622751Cd01 [28604] O61 - LFC:Last File Created 29/10/2010 - 11:43:33 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\5447C715d01 [21496] O61 - LFC:Last File Created 29/10/2010 - 11:43:33 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\B92FB48Dd01 [20174] O61 - LFC:Last File Created 29/10/2010 - 11:43:33 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\BB86F350d01 [18362] O61 - LFC:Last File Created 29/10/2010 - 11:43:38 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\C849F562d01 [44957] O61 - LFC:Last File Created 29/10/2010 - 11:43:38 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\D3B3F192d01 [20956] O61 - LFC:Last File Created 29/10/2010 - 11:43:41 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\89F76BE2d01 [30989] O61 - LFC:Last File Created 29/10/2010 - 11:44:14 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\XUL.mfl [1410970] O61 - LFC:Last File Created 29/10/2010 - 11:44:59 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\8FF7D854d01 [20163] O61 - LFC:Last File Created 29/10/2010 - 11:45:04 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\1B0BF600d01 [35164] O61 - LFC:Last File Created 29/10/2010 - 11:45:16 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\E6C4666Dd01 [38642] O61 - LFC:Last File Created 29/10/2010 - 11:45:20 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\C1465A35d01 [20606] O61 - LFC:Last File Created 29/10/2010 - 11:45:57 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\F103E128d01 [19067] O61 - LFC:Last File Created 29/10/2010 - 11:47:15 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\CC8E94A2d01 [22666] O61 - LFC:Last File Created 29/10/2010 - 11:47:16 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\DB9CAF24d01 [37200] O61 - LFC:Last File Created 29/10/2010 - 11:47:16 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\F3782808d01 [40164] O61 - LFC:Last File Created 29/10/2010 - 11:47:19 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\2A5B56D1d01 [28256] O61 - LFC:Last File Created 29/10/2010 - 11:47:20 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\084BE002d01 [25483] O61 - LFC:Last File Created 29/10/2010 - 11:47:21 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\22D936CEd01 [19208] O61 - LFC:Last File Created 29/10/2010 - 11:47:21 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\C3E81E12d01 [30313] O61 - LFC:Last File Created 29/10/2010 - 11:47:22 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\AE111305d01 [42210] O61 - LFC:Last File Created 29/10/2010 - 11:47:26 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\67040CB0d01 [35388] O61 - LFC:Last File Created 29/10/2010 - 11:47:57 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\03DD2DD3d01 [17831] O61 - LFC:Last File Created 29/10/2010 - 11:47:57 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\4A52DE7Fd01 [37546] O61 - LFC:Last File Created 29/10/2010 - 11:47:57 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\60338443d01 [26769] O61 - LFC:Last File Created 29/10/2010 - 11:48:00 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\047C09F9d01 [40842] O61 - LFC:Last File Created 29/10/2010 - 11:48:02 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\E95D9AF6d01 [52028] O61 - LFC:Last File Created 29/10/2010 - 11:48:06 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\7A69BBCDd01 [25278] O61 - LFC:Last File Created 29/10/2010 - 11:48:06 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\B5D8CA34d01 [16777] O61 - LFC:Last File Created 29/10/2010 - 11:48:08 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\9D2DCC79d01 [28465] O61 - LFC:Last File Created 29/10/2010 - 11:48:10 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\28DE7A79d01 [117884] O61 - LFC:Last File Created 29/10/2010 - 11:48:28 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\67B4D7B8d01 [6153352] O61 - LFC:Last File Created 29/10/2010 - 11:49:11 ---A- C:\Documents And Settings\All Users\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\link.txt [138] O61 - LFC:Last File Created 29/10/2010 - 11:49:11 ---A- C:\Documents And Settings\All Users\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\news.txt [138] O61 - LFC:Last File Created 29/10/2010 - 11:49:37 ---A- C:\Documents And Settings\All Users\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\ignore.dat [0] O61 - LFC:Last File Created 29/10/2010 - 11:50:28 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\4D565CD6d01 [25329] O61 - LFC:Last File Created 29/10/2010 - 11:50:29 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\9B7EDAC3d01 [27011] O61 - LFC:Last File Created 29/10/2010 - 11:50:34 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\03D6DE48d01 [21120] O61 - LFC:Last File Created 29/10/2010 - 11:50:40 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\AB6D9503d01 [19918] O61 - LFC:Last File Created 29/10/2010 - 11:50:55 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\795F6C58d01 [41750] O61 - LFC:Last File Created 29/10/2010 - 11:51:02 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\25766069d01 [21374] O61 - LFC:Last File Created 29/10/2010 - 11:51:04 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\8E14783Fd01 [17935] O61 - LFC:Last File Created 29/10/2010 - 11:51:33 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\7929A7BBd01 [20787] O61 - LFC:Last File Created 29/10/2010 - 11:51:33 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\8A0775A2d01 [19941] O61 - LFC:Last File Created 29/10/2010 - 11:51:35 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\0F9F85FDd01 [19100] O61 - LFC:Last File Created 29/10/2010 - 11:51:36 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\55423570d01 [35388] O61 - LFC:Last File Created 29/10/2010 - 11:52:44 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\1B7388D3d01 [22395] O61 - LFC:Last File Created 29/10/2010 - 11:52:47 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\831468B5d01 [30251] O61 - LFC:Last File Created 29/10/2010 - 11:52:49 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\F7FD3070d01 [16735] O61 - LFC:Last File Created 29/10/2010 - 11:53:07 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\F1EAFAD9d01 [20259] O61 - LFC:Last File Created 29/10/2010 - 11:53:42 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\BCA18B8Ad01 [19100] O61 - LFC:Last File Created 29/10/2010 - 11:53:45 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\49115528d01 [34284] O61 - LFC:Last File Created 29/10/2010 - 11:53:49 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\F4F1BEFCd01 [39019] O61 - LFC:Last File Created 29/10/2010 - 12:02:01 ---A- C:\Documents And Settings\All Users\Documents\DME-SETTINGS.xml [2766] O61 - LFC:Last File Created 29/10/2010 - 12:35:13 ---A- C:\Documents And Settings\All Users\Application Data\Avira\AntiVir Desktop\LOGFILES\AVSCAN-20101029-124322-95D0FF67.LOG [214] O61 - LFC:Last File Created 29/10/2010 - 12:35:13 ---A- C:\Documents And Settings\All Users\Application Data\Avira\AntiVir Desktop\LOGFILES\setup.log [102532] O61 - LFC:Last File Created 29/10/2010 - 12:35:24 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\D03AE71Bd01 [86805] O61 - LFC:Last File Created 29/10/2010 - 12:35:36 ---A- C:\Documents And Settings\Guigui\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\downloads.sqlite [9216] O61 - LFC:Last File Created 29/10/2010 - 12:35:59 ---A- C:\Documents And Settings\All Users\Bureau\MBRCheck.lnk [673] O61 - LFC:Last File Created 29/10/2010 - 12:35:59 ---A- C:\Documents And Settings\All Users\Bureau\ZHPDiag.lnk [666] O61 - LFC:Last File Created 29/10/2010 - 12:35:59 ---A- C:\Documents And Settings\All Users\Bureau\ZHPFix.lnk [661] O61 - LFC:Last File Created 29/10/2010 - 12:35:59 ---A- C:\Documents And Settings\All Users\Menu Démarrer\Programmes\ZHP\ZHPDiag.lnk [439] O61 - LFC:Last File Created 29/10/2010 - 12:37:30 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\7819622Cd01 [16578] O61 - LFC:Last File Created 29/10/2010 - 12:37:31 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\B0488810d01 [30925] O61 - LFC:Last File Created 29/10/2010 - 12:37:31 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\DBA399E2d01 [25499] O61 - LFC:Last File Created 29/10/2010 - 12:37:31 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\ED4B9B3Fd01 [34481] O61 - LFC:Last File Created 29/10/2010 - 12:37:32 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\351AA5DFd01 [46391] O61 - LFC:Last File Created 29/10/2010 - 12:37:40 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\1A631119d01 [31068] O61 - LFC:Last File Created 29/10/2010 - 12:37:44 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\028080ACd01 [19763] O61 - LFC:Last File Created 29/10/2010 - 12:37:44 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\274B61ECd01 [29566] O61 - LFC:Last File Created 29/10/2010 - 12:37:44 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\58B7D427d01 [17435] O61 - LFC:Last File Created 29/10/2010 - 12:37:44 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\BA42CDD0d01 [27330] O61 - LFC:Last File Created 29/10/2010 - 12:37:45 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\0AA05849d01 [16643] O61 - LFC:Last File Created 29/10/2010 - 12:37:45 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\639DEC76d01 [18170] O61 - LFC:Last File Created 29/10/2010 - 12:37:46 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\7001820Ad01 [16643] O61 - LFC:Last File Created 29/10/2010 - 12:37:46 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\DC981186d01 [16643] O61 - LFC:Last File Created 29/10/2010 - 12:37:47 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\7EA411BFd01 [31146] O61 - LFC:Last File Created 29/10/2010 - 12:37:48 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\7ED9C6F1d01 [20170] O61 - LFC:Last File Created 29/10/2010 - 12:37:48 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\F0E98F12d01 [24605] O61 - LFC:Last File Created 29/10/2010 - 12:37:49 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\0B280D71d01 [39670] O61 - LFC:Last File Created 29/10/2010 - 12:37:50 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\262EC69Fd01 [22942] O61 - LFC:Last File Created 29/10/2010 - 12:37:52 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\767CABA5d01 [72784] O61 - LFC:Last File Created 29/10/2010 - 12:38:39 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\6EF546ADd01 [26830] O61 - LFC:Last File Created 29/10/2010 - 12:39:28 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\D5C8B6D7d01 [17437] O61 - LFC:Last File Created 29/10/2010 - 12:39:35 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\788D4EBEd01 [62850] O61 - LFC:Last File Created 29/10/2010 - 12:40:07 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\5893D9EEd01 [25829] O61 - LFC:Last File Created 29/10/2010 - 12:40:26 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\5B957413d01 [42565] O61 - LFC:Last File Created 29/10/2010 - 12:40:26 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\CE56919Bd01 [37019] O61 - LFC:Last File Created 29/10/2010 - 12:40:39 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\3972B474d01 [30704] O61 - LFC:Last File Created 29/10/2010 - 12:45:15 -S-A- C:\Documents And Settings\Guigui\Application Data\Microsoft\CryptnetUrlCache\Content\E04822AD18D472EA5B582E6E6F8C6B9A [528] O61 - LFC:Last File Created 29/10/2010 - 12:45:15 -S-A- C:\Documents And Settings\Guigui\Application Data\Microsoft\CryptnetUrlCache\MetaData\E04822AD18D472EA5B582E6E6F8C6B9A [140] O61 - LFC:Last File Created 29/10/2010 - 12:45:16 -S-A- C:\Documents And Settings\Guigui\Application Data\Microsoft\CryptnetUrlCache\Content\904590238400AD963F77FAAAADC9BAB5 [571] O61 - LFC:Last File Created 29/10/2010 - 12:45:16 -S-A- C:\Documents And Settings\Guigui\Application Data\Microsoft\CryptnetUrlCache\MetaData\904590238400AD963F77FAAAADC9BAB5 [136] O61 - LFC:Last File Created 29/10/2010 - 12:45:22 -S-A- C:\Documents And Settings\Guigui\Application Data\Microsoft\CryptnetUrlCache\Content\F482C95F83F1B59228F1B1E720F2EDF1 [70226] O61 - LFC:Last File Created 29/10/2010 - 12:45:22 -S-A- C:\Documents And Settings\Guigui\Application Data\Microsoft\CryptnetUrlCache\MetaData\F482C95F83F1B59228F1B1E720F2EDF1 [128] O61 - LFC:Last File Created 29/10/2010 - 12:45:24 -S-A- C:\Documents And Settings\Guigui\Application Data\Microsoft\CryptnetUrlCache\Content\696F3DE637E6DE85B458996D49D759AD [781] O61 - LFC:Last File Created 29/10/2010 - 12:45:24 -S-A- C:\Documents And Settings\Guigui\Application Data\Microsoft\CryptnetUrlCache\Content\B8CC409ACDBF2A2FE04C56F2875B1FD6 [561] O61 - LFC:Last File Created 29/10/2010 - 12:45:24 -S-A- C:\Documents And Settings\Guigui\Application Data\Microsoft\CryptnetUrlCache\MetaData\696F3DE637E6DE85B458996D49D759AD [156] O61 - LFC:Last File Created 29/10/2010 - 12:45:24 -S-A- C:\Documents And Settings\Guigui\Application Data\Microsoft\CryptnetUrlCache\MetaData\B8CC409ACDBF2A2FE04C56F2875B1FD6 [134] O61 - LFC:Last File Created 29/10/2010 - 12:45:33 -S-A- C:\Documents And Settings\Guigui\Application Data\Microsoft\CryptnetUrlCache\Content\1B749B72855CB97BF2F58675617C9BF9 [576] O61 - LFC:Last File Created 29/10/2010 - 12:45:33 -S-A- C:\Documents And Settings\Guigui\Application Data\Microsoft\CryptnetUrlCache\MetaData\1B749B72855CB97BF2F58675617C9BF9 [162] O61 - LFC:Last File Created 29/10/2010 - 12:46:30 -S-A- C:\Documents And Settings\Guigui\Application Data\Microsoft\CryptnetUrlCache\Content\C554DCF706A5AAB8B360FAD227EAB9C7 [1310] O61 - LFC:Last File Created 29/10/2010 - 12:46:30 -S-A- C:\Documents And Settings\Guigui\Application Data\Microsoft\CryptnetUrlCache\Content\E8974A4669383843486E5AFDB09650F5 [2249] O61 - LFC:Last File Created 29/10/2010 - 12:46:30 -S-A- C:\Documents And Settings\Guigui\Application Data\Microsoft\CryptnetUrlCache\MetaData\C554DCF706A5AAB8B360FAD227EAB9C7 [100] O61 - LFC:Last File Created 29/10/2010 - 12:46:30 -S-A- C:\Documents And Settings\Guigui\Application Data\Microsoft\CryptnetUrlCache\MetaData\E8974A4669383843486E5AFDB09650F5 [124] O61 - LFC:Last File Created 29/10/2010 - 12:46:38 -S-A- C:\Documents And Settings\Guigui\Application Data\Microsoft\CryptnetUrlCache\Content\570FB14ABC805C46708F32F92F10C3B4 [618] O61 - LFC:Last File Created 29/10/2010 - 12:46:38 -S-A- C:\Documents And Settings\Guigui\Application Data\Microsoft\CryptnetUrlCache\MetaData\570FB14ABC805C46708F32F92F10C3B4 [174] O61 - LFC:Last File Created 29/10/2010 - 12:46:46 ---A- C:\Documents And Settings\Guigui\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\search.json [13849] O61 - LFC:Last File Created 29/10/2010 - 12:46:49 ---A- C:\Documents And Settings\Guigui\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\pluginreg.dat [10190] O61 - LFC:Last File Created 29/10/2010 - 12:46:50 ---A- C:\Documents And Settings\Guigui\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\urlclassifierkey3.txt [154] O61 - LFC:Last File Created 29/10/2010 - 12:47:02 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\45C224ADd01 [26977] O61 - LFC:Last File Created 29/10/2010 - 12:47:02 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\74D271D8d01 [28762] O61 - LFC:Last File Created 29/10/2010 - 12:47:21 ---A- C:\Documents And Settings\Guigui\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\formhistory.sqlite [13312] O61 - LFC:Last File Created 29/10/2010 - 12:47:34 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\74B659C2d01 [21710] O61 - LFC:Last File Created 29/10/2010 - 12:47:37 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\A52692E1d01 [42579] O61 - LFC:Last File Created 29/10/2010 - 12:47:42 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\E26B6569d01 [27134] O61 - LFC:Last File Created 29/10/2010 - 12:47:43 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\5A31C71Bd01 [19658] O61 - LFC:Last File Created 29/10/2010 - 12:47:43 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\AF9C623Bd01 [27040] O61 - LFC:Last File Created 29/10/2010 - 12:48:20 -S-A- C:\Documents And Settings\Guigui\Application Data\Microsoft\CryptnetUrlCache\Content\3C83474D61E624A4F9844DF935AFE217 [569] O61 - LFC:Last File Created 29/10/2010 - 12:48:20 -S-A- C:\Documents And Settings\Guigui\Application Data\Microsoft\CryptnetUrlCache\MetaData\3C83474D61E624A4F9844DF935AFE217 [142] O61 - LFC:Last File Created 29/10/2010 - 12:48:23 -S-A- C:\Documents And Settings\Guigui\Application Data\Microsoft\CryptnetUrlCache\Content\74BFD122C0875EC75DBE5C6DB4C59019 [399480] O61 - LFC:Last File Created 29/10/2010 - 12:48:23 -S-A- C:\Documents And Settings\Guigui\Application Data\Microsoft\CryptnetUrlCache\MetaData\74BFD122C0875EC75DBE5C6DB4C59019 [124] O61 - LFC:Last File Created 29/10/2010 - 12:48:25 -S-A- C:\Documents And Settings\Guigui\Application Data\Microsoft\CryptnetUrlCache\Content\486CC6AFD08942336C61FCD401C4A1D1 [261447] O61 - LFC:Last File Created 29/10/2010 - 12:48:25 -S-A- C:\Documents And Settings\Guigui\Application Data\Microsoft\CryptnetUrlCache\MetaData\486CC6AFD08942336C61FCD401C4A1D1 [120] O61 - LFC:Last File Created 29/10/2010 - 12:48:34 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\DF0977E2d01 [19380] O61 - LFC:Last File Created 29/10/2010 - 12:48:45 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\5C807DA8d01 [42213] O61 - LFC:Last File Created 29/10/2010 - 12:48:48 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\EA6E706Fd01 [17463] O61 - LFC:Last File Created 29/10/2010 - 12:48:56 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\326D8F8Cd01 [21065] O61 - LFC:Last File Created 29/10/2010 - 12:49:34 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\366D2121d01 [21528] O61 - LFC:Last File Created 29/10/2010 - 12:49:35 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\804BFEA1d01 [20165] O61 - LFC:Last File Created 29/10/2010 - 12:50:32 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\29AA29D0d01 [25794] O61 - LFC:Last File Created 29/10/2010 - 12:50:46 -S-A- C:\Documents And Settings\Guigui\Application Data\Microsoft\CryptnetUrlCache\Content\E6024EAC88E6B6165D49FE3C95ADD735 [558] O61 - LFC:Last File Created 29/10/2010 - 12:50:46 -S-A- C:\Documents And Settings\Guigui\Application Data\Microsoft\CryptnetUrlCache\MetaData\E6024EAC88E6B6165D49FE3C95ADD735 [144] O61 - LFC:Last File Created 29/10/2010 - 12:52:32 -S-A- C:\Documents And Settings\Guigui\Application Data\Microsoft\CryptnetUrlCache\Content\2BF68F4714092295550497DD56F57004 [18] O61 - LFC:Last File Created 29/10/2010 - 12:52:32 -S-A- C:\Documents And Settings\Guigui\Application Data\Microsoft\CryptnetUrlCache\MetaData\2BF68F4714092295550497DD56F57004 [216] O61 - LFC:Last File Created 29/10/2010 - 12:52:33 -S-A- C:\Documents And Settings\Guigui\Application Data\Microsoft\CryptnetUrlCache\Content\94308059B57B3142E455B38A6EB92015 [30273] O61 - LFC:Last File Created 29/10/2010 - 12:52:33 -S-A- C:\Documents And Settings\Guigui\Application Data\Microsoft\CryptnetUrlCache\Content\A8FABA189DB7D25FBA7CAC806625FD30 [96019] O61 - LFC:Last File Created 29/10/2010 - 12:52:33 -S-A- C:\Documents And Settings\Guigui\Application Data\Microsoft\CryptnetUrlCache\MetaData\94308059B57B3142E455B38A6EB92015 [216] O61 - LFC:Last File Created 29/10/2010 - 12:52:33 -S-A- C:\Documents And Settings\Guigui\Application Data\Microsoft\CryptnetUrlCache\MetaData\A8FABA189DB7D25FBA7CAC806625FD30 [124] O61 - LFC:Last File Created 29/10/2010 - 12:54:37 ---A- C:\Documents And Settings\Guigui\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\prefs.js [6235] O61 - LFC:Last File Created 29/10/2010 - 12:54:38 ---A- C:\Documents And Settings\Guigui\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\cert8.db [65536] O61 - LFC:Last File Created 29/10/2010 - 12:54:38 ---A- C:\Documents And Settings\Guigui\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\key3.db [16384] O61 - LFC:Last File Created 29/10/2010 - 12:54:38 ---A- C:\Documents And Settings\Guigui\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\localstore.rdf [8009] O61 - LFC:Last File Created 29/10/2010 - 12:54:38 ---A- C:\Documents And Settings\Guigui\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\places.sqlite [630784] O61 - LFC:Last File Created 29/10/2010 - 12:54:38 ---A- C:\Documents And Settings\Guigui\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\places.sqlite-journal [0] O61 - LFC:Last File Created 29/10/2010 - 12:54:38 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\_CACHE_001_ [1085414] O61 - LFC:Last File Created 29/10/2010 - 12:54:38 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\_CACHE_002_ [850804] O61 - LFC:Last File Created 29/10/2010 - 12:54:38 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\_CACHE_003_ [2431290] O61 - LFC:Last File Created 29/10/2010 - 12:54:38 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\Cache\_CACHE_MAP_ [65812] O61 - LFC:Last File Created 29/10/2010 - 12:54:38 ---A- C:\Documents And Settings\Guigui\Local Settings\Application Data\Mozilla\Firefox\Profiles\3dry6mua.default\urlclassifier3.sqlite [25804800] O61 - LFC:Last File Created 29/10/2010 - 12:55:00 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\~DF49F7.tmp [65536] O61 - LFC:Last File Created 29/10/2010 - 13:01:28 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\WERda5b.dir00\ZHPDiag.exe.mdmp [1852984] O61 - LFC:Last File Created 29/10/2010 - 13:01:30 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\WERd0b3.dir00\ZHPDiag.exe.mdmp [1852984] O61 - LFC:Last File Created 29/10/2010 - 13:01:51 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\WERd0b3.dir00\ZHPDiag.exe.hdmp [8034345] O61 - LFC:Last File Created 29/10/2010 - 13:01:51 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\WERda5b.dir00\ZHPDiag.exe.hdmp [8034345] O61 - LFC:Last File Created 29/10/2010 - 13:01:55 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\WERd0b3.dir00\appcompat.txt [12932] O61 - LFC:Last File Created 29/10/2010 - 13:01:55 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\WERd0b3.dir00\manifest.txt [1778] O61 - LFC:Last File Created 29/10/2010 - 13:01:55 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\WERda5b.dir00\appcompat.txt [12932] O61 - LFC:Last File Created 29/10/2010 - 13:01:55 ---A- C:\Documents And Settings\Guigui\Local Settings\Temp\WERda5b.dir00\manifest.txt [1778] O61 - LFC:Last File Created 29/10/2010 - 13:02:44 -SH-- C:\Documents And Settings\Guigui\ntuser.ini [284] O61 - LFC:Last File Created 29/10/2010 - 13:03:59 -SHA- C:\Documents And Settings\NetworkService\Local Settings\desktop.ini [62] O61 - LFC:Last File Created 29/10/2010 - 13:04:01 -SHA- C:\Documents And Settings\LocalService\Local Settings\desktop.ini [62] O61 - LFC:Last File Created 29/10/2010 - 13:04:03 --HA- C:\Documents And Settings\Nolwenn\ntuser.dat.LOG [1024] O61 - LFC:Last File Created 29/10/2010 - 13:04:05 -SHA- C:\Documents And Settings\Guigui\Local Settings\desktop.ini [62] O61 - LFC:Last File Created 29/10/2010 - 13:04:08 -SHA- C:\Documents And Settings\Guigui\Cookies\index.dat [49152] O61 - LFC:Last File Created 29/10/2010 - 13:04:08 -SHA- C:\Documents And Settings\Guigui\Local Settings\Historique\History.IE5\index.dat [81920] O61 - LFC:Last File Created 29/10/2010 - 13:04:09 ---A- C:\Documents And Settings\All Users\Application Data\Avira\AntiVir Desktop\LOGFILES\sched.log [2466] O61 - LFC:Last File Created 29/10/2010 - 13:04:10 ---A- C:\Documents And Settings\LocalService\Cookies\index.dat [16384] O61 - LFC:Last File Created 29/10/2010 - 13:04:10 ---A- C:\Documents And Settings\LocalService\Local Settings\Historique\History.IE5\index.dat [16384] O61 - LFC:Last File Created 29/10/2010 - 13:06:01 ---A- C:\Documents And Settings\All Users\Application Data\Avira\AntiVir Desktop\LOGFILES\avguard.log [13764] O61 - LFC:Last File Created 29/10/2010 - 13:06:02 ---A- C:\Documents And Settings\All Users\Application Data\Avira\AntiVir Desktop\EVENTDB\avevtdb.dbe [7168] O61 - LFC:Last File Created 29/10/2010 - 13:06:13 ---A- C:\Documents And Settings\All Users\Application Data\Avira\AntiVir Desktop\JOBS\updjob.avj [1298] ---\\ Liste des outils de nettoyage (LATC) (O63) O63 - Logiciel: HijackThis 2.0.2 - (.TrendMicro.) [HKLM] -- HijackThis O63 - Logiciel: ZHPDiag 1.27 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1 ---\\ Liste des services Legacy (LALS) (O64) O64 - Services: CurCS - C:\WINDOWS\system32\drivers\afd.sys - AFD (AFD) .(.Microsoft Corporation - Ancillary Function Driver for WinSock.) - LEGACY_AFD O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Avertissement (Alerter) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_ALERTER O64 - Services: CurCS - C:\WINDOWS\System32\alg.exe - Service de la passerelle de la couche Application (ALG) .(.Microsoft Corporation - Application Layer Gateway Service.) - LEGACY_ALG O64 - Services: CurCS - C:\Program Files\Avira\AntiVir Desktop\sched.exe - Avira AntiVir Planificateur (AntiVirSchedulerService) .(.Avira GmbH - Antivirus Scheduler.) - LEGACY_ANTIVIRSCHEDULERSERVICE O64 - Services: CurCS - C:\Program Files\Avira\AntiVir Desktop\avguard.exe - Avira AntiVir Guard (AntiVirService) .(.Avira GmbH - Antivirus On-Access Service.) - LEGACY_ANTIVIRSERVICE O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Gestion d'applications (AppMgmt) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_APPMGMT O64 - Services: CurCS - C:\WINDOWS\System32\svchost.exe - Audio Windows (AudioSrv) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_AUDIOSRV O64 - Services: CurCS - C:\Program Files\Fichiers communs\Autodesk Shared\Service\AdskScSrv.exe - Autodesk Licensing Service (Autodesk Licensing Service) .(.Autodesk, Inc. - System Level Service Utility.) - LEGACY_AUTODESK_LICENSING_SERVICE O64 - Services: CurCS - C:\Program Files\Avira\AntiVir Desktop\avgio.sys - avgio (avgio) .(.Avira GmbH - Avira AntiVir Support for Minifilter.) - LEGACY_AVGIO O64 - Services: CurCS - C:\Windows\system32\DRIVERS\avgntflt.sys - avgntflt (avgntflt) .(.Avira GmbH - Avira Minifilter Driver.) - LEGACY_AVGNTFLT O64 - Services: CurCS - C:\Windows\system32\DRIVERS\avipbb.sys - avipbb (avipbb) .(.Avira GmbH - Avira Driver for Security Enhancement.) - LEGACY_AVIPBB O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\BEEP.sys - Beep (Beep) .(.Pas de propriétaire - Pas de description.) - LEGACY_BEEP O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Service de transfert intelligent en arrière-plan (BITS) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_BITS O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Explorateur d'ordinateur (Browser) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_BROWSER O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\CDFS.sys - cdfs (cdfs) .(.Pas de propriétaire - Pas de description.) - LEGACY_CDFS O64 - Services: CurCS - C:\WINDOWS\system32\dllhost.exe - Application système COM+ (COMSysApp) .(.Microsoft Corporation - COM Surrogate.) - LEGACY_COMSYSAPP O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Services de cryptographie (CryptSvc) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_CRYPTSVC O64 - Services: CurCS - C:\WINDOWS\system32\svchost -k DcomLaunch (.not file.) - Lanceur de processus serveur DCOM (DcomLaunch) .(.Pas de propriétaire - Pas de description.) - LEGACY_DCOMLAUNCH O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Client DHCP (Dhcp) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_DHCP O64 - Services: CurCS - (.not file.) - DriverLINX Port I/O Driver (DLPortIO) .(.Pas de propriétaire - Pas de description.) - LEGACY_DLPORTIO O64 - Services: CurCS - C:\Windows\system32\drivers\dmboot.sys - dmboot (dmboot) .(.Microsoft Corp., Veritas Software - Pilote de démarrage du gestionnaire de disq.) - LEGACY_DMBOOT O64 - Services: CurCS - C:\Windows\system32\drivers\dmload.sys - dmload (dmload) .(.Microsoft Corp., Veritas Software. - NT Disk Manager Startup Driver.) - LEGACY_DMLOAD O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Client DNS (Dnscache) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_DNSCACHE O64 - Services: CurCS - C:\WINDOWS\System32\svchost.exe - Service de rapport d'erreurs (ERSvc) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_ERSVC O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Système d'événements de COM+ (EventSystem) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_EVENTSYSTEM O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\FASTFAT.sys - fastfat (fastfat) .(.Pas de propriétaire - Pas de description.) - LEGACY_FASTFAT O64 - Services: CurCS - C:\WINDOWS\System32\svchost.exe - Compatibilité avec le Changement rapide d'utilisateur (FastUserSwitchingCompatibility) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_FASTUSERSWITCHINGCOMPATIBILITY O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\FIPS.sys - Fips (Fips) .(.Pas de propriétaire - Pas de description.) - LEGACY_FIPS O64 - Services: CurCS - C:\Windows\system32\DRIVERS\fltMgr.sys - FltMgr (FltMgr) .(.Microsoft Corporation - Microsoft Filesystem Filter Manager.) - LEGACY_FLTMGR O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\FS_REC.sys - Fs_Rec (Fs_Rec) .(.Pas de propriétaire - Pas de description.) - LEGACY_FS_REC O64 - Services: CurCS - C:\Windows\system32\DRIVERS\msgpc.sys - Classificateur de paquets générique (Gpc) .(.Microsoft Corporation - MS General Packet Classifier.) - LEGACY_GPC O64 - Services: CurCS - C:\WINDOWS\System32\svchost.exe - Aide et support (helpsvc) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_HELPSVC O64 - Services: CurCS - C:\WINDOWS\System32\svchost.exe - HID Input Service (HidServ) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_HIDSERV O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - hpqcxs08 (hpqcxs08) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_HPQCXS08 O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Service HP CUE DeviceDiscovery (hpqddsvc) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_HPQDDSVC O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - HP Network Devices Support (HPSLPSVC) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_HPSLPSVC O64 - Services: CurCS - C:\Windows\system32\Drivers\HTTP.sys - HTTP (HTTP) .(.Microsoft Corporation - HTTP Protocol Stack.) - LEGACY_HTTP O64 - Services: CurCS - C:\WINDOWS\system32\imapi.exe - Service COM de gravage de CD IMAPI (ImapiService) .(.Microsoft Corporation - API Image Mastering.) - LEGACY_IMAPISERVICE O64 - Services: CurCS - C:\Windows\system32\DRIVERS\ipnat.sys - Traducteur d'adresses réseau IP (IpNat) .(.Microsoft Corporation - IP Network Address Translator.) - LEGACY_IPNAT O64 - Services: CurCS - C:\Windows\system32\DRIVERS\ipsec.sys - Pilote IPSEC (IPSec) .(.Microsoft Corporation - IPSec Driver.) - LEGACY_IPSEC O64 - Services: CurCS - C:\Program Files\Java\jre6\bin\jqs.exe - Java Quick Starter (JavaQuickStarterService) .(.Sun Microsystems, Inc. - Java Quick Starter Service.) - LEGACY_JAVAQUICKSTARTERSERVICE O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\KSECDD.sys - ksecdd (ksecdd) .(.Pas de propriétaire - Pas de description.) - LEGACY_KSECDD O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Serveur (LanmanServer) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_LANMANSERVER O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Station de travail (LanmanWorkstation) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_LANMANWORKSTATION O64 - Services: CurCS - C:\Windows\system32\DRIVERS\Lbd.sys (.not file.) - Lbd (Lbd) .(.Pas de propriétaire - Pas de description.) - LEGACY_LBD O64 - Services: CurCS - C:\Windows\system32\DRIVERS\lkbdfltr.sys - Programme de gestion Class Filter de clavier Logitech (lkbdfltr) .(.Logitech - Logitech Keyboard Filter Driver.) - LEGACY_LKBDFLTR O64 - Services: CurCS - C:\Windows\system32\Drivers\lkbdhlpr.sys - Logitech Keyboard Class Helper Driver (lkbdhlpr) .(.Logitech Inc. - Keyboard Helper Driver.) - LEGACY_LKBDHLPR O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Assistance TCP/IP NetBIOS (LmHosts) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_LMHOSTS O64 - Services: CurCS - C:\Windows\system32\DRIVERS\lmoufltr.sys - Programme de gestion Class Filter de souris Logitech (lmoufltr) .(.Logitech - Logitech Mouse Filter Driver.) - LEGACY_LMOUFLTR O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\MNMDD.sys - mnmdd (mnmdd) .(.Pas de propriétaire - Pas de description.) - LEGACY_MNMDD O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\MOUNTMGR.sys - mountmgr (mountmgr) .(.Pas de propriétaire - Pas de description.) - LEGACY_MOUNTMGR O64 - Services: CurCS - C:\Windows\system32\DRIVERS\mrxdav.sys - Redirecteur client WebDav (MRxDAV) .(.Microsoft Corporation - Windows NT WebDav Minirdr.) - LEGACY_MRXDAV O64 - Services: CurCS - C:\Windows\system32\DRIVERS\mrxsmb.sys - MRXSMB (MRxSmb) .(.Microsoft Corporation - Windows NT SMB Minirdr.) - LEGACY_MRXSMB O64 - Services: CurCS - C:\WINDOWS\system32\msdtc.exe - Distributed Transaction Coordinator (MSDTC) .(.Microsoft Corporation - MS DTC console program.) - LEGACY_MSDTC O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\MSFS.sys - Msfs (Msfs) .(.Pas de propriétaire - Pas de description.) - LEGACY_MSFS O64 - Services: CurCS - C:\WINDOWS\system32\msiexec.exe - Windows Installer (MSIServer) .(.Microsoft Corporation - Windows® installer.) - LEGACY_MSISERVER O64 - Services: CurCS - (.not file.) - Mup (Mup) .(.Pas de propriétaire - Pas de description.) - LEGACY_MUP O64 - Services: CurCS - (.not file.) - Pilote système NDIS (NDIS) .(.Pas de propriétaire - Pas de description.) - LEGACY_NDIS O64 - Services: CurCS - C:\Windows\system32\DRIVERS\ndistapi.sys - Pilote TAPI NDIS d'accès distant (NdisTapi) .(.Microsoft Corporation - NDIS 3.0 connection wrapper driver.) - LEGACY_NDISTAPI O64 - Services: CurCS - C:\Windows\system32\DRIVERS\ndisuio.sys - NDIS mode utilisateur E/S Protocole (Ndisuio) .(.Microsoft Corporation - NDIS User mode I/O Driver.) - LEGACY_NDISUIO O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\NDPROXY.sys - NDProxy (NDProxy) .(.Pas de propriétaire - Pas de description.) - LEGACY_NDPROXY O64 - Services: CurCS - C:\Windows\system32\DRIVERS\netbios.sys - Interface NetBIOS (NetBIOS) .(.Microsoft Corporation - NetBIOS interface driver.) - LEGACY_NETBIOS O64 - Services: CurCS - C:\Windows\system32\DRIVERS\netbt.sys - NetBIOS sur TCP/IP (NetBT) .(.Microsoft Corporation - MBT Transport driver.) - LEGACY_NETBT O64 - Services: CurCS - C:\WINDOWS\System32\svchost.exe - Connexions réseau (Netman) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_NETMAN O64 - Services: CurCS - C:\WINDOWS\System32\svchost.exe - Net Driver HPZ12 (Net Driver HPZ12) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_NET_DRIVER_HPZ12 O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - NLA (Network Location Awareness) (Nla) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_NLA O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\NPFS.sys - Npfs (Npfs) .(.Pas de propriétaire - Pas de description.) - LEGACY_NPFS O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\NTFS.sys - ntfs (ntfs) .(.Pas de propriétaire - Pas de description.) - LEGACY_NTFS O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\NULL.sys - Null (Null) .(.Pas de propriétaire - Pas de description.) - LEGACY_NULL O64 - Services: CurCS - C:\WINDOWS\system32\nvsvc32.exe - NVIDIA Display Driver Service (NVSvc) .(.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 175.1.) - LEGACY_NVSVC O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\PARTMGR.sys - PartMgr (PartMgr) .(.Pas de propriétaire - Pas de description.) - LEGACY_PARTMGR O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\PARVDM.sys - ParVdm (ParVdm) .(.Pas de propriétaire - Pas de description.) - LEGACY_PARVDM O64 - Services: CurCS - C:\WINDOWS\System32\svchost.exe - Pml Driver HPZ12 (Pml Driver HPZ12) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_PML_DRIVER_HPZ12 O64 - Services: CurCS - C:\WINDOWS\system32\lsass.exe - Services IPSEC (PolicyAgent) .(.Microsoft Corporation - LSA Shell (Export Version).) - LEGACY_POLICYAGENT O64 - Services: CurCS - C:\WINDOWS\system32\lsass.exe - Emplacement protégé (ProtectedStorage) .(.Microsoft Corporation - LSA Shell (Export Version).) - LEGACY_PROTECTEDSTORAGE O64 - Services: CurCS - C:\Windows\system32\DRIVERS\rasacd.sys - Pilote de connexion automatique d'accès distant (RasAcd) .(.Microsoft Corporation - RAS Automatic Connection Driver.) - LEGACY_RASACD O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Gestionnaire de connexions d'accès distant (RasMan) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_RASMAN O64 - Services: CurCS - C:\Windows\system32\DRIVERS\rdbss.sys - Rdbss (Rdbss) .(.Microsoft Corporation - Redirected Drive Buffering SubSystem Driver.) - LEGACY_RDBSS O64 - Services: CurCS - C:\Windows\system32\DRIVERS\RDPCDD.sys - RDPCDD (RDPCDD) .(.Microsoft Corporation - RDP Miniport.) - LEGACY_RDPCDD O64 - Services: CurCS - (.not file.) - RDPNP (RDPNP) .(.Pas de propriétaire - Pas de description.) - LEGACY_RDPNP O64 - Services: CurCS - C:\WINDOWS\system32\svchost -k rpcss (.not file.) - Appel de procédure distante (RPC) (RpcSs) .(.Pas de propriétaire - Pas de description.) - LEGACY_RPCSS O64 - Services: CurCS - C:\WINDOWS\system32\lsass.exe - Gestionnaire de comptes de sécurité (SamSs) .(.Microsoft Corporation - LSA Shell (Export Version).) - LEGACY_SAMSS O64 - Services: CurCS - C:\WINDOWS\System32\svchost.exe - Planificateur de tâches (Schedule) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_SCHEDULE O64 - Services: CurCS - C:\WINDOWS\System32\svchost.exe - Connexion secondaire (seclogon) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_SECLOGON O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Notification d'événement système (SENS) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_SENS O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Pare-feu Windows / Partage de connexion Internet (SharedAccess) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_SHAREDACCESS O64 - Services: CurCS - C:\WINDOWS\System32\svchost.exe - Détection matériel noyau (ShellHWDetection) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_SHELLHWDETECTION O64 - Services: CurCS - C:\WINDOWS\system32\spoolsv.exe - Spouleur d'impression (Spooler) .(.Microsoft Corporation - Spooler SubSystem App.) - LEGACY_SPOOLER O64 - Services: CurCS - C:\Windows\system32\Drivers\sptd.sys - sptd (sptd) .(.Pas de propriétaire - Pas de description.) - LEGACY_SPTD O64 - Services: CurCS - C:\Windows\system32\DRIVERS\sr.sys - Pilote de filtre de restauration système (sr) .(.Microsoft Corporation - Pilote de filtre de système de fichiers pou.) - LEGACY_SR O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Service de restauration système (srservice) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_SRSERVICE O64 - Services: CurCS - C:\Windows\system32\DRIVERS\srv.sys - Srv (Srv) .(.Microsoft Corporation - Server driver.) - LEGACY_SRV O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Service de découvertes SSDP (SSDPSRV) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_SSDPSRV O64 - Services: CurCS - C:\Windows\system32\DRIVERS\ssmdrv.sys - ssmdrv (ssmdrv) .(.Avira GmbH - AVIRA SnapShot Driver.) - LEGACY_SSMDRV O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Acquisition d'image Windows (WIA) (stisvc) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_STISVC O64 - Services: CurCS - C:\WINDOWS\System32\svchost.exe - Téléphonie (TapiSrv) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_TAPISRV O64 - Services: CurCS - C:\Windows\system32\DRIVERS\tcpip.sys - Pilote du protocole TCP/IP (Tcpip) .(.Microsoft Corporation - TCP/IP Protocol Driver.) - LEGACY_TCPIP O64 - Services: CurCS - C:\WINDOWS\System32\svchost -k DComLaunch (.not file.) - Services Terminal Server (TermService) .(.Pas de propriétaire - Pas de description.) - LEGACY_TERMSERVICE O64 - Services: CurCS - C:\WINDOWS\System32\svchost.exe - Thèmes (Themes) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_THEMES O64 - Services: CurCS - d:\Program Files\TomTom HOME 2\TomTomHOMEService.exe - TomTomHOMEService (TomTomHOMEService) .(.TomTom - Windows Service for TomTom HOME.) - LEGACY_TOMTOMHOMESERVICE O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Client de suivi de lien distribué (TrkWks) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_TRKWKS O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Hôte de périphérique universel Plug-and-Play (upnphost) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_UPNPHOST O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\VGA.sys - vga (vga) .(.Pas de propriétaire - Pas de description.) - LEGACY_VGA O64 - Services: CurCS - C:\WINDOWS\system32\drivers\vga.sys - VgaSave (VgaSave) .(.Microsoft Corporation - VGA/Super VGA Video Driver.) - LEGACY_VGASAVE O64 - Services: CurCS - C:\WINDOWS\system32\Drivers\VOLSNAP.sys - VolSnap (VolSnap) .(.Pas de propriétaire - Pas de description.) - LEGACY_VOLSNAP O64 - Services: CurCS - C:\WINDOWS\system32\vsdatant.sys - vsdatant (vsdatant) .(.Zone Labs Inc. - TrueVector Device Driver.) - LEGACY_VSDATANT O64 - Services: CurCS - C:\WINDOWS\system32\ZoneLabs\vsmon.exe - TrueVector Internet Monitor (vsmon) .(.Zone Labs Inc. - TrueVector Service.) - LEGACY_VSMON O64 - Services: CurCS - C:\WINDOWS\System32\svchost.exe - Horloge Windows (W32Time) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_W32TIME O64 - Services: CurCS - C:\Windows\system32\DRIVERS\wanarp.sys - Pilote ARP IP d'accès distant (Wanarp) .(.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - LEGACY_WANARP O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - WebClient (WebClient) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_WEBCLIENT O64 - Services: CurCS - C:\WINDOWS\system32\config\systemprofile\Local Settings\Application Data\Windows Internet Name Service\wins.exe - Windows Internet Name Service (Windows Internet Name Service) .(.Pas de propriétaire - Provides Internet Name Service.) - LEGACY_WINDOWS_INTERNET_NAME_SERVICE O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Infrastructure de gestion Windows (winmgmt) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_WINMGMT O64 - Services: CurCS - C:\WINDOWS\system32\wbem\wmiapsrv.exe - Carte de performance WMI (WmiApSrv) .(.Microsoft Corporation - Service de la carte de performance WMI.) - LEGACY_WMIAPSRV O64 - Services: CurCS - C:\WINDOWS\System32\svchost.exe - Centre de sécurité (wscsvc) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_WSCSVC O64 - Services: CurCS - C:\WINDOWS\system32\svchost.exe - Mises à jour automatiques (wuauserv) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_WUAUSERV O64 - Services: CurCS - C:\WINDOWS\System32\svchost.exe - Configuration automatique sans fil (WZCSVC) .(.Microsoft Corporation - Generic Host Process for Win32 Services.) - LEGACY_WZCSVC ---\\ Liste des fichiers non signés (LUF) (O65) O65 - LUF:16/03/2004 (.Pas de propriétaire - Bibliothèque de liaison dynamique DasHard.) (1, 0, 0, 1) - c:\windows\system32\dashard.dll O65 - LUF:24/07/2002 (.Pas de propriétaire - inpout32.) (1, 0, 0, 1) - c:\windows\system32\inpout32.dll O65 - LUF:22/01/1999 (.Pas de propriétaire - msrtedit Module.) (1, 0, 0, 1) - c:\windows\system32\MSRTEDIT.DLL O65 - LUF:02/04/2004 (.Pas de propriétaire - Bibliothèque de liaison dynamique USB_DLL.) (1, 0, 0, 1) - c:\windows\system32\usb_dll.dll ---\\ Observateur d'évènement d'application (OEA) (O66) O66 - EventLog: ID=465 (ESENT) - (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\SoftwareDistribution\DataStore\Logs\edb.log O66 - EventLog: ID=4118 (Avira AntiVir) - (.Pas de propriétaire - Pas de description.) -- C:\Program Files\Mozilla Firefox\searchplugins\amazon-france.xml O66 - EventLog: ID=490 (ESENT) - (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\CatRoot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}\catdb O66 - EventLog: ID=465 (ESENT) - (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\system32\CatRoot2\edb.log O66 - EventLog: ID=4118 (Avira AntiVir) - (.Pas de propriétaire - Pas de description.) -- D:\Mes documents\TRAVAIL\Fiches Techniques\COLMAR Théâtre de la Manufacture\la_manu_grande-salle_autocad2000.zip ---\\ File Associations Shell Spawning (O67) O67 - Shell Spawning: <.bat> <batfile>[HKLM\..\open\Command] "%1" %* (.not file.) O67 - Shell Spawning: <.cpl> <cplfile>[HKLM\..\cplopen\Command] (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll O67 - Shell Spawning: <.cmd> <cmdfile>[HKLM\..\open\Command] "%1" %* (.not file.) O67 - Shell Spawning: <.com> <comfile>[HKLM\..\open\Command] "%1" %* (.not file.) O67 - Shell Spawning: <.exe> <exefile>[HKLM\..\open\Command] "%1" %* (.not file.) O67 - Shell Spawning: <.js> <JSFile>[HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\WINDOWS\System32\WScript.exe O67 - Shell Spawning: <.reg> <regfile>[HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\WINDOWS\regedit.exe O67 - Shell Spawning: <.html> <FirefoxHTML>[HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe O67 - Shell Spawning: <.bat> <batfile>[HKCR\..\open\Command] "%1" %* (.not file.) O67 - Shell Spawning: <.cpl> <cplfile>[HKCR\..\cplopen\Command] (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll O67 - Shell Spawning: <.cmd> <cmdfile>[HKCR\..\open\Command] "%1" %* (.not file.) O67 - Shell Spawning: <.com> <comfile>[HKCR\..\open\Command] "%1" %* (.not file.) O67 - Shell Spawning: <.exe> <exefile>[HKCR\..\open\Command] "%1" %* (.not file.) O67 - Shell Spawning: <.html> <FirefoxHTML>[HKCR\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe O67 - Shell Spawning: <.js> <JSFile>[HKCR\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\WINDOWS\System32\WScript.exe O67 - Shell Spawning: <.reg> <regfile>[HKCR\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\WINDOWS\regedit.exe ---\\ Start Menu Internet (SMI) (O68) O68 - StartMenuInternet: <FIREFOX.EXE> <Mozilla Firefox>[HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe ---\\ Search Browser Infection (SBI) (O69) O69 - SBI: SearchScopes [HKCU] ${searchCLSID} - (@ieframe.dll,-12512) - Bing O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - () - Bing O69 - SBI: SearchScopes [HKCU] {8A96AF9E-4074-43b7-BEA3-87217BDA7403} [DefaultScope] - (Web Search) - Search ---\\ Recherche Master Boot Record Infection (MBR)(O80) Stealth MBR rootkit/Mebroot/Sinowal detector 0.3.7 by Gmer, GMER - Rootkit Detector and Remover Run by Guigui at 29/10/2010 14:21:02 device: opened successfully user: MBR read successfully called modules: ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys hal.dll atapi.sys sphr.sys >>UNKNOWN [0x82392938]<< kernel: MBR read successfully user & kernel MBR OK ---\\ Recherche Master Boot Record Infection (MBRCheck)(O80) MBRCheck, version 1.2.3 by ad13, http://ad13.geekstog Run by Guigui at 29/10/2010 14:21:20 18 GB \\.\PhysicalDrive0 Windows XP MBR code detected SHA1: 8637A6CD1F8DC55758E12C0B860CDE1133CA5719 74 GB \\.\PhysicalDrive1 Unknown MBR code SHA1: C2E46E21FF271E2D22BDC5AF2FF9A6DC69E0A4EF Found non-standard or infected MBR. Dump file Name : C:\Program Files\ZHPDiag\MBRDump_10-29-10_14-21-20_PhysicalDrive0.bin ---\\ Crack & Keygen Files (CKF) (O82) D:\autocad extrait\Crack\Keymaker.exe D:\Program Files\eMule\Incoming\adobe photoshop elements 8 2009 crack keygen.exe D:\Program Files\eMule\Incoming\adobe photoshop elements 8 2009 crack keygen.zip D:\Program Files\eMule\Incoming\adobe photoshop elements 8 2009 crack keygen(1).zip D:\Program Files\eMule\Incoming\No serial(crack) KEYGEN PHOTOSHOP ELEMENTS 8 .rar D:\Program Files\eMule\Incoming\(Illustrator Photoshop InDesign Flash Dreamweaver).cracked.multilanguage.patch.PART.rar D:\Program Files\eMule\Incoming\crack filemaker PRO V10 Multilanguage.zip D:\Program Files\eMule\Incoming\(Illustrator Photoshop InDesign Flash Dreamweaver).cracked.multilanguage.patch.PART(1).rar D:\Program Files\eMule\Incoming\Ultra_iso Premium Edition v9.3.3.2685 Multilangages Incl-Keygen.rar D:\Program Files\eMule\Incoming\(incl. KeyGen) poweriso .rar D:\Program Files\eMule\Incoming\[CrackNoCD] poweriso .zip D:\Program Files\UltraISO\keygen.exe D:\Program Files\UltraISO\UISOZWTkeygen.exe D:\autocad_2005_fr\Crack\Keymaker.exe ---\\ Recherche des services démarrés par Svchost (SSS) (O83) O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Pas de propriétaire - Pas de description.) -- C:\WINDOWS\System32\appmgmts.dll [0] O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Windows Audio Service.) -- C:\WINDOWS\System32\audiosrv.dll [42496] O83 - Search Svchost Services: Browser (Browser) . (.Microsoft Corporation - Computer Browser Service DLL.) -- C:\WINDOWS\System32\browser.dll [77824] O83 - Search Svchost Services: CryptSvc (CryptSvc) . (.Microsoft Corporation - Cryptographic Services.) -- C:\WINDOWS\System32\cryptsvc.dll [62464] O83 - Search Svchost Services: DMServer (DMServer) . (.Microsoft Corp. - DLL Service gestionnaire de disque logique.) -- C:\WINDOWS\System32\dmserver.dll [24576] O83 - Search Svchost Services: DHCP (DHCP) . (.Microsoft Corporation - Service client DHCP.) -- C:\WINDOWS\System32\dhcpcsvc.dll [127488] O83 - Search Svchost Services: ERSvc (ERSvc) . (.Microsoft Corporation - Windows Error Reporting Service.) -- C:\WINDOWS\System32\ersvc.dll [23040] O83 - Search Svchost Services: EventSystem (EventSystem) . (.Microsoft Corporation - Pas de description.) -- C:\WINDOWS\system32\es.dll [253952] O83 - Search Svchost Services: FastUserSwitchingCompatibility (FastUserSwitchingCompatibility) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\System32\shsvcs.dll [135680] O83 - Search Svchost Services: HidServ (HidServ) . (.Microsoft Corporation - HID Audio Service.) -- C:\WINDOWS\System32\hidserv.dll [21504] O83 - Search Svchost Services: LanmanServer (LanmanServer) . (.Microsoft Corporation - Server Service DLL.) -- C:\WINDOWS\System32\srvsvc.dll [99840] O83 - Search Svchost Services: LanmanWorkstation (LanmanWorkstation) . (.Microsoft Corporation - Workstation Service DLL.) -- C:\WINDOWS\System32\wkssvc.dll [132096] O83 - Search Svchost Services: Messenger (Messenger) . (.Microsoft Corporation - NT Messenger Service.) -- C:\WINDOWS\System32\msgsvc.dll [33792] O83 - Search Svchost Services: Netman (Netman) . (.Microsoft Corporation - Gestionnaire de connexions réseau.) -- C:\WINDOWS\System32\netman.dll [198144] O83 - Search Svchost Services: Nla (Nla) . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Microsoft Windows.) -- C:\WINDOWS\System32\mswsock.dll [247808] O83 - Search Svchost Services: Ntmssvc (Ntmssvc) . (.Microsoft Corporation - Gestionnaire de stockage amovible.) -- C:\WINDOWS\system32\ntmssvc.dll [438272] O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) -- C:\WINDOWS\System32\rasauto.dll [88576] O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) -- C:\WINDOWS\System32\rasmans.dll [186368] O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) -- C:\WINDOWS\System32\mprdim.dll [53248] O83 - Search Svchost Services: Schedule (Schedule) . (.Microsoft Corporation - Moteur du Planificateur de tâches.) -- C:\WINDOWS\system32\schedsvc.dll [194560] O83 - Search Svchost Services: Seclogon (Seclogon) . (.Microsoft Corporation - DLL de service d'ouverture de session secondaire.) -- C:\WINDOWS\System32\seclogon.dll [18944] O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) -- C:\WINDOWS\system32\sens.dll [39424] O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l'application d'assistance à Microsoft NAT.) -- C:\WINDOWS\System32\ipnathlp.dll [332800] O83 - Search Svchost Services: SRService (SRService) . (.Microsoft Corporation - Service de restauration du système.) -- C:\WINDOWS\system32\srsvc.dll [171520] O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows.) -- C:\WINDOWS\System32\tapisrv.dll [249856] O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\System32\shsvcs.dll [135680] O83 - Search Svchost Services: TrkWks (TrkWks) . (.Microsoft Corporation - Distributed Link Tracking Client.) -- C:\WINDOWS\system32\trkwks.dll [90112] O83 - Search Svchost Services: W32Time (W32Time) . (.Microsoft Corporation - Service de temps Windows.) -- C:\WINDOWS\system32\w32time.dll [178176] O83 - Search Svchost Services: WZCSVC (WZCSVC) . (.Microsoft Corporation - Service configuration automatique sans fil.) -- C:\WINDOWS\System32\wzcsvc.dll [483840] O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\WMIsvc.dll [145408] O83 - Search Svchost Services: wscsvc (wscsvc) . (.Microsoft Corporation - Windows Security Center Service.) -- C:\WINDOWS\system32\wscsvc.dll [80896] O83 - Search Svchost Services: xmlprov (xmlprov) . (.Microsoft Corporation - Network Provisioning Service.) -- C:\WINDOWS\System32\xmlprov.dll [129024] O83 - Search Svchost Services: napagent (napagent) . (.Microsoft Corporation - Exécution du service Agent de quarantaine.) -- C:\WINDOWS\System32\qagentrt.dll [293376] O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\WINDOWS\System32\kmsvc.dll [61440] O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière-plan.) -- C:\WINDOWS\system32\qmgr.dll [409088] O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update AutoUpdate Service.) -- C:\WINDOWS\system32\wuauserv.dll [6656] O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\System32\shsvcs.dll [135680] O83 - Search Svchost Services: helpsvc (helpsvc) . (.Microsoft Corporation - Microsoft PCHealth Service Holder.) -- C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll [38400] O83 - Search Svchost Services: WmdmPmSN (WmdmPmSN) . (.Microsoft Corporation - Fournisseur de services de périphérique multimédia Microsoft.) -- C:\WINDOWS\system32\mspmsnsv.dll [52736] ---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped) SR - | Auto 17/08/2010 135336 | C:\Program Files\Avira\AntiVir Desktop\sched.exe (AntiVirSchedulerService) . (.Avira GmbH.) - C:\Program Files\Avira\AntiVir Desktop\sched.exe SR - | Auto 17/08/2010 267944 | C:\Program Files\Avira\AntiVir Desktop\avguard.exe (AntiVirService) . (.Avira GmbH.) - C:\Program Files\Avira\AntiVir Desktop\avguard.exe SS - | Disabled 21/09/2009 74360 | C:\Program Files\Fichiers communs\Autodesk Shared\Service\AdskScSrv.exe (Autodesk Licensing Service) . (.Autodesk, Inc..) - C:\Program Files\Fichiers communs\Autodesk Shared\Service\AdskScSrv.exe SS - | Demand 14/04/2008 225280 | C:\WINDOWS\System32\dmadmin.exe (dmadmin) . (.Microsoft Corp., Veritas Software.) - C:\WINDOWS\System32\dmadmin.exe SR - | Demand 14/04/2008 14336 | C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll (hpqcxs08) . (.Hewlett-Packard Co..) - C:\WINDOWS\system32\svchost.exe SR - | Auto 14/04/2008 14336 | C:\Program Files\HP\Digital Imaging\bin\hpqddsvc.dll (hpqddsvc) . (.Hewlett-Packard Co..) - C:\WINDOWS\system32\svchost.exe SR - | Auto 14/04/2008 14336 | C:\Program Files\HP\Digital Imaging\bin\HPSLPSVC32.dll (HPSLPSVC) . (.Hewlett-Packard Co..) - C:\WINDOWS\system32\svchost.exe SR - | Auto 18/04/2010 153376 | C:\Program Files\Java\jre6\bin\jqs.exe (JavaQuickStarterService) . (.Sun Microsystems, Inc..) - C:\Program Files\Java\jre6\bin\jqs.exe SR - | Auto 14/04/2008 14336 | C:\WINDOWS\system32\HPZinw12.dll (Net Driver HPZ12) . (.Hewlett-Packard.) - C:\WINDOWS\System32\svchost.exe SR - | Auto 16/05/2008 159812 | C:\WINDOWS\system32\nvsvc32.exe (NVSvc) . (.NVIDIA Corporation.) - C:\WINDOWS\system32\nvsvc32.exe SR - | Auto 14/04/2008 14336 | C:\WINDOWS\system32\HPZipm12.dll (Pml Driver HPZ12) . (.Hewlett-Packard.) - C:\WINDOWS\System32\svchost.exe SR - | Auto 13/11/2009 92008 | d:\Program Files\TomTom HOME 2\TomTomHOMEService.exe (TomTomHOMEService) . (.TomTom.) - d:\Program Files\TomTom HOME 2\TomTomHOMEService.exe SR - | Auto 14/07/2003 922720 | C:\WINDOWS\system32\ZoneLabs\vsmon.exe (vsmon) . (.Zone Labs Inc..) - C:\WINDOWS\system32\ZoneLabs\vsmon.exe SR - | Auto 29/10/2010 4627968 | C:\WINDOWS\system32\config\systemprofile\Local Settings\Application Data\Windows Internet Name Service\wins.exe (Windows Internet Name Service) . (.Pas de propriétaire.) - C:\WINDOWS\system32\config\systemprofile\Local Settings\Application Data\Windows Internet Name Service\wins.exe End of the scan (1314 lines in 17mn 05s)(14) Je ne pensais pas qu'il serait si long. Merci de votre aide !
  15. bonjour je voudrais savoir combien de temps cela prend car l'ordi s'est arreté plusieurs fois... je l'ai lancé depuis plusieurs dizaines de minutes et ca n'avance plus apres 65%
  16. bonjour, je vous contacte car j'ai un probleme. Je viens d'essayer d'installer la dernière version d'antivir mais cela ne fonctionne pas. Cela me fait une erreur aecore.dll. Je ne sais pas trop quoi faire. D'ailleurs depuis peu mon ordi rame sur internet et je trouve que la dernière version de mozilla est tres instable. Est ce lié ? Merci de vos réponse et de votre aide J'utilise Windows XP sp3
  17. Bonsoir à tous j'ai un peu tardé mais voici le rapport de ADremover . ======= RAPPORT D'AD-REMOVER 1.1.4.6_F | UNIQUEMENT XP/VISTA/7 ======= . Mit à jour par C_XX le 14.12.2009 à 21:50 Contact: AdRemover.contact@gmail.com Site web: http://pagesperso-orange.fr/NosTools/ad_remover.html . Lancé à: 17:41:23, 15/12/2009 | Mode Normal | Option: SCAN Exécuté de: C:\Program Files\Ad-Remover\ Système d'exploitation: Microsoft® Windows XP™ Service Pack 3 v5.1.2600 Nom du PC: PCDELL | Utilisateur actuel: Mauranne . ============== ÉLÉMENT(S) TROUVÉ(S) ============== . C:\DOCUME~1\Mauranne\APPLIC~1\Mozilla\FireFox\Profiles\lfqdfepf.default\extensions\{E9A1DEE0-C623-4439-8932-001E7D17607D} C:\Program Files\AskBarDis C:\Program Files\DaemonTools_WhenUSave_Installer C:\Program Files\EoRezo C:\DOCUME~1\Mauranne\APPLIC~1\EoRezo . HKCU\software\appdatalow\AskBarDis HKCU\software\EoRezo HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{64F56FC1-1272-44CD-BA6E-39723696E350} HKLM\Software\Classes\CLSID\{0702a2b6-13aa-4090-9e01-bcdc85dd933f} HKLM\Software\Classes\CLSID\{3041d03e-fd4b-44e0-b742-2d9b88305f98} HKLM\Software\Classes\CLSID\{622fd888-4e91-4d68-84d4-7262fd0811bf} HKLM\Software\Classes\CLSID\{b0de3308-5d5a-470d-81b9-634fc078393b} HKLM\Software\Classes\Interface\{8954152E-2D31-11D2-A166-0060081C43D9} HKLM\Software\Classes\Interface\{B0D071A1-36B3-4757-A126-14C89C56013A} HKLM\Software\Classes\TypeLib\{4B1C1E16-6B34-430E-B074-5928ECA4C150} HKLM\Software\Classes\TypeLib\{B4C656C9-F2E9-4E77-B3F4-443DF2BD778F} . ============== Scan additionnel ============== . . * Mozilla FireFox Version 3.0.15 [fr] * . Nom du profil: lfqdfepf.default (Mauranne) . (Mauranne, prefs.js) Browser.download.lastDir, C:\Documents and Settings\Mauranne\Mes documents\theatremu\2010\Administration\Demandes de subventions\Cultures France (Mauranne, prefs.js) Browser.startup.homepage, hxxp://www.google.fr/ . . * Internet Explorer Version 7.0.5730.11 * . [HKEY_CURRENT_USER\..\Internet Explorer\Main] . Do404Search: 01000000 Local Page: C:\WINDOWS\system32\blank.htm Show_ToolBar: yes Search Page: hxxp://www.google.com Start Page: hxxp://eo.st Use Search Asst: no Search Bar: hxxp://www.google.com/ie Enable Browser Extensions: yes . [HKEY_LOCAL_MACHINE\..\Internet Explorer\Main] . Default_Page_URL: hxxp://go.microsoft.com/fwlink/?LinkId=69157 Default_Search_URL: hxxp://go.microsoft.com/fwlink/?LinkId=54896 Search Page: hxxp://go.microsoft.com/fwlink/?LinkId=54896 Delete_Temp_Files_On_Exit: yes Local Page: %SystemRoot%\system32\blank.htm Start Page: hxxp://eo.st . [HKEY_LOCAL_MACHINE\..\Internet Explorer\ABOUTURLS] . Tabs: hxxp://eo.st . =================================== . 512 Octet(s) - C:\Ad-Report-SCAN[1].log 2732 Octet(s) - C:\Ad-Report-SCAN[2].log . 113 Fichier(s) - C:\DOCUME~1\Mauranne\LOCALS~1\Temp 68 Fichier(s) - C:\WINDOWS\Temp 129 Fichier(s) - C:\WINDOWS\Prefetch . 3 Fichier(s) - C:\Program Files\Ad-Remover\BACKUP 0 Fichier(s) - C:\Program Files\Ad-Remover\QUARANTINE . Fin à: 18:03:15 | 15/12/2009 - SCAN[2] . ============== E.O.F ============== .
  18. bonsoir à tous, je vous poste mon rappport de hijackthis car Bleuet, un membre de ce forum, m'a dit de prendre des precautions avant de supprimer certaines choses En resumé je crois que j'ai un petit truc qui traine car mes icones sont lentes à appariatre. Meme si cela va mieux depuis que j'ai commencé les posts sur ce forum Bonjour à tous et voici le tant attendu rapport de hijackthis Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 12:52:27, on 03/12/2009 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16915) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\windows\system32\ZoneLabs\vsmon.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Avira\AntiVir Desktop\sched.exe C:\Program Files\Avira\AntiVir Desktop\avguard.exe C:\WINDOWS\System32\basfipm.exe C:\WINDOWS\system32\dlbxcoms.exe C:\Program Files\Fichiers communs\Nero\Nero BackItUp 4\NBService.exe C:\WINDOWS\system32\IoctlSvc.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\fxssvc.exe C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe C:\WINDOWS\system32\ctfmon.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Microsoft Office\Office10\OUTLOOK.EXE C:\Program Files\Microsoft Office\Office\WINWORD.EXE C:\Program Files\Microsoft Office\Office10\EXCEL.EXE C:\Program Files\Foxmail\Foxmail.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\PROGRA~1\IZArc\IZArc.exe C:\DOCUME~1\Mauranne\LOCALS~1\Temp\ARC12\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://eo.st R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://eo.st R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.euro.dell.com/countries/fr/fra/gen/default.htm R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: AskBar BHO - {201f27d4-3704-41d6-89c1-aa35e39143ed} - C:\Program Files\AskBarDis\bar\bin\askBar.dll O2 - BHO: EoRezoBHO - {64F56FC1-1272-44CD-BA6E-39723696E350} - (no file) O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll O3 - Toolbar: Foxit Toolbar - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - C:\Program Files\AskBarDis\bar\bin\askBar.dll O4 - HKLM\..\Run: [userFaultCheck] %systemroot%\system32\dumprep 0 -u O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe" O4 - HKLM\..\Run: [dlbxmon.exe] "C:\Program Files\Dell Photo AIO Printer 962\dlbxmon.exe" O4 - HKLM\..\Run: [Malwarebytes Anti-Malware (reboot)] "C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [Foxmail] "C:\Program Files\Foxmail\Foxmail.exe" O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL') O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU') O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\S-1-5-18\..\RunOnce: [^SetupICWDesktop] (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user') O4 - HKUS\.DEFAULT\..\RunOnce: [^SetupICWDesktop] (User 'Default user') O4 - Global Startup: Logiciel de Synchronisation Orange.lnk = ? O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - http://www.wanadoo.fr (file missing) (HKCU) O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~3\GOEC62~1.DLL O23 - Service: Avira AntiVir Planificateur (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe O23 - Service: Broadcom ASF IP monitoring service v6.0.4 (BAsfIpM) - Broadcom Corp. - C:\WINDOWS\System32\basfipm.exe O23 - Service: dlbx_device - Dell - C:\WINDOWS\system32\dlbxcoms.exe O23 - Service: Iap - Unknown owner - C:\Program Files\Dell\OpenManage\Client\Iap.exe (file missing) O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files\Fichiers communs\Nero\Nero BackItUp 4\NBService.exe O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Fichiers communs\Nero\Lib\NMIndexingService.exe O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\WINDOWS\system32\IoctlSvc.exe O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\windows\system32\ZoneLabs\vsmon.exe -- End of file - 6692 bytes alors c'est bon ?
  19. Bonjour à tous et voici le tant attendu rapport de hijackthis Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 12:52:27, on 03/12/2009 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16915) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\windows\system32\ZoneLabs\vsmon.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Avira\AntiVir Desktop\sched.exe C:\Program Files\Avira\AntiVir Desktop\avguard.exe C:\WINDOWS\System32\basfipm.exe C:\WINDOWS\system32\dlbxcoms.exe C:\Program Files\Fichiers communs\Nero\Nero BackItUp 4\NBService.exe C:\WINDOWS\system32\IoctlSvc.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\fxssvc.exe C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe C:\WINDOWS\system32\ctfmon.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Microsoft Office\Office10\OUTLOOK.EXE C:\Program Files\Microsoft Office\Office\WINWORD.EXE C:\Program Files\Microsoft Office\Office10\EXCEL.EXE C:\Program Files\Foxmail\Foxmail.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\PROGRA~1\IZArc\IZArc.exe C:\DOCUME~1\Mauranne\LOCALS~1\Temp\ARC12\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://eo.st R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://eo.st R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.euro.dell.com/countries/fr/fra/gen/default.htm R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: AskBar BHO - {201f27d4-3704-41d6-89c1-aa35e39143ed} - C:\Program Files\AskBarDis\bar\bin\askBar.dll O2 - BHO: EoRezoBHO - {64F56FC1-1272-44CD-BA6E-39723696E350} - (no file) O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll O3 - Toolbar: Foxit Toolbar - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - C:\Program Files\AskBarDis\bar\bin\askBar.dll O4 - HKLM\..\Run: [userFaultCheck] %systemroot%\system32\dumprep 0 -u O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe" O4 - HKLM\..\Run: [dlbxmon.exe] "C:\Program Files\Dell Photo AIO Printer 962\dlbxmon.exe" O4 - HKLM\..\Run: [Malwarebytes Anti-Malware (reboot)] "C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [Foxmail] "C:\Program Files\Foxmail\Foxmail.exe" O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL') O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU') O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\S-1-5-18\..\RunOnce: [^SetupICWDesktop] (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user') O4 - HKUS\.DEFAULT\..\RunOnce: [^SetupICWDesktop] (User 'Default user') O4 - Global Startup: Logiciel de Synchronisation Orange.lnk = ? O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - http://www.wanadoo.fr (file missing) (HKCU) O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~3\GOEC62~1.DLL O23 - Service: Avira AntiVir Planificateur (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe O23 - Service: Broadcom ASF IP monitoring service v6.0.4 (BAsfIpM) - Broadcom Corp. - C:\WINDOWS\System32\basfipm.exe O23 - Service: dlbx_device - Dell - C:\WINDOWS\system32\dlbxcoms.exe O23 - Service: Iap - Unknown owner - C:\Program Files\Dell\OpenManage\Client\Iap.exe (file missing) O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files\Fichiers communs\Nero\Nero BackItUp 4\NBService.exe O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Fichiers communs\Nero\Lib\NMIndexingService.exe O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\WINDOWS\system32\IoctlSvc.exe O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\windows\system32\ZoneLabs\vsmon.exe -- End of file - 6692 bytes alors c'est bon ?
  20. Bonjour à tous voici mon rapport de MBAM: Malwarebytes' Anti-Malware 1.41 Version de la base de données: 3275 Windows 5.1.2600 Service Pack 3 02/12/2009 12:05:28 mbam-log-2009-12-02 (12-05-28).txt Type de recherche: Examen complet (C:\|) Eléments examinés: 181762 Temps écoulé: 43 minute(s), 19 second(s) Processus mémoire infecté(s): 0 Module(s) mémoire infecté(s): 0 Clé(s) du Registre infectée(s): 1 Valeur(s) du Registre infectée(s): 0 Elément(s) de données du Registre infecté(s): 2 Dossier(s) infecté(s): 0 Fichier(s) infecté(s): 0 Processus mémoire infecté(s): (Aucun élément nuisible détecté) Module(s) mémoire infecté(s): (Aucun élément nuisible détecté) Clé(s) du Registre infectée(s): HKEY_LOCAL_MACHINE\SOFTWARE\EoRezo (Rogue.Eorezo) -> Quarantined and deleted successfully. Valeur(s) du Registre infectée(s): (Aucun élément nuisible détecté) Elément(s) de données du Registre infecté(s): HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully. Dossier(s) infecté(s): (Aucun élément nuisible détecté) Fichier(s) infecté(s): (Aucun élément nuisible détecté) Je crois que le ver est dans la pomme si je ne m'abuse ?
  21. bonjour à tous je viens de terminer la defragmentation et je me lance dans l'analyse avec Mbam. La suite bientot
  22. merci pour les infos, je vais m'atteler à cette tache et je reviens des que possible !
  23. Bonjour à tous j'ai un "léger" probleme avec mon ordinateur en ce moment. En effet il est tres lent. Par exemple lors du démarrage les icones mettent un temps bien heureux pour s'afficher, l'explorateur windows est lent lui aussi. J'ai effectué quelques recherches comme un analyse avec antivir correctement configuré mais rien de ce coté. Que puis je faire ? Merci de votre aide
×
×
  • Créer...