mon pc rame sur le net pfff
Dernière réponse : dans Sécurité
salut la je vien d'avoir un problème mon pc rame j'espère c'est pa un virus voila j'atten de l'aide
Autres pages sur : rame net pfff
Lassé par la pub ? Créez un compte
Bonjour
Télécharge HijackThis v1.99.1
http://pchelpbordeaux.free.fr/logiciels.html
Tutorial
http://pchelpbordeaux.free.fr/tuto.html
Démo en image
http://perso.orange.fr/rginformatique/section%20virus/d...
Fais un scan et poste l'analyse ici.
Télécharge HijackThis v1.99.1
http://pchelpbordeaux.free.fr/logiciels.html
Tutorial
http://pchelpbordeaux.free.fr/tuto.html
Démo en image
http://perso.orange.fr/rginformatique/section%20virus/d...
Fais un scan et poste l'analyse ici.
et c'est peut ètre la connection y'avai aussi un orage bref voila
Logfile of HijackThis v1.99.1
Scan saved at 23:36:38, on 09/06/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16441)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\drivers\CDAC11BA.EXE
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Alcohol Soft\Alcohol 52\StarWind\StarWindService.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Raxco\PerfectDisk\PDSched.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\ATK0100\HControl.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\ASUSTeK\ASUSDVD\PDVDServ.exe
C:\Program Files\ASUS\Power4 Gear\BatteryLife.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe
C:\Program Files\Neuf\Kit\WiFi\9wifi.exe
C:\WINDOWS\ATK0100\ATKOSD.exe
C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe
C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe
C:\PROGRA~1\Nero\NEROPH~1\data\Xtras\mssysmgr.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\DAEMON Tools\daemon.exe
C:\Documents and Settings\DJAMEL\Program Files\BitTorrent_DNA\dna.exe
C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexStoreSvr.exe
C:\Program Files\Asus\Asus ChkMail\ChkMail.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Hijackthis Version Française\hijackthis vf.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://g.msn.fr/0SEFRFR/SAOS01?FORM=TOOLBR
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://g.msn.fr/0SEFRFR/SAOS01?FORM=TOOLBR
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://neufportail.eurosport.fr/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://recherche.neuf.fr/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.ustart.org
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.msn.fr/0SEFRFR/SAOS01?FORM=TOOLBR
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Canon Easy Web Print Helper - {68F9551E-0411-48E4-9AAF-4BC42A6A46BE} - C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.3558\swg.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O4 - HKLM\..\Run: [HControl] C:\WINDOWS\ATK0100\HControl.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\ASUSTeK\ASUSDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [Power_Gear] C:\Program Files\ASUS\Power4 Gear\BatteryLife.exe 1
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Fichiers communs\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [Autoconfigurateur WiFi Neuf] C:\Program Files\Neuf\Kit\WiFi\9wifi.exe
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe"
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [Nero PhotoShow Media Manager] C:\PROGRA~1\Nero\NEROPH~1\data\Xtras\mssysmgr.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_8 -reboot 1
O4 - HKCU\..\Run: [DNA] "C:\Documents and Settings\DJAMEL\Program Files\BitTorrent_DNA\dna.exe"
O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: ASUS ChkMail.lnk = C:\Program Files\Asus\Asus ChkMail\ChkMail.exe
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)
O11 - Options group: [INTERNATIONAL] International*
O14 - IERESET.INF: START_PAGE_URL=http://www.asus.com
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986....
O16 - DPF: {2250C29C-C5E9-4F55-BE4E-01E45A40FCF1} (CMediaMix Object) - http://musicmix.messenger.msn.com/Medialogic.CAB
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by109fd.bay109.hotmail.msn.com/resources/MsnPUpl...
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.ca...
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPACl...
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/fl...
O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab569...
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - C:\Program Files\Fichiers communs\Microsoft Shared\Help\hxds.dll
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Filter hijack: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~1\FICHIE~1\MICROS~1\OFFICE12\MSOXMLMF.DLL
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\system32\drivers\CDAC11BA.EXE
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: PDEngine - Raxco Software, Inc. - C:\Program Files\Raxco\PerfectDisk\PDEngine.exe
O23 - Service: PDScheduler (PDSched) - Raxco Software, Inc. - C:\Program Files\Raxco\PerfectDisk\PDSched.exe
O23 - Service: StarWind iSCSI Service (StarWindService) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 52\StarWind\StarWindService.exe
Logfile of HijackThis v1.99.1
Scan saved at 23:36:38, on 09/06/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16441)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\drivers\CDAC11BA.EXE
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Alcohol Soft\Alcohol 52\StarWind\StarWindService.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Raxco\PerfectDisk\PDSched.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\ATK0100\HControl.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\ASUSTeK\ASUSDVD\PDVDServ.exe
C:\Program Files\ASUS\Power4 Gear\BatteryLife.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe
C:\Program Files\Neuf\Kit\WiFi\9wifi.exe
C:\WINDOWS\ATK0100\ATKOSD.exe
C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe
C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe
C:\PROGRA~1\Nero\NEROPH~1\data\Xtras\mssysmgr.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\DAEMON Tools\daemon.exe
C:\Documents and Settings\DJAMEL\Program Files\BitTorrent_DNA\dna.exe
C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexStoreSvr.exe
C:\Program Files\Asus\Asus ChkMail\ChkMail.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Hijackthis Version Française\hijackthis vf.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://g.msn.fr/0SEFRFR/SAOS01?FORM=TOOLBR
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://g.msn.fr/0SEFRFR/SAOS01?FORM=TOOLBR
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://neufportail.eurosport.fr/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://recherche.neuf.fr/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.ustart.org
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.msn.fr/0SEFRFR/SAOS01?FORM=TOOLBR
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Canon Easy Web Print Helper - {68F9551E-0411-48E4-9AAF-4BC42A6A46BE} - C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.3558\swg.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O4 - HKLM\..\Run: [HControl] C:\WINDOWS\ATK0100\HControl.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\ASUSTeK\ASUSDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [Power_Gear] C:\Program Files\ASUS\Power4 Gear\BatteryLife.exe 1
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Fichiers communs\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [Autoconfigurateur WiFi Neuf] C:\Program Files\Neuf\Kit\WiFi\9wifi.exe
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe"
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [Nero PhotoShow Media Manager] C:\PROGRA~1\Nero\NEROPH~1\data\Xtras\mssysmgr.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_8 -reboot 1
O4 - HKCU\..\Run: [DNA] "C:\Documents and Settings\DJAMEL\Program Files\BitTorrent_DNA\dna.exe"
O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: ASUS ChkMail.lnk = C:\Program Files\Asus\Asus ChkMail\ChkMail.exe
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)
O11 - Options group: [INTERNATIONAL] International*
O14 - IERESET.INF: START_PAGE_URL=http://www.asus.com
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986....
O16 - DPF: {2250C29C-C5E9-4F55-BE4E-01E45A40FCF1} (CMediaMix Object) - http://musicmix.messenger.msn.com/Medialogic.CAB
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by109fd.bay109.hotmail.msn.com/resources/MsnPUpl...
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.ca...
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPACl...
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/fl...
O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab569...
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - C:\Program Files\Fichiers communs\Microsoft Shared\Help\hxds.dll
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Filter hijack: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~1\FICHIE~1\MICROS~1\OFFICE12\MSOXMLMF.DLL
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\system32\drivers\CDAC11BA.EXE
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: PDEngine - Raxco Software, Inc. - C:\Program Files\Raxco\PerfectDisk\PDEngine.exe
O23 - Service: PDScheduler (PDSched) - Raxco Software, Inc. - C:\Program Files\Raxco\PerfectDisk\PDSched.exe
O23 - Service: StarWind iSCSI Service (StarWindService) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 52\StarWind\StarWindService.exe
Re
Rien d'infectieux dans ce rapport, mais de l'inutile.
On fait du ménage.
1 Télécharge
CCleaner.
http://www.filehippo.com/download_ccleaner.html
Installe le dans un répertoire dédié.
EasyCleaner
http://personal.inet.fi/business/toniarts/ecleane.htm
Installe le dans un répertoire dédié.
2 Relance un scan HijackThis et coche les lignes ci-dessous :
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Fichiers communs\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKCU\..\Run: [Nero PhotoShow Media Manager] C:\PROGRA~1\Nero\NEROPH~1\data\Xtras\mssysmgr.exe
O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_8 -reboot 1
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/bina [...] b56986.cab
O16 - DPF: {2250C29C-C5E9-4F55-BE4E-01E45A40FCF1} (CMediaMix Object) - http://musicmix.messenger.msn.com/Medialogic.CAB
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by109fd.bay109.hotmail.msn. [...] nPUpld.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-F [...] E_UNO1.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/bina [...] b56907.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/ [...] wflash.cab
O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/bina [...] b56986.cab
Ferme toutes les fenêtres Windows, Internet explorer, Outlook,sauf le logiciel Hijackthis et clique sur « Fix checked »
3 Lance EasyCleaner.
Utilises les fonctions Inutiles et Registre. Supprimes ce qu'il trouve. Ne pas toucher à la fonction doublons.
4 Lance le nettoyage avec CCleaner.
5 Fais une défragmentation.
http://www.trucsastuces.com/Astuces/76.php
As tu toujours ces lenteurs ?
Rien d'infectieux dans ce rapport, mais de l'inutile.
On fait du ménage.
1 Télécharge
CCleaner.
http://www.filehippo.com/download_ccleaner.html
Installe le dans un répertoire dédié.
EasyCleaner
http://personal.inet.fi/business/toniarts/ecleane.htm
Installe le dans un répertoire dédié.
2 Relance un scan HijackThis et coche les lignes ci-dessous :
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Fichiers communs\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKCU\..\Run: [Nero PhotoShow Media Manager] C:\PROGRA~1\Nero\NEROPH~1\data\Xtras\mssysmgr.exe
O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_8 -reboot 1
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/bina [...] b56986.cab
O16 - DPF: {2250C29C-C5E9-4F55-BE4E-01E45A40FCF1} (CMediaMix Object) - http://musicmix.messenger.msn.com/Medialogic.CAB
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by109fd.bay109.hotmail.msn. [...] nPUpld.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-F [...] E_UNO1.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/bina [...] b56907.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/ [...] wflash.cab
O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/bina [...] b56986.cab
Ferme toutes les fenêtres Windows, Internet explorer, Outlook,sauf le logiciel Hijackthis et clique sur « Fix checked »
3 Lance EasyCleaner.
Utilises les fonctions Inutiles et Registre. Supprimes ce qu'il trouve. Ne pas toucher à la fonction doublons.
4 Lance le nettoyage avec CCleaner.
5 Fais une défragmentation.
http://www.trucsastuces.com/Astuces/76.php
As tu toujours ces lenteurs ?
Laisse tombé la défragmentation j'en ait fait une avec perfect disk y'a 3 jours c'était long et merci pour easy je conaissè pa mais en fait je rame pa de partou genre ici oui mais pas sur skyrock donc voila mè c'est la connection c'est temporaire car avant j'avais tous les mbits et la non je sui a 36 ou lieu de 54 donc voila c'est suremen temporaire.
Bonsoir
Essaie de faire des phrases plus construites, j'ai de mal à comprendre ce que tu écris.
Télécharge DiagHelp.zip (de Malekal_Morte) sur ton bureau
http://www.malekal.com/download/DiagHelp.zip
- Fais un clic droit sur le fichier et extraire tout
- Un nouveau dossier chercher va être créé DiagHelp
- Ouvre le et double-clic sur go.cmd (le .cmd peut ne pas apparaître)
- Une fenêtre va s'ouvrir, choisis l'option 1
- L'analyse va commencer, ceci peut durer quelques minutes, laisse faire et appuie sur une touche quand on te le demande
ATTENTION : pendant l'analyse, après le rapport catchme, il te sera demandé d'appuyer sur une touche afin de poursuivre le scan, suis bien les instructions à l'écran !
- A la fin de l'analyse, il te sera peut-être demandé de redémarrer l'ordinateur... Une fois l'ordinateur redémarré le rapport va apparaître sur le bloc-note.. Ce dernier se trouve sur C:\resultat.txt
- Copie/colle le contenu du bloc-note qui s'ouvre, pour cela :
-- Dans le bloc-note, cliquez sur le menu Edition / Selectionner tout
-- A nouveau menu Edition / copier
-- Dans un nouveau message ici, faire un clic droit / coller
Essaie de faire des phrases plus construites, j'ai de mal à comprendre ce que tu écris.
Télécharge DiagHelp.zip (de Malekal_Morte) sur ton bureau
http://www.malekal.com/download/DiagHelp.zip
- Fais un clic droit sur le fichier et extraire tout
- Un nouveau dossier chercher va être créé DiagHelp
- Ouvre le et double-clic sur go.cmd (le .cmd peut ne pas apparaître)
- Une fenêtre va s'ouvrir, choisis l'option 1
- L'analyse va commencer, ceci peut durer quelques minutes, laisse faire et appuie sur une touche quand on te le demande
ATTENTION : pendant l'analyse, après le rapport catchme, il te sera demandé d'appuyer sur une touche afin de poursuivre le scan, suis bien les instructions à l'écran !
- A la fin de l'analyse, il te sera peut-être demandé de redémarrer l'ordinateur... Une fois l'ordinateur redémarré le rapport va apparaître sur le bloc-note.. Ce dernier se trouve sur C:\resultat.txt
- Copie/colle le contenu du bloc-note qui s'ouvre, pour cela :
-- Dans le bloc-note, cliquez sur le menu Edition / Selectionner tout
-- A nouveau menu Edition / copier
-- Dans un nouveau message ici, faire un clic droit / coller
Voila le scan mais le logiciel ne ma pas indiqué que c'était fini bref tien
DiagHelp version v1.1.1 - http://www.malekal.com
excute le 11/06/2007 à 1:31:59,04
Liste des derniers fichies modifies/crees dans windir\system32
C:\WINDOWS\System32/drivers\hamachi.sys -->09/06/2007 21:41:16
C:\WINDOWS\System32/drivers\AvgAsCln.sys -->30/05/2007 14:10:42
C:\WINDOWS\System32/drivers\secdrv.sys -->19/05/2007 16:30:24
C:\WINDOWS\System32/drivers\fwdrv.err -->11/05/2007 17:36:10
C:\WINDOWS\System32/drivers\aswmon.sys -->30/04/2007 17:41:56
C:\WINDOWS\System32/drivers\aswmon2.sys -->30/04/2007 17:41:42
C:\WINDOWS\System32/drivers\aswRdr.sys -->30/04/2007 17:39:42
C:\WINDOWS\System32\wpa.dbl -->10/06/2007 23:59:06
C:\WINDOWS\System32\nvapps.xml -->10/06/2007 23:58:42
C:\WINDOWS\System32\Help.ico -->10/06/2007 23:47:22
C:\WINDOWS\System32\Uninstall.ico -->10/06/2007 23:47:22
C:\WINDOWS\System32\pavas.ico -->10/06/2007 23:47:22
C:\WINDOWS\System32\CmdLineExt.dll -->05/06/2007 18:17:20
C:\WINDOWS\System32\PerfStringBackup.INI -->18/05/2007 20:28:22
C:\WINDOWS\System32\perfh00C.dat -->18/05/2007 20:28:22
C:\WINDOWS\System32\perfc00C.dat -->18/05/2007 20:28:22
C:\WINDOWS\System32\perfh009.dat -->18/05/2007 20:28:22
C:\WINDOWS\System32\perfc009.dat -->18/05/2007 20:28:22
C:\WINDOWS\System32\CONFIG.NT -->07/05/2007 22:59:56
C:\WINDOWS\System32\aswBoot.exe -->30/04/2007 17:46:10
C:\WINDOWS\System32\AVASTSS.scr -->30/04/2007 17:35:28
C:\WINDOWS\System32\MRT.exe -->27/04/2007 22:45:12
C:\WINDOWS\System32\jupdate-1.6.0_01-b06.log -->21/04/2007 13:30:52
C:\WINDOWS\System32\msi.dll -->18/04/2007 18:14:18
C:\WINDOWS\System32\wups.dll -->16/04/2007 22:47:36
C:\WINDOWS\System32\wuaucpl.cpl.mui -->16/04/2007 22:47:26
C:\WINDOWS\System32\wuapi.dll.mui -->16/04/2007 22:46:54
C:\WINDOWS\System32\wuaueng.dll -->16/04/2007 22:45:54
C:\WINDOWS\System32\wuapi.dll -->16/04/2007 22:45:48
C:\WINDOWS\System32\wuaueng.dll.mui -->16/04/2007 22:45:42
C:\WINDOWS\System32\wucltui.dll -->16/04/2007 22:45:42
C:\WINDOWS\System32\wuaucpl.cpl -->16/04/2007 22:45:40
C:\WINDOWS\WindowsUpdate.log -->11/06/2007 01:24:36
C:\WINDOWS\wiadebug.log -->10/06/2007 23:58:50
C:\WINDOWS\bootstat.dat -->10/06/2007 23:58:36
C:\WINDOWS\SchedLgU.Txt -->10/06/2007 23:57:48
C:\WINDOWS\wiaservc.log -->10/06/2007 23:57:46
C:\WINDOWS\galaxy.ini -->09/06/2007 00:44:10
C:\WINDOWS\NeroDigital.ini -->08/06/2007 18:47:56
C:\WINDOWS\vpd.properties -->08/06/2007 13:02:56
C:\WINDOWS\PhotoSnapViewer.INI -->02/06/2007 20:02:46
C:\WINDOWS\GSdx9.INI -->30/05/2007 00:16:00
C:\WINDOWS\GSdx9 sse2.INI -->29/05/2007 23:43:58
C:\WINDOWS\ModemLog_AC97 Soft Data Fax Modem with SmartCP.txt -->27/05/2007 00:51:04
C:\WINDOWS\win.ini -->16/05/2007 16:19:28
C:\WINDOWS\mozver.dat -->20/04/2007 21:33:28
C:\WINDOWS\nsreg.dat -->20/04/2007 21:26:42
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\WINDOWS\system32
05/08/2004 14:00 6 144 csrss.exe
1 fichier(s) 6 144 octets
0 Rép(s) 25 628 672 000 octets libres
Contenu de Downloaded Program Files
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\WINDOWS\Downloaded Program Files
19/10/2006 06:41 <REP> .
19/10/2006 06:41 <REP> ..
19/10/2006 06:41 65 desktop.ini
25/06/2006 12:50 1 793 erma.inf
25/07/2002 17:13 24 576 dwusplay.dll
25/07/2002 17:13 196 608 dwusplay.exe
16/02/2005 16:15 401 408 isusweb.dll
22/09/2004 15:59 110 592 PURen-us.dll
15/10/2004 07:59 110 592 PURfr-xx.dll
13/11/2006 19:48 946 296 asquared.ocx
24/08/2006 08:28 141 424 asinst.dll
22/08/2006 09:06 537 asinst.inf
10 fichier(s) 1 933 891 octets
Total des fichiers listés :
10 fichier(s) 1 933 891 octets
2 Rép(s) 25 628 672 000 octets libres
Recherche de rootkit! (Merci S!Ri)
Recherche d'infections connues
Export des clefs sensibles..
Liste des fichiers en exception sur le pare-feu XP SP2
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"="C:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\Program Files\\Messenger\\msmsgs.exe"="C:\\Program Files\\Messenger\\msmsgs.exe:*:Enabled:Windows Messenger"
"C:\\Program Files\\eMule\\emule.exe"="C:\\Program Files\\eMule\\emule.exe:*
isabled:eMule"
"C:\\Program Files\\eChanblard\\emule.exe"="C:\\Program Files\\eChanblard\\emule.exe:*
isabled:eMule"
"C:\\Program Files\\Internet Explorer\\IEXPLORE.EXE"="C:\\Program Files\\Internet Explorer\\IEXPLORE.EXE:*
isabled:Internet Explorer"
"C:\\Documents and Settings\\DJAMEL\\Local Settings\\Temporary Internet Files\\Content.IE5\\ROLJCXM7\\incredimail_install[1].exe"="C:\\Documents and Settings\\DJAMEL\\Local Settings\\Temporary Internet Files\\Content.IE5\\ROLJCXM7\\incredimail_install[1].exe:*:Enabled:IncrediMail Installer"
"C:\\Program Files\\Electronic Arts\\Need for Speed Carbon\\NFSC.exe"="C:\\Program Files\\Electronic Arts\\Need for Speed Carbon\\NFSC.exe:*
isabled:NFSC"
"C:\\Program Files\\KONAMI\\Pro Evolution Soccer 6\\pes6.exe"="C:\\Program Files\\KONAMI\\Pro Evolution Soccer 6\\pes6.exe:*
isabled
es6.exe"
"C:\\Documents and Settings\\DJAMEL\\Mes documents\\JEUX\\romustrike\\romustrike.exe"="C:\\Documents and Settings\\DJAMEL\\Mes documents\\JEUX\\romustrike\\romustrike.exe:*
isabled:romustrike"
"C:\\WINDOWS\\System32\\dpnsvr.exe"="C:\\WINDOWS\\System32\\dpnsvr.exe:*
isabled:Microsoft DirectPlay8 Server"
"C:\\Program Files\\Wolfenstein - Enemy Territory\\ET.exe"="C:\\Program Files\\Wolfenstein - Enemy Territory\\ET.exe:*
isabled:ET"
"C:\\Program Files\\Microsoft Games\\Age of Empires II\\EMPIRES2.EXE"="C:\\Program Files\\Microsoft Games\\Age of Empires II\\EMPIRES2.EXE:*
isabled:Age of Empires II"
"C:\\WINDOWS\\System32\\dplaysvr.exe"="C:\\WINDOWS\\System32\\dplaysvr.exe:*
isabled:Microsoft DirectPlay Helper"
"C:\\Program Files\\Microsoft Games\\Age of Empires II\\age2_x1\\age2_x1.exe"="C:\\Program Files\\Microsoft Games\\Age of Empires II\\age2_x1\\age2_x1.exe:*
isabled:Age of Empires II Expansion"
"C:\\Program Files\\MSN Messenger\\msncall.exe"="C:\\Program Files\\MSN Messenger\\msncall.exe:*:Enabled:Windows Live Messenger 8.0 (Phone)"
"C:\\Program Files\\Atari\\Test Drive Unlimited\\TestDriveUnlimited.exe"="C:\\Program Files\\Atari\\Test Drive Unlimited\\TestDriveUnlimited.exe:*
isabled:Test Drive Unlimited"
"C:\\Program Files\\BluetoothPCDialer\\BluetoothPCDialer.exe"="C:\\Program Files\\BluetoothPCDialer\\BluetoothPCDialer.exe:*
isabled:BluetoothPCDialer"
"C:\\Program Files\\MSN Messenger\\MsnMsgr.Exe"="C:\\Program Files\\MSN Messenger\\MsnMsgr.Exe:*:Enabled:Windows Live Messenger 8.1"
"C:\\Program Files\\MSN Messenger\\livecall.exe"="C:\\Program Files\\MSN Messenger\\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"
"C:\\Program Files\\TrackMania Nations ESWC\\TmNationsESWC.exe"="C:\\Program Files\\TrackMania Nations ESWC\\TmNationsESWC.exe:*
isabled:TmNationsESWC"
"C:\\Program Files\\Sunbelt Software\\Personal Firewall\\kpf4gui.exe"="C:\\Program Files\\Sunbelt Software\\Personal Firewall\\kpf4gui.exe:*
isabled:Sunbelt Firewall GUI"
"C:\\Documents and Settings\\DJAMEL\\Program Files\\BitTorrent_DNA\\dna.exe"="C:\\Documents and Settings\\DJAMEL\\Program Files\\BitTorrent_DNA\\dna.exe:*:Enabled
NA"
"C:\\Program Files\\BitTorrent\\bittorrent.exe"="C:\\Program Files\\BitTorrent\\bittorrent.exe:*:Enabled:BitTorrent"
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\Program Files\\MSN Messenger\\msncall.exe"="C:\\Program Files\\MSN Messenger\\msncall.exe:*:Enabled:Windows Live Messenger 8.0 (Phone)"
"C:\\Program Files\\MSN Messenger\\MsnMsgr.Exe"="C:\\Program Files\\MSN Messenger\\MsnMsgr.Exe:*:Enabled:Windows Live Messenger 8.1"
"C:\\Program Files\\MSN Messenger\\livecall.exe"="C:\\Program Files\\MSN Messenger\\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"
Export de la clef SharedTaskScheduler
[SharedTaskScheduler]
"{438755C2-A8BA-11D1-B96B-00A0C90312E1}"="Pré-chargeur Browseui"
"{8C7461EF-2B13-11d2-BE35-3078302C2030}"="Démon de cache des catégories de composant"
Rechercher adresses sensibles dans le fichier HOSTS...
127.0.0.1 trial.updates.winsoftware.com ## added by CiD
catchme 0.3.692 W2K/XP/Vista - userland rootkit detector by Gmer, http://www.gmer.net
Rootkit scan 2007-06-11 01:32:23
Windows 5.1.2600 Service Pack 2 FAT NTAPI
scanning hidden files ...
scan completed successfully
hidden files: 0
KProcCheck Version 0.2-beta1 Proof-of-Concept by SIG^2 (www.security.org.sg)
Process list by traversal of KiWaitListHead
4 - System
312 - cmd.exe
392 - CDAC11BA.EXE
552 - ASHSERV.EXE
664 - EXPLORER.EXE
900 - HCONTROL.EXE
972 - SYNTPENH.EXE
1016 - ASHDISP.EXE
1116 - 9WIFI.EXE
1192 - CSRSS.EXE
1216 - WINLOGON.EXE
1264 - SERVICES.EXE
1276 - LSASS.EXE
1388 - avgas.exe
1420 - SVCHOST.EXE
1476 - SVCHOST.EXE
1512 - SVCHOST.EXE
1572 - NMBGMONITOR.EXE
1604 - MSNMSGR.EXE
1688 - CTFMON.EXE
1728 - SVCHOST.EXE
1736 - DNA.EXE
1748 - NVSVC32.EXE
1904 - CHKMAIL.EXE
1952 - NMINDEXSTORESVR
1976 - guard.exe
2288 - wuauclt.exe
2428 - iexplore.exe
2448 - ashMaiSv.exe
2524 - ashWebSv.exe
3260 - alg.exe
Total number of processes = 31
NOTE: Under WinXP, this will not show all processes.
KProcCheck Version 0.2-beta1 Proof-of-Concept by SIG^2 (www.security.org.sg)
Driver/Module list by traversal of PsLoadedModuleList
804D7000 - \WINDOWS\system32\ntkrnlpa.exe
806CE000 - \WINDOWS\system32\hal.dll
F7A9C000 - \WINDOWS\system32\KDCOM.DLL
F79AC000 - \WINDOWS\system32\BOOTVID.dll
F73C1000 - sptd.sys
F7A9E000 - \WINDOWS\System32\Drivers\WMILIB.SYS
F73A9000 - \WINDOWS\System32\Drivers\SCSIPORT.SYS
F737A000 - ACPI.sys
F7369000 - pci.sys
F759C000 - ohci1394.sys
F75AC000 - \WINDOWS\system32\DRIVERS\1394BUS.SYS
F75BC000 - isapnp.sys
F79B0000 - compbatt.sys
F79B4000 - \WINDOWS\system32\DRIVERS\BATTC.SYS
F7B64000 - pciide.sys
F781C000 - \WINDOWS\system32\DRIVERS\PCIIDEX.SYS
F734B000 - pcmcia.sys
F75CC000 - MountMgr.sys
F732C000 - ftdisk.sys
F79B8000 - ACPIEC.sys
F7B65000 - \WINDOWS\system32\DRIVERS\OPRGHDLR.SYS
F7824000 - PartMgr.sys
F782C000 - sfsync02.sys
F75DC000 - VolSnap.sys
F7314000 - atapi.sys
F75EC000 - disk.sys
F75FC000 - \WINDOWS\system32\DRIVERS\CLASSPNP.SYS
F72F4000 - fltMgr.sys
F72E2000 - sr.sys
F760C000 - PxHelp20.sys
F72BF000 - Fastfat.sys
F72A8000 - KSecDD.sys
F761C000 - Defrag32b.sys
F727B000 - NDIS.sys
F7268000 - sfvfs02.sys
F7834000 - sfhlp02.sys
F7256000 - sfdrv01.sys
F783C000 - risdptsk.sys
F762C000 - rimsptsk.sys
F723B000 - Mup.sys
F7AA0000 - \SystemRoot\system32\DRIVERS\ATKACPI.sys
F6D57000 - \SystemRoot\system32\DRIVERS\nv4_mini.sys
F6D43000 - \SystemRoot\system32\DRIVERS\VIDEOPRT.SYS
F765C000 - \SystemRoot\system32\DRIVERS\i8042prt.sys
F785C000 - \SystemRoot\system32\DRIVERS\kbdclass.sys
F6D14000 - \SystemRoot\system32\DRIVERS\SynTP.sys
F7AA2000 - \SystemRoot\system32\DRIVERS\USBD.SYS
F7864000 - \SystemRoot\system32\DRIVERS\mouclass.sys
F6D03000 - \SystemRoot\System32\Drivers\Serial.SYS
F786C000 - \SystemRoot\system32\DRIVERS\irsir.sys
F7A8C000 - \SystemRoot\system32\DRIVERS\irenum.sys
F6CEF000 - \SystemRoot\system32\DRIVERS\parport.sys
F766C000 - \SystemRoot\system32\DRIVERS\imapi.sys
F767C000 - \SystemRoot\system32\DRIVERS\cdrom.sys
F768C000 - \SystemRoot\system32\DRIVERS\redbook.sys
F6CCC000 - \SystemRoot\system32\DRIVERS\ks.sys
F6C97000 - \SystemRoot\system32\DRIVERS\HSFHWSIS.sys
F6B9A000 - \SystemRoot\system32\DRIVERS\HSF_DPV.sys
F6AEB000 - \SystemRoot\system32\DRIVERS\HSF_CNXT.sys
F7874000 - \SystemRoot\System32\Drivers\Modem.SYS
F6771000 - \SystemRoot\system32\drivers\ALCXWDM.SYS
F674D000 - \SystemRoot\system32\drivers\portcls.sys
F769C000 - \SystemRoot\system32\drivers\drmk.sys
F787C000 - \SystemRoot\system32\DRIVERS\usbohci.sys
F672A000 - \SystemRoot\system32\DRIVERS\USBPORT.SYS
F7884000 - \SystemRoot\system32\DRIVERS\usbehci.sys
F66CF000 - \SystemRoot\system32\DRIVERS\bcmwl5.sys
F76AC000 - \SystemRoot\system32\DRIVERS\nic1394.sys
F66BC000 - \SystemRoot\system32\DRIVERS\Rtlnicxp.sys
F6672000 - \SystemRoot\System32\Drivers\a8dzv6a1.SYS
F6628000 - \SystemRoot\System32\Drivers\al5gfo4n.SYS
F71DB000 - \SystemRoot\system32\DRIVERS\CmBatt.sys
F76BC000 - \SystemRoot\system32\DRIVERS\AmdK8.sys
F70EC000 - \SystemRoot\system32\DRIVERS\audstub.sys
F791C000 - \SystemRoot\system32\DRIVERS\rasirda.sys
F7924000 - \SystemRoot\system32\DRIVERS\TDI.SYS
F76CC000 - \SystemRoot\system32\DRIVERS\rasl2tp.sys
F71D3000 - \SystemRoot\system32\DRIVERS\ndistapi.sys
F65DF000 - \SystemRoot\system32\DRIVERS\ndiswan.sys
F76DC000 - \SystemRoot\system32\DRIVERS\raspppoe.sys
F76EC000 - \SystemRoot\system32\DRIVERS\raspptp.sys
F652E000 - \SystemRoot\system32\DRIVERS\psched.sys
F76FC000 - \SystemRoot\system32\DRIVERS\msgpc.sys
F792C000 - \SystemRoot\system32\DRIVERS\ptilink.sys
F7934000 - \SystemRoot\system32\DRIVERS\raspti.sys
F770C000 - \SystemRoot\system32\DRIVERS\termdd.sys
F7AAC000 - \SystemRoot\system32\DRIVERS\swenum.sys
F64FA000 - \SystemRoot\system32\DRIVERS\update.sys
F71C7000 - \SystemRoot\system32\DRIVERS\mssmbios.sys
F771C000 - \SystemRoot\System32\Drivers\NDProxy.SYS
F772C000 - \SystemRoot\system32\DRIVERS\usbhub.sys
F7AB0000 - \SystemRoot\System32\Drivers\Fs_Rec.SYS
F7C39000 - \SystemRoot\System32\Drivers\Null.SYS
F7AB2000 - \SystemRoot\System32\Drivers\Beep.SYS
F7C3E000 - \SystemRoot\System32\DRIVERS\AvgAsCln.sys
F7964000 - \SystemRoot\System32\drivers\vga.sys
F7AB4000 - \SystemRoot\System32\Drivers\mnmdd.SYS
F7AB6000 - \SystemRoot\System32\DRIVERS\RDPCDD.sys
F796C000 - \SystemRoot\System32\Drivers\Msfs.SYS
F7974000 - \SystemRoot\System32\Drivers\Npfs.SYS
F71EB000 - \SystemRoot\system32\DRIVERS\rasacd.sys
F4477000 - \SystemRoot\system32\DRIVERS\ipsec.sys
F441F000 - \SystemRoot\system32\DRIVERS\tcpip.sys
F773C000 - \SystemRoot\System32\Drivers\aswTdi.SYS
F43F7000 - \SystemRoot\system32\DRIVERS\netbt.sys
F43D5000 - \SystemRoot\System32\drivers\afd.sys
F774C000 - \SystemRoot\system32\DRIVERS\netbios.sys
F797C000 - \SystemRoot\System32\Drivers\StarOpen.SYS
F43AA000 - \SystemRoot\system32\DRIVERS\rdbss.sys
F433B000 - \SystemRoot\system32\DRIVERS\mrxsmb.sys
F776C000 - \SystemRoot\System32\Drivers\Fips.SYS
F431A000 - \SystemRoot\system32\DRIVERS\ipnat.sys
F777C000 - \SystemRoot\system32\DRIVERS\wanarp.sys
F778C000 - \SystemRoot\system32\DRIVERS\arp1394.sys
F7C52000 - \??\C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.sys
F7984000 - \SystemRoot\System32\Drivers\Aavmker4.SYS
F6606000 - \SystemRoot\system32\DRIVERS\hidusb.sys
F77AC000 - \SystemRoot\system32\DRIVERS\HIDCLASS.SYS
F798C000 - \SystemRoot\system32\DRIVERS\HIDPARSE.SYS
F77BC000 - \SystemRoot\System32\Drivers\Cdfs.SYS
F41F4000 - \SystemRoot\system32\DRIVERS\WlanUIG.sys
F4144000 - \SystemRoot\System32\Drivers\SynMini.sys
F77CC000 - \SystemRoot\System32\Drivers\STREAM.SYS
F7994000 - \SystemRoot\System32\Drivers\SynCamd.sys
F40C9000 - \SystemRoot\System32\Drivers\SynPin.sys
F36CA000 - \SystemRoot\System32\Drivers\SynPipe.sys
F6602000 - \SystemRoot\System32\Drivers\SYNSAM.SYS
F7AB8000 - \SystemRoot\System32\Drivers\SynScan.sys
F36B2000 - \SystemRoot\System32\Drivers\dump_atapi.sys
F7ABA000 - \SystemRoot\System32\Drivers\dump_WMILIB.SYS
BF800000 - \SystemRoot\System32\win32k.sys
F64EE000 - \SystemRoot\System32\drivers\Dxapi.sys
F799C000 - \SystemRoot\System32\watchdog.sys
BF9C3000 - \SystemRoot\System32\drivers\dxg.sys
F719D000 - \SystemRoot\System32\drivers\dxgthk.sys
BF9D5000 - \SystemRoot\System32\nv4_disp.dll
BAC5A000 - \SystemRoot\system32\DRIVERS\irda.sys
BAD04000 - \SystemRoot\system32\DRIVERS\ndisuio.sys
BA32C000 - \SystemRoot\System32\Drivers\aswMon2.SYS
B9FDF000 - \SystemRoot\system32\DRIVERS\mrxdav.sys
B9DEA000 - \SystemRoot\system32\drivers\wdmaud.sys
B9F3F000 - \SystemRoot\system32\drivers\sysaudio.sys
B9F93000 - \??\C:\WINDOWS\system32\drivers\CdaC15BA.SYS
B9E47000 - \SystemRoot\System32\Drivers\Defrag32.SYS
B9B29000 - \SystemRoot\System32\Drivers\HTTP.sys
B9E1F000 - \SystemRoot\system32\DRIVERS\mdmxsdk.sys
B9A0F000 - \SystemRoot\system32\DRIVERS\srv.sys
B99BF000 - \SystemRoot\system32\DRIVERS\secdrv.sys
B9803000 - \??\C:\WINDOWS\system32\ASNDIS5.SYS
F78F4000 - \SystemRoot\System32\Drivers\PCASp50.sys
B8C7B000 - \SystemRoot\System32\Drivers\aswRdr.SYS
BFFA0000 * ??? --[Hidden]--
B6A87000 - \SystemRoot\system32\drivers\kmixer.sys
F6622000 - \SystemRoot\System32\DRIVERS\KProcCheck.sys
Total number of drivers = 154
Liste des programmes installes
Adobe Bridge 1.0
Adobe Common File Installer
Adobe Flash Player 9 ActiveX
Adobe Help Center 2.0
Adobe Photoshop CS2
Adobe Photoshop CS2
Adobe Premiere Pro 2.0
Adobe Premiere Pro 2.0
Adobe Reader 7.0.8 - Français
Adobe Shockwave Player
Adobe Stock Photos 1.0
Adobe Stock Photos 1.0
Alien Arena 2007
Archiveur WinRAR
ArcSoft PhotoStudio 5.5
Asus ChkMail
Asus_A6_ScreenSaver
ASUSDVD
Athlon 64 Processor Driver
ATK0100 ACPI UTILITY
avast! Antivirus
AVG Anti-Spyware 7.5
Barre d'outils Outlook de Windows Live (Windows Live Toolbar)
Bloqueur de fenêtres pop-up (Windows Live Toolbar)
Canon MP Navigator 3.0
Canon MP180
Canon Utilities Easy-PhotoPrint
CCleaner (remove only)
Détecteur de flux Windows Live Toolbar (Windows Live Toolbar)
DVD Shrink 3.2
Easy-WebPrint
EasyCleaner
Enregistrement utilisateur de Canon MP180
Extension de Windows Live Toolbar (Windows Live Toolbar)
Google Toolbar for Internet Explorer
GTA San Andreas
GTK+ 2.10.6-1 runtime environment
Hijackthis Version Française 1.99.0.1
Hotfix for Windows Media Format 11 SDK (KB929399)
Hotfix for Windows XP (KB926239)
J2SE Runtime Environment 5.0 Update 10
J2SE Runtime Environment 5.0 Update 11
J2SE Runtime Environment 5.0 Update 9
Java(TM) SE Runtime Environment 6 Update 1
K-Lite Mega Codec Pack 1.59
Lecteur Windows Media 11
Menus intelligents (Windows Live Toolbar)
Messenger Plus! Live & Sponsor (CiD)
Microsoft Compression Client Pack 1.0 for Windows XP
Microsoft Office Access MUI (French) 2007
Microsoft Office Excel MUI (French) 2007
Microsoft Office InfoPath MUI (French) 2007
Microsoft Office Outlook MUI (French) 2007
Microsoft Office PowerPoint MUI (French) 2007
Microsoft Office Professional Plus 2007
Microsoft Office Professional Plus 2007
Microsoft Office Proof (Arabic) 2007
Microsoft Office Proof (Dutch) 2007
Microsoft Office Proof (English) 2007
Microsoft Office Proof (French) 2007
Microsoft Office Proof (German) 2007
Microsoft Office Proof (Spanish) 2007
Microsoft Office Proofing (French) 2007
Microsoft Office Publisher MUI (French) 2007
Microsoft Office Shared MUI (French) 2007
Microsoft Office Word MUI (French) 2007
Microsoft Software Update for Web Folders (French) 12
Microsoft User-Mode Driver Framework Feature Pack 1.0
Mise à jour de sécurité pour Lecteur Windows Media 6.4 (KB925398)
Mise à jour de sécurité pour Step by Step Interactive Training (KB923723)
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB928090)
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB929969)
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB931768)
Mise à jour de sécurité pour Windows XP (KB918118)
Mise à jour de sécurité pour Windows XP (KB923694)
Mise à jour de sécurité pour Windows XP (KB924667)
Mise à jour de sécurité pour Windows XP (KB925902)
Mise à jour de sécurité pour Windows XP (KB926255)
Mise à jour de sécurité pour Windows XP (KB926436)
Mise à jour de sécurité pour Windows XP (KB927779)
Mise à jour de sécurité pour Windows XP (KB927802)
Mise à jour de sécurité pour Windows XP (KB928255)
Mise à jour de sécurité pour Windows XP (KB928843)
Mise à jour de sécurité pour Windows XP (KB930178)
Mise à jour de sécurité pour Windows XP (KB931261)
Mise à jour de sécurité pour Windows XP (KB931784)
Mise à jour de sécurité pour Windows XP (KB932168)
Mise à jour pour Windows XP (KB927891)
Mise à jour pour Windows XP (KB929338)
Mise à jour pour Windows XP (KB930916)
Mise à jour pour Windows XP (KB931836)
Mozilla Firefox (2.0.0.4)
MSXML 4.0 SP2 (KB927978)
Need for Speed™ Carbon
Nero 7 Ultra Edition
Nero PhotoShow Deluxe 4
Neuf - Kit de connexion
NVIDIA Drivers
OneCare Advisor (Windows Live Toolbar)
PerfectDisk
Power4 Gear
QuickTime Alternative 1.76
Realtek AC'97 Audio
REALTEK Gigabit and Fast Ethernet NIC Driver
SafeCast Shared Components
SAMSUNG Mobile USB Modem ^^
Samsung PC Studio
Samsung PC Studio
Samsung PC Studio
Samsung PC Studio 3 USB Driver Installer
ScanSoft OmniPage SE 4.0
Security Update for CAPICOM (KB931906)
Security Update for CAPICOM (KB931906)
Security Update for Excel 2007 (KB934670)
Security Update for Office 2007 (KB934062)
Soft Data Fax Modem with SmartCP
SopCast 1.1.2
Synaptics Pointing Device Driver
TrackMania Nations ESWC - Update 2
Update for Office 2007 (KB932080)
Update for Office 2007 (KB933688)
Update for Office 2007 (KB934393)
Update for Outlook 2007 Junk Email Filter (KB934655)
Update for Word 2007 (KB934173)
USB2.0 1.3M Web Cam
Virtua Tennis 3
WebFldrs XP
Windows Genuine Advantage Notifications (KB905474)
Windows Genuine Advantage Validation Tool (KB892130)
Windows Internet Explorer 7
Windows Live Favorites pour Windows Live Toolbar
Windows Live Messenger
Windows Live Sign-in Assistant
Windows Live Toolbar
Windows Live Toolbar
Windows Media Format 11 runtime
WinFlash
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Program Files
19/10/2006 06:35 <REP> .
19/10/2006 06:35 <REP> ..
19/10/2006 07:08 <REP> Adobe
12/12/2006 11:30 <REP> Alcohol Soft
12/12/2006 16:46 <REP> Alwil Software
19/10/2006 06:50 <REP> AMD
28/02/2007 15:01 <REP> ArcSoft
19/10/2006 06:51 <REP> Asus
19/10/2006 06:55 <REP> ASUSTeK
19/10/2006 06:48 <REP> AvRack
09/06/2007 22:01 <REP> BitTorrent
02/04/2007 11:19 <REP> BluetoothPCDialer
28/02/2007 14:57 <REP> Canon
12/12/2006 11:24 <REP> CCleaner
13/02/2007 23:15 <REP> Common Files
19/10/2006 06:40 <REP> ComPlus Applications
19/10/2006 06:36 <REP> CONEXANT
29/03/2007 16:00 <REP> DAEMON Tools
17/03/2007 11:40 <REP> Dictionnaire
17/05/2007 22:49 <REP> DivX
31/03/2007 21:33 <REP> DJ show
12/12/2006 16:57 <REP> DVD Shrink
11/02/2007 12:12 <REP> eChanblard
13/02/2007 18:25 <REP> Electronic Arts
19/10/2006 06:35 <REP> Fichiers communs
03/02/2007 00:20 <REP> Free Audio Pack
05/01/2007 11:17 <REP> Google
10/06/2007 23:28 <REP> Grisoft
09/06/2007 23:36 <REP> Hijackthis Version Française
19/10/2006 06:40 <REP> Internet Explorer
12/12/2006 16:57 <REP> Java
12/12/2006 16:52 <REP> K-Lite Codec Pack
12/12/2006 16:53 <REP> Media Player Classic
31/03/2007 18:48 <REP> Messenger Plus! Live
09/05/2007 21:08 <REP> Microsoft CAPICOM 2.1.0.2
19/10/2006 06:42 <REP> microsoft frontpage
12/12/2006 11:36 <REP> Microsoft Office
12/12/2006 11:41 <REP> Microsoft Visual Studio
12/12/2006 11:42 <REP> Microsoft Works
19/10/2006 06:41 <REP> Movie Maker
20/04/2007 21:26 <REP> Mozilla Firefox
12/12/2006 11:41 <REP> MSBuild
19/10/2006 06:39 <REP> MSN
19/10/2006 06:40 <REP> MSN Gaming Zone
16/03/2007 23:02 <REP> MSN Messenger
12/12/2006 12:34 <REP> MSXML 4.0
11/01/2007 22:45 <REP> Multi_Media
12/12/2006 11:15 <REP> Nero
19/10/2006 06:40 <REP> NetMeeting
26/12/2006 10:26 <REP> Neuf
19/10/2006 06:40 <REP> Online Services
19/10/2006 06:40 <REP> Outlook Express
12/12/2006 16:53 <REP> QuickTime Alternative
12/12/2006 11:28 <REP> Raxco
19/10/2006 06:48 <REP> Realtek AC97
19/10/2006 06:48 <REP> Realtek Sound Manager
02/02/2007 23:03 <REP> Replay Converter
08/06/2007 11:50 <REP> Rockstar Games
05/02/2007 20:20 <REP> Samsung
28/02/2007 15:02 <REP> ScanSoft
30/05/2007 00:52 <REP> Sega
19/10/2006 06:41 <REP> Services en ligne
19/05/2007 18:18 <REP> SopCast
11/06/2007 00:17 <REP> Spybot - Search & Destroy
08/05/2007 15:52 <REP> Sunbelt Software
19/10/2006 07:01 <REP> Symantec
19/10/2006 06:53 <REP> Synaptics
08/05/2007 13:38 <REP> TrackMania Nations ESWC
14/02/2007 00:02 <REP> UltraISO
06/02/2007 13:50 <REP> Windows Live Favorites
06/02/2007 13:47 <REP> Windows Live Toolbar
08/01/2007 18:50 <REP> Windows Media Connect 2
19/10/2006 06:40 <REP> Windows Media Player
19/10/2006 06:39 <REP> Windows NT
12/12/2006 11:23 <REP> WinRAR
19/10/2006 06:42 <REP> xerox
0 fichier(s) 0 octets
76 Rép(s) 25 628 246 016 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Program Files\fichiers communs
19/10/2006 06:35 <REP> .
19/10/2006 06:35 <REP> ..
19/10/2006 06:35 <REP> Microsoft Shared
19/10/2006 06:35 <REP> SpeechEngines
19/10/2006 06:35 <REP> ODBC
19/10/2006 06:40 <REP> System
19/10/2006 06:41 <REP> MSSoap
19/10/2006 06:41 <REP> Services
19/10/2006 06:48 <REP> InstallShield
19/10/2006 07:01 <REP> Symantec Shared
12/12/2006 16:54 <REP> Adobe
12/12/2006 16:57 <REP> Java
12/12/2006 11:15 <REP> Ahead
12/12/2006 11:20 <REP> Simple Star Shared
12/12/2006 11:28 <REP> Raxco
12/12/2006 11:41 <REP> DESIGNER
12/12/2006 11:46 <REP> Adobe Systems Shared
31/01/2007 18:32 <REP> GTK
11/02/2007 23:57 <REP> BOONTY Shared
12/02/2007 00:19 <REP> Macrovision Shared
28/02/2007 15:03 <REP> ScanSoft Shared
0 fichier(s) 0 octets
21 Rép(s) 25 628 246 016 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Program Files\fichiers communs\Microsoft Shared\Web Folders
19/10/2006 07:00 <REP> .
19/10/2006 07:00 <REP> ..
07/03/2001 07:00 127 033 MSOWS40c.DLL
03/06/1999 12:09 122 937 MSOWS409.DLL
12/12/2006 11:36 <REP> 1036
26/10/2006 19:49 970 528 MSONSEXT.DLL
26/10/2006 20:12 40 256 MSOSV.DLL
4 fichier(s) 1 260 754 octets
3 Rép(s) 25 628 246 016 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Program Files\common files
13/02/2007 23:15 <REP> .
13/02/2007 23:15 <REP> ..
13/02/2007 23:15 <REP> EasyInfo
0 fichier(s) 0 octets
3 Rép(s) 25 628 246 016 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\
12/05/2007 18:22 68 096 diff.exe
12/05/2007 18:22 103 424 grep.exe
2 fichier(s) 171 520 octets
0 Rép(s) 25 628 246 016 octets libres
c:\_OTMoveIt\MovedFiles\Documents and Settings\All Users\Application Data\scr fork cast wma\BALM FAST.exe
c:\_OTMoveIt\MovedFiles\Documents and Settings\DJAMEL\Application Data\acid type mode\cunkuntq.exe
c:\_OTMoveIt\MovedFiles\Documents and Settings\DJAMEL\Application Data\acid type mode\Long style bore proc.exe
c:\_OTMoveIt\MovedFiles\Documents and Settings\DJAMEL\Application Data\acid type mode\Vc jump second.exe
c:\_OTMoveIt\MovedFiles\Documents and Settings\DJAMEL\Application Data\acid type mode\window locks.exe
c:\Documents and Settings\Default User\Local Settings\Temp\Norton Internet Security 2005\CDSTART.EXE
c:\Documents and Settings\DJAMEL\Mes documents\Nouveau dossier\EasyClea.exe
c:\Documents and Settings\DJAMEL\Bureau\PocketDivXEncoder_0.3.60.exe
c:\Documents and Settings\DJAMEL\Bureau\DiagHelp\catchme.exe
c:\Documents and Settings\DJAMEL\Bureau\DiagHelp\diff.exe
c:\Documents and Settings\DJAMEL\Bureau\DiagHelp\dumphive.exe
c:\Documents and Settings\DJAMEL\Bureau\DiagHelp\FilesInfoCmd.exe
c:\Documents and Settings\DJAMEL\Bureau\DiagHelp\find2.exe
c:\Documents and Settings\DJAMEL\Bureau\DiagHelp\Fport.exe
c:\Documents and Settings\DJAMEL\Bureau\DiagHelp\grep.exe
c:\Documents and Settings\DJAMEL\Bureau\DiagHelp\KProcCheck.exe
c:\Documents and Settings\DJAMEL\Bureau\DiagHelp\LFiles.exe
c:\Documents and Settings\DJAMEL\Bureau\DiagHelp\LISTDLLS.exe
c:\Documents and Settings\DJAMEL\Bureau\DiagHelp\pslist.exe
c:\Documents and Settings\DJAMEL\Bureau\DiagHelp\streams.exe
c:\Documents and Settings\DJAMEL\Bureau\DiagHelp\swreg.exe
c:\Documents and Settings\DJAMEL\Application Data\MSNInstaller\msnauins.exe
c:\Documents and Settings\DJAMEL\Application Data\MySpace\IM\Install\MSIMClientSetup.1.0.673.0-static-fr.exe
c:\Documents and Settings\DJAMEL\Application Data\SopCast\adv\SopAdver.exe
c:\Documents and Settings\DJAMEL\Program Files\BitTorrent_DNA\dna.exe
c:\Documents and Settings\Invité\Local Settings\Temp\Norton Internet Security 2005\CDSTART.EXE
c:\Documents and Settings\All Users\Application Data\Microsoft\USMT\iconlib.dll
c:\Documents and Settings\All Users\Application Data\Microsoft\IdentityCRL\production\ppcrlconfig.dll
c:\Documents and Settings\All Users\Application Data\Nero\DrWeb\Drweb32.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0409\CNMlr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0409\CNMsr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0409\CNMur82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0411\CNMlr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0411\CNMsr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0411\CNMur82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\040c\CNMlr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\040c\CNMsr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\040c\CNMur82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0407\CNMlr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0407\CNMsr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0407\CNMur82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0410\CNMlr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0410\CNMsr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0410\CNMur82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0c0a\CNMlr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0c0a\CNMsr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0c0a\CNMur82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0816\CNMlr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0816\CNMsr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0816\CNMur82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0406\CNMlr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0406\CNMsr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0406\CNMur82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0414\CNMlr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0414\CNMsr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0414\CNMur82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\041D\CNMlr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\041D\CNMsr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\041D\CNMur82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\040b\CNMlr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\040b\CNMsr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\040b\CNMur82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0408\CNMlr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0408\CNMsr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0408\CNMur82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0415\CNMlr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0415\CNMsr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0415\CNMur82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0405\CNMlr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0405\CNMsr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0405\CNMur82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0419\CNMlr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0419\CNMsr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0419\CNMur82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\040e\CNMlr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\040e\CNMsr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\040e\CNMur82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0413\CNMlr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0413\CNMsr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0413\CNMur82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\041F\CNMlr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\041F\CNMsr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\041F\CNMur82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0401\CNMlr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0401\CNMsr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0401\CNMur82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0804\CNMlr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0804\CNMsr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0804\CNMur82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0404\CNMlr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0404\CNMsr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0404\CNMur82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0412\CNMlr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0412\CNMsr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0412\CNMur82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\041E\CNMlr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\041E\CNMsr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\041E\CNMur82.dll
c:\Documents and Settings\LocalService\Application Data\Microsoft\UPnP Device Host\upnphost\udhisapi.dll
c:\Documents and Settings\DJAMEL\Application Data\Microsoft\IdentityCRL\PROD\ppcrlconfig.dll
c:\Documents and Settings\DJAMEL\Application Data\Mozilla\Firefox\Profiles\tw97vmqo.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\components\googletoolbar.dll
c:\Documents and Settings\DJAMEL\Application Data\Mozilla\Firefox\Profiles\tw97vmqo.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\components\metrics.dll
****** Fin du rapport DiagHelp
DiagHelp version v1.1.1 - http://www.malekal.com
excute le 11/06/2007 à 1:31:59,04
Liste des derniers fichies modifies/crees dans windir\system32
C:\WINDOWS\System32/drivers\hamachi.sys -->09/06/2007 21:41:16
C:\WINDOWS\System32/drivers\AvgAsCln.sys -->30/05/2007 14:10:42
C:\WINDOWS\System32/drivers\secdrv.sys -->19/05/2007 16:30:24
C:\WINDOWS\System32/drivers\fwdrv.err -->11/05/2007 17:36:10
C:\WINDOWS\System32/drivers\aswmon.sys -->30/04/2007 17:41:56
C:\WINDOWS\System32/drivers\aswmon2.sys -->30/04/2007 17:41:42
C:\WINDOWS\System32/drivers\aswRdr.sys -->30/04/2007 17:39:42
C:\WINDOWS\System32\wpa.dbl -->10/06/2007 23:59:06
C:\WINDOWS\System32\nvapps.xml -->10/06/2007 23:58:42
C:\WINDOWS\System32\Help.ico -->10/06/2007 23:47:22
C:\WINDOWS\System32\Uninstall.ico -->10/06/2007 23:47:22
C:\WINDOWS\System32\pavas.ico -->10/06/2007 23:47:22
C:\WINDOWS\System32\CmdLineExt.dll -->05/06/2007 18:17:20
C:\WINDOWS\System32\PerfStringBackup.INI -->18/05/2007 20:28:22
C:\WINDOWS\System32\perfh00C.dat -->18/05/2007 20:28:22
C:\WINDOWS\System32\perfc00C.dat -->18/05/2007 20:28:22
C:\WINDOWS\System32\perfh009.dat -->18/05/2007 20:28:22
C:\WINDOWS\System32\perfc009.dat -->18/05/2007 20:28:22
C:\WINDOWS\System32\CONFIG.NT -->07/05/2007 22:59:56
C:\WINDOWS\System32\aswBoot.exe -->30/04/2007 17:46:10
C:\WINDOWS\System32\AVASTSS.scr -->30/04/2007 17:35:28
C:\WINDOWS\System32\MRT.exe -->27/04/2007 22:45:12
C:\WINDOWS\System32\jupdate-1.6.0_01-b06.log -->21/04/2007 13:30:52
C:\WINDOWS\System32\msi.dll -->18/04/2007 18:14:18
C:\WINDOWS\System32\wups.dll -->16/04/2007 22:47:36
C:\WINDOWS\System32\wuaucpl.cpl.mui -->16/04/2007 22:47:26
C:\WINDOWS\System32\wuapi.dll.mui -->16/04/2007 22:46:54
C:\WINDOWS\System32\wuaueng.dll -->16/04/2007 22:45:54
C:\WINDOWS\System32\wuapi.dll -->16/04/2007 22:45:48
C:\WINDOWS\System32\wuaueng.dll.mui -->16/04/2007 22:45:42
C:\WINDOWS\System32\wucltui.dll -->16/04/2007 22:45:42
C:\WINDOWS\System32\wuaucpl.cpl -->16/04/2007 22:45:40
C:\WINDOWS\WindowsUpdate.log -->11/06/2007 01:24:36
C:\WINDOWS\wiadebug.log -->10/06/2007 23:58:50
C:\WINDOWS\bootstat.dat -->10/06/2007 23:58:36
C:\WINDOWS\SchedLgU.Txt -->10/06/2007 23:57:48
C:\WINDOWS\wiaservc.log -->10/06/2007 23:57:46
C:\WINDOWS\galaxy.ini -->09/06/2007 00:44:10
C:\WINDOWS\NeroDigital.ini -->08/06/2007 18:47:56
C:\WINDOWS\vpd.properties -->08/06/2007 13:02:56
C:\WINDOWS\PhotoSnapViewer.INI -->02/06/2007 20:02:46
C:\WINDOWS\GSdx9.INI -->30/05/2007 00:16:00
C:\WINDOWS\GSdx9 sse2.INI -->29/05/2007 23:43:58
C:\WINDOWS\ModemLog_AC97 Soft Data Fax Modem with SmartCP.txt -->27/05/2007 00:51:04
C:\WINDOWS\win.ini -->16/05/2007 16:19:28
C:\WINDOWS\mozver.dat -->20/04/2007 21:33:28
C:\WINDOWS\nsreg.dat -->20/04/2007 21:26:42
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\WINDOWS\system32
05/08/2004 14:00 6 144 csrss.exe
1 fichier(s) 6 144 octets
0 Rép(s) 25 628 672 000 octets libres
Contenu de Downloaded Program Files
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\WINDOWS\Downloaded Program Files
19/10/2006 06:41 <REP> .
19/10/2006 06:41 <REP> ..
19/10/2006 06:41 65 desktop.ini
25/06/2006 12:50 1 793 erma.inf
25/07/2002 17:13 24 576 dwusplay.dll
25/07/2002 17:13 196 608 dwusplay.exe
16/02/2005 16:15 401 408 isusweb.dll
22/09/2004 15:59 110 592 PURen-us.dll
15/10/2004 07:59 110 592 PURfr-xx.dll
13/11/2006 19:48 946 296 asquared.ocx
24/08/2006 08:28 141 424 asinst.dll
22/08/2006 09:06 537 asinst.inf
10 fichier(s) 1 933 891 octets
Total des fichiers listés :
10 fichier(s) 1 933 891 octets
2 Rép(s) 25 628 672 000 octets libres
Recherche de rootkit! (Merci S!Ri)
Recherche d'infections connues
Export des clefs sensibles..
Liste des fichiers en exception sur le pare-feu XP SP2
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"="C:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\Program Files\\Messenger\\msmsgs.exe"="C:\\Program Files\\Messenger\\msmsgs.exe:*:Enabled:Windows Messenger"
"C:\\Program Files\\eMule\\emule.exe"="C:\\Program Files\\eMule\\emule.exe:*
isabled:eMule""C:\\Program Files\\eChanblard\\emule.exe"="C:\\Program Files\\eChanblard\\emule.exe:*
isabled:eMule""C:\\Program Files\\Internet Explorer\\IEXPLORE.EXE"="C:\\Program Files\\Internet Explorer\\IEXPLORE.EXE:*
isabled:Internet Explorer""C:\\Documents and Settings\\DJAMEL\\Local Settings\\Temporary Internet Files\\Content.IE5\\ROLJCXM7\\incredimail_install[1].exe"="C:\\Documents and Settings\\DJAMEL\\Local Settings\\Temporary Internet Files\\Content.IE5\\ROLJCXM7\\incredimail_install[1].exe:*:Enabled:IncrediMail Installer"
"C:\\Program Files\\Electronic Arts\\Need for Speed Carbon\\NFSC.exe"="C:\\Program Files\\Electronic Arts\\Need for Speed Carbon\\NFSC.exe:*
isabled:NFSC""C:\\Program Files\\KONAMI\\Pro Evolution Soccer 6\\pes6.exe"="C:\\Program Files\\KONAMI\\Pro Evolution Soccer 6\\pes6.exe:*
isabled
es6.exe""C:\\Documents and Settings\\DJAMEL\\Mes documents\\JEUX\\romustrike\\romustrike.exe"="C:\\Documents and Settings\\DJAMEL\\Mes documents\\JEUX\\romustrike\\romustrike.exe:*
isabled:romustrike""C:\\WINDOWS\\System32\\dpnsvr.exe"="C:\\WINDOWS\\System32\\dpnsvr.exe:*
isabled:Microsoft DirectPlay8 Server""C:\\Program Files\\Wolfenstein - Enemy Territory\\ET.exe"="C:\\Program Files\\Wolfenstein - Enemy Territory\\ET.exe:*
isabled:ET""C:\\Program Files\\Microsoft Games\\Age of Empires II\\EMPIRES2.EXE"="C:\\Program Files\\Microsoft Games\\Age of Empires II\\EMPIRES2.EXE:*
isabled:Age of Empires II""C:\\WINDOWS\\System32\\dplaysvr.exe"="C:\\WINDOWS\\System32\\dplaysvr.exe:*
isabled:Microsoft DirectPlay Helper""C:\\Program Files\\Microsoft Games\\Age of Empires II\\age2_x1\\age2_x1.exe"="C:\\Program Files\\Microsoft Games\\Age of Empires II\\age2_x1\\age2_x1.exe:*
isabled:Age of Empires II Expansion""C:\\Program Files\\MSN Messenger\\msncall.exe"="C:\\Program Files\\MSN Messenger\\msncall.exe:*:Enabled:Windows Live Messenger 8.0 (Phone)"
"C:\\Program Files\\Atari\\Test Drive Unlimited\\TestDriveUnlimited.exe"="C:\\Program Files\\Atari\\Test Drive Unlimited\\TestDriveUnlimited.exe:*
isabled:Test Drive Unlimited""C:\\Program Files\\BluetoothPCDialer\\BluetoothPCDialer.exe"="C:\\Program Files\\BluetoothPCDialer\\BluetoothPCDialer.exe:*
isabled:BluetoothPCDialer""C:\\Program Files\\MSN Messenger\\MsnMsgr.Exe"="C:\\Program Files\\MSN Messenger\\MsnMsgr.Exe:*:Enabled:Windows Live Messenger 8.1"
"C:\\Program Files\\MSN Messenger\\livecall.exe"="C:\\Program Files\\MSN Messenger\\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"
"C:\\Program Files\\TrackMania Nations ESWC\\TmNationsESWC.exe"="C:\\Program Files\\TrackMania Nations ESWC\\TmNationsESWC.exe:*
isabled:TmNationsESWC""C:\\Program Files\\Sunbelt Software\\Personal Firewall\\kpf4gui.exe"="C:\\Program Files\\Sunbelt Software\\Personal Firewall\\kpf4gui.exe:*
isabled:Sunbelt Firewall GUI""C:\\Documents and Settings\\DJAMEL\\Program Files\\BitTorrent_DNA\\dna.exe"="C:\\Documents and Settings\\DJAMEL\\Program Files\\BitTorrent_DNA\\dna.exe:*:Enabled
NA""C:\\Program Files\\BitTorrent\\bittorrent.exe"="C:\\Program Files\\BitTorrent\\bittorrent.exe:*:Enabled:BitTorrent"
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\Program Files\\MSN Messenger\\msncall.exe"="C:\\Program Files\\MSN Messenger\\msncall.exe:*:Enabled:Windows Live Messenger 8.0 (Phone)"
"C:\\Program Files\\MSN Messenger\\MsnMsgr.Exe"="C:\\Program Files\\MSN Messenger\\MsnMsgr.Exe:*:Enabled:Windows Live Messenger 8.1"
"C:\\Program Files\\MSN Messenger\\livecall.exe"="C:\\Program Files\\MSN Messenger\\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"
Export de la clef SharedTaskScheduler
[SharedTaskScheduler]
"{438755C2-A8BA-11D1-B96B-00A0C90312E1}"="Pré-chargeur Browseui"
"{8C7461EF-2B13-11d2-BE35-3078302C2030}"="Démon de cache des catégories de composant"
Rechercher adresses sensibles dans le fichier HOSTS...
127.0.0.1 trial.updates.winsoftware.com ## added by CiD
catchme 0.3.692 W2K/XP/Vista - userland rootkit detector by Gmer, http://www.gmer.net
Rootkit scan 2007-06-11 01:32:23
Windows 5.1.2600 Service Pack 2 FAT NTAPI
scanning hidden files ...
scan completed successfully
hidden files: 0
KProcCheck Version 0.2-beta1 Proof-of-Concept by SIG^2 (www.security.org.sg)
Process list by traversal of KiWaitListHead
4 - System
312 - cmd.exe
392 - CDAC11BA.EXE
552 - ASHSERV.EXE
664 - EXPLORER.EXE
900 - HCONTROL.EXE
972 - SYNTPENH.EXE
1016 - ASHDISP.EXE
1116 - 9WIFI.EXE
1192 - CSRSS.EXE
1216 - WINLOGON.EXE
1264 - SERVICES.EXE
1276 - LSASS.EXE
1388 - avgas.exe
1420 - SVCHOST.EXE
1476 - SVCHOST.EXE
1512 - SVCHOST.EXE
1572 - NMBGMONITOR.EXE
1604 - MSNMSGR.EXE
1688 - CTFMON.EXE
1728 - SVCHOST.EXE
1736 - DNA.EXE
1748 - NVSVC32.EXE
1904 - CHKMAIL.EXE
1952 - NMINDEXSTORESVR
1976 - guard.exe
2288 - wuauclt.exe
2428 - iexplore.exe
2448 - ashMaiSv.exe
2524 - ashWebSv.exe
3260 - alg.exe
Total number of processes = 31
NOTE: Under WinXP, this will not show all processes.
KProcCheck Version 0.2-beta1 Proof-of-Concept by SIG^2 (www.security.org.sg)
Driver/Module list by traversal of PsLoadedModuleList
804D7000 - \WINDOWS\system32\ntkrnlpa.exe
806CE000 - \WINDOWS\system32\hal.dll
F7A9C000 - \WINDOWS\system32\KDCOM.DLL
F79AC000 - \WINDOWS\system32\BOOTVID.dll
F73C1000 - sptd.sys
F7A9E000 - \WINDOWS\System32\Drivers\WMILIB.SYS
F73A9000 - \WINDOWS\System32\Drivers\SCSIPORT.SYS
F737A000 - ACPI.sys
F7369000 - pci.sys
F759C000 - ohci1394.sys
F75AC000 - \WINDOWS\system32\DRIVERS\1394BUS.SYS
F75BC000 - isapnp.sys
F79B0000 - compbatt.sys
F79B4000 - \WINDOWS\system32\DRIVERS\BATTC.SYS
F7B64000 - pciide.sys
F781C000 - \WINDOWS\system32\DRIVERS\PCIIDEX.SYS
F734B000 - pcmcia.sys
F75CC000 - MountMgr.sys
F732C000 - ftdisk.sys
F79B8000 - ACPIEC.sys
F7B65000 - \WINDOWS\system32\DRIVERS\OPRGHDLR.SYS
F7824000 - PartMgr.sys
F782C000 - sfsync02.sys
F75DC000 - VolSnap.sys
F7314000 - atapi.sys
F75EC000 - disk.sys
F75FC000 - \WINDOWS\system32\DRIVERS\CLASSPNP.SYS
F72F4000 - fltMgr.sys
F72E2000 - sr.sys
F760C000 - PxHelp20.sys
F72BF000 - Fastfat.sys
F72A8000 - KSecDD.sys
F761C000 - Defrag32b.sys
F727B000 - NDIS.sys
F7268000 - sfvfs02.sys
F7834000 - sfhlp02.sys
F7256000 - sfdrv01.sys
F783C000 - risdptsk.sys
F762C000 - rimsptsk.sys
F723B000 - Mup.sys
F7AA0000 - \SystemRoot\system32\DRIVERS\ATKACPI.sys
F6D57000 - \SystemRoot\system32\DRIVERS\nv4_mini.sys
F6D43000 - \SystemRoot\system32\DRIVERS\VIDEOPRT.SYS
F765C000 - \SystemRoot\system32\DRIVERS\i8042prt.sys
F785C000 - \SystemRoot\system32\DRIVERS\kbdclass.sys
F6D14000 - \SystemRoot\system32\DRIVERS\SynTP.sys
F7AA2000 - \SystemRoot\system32\DRIVERS\USBD.SYS
F7864000 - \SystemRoot\system32\DRIVERS\mouclass.sys
F6D03000 - \SystemRoot\System32\Drivers\Serial.SYS
F786C000 - \SystemRoot\system32\DRIVERS\irsir.sys
F7A8C000 - \SystemRoot\system32\DRIVERS\irenum.sys
F6CEF000 - \SystemRoot\system32\DRIVERS\parport.sys
F766C000 - \SystemRoot\system32\DRIVERS\imapi.sys
F767C000 - \SystemRoot\system32\DRIVERS\cdrom.sys
F768C000 - \SystemRoot\system32\DRIVERS\redbook.sys
F6CCC000 - \SystemRoot\system32\DRIVERS\ks.sys
F6C97000 - \SystemRoot\system32\DRIVERS\HSFHWSIS.sys
F6B9A000 - \SystemRoot\system32\DRIVERS\HSF_DPV.sys
F6AEB000 - \SystemRoot\system32\DRIVERS\HSF_CNXT.sys
F7874000 - \SystemRoot\System32\Drivers\Modem.SYS
F6771000 - \SystemRoot\system32\drivers\ALCXWDM.SYS
F674D000 - \SystemRoot\system32\drivers\portcls.sys
F769C000 - \SystemRoot\system32\drivers\drmk.sys
F787C000 - \SystemRoot\system32\DRIVERS\usbohci.sys
F672A000 - \SystemRoot\system32\DRIVERS\USBPORT.SYS
F7884000 - \SystemRoot\system32\DRIVERS\usbehci.sys
F66CF000 - \SystemRoot\system32\DRIVERS\bcmwl5.sys
F76AC000 - \SystemRoot\system32\DRIVERS\nic1394.sys
F66BC000 - \SystemRoot\system32\DRIVERS\Rtlnicxp.sys
F6672000 - \SystemRoot\System32\Drivers\a8dzv6a1.SYS
F6628000 - \SystemRoot\System32\Drivers\al5gfo4n.SYS
F71DB000 - \SystemRoot\system32\DRIVERS\CmBatt.sys
F76BC000 - \SystemRoot\system32\DRIVERS\AmdK8.sys
F70EC000 - \SystemRoot\system32\DRIVERS\audstub.sys
F791C000 - \SystemRoot\system32\DRIVERS\rasirda.sys
F7924000 - \SystemRoot\system32\DRIVERS\TDI.SYS
F76CC000 - \SystemRoot\system32\DRIVERS\rasl2tp.sys
F71D3000 - \SystemRoot\system32\DRIVERS\ndistapi.sys
F65DF000 - \SystemRoot\system32\DRIVERS\ndiswan.sys
F76DC000 - \SystemRoot\system32\DRIVERS\raspppoe.sys
F76EC000 - \SystemRoot\system32\DRIVERS\raspptp.sys
F652E000 - \SystemRoot\system32\DRIVERS\psched.sys
F76FC000 - \SystemRoot\system32\DRIVERS\msgpc.sys
F792C000 - \SystemRoot\system32\DRIVERS\ptilink.sys
F7934000 - \SystemRoot\system32\DRIVERS\raspti.sys
F770C000 - \SystemRoot\system32\DRIVERS\termdd.sys
F7AAC000 - \SystemRoot\system32\DRIVERS\swenum.sys
F64FA000 - \SystemRoot\system32\DRIVERS\update.sys
F71C7000 - \SystemRoot\system32\DRIVERS\mssmbios.sys
F771C000 - \SystemRoot\System32\Drivers\NDProxy.SYS
F772C000 - \SystemRoot\system32\DRIVERS\usbhub.sys
F7AB0000 - \SystemRoot\System32\Drivers\Fs_Rec.SYS
F7C39000 - \SystemRoot\System32\Drivers\Null.SYS
F7AB2000 - \SystemRoot\System32\Drivers\Beep.SYS
F7C3E000 - \SystemRoot\System32\DRIVERS\AvgAsCln.sys
F7964000 - \SystemRoot\System32\drivers\vga.sys
F7AB4000 - \SystemRoot\System32\Drivers\mnmdd.SYS
F7AB6000 - \SystemRoot\System32\DRIVERS\RDPCDD.sys
F796C000 - \SystemRoot\System32\Drivers\Msfs.SYS
F7974000 - \SystemRoot\System32\Drivers\Npfs.SYS
F71EB000 - \SystemRoot\system32\DRIVERS\rasacd.sys
F4477000 - \SystemRoot\system32\DRIVERS\ipsec.sys
F441F000 - \SystemRoot\system32\DRIVERS\tcpip.sys
F773C000 - \SystemRoot\System32\Drivers\aswTdi.SYS
F43F7000 - \SystemRoot\system32\DRIVERS\netbt.sys
F43D5000 - \SystemRoot\System32\drivers\afd.sys
F774C000 - \SystemRoot\system32\DRIVERS\netbios.sys
F797C000 - \SystemRoot\System32\Drivers\StarOpen.SYS
F43AA000 - \SystemRoot\system32\DRIVERS\rdbss.sys
F433B000 - \SystemRoot\system32\DRIVERS\mrxsmb.sys
F776C000 - \SystemRoot\System32\Drivers\Fips.SYS
F431A000 - \SystemRoot\system32\DRIVERS\ipnat.sys
F777C000 - \SystemRoot\system32\DRIVERS\wanarp.sys
F778C000 - \SystemRoot\system32\DRIVERS\arp1394.sys
F7C52000 - \??\C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.sys
F7984000 - \SystemRoot\System32\Drivers\Aavmker4.SYS
F6606000 - \SystemRoot\system32\DRIVERS\hidusb.sys
F77AC000 - \SystemRoot\system32\DRIVERS\HIDCLASS.SYS
F798C000 - \SystemRoot\system32\DRIVERS\HIDPARSE.SYS
F77BC000 - \SystemRoot\System32\Drivers\Cdfs.SYS
F41F4000 - \SystemRoot\system32\DRIVERS\WlanUIG.sys
F4144000 - \SystemRoot\System32\Drivers\SynMini.sys
F77CC000 - \SystemRoot\System32\Drivers\STREAM.SYS
F7994000 - \SystemRoot\System32\Drivers\SynCamd.sys
F40C9000 - \SystemRoot\System32\Drivers\SynPin.sys
F36CA000 - \SystemRoot\System32\Drivers\SynPipe.sys
F6602000 - \SystemRoot\System32\Drivers\SYNSAM.SYS
F7AB8000 - \SystemRoot\System32\Drivers\SynScan.sys
F36B2000 - \SystemRoot\System32\Drivers\dump_atapi.sys
F7ABA000 - \SystemRoot\System32\Drivers\dump_WMILIB.SYS
BF800000 - \SystemRoot\System32\win32k.sys
F64EE000 - \SystemRoot\System32\drivers\Dxapi.sys
F799C000 - \SystemRoot\System32\watchdog.sys
BF9C3000 - \SystemRoot\System32\drivers\dxg.sys
F719D000 - \SystemRoot\System32\drivers\dxgthk.sys
BF9D5000 - \SystemRoot\System32\nv4_disp.dll
BAC5A000 - \SystemRoot\system32\DRIVERS\irda.sys
BAD04000 - \SystemRoot\system32\DRIVERS\ndisuio.sys
BA32C000 - \SystemRoot\System32\Drivers\aswMon2.SYS
B9FDF000 - \SystemRoot\system32\DRIVERS\mrxdav.sys
B9DEA000 - \SystemRoot\system32\drivers\wdmaud.sys
B9F3F000 - \SystemRoot\system32\drivers\sysaudio.sys
B9F93000 - \??\C:\WINDOWS\system32\drivers\CdaC15BA.SYS
B9E47000 - \SystemRoot\System32\Drivers\Defrag32.SYS
B9B29000 - \SystemRoot\System32\Drivers\HTTP.sys
B9E1F000 - \SystemRoot\system32\DRIVERS\mdmxsdk.sys
B9A0F000 - \SystemRoot\system32\DRIVERS\srv.sys
B99BF000 - \SystemRoot\system32\DRIVERS\secdrv.sys
B9803000 - \??\C:\WINDOWS\system32\ASNDIS5.SYS
F78F4000 - \SystemRoot\System32\Drivers\PCASp50.sys
B8C7B000 - \SystemRoot\System32\Drivers\aswRdr.SYS
BFFA0000 * ??? --[Hidden]--
B6A87000 - \SystemRoot\system32\drivers\kmixer.sys
F6622000 - \SystemRoot\System32\DRIVERS\KProcCheck.sys
Total number of drivers = 154
Liste des programmes installes
Adobe Bridge 1.0
Adobe Common File Installer
Adobe Flash Player 9 ActiveX
Adobe Help Center 2.0
Adobe Photoshop CS2
Adobe Photoshop CS2
Adobe Premiere Pro 2.0
Adobe Premiere Pro 2.0
Adobe Reader 7.0.8 - Français
Adobe Shockwave Player
Adobe Stock Photos 1.0
Adobe Stock Photos 1.0
Alien Arena 2007
Archiveur WinRAR
ArcSoft PhotoStudio 5.5
Asus ChkMail
Asus_A6_ScreenSaver
ASUSDVD
Athlon 64 Processor Driver
ATK0100 ACPI UTILITY
avast! Antivirus
AVG Anti-Spyware 7.5
Barre d'outils Outlook de Windows Live (Windows Live Toolbar)
Bloqueur de fenêtres pop-up (Windows Live Toolbar)
Canon MP Navigator 3.0
Canon MP180
Canon Utilities Easy-PhotoPrint
CCleaner (remove only)
Détecteur de flux Windows Live Toolbar (Windows Live Toolbar)
DVD Shrink 3.2
Easy-WebPrint
EasyCleaner
Enregistrement utilisateur de Canon MP180
Extension de Windows Live Toolbar (Windows Live Toolbar)
Google Toolbar for Internet Explorer
GTA San Andreas
GTK+ 2.10.6-1 runtime environment
Hijackthis Version Française 1.99.0.1
Hotfix for Windows Media Format 11 SDK (KB929399)
Hotfix for Windows XP (KB926239)
J2SE Runtime Environment 5.0 Update 10
J2SE Runtime Environment 5.0 Update 11
J2SE Runtime Environment 5.0 Update 9
Java(TM) SE Runtime Environment 6 Update 1
K-Lite Mega Codec Pack 1.59
Lecteur Windows Media 11
Menus intelligents (Windows Live Toolbar)
Messenger Plus! Live & Sponsor (CiD)
Microsoft Compression Client Pack 1.0 for Windows XP
Microsoft Office Access MUI (French) 2007
Microsoft Office Excel MUI (French) 2007
Microsoft Office InfoPath MUI (French) 2007
Microsoft Office Outlook MUI (French) 2007
Microsoft Office PowerPoint MUI (French) 2007
Microsoft Office Professional Plus 2007
Microsoft Office Professional Plus 2007
Microsoft Office Proof (Arabic) 2007
Microsoft Office Proof (Dutch) 2007
Microsoft Office Proof (English) 2007
Microsoft Office Proof (French) 2007
Microsoft Office Proof (German) 2007
Microsoft Office Proof (Spanish) 2007
Microsoft Office Proofing (French) 2007
Microsoft Office Publisher MUI (French) 2007
Microsoft Office Shared MUI (French) 2007
Microsoft Office Word MUI (French) 2007
Microsoft Software Update for Web Folders (French) 12
Microsoft User-Mode Driver Framework Feature Pack 1.0
Mise à jour de sécurité pour Lecteur Windows Media 6.4 (KB925398)
Mise à jour de sécurité pour Step by Step Interactive Training (KB923723)
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB928090)
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB929969)
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB931768)
Mise à jour de sécurité pour Windows XP (KB918118)
Mise à jour de sécurité pour Windows XP (KB923694)
Mise à jour de sécurité pour Windows XP (KB924667)
Mise à jour de sécurité pour Windows XP (KB925902)
Mise à jour de sécurité pour Windows XP (KB926255)
Mise à jour de sécurité pour Windows XP (KB926436)
Mise à jour de sécurité pour Windows XP (KB927779)
Mise à jour de sécurité pour Windows XP (KB927802)
Mise à jour de sécurité pour Windows XP (KB928255)
Mise à jour de sécurité pour Windows XP (KB928843)
Mise à jour de sécurité pour Windows XP (KB930178)
Mise à jour de sécurité pour Windows XP (KB931261)
Mise à jour de sécurité pour Windows XP (KB931784)
Mise à jour de sécurité pour Windows XP (KB932168)
Mise à jour pour Windows XP (KB927891)
Mise à jour pour Windows XP (KB929338)
Mise à jour pour Windows XP (KB930916)
Mise à jour pour Windows XP (KB931836)
Mozilla Firefox (2.0.0.4)
MSXML 4.0 SP2 (KB927978)
Need for Speed™ Carbon
Nero 7 Ultra Edition
Nero PhotoShow Deluxe 4
Neuf - Kit de connexion
NVIDIA Drivers
OneCare Advisor (Windows Live Toolbar)
PerfectDisk
Power4 Gear
QuickTime Alternative 1.76
Realtek AC'97 Audio
REALTEK Gigabit and Fast Ethernet NIC Driver
SafeCast Shared Components
SAMSUNG Mobile USB Modem ^^
Samsung PC Studio
Samsung PC Studio
Samsung PC Studio
Samsung PC Studio 3 USB Driver Installer
ScanSoft OmniPage SE 4.0
Security Update for CAPICOM (KB931906)
Security Update for CAPICOM (KB931906)
Security Update for Excel 2007 (KB934670)
Security Update for Office 2007 (KB934062)
Soft Data Fax Modem with SmartCP
SopCast 1.1.2
Synaptics Pointing Device Driver
TrackMania Nations ESWC - Update 2
Update for Office 2007 (KB932080)
Update for Office 2007 (KB933688)
Update for Office 2007 (KB934393)
Update for Outlook 2007 Junk Email Filter (KB934655)
Update for Word 2007 (KB934173)
USB2.0 1.3M Web Cam
Virtua Tennis 3
WebFldrs XP
Windows Genuine Advantage Notifications (KB905474)
Windows Genuine Advantage Validation Tool (KB892130)
Windows Internet Explorer 7
Windows Live Favorites pour Windows Live Toolbar
Windows Live Messenger
Windows Live Sign-in Assistant
Windows Live Toolbar
Windows Live Toolbar
Windows Media Format 11 runtime
WinFlash
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Program Files
19/10/2006 06:35 <REP> .
19/10/2006 06:35 <REP> ..
19/10/2006 07:08 <REP> Adobe
12/12/2006 11:30 <REP> Alcohol Soft
12/12/2006 16:46 <REP> Alwil Software
19/10/2006 06:50 <REP> AMD
28/02/2007 15:01 <REP> ArcSoft
19/10/2006 06:51 <REP> Asus
19/10/2006 06:55 <REP> ASUSTeK
19/10/2006 06:48 <REP> AvRack
09/06/2007 22:01 <REP> BitTorrent
02/04/2007 11:19 <REP> BluetoothPCDialer
28/02/2007 14:57 <REP> Canon
12/12/2006 11:24 <REP> CCleaner
13/02/2007 23:15 <REP> Common Files
19/10/2006 06:40 <REP> ComPlus Applications
19/10/2006 06:36 <REP> CONEXANT
29/03/2007 16:00 <REP> DAEMON Tools
17/03/2007 11:40 <REP> Dictionnaire
17/05/2007 22:49 <REP> DivX
31/03/2007 21:33 <REP> DJ show
12/12/2006 16:57 <REP> DVD Shrink
11/02/2007 12:12 <REP> eChanblard
13/02/2007 18:25 <REP> Electronic Arts
19/10/2006 06:35 <REP> Fichiers communs
03/02/2007 00:20 <REP> Free Audio Pack
05/01/2007 11:17 <REP> Google
10/06/2007 23:28 <REP> Grisoft
09/06/2007 23:36 <REP> Hijackthis Version Française
19/10/2006 06:40 <REP> Internet Explorer
12/12/2006 16:57 <REP> Java
12/12/2006 16:52 <REP> K-Lite Codec Pack
12/12/2006 16:53 <REP> Media Player Classic
31/03/2007 18:48 <REP> Messenger Plus! Live
09/05/2007 21:08 <REP> Microsoft CAPICOM 2.1.0.2
19/10/2006 06:42 <REP> microsoft frontpage
12/12/2006 11:36 <REP> Microsoft Office
12/12/2006 11:41 <REP> Microsoft Visual Studio
12/12/2006 11:42 <REP> Microsoft Works
19/10/2006 06:41 <REP> Movie Maker
20/04/2007 21:26 <REP> Mozilla Firefox
12/12/2006 11:41 <REP> MSBuild
19/10/2006 06:39 <REP> MSN
19/10/2006 06:40 <REP> MSN Gaming Zone
16/03/2007 23:02 <REP> MSN Messenger
12/12/2006 12:34 <REP> MSXML 4.0
11/01/2007 22:45 <REP> Multi_Media
12/12/2006 11:15 <REP> Nero
19/10/2006 06:40 <REP> NetMeeting
26/12/2006 10:26 <REP> Neuf
19/10/2006 06:40 <REP> Online Services
19/10/2006 06:40 <REP> Outlook Express
12/12/2006 16:53 <REP> QuickTime Alternative
12/12/2006 11:28 <REP> Raxco
19/10/2006 06:48 <REP> Realtek AC97
19/10/2006 06:48 <REP> Realtek Sound Manager
02/02/2007 23:03 <REP> Replay Converter
08/06/2007 11:50 <REP> Rockstar Games
05/02/2007 20:20 <REP> Samsung
28/02/2007 15:02 <REP> ScanSoft
30/05/2007 00:52 <REP> Sega
19/10/2006 06:41 <REP> Services en ligne
19/05/2007 18:18 <REP> SopCast
11/06/2007 00:17 <REP> Spybot - Search & Destroy
08/05/2007 15:52 <REP> Sunbelt Software
19/10/2006 07:01 <REP> Symantec
19/10/2006 06:53 <REP> Synaptics
08/05/2007 13:38 <REP> TrackMania Nations ESWC
14/02/2007 00:02 <REP> UltraISO
06/02/2007 13:50 <REP> Windows Live Favorites
06/02/2007 13:47 <REP> Windows Live Toolbar
08/01/2007 18:50 <REP> Windows Media Connect 2
19/10/2006 06:40 <REP> Windows Media Player
19/10/2006 06:39 <REP> Windows NT
12/12/2006 11:23 <REP> WinRAR
19/10/2006 06:42 <REP> xerox
0 fichier(s) 0 octets
76 Rép(s) 25 628 246 016 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Program Files\fichiers communs
19/10/2006 06:35 <REP> .
19/10/2006 06:35 <REP> ..
19/10/2006 06:35 <REP> Microsoft Shared
19/10/2006 06:35 <REP> SpeechEngines
19/10/2006 06:35 <REP> ODBC
19/10/2006 06:40 <REP> System
19/10/2006 06:41 <REP> MSSoap
19/10/2006 06:41 <REP> Services
19/10/2006 06:48 <REP> InstallShield
19/10/2006 07:01 <REP> Symantec Shared
12/12/2006 16:54 <REP> Adobe
12/12/2006 16:57 <REP> Java
12/12/2006 11:15 <REP> Ahead
12/12/2006 11:20 <REP> Simple Star Shared
12/12/2006 11:28 <REP> Raxco
12/12/2006 11:41 <REP> DESIGNER
12/12/2006 11:46 <REP> Adobe Systems Shared
31/01/2007 18:32 <REP> GTK
11/02/2007 23:57 <REP> BOONTY Shared
12/02/2007 00:19 <REP> Macrovision Shared
28/02/2007 15:03 <REP> ScanSoft Shared
0 fichier(s) 0 octets
21 Rép(s) 25 628 246 016 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Program Files\fichiers communs\Microsoft Shared\Web Folders
19/10/2006 07:00 <REP> .
19/10/2006 07:00 <REP> ..
07/03/2001 07:00 127 033 MSOWS40c.DLL
03/06/1999 12:09 122 937 MSOWS409.DLL
12/12/2006 11:36 <REP> 1036
26/10/2006 19:49 970 528 MSONSEXT.DLL
26/10/2006 20:12 40 256 MSOSV.DLL
4 fichier(s) 1 260 754 octets
3 Rép(s) 25 628 246 016 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Program Files\common files
13/02/2007 23:15 <REP> .
13/02/2007 23:15 <REP> ..
13/02/2007 23:15 <REP> EasyInfo
0 fichier(s) 0 octets
3 Rép(s) 25 628 246 016 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\
12/05/2007 18:22 68 096 diff.exe
12/05/2007 18:22 103 424 grep.exe
2 fichier(s) 171 520 octets
0 Rép(s) 25 628 246 016 octets libres
c:\_OTMoveIt\MovedFiles\Documents and Settings\All Users\Application Data\scr fork cast wma\BALM FAST.exe
c:\_OTMoveIt\MovedFiles\Documents and Settings\DJAMEL\Application Data\acid type mode\cunkuntq.exe
c:\_OTMoveIt\MovedFiles\Documents and Settings\DJAMEL\Application Data\acid type mode\Long style bore proc.exe
c:\_OTMoveIt\MovedFiles\Documents and Settings\DJAMEL\Application Data\acid type mode\Vc jump second.exe
c:\_OTMoveIt\MovedFiles\Documents and Settings\DJAMEL\Application Data\acid type mode\window locks.exe
c:\Documents and Settings\Default User\Local Settings\Temp\Norton Internet Security 2005\CDSTART.EXE
c:\Documents and Settings\DJAMEL\Mes documents\Nouveau dossier\EasyClea.exe
c:\Documents and Settings\DJAMEL\Bureau\PocketDivXEncoder_0.3.60.exe
c:\Documents and Settings\DJAMEL\Bureau\DiagHelp\catchme.exe
c:\Documents and Settings\DJAMEL\Bureau\DiagHelp\diff.exe
c:\Documents and Settings\DJAMEL\Bureau\DiagHelp\dumphive.exe
c:\Documents and Settings\DJAMEL\Bureau\DiagHelp\FilesInfoCmd.exe
c:\Documents and Settings\DJAMEL\Bureau\DiagHelp\find2.exe
c:\Documents and Settings\DJAMEL\Bureau\DiagHelp\Fport.exe
c:\Documents and Settings\DJAMEL\Bureau\DiagHelp\grep.exe
c:\Documents and Settings\DJAMEL\Bureau\DiagHelp\KProcCheck.exe
c:\Documents and Settings\DJAMEL\Bureau\DiagHelp\LFiles.exe
c:\Documents and Settings\DJAMEL\Bureau\DiagHelp\LISTDLLS.exe
c:\Documents and Settings\DJAMEL\Bureau\DiagHelp\pslist.exe
c:\Documents and Settings\DJAMEL\Bureau\DiagHelp\streams.exe
c:\Documents and Settings\DJAMEL\Bureau\DiagHelp\swreg.exe
c:\Documents and Settings\DJAMEL\Application Data\MSNInstaller\msnauins.exe
c:\Documents and Settings\DJAMEL\Application Data\MySpace\IM\Install\MSIMClientSetup.1.0.673.0-static-fr.exe
c:\Documents and Settings\DJAMEL\Application Data\SopCast\adv\SopAdver.exe
c:\Documents and Settings\DJAMEL\Program Files\BitTorrent_DNA\dna.exe
c:\Documents and Settings\Invité\Local Settings\Temp\Norton Internet Security 2005\CDSTART.EXE
c:\Documents and Settings\All Users\Application Data\Microsoft\USMT\iconlib.dll
c:\Documents and Settings\All Users\Application Data\Microsoft\IdentityCRL\production\ppcrlconfig.dll
c:\Documents and Settings\All Users\Application Data\Nero\DrWeb\Drweb32.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0409\CNMlr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0409\CNMsr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0409\CNMur82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0411\CNMlr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0411\CNMsr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0411\CNMur82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\040c\CNMlr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\040c\CNMsr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\040c\CNMur82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0407\CNMlr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0407\CNMsr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0407\CNMur82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0410\CNMlr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0410\CNMsr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0410\CNMur82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0c0a\CNMlr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0c0a\CNMsr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0c0a\CNMur82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0816\CNMlr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0816\CNMsr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0816\CNMur82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0406\CNMlr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0406\CNMsr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0406\CNMur82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0414\CNMlr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0414\CNMsr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0414\CNMur82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\041D\CNMlr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\041D\CNMsr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\041D\CNMur82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\040b\CNMlr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\040b\CNMsr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\040b\CNMur82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0408\CNMlr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0408\CNMsr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0408\CNMur82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0415\CNMlr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0415\CNMsr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0415\CNMur82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0405\CNMlr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0405\CNMsr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0405\CNMur82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0419\CNMlr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0419\CNMsr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0419\CNMur82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\040e\CNMlr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\040e\CNMsr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\040e\CNMur82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0413\CNMlr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0413\CNMsr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0413\CNMur82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\041F\CNMlr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\041F\CNMsr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\041F\CNMur82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0401\CNMlr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0401\CNMsr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0401\CNMur82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0804\CNMlr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0804\CNMsr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0804\CNMur82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0404\CNMlr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0404\CNMsr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0404\CNMur82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0412\CNMlr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0412\CNMsr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\0412\CNMur82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\041E\CNMlr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\041E\CNMsr82.dll
c:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon MP180 Printer\LanguageModules\041E\CNMur82.dll
c:\Documents and Settings\LocalService\Application Data\Microsoft\UPnP Device Host\upnphost\udhisapi.dll
c:\Documents and Settings\DJAMEL\Application Data\Microsoft\IdentityCRL\PROD\ppcrlconfig.dll
c:\Documents and Settings\DJAMEL\Application Data\Mozilla\Firefox\Profiles\tw97vmqo.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\components\googletoolbar.dll
c:\Documents and Settings\DJAMEL\Application Data\Mozilla\Firefox\Profiles\tw97vmqo.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\components\metrics.dll
****** Fin du rapport DiagHelp
Bonjour
Tu vas aussi poster ce rapport
Télécharge SREng (par Smallfrogs) de ce lien:
http://www.kztechs.com/eng/download.html
Extrais tout son contenu sur ton Bureau
Du dossier sreng2 qui se trouve maintenant sur ton Bureau, double clique sur SREng.exe afin de lancer l'outil
Clique sur Smart Scan
Ensuite, clique sur le bouton [Scan]
Lorsque complété, clique sur le bouton [Save Reports]
Sauvegarde le rapport sur ton Bureau
Copie/colle le contenu du fichier SREnglLOG.log dans ta prochaine réponse
Tu vas aussi poster ce rapport
Télécharge SREng (par Smallfrogs) de ce lien:
http://www.kztechs.com/eng/download.html
Extrais tout son contenu sur ton Bureau
Du dossier sreng2 qui se trouve maintenant sur ton Bureau, double clique sur SREng.exe afin de lancer l'outil
Clique sur Smart Scan
Ensuite, clique sur le bouton [Scan]
Lorsque complété, clique sur le bouton [Save Reports]
Sauvegarde le rapport sur ton Bureau
Copie/colle le contenu du fichier SREnglLOG.log dans ta prochaine réponse
Salu je tiens a préciser que la mon pc retrouv la patate mais peut être que après sa va reprendre et tout taleur je n'avais plus de virus bref tiens
2007-06-11,23:41:24
System Repair Engineer 2.4.12.806
Smallfrogs (<a href="http://www.KZTechs.com" target="_blank">http://www.KZTechs.com</a>)
Windows XP Home Edition Service Pack 2 (Build 2600) - Administrative User - Completed Functions Allowed
Follow item(s) have been choosed:
All Boot Items (Including Registry, Startup Folders, Services and so on)
Browser Add-ons
Runing Processes (Including process model information)
File Associations
Winsock Provider
Autorun.Inf
HOSTS File
Boot Items
Registry
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
<BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}><"C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe"> [Nero AG]
<MsnMsgr><"C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background> [Microsoft Corporation]
<ctfmon.exe><C:\WINDOWS\system32\ctfmon.exe> [(Verified)Microsoft Windows Publisher]
<DAEMON Tools><"C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033> [(Verified)DAEMON Tools Code Signing Services]
[HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows]
<load><> [N/A]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<HControl><C:\WINDOWS\ATK0100\HControl.exe> [(Verified)Microsoft Windows Publisher]
<NvCplDaemon><RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup> [(Verified)Microsoft Windows Hardware Compatibility Publisher]
<nwiz><nwiz.exe /install> []
<SynTPEnh><C:\Program Files\Synaptics\SynTP\SynTPEnh.exe> [(Verified)Microsoft Windows Hardware Compatibility Publisher]
<RemoteControl><"C:\Program Files\ASUSTeK\ASUSDVD\PDVDServ.exe"> [Cyberlink Corp.]
<Power_Gear><C:\Program Files\ASUS\Power4 Gear\BatteryLife.exe 1> [N/A]
<avast!><C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe> [(Verified)ALWIL Software]
<SunJavaUpdateSched><"C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe"> [(Verified)"Sun Microsystems, Inc."]
<Autoconfigurateur WiFi Neuf><C:\Program Files\Neuf\Kit\WiFi\9wifi.exe> [Neuf]
<OpwareSE4><"C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe"> [ScanSoft, Inc.]
<!AVG Anti-Spyware><"C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized> [(Verified)GRISOFT LTD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
<shell><Explorer.exe> [(Verified)Microsoft Windows Component Publisher]
<Userinit><C:\WINDOWS\system32\userinit.exe,> [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]
<AppInit_DLLs><> [N/A]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
<UIHost><logonui.exe> [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
<{57B86673-276A-48B2-BAE7-C6DBB3020EB8}><C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\shellexecutehook.dll> [(Verified)GRISOFT LTD]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
<WPDShServiceObj><C:\WINDOWS\system32\WPDShServiceObj.dll> [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
<WinlogonNotify: WgaLogon><WgaLogon.dll> [(Verified)Microsoft Corporation]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\<{12d0ed0d-0ee0-4f90-8827-78cefb8f4988}]
<IE7 Uninstall Stub><C:\WINDOWS\system32\ieudinit.exe> [(Verified)Microsoft Windows Component Publisher]
==================================
Startup Folders
[ASUS ChkMail]
<C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage\ASUS ChkMail.lnk --> C:\PROGRA~1\Asus\ASUSCH~1\ChkMail.exe [asus]><N>
[Adobe Gamma]
<C:\Documents and Settings\DJAMEL\Menu Démarrer\Programmes\Démarrage\Adobe Gamma.lnk --> C:\PROGRA~1\FICHIE~1\Adobe\CALIBR~1\ADOBEG~1.EXE [Adobe Systems, Inc.]><N>
==================================
Services
[Adobe LM Service / Adobe LM Service][Stopped/Manual Start]
<"C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe"><Adobe Systems>
[Gestion d'applications / AppMgmt][Stopped/Manual Start]
<C:\WINDOWS\system32\svchost.exe -k netsvcs-->%SystemRoot%\System32\appmgmts.dll><N/A>
[avast! iAVS4 Control Service / aswUpdSv][Running/Auto Start]
<"C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe"><ALWIL Software>
[avast! Antivirus / avast! Antivirus][Running/Auto Start]
<"C:\Program Files\Alwil Software\Avast4\ashServ.exe"><ALWIL Software>
[avast! Mail Scanner / avast! Mail Scanner][Running/Manual Start]
<"C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service><ALWIL Software>
[avast! Web Scanner / avast! Web Scanner][Running/Manual Start]
<"C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service><ALWIL Software>
[AVG Anti-Spyware Guard / AVG Anti-Spyware Guard][Running/Auto Start]
<C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe><GRISOFT s.r.o.>
[Boonty Games / Boonty Games][Stopped/Manual Start]
<"C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe"><BOONTY>
[C-DillaCdaC11BA / C-DillaCdaC11BA][Running/Auto Start]
<C:\WINDOWS\system32\drivers\CDAC11BA.EXE><Macrovision>
[Google Updater Service / gusvc][Stopped/Manual Start]
<"C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe"><Google>
[Accès du périphérique d'interface utilisateur / HidServ][Stopped/Disabled]
<C:\WINDOWS\System32\svchost.exe -k netsvcs-->%SystemRoot%\System32\hidserv.dll><N/A>
[InstallDriver Table Manager / IDriverT][Stopped/Manual Start]
<"C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe"><Macrovision Corporation>
[NBService / NBService][Stopped/Manual Start]
<C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe><Nero AG>
[NVIDIA Display Driver Service / NVSvc][Running/Auto Start]
<C:\WINDOWS\system32\nvsvc32.exe><NVIDIA Corporation>
[PDEngine / PDEngine][Stopped/Manual Start]
<"C:\Program Files\Raxco\PerfectDisk\PDEngine.exe"><Raxco Software, Inc.>
[PDScheduler / PDSched][Running/Auto Start]
<"C:\Program Files\Raxco\PerfectDisk\PDSched.exe"><Raxco Software, Inc.>
[StarWind iSCSI Service / StarWindService][Running/Auto Start]
<C:\Program Files\Alcohol Soft\Alcohol 52\StarWind\StarWindService.exe><Rocket Division Software>
==================================
Drivers
[Service for Realtek AC97 Audio (WDM) / ALCXWDM][Running/Manual Start]
<system32\drivers\ALCXWDM.SYS><Realtek Semiconductor Corp.>
[Pilote de processeur AMD / AmdK8][Running/System Start]
<system32\DRIVERS\AmdK8.sys><Advanced Micro Devices>
[ASNDIS5 Protocol Driver / ASNDIS5][Running/Manual Start]
<\??\C:\WINDOWS\system32\ASNDIS5.SYS><Printing Communications Assoc., Inc. (PCAUSA)>
[AVG Anti-Spyware Driver / AVG Anti-Spyware Driver][Running/System Start]
<\??\C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.sys><N/A>
[AVG Anti-Spyware Clean Driver / AvgAsCln][Running/System Start]
<System32\DRIVERS\AvgAsCln.sys><GRISOFT, s.r.o.>
[Pilote pour carte réseau ASUS 802.11 / BCM43XX][Running/Manual Start]
<system32\DRIVERS\bcmwl5.sys><Broadcom Corporation>
[CdaC15BA / CdaC15BA][Running/Auto Start]
<\??\C:\WINDOWS\system32\drivers\CdaC15BA.SYS><Macrovision Europe Ltd>
[Hamachi Network Interface / hamachi][Stopped/Manual Start]
<system32\DRIVERS\hamachi.sys><LogMeIn, Inc.>
[HSFHWSIS / HSFHWSIS][Running/Manual Start]
<system32\DRIVERS\HSFHWSIS.sys><Conexant Systems, Inc.>
[HSF_DPV / HSF_DPV][Running/Manual Start]
<system32\DRIVERS\HSF_DPV.sys><Conexant Systems, Inc.>
[mdmxsdk / mdmxsdk][Running/Auto Start]
<system32\DRIVERS\mdmxsdk.sys><Conexant>
[ATK0100 ACPI UTILITY / MTsensor][Running/Manual Start]
<system32\DRIVERS\ATKACPI.sys><>
[NB 802.11g XG703 SP1 Driver / NBXG7031][Stopped/Manual Start]
<system32\DRIVERS\WlanUIG.sys><Conexant Systems, Inc.>
[nv / nv][Running/Manual Start]
<system32\DRIVERS\nv4_mini.sys><NVIDIA Corporation>
[PCASp50 NDIS Protocol Driver / PCASp50][Running/Manual Start]
<System32\Drivers\PCASp50.sys><Printing Communications Assoc., Inc. (PCAUSA)>
[Pilote de liaison parallèle directe / Ptilink][Running/Manual Start]
<system32\DRIVERS\ptilink.sys><Parallel Technologies, Inc.>
[PxHelp20 / PxHelp20][Running/Boot Start]
<\SystemRoot\system32\DRIVERS\PxHelp20.sys><Sonic Solutions>
[rimsptsk / rimsptsk][Running/Boot Start]
<\SystemRoot\system32\DRIVERS\rimsptsk.sys><REDC>
[risdptsk / risdptsk][Running/Boot Start]
<\SystemRoot\system32\DRIVERS\risdptsk.sys><REDC>
[Realtek 10/100/1000 NIC Family all in one NDIS XP Driver / RTL8023xp][Running/Manual Start]
<system32\DRIVERS\Rtlnicxp.sys><Realtek Semiconductor Corporation>
[Secdrv / Secdrv][Running/Auto Start]
<system32\DRIVERS\secdrv.sys><Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.>
[StarForce Protection Environment Driver (version 1.x) / sfdrv01][Running/Boot Start]
<\SystemRoot\System32\drivers\sfdrv01.sys><Protection Technology>
[StarForce Protection Helper Driver (version 2.x) / sfhlp02][Running/Boot Start]
<\SystemRoot\System32\drivers\sfhlp02.sys><Protection Technology>
[StarForce Protection Synchronization Driver (version 2.x) / sfsync02][Running/Boot Start]
<\SystemRoot\System32\drivers\sfsync02.sys><Protection Technology>
[StarForce Protection VFS Driver (version 2.x) / sfvfs02][Running/Boot Start]
<\SystemRoot\System32\drivers\sfvfs02.sys><Protection Technology>
[sptd / sptd][Running/Boot Start]
<\SystemRoot\System32\Drivers\sptd.sys><N/A>
[Pilote de périphérique de la restauration de lecteur / StMp3Rec][Stopped/Manual Start]
<System32\Drivers\StMp3Rec.sys><Generic>
[SYMIDSCO / SYMIDSCO][Stopped/Manual Start]
<\??\C:\PROGRA~1\FICHIE~1\SYMANT~1\SymcData\idsdefs\20040824.002\symidsco.sys><N/A>
[USB2.0 1.3M Web Cam / SynMini][Running/Manual Start]
<System32\Drivers\SynMini.sys><Syntek America Inc.>
[USB2.0 1.3M Web Cam Still Image / SynScan][Running/Manual Start]
<System32\Drivers\SynScan.sys><Syntek America Inc.>
[Synaptics TouchPad Driver / SynTP][Running/Manual Start]
<system32\DRIVERS\SynTP.sys><Synaptics, Inc.>
[winachsf / winachsf][Running/Manual Start]
<system32\DRIVERS\HSF_CNXT.sys><Conexant Systems, Inc.>
[Codec Teletext standard / WSTCODEC][Stopped/Manual Start]
<system32\DRIVERS\WSTCODEC.SYS><Microsoft Corporation>
==================================
Browser Add-ons
[EWPBrowseObject Class]
{68F9551E-0411-48E4-9AAF-4BC42A6A46BE} <C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll, >
[SSVHelper Class]
{761497BB-D6F0-462C-B6EB-D4DAF1D92D43} <C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll, Sun Microsystems, Inc.>
[Windows Live Sign-in Helper]
{9030D464-4C02-4ABF-8ECC-5164760863C6} <C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll, Microsoft Corporation>
[Google Toolbar Helper]
{AA58ED58-01DD-4d91-8333-CF10577473F7} <c:\program files\google\googletoolbar2.dll, Google Inc.>
[Google Toolbar Notifier BHO]
{AF69DE43-7D58-4638-B6FA-CE66B5AD205D} <C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.3558\swg.dll, Google Inc.>
[Windows Live Toolbar Helper]
{BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} <C:\Program Files\Windows Live Toolbar\msntb.dll, Microsoft Corporation>
[Java Plug-in 1.6.0_01]
{08B0E5C0-4FCB-11CF-AAA5-00401C608501} <C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll, Sun Microsystems, Inc.>
[Messenger]
{FB5F1910-F110-11d2-BB9E-00C04F795683} <C:\Program Files\Messenger\msmsgs.exe, N/A>
[&Google]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} <c:\program files\google\googletoolbar2.dll, Google Inc.>
[Windows Live Toolbar]
{BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} <C:\Program Files\Windows Live Toolbar\msntb.dll, Microsoft Corporation>
[Easy-WebPrint]
{327C2873-E90D-4c37-AA9D-10AC9BABA46C} <C:\Program Files\Canon\Easy-WebPrint\Toolband.dll, >
[Shockwave ActiveX Control]
{166B1BCA-3F9C-11CF-8075-444553540000} <C:\WINDOWS\system32\macromed\Director\SwDir.dll, Adobe Systems, Inc.>
[Java Plug-in 1.6.0_01]
{8AD9C840-044E-11D1-B3E9-00805F499D93} <C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll, Sun Microsystems, Inc.>
[ActiveScan Installer Class]
{9A9307A0-7DA4-4DAF-B042-5009F29E09E1} <C:\WINDOWS\Downloaded Program Files\asinst.dll, Panda Software>
[a-squared Scanner]
{BB21F850-63F4-4EC9-BF9D-565BD30C9AE9} <C:\WINDOWS\DOWNLO~1\asquared.ocx, Emsi Software GmbH>
[Java Plug-in 1.5.0_09]
{CAFEEFAC-0015-0000-0009-ABCDEFFEDCBA} <C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll, Sun Microsystems, Inc.>
[Java Plug-in 1.5.0_10]
{CAFEEFAC-0015-0000-0010-ABCDEFFEDCBA} <C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll, Sun Microsystems, Inc.>
[Java Plug-in 1.5.0_11]
{CAFEEFAC-0015-0000-0011-ABCDEFFEDCBA} <C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll, Sun Microsystems, Inc.>
[Java Plug-in 1.6.0_01]
{CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA} <C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll, Sun Microsystems, Inc.>
[Java Plug-in 1.6.0_01]
{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} <C:\Program Files\Java\jre1.6.0_01\bin\npjpi160_01.dll, Sun Microsystems, Inc.>
[Google Script Object]
{00EF2092-6AC5-47C0-BD25-CF2D5D657FEB} <c:\program files\google\googletoolbar2.dll, Google Inc.>
[QuickTime Object]
{02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} <C:\Program Files\QuickTime Alternative\QTSystem\QTPlugin.ocx, Apple Computer, Inc.>
[Outlook Today's Data-binding control]
{0468C085-CA5B-11D0-AF08-00609797F0E0} <C:\PROGRA~1\MICROS~2\Office12\OUTLCTL.DLL, >
[ActiveMovieControl Object]
{05589FA1-C356-11CE-BF01-00AA0055595A} <C:\WINDOWS\system32\wmpdxm.dll, Microsoft Corporation>
[PeerDraw Class]
{10072CEC-8CC1-11D1-986E-00A0C955B42E} <%CommonProgramFiles%\Microsoft Shared\VGX\vgx.dll, N/A>
[Shockwave ActiveX Control]
{166B1BCA-3F9C-11CF-8075-444553540000} <C:\WINDOWS\system32\macromed\Director\SwDir.dll, Adobe Systems, Inc.>
[Windows Genuine Advantage Validation Tool]
{17492023-C23A-453E-A040-C7C580BBF700} <C:\WINDOWS\system32\legitcheckcontrol.dll, Microsoft Corporation>
[Windows Media Player]
{22D6F312-B0F6-11D0-94AB-0080C74C7E95} <C:\WINDOWS\system32\wmpdxm.dll, Microsoft Corporation>
[&Google]
{2318C2B1-4965-11D4-9B18-009027A5CD4F} <c:\program files\google\googletoolbar2.dll, Google Inc.>
[Shockwave ActiveX Control]
{233C1507-6A77-46A4-9443-F871F945D258} <C:\WINDOWS\system32\Macromed\Director\SwDir.dll, Adobe Systems, Inc.>
[HTML Document]
{25336920-03F9-11CF-8FD0-00AA00686F13} <C:\WINDOWS\system32\mshtml.dll, Microsoft Corporation>
[XML DOM Document]
{2933BF90-7B36-11D2-B20E-00C04F983E60} <%SystemRoot%\system32\msxml3.dll, N/A>
[DHTML Edit Control Safe for Scripting for IE5]
{2D360201-FFF5-11D1-8D03-00A0C959BC0A} <C:\Program Files\Fichiers communs\Microsoft Shared\Triedit\dhtmled.ocx, Microsoft Corporation>
[HtmlDlgSafeHelper Class]
{3050F819-98B5-11CF-BB82-00AA00BDCE0B} <C:\WINDOWS\system32\mshtmled.dll, Microsoft Corporation>
[Easy-WebPrint]
{327C2873-E90D-4C37-AA9D-10AC9BABA46C} <C:\Program Files\Canon\Easy-WebPrint\Toolband.dll, >
[Tabular Data Control]
{333C7BC4-460F-11D0-BC04-0080C7055A83} <C:\WINDOWS\system32\tdc.ocx, Microsoft Corporation>
[IETag Factory]
{38481807-CA0E-42D2-BF39-B33AF135CC4D} <C:\PROGRA~1\FICHIE~1\MICROS~1\SMARTT~1\IETAG.DLL, Microsoft Corporation>
[QuickTime Object]
{4063BE15-3B08-470D-A0D5-B37161CFFD69} <C:\Program Files\QuickTime Alternative\QTSystem\QTPlugin.ocx, Apple Computer, Inc.>
[XML Document]
{48123BC4-99D9-11D1-A6B3-00C04FD91555} <%SystemRoot%\system32\msxml3.dll, N/A>
[]
{4F07F79F-087F-42CF-8B36-7A88D06088E9} <C:\PROGRA~1\MSNMES~1\MSGSC8~1.DLL, Microsoft Corporation>
[WUWebControl Class]
{6414512B-B978-451D-A0D8-FCFDF33E833C} <C:\WINDOWS\system32\wuweb.dll, Microsoft Corporation>
[EWPBrowseObject Class]
{68F9551E-0411-48E4-9AAF-4BC42A6A46BE} <C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll, >
[Windows Media Player]
{6BF52A52-394A-11D3-B153-00C04F79FAA6} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
[Active Desktop Mover]
{72267F6A-A6F9-11D0-BC94-00C04FB67863} <%SystemRoot%\system32\SHELL32.dll, N/A>
[Windows Media Services DRM Storage object]
{760C4B83-E211-11D2-BF3E-00805FBE84A6} <C:\WINDOWS\system32\msnetobj.dll, Microsoft Corporation>
[SSVHelper Class]
{761497BB-D6F0-462C-B6EB-D4DAF1D92D43} <C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll, Sun Microsystems, Inc.>
[Microsoft Web Browser]
{8856F961-340A-11D0-A96B-00C04FD705A2} <C:\WINDOWS\system32\ieframe.dll, Microsoft Corporation>
[XML DOM Document 4.0]
{88D969C0-F192-11D4-A65F-0040963251E5} <c:\WINDOWS\system32\msxml4.dll, Microsoft Corporation>
[Java Plug-in 1.6.0_01]
{8AD9C840-044E-11D1-B3E9-00805F499D93} <C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll, Sun Microsystems, Inc.>
[Windows Live Sign-in Helper]
{9030D464-4C02-4ABF-8ECC-5164760863C6} <C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll, Microsoft Corporation>
[ActiveScan Installer Class]
{9A9307A0-7DA4-4DAF-B042-5009F29E09E1} <C:\WINDOWS\Downloaded Program Files\asinst.dll, Panda Software>
[Google Toolbar Helper]
{AA58ED58-01DD-4D91-8333-CF10577473F7} <c:\program files\google\googletoolbar2.dll, Google Inc.>
[Google Toolbar Notifier BHO]
{AF69DE43-7D58-4638-B6FA-CE66B5AD205D} <C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.3558\swg.dll, Google Inc.>
[a-squared Scanner]
{BB21F850-63F4-4EC9-BF9D-565BD30C9AE9} <C:\WINDOWS\DOWNLO~1\asquared.ocx, Emsi Software GmbH>
[RDS.DataSpace]
{BD96C556-65A3-11D0-983A-00C04FC29E36} <C:\Program Files\Fichiers communs\System\msadc\msadco.dll, Microsoft Corporation>
[Windows Live Toolbar]
{BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} <C:\Program Files\Windows Live Toolbar\msntb.dll, Microsoft Corporation>
[Windows Live Toolbar Helper]
{BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} <C:\Program Files\Windows Live Toolbar\msntb.dll, Microsoft Corporation>
[OWSClientMiscApis Class]
{BDEADE3F-C265-11D0-BCED-00A0C90AB50F} <C:\PROGRA~1\MICROS~2\Office12\OWSCLT.DLL, Microsoft Corporation>
[Adobe PDF Reader]
{CA8A9780-280D-11CF-A24D-444553540000} <C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroPDF.dll, Adobe Systems, Inc.>
[Java Plug-in 1.5.0_09]
{CAFEEFAC-0015-0000-0009-ABCDEFFEDCBA} <C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll, Sun Microsystems, Inc.>
[AUDIO__MID Moniker Class]
{CD3AFA74-B84F-48F0-9393-7EDC34128127} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
[AUDIO__MP3 Moniker Class]
{CD3AFA76-B84F-48F0-9393-7EDC34128127} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
[AUDIO__WAV Moniker Class]
{CD3AFA7B-B84F-48F0-9393-7EDC34128127} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
[VIDEO__MPEG Moniker Class]
{CD3AFA89-B84F-48F0-9393-7EDC34128127} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
[VIDEO__X_MS_ASF Moniker Class]
{CD3AFA8F-B84F-48F0-9393-7EDC34128127} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
[VIDEO__X_MS_WMV Moniker Class]
{CD3AFA94-B84F-48F0-9393-7EDC34128127} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
[RealPlayer G2 Control]
{CFCDAA03-8BE4-11CF-B84B-0020AFBBCCFA} <C:\WINDOWS\system32\rmoc3260.dll, RealNetworks, Inc.>
[Windows Live Sign-in Control]
{D2517915-48CE-4286-970F-921E881B8C5C} <C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll, Microsoft Corporation>
[Shockwave Flash Object]
{D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\Flash9b.ocx, Adobe Systems, Inc.>
[QuickTimeCheck Class]
{DE4AF3B0-F4D4-11D3-B41A-0050DA2E6C21} <C:\Program Files\QuickTime Alternative\QTSystem\QuickTimeCheck.ocx, Apple Computer, Inc.>
[]
{E1771B7F-98BE-407F-BA67-AA16ADA5D0C5} <C:\PROGRA~1\MSNMES~1\MSGSC8~1.DLL, Microsoft Corporation>
[XML HTTP Request]
{ED8C108E-4349-11D2-91A4-00C04F7969E8} <%SystemRoot%\system32\msxml3.dll, N/A>
[]
{F06608C7-1874-4EEA-B3B2-DF99EBB144B8} <C:\PROGRA~1\MSNMES~1\MSGSC8~1.DLL, Microsoft Corporation>
[XML DOM Document 3.0]
{F5078F32-C551-11D3-89B9-0000F81FE221} <%SystemRoot%\system32\msxml3.dll, N/A>
[XML DOM Document]
{F6D90F11-9C73-11D3-B32E-00C04F990BB4} <%SystemRoot%\system32\msxml3.dll, N/A>
[XML HTTP]
{F6D90F16-9C73-11D3-B32E-00C04F990BB4} <%SystemRoot%\system32\msxml3.dll, N/A>
[&Windows Live Search]
<res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm, N/A>
[Add to Windows &Live Favorites]
<<a href="http://favorites.live.com/quickadd.aspx" target="_blank">http://favorites.live.com/quickadd.aspx</a>, N/A>
==================================
Running Processes
[PID: 932][\SystemRoot\System32\smss.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1028][\??\C:\WINDOWS\system32\csrss.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1052][\??\C:\WINDOWS\system32\winlogon.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\WgaLogon.dll] [Microsoft Corporation, 1.7.0018.5]
[C:\WINDOWS\system32\msacm32.drv] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[PID: 1096][C:\WINDOWS\system32\services.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\AppPatch\AcAdProc.dll] [Microsoft Corporation, 5.1.2600.3008 (xpsp.061004-0027)]
[PID: 1108][C:\WINDOWS\system32\lsass.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1252][C:\WINDOWS\system32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1328][C:\WINDOWS\system32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1364][C:\WINDOWS\System32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\Normaliz.dll] [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
[C:\WINDOWS\system32\iertutil.dll] [Microsoft Corporation, 7.00.6000.16441 (vista_gdr.070219-1500)]
[C:\WINDOWS\system32\wups2.dll] [Microsoft Corporation, 7.0.6000.374 (winmain(wmbla).070416-2057)]
[PID: 1900][C:\WINDOWS\Explorer.EXE] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\Normaliz.dll] [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
[C:\WINDOWS\system32\iertutil.dll] [Microsoft Corporation, 7.00.6000.16441 (vista_gdr.070219-1500)]
[C:\WINDOWS\system32\ieframe.dll] [Microsoft Corporation, 7.00.6000.16441 (vista_gdr.070219-1500)]
[C:\Program Files\ScanSoft\OmniPageSE4.0\OpHookSE4.dll] [ScanSoft, Inc., 15.0]
[C:\WINDOWS\system32\WPDShServiceObj.dll] [Microsoft Corporation, 5.2.5721.5145 (WMP_11.061018-2006)]
[C:\WINDOWS\system32\PortableDeviceTypes.dll] [Microsoft Corporation, 5.2.5721.5145 (WMP_11.061018-2006)]
[C:\WINDOWS\system32\PortableDeviceApi.dll] [Microsoft Corporation, 5.2.5721.5145 (WMP_11.061018-2006)]
[C:\WINDOWS\system32\msacm32.drv] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[C:\Program Files\Fichiers communs\Ahead\Lib\NeroDigitalExt.dll] [Nero AG, 2, 0, 0, 8]
[C:\Program Files\Fichiers communs\Ahead\Lib\MFC71.DLL] [Microsoft Corporation, 7.10.3077.0]
[C:\Program Files\Fichiers communs\Ahead\Lib\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\Program Files\Fichiers communs\Ahead\Lib\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[C:\Program Files\Adobe\Acrobat 7.0\ActiveX\PDFShell.dll] [Adobe Systems, Inc., 7.0.0.0]
[C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\shellexecutehook.dll] [GRISOFT s.r.o., 7, 5, 1, 36]
[C:\Program Files\Nero\Nero 7\Nero BackItUp\NBShell.dll] [Nero AG, 2, 7, 2, 0]
[C:\Program Files\Nero\Nero 7\Nero BackItUp\MFC71U.DLL] [Microsoft Corporation, 7.10.3077.0]
[C:\Program Files\Alwil Software\Avast4\ashShell.dll] [ALWIL Software, 4, 7, 997, 0]
[C:\Program Files\WinRAR\rarext.dll] [N/A, ]
[C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\context.dll] [GRISOFT s.r.o., 7, 5, 1, 36]
[C:\WINDOWS\system32\CmdLineExt.dll] [Sony DADC Austria AG., 1,1,221,0]
[C:\WINDOWS\system32\nvcpl.dll] [NVIDIA Corporation, 6.14.10.8204]
[C:\WINDOWS\system32\NVRSFR.DLL] [NVIDIA Corporation, 6.14.10.8204]
[C:\WINDOWS\system32\nvshell.dll] [, ]
[C:\Program Files\UltraISO\isoshell.dll] [EZB Systems, Inc., 1, 0, 0, 1]
[PID: 388][C:\WINDOWS\ATK0100\HControl.exe] [, 1043, 2, 15, 51]
[C:\WINDOWS\ATK0100\CMSSC.dll] [N/A, ]
[C:\WINDOWS\ATK0100\inter_f2.dll] [ATK, 1043, 2, 15, 46]
[C:\WINDOWS\ATK0100\ATKWLIOC.DLL] [ACTIONTEC Electronics,Inc, 2.01.02]
[C:\WINDOWS\ATK0100\SiSPkt.dll] [Silicon Integrated Systems Corp., 1, 0, 0, 45]
[C:\WINDOWS\ATK0100\ASUSNET.dll] [, 1, 9, 6, 0]
[C:\WINDOWS\ATK0100\ASW32N50.dll] [Printing Communications Assoc., Inc. (PCAUSA), 5.00.13.50]
[C:\Program Files\ScanSoft\OmniPageSE4.0\OpHookSE4.dll] [ScanSoft, Inc., 15.0]
[C:\WINDOWS\system32\SynCOM.dll] [Synaptics, Inc., 8.1.5 18Aug05]
[C:\WINDOWS\system32\msacm32.drv] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[PID: 412][C:\Program Files\Synaptics\SynTP\SynTPEnh.exe] [Synaptics, Inc., 8.1.5 18Aug05]
[C:\WINDOWS\system32\SynCOM.dll] [Synaptics, Inc., 8.1.5 18Aug05]
[C:\WINDOWS\system32\SynTPAPI.dll] [Synaptics, Inc., 8.1.5 18Aug05]
[C:\Program Files\ScanSoft\OmniPageSE4.0\OpHookSE4.dll] [ScanSoft, Inc., 15.0]
[PID: 420][C:\Program Files\ASUSTeK\ASUSDVD\PDVDServ.exe] [Cyberlink Corp., 6.00.1027]
[C:\Program Files\ASUSTeK\ASUSDVD\CLRCEngine2.dll] [CyberLink Corp., 3.2.2021 ]
[C:\Program Files\ScanSoft\OmniPageSE4.0\OpHookSE4.dll] [ScanSoft, Inc., 15.0]
[PID: 428][C:\Program Files\ASUS\Power4 Gear\BatteryLife.exe] [ASUSTeK Computer Inc., 1043, 6, 15, 112]
[C:\Program Files\ASUS\Power4 Gear\ATKMETHOD.dll] [ASUSTeK Computer Inc., 1043, 6, 15, 112]
[C:\Program Files\ScanSoft\OmniPageSE4.0\OpHookSE4.dll] [ScanSoft, Inc., 15.0]
[PID: 436][C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe] [ALWIL Software, 4, 7, 997, 0]
[C:\PROGRA~1\ALWILS~1\Avast4\aswCmnOS.dll] [ALWIL Software, 4, 7, 997, 0]
[C:\WINDOWS\system32\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[C:\WINDOWS\system32\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\PROGRA~1\ALWILS~1\Avast4\ashBase.dll] [ALWIL Software, 4, 7, 997, 0]
[C:\PROGRA~1\ALWILS~1\Avast4\aswCmnB.dll] [ALWIL Software, 4, 7, 997, 0]
[C:\PROGRA~1\ALWILS~1\Avast4\aswCmnS.dll] [ALWIL Software, 4, 7, 997, 0]
[C:\PROGRA~1\ALWILS~1\Avast4\ashTask.dll] [ALWIL Software, 4, 7, 997, 0]
[C:\PROGRA~1\ALWILS~1\Avast4\aswAux.dll] [ALWIL Software, 4, 7, 997, 0]
[C:\PROGRA~1\ALWILS~1\Avast4\Aavm4h.dll] [ALWIL Software, 4, 7, 997, 0]
[C:\Program Files\Alwil Software\Avast4\French\Base.dll] [ALWIL Software, 4, 7, 997, 0]
[C:\Program Files\Alwil Software\Avast4\French\Lang.dll] [ALWIL Software, 4, 7, 997, 0]
[C:\WINDOWS\system32\MFC71.DLL] [Microsoft Corporation, 7.10.3077.0]
[C:\PROGRA~1\ALWILS~1\Avast4\AavmRpch.dll] [ALWIL Software, 4, 7, 997, 0]
[c:\program files\alwil software\avast4\ahruimai.dll] [ALWIL Software, 4, 7, 997, 0]
[C:\PROGRA~1\ALWILS~1\Avast4\ashUInt.dll] [ALWIL Software, 4, 7, 997, 0]
[C:\PROGRA~1\ALWILS~1\Avast4\XT1922.dll] [Codejock Software, 1, 9, 4, 0]
[c:\program files\alwil software\avast4\ahruimes.dll] [ALWIL Software, 4, 7, 997, 0]
[c:\program files\alwil software\avast4\ahruins.dll] [ALWIL Software, 4, 7, 997, 0]
[c:\program files\alwil software\avast4\ahruiout.dll] [ALWIL Software, 4, 7, 997, 0]
[C:\WINDOWS\system32\MAPI32.dll] [Microsoft Corporation, 1.0.2536.0 (XPClient.010817-1148)]
[c:\program files\alwil software\avast4\ahruip2p.dll] [ALWIL Software, 4, 7, 997, 0]
[c:\program files\alwil software\avast4\ahruistd.dll] [ALWIL Software, 4, 7, 997, 0]
[c:\program files\alwil software\avast4\ahruiws.dll] [ALWIL Software, 4, 7, 997, 0]
[C:\Program Files\ScanSoft\OmniPageSE4.0\OpHookSE4.dll] [ScanSoft, Inc., 15.0]
[C:\Program Files\Alwil Software\Avast4\AavmGuih.dll] [ALWIL Software, 4, 7, 997, 0]
[PID: 500][C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe] [Sun Microsystems, Inc., 6.0.10.6]
[C:\WINDOWS\system32\Normaliz.dll] [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
[C:\WINDOWS\system32\iertutil.dll] [Microsoft Corporation, 7.00.6000.16441 (vista_gdr.070219-1500)]
[C:\Program Files\Java\jre1.6.0_01\bin\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[PID: 616][C:\Program Files\Neuf\Kit\WiFi\9wifi.exe] [Neuf, 6.6.21.1]
[C:\Program Files\Neuf\Kit\WiFi\W32N55.dll] [Printing Communications Assoc., Inc. (PCAUSA), 5.5.18.04]
[C:\Program Files\ScanSoft\OmniPageSE4.0\OpHookSE4.dll] [ScanSoft, Inc., 15.0]
[C:\Program Files\Neuf\Kit\WiFi\9wifips.dll] [N/A, ]
[PID: 632][C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe] [ScanSoft, Inc., 15.0]
[C:\Program Files\ScanSoft\OmniPageSE4.0\OpHookSE4.dll] [ScanSoft, Inc., 15.0]
[PID: 684][C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe] [Nero AG, 1, 5, 3, 0]
[C:\Program Files\Fichiers communs\Ahead\Lib\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[C:\Program Files\Fichiers communs\Ahead\Lib\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\Program Files\ScanSoft\OmniPageSE4.0\OpHookSE4.dll] [ScanSoft, Inc., 15.0]
[C:\Program Files\Fichiers communs\Ahead\Lib\AdvrCntr2.dll] [Nero AG, 5,16,1, 9000]
[C:\WINDOWS\system32\Normaliz.dll] [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
[C:\WINDOWS\system32\iertutil.dll] [Microsoft Corporation, 7.00.6000.16441 (vista_gdr.070219-1500)]
[C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexStoreSvrPS.dll] [Nero AG, 1, 5, 3, 0]
[C:\Program Files\Fichiers communs\Ahead\Lib\NMDataServices.dll] [Nero AG, 1, 5, 3, 0]
[PID: 720][C:\Program Files\MSN Messenger\MsnMsgr.Exe] [Microsoft Corporation, 8.1.0178.00]
[C:\Program Files\MSN Messenger\MSIMG32.dll] [Patchou, 4, 21, 0, 270]
[C:\Program Files\MSN Messenger\MSNCore.dll] [Microsoft Corporation, 8.1.0178.00]
[C:\WINDOWS\system32\Normaliz.dll] [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
[C:\WINDOWS\system32\iertutil.dll] [Microsoft Corporation, 7.00.6000.16441 (vista_gdr.070219-1500)]
[C:\Program Files\MSN Messenger\msidcrl40.dll] [Microsoft Corporation, 4.100.313.1]
[C:\Program Files\MSN Messenger\ContactsUX.dll] [Microsoft Corporation, 8.1.0178.00]
[C:\Program Files\Messenger Plus! Live\MsgPlusLive1.dll] [Patchou, 4, 21, 0, 270]
[C:\Program Files\Messenger Plus! Live\Detoured.dll] [N/A, ]
[C:\Program Files\ScanSoft\OmniPageSE4.0\OpHookSE4.dll] [ScanSoft, Inc., 15.0]
[C:\Program Files\MSN Messenger\msgslang.8.1.0178.00.dll] [Microsoft Corporation, 8.1.0178.00]
[C:\Program Files\MSN Messenger\msgsres.dll] [Microsoft Corporation, 8.1.0178.00]
[C:\Program Files\Messenger Plus! Live\MsgPlusLiveRes.dll] [Patchou, 4, 21, 0, 270]
[C:\Program Files\MSN Messenger\lcapi.dll] [Microsoft Corporation, 1.7.256.0 (RTC Version 4.3.5371.0) built by: msn8.0(rtbldlab)]
[C:\WINDOWS\system32\msdmo.dll] [, ]
[C:\Program Files\MSN Messenger\lcres.dll] [Microsoft Corp., 1.7.109.0 (RTC Version 4.3.5371.0) built by: msn8.0(rtbldlab)]
[C:\Program Files\MSN Messenger\RTMPLTFM.dll] [Microsoft Corporation, 3.0.5774.0 built by: media_msn80]
[C:\WINDOWS\system32\msacm32.drv] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[C:\Program Files\MSN Messenger\MSGSWCAM.dll] [Microsoft Corporation, 8.1.0178.00]
[C:\WINDOWS\system32\sirenacm.dll] [Microsoft Corp., 8.1.0178.00]
[C:\Program Files\Messenger Plus! Live\MPScripts.dll] [N/A, ]
[C:\Program Files\MSN Messenger\lmcdata.dll] [Microsoft Corporation, 8.1.0178.00]
[C:\Program Files\MSN Messenger\custsat.dll] [Microsoft Corporation, 9.0.3790.2428 (srv03_sp1_qfe.050422-1043)]
[C:\Program Files\MSN Messenger\abssm.dll] [Microsoft Corporation, 8.1.0178.00]
[C:\WINDOWS\system32\msaud32.acm] [Microsoft Corporation, 8.00.00.4487]
[C:\Program Files\Messenger Plus! Live\libsndfile.dll] [N/A, ]
[C:\Program Files\Messenger Plus! Live\lame_enc.dll] [N/A, ]
[C:\WINDOWS\system32\SynProp.ax] [Syntek America Inc., 1.0.0.2]
[C:\WINDOWS\system32\dshowext.ax] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\Program Files\MSN Messenger\contact.dll] [Microsoft Corporation, 8.1.0178.00]
[C:\WINDOWS\system32\ieframe.dll] [Microsoft Corporation, 7.00.6000.16441 (vista_gdr.070219-1500)]
[C:\PROGRA~1\FICHIE~1\MICROS~1\OFFICE12\MSOXMLMF.DLL] [Microsoft Corporation, 12.0.4518.1014]
[C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\shellexecutehook.dll] [GRISOFT s.r.o., 7, 5, 1, 36]
[C:\WINDOWS\system32\Macromed\Flash\Flash9b.ocx] [Adobe Systems, Inc., 9,0,28,0]
[C:\Program Files\MSN Messenger\wmv9vcm.dll] [Microsoft Corporation, 9.0.1.1184]
[PID: 736][C:\WINDOWS\system32\ctfmon.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\Program Files\ScanSoft\OmniPageSE4.0\OpHookSE4.dll] [ScanSoft, Inc., 15.0]
[PID: 776][C:\Program Files\DAEMON Tools\daemon.exe] [DT Soft Ltd., 4.08.0.0]
[C:\Program Files\DAEMON Tools\daemon.dll] [DT Soft Ltd., 4.08.0.0]
[C:\Program Files\DAEMON Tools\PFCTOC.DLL] [Padus(R), Inc., 1, 0, 0, 12]
[C:\Program Files\DAEMON Tools\Plugins\Images\bw5mount.dll] [, 1.1.0.0]
[C:\Program Files\DAEMON Tools\Plugins\Images\ccdmount.dll] [GENERIC, 1.10.0.0]
[C:\Program Files\DAEMON Tools\Plugins\Images\cuemount.dll] [DT Soft Ltd., 1.01.0.0]
[C:\Program Files\DAEMON Tools\Plugins\Images\mdsmount.dll] [DT Soft Ltd., 1.18.0.0]
[C:\Program Files\DAEMON Tools\Plugins\Images\nrgmount.dll] [DT Soft Ltd., 1.12.0.0]
[C:\Program Files\DAEMON Tools\Plugins\Images\pdimount.dll] [GENERIC, 1.01.0.0]
[C:\Program Files\ScanSoft\OmniPageSE4.0\OpHookSE4.dll] [ScanSoft, Inc., 15.0]
[PID: 820][C:\Program Files\Asus\Asus ChkMail\ChkMail.exe] [asus, 1043, 1, 15, 5]
[C:\Program Files\ScanSoft\OmniPageSE4.0\OpHookSE4.dll] [ScanSoft, Inc., 15.0]
[PID: 1476][C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexStoreSvr.exe] [Nero AG, 1, 5, 3, 0]
[C:\Program Files\Fichiers communs\Ahead\Lib\NMSQLDB.dll] [Nero AG, 1, 5, 3, 0]
[C:\Program Files\Fichiers communs\Ahead\Lib\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[C:\Program Files\Fichiers communs\Ahead\Lib\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\Program Files\ScanSoft\OmniPageSE4.0\OpHookSE4.dll] [ScanSoft, Inc., 15.0]
[C:\Program Files\Fichiers communs\Ahead\Lib\NMLogCxx.dll] [Nero AG, 1, 5, 3, 0]
[C:\Program Files\Fichiers communs\Ahead\Lib\log4cxx.dll] [Nero AG, 1, 0, 0, 0]
[C:\Program Files\Fichiers communs\Ahead\Lib\NMCoFoundation.dll] [Nero AG, 1, 5, 3, 0]
[C:\Program Files\Fichiers communs\Ahead\Lib\NMPluginBase.dll] [Nero AG, 1, 5, 3, 0]
[C:\Program Files\Fichiers communs\Ahead\Lib\NMFullTextExtraction.dll] [Nero AG, 1, 5, 3, 0]
[C:\WINDOWS\system32\iertutil.dll] [Microsoft Corporation, 7.00.6000.16441 (vista_gdr.070219-1500)]
[C:\Program Files\Fichiers communs\Ahead\Lib\NMSearchPluginSimilarImages.dll] [Nero AG, 1, 5, 3, 0]
[C:\Program Files\Fichiers communs\Ahead\Lib\NeroIPP.dll] [Nero AG, 4,5,13,0]
[C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexStoreSvrPS.dll] [Nero AG, 1, 5, 3, 0]
[C:\Program Files\Fichiers communs\Ahead\Lib\NMDataServices.dll] [Nero AG, 1, 5, 3, 0]
[C:\Program Files\Fichiers communs\Ahead\Lib\NMSlideShow.dll] [Nero AG, 1, 5, 3, 0]
[C:\Program Files\Adobe\Acrobat 7.0\Reader\AcroRdIF.dll] [Adobe Systems Incorporated, 7, 0, 5, 0]
[C:\Program Files\Adobe\Acrobat 7.0\Reader\AcroRd32.dll] [Adobe Systems Incorporated, 7.0.8.2006051600]
[C:\Program Files\Adobe\Acrobat 7.0\Reader\AGM.dll] [Adobe Systems Incorporated, 4.14.45]
[C:\Program Files\Adobe\Acrobat 7.0\Reader\CoolType.dll] [Adobe Systems Incorporated, 5.01.41]
[C:\Program Files\Adobe\Acrobat 7.0\Reader\BIB.dll] [Adobe Systems Incorporated, 1.1.18]
[C:\Program Files\Adobe\Acrobat 7.0\Reader\ACE.dll] [Adobe Systems Incorporated, 2.07.28]
[C:\Program Files\Adobe\Acrobat 7.0\Reader\JP2KLib.dll] [Adobe Systems Incorporated, 1.0.41402]
[C:\Program Files\Adobe\Acrobat 7.0\Reader\AXE16SharedExpat.dll] [Adobe Systems Incorporated, 3.2.402]
[PID: 3460][C:\WINDOWS\ATK0100\ATKOSD.exe] [, 1043, 2, 15, 51]
[C:\Program Files\ScanSoft\OmniPageSE4.0\OpHookSE4.dll] [ScanSoft, Inc., 15.0]
[PID: 3564][C:\Program Files\Internet Explorer\iexplore.exe] [Microsoft Corporation, 7.00.6000.16441 (vista_gdr.070219-1500)]
[C:\WINDOWS\system32\iertutil.dll] [Microsoft Corporation, 7.00.6000.16441 (vista_gdr.070219-1500)]
[C:\WINDOWS\system32\IEFRAME.dll] [Microsoft Corporation, 7.00.6000.16441 (vista_gdr.070219-1500)]
[C:\Program Files\ScanSoft\OmniPageSE4.0\OpHookSE4.dll] [ScanSoft, Inc., 15.0]
[C:\WINDOWS\system32\IEUI.dll] [Microsoft Corporation, 7.00.5730.11 (winmain(wmbla).061017-1135)]
[C:\WINDOWS\system32\xmllite.dll] [Microsoft Corporation, 1.00.1018.0]
[C:\Program Files\Microsoft Office\Office12\msohevi.dll] [Microsoft Corporation, 12.0.4518.1014]
[C:\Program Files\Internet Explorer\ieproxy.dll] [Microsoft Corporation, 7.00.5730.11 (winmain(wmbla).061017-1135)]
[C:\WINDOWS\system32\Normaliz.dll] [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
[c:\program files\google\googletoolbar2.dll] [Google Inc., 4, 0, 1601, 4978]
[C:\WINDOWS\system32\PortableDeviceApi.dll] [Microsoft Corporation, 5.2.5721.5145 (WMP_11.061018-2006)]
[C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll] [, 2, 6, 3, 0]
[C:\WINDOWS\system32\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\Program Files\Canon\Easy-WebPrint\EWPCore.dll] [, 2, 6, 3, 0]
[C:\WINDOWS\system32\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll] [Sun Microsystems, Inc., 6.0.10.6]
[C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll] [Microsoft Corporation, 4.000.249.1]
[C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\msidcrl40.dll] [Microsoft Corporation, 4.000.249.1]
[C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.3558\swg.dll] [Google Inc., 2, 0, 301, 3558]
[C:\Program Files\Windows Live Toolbar\msntb.dll] [Microsoft Corporation, 03.01.0000.0068]
[C:\Program Files\Windows Live Toolbar\fr-fr\mtbres.dll.mui] [Microsoft Corporation, 03.00.0001.2012]
[C:\Program Files\Windows Live Toolbar\mtbres.dll] [Microsoft Corporation, 03.01.0000.0068]
[C:\WINDOWS\system32\ieapfltr.dll] [Microsoft Corporation, 7.0.6000.16461]
[C:\WINDOWS\system32\Macromed\Flash\Flash9b.ocx] [Adobe Systems, Inc., 9,0,28,0]
[C:\WINDOWS\system32\msacm32.drv] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[PID: 2676][C:\Program Files\WinRAR\WinRAR.exe] [N/A, ]
[C:\Program Files\ScanSoft\OmniPageSE4.0\OpHookSE4.dll] [ScanSoft, Inc., 15.0]
[C:\Program Files\MSN Messenger\fsshext.8.1.0178.00.dll] [Microsoft Corporation, 8.1.0178.00]
[C:\WINDOWS\system32\wpdshext.dll] [Microsoft Corporation, 5.2.5721.5145 (WMP_11.061018-2006)]
[C:\WINDOWS\system32\PortableDeviceApi.dll] [Microsoft Corporation, 5.2.5721.5145 (WMP_11.061018-2006)]
[C:\WINDOWS\system32\Audiodev.dll] [Microsoft Corporation, 5.2.5721.5145 (WMP_11.061018-2006)]
[C:\WINDOWS\system32\Normaliz.dll] [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
[C:\WINDOWS\system32\iertutil.dll] [Microsoft Corporation, 7.00.6000.16441 (vista_gdr.070219-1500)]
[C:\WINDOWS\system32\ieframe.dll] [Microsoft Corporation, 7.00.6000.16441 (vista_gdr.070219-1500)]
[PID: 3676][C:\Documents and Settings\DJAMEL\Bureau\SREng.EXE] [Smallfrogs Studio, 2.4.12.806]
[C:\WINDOWS\system32\Normaliz.dll] [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
[C:\WINDOWS\system32\iertutil.dll] [Microsoft Corporation, 7.00.6000.16441 (vista_gdr.070219-1500)]
[C:\Program Files\ScanSoft\OmniPageSE4.0\OpHookSE4.dll] [ScanSoft, Inc., 15.0]
==================================
File Associations
.TXT OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE OK. ["%1" %*]
.COM OK. ["%1" %*]
.PIF OK. ["%1" %*]
.REG OK. [regedit.exe "%1"]
.BAT OK. ["%1" %*]
.SCR OK. ["%1" /S]
.CHM OK. ["C:\WINDOWS\hh.exe" %1]
.HLP OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK OK. [{00021401-0000-0000-C000-000000000046}]
==================================
Winsock Provider
N/A
==================================
Autorun.Inf
[D:\]
[autorun]
OPEN=setupSNK.exe
ICON=\SMRTNTKY\fcw.ico
ACTION=Assistant Réseau sans fil
==================================
HOSTS File
127.0.0.1 localhost
127.0.0.1 bin.errorprotector.com ## added by CiD
127.0.0.1 br.errorsafe.com ## added by CiD
127.0.0.1 br.winantivirus.com ## added by CiD
127.0.0.1 br.winfixer.com ## added by CiD
127.0.0.1 cdn.drivecleaner.com ## added by CiD
127.0.0.1 cdn.errorsafe.com ## added by CiD
127.0.0.1 cdn.winsoftware.com ## added by CiD
127.0.0.1 de.errorsafe.com ## added by CiD
127.0.0.1 de.winantivirus.com ## added by CiD
127.0.0.1 download.cdn.drivecleaner.com ## added by CiD
127.0.0.1 download.cdn.errorsafe.com ## added by CiD
127.0.0.1 download.cdn.winsoftware.com ## added by CiD
127.0.0.1 download.errorsafe.com ## added by CiD
127.0.0.1 download.systemdoctor.com ## added by CiD
127.0.0.1 download.winantispyware.com ## added by CiD
127.0.0.1 download.windrivecleaner.com ## added by CiD
127.0.0.1 download.winfixer.com ## added by CiD
127.0.0.1 drivecleaner.com ## added by CiD
127.0.0.1 dynamique.drivecleaner.com ## added by CiD
127.0.0.1 errorprotector.com ## added by CiD
127.0.0.1 errorsafe.com ## added by CiD
127.0.0.1 es.winantivirus.com ## added by CiD
127.0.0.1 fr.winantivirus.com ## added by CiD
127.0.0.1 fr.winfixer.com ## added by CiD
127.0.0.1 go.drivecleaner.com ## added by CiD
127.0.0.1 go.errorsafe.com ## added by CiD
127.0.0.1 go.winantispyware.com ## added by CiD
127.0.0.1 go.winantivirus.com ## added by CiD
127.0.0.1 hk.winantivirus.com ## added by CiD
127.0.0.1 instlog.errorsafe.com ## added by CiD
127.0.0.1 instlog.winantivirus.com ## added by CiD
127.0.0.1 instlog.winfixer.com ## added by CiD
127.0.0.1 jsp.drivecleaner.com ## added by CiD
127.0.0.1 kb.errorsafe.com ## added by CiD
127.0.0.1 kb.winantivirus.com ## added by CiD
127.0.0.1 nl.errorsafe.com ## added by CiD
127.0.0.1 se.errorsafe.com ## added by CiD
127.0.0.1 secure.drivecleaner.com ## added by CiD
127.0.0.1 secure.errorsafe.com ## added by CiD
127.0.0.1 secure.winantispam.com ## added by CiD
127.0.0.1 secure.winantispy.com ## added by CiD
127.0.0.1 secure.winantivirus.com ## added by CiD
127.0.0.1 support.winantivirus.com ## added by CiD
127.0.0.1 trial.updates.winsoftware.com ## added by CiD
127.0.0.1 ulog.winantivirus.com ## added by CiD
127.0.0.1 utils.errorsafe.com ## added by CiD
127.0.0.1 utils.winantivirus.com ## added by CiD
127.0.0.1 utils.winfixer.com ## added by CiD
127.0.0.1 winantispyware.com ## added by CiD
127.0.0.1 winantivirus.com ## added by CiD
127.0.0.1 winfixer.com ## added by CiD
127.0.0.1 winfixer2006.com ## added by CiD
127.0.0.1 winsoftware.com ## added by CiD
127.0.0.1 <a href="http://www.drivecleaner.com" target="_blank">www.drivecleaner.com</a> ## added by CiD
127.0.0.1 <a href="http://www.errorprotector.com" target="_blank">www.errorprotector.com</a> ## added by CiD
127.0.0.1 <a href="http://www.errorsafe.com" target="_blank">www.errorsafe.com</a> ## added by CiD
127.0.0.1 <a href="http://www.systemdoctor.com" target="_blank">www.systemdoctor.com</a> ## added by CiD
127.0.0.1 <a href="http://www.utils.winfixer.com" target="_blank">www.utils.winfixer.com</a> ## added by CiD
127.0.0.1 <a href="http://www.win-anti-virus-pro.com" target="_blank">www.win-anti-virus-pro.com</a> ## added by CiD
127.0.0.1 <a href="http://www.win-virus-pro.com" target="_blank">www.win-virus-pro.com</a> ## added by CiD
127.0.0.1 <a href="http://www.winantispam.com" target="_blank">www.winantispam.com</a> ## added by CiD
127.0.0.1 <a href="http://www.winantispy.com" target="_blank">www.winantispy.com</a> ## added by CiD
127.0.0.1 <a href="http://www.winantispyware.com" target="_blank">www.winantispyware.com</a> ## added by CiD
127.0.0.1 <a href="http://www.winantivirus.com" target="_blank">www.winantivirus.com</a> ## added by CiD
127.0.0.1 <a href="http://www.winantiviruspro.com" target="_blank">www.winantiviruspro.com</a> ## added by CiD
127.0.0.1 <a href="http://www.windrivecleaner.com" target="_blank">www.windrivecleaner.com</a> ## added by CiD
127.0.0.1 <a href="http://www.windrivesafe.com" target="_blank">www.windrivesafe.com</a> ## added by CiD
127.0.0.1 <a href="http://www.winfixer.com" target="_blank">www.winfixer.com</a> ## added by CiD
127.0.0.1 <a href="http://www.winfixer2006.com" target="_blank">www.winfixer2006.com</a> ## added by CiD
127.0.0.1 <a href="http://www.winsoftware.com" target="_blank">www.winsoftware.com</a> ## added by CiD
==================================
API HOOK
N/A
==================================
Hidden Process
N/A
==================================
2007-06-11,23:41:24
System Repair Engineer 2.4.12.806
Smallfrogs (http://www.KZTechs.com)
Windows XP Home Edition Service Pack 2 (Build 2600) - Administrative User - Completed Functions Allowed
Follow item(s) have been choosed:
All Boot Items (Including Registry, Startup Folders, Services and so on)
Browser Add-ons
Runing Processes (Including process model information)
File Associations
Winsock Provider
Autorun.Inf
HOSTS File
Boot Items
Registry
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
<BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}><"C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe"> [Nero AG]
<MsnMsgr><"C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background> [Microsoft Corporation]
<ctfmon.exe><C:\WINDOWS\system32\ctfmon.exe> [(Verified)Microsoft Windows Publisher]
<DAEMON Tools><"C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033> [(Verified)DAEMON Tools Code Signing Services]
[HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows]
<load><> [N/A]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<HControl><C:\WINDOWS\ATK0100\HControl.exe> [(Verified)Microsoft Windows Publisher]
<NvCplDaemon><RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup> [(Verified)Microsoft Windows Hardware Compatibility Publisher]
<nwiz><nwiz.exe /install> []
<SynTPEnh><C:\Program Files\Synaptics\SynTP\SynTPEnh.exe> [(Verified)Microsoft Windows Hardware Compatibility Publisher]
<RemoteControl><"C:\Program Files\ASUSTeK\ASUSDVD\PDVDServ.exe"> [Cyberlink Corp.]
<Power_Gear><C:\Program Files\ASUS\Power4 Gear\BatteryLife.exe 1> [N/A]
<avast!><C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe> [(Verified)ALWIL Software]
<SunJavaUpdateSched><"C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe"> [(Verified)"Sun Microsystems, Inc."]
<Autoconfigurateur WiFi Neuf><C:\Program Files\Neuf\Kit\WiFi\9wifi.exe> [Neuf]
<OpwareSE4><"C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe"> [ScanSoft, Inc.]
<!AVG Anti-Spyware><"C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized> [(Verified)GRISOFT LTD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
<shell><Explorer.exe> [(Verified)Microsoft Windows Component Publisher]
<Userinit><C:\WINDOWS\system32\userinit.exe,> [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]
<AppInit_DLLs><> [N/A]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
<UIHost><logonui.exe> [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
<{57B86673-276A-48B2-BAE7-C6DBB3020EB8}><C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\shellexecutehook.dll> [(Verified)GRISOFT LTD]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
<WPDShServiceObj><C:\WINDOWS\system32\WPDShServiceObj.dll> [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
<WinlogonNotify: WgaLogon><WgaLogon.dll> [(Verified)Microsoft Corporation]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\<{12d0ed0d-0ee0-4f90-8827-78cefb8f4988}]
<IE7 Uninstall Stub><C:\WINDOWS\system32\ieudinit.exe> [(Verified)Microsoft Windows Component Publisher]
==================================
Startup Folders
[ASUS ChkMail]
<C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage\ASUS ChkMail.lnk --> C:\PROGRA~1\Asus\ASUSCH~1\ChkMail.exe [asus]><N>
[Adobe Gamma]
<C:\Documents and Settings\DJAMEL\Menu Démarrer\Programmes\Démarrage\Adobe Gamma.lnk --> C:\PROGRA~1\FICHIE~1\Adobe\CALIBR~1\ADOBEG~1.EXE [Adobe Systems, Inc.]><N>
==================================
Services
[Adobe LM Service / Adobe LM Service][Stopped/Manual Start]
<"C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe"><Adobe Systems>
[Gestion d'applications / AppMgmt][Stopped/Manual Start]
<C:\WINDOWS\system32\svchost.exe -k netsvcs-->%SystemRoot%\System32\appmgmts.dll><N/A>
[avast! iAVS4 Control Service / aswUpdSv][Running/Auto Start]
<"C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe"><ALWIL Software>
[avast! Antivirus / avast! Antivirus][Running/Auto Start]
<"C:\Program Files\Alwil Software\Avast4\ashServ.exe"><ALWIL Software>
[avast! Mail Scanner / avast! Mail Scanner][Running/Manual Start]
<"C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service><ALWIL Software>
[avast! Web Scanner / avast! Web Scanner][Running/Manual Start]
<"C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service><ALWIL Software>
[AVG Anti-Spyware Guard / AVG Anti-Spyware Guard][Running/Auto Start]
<C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe><GRISOFT s.r.o.>
[Boonty Games / Boonty Games][Stopped/Manual Start]
<"C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe"><BOONTY>
[C-DillaCdaC11BA / C-DillaCdaC11BA][Running/Auto Start]
<C:\WINDOWS\system32\drivers\CDAC11BA.EXE><Macrovision>
[Google Updater Service / gusvc][Stopped/Manual Start]
<"C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe"><Google>
[Accès du périphérique d'interface utilisateur / HidServ][Stopped/Disabled]
<C:\WINDOWS\System32\svchost.exe -k netsvcs-->%SystemRoot%\System32\hidserv.dll><N/A>
[InstallDriver Table Manager / IDriverT][Stopped/Manual Start]
<"C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe"><Macrovision Corporation>
[NBService / NBService][Stopped/Manual Start]
<C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe><Nero AG>
[NVIDIA Display Driver Service / NVSvc][Running/Auto Start]
<C:\WINDOWS\system32\nvsvc32.exe><NVIDIA Corporation>
[PDEngine / PDEngine][Stopped/Manual Start]
<"C:\Program Files\Raxco\PerfectDisk\PDEngine.exe"><Raxco Software, Inc.>
[PDScheduler / PDSched][Running/Auto Start]
<"C:\Program Files\Raxco\PerfectDisk\PDSched.exe"><Raxco Software, Inc.>
[StarWind iSCSI Service / StarWindService][Running/Auto Start]
<C:\Program Files\Alcohol Soft\Alcohol 52\StarWind\StarWindService.exe><Rocket Division Software>
==================================
Drivers
[Service for Realtek AC97 Audio (WDM) / ALCXWDM][Running/Manual Start]
<system32\drivers\ALCXWDM.SYS><Realtek Semiconductor Corp.>
[Pilote de processeur AMD / AmdK8][Running/System Start]
<system32\DRIVERS\AmdK8.sys><Advanced Micro Devices>
[ASNDIS5 Protocol Driver / ASNDIS5][Running/Manual Start]
<\??\C:\WINDOWS\system32\ASNDIS5.SYS><Printing Communications Assoc., Inc. (PCAUSA)>
[AVG Anti-Spyware Driver / AVG Anti-Spyware Driver][Running/System Start]
<\??\C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.sys><N/A>
[AVG Anti-Spyware Clean Driver / AvgAsCln][Running/System Start]
<System32\DRIVERS\AvgAsCln.sys><GRISOFT, s.r.o.>
[Pilote pour carte réseau ASUS 802.11 / BCM43XX][Running/Manual Start]
<system32\DRIVERS\bcmwl5.sys><Broadcom Corporation>
[CdaC15BA / CdaC15BA][Running/Auto Start]
<\??\C:\WINDOWS\system32\drivers\CdaC15BA.SYS><Macrovision Europe Ltd>
[Hamachi Network Interface / hamachi][Stopped/Manual Start]
<system32\DRIVERS\hamachi.sys><LogMeIn, Inc.>
[HSFHWSIS / HSFHWSIS][Running/Manual Start]
<system32\DRIVERS\HSFHWSIS.sys><Conexant Systems, Inc.>
[HSF_DPV / HSF_DPV][Running/Manual Start]
<system32\DRIVERS\HSF_DPV.sys><Conexant Systems, Inc.>
[mdmxsdk / mdmxsdk][Running/Auto Start]
<system32\DRIVERS\mdmxsdk.sys><Conexant>
[ATK0100 ACPI UTILITY / MTsensor][Running/Manual Start]
<system32\DRIVERS\ATKACPI.sys><>
[NB 802.11g XG703 SP1 Driver / NBXG7031][Stopped/Manual Start]
<system32\DRIVERS\WlanUIG.sys><Conexant Systems, Inc.>
[nv / nv][Running/Manual Start]
<system32\DRIVERS\nv4_mini.sys><NVIDIA Corporation>
[PCASp50 NDIS Protocol Driver / PCASp50][Running/Manual Start]
<System32\Drivers\PCASp50.sys><Printing Communications Assoc., Inc. (PCAUSA)>
[Pilote de liaison parallèle directe / Ptilink][Running/Manual Start]
<system32\DRIVERS\ptilink.sys><Parallel Technologies, Inc.>
[PxHelp20 / PxHelp20][Running/Boot Start]
<\SystemRoot\system32\DRIVERS\PxHelp20.sys><Sonic Solutions>
[rimsptsk / rimsptsk][Running/Boot Start]
<\SystemRoot\system32\DRIVERS\rimsptsk.sys><REDC>
[risdptsk / risdptsk][Running/Boot Start]
<\SystemRoot\system32\DRIVERS\risdptsk.sys><REDC>
[Realtek 10/100/1000 NIC Family all in one NDIS XP Driver / RTL8023xp][Running/Manual Start]
<system32\DRIVERS\Rtlnicxp.sys><Realtek Semiconductor Corporation>
[Secdrv / Secdrv][Running/Auto Start]
<system32\DRIVERS\secdrv.sys><Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.>
[StarForce Protection Environment Driver (version 1.x) / sfdrv01][Running/Boot Start]
<\SystemRoot\System32\drivers\sfdrv01.sys><Protection Technology>
[StarForce Protection Helper Driver (version 2.x) / sfhlp02][Running/Boot Start]
<\SystemRoot\System32\drivers\sfhlp02.sys><Protection Technology>
[StarForce Protection Synchronization Driver (version 2.x) / sfsync02][Running/Boot Start]
<\SystemRoot\System32\drivers\sfsync02.sys><Protection Technology>
[StarForce Protection VFS Driver (version 2.x) / sfvfs02][Running/Boot Start]
<\SystemRoot\System32\drivers\sfvfs02.sys><Protection Technology>
[sptd / sptd][Running/Boot Start]
<\SystemRoot\System32\Drivers\sptd.sys><N/A>
[Pilote de périphérique de la restauration de lecteur / StMp3Rec][Stopped/Manual Start]
<System32\Drivers\StMp3Rec.sys><Generic>
[SYMIDSCO / SYMIDSCO][Stopped/Manual Start]
<\??\C:\PROGRA~1\FICHIE~1\SYMANT~1\SymcData\idsdefs\20040824.002\symidsco.sys><N/A>
[USB2.0 1.3M Web Cam / SynMini][Running/Manual Start]
<System32\Drivers\SynMini.sys><Syntek America Inc.>
[USB2.0 1.3M Web Cam Still Image / SynScan][Running/Manual Start]
<System32\Drivers\SynScan.sys><Syntek America Inc.>
[Synaptics TouchPad Driver / SynTP][Running/Manual Start]
<system32\DRIVERS\SynTP.sys><Synaptics, Inc.>
[winachsf / winachsf][Running/Manual Start]
<system32\DRIVERS\HSF_CNXT.sys><Conexant Systems, Inc.>
[Codec Teletext standard / WSTCODEC][Stopped/Manual Start]
<system32\DRIVERS\WSTCODEC.SYS><Microsoft Corporation>
==================================
Browser Add-ons
[EWPBrowseObject Class]
{68F9551E-0411-48E4-9AAF-4BC42A6A46BE} <C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll, >
[SSVHelper Class]
{761497BB-D6F0-462C-B6EB-D4DAF1D92D43} <C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll, Sun Microsystems, Inc.>
[Windows Live Sign-in Helper]
{9030D464-4C02-4ABF-8ECC-5164760863C6} <C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll, Microsoft Corporation>
[Google Toolbar Helper]
{AA58ED58-01DD-4d91-8333-CF10577473F7} <c:\program files\google\googletoolbar2.dll, Google Inc.>
[Google Toolbar Notifier BHO]
{AF69DE43-7D58-4638-B6FA-CE66B5AD205D} <C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.3558\swg.dll, Google Inc.>
[Windows Live Toolbar Helper]
{BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} <C:\Program Files\Windows Live Toolbar\msntb.dll, Microsoft Corporation>
[Java Plug-in 1.6.0_01]
{08B0E5C0-4FCB-11CF-AAA5-00401C608501} <C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll, Sun Microsystems, Inc.>
[Messenger]
{FB5F1910-F110-11d2-BB9E-00C04F795683} <C:\Program Files\Messenger\msmsgs.exe, N/A>
[&Google]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} <c:\program files\google\googletoolbar2.dll, Google Inc.>
[Windows Live Toolbar]
{BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} <C:\Program Files\Windows Live Toolbar\msntb.dll, Microsoft Corporation>
[Easy-WebPrint]
{327C2873-E90D-4c37-AA9D-10AC9BABA46C} <C:\Program Files\Canon\Easy-WebPrint\Toolband.dll, >
[Shockwave ActiveX Control]
{166B1BCA-3F9C-11CF-8075-444553540000} <C:\WINDOWS\system32\macromed\Director\SwDir.dll, Adobe Systems, Inc.>
[Java Plug-in 1.6.0_01]
{8AD9C840-044E-11D1-B3E9-00805F499D93} <C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll, Sun Microsystems, Inc.>
[ActiveScan Installer Class]
{9A9307A0-7DA4-4DAF-B042-5009F29E09E1} <C:\WINDOWS\Downloaded Program Files\asinst.dll, Panda Software>
[a-squared Scanner]
{BB21F850-63F4-4EC9-BF9D-565BD30C9AE9} <C:\WINDOWS\DOWNLO~1\asquared.ocx, Emsi Software GmbH>
[Java Plug-in 1.5.0_09]
{CAFEEFAC-0015-0000-0009-ABCDEFFEDCBA} <C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll, Sun Microsystems, Inc.>
[Java Plug-in 1.5.0_10]
{CAFEEFAC-0015-0000-0010-ABCDEFFEDCBA} <C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll, Sun Microsystems, Inc.>
[Java Plug-in 1.5.0_11]
{CAFEEFAC-0015-0000-0011-ABCDEFFEDCBA} <C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll, Sun Microsystems, Inc.>
[Java Plug-in 1.6.0_01]
{CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA} <C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll, Sun Microsystems, Inc.>
[Java Plug-in 1.6.0_01]
{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} <C:\Program Files\Java\jre1.6.0_01\bin\npjpi160_01.dll, Sun Microsystems, Inc.>
[Google Script Object]
{00EF2092-6AC5-47C0-BD25-CF2D5D657FEB} <c:\program files\google\googletoolbar2.dll, Google Inc.>
[QuickTime Object]
{02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} <C:\Program Files\QuickTime Alternative\QTSystem\QTPlugin.ocx, Apple Computer, Inc.>
[Outlook Today's Data-binding control]
{0468C085-CA5B-11D0-AF08-00609797F0E0} <C:\PROGRA~1\MICROS~2\Office12\OUTLCTL.DLL, >
[ActiveMovieControl Object]
{05589FA1-C356-11CE-BF01-00AA0055595A} <C:\WINDOWS\system32\wmpdxm.dll, Microsoft Corporation>
[PeerDraw Class]
{10072CEC-8CC1-11D1-986E-00A0C955B42E} <%CommonProgramFiles%\Microsoft Shared\VGX\vgx.dll, N/A>
[Shockwave ActiveX Control]
{166B1BCA-3F9C-11CF-8075-444553540000} <C:\WINDOWS\system32\macromed\Director\SwDir.dll, Adobe Systems, Inc.>
[Windows Genuine Advantage Validation Tool]
{17492023-C23A-453E-A040-C7C580BBF700} <C:\WINDOWS\system32\legitcheckcontrol.dll, Microsoft Corporation>
[Windows Media Player]
{22D6F312-B0F6-11D0-94AB-0080C74C7E95} <C:\WINDOWS\system32\wmpdxm.dll, Microsoft Corporation>
[&Google]
{2318C2B1-4965-11D4-9B18-009027A5CD4F} <c:\program files\google\googletoolbar2.dll, Google Inc.>
[Shockwave ActiveX Control]
{233C1507-6A77-46A4-9443-F871F945D258} <C:\WINDOWS\system32\Macromed\Director\SwDir.dll, Adobe Systems, Inc.>
[HTML Document]
{25336920-03F9-11CF-8FD0-00AA00686F13} <C:\WINDOWS\system32\mshtml.dll, Microsoft Corporation>
[XML DOM Document]
{2933BF90-7B36-11D2-B20E-00C04F983E60} <%SystemRoot%\system32\msxml3.dll, N/A>
[DHTML Edit Control Safe for Scripting for IE5]
{2D360201-FFF5-11D1-8D03-00A0C959BC0A} <C:\Program Files\Fichiers communs\Microsoft Shared\Triedit\dhtmled.ocx, Microsoft Corporation>
[HtmlDlgSafeHelper Class]
{3050F819-98B5-11CF-BB82-00AA00BDCE0B} <C:\WINDOWS\system32\mshtmled.dll, Microsoft Corporation>
[Easy-WebPrint]
{327C2873-E90D-4C37-AA9D-10AC9BABA46C} <C:\Program Files\Canon\Easy-WebPrint\Toolband.dll, >
[Tabular Data Control]
{333C7BC4-460F-11D0-BC04-0080C7055A83} <C:\WINDOWS\system32\tdc.ocx, Microsoft Corporation>
[IETag Factory]
{38481807-CA0E-42D2-BF39-B33AF135CC4D} <C:\PROGRA~1\FICHIE~1\MICROS~1\SMARTT~1\IETAG.DLL, Microsoft Corporation>
[QuickTime Object]
{4063BE15-3B08-470D-A0D5-B37161CFFD69} <C:\Program Files\QuickTime Alternative\QTSystem\QTPlugin.ocx, Apple Computer, Inc.>
[XML Document]
{48123BC4-99D9-11D1-A6B3-00C04FD91555} <%SystemRoot%\system32\msxml3.dll, N/A>
[]
{4F07F79F-087F-42CF-8B36-7A88D06088E9} <C:\PROGRA~1\MSNMES~1\MSGSC8~1.DLL, Microsoft Corporation>
[WUWebControl Class]
{6414512B-B978-451D-A0D8-FCFDF33E833C} <C:\WINDOWS\system32\wuweb.dll, Microsoft Corporation>
[EWPBrowseObject Class]
{68F9551E-0411-48E4-9AAF-4BC42A6A46BE} <C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll, >
[Windows Media Player]
{6BF52A52-394A-11D3-B153-00C04F79FAA6} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
[Active Desktop Mover]
{72267F6A-A6F9-11D0-BC94-00C04FB67863} <%SystemRoot%\system32\SHELL32.dll, N/A>
[Windows Media Services DRM Storage object]
{760C4B83-E211-11D2-BF3E-00805FBE84A6} <C:\WINDOWS\system32\msnetobj.dll, Microsoft Corporation>
[SSVHelper Class]
{761497BB-D6F0-462C-B6EB-D4DAF1D92D43} <C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll, Sun Microsystems, Inc.>
[Microsoft Web Browser]
{8856F961-340A-11D0-A96B-00C04FD705A2} <C:\WINDOWS\system32\ieframe.dll, Microsoft Corporation>
[XML DOM Document 4.0]
{88D969C0-F192-11D4-A65F-0040963251E5} <c:\WINDOWS\system32\msxml4.dll, Microsoft Corporation>
[Java Plug-in 1.6.0_01]
{8AD9C840-044E-11D1-B3E9-00805F499D93} <C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll, Sun Microsystems, Inc.>
[Windows Live Sign-in Helper]
{9030D464-4C02-4ABF-8ECC-5164760863C6} <C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll, Microsoft Corporation>
[ActiveScan Installer Class]
{9A9307A0-7DA4-4DAF-B042-5009F29E09E1} <C:\WINDOWS\Downloaded Program Files\asinst.dll, Panda Software>
[Google Toolbar Helper]
{AA58ED58-01DD-4D91-8333-CF10577473F7} <c:\program files\google\googletoolbar2.dll, Google Inc.>
[Google Toolbar Notifier BHO]
{AF69DE43-7D58-4638-B6FA-CE66B5AD205D} <C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.3558\swg.dll, Google Inc.>
[a-squared Scanner]
{BB21F850-63F4-4EC9-BF9D-565BD30C9AE9} <C:\WINDOWS\DOWNLO~1\asquared.ocx, Emsi Software GmbH>
[RDS.DataSpace]
{BD96C556-65A3-11D0-983A-00C04FC29E36} <C:\Program Files\Fichiers communs\System\msadc\msadco.dll, Microsoft Corporation>
[Windows Live Toolbar]
{BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} <C:\Program Files\Windows Live Toolbar\msntb.dll, Microsoft Corporation>
[Windows Live Toolbar Helper]
{BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} <C:\Program Files\Windows Live Toolbar\msntb.dll, Microsoft Corporation>
[OWSClientMiscApis Class]
{BDEADE3F-C265-11D0-BCED-00A0C90AB50F} <C:\PROGRA~1\MICROS~2\Office12\OWSCLT.DLL, Microsoft Corporation>
[Adobe PDF Reader]
{CA8A9780-280D-11CF-A24D-444553540000} <C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroPDF.dll, Adobe Systems, Inc.>
[Java Plug-in 1.5.0_09]
{CAFEEFAC-0015-0000-0009-ABCDEFFEDCBA} <C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll, Sun Microsystems, Inc.>
[AUDIO__MID Moniker Class]
{CD3AFA74-B84F-48F0-9393-7EDC34128127} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
[AUDIO__MP3 Moniker Class]
{CD3AFA76-B84F-48F0-9393-7EDC34128127} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
[AUDIO__WAV Moniker Class]
{CD3AFA7B-B84F-48F0-9393-7EDC34128127} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
[VIDEO__MPEG Moniker Class]
{CD3AFA89-B84F-48F0-9393-7EDC34128127} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
[VIDEO__X_MS_ASF Moniker Class]
{CD3AFA8F-B84F-48F0-9393-7EDC34128127} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
[VIDEO__X_MS_WMV Moniker Class]
{CD3AFA94-B84F-48F0-9393-7EDC34128127} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
[RealPlayer G2 Control]
{CFCDAA03-8BE4-11CF-B84B-0020AFBBCCFA} <C:\WINDOWS\system32\rmoc3260.dll, RealNetworks, Inc.>
[Windows Live Sign-in Control]
{D2517915-48CE-4286-970F-921E881B8C5C} <C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll, Microsoft Corporation>
[Shockwave Flash Object]
{D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\Flash9b.ocx, Adobe Systems, Inc.>
[QuickTimeCheck Class]
{DE4AF3B0-F4D4-11D3-B41A-0050DA2E6C21} <C:\Program Files\QuickTime Alternative\QTSystem\QuickTimeCheck.ocx, Apple Computer, Inc.>
[]
{E1771B7F-98BE-407F-BA67-AA16ADA5D0C5} <C:\PROGRA~1\MSNMES~1\MSGSC8~1.DLL, Microsoft Corporation>
[XML HTTP Request]
{ED8C108E-4349-11D2-91A4-00C04F7969E8} <%SystemRoot%\system32\msxml3.dll, N/A>
[]
{F06608C7-1874-4EEA-B3B2-DF99EBB144B8} <C:\PROGRA~1\MSNMES~1\MSGSC8~1.DLL, Microsoft Corporation>
[XML DOM Document 3.0]
{F5078F32-C551-11D3-89B9-0000F81FE221} <%SystemRoot%\system32\msxml3.dll, N/A>
[XML DOM Document]
{F6D90F11-9C73-11D3-B32E-00C04F990BB4} <%SystemRoot%\system32\msxml3.dll, N/A>
[XML HTTP]
{F6D90F16-9C73-11D3-B32E-00C04F990BB4} <%SystemRoot%\system32\msxml3.dll, N/A>
[&Windows Live Search]
<res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm, N/A>
[Add to Windows &Live Favorites]
<http://favorites.live.com/quickadd.aspx, N/A>
==================================
Running Processes
[PID: 932][\SystemRoot\System32\smss.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1028][\??\C:\WINDOWS\system32\csrss.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1052][\??\C:\WINDOWS\system32\winlogon.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\WgaLogon.dll] [Microsoft Corporation, 1.7.0018.5]
[C:\WINDOWS\system32\msacm32.drv] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[PID: 1096][C:\WINDOWS\system32\services.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\AppPatch\AcAdProc.dll] [Microsoft Corporation, 5.1.2600.3008 (xpsp.061004-0027)]
[PID: 1108][C:\WINDOWS\system32\lsass.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1252][C:\WINDOWS\system32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1328][C:\WINDOWS\system32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1364][C:\WINDOWS\System32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\Normaliz.dll] [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
[C:\WINDOWS\system32\iertutil.dll] [Microsoft Corporation, 7.00.6000.16441 (vista_gdr.070219-1500)]
[C:\WINDOWS\system32\wups2.dll] [Microsoft Corporation, 7.0.6000.374 (winmain(wmbla).070416-2057)]
[PID: 1900][C:\WINDOWS\Explorer.EXE] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\Normaliz.dll] [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
[C:\WINDOWS\system32\iertutil.dll] [Microsoft Corporation, 7.00.6000.16441 (vista_gdr.070219-1500)]
[C:\WINDOWS\system32\ieframe.dll] [Microsoft Corporation, 7.00.6000.16441 (vista_gdr.070219-1500)]
[C:\Program Files\ScanSoft\OmniPageSE4.0\OpHookSE4.dll] [ScanSoft, Inc., 15.0]
[C:\WINDOWS\system32\WPDShServiceObj.dll] [Microsoft Corporation, 5.2.5721.5145 (WMP_11.061018-2006)]
[C:\WINDOWS\system32\PortableDeviceTypes.dll] [Microsoft Corporation, 5.2.5721.5145 (WMP_11.061018-2006)]
[C:\WINDOWS\system32\PortableDeviceApi.dll] [Microsoft Corporation, 5.2.5721.5145 (WMP_11.061018-2006)]
[C:\WINDOWS\system32\msacm32.drv] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[C:\Program Files\Fichiers communs\Ahead\Lib\NeroDigitalExt.dll] [Nero AG, 2, 0, 0, 8]
[C:\Program Files\Fichiers communs\Ahead\Lib\MFC71.DLL] [Microsoft Corporation, 7.10.3077.0]
[C:\Program Files\Fichiers communs\Ahead\Lib\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\Program Files\Fichiers communs\Ahead\Lib\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[C:\Program Files\Adobe\Acrobat 7.0\ActiveX\PDFShell.dll] [Adobe Systems, Inc., 7.0.0.0]
[C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\shellexecutehook.dll] [GRISOFT s.r.o., 7, 5, 1, 36]
[C:\Program Files\Nero\Nero 7\Nero BackItUp\NBShell.dll] [Nero AG, 2, 7, 2, 0]
[C:\Program Files\Nero\Nero 7\Nero BackItUp\MFC71U.DLL] [Microsoft Corporation, 7.10.3077.0]
[C:\Program Files\Alwil Software\Avast4\ashShell.dll] [ALWIL Software, 4, 7, 997, 0]
[C:\Program Files\WinRAR\rarext.dll] [N/A, ]
[C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\context.dll] [GRISOFT s.r.o., 7, 5, 1, 36]
[C:\WINDOWS\system32\CmdLineExt.dll] [Sony DADC Austria AG., 1,1,221,0]
[C:\WINDOWS\system32\nvcpl.dll] [NVIDIA Corporation, 6.14.10.8204]
[C:\WINDOWS\system32\NVRSFR.DLL] [NVIDIA Corporation, 6.14.10.8204]
[C:\WINDOWS\system32\nvshell.dll] [, ]
[C:\Program Files\UltraISO\isoshell.dll] [EZB Systems, Inc., 1, 0, 0, 1]
[PID: 388][C:\WINDOWS\ATK0100\HControl.exe] [, 1043, 2, 15, 51]
[C:\WINDOWS\ATK0100\CMSSC.dll] [N/A, ]
[C:\WINDOWS\ATK0100\inter_f2.dll] [ATK, 1043, 2, 15, 46]
[C:\WINDOWS\ATK0100\ATKWLIOC.DLL] [ACTIONTEC Electronics,Inc, 2.01.02]
[C:\WINDOWS\ATK0100\SiSPkt.dll] [Silicon Integrated Systems Corp., 1, 0, 0, 45]
[C:\WINDOWS\ATK0100\ASUSNET.dll] [, 1, 9, 6, 0]
[C:\WINDOWS\ATK0100\ASW32N50.dll] [Printing Communications Assoc., Inc. (PCAUSA), 5.00.13.50]
[C:\Program Files\ScanSoft\OmniPageSE4.0\OpHookSE4.dll] [ScanSoft, Inc., 15.0]
[C:\WINDOWS\system32\SynCOM.dll] [Synaptics, Inc., 8.1.5 18Aug05]
[C:\WINDOWS\system32\msacm32.drv] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[PID: 412][C:\Program Files\Synaptics\SynTP\SynTPEnh.exe] [Synaptics, Inc., 8.1.5 18Aug05]
[C:\WINDOWS\system32\SynCOM.dll] [Synaptics, Inc., 8.1.5 18Aug05]
[C:\WINDOWS\system32\SynTPAPI.dll] [Synaptics, Inc., 8.1.5 18Aug05]
[C:\Program Files\ScanSoft\OmniPageSE4.0\OpHookSE4.dll] [ScanSoft, Inc., 15.0]
[PID: 420][C:\Program Files\ASUSTeK\ASUSDVD\PDVDServ.exe] [Cyberlink Corp., 6.00.1027]
[C:\Program Files\ASUSTeK\ASUSDVD\CLRCEngine2.dll] [CyberLink Corp., 3.2.2021 ]
[C:\Program Files\ScanSoft\OmniPageSE4.0\OpHookSE4.dll] [ScanSoft, Inc., 15.0]
[PID: 428][C:\Program Files\ASUS\Power4 Gear\BatteryLife.exe] [ASUSTeK Computer Inc., 1043, 6, 15, 112]
[C:\Program Files\ASUS\Power4 Gear\ATKMETHOD.dll] [ASUSTeK Computer Inc., 1043, 6, 15, 112]
[C:\Program Files\ScanSoft\OmniPageSE4.0\OpHookSE4.dll] [ScanSoft, Inc., 15.0]
[PID: 436][C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe] [ALWIL Software, 4, 7, 997, 0]
[C:\PROGRA~1\ALWILS~1\Avast4\aswCmnOS.dll] [ALWIL Software, 4, 7, 997, 0]
[C:\WINDOWS\system32\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[C:\WINDOWS\system32\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\PROGRA~1\ALWILS~1\Avast4\ashBase.dll] [ALWIL Software, 4, 7, 997, 0]
[C:\PROGRA~1\ALWILS~1\Avast4\aswCmnB.dll] [ALWIL Software, 4, 7, 997, 0]
[C:\PROGRA~1\ALWILS~1\Avast4\aswCmnS.dll] [ALWIL Software, 4, 7, 997, 0]
[C:\PROGRA~1\ALWILS~1\Avast4\ashTask.dll] [ALWIL Software, 4, 7, 997, 0]
[C:\PROGRA~1\ALWILS~1\Avast4\aswAux.dll] [ALWIL Software, 4, 7, 997, 0]
[C:\PROGRA~1\ALWILS~1\Avast4\Aavm4h.dll] [ALWIL Software, 4, 7, 997, 0]
[C:\Program Files\Alwil Software\Avast4\French\Base.dll] [ALWIL Software, 4, 7, 997, 0]
[C:\Program Files\Alwil Software\Avast4\French\Lang.dll] [ALWIL Software, 4, 7, 997, 0]
[C:\WINDOWS\system32\MFC71.DLL] [Microsoft Corporation, 7.10.3077.0]
[C:\PROGRA~1\ALWILS~1\Avast4\AavmRpch.dll] [ALWIL Software, 4, 7, 997, 0]
[c:\program files\alwil software\avast4\ahruimai.dll] [ALWIL Software, 4, 7, 997, 0]
[C:\PROGRA~1\ALWILS~1\Avast4\ashUInt.dll] [ALWIL Software, 4, 7, 997, 0]
[C:\PROGRA~1\ALWILS~1\Avast4\XT1922.dll] [Codejock Software, 1, 9, 4, 0]
[c:\program files\alwil software\avast4\ahruimes.dll] [ALWIL Software, 4, 7, 997, 0]
[c:\program files\alwil software\avast4\ahruins.dll] [ALWIL Software, 4, 7, 997, 0]
[c:\program files\alwil software\avast4\ahruiout.dll] [ALWIL Software, 4, 7, 997, 0]
[C:\WINDOWS\system32\MAPI32.dll] [Microsoft Corporation, 1.0.2536.0 (XPClient.010817-1148)]
[c:\program files\alwil software\avast4\ahruip2p.dll] [ALWIL Software, 4, 7, 997, 0]
[c:\program files\alwil software\avast4\ahruistd.dll] [ALWIL Software, 4, 7, 997, 0]
[c:\program files\alwil software\avast4\ahruiws.dll] [ALWIL Software, 4, 7, 997, 0]
[C:\Program Files\ScanSoft\OmniPageSE4.0\OpHookSE4.dll] [ScanSoft, Inc., 15.0]
[C:\Program Files\Alwil Software\Avast4\AavmGuih.dll] [ALWIL Software, 4, 7, 997, 0]
[PID: 500][C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe] [Sun Microsystems, Inc., 6.0.10.6]
[C:\WINDOWS\system32\Normaliz.dll] [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
[C:\WINDOWS\system32\iertutil.dll] [Microsoft Corporation, 7.00.6000.16441 (vista_gdr.070219-1500)]
[C:\Program Files\Java\jre1.6.0_01\bin\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[PID: 616][C:\Program Files\Neuf\Kit\WiFi\9wifi.exe] [Neuf, 6.6.21.1]
[C:\Program Files\Neuf\Kit\WiFi\W32N55.dll] [Printing Communications Assoc., Inc. (PCAUSA), 5.5.18.04]
[C:\Program Files\ScanSoft\OmniPageSE4.0\OpHookSE4.dll] [ScanSoft, Inc., 15.0]
[C:\Program Files\Neuf\Kit\WiFi\9wifips.dll] [N/A, ]
[PID: 632][C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe] [ScanSoft, Inc., 15.0]
[C:\Program Files\ScanSoft\OmniPageSE4.0\OpHookSE4.dll] [ScanSoft, Inc., 15.0]
[PID: 684][C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe] [Nero AG, 1, 5, 3, 0]
[C:\Program Files\Fichiers communs\Ahead\Lib\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[C:\Program Files\Fichiers communs\Ahead\Lib\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\Program Files\ScanSoft\OmniPageSE4.0\OpHookSE4.dll] [ScanSoft, Inc., 15.0]
[C:\Program Files\Fichiers communs\Ahead\Lib\AdvrCntr2.dll] [Nero AG, 5,16,1, 9000]
[C:\WINDOWS\system32\Normaliz.dll] [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
[C:\WINDOWS\system32\iertutil.dll] [Microsoft Corporation, 7.00.6000.16441 (vista_gdr.070219-1500)]
[C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexStoreSvrPS.dll] [Nero AG, 1, 5, 3, 0]
[C:\Program Files\Fichiers communs\Ahead\Lib\NMDataServices.dll] [Nero AG, 1, 5, 3, 0]
[PID: 720][C:\Program Files\MSN Messenger\MsnMsgr.Exe] [Microsoft Corporation, 8.1.0178.00]
[C:\Program Files\MSN Messenger\MSIMG32.dll] [Patchou, 4, 21, 0, 270]
[C:\Program Files\MSN Messenger\MSNCore.dll] [Microsoft Corporation, 8.1.0178.00]
[C:\WINDOWS\system32\Normaliz.dll] [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
[C:\WINDOWS\system32\iertutil.dll] [Microsoft Corporation, 7.00.6000.16441 (vista_gdr.070219-1500)]
[C:\Program Files\MSN Messenger\msidcrl40.dll] [Microsoft Corporation, 4.100.313.1]
[C:\Program Files\MSN Messenger\ContactsUX.dll] [Microsoft Corporation, 8.1.0178.00]
[C:\Program Files\Messenger Plus! Live\MsgPlusLive1.dll] [Patchou, 4, 21, 0, 270]
[C:\Program Files\Messenger Plus! Live\Detoured.dll] [N/A, ]
[C:\Program Files\ScanSoft\OmniPageSE4.0\OpHookSE4.dll] [ScanSoft, Inc., 15.0]
[C:\Program Files\MSN Messenger\msgslang.8.1.0178.00.dll] [Microsoft Corporation, 8.1.0178.00]
[C:\Program Files\MSN Messenger\msgsres.dll] [Microsoft Corporation, 8.1.0178.00]
[C:\Program Files\Messenger Plus! Live\MsgPlusLiveRes.dll] [Patchou, 4, 21, 0, 270]
[C:\Program Files\MSN Messenger\lcapi.dll] [Microsoft Corporation, 1.7.256.0 (RTC Version 4.3.5371.0) built by: msn8.0(rtbldlab)]
[C:\WINDOWS\system32\msdmo.dll] [, ]
[C:\Program Files\MSN Messenger\lcres.dll] [Microsoft Corp., 1.7.109.0 (RTC Version 4.3.5371.0) built by: msn8.0(rtbldlab)]
[C:\Program Files\MSN Messenger\RTMPLTFM.dll] [Microsoft Corporation, 3.0.5774.0 built by: media_msn80]
[C:\WINDOWS\system32\msacm32.drv] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[C:\Program Files\MSN Messenger\MSGSWCAM.dll] [Microsoft Corporation, 8.1.0178.00]
[C:\WINDOWS\system32\sirenacm.dll] [Microsoft Corp., 8.1.0178.00]
[C:\Program Files\Messenger Plus! Live\MPScripts.dll] [N/A, ]
[C:\Program Files\MSN Messenger\lmcdata.dll] [Microsoft Corporation, 8.1.0178.00]
[C:\Program Files\MSN Messenger\custsat.dll] [Microsoft Corporation, 9.0.3790.2428 (srv03_sp1_qfe.050422-1043)]
[C:\Program Files\MSN Messenger\abssm.dll] [Microsoft Corporation, 8.1.0178.00]
[C:\WINDOWS\system32\msaud32.acm] [Microsoft Corporation, 8.00.00.4487]
[C:\Program Files\Messenger Plus! Live\libsndfile.dll] [N/A, ]
[C:\Program Files\Messenger Plus! Live\lame_enc.dll] [N/A, ]
[C:\WINDOWS\system32\SynProp.ax] [Syntek America Inc., 1.0.0.2]
[C:\WINDOWS\system32\dshowext.ax] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\Program Files\MSN Messenger\contact.dll] [Microsoft Corporation, 8.1.0178.00]
[C:\WINDOWS\system32\ieframe.dll] [Microsoft Corporation, 7.00.6000.16441 (vista_gdr.070219-1500)]
[C:\PROGRA~1\FICHIE~1\MICROS~1\OFFICE12\MSOXMLMF.DLL] [Microsoft Corporation, 12.0.4518.1014]
[C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\shellexecutehook.dll] [GRISOFT s.r.o., 7, 5, 1, 36]
[C:\WINDOWS\system32\Macromed\Flash\Flash9b.ocx] [Adobe Systems, Inc., 9,0,28,0]
[C:\Program Files\MSN Messenger\wmv9vcm.dll] [Microsoft Corporation, 9.0.1.1184]
[PID: 736][C:\WINDOWS\system32\ctfmon.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\Program Files\ScanSoft\OmniPageSE4.0\OpHookSE4.dll] [ScanSoft, Inc., 15.0]
[PID: 776][C:\Program Files\DAEMON Tools\daemon.exe] [DT Soft Ltd., 4.08.0.0]
[C:\Program Files\DAEMON Tools\daemon.dll] [DT Soft Ltd., 4.08.0.0]
[C:\Program Files\DAEMON Tools\PFCTOC.DLL] [Padus(R), Inc., 1, 0, 0, 12]
[C:\Program Files\DAEMON Tools\Plugins\Images\bw5mount.dll] [, 1.1.0.0]
[C:\Program Files\DAEMON Tools\Plugins\Images\ccdmount.dll] [GENERIC, 1.10.0.0]
[C:\Program Files\DAEMON Tools\Plugins\Images\cuemount.dll] [DT Soft Ltd., 1.01.0.0]
[C:\Program Files\DAEMON Tools\Plugins\Images\mdsmount.dll] [DT Soft Ltd., 1.18.0.0]
[C:\Program Files\DAEMON Tools\Plugins\Images\nrgmount.dll] [DT Soft Ltd., 1.12.0.0]
[C:\Program Files\DAEMON Tools\Plugins\Images\pdimount.dll] [GENERIC, 1.01.0.0]
[C:\Program Files\ScanSoft\OmniPageSE4.0\OpHookSE4.dll] [ScanSoft, Inc., 15.0]
[PID: 820][C:\Program Files\Asus\Asus ChkMail\ChkMail.exe] [asus, 1043, 1, 15, 5]
[C:\Program Files\ScanSoft\OmniPageSE4.0\OpHookSE4.dll] [ScanSoft, Inc., 15.0]
[PID: 1476][C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexStoreSvr.exe] [Nero AG, 1, 5, 3, 0]
[C:\Program Files\Fichiers communs\Ahead\Lib\NMSQLDB.dll] [Nero AG, 1, 5, 3, 0]
[C:\Program Files\Fichiers communs\Ahead\Lib\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[C:\Program Files\Fichiers communs\Ahead\Lib\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\Program Files\ScanSoft\OmniPageSE4.0\OpHookSE4.dll] [ScanSoft, Inc., 15.0]
[C:\Program Files\Fichiers communs\Ahead\Lib\NMLogCxx.dll] [Nero AG, 1, 5, 3, 0]
[C:\Program Files\Fichiers communs\Ahead\Lib\log4cxx.dll] [Nero AG, 1, 0, 0, 0]
[C:\Program Files\Fichiers communs\Ahead\Lib\NMCoFoundation.dll] [Nero AG, 1, 5, 3, 0]
[C:\Program Files\Fichiers communs\Ahead\Lib\NMPluginBase.dll] [Nero AG, 1, 5, 3, 0]
[C:\Program Files\Fichiers communs\Ahead\Lib\NMFullTextExtraction.dll] [Nero AG, 1, 5, 3, 0]
[C:\WINDOWS\system32\iertutil.dll] [Microsoft Corporation, 7.00.6000.16441 (vista_gdr.070219-1500)]
[C:\Program Files\Fichiers communs\Ahead\Lib\NMSearchPluginSimilarImages.dll] [Nero AG, 1, 5, 3, 0]
[C:\Program Files\Fichiers communs\Ahead\Lib\NeroIPP.dll] [Nero AG, 4,5,13,0]
[C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexStoreSvrPS.dll] [Nero AG, 1, 5, 3, 0]
[C:\Program Files\Fichiers communs\Ahead\Lib\NMDataServices.dll] [Nero AG, 1, 5, 3, 0]
[C:\Program Files\Fichiers communs\Ahead\Lib\NMSlideShow.dll] [Nero AG, 1, 5, 3, 0]
[C:\Program Files\Adobe\Acrobat 7.0\Reader\AcroRdIF.dll] [Adobe Systems Incorporated, 7, 0, 5, 0]
[C:\Program Files\Adobe\Acrobat 7.0\Reader\AcroRd32.dll] [Adobe Systems Incorporated, 7.0.8.2006051600]
[C:\Program Files\Adobe\Acrobat 7.0\Reader\AGM.dll] [Adobe Systems Incorporated, 4.14.45]
[C:\Program Files\Adobe\Acrobat 7.0\Reader\CoolType.dll] [Adobe Systems Incorporated, 5.01.41]
[C:\Program Files\Adobe\Acrobat 7.0\Reader\BIB.dll] [Adobe Systems Incorporated, 1.1.18]
[C:\Program Files\Adobe\Acrobat 7.0\Reader\ACE.dll] [Adobe Systems Incorporated, 2.07.28]
[C:\Program Files\Adobe\Acrobat 7.0\Reader\JP2KLib.dll] [Adobe Systems Incorporated, 1.0.41402]
[C:\Program Files\Adobe\Acrobat 7.0\Reader\AXE16SharedExpat.dll] [Adobe Systems Incorporated, 3.2.402]
[PID: 3460][C:\WINDOWS\ATK0100\ATKOSD.exe] [, 1043, 2, 15, 51]
[C:\Program Files\ScanSoft\OmniPageSE4.0\OpHookSE4.dll] [ScanSoft, Inc., 15.0]
[PID: 3564][C:\Program Files\Internet Explorer\iexplore.exe] [Microsoft Corporation, 7.00.6000.16441 (vista_gdr.070219-1500)]
[C:\WINDOWS\system32\iertutil.dll] [Microsoft Corporation, 7.00.6000.16441 (vista_gdr.070219-1500)]
[C:\WINDOWS\system32\IEFRAME.dll] [Microsoft Corporation, 7.00.6000.16441 (vista_gdr.070219-1500)]
[C:\Program Files\ScanSoft\OmniPageSE4.0\OpHookSE4.dll] [ScanSoft, Inc., 15.0]
[C:\WINDOWS\system32\IEUI.dll] [Microsoft Corporation, 7.00.5730.11 (winmain(wmbla).061017-1135)]
[C:\WINDOWS\system32\xmllite.dll] [Microsoft Corporation, 1.00.1018.0]
[C:\Program Files\Microsoft Office\Office12\msohevi.dll] [Microsoft Corporation, 12.0.4518.1014]
[C:\Program Files\Internet Explorer\ieproxy.dll] [Microsoft Corporation, 7.00.5730.11 (winmain(wmbla).061017-1135)]
[C:\WINDOWS\system32\Normaliz.dll] [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
[c:\program files\google\googletoolbar2.dll] [Google Inc., 4, 0, 1601, 4978]
[C:\WINDOWS\system32\PortableDeviceApi.dll] [Microsoft Corporation, 5.2.5721.5145 (WMP_11.061018-2006)]
[C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll] [, 2, 6, 3, 0]
[C:\WINDOWS\system32\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\Program Files\Canon\Easy-WebPrint\EWPCore.dll] [, 2, 6, 3, 0]
[C:\WINDOWS\system32\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll] [Sun Microsystems, Inc., 6.0.10.6]
[C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll] [Microsoft Corporation, 4.000.249.1]
[C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\msidcrl40.dll] [Microsoft Corporation, 4.000.249.1]
[C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.3558\swg.dll] [Google Inc., 2, 0, 301, 3558]
[C:\Program Files\Windows Live Toolbar\msntb.dll] [Microsoft Corporation, 03.01.0000.0068]
[C:\Program Files\Windows Live Toolbar\fr-fr\mtbres.dll.mui] [Microsoft Corporation, 03.00.0001.2012]
[C:\Program Files\Windows Live Toolbar\mtbres.dll] [Microsoft Corporation, 03.01.0000.0068]
[C:\WINDOWS\system32\ieapfltr.dll] [Microsoft Corporation, 7.0.6000.16461]
[C:\WINDOWS\system32\Macromed\Flash\Flash9b.ocx] [Adobe Systems, Inc., 9,0,28,0]
[C:\WINDOWS\system32\msacm32.drv] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[PID: 2676][C:\Program Files\WinRAR\WinRAR.exe] [N/A, ]
[C:\Program Files\ScanSoft\OmniPageSE4.0\OpHookSE4.dll] [ScanSoft, Inc., 15.0]
[C:\Program Files\MSN Messenger\fsshext.8.1.0178.00.dll] [Microsoft Corporation, 8.1.0178.00]
[C:\WINDOWS\system32\wpdshext.dll] [Microsoft Corporation, 5.2.5721.5145 (WMP_11.061018-2006)]
[C:\WINDOWS\system32\PortableDeviceApi.dll] [Microsoft Corporation, 5.2.5721.5145 (WMP_11.061018-2006)]
[C:\WINDOWS\system32\Audiodev.dll] [Microsoft Corporation, 5.2.5721.5145 (WMP_11.061018-2006)]
[C:\WINDOWS\system32\Normaliz.dll] [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
[C:\WINDOWS\system32\iertutil.dll] [Microsoft Corporation, 7.00.6000.16441 (vista_gdr.070219-1500)]
[C:\WINDOWS\system32\ieframe.dll] [Microsoft Corporation, 7.00.6000.16441 (vista_gdr.070219-1500)]
[PID: 3676][C:\Documents and Settings\DJAMEL\Bureau\SREng.EXE] [Smallfrogs Studio, 2.4.12.806]
[C:\WINDOWS\system32\Normaliz.dll] [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
[C:\WINDOWS\system32\iertutil.dll] [Microsoft Corporation, 7.00.6000.16441 (vista_gdr.070219-1500)]
[C:\Program Files\ScanSoft\OmniPageSE4.0\OpHookSE4.dll] [ScanSoft, Inc., 15.0]
==================================
File Associations
.TXT OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE OK. ["%1" %*]
.COM OK. ["%1" %*]
.PIF OK. ["%1" %*]
.REG OK. [regedit.exe "%1"]
.BAT OK. ["%1" %*]
.SCR OK. ["%1" /S]
.CHM OK. ["C:\WINDOWS\hh.exe" %1]
.HLP OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK OK. [{00021401-0000-0000-C000-000000000046}]
==================================
Winsock Provider
N/A
==================================
Autorun.Inf
[D:\]
[autorun]
OPEN=setupSNK.exe
ICON=\SMRTNTKY\fcw.ico
ACTION=Assistant Réseau sans fil
==================================
HOSTS File
127.0.0.1 localhost
127.0.0.1 bin.errorprotector.com ## added by CiD
127.0.0.1 br.errorsafe.com ## added by CiD
127.0.0.1 br.winantivirus.com ## added by CiD
127.0.0.1 br.winfixer.com ## added by CiD
127.0.0.1 cdn.drivecleaner.com ## added by CiD
127.0.0.1 cdn.errorsafe.com ## added by CiD
127.0.0.1 cdn.winsoftware.com ## added by CiD
127.0.0.1 de.errorsafe.com ## added by CiD
127.0.0.1 de.winantivirus.com ## added by CiD
127.0.0.1 download.cdn.drivecleaner.com ## added by CiD
127.0.0.1 download.cdn.errorsafe.com ## added by CiD
127.0.0.1 download.cdn.winsoftware.com ## added by CiD
127.0.0.1 download.errorsafe.com ## added by CiD
127.0.0.1 download.systemdoctor.com ## added by CiD
127.0.0.1 download.winantispyware.com ## added by CiD
127.0.0.1 download.windrivecleaner.com ## added by CiD
127.0.0.1 download.winfixer.com ## added by CiD
127.0.0.1 drivecleaner.com ## added by CiD
127.0.0.1 dynamique.drivecleaner.com ## added by CiD
127.0.0.1 errorprotector.com ## added by CiD
127.0.0.1 errorsafe.com ## added by CiD
127.0.0.1 es.winantivirus.com ## added by CiD
127.0.0.1 fr.winantivirus.com ## added by CiD
127.0.0.1 fr.winfixer.com ## added by CiD
127.0.0.1 go.drivecleaner.com ## added by CiD
127.0.0.1 go.errorsafe.com ## added by CiD
127.0.0.1 go.winantispyware.com ## added by CiD
127.0.0.1 go.winantivirus.com ## added by CiD
127.0.0.1 hk.winantivirus.com ## added by CiD
127.0.0.1 instlog.errorsafe.com ## added by CiD
127.0.0.1 instlog.winantivirus.com ## added by CiD
127.0.0.1 instlog.winfixer.com ## added by CiD
127.0.0.1 jsp.drivecleaner.com ## added by CiD
127.0.0.1 kb.errorsafe.com ## added by CiD
127.0.0.1 kb.winantivirus.com ## added by CiD
127.0.0.1 nl.errorsafe.com ## added by CiD
127.0.0.1 se.errorsafe.com ## added by CiD
127.0.0.1 secure.drivecleaner.com ## added by CiD
127.0.0.1 secure.errorsafe.com ## added by CiD
127.0.0.1 secure.winantispam.com ## added by CiD
127.0.0.1 secure.winantispy.com ## added by CiD
127.0.0.1 secure.winantivirus.com ## added by CiD
127.0.0.1 support.winantivirus.com ## added by CiD
127.0.0.1 trial.updates.winsoftware.com ## added by CiD
127.0.0.1 ulog.winantivirus.com ## added by CiD
127.0.0.1 utils.errorsafe.com ## added by CiD
127.0.0.1 utils.winantivirus.com ## added by CiD
127.0.0.1 utils.winfixer.com ## added by CiD
127.0.0.1 winantispyware.com ## added by CiD
127.0.0.1 winantivirus.com ## added by CiD
127.0.0.1 winfixer.com ## added by CiD
127.0.0.1 winfixer2006.com ## added by CiD
127.0.0.1 winsoftware.com ## added by CiD
127.0.0.1 www.drivecleaner.com ## added by CiD
127.0.0.1 www.errorprotector.com ## added by CiD
127.0.0.1 www.errorsafe.com ## added by CiD
127.0.0.1 www.systemdoctor.com ## added by CiD
127.0.0.1 www.utils.winfixer.com ## added by CiD
127.0.0.1 www.win-anti-virus-pro.com ## added by CiD
127.0.0.1 www.win-virus-pro.com ## added by CiD
127.0.0.1 www.winantispam.com ## added by CiD
127.0.0.1 www.winantispy.com ## added by CiD
127.0.0.1 www.winantispyware.com ## added by CiD
127.0.0.1 www.winantivirus.com ## added by CiD
127.0.0.1 www.winantiviruspro.com ## added by CiD
127.0.0.1 www.windrivecleaner.com ## added by CiD
127.0.0.1 www.windrivesafe.com ## added by CiD
127.0.0.1 www.winfixer.com ## added by CiD
127.0.0.1 www.winfixer2006.com ## added by CiD
127.0.0.1 www.winsoftware.com ## added by CiD
==================================
API HOOK
N/A
==================================
Hidden Process
N/A
==================================
[/CODE]
Running Processes
[PID: 932][\SystemRoot\System32\smss.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1028][\??\C:\WINDOWS\system32\csrss.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1052][\??\C:\WINDOWS\system32\winlogon.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\WgaLogon.dll] [Microsoft Corporation, 1.7.0018.5]
[C:\WINDOWS\system32\msacm32.drv] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[PID: 1096][C:\WINDOWS\system32\services.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\AppPatch\AcAdProc.dll] [Microsoft Corporation, 5.1.2600.3008 (xpsp.061004-0027)]
[PID: 1108][C:\WINDOWS\system32\lsass.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1252][C:\WINDOWS\system32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1328][C:\WINDOWS\system32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1364][C:\WINDOWS\System32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\Normaliz.dll] [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
[C:\WINDOWS\system32\iertutil.dll] [Microsoft Corporation, 7.00.6000.16441 (vista_gdr.070219-1500)]
[C:\WINDOWS\system32\wups2.dll] [Microsoft Corporation, 7.0.6000.374 (winmain(wmbla).070416-2057)]
[PID: 1900][C:\WINDOWS\Explorer.EXE] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\Normaliz.dll] [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
[C:\WINDOWS\system32\iertutil.dll] [Microsoft Corporation, 7.00.6000.16441 (vista_gdr.070219-1500)]
[C:\WINDOWS\system32\ieframe.dll] [Microsoft Corporation, 7.00.6000.16441 (vista_gdr.070219-1500)]
[C:\Program Files\ScanSoft\OmniPageSE4.0\OpHookSE4.dll] [ScanSoft, Inc., 15.0]
[C:\WINDOWS\system32\WPDShServiceObj.dll] [Microsoft Corporation, 5.2.5721.5145 (WMP_11.061018-2006)]
[C:\WINDOWS\system32\PortableDeviceTypes.dll] [Microsoft Corporation, 5.2.5721.5145 (WMP_11.061018-2006)]
[C:\WINDOWS\system32\PortableDeviceApi.dll] [Microsoft Corporation, 5.2.5721.5145 (WMP_11.061018-2006)]
[C:\WINDOWS\system32\msacm32.drv] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[C:\Program Files\Fichiers communs\Ahead\Lib\NeroDigitalExt.dll] [Nero AG, 2, 0, 0, 8]
[C:\Program Files\Fichiers communs\Ahead\Lib\MFC71.DLL] [Microsoft Corporation, 7.10.3077.0]
[C:\Program Files\Fichiers communs\Ahead\Lib\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\Program Files\Fichiers communs\Ahead\Lib\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[C:\Program Files\Adobe\Acrobat 7.0\ActiveX\PDFShell.dll] [Adobe Systems, Inc., 7.0.0.0]
[C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\shellexecutehook.dll] [GRISOFT s.r.o., 7, 5, 1, 36]
[C:\Program Files\Nero\Nero 7\Nero BackItUp\NBShell.dll] [Nero AG, 2, 7, 2, 0]
[C:\Program Files\Nero\Nero 7\Nero BackItUp\MFC71U.DLL] [Microsoft Corporation, 7.10.3077.0]
[C:\Program Files\Alwil Software\Avast4\ashShell.dll] [ALWIL Software, 4, 7, 997, 0]
[C:\Program Files\WinRAR\rarext.dll] [N/A, ]
[C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\context.dll] [GRISOFT s.r.o., 7, 5, 1, 36]
[C:\WINDOWS\system32\CmdLineExt.dll] [Sony DADC Austria AG., 1,1,221,0]
[C:\WINDOWS\system32\nvcpl.dll] [NVIDIA Corporation, 6.14.10.8204]
[C:\WINDOWS\system32\NVRSFR.DLL] [NVIDIA Corporation, 6.14.10.8204]
[C:\WINDOWS\system32\nvshell.dll] [, ]
[C:\Program Files\UltraISO\isoshell.dll] [EZB Systems, Inc., 1, 0, 0, 1]
[PID: 388][C:\WINDOWS\ATK0100\HControl.exe] [, 1043, 2, 15, 51]
[C:\WINDOWS\ATK0100\CMSSC.dll] [N/A, ]
[C:\WINDOWS\ATK0100\inter_f2.dll] [ATK, 1043, 2, 15, 46]
[C:\WINDOWS\ATK0100\ATKWLIOC.DLL] [ACTIONTEC Electronics,Inc, 2.01.02]
[C:\WINDOWS\ATK0100\SiSPkt.dll] [Silicon Integrated Systems Corp., 1, 0, 0, 45]
[C:\WINDOWS\ATK0100\ASUSNET.dll] [, 1, 9, 6, 0]
[C:\WINDOWS\ATK0100\ASW32N50.dll] [Printing Communications Assoc., Inc. (PCAUSA), 5.00.13.50]
[C:\Program Files\ScanSoft\OmniPageSE4.0\OpHookSE4.dll] [ScanSoft, Inc., 15.0]
[C:\WINDOWS\system32\SynCOM.dll] [Synaptics, Inc., 8.1.5 18Aug05]
[C:\WINDOWS\system32\msacm32.drv] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[PID: 412][C:\Program Files\Synaptics\SynTP\SynTPEnh.exe] [Synaptics, Inc., 8.1.5 18Aug05]
[C:\WINDOWS\system32\SynCOM.dll] [Synaptics, Inc., 8.1.5 18Aug05]
[C:\WINDOWS\system32\SynTPAPI.dll] [Synaptics, Inc., 8.1.5 18Aug05]
[C:\Program Files\ScanSoft\OmniPageSE4.0\OpHookSE4.dll] [ScanSoft, Inc., 15.0]
[PID: 420][C:\Program Files\ASUSTeK\ASUSDVD\PDVDServ.exe] [Cyberlink Corp., 6.00.1027]
[C:\Program Files\ASUSTeK\ASUSDVD\CLRCEngine2.dll] [CyberLink Corp., 3.2.2021 ]
[C:\Program Files\ScanSoft\OmniPageSE4.0\OpHookSE4.dll] [ScanSoft, Inc., 15.0]
[PID: 428][C:\Program Files\ASUS\Power4 Gear\BatteryLife.exe] [ASUSTeK Computer Inc., 1043, 6, 15, 112]
[C:\Program Files\ASUS\Power4 Gear\ATKMETHOD.dll] [ASUSTeK Computer Inc., 1043, 6, 15, 112]
[C:\Program Files\ScanSoft\OmniPageSE4.0\OpHookSE4.dll] [ScanSoft, Inc., 15.0]
[PID: 436][C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe] [ALWIL Software, 4, 7, 997, 0]
[C:\PROGRA~1\ALWILS~1\Avast4\aswCmnOS.dll] [ALWIL Software, 4, 7, 997, 0]
[C:\WINDOWS\system32\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[C:\WINDOWS\system32\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\PROGRA~1\ALWILS~1\Avast4\ashBase.dll] [ALWIL Software, 4, 7, 997, 0]
[C:\PROGRA~1\ALWILS~1\Avast4\aswCmnB.dll] [ALWIL Software, 4, 7, 997, 0]
[C:\PROGRA~1\ALWILS~1\Avast4\aswCmnS.dll] [ALWIL Software, 4, 7, 997, 0]
[C:\PROGRA~1\ALWILS~1\Avast4\ashTask.dll] [ALWIL Software, 4, 7, 997, 0]
[C:\PROGRA~1\ALWILS~1\Avast4\aswAux.dll] [ALWIL Software, 4, 7, 997, 0]
[C:\PROGRA~1\ALWILS~1\Avast4\Aavm4h.dll] [ALWIL Software, 4, 7, 997, 0]
[C:\Program Files\Alwil Software\Avast4\French\Base.dll] [ALWIL Software, 4, 7, 997, 0]
[C:\Program Files\Alwil Software\Avast4\French\Lang.dll] [ALWIL Software, 4, 7, 997, 0]
[C:\WINDOWS\system32\MFC71.DLL] [Microsoft Corporation, 7.10.3077.0]
[C:\PROGRA~1\ALWILS~1\Avast4\AavmRpch.dll] [ALWIL Software, 4, 7, 997, 0]
[c:\program files\alwil software\avast4\ahruimai.dll] [ALWIL Software, 4, 7, 997, 0]
[C:\PROGRA~1\ALWILS~1\Avast4\ashUInt.dll] [ALWIL Software, 4, 7, 997, 0]
[C:\PROGRA~1\ALWILS~1\Avast4\XT1922.dll] [Codejock Software, 1, 9, 4, 0]
[c:\program files\alwil software\avast4\ahruimes.dll] [ALWIL Software, 4, 7, 997, 0]
[c:\program files\alwil software\avast4\ahruins.dll] [ALWIL Software, 4, 7, 997, 0]
[c:\program files\alwil software\avast4\ahruiout.dll] [ALWIL Software, 4, 7, 997, 0]
[C:\WINDOWS\system32\MAPI32.dll] [Microsoft Corporation, 1.0.2536.0 (XPClient.010817-1148)]
[c:\program files\alwil software\avast4\ahruip2p.dll] [ALWIL Software, 4, 7, 997, 0]
[c:\program files\alwil software\avast4\ahruistd.dll] [ALWIL Software, 4, 7, 997, 0]
[c:\program files\alwil software\avast4\ahruiws.dll] [ALWIL Software, 4, 7, 997, 0]
[C:\Program Files\ScanSoft\OmniPageSE4.0\OpHookSE4.dll] [ScanSoft, Inc., 15.0]
[C:\Program Files\Alwil Software\Avast4\AavmGuih.dll] [ALWIL Software, 4, 7, 997, 0]
[PID: 500][C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe] [Sun Microsystems, Inc., 6.0.10.6]
[C:\WINDOWS\system32\Normaliz.dll] [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
[C:\WINDOWS\system32\iertutil.dll] [Microsoft Corporation, 7.00.6000.16441 (vista_gdr.070219-1500)]
[C:\Program Files\Java\jre1.6.0_01\bin\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[PID: 616][C:\Program Files\Neuf\Kit\WiFi\9wifi.exe] [Neuf, 6.6.21.1]
[C:\Program Files\Neuf\Kit\WiFi\W32N55.dll] [Printing Communications Assoc., Inc. (PCAUSA), 5.5.18.04]
[C:\Program Files\ScanSoft\OmniPageSE4.0\OpHookSE4.dll] [ScanSoft, Inc., 15.0]
[C:\Program Files\Neuf\Kit\WiFi\9wifips.dll] [N/A, ]
[PID: 632][C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe] [ScanSoft, Inc., 15.0]
[C:\Program Files\ScanSoft\OmniPageSE4.0\OpHookSE4.dll] [ScanSoft, Inc., 15.0]
[PID: 684][C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe] [Nero AG, 1, 5, 3, 0]
[C:\Program Files\Fichiers communs\Ahead\Lib\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[C:\Program Files\Fichiers communs\Ahead\Lib\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\Program Files\ScanSoft\OmniPageSE4.0\OpHookSE4.dll] [ScanSoft, Inc., 15.0]
[C:\Program Files\Fichiers communs\Ahead\Lib\AdvrCntr2.dll] [Nero AG, 5,16,1, 9000]
[C:\WINDOWS\system32\Normaliz.dll] [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
[C:\WINDOWS\system32\iertutil.dll] [Microsoft Corporation, 7.00.6000.16441 (vista_gdr.070219-1500)]
[C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexStoreSvrPS.dll] [Nero AG, 1, 5, 3, 0]
[C:\Program Files\Fichiers communs\Ahead\Lib\NMDataServices.dll] [Nero AG, 1, 5, 3, 0]
[PID: 720][C:\Program Files\MSN Messenger\MsnMsgr.Exe] [Microsoft Corporation, 8.1.0178.00]
[C:\Program Files\MSN Messenger\MSIMG32.dll] [Patchou, 4, 21, 0, 270]
[C:\Program Files\MSN Messenger\MSNCore.dll] [Microsoft Corporation, 8.1.0178.00]
[C:\WINDOWS\system32\Normaliz.dll] [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
[C:\WINDOWS\system32\iertutil.dll] [Microsoft Corporation, 7.00.6000.16441 (vista_gdr.070219-1500)]
[C:\Program Files\MSN Messenger\msidcrl40.dll] [Microsoft Corporation, 4.100.313.1]
[C:\Program Files\MSN Messenger\ContactsUX.dll] [Microsoft Corporation, 8.1.0178.00]
[C:\Program Files\Messenger Plus! Live\MsgPlusLive1.dll] [Patchou, 4, 21, 0, 270]
[C:\Program Files\Messenger Plus! Live\Detoured.dll] [N/A, ]
[C:\Program Files\ScanSoft\OmniPageSE4.0\OpHookSE4.dll] [ScanSoft, Inc., 15.0]
[C:\Program Files\MSN Messenger\msgslang.8.1.0178.00.dll] [Microsoft Corporation, 8.1.0178.00]
[C:\Program Files\MSN Messenger\msgsres.dll] [Microsoft Corporation, 8.1.0178.00]
[C:\Program Files\Messenger Plus! Live\MsgPlusLiveRes.dll] [Patchou, 4, 21, 0, 270]
[C:\Program Files\MSN Messenger\lcapi.dll] [Microsoft Corporation, 1.7.256.0 (RTC Version 4.3.5371.0) built by: msn8.0(rtbldlab)]
[C:\WINDOWS\system32\msdmo.dll] [, ]
[C:\Program Files\MSN Messenger\lcres.dll] [Microsoft Corp., 1.7.109.0 (RTC Version 4.3.5371.0) built by: msn8.0(rtbldlab)]
[C:\Program Files\MSN Messenger\RTMPLTFM.dll] [Microsoft Corporation, 3.0.5774.0 built by: media_msn80]
[C:\WINDOWS\system32\msacm32.drv] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[C:\Program Files\MSN Messenger\MSGSWCAM.dll] [Microsoft Corporation, 8.1.0178.00]
[C:\WINDOWS\system32\sirenacm.dll] [Microsoft Corp., 8.1.0178.00]
[C:\Program Files\Messenger Plus! Live\MPScripts.dll] [N/A, ]
[C:\Program Files\MSN Messenger\lmcdata.dll] [Microsoft Corporation, 8.1.0178.00]
[C:\Program Files\MSN Messenger\custsat.dll] [Microsoft Corporation, 9.0.3790.2428 (srv03_sp1_qfe.050422-1043)]
[C:\Program Files\MSN Messenger\abssm.dll] [Microsoft Corporation, 8.1.0178.00]
[C:\WINDOWS\system32\msaud32.acm] [Microsoft Corporation, 8.00.00.4487]
[C:\Program Files\Messenger Plus! Live\libsndfile.dll] [N/A, ]
[C:\Program Files\Messenger Plus! Live\lame_enc.dll] [N/A, ]
[C:\WINDOWS\system32\SynProp.ax] [Syntek America Inc., 1.0.0.2]
[C:\WINDOWS\system32\dshowext.ax] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\Program Files\MSN Messenger\contact.dll] [Microsoft Corporation, 8.1.0178.00]
[C:\WINDOWS\system32\ieframe.dll] [Microsoft Corporation, 7.00.6000.16441 (vista_gdr.070219-1500)]
[C:\PROGRA~1\FICHIE~1\MICROS~1\OFFICE12\MSOXMLMF.DLL] [Microsoft Corporation, 12.0.4518.1014]
[C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\shellexecutehook.dll] [GRISOFT s.r.o., 7, 5, 1, 36]
[C:\WINDOWS\system32\Macromed\Flash\Flash9b.ocx] [Adobe Systems, Inc., 9,0,28,0]
[C:\Program Files\MSN Messenger\wmv9vcm.dll] [Microsoft Corporation, 9.0.1.1184]
[PID: 736][C:\WINDOWS\system32\ctfmon.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\Program Files\ScanSoft\OmniPageSE4.0\OpHookSE4.dll] [ScanSoft, Inc., 15.0]
[PID: 776][C:\Program Files\DAEMON Tools\daemon.exe] [DT Soft Ltd., 4.08.0.0]
[C:\Program Files\DAEMON Tools\daemon.dll] [DT Soft Ltd., 4.08.0.0]
[C:\Program Files\DAEMON Tools\PFCTOC.DLL] [Padus(R), Inc., 1, 0, 0, 12]
[C:\Program Files\DAEMON Tools\Plugins\Images\bw5mount.dll] [, 1.1.0.0]
[C:\Program Files\DAEMON Tools\Plugins\Images\ccdmount.dll] [GENERIC, 1.10.0.0]
[C:\Program Files\DAEMON Tools\Plugins\Images\cuemount.dll] [DT Soft Ltd., 1.01.0.0]
[C:\Program Files\DAEMON Tools\Plugins\Images\mdsmount.dll] [DT Soft Ltd., 1.18.0.0]
[C:\Program Files\DAEMON Tools\Plugins\Images\nrgmount.dll] [DT Soft Ltd., 1.12.0.0]
[C:\Program Files\DAEMON Tools\Plugins\Images\pdimount.dll] [GENERIC, 1.01.0.0]
[C:\Program Files\ScanSoft\OmniPageSE4.0\OpHookSE4.dll] [ScanSoft, Inc., 15.0]
[PID: 820][C:\Program Files\Asus\Asus ChkMail\ChkMail.exe] [asus, 1043, 1, 15, 5]
[C:\Program Files\ScanSoft\OmniPageSE4.0\OpHookSE4.dll] [ScanSoft, Inc., 15.0]
[PID: 1476][C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexStoreSvr.exe] [Nero AG, 1, 5, 3, 0]
[C:\Program Files\Fichiers communs\Ahead\Lib\NMSQLDB.dll] [Nero AG, 1, 5, 3, 0]
[C:\Program Files\Fichiers communs\Ahead\Lib\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[C:\Program Files\Fichiers communs\Ahead\Lib\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\Program Files\ScanSoft\OmniPageSE4.0\OpHookSE4.dll] [ScanSoft, Inc., 15.0]
[C:\Program Files\Fichiers communs\Ahead\Lib\NMLogCxx.dll] [Nero AG, 1, 5, 3, 0]
[C:\Program Files\Fichiers communs\Ahead\Lib\log4cxx.dll] [Nero AG, 1, 0, 0, 0]
[C:\Program Files\Fichiers communs\Ahead\Lib\NMCoFoundation.dll] [Nero AG, 1, 5, 3, 0]
[C:\Program Files\Fichiers communs\Ahead\Lib\NMPluginBase.dll] [Nero AG, 1, 5, 3, 0]
[C:\Program Files\Fichiers communs\Ahead\Lib\NMFullTextExtraction.dll] [Nero AG, 1, 5, 3, 0]
[C:\WINDOWS\system32\iertutil.dll] [Microsoft Corporation, 7.00.6000.16441 (vista_gdr.070219-1500)]
[C:\Program Files\Fichiers communs\Ahead\Lib\NMSearchPluginSimilarImages.dll] [Nero AG, 1, 5, 3, 0]
[C:\Program Files\Fichiers communs\Ahead\Lib\NeroIPP.dll] [Nero AG, 4,5,13,0]
[C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexStoreSvrPS.dll] [Nero AG, 1, 5, 3, 0]
[C:\Program Files\Fichiers communs\Ahead\Lib\NMDataServices.dll] [Nero AG, 1, 5, 3, 0]
[C:\Program Files\Fichiers communs\Ahead\Lib\NMSlideShow.dll] [Nero AG, 1, 5, 3, 0]
[C:\Program Files\Adobe\Acrobat 7.0\Reader\AcroRdIF.dll] [Adobe Systems Incorporated, 7, 0, 5, 0]
[C:\Program Files\Adobe\Acrobat 7.0\Reader\AcroRd32.dll] [Adobe Systems Incorporated, 7.0.8.2006051600]
[C:\Program Files\Adobe\Acrobat 7.0\Reader\AGM.dll] [Adobe Systems Incorporated, 4.14.45]
[C:\Program Files\Adobe\Acrobat 7.0\Reader\CoolType.dll] [Adobe Systems Incorporated, 5.01.41]
[C:\Program Files\Adobe\Acrobat 7.0\Reader\BIB.dll] [Adobe Systems Incorporated, 1.1.18]
[C:\Program Files\Adobe\Acrobat 7.0\Reader\ACE.dll] [Adobe Systems Incorporated, 2.07.28]
[C:\Program Files\Adobe\Acrobat 7.0\Reader\JP2KLib.dll] [Adobe Systems Incorporated, 1.0.41402]
[C:\Program Files\Adobe\Acrobat 7.0\Reader\AXE16SharedExpat.dll] [Adobe Systems Incorporated, 3.2.402]
[PID: 3460][C:\WINDOWS\ATK0100\ATKOSD.exe] [, 1043, 2, 15, 51]
[C:\Program Files\ScanSoft\OmniPageSE4.0\OpHookSE4.dll] [ScanSoft, Inc., 15.0]
[PID: 3564][C:\Program Files\Internet Explorer\iexplore.exe] [Microsoft Corporation, 7.00.6000.16441 (vista_gdr.070219-1500)]
[C:\WINDOWS\system32\iertutil.dll] [Microsoft Corporation, 7.00.6000.16441 (vista_gdr.070219-1500)]
[C:\WINDOWS\system32\IEFRAME.dll] [Microsoft Corporation, 7.00.6000.16441 (vista_gdr.070219-1500)]
[C:\Program Files\ScanSoft\OmniPageSE4.0\OpHookSE4.dll] [ScanSoft, Inc., 15.0]
[C:\WINDOWS\system32\IEUI.dll] [Microsoft Corporation, 7.00.5730.11 (winmain(wmbla).061017-1135)]
[C:\WINDOWS\system32\xmllite.dll] [Microsoft Corporation, 1.00.1018.0]
[C:\Program Files\Microsoft Office\Office12\msohevi.dll] [Microsoft Corporation, 12.0.4518.1014]
[C:\Program Files\Internet Explorer\ieproxy.dll] [Microsoft Corporation, 7.00.5730.11 (winmain(wmbla).061017-1135)]
[C:\WINDOWS\system32\Normaliz.dll] [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
[c:\program files\google\googletoolbar2.dll] [Google Inc., 4, 0, 1601, 4978]
[C:\WINDOWS\system32\PortableDeviceApi.dll] [Microsoft Corporation, 5.2.5721.5145 (WMP_11.061018-2006)]
[C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll] [, 2, 6, 3, 0]
[C:\WINDOWS\system32\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\Program Files\Canon\Easy-WebPrint\EWPCore.dll] [, 2, 6, 3, 0]
[C:\WINDOWS\system32\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll] [Sun Microsystems, Inc., 6.0.10.6]
[C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll] [Microsoft Corporation, 4.000.249.1]
[C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\msidcrl40.dll] [Microsoft Corporation, 4.000.249.1]
[C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.3558\swg.dll] [Google Inc., 2, 0, 301, 3558]
[C:\Program Files\Windows Live Toolbar\msntb.dll] [Microsoft Corporation, 03.01.0000.0068]
[C:\Program Files\Windows Live Toolbar\fr-fr\mtbres.dll.mui] [Microsoft Corporation, 03.00.0001.2012]
[C:\Program Files\Windows Live Toolbar\mtbres.dll] [Microsoft Corporation, 03.01.0000.0068]
[C:\WINDOWS\system32\ieapfltr.dll] [Microsoft Corporation, 7.0.6000.16461]
[C:\WINDOWS\system32\Macromed\Flash\Flash9b.ocx] [Adobe Systems, Inc., 9,0,28,0]
[C:\WINDOWS\system32\msacm32.drv] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[PID: 2676][C:\Program Files\WinRAR\WinRAR.exe] [N/A, ]
[C:\Program Files\ScanSoft\OmniPageSE4.0\OpHookSE4.dll] [ScanSoft, Inc., 15.0]
[C:\Program Files\MSN Messenger\fsshext.8.1.0178.00.dll] [Microsoft Corporation, 8.1.0178.00]
[C:\WINDOWS\system32\wpdshext.dll] [Microsoft Corporation, 5.2.5721.5145 (WMP_11.061018-2006)]
[C:\WINDOWS\system32\PortableDeviceApi.dll] [Microsoft Corporation, 5.2.5721.5145 (WMP_11.061018-2006)]
[C:\WINDOWS\system32\Audiodev.dll] [Microsoft Corporation, 5.2.5721.5145 (WMP_11.061018-2006)]
[C:\WINDOWS\system32\Normaliz.dll] [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
[C:\WINDOWS\system32\iertutil.dll] [Microsoft Corporation, 7.00.6000.16441 (vista_gdr.070219-1500)]
[C:\WINDOWS\system32\ieframe.dll] [Microsoft Corporation, 7.00.6000.16441 (vista_gdr.070219-1500)]
[PID: 3676][C:\Documents and Settings\DJAMEL\Bureau\SREng.EXE] [Smallfrogs Studio, 2.4.12.806]
[C:\WINDOWS\system32\Normaliz.dll] [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
[C:\WINDOWS\system32\iertutil.dll] [Microsoft Corporation, 7.00.6000.16441 (vista_gdr.070219-1500)]
[C:\Program Files\ScanSoft\OmniPageSE4.0\OpHookSE4.dll] [ScanSoft, Inc., 15.0]
==================================
File Associations
.TXT OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE OK. ["%1" %*]
.COM OK. ["%1" %*]
.PIF OK. ["%1" %*]
.REG OK. [regedit.exe "%1"]
.BAT OK. ["%1" %*]
.SCR OK. ["%1" /S]
.CHM OK. ["C:\WINDOWS\hh.exe" %1]
.HLP OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK OK. [{00021401-0000-0000-C000-000000000046}]
==================================
Winsock Provider
N/A
==================================
Autorun.Inf
[D:\]
[autorun]
OPEN=setupSNK.exe
ICON=\SMRTNTKY\fcw.ico
ACTION=Assistant Réseau sans fil
==================================
HOSTS File
127.0.0.1 localhost
127.0.0.1 bin.errorprotector.com ## added by CiD
127.0.0.1 br.errorsafe.com ## added by CiD
127.0.0.1 br.winantivirus.com ## added by CiD
127.0.0.1 br.winfixer.com ## added by CiD
127.0.0.1 cdn.drivecleaner.com ## added by CiD
127.0.0.1 cdn.errorsafe.com ## added by CiD
127.0.0.1 cdn.winsoftware.com ## added by CiD
127.0.0.1 de.errorsafe.com ## added by CiD
127.0.0.1 de.winantivirus.com ## added by CiD
127.0.0.1 download.cdn.drivecleaner.com ## added by CiD
127.0.0.1 download.cdn.errorsafe.com ## added by CiD
127.0.0.1 download.cdn.winsoftware.com ## added by CiD
127.0.0.1 download.errorsafe.com ## added by CiD
127.0.0.1 download.systemdoctor.com ## added by CiD
127.0.0.1 download.winantispyware.com ## added by CiD
127.0.0.1 download.windrivecleaner.com ## added by CiD
127.0.0.1 download.winfixer.com ## added by CiD
127.0.0.1 drivecleaner.com ## added by CiD
127.0.0.1 dynamique.drivecleaner.com ## added by CiD
127.0.0.1 errorprotector.com ## added by CiD
127.0.0.1 errorsafe.com ## added by CiD
127.0.0.1 es.winantivirus.com ## added by CiD
127.0.0.1 fr.winantivirus.com ## added by CiD
127.0.0.1 fr.winfixer.com ## added by CiD
127.0.0.1 go.drivecleaner.com ## added by CiD
127.0.0.1 go.errorsafe.com ## added by CiD
127.0.0.1 go.winantispyware.com ## added by CiD
127.0.0.1 go.winantivirus.com ## added by CiD
127.0.0.1 hk.winantivirus.com ## added by CiD
127.0.0.1 instlog.errorsafe.com ## added by CiD
127.0.0.1 instlog.winantivirus.com ## added by CiD
127.0.0.1 instlog.winfixer.com ## added by CiD
127.0.0.1 jsp.drivecleaner.com ## added by CiD
127.0.0.1 kb.errorsafe.com ## added by CiD
127.0.0.1 kb.winantivirus.com ## added by CiD
127.0.0.1 nl.errorsafe.com ## added by CiD
127.0.0.1 se.errorsafe.com ## added by CiD
127.0.0.1 secure.drivecleaner.com ## added by CiD
127.0.0.1 secure.errorsafe.com ## added by CiD
127.0.0.1 secure.winantispam.com ## added by CiD
127.0.0.1 secure.winantispy.com ## added by CiD
127.0.0.1 secure.winantivirus.com ## added by CiD
127.0.0.1 support.winantivirus.com ## added by CiD
127.0.0.1 trial.updates.winsoftware.com ## added by CiD
127.0.0.1 ulog.winantivirus.com ## added by CiD
127.0.0.1 utils.errorsafe.com ## added by CiD
127.0.0.1 utils.winantivirus.com ## added by CiD
127.0.0.1 utils.winfixer.com ## added by CiD
127.0.0.1 winantispyware.com ## added by CiD
127.0.0.1 winantivirus.com ## added by CiD
127.0.0.1 winfixer.com ## added by CiD
127.0.0.1 winfixer2006.com ## added by CiD
127.0.0.1 winsoftware.com ## added by CiD
127.0.0.1 www.drivecleaner.com ## added by CiD
127.0.0.1 www.errorprotector.com ## added by CiD
127.0.0.1 www.errorsafe.com ## added by CiD
127.0.0.1 www.systemdoctor.com ## added by CiD
127.0.0.1 www.utils.winfixer.com ## added by CiD
127.0.0.1 www.win-anti-virus-pro.com ## added by CiD
127.0.0.1 www.win-virus-pro.com ## added by CiD
127.0.0.1 www.winantispam.com ## added by CiD
127.0.0.1 www.winantispy.com ## added by CiD
127.0.0.1 www.winantispyware.com ## added by CiD
127.0.0.1 www.winantivirus.com ## added by CiD
127.0.0.1 www.winantiviruspro.com ## added by CiD
127.0.0.1 www.windrivecleaner.com ## added by CiD
127.0.0.1 www.windrivesafe.com ## added by CiD
127.0.0.1 www.winfixer.com ## added by CiD
127.0.0.1 www.winfixer2006.com ## added by CiD
127.0.0.1 www.winsoftware.com ## added by CiD
==================================
API HOOK
N/A
==================================
Hidden Process
N/A
==================================
[/CODE]
Pas de problème, j'arrive à voir
Le fichier hosts est détourné.
Télécharge R-Hosts
http://siri.urz.free.fr/RHosts.php
Installe le sur le Bureau.
Lance le. Clique sur Restaurer.
Confirme.
Ferme le programme.
Télécharge LopxpMH sur ton Bureau.
http://www.alt-shift-return.org/Info/Fichiers/lopxpMH2....
Dézippe-le (clic droit >> Extraire ici) et double clique sur le fichier lopxpMH.bat.
Poste le contenu du rapport qui va s'ouvrir.
Le fichier hosts est détourné.
Télécharge R-Hosts
http://siri.urz.free.fr/RHosts.php
Installe le sur le Bureau.
Lance le. Clique sur Restaurer.
Confirme.
Ferme le programme.
Télécharge LopxpMH sur ton Bureau.
http://www.alt-shift-return.org/Info/Fichiers/lopxpMH2....
Dézippe-le (clic droit >> Extraire ici) et double clique sur le fichier lopxpMH.bat.
Poste le contenu du rapport qui va s'ouvrir.
Rapport fait à 21:47:09,62 le 14/04/2007
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est E8C3-4C5B
R‚pertoire de C:\Documents and Settings\Default User\Application Data
12/12/2006 01:47 <REP> Symantec
12/12/2006 01:47 <REP> Macromedia
19/10/2006 06:42 <REP> Identities
19/10/2006 06:35 62 desktop.ini
19/10/2006 06:35 <REP> Microsoft
19/10/2006 06:35 <REP> ..
19/10/2006 06:35 <REP> .
1 fichier(s) 62 octets
6 R‚p(s) 7645659136 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est E8C3-4C5B
R‚pertoire de C:\Documents and Settings\All Users\Application Data
14/04/2007 19:37 <REP> scr fork cast wma
02/04/2007 11:45 0 LauncherAccess.dt
31/03/2007 20:09 <REP> Messenger Plus!
29/03/2007 12:01 <REP> Test Drive Unlimited
28/02/2007 15:03 <REP> InstallShield
28/02/2007 15:02 <REP> ScanSoft
28/02/2007 14:58 <REP> CanonBJ
15/02/2007 01:16 <REP> pixelStorm
12/02/2007 00:18 <REP> Macrovision
11/02/2007 23:57 <REP> BOONTY
08/02/2007 11:44 <REP> nView_Profiles
06/02/2007 13:49 <REP> Windows Live Toolbar
05/01/2007 11:17 <REP> Google
19/12/2006 17:25 <REP> Raxco
13/12/2006 18:00 <REP> CyberLink
12/12/2006 16:57 <REP> DVD Shrink
12/12/2006 16:54 <REP> Adobe
12/12/2006 16:52 <REP> Apple Computer
12/12/2006 16:52 <REP> Real
12/12/2006 11:46 <REP> Adobe Systems
12/12/2006 11:36 <REP> Microsoft Help
12/12/2006 11:24 <REP> Windows Genuine Advantage
12/12/2006 11:15 <REP> Nero
19/10/2006 07:01 <REP> Symantec
19/10/2006 06:47 <REP> SBSI
19/10/2006 06:35 62 desktop.ini
19/10/2006 06:35 <REP> Microsoft
19/10/2006 06:35 <REP> .
19/10/2006 06:35 <REP> ..
2 fichier(s) 62 octets
27 R‚p(s) 7645659136 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est E8C3-4C5B
R‚pertoire de C:\Documents and Settings\DJAMEL\Application Data
14/04/2007 19:37 <REP> acid type mode
31/03/2007 18:53 <REP> Screenshot Sender
18/03/2007 17:49 <REP> MySpace
14/03/2007 10:56 <REP> Mozilla
14/03/2007 10:55 <REP> SecondLife
03/03/2007 16:50 <REP> SecuROM
28/02/2007 17:45 <REP> ArcSoft
28/02/2007 17:05 <REP> Canon
28/02/2007 15:03 <REP> ScanSoft
17/02/2007 01:06 <REP> FastStone
12/02/2007 00:29 <REP> Help
08/02/2007 21:45 <REP> Samsung
16/01/2007 10:41 <REP> AdobeUM
05/01/2007 11:17 <REP> Google
04/01/2007 11:59 <REP> MSNInstaller
24/12/2006 16:00 <REP> Opera
17/12/2006 17:18 <REP> Media Player Classic
14/12/2006 11:58 <REP> Sun
13/12/2006 18:00 <REP> CyberLink
12/12/2006 16:52 <REP> Real
12/12/2006 12:48 <REP> Adobe
12/12/2006 11:22 <REP> Simple Star
12/12/2006 11:22 66 Setup.txt
12/12/2006 11:20 <REP> Nero
12/12/2006 11:17 <REP> Ahead
12/12/2006 01:48 62 desktop.ini
12/12/2006 01:48 <REP> Microsoft
12/12/2006 01:48 <REP> Identities
12/12/2006 01:48 <REP> Symantec
12/12/2006 01:48 <REP> ..
12/12/2006 01:48 <REP> .
12/12/2006 01:48 <REP> Macromedia
2 fichier(s) 128 octets
30 R‚p(s) 7645659136 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est E8C3-4C5B
R‚pertoire de C:\Documents and Settings\Invit‚\Application Data
19/12/2006 17:40 62 desktop.ini
19/12/2006 17:40 <REP> Microsoft
19/12/2006 17:40 <REP> Identities
19/12/2006 17:40 <REP> Macromedia
19/12/2006 17:40 <REP> Symantec
19/12/2006 17:40 <REP> ..
19/12/2006 17:40 <REP> .
1 fichier(s) 62 octets
6 R‚p(s) 7645659136 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est E8C3-4C5B
R‚pertoire de C:\Documents and Settings\Application Data\Application Data
18/03/2007 17:49 <REP> ..
18/03/2007 17:49 <REP> Microsoft
18/03/2007 17:49 <REP> .
0 fichier(s) 0 octets
3 R‚p(s) 7645659136 octets libres
******************************************
Recherche des taches planifiées dans C:\WINDOWS\tasks
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est E8C3-4C5B
R‚pertoire de C:\WINDOWS\Tasks
14/04/2007 19:37 268 A6E6C94291854262.job
06/02/2007 13:49 256 V‚rifier les mises … jour de Windows Live Toolbar.job
19/10/2006 06:46 6 SA.DAT
19/10/2006 06:41 <REP> ..
19/10/2006 06:41 <REP> .
20/09/2004 17:48 65 desktop.ini
4 fichier(s) 595 octets
2 R‚p(s) 7ÿ645ÿ659ÿ136 octets libres
******************************************
Recherche dans Program files
C:\Program Files\Adverts Présent !
******************************************
Recherche d'infections connues
C:\WINDOWS\system32\csrss.exe Wareout possible ! [#ff0000]faux-positif si csrss.exe ![/#f]
*************** Fin du rapport ****************
Rapport lopxpMH2 version 2.0 fait à 0:11:56,31 le 12/06/2007
C:\Documents and Settings\DJAMEL\Bureau
******************************************
## Répertoires Application Data
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\Default User\Application Data
19/10/2006 06:35 <REP> .
19/10/2006 06:35 <REP> ..
19/10/2006 06:42 <REP> Identities
12/12/2006 01:47 <REP> Macromedia
19/10/2006 06:35 <REP> Microsoft
12/12/2006 01:47 <REP> Symantec
19/10/2006 06:35 62 desktop.ini
1 fichier(s) 62 octets
6 Rép(s) 25 287 753 728 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\Default User\Local Settings\Application Data
19/10/2006 06:35 <REP> .
19/10/2006 06:35 <REP> ..
19/10/2006 06:42 <REP> Microsoft
12/04/2007 03:01 <REP> Microsoft Help
0 fichier(s) 0 octets
4 Rép(s) 25 287 753 728 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\All Users\Application Data
19/10/2006 06:35 <REP> .
19/10/2006 06:35 <REP> ..
12/12/2006 16:54 <REP> Adobe
12/12/2006 11:46 <REP> Adobe Systems
12/12/2006 16:52 <REP> Apple Computer
11/02/2007 23:57 <REP> BOONTY
28/02/2007 14:58 <REP> CanonBJ
13/12/2006 18:00 <REP> CyberLink
12/12/2006 16:57 <REP> DVD Shrink
05/01/2007 11:17 <REP> Google
28/02/2007 15:03 <REP> InstallShield
12/02/2007 00:18 <REP> Macrovision
31/03/2007 20:09 <REP> Messenger Plus!
19/10/2006 06:35 <REP> Microsoft
12/12/2006 11:36 <REP> Microsoft Help
12/12/2006 11:15 <REP> Nero
08/02/2007 11:44 <REP> nView_Profiles
15/02/2007 01:16 <REP> pixelStorm
19/12/2006 17:25 <REP> Raxco
12/12/2006 16:52 <REP> Real
19/10/2006 06:47 <REP> SBSI
28/02/2007 15:02 <REP> ScanSoft
11/06/2007 00:17 <REP> Spybot - Search & Destroy
19/10/2006 07:01 <REP> Symantec
29/03/2007 12:01 <REP> Test Drive Unlimited
12/12/2006 11:24 <REP> Windows Genuine Advantage
06/02/2007 13:49 <REP> Windows Live Toolbar
19/10/2006 06:35 62 desktop.ini
02/04/2007 11:45 0 LauncherAccess.dt
2 fichier(s) 62 octets
27 Rép(s) 25 287 753 728 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\NetworkService\Application Data
19/10/2006 06:46 <REP> .
19/10/2006 06:46 <REP> ..
19/10/2006 06:46 <REP> Microsoft
0 fichier(s) 0 octets
3 Rép(s) 25 287 753 728 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\NetworkService\Local Settings\Application Data
19/10/2006 06:46 <REP> .
19/10/2006 06:46 <REP> ..
19/10/2006 06:46 <REP> Microsoft
0 fichier(s) 0 octets
3 Rép(s) 25 287 753 728 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\LocalService\Application Data
19/10/2006 06:46 <REP> .
19/10/2006 06:46 <REP> ..
17/12/2006 18:56 <REP> Ahead
19/10/2006 06:46 <REP> Microsoft
0 fichier(s) 0 octets
4 Rép(s) 25 287 753 728 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\LocalService\Local Settings\Application Data
19/10/2006 06:46 <REP> .
19/10/2006 06:46 <REP> ..
19/10/2006 06:46 <REP> Microsoft
0 fichier(s) 0 octets
3 Rép(s) 25 287 753 728 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\DJAMEL\Application Data
12/12/2006 01:48 <REP> .
12/12/2006 01:48 <REP> ..
12/12/2006 12:48 <REP> Adobe
16/01/2007 10:41 <REP> AdobeUM
12/12/2006 11:17 <REP> Ahead
28/02/2007 17:45 <REP> ArcSoft
09/06/2007 22:01 <REP> BitTorrent
28/02/2007 17:05 <REP> Canon
13/12/2006 18:00 <REP> CyberLink
17/02/2007 01:06 <REP> FastStone
05/01/2007 11:17 <REP> Google
10/06/2007 23:28 <REP> Grisoft
09/06/2007 21:41 <REP> Hamachi
12/02/2007 00:29 <REP> Help
12/12/2006 01:48 <REP> Identities
12/12/2006 01:48 <REP> Macromedia
17/12/2006 17:18 <REP> Media Player Classic
12/12/2006 01:48 <REP> Microsoft
14/03/2007 10:56 <REP> Mozilla
04/01/2007 11:59 <REP> MSNInstaller
18/03/2007 17:49 <REP> MySpace
12/12/2006 11:20 <REP> Nero
24/12/2006 16:00 <REP> Opera
12/12/2006 16:52 <REP> Real
08/02/2007 21:45 <REP> Samsung
28/02/2007 15:03 <REP> ScanSoft
31/03/2007 18:53 <REP> Screenshot Sender
14/03/2007 10:55 <REP> SecondLife
03/03/2007 16:50 <REP> SecuROM
12/12/2006 11:22 <REP> Simple Star
19/05/2007 18:18 <REP> SopCast
19/05/2007 16:31 <REP> Sports Interactive
14/12/2006 11:58 <REP> Sun
12/12/2006 01:48 <REP> Symantec
20/04/2007 21:27 <REP> Talkback
12/12/2006 01:48 62 desktop.ini
12/12/2006 11:22 66 Setup.txt
2 fichier(s) 128 octets
35 Rép(s) 25 287 753 728 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\DJAMEL\Local Settings\Application Data
12/12/2006 01:48 <REP> .
12/12/2006 01:48 <REP> ..
12/12/2006 12:49 <REP> Adobe
12/12/2006 11:18 <REP> Ahead
07/02/2007 13:36 <REP> Apple Computer
05/01/2007 11:17 <REP> Google
26/12/2006 11:10 <REP> Help
09/02/2007 18:24 <REP> Identities
12/12/2006 01:48 <REP> Microsoft
12/12/2006 11:36 <REP> Microsoft Help
20/04/2007 21:26 <REP> Mozilla
12/12/2006 16:57 <REP> Sun
12/12/2006 12:09 <REP> WMTools Downloaded Files
14/12/2006 17:55 78 336 DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
12/12/2006 16:32 68 848 GDIPFONTCACHEV1.DAT
12/12/2006 01:48 5 835 694 IconCache.db
3 fichier(s) 5 982 878 octets
13 Rép(s) 25 287 753 728 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\Invité\Application Data
19/12/2006 17:40 <REP> .
19/12/2006 17:40 <REP> ..
19/12/2006 17:40 <REP> Identities
19/12/2006 17:40 <REP> Macromedia
19/12/2006 17:40 <REP> Microsoft
19/12/2006 17:40 <REP> Symantec
19/12/2006 17:40 62 desktop.ini
1 fichier(s) 62 octets
6 Rép(s) 25 287 753 728 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\Invité\Local Settings\Application Data
19/12/2006 17:40 <REP> .
19/12/2006 17:40 <REP> ..
19/12/2006 17:40 <REP> Microsoft
19/12/2006 17:42 3 246 340 IconCache.db
1 fichier(s) 3 246 340 octets
3 Rép(s) 25 287 753 728 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\Application Data\Application Data
18/03/2007 17:49 <REP> .
18/03/2007 17:49 <REP> ..
18/03/2007 17:49 <REP> Microsoft
0 fichier(s) 0 octets
3 Rép(s) 25 287 753 728 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\WINDOWS\system32\config\systemprofile\Application Data
19/10/2006 06:45 <REP> .
19/10/2006 06:45 <REP> ..
19/10/2006 06:45 <REP> Identities
12/12/2006 01:47 <REP> Macromedia
19/10/2006 06:45 <REP> Microsoft
12/12/2006 01:47 <REP> Symantec
19/10/2006 06:45 62 desktop.ini
1 fichier(s) 62 octets
6 Rép(s) 25 287 753 728 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\WINDOWS\system32\config\systemprofile\Local Settings\Application Data
19/10/2006 06:45 <REP> .
19/10/2006 06:45 <REP> ..
19/10/2006 06:45 <REP> Microsoft
0 fichier(s) 0 octets
3 Rép(s) 25 287 753 728 octets libres
******************************************
Recherche des taches planifiées dans C:\WINDOWS\tasks
C:\WINDOWS\Tasks\Vérifier
Vérifier inexploitable
******************************************
## Répertoires de C:\Program Files
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Program Files
19/10/2006 06:35 <REP> .
19/10/2006 06:35 <REP> ..
19/10/2006 07:08 <REP> Adobe
12/12/2006 11:30 <REP> Alcohol Soft
12/12/2006 16:46 <REP> Alwil Software
19/10/2006 06:50 <REP> AMD
28/02/2007 15:01 <REP> ArcSoft
19/10/2006 06:51 <REP> Asus
19/10/2006 06:55 <REP> ASUSTeK
19/10/2006 06:48 <REP> AvRack
09/06/2007 22:01 <REP> BitTorrent
02/04/2007 11:19 <REP> BluetoothPCDialer
28/02/2007 14:57 <REP> Canon
12/12/2006 11:24 <REP> CCleaner
13/02/2007 23:15 <REP> Common Files
19/10/2006 06:40 <REP> ComPlus Applications
19/10/2006 06:36 <REP> CONEXANT
29/03/2007 16:00 <REP> DAEMON Tools
17/03/2007 11:40 <REP> Dictionnaire
17/05/2007 22:49 <REP> DivX
31/03/2007 21:33 <REP> DJ show
12/12/2006 16:57 <REP> DVD Shrink
11/02/2007 12:12 <REP> eChanblard
13/02/2007 18:25 <REP> Electronic Arts
19/10/2006 06:35 <REP> Fichiers communs
03/02/2007 00:20 <REP> Free Audio Pack
05/01/2007 11:17 <REP> Google
10/06/2007 23:28 <REP> Grisoft
09/06/2007 23:36 <REP> Hijackthis Version Française
19/10/2006 06:40 <REP> Internet Explorer
12/12/2006 16:57 <REP> Java
12/12/2006 16:52 <REP> K-Lite Codec Pack
12/12/2006 16:53 <REP> Media Player Classic
31/03/2007 18:48 <REP> Messenger Plus! Live
09/05/2007 21:08 <REP> Microsoft CAPICOM 2.1.0.2
19/10/2006 06:42 <REP> microsoft frontpage
12/12/2006 11:36 <REP> Microsoft Office
12/12/2006 11:41 <REP> Microsoft Visual Studio
12/12/2006 11:42 <REP> Microsoft Works
19/10/2006 06:41 <REP> Movie Maker
20/04/2007 21:26 <REP> Mozilla Firefox
12/12/2006 11:41 <REP> MSBuild
19/10/2006 06:39 <REP> MSN
19/10/2006 06:40 <REP> MSN Gaming Zone
16/03/2007 23:02 <REP> MSN Messenger
12/12/2006 12:34 <REP> MSXML 4.0
11/01/2007 22:45 <REP> Multi_Media
12/12/2006 11:15 <REP> Nero
19/10/2006 06:40 <REP> NetMeeting
26/12/2006 10:26 <REP> Neuf
19/10/2006 06:40 <REP> Online Services
19/10/2006 06:40 <REP> Outlook Express
11/06/2007 14:37 <REP> Project64 v1.5
12/12/2006 16:53 <REP> QuickTime Alternative
12/12/2006 11:28 <REP> Raxco
19/10/2006 06:48 <REP> Realtek AC97
19/10/2006 06:48 <REP> Realtek Sound Manager
02/02/2007 23:03 <REP> Replay Converter
08/06/2007 11:50 <REP> Rockstar Games
05/02/2007 20:20 <REP> Samsung
28/02/2007 15:02 <REP> ScanSoft
30/05/2007 00:52 <REP> Sega
19/10/2006 06:41 <REP> Services en ligne
08/05/2007 15:52 <REP> Sunbelt Software
19/10/2006 07:01 <REP> Symantec
19/10/2006 06:53 <REP> Synaptics
08/05/2007 13:38 <REP> TrackMania Nations ESWC
14/02/2007 00:02 <REP> UltraISO
06/02/2007 13:50 <REP> Windows Live Favorites
06/02/2007 13:47 <REP> Windows Live Toolbar
08/01/2007 18:50 <REP> Windows Media Connect 2
19/10/2006 06:40 <REP> Windows Media Player
19/10/2006 06:39 <REP> Windows NT
12/12/2006 11:23 <REP> WinRAR
19/10/2006 06:42 <REP> xerox
0 fichier(s) 0 octets
75 Rép(s) 25 287 753 728 octets libres
******************************************
## Popups autorisées
* Internet Explorer
! REG.EXE VERSION 3.0
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\New Windows\Allow
*.play.yahoo.com REG_BINARY
www.skyrock.com REG_BINARY
zonenxt.msn-int.com REG_BINARY
zonenxt.msn-ppe.com REG_BINARY
zone.msn.com REG_BINARY
fr.worldsbiggestchat.com REG_BINARY
netbios-wait.com REG_SZ
www.netbios-wait.com REG_SZ
mysearchnow.com REG_SZ
www.mysearchnow.com REG_SZ
*.<frame src="titre.htm" name="droite" scrolling=yes> REG_BINARY 0000
* Mozilla Firefox (1 autorisé 2 interdit)
---------- C:\DOCUMENTS AND SETTINGS\DJAMEL\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\TW97VMQO.DEFAULT\HOSTPERM.1
host popup 1 www.skyrock.com
******************************************
## Registre
* [HKEY_CURRENT_USER\\Software\Microsoft\Internet Explorer\Main]
Search Bar REG_SZ http://g.msn.fr/0SEFRFR/SAOS01?FORM=TOOLBR
******************************************
## Zones de sécurité
* HKCU Domains (4)
* P3P History (5)
******************************************
## Recherche C:\WINDOWS\*.htm, "C:\WINDOWS\*.gif"
*************** Fin du rapport ****************
En tout cas merci de m'aider et mon pc sava il garde la patate
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est E8C3-4C5B
R‚pertoire de C:\Documents and Settings\Default User\Application Data
12/12/2006 01:47 <REP> Symantec
12/12/2006 01:47 <REP> Macromedia
19/10/2006 06:42 <REP> Identities
19/10/2006 06:35 62 desktop.ini
19/10/2006 06:35 <REP> Microsoft
19/10/2006 06:35 <REP> ..
19/10/2006 06:35 <REP> .
1 fichier(s) 62 octets
6 R‚p(s) 7645659136 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est E8C3-4C5B
R‚pertoire de C:\Documents and Settings\All Users\Application Data
14/04/2007 19:37 <REP> scr fork cast wma
02/04/2007 11:45 0 LauncherAccess.dt
31/03/2007 20:09 <REP> Messenger Plus!
29/03/2007 12:01 <REP> Test Drive Unlimited
28/02/2007 15:03 <REP> InstallShield
28/02/2007 15:02 <REP> ScanSoft
28/02/2007 14:58 <REP> CanonBJ
15/02/2007 01:16 <REP> pixelStorm
12/02/2007 00:18 <REP> Macrovision
11/02/2007 23:57 <REP> BOONTY
08/02/2007 11:44 <REP> nView_Profiles
06/02/2007 13:49 <REP> Windows Live Toolbar
05/01/2007 11:17 <REP> Google
19/12/2006 17:25 <REP> Raxco
13/12/2006 18:00 <REP> CyberLink
12/12/2006 16:57 <REP> DVD Shrink
12/12/2006 16:54 <REP> Adobe
12/12/2006 16:52 <REP> Apple Computer
12/12/2006 16:52 <REP> Real
12/12/2006 11:46 <REP> Adobe Systems
12/12/2006 11:36 <REP> Microsoft Help
12/12/2006 11:24 <REP> Windows Genuine Advantage
12/12/2006 11:15 <REP> Nero
19/10/2006 07:01 <REP> Symantec
19/10/2006 06:47 <REP> SBSI
19/10/2006 06:35 62 desktop.ini
19/10/2006 06:35 <REP> Microsoft
19/10/2006 06:35 <REP> .
19/10/2006 06:35 <REP> ..
2 fichier(s) 62 octets
27 R‚p(s) 7645659136 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est E8C3-4C5B
R‚pertoire de C:\Documents and Settings\DJAMEL\Application Data
14/04/2007 19:37 <REP> acid type mode
31/03/2007 18:53 <REP> Screenshot Sender
18/03/2007 17:49 <REP> MySpace
14/03/2007 10:56 <REP> Mozilla
14/03/2007 10:55 <REP> SecondLife
03/03/2007 16:50 <REP> SecuROM
28/02/2007 17:45 <REP> ArcSoft
28/02/2007 17:05 <REP> Canon
28/02/2007 15:03 <REP> ScanSoft
17/02/2007 01:06 <REP> FastStone
12/02/2007 00:29 <REP> Help
08/02/2007 21:45 <REP> Samsung
16/01/2007 10:41 <REP> AdobeUM
05/01/2007 11:17 <REP> Google
04/01/2007 11:59 <REP> MSNInstaller
24/12/2006 16:00 <REP> Opera
17/12/2006 17:18 <REP> Media Player Classic
14/12/2006 11:58 <REP> Sun
13/12/2006 18:00 <REP> CyberLink
12/12/2006 16:52 <REP> Real
12/12/2006 12:48 <REP> Adobe
12/12/2006 11:22 <REP> Simple Star
12/12/2006 11:22 66 Setup.txt
12/12/2006 11:20 <REP> Nero
12/12/2006 11:17 <REP> Ahead
12/12/2006 01:48 62 desktop.ini
12/12/2006 01:48 <REP> Microsoft
12/12/2006 01:48 <REP> Identities
12/12/2006 01:48 <REP> Symantec
12/12/2006 01:48 <REP> ..
12/12/2006 01:48 <REP> .
12/12/2006 01:48 <REP> Macromedia
2 fichier(s) 128 octets
30 R‚p(s) 7645659136 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est E8C3-4C5B
R‚pertoire de C:\Documents and Settings\Invit‚\Application Data
19/12/2006 17:40 62 desktop.ini
19/12/2006 17:40 <REP> Microsoft
19/12/2006 17:40 <REP> Identities
19/12/2006 17:40 <REP> Macromedia
19/12/2006 17:40 <REP> Symantec
19/12/2006 17:40 <REP> ..
19/12/2006 17:40 <REP> .
1 fichier(s) 62 octets
6 R‚p(s) 7645659136 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est E8C3-4C5B
R‚pertoire de C:\Documents and Settings\Application Data\Application Data
18/03/2007 17:49 <REP> ..
18/03/2007 17:49 <REP> Microsoft
18/03/2007 17:49 <REP> .
0 fichier(s) 0 octets
3 R‚p(s) 7645659136 octets libres
******************************************
Recherche des taches planifiées dans C:\WINDOWS\tasks
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est E8C3-4C5B
R‚pertoire de C:\WINDOWS\Tasks
14/04/2007 19:37 268 A6E6C94291854262.job
06/02/2007 13:49 256 V‚rifier les mises … jour de Windows Live Toolbar.job
19/10/2006 06:46 6 SA.DAT
19/10/2006 06:41 <REP> ..
19/10/2006 06:41 <REP> .
20/09/2004 17:48 65 desktop.ini
4 fichier(s) 595 octets
2 R‚p(s) 7ÿ645ÿ659ÿ136 octets libres
******************************************
Recherche dans Program files
C:\Program Files\Adverts Présent !
******************************************
Recherche d'infections connues
C:\WINDOWS\system32\csrss.exe Wareout possible ! [#ff0000]faux-positif si csrss.exe ![/#f]
*************** Fin du rapport ****************
Rapport lopxpMH2 version 2.0 fait à 0:11:56,31 le 12/06/2007
C:\Documents and Settings\DJAMEL\Bureau
******************************************
## Répertoires Application Data
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\Default User\Application Data
19/10/2006 06:35 <REP> .
19/10/2006 06:35 <REP> ..
19/10/2006 06:42 <REP> Identities
12/12/2006 01:47 <REP> Macromedia
19/10/2006 06:35 <REP> Microsoft
12/12/2006 01:47 <REP> Symantec
19/10/2006 06:35 62 desktop.ini
1 fichier(s) 62 octets
6 Rép(s) 25 287 753 728 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\Default User\Local Settings\Application Data
19/10/2006 06:35 <REP> .
19/10/2006 06:35 <REP> ..
19/10/2006 06:42 <REP> Microsoft
12/04/2007 03:01 <REP> Microsoft Help
0 fichier(s) 0 octets
4 Rép(s) 25 287 753 728 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\All Users\Application Data
19/10/2006 06:35 <REP> .
19/10/2006 06:35 <REP> ..
12/12/2006 16:54 <REP> Adobe
12/12/2006 11:46 <REP> Adobe Systems
12/12/2006 16:52 <REP> Apple Computer
11/02/2007 23:57 <REP> BOONTY
28/02/2007 14:58 <REP> CanonBJ
13/12/2006 18:00 <REP> CyberLink
12/12/2006 16:57 <REP> DVD Shrink
05/01/2007 11:17 <REP> Google
28/02/2007 15:03 <REP> InstallShield
12/02/2007 00:18 <REP> Macrovision
31/03/2007 20:09 <REP> Messenger Plus!
19/10/2006 06:35 <REP> Microsoft
12/12/2006 11:36 <REP> Microsoft Help
12/12/2006 11:15 <REP> Nero
08/02/2007 11:44 <REP> nView_Profiles
15/02/2007 01:16 <REP> pixelStorm
19/12/2006 17:25 <REP> Raxco
12/12/2006 16:52 <REP> Real
19/10/2006 06:47 <REP> SBSI
28/02/2007 15:02 <REP> ScanSoft
11/06/2007 00:17 <REP> Spybot - Search & Destroy
19/10/2006 07:01 <REP> Symantec
29/03/2007 12:01 <REP> Test Drive Unlimited
12/12/2006 11:24 <REP> Windows Genuine Advantage
06/02/2007 13:49 <REP> Windows Live Toolbar
19/10/2006 06:35 62 desktop.ini
02/04/2007 11:45 0 LauncherAccess.dt
2 fichier(s) 62 octets
27 Rép(s) 25 287 753 728 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\NetworkService\Application Data
19/10/2006 06:46 <REP> .
19/10/2006 06:46 <REP> ..
19/10/2006 06:46 <REP> Microsoft
0 fichier(s) 0 octets
3 Rép(s) 25 287 753 728 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\NetworkService\Local Settings\Application Data
19/10/2006 06:46 <REP> .
19/10/2006 06:46 <REP> ..
19/10/2006 06:46 <REP> Microsoft
0 fichier(s) 0 octets
3 Rép(s) 25 287 753 728 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\LocalService\Application Data
19/10/2006 06:46 <REP> .
19/10/2006 06:46 <REP> ..
17/12/2006 18:56 <REP> Ahead
19/10/2006 06:46 <REP> Microsoft
0 fichier(s) 0 octets
4 Rép(s) 25 287 753 728 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\LocalService\Local Settings\Application Data
19/10/2006 06:46 <REP> .
19/10/2006 06:46 <REP> ..
19/10/2006 06:46 <REP> Microsoft
0 fichier(s) 0 octets
3 Rép(s) 25 287 753 728 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\DJAMEL\Application Data
12/12/2006 01:48 <REP> .
12/12/2006 01:48 <REP> ..
12/12/2006 12:48 <REP> Adobe
16/01/2007 10:41 <REP> AdobeUM
12/12/2006 11:17 <REP> Ahead
28/02/2007 17:45 <REP> ArcSoft
09/06/2007 22:01 <REP> BitTorrent
28/02/2007 17:05 <REP> Canon
13/12/2006 18:00 <REP> CyberLink
17/02/2007 01:06 <REP> FastStone
05/01/2007 11:17 <REP> Google
10/06/2007 23:28 <REP> Grisoft
09/06/2007 21:41 <REP> Hamachi
12/02/2007 00:29 <REP> Help
12/12/2006 01:48 <REP> Identities
12/12/2006 01:48 <REP> Macromedia
17/12/2006 17:18 <REP> Media Player Classic
12/12/2006 01:48 <REP> Microsoft
14/03/2007 10:56 <REP> Mozilla
04/01/2007 11:59 <REP> MSNInstaller
18/03/2007 17:49 <REP> MySpace
12/12/2006 11:20 <REP> Nero
24/12/2006 16:00 <REP> Opera
12/12/2006 16:52 <REP> Real
08/02/2007 21:45 <REP> Samsung
28/02/2007 15:03 <REP> ScanSoft
31/03/2007 18:53 <REP> Screenshot Sender
14/03/2007 10:55 <REP> SecondLife
03/03/2007 16:50 <REP> SecuROM
12/12/2006 11:22 <REP> Simple Star
19/05/2007 18:18 <REP> SopCast
19/05/2007 16:31 <REP> Sports Interactive
14/12/2006 11:58 <REP> Sun
12/12/2006 01:48 <REP> Symantec
20/04/2007 21:27 <REP> Talkback
12/12/2006 01:48 62 desktop.ini
12/12/2006 11:22 66 Setup.txt
2 fichier(s) 128 octets
35 Rép(s) 25 287 753 728 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\DJAMEL\Local Settings\Application Data
12/12/2006 01:48 <REP> .
12/12/2006 01:48 <REP> ..
12/12/2006 12:49 <REP> Adobe
12/12/2006 11:18 <REP> Ahead
07/02/2007 13:36 <REP> Apple Computer
05/01/2007 11:17 <REP> Google
26/12/2006 11:10 <REP> Help
09/02/2007 18:24 <REP> Identities
12/12/2006 01:48 <REP> Microsoft
12/12/2006 11:36 <REP> Microsoft Help
20/04/2007 21:26 <REP> Mozilla
12/12/2006 16:57 <REP> Sun
12/12/2006 12:09 <REP> WMTools Downloaded Files
14/12/2006 17:55 78 336 DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
12/12/2006 16:32 68 848 GDIPFONTCACHEV1.DAT
12/12/2006 01:48 5 835 694 IconCache.db
3 fichier(s) 5 982 878 octets
13 Rép(s) 25 287 753 728 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\Invité\Application Data
19/12/2006 17:40 <REP> .
19/12/2006 17:40 <REP> ..
19/12/2006 17:40 <REP> Identities
19/12/2006 17:40 <REP> Macromedia
19/12/2006 17:40 <REP> Microsoft
19/12/2006 17:40 <REP> Symantec
19/12/2006 17:40 62 desktop.ini
1 fichier(s) 62 octets
6 Rép(s) 25 287 753 728 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\Invité\Local Settings\Application Data
19/12/2006 17:40 <REP> .
19/12/2006 17:40 <REP> ..
19/12/2006 17:40 <REP> Microsoft
19/12/2006 17:42 3 246 340 IconCache.db
1 fichier(s) 3 246 340 octets
3 Rép(s) 25 287 753 728 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\Application Data\Application Data
18/03/2007 17:49 <REP> .
18/03/2007 17:49 <REP> ..
18/03/2007 17:49 <REP> Microsoft
0 fichier(s) 0 octets
3 Rép(s) 25 287 753 728 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\WINDOWS\system32\config\systemprofile\Application Data
19/10/2006 06:45 <REP> .
19/10/2006 06:45 <REP> ..
19/10/2006 06:45 <REP> Identities
12/12/2006 01:47 <REP> Macromedia
19/10/2006 06:45 <REP> Microsoft
12/12/2006 01:47 <REP> Symantec
19/10/2006 06:45 62 desktop.ini
1 fichier(s) 62 octets
6 Rép(s) 25 287 753 728 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\WINDOWS\system32\config\systemprofile\Local Settings\Application Data
19/10/2006 06:45 <REP> .
19/10/2006 06:45 <REP> ..
19/10/2006 06:45 <REP> Microsoft
0 fichier(s) 0 octets
3 Rép(s) 25 287 753 728 octets libres
******************************************
Recherche des taches planifiées dans C:\WINDOWS\tasks
C:\WINDOWS\Tasks\Vérifier
Vérifier inexploitable
******************************************
## Répertoires de C:\Program Files
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Program Files
19/10/2006 06:35 <REP> .
19/10/2006 06:35 <REP> ..
19/10/2006 07:08 <REP> Adobe
12/12/2006 11:30 <REP> Alcohol Soft
12/12/2006 16:46 <REP> Alwil Software
19/10/2006 06:50 <REP> AMD
28/02/2007 15:01 <REP> ArcSoft
19/10/2006 06:51 <REP> Asus
19/10/2006 06:55 <REP> ASUSTeK
19/10/2006 06:48 <REP> AvRack
09/06/2007 22:01 <REP> BitTorrent
02/04/2007 11:19 <REP> BluetoothPCDialer
28/02/2007 14:57 <REP> Canon
12/12/2006 11:24 <REP> CCleaner
13/02/2007 23:15 <REP> Common Files
19/10/2006 06:40 <REP> ComPlus Applications
19/10/2006 06:36 <REP> CONEXANT
29/03/2007 16:00 <REP> DAEMON Tools
17/03/2007 11:40 <REP> Dictionnaire
17/05/2007 22:49 <REP> DivX
31/03/2007 21:33 <REP> DJ show
12/12/2006 16:57 <REP> DVD Shrink
11/02/2007 12:12 <REP> eChanblard
13/02/2007 18:25 <REP> Electronic Arts
19/10/2006 06:35 <REP> Fichiers communs
03/02/2007 00:20 <REP> Free Audio Pack
05/01/2007 11:17 <REP> Google
10/06/2007 23:28 <REP> Grisoft
09/06/2007 23:36 <REP> Hijackthis Version Française
19/10/2006 06:40 <REP> Internet Explorer
12/12/2006 16:57 <REP> Java
12/12/2006 16:52 <REP> K-Lite Codec Pack
12/12/2006 16:53 <REP> Media Player Classic
31/03/2007 18:48 <REP> Messenger Plus! Live
09/05/2007 21:08 <REP> Microsoft CAPICOM 2.1.0.2
19/10/2006 06:42 <REP> microsoft frontpage
12/12/2006 11:36 <REP> Microsoft Office
12/12/2006 11:41 <REP> Microsoft Visual Studio
12/12/2006 11:42 <REP> Microsoft Works
19/10/2006 06:41 <REP> Movie Maker
20/04/2007 21:26 <REP> Mozilla Firefox
12/12/2006 11:41 <REP> MSBuild
19/10/2006 06:39 <REP> MSN
19/10/2006 06:40 <REP> MSN Gaming Zone
16/03/2007 23:02 <REP> MSN Messenger
12/12/2006 12:34 <REP> MSXML 4.0
11/01/2007 22:45 <REP> Multi_Media
12/12/2006 11:15 <REP> Nero
19/10/2006 06:40 <REP> NetMeeting
26/12/2006 10:26 <REP> Neuf
19/10/2006 06:40 <REP> Online Services
19/10/2006 06:40 <REP> Outlook Express
11/06/2007 14:37 <REP> Project64 v1.5
12/12/2006 16:53 <REP> QuickTime Alternative
12/12/2006 11:28 <REP> Raxco
19/10/2006 06:48 <REP> Realtek AC97
19/10/2006 06:48 <REP> Realtek Sound Manager
02/02/2007 23:03 <REP> Replay Converter
08/06/2007 11:50 <REP> Rockstar Games
05/02/2007 20:20 <REP> Samsung
28/02/2007 15:02 <REP> ScanSoft
30/05/2007 00:52 <REP> Sega
19/10/2006 06:41 <REP> Services en ligne
08/05/2007 15:52 <REP> Sunbelt Software
19/10/2006 07:01 <REP> Symantec
19/10/2006 06:53 <REP> Synaptics
08/05/2007 13:38 <REP> TrackMania Nations ESWC
14/02/2007 00:02 <REP> UltraISO
06/02/2007 13:50 <REP> Windows Live Favorites
06/02/2007 13:47 <REP> Windows Live Toolbar
08/01/2007 18:50 <REP> Windows Media Connect 2
19/10/2006 06:40 <REP> Windows Media Player
19/10/2006 06:39 <REP> Windows NT
12/12/2006 11:23 <REP> WinRAR
19/10/2006 06:42 <REP> xerox
0 fichier(s) 0 octets
75 Rép(s) 25 287 753 728 octets libres
******************************************
## Popups autorisées
* Internet Explorer
! REG.EXE VERSION 3.0
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\New Windows\Allow
*.play.yahoo.com REG_BINARY
www.skyrock.com REG_BINARY
zonenxt.msn-int.com REG_BINARY
zonenxt.msn-ppe.com REG_BINARY
zone.msn.com REG_BINARY
fr.worldsbiggestchat.com REG_BINARY
netbios-wait.com REG_SZ
www.netbios-wait.com REG_SZ
mysearchnow.com REG_SZ
www.mysearchnow.com REG_SZ
*.<frame src="titre.htm" name="droite" scrolling=yes> REG_BINARY 0000
* Mozilla Firefox (1 autorisé 2 interdit)
---------- C:\DOCUMENTS AND SETTINGS\DJAMEL\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\TW97VMQO.DEFAULT\HOSTPERM.1
host popup 1 www.skyrock.com
******************************************
## Registre
* [HKEY_CURRENT_USER\\Software\Microsoft\Internet Explorer\Main]
Search Bar REG_SZ http://g.msn.fr/0SEFRFR/SAOS01?FORM=TOOLBR
******************************************
## Zones de sécurité
* HKCU Domains (4)
* P3P History (5)
******************************************
## Recherche C:\WINDOWS\*.htm, "C:\WINDOWS\*.gif"
*************** Fin du rapport ****************
En tout cas merci de m'aider et mon pc sava il garde la patate
Bien
Télécharge OTMoveIt (de Old_Timer) sur ton Bureau.
http://download.bleepingcomputer.com/oldtimer/OTMoveIt....
Double-clique sur OTMoveIt.exe pour le lancer.
Copie la liste qui se trouve ci-dessous, et colle-la dans le cadre de gauche de OTMoveIt
aste List of Files/Folders to be moved.
C:\Documents and Settings\All Users\Application Data\scr fork cast wma
C:\Documents and Settings\DJAMEL\Application Data\acid type mode
C:\WINDOWS\Tasks\A6E6C94291854262.job
Clique sur MoveIt! pour lancer la suppression.
Le résultat apparaitra dans le cadre Results.
Clique sur Exit pour fermer.
Poste le rapport situé dans C:\_OTMoveIt\MovedFiles.
Il te sera peut-être demander de redémarrer le PC pour achever la suppression. Si c'est le cas accepte par Yes.
Télécharge OTMoveIt (de Old_Timer) sur ton Bureau.
http://download.bleepingcomputer.com/oldtimer/OTMoveIt....
Double-clique sur OTMoveIt.exe pour le lancer.
Copie la liste qui se trouve ci-dessous, et colle-la dans le cadre de gauche de OTMoveIt
aste List of Files/Folders to be moved.C:\Documents and Settings\All Users\Application Data\scr fork cast wma
C:\Documents and Settings\DJAMEL\Application Data\acid type mode
C:\WINDOWS\Tasks\A6E6C94291854262.job
Clique sur MoveIt! pour lancer la suppression.
Le résultat apparaitra dans le cadre Results.
Clique sur Exit pour fermer.
Poste le rapport situé dans C:\_OTMoveIt\MovedFiles.
Il te sera peut-être demander de redémarrer le PC pour achever la suppression. Si c'est le cas accepte par Yes.
AIEEEEEEEEEE désolé chercheur j'avais eut un virus avant j'avai utilisé le logiciel oh la honte vrément désolé tiens mais sérieux merci
C:\Documents and Settings\All Users\Application Data\scr fork cast wma moved successfully.
File/Folder C:\Documents and Settings\DJAMEL\Application Data\acid type mode not found.
File/Folder C:\WINDOWS\tasks\A6E6C94291854262.job not found.
File/Folder C:\Program Files\Adverts not found.
File/Folder not found.
Created on 04/14/2007 22:17:56
Et c'est bizarre j'en ai un plus tot pourtant j'en ait fait qu' un
Folder cleanup failed. C:\Documents and Settings\All Users\Application Data\scr fork cast wma scheduled to be deleted on reboot.
C:\Documents and Settings\DJAMEL\Application Data\acid type mode moved successfully.
C:\WINDOWS\tasks\A6E6C94291854262.job moved successfully.
C:\Program Files\Adverts moved successfully.
File/Folder not found.
Created on 04/14/2007 22:09:49
C:\Documents and Settings\All Users\Application Data\scr fork cast wma moved successfully.
File/Folder C:\Documents and Settings\DJAMEL\Application Data\acid type mode not found.
File/Folder C:\WINDOWS\tasks\A6E6C94291854262.job not found.
File/Folder C:\Program Files\Adverts not found.
File/Folder not found.
Created on 04/14/2007 22:17:56
Et c'est bizarre j'en ai un plus tot pourtant j'en ait fait qu' un
Folder cleanup failed. C:\Documents and Settings\All Users\Application Data\scr fork cast wma scheduled to be deleted on reboot.
C:\Documents and Settings\DJAMEL\Application Data\acid type mode moved successfully.
C:\WINDOWS\tasks\A6E6C94291854262.job moved successfully.
C:\Program Files\Adverts moved successfully.
File/Folder not found.
Created on 04/14/2007 22:09:49
Bon.
Supprime Lopxpmh.
Lance OTmoveIT.
Clique sur CleanUp! (le programme va télécharger un fichier texte qui servira a nettoyer les programmes que l'on a téléchargé).
NOTE : Normalement, ton firewall (parefeu) devrait te demander si OTmoveIT peut accéder a internet, Autorise le.
Une liste apparait dans la partie gauche d'OTmoveIT.
Un message apparait pour confirmer le nettoyage. Confirme.
Ensuite on recommence pour voir plus clair.
Télécharge LopxpMH sur ton Bureau.
http://www.alt-shift-return.org/Info/Fichiers/lopxpMH2....
Dézippe-le (clic droit >> Extraire ici) et double clique sur le fichier lopxpMH.bat.
Poste le contenu du rapport qui va s'ouvrir.
Supprime Lopxpmh.
Lance OTmoveIT.
NOTE : Normalement, ton firewall (parefeu) devrait te demander si OTmoveIT peut accéder a internet, Autorise le.
Ensuite on recommence pour voir plus clair.
Télécharge LopxpMH sur ton Bureau.
http://www.alt-shift-return.org/Info/Fichiers/lopxpMH2....
Dézippe-le (clic droit >> Extraire ici) et double clique sur le fichier lopxpMH.bat.
Poste le contenu du rapport qui va s'ouvrir.
Rapport fait à 21:47:09,62 le 14/04/2007
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est E8C3-4C5B
R‚pertoire de C:\Documents and Settings\Default User\Application Data
12/12/2006 01:47 <REP> Symantec
12/12/2006 01:47 <REP> Macromedia
19/10/2006 06:42 <REP> Identities
19/10/2006 06:35 62 desktop.ini
19/10/2006 06:35 <REP> Microsoft
19/10/2006 06:35 <REP> ..
19/10/2006 06:35 <REP> .
1 fichier(s) 62 octets
6 R‚p(s) 7645659136 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est E8C3-4C5B
R‚pertoire de C:\Documents and Settings\All Users\Application Data
14/04/2007 19:37 <REP> scr fork cast wma
02/04/2007 11:45 0 LauncherAccess.dt
31/03/2007 20:09 <REP> Messenger Plus!
29/03/2007 12:01 <REP> Test Drive Unlimited
28/02/2007 15:03 <REP> InstallShield
28/02/2007 15:02 <REP> ScanSoft
28/02/2007 14:58 <REP> CanonBJ
15/02/2007 01:16 <REP> pixelStorm
12/02/2007 00:18 <REP> Macrovision
11/02/2007 23:57 <REP> BOONTY
08/02/2007 11:44 <REP> nView_Profiles
06/02/2007 13:49 <REP> Windows Live Toolbar
05/01/2007 11:17 <REP> Google
19/12/2006 17:25 <REP> Raxco
13/12/2006 18:00 <REP> CyberLink
12/12/2006 16:57 <REP> DVD Shrink
12/12/2006 16:54 <REP> Adobe
12/12/2006 16:52 <REP> Apple Computer
12/12/2006 16:52 <REP> Real
12/12/2006 11:46 <REP> Adobe Systems
12/12/2006 11:36 <REP> Microsoft Help
12/12/2006 11:24 <REP> Windows Genuine Advantage
12/12/2006 11:15 <REP> Nero
19/10/2006 07:01 <REP> Symantec
19/10/2006 06:47 <REP> SBSI
19/10/2006 06:35 62 desktop.ini
19/10/2006 06:35 <REP> Microsoft
19/10/2006 06:35 <REP> .
19/10/2006 06:35 <REP> ..
2 fichier(s) 62 octets
27 R‚p(s) 7645659136 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est E8C3-4C5B
R‚pertoire de C:\Documents and Settings\DJAMEL\Application Data
14/04/2007 19:37 <REP> acid type mode
31/03/2007 18:53 <REP> Screenshot Sender
18/03/2007 17:49 <REP> MySpace
14/03/2007 10:56 <REP> Mozilla
14/03/2007 10:55 <REP> SecondLife
03/03/2007 16:50 <REP> SecuROM
28/02/2007 17:45 <REP> ArcSoft
28/02/2007 17:05 <REP> Canon
28/02/2007 15:03 <REP> ScanSoft
17/02/2007 01:06 <REP> FastStone
12/02/2007 00:29 <REP> Help
08/02/2007 21:45 <REP> Samsung
16/01/2007 10:41 <REP> AdobeUM
05/01/2007 11:17 <REP> Google
04/01/2007 11:59 <REP> MSNInstaller
24/12/2006 16:00 <REP> Opera
17/12/2006 17:18 <REP> Media Player Classic
14/12/2006 11:58 <REP> Sun
13/12/2006 18:00 <REP> CyberLink
12/12/2006 16:52 <REP> Real
12/12/2006 12:48 <REP> Adobe
12/12/2006 11:22 <REP> Simple Star
12/12/2006 11:22 66 Setup.txt
12/12/2006 11:20 <REP> Nero
12/12/2006 11:17 <REP> Ahead
12/12/2006 01:48 62 desktop.ini
12/12/2006 01:48 <REP> Microsoft
12/12/2006 01:48 <REP> Identities
12/12/2006 01:48 <REP> Symantec
12/12/2006 01:48 <REP> ..
12/12/2006 01:48 <REP> .
12/12/2006 01:48 <REP> Macromedia
2 fichier(s) 128 octets
30 R‚p(s) 7645659136 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est E8C3-4C5B
R‚pertoire de C:\Documents and Settings\Invit‚\Application Data
19/12/2006 17:40 62 desktop.ini
19/12/2006 17:40 <REP> Microsoft
19/12/2006 17:40 <REP> Identities
19/12/2006 17:40 <REP> Macromedia
19/12/2006 17:40 <REP> Symantec
19/12/2006 17:40 <REP> ..
19/12/2006 17:40 <REP> .
1 fichier(s) 62 octets
6 R‚p(s) 7645659136 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est E8C3-4C5B
R‚pertoire de C:\Documents and Settings\Application Data\Application Data
18/03/2007 17:49 <REP> ..
18/03/2007 17:49 <REP> Microsoft
18/03/2007 17:49 <REP> .
0 fichier(s) 0 octets
3 R‚p(s) 7645659136 octets libres
******************************************
Recherche des taches planifiées dans C:\WINDOWS\tasks
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est E8C3-4C5B
R‚pertoire de C:\WINDOWS\Tasks
14/04/2007 19:37 268 A6E6C94291854262.job
06/02/2007 13:49 256 V‚rifier les mises … jour de Windows Live Toolbar.job
19/10/2006 06:46 6 SA.DAT
19/10/2006 06:41 <REP> ..
19/10/2006 06:41 <REP> .
20/09/2004 17:48 65 desktop.ini
4 fichier(s) 595 octets
2 R‚p(s) 7ÿ645ÿ659ÿ136 octets libres
******************************************
Recherche dans Program files
C:\Program Files\Adverts Présent !
******************************************
Recherche d'infections connues
C:\WINDOWS\system32\csrss.exe Wareout possible ! [#ff0000]faux-positif si csrss.exe ![/#f]
*************** Fin du rapport ****************
Rapport lopxpMH2 version 2.0 fait à 0:11:56,31 le 12/06/2007
C:\Documents and Settings\DJAMEL\Bureau
******************************************
## Répertoires Application Data
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\Default User\Application Data
19/10/2006 06:35 <REP> .
19/10/2006 06:35 <REP> ..
19/10/2006 06:42 <REP> Identities
12/12/2006 01:47 <REP> Macromedia
19/10/2006 06:35 <REP> Microsoft
12/12/2006 01:47 <REP> Symantec
19/10/2006 06:35 62 desktop.ini
1 fichier(s) 62 octets
6 Rép(s) 25 287 753 728 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\Default User\Local Settings\Application Data
19/10/2006 06:35 <REP> .
19/10/2006 06:35 <REP> ..
19/10/2006 06:42 <REP> Microsoft
12/04/2007 03:01 <REP> Microsoft Help
0 fichier(s) 0 octets
4 Rép(s) 25 287 753 728 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\All Users\Application Data
19/10/2006 06:35 <REP> .
19/10/2006 06:35 <REP> ..
12/12/2006 16:54 <REP> Adobe
12/12/2006 11:46 <REP> Adobe Systems
12/12/2006 16:52 <REP> Apple Computer
11/02/2007 23:57 <REP> BOONTY
28/02/2007 14:58 <REP> CanonBJ
13/12/2006 18:00 <REP> CyberLink
12/12/2006 16:57 <REP> DVD Shrink
05/01/2007 11:17 <REP> Google
28/02/2007 15:03 <REP> InstallShield
12/02/2007 00:18 <REP> Macrovision
31/03/2007 20:09 <REP> Messenger Plus!
19/10/2006 06:35 <REP> Microsoft
12/12/2006 11:36 <REP> Microsoft Help
12/12/2006 11:15 <REP> Nero
08/02/2007 11:44 <REP> nView_Profiles
15/02/2007 01:16 <REP> pixelStorm
19/12/2006 17:25 <REP> Raxco
12/12/2006 16:52 <REP> Real
19/10/2006 06:47 <REP> SBSI
28/02/2007 15:02 <REP> ScanSoft
11/06/2007 00:17 <REP> Spybot - Search & Destroy
19/10/2006 07:01 <REP> Symantec
29/03/2007 12:01 <REP> Test Drive Unlimited
12/12/2006 11:24 <REP> Windows Genuine Advantage
06/02/2007 13:49 <REP> Windows Live Toolbar
19/10/2006 06:35 62 desktop.ini
02/04/2007 11:45 0 LauncherAccess.dt
2 fichier(s) 62 octets
27 Rép(s) 25 287 753 728 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\NetworkService\Application Data
19/10/2006 06:46 <REP> .
19/10/2006 06:46 <REP> ..
19/10/2006 06:46 <REP> Microsoft
0 fichier(s) 0 octets
3 Rép(s) 25 287 753 728 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\NetworkService\Local Settings\Application Data
19/10/2006 06:46 <REP> .
19/10/2006 06:46 <REP> ..
19/10/2006 06:46 <REP> Microsoft
0 fichier(s) 0 octets
3 Rép(s) 25 287 753 728 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\LocalService\Application Data
19/10/2006 06:46 <REP> .
19/10/2006 06:46 <REP> ..
17/12/2006 18:56 <REP> Ahead
19/10/2006 06:46 <REP> Microsoft
0 fichier(s) 0 octets
4 Rép(s) 25 287 753 728 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\LocalService\Local Settings\Application Data
19/10/2006 06:46 <REP> .
19/10/2006 06:46 <REP> ..
19/10/2006 06:46 <REP> Microsoft
0 fichier(s) 0 octets
3 Rép(s) 25 287 753 728 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\DJAMEL\Application Data
12/12/2006 01:48 <REP> .
12/12/2006 01:48 <REP> ..
12/12/2006 12:48 <REP> Adobe
16/01/2007 10:41 <REP> AdobeUM
12/12/2006 11:17 <REP> Ahead
28/02/2007 17:45 <REP> ArcSoft
09/06/2007 22:01 <REP> BitTorrent
28/02/2007 17:05 <REP> Canon
13/12/2006 18:00 <REP> CyberLink
17/02/2007 01:06 <REP> FastStone
05/01/2007 11:17 <REP> Google
10/06/2007 23:28 <REP> Grisoft
09/06/2007 21:41 <REP> Hamachi
12/02/2007 00:29 <REP> Help
12/12/2006 01:48 <REP> Identities
12/12/2006 01:48 <REP> Macromedia
17/12/2006 17:18 <REP> Media Player Classic
12/12/2006 01:48 <REP> Microsoft
14/03/2007 10:56 <REP> Mozilla
04/01/2007 11:59 <REP> MSNInstaller
18/03/2007 17:49 <REP> MySpace
12/12/2006 11:20 <REP> Nero
24/12/2006 16:00 <REP> Opera
12/12/2006 16:52 <REP> Real
08/02/2007 21:45 <REP> Samsung
28/02/2007 15:03 <REP> ScanSoft
31/03/2007 18:53 <REP> Screenshot Sender
14/03/2007 10:55 <REP> SecondLife
03/03/2007 16:50 <REP> SecuROM
12/12/2006 11:22 <REP> Simple Star
19/05/2007 18:18 <REP> SopCast
19/05/2007 16:31 <REP> Sports Interactive
14/12/2006 11:58 <REP> Sun
12/12/2006 01:48 <REP> Symantec
20/04/2007 21:27 <REP> Talkback
12/12/2006 01:48 62 desktop.ini
12/12/2006 11:22 66 Setup.txt
2 fichier(s) 128 octets
35 Rép(s) 25 287 753 728 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\DJAMEL\Local Settings\Application Data
12/12/2006 01:48 <REP> .
12/12/2006 01:48 <REP> ..
12/12/2006 12:49 <REP> Adobe
12/12/2006 11:18 <REP> Ahead
07/02/2007 13:36 <REP> Apple Computer
05/01/2007 11:17 <REP> Google
26/12/2006 11:10 <REP> Help
09/02/2007 18:24 <REP> Identities
12/12/2006 01:48 <REP> Microsoft
12/12/2006 11:36 <REP> Microsoft Help
20/04/2007 21:26 <REP> Mozilla
12/12/2006 16:57 <REP> Sun
12/12/2006 12:09 <REP> WMTools Downloaded Files
14/12/2006 17:55 78 336 DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
12/12/2006 16:32 68 848 GDIPFONTCACHEV1.DAT
12/12/2006 01:48 5 835 694 IconCache.db
3 fichier(s) 5 982 878 octets
13 Rép(s) 25 287 753 728 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\Invité\Application Data
19/12/2006 17:40 <REP> .
19/12/2006 17:40 <REP> ..
19/12/2006 17:40 <REP> Identities
19/12/2006 17:40 <REP> Macromedia
19/12/2006 17:40 <REP> Microsoft
19/12/2006 17:40 <REP> Symantec
19/12/2006 17:40 62 desktop.ini
1 fichier(s) 62 octets
6 Rép(s) 25 287 753 728 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\Invité\Local Settings\Application Data
19/12/2006 17:40 <REP> .
19/12/2006 17:40 <REP> ..
19/12/2006 17:40 <REP> Microsoft
19/12/2006 17:42 3 246 340 IconCache.db
1 fichier(s) 3 246 340 octets
3 Rép(s) 25 287 753 728 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\Application Data\Application Data
18/03/2007 17:49 <REP> .
18/03/2007 17:49 <REP> ..
18/03/2007 17:49 <REP> Microsoft
0 fichier(s) 0 octets
3 Rép(s) 25 287 753 728 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\WINDOWS\system32\config\systemprofile\Application Data
19/10/2006 06:45 <REP> .
19/10/2006 06:45 <REP> ..
19/10/2006 06:45 <REP> Identities
12/12/2006 01:47 <REP> Macromedia
19/10/2006 06:45 <REP> Microsoft
12/12/2006 01:47 <REP> Symantec
19/10/2006 06:45 62 desktop.ini
1 fichier(s) 62 octets
6 Rép(s) 25 287 753 728 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\WINDOWS\system32\config\systemprofile\Local Settings\Application Data
19/10/2006 06:45 <REP> .
19/10/2006 06:45 <REP> ..
19/10/2006 06:45 <REP> Microsoft
0 fichier(s) 0 octets
3 Rép(s) 25 287 753 728 octets libres
******************************************
Recherche des taches planifiées dans C:\WINDOWS\tasks
C:\WINDOWS\Tasks\Vérifier
Vérifier inexploitable
******************************************
## Répertoires de C:\Program Files
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Program Files
19/10/2006 06:35 <REP> .
19/10/2006 06:35 <REP> ..
19/10/2006 07:08 <REP> Adobe
12/12/2006 11:30 <REP> Alcohol Soft
12/12/2006 16:46 <REP> Alwil Software
19/10/2006 06:50 <REP> AMD
28/02/2007 15:01 <REP> ArcSoft
19/10/2006 06:51 <REP> Asus
19/10/2006 06:55 <REP> ASUSTeK
19/10/2006 06:48 <REP> AvRack
09/06/2007 22:01 <REP> BitTorrent
02/04/2007 11:19 <REP> BluetoothPCDialer
28/02/2007 14:57 <REP> Canon
12/12/2006 11:24 <REP> CCleaner
13/02/2007 23:15 <REP> Common Files
19/10/2006 06:40 <REP> ComPlus Applications
19/10/2006 06:36 <REP> CONEXANT
29/03/2007 16:00 <REP> DAEMON Tools
17/03/2007 11:40 <REP> Dictionnaire
17/05/2007 22:49 <REP> DivX
31/03/2007 21:33 <REP> DJ show
12/12/2006 16:57 <REP> DVD Shrink
11/02/2007 12:12 <REP> eChanblard
13/02/2007 18:25 <REP> Electronic Arts
19/10/2006 06:35 <REP> Fichiers communs
03/02/2007 00:20 <REP> Free Audio Pack
05/01/2007 11:17 <REP> Google
10/06/2007 23:28 <REP> Grisoft
09/06/2007 23:36 <REP> Hijackthis Version Française
19/10/2006 06:40 <REP> Internet Explorer
12/12/2006 16:57 <REP> Java
12/12/2006 16:52 <REP> K-Lite Codec Pack
12/12/2006 16:53 <REP> Media Player Classic
31/03/2007 18:48 <REP> Messenger Plus! Live
09/05/2007 21:08 <REP> Microsoft CAPICOM 2.1.0.2
19/10/2006 06:42 <REP> microsoft frontpage
12/12/2006 11:36 <REP> Microsoft Office
12/12/2006 11:41 <REP> Microsoft Visual Studio
12/12/2006 11:42 <REP> Microsoft Works
19/10/2006 06:41 <REP> Movie Maker
20/04/2007 21:26 <REP> Mozilla Firefox
12/12/2006 11:41 <REP> MSBuild
19/10/2006 06:39 <REP> MSN
19/10/2006 06:40 <REP> MSN Gaming Zone
16/03/2007 23:02 <REP> MSN Messenger
12/12/2006 12:34 <REP> MSXML 4.0
11/01/2007 22:45 <REP> Multi_Media
12/12/2006 11:15 <REP> Nero
19/10/2006 06:40 <REP> NetMeeting
26/12/2006 10:26 <REP> Neuf
19/10/2006 06:40 <REP> Online Services
19/10/2006 06:40 <REP> Outlook Express
11/06/2007 14:37 <REP> Project64 v1.5
12/12/2006 16:53 <REP> QuickTime Alternative
12/12/2006 11:28 <REP> Raxco
19/10/2006 06:48 <REP> Realtek AC97
19/10/2006 06:48 <REP> Realtek Sound Manager
02/02/2007 23:03 <REP> Replay Converter
08/06/2007 11:50 <REP> Rockstar Games
05/02/2007 20:20 <REP> Samsung
28/02/2007 15:02 <REP> ScanSoft
30/05/2007 00:52 <REP> Sega
19/10/2006 06:41 <REP> Services en ligne
08/05/2007 15:52 <REP> Sunbelt Software
19/10/2006 07:01 <REP> Symantec
19/10/2006 06:53 <REP> Synaptics
08/05/2007 13:38 <REP> TrackMania Nations ESWC
14/02/2007 00:02 <REP> UltraISO
06/02/2007 13:50 <REP> Windows Live Favorites
06/02/2007 13:47 <REP> Windows Live Toolbar
08/01/2007 18:50 <REP> Windows Media Connect 2
19/10/2006 06:40 <REP> Windows Media Player
19/10/2006 06:39 <REP> Windows NT
12/12/2006 11:23 <REP> WinRAR
19/10/2006 06:42 <REP> xerox
0 fichier(s) 0 octets
75 Rép(s) 25 287 753 728 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est E8C3-4C5B
R‚pertoire de C:\Documents and Settings\Default User\Application Data
12/12/2006 01:47 <REP> Symantec
12/12/2006 01:47 <REP> Macromedia
19/10/2006 06:42 <REP> Identities
19/10/2006 06:35 62 desktop.ini
19/10/2006 06:35 <REP> Microsoft
19/10/2006 06:35 <REP> ..
19/10/2006 06:35 <REP> .
1 fichier(s) 62 octets
6 R‚p(s) 7645659136 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est E8C3-4C5B
R‚pertoire de C:\Documents and Settings\All Users\Application Data
14/04/2007 19:37 <REP> scr fork cast wma
02/04/2007 11:45 0 LauncherAccess.dt
31/03/2007 20:09 <REP> Messenger Plus!
29/03/2007 12:01 <REP> Test Drive Unlimited
28/02/2007 15:03 <REP> InstallShield
28/02/2007 15:02 <REP> ScanSoft
28/02/2007 14:58 <REP> CanonBJ
15/02/2007 01:16 <REP> pixelStorm
12/02/2007 00:18 <REP> Macrovision
11/02/2007 23:57 <REP> BOONTY
08/02/2007 11:44 <REP> nView_Profiles
06/02/2007 13:49 <REP> Windows Live Toolbar
05/01/2007 11:17 <REP> Google
19/12/2006 17:25 <REP> Raxco
13/12/2006 18:00 <REP> CyberLink
12/12/2006 16:57 <REP> DVD Shrink
12/12/2006 16:54 <REP> Adobe
12/12/2006 16:52 <REP> Apple Computer
12/12/2006 16:52 <REP> Real
12/12/2006 11:46 <REP> Adobe Systems
12/12/2006 11:36 <REP> Microsoft Help
12/12/2006 11:24 <REP> Windows Genuine Advantage
12/12/2006 11:15 <REP> Nero
19/10/2006 07:01 <REP> Symantec
19/10/2006 06:47 <REP> SBSI
19/10/2006 06:35 62 desktop.ini
19/10/2006 06:35 <REP> Microsoft
19/10/2006 06:35 <REP> .
19/10/2006 06:35 <REP> ..
2 fichier(s) 62 octets
27 R‚p(s) 7645659136 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est E8C3-4C5B
R‚pertoire de C:\Documents and Settings\DJAMEL\Application Data
14/04/2007 19:37 <REP> acid type mode
31/03/2007 18:53 <REP> Screenshot Sender
18/03/2007 17:49 <REP> MySpace
14/03/2007 10:56 <REP> Mozilla
14/03/2007 10:55 <REP> SecondLife
03/03/2007 16:50 <REP> SecuROM
28/02/2007 17:45 <REP> ArcSoft
28/02/2007 17:05 <REP> Canon
28/02/2007 15:03 <REP> ScanSoft
17/02/2007 01:06 <REP> FastStone
12/02/2007 00:29 <REP> Help
08/02/2007 21:45 <REP> Samsung
16/01/2007 10:41 <REP> AdobeUM
05/01/2007 11:17 <REP> Google
04/01/2007 11:59 <REP> MSNInstaller
24/12/2006 16:00 <REP> Opera
17/12/2006 17:18 <REP> Media Player Classic
14/12/2006 11:58 <REP> Sun
13/12/2006 18:00 <REP> CyberLink
12/12/2006 16:52 <REP> Real
12/12/2006 12:48 <REP> Adobe
12/12/2006 11:22 <REP> Simple Star
12/12/2006 11:22 66 Setup.txt
12/12/2006 11:20 <REP> Nero
12/12/2006 11:17 <REP> Ahead
12/12/2006 01:48 62 desktop.ini
12/12/2006 01:48 <REP> Microsoft
12/12/2006 01:48 <REP> Identities
12/12/2006 01:48 <REP> Symantec
12/12/2006 01:48 <REP> ..
12/12/2006 01:48 <REP> .
12/12/2006 01:48 <REP> Macromedia
2 fichier(s) 128 octets
30 R‚p(s) 7645659136 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est E8C3-4C5B
R‚pertoire de C:\Documents and Settings\Invit‚\Application Data
19/12/2006 17:40 62 desktop.ini
19/12/2006 17:40 <REP> Microsoft
19/12/2006 17:40 <REP> Identities
19/12/2006 17:40 <REP> Macromedia
19/12/2006 17:40 <REP> Symantec
19/12/2006 17:40 <REP> ..
19/12/2006 17:40 <REP> .
1 fichier(s) 62 octets
6 R‚p(s) 7645659136 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est E8C3-4C5B
R‚pertoire de C:\Documents and Settings\Application Data\Application Data
18/03/2007 17:49 <REP> ..
18/03/2007 17:49 <REP> Microsoft
18/03/2007 17:49 <REP> .
0 fichier(s) 0 octets
3 R‚p(s) 7645659136 octets libres
******************************************
Recherche des taches planifiées dans C:\WINDOWS\tasks
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est E8C3-4C5B
R‚pertoire de C:\WINDOWS\Tasks
14/04/2007 19:37 268 A6E6C94291854262.job
06/02/2007 13:49 256 V‚rifier les mises … jour de Windows Live Toolbar.job
19/10/2006 06:46 6 SA.DAT
19/10/2006 06:41 <REP> ..
19/10/2006 06:41 <REP> .
20/09/2004 17:48 65 desktop.ini
4 fichier(s) 595 octets
2 R‚p(s) 7ÿ645ÿ659ÿ136 octets libres
******************************************
Recherche dans Program files
C:\Program Files\Adverts Présent !
******************************************
Recherche d'infections connues
C:\WINDOWS\system32\csrss.exe Wareout possible ! [#ff0000]faux-positif si csrss.exe ![/#f]
*************** Fin du rapport ****************
Rapport lopxpMH2 version 2.0 fait à 0:11:56,31 le 12/06/2007
C:\Documents and Settings\DJAMEL\Bureau
******************************************
## Répertoires Application Data
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\Default User\Application Data
19/10/2006 06:35 <REP> .
19/10/2006 06:35 <REP> ..
19/10/2006 06:42 <REP> Identities
12/12/2006 01:47 <REP> Macromedia
19/10/2006 06:35 <REP> Microsoft
12/12/2006 01:47 <REP> Symantec
19/10/2006 06:35 62 desktop.ini
1 fichier(s) 62 octets
6 Rép(s) 25 287 753 728 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\Default User\Local Settings\Application Data
19/10/2006 06:35 <REP> .
19/10/2006 06:35 <REP> ..
19/10/2006 06:42 <REP> Microsoft
12/04/2007 03:01 <REP> Microsoft Help
0 fichier(s) 0 octets
4 Rép(s) 25 287 753 728 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\All Users\Application Data
19/10/2006 06:35 <REP> .
19/10/2006 06:35 <REP> ..
12/12/2006 16:54 <REP> Adobe
12/12/2006 11:46 <REP> Adobe Systems
12/12/2006 16:52 <REP> Apple Computer
11/02/2007 23:57 <REP> BOONTY
28/02/2007 14:58 <REP> CanonBJ
13/12/2006 18:00 <REP> CyberLink
12/12/2006 16:57 <REP> DVD Shrink
05/01/2007 11:17 <REP> Google
28/02/2007 15:03 <REP> InstallShield
12/02/2007 00:18 <REP> Macrovision
31/03/2007 20:09 <REP> Messenger Plus!
19/10/2006 06:35 <REP> Microsoft
12/12/2006 11:36 <REP> Microsoft Help
12/12/2006 11:15 <REP> Nero
08/02/2007 11:44 <REP> nView_Profiles
15/02/2007 01:16 <REP> pixelStorm
19/12/2006 17:25 <REP> Raxco
12/12/2006 16:52 <REP> Real
19/10/2006 06:47 <REP> SBSI
28/02/2007 15:02 <REP> ScanSoft
11/06/2007 00:17 <REP> Spybot - Search & Destroy
19/10/2006 07:01 <REP> Symantec
29/03/2007 12:01 <REP> Test Drive Unlimited
12/12/2006 11:24 <REP> Windows Genuine Advantage
06/02/2007 13:49 <REP> Windows Live Toolbar
19/10/2006 06:35 62 desktop.ini
02/04/2007 11:45 0 LauncherAccess.dt
2 fichier(s) 62 octets
27 Rép(s) 25 287 753 728 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\NetworkService\Application Data
19/10/2006 06:46 <REP> .
19/10/2006 06:46 <REP> ..
19/10/2006 06:46 <REP> Microsoft
0 fichier(s) 0 octets
3 Rép(s) 25 287 753 728 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\NetworkService\Local Settings\Application Data
19/10/2006 06:46 <REP> .
19/10/2006 06:46 <REP> ..
19/10/2006 06:46 <REP> Microsoft
0 fichier(s) 0 octets
3 Rép(s) 25 287 753 728 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\LocalService\Application Data
19/10/2006 06:46 <REP> .
19/10/2006 06:46 <REP> ..
17/12/2006 18:56 <REP> Ahead
19/10/2006 06:46 <REP> Microsoft
0 fichier(s) 0 octets
4 Rép(s) 25 287 753 728 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\LocalService\Local Settings\Application Data
19/10/2006 06:46 <REP> .
19/10/2006 06:46 <REP> ..
19/10/2006 06:46 <REP> Microsoft
0 fichier(s) 0 octets
3 Rép(s) 25 287 753 728 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\DJAMEL\Application Data
12/12/2006 01:48 <REP> .
12/12/2006 01:48 <REP> ..
12/12/2006 12:48 <REP> Adobe
16/01/2007 10:41 <REP> AdobeUM
12/12/2006 11:17 <REP> Ahead
28/02/2007 17:45 <REP> ArcSoft
09/06/2007 22:01 <REP> BitTorrent
28/02/2007 17:05 <REP> Canon
13/12/2006 18:00 <REP> CyberLink
17/02/2007 01:06 <REP> FastStone
05/01/2007 11:17 <REP> Google
10/06/2007 23:28 <REP> Grisoft
09/06/2007 21:41 <REP> Hamachi
12/02/2007 00:29 <REP> Help
12/12/2006 01:48 <REP> Identities
12/12/2006 01:48 <REP> Macromedia
17/12/2006 17:18 <REP> Media Player Classic
12/12/2006 01:48 <REP> Microsoft
14/03/2007 10:56 <REP> Mozilla
04/01/2007 11:59 <REP> MSNInstaller
18/03/2007 17:49 <REP> MySpace
12/12/2006 11:20 <REP> Nero
24/12/2006 16:00 <REP> Opera
12/12/2006 16:52 <REP> Real
08/02/2007 21:45 <REP> Samsung
28/02/2007 15:03 <REP> ScanSoft
31/03/2007 18:53 <REP> Screenshot Sender
14/03/2007 10:55 <REP> SecondLife
03/03/2007 16:50 <REP> SecuROM
12/12/2006 11:22 <REP> Simple Star
19/05/2007 18:18 <REP> SopCast
19/05/2007 16:31 <REP> Sports Interactive
14/12/2006 11:58 <REP> Sun
12/12/2006 01:48 <REP> Symantec
20/04/2007 21:27 <REP> Talkback
12/12/2006 01:48 62 desktop.ini
12/12/2006 11:22 66 Setup.txt
2 fichier(s) 128 octets
35 Rép(s) 25 287 753 728 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\DJAMEL\Local Settings\Application Data
12/12/2006 01:48 <REP> .
12/12/2006 01:48 <REP> ..
12/12/2006 12:49 <REP> Adobe
12/12/2006 11:18 <REP> Ahead
07/02/2007 13:36 <REP> Apple Computer
05/01/2007 11:17 <REP> Google
26/12/2006 11:10 <REP> Help
09/02/2007 18:24 <REP> Identities
12/12/2006 01:48 <REP> Microsoft
12/12/2006 11:36 <REP> Microsoft Help
20/04/2007 21:26 <REP> Mozilla
12/12/2006 16:57 <REP> Sun
12/12/2006 12:09 <REP> WMTools Downloaded Files
14/12/2006 17:55 78 336 DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
12/12/2006 16:32 68 848 GDIPFONTCACHEV1.DAT
12/12/2006 01:48 5 835 694 IconCache.db
3 fichier(s) 5 982 878 octets
13 Rép(s) 25 287 753 728 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\Invité\Application Data
19/12/2006 17:40 <REP> .
19/12/2006 17:40 <REP> ..
19/12/2006 17:40 <REP> Identities
19/12/2006 17:40 <REP> Macromedia
19/12/2006 17:40 <REP> Microsoft
19/12/2006 17:40 <REP> Symantec
19/12/2006 17:40 62 desktop.ini
1 fichier(s) 62 octets
6 Rép(s) 25 287 753 728 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\Invité\Local Settings\Application Data
19/12/2006 17:40 <REP> .
19/12/2006 17:40 <REP> ..
19/12/2006 17:40 <REP> Microsoft
19/12/2006 17:42 3 246 340 IconCache.db
1 fichier(s) 3 246 340 octets
3 Rép(s) 25 287 753 728 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\Application Data\Application Data
18/03/2007 17:49 <REP> .
18/03/2007 17:49 <REP> ..
18/03/2007 17:49 <REP> Microsoft
0 fichier(s) 0 octets
3 Rép(s) 25 287 753 728 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\WINDOWS\system32\config\systemprofile\Application Data
19/10/2006 06:45 <REP> .
19/10/2006 06:45 <REP> ..
19/10/2006 06:45 <REP> Identities
12/12/2006 01:47 <REP> Macromedia
19/10/2006 06:45 <REP> Microsoft
12/12/2006 01:47 <REP> Symantec
19/10/2006 06:45 62 desktop.ini
1 fichier(s) 62 octets
6 Rép(s) 25 287 753 728 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\WINDOWS\system32\config\systemprofile\Local Settings\Application Data
19/10/2006 06:45 <REP> .
19/10/2006 06:45 <REP> ..
19/10/2006 06:45 <REP> Microsoft
0 fichier(s) 0 octets
3 Rép(s) 25 287 753 728 octets libres
******************************************
Recherche des taches planifiées dans C:\WINDOWS\tasks
C:\WINDOWS\Tasks\Vérifier
Vérifier inexploitable
******************************************
## Répertoires de C:\Program Files
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Program Files
19/10/2006 06:35 <REP> .
19/10/2006 06:35 <REP> ..
19/10/2006 07:08 <REP> Adobe
12/12/2006 11:30 <REP> Alcohol Soft
12/12/2006 16:46 <REP> Alwil Software
19/10/2006 06:50 <REP> AMD
28/02/2007 15:01 <REP> ArcSoft
19/10/2006 06:51 <REP> Asus
19/10/2006 06:55 <REP> ASUSTeK
19/10/2006 06:48 <REP> AvRack
09/06/2007 22:01 <REP> BitTorrent
02/04/2007 11:19 <REP> BluetoothPCDialer
28/02/2007 14:57 <REP> Canon
12/12/2006 11:24 <REP> CCleaner
13/02/2007 23:15 <REP> Common Files
19/10/2006 06:40 <REP> ComPlus Applications
19/10/2006 06:36 <REP> CONEXANT
29/03/2007 16:00 <REP> DAEMON Tools
17/03/2007 11:40 <REP> Dictionnaire
17/05/2007 22:49 <REP> DivX
31/03/2007 21:33 <REP> DJ show
12/12/2006 16:57 <REP> DVD Shrink
11/02/2007 12:12 <REP> eChanblard
13/02/2007 18:25 <REP> Electronic Arts
19/10/2006 06:35 <REP> Fichiers communs
03/02/2007 00:20 <REP> Free Audio Pack
05/01/2007 11:17 <REP> Google
10/06/2007 23:28 <REP> Grisoft
09/06/2007 23:36 <REP> Hijackthis Version Française
19/10/2006 06:40 <REP> Internet Explorer
12/12/2006 16:57 <REP> Java
12/12/2006 16:52 <REP> K-Lite Codec Pack
12/12/2006 16:53 <REP> Media Player Classic
31/03/2007 18:48 <REP> Messenger Plus! Live
09/05/2007 21:08 <REP> Microsoft CAPICOM 2.1.0.2
19/10/2006 06:42 <REP> microsoft frontpage
12/12/2006 11:36 <REP> Microsoft Office
12/12/2006 11:41 <REP> Microsoft Visual Studio
12/12/2006 11:42 <REP> Microsoft Works
19/10/2006 06:41 <REP> Movie Maker
20/04/2007 21:26 <REP> Mozilla Firefox
12/12/2006 11:41 <REP> MSBuild
19/10/2006 06:39 <REP> MSN
19/10/2006 06:40 <REP> MSN Gaming Zone
16/03/2007 23:02 <REP> MSN Messenger
12/12/2006 12:34 <REP> MSXML 4.0
11/01/2007 22:45 <REP> Multi_Media
12/12/2006 11:15 <REP> Nero
19/10/2006 06:40 <REP> NetMeeting
26/12/2006 10:26 <REP> Neuf
19/10/2006 06:40 <REP> Online Services
19/10/2006 06:40 <REP> Outlook Express
11/06/2007 14:37 <REP> Project64 v1.5
12/12/2006 16:53 <REP> QuickTime Alternative
12/12/2006 11:28 <REP> Raxco
19/10/2006 06:48 <REP> Realtek AC97
19/10/2006 06:48 <REP> Realtek Sound Manager
02/02/2007 23:03 <REP> Replay Converter
08/06/2007 11:50 <REP> Rockstar Games
05/02/2007 20:20 <REP> Samsung
28/02/2007 15:02 <REP> ScanSoft
30/05/2007 00:52 <REP> Sega
19/10/2006 06:41 <REP> Services en ligne
08/05/2007 15:52 <REP> Sunbelt Software
19/10/2006 07:01 <REP> Symantec
19/10/2006 06:53 <REP> Synaptics
08/05/2007 13:38 <REP> TrackMania Nations ESWC
14/02/2007 00:02 <REP> UltraISO
06/02/2007 13:50 <REP> Windows Live Favorites
06/02/2007 13:47 <REP> Windows Live Toolbar
08/01/2007 18:50 <REP> Windows Media Connect 2
19/10/2006 06:40 <REP> Windows Media Player
19/10/2006 06:39 <REP> Windows NT
12/12/2006 11:23 <REP> WinRAR
19/10/2006 06:42 <REP> xerox
0 fichier(s) 0 octets
75 Rép(s) 25 287 753 728 octets libres
******************************************
## Popups autorisées
* Internet Explorer
! REG.EXE VERSION 3.0
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\New Windows\Allow
*.play.yahoo.com REG_BINARY
www.skyrock.com REG_BINARY
zonenxt.msn-int.com REG_BINARY
zonenxt.msn-ppe.com REG_BINARY
zone.msn.com REG_BINARY
fr.worldsbiggestchat.com REG_BINARY
netbios-wait.com REG_SZ
www.netbios-wait.com REG_SZ
mysearchnow.com REG_SZ
www.mysearchnow.com REG_SZ
*.<frame src="titre.htm" name="droite" scrolling=yes> REG_BINARY 0000
* Mozilla Firefox (1 autorisé 2 interdit)
---------- C:\DOCUMENTS AND SETTINGS\DJAMEL\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\TW97VMQO.DEFAULT\HOSTPERM.1
host popup 1 www.skyrock.com
******************************************
## Registre
* [HKEY_CURRENT_USER\\Software\Microsoft\Internet Explorer\Main]
Search Bar REG_SZ http://g.msn.fr/0SEFRFR/SAOS01?FORM=TOOLBR
******************************************
## Zones de sécurité
* HKCU Domains (4)
* P3P History (5)
******************************************
## Recherche C:\WINDOWS\*.htm, "C:\WINDOWS\*.gif"
*************** Fin du rapport ****************
Rapport lopxpMH2 version 2.0 fait à 22:30:50,60 le 12/06/2007
C:\Documents and Settings\DJAMEL\Local Settings\Temporary Internet Files\Content.IE5\4Y4126I1
******************************************
## Répertoires Application Data
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\Default User\Application Data
19/10/2006 06:35 <REP> .
19/10/2006 06:35 <REP> ..
19/10/2006 06:42 <REP> Identities
12/12/2006 01:47 <REP> Macromedia
19/10/2006 06:35 <REP> Microsoft
12/12/2006 01:47 <REP> Symantec
19/10/2006 06:35 62 desktop.ini
1 fichier(s) 62 octets
6 Rép(s) 25 383 272 448 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\Default User\Local Settings\Application Data
19/10/2006 06:35 <REP> .
19/10/2006 06:35 <REP> ..
19/10/2006 06:42 <REP> Microsoft
12/04/2007 03:01 <REP> Microsoft Help
0 fichier(s) 0 octets
4 Rép(s) 25 383 272 448 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\All Users\Application Data
19/10/2006 06:35 <REP> .
19/10/2006 06:35 <REP> ..
12/12/2006 16:54 <REP> Adobe
12/12/2006 11:46 <REP> Adobe Systems
12/12/2006 16:52 <REP> Apple Computer
11/02/2007 23:57 <REP> BOONTY
28/02/2007 14:58 <REP> CanonBJ
13/12/2006 18:00 <REP> CyberLink
12/12/2006 16:57 <REP> DVD Shrink
05/01/2007 11:17 <REP> Google
28/02/2007 15:03 <REP> InstallShield
12/02/2007 00:18 <REP> Macrovision
31/03/2007 20:09 <REP> Messenger Plus!
19/10/2006 06:35 <REP> Microsoft
12/12/2006 11:36 <REP> Microsoft Help
12/12/2006 11:15 <REP> Nero
08/02/2007 11:44 <REP> nView_Profiles
15/02/2007 01:16 <REP> pixelStorm
19/12/2006 17:25 <REP> Raxco
12/12/2006 16:52 <REP> Real
19/10/2006 06:47 <REP> SBSI
28/02/2007 15:02 <REP> ScanSoft
11/06/2007 00:17 <REP> Spybot - Search & Destroy
19/10/2006 07:01 <REP> Symantec
29/03/2007 12:01 <REP> Test Drive Unlimited
12/12/2006 11:24 <REP> Windows Genuine Advantage
06/02/2007 13:49 <REP> Windows Live Toolbar
19/10/2006 06:35 62 desktop.ini
02/04/2007 11:45 0 LauncherAccess.dt
2 fichier(s) 62 octets
27 Rép(s) 25 383 272 448 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\NetworkService\Application Data
19/10/2006 06:46 <REP> .
19/10/2006 06:46 <REP> ..
19/10/2006 06:46 <REP> Microsoft
0 fichier(s) 0 octets
3 Rép(s) 25 383 272 448 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\NetworkService\Local Settings\Application Data
19/10/2006 06:46 <REP> .
19/10/2006 06:46 <REP> ..
19/10/2006 06:46 <REP> Microsoft
0 fichier(s) 0 octets
3 Rép(s) 25 383 272 448 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\LocalService\Application Data
19/10/2006 06:46 <REP> .
19/10/2006 06:46 <REP> ..
17/12/2006 18:56 <REP> Ahead
19/10/2006 06:46 <REP> Microsoft
0 fichier(s) 0 octets
4 Rép(s) 25 383 272 448 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\LocalService\Local Settings\Application Data
19/10/2006 06:46 <REP> .
19/10/2006 06:46 <REP> ..
19/10/2006 06:46 <REP> Microsoft
0 fichier(s) 0 octets
3 Rép(s) 25 383 272 448 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\DJAMEL\Application Data
12/12/2006 01:48 <REP> .
12/12/2006 01:48 <REP> ..
12/12/2006 12:48 <REP> Adobe
16/01/2007 10:41 <REP> AdobeUM
12/12/2006 11:17 <REP> Ahead
28/02/2007 17:45 <REP> ArcSoft
09/06/2007 22:01 <REP> BitTorrent
28/02/2007 17:05 <REP> Canon
13/12/2006 18:00 <REP> CyberLink
17/02/2007 01:06 <REP> FastStone
05/01/2007 11:17 <REP> Google
09/06/2007 21:41 <REP> Hamachi
12/02/2007 00:29 <REP> Help
12/12/2006 01:48 <REP> Identities
12/12/2006 01:48 <REP> Macromedia
17/12/2006 17:18 <REP> Media Player Classic
12/12/2006 01:48 <REP> Microsoft
14/03/2007 10:56 <REP> Mozilla
04/01/2007 11:59 <REP> MSNInstaller
18/03/2007 17:49 <REP> MySpace
12/12/2006 11:20 <REP> Nero
24/12/2006 16:00 <REP> Opera
12/12/2006 16:52 <REP> Real
08/02/2007 21:45 <REP> Samsung
28/02/2007 15:03 <REP> ScanSoft
31/03/2007 18:53 <REP> Screenshot Sender
14/03/2007 10:55 <REP> SecondLife
03/03/2007 16:50 <REP> SecuROM
12/12/2006 11:22 <REP> Simple Star
19/05/2007 18:18 <REP> SopCast
19/05/2007 16:31 <REP> Sports Interactive
14/12/2006 11:58 <REP> Sun
12/12/2006 01:48 <REP> Symantec
20/04/2007 21:27 <REP> Talkback
12/12/2006 01:48 62 desktop.ini
12/12/2006 11:22 66 Setup.txt
2 fichier(s) 128 octets
34 Rép(s) 25 383 272 448 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\DJAMEL\Local Settings\Application Data
12/12/2006 01:48 <REP> .
12/12/2006 01:48 <REP> ..
12/12/2006 12:49 <REP> Adobe
12/12/2006 11:18 <REP> Ahead
07/02/2007 13:36 <REP> Apple Computer
05/01/2007 11:17 <REP> Google
26/12/2006 11:10 <REP> Help
09/02/2007 18:24 <REP> Identities
12/12/2006 01:48 <REP> Microsoft
12/12/2006 11:36 <REP> Microsoft Help
20/04/2007 21:26 <REP> Mozilla
12/12/2006 16:57 <REP> Sun
12/12/2006 12:09 <REP> WMTools Downloaded Files
14/12/2006 17:55 78 336 DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
12/12/2006 16:32 68 848 GDIPFONTCACHEV1.DAT
12/12/2006 01:48 5 835 694 IconCache.db
3 fichier(s) 5 982 878 octets
13 Rép(s) 25 383 272 448 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\Invité\Application Data
19/12/2006 17:40 <REP> .
19/12/2006 17:40 <REP> ..
19/12/2006 17:40 <REP> Identities
19/12/2006 17:40 <REP> Macromedia
19/12/2006 17:40 <REP> Microsoft
19/12/2006 17:40 <REP> Symantec
19/12/2006 17:40 62 desktop.ini
1 fichier(s) 62 octets
6 Rép(s) 25 383 272 448 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\Invité\Local Settings\Application Data
19/12/2006 17:40 <REP> .
19/12/2006 17:40 <REP> ..
19/12/2006 17:40 <REP> Microsoft
19/12/2006 17:42 3 246 340 IconCache.db
1 fichier(s) 3 246 340 octets
3 Rép(s) 25 383 272 448 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Documents and Settings\Application Data\Application Data
18/03/2007 17:49 <REP> .
18/03/2007 17:49 <REP> ..
18/03/2007 17:49 <REP> Microsoft
0 fichier(s) 0 octets
3 Rép(s) 25 383 272 448 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\WINDOWS\system32\config\systemprofile\Application Data
19/10/2006 06:45 <REP> .
19/10/2006 06:45 <REP> ..
19/10/2006 06:45 <REP> Identities
12/12/2006 01:47 <REP> Macromedia
19/10/2006 06:45 <REP> Microsoft
12/12/2006 01:47 <REP> Symantec
19/10/2006 06:45 62 desktop.ini
1 fichier(s) 62 octets
6 Rép(s) 25 383 272 448 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\WINDOWS\system32\config\systemprofile\Local Settings\Application Data
19/10/2006 06:45 <REP> .
19/10/2006 06:45 <REP> ..
19/10/2006 06:45 <REP> Microsoft
0 fichier(s) 0 octets
3 Rép(s) 25 383 272 448 octets libres
******************************************
Recherche des taches planifiées dans C:\WINDOWS\tasks
C:\WINDOWS\Tasks\Vérifier
Vérifier inexploitable
******************************************
## Répertoires de C:\Program Files
Le volume dans le lecteur C n'a pas de nom.
Le numéro de série du volume est E8C3-4C5B
Répertoire de C:\Program Files
19/10/2006 06:35 <REP> .
19/10/2006 06:35 <REP> ..
19/10/2006 07:08 <REP> Adobe
12/12/2006 11:30 <REP> Alcohol Soft
12/12/2006 16:46 <REP> Alwil Software
19/10/2006 06:50 <REP> AMD
28/02/2007 15:01 <REP> ArcSoft
19/10/2006 06:51 <REP> Asus
19/10/2006 06:55 <REP> ASUSTeK
19/10/2006 06:48 <REP> AvRack
09/06/2007 22:01 <REP> BitTorrent
02/04/2007 11:19 <REP> BluetoothPCDialer
28/02/2007 14:57 <REP> Canon
12/12/2006 11:24 <REP> CCleaner
13/02/2007 23:15 <REP> Common Files
19/10/2006 06:40 <REP> ComPlus Applications
19/10/2006 06:36 <REP> CONEXANT
29/03/2007 16:00 <REP> DAEMON Tools
17/03/2007 11:40 <REP> Dictionnaire
17/05/2007 22:49 <REP> DivX
31/03/2007 21:33 <REP> DJ show
12/12/2006 16:57 <REP> DVD Shrink
11/02/2007 12:12 <REP> eChanblard
13/02/2007 18:25 <REP> Electronic Arts
19/10/2006 06:35 <REP> Fichiers communs
03/02/2007 00:20 <REP> Free Audio Pack
05/01/2007 11:17 <REP> Google
09/06/2007 23:36 <REP> Hijackthis Version Française
19/10/2006 06:40 <REP> Internet Explorer
12/12/2006 16:57 <REP> Java
12/12/2006 16:52 <REP> K-Lite Codec Pack
12/12/2006 16:53 <REP> Media Player Classic
31/03/2007 18:48 <REP> Messenger Plus! Live
09/05/2007 21:08 <REP> Microsoft CAPICOM 2.1.0.2
19/10/2006 06:42 <REP> microsoft frontpage
12/12/2006 11:36 <REP> Microsoft Office
12/12/2006 11:41 <REP> Microsoft Visual Studio
12/12/2006 11:42 <REP> Microsoft Works
19/10/2006 06:41 <REP> Movie Maker
20/04/2007 21:26 <REP> Mozilla Firefox
12/12/2006 11:41 <REP> MSBuild
19/10/2006 06:39 <REP> MSN
19/10/2006 06:40 <REP> MSN Gaming Zone
16/03/2007 23:02 <REP> MSN Messenger
12/12/2006 12:34 <REP> MSXML 4.0
11/01/2007 22:45 <REP> Multi_Media
12/12/2006 11:15 <REP> Nero
19/10/2006 06:40 <REP> NetMeeting
26/12/2006 10:26 <REP> Neuf
19/10/2006 06:40 <REP> Online Services
19/10/2006 06:40 <REP> Outlook Express
11/06/2007 14:37 <REP> Project64 v1.5
12/12/2006 16:53 <REP> QuickTime Alternative
12/12/2006 11:28 <REP> Raxco
19/10/2006 06:48 <REP> Realtek AC97
19/10/2006 06:48 <REP> Realtek Sound Manager
02/02/2007 23:03 <REP> Replay Converter
08/06/2007 11:50 <REP> Rockstar Games
05/02/2007 20:20 <REP> Samsung
28/02/2007 15:02 <REP> ScanSoft
30/05/2007 00:52 <REP> Sega
19/10/2006 06:41 <REP> Services en ligne
08/05/2007 15:52 <REP> Sunbelt Software
19/10/2006 07:01 <REP> Symantec
19/10/2006 06:53 <REP> Synaptics
08/05/2007 13:38 <REP> TrackMania Nations ESWC
14/02/2007 00:02 <REP> UltraISO
06/02/2007 13:50 <REP> Windows Live Favorites
06/02/2007 13:47 <REP> Windows Live Toolbar
08/01/2007 18:50 <REP> Windows Media Connect 2
19/10/2006 06:40 <REP> Windows Media Player
19/10/2006 06:39 <REP> Windows NT
12/12/2006 11:23 <REP> WinRAR
19/10/2006 06:42 <REP> xerox
0 fichier(s) 0 octets
74 Rép(s) 25 382 191 104 octets libres
******************************************
## Popups autorisées
* Internet Explorer
! REG.EXE VERSION 3.0
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\New Windows\Allow
*.play.yahoo.com REG_BINARY
www.skyrock.com REG_BINARY
zonenxt.msn-int.com REG_BINARY
zonenxt.msn-ppe.com REG_BINARY
zone.msn.com REG_BINARY
fr.worldsbiggestchat.com REG_BINARY
netbios-wait.com REG_SZ
www.netbios-wait.com REG_SZ
mysearchnow.com REG_SZ
www.mysearchnow.com REG_SZ
*.<frame src="titre.htm" name="droite" scrolling=yes> REG_BINARY 0000
* Mozilla Firefox (1 autorisé 2 interdit)
---------- C:\DOCUMENTS AND SETTINGS\DJAMEL\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\TW97VMQO.DEFAULT\HOSTPERM.1
host popup 1 www.skyrock.com
******************************************
## Registre
* [HKEY_CURRENT_USER\\Software\Microsoft\Internet Explorer\Main]
Search Bar REG_SZ http://g.msn.fr/0SEFRFR/SAOS01?FORM=TOOLBR
******************************************
## Zones de sécurité
* HKCU Domains (4)
* P3P History (5)
******************************************
## Recherche C:\WINDOWS\*.htm, "C:\WINDOWS\*.gif"
*************** Fin du rapport ****************
Le voila en 2 parties mais tous va bien mon pc va vite MERCI
Avec l'expérience, on repere les lignes douteuses et infectieuses rapidement.
Quand on débute, on analyse chaque ligne, chaque fichier pour savoir ce que c'est .
http://forum.pcastuces.com/sujet.asp?f=25&s=10169
Quand on débute, on analyse chaque ligne, chaque fichier pour savoir ce que c'est .
http://forum.pcastuces.com/sujet.asp?f=25&s=10169
Lassé par la pub ? Créez un compte