Wuauclt.exe "probleme au demarrage-doit etre fermé" (RESOLU)
Dernière réponse : dans Sécurité
Bonjour, mon ordinateur portable a un problème au démarrage
J'ai une fenêtre qui m'indique que "wuauclt.exe" a rencontré un problème et doit être fermé
premier réflexe, j'ai fermé la fenêtre mais celle-ci réapparait tout le temps.
donc, j'ai lancé plusieurs test de base. Clearprog, CCleaner, et Malwarebyte antimalware mode normal et sans echec. Ceux-ci n'ont rien détecté !
Je me suis penché sur la question et donc, c'est un processus de mise à jour windows automatique qui bug
J'ai essayé d'arrêter le service "demarrer/executer/services.msc" mais çà ne fonctionne pas !
et dans la base de registre "HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurentVersion\Run\Microsoft auto update = WUAULT.EXE "
cette ligne n'apparait pas.
j'aimerais supprimer le problème pour mettre cette ordianteur portable à jour via microsoft
-passage en service pack2
-internet explorer 7
mais ce soucis m'empêche de le faire :s
Je vous poste un rapport hisjackthis
j'éspère que vous avez assez d'information pour me dépanner
merci d'avance
cordialement, oréakabil
edit: SP3, IE7 ; installation réussi mais toujours le même problème :s
--------------------------------------------------------------------------------------------------
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 17:06:16, on 27/01/2009
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\S24EvMon.exe
C:\WINDOWS\system32\ZCfgSvc.exe
C:\WINDOWS\System32\brsvc01a.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\brss01a.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Java\jre6\bin\jusched.exe
C:\WINDOWS\System32\igfxtray.exe
C:\WINDOWS\System32\hkcmd.exe
C:\WINDOWS\System32\00THotkey.exe
C:\WINDOWS\System32\TFNF5.exe
C:\Program Files\TOSHIBA\Utilitaire de zoom TOSHIBA\SmoothView.exe
C:\Program Files\SigmaTel\Pilotes Audio SigmaTel AC97\stacmon.exe
C:\Program Files\Apoint2K\Apoint.exe
C:\Program Files\TOSHIBA\TouchED\TouchED.Exe
C:\WINDOWS\LTSMMSG.exe
C:\WINDOWS\System32\TPSMain.exe
C:\Program Files\TOSHIBA\TME3\TMERzCtl.EXE
C:\Program Files\TOSHIBA\Commandes TOSHIBA\TFncKy.exe
C:\Program Files\Apoint2K\Apntex.exe
C:\Program Files\TOSHIBA\ConfigFree\NDSTray.exe
C:\Program Files\Brother\ControlCenter2\brctrcen.exe
C:\WINDOWS\System32\TPSBattM.exe
C:\WINDOWS\System32\ctfmon.exe
C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe
C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe
C:\WINDOWS\system32\Brmfrmps.exe
C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Microsoft SQL Server\MSSQL$MICROSOFTBCM\Binn\sqlservr.exe
C:\WINDOWS\System32\RegSrvc.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\TOSHIBA\TME3\Tmesrv31.exe
C:\Program Files\TOSHIBA\TME3\TMEEJME.EXE
C:\WINDOWS\System32\1XConfig.exe
C:\WINDOWS\System32\taskmgr.exe
C:\WINDOWS\regedit.exe
C:\WINDOWS\System32\wuauclt.exe
C:\WINDOWS\System32\dwwin.exe
C:\Documents and Settings\PortableEFFICOM\Bureau\dl internet\HiJackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = file:///C:\Program Files\TOSHIBA\Free Update Service\splash.html
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.google.fr/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
O4 - HKLM\..\Run: [00THotkey] C:\WINDOWS\System32\00THotkey.exe
O4 - HKLM\..\Run: [000StTHK] 000StTHK.exe
O4 - HKLM\..\Run: [TFNF5] TFNF5.exe
O4 - HKLM\..\Run: [SmoothView] C:\Program Files\TOSHIBA\Utilitaire de zoom TOSHIBA\SmoothView.exe
O4 - HKLM\..\Run: [SigmaTel StacMon] C:\Program Files\SigmaTel\Pilotes Audio SigmaTel AC97\stacmon.exe
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint2K\Apoint.exe
O4 - HKLM\..\Run: [TouchED] C:\Program Files\TOSHIBA\TouchED\TouchED.Exe
O4 - HKLM\..\Run: [LTSMMSG] LTSMMSG.exe
O4 - HKLM\..\Run: [TPSMain] TPSMain.exe
O4 - HKLM\..\Run: [TMESRV.EXE] C:\Program Files\TOSHIBA\TME3\TMESRV31.EXE /Logon
O4 - HKLM\..\Run: [TMERzCtl.EXE] C:\Program Files\TOSHIBA\TME3\TMERzCtl.EXE /Service
O4 - HKLM\..\Run: [TFncKy] TFncKy.exe
O4 - HKLM\..\Run: [NDSTray.exe] NDSTray.exe
O4 - HKLM\..\Run: [PRONoMgr.exe] c:\Program Files\Intel\PROSetWireless\NCS\PROSet\PRONoMgr.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [SetDefPrt] C:\Program Files\Brother\Brmfl04a\BrStDvPt.exe
O4 - HKLM\..\Run: [ControlCenter2.0] C:\Program Files\Brother\ControlCenter2\brctrcen.exe /autorun
O4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [TOSCDSPD] C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Lancement rapide de Microsoft Office OneNote 2003.lnk = C:\Program Files\Microsoft Office\OFFICE11\ONENOTEM.EXE
O4 - Global Startup: Status Monitor.lnk = C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O14 - IERESET.INF: START_PAGE_URL=file:///C:\Program Files\TOSHIBA\Free Update Service\splash.html
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft. [...] 0821398159
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.6.0) - http://javadl.sun.com/webapps/down [...] leId=26688
O23 - Service: Brother Popup Suspend service for Resource manager (brmfrmps) - Brother Industries, Ltd. - C:\WINDOWS\system32\Brmfrmps.exe
O23 - Service: BrSplService (Brother XP spl Service) - brother Industries Ltd - C:\WINDOWS\System32\brsvc01a.exe
O23 - Service: ConfigFree Service (CFSvcs) - TOSHIBA CORPORATION - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: RegSrvc - Intel Corporation - C:\WINDOWS\System32\RegSrvc.exe
O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:\WINDOWS\System32\S24EvMon.exe
O23 - Service: Tmesrv3 (Tmesrv) - TOSHIBA - C:\Program Files\TOSHIBA\TME3\Tmesrv31.exe
--
End of file - 6994 bytes
J'ai une fenêtre qui m'indique que "wuauclt.exe" a rencontré un problème et doit être fermé
premier réflexe, j'ai fermé la fenêtre mais celle-ci réapparait tout le temps.
donc, j'ai lancé plusieurs test de base. Clearprog, CCleaner, et Malwarebyte antimalware mode normal et sans echec. Ceux-ci n'ont rien détecté !
Je me suis penché sur la question et donc, c'est un processus de mise à jour windows automatique qui bug
J'ai essayé d'arrêter le service "demarrer/executer/services.msc" mais çà ne fonctionne pas !
et dans la base de registre "HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurentVersion\Run\Microsoft auto update = WUAULT.EXE "
cette ligne n'apparait pas.
j'aimerais supprimer le problème pour mettre cette ordianteur portable à jour via microsoft
-passage en service pack2
-internet explorer 7
mais ce soucis m'empêche de le faire :s
Je vous poste un rapport hisjackthis
j'éspère que vous avez assez d'information pour me dépanner
merci d'avance
cordialement, oréakabil
edit: SP3, IE7 ; installation réussi mais toujours le même problème :s
--------------------------------------------------------------------------------------------------
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 17:06:16, on 27/01/2009
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\S24EvMon.exe
C:\WINDOWS\system32\ZCfgSvc.exe
C:\WINDOWS\System32\brsvc01a.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\brss01a.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Java\jre6\bin\jusched.exe
C:\WINDOWS\System32\igfxtray.exe
C:\WINDOWS\System32\hkcmd.exe
C:\WINDOWS\System32\00THotkey.exe
C:\WINDOWS\System32\TFNF5.exe
C:\Program Files\TOSHIBA\Utilitaire de zoom TOSHIBA\SmoothView.exe
C:\Program Files\SigmaTel\Pilotes Audio SigmaTel AC97\stacmon.exe
C:\Program Files\Apoint2K\Apoint.exe
C:\Program Files\TOSHIBA\TouchED\TouchED.Exe
C:\WINDOWS\LTSMMSG.exe
C:\WINDOWS\System32\TPSMain.exe
C:\Program Files\TOSHIBA\TME3\TMERzCtl.EXE
C:\Program Files\TOSHIBA\Commandes TOSHIBA\TFncKy.exe
C:\Program Files\Apoint2K\Apntex.exe
C:\Program Files\TOSHIBA\ConfigFree\NDSTray.exe
C:\Program Files\Brother\ControlCenter2\brctrcen.exe
C:\WINDOWS\System32\TPSBattM.exe
C:\WINDOWS\System32\ctfmon.exe
C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe
C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe
C:\WINDOWS\system32\Brmfrmps.exe
C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Microsoft SQL Server\MSSQL$MICROSOFTBCM\Binn\sqlservr.exe
C:\WINDOWS\System32\RegSrvc.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\TOSHIBA\TME3\Tmesrv31.exe
C:\Program Files\TOSHIBA\TME3\TMEEJME.EXE
C:\WINDOWS\System32\1XConfig.exe
C:\WINDOWS\System32\taskmgr.exe
C:\WINDOWS\regedit.exe
C:\WINDOWS\System32\wuauclt.exe
C:\WINDOWS\System32\dwwin.exe
C:\Documents and Settings\PortableEFFICOM\Bureau\dl internet\HiJackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = file:///C:\Program Files\TOSHIBA\Free Update Service\splash.html
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.google.fr/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
O4 - HKLM\..\Run: [00THotkey] C:\WINDOWS\System32\00THotkey.exe
O4 - HKLM\..\Run: [000StTHK] 000StTHK.exe
O4 - HKLM\..\Run: [TFNF5] TFNF5.exe
O4 - HKLM\..\Run: [SmoothView] C:\Program Files\TOSHIBA\Utilitaire de zoom TOSHIBA\SmoothView.exe
O4 - HKLM\..\Run: [SigmaTel StacMon] C:\Program Files\SigmaTel\Pilotes Audio SigmaTel AC97\stacmon.exe
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint2K\Apoint.exe
O4 - HKLM\..\Run: [TouchED] C:\Program Files\TOSHIBA\TouchED\TouchED.Exe
O4 - HKLM\..\Run: [LTSMMSG] LTSMMSG.exe
O4 - HKLM\..\Run: [TPSMain] TPSMain.exe
O4 - HKLM\..\Run: [TMESRV.EXE] C:\Program Files\TOSHIBA\TME3\TMESRV31.EXE /Logon
O4 - HKLM\..\Run: [TMERzCtl.EXE] C:\Program Files\TOSHIBA\TME3\TMERzCtl.EXE /Service
O4 - HKLM\..\Run: [TFncKy] TFncKy.exe
O4 - HKLM\..\Run: [NDSTray.exe] NDSTray.exe
O4 - HKLM\..\Run: [PRONoMgr.exe] c:\Program Files\Intel\PROSetWireless\NCS\PROSet\PRONoMgr.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [SetDefPrt] C:\Program Files\Brother\Brmfl04a\BrStDvPt.exe
O4 - HKLM\..\Run: [ControlCenter2.0] C:\Program Files\Brother\ControlCenter2\brctrcen.exe /autorun
O4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [TOSCDSPD] C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Lancement rapide de Microsoft Office OneNote 2003.lnk = C:\Program Files\Microsoft Office\OFFICE11\ONENOTEM.EXE
O4 - Global Startup: Status Monitor.lnk = C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O14 - IERESET.INF: START_PAGE_URL=file:///C:\Program Files\TOSHIBA\Free Update Service\splash.html
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft. [...] 0821398159
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.6.0) - http://javadl.sun.com/webapps/down [...] leId=26688
O23 - Service: Brother Popup Suspend service for Resource manager (brmfrmps) - Brother Industries, Ltd. - C:\WINDOWS\system32\Brmfrmps.exe
O23 - Service: BrSplService (Brother XP spl Service) - brother Industries Ltd - C:\WINDOWS\System32\brsvc01a.exe
O23 - Service: ConfigFree Service (CFSvcs) - TOSHIBA CORPORATION - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: RegSrvc - Intel Corporation - C:\WINDOWS\System32\RegSrvc.exe
O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:\WINDOWS\System32\S24EvMon.exe
O23 - Service: Tmesrv3 (Tmesrv) - TOSHIBA - C:\Program Files\TOSHIBA\TME3\Tmesrv31.exe
--
End of file - 6994 bytes
Autres pages sur : wuauclt exe probleme demarrage ferme resolu
Lassé par la pub ? Créez un compte
Salut,
As-tu essayé d'installer le SP2 sans utiliser Windows Update ?
http://www.clubic.com/telecharger-fiche12824-windows-xp...
As-tu essayé d'installer le SP2 sans utiliser Windows Update ?
http://www.clubic.com/telecharger-fiche12824-windows-xp...
Note : les rapports sont sauvegardés dans le dossier C:\rsit\.
Bonjour,
voici les 2 rapports log.txt et info.txt
merci d'avance
--------------------------------------------------------
Logfile of random's system information tool 1.05 (written by random/random)
Run by PortableEFFICOM at 2009-01-28 11:09:58
Microsoft Windows XP Professionnel Service Pack 3
System drive C: has 27 GB (71%) free of 38 GB
Total RAM: 495 MB (48% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:10:13, on 28/01/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5730.0013)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\S24EvMon.exe
C:\WINDOWS\system32\ZCfgSvc.exe
C:\WINDOWS\System32\brsvc01a.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\brss01a.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Java\jre6\bin\jusched.exe
C:\WINDOWS\System32\igfxtray.exe
C:\WINDOWS\System32\hkcmd.exe
C:\WINDOWS\System32\00THotkey.exe
C:\WINDOWS\system32\TFNF5.exe
C:\Program Files\TOSHIBA\Utilitaire de zoom TOSHIBA\SmoothView.exe
C:\Program Files\SigmaTel\Pilotes Audio SigmaTel AC97\stacmon.exe
C:\Program Files\Apoint2K\Apoint.exe
C:\Program Files\TOSHIBA\TouchED\TouchED.Exe
C:\WINDOWS\LTSMMSG.exe
C:\WINDOWS\system32\TPSMain.exe
C:\Program Files\TOSHIBA\TME3\TMERzCtl.EXE
C:\WINDOWS\system32\TPSBattM.exe
C:\Program Files\Apoint2K\Apntex.exe
C:\Program Files\TOSHIBA\Commandes TOSHIBA\TFncKy.exe
C:\Program Files\TOSHIBA\ConfigFree\NDSTray.exe
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe
C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe
C:\WINDOWS\system32\Brmfrmps.exe
C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Microsoft SQL Server\MSSQL$MICROSOFTBCM\Binn\sqlservr.exe
C:\WINDOWS\System32\RegSrvc.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\TOSHIBA\TME3\Tmesrv31.exe
C:\Program Files\TOSHIBA\TME3\TMEEJME.EXE
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\System32\1XConfig.exe
C:\WINDOWS\System32\wbem\wmiapsrv.exe
C:\Documents and Settings\PortableEFFICOM\Bureau\RSIT.exe
C:\Documents and Settings\PortableEFFICOM\Bureau\dl internet\PortableEFFICOM.exe
C:\WINDOWS\system32\wuauclt.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.google.fr/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
O4 - HKLM\..\Run: [00THotkey] C:\WINDOWS\System32\00THotkey.exe
O4 - HKLM\..\Run: [000StTHK] 000StTHK.exe
O4 - HKLM\..\Run: [TFNF5] TFNF5.exe
O4 - HKLM\..\Run: [SmoothView] C:\Program Files\TOSHIBA\Utilitaire de zoom TOSHIBA\SmoothView.exe
O4 - HKLM\..\Run: [SigmaTel StacMon] C:\Program Files\SigmaTel\Pilotes Audio SigmaTel AC97\stacmon.exe
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint2K\Apoint.exe
O4 - HKLM\..\Run: [TouchED] C:\Program Files\TOSHIBA\TouchED\TouchED.Exe
O4 - HKLM\..\Run: [LTSMMSG] LTSMMSG.exe
O4 - HKLM\..\Run: [TPSMain] TPSMain.exe
O4 - HKLM\..\Run: [TMESRV.EXE] C:\Program Files\TOSHIBA\TME3\TMESRV31.EXE /Logon
O4 - HKLM\..\Run: [TMERzCtl.EXE] C:\Program Files\TOSHIBA\TME3\TMERzCtl.EXE /Service
O4 - HKLM\..\Run: [TFncKy] TFncKy.exe
O4 - HKLM\..\Run: [NDSTray.exe] NDSTray.exe
O4 - HKLM\..\Run: [PRONoMgr.exe] c:\Program Files\Intel\PROSetWireless\NCS\PROSet\PRONoMgr.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [SetDefPrt] C:\Program Files\Brother\Brmfl04a\BrStDvPt.exe
O4 - HKLM\..\Run: [ControlCenter2.0] C:\Program Files\Brother\ControlCenter2\brctrcen.exe /autorun
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [TOSCDSPD] C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Lancement rapide de Microsoft Office OneNote 2003.lnk = C:\Program Files\Microsoft Office\OFFICE11\ONENOTEM.EXE
O4 - Global Startup: Status Monitor.lnk = C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=file:///C:\Program Files\TOSHIBA\Free Update Service\splash.html
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.com/v5consumer/V5Cont...
O17 - HKLM\System\CCS\Services\Tcpip\..\{2944EAB5-3D55-4FDD-8CCD-126A01C12BE1}: NameServer = 212.27.40.240,212.27.40.241
O17 - HKLM\System\CS1\Services\Tcpip\..\{2944EAB5-3D55-4FDD-8CCD-126A01C12BE1}: NameServer = 212.27.40.240,212.27.40.241
O17 - HKLM\System\CS2\Services\Tcpip\..\{2944EAB5-3D55-4FDD-8CCD-126A01C12BE1}: NameServer = 212.27.40.240,212.27.40.241
O23 - Service: Brother Popup Suspend service for Resource manager (brmfrmps) - Brother Industries, Ltd. - C:\WINDOWS\system32\Brmfrmps.exe
O23 - Service: BrSplService (Brother XP spl Service) - brother Industries Ltd - C:\WINDOWS\System32\brsvc01a.exe
O23 - Service: ConfigFree Service (CFSvcs) - TOSHIBA CORPORATION - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: RegSrvc - Intel Corporation - C:\WINDOWS\System32\RegSrvc.exe
O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:\WINDOWS\System32\S24EvMon.exe
O23 - Service: Tmesrv3 (Tmesrv) - TOSHIBA - C:\Program Files\TOSHIBA\TME3\Tmesrv31.exe
--
End of file - 8018 bytes
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre6\bin\ssv.dll [2000-02-12 320920]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2000-02-12 34816]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2000-02-12 73728]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2000-02-12 136600]
"IgfxTray"=C:\WINDOWS\System32\igfxtray.exe [2004-01-26 155648]
"HotKeysCmds"=C:\WINDOWS\System32\hkcmd.exe [2004-01-26 118784]
"00THotkey"=C:\WINDOWS\System32\00THotkey.exe [2004-03-29 253952]
"000StTHK"=C:\WINDOWS\system32\000StTHK.exe [2001-06-23 24576]
"TFNF5"=C:\WINDOWS\system32\TFNF5.exe [2003-12-02 73728]
"SmoothView"=C:\Program Files\TOSHIBA\Utilitaire de zoom TOSHIBA\SmoothView.exe [2004-03-30 118784]
"SigmaTel StacMon"=C:\Program Files\SigmaTel\Pilotes Audio SigmaTel AC97\stacmon.exe [2003-08-03 86073]
"Apoint"=C:\Program Files\Apoint2K\Apoint.exe [2003-10-30 192512]
"TouchED"=C:\Program Files\TOSHIBA\TouchED\TouchED.Exe [2003-03-11 122880]
"LTSMMSG"=C:\WINDOWS\LTSMMSG.exe [2003-04-18 32768]
"TPSMain"=C:\WINDOWS\system32\TPSMain.exe [2004-04-01 266240]
"TMESRV.EXE"=C:\Program Files\TOSHIBA\TME3\TMESRV31.EXE [2004-04-13 126976]
"TMERzCtl.EXE"=C:\Program Files\TOSHIBA\TME3\TMERzCtl.EXE [2003-10-29 81920]
"TFncKy"=TFncKy.exe []
"NDSTray.exe"=NDSTray.exe []
"PRONoMgr.exe"=c:\Program Files\Intel\PROSetWireless\NCS\PROSet\PRONoMgr.exe [2003-12-10 86016]
"NeroFilterCheck"=C:\WINDOWS\system32\NeroCheck.exe [2001-07-09 155648]
"SetDefPrt"=C:\Program Files\Brother\Brmfl04a\BrStDvPt.exe [2004-05-25 49152]
"ControlCenter2.0"=C:\Program Files\Brother\ControlCenter2\brctrcen.exe [2004-06-14 851968]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2008-06-12 34672]
"UserFaultCheck"=C:\WINDOWS\system32\dumprep 0 -u []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-13 15360]
"TOSCDSPD"=C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe [2003-09-15 65536]
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage
Lancement rapide de Microsoft Office OneNote 2003.lnk - C:\Program Files\Microsoft Office\OFFICE11\ONENOTEM.EXE
Status Monitor.lnk - C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxsrvc.dll [2004-01-26 323584]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\Sebring]
c:\WINDOWS\System32\LgNotify.dll [2003-12-16 110592]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UploadMgr]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
======List of files/folders created in the last 1 months======
2009-01-28 11:09:58 ----D---- C:\rsit
2009-01-27 20:24:52 ----AD---- C:\Documents and Settings\All Users\Application Data\TEMP
2009-01-27 20:23:43 ----D---- C:\Program Files\Trojan Remover
2009-01-27 20:02:37 ----D---- C:\WINDOWS\system32\appmgmt
2009-01-27 19:58:13 ----D---- C:\Documents and Settings\All Users\Application Data\WLInstaller
2009-01-27 19:48:19 ----D---- C:\Documents and Settings\All Users\Application Data\Adobe
2009-01-27 19:41:56 ----D---- C:\Documents and Settings\PortableEFFICOM\Application Data\Macromedia
2009-01-27 19:38:56 ----D---- C:\Documents and Settings\All Users\Application Data\Downloaded Installations
2009-01-27 19:24:00 ----N---- C:\WINDOWS\system32\spmsg.dll
2009-01-27 19:23:55 ----HDC---- C:\WINDOWS\$NtUninstallMSCompPackV1$
2009-01-27 19:23:21 ----D---- C:\Program Files\Windows Media Connect 2
2009-01-27 19:23:04 ----HDC---- C:\WINDOWS\$NtUninstallwmp11$
2009-01-27 19:21:58 ----HDC---- C:\WINDOWS\$NtUninstallWMFDist11$
2009-01-27 19:21:01 ----HDC---- C:\WINDOWS\$NtUninstallWudf01000$
2009-01-27 18:53:42 ----D---- C:\WINDOWS\WBEM
2009-01-27 18:51:28 ----HDC---- C:\WINDOWS\ie7
2009-01-27 18:51:07 ----HDC---- C:\WINDOWS\$NtServicePackUninstallIDNMitigationAPIs$
2009-01-27 18:50:27 ----HDC---- C:\WINDOWS\$NtServicePackUninstallNLSDownlevelMapping$
2009-01-27 18:50:00 ----HD---- C:\WINDOWS\$hf_mig$
2009-01-27 18:46:36 ----D---- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
2009-01-27 18:37:58 ----A---- C:\WINDOWS\OEWABLog.txt
2009-01-27 18:32:29 ----D---- C:\WINDOWS\Prefetch
2009-01-27 18:22:53 ----A---- C:\WINDOWS\setuplog.txt
2009-01-27 18:21:48 ----N---- C:\WINDOWS\system32\msxml6r.dll
2009-01-27 18:21:48 ----N---- C:\WINDOWS\system32\msxml6.dll
2009-01-27 18:21:32 ----N---- C:\WINDOWS\system32\comsdupd.exe
2009-01-27 18:21:24 ----N---- C:\WINDOWS\system32\ati2dvaa.dll
2009-01-27 18:21:24 ----N---- C:\WINDOWS\system32\ati2cqag.dll
2009-01-27 18:21:24 ----N---- C:\WINDOWS\system32\aaclient.dll
2009-01-27 18:21:23 ----N---- C:\WINDOWS\system32\bthci.dll
2009-01-27 18:21:23 ----N---- C:\WINDOWS\system32\blastcln.exe
2009-01-27 18:21:23 ----N---- C:\WINDOWS\system32\bitsprx4.dll
2009-01-27 18:21:23 ----N---- C:\WINDOWS\system32\azroles.dll
2009-01-27 18:21:23 ----N---- C:\WINDOWS\system32\auditusr.exe
2009-01-27 18:21:23 ----N---- C:\WINDOWS\system32\ativvaxx.dll
2009-01-27 18:21:23 ----N---- C:\WINDOWS\system32\ativtmxx.dll
2009-01-27 18:21:23 ----N---- C:\WINDOWS\system32\ati3duag.dll
2009-01-27 18:21:23 ----N---- C:\WINDOWS\system32\ati3d1ag.dll
2009-01-27 18:21:23 ----N---- C:\WINDOWS\system32\ati2dvag.dll
2009-01-27 18:21:22 ----N---- C:\WINDOWS\system32\dot3svc.dll
2009-01-27 18:21:22 ----N---- C:\WINDOWS\system32\dot3msm.dll
2009-01-27 18:21:22 ----N---- C:\WINDOWS\system32\dot3gpclnt.dll
2009-01-27 18:21:22 ----N---- C:\WINDOWS\system32\dot3dlg.dll
2009-01-27 18:21:22 ----N---- C:\WINDOWS\system32\dot3cfg.dll
2009-01-27 18:21:22 ----N---- C:\WINDOWS\system32\dot3api.dll
2009-01-27 18:21:22 ----N---- C:\WINDOWS\system32\dimsroam.dll
2009-01-27 18:21:22 ----N---- C:\WINDOWS\system32\dimsntfy.dll
2009-01-27 18:21:22 ----N---- C:\WINDOWS\system32\dhcpqec.dll
2009-01-27 18:21:22 ----N---- C:\WINDOWS\system32\credssp.dll
2009-01-27 18:21:22 ----N---- C:\WINDOWS\system32\cmsetacl.dll
2009-01-27 18:21:22 ----N---- C:\WINDOWS\system32\btpanui.dll
2009-01-27 18:21:22 ----N---- C:\WINDOWS\system32\bthserv.dll
2009-01-27 18:21:21 ----N---- C:\WINDOWS\system32\eappgnui.dll
2009-01-27 18:21:21 ----N---- C:\WINDOWS\system32\eappcfg.dll
2009-01-27 18:21:21 ----N---- C:\WINDOWS\system32\eapp3hst.dll
2009-01-27 18:21:21 ----N---- C:\WINDOWS\system32\eapolqec.dll
2009-01-27 18:21:21 ----N---- C:\WINDOWS\system32\dot3ui.dll
2009-01-27 18:21:20 ----N---- C:\WINDOWS\system32\hsfcisp2.dll
2009-01-27 18:21:20 ----N---- C:\WINDOWS\system32\fwcfg.dll
2009-01-27 18:21:20 ----N---- C:\WINDOWS\system32\fsquirt.exe
2009-01-27 18:21:20 ----N---- C:\WINDOWS\system32\fltmc.exe
2009-01-27 18:21:20 ----N---- C:\WINDOWS\system32\fltlib.dll
2009-01-27 18:21:20 ----N---- C:\WINDOWS\system32\eapsvc.dll
2009-01-27 18:21:20 ----N---- C:\WINDOWS\system32\eapqec.dll
2009-01-27 18:21:20 ----N---- C:\WINDOWS\system32\eappprxy.dll
2009-01-27 18:21:20 ----N---- C:\WINDOWS\system32\eapphost.dll
2009-01-27 18:21:20 ----A---- C:\WINDOWS\system32\extmgr.dll
2009-01-27 18:21:19 ----N---- C:\WINDOWS\system32\httpapi.dll
2009-01-27 18:21:18 ----N---- C:\WINDOWS\system32\ieencode.dll
2009-01-27 18:21:14 ----N---- C:\WINDOWS\system32\l2gpstore.dll
2009-01-27 18:21:14 ----N---- C:\WINDOWS\system32\kmsvc.dll
2009-01-27 18:21:14 ----N---- C:\WINDOWS\system32\kbdukx.dll
2009-01-27 18:21:14 ----N---- C:\WINDOWS\system32\kbdsmsno.dll
2009-01-27 18:21:14 ----N---- C:\WINDOWS\system32\kbdsmsfi.dll
2009-01-27 18:21:14 ----N---- C:\WINDOWS\system32\kbdpash.dll
2009-01-27 18:21:14 ----N---- C:\WINDOWS\system32\kbdno1.dll
2009-01-27 18:21:14 ----N---- C:\WINDOWS\system32\kbdnepr.dll
2009-01-27 18:21:14 ----N---- C:\WINDOWS\system32\kbdmlt48.dll
2009-01-27 18:21:14 ----N---- C:\WINDOWS\system32\kbdmlt47.dll
2009-01-27 18:21:14 ----N---- C:\WINDOWS\system32\kbdmaori.dll
2009-01-27 18:21:14 ----N---- C:\WINDOWS\system32\kbdiultn.dll
2009-01-27 18:21:14 ----N---- C:\WINDOWS\system32\kbdinmal.dll
2009-01-27 18:21:14 ----N---- C:\WINDOWS\system32\kbdinben.dll
2009-01-27 18:21:14 ----N---- C:\WINDOWS\system32\kbdinbe1.dll
2009-01-27 18:21:14 ----N---- C:\WINDOWS\system32\kbdfi1.dll
2009-01-27 18:21:14 ----N---- C:\WINDOWS\system32\kbdbhc.dll
2009-01-27 18:21:13 ----N---- C:\WINDOWS\system32\msdadiag.dll
2009-01-27 18:21:13 ----N---- C:\WINDOWS\system32\mmcperf.exe
2009-01-27 18:21:13 ----N---- C:\WINDOWS\system32\mmcfxcommon.dll
2009-01-27 18:21:13 ----N---- C:\WINDOWS\system32\mmcex.dll
2009-01-27 18:21:13 ----N---- C:\WINDOWS\system32\microsoft.managementconsole.dll
2009-01-27 18:21:13 ----N---- C:\WINDOWS\system32\mdmxsdk.dll
2009-01-27 18:21:12 ----N---- C:\WINDOWS\system32\napstat.exe
2009-01-27 18:21:12 ----N---- C:\WINDOWS\system32\napmontr.dll
2009-01-27 18:21:12 ----N---- C:\WINDOWS\system32\napipsec.dll
2009-01-27 18:21:12 ----N---- C:\WINDOWS\system32\mtxparhd.dll
2009-01-27 18:21:12 ----N---- C:\WINDOWS\system32\msshavmsg.dll
2009-01-27 18:21:12 ----N---- C:\WINDOWS\system32\mssha.dll
2009-01-27 18:21:11 ----N---- C:\WINDOWS\system32\rhttpaa.dll
2009-01-27 18:21:11 ----N---- C:\WINDOWS\system32\rasqec.dll
2009-01-27 18:21:11 ----N---- C:\WINDOWS\system32\qutil.dll
2009-01-27 18:21:11 ----N---- C:\WINDOWS\system32\qcliprov.dll
2009-01-27 18:21:11 ----N---- C:\WINDOWS\system32\qagentrt.dll
2009-01-27 18:21:11 ----N---- C:\WINDOWS\system32\qagent.dll
2009-01-27 18:21:11 ----N---- C:\WINDOWS\system32\powercfg.exe
2009-01-27 18:21:11 ----N---- C:\WINDOWS\system32\pnrpnsp.dll
2009-01-27 18:21:11 ----N---- C:\WINDOWS\system32\photometadatahandler.dll
2009-01-27 18:21:11 ----N---- C:\WINDOWS\system32\p2psvc.dll
2009-01-27 18:21:11 ----N---- C:\WINDOWS\system32\p2pnetsh.dll
2009-01-27 18:21:11 ----N---- C:\WINDOWS\system32\p2pgraph.dll
2009-01-27 18:21:11 ----N---- C:\WINDOWS\system32\p2pgasvc.dll
2009-01-27 18:21:11 ----N---- C:\WINDOWS\system32\p2p.dll
2009-01-27 18:21:11 ----N---- C:\WINDOWS\system32\onex.dll
2009-01-27 18:21:11 ----N---- C:\WINDOWS\system32\nv4_disp.dll
2009-01-27 18:21:10 ----N---- C:\WINDOWS\system32\smbinst.exe
2009-01-27 18:21:10 ----N---- C:\WINDOWS\system32\slserv.exe
2009-01-27 18:21:10 ----N---- C:\WINDOWS\system32\slrundll.exe
2009-01-27 18:21:10 ----N---- C:\WINDOWS\system32\slgen.dll
2009-01-27 18:21:10 ----N---- C:\WINDOWS\system32\slextspk.dll
2009-01-27 18:21:10 ----N---- C:\WINDOWS\system32\slcoinst.dll
2009-01-27 18:21:10 ----N---- C:\WINDOWS\system32\setupn.exe
2009-01-27 18:21:10 ----N---- C:\WINDOWS\system32\sdhcinst.dll
2009-01-27 18:21:10 ----N---- C:\WINDOWS\system32\s3gnb.dll
2009-01-27 18:21:09 ----N---- C:\WINDOWS\system32\xpsp3res.dll
2009-01-27 18:21:08 ----N---- C:\WINDOWS\system32\windowscodecsext.dll
2009-01-27 18:21:08 ----N---- C:\WINDOWS\system32\windowscodecs.dll
2009-01-27 18:21:08 ----N---- C:\WINDOWS\system32\w3ssl.dll
2009-01-27 18:21:08 ----N---- C:\WINDOWS\system32\verclsid.exe
2009-01-27 18:21:08 ----N---- C:\WINDOWS\system32\tzchange.exe
2009-01-27 18:21:08 ----N---- C:\WINDOWS\system32\twext.dll
2009-01-27 18:21:08 ----N---- C:\WINDOWS\system32\tspkg.dll
2009-01-27 18:21:08 ----N---- C:\WINDOWS\system32\tsgqec.dll
2009-01-27 18:21:08 ----N---- C:\WINDOWS\system32\strmfilt.dll
2009-01-27 18:21:07 ----N---- C:\WINDOWS\system32\wscsvc.dll
2009-01-27 18:21:07 ----N---- C:\WINDOWS\system32\wscntfy.exe
2009-01-27 18:21:07 ----N---- C:\WINDOWS\system32\wmphoto.dll
2009-01-27 18:21:07 ----N---- C:\WINDOWS\system32\wlanapi.dll
2009-01-27 18:21:07 ----N---- C:\WINDOWS\system32\winshfhc.dll
2009-01-27 18:21:06 ----N---- C:\WINDOWS\system32\wshbth.dll
2009-01-27 18:21:05 ----N---- C:\WINDOWS\system32\xmlprovi.dll
2009-01-27 18:21:05 ----N---- C:\WINDOWS\system32\xmlprov.dll
2009-01-27 18:21:05 ----N---- C:\WINDOWS\system32\xmllite.dll
2009-01-27 18:21:05 ----N---- C:\WINDOWS\slrundll.exe
2009-01-27 18:21:04 ----D---- C:\WINDOWS\system32\fr-fr
2009-01-27 18:21:03 ----D---- C:\WINDOWS\provisioning
2009-01-27 18:21:00 ----D---- C:\WINDOWS\system32\fr
2009-01-27 18:21:00 ----D---- C:\WINDOWS\l2schemas
2009-01-27 18:20:59 ----D---- C:\WINDOWS\peernet
2009-01-27 18:16:49 ----D---- C:\WINDOWS\ServicePackFiles
2009-01-27 18:11:59 ----D---- C:\WINDOWS\network diagnostic
2009-01-27 18:09:30 ----A---- C:\WINDOWS\002731_.tmp
2009-01-27 18:09:27 ----A---- C:\WINDOWS\imsins.BAK
2009-01-27 18:09:09 ----A---- C:\WINDOWS\system32\spupdsvc.exe
2009-01-27 18:04:19 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2009-01-27 18:04:06 ----D---- C:\WINDOWS\EHome
2009-01-07 17:20:24 ----A---- C:\WINDOWS\system32\LegitCheckControl.DLL
======List of files/folders modified in the last 1 months======
2009-01-28 11:06:52 ----D---- C:\WINDOWS\Temp
2009-01-27 20:39:28 ----D---- C:\WINDOWS\system32\drivers
2009-01-27 20:39:14 ----RD---- C:\Program Files
2009-01-27 20:30:12 ----D---- C:\WINDOWS\system32
2009-01-27 20:27:39 ----A---- C:\WINDOWS\SchedLgU.Txt
2009-01-27 20:03:21 ----SHD---- C:\WINDOWS\Installer
2009-01-27 20:02:36 ----D---- C:\WINDOWS\WinSxS
2009-01-27 19:58:57 ----D---- C:\WINDOWS\system32\CatRoot2
2009-01-27 19:55:03 ----D---- C:\WINDOWS
2009-01-27 19:48:45 ----D---- C:\Program Files\Fichiers communs\Adobe
2009-01-27 19:47:16 ----D---- C:\Program Files\Adobe
2009-01-27 19:44:45 ----D---- C:\Documents and Settings\PortableEFFICOM\Application Data\Adobe
2009-01-27 19:44:42 ----SD---- C:\WINDOWS\Downloaded Program Files
2009-01-27 19:24:09 ----HD---- C:\WINDOWS\inf
2009-01-27 19:23:28 ----A---- C:\WINDOWS\win.ini
2009-01-27 19:23:20 ----D---- C:\Program Files\Windows Media Player
2009-01-27 19:23:17 ----RSHDC---- C:\WINDOWS\system32\dllcache
2009-01-27 19:23:17 ----D---- C:\WINDOWS\Help
2009-01-27 19:21:11 ----D---- C:\WINDOWS\system32\LogFiles
2009-01-27 18:56:21 ----D---- C:\WINDOWS\Debug
2009-01-27 18:56:03 ----D---- C:\Program Files\Internet Explorer
2009-01-27 18:53:33 ----D---- C:\WINDOWS\Media
2009-01-27 18:34:53 ----SD---- C:\Documents and Settings\All Users\Application Data\Microsoft
2009-01-27 18:34:03 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2009-01-27 18:33:50 ----D---- C:\WINDOWS\system32\inetsrv
2009-01-27 18:33:00 ----D---- C:\WINDOWS\system32\wbem
2009-01-27 18:31:59 ----SHD---- C:\System Volume Information
2009-01-27 18:31:54 ----D---- C:\WINDOWS\system32\Setup
2009-01-27 18:31:53 ----D---- C:\WINDOWS\AppPatch
2009-01-27 18:31:49 ----RSD---- C:\WINDOWS\Fonts
2009-01-27 18:29:32 ----D---- C:\WINDOWS\security
2009-01-27 18:28:51 ----D---- C:\WINDOWS\system32\CatRoot
2009-01-27 18:27:14 ----RASH---- C:\boot.ini
2009-01-27 18:21:58 ----D---- C:\Program Files\Messenger
2009-01-27 18:21:30 ----D---- C:\WINDOWS\ime
2009-01-27 18:21:04 ----D---- C:\WINDOWS\system32\usmt
2009-01-27 18:21:04 ----D---- C:\WINDOWS\system32\oobe
2009-01-27 18:20:59 ----D---- C:\WINDOWS\system32\bits
2009-01-27 18:20:59 ----D---- C:\Program Files\Movie Maker
2009-01-27 18:16:19 ----D---- C:\WINDOWS\system32\Restore
2009-01-27 18:16:19 ----D---- C:\WINDOWS\system32\npp
2009-01-27 18:16:17 ----D---- C:\WINDOWS\msagent
2009-01-27 18:16:14 ----D---- C:\WINDOWS\srchasst
2009-01-27 18:16:13 ----D---- C:\Program Files\NetMeeting
2009-01-27 18:16:10 ----D---- C:\WINDOWS\system32\Com
2009-01-27 18:16:05 ----D---- C:\Program Files\Windows NT
2009-01-27 18:16:05 ----D---- C:\Program Files\Outlook Express
2009-01-27 18:15:54 ----D---- C:\Program Files\Fichiers communs\System
2009-01-27 18:15:17 ----D---- C:\WINDOWS\system
2009-01-27 18:11:59 ----RD---- C:\WINDOWS\Web
2009-01-27 18:11:17 ----RASH---- C:\NTDETECT.COM
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 intelppm;Pilote de processeur Intel; C:\WINDOWS\System32\DRIVERS\intelppm.sys [2008-04-13 40576]
R1 TMEI3E;TMEI3E; C:\WINDOWS\System32\Drivers\TMEI3E.SYS [2002-09-26 5760]
R2 MDC8021X;AEGIS Protocol (IEEE 802.1x) v2.2.1.0; C:\WINDOWS\System32\DRIVERS\mdc8021x.sys [2004-11-19 14037]
R2 Netdevio;TOSHIBA Network Device Usermode I/O Protocol; C:\WINDOWS\System32\DRIVERS\netdevio.sys [2003-01-29 12032]
R2 s24trans;WLAN Transport; C:\WINDOWS\System32\DRIVERS\s24trans.sys [2003-09-15 11258]
R3 {6080A529-897E-4629-A488-ABA0C29B635E};Intel(R) Graphics Platform (SoftBIOS) Driver; C:\WINDOWS\system32\drivers\ialmsbw.sys [2004-01-26 122110]
R3 {D31A0762-0CEB-444e-ACFF-B049A1F6FE91};Intel(R) Graphics Chipset (KCH) Driver; C:\WINDOWS\system32\drivers\ialmkchw.sys [2004-01-26 99002]
R3 ApfiltrService;Alps Pointing-device Filter Driver; C:\WINDOWS\System32\DRIVERS\Apfiltr.sys [2003-12-10 100153]
R3 CmBatt;Pilote d'adaptateur secteur Microsoft; C:\WINDOWS\System32\DRIVERS\CmBatt.sys [2008-04-13 13952]
R3 E100B;Intel(R) PRO Adapter Driver; C:\WINDOWS\System32\DRIVERS\e100b325.sys [2003-12-29 153088]
R3 ialm;ialm; C:\WINDOWS\System32\DRIVERS\ialmnt5.sys [2004-01-26 95579]
R3 STAC97;Audio Driver (WDM) - SigmaTel CODEC; C:\WINDOWS\system32\drivers\stac97.sys [2003-07-17 230416]
R3 TOSHIBASoftModem;TOSHIBA Software Modem; C:\WINDOWS\System32\DRIVERS\LTSM.sys [2002-09-17 809872]
R3 usbehci;Pilote miniport de contrôleur hôte amélioré USB 2.0 Microsoft; C:\WINDOWS\System32\DRIVERS\usbehci.sys [2008-04-13 30208]
R3 usbhub;Concentrateur USB2; C:\WINDOWS\System32\DRIVERS\usbhub.sys [2008-04-13 59520]
R3 usbuhci;Pilote miniport de contrôleur hôte universel USB Microsoft; C:\WINDOWS\System32\DRIVERS\usbuhci.sys [2008-04-13 20608]
R3 w22n51;Pilote Intel(R) PRO/Wireless 2200 Adapter; C:\WINDOWS\System32\DRIVERS\w22n51.sys [2004-01-02 1646720]
S3 BrScnUsb;Brother USB Still Image driver; C:\WINDOWS\System32\Drivers\BrScnUsb.sys [2003-12-19 15263]
S3 gv3;Pilote processeur Intel GV3; C:\WINDOWS\System32\DRIVERS\gv3.sys [2002-11-20 33792]
S3 HidUsb;Pilote de classe HID Microsoft; C:\WINDOWS\System32\DRIVERS\hidusb.sys [2008-04-13 10368]
S3 mouhid;Pilote HID de souris; C:\WINDOWS\System32\DRIVERS\mouhid.sys [2001-08-23 12288]
S3 usbccgp;Pilote parent générique USB Microsoft; C:\WINDOWS\System32\DRIVERS\usbccgp.sys [2008-04-13 32128]
S3 usbprint;Classe d'imprimantes USB Microsoft; C:\WINDOWS\System32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 USBSTOR;Pilote de stockage de masse USB; C:\WINDOWS\System32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 VIAudio;Contrôleur audio VIA AC'97 (WDM); C:\WINDOWS\system32\drivers\ac97via.sys [2002-08-28 84480]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 brmfrmps;Brother Popup Suspend service for Resource manager; C:\WINDOWS\system32\Brmfrmps.exe [2003-05-05 65536]
R2 Brother XP spl Service;BrSplService; C:\WINDOWS\System32\brsvc01a.exe [2002-04-12 57344]
R2 CFSvcs;ConfigFree Service; C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe [2004-03-04 28672]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2000-02-12 152984]
R2 MDM;Machine Debug Manager; C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-19 322120]
R2 MSSQL$MICROSOFTBCM;MSSQL$MICROSOFTBCM; C:\Program Files\Microsoft SQL Server\MSSQL$MICROSOFTBCM\Binn\sqlservr.exe [2003-05-31 7544916]
R2 RegSrvc;RegSrvc; C:\WINDOWS\System32\RegSrvc.exe [2003-12-16 122880]
R2 S24EventMonitor;Spectrum24 Event Monitor; C:\WINDOWS\System32\S24EvMon.exe [2003-12-16 311363]
R2 Tmesrv;Tmesrv3; C:\Program Files\TOSHIBA\TME3\Tmesrv31.exe [2004-04-13 126976]
S3 aspnet_state;Service d'état ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_state.exe [2004-07-15 32768]
S3 MSSQLServerADHelper;MSSQLServerADHelper; C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqladhlp.exe [2002-12-17 66112]
S3 ose;Office Source Engine; C:\Program Files\Fichiers communs\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 SQLAgent$MICROSOFTBCM;SQLAgent$MICROSOFTBCM; C:\Program Files\Microsoft SQL Server\MSSQL$MICROSOFTBCM\Binn\sqlagent.EXE [2002-12-17 311872]
S3 WMPNetworkSvc;Service Partage réseau du Lecteur Windows Media; C:\Program Files\Windows Media Player\WMPNetwk.exe [2006-11-03 918016]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-13 14336]
-----------------EOF-----------------
info.txt logfile of random's system information tool 1.05 2009-01-28 11:10:15
======Uninstall list======
-->C:\WINDOWS\IsUn040c.exe -fC:\WINDOWS\orun32.isu
-->MsiExec.exe /I{B5D8CCBF-08D8-46C0-8B04-3BC0CAEDA094}
-->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
Adobe Flash Player 10 ActiveX-->C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
Adobe Reader 9 - Français-->MsiExec.exe /I{AC76BA86-7AD7-1036-7B44-A90000000001}
ALPS Touch Pad Driver-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}\setup.exe" UNINSTALL
Brother MFL-Pro Suite-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{40A6C96D-808E-41DD-8716-617AB6B0F1F1}\Setup.exe" -l0x40c Brunin03.dllBrunin03.dll
CCleaner (remove only)-->"C:\Program Files\CCleaner\uninst.exe"
ClearProg 1.5.0 Final-->C:\Program Files\ClearProg\Uninstall.exe
Commandes TOSHIBA-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{A6690C0E-B96E-4F0F-A8EB-D5B332454AC6}\Setup.exe" -l0x40c UNINSTALL
Console TOSHIBA-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{3CF0858D-1AC5-4308-9DE7-AD15288A8BDC}\Setup.exe" -l0x40c
DiMAGE Viewer-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{976EA7B1-7562-483D-88DA-4323D263B7CD}\Setup.exe" -l0x40c anything
Gestion d'énergie TOSHIBA-->C:\WINDOWS\IsUn040c.exe -f"C:\Program Files\TOSHIBA\Power Saver\Uninst.isu" -c"C:\WINDOWS\System32\TPSDel.dll"
Gestionnaire de contacts professionnels pour Outlook 2003-->MsiExec.exe /I{66563AD8-637B-407F-BCA7-0233A16891AB}
HijackThis 2.0.2-->"C:\Documents and Settings\PortableEFFICOM\Bureau\dl internet\HijackThis.exe" /uninstall
Intel(R) Extreme Graphics 2 Driver-->RUNDLL32.EXE C:\WINDOWS\System32\ialmrem.dll,UninstallW2KIGfx PCI\VEN_8086&DEV_3582
Intel(R) PRO Network Adapters and Drivers-->Prounstl.exe
Intel(R) PROSet for Wireless-->MsiExec.exe /I{5380063E-2909-4d72-BFA3-625881F2E78B}
InterActual Player-->C:\Program Files\InterActual\InterActual Player\inuninst.exe
InterVideo WinDVD for Toshiba-->"C:\Program Files\InstallShield Installation Information\{91810AFC-A4F8-4EBA-A5AA-B198BBC81144}\setup.exe" REMOVEALL
Java 2 Runtime Environment, SE v1.4.2_03-->MsiExec.exe /I{7148F0A8-6813-11D6-A77B-00B0D0142030}
Java(TM) 6 Update 11-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216011FF}
Lecteur Windows Media 11-->"C:\Program Files\Windows Media Player\Setup_wm.exe" /Uninstall
Malwarebytes' Anti-Malware-->"C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"
Manuels TOSHIBA-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{188BA1CC-F3A1-49B0-A34D-8C861C64E1AE}\Setup.exe" -l0x40c
Microsoft .NET Framework 1.1 French Language Pack-->MsiExec.exe /X{9A394342-4A68-4EBA-85A6-55B559F4E700}
Microsoft .NET Framework 1.1-->msiexec.exe /X {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 1.1-->MsiExec.exe /X{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft Compression Client Pack 1.0 for Windows XP-->"C:\WINDOWS\$NtUninstallMSCompPackV1$\spuninst\spuninst.exe"
Microsoft Data Access Components KB870669-->C:\WINDOWS\muninst.exe C:\WINDOWS\INF\KB870669.inf
Microsoft Internationalized Domain Names Mitigation APIs-->"C:\WINDOWS\$NtServicePackUninstallIDNMitigationAPIs$\spuninst\spuninst.exe"
Microsoft National Language Support Downlevel APIs-->"C:\WINDOWS\$NtServicePackUninstallNLSDownlevelMapping$\spuninst\spuninst.exe"
Microsoft Office OneNote 2003-->MsiExec.exe /I{91A1040C-6000-11D3-8CFE-0150048383C9}
Microsoft Office Professional Edition 2003-->MsiExec.exe /I{9111040C-6000-11D3-8CFE-0150048383C9}
Microsoft User-Mode Driver Framework Feature Pack 1.0-->"C:\WINDOWS\$NtUninstallWudf01000$\spuninst\spuninst.exe"
Nero OEM-->C:\Program Files\Ahead\nero\uninstall\UNNERO.exe /UNINSTALL
Outil de diagnostic PC TOSHIBA-->C:\WINDOWS\IsUn040c.exe -f"C:\Program Files\TOSHIBA\PCDiag\Uninst.isu"
Pilotes Audio SigmaTel AC97-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{7959721D-8268-4565-9E0E-C41A9F4848A9}\setup.exe" -l0x40c -nodialog -uninstall
QuickTime-->C:\WINDOWS\unvise32qt.exe C:\WINDOWS\System32\QuickTime\Uninstall.log
Réducteur de bruit lect. CD/DVD-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{9FE35071-CAB2-4E79-93E7-BFC6A2DC5C5D}\Setup.exe" -l0x40c
TOSHIBA ConfigFree-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{BDD83DC9-BEE9-4654-A5DA-CC46C250088D}\setup.exe" -l0x40c UNINSTALL
TOSHIBA Mobile Extension3 pour Windows XP V3.63.00.XP-->C:\WINDOWS\IsUn040c.exe -f"C:\Program Files\TOSHIBA\TME3\Uninst.isu"
TOSHIBA Software Modem-->Tosmreg -U
TOSHIBA Utilities-->tutildel.exe
Utilitaire Activer/désactiver la tablette tactile TOSHIBA V2.05.00-->C:\WINDOWS\IsUn040c.exe -f"C:\Program Files\TOSHIBA\TouchED\Uninst.isu" -c"C:\Program Files\TOSHIBA\TouchED\tpedinst.dll"
Utilitaire de zoom TOSHIBA-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{64212898-097F-4F3F-AECA-6D34A7EF82DF}\setup.exe"
Utilitaire TOSHIBA d'accès direct aux périphériques d’affichage-->RunDll32 advpack.dll,LaunchINFSection C:\WINDOWS\INF\TFNF5Wxp.inf,DefaultUninstall,5
Utilitaire TOSHIBA de changement d'écran-->RunDll32 advpack.dll,LaunchINFSection C:\WINDOWS\INF\TDspBtn.inf,DefaultUninstall,5
Windows Internet Explorer 7-->"C:\WINDOWS\ie7\spuninst\spuninst.exe"
Windows Media Format 11 runtime-->"C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
Windows Media Format 11 runtime-->"C:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe"
Windows Media Player 11-->"C:\WINDOWS\$NtUninstallwmp11$\spuninst\spuninst.exe"
Windows XP Service Pack 3-->"C:\WINDOWS\$NtServicePackUninstall$\spuninst\spuninst.exe"
System event log
Computer Name: PORTABLEEFFICOM
Event Code: 6006
Message: Le service d'Enregistrement d'événement a été arrêté.
Record Number: 2209
Source Name: EventLog
Time Written: 20051015092843.000000+120
Event Type: Informations
User:
Computer Name: PORTABLEEFFICOM
Event Code: 240
Message: Une requête de suspension de pouvoir a été refusée par winlogon.exe.
Record Number: 2208
Source Name: Win32k
Time Written: 20051015092841.000000+120
Event Type: Avertissement
User:
Computer Name: PORTABLEEFFICOM
Event Code: 7036
Message: Le service Service COM de gravage de CD IMAPI est entré dans l'état : arrêté.
Record Number: 2207
Source Name: Service Control Manager
Time Written: 20051015092259.000000+120
Event Type: Informations
User:
Computer Name: PORTABLEEFFICOM
Event Code: 7036
Message: Le service Service de découvertes SSDP est entré dans l'état : en cours d'exécution.
Record Number: 2206
Source Name: Service Control Manager
Time Written: 20051015092259.000000+120
Event Type: Informations
User:
Computer Name: PORTABLEEFFICOM
Event Code: 7035
Message: Un contrôle Démarrer a correctement été envoyé au service Service de découvertes SSDP.
Record Number: 2205
Source Name: Service Control Manager
Time Written: 20051015092259.000000+120
Event Type: Informations
User: AUTORITE NT\SYSTEM
Application event log
Computer Name: PORTABLEEFFICOM
Event Code: 102
Message: wuaueng.dll (2972) SUS20ClientDataStore: Le moteur de base de données a démarré une nouvelle instance (0).
Record Number: 1027
Source Name: ESENT
Time Written: 20060817204915.000000+120
Event Type: Informations
User:
Computer Name: PORTABLEEFFICOM
Event Code: 100
Message: wuauclt (2972) Le moteur de base de données 5.01.2600.0000 est démarré.
Record Number: 1026
Source Name: ESENT
Time Written: 20060817204915.000000+120
Event Type: Informations
User:
Computer Name: PORTABLEEFFICOM
Event Code: 19011
Message:
Record Number: 1025
Source Name: MSSQL$MICROSOFTBCM
Time Written: 20060817204831.000000+120
Event Type: Avertissement
User:
Computer Name: PORTABLEEFFICOM
Event Code: 0
Message:
Record Number: 1024
Source Name: RegSrvc
Time Written: 20060817204829.000000+120
Event Type: Informations
User:
Computer Name: PORTABLEEFFICOM
Event Code: 1002
Message: L'environnement s'est arrêté de façon inattendue et Explorer.exe a redémarré.
Record Number: 1023
Source Name: Winlogon
Time Written: 20060815105455.000000+120
Event Type: Informations
User:
======Environment variables======
"ComSpec"=%SystemRoot%\system32\cmd.exe
"Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\Microsoft Office\OFFICE11\Gestionnaire de contacts professionnels\IM;C:\Program Files\Microsoft SQL Server\80\Tools\Binn\;C:\Program Files\Microsoft Office\OFFICE11\Gestionnaire de contacts professionnels\
"windir"=%SystemRoot%
"OS"=Windows_NT
"PROCESSOR_ARCHITECTURE"=x86
"PROCESSOR_LEVEL"=6
"PROCESSOR_IDENTIFIER"=x86 Family 6 Model 13 Stepping 6, GenuineIntel
"PROCESSOR_REVISION"=0d06
"NUMBER_OF_PROCESSORS"=1
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"FP_NO_HOST_CHECK"=NO
-----------------EOF-----------------
voici les 2 rapports log.txt et info.txt
merci d'avance
--------------------------------------------------------
Logfile of random's system information tool 1.05 (written by random/random)
Run by PortableEFFICOM at 2009-01-28 11:09:58
Microsoft Windows XP Professionnel Service Pack 3
System drive C: has 27 GB (71%) free of 38 GB
Total RAM: 495 MB (48% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:10:13, on 28/01/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5730.0013)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\S24EvMon.exe
C:\WINDOWS\system32\ZCfgSvc.exe
C:\WINDOWS\System32\brsvc01a.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\brss01a.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Java\jre6\bin\jusched.exe
C:\WINDOWS\System32\igfxtray.exe
C:\WINDOWS\System32\hkcmd.exe
C:\WINDOWS\System32\00THotkey.exe
C:\WINDOWS\system32\TFNF5.exe
C:\Program Files\TOSHIBA\Utilitaire de zoom TOSHIBA\SmoothView.exe
C:\Program Files\SigmaTel\Pilotes Audio SigmaTel AC97\stacmon.exe
C:\Program Files\Apoint2K\Apoint.exe
C:\Program Files\TOSHIBA\TouchED\TouchED.Exe
C:\WINDOWS\LTSMMSG.exe
C:\WINDOWS\system32\TPSMain.exe
C:\Program Files\TOSHIBA\TME3\TMERzCtl.EXE
C:\WINDOWS\system32\TPSBattM.exe
C:\Program Files\Apoint2K\Apntex.exe
C:\Program Files\TOSHIBA\Commandes TOSHIBA\TFncKy.exe
C:\Program Files\TOSHIBA\ConfigFree\NDSTray.exe
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe
C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe
C:\WINDOWS\system32\Brmfrmps.exe
C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Microsoft SQL Server\MSSQL$MICROSOFTBCM\Binn\sqlservr.exe
C:\WINDOWS\System32\RegSrvc.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\TOSHIBA\TME3\Tmesrv31.exe
C:\Program Files\TOSHIBA\TME3\TMEEJME.EXE
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\System32\1XConfig.exe
C:\WINDOWS\System32\wbem\wmiapsrv.exe
C:\Documents and Settings\PortableEFFICOM\Bureau\RSIT.exe
C:\Documents and Settings\PortableEFFICOM\Bureau\dl internet\PortableEFFICOM.exe
C:\WINDOWS\system32\wuauclt.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.google.fr/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
O4 - HKLM\..\Run: [00THotkey] C:\WINDOWS\System32\00THotkey.exe
O4 - HKLM\..\Run: [000StTHK] 000StTHK.exe
O4 - HKLM\..\Run: [TFNF5] TFNF5.exe
O4 - HKLM\..\Run: [SmoothView] C:\Program Files\TOSHIBA\Utilitaire de zoom TOSHIBA\SmoothView.exe
O4 - HKLM\..\Run: [SigmaTel StacMon] C:\Program Files\SigmaTel\Pilotes Audio SigmaTel AC97\stacmon.exe
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint2K\Apoint.exe
O4 - HKLM\..\Run: [TouchED] C:\Program Files\TOSHIBA\TouchED\TouchED.Exe
O4 - HKLM\..\Run: [LTSMMSG] LTSMMSG.exe
O4 - HKLM\..\Run: [TPSMain] TPSMain.exe
O4 - HKLM\..\Run: [TMESRV.EXE] C:\Program Files\TOSHIBA\TME3\TMESRV31.EXE /Logon
O4 - HKLM\..\Run: [TMERzCtl.EXE] C:\Program Files\TOSHIBA\TME3\TMERzCtl.EXE /Service
O4 - HKLM\..\Run: [TFncKy] TFncKy.exe
O4 - HKLM\..\Run: [NDSTray.exe] NDSTray.exe
O4 - HKLM\..\Run: [PRONoMgr.exe] c:\Program Files\Intel\PROSetWireless\NCS\PROSet\PRONoMgr.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [SetDefPrt] C:\Program Files\Brother\Brmfl04a\BrStDvPt.exe
O4 - HKLM\..\Run: [ControlCenter2.0] C:\Program Files\Brother\ControlCenter2\brctrcen.exe /autorun
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [TOSCDSPD] C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Lancement rapide de Microsoft Office OneNote 2003.lnk = C:\Program Files\Microsoft Office\OFFICE11\ONENOTEM.EXE
O4 - Global Startup: Status Monitor.lnk = C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=file:///C:\Program Files\TOSHIBA\Free Update Service\splash.html
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.com/v5consumer/V5Cont...
O17 - HKLM\System\CCS\Services\Tcpip\..\{2944EAB5-3D55-4FDD-8CCD-126A01C12BE1}: NameServer = 212.27.40.240,212.27.40.241
O17 - HKLM\System\CS1\Services\Tcpip\..\{2944EAB5-3D55-4FDD-8CCD-126A01C12BE1}: NameServer = 212.27.40.240,212.27.40.241
O17 - HKLM\System\CS2\Services\Tcpip\..\{2944EAB5-3D55-4FDD-8CCD-126A01C12BE1}: NameServer = 212.27.40.240,212.27.40.241
O23 - Service: Brother Popup Suspend service for Resource manager (brmfrmps) - Brother Industries, Ltd. - C:\WINDOWS\system32\Brmfrmps.exe
O23 - Service: BrSplService (Brother XP spl Service) - brother Industries Ltd - C:\WINDOWS\System32\brsvc01a.exe
O23 - Service: ConfigFree Service (CFSvcs) - TOSHIBA CORPORATION - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: RegSrvc - Intel Corporation - C:\WINDOWS\System32\RegSrvc.exe
O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:\WINDOWS\System32\S24EvMon.exe
O23 - Service: Tmesrv3 (Tmesrv) - TOSHIBA - C:\Program Files\TOSHIBA\TME3\Tmesrv31.exe
--
End of file - 8018 bytes
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre6\bin\ssv.dll [2000-02-12 320920]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2000-02-12 34816]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2000-02-12 73728]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2000-02-12 136600]
"IgfxTray"=C:\WINDOWS\System32\igfxtray.exe [2004-01-26 155648]
"HotKeysCmds"=C:\WINDOWS\System32\hkcmd.exe [2004-01-26 118784]
"00THotkey"=C:\WINDOWS\System32\00THotkey.exe [2004-03-29 253952]
"000StTHK"=C:\WINDOWS\system32\000StTHK.exe [2001-06-23 24576]
"TFNF5"=C:\WINDOWS\system32\TFNF5.exe [2003-12-02 73728]
"SmoothView"=C:\Program Files\TOSHIBA\Utilitaire de zoom TOSHIBA\SmoothView.exe [2004-03-30 118784]
"SigmaTel StacMon"=C:\Program Files\SigmaTel\Pilotes Audio SigmaTel AC97\stacmon.exe [2003-08-03 86073]
"Apoint"=C:\Program Files\Apoint2K\Apoint.exe [2003-10-30 192512]
"TouchED"=C:\Program Files\TOSHIBA\TouchED\TouchED.Exe [2003-03-11 122880]
"LTSMMSG"=C:\WINDOWS\LTSMMSG.exe [2003-04-18 32768]
"TPSMain"=C:\WINDOWS\system32\TPSMain.exe [2004-04-01 266240]
"TMESRV.EXE"=C:\Program Files\TOSHIBA\TME3\TMESRV31.EXE [2004-04-13 126976]
"TMERzCtl.EXE"=C:\Program Files\TOSHIBA\TME3\TMERzCtl.EXE [2003-10-29 81920]
"TFncKy"=TFncKy.exe []
"NDSTray.exe"=NDSTray.exe []
"PRONoMgr.exe"=c:\Program Files\Intel\PROSetWireless\NCS\PROSet\PRONoMgr.exe [2003-12-10 86016]
"NeroFilterCheck"=C:\WINDOWS\system32\NeroCheck.exe [2001-07-09 155648]
"SetDefPrt"=C:\Program Files\Brother\Brmfl04a\BrStDvPt.exe [2004-05-25 49152]
"ControlCenter2.0"=C:\Program Files\Brother\ControlCenter2\brctrcen.exe [2004-06-14 851968]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2008-06-12 34672]
"UserFaultCheck"=C:\WINDOWS\system32\dumprep 0 -u []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-13 15360]
"TOSCDSPD"=C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe [2003-09-15 65536]
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage
Lancement rapide de Microsoft Office OneNote 2003.lnk - C:\Program Files\Microsoft Office\OFFICE11\ONENOTEM.EXE
Status Monitor.lnk - C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxsrvc.dll [2004-01-26 323584]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\Sebring]
c:\WINDOWS\System32\LgNotify.dll [2003-12-16 110592]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UploadMgr]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
======List of files/folders created in the last 1 months======
2009-01-28 11:09:58 ----D---- C:\rsit
2009-01-27 20:24:52 ----AD---- C:\Documents and Settings\All Users\Application Data\TEMP
2009-01-27 20:23:43 ----D---- C:\Program Files\Trojan Remover
2009-01-27 20:02:37 ----D---- C:\WINDOWS\system32\appmgmt
2009-01-27 19:58:13 ----D---- C:\Documents and Settings\All Users\Application Data\WLInstaller
2009-01-27 19:48:19 ----D---- C:\Documents and Settings\All Users\Application Data\Adobe
2009-01-27 19:41:56 ----D---- C:\Documents and Settings\PortableEFFICOM\Application Data\Macromedia
2009-01-27 19:38:56 ----D---- C:\Documents and Settings\All Users\Application Data\Downloaded Installations
2009-01-27 19:24:00 ----N---- C:\WINDOWS\system32\spmsg.dll
2009-01-27 19:23:55 ----HDC---- C:\WINDOWS\$NtUninstallMSCompPackV1$
2009-01-27 19:23:21 ----D---- C:\Program Files\Windows Media Connect 2
2009-01-27 19:23:04 ----HDC---- C:\WINDOWS\$NtUninstallwmp11$
2009-01-27 19:21:58 ----HDC---- C:\WINDOWS\$NtUninstallWMFDist11$
2009-01-27 19:21:01 ----HDC---- C:\WINDOWS\$NtUninstallWudf01000$
2009-01-27 18:53:42 ----D---- C:\WINDOWS\WBEM
2009-01-27 18:51:28 ----HDC---- C:\WINDOWS\ie7
2009-01-27 18:51:07 ----HDC---- C:\WINDOWS\$NtServicePackUninstallIDNMitigationAPIs$
2009-01-27 18:50:27 ----HDC---- C:\WINDOWS\$NtServicePackUninstallNLSDownlevelMapping$
2009-01-27 18:50:00 ----HD---- C:\WINDOWS\$hf_mig$
2009-01-27 18:46:36 ----D---- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
2009-01-27 18:37:58 ----A---- C:\WINDOWS\OEWABLog.txt
2009-01-27 18:32:29 ----D---- C:\WINDOWS\Prefetch
2009-01-27 18:22:53 ----A---- C:\WINDOWS\setuplog.txt
2009-01-27 18:21:48 ----N---- C:\WINDOWS\system32\msxml6r.dll
2009-01-27 18:21:48 ----N---- C:\WINDOWS\system32\msxml6.dll
2009-01-27 18:21:32 ----N---- C:\WINDOWS\system32\comsdupd.exe
2009-01-27 18:21:24 ----N---- C:\WINDOWS\system32\ati2dvaa.dll
2009-01-27 18:21:24 ----N---- C:\WINDOWS\system32\ati2cqag.dll
2009-01-27 18:21:24 ----N---- C:\WINDOWS\system32\aaclient.dll
2009-01-27 18:21:23 ----N---- C:\WINDOWS\system32\bthci.dll
2009-01-27 18:21:23 ----N---- C:\WINDOWS\system32\blastcln.exe
2009-01-27 18:21:23 ----N---- C:\WINDOWS\system32\bitsprx4.dll
2009-01-27 18:21:23 ----N---- C:\WINDOWS\system32\azroles.dll
2009-01-27 18:21:23 ----N---- C:\WINDOWS\system32\auditusr.exe
2009-01-27 18:21:23 ----N---- C:\WINDOWS\system32\ativvaxx.dll
2009-01-27 18:21:23 ----N---- C:\WINDOWS\system32\ativtmxx.dll
2009-01-27 18:21:23 ----N---- C:\WINDOWS\system32\ati3duag.dll
2009-01-27 18:21:23 ----N---- C:\WINDOWS\system32\ati3d1ag.dll
2009-01-27 18:21:23 ----N---- C:\WINDOWS\system32\ati2dvag.dll
2009-01-27 18:21:22 ----N---- C:\WINDOWS\system32\dot3svc.dll
2009-01-27 18:21:22 ----N---- C:\WINDOWS\system32\dot3msm.dll
2009-01-27 18:21:22 ----N---- C:\WINDOWS\system32\dot3gpclnt.dll
2009-01-27 18:21:22 ----N---- C:\WINDOWS\system32\dot3dlg.dll
2009-01-27 18:21:22 ----N---- C:\WINDOWS\system32\dot3cfg.dll
2009-01-27 18:21:22 ----N---- C:\WINDOWS\system32\dot3api.dll
2009-01-27 18:21:22 ----N---- C:\WINDOWS\system32\dimsroam.dll
2009-01-27 18:21:22 ----N---- C:\WINDOWS\system32\dimsntfy.dll
2009-01-27 18:21:22 ----N---- C:\WINDOWS\system32\dhcpqec.dll
2009-01-27 18:21:22 ----N---- C:\WINDOWS\system32\credssp.dll
2009-01-27 18:21:22 ----N---- C:\WINDOWS\system32\cmsetacl.dll
2009-01-27 18:21:22 ----N---- C:\WINDOWS\system32\btpanui.dll
2009-01-27 18:21:22 ----N---- C:\WINDOWS\system32\bthserv.dll
2009-01-27 18:21:21 ----N---- C:\WINDOWS\system32\eappgnui.dll
2009-01-27 18:21:21 ----N---- C:\WINDOWS\system32\eappcfg.dll
2009-01-27 18:21:21 ----N---- C:\WINDOWS\system32\eapp3hst.dll
2009-01-27 18:21:21 ----N---- C:\WINDOWS\system32\eapolqec.dll
2009-01-27 18:21:21 ----N---- C:\WINDOWS\system32\dot3ui.dll
2009-01-27 18:21:20 ----N---- C:\WINDOWS\system32\hsfcisp2.dll
2009-01-27 18:21:20 ----N---- C:\WINDOWS\system32\fwcfg.dll
2009-01-27 18:21:20 ----N---- C:\WINDOWS\system32\fsquirt.exe
2009-01-27 18:21:20 ----N---- C:\WINDOWS\system32\fltmc.exe
2009-01-27 18:21:20 ----N---- C:\WINDOWS\system32\fltlib.dll
2009-01-27 18:21:20 ----N---- C:\WINDOWS\system32\eapsvc.dll
2009-01-27 18:21:20 ----N---- C:\WINDOWS\system32\eapqec.dll
2009-01-27 18:21:20 ----N---- C:\WINDOWS\system32\eappprxy.dll
2009-01-27 18:21:20 ----N---- C:\WINDOWS\system32\eapphost.dll
2009-01-27 18:21:20 ----A---- C:\WINDOWS\system32\extmgr.dll
2009-01-27 18:21:19 ----N---- C:\WINDOWS\system32\httpapi.dll
2009-01-27 18:21:18 ----N---- C:\WINDOWS\system32\ieencode.dll
2009-01-27 18:21:14 ----N---- C:\WINDOWS\system32\l2gpstore.dll
2009-01-27 18:21:14 ----N---- C:\WINDOWS\system32\kmsvc.dll
2009-01-27 18:21:14 ----N---- C:\WINDOWS\system32\kbdukx.dll
2009-01-27 18:21:14 ----N---- C:\WINDOWS\system32\kbdsmsno.dll
2009-01-27 18:21:14 ----N---- C:\WINDOWS\system32\kbdsmsfi.dll
2009-01-27 18:21:14 ----N---- C:\WINDOWS\system32\kbdpash.dll
2009-01-27 18:21:14 ----N---- C:\WINDOWS\system32\kbdno1.dll
2009-01-27 18:21:14 ----N---- C:\WINDOWS\system32\kbdnepr.dll
2009-01-27 18:21:14 ----N---- C:\WINDOWS\system32\kbdmlt48.dll
2009-01-27 18:21:14 ----N---- C:\WINDOWS\system32\kbdmlt47.dll
2009-01-27 18:21:14 ----N---- C:\WINDOWS\system32\kbdmaori.dll
2009-01-27 18:21:14 ----N---- C:\WINDOWS\system32\kbdiultn.dll
2009-01-27 18:21:14 ----N---- C:\WINDOWS\system32\kbdinmal.dll
2009-01-27 18:21:14 ----N---- C:\WINDOWS\system32\kbdinben.dll
2009-01-27 18:21:14 ----N---- C:\WINDOWS\system32\kbdinbe1.dll
2009-01-27 18:21:14 ----N---- C:\WINDOWS\system32\kbdfi1.dll
2009-01-27 18:21:14 ----N---- C:\WINDOWS\system32\kbdbhc.dll
2009-01-27 18:21:13 ----N---- C:\WINDOWS\system32\msdadiag.dll
2009-01-27 18:21:13 ----N---- C:\WINDOWS\system32\mmcperf.exe
2009-01-27 18:21:13 ----N---- C:\WINDOWS\system32\mmcfxcommon.dll
2009-01-27 18:21:13 ----N---- C:\WINDOWS\system32\mmcex.dll
2009-01-27 18:21:13 ----N---- C:\WINDOWS\system32\microsoft.managementconsole.dll
2009-01-27 18:21:13 ----N---- C:\WINDOWS\system32\mdmxsdk.dll
2009-01-27 18:21:12 ----N---- C:\WINDOWS\system32\napstat.exe
2009-01-27 18:21:12 ----N---- C:\WINDOWS\system32\napmontr.dll
2009-01-27 18:21:12 ----N---- C:\WINDOWS\system32\napipsec.dll
2009-01-27 18:21:12 ----N---- C:\WINDOWS\system32\mtxparhd.dll
2009-01-27 18:21:12 ----N---- C:\WINDOWS\system32\msshavmsg.dll
2009-01-27 18:21:12 ----N---- C:\WINDOWS\system32\mssha.dll
2009-01-27 18:21:11 ----N---- C:\WINDOWS\system32\rhttpaa.dll
2009-01-27 18:21:11 ----N---- C:\WINDOWS\system32\rasqec.dll
2009-01-27 18:21:11 ----N---- C:\WINDOWS\system32\qutil.dll
2009-01-27 18:21:11 ----N---- C:\WINDOWS\system32\qcliprov.dll
2009-01-27 18:21:11 ----N---- C:\WINDOWS\system32\qagentrt.dll
2009-01-27 18:21:11 ----N---- C:\WINDOWS\system32\qagent.dll
2009-01-27 18:21:11 ----N---- C:\WINDOWS\system32\powercfg.exe
2009-01-27 18:21:11 ----N---- C:\WINDOWS\system32\pnrpnsp.dll
2009-01-27 18:21:11 ----N---- C:\WINDOWS\system32\photometadatahandler.dll
2009-01-27 18:21:11 ----N---- C:\WINDOWS\system32\p2psvc.dll
2009-01-27 18:21:11 ----N---- C:\WINDOWS\system32\p2pnetsh.dll
2009-01-27 18:21:11 ----N---- C:\WINDOWS\system32\p2pgraph.dll
2009-01-27 18:21:11 ----N---- C:\WINDOWS\system32\p2pgasvc.dll
2009-01-27 18:21:11 ----N---- C:\WINDOWS\system32\p2p.dll
2009-01-27 18:21:11 ----N---- C:\WINDOWS\system32\onex.dll
2009-01-27 18:21:11 ----N---- C:\WINDOWS\system32\nv4_disp.dll
2009-01-27 18:21:10 ----N---- C:\WINDOWS\system32\smbinst.exe
2009-01-27 18:21:10 ----N---- C:\WINDOWS\system32\slserv.exe
2009-01-27 18:21:10 ----N---- C:\WINDOWS\system32\slrundll.exe
2009-01-27 18:21:10 ----N---- C:\WINDOWS\system32\slgen.dll
2009-01-27 18:21:10 ----N---- C:\WINDOWS\system32\slextspk.dll
2009-01-27 18:21:10 ----N---- C:\WINDOWS\system32\slcoinst.dll
2009-01-27 18:21:10 ----N---- C:\WINDOWS\system32\setupn.exe
2009-01-27 18:21:10 ----N---- C:\WINDOWS\system32\sdhcinst.dll
2009-01-27 18:21:10 ----N---- C:\WINDOWS\system32\s3gnb.dll
2009-01-27 18:21:09 ----N---- C:\WINDOWS\system32\xpsp3res.dll
2009-01-27 18:21:08 ----N---- C:\WINDOWS\system32\windowscodecsext.dll
2009-01-27 18:21:08 ----N---- C:\WINDOWS\system32\windowscodecs.dll
2009-01-27 18:21:08 ----N---- C:\WINDOWS\system32\w3ssl.dll
2009-01-27 18:21:08 ----N---- C:\WINDOWS\system32\verclsid.exe
2009-01-27 18:21:08 ----N---- C:\WINDOWS\system32\tzchange.exe
2009-01-27 18:21:08 ----N---- C:\WINDOWS\system32\twext.dll
2009-01-27 18:21:08 ----N---- C:\WINDOWS\system32\tspkg.dll
2009-01-27 18:21:08 ----N---- C:\WINDOWS\system32\tsgqec.dll
2009-01-27 18:21:08 ----N---- C:\WINDOWS\system32\strmfilt.dll
2009-01-27 18:21:07 ----N---- C:\WINDOWS\system32\wscsvc.dll
2009-01-27 18:21:07 ----N---- C:\WINDOWS\system32\wscntfy.exe
2009-01-27 18:21:07 ----N---- C:\WINDOWS\system32\wmphoto.dll
2009-01-27 18:21:07 ----N---- C:\WINDOWS\system32\wlanapi.dll
2009-01-27 18:21:07 ----N---- C:\WINDOWS\system32\winshfhc.dll
2009-01-27 18:21:06 ----N---- C:\WINDOWS\system32\wshbth.dll
2009-01-27 18:21:05 ----N---- C:\WINDOWS\system32\xmlprovi.dll
2009-01-27 18:21:05 ----N---- C:\WINDOWS\system32\xmlprov.dll
2009-01-27 18:21:05 ----N---- C:\WINDOWS\system32\xmllite.dll
2009-01-27 18:21:05 ----N---- C:\WINDOWS\slrundll.exe
2009-01-27 18:21:04 ----D---- C:\WINDOWS\system32\fr-fr
2009-01-27 18:21:03 ----D---- C:\WINDOWS\provisioning
2009-01-27 18:21:00 ----D---- C:\WINDOWS\system32\fr
2009-01-27 18:21:00 ----D---- C:\WINDOWS\l2schemas
2009-01-27 18:20:59 ----D---- C:\WINDOWS\peernet
2009-01-27 18:16:49 ----D---- C:\WINDOWS\ServicePackFiles
2009-01-27 18:11:59 ----D---- C:\WINDOWS\network diagnostic
2009-01-27 18:09:30 ----A---- C:\WINDOWS\002731_.tmp
2009-01-27 18:09:27 ----A---- C:\WINDOWS\imsins.BAK
2009-01-27 18:09:09 ----A---- C:\WINDOWS\system32\spupdsvc.exe
2009-01-27 18:04:19 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2009-01-27 18:04:06 ----D---- C:\WINDOWS\EHome
2009-01-07 17:20:24 ----A---- C:\WINDOWS\system32\LegitCheckControl.DLL
======List of files/folders modified in the last 1 months======
2009-01-28 11:06:52 ----D---- C:\WINDOWS\Temp
2009-01-27 20:39:28 ----D---- C:\WINDOWS\system32\drivers
2009-01-27 20:39:14 ----RD---- C:\Program Files
2009-01-27 20:30:12 ----D---- C:\WINDOWS\system32
2009-01-27 20:27:39 ----A---- C:\WINDOWS\SchedLgU.Txt
2009-01-27 20:03:21 ----SHD---- C:\WINDOWS\Installer
2009-01-27 20:02:36 ----D---- C:\WINDOWS\WinSxS
2009-01-27 19:58:57 ----D---- C:\WINDOWS\system32\CatRoot2
2009-01-27 19:55:03 ----D---- C:\WINDOWS
2009-01-27 19:48:45 ----D---- C:\Program Files\Fichiers communs\Adobe
2009-01-27 19:47:16 ----D---- C:\Program Files\Adobe
2009-01-27 19:44:45 ----D---- C:\Documents and Settings\PortableEFFICOM\Application Data\Adobe
2009-01-27 19:44:42 ----SD---- C:\WINDOWS\Downloaded Program Files
2009-01-27 19:24:09 ----HD---- C:\WINDOWS\inf
2009-01-27 19:23:28 ----A---- C:\WINDOWS\win.ini
2009-01-27 19:23:20 ----D---- C:\Program Files\Windows Media Player
2009-01-27 19:23:17 ----RSHDC---- C:\WINDOWS\system32\dllcache
2009-01-27 19:23:17 ----D---- C:\WINDOWS\Help
2009-01-27 19:21:11 ----D---- C:\WINDOWS\system32\LogFiles
2009-01-27 18:56:21 ----D---- C:\WINDOWS\Debug
2009-01-27 18:56:03 ----D---- C:\Program Files\Internet Explorer
2009-01-27 18:53:33 ----D---- C:\WINDOWS\Media
2009-01-27 18:34:53 ----SD---- C:\Documents and Settings\All Users\Application Data\Microsoft
2009-01-27 18:34:03 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2009-01-27 18:33:50 ----D---- C:\WINDOWS\system32\inetsrv
2009-01-27 18:33:00 ----D---- C:\WINDOWS\system32\wbem
2009-01-27 18:31:59 ----SHD---- C:\System Volume Information
2009-01-27 18:31:54 ----D---- C:\WINDOWS\system32\Setup
2009-01-27 18:31:53 ----D---- C:\WINDOWS\AppPatch
2009-01-27 18:31:49 ----RSD---- C:\WINDOWS\Fonts
2009-01-27 18:29:32 ----D---- C:\WINDOWS\security
2009-01-27 18:28:51 ----D---- C:\WINDOWS\system32\CatRoot
2009-01-27 18:27:14 ----RASH---- C:\boot.ini
2009-01-27 18:21:58 ----D---- C:\Program Files\Messenger
2009-01-27 18:21:30 ----D---- C:\WINDOWS\ime
2009-01-27 18:21:04 ----D---- C:\WINDOWS\system32\usmt
2009-01-27 18:21:04 ----D---- C:\WINDOWS\system32\oobe
2009-01-27 18:20:59 ----D---- C:\WINDOWS\system32\bits
2009-01-27 18:20:59 ----D---- C:\Program Files\Movie Maker
2009-01-27 18:16:19 ----D---- C:\WINDOWS\system32\Restore
2009-01-27 18:16:19 ----D---- C:\WINDOWS\system32\npp
2009-01-27 18:16:17 ----D---- C:\WINDOWS\msagent
2009-01-27 18:16:14 ----D---- C:\WINDOWS\srchasst
2009-01-27 18:16:13 ----D---- C:\Program Files\NetMeeting
2009-01-27 18:16:10 ----D---- C:\WINDOWS\system32\Com
2009-01-27 18:16:05 ----D---- C:\Program Files\Windows NT
2009-01-27 18:16:05 ----D---- C:\Program Files\Outlook Express
2009-01-27 18:15:54 ----D---- C:\Program Files\Fichiers communs\System
2009-01-27 18:15:17 ----D---- C:\WINDOWS\system
2009-01-27 18:11:59 ----RD---- C:\WINDOWS\Web
2009-01-27 18:11:17 ----RASH---- C:\NTDETECT.COM
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 intelppm;Pilote de processeur Intel; C:\WINDOWS\System32\DRIVERS\intelppm.sys [2008-04-13 40576]
R1 TMEI3E;TMEI3E; C:\WINDOWS\System32\Drivers\TMEI3E.SYS [2002-09-26 5760]
R2 MDC8021X;AEGIS Protocol (IEEE 802.1x) v2.2.1.0; C:\WINDOWS\System32\DRIVERS\mdc8021x.sys [2004-11-19 14037]
R2 Netdevio;TOSHIBA Network Device Usermode I/O Protocol; C:\WINDOWS\System32\DRIVERS\netdevio.sys [2003-01-29 12032]
R2 s24trans;WLAN Transport; C:\WINDOWS\System32\DRIVERS\s24trans.sys [2003-09-15 11258]
R3 {6080A529-897E-4629-A488-ABA0C29B635E};Intel(R) Graphics Platform (SoftBIOS) Driver; C:\WINDOWS\system32\drivers\ialmsbw.sys [2004-01-26 122110]
R3 {D31A0762-0CEB-444e-ACFF-B049A1F6FE91};Intel(R) Graphics Chipset (KCH) Driver; C:\WINDOWS\system32\drivers\ialmkchw.sys [2004-01-26 99002]
R3 ApfiltrService;Alps Pointing-device Filter Driver; C:\WINDOWS\System32\DRIVERS\Apfiltr.sys [2003-12-10 100153]
R3 CmBatt;Pilote d'adaptateur secteur Microsoft; C:\WINDOWS\System32\DRIVERS\CmBatt.sys [2008-04-13 13952]
R3 E100B;Intel(R) PRO Adapter Driver; C:\WINDOWS\System32\DRIVERS\e100b325.sys [2003-12-29 153088]
R3 ialm;ialm; C:\WINDOWS\System32\DRIVERS\ialmnt5.sys [2004-01-26 95579]
R3 STAC97;Audio Driver (WDM) - SigmaTel CODEC; C:\WINDOWS\system32\drivers\stac97.sys [2003-07-17 230416]
R3 TOSHIBASoftModem;TOSHIBA Software Modem; C:\WINDOWS\System32\DRIVERS\LTSM.sys [2002-09-17 809872]
R3 usbehci;Pilote miniport de contrôleur hôte amélioré USB 2.0 Microsoft; C:\WINDOWS\System32\DRIVERS\usbehci.sys [2008-04-13 30208]
R3 usbhub;Concentrateur USB2; C:\WINDOWS\System32\DRIVERS\usbhub.sys [2008-04-13 59520]
R3 usbuhci;Pilote miniport de contrôleur hôte universel USB Microsoft; C:\WINDOWS\System32\DRIVERS\usbuhci.sys [2008-04-13 20608]
R3 w22n51;Pilote Intel(R) PRO/Wireless 2200 Adapter; C:\WINDOWS\System32\DRIVERS\w22n51.sys [2004-01-02 1646720]
S3 BrScnUsb;Brother USB Still Image driver; C:\WINDOWS\System32\Drivers\BrScnUsb.sys [2003-12-19 15263]
S3 gv3;Pilote processeur Intel GV3; C:\WINDOWS\System32\DRIVERS\gv3.sys [2002-11-20 33792]
S3 HidUsb;Pilote de classe HID Microsoft; C:\WINDOWS\System32\DRIVERS\hidusb.sys [2008-04-13 10368]
S3 mouhid;Pilote HID de souris; C:\WINDOWS\System32\DRIVERS\mouhid.sys [2001-08-23 12288]
S3 usbccgp;Pilote parent générique USB Microsoft; C:\WINDOWS\System32\DRIVERS\usbccgp.sys [2008-04-13 32128]
S3 usbprint;Classe d'imprimantes USB Microsoft; C:\WINDOWS\System32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 USBSTOR;Pilote de stockage de masse USB; C:\WINDOWS\System32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 VIAudio;Contrôleur audio VIA AC'97 (WDM); C:\WINDOWS\system32\drivers\ac97via.sys [2002-08-28 84480]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 brmfrmps;Brother Popup Suspend service for Resource manager; C:\WINDOWS\system32\Brmfrmps.exe [2003-05-05 65536]
R2 Brother XP spl Service;BrSplService; C:\WINDOWS\System32\brsvc01a.exe [2002-04-12 57344]
R2 CFSvcs;ConfigFree Service; C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe [2004-03-04 28672]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2000-02-12 152984]
R2 MDM;Machine Debug Manager; C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-19 322120]
R2 MSSQL$MICROSOFTBCM;MSSQL$MICROSOFTBCM; C:\Program Files\Microsoft SQL Server\MSSQL$MICROSOFTBCM\Binn\sqlservr.exe [2003-05-31 7544916]
R2 RegSrvc;RegSrvc; C:\WINDOWS\System32\RegSrvc.exe [2003-12-16 122880]
R2 S24EventMonitor;Spectrum24 Event Monitor; C:\WINDOWS\System32\S24EvMon.exe [2003-12-16 311363]
R2 Tmesrv;Tmesrv3; C:\Program Files\TOSHIBA\TME3\Tmesrv31.exe [2004-04-13 126976]
S3 aspnet_state;Service d'état ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_state.exe [2004-07-15 32768]
S3 MSSQLServerADHelper;MSSQLServerADHelper; C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqladhlp.exe [2002-12-17 66112]
S3 ose;Office Source Engine; C:\Program Files\Fichiers communs\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 SQLAgent$MICROSOFTBCM;SQLAgent$MICROSOFTBCM; C:\Program Files\Microsoft SQL Server\MSSQL$MICROSOFTBCM\Binn\sqlagent.EXE [2002-12-17 311872]
S3 WMPNetworkSvc;Service Partage réseau du Lecteur Windows Media; C:\Program Files\Windows Media Player\WMPNetwk.exe [2006-11-03 918016]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-13 14336]
-----------------EOF-----------------
info.txt logfile of random's system information tool 1.05 2009-01-28 11:10:15
======Uninstall list======
-->C:\WINDOWS\IsUn040c.exe -fC:\WINDOWS\orun32.isu
-->MsiExec.exe /I{B5D8CCBF-08D8-46C0-8B04-3BC0CAEDA094}
-->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
Adobe Flash Player 10 ActiveX-->C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
Adobe Reader 9 - Français-->MsiExec.exe /I{AC76BA86-7AD7-1036-7B44-A90000000001}
ALPS Touch Pad Driver-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}\setup.exe" UNINSTALL
Brother MFL-Pro Suite-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{40A6C96D-808E-41DD-8716-617AB6B0F1F1}\Setup.exe" -l0x40c Brunin03.dllBrunin03.dll
CCleaner (remove only)-->"C:\Program Files\CCleaner\uninst.exe"
ClearProg 1.5.0 Final-->C:\Program Files\ClearProg\Uninstall.exe
Commandes TOSHIBA-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{A6690C0E-B96E-4F0F-A8EB-D5B332454AC6}\Setup.exe" -l0x40c UNINSTALL
Console TOSHIBA-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{3CF0858D-1AC5-4308-9DE7-AD15288A8BDC}\Setup.exe" -l0x40c
DiMAGE Viewer-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{976EA7B1-7562-483D-88DA-4323D263B7CD}\Setup.exe" -l0x40c anything
Gestion d'énergie TOSHIBA-->C:\WINDOWS\IsUn040c.exe -f"C:\Program Files\TOSHIBA\Power Saver\Uninst.isu" -c"C:\WINDOWS\System32\TPSDel.dll"
Gestionnaire de contacts professionnels pour Outlook 2003-->MsiExec.exe /I{66563AD8-637B-407F-BCA7-0233A16891AB}
HijackThis 2.0.2-->"C:\Documents and Settings\PortableEFFICOM\Bureau\dl internet\HijackThis.exe" /uninstall
Intel(R) Extreme Graphics 2 Driver-->RUNDLL32.EXE C:\WINDOWS\System32\ialmrem.dll,UninstallW2KIGfx PCI\VEN_8086&DEV_3582
Intel(R) PRO Network Adapters and Drivers-->Prounstl.exe
Intel(R) PROSet for Wireless-->MsiExec.exe /I{5380063E-2909-4d72-BFA3-625881F2E78B}
InterActual Player-->C:\Program Files\InterActual\InterActual Player\inuninst.exe
InterVideo WinDVD for Toshiba-->"C:\Program Files\InstallShield Installation Information\{91810AFC-A4F8-4EBA-A5AA-B198BBC81144}\setup.exe" REMOVEALL
Java 2 Runtime Environment, SE v1.4.2_03-->MsiExec.exe /I{7148F0A8-6813-11D6-A77B-00B0D0142030}
Java(TM) 6 Update 11-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216011FF}
Lecteur Windows Media 11-->"C:\Program Files\Windows Media Player\Setup_wm.exe" /Uninstall
Malwarebytes' Anti-Malware-->"C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"
Manuels TOSHIBA-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{188BA1CC-F3A1-49B0-A34D-8C861C64E1AE}\Setup.exe" -l0x40c
Microsoft .NET Framework 1.1 French Language Pack-->MsiExec.exe /X{9A394342-4A68-4EBA-85A6-55B559F4E700}
Microsoft .NET Framework 1.1-->msiexec.exe /X {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 1.1-->MsiExec.exe /X{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft Compression Client Pack 1.0 for Windows XP-->"C:\WINDOWS\$NtUninstallMSCompPackV1$\spuninst\spuninst.exe"
Microsoft Data Access Components KB870669-->C:\WINDOWS\muninst.exe C:\WINDOWS\INF\KB870669.inf
Microsoft Internationalized Domain Names Mitigation APIs-->"C:\WINDOWS\$NtServicePackUninstallIDNMitigationAPIs$\spuninst\spuninst.exe"
Microsoft National Language Support Downlevel APIs-->"C:\WINDOWS\$NtServicePackUninstallNLSDownlevelMapping$\spuninst\spuninst.exe"
Microsoft Office OneNote 2003-->MsiExec.exe /I{91A1040C-6000-11D3-8CFE-0150048383C9}
Microsoft Office Professional Edition 2003-->MsiExec.exe /I{9111040C-6000-11D3-8CFE-0150048383C9}
Microsoft User-Mode Driver Framework Feature Pack 1.0-->"C:\WINDOWS\$NtUninstallWudf01000$\spuninst\spuninst.exe"
Nero OEM-->C:\Program Files\Ahead\nero\uninstall\UNNERO.exe /UNINSTALL
Outil de diagnostic PC TOSHIBA-->C:\WINDOWS\IsUn040c.exe -f"C:\Program Files\TOSHIBA\PCDiag\Uninst.isu"
Pilotes Audio SigmaTel AC97-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{7959721D-8268-4565-9E0E-C41A9F4848A9}\setup.exe" -l0x40c -nodialog -uninstall
QuickTime-->C:\WINDOWS\unvise32qt.exe C:\WINDOWS\System32\QuickTime\Uninstall.log
Réducteur de bruit lect. CD/DVD-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{9FE35071-CAB2-4E79-93E7-BFC6A2DC5C5D}\Setup.exe" -l0x40c
TOSHIBA ConfigFree-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{BDD83DC9-BEE9-4654-A5DA-CC46C250088D}\setup.exe" -l0x40c UNINSTALL
TOSHIBA Mobile Extension3 pour Windows XP V3.63.00.XP-->C:\WINDOWS\IsUn040c.exe -f"C:\Program Files\TOSHIBA\TME3\Uninst.isu"
TOSHIBA Software Modem-->Tosmreg -U
TOSHIBA Utilities-->tutildel.exe
Utilitaire Activer/désactiver la tablette tactile TOSHIBA V2.05.00-->C:\WINDOWS\IsUn040c.exe -f"C:\Program Files\TOSHIBA\TouchED\Uninst.isu" -c"C:\Program Files\TOSHIBA\TouchED\tpedinst.dll"
Utilitaire de zoom TOSHIBA-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{64212898-097F-4F3F-AECA-6D34A7EF82DF}\setup.exe"
Utilitaire TOSHIBA d'accès direct aux périphériques d’affichage-->RunDll32 advpack.dll,LaunchINFSection C:\WINDOWS\INF\TFNF5Wxp.inf,DefaultUninstall,5
Utilitaire TOSHIBA de changement d'écran-->RunDll32 advpack.dll,LaunchINFSection C:\WINDOWS\INF\TDspBtn.inf,DefaultUninstall,5
Windows Internet Explorer 7-->"C:\WINDOWS\ie7\spuninst\spuninst.exe"
Windows Media Format 11 runtime-->"C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
Windows Media Format 11 runtime-->"C:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe"
Windows Media Player 11-->"C:\WINDOWS\$NtUninstallwmp11$\spuninst\spuninst.exe"
Windows XP Service Pack 3-->"C:\WINDOWS\$NtServicePackUninstall$\spuninst\spuninst.exe"
System event log
Computer Name: PORTABLEEFFICOM
Event Code: 6006
Message: Le service d'Enregistrement d'événement a été arrêté.
Record Number: 2209
Source Name: EventLog
Time Written: 20051015092843.000000+120
Event Type: Informations
User:
Computer Name: PORTABLEEFFICOM
Event Code: 240
Message: Une requête de suspension de pouvoir a été refusée par winlogon.exe.
Record Number: 2208
Source Name: Win32k
Time Written: 20051015092841.000000+120
Event Type: Avertissement
User:
Computer Name: PORTABLEEFFICOM
Event Code: 7036
Message: Le service Service COM de gravage de CD IMAPI est entré dans l'état : arrêté.
Record Number: 2207
Source Name: Service Control Manager
Time Written: 20051015092259.000000+120
Event Type: Informations
User:
Computer Name: PORTABLEEFFICOM
Event Code: 7036
Message: Le service Service de découvertes SSDP est entré dans l'état : en cours d'exécution.
Record Number: 2206
Source Name: Service Control Manager
Time Written: 20051015092259.000000+120
Event Type: Informations
User:
Computer Name: PORTABLEEFFICOM
Event Code: 7035
Message: Un contrôle Démarrer a correctement été envoyé au service Service de découvertes SSDP.
Record Number: 2205
Source Name: Service Control Manager
Time Written: 20051015092259.000000+120
Event Type: Informations
User: AUTORITE NT\SYSTEM
Application event log
Computer Name: PORTABLEEFFICOM
Event Code: 102
Message: wuaueng.dll (2972) SUS20ClientDataStore: Le moteur de base de données a démarré une nouvelle instance (0).
Record Number: 1027
Source Name: ESENT
Time Written: 20060817204915.000000+120
Event Type: Informations
User:
Computer Name: PORTABLEEFFICOM
Event Code: 100
Message: wuauclt (2972) Le moteur de base de données 5.01.2600.0000 est démarré.
Record Number: 1026
Source Name: ESENT
Time Written: 20060817204915.000000+120
Event Type: Informations
User:
Computer Name: PORTABLEEFFICOM
Event Code: 19011
Message:
Record Number: 1025
Source Name: MSSQL$MICROSOFTBCM
Time Written: 20060817204831.000000+120
Event Type: Avertissement
User:
Computer Name: PORTABLEEFFICOM
Event Code: 0
Message:
Record Number: 1024
Source Name: RegSrvc
Time Written: 20060817204829.000000+120
Event Type: Informations
User:
Computer Name: PORTABLEEFFICOM
Event Code: 1002
Message: L'environnement s'est arrêté de façon inattendue et Explorer.exe a redémarré.
Record Number: 1023
Source Name: Winlogon
Time Written: 20060815105455.000000+120
Event Type: Informations
User:
======Environment variables======
"ComSpec"=%SystemRoot%\system32\cmd.exe
"Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\Microsoft Office\OFFICE11\Gestionnaire de contacts professionnels\IM;C:\Program Files\Microsoft SQL Server\80\Tools\Binn\;C:\Program Files\Microsoft Office\OFFICE11\Gestionnaire de contacts professionnels\
"windir"=%SystemRoot%
"OS"=Windows_NT
"PROCESSOR_ARCHITECTURE"=x86
"PROCESSOR_LEVEL"=6
"PROCESSOR_IDENTIFIER"=x86 Family 6 Model 13 Stepping 6, GenuineIntel
"PROCESSOR_REVISION"=0d06
"NUMBER_OF_PROCESSORS"=1
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"FP_NO_HOST_CHECK"=NO
-----------------EOF-----------------
Bonjour ,
j'ai donc désactivé les mises à jour de Windows, en passant par "demarrer/executer/services.msc"
mais le problème persiste toujours au démarrage, avec le lancement du pare-feu et des sécurités dans la barre de tâche.
aussi c'est moins gênant, au bout de la 5eme tentative de message d'erreur ignoré, la fenêtre n'apparait plus.
n'y a-t-il aucune solution à mon problème ? une idée ??
j'ai donc désactivé les mises à jour de Windows, en passant par "demarrer/executer/services.msc"
mais le problème persiste toujours au démarrage, avec le lancement du pare-feu et des sécurités dans la barre de tâche.
aussi c'est moins gênant, au bout de la 5eme tentative de message d'erreur ignoré, la fenêtre n'apparait plus.
n'y a-t-il aucune solution à mon problème ? une idée ??
Tu peux désactiver les messages d'erreur :
http://www.aidoforum.com/tutoriaux-147-desactiver-le-ra...
http://www.aidoforum.com/tutoriaux-147-desactiver-le-ra...
Lassé par la pub ? Créez un compte
- Contenus similaires :
Tags :
.