Connexion internet très lente et toujours ouverture de pub
Forum Sécurité - Virus : Connexion internet très lente et toujours ouverture de pub
Bonjour,
J'ai l'impression d'avoir un ver, car mes connexions sont très lentes et j'ai également des pages de pub qui s'ouvrent mais pas dans mon navigateur.
Ci-joint rapport RSIT, pour plus d'éléments :
Logfile of random's system information tool 1.06 (written by random/random)
Run by Propriétaire at 2009-11-08 20:07:40
Microsoft Windows XP Édition familiale Service Pack 3
System drive C: has 70 GB (58%) free of 120 GB
Total RAM: 2047 MB (61% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 20:07:53, on 08/11/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
C:\Program Files\McAfee\Common Framework\FrameworkService.exe
C:\Program Files\McAfee\VirusScan Enterprise\Mcshield.exe
C:\Program Files\McAfee\VirusScan Enterprise\VsTskMgr.exe
C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
C:\WINDOWS\system32\IoctlSvc.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\ASUS\EPU-4 Engine\FourEngine.exe
C:\Program Files\McAfee\Common Framework\UdaterUI.exe
C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe
C:\Program Files\McAfee\Common Framework\McTray.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\MpcStar\Codecs\QuickTime\QTSystem\qttask.exe
C:\WINDOWS\system32\ctfmon.exe
C:\documents and settings\propriétaire\local settings\application data\tcahvbb.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\winlogon.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Propriétaire\Bureau\RSIT.exe
C:\Program Files\trend micro\HijackThis\Propriétaire.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://google.fr/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\McAfee\VirusScan Enterprise\scriptcl.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [Six Engine] "C:\Program Files\ASUS\EPU-4 Engine\FourEngine.exe" -r
O4 - HKLM\..\Run: [ShStatEXE] "C:\Program Files\McAfee\VirusScan Enterprise\SHSTAT.EXE" /STANDALONE
O4 - HKLM\..\Run: [McAfeeUpdaterUI] "C:\Program Files\McAfee\Common Framework\UdaterUI.exe" /StartedFromRunKey
O4 - HKLM\..\Run: [XboxStat] "C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe" silentrun
O4 - HKLM\..\Run: [nwiz] C:\Program Files\NVIDIA Corporation\nView\nwiz.exe /install
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [Name of App] C:\Program Files\SAMSUNG\FW LiveUpdate\FWManager.exe r
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\MpcStar\Codecs\QuickTime\QTSystem\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Malwarebytes Anti-Malware (reboot)] "C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [tcahvbb] "c:\documents and settings\propriétaire\local settings\application data\tcahvbb.exe" tcahvbb
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-21-299502267-2025429265-1801674531-1004\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe" (User 'Emmanuelle')
O4 - HKUS\S-1-5-21-299502267-2025429265-1801674531-1004\..\Run: [QuickTime Task] "C:\Program Files\MpcStar\Codecs\QuickTime\QTSystem\qttask.exe" -atboottime (User 'Emmanuelle')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Télécharger en Utilisant &BitSpirit - C:\Program Files\BitSpirit\bsurl.htm
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/window [...] 1383087317
O16 - DPF: {E77F23EB-E7AB-4502-8F37-247DBAF1A147} (Windows Live Hotmail Photo Upload Tool) - http://gfx1.hotmail.com/mail/w4/pr [...] NPUpld.cab
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe
O23 - Service: McAfee Framework Service (McAfeeFramework) - McAfee, Inc. - C:\Program Files\McAfee\Common Framework\FrameworkService.exe
O23 - Service: McAfee McShield (McShield) - McAfee, Inc. - C:\Program Files\McAfee\VirusScan Enterprise\Mcshield.exe
O23 - Service: McAfee Task Manager (McTaskManager) - McAfee, Inc. - C:\Program Files\McAfee\VirusScan Enterprise\VsTskMgr.exe
O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\WINDOWS\system32\IoctlSvc.exe
O23 - Service: StarWind AE Service (StarWindServiceAE) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
--
End of file - 8127 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\User_Feed_Synchronization-{46F3CE72-9420-45DA-8CD2-8ABBBEB6325F}.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7DB2D5A0-7241-4E79-B68D-6309F01C5231}]
scriptproxy - C:\Program Files\McAfee\VirusScan Enterprise\scriptcl.dll [2006-11-30 67136]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-07-25 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2009-07-25 73728]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{32099AAC-C132-4136-9E9A-4E364A424E17} - DAEMON Tools Toolbar - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll [2009-04-23 937416]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2009-02-03 18085888]
"Alcmtr"=C:\WINDOWS\ALCMTR.EXE [2008-06-19 57344]
"Six Engine"=C:\Program Files\ASUS\EPU-4 Engine\FourEngine.exe [2009-02-13 5634560]
"ShStatEXE"=C:\Program Files\McAfee\VirusScan Enterprise\SHSTAT.EXE [2006-11-30 112216]
"McAfeeUpdaterUI"=C:\Program Files\McAfee\Common Framework\UdaterUI.exe [2006-11-17 136768]
"XboxStat"=C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe [2007-09-26 734264]
"nwiz"=C:\Program Files\NVIDIA Corporation\nView\nwiz.exe [2009-08-12 1657376]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2009-08-17 13877248]
"NvMediaCenter"=C:\WINDOWS\system32\NvMcTray.dll [2009-08-17 86016]
"Name of App"=C:\Program Files\SAMSUNG\FW LiveUpdate\FWManager.exe [2009-07-15 692340]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-10-03 35696]
"Adobe ARM"=C:\Program Files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe [2009-09-04 935288]
"KernelFaultCheck"=C:\WINDOWS\system32\dumprep 0 -k []
"QuickTime Task"=C:\Program Files\MpcStar\Codecs\QuickTime\QTSystem\qttask.exe [2009-08-27 282624]
"Malwarebytes Anti-Malware (reboot)"=C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe [2009-09-10 1312080]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe []
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"tcahvbb"=c:\documents and settings\propriétaire\local settings\application data\tcahvbb.exe [2009-11-03 339968]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-10-03 35696]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AlcoholAutomount]
C:\Program Files\Alcohol Soft\Alcohol 120\axcmd.exe [2007-07-02 220544]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files\DAEMON Tools Lite\daemon.exe [2008-07-24 490952]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Pinyin 2 Autoupdater]
C:\Program Files\Google\Google Pinyin 2\GooglePinyinDaemon.exe [2009-10-20 1009648]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LightScribe Control Panel]
C:\Program Files\Fichiers communs\LightScribe\LightScribeControlPanel.exe [2009-08-20 2363392]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NBKeyScan]
C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe [2008-06-10 2221352]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
C:\Program Files\Fichiers communs\Nero\Lib\NeroCheck.exe [2008-07-09 570664]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
C:\Program Files\MpcStar\Codecs\QuickTime\QTSystem\qttask.exe [2009-08-27 282624]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Java\jre6\bin\jusched.exe [2009-07-25 149280]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\uedkkrba]
c:\documents and settings\propriétaire\local settings\application data\uedkkrba.exe uedkkrba []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UUSEE]
C:\Program Files\uusee\UUSeePlayer.exe -b []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
UPnPMonitor - {e57ce738-33e8-4c51-8354-bb4de9d215d1} - C:\WINDOWS\system32\upnpui.dll [2008-04-14 240128]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Program Files\McAfee\Common Framework\FrameworkService.exe"="C:\Program Files\McAfee\Common Framework\FrameworkService.exe:*:Enabled:McAfee Framework Service"
"C:\Program Files\BitSpirit\BitSpirit.exe"="C:\Program Files\BitSpirit\BitSpirit.exe:*:Enabled:The powerful and easy-to-use BitTorrent Client"
"C:\Program Files\Ubisoft\Techland\Call of Juarez - Bound in Blood\CoJBiBGame_x86.exe"="C:\Program Files\Ubisoft\Techland\Call of Juarez - Bound in Blood\CoJBiBGame_x86.exe:*:Enabled:Call of Juarez - Bound in Blood"
"C:\Program Files\KONAMI\Pro Evolution Soccer 2009\pes2009.exe"="C:\Program Files\KONAMI\Pro Evolution Soccer 2009\pes2009.exe:*:Enabled
ro Evolution Soccer 2009"
"C:\Program Files\ma-config.com\maconfservice.exe"="C:\Program Files\ma-config.com\maconfservice.exe:LocalSubNet:Enabled:maconfservice"
"E:\Program Files\Codemasters\FUEL\FUEL.exe"="E:\Program Files\Codemasters\FUEL\FUEL.exe:*:Enabled:FUEL"
"C:\Program Files\TVUPlayer\TVUPlayer.exe"="C:\Program Files\TVUPlayer\TVUPlayer.exe:*:Enabled:TVUPlayer Component"
"C:\Program Files\uusee\UUSeePlayer.exe"="C:\Program Files\uusee\UUSeePlayer.exe:*:Enabled:UUPlayer"
"C:\Program Files\SopCast\SopCast.exe"="C:\Program Files\SopCast\SopCast.exe:*:Enabled:SopCast Main Application"
"C:\Program Files\SopCast\adv\SopAdver.exe"="C:\Program Files\SopCast\adv\SopAdver.exe:*:Enabled:SopCast Adver"
"C:\Program Files\TVAnts\Tvants.exe"="C:\Program Files\TVAnts\Tvants.exe:*:Enabled:TVAnts"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{0910a958-9aba-11de-87c5-00248cd07e0c}]
shell\AutoRun\command - L:\WDSetup.exe
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{49e622d2-9727-11de-87bf-00248cd07e0c}]
shell\AutoRun\command - L:\otyh.cmd
shell\explore\command - L:\otyh.cmd
shell\open\command - L:\otyh.cmd
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{99cd7b34-a5c2-11de-9bd5-806d6172696f}]
shell\AutoRun\command - H:\autorun.exe
======List of files/folders created in the last 3 months======
2009-11-08 19:52:16 ----D---- C:\Program Files\SopCast
2009-11-08 19:00:10 ----D---- C:\Program Files\TVAnts
2009-11-08 11:38:51 ----D---- C:\rsit
2009-11-08 11:38:51 ----D---- C:\Program Files\trend micro
2009-11-03 19:20:34 ----D---- C:\Documents and Settings\Propriétaire\Application Data\live-player
2009-11-03 19:20:22 ----D---- C:\Program Files\Live-Player
2009-11-03 19:16:26 ----A---- C:\WINDOWS\wininit.ini
2009-10-30 14:36:14 ----D---- C:\Documents and Settings\Propriétaire\Application Data\Malwarebytes
2009-10-30 14:36:09 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2009-10-30 14:36:09 ----D---- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2009-10-30 14:34:54 ----D---- C:\Program Files\Spybot - Search & Destroy
2009-10-30 14:34:54 ----D---- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
2009-10-30 14:21:00 ----HD---- C:\WINDOWS\system32\GroupPolicy
2009-10-30 14:21:00 ----A---- C:\WINDOWS\system32\gptext.dll
2009-10-30 14:21:00 ----A---- C:\WINDOWS\system32\gpedit.msc
2009-10-30 14:21:00 ----A---- C:\WINDOWS\system32\gpedit.dll
2009-10-30 14:21:00 ----A---- C:\WINDOWS\system32\fdeploy.dll
2009-10-30 14:21:00 ----A---- C:\WINDOWS\system32\fde.dll
2009-10-30 14:21:00 ----A---- C:\WINDOWS\system32\appmgr.dll
2009-10-30 14:21:00 ----A---- C:\WINDOWS\system32\appmgmts.dll
2009-10-30 00:05:23 ----D---- C:\Program Files\Lavalys
2009-10-24 20:31:32 ----D---- C:\Program Files\Adobe
2009-10-24 20:31:11 ----SHD---- C:\Config.Msi
2009-10-20 18:39:07 ----D---- C:\Documents and Settings\Propriétaire\Application Data\Real
2009-10-20 18:38:51 ----D---- C:\Documents and Settings\Propriétaire\Application Data\Google
2009-10-20 18:38:47 ----D---- C:\Documents and Settings\All Users\Application Data\Google
2009-10-20 18:38:45 ----A---- C:\WINDOWS\struct~.ini
2009-10-20 17:34:36 ----D---- C:\Documents and Settings\All Users\Application Data\TVU Networks
2009-10-20 17:34:23 ----D---- C:\Program Files\TVUPlayer
2009-10-18 18:14:14 ----N---- C:\WINDOWS\system32\vxblock.dll
2009-10-18 18:14:14 ----N---- C:\WINDOWS\system32\pxwave.dll
2009-10-18 18:14:14 ----N---- C:\WINDOWS\system32\pxmas.dll
2009-10-18 18:14:14 ----N---- C:\WINDOWS\system32\pxhpinst.exe
2009-10-18 18:14:14 ----N---- C:\WINDOWS\system32\pxdrv.dll
2009-10-18 18:14:14 ----N---- C:\WINDOWS\system32\px.dll
2009-10-18 18:13:59 ----D---- C:\WINDOWS\system32\IOSUBSYS
2009-10-18 18:13:53 ----D---- C:\Program Files\Google
2009-10-14 22:20:41 ----HDC---- C:\WINDOWS\$NtUninstallKB958869$
2009-10-14 22:19:40 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2009-10-14 22:19:37 ----HDC---- C:\WINDOWS\$NtUninstallKB954155_WM9$
2009-10-14 22:19:34 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2009-10-14 22:19:30 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$
2009-10-14 22:19:26 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2009-10-14 22:19:19 ----HDC---- C:\WINDOWS\$NtUninstallKB971486$
2009-10-14 22:19:12 ----HDC---- C:\WINDOWS\$NtUninstallKB973525$
2009-10-14 22:19:06 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2009-10-07 21:48:32 ----HDC---- C:\WINDOWS\$NtUninstallKB961118$
2009-10-05 19:13:19 ----D---- C:\WINDOWS\Minidump
2009-10-05 08:03:54 ----A---- C:\WINDOWS\system32\javaws.exe
2009-10-05 08:03:54 ----A---- C:\WINDOWS\system32\javaw.exe
2009-10-05 08:03:54 ----A---- C:\WINDOWS\system32\java.exe
2009-10-04 22:24:09 ----D---- C:\Documents and Settings\Propriétaire\Application Data\FUEL
2009-10-04 16:47:39 ----D---- C:\WINDOWS\Sun
2009-10-04 16:42:45 ----D---- C:\Program Files\Java
2009-10-04 16:37:51 ----A---- C:\WINDOWS\system32\deploytk.dll
2009-10-04 16:35:50 ----D---- C:\Documents and Settings\Propriétaire\Application Data\Sun
2009-10-04 14:54:43 ----HDC---- C:\WINDOWS\$NtUninstallXPSEPSCLP$
2009-10-04 14:51:12 ----D---- C:\WINDOWS\system32\XPSViewer
2009-10-04 14:51:10 ----D---- C:\WINDOWS\system32\en-us
2009-10-04 14:50:43 ----D---- C:\Program Files\Reference Assemblies
2009-10-04 14:50:27 ----N---- C:\WINDOWS\system32\spmsg2.dll
2009-10-04 14:49:01 ----RSD---- C:\WINDOWS\assembly
2009-10-04 14:48:20 ----D---- C:\WINDOWS\Microsoft.NET
2009-10-04 14:46:53 ----D---- C:\WINDOWS\system32\xlive
2009-10-04 14:46:52 ----D---- C:\Program Files\Microsoft Games for Windows - LIVE
2009-10-04 14:19:24 ----D---- C:\Program Files\Oxemis
2009-09-21 12:29:43 ----D---- C:\WINDOWS\pss
2009-09-20 11:19:02 ----D---- C:\Program Files\Fichiers communs\LightScribe
2009-09-20 11:11:57 ----D---- C:\Documents and Settings\All Users\Application Data\LightScribe
2009-09-20 10:46:18 ----D---- C:\Documents and Settings\Propriétaire\Application Data\Nero
2009-09-20 10:46:05 ----A---- C:\WINDOWS\system32\MsiExec.exe.log
2009-09-20 10:37:11 ----D---- C:\Program Files\Nero
2009-09-20 10:37:11 ----D---- C:\Program Files\Fichiers communs\Nero
2009-09-20 10:37:11 ----D---- C:\Documents and Settings\All Users\Application Data\Nero
2009-09-20 10:08:02 ----A---- C:\Documents and Settings\Propriétaire\Application Data\tsdnwin.dll
2009-09-20 10:07:08 ----A---- C:\Documents and Settings\Propriétaire\Application Data\SamsungLiveUpdateConfig.ini
2009-09-20 10:07:06 ----D---- C:\Program Files\SAMSUNG
2009-09-19 18:25:02 ----D---- C:\QUARANTINE
2009-09-17 20:52:55 ----D---- C:\Temp
2009-09-14 18:56:39 ----D---- C:\Documents and Settings\All Users\Application Data\KONAMI
2009-09-14 18:47:09 ----D---- C:\Program Files\KONAMI
2009-09-13 14:09:12 ----D---- C:\Program Files\DAEMON Tools Toolbar
2009-09-13 14:09:03 ----D---- C:\Program Files\DAEMON Tools Lite
2009-09-08 18:45:03 ----HDC---- C:\WINDOWS\$NtUninstallKB968816_WM9$
2009-09-08 18:44:58 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
2009-09-07 12:03:59 ----A---- C:\adorage-protocol.txt
2009-09-06 08:51:47 ----D---- C:\Program Files\Western Digital
2009-09-03 20:49:04 ----D---- C:\Program Files\e-Carte Bleue LCL
2009-09-02 18:50:02 ----D---- C:\Documents and Settings\All Users\Application Data\RapidTyping
2009-09-02 18:50:01 ----D---- C:\Program Files\RapidTyping
2009-09-02 18:31:27 ----D---- C:\Documents and Settings\Propriétaire\Application Data\Canon
2009-09-02 18:30:02 ----HD---- C:\Documents and Settings\All Users\Application Data\CanonBJ
2009-09-02 18:29:58 ----A---- C:\WINDOWS\system32\CNMLM7J.DLL
2009-09-02 18:29:56 ----HD---- C:\WINDOWS\system32\CanonIJ Uninstaller Information
2009-09-02 18:29:52 ----A---- C:\WINDOWS\system32\CNCL170.DLL
2009-09-02 18:29:52 ----A---- C:\WINDOWS\system32\cncisco.dll
2009-09-02 18:29:52 ----A---- C:\WINDOWS\system32\CNCI170.DLL
2009-09-02 18:29:52 ----A---- C:\WINDOWS\system32\CNCC170.DLL
2009-09-02 18:29:47 ----HD---- C:\Program Files\CanonBJ
2009-09-02 18:28:43 ----D---- C:\Program Files\Canon
2009-08-31 19:19:44 ----A---- C:\WINDOWS\IsUn040c.exe
2009-08-31 18:58:28 ----HDC---- C:\WINDOWS\$NtUninstallKB929399$
2009-08-31 18:58:14 ----N---- C:\WINDOWS\system32\spmsg.dll
2009-08-31 16:10:52 ----D---- C:\Program Files\7-Zip
2009-08-31 15:56:25 ----A---- C:\WINDOWS\system32\CmdLineExt.dll
2009-08-31 15:55:47 ----D---- C:\Documents and Settings\Propriétaire\Application Data\Leadertech
2009-08-31 15:50:03 ----D---- C:\Program Files\EA Sports
2009-08-31 12:03:01 ----D---- C:\Program Files\Portal
2009-08-31 11:33:43 ----A---- C:\WINDOWS\system32\D3DX9_40.dll
2009-08-31 11:33:43 ----A---- C:\WINDOWS\system32\d3dx10_40.dll
2009-08-31 11:33:43 ----A---- C:\WINDOWS\system32\D3DCompiler_40.dll
2009-08-31 11:33:42 ----A---- C:\WINDOWS\system32\XAudio2_3.dll
2009-08-31 11:33:42 ----A---- C:\WINDOWS\system32\XAPOFX1_2.dll
2009-08-31 11:33:42 ----A---- C:\WINDOWS\system32\xactengine3_3.dll
2009-08-31 11:33:41 ----A---- C:\WINDOWS\system32\XAudio2_2.dll
2009-08-31 11:33:41 ----A---- C:\WINDOWS\system32\XAPOFX1_1.dll
2009-08-31 11:33:41 ----A---- C:\WINDOWS\system32\X3DAudio1_5.dll
2009-08-31 11:33:40 ----A---- C:\WINDOWS\system32\xactengine3_2.dll
2009-08-31 11:33:40 ----A---- C:\WINDOWS\system32\d3dx10_39.dll
2009-08-31 11:33:40 ----A---- C:\WINDOWS\system32\D3DCompiler_39.dll
2009-08-31 11:33:39 ----A---- C:\WINDOWS\system32\XAudio2_1.dll
2009-08-31 11:33:39 ----A---- C:\WINDOWS\system32\XAPOFX1_0.dll
2009-08-31 11:33:39 ----A---- C:\WINDOWS\system32\D3DX9_39.dll
2009-08-31 11:33:38 ----A---- C:\WINDOWS\system32\xactengine3_1.dll
2009-08-31 11:33:38 ----A---- C:\WINDOWS\system32\X3DAudio1_4.dll
2009-08-31 11:33:37 ----A---- C:\WINDOWS\system32\XAudio2_0.dll
2009-08-31 11:33:37 ----A---- C:\WINDOWS\system32\D3DX9_38.dll
2009-08-31 11:33:37 ----A---- C:\WINDOWS\system32\d3dx10_38.dll
2009-08-31 11:33:37 ----A---- C:\WINDOWS\system32\D3DCompiler_38.dll
2009-08-31 11:33:36 ----A---- C:\WINDOWS\system32\xactengine3_0.dll
2009-08-31 11:33:36 ----A---- C:\WINDOWS\system32\X3DAudio1_3.dll
2009-08-31 11:33:35 ----A---- C:\WINDOWS\system32\d3dx10_37.dll
2009-08-31 11:33:35 ----A---- C:\WINDOWS\system32\D3DCompiler_37.dll
2009-08-31 11:33:34 ----A---- C:\WINDOWS\system32\xactengine2_10.dll
2009-08-31 11:33:34 ----A---- C:\WINDOWS\system32\D3DX9_37.dll
2009-08-31 11:33:33 ----A---- C:\WINDOWS\system32\d3dx9_36.dll
2009-08-31 11:33:33 ----A---- C:\WINDOWS\system32\d3dx10_36.dll
2009-08-31 11:33:33 ----A---- C:\WINDOWS\system32\D3DCompiler_36.dll
2009-08-31 11:33:32 ----A---- C:\WINDOWS\system32\xactengine2_9.dll
2009-08-31 11:33:32 ----A---- C:\WINDOWS\system32\d3dx10_35.dll
2009-08-31 11:33:32 ----A---- C:\WINDOWS\system32\D3DCompiler_35.dll
2009-08-31 11:33:31 ----A---- C:\WINDOWS\system32\xactengine2_8.dll
2009-08-31 11:33:31 ----A---- C:\WINDOWS\system32\X3DAudio1_2.dll
2009-08-31 11:33:31 ----A---- C:\WINDOWS\system32\d3dx9_35.dll
2009-08-31 11:33:30 ----A---- C:\WINDOWS\system32\d3dx10_34.dll
2009-08-31 11:33:30 ----A---- C:\WINDOWS\system32\D3DCompiler_34.dll
2009-08-31 11:33:29 ----A---- C:\WINDOWS\system32\d3dx9_34.dll
2009-08-31 11:33:27 ----A---- C:\WINDOWS\system32\xactengine2_7.dll
2009-08-31 11:33:26 ----A---- C:\WINDOWS\system32\d3dx10_33.dll
2009-08-31 11:33:25 ----A---- C:\WINDOWS\system32\D3DCompiler_33.dll
2009-08-31 11:33:24 ----A---- C:\WINDOWS\system32\xactengine2_6.dll
2009-08-31 11:33:24 ----A---- C:\WINDOWS\system32\xactengine2_5.dll
2009-08-31 11:33:24 ----A---- C:\WINDOWS\system32\d3dx9_33.dll
2009-08-31 11:33:23 ----A---- C:\WINDOWS\system32\xactengine2_4.dll
2009-08-31 11:33:23 ----A---- C:\WINDOWS\system32\x3daudio1_1.dll
2009-08-31 11:33:23 ----A---- C:\WINDOWS\system32\d3dx9_32.dll
2009-08-31 11:33:22 ----A---- C:\WINDOWS\system32\xinput1_2.dll
2009-08-31 11:33:22 ----A---- C:\WINDOWS\system32\xactengine2_3.dll
2009-08-31 11:33:22 ----A---- C:\WINDOWS\system32\d3dx9_31.dll
2009-08-31 11:33:21 ----A---- C:\WINDOWS\system32\xinput1_1.dll
2009-08-31 11:33:21 ----A---- C:\WINDOWS\system32\xactengine2_2.dll
2009-08-31 11:33:21 ----A---- C:\WINDOWS\system32\xactengine2_1.dll
2009-08-31 11:33:20 ----A---- C:\WINDOWS\system32\xactengine2_0.dll
2009-08-31 11:33:20 ----A---- C:\WINDOWS\system32\x3daudio1_0.dll
2009-08-31 11:33:20 ----A---- C:\WINDOWS\system32\d3dx9_29.dll
2009-08-31 11:33:19 ----A---- C:\WINDOWS\system32\xinput9_1_0.dll
2009-08-31 11:33:18 ----A---- C:\WINDOWS\system32\d3dx9_27.dll
2009-08-31 11:33:18 ----A---- C:\WINDOWS\system32\d3dx9_26.dll
2009-08-31 11:33:17 ----A---- C:\WINDOWS\system32\d3dx9_25.dll
2009-08-31 11:33:17 ----A---- C:\WINDOWS\system32\d3dx9_24.dll
2009-08-31 11:32:56 ----D---- C:\WINDOWS\Logs
2009-08-31 11:32:41 ----HDC---- C:\WINDOWS\$NtUninstallWMFDist11$
2009-08-31 11:32:23 ----D---- C:\WINDOWS\system32\LogFiles
2009-08-31 11:32:19 ----HDC---- C:\WINDOWS\$NtUninstallWudf01000$
2009-08-31 11:28:28 ----D---- C:\Program Files\Ubisoft
2009-08-31 07:57:53 ----D---- C:\Program Files\Alcohol Soft
2009-08-30 21:56:37 ----D---- C:\Documents and Settings\Propriétaire\Application Data\vlc
2009-08-30 21:47:16 ----HDC---- C:\WINDOWS\$NtUninstallWdf01001$
2009-08-30 21:46:55 ----A---- C:\WINDOWS\system32\WdfCoInstaller01001.dll
2009-08-30 21:46:53 ----D---- C:\Program Files\Microsoft Xbox 360 Accessories
2009-08-30 21:46:49 ----A---- C:\WINDOWS\system32\xinput1_3.dll
2009-08-30 21:17:34 ----D---- C:\Documents and Settings\Propriétaire\Application Data\Macromedia
2009-08-30 21:17:33 ----D---- C:\Documents and Settings\Propriétaire\Application Data\Adobe
2009-08-30 21:14:02 ----A---- C:\WINDOWS\NeroDigital.ini
2009-08-30 21:00:52 ----D---- C:\Documents and Settings\Propriétaire\Application Data\BitSpirit
2009-08-30 21:00:44 ----D---- C:\Program Files\Fichiers communs\BitSpirit
2009-08-30 21:00:43 ----D---- C:\Program Files\BitSpirit
2009-08-30 20:58:12 ----D---- C:\Documents and Settings\Propriétaire\Application Data\DAEMON Tools
2009-08-27 16:22:13 ----A---- C:\WINDOWS\system32\h323log.txt
2009-08-27 16:17:15 ----A---- C:\WINDOWS\system32\usbui.dll
2009-08-27 16:16:15 ----A---- C:\WINDOWS\imsins.BAK
2009-08-27 16:16:13 ----SHD---- C:\WINDOWS\Installer
2009-08-27 16:16:13 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2009-08-27 16:16:12 ----D---- C:\Program Files\Fichiers communs\ODBC
2009-08-27 16:16:12 ----A---- C:\WINDOWS\ODBCINST.INI
2009-08-27 16:16:09 ----RD---- C:\Program Files
2009-08-27 16:16:09 ----D---- C:\Program Files\Fichiers communs\SpeechEngines
2009-08-27 16:16:09 ----D---- C:\Program Files\Fichiers communs\Microsoft Shared
2009-08-27 16:16:09 ----D---- C:\Program Files\Fichiers communs
2009-08-27 16:16:06 ----RA---- C:\WINDOWS\system32\kbdtuq.dll
2009-08-27 16:16:06 ----RA---- C:\WINDOWS\system32\kbdtuf.dll
2009-08-27 16:16:06 ----RA---- C:\WINDOWS\system32\kbdazel.dll
2009-08-27 16:16:04 ----RA---- C:\WINDOWS\system32\kbdycc.dll
2009-08-27 16:16:04 ----RA---- C:\WINDOWS\system32\kbduzb.dll
2009-08-27 16:16:04 ----RA---- C:\WINDOWS\system32\kbdur.dll
2009-08-27 16:16:04 ----RA---- C:\WINDOWS\system32\kbdtat.dll
2009-08-27 16:16:04 ----RA---- C:\WINDOWS\system32\kbdru1.dll
2009-08-27 16:16:04 ----RA---- C:\WINDOWS\system32\kbdru.dll
2009-08-27 16:16:04 ----RA---- C:\WINDOWS\system32\kbdmon.dll
2009-08-27 16:16:04 ----RA---- C:\WINDOWS\system32\kbdkyr.dll
2009-08-27 16:16:04 ----RA---- C:\WINDOWS\system32\kbdkaz.dll
2009-08-27 16:16:04 ----RA---- C:\WINDOWS\system32\kbdbu.dll
2009-08-27 16:16:04 ----RA---- C:\WINDOWS\system32\kbdblr.dll
2009-08-27 16:16:04 ----RA---- C:\WINDOWS\system32\kbdaze.dll
2009-08-27 16:16:03 ----RA---- C:\WINDOWS\system32\kbdhept.dll
2009-08-27 16:16:03 ----RA---- C:\WINDOWS\system32\kbdhela3.dll
2009-08-27 16:16:03 ----RA---- C:\WINDOWS\system32\kbdhela2.dll
2009-08-27 16:16:03 ----RA---- C:\WINDOWS\system32\kbdhe319.dll
2009-08-27 16:16:03 ----RA---- C:\WINDOWS\system32\kbdhe220.dll
2009-08-27 16:16:02 ----RA---- C:\WINDOWS\system32\kbdhe.dll
2009-08-27 16:16:02 ----RA---- C:\WINDOWS\system32\kbdgkl.dll
2009-08-27 16:16:01 ----RA---- C:\WINDOWS\system32\kbdlv1.dll
2009-08-27 16:16:01 ----RA---- C:\WINDOWS\system32\kbdlv.dll
2009-08-27 16:16:01 ----RA---- C:\WINDOWS\system32\kbdlt1.dll
2009-08-27 16:16:01 ----RA---- C:\WINDOWS\system32\kbdlt.dll
2009-08-27 16:16:01 ----RA---- C:\WINDOWS\system32\kbdest.dll
2009-08-27 16:16:00 ----RA---- C:\WINDOWS\system32\kbdycl.dll
2009-08-27 16:16:00 ----RA---- C:\WINDOWS\system32\kbdsl1.dll
2009-08-27 16:16:00 ----RA---- C:\WINDOWS\system32\kbdsl.dll
2009-08-27 16:16:00 ----RA---- C:\WINDOWS\system32\kbdro.dll
2009-08-27 16:16:00 ----RA---- C:\WINDOWS\system32\kbdpl1.dll
2009-08-27 16:16:00 ----RA---- C:\WINDOWS\system32\kbdpl.dll
2009-08-27 16:16:00 ----RA---- C:\WINDOWS\system32\kbdhu1.dll
2009-08-27 16:16:00 ----RA---- C:\WINDOWS\system32\kbdhu.dll
2009-08-27 16:16:00 ----RA---- C:\WINDOWS\system32\kbdcz2.dll
2009-08-27 16:16:00 ----RA---- C:\WINDOWS\system32\kbdcz1.dll
2009-08-27 16:16:00 ----RA---- C:\WINDOWS\system32\kbdcz.dll
2009-08-27 16:16:00 ----RA---- C:\WINDOWS\system32\kbdcr.dll
2009-08-27 16:16:00 ----RA---- C:\WINDOWS\system32\KBDAL.DLL
2009-08-27 16:15:58 ----A---- C:\WINDOWS\system32\irclass.dll
2009-08-27 16:15:58 ----A---- C:\WINDOWS\system32\dgsetup.dll
2009-08-27 16:15:58 ----A---- C:\WINDOWS\system32\dgrpsetu.dll
2009-08-27 16:15:57 ----A---- C:\WINDOWS\system32\spxcoins.dll
2009-08-27 16:15:57 ----A---- C:\WINDOWS\system32\EqnClass.Dll
2009-08-27 16:15:56 ----N---- C:\WINDOWS\system32\CONFIG.TMP
2009-08-27 16:15:56 ----A---- C:\WINDOWS\TASKMAN.EXE
2009-08-27 16:15:55 ----A---- C:\WINDOWS\system32\batt.dll
2009-08-27 16:15:55 ----A---- C:\WINDOWS\NOTEPAD.EXE
2009-08-27 16:15:54 ----A---- C:\WINDOWS\system32\storprop.dll
2009-08-27 16:15:48 ----ASH---- C:\Documents and Settings\All Users\Application Data\desktop.ini
2009-08-27 16:15:47 ----RA---- C:\WINDOWS\SET8.tmp
2009-08-27 16:15:45 ----RA---- C:\WINDOWS\SET4.tmp
2009-08-27 16:15:42 ----RA---- C:\WINDOWS\SET3.tmp
2009-08-27 16:15:36 ----D---- C:\WINDOWS\system32\CatRoot2
2009-08-27 16:15:36 ----D---- C:\WINDOWS\system32\CatRoot
2009-08-27 16:15:30 ----SD---- C:\Documents and Settings\All Users\Application Data\Microsoft
2009-08-27 16:15:13 ----A---- C:\WINDOWS\setuplog.txt
2009-08-27 16:15:11 ----SHD---- C:\System Volume Information
2009-08-27 16:15:11 ----D---- C:\Documents and Settings
2009-08-27 16:14:29 ----RSH---- C:\boot.ini
2009-08-27 16:09:07 ----SHD---- C:\RECYCLER
2009-08-27 16:09:06 ----RSHDC---- C:\WINDOWS\system32\dllcache
2009-08-27 16:09:06 ----RSD---- C:\WINDOWS\Fonts
2009-08-27 16:09:06 ----RD---- C:\WINDOWS\Web
2009-08-27 16:09:06 ----HD---- C:\WINDOWS\inf
2009-08-27 16:09:06 ----D---- C:\WINDOWS\WinSxS
2009-08-27 16:09:06 ----D---- C:\WINDOWS\twain_32
2009-08-27 16:09:06 ----D---- C:\WINDOWS\Temp
2009-08-27 16:09:06 ----D---- C:\WINDOWS\system32\wins
2009-08-27 16:09:06 ----D---- C:\WINDOWS\system32\wbem
2009-08-27 16:09:06 ----D---- C:\WINDOWS\system32\usmt
2009-08-27 16:09:06 ----D---- C:\WINDOWS\system32\spool
2009-08-27 16:09:06 ----D---- C:\WINDOWS\system32\ShellExt
2009-08-27 16:09:06 ----D---- C:\WINDOWS\system32\Setup
2009-08-27 16:09:06 ----D---- C:\WINDOWS\system32\ras
2009-08-27 16:09:06 ----D---- C:\WINDOWS\system32\oobe
2009-08-27 16:09:06 ----D---- C:\WINDOWS\system32\npp
2009-08-27 16:09:06 ----D---- C:\WINDOWS\system32\mui
2009-08-27 16:09:06 ----D---- C:\WINDOWS\system32\inetsrv
2009-08-27 16:09:06 ----D---- C:\WINDOWS\system32\IME
2009-08-27 16:09:06 ----D---- C:\WINDOWS\system32\icsxml
2009-08-27 16:09:06 ----D---- C:\WINDOWS\system32\ias
2009-08-27 16:09:06 ----D---- C:\WINDOWS\system32\fr-fr
2009-08-27 16:09:06 ----D---- C:\WINDOWS\system32\fr
2009-08-27 16:09:06 ----D---- C:\WINDOWS\system32\export
2009-08-27 16:09:06 ----D---- C:\WINDOWS\system32\drivers
2009-08-27 16:09:06 ----D---- C:\WINDOWS\system32\dhcp
2009-08-27 16:09:06 ----D---- C:\WINDOWS\system32\config
2009-08-27 16:09:06 ----D---- C:\WINDOWS\system32\3com_dmi
2009-08-27 16:09:06 ----D---- C:\WINDOWS\system32\3076
2009-08-27 16:09:06 ----D---- C:\WINDOWS\system32\2052
2009-08-27 16:09:06 ----D---- C:\WINDOWS\system32\1054
2009-08-27 16:09:06 ----D---- C:\WINDOWS\system32\1042
2009-08-27 16:09:06 ----D---- C:\WINDOWS\system32\1041
2009-08-27 16:09:06 ----D---- C:\WINDOWS\system32\1037
2009-08-27 16:09:06 ----D---- C:\WINDOWS\system32\1036
2009-08-27 16:09:06 ----D---- C:\WINDOWS\system32\1033
2009-08-27 16:09:06 ----D---- C:\WINDOWS\system32\1031
2009-08-27 16:09:06 ----D---- C:\WINDOWS\system32\1028
2009-08-27 16:09:06 ----D---- C:\WINDOWS\system32\1025
2009-08-27 16:09:06 ----D---- C:\WINDOWS\system32
2009-08-27 16:09:06 ----D---- C:\WINDOWS\system
2009-08-27 16:09:06 ----D---- C:\WINDOWS\security
2009-08-27 16:09:06 ----D---- C:\WINDOWS\Resources
2009-08-27 16:09:06 ----D---- C:\WINDOWS\repair
2009-08-27 16:09:06 ----D---- C:\WINDOWS\Provisioning
2009-08-27 16:09:06 ----D---- C:\WINDOWS\PeerNet
2009-08-27 16:09:06 ----D---- C:\WINDOWS\pchealth
2009-08-27 16:09:06 ----D---- C:\WINDOWS\Network Diagnostic
2009-08-27 16:09:06 ----D---- C:\WINDOWS\mui
2009-08-27 16:09:06 ----D---- C:\WINDOWS\msapps
2009-08-27 16:09:06 ----D---- C:\WINDOWS\msagent
2009-08-27 16:09:06 ----D---- C:\WINDOWS\Media
2009-08-27 16:09:06 ----D---- C:\WINDOWS\L2Schemas
2009-08-27 16:09:06 ----D---- C:\WINDOWS\java
2009-08-27 16:09:06 ----D---- C:\WINDOWS\ime
2009-08-27 16:09:06 ----D---- C:\WINDOWS\Help
2009-08-27 16:09:06 ----D---- C:\WINDOWS\Driver Cache
2009-08-27 16:09:06 ----D---- C:\WINDOWS\Debug
2009-08-27 16:09:06 ----D---- C:\WINDOWS\Cursors
2009-08-27 16:09:06 ----D---- C:\WINDOWS\Connection Wizard
2009-08-27 16:09:06 ----D---- C:\WINDOWS\Config
2009-08-27 16:09:06 ----D---- C:\WINDOWS\AppPatch
2009-08-27 16:09:06 ----D---- C:\WINDOWS\addins
2009-08-27 16:09:06 ----D---- C:\WINDOWS
2009-08-27 16:03:30 ----D---- C:\WINDOWS\system32\AGEIA
2009-08-27 16:03:30 ----D---- C:\Program Files\AGEIA Technologies
2009-08-27 16:03:21 ----D---- C:\Program Files\Fichiers communs\Wise Installation Wizard
2009-08-27 16:03:17 ----D---- C:\Program Files\NVIDIA Corporation
2009-08-27 16:03:14 ----D---- C:\Documents and Settings\All Users\Application Data\NVIDIA Corporation
2009-08-27 16:02:55 ----A---- C:\WINDOWS\system32\nvudisp.exe
2009-08-27 16:01:44 ----A---- C:\WINDOWS\system32\NVUNINST.EXE
2009-08-27 16:01:35 ----D---- C:\NVIDIA
2009-08-27 15:54:46 ----D---- C:\Program Files\ma-config.com
2009-08-27 15:54:46 ----D---- C:\Documents and Settings\All Users\Application Data\ma-config.com
2009-08-27 15:48:36 ----D---- C:\Documents and Settings\Propriétaire\Application Data\Mozilla
2009-08-27 15:45:09 ----D---- C:\WINDOWS\ie8updates
2009-08-27 15:44:57 ----D---- C:\WINDOWS\WBEM
2009-08-27 15:44:11 ----HDC---- C:\WINDOWS\ie8
2009-08-27 15:40:54 ----HDC---- C:\WINDOWS\$NtUninstallKB961371-v2$
2009-08-27 15:40:50 ----HDC---- C:\WINDOWS\$NtUninstallKB970653-v3$
2009-08-27 15:40:47 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$
2009-08-27 15:40:43 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$
2009-08-27 15:40:39 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$
2009-08-27 15:40:35 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$
2009-08-27 15:40:31 ----HDC---- C:\WINDOWS\$NtUninstallKB973354$
2009-08-27 15:40:27 ----HDC---- C:\WINDOWS\$NtUninstallKB956744$
2009-08-27 15:40:23 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$
2009-08-27 15:40:18 ----HDC---- C:\WINDOWS\$NtUninstallKB973540_WM9$
2009-08-27 15:40:14 ----HDC---- C:\WINDOWS\$NtUninstallKB971557$
2009-08-27 15:40:08 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$
2009-08-27 15:39:33 ----A---- C:\WINDOWS\system32\MRT.exe
2009-08-27 15:39:24 ----HDC---- C:\WINDOWS\$NtUninstallKB972260$
2009-08-27 15:39:21 ----HDC---- C:\WINDOWS\$NtUninstallKB973346$
2009-08-27 15:39:16 ----HDC---- C:\WINDOWS\$NtUninstallKB971633$
2009-08-27 15:39:12 ----HDC---- C:\WINDOWS\$NtUninstallKB970238$
2009-08-27 15:39:08 ----HDC---- C:\WINDOWS\$NtUninstallKB968537$
2009-08-27 15:39:04 ----HDC---- C:\WINDOWS\$NtUninstallKB961501$
2009-08-27 15:39:03 ----D---- C:\Program Files\MSXML 4.0
2009-08-27 15:38:56 ----HDC---- C:\WINDOWS\$NtUninstallKB959426$
2009-08-27 15:38:52 ----HDC---- C:\WINDOWS\$NtUninstallKB960803$
2009-08-27 15:38:47 ----HDC---- C:\WINDOWS\$NtUninstallKB952004$
2009-08-27 15:38:37 ----HDC---- C:\WINDOWS\$NtUninstallKB956572$
2009-08-27 15:38:32 ----HDC---- C:\WINDOWS\$NtUninstallKB923561$
2009-08-27 15:38:26 ----HDC---- C:\WINDOWS\$NtUninstallKB967715$
2009-08-27 15:38:24 ----HDC---- C:\WINDOWS\$NtUninstallKB938464-v2$
2009-08-27 15:38:20 ----HDC---- C:\WINDOWS\$NtUninstallKB960225$
2009-08-27 15:38:16 ----HDC---- C:\WINDOWS\$NtUninstallKB958687$
2009-08-27 15:38:13 ----HDC---- C:\WINDOWS\$NtUninstallKB956803$
2009-08-27 15:38:09 ----HDC---- C:\WINDOWS\$NtUninstallKB952069_WM9$
2009-08-27 15:38:05 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$
2009-08-27 15:38:02 ----HDC---- C:\WINDOWS\$NtUninstallKB954600$
2009-08-27 15:37:58 ----HDC---- C:\WINDOWS\$NtUninstallKB957097$
2009-08-27 15:37:54 ----HDC---- C:\WINDOWS\$NtUninstallKB954459$
2009-08-27 15:37:50 ----HDC---- C:\WINDOWS\$NtUninstallKB955069$
2009-08-27 15:37:46 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$
2009-08-27 15:37:42 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2009-08-27 15:37:38 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2009-08-27 15:37:35 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2009-08-27 15:37:32 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2009-08-27 15:37:28 ----HDC---- C:\WINDOWS\$NtUninstallKB951066$
2009-08-27 15:37:23 ----HDC---- C:\WINDOWS\$NtUninstallKB951748$
2009-08-27 15:37:18 ----HDC---- C:\WINDOWS\$NtUninstallKB951978$
2009-08-27 15:37:15 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2009-08-27 15:37:12 ----HDC---- C:\WINDOWS\$NtUninstallKB923689$
2009-08-27 15:37:05 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2009-08-27 15:36:58 ----HDC---- C:\WINDOWS\$NtUninstallKB941569$
2009-08-27 15:30:17 ----D---- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
2009-08-27 15:27:42 ----D---- C:\WINDOWS\system32\PreInstall
2009-08-27 15:27:41 ----A---- C:\WINDOWS\system32\spupdsvc.exe
2009-08-27 15:27:40 ----HDC---- C:\WINDOWS\$NtUninstallKB898461$
2009-08-27 15:27:40 ----HD---- C:\WINDOWS\$hf_mig$
2009-08-27 15:25:50 ----A---- C:\WINDOWS\system32\wups2.dll
2009-08-27 15:25:50 ----A---- C:\WINDOWS\system32\wucltui.dll.mui
2009-08-27 15:25:49 ----D---- C:\WINDOWS\system32\SoftwareDistribution
2009-08-27 15:25:49 ----A---- C:\WINDOWS\system32\wuaueng.dll.mui
2009-08-27 15:25:49 ----A---- C:\WINDOWS\system32\wuapi.dll.mui
2009-08-27 15:19:41 ----D---- C:\Program Files\Fichiers communs\Cisco Systems
2009-08-27 15:19:41 ----D---- C:\Documents and Settings\All Users\Application Data\McAfee
2009-08-27 15:19:41 ----A---- C:\WINDOWS\system32\msvcr71.dll
2009-08-27 15:19:41 ----A---- C:\WINDOWS\system32\msvcp71.dll
2009-08-27 15:19:41 ----A---- C:\WINDOWS\system32\epoPGPsdk.dll.sig
2009-08-27 15:19:41 ----A---- C:\WINDOWS\system32\epoPGPsdk.dll
2009-08-27 15:19:19 ----D---- C:\Program Files\McAfee
2009-08-27 15:19:19 ----D---- C:\Program Files\Fichiers communs\McAfee
2009-08-27 15:15:35 ----D---- C:\Program Files\Mozilla Firefox
2009-08-27 15:13:17 ----D---- C:\Program Files\Microsoft Works
2009-08-27 15:13:14 ----D---- C:\Program Files\MSBuild
2009-08-27 15:13:10 ----D---- C:\Program Files\Microsoft Visual Studio
2009-08-27 15:13:09 ----D---- C:\Program Files\Fichiers communs\DESIGNER
2009-08-27 15:11:18 ----D---- C:\WINDOWS\SHELLNEW
2009-08-27 15:11:09 ----D---- C:\Program Files\Microsoft Office
2009-08-27 15:11:08 ----D---- C:\Documents and Settings\All Users\Application Data\Microsoft Help
2009-08-27 15:10:58 ----RHD---- C:\MSOCache
2009-08-27 15:07:57 ----D---- C:\Documents and Settings\Propriétaire\Application Data\Ahead
2009-08-27 15:07:03 ----A---- C:\WINDOWS\system32\d3dx9_30.dll
2009-08-27 15:07:03 ----A---- C:\WINDOWS\system32\d3dx9_28.dll
2009-08-27 15:00:53 ----D---- C:\Program Files\VideoLAN
2009-08-27 14:58:04 ----D---- C:\Documents and Settings\Propriétaire\Application Data\TigerPlayer
2009-08-27 14:56:35 ----D---- C:\Documents and Settings\All Users\Application Data\Apple Computer
2009-08-27 14:56:27 ----D---- C:\WINDOWS\RegisteredPackages
2009-08-27 14:56:15 ----D---- C:\Program Files\MpcStar
2009-08-27 14:53:22 ----D---- C:\Documents and Settings\All Users\Application Data\Adobe
2009-08-27 14:53:18 ----D---- C:\Program Files\Fichiers communs\Adobe
2009-08-27 14:48:02 ----D---- C:\Program Files\WinRAR
2009-08-27 14:43:50 ----A---- C:\WINDOWS\system32\wpa.bak
2009-08-27 14:39:33 ----D---- C:\WINDOWS\system32\Lang
2009-08-27 14:38:18 ----RA---- C:\WINDOWS\system32\AsIO.dll
2009-08-27 14:38:16 ----D---- C:\Program Files\ASUS
2009-08-27 14:36:26 ----RA---- C:\WINDOWS\system32\RtNicProp32.dll
2009-08-27 14:36:10 ----D---- C:\WINDOWS\OPTIONS
2009-08-27 14:34:57 ----D---- C:\WINDOWS\system32\RTCOM
2009-08-27 14:34:55 ----A---- C:\WINDOWS\system32\ksuser.dll
2009-08-27 14:34:52 ----A---- C:\WINDOWS\vncutil.exe
2009-08-27 14:34:52 ----A---- C:\WINDOWS\SOUNDMAN.EXE
2009-08-27 14:34:51 ----A---- C:\WINDOWS\system32\RtkCoInstXP.dll
2009-08-27 14:34:51 ----A---- C:\WINDOWS\SkyTel.exe
2009-08-27 14:34:51 ----A---- C:\WINDOWS\RtlUpd.exe
2009-08-27 14:34:51 ----A---- C:\WINDOWS\RtkAudioService.exe
2009-08-27 14:34:50 ----A---- C:\WINDOWS\RTLCPL.EXE
2009-08-27 14:34:47 ----A---- C:\WINDOWS\RTHDCPL.EXE
2009-08-27 14:34:46 ----A---- C:\WINDOWS\MicCal.exe
2009-08-27 14:34:44 ----A---- C:\WINDOWS\ALCWZRD.EXE
2009-08-27 14:34:44 ----A---- C:\WINDOWS\ALCMTR.EXE
2009-08-27 14:34:43 ----D---- C:\Program Files\Realtek
2009-08-27 14:34:34 ----R---- C:\WINDOWS\RtlExUpd.dll
2009-08-27 14:33:29 ----D---- C:\WINDOWS\system32\ReinstallBackups
2009-08-27 14:33:27 ----DC---- C:\WINDOWS\system32\DRVSTORE
2009-08-27 14:33:27 ----D---- C:\Program Files\AMD
2009-08-27 14:32:59 ----D---- C:\Documents and Settings\Propriétaire\Application Data\InstallShield
2009-08-27 14:32:02 ----HD---- C:\Program Files\InstallShield Installation Information
2009-08-27 14:31:40 ----D---- C:\Program Files\Fichiers communs\InstallShield
2009-08-27 14:31:36 ----A---- C:\WINDOWS\Language_trs.ini
2009-08-27 14:31:08 ----A---- C:\WINDOWS\Ascd_tmp.ini
2009-08-27 14:29:48 ----D---- C:\Documents and Settings\Propriétaire\Application Data\Identities
2009-08-27 14:29:47 ----HD---- C:\Program Files\Uninstall Information
2009-08-27 14:29:43 ----ASH---- C:\Documents and Settings\Propriétaire\Application Data\desktop.ini
2009-08-27 14:29:42 ----SD---- C:\Documents and Settings\Propriétaire\Application Data\Microsoft
2009-08-27 14:29:39 ----D---- C:\WINDOWS\SoftwareDistribution
2009-08-27 14:29:38 ----SD---- C:\WINDOWS\system32\Microsoft
2009-08-27 14:29:38 ----D---- C:\WINDOWS\Prefetch
2009-08-27 14:29:38 ----A---- C:\WINDOWS\SchedLgU.Txt
2009-08-27 14:26:33 ----D---- C:\WINDOWS\system32\xircom
2009-08-27 14:26:33 ----D---- C:\Program Files\xerox
2009-08-27 14:26:33 ----D---- C:\Program Files\microsoft frontpage
2009-08-27 14:26:26 ----A---- C:\WINDOWS\control.ini
2009-08-27 14:26:26 ----A---- C:\AUTOEXEC.BAT
2009-08-27 14:26:19 ----A---- C:\WINDOWS\OEWABLog.txt
2009-08-27 14:26:16 ----A---- C:\WINDOWS\system32\mapi32.dll
2009-08-27 14:25:41 ----SD---- C:\WINDOWS\Downloaded Program Files
2009-08-27 14:25:41 ----RD---- C:\WINDOWS\Offline Web Pages
2009-08-27 14:25:40 ----RAH---- C:\WINDOWS\system32\logonui.exe.manifest
2009-08-27 14:25:36 ----RAH---- C:\WINDOWS\system32\cdplayer.exe.manifest
2009-08-27 14:25:33 ----HD---- C:\Program Files\WindowsUpdate
2009-08-27 14:25:30 ----D---- C:\Program Files\Services en ligne
2009-08-27 14:25:17 ----D---- C:\WINDOWS\system32\DirectX
2009-08-27 14:25:13 ----A---- C:\WINDOWS\system32\atrace.dll
2009-08-27 14:25:11 ----A---- C:\WINDOWS\system32\desktop.ini
2009-08-27 14:25:11 ----A---- C:\WINDOWS\desktop.ini
2009-08-27 14:25:06 ----A---- C:\WINDOWS\system32\nmevtmsg.dll
2009-08-27 14:25:05 ----A---- C:\WINDOWS\system32\acctres.dll
2009-08-27 14:25:04 ----D---- C:\Program Files\Fichiers communs\Services
2009-08-27 14:25:03 ----SD---- C:\WINDOWS\Tasks
2009-08-27 14:25:03 ----A---- C:\WINDOWS\system32\icfgnt5.dll
2009-08-27 14:25:02 ----D---- C:\Program Files\Fichiers communs\MSSoap
2009-08-27 14:24:59 ----D---- C:\WINDOWS\srchasst
2009-08-27 14:24:58 ----D---- C:\WINDOWS\system32\Macromed
2009-08-27 14:24:56 ----A---- C:\WINDOWS\system32\wuweb.dll
2009-08-27 14:24:56 ----A---- C:\WINDOWS\system32\wucltui.dll
2009-08-27 14:24:56 ----A---- C:\WINDOWS\system32\wuauserv.dll
2009-08-27 14:24:56 ----A---- C:\WINDOWS\system32\wuaueng1.dll
2009-08-27 14:24:55 ----A---- C:\WINDOWS\system32\wups.dll
2009-08-27 14:24:55 ----A---- C:\WINDOWS\system32\wuaueng.dll
2009-08-27 14:24:55 ----A---- C:\WINDOWS\system32\wuauclt1.exe
2009-08-27 14:24:55 ----A---- C:\WINDOWS\system32\wuauclt.exe
2009-08-27 14:24:55 ----A---- C:\WINDOWS\system32\wuapi.dll
2009-08-27 14:24:55 ----A---- C:\WINDOWS\system32\qmgrprxy.dll
2009-08-27 14:24:55 ----A---- C:\WINDOWS\system32\qmgr.dll
2009-08-27 14:24:55 ----A---- C:\WINDOWS\system32\bitsprx4.dll
2009-08-27 14:24:55 ----A---- C:\WINDOWS\system32\bitsprx3.dll
2009-08-27 14:24:55 ----A---- C:\WINDOWS\system32\bitsprx2.dll
2009-08-27 14:24:51 ----D---- C:\Program Files\Movie Maker
2009-08-27 14:24:38 ----A---- C:\WINDOWS\system32\safrslv.dll
2009-08-27 14:24:38 ----A---- C:\WINDOWS\system32\safrdm.dll
2009-08-27 14:24:38 ----A---- C:\WINDOWS\system32\safrcdlg.dll
2009-08-27 14:24:38 ----A---- C:\WINDOWS\system32\racpldlg.dll
2009-08-27 14:24:35 ----D---- C:\WINDOWS\system32\Restore
2009-08-27 14:24:35 ----A---- C:\WINDOWS\system32\srsvc.dll
2009-08-27 14:24:35 ----A---- C:\WINDOWS\system32\srrstr.dll
2009-08-27 14:24:35 ----A---- C:\WINDOWS\system32\srclient.dll
2009-08-27 14:24:35 ----A---- C:\WINDOWS\system32\fltMc.exe
2009-08-27 14:24:35 ----A---- C:\WINDOWS\system32\fltlib.dll
2009-08-27 14:24:34 ----A---- C:\WINDOWS\system32\nmmkcert.dll
2009-08-27 14:24:34 ----A---- C:\WINDOWS\system32\msconf.dll
2009-08-27 14:24:34 ----A---- C:\WINDOWS\system32\mnmsrvc.exe
2009-08-27 14:24:34 ----A---- C:\WINDOWS\system32\mnmdd.dll
2009-08-27 14:24:34 ----A---- C:\WINDOWS\system32\isrdbg32.dll
2009-08-27 14:24:34 ----A---- C:\WINDOWS\system32\ils.dll
2009-08-27 14:24:32 ----D---- C:\Program Files\NetMeeting
2009-08-27 14:24:32 ----A---- C:\WINDOWS\system32\msoert2.dll
2009-08-27 14:24:32 ----A---- C:\WINDOWS\system32\msoeacct.dll
2009-08-27 14:24:31 ----A---- C:\WINDOWS\system32\inetres.dll
2009-08-27 14:24:31 ----A---- C:\WINDOWS\system32\inetcomm.dll
2009-08-27 14:24:29 ----D---- C:\Program Files\Outlook Express
2009-08-27 14:24:29 ----A---- C:\WINDOWS\system32\schedsvc.dll
2009-08-27 14:24:29 ----A---- C:\WINDOWS\system32\mstinit.exe
2009-08-27 14:24:29 ----A---- C:\WINDOWS\system32\mstask.dll
2009-08-27 14:24:29 ----A---- C:\WINDOWS\system32\icwphbk.dll
2009-08-27 14:24:28 ----A---- C:\WINDOWS\system32\isign32.dll
2009-08-27 14:24:28 ----A---- C:\WINDOWS\system32\inetcfg.dll
2009-08-27 14:24:28 ----A---- C:\WINDOWS\system32\icwdial.dll
2009-08-27 14:24:24 ----D---- C:\Program Files\Fichiers communs\System
2009-08-27 14:24:23 ----D---- C:\Program Files\Internet Explorer
2009-08-27 14:24:14 ----D---- C:\Program Files\ComPlus Applications
2009-08-27 14:24:12 ----A---- C:\WINDOWS\vbaddin.ini
2009-08-27 14:24:12 ----A---- C:\WINDOWS\vb.ini
2009-08-27 14:24:08 ----D---- C:\WINDOWS\Registration
2009-08-27 14:23:47 ----D---- C:\Program Files\Windows Media Player
2009-08-27 14:23:47 ----D---- C:\Program Files\Online Services
2009-08-27 14:23:43 ----D---- C:\Program Files\Messenger
2009-08-27 14:23:40 ----D---- C:\Program Files\MSN Gaming Zone
2009-08-27 14:23:40 ----A---- C:\WINDOWS\system32\write.exe
2009-08-27 14:23:34 ----A---- C:\WINDOWS\system32\sndvol32.exe
2009-08-27 14:23:33 ----A---- C:\WINDOWS\system32\winchat.exe
2009-08-27 14:23:33 ----A---- C:\WINDOWS\system32\hticons.dll
2009-08-27 14:23:33 ----A---- C:\WINDOWS\system32\avwav.dll
2009-08-27 14:23:33 ----A---- C:\WINDOWS\system32\avtapi.dll
2009-08-27 14:23:33 ----A---- C:\WINDOWS\system32\avmeter.dll
2009-08-27 14:23:28 ----A---- C:\WINDOWS\system32\winmine.exe
2009-08-27 14:23:28 ----A---- C:\WINDOWS\system32\sol.exe
2009-08-27 14:23:28 ----A---- C:\WINDOWS\system32\getuname.dll
2009-08-27 14:23:28 ----A---- C:\WINDOWS\system32\charmap.exe
2009-08-27 14:23:28 ----A---- C:\WINDOWS\system32\calc.exe
2009-08-27 14:23:27 ----A---- C:\WINDOWS\system32\usrlogon.cmd
2009-08-27 14:23:27 ----A---- C:\WINDOWS\system32\tsshutdn.exe
2009-08-27 14:23:27 ----A---- C:\WINDOWS\system32\tslabels.ini
2009-08-27 14:23:27 ----A---- C:\WINDOWS\system32\tskill.exe
2009-08-27 14:23:27 ----A---- C:\WINDOWS\system32\tsdiscon.exe
2009-08-27 14:23:27 ----A---- C:\WINDOWS\system32\tscon.exe
2009-08-27 14:23:27 ----A---- C:\WINDOWS\system32\shadow.exe
2009-08-27 14:23:27 ----A---- C:\WINDOWS\system32\rwinsta.exe
2009-08-27 14:23:27 ----A---- C:\WINDOWS\system32\reset.exe
2009-08-27 14:23:27 ----A---- C:\WINDOWS\system32\regini.exe
2009-08-27 14:23:27 ----A---- C:\WINDOWS\system32\rdpcfgex.dll
2009-08-27 14:23:27 ----A---- C:\WINDOWS\system32\qwinsta.exe
2009-08-27 14:23:27 ----A---- C:\WINDOWS\system32\qappsrv.exe
2009-08-27 14:23:27 ----A---- C:\WINDOWS\system32\mshearts.exe
2009-08-27 14:23:27 ----A---- C:\WINDOWS\system32\msg.exe
2009-08-27 14:23:27 ----A---- C:\WINDOWS\system32\freecell.exe
2009-08-27 14:23:26 ----A---- C:\WINDOWS\system32\msdtcprf.ini
2009-08-27 14:23:26 ----A---- C:\WINDOWS\system32\logoff.exe
2009-08-27 14:23:26 ----A---- C:\WINDOWS\system32\cdmodem.dll
2009-08-27 14:23:23 ----A---- C:\WINDOWS\system32\wmimgmt.msc
2009-08-27 14:23:12 ----D---- C:\Program Files\MSN
2009-08-27 14:23:11 ----A---- C:\WINDOWS\system32\sndrec32.exe
2009-08-27 14:23:11 ----A---- C:\WINDOWS\system32\mplay32.exe
2009-08-27 14:23:11 ----A---- C:\WINDOWS\system32\hypertrm.dll
2009-08-27 14:23:11 ----A---- C:\WINDOWS\system32\accwiz.exe
2009-08-27 14:23:10 ----D---- C:\Program Files\Windows NT
2009-08-27 14:23:10 ----A---- C:\WINDOWS\system32\spider.exe
2009-08-27 14:23:10 ----A---- C:\WINDOWS\system32\mspaint.exe
2009-08-27 14:23:10 ----A---- C:\WINDOWS\system32\clipbrd.exe
2009-08-27 14:23:09 ----A---- C:\WINDOWS\system32\tsgqec.dll
2009-08-27 14:23:09 ----A---- C:\WINDOWS\system32\tscfgwmi.dll
2009-08-27 14:23:09 ----A---- C:\WINDOWS\system32\rhttpaa.dll
2009-08-27 14:23:08 ----A---- C:\WINDOWS\system32\remotepg.dll
2009-08-27 14:23:08 ----A---- C:\WINDOWS\system32\rdshost.exe
2009-08-27 14:23:08 ----A---- C:\WINDOWS\system32\rdsaddin.exe
2009-08-27 14:23:08 ----A---- C:\WINDOWS\system32\mstscax.dll
2009-08-27 14:23:08 ----A---- C:\WINDOWS\system32\mstsc.exe
2009-08-27 14:23:08 ----A---- C:\WINDOWS\system32\aaclient.dll
2009-08-27 14:23:07 ----D---- C:\WINDOWS\system32\MsDtc
2009-08-27 14:23:07 ----A---- C:\WINDOWS\system32\termsrv.dll
2009-08-27 14:23:07 ----A---- C:\WINDOWS\system32\sessmgr.exe
2009-08-27 14:23:07 ----A---- C:\WINDOWS\system32\rdpwsx.dll
2009-08-27 14:23:07 ----A---- C:\WINDOWS\system32\rdpsnd.dll
2009-08-27 14:23:07 ----A---- C:\WINDOWS\system32\rdpclip.exe
2009-08-27 14:23:07 ----A---- C:\WINDOWS\system32\rdchost.dll
2009-08-27 14:23:07 ----A---- C:\WINDOWS\system32\qprocess.exe
2009-08-27 14:23:07 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
2009-08-27 14:23:07 ----A---- C:\WINDOWS\system32\icaapi.dll
2009-08-27 14:23:07 ----A---- C:\WINDOWS\system32\cfgbkend.dll
2009-08-27 14:23:06 ----A---- C:\WINDOWS\system32\xolehlp.dll
2009-08-27 14:23:06 ----A---- C:\WINDOWS\system32\mtxoci.dll
2009-08-27 14:23:06 ----A---- C:\WINDOWS\system32\msdtctm.dll
2009-08-27 14:23:06 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2009-08-27 14:23:06 ----A---- C:\WINDOWS\system32\msdtclog.dll
2009-08-27 14:23:06 ----A---- C:\WINDOWS\system32\msdtc.exe
2009-08-27 14:23:05 ----D---- C:\WINDOWS\system32\Com
2009-08-27 14:23:05 ----A---- C:\WINDOWS\system32\stclient.dll
2009-08-27 14:23:05 ----A---- C:\WINDOWS\system32\mtxlegih.dll
2009-08-27 14:23:05 ----A---- C:\WINDOWS\system32\mtxex.dll
2009-08-27 14:23:05 ----A---- C:\WINDOWS\system32\mtxdm.dll
2009-08-27 14:23:05 ----A---- C:\WINDOWS\system32\dcomcnfg.exe
2009-08-27 14:23:05 ----A---- C:\WINDOWS\system32\comrepl.dll
2009-08-27 14:23:05 ----A---- C:\WINDOWS\system32\comaddin.dll
2009-08-27 14:23:05 ----A---- C:\WINDOWS\system32\colbact.dll
2009-08-27 14:23:05 ----A---- C:\WINDOWS\system32\catsrvps.dll
2009-08-27 14:23:04 ----A---- C:\WINDOWS\system32\comuid.dll
2009-08-27 14:23:04 ----A---- C:\WINDOWS\system32\comsvcs.dll
2009-08-27 14:23:04 ----A---- C:\WINDOWS\system32\comsnap.dll
2009-08-27 14:23:04 ----A---- C:\WINDOWS\system32\clbcatex.dll
2009-08-27 14:23:04 ----A---- C:\WINDOWS\system32\catsrvut.dll
2009-08-27 14:23:04 ----A---- C:\WINDOWS\system32\catsrv.dll
2009-08-27 14:23:03 ----A---- C:\WINDOWS\system32\clbcatq.dll
2009-08-27 14:22:59 ----A---- C:\WINDOWS\system32\servdeps.dll
2009-08-27 14:22:59 ----A---- C:\WINDOWS\system32\mmfutil.dll
2009-08-27 14:22:59 ----A---- C:\WINDOWS\system32\licwmi.dll
2009-08-27 14:22:59 ----A---- C:\WINDOWS\system32\cmprops.dll
2009-08-17 02:04:24 ----A---- C:\WINDOWS\system32\nvcpluir.dll
2009-08-17 02:04:24 ----A---- C:\WINDOWS\system32\nvcplui.exe
2009-08-17 02:04:14 ----A---- C:\WINDOWS\system32\nvrszht.dll
2009-08-17 02:04:14 ----A---- C:\WINDOWS\system32\nvrszhc.dll
2009-08-17 02:04:14 ----A---- C:\WINDOWS\system32\nvrstr.dll
2009-08-17 02:04:14 ----A---- C:\WINDOWS\system32\nvrsth.dll
2009-08-17 02:04:14 ----A---- C:\WINDOWS\system32\nvrssv.dll
2009-08-17 02:04:14 ----A---- C:\WINDOWS\system32\nvrssl.dll
2009-08-17 02:04:14 ----A---- C:\WINDOWS\system32\nvrssk.dll
2009-08-17 02:04:14 ----A---- C:\WINDOWS\system32\nvrsru.dll
2009-08-17 02:04:14 ----A---- C:\WINDOWS\system32\nvrsptb.dll
2009-08-17 02:04:14 ----A---- C:\WINDOWS\system32\nvrspt.dll
2009-08-17 02:04:14 ----A---- C:\WINDOWS\system32\nvrspl.dll
2009-08-17 02:04:14 ----A---- C:\WINDOWS\system32\nvrsno.dll
2009-08-17 02:04:14 ----A---- C:\WINDOWS\system32\nvrsnl.dll
2009-08-17 02:04:14 ----A---- C:\WINDOWS\system32\nvrsko.dll
2009-08-17 02:04:14 ----A---- C:\WINDOWS\system32\nvrsja.dll
2009-08-17 02:04:12 ----A---- C:\WINDOWS\system32\nvrsit.dll
2009-08-17 02:04:12 ----A---- C:\WINDOWS\system32\nvrshu.dll
2009-08-17 02:04:12 ----A---- C:\WINDOWS\system32\nvrshe.dll
2009-08-17 02:04:12 ----A---- C:\WINDOWS\system32\nvrsfr.dll
2009-08-17 02:04:10 ----A---- C:\WINDOWS\system32\nvrsfi.dll
2009-08-17 02:04:10 ----A---- C:\WINDOWS\system32\nvrsesm.dll
2009-08-17 02:04:10 ----A---- C:\WINDOWS\system32\nvrses.dll
2009-08-17 02:04:10 ----A---- C:\WINDOWS\system32\nvrseng.dll
2009-08-17 02:04:10 ----A---- C:\WINDOWS\system32\nvrsel.dll
2009-08-17 02:04:10 ----A---- C:\WINDOWS\system32\nvrsde.dll
2009-08-17 02:04:10 ----A---- C:\WINDOWS\system32\nvrsda.dll
2009-08-17 02:04:10 ----A---- C:\WINDOWS\system32\nvrscs.dll
2009-08-17 02:04:08 ----A---- C:\WINDOWS\system32\nvwddi.dll
2009-08-17 02:04:08 ----A---- C:\WINDOWS\system32\nvrsar.dll
2009-08-17 02:03:50 ----A---- C:\WINDOWS\system32\nvwssr.dll
2009-08-17 02:03:44 ----A---- C:\WINDOWS\system32\nvwss.dll
2009-08-17 02:03:40 ----A---- C:\WINDOWS\system32\nvvitvsr.dll
2009-08-17 02:03:38 ----A---- C:\WINDOWS\system32\nvvitvs.dll
2009-08-17 02:03:32 ----A---- C:\WINDOWS\system32\nvmoblsr.dll
2009-08-17 02:03:28 ----A---- C:\WINDOWS\system32\nvmobls.dll
2009-08-17 02:03:28 ----A---- C:\WINDOWS\system32\nvmccssr.dll
2009-08-17 02:03:28 ----A---- C:\WINDOWS\system32\nvmccss.dll
2009-08-17 02:03:28 ----A---- C:\WINDOWS\system32\nvgamesr.dll
2009-08-17 02:03:22 ----A---- C:\WINDOWS\system32\nvgames.dll
2009-08-17 02:03:18 ----A---- C:\WINDOWS\system32\nvdispsr.dll
2009-08-17 02:03:02 ----A---- C:\WINDOWS\system32\nvdisps.dll
2009-08-17 02:03:00 ----A---- C:\WINDOWS\system32\nvsvc32.exe
2009-08-17 02:03:00 ----A---- C:\WINDOWS\system32\nvmctray.dll
2009-08-17 02:03:00 ----A---- C:\WINDOWS\system32\nvcpl.dll
2009-08-17 02:03:00 ----A---- C:\WINDOWS\system32\nvcolor.exe
2009-08-17 02:02:52 ----A---- C:\WINDOWS\system32\nvmccs.dll
2009-08-16 23:57:00 ----A---- C:\WINDOWS\system32\nvoglnt.dll
2009-08-16 23:57:00 ----A---- C:\WINDOWS\system32\nvcuvid.dll
2009-08-16 23:57:00 ----A---- C:\WINDOWS\system32\nvcuvenc.dll
2009-08-16 23:57:00 ----A---- C:\WINDOWS\system32\nvcuda.dll
2009-08-16 23:57:00 ----A---- C:\WINDOWS\system32\nvcodins.dll
2009-08-16 23:57:00 ----A---- C:\WINDOWS\system32\nvcod.dll
2009-08-16 23:57:00 ----A---- C:\WINDOWS\system32\nvapi.dll
2009-08-16 23:57:00 ----A---- C:\WINDOWS\system32\nv4_disp.dll
2009-08-14 12:36:18 ----A---- C:\WINDOWS\system32\PhysXLoader.dll
======List of files/folders modified in the last 3 months======
2009-10-26 09:45:17 ----A---- C:\WINDOWS\win.ini
2009-10-26 09:45:17 ----A---- C:\WINDOWS\system.ini
2009-10-22 10:17:28 ----A---- C:\WINDOWS\system32\mshtml.dll
2009-09-11 15:18:20 ----A---- C:\WINDOWS\system32\msv1_0.dll
2009-09-04 22:04:39 ----A---- C:\WINDOWS\system32\msasn1.dll
2009-08-29 08:56:53 ----A---- C:\WINDOWS\system32\wininet.dll
2009-08-29 08:56:53 ----A---- C:\WINDOWS\system32\urlmon.dll
2009-08-29 08:56:52 ----N---- C:\WINDOWS\system32\occache.dll
2009-08-29 08:56:49 ----A---- C:\WINDOWS\system32\msfeedsbs.dll
2009-08-29 08:56:48 ----N---- C:\WINDOWS\system32\jsproxy.dll
2009-08-29 08:56:48 ----A---- C:\WINDOWS\system32\msfeeds.dll
2009-08-29 08:56:47 ----A---- C:\WINDOWS\system32\iertutil.dll
2009-08-29 08:56:46 ----A---- C:\WINDOWS\system32\iepeers.dll
2009-08-29 08:56:45 ----A---- C:\WINDOWS\system32\ieframe.dll
2009-08-29 08:56:42 ----N---- C:\WINDOWS\system32\iedkcs32.dll
2009-08-28 11:36:46 ----N---- C:\WINDOWS\system32\ie4uinit.exe
2009-08-26 09:01:24 ----A---- C:\WINDOWS\system32\strmdll.dll
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 AmdPPM;Pilote de processeur AMD HwPState; C:\WINDOWS\system32\DRIVERS\AmdPPM.sys [2007-04-16 33792]
R1 AsIO;AsIO; C:\WINDOWS\system32\drivers\AsIO.sys [2007-12-17 12400]
R1 mferkdk;VSCore mferkdk; \??\C:\Program Files\McAfee\VirusScan Enterprise\mferkdk.sys []
R1 mfetdik;McAfee Inc.; C:\WINDOWS\system32\drivers\mfetdik.sys [2006-11-30 52136]
R1 WmiAcpi;Interface de gestion Microsoft Windows pour ACPI; C:\WINDOWS\system32\DRIVERS\wmiacpi.sys [2008-04-13 8832]
R3 HDAudBus;Pilote de bus Microsoft UAA pour High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-14 144384]
R3 hidusb;Pilote de classe HID Microsoft; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2009-02-03 5030912]
R3 mfeapfk;McAfee Inc.; C:\WINDOWS\system32\drivers\mfeapfk.sys [2006-11-30 64360]
R3 mfeavfk;McAfee Inc.; C:\WINDOWS\system32\drivers\mfeavfk.sys [2006-11-30 72264]
R3 mfebopk;McAfee Inc.; C:\WINDOWS\system32\drivers\mfebopk.sys [2006-11-30 34152]
R3 mfehidk;McAfee Inc.; C:\WINDOWS\system32\drivers\mfehidk.sys [2006-11-30 168776]
R3 mouhid;Pilote HID de souris; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2008-04-14 12288]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\WINDOWS\system32\DRIVERS\ASACPI.sys [2004-08-15 5810]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2009-08-16 7729568]
R3 RTLE8023xp;Realtek 10/100/1000 PCI-E NIC Family NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtenicxp.sys [2008-09-25 115328]
R3 usbehci;Pilote miniport de contrôleur d'hôte amélioré Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-14 30208]
R3 usbhub;Concentrateur USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-14 59520]
R3 usbohci;Pilote miniport de contrôleur hôte ouvert USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbohci.sys [2008-04-14 17152]
R3 Wdf01000;Wdf01000; C:\WINDOWS\system32\DRIVERS\Wdf01000.sys [2006-04-19 479200]
R3 xusb21;Xbox 360 Wireless Receiver Driver Service 21; C:\WINDOWS\system32\DRIVERS\xusb21.sys [2007-02-26 61984]
S3 Ambfilt;Ambfilt; C:\WINDOWS\system32\drivers\Ambfilt.sys [2008-08-05 1684736]
S3 asx9dr77;asx9dr77; C:\WINDOWS\system32\drivers\asx9dr77.sys []
S3 ayp0u1yj;ayp0u1yj; C:\WINDOWS\system32\drivers\ayp0u1yj.sys []
S3 driverhardwarev2;driverhardwarev2; \??\C:\Program Files\ma-config.com\Drivers\driverhardwarev2.sys []
S3 Monfilt;Monfilt; C:\WINDOWS\system32\drivers\Monfilt.sys [2006-01-04 1389056]
S3 usbccgp;Pilote parent générique USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
S3 usbprint;Classe d'imprimantes USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Pilote de scanneur USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 USBSTOR;Pilote de stockage de masse USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []
Bonjour,
Live-Player t'a installé l'infection Navipromo.
- Désinstalle Favorit.
- Télécharge Navilog1 (de IL-MAFIOSO) sur ton Bureau.
- Double-clique sur Navilog1.exe pour le lancer.
(Sous Vista, clique droit sur Navilog1 et choisis Exécuter en tant qu'administrateur)
- Appuie sur 1 puis valide avec Entrée pour choisir Français.
- Appuie sur une touche de ton clavier à chaque fois que cela est demandé, tu arriveras au menu des options.
- Choisis l'option 1 et appuie sur la touche Entrée pour valider ton choix.
- Patiente le temps du scan. Il te sera peut-être demandé de redémarrer ton PC.
- Patiente jusqu'au message : *** Scan terminé le ..... ***
- Le scan fini, le Bloc-notes contenant le rapport sera affiché, poste le rapport dans ta prochaine réponse.
- Si le résultat du scan ne s'affiche pas, tu le trouveras dans C:\cleannavi.txt
Voici le résultat du scan
Fix Navipromo version 4.0.4 commencé le 08/11/2009 20:55:06,00
!!! Attention,ce rapport peut indiquer des fichiers/programmes légitimes!!!
!!! Postez ce rapport sur le forum pour le faire analyser !!!
Outil exécuté depuis C:\Program Files\navilog1
Mise à jour le 02.11.2009 à 22h00 par IL-MAFIOSO
Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Multiprocessor Free : AMD Phenom(tm) 9950 Quad-Core Processor )
BIOS : BIOS Date: 04/09/09 20:24:23 Ver: 07.01
USER : Propriétaire ( Administrator )
BOOT : Normal boot
Antivirus : McAfee VirusScan Enterprise 8.5.0.781 (Activated)
C:\ (Local Disk) - NTFS - Total:117 Go (Free:68 Go)
D:\ (Local Disk) - NTFS - Total:114 Go (Free:2 Go)
E:\ (Local Disk) - NTFS - Total:180 Go (Free:176 Go)
F:\ (Local Disk) - NTFS - Total:37 Go (Free:0 Go)
G:\ (CD or DVD)
H:\ (CD or DVD) - UDF - Total:7 Go (Free:0 Go)
I:\ (CD or DVD)
J:\ (CD or DVD)
K:\ (CD or DVD)
Recherche executée en mode normal
Nettoyage exécuté au redémarrage de l'ordinateur
C:\Program Files\Live-Player supprimé !
C:\Documents and Settings\All Users\menudm~1\progra~1\Live-Player supprimé !
C:\Documents and Settings\Propri‚taire\applic~1\Live-Player supprimé !
C:\WINDOWS\prefetch\LIVE-PLAYER_SETUP.EXE-26826AEC.pf supprimé !
C:\WINDOWS\prefetch\LIVE-PLAYER.EXE-21A6817A.pf supprimé !
Nettoyage contenu C:\WINDOWS\Temp effectué !
Nettoyage contenu C:\Documents and Settings\Propri‚taire\locals~1\Temp effectué !
*** Sauvegarde du Registre vers dossier Safebackup ***
sauvegarde du Registre réalisée avec succès !
*** Nettoyage Registre ***
Nettoyage Registre Ok
*** Scan terminé 08/11/2009 20:58:24,45 ***
Bien, on va s'occuper de l'autre infection.
- Télécharge UsbFix (de Chiquitine29 & C_XX) sur ton Bureau.
- Branche tes sources de données externes à ton PC (clé USB, disque dur externe, carte SD, etc...) sans les ouvrir.
- Double-clique sur UsbFix pour l'exécuter.
- Choisis l'option 1 (Recherche).
- Laisse travailler l'outil.
- Poste le rapport UsbFix.txt.
Note : le rapport UsbFix.txt est sauvegardé à la racine du disque (C:\UsbFix.txt).
"Process.exe", une composante de l'outil, est détectée par certains antivirus (AntiVir, Kaspersky, etc.) comme étant un RiskTool. Il ne s'agit pas d'un virus, mais d'un utilitaire destiné à mettre fin à des processus.
Voici le rapport :
############################## | UsbFix V6.049 |
User : Propriétaire (Administrateurs) # ERIC-A248208F90
Update on 06/11/2009 by Chiquitine29, C_XX & Chimay8
Start at: 21:21:09 | 08/11/2009
Website : http://pagesperso-orange.fr/NosTools/index.html
Contact : FindyKill.Contact@gmail.com
AMD Phenom(tm) 9950 Quad-Core Processor
Microsoft Windows XP Édition familiale (5.1.2600 32-bit) # Service Pack 3
Internet Explorer 8.0.6001.18702
Windows Firewall Status : Enabled
AV : McAfee VirusScan Enterprise 8.5.0.781 [ Enabled | Updated ]
C:\ -> Disque fixe local # 117,19 Go (68,3 Go free) # NTFS
D:\ -> Disque fixe local # 114,49 Go (2,15 Go free) [DISK2_VOL1] # NTFS
E:\ -> Disque fixe local # 180,89 Go (176,99 Go free) # NTFS
F:\ -> Disque fixe local # 37,26 Go (110,15 Mo free) # NTFS
G:\ -> Disque CD-ROM
H:\ -> Disque CD-ROM # 7,38 Go (0 Mo free) [Pro Evolution Soccer 2009] # UDF
I:\ -> Disque CD-ROM
J:\ -> Disque CD-ROM
K:\ -> Disque CD-ROM
L:\ -> Disque fixe local # 232,83 Go (127,44 Go free) [My Passport] # FAT32
############################## | Processus actifs |
C:\WINDOWS\System32\smss.exe 664
C:\WINDOWS\system32\csrss.exe 720
C:\WINDOWS\system32\winlogon.exe 744
C:\WINDOWS\system32\services.exe 796
C:\WINDOWS\system32\lsass.exe 808
C:\WINDOWS\system32\nvsvc32.exe 976
C:\WINDOWS\system32\svchost.exe 1008
C:\WINDOWS\system32\svchost.exe 1076
C:\WINDOWS\System32\svchost.exe 1172
C:\WINDOWS\system32\svchost.exe 1292
C:\WINDOWS\system32\svchost.exe 1368
C:\WINDOWS\system32\spoolsv.exe 1528
C:\WINDOWS\Explorer.EXE 1816
C:\WINDOWS\system32\svchost.exe 240
C:\Program Files\Java\jre6\bin\jqs.exe 328
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe 460
C:\Program Files\McAfee\Common Framework\FrameworkService.exe 496
C:\Program Files\McAfee\VirusScan Enterprise\Mcshield.exe 552
C:\Program Files\McAfee\Common Framework\naPrdMgr.exe 1028
C:\Program Files\McAfee\VirusScan Enterprise\VsTskMgr.exe 1804
C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe 1872
C:\WINDOWS\system32\IoctlSvc.exe 2028
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe 164
C:\WINDOWS\system32\svchost.exe 272
C:\WINDOWS\system32\wbem\wmiapsrv.exe 276
C:\WINDOWS\RTHDCPL.EXE 2368
C:\Program Files\ASUS\EPU-4 Engine\FourEngine.exe 2388
C:\Program Files\McAfee\VirusScan Enterprise\SHSTAT.EXE 2396
C:\Program Files\McAfee\Common Framework\UdaterUI.exe 2408
C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe 2424
C:\WINDOWS\system32\RUNDLL32.EXE 2504
C:\Program Files\McAfee\Common Framework\McTray.exe 2544
C:\Program Files\MpcStar\Codecs\QuickTime\QTSystem\qttask.exe 1748
C:\WINDOWS\system32\ctfmon.exe 3392
C:\WINDOWS\System32\alg.exe 2592
C:\WINDOWS\System32\svchost.exe 3288
C:\Program Files\Mozilla Firefox\firefox.exe 3416
C:\Program Files\SopCast\SopCast.exe 2728
C:\Program Files\SopCast\adv\SopAdver.exe 2916
C:\Program Files\Windows Media Player\wmplayer.exe 2884
C:\WINDOWS\system32\wbem\wmiprvse.exe 1132
################## | Fichiers # Dossiers infectieux |
H:\autorun.inf
L:\autorun.inf
################## | Registre # Clés Run infectieuses |
################## | Registre # Mountpoints2 |
HKCU\..\..\Explorer\MountPoints2\{0910a958-9aba-11de-87c5-00248cd07e0c}
Shell\AutoRun\command =L:\WDSetup.exe
HKCU\..\..\Explorer\MountPoints2\{49e622d2-9727-11de-87bf-00248cd07e0c}
Shell\AutoRun\command =L:\otyh.cmd
Shell\explore\Command =L:\otyh.cmd
Shell\open\Command =L:\otyh.cmd
HKCU\..\..\Explorer\MountPoints2\{99cd7b34-a5c2-11de-9bd5-806d6172696f}
Shell\AutoRun\command =H:\autorun.exe
################## | Suspect | http://www.virustotal.com |
################## | Cracks / Keygens / Serials |
"D:\T‚l‚chargements bitspirit\Crack\pes2010.exe"
25/10/2009 21:48 |Size 19603456 |Crc32 6a65cb88 |Md5 8d98473b892907f342bcf25384bc4a07
################## | ! Fin du rapport # UsbFix V6.049 ! |
- Branche tes sources de données externes à ton PC (clé USB, disque dur externe, carte SD, etc...) sans les ouvrir.
- Double-clique sur UsbFix présent sur ton Bureau pour le lancer.
- Choisis l'option 2 (Suppression).
- Ton Bureau disparaîtra et le PC redémarrera.
- Au redémarrage, UsbFix scannera ton PC, laisse travailler l'outil.
- Ensuite, poste le rapport UsbFix.txt qui apparaîtra avec le Bureau.
Note : le rapport UsbFix.txt est sauvegardé à la racine du disque (C:\UsbFix.txt).
Le dernier rapport
############################## | UsbFix V6.049 |
User : Propriétaire (Administrateurs) # ERIC-A248208F90
Update on 06/11/2009 by Chiquitine29, C_XX & Chimay8
Start at: 23:07:59 | 08/11/2009
Website : http://pagesperso-orange.fr/NosTools/index.html
Contact : FindyKill.Contact@gmail.com
AMD Phenom(tm) 9950 Quad-Core Processor
Microsoft Windows XP Édition familiale (5.1.2600 32-bit) # Service Pack 3
Internet Explorer 8.0.6001.18702
Windows Firewall Status : Enabled
AV : McAfee VirusScan Enterprise 8.5.0.781 [ Enabled | Updated ]
C:\ -> Disque fixe local # 117,19 Go (68,28 Go free) # NTFS
D:\ -> Disque fixe local # 114,49 Go (2,15 Go free) [DISK2_VOL1] # NTFS
E:\ -> Disque fixe local # 180,89 Go (176,99 Go free) # NTFS
F:\ -> Disque fixe local # 37,26 Go (110,15 Mo free) # NTFS
G:\ -> Disque CD-ROM
H:\ -> Disque CD-ROM # 7,38 Go (0 Mo free) [Pro Evolution Soccer 2009] # UDF
I:\ -> Disque CD-ROM
J:\ -> Disque CD-ROM
K:\ -> Disque CD-ROM
L:\ -> Disque fixe local # 232,83 Go (127,44 Go free) [My Passport] # FAT32
M:\ -> Disque amovible # 3,87 Go (2,42 Go free) # FAT32
############################## | Processus actifs |
C:\WINDOWS\System32\smss.exe 664
C:\WINDOWS\system32\csrss.exe 728
C:\WINDOWS\system32\winlogon.exe 752
C:\WINDOWS\system32\services.exe 796
C:\WINDOWS\system32\lsass.exe 808
C:\WINDOWS\system32\nvsvc32.exe 976
C:\WINDOWS\system32\svchost.exe 1008
C:\WINDOWS\system32\logonui.exe 1072
C:\WINDOWS\system32\svchost.exe 1112
C:\WINDOWS\System32\svchost.exe 1208
C:\WINDOWS\system32\svchost.exe 1360
C:\WINDOWS\system32\svchost.exe 1432
C:\WINDOWS\system32\spoolsv.exe 1520
C:\WINDOWS\Explorer.EXE 1812
C:\WINDOWS\system32\svchost.exe 1968
C:\Program Files\Java\jre6\bin\jqs.exe 2028
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe 132
C:\Program Files\McAfee\Common Framework\FrameworkService.exe 172
C:\Program Files\McAfee\VirusScan Enterprise\Mcshield.exe 204
C:\Program Files\McAfee\VirusScan Enterprise\VsTskMgr.exe 264
C:\Program Files\McAfee\Common Framework\naPrdMgr.exe 336
C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe 504
C:\WINDOWS\system32\IoctlSvc.exe 588
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe 700
C:\WINDOWS\system32\svchost.exe 812
C:\WINDOWS\system32\wuauclt.exe 1276
C:\WINDOWS\system32\wbem\wmiapsrv.exe 1588
C:\WINDOWS\system32\wbem\wmiprvse.exe 2396
C:\WINDOWS\system32\wbem\wmiprvse.exe 2464
C:\WINDOWS\System32\alg.exe 2484
################## | Fichiers # Dossiers infectieux |
Non supprimé ! H:\autorun.inf
Supprimé ! L:\autorun.inf
################## | Registre # Clés Run infectieuses |
################## | Registre # Mountpoints2 |
Supprimé ! HKCU\...\Explorer\MountPoints2\{49e622d2-9727-11de-87bf-00248cd07e0c}\Shell\AutoRun\Command
################## | Listing des fichiers présent |
[07/09/2009 12:03|--a------|0] C:\adorage-protocol.txt
[27/08/2009 14:26|--a------|0] C:\AUTOEXEC.BAT
[26/10/2009 09:45|-r-hs----|228] C:\boot.ini
[14/04/2008 13:00|-rahs----|4952] C:\Bootfont.bin
[08/11/2009 20:58|--a------|1726] C:\cleannavi.txt
[27/08/2009 14:26|--a------|0] C:\CONFIG.SYS
[27/08/2009 14:26|-rahs----|0] C:\IO.SYS
[27/08/2009 14:26|-rahs----|0] C:\MSDOS.SYS
[14/04/2008 13:00|-rahs----|47564] C:\NTDETECT.COM
[14/04/2008 13:00|-rahs----|252240] C:\ntldr
[29/02/2004 16:44|--a------|52576] C:\orange.bmp
[?|?|?] C:\pagefile.sys
[08/11/2009 23:10|--a------|3457] C:\UsbFix.txt
[03/08/2006 21:09|--a------|86066] D:\bookmarks.html
[18/05/2009 16:15|--a------|898778] F:\adorage-protocol.txt
[18/05/2009 15:02|--a------|95] F:\AUTOEXEC.BAT
[07/01/2009 11:57|---hs----|216] F:\boot.ini
[05/08/2004 13:00|-rahs----|4952] F:\Bootfont.bin
[03/12/2007 14:33|--a------|0] F:\CONFIG.SYS
[03/12/2007 14:33|-rahs----|0] F:\IO.SYS
[03/12/2007 14:33|-rahs----|0] F:\MSDOS.SYS
[05/08/2004 13:00|-rahs----|47564] F:\NTDETECT.COM
[04/07/2008 20:34|-rahs----|252240] F:\ntldr
[29/02/2004 16:44|--a------|52576] F:\orange.bmp
[20/09/2009 09:41|--ahs----|2145386496] F:\pagefile.sys
[06/08/2009 13:43|--a------|92] F:\TCleaner.txt
[31/08/2008 04:01|-r-------|211968] H:\1031.mst
[31/08/2008 04:01|-r-------|10240] H:\1033.mst
[31/08/2008 04:01|-r-------|522240] H:\1034.mst
[31/08/2008 04:01|-r-------|522752] H:\1036.mst
[31/08/2008 04:01|-r-------|521728] H:\1040.mst
[31/08/2008 04:01|-r-------|92672] H:\2070.mst
[22/08/2008 06:57|-r-------|230728] H:\autorun.exe
[30/05/2008 07:54|-r-------|47] H:\Autorun.inf
[31/08/2008 04:06|-r-------|1684992] H:\Pro Evolution Soccer 2009.msi
[23/07/2008 07:31|-r-------|907] H:\readme.html
[31/08/2008 04:04|-r-------|2231280] H:\setup.exe
[05/08/2008 15:17|-r-------|921656] H:\splash.bmp
[06/11/2008 15:49|--a------|74] L:\Install.ini
[24/04/2004 11:38|--a------|37888] L:\JSTART.exe
[13/11/2008 12:30|--a------|319488] L:\setup.exe
[07/11/2008 14:56|--a------|42678] L:\wdinstaller.xml
[25/11/2008 11:03|--a------|2325721] L:\WDSetup.exe
[06/09/2009 11:03|--a------|267] L:\wdinstaller.log
[25/02/2008 10:30|-rahs----|54] L:\autorun.in_2.org
[29/04/2009 19:08|--a------|3827785] L:\WDSync.zip
[13/02/2008 11:46|--a------|4523520] L:\WDSync_v7_1_020.exe
[13/09/2009 23:00|--ah-----|4096] M:\._.Trashes
################## | Vaccination |
# C:\autorun.inf -> Dossier créé par UsbFix.
# D:\autorun.inf -> Dossier créé par UsbFix.
# E:\autorun.inf -> Dossier créé par UsbFix.
# F:\autorun.inf -> Dossier créé par UsbFix.
# L:\autorun.inf -> Dossier créé par UsbFix.
# M:\autorun.inf -> Dossier créé par UsbFix.
################## | Suspect | http://www.virustotal.com |
################## | Cracks / Keygens / Serials |
"D:\T‚l‚chargements bitspirit\Crack\pes2010.exe"
25/10/2009 21:48 |Size 19603456 |Crc32 6a65cb88 |Md5 8d98473b892907f342bcf25384bc4a07
################## | Upload |
Veuillez envoyer le fichier : C:\DOCUME~1\PROPRI~1\Bureau\UsbFix_Upload_Me_ERIC-A248208F90.zip : http://forum-aide-contre-virus.be/ [...] ichier.php
Merci pour votre contribution .
- Relance UsbFix et choisis l'option 5 pour le désinstaller.
- Refais un scan RSIT et poste le rapport log.
Logfile of random's system information tool 1.06 (written by random/random)
Run by Propriétaire at 2009-11-08 23:18:58
Microsoft Windows XP Édition familiale Service Pack 3
System drive C: has 71 GB (59%) free of 120 GB
Total RAM: 2047 MB (68% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 23:19:08, on 08/11/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
C:\Program Files\McAfee\Common Framework\FrameworkService.exe
C:\Program Files\McAfee\VirusScan Enterprise\Mcshield.exe
C:\Program Files\McAfee\VirusScan Enterprise\VsTskMgr.exe
C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
C:\WINDOWS\system32\IoctlSvc.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\WINDOWS\explorer.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Propriétaire\Bureau\RSIT.exe
C:\Program Files\trend micro\HijackThis\Propriétaire.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Windows Internet Explorer
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\McAfee\VirusScan Enterprise\scriptcl.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [Six Engine] "C:\Program Files\ASUS\EPU-4 Engine\FourEngine.exe" -r
O4 - HKLM\..\Run: [ShStatEXE] "C:\Program Files\McAfee\VirusScan Enterprise\SHSTAT.EXE" /STANDALONE
O4 - HKLM\..\Run: [McAfeeUpdaterUI] "C:\Program Files\McAfee\Common Framework\UdaterUI.exe" /StartedFromRunKey
O4 - HKLM\..\Run: [XboxStat] "C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe" silentrun
O4 - HKLM\..\Run: [nwiz] C:\Program Files\NVIDIA Corporation\nView\nwiz.exe /install
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [Name of App] C:\Program Files\SAMSUNG\FW LiveUpdate\FWManager.exe r
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\MpcStar\Codecs\QuickTime\QTSystem\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Malwarebytes Anti-Malware (reboot)] "C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Télécharger en Utilisant &BitSpirit - C:\Program Files\BitSpirit\bsurl.htm
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/window [...] 1383087317
O16 - DPF: {E77F23EB-E7AB-4502-8F37-247DBAF1A147} (Windows Live Hotmail Photo Upload Tool) - http://gfx1.hotmail.com/mail/w4/pr [...] NPUpld.cab
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe
O23 - Service: McAfee Framework Service (McAfeeFramework) - McAfee, Inc. - C:\Program Files\McAfee\Common Framework\FrameworkService.exe
O23 - Service: McAfee McShield (McShield) - McAfee, Inc. - C:\Program Files\McAfee\VirusScan Enterprise\Mcshield.exe
O23 - Service: McAfee Task Manager (McTaskManager) - McAfee, Inc. - C:\Program Files\McAfee\VirusScan Enterprise\VsTskMgr.exe
O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\WINDOWS\system32\IoctlSvc.exe
O23 - Service: StarWind AE Service (StarWindServiceAE) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
--
End of file - 7153 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\User_Feed_Synchronization-{46F3CE72-9420-45DA-8CD2-8ABBBEB6325F}.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7DB2D5A0-7241-4E79-B68D-6309F01C5231}]
scriptproxy - C:\Program Files\McAfee\VirusScan Enterprise\scriptcl.dll [2006-11-30 67136]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-07-25 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2009-07-25 73728]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{32099AAC-C132-4136-9E9A-4E364A424E17} - DAEMON Tools Toolbar - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll [2009-04-23 937416]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2009-02-03 18085888]
"Alcmtr"=C:\WINDOWS\ALCMTR.EXE [2008-06-19 57344]
"Six Engine"=C:\Program Files\ASUS\EPU-4 Engine\FourEngine.exe [2009-02-13 5634560]
"ShStatEXE"=C:\Program Files\McAfee\VirusScan Enterprise\SHSTAT.EXE [2006-11-30 112216]
"McAfeeUpdaterUI"=C:\Program Files\McAfee\Common Framework\UdaterUI.exe [2006-11-17 136768]
"XboxStat"=C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe [2007-09-26 734264]
"nwiz"=C:\Program Files\NVIDIA Corporation\nView\nwiz.exe [2009-08-12 1657376]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2009-08-17 13877248]
"NvMediaCenter"=C:\WINDOWS\system32\NvMcTray.dll [2009-08-17 86016]
"Name of App"=C:\Program Files\SAMSUNG\FW LiveUpdate\FWManager.exe [2009-07-15 692340]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-10-03 35696]
"Adobe ARM"=C:\Program Files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe [2009-09-04 935288]
"KernelFaultCheck"=C:\WINDOWS\system32\dumprep 0 -k []
"QuickTime Task"=C:\Program Files\MpcStar\Codecs\QuickTime\QTSystem\qttask.exe [2009-08-27 282624]
"Malwarebytes Anti-Malware (reboot)"=C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe [2009-09-10 1312080]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
""= []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe []
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-10-03 35696]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AlcoholAutomount]
C:\Program Files\Alcohol Soft\Alcohol 120\axcmd.exe [2007-07-02 220544]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files\DAEMON Tools Lite\daemon.exe [2008-07-24 490952]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Pinyin 2 Autoupdater]
C:\Program Files\Google\Google Pinyin 2\GooglePinyinDaemon.exe [2009-10-20 1009648]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LightScribe Control Panel]
C:\Program Files\Fichiers communs\LightScribe\LightScribeControlPanel.exe [2009-08-20 2363392]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NBKeyScan]
C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe [2008-06-10 2221352]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
C:\Program Files\Fichiers communs\Nero\Lib\NeroCheck.exe [2008-07-09 570664]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
C:\Program Files\MpcStar\Codecs\QuickTime\QTSystem\qttask.exe [2009-08-27 282624]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Java\jre6\bin\jusched.exe [2009-07-25 149280]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\uedkkrba]
c:\documents and settings\propriétaire\local settings\application data\uedkkrba.exe uedkkrba []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UUSEE]
C:\Program Files\uusee\UUSeePlayer.exe -b []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
UPnPMonitor - {e57ce738-33e8-4c51-8354-bb4de9d215d1} - C:\WINDOWS\system32\upnpui.dll [2008-04-14 240128]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=128
"NoDriveAutoRun"=128
"HonorAutoRunSetting"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=
"NoDriveAutoRun"=
"NoDriveTypeAutoRun"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Program Files\McAfee\Common Framework\FrameworkService.exe"="C:\Program Files\McAfee\Common Framework\FrameworkService.exe:*:Enabled:McAfee Framework Service"
"C:\Program Files\BitSpirit\BitSpirit.exe"="C:\Program Files\BitSpirit\BitSpirit.exe:*:Enabled:The powerful and easy-to-use BitTorrent Client"
"C:\Program Files\Ubisoft\Techland\Call of Juarez - Bound in Blood\CoJBiBGame_x86.exe"="C:\Program Files\Ubisoft\Techland\Call of Juarez - Bound in Blood\CoJBiBGame_x86.exe:*:Enabled:Call of Juarez - Bound in Blood"
"C:\Program Files\KONAMI\Pro Evolution Soccer 2009\pes2009.exe"="C:\Program Files\KONAMI\Pro Evolution Soccer 2009\pes2009.exe:*:Enabled
ro Evolution Soccer 2009"
"C:\Program Files\ma-config.com\maconfservice.exe"="C:\Program Files\ma-config.com\maconfservice.exe:LocalSubNet:Enabled:maconfservice"
"E:\Program Files\Codemasters\FUEL\FUEL.exe"="E:\Program Files\Codemasters\FUEL\FUEL.exe:*:Enabled:FUEL"
"C:\Program Files\TVUPlayer\TVUPlayer.exe"="C:\Program Files\TVUPlayer\TVUPlayer.exe:*:Enabled:TVUPlayer Component"
"C:\Program Files\uusee\UUSeePlayer.exe"="C:\Program Files\uusee\UUSeePlayer.exe:*:Enabled:UUPlayer"
"C:\Program Files\SopCast\SopCast.exe"="C:\Program Files\SopCast\SopCast.exe:*:Enabled:SopCast Main Application"
"C:\Program Files\SopCast\adv\SopAdver.exe"="C:\Program Files\SopCast\adv\SopAdver.exe:*:Enabled:SopCast Adver"
"C:\Program Files\TVAnts\Tvants.exe"="C:\Program Files\TVAnts\Tvants.exe:*:Enabled:TVAnts"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
======List of files/folders created in the last 1 months======
2009-11-08 23:10:29 ----RASHD---- C:\autorun.inf
2009-11-08 21:20:21 ----D---- C:\UsbFix
2009-11-08 20:55:06 ----A---- C:\cleannavi.txt
2009-11-08 20:54:13 ----D---- C:\Program Files\Navilog1
2009-11-08 19:52:16 ----D---- C:\Program Files\SopCast
2009-11-08 19:00:10 ----D---- C:\Program Files\TVAnts
2009-11-08 11:38:51 ----D---- C:\rsit
2009-11-08 11:38:51 ----D---- C:\Program Files\trend micro
2009-11-03 19:16:26 ----A---- C:\WINDOWS\wininit.ini
2009-10-30 14:36:14 ----D---- C:\Documents and Settings\Propriétaire\Application Data\Malwarebytes
2009-10-30 14:36:09 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2009-10-30 14:36:09 ----D---- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2009-10-30 14:34:54 ----D---- C:\Program Files\Spybot - Search & Destroy
2009-10-30 14:34:54 ----D---- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
2009-10-30 14:21:00 ----HD---- C:\WINDOWS\system32\GroupPolicy
2009-10-30 14:21:00 ----A---- C:\WINDOWS\system32\gptext.dll
2009-10-30 14:21:00 ----A---- C:\WINDOWS\system32\gpedit.msc
2009-10-30 14:21:00 ----A---- C:\WINDOWS\system32\gpedit.dll
2009-10-30 14:21:00 ----A---- C:\WINDOWS\system32\fdeploy.dll
2009-10-30 14:21:00 ----A---- C:\WINDOWS\system32\fde.dll
2009-10-30 14:21:00 ----A---- C:\WINDOWS\system32\appmgr.dll
2009-10-30 14:21:00 ----A---- C:\WINDOWS\system32\appmgmts.dll
2009-10-30 00:05:23 ----D---- C:\Program Files\Lavalys
2009-10-24 20:31:32 ----D---- C:\Program Files\Adobe
2009-10-24 20:31:11 ----SHD---- C:\Config.Msi
2009-10-20 18:39:07 ----D---- C:\Documents and Settings\Propriétaire\Application Data\Real
2009-10-20 18:38:51 ----D---- C:\Documents and Settings\Propriétaire\Application Data\Google
2009-10-20 18:38:47 ----D---- C:\Documents and Settings\All Users\Application Data\Google
2009-10-20 18:38:45 ----A---- C:\WINDOWS\struct~.ini
2009-10-20 17:34:36 ----D---- C:\Documents and Settings\All Users\Application Data\TVU Networks
2009-10-20 17:34:23 ----D---- C:\Program Files\TVUPlayer
2009-10-18 18:14:14 ----N---- C:\WINDOWS\system32\vxblock.dll
2009-10-18 18:14:14 ----N---- C:\WINDOWS\system32\pxwave.dll
2009-10-18 18:14:14 ----N---- C:\WINDOWS\system32\pxmas.dll
2009-10-18 18:14:14 ----N---- C:\WINDOWS\system32\pxhpinst.exe
2009-10-18 18:14:14 ----N---- C:\WINDOWS\system32\pxdrv.dll
2009-10-18 18:14:14 ----N---- C:\WINDOWS\system32\px.dll
2009-10-18 18:13:59 ----D---- C:\WINDOWS\system32\IOSUBSYS
2009-10-18 18:13:53 ----D---- C:\Program Files\Google
2009-10-14 22:20:41 ----HDC---- C:\WINDOWS\$NtUninstallKB958869$
2009-10-14 22:19:40 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2009-10-14 22:19:37 ----HDC---- C:\WINDOWS\$NtUninstallKB954155_WM9$
2009-10-14 22:19:34 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2009-10-14 22:19:30 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$
2009-10-14 22:19:26 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2009-10-14 22:19:19 ----HDC---- C:\WINDOWS\$NtUninstallKB971486$
2009-10-14 22:19:12 ----HDC---- C:\WINDOWS\$NtUninstallKB973525$
2009-10-14 22:19:06 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
======List of files/folders modified in the last 1 months======
2009-11-08 23:19:06 ----D---- C:\WINDOWS\Prefetch
2009-11-08 23:13:35 ----D---- C:\Program Files\Mozilla Firefox
2009-11-08 23:12:11 ----D---- C:\WINDOWS\Temp
2009-11-08 23:08:57 ----SHD---- C:\RECYCLER
2009-11-08 23:06:34 ----A---- C:\WINDOWS\SchedLgU.Txt
2009-11-08 20:58:07 ----RD---- C:\Program Files
2009-11-08 19:01:01 ----D---- C:\WINDOWS\system32
2009-11-08 18:57:35 ----D---- C:\Program Files\Fichiers communs
2009-11-06 19:00:46 ----D---- C:\WINDOWS
2009-11-05 21:25:58 ----A---- C:\WINDOWS\NeroDigital.ini
2009-11-05 19:29:05 ----HD---- C:\WINDOWS\inf
2009-11-05 19:29:00 ----RSHDC---- C:\WINDOWS\system32\dllcache
2009-11-05 19:28:57 ----D---- C:\WINDOWS\ie8updates
2009-11-05 19:28:43 ----HD---- C:\WINDOWS\$hf_mig$
2009-11-05 19:28:42 ----D---- C:\WINDOWS\system32\CatRoot2
2009-10-30 14:36:11 ----D---- C:\WINDOWS\system32\drivers
2009-10-30 09:36:30 ----D---- C:\Program Files\Internet Explorer
2009-10-26 19:47:04 ----D---- C:\QUARANTINE
2009-10-26 09:45:17 ----RSH---- C:\boot.ini
2009-10-26 09:45:17 ----A---- C:\WINDOWS\win.ini
2009-10-26 09:45:17 ----A---- C:\WINDOWS\system.ini
2009-10-25 23:12:52 ----D---- C:\WINDOWS\Minidump
2009-10-25 08:20:11 ----D---- C:\Documents and Settings\All Users\Application Data\Adobe
2009-10-24 20:31:58 ----SHD---- C:\WINDOWS\Installer
2009-10-24 20:31:45 ----D---- C:\Program Files\Fichiers communs\Adobe
2009-10-22 10:17:28 ----A---- C:\WINDOWS\system32\mshtml.dll
2009-10-18 14:03:17 ----D---- C:\WINDOWS\system32\DirectX
2009-10-18 14:03:11 ----RSD---- C:\WINDOWS\assembly
2009-10-18 14:03:05 ----D---- C:\WINDOWS\Microsoft.NET
2009-10-18 14:02:50 ----D---- C:\Program Files\EA Sports
2009-10-15 18:09:54 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2009-10-15 18:09:38 ----D---- C:\WINDOWS\WinSxS
2009-10-14 22:20:55 ----A---- C:\WINDOWS\imsins.BAK
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 AmdPPM;Pilote de processeur AMD HwPState; C:\WINDOWS\system32\DRIVERS\AmdPPM.sys [2007-04-16 33792]
R1 AsIO;AsIO; C:\WINDOWS\system32\drivers\AsIO.sys [2007-12-17 12400]
R1 mferkdk;VSCore mferkdk; \??\C:\Program Files\McAfee\VirusScan Enterprise\mferkdk.sys []
R1 mfetdik;McAfee Inc.; C:\WINDOWS\system32\drivers\mfetdik.sys [2006-11-30 52136]
R1 WmiAcpi;Interface de gestion Microsoft Windows pour ACPI; C:\WINDOWS\system32\DRIVERS\wmiacpi.sys [2008-04-13 8832]
R3 HDAudBus;Pilote de bus Microsoft UAA pour High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-14 144384]
R3 hidusb;Pilote de classe HID Microsoft; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2009-02-03 5030912]
R3 mfeapfk;McAfee Inc.; C:\WINDOWS\system32\drivers\mfeapfk.sys [2006-11-30 64360]
R3 mfeavfk;McAfee Inc.; C:\WINDOWS\system32\drivers\mfeavfk.sys [2006-11-30 72264]
R3 mfebopk;McAfee Inc.; C:\WINDOWS\system32\drivers\mfebopk.sys [2006-11-30 34152]
R3 mfehidk;McAfee Inc.; C:\WINDOWS\system32\drivers\mfehidk.sys [2006-11-30 168776]
R3 mouhid;Pilote HID de souris; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2008-04-14 12288]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\WINDOWS\system32\DRIVERS\ASACPI.sys [2004-08-15 5810]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2009-08-16 7729568]
R3 RTLE8023xp;Realtek 10/100/1000 PCI-E NIC Family NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtenicxp.sys [2008-09-25 115328]
R3 usbehci;Pilote miniport de contrôleur d'hôte amélioré Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-14 30208]
R3 usbhub;Concentrateur USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-14 59520]
R3 usbohci;Pilote miniport de contrôleur hôte ouvert USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbohci.sys [2008-04-14 17152]
R3 USBSTOR;Pilote de stockage de masse USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
R3 Wdf01000;Wdf01000; C:\WINDOWS\system32\DRIVERS\Wdf01000.sys [2006-04-19 479200]
R3 xusb21;Xbox 360 Wireless Receiver Driver Service 21; C:\WINDOWS\system32\DRIVERS\xusb21.sys [2007-02-26 61984]
S3 a56015h7;a56015h7; C:\WINDOWS\system32\drivers\a56015h7.sys []
S3 a90vpafg;a90vpafg; C:\WINDOWS\system32\drivers\a90vpafg.sys []
S3 Ambfilt;Ambfilt; C:\WINDOWS\system32\drivers\Ambfilt.sys [2008-08-05 1684736]
S3 driverhardwarev2;driverhardwarev2; \??\C:\Program Files\ma-config.com\Drivers\driverhardwarev2.sys []
S3 Monfilt;Monfilt; C:\WINDOWS\system32\drivers\Monfilt.sys [2006-01-04 1389056]
S3 usbccgp;Pilote parent générique USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
S3 usbprint;Classe d'imprimantes USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Pilote de scanneur USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2009-07-25 153376]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe [2009-08-20 73728]
R2 McAfeeFramework;McAfee Framework Service; C:\Program Files\McAfee\Common Framework\FrameworkService.exe [2006-11-17 104000]
R2 McShield;McAfee McShield; C:\Program Files\McAfee\VirusScan Enterprise\Mcshield.exe [2006-11-30 144960]
R2 McTaskManager;McAfee Task Manager; C:\Program Files\McAfee\VirusScan Enterprise\VsTskMgr.exe [2006-11-30 54872]
R2 Nero BackItUp Scheduler 3;Nero BackItUp Scheduler 3; C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe [2008-06-10 877864]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2009-08-17 168004]
R2 PLFlash DeviceIoControl Service;PLFlash DeviceIoControl Service; C:\WINDOWS\system32\IoctlSvc.exe [2006-12-19 81920]
R2 StarWindServiceAE;StarWind AE Service; C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [2007-05-28 275968]
S3 aspnet_state;Service d'état ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2008-11-20 136120]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 maconfservice;Ma-Config Service; C:\Program Files\ma-config.com\maconfservice.exe [2009-09-01 234864]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files\Fichiers communs\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 NetTcpPortSharing;Service de partage de ports Net.Tcp; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
S4 NMIndexingService;NMIndexingService; C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingService.exe []
-----------------EOF-----------------
Rapport rsit après avoir supprimer Usbfix
Peux-tu poster le rapport info situé dans C:\rsit ?
Rapport de rsit d'hier :
Logfile of random's system information tool 1.06 (written by random/random)
Run by Propriétaire at 2009-11-08 23:18:58
Microsoft Windows XP Édition familiale Service Pack 3
System drive C: has 71 GB (59%) free of 120 GB
Total RAM: 2047 MB (68% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 23:19:08, on 08/11/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
C:\Program Files\McAfee\Common Framework\FrameworkService.exe
C:\Program Files\McAfee\VirusScan Enterprise\Mcshield.exe
C:\Program Files\McAfee\VirusScan Enterprise\VsTskMgr.exe
C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
C:\WINDOWS\system32\IoctlSvc.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\WINDOWS\explorer.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Propriétaire\Bureau\RSIT.exe
C:\Program Files\trend micro\HijackThis\Propriétaire.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Windows Internet Explorer
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\McAfee\VirusScan Enterprise\scriptcl.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [Six Engine] "C:\Program Files\ASUS\EPU-4 Engine\FourEngine.exe" -r
O4 - HKLM\..\Run: [ShStatEXE] "C:\Program Files\McAfee\VirusScan Enterprise\SHSTAT.EXE" /STANDALONE
O4 - HKLM\..\Run: [McAfeeUpdaterUI] "C:\Program Files\McAfee\Common Framework\UdaterUI.exe" /StartedFromRunKey
O4 - HKLM\..\Run: [XboxStat] "C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe" silentrun
O4 - HKLM\..\Run: [nwiz] C:\Program Files\NVIDIA Corporation\nView\nwiz.exe /install
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [Name of App] C:\Program Files\SAMSUNG\FW LiveUpdate\FWManager.exe r
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\MpcStar\Codecs\QuickTime\QTSystem\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Malwarebytes Anti-Malware (reboot)] "C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Télécharger en Utilisant &BitSpirit - C:\Program Files\BitSpirit\bsurl.htm
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/window [...] 1383087317
O16 - DPF: {E77F23EB-E7AB-4502-8F37-247DBAF1A147} (Windows Live Hotmail Photo Upload Tool) - http://gfx1.hotmail.com/mail/w4/pr [...] NPUpld.cab
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe
O23 - Service: McAfee Framework Service (McAfeeFramework) - McAfee, Inc. - C:\Program Files\McAfee\Common Framework\FrameworkService.exe
O23 - Service: McAfee McShield (McShield) - McAfee, Inc. - C:\Program Files\McAfee\VirusScan Enterprise\Mcshield.exe
O23 - Service: McAfee Task Manager (McTaskManager) - McAfee, Inc. - C:\Program Files\McAfee\VirusScan Enterprise\VsTskMgr.exe
O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\WINDOWS\system32\IoctlSvc.exe
O23 - Service: StarWind AE Service (StarWindServiceAE) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
--
End of file - 7153 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\User_Feed_Synchronization-{46F3CE72-9420-45DA-8CD2-8ABBBEB6325F}.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7DB2D5A0-7241-4E79-B68D-6309F01C5231}]
scriptproxy - C:\Program Files\McAfee\VirusScan Enterprise\scriptcl.dll [2006-11-30 67136]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-07-25 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2009-07-25 73728]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{32099AAC-C132-4136-9E9A-4E364A424E17} - DAEMON Tools Toolbar - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll [2009-04-23 937416]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2009-02-03 18085888]
"Alcmtr"=C:\WINDOWS\ALCMTR.EXE [2008-06-19 57344]
"Six Engine"=C:\Program Files\ASUS\EPU-4 Engine\FourEngine.exe [2009-02-13 5634560]
"ShStatEXE"=C:\Program Files\McAfee\VirusScan Enterprise\SHSTAT.EXE [2006-11-30 112216]
"McAfeeUpdaterUI"=C:\Program Files\McAfee\Common Framework\UdaterUI.exe [2006-11-17 136768]
"XboxStat"=C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe [2007-09-26 734264]
"nwiz"=C:\Program Files\NVIDIA Corporation\nView\nwiz.exe [2009-08-12 1657376]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2009-08-17 13877248]
"NvMediaCenter"=C:\WINDOWS\system32\NvMcTray.dll [2009-08-17 86016]
"Name of App"=C:\Program Files\SAMSUNG\FW LiveUpdate\FWManager.exe [2009-07-15 692340]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-10-03 35696]
"Adobe ARM"=C:\Program Files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe [2009-09-04 935288]
"KernelFaultCheck"=C:\WINDOWS\system32\dumprep 0 -k []
"QuickTime Task"=C:\Program Files\MpcStar\Codecs\QuickTime\QTSystem\qttask.exe [2009-08-27 282624]
"Malwarebytes Anti-Malware (reboot)"=C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe [2009-09-10 1312080]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
""= []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe []
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-10-03 35696]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AlcoholAutomount]
C:\Program Files\Alcohol Soft\Alcohol 120\axcmd.exe [2007-07-02 220544]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files\DAEMON Tools Lite\daemon.exe [2008-07-24 490952]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Pinyin 2 Autoupdater]
C:\Program Files\Google\Google Pinyin 2\GooglePinyinDaemon.exe [2009-10-20 1009648]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LightScribe Control Panel]
C:\Program Files\Fichiers communs\LightScribe\LightScribeControlPanel.exe [2009-08-20 2363392]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NBKeyScan]
C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe [2008-06-10 2221352]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
C:\Program Files\Fichiers communs\Nero\Lib\NeroCheck.exe [2008-07-09 570664]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
C:\Program Files\MpcStar\Codecs\QuickTime\QTSystem\qttask.exe [2009-08-27 282624]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Java\jre6\bin\jusched.exe [2009-07-25 149280]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\uedkkrba]
c:\documents and settings\propriétaire\local settings\application data\uedkkrba.exe uedkkrba []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UUSEE]
C:\Program Files\uusee\UUSeePlayer.exe -b []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
UPnPMonitor - {e57ce738-33e8-4c51-8354-bb4de9d215d1} - C:\WINDOWS\system32\upnpui.dll [2008-04-14 240128]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=128
"NoDriveAutoRun"=128
"HonorAutoRunSetting"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=
"NoDriveAutoRun"=
"NoDriveTypeAutoRun"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Program Files\McAfee\Common Framework\FrameworkService.exe"="C:\Program Files\McAfee\Common Framework\FrameworkService.exe:*:Enabled:McAfee Framework Service"
"C:\Program Files\BitSpirit\BitSpirit.exe"="C:\Program Files\BitSpirit\BitSpirit.exe:*:Enabled:The powerful and easy-to-use BitTorrent Client"
"C:\Program Files\Ubisoft\Techland\Call of Juarez - Bound in Blood\CoJBiBGame_x86.exe"="C:\Program Files\Ubisoft\Techland\Call of Juarez - Bound in Blood\CoJBiBGame_x86.exe:*:Enabled:Call of Juarez - Bound in Blood"
"C:\Program Files\KONAMI\Pro Evolution Soccer 2009\pes2009.exe"="C:\Program Files\KONAMI\Pro Evolution Soccer 2009\pes2009.exe:*:Enabled
ro Evolution Soccer 2009"
"C:\Program Files\ma-config.com\maconfservice.exe"="C:\Program Files\ma-config.com\maconfservice.exe:LocalSubNet:Enabled:maconfservice"
"E:\Program Files\Codemasters\FUEL\FUEL.exe"="E:\Program Files\Codemasters\FUEL\FUEL.exe:*:Enabled:FUEL"
"C:\Program Files\TVUPlayer\TVUPlayer.exe"="C:\Program Files\TVUPlayer\TVUPlayer.exe:*:Enabled:TVUPlayer Component"
"C:\Program Files\uusee\UUSeePlayer.exe"="C:\Program Files\uusee\UUSeePlayer.exe:*:Enabled:UUPlayer"
"C:\Program Files\SopCast\SopCast.exe"="C:\Program Files\SopCast\SopCast.exe:*:Enabled:SopCast Main Application"
"C:\Program Files\SopCast\adv\SopAdver.exe"="C:\Program Files\SopCast\adv\SopAdver.exe:*:Enabled:SopCast Adver"
"C:\Program Files\TVAnts\Tvants.exe"="C:\Program Files\TVAnts\Tvants.exe:*:Enabled:TVAnts"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
======List of files/folders created in the last 1 months======
2009-11-08 23:10:29 ----RASHD---- C:\autorun.inf
2009-11-08 21:20:21 ----D---- C:\UsbFix
2009-11-08 20:55:06 ----A---- C:\cleannavi.txt
2009-11-08 20:54:13 ----D---- C:\Program Files\Navilog1
2009-11-08 19:52:16 ----D---- C:\Program Files\SopCast
2009-11-08 19:00:10 ----D---- C:\Program Files\TVAnts
2009-11-08 11:38:51 ----D---- C:\rsit
2009-11-08 11:38:51 ----D---- C:\Program Files\trend micro
2009-11-03 19:16:26 ----A---- C:\WINDOWS\wininit.ini
2009-10-30 14:36:14 ----D---- C:\Documents and Settings\Propriétaire\Application Data\Malwarebytes
2009-10-30 14:36:09 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2009-10-30 14:36:09 ----D---- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2009-10-30 14:34:54 ----D---- C:\Program Files\Spybot - Search & Destroy
2009-10-30 14:34:54 ----D---- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
2009-10-30 14:21:00 ----HD---- C:\WINDOWS\system32\GroupPolicy
2009-10-30 14:21:00 ----A---- C:\WINDOWS\system32\gptext.dll
2009-10-30 14:21:00 ----A---- C:\WINDOWS\system32\gpedit.msc
2009-10-30 14:21:00 ----A---- C:\WINDOWS\system32\gpedit.dll
2009-10-30 14:21:00 ----A---- C:\WINDOWS\system32\fdeploy.dll
2009-10-30 14:21:00 ----A---- C:\WINDOWS\system32\fde.dll
2009-10-30 14:21:00 ----A---- C:\WINDOWS\system32\appmgr.dll
2009-10-30 14:21:00 ----A---- C:\WINDOWS\system32\appmgmts.dll
2009-10-30 00:05:23 ----D---- C:\Program Files\Lavalys
2009-10-24 20:31:32 ----D---- C:\Program Files\Adobe
2009-10-24 20:31:11 ----SHD---- C:\Config.Msi
2009-10-20 18:39:07 ----D---- C:\Documents and Settings\Propriétaire\Application Data\Real
2009-10-20 18:38:51 ----D---- C:\Documents and Settings\Propriétaire\Application Data\Google
2009-10-20 18:38:47 ----D---- C:\Documents and Settings\All Users\Application Data\Google
2009-10-20 18:38:45 ----A---- C:\WINDOWS\struct~.ini
2009-10-20 17:34:36 ----D---- C:\Documents and Settings\All Users\Application Data\TVU Networks
2009-10-20 17:34:23 ----D---- C:\Program Files\TVUPlayer
2009-10-18 18:14:14 ----N---- C:\WINDOWS\system32\vxblock.dll
2009-10-18 18:14:14 ----N---- C:\WINDOWS\system32\pxwave.dll
2009-10-18 18:14:14 ----N---- C:\WINDOWS\system32\pxmas.dll
2009-10-18 18:14:14 ----N---- C:\WINDOWS\system32\pxhpinst.exe
2009-10-18 18:14:14 ----N---- C:\WINDOWS\system32\pxdrv.dll
2009-10-18 18:14:14 ----N---- C:\WINDOWS\system32\px.dll
2009-10-18 18:13:59 ----D---- C:\WINDOWS\system32\IOSUBSYS
2009-10-18 18:13:53 ----D---- C:\Program Files\Google
2009-10-14 22:20:41 ----HDC---- C:\WINDOWS\$NtUninstallKB958869$
2009-10-14 22:19:40 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2009-10-14 22:19:37 ----HDC---- C:\WINDOWS\$NtUninstallKB954155_WM9$
2009-10-14 22:19:34 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2009-10-14 22:19:30 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$
2009-10-14 22:19:26 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2009-10-14 22:19:19 ----HDC---- C:\WINDOWS\$NtUninstallKB971486$
2009-10-14 22:19:12 ----HDC---- C:\WINDOWS\$NtUninstallKB973525$
2009-10-14 22:19:06 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
======List of files/folders modified in the last 1 months======
2009-11-08 23:19:06 ----D---- C:\WINDOWS\Prefetch
2009-11-08 23:13:35 ----D---- C:\Program Files\Mozilla Firefox
2009-11-08 23:12:11 ----D---- C:\WINDOWS\Temp
2009-11-08 23:08:57 ----SHD---- C:\RECYCLER
2009-11-08 23:06:34 ----A---- C:\WINDOWS\SchedLgU.Txt
2009-11-08 20:58:07 ----RD---- C:\Program Files
2009-11-08 19:01:01 ----D---- C:\WINDOWS\system32
2009-11-08 18:57:35 ----D---- C:\Program Files\Fichiers communs
2009-11-06 19:00:46 ----D---- C:\WINDOWS
2009-11-05 21:25:58 ----A---- C:\WINDOWS\NeroDigital.ini
2009-11-05 19:29:05 ----HD---- C:\WINDOWS\inf
2009-11-05 19:29:00 ----RSHDC---- C:\WINDOWS\system32\dllcache
2009-11-05 19:28:57 ----D---- C:\WINDOWS\ie8updates
2009-11-05 19:28:43 ----HD---- C:\WINDOWS\$hf_mig$
2009-11-05 19:28:42 ----D---- C:\WINDOWS\system32\CatRoot2
2009-10-30 14:36:11 ----D---- C:\WINDOWS\system32\drivers
2009-10-30 09:36:30 ----D---- C:\Program Files\Internet Explorer
2009-10-26 19:47:04 ----D---- C:\QUARANTINE
2009-10-26 09:45:17 ----RSH---- C:\boot.ini
2009-10-26 09:45:17 ----A---- C:\WINDOWS\win.ini
2009-10-26 09:45:17 ----A---- C:\WINDOWS\system.ini
2009-10-25 23:12:52 ----D---- C:\WINDOWS\Minidump
2009-10-25 08:20:11 ----D---- C:\Documents and Settings\All Users\Application Data\Adobe
2009-10-24 20:31:58 ----SHD---- C:\WINDOWS\Installer
2009-10-24 20:31:45 ----D---- C:\Program Files\Fichiers communs\Adobe
2009-10-22 10:17:28 ----A---- C:\WINDOWS\system32\mshtml.dll
2009-10-18 14:03:17 ----D---- C:\WINDOWS\system32\DirectX
2009-10-18 14:03:11 ----RSD---- C:\WINDOWS\assembly
2009-10-18 14:03:05 ----D---- C:\WINDOWS\Microsoft.NET
2009-10-18 14:02:50 ----D---- C:\Program Files\EA Sports
2009-10-15 18:09:54 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2009-10-15 18:09:38 ----D---- C:\WINDOWS\WinSxS
2009-10-14 22:20:55 ----A---- C:\WINDOWS\imsins.BAK
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 AmdPPM;Pilote de processeur AMD HwPState; C:\WINDOWS\system32\DRIVERS\AmdPPM.sys [2007-04-16 33792]
R1 AsIO;AsIO; C:\WINDOWS\system32\drivers\AsIO.sys [2007-12-17 12400]
R1 mferkdk;VSCore mferkdk; \??\C:\Program Files\McAfee\VirusScan Enterprise\mferkdk.sys []
R1 mfetdik;McAfee Inc.; C:\WINDOWS\system32\drivers\mfetdik.sys [2006-11-30 52136]
R1 WmiAcpi;Interface de gestion Microsoft Windows pour ACPI; C:\WINDOWS\system32\DRIVERS\wmiacpi.sys [2008-04-13 8832]
R3 HDAudBus;Pilote de bus Microsoft UAA pour High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-14 144384]
R3 hidusb;Pilote de classe HID Microsoft; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2009-02-03 5030912]
R3 mfeapfk;McAfee Inc.; C:\WINDOWS\system32\drivers\mfeapfk.sys [2006-11-30 64360]
R3 mfeavfk;McAfee Inc.; C:\WINDOWS\system32\drivers\mfeavfk.sys [2006-11-30 72264]
R3 mfebopk;McAfee Inc.; C:\WINDOWS\system32\drivers\mfebopk.sys [2006-11-30 34152]
R3 mfehidk;McAfee Inc.; C:\WINDOWS\system32\drivers\mfehidk.sys [2006-11-30 168776]
R3 mouhid;Pilote HID de souris; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2008-04-14 12288]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\WINDOWS\system32\DRIVERS\ASACPI.sys [2004-08-15 5810]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2009-08-16 7729568]
R3 RTLE8023xp;Realtek 10/100/1000 PCI-E NIC Family NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtenicxp.sys [2008-09-25 115328]
R3 usbehci;Pilote miniport de contrôleur d'hôte amélioré Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-14 30208]
R3 usbhub;Concentrateur USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-14 59520]
R3 usbohci;Pilote miniport de contrôleur hôte ouvert USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbohci.sys [2008-04-14 17152]
R3 USBSTOR;Pilote de stockage de masse USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
R3 Wdf01000;Wdf01000; C:\WINDOWS\system32\DRIVERS\Wdf01000.sys [2006-04-19 479200]
R3 xusb21;Xbox 360 Wireless Receiver Driver Service 21; C:\WINDOWS\system32\DRIVERS\xusb21.sys [2007-02-26 61984]
S3 a56015h7;a56015h7; C:\WINDOWS\system32\drivers\a56015h7.sys []
S3 a90vpafg;a90vpafg; C:\WINDOWS\system32\drivers\a90vpafg.sys []
S3 Ambfilt;Ambfilt; C:\WINDOWS\system32\drivers\Ambfilt.sys [2008-08-05 1684736]
S3 driverhardwarev2;driverhardwarev2; \??\C:\Program Files\ma-config.com\Drivers\driverhardwarev2.sys []
S3 Monfilt;Monfilt; C:\WINDOWS\system32\drivers\Monfilt.sys [2006-01-04 1389056]
S3 usbccgp;Pilote parent générique USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
S3 usbprint;Classe d'imprimantes USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Pilote de scanneur USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2009-07-25 153376]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe [2009-08-20 73728]
R2 McAfeeFramework;McAfee Framework Service; C:\Program Files\McAfee\Common Framework\FrameworkService.exe [2006-11-17 104000]
R2 McShield;McAfee McShield; C:\Program Files\McAfee\VirusScan Enterprise\Mcshield.exe [2006-11-30 144960]
R2 McTaskManager;McAfee Task Manager; C:\Program Files\McAfee\VirusScan Enterprise\VsTskMgr.exe [2006-11-30 54872]
R2 Nero BackItUp Scheduler 3;Nero BackItUp Scheduler 3; C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe [2008-06-10 877864]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2009-08-17 168004]
R2 PLFlash DeviceIoControl Service;PLFlash DeviceIoControl Service; C:\WINDOWS\system32\IoctlSvc.exe [2006-12-19 81920]
R2 StarWindServiceAE;StarWind AE Service; C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [2007-05-28 275968]
S3 aspnet_state;Service d'état ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2008-11-20 136120]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 maconfservice;Ma-Config Service; C:\Program Files\ma-config.com\maconfservice.exe [2009-09-01 234864]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files\Fichiers communs\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 NetTcpPortSharing;Service de partage de ports Net.Tcp; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
S4 NMIndexingService;NMIndexingService; C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingService.exe []
-----------------EOF-----------------
C'est le rapport info que je voudrais.
Désolé, le voici :
info.txt logfile of random's system information tool 1.06 2009-11-08 11:39:10
======Uninstall list======
-->C:\Program Files\Nero\Nero8\\nero\uninstall\UNNERO.exe /UNINSTALL
-->C:\WINDOWS\UNNeroBackItUp.exe /UNINSTALL
-->C:\WINDOWS\UNNeroShowTime.exe /UNINSTALL
-->C:\WINDOWS\UNNeroVision.exe /UNINSTALL
-->C:\WINDOWS\UNRecode.exe /UNINSTALL
-->MsiExec /X{C5C1C0F0-D62F-4DBF-81D4-D7EF397C228B}
-->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
Adobe Flash Player 10 ActiveX-->C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
Adobe Flash Player 10 Plugin-->C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
Adobe Reader 9.2 - Français-->MsiExec.exe /I{AC76BA86-7AD7-1036-7B44-A92000000001}
AMD Processor Driver-->C:\Program Files\InstallShield Installation Information\{C151CE54-E7EA-4804-854B-F515368B0798}\setup.exe -runfromtemp -l0x040c -removeonly
Archiveur WinRAR-->C:\Program Files\WinRAR\uninstall.exe
BitSpirit v3.5.0.275 Stable-->"C:\Program Files\BitSpirit\unins000.exe"
Call of Juarez - Bound in Blood-->C:\Program Files\InstallShield Installation Information\{FEFAF112-4DA8-479C-89E2-7DE25091711A}\Setup.exe -runfromtemp -l0x040c
Canon MP Navigator 2.0-->"C:\Program Files\Canon\MP Navigator 2.0\Maint.exe" /UninstallRemove C:\Program Files\Canon\MP Navigator 2.0\uninst.ini
Canon MP170-->"C:\WINDOWS\system32\CanonIJ Uninstaller Information\{91175441-4E5D-4e13-B116-828FD352CDB2}\DelDrv.exe" /U:{91175441-4E5D-4e13-B116-828FD352CDB2} /L0x000c
Correctif pour Windows XP (KB952287)-->"C:\WINDOWS\$NtUninstallKB952287$\spuninst\spuninst.exe"
Correctif pour Windows XP (KB961118)-->"C:\WINDOWS\$NtUninstallKB961118$\spuninst\spuninst.exe"
Correctif pour Windows XP (KB970653-v3)-->"C:\WINDOWS\$NtUninstallKB970653-v3$\spuninst\spuninst.exe"
DAEMON Tools Toolbar-->C:\Program Files\DAEMON Tools Toolbar\uninst.exe
e-Carte Bleue LCL-->"C:\Program Files\InstallShield Installation Information\{3D6B54EF-65E4-4624-8709-03A3BBE2C240}\setup.exe" -runfromtemp -l0x040c -removeonly
EPU-4 Engine-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{8F66047B-1AF3-40D9-80D7-106E2EDC2C2A}\setup.exe" -l0x40c
EVEREST Ultimate Edition v5.30-->"C:\Program Files\Lavalys\EVEREST Ultimate Edition\unins000.exe"
Favorit-->"c:\documents and settings\propriétaire\local settings\application data\tcahvbb.exe" -uninstall
FIFA 09-->MsiExec.exe /X{2315B23D-3E21-4920-837D-AE6460934ECB}
FIFA 10-->MsiExec.exe /X{11202615-E557-4ECF-9B86-F59C81E52909}
FUEL-->C:\Program Files\InstallShield Installation Information\{F51FF206-2273-4B3E-A90A-4752AE288C12}\setup.exe -runfromtemp -l0x040c -removeonly
FW LiveUpdate-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\10\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{11F5D779-7BD9-465A-BBC4-10701386BCB9}\setup.exe" -l0x9 -removeonly
HijackThis 2.0.2-->"C:\Program Files\trend micro\HijackThis.exe" /uninstall
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT=""
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT=""
Hotfix for Windows Media Format 11 SDK (KB929399)-->"C:\WINDOWS\$NtUninstallKB929399$\spuninst\spuninst.exe"
Java(TM) 6 Update 15-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216014FF}
LightScribe System Software-->MsiExec.exe /X{CC8E94A2-55C7-4460-953C-2A790180578C}
Live-Player-->C:\Program Files\Live-Player\uninst.exe
Ma-Config.com-->MsiExec.exe /X{494952B3-AA5A-486C-8495-6BF830962747}
Malwarebytes' Anti-Malware-->"C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"
McAfee VirusScan Enterprise-->MsiExec.exe /I{35C03C04-3F1F-42C2-A989-A757EE691F65}
Microsoft .NET Framework 2.0 Service Pack 2-->MsiExec.exe /I{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}
Microsoft .NET Framework 3.0 French Language Pack-->MsiExec.exe /X{E3C080B0-23F5-49AF-89F8-8E8DBC89E659}
Microsoft .NET Framework 3.0 Service Pack 2-->MsiExec.exe /I{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}
Microsoft .NET Framework 3.5 SP1-->C:\WINDOWS\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
Microsoft .NET Framework 3.5 SP1-->MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
Microsoft Games for Windows - LIVE -->MsiExec.exe /X{4D243BA7-9AC4-46D1-90E5-EEB88974F501}
Microsoft Games for Windows - LIVE Redistributable-->MsiExec.exe /X{05B49229-22A2-4F88-842A-BBC2EBE1CCF6}
Microsoft Kernel-Mode Driver Framework Feature Pack 1.1-->"C:\WINDOWS\$NtUninstallWdf01001$\spuninst\spuninst.exe"
Microsoft Office Access MUI (French) 2007-->MsiExec.exe /X{90120000-0015-040C-0000-0000000FF1CE}
Microsoft Office Excel MUI (French) 2007-->MsiExec.exe /X{90120000-0016-040C-0000-0000000FF1CE}
Microsoft Office InfoPath MUI (French) 2007-->MsiExec.exe /X{90120000-0044-040C-0000-0000000FF1CE}
Microsoft Office Outlook MUI (French) 2007-->MsiExec.exe /X{90120000-001A-040C-0000-0000000FF1CE}
Microsoft Office PowerPoint MUI (French) 2007-->MsiExec.exe /X{90120000-0018-040C-0000-0000000FF1CE}
Microsoft Office Professional Plus 2007-->"C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall PROPLUS /dll OSETUP.DLL
Microsoft Office Professional Plus 2007-->MsiExec.exe /X{90120000-0011-0000-0000-0000000FF1CE}
Microsoft Office Proof (Arabic) 2007-->MsiExec.exe /X{90120000-001F-0401-0000-0000000FF1CE}
Microsoft Office Proof (Dutch) 2007-->MsiExec.exe /X{90120000-001F-0413-0000-0000000FF1CE}
Microsoft Office Proof (English) 2007-->MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
Microsoft Office Proof (French) 2007-->MsiExec.exe /X{90120000-001F-040C-0000-0000000FF1CE}
Microsoft Office Proof (German) 2007-->MsiExec.exe /X{90120000-001F-0407-0000-0000000FF1CE}
Microsoft Office Proof (Spanish) 2007-->MsiExec.exe /X{90120000-001F-0C0A-0000-0000000FF1CE}
Microsoft Office Proofing (French) 2007-->MsiExec.exe /X{90120000-002C-040C-0000-0000000FF1CE}
Microsoft Office Publisher MUI (French) 2007-->MsiExec.exe /X{90120000-0019-040C-0000-0000000FF1CE}
Microsoft Office Shared MUI (French) 2007-->MsiExec.exe /X{90120000-006E-040C-0000-0000000FF1CE}
Microsoft Office Word MUI (French) 2007-->MsiExec.exe /X{90120000-001B-040C-0000-0000000FF1CE}
Microsoft User-Mode Driver Framework Feature Pack 1.0-->"C:\WINDOWS\$NtUninstallWudf01000$\spuninst\spuninst.exe"
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
Microsoft Xbox 360 Accessories 1.1-->MsiExec.exe /X{9F5DF7FC-3AF2-4502-9084-F62FC00A5A3F}
Mise à jour de sécurité pour Lecteur Windows Media (KB952069)-->"C:\WINDOWS\$NtUninstallKB952069_WM9$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Lecteur Windows Media (KB954155)-->"C:\WINDOWS\$NtUninstallKB954155_WM9$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Lecteur Windows Media (KB968816)-->"C:\WINDOWS\$NtUninstallKB968816_WM9$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Lecteur Windows Media (KB973540)-->"C:\WINDOWS\$NtUninstallKB973540_WM9$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 8 (KB971961)-->"C:\WINDOWS\ie8updates\KB971961-IE8\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 8 (KB972260)-->"C:\WINDOWS\ie8updates\KB972260-IE8\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 8 (KB974455)-->"C:\WINDOWS\ie8updates\KB974455-IE8\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB923561)-->"C:\WINDOWS\$NtUninstallKB923561$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB923689)-->"C:\WINDOWS\$NtUninstallKB923689$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB923789)-->C:\WINDOWS\system32\MacroMed\Flash\genuinst.exe C:\WINDOWS\system32\MacroMed\Flash\KB923789.inf
Mise à jour de sécurité pour Windows XP (KB938464-v2)-->"C:\WINDOWS\$NtUninstallKB938464-v2$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB941569)-->"C:\WINDOWS\$NtUninstallKB941569$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB946648)-->"C:\WINDOWS\$NtUninstallKB946648$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB950762)-->"C:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB950974)-->"C:\WINDOWS\$NtUninstallKB950974$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB951066)-->"C:\WINDOWS\$NtUninstallKB951066$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB951376-v2)-->"C:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB951748)-->"C:\WINDOWS\$NtUninstallKB951748$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB952004)-->"C:\WINDOWS\$NtUninstallKB952004$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB952954)-->"C:\WINDOWS\$NtUninstallKB952954$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB954459)-->"C:\WINDOWS\$NtUninstallKB954459$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB954600)-->"C:\WINDOWS\$NtUninstallKB954600$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB955069)-->"C:\WINDOWS\$NtUninstallKB955069$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB956572)-->"C:\WINDOWS\$NtUninstallKB956572$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB956744)-->"C:\WINDOWS\$NtUninstallKB956744$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB956802)-->"C:\WINDOWS\$NtUninstallKB956802$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB956803)-->"C:\WINDOWS\$NtUninstallKB956803$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB956844)-->"C:\WINDOWS\$NtUninstallKB956844$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB957097)-->"C:\WINDOWS\$NtUninstallKB957097$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB958644)-->"C:\WINDOWS\$NtUninstallKB958644$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB958687)-->"C:\WINDOWS\$NtUninstallKB958687$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB958869)-->"C:\WINDOWS\$NtUninstallKB958869$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB959426)-->"C:\WINDOWS\$NtUninstallKB959426$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB960225)-->"C:\WINDOWS\$NtUninstallKB960225$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB960803)-->"C:\WINDOWS\$NtUninstallKB960803$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB960859)-->"C:\WINDOWS\$NtUninstallKB960859$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB961371-v2)-->"C:\WINDOWS\$NtUninstallKB961371-v2$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB961501)-->"C:\WINDOWS\$NtUninstallKB961501$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB968537)-->"C:\WINDOWS\$NtUninstallKB968537$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB969059)-->"C:\WINDOWS\$NtUninstallKB969059$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB970238)-->"C:\WINDOWS\$NtUninstallKB970238$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB971486)-->"C:\WINDOWS\$NtUninstallKB971486$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB971557)-->"C:\WINDOWS\$NtUninstallKB971557$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB971633)-->"C:\WINDOWS\$NtUninstallKB971633$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB971657)-->"C:\WINDOWS\$NtUninstallKB971657$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB972260)-->"C:\WINDOWS\$NtUninstallKB972260$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB973346)-->"C:\WINDOWS\$NtUninstallKB973346$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB973354)-->"C:\WINDOWS\$NtUninstallKB973354$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB973507)-->"C:\WINDOWS\$NtUninstallKB973507$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB973525)-->"C:\WINDOWS\$NtUninstallKB973525$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB973869)-->"C:\WINDOWS\$NtUninstallKB973869$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB974112)-->"C:\WINDOWS\$NtUninstallKB974112$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB974571)-->"C:\WINDOWS\$NtUninstallKB974571$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB975025)-->"C:\WINDOWS\$NtUninstallKB975025$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB975467)-->"C:\WINDOWS\$NtUninstallKB975467$\spuninst\spuninst.exe"
Mise à jour pour Windows Internet Explorer 8 (KB973874)-->"C:\WINDOWS\ie8updates\KB973874-IE8\spuninst\spuninst.exe"
Mise à jour pour Windows Internet Explorer 8 (KB976749)-->"C:\WINDOWS\ie8updates\KB976749-IE8\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB898461)-->"C:\WINDOWS\$NtUninstallKB898461$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB951978)-->"C:\WINDOWS\$NtUninstallKB951978$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB967715)-->"C:\WINDOWS\$NtUninstallKB967715$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB968389)-->"C:\WINDOWS\$NtUninstallKB968389$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB973815)-->"C:\WINDOWS\$NtUninstallKB973815$\spuninst\spuninst.exe"
Module de prise en charge linguistique de Microsoft .NET Framework 2.0 - FRA-->C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft .NET Framework 2.0 Language Pack - FRA\install.exe
Module de prise en charge linguistique du français de Microsoft .NET Framework 3.0-->C:\WINDOWS\Microsoft.NET\Framework\v3.0\Microsoft .NET Framework 3.0 French Language Pack\setup.exe
Mozilla Firefox (3.5.5)-->C:\Program Files\Mozilla Firefox\uninstall\helper.exe
MpcStar 3.1-->C:\Program Files\MpcStar\uninst.exe
MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
MSXML 6.0 Parser (KB925673)-->MsiExec.exe /I{FE9126DB-5F84-495A-BB46-3C724F1C2D08}
Nero 8 Essentials-->MsiExec.exe /X{9B700657-676B-4A98-8B25-40A1BAC81036}
neroxml-->MsiExec.exe /I{56C049BE-79E9-4502-BEA7-9754A3E60F9B}
NVIDIA Drivers-->C:\WINDOWS\system32\nvuninst.exe UninstallGUI
NVIDIA nView Desktop Manager-->C:\Program Files\NVIDIA Corporation\nView\nViewSetup.exe -uninstall
NVIDIA PhysX-->MsiExec.exe /X{C5C1C0F0-D62F-4DBF-81D4-D7EF397C228B}
Oxemis Video Library-->MsiExec.exe /X{BEA7AB47-1FDF-4348-BDBB-758D05FF74AA}
Picasa 3-->"C:\Program Files\Google\Picasa3\Uninstall.exe"
Pro Evolution Soccer 2009-->MsiExec.exe /X{A8DB611A-D80E-450D-85F6-3ACDD164BE31}
RapidTyping-->"C:\Program Files\RapidTyping\Uninstall.exe"
REALTEK GbE & FE Ethernet PCI-E NIC Driver-->C:\Program Files\InstallShield Installation Information\{C9BED750-1211-4480-B1A5-718A3BE15525}\Setup.exe -runfromtemp -l0x040c -removeonly
Realtek High Definition Audio Driver-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}\setup.exe" -l0x40c -removeonly
Spybot - Search & Destroy-->"C:\Program Files\Spybot - Search & Destroy\unins000.exe"
TVUPlayer 2.4.8.2-->C:\Program Files\TVUPlayer\uninst.exe
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {B2AE9C82-DC7B-3641-BFC8-87275C4F3607} /qb+ REBOOTPROMPT=""
UUSee ²¥·Å²å¼þ»ù´¡°ü 4.8.306.18-->C:\Program Files\Fichiers communs\uusee\uninst.exe
UUSee ÍøÂçµçÊÓ [4.8.307.11]-->C:\Program Files\uusee\uninstuusee.exe
VideoLAN VLC media player 0.8.6b-->C:\Program Files\VideoLAN\VLC\uninstall.exe
Windows Internet Explorer 8-->"C:\WINDOWS\ie8\spuninst\spuninst.exe"
Windows Media Format 11 runtime-->"C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
Windows Media Format 11 runtime-->"C:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe"
Windows Presentation Foundation Language Pack (FRA)-->MsiExec.exe /X{6901DD22-527A-41EF-9059-E81FEDE9E494}
Windows Presentation Foundation-->MsiExec.exe /X{BAF78226-3200-4DB4-BE33-4D922A799840}
Windows Workflow Foundation FR Language Pack-->MsiExec.exe /I{B84C141C-9A13-44BE-9A69-301D7B11D836}
XML Paper Specification Shared Components Language Pack 1.0-->"C:\WINDOWS\$NtUninstallXPSEPSCLP$\spuninst\spuninst.exe"
??????? 2.0-->C:\Program Files\Google\Google Pinyin 2\GooglePinyinUninstaller.exe
======Hosts File======
127.0.0.1 www.007guard.com
127.0.0.1 007guard.com
127.0.0.1 008i.com
127.0.0.1 www.008k.com
127.0.0.1 008k.com
127.0.0.1 www.00hq.com
127.0.0.1 00hq.com
127.0.0.1 010402.com
127.0.0.1 www.032439.com
127.0.0.1 032439.com
======Security center information======
AV: McAfee VirusScan Enterprise
======System event log======
Computer Name: ERIC-A248208F90
Event Code: 7036
Message: Le service McAfee McShield est entré dans l'état : en cours d'exécution.
Record Number: 4192
Source Name: Service Control Manager
Time Written: 20090929201621.000000+120
Event Type: Informations
User:
Computer Name: ERIC-A248208F90
Event Code: 7035
Message: Un contrôle Démarrer a correctement été envoyé au service McAfee McShield.
Record Number: 4191
Source Name: Service Control Manager
Time Written: 20090929201614.000000+120
Event Type: Informations
User: AUTORITE NT\SYSTEM
Computer Name: ERIC-A248208F90
Event Code: 7034
Message: Le service McAfee McShield s'est terminé de façon inattendue pour la 1ème fois.
Record Number: 4190
Source Name: Service Control Manager
Time Written: 20090929201609.000000+120
Event Type: erreur
User:
Computer Name: ERIC-A248208F90
Event Code: 4226
Message: TCP/IP a atteint la limite de sécurité imposée sur le nombre de tentatives de connexion TCP simultanées.
Record Number: 4189
Source Name: Tcpip
Time Written: 20090929194238.000000+120
Event Type: Avertissement
User:
Computer Name: ERIC-A248208F90
Event Code: 4226
Message: TCP/IP a atteint la limite de sécurité imposée sur le nombre de tentatives de connexion TCP simultanées.
Record Number: 4188
Source Name: Tcpip
Time Written: 20090929191317.000000+120
Event Type: Avertissement
User:
=====Application event log=====
Computer Name: ERIC-A248208F90
Event Code: 1800
Message: Le service Centre de sécurité Windows a démarré.
Record Number: 2828
Source Name: SecurityCenter
Time Written: 20091020180923.000000+120
Event Type: Informations
User:
Computer Name: ERIC-A248208F90
Event Code: 105
Message: The service was started.
Record Number: 2827
Source Name: PLFlash DeviceIoControl Service
Time Written: 20091020180922.000000+120
Event Type: Informations
User:
Computer Name: ERIC-A248208F90
Event Code: 0
Message:
Record Number: 2826
Source Name: Nero BackItUp Scheduler 3
Time Written: 20091020180922.000000+120
Event Type: Informations
User:
Computer Name: ERIC-A248208F90
Event Code: 4
Message: The LightScribe Service started successfully.
Record Number: 2825
Source Name: LightScribeService
Time Written: 20091020180918.000000+120
Event Type: Informations
User:
Computer Name: ERIC-A248208F90
Event Code: 1517
Message: Windows a sauvegardé le Registre utilisateur ERIC-A248208F90\Propriétaire alors qu'une application ou un service utilisait toujours le Registre pendant la fermeture de la session. La mémoire utilisée par le Registre de l'utilisateur n'a pas été libérée. le Registre sera déchargé lorsqu'il ne sera plus utilisé.
Cela est souvent causé par des services s'exécutant en tant que compte d'utilisateur, essayez de configurer les services pour s'exécuter dans le compte service réseau ou service local.
Record Number: 2824
Source Name: Userenv
Time Written: 20091019235357.000000+120
Event Type: Avertissement
User: AUTORITE NT\SYSTEM
======Environment variables======
"ComSpec"=%SystemRoot%\system32\cmd.exe
"Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem
"windir"=%SystemRoot%
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"PROCESSOR_ARCHITECTURE"=x86
"PROCESSOR_LEVEL"=16
"PROCESSOR_IDENTIFIER"=x86 Family 16 Model 2 Stepping 3, AuthenticAMD
"PROCESSOR_REVISION"=0203
"NUMBER_OF_PROCESSORS"=4
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"VSEDEFLOGDIR"=C:\Documents and Settings\All Users\Application Data\McAfee\DesktopProtection
"DEFLOGDIR"=C:\Documents and Settings\All Users\Application Data\McAfee\DesktopProtection
-----------------EOF-----------------
- Désinstalle DAEMON Tools Toolbar et Java(TM) 6 Update 15.
- Mets à jour Java.
- Télécharge OTM (OldTimer) sur ton Bureau.
- Double-clique sur OTM.exe afin de le lancer.
- Copie (Ctrl+C) le texte suivant ci-dessous :
:processes
|
- Colle (Ctrl+V) le texte précédemment copié dans le cadre Paste Instructions for Items to be Moved.
- Clique maintenant sur le bouton MoveIt! puis ferme OTM.
---> Si un fichier ou dossier ne peut pas être supprimé immédiatement, le logiciel te demandera de redémarrer.
Accepte en cliquant sur YES.
- Poste le rapport situé dans ce dossier : C:\_OTM\MovedFiles\
---> Le nom du rapport correspond au moment de sa création : date_heure.log
Il y a 1473 utilisateurs connus et inconnus. Pour voir la liste des connectés connus, cliquez ici.
