Kasperky a trouver 6 virus que faire

Résolu
dadoux.30 Messages postés 619 Statut Membre -  
 gen-hackman -
Bonjour,
kapersky a trouver des programes potentiellemeznt indesirables
C:\Windows\system32\Macromed\Flash\Flash10a.ocx
C:\program files\itunes\iTunes.exe
C:\Program Files\Adobe\Reader 8.0\Reader\RdLang32.FRA
C:\Program Files\Focus\Techland\Call of Juarez\jre\bin\eula.dll
C:\Program Files\Java\jre6\bin\java.exe
C:\Windows\System32\java.exe

il attend que je lui reponde ( il propose coriger )
que faire
Configuration: Windows Vista
Internet Explorer 7.0

91 réponses

  • 1
  • 2
  • 3
  • 4
  • 5
Résumé de la discussion

Kaspersky détecte des programmes potentiellement indésirables dans des emplacements Windows Vista, liés à Flash, iTunes, Reader et Java, et la discussion porte sur la conduite à tenir. Plusieurs répondants considèrent qu'il s'agit d'un faux message et conseillent de ne pas télécharger les éléments, tandis que d'autres suggèrent d'utiliser des outils de détection tels que HijackThis et OTMoveIt. D'autres évoquent une potentielle présence d'un rootkit et recommandent d'analyser le système avec plusieurs outils, tout en discutant des différences entre Vista et XP et de la gestion des pilotes. En cas de doute, la prudence implique de vérifier les alertes avec des outils complémentaires et de ne pas accorder d'importance à un seul rapport, car les messages d'alerte varient selon l'outil.

Généré automatiquement par IA
sur la base des meilleures réponses
  1. loloetseb Messages postés 5684 Statut Membre 174
     
    Oui je pense que c'est un faux message qui te propose en fait de telecharger une verrole
    1
  2. Destrio5 Messages postés 99820 Date d'inscription   Statut Modérateur Dernière intervention   10 324
     
    Il faut trouver des pilotes XP pour ton PC sinon tu risques de te retrouver sans son, sans carte réseau, etc...
    1
    1. dadoux.30 Messages postés 619 Statut Membre 3
       
      oui oui je vois
      c'est que dans ce vista de restauration tout y a ete inclus comme justement pilotes carte son , reseau , carte graphique

      existe ti aussi des pilotes qui correspondent aux processeurs ?
      0
  3. Destrio5 Messages postés 99820 Date d'inscription   Statut Modérateur Dernière intervention   10 324
     
    Vista possède déjà le pilote pour le processeur, XP aussi.
    1
    1. dadoux.30 Messages postés 619 Statut Membre 3
       
      mais je suis toujour un peu dans la balance entre XP et vista

      je vais y reflechir

      si non pour en revenir a non moutons ( ha non c'est vrai , c'est des virus )

      donc apparement kaspersky est tres bon ( donc je peut passer a la licence )
      apres , est-ce que je peut installer quand meme installer Avira avec en paralelle et de le faire travailler en le lancant manuel ( bien sur en ayant fermer kaspersky avant )
      est-ce possible , ou peut etre meme inutile
      et que mettre d'autre pour proteger mon pc
      0
  4. Destrio5 Messages postés 99820 Date d'inscription   Statut Modérateur Dernière intervention   10 324
     
    Salut,

    Ces programmes sont légitimes, il faut juste les mettre à jour.
    0
  5. Vous n’avez pas trouvé la réponse que vous recherchez ?

    Posez votre question
  6. dadoux.30 Messages postés 619 Statut Membre 3
     
    je ne peut pas aller non plus au lien
    http://forum.pcastuces.com/tutoriel___kaspersky_internet_sec­urity_2009-f25s44016.htm

    comme je viens de finir l'analise je vais redemarer ( je reviens tout de suite )
    0
  7. loloetseb Messages postés 5684 Statut Membre 174
     
    Afin d'evaluer si tu as des infections sur ton pc,fais ceci

    Télécharge Random's System Information Tool (RSIT) de random/random et enregistre l'exécutable sur ton Bureau.

    -> http://images.malwareremoval.com/random/RSIT.exe

    ! Déconnecte toi et ferme toutes tes applications en cours !

    Double-clique sur " RSIT.exe " pour le lancer .

    -> Une première fenêtre s'ouvre avec en titre : " Disclaimer of warranty " .

    * Devant l'option "List files/folders created ..." , tu choisis : 2 months

    * clique ensuite sur " Continue " pour lancer l'analyse ...

    -> laisse faire le scan et ne touche pas au PC ...

    Lorsque l'analyse sera terminée, deux fichiers texte s'ouvriront (probablement avec le bloc-note).

    Poste le contenu de " log.txt " (c'est celui qui apparait à l'écran), ainsi que de " info.txt " (que tu verras dans la barre des tâches), pour analyse et attends la suite ...

    Important : poste un rapport, puis l'autre dans la réponse suivante
    Si tu essaies de poster les deux en même temps, cela risque d'être trop long pour le forum

    ( Note : les rapports seront en outre sauvegardés dans ce dossier -> C:\rsit )
    0
    1. dadoux.30 Messages postés 619 Statut Membre 3
       
      enfin apres redemarage j'ai enfin acces aux sites
      donc pour confirmation mes 6 problemes a la base sont des mise a jours a faire

      par securite je vais suivre ce que tu m'a dit

      a+
      0
    2. dadoux.30 Messages postés 619 Statut Membre 3
       
      Logfile of random's system information tool 1.06 (written by random/random)
      Run by dadoux at 2009-04-10 15:48:34
      Microsoft® Windows Vista™ Édition Familiale Premium Service Pack 1
      System drive C: has 268 GB (45%) free of 598 GB
      Total RAM: 3325 MB (73% free)

      HijackThis download failed

      ======Scheduled tasks folder======

      C:\Windows\tasks\Extension de garantie-dadoux.job
      C:\Windows\tasks\Google Software Updater.job
      C:\Windows\tasks\GoogleUpdateTaskMachine.job
      C:\Windows\tasks\Norton Internet Security - Effectuer une analyse complète du système - dadoux.job
      C:\Windows\tasks\User_Feed_Synchronization-{5F2553C8-C952-4C8C-9EB0-A4C2E731602C}.job

      ======Registry dump======

      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4efb-9B51-7695ECA05670}]

      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
      Aide pour le lien d'Adobe PDF Reader - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-23 62080]

      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
      RealPlayer Download and Record Plugin for Internet Explorer - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll [2009-02-01 304736]

      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31FF080D-12A3-439A-A2EF-4BA95A3148E8}]
      IE to GetRight Helper - C:\Program Files\GetRight\xx2gr.dll [2007-07-18 246848]

      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C}]
      IEVkbdBHO Class - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\ievkbd.dll [2008-11-11 62728]

      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}]

      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}]
      Symantec Intrusion Prevention - C:\PROGRA~1\COMMON~1\SYMANT~1\IDS\IPSBHO.dll []

      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
      Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll [2009-01-14 92504]

      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
      Programme d'aide de l'Assistant de connexion Windows Live - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]

      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
      Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll [2009-03-25 668656]

      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CA6319C0-31B7-401E-A518-A07C3DB8F777}]
      CBrowserHelperObject Object - C:\Program Files\Google\Google_BAE\BAE.dll [2006-11-09 98304]

      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
      Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-03-19 35840]

      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
      Windows Live Toolbar Helper - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]

      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
      {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA}
      {21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]

      [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
      "Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-21 1008184]
      "VirtualCloneDrive"=C:\Program Files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [2008-06-30 52168]
      "RtHDVCpl"=C:\Windows\RtHDVCpl.exe [2007-10-01 4702208]
      "NvMediaCenter"=C:\Windows\system32\NvMcTray.dll [2008-09-18 92704]
      "NvCplDaemon"=C:\Windows\system32\NvCpl.dll [2008-09-18 13580832]
      "TkBellExe"=C:\Program Files\Common Files\Real\Update_OB\realsched.exe [2009-02-01 185872]
      "QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2009-01-05 413696]
      "iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2009-01-06 290088]
      "TrojanScanner"=C:\Program Files\Trojan Remover\Trjscan.exe [2009-02-27 1211784]
      "AppleSyncNotifier"=C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe [2009-02-06 177472]
      "SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2009-03-19 148888]
      "Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [2008-10-15 39792]
      "CloneDVDElbyDelay"=C:\Program Files\Elaborate Bytes\CloneDVD\ElbyCheck.exe [2002-11-02 45056]
      "AVP"=C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe [2009-04-09 206088]

      [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
      "WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2008-01-21 202240]
      "Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2008-01-21 1233920]
      "SmpcSys"=C:\Program Files\Packard Bell\SetUpMyPC\SmpSys.exe [2008-02-04 1038136]
      "PeerGuardian"=C:\Program Files\PeerGuardian2\pg2.exe [2007-06-02 1457152]
      "IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe [2008-04-28 1828136]
      "ehTray.exe"=C:\Windows\ehome\ehTray.exe [2008-01-21 125952]
      "swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2009-02-07 39408]
      "SUPERAntiSpyware"=C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [2009-03-23 1830128]

      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ACTIVBOARD]
      C:\Program Files\Packard Bell\FIJI\aboard.exe [2007-01-18 79416]

      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
      C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [2008-10-15 39792]

      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AlcoholAutomount]
      C:\Program Files\Alcohol Soft\Alcohol 120\axcmd.exe [2008-11-23 203720]

      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CarboniteSetupLite]
      C:\Program Files\Packard Bell\Carbonite\CarboniteSetupLitePBPreInstaller.exe /preinstalled []

      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CloneCDTray]
      C:\Program Files\SlySoft\CloneCD\CloneCDTray.exe [2006-09-28 57344]

      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Desktop Search]
      C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe /startup []

      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\lxczbmgr.exe]
      C:\Program Files\Lexmark 1200 Series\lxczbmgr.exe [2007-04-19 74672]

      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]
      C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2009-02-07 39408]

      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\toolbar_eula_launcher]
      C:\Program Files\Packard Bell\GOOGLE_EULA\EULALauncher.exe [2007-02-20 28672]

      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinampAgent]
      C:\Program Files\Winamp\winampa.exe []

      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^dadoux^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Creative Element Power Tools Startup.lnk]
      C:\PROGRA~1\CREATI~1\Startup.exe [2009-01-15 253096]

      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^dadoux^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^PeerGuardian.lnk]
      C:\PROGRA~1\PEERGU~1\pg2.exe [2007-06-02 1457152]

      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
      GetRight.lnk - C:\Program Files\GetRight\GetRight.exe

      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
      "AppInit_DLLS"="C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd.dll,C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd3.dll,C:\PROGRA~1\KASPER~1\KASPER~1\adialhk.dll,C:\PROGRA~1\KASPER~1\KASPER~1\kloehk.dll"

      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\!SASWinLogon]
      C:\Program Files\SUPERAntiSpyware\SASWINLO.dll [2008-12-22 356352]

      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\klogon]
      C:\Windows\system32\klogon.dll [2008-11-11 218376]

      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
      "{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"=C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [2008-05-13 77824]

      [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
      "EnableLUA"=0
      "dontdisplaylastusername"=0
      "legalnoticecaption"=
      "legalnoticetext"=
      "shutdownwithoutlogon"=1
      "undockwithoutlogon"=1
      "EnableUIADesktopToggle"=0

      [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
      "NoDriveAutoRun"=67108863
      "HonorAutorunSetting"=1
      "NoDriveTypeAutoRun"=255

      [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
      "NoDriveAutoRun"=
      "HonorAutorunSetting"=
      "NoDriveTypeAutoRun"=

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
      "C:\Program Files\BitTorrent\bittorrent.exe"="C:\Program Files\BitTorrent\bittorrent.exe:*:Enabled:BitTorrent"

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

      [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\D]
      shell\AutoRun\command - D:\autorun.exe
      shell\install\command - D:\autorun.exe

      [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{3855705b-e581-11dd-8914-00226803bf49}]
      shell\AutoRun\command - wd_windows_tools\WDSetup.exe

      [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{519c2fd0-e530-11dd-a92d-806e6f6e6963}]
      shell\AutoRun\command - D:\BelkinBluetooth.exe


      ======File associations======

      .js - edit - C:\Windows\System32\Notepad.exe %1
      .js - open - C:\Windows\System32\WScript.exe "%1" %*

      ======List of files/folders created in the last 2 months======

      2009-04-10 15:48:34 ----D---- C:\rsit
      2009-04-10 15:11:07 ----A---- C:\Kaspersky analise 10 04 2009.txt
      2009-04-10 09:47:46 ----D---- C:\Windows\Sun
      2009-04-09 22:35:37 ----D---- C:\ProgramData\Kaspersky Lab
      2009-04-09 22:35:37 ----D---- C:\Program Files\Kaspersky Lab
      2009-04-09 22:26:27 ----D---- C:\ProgramData\Kaspersky Lab Setup Files
      2009-04-09 17:48:46 ----AT---- C:\Windows\system32\SIntfNT.dll
      2009-04-09 17:48:46 ----AT---- C:\Windows\system32\SIntf32.dll
      2009-04-09 17:48:46 ----AT---- C:\Windows\system32\SIntf16.dll
      2009-04-08 22:32:07 ----D---- C:\DVD a Graver
      2009-04-08 19:05:03 ----D---- C:\Program Files\Gabest
      2009-04-08 18:04:21 ----HD---- C:\Windows\PIF
      2009-04-08 09:46:01 ----D---- C:\ANALYSE AV
      2009-04-07 19:45:47 ----D---- C:\Dossier BLUETOOCH
      2009-04-07 09:43:34 ----D---- C:\ProgramData\WLInstaller
      2009-04-06 22:56:21 ----D---- C:\ProgramData\Babylon
      2009-04-06 22:56:20 ----D---- C:\Users\dadoux\AppData\Roaming\Babylon
      2009-04-06 19:38:43 ----D---- C:\Program Files\Audacity
      2009-04-06 17:52:02 ----D---- C:\Program Files\WIDCOMM
      2009-04-06 13:39:30 ----A---- C:\trace.txt
      2009-04-05 21:09:12 ----D---- C:\Program Files\filehippo.com
      2009-04-05 14:37:49 ----A---- C:\ActiveScan.txt
      2009-04-05 12:22:52 ----D---- C:\Program Files\Panda Security
      2009-04-05 12:12:26 ----D---- C:\Program Files\FlashPlayer
      2009-04-05 11:55:31 ----D---- C:\Program Files\Eye On Network
      2009-04-05 10:30:28 ----D---- C:\Program Files\removeit
      2009-04-04 21:25:18 ----A---- C:\Windows\ntbtlog.txt
      2009-04-04 21:08:30 ----D---- C:\ProgramData\SUPERAntiSpyware.com
      2009-04-04 21:08:05 ----D---- C:\Users\dadoux\AppData\Roaming\SUPERAntiSpyware.com
      2009-04-04 21:08:05 ----D---- C:\Program Files\SUPERAntiSpyware
      2009-04-04 13:04:30 ----D---- C:\Program Files\Ad-remover
      2009-04-04 11:38:28 ----D---- C:\Program Files\Trend Micro
      2009-04-03 18:41:53 ----D---- C:\Program Files\EVE Interactive
      2009-04-03 18:36:23 ----D---- C:\Program Files\Common Files\Wise Installation Wizard
      2009-04-03 17:52:28 ----D---- C:\Program Files\AxBx
      2009-04-03 15:59:32 ----D---- C:\Program Files\xp-AntiSpy
      2009-04-02 11:48:24 ----A---- C:\Windows\NeroDigital.ini
      2009-04-01 13:12:55 ----D---- C:\Users\dadoux\AppData\Roaming\Malwarebytes
      2009-04-01 13:12:29 ----D---- C:\ProgramData\Malwarebytes
      2009-04-01 13:12:28 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
      2009-04-01 13:10:34 ----D---- C:\Users\dadoux\AppData\Roaming\Yahoo!
      2009-04-01 13:10:32 ----D---- C:\Program Files\Yahoo!
      2009-04-01 13:10:29 ----D---- C:\Program Files\CCleaner
      2009-04-01 11:04:38 ----D---- C:\Program Files\HHD Software
      2009-03-31 20:46:12 ----A---- C:\Windows\PROTOCOL.INI
      2009-03-31 20:45:59 ----A---- C:\Windows\system32\VBAR332.DLL
      2009-03-31 20:45:59 ----A---- C:\Windows\system32\ODBCTL32.DLL
      2009-03-31 20:45:59 ----A---- C:\Windows\system32\MSXBSE35.DLL
      2009-03-31 20:45:59 ----A---- C:\Windows\system32\MSTEXT35.DLL
      2009-03-31 20:45:59 ----A---- C:\Windows\system32\MSREPL35.DLL
      2009-03-31 20:45:59 ----A---- C:\Windows\system32\MSRD2X35.DLL
      2009-03-31 20:45:59 ----A---- C:\Windows\system32\MSPDOX35.DLL
      2009-03-31 20:45:59 ----A---- C:\Windows\system32\MSJTER35.DLL
      2009-03-31 20:45:59 ----A---- C:\Windows\system32\MSJINT35.DLL
      2009-03-31 20:45:59 ----A---- C:\Windows\system32\MSJET35.DLL
      2009-03-31 20:45:59 ----A---- C:\Windows\system32\MSEXCL35.DLL
      2009-03-31 20:45:58 ----A---- C:\Windows\system32\Msvbvm50.dll
      2009-03-31 20:44:56 ----D---- C:\MICROAPP
      2009-03-31 20:36:10 ----D---- C:\Synthétiseur
      2009-03-31 09:58:54 ----D---- C:\Program Files\Camera Cafe 2
      2009-03-30 13:25:54 ----A---- C:\Windows\system32\mshtmler.dll
      2009-03-30 13:25:54 ----A---- C:\Windows\system32\mshtmled.dll
      2009-03-30 13:25:54 ----A---- C:\Windows\system32\ieui.dll
      2009-03-30 13:25:54 ----A---- C:\Windows\system32\icardie.dll
      2009-03-30 13:25:54 ----A---- C:\Windows\system32\admparse.dll
      2009-03-30 13:25:53 ----A---- C:\Windows\system32\msls31.dll
      2009-03-30 13:25:53 ----A---- C:\Windows\system32\jsproxy.dll
      2009-03-30 13:25:53 ----A---- C:\Windows\system32\imgutil.dll
      2009-03-30 13:25:53 ----A---- C:\Windows\system32\iernonce.dll
      2009-03-30 13:25:53 ----A---- C:\Windows\system32\ieakeng.dll
      2009-03-30 13:25:53 ----A---- C:\Windows\system32\dxtmsft.dll
      2009-03-30 13:25:53 ----A---- C:\Windows\system32\corpol.dll
      2009-03-30 13:25:52 ----A---- C:\Windows\system32\occache.dll
      2009-03-30 13:25:52 ----A---- C:\Windows\system32\msfeedsbs.dll
      2009-03-30 13:25:52 ----A---- C:\Windows\system32\licmgr10.dll
      2009-03-30 13:25:52 ----A---- C:\Windows\system32\inseng.dll
      2009-03-30 13:25:52 ----A---- C:\Windows\system32\iepeers.dll
      2009-03-30 13:25:52 ----A---- C:\Windows\system32\ieaksie.dll
      2009-03-30 13:25:52 ----A---- C:\Windows\system32\dxtrans.dll
      2009-03-30 13:25:51 ----A---- C:\Windows\system32\WinFXDocObj.exe
      2009-03-30 13:25:51 ----A---- C:\Windows\system32\wextract.exe
      2009-03-30 13:25:51 ----A---- C:\Windows\system32\webcheck.dll
      2009-03-30 13:25:51 ----A---- C:\Windows\system32\mstime.dll
      2009-03-30 13:25:51 ----A---- C:\Windows\system32\msrating.dll
      2009-03-30 13:25:51 ----A---- C:\Windows\system32\msfeedssync.exe
      2009-03-30 13:25:51 ----A---- C:\Windows\system32\iesetup.dll
      2009-03-30 13:25:51 ----A---- C:\Windows\system32\ieakui.dll
      2009-03-30 13:25:50 ----A---- C:\Windows\system32\pngfilt.dll
      2009-03-30 13:25:50 ----A---- C:\Windows\system32\msfeeds.dll
      2009-03-30 13:25:50 ----A---- C:\Windows\system32\ieapfltr.dll
      2009-03-30 13:25:50 ----A---- C:\Windows\system32\advpack.dll
      2009-03-30 13:25:49 ----A---- C:\Windows\system32\vbscript.dll
      2009-03-30 13:25:49 ----A---- C:\Windows\system32\url.dll
      2009-03-30 13:25:49 ----A---- C:\Windows\system32\jscript.dll
      2009-03-30 13:25:49 ----A---- C:\Windows\system32\iedkcs32.dll
      2009-03-30 13:25:48 ----A---- C:\Windows\system32\mshta.exe
      2009-03-30 13:25:48 ----A---- C:\Windows\system32\iexpress.exe
      2009-03-30 13:25:47 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
      2009-03-30 13:25:47 ----A---- C:\Windows\system32\SetDepNx.exe
      2009-03-30 13:25:47 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
      2009-03-30 13:25:47 ----A---- C:\Windows\system32\PDMSetup.exe
      2009-03-30 13:25:47 ----A---- C:\Windows\system32\ieUnatt.exe
      2009-03-30 13:25:47 ----A---- C:\Windows\system32\iesysprep.dll
      2009-03-30 13:25:47 ----A---- C:\Windows\system32\iertutil.dll
      2009-03-30 13:25:47 ----A---- C:\Windows\system32\ie4uinit.exe
      2009-03-30 13:25:46 ----A---- C:\Windows\system32\wininet.dll
      2009-03-30 13:25:46 ----A---- C:\Windows\system32\urlmon.dll
      2009-03-30 13:25:44 ----A---- C:\Windows\system32\mshtml.dll
      2009-03-30 13:25:44 ----A---- C:\Windows\system32\ieframe.dll
      2009-03-30 10:10:56 ----D---- C:\Program Files\Microsoft Silverlight
      2009-03-30 10:09:57 ----D---- C:\Program Files\Microsoft Sync Framework
      2009-03-30 10:08:28 ----D---- C:\Program Files\Microsoft SQL Server Compact Edition
      2009-03-30 10:06:45 ----D---- C:\Program Files\Microsoft
      2009-03-30 10:06:28 ----D---- C:\Program Files\Windows Live SkyDrive
      2009-03-30 10:06:12 ----D---- C:\Program Files\Windows Live
      2009-03-22 19:26:54 ----D---- C:\ProgramData\NOS
      2009-03-22 19:26:54 ----D---- C:\Program Files\NOS
      2009-03-19 07:19:51 ----A---- C:\Windows\system32\javaws.exe
      2009-03-19 07:19:51 ----A---- C:\Windows\system32\javaw.exe
      2009-03-19 07:19:51 ----A---- C:\Windows\system32\java.exe
      2009-03-15 18:46:52 ----D---- C:\Users\dadoux\AppData\Roaming\Alawar
      2009-03-15 18:41:14 ----D---- C:\Program Files\Strike Ball 2
      2009-03-15 18:39:45 ----D---- C:\Program Files\ReflexiveArcade
      2009-03-13 23:58:05 ----A---- C:\Windows\system32\MRT.INI
      2009-03-12 22:36:30 ----D---- C:\Program Files\FruitsDay
      2009-03-11 20:17:56 ----A---- C:\Windows\system32\D3DX9_40.dll
      2009-03-11 20:17:56 ----A---- C:\Windows\system32\d3dx10_40.dll
      2009-03-11 20:17:56 ----A---- C:\Windows\system32\D3DCompiler_40.dll
      2009-03-11 20:17:55 ----A---- C:\Windows\system32\XAudio2_3.dll
      2009-03-11 20:17:55 ----A---- C:\Windows\system32\XAPOFX1_2.dll
      2009-03-11 20:17:54 ----A---- C:\Windows\system32\xactengine3_3.dll
      2009-03-11 20:17:54 ----A---- C:\Windows\system32\X3DAudio1_5.dll
      2009-03-11 20:17:53 ----A---- C:\Windows\system32\XAudio2_2.dll
      2009-03-11 20:17:53 ----A---- C:\Windows\system32\XAPOFX1_1.dll
      2009-03-11 20:17:53 ----A---- C:\Windows\system32\xactengine3_2.dll
      2009-03-11 20:17:52 ----A---- C:\Windows\system32\d3dx10_39.dll
      2009-03-11 20:17:52 ----A---- C:\Windows\system32\D3DCompiler_39.dll
      2009-03-11 20:17:51 ----A---- C:\Windows\system32\D3DX9_39.dll
      2009-03-11 20:17:50 ----A---- C:\Windows\system32\XAudio2_1.dll
      2009-03-11 20:17:50 ----A---- C:\Windows\system32\XAPOFX1_0.dll
      2009-03-11 20:17:50 ----A---- C:\Windows\system32\xactengine3_1.dll
      2009-03-11 20:17:49 ----A---- C:\Windows\system32\X3DAudio1_4.dll
      2009-03-11 20:17:48 ----A---- C:\Windows\system32\D3DX9_38.dll
      2009-03-11 20:17:48 ----A---- C:\Windows\system32\d3dx10_38.dll
      2009-03-11 20:17:48 ----A---- C:\Windows\system32\D3DCompiler_38.dll
      2009-03-11 20:17:47 ----A---- C:\Windows\system32\XAudio2_0.dll
      2009-03-11 20:17:47 ----A---- C:\Windows\system32\xactengine3_0.dll
      2009-03-11 20:17:46 ----A---- C:\Windows\system32\X3DAudio1_3.dll
      2009-03-11 20:17:45 ----A---- C:\Windows\system32\D3DX9_37.dll
      2009-03-11 20:17:45 ----A---- C:\Windows\system32\d3dx10_37.dll
      2009-03-11 20:17:45 ----A---- C:\Windows\system32\D3DCompiler_37.dll
      2009-03-11 20:17:44 ----A---- C:\Windows\system32\xactengine2_10.dll
      2009-03-11 20:17:43 ----A---- C:\Windows\system32\d3dx10_36.dll
      2009-03-11 20:17:43 ----A---- C:\Windows\system32\D3DCompiler_36.dll
      2009-03-11 20:17:42 ----A---- C:\Windows\system32\d3dx9_36.dll
      2009-03-11 20:17:41 ----A---- C:\Windows\system32\xactengine2_9.dll
      2009-03-11 20:17:41 ----A---- C:\Windows\system32\d3dx10_35.dll
      2009-03-11 20:17:40 ----A---- C:\Windows\system32\d3dx9_35.dll
      2009-03-11 20:17:40 ----A---- C:\Windows\system32\D3DCompiler_35.dll
      2009-03-11 20:17:39 ----A---- C:\Windows\system32\xactengine2_8.dll
      2009-03-11 20:17:39 ----A---- C:\Windows\system32\X3DAudio1_2.dll
      2009-03-11 20:17:38 ----A---- C:\Windows\system32\d3dx9_34.dll
      2009-03-11 20:17:38 ----A---- C:\Windows\system32\d3dx10_34.dll
      2009-03-11 20:17:38 ----A---- C:\Windows\system32\D3DCompiler_34.dll
      2009-03-11 20:17:37 ----A---- C:\Windows\system32\xinput1_3.dll
      2009-03-11 20:17:36 ----A---- C:\Windows\system32\xactengine2_7.dll
      2009-03-11 20:17:36 ----A---- C:\Windows\system32\d3dx10_33.dll
      2009-03-11 20:17:36 ----A---- C:\Windows\system32\D3DCompiler_33.dll
      2009-03-11 20:17:35 ----A---- C:\Windows\system32\d3dx9_33.dll
      2009-03-11 20:17:34 ----A---- C:\Windows\system32\xactengine2_6.dll
      2009-03-11 20:17:33 ----A---- C:\Windows\system32\xactengine2_5.dll
      2009-03-11 20:17:32 ----A---- C:\Windows\system32\d3dx10.dll
      2009-03-11 20:17:31 ----A---- C:\Windows\system32\d3dx9_32.dll
      2009-03-11 20:17:30 ----A---- C:\Windows\system32\xactengine2_4.dll
      2009-03-11 20:17:30 ----A---- C:\Windows\system32\x3daudio1_1.dll
      2009-03-11 20:17:30 ----A---- C:\Windows\system32\d3dx9_31.dll
      2009-03-11 20:17:29 ----A---- C:\Windows\system32\xactengine2_3.dll
      2009-03-11 20:17:28 ----A---- C:\Windows\system32\xinput1_2.dll
      2009-03-11 20:17:28 ----A---- C:\Windows\system32\xactengine2_2.dll
      2009-03-11 20:17:27 ----A---- C:\Windows\system32\xinput1_1.dll
      2009-03-11 20:17:26 ----A---- C:\Windows\system32\xactengine2_1.dll
      2009-03-11 20:17:21 ----A---- C:\Windows\system32\d3dx9_30.dll
      2009-03-11 19:20:40 ----HD---- C:\Windows\msdownld.tmp
      2009-03-11 19:20:35 ----D---- C:\Windows\system32\directx
      2009-03-11 18:35:10 ----D---- C:\Program Files\GetRight
      2009-03-11 07:08:20 ----A---- C:\Windows\system32\wmp.dll
      2009-03-11 07:08:19 ----A---- C:\Windows\system32\wmploc.DLL
      2009-03-11 07:08:19 ----A---- C:\Windows\system32\spwmp.dll
      2009-03-11 07:08:19 ----A---- C:\Windows\system32\dxmasf.dll
      2009-03-11 07:07:46 ----A---- C:\Windows\system32\schannel.dll
      2009-03-09 19:10:31 ----A---- C:\Windows\AZPR3.INI
      2009-03-09 19:10:28 ----D---- C:\Program Files\ElcomSoft
      2009-03-09 18:52:22 ----D---- C:\Program Files\UZC Trial
      2009-03-07 20:55:16 ----D---- C:\Program Files\Safari
      2009-03-07 20:44:14 ----D---- C:\Program Files\Bonjour
      2009-03-07 17:42:34 ----D---- C:\Windows\Downloaded Installations
      2009-03-03 23:18:02 ----D---- C:\Program Files\aRPNCalc
      2009-03-01 10:37:56 ----D---- C:\temp
      2009-02-27 23:11:28 ----D---- C:\ProgramData\TEMP
      2009-02-27 23:07:59 ----A---- C:\Windows\system32\ztvunrar36.dll
      2009-02-27 23:07:59 ----A---- C:\Windows\system32\ztvunace26.dll
      2009-02-27 23:07:59 ----A---- C:\Windows\system32\ztvcabinet.dll
      2009-02-27 23:07:59 ----A---- C:\Windows\system32\UNRAR3.dll
      2009-02-27 23:07:59 ----A---- C:\Windows\system32\unacev2.dll
      2009-02-27 23:07:56 ----D---- C:\Users\dadoux\AppData\Roaming\Simply Super Software
      2009-02-27 23:07:56 ----D---- C:\ProgramData\Simply Super Software
      2009-02-27 23:07:56 ----D---- C:\Program Files\Trojan Remover
      2009-02-24 21:09:53 ----D---- C:\Users\dadoux\AppData\Roaming\ACD Systems
      2009-02-23 23:21:15 ----D---- C:\ProgramData\ACD Systems
      2009-02-23 23:21:09 ----D---- C:\Program Files\Common Files\ACD Systems
      2009-02-23 23:21:09 ----D---- C:\Program Files\ACD Systems
      2009-02-23 18:27:11 ----D---- C:\Windows\pss
      2009-02-22 18:07:15 ----D---- C:\ProgramData\DVD Shrink
      2009-02-22 18:07:13 ----D---- C:\Program Files\DVD Shrink
      2009-02-21 20:29:43 ----D---- C:\Program Files\JoWooD
      2009-02-20 13:48:27 ----D---- C:\ProgramData\Google Updater
      2009-02-20 11:56:14 ----D---- C:\ProgramData\WindowsSearch
      2009-02-17 19:09:56 ----D---- C:\Program Files\Micro Application
      2009-02-16 22:47:00 ----A---- C:\Windows\system32\xactengine2_0.dll
      2009-02-16 22:47:00 ----A---- C:\Windows\system32\x3daudio1_0.dll
      2009-02-16 22:46:45 ----A---- C:\Windows\system32\d3dx9_29.dll
      2009-02-16 22:46:43 ----A---- C:\Windows\system32\d3dx9_28.dll
      2009-02-16 22:46:42 ----A---- C:\Windows\system32\d3dx9_27.dll
      2009-02-16 22:46:39 ----A---- C:\Windows\system32\d3dx9_24.dll
      2009-02-16 22:42:20 ----D---- C:\Program Files\Focus
      2009-02-15 19:05:00 ----D---- C:\Program Files\PeerGuardian2
      2009-02-15 18:14:25 ----A---- C:\Windows\system32\EncDec.dll
      2009-02-15 18:14:23 ----A---- C:\Windows\system32\psisdecd.dll
      2009-02-15 11:53:30 ----D---- C:\Program Files\The Cleaner Demo
      2009-02-14 23:06:37 ----D---- C:\Users\dadoux\AppData\Roaming\Safer Networking
      2009-02-14 23:03:36 ----D---- C:\Program Files\Safer Networking
      2009-02-14 21:58:50 ----D---- C:\ProgramData\Spybot - Search & Destroy
      2009-02-14 21:58:50 ----D---- C:\Program Files\Spybot - Search & Destroy
      2009-02-14 20:24:22 ----D---- C:\ProgramData\CheckPoint
      2009-02-14 20:23:47 ----D---- C:\Windows\system32\ZoneLabs
      2009-02-14 20:20:54 ----D---- C:\Windows\Internet Logs

      ======List of files/folders modified in the last 2 months======

      2009-04-10 15:48:35 ----D---- C:\Windows\prefetch
      2009-04-10 15:48:17 ----D---- C:\Windows\Temp
      2009-04-10 15:44:37 ----D---- C:\Users\dadoux\AppData\Roaming\GetRight
      2009-04-10 15:44:11 ----D---- C:\Downloads
      2009-04-10 15:43:30 ----D---- C:\Windows\inf
      2009-04-10 15:43:30 ----AD---- C:\Windows\System32
      2009-04-10 15:43:30 ----A---- C:\Windows\system32\PerfStringBackup.INI
      2009-04-10 15:40:10 ----D---- C:\Windows\Tasks
      2009-04-10 13:54:14 ----D---- C:\Program Files\Paint Shop Pro 5
      2009-04-10 12:16:18 ----SHD---- C:\System Volume Information
      2009-04-10 09:47:46 ----AD---- C:\Windows
      2009-04-09 22:49:30 ----AD---- C:\Windows\system32\drivers
      2009-04-09 22:43:15 ----D---- C:\Windows\system32\WDI
      2009-04-09 22:36:36 ----SHD---- C:\Windows\Installer
      2009-04-09 22:36:08 ----D---- C:\Windows\system32\catroot
      2009-04-09 22:35:37 ----RD---- C:\Program Files
      2009-04-09 22:35:37 ----HD---- C:\ProgramData
      2009-04-09 22:16:21 ----D---- C:\Program Files\Common Files\Symantec Shared
      2009-04-09 22:14:15 ----D---- C:\ProgramData\Symantec
      2009-04-09 13:59:48 ----RD---- C:\000
      2009-04-09 13:57:34 ----D---- C:\Windows\system32\catroot2
      2009-04-08 23:11:19 ----D---- C:\Users\dadoux\AppData\Roaming\dvdcss
      2009-04-08 09:52:11 ----D---- C:\Windows\BDOSCAN8
      2009-04-08 09:51:16 ----SD---- C:\Windows\Downloaded Program Files
      2009-04-07 22:18:51 ----SD---- C:\Users\dadoux\AppData\Roaming\Microsoft
      2009-04-07 19:38:05 ----D---- C:\Program Files\Mozilla Firefox
      2009-04-07 14:41:01 ----SD---- C:\ProgramData\Microsoft
      2009-04-07 09:48:14 ----D---- C:\Program Files\Google
      2009-04-07 09:45:57 ----D---- C:\ProgramData\Google
      2009-04-06 19:03:51 ----D---- C:\Windows\system32\config
      2009-04-06 19:03:45 ----D---- C:\Windows\system32\Tasks
      2009-04-06 19:03:45 ----D---- C:\Windows\system32\Msdtc
      2009-04-06 19:03:44 ----D---- C:\Windows\system32\wbem
      2009-04-06 19:03:44 ----D---- C:\Windows\registration
      2009-04-06 17:52:22 ----SD---- C:\Windows\system32\Microsoft
      2009-04-06 17:52:08 ----D---- C:\Windows\system32\zh-TW
      2009-04-06 17:52:08 ----D---- C:\Windows\system32\zh-CN
      2009-04-06 17:52:08 ----D---- C:\Windows\system32\sv-SE
      2009-04-06 17:52:08 ----D---- C:\Windows\system32\ru-RU
      2009-04-06 17:52:08 ----D---- C:\Windows\system32\pt-BR
      2009-04-06 17:52:08 ----D---- C:\Windows\system32\pl-PL
      2009-04-06 17:52:08 ----D---- C:\Windows\system32\nl-NL
      2009-04-06 17:52:08 ----D---- C:\Windows\system32\nb-NO
      2009-04-06 17:52:08 ----D---- C:\Windows\system32\ko-KR
      2009-04-06 17:52:08 ----D---- C:\Windows\system32\ja-JP
      2009-04-06 17:52:08 ----D---- C:\Windows\system32\it-IT
      2009-04-06 17:52:08 ----D---- C:\Windows\system32\fr-FR
      2009-04-06 17:52:08 ----D---- C:\Windows\system32\fi-FI
      2009-04-06 17:52:08 ----D---- C:\Windows\system32\es-ES
      2009-04-06 17:52:08 ----D---- C:\Windows\system32\en-US
      2009-04-06 17:52:08 ----D---- C:\Windows\system32\de-DE
      2009-04-06 17:52:08 ----D---- C:\Windows\system32\da-DK
      2009-04-06 17:47:18 ----D---- C:\Windows\winsxs
      2009-04-05 21:04:57 ----D---- C:\Program Files\7-Zip
      2009-04-05 15:08:14 ----D---- C:\Program Files\Common Files
      2009-04-05 10:44:42 ----D---- C:\Program Files\DNA
      2009-04-05 10:31:25 ----D---- C:\Users\dadoux\AppData\Roaming\DNA
      2009-04-04 11:11:12 ----D---- C:\Windows\Debug
      2009-04-03 14:45:56 ----SHD---- C:\$RECYCLE.BIN
      2009-04-03 14:45:32 ----RD---- C:\Users
      2009-04-03 13:28:10 ----D---- C:\Program Files\Elaborate Bytes
      2009-04-02 10:31:49 ----D---- C:\Program Files\Winamp
      2009-03-30 22:27:46 ----D---- C:\ProgramData\Microsoft Help
      2009-03-30 22:23:35 ----RSD---- C:\Windows\assembly
      2009-03-30 13:49:30 ----D---- C:\Windows\rescache
      2009-03-30 13:31:16 ----D---- C:\Program Files\Internet Explorer
      2009-03-30 13:31:13 ----D---- C:\Windows\system32\migration
      2009-03-30 13:31:13 ----D---- C:\Windows\PolicyDefinitions
      2009-03-30 10:13:37 ----D---- C:\Windows\Microsoft.NET
      2009-03-30 10:10:37 ----DC---- C:\Windows\system32\DRVSTORE
      2009-03-30 10:06:33 ----D---- C:\Program Files\Common Files\microsoft shared
      2009-03-26 17:03:47 ----D---- C:\Users\dadoux\AppData\Roaming\Adobe
      2009-03-22 17:04:42 ----D---- C:\Users\dadoux\AppData\Roaming\Mozilla
      2009-03-19 07:19:43 ----A---- C:\Windows\system32\deploytk.dll
      2009-03-14 11:26:57 ----D---- C:\Users\dadoux\AppData\Roaming\BitTorrent
      2009-03-11 19:20:35 ----D---- C:\Windows\Logs
      2009-03-11 09:17:18 ----D---- C:\Program Files\Windows Media Player
      2009-03-11 09:17:17 ----D---- C:\Program Files\Windows Mail
      2009-03-07 23:15:53 ----D---- C:\Users\dadoux\AppData\Roaming\Apple Computer
      2009-02-28 11:28:31 ----D---- C:\Program Files\Microsoft Office
      2009-02-28 11:27:33 ----D---- C:\Program Files\MSECache
      2009-02-25 22:54:59 ----A---- C:\Windows\system32\mrt.exe
      2009-02-16 22:45:58 ----HD---- C:\Program Files\InstallShield Installation Information
      2009-02-16 22:40:34 ----D---- C:\Program Files\Common Files\InstallShield
      2009-02-16 18:29:32 ----D---- C:\Windows\system32\LogFiles
      2009-02-15 18:50:07 ----D---- C:\Windows\ehome
      2009-02-14 20:23:47 ----D---- C:\Windows\SoftwareDistribution

      ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

      R1 kl1;kl1; C:\Windows\system32\DRIVERS\kl1.sys [2008-07-21 121872]
      R1 KLIF;Kaspersky Lab Driver; C:\Windows\system32\DRIVERS\klif.sys [2009-04-09 239120]
      R1 KLIM6;Kaspersky Anti-Virus NDIS 6 Filter; C:\Windows\system32\DRIVERS\klim6.sys [2008-07-09 20496]
      R1 SASDIFSV;SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [2009-03-23 9968]
      R1 SASKUTIL;SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.sys [2009-03-23 72944]
      R2 ElbyCDIO;ElbyCDIO Driver; C:\Windows\System32\Drivers\ElbyCDIO.sys [2008-07-21 24392]
      R3 ElbyCDFL;ElbyCDFL; C:\Windows\System32\Drivers\ElbyCDFL.sys [2007-02-16 34760]
      R3 ElbyDelay;ElbyDelay; C:\Windows\System32\Drivers\ElbyDelay.sys [2003-03-28 3840]
      R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys [2008-04-17 15464]
      R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2007-10-02 1967576]
      R3 KLFLTDEV;Kaspersky Lab KLFltDev; C:\Windows\system32\DRIVERS\klfltdev.sys [2008-03-13 26640]
      R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2008-09-18 7379872]
      R3 pfc;Padus ASPI Shell; C:\Windows\system32\drivers\pfc.sys [2009-03-07 10368]
      R3 pgfilter;pgfilter; \??\C:\Program Files\PeerGuardian2\pgfilter.sys [2007-06-02 8192]
      R3 SASENUM;SASENUM; \??\C:\Program Files\SUPERAntiSpyware\SASENUM.SYS [2009-03-23 7408]
      R3 usbscan;Pilote de scanneur USB; C:\Windows\system32\DRIVERS\usbscan.sys [2008-01-21 35328]
      R3 VClone;VClone; C:\Windows\system32\DRIVERS\VClone.sys [2008-09-24 29184]
      R3 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\DRIVERS\wmiacpi.sys [2008-01-21 11264]
      S3 ay87on10;ay87on10; C:\Windows\system32\drivers\ay87on10.sys []
      S3 BthEnum;Pilote de bloc de demande Bluetooth; C:\Windows\system32\DRIVERS\BthEnum.sys [2008-09-01 23040]
      S3 BthPan;Périphérique Bluetooth (réseau personnel); C:\Windows\system32\DRIVERS\bthpan.sys [2008-01-21 92160]
      S3 BTHPORT;Pilote de port Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2008-09-01 507904]
      S3 BTHUSB;Pilote USB radio Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2008-09-01 30208]
      S3 btwavdt;Bluetooth AVDT Service; C:\Windows\system32\DRIVERS\btwavdt.sys [2008-06-12 80936]
      S3 drmkaud;Filtre de décodeur DRM (Noyau Microsoft); C:\Windows\system32\drivers\drmkaud.sys [2008-01-21 5632]
      S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2009-02-06 55280]
      S3 MSKSSRV;Proxy de service de répartition Microsoft; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-21 8192]
      S3 MSPCLOCK;Proxy d'horloge de répartition Microsoft; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-21 5888]
      S3 MSPQM;Proxy de gestion de qualité de répartition Microsoft; C:\Windows\system32\drivers\MSPQM.sys [2008-01-21 5504]
      S3 MSTEE;Convertisseur en T/site-à-site de répartition Microsoft; C:\Windows\system32\drivers\MSTEE.sys [2008-01-21 6016]
      S3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvmfdx32.sys [2007-11-17 1040544]
      S3 RFCOMM;Périphérique Bluetooth (TDI protocole RFCOMM); C:\Windows\system32\DRIVERS\rfcomm.sys [2008-09-01 149504]
      S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2008-01-21 6656]
      S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-01-21 386616]
      S4 nvrd32;NVIDIA nForce RAID Driver; C:\Windows\system32\drivers\nvrd32.sys [2007-09-11 123424]
      S4 nvsmu;nvsmu; C:\Windows\system32\drivers\nvsmu.sys [2007-07-07 12032]

      ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

      R2 AdobeActiveFileMonitor6.0;Adobe Active File Monitor V6; C:\Program Files\Adobe\Photoshop Elements 6.0\PhotoshopElementsFileAgent.exe [2007-09-11 124832]
      R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [2008-11-07 132424]
      R2 Bonjour Service;Service Bonjour; C:\Program Files\Bonjour\mDNSResponder.exe [2008-12-12 238888]
      R2 BthServ;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2008-01-21 21504]
      R2 lxcz_device;lxcz_device; C:\Windows\system32\lxczcoms.exe [2007-04-19 537520]
      R2 Nero BackItUp Scheduler 3;Nero BackItUp Scheduler 3; C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe [2008-02-18 877864]
      R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2008-09-18 196608]
      R2 PLFlash DeviceIoControl Service;PLFlash DeviceIoControl Service; C:\Windows\system32\IoctlSvc.exe [2006-12-19 81920]
      R2 SeaPort;SeaPort; C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2009-01-14 226656]
      R2 StarWindServiceAE;StarWind AE Service; C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [2007-05-28 275968]
      R3 iPod Service;Service de l’iPod; C:\Program Files\iPod\bin\iPodService.exe [2009-01-06 536872]
      R3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe [2008-04-28 529704]
      S2 AVP;Kaspersky Internet Security; C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe [2009-04-09 206088]
      S2 gupdate1c99352ce87ed4e;Service Google Update (gupdate1c99352ce87ed4e); C:\Program Files\Google\Update\GoogleUpdate.exe [2009-02-20 133104]
      S2 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-03-25 183280]
      S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2008-09-01 654848]
      S3 fsssvc;Windows Live Contrôle parental; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2009-02-06 533360]
      S3 getPlus(R) Helper;getPlus(R) Helper; C:\Program Files\NOS\bin\getPlus_HelperSvc.exe [2009-03-03 33176]
      S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2007-08-24 443776]
      S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]

      -----------------EOF-----------------
      0
  8. dadoux.30 Messages postés 619 Statut Membre 3
     
    je voulais juste preciser que cette semaine j'ai eut que des emerdes qui ont ete poser sur ce forum et qui ne sont pas resolu il se peut qu'ils aient un rapport avec celui-ci
    mais voila le rapport
    0
  9. dadoux.30 Messages postés 619 Statut Membre 3
     
    info.txt logfile of random's system information tool 1.06 2009-04-10 15:48:38

    ======Uninstall list======

    -->C:\Program Files\Common Files\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0
    -->C:\Program Files\Nero\Nero8\\nero\uninstall\UNNERO.exe /UNINSTALL
    -->C:\Windows\UNNeroBackItUp.exe /UNINSTALL
    -->C:\Windows\UNNeroMediaHome.exe /UNINSTALL
    -->C:\Windows\UNNeroShowTime.exe /UNINSTALL
    -->C:\Windows\UNNeroVision.exe /UNINSTALL
    -->C:\Windows\UNRecode.exe /UNINSTALL
    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0016-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}
    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0018-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}
    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001B-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}
    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-0401-0000-0000000FF1CE} /uninstall {5A2F65A4-808F-4A1E-973E-92E17824982D}
    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-0407-0000-0000000FF1CE} /uninstall {2AB528A5-BB1B-4EBE-8E51-AD0C4CD33CA9}
    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-0409-0000-0000000FF1CE} /uninstall {3EC77D26-799B-4CD8-914F-C1565E796173}
    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-040C-0000-0000000FF1CE} /uninstall {430971B1-C31E-45DA-81E0-72C095BAB72C}
    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-0413-0000-0000000FF1CE} /uninstall {B3F4DC34-7F60-4B7C-A79F-1C13012D99D4}
    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-0C0A-0000-0000000FF1CE} /uninstall {F7A31780-33C4-4E39-951A-5EC9B91D7BF1}
    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-006E-040C-0000-0000000FF1CE} /uninstall {EC50B538-CBE1-42E6-B7FE-87AA540AADFB}
    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-00A1-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}
    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {BEE75E01-DD3F-4D5F-B96C-609E6538D419}
    7-Zip 4.65-->"C:\Program Files\7-Zip\Uninstall.exe"
    ACDSee Gestionnaire de photos 2009-->MsiExec.exe /I{300578F9-9EFF-4B93-9AB1-C0E5707EF463}
    ACDSee Pro-->MsiExec.exe /I{F99F74B4-972B-4B06-B893-6B3B0DB0128B}
    Adobe Flash Player 10 ActiveX-->C:\Windows\system32\Macromed\Flash\uninstall_activeX.exe
    Adobe Flash Player 10 Plugin-->C:\Windows\system32\Macromed\Flash\uninstall_plugin.exe
    Adobe Photoshop Elements 6.0-->msiexec /I {F54AC413-D2C6-4A24-B324-370C223C6250}
    Adobe Photoshop Elements 6-->"C:\Program Files\Packard Bell\Smart Restore\SmartRestore.exe" /MSADDREM *AdobePE6*
    Adobe Reader 8.1.4 - Français-->MsiExec.exe /I{AC76BA86-7AD7-1036-7B44-A81300000003}
    Adobe Reader 8-->"C:\Program Files\Packard Bell\Smart Restore\SmartRestore.exe" /MSADDREM *AdobeReader*
    Adobe Shockwave Player-->C:\Windows\System32\Macromed\SHOCKW~1\UNWISE.EXE C:\Windows\System32\Macromed\SHOCKW~1\Install.log
    Ad-remover-->C:\Program Files\Ad-remover\Uninstall ADR.exe
    ADSL Neuf-->"C:\Program Files\Packard Bell\Smart Restore\SmartRestore.exe" /MSADDREM *NEUF_FR*
    Advanced ZIP Password Recovery (remove only)-->C:\Program Files\ElcomSoft\AZPR\uninstall.exe
    Age of Empires III-->C:\Program Files\InstallShield Installation Information\{70F8B183-99EB-4304-BA35-080E2DFFD2A3}\install.exe -runfromtemp -l0x040c
    Apple Mobile Device Support-->MsiExec.exe /I{EC4455AB-F155-4CC1-A4C5-88F3777F9886}
    Apple Software Update-->MsiExec.exe /I{6956856F-B6B3-4BE0-BA0B-8F495BE32033}
    Applian FLV Player-->"C:\Windows\Applian FLV Player\uninstall.exe" "/U:C:\Program Files\FLV Player\Uninstall\uninstall.xml"
    Archiveur WinRAR-->C:\Program Files\WinRAR\uninstall.exe
    Assistant de connexion Windows Live-->MsiExec.exe /I{DCE8CD14-FBF5-4464-B9A4-E18E473546C7}
    Audacity 1.2.6-->"C:\Program Files\Audacity\unins000.exe"
    Bonjour-->MsiExec.exe /I{07287123-B8AC-41CE-8346-3D777245C35B}
    Browser Address Error Redirector-->regsvr32 /u /s "C:\Program Files\Google\Google_BAE\BAE.dll"
    Call of Juarez-->C:\Program Files\Common Files\InstallShield\Driver\8\Intel 32\IDriver.exe /M{3E7940A4-495B-4DC5-B5C9-D2EE1DE9E5EF} /Z"UNINSTALL"
    Camera Cafe 2-->"C:\Program Files\Camera Cafe 2\unins000.exe"
    CCleaner (remove only)-->"C:\Program Files\CCleaner\uninst.exe"
    Choice Guard-->MsiExec.exe /I{8FFC5648-FAF8-43A3-BC8F-42BA1E275C4E}
    CloneCD-->"C:\Program Files\SlySoft\CloneCD\ccd-uninst.exe" /D="C:\Program Files\SlySoft\CloneCD"
    CloneDVD-->"C:\Program Files\Elaborate Bytes\CloneDVD\CloneDVD-uninst.exe" /D="C:\Program Files\Elaborate Bytes\CloneDVD"
    Creative Element Power Tools-->C:\Program Files\Creative Element Power Tools\uninstall.exe
    DiscScanX v. 1.0.4.0-->MsiExec.exe /I{9EAC8071-0BF2-4081-9552-6259FED9AE0C}
    DVD Shrink 3.2-->"C:\Program Files\DVD Shrink\unins000.exe"
    eMule Shell Extension-->MsiExec.exe /I{F1A2577D-2FDF-47D5-9055-ABE809D78D15}
    eMule-->"C:\Program Files\eMule\Uninstall.exe"
    Eye On Network (désinstallation)-->"C:\Program Files\Eye On Network\uninst-Eye On Network.exe"
    FileAlyzer-->"C:\Program Files\Safer Networking\FileAlyzer\unins000.exe"
    filehippo.com Update Checker-->"C:\Program Files\filehippo.com\uninstall.exe"
    FruitsDay 1.0-->"C:\Program Files\FruitsDay\unins000.exe"
    Galerie de photos Windows Live-->MsiExec.exe /X{44E54A81-9D91-4AA1-9417-80AFF134F5FF}
    GetRight-->"C:\Program Files\GetRight\unins000.exe"
    Google BAE-->"C:\Program Files\Packard Bell\Smart Restore\SmartRestore.exe" /MSADDREM *GoogleBAE*
    Google Chrome-->"C:\Program Files\Google\Chrome\Application\1.0.154.53\Installer\setup.exe" --uninstall --system-level
    Google Update Helper-->MsiExec.exe /I{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
    HDReg France-->MsiExec.exe /I{0ED40D2A-7131-4FE7-941E-5C329336F712}
    Hex Workshop v5-->MsiExec.exe /I{26A373DB-162B-4B6E-A488-0BED0F0FB227}
    HHD Software Free Hex Editor 3.12-->"C:\Program Files\HHD Software\Hex Editor 3.x\Uninstaller.exe"
    Infocentre Rev. 2.0-->"C:\Program Files\Packard Bell\Smart Restore\SmartRestore.exe" /MSADDREM *Infocentre*
    Installation Windows Live-->C:\Program Files\Windows Live\Installer\wlarp.exe
    Installation Windows Live-->MsiExec.exe /I{7370DF47-B4F9-4279-BFC3-3F09919F720D}
    iTunes-->MsiExec.exe /I{F5C63795-2708-4D15-BF18-5ABBFF7DFFC8}
    Java(TM) 6 Update 12-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216012FF}
    Junk Mail filter update-->MsiExec.exe /I{4DE3E3D9-AE81-45DE-9195-3015F7B1DBF3}
    Kaspersky Internet Security 2009-->MsiExec.exe /I{8CB14A64-CEF4-4C8F-B1C8-1C3B8752CB55}
    Kaspersky Internet Security 2009-->MsiExec.exe /I{8CB14A64-CEF4-4C8F-B1C8-1C3B8752CB55}
    Keyboard FIJI-->"C:\Program Files\Packard Bell\Smart Restore\SmartRestore.exe" /MSADDREM *FIJI*
    Lexmark 1200 Series-->C:\Program Files\Lexmark 1200 Series\Install\x86\Uninst.exe
    Lizardtech DjVu Control-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{105CFC7C-6992-11D5-BD9D-000102C10FD8}\Setup.exe" -l0x40c
    Malwarebytes' Anti-Malware-->"C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"
    Metaboli-->"C:\Program Files\Packard Bell\Smart Restore\SmartRestore.exe" /MSADDREM *METABOLI*
    Microsoft Office Excel MUI (French) 2007-->MsiExec.exe /X{90120000-0016-040C-0000-0000000FF1CE}
    Microsoft Office Home and Student 2007-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall HOMESTUDENTR /dll OSETUP.DLL
    Microsoft Office Home and Student 2007-->MsiExec.exe /X{91120000-002F-0000-0000-0000000FF1CE}
    Microsoft Office Live Add-in 1.3-->MsiExec.exe /I{57F0ED40-8F11-41AA-B926-4A66D0D1A9CC}
    Microsoft Office OneNote MUI (French) 2007-->MsiExec.exe /X{90120000-00A1-040C-0000-0000000FF1CE}
    Microsoft Office PowerPoint MUI (French) 2007-->MsiExec.exe /X{90120000-0018-040C-0000-0000000FF1CE}
    Microsoft Office PowerPoint Viewer 2007 (French)-->MsiExec.exe /X{95120000-00AF-040C-0000-0000000FF1CE}
    Microsoft Office Proof (Arabic) 2007-->MsiExec.exe /X{90120000-001F-0401-0000-0000000FF1CE}
    Microsoft Office Proof (Dutch) 2007-->MsiExec.exe /X{90120000-001F-0413-0000-0000000FF1CE}
    Microsoft Office Proof (English) 2007-->MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
    Microsoft Office Proof (French) 2007-->MsiExec.exe /X{90120000-001F-040C-0000-0000000FF1CE}
    Microsoft Office Proof (German) 2007-->MsiExec.exe /X{90120000-001F-0407-0000-0000000FF1CE}
    Microsoft Office Proof (Spanish) 2007-->MsiExec.exe /X{90120000-001F-0C0A-0000-0000000FF1CE}
    Microsoft Office Proofing (French) 2007-->MsiExec.exe /X{90120000-002C-040C-0000-0000000FF1CE}
    Microsoft Office Shared MUI (French) 2007-->MsiExec.exe /X{90120000-006E-040C-0000-0000000FF1CE}
    Microsoft Office Suite Activation Assistant-->MsiExec.exe /X{E50AE784-FABE-46DA-A1F8-7B6B56DCB22E}
    Microsoft Office Word MUI (French) 2007-->MsiExec.exe /X{90120000-001B-040C-0000-0000000FF1CE}
    Microsoft Office Word Viewer 2003-->MsiExec.exe /I{9085040C-6000-11D3-8CFE-0150048383C9}
    Microsoft Search Enhancement Pack-->MsiExec.exe /I{9C9CEB9D-53FD-49A7-85D2-FE674F72F24E}
    Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
    Microsoft SQL Server 2005 Compact Edition [ENU]-->MsiExec.exe /I{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}
    Microsoft Sync Framework Runtime Native v1.0 (x86)-->MsiExec.exe /I{8A74E887-8F0F-4017-AF53-CBA42211AAA5}
    Microsoft Sync Framework Services Native v1.0 (x86)-->MsiExec.exe /I{BD64AF4A-8C80-4152-AD77-FCDDF05208AB}
    Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
    Microsoft Works 9 SE-->"C:\Program Files\Packard Bell\Smart Restore\SmartRestore.exe" /MSADDREM *works9se*
    Microsoft Works-->MsiExec.exe /I{0214A441-A4AB-43A8-8DEF-2F73C5364673}
    Microsoft® Office Trial 2007-->"C:\Program Files\Packard Bell\Smart Restore\SmartRestore.exe" /MSADDREM *OFF2k7_FR*
    MobileMe Control Panel-->MsiExec.exe /I{A14C24F6-615B-415E-84B0-610FDAD19B68}
    Module de compatibilité pour Microsoft Office System 2007-->MsiExec.exe /X{90120000-0020-040C-0000-0000000FF1CE}
    Mozilla Firefox (3.0.8)-->C:\Program Files\Mozilla Firefox\uninstall\helper.exe
    MSVCRT-->MsiExec.exe /I{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
    MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
    Nero 8 Essentials-->"C:\Program Files\Packard Bell\Smart Restore\SmartRestore.exe" /MSADDREM *Nero8*
    Nero 8 Essentials-->MsiExec.exe /X{3559CDE0-11FC-4D7B-A65C-D646035B1036}
    neroxml-->MsiExec.exe /I{56C049BE-79E9-4502-BEA7-9754A3E60F9B}
    Norton Internet Security-->"C:\Program Files\Packard Bell\Smart Restore\SmartRestore.exe" /MSADDREM *NIS2008_FR*
    NVIDIA Drivers-->C:\Windows\system32\NVUNINST.EXE UninstallGUI
    Outil de mise à jour Google-->"C:\Program Files\Google\Google Updater\GoogleUpdater.exe" -uninstall
    Outil de téléchargement Windows Live-->MsiExec.exe /I{205C6BDD-7B73-42DE-8505-9A093F35A238}
    Packard Bell ImageWriter v1.1-->"C:\Program Files\Packard Bell ImageWriter\unins000.exe"
    Packard Bell ImageWriter-->"C:\Program Files\Packard Bell\Smart Restore\SmartRestore.exe" /MSADDREM *ImageWriter*
    Packard Bell LCD Test-->"C:\Program Files\Packard Bell\Smart Restore\SmartRestore.exe" /MSADDREM *LCDTest*
    Packard Bell Updator-->"C:\Program Files\Packard Bell\Smart Restore\SmartRestore.exe" /MSADDREM *Updator*
    Paint Shop Pro 5.01 Evaluation-->C:\PROGRA~1\PAINTS~1\UNWISE.EXE C:\PROGRA~1\PAINTS~1\INSTALL.LOG
    Panda ActiveScan 2.0-->C:\Program Files\Panda Security\ActiveScan 2.0\as2uninst.exe
    PC SECURITY TEST 2008-->"C:\Program Files\AxBx\PC Security Test 2008\unins000.exe"
    PeerGuardian 2.0-->"C:\Program Files\PeerGuardian2\unins000.exe"
    Picasa 3-->"C:\Program Files\Google\Picasa3\Uninstall.exe"
    Picasa2-->"C:\Program Files\Packard Bell\Smart Restore\SmartRestore.exe" /MSADDREM *Picasa_2*
    QuickTime-->MsiExec.exe /I{216AB108-2AE1-4130-B3D5-20B2C4C80F8F}
    RealPlayer-->C:\Program Files\Common Files\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0
    Realtek HD Audio V6.0.1.5610-->"C:\Program Files\Packard Bell\Smart Restore\SmartRestore.exe" /MSADDREM *AUDIO_REALTEK*
    Realtek High Definition Audio Driver-->RtlUpd.exe -r -m
    Récupérez vos Fichiers-->"C:\Program Files\Micro Application\Récupérez vos Fichiers\unins000.exe"
    RegAlyzer (OpenSBI Edition)-->"C:\Program Files\Safer Networking\RegAlyzer\unins000.exe"
    RemoveIT Pro v4 - SE-->C:\PROGRA~1\removeit\INCODE~1\REMOVE~1\UNWISE.EXE C:\PROGRA~1\removeit\INCODE~1\REMOVE~1\INSTALL.LOG
    Retail Virtual EVE-->MsiExec.exe /X{EDA2E9CA-8B7E-4BC0-9B0F-34B299555BF3}
    RunAlyzer-->"C:\Program Files\Safer Networking\RunAlyzer\unins000.exe"
    Safari-->MsiExec.exe /I{D90AFDE3-3E67-407A-ACA8-F0BAAD012F08}
    SeaTools for Windows-->"C:\Program Files\Seagate\unins000.exe"
    SeaTools for Windows-->MsiExec.exe /I{98613C99-1399-416C-A07C-1EE1C585D872}
    SecondLife (remove only)-->"C:\Program Files\SecondLife\uninst.exe" /P="SecondLife"
    Security Update for 2007 Microsoft Office System (KB951550)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {B243E9A5-ED77-4F1B-B338-2486FD82DC85}
    Security Update for 2007 Microsoft Office System (KB951944)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {797AE457-BA17-4BBC-B501-25FB3A0103C7}
    Security Update for 2007 Microsoft Office System (KB958439)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {6491B8AA-D11C-4648-A461-6234B31EB7E2}
    Security Update for Microsoft Office Excel 2007 (KB958437)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {648FC016-2D6B-4A16-8D87-404533642F4B}
    Security Update for Microsoft Office OneNote 2007 (KB950130)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {F1B2401C-B610-4BF2-AA1C-52C55827A8F4}
    Security Update for Microsoft Office PowerPoint 2007 (KB951338)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {558B709B-821B-4FC5-90FC-9A8890641E77}
    Security Update for Microsoft Office system 2007 (KB954326)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {5F7F6FFF-395D-480E-8450-64F385D82C5F}
    Security Update for Microsoft Office system 2007 (KB956828)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {885E081B-72BD-4E76-8E98-30B4BE468FAC}
    Security Update for Microsoft Office Word 2007 (KB956358)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {4551666D-0FD6-4C69-8A81-1C6F2E64517C}
    SetUp My PC-->"C:\Program Files\Packard Bell\Smart Restore\SmartRestore.exe" /MSADDREM *SETUPMYPC_FR*
    SFR - Kit de connexion-->C:\Program Files\SFR\Kit\uninstall.exe
    Skype 3.6.2.248-->"C:\Program Files\Packard Bell\Smart Restore\SmartRestore.exe" /MSADDREM *SKYPE*
    Skype™ 3.6-->MsiExec.exe /X{5C82DAE5-6EB0-4374-9254-BE3319BA4E82}
    Spelling Dictionaries Support For Adobe Reader 8-->MsiExec.exe /I{AC76BA86-7AD7-5464-3428-800000000003}
    Strike Ball 2-->"C:\Program Files\Strike Ball 2\unins000.exe"
    SUPERAntiSpyware Free Edition-->MsiExec.exe /X{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}
    The Cleaner 5.2-->"C:\Program Files\The Cleaner Demo\unins000.exe"
    Tortuga - Pirates et Flibustiers-->"C:\Program Files\Micro Application\Tortuga\unins000.exe"
    Ultimate ZIP Cracker Trial version-->C:\Program Files\UZC Trial\UZC.EXE /uninstall
    Update for Microsoft Office Excel 2007 Help (KB957242)-->msiexec /package {90120000-0016-040C-0000-0000000FF1CE} /uninstall {49E314EE-81FA-4007-8F1A-8D39BDBB4498}
    Update for Office 2007 (KB946691)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {A420F522-7395-4872-9882-C591B4B92278}
    VCRedistSetup-->MsiExec.exe /I{3921A67A-5AB1-4E48-9444-C71814CF3027}
    Video NVIDIA v174.90-->"C:\Program Files\Packard Bell\Smart Restore\SmartRestore.exe" /MSADDREM *VIDEO_NVIDIA*
    VirtualCloneDrive-->"C:\Program Files\Elaborate Bytes\VirtualCloneDrive\vcd-uninst.exe" /D="C:\Program Files\Elaborate Bytes\VirtualCloneDrive"
    VLC media player 0.9.4-->C:\Program Files\VideoLAN\VLC\uninstall.exe
    VobSub v2.23 (Remove Only)-->"C:\Program Files\Gabest\VobSub\uninstall.exe"
    Windows Live Call-->MsiExec.exe /I{82C7B308-0BDD-49D8-8EA5-9CD3A3F9DF41}
    Windows Live Communications Platform-->MsiExec.exe /I{3B4E636E-9D65-4D67-BA61-189800823F52}
    Windows Live Contrôle parental-->MsiExec.exe /X{D6A2DDE3-9D7C-412C-932A-756580D29919}
    Windows Live Mail-->MsiExec.exe /I{63DC2DA0-2A6C-4C38-9249-B75395458657}
    Windows Live Messenger-->MsiExec.exe /X{059C042E-796A-4ACC-A81A-ECC2010BB78C}
    Windows Live Movie Maker Bêta-->MsiExec.exe /X{F874DF52-A31F-44C1-A606-EF40F1549261}
    Windows Live Sync-->MsiExec.exe /X{9C5EB781-0D37-44B8-9A58-77B3E4BF5F5E}
    Windows Live Toolbar-->MsiExec.exe /X{F7D27C70-90F5-49B9-B188-0A133C0CE353}
    Windows Live Writer-->MsiExec.exe /X{2231CE39-B963-4B9D-823A-F412ECA637B1}
    World of Warcraft-->C:\Program Files\Common Files\Blizzard Entertainment\World of Warcraft\Uninstall.exe

    ======Security center information======

    AV: Kaspersky Internet Security (disabled)
    FW: Kaspersky Internet Security (disabled)
    AS: Windows Defender
    AS: Kaspersky Internet Security (disabled)
    AS: SUPERAntiSpyware (disabled)

    ======System event log======

    Computer Name: PC-de-dadoux
    Event Code: 7001
    Message: Le service Service Partage réseau du Lecteur Windows Media dépend du service Hôte de périphérique UPnP qui n'a pas pu démarrer en raison de l'erreur :
    Le service ne peut pas être démarré parce qu'il est désactivé ou qu'aucun périphérique activé ne lui est associé.
    Record Number: 53129
    Source Name: Service Control Manager
    Time Written: 20090410113438.000000-000
    Event Type: Erreur
    User:

    Computer Name: PC-de-dadoux
    Event Code: 8021
    Message: Le service Explorateur n'a pas pu retrouver la liste des serveurs du maître explorateur \\PC-DE-MANON sur le réseau \Device\NetBT_Tcpip_{B13A059A-A936-4C24-9973-65C3AC4C1023}.

    Maître explorateur : \\PC-DE-MANON
    Réseau : \Device\NetBT_Tcpip_{B13A059A-A936-4C24-9973-65C3AC4C1023}

    Cet événement peut être causé par une perte temporaire de connectivité réseau. Si ce message apparaît à nouveau, vérifiez que le serveur est toujours connecté au réseau. Le code renvoyé est dans la boîte de texte Données.
    Record Number: 53148
    Source Name: BROWSER
    Time Written: 20090410115610.000000-000
    Event Type: Avertissement
    User:

    Computer Name: PC-de-dadoux
    Event Code: 8032
    Message: Le service Explorateur d'ordinateur a rencontré un nombre d'échecs trop important en essayant de retrouver la copie de sauvegarde de la liste sur le transport \Device\NetBT_Tcpip_{B13A059A-A936-4C24-9973-65C3AC4C1023}. L'explorateur secondaire s'arrête.
    Record Number: 53149
    Source Name: BROWSER
    Time Written: 20090410120410.000000-000
    Event Type: Erreur
    User:

    Computer Name: PC-de-dadoux
    Event Code: 15016
    Message: Impossible d’initialiser le package de sécurité Kerberos pour l’authentification côté serveur. Le champ de données contient le numéro de l’erreur.
    Record Number: 53203
    Source Name: Microsoft-Windows-HttpEvent
    Time Written: 20090410133749.569635-000
    Event Type: Erreur
    User:

    Computer Name: PC-de-dadoux
    Event Code: 7001
    Message: Le service Service Partage réseau du Lecteur Windows Media dépend du service Hôte de périphérique UPnP qui n'a pas pu démarrer en raison de l'erreur :
    Le service ne peut pas être démarré parce qu'il est désactivé ou qu'aucun périphérique activé ne lui est associé.
    Record Number: 53280
    Source Name: Service Control Manager
    Time Written: 20090410133816.000000-000
    Event Type: Erreur
    User:

    =====Application event log=====

    Computer Name: PC-de-dadoux
    Event Code: 10
    Message: Le filtre d’événement avec la requête « SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99 » n’a pas pu être réactivé dans l’espace de noms « //./root/CIMV2 » à cause de l’erreur 0x80041003. Les événements ne peuvent pas être délivrés à travers ce filtre tant que le problème ne sera pas corrigé.
    Record Number: 23506
    Source Name: Microsoft-Windows-WMI
    Time Written: 20090409203328.000000-000
    Event Type: Erreur
    User:

    Computer Name: PC-de-dadoux
    Event Code: 10
    Message: Le filtre d’événement avec la requête « SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99 » n’a pas pu être réactivé dans l’espace de noms « //./root/CIMV2 » à cause de l’erreur 0x80041003. Les événements ne peuvent pas être délivrés à travers ce filtre tant que le problème ne sera pas corrigé.
    Record Number: 23557
    Source Name: Microsoft-Windows-WMI
    Time Written: 20090409204238.000000-000
    Event Type: Erreur
    User:

    Computer Name: PC-de-dadoux
    Event Code: 10
    Message: Le filtre d’événement avec la requête « SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99 » n’a pas pu être réactivé dans l’espace de noms « //./root/CIMV2 » à cause de l’erreur 0x80041003. Les événements ne peuvent pas être délivrés à travers ce filtre tant que le problème ne sera pas corrigé.
    Record Number: 23588
    Source Name: Microsoft-Windows-WMI
    Time Written: 20090410072835.000000-000
    Event Type: Erreur
    User:

    Computer Name: PC-de-dadoux
    Event Code: 10
    Message: Le filtre d’événement avec la requête « SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99 » n’a pas pu être réactivé dans l’espace de noms « //./root/CIMV2 » à cause de l’erreur 0x80041003. Les événements ne peuvent pas être délivrés à travers ce filtre tant que le problème ne sera pas corrigé.
    Record Number: 23637
    Source Name: Microsoft-Windows-WMI
    Time Written: 20090410113401.000000-000
    Event Type: Erreur
    User:

    Computer Name: PC-de-dadoux
    Event Code: 10
    Message: Le filtre d’événement avec la requête « SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99 » n’a pas pu être réactivé dans l’espace de noms « //./root/CIMV2 » à cause de l’erreur 0x80041003. Les événements ne peuvent pas être délivrés à travers ce filtre tant que le problème ne sera pas corrigé.
    Record Number: 23676
    Source Name: Microsoft-Windows-WMI
    Time Written: 20090410133816.000000-000
    Event Type: Erreur
    User:

    =====Security event log=====

    Computer Name: PC-de-dadoux
    Event Code: 5038
    Message: L’intégrité du code a déterminé que le hachage de l’image d’un fichier n’est pas valide. Le fichier peut être endommagé en raison d’une modification non autorisée ou le hachage non valide peut indiquer une erreur d’unité de disque potentielle.

    Nom du fichier : \Device\HarddiskVolume2\Windows\System32\drivers\tcpip.sys
    Record Number: 29179
    Source Name: Microsoft-Windows-Security-Auditing
    Time Written: 20090410134054.436235-000
    Event Type: Échec de l'audit
    User:

    Computer Name: PC-de-dadoux
    Event Code: 5038
    Message: L’intégrité du code a déterminé que le hachage de l’image d’un fichier n’est pas valide. Le fichier peut être endommagé en raison d’une modification non autorisée ou le hachage non valide peut indiquer une erreur d’unité de disque potentielle.

    Nom du fichier : \Device\HarddiskVolume2\Windows\System32\drivers\tcpip.sys
    Record Number: 29180
    Source Name: Microsoft-Windows-Security-Auditing
    Time Written: 20090410134054.451835-000
    Event Type: Échec de l'audit
    User:

    Computer Name: PC-de-dadoux
    Event Code: 5038
    Message: L’intégrité du code a déterminé que le hachage de l’image d’un fichier n’est pas valide. Le fichier peut être endommagé en raison d’une modification non autorisée ou le hachage non valide peut indiquer une erreur d’unité de disque potentielle.

    Nom du fichier : \Device\HarddiskVolume2\Windows\System32\drivers\tcpip.sys
    Record Number: 29181
    Source Name: Microsoft-Windows-Security-Auditing
    Time Written: 20090410134054.483035-000
    Event Type: Échec de l'audit
    User:

    Computer Name: PC-de-dadoux
    Event Code: 5038
    Message: L’intégrité du code a déterminé que le hachage de l’image d’un fichier n’est pas valide. Le fichier peut être endommagé en raison d’une modification non autorisée ou le hachage non valide peut indiquer une erreur d’unité de disque potentielle.

    Nom du fichier : \Device\HarddiskVolume2\Windows\System32\drivers\tcpip.sys
    Record Number: 29182
    Source Name: Microsoft-Windows-Security-Auditing
    Time Written: 20090410134054.514235-000
    Event Type: Échec de l'audit
    User:

    Computer Name: PC-de-dadoux
    Event Code: 5038
    Message: L’intégrité du code a déterminé que le hachage de l’image d’un fichier n’est pas valide. Le fichier peut être endommagé en raison d’une modification non autorisée ou le hachage non valide peut indiquer une erreur d’unité de disque potentielle.

    Nom du fichier : \Device\HarddiskVolume2\Windows\System32\drivers\tcpip.sys
    Record Number: 29183
    Source Name: Microsoft-Windows-Security-Auditing
    Time Written: 20090410134054.545435-000
    Event Type: Échec de l'audit
    User:

    ======Environment variables======

    "ComSpec"=%SystemRoot%\system32\cmd.exe
    "FP_NO_HOST_CHECK"=NO
    "OS"=Windows_NT
    "Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\QuickTime\QTSystem\
    "PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
    "PROCESSOR_ARCHITECTURE"=x86
    "TEMP"=%SystemRoot%\TEMP
    "TMP"=%SystemRoot%\TEMP
    "USERNAME"=SYSTEM
    "windir"=%SystemRoot%
    "PROCESSOR_LEVEL"=6
    "PROCESSOR_IDENTIFIER"=x86 Family 6 Model 23 Stepping 7, GenuineIntel
    "PROCESSOR_REVISION"=1707
    "NUMBER_OF_PROCESSORS"=4
    "TRACE_FORMAT_SEARCH_PATH"=\\NTREL202.ntdev.corp.microsoft.com\4F18C3A5-CA09-4DBD-B6FC-219FDD4C6BE0\TraceFormat
    "DFSTRACINGON"=FALSE
    "CLASSPATH"=.;C:\Program Files\Java\jre6\lib\ext\QTJava.zip
    "QTJAVA"=C:\Program Files\Java\jre6\lib\ext\QTJava.zip

    -----------------EOF-----------------
    0
  10. loloetseb Messages postés 5684 Statut Membre 174
     
    Telecharge maintenant FindyKill sur ton bureau :

    http://sd-1.archive-host.com/membres/up/116615172019703188/FindyKill.exe

    --> Lance l installation avec les parametres par default

    --> Fais un clic droit sur le raccourci FindyKill sur ton bureau

    --> Choisi executer en tant qu administrateur

    --> Au menu principal,choisi l option 1 (Recherche)

    --> Post le rapport FindyKill.txt

    Note : le rapport FindyKill.txt est sauvegardé a la racine du disque
    0
  11. dadoux.30 Messages postés 619 Statut Membre 3
     
    ############################## [ FindyKill V4.722 ]

    # User : dadoux (Administrateurs) # PC-DE-DADOUX
    # Update on 04/04/09 by Chiquitine29
    # Start at: 16:17:45 | 10/04/2009
    # Website : http://pagesperso-orange.fr/FindyKill.Ad.Remover/

    # Intel(R) Core(TM)2 Quad CPU Q8200 @ 2.33GHz
    # Microsoft® Windows Vista™ Édition Familiale Premium (6.0.6001 32-bit) # Service Pack 1
    # Internet Explorer 8.0.6001.18702
    # Windows Firewall Status : Disabled
    # AV : Kaspersky Internet Security 8.0.0.506 [ Enabled | Updated ]
    # FW : Kaspersky Internet Security[ Enabled ]8.0.0.506

    # C:\ # Disque fixe local # 584,17 Go (261,94 Go free) [HDD] # NTFS
    # D:\ # Disque CD-ROM
    # E:\ # Disque amovible
    # F:\ # Disque amovible
    # G:\ # Disque amovible
    # H:\ # Disque amovible
    # I:\ # Disque CD-ROM
    # J:\ # Disque CD-ROM
    # M:\ # Disque fixe local # 465,65 Go (308,82 Go free) [My Book] # FAT32

    ############################## [ Processus actifs ]

    C:\Windows\System32\smss.exe
    C:\Windows\system32\csrss.exe
    C:\Windows\system32\wininit.exe
    C:\Windows\system32\csrss.exe
    C:\Windows\system32\services.exe
    C:\Windows\system32\lsass.exe
    C:\Windows\system32\lsm.exe
    C:\Windows\system32\winlogon.exe
    C:\Windows\system32\svchost.exe
    C:\Windows\system32\nvvsvc.exe
    C:\Windows\system32\svchost.exe
    C:\Windows\System32\svchost.exe
    C:\Windows\System32\svchost.exe
    C:\Windows\System32\svchost.exe
    C:\Windows\system32\svchost.exe
    C:\Windows\system32\svchost.exe
    C:\Windows\system32\SLsvc.exe
    C:\Windows\system32\rundll32.exe
    C:\Windows\system32\svchost.exe
    C:\Windows\System32\spoolsv.exe
    C:\Windows\system32\svchost.exe
    C:\Program Files\Adobe\Photoshop Elements 6.0\PhotoshopElementsFileAgent.exe
    C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
    C:\Program Files\Bonjour\mDNSResponder.exe
    C:\Windows\system32\svchost.exe
    C:\Windows\system32\svchost.exe
    C:\Windows\system32\lxczcoms.exe
    C:\Program Files\Google\Update\GoogleUpdate.exe
    C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
    C:\Windows\system32\IoctlSvc.exe
    C:\Windows\system32\svchost.exe
    C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
    C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
    C:\Windows\system32\svchost.exe
    C:\Windows\system32\SearchIndexer.exe
    C:\Windows\system32\taskeng.exe
    C:\Windows\system32\Dwm.exe
    C:\Windows\system32\taskeng.exe
    C:\Windows\Explorer.EXE
    C:\Program Files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe
    C:\Windows\RtHDVCpl.exe
    C:\Windows\System32\rundll32.exe
    C:\Program Files\Common Files\Real\Update_OB\realsched.exe
    C:\Program Files\iTunes\iTunesHelper.exe
    C:\Program Files\Java\jre6\bin\jusched.exe
    C:\Program Files\Windows Sidebar\sidebar.exe
    C:\Program Files\Packard Bell\SetUpMyPC\SmpSys.exe
    C:\Program Files\PeerGuardian2\pg2.exe
    C:\Windows\ehome\ehtray.exe
    C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
    C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
    C:\Program Files\GetRight\GetRight.exe
    C:\Program Files\Windows Media Player\wmpnscfg.exe
    C:\Windows\system32\wbem\unsecapp.exe
    C:\Windows\system32\wbem\wmiprvse.exe
    C:\Windows\ehome\ehmsas.exe
    C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
    C:\Program Files\Windows Sidebar\sidebar.exe
    C:\Program Files\iPod\bin\iPodService.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Windows\system32\NOTEPAD.EXE
    C:\Windows\system32\conime.exe
    C:\Windows\system32\wbem\wmiprvse.exe

    ################## [ C:\Windows # C:\Windows\Prefetch ]

    ################## [ C:\Windows\System32... ]

    ################## [ C:\Users\dadoux\AppData\Roaming ]

    ################## [ C:\Users\dadoux...\Temp Files... ]

    ################## [ Registre / Clés infectieuses ]

    ################## [ Recherche dans supports amovibles]

    # Recherche fichiers connus :

    Found ! "M:\autorun.inf"

    ################## [ Registre / Mountpoint2 ]

    # -> Not found !

    ################## [ ! Fin du rapport # FindyKill V4.722 ! ]
    0
  12. loloetseb Messages postés 5684 Statut Membre 174
     
    *****************************************************
    ************* Option 2 (Suppression) *************
    *****************************************************

    ! Déconnecte toi et ferme toutes application en cours ( navigateur compris ) .

    * Branche tes sources de données externes à ton PC, (clé USB, disque dur externe, etc...)

    * Relance "FindyKill" : au menu principal choisis l'option " F " pour français et tape sur [entrée] .

    * Au second menu choisis l'option 2 (suppression) et tape sur [entrée]

    * Le pc va redémarrer automatiquement ...

    --> le programme va travailler , ne touche à rien ... , ton bureau ne sera pas accessible c est normal !

    * Poste le rapport qui apparait à la fin ( le rapport est sauvegardé aussi sous C:\FindyKill.txt )

    /!\ Si le Bureau ne réapparait pas, presse Ctrl + Alt + Suppr , Onglet "Fichier" , "Nouvelle tâche" , tape explorer.exe et valide

    Aides en images ( Suppression )

    *****************************************************
    *************** Option 3 (Uninstal) ****************
    *****************************************************

    * Relance "FindyKill" : au menu principal choisis l'option " F " et tape sur [entrée] .

    * Au second menu choisis l'option 3 et tape sur [entrée] .

    * Clique sur ok quand l avertissement apparait.
    0
  13. loloetseb Messages postés 5684 Statut Membre 174
     
    Ensuite:

    1/####### | Install & recherche | #########

    Telecharge et install UsbFix de C_XX & Chiquitine29

    Branche tes sources de données externes à ton PC, (clé USB, disque dur externe, etc...) suceptible d avoir été infectés sans les ouvrir

    # Fais un clic droit sur le raccourci UsbFix présent sur ton bureau et choisi éxécuter en tant qu'administrateur .

    # Choisi l option 1 ( Recherche )

    # Laisse travailler l outil.

    # Ensuite post le rapport UsbFix.txt qui apparaitra.

    # Note : Le rapport UsbFix.txt est sauvegardé a la racine du disque. ( C:\UsbFix.txt )

    ( CTRL+A Pour tout selectionner , CTRL+C pour copier et CTRL+V pour coller )

    # Note : "Process.exe", une composante de l'outil, est détecté par certains antivirus (AntiVir, Dr.Web, Kaspersky Anti-Virus) comme étant un RiskTool.
    Il ne s'agit pas d'un virus, mais d'un utilitaire destiné à mettre fin à des processus.
    Mis entre de mauvaises mains, cet utilitaire pourrait arrêter des logiciels de sécurité (Antivirus, Firewall...) d'où l'alerte émise par ces antivirus.

    2/##### | Suppression | ######

    Branche tes sources de données externes à ton PC, (clé USB, disque dur externe, etc...) suceptible d avoir été infectés sans les ouvrir

    # Fais un clic droit sur le raccourci UsbFix présent sur ton bureau et choisi éxécuter en tant qu'administrateur .

    # choisi l option 2 ( Suppression )

    # Ton bureau disparaitra et le pc redémarrera .

    # Au redémarrage , UsbFix scannera ton pc , laisse travailler l outil.

    # Ensuite post le rapport UsbFix.txt qui apparaitra avec le bureau .

    # Note : Le rapport UsbFix.txt est sauvegardé a la racine du disque.( C:\UsbFix.txt )

    ( CTRL+A Pour tout selectionner , CTRL+C pour copier et CTRL+V pour coller )

    ######### | Désinstallation | #########

    # Fais un clic droit sur le raccourci UsbFix présent sur ton bureau et choisi éxécuter en tant qu'administrateur .

    # Choisi l option 3 ( Désinstaller ) ....

    Ensuite postes un rapport hijack this car celui ci a planté dans le rsit

    Télécharges et installes le logiciel de diagnostic HijackThis :

    ici HijackThis
    ou ici http://www.trendsecure.com/portal/en-US/_download/HJTInstall.exe
    ou ici https://www.clubic.com/telecharger-fiche17891-hijackthis.html

    ou renommé :

    http://pagesperso-orange.fr/yo-sen/HJTNew.exe

    1- Cliques sur le setup pour lancer l'installe : laisses toi guider et ne modifies pas les paramètres d'installation .
    A la fin de l'installe , le prg ce lance automatiquement : fermes le en cliquant sur la croix rouge .
    Au final, tu dois avoir un raccourci sur ton bureau et aussi un cheminement comme :
    "C:\ program files\Trend Micro\HijackThis\HijackThis.exe " .

    tuto pour utilisation :
    Regardes ici, c'est parfaitement expliqué en images (merci balltrap34),
    http://perso.orange.fr/rginformatique/section%20virus/demohijack.htm
    ( Ne fixes encore AUCUNE ligne de ton plein gré, cela pourrait empêcher ton PC de fonctionner correctement )

    2- !! Déconnectes toi et fermes toute tes applications en cours !!

    Cliques sur le raccourci du bureau pour lancer le prg :
    fais un scan HijackThis en cliquant sur : "Do a system scan and save a logfile"

    --->copies-colles le rapport généré pour analyse
    0
    1. dadoux.30 Messages postés 619 Statut Membre 3
       
      oups j'ai merder a l'option 2

      j'ai bien Déconnecte toutes application en cours
      Branche tes sources de données externes
      lance "FindyKill"
      Le pc a redémarrer automatiquement ...

      le programme a travailler
      mais est ce du a mon ecran de veille qui s'est activer
      le programme dne donait plus de reponse ( seule option anuler )
      donc j'ai voulu le relancer , j'ai pas fait attention au txt et je l'ai fermer
      j'ai tout recommencer mais il ne veut pas se relancer au demarrae comme il a fait la premiere fois

      vraiment desoler
      mais je fais quoi
      0
  14. loloetseb Messages postés 5684 Statut Membre 174
     
    Supprimes findy kill option 3 et passes à la procedure usb fix 1 et postes moi le rapport
    0
    1. dadoux.30 Messages postés 619 Statut Membre 3
       
      ############################## [ UsbFix V3.005 ]

      # User : dadoux () # PC-DE-DADOUX
      # Update on 08/04/09 by C_XX & Chiquitine29
      # Start at: 17:50:08 | 10/04/2009

      # Intel(R) Core(TM)2 Quad CPU Q8200 @ 2.33GHz
      # Microsoft® Windows Vista™ Édition Familiale Premium (6.0.6001 32-bit) # Service Pack 1
      # Internet Explorer 8.0.6001.18702
      # Windows Firewall Status : Disabled
      # AV : Kaspersky Internet Security 8.0.0.506 [ Enabled | Updated ]
      # FW : Kaspersky Internet Security[ Enabled ]8.0.0.506

      # C:\ # Disque fixe local # 584,17 Go (265,03 Go free) [HDD] # NTFS
      # D:\ # Disque CD-ROM
      # E:\ # Disque amovible
      # F:\ # Disque amovible
      # G:\ # Disque amovible
      # H:\ # Disque amovible
      # I:\ # Disque CD-ROM
      # J:\ # Disque CD-ROM
      # M:\ # Disque fixe local # 465,65 Go (308,82 Go free) [My Book] # FAT32

      ############################## [ Processus actifs ]

      C:\Windows\System32\smss.exe
      C:\Windows\system32\csrss.exe
      C:\Windows\system32\csrss.exe
      C:\Windows\system32\wininit.exe
      C:\Windows\system32\services.exe
      C:\Windows\system32\winlogon.exe
      C:\Windows\system32\lsass.exe
      C:\Windows\system32\lsm.exe
      C:\Windows\system32\svchost.exe
      C:\Windows\system32\svchost.exe
      C:\Windows\System32\svchost.exe
      C:\Windows\System32\svchost.exe
      C:\Windows\system32\svchost.exe
      C:\Windows\system32\svchost.exe
      C:\Windows\Explorer.EXE
      C:\Windows\system32\wbem\unsecapp.exe
      C:\Windows\system32\wbem\wmiprvse.exe
      C:\Windows\system32\wbem\wmiprvse.exe

      ################## [ Registre # Startup ]

      HKCU_Main: "Local Page"="C:\\Windows\\system32\\blank.htm"
      HKCU_Main: "Search Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
      HKCU_Main: "Start Page"="https://www.google.fr/?gws_rd=ssl"
      HKCU_Main: "Start Page Redirect Cache"="https://www.msn.com/fr-fr?ocid=iehp"
      HKCU_Main: "Start Page Redirect Cache_TIMESTAMP"=hex:df,69,80,e6,67,b7,c9,01
      HKCU_Main: "Start Page Redirect Cache AcceptLangs"="fr"
      HKCU_Main: "Window Title"=""
      HKLM_logon: "Userinit"="C:\\Windows\\system32\\userinit.exe,"
      HKLM_Run: Windows Defender=%ProgramFiles%\Windows Defender\MSASCui.exe -hide
      HKLM_Run: VirtualCloneDrive="C:\Program Files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s
      HKLM_Run: RtHDVCpl=RtHDVCpl.exe
      HKLM_Run: NvMediaCenter=RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
      HKLM_Run: NvCplDaemon=RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
      HKLM_Run: TkBellExe="C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
      HKLM_Run: QuickTime Task="C:\Program Files\QuickTime\QTTask.exe" -atboottime
      HKLM_Run: iTunesHelper="C:\Program Files\iTunes\iTunesHelper.exe"
      HKLM_Run: TrojanScanner=C:\Program Files\Trojan Remover\Trjscan.exe /boot
      HKLM_Run: AppleSyncNotifier=C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
      HKLM_Run: SunJavaUpdateSched="C:\Program Files\Java\jre6\bin\jusched.exe"
      HKLM_Run: Adobe Reader Speed Launcher="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
      HKLM_Run: CloneDVDElbyDelay="C:\Program Files\Elaborate Bytes\CloneDVD\ElbyCheck.exe" /L ElbyDelay
      HKLM_Run: AVP="C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe"
      HKLM_Run: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents=
      HKCU_Run: WMPNSCFG=C:\Program Files\Windows Media Player\WMPNSCFG.exe
      HKCU_Run: Sidebar=C:\Program Files\Windows Sidebar\sidebar.exe
      HKCU_Run: SmpcSys=C:\Program Files\Packard Bell\SetUpMyPC\SmpSys.exe
      HKCU_Run: PeerGuardian=C:\Program Files\PeerGuardian2\pg2.exe
      HKCU_Run: IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}="C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe" ASO-616B5711-6DAE-4795-A05F-39A1E5104020
      HKCU_Run: ehTray.exe=C:\Windows\ehome\ehTray.exe
      HKCU_Run: swg=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
      HKCU_Run: SUPERAntiSpyware=C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
      HKLM_System: "FilterAdministratorToken"=dword:00000000
      HKLM_System: "UacDisableNotify"=dword:00000000
      HKLM_System: "EnableLUA"=dword:00000001
      HKCU_plorer: "NoDriveTypeAutoRun"=dword:000000ff
      HKCU_plorer: "NoDriveAutoRun"=dword:03ffffff
      HKLM_plorer: "HonorAutorunSetting"=dword:00000001
      HKLM_plorer: "NoDriveTypeAutoRun"=dword:000000ff
      HKLM_plorer: "NoDriveAutoRun"=dword:03ffffff

      ################## [ Informations ]


      ################## [ Fichiers # Dossiers infectieux ]

      Found ! M:\Setup.exe

      ################## [ Registre # Clés infectieuses ]

      # -> Not Found !

      ################## [ Registre # Mountpoint2 ]

      Found ! HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\D\Shell\AutoRun\command
      Found ! HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\I\Shell\AutoRun\command
      Found ! HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\K\Shell\AutoRun\command
      Found ! HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\M\Shell\AutoRun\command
      Found ! HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{3855705b-e581-11dd-8914-00226803bf49}\Shell\AutoRun\command
      Found ! HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{519c2fd0-e530-11dd-a92d-806e6f6e6963}\Shell\AutoRun\command

      ################## [ ! Fin du rapport # UsbFix V3.005 ! ]
      0
      1. dadoux.30 Messages postés 619 Statut Membre 3 > dadoux.30 Messages postés 619 Statut Membre
         
        Logfile of Trend Micro HijackThis v2.0.2
        Scan saved at 18:09:51, on 10/04/2009
        Platform: Windows Vista SP1 (WinNT 6.00.1905)
        MSIE: Internet Explorer v8.00 (8.00.6001.18702)
        Boot mode: Normal

        Running processes:
        C:\Windows\system32\Dwm.exe
        C:\Windows\system32\taskeng.exe
        C:\Windows\Explorer.EXE
        C:\Program Files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe
        C:\Windows\RtHDVCpl.exe
        C:\Windows\System32\rundll32.exe
        C:\Program Files\Common Files\Real\Update_OB\realsched.exe
        C:\Program Files\iTunes\iTunesHelper.exe
        C:\Program Files\Java\jre6\bin\jusched.exe
        C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe
        C:\Program Files\Windows Media Player\wmpnscfg.exe
        C:\Program Files\Windows Sidebar\sidebar.exe
        C:\Program Files\Packard Bell\SetUpMyPC\SmpSys.exe
        C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe
        C:\Windows\ehome\ehtray.exe
        C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
        C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
        C:\Windows\ehome\ehmsas.exe
        C:\Program Files\Windows Sidebar\sidebar.exe
        C:\Windows\system32\wbem\unsecapp.exe
        C:\Program Files\Internet Explorer\iexplore.exe
        C:\Program Files\Internet Explorer\iexplore.exe
        C:\Program Files\GetRight\GetRight.exe
        C:\Windows\system32\SearchFilterHost.exe
        C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

        R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
        R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr
        R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
        R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
        R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
        O1 - Hosts: ::1 localhost
        O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
        O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
        O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
        O2 - BHO: IE to GetRight Helper - {31FF080D-12A3-439A-A2EF-4BA95A3148E8} - C:\Program Files\GetRight\xx2gr.dll
        O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\ievkbd.dll
        O2 - BHO: NCO 2.0 IE BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - (no file)
        O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\PROGRA~1\COMMON~1\SYMANT~1\IDS\IPSBHO.dll (file missing)
        O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll
        O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
        O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll
        O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\Google\Google_BAE\BAE.dll
        O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
        O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
        O3 - Toolbar: (no name) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - (no file)
        O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
        O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
        O4 - HKLM\..\Run: [VirtualCloneDrive] "C:\Program Files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s
        O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
        O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
        O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
        O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
        O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
        O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
        O4 - HKLM\..\Run: [TrojanScanner] C:\Program Files\Trojan Remover\Trjscan.exe /boot
        O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
        O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
        O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
        O4 - HKLM\..\Run: [CloneDVDElbyDelay] "C:\Program Files\Elaborate Bytes\CloneDVD\ElbyCheck.exe" /L ElbyDelay
        O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe"
        O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
        O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe
        O4 - HKCU\..\Run: [SmpcSys] C:\Program Files\Packard Bell\SetUpMyPC\SmpSys.exe
        O4 - HKCU\..\Run: [PeerGuardian] C:\Program Files\PeerGuardian2\pg2.exe
        O4 - HKCU\..\Run: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe" ASO-616B5711-6DAE-4795-A05F-39A1E5104020
        O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
        O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
        O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
        O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
        O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
        O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
        O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
        O8 - Extra context menu item: Ajouter à Kaspersky Anti-Bannière - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\ie_banner_deny.htm
        O8 - Extra context menu item: Download with GetRight - C:\Program Files\GetRight\GRdownload.htm
        O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
        O8 - Extra context menu item: Open with GetRight Browser - C:\Program Files\GetRight\GRbrowse.htm
        O9 - Extra button: Statistiques de la protection du trafic Internet - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\SCIEPlgn.dll
        O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
        O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
        O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
        O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
        O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\Windows\bdoscandel.exe
        O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\Windows\bdoscandel.exe
        O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
        O13 - Gopher Prefix:
        O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
        O17 - HKLM\System\CCS\Services\Tcpip\..\{B13A059A-A936-4C24-9973-65C3AC4C1023}: NameServer = 192.168.1.1
        O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
        O20 - AppInit_DLLs: C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd.dll,C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd3.dll,C:\PROGRA~1\KASPER~1\KASPER~1\adialhk.dll,C:\PROGRA~1\KASPER~1\KASPER~1\kloehk.dll
        O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
        O23 - Service: Adobe Active File Monitor V6 (AdobeActiveFileMonitor6.0) - Unknown owner - C:\Program Files\Adobe\Photoshop Elements 6.0\PhotoshopElementsFileAgent.exe
        O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
        O23 - Service: Kaspersky Internet Security (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe
        O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
        O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
        O23 - Service: getPlus(R) Helper - NOS Microsystems Ltd. - C:\Program Files\NOS\bin\getPlus_HelperSvc.exe
        O23 - Service: Service Google Update (gupdate1c99352ce87ed4e) (gupdate1c99352ce87ed4e) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
        O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
        O23 - Service: Service de l’iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
        O23 - Service: lxcz_device - - C:\Windows\system32\lxczcoms.exe
        O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
        O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
        O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
        O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\Windows\system32\IoctlSvc.exe
        O23 - Service: StarWind AE Service (StarWindServiceAE) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
        0
  15. loloetseb Messages postés 5684 Statut Membre 174
     
    Ok tu peux faire la suite de la procedure indiquée
    0
  16. loloetseb Messages postés 5684 Statut Membre 174
     
    Ben ,fallait faire usbfix 2 ,tu me postes le rapport,ensuite 3 ,et ensuite me poster le rapport hijack this
    0
    1. dadoux.30 Messages postés 619 Statut Membre 3
       
      je refait hijack ?
      0
  17. loloetseb Messages postés 5684 Statut Membre 174
     
    Regarde le post 15,tu n'as fait que le debut de la procedure
    0
    1. dadoux.30 Messages postés 619 Statut Membre 3
       
      usbfix
      se lance mais affiche

      acces refuse
      acces refuse
      acces refuse
      acces refuse
      acces refuse
      acces refuse
      0
  18. dadoux.30 Messages postés 619 Statut Membre 3
     
    ok j'ai instaler usbfix et je reprend a l'etape 15
    0
  19. loloetseb Messages postés 5684 Statut Membre 174
     
    Avais tu deja fait l'etape 2 usb fix de la procédure précédemment ou avais tu oublié de la faire?
    0
    1. dadoux.30 Messages postés 619 Statut Membre 3
       
      comme en mode normal le usbfix me mettait echec
      donc j'ai relancer le pc en mode sans echec et relancer le programme
      qui lui m'a donner le rapport
      apres je suis passer a l'etape 2
      0
  • 1
  • 2
  • 3
  • 4
  • 5