L'ordinateur s'éteint tout seul au démarrage
jagal
Messages postés
15
Statut
Membre
-
jagal Messages postés 15 Statut Membre -
jagal Messages postés 15 Statut Membre -
Bonjour à tous,
J'ai un problème avec mon ordinateur, je n'arrive plus à travailler dessus sauf en mode sans échec... Lorsque je l'allume et que j'arrive sur le bureau, 1 minute après il s'éteint et se rallume tout seul... puis ça recommence.
Quelqu'un pourrait m'aider svp?
Merci d'avance
Jagal
J'ai un problème avec mon ordinateur, je n'arrive plus à travailler dessus sauf en mode sans échec... Lorsque je l'allume et que j'arrive sur le bureau, 1 minute après il s'éteint et se rallume tout seul... puis ça recommence.
Quelqu'un pourrait m'aider svp?
Merci d'avance
Jagal
A voir également:
- L'ordinateur s'éteint tout seul au démarrage
- Ordinateur lent au démarrage - Guide
- Qu'est ce qui se lance au démarrage de l'ordinateur - Guide
- Reinitialiser pc au demarrage - Guide
- Forcer demarrage pc - Guide
- Problème démarrage windows 10 - Guide
26 réponses
bonjour :
essaie de faire ceci en mode normal stp
Désactive le contrôle des comptes utilisateurs (tu le réactiveras après ta désinfection):
- Vas dans "Démarrer" puis Panneau de configuration.
- Double Clique sur l'icône Comptes d'utilisateurs et sur Activer ou désactiver le contrôle des comptes d'utilisateurs.
- Clique sur Continuer.
- Décoche la case Utiliser le contrôle des comptes d'utilisateurs pour vous aider à protéger votre ordinateur.
- Valide par OK et redémarre.
Tuto
ensuite :
Télécharge Random's System Information Tool (RSIT) de random/random et enregistre l'exécutable sur ton Bureau.
! Déconnecte toi et ferme toutes tes applications en cours !
Double-clique sur " RSIT.exe " pour le lancer .
-> Une première fenêtre s'ouvre avec en titre : " Disclaimer of warranty " .
* Devant l'option "List files/folders created ..." , tu choisis : 2 months
* clique ensuite sur " Continue " pour lancer l'analyse ...
-> laisse faire le scan et ne touche pas au PC ...
Lorsque l'analyse sera terminée, deux fichiers texte s'ouvriront (probablement avec le bloc-note).
Poste le contenu de " log.txt " (c'est celui qui apparait à l'écran), ainsi que de " info.txt " (que tu verras dans la barre des tâches), pour analyse et attends la suite ...
Important : poste un rapport, puis l'autre dans la réponse suivante
Si tu essaies de poster les deux en même temps, cela risque d'être trop long pour le forum
( Note : les rapports seront en outre sauvegardés dans ce dossier -> C:\rsit )
essaie de faire ceci en mode normal stp
Désactive le contrôle des comptes utilisateurs (tu le réactiveras après ta désinfection):
- Vas dans "Démarrer" puis Panneau de configuration.
- Double Clique sur l'icône Comptes d'utilisateurs et sur Activer ou désactiver le contrôle des comptes d'utilisateurs.
- Clique sur Continuer.
- Décoche la case Utiliser le contrôle des comptes d'utilisateurs pour vous aider à protéger votre ordinateur.
- Valide par OK et redémarre.
Tuto
ensuite :
Télécharge Random's System Information Tool (RSIT) de random/random et enregistre l'exécutable sur ton Bureau.
! Déconnecte toi et ferme toutes tes applications en cours !
Double-clique sur " RSIT.exe " pour le lancer .
-> Une première fenêtre s'ouvre avec en titre : " Disclaimer of warranty " .
* Devant l'option "List files/folders created ..." , tu choisis : 2 months
* clique ensuite sur " Continue " pour lancer l'analyse ...
-> laisse faire le scan et ne touche pas au PC ...
Lorsque l'analyse sera terminée, deux fichiers texte s'ouvriront (probablement avec le bloc-note).
Poste le contenu de " log.txt " (c'est celui qui apparait à l'écran), ainsi que de " info.txt " (que tu verras dans la barre des tâches), pour analyse et attends la suite ...
Important : poste un rapport, puis l'autre dans la réponse suivante
Si tu essaies de poster les deux en même temps, cela risque d'être trop long pour le forum
( Note : les rapports seront en outre sauvegardés dans ce dossier -> C:\rsit )
Sur le Comptes utilisateur il y a tout sauf activer ou désactiver:
. Modifier un compte
. Créer un nouveau compte
. Modifier la manière dont un utilisateur ouvrent et ferment une session ou choisissez un compte à modifier
. Modifier un compte
. Créer un nouveau compte
. Modifier la manière dont un utilisateur ouvrent et ferment une session ou choisissez un compte à modifier
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
Logfile of random's system information tool 1.06 (written by random/random)
Run by Nicolas at 2009-05-01 12:42:20
Microsoft Windows XP Édition familiale Service Pack 3
System drive C: has 28 GB (15%) free of 191 GB
Total RAM: 503 MB (70% free)
HijackThis download failed
======Scheduled tasks folder======
C:\WINDOWS\tasks\AppleSoftwareUpdate.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Aide pour le lien d'Adobe PDF Reader - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
RealPlayer Download and Record Plugin for Internet Explorer - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll [2008-04-30 308856]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll [2009-01-14 92504]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre6\bin\ssv.dll [2008-12-28 320920]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Programme d'aide de l'Assistant de connexion Windows Live - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.0.926.3450\swg.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C84D72FE-E17D-4195-BB24-76C02E2E7C4E}]
Google Dictionary Compression sdch - C:\Program Files\Google\Google Toolbar\Component\fastsearch_219B3E1547538286.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2008-12-28 34816]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
Windows Live Toolbar Helper - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2008-12-28 73728]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - Barre d'outils MSN - C:\Program Files\MSN Toolbar\01.01.2607.0\fr\msntb.dll []
{21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"igfxtray"=C:\WINDOWS\System32\igfxtray.exe [2006-02-07 94208]
"igfxhkcmd"=C:\WINDOWS\System32\hkcmd.exe [2006-02-07 77824]
"igfxpers"=C:\WINDOWS\System32\igfxpers.exe [2006-02-07 118784]
"High Definition Audio Property Page Shortcut"=C:\WINDOWS\system32\HDAShCut.exe [2005-01-07 61952]
"SkyTel"=C:\WINDOWS\SkyTel.EXE [2006-05-16 2879488]
"SoundMan"=C:\WINDOWS\SOUNDMAN.EXE [2006-07-21 86016]
"AlcWzrd"=C:\WINDOWS\ALCWZRD.EXE [2006-05-04 2808832]
"WinVNC"=C:\Program Files\UltraVNC\WinVNC.exe [2005-08-06 974848]
"H2O"=C:\Program Files\SyncroSoft\Pos\H2O\cledx.exe [2005-11-01 307200]
"NeroFilterCheck"=C:\WINDOWS\system32\NeroCheck.exe [2001-07-09 155648]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [2008-01-11 39792]
"TkBellExe"=C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe [2008-04-30 185896]
"AVP"=C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe [2007-06-28 218376]
"SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2008-12-28 136600]
"QuickTime Task"=C:\Program Files\QuickTime\qttask.exe [2008-09-06 413696]
"iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2008-10-01 289576]
"autochk"=C:\WINDOWS\system32\autochk.dll [2009-04-26 23552]
"KernelFaultCheck"=C:\WINDOWS\system32\dumprep 0 -k []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"Audio Kontrol 1"=C:\Program Files\Native Instruments\Audio Kontrol 1\Audio Kontrol 1.exe [2006-09-18 6336512]
"MsnMsgr"=C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe [2009-02-06 3885408]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\daemon.exe [2008-07-17 490952]
"Nicolas"=C:\Documents and Settings\Nicolas\Nicolas.exe [2009-04-25 21025]
"autochk"=C:\DOCUME~1\NETWOR~1\protect.dll [2009-04-25 23552]
C:\Documents and Settings\Nicolas\Menu Démarrer\Programmes\Démarrage
ChkDisk.dll
ChkDisk.lnk - C:\WINDOWS\system32\rundll32.exe
MSN Pictures Displayer.lnk - C:\Program Files\MSN Pictures Displayer\MSN Pictures Displayer.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\crypt]
C:\WINDOWS\system32\crypts.dll [2009-04-25 33280]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2006-02-07 139264]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\klogon]
C:\WINDOWS\system32\klogon.dll [2007-06-28 206088]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll,, digiwet.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UploadMgr]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"NoDispScrSavPage"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=
"NoDriveTypeAutoRun"=
"NoDrives"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe"="C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe:*:Enabled:Kaspersky Anti-Virus"
"C:\Program Files\IBP 9\IBP.exe"="C:\Program Files\IBP 9\IBP.exe:*:Enabled:Internet Business Promoter (IBP)"
"C:\Program Files\LimeWire\LimeWire.exe"="C:\Program Files\LimeWire\LimeWire.exe:*:Enabled:LimeWire"
"C:\Program Files\Bonjour\mDNSResponder.exe"="C:\Program Files\Bonjour\mDNSResponder.exe:*:Enabled:Bonjour"
"C:\Program Files\iTunes\iTunes.exe"="C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes"
"C:\Program Files\Real\RealPlayer\realplay.exe"="C:\Program Files\Real\RealPlayer\realplay.exe:*:Enabled:RealPlayer"
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live Sync"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\WINDOWS\Explorer.EXE"="C:\WINDOWS\Explorer.EXE:*:Enabled:ENABLE"
"C:\WINDOWS\system32\userinit.exe"="C:\WINDOWS\system32\userinit.exe:*:Enabled:ENABLE"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live Sync"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{479ad8ea-1a41-11de-84dc-001111f19ceb}]
shell\Auto\command - RavMonE.exe e
shell\AutoRun\command - C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL RavMonE.exe e
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{cac16cd1-0489-11dd-a86a-92749d06b0a0}]
shell\AutoRun\command - F:\LaunchU3.exe
======File associations======
.reg - open - regedit.exe "%1" %*
.scr - open - "%1" %*
======List of files/folders created in the last 2 months======
2009-05-01 12:42:20 ----D---- C:\rsit
2009-04-25 23:03:03 ----A---- C:\WINDOWS\ntbtlog.txt
2009-04-25 12:05:02 ----A---- C:\WINDOWS\system32\digiwet.dll
2009-04-25 11:51:12 ----ASH---- C:\WINDOWS\system32\autochk.dll
2009-04-25 11:50:24 ----A---- C:\WINDOWS\system32\crypts.dll
2009-04-23 11:57:28 ----D---- C:\Documents and Settings\Nicolas\Application Data\Mozilla
2009-04-23 11:55:39 ----D---- C:\Program Files\Mozilla Firefox
2009-04-23 11:20:19 ----SHD---- C:\Config.Msi
2009-04-23 11:14:17 ----A---- C:\WINDOWS\OEWABLog.txt
2009-04-23 11:13:25 ----A---- C:\WINDOWS\system32\wmpns.dll
2009-04-23 11:12:17 ----D---- C:\WINDOWS\Prefetch
2009-04-23 10:57:52 ----A---- C:\WINDOWS\setuplog.txt
2009-04-23 10:56:12 ----D---- C:\WINDOWS\system32\fr
2009-04-23 10:56:12 ----D---- C:\WINDOWS\l2schemas
2009-04-23 10:56:11 ----D---- C:\WINDOWS\system32\bits
2009-04-23 10:32:46 ----N---- C:\WINDOWS\system32\wlanapi.dll
2009-04-23 10:32:31 ----N---- C:\WINDOWS\system32\tspkg.dll
2009-04-23 10:32:16 ----N---- C:\WINDOWS\system32\setupn.exe
2009-04-23 10:32:12 ----N---- C:\WINDOWS\system32\rasqec.dll
2009-04-23 10:32:11 ----N---- C:\WINDOWS\system32\qutil.dll
2009-04-23 10:32:10 ----N---- C:\WINDOWS\system32\qcliprov.dll
2009-04-23 10:32:10 ----N---- C:\WINDOWS\system32\qagentrt.dll
2009-04-23 10:32:10 ----N---- C:\WINDOWS\system32\qagent.dll
2009-04-23 10:32:06 ----N---- C:\WINDOWS\system32\onex.dll
2009-04-23 10:31:57 ----N---- C:\WINDOWS\system32\napstat.exe
2009-04-23 10:31:57 ----N---- C:\WINDOWS\system32\napmontr.dll
2009-04-23 10:31:57 ----N---- C:\WINDOWS\system32\napipsec.dll
2009-04-23 10:31:55 ----A---- C:\WINDOWS\system32\msxml6r.dll
2009-04-23 10:31:51 ----N---- C:\WINDOWS\system32\msshavmsg.dll
2009-04-23 10:31:51 ----N---- C:\WINDOWS\system32\mssha.dll
2009-04-23 10:31:35 ----N---- C:\WINDOWS\system32\mmcperf.exe
2009-04-23 10:31:35 ----N---- C:\WINDOWS\system32\mmcfxcommon.dll
2009-04-23 10:31:34 ----N---- C:\WINDOWS\system32\mmcex.dll
2009-04-23 10:31:34 ----N---- C:\WINDOWS\system32\microsoft.managementconsole.dll
2009-04-23 10:31:24 ----N---- C:\WINDOWS\system32\l2gpstore.dll
2009-04-23 10:31:24 ----N---- C:\WINDOWS\system32\kmsvc.dll
2009-04-23 10:31:23 ----N---- C:\WINDOWS\system32\kbdpash.dll
2009-04-23 10:31:23 ----N---- C:\WINDOWS\system32\kbdnepr.dll
2009-04-23 10:31:23 ----N---- C:\WINDOWS\system32\kbdiultn.dll
2009-04-23 10:31:23 ----N---- C:\WINDOWS\system32\kbdbhc.dll
2009-04-23 10:31:04 ----A---- C:\WINDOWS\005486_.tmp
2009-04-23 10:31:03 ----N---- C:\WINDOWS\system32\eapsvc.dll
2009-04-23 10:31:03 ----N---- C:\WINDOWS\system32\eapqec.dll
2009-04-23 10:31:03 ----N---- C:\WINDOWS\system32\eappprxy.dll
2009-04-23 10:31:03 ----N---- C:\WINDOWS\system32\eapphost.dll
2009-04-23 10:31:03 ----N---- C:\WINDOWS\system32\eappgnui.dll
2009-04-23 10:31:03 ----N---- C:\WINDOWS\system32\eappcfg.dll
2009-04-23 10:31:03 ----N---- C:\WINDOWS\system32\eapp3hst.dll
2009-04-23 10:31:02 ----N---- C:\WINDOWS\system32\eapolqec.dll
2009-04-23 10:30:59 ----N---- C:\WINDOWS\system32\dot3ui.dll
2009-04-23 10:30:59 ----N---- C:\WINDOWS\system32\dot3svc.dll
2009-04-23 10:30:59 ----N---- C:\WINDOWS\system32\dot3msm.dll
2009-04-23 10:30:59 ----N---- C:\WINDOWS\system32\dot3gpclnt.dll
2009-04-23 10:30:59 ----N---- C:\WINDOWS\system32\dot3dlg.dll
2009-04-23 10:30:59 ----N---- C:\WINDOWS\system32\dot3cfg.dll
2009-04-23 10:30:59 ----N---- C:\WINDOWS\system32\dot3api.dll
2009-04-23 10:30:55 ----N---- C:\WINDOWS\system32\dimsroam.dll
2009-04-23 10:30:55 ----N---- C:\WINDOWS\system32\dimsntfy.dll
2009-04-23 10:30:55 ----N---- C:\WINDOWS\system32\dhcpqec.dll
2009-04-23 10:30:52 ----N---- C:\WINDOWS\system32\credssp.dll
2009-04-23 10:30:45 ----N---- C:\WINDOWS\system32\bitsprx4.dll
2009-04-23 10:30:45 ----N---- C:\WINDOWS\system32\azroles.dll
2009-04-23 10:00:58 ----A---- C:\WINDOWS\system32\wuapi.dll.mui
2009-03-18 21:41:42 ----D---- C:\Program Files\Microsoft Silverlight
2009-03-18 21:41:29 ----D---- C:\Program Files\Microsoft Office Outlook Connector
2009-03-18 21:40:32 ----D---- C:\Program Files\Microsoft Sync Framework
2009-03-18 21:39:33 ----A---- C:\WINDOWS\system32\d3dx9_32.dll
2009-03-18 21:39:10 ----D---- C:\Program Files\Microsoft SQL Server Compact Edition
2009-03-18 21:37:15 ----D---- C:\Program Files\Microsoft
2009-03-18 21:36:25 ----D---- C:\Program Files\Windows Live SkyDrive
2009-03-18 21:27:57 ----D---- C:\Program Files\Fichiers communs\Windows Live
======List of files/folders modified in the last 2 months======
2009-05-01 12:40:17 ----D---- C:\WINDOWS\system32\CatRoot2
2009-05-01 12:39:56 ----D---- C:\WINDOWS
2009-05-01 12:38:45 ----D---- C:\WINDOWS\TEMP
2009-05-01 12:38:43 ----HD---- C:\WINDOWS\inf
2009-05-01 12:25:15 ----D---- C:\Documents and Settings\All Users\Application Data\Kaspersky Lab
2009-04-26 22:21:46 ----A---- C:\WINDOWS\SchedLgU.Txt
2009-04-26 20:53:09 ----D---- C:\WINDOWS\Minidump
2009-04-25 23:13:59 ----D---- C:\WINDOWS\system32
2009-04-25 23:13:56 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2009-04-25 23:11:26 ----RD---- C:\Program Files
2009-04-25 23:05:42 ----D---- C:\Documents and Settings\All Users\Application Data\Google
2009-04-25 11:52:17 ----D---- C:\WINDOWS\system32\drivers
2009-04-23 11:23:46 ----RSHDC---- C:\WINDOWS\system32\dllcache
2009-04-23 11:20:23 ----SHD---- C:\WINDOWS\Installer
2009-04-23 11:13:34 ----D---- C:\WINDOWS\Debug
2009-04-23 11:11:52 ----D---- C:\WINDOWS\system32\Setup
2009-04-23 11:11:52 ----D---- C:\WINDOWS\AppPatch
2009-04-23 11:11:52 ----D---- C:\Program Files\Messenger
2009-04-23 11:11:50 ----D---- C:\WINDOWS\system32\wbem
2009-04-23 11:11:48 ----RSD---- C:\WINDOWS\Fonts
2009-04-23 11:10:57 ----D---- C:\WINDOWS\security
2009-04-23 10:59:32 ----D---- C:\WINDOWS\system32\CatRoot
2009-04-23 10:56:54 ----D---- C:\WINDOWS\WinSxS
2009-04-23 10:56:46 ----D---- C:\WINDOWS\ServicePackFiles
2009-04-23 10:56:44 ----D---- C:\WINDOWS\network diagnostic
2009-04-23 10:56:43 ----D---- C:\WINDOWS\ime
2009-04-23 10:56:43 ----D---- C:\WINDOWS\Help
2009-04-23 10:56:17 ----D---- C:\WINDOWS\system32\usmt
2009-04-23 10:56:17 ----D---- C:\WINDOWS\system32\fr-fr
2009-04-23 10:56:11 ----D---- C:\WINDOWS\peernet
2009-04-23 10:56:11 ----D---- C:\Program Files\Movie Maker
2009-04-23 10:52:09 ----D---- C:\WINDOWS\system32\Restore
2009-04-23 10:52:09 ----D---- C:\WINDOWS\system32\npp
2009-04-23 10:52:07 ----D---- C:\WINDOWS\msagent
2009-04-23 10:52:06 ----D---- C:\WINDOWS\srchasst
2009-04-23 10:52:05 ----D---- C:\Program Files\NetMeeting
2009-04-23 10:52:03 ----D---- C:\WINDOWS\system32\Com
2009-04-23 10:52:01 ----D---- C:\Program Files\Windows Media Player
2009-04-23 10:52:00 ----D---- C:\Program Files\Windows NT
2009-04-23 10:52:00 ----D---- C:\Program Files\Outlook Express
2009-04-23 10:51:56 ----D---- C:\Program Files\Fichiers communs\System
2009-04-23 10:51:33 ----D---- C:\WINDOWS\system32\oobe
2009-04-23 10:51:31 ----D---- C:\WINDOWS\system
2009-04-23 10:47:43 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2009-04-23 10:39:42 ----D---- C:\WINDOWS\EHome
2009-04-23 10:01:17 ----D---- C:\WINDOWS\SoftwareDistribution
2009-04-23 10:00:32 ----SD---- C:\WINDOWS\Downloaded Program Files
2009-04-17 12:27:27 ----A---- C:\WINDOWS\NeroDigital.ini
2009-04-14 13:27:17 ----SD---- C:\Documents and Settings\Nicolas\Application Data\Microsoft
2009-04-09 23:39:37 ----D---- C:\Program Files\Fichiers communs
2009-04-09 23:39:35 ----D---- C:\Documents and Settings\All Users\Application Data\Skype
2009-04-09 23:38:06 ----D---- C:\Documents and Settings\Nicolas\Application Data\skypePM
2009-03-21 00:19:41 ----D---- C:\Documents and Settings\Nicolas\Application Data\LimeWire
2009-03-19 21:10:24 ----RSD---- C:\WINDOWS\assembly
2009-03-19 21:09:26 ----D---- C:\WINDOWS\Microsoft.NET
2009-03-18 21:41:07 ----DC---- C:\WINDOWS\system32\DRVSTORE
2009-03-18 21:41:05 ----D---- C:\Program Files\Windows Live
2009-03-18 21:40:17 ----SD---- C:\Documents and Settings\All Users\Application Data\Microsoft
2009-03-18 21:39:35 ----D---- C:\WINDOWS\system32\DirectX
2009-03-18 21:36:49 ----D---- C:\Program Files\Fichiers communs\Microsoft Shared
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R3 CLEDX;Team H2O CLEDX service; C:\WINDOWS\system32\DRIVERS\cledx.sys [2005-05-09 33792]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\WINDOWS\System32\Drivers\GEARAspiWDM.sys [2008-04-17 15464]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\System32\DRIVERS\HDAudBus.sys [2005-01-07 138752]
R3 hidusb;Pilote de classe HID Microsoft; C:\WINDOWS\System32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 mouhid;Pilote HID de souris; C:\WINDOWS\System32\DRIVERS\mouhid.sys [2003-04-24 12288]
R3 usbehci;Pilote miniport de contrôleur hôte amélioré USB 2.0 Microsoft; C:\WINDOWS\System32\DRIVERS\usbehci.sys [2008-04-13 30208]
R3 usbhub;Concentrateur USB2; C:\WINDOWS\System32\DRIVERS\usbhub.sys [2008-04-13 59520]
R3 USBSTOR;Pilote de stockage de masse USB; C:\WINDOWS\System32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
R3 usbuhci;Pilote miniport de contrôleur hôte universel USB Microsoft; C:\WINDOWS\System32\DRIVERS\usbuhci.sys [2008-04-13 20608]
S1 intelppm;Pilote de processeur Intel; C:\WINDOWS\System32\DRIVERS\intelppm.sys [2008-04-14 40576]
S1 kbdhid;Pilote HID de clavier; C:\WINDOWS\System32\DRIVERS\kbdhid.sys [2008-04-14 14720]
S1 klif;Klif; \??\C:\WINDOWS\system32\drivers\klif.sys []
S2 fssfltr;FssFltr; C:\WINDOWS\system32\DRIVERS\fssfltr_tdi.sys [2009-02-06 55152]
S2 RVIEGVST;VSC VST Engine; \??\C:\Program Files\Roland\Virtual Sound Canvas VST\RVIEg01VST.sys []
S2 securentm;securentm; \??\C:\WINDOWS\system32\drivers\securentm.sys []
S3 AgereSoftModem;Agere Systems Soft Modem; C:\WINDOWS\system32\DRIVERS\AGRSM.sys [2007-10-30 1201632]
S3 ak1avs;ak1avs; C:\WINDOWS\System32\Drivers\ak1avs.sys [2006-09-13 25088]
S3 ak1usb;ak1usb; C:\WINDOWS\System32\Drivers\ak1usb.sys [2006-09-13 84992]
S3 asmaw11b;asmaw11b; C:\WINDOWS\system32\drivers\asmaw11b.sys []
S3 catchme;catchme; \??\C:\ComboFix\catchme.sys []
S3 CCDECODE;Décodeur sous-titre fermé; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
S3 E100B;Intel(R) PRO Network Connection Driver; C:\WINDOWS\System32\DRIVERS\e100b325.sys [2006-10-31 165760]
S3 HdAudAddService;Microsoft UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\HdAudio.sys [2005-01-07 145920]
S3 ialm;ialm; C:\WINDOWS\System32\DRIVERS\ialmnt5.sys [2006-02-07 1399615]
S3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2007-03-01 4484608]
S3 klim5;Kaspersky Anti-Virus NDIS Filter; C:\WINDOWS\system32\DRIVERS\klim5.sys [2007-04-04 24344]
S3 MSTEE;Convertisseur en T/site-à-site de répartition Microsoft; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504]
S3 NABTSFEC;Codec NABTS/FEC VBI; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
S3 NdisIP;Connection TV/vidéo Microsoft; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-13 10880]
S3 QCMerced;Logitech QuickCam Express; C:\WINDOWS\system32\DRIVERS\LVCM.sys [2002-09-20 472396]
S3 SDVC04;USB DVC Service; C:\WINDOWS\System32\Drivers\SDVC04.sys [2003-05-22 42413]
S3 SLIP;Détrameur décalage BDA; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-13 11136]
S3 SONYPVU1;Pilote de filtrage Sony USB (SONYPVU1); C:\WINDOWS\system32\DRIVERS\SONYPVU1.SYS [2001-08-17 7552]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-13 15232]
S3 USBAAPL;Apple Mobile USB Driver; C:\WINDOWS\System32\Drivers\usbaapl.sys []
S3 usbaudio;USB Audio Driver (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2008-04-13 60032]
S3 usbccgp;Pilote parent générique USB Microsoft; C:\WINDOWS\System32\DRIVERS\usbccgp.sys [2008-04-13 32128]
S3 usbprint;Classe d'imprimantes USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Pilote de scanneur USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 WSTCODEC;Codec Teletext standard; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
S2 AVP;Kaspersky Anti-Virus 7.0; C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe [2007-06-28 218376]
S2 Bonjour Service;Service Bonjour; C:\Program Files\Bonjour\mDNSResponder.exe [2008-08-29 238888]
S2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2008-12-28 152984]
S2 MDM;Machine Debug Manager; C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-19 322120]
S2 SeaPort;SeaPort; C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2009-01-14 226656]
S2 winvnc;VNC Server; C:\Program Files\UltraVNC\WinVNC.exe [2005-08-06 974848]
S3 aspnet_state;Service d'état ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2007-10-24 33800]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2007-10-24 70144]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe [2007-10-09 36864]
S3 fsssvc;Windows Live Contrôle parental; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2009-02-06 533360]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2007-10-11 864256]
S3 iPod Service;Service de l’iPod; C:\Program Files\iPod\bin\iPodService.exe [2008-10-01 536872]
S3 MSSQL$SONY_MEDIAMGR;MSSQL$SONY_MEDIAMGR; C:\Program Files\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe [2002-12-17 7520337]
S3 MSSQLServerADHelper;MSSQLServerADHelper; C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqladhlp.exe [2002-12-17 66112]
S3 ose;Office Source Engine; C:\Program Files\Fichiers communs\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 SQLAgent$SONY_MEDIAMGR;SQLAgent$SONY_MEDIAMGR; C:\Program Files\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlagent.EXE [2002-12-17 311872]
S3 WMPNetworkSvc;Service Partage réseau du Lecteur Windows Media; C:\Program Files\Windows Media Player\WMPNetwk.exe [2006-11-03 918016]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe []
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2007-10-11 122880]
-----------------EOF-----------------
Run by Nicolas at 2009-05-01 12:42:20
Microsoft Windows XP Édition familiale Service Pack 3
System drive C: has 28 GB (15%) free of 191 GB
Total RAM: 503 MB (70% free)
HijackThis download failed
======Scheduled tasks folder======
C:\WINDOWS\tasks\AppleSoftwareUpdate.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Aide pour le lien d'Adobe PDF Reader - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
RealPlayer Download and Record Plugin for Internet Explorer - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll [2008-04-30 308856]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll [2009-01-14 92504]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre6\bin\ssv.dll [2008-12-28 320920]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Programme d'aide de l'Assistant de connexion Windows Live - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.0.926.3450\swg.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C84D72FE-E17D-4195-BB24-76C02E2E7C4E}]
Google Dictionary Compression sdch - C:\Program Files\Google\Google Toolbar\Component\fastsearch_219B3E1547538286.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2008-12-28 34816]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
Windows Live Toolbar Helper - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2008-12-28 73728]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - Barre d'outils MSN - C:\Program Files\MSN Toolbar\01.01.2607.0\fr\msntb.dll []
{21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"igfxtray"=C:\WINDOWS\System32\igfxtray.exe [2006-02-07 94208]
"igfxhkcmd"=C:\WINDOWS\System32\hkcmd.exe [2006-02-07 77824]
"igfxpers"=C:\WINDOWS\System32\igfxpers.exe [2006-02-07 118784]
"High Definition Audio Property Page Shortcut"=C:\WINDOWS\system32\HDAShCut.exe [2005-01-07 61952]
"SkyTel"=C:\WINDOWS\SkyTel.EXE [2006-05-16 2879488]
"SoundMan"=C:\WINDOWS\SOUNDMAN.EXE [2006-07-21 86016]
"AlcWzrd"=C:\WINDOWS\ALCWZRD.EXE [2006-05-04 2808832]
"WinVNC"=C:\Program Files\UltraVNC\WinVNC.exe [2005-08-06 974848]
"H2O"=C:\Program Files\SyncroSoft\Pos\H2O\cledx.exe [2005-11-01 307200]
"NeroFilterCheck"=C:\WINDOWS\system32\NeroCheck.exe [2001-07-09 155648]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [2008-01-11 39792]
"TkBellExe"=C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe [2008-04-30 185896]
"AVP"=C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe [2007-06-28 218376]
"SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2008-12-28 136600]
"QuickTime Task"=C:\Program Files\QuickTime\qttask.exe [2008-09-06 413696]
"iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2008-10-01 289576]
"autochk"=C:\WINDOWS\system32\autochk.dll [2009-04-26 23552]
"KernelFaultCheck"=C:\WINDOWS\system32\dumprep 0 -k []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"Audio Kontrol 1"=C:\Program Files\Native Instruments\Audio Kontrol 1\Audio Kontrol 1.exe [2006-09-18 6336512]
"MsnMsgr"=C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe [2009-02-06 3885408]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\daemon.exe [2008-07-17 490952]
"Nicolas"=C:\Documents and Settings\Nicolas\Nicolas.exe [2009-04-25 21025]
"autochk"=C:\DOCUME~1\NETWOR~1\protect.dll [2009-04-25 23552]
C:\Documents and Settings\Nicolas\Menu Démarrer\Programmes\Démarrage
ChkDisk.dll
ChkDisk.lnk - C:\WINDOWS\system32\rundll32.exe
MSN Pictures Displayer.lnk - C:\Program Files\MSN Pictures Displayer\MSN Pictures Displayer.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\crypt]
C:\WINDOWS\system32\crypts.dll [2009-04-25 33280]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2006-02-07 139264]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\klogon]
C:\WINDOWS\system32\klogon.dll [2007-06-28 206088]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll,, digiwet.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UploadMgr]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"NoDispScrSavPage"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=
"NoDriveTypeAutoRun"=
"NoDrives"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe"="C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe:*:Enabled:Kaspersky Anti-Virus"
"C:\Program Files\IBP 9\IBP.exe"="C:\Program Files\IBP 9\IBP.exe:*:Enabled:Internet Business Promoter (IBP)"
"C:\Program Files\LimeWire\LimeWire.exe"="C:\Program Files\LimeWire\LimeWire.exe:*:Enabled:LimeWire"
"C:\Program Files\Bonjour\mDNSResponder.exe"="C:\Program Files\Bonjour\mDNSResponder.exe:*:Enabled:Bonjour"
"C:\Program Files\iTunes\iTunes.exe"="C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes"
"C:\Program Files\Real\RealPlayer\realplay.exe"="C:\Program Files\Real\RealPlayer\realplay.exe:*:Enabled:RealPlayer"
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live Sync"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\WINDOWS\Explorer.EXE"="C:\WINDOWS\Explorer.EXE:*:Enabled:ENABLE"
"C:\WINDOWS\system32\userinit.exe"="C:\WINDOWS\system32\userinit.exe:*:Enabled:ENABLE"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live Sync"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{479ad8ea-1a41-11de-84dc-001111f19ceb}]
shell\Auto\command - RavMonE.exe e
shell\AutoRun\command - C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL RavMonE.exe e
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{cac16cd1-0489-11dd-a86a-92749d06b0a0}]
shell\AutoRun\command - F:\LaunchU3.exe
======File associations======
.reg - open - regedit.exe "%1" %*
.scr - open - "%1" %*
======List of files/folders created in the last 2 months======
2009-05-01 12:42:20 ----D---- C:\rsit
2009-04-25 23:03:03 ----A---- C:\WINDOWS\ntbtlog.txt
2009-04-25 12:05:02 ----A---- C:\WINDOWS\system32\digiwet.dll
2009-04-25 11:51:12 ----ASH---- C:\WINDOWS\system32\autochk.dll
2009-04-25 11:50:24 ----A---- C:\WINDOWS\system32\crypts.dll
2009-04-23 11:57:28 ----D---- C:\Documents and Settings\Nicolas\Application Data\Mozilla
2009-04-23 11:55:39 ----D---- C:\Program Files\Mozilla Firefox
2009-04-23 11:20:19 ----SHD---- C:\Config.Msi
2009-04-23 11:14:17 ----A---- C:\WINDOWS\OEWABLog.txt
2009-04-23 11:13:25 ----A---- C:\WINDOWS\system32\wmpns.dll
2009-04-23 11:12:17 ----D---- C:\WINDOWS\Prefetch
2009-04-23 10:57:52 ----A---- C:\WINDOWS\setuplog.txt
2009-04-23 10:56:12 ----D---- C:\WINDOWS\system32\fr
2009-04-23 10:56:12 ----D---- C:\WINDOWS\l2schemas
2009-04-23 10:56:11 ----D---- C:\WINDOWS\system32\bits
2009-04-23 10:32:46 ----N---- C:\WINDOWS\system32\wlanapi.dll
2009-04-23 10:32:31 ----N---- C:\WINDOWS\system32\tspkg.dll
2009-04-23 10:32:16 ----N---- C:\WINDOWS\system32\setupn.exe
2009-04-23 10:32:12 ----N---- C:\WINDOWS\system32\rasqec.dll
2009-04-23 10:32:11 ----N---- C:\WINDOWS\system32\qutil.dll
2009-04-23 10:32:10 ----N---- C:\WINDOWS\system32\qcliprov.dll
2009-04-23 10:32:10 ----N---- C:\WINDOWS\system32\qagentrt.dll
2009-04-23 10:32:10 ----N---- C:\WINDOWS\system32\qagent.dll
2009-04-23 10:32:06 ----N---- C:\WINDOWS\system32\onex.dll
2009-04-23 10:31:57 ----N---- C:\WINDOWS\system32\napstat.exe
2009-04-23 10:31:57 ----N---- C:\WINDOWS\system32\napmontr.dll
2009-04-23 10:31:57 ----N---- C:\WINDOWS\system32\napipsec.dll
2009-04-23 10:31:55 ----A---- C:\WINDOWS\system32\msxml6r.dll
2009-04-23 10:31:51 ----N---- C:\WINDOWS\system32\msshavmsg.dll
2009-04-23 10:31:51 ----N---- C:\WINDOWS\system32\mssha.dll
2009-04-23 10:31:35 ----N---- C:\WINDOWS\system32\mmcperf.exe
2009-04-23 10:31:35 ----N---- C:\WINDOWS\system32\mmcfxcommon.dll
2009-04-23 10:31:34 ----N---- C:\WINDOWS\system32\mmcex.dll
2009-04-23 10:31:34 ----N---- C:\WINDOWS\system32\microsoft.managementconsole.dll
2009-04-23 10:31:24 ----N---- C:\WINDOWS\system32\l2gpstore.dll
2009-04-23 10:31:24 ----N---- C:\WINDOWS\system32\kmsvc.dll
2009-04-23 10:31:23 ----N---- C:\WINDOWS\system32\kbdpash.dll
2009-04-23 10:31:23 ----N---- C:\WINDOWS\system32\kbdnepr.dll
2009-04-23 10:31:23 ----N---- C:\WINDOWS\system32\kbdiultn.dll
2009-04-23 10:31:23 ----N---- C:\WINDOWS\system32\kbdbhc.dll
2009-04-23 10:31:04 ----A---- C:\WINDOWS\005486_.tmp
2009-04-23 10:31:03 ----N---- C:\WINDOWS\system32\eapsvc.dll
2009-04-23 10:31:03 ----N---- C:\WINDOWS\system32\eapqec.dll
2009-04-23 10:31:03 ----N---- C:\WINDOWS\system32\eappprxy.dll
2009-04-23 10:31:03 ----N---- C:\WINDOWS\system32\eapphost.dll
2009-04-23 10:31:03 ----N---- C:\WINDOWS\system32\eappgnui.dll
2009-04-23 10:31:03 ----N---- C:\WINDOWS\system32\eappcfg.dll
2009-04-23 10:31:03 ----N---- C:\WINDOWS\system32\eapp3hst.dll
2009-04-23 10:31:02 ----N---- C:\WINDOWS\system32\eapolqec.dll
2009-04-23 10:30:59 ----N---- C:\WINDOWS\system32\dot3ui.dll
2009-04-23 10:30:59 ----N---- C:\WINDOWS\system32\dot3svc.dll
2009-04-23 10:30:59 ----N---- C:\WINDOWS\system32\dot3msm.dll
2009-04-23 10:30:59 ----N---- C:\WINDOWS\system32\dot3gpclnt.dll
2009-04-23 10:30:59 ----N---- C:\WINDOWS\system32\dot3dlg.dll
2009-04-23 10:30:59 ----N---- C:\WINDOWS\system32\dot3cfg.dll
2009-04-23 10:30:59 ----N---- C:\WINDOWS\system32\dot3api.dll
2009-04-23 10:30:55 ----N---- C:\WINDOWS\system32\dimsroam.dll
2009-04-23 10:30:55 ----N---- C:\WINDOWS\system32\dimsntfy.dll
2009-04-23 10:30:55 ----N---- C:\WINDOWS\system32\dhcpqec.dll
2009-04-23 10:30:52 ----N---- C:\WINDOWS\system32\credssp.dll
2009-04-23 10:30:45 ----N---- C:\WINDOWS\system32\bitsprx4.dll
2009-04-23 10:30:45 ----N---- C:\WINDOWS\system32\azroles.dll
2009-04-23 10:00:58 ----A---- C:\WINDOWS\system32\wuapi.dll.mui
2009-03-18 21:41:42 ----D---- C:\Program Files\Microsoft Silverlight
2009-03-18 21:41:29 ----D---- C:\Program Files\Microsoft Office Outlook Connector
2009-03-18 21:40:32 ----D---- C:\Program Files\Microsoft Sync Framework
2009-03-18 21:39:33 ----A---- C:\WINDOWS\system32\d3dx9_32.dll
2009-03-18 21:39:10 ----D---- C:\Program Files\Microsoft SQL Server Compact Edition
2009-03-18 21:37:15 ----D---- C:\Program Files\Microsoft
2009-03-18 21:36:25 ----D---- C:\Program Files\Windows Live SkyDrive
2009-03-18 21:27:57 ----D---- C:\Program Files\Fichiers communs\Windows Live
======List of files/folders modified in the last 2 months======
2009-05-01 12:40:17 ----D---- C:\WINDOWS\system32\CatRoot2
2009-05-01 12:39:56 ----D---- C:\WINDOWS
2009-05-01 12:38:45 ----D---- C:\WINDOWS\TEMP
2009-05-01 12:38:43 ----HD---- C:\WINDOWS\inf
2009-05-01 12:25:15 ----D---- C:\Documents and Settings\All Users\Application Data\Kaspersky Lab
2009-04-26 22:21:46 ----A---- C:\WINDOWS\SchedLgU.Txt
2009-04-26 20:53:09 ----D---- C:\WINDOWS\Minidump
2009-04-25 23:13:59 ----D---- C:\WINDOWS\system32
2009-04-25 23:13:56 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2009-04-25 23:11:26 ----RD---- C:\Program Files
2009-04-25 23:05:42 ----D---- C:\Documents and Settings\All Users\Application Data\Google
2009-04-25 11:52:17 ----D---- C:\WINDOWS\system32\drivers
2009-04-23 11:23:46 ----RSHDC---- C:\WINDOWS\system32\dllcache
2009-04-23 11:20:23 ----SHD---- C:\WINDOWS\Installer
2009-04-23 11:13:34 ----D---- C:\WINDOWS\Debug
2009-04-23 11:11:52 ----D---- C:\WINDOWS\system32\Setup
2009-04-23 11:11:52 ----D---- C:\WINDOWS\AppPatch
2009-04-23 11:11:52 ----D---- C:\Program Files\Messenger
2009-04-23 11:11:50 ----D---- C:\WINDOWS\system32\wbem
2009-04-23 11:11:48 ----RSD---- C:\WINDOWS\Fonts
2009-04-23 11:10:57 ----D---- C:\WINDOWS\security
2009-04-23 10:59:32 ----D---- C:\WINDOWS\system32\CatRoot
2009-04-23 10:56:54 ----D---- C:\WINDOWS\WinSxS
2009-04-23 10:56:46 ----D---- C:\WINDOWS\ServicePackFiles
2009-04-23 10:56:44 ----D---- C:\WINDOWS\network diagnostic
2009-04-23 10:56:43 ----D---- C:\WINDOWS\ime
2009-04-23 10:56:43 ----D---- C:\WINDOWS\Help
2009-04-23 10:56:17 ----D---- C:\WINDOWS\system32\usmt
2009-04-23 10:56:17 ----D---- C:\WINDOWS\system32\fr-fr
2009-04-23 10:56:11 ----D---- C:\WINDOWS\peernet
2009-04-23 10:56:11 ----D---- C:\Program Files\Movie Maker
2009-04-23 10:52:09 ----D---- C:\WINDOWS\system32\Restore
2009-04-23 10:52:09 ----D---- C:\WINDOWS\system32\npp
2009-04-23 10:52:07 ----D---- C:\WINDOWS\msagent
2009-04-23 10:52:06 ----D---- C:\WINDOWS\srchasst
2009-04-23 10:52:05 ----D---- C:\Program Files\NetMeeting
2009-04-23 10:52:03 ----D---- C:\WINDOWS\system32\Com
2009-04-23 10:52:01 ----D---- C:\Program Files\Windows Media Player
2009-04-23 10:52:00 ----D---- C:\Program Files\Windows NT
2009-04-23 10:52:00 ----D---- C:\Program Files\Outlook Express
2009-04-23 10:51:56 ----D---- C:\Program Files\Fichiers communs\System
2009-04-23 10:51:33 ----D---- C:\WINDOWS\system32\oobe
2009-04-23 10:51:31 ----D---- C:\WINDOWS\system
2009-04-23 10:47:43 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2009-04-23 10:39:42 ----D---- C:\WINDOWS\EHome
2009-04-23 10:01:17 ----D---- C:\WINDOWS\SoftwareDistribution
2009-04-23 10:00:32 ----SD---- C:\WINDOWS\Downloaded Program Files
2009-04-17 12:27:27 ----A---- C:\WINDOWS\NeroDigital.ini
2009-04-14 13:27:17 ----SD---- C:\Documents and Settings\Nicolas\Application Data\Microsoft
2009-04-09 23:39:37 ----D---- C:\Program Files\Fichiers communs
2009-04-09 23:39:35 ----D---- C:\Documents and Settings\All Users\Application Data\Skype
2009-04-09 23:38:06 ----D---- C:\Documents and Settings\Nicolas\Application Data\skypePM
2009-03-21 00:19:41 ----D---- C:\Documents and Settings\Nicolas\Application Data\LimeWire
2009-03-19 21:10:24 ----RSD---- C:\WINDOWS\assembly
2009-03-19 21:09:26 ----D---- C:\WINDOWS\Microsoft.NET
2009-03-18 21:41:07 ----DC---- C:\WINDOWS\system32\DRVSTORE
2009-03-18 21:41:05 ----D---- C:\Program Files\Windows Live
2009-03-18 21:40:17 ----SD---- C:\Documents and Settings\All Users\Application Data\Microsoft
2009-03-18 21:39:35 ----D---- C:\WINDOWS\system32\DirectX
2009-03-18 21:36:49 ----D---- C:\Program Files\Fichiers communs\Microsoft Shared
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R3 CLEDX;Team H2O CLEDX service; C:\WINDOWS\system32\DRIVERS\cledx.sys [2005-05-09 33792]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\WINDOWS\System32\Drivers\GEARAspiWDM.sys [2008-04-17 15464]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\System32\DRIVERS\HDAudBus.sys [2005-01-07 138752]
R3 hidusb;Pilote de classe HID Microsoft; C:\WINDOWS\System32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 mouhid;Pilote HID de souris; C:\WINDOWS\System32\DRIVERS\mouhid.sys [2003-04-24 12288]
R3 usbehci;Pilote miniport de contrôleur hôte amélioré USB 2.0 Microsoft; C:\WINDOWS\System32\DRIVERS\usbehci.sys [2008-04-13 30208]
R3 usbhub;Concentrateur USB2; C:\WINDOWS\System32\DRIVERS\usbhub.sys [2008-04-13 59520]
R3 USBSTOR;Pilote de stockage de masse USB; C:\WINDOWS\System32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
R3 usbuhci;Pilote miniport de contrôleur hôte universel USB Microsoft; C:\WINDOWS\System32\DRIVERS\usbuhci.sys [2008-04-13 20608]
S1 intelppm;Pilote de processeur Intel; C:\WINDOWS\System32\DRIVERS\intelppm.sys [2008-04-14 40576]
S1 kbdhid;Pilote HID de clavier; C:\WINDOWS\System32\DRIVERS\kbdhid.sys [2008-04-14 14720]
S1 klif;Klif; \??\C:\WINDOWS\system32\drivers\klif.sys []
S2 fssfltr;FssFltr; C:\WINDOWS\system32\DRIVERS\fssfltr_tdi.sys [2009-02-06 55152]
S2 RVIEGVST;VSC VST Engine; \??\C:\Program Files\Roland\Virtual Sound Canvas VST\RVIEg01VST.sys []
S2 securentm;securentm; \??\C:\WINDOWS\system32\drivers\securentm.sys []
S3 AgereSoftModem;Agere Systems Soft Modem; C:\WINDOWS\system32\DRIVERS\AGRSM.sys [2007-10-30 1201632]
S3 ak1avs;ak1avs; C:\WINDOWS\System32\Drivers\ak1avs.sys [2006-09-13 25088]
S3 ak1usb;ak1usb; C:\WINDOWS\System32\Drivers\ak1usb.sys [2006-09-13 84992]
S3 asmaw11b;asmaw11b; C:\WINDOWS\system32\drivers\asmaw11b.sys []
S3 catchme;catchme; \??\C:\ComboFix\catchme.sys []
S3 CCDECODE;Décodeur sous-titre fermé; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
S3 E100B;Intel(R) PRO Network Connection Driver; C:\WINDOWS\System32\DRIVERS\e100b325.sys [2006-10-31 165760]
S3 HdAudAddService;Microsoft UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\HdAudio.sys [2005-01-07 145920]
S3 ialm;ialm; C:\WINDOWS\System32\DRIVERS\ialmnt5.sys [2006-02-07 1399615]
S3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2007-03-01 4484608]
S3 klim5;Kaspersky Anti-Virus NDIS Filter; C:\WINDOWS\system32\DRIVERS\klim5.sys [2007-04-04 24344]
S3 MSTEE;Convertisseur en T/site-à-site de répartition Microsoft; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504]
S3 NABTSFEC;Codec NABTS/FEC VBI; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
S3 NdisIP;Connection TV/vidéo Microsoft; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-13 10880]
S3 QCMerced;Logitech QuickCam Express; C:\WINDOWS\system32\DRIVERS\LVCM.sys [2002-09-20 472396]
S3 SDVC04;USB DVC Service; C:\WINDOWS\System32\Drivers\SDVC04.sys [2003-05-22 42413]
S3 SLIP;Détrameur décalage BDA; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-13 11136]
S3 SONYPVU1;Pilote de filtrage Sony USB (SONYPVU1); C:\WINDOWS\system32\DRIVERS\SONYPVU1.SYS [2001-08-17 7552]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-13 15232]
S3 USBAAPL;Apple Mobile USB Driver; C:\WINDOWS\System32\Drivers\usbaapl.sys []
S3 usbaudio;USB Audio Driver (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2008-04-13 60032]
S3 usbccgp;Pilote parent générique USB Microsoft; C:\WINDOWS\System32\DRIVERS\usbccgp.sys [2008-04-13 32128]
S3 usbprint;Classe d'imprimantes USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Pilote de scanneur USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 WSTCODEC;Codec Teletext standard; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
S2 AVP;Kaspersky Anti-Virus 7.0; C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe [2007-06-28 218376]
S2 Bonjour Service;Service Bonjour; C:\Program Files\Bonjour\mDNSResponder.exe [2008-08-29 238888]
S2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2008-12-28 152984]
S2 MDM;Machine Debug Manager; C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-19 322120]
S2 SeaPort;SeaPort; C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2009-01-14 226656]
S2 winvnc;VNC Server; C:\Program Files\UltraVNC\WinVNC.exe [2005-08-06 974848]
S3 aspnet_state;Service d'état ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2007-10-24 33800]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2007-10-24 70144]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe [2007-10-09 36864]
S3 fsssvc;Windows Live Contrôle parental; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2009-02-06 533360]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2007-10-11 864256]
S3 iPod Service;Service de l’iPod; C:\Program Files\iPod\bin\iPodService.exe [2008-10-01 536872]
S3 MSSQL$SONY_MEDIAMGR;MSSQL$SONY_MEDIAMGR; C:\Program Files\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe [2002-12-17 7520337]
S3 MSSQLServerADHelper;MSSQLServerADHelper; C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqladhlp.exe [2002-12-17 66112]
S3 ose;Office Source Engine; C:\Program Files\Fichiers communs\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 SQLAgent$SONY_MEDIAMGR;SQLAgent$SONY_MEDIAMGR; C:\Program Files\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlagent.EXE [2002-12-17 311872]
S3 WMPNetworkSvc;Service Partage réseau du Lecteur Windows Media; C:\Program Files\Windows Media Player\WMPNetwk.exe [2006-11-03 918016]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe []
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2007-10-11 122880]
-----------------EOF-----------------
info.txt logfile of random's system information tool 1.06 2009-05-01 12:42:26
======Uninstall list======
-->C:\Program Files\Ahead\nero\uninstall\UNNERO.exe /UNINSTALL
-->C:\Program Files\Fichiers communs\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0
-->C:\WINDOWS\UNNeroVision.exe /UNINSTALL
-->C:\WINDOWS\UNNMP.exe /UNINSTALL
-->MsiExec.exe /I{403EF592-953B-4794-BCEF-ECAB835C2095}
-->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
Adobe Acrobat and Reader 8.1.2 Security Update 1 (KB403742)-->MsiExec.exe /X{6846389C-BAC0-4374-808E-B120F86AF5D7}
Adobe Color Common Settings-->C:\Program Files\Fichiers communs\Adobe\Installers\6c8e2cb4fd241c55406016127a6ab2e\Setup.exe
Adobe Color Common Settings-->MsiExec.exe /I{6D4AC5A4-4CF9-4F90-8111-B9B53CE257BF}
Adobe ExtendScript Toolkit 2-->C:\Program Files\Fichiers communs\Adobe\Installers\3e054d2218e7aa282c2369d939e58ff\Setup.exe
Adobe ExtendScript Toolkit 2-->MsiExec.exe /I{24D7346D-D4B4-45E8-98EA-75EC14B42DD8}
Adobe Flash Player 10 Plugin-->C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
Adobe Flash Player ActiveX-->C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
Adobe Reader 8.1.2 - Français-->MsiExec.exe /I{AC76BA86-7AD7-1036-7B44-A81200000003}
Adobe Setup-->MsiExec.exe /I{64C1FA9A-FA94-4B6E-B3E4-8573738E4AD1}
Adobe Setup-->MsiExec.exe /I{B3C02EC1-A7B0-4987-9A43-8789426AAA7D}
Agere Systems PCI Soft Modem-->agrsmdel
AKAI professional VST Collection v1.0-->C:\PROGRA~1\STEINB~1\VSTPLU~1\Akai\UNWISE.EXE C:\PROGRA~1\STEINB~1\VSTPLU~1\Akai\INSTALL.LOG
Antares Auto-Tune 3.06 DirectX-->C:\PROGRA~1\ANTARE~1\ANTARE~1\UNWISE.EXE C:\PROGRA~1\ANTARE~1\ANTARE~1\INSTALL.LOG
Antares Autotune DX v4.12-->C:\PROGRA~1\Antares\AUTOTU~1\ANTARE~1\UNWISE.EXE C:\PROGRA~1\Antares\AUTOTU~1\ANTARE~1\INSTALL.LOG
Antares Kantos v1.0-->C:\PROGRA~1\Antares\kantos\UNINST~1\UNWISE.EXE C:\PROGRA~1\Antares\kantos\UNINST~1\INSTALL.LOG
Antares Microphone Modeler - ZONE-->C:\PROGRA~1\Antares\MicMod\UNWISE.EXE C:\PROGRA~1\Antares\MicMod\INSTALL.LOG
Apple Software Update-->MsiExec.exe /I{6956856F-B6B3-4BE0-BA0B-8F495BE32033}
Applied Accoustics String Studio VS 1 VST DX v1.0-->C:\PROGRA~1\AAS\STRING~1.0\UNWISE.EXE C:\PROGRA~1\AAS\STRING~1.0\INSTALL.LOG
Applied Accoustics UltraAnalog VA-1 v1.01-->C:\PROGRA~1\AAS\ULTRAA~1.0\UNWISE.EXE C:\PROGRA~1\AAS\ULTRAA~1.0\INSTALL.LOG
Archiveur WinRAR-->C:\Program Files\WinRAR\uninstall.exe
Assistant de connexion Windows Live-->MsiExec.exe /I{DCE8CD14-FBF5-4464-B9A4-E18E473546C7}
Barre d'outils MSN-->C:\Program Files\MSN Toolbar\01.01.2607.0\fr\mtbs.exe c
Bonjour-->MsiExec.exe /I{8A25392D-C5D2-4E79-A2BD-C15DDC5B0959}
Choice Guard-->MsiExec.exe /I{8FFC5648-FAF8-43A3-BC8F-42BA1E275C4E}
Codeur Windows Media Série 9-->msiexec.exe /I {E38C00D0-A68B-4318-A8A6-F7D4B5B1DF0E}
Codeur Windows Media Série 9-->MsiExec.exe /I{E38C00D0-A68B-4318-A8A6-F7D4B5B1DF0E}
Correctif pour Lecteur Windows Media 11 (KB939683)-->"C:\WINDOWS\$NtUninstallKB939683$\spuninst\spuninst.exe"
Correctif pour Windows Internet Explorer 7 (KB947864)-->"C:\WINDOWS\ie7updates\KB947864-IE7\spuninst\spuninst.exe"
Directory Compare-->C:\WINDOWS\uninst.exe -f"C:\Program Files\Juan M. Aguirregabiria\Directory Compare\DeIsL1.isu" -c"C:\Program Files\Juan M. Aguirregabiria\Directory Compare\_ISREG32.DLL"
DivX Web Player-->C:\Program Files\DivX\DivXWebPlayerUninstall.exe /PLUGIN
FFB - Facebook Friend Bomber-->MsiExec.exe /I{E65F23A5-9B6F-4119-A4B3-C50F101E686D}
FriendBlasterPro-->"C:\Program Files\FriendBlasterPro\unins000.exe"
Galerie de photos Windows Live-->MsiExec.exe /X{44E54A81-9D91-4AA1-9417-80AFF134F5FF}
Hotfix for Microsoft .NET Framework 3.0 (KB932471)-->C:\WINDOWS\system32\msiexec.exe /promptrestart /uninstall {ECD292A0-0347-4244-8C24-5DBCE990FB40} /package {BAF78226-3200-4DB4-BE33-4D922A799840}
Hotfix for Windows Media Format 11 SDK (KB929399)-->"C:\WINDOWS\$NtUninstallKB929399$\spuninst\spuninst.exe"
HyperCam 2-->"C:\Program Files\HyCam2\UnHyCam2.exe"
Impulse v. 3.10-->C:\Program Files\Steinberg\VstPlugins\ImpulseUninstal.exe
Installation Windows Live-->C:\Program Files\Windows Live\Installer\wlarp.exe
Installation Windows Live-->MsiExec.exe /I{7370DF47-B4F9-4279-BFC3-3F09919F720D}
Intel(R) Graphics Media Accelerator Driver-->RUNDLL32.EXE C:\WINDOWS\System32\ialmrem.dll,UninstallW2KIGfx2ID PCI\VEN_8086&DEV_2782 PCI\VEN_8086&DEV_2582
Intel(R) PRO Network Connections 11.2.0.69-->MsiExec.exe /i{2222B364-0854-4265-B32E-A142DB9DC7BB} ARPREMOVE=1
iTunes-->MsiExec.exe /I{DDDE0BE3-0CBE-4BF6-B75A-E3F69C947843}
Java(TM) 6 Update 11-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216011FF}
Java(TM) 6 Update 6-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160060}
Junk Mail filter update-->MsiExec.exe /I{4DE3E3D9-AE81-45DE-9195-3015F7B1DBF3}
Kaspersky Anti-Virus 7.0-->MsiExec.exe /I{4B9BB601-13E9-4042-A3BC-E7955BF4A98F}
Kaspersky Anti-Virus 7.0-->MsiExec.exe /I{4B9BB601-13E9-4042-A3BC-E7955BF4A98F}
Kit de Connexion Alice ADSL-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{3A0221AD-D30B-4320-8F9B-1D0F0E6C6843}\setup.exe" -l0x40c ControlPanel
KORG Legacy Collection - DIGITAL EDITION v1.0.0 -->C:\PROGRA~1\KORG\KORGLE~1\UNWISE.EXE C:\PROGRA~1\KORG\KORGLE~1\INSTALL.LOG
Korg Legacy Collection v1.0.0.2-->C:\PROGRA~1\KORG\KORGLE~2\UNWISE.EXE C:\PROGRA~1\KORG\KORGLE~2\INSTALL.LOG
Le Centre de Contrôle de Licences de Syncrosoft-->C:\PROGRA~1\SYNCRO~1\UNWISE.EXE C:\PROGRA~1\SYNCRO~1\INSTALL.LOG
Lecteur Windows Media 11-->"C:\Program Files\Windows Media Player\Setup_wm.exe" /Uninstall
LG USB Modem driver-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\10\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{C3ABE126-2BB2-4246-BFE1-6797679B3579}\setup.exe" -l0x40c -removeonly
Microsoft .NET Framework 1.1 French Language Pack-->MsiExec.exe /X{9A394342-4A68-4EBA-85A6-55B559F4E700}
Microsoft .NET Framework 1.1 Hotfix (KB928366)-->"C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe" "C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\M928366\M928366Uninstall.msp"
Microsoft .NET Framework 1.1-->msiexec.exe /X {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 1.1-->MsiExec.exe /X{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 2.0 Service Pack 1 Language Pack - FRA-->MsiExec.exe /I{3F7924B9-D148-3141-87B1-68F36043A940}
Microsoft .NET Framework 2.0 Service Pack 1-->MsiExec.exe /I{B508B3F1-A24A-32C0-B310-85786919EF28}
Microsoft .NET Framework 3.0 Service Pack 1 Language Pack - FRA-->MsiExec.exe /I{511DF669-2930-30C0-8EB6-552887E29EC8}
Microsoft .NET Framework 3.0 Service Pack 1-->MsiExec.exe /I{2BA00471-0328-3743-93BD-FA813353A783}
Microsoft Compression Client Pack 1.0 for Windows XP-->"C:\WINDOWS\$NtUninstallMSCompPackV1$\spuninst\spuninst.exe"
Microsoft Internationalized Domain Names Mitigation APIs-->"C:\WINDOWS\$NtServicePackUninstallIDNMitigationAPIs$\spuninst\spuninst.exe"
Microsoft National Language Support Downlevel APIs-->"C:\WINDOWS\$NtServicePackUninstallNLSDownlevelMapping$\spuninst\spuninst.exe"
Microsoft Office Live Add-in 1.3-->MsiExec.exe /I{57F0ED40-8F11-41AA-B926-4A66D0D1A9CC}
Microsoft Office Outlook Connector-->MsiExec.exe /I{95120000-0120-040C-0000-0000000FF1CE}
Microsoft Office Professional Edition 2003-->MsiExec.exe /I{9011040C-6000-11D3-8CFE-0150048383C9}
Microsoft Search Enhancement Pack-->MsiExec.exe /I{9C9CEB9D-53FD-49A7-85D2-FE674F72F24E}
Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
Microsoft SQL Server 2005 Compact Edition [ENU]-->MsiExec.exe /I{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}
Microsoft SQL Server Desktop Engine (SONY_MEDIAMGR)-->MsiExec.exe /X{E09B48B5-E141-427A-AB0C-D3605127224A}
Microsoft Sync Framework Runtime Native v1.0 (x86)-->MsiExec.exe /I{8A74E887-8F0F-4017-AF53-CBA42211AAA5}
Microsoft Sync Framework Services Native v1.0 (x86)-->MsiExec.exe /I{BD64AF4A-8C80-4152-AD77-FCDDF05208AB}
Microsoft User-Mode Driver Framework Feature Pack 1.0-->"C:\WINDOWS\$NtUninstallWudf01000$\spuninst\spuninst.exe"
MIDI Mate-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{2669D000-C182-4312-B736-C9D7FCFD72D5}\Setup.exe"
Mise à jour de sécurité pour Lecteur Windows Media 11 (KB936782)-->"C:\WINDOWS\$NtUninstallKB936782_WMP11$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB938127)-->"C:\WINDOWS\ie7updates\KB938127-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB942615)-->"C:\WINDOWS\ie7updates\KB942615-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB944533)-->"C:\WINDOWS\ie7updates\KB944533-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB923789)-->C:\WINDOWS\system32\MacroMed\Flash\genuinst.exe C:\WINDOWS\system32\MacroMed\Flash\KB923789.inf
Mise à jour de sécurité pour Windows XP (KB941569)-->"C:\WINDOWS\$NtUninstallKB941569$\spuninst\spuninst.exe"
Mozilla Firefox (3.0.9)-->C:\Program Files\Mozilla Firefox\uninstall\helper.exe
MSN Pictures Displayer 4.6-->"C:\Program Files\MSN Pictures Displayer\MSN Pictures Displayer.exe" /U
MSVCRT-->MsiExec.exe /I{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
MSXML 6.0 Parser (KB933579)-->MsiExec.exe /I{0A869A65-8C94-4F7C-A5C7-972D3C8CED9E}
Native Instruments - Audio Kontrol 1 Driver-->C:\Program Files\Native Instruments\Audio Kontrol 1 Driver\uninst.exe Software\Native Instruments\Audio Kontrol 1 Driver\Setup
Native Instruments Audio Kontrol 1-->C:\PROGRA~1\NATIVE~1\AUDIOK~1\UNWISE.EXE C:\PROGRA~1\NATIVE~1\AUDIOK~1\INSTALL.LOG
Native Instruments Battery v2.0-->C:\PROGRA~1\NATIVE~1\BATTER~1\UNWISE.EXE C:\PROGRA~1\NATIVE~1\BATTER~1\INSTALL.LOG
Native Instruments FM7-->C:\PROGRA~1\NATIVE~1\Fm7\UNWISE.EXE C:\PROGRA~1\NATIVE~1\Fm7\INSTALL.LOG
Neodynium Demo-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{913156EC-8565-42CC-A2CB-F49BD6AC397F}\Setup.exe" -l0x9
Nero Suite-->C:\Program Files\Fichiers communs\Ahead\Uninstall\Setup.exe /uninstall
NI Service Center-->C:\PROGRA~1\NATIVE~1\NISERV~1\UNWISE.EXE C:\PROGRA~1\NATIVE~1\NISERV~1\INSTALL.LOG
Orange Vocoder v1.1.2-->C:\PROGRA~1\STEINB~1\VSTPLU~1\UNWISE.EXE C:\PROGRA~1\STEINB~1\VSTPLU~1\Orange.LOG
Outil de téléchargement Windows Live-->MsiExec.exe /I{205C6BDD-7B73-42DE-8505-9A093F35A238}
Package de base Microsoft de service de chiffrement pour cartes à puce-->"C:\WINDOWS\$NtUninstallbasecsp$\spuninst\spuninst.exe"
QuickTime-->MsiExec.exe /I{8DC42D05-680B-41B0-8878-6C14D24602DB}
RealPlayer-->C:\Program Files\Fichiers communs\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0
Realtek High Definition Audio Driver-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}\Setup.exe" -l0x40c -removeonly
Reason 3.0-->"C:\Program Files\Propellerhead\Reason\Uninstall Reason\unins000.exe"
reFX Vanguard VSTi-->"C:\Program Files\Steinberg\VstPlugins\Vanguard\Uninstall\unins000.exe"
Samsung Camcorder USB-D04 Capture Driver-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{A94AAFAF-9FBA-43F9-A79C-70AC38761811}\Setup.exe" -l0x9 customuninstall
Samsung DVC Media 6.1-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{01DEE483-F613-4CB0-BC48-93AA2C1AD12F}\setup.exe" -l0x9
Sarbacane 2-->C:\Program Files\Goto software\Sarbacane 2\uninst.exe
Segoe UI-->MsiExec.exe /I{A1F66FC9-11EE-4F2F-98C9-16F8D1E69FB7}
Sony Media Manager 2.0-->MsiExec.exe /X{B13F5727-F12F-4253-B6AD-26AFA880B709}
Sony Vegas 6.0d-->MsiExec.exe /X{4F68B605-2F2B-42A8-8689-0CA7E67797B0}
Steinberg Cubase SX v3.1.1.944-->C:\PROGRA~1\STEINB~1\CUBASE~1\UNWISE.EXE C:\PROGRA~1\STEINB~1\CUBASE~1\INSTALL.LOG
SyncroSoft Emu (Remove only)-->C:\Program Files\SyncroSoft\Pos\H2O\Uninst.exe
TC MegaReverb TRIAL-->C:\PROGRA~1\DIGIDE~1\Dae\Plug-Ins\UNINST~1\UNWISE.EXE C:\PROGRA~1\DIGIDE~1\Dae\Plug-Ins\UNINST~1\INSTALL.LOG
Timeworks Millenium Pack-->C:\Audio\TIMEWO~1\UNWISE.EXE C:\Audio\TIMEWO~1\INSTALL.LOG
UltraVNC v1.0.1-->"C:\Program Files\UltraVNC\unins000.exe"
VideoLAN VLC media player 0.8.6f-->C:\Program Files\VideoLAN\VLC\uninstall.exe
Virtual Sound Canvas VST-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{DA22A6BB-10B5-4595-BD59-1AD4023C8536}\setup.exe" MAINTENANCE_XXX
Windows Imaging Component-->"C:\WINDOWS\$NtUninstallWIC$\spuninst\spuninst.exe"
Windows Live Call-->MsiExec.exe /I{82C7B308-0BDD-49D8-8EA5-9CD3A3F9DF41}
Windows Live Communications Platform-->MsiExec.exe /I{3B4E636E-9D65-4D67-BA61-189800823F52}
Windows Live Contrôle parental-->MsiExec.exe /X{D6A2DDE3-9D7C-412C-932A-756580D29919}
Windows Live Mail-->MsiExec.exe /I{63DC2DA0-2A6C-4C38-9249-B75395458657}
Windows Live Messenger-->MsiExec.exe /X{059C042E-796A-4ACC-A81A-ECC2010BB78C}
Windows Live Sync-->MsiExec.exe /X{9C5EB781-0D37-44B8-9A58-77B3E4BF5F5E}
Windows Live Toolbar-->MsiExec.exe /X{F7D27C70-90F5-49B9-B188-0A133C0CE353}
Windows Live Writer-->MsiExec.exe /X{2231CE39-B963-4B9D-823A-F412ECA637B1}
Windows Media Format 11 runtime-->"C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
Windows Media Format 11 runtime-->"C:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe"
Windows Media Format SDK Hotfix - KB891122-->"C:\WINDOWS\$NtUninstallKB891122$\spuninst\spuninst.exe"
Windows Media Player 11-->"C:\WINDOWS\$NtUninstallwmp11$\spuninst\spuninst.exe"
Windows Presentation Foundation-->MsiExec.exe /X{BAF78226-3200-4DB4-BE33-4D922A799840}
Windows XP Service Pack 3-->"C:\WINDOWS\$NtServicePackUninstall$\spuninst\spuninst.exe"
Xilisoft Video Converter 3-->C:\Program Files\Xilisoft\Video Converter 3\Uninstall.exe
XML Paper Specification Shared Components Language Pack 1.0-->"C:\WINDOWS\$NtUninstallXPSEPSCLP$\spuninst\spuninst.exe"
YFB - Youtube Friend Bomber-->MsiExec.exe /I{FB249035-FD3C-4AB9-AF0E-3DD03CBFED71}
======Security center information======
AV: Kaspersky Anti-Virus (outdated)
======System event log======
Computer Name: PC
Event Code: 7036
Message: Le service Compatibilité avec le Changement rapide d'utilisateur est entré dans l'état : en cours d'exécution.
Record Number: 21392
Source Name: Service Control Manager
Time Written: 20090316202409.000000+060
Event Type: Informations
User:
Computer Name: PC
Event Code: 7035
Message: Un contrôle Démarrer a correctement été envoyé au service Compatibilité avec le Changement rapide d'utilisateur.
Record Number: 21391
Source Name: Service Control Manager
Time Written: 20090316202409.000000+060
Event Type: Informations
User: AUTORITE NT\SYSTEM
Computer Name: PC
Event Code: 7036
Message: Le service Services Terminal Server est entré dans l'état : en cours d'exécution.
Record Number: 21390
Source Name: Service Control Manager
Time Written: 20090316195455.000000+060
Event Type: Informations
User:
Computer Name: PC
Event Code: 7035
Message: Un contrôle Démarrer a correctement été envoyé au service Services Terminal Server.
Record Number: 21389
Source Name: Service Control Manager
Time Written: 20090316195455.000000+060
Event Type: Informations
User: AUTORITE NT\SYSTEM
Computer Name: PC
Event Code: 7036
Message: Le service Carte de performance WMI est entré dans l'état : arrêté.
Record Number: 21388
Source Name: Service Control Manager
Time Written: 20090316195418.000000+060
Event Type: Informations
User:
=====Application event log=====
Computer Name: PC
Event Code: 1
Message:
Record Number: 5
Source Name: Bonjour Service
Time Written: 20090425225835.000000+120
Event Type: Informations
User:
Computer Name: PC
Event Code: 0
Message:
Record Number: 4
Source Name: iPod Service
Time Written: 20090425225331.000000+120
Event Type: Informations
User:
Computer Name: PC
Event Code: 1800
Message: Le service Centre de sécurité Windows a démarré.
Record Number: 3
Source Name: SecurityCenter
Time Written: 20090425225328.000000+120
Event Type: Informations
User:
Computer Name: PC
Event Code: 1
Message:
Record Number: 2
Source Name: Bonjour Service
Time Written: 20090425225327.000000+120
Event Type: Informations
User:
Computer Name: PC
Event Code: 0
Message:
Record Number: 1
Source Name: SeaPort
Time Written: 20090425225327.000000+120
Event Type: Informations
User:
======Environment variables======
"ComSpec"=%SystemRoot%\system32\cmd.exe
"Path"=%systemroot%\system32;%systemroot%;%systemroot%\system32\wbem;C:\Program Files\Intel\DMIX;C:\Program Files\QuickTime\QTSystem;C:\Program Files\Microsoft SQL Server\80\Tools\Binn\;C:\Program Files\Fichiers communs\Ulead Systems\MPEG;C:\Program Files\QuickTime\QTSystem\
"windir"=%SystemRoot%
"OS"=Windows_NT
"PROCESSOR_ARCHITECTURE"=x86
"PROCESSOR_LEVEL"=15
"PROCESSOR_IDENTIFIER"=x86 Family 15 Model 3 Stepping 4, GenuineIntel
"PROCESSOR_REVISION"=0304
"NUMBER_OF_PROCESSORS"=2
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"FP_NO_HOST_CHECK"=NO
"CLASSPATH"=.;C:\Program Files\Java\jre1.6.0_06\lib\ext\QTJava.zip
"QTJAVA"=C:\Program Files\Java\jre1.6.0_06\lib\ext\QTJava.zip
"SAFEBOOT_OPTION"=MINIMAL
-----------------EOF-----------------
======Uninstall list======
-->C:\Program Files\Ahead\nero\uninstall\UNNERO.exe /UNINSTALL
-->C:\Program Files\Fichiers communs\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0
-->C:\WINDOWS\UNNeroVision.exe /UNINSTALL
-->C:\WINDOWS\UNNMP.exe /UNINSTALL
-->MsiExec.exe /I{403EF592-953B-4794-BCEF-ECAB835C2095}
-->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
Adobe Acrobat and Reader 8.1.2 Security Update 1 (KB403742)-->MsiExec.exe /X{6846389C-BAC0-4374-808E-B120F86AF5D7}
Adobe Color Common Settings-->C:\Program Files\Fichiers communs\Adobe\Installers\6c8e2cb4fd241c55406016127a6ab2e\Setup.exe
Adobe Color Common Settings-->MsiExec.exe /I{6D4AC5A4-4CF9-4F90-8111-B9B53CE257BF}
Adobe ExtendScript Toolkit 2-->C:\Program Files\Fichiers communs\Adobe\Installers\3e054d2218e7aa282c2369d939e58ff\Setup.exe
Adobe ExtendScript Toolkit 2-->MsiExec.exe /I{24D7346D-D4B4-45E8-98EA-75EC14B42DD8}
Adobe Flash Player 10 Plugin-->C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
Adobe Flash Player ActiveX-->C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
Adobe Reader 8.1.2 - Français-->MsiExec.exe /I{AC76BA86-7AD7-1036-7B44-A81200000003}
Adobe Setup-->MsiExec.exe /I{64C1FA9A-FA94-4B6E-B3E4-8573738E4AD1}
Adobe Setup-->MsiExec.exe /I{B3C02EC1-A7B0-4987-9A43-8789426AAA7D}
Agere Systems PCI Soft Modem-->agrsmdel
AKAI professional VST Collection v1.0-->C:\PROGRA~1\STEINB~1\VSTPLU~1\Akai\UNWISE.EXE C:\PROGRA~1\STEINB~1\VSTPLU~1\Akai\INSTALL.LOG
Antares Auto-Tune 3.06 DirectX-->C:\PROGRA~1\ANTARE~1\ANTARE~1\UNWISE.EXE C:\PROGRA~1\ANTARE~1\ANTARE~1\INSTALL.LOG
Antares Autotune DX v4.12-->C:\PROGRA~1\Antares\AUTOTU~1\ANTARE~1\UNWISE.EXE C:\PROGRA~1\Antares\AUTOTU~1\ANTARE~1\INSTALL.LOG
Antares Kantos v1.0-->C:\PROGRA~1\Antares\kantos\UNINST~1\UNWISE.EXE C:\PROGRA~1\Antares\kantos\UNINST~1\INSTALL.LOG
Antares Microphone Modeler - ZONE-->C:\PROGRA~1\Antares\MicMod\UNWISE.EXE C:\PROGRA~1\Antares\MicMod\INSTALL.LOG
Apple Software Update-->MsiExec.exe /I{6956856F-B6B3-4BE0-BA0B-8F495BE32033}
Applied Accoustics String Studio VS 1 VST DX v1.0-->C:\PROGRA~1\AAS\STRING~1.0\UNWISE.EXE C:\PROGRA~1\AAS\STRING~1.0\INSTALL.LOG
Applied Accoustics UltraAnalog VA-1 v1.01-->C:\PROGRA~1\AAS\ULTRAA~1.0\UNWISE.EXE C:\PROGRA~1\AAS\ULTRAA~1.0\INSTALL.LOG
Archiveur WinRAR-->C:\Program Files\WinRAR\uninstall.exe
Assistant de connexion Windows Live-->MsiExec.exe /I{DCE8CD14-FBF5-4464-B9A4-E18E473546C7}
Barre d'outils MSN-->C:\Program Files\MSN Toolbar\01.01.2607.0\fr\mtbs.exe c
Bonjour-->MsiExec.exe /I{8A25392D-C5D2-4E79-A2BD-C15DDC5B0959}
Choice Guard-->MsiExec.exe /I{8FFC5648-FAF8-43A3-BC8F-42BA1E275C4E}
Codeur Windows Media Série 9-->msiexec.exe /I {E38C00D0-A68B-4318-A8A6-F7D4B5B1DF0E}
Codeur Windows Media Série 9-->MsiExec.exe /I{E38C00D0-A68B-4318-A8A6-F7D4B5B1DF0E}
Correctif pour Lecteur Windows Media 11 (KB939683)-->"C:\WINDOWS\$NtUninstallKB939683$\spuninst\spuninst.exe"
Correctif pour Windows Internet Explorer 7 (KB947864)-->"C:\WINDOWS\ie7updates\KB947864-IE7\spuninst\spuninst.exe"
Directory Compare-->C:\WINDOWS\uninst.exe -f"C:\Program Files\Juan M. Aguirregabiria\Directory Compare\DeIsL1.isu" -c"C:\Program Files\Juan M. Aguirregabiria\Directory Compare\_ISREG32.DLL"
DivX Web Player-->C:\Program Files\DivX\DivXWebPlayerUninstall.exe /PLUGIN
FFB - Facebook Friend Bomber-->MsiExec.exe /I{E65F23A5-9B6F-4119-A4B3-C50F101E686D}
FriendBlasterPro-->"C:\Program Files\FriendBlasterPro\unins000.exe"
Galerie de photos Windows Live-->MsiExec.exe /X{44E54A81-9D91-4AA1-9417-80AFF134F5FF}
Hotfix for Microsoft .NET Framework 3.0 (KB932471)-->C:\WINDOWS\system32\msiexec.exe /promptrestart /uninstall {ECD292A0-0347-4244-8C24-5DBCE990FB40} /package {BAF78226-3200-4DB4-BE33-4D922A799840}
Hotfix for Windows Media Format 11 SDK (KB929399)-->"C:\WINDOWS\$NtUninstallKB929399$\spuninst\spuninst.exe"
HyperCam 2-->"C:\Program Files\HyCam2\UnHyCam2.exe"
Impulse v. 3.10-->C:\Program Files\Steinberg\VstPlugins\ImpulseUninstal.exe
Installation Windows Live-->C:\Program Files\Windows Live\Installer\wlarp.exe
Installation Windows Live-->MsiExec.exe /I{7370DF47-B4F9-4279-BFC3-3F09919F720D}
Intel(R) Graphics Media Accelerator Driver-->RUNDLL32.EXE C:\WINDOWS\System32\ialmrem.dll,UninstallW2KIGfx2ID PCI\VEN_8086&DEV_2782 PCI\VEN_8086&DEV_2582
Intel(R) PRO Network Connections 11.2.0.69-->MsiExec.exe /i{2222B364-0854-4265-B32E-A142DB9DC7BB} ARPREMOVE=1
iTunes-->MsiExec.exe /I{DDDE0BE3-0CBE-4BF6-B75A-E3F69C947843}
Java(TM) 6 Update 11-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216011FF}
Java(TM) 6 Update 6-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160060}
Junk Mail filter update-->MsiExec.exe /I{4DE3E3D9-AE81-45DE-9195-3015F7B1DBF3}
Kaspersky Anti-Virus 7.0-->MsiExec.exe /I{4B9BB601-13E9-4042-A3BC-E7955BF4A98F}
Kaspersky Anti-Virus 7.0-->MsiExec.exe /I{4B9BB601-13E9-4042-A3BC-E7955BF4A98F}
Kit de Connexion Alice ADSL-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{3A0221AD-D30B-4320-8F9B-1D0F0E6C6843}\setup.exe" -l0x40c ControlPanel
KORG Legacy Collection - DIGITAL EDITION v1.0.0 -->C:\PROGRA~1\KORG\KORGLE~1\UNWISE.EXE C:\PROGRA~1\KORG\KORGLE~1\INSTALL.LOG
Korg Legacy Collection v1.0.0.2-->C:\PROGRA~1\KORG\KORGLE~2\UNWISE.EXE C:\PROGRA~1\KORG\KORGLE~2\INSTALL.LOG
Le Centre de Contrôle de Licences de Syncrosoft-->C:\PROGRA~1\SYNCRO~1\UNWISE.EXE C:\PROGRA~1\SYNCRO~1\INSTALL.LOG
Lecteur Windows Media 11-->"C:\Program Files\Windows Media Player\Setup_wm.exe" /Uninstall
LG USB Modem driver-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\10\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{C3ABE126-2BB2-4246-BFE1-6797679B3579}\setup.exe" -l0x40c -removeonly
Microsoft .NET Framework 1.1 French Language Pack-->MsiExec.exe /X{9A394342-4A68-4EBA-85A6-55B559F4E700}
Microsoft .NET Framework 1.1 Hotfix (KB928366)-->"C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe" "C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\M928366\M928366Uninstall.msp"
Microsoft .NET Framework 1.1-->msiexec.exe /X {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 1.1-->MsiExec.exe /X{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 2.0 Service Pack 1 Language Pack - FRA-->MsiExec.exe /I{3F7924B9-D148-3141-87B1-68F36043A940}
Microsoft .NET Framework 2.0 Service Pack 1-->MsiExec.exe /I{B508B3F1-A24A-32C0-B310-85786919EF28}
Microsoft .NET Framework 3.0 Service Pack 1 Language Pack - FRA-->MsiExec.exe /I{511DF669-2930-30C0-8EB6-552887E29EC8}
Microsoft .NET Framework 3.0 Service Pack 1-->MsiExec.exe /I{2BA00471-0328-3743-93BD-FA813353A783}
Microsoft Compression Client Pack 1.0 for Windows XP-->"C:\WINDOWS\$NtUninstallMSCompPackV1$\spuninst\spuninst.exe"
Microsoft Internationalized Domain Names Mitigation APIs-->"C:\WINDOWS\$NtServicePackUninstallIDNMitigationAPIs$\spuninst\spuninst.exe"
Microsoft National Language Support Downlevel APIs-->"C:\WINDOWS\$NtServicePackUninstallNLSDownlevelMapping$\spuninst\spuninst.exe"
Microsoft Office Live Add-in 1.3-->MsiExec.exe /I{57F0ED40-8F11-41AA-B926-4A66D0D1A9CC}
Microsoft Office Outlook Connector-->MsiExec.exe /I{95120000-0120-040C-0000-0000000FF1CE}
Microsoft Office Professional Edition 2003-->MsiExec.exe /I{9011040C-6000-11D3-8CFE-0150048383C9}
Microsoft Search Enhancement Pack-->MsiExec.exe /I{9C9CEB9D-53FD-49A7-85D2-FE674F72F24E}
Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
Microsoft SQL Server 2005 Compact Edition [ENU]-->MsiExec.exe /I{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}
Microsoft SQL Server Desktop Engine (SONY_MEDIAMGR)-->MsiExec.exe /X{E09B48B5-E141-427A-AB0C-D3605127224A}
Microsoft Sync Framework Runtime Native v1.0 (x86)-->MsiExec.exe /I{8A74E887-8F0F-4017-AF53-CBA42211AAA5}
Microsoft Sync Framework Services Native v1.0 (x86)-->MsiExec.exe /I{BD64AF4A-8C80-4152-AD77-FCDDF05208AB}
Microsoft User-Mode Driver Framework Feature Pack 1.0-->"C:\WINDOWS\$NtUninstallWudf01000$\spuninst\spuninst.exe"
MIDI Mate-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{2669D000-C182-4312-B736-C9D7FCFD72D5}\Setup.exe"
Mise à jour de sécurité pour Lecteur Windows Media 11 (KB936782)-->"C:\WINDOWS\$NtUninstallKB936782_WMP11$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB938127)-->"C:\WINDOWS\ie7updates\KB938127-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB942615)-->"C:\WINDOWS\ie7updates\KB942615-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB944533)-->"C:\WINDOWS\ie7updates\KB944533-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB923789)-->C:\WINDOWS\system32\MacroMed\Flash\genuinst.exe C:\WINDOWS\system32\MacroMed\Flash\KB923789.inf
Mise à jour de sécurité pour Windows XP (KB941569)-->"C:\WINDOWS\$NtUninstallKB941569$\spuninst\spuninst.exe"
Mozilla Firefox (3.0.9)-->C:\Program Files\Mozilla Firefox\uninstall\helper.exe
MSN Pictures Displayer 4.6-->"C:\Program Files\MSN Pictures Displayer\MSN Pictures Displayer.exe" /U
MSVCRT-->MsiExec.exe /I{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
MSXML 6.0 Parser (KB933579)-->MsiExec.exe /I{0A869A65-8C94-4F7C-A5C7-972D3C8CED9E}
Native Instruments - Audio Kontrol 1 Driver-->C:\Program Files\Native Instruments\Audio Kontrol 1 Driver\uninst.exe Software\Native Instruments\Audio Kontrol 1 Driver\Setup
Native Instruments Audio Kontrol 1-->C:\PROGRA~1\NATIVE~1\AUDIOK~1\UNWISE.EXE C:\PROGRA~1\NATIVE~1\AUDIOK~1\INSTALL.LOG
Native Instruments Battery v2.0-->C:\PROGRA~1\NATIVE~1\BATTER~1\UNWISE.EXE C:\PROGRA~1\NATIVE~1\BATTER~1\INSTALL.LOG
Native Instruments FM7-->C:\PROGRA~1\NATIVE~1\Fm7\UNWISE.EXE C:\PROGRA~1\NATIVE~1\Fm7\INSTALL.LOG
Neodynium Demo-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{913156EC-8565-42CC-A2CB-F49BD6AC397F}\Setup.exe" -l0x9
Nero Suite-->C:\Program Files\Fichiers communs\Ahead\Uninstall\Setup.exe /uninstall
NI Service Center-->C:\PROGRA~1\NATIVE~1\NISERV~1\UNWISE.EXE C:\PROGRA~1\NATIVE~1\NISERV~1\INSTALL.LOG
Orange Vocoder v1.1.2-->C:\PROGRA~1\STEINB~1\VSTPLU~1\UNWISE.EXE C:\PROGRA~1\STEINB~1\VSTPLU~1\Orange.LOG
Outil de téléchargement Windows Live-->MsiExec.exe /I{205C6BDD-7B73-42DE-8505-9A093F35A238}
Package de base Microsoft de service de chiffrement pour cartes à puce-->"C:\WINDOWS\$NtUninstallbasecsp$\spuninst\spuninst.exe"
QuickTime-->MsiExec.exe /I{8DC42D05-680B-41B0-8878-6C14D24602DB}
RealPlayer-->C:\Program Files\Fichiers communs\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0
Realtek High Definition Audio Driver-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}\Setup.exe" -l0x40c -removeonly
Reason 3.0-->"C:\Program Files\Propellerhead\Reason\Uninstall Reason\unins000.exe"
reFX Vanguard VSTi-->"C:\Program Files\Steinberg\VstPlugins\Vanguard\Uninstall\unins000.exe"
Samsung Camcorder USB-D04 Capture Driver-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{A94AAFAF-9FBA-43F9-A79C-70AC38761811}\Setup.exe" -l0x9 customuninstall
Samsung DVC Media 6.1-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{01DEE483-F613-4CB0-BC48-93AA2C1AD12F}\setup.exe" -l0x9
Sarbacane 2-->C:\Program Files\Goto software\Sarbacane 2\uninst.exe
Segoe UI-->MsiExec.exe /I{A1F66FC9-11EE-4F2F-98C9-16F8D1E69FB7}
Sony Media Manager 2.0-->MsiExec.exe /X{B13F5727-F12F-4253-B6AD-26AFA880B709}
Sony Vegas 6.0d-->MsiExec.exe /X{4F68B605-2F2B-42A8-8689-0CA7E67797B0}
Steinberg Cubase SX v3.1.1.944-->C:\PROGRA~1\STEINB~1\CUBASE~1\UNWISE.EXE C:\PROGRA~1\STEINB~1\CUBASE~1\INSTALL.LOG
SyncroSoft Emu (Remove only)-->C:\Program Files\SyncroSoft\Pos\H2O\Uninst.exe
TC MegaReverb TRIAL-->C:\PROGRA~1\DIGIDE~1\Dae\Plug-Ins\UNINST~1\UNWISE.EXE C:\PROGRA~1\DIGIDE~1\Dae\Plug-Ins\UNINST~1\INSTALL.LOG
Timeworks Millenium Pack-->C:\Audio\TIMEWO~1\UNWISE.EXE C:\Audio\TIMEWO~1\INSTALL.LOG
UltraVNC v1.0.1-->"C:\Program Files\UltraVNC\unins000.exe"
VideoLAN VLC media player 0.8.6f-->C:\Program Files\VideoLAN\VLC\uninstall.exe
Virtual Sound Canvas VST-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{DA22A6BB-10B5-4595-BD59-1AD4023C8536}\setup.exe" MAINTENANCE_XXX
Windows Imaging Component-->"C:\WINDOWS\$NtUninstallWIC$\spuninst\spuninst.exe"
Windows Live Call-->MsiExec.exe /I{82C7B308-0BDD-49D8-8EA5-9CD3A3F9DF41}
Windows Live Communications Platform-->MsiExec.exe /I{3B4E636E-9D65-4D67-BA61-189800823F52}
Windows Live Contrôle parental-->MsiExec.exe /X{D6A2DDE3-9D7C-412C-932A-756580D29919}
Windows Live Mail-->MsiExec.exe /I{63DC2DA0-2A6C-4C38-9249-B75395458657}
Windows Live Messenger-->MsiExec.exe /X{059C042E-796A-4ACC-A81A-ECC2010BB78C}
Windows Live Sync-->MsiExec.exe /X{9C5EB781-0D37-44B8-9A58-77B3E4BF5F5E}
Windows Live Toolbar-->MsiExec.exe /X{F7D27C70-90F5-49B9-B188-0A133C0CE353}
Windows Live Writer-->MsiExec.exe /X{2231CE39-B963-4B9D-823A-F412ECA637B1}
Windows Media Format 11 runtime-->"C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
Windows Media Format 11 runtime-->"C:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe"
Windows Media Format SDK Hotfix - KB891122-->"C:\WINDOWS\$NtUninstallKB891122$\spuninst\spuninst.exe"
Windows Media Player 11-->"C:\WINDOWS\$NtUninstallwmp11$\spuninst\spuninst.exe"
Windows Presentation Foundation-->MsiExec.exe /X{BAF78226-3200-4DB4-BE33-4D922A799840}
Windows XP Service Pack 3-->"C:\WINDOWS\$NtServicePackUninstall$\spuninst\spuninst.exe"
Xilisoft Video Converter 3-->C:\Program Files\Xilisoft\Video Converter 3\Uninstall.exe
XML Paper Specification Shared Components Language Pack 1.0-->"C:\WINDOWS\$NtUninstallXPSEPSCLP$\spuninst\spuninst.exe"
YFB - Youtube Friend Bomber-->MsiExec.exe /I{FB249035-FD3C-4AB9-AF0E-3DD03CBFED71}
======Security center information======
AV: Kaspersky Anti-Virus (outdated)
======System event log======
Computer Name: PC
Event Code: 7036
Message: Le service Compatibilité avec le Changement rapide d'utilisateur est entré dans l'état : en cours d'exécution.
Record Number: 21392
Source Name: Service Control Manager
Time Written: 20090316202409.000000+060
Event Type: Informations
User:
Computer Name: PC
Event Code: 7035
Message: Un contrôle Démarrer a correctement été envoyé au service Compatibilité avec le Changement rapide d'utilisateur.
Record Number: 21391
Source Name: Service Control Manager
Time Written: 20090316202409.000000+060
Event Type: Informations
User: AUTORITE NT\SYSTEM
Computer Name: PC
Event Code: 7036
Message: Le service Services Terminal Server est entré dans l'état : en cours d'exécution.
Record Number: 21390
Source Name: Service Control Manager
Time Written: 20090316195455.000000+060
Event Type: Informations
User:
Computer Name: PC
Event Code: 7035
Message: Un contrôle Démarrer a correctement été envoyé au service Services Terminal Server.
Record Number: 21389
Source Name: Service Control Manager
Time Written: 20090316195455.000000+060
Event Type: Informations
User: AUTORITE NT\SYSTEM
Computer Name: PC
Event Code: 7036
Message: Le service Carte de performance WMI est entré dans l'état : arrêté.
Record Number: 21388
Source Name: Service Control Manager
Time Written: 20090316195418.000000+060
Event Type: Informations
User:
=====Application event log=====
Computer Name: PC
Event Code: 1
Message:
Record Number: 5
Source Name: Bonjour Service
Time Written: 20090425225835.000000+120
Event Type: Informations
User:
Computer Name: PC
Event Code: 0
Message:
Record Number: 4
Source Name: iPod Service
Time Written: 20090425225331.000000+120
Event Type: Informations
User:
Computer Name: PC
Event Code: 1800
Message: Le service Centre de sécurité Windows a démarré.
Record Number: 3
Source Name: SecurityCenter
Time Written: 20090425225328.000000+120
Event Type: Informations
User:
Computer Name: PC
Event Code: 1
Message:
Record Number: 2
Source Name: Bonjour Service
Time Written: 20090425225327.000000+120
Event Type: Informations
User:
Computer Name: PC
Event Code: 0
Message:
Record Number: 1
Source Name: SeaPort
Time Written: 20090425225327.000000+120
Event Type: Informations
User:
======Environment variables======
"ComSpec"=%SystemRoot%\system32\cmd.exe
"Path"=%systemroot%\system32;%systemroot%;%systemroot%\system32\wbem;C:\Program Files\Intel\DMIX;C:\Program Files\QuickTime\QTSystem;C:\Program Files\Microsoft SQL Server\80\Tools\Binn\;C:\Program Files\Fichiers communs\Ulead Systems\MPEG;C:\Program Files\QuickTime\QTSystem\
"windir"=%SystemRoot%
"OS"=Windows_NT
"PROCESSOR_ARCHITECTURE"=x86
"PROCESSOR_LEVEL"=15
"PROCESSOR_IDENTIFIER"=x86 Family 15 Model 3 Stepping 4, GenuineIntel
"PROCESSOR_REVISION"=0304
"NUMBER_OF_PROCESSORS"=2
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"FP_NO_HOST_CHECK"=NO
"CLASSPATH"=.;C:\Program Files\Java\jre1.6.0_06\lib\ext\QTJava.zip
"QTJAVA"=C:\Program Files\Java\jre1.6.0_06\lib\ext\QTJava.zip
"SAFEBOOT_OPTION"=MINIMAL
-----------------EOF-----------------
---> Désactive ton antivirus le temps de la manipulation car OTMoveIt3 est détecté comme une infection à tort.
---> Télécharge OTMoveIt3 (OldTimer) sur ton Bureau :
---> Double-clique sur OTMoveIt3.exe afin de le lancer.
---> Copie (Ctrl+C) le texte suivant ci-dessous :
:processes
explorer.exe
:services
securentm
Bonjour Service
:files
C:\WINDOWS\system32\crypts.dll
C:\Documents and Settings\Nicolas\Menu Démarrer\Programmes\Démarrage\ChkDisk.lnk
C:\Documents and Settings\Nicolas\Menu Démarrer\Programmes\Démarrage\ChkDisk.dll
C:\WINDOWS\system32\digiwet.dll
C:\WINDOWS\system32\autochk.dll
C:\WINDOWS\system32\crypts.dll
C:\WINDOWS\005486_.tmp
C:\WINDOWS\system32\drivers\securentm.sys
:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SoundMan"=-
"NeroFilterCheck"=-
"Adobe Reader Speed Launcher"=-
"TkBellExe"=-
"SunJavaUpdateSched"=-
"QuickTime Task"=-
"iTunesHelper"=-
"autochk"=-
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"MsnMsgr"=-
"Nicolas"=-
"autochk"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\crypt]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=-
"SecurityProviders"="msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll"
:commands
[purity]
[emptytemp]
[start explorer]
[reboot]
---> Colle (Ctrl+V) le texte précédemment copié dans le cadre Paste Instructions for Items to be Moved.
---> Clique maintenant sur le bouton MoveIt! puis ferme OTMoveIt3.
Si un fichier ou dossier ne peut pas être supprimé immédiatement, le logiciel te demandera de redémarrer.
Accepte en cliquant sur YES.
---> Poste le rapport situé dans ce dossier : C:\_OTMoveIt\MovedFiles\
Le nom du rapport correspond au moment de sa création : date_heure.log
---> Télécharge OTMoveIt3 (OldTimer) sur ton Bureau :
---> Double-clique sur OTMoveIt3.exe afin de le lancer.
---> Copie (Ctrl+C) le texte suivant ci-dessous :
:processes
explorer.exe
:services
securentm
Bonjour Service
:files
C:\WINDOWS\system32\crypts.dll
C:\Documents and Settings\Nicolas\Menu Démarrer\Programmes\Démarrage\ChkDisk.lnk
C:\Documents and Settings\Nicolas\Menu Démarrer\Programmes\Démarrage\ChkDisk.dll
C:\WINDOWS\system32\digiwet.dll
C:\WINDOWS\system32\autochk.dll
C:\WINDOWS\system32\crypts.dll
C:\WINDOWS\005486_.tmp
C:\WINDOWS\system32\drivers\securentm.sys
:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SoundMan"=-
"NeroFilterCheck"=-
"Adobe Reader Speed Launcher"=-
"TkBellExe"=-
"SunJavaUpdateSched"=-
"QuickTime Task"=-
"iTunesHelper"=-
"autochk"=-
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"MsnMsgr"=-
"Nicolas"=-
"autochk"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\crypt]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=-
"SecurityProviders"="msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll"
:commands
[purity]
[emptytemp]
[start explorer]
[reboot]
---> Colle (Ctrl+V) le texte précédemment copié dans le cadre Paste Instructions for Items to be Moved.
---> Clique maintenant sur le bouton MoveIt! puis ferme OTMoveIt3.
Si un fichier ou dossier ne peut pas être supprimé immédiatement, le logiciel te demandera de redémarrer.
Accepte en cliquant sur YES.
---> Poste le rapport situé dans ce dossier : C:\_OTMoveIt\MovedFiles\
Le nom du rapport correspond au moment de sa création : date_heure.log
j'ai une fenêtre qui me dit OTMoveit3.exe - Erreur d'application
L'instruction à "0x10003130" emploie l'adresse mémoire "0x10003130". La mémoire ne peut pas être "read".
Cliquez sur OK pou terminer le programme.
Cliquez sur Annuer pour déboguer le programme
Je met quoi?
Merci
L'instruction à "0x10003130" emploie l'adresse mémoire "0x10003130". La mémoire ne peut pas être "read".
Cliquez sur OK pou terminer le programme.
Cliquez sur Annuer pour déboguer le programme
Je met quoi?
Merci
termine le programme , recopie la manip dans un doc.txt , enregistre le sur ton bureau , redemarre en mode sans echec puis reutilise otmoveit avec la manip
Comment aller en Mode sans échec
1) Redémarres ton ordi
2) Tapote la touche F8 immédiatement, (F5 sur certains PC) juste après le "Bip"
3) Tu verras un écran avec options de démarrage apparaître
4) Choisis la première option : Sans Échec, et valide avec "Entrée"
5) Choisis ton compte habituel, et non Administrateur (si besoin ... )
(attention : pas de connexion possible en mode sans échec , donc copies ou imprimes bien la manipe pour éviter les erreurs ...)
Comment aller en Mode sans échec
1) Redémarres ton ordi
2) Tapote la touche F8 immédiatement, (F5 sur certains PC) juste après le "Bip"
3) Tu verras un écran avec options de démarrage apparaître
4) Choisis la première option : Sans Échec, et valide avec "Entrée"
5) Choisis ton compte habituel, et non Administrateur (si besoin ... )
(attention : pas de connexion possible en mode sans échec , donc copies ou imprimes bien la manipe pour éviter les erreurs ...)
========== PROCESSES ==========
Process explorer.exe killed successfully.
========== SERVICES/DRIVERS ==========
Service\Driver securentm not found.
Service\Driver securentm not found.
Service\Driver Bonjour Service not found.
Service\Driver Bonjour Service not found.
========== FILES ==========
File/Folder C:\WINDOWS\system32\crypts.dll not found.
C:\Documents and Settings\Nicolas\Menu Démarrer\Programmes\Démarrage\ChkDisk.lnk moved successfully.
File/Folder C:\Documents and Settings\Nicolas\Menu Démarrer\Programmes\Démarrage\ChkDisk.dll not found.
File/Folder C:\WINDOWS\system32\digiwet.dll not found.
File/Folder C:\WINDOWS\system32\autochk.dll not found.
File/Folder C:\WINDOWS\system32\crypts.dll not found.
File/Folder C:\WINDOWS\005486_.tmp not found.
File/Folder C:\WINDOWS\system32\drivers\securentm.sys not found.
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}\\ not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\SoundMan not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\NeroFilterCheck not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Adobe Reader Speed Launcher not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\TkBellExe not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\QuickTime Task not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\iTunesHelper not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\autochk not found.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\MsnMsgr not found.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\Nicolas not found.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\autochk not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\crypt\\ not found.
Registry value HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders\\SecurityProviders deleted successfully.
HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders\\"SecurityProviders"|"msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll" /E : value set successfully!
========== COMMANDS ==========
User's Temp folder emptied.
User's Internet Explorer cache folder emptied.
File delete failed. C:\Documents and Settings\Nicolas\Local Settings\Temporary Internet Files\Content.IE5\index.dat scheduled to be deleted on reboot.
User's Temporary Internet Files folder emptied.
Local Service Temp folder emptied.
Local Service Temporary Internet Files folder emptied.
Network Service Temp folder emptied.
Network Service Temporary Internet Files folder emptied.
Windows Temp folder emptied.
Java cache emptied.
FireFox cache emptied.
Temp folders emptied.
Explorer started successfully
OTMoveIt3 by OldTimer - Version 1.0.11.0 log created on 05012009_134656
Files moved on Reboot...
Process explorer.exe killed successfully.
========== SERVICES/DRIVERS ==========
Service\Driver securentm not found.
Service\Driver securentm not found.
Service\Driver Bonjour Service not found.
Service\Driver Bonjour Service not found.
========== FILES ==========
File/Folder C:\WINDOWS\system32\crypts.dll not found.
C:\Documents and Settings\Nicolas\Menu Démarrer\Programmes\Démarrage\ChkDisk.lnk moved successfully.
File/Folder C:\Documents and Settings\Nicolas\Menu Démarrer\Programmes\Démarrage\ChkDisk.dll not found.
File/Folder C:\WINDOWS\system32\digiwet.dll not found.
File/Folder C:\WINDOWS\system32\autochk.dll not found.
File/Folder C:\WINDOWS\system32\crypts.dll not found.
File/Folder C:\WINDOWS\005486_.tmp not found.
File/Folder C:\WINDOWS\system32\drivers\securentm.sys not found.
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}\\ not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\SoundMan not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\NeroFilterCheck not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Adobe Reader Speed Launcher not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\TkBellExe not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\QuickTime Task not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\iTunesHelper not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\autochk not found.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\MsnMsgr not found.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\Nicolas not found.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\autochk not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\crypt\\ not found.
Registry value HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders\\SecurityProviders deleted successfully.
HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders\\"SecurityProviders"|"msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll" /E : value set successfully!
========== COMMANDS ==========
User's Temp folder emptied.
User's Internet Explorer cache folder emptied.
File delete failed. C:\Documents and Settings\Nicolas\Local Settings\Temporary Internet Files\Content.IE5\index.dat scheduled to be deleted on reboot.
User's Temporary Internet Files folder emptied.
Local Service Temp folder emptied.
Local Service Temporary Internet Files folder emptied.
Network Service Temp folder emptied.
Network Service Temporary Internet Files folder emptied.
Windows Temp folder emptied.
Java cache emptied.
FireFox cache emptied.
Temp folders emptied.
Explorer started successfully
OTMoveIt3 by OldTimer - Version 1.0.11.0 log created on 05012009_134656
Files moved on Reboot...
Logfile of random's system information tool 1.06 (written by random/random)
Run by Nicolas at 2009-05-01 14:25:26
Microsoft Windows XP Édition familiale Service Pack 3
System drive C: has 31 GB (16%) free of 191 GB
Total RAM: 503 MB (71% free)
HijackThis download failed
======Scheduled tasks folder======
C:\WINDOWS\tasks\AppleSoftwareUpdate.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Aide pour le lien d'Adobe PDF Reader - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
RealPlayer Download and Record Plugin for Internet Explorer - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll [2008-04-30 308856]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll [2009-01-14 92504]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre6\bin\ssv.dll [2008-12-28 320920]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Programme d'aide de l'Assistant de connexion Windows Live - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.0.926.3450\swg.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C84D72FE-E17D-4195-BB24-76C02E2E7C4E}]
Google Dictionary Compression sdch - C:\Program Files\Google\Google Toolbar\Component\fastsearch_219B3E1547538286.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2008-12-28 34816]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
Windows Live Toolbar Helper - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2008-12-28 73728]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - Barre d'outils MSN - C:\Program Files\MSN Toolbar\01.01.2607.0\fr\msntb.dll []
{21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"igfxtray"=C:\WINDOWS\System32\igfxtray.exe [2006-02-07 94208]
"igfxhkcmd"=C:\WINDOWS\System32\hkcmd.exe [2006-02-07 77824]
"igfxpers"=C:\WINDOWS\System32\igfxpers.exe [2006-02-07 118784]
"High Definition Audio Property Page Shortcut"=C:\WINDOWS\system32\HDAShCut.exe [2005-01-07 61952]
"SkyTel"=C:\WINDOWS\SkyTel.EXE [2006-05-16 2879488]
"AlcWzrd"=C:\WINDOWS\ALCWZRD.EXE [2006-05-04 2808832]
"WinVNC"=C:\Program Files\UltraVNC\WinVNC.exe [2005-08-06 974848]
"H2O"=C:\Program Files\SyncroSoft\Pos\H2O\cledx.exe [2005-11-01 307200]
"AVP"=C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe [2007-06-28 218376]
"KernelFaultCheck"=C:\WINDOWS\system32\dumprep 0 -k []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"Audio Kontrol 1"=C:\Program Files\Native Instruments\Audio Kontrol 1\Audio Kontrol 1.exe [2006-09-18 6336512]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\daemon.exe [2008-07-17 490952]
C:\Documents and Settings\Nicolas\Menu Démarrer\Programmes\Démarrage
MSN Pictures Displayer.lnk - C:\Program Files\MSN Pictures Displayer\MSN Pictures Displayer.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2006-02-07 139264]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\klogon]
C:\WINDOWS\system32\klogon.dll [2007-06-28 206088]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UploadMgr]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"NoDispScrSavPage"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=
"NoDriveTypeAutoRun"=
"NoDrives"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe"="C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe:*:Enabled:Kaspersky Anti-Virus"
"C:\Program Files\IBP 9\IBP.exe"="C:\Program Files\IBP 9\IBP.exe:*:Enabled:Internet Business Promoter (IBP)"
"C:\Program Files\LimeWire\LimeWire.exe"="C:\Program Files\LimeWire\LimeWire.exe:*:Enabled:LimeWire"
"C:\Program Files\Bonjour\mDNSResponder.exe"="C:\Program Files\Bonjour\mDNSResponder.exe:*:Enabled:Bonjour"
"C:\Program Files\iTunes\iTunes.exe"="C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes"
"C:\Program Files\Real\RealPlayer\realplay.exe"="C:\Program Files\Real\RealPlayer\realplay.exe:*:Enabled:RealPlayer"
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live Sync"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\WINDOWS\Explorer.EXE"="C:\WINDOWS\Explorer.EXE:*:Enabled:ENABLE"
"C:\WINDOWS\system32\userinit.exe"="C:\WINDOWS\system32\userinit.exe:*:Enabled:ENABLE"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live Sync"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{479ad8ea-1a41-11de-84dc-001111f19ceb}]
shell\Auto\command - RavMonE.exe e
shell\AutoRun\command - C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL RavMonE.exe e
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{cac16cd1-0489-11dd-a86a-92749d06b0a0}]
shell\AutoRun\command - F:\LaunchU3.exe
======File associations======
.reg - open - regedit.exe "%1" %*
.scr - open - "%1" %*
======List of files/folders created in the last 2 months======
2009-05-01 13:30:41 ----D---- C:\_OTMoveIt
2009-05-01 12:42:20 ----D---- C:\rsit
2009-04-25 23:03:03 ----A---- C:\WINDOWS\ntbtlog.txt
2009-04-23 11:57:28 ----D---- C:\Documents and Settings\Nicolas\Application Data\Mozilla
2009-04-23 11:55:39 ----D---- C:\Program Files\Mozilla Firefox
2009-04-23 11:20:19 ----SHD---- C:\Config.Msi
2009-04-23 11:14:17 ----A---- C:\WINDOWS\OEWABLog.txt
2009-04-23 11:13:25 ----A---- C:\WINDOWS\system32\wmpns.dll
2009-04-23 11:12:17 ----D---- C:\WINDOWS\Prefetch
2009-04-23 10:57:52 ----A---- C:\WINDOWS\setuplog.txt
2009-04-23 10:56:12 ----D---- C:\WINDOWS\system32\fr
2009-04-23 10:56:12 ----D---- C:\WINDOWS\l2schemas
2009-04-23 10:56:11 ----D---- C:\WINDOWS\system32\bits
2009-04-23 10:32:46 ----N---- C:\WINDOWS\system32\wlanapi.dll
2009-04-23 10:32:31 ----N---- C:\WINDOWS\system32\tspkg.dll
2009-04-23 10:32:16 ----N---- C:\WINDOWS\system32\setupn.exe
2009-04-23 10:32:12 ----N---- C:\WINDOWS\system32\rasqec.dll
2009-04-23 10:32:11 ----N---- C:\WINDOWS\system32\qutil.dll
2009-04-23 10:32:10 ----N---- C:\WINDOWS\system32\qcliprov.dll
2009-04-23 10:32:10 ----N---- C:\WINDOWS\system32\qagentrt.dll
2009-04-23 10:32:10 ----N---- C:\WINDOWS\system32\qagent.dll
2009-04-23 10:32:06 ----N---- C:\WINDOWS\system32\onex.dll
2009-04-23 10:31:57 ----N---- C:\WINDOWS\system32\napstat.exe
2009-04-23 10:31:57 ----N---- C:\WINDOWS\system32\napmontr.dll
2009-04-23 10:31:57 ----N---- C:\WINDOWS\system32\napipsec.dll
2009-04-23 10:31:55 ----A---- C:\WINDOWS\system32\msxml6r.dll
2009-04-23 10:31:51 ----N---- C:\WINDOWS\system32\msshavmsg.dll
2009-04-23 10:31:51 ----N---- C:\WINDOWS\system32\mssha.dll
2009-04-23 10:31:35 ----N---- C:\WINDOWS\system32\mmcperf.exe
2009-04-23 10:31:35 ----N---- C:\WINDOWS\system32\mmcfxcommon.dll
2009-04-23 10:31:34 ----N---- C:\WINDOWS\system32\mmcex.dll
2009-04-23 10:31:34 ----N---- C:\WINDOWS\system32\microsoft.managementconsole.dll
2009-04-23 10:31:24 ----N---- C:\WINDOWS\system32\l2gpstore.dll
2009-04-23 10:31:24 ----N---- C:\WINDOWS\system32\kmsvc.dll
2009-04-23 10:31:23 ----N---- C:\WINDOWS\system32\kbdpash.dll
2009-04-23 10:31:23 ----N---- C:\WINDOWS\system32\kbdnepr.dll
2009-04-23 10:31:23 ----N---- C:\WINDOWS\system32\kbdiultn.dll
2009-04-23 10:31:23 ----N---- C:\WINDOWS\system32\kbdbhc.dll
2009-04-23 10:31:03 ----N---- C:\WINDOWS\system32\eapsvc.dll
2009-04-23 10:31:03 ----N---- C:\WINDOWS\system32\eapqec.dll
2009-04-23 10:31:03 ----N---- C:\WINDOWS\system32\eappprxy.dll
2009-04-23 10:31:03 ----N---- C:\WINDOWS\system32\eapphost.dll
2009-04-23 10:31:03 ----N---- C:\WINDOWS\system32\eappgnui.dll
2009-04-23 10:31:03 ----N---- C:\WINDOWS\system32\eappcfg.dll
2009-04-23 10:31:03 ----N---- C:\WINDOWS\system32\eapp3hst.dll
2009-04-23 10:31:02 ----N---- C:\WINDOWS\system32\eapolqec.dll
2009-04-23 10:30:59 ----N---- C:\WINDOWS\system32\dot3ui.dll
2009-04-23 10:30:59 ----N---- C:\WINDOWS\system32\dot3svc.dll
2009-04-23 10:30:59 ----N---- C:\WINDOWS\system32\dot3msm.dll
2009-04-23 10:30:59 ----N---- C:\WINDOWS\system32\dot3gpclnt.dll
2009-04-23 10:30:59 ----N---- C:\WINDOWS\system32\dot3dlg.dll
2009-04-23 10:30:59 ----N---- C:\WINDOWS\system32\dot3cfg.dll
2009-04-23 10:30:59 ----N---- C:\WINDOWS\system32\dot3api.dll
2009-04-23 10:30:55 ----N---- C:\WINDOWS\system32\dimsroam.dll
2009-04-23 10:30:55 ----N---- C:\WINDOWS\system32\dimsntfy.dll
2009-04-23 10:30:55 ----N---- C:\WINDOWS\system32\dhcpqec.dll
2009-04-23 10:30:52 ----N---- C:\WINDOWS\system32\credssp.dll
2009-04-23 10:30:45 ----N---- C:\WINDOWS\system32\bitsprx4.dll
2009-04-23 10:30:45 ----N---- C:\WINDOWS\system32\azroles.dll
2009-04-23 10:00:58 ----A---- C:\WINDOWS\system32\wuapi.dll.mui
2009-03-18 21:41:42 ----D---- C:\Program Files\Microsoft Silverlight
2009-03-18 21:41:29 ----D---- C:\Program Files\Microsoft Office Outlook Connector
2009-03-18 21:40:32 ----D---- C:\Program Files\Microsoft Sync Framework
2009-03-18 21:39:33 ----A---- C:\WINDOWS\system32\d3dx9_32.dll
2009-03-18 21:39:10 ----D---- C:\Program Files\Microsoft SQL Server Compact Edition
2009-03-18 21:37:15 ----D---- C:\Program Files\Microsoft
2009-03-18 21:36:25 ----D---- C:\Program Files\Windows Live SkyDrive
2009-03-18 21:27:57 ----D---- C:\Program Files\Fichiers communs\Windows Live
======List of files/folders modified in the last 2 months======
2009-05-01 13:36:57 ----D---- C:\WINDOWS\TEMP
2009-05-01 13:30:42 ----D---- C:\WINDOWS\system32\drivers
2009-05-01 13:30:42 ----D---- C:\WINDOWS\system32
2009-05-01 13:30:42 ----D---- C:\WINDOWS
2009-05-01 13:23:29 ----D---- C:\Documents and Settings\All Users\Application Data\Kaspersky Lab
2009-05-01 12:40:17 ----D---- C:\WINDOWS\system32\CatRoot2
2009-05-01 12:38:43 ----HD---- C:\WINDOWS\inf
2009-04-26 22:21:46 ----A---- C:\WINDOWS\SchedLgU.Txt
2009-04-26 20:53:09 ----D---- C:\WINDOWS\Minidump
2009-04-25 23:13:56 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2009-04-25 23:11:26 ----RD---- C:\Program Files
2009-04-25 23:05:42 ----D---- C:\Documents and Settings\All Users\Application Data\Google
2009-04-23 11:23:46 ----RSHDC---- C:\WINDOWS\system32\dllcache
2009-04-23 11:20:23 ----SHD---- C:\WINDOWS\Installer
2009-04-23 11:13:34 ----D---- C:\WINDOWS\Debug
2009-04-23 11:11:52 ----D---- C:\WINDOWS\system32\Setup
2009-04-23 11:11:52 ----D---- C:\WINDOWS\AppPatch
2009-04-23 11:11:52 ----D---- C:\Program Files\Messenger
2009-04-23 11:11:50 ----D---- C:\WINDOWS\system32\wbem
2009-04-23 11:11:48 ----RSD---- C:\WINDOWS\Fonts
2009-04-23 11:10:57 ----D---- C:\WINDOWS\security
2009-04-23 10:59:32 ----D---- C:\WINDOWS\system32\CatRoot
2009-04-23 10:56:54 ----D---- C:\WINDOWS\WinSxS
2009-04-23 10:56:46 ----D---- C:\WINDOWS\ServicePackFiles
2009-04-23 10:56:44 ----D---- C:\WINDOWS\network diagnostic
2009-04-23 10:56:43 ----D---- C:\WINDOWS\ime
2009-04-23 10:56:43 ----D---- C:\WINDOWS\Help
2009-04-23 10:56:17 ----D---- C:\WINDOWS\system32\usmt
2009-04-23 10:56:17 ----D---- C:\WINDOWS\system32\fr-fr
2009-04-23 10:56:11 ----D---- C:\WINDOWS\peernet
2009-04-23 10:56:11 ----D---- C:\Program Files\Movie Maker
2009-04-23 10:52:09 ----D---- C:\WINDOWS\system32\Restore
2009-04-23 10:52:09 ----D---- C:\WINDOWS\system32\npp
2009-04-23 10:52:07 ----D---- C:\WINDOWS\msagent
2009-04-23 10:52:06 ----D---- C:\WINDOWS\srchasst
2009-04-23 10:52:05 ----D---- C:\Program Files\NetMeeting
2009-04-23 10:52:03 ----D---- C:\WINDOWS\system32\Com
2009-04-23 10:52:01 ----D---- C:\Program Files\Windows Media Player
2009-04-23 10:52:00 ----D---- C:\Program Files\Windows NT
2009-04-23 10:52:00 ----D---- C:\Program Files\Outlook Express
2009-04-23 10:51:56 ----D---- C:\Program Files\Fichiers communs\System
2009-04-23 10:51:33 ----D---- C:\WINDOWS\system32\oobe
2009-04-23 10:51:31 ----D---- C:\WINDOWS\system
2009-04-23 10:47:43 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2009-04-23 10:39:42 ----D---- C:\WINDOWS\EHome
2009-04-23 10:01:17 ----D---- C:\WINDOWS\SoftwareDistribution
2009-04-23 10:00:32 ----SD---- C:\WINDOWS\Downloaded Program Files
2009-04-17 12:27:27 ----A---- C:\WINDOWS\NeroDigital.ini
2009-04-14 13:27:17 ----SD---- C:\Documents and Settings\Nicolas\Application Data\Microsoft
2009-04-09 23:39:37 ----D---- C:\Program Files\Fichiers communs
2009-04-09 23:39:35 ----D---- C:\Documents and Settings\All Users\Application Data\Skype
2009-04-09 23:38:06 ----D---- C:\Documents and Settings\Nicolas\Application Data\skypePM
2009-03-21 00:19:41 ----D---- C:\Documents and Settings\Nicolas\Application Data\LimeWire
2009-03-19 21:10:24 ----RSD---- C:\WINDOWS\assembly
2009-03-19 21:09:26 ----D---- C:\WINDOWS\Microsoft.NET
2009-03-18 21:41:07 ----DC---- C:\WINDOWS\system32\DRVSTORE
2009-03-18 21:41:05 ----D---- C:\Program Files\Windows Live
2009-03-18 21:40:17 ----SD---- C:\Documents and Settings\All Users\Application Data\Microsoft
2009-03-18 21:39:35 ----D---- C:\WINDOWS\system32\DirectX
2009-03-18 21:36:49 ----D---- C:\Program Files\Fichiers communs\Microsoft Shared
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R3 CLEDX;Team H2O CLEDX service; C:\WINDOWS\system32\DRIVERS\cledx.sys [2005-05-09 33792]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\WINDOWS\System32\Drivers\GEARAspiWDM.sys [2008-04-17 15464]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\System32\DRIVERS\HDAudBus.sys [2005-01-07 138752]
R3 hidusb;Pilote de classe HID Microsoft; C:\WINDOWS\System32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 mouhid;Pilote HID de souris; C:\WINDOWS\System32\DRIVERS\mouhid.sys [2003-04-24 12288]
R3 usbehci;Pilote miniport de contrôleur hôte amélioré USB 2.0 Microsoft; C:\WINDOWS\System32\DRIVERS\usbehci.sys [2008-04-13 30208]
R3 usbhub;Concentrateur USB2; C:\WINDOWS\System32\DRIVERS\usbhub.sys [2008-04-13 59520]
R3 usbuhci;Pilote miniport de contrôleur hôte universel USB Microsoft; C:\WINDOWS\System32\DRIVERS\usbuhci.sys [2008-04-13 20608]
S1 intelppm;Pilote de processeur Intel; C:\WINDOWS\System32\DRIVERS\intelppm.sys [2008-04-14 40576]
S1 kbdhid;Pilote HID de clavier; C:\WINDOWS\System32\DRIVERS\kbdhid.sys [2008-04-14 14720]
S1 klif;Klif; \??\C:\WINDOWS\system32\drivers\klif.sys []
S2 fssfltr;FssFltr; C:\WINDOWS\system32\DRIVERS\fssfltr_tdi.sys [2009-02-06 55152]
S2 RVIEGVST;VSC VST Engine; \??\C:\Program Files\Roland\Virtual Sound Canvas VST\RVIEg01VST.sys []
S3 AgereSoftModem;Agere Systems Soft Modem; C:\WINDOWS\system32\DRIVERS\AGRSM.sys [2007-10-30 1201632]
S3 ahju54mi;ahju54mi; C:\WINDOWS\system32\drivers\ahju54mi.sys []
S3 ak1avs;ak1avs; C:\WINDOWS\System32\Drivers\ak1avs.sys [2006-09-13 25088]
S3 ak1usb;ak1usb; C:\WINDOWS\System32\Drivers\ak1usb.sys [2006-09-13 84992]
S3 catchme;catchme; \??\C:\ComboFix\catchme.sys []
S3 CCDECODE;Décodeur sous-titre fermé; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
S3 E100B;Intel(R) PRO Network Connection Driver; C:\WINDOWS\System32\DRIVERS\e100b325.sys [2006-10-31 165760]
S3 HdAudAddService;Microsoft UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\HdAudio.sys [2005-01-07 145920]
S3 ialm;ialm; C:\WINDOWS\System32\DRIVERS\ialmnt5.sys [2006-02-07 1399615]
S3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2007-03-01 4484608]
S3 klim5;Kaspersky Anti-Virus NDIS Filter; C:\WINDOWS\system32\DRIVERS\klim5.sys [2007-04-04 24344]
S3 MSTEE;Convertisseur en T/site-à-site de répartition Microsoft; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504]
S3 NABTSFEC;Codec NABTS/FEC VBI; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
S3 NdisIP;Connection TV/vidéo Microsoft; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-13 10880]
S3 QCMerced;Logitech QuickCam Express; C:\WINDOWS\system32\DRIVERS\LVCM.sys [2002-09-20 472396]
S3 SDVC04;USB DVC Service; C:\WINDOWS\System32\Drivers\SDVC04.sys [2003-05-22 42413]
S3 SLIP;Détrameur décalage BDA; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-13 11136]
S3 SONYPVU1;Pilote de filtrage Sony USB (SONYPVU1); C:\WINDOWS\system32\DRIVERS\SONYPVU1.SYS [2001-08-17 7552]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-13 15232]
S3 USBAAPL;Apple Mobile USB Driver; C:\WINDOWS\System32\Drivers\usbaapl.sys []
S3 usbaudio;USB Audio Driver (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2008-04-13 60032]
S3 usbccgp;Pilote parent générique USB Microsoft; C:\WINDOWS\System32\DRIVERS\usbccgp.sys [2008-04-13 32128]
S3 usbprint;Classe d'imprimantes USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Pilote de scanneur USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 USBSTOR;Pilote de stockage de masse USB; C:\WINDOWS\System32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 WSTCODEC;Codec Teletext standard; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
S2 AVP;Kaspersky Anti-Virus 7.0; C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe [2007-06-28 218376]
S2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2008-12-28 152984]
S2 MDM;Machine Debug Manager; C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-19 322120]
S2 SeaPort;SeaPort; C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2009-01-14 226656]
S2 winvnc;VNC Server; C:\Program Files\UltraVNC\WinVNC.exe [2005-08-06 974848]
S3 aspnet_state;Service d'état ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2007-10-24 33800]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2007-10-24 70144]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe [2007-10-09 36864]
S3 fsssvc;Windows Live Contrôle parental; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2009-02-06 533360]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2007-10-11 864256]
S3 iPod Service;Service de l’iPod; C:\Program Files\iPod\bin\iPodService.exe [2008-10-01 536872]
S3 MSSQL$SONY_MEDIAMGR;MSSQL$SONY_MEDIAMGR; C:\Program Files\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe [2002-12-17 7520337]
S3 MSSQLServerADHelper;MSSQLServerADHelper; C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqladhlp.exe [2002-12-17 66112]
S3 ose;Office Source Engine; C:\Program Files\Fichiers communs\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 SQLAgent$SONY_MEDIAMGR;SQLAgent$SONY_MEDIAMGR; C:\Program Files\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlagent.EXE [2002-12-17 311872]
S3 WMPNetworkSvc;Service Partage réseau du Lecteur Windows Media; C:\Program Files\Windows Media Player\WMPNetwk.exe [2006-11-03 918016]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe []
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2007-10-11 122880]
-----------------EOF-----------------
Run by Nicolas at 2009-05-01 14:25:26
Microsoft Windows XP Édition familiale Service Pack 3
System drive C: has 31 GB (16%) free of 191 GB
Total RAM: 503 MB (71% free)
HijackThis download failed
======Scheduled tasks folder======
C:\WINDOWS\tasks\AppleSoftwareUpdate.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Aide pour le lien d'Adobe PDF Reader - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
RealPlayer Download and Record Plugin for Internet Explorer - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll [2008-04-30 308856]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll [2009-01-14 92504]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre6\bin\ssv.dll [2008-12-28 320920]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Programme d'aide de l'Assistant de connexion Windows Live - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.0.926.3450\swg.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C84D72FE-E17D-4195-BB24-76C02E2E7C4E}]
Google Dictionary Compression sdch - C:\Program Files\Google\Google Toolbar\Component\fastsearch_219B3E1547538286.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2008-12-28 34816]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
Windows Live Toolbar Helper - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2008-12-28 73728]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - Barre d'outils MSN - C:\Program Files\MSN Toolbar\01.01.2607.0\fr\msntb.dll []
{21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"igfxtray"=C:\WINDOWS\System32\igfxtray.exe [2006-02-07 94208]
"igfxhkcmd"=C:\WINDOWS\System32\hkcmd.exe [2006-02-07 77824]
"igfxpers"=C:\WINDOWS\System32\igfxpers.exe [2006-02-07 118784]
"High Definition Audio Property Page Shortcut"=C:\WINDOWS\system32\HDAShCut.exe [2005-01-07 61952]
"SkyTel"=C:\WINDOWS\SkyTel.EXE [2006-05-16 2879488]
"AlcWzrd"=C:\WINDOWS\ALCWZRD.EXE [2006-05-04 2808832]
"WinVNC"=C:\Program Files\UltraVNC\WinVNC.exe [2005-08-06 974848]
"H2O"=C:\Program Files\SyncroSoft\Pos\H2O\cledx.exe [2005-11-01 307200]
"AVP"=C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe [2007-06-28 218376]
"KernelFaultCheck"=C:\WINDOWS\system32\dumprep 0 -k []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"Audio Kontrol 1"=C:\Program Files\Native Instruments\Audio Kontrol 1\Audio Kontrol 1.exe [2006-09-18 6336512]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\daemon.exe [2008-07-17 490952]
C:\Documents and Settings\Nicolas\Menu Démarrer\Programmes\Démarrage
MSN Pictures Displayer.lnk - C:\Program Files\MSN Pictures Displayer\MSN Pictures Displayer.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2006-02-07 139264]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\klogon]
C:\WINDOWS\system32\klogon.dll [2007-06-28 206088]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UploadMgr]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"NoDispScrSavPage"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=
"NoDriveTypeAutoRun"=
"NoDrives"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe"="C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe:*:Enabled:Kaspersky Anti-Virus"
"C:\Program Files\IBP 9\IBP.exe"="C:\Program Files\IBP 9\IBP.exe:*:Enabled:Internet Business Promoter (IBP)"
"C:\Program Files\LimeWire\LimeWire.exe"="C:\Program Files\LimeWire\LimeWire.exe:*:Enabled:LimeWire"
"C:\Program Files\Bonjour\mDNSResponder.exe"="C:\Program Files\Bonjour\mDNSResponder.exe:*:Enabled:Bonjour"
"C:\Program Files\iTunes\iTunes.exe"="C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes"
"C:\Program Files\Real\RealPlayer\realplay.exe"="C:\Program Files\Real\RealPlayer\realplay.exe:*:Enabled:RealPlayer"
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live Sync"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\WINDOWS\Explorer.EXE"="C:\WINDOWS\Explorer.EXE:*:Enabled:ENABLE"
"C:\WINDOWS\system32\userinit.exe"="C:\WINDOWS\system32\userinit.exe:*:Enabled:ENABLE"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live Sync"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{479ad8ea-1a41-11de-84dc-001111f19ceb}]
shell\Auto\command - RavMonE.exe e
shell\AutoRun\command - C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL RavMonE.exe e
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{cac16cd1-0489-11dd-a86a-92749d06b0a0}]
shell\AutoRun\command - F:\LaunchU3.exe
======File associations======
.reg - open - regedit.exe "%1" %*
.scr - open - "%1" %*
======List of files/folders created in the last 2 months======
2009-05-01 13:30:41 ----D---- C:\_OTMoveIt
2009-05-01 12:42:20 ----D---- C:\rsit
2009-04-25 23:03:03 ----A---- C:\WINDOWS\ntbtlog.txt
2009-04-23 11:57:28 ----D---- C:\Documents and Settings\Nicolas\Application Data\Mozilla
2009-04-23 11:55:39 ----D---- C:\Program Files\Mozilla Firefox
2009-04-23 11:20:19 ----SHD---- C:\Config.Msi
2009-04-23 11:14:17 ----A---- C:\WINDOWS\OEWABLog.txt
2009-04-23 11:13:25 ----A---- C:\WINDOWS\system32\wmpns.dll
2009-04-23 11:12:17 ----D---- C:\WINDOWS\Prefetch
2009-04-23 10:57:52 ----A---- C:\WINDOWS\setuplog.txt
2009-04-23 10:56:12 ----D---- C:\WINDOWS\system32\fr
2009-04-23 10:56:12 ----D---- C:\WINDOWS\l2schemas
2009-04-23 10:56:11 ----D---- C:\WINDOWS\system32\bits
2009-04-23 10:32:46 ----N---- C:\WINDOWS\system32\wlanapi.dll
2009-04-23 10:32:31 ----N---- C:\WINDOWS\system32\tspkg.dll
2009-04-23 10:32:16 ----N---- C:\WINDOWS\system32\setupn.exe
2009-04-23 10:32:12 ----N---- C:\WINDOWS\system32\rasqec.dll
2009-04-23 10:32:11 ----N---- C:\WINDOWS\system32\qutil.dll
2009-04-23 10:32:10 ----N---- C:\WINDOWS\system32\qcliprov.dll
2009-04-23 10:32:10 ----N---- C:\WINDOWS\system32\qagentrt.dll
2009-04-23 10:32:10 ----N---- C:\WINDOWS\system32\qagent.dll
2009-04-23 10:32:06 ----N---- C:\WINDOWS\system32\onex.dll
2009-04-23 10:31:57 ----N---- C:\WINDOWS\system32\napstat.exe
2009-04-23 10:31:57 ----N---- C:\WINDOWS\system32\napmontr.dll
2009-04-23 10:31:57 ----N---- C:\WINDOWS\system32\napipsec.dll
2009-04-23 10:31:55 ----A---- C:\WINDOWS\system32\msxml6r.dll
2009-04-23 10:31:51 ----N---- C:\WINDOWS\system32\msshavmsg.dll
2009-04-23 10:31:51 ----N---- C:\WINDOWS\system32\mssha.dll
2009-04-23 10:31:35 ----N---- C:\WINDOWS\system32\mmcperf.exe
2009-04-23 10:31:35 ----N---- C:\WINDOWS\system32\mmcfxcommon.dll
2009-04-23 10:31:34 ----N---- C:\WINDOWS\system32\mmcex.dll
2009-04-23 10:31:34 ----N---- C:\WINDOWS\system32\microsoft.managementconsole.dll
2009-04-23 10:31:24 ----N---- C:\WINDOWS\system32\l2gpstore.dll
2009-04-23 10:31:24 ----N---- C:\WINDOWS\system32\kmsvc.dll
2009-04-23 10:31:23 ----N---- C:\WINDOWS\system32\kbdpash.dll
2009-04-23 10:31:23 ----N---- C:\WINDOWS\system32\kbdnepr.dll
2009-04-23 10:31:23 ----N---- C:\WINDOWS\system32\kbdiultn.dll
2009-04-23 10:31:23 ----N---- C:\WINDOWS\system32\kbdbhc.dll
2009-04-23 10:31:03 ----N---- C:\WINDOWS\system32\eapsvc.dll
2009-04-23 10:31:03 ----N---- C:\WINDOWS\system32\eapqec.dll
2009-04-23 10:31:03 ----N---- C:\WINDOWS\system32\eappprxy.dll
2009-04-23 10:31:03 ----N---- C:\WINDOWS\system32\eapphost.dll
2009-04-23 10:31:03 ----N---- C:\WINDOWS\system32\eappgnui.dll
2009-04-23 10:31:03 ----N---- C:\WINDOWS\system32\eappcfg.dll
2009-04-23 10:31:03 ----N---- C:\WINDOWS\system32\eapp3hst.dll
2009-04-23 10:31:02 ----N---- C:\WINDOWS\system32\eapolqec.dll
2009-04-23 10:30:59 ----N---- C:\WINDOWS\system32\dot3ui.dll
2009-04-23 10:30:59 ----N---- C:\WINDOWS\system32\dot3svc.dll
2009-04-23 10:30:59 ----N---- C:\WINDOWS\system32\dot3msm.dll
2009-04-23 10:30:59 ----N---- C:\WINDOWS\system32\dot3gpclnt.dll
2009-04-23 10:30:59 ----N---- C:\WINDOWS\system32\dot3dlg.dll
2009-04-23 10:30:59 ----N---- C:\WINDOWS\system32\dot3cfg.dll
2009-04-23 10:30:59 ----N---- C:\WINDOWS\system32\dot3api.dll
2009-04-23 10:30:55 ----N---- C:\WINDOWS\system32\dimsroam.dll
2009-04-23 10:30:55 ----N---- C:\WINDOWS\system32\dimsntfy.dll
2009-04-23 10:30:55 ----N---- C:\WINDOWS\system32\dhcpqec.dll
2009-04-23 10:30:52 ----N---- C:\WINDOWS\system32\credssp.dll
2009-04-23 10:30:45 ----N---- C:\WINDOWS\system32\bitsprx4.dll
2009-04-23 10:30:45 ----N---- C:\WINDOWS\system32\azroles.dll
2009-04-23 10:00:58 ----A---- C:\WINDOWS\system32\wuapi.dll.mui
2009-03-18 21:41:42 ----D---- C:\Program Files\Microsoft Silverlight
2009-03-18 21:41:29 ----D---- C:\Program Files\Microsoft Office Outlook Connector
2009-03-18 21:40:32 ----D---- C:\Program Files\Microsoft Sync Framework
2009-03-18 21:39:33 ----A---- C:\WINDOWS\system32\d3dx9_32.dll
2009-03-18 21:39:10 ----D---- C:\Program Files\Microsoft SQL Server Compact Edition
2009-03-18 21:37:15 ----D---- C:\Program Files\Microsoft
2009-03-18 21:36:25 ----D---- C:\Program Files\Windows Live SkyDrive
2009-03-18 21:27:57 ----D---- C:\Program Files\Fichiers communs\Windows Live
======List of files/folders modified in the last 2 months======
2009-05-01 13:36:57 ----D---- C:\WINDOWS\TEMP
2009-05-01 13:30:42 ----D---- C:\WINDOWS\system32\drivers
2009-05-01 13:30:42 ----D---- C:\WINDOWS\system32
2009-05-01 13:30:42 ----D---- C:\WINDOWS
2009-05-01 13:23:29 ----D---- C:\Documents and Settings\All Users\Application Data\Kaspersky Lab
2009-05-01 12:40:17 ----D---- C:\WINDOWS\system32\CatRoot2
2009-05-01 12:38:43 ----HD---- C:\WINDOWS\inf
2009-04-26 22:21:46 ----A---- C:\WINDOWS\SchedLgU.Txt
2009-04-26 20:53:09 ----D---- C:\WINDOWS\Minidump
2009-04-25 23:13:56 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2009-04-25 23:11:26 ----RD---- C:\Program Files
2009-04-25 23:05:42 ----D---- C:\Documents and Settings\All Users\Application Data\Google
2009-04-23 11:23:46 ----RSHDC---- C:\WINDOWS\system32\dllcache
2009-04-23 11:20:23 ----SHD---- C:\WINDOWS\Installer
2009-04-23 11:13:34 ----D---- C:\WINDOWS\Debug
2009-04-23 11:11:52 ----D---- C:\WINDOWS\system32\Setup
2009-04-23 11:11:52 ----D---- C:\WINDOWS\AppPatch
2009-04-23 11:11:52 ----D---- C:\Program Files\Messenger
2009-04-23 11:11:50 ----D---- C:\WINDOWS\system32\wbem
2009-04-23 11:11:48 ----RSD---- C:\WINDOWS\Fonts
2009-04-23 11:10:57 ----D---- C:\WINDOWS\security
2009-04-23 10:59:32 ----D---- C:\WINDOWS\system32\CatRoot
2009-04-23 10:56:54 ----D---- C:\WINDOWS\WinSxS
2009-04-23 10:56:46 ----D---- C:\WINDOWS\ServicePackFiles
2009-04-23 10:56:44 ----D---- C:\WINDOWS\network diagnostic
2009-04-23 10:56:43 ----D---- C:\WINDOWS\ime
2009-04-23 10:56:43 ----D---- C:\WINDOWS\Help
2009-04-23 10:56:17 ----D---- C:\WINDOWS\system32\usmt
2009-04-23 10:56:17 ----D---- C:\WINDOWS\system32\fr-fr
2009-04-23 10:56:11 ----D---- C:\WINDOWS\peernet
2009-04-23 10:56:11 ----D---- C:\Program Files\Movie Maker
2009-04-23 10:52:09 ----D---- C:\WINDOWS\system32\Restore
2009-04-23 10:52:09 ----D---- C:\WINDOWS\system32\npp
2009-04-23 10:52:07 ----D---- C:\WINDOWS\msagent
2009-04-23 10:52:06 ----D---- C:\WINDOWS\srchasst
2009-04-23 10:52:05 ----D---- C:\Program Files\NetMeeting
2009-04-23 10:52:03 ----D---- C:\WINDOWS\system32\Com
2009-04-23 10:52:01 ----D---- C:\Program Files\Windows Media Player
2009-04-23 10:52:00 ----D---- C:\Program Files\Windows NT
2009-04-23 10:52:00 ----D---- C:\Program Files\Outlook Express
2009-04-23 10:51:56 ----D---- C:\Program Files\Fichiers communs\System
2009-04-23 10:51:33 ----D---- C:\WINDOWS\system32\oobe
2009-04-23 10:51:31 ----D---- C:\WINDOWS\system
2009-04-23 10:47:43 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2009-04-23 10:39:42 ----D---- C:\WINDOWS\EHome
2009-04-23 10:01:17 ----D---- C:\WINDOWS\SoftwareDistribution
2009-04-23 10:00:32 ----SD---- C:\WINDOWS\Downloaded Program Files
2009-04-17 12:27:27 ----A---- C:\WINDOWS\NeroDigital.ini
2009-04-14 13:27:17 ----SD---- C:\Documents and Settings\Nicolas\Application Data\Microsoft
2009-04-09 23:39:37 ----D---- C:\Program Files\Fichiers communs
2009-04-09 23:39:35 ----D---- C:\Documents and Settings\All Users\Application Data\Skype
2009-04-09 23:38:06 ----D---- C:\Documents and Settings\Nicolas\Application Data\skypePM
2009-03-21 00:19:41 ----D---- C:\Documents and Settings\Nicolas\Application Data\LimeWire
2009-03-19 21:10:24 ----RSD---- C:\WINDOWS\assembly
2009-03-19 21:09:26 ----D---- C:\WINDOWS\Microsoft.NET
2009-03-18 21:41:07 ----DC---- C:\WINDOWS\system32\DRVSTORE
2009-03-18 21:41:05 ----D---- C:\Program Files\Windows Live
2009-03-18 21:40:17 ----SD---- C:\Documents and Settings\All Users\Application Data\Microsoft
2009-03-18 21:39:35 ----D---- C:\WINDOWS\system32\DirectX
2009-03-18 21:36:49 ----D---- C:\Program Files\Fichiers communs\Microsoft Shared
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R3 CLEDX;Team H2O CLEDX service; C:\WINDOWS\system32\DRIVERS\cledx.sys [2005-05-09 33792]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\WINDOWS\System32\Drivers\GEARAspiWDM.sys [2008-04-17 15464]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\System32\DRIVERS\HDAudBus.sys [2005-01-07 138752]
R3 hidusb;Pilote de classe HID Microsoft; C:\WINDOWS\System32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 mouhid;Pilote HID de souris; C:\WINDOWS\System32\DRIVERS\mouhid.sys [2003-04-24 12288]
R3 usbehci;Pilote miniport de contrôleur hôte amélioré USB 2.0 Microsoft; C:\WINDOWS\System32\DRIVERS\usbehci.sys [2008-04-13 30208]
R3 usbhub;Concentrateur USB2; C:\WINDOWS\System32\DRIVERS\usbhub.sys [2008-04-13 59520]
R3 usbuhci;Pilote miniport de contrôleur hôte universel USB Microsoft; C:\WINDOWS\System32\DRIVERS\usbuhci.sys [2008-04-13 20608]
S1 intelppm;Pilote de processeur Intel; C:\WINDOWS\System32\DRIVERS\intelppm.sys [2008-04-14 40576]
S1 kbdhid;Pilote HID de clavier; C:\WINDOWS\System32\DRIVERS\kbdhid.sys [2008-04-14 14720]
S1 klif;Klif; \??\C:\WINDOWS\system32\drivers\klif.sys []
S2 fssfltr;FssFltr; C:\WINDOWS\system32\DRIVERS\fssfltr_tdi.sys [2009-02-06 55152]
S2 RVIEGVST;VSC VST Engine; \??\C:\Program Files\Roland\Virtual Sound Canvas VST\RVIEg01VST.sys []
S3 AgereSoftModem;Agere Systems Soft Modem; C:\WINDOWS\system32\DRIVERS\AGRSM.sys [2007-10-30 1201632]
S3 ahju54mi;ahju54mi; C:\WINDOWS\system32\drivers\ahju54mi.sys []
S3 ak1avs;ak1avs; C:\WINDOWS\System32\Drivers\ak1avs.sys [2006-09-13 25088]
S3 ak1usb;ak1usb; C:\WINDOWS\System32\Drivers\ak1usb.sys [2006-09-13 84992]
S3 catchme;catchme; \??\C:\ComboFix\catchme.sys []
S3 CCDECODE;Décodeur sous-titre fermé; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
S3 E100B;Intel(R) PRO Network Connection Driver; C:\WINDOWS\System32\DRIVERS\e100b325.sys [2006-10-31 165760]
S3 HdAudAddService;Microsoft UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\HdAudio.sys [2005-01-07 145920]
S3 ialm;ialm; C:\WINDOWS\System32\DRIVERS\ialmnt5.sys [2006-02-07 1399615]
S3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2007-03-01 4484608]
S3 klim5;Kaspersky Anti-Virus NDIS Filter; C:\WINDOWS\system32\DRIVERS\klim5.sys [2007-04-04 24344]
S3 MSTEE;Convertisseur en T/site-à-site de répartition Microsoft; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504]
S3 NABTSFEC;Codec NABTS/FEC VBI; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
S3 NdisIP;Connection TV/vidéo Microsoft; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-13 10880]
S3 QCMerced;Logitech QuickCam Express; C:\WINDOWS\system32\DRIVERS\LVCM.sys [2002-09-20 472396]
S3 SDVC04;USB DVC Service; C:\WINDOWS\System32\Drivers\SDVC04.sys [2003-05-22 42413]
S3 SLIP;Détrameur décalage BDA; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-13 11136]
S3 SONYPVU1;Pilote de filtrage Sony USB (SONYPVU1); C:\WINDOWS\system32\DRIVERS\SONYPVU1.SYS [2001-08-17 7552]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-13 15232]
S3 USBAAPL;Apple Mobile USB Driver; C:\WINDOWS\System32\Drivers\usbaapl.sys []
S3 usbaudio;USB Audio Driver (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2008-04-13 60032]
S3 usbccgp;Pilote parent générique USB Microsoft; C:\WINDOWS\System32\DRIVERS\usbccgp.sys [2008-04-13 32128]
S3 usbprint;Classe d'imprimantes USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Pilote de scanneur USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 USBSTOR;Pilote de stockage de masse USB; C:\WINDOWS\System32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 WSTCODEC;Codec Teletext standard; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
S2 AVP;Kaspersky Anti-Virus 7.0; C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe [2007-06-28 218376]
S2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2008-12-28 152984]
S2 MDM;Machine Debug Manager; C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-19 322120]
S2 SeaPort;SeaPort; C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2009-01-14 226656]
S2 winvnc;VNC Server; C:\Program Files\UltraVNC\WinVNC.exe [2005-08-06 974848]
S3 aspnet_state;Service d'état ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2007-10-24 33800]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2007-10-24 70144]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe [2007-10-09 36864]
S3 fsssvc;Windows Live Contrôle parental; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2009-02-06 533360]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2007-10-11 864256]
S3 iPod Service;Service de l’iPod; C:\Program Files\iPod\bin\iPodService.exe [2008-10-01 536872]
S3 MSSQL$SONY_MEDIAMGR;MSSQL$SONY_MEDIAMGR; C:\Program Files\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe [2002-12-17 7520337]
S3 MSSQLServerADHelper;MSSQLServerADHelper; C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqladhlp.exe [2002-12-17 66112]
S3 ose;Office Source Engine; C:\Program Files\Fichiers communs\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 SQLAgent$SONY_MEDIAMGR;SQLAgent$SONY_MEDIAMGR; C:\Program Files\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlagent.EXE [2002-12-17 311872]
S3 WMPNetworkSvc;Service Partage réseau du Lecteur Windows Media; C:\Program Files\Windows Media Player\WMPNetwk.exe [2006-11-03 918016]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe []
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2007-10-11 122880]
-----------------EOF-----------------
info.txt logfile of random's system information tool 1.06 2009-05-01 12:42:26
======Uninstall list======
-->C:\Program Files\Ahead\nero\uninstall\UNNERO.exe /UNINSTALL
-->C:\Program Files\Fichiers communs\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0
-->C:\WINDOWS\UNNeroVision.exe /UNINSTALL
-->C:\WINDOWS\UNNMP.exe /UNINSTALL
-->MsiExec.exe /I{403EF592-953B-4794-BCEF-ECAB835C2095}
-->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
Adobe Acrobat and Reader 8.1.2 Security Update 1 (KB403742)-->MsiExec.exe /X{6846389C-BAC0-4374-808E-B120F86AF5D7}
Adobe Color Common Settings-->C:\Program Files\Fichiers communs\Adobe\Installers\6c8e2cb4fd241c55406016127a6ab2e\Setup.exe
Adobe Color Common Settings-->MsiExec.exe /I{6D4AC5A4-4CF9-4F90-8111-B9B53CE257BF}
Adobe ExtendScript Toolkit 2-->C:\Program Files\Fichiers communs\Adobe\Installers\3e054d2218e7aa282c2369d939e58ff\Setup.exe
Adobe ExtendScript Toolkit 2-->MsiExec.exe /I{24D7346D-D4B4-45E8-98EA-75EC14B42DD8}
Adobe Flash Player 10 Plugin-->C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
Adobe Flash Player ActiveX-->C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
Adobe Reader 8.1.2 - Français-->MsiExec.exe /I{AC76BA86-7AD7-1036-7B44-A81200000003}
Adobe Setup-->MsiExec.exe /I{64C1FA9A-FA94-4B6E-B3E4-8573738E4AD1}
Adobe Setup-->MsiExec.exe /I{B3C02EC1-A7B0-4987-9A43-8789426AAA7D}
Agere Systems PCI Soft Modem-->agrsmdel
AKAI professional VST Collection v1.0-->C:\PROGRA~1\STEINB~1\VSTPLU~1\Akai\UNWISE.EXE C:\PROGRA~1\STEINB~1\VSTPLU~1\Akai\INSTALL.LOG
Antares Auto-Tune 3.06 DirectX-->C:\PROGRA~1\ANTARE~1\ANTARE~1\UNWISE.EXE C:\PROGRA~1\ANTARE~1\ANTARE~1\INSTALL.LOG
Antares Autotune DX v4.12-->C:\PROGRA~1\Antares\AUTOTU~1\ANTARE~1\UNWISE.EXE C:\PROGRA~1\Antares\AUTOTU~1\ANTARE~1\INSTALL.LOG
Antares Kantos v1.0-->C:\PROGRA~1\Antares\kantos\UNINST~1\UNWISE.EXE C:\PROGRA~1\Antares\kantos\UNINST~1\INSTALL.LOG
Antares Microphone Modeler - ZONE-->C:\PROGRA~1\Antares\MicMod\UNWISE.EXE C:\PROGRA~1\Antares\MicMod\INSTALL.LOG
Apple Software Update-->MsiExec.exe /I{6956856F-B6B3-4BE0-BA0B-8F495BE32033}
Applied Accoustics String Studio VS 1 VST DX v1.0-->C:\PROGRA~1\AAS\STRING~1.0\UNWISE.EXE C:\PROGRA~1\AAS\STRING~1.0\INSTALL.LOG
Applied Accoustics UltraAnalog VA-1 v1.01-->C:\PROGRA~1\AAS\ULTRAA~1.0\UNWISE.EXE C:\PROGRA~1\AAS\ULTRAA~1.0\INSTALL.LOG
Archiveur WinRAR-->C:\Program Files\WinRAR\uninstall.exe
Assistant de connexion Windows Live-->MsiExec.exe /I{DCE8CD14-FBF5-4464-B9A4-E18E473546C7}
Barre d'outils MSN-->C:\Program Files\MSN Toolbar\01.01.2607.0\fr\mtbs.exe c
Bonjour-->MsiExec.exe /I{8A25392D-C5D2-4E79-A2BD-C15DDC5B0959}
Choice Guard-->MsiExec.exe /I{8FFC5648-FAF8-43A3-BC8F-42BA1E275C4E}
Codeur Windows Media Série 9-->msiexec.exe /I {E38C00D0-A68B-4318-A8A6-F7D4B5B1DF0E}
Codeur Windows Media Série 9-->MsiExec.exe /I{E38C00D0-A68B-4318-A8A6-F7D4B5B1DF0E}
Correctif pour Lecteur Windows Media 11 (KB939683)-->"C:\WINDOWS\$NtUninstallKB939683$\spuninst\spuninst.exe"
Correctif pour Windows Internet Explorer 7 (KB947864)-->"C:\WINDOWS\ie7updates\KB947864-IE7\spuninst\spuninst.exe"
Directory Compare-->C:\WINDOWS\uninst.exe -f"C:\Program Files\Juan M. Aguirregabiria\Directory Compare\DeIsL1.isu" -c"C:\Program Files\Juan M. Aguirregabiria\Directory Compare\_ISREG32.DLL"
DivX Web Player-->C:\Program Files\DivX\DivXWebPlayerUninstall.exe /PLUGIN
FFB - Facebook Friend Bomber-->MsiExec.exe /I{E65F23A5-9B6F-4119-A4B3-C50F101E686D}
FriendBlasterPro-->"C:\Program Files\FriendBlasterPro\unins000.exe"
Galerie de photos Windows Live-->MsiExec.exe /X{44E54A81-9D91-4AA1-9417-80AFF134F5FF}
Hotfix for Microsoft .NET Framework 3.0 (KB932471)-->C:\WINDOWS\system32\msiexec.exe /promptrestart /uninstall {ECD292A0-0347-4244-8C24-5DBCE990FB40} /package {BAF78226-3200-4DB4-BE33-4D922A799840}
Hotfix for Windows Media Format 11 SDK (KB929399)-->"C:\WINDOWS\$NtUninstallKB929399$\spuninst\spuninst.exe"
HyperCam 2-->"C:\Program Files\HyCam2\UnHyCam2.exe"
Impulse v. 3.10-->C:\Program Files\Steinberg\VstPlugins\ImpulseUninstal.exe
Installation Windows Live-->C:\Program Files\Windows Live\Installer\wlarp.exe
Installation Windows Live-->MsiExec.exe /I{7370DF47-B4F9-4279-BFC3-3F09919F720D}
Intel(R) Graphics Media Accelerator Driver-->RUNDLL32.EXE C:\WINDOWS\System32\ialmrem.dll,UninstallW2KIGfx2ID PCI\VEN_8086&DEV_2782 PCI\VEN_8086&DEV_2582
Intel(R) PRO Network Connections 11.2.0.69-->MsiExec.exe /i{2222B364-0854-4265-B32E-A142DB9DC7BB} ARPREMOVE=1
iTunes-->MsiExec.exe /I{DDDE0BE3-0CBE-4BF6-B75A-E3F69C947843}
Java(TM) 6 Update 11-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216011FF}
Java(TM) 6 Update 6-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160060}
Junk Mail filter update-->MsiExec.exe /I{4DE3E3D9-AE81-45DE-9195-3015F7B1DBF3}
Kaspersky Anti-Virus 7.0-->MsiExec.exe /I{4B9BB601-13E9-4042-A3BC-E7955BF4A98F}
Kaspersky Anti-Virus 7.0-->MsiExec.exe /I{4B9BB601-13E9-4042-A3BC-E7955BF4A98F}
Kit de Connexion Alice ADSL-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{3A0221AD-D30B-4320-8F9B-1D0F0E6C6843}\setup.exe" -l0x40c ControlPanel
KORG Legacy Collection - DIGITAL EDITION v1.0.0 -->C:\PROGRA~1\KORG\KORGLE~1\UNWISE.EXE C:\PROGRA~1\KORG\KORGLE~1\INSTALL.LOG
Korg Legacy Collection v1.0.0.2-->C:\PROGRA~1\KORG\KORGLE~2\UNWISE.EXE C:\PROGRA~1\KORG\KORGLE~2\INSTALL.LOG
Le Centre de Contrôle de Licences de Syncrosoft-->C:\PROGRA~1\SYNCRO~1\UNWISE.EXE C:\PROGRA~1\SYNCRO~1\INSTALL.LOG
Lecteur Windows Media 11-->"C:\Program Files\Windows Media Player\Setup_wm.exe" /Uninstall
LG USB Modem driver-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\10\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{C3ABE126-2BB2-4246-BFE1-6797679B3579}\setup.exe" -l0x40c -removeonly
Microsoft .NET Framework 1.1 French Language Pack-->MsiExec.exe /X{9A394342-4A68-4EBA-85A6-55B559F4E700}
Microsoft .NET Framework 1.1 Hotfix (KB928366)-->"C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe" "C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\M928366\M928366Uninstall.msp"
Microsoft .NET Framework 1.1-->msiexec.exe /X {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 1.1-->MsiExec.exe /X{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 2.0 Service Pack 1 Language Pack - FRA-->MsiExec.exe /I{3F7924B9-D148-3141-87B1-68F36043A940}
Microsoft .NET Framework 2.0 Service Pack 1-->MsiExec.exe /I{B508B3F1-A24A-32C0-B310-85786919EF28}
Microsoft .NET Framework 3.0 Service Pack 1 Language Pack - FRA-->MsiExec.exe /I{511DF669-2930-30C0-8EB6-552887E29EC8}
Microsoft .NET Framework 3.0 Service Pack 1-->MsiExec.exe /I{2BA00471-0328-3743-93BD-FA813353A783}
Microsoft Compression Client Pack 1.0 for Windows XP-->"C:\WINDOWS\$NtUninstallMSCompPackV1$\spuninst\spuninst.exe"
Microsoft Internationalized Domain Names Mitigation APIs-->"C:\WINDOWS\$NtServicePackUninstallIDNMitigationAPIs$\spuninst\spuninst.exe"
Microsoft National Language Support Downlevel APIs-->"C:\WINDOWS\$NtServicePackUninstallNLSDownlevelMapping$\spuninst\spuninst.exe"
Microsoft Office Live Add-in 1.3-->MsiExec.exe /I{57F0ED40-8F11-41AA-B926-4A66D0D1A9CC}
Microsoft Office Outlook Connector-->MsiExec.exe /I{95120000-0120-040C-0000-0000000FF1CE}
Microsoft Office Professional Edition 2003-->MsiExec.exe /I{9011040C-6000-11D3-8CFE-0150048383C9}
Microsoft Search Enhancement Pack-->MsiExec.exe /I{9C9CEB9D-53FD-49A7-85D2-FE674F72F24E}
Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
Microsoft SQL Server 2005 Compact Edition [ENU]-->MsiExec.exe /I{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}
Microsoft SQL Server Desktop Engine (SONY_MEDIAMGR)-->MsiExec.exe /X{E09B48B5-E141-427A-AB0C-D3605127224A}
Microsoft Sync Framework Runtime Native v1.0 (x86)-->MsiExec.exe /I{8A74E887-8F0F-4017-AF53-CBA42211AAA5}
Microsoft Sync Framework Services Native v1.0 (x86)-->MsiExec.exe /I{BD64AF4A-8C80-4152-AD77-FCDDF05208AB}
Microsoft User-Mode Driver Framework Feature Pack 1.0-->"C:\WINDOWS\$NtUninstallWudf01000$\spuninst\spuninst.exe"
MIDI Mate-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{2669D000-C182-4312-B736-C9D7FCFD72D5}\Setup.exe"
Mise à jour de sécurité pour Lecteur Windows Media 11 (KB936782)-->"C:\WINDOWS\$NtUninstallKB936782_WMP11$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB938127)-->"C:\WINDOWS\ie7updates\KB938127-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB942615)-->"C:\WINDOWS\ie7updates\KB942615-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB944533)-->"C:\WINDOWS\ie7updates\KB944533-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB923789)-->C:\WINDOWS\system32\MacroMed\Flash\genuinst.exe C:\WINDOWS\system32\MacroMed\Flash\KB923789.inf
Mise à jour de sécurité pour Windows XP (KB941569)-->"C:\WINDOWS\$NtUninstallKB941569$\spuninst\spuninst.exe"
Mozilla Firefox (3.0.9)-->C:\Program Files\Mozilla Firefox\uninstall\helper.exe
MSN Pictures Displayer 4.6-->"C:\Program Files\MSN Pictures Displayer\MSN Pictures Displayer.exe" /U
MSVCRT-->MsiExec.exe /I{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
MSXML 6.0 Parser (KB933579)-->MsiExec.exe /I{0A869A65-8C94-4F7C-A5C7-972D3C8CED9E}
Native Instruments - Audio Kontrol 1 Driver-->C:\Program Files\Native Instruments\Audio Kontrol 1 Driver\uninst.exe Software\Native Instruments\Audio Kontrol 1 Driver\Setup
Native Instruments Audio Kontrol 1-->C:\PROGRA~1\NATIVE~1\AUDIOK~1\UNWISE.EXE C:\PROGRA~1\NATIVE~1\AUDIOK~1\INSTALL.LOG
Native Instruments Battery v2.0-->C:\PROGRA~1\NATIVE~1\BATTER~1\UNWISE.EXE C:\PROGRA~1\NATIVE~1\BATTER~1\INSTALL.LOG
Native Instruments FM7-->C:\PROGRA~1\NATIVE~1\Fm7\UNWISE.EXE C:\PROGRA~1\NATIVE~1\Fm7\INSTALL.LOG
Neodynium Demo-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{913156EC-8565-42CC-A2CB-F49BD6AC397F}\Setup.exe" -l0x9
Nero Suite-->C:\Program Files\Fichiers communs\Ahead\Uninstall\Setup.exe /uninstall
NI Service Center-->C:\PROGRA~1\NATIVE~1\NISERV~1\UNWISE.EXE C:\PROGRA~1\NATIVE~1\NISERV~1\INSTALL.LOG
Orange Vocoder v1.1.2-->C:\PROGRA~1\STEINB~1\VSTPLU~1\UNWISE.EXE C:\PROGRA~1\STEINB~1\VSTPLU~1\Orange.LOG
Outil de téléchargement Windows Live-->MsiExec.exe /I{205C6BDD-7B73-42DE-8505-9A093F35A238}
Package de base Microsoft de service de chiffrement pour cartes à puce-->"C:\WINDOWS\$NtUninstallbasecsp$\spuninst\spuninst.exe"
QuickTime-->MsiExec.exe /I{8DC42D05-680B-41B0-8878-6C14D24602DB}
RealPlayer-->C:\Program Files\Fichiers communs\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0
Realtek High Definition Audio Driver-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}\Setup.exe" -l0x40c -removeonly
Reason 3.0-->"C:\Program Files\Propellerhead\Reason\Uninstall Reason\unins000.exe"
reFX Vanguard VSTi-->"C:\Program Files\Steinberg\VstPlugins\Vanguard\Uninstall\unins000.exe"
Samsung Camcorder USB-D04 Capture Driver-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{A94AAFAF-9FBA-43F9-A79C-70AC38761811}\Setup.exe" -l0x9 customuninstall
Samsung DVC Media 6.1-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{01DEE483-F613-4CB0-BC48-93AA2C1AD12F}\setup.exe" -l0x9
Sarbacane 2-->C:\Program Files\Goto software\Sarbacane 2\uninst.exe
Segoe UI-->MsiExec.exe /I{A1F66FC9-11EE-4F2F-98C9-16F8D1E69FB7}
Sony Media Manager 2.0-->MsiExec.exe /X{B13F5727-F12F-4253-B6AD-26AFA880B709}
Sony Vegas 6.0d-->MsiExec.exe /X{4F68B605-2F2B-42A8-8689-0CA7E67797B0}
Steinberg Cubase SX v3.1.1.944-->C:\PROGRA~1\STEINB~1\CUBASE~1\UNWISE.EXE C:\PROGRA~1\STEINB~1\CUBASE~1\INSTALL.LOG
SyncroSoft Emu (Remove only)-->C:\Program Files\SyncroSoft\Pos\H2O\Uninst.exe
TC MegaReverb TRIAL-->C:\PROGRA~1\DIGIDE~1\Dae\Plug-Ins\UNINST~1\UNWISE.EXE C:\PROGRA~1\DIGIDE~1\Dae\Plug-Ins\UNINST~1\INSTALL.LOG
Timeworks Millenium Pack-->C:\Audio\TIMEWO~1\UNWISE.EXE C:\Audio\TIMEWO~1\INSTALL.LOG
UltraVNC v1.0.1-->"C:\Program Files\UltraVNC\unins000.exe"
VideoLAN VLC media player 0.8.6f-->C:\Program Files\VideoLAN\VLC\uninstall.exe
Virtual Sound Canvas VST-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{DA22A6BB-10B5-4595-BD59-1AD4023C8536}\setup.exe" MAINTENANCE_XXX
Windows Imaging Component-->"C:\WINDOWS\$NtUninstallWIC$\spuninst\spuninst.exe"
Windows Live Call-->MsiExec.exe /I{82C7B308-0BDD-49D8-8EA5-9CD3A3F9DF41}
Windows Live Communications Platform-->MsiExec.exe /I{3B4E636E-9D65-4D67-BA61-189800823F52}
Windows Live Contrôle parental-->MsiExec.exe /X{D6A2DDE3-9D7C-412C-932A-756580D29919}
Windows Live Mail-->MsiExec.exe /I{63DC2DA0-2A6C-4C38-9249-B75395458657}
Windows Live Messenger-->MsiExec.exe /X{059C042E-796A-4ACC-A81A-ECC2010BB78C}
Windows Live Sync-->MsiExec.exe /X{9C5EB781-0D37-44B8-9A58-77B3E4BF5F5E}
Windows Live Toolbar-->MsiExec.exe /X{F7D27C70-90F5-49B9-B188-0A133C0CE353}
Windows Live Writer-->MsiExec.exe /X{2231CE39-B963-4B9D-823A-F412ECA637B1}
Windows Media Format 11 runtime-->"C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
Windows Media Format 11 runtime-->"C:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe"
Windows Media Format SDK Hotfix - KB891122-->"C:\WINDOWS\$NtUninstallKB891122$\spuninst\spuninst.exe"
Windows Media Player 11-->"C:\WINDOWS\$NtUninstallwmp11$\spuninst\spuninst.exe"
Windows Presentation Foundation-->MsiExec.exe /X{BAF78226-3200-4DB4-BE33-4D922A799840}
Windows XP Service Pack 3-->"C:\WINDOWS\$NtServicePackUninstall$\spuninst\spuninst.exe"
Xilisoft Video Converter 3-->C:\Program Files\Xilisoft\Video Converter 3\Uninstall.exe
XML Paper Specification Shared Components Language Pack 1.0-->"C:\WINDOWS\$NtUninstallXPSEPSCLP$\spuninst\spuninst.exe"
YFB - Youtube Friend Bomber-->MsiExec.exe /I{FB249035-FD3C-4AB9-AF0E-3DD03CBFED71}
======Security center information======
AV: Kaspersky Anti-Virus (outdated)
======System event log======
Computer Name: PC
Event Code: 7036
Message: Le service Compatibilité avec le Changement rapide d'utilisateur est entré dans l'état : en cours d'exécution.
Record Number: 21392
Source Name: Service Control Manager
Time Written: 20090316202409.000000+060
Event Type: Informations
User:
Computer Name: PC
Event Code: 7035
Message: Un contrôle Démarrer a correctement été envoyé au service Compatibilité avec le Changement rapide d'utilisateur.
Record Number: 21391
Source Name: Service Control Manager
Time Written: 20090316202409.000000+060
Event Type: Informations
User: AUTORITE NT\SYSTEM
Computer Name: PC
Event Code: 7036
Message: Le service Services Terminal Server est entré dans l'état : en cours d'exécution.
Record Number: 21390
Source Name: Service Control Manager
Time Written: 20090316195455.000000+060
Event Type: Informations
User:
Computer Name: PC
Event Code: 7035
Message: Un contrôle Démarrer a correctement été envoyé au service Services Terminal Server.
Record Number: 21389
Source Name: Service Control Manager
Time Written: 20090316195455.000000+060
Event Type: Informations
User: AUTORITE NT\SYSTEM
Computer Name: PC
Event Code: 7036
Message: Le service Carte de performance WMI est entré dans l'état : arrêté.
Record Number: 21388
Source Name: Service Control Manager
Time Written: 20090316195418.000000+060
Event Type: Informations
User:
=====Application event log=====
Computer Name: PC
Event Code: 1
Message:
Record Number: 5
Source Name: Bonjour Service
Time Written: 20090425225835.000000+120
Event Type: Informations
User:
Computer Name: PC
Event Code: 0
Message:
Record Number: 4
Source Name: iPod Service
Time Written: 20090425225331.000000+120
Event Type: Informations
User:
Computer Name: PC
Event Code: 1800
Message: Le service Centre de sécurité Windows a démarré.
Record Number: 3
Source Name: SecurityCenter
Time Written: 20090425225328.000000+120
Event Type: Informations
User:
Computer Name: PC
Event Code: 1
Message:
Record Number: 2
Source Name: Bonjour Service
Time Written: 20090425225327.000000+120
Event Type: Informations
User:
Computer Name: PC
Event Code: 0
Message:
Record Number: 1
Source Name: SeaPort
Time Written: 20090425225327.000000+120
Event Type: Informations
User:
======Environment variables======
"ComSpec"=%SystemRoot%\system32\cmd.exe
"Path"=%systemroot%\system32;%systemroot%;%systemroot%\system32\wbem;C:\Program Files\Intel\DMIX;C:\Program Files\QuickTime\QTSystem;C:\Program Files\Microsoft SQL Server\80\Tools\Binn\;C:\Program Files\Fichiers communs\Ulead Systems\MPEG;C:\Program Files\QuickTime\QTSystem\
"windir"=%SystemRoot%
"OS"=Windows_NT
"PROCESSOR_ARCHITECTURE"=x86
"PROCESSOR_LEVEL"=15
"PROCESSOR_IDENTIFIER"=x86 Family 15 Model 3 Stepping 4, GenuineIntel
"PROCESSOR_REVISION"=0304
"NUMBER_OF_PROCESSORS"=2
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"FP_NO_HOST_CHECK"=NO
"CLASSPATH"=.;C:\Program Files\Java\jre1.6.0_06\lib\ext\QTJava.zip
"QTJAVA"=C:\Program Files\Java\jre1.6.0_06\lib\ext\QTJava.zip
"SAFEBOOT_OPTION"=MINIMAL
-----------------EOF-----------------
======Uninstall list======
-->C:\Program Files\Ahead\nero\uninstall\UNNERO.exe /UNINSTALL
-->C:\Program Files\Fichiers communs\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0
-->C:\WINDOWS\UNNeroVision.exe /UNINSTALL
-->C:\WINDOWS\UNNMP.exe /UNINSTALL
-->MsiExec.exe /I{403EF592-953B-4794-BCEF-ECAB835C2095}
-->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
Adobe Acrobat and Reader 8.1.2 Security Update 1 (KB403742)-->MsiExec.exe /X{6846389C-BAC0-4374-808E-B120F86AF5D7}
Adobe Color Common Settings-->C:\Program Files\Fichiers communs\Adobe\Installers\6c8e2cb4fd241c55406016127a6ab2e\Setup.exe
Adobe Color Common Settings-->MsiExec.exe /I{6D4AC5A4-4CF9-4F90-8111-B9B53CE257BF}
Adobe ExtendScript Toolkit 2-->C:\Program Files\Fichiers communs\Adobe\Installers\3e054d2218e7aa282c2369d939e58ff\Setup.exe
Adobe ExtendScript Toolkit 2-->MsiExec.exe /I{24D7346D-D4B4-45E8-98EA-75EC14B42DD8}
Adobe Flash Player 10 Plugin-->C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
Adobe Flash Player ActiveX-->C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
Adobe Reader 8.1.2 - Français-->MsiExec.exe /I{AC76BA86-7AD7-1036-7B44-A81200000003}
Adobe Setup-->MsiExec.exe /I{64C1FA9A-FA94-4B6E-B3E4-8573738E4AD1}
Adobe Setup-->MsiExec.exe /I{B3C02EC1-A7B0-4987-9A43-8789426AAA7D}
Agere Systems PCI Soft Modem-->agrsmdel
AKAI professional VST Collection v1.0-->C:\PROGRA~1\STEINB~1\VSTPLU~1\Akai\UNWISE.EXE C:\PROGRA~1\STEINB~1\VSTPLU~1\Akai\INSTALL.LOG
Antares Auto-Tune 3.06 DirectX-->C:\PROGRA~1\ANTARE~1\ANTARE~1\UNWISE.EXE C:\PROGRA~1\ANTARE~1\ANTARE~1\INSTALL.LOG
Antares Autotune DX v4.12-->C:\PROGRA~1\Antares\AUTOTU~1\ANTARE~1\UNWISE.EXE C:\PROGRA~1\Antares\AUTOTU~1\ANTARE~1\INSTALL.LOG
Antares Kantos v1.0-->C:\PROGRA~1\Antares\kantos\UNINST~1\UNWISE.EXE C:\PROGRA~1\Antares\kantos\UNINST~1\INSTALL.LOG
Antares Microphone Modeler - ZONE-->C:\PROGRA~1\Antares\MicMod\UNWISE.EXE C:\PROGRA~1\Antares\MicMod\INSTALL.LOG
Apple Software Update-->MsiExec.exe /I{6956856F-B6B3-4BE0-BA0B-8F495BE32033}
Applied Accoustics String Studio VS 1 VST DX v1.0-->C:\PROGRA~1\AAS\STRING~1.0\UNWISE.EXE C:\PROGRA~1\AAS\STRING~1.0\INSTALL.LOG
Applied Accoustics UltraAnalog VA-1 v1.01-->C:\PROGRA~1\AAS\ULTRAA~1.0\UNWISE.EXE C:\PROGRA~1\AAS\ULTRAA~1.0\INSTALL.LOG
Archiveur WinRAR-->C:\Program Files\WinRAR\uninstall.exe
Assistant de connexion Windows Live-->MsiExec.exe /I{DCE8CD14-FBF5-4464-B9A4-E18E473546C7}
Barre d'outils MSN-->C:\Program Files\MSN Toolbar\01.01.2607.0\fr\mtbs.exe c
Bonjour-->MsiExec.exe /I{8A25392D-C5D2-4E79-A2BD-C15DDC5B0959}
Choice Guard-->MsiExec.exe /I{8FFC5648-FAF8-43A3-BC8F-42BA1E275C4E}
Codeur Windows Media Série 9-->msiexec.exe /I {E38C00D0-A68B-4318-A8A6-F7D4B5B1DF0E}
Codeur Windows Media Série 9-->MsiExec.exe /I{E38C00D0-A68B-4318-A8A6-F7D4B5B1DF0E}
Correctif pour Lecteur Windows Media 11 (KB939683)-->"C:\WINDOWS\$NtUninstallKB939683$\spuninst\spuninst.exe"
Correctif pour Windows Internet Explorer 7 (KB947864)-->"C:\WINDOWS\ie7updates\KB947864-IE7\spuninst\spuninst.exe"
Directory Compare-->C:\WINDOWS\uninst.exe -f"C:\Program Files\Juan M. Aguirregabiria\Directory Compare\DeIsL1.isu" -c"C:\Program Files\Juan M. Aguirregabiria\Directory Compare\_ISREG32.DLL"
DivX Web Player-->C:\Program Files\DivX\DivXWebPlayerUninstall.exe /PLUGIN
FFB - Facebook Friend Bomber-->MsiExec.exe /I{E65F23A5-9B6F-4119-A4B3-C50F101E686D}
FriendBlasterPro-->"C:\Program Files\FriendBlasterPro\unins000.exe"
Galerie de photos Windows Live-->MsiExec.exe /X{44E54A81-9D91-4AA1-9417-80AFF134F5FF}
Hotfix for Microsoft .NET Framework 3.0 (KB932471)-->C:\WINDOWS\system32\msiexec.exe /promptrestart /uninstall {ECD292A0-0347-4244-8C24-5DBCE990FB40} /package {BAF78226-3200-4DB4-BE33-4D922A799840}
Hotfix for Windows Media Format 11 SDK (KB929399)-->"C:\WINDOWS\$NtUninstallKB929399$\spuninst\spuninst.exe"
HyperCam 2-->"C:\Program Files\HyCam2\UnHyCam2.exe"
Impulse v. 3.10-->C:\Program Files\Steinberg\VstPlugins\ImpulseUninstal.exe
Installation Windows Live-->C:\Program Files\Windows Live\Installer\wlarp.exe
Installation Windows Live-->MsiExec.exe /I{7370DF47-B4F9-4279-BFC3-3F09919F720D}
Intel(R) Graphics Media Accelerator Driver-->RUNDLL32.EXE C:\WINDOWS\System32\ialmrem.dll,UninstallW2KIGfx2ID PCI\VEN_8086&DEV_2782 PCI\VEN_8086&DEV_2582
Intel(R) PRO Network Connections 11.2.0.69-->MsiExec.exe /i{2222B364-0854-4265-B32E-A142DB9DC7BB} ARPREMOVE=1
iTunes-->MsiExec.exe /I{DDDE0BE3-0CBE-4BF6-B75A-E3F69C947843}
Java(TM) 6 Update 11-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216011FF}
Java(TM) 6 Update 6-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160060}
Junk Mail filter update-->MsiExec.exe /I{4DE3E3D9-AE81-45DE-9195-3015F7B1DBF3}
Kaspersky Anti-Virus 7.0-->MsiExec.exe /I{4B9BB601-13E9-4042-A3BC-E7955BF4A98F}
Kaspersky Anti-Virus 7.0-->MsiExec.exe /I{4B9BB601-13E9-4042-A3BC-E7955BF4A98F}
Kit de Connexion Alice ADSL-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{3A0221AD-D30B-4320-8F9B-1D0F0E6C6843}\setup.exe" -l0x40c ControlPanel
KORG Legacy Collection - DIGITAL EDITION v1.0.0 -->C:\PROGRA~1\KORG\KORGLE~1\UNWISE.EXE C:\PROGRA~1\KORG\KORGLE~1\INSTALL.LOG
Korg Legacy Collection v1.0.0.2-->C:\PROGRA~1\KORG\KORGLE~2\UNWISE.EXE C:\PROGRA~1\KORG\KORGLE~2\INSTALL.LOG
Le Centre de Contrôle de Licences de Syncrosoft-->C:\PROGRA~1\SYNCRO~1\UNWISE.EXE C:\PROGRA~1\SYNCRO~1\INSTALL.LOG
Lecteur Windows Media 11-->"C:\Program Files\Windows Media Player\Setup_wm.exe" /Uninstall
LG USB Modem driver-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\10\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{C3ABE126-2BB2-4246-BFE1-6797679B3579}\setup.exe" -l0x40c -removeonly
Microsoft .NET Framework 1.1 French Language Pack-->MsiExec.exe /X{9A394342-4A68-4EBA-85A6-55B559F4E700}
Microsoft .NET Framework 1.1 Hotfix (KB928366)-->"C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe" "C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\M928366\M928366Uninstall.msp"
Microsoft .NET Framework 1.1-->msiexec.exe /X {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 1.1-->MsiExec.exe /X{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 2.0 Service Pack 1 Language Pack - FRA-->MsiExec.exe /I{3F7924B9-D148-3141-87B1-68F36043A940}
Microsoft .NET Framework 2.0 Service Pack 1-->MsiExec.exe /I{B508B3F1-A24A-32C0-B310-85786919EF28}
Microsoft .NET Framework 3.0 Service Pack 1 Language Pack - FRA-->MsiExec.exe /I{511DF669-2930-30C0-8EB6-552887E29EC8}
Microsoft .NET Framework 3.0 Service Pack 1-->MsiExec.exe /I{2BA00471-0328-3743-93BD-FA813353A783}
Microsoft Compression Client Pack 1.0 for Windows XP-->"C:\WINDOWS\$NtUninstallMSCompPackV1$\spuninst\spuninst.exe"
Microsoft Internationalized Domain Names Mitigation APIs-->"C:\WINDOWS\$NtServicePackUninstallIDNMitigationAPIs$\spuninst\spuninst.exe"
Microsoft National Language Support Downlevel APIs-->"C:\WINDOWS\$NtServicePackUninstallNLSDownlevelMapping$\spuninst\spuninst.exe"
Microsoft Office Live Add-in 1.3-->MsiExec.exe /I{57F0ED40-8F11-41AA-B926-4A66D0D1A9CC}
Microsoft Office Outlook Connector-->MsiExec.exe /I{95120000-0120-040C-0000-0000000FF1CE}
Microsoft Office Professional Edition 2003-->MsiExec.exe /I{9011040C-6000-11D3-8CFE-0150048383C9}
Microsoft Search Enhancement Pack-->MsiExec.exe /I{9C9CEB9D-53FD-49A7-85D2-FE674F72F24E}
Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
Microsoft SQL Server 2005 Compact Edition [ENU]-->MsiExec.exe /I{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}
Microsoft SQL Server Desktop Engine (SONY_MEDIAMGR)-->MsiExec.exe /X{E09B48B5-E141-427A-AB0C-D3605127224A}
Microsoft Sync Framework Runtime Native v1.0 (x86)-->MsiExec.exe /I{8A74E887-8F0F-4017-AF53-CBA42211AAA5}
Microsoft Sync Framework Services Native v1.0 (x86)-->MsiExec.exe /I{BD64AF4A-8C80-4152-AD77-FCDDF05208AB}
Microsoft User-Mode Driver Framework Feature Pack 1.0-->"C:\WINDOWS\$NtUninstallWudf01000$\spuninst\spuninst.exe"
MIDI Mate-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{2669D000-C182-4312-B736-C9D7FCFD72D5}\Setup.exe"
Mise à jour de sécurité pour Lecteur Windows Media 11 (KB936782)-->"C:\WINDOWS\$NtUninstallKB936782_WMP11$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB938127)-->"C:\WINDOWS\ie7updates\KB938127-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB942615)-->"C:\WINDOWS\ie7updates\KB942615-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB944533)-->"C:\WINDOWS\ie7updates\KB944533-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB923789)-->C:\WINDOWS\system32\MacroMed\Flash\genuinst.exe C:\WINDOWS\system32\MacroMed\Flash\KB923789.inf
Mise à jour de sécurité pour Windows XP (KB941569)-->"C:\WINDOWS\$NtUninstallKB941569$\spuninst\spuninst.exe"
Mozilla Firefox (3.0.9)-->C:\Program Files\Mozilla Firefox\uninstall\helper.exe
MSN Pictures Displayer 4.6-->"C:\Program Files\MSN Pictures Displayer\MSN Pictures Displayer.exe" /U
MSVCRT-->MsiExec.exe /I{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
MSXML 6.0 Parser (KB933579)-->MsiExec.exe /I{0A869A65-8C94-4F7C-A5C7-972D3C8CED9E}
Native Instruments - Audio Kontrol 1 Driver-->C:\Program Files\Native Instruments\Audio Kontrol 1 Driver\uninst.exe Software\Native Instruments\Audio Kontrol 1 Driver\Setup
Native Instruments Audio Kontrol 1-->C:\PROGRA~1\NATIVE~1\AUDIOK~1\UNWISE.EXE C:\PROGRA~1\NATIVE~1\AUDIOK~1\INSTALL.LOG
Native Instruments Battery v2.0-->C:\PROGRA~1\NATIVE~1\BATTER~1\UNWISE.EXE C:\PROGRA~1\NATIVE~1\BATTER~1\INSTALL.LOG
Native Instruments FM7-->C:\PROGRA~1\NATIVE~1\Fm7\UNWISE.EXE C:\PROGRA~1\NATIVE~1\Fm7\INSTALL.LOG
Neodynium Demo-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{913156EC-8565-42CC-A2CB-F49BD6AC397F}\Setup.exe" -l0x9
Nero Suite-->C:\Program Files\Fichiers communs\Ahead\Uninstall\Setup.exe /uninstall
NI Service Center-->C:\PROGRA~1\NATIVE~1\NISERV~1\UNWISE.EXE C:\PROGRA~1\NATIVE~1\NISERV~1\INSTALL.LOG
Orange Vocoder v1.1.2-->C:\PROGRA~1\STEINB~1\VSTPLU~1\UNWISE.EXE C:\PROGRA~1\STEINB~1\VSTPLU~1\Orange.LOG
Outil de téléchargement Windows Live-->MsiExec.exe /I{205C6BDD-7B73-42DE-8505-9A093F35A238}
Package de base Microsoft de service de chiffrement pour cartes à puce-->"C:\WINDOWS\$NtUninstallbasecsp$\spuninst\spuninst.exe"
QuickTime-->MsiExec.exe /I{8DC42D05-680B-41B0-8878-6C14D24602DB}
RealPlayer-->C:\Program Files\Fichiers communs\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0
Realtek High Definition Audio Driver-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}\Setup.exe" -l0x40c -removeonly
Reason 3.0-->"C:\Program Files\Propellerhead\Reason\Uninstall Reason\unins000.exe"
reFX Vanguard VSTi-->"C:\Program Files\Steinberg\VstPlugins\Vanguard\Uninstall\unins000.exe"
Samsung Camcorder USB-D04 Capture Driver-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{A94AAFAF-9FBA-43F9-A79C-70AC38761811}\Setup.exe" -l0x9 customuninstall
Samsung DVC Media 6.1-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{01DEE483-F613-4CB0-BC48-93AA2C1AD12F}\setup.exe" -l0x9
Sarbacane 2-->C:\Program Files\Goto software\Sarbacane 2\uninst.exe
Segoe UI-->MsiExec.exe /I{A1F66FC9-11EE-4F2F-98C9-16F8D1E69FB7}
Sony Media Manager 2.0-->MsiExec.exe /X{B13F5727-F12F-4253-B6AD-26AFA880B709}
Sony Vegas 6.0d-->MsiExec.exe /X{4F68B605-2F2B-42A8-8689-0CA7E67797B0}
Steinberg Cubase SX v3.1.1.944-->C:\PROGRA~1\STEINB~1\CUBASE~1\UNWISE.EXE C:\PROGRA~1\STEINB~1\CUBASE~1\INSTALL.LOG
SyncroSoft Emu (Remove only)-->C:\Program Files\SyncroSoft\Pos\H2O\Uninst.exe
TC MegaReverb TRIAL-->C:\PROGRA~1\DIGIDE~1\Dae\Plug-Ins\UNINST~1\UNWISE.EXE C:\PROGRA~1\DIGIDE~1\Dae\Plug-Ins\UNINST~1\INSTALL.LOG
Timeworks Millenium Pack-->C:\Audio\TIMEWO~1\UNWISE.EXE C:\Audio\TIMEWO~1\INSTALL.LOG
UltraVNC v1.0.1-->"C:\Program Files\UltraVNC\unins000.exe"
VideoLAN VLC media player 0.8.6f-->C:\Program Files\VideoLAN\VLC\uninstall.exe
Virtual Sound Canvas VST-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{DA22A6BB-10B5-4595-BD59-1AD4023C8536}\setup.exe" MAINTENANCE_XXX
Windows Imaging Component-->"C:\WINDOWS\$NtUninstallWIC$\spuninst\spuninst.exe"
Windows Live Call-->MsiExec.exe /I{82C7B308-0BDD-49D8-8EA5-9CD3A3F9DF41}
Windows Live Communications Platform-->MsiExec.exe /I{3B4E636E-9D65-4D67-BA61-189800823F52}
Windows Live Contrôle parental-->MsiExec.exe /X{D6A2DDE3-9D7C-412C-932A-756580D29919}
Windows Live Mail-->MsiExec.exe /I{63DC2DA0-2A6C-4C38-9249-B75395458657}
Windows Live Messenger-->MsiExec.exe /X{059C042E-796A-4ACC-A81A-ECC2010BB78C}
Windows Live Sync-->MsiExec.exe /X{9C5EB781-0D37-44B8-9A58-77B3E4BF5F5E}
Windows Live Toolbar-->MsiExec.exe /X{F7D27C70-90F5-49B9-B188-0A133C0CE353}
Windows Live Writer-->MsiExec.exe /X{2231CE39-B963-4B9D-823A-F412ECA637B1}
Windows Media Format 11 runtime-->"C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
Windows Media Format 11 runtime-->"C:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe"
Windows Media Format SDK Hotfix - KB891122-->"C:\WINDOWS\$NtUninstallKB891122$\spuninst\spuninst.exe"
Windows Media Player 11-->"C:\WINDOWS\$NtUninstallwmp11$\spuninst\spuninst.exe"
Windows Presentation Foundation-->MsiExec.exe /X{BAF78226-3200-4DB4-BE33-4D922A799840}
Windows XP Service Pack 3-->"C:\WINDOWS\$NtServicePackUninstall$\spuninst\spuninst.exe"
Xilisoft Video Converter 3-->C:\Program Files\Xilisoft\Video Converter 3\Uninstall.exe
XML Paper Specification Shared Components Language Pack 1.0-->"C:\WINDOWS\$NtUninstallXPSEPSCLP$\spuninst\spuninst.exe"
YFB - Youtube Friend Bomber-->MsiExec.exe /I{FB249035-FD3C-4AB9-AF0E-3DD03CBFED71}
======Security center information======
AV: Kaspersky Anti-Virus (outdated)
======System event log======
Computer Name: PC
Event Code: 7036
Message: Le service Compatibilité avec le Changement rapide d'utilisateur est entré dans l'état : en cours d'exécution.
Record Number: 21392
Source Name: Service Control Manager
Time Written: 20090316202409.000000+060
Event Type: Informations
User:
Computer Name: PC
Event Code: 7035
Message: Un contrôle Démarrer a correctement été envoyé au service Compatibilité avec le Changement rapide d'utilisateur.
Record Number: 21391
Source Name: Service Control Manager
Time Written: 20090316202409.000000+060
Event Type: Informations
User: AUTORITE NT\SYSTEM
Computer Name: PC
Event Code: 7036
Message: Le service Services Terminal Server est entré dans l'état : en cours d'exécution.
Record Number: 21390
Source Name: Service Control Manager
Time Written: 20090316195455.000000+060
Event Type: Informations
User:
Computer Name: PC
Event Code: 7035
Message: Un contrôle Démarrer a correctement été envoyé au service Services Terminal Server.
Record Number: 21389
Source Name: Service Control Manager
Time Written: 20090316195455.000000+060
Event Type: Informations
User: AUTORITE NT\SYSTEM
Computer Name: PC
Event Code: 7036
Message: Le service Carte de performance WMI est entré dans l'état : arrêté.
Record Number: 21388
Source Name: Service Control Manager
Time Written: 20090316195418.000000+060
Event Type: Informations
User:
=====Application event log=====
Computer Name: PC
Event Code: 1
Message:
Record Number: 5
Source Name: Bonjour Service
Time Written: 20090425225835.000000+120
Event Type: Informations
User:
Computer Name: PC
Event Code: 0
Message:
Record Number: 4
Source Name: iPod Service
Time Written: 20090425225331.000000+120
Event Type: Informations
User:
Computer Name: PC
Event Code: 1800
Message: Le service Centre de sécurité Windows a démarré.
Record Number: 3
Source Name: SecurityCenter
Time Written: 20090425225328.000000+120
Event Type: Informations
User:
Computer Name: PC
Event Code: 1
Message:
Record Number: 2
Source Name: Bonjour Service
Time Written: 20090425225327.000000+120
Event Type: Informations
User:
Computer Name: PC
Event Code: 0
Message:
Record Number: 1
Source Name: SeaPort
Time Written: 20090425225327.000000+120
Event Type: Informations
User:
======Environment variables======
"ComSpec"=%SystemRoot%\system32\cmd.exe
"Path"=%systemroot%\system32;%systemroot%;%systemroot%\system32\wbem;C:\Program Files\Intel\DMIX;C:\Program Files\QuickTime\QTSystem;C:\Program Files\Microsoft SQL Server\80\Tools\Binn\;C:\Program Files\Fichiers communs\Ulead Systems\MPEG;C:\Program Files\QuickTime\QTSystem\
"windir"=%SystemRoot%
"OS"=Windows_NT
"PROCESSOR_ARCHITECTURE"=x86
"PROCESSOR_LEVEL"=15
"PROCESSOR_IDENTIFIER"=x86 Family 15 Model 3 Stepping 4, GenuineIntel
"PROCESSOR_REVISION"=0304
"NUMBER_OF_PROCESSORS"=2
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"FP_NO_HOST_CHECK"=NO
"CLASSPATH"=.;C:\Program Files\Java\jre1.6.0_06\lib\ext\QTJava.zip
"QTJAVA"=C:\Program Files\Java\jre1.6.0_06\lib\ext\QTJava.zip
"SAFEBOOT_OPTION"=MINIMAL
-----------------EOF-----------------
Quand j'arrive sur le bureau normal, j'ai une fenêtre qui me dit Microsoft Windows:
Le système a récupéré d'une erreur sérieuse.
Un journal de cette erreur a été créer.
Veuillez signaler ce problème à Microsoft.
et une autre fenêtre qui me dit Kaspesky Anti-Virus : Notification sur la licence
Attention!
La durée de validité de votre licence est arrivée a échéance.
Par contre il a l'air de rester allumer :)
Le système a récupéré d'une erreur sérieuse.
Un journal de cette erreur a été créer.
Veuillez signaler ce problème à Microsoft.
et une autre fenêtre qui me dit Kaspesky Anti-Virus : Notification sur la licence
Attention!
La durée de validité de votre licence est arrivée a échéance.
Par contre il a l'air de rester allumer :)
La durée de validité de votre licence est arrivée a échéance. = est-ce le cas ?
est-ce une periode d'essai ?
Clique sur le menu Demarrer /Panneau de configuration/Options des dossiers/ puis dans l'onglet Affichage
- Coche Afficher les fichiers et dossiers cachés
- Décoche Masquer les extensions des fichiers dont le type est connu
- Décoche Masquer les fichiers protégés du système d'exploitation (recommandé)
clique sur Appliquer, puis OK.
N'oublie pas de recacher à nouveau les fichiers cachés et protégés du système d'exploitation en fin de désinfection, c'est important
Fais analyser le(s) fichier(s) suivants sur Virustotal :
Virus Total
* Clique sur Parcourir en haut, choisis Poste de travail et cherche ce fichier :
C:\WINDOWS\system32\drivers\ahju54mi.sys
* Clique maintenant sur Envoyer le fichier. et laisse travailler tant que "Situation actuelle : en cours d'analyse" est affiché.
* Il est possible que le fichier soit mis en file d'attente en raison d'un grand nombre de demandes d'analyses. En ce cas, il te faudra patienter sans actualiser la page.
* Lorsque l'analyse est terminée ("Situation actuelle: terminé"), clique sur Formaté
* Une nouvelle fenêtre de ton navigateur va apparaître
* Clique alors sur les deux fleches
* Fais un clic droit sur la page, et choisis Sélectionner tout, puis copier
* Enfin colle le résultat dans ta prochaine réponse.
est-ce une periode d'essai ?
Clique sur le menu Demarrer /Panneau de configuration/Options des dossiers/ puis dans l'onglet Affichage
- Coche Afficher les fichiers et dossiers cachés
- Décoche Masquer les extensions des fichiers dont le type est connu
- Décoche Masquer les fichiers protégés du système d'exploitation (recommandé)
clique sur Appliquer, puis OK.
N'oublie pas de recacher à nouveau les fichiers cachés et protégés du système d'exploitation en fin de désinfection, c'est important
Fais analyser le(s) fichier(s) suivants sur Virustotal :
Virus Total
* Clique sur Parcourir en haut, choisis Poste de travail et cherche ce fichier :
C:\WINDOWS\system32\drivers\ahju54mi.sys
* Clique maintenant sur Envoyer le fichier. et laisse travailler tant que "Situation actuelle : en cours d'analyse" est affiché.
* Il est possible que le fichier soit mis en file d'attente en raison d'un grand nombre de demandes d'analyses. En ce cas, il te faudra patienter sans actualiser la page.
* Lorsque l'analyse est terminée ("Situation actuelle: terminé"), clique sur Formaté
* Une nouvelle fenêtre de ton navigateur va apparaître
* Clique alors sur les deux fleches
* Fais un clic droit sur la page, et choisis Sélectionner tout, puis copier
* Enfin colle le résultat dans ta prochaine réponse.