Malware-gen à éradiquer !
PARE SOLEIL
-
PLEIN SOLEIL -
PLEIN SOLEIL -
Bonjour,
j'ai suivi vos conseils voici le premier fichier txt généré : log
Logfile of random's system information tool 1.06 (written by random/random)
Run by Propriétaire at 2009-06-08 16:54:05
Microsoft Windows XP Édition familiale Service Pack 3
System drive C: has 67 GB (70%) free of 95 GB
Total RAM: 1022 MB (38% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 16:54:17, on 08/06/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16827)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\brsvc01a.exe
C:\WINDOWS\system32\brss01a.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\system32\DVDRAMSV.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\Program Files\Toshiba\Toshiba Applet\thotkey.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\TOSHIBA\Utilitaire de zoom TOSHIBA\SmoothView.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
C:\Program Files\Synaptics\SynTP\Toshiba.exe
C:\Program Files\LogMeIn\x86\RaMaint.exe
C:\Program Files\LogMeIn\x86\LogMeInSystray.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATI9LE.EXE
C:\Program Files\LogMeIn\x86\LMIGuardian.exe
C:\Program Files\LogMeIn\x86\LogMeIn.exe
C:\WINDOWS\Samsung\PanelMgr\SSMMgr.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\WINDOWS\system32\TPSBattM.exe
C:\Program Files\LogMeIn\x86\LMIGuardian.exe
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnf.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\PVSW\Bin\WGE_SRV.EXE
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\PVSW\BIN\W3dbsmgr.EXE
C:\WINDOWS\system32\svchost.exe
C:\Program Files\TOSHIBA\TOSHIBA Applet\TAPPSRV.exe
C:\WINDOWS\system32\SearchIndexer.exe
C:\WINDOWS\system32\wscript.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Intel\Wireless\Bin\Dot1XCfg.exe
C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\taskmgr.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\VOYCI-P\AEG VOYCI-P V1-0206.exe
C:\Program Files\TOSHIBA\Bluetooth Monitor\BtMon2.exe
C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
C:\WINDOWS\system32\RAMASST.exe
C:\Program Files\Windows Desktop Search\WindowsSearch.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\Documents and Settings\Propriétaire\Local Settings\Temporary Internet Files\Content.IE5\42VB9U8L\RSIT[1].exe
C:\Program Files\trend micro\Propriétaire.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet /keeploaded /nodetect
O4 - HKLM\..\Run: [NVRotateSysTray] rundll32.exe C:\WINDOWS\system32\nvsysrot.dll,Enable
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [TPSMain] TPSMain.exe
O4 - HKLM\..\Run: [IntelZeroConfig] "C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe"
O4 - HKLM\..\Run: [IntelWireless] "C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe" /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [THotkey] C:\Program Files\Toshiba\Toshiba Applet\thotkey.exe
O4 - HKLM\..\Run: [SmoothView] C:\Program Files\TOSHIBA\Utilitaire de zoom TOSHIBA\SmoothView.exe
O4 - HKLM\..\Run: [DriverMagicSchedule] "C:\Program Files\SymplisIT\DriverMagic\dmschedule.exe" /boot
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [Share-to-Web Namespace Daemon] C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
O4 - HKLM\..\Run: [LogMeIn GUI] "C:\Program Files\LogMeIn\x86\LogMeInSystray.exe"
O4 - HKLM\..\Run: [EPSON Stylus Photo R1800] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATI9LE.EXE /P24 "EPSON Stylus Photo R1800" /O6 "USB001" /M "Stylus Photo R1800"
O4 - HKLM\..\Run: [Samsung PanelMgr] C:\WINDOWS\Samsung\PanelMgr\SSMMgr.exe /autorun
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [winboot] wscript.exe /E:vbs C:\WINDOWS\boot.ini
O4 - HKLM\..\Run: [MS32DLL] C:\WINDOWS\.MS32DLL.dll.vbs
O4 - HKLM\..\RunOnce: [PixelInstall]
O4 - HKCU\..\Run: [TOSCDSPD] C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe
O4 - HKCU\..\Run: [Uniblue RegistryBooster 2009] C:\Program Files\Uniblue\RegistryBooster\RegistryBooster.exe /S
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: AEG VOYCI-P V1-0206.lnk = ?
O4 - Global Startup: Bluetooth Monitor.lnk = ?
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: RAMASST.lnk = C:\WINDOWS\system32\RAMASST.exe
O4 - Global Startup: Windows Desktop Search.lnk = C:\Program Files\Windows Desktop Search\WindowsSearch.exe
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Object) - http://appldnld.apple.com/QuickTime/qtactivex/qtplugin.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {474F00F5-3853-492C-AC3A-476512BBC336} (UploadListView Class) - http://picasaweb.google.fr/s/v/45.19/uploader2.cab
O16 - DPF: {4871A87A-BFDD-4106-8153-FFDE2BAC2967} (DLM Control) - http://dlm.tools.akamai.com/dlmanager/versions/activex/dlm-activex-2.2.4.3.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/...
O16 - DPF: {9FFA5747-4FDB-4221-A61E-4CAC0E5095A5} (CUtils Object) - http://193.251.67.167:81/6.0.19/dlls/iBiZaCL.dll
O16 - DPF: {EDFCB7CB-942C-4822-AF14-F0B687409848} (Image Uploader Control) - http://www.photoservice.com/telechargement/ImageUploader4.cab
O16 - DPF: {FD0B6769-6490-4A91-AA0A-B5AE0DC75AC9} (Performance Viewer Activex Control) - https://secure.logmein.com/activex/ractrl.cab?lmi=100
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL
O23 - Service: Service de configuration Atheros (ACS) - Unknown owner - C:\WINDOWS\system32\acs.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: BrSplService (Brother XP spl Service) - brother Industries Ltd - C:\WINDOWS\system32\brsvc01a.exe
O23 - Service: DVD-RAM_Service - Matsushita Electric Industrial Co., Ltd. - C:\WINDOWS\system32\DVDRAMSV.exe
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: Google Desktop Manager 5.8.809.23506 (GoogleDesktopManager-092308-165331) - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LogMeIn Maintenance Service (LMIMaint) - LogMeIn, Inc. - C:\Program Files\LogMeIn\x86\RaMaint.exe
O23 - Service: LogMeIn - LogMeIn, Inc. - C:\Program Files\LogMeIn\x86\LogMeIn.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: EBP - Pervasive.SQL Workgroup (Pervasive.SQL Workgroup) - Unknown owner - C:\PVSW\Bin\WGE_SRV.EXE
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Intel(R) PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: TOSHIBA Application Service (TAPPSRV) - TOSHIBA Corp. - C:\Program Files\TOSHIBA\TOSHIBA Applet\TAPPSRV.exe
--
End of file - 12537 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\Allway Sync_{447459E3B80D1AC042722FBC8A988FB5}.job
C:\WINDOWS\tasks\AppleSoftwareUpdate.job
C:\WINDOWS\tasks\WebReg 20081112164037.job
C:\WINDOWS\tasks\Windows Media Player.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4EFB-9B51-7695ECA05670}]
Yahoo! Toolbar Helper - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll [2006-10-26 440384]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Adobe PDF Reader Link Helper - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll [2006-12-18 59032]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{22BF413B-C6D2-4d91-82A9-A0F997BA588C}]
Skype add-on (mastermind) - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2009-02-04 1082880]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Programme d'aide de l'Assistant de connexion Windows Live - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-02-17 408440]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-03-09 35840]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2009-03-09 73728]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E99421FB-68DD-40F0-B4AC-B7027CAE2F1A}]
EpsonToolBandKicker Class - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll [2005-02-21 368640]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{EF99BD32-C1FB-11D2-892F-0090271D4F88} - Yahoo! Toolbar avec bloqueur de fenêtres pop-up - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll [2006-10-26 440384]
{EE5D279F-081B-4404-994D-C6B60AAEBA6D} - EPSON Web-To-Page - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll [2005-02-21 368640]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"avast!"=C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe [2009-02-05 81000]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2006-05-01 7557120]
"nwiz"=nwiz.exe /installquiet /keeploaded /nodetect []
"NVRotateSysTray"=C:\WINDOWS\system32\nvsysrot.dll [2006-05-01 49152]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2006-03-02 761948]
"TPSMain"=C:\WINDOWS\system32\TPSMain.exe [2005-08-03 266240]
"IntelZeroConfig"=C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe [2007-10-08 995328]
"IntelWireless"=C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe [2007-10-08 1101824]
"THotkey"=C:\Program Files\Toshiba\Toshiba Applet\thotkey.exe [2006-01-05 352256]
"SmoothView"=C:\Program Files\TOSHIBA\Utilitaire de zoom TOSHIBA\SmoothView.exe [2005-05-17 118784]
"DriverMagicSchedule"=C:\Program Files\SymplisIT\DriverMagic\dmschedule.exe [2008-10-03 69632]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2008-09-30 16864768]
"Alcmtr"=C:\WINDOWS\ALCMTR.EXE [2008-06-19 57344]
"Google Desktop Search"=C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [2008-11-07 30192]
"Share-to-Web Namespace Daemon"=C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe [2002-04-17 69632]
"LogMeIn GUI"=C:\Program Files\LogMeIn\x86\LogMeInSystray.exe [2008-07-24 63048]
"EPSON Stylus Photo R1800"=C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATI9LE.EXE [2004-09-08 98304]
"Samsung PanelMgr"=C:\WINDOWS\Samsung\PanelMgr\SSMMgr.exe [2008-08-08 524288]
"SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2009-03-09 148888]
"QuickTime Task"=C:\Program Files\QuickTime\qttask.exe [2009-04-23 413696]
"winboot"=wscript.exe /E:vbs C:\WINDOWS\boot.ini []
"MS32DLL"=C:\WINDOWS\.MS32DLL.dll.vbs [2009-06-08 8198]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"PixelInstall"=1 []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"TOSCDSPD"=C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe [2005-04-11 65536]
"Uniblue RegistryBooster 2009"=C:\Program Files\Uniblue\RegistryBooster\RegistryBooster.exe /S []
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2009-02-04 23975720]
"msnmsgr"=C:\Program Files\Windows Live\Messenger\msnmsgr.exe [2007-10-18 5724184]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MsnMsgr]
C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe [2007-10-18 5724184]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Propriétaire^Menu Démarrer^Programmes^Démarrage^Corel Registration.lnk]
C:\PROGRA~1\Corel\GRAPHI~1\Register\Remind32.exe [1998-07-23 67584]
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage
AEG VOYCI-P V1-0206.lnk - C:\WINDOWS\Installer\{33B3E1FA-4E33-415F-BD27-6AF78304FB95}\_5af141bb.exe
Bluetooth Monitor.lnk - C:\Program Files\TOSHIBA\Bluetooth Monitor\BtMon2.exe
Lancement rapide d'Adobe Reader.lnk - C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
RAMASST.lnk - C:\WINDOWS\system32\RAMASST.exe
Windows Desktop Search.lnk - C:\Program Files\Windows Desktop Search\WindowsSearch.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLS"="C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\LMIinit]
C:\WINDOWS\system32\LMIinit.dll [2008-10-16 87352]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{56F9679E-7826-4C84-81F3-532071A8BCC5}"=C:\Program Files\Windows Desktop Search\MSNLNamespaceMgr.dll [2007-02-05 294400]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoRun"=1
"NoDriveTypeAutoRun"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\PVSW\Bin\w3dbsmgr.exe"="C:\PVSW\Bin\w3dbsmgr.exe:*:Enabled:Database Service Manager"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\Windows Live\Messenger\livecall.exe"="C:\Program Files\Windows Live\Messenger\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"
"C:\Program Files\SymplisIT\DriverMagic\DriverMagic.exe"="C:\Program Files\SymplisIT\DriverMagic\DriverMagic.exe:*:Enabled:DriverMagic by SymplisIT Corp."
"C:\Program Files\Internet Explorer\iexplore.exe"="C:\Program Files\Internet Explorer\iexplore.exe:*:Enabled:Internet Explorer"
"C:\Program Files\EBP\ComptaPratic13.1\EbpFlash.exe"="C:\Program Files\EBP\ComptaPratic13.1\EbpFlash.exe:*:Enabled:Compta"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\Windows Live\Messenger\livecall.exe"="C:\Program Files\Windows Live\Messenger\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{811e0104-acac-11dd-a3c4-00a0d15590f3}]
shell\AutoRun\command - C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL wscript.exe .MS32DLL.dll.vbs
======List of files/folders created in the last 1 months======
2009-06-08 16:54:06 ----D---- C:\Program Files\trend micro
2009-06-08 16:54:05 ----D---- C:\rsit
2009-06-08 16:34:31 ----RASH---- C:\WINDOWS\.MS32DLL.dll.vbs
2009-06-08 09:25:31 ----A---- C:\WINDOWS\msnfix.txt
2009-06-06 11:36:50 ----A---- C:\WINDOWS\system32\CNMVS75.DLL
2009-06-06 11:36:46 ----A---- C:\WINDOWS\system32\CNMLM75.DLL
2009-06-06 09:34:44 ----A---- C:\WINDOWS\boot.ini
======List of files/folders modified in the last 1 months======
2009-06-08 16:54:11 ----D---- C:\WINDOWS\Prefetch
2009-06-08 16:54:06 ----RD---- C:\Program Files
2009-06-08 16:51:44 ----D---- C:\Documents and Settings\Propriétaire\Application Data\Skype
2009-06-08 16:50:38 ----D---- C:\Documents and Settings\Propriétaire\Application Data\skypePM
2009-06-08 16:50:21 ----D---- C:\WINDOWS\Temp
2009-06-08 16:47:23 ----D---- C:\WINDOWS\system32\CatRoot2
2009-06-08 16:36:52 ----A---- C:\WINDOWS\SchedLgU.Txt
2009-06-08 16:34:31 ----D---- C:\WINDOWS
2009-06-08 09:26:27 ----SHD---- C:\System Volume Information
2009-06-08 09:26:27 ----D---- C:\WINDOWS\system32\Restore
2009-06-08 09:15:35 ----D---- C:\Program Files\LogMeIn
2009-06-06 11:36:50 ----D---- C:\WINDOWS\system32
2009-06-06 11:36:45 ----HD---- C:\WINDOWS\inf
2009-06-03 17:18:56 ----A---- C:\WINDOWS\win.ini
2009-05-28 16:38:26 ----D---- C:\Program Files\Allway Sync
2009-05-27 20:18:59 ----RSD---- C:\WINDOWS\Fonts
2009-05-13 19:03:16 ----D---- C:\Documents and Settings\Propriétaire\Application Data\gtk-2.0
2009-05-13 13:02:25 ----SHD---- C:\WINDOWS\Installer
2009-05-13 13:02:25 ----D---- C:\Config.Msi
2009-05-12 18:11:44 ----A---- C:\WINDOWS\SETSCAN.INI
2009-05-12 15:57:03 ----A---- C:\WINDOWS\hpqcopy.INI
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 Aavmker4;avast! Asynchronous Virus Monitor; C:\WINDOWS\system32\drivers\Aavmker4.sys [2009-02-05 26944]
R1 AFS2K;AFS2k; C:\WINDOWS\system32\drivers\AFS2K.sys [2008-11-12 82380]
R1 aswSP;avast! Self Protection; C:\WINDOWS\system32\drivers\aswSP.sys [2009-02-05 114768]
R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2009-02-05 51376]
R1 intelppm;Pilote de processeur Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40576]
R1 kbdhid;Pilote HID de clavier; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14720]
R1 meiudf;meiudf; C:\WINDOWS\System32\Drivers\meiudf.sys [2005-06-02 102384]
R1 StarOpen;StarOpen; C:\WINDOWS\system32\drivers\StarOpen.sys [2006-07-24 5632]
R2 Aspi32;Aspi32; C:\WINDOWS\system32\drivers\Aspi32.sys [2004-04-22 16512]
R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\DRIVERS\aswFsBlk.sys [2009-02-05 20560]
R2 aswMon2;avast! Standard Shield Support; C:\WINDOWS\system32\drivers\aswMon2.sys [2009-02-05 94032]
R2 LMIInfo;LogMeIn Kernel Information Provider; \??\C:\Program Files\LogMeIn\x86\RaInfo.sys []
R2 LMIRfsDriver;LogMeIn Remote File System Driver; \??\C:\WINDOWS\system32\drivers\LMIRfsDriver.sys []
R2 s24trans;Transport RLAN; C:\WINDOWS\system32\DRIVERS\s24trans.sys [2007-08-27 12288]
R3 AgereSoftModem;TOSHIBA V92 Software Modem; C:\WINDOWS\system32\DRIVERS\AGRSM.sys [2005-11-15 1122656]
R3 Arp1394;Protocole client ARP 1394; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-13 60800]
R3 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2009-02-05 23152]
R3 BulkUsb;VoIPUSBDriver.sys; C:\WINDOWS\System32\Drivers\VoIPUSBDriver.sys [2005-09-16 149504]
R3 CmBatt;Pilote pour Batterie à méthode de contrôle ACPI Microsoft; C:\WINDOWS\system32\DRIVERS\CmBatt.sys [2008-04-13 13952]
R3 E100B;Intel(R) PRO Network Connection Driver; C:\WINDOWS\system32\DRIVERS\e100b325.sys [2007-11-16 165496]
R3 HDAudBus;Pilote de bus Microsoft UAA pour High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 hidusb;Pilote de classe HID Microsoft; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2008-10-02 4878336]
R3 lmimirr;lmimirr; C:\WINDOWS\system32\DRIVERS\lmimirr.sys [2008-07-24 10144]
R3 NETw4x32;Pilote de carte Intel(R) Wireless WiFi Link pour Windows XP 32 bits; C:\WINDOWS\system32\DRIVERS\NETw4x32.sys [2007-09-26 2236032]
R3 NIC1394;Pilote réseau 1394; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-13 61824]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2006-05-01 3643296]
R3 sdbus;sdbus; C:\WINDOWS\system32\DRIVERS\sdbus.sys [2008-04-13 79232]
R3 SynTP;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2006-03-02 191968]
R3 tifm21;tifm21; C:\WINDOWS\system32\drivers\tifm21.sys [2005-11-30 162560]
R3 TVALD;Toshiba Mobile PC Service; C:\WINDOWS\system32\DRIVERS\NBSMI.sys [2005-10-20 6144]
R3 usbaudio;Pilote USB audio (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2008-04-13 60032]
R3 usbccgp;Pilote parent générique USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
R3 usbehci;Pilote miniport de contrôleur d'hôte amélioré Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-13 30208]
R3 usbhub;Pilote de concentrateur standard USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-13 59520]
R3 usbprint;Classe d'imprimantes USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
R3 usbscan;Pilote de scanneur USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
R3 usbstor;Pilote de stockage de masse USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
R3 usbuhci;Pilote miniport de contrôleur hôte universel USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
S2 DgiVecp;DgiVecp; \??\C:\WINDOWS\system32\Drivers\DgiVecp.sys []
S2 SSPORT;SSPORT; \??\C:\WINDOWS\system32\Drivers\SSPORT.sys []
S3 BrScnUsb;Brother USB Still Image driver; C:\WINDOWS\System32\Drivers\BrScnUsb.sys [2004-10-15 15295]
S3 catchme;catchme; \??\C:\DOCUME~1\PROPRI~1\LOCALS~1\Temp\catchme.sys []
S3 NAL;Nal Service ; \??\C:\WINDOWS\system32\Drivers\iqvw32.sys []
S3 sffdisk;Pilote de classe de stockage SFF; C:\WINDOWS\system32\DRIVERS\sffdisk.sys [2008-04-13 11904]
S3 sffp_sd;Pilote de protocole de stockage SFF pour SDBus; C:\WINDOWS\system32\DRIVERS\sffp_sd.sys [2008-04-13 11008]
S3 ssm_bus;SAMSUNG Mobile USB Device II 1.0 driver (WDM); C:\WINDOWS\system32\DRIVERS\ssm_bus.sys [2005-08-30 58320]
S3 ssm_mdfl;SAMSUNG Mobile USB Modem II 1.0 Filter; C:\WINDOWS\system32\DRIVERS\ssm_mdfl.sys [2005-08-30 8336]
S3 ssm_mdm;SAMSUNG Mobile USB Modem II 1.0 Drivers; C:\WINDOWS\system32\DRIVERS\ssm_mdm.sys [2005-08-30 94000]
S3 SVRPEDRV;SVRPEDRV; \??\C:\DOCUME~1\PROPRI~1\LOCALS~1\Temp\RarSFX0\S10VWF\PEDrv.sys []
S3 ti21sony;ti21sony; C:\WINDOWS\system32\drivers\ti21sony.sys [2006-11-06 227328]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []
S4 LMIRfsClientNP;LMIRfsClientNP; C:\WINDOWS\system32\drivers\LMIRfsClientNP.sys []
S4 sr;Pilote de filtre de restauration système; C:\WINDOWS\system32\DRIVERS\sr.sys [2008-04-14 73600]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 aswUpdSv;avast! iAVS4 Control Service; C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe [2009-02-05 18752]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast4\ashServ.exe [2009-02-05 138680]
R2 Brother XP spl Service;BrSplService; C:\WINDOWS\system32\brsvc01a.exe [2002-04-11 57344]
R2 DVD-RAM_Service;DVD-RAM_Service; C:\WINDOWS\system32\DVDRAMSV.exe [2004-08-28 110592]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\Wireless\Bin\EvtEng.exe [2007-10-08 794624]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2009-03-09 152984]
R2 LMIMaint;LogMeIn Maintenance Service; C:\Program Files\LogMeIn\x86\RaMaint.exe [2008-10-16 116032]
R2 LogMeIn;LogMeIn; C:\Program Files\LogMeIn\x86\LogMeIn.exe [2008-07-24 63040]
R2 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2006-05-01 143428]
R2 Pervasive.SQL Workgroup;EBP - Pervasive.SQL Workgroup; C:\PVSW\Bin\WGE_SRV.EXE [2006-12-07 32768]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe [2007-10-08 483328]
R2 S24EventMonitor;Intel(R) PROSet/Wireless Service; C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe [2007-10-08 1183744]
R2 TAPPSRV;TOSHIBA Application Service; C:\Program Files\TOSHIBA\TOSHIBA Applet\TAPPSRV.exe [2005-12-20 35328]
R2 WSearch;Recherche Windows; C:\WINDOWS\system32\SearchIndexer.exe [2007-02-05 300032]
R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe [2009-02-05 254040]
R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast4\ashWebSv.exe [2009-02-05 352920]
S2 ACS;Service de configuration Atheros; C:\WINDOWS\system32\acs.exe [2005-09-26 36864]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_state.exe [2004-07-15 32768]
S3 GoogleDesktopManager-092308-165331;Google Desktop Manager 5.8.809.23506; C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [2008-11-07 30192]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2008-08-01 136120]
S3 ose;Office Source Engine; C:\Program Files\Fichiers communs\Microsoft Shared\Source Engine\OSE.EXE [2007-08-22 147824]
S3 usnjsvc;Service Messenger Sharing Folders USN Journal Reader; C:\Program Files\Windows Live\Messenger\usnsvc.exe [2007-10-18 98328]
S3 WLSetupSvc;Windows Live Setup Service; C:\Program Files\Windows Live\installer\WLSetupSvc.exe [2007-10-25 266240]
S3 WMPNetworkSvc;Service Partage réseau du Lecteur Windows Media; C:\Program Files\Windows Media Player\WMPNetwk.exe [2006-11-03 918016]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
-----------------EOF-----------------
voici le second :INFO
info.txt logfile of random's system information tool 1.06 2009-06-08 16:54:22
======Uninstall list======
-->MsiExec.exe /I{403EF592-953B-4794-BCEF-ECAB835C2095}
-->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
Adobe Flash Player 10 ActiveX-->C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
Adobe Reader 7.0.9 - Français-->MsiExec.exe /I{AC76BA86-7AD7-1036-7B44-A70900000002}
AEG VOYCI-P V1-0206-->MsiExec.exe /I{33B3E1FA-4E33-415F-BD27-6AF78304FB95}
Allway Sync version 9.2.15-->"C:\Program Files\Allway Sync\unins000.exe"
anooki-v5-0 Screen Saver-->C:\WINDOWS\system32\anooki-v5-0.scr /u
Apple Software Update-->MsiExec.exe /I{6956856F-B6B3-4BE0-BA0B-8F495BE32033}
Assist TOSHIBA-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{12B3A009-A080-4619-9A2A-C6DB151D8D67}\Setup.exe" -l0x40c
Assistant de connexion Windows Live-->MsiExec.exe /I{D3116CC7-24DC-4CA3-9CE1-23FED836E9F2}
Atheros Client Utility-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{71D658CF-4E0D-4DA8-AA67-8C0B6F1C01FE}\setup.exe" -l0x40c
ATI - Utilitaire de désinstallation du logiciel-->C:\Program Files\ATI Technologies\UninstallAll\AtiCimUn.exe
avast! Antivirus-->C:\Program Files\Alwil Software\Avast4\aswRunDll.exe "C:\Program Files\Alwil Software\Avast4\Setup\setiface.dll",RunSetup
Bluetooth Monitor 2-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\10\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{61539202-097E-487E-9237-B291AB56D54C}\setup.exe" -l0x9 -removeonly
Canon iP4200-->C:\WINDOWS\system32\CNMCP78.exe "-PRINTERNAMECanon iP4200" "-HELPERDLLC:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon iP4200 Installer\Inst2\cnmis.dll" "-RCDLLcnmi040c.dll"
Canon Setup Utility 2.0-->"C:\Program Files\Canon\Canon Setup Utility 2.0\Maint.exe" /Uninstall C:\Program Files\Canon\Canon Setup Utility 2.0\uninst.ini
CCleaner (remove only)-->"C:\Program Files\CCleaner\uninst.exe"
CD-LabelPrint-->"C:\Program Files\Canon\CD-LabelPrint\Uninstal.exe" Canon.CDLabelPrint.Application
Corel Applications-->C:\WINDOWS\Corel\Uninst32.exe
CorelDRAW Graphics Suite X4 - Capture-->MsiExec.exe /I{7F05E704-30A6-421A-97A7-8EEB1C7FF012}
CorelDRAW Graphics Suite X4 - Content-->MsiExec.exe /I{7F05E704-30A6-421A-97A7-8EEB1C7FF016}
CorelDRAW Graphics Suite X4 - Draw-->MsiExec.exe /I{7F05E704-30A6-421A-97A7-8EEB1C7FF013}
CorelDRAW Graphics Suite X4 - Extra Content-->MsiExec.exe /I{80FDAE30-CDB6-4015-AFC7-86A762A5AD9B}
CorelDRAW Graphics Suite X4 - Filters-->MsiExec.exe /I{7F05E704-30A6-421A-97A7-8EEB1C7FF017}
CorelDRAW Graphics Suite X4 - FontNav-->MsiExec.exe /I{7F05E704-30A6-421A-97A7-8EEB1C7FF019}
CorelDRAW Graphics SUite X4 - ICA-->MsiExec.exe /I{7F05E704-30A6-421A-97A7-8EEB1C7FF010}
CorelDRAW Graphics Suite X4 - IPM-->MsiExec.exe /I{9D0798D0-AF6C-4E62-94B1-AEBF1A43E00A}
CorelDRAW Graphics Suite X4 - Lang FR-->MsiExec.exe /I{9D306690-3173-42CD-94C6-9EF9318AF24B}
CorelDRAW Graphics Suite X4 - Lang IT-->MsiExec.exe /I{D0160DD3-6F62-4F1E-B999-6C68D3AE7390}
CorelDRAW Graphics Suite X4 - Lang NL-->MsiExec.exe /I{A6C27FFF-75EF-4B5B-A64E-F9E128994908}
CorelDRAW Graphics Suite X4 - PP-->MsiExec.exe /I{7F05E704-30A6-421A-97A7-8EEB1C7FF014}
CorelDRAW Graphics Suite X4 - VBA-->MsiExec.exe /I{BF439B41-0252-48DE-8B8B-0430CB26A181}
CorelDRAW Graphics Suite X4-->MsiExec.exe /I{7F05E704-30A6-421A-97A7-8EEB1C7FF000}
CorelDRAW(R) Graphics Suite X4 - Extra Content-->C:\Documents and Settings\Propriétaire\Mes documents\CLIPARTS\Setup\SetupARP.exe /arp
CorelDRAW(R) Graphics Suite X4 - Windows Shell Extension-->c:\Program Files\Fichiers communs\Corel\Shared\Shell Extension\Uninst.exe
CorelDRAW(R) Graphics Suite X4 - Windows Shell Extension-->MsiExec.exe /X{CE2DA11A-917F-4CF5-AB55-755EC115DD10}
CorelDRAW(R) Graphics Suite X4-->C:\Program Files\Corel\CorelDRAW Graphics Suite X4\Setup\SetupARP.exe /arp
Correctif pour Lecteur Windows Media 11 (KB939683)-->"C:\WINDOWS\$NtUninstallKB939683$\spuninst\spuninst.exe"
Correctif pour Windows XP (KB952287)-->"C:\WINDOWS\$NtUninstallKB952287$\spuninst\spuninst.exe"
CutePDF Writer 2.7-->C:\Program Files\Acro Software\CutePDF Writer\uninscpw.exe
Disque de souvenirs HP-->MsiExec.exe /X{B376402D-58EA-45EA-BD50-DD924EB67A70}
Dr.STIKA PLUS-->C:\WINDOWS\IsUninst.exe -f"C:\Program Files\Dr.STIKA PLUS\Uninst.isu"
DriverMagic-->MsiExec.exe /I{5BEB2F46-3723-47CF-BF7F-39C453B9D977}
EBP Compta Pratic 13.1-->"C:\Documents and Settings\All Users\Application Data\{9BD00415-AC84-439F-901D-2A41BA32CD07}\setup.exe" REMOVE=TRUE MODIFY=FALSE
EBP Compta Pratic 13.1-->C:\Documents and Settings\All Users\Application Data\{9BD00415-AC84-439F-901D-2A41BA32CD07}\setup.exe
EBP Comptabilité-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\10\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{5827A3F0-23B3-414F-BFD8-95F96A3D199D}\setup.exe" -l0x40c /uninst
EBP Devis et Facturation Pratic 2009 6.0-->"C:\Documents and Settings\All Users\Application Data\{81881ABF-3E98-4AA8-97B6-AC039F31AE54}\setup.exe" REMOVE=TRUE MODIFY=FALSE
EBP Devis et Facturation Pratic 2009 6.0-->C:\Documents and Settings\All Users\Application Data\{81881ABF-3E98-4AA8-97B6-AC039F31AE54}\setup.exe
EBP Gestion Commerciale-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\10\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{46DA90DB-D8D5-474A-B138-D5588F8D0BEF}\setup.exe" -l0x40c /uninst
EBP Paye-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\10\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{73CAA13B-7EEB-4633-B4C2-455EDDE6D264}\setup.exe" -l0x40c /uninst
Embird 2008-->"C:\Program Files\EMBIRD32\UNINST.EXE"
EPSON Attach To Email-->C:\Program Files\Fichiers communs\InstallShield\Driver\8\Intel 32\IDriver.exe /M{20C45B32-5AB6-46A4-94EF-58950CAF05E5} /l1033 ADDREMOVEDLG
EPSON Darkroom Print-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{D67F1B6B-44BF-498D-BD4B-6E0880DC2A87}\SETUP.EXE" -l0x40c UNINST
EPSON Easy Photo Print-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{5DA7BC15-18D3-41A0-9F59-838DA3EAEF17}\SETUP.EXE" -l0x40c UNINST
EPSON File Manager-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{E86BC406-944E-41F6-ADE6-2C136734C96B}\Setup.exe" -l0x40c UNINST
EPSON Logiciel imprimante-->C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\EPUPDATE.EXE /R
EPSON Print CD-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{FF477885-5EA8-40D0-ADF3-D4C1B86FAEA4}\SETUP.EXE" -l0x40c -SYSTEM
EPSON RAW Print-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{A9E80F99-6295-4605-A609-675E78D63250}\SETUP.EXE" -l0x40c /COMPANE
EPSON Scan Assistant-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{2A88F1BF-7041-4E42-84B1-6B4ACB83AC64}\Setup.exe" -l0x40c -u
EPSON Web-To-Page-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{7F14F68C-17FA-4F88-B3FD-7F449C1EBF32}\SETUP.EXE" -l0x40c -anything
ESPR1800 Guide de réf.-->C:\Program Files\EPSON\TPMANUAL\ESPR1800\REF_G\DOCUNINS.EXE
FileZilla Client 3.2.0-->C:\Program Files\FileZilla FTP Client\uninstall.exe
Finance 2003 version 10.03-->"C:\Program Files\SoftChris\Finance 2003\unins000.exe"
Formatage de carte mémoire SD TOSHIBA-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{48CF9A66-5F03-4025-ABD0-B3A3FA095A59}\Setup.exe" -l0x40c
Gestion d'énergie TOSHIBA-->C:\WINDOWS\IsUn040c.exe -f"C:\Program Files\TOSHIBA\Power Saver\Uninst.isu" -c"C:\WINDOWS\system32\TPSDel.dll"
Google Desktop-->C:\Program Files\Google\Google Desktop Search\GoogleDesktopSetup.exe -uninstall
High Definition Audio Driver Package - KB888111-->"C:\WINDOWS\$NtUninstallKB888111WXPSP2$\spuninst\spuninst.exe"
HijackThis 2.0.2-->"C:\Program Files\trend micro\HijackThis.exe" /uninstall
Hotfix for Windows Media Format 11 SDK (KB929399)-->"C:\WINDOWS\$NtUninstallKB929399$\spuninst\spuninst.exe"
HP Commercial Scanjet 5590 TWAIN Driver-->C:\WINDOWS\IsUn040c.exe -f"C:\WINDOWS\PIXTRAN\HP Commercial Scanjet 5590 TWAIN Driver.isu" -c"C:\WINDOWS\PIXTRAN\sdkunin.dll"
HP Photo and Imaging 2.5 - Scanjet 5590 Series-->MsiExec.exe /I{CC12B3AC-0A75-4F85-8BC9-89D440BE3846}
Inkscape 0.46-->C:\Program Files\Inkscape\Uninstall.exe
inook-v4-2 Screen Saver-->C:\WINDOWS\system32\inook-v4-2.scr /u
Intel(R) Network Connections 13.2.8.0-->MsiExec.exe /i{AAA4850F-7E20-40D7-A4C3-3697E7FA4A54} ARPREMOVE=1
IZArc 3.81-->"C:\Program Files\IZArc\unins000.exe"
Java(TM) 6 Update 13-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216012FF}
Java(TM) 6 Update 7-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160070}
K-Lite Codec Pack 4.2.5 (Full)-->"C:\Program Files\K-Lite Codec Pack\unins000.exe"
Lecteur Windows Media 11-->"C:\Program Files\Windows Media Player\Setup_wm.exe" /Uninstall
Location Immobiliere-->MsiExec.exe /I{6721258A-8ECF-4425-A97B-E1A01CB1C645}
Logiciel Intel(R) PROSet/Wireless-->C:\WINDOWS\Installer\iProInst.exe
LogMeIn-->MsiExec.exe /I{7F831576-6246-42C7-B523-55B3F96509CC}
mCore-->MsiExec.exe /I{E81667C6-2856-46D6-ABEA-6A2F42166779}
mDrWiFi-->MsiExec.exe /I{F6090A17-0967-4A8A-B3C3-422A1B514D49}
mHelp-->MsiExec.exe /I{8C6BB412-D3A8-4AAE-A01B-35B681789D68}
Microsoft .NET Framework 1.1 Hotfix (KB928366)-->"C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe" "C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\M928366\M928366Uninstall.msp"
Microsoft .NET Framework 1.1-->msiexec.exe /X {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 1.1-->MsiExec.exe /X{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft Compression Client Pack 1.0 for Windows XP-->"C:\WINDOWS\$NtUninstallMSCompPackV1$\spuninst\spuninst.exe"
Microsoft Internationalized Domain Names Mitigation APIs-->"C:\WINDOWS\$NtServicePackUninstallIDNMitigationAPIs$\spuninst\spuninst.exe"
Microsoft National Language Support Downlevel APIs-->"C:\WINDOWS\$NtServicePackUninstallNLSDownlevelMapping$\spuninst\spuninst.exe"
Microsoft Office Access Runtime (French) 2007-->MsiExec.exe /X{90120000-001C-040C-0000-0000000FF1CE}
Microsoft Office PowerPoint Viewer 2007 (French)-->MsiExec.exe /X{95120000-00AF-040C-0000-0000000FF1CE}
Microsoft User-Mode Driver Framework Feature Pack 1.0-->"C:\WINDOWS\$NtUninstallWudf01000$\spuninst\spuninst.exe"
Mise à jour critique pour Lecteur Windows Media 11 (KB959772)-->"C:\WINDOWS\$NtUninstallKB959772_WM11$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Lecteur Windows Media (KB952069)-->"C:\WINDOWS\$NtUninstallKB952069_WM9$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Lecteur Windows Media 11 (KB936782)-->"C:\WINDOWS\$NtUninstallKB936782_WMP11$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Lecteur Windows Media 11 (KB954154)-->"C:\WINDOWS\$NtUninstallKB954154_WM11$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB938127-v2)-->"C:\WINDOWS\ie7updates\KB938127-v2-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB956390)-->"C:\WINDOWS\ie7updates\KB956390-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB958215)-->"C:\WINDOWS\ie7updates\KB958215-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB960714)-->"C:\WINDOWS\ie7updates\KB960714-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB961260)-->"C:\WINDOWS\ie7updates\KB961260-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB963027)-->"C:\WINDOWS\ie7updates\KB963027-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB923561)-->"C:\WINDOWS\$NtUninstallKB923561$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB938464)-->"C:\WINDOWS\$NtUninstallKB938464$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB938464-v2)-->"C:\WINDOWS\$NtUninstallKB938464-v2$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB941569)-->"C:\WINDOWS\$NtUninstallKB941569$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB946648)-->"C:\WINDOWS\$NtUninstallKB946648$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB950762)-->"C:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB950974)-->"C:\WINDOWS\$NtUninstallKB950974$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB951066)-->"C:\WINDOWS\$NtUninstallKB951066$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB951376-v2)-->"C:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB951698)-->"C:\WINDOWS\$NtUninstallKB951698$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB951748)-->"C:\WINDOWS\$NtUninstallKB951748$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB952004)-->"C:\WINDOWS\$NtUninstallKB952004$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB952954)-->"C:\WINDOWS\$NtUninstallKB952954$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB954211)-->"C:\WINDOWS\$NtUninstallKB954211$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB954459)-->"C:\WINDOWS\$NtUninstallKB954459$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB954600)-->"C:\WINDOWS\$NtUninstallKB954600$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB955069)-->"C:\WINDOWS\$NtUninstallKB955069$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB956390)-->"C:\WINDOWS\$NtUninstallKB956390$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB956391)-->"C:\WINDOWS\$NtUninstallKB956391$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB956572)-->"C:\WINDOWS\$NtUninstallKB956572$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB956802)-->"C:\WINDOWS\$NtUninstallKB956802$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB956803)-->"C:\WINDOWS\$NtUninstallKB956803$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB956841)-->"C:\WINDOWS\$NtUninstallKB956841$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB957095)-->"C:\WINDOWS\$NtUninstallKB957095$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB957097)-->"C:\WINDOWS\$NtUninstallKB957097$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB958644)-->"C:\WINDOWS\$NtUninstallKB958644$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB958687)-->"C:\WINDOWS\$NtUninstallKB958687$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB958690)-->"C:\WINDOWS\$NtUninstallKB958690$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB959426)-->"C:\WINDOWS\$NtUninstallKB959426$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB960225)-->"C:\WINDOWS\$NtUninstallKB960225$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB960715)-->"C:\WINDOWS\$NtUninstallKB960715$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB960803)-->"C:\WINDOWS\$NtUninstallKB960803$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB961373)-->"C:\WINDOWS\$NtUninstallKB961373$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB951072-v2)-->"C:\WINDOWS\$NtUninstallKB951072-v2$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB951978)-->"C:\WINDOWS\$NtUninstallKB951978$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB955839)-->"C:\WINDOWS\$NtUninstallKB955839$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB967715)-->"C:\WINDOWS\$NtUninstallKB967715$\spuninst\spuninst.exe"
mIWA-->MsiExec.exe /I{3E9D596A-61D4-4239-BD19-2DB984D2A16F}
mLogView-->MsiExec.exe /I{0E2B0B41-7E08-4F9F-B21F-41C4133F43B7}
mMHouse-->MsiExec.exe /I{F0BFC7EF-9CF8-44EE-91B0-158884CD87C5}
mPfMgr-->MsiExec.exe /I{8B928BA1-EDEC-4227-A2DA-DD83026C36F5}
mPfWiz-->MsiExec.exe /I{90B0D222-8C21-4B35-9262-53B042F18AF9}
mProSafe-->MsiExec.exe /I{23FB368F-1399-4EAC-817C-4B83ECBE3D83}
mSCfg-->MsiExec.exe /I{829CD169-E692-48E8-9BDE-A3E8D8B65538}
MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
MSXML 6.0 Parser (KB933579)-->MsiExec.exe /I{0A869A65-8C94-4F7C-A5C7-972D3C8CED9E}
mWlsSafe-->MsiExec.exe /I{FCA651F3-5BDA-4DDA-9E4A-5D87D6914CC4}
mZConfig-->MsiExec.exe /I{94658027-9F16-4509-BBD7-A59FE57C3023}
NVIDIA Drivers-->C:\WINDOWS\system32\nvudisp.exe UninstallGUI
OpenOffice.org 3.0-->MsiExec.exe /I{6860B340-530D-46B3-91F8-1AE1F70F7C33}
Outil de diagnostic PC TOSHIBA-->C:\WINDOWS\IsUn040c.exe -f"C:\Program Files\TOSHIBA\PCDiag\Uninst.isu"
Pervasive System Analyzer-->C:\WINDOWS\IsUninst.exe -f"C:\Program Files\Fichiers communs\Pervasive Software Shared\PSA\psa.isu"
Pervasive.SQL V8 Workgroup (v8.6)-->MsiExec.exe /I{5FCFC78C-438A-4F4D-B266-E32B8468BAFC}
Picasa 3-->"C:\Program Files\Google\Picasa3\Uninstall.exe"
Pilote du DVD-RAM-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{9D765FA6-F2BC-40AF-8145-50808F9BDF4E}\setup.exe" -l0x40c DVD-RAM Driver
QuickTime-->MsiExec.exe /I{216AB108-2AE1-4130-B3D5-20B2C4C80F8F}
Readiris Pro 8-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{9B93C2B3-D9E8-11D6-AB3E-000102B0F79A}\setup.exe" -l0x40c
Realtek High Definition Audio Driver-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}\Setup.exe" -l0x40c -removeonly
Réducteur de bruit lect. CD/DVD-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{9FE35071-CAB2-4E79-93E7-BFC6A2DC5C5D}\Setup.exe" -l0x40c
SAMSUNG CDMA Modem Driver Set-->C:\WINDOWS\system32\Samsung_USB_Drivers\3\SSCDUninstall.exe
Samsung CLP-310 Series-->C:\Program Files\Samsung\Samsung CLP-310 Series\Install\Setup.exe /R
SAMSUNG Mobile Composite Device Software-->C:\WINDOWS\system32\Samsung_USB_Drivers\6\SSBCUninstall.exe
Samsung Mobile phone USB driver Software-->C:\WINDOWS\system32\Samsung_USB_Drivers\5\SSSDUninstall.exe
SAMSUNG Mobile USB Modem 1.0 Software-->C:\WINDOWS\system32\Samsung_USB_Drivers\1\SS_Uninstall.exe
SAMSUNG Mobile USB Modem Software-->C:\WINDOWS\system32\Samsung_USB_Drivers\2\SSM_Uninstall.exe
Samsung PC Studio 3 USB Driver Installer-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\10\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{EBA29752-DDD2-4B62-B2E3-9841F92A3E3A}\setup.exe" -l0x40c -removeonly
Samsung PC Studio 3-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\10\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{C4A4722E-79F9-417C-BD72-8D359A090C97}\setup.exe" -l0x40c -removeonly
Sarbacane 3-->C:\Program Files\Goto software\Sarbacane 3\uninst.exe
Skype™ 4.0-->MsiExec.exe /X{24D753CA-6AE9-4E30-8F5F-EFC93E08BF3D}
Synaptics Pointing Device Driver-->rundll32.exe "C:\Program Files\Synaptics\SynTP\SynISDLL.dll",standAloneUninstall
Texas Instruments PCIxx21/x515/xx12 drivers.-->C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{4497AFF6-98C4-4F49-B073-F48F42BCBF9E} /l1036
TOSHIBA Software Modem-->Tosmreg -U
Utilitaire de zoom TOSHIBA-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{64212898-097F-4F3F-AECA-6D34A7EF82DF}\Setup.exe" -l0x40c
VirginMega.Fr Premium-->MsiExec.exe /I{EE467474-04A8-48D5-8DDF-0F8D3A3CCBE5}
Windows Desktop Search 3.01-->"C:\WINDOWS\$NtUninstallKB917013$\spuninst\spuninst.exe"
Windows Driver Package - Intel (NETw4x32) net (09/26/2007 11.5.0.32)-->C:\PROGRA~1\DIFX\D6ACC4BE676423A2B130B78A4B627FC457D98997\dpinst32.exe /u C:\WINDOWS\system32\DRVSTORE\netw4x32_B0AEEEEDA759744D7D2AC236F54CA6D4CFC0961C\netw4x32.inf
Windows Driver Package - Intel (w29n51) net (07/25/2007 9.0.4.37)-->C:\PROGRA~1\DIFX\D6ACC4BE676423A2B130B78A4B627FC457D98997\dpinst32.exe /u C:\WINDOWS\system32\DRVSTORE\w29n51_E99959A506B0423451BFDD2FE3C8B527B6AF45BD\w29n51.inf
Windows Driver Package - Intel net (09/26/2007 11.5.0.32)-->C:\PROGRA~1\DIFX\D6ACC4BE676423A2B130B78A4B627FC457D98997\dpinst32.exe /u C:\WINDOWS\system32\DRVSTORE\netw4k32_4CD46BE21BE74C8D663C65B8DC2D7EEA091E50F5\netw4k32.inf
Windows Live installer-->MsiExec.exe /X{FD44E544-E7D0-4DBA-9FA0-8AE1A1300390}
Windows Live Mail-->MsiExec.exe /I{C514C594-23AA-4F13-A070-DB8BDB27594F}
Windows Live Messenger-->MsiExec.exe /X{BADF6744-3787-48F6-B8C9-4C4995401D65}
Windows Media Format 11 runtime-->"C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
Windows Media Format 11 runtime-->"C:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe"
Windows Media Player 11-->"C:\WINDOWS\$NtUninstallwmp11$\spuninst\spuninst.exe"
Windows Printing System, Canon LBP-660 (Remove only)-->rundll32.exe C:\WINDOWS\System32\spool\DRIVERS\W32X86\2\WpsC3Set.DLL,DoRemove
Windows XP Service Pack 3-->"C:\WINDOWS\$NtServicePackUninstall$\spuninst\spuninst.exe"
Yahoo! Install Manager-->C:\WINDOWS\system32\regsvr32 /u C:\PROGRA~1\Yahoo!\Common\YINSTH~1.DLL
Yahoo! Toolbar avec bloqueur de fenêtres pop-up-->C:\PROGRA~1\Yahoo!\Common\unyt.exe
======Security center information======
AV: avast! antivirus 4.8.1335 [VPS 090607-0]
======System event log======
Computer Name: SF06
Event Code: 4201
Message: Le système a détecté que la carte réseau \DEVICE\TCPIP_{BA47B196-7AEC-404B-B970-E84DCD63DA46} était connectée au réseau,
et a lancé une opération normale sur la carte réseau.
Record Number: 10165
Source Name: Tcpip
Time Written: 20090507154840.000000+120
Event Type: Informations
User:
Computer Name: SF06
Event Code: 4202
Message: Le système a détecté que la carte réseau \DEVICE\TCPIP_{BA47B196-7AEC-404B-B970-E84DCD63DA46} était déconnectée du réseau,
et la configuration réseau de la carte a été abandonnée. Si la carte
réseau n'était pas déconnectée, ceci peut indiquer un disfonctionnement.
Contactez le fabricant pour des pilotes mis à jour.
Record Number: 10164
Source Name: Tcpip
Time Written: 20090507154820.000000+120
Event Type: Informations
User:
Computer Name: SF06
Event Code: 4201
Message: Le système a détecté que la carte réseau \DEVICE\TCPIP_{BA47B196-7AEC-404B-B970-E84DCD63DA46} était connectée au réseau,
et a lancé une opération normale sur la carte réseau.
Record Number: 10163
Source Name: Tcpip
Time Written: 20090507154755.000000+120
Event Type: Informations
User:
Computer Name: SF06
Event Code: 4202
Message: Le système a détecté que la carte réseau \DEVICE\TCPIP_{BA47B196-7AEC-404B-B970-E84DCD63DA46} était déconnectée du réseau,
et la configuration réseau de la carte a été abandonnée. Si la carte
réseau n'était pas déconnectée, ceci peut indiquer un disfonctionnement.
Contactez le fabricant pour des pilotes mis à jour.
Record Number: 10162
Source Name: Tcpip
Time Written: 20090507154730.000000+120
Event Type: Informations
User:
Computer Name: SF06
Event Code: 4201
Message: Le système a détecté que la carte réseau \DEVICE\TCPIP_{BA47B196-7AEC-404B-B970-E84DCD63DA46} était connectée au réseau,
et a lancé une opération normale sur la carte réseau.
Record Number: 10161
Source Name: Tcpip
Time Written: 20090507154655.000000+120
Event Type: Informations
User:
=====Application event log=====
Computer Name: SF06
Event Code: 302
Message: wlmail (2672) WindowsLiveMail0: Le moteur de base de données a exécuté la procédure de récupération avec succès.
Record Number: 5342
Source Name: ESENT
Time Written: 20090514193318.000000+120
Event Type: Informations
User:
Computer Name: SF06
Event Code: 301
Message: wlmail (2672) WindowsLiveMail0: Le moteur de base de données commence la relecture du fichier journal C:\Documents and Settings\Propriétaire\Local Settings\Application Data\Microsoft\Windows Live Mail\edb.log.
Record Number: 5341
Source Name: ESENT
Time Written: 20090514193316.000000+120
Event Type: Informations
User:
Computer Name: SF06
Event Code: 300
Message: wlmail (2672) WindowsLiveMail0: Le moteur de base de données initialise la procédure de récupération.
Record Number: 5340
Source Name: ESENT
Time Writte
j'ai suivi vos conseils voici le premier fichier txt généré : log
Logfile of random's system information tool 1.06 (written by random/random)
Run by Propriétaire at 2009-06-08 16:54:05
Microsoft Windows XP Édition familiale Service Pack 3
System drive C: has 67 GB (70%) free of 95 GB
Total RAM: 1022 MB (38% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 16:54:17, on 08/06/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16827)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\brsvc01a.exe
C:\WINDOWS\system32\brss01a.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\system32\DVDRAMSV.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\Program Files\Toshiba\Toshiba Applet\thotkey.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\TOSHIBA\Utilitaire de zoom TOSHIBA\SmoothView.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
C:\Program Files\Synaptics\SynTP\Toshiba.exe
C:\Program Files\LogMeIn\x86\RaMaint.exe
C:\Program Files\LogMeIn\x86\LogMeInSystray.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATI9LE.EXE
C:\Program Files\LogMeIn\x86\LMIGuardian.exe
C:\Program Files\LogMeIn\x86\LogMeIn.exe
C:\WINDOWS\Samsung\PanelMgr\SSMMgr.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\WINDOWS\system32\TPSBattM.exe
C:\Program Files\LogMeIn\x86\LMIGuardian.exe
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnf.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\PVSW\Bin\WGE_SRV.EXE
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\PVSW\BIN\W3dbsmgr.EXE
C:\WINDOWS\system32\svchost.exe
C:\Program Files\TOSHIBA\TOSHIBA Applet\TAPPSRV.exe
C:\WINDOWS\system32\SearchIndexer.exe
C:\WINDOWS\system32\wscript.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Intel\Wireless\Bin\Dot1XCfg.exe
C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\taskmgr.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\VOYCI-P\AEG VOYCI-P V1-0206.exe
C:\Program Files\TOSHIBA\Bluetooth Monitor\BtMon2.exe
C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
C:\WINDOWS\system32\RAMASST.exe
C:\Program Files\Windows Desktop Search\WindowsSearch.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\Documents and Settings\Propriétaire\Local Settings\Temporary Internet Files\Content.IE5\42VB9U8L\RSIT[1].exe
C:\Program Files\trend micro\Propriétaire.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet /keeploaded /nodetect
O4 - HKLM\..\Run: [NVRotateSysTray] rundll32.exe C:\WINDOWS\system32\nvsysrot.dll,Enable
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [TPSMain] TPSMain.exe
O4 - HKLM\..\Run: [IntelZeroConfig] "C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe"
O4 - HKLM\..\Run: [IntelWireless] "C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe" /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [THotkey] C:\Program Files\Toshiba\Toshiba Applet\thotkey.exe
O4 - HKLM\..\Run: [SmoothView] C:\Program Files\TOSHIBA\Utilitaire de zoom TOSHIBA\SmoothView.exe
O4 - HKLM\..\Run: [DriverMagicSchedule] "C:\Program Files\SymplisIT\DriverMagic\dmschedule.exe" /boot
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [Share-to-Web Namespace Daemon] C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
O4 - HKLM\..\Run: [LogMeIn GUI] "C:\Program Files\LogMeIn\x86\LogMeInSystray.exe"
O4 - HKLM\..\Run: [EPSON Stylus Photo R1800] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATI9LE.EXE /P24 "EPSON Stylus Photo R1800" /O6 "USB001" /M "Stylus Photo R1800"
O4 - HKLM\..\Run: [Samsung PanelMgr] C:\WINDOWS\Samsung\PanelMgr\SSMMgr.exe /autorun
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [winboot] wscript.exe /E:vbs C:\WINDOWS\boot.ini
O4 - HKLM\..\Run: [MS32DLL] C:\WINDOWS\.MS32DLL.dll.vbs
O4 - HKLM\..\RunOnce: [PixelInstall]
O4 - HKCU\..\Run: [TOSCDSPD] C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe
O4 - HKCU\..\Run: [Uniblue RegistryBooster 2009] C:\Program Files\Uniblue\RegistryBooster\RegistryBooster.exe /S
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: AEG VOYCI-P V1-0206.lnk = ?
O4 - Global Startup: Bluetooth Monitor.lnk = ?
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: RAMASST.lnk = C:\WINDOWS\system32\RAMASST.exe
O4 - Global Startup: Windows Desktop Search.lnk = C:\Program Files\Windows Desktop Search\WindowsSearch.exe
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Object) - http://appldnld.apple.com/QuickTime/qtactivex/qtplugin.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {474F00F5-3853-492C-AC3A-476512BBC336} (UploadListView Class) - http://picasaweb.google.fr/s/v/45.19/uploader2.cab
O16 - DPF: {4871A87A-BFDD-4106-8153-FFDE2BAC2967} (DLM Control) - http://dlm.tools.akamai.com/dlmanager/versions/activex/dlm-activex-2.2.4.3.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/...
O16 - DPF: {9FFA5747-4FDB-4221-A61E-4CAC0E5095A5} (CUtils Object) - http://193.251.67.167:81/6.0.19/dlls/iBiZaCL.dll
O16 - DPF: {EDFCB7CB-942C-4822-AF14-F0B687409848} (Image Uploader Control) - http://www.photoservice.com/telechargement/ImageUploader4.cab
O16 - DPF: {FD0B6769-6490-4A91-AA0A-B5AE0DC75AC9} (Performance Viewer Activex Control) - https://secure.logmein.com/activex/ractrl.cab?lmi=100
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL
O23 - Service: Service de configuration Atheros (ACS) - Unknown owner - C:\WINDOWS\system32\acs.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: BrSplService (Brother XP spl Service) - brother Industries Ltd - C:\WINDOWS\system32\brsvc01a.exe
O23 - Service: DVD-RAM_Service - Matsushita Electric Industrial Co., Ltd. - C:\WINDOWS\system32\DVDRAMSV.exe
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: Google Desktop Manager 5.8.809.23506 (GoogleDesktopManager-092308-165331) - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LogMeIn Maintenance Service (LMIMaint) - LogMeIn, Inc. - C:\Program Files\LogMeIn\x86\RaMaint.exe
O23 - Service: LogMeIn - LogMeIn, Inc. - C:\Program Files\LogMeIn\x86\LogMeIn.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: EBP - Pervasive.SQL Workgroup (Pervasive.SQL Workgroup) - Unknown owner - C:\PVSW\Bin\WGE_SRV.EXE
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Intel(R) PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: TOSHIBA Application Service (TAPPSRV) - TOSHIBA Corp. - C:\Program Files\TOSHIBA\TOSHIBA Applet\TAPPSRV.exe
--
End of file - 12537 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\Allway Sync_{447459E3B80D1AC042722FBC8A988FB5}.job
C:\WINDOWS\tasks\AppleSoftwareUpdate.job
C:\WINDOWS\tasks\WebReg 20081112164037.job
C:\WINDOWS\tasks\Windows Media Player.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4EFB-9B51-7695ECA05670}]
Yahoo! Toolbar Helper - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll [2006-10-26 440384]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Adobe PDF Reader Link Helper - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll [2006-12-18 59032]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{22BF413B-C6D2-4d91-82A9-A0F997BA588C}]
Skype add-on (mastermind) - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2009-02-04 1082880]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Programme d'aide de l'Assistant de connexion Windows Live - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-02-17 408440]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-03-09 35840]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2009-03-09 73728]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E99421FB-68DD-40F0-B4AC-B7027CAE2F1A}]
EpsonToolBandKicker Class - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll [2005-02-21 368640]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{EF99BD32-C1FB-11D2-892F-0090271D4F88} - Yahoo! Toolbar avec bloqueur de fenêtres pop-up - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll [2006-10-26 440384]
{EE5D279F-081B-4404-994D-C6B60AAEBA6D} - EPSON Web-To-Page - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll [2005-02-21 368640]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"avast!"=C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe [2009-02-05 81000]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2006-05-01 7557120]
"nwiz"=nwiz.exe /installquiet /keeploaded /nodetect []
"NVRotateSysTray"=C:\WINDOWS\system32\nvsysrot.dll [2006-05-01 49152]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2006-03-02 761948]
"TPSMain"=C:\WINDOWS\system32\TPSMain.exe [2005-08-03 266240]
"IntelZeroConfig"=C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe [2007-10-08 995328]
"IntelWireless"=C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe [2007-10-08 1101824]
"THotkey"=C:\Program Files\Toshiba\Toshiba Applet\thotkey.exe [2006-01-05 352256]
"SmoothView"=C:\Program Files\TOSHIBA\Utilitaire de zoom TOSHIBA\SmoothView.exe [2005-05-17 118784]
"DriverMagicSchedule"=C:\Program Files\SymplisIT\DriverMagic\dmschedule.exe [2008-10-03 69632]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2008-09-30 16864768]
"Alcmtr"=C:\WINDOWS\ALCMTR.EXE [2008-06-19 57344]
"Google Desktop Search"=C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [2008-11-07 30192]
"Share-to-Web Namespace Daemon"=C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe [2002-04-17 69632]
"LogMeIn GUI"=C:\Program Files\LogMeIn\x86\LogMeInSystray.exe [2008-07-24 63048]
"EPSON Stylus Photo R1800"=C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATI9LE.EXE [2004-09-08 98304]
"Samsung PanelMgr"=C:\WINDOWS\Samsung\PanelMgr\SSMMgr.exe [2008-08-08 524288]
"SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2009-03-09 148888]
"QuickTime Task"=C:\Program Files\QuickTime\qttask.exe [2009-04-23 413696]
"winboot"=wscript.exe /E:vbs C:\WINDOWS\boot.ini []
"MS32DLL"=C:\WINDOWS\.MS32DLL.dll.vbs [2009-06-08 8198]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"PixelInstall"=1 []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"TOSCDSPD"=C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe [2005-04-11 65536]
"Uniblue RegistryBooster 2009"=C:\Program Files\Uniblue\RegistryBooster\RegistryBooster.exe /S []
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2009-02-04 23975720]
"msnmsgr"=C:\Program Files\Windows Live\Messenger\msnmsgr.exe [2007-10-18 5724184]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MsnMsgr]
C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe [2007-10-18 5724184]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Propriétaire^Menu Démarrer^Programmes^Démarrage^Corel Registration.lnk]
C:\PROGRA~1\Corel\GRAPHI~1\Register\Remind32.exe [1998-07-23 67584]
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage
AEG VOYCI-P V1-0206.lnk - C:\WINDOWS\Installer\{33B3E1FA-4E33-415F-BD27-6AF78304FB95}\_5af141bb.exe
Bluetooth Monitor.lnk - C:\Program Files\TOSHIBA\Bluetooth Monitor\BtMon2.exe
Lancement rapide d'Adobe Reader.lnk - C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
RAMASST.lnk - C:\WINDOWS\system32\RAMASST.exe
Windows Desktop Search.lnk - C:\Program Files\Windows Desktop Search\WindowsSearch.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLS"="C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\LMIinit]
C:\WINDOWS\system32\LMIinit.dll [2008-10-16 87352]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{56F9679E-7826-4C84-81F3-532071A8BCC5}"=C:\Program Files\Windows Desktop Search\MSNLNamespaceMgr.dll [2007-02-05 294400]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoRun"=1
"NoDriveTypeAutoRun"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\PVSW\Bin\w3dbsmgr.exe"="C:\PVSW\Bin\w3dbsmgr.exe:*:Enabled:Database Service Manager"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\Windows Live\Messenger\livecall.exe"="C:\Program Files\Windows Live\Messenger\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"
"C:\Program Files\SymplisIT\DriverMagic\DriverMagic.exe"="C:\Program Files\SymplisIT\DriverMagic\DriverMagic.exe:*:Enabled:DriverMagic by SymplisIT Corp."
"C:\Program Files\Internet Explorer\iexplore.exe"="C:\Program Files\Internet Explorer\iexplore.exe:*:Enabled:Internet Explorer"
"C:\Program Files\EBP\ComptaPratic13.1\EbpFlash.exe"="C:\Program Files\EBP\ComptaPratic13.1\EbpFlash.exe:*:Enabled:Compta"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\Windows Live\Messenger\livecall.exe"="C:\Program Files\Windows Live\Messenger\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{811e0104-acac-11dd-a3c4-00a0d15590f3}]
shell\AutoRun\command - C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL wscript.exe .MS32DLL.dll.vbs
======List of files/folders created in the last 1 months======
2009-06-08 16:54:06 ----D---- C:\Program Files\trend micro
2009-06-08 16:54:05 ----D---- C:\rsit
2009-06-08 16:34:31 ----RASH---- C:\WINDOWS\.MS32DLL.dll.vbs
2009-06-08 09:25:31 ----A---- C:\WINDOWS\msnfix.txt
2009-06-06 11:36:50 ----A---- C:\WINDOWS\system32\CNMVS75.DLL
2009-06-06 11:36:46 ----A---- C:\WINDOWS\system32\CNMLM75.DLL
2009-06-06 09:34:44 ----A---- C:\WINDOWS\boot.ini
======List of files/folders modified in the last 1 months======
2009-06-08 16:54:11 ----D---- C:\WINDOWS\Prefetch
2009-06-08 16:54:06 ----RD---- C:\Program Files
2009-06-08 16:51:44 ----D---- C:\Documents and Settings\Propriétaire\Application Data\Skype
2009-06-08 16:50:38 ----D---- C:\Documents and Settings\Propriétaire\Application Data\skypePM
2009-06-08 16:50:21 ----D---- C:\WINDOWS\Temp
2009-06-08 16:47:23 ----D---- C:\WINDOWS\system32\CatRoot2
2009-06-08 16:36:52 ----A---- C:\WINDOWS\SchedLgU.Txt
2009-06-08 16:34:31 ----D---- C:\WINDOWS
2009-06-08 09:26:27 ----SHD---- C:\System Volume Information
2009-06-08 09:26:27 ----D---- C:\WINDOWS\system32\Restore
2009-06-08 09:15:35 ----D---- C:\Program Files\LogMeIn
2009-06-06 11:36:50 ----D---- C:\WINDOWS\system32
2009-06-06 11:36:45 ----HD---- C:\WINDOWS\inf
2009-06-03 17:18:56 ----A---- C:\WINDOWS\win.ini
2009-05-28 16:38:26 ----D---- C:\Program Files\Allway Sync
2009-05-27 20:18:59 ----RSD---- C:\WINDOWS\Fonts
2009-05-13 19:03:16 ----D---- C:\Documents and Settings\Propriétaire\Application Data\gtk-2.0
2009-05-13 13:02:25 ----SHD---- C:\WINDOWS\Installer
2009-05-13 13:02:25 ----D---- C:\Config.Msi
2009-05-12 18:11:44 ----A---- C:\WINDOWS\SETSCAN.INI
2009-05-12 15:57:03 ----A---- C:\WINDOWS\hpqcopy.INI
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 Aavmker4;avast! Asynchronous Virus Monitor; C:\WINDOWS\system32\drivers\Aavmker4.sys [2009-02-05 26944]
R1 AFS2K;AFS2k; C:\WINDOWS\system32\drivers\AFS2K.sys [2008-11-12 82380]
R1 aswSP;avast! Self Protection; C:\WINDOWS\system32\drivers\aswSP.sys [2009-02-05 114768]
R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2009-02-05 51376]
R1 intelppm;Pilote de processeur Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40576]
R1 kbdhid;Pilote HID de clavier; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14720]
R1 meiudf;meiudf; C:\WINDOWS\System32\Drivers\meiudf.sys [2005-06-02 102384]
R1 StarOpen;StarOpen; C:\WINDOWS\system32\drivers\StarOpen.sys [2006-07-24 5632]
R2 Aspi32;Aspi32; C:\WINDOWS\system32\drivers\Aspi32.sys [2004-04-22 16512]
R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\DRIVERS\aswFsBlk.sys [2009-02-05 20560]
R2 aswMon2;avast! Standard Shield Support; C:\WINDOWS\system32\drivers\aswMon2.sys [2009-02-05 94032]
R2 LMIInfo;LogMeIn Kernel Information Provider; \??\C:\Program Files\LogMeIn\x86\RaInfo.sys []
R2 LMIRfsDriver;LogMeIn Remote File System Driver; \??\C:\WINDOWS\system32\drivers\LMIRfsDriver.sys []
R2 s24trans;Transport RLAN; C:\WINDOWS\system32\DRIVERS\s24trans.sys [2007-08-27 12288]
R3 AgereSoftModem;TOSHIBA V92 Software Modem; C:\WINDOWS\system32\DRIVERS\AGRSM.sys [2005-11-15 1122656]
R3 Arp1394;Protocole client ARP 1394; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-13 60800]
R3 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2009-02-05 23152]
R3 BulkUsb;VoIPUSBDriver.sys; C:\WINDOWS\System32\Drivers\VoIPUSBDriver.sys [2005-09-16 149504]
R3 CmBatt;Pilote pour Batterie à méthode de contrôle ACPI Microsoft; C:\WINDOWS\system32\DRIVERS\CmBatt.sys [2008-04-13 13952]
R3 E100B;Intel(R) PRO Network Connection Driver; C:\WINDOWS\system32\DRIVERS\e100b325.sys [2007-11-16 165496]
R3 HDAudBus;Pilote de bus Microsoft UAA pour High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 hidusb;Pilote de classe HID Microsoft; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2008-10-02 4878336]
R3 lmimirr;lmimirr; C:\WINDOWS\system32\DRIVERS\lmimirr.sys [2008-07-24 10144]
R3 NETw4x32;Pilote de carte Intel(R) Wireless WiFi Link pour Windows XP 32 bits; C:\WINDOWS\system32\DRIVERS\NETw4x32.sys [2007-09-26 2236032]
R3 NIC1394;Pilote réseau 1394; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-13 61824]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2006-05-01 3643296]
R3 sdbus;sdbus; C:\WINDOWS\system32\DRIVERS\sdbus.sys [2008-04-13 79232]
R3 SynTP;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2006-03-02 191968]
R3 tifm21;tifm21; C:\WINDOWS\system32\drivers\tifm21.sys [2005-11-30 162560]
R3 TVALD;Toshiba Mobile PC Service; C:\WINDOWS\system32\DRIVERS\NBSMI.sys [2005-10-20 6144]
R3 usbaudio;Pilote USB audio (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2008-04-13 60032]
R3 usbccgp;Pilote parent générique USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
R3 usbehci;Pilote miniport de contrôleur d'hôte amélioré Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-13 30208]
R3 usbhub;Pilote de concentrateur standard USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-13 59520]
R3 usbprint;Classe d'imprimantes USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
R3 usbscan;Pilote de scanneur USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
R3 usbstor;Pilote de stockage de masse USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
R3 usbuhci;Pilote miniport de contrôleur hôte universel USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
S2 DgiVecp;DgiVecp; \??\C:\WINDOWS\system32\Drivers\DgiVecp.sys []
S2 SSPORT;SSPORT; \??\C:\WINDOWS\system32\Drivers\SSPORT.sys []
S3 BrScnUsb;Brother USB Still Image driver; C:\WINDOWS\System32\Drivers\BrScnUsb.sys [2004-10-15 15295]
S3 catchme;catchme; \??\C:\DOCUME~1\PROPRI~1\LOCALS~1\Temp\catchme.sys []
S3 NAL;Nal Service ; \??\C:\WINDOWS\system32\Drivers\iqvw32.sys []
S3 sffdisk;Pilote de classe de stockage SFF; C:\WINDOWS\system32\DRIVERS\sffdisk.sys [2008-04-13 11904]
S3 sffp_sd;Pilote de protocole de stockage SFF pour SDBus; C:\WINDOWS\system32\DRIVERS\sffp_sd.sys [2008-04-13 11008]
S3 ssm_bus;SAMSUNG Mobile USB Device II 1.0 driver (WDM); C:\WINDOWS\system32\DRIVERS\ssm_bus.sys [2005-08-30 58320]
S3 ssm_mdfl;SAMSUNG Mobile USB Modem II 1.0 Filter; C:\WINDOWS\system32\DRIVERS\ssm_mdfl.sys [2005-08-30 8336]
S3 ssm_mdm;SAMSUNG Mobile USB Modem II 1.0 Drivers; C:\WINDOWS\system32\DRIVERS\ssm_mdm.sys [2005-08-30 94000]
S3 SVRPEDRV;SVRPEDRV; \??\C:\DOCUME~1\PROPRI~1\LOCALS~1\Temp\RarSFX0\S10VWF\PEDrv.sys []
S3 ti21sony;ti21sony; C:\WINDOWS\system32\drivers\ti21sony.sys [2006-11-06 227328]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []
S4 LMIRfsClientNP;LMIRfsClientNP; C:\WINDOWS\system32\drivers\LMIRfsClientNP.sys []
S4 sr;Pilote de filtre de restauration système; C:\WINDOWS\system32\DRIVERS\sr.sys [2008-04-14 73600]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 aswUpdSv;avast! iAVS4 Control Service; C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe [2009-02-05 18752]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast4\ashServ.exe [2009-02-05 138680]
R2 Brother XP spl Service;BrSplService; C:\WINDOWS\system32\brsvc01a.exe [2002-04-11 57344]
R2 DVD-RAM_Service;DVD-RAM_Service; C:\WINDOWS\system32\DVDRAMSV.exe [2004-08-28 110592]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\Wireless\Bin\EvtEng.exe [2007-10-08 794624]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2009-03-09 152984]
R2 LMIMaint;LogMeIn Maintenance Service; C:\Program Files\LogMeIn\x86\RaMaint.exe [2008-10-16 116032]
R2 LogMeIn;LogMeIn; C:\Program Files\LogMeIn\x86\LogMeIn.exe [2008-07-24 63040]
R2 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2006-05-01 143428]
R2 Pervasive.SQL Workgroup;EBP - Pervasive.SQL Workgroup; C:\PVSW\Bin\WGE_SRV.EXE [2006-12-07 32768]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe [2007-10-08 483328]
R2 S24EventMonitor;Intel(R) PROSet/Wireless Service; C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe [2007-10-08 1183744]
R2 TAPPSRV;TOSHIBA Application Service; C:\Program Files\TOSHIBA\TOSHIBA Applet\TAPPSRV.exe [2005-12-20 35328]
R2 WSearch;Recherche Windows; C:\WINDOWS\system32\SearchIndexer.exe [2007-02-05 300032]
R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe [2009-02-05 254040]
R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast4\ashWebSv.exe [2009-02-05 352920]
S2 ACS;Service de configuration Atheros; C:\WINDOWS\system32\acs.exe [2005-09-26 36864]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_state.exe [2004-07-15 32768]
S3 GoogleDesktopManager-092308-165331;Google Desktop Manager 5.8.809.23506; C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [2008-11-07 30192]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2008-08-01 136120]
S3 ose;Office Source Engine; C:\Program Files\Fichiers communs\Microsoft Shared\Source Engine\OSE.EXE [2007-08-22 147824]
S3 usnjsvc;Service Messenger Sharing Folders USN Journal Reader; C:\Program Files\Windows Live\Messenger\usnsvc.exe [2007-10-18 98328]
S3 WLSetupSvc;Windows Live Setup Service; C:\Program Files\Windows Live\installer\WLSetupSvc.exe [2007-10-25 266240]
S3 WMPNetworkSvc;Service Partage réseau du Lecteur Windows Media; C:\Program Files\Windows Media Player\WMPNetwk.exe [2006-11-03 918016]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
-----------------EOF-----------------
voici le second :INFO
info.txt logfile of random's system information tool 1.06 2009-06-08 16:54:22
======Uninstall list======
-->MsiExec.exe /I{403EF592-953B-4794-BCEF-ECAB835C2095}
-->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
Adobe Flash Player 10 ActiveX-->C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
Adobe Reader 7.0.9 - Français-->MsiExec.exe /I{AC76BA86-7AD7-1036-7B44-A70900000002}
AEG VOYCI-P V1-0206-->MsiExec.exe /I{33B3E1FA-4E33-415F-BD27-6AF78304FB95}
Allway Sync version 9.2.15-->"C:\Program Files\Allway Sync\unins000.exe"
anooki-v5-0 Screen Saver-->C:\WINDOWS\system32\anooki-v5-0.scr /u
Apple Software Update-->MsiExec.exe /I{6956856F-B6B3-4BE0-BA0B-8F495BE32033}
Assist TOSHIBA-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{12B3A009-A080-4619-9A2A-C6DB151D8D67}\Setup.exe" -l0x40c
Assistant de connexion Windows Live-->MsiExec.exe /I{D3116CC7-24DC-4CA3-9CE1-23FED836E9F2}
Atheros Client Utility-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{71D658CF-4E0D-4DA8-AA67-8C0B6F1C01FE}\setup.exe" -l0x40c
ATI - Utilitaire de désinstallation du logiciel-->C:\Program Files\ATI Technologies\UninstallAll\AtiCimUn.exe
avast! Antivirus-->C:\Program Files\Alwil Software\Avast4\aswRunDll.exe "C:\Program Files\Alwil Software\Avast4\Setup\setiface.dll",RunSetup
Bluetooth Monitor 2-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\10\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{61539202-097E-487E-9237-B291AB56D54C}\setup.exe" -l0x9 -removeonly
Canon iP4200-->C:\WINDOWS\system32\CNMCP78.exe "-PRINTERNAMECanon iP4200" "-HELPERDLLC:\Documents and Settings\All Users\Application Data\CanonBJ\IJPrinter\CNMWINDOWS\Canon iP4200 Installer\Inst2\cnmis.dll" "-RCDLLcnmi040c.dll"
Canon Setup Utility 2.0-->"C:\Program Files\Canon\Canon Setup Utility 2.0\Maint.exe" /Uninstall C:\Program Files\Canon\Canon Setup Utility 2.0\uninst.ini
CCleaner (remove only)-->"C:\Program Files\CCleaner\uninst.exe"
CD-LabelPrint-->"C:\Program Files\Canon\CD-LabelPrint\Uninstal.exe" Canon.CDLabelPrint.Application
Corel Applications-->C:\WINDOWS\Corel\Uninst32.exe
CorelDRAW Graphics Suite X4 - Capture-->MsiExec.exe /I{7F05E704-30A6-421A-97A7-8EEB1C7FF012}
CorelDRAW Graphics Suite X4 - Content-->MsiExec.exe /I{7F05E704-30A6-421A-97A7-8EEB1C7FF016}
CorelDRAW Graphics Suite X4 - Draw-->MsiExec.exe /I{7F05E704-30A6-421A-97A7-8EEB1C7FF013}
CorelDRAW Graphics Suite X4 - Extra Content-->MsiExec.exe /I{80FDAE30-CDB6-4015-AFC7-86A762A5AD9B}
CorelDRAW Graphics Suite X4 - Filters-->MsiExec.exe /I{7F05E704-30A6-421A-97A7-8EEB1C7FF017}
CorelDRAW Graphics Suite X4 - FontNav-->MsiExec.exe /I{7F05E704-30A6-421A-97A7-8EEB1C7FF019}
CorelDRAW Graphics SUite X4 - ICA-->MsiExec.exe /I{7F05E704-30A6-421A-97A7-8EEB1C7FF010}
CorelDRAW Graphics Suite X4 - IPM-->MsiExec.exe /I{9D0798D0-AF6C-4E62-94B1-AEBF1A43E00A}
CorelDRAW Graphics Suite X4 - Lang FR-->MsiExec.exe /I{9D306690-3173-42CD-94C6-9EF9318AF24B}
CorelDRAW Graphics Suite X4 - Lang IT-->MsiExec.exe /I{D0160DD3-6F62-4F1E-B999-6C68D3AE7390}
CorelDRAW Graphics Suite X4 - Lang NL-->MsiExec.exe /I{A6C27FFF-75EF-4B5B-A64E-F9E128994908}
CorelDRAW Graphics Suite X4 - PP-->MsiExec.exe /I{7F05E704-30A6-421A-97A7-8EEB1C7FF014}
CorelDRAW Graphics Suite X4 - VBA-->MsiExec.exe /I{BF439B41-0252-48DE-8B8B-0430CB26A181}
CorelDRAW Graphics Suite X4-->MsiExec.exe /I{7F05E704-30A6-421A-97A7-8EEB1C7FF000}
CorelDRAW(R) Graphics Suite X4 - Extra Content-->C:\Documents and Settings\Propriétaire\Mes documents\CLIPARTS\Setup\SetupARP.exe /arp
CorelDRAW(R) Graphics Suite X4 - Windows Shell Extension-->c:\Program Files\Fichiers communs\Corel\Shared\Shell Extension\Uninst.exe
CorelDRAW(R) Graphics Suite X4 - Windows Shell Extension-->MsiExec.exe /X{CE2DA11A-917F-4CF5-AB55-755EC115DD10}
CorelDRAW(R) Graphics Suite X4-->C:\Program Files\Corel\CorelDRAW Graphics Suite X4\Setup\SetupARP.exe /arp
Correctif pour Lecteur Windows Media 11 (KB939683)-->"C:\WINDOWS\$NtUninstallKB939683$\spuninst\spuninst.exe"
Correctif pour Windows XP (KB952287)-->"C:\WINDOWS\$NtUninstallKB952287$\spuninst\spuninst.exe"
CutePDF Writer 2.7-->C:\Program Files\Acro Software\CutePDF Writer\uninscpw.exe
Disque de souvenirs HP-->MsiExec.exe /X{B376402D-58EA-45EA-BD50-DD924EB67A70}
Dr.STIKA PLUS-->C:\WINDOWS\IsUninst.exe -f"C:\Program Files\Dr.STIKA PLUS\Uninst.isu"
DriverMagic-->MsiExec.exe /I{5BEB2F46-3723-47CF-BF7F-39C453B9D977}
EBP Compta Pratic 13.1-->"C:\Documents and Settings\All Users\Application Data\{9BD00415-AC84-439F-901D-2A41BA32CD07}\setup.exe" REMOVE=TRUE MODIFY=FALSE
EBP Compta Pratic 13.1-->C:\Documents and Settings\All Users\Application Data\{9BD00415-AC84-439F-901D-2A41BA32CD07}\setup.exe
EBP Comptabilité-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\10\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{5827A3F0-23B3-414F-BFD8-95F96A3D199D}\setup.exe" -l0x40c /uninst
EBP Devis et Facturation Pratic 2009 6.0-->"C:\Documents and Settings\All Users\Application Data\{81881ABF-3E98-4AA8-97B6-AC039F31AE54}\setup.exe" REMOVE=TRUE MODIFY=FALSE
EBP Devis et Facturation Pratic 2009 6.0-->C:\Documents and Settings\All Users\Application Data\{81881ABF-3E98-4AA8-97B6-AC039F31AE54}\setup.exe
EBP Gestion Commerciale-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\10\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{46DA90DB-D8D5-474A-B138-D5588F8D0BEF}\setup.exe" -l0x40c /uninst
EBP Paye-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\10\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{73CAA13B-7EEB-4633-B4C2-455EDDE6D264}\setup.exe" -l0x40c /uninst
Embird 2008-->"C:\Program Files\EMBIRD32\UNINST.EXE"
EPSON Attach To Email-->C:\Program Files\Fichiers communs\InstallShield\Driver\8\Intel 32\IDriver.exe /M{20C45B32-5AB6-46A4-94EF-58950CAF05E5} /l1033 ADDREMOVEDLG
EPSON Darkroom Print-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{D67F1B6B-44BF-498D-BD4B-6E0880DC2A87}\SETUP.EXE" -l0x40c UNINST
EPSON Easy Photo Print-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{5DA7BC15-18D3-41A0-9F59-838DA3EAEF17}\SETUP.EXE" -l0x40c UNINST
EPSON File Manager-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{E86BC406-944E-41F6-ADE6-2C136734C96B}\Setup.exe" -l0x40c UNINST
EPSON Logiciel imprimante-->C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\EPUPDATE.EXE /R
EPSON Print CD-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{FF477885-5EA8-40D0-ADF3-D4C1B86FAEA4}\SETUP.EXE" -l0x40c -SYSTEM
EPSON RAW Print-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{A9E80F99-6295-4605-A609-675E78D63250}\SETUP.EXE" -l0x40c /COMPANE
EPSON Scan Assistant-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{2A88F1BF-7041-4E42-84B1-6B4ACB83AC64}\Setup.exe" -l0x40c -u
EPSON Web-To-Page-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{7F14F68C-17FA-4F88-B3FD-7F449C1EBF32}\SETUP.EXE" -l0x40c -anything
ESPR1800 Guide de réf.-->C:\Program Files\EPSON\TPMANUAL\ESPR1800\REF_G\DOCUNINS.EXE
FileZilla Client 3.2.0-->C:\Program Files\FileZilla FTP Client\uninstall.exe
Finance 2003 version 10.03-->"C:\Program Files\SoftChris\Finance 2003\unins000.exe"
Formatage de carte mémoire SD TOSHIBA-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{48CF9A66-5F03-4025-ABD0-B3A3FA095A59}\Setup.exe" -l0x40c
Gestion d'énergie TOSHIBA-->C:\WINDOWS\IsUn040c.exe -f"C:\Program Files\TOSHIBA\Power Saver\Uninst.isu" -c"C:\WINDOWS\system32\TPSDel.dll"
Google Desktop-->C:\Program Files\Google\Google Desktop Search\GoogleDesktopSetup.exe -uninstall
High Definition Audio Driver Package - KB888111-->"C:\WINDOWS\$NtUninstallKB888111WXPSP2$\spuninst\spuninst.exe"
HijackThis 2.0.2-->"C:\Program Files\trend micro\HijackThis.exe" /uninstall
Hotfix for Windows Media Format 11 SDK (KB929399)-->"C:\WINDOWS\$NtUninstallKB929399$\spuninst\spuninst.exe"
HP Commercial Scanjet 5590 TWAIN Driver-->C:\WINDOWS\IsUn040c.exe -f"C:\WINDOWS\PIXTRAN\HP Commercial Scanjet 5590 TWAIN Driver.isu" -c"C:\WINDOWS\PIXTRAN\sdkunin.dll"
HP Photo and Imaging 2.5 - Scanjet 5590 Series-->MsiExec.exe /I{CC12B3AC-0A75-4F85-8BC9-89D440BE3846}
Inkscape 0.46-->C:\Program Files\Inkscape\Uninstall.exe
inook-v4-2 Screen Saver-->C:\WINDOWS\system32\inook-v4-2.scr /u
Intel(R) Network Connections 13.2.8.0-->MsiExec.exe /i{AAA4850F-7E20-40D7-A4C3-3697E7FA4A54} ARPREMOVE=1
IZArc 3.81-->"C:\Program Files\IZArc\unins000.exe"
Java(TM) 6 Update 13-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216012FF}
Java(TM) 6 Update 7-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160070}
K-Lite Codec Pack 4.2.5 (Full)-->"C:\Program Files\K-Lite Codec Pack\unins000.exe"
Lecteur Windows Media 11-->"C:\Program Files\Windows Media Player\Setup_wm.exe" /Uninstall
Location Immobiliere-->MsiExec.exe /I{6721258A-8ECF-4425-A97B-E1A01CB1C645}
Logiciel Intel(R) PROSet/Wireless-->C:\WINDOWS\Installer\iProInst.exe
LogMeIn-->MsiExec.exe /I{7F831576-6246-42C7-B523-55B3F96509CC}
mCore-->MsiExec.exe /I{E81667C6-2856-46D6-ABEA-6A2F42166779}
mDrWiFi-->MsiExec.exe /I{F6090A17-0967-4A8A-B3C3-422A1B514D49}
mHelp-->MsiExec.exe /I{8C6BB412-D3A8-4AAE-A01B-35B681789D68}
Microsoft .NET Framework 1.1 Hotfix (KB928366)-->"C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe" "C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\M928366\M928366Uninstall.msp"
Microsoft .NET Framework 1.1-->msiexec.exe /X {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 1.1-->MsiExec.exe /X{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft Compression Client Pack 1.0 for Windows XP-->"C:\WINDOWS\$NtUninstallMSCompPackV1$\spuninst\spuninst.exe"
Microsoft Internationalized Domain Names Mitigation APIs-->"C:\WINDOWS\$NtServicePackUninstallIDNMitigationAPIs$\spuninst\spuninst.exe"
Microsoft National Language Support Downlevel APIs-->"C:\WINDOWS\$NtServicePackUninstallNLSDownlevelMapping$\spuninst\spuninst.exe"
Microsoft Office Access Runtime (French) 2007-->MsiExec.exe /X{90120000-001C-040C-0000-0000000FF1CE}
Microsoft Office PowerPoint Viewer 2007 (French)-->MsiExec.exe /X{95120000-00AF-040C-0000-0000000FF1CE}
Microsoft User-Mode Driver Framework Feature Pack 1.0-->"C:\WINDOWS\$NtUninstallWudf01000$\spuninst\spuninst.exe"
Mise à jour critique pour Lecteur Windows Media 11 (KB959772)-->"C:\WINDOWS\$NtUninstallKB959772_WM11$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Lecteur Windows Media (KB952069)-->"C:\WINDOWS\$NtUninstallKB952069_WM9$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Lecteur Windows Media 11 (KB936782)-->"C:\WINDOWS\$NtUninstallKB936782_WMP11$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Lecteur Windows Media 11 (KB954154)-->"C:\WINDOWS\$NtUninstallKB954154_WM11$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB938127-v2)-->"C:\WINDOWS\ie7updates\KB938127-v2-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB956390)-->"C:\WINDOWS\ie7updates\KB956390-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB958215)-->"C:\WINDOWS\ie7updates\KB958215-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB960714)-->"C:\WINDOWS\ie7updates\KB960714-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB961260)-->"C:\WINDOWS\ie7updates\KB961260-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB963027)-->"C:\WINDOWS\ie7updates\KB963027-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB923561)-->"C:\WINDOWS\$NtUninstallKB923561$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB938464)-->"C:\WINDOWS\$NtUninstallKB938464$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB938464-v2)-->"C:\WINDOWS\$NtUninstallKB938464-v2$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB941569)-->"C:\WINDOWS\$NtUninstallKB941569$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB946648)-->"C:\WINDOWS\$NtUninstallKB946648$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB950762)-->"C:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB950974)-->"C:\WINDOWS\$NtUninstallKB950974$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB951066)-->"C:\WINDOWS\$NtUninstallKB951066$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB951376-v2)-->"C:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB951698)-->"C:\WINDOWS\$NtUninstallKB951698$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB951748)-->"C:\WINDOWS\$NtUninstallKB951748$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB952004)-->"C:\WINDOWS\$NtUninstallKB952004$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB952954)-->"C:\WINDOWS\$NtUninstallKB952954$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB954211)-->"C:\WINDOWS\$NtUninstallKB954211$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB954459)-->"C:\WINDOWS\$NtUninstallKB954459$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB954600)-->"C:\WINDOWS\$NtUninstallKB954600$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB955069)-->"C:\WINDOWS\$NtUninstallKB955069$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB956390)-->"C:\WINDOWS\$NtUninstallKB956390$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB956391)-->"C:\WINDOWS\$NtUninstallKB956391$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB956572)-->"C:\WINDOWS\$NtUninstallKB956572$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB956802)-->"C:\WINDOWS\$NtUninstallKB956802$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB956803)-->"C:\WINDOWS\$NtUninstallKB956803$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB956841)-->"C:\WINDOWS\$NtUninstallKB956841$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB957095)-->"C:\WINDOWS\$NtUninstallKB957095$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB957097)-->"C:\WINDOWS\$NtUninstallKB957097$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB958644)-->"C:\WINDOWS\$NtUninstallKB958644$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB958687)-->"C:\WINDOWS\$NtUninstallKB958687$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB958690)-->"C:\WINDOWS\$NtUninstallKB958690$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB959426)-->"C:\WINDOWS\$NtUninstallKB959426$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB960225)-->"C:\WINDOWS\$NtUninstallKB960225$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB960715)-->"C:\WINDOWS\$NtUninstallKB960715$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB960803)-->"C:\WINDOWS\$NtUninstallKB960803$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB961373)-->"C:\WINDOWS\$NtUninstallKB961373$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB951072-v2)-->"C:\WINDOWS\$NtUninstallKB951072-v2$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB951978)-->"C:\WINDOWS\$NtUninstallKB951978$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB955839)-->"C:\WINDOWS\$NtUninstallKB955839$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB967715)-->"C:\WINDOWS\$NtUninstallKB967715$\spuninst\spuninst.exe"
mIWA-->MsiExec.exe /I{3E9D596A-61D4-4239-BD19-2DB984D2A16F}
mLogView-->MsiExec.exe /I{0E2B0B41-7E08-4F9F-B21F-41C4133F43B7}
mMHouse-->MsiExec.exe /I{F0BFC7EF-9CF8-44EE-91B0-158884CD87C5}
mPfMgr-->MsiExec.exe /I{8B928BA1-EDEC-4227-A2DA-DD83026C36F5}
mPfWiz-->MsiExec.exe /I{90B0D222-8C21-4B35-9262-53B042F18AF9}
mProSafe-->MsiExec.exe /I{23FB368F-1399-4EAC-817C-4B83ECBE3D83}
mSCfg-->MsiExec.exe /I{829CD169-E692-48E8-9BDE-A3E8D8B65538}
MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
MSXML 6.0 Parser (KB933579)-->MsiExec.exe /I{0A869A65-8C94-4F7C-A5C7-972D3C8CED9E}
mWlsSafe-->MsiExec.exe /I{FCA651F3-5BDA-4DDA-9E4A-5D87D6914CC4}
mZConfig-->MsiExec.exe /I{94658027-9F16-4509-BBD7-A59FE57C3023}
NVIDIA Drivers-->C:\WINDOWS\system32\nvudisp.exe UninstallGUI
OpenOffice.org 3.0-->MsiExec.exe /I{6860B340-530D-46B3-91F8-1AE1F70F7C33}
Outil de diagnostic PC TOSHIBA-->C:\WINDOWS\IsUn040c.exe -f"C:\Program Files\TOSHIBA\PCDiag\Uninst.isu"
Pervasive System Analyzer-->C:\WINDOWS\IsUninst.exe -f"C:\Program Files\Fichiers communs\Pervasive Software Shared\PSA\psa.isu"
Pervasive.SQL V8 Workgroup (v8.6)-->MsiExec.exe /I{5FCFC78C-438A-4F4D-B266-E32B8468BAFC}
Picasa 3-->"C:\Program Files\Google\Picasa3\Uninstall.exe"
Pilote du DVD-RAM-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{9D765FA6-F2BC-40AF-8145-50808F9BDF4E}\setup.exe" -l0x40c DVD-RAM Driver
QuickTime-->MsiExec.exe /I{216AB108-2AE1-4130-B3D5-20B2C4C80F8F}
Readiris Pro 8-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{9B93C2B3-D9E8-11D6-AB3E-000102B0F79A}\setup.exe" -l0x40c
Realtek High Definition Audio Driver-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}\Setup.exe" -l0x40c -removeonly
Réducteur de bruit lect. CD/DVD-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{9FE35071-CAB2-4E79-93E7-BFC6A2DC5C5D}\Setup.exe" -l0x40c
SAMSUNG CDMA Modem Driver Set-->C:\WINDOWS\system32\Samsung_USB_Drivers\3\SSCDUninstall.exe
Samsung CLP-310 Series-->C:\Program Files\Samsung\Samsung CLP-310 Series\Install\Setup.exe /R
SAMSUNG Mobile Composite Device Software-->C:\WINDOWS\system32\Samsung_USB_Drivers\6\SSBCUninstall.exe
Samsung Mobile phone USB driver Software-->C:\WINDOWS\system32\Samsung_USB_Drivers\5\SSSDUninstall.exe
SAMSUNG Mobile USB Modem 1.0 Software-->C:\WINDOWS\system32\Samsung_USB_Drivers\1\SS_Uninstall.exe
SAMSUNG Mobile USB Modem Software-->C:\WINDOWS\system32\Samsung_USB_Drivers\2\SSM_Uninstall.exe
Samsung PC Studio 3 USB Driver Installer-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\10\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{EBA29752-DDD2-4B62-B2E3-9841F92A3E3A}\setup.exe" -l0x40c -removeonly
Samsung PC Studio 3-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\10\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{C4A4722E-79F9-417C-BD72-8D359A090C97}\setup.exe" -l0x40c -removeonly
Sarbacane 3-->C:\Program Files\Goto software\Sarbacane 3\uninst.exe
Skype™ 4.0-->MsiExec.exe /X{24D753CA-6AE9-4E30-8F5F-EFC93E08BF3D}
Synaptics Pointing Device Driver-->rundll32.exe "C:\Program Files\Synaptics\SynTP\SynISDLL.dll",standAloneUninstall
Texas Instruments PCIxx21/x515/xx12 drivers.-->C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{4497AFF6-98C4-4F49-B073-F48F42BCBF9E} /l1036
TOSHIBA Software Modem-->Tosmreg -U
Utilitaire de zoom TOSHIBA-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{64212898-097F-4F3F-AECA-6D34A7EF82DF}\Setup.exe" -l0x40c
VirginMega.Fr Premium-->MsiExec.exe /I{EE467474-04A8-48D5-8DDF-0F8D3A3CCBE5}
Windows Desktop Search 3.01-->"C:\WINDOWS\$NtUninstallKB917013$\spuninst\spuninst.exe"
Windows Driver Package - Intel (NETw4x32) net (09/26/2007 11.5.0.32)-->C:\PROGRA~1\DIFX\D6ACC4BE676423A2B130B78A4B627FC457D98997\dpinst32.exe /u C:\WINDOWS\system32\DRVSTORE\netw4x32_B0AEEEEDA759744D7D2AC236F54CA6D4CFC0961C\netw4x32.inf
Windows Driver Package - Intel (w29n51) net (07/25/2007 9.0.4.37)-->C:\PROGRA~1\DIFX\D6ACC4BE676423A2B130B78A4B627FC457D98997\dpinst32.exe /u C:\WINDOWS\system32\DRVSTORE\w29n51_E99959A506B0423451BFDD2FE3C8B527B6AF45BD\w29n51.inf
Windows Driver Package - Intel net (09/26/2007 11.5.0.32)-->C:\PROGRA~1\DIFX\D6ACC4BE676423A2B130B78A4B627FC457D98997\dpinst32.exe /u C:\WINDOWS\system32\DRVSTORE\netw4k32_4CD46BE21BE74C8D663C65B8DC2D7EEA091E50F5\netw4k32.inf
Windows Live installer-->MsiExec.exe /X{FD44E544-E7D0-4DBA-9FA0-8AE1A1300390}
Windows Live Mail-->MsiExec.exe /I{C514C594-23AA-4F13-A070-DB8BDB27594F}
Windows Live Messenger-->MsiExec.exe /X{BADF6744-3787-48F6-B8C9-4C4995401D65}
Windows Media Format 11 runtime-->"C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
Windows Media Format 11 runtime-->"C:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe"
Windows Media Player 11-->"C:\WINDOWS\$NtUninstallwmp11$\spuninst\spuninst.exe"
Windows Printing System, Canon LBP-660 (Remove only)-->rundll32.exe C:\WINDOWS\System32\spool\DRIVERS\W32X86\2\WpsC3Set.DLL,DoRemove
Windows XP Service Pack 3-->"C:\WINDOWS\$NtServicePackUninstall$\spuninst\spuninst.exe"
Yahoo! Install Manager-->C:\WINDOWS\system32\regsvr32 /u C:\PROGRA~1\Yahoo!\Common\YINSTH~1.DLL
Yahoo! Toolbar avec bloqueur de fenêtres pop-up-->C:\PROGRA~1\Yahoo!\Common\unyt.exe
======Security center information======
AV: avast! antivirus 4.8.1335 [VPS 090607-0]
======System event log======
Computer Name: SF06
Event Code: 4201
Message: Le système a détecté que la carte réseau \DEVICE\TCPIP_{BA47B196-7AEC-404B-B970-E84DCD63DA46} était connectée au réseau,
et a lancé une opération normale sur la carte réseau.
Record Number: 10165
Source Name: Tcpip
Time Written: 20090507154840.000000+120
Event Type: Informations
User:
Computer Name: SF06
Event Code: 4202
Message: Le système a détecté que la carte réseau \DEVICE\TCPIP_{BA47B196-7AEC-404B-B970-E84DCD63DA46} était déconnectée du réseau,
et la configuration réseau de la carte a été abandonnée. Si la carte
réseau n'était pas déconnectée, ceci peut indiquer un disfonctionnement.
Contactez le fabricant pour des pilotes mis à jour.
Record Number: 10164
Source Name: Tcpip
Time Written: 20090507154820.000000+120
Event Type: Informations
User:
Computer Name: SF06
Event Code: 4201
Message: Le système a détecté que la carte réseau \DEVICE\TCPIP_{BA47B196-7AEC-404B-B970-E84DCD63DA46} était connectée au réseau,
et a lancé une opération normale sur la carte réseau.
Record Number: 10163
Source Name: Tcpip
Time Written: 20090507154755.000000+120
Event Type: Informations
User:
Computer Name: SF06
Event Code: 4202
Message: Le système a détecté que la carte réseau \DEVICE\TCPIP_{BA47B196-7AEC-404B-B970-E84DCD63DA46} était déconnectée du réseau,
et la configuration réseau de la carte a été abandonnée. Si la carte
réseau n'était pas déconnectée, ceci peut indiquer un disfonctionnement.
Contactez le fabricant pour des pilotes mis à jour.
Record Number: 10162
Source Name: Tcpip
Time Written: 20090507154730.000000+120
Event Type: Informations
User:
Computer Name: SF06
Event Code: 4201
Message: Le système a détecté que la carte réseau \DEVICE\TCPIP_{BA47B196-7AEC-404B-B970-E84DCD63DA46} était connectée au réseau,
et a lancé une opération normale sur la carte réseau.
Record Number: 10161
Source Name: Tcpip
Time Written: 20090507154655.000000+120
Event Type: Informations
User:
=====Application event log=====
Computer Name: SF06
Event Code: 302
Message: wlmail (2672) WindowsLiveMail0: Le moteur de base de données a exécuté la procédure de récupération avec succès.
Record Number: 5342
Source Name: ESENT
Time Written: 20090514193318.000000+120
Event Type: Informations
User:
Computer Name: SF06
Event Code: 301
Message: wlmail (2672) WindowsLiveMail0: Le moteur de base de données commence la relecture du fichier journal C:\Documents and Settings\Propriétaire\Local Settings\Application Data\Microsoft\Windows Live Mail\edb.log.
Record Number: 5341
Source Name: ESENT
Time Written: 20090514193316.000000+120
Event Type: Informations
User:
Computer Name: SF06
Event Code: 300
Message: wlmail (2672) WindowsLiveMail0: Le moteur de base de données initialise la procédure de récupération.
Record Number: 5340
Source Name: ESENT
Time Writte
A voir également:
- Malware-gen à éradiquer !
- Malwarebytes anti-malware - Télécharger - Antivirus & Antimalwares
- Oxy-gen - Télécharger - Généalogie
- Supprimer malware - Guide
- Tor jack malware ✓ - Forum Virus
- Win32:malware-gen - Forum Virus
6 réponses
Salut ,
• Télécharge et install UsbFix
(!) Branche tes sources de données externes à ton PC, (clé USB, disque dur externe, etc...) susceptible d'avoir été infectées sans les ouvrir
• Double clic sur le raccourci UsbFix présent sur ton bureau .
• Choisis l'option 1 ( Recherche )
• Laisse travailler l'outil.
• Ensuite post le rapport UsbFix.txt qui apparaitra.
• Note : Le rapport UsbFix.txt est sauvegardé a la racine du disque. ( C:\UsbFix.txt )
( CTRL+A Pour tout selectionner , CTRL+C pour copier et CTRL+V pour coller )
• Note : "Process.exe", une composante de l'outil, est détecté par certains antivirus (AntiVir, Dr.Web, Kaspersky Anti-Virus) comme étant un RiskTool.
Il ne s'agit pas d'un virus, mais d'un utilitaire destiné à mettre fin à des processus.
Mis entre de mauvaises mains, cet utilitaire pourrait arrêter des logiciels de sécurité (Antivirus, Firewall...) d'où l'alerte émise par ces antivirus.
• Tuto : http://pagesperso-orange.fr/NosTools/usbfix.html
• Télécharge et install UsbFix
(!) Branche tes sources de données externes à ton PC, (clé USB, disque dur externe, etc...) susceptible d'avoir été infectées sans les ouvrir
• Double clic sur le raccourci UsbFix présent sur ton bureau .
• Choisis l'option 1 ( Recherche )
• Laisse travailler l'outil.
• Ensuite post le rapport UsbFix.txt qui apparaitra.
• Note : Le rapport UsbFix.txt est sauvegardé a la racine du disque. ( C:\UsbFix.txt )
( CTRL+A Pour tout selectionner , CTRL+C pour copier et CTRL+V pour coller )
• Note : "Process.exe", une composante de l'outil, est détecté par certains antivirus (AntiVir, Dr.Web, Kaspersky Anti-Virus) comme étant un RiskTool.
Il ne s'agit pas d'un virus, mais d'un utilitaire destiné à mettre fin à des processus.
Mis entre de mauvaises mains, cet utilitaire pourrait arrêter des logiciels de sécurité (Antivirus, Firewall...) d'où l'alerte émise par ces antivirus.
• Tuto : http://pagesperso-orange.fr/NosTools/usbfix.html
Bonjour,
je viens de faire le usbfix, mais dans dans ma fenêtre noire l'opération s'est arrêtée sur la ligne rouge :
key : HKCU\ SOFTWARE\Microsoft\Windows\CurrentVersion\run : reader_s
.... que dois je faire ?!
Merci de votre aide !
je viens de faire le usbfix, mais dans dans ma fenêtre noire l'opération s'est arrêtée sur la ligne rouge :
key : HKCU\ SOFTWARE\Microsoft\Windows\CurrentVersion\run : reader_s
.... que dois je faire ?!
Merci de votre aide !
ET VOILA....
############################## [ UsbFix V3.029 | Scan ]
# User : Propriétaire (Administrateurs) # SF06
# Update on 05/06/09 by Chiquitine29, C_XX & Chimay8
# WebSite : http://pagesperso-orange.fr/NosTools/usbfix.html
# Start at: 21:11:36 | 08/06/2009
# Intel(R) Core(TM)2 CPU T5200 @ 1.60GHz
# Microsoft Windows XP Édition familiale (5.1.2600 32-bit) # Service Pack 3
# Internet Explorer 7.0.5730.13
# Windows Firewall Status : Enabled
# AV : avast! antivirus 4.8.1335 [VPS 090607-0] 4.8.1335 [ Enabled | Updated ]
# A:\ # Lecteur de disquettes 3 ½ pouces
# C:\ # Disque fixe local # 92,91 Go (65,71 Go free) # NTFS
# H:\ # Disque CD-ROM
# I:\ # Disque fixe local # 74,5 Go (37,79 Go free) [CLIENT] # NTFS
############################## [ Processus actifs ]
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Synaptics\SynTP\Toshiba.exe
C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\Program Files\Toshiba\Toshiba Applet\thotkey.exe
C:\Program Files\TOSHIBA\Utilitaire de zoom TOSHIBA\SmoothView.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\WINDOWS\system32\TPSBattM.exe
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
C:\Program Files\LogMeIn\x86\LogMeInSystray.exe
C:\WINDOWS\Samsung\PanelMgr\SSMMgr.exe
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnf.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\LogMeIn\x86\LMIGuardian.exe
C:\Program Files\VOYCI-P\AEG VOYCI-P V1-0206.exe
C:\Program Files\TOSHIBA\Bluetooth Monitor\BtMon2.exe
C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
C:\WINDOWS\system32\RAMASST.exe
C:\Program Files\Windows Desktop Search\WindowsSearch.exe
C:\WINDOWS\system32\brsvc01a.exe
C:\WINDOWS\system32\brss01a.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\DVDRAMSV.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\LogMeIn\x86\RaMaint.exe
C:\Program Files\LogMeIn\x86\LogMeIn.exe
C:\Program Files\LogMeIn\x86\LMIGuardian.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\PVSW\Bin\WGE_SRV.EXE
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\PVSW\BIN\W3dbsmgr.EXE
C:\WINDOWS\system32\svchost.exe
C:\Program Files\TOSHIBA\TOSHIBA Applet\TAPPSRV.exe
C:\WINDOWS\system32\SearchIndexer.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
################## [ Registre Startup ]
HKCU_Main: "Local Page"="C:\\WINDOWS\\system32\\blank.htm"
HKCU_Main: "Search Page"="https://www.google.com/?gws_rd=ssl"
HKCU_Main: "Start Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome"
HKCU_Main: "Secondary Start Pages"=hex(7):68,00,74,00,74,00,70,00,3a,00,2f,00,2f,00,77,00,\
HKCU_Main: "Window Title"=""
HKLM_logon: "Userinit"="C:\\WINDOWS\\system32\\userinit.exe,"
HKLM_logon: "DefaultUserName"="Propri‚taire"
HKLM_logon: "AltDefaultUserName"="Propri‚taire"
HKLM_logon: "LegalNoticeCaption"=""
HKLM_logon: "LegalNoticeText"=""
HKLM_Run: avast!=C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
HKLM_Run: NvCplDaemon=RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
HKLM_Run: nwiz=nwiz.exe /installquiet /keeploaded /nodetect
HKLM_Run: NVRotateSysTray=rundll32.exe C:\WINDOWS\system32\nvsysrot.dll,Enable
HKLM_Run: SynTPEnh=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
HKLM_Run: TPSMain=TPSMain.exe
HKLM_Run: IntelZeroConfig="C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe"
HKLM_Run: IntelWireless="C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe" /tf Intel PROSet/Wireless
HKLM_Run: THotkey=C:\Program Files\Toshiba\Toshiba Applet\thotkey.exe
HKLM_Run: SmoothView=C:\Program Files\TOSHIBA\Utilitaire de zoom TOSHIBA\SmoothView.exe
HKLM_Run: DriverMagicSchedule="C:\Program Files\SymplisIT\DriverMagic\dmschedule.exe" /boot
HKLM_Run: RTHDCPL=RTHDCPL.EXE
HKLM_Run: Alcmtr=ALCMTR.EXE
HKLM_Run: Google Desktop Search="C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
HKLM_Run: Share-to-Web Namespace Daemon=C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
HKLM_Run: LogMeIn GUI="C:\Program Files\LogMeIn\x86\LogMeInSystray.exe"
HKLM_Run: EPSON Stylus Photo R1800=C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATI9LE.EXE /P24 "EPSON Stylus Photo R1800" /O6 "USB001" /M "Stylus Photo R1800"
HKLM_Run: Samsung PanelMgr=C:\WINDOWS\Samsung\PanelMgr\SSMMgr.exe /autorun
HKLM_Run: SunJavaUpdateSched="C:\Program Files\Java\jre6\bin\jusched.exe"
HKLM_Run: QuickTime Task="C:\Program Files\QuickTime\qttask.exe" -atboottime
HKLM_Run: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents=
HKCU_Run: TOSCDSPD=C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe
HKCU_Run: Uniblue RegistryBooster 2009=C:\Program Files\Uniblue\RegistryBooster\RegistryBooster.exe /S
HKCU_Run: ctfmon.exe=C:\WINDOWS\system32\ctfmon.exe
HKCU_Run: Skype="C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
HKCU_Run: msnmsgr="C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
################## [ Fichiers # Dossiers infectieux ]
################## [ Registre # Clés Run infectieuses ]
############################## [ UsbFix V3.029 | Scan ]
# User : Propriétaire (Administrateurs) # SF06
# Update on 05/06/09 by Chiquitine29, C_XX & Chimay8
# WebSite : http://pagesperso-orange.fr/NosTools/usbfix.html
# Start at: 21:11:36 | 08/06/2009
# Intel(R) Core(TM)2 CPU T5200 @ 1.60GHz
# Microsoft Windows XP Édition familiale (5.1.2600 32-bit) # Service Pack 3
# Internet Explorer 7.0.5730.13
# Windows Firewall Status : Enabled
# AV : avast! antivirus 4.8.1335 [VPS 090607-0] 4.8.1335 [ Enabled | Updated ]
# A:\ # Lecteur de disquettes 3 ½ pouces
# C:\ # Disque fixe local # 92,91 Go (65,71 Go free) # NTFS
# H:\ # Disque CD-ROM
# I:\ # Disque fixe local # 74,5 Go (37,79 Go free) [CLIENT] # NTFS
############################## [ Processus actifs ]
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Synaptics\SynTP\Toshiba.exe
C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\Program Files\Toshiba\Toshiba Applet\thotkey.exe
C:\Program Files\TOSHIBA\Utilitaire de zoom TOSHIBA\SmoothView.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\WINDOWS\system32\TPSBattM.exe
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
C:\Program Files\LogMeIn\x86\LogMeInSystray.exe
C:\WINDOWS\Samsung\PanelMgr\SSMMgr.exe
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnf.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\LogMeIn\x86\LMIGuardian.exe
C:\Program Files\VOYCI-P\AEG VOYCI-P V1-0206.exe
C:\Program Files\TOSHIBA\Bluetooth Monitor\BtMon2.exe
C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
C:\WINDOWS\system32\RAMASST.exe
C:\Program Files\Windows Desktop Search\WindowsSearch.exe
C:\WINDOWS\system32\brsvc01a.exe
C:\WINDOWS\system32\brss01a.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\DVDRAMSV.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\LogMeIn\x86\RaMaint.exe
C:\Program Files\LogMeIn\x86\LogMeIn.exe
C:\Program Files\LogMeIn\x86\LMIGuardian.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\PVSW\Bin\WGE_SRV.EXE
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\PVSW\BIN\W3dbsmgr.EXE
C:\WINDOWS\system32\svchost.exe
C:\Program Files\TOSHIBA\TOSHIBA Applet\TAPPSRV.exe
C:\WINDOWS\system32\SearchIndexer.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
################## [ Registre Startup ]
HKCU_Main: "Local Page"="C:\\WINDOWS\\system32\\blank.htm"
HKCU_Main: "Search Page"="https://www.google.com/?gws_rd=ssl"
HKCU_Main: "Start Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome"
HKCU_Main: "Secondary Start Pages"=hex(7):68,00,74,00,74,00,70,00,3a,00,2f,00,2f,00,77,00,\
HKCU_Main: "Window Title"=""
HKLM_logon: "Userinit"="C:\\WINDOWS\\system32\\userinit.exe,"
HKLM_logon: "DefaultUserName"="Propri‚taire"
HKLM_logon: "AltDefaultUserName"="Propri‚taire"
HKLM_logon: "LegalNoticeCaption"=""
HKLM_logon: "LegalNoticeText"=""
HKLM_Run: avast!=C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
HKLM_Run: NvCplDaemon=RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
HKLM_Run: nwiz=nwiz.exe /installquiet /keeploaded /nodetect
HKLM_Run: NVRotateSysTray=rundll32.exe C:\WINDOWS\system32\nvsysrot.dll,Enable
HKLM_Run: SynTPEnh=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
HKLM_Run: TPSMain=TPSMain.exe
HKLM_Run: IntelZeroConfig="C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe"
HKLM_Run: IntelWireless="C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe" /tf Intel PROSet/Wireless
HKLM_Run: THotkey=C:\Program Files\Toshiba\Toshiba Applet\thotkey.exe
HKLM_Run: SmoothView=C:\Program Files\TOSHIBA\Utilitaire de zoom TOSHIBA\SmoothView.exe
HKLM_Run: DriverMagicSchedule="C:\Program Files\SymplisIT\DriverMagic\dmschedule.exe" /boot
HKLM_Run: RTHDCPL=RTHDCPL.EXE
HKLM_Run: Alcmtr=ALCMTR.EXE
HKLM_Run: Google Desktop Search="C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
HKLM_Run: Share-to-Web Namespace Daemon=C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
HKLM_Run: LogMeIn GUI="C:\Program Files\LogMeIn\x86\LogMeInSystray.exe"
HKLM_Run: EPSON Stylus Photo R1800=C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATI9LE.EXE /P24 "EPSON Stylus Photo R1800" /O6 "USB001" /M "Stylus Photo R1800"
HKLM_Run: Samsung PanelMgr=C:\WINDOWS\Samsung\PanelMgr\SSMMgr.exe /autorun
HKLM_Run: SunJavaUpdateSched="C:\Program Files\Java\jre6\bin\jusched.exe"
HKLM_Run: QuickTime Task="C:\Program Files\QuickTime\qttask.exe" -atboottime
HKLM_Run: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents=
HKCU_Run: TOSCDSPD=C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe
HKCU_Run: Uniblue RegistryBooster 2009=C:\Program Files\Uniblue\RegistryBooster\RegistryBooster.exe /S
HKCU_Run: ctfmon.exe=C:\WINDOWS\system32\ctfmon.exe
HKCU_Run: Skype="C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
HKCU_Run: msnmsgr="C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
################## [ Fichiers # Dossiers infectieux ]
################## [ Registre # Clés Run infectieuses ]
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
en voici un petit dernier, mais je pense que tout est revenu normal !
Merci beucoup de votre aide !
############################## [ UsbFix V3.029 | Cleaning ]
# User : Propriétaire (Administrateurs) # SF06
# Update on 05/06/09 by Chiquitine29, C_XX & Chimay8
# WebSite : http://pagesperso-orange.fr/NosTools/usbfix.html
# Start at: 21:22:47 | 08/06/2009
# Intel(R) Core(TM)2 CPU T5200 @ 1.60GHz
# Microsoft Windows XP Édition familiale (5.1.2600 32-bit) # Service Pack 3
# Internet Explorer 7.0.5730.13
# Windows Firewall Status : Enabled
# AV : avast! antivirus 4.8.1335 [VPS 090607-0] 4.8.1335 [ Enabled | Updated ]
# A:\ # Lecteur de disquettes 3 ½ pouces
# C:\ # Disque fixe local # 92,91 Go (65,71 Go free) # NTFS
# H:\ # Disque CD-ROM
# I:\ # Disque fixe local # 74,5 Go (37,79 Go free) [CLIENT] # NTFS
############################## [ Processus actifs ]
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\brsvc01a.exe
C:\WINDOWS\system32\brss01a.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Alwil Software\Avast4\setup\avast.setup
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\DVDRAMSV.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\LogMeIn\x86\RaMaint.exe
C:\Program Files\LogMeIn\x86\LogMeIn.exe
C:\Program Files\LogMeIn\x86\LMIGuardian.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\PVSW\Bin\WGE_SRV.EXE
C:\PVSW\BIN\W3dbsmgr.EXE
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\TOSHIBA\TOSHIBA Applet\TAPPSRV.exe
C:\WINDOWS\system32\SearchIndexer.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
################## [ Fichiers # Dossiers infectieux ]
################## [ Registre # Clés Run infectieuses ]
################## [ Registre # Mountpoints2 ]
################## [ Listing des fichiers présent ]
[03/12/2008 20:43|--a------|1024] - C:\.rnd
[06/11/2008 20:42|--a------|0] - C:\AUTOEXEC.BAT
[08/06/2009 09:27|--a------|52] - C:\autorun.MSNFix
[22/11/2008 16:06|---hs----|216] - C:\boot.ini
[05/08/2004 14:00|-rahs----|4952] - C:\Bootfont.bin
[07/12/2008 18:33|--a------|74] - C:\CMLoader.log
[06/11/2008 20:42|--a------|0] - C:\CONFIG.SYS
[06/11/2008 20:42|-rahs----|0] - C:\IO.SYS
[06/11/2008 20:42|-rahs----|0] - C:\MSDOS.SYS
[05/08/2004 14:00|-rahs----|47564] - C:\NTDETECT.COM
[07/11/2008 12:56|-rahs----|252240] - C:\ntldr
[14/04/2009 10:50|--a------|1588] - C:\oile.exp
[?|?|?] - C:\pagefile.sys
[19/05/2009 19:28|--a------|199] - C:\password.klc
[02/06/2009 15:06|--ah-----|268] - C:\sqmdata00.sqm
[03/06/2009 22:08|--ah-----|268] - C:\sqmdata01.sqm
[07/06/2009 18:07|--ah-----|268] - C:\sqmdata02.sqm
[08/06/2009 16:36|--ah-----|268] - C:\sqmdata03.sqm
[08/06/2009 17:17|--ah-----|268] - C:\sqmdata04.sqm
[08/06/2009 17:42|--ah-----|268] - C:\sqmdata05.sqm
[08/06/2009 20:50|--ah-----|268] - C:\sqmdata06.sqm
[05/05/2009 00:13|--ah-----|268] - C:\sqmdata07.sqm
[06/05/2009 23:42|--ah-----|268] - C:\sqmdata08.sqm
[11/05/2009 20:51|--ah-----|268] - C:\sqmdata09.sqm
[17/05/2009 18:01|--ah-----|268] - C:\sqmdata10.sqm
[17/05/2009 22:13|--ah-----|268] - C:\sqmdata11.sqm
[18/05/2009 16:18|--ah-----|268] - C:\sqmdata12.sqm
[20/05/2009 21:39|--ah-----|268] - C:\sqmdata13.sqm
[21/05/2009 19:03|--ah-----|268] - C:\sqmdata14.sqm
[25/05/2009 16:05|--ah-----|268] - C:\sqmdata15.sqm
[26/05/2009 20:23|--ah-----|268] - C:\sqmdata16.sqm
[26/05/2009 21:11|--ah-----|268] - C:\sqmdata17.sqm
[27/05/2009 22:04|--ah-----|268] - C:\sqmdata18.sqm
[28/05/2009 19:39|--ah-----|268] - C:\sqmdata19.sqm
[02/06/2009 15:06|--ah-----|244] - C:\sqmnoopt00.sqm
[03/06/2009 22:08|--ah-----|244] - C:\sqmnoopt01.sqm
[07/06/2009 18:07|--ah-----|244] - C:\sqmnoopt02.sqm
[08/06/2009 16:36|--ah-----|244] - C:\sqmnoopt03.sqm
[08/06/2009 17:17|--ah-----|244] - C:\sqmnoopt04.sqm
[08/06/2009 17:42|--ah-----|244] - C:\sqmnoopt05.sqm
[08/06/2009 20:50|--ah-----|244] - C:\sqmnoopt06.sqm
[05/05/2009 00:13|--ah-----|244] - C:\sqmnoopt07.sqm
[06/05/2009 23:42|--ah-----|244] - C:\sqmnoopt08.sqm
[11/05/2009 20:51|--ah-----|244] - C:\sqmnoopt09.sqm
[17/05/2009 18:01|--ah-----|244] - C:\sqmnoopt10.sqm
[17/05/2009 22:13|--ah-----|244] - C:\sqmnoopt11.sqm
[18/05/2009 16:18|--ah-----|244] - C:\sqmnoopt12.sqm
[20/05/2009 21:39|--ah-----|244] - C:\sqmnoopt13.sqm
[21/05/2009 19:03|--ah-----|244] - C:\sqmnoopt14.sqm
[25/05/2009 16:05|--ah-----|244] - C:\sqmnoopt15.sqm
[26/05/2009 20:23|--ah-----|244] - C:\sqmnoopt16.sqm
[26/05/2009 21:11|--ah-----|244] - C:\sqmnoopt17.sqm
[27/05/2009 22:04|--ah-----|244] - C:\sqmnoopt18.sqm
[28/05/2009 19:39|--ah-----|244] - C:\sqmnoopt19.sqm
[07/11/2008 15:38|--a------|3406] - C:\temptxt.log
[08/06/2009 21:23|--a------|5343] - C:\UsbFix.txt
[31/08/2005 11:54|--a------|186138432] - I:\- Sonneries -.zip
[19/07/2007 19:41|--a------|2534] - I:\190707-0149000027000268.csv
[10/08/2004 14:00|--ah-----|10976] - I:\8514fixe.fon
[10/08/2004 14:00|--ah-----|11520] - I:\8514fixg.fon
[10/08/2004 14:00|--ah-----|10976] - I:\8514fixr.fon
[10/08/2004 14:00|--ah-----|11488] - I:\8514fixt.fon
[10/08/2004 14:00|--ah-----|13248] - I:\8514oeme.fon
[10/08/2004 14:00|--ah-----|12800] - I:\8514oemg.fon
[10/08/2004 14:00|--ah-----|13200] - I:\8514oemr.fon
[10/08/2004 14:00|--ah-----|12720] - I:\8514oemt.fon
[10/08/2004 14:00|--ah-----|9504] - I:\8514syse.fon
[10/08/2004 14:00|--ah-----|9856] - I:\8514sysg.fon
[10/08/2004 14:00|--ah-----|10064] - I:\8514sysr.fon
[10/08/2004 14:00|--ah-----|9792] - I:\8514syst.fon
[10/08/2004 14:00|--ah-----|12304] - I:\85775.fon
[10/08/2004 14:00|--ah-----|12256] - I:\85855.fon
[10/08/2004 14:00|--ah-----|10976] - I:\85f1257.fon
[10/08/2004 14:00|--ah-----|9472] - I:\85s1257.fon
[02/09/2008 11:16|--a------|109121] - I:\aidologement cv.pdf
[30/08/2007 20:42|--a------|1094558] - I:\alinea.bmp
[10/08/2004 14:00|--ah-----|35808] - I:\app775.fon
[10/08/2004 14:00|--ah-----|36656] - I:\app852.fon
[10/08/2004 14:00|--ah-----|37296] - I:\app855.fon
[10/08/2004 14:00|--ah-----|36672] - I:\app857.fon
[10/08/2004 14:00|--ah-----|37472] - I:\app866.fon
[31/01/2007 18:32|--a------|39554] - I:\arialtimbre.EUF
[31/01/2007 18:32|--a------|101784] - I:\arialtimbre.tte
[14/02/2007 11:14|--a------|11058357] - I:\Assigest.EXE
[24/04/2007 17:45|--a------|57875] - I:\AVANTMAJ.ZIP
[01/09/2008 20:39|--a------|5742] - I:\avril08.PDF
[29/02/2008 20:35|--a------|84241] - I:\awstats.gc8692.html
[29/02/2008 20:36|--a------|8814] - I:\awstats.gc8692.urlexit.html
[19/03/2008 18:54|--a------|112566] - I:\badetsnetavous.pdf
[01/06/2007 13:11|--a------|5914833] - I:\Badges IA.pdf
[05/11/2008 12:41|--a------|13816] - I:\BANER.cdr
[10/08/2004 14:00|--a------|16258580] - I:\batang.ttc
[19/12/2005 22:42|--a------|526398] - I:\bbyo.bmp
[11/06/2007 19:16|--a------|24390] - I:\BONdeCde.htm
[04/01/2008 11:24|--a------|1276790] - I:\bonne annee chinois.bmp
[04/01/2008 11:25|--a------|21897] - I:\bonne annee chinois.png
[30/10/2008 12:01|--a------|33122] - I:\bookmark.htm
[30/05/2007 11:39|--a------|66048] - I:\BOWLING3.xls
[15/02/2008 17:58|--a------|112592] - I:\BRACEL.pdf
[19/07/2007 17:39|--a------|226619] - I:\CA12.pdf
[25/07/2007 17:00|--a------|8482382] - I:\caisse bar.exe
[25/07/2007 17:08|--a------|8920142] - I:\CAISSE BOULANGERIE.exe
[30/10/2008 11:39|--a------|1775945] - I:\calend.zip
[30/10/2008 11:36|--a------|717040] - I:\CALENDRIER 09.pdf
[30/10/2008 11:37|--a------|673385] - I:\CALENDRIER 09S.pdf
[30/10/2008 11:40|--a------|1539942] - I:\CALENDRIER Banque_semestriel.zip
[30/10/2008 11:39|--a------|1184404] - I:\CALENDRIER Modele_horizontal.zip
[30/10/2008 11:39|--a------|1356076] - I:\CALENDRIER Modele_vertical_2009.zip
[30/10/2008 11:52|--a------|16000012] - I:\calendriers2009.zip
[30/10/2008 11:39|--a------|1219634] - I:\Calendriers_de_poche_2009.zip
[30/10/2008 11:43|--a------|18944] - I:\calendrier_perpetuel.xls
[24/04/2008 11:58|--a------|62587] - I:\Cartel.pdf
[11/06/2007 21:29|--a------|1704486] - I:\CATALOGUE ESSAI.htm
[11/06/2007 21:40|--a------|809733] - I:\CATALOGUE ESSAI2.htm
[11/06/2007 19:16|--a------|2220740] - I:\CATALOGUE0107.htm
[11/06/2007 22:14|--a------|889157] - I:\CATALOGUE0107ESSAI3.htm
[11/06/2007 22:14|--a------|1588927] - I:\CATALOGUE0107SP.htm
[11/06/2007 21:18|--a------|204193] - I:\CATALOGUE0107SP.pdf
[30/10/2008 11:52|--a------|20677573] - I:\catalogue_exaprint08.pdf
[10/08/2004 14:00|--ah-----|7216] - I:\cga40737.fon
[10/08/2004 14:00|--ah-----|6672] - I:\cga40852.fon
[10/08/2004 14:00|--ah-----|6672] - I:\cga40857.fon
[10/08/2004 14:00|--ah-----|7232] - I:\cga40866.fon
[10/08/2004 14:00|--ah-----|7216] - I:\cga40869.fon
[10/08/2004 14:00|--ah-----|5168] - I:\cga80737.fon
[10/08/2004 14:00|--ah-----|5200] - I:\cga80852.fon
[10/08/2004 14:00|--ah-----|4640] - I:\cga80857.fon
[10/08/2004 14:00|--ah-----|5168] - I:\cga80866.fon
[10/08/2004 14:00|--ah-----|5168] - I:\cga80869.fon
[10/12/2006 20:07|--a------|51476] - I:\christmas_lights.zip
[09/12/2006 23:36|--a------|716] - I:\CLE RESEAU.txt
[11/04/2006 11:37|--a------|13470] - I:\cmjn.cdr
[29/10/2008 19:43|--a------|2519565] - I:\Compta-STOCKFICHES-20081029.zip
[29/10/2008 19:44|--a------|3703588] - I:\Compta-STOCKIMMO-20081029.zip
[22/04/2008 18:09|--a------|24099] - I:\COMPTE220408.pdf
[24/10/2008 12:07|--a------|36737] - I:\CONTACT.csv
[25/02/2008 12:24|--a------|11278] - I:\CONTOUR8030.cmx
[10/08/2004 14:00|--ah-----|23440] - I:\coue1257.fon
[10/08/2004 14:00|--ah-----|31760] - I:\couf1257.fon
[10/08/2004 14:00|--ah-----|23440] - I:\couree.fon
[10/08/2004 14:00|--ah-----|25024] - I:\coureg.fon
[10/08/2004 14:00|--ah-----|23440] - I:\courer.fon
[10/08/2004 14:00|--ah-----|25024] - I:\couret.fon
[10/08/2004 14:00|--ah-----|31776] - I:\courfe.fon
[10/08/2004 14:00|--ah-----|33344] - I:\courfg.fon
[10/08/2004 14:00|--ah-----|31808] - I:\courfr.fon
[10/08/2004 14:00|--ah-----|33360] - I:\courft.fon
[30/09/2008 10:58|--a------|347669] - I:\CREDIT IMPOT.pdf
[25/09/2008 19:47|--a------|30410] - I:\DECOUPE CORSE.cdr
[09/05/2008 20:40|--ahs----|67] - I:\desktop.ini
[09/05/2007 15:44|--a------|506880] - I:\DEVIS 090507.xls
[12/11/2007 21:10|--a------|782524] - I:\Devis ELECT GEN.pdf
[10/04/2006 20:17|--a------|3891712] - I:\Devis HT PUB.ewg
[12/11/2007 20:37|--a------|786094] - I:\Devis judo.pdf
[09/11/2007 11:21|--a------|786893] - I:\deviswehbe.pdf
[10/08/2004 14:00|--ah-----|36336] - I:\dos737.fon
[25/05/2007 12:37|--a------|63296] - I:\DPE.cdr
[25/05/2007 12:09|--a------|458662] - I:\dpe.jpg
[25/05/2007 12:36|--a------|171120] - I:\dpe150.jpg
[16/03/2007 11:00|--a------|24246] - I:\DRP27739809.pdf
[12/03/2007 16:59|--a------|2858223] - I:\EASYJET.pdf
[11/12/2007 19:06|--a------|0] - I:\EBP
[29/10/2008 19:42|--a------|5639589] - I:\EBP-STOCKFICHES-20081029.zip
[29/10/2007 11:37|--a------|213738] - I:\ECUSSON JUDO.jpg
[10/08/2004 14:00|--ah-----|9248] - I:\ega40737.fon
[10/08/2004 14:00|--ah-----|8368] - I:\ega40852.fon
[10/08/2004 14:00|--ah-----|8704] - I:\ega40857.fon
[10/08/2004 14:00|--ah-----|9232] - I:\ega40866.fon
[10/08/2004 14:00|--ah-----|9248] - I:\ega40869.fon
[10/08/2004 14:00|--ah-----|6192] - I:\ega80737.fon
[10/08/2004 14:00|--ah-----|5344] - I:\ega80852.fon
[10/08/2004 14:00|--ah-----|5648] - I:\ega80857.fon
[10/08/2004 14:00|--ah-----|5280] - I:\ega80866.fon
[10/08/2004 14:00|--ah-----|6192] - I:\ega80869.fon
[15/01/2008 17:09|--a------|17207] - I:\ESSAI.ods
[02/11/2007 18:57|--a------|14936] - I:\ETAT BPCA 1107.ods
[22/02/2007 22:24|--a------|15007] - I:\ETAT BPCA.ods
[04/06/2007 18:48|--a------|13590] - I:\ETAT SG.ods
[31/01/2007 18:37|--a------|39554] - I:\EUDC.EUF
[31/01/2007 18:37|--a------|101784] - I:\EUDC.TTE
[25/10/2007 11:33|--a------|784026] - I:\FAC JANCARTIER.pdf
[23/10/2007 16:56|--a------|783853] - I:\Fac Padel.pdf
[03/03/2008 21:50|--a------|599361] - I:\FAC SIGN02BIS1.PDF
[10/04/2006 18:57|--a------|5950324] - I:\Facture 0686 STOCKFICHES PUB.ewg
[19/05/2008 21:55|--a------|175259] - I:\facture alice0408.pdf
[29/11/2007 19:26|--a------|784109] - I:\FACTURE AM.pdf
[08/10/2007 16:55|--a------|26159] - I:\Felixti.zip
[09/11/2006 16:46|--a------|257538] - I:\FERRARINI SAC.pdf
[23/04/2008 20:01|--a------|15198] - I:\FIBAT.cdr
[29/07/2007 16:39|--a------|17236] - I:\FLEURDEAUbmp.cdr
[26/05/2008 19:50|--a------|1295011] - I:\formulaire chine.pdf
[06/08/2008 21:43|--a------|13983] - I:\FRAIS BANCAIRES BPCA.ods
[06/08/2008 21:25|--a------|50811] - I:\FRAIS BANCAIRES BPCA.pdf
[04/05/2007 15:13|--a------|1650816] - I:\France-Inter.mp3
[04/11/2008 20:44|--a------|20488] - I:\GECKO.cdr
[29/10/2008 19:45|--a------|18724824] - I:\Gescom-Config-20081029.zip
[29/10/2008 19:42|--a------|2902882] - I:\Gescom-STOCKFICHES-20081029.zip
[18/05/2007 19:21|--a------|86016] - I:\GEST41 - 005 - GESTION DES APPORTS EN CAPITAL ET EN COMPTE COURANT.doc
[13/02/2007 18:59|--a------|5537280] - I:\Gestion-SCI.zip
[03/03/2008 17:03|--a------|17766] - I:\gilles.cdr
[19/04/2006 21:21|--a------|26040] - I:\GlobalMonospace.CompositeFont
[02/07/2006 23:37|--a------|26489] - I:\GlobalSansSerif.CompositeFont
[19/04/2006 21:21|--a------|29779] - I:\GlobalSerif.CompositeFont
[02/07/2006 23:37|--a------|30808] - I:\GlobalUserInterface.CompositeFont
[18/11/2006 18:15|--a------|796518] - I:\Graphique 1.jpg
[20/12/2005 17:56|--a------|44730] - I:\Graphique 2.bmp
[30/10/2008 11:48|--a------|4867169] - I:\GUIDE_PAO.pdf
[30/10/2008 11:49|--a------|1922385] - I:\guide_PDF.pdf
[10/08/2004 14:00|--a------|13518660] - I:\gulim.ttc
[07/10/2006 11:47|--a------|1167853] - I:\halloween.pdf
[22/05/2007 21:01|--ah-----|3535] - I:\hpothb07.dat
[22/05/2007 21:01|--ah-----|105872] - I:\hpothb07.tif
[19/10/2007 21:29|--a------|22824] - I:\https___www.telepaiement.cp.finances.gouv.fr_satelit_web1.PDF
[07/08/2008 21:56|--a------|119949] - I:\http___cgi.ebay.com_ws_eBayISAPI1.PDF
[31/05/2007 18:00|--a------|93091] - I:\http___web.euro-web.fr_facturation1.PDF
[28/02/2008 21:50|--a------|18673] - I:\http___www.imbretex.fr_partenaires_catalogue_default1.PDF
[26/09/2008 19:57|--a------|21571] - I:\http___www.simpleomobile.fr_contrat_html_contrat1.PDF
[11/12/2006 11:57|--a------|360] - I:\IDENTIFIANTS.rtf
[17/08/2006 22:38|--a------|2550272] - I:\IMBRETEX TARIF revendeurs 2006.xls
[02/02/2007 16:41|--a------|84] - I:\INTERNET.txt
[03/10/2007 20:42|--a------|158859] - I:\IR-Avis-1-2007-7060282839919.pdf
[29/10/2007 11:37|--a------|49514] - I:\judo2
[15/03/2005 20:42|--a------|13724080] - I:\KasperskyPersonal_50227_fr.exe
[15/03/2005 20:42|--a------|1447] - I:\KAV_0008E264.key
[10/12/2006 19:57|--a------|15525] - I:\kr_eight_santas.zip
[28/01/2008 17:28|--a------|686514] - I:\LIASSE FISCALE LOU FICANAS 061.PDF
[24/08/2007 09:57|--a------|11553] - I:\Liasse2033A.pdf
[06/10/2006 16:05|--a------|924407] - I:\LIG2.cpt
[22/07/2008 18:49|--a------|14217] - I:\livraison gilet fluo.PDF
[29/10/2008 19:40|--a------|114564] - I:\LOCIMMOsvg0810291839.ZIP
[07/08/2007 15:52|--a------|925398] - I:\logo asso.bmp
[11/10/2006 17:13|--a------|9679] - I:\logogym.jpg
[18/11/2006 01:03|--a------|186947] - I:\logoyam.jpg
[20/11/2007 12:01|--a------|375678] - I:\logoZB[1].bmp
[24/05/2007 12:24|--a------|12602] - I:\MAMOUNEY.cdr
[25/07/2007 18:41|--a------|7344850] - I:\Manuel UtilisateurSCI.pdf
[10/08/2004 14:00|--ah-----|24124] - I:\marlett.ttf
[10/03/2008 18:37|--a------|13174] - I:\maroc.cdr
[10/08/2004 14:00|--a------|8823308] - I:\mingliu.ttc
[17/03/2007 20:04|--a------|114176] - I:\modele facture logo etoile1.xls
[13/03/2007 19:00|--a------|1237] - I:\motdepasse logmein.txt
[10/08/2004 14:00|--a------|8272028] - I:\msgothic.ttc
[10/08/2004 14:00|--a------|9135960] - I:\msmincho.ttc
[31/10/2008 00:25|--a------|104710539] - I:\MyPhotoCalendars.exe
[16/10/2006 18:49|--a------|37313] - I:\naema.pdf
[30/09/2008 11:03|--a------|233146] - I:\neu.eps
[12/06/2008 18:20|--a------|1020] - I:\NICO2.edr
[12/06/2008 18:20|--a------|5142] - I:\NICO2.exp
[01/09/2008 21:39|--a------|833] - I:\nouilles.htm
[01/09/2008 21:42|--a------|972] - I:\nouilles2.htm
[06/02/2007 22:51|--a------|11618] - I:\NUMEROTATION COMPTES.ods
[30/10/2008 19:00|--a------|16383] - I:\OM40.ECD
[17/01/2008 13:06|--a------|3031300] - I:\papa2T.cdr
[17/01/2008 13:03|--a------|3140448] - I:\papa2TSTD.cdr
[07/11/2008 00:12|--a------|199] - I:\password.klc
[25/07/2008 16:16|--a------|32582] - I:\PATRICIA.exp
[25/07/2008 16:16|--a------|45] - I:\PATRICIA.inf
[05/11/2008 01:46|--a------|17104] - I:\PM TD.cdr
[26/07/2007 15:31|--a------|635392] - I:\PrintableAlphabet1.doc
[02/10/2008 11:53|--a------|4960] - I:\quittance10.PDF
[14/02/2007 11:36|--a------|14521596] - I:\quoram_l.exe
[30/10/2008 11:49|--a------|146610] - I:\reglages_distiller.zip
[24/09/2007 10:14|--a------|18274] - I:\REL SG CV 09.PDF
[03/07/2008 11:29|--a------|89096] - I:\reservation pekin.pdf
[05/11/2007 11:18|--a------|10546] - I:\rib cv palatine.pdf
[10/12/2006 19:43|--a------|21063] - I:\saloon.zip
[15/02/2008 17:58|--a------|112592] - I:\SAORGE BRACELET.pdf
[27/03/2008 12:40|--a------|26577] - I:\saorge1.PDF
[12/06/2007 18:17|--a------|6546940] - I:\Sauvegarde_de_dane.cdr
[03/03/2008 12:48|--a------|17402] - I:\Sauvegarde_de_gilles.cdr
[14/06/2007 17:23|--a------|18686] - I:\Sauvegarde_de_logym.cdr
[10/03/2008 18:27|--a------|13006] - I:\Sauvegarde_de_maroc.cdr
[05/11/2008 00:55|--a------|103626] - I:\Sauvegarde_de_PM TD.cdr
[21/06/2006 16:39|--a------|24272] - I:\Sauvegarde_de_SCORPION.cdr
[30/03/2006 16:35|--a------|731983] - I:\SB ROND.cpt
[30/03/2006 11:13|--a------|288239] - I:\SB ROND.gif
[21/06/2006 20:22|--a------|241872] - I:\SCORPION.cdr
[10/08/2004 14:00|--ah-----|59024] - I:\sere1257.fon
[10/08/2004 14:00|--ah-----|84080] - I:\serf1257.fon
[10/08/2004 14:00|--ah-----|59952] - I:\serifee.fon
[10/08/2004 14:00|--ah-----|60752] - I:\serifeg.fon
[10/08/2004 14:00|--ah-----|63296] - I:\serifer.fon
[10/08/2004 14:00|--ah-----|61024] - I:\serifet.fon
[10/08/2004 14:00|--ah-----|85360] - I:\seriffe.fon
[10/08/2004 14:00|--ah-----|86256] - I:\seriffg.fon
[10/08/2004 14:00|--ah-----|90736] - I:\seriffr.fon
[10/08/2004 14:00|--ah-----|84848] - I:\serifft.fon
[16/09/2008 17:55|--a------|99622] - I:\SF840 CHU.pdf
[16/02/2007 19:32|--a------|1511576] - I:\SG21A25.pdf
[03/03/2008 22:28|--a------|3090454] - I:\sign cv.bmp
[03/03/2008 22:24|--a------|293993] - I:\sign cv.jpg
[01/01/2007 21:07|--a------|10512288] - I:\simsun.ttc
[10/08/2004 14:00|--ah-----|24672] - I:\smae1257.fon
[10/08/2004 14:00|--ah-----|19904] - I:\smaf1257.fon
[10/08/2004 14:00|--ah-----|24784] - I:\smallee.fon
[10/08/2004 14:00|--ah-----|28912] - I:\smalleg.fon
[10/08/2004 14:00|--ah-----|24832] - I:\smaller.fon
[10/08/2004 14:00|--ah-----|29200] - I:\smallet.fon
[10/08/2004 14:00|--ah-----|19600] - I:\smallfe.fon
[10/08/2004 14:00|--ah-----|23120] - I:\smallfg.fon
[10/08/2004 14:00|--ah-----|19760] - I:\smallfr.fon
[10/08/2004 14:00|--ah-----|23008] - I:\smallft.fon
[11/06/2007 19:16|--a------|24719] - I:\Sommaire012007.htm
[07/10/2006 11:40|--a------|95313] - I:\spiders_club.zip
[10/08/2004 14:00|--ah-----|65456] - I:\ssee1257.fon
[10/08/2004 14:00|--ah-----|90336] - I:\ssef1257.fon
[10/08/2004 14:00|--ah-----|66464] - I:\sserifee.fon
[10/08/2004 14:00|--ah-----|65328] - I:\sserifeg.fon
[10/08/2004 14:00|--ah-----|68848] - I:\sserifer.fon
[10/08/2004 14:00|--ah-----|64400] - I:\sserifet.fon
[10/08/2004 14:00|--ah-----|92032] - I:\sseriffe.fon
[10/08/2004 14:00|--ah-----|90288] - I:\sseriffg.fon
[10/08/2004 14:00|--ah-----|98256] - I:\sseriffr.fon
[10/08/2004 14:00|--ah-----|89456] - I:\sserifft.fon
[16/09/2008 17:47|--a------|99328] - I:\STOCKFICHES839.pdf
[10/08/2004 14:00|--ah-----|56336] - I:\symbole.fon
[22/03/2007 19:38|--a------|27058] - I:\syndic demongeot.PDF
[09/03/2007 22:35|--a------|13090] - I:\TARIFS PROS.ods
[03/03/2006 18:46|--a------|1962922] - I:\TETE COMPLETE PUBLICITE.cdr
[29/11/2007 15:12|--a------|928295] - I:\thalie
[13/11/2008 19:45|--ahs----|63488] - I:\Thumbs.db
[16/02/2008 12:55|--a------|451332] - I:\torpedo06.imb
[30/09/2008 11:03|--a------|55926] - I:\UNTITLED.BIN
[30/08/2007 20:42|--a------|5031687] - I:\VALERIE.jpg
[10/08/2004 14:00|--ah-----|5168] - I:\vga737.fon
[10/08/2004 14:00|--ah-----|5168] - I:\vga775.fon
[10/08/2004 14:00|--ah-----|6160] - I:\vga852.fon
[10/08/2004 14:00|--ah-----|5120] - I:\vga855.fon
[10/08/2004 14:00|--ah-----|5552] - I:\vga857.fon
[10/08/2004 14:00|--ah-----|5184] - I:\vga860.fon
[10/08/2004 14:00|--ah-----|5200] - I:\vga863.fon
[10/08/2004 14:00|--ah-----|5184] - I:\vga865.fon
[10/08/2004 14:00|--ah-----|6128] - I:\vga866.fon
[10/08/2004 14:00|--ah-----|5184] - I:\vga869.fon
[10/08/2004 14:00|--ah-----|5376] - I:\vgaf1257.fon
[10/08/2004 14:00|--ah-----|5376] - I:\vgafixe.fon
[10/08/2004 14:00|--ah-----|6112] - I:\vgafixg.fon
[10/08/2004 14:00|--ah-----|5600] - I:\vgafixr.fon
[10/08/2004 14:00|--ah-----|6112] - I:\vgafixt.fon
[10/08/2004 14:00|--ah-----|5168] - I:\vgaoem.fon
[10/08/2004 14:00|--ah-----|6656] - I:\vgas1257.fon
[10/08/2004 14:00|--ah-----|6608] - I:\vgasyse.fon
[10/08/2004 14:00|--ah-----|7008] - I:\vgasysg.fon
[10/08/2004 14:00|--ah-----|6912] - I:\vgasysr.fon
[10/08/2004 14:00|--ah-----|6912] - I:\vgasyst.fon
[26/05/2008 19:48|--a------|294929] - I:\visa chine‚.pdf
[18/05/2007 21:43|--a------|1526259] - I:\VITRINE.pdf
[23/10/2008 11:11|--a------|2841] - I:\YAHOO1.PDF
[18/11/2006 18:17|--a------|796518] - I:\ZEITOUN2.jpg
################## [ Vaccination ]
# C:\autorun.inf ( # Not infected ) -> Folder created by UsbFix.
# I:\autorun.inf ( # Not infected ) -> Folder created by UsbFix.
################## [ ! Fin du rapport # UsbFix V3.029 ! ]
Merci beucoup de votre aide !
############################## [ UsbFix V3.029 | Cleaning ]
# User : Propriétaire (Administrateurs) # SF06
# Update on 05/06/09 by Chiquitine29, C_XX & Chimay8
# WebSite : http://pagesperso-orange.fr/NosTools/usbfix.html
# Start at: 21:22:47 | 08/06/2009
# Intel(R) Core(TM)2 CPU T5200 @ 1.60GHz
# Microsoft Windows XP Édition familiale (5.1.2600 32-bit) # Service Pack 3
# Internet Explorer 7.0.5730.13
# Windows Firewall Status : Enabled
# AV : avast! antivirus 4.8.1335 [VPS 090607-0] 4.8.1335 [ Enabled | Updated ]
# A:\ # Lecteur de disquettes 3 ½ pouces
# C:\ # Disque fixe local # 92,91 Go (65,71 Go free) # NTFS
# H:\ # Disque CD-ROM
# I:\ # Disque fixe local # 74,5 Go (37,79 Go free) [CLIENT] # NTFS
############################## [ Processus actifs ]
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\brsvc01a.exe
C:\WINDOWS\system32\brss01a.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Alwil Software\Avast4\setup\avast.setup
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\DVDRAMSV.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\LogMeIn\x86\RaMaint.exe
C:\Program Files\LogMeIn\x86\LogMeIn.exe
C:\Program Files\LogMeIn\x86\LMIGuardian.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\PVSW\Bin\WGE_SRV.EXE
C:\PVSW\BIN\W3dbsmgr.EXE
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\TOSHIBA\TOSHIBA Applet\TAPPSRV.exe
C:\WINDOWS\system32\SearchIndexer.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
################## [ Fichiers # Dossiers infectieux ]
################## [ Registre # Clés Run infectieuses ]
################## [ Registre # Mountpoints2 ]
################## [ Listing des fichiers présent ]
[03/12/2008 20:43|--a------|1024] - C:\.rnd
[06/11/2008 20:42|--a------|0] - C:\AUTOEXEC.BAT
[08/06/2009 09:27|--a------|52] - C:\autorun.MSNFix
[22/11/2008 16:06|---hs----|216] - C:\boot.ini
[05/08/2004 14:00|-rahs----|4952] - C:\Bootfont.bin
[07/12/2008 18:33|--a------|74] - C:\CMLoader.log
[06/11/2008 20:42|--a------|0] - C:\CONFIG.SYS
[06/11/2008 20:42|-rahs----|0] - C:\IO.SYS
[06/11/2008 20:42|-rahs----|0] - C:\MSDOS.SYS
[05/08/2004 14:00|-rahs----|47564] - C:\NTDETECT.COM
[07/11/2008 12:56|-rahs----|252240] - C:\ntldr
[14/04/2009 10:50|--a------|1588] - C:\oile.exp
[?|?|?] - C:\pagefile.sys
[19/05/2009 19:28|--a------|199] - C:\password.klc
[02/06/2009 15:06|--ah-----|268] - C:\sqmdata00.sqm
[03/06/2009 22:08|--ah-----|268] - C:\sqmdata01.sqm
[07/06/2009 18:07|--ah-----|268] - C:\sqmdata02.sqm
[08/06/2009 16:36|--ah-----|268] - C:\sqmdata03.sqm
[08/06/2009 17:17|--ah-----|268] - C:\sqmdata04.sqm
[08/06/2009 17:42|--ah-----|268] - C:\sqmdata05.sqm
[08/06/2009 20:50|--ah-----|268] - C:\sqmdata06.sqm
[05/05/2009 00:13|--ah-----|268] - C:\sqmdata07.sqm
[06/05/2009 23:42|--ah-----|268] - C:\sqmdata08.sqm
[11/05/2009 20:51|--ah-----|268] - C:\sqmdata09.sqm
[17/05/2009 18:01|--ah-----|268] - C:\sqmdata10.sqm
[17/05/2009 22:13|--ah-----|268] - C:\sqmdata11.sqm
[18/05/2009 16:18|--ah-----|268] - C:\sqmdata12.sqm
[20/05/2009 21:39|--ah-----|268] - C:\sqmdata13.sqm
[21/05/2009 19:03|--ah-----|268] - C:\sqmdata14.sqm
[25/05/2009 16:05|--ah-----|268] - C:\sqmdata15.sqm
[26/05/2009 20:23|--ah-----|268] - C:\sqmdata16.sqm
[26/05/2009 21:11|--ah-----|268] - C:\sqmdata17.sqm
[27/05/2009 22:04|--ah-----|268] - C:\sqmdata18.sqm
[28/05/2009 19:39|--ah-----|268] - C:\sqmdata19.sqm
[02/06/2009 15:06|--ah-----|244] - C:\sqmnoopt00.sqm
[03/06/2009 22:08|--ah-----|244] - C:\sqmnoopt01.sqm
[07/06/2009 18:07|--ah-----|244] - C:\sqmnoopt02.sqm
[08/06/2009 16:36|--ah-----|244] - C:\sqmnoopt03.sqm
[08/06/2009 17:17|--ah-----|244] - C:\sqmnoopt04.sqm
[08/06/2009 17:42|--ah-----|244] - C:\sqmnoopt05.sqm
[08/06/2009 20:50|--ah-----|244] - C:\sqmnoopt06.sqm
[05/05/2009 00:13|--ah-----|244] - C:\sqmnoopt07.sqm
[06/05/2009 23:42|--ah-----|244] - C:\sqmnoopt08.sqm
[11/05/2009 20:51|--ah-----|244] - C:\sqmnoopt09.sqm
[17/05/2009 18:01|--ah-----|244] - C:\sqmnoopt10.sqm
[17/05/2009 22:13|--ah-----|244] - C:\sqmnoopt11.sqm
[18/05/2009 16:18|--ah-----|244] - C:\sqmnoopt12.sqm
[20/05/2009 21:39|--ah-----|244] - C:\sqmnoopt13.sqm
[21/05/2009 19:03|--ah-----|244] - C:\sqmnoopt14.sqm
[25/05/2009 16:05|--ah-----|244] - C:\sqmnoopt15.sqm
[26/05/2009 20:23|--ah-----|244] - C:\sqmnoopt16.sqm
[26/05/2009 21:11|--ah-----|244] - C:\sqmnoopt17.sqm
[27/05/2009 22:04|--ah-----|244] - C:\sqmnoopt18.sqm
[28/05/2009 19:39|--ah-----|244] - C:\sqmnoopt19.sqm
[07/11/2008 15:38|--a------|3406] - C:\temptxt.log
[08/06/2009 21:23|--a------|5343] - C:\UsbFix.txt
[31/08/2005 11:54|--a------|186138432] - I:\- Sonneries -.zip
[19/07/2007 19:41|--a------|2534] - I:\190707-0149000027000268.csv
[10/08/2004 14:00|--ah-----|10976] - I:\8514fixe.fon
[10/08/2004 14:00|--ah-----|11520] - I:\8514fixg.fon
[10/08/2004 14:00|--ah-----|10976] - I:\8514fixr.fon
[10/08/2004 14:00|--ah-----|11488] - I:\8514fixt.fon
[10/08/2004 14:00|--ah-----|13248] - I:\8514oeme.fon
[10/08/2004 14:00|--ah-----|12800] - I:\8514oemg.fon
[10/08/2004 14:00|--ah-----|13200] - I:\8514oemr.fon
[10/08/2004 14:00|--ah-----|12720] - I:\8514oemt.fon
[10/08/2004 14:00|--ah-----|9504] - I:\8514syse.fon
[10/08/2004 14:00|--ah-----|9856] - I:\8514sysg.fon
[10/08/2004 14:00|--ah-----|10064] - I:\8514sysr.fon
[10/08/2004 14:00|--ah-----|9792] - I:\8514syst.fon
[10/08/2004 14:00|--ah-----|12304] - I:\85775.fon
[10/08/2004 14:00|--ah-----|12256] - I:\85855.fon
[10/08/2004 14:00|--ah-----|10976] - I:\85f1257.fon
[10/08/2004 14:00|--ah-----|9472] - I:\85s1257.fon
[02/09/2008 11:16|--a------|109121] - I:\aidologement cv.pdf
[30/08/2007 20:42|--a------|1094558] - I:\alinea.bmp
[10/08/2004 14:00|--ah-----|35808] - I:\app775.fon
[10/08/2004 14:00|--ah-----|36656] - I:\app852.fon
[10/08/2004 14:00|--ah-----|37296] - I:\app855.fon
[10/08/2004 14:00|--ah-----|36672] - I:\app857.fon
[10/08/2004 14:00|--ah-----|37472] - I:\app866.fon
[31/01/2007 18:32|--a------|39554] - I:\arialtimbre.EUF
[31/01/2007 18:32|--a------|101784] - I:\arialtimbre.tte
[14/02/2007 11:14|--a------|11058357] - I:\Assigest.EXE
[24/04/2007 17:45|--a------|57875] - I:\AVANTMAJ.ZIP
[01/09/2008 20:39|--a------|5742] - I:\avril08.PDF
[29/02/2008 20:35|--a------|84241] - I:\awstats.gc8692.html
[29/02/2008 20:36|--a------|8814] - I:\awstats.gc8692.urlexit.html
[19/03/2008 18:54|--a------|112566] - I:\badetsnetavous.pdf
[01/06/2007 13:11|--a------|5914833] - I:\Badges IA.pdf
[05/11/2008 12:41|--a------|13816] - I:\BANER.cdr
[10/08/2004 14:00|--a------|16258580] - I:\batang.ttc
[19/12/2005 22:42|--a------|526398] - I:\bbyo.bmp
[11/06/2007 19:16|--a------|24390] - I:\BONdeCde.htm
[04/01/2008 11:24|--a------|1276790] - I:\bonne annee chinois.bmp
[04/01/2008 11:25|--a------|21897] - I:\bonne annee chinois.png
[30/10/2008 12:01|--a------|33122] - I:\bookmark.htm
[30/05/2007 11:39|--a------|66048] - I:\BOWLING3.xls
[15/02/2008 17:58|--a------|112592] - I:\BRACEL.pdf
[19/07/2007 17:39|--a------|226619] - I:\CA12.pdf
[25/07/2007 17:00|--a------|8482382] - I:\caisse bar.exe
[25/07/2007 17:08|--a------|8920142] - I:\CAISSE BOULANGERIE.exe
[30/10/2008 11:39|--a------|1775945] - I:\calend.zip
[30/10/2008 11:36|--a------|717040] - I:\CALENDRIER 09.pdf
[30/10/2008 11:37|--a------|673385] - I:\CALENDRIER 09S.pdf
[30/10/2008 11:40|--a------|1539942] - I:\CALENDRIER Banque_semestriel.zip
[30/10/2008 11:39|--a------|1184404] - I:\CALENDRIER Modele_horizontal.zip
[30/10/2008 11:39|--a------|1356076] - I:\CALENDRIER Modele_vertical_2009.zip
[30/10/2008 11:52|--a------|16000012] - I:\calendriers2009.zip
[30/10/2008 11:39|--a------|1219634] - I:\Calendriers_de_poche_2009.zip
[30/10/2008 11:43|--a------|18944] - I:\calendrier_perpetuel.xls
[24/04/2008 11:58|--a------|62587] - I:\Cartel.pdf
[11/06/2007 21:29|--a------|1704486] - I:\CATALOGUE ESSAI.htm
[11/06/2007 21:40|--a------|809733] - I:\CATALOGUE ESSAI2.htm
[11/06/2007 19:16|--a------|2220740] - I:\CATALOGUE0107.htm
[11/06/2007 22:14|--a------|889157] - I:\CATALOGUE0107ESSAI3.htm
[11/06/2007 22:14|--a------|1588927] - I:\CATALOGUE0107SP.htm
[11/06/2007 21:18|--a------|204193] - I:\CATALOGUE0107SP.pdf
[30/10/2008 11:52|--a------|20677573] - I:\catalogue_exaprint08.pdf
[10/08/2004 14:00|--ah-----|7216] - I:\cga40737.fon
[10/08/2004 14:00|--ah-----|6672] - I:\cga40852.fon
[10/08/2004 14:00|--ah-----|6672] - I:\cga40857.fon
[10/08/2004 14:00|--ah-----|7232] - I:\cga40866.fon
[10/08/2004 14:00|--ah-----|7216] - I:\cga40869.fon
[10/08/2004 14:00|--ah-----|5168] - I:\cga80737.fon
[10/08/2004 14:00|--ah-----|5200] - I:\cga80852.fon
[10/08/2004 14:00|--ah-----|4640] - I:\cga80857.fon
[10/08/2004 14:00|--ah-----|5168] - I:\cga80866.fon
[10/08/2004 14:00|--ah-----|5168] - I:\cga80869.fon
[10/12/2006 20:07|--a------|51476] - I:\christmas_lights.zip
[09/12/2006 23:36|--a------|716] - I:\CLE RESEAU.txt
[11/04/2006 11:37|--a------|13470] - I:\cmjn.cdr
[29/10/2008 19:43|--a------|2519565] - I:\Compta-STOCKFICHES-20081029.zip
[29/10/2008 19:44|--a------|3703588] - I:\Compta-STOCKIMMO-20081029.zip
[22/04/2008 18:09|--a------|24099] - I:\COMPTE220408.pdf
[24/10/2008 12:07|--a------|36737] - I:\CONTACT.csv
[25/02/2008 12:24|--a------|11278] - I:\CONTOUR8030.cmx
[10/08/2004 14:00|--ah-----|23440] - I:\coue1257.fon
[10/08/2004 14:00|--ah-----|31760] - I:\couf1257.fon
[10/08/2004 14:00|--ah-----|23440] - I:\couree.fon
[10/08/2004 14:00|--ah-----|25024] - I:\coureg.fon
[10/08/2004 14:00|--ah-----|23440] - I:\courer.fon
[10/08/2004 14:00|--ah-----|25024] - I:\couret.fon
[10/08/2004 14:00|--ah-----|31776] - I:\courfe.fon
[10/08/2004 14:00|--ah-----|33344] - I:\courfg.fon
[10/08/2004 14:00|--ah-----|31808] - I:\courfr.fon
[10/08/2004 14:00|--ah-----|33360] - I:\courft.fon
[30/09/2008 10:58|--a------|347669] - I:\CREDIT IMPOT.pdf
[25/09/2008 19:47|--a------|30410] - I:\DECOUPE CORSE.cdr
[09/05/2008 20:40|--ahs----|67] - I:\desktop.ini
[09/05/2007 15:44|--a------|506880] - I:\DEVIS 090507.xls
[12/11/2007 21:10|--a------|782524] - I:\Devis ELECT GEN.pdf
[10/04/2006 20:17|--a------|3891712] - I:\Devis HT PUB.ewg
[12/11/2007 20:37|--a------|786094] - I:\Devis judo.pdf
[09/11/2007 11:21|--a------|786893] - I:\deviswehbe.pdf
[10/08/2004 14:00|--ah-----|36336] - I:\dos737.fon
[25/05/2007 12:37|--a------|63296] - I:\DPE.cdr
[25/05/2007 12:09|--a------|458662] - I:\dpe.jpg
[25/05/2007 12:36|--a------|171120] - I:\dpe150.jpg
[16/03/2007 11:00|--a------|24246] - I:\DRP27739809.pdf
[12/03/2007 16:59|--a------|2858223] - I:\EASYJET.pdf
[11/12/2007 19:06|--a------|0] - I:\EBP
[29/10/2008 19:42|--a------|5639589] - I:\EBP-STOCKFICHES-20081029.zip
[29/10/2007 11:37|--a------|213738] - I:\ECUSSON JUDO.jpg
[10/08/2004 14:00|--ah-----|9248] - I:\ega40737.fon
[10/08/2004 14:00|--ah-----|8368] - I:\ega40852.fon
[10/08/2004 14:00|--ah-----|8704] - I:\ega40857.fon
[10/08/2004 14:00|--ah-----|9232] - I:\ega40866.fon
[10/08/2004 14:00|--ah-----|9248] - I:\ega40869.fon
[10/08/2004 14:00|--ah-----|6192] - I:\ega80737.fon
[10/08/2004 14:00|--ah-----|5344] - I:\ega80852.fon
[10/08/2004 14:00|--ah-----|5648] - I:\ega80857.fon
[10/08/2004 14:00|--ah-----|5280] - I:\ega80866.fon
[10/08/2004 14:00|--ah-----|6192] - I:\ega80869.fon
[15/01/2008 17:09|--a------|17207] - I:\ESSAI.ods
[02/11/2007 18:57|--a------|14936] - I:\ETAT BPCA 1107.ods
[22/02/2007 22:24|--a------|15007] - I:\ETAT BPCA.ods
[04/06/2007 18:48|--a------|13590] - I:\ETAT SG.ods
[31/01/2007 18:37|--a------|39554] - I:\EUDC.EUF
[31/01/2007 18:37|--a------|101784] - I:\EUDC.TTE
[25/10/2007 11:33|--a------|784026] - I:\FAC JANCARTIER.pdf
[23/10/2007 16:56|--a------|783853] - I:\Fac Padel.pdf
[03/03/2008 21:50|--a------|599361] - I:\FAC SIGN02BIS1.PDF
[10/04/2006 18:57|--a------|5950324] - I:\Facture 0686 STOCKFICHES PUB.ewg
[19/05/2008 21:55|--a------|175259] - I:\facture alice0408.pdf
[29/11/2007 19:26|--a------|784109] - I:\FACTURE AM.pdf
[08/10/2007 16:55|--a------|26159] - I:\Felixti.zip
[09/11/2006 16:46|--a------|257538] - I:\FERRARINI SAC.pdf
[23/04/2008 20:01|--a------|15198] - I:\FIBAT.cdr
[29/07/2007 16:39|--a------|17236] - I:\FLEURDEAUbmp.cdr
[26/05/2008 19:50|--a------|1295011] - I:\formulaire chine.pdf
[06/08/2008 21:43|--a------|13983] - I:\FRAIS BANCAIRES BPCA.ods
[06/08/2008 21:25|--a------|50811] - I:\FRAIS BANCAIRES BPCA.pdf
[04/05/2007 15:13|--a------|1650816] - I:\France-Inter.mp3
[04/11/2008 20:44|--a------|20488] - I:\GECKO.cdr
[29/10/2008 19:45|--a------|18724824] - I:\Gescom-Config-20081029.zip
[29/10/2008 19:42|--a------|2902882] - I:\Gescom-STOCKFICHES-20081029.zip
[18/05/2007 19:21|--a------|86016] - I:\GEST41 - 005 - GESTION DES APPORTS EN CAPITAL ET EN COMPTE COURANT.doc
[13/02/2007 18:59|--a------|5537280] - I:\Gestion-SCI.zip
[03/03/2008 17:03|--a------|17766] - I:\gilles.cdr
[19/04/2006 21:21|--a------|26040] - I:\GlobalMonospace.CompositeFont
[02/07/2006 23:37|--a------|26489] - I:\GlobalSansSerif.CompositeFont
[19/04/2006 21:21|--a------|29779] - I:\GlobalSerif.CompositeFont
[02/07/2006 23:37|--a------|30808] - I:\GlobalUserInterface.CompositeFont
[18/11/2006 18:15|--a------|796518] - I:\Graphique 1.jpg
[20/12/2005 17:56|--a------|44730] - I:\Graphique 2.bmp
[30/10/2008 11:48|--a------|4867169] - I:\GUIDE_PAO.pdf
[30/10/2008 11:49|--a------|1922385] - I:\guide_PDF.pdf
[10/08/2004 14:00|--a------|13518660] - I:\gulim.ttc
[07/10/2006 11:47|--a------|1167853] - I:\halloween.pdf
[22/05/2007 21:01|--ah-----|3535] - I:\hpothb07.dat
[22/05/2007 21:01|--ah-----|105872] - I:\hpothb07.tif
[19/10/2007 21:29|--a------|22824] - I:\https___www.telepaiement.cp.finances.gouv.fr_satelit_web1.PDF
[07/08/2008 21:56|--a------|119949] - I:\http___cgi.ebay.com_ws_eBayISAPI1.PDF
[31/05/2007 18:00|--a------|93091] - I:\http___web.euro-web.fr_facturation1.PDF
[28/02/2008 21:50|--a------|18673] - I:\http___www.imbretex.fr_partenaires_catalogue_default1.PDF
[26/09/2008 19:57|--a------|21571] - I:\http___www.simpleomobile.fr_contrat_html_contrat1.PDF
[11/12/2006 11:57|--a------|360] - I:\IDENTIFIANTS.rtf
[17/08/2006 22:38|--a------|2550272] - I:\IMBRETEX TARIF revendeurs 2006.xls
[02/02/2007 16:41|--a------|84] - I:\INTERNET.txt
[03/10/2007 20:42|--a------|158859] - I:\IR-Avis-1-2007-7060282839919.pdf
[29/10/2007 11:37|--a------|49514] - I:\judo2
[15/03/2005 20:42|--a------|13724080] - I:\KasperskyPersonal_50227_fr.exe
[15/03/2005 20:42|--a------|1447] - I:\KAV_0008E264.key
[10/12/2006 19:57|--a------|15525] - I:\kr_eight_santas.zip
[28/01/2008 17:28|--a------|686514] - I:\LIASSE FISCALE LOU FICANAS 061.PDF
[24/08/2007 09:57|--a------|11553] - I:\Liasse2033A.pdf
[06/10/2006 16:05|--a------|924407] - I:\LIG2.cpt
[22/07/2008 18:49|--a------|14217] - I:\livraison gilet fluo.PDF
[29/10/2008 19:40|--a------|114564] - I:\LOCIMMOsvg0810291839.ZIP
[07/08/2007 15:52|--a------|925398] - I:\logo asso.bmp
[11/10/2006 17:13|--a------|9679] - I:\logogym.jpg
[18/11/2006 01:03|--a------|186947] - I:\logoyam.jpg
[20/11/2007 12:01|--a------|375678] - I:\logoZB[1].bmp
[24/05/2007 12:24|--a------|12602] - I:\MAMOUNEY.cdr
[25/07/2007 18:41|--a------|7344850] - I:\Manuel UtilisateurSCI.pdf
[10/08/2004 14:00|--ah-----|24124] - I:\marlett.ttf
[10/03/2008 18:37|--a------|13174] - I:\maroc.cdr
[10/08/2004 14:00|--a------|8823308] - I:\mingliu.ttc
[17/03/2007 20:04|--a------|114176] - I:\modele facture logo etoile1.xls
[13/03/2007 19:00|--a------|1237] - I:\motdepasse logmein.txt
[10/08/2004 14:00|--a------|8272028] - I:\msgothic.ttc
[10/08/2004 14:00|--a------|9135960] - I:\msmincho.ttc
[31/10/2008 00:25|--a------|104710539] - I:\MyPhotoCalendars.exe
[16/10/2006 18:49|--a------|37313] - I:\naema.pdf
[30/09/2008 11:03|--a------|233146] - I:\neu.eps
[12/06/2008 18:20|--a------|1020] - I:\NICO2.edr
[12/06/2008 18:20|--a------|5142] - I:\NICO2.exp
[01/09/2008 21:39|--a------|833] - I:\nouilles.htm
[01/09/2008 21:42|--a------|972] - I:\nouilles2.htm
[06/02/2007 22:51|--a------|11618] - I:\NUMEROTATION COMPTES.ods
[30/10/2008 19:00|--a------|16383] - I:\OM40.ECD
[17/01/2008 13:06|--a------|3031300] - I:\papa2T.cdr
[17/01/2008 13:03|--a------|3140448] - I:\papa2TSTD.cdr
[07/11/2008 00:12|--a------|199] - I:\password.klc
[25/07/2008 16:16|--a------|32582] - I:\PATRICIA.exp
[25/07/2008 16:16|--a------|45] - I:\PATRICIA.inf
[05/11/2008 01:46|--a------|17104] - I:\PM TD.cdr
[26/07/2007 15:31|--a------|635392] - I:\PrintableAlphabet1.doc
[02/10/2008 11:53|--a------|4960] - I:\quittance10.PDF
[14/02/2007 11:36|--a------|14521596] - I:\quoram_l.exe
[30/10/2008 11:49|--a------|146610] - I:\reglages_distiller.zip
[24/09/2007 10:14|--a------|18274] - I:\REL SG CV 09.PDF
[03/07/2008 11:29|--a------|89096] - I:\reservation pekin.pdf
[05/11/2007 11:18|--a------|10546] - I:\rib cv palatine.pdf
[10/12/2006 19:43|--a------|21063] - I:\saloon.zip
[15/02/2008 17:58|--a------|112592] - I:\SAORGE BRACELET.pdf
[27/03/2008 12:40|--a------|26577] - I:\saorge1.PDF
[12/06/2007 18:17|--a------|6546940] - I:\Sauvegarde_de_dane.cdr
[03/03/2008 12:48|--a------|17402] - I:\Sauvegarde_de_gilles.cdr
[14/06/2007 17:23|--a------|18686] - I:\Sauvegarde_de_logym.cdr
[10/03/2008 18:27|--a------|13006] - I:\Sauvegarde_de_maroc.cdr
[05/11/2008 00:55|--a------|103626] - I:\Sauvegarde_de_PM TD.cdr
[21/06/2006 16:39|--a------|24272] - I:\Sauvegarde_de_SCORPION.cdr
[30/03/2006 16:35|--a------|731983] - I:\SB ROND.cpt
[30/03/2006 11:13|--a------|288239] - I:\SB ROND.gif
[21/06/2006 20:22|--a------|241872] - I:\SCORPION.cdr
[10/08/2004 14:00|--ah-----|59024] - I:\sere1257.fon
[10/08/2004 14:00|--ah-----|84080] - I:\serf1257.fon
[10/08/2004 14:00|--ah-----|59952] - I:\serifee.fon
[10/08/2004 14:00|--ah-----|60752] - I:\serifeg.fon
[10/08/2004 14:00|--ah-----|63296] - I:\serifer.fon
[10/08/2004 14:00|--ah-----|61024] - I:\serifet.fon
[10/08/2004 14:00|--ah-----|85360] - I:\seriffe.fon
[10/08/2004 14:00|--ah-----|86256] - I:\seriffg.fon
[10/08/2004 14:00|--ah-----|90736] - I:\seriffr.fon
[10/08/2004 14:00|--ah-----|84848] - I:\serifft.fon
[16/09/2008 17:55|--a------|99622] - I:\SF840 CHU.pdf
[16/02/2007 19:32|--a------|1511576] - I:\SG21A25.pdf
[03/03/2008 22:28|--a------|3090454] - I:\sign cv.bmp
[03/03/2008 22:24|--a------|293993] - I:\sign cv.jpg
[01/01/2007 21:07|--a------|10512288] - I:\simsun.ttc
[10/08/2004 14:00|--ah-----|24672] - I:\smae1257.fon
[10/08/2004 14:00|--ah-----|19904] - I:\smaf1257.fon
[10/08/2004 14:00|--ah-----|24784] - I:\smallee.fon
[10/08/2004 14:00|--ah-----|28912] - I:\smalleg.fon
[10/08/2004 14:00|--ah-----|24832] - I:\smaller.fon
[10/08/2004 14:00|--ah-----|29200] - I:\smallet.fon
[10/08/2004 14:00|--ah-----|19600] - I:\smallfe.fon
[10/08/2004 14:00|--ah-----|23120] - I:\smallfg.fon
[10/08/2004 14:00|--ah-----|19760] - I:\smallfr.fon
[10/08/2004 14:00|--ah-----|23008] - I:\smallft.fon
[11/06/2007 19:16|--a------|24719] - I:\Sommaire012007.htm
[07/10/2006 11:40|--a------|95313] - I:\spiders_club.zip
[10/08/2004 14:00|--ah-----|65456] - I:\ssee1257.fon
[10/08/2004 14:00|--ah-----|90336] - I:\ssef1257.fon
[10/08/2004 14:00|--ah-----|66464] - I:\sserifee.fon
[10/08/2004 14:00|--ah-----|65328] - I:\sserifeg.fon
[10/08/2004 14:00|--ah-----|68848] - I:\sserifer.fon
[10/08/2004 14:00|--ah-----|64400] - I:\sserifet.fon
[10/08/2004 14:00|--ah-----|92032] - I:\sseriffe.fon
[10/08/2004 14:00|--ah-----|90288] - I:\sseriffg.fon
[10/08/2004 14:00|--ah-----|98256] - I:\sseriffr.fon
[10/08/2004 14:00|--ah-----|89456] - I:\sserifft.fon
[16/09/2008 17:47|--a------|99328] - I:\STOCKFICHES839.pdf
[10/08/2004 14:00|--ah-----|56336] - I:\symbole.fon
[22/03/2007 19:38|--a------|27058] - I:\syndic demongeot.PDF
[09/03/2007 22:35|--a------|13090] - I:\TARIFS PROS.ods
[03/03/2006 18:46|--a------|1962922] - I:\TETE COMPLETE PUBLICITE.cdr
[29/11/2007 15:12|--a------|928295] - I:\thalie
[13/11/2008 19:45|--ahs----|63488] - I:\Thumbs.db
[16/02/2008 12:55|--a------|451332] - I:\torpedo06.imb
[30/09/2008 11:03|--a------|55926] - I:\UNTITLED.BIN
[30/08/2007 20:42|--a------|5031687] - I:\VALERIE.jpg
[10/08/2004 14:00|--ah-----|5168] - I:\vga737.fon
[10/08/2004 14:00|--ah-----|5168] - I:\vga775.fon
[10/08/2004 14:00|--ah-----|6160] - I:\vga852.fon
[10/08/2004 14:00|--ah-----|5120] - I:\vga855.fon
[10/08/2004 14:00|--ah-----|5552] - I:\vga857.fon
[10/08/2004 14:00|--ah-----|5184] - I:\vga860.fon
[10/08/2004 14:00|--ah-----|5200] - I:\vga863.fon
[10/08/2004 14:00|--ah-----|5184] - I:\vga865.fon
[10/08/2004 14:00|--ah-----|6128] - I:\vga866.fon
[10/08/2004 14:00|--ah-----|5184] - I:\vga869.fon
[10/08/2004 14:00|--ah-----|5376] - I:\vgaf1257.fon
[10/08/2004 14:00|--ah-----|5376] - I:\vgafixe.fon
[10/08/2004 14:00|--ah-----|6112] - I:\vgafixg.fon
[10/08/2004 14:00|--ah-----|5600] - I:\vgafixr.fon
[10/08/2004 14:00|--ah-----|6112] - I:\vgafixt.fon
[10/08/2004 14:00|--ah-----|5168] - I:\vgaoem.fon
[10/08/2004 14:00|--ah-----|6656] - I:\vgas1257.fon
[10/08/2004 14:00|--ah-----|6608] - I:\vgasyse.fon
[10/08/2004 14:00|--ah-----|7008] - I:\vgasysg.fon
[10/08/2004 14:00|--ah-----|6912] - I:\vgasysr.fon
[10/08/2004 14:00|--ah-----|6912] - I:\vgasyst.fon
[26/05/2008 19:48|--a------|294929] - I:\visa chine‚.pdf
[18/05/2007 21:43|--a------|1526259] - I:\VITRINE.pdf
[23/10/2008 11:11|--a------|2841] - I:\YAHOO1.PDF
[18/11/2006 18:17|--a------|796518] - I:\ZEITOUN2.jpg
################## [ Vaccination ]
# C:\autorun.inf ( # Not infected ) -> Folder created by UsbFix.
# I:\autorun.inf ( # Not infected ) -> Folder created by UsbFix.
################## [ ! Fin du rapport # UsbFix V3.029 ! ]
en voici un petit dernier, mais je pense que tout est revenu normal !
Merci beucoup de votre aide !
############################## [ UsbFix V3.029 | Cleaning ]
# User : Propriétaire (Administrateurs) # SF06
# Update on 05/06/09 by Chiquitine29, C_XX & Chimay8
# WebSite : http://pagesperso-orange.fr/NosTools/usbfix.html
# Start at: 21:22:47 | 08/06/2009
# Intel(R) Core(TM)2 CPU T5200 @ 1.60GHz
# Microsoft Windows XP Édition familiale (5.1.2600 32-bit) # Service Pack 3
# Internet Explorer 7.0.5730.13
# Windows Firewall Status : Enabled
# AV : avast! antivirus 4.8.1335 [VPS 090607-0] 4.8.1335 [ Enabled | Updated ]
# A:\ # Lecteur de disquettes 3 ½ pouces
# C:\ # Disque fixe local # 92,91 Go (65,71 Go free) # NTFS
# H:\ # Disque CD-ROM
# I:\ # Disque fixe local # 74,5 Go (37,79 Go free) [CLIENT] # NTFS
############################## [ Processus actifs ]
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\brsvc01a.exe
C:\WINDOWS\system32\brss01a.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Alwil Software\Avast4\setup\avast.setup
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\DVDRAMSV.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\LogMeIn\x86\RaMaint.exe
C:\Program Files\LogMeIn\x86\LogMeIn.exe
C:\Program Files\LogMeIn\x86\LMIGuardian.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\PVSW\Bin\WGE_SRV.EXE
C:\PVSW\BIN\W3dbsmgr.EXE
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\TOSHIBA\TOSHIBA Applet\TAPPSRV.exe
C:\WINDOWS\system32\SearchIndexer.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
################## [ Fichiers # Dossiers infectieux ]
################## [ Registre # Clés Run infectieuses ]
################## [ Registre # Mountpoints2 ]
################## [ Listing des fichiers présent ]
[03/12/2008 20:43|--a------|1024] - C:\.rnd
[06/11/2008 20:42|--a------|0] - C:\AUTOEXEC.BAT
[08/06/2009 09:27|--a------|52] - C:\autorun.MSNFix
[22/11/2008 16:06|---hs----|216] - C:\boot.ini
[05/08/2004 14:00|-rahs----|4952] - C:\Bootfont.bin
[07/12/2008 18:33|--a------|74] - C:\CMLoader.log
[06/11/2008 20:42|--a------|0] - C:\CONFIG.SYS
[06/11/2008 20:42|-rahs----|0] - C:\IO.SYS
[06/11/2008 20:42|-rahs----|0] - C:\MSDOS.SYS
[05/08/2004 14:00|-rahs----|47564] - C:\NTDETECT.COM
[07/11/2008 12:56|-rahs----|252240] - C:\ntldr
[14/04/2009 10:50|--a------|1588] - C:\oile.exp
[?|?|?] - C:\pagefile.sys
[19/05/2009 19:28|--a------|199] - C:\password.klc
[02/06/2009 15:06|--ah-----|268] - C:\sqmdata00.sqm
[03/06/2009 22:08|--ah-----|268] - C:\sqmdata01.sqm
[07/06/2009 18:07|--ah-----|268] - C:\sqmdata02.sqm
[08/06/2009 16:36|--ah-----|268] - C:\sqmdata03.sqm
[08/06/2009 17:17|--ah-----|268] - C:\sqmdata04.sqm
[08/06/2009 17:42|--ah-----|268] - C:\sqmdata05.sqm
[08/06/2009 20:50|--ah-----|268] - C:\sqmdata06.sqm
[05/05/2009 00:13|--ah-----|268] - C:\sqmdata07.sqm
[06/05/2009 23:42|--ah-----|268] - C:\sqmdata08.sqm
[11/05/2009 20:51|--ah-----|268] - C:\sqmdata09.sqm
[17/05/2009 18:01|--ah-----|268] - C:\sqmdata10.sqm
[17/05/2009 22:13|--ah-----|268] - C:\sqmdata11.sqm
[18/05/2009 16:18|--ah-----|268] - C:\sqmdata12.sqm
[20/05/2009 21:39|--ah-----|268] - C:\sqmdata13.sqm
[21/05/2009 19:03|--ah-----|268] - C:\sqmdata14.sqm
[25/05/2009 16:05|--ah-----|268] - C:\sqmdata15.sqm
[26/05/2009 20:23|--ah-----|268] - C:\sqmdata16.sqm
[26/05/2009 21:11|--ah-----|268] - C:\sqmdata17.sqm
[27/05/2009 22:04|--ah-----|268] - C:\sqmdata18.sqm
[28/05/2009 19:39|--ah-----|268] - C:\sqmdata19.sqm
[02/06/2009 15:06|--ah-----|244] - C:\sqmnoopt00.sqm
[03/06/2009 22:08|--ah-----|244] - C:\sqmnoopt01.sqm
[07/06/2009 18:07|--ah-----|244] - C:\sqmnoopt02.sqm
[08/06/2009 16:36|--ah-----|244] - C:\sqmnoopt03.sqm
[08/06/2009 17:17|--ah-----|244] - C:\sqmnoopt04.sqm
[08/06/2009 17:42|--ah-----|244] - C:\sqmnoopt05.sqm
[08/06/2009 20:50|--ah-----|244] - C:\sqmnoopt06.sqm
[05/05/2009 00:13|--ah-----|244] - C:\sqmnoopt07.sqm
[06/05/2009 23:42|--ah-----|244] - C:\sqmnoopt08.sqm
[11/05/2009 20:51|--ah-----|244] - C:\sqmnoopt09.sqm
[17/05/2009 18:01|--ah-----|244] - C:\sqmnoopt10.sqm
[17/05/2009 22:13|--ah-----|244] - C:\sqmnoopt11.sqm
[18/05/2009 16:18|--ah-----|244] - C:\sqmnoopt12.sqm
[20/05/2009 21:39|--ah-----|244] - C:\sqmnoopt13.sqm
[21/05/2009 19:03|--ah-----|244] - C:\sqmnoopt14.sqm
[25/05/2009 16:05|--ah-----|244] - C:\sqmnoopt15.sqm
[26/05/2009 20:23|--ah-----|244] - C:\sqmnoopt16.sqm
[26/05/2009 21:11|--ah-----|244] - C:\sqmnoopt17.sqm
[27/05/2009 22:04|--ah-----|244] - C:\sqmnoopt18.sqm
[28/05/2009 19:39|--ah-----|244] - C:\sqmnoopt19.sqm
[07/11/2008 15:38|--a------|3406] - C:\temptxt.log
[08/06/2009 21:23|--a------|5343] - C:\UsbFix.txt
[31/08/2005 11:54|--a------|186138432] - I:\- Sonneries -.zip
[19/07/2007 19:41|--a------|2534] - I:\190707-0149000027000268.csv
[10/08/2004 14:00|--ah-----|10976] - I:\8514fixe.fon
[10/08/2004 14:00|--ah-----|11520] - I:\8514fixg.fon
[10/08/2004 14:00|--ah-----|10976] - I:\8514fixr.fon
[10/08/2004 14:00|--ah-----|11488] - I:\8514fixt.fon
[10/08/2004 14:00|--ah-----|13248] - I:\8514oeme.fon
[10/08/2004 14:00|--ah-----|12800] - I:\8514oemg.fon
[10/08/2004 14:00|--ah-----|13200] - I:\8514oemr.fon
[10/08/2004 14:00|--ah-----|12720] - I:\8514oemt.fon
[10/08/2004 14:00|--ah-----|9504] - I:\8514syse.fon
[10/08/2004 14:00|--ah-----|9856] - I:\8514sysg.fon
[10/08/2004 14:00|--ah-----|10064] - I:\8514sysr.fon
[10/08/2004 14:00|--ah-----|9792] - I:\8514syst.fon
[10/08/2004 14:00|--ah-----|12304] - I:\85775.fon
[10/08/2004 14:00|--ah-----|12256] - I:\85855.fon
[10/08/2004 14:00|--ah-----|10976] - I:\85f1257.fon
[10/08/2004 14:00|--ah-----|9472] - I:\85s1257.fon
[02/09/2008 11:16|--a------|109121] - I:\aidologement cv.pdf
[30/08/2007 20:42|--a------|1094558] - I:\alinea.bmp
[10/08/2004 14:00|--ah-----|35808] - I:\app775.fon
[10/08/2004 14:00|--ah-----|36656] - I:\app852.fon
[10/08/2004 14:00|--ah-----|37296] - I:\app855.fon
[10/08/2004 14:00|--ah-----|36672] - I:\app857.fon
[10/08/2004 14:00|--ah-----|37472] - I:\app866.fon
[31/01/2007 18:32|--a------|39554] - I:\arialtimbre.EUF
[31/01/2007 18:32|--a------|101784] - I:\arialtimbre.tte
[14/02/2007 11:14|--a------|11058357] - I:\Assigest.EXE
[24/04/2007 17:45|--a------|57875] - I:\AVANTMAJ.ZIP
[01/09/2008 20:39|--a------|5742] - I:\avril08.PDF
[29/02/2008 20:35|--a------|84241] - I:\awstats.gc8692.html
[29/02/2008 20:36|--a------|8814] - I:\awstats.gc8692.urlexit.html
[19/03/2008 18:54|--a------|112566] - I:\badetsnetavous.pdf
[01/06/2007 13:11|--a------|5914833] - I:\Badges IA.pdf
[05/11/2008 12:41|--a------|13816] - I:\BANER.cdr
[10/08/2004 14:00|--a------|16258580] - I:\batang.ttc
[19/12/2005 22:42|--a------|526398] - I:\bbyo.bmp
[11/06/2007 19:16|--a------|24390] - I:\BONdeCde.htm
[04/01/2008 11:24|--a------|1276790] - I:\bonne annee chinois.bmp
[04/01/2008 11:25|--a------|21897] - I:\bonne annee chinois.png
[30/10/2008 12:01|--a------|33122] - I:\bookmark.htm
[30/05/2007 11:39|--a------|66048] - I:\BOWLING3.xls
[15/02/2008 17:58|--a------|112592] - I:\BRACEL.pdf
[19/07/2007 17:39|--a------|226619] - I:\CA12.pdf
[25/07/2007 17:00|--a------|8482382] - I:\caisse bar.exe
[25/07/2007 17:08|--a------|8920142] - I:\CAISSE BOULANGERIE.exe
[30/10/2008 11:39|--a------|1775945] - I:\calend.zip
[30/10/2008 11:36|--a------|717040] - I:\CALENDRIER 09.pdf
[30/10/2008 11:37|--a------|673385] - I:\CALENDRIER 09S.pdf
[30/10/2008 11:40|--a------|1539942] - I:\CALENDRIER Banque_semestriel.zip
[30/10/2008 11:39|--a------|1184404] - I:\CALENDRIER Modele_horizontal.zip
[30/10/2008 11:39|--a------|1356076] - I:\CALENDRIER Modele_vertical_2009.zip
[30/10/2008 11:52|--a------|16000012] - I:\calendriers2009.zip
[30/10/2008 11:39|--a------|1219634] - I:\Calendriers_de_poche_2009.zip
[30/10/2008 11:43|--a------|18944] - I:\calendrier_perpetuel.xls
[24/04/2008 11:58|--a------|62587] - I:\Cartel.pdf
[11/06/2007 21:29|--a------|1704486] - I:\CATALOGUE ESSAI.htm
[11/06/2007 21:40|--a------|809733] - I:\CATALOGUE ESSAI2.htm
[11/06/2007 19:16|--a------|2220740] - I:\CATALOGUE0107.htm
[11/06/2007 22:14|--a------|889157] - I:\CATALOGUE0107ESSAI3.htm
[11/06/2007 22:14|--a------|1588927] - I:\CATALOGUE0107SP.htm
[11/06/2007 21:18|--a------|204193] - I:\CATALOGUE0107SP.pdf
[30/10/2008 11:52|--a------|20677573] - I:\catalogue_exaprint08.pdf
[10/08/2004 14:00|--ah-----|7216] - I:\cga40737.fon
[10/08/2004 14:00|--ah-----|6672] - I:\cga40852.fon
[10/08/2004 14:00|--ah-----|6672] - I:\cga40857.fon
[10/08/2004 14:00|--ah-----|7232] - I:\cga40866.fon
[10/08/2004 14:00|--ah-----|7216] - I:\cga40869.fon
[10/08/2004 14:00|--ah-----|5168] - I:\cga80737.fon
[10/08/2004 14:00|--ah-----|5200] - I:\cga80852.fon
[10/08/2004 14:00|--ah-----|4640] - I:\cga80857.fon
[10/08/2004 14:00|--ah-----|5168] - I:\cga80866.fon
[10/08/2004 14:00|--ah-----|5168] - I:\cga80869.fon
[10/12/2006 20:07|--a------|51476] - I:\christmas_lights.zip
[09/12/2006 23:36|--a------|716] - I:\CLE RESEAU.txt
[11/04/2006 11:37|--a------|13470] - I:\cmjn.cdr
[29/10/2008 19:43|--a------|2519565] - I:\Compta-STOCKFICHES-20081029.zip
[29/10/2008 19:44|--a------|3703588] - I:\Compta-STOCKIMMO-20081029.zip
[22/04/2008 18:09|--a------|24099] - I:\COMPTE220408.pdf
[24/10/2008 12:07|--a------|36737] - I:\CONTACT.csv
[25/02/2008 12:24|--a------|11278] - I:\CONTOUR8030.cmx
[10/08/2004 14:00|--ah-----|23440] - I:\coue1257.fon
[10/08/2004 14:00|--ah-----|31760] - I:\couf1257.fon
[10/08/2004 14:00|--ah-----|23440] - I:\couree.fon
[10/08/2004 14:00|--ah-----|25024] - I:\coureg.fon
[10/08/2004 14:00|--ah-----|23440] - I:\courer.fon
[10/08/2004 14:00|--ah-----|25024] - I:\couret.fon
[10/08/2004 14:00|--ah-----|31776] - I:\courfe.fon
[10/08/2004 14:00|--ah-----|33344] - I:\courfg.fon
[10/08/2004 14:00|--ah-----|31808] - I:\courfr.fon
[10/08/2004 14:00|--ah-----|33360] - I:\courft.fon
[30/09/2008 10:58|--a------|347669] - I:\CREDIT IMPOT.pdf
[25/09/2008 19:47|--a------|30410] - I:\DECOUPE CORSE.cdr
[09/05/2008 20:40|--ahs----|67] - I:\desktop.ini
[09/05/2007 15:44|--a------|506880] - I:\DEVIS 090507.xls
[12/11/2007 21:10|--a------|782524] - I:\Devis ELECT GEN.pdf
[10/04/2006 20:17|--a------|3891712] - I:\Devis HT PUB.ewg
[12/11/2007 20:37|--a------|786094] - I:\Devis judo.pdf
[09/11/2007 11:21|--a------|786893] - I:\deviswehbe.pdf
[10/08/2004 14:00|--ah-----|36336] - I:\dos737.fon
[25/05/2007 12:37|--a------|63296] - I:\DPE.cdr
[25/05/2007 12:09|--a------|458662] - I:\dpe.jpg
[25/05/2007 12:36|--a------|171120] - I:\dpe150.jpg
[16/03/2007 11:00|--a------|24246] - I:\DRP27739809.pdf
[12/03/2007 16:59|--a------|2858223] - I:\EASYJET.pdf
[11/12/2007 19:06|--a------|0] - I:\EBP
[29/10/2008 19:42|--a------|5639589] - I:\EBP-STOCKFICHES-20081029.zip
[29/10/2007 11:37|--a------|213738] - I:\ECUSSON JUDO.jpg
[10/08/2004 14:00|--ah-----|9248] - I:\ega40737.fon
[10/08/2004 14:00|--ah-----|8368] - I:\ega40852.fon
[10/08/2004 14:00|--ah-----|8704] - I:\ega40857.fon
[10/08/2004 14:00|--ah-----|9232] - I:\ega40866.fon
[10/08/2004 14:00|--ah-----|9248] - I:\ega40869.fon
[10/08/2004 14:00|--ah-----|6192] - I:\ega80737.fon
[10/08/2004 14:00|--ah-----|5344] - I:\ega80852.fon
[10/08/2004 14:00|--ah-----|5648] - I:\ega80857.fon
[10/08/2004 14:00|--ah-----|5280] - I:\ega80866.fon
[10/08/2004 14:00|--ah-----|6192] - I:\ega80869.fon
[15/01/2008 17:09|--a------|17207] - I:\ESSAI.ods
[02/11/2007 18:57|--a------|14936] - I:\ETAT BPCA 1107.ods
[22/02/2007 22:24|--a------|15007] - I:\ETAT BPCA.ods
[04/06/2007 18:48|--a------|13590] - I:\ETAT SG.ods
[31/01/2007 18:37|--a------|39554] - I:\EUDC.EUF
[31/01/2007 18:37|--a------|101784] - I:\EUDC.TTE
[25/10/2007 11:33|--a------|784026] - I:\FAC JANCARTIER.pdf
[23/10/2007 16:56|--a------|783853] - I:\Fac Padel.pdf
[03/03/2008 21:50|--a------|599361] - I:\FAC SIGN02BIS1.PDF
[10/04/2006 18:57|--a------|5950324] - I:\Facture 0686 STOCKFICHES PUB.ewg
[19/05/2008 21:55|--a------|175259] - I:\facture alice0408.pdf
[29/11/2007 19:26|--a------|784109] - I:\FACTURE AM.pdf
[08/10/2007 16:55|--a------|26159] - I:\Felixti.zip
[09/11/2006 16:46|--a------|257538] - I:\FERRARINI SAC.pdf
[23/04/2008 20:01|--a------|15198] - I:\FIBAT.cdr
[29/07/2007 16:39|--a------|17236] - I:\FLEURDEAUbmp.cdr
[26/05/2008 19:50|--a------|1295011] - I:\formulaire chine.pdf
[06/08/2008 21:43|--a------|13983] - I:\FRAIS BANCAIRES BPCA.ods
[06/08/2008 21:25|--a------|50811] - I:\FRAIS BANCAIRES BPCA.pdf
[04/05/2007 15:13|--a------|1650816] - I:\France-Inter.mp3
[04/11/2008 20:44|--a------|20488] - I:\GECKO.cdr
[29/10/2008 19:45|--a------|18724824] - I:\Gescom-Config-20081029.zip
[29/10/2008 19:42|--a------|2902882] - I:\Gescom-STOCKFICHES-20081029.zip
[18/05/2007 19:21|--a------|86016] - I:\GEST41 - 005 - GESTION DES APPORTS EN CAPITAL ET EN COMPTE COURANT.doc
[13/02/2007 18:59|--a------|5537280] - I:\Gestion-SCI.zip
[03/03/2008 17:03|--a------|17766] - I:\gilles.cdr
[19/04/2006 21:21|--a------|26040] - I:\GlobalMonospace.CompositeFont
[02/07/2006 23:37|--a------|26489] - I:\GlobalSansSerif.CompositeFont
[19/04/2006 21:21|--a------|29779] - I:\GlobalSerif.CompositeFont
[02/07/2006 23:37|--a------|30808] - I:\GlobalUserInterface.CompositeFont
[18/11/2006 18:15|--a------|796518] - I:\Graphique 1.jpg
[20/12/2005 17:56|--a------|44730] - I:\Graphique 2.bmp
[30/10/2008 11:48|--a------|4867169] - I:\GUIDE_PAO.pdf
[30/10/2008 11:49|--a------|1922385] - I:\guide_PDF.pdf
[10/08/2004 14:00|--a------|13518660] - I:\gulim.ttc
[07/10/2006 11:47|--a------|1167853] - I:\halloween.pdf
[22/05/2007 21:01|--ah-----|3535] - I:\hpothb07.dat
[22/05/2007 21:01|--ah-----|105872] - I:\hpothb07.tif
[19/10/2007 21:29|--a------|22824] - I:\https___www.telepaiement.cp.finances.gouv.fr_satelit_web1.PDF
[07/08/2008 21:56|--a------|119949] - I:\http___cgi.ebay.com_ws_eBayISAPI1.PDF
[31/05/2007 18:00|--a------|93091] - I:\http___web.euro-web.fr_facturation1.PDF
[28/02/2008 21:50|--a------|18673] - I:\http___www.imbretex.fr_partenaires_catalogue_default1.PDF
[26/09/2008 19:57|--a------|21571] - I:\http___www.simpleomobile.fr_contrat_html_contrat1.PDF
[11/12/2006 11:57|--a------|360] - I:\IDENTIFIANTS.rtf
[17/08/2006 22:38|--a------|2550272] - I:\IMBRETEX TARIF revendeurs 2006.xls
[02/02/2007 16:41|--a------|84] - I:\INTERNET.txt
[03/10/2007 20:42|--a------|158859] - I:\IR-Avis-1-2007-7060282839919.pdf
[29/10/2007 11:37|--a------|49514] - I:\judo2
[15/03/2005 20:42|--a------|13724080] - I:\KasperskyPersonal_50227_fr.exe
[15/03/2005 20:42|--a------|1447] - I:\KAV_0008E264.key
[10/12/2006 19:57|--a------|15525] - I:\kr_eight_santas.zip
[28/01/2008 17:28|--a------|686514] - I:\LIASSE FISCALE LOU FICANAS 061.PDF
[24/08/2007 09:57|--a------|11553] - I:\Liasse2033A.pdf
[06/10/2006 16:05|--a------|924407] - I:\LIG2.cpt
[22/07/2008 18:49|--a------|14217] - I:\livraison gilet fluo.PDF
[29/10/2008 19:40|--a------|114564] - I:\LOCIMMOsvg0810291839.ZIP
[07/08/2007 15:52|--a------|925398] - I:\logo asso.bmp
[11/10/2006 17:13|--a------|9679] - I:\logogym.jpg
[18/11/2006 01:03|--a------|186947] - I:\logoyam.jpg
[20/11/2007 12:01|--a------|375678] - I:\logoZB[1].bmp
[24/05/2007 12:24|--a------|12602] - I:\MAMOUNEY.cdr
[25/07/2007 18:41|--a------|7344850] - I:\Manuel UtilisateurSCI.pdf
[10/08/2004 14:00|--ah-----|24124] - I:\marlett.ttf
[10/03/2008 18:37|--a------|13174] - I:\maroc.cdr
[10/08/2004 14:00|--a------|8823308] - I:\mingliu.ttc
[17/03/2007 20:04|--a------|114176] - I:\modele facture logo etoile1.xls
[13/03/2007 19:00|--a------|1237] - I:\motdepasse logmein.txt
[10/08/2004 14:00|--a------|8272028] - I:\msgothic.ttc
[10/08/2004 14:00|--a------|9135960] - I:\msmincho.ttc
[31/10/2008 00:25|--a------|104710539] - I:\MyPhotoCalendars.exe
[16/10/2006 18:49|--a------|37313] - I:\naema.pdf
[30/09/2008 11:03|--a------|233146] - I:\neu.eps
[12/06/2008 18:20|--a------|1020] - I:\NICO2.edr
[12/06/2008 18:20|--a------|5142] - I:\NICO2.exp
[01/09/2008 21:39|--a------|833] - I:\nouilles.htm
[01/09/2008 21:42|--a------|972] - I:\nouilles2.htm
[06/02/2007 22:51|--a------|11618] - I:\NUMEROTATION COMPTES.ods
[30/10/2008 19:00|--a------|16383] - I:\OM40.ECD
[17/01/2008 13:06|--a------|3031300] - I:\papa2T.cdr
[17/01/2008 13:03|--a------|3140448] - I:\papa2TSTD.cdr
[07/11/2008 00:12|--a------|199] - I:\password.klc
[25/07/2008 16:16|--a------|32582] - I:\PATRICIA.exp
[25/07/2008 16:16|--a------|45] - I:\PATRICIA.inf
[05/11/2008 01:46|--a------|17104] - I:\PM TD.cdr
[26/07/2007 15:31|--a------|635392] - I:\PrintableAlphabet1.doc
[02/10/2008 11:53|--a------|4960] - I:\quittance10.PDF
[14/02/2007 11:36|--a------|14521596] - I:\quoram_l.exe
[30/10/2008 11:49|--a------|146610] - I:\reglages_distiller.zip
[24/09/2007 10:14|--a------|18274] - I:\REL SG CV 09.PDF
[03/07/2008 11:29|--a------|89096] - I:\reservation pekin.pdf
[05/11/2007 11:18|--a------|10546] - I:\rib cv palatine.pdf
[10/12/2006 19:43|--a------|21063] - I:\saloon.zip
[15/02/2008 17:58|--a------|112592] - I:\SAORGE BRACELET.pdf
[27/03/2008 12:40|--a------|26577] - I:\saorge1.PDF
[12/06/2007 18:17|--a------|6546940] - I:\Sauvegarde_de_dane.cdr
[03/03/2008 12:48|--a------|17402] - I:\Sauvegarde_de_gilles.cdr
[14/06/2007 17:23|--a------|18686] - I:\Sauvegarde_de_logym.cdr
[10/03/2008 18:27|--a------|13006] - I:\Sauvegarde_de_maroc.cdr
[05/11/2008 00:55|--a------|103626] - I:\Sauvegarde_de_PM TD.cdr
[21/06/2006 16:39|--a------|24272] - I:\Sauvegarde_de_SCORPION.cdr
[30/03/2006 16:35|--a------|731983] - I:\SB ROND.cpt
[30/03/2006 11:13|--a------|288239] - I:\SB ROND.gif
[21/06/2006 20:22|--a------|241872] - I:\SCORPION.cdr
[10/08/2004 14:00|--ah-----|59024] - I:\sere1257.fon
[10/08/2004 14:00|--ah-----|84080] - I:\serf1257.fon
[10/08/2004 14:00|--ah-----|59952] - I:\serifee.fon
[10/08/2004 14:00|--ah-----|60752] - I:\serifeg.fon
[10/08/2004 14:00|--ah-----|63296] - I:\serifer.fon
[10/08/2004 14:00|--ah-----|61024] - I:\serifet.fon
[10/08/2004 14:00|--ah-----|85360] - I:\seriffe.fon
[10/08/2004 14:00|--ah-----|86256] - I:\seriffg.fon
[10/08/2004 14:00|--ah-----|90736] - I:\seriffr.fon
[10/08/2004 14:00|--ah-----|84848] - I:\serifft.fon
[16/09/2008 17:55|--a------|99622] - I:\SF840 CHU.pdf
[16/02/2007 19:32|--a------|1511576] - I:\SG21A25.pdf
[03/03/2008 22:28|--a------|3090454] - I:\sign cv.bmp
[03/03/2008 22:24|--a------|293993] - I:\sign cv.jpg
[01/01/2007 21:07|--a------|10512288] - I:\simsun.ttc
[10/08/2004 14:00|--ah-----|24672] - I:\smae1257.fon
[10/08/2004 14:00|--ah-----|19904] - I:\smaf1257.fon
[10/08/2004 14:00|--ah-----|24784] - I:\smallee.fon
[10/08/2004 14:00|--ah-----|28912] - I:\smalleg.fon
[10/08/2004 14:00|--ah-----|24832] - I:\smaller.fon
[10/08/2004 14:00|--ah-----|29200] - I:\smallet.fon
[10/08/2004 14:00|--ah-----|19600] - I:\smallfe.fon
[10/08/2004 14:00|--ah-----|23120] - I:\smallfg.fon
[10/08/2004 14:00|--ah-----|19760] - I:\smallfr.fon
[10/08/2004 14:00|--ah-----|23008] - I:\smallft.fon
[11/06/2007 19:16|--a------|24719] - I:\Sommaire012007.htm
[07/10/2006 11:40|--a------|95313] - I:\spiders_club.zip
[10/08/2004 14:00|--ah-----|65456] - I:\ssee1257.fon
[10/08/2004 14:00|--ah-----|90336] - I:\ssef1257.fon
[10/08/2004 14:00|--ah-----|66464] - I:\sserifee.fon
[10/08/2004 14:00|--ah-----|65328] - I:\sserifeg.fon
[10/08/2004 14:00|--ah-----|68848] - I:\sserifer.fon
[10/08/2004 14:00|--ah-----|64400] - I:\sserifet.fon
[10/08/2004 14:00|--ah-----|92032] - I:\sseriffe.fon
[10/08/2004 14:00|--ah-----|90288] - I:\sseriffg.fon
[10/08/2004 14:00|--ah-----|98256] - I:\sseriffr.fon
[10/08/2004 14:00|--ah-----|89456] - I:\sserifft.fon
[16/09/2008 17:47|--a------|99328] - I:\STOCKFICHES839.pdf
[10/08/2004 14:00|--ah-----|56336] - I:\symbole.fon
[22/03/2007 19:38|--a------|27058] - I:\syndic demongeot.PDF
[09/03/2007 22:35|--a------|13090] - I:\TARIFS PROS.ods
[03/03/2006 18:46|--a------|1962922] - I:\TETE COMPLETE PUBLICITE.cdr
[29/11/2007 15:12|--a------|928295] - I:\thalie
[13/11/2008 19:45|--ahs----|63488] - I:\Thumbs.db
[16/02/2008 12:55|--a------|451332] - I:\torpedo06.imb
[30/09/2008 11:03|--a------|55926] - I:\UNTITLED.BIN
[30/08/2007 20:42|--a------|5031687] - I:\VALERIE.jpg
[10/08/2004 14:00|--ah-----|5168] - I:\vga737.fon
[10/08/2004 14:00|--ah-----|5168] - I:\vga775.fon
[10/08/2004 14:00|--ah-----|6160] - I:\vga852.fon
[10/08/2004 14:00|--ah-----|5120] - I:\vga855.fon
[10/08/2004 14:00|--ah-----|5552] - I:\vga857.fon
[10/08/2004 14:00|--ah-----|5184] - I:\vga860.fon
[10/08/2004 14:00|--ah-----|5200] - I:\vga863.fon
[10/08/2004 14:00|--ah-----|5184] - I:\vga865.fon
[10/08/2004 14:00|--ah-----|6128] - I:\vga866.fon
[10/08/2004 14:00|--ah-----|5184] - I:\vga869.fon
[10/08/2004 14:00|--ah-----|5376] - I:\vgaf1257.fon
[10/08/2004 14:00|--ah-----|5376] - I:\vgafixe.fon
[10/08/2004 14:00|--ah-----|6112] - I:\vgafixg.fon
[10/08/2004 14:00|--ah-----|5600] - I:\vgafixr.fon
[10/08/2004 14:00|--ah-----|6112] - I:\vgafixt.fon
[10/08/2004 14:00|--ah-----|5168] - I:\vgaoem.fon
[10/08/2004 14:00|--ah-----|6656] - I:\vgas1257.fon
[10/08/2004 14:00|--ah-----|6608] - I:\vgasyse.fon
[10/08/2004 14:00|--ah-----|7008] - I:\vgasysg.fon
[10/08/2004 14:00|--ah-----|6912] - I:\vgasysr.fon
[10/08/2004 14:00|--ah-----|6912] - I:\vgasyst.fon
[26/05/2008 19:48|--a------|294929] - I:\visa chine‚.pdf
[18/05/2007 21:43|--a------|1526259] - I:\VITRINE.pdf
[23/10/2008 11:11|--a------|2841] - I:\YAHOO1.PDF
[18/11/2006 18:17|--a------|796518] - I:\ZEITOUN2.jpg
################## [ Vaccination ]
# C:\autorun.inf ( # Not infected ) -> Folder created by UsbFix.
# I:\autorun.inf ( # Not infected ) -> Folder created by UsbFix.
################## [ ! Fin du rapport # UsbFix V3.029 ! ]
Merci beucoup de votre aide !
############################## [ UsbFix V3.029 | Cleaning ]
# User : Propriétaire (Administrateurs) # SF06
# Update on 05/06/09 by Chiquitine29, C_XX & Chimay8
# WebSite : http://pagesperso-orange.fr/NosTools/usbfix.html
# Start at: 21:22:47 | 08/06/2009
# Intel(R) Core(TM)2 CPU T5200 @ 1.60GHz
# Microsoft Windows XP Édition familiale (5.1.2600 32-bit) # Service Pack 3
# Internet Explorer 7.0.5730.13
# Windows Firewall Status : Enabled
# AV : avast! antivirus 4.8.1335 [VPS 090607-0] 4.8.1335 [ Enabled | Updated ]
# A:\ # Lecteur de disquettes 3 ½ pouces
# C:\ # Disque fixe local # 92,91 Go (65,71 Go free) # NTFS
# H:\ # Disque CD-ROM
# I:\ # Disque fixe local # 74,5 Go (37,79 Go free) [CLIENT] # NTFS
############################## [ Processus actifs ]
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\brsvc01a.exe
C:\WINDOWS\system32\brss01a.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Alwil Software\Avast4\setup\avast.setup
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\DVDRAMSV.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\LogMeIn\x86\RaMaint.exe
C:\Program Files\LogMeIn\x86\LogMeIn.exe
C:\Program Files\LogMeIn\x86\LMIGuardian.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\PVSW\Bin\WGE_SRV.EXE
C:\PVSW\BIN\W3dbsmgr.EXE
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\TOSHIBA\TOSHIBA Applet\TAPPSRV.exe
C:\WINDOWS\system32\SearchIndexer.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
################## [ Fichiers # Dossiers infectieux ]
################## [ Registre # Clés Run infectieuses ]
################## [ Registre # Mountpoints2 ]
################## [ Listing des fichiers présent ]
[03/12/2008 20:43|--a------|1024] - C:\.rnd
[06/11/2008 20:42|--a------|0] - C:\AUTOEXEC.BAT
[08/06/2009 09:27|--a------|52] - C:\autorun.MSNFix
[22/11/2008 16:06|---hs----|216] - C:\boot.ini
[05/08/2004 14:00|-rahs----|4952] - C:\Bootfont.bin
[07/12/2008 18:33|--a------|74] - C:\CMLoader.log
[06/11/2008 20:42|--a------|0] - C:\CONFIG.SYS
[06/11/2008 20:42|-rahs----|0] - C:\IO.SYS
[06/11/2008 20:42|-rahs----|0] - C:\MSDOS.SYS
[05/08/2004 14:00|-rahs----|47564] - C:\NTDETECT.COM
[07/11/2008 12:56|-rahs----|252240] - C:\ntldr
[14/04/2009 10:50|--a------|1588] - C:\oile.exp
[?|?|?] - C:\pagefile.sys
[19/05/2009 19:28|--a------|199] - C:\password.klc
[02/06/2009 15:06|--ah-----|268] - C:\sqmdata00.sqm
[03/06/2009 22:08|--ah-----|268] - C:\sqmdata01.sqm
[07/06/2009 18:07|--ah-----|268] - C:\sqmdata02.sqm
[08/06/2009 16:36|--ah-----|268] - C:\sqmdata03.sqm
[08/06/2009 17:17|--ah-----|268] - C:\sqmdata04.sqm
[08/06/2009 17:42|--ah-----|268] - C:\sqmdata05.sqm
[08/06/2009 20:50|--ah-----|268] - C:\sqmdata06.sqm
[05/05/2009 00:13|--ah-----|268] - C:\sqmdata07.sqm
[06/05/2009 23:42|--ah-----|268] - C:\sqmdata08.sqm
[11/05/2009 20:51|--ah-----|268] - C:\sqmdata09.sqm
[17/05/2009 18:01|--ah-----|268] - C:\sqmdata10.sqm
[17/05/2009 22:13|--ah-----|268] - C:\sqmdata11.sqm
[18/05/2009 16:18|--ah-----|268] - C:\sqmdata12.sqm
[20/05/2009 21:39|--ah-----|268] - C:\sqmdata13.sqm
[21/05/2009 19:03|--ah-----|268] - C:\sqmdata14.sqm
[25/05/2009 16:05|--ah-----|268] - C:\sqmdata15.sqm
[26/05/2009 20:23|--ah-----|268] - C:\sqmdata16.sqm
[26/05/2009 21:11|--ah-----|268] - C:\sqmdata17.sqm
[27/05/2009 22:04|--ah-----|268] - C:\sqmdata18.sqm
[28/05/2009 19:39|--ah-----|268] - C:\sqmdata19.sqm
[02/06/2009 15:06|--ah-----|244] - C:\sqmnoopt00.sqm
[03/06/2009 22:08|--ah-----|244] - C:\sqmnoopt01.sqm
[07/06/2009 18:07|--ah-----|244] - C:\sqmnoopt02.sqm
[08/06/2009 16:36|--ah-----|244] - C:\sqmnoopt03.sqm
[08/06/2009 17:17|--ah-----|244] - C:\sqmnoopt04.sqm
[08/06/2009 17:42|--ah-----|244] - C:\sqmnoopt05.sqm
[08/06/2009 20:50|--ah-----|244] - C:\sqmnoopt06.sqm
[05/05/2009 00:13|--ah-----|244] - C:\sqmnoopt07.sqm
[06/05/2009 23:42|--ah-----|244] - C:\sqmnoopt08.sqm
[11/05/2009 20:51|--ah-----|244] - C:\sqmnoopt09.sqm
[17/05/2009 18:01|--ah-----|244] - C:\sqmnoopt10.sqm
[17/05/2009 22:13|--ah-----|244] - C:\sqmnoopt11.sqm
[18/05/2009 16:18|--ah-----|244] - C:\sqmnoopt12.sqm
[20/05/2009 21:39|--ah-----|244] - C:\sqmnoopt13.sqm
[21/05/2009 19:03|--ah-----|244] - C:\sqmnoopt14.sqm
[25/05/2009 16:05|--ah-----|244] - C:\sqmnoopt15.sqm
[26/05/2009 20:23|--ah-----|244] - C:\sqmnoopt16.sqm
[26/05/2009 21:11|--ah-----|244] - C:\sqmnoopt17.sqm
[27/05/2009 22:04|--ah-----|244] - C:\sqmnoopt18.sqm
[28/05/2009 19:39|--ah-----|244] - C:\sqmnoopt19.sqm
[07/11/2008 15:38|--a------|3406] - C:\temptxt.log
[08/06/2009 21:23|--a------|5343] - C:\UsbFix.txt
[31/08/2005 11:54|--a------|186138432] - I:\- Sonneries -.zip
[19/07/2007 19:41|--a------|2534] - I:\190707-0149000027000268.csv
[10/08/2004 14:00|--ah-----|10976] - I:\8514fixe.fon
[10/08/2004 14:00|--ah-----|11520] - I:\8514fixg.fon
[10/08/2004 14:00|--ah-----|10976] - I:\8514fixr.fon
[10/08/2004 14:00|--ah-----|11488] - I:\8514fixt.fon
[10/08/2004 14:00|--ah-----|13248] - I:\8514oeme.fon
[10/08/2004 14:00|--ah-----|12800] - I:\8514oemg.fon
[10/08/2004 14:00|--ah-----|13200] - I:\8514oemr.fon
[10/08/2004 14:00|--ah-----|12720] - I:\8514oemt.fon
[10/08/2004 14:00|--ah-----|9504] - I:\8514syse.fon
[10/08/2004 14:00|--ah-----|9856] - I:\8514sysg.fon
[10/08/2004 14:00|--ah-----|10064] - I:\8514sysr.fon
[10/08/2004 14:00|--ah-----|9792] - I:\8514syst.fon
[10/08/2004 14:00|--ah-----|12304] - I:\85775.fon
[10/08/2004 14:00|--ah-----|12256] - I:\85855.fon
[10/08/2004 14:00|--ah-----|10976] - I:\85f1257.fon
[10/08/2004 14:00|--ah-----|9472] - I:\85s1257.fon
[02/09/2008 11:16|--a------|109121] - I:\aidologement cv.pdf
[30/08/2007 20:42|--a------|1094558] - I:\alinea.bmp
[10/08/2004 14:00|--ah-----|35808] - I:\app775.fon
[10/08/2004 14:00|--ah-----|36656] - I:\app852.fon
[10/08/2004 14:00|--ah-----|37296] - I:\app855.fon
[10/08/2004 14:00|--ah-----|36672] - I:\app857.fon
[10/08/2004 14:00|--ah-----|37472] - I:\app866.fon
[31/01/2007 18:32|--a------|39554] - I:\arialtimbre.EUF
[31/01/2007 18:32|--a------|101784] - I:\arialtimbre.tte
[14/02/2007 11:14|--a------|11058357] - I:\Assigest.EXE
[24/04/2007 17:45|--a------|57875] - I:\AVANTMAJ.ZIP
[01/09/2008 20:39|--a------|5742] - I:\avril08.PDF
[29/02/2008 20:35|--a------|84241] - I:\awstats.gc8692.html
[29/02/2008 20:36|--a------|8814] - I:\awstats.gc8692.urlexit.html
[19/03/2008 18:54|--a------|112566] - I:\badetsnetavous.pdf
[01/06/2007 13:11|--a------|5914833] - I:\Badges IA.pdf
[05/11/2008 12:41|--a------|13816] - I:\BANER.cdr
[10/08/2004 14:00|--a------|16258580] - I:\batang.ttc
[19/12/2005 22:42|--a------|526398] - I:\bbyo.bmp
[11/06/2007 19:16|--a------|24390] - I:\BONdeCde.htm
[04/01/2008 11:24|--a------|1276790] - I:\bonne annee chinois.bmp
[04/01/2008 11:25|--a------|21897] - I:\bonne annee chinois.png
[30/10/2008 12:01|--a------|33122] - I:\bookmark.htm
[30/05/2007 11:39|--a------|66048] - I:\BOWLING3.xls
[15/02/2008 17:58|--a------|112592] - I:\BRACEL.pdf
[19/07/2007 17:39|--a------|226619] - I:\CA12.pdf
[25/07/2007 17:00|--a------|8482382] - I:\caisse bar.exe
[25/07/2007 17:08|--a------|8920142] - I:\CAISSE BOULANGERIE.exe
[30/10/2008 11:39|--a------|1775945] - I:\calend.zip
[30/10/2008 11:36|--a------|717040] - I:\CALENDRIER 09.pdf
[30/10/2008 11:37|--a------|673385] - I:\CALENDRIER 09S.pdf
[30/10/2008 11:40|--a------|1539942] - I:\CALENDRIER Banque_semestriel.zip
[30/10/2008 11:39|--a------|1184404] - I:\CALENDRIER Modele_horizontal.zip
[30/10/2008 11:39|--a------|1356076] - I:\CALENDRIER Modele_vertical_2009.zip
[30/10/2008 11:52|--a------|16000012] - I:\calendriers2009.zip
[30/10/2008 11:39|--a------|1219634] - I:\Calendriers_de_poche_2009.zip
[30/10/2008 11:43|--a------|18944] - I:\calendrier_perpetuel.xls
[24/04/2008 11:58|--a------|62587] - I:\Cartel.pdf
[11/06/2007 21:29|--a------|1704486] - I:\CATALOGUE ESSAI.htm
[11/06/2007 21:40|--a------|809733] - I:\CATALOGUE ESSAI2.htm
[11/06/2007 19:16|--a------|2220740] - I:\CATALOGUE0107.htm
[11/06/2007 22:14|--a------|889157] - I:\CATALOGUE0107ESSAI3.htm
[11/06/2007 22:14|--a------|1588927] - I:\CATALOGUE0107SP.htm
[11/06/2007 21:18|--a------|204193] - I:\CATALOGUE0107SP.pdf
[30/10/2008 11:52|--a------|20677573] - I:\catalogue_exaprint08.pdf
[10/08/2004 14:00|--ah-----|7216] - I:\cga40737.fon
[10/08/2004 14:00|--ah-----|6672] - I:\cga40852.fon
[10/08/2004 14:00|--ah-----|6672] - I:\cga40857.fon
[10/08/2004 14:00|--ah-----|7232] - I:\cga40866.fon
[10/08/2004 14:00|--ah-----|7216] - I:\cga40869.fon
[10/08/2004 14:00|--ah-----|5168] - I:\cga80737.fon
[10/08/2004 14:00|--ah-----|5200] - I:\cga80852.fon
[10/08/2004 14:00|--ah-----|4640] - I:\cga80857.fon
[10/08/2004 14:00|--ah-----|5168] - I:\cga80866.fon
[10/08/2004 14:00|--ah-----|5168] - I:\cga80869.fon
[10/12/2006 20:07|--a------|51476] - I:\christmas_lights.zip
[09/12/2006 23:36|--a------|716] - I:\CLE RESEAU.txt
[11/04/2006 11:37|--a------|13470] - I:\cmjn.cdr
[29/10/2008 19:43|--a------|2519565] - I:\Compta-STOCKFICHES-20081029.zip
[29/10/2008 19:44|--a------|3703588] - I:\Compta-STOCKIMMO-20081029.zip
[22/04/2008 18:09|--a------|24099] - I:\COMPTE220408.pdf
[24/10/2008 12:07|--a------|36737] - I:\CONTACT.csv
[25/02/2008 12:24|--a------|11278] - I:\CONTOUR8030.cmx
[10/08/2004 14:00|--ah-----|23440] - I:\coue1257.fon
[10/08/2004 14:00|--ah-----|31760] - I:\couf1257.fon
[10/08/2004 14:00|--ah-----|23440] - I:\couree.fon
[10/08/2004 14:00|--ah-----|25024] - I:\coureg.fon
[10/08/2004 14:00|--ah-----|23440] - I:\courer.fon
[10/08/2004 14:00|--ah-----|25024] - I:\couret.fon
[10/08/2004 14:00|--ah-----|31776] - I:\courfe.fon
[10/08/2004 14:00|--ah-----|33344] - I:\courfg.fon
[10/08/2004 14:00|--ah-----|31808] - I:\courfr.fon
[10/08/2004 14:00|--ah-----|33360] - I:\courft.fon
[30/09/2008 10:58|--a------|347669] - I:\CREDIT IMPOT.pdf
[25/09/2008 19:47|--a------|30410] - I:\DECOUPE CORSE.cdr
[09/05/2008 20:40|--ahs----|67] - I:\desktop.ini
[09/05/2007 15:44|--a------|506880] - I:\DEVIS 090507.xls
[12/11/2007 21:10|--a------|782524] - I:\Devis ELECT GEN.pdf
[10/04/2006 20:17|--a------|3891712] - I:\Devis HT PUB.ewg
[12/11/2007 20:37|--a------|786094] - I:\Devis judo.pdf
[09/11/2007 11:21|--a------|786893] - I:\deviswehbe.pdf
[10/08/2004 14:00|--ah-----|36336] - I:\dos737.fon
[25/05/2007 12:37|--a------|63296] - I:\DPE.cdr
[25/05/2007 12:09|--a------|458662] - I:\dpe.jpg
[25/05/2007 12:36|--a------|171120] - I:\dpe150.jpg
[16/03/2007 11:00|--a------|24246] - I:\DRP27739809.pdf
[12/03/2007 16:59|--a------|2858223] - I:\EASYJET.pdf
[11/12/2007 19:06|--a------|0] - I:\EBP
[29/10/2008 19:42|--a------|5639589] - I:\EBP-STOCKFICHES-20081029.zip
[29/10/2007 11:37|--a------|213738] - I:\ECUSSON JUDO.jpg
[10/08/2004 14:00|--ah-----|9248] - I:\ega40737.fon
[10/08/2004 14:00|--ah-----|8368] - I:\ega40852.fon
[10/08/2004 14:00|--ah-----|8704] - I:\ega40857.fon
[10/08/2004 14:00|--ah-----|9232] - I:\ega40866.fon
[10/08/2004 14:00|--ah-----|9248] - I:\ega40869.fon
[10/08/2004 14:00|--ah-----|6192] - I:\ega80737.fon
[10/08/2004 14:00|--ah-----|5344] - I:\ega80852.fon
[10/08/2004 14:00|--ah-----|5648] - I:\ega80857.fon
[10/08/2004 14:00|--ah-----|5280] - I:\ega80866.fon
[10/08/2004 14:00|--ah-----|6192] - I:\ega80869.fon
[15/01/2008 17:09|--a------|17207] - I:\ESSAI.ods
[02/11/2007 18:57|--a------|14936] - I:\ETAT BPCA 1107.ods
[22/02/2007 22:24|--a------|15007] - I:\ETAT BPCA.ods
[04/06/2007 18:48|--a------|13590] - I:\ETAT SG.ods
[31/01/2007 18:37|--a------|39554] - I:\EUDC.EUF
[31/01/2007 18:37|--a------|101784] - I:\EUDC.TTE
[25/10/2007 11:33|--a------|784026] - I:\FAC JANCARTIER.pdf
[23/10/2007 16:56|--a------|783853] - I:\Fac Padel.pdf
[03/03/2008 21:50|--a------|599361] - I:\FAC SIGN02BIS1.PDF
[10/04/2006 18:57|--a------|5950324] - I:\Facture 0686 STOCKFICHES PUB.ewg
[19/05/2008 21:55|--a------|175259] - I:\facture alice0408.pdf
[29/11/2007 19:26|--a------|784109] - I:\FACTURE AM.pdf
[08/10/2007 16:55|--a------|26159] - I:\Felixti.zip
[09/11/2006 16:46|--a------|257538] - I:\FERRARINI SAC.pdf
[23/04/2008 20:01|--a------|15198] - I:\FIBAT.cdr
[29/07/2007 16:39|--a------|17236] - I:\FLEURDEAUbmp.cdr
[26/05/2008 19:50|--a------|1295011] - I:\formulaire chine.pdf
[06/08/2008 21:43|--a------|13983] - I:\FRAIS BANCAIRES BPCA.ods
[06/08/2008 21:25|--a------|50811] - I:\FRAIS BANCAIRES BPCA.pdf
[04/05/2007 15:13|--a------|1650816] - I:\France-Inter.mp3
[04/11/2008 20:44|--a------|20488] - I:\GECKO.cdr
[29/10/2008 19:45|--a------|18724824] - I:\Gescom-Config-20081029.zip
[29/10/2008 19:42|--a------|2902882] - I:\Gescom-STOCKFICHES-20081029.zip
[18/05/2007 19:21|--a------|86016] - I:\GEST41 - 005 - GESTION DES APPORTS EN CAPITAL ET EN COMPTE COURANT.doc
[13/02/2007 18:59|--a------|5537280] - I:\Gestion-SCI.zip
[03/03/2008 17:03|--a------|17766] - I:\gilles.cdr
[19/04/2006 21:21|--a------|26040] - I:\GlobalMonospace.CompositeFont
[02/07/2006 23:37|--a------|26489] - I:\GlobalSansSerif.CompositeFont
[19/04/2006 21:21|--a------|29779] - I:\GlobalSerif.CompositeFont
[02/07/2006 23:37|--a------|30808] - I:\GlobalUserInterface.CompositeFont
[18/11/2006 18:15|--a------|796518] - I:\Graphique 1.jpg
[20/12/2005 17:56|--a------|44730] - I:\Graphique 2.bmp
[30/10/2008 11:48|--a------|4867169] - I:\GUIDE_PAO.pdf
[30/10/2008 11:49|--a------|1922385] - I:\guide_PDF.pdf
[10/08/2004 14:00|--a------|13518660] - I:\gulim.ttc
[07/10/2006 11:47|--a------|1167853] - I:\halloween.pdf
[22/05/2007 21:01|--ah-----|3535] - I:\hpothb07.dat
[22/05/2007 21:01|--ah-----|105872] - I:\hpothb07.tif
[19/10/2007 21:29|--a------|22824] - I:\https___www.telepaiement.cp.finances.gouv.fr_satelit_web1.PDF
[07/08/2008 21:56|--a------|119949] - I:\http___cgi.ebay.com_ws_eBayISAPI1.PDF
[31/05/2007 18:00|--a------|93091] - I:\http___web.euro-web.fr_facturation1.PDF
[28/02/2008 21:50|--a------|18673] - I:\http___www.imbretex.fr_partenaires_catalogue_default1.PDF
[26/09/2008 19:57|--a------|21571] - I:\http___www.simpleomobile.fr_contrat_html_contrat1.PDF
[11/12/2006 11:57|--a------|360] - I:\IDENTIFIANTS.rtf
[17/08/2006 22:38|--a------|2550272] - I:\IMBRETEX TARIF revendeurs 2006.xls
[02/02/2007 16:41|--a------|84] - I:\INTERNET.txt
[03/10/2007 20:42|--a------|158859] - I:\IR-Avis-1-2007-7060282839919.pdf
[29/10/2007 11:37|--a------|49514] - I:\judo2
[15/03/2005 20:42|--a------|13724080] - I:\KasperskyPersonal_50227_fr.exe
[15/03/2005 20:42|--a------|1447] - I:\KAV_0008E264.key
[10/12/2006 19:57|--a------|15525] - I:\kr_eight_santas.zip
[28/01/2008 17:28|--a------|686514] - I:\LIASSE FISCALE LOU FICANAS 061.PDF
[24/08/2007 09:57|--a------|11553] - I:\Liasse2033A.pdf
[06/10/2006 16:05|--a------|924407] - I:\LIG2.cpt
[22/07/2008 18:49|--a------|14217] - I:\livraison gilet fluo.PDF
[29/10/2008 19:40|--a------|114564] - I:\LOCIMMOsvg0810291839.ZIP
[07/08/2007 15:52|--a------|925398] - I:\logo asso.bmp
[11/10/2006 17:13|--a------|9679] - I:\logogym.jpg
[18/11/2006 01:03|--a------|186947] - I:\logoyam.jpg
[20/11/2007 12:01|--a------|375678] - I:\logoZB[1].bmp
[24/05/2007 12:24|--a------|12602] - I:\MAMOUNEY.cdr
[25/07/2007 18:41|--a------|7344850] - I:\Manuel UtilisateurSCI.pdf
[10/08/2004 14:00|--ah-----|24124] - I:\marlett.ttf
[10/03/2008 18:37|--a------|13174] - I:\maroc.cdr
[10/08/2004 14:00|--a------|8823308] - I:\mingliu.ttc
[17/03/2007 20:04|--a------|114176] - I:\modele facture logo etoile1.xls
[13/03/2007 19:00|--a------|1237] - I:\motdepasse logmein.txt
[10/08/2004 14:00|--a------|8272028] - I:\msgothic.ttc
[10/08/2004 14:00|--a------|9135960] - I:\msmincho.ttc
[31/10/2008 00:25|--a------|104710539] - I:\MyPhotoCalendars.exe
[16/10/2006 18:49|--a------|37313] - I:\naema.pdf
[30/09/2008 11:03|--a------|233146] - I:\neu.eps
[12/06/2008 18:20|--a------|1020] - I:\NICO2.edr
[12/06/2008 18:20|--a------|5142] - I:\NICO2.exp
[01/09/2008 21:39|--a------|833] - I:\nouilles.htm
[01/09/2008 21:42|--a------|972] - I:\nouilles2.htm
[06/02/2007 22:51|--a------|11618] - I:\NUMEROTATION COMPTES.ods
[30/10/2008 19:00|--a------|16383] - I:\OM40.ECD
[17/01/2008 13:06|--a------|3031300] - I:\papa2T.cdr
[17/01/2008 13:03|--a------|3140448] - I:\papa2TSTD.cdr
[07/11/2008 00:12|--a------|199] - I:\password.klc
[25/07/2008 16:16|--a------|32582] - I:\PATRICIA.exp
[25/07/2008 16:16|--a------|45] - I:\PATRICIA.inf
[05/11/2008 01:46|--a------|17104] - I:\PM TD.cdr
[26/07/2007 15:31|--a------|635392] - I:\PrintableAlphabet1.doc
[02/10/2008 11:53|--a------|4960] - I:\quittance10.PDF
[14/02/2007 11:36|--a------|14521596] - I:\quoram_l.exe
[30/10/2008 11:49|--a------|146610] - I:\reglages_distiller.zip
[24/09/2007 10:14|--a------|18274] - I:\REL SG CV 09.PDF
[03/07/2008 11:29|--a------|89096] - I:\reservation pekin.pdf
[05/11/2007 11:18|--a------|10546] - I:\rib cv palatine.pdf
[10/12/2006 19:43|--a------|21063] - I:\saloon.zip
[15/02/2008 17:58|--a------|112592] - I:\SAORGE BRACELET.pdf
[27/03/2008 12:40|--a------|26577] - I:\saorge1.PDF
[12/06/2007 18:17|--a------|6546940] - I:\Sauvegarde_de_dane.cdr
[03/03/2008 12:48|--a------|17402] - I:\Sauvegarde_de_gilles.cdr
[14/06/2007 17:23|--a------|18686] - I:\Sauvegarde_de_logym.cdr
[10/03/2008 18:27|--a------|13006] - I:\Sauvegarde_de_maroc.cdr
[05/11/2008 00:55|--a------|103626] - I:\Sauvegarde_de_PM TD.cdr
[21/06/2006 16:39|--a------|24272] - I:\Sauvegarde_de_SCORPION.cdr
[30/03/2006 16:35|--a------|731983] - I:\SB ROND.cpt
[30/03/2006 11:13|--a------|288239] - I:\SB ROND.gif
[21/06/2006 20:22|--a------|241872] - I:\SCORPION.cdr
[10/08/2004 14:00|--ah-----|59024] - I:\sere1257.fon
[10/08/2004 14:00|--ah-----|84080] - I:\serf1257.fon
[10/08/2004 14:00|--ah-----|59952] - I:\serifee.fon
[10/08/2004 14:00|--ah-----|60752] - I:\serifeg.fon
[10/08/2004 14:00|--ah-----|63296] - I:\serifer.fon
[10/08/2004 14:00|--ah-----|61024] - I:\serifet.fon
[10/08/2004 14:00|--ah-----|85360] - I:\seriffe.fon
[10/08/2004 14:00|--ah-----|86256] - I:\seriffg.fon
[10/08/2004 14:00|--ah-----|90736] - I:\seriffr.fon
[10/08/2004 14:00|--ah-----|84848] - I:\serifft.fon
[16/09/2008 17:55|--a------|99622] - I:\SF840 CHU.pdf
[16/02/2007 19:32|--a------|1511576] - I:\SG21A25.pdf
[03/03/2008 22:28|--a------|3090454] - I:\sign cv.bmp
[03/03/2008 22:24|--a------|293993] - I:\sign cv.jpg
[01/01/2007 21:07|--a------|10512288] - I:\simsun.ttc
[10/08/2004 14:00|--ah-----|24672] - I:\smae1257.fon
[10/08/2004 14:00|--ah-----|19904] - I:\smaf1257.fon
[10/08/2004 14:00|--ah-----|24784] - I:\smallee.fon
[10/08/2004 14:00|--ah-----|28912] - I:\smalleg.fon
[10/08/2004 14:00|--ah-----|24832] - I:\smaller.fon
[10/08/2004 14:00|--ah-----|29200] - I:\smallet.fon
[10/08/2004 14:00|--ah-----|19600] - I:\smallfe.fon
[10/08/2004 14:00|--ah-----|23120] - I:\smallfg.fon
[10/08/2004 14:00|--ah-----|19760] - I:\smallfr.fon
[10/08/2004 14:00|--ah-----|23008] - I:\smallft.fon
[11/06/2007 19:16|--a------|24719] - I:\Sommaire012007.htm
[07/10/2006 11:40|--a------|95313] - I:\spiders_club.zip
[10/08/2004 14:00|--ah-----|65456] - I:\ssee1257.fon
[10/08/2004 14:00|--ah-----|90336] - I:\ssef1257.fon
[10/08/2004 14:00|--ah-----|66464] - I:\sserifee.fon
[10/08/2004 14:00|--ah-----|65328] - I:\sserifeg.fon
[10/08/2004 14:00|--ah-----|68848] - I:\sserifer.fon
[10/08/2004 14:00|--ah-----|64400] - I:\sserifet.fon
[10/08/2004 14:00|--ah-----|92032] - I:\sseriffe.fon
[10/08/2004 14:00|--ah-----|90288] - I:\sseriffg.fon
[10/08/2004 14:00|--ah-----|98256] - I:\sseriffr.fon
[10/08/2004 14:00|--ah-----|89456] - I:\sserifft.fon
[16/09/2008 17:47|--a------|99328] - I:\STOCKFICHES839.pdf
[10/08/2004 14:00|--ah-----|56336] - I:\symbole.fon
[22/03/2007 19:38|--a------|27058] - I:\syndic demongeot.PDF
[09/03/2007 22:35|--a------|13090] - I:\TARIFS PROS.ods
[03/03/2006 18:46|--a------|1962922] - I:\TETE COMPLETE PUBLICITE.cdr
[29/11/2007 15:12|--a------|928295] - I:\thalie
[13/11/2008 19:45|--ahs----|63488] - I:\Thumbs.db
[16/02/2008 12:55|--a------|451332] - I:\torpedo06.imb
[30/09/2008 11:03|--a------|55926] - I:\UNTITLED.BIN
[30/08/2007 20:42|--a------|5031687] - I:\VALERIE.jpg
[10/08/2004 14:00|--ah-----|5168] - I:\vga737.fon
[10/08/2004 14:00|--ah-----|5168] - I:\vga775.fon
[10/08/2004 14:00|--ah-----|6160] - I:\vga852.fon
[10/08/2004 14:00|--ah-----|5120] - I:\vga855.fon
[10/08/2004 14:00|--ah-----|5552] - I:\vga857.fon
[10/08/2004 14:00|--ah-----|5184] - I:\vga860.fon
[10/08/2004 14:00|--ah-----|5200] - I:\vga863.fon
[10/08/2004 14:00|--ah-----|5184] - I:\vga865.fon
[10/08/2004 14:00|--ah-----|6128] - I:\vga866.fon
[10/08/2004 14:00|--ah-----|5184] - I:\vga869.fon
[10/08/2004 14:00|--ah-----|5376] - I:\vgaf1257.fon
[10/08/2004 14:00|--ah-----|5376] - I:\vgafixe.fon
[10/08/2004 14:00|--ah-----|6112] - I:\vgafixg.fon
[10/08/2004 14:00|--ah-----|5600] - I:\vgafixr.fon
[10/08/2004 14:00|--ah-----|6112] - I:\vgafixt.fon
[10/08/2004 14:00|--ah-----|5168] - I:\vgaoem.fon
[10/08/2004 14:00|--ah-----|6656] - I:\vgas1257.fon
[10/08/2004 14:00|--ah-----|6608] - I:\vgasyse.fon
[10/08/2004 14:00|--ah-----|7008] - I:\vgasysg.fon
[10/08/2004 14:00|--ah-----|6912] - I:\vgasysr.fon
[10/08/2004 14:00|--ah-----|6912] - I:\vgasyst.fon
[26/05/2008 19:48|--a------|294929] - I:\visa chine‚.pdf
[18/05/2007 21:43|--a------|1526259] - I:\VITRINE.pdf
[23/10/2008 11:11|--a------|2841] - I:\YAHOO1.PDF
[18/11/2006 18:17|--a------|796518] - I:\ZEITOUN2.jpg
################## [ Vaccination ]
# C:\autorun.inf ( # Not infected ) -> Folder created by UsbFix.
# I:\autorun.inf ( # Not infected ) -> Folder created by UsbFix.
################## [ ! Fin du rapport # UsbFix V3.029 ! ]