Help Hupigon 13 et debugger fou
Fermé
maupas
Messages postés
20
Date d'inscription
jeudi 8 octobre 2009
Statut
Membre
Dernière intervention
19 octobre 2009
-
9 oct. 2009 à 20:25
Utilisateur anonyme - 21 oct. 2009 à 21:12
Utilisateur anonyme - 21 oct. 2009 à 21:12
Bonjour,
Recevant des écrans internet intempestifs, Spybot m'indique que je suis infecté par Hupigon 13 et autres cochonneries.
Mon antivirus G Secure m'envoye des alertes de ce type
Alerte G Data
pavrot.exe tente de modifier la configuration du système
Tentative d'installer un debugger pour l'application nommée au registre clé
-------Rapport SSD --------
--- Search result list ---
Microsoft.Windows.Security.InternetExplorer: [SBI $366713D4] Réglages (Modification du Registre, nothing done)
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN\iexplore.exe
Hupigon13: [SBI $D5A7DCB6] Réglages (Clé du Registre, nothing done)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\regedit.exe
Tradedoubler: Cookie traceur (Internet Explorer: Gilbert) (Cookie, nothing done)
Right Media: Cookie traceur (Internet Explorer: Gilbert) (Cookie, nothing done)
DoubleClick: Cookie traceur (Internet Explorer: Gilbert) (Cookie, nothing done)
--- Spybot - Search & Destroy version: 1.6.2 (build: 20090126) ---
2009-01-26 blindman.exe (1.0.0.8)
2009-01-26 SDFiles.exe (1.6.1.7)
2009-01-26 SDMain.exe (1.0.0.6)
2009-01-26 SDShred.exe (1.0.2.5)
2009-01-26 SDUpdate.exe (1.6.0.12)
2009-01-26 SpybotSD.exe (1.6.2.46)
2009-03-05 TeaTimer.exe (1.6.6.32)
2009-10-07 unins000.exe (51.49.0.0)
2009-01-26 Update.exe (1.6.0.7)
2009-09-07 advcheck.dll (1.6.4.18)
2007-04-02 aports.dll (2.1.0.0)
2008-06-14 DelZip179.dll (1.79.11.1)
2009-01-26 SDHelper.dll (1.6.2.14)
2008-06-19 sqlite3.dll
2009-01-26 Tools.dll (2.1.6.10)
2009-01-16 UninsSrv.dll (1.0.0.0)
2009-05-19 Includes\Adware.sbi (*)
2009-10-06 Includes\AdwareC.sbi (*)
2009-01-22 Includes\Cookies.sbi (*)
2009-08-10 Includes\Dialer.sbi (*)
2009-10-06 Includes\DialerC.sbi (*)
2009-01-22 Includes\HeavyDuty.sbi (*)
2009-05-26 Includes\Hijackers.sbi (*)
2009-10-06 Includes\HijackersC.sbi (*)
2009-09-29 Includes\Keyloggers.sbi (*)
2009-10-06 Includes\KeyloggersC.sbi (*)
2004-11-29 Includes\LSP.sbi (*)
2009-10-06 Includes\Malware.sbi (*)
2009-10-06 Includes\MalwareC.sbi (*)
2009-03-25 Includes\PUPS.sbi (*)
2009-10-06 Includes\PUPSC.sbi (*)
2009-01-22 Includes\Revision.sbi (*)
2009-01-13 Includes\Security.sbi (*)
2009-10-06 Includes\SecurityC.sbi (*)
2008-06-03 Includes\Spybots.sbi (*)
2008-06-03 Includes\SpybotsC.sbi (*)
2009-04-07 Includes\Spyware.sbi (*)
2009-10-06 Includes\SpywareC.sbi (*)
2009-06-08 Includes\Tracks.uti
2009-10-06 Includes\Trojans.sbi (*)
2009-10-06 Includes\TrojansC.sbi (*)
2008-03-04 Plugins\Chai.dll
2008-03-05 Plugins\Fennel.dll
2008-02-26 Plugins\Mate.dll
2007-12-24 Plugins\TCPIPAddress.dll
--- System information ---
Windows XP (Build: 2600) Service Pack 3 (5.1.2600)
/ Windows / SP1: Microsoft Internationalized Domain Names Mitigation APIs
/ Windows / SP1: Microsoft National Language Support Downlevel APIs
/ Windows Media Format 11 SDK: Hotfix for Windows Media Format 11 SDK (KB929399)
/ Windows Media Player: Mise à jour de sécurité pour Lecteur Windows Media (KB952069)
/ Windows Media Player: Mise à jour de sécurité pour Lecteur Windows Media (KB968816)
/ Windows Media Player: Mise à jour de sécurité pour Lecteur Windows Media (KB973540)
/ Windows Media Player 11: Mise à jour de sécurité pour Lecteur Windows Media 11 (KB936782)
/ Windows Media Player 11: Correctif pour Lecteur Windows Media 11 (KB939683)
/ Windows Media Player 11: Mise à jour de sécurité pour Lecteur Windows Media 11 (KB954154)
/ Windows Media Player 11: Mise à jour critique pour Lecteur Windows Media 11 (KB959772)
/ Windows XP: Mise à jour de sécurité pour Windows XP (KB941569)
/ Windows XP / SP0: Mise à jour de sécurité pour Windows Internet Explorer 7 (KB938127-v2)
/ Windows XP / SP0: Mise à jour de sécurité pour Windows Internet Explorer 7 (KB956390)
/ Windows XP / SP0: Mise à jour de sécurité pour Windows Internet Explorer 7 (KB961260)
/ Windows XP / SP0: Mise à jour de sécurité pour Windows Internet Explorer 7 (KB963027)
/ Windows XP / SP0: Mise à jour de sécurité pour Windows Internet Explorer 8 (KB969897)
/ Windows XP / SP0: Mise à jour de sécurité pour Windows Internet Explorer 8 (KB971961)
/ Windows XP / SP0: Mise à jour de sécurité pour Windows Internet Explorer 8 (KB972260)
/ Windows XP / SP10: Microsoft Compression Client Pack 1.0 for Windows XP
/ Windows XP / SP3: Windows XP Service Pack 3
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB923561)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB938464)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB938464-v2)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB946648)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB950760)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB950762)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB950974)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB951066)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB951376-v2)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB951698)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB951748)
/ Windows XP / SP4: Mise à jour pour Windows XP (KB951978)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB952004)
/ Windows XP / SP4: Correctif pour Windows XP (KB952287)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB952954)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB954211)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB954459)
/ Windows XP / SP4: Hotfix for Windows XP (KB954550-v5)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB954600)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB955069)
/ Windows XP / SP4: Mise à jour pour Windows XP (KB955839)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB956572)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB956744)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB956802)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB956803)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB956841)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB956844)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB957097)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB958215)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB958644)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB958687)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB958690)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB959426)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB960225)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB960714)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB960715)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB960803)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB960859)
/ Windows XP / SP4: Correctif pour Windows XP (KB961118)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB961371)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB961373)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB961501)
/ Windows XP / SP4: Mise à jour pour Windows XP (KB967715)
/ Windows XP / SP4: Mise à jour pour Windows XP (KB968389)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB968537)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB969898)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB970238)
/ Windows XP / SP4: Correctif pour Windows XP (KB970653-v3)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB971557)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB971633)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB971657)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB973346)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB973354)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB973507)
/ Windows XP / SP4: Mise à jour pour Windows XP (KB973815)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB973869)
--- Startup entries list ---
Located: HK_LM:Run, Adobe Reader Speed Launcher
command: "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
file: C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
size: 35696
MD5: 452FA961163EF4AEE4815796A13AB2CF
Located: HK_LM:Run, Alcmtr
command: ALCMTR.EXE
file: C:\WINDOWS\ALCMTR.EXE
size: 69632
MD5: 8B4CBBA1EA526830C7F97E7822E2493A
Located: HK_LM:Run, Antivirus Protection
command: C:\WINDOWS\system32\pavrot.exe
file: C:\WINDOWS\system32\pavrot.exe
size: 352256
MD5: 7D00126A77F7FFC043A9529547F3B2B6
Located: HK_LM:Run, BDRegion
command: C:\Program Files\Cyberlink\Shared Files\brs.exe
file: C:\Program Files\Cyberlink\Shared Files\brs.exe
size: 75048
MD5: 034265EC1F409EF8748F3FB478356A48
Located: HK_LM:Run, G DATA AntiVirus Trayapplication
command: C:\Program Files\G DATA\InternetSecurity\AVKTray\AVKTray.exe
file: C:\Program Files\G DATA\InternetSecurity\AVKTray\AVKTray.exe
size: 958024
MD5: A1E2D919D5C3D00E628640E9C6E3BBD3
Located: HK_LM:Run, GDFirewallTray
command: C:\Program Files\G DATA\InternetSecurity\Firewall\GDFirewallTray.exe
file: C:\Program Files\G DATA\InternetSecurity\Firewall\GDFirewallTray.exe
size: 1037992
MD5: 744F2F10AD961090D476F44C2C6700B8
Located: HK_LM:Run, InCD
command: D:\Gravure\Nero 6\InCD\InCD.exe
file: D:\Gravure\Nero 6\InCD\InCD.exe
size: 1450094
MD5: 2F7CA1B8AE0F6B34B2A9537F603B0D0A
Located: HK_LM:Run, Malwarebytes Anti-Malware (reboot)
command: "C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript
file: C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe
size: 1312080
MD5: C5FCC0B761069FABD59E41B7C3280DDF
Located: HK_LM:Run, NeroFilterCheck
command: C:\WINDOWS\system32\NeroCheck.exe
file: C:\WINDOWS\system32\NeroCheck.exe
size: 155648
MD5: 3E4C03CEFAD8DE135263236B61A49C90
Located: HK_LM:Run, NvCplDaemon
command: RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
file: C:\WINDOWS\system32\NvCpl.dll
size: 7557120
MD5: 8F5367B6F03624EACB594B2C88CDA667
Located: HK_LM:Run, NvMediaCenter
command: RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
file: C:\WINDOWS\system32\NvMcTray.dll
size: 86016
MD5: B1528BAF7550303F6FD63C2C61BA6DA1
Located: HK_LM:Run, nwiz
command: nwiz.exe /install
file: C:\WINDOWS\system32\nwiz.exe
size: 1519616
MD5: 251AE2EFDE39F8A1440F43276A5DAC8D
Located: HK_LM:Run, ORAHSSSessionManager
command: "C:\Program Files\OrangeHSS\SessionManager\SessionManager.exe"
file: C:\Program Files\OrangeHSS\SessionManager\SessionManager.exe
size: 107248
MD5: 8B625CAD4036DE135B5C1B04233A55DE
Located: HK_LM:Run, PDVD9LanguageShortcut
command: "D:\Video\Power DVD 1\PowerDVD9\Language\Language.exe"
file: D:\Video\Power DVD 1\PowerDVD9\Language\Language.exe
size: 50472
MD5: 2893B99ED36FF1804C9FFA313C095CAA
Located: HK_LM:Run, RemoteControl9
command: "D:\Video\Power DVD 1\PowerDVD9\PDVD9Serv.exe"
file: D:\Video\Power DVD 1\PowerDVD9\PDVD9Serv.exe
size: 87336
MD5: 1640B7D383023BE9085F93F664BB5CA8
Located: HK_LM:Run, RTHDCPL
command: RTHDCPL.EXE
file: C:\WINDOWS\RTHDCPL.EXE
size: 16264192
MD5: 692733BE9E923044CEBC96CF882CCEBE
Located: HK_LM:Run, SBAMTray
command: C:\Program Files\Sunbelt Software\CounterSpy\SBAMTray.exe
file: C:\Program Files\Sunbelt Software\CounterSpy\SBAMTray.exe
size: 685352
MD5: 7319668EC904815512BCC0F6AAF8B72E
Located: HK_LM:Run, SearchSettings
command: C:\Program Files\pdfforge Toolbar\SearchSettings.exe
file: C:\Program Files\pdfforge Toolbar\SearchSettings.exe
size: 970240
MD5: 6E79C2721FE13A134508CB51EC279482
Located: HK_LM:Run, SkyTel
command: SkyTel.EXE
file: C:\WINDOWS\SkyTel.EXE
size: 2879488
MD5: C74B86642F131D76C0EDE673FDF137B2
Located: HK_LM:Run, TrojanScanner
command: C:\Program Files\Trojan Remover\Trjscan.exe /boot
file: C:\Program Files\Trojan Remover\Trjscan.exe
size: 1069960
MD5: 77075A257090C5D4C1AFA66D64F257FE
Located: HK_CU:Run, CTFMON.EXE
where: .DEFAULT...
command: C:\WINDOWS\system32\CTFMON.EXE
file: C:\WINDOWS\system32\CTFMON.EXE
size: 15360
MD5: 59DC5BB82E4C8E0B3EADCFDBC44BA6E4
Located: HK_CU:Run, CTFMON.EXE
where: PE_C_DEFAULT USER...
command: C:\WINDOWS\system32\CTFMON.EXE
file: C:\WINDOWS\system32\CTFMON.EXE
size: 15360
MD5: 59DC5BB82E4C8E0B3EADCFDBC44BA6E4
Located: HK_CU:Run, CTFMON.EXE
where: PE_C_DEFAULT USER.WINDOWS...
command: C:\WINDOWS\system32\CTFMON.EXE
file: C:\WINDOWS\system32\CTFMON.EXE
size: 15360
MD5: 59DC5BB82E4C8E0B3EADCFDBC44BA6E4
Located: HK_CU:Run, CTFMON.EXE
where: PE_C_INFORMAT-REX...
command: C:\WINDOWS\system32\ctfmon.exe
file: C:\WINDOWS\system32\ctfmon.exe
size: 15360
MD5: 59DC5BB82E4C8E0B3EADCFDBC44BA6E4
Located: HK_CU:Run, SpybotSD TeaTimer
where: PE_C_INFORMAT-REX...
command: D:\Sécurité\SpyBot\Spybot - Search & Destroy\TeaTimer.exe
file: D:\Sécurité\SpyBot\Spybot - Search & Destroy\TeaTimer.exe
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!
Located: HK_CU:Run, swg
where: PE_C_INFORMAT-REX...
command: C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
file: C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
size: 68856
MD5: E616A6A6E91B0A86F2F6217CDE835FFE
Located: HK_CU:Run, CTFMON.EXE
where: S-1-5-19...
command: C:\WINDOWS\system32\CTFMON.EXE
file: C:\WINDOWS\system32\CTFMON.EXE
size: 15360
MD5: 59DC5BB82E4C8E0B3EADCFDBC44BA6E4
Located: HK_CU:Run, CTFMON.EXE
where: S-1-5-20...
command: C:\WINDOWS\system32\CTFMON.EXE
file: C:\WINDOWS\system32\CTFMON.EXE
size: 15360
MD5: 59DC5BB82E4C8E0B3EADCFDBC44BA6E4
Located: HK_CU:Run, CTFMON.EXE
where: S-1-5-21-1292428093-1592454029-725345543-1004...
command: C:\WINDOWS\system32\ctfmon.exe
file: C:\WINDOWS\system32\ctfmon.exe
size: 15360
MD5: 59DC5BB82E4C8E0B3EADCFDBC44BA6E4
Located: HK_CU:Run, MSMSGS
where: S-1-5-21-1292428093-1592454029-725345543-1004...
command: "C:\Program Files\Messenger\msmsgs.exe" /background
file: C:\Program Files\Messenger\msmsgs.exe
size: 1695232
MD5: E13EA4860E8F2AA845B53BFD2B6FEC5B
Located: HK_CU:Run, SpybotSD TeaTimer
where: S-1-5-21-1292428093-1592454029-725345543-1004...
command: C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
file: C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
size: 2260480
MD5: 390679F7A217A5E73D756276C40AE887
Located: HK_CU:Run, swg
where: S-1-5-21-1292428093-1592454029-725345543-1004...
command: "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
file: C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
size: 68856
MD5: E616A6A6E91B0A86F2F6217CDE835FFE
Located: HK_CU:Run, uTorrent
where: S-1-5-21-1292428093-1592454029-725345543-1004...
command: "D:\Internet\uTorrent.exe"
file: D:\Internet\uTorrent.exe
size: 288048
MD5: 036B08A28E47478807B56000B8E0E127
Located: HK_CU:Run, CTFMON.EXE
where: S-1-5-21-1292428093-1592454029-725345543-1005...
command: C:\WINDOWS\system32\ctfmon.exe
file: C:\WINDOWS\system32\ctfmon.exe
size: 15360
MD5: 59DC5BB82E4C8E0B3EADCFDBC44BA6E4
Located: HK_CU:Run, swg
where: S-1-5-21-1292428093-1592454029-725345543-1005...
command: C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
file: C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
size: 68856
MD5: E616A6A6E91B0A86F2F6217CDE835FFE
Located: HK_CU:Run, CTFMON.EXE
where: S-1-5-21-1292428093-1592454029-725345543-500...
command: C:\WINDOWS\system32\CTFMON.EXE
file: C:\WINDOWS\system32\CTFMON.EXE
size: 15360
MD5: 59DC5BB82E4C8E0B3EADCFDBC44BA6E4
Located: HK_CU:Run, CTFMON.EXE
where: S-1-5-18...
command: C:\WINDOWS\system32\CTFMON.EXE
file: C:\WINDOWS\system32\CTFMON.EXE
size: 15360
MD5: 59DC5BB82E4C8E0B3EADCFDBC44BA6E4
Located: Démarrage (utilisateur), Adobe Gamma.lnk
where: C:\Documents and Settings\Gilbert\Menu Démarrer\Programmes\Démarrage...
command: C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
file: C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
size: 110592
MD5: 5CD0CD0EC4DC5DF459B3AC016764F5AA
Located: Démarrage (utilisateur), Adobe Gamma.lnk
where: C:\Documents and Settings\INFORMAT-REX\Menu Démarrer\Programmes\Démarrage...
command: C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
file: C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
size: 110592
MD5: 5CD0CD0EC4DC5DF459B3AC016764F5AA
Located: WinLogon, crypt32chain
command: crypt32.dll
file: crypt32.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!
Located: WinLogon, cryptnet
command: cryptnet.dll
file: cryptnet.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!
Located: WinLogon, cscdll
command: cscdll.dll
file: cscdll.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!
Located: WinLogon, dimsntfy
command: %SystemRoot%\System32\dimsntfy.dll
file: %SystemRoot%\System32\dimsntfy.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!
Located: WinLogon, ScCertProp
command: wlnotify.dll
file: wlnotify.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!
Located: WinLogon, Schedule
command: wlnotify.dll
file: wlnotify.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!
Located: WinLogon, sclgntfy
command: sclgntfy.dll
file: sclgntfy.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!
Located: WinLogon, SensLogn
command: WlNotify.dll
file: WlNotify.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!
Located: WinLogon, termsrv
command: wlnotify.dll
file: wlnotify.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!
Located: WinLogon, wlballoon
command: wlnotify.dll
file: wlnotify.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!
--- Browser helper object list ---
{201f27d4-3704-41d6-89c1-aa35e39143ed} (AskBar BHO)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
BHO name: AskBar BHO
CLSID name: AskBar BHO
Path: C:\Program Files\AskBarDis\bar\bin\
Long name: askBar.dll
Short name:
Date (created): 07/10/2009 21:35:26
Date (last access): 09/10/2009 17:20:14
Date (last write): 02/04/2009 12:47:00
Filesize: 333192
Attributes: archive
MD5: 72BB59262D18ABD1C7C646F627D80ED7
CRC32: 0F82567A
Version: 4.1.0.5
{AA58ED58-01DD-4d91-8333-CF10577473F7} (Google Toolbar Helper)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
BHO name:
CLSID name: Google Toolbar Helper
description: Google toolbar
classification: Open for discussion
known filename: googletoolbar.dll<br>googletoolbar*.dll<br>(* = number)<br>googletoolbar_en_*.**-big.dll<br>Googletoolbar_en_*.*.**-deleon.dll
info link: http://www.google.com/intl/fr/toolbar/ie/index.html
info source: TonyKlein
Path: C:\Program Files\Google\Google Toolbar\
Long name: GoogleToolbar_32.dll
Short name: GOOGLE~2.DLL
Date (created): 26/08/2009 18:21:14
Date (last access): 09/10/2009 17:53:42
Date (last write): 26/08/2009 18:09:48
Filesize: 256112
Attributes: archive
MD5: 783AD24A77CD964B9888F27535FCC56E
CRC32: 4A1F3697
Version: 6.2.1815.1002
{AF69DE43-7D58-4638-B6FA-CE66B5AD205D} (Google Toolbar Notifier BHO)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
BHO name:
CLSID name: Google Toolbar Notifier BHO
Path: C:\Program Files\Google\GoogleToolbarNotifier\5.3.4501.1418\
Long name: swg.dll
Short name:
Date (created): 07/10/2009 15:41:12
Date (last access): 09/10/2009 17:53:42
Date (last write): 07/10/2009 15:41:12
Filesize: 762864
Attributes: archive
MD5: 927558FA159FED54852692D729039E67
CRC32: EE7BD555
Version: 5.3.4501.1418
{B922D405-6D13-4A2B-AE89-08A030DA4402} (pdfforge Toolbar)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
BHO name:
CLSID name: pdfforge Toolbar
Path: C:\Program Files\pdfforge Toolbar\
Long name: WidgiToolbarIE.dll
Short name: WIDGIT~1.DLL
Date (created): 04/05/2009 16:32:10
Date (last access): 09/10/2009 17:20:14
Date (last write): 04/05/2009 16:32:10
Filesize: 650752
Attributes: archive
MD5: 0369AFFB46AA2071D04A3FB361EE5BD0
CRC32: 8389EAAF
Version: 1.0.0.18
{C84D72FE-E17D-4195-BB24-76C02E2E7C4E} (Google Dictionary Compression sdch)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
BHO name: Google Dictionary Compression sdch
CLSID name: Google Dictionary Compression sdch
Path: C:\Program Files\Google\Google Toolbar\Component\
Long name: fastsearch_B7C5AC242193BB3E.dll
Short name: FASTSE~1.DLL
Date (created): 26/08/2009 18:09:28
Date (last access): 09/10/2009 17:18:18
Date (last write): 26/08/2009 18:09:28
Filesize: 458736
Attributes: archive
MD5: CB84DFAFF68CD27E840251343B9B8E99
CRC32: E25B2196
Version: 1.0.1801.150
{E312764E-7706-43F1-8DAB-FCDD2B1E416D} (SearchSettings Class)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
BHO name:
CLSID name: SearchSettings Class
Path: C:\Program Files\pdfforge Toolbar\
Long name: SearchSettings.dll
Short name: SEARCH~1.DLL
Date (created): 30/03/2009 17:13:06
Date (last access): 09/10/2009 17:20:16
Date (last write): 30/03/2009 17:13:06
Filesize: 1091584
Attributes: archive
MD5: C0713F23F1E14D726DDE41D911CF0E4C
CRC32: 59FCC207
Version: 1.2.1.2
--- ActiveX list ---
{5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control)
DPF name:
CLSID name: BDSCANONLINE Control
Installer: C:\WINDOWS\Downloaded Program Files\oscan8.inf
Codebase: http://www.bitdefender.fr/scan_fr/scan8/oscan8.cab
description:
classification: Legitimate
known filename: oscan8.ocx
info link:
info source: Safer Networking Ltd.
Path: C:\WINDOWS\DOWNLO~1\
Long name: oscan8.ocx
Short name:
Date (created): 25/10/2007 16:54:18
Date (last access): 09/10/2009 17:59:20
Date (last write): 25/10/2007 16:54:18
Filesize: 471040
Attributes: archive
MD5: BC4E154A06C9208EF36669B1B9E5FDAD
CRC32: DF08A08D
Version: 1.0.0.1
{CB50428B-657F-47DF-9B32-671F82AA73F7} (Photodex Presenter AX control)
DPF name:
CLSID name: Photodex Presenter AX control
Installer: C:\WINDOWS\Downloaded Program Files\pxplay.inf
Codebase: http://www.photodex.com/pxplay.cab
description:
classification: Open for discussion
known filename: pxplay.ocx
info link:
info source: Safer Networking Ltd.
Path: C:\PROGRA~1\PHOTOD~1\
Long name: pxplay.ocx
Short name:
Date (created): 13/09/2007 20:19:30
Date (last access): 09/10/2009 17:59:20
Date (last write): 01/03/2009 22:06:18
Filesize: 292160
Attributes: archive
MD5: E2BA5A59827D19078A4CA58EFD41807C
CRC32: A9E06657
Version: 4.0.0.2442
--- Process list ---
PID: 0 ( 0) [System]
PID: 764 ( 4) \SystemRoot\System32\smss.exe
size: 50688
PID: 824 ( 764) \??\C:\WINDOWS\system32\csrss.exe
size: 6144
PID: 848 ( 764) \??\C:\WINDOWS\system32\winlogon.exe
size: 512000
PID: 892 ( 848) C:\WINDOWS\system32\services.exe
size: 111104
MD5: C3FB1D70CB88722267949694BA51759E
PID: 904 ( 848) C:\WINDOWS\system32\lsass.exe
size: 13312
MD5: 91E6024D6D4DCDECDB36C43ECF9BBECB
PID: 1064 ( 892) C:\WINDOWS\system32\svchost.exe
size: 14336
MD5: E4BDF223CD75478BF44567B4D5C2634D
PID: 1112 ( 892) C:\WINDOWS\system32\svchost.exe
size: 14336
MD5: E4BDF223CD75478BF44567B4D5C2634D
PID: 1152 ( 892) C:\WINDOWS\System32\svchost.exe
size: 14336
MD5: E4BDF223CD75478BF44567B4D5C2634D
PID: 1180 ( 892) D:\Gravure\Nero 6\InCD\InCDsrv.exe
size: 1192048
MD5: 0359EAFFBEDB614E485C663F51E6F3E1
PID: 1404 ( 892) C:\WINDOWS\system32\svchost.exe
size: 14336
MD5: E4BDF223CD75478BF44567B4D5C2634D
PID: 1428 ( 892) C:\WINDOWS\system32\svchost.exe
size: 14336
MD5: E4BDF223CD75478BF44567B4D5C2634D
PID: 1660 ( 892) C:\WINDOWS\system32\spoolsv.exe
size: 57856
MD5: 460E4CE148BD07218DA0B6A3D31885A9
PID: 1740 ( 892) C:\WINDOWS\system32\svchost.exe
size: 14336
MD5: E4BDF223CD75478BF44567B4D5C2634D
PID: 1772 ( 892) D:\Sécurité\a-squared Free\a2service.exe
size: 366712
MD5: D8ADF0518C336ABC6FA49412DC9DE141
PID: 1820 ( 892) C:\Program Files\Fichiers communs\G DATA\AVKProxy\AVKProxy.exe
size: 1016904
MD5: C6A5552CEBF7D1399194C7C44482C35C
PID: 1836 ( 892) C:\Program Files\G DATA\InternetSecurity\AVK\AVKService.exe
size: 386120
MD5: D58EC89617D3A8DA9185EAA19C930397
PID: 1856 ( 892) C:\Program Files\G DATA\InternetSecurity\AVK\AVKWCtl.exe
size: 1185496
MD5: 690468933B8D00B66EF5DB73150F96EA
PID: 1908 ( 892) C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
size: 65536
MD5: 20DFB4BD5DE8585FDDA02F4C9D00308C
PID: 1968 ( 892) C:\WINDOWS\system32\nvsvc32.exe
size: 143426
MD5: CDE37723E151F52F63A76E92BC19780B
PID: 2016 ( 892) C:\Program Files\Sunbelt Software\CounterSpy\SBAMSvc.exe
size: 1012040
MD5: 95D0F537C781B880799B7960912260B3
PID: 228 ( 892) C:\Program Files\Spyware Terminator\sp_rsser.exe
size: 487424
MD5: AA21CF891D0D8248ECA1E9BA201ACBEF
PID: 264 ( 892) C:\WINDOWS\system32\svchost.exe
size: 14336
MD5: E4BDF223CD75478BF44567B4D5C2634D
PID: 1360 ( 892) C:\WINDOWS\System32\alg.exe
size: 44544
MD5: 5E9A6658A2A69AE7EB195113B7A2E7A9
PID: 1608 ( 892) C:\Program Files\G DATA\InternetSecurity\Firewall\GDFwSvc.exe
size: 1407976
MD5: A681EA5027B9638F8CBFBD25CC5F6420
PID: 2380 (2344) C:\WINDOWS\Explorer.EXE
size: 1037824
MD5: F2317622D29F9FF0F88AEECD5F60F0DD
PID: 3224 (2380) D:\Gravure\Nero 6\InCD\InCD.exe
size: 1450094
MD5: 2F7CA1B8AE0F6B34B2A9537F603B0D0A
PID: 3332 (2380) C:\WINDOWS\RTHDCPL.EXE
size: 16264192
MD5: 692733BE9E923044CEBC96CF882CCEBE
PID: 3380 (2380) C:\WINDOWS\system32\RUNDLL32.EXE
size: 33792
MD5: 93AD0B78C7357A05F50E594EC7C22300
PID: 3396 (2380) D:\Video\Power DVD 1\PowerDVD9\PDVD9Serv.exe
size: 87336
MD5: 1640B7D383023BE9085F93F664BB5CA8
PID: 3416 (2380) C:\Program Files\Cyberlink\Shared Files\brs.exe
size: 75048
MD5: 034265EC1F409EF8748F3FB478356A48
PID: 3520 (2380) C:\Program Files\G DATA\InternetSecurity\Firewall\GDFirewallTray.exe
size: 1037992
MD5: 744F2F10AD961090D476F44C2C6700B8
PID: 3556 (2380) C:\Program Files\G DATA\InternetSecurity\AVKTray\AVKTray.exe
size: 958024
MD5: A1E2D919D5C3D00E628640E9C6E3BBD3
PID: 3592 (2380) C:\WINDOWS\system32\pavrot.exe
size: 352256
MD5: 7D00126A77F7FFC043A9529547F3B2B6
PID: 3740 (3696) C:\Program Files\OrangeHSS\Launcher\Launcher.exe
size: 602864
MD5: 3249EB15DFC4E07E6971C666E3711D18
PID: 3768 (2380) C:\Program Files\Sunbelt Software\CounterSpy\SBAMTray.exe
size: 685352
MD5: 7319668EC904815512BCC0F6AAF8B72E
PID: 3780 (3592) C:\WINDOWS\msprav.exe
size: 352256
MD5: A82E73A06933F07058E308262FBBE796
PID: 3788 (2380) C:\WINDOWS\system32\ctfmon.exe
size: 15360
MD5: 59DC5BB82E4C8E0B3EADCFDBC44BA6E4
PID: 3796 (2380) C:\Program Files\Messenger\msmsgs.exe
size: 1695232
MD5: E13EA4860E8F2AA845B53BFD2B6FEC5B
PID: 3820 (2380) C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
size: 68856
MD5: E616A6A6E91B0A86F2F6217CDE835FFE
PID: 3892 (2380) C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
size: 2260480
MD5: 390679F7A217A5E73D756276C40AE887
PID: 3908 (2380) D:\Internet\uTorrent.exe
size: 288048
MD5: 036B08A28E47478807B56000B8E0E127
PID: 3944 (1064) C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\AlertModule\2\AlertModule.exe
size: 90112
MD5: 66C25F8876357948D480FD7625A8B84E
PID: 4076 (3740) C:\Program Files\OrangeHSS\systray\systrayapp.exe
size: 147456
MD5: DBE1C76A41A7420277E41EABB15A7BFE
PID: 4092 (3740) C:\Program Files\OrangeHSS\connectivity\connectivitymanager.exe
size: 712704
MD5: A4C96A5BD0FF75926EF09873764187BD
PID: 408 (4092) C:\Program Files\OrangeHSS\connectivity\CoreCom\CoreCom.exe
size: 364544
MD5: E57908F55D26E60F929DA530FE4FFAB0
PID: 2092 ( 408) C:\Program Files\OrangeHSS\connectivity\CoreCom\OraConfigRecover.exe
size: 28672
MD5: 823FD44EB11A91578923D0F0702D75B8
PID: 1584 (1064) C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTCOMModule\1\FTCOMModule.exe
size: 65536
MD5: 261359D05A7FBF6E87335675AD902D47
PID: 1808 (1064) C:\WINDOWS\system32\wbem\wmiprvse.exe
size: 227840
MD5: 798A9E6828997EEF4517ADA8A2259831
PID: 3624 (1152) C:\WINDOWS\system32\wuauclt.exe
size: 51224
MD5: E654B78D2F1D791B30D0ED9A8195EC22
PID: 7628 (2380) C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe
size: 5365592
MD5: 0477C2F9171599CA5BC3307FDFBA8D89
PID: 4 ( 0) System
PID: 7364 (3592) C:\WINDOWS\iexplore.exe
size: 334848
MD5: EB7AF43F5DBEBA335CB0388FA546BCB2
--- Browser start & search pages list ---
Spybot - Search & Destroy browser pages report, 09/10/2009 18:00:33
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Local Page
C:\WINDOWS\system32\blank.htm
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Search Page
https://www.google.com/?gws_rd=ssl
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Search Bar
https://www.orange.fr/portail?kw=
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Start Page
www.orange.fr
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search\SearchAssistant
http://www.google.com/toolbar/ie8/sidebar.html
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl\@
http://www.google.com/search?q=%s
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Local Page
%SystemRoot%\system32\blank.htm
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Search Page
https://www.msn.com/fr-fr/
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Search Bar
https://www.bing.com/?toHttps=1&redig=8F3F334EA60E4B1CB4D040DCFE393A89{SUB_RFC1766}/srchasst/srchasst.htm
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Start Page
https://www.msn.com/fr-fr/
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Page_URL
https://www.msn.com/fr-fr/?ocid=iehp
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Search_URL
https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\SearchAssistant
http://www.crawler.com/search/ie.aspx?tb_id=60347
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\SearchAssistant
http://www.crawler.com/search/ie.aspx?tb_id=60347
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\CustomizeSearch
http://dnl.crawler.com/support/sa_customize.aspx?TbId=60347
--- Winsock Layered Service Provider list ---
--- Uninstall list ---
7-Zip 4.65 (7-Zip)
uninstall cmd: "D:\Compression Décompression\7-Zip\Uninstall.exe"
Adobe Flash Player 10 ActiveX 10.0.22.87 (Adobe Flash Player ActiveX)
uninstall cmd: C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
publisher: Adobe Systems Incorporated
help link: https://helpx.adobe.com/flash-player.html
Adobe Flash Player 10 Plugin 10.0.32.18 (Adobe Flash Player Plugin)
uninstall cmd: C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
publisher: Adobe Systems Incorporated
Adobe Photoshop CS2 9.0 (Adobe Photoshop CS2 - {236BB7C4-4419-42FD-040C-1E257A25E34D})
version: 9
version (major): 9
install location: D:\Photos\Photoshop CS 2\
uninstall cmd: msiexec /I {236BB7C4-4419-42FD-040C-1E257A25E34D}
publisher: Adobe Systems, Inc.
comments:
contact: Service support clientèle
help link: https://helpx.adobe.com/support.html
help telephone: +1-555-555-4505
Ask Toolbar 4.1.0.5 (Ask Toolbar_is1)
install date: 20091007
install location: C:\Program Files\AskBarDis\
uninstall cmd: "C:\Program Files\AskBarDis\unins000.exe"
publisher: Ask.com
help link: http://about.ask.com/en/toolbar/toolbarv/faq.html
Audacity 1.2.6 (Audacity_is1)
install location: D:\Musique\Audacity\Audacity\
uninstall cmd: "D:\Musique\Audacity\Audacity\unins000.exe"
help link: https://sourceforge.net/projects/audacity/
(Branding)
Canon PIXMA iP5000 (CANONBJ_Deinstall_CNMCP6d.DLL)
uninstall cmd: C:\WINDOWS\system32\CNMCP6d.exe "-PRINTERNAMECanon PIXMA iP5000" "-HELPERDLLC:\BJPrinter\CNMWINDOWS\Canon PIXMA iP5000 Installer\Inst2\cnmis.dll" "-RCDLLC:\BJPrinter\CNMWINDOWS\Canon PIXMA iP5000 Installer\Inst2\cnmi040c.dll"
CATraxx (CATraxx_is1)
install date: 20090329
install location: D:\Musique\CA Traxx New\
uninstall cmd: "D:\Musique\CA Traxx New\Uninstall\unins000.exe"
publisher: FNProgramvare
CCleaner (remove only) (CCleaner)
uninstall cmd: "D:\Gestion du micro\1C Cleaner\CCleaner\uninst.exe"
publisher: Piriform
(Connection Manager)
DVD Audio Extractor 2.0.1 (DVD Audio Extractor_is1)
install location: C:\Program Files\DVD Audio Extractor\
uninstall cmd: "C:\Program Files\DVD Audio Extractor\unins000.exe"
publisher: Computer Application Studio
help link: http://www.castudio.org/dvdaudioextractor/
DxO Optics Pro v4.0 .0 (DxO Optics Pro v4)
uninstall cmd: D:\Photos\DxO1\DxO Optics Pro v4\uninst.exe
publisher: DxO Labs
Canon Utilities Easy-PhotoPrint (Easy-PhotoPrint)
uninstall cmd: D:\Bureautique\Imprimant Canon IP 5000\Easy-PhotoPrint\uninst.exe D:\Bureautique\Imprimant Canon IP 5000\Easy-PhotoPrint\uninst.ini
Easy-WebPrint (Easy-WebPrint)
uninstall cmd: C:\WINDOWS\IsUn040c.exe -f"D:\Bureautique\Imprimant Canon IP 5000\Easy-WebPrint\Uninst.isu"
eMule (eMule)
uninstall cmd: "D:\Internet\Emule\Uninstall.exe"
Free Mp3 Wma Converter V 1.81 (Free Mp3 Wma Converter_is1)
install date: 20090531
install location: D:\Musique Conversion\Free Audio Pack\
uninstall cmd: "D:\Musique Conversion\Free Audio Pack\unins000.exe"
help link: https://torchbrowser.com/
Outil de mise à jour Google 2.4.1601.7122 (Google Updater)
version (major): 2
version (minor): 4
install location: C:\Program Files\Google\Google Updater
uninstall cmd: "C:\Program Files\Google\Google Updater\GoogleUpdater.exe" -uninstall
publisher: Google Inc.
help link: http://pack.google.com:80/pack-support?hl=fr&gl=fr
HijackThis 2.0.2 2.0.2 (HijackThis)
uninstall cmd: "C:\Program Files\Trend Micro\HijackThis\HijackThis.exe" /uninstall
publisher: TrendMicro
Microsoft Internationalized Domain Names Mitigation APIs (IDNMitigationAPIs)
install date: 20090228
uninstall cmd: "C:\WINDOWS\$NtServicePackUninstallIDNMitigationAPIs$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
Windows Internet Explorer 8 20090308.140743 (ie8)
install date: 20090605
uninstall cmd: "C:\WINDOWS\ie8\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/office/internet-explorer-help-23360e49-9cd3-4dda-ba52-705336cc0de2?ui=en-US&rs=en-001&ad=US
(InCD!UninstallKey)
uninstall cmd: C:\WINDOWS\NuNInst.exe /UNINSTALL
(InstallShield Uninstall Information)
VIA Platform Device Manager 1.13 (InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169})
version: 17629184
version (major): 1
version (minor): 13
install date: 20090222
install source: E:\Drivers\VIA\ChipSet\
uninstall cmd: C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{20D4A895-748C-4D88-871C-FDB1695B0169}
publisher: VIA Technologies, Inc.
comments: VIA Hyperion Pro Setup Program
contact: http://forums.viaarena.com/
help link: http://www.viaarena.com/
help telephone: NULL
readme: NULL
CyberLink PowerDVD 9 9.0.1501 (InstallShield_{A8516AC9-AAF1-47F9-9766-03E2D4CDBCF8})
version: 150994944
version (major): 9
estimated size: 196844
install date: 20090516
install location: D:\Video\Power DVD 1\PowerDVD9\
install source: C:\Documents and Settings\Gilbert\Mes documents\Décompress\Nouveau dossier\CyberLink_PowerDVD9_Ultra_setup\
uninstall cmd: "C:\Program Files\InstallShield Installation Information\{A8516AC9-AAF1-47F9-9766-03E2D4CDBCF8}\setup.exe" /z-uninstall
publisher: CyberLink Corp.
help link: https://www.cyberlink.com/support/index.html
help telephone: +886-2-86671298
(KB884267)
(KB885353)
(KB886612)
(KB887078)
(KB887626)
High Definition Audio Driver Package - KB888111 20040219.000000 (KB888111WXPSP2)
uninstall cmd: "C:\WINDOWS\$NtUninstallKB888111WXPSP2$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us
(KB888656)
(KB889858)
(KB891122)
(KB892313)
(KB893240)
(KB893241)
(KB895181)
(KB895316)
(KB895572)
(KB897586)
(KB898549)
(KB900399)
(KB902344)
(KB907658)
(KB911565)
(KB911854)
Mise à jour de sécurité pour Windows XP (KB923561) 1 (KB923561)
install date: 20090422
uninstall cmd: "C:\WINDOWS\$NtUninstallKB923561$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/923561/ms09-010-description-of-the-update-for-windows-wordpad-converter-april
Hotfix for Windows Media Format 11 SDK (KB929399) (KB929399)
install date: 20090405
uninstall cmd: "C:\WINDOWS\$NtUninstallKB929399$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/929399
Mise à jour de sécurité pour Lecteur Windows Media 11 (KB936782) (KB936782_WMP11)
install date: 20090405
uninstall cmd: "C:\WINDOWS\$NtUninstallKB936782_WMP11$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/936782/ms07-047-vulnerability-in-windows-media-player-could-allow-remote-code
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB938127-v2) 2 (KB938127-v2-IE7)
install date: 20090301
uninstall cmd: "C:\WINDOWS\ie7updates\KB938127-v2-IE7\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/938127
Mise à jour de sécurité pour Windows XP (KB938464) 1 (KB938464)
install date: 20090226
uninstall cmd: "C:\WINDOWS\$NtUninstallKB938464$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/938464/ms08-052-description-of-the-security-update-for-gdi-for-all-editions-o
Mise à jour de sécurité pour Windows XP (KB938464-v2) 2 (KB938464-v2)
install date: 20090312
uninstall cmd: "C:\WINDOWS\$NtUninstallKB938464-v2$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/938464/ms08-052-description-of-the-security-update-for-gdi-for-all-editions-o
Correctif pour Lecteur Windows Media 11 (KB939683) (KB939683)
install date: 20090405
uninstall cmd: "C:\WINDOWS\$NtUninstallKB939683$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/939683
Mise à jour de sécurité pour Windows XP (KB941569) (KB941569)
install date: 20090405
uninstall cmd: "C:\WINDOWS\$NtUninstallKB941569$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/941569/ms07-068-vulnerability-in-windows-media-file-format-could-allow-remote
Mise à jour de sécurité pour Windows XP (KB946648) 1 (KB946648)
install date: 20090227
uninstall cmd: "C:\WINDOWS\$NtUninstallKB946648$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/946648
Mise à jour de sécurité pour Windows XP (KB950760) 1 (KB950760)
install date: 20090226
uninstall cmd: "C:\WINDOWS\$NtUninstallKB950760$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/950760/ms08-032-critical-security-update-of-activex-kill-bits
Mise à jour de sécurité pour Windows XP (KB950762) 1 (KB950762)
install date: 20090227
uninstall cmd: "C:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/950762/ms08-036-vulnerabilities-in-pragmatic-general-multicast-pgm-could-allo
Mise à jour de sécurité pour Windows XP (KB950974) 1 (KB950974)
install date: 20090227
uninstall cmd: "C:\WINDOWS\$NtUninstallKB950974$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/950974/ms08-049-vulnerability-in-event-system-could-allow-remote-code-executi
Mise à jour de sécurité pour Windows XP (KB951066) 1 (KB951066)
install date: 20090226
uninstall cmd: "C:\WINDOWS\$NtUninstallKB951066$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/951066
Mise à jour de sécurité pour Windows XP (KB951376-v2) 2 (KB951376-v2)
install date: 20090227
uninstall cmd: "C:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/951376/ms08-030-vulnerability-in-bluetooth-stack-could-allow-remote-code-exec
Mise à jour de sécurité pour Windows XP (KB951698) 1 (KB951698)
install date: 20090227
uninstall cmd: "C:\WINDOWS\$NtUninstallKB951698$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/951698
Mise à jour de sécurité pour Windows XP (KB951748) 1 (KB951748)
install date: 20090227
uninstall cmd: "C:\WINDOWS\$NtUninstallKB951748$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/951748/ms08-037-description-of-the-security-update-for-dns-in-windows-server
Mise à jour pour Windows XP (KB951978) 1 (KB951978)
install date: 20090301
uninstall cmd: "C:\WINDOWS\$NtUninstallKB951978$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/951978
Mise à jour de sécurité pour Windows XP (KB952004) 1 (KB952004)
install date: 20090422
uninstall cmd: "C:\WINDOWS\$NtUninstallKB952004$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/952004/ms09-012-description-of-the-security-update-for-msdtc-transaction-faci
Mise à jour de sécurité pour Lecteur Windows Media (KB952069) (KB952069_WM9)
install date: 20090227
uninstall cmd: "C:\WINDOWS\$NtUninstallKB952069_WM9$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/952069/ms08-076-description-of-the-security-update-for-windows-media-format-r
Correctif pour Windows XP (KB952287) 1 (KB952287)
install date: 20090227
uninstall cmd: "C:\WINDOWS\$NtUninstallKB952287$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/952287
Mise à jour de sécurité pour Windows XP (KB952954) 1 (KB952954)
install date: 20090227
uninstall cmd: "C:\WINDOWS\$NtUninstallKB952954$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/952954/ms08-046-vulnerabilities-in-microsoft-windows-image-color-management-c
Mise à jour de sécurité pour Lecteur Windows Media 11 (KB954154) (KB954154_WM11)
install date: 20090405
uninstall cmd: "C:\WINDOWS\$NtUninstallKB954154_WM11$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/954154/ms08-054-vulnerability-in-windows-media-player-could-allow-remote-code
Mise à jour de sécurité pour Windows XP (KB954211) 1 (KB954211)
install date: 20090301
uninstall cmd: "C:\WINDOWS\$NtUninstallKB954211$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/954211/ms08-061-vulnerabilities-in-windows-kernel-could-allow-elevation-of-pr
Mise à jour de sécurité pour Windows XP (KB954459) 1 (KB954459)
install date: 20090301
uninstall cmd: "C:\WINDOWS\$NtUninstallKB954459$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/954459/ms08-069-description-of-the-security-update-for-xml-core-services-6-0
Mise à jour de sécurité pour Windows XP (KB954600) 1 (KB954600)
install date: 20090301
uninstall cmd: "C:\WINDOWS\$NtUninstallKB954600$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/954600
Mise à jour de sécurité pour Windows XP (KB955069) 1 (KB955069)
install date: 20090301
uninstall cmd: "C:\WINDOWS\$NtUninstallKB955069$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/955069
Mise à jour pour Windows XP (KB955839) 1 (KB955839)
install date: 20090227
uninstall cmd: "C:\WINDOWS\$NtUninstallKB955839$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/955839
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB956390) 1 (KB956390-IE7)
install date: 20090228
uninstall cmd: "C:\WINDOWS\ie7updates\KB956390-IE7\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/956390
Mise à jour de sécurité pour Windows XP (KB956572) 1 (KB956572)
install date: 20090422
uninstall cmd: "C:\WINDOWS\$NtUninstallKB956572$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/956572/ms09-012-description-of-the-security-update-for-windows-service-isolat
Mise à jour de sécurité pour Windows XP (KB956744) 1 (KB956744)
install date: 20090813
uninstall cmd: "C:\WINDOWS\$NtUninstallKB956744$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/956744/ms09-044-description-of-the-security-update-for-remote-desktop-client
Mise à jour de sécurité pour Windows XP (KB956802) 1 (KB956802)
install date: 20090301
uninstall cmd: "C:\WINDOWS\$NtUninstallKB956802$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/956802
Mise à jour de sécurité pour Windows XP (KB956803) 1 (KB956803)
install date: 20090301
uninstall cmd: "C:\WINDOWS\$NtUninstallKB956803$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/956803/ms08-066-vulnerability-in-the-microsoft-ancillary-function-driver-coul
Mise à jour de sécurité pour Windows XP (KB956841) 1 (KB956841)
install date: 20090301
uninstall cmd: "C:\WINDOWS\$NtUninstallKB956841$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/956841
Mise à jour de sécurité pour Windows XP (KB956844) 1 (KB956844)
install date: 20090909
uninstall cmd: "C:\WINDOWS\$NtUninstallKB956844$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/956844/ms09-046-vulnerability-in-the-dhtml-editing-component-activex-control
Mise à jour de sécurité pour Windows XP (KB957097) 1 (KB957097)
install date: 20090301
uninstall cmd: "C:\WINDOWS\$NtUninstallKB957097$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/957097/ms08-068-vulnerability-in-smb-could-allow-remote-code-execution
Mise à jour de sécurité pour Windows XP (KB958215) 1 (KB958215)
install date: 20090227
uninstall cmd: "C:\WINDOWS\$NtUninstallKB958215$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/958215
Mise à jour de sécurité pour Windows XP (KB958644) 1 (KB958644)
install date: 20090301
uninstall cmd: "C:\WINDOWS\$NtUninstallKB958644$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/958644/ms08-067-vulnerability-in-server-service-could-allow-remote-code-execu
Mise à jour de sécurité pour Windows XP (KB958687) 1 (KB958687)
install date: 20090301
uninstall cmd: "C:\WINDOWS\$NtUninstallKB958687$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/958687/ms09-001-vulnerabilities-in-smb-could-allow-remote-code-execution
Mise à jour de sécurité pour Windows XP (KB958690) 1 (KB958690)
install date: 20090312
uninstall cmd: "C:\WINDOWS\$NtUninstallKB958690$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/958690/ms09-006-vulnerabilities-in-windows-kernel-could-allow-remote-code-exe
Mise à jour de sécurité pour Windows XP (KB959426) 1 (KB959426)
install date: 20090422
uninstall cmd: "C:\WINDOWS\$NtUninstallKB959426$\spuninst\spuninst.exe&qu
Recevant des écrans internet intempestifs, Spybot m'indique que je suis infecté par Hupigon 13 et autres cochonneries.
Mon antivirus G Secure m'envoye des alertes de ce type
Alerte G Data
pavrot.exe tente de modifier la configuration du système
Tentative d'installer un debugger pour l'application nommée au registre clé
-------Rapport SSD --------
--- Search result list ---
Microsoft.Windows.Security.InternetExplorer: [SBI $366713D4] Réglages (Modification du Registre, nothing done)
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN\iexplore.exe
Hupigon13: [SBI $D5A7DCB6] Réglages (Clé du Registre, nothing done)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\regedit.exe
Tradedoubler: Cookie traceur (Internet Explorer: Gilbert) (Cookie, nothing done)
Right Media: Cookie traceur (Internet Explorer: Gilbert) (Cookie, nothing done)
DoubleClick: Cookie traceur (Internet Explorer: Gilbert) (Cookie, nothing done)
--- Spybot - Search & Destroy version: 1.6.2 (build: 20090126) ---
2009-01-26 blindman.exe (1.0.0.8)
2009-01-26 SDFiles.exe (1.6.1.7)
2009-01-26 SDMain.exe (1.0.0.6)
2009-01-26 SDShred.exe (1.0.2.5)
2009-01-26 SDUpdate.exe (1.6.0.12)
2009-01-26 SpybotSD.exe (1.6.2.46)
2009-03-05 TeaTimer.exe (1.6.6.32)
2009-10-07 unins000.exe (51.49.0.0)
2009-01-26 Update.exe (1.6.0.7)
2009-09-07 advcheck.dll (1.6.4.18)
2007-04-02 aports.dll (2.1.0.0)
2008-06-14 DelZip179.dll (1.79.11.1)
2009-01-26 SDHelper.dll (1.6.2.14)
2008-06-19 sqlite3.dll
2009-01-26 Tools.dll (2.1.6.10)
2009-01-16 UninsSrv.dll (1.0.0.0)
2009-05-19 Includes\Adware.sbi (*)
2009-10-06 Includes\AdwareC.sbi (*)
2009-01-22 Includes\Cookies.sbi (*)
2009-08-10 Includes\Dialer.sbi (*)
2009-10-06 Includes\DialerC.sbi (*)
2009-01-22 Includes\HeavyDuty.sbi (*)
2009-05-26 Includes\Hijackers.sbi (*)
2009-10-06 Includes\HijackersC.sbi (*)
2009-09-29 Includes\Keyloggers.sbi (*)
2009-10-06 Includes\KeyloggersC.sbi (*)
2004-11-29 Includes\LSP.sbi (*)
2009-10-06 Includes\Malware.sbi (*)
2009-10-06 Includes\MalwareC.sbi (*)
2009-03-25 Includes\PUPS.sbi (*)
2009-10-06 Includes\PUPSC.sbi (*)
2009-01-22 Includes\Revision.sbi (*)
2009-01-13 Includes\Security.sbi (*)
2009-10-06 Includes\SecurityC.sbi (*)
2008-06-03 Includes\Spybots.sbi (*)
2008-06-03 Includes\SpybotsC.sbi (*)
2009-04-07 Includes\Spyware.sbi (*)
2009-10-06 Includes\SpywareC.sbi (*)
2009-06-08 Includes\Tracks.uti
2009-10-06 Includes\Trojans.sbi (*)
2009-10-06 Includes\TrojansC.sbi (*)
2008-03-04 Plugins\Chai.dll
2008-03-05 Plugins\Fennel.dll
2008-02-26 Plugins\Mate.dll
2007-12-24 Plugins\TCPIPAddress.dll
--- System information ---
Windows XP (Build: 2600) Service Pack 3 (5.1.2600)
/ Windows / SP1: Microsoft Internationalized Domain Names Mitigation APIs
/ Windows / SP1: Microsoft National Language Support Downlevel APIs
/ Windows Media Format 11 SDK: Hotfix for Windows Media Format 11 SDK (KB929399)
/ Windows Media Player: Mise à jour de sécurité pour Lecteur Windows Media (KB952069)
/ Windows Media Player: Mise à jour de sécurité pour Lecteur Windows Media (KB968816)
/ Windows Media Player: Mise à jour de sécurité pour Lecteur Windows Media (KB973540)
/ Windows Media Player 11: Mise à jour de sécurité pour Lecteur Windows Media 11 (KB936782)
/ Windows Media Player 11: Correctif pour Lecteur Windows Media 11 (KB939683)
/ Windows Media Player 11: Mise à jour de sécurité pour Lecteur Windows Media 11 (KB954154)
/ Windows Media Player 11: Mise à jour critique pour Lecteur Windows Media 11 (KB959772)
/ Windows XP: Mise à jour de sécurité pour Windows XP (KB941569)
/ Windows XP / SP0: Mise à jour de sécurité pour Windows Internet Explorer 7 (KB938127-v2)
/ Windows XP / SP0: Mise à jour de sécurité pour Windows Internet Explorer 7 (KB956390)
/ Windows XP / SP0: Mise à jour de sécurité pour Windows Internet Explorer 7 (KB961260)
/ Windows XP / SP0: Mise à jour de sécurité pour Windows Internet Explorer 7 (KB963027)
/ Windows XP / SP0: Mise à jour de sécurité pour Windows Internet Explorer 8 (KB969897)
/ Windows XP / SP0: Mise à jour de sécurité pour Windows Internet Explorer 8 (KB971961)
/ Windows XP / SP0: Mise à jour de sécurité pour Windows Internet Explorer 8 (KB972260)
/ Windows XP / SP10: Microsoft Compression Client Pack 1.0 for Windows XP
/ Windows XP / SP3: Windows XP Service Pack 3
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB923561)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB938464)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB938464-v2)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB946648)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB950760)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB950762)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB950974)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB951066)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB951376-v2)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB951698)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB951748)
/ Windows XP / SP4: Mise à jour pour Windows XP (KB951978)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB952004)
/ Windows XP / SP4: Correctif pour Windows XP (KB952287)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB952954)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB954211)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB954459)
/ Windows XP / SP4: Hotfix for Windows XP (KB954550-v5)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB954600)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB955069)
/ Windows XP / SP4: Mise à jour pour Windows XP (KB955839)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB956572)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB956744)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB956802)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB956803)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB956841)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB956844)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB957097)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB958215)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB958644)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB958687)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB958690)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB959426)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB960225)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB960714)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB960715)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB960803)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB960859)
/ Windows XP / SP4: Correctif pour Windows XP (KB961118)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB961371)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB961373)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB961501)
/ Windows XP / SP4: Mise à jour pour Windows XP (KB967715)
/ Windows XP / SP4: Mise à jour pour Windows XP (KB968389)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB968537)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB969898)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB970238)
/ Windows XP / SP4: Correctif pour Windows XP (KB970653-v3)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB971557)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB971633)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB971657)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB973346)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB973354)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB973507)
/ Windows XP / SP4: Mise à jour pour Windows XP (KB973815)
/ Windows XP / SP4: Mise à jour de sécurité pour Windows XP (KB973869)
--- Startup entries list ---
Located: HK_LM:Run, Adobe Reader Speed Launcher
command: "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
file: C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
size: 35696
MD5: 452FA961163EF4AEE4815796A13AB2CF
Located: HK_LM:Run, Alcmtr
command: ALCMTR.EXE
file: C:\WINDOWS\ALCMTR.EXE
size: 69632
MD5: 8B4CBBA1EA526830C7F97E7822E2493A
Located: HK_LM:Run, Antivirus Protection
command: C:\WINDOWS\system32\pavrot.exe
file: C:\WINDOWS\system32\pavrot.exe
size: 352256
MD5: 7D00126A77F7FFC043A9529547F3B2B6
Located: HK_LM:Run, BDRegion
command: C:\Program Files\Cyberlink\Shared Files\brs.exe
file: C:\Program Files\Cyberlink\Shared Files\brs.exe
size: 75048
MD5: 034265EC1F409EF8748F3FB478356A48
Located: HK_LM:Run, G DATA AntiVirus Trayapplication
command: C:\Program Files\G DATA\InternetSecurity\AVKTray\AVKTray.exe
file: C:\Program Files\G DATA\InternetSecurity\AVKTray\AVKTray.exe
size: 958024
MD5: A1E2D919D5C3D00E628640E9C6E3BBD3
Located: HK_LM:Run, GDFirewallTray
command: C:\Program Files\G DATA\InternetSecurity\Firewall\GDFirewallTray.exe
file: C:\Program Files\G DATA\InternetSecurity\Firewall\GDFirewallTray.exe
size: 1037992
MD5: 744F2F10AD961090D476F44C2C6700B8
Located: HK_LM:Run, InCD
command: D:\Gravure\Nero 6\InCD\InCD.exe
file: D:\Gravure\Nero 6\InCD\InCD.exe
size: 1450094
MD5: 2F7CA1B8AE0F6B34B2A9537F603B0D0A
Located: HK_LM:Run, Malwarebytes Anti-Malware (reboot)
command: "C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript
file: C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe
size: 1312080
MD5: C5FCC0B761069FABD59E41B7C3280DDF
Located: HK_LM:Run, NeroFilterCheck
command: C:\WINDOWS\system32\NeroCheck.exe
file: C:\WINDOWS\system32\NeroCheck.exe
size: 155648
MD5: 3E4C03CEFAD8DE135263236B61A49C90
Located: HK_LM:Run, NvCplDaemon
command: RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
file: C:\WINDOWS\system32\NvCpl.dll
size: 7557120
MD5: 8F5367B6F03624EACB594B2C88CDA667
Located: HK_LM:Run, NvMediaCenter
command: RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
file: C:\WINDOWS\system32\NvMcTray.dll
size: 86016
MD5: B1528BAF7550303F6FD63C2C61BA6DA1
Located: HK_LM:Run, nwiz
command: nwiz.exe /install
file: C:\WINDOWS\system32\nwiz.exe
size: 1519616
MD5: 251AE2EFDE39F8A1440F43276A5DAC8D
Located: HK_LM:Run, ORAHSSSessionManager
command: "C:\Program Files\OrangeHSS\SessionManager\SessionManager.exe"
file: C:\Program Files\OrangeHSS\SessionManager\SessionManager.exe
size: 107248
MD5: 8B625CAD4036DE135B5C1B04233A55DE
Located: HK_LM:Run, PDVD9LanguageShortcut
command: "D:\Video\Power DVD 1\PowerDVD9\Language\Language.exe"
file: D:\Video\Power DVD 1\PowerDVD9\Language\Language.exe
size: 50472
MD5: 2893B99ED36FF1804C9FFA313C095CAA
Located: HK_LM:Run, RemoteControl9
command: "D:\Video\Power DVD 1\PowerDVD9\PDVD9Serv.exe"
file: D:\Video\Power DVD 1\PowerDVD9\PDVD9Serv.exe
size: 87336
MD5: 1640B7D383023BE9085F93F664BB5CA8
Located: HK_LM:Run, RTHDCPL
command: RTHDCPL.EXE
file: C:\WINDOWS\RTHDCPL.EXE
size: 16264192
MD5: 692733BE9E923044CEBC96CF882CCEBE
Located: HK_LM:Run, SBAMTray
command: C:\Program Files\Sunbelt Software\CounterSpy\SBAMTray.exe
file: C:\Program Files\Sunbelt Software\CounterSpy\SBAMTray.exe
size: 685352
MD5: 7319668EC904815512BCC0F6AAF8B72E
Located: HK_LM:Run, SearchSettings
command: C:\Program Files\pdfforge Toolbar\SearchSettings.exe
file: C:\Program Files\pdfforge Toolbar\SearchSettings.exe
size: 970240
MD5: 6E79C2721FE13A134508CB51EC279482
Located: HK_LM:Run, SkyTel
command: SkyTel.EXE
file: C:\WINDOWS\SkyTel.EXE
size: 2879488
MD5: C74B86642F131D76C0EDE673FDF137B2
Located: HK_LM:Run, TrojanScanner
command: C:\Program Files\Trojan Remover\Trjscan.exe /boot
file: C:\Program Files\Trojan Remover\Trjscan.exe
size: 1069960
MD5: 77075A257090C5D4C1AFA66D64F257FE
Located: HK_CU:Run, CTFMON.EXE
where: .DEFAULT...
command: C:\WINDOWS\system32\CTFMON.EXE
file: C:\WINDOWS\system32\CTFMON.EXE
size: 15360
MD5: 59DC5BB82E4C8E0B3EADCFDBC44BA6E4
Located: HK_CU:Run, CTFMON.EXE
where: PE_C_DEFAULT USER...
command: C:\WINDOWS\system32\CTFMON.EXE
file: C:\WINDOWS\system32\CTFMON.EXE
size: 15360
MD5: 59DC5BB82E4C8E0B3EADCFDBC44BA6E4
Located: HK_CU:Run, CTFMON.EXE
where: PE_C_DEFAULT USER.WINDOWS...
command: C:\WINDOWS\system32\CTFMON.EXE
file: C:\WINDOWS\system32\CTFMON.EXE
size: 15360
MD5: 59DC5BB82E4C8E0B3EADCFDBC44BA6E4
Located: HK_CU:Run, CTFMON.EXE
where: PE_C_INFORMAT-REX...
command: C:\WINDOWS\system32\ctfmon.exe
file: C:\WINDOWS\system32\ctfmon.exe
size: 15360
MD5: 59DC5BB82E4C8E0B3EADCFDBC44BA6E4
Located: HK_CU:Run, SpybotSD TeaTimer
where: PE_C_INFORMAT-REX...
command: D:\Sécurité\SpyBot\Spybot - Search & Destroy\TeaTimer.exe
file: D:\Sécurité\SpyBot\Spybot - Search & Destroy\TeaTimer.exe
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!
Located: HK_CU:Run, swg
where: PE_C_INFORMAT-REX...
command: C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
file: C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
size: 68856
MD5: E616A6A6E91B0A86F2F6217CDE835FFE
Located: HK_CU:Run, CTFMON.EXE
where: S-1-5-19...
command: C:\WINDOWS\system32\CTFMON.EXE
file: C:\WINDOWS\system32\CTFMON.EXE
size: 15360
MD5: 59DC5BB82E4C8E0B3EADCFDBC44BA6E4
Located: HK_CU:Run, CTFMON.EXE
where: S-1-5-20...
command: C:\WINDOWS\system32\CTFMON.EXE
file: C:\WINDOWS\system32\CTFMON.EXE
size: 15360
MD5: 59DC5BB82E4C8E0B3EADCFDBC44BA6E4
Located: HK_CU:Run, CTFMON.EXE
where: S-1-5-21-1292428093-1592454029-725345543-1004...
command: C:\WINDOWS\system32\ctfmon.exe
file: C:\WINDOWS\system32\ctfmon.exe
size: 15360
MD5: 59DC5BB82E4C8E0B3EADCFDBC44BA6E4
Located: HK_CU:Run, MSMSGS
where: S-1-5-21-1292428093-1592454029-725345543-1004...
command: "C:\Program Files\Messenger\msmsgs.exe" /background
file: C:\Program Files\Messenger\msmsgs.exe
size: 1695232
MD5: E13EA4860E8F2AA845B53BFD2B6FEC5B
Located: HK_CU:Run, SpybotSD TeaTimer
where: S-1-5-21-1292428093-1592454029-725345543-1004...
command: C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
file: C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
size: 2260480
MD5: 390679F7A217A5E73D756276C40AE887
Located: HK_CU:Run, swg
where: S-1-5-21-1292428093-1592454029-725345543-1004...
command: "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
file: C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
size: 68856
MD5: E616A6A6E91B0A86F2F6217CDE835FFE
Located: HK_CU:Run, uTorrent
where: S-1-5-21-1292428093-1592454029-725345543-1004...
command: "D:\Internet\uTorrent.exe"
file: D:\Internet\uTorrent.exe
size: 288048
MD5: 036B08A28E47478807B56000B8E0E127
Located: HK_CU:Run, CTFMON.EXE
where: S-1-5-21-1292428093-1592454029-725345543-1005...
command: C:\WINDOWS\system32\ctfmon.exe
file: C:\WINDOWS\system32\ctfmon.exe
size: 15360
MD5: 59DC5BB82E4C8E0B3EADCFDBC44BA6E4
Located: HK_CU:Run, swg
where: S-1-5-21-1292428093-1592454029-725345543-1005...
command: C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
file: C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
size: 68856
MD5: E616A6A6E91B0A86F2F6217CDE835FFE
Located: HK_CU:Run, CTFMON.EXE
where: S-1-5-21-1292428093-1592454029-725345543-500...
command: C:\WINDOWS\system32\CTFMON.EXE
file: C:\WINDOWS\system32\CTFMON.EXE
size: 15360
MD5: 59DC5BB82E4C8E0B3EADCFDBC44BA6E4
Located: HK_CU:Run, CTFMON.EXE
where: S-1-5-18...
command: C:\WINDOWS\system32\CTFMON.EXE
file: C:\WINDOWS\system32\CTFMON.EXE
size: 15360
MD5: 59DC5BB82E4C8E0B3EADCFDBC44BA6E4
Located: Démarrage (utilisateur), Adobe Gamma.lnk
where: C:\Documents and Settings\Gilbert\Menu Démarrer\Programmes\Démarrage...
command: C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
file: C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
size: 110592
MD5: 5CD0CD0EC4DC5DF459B3AC016764F5AA
Located: Démarrage (utilisateur), Adobe Gamma.lnk
where: C:\Documents and Settings\INFORMAT-REX\Menu Démarrer\Programmes\Démarrage...
command: C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
file: C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
size: 110592
MD5: 5CD0CD0EC4DC5DF459B3AC016764F5AA
Located: WinLogon, crypt32chain
command: crypt32.dll
file: crypt32.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!
Located: WinLogon, cryptnet
command: cryptnet.dll
file: cryptnet.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!
Located: WinLogon, cscdll
command: cscdll.dll
file: cscdll.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!
Located: WinLogon, dimsntfy
command: %SystemRoot%\System32\dimsntfy.dll
file: %SystemRoot%\System32\dimsntfy.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!
Located: WinLogon, ScCertProp
command: wlnotify.dll
file: wlnotify.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!
Located: WinLogon, Schedule
command: wlnotify.dll
file: wlnotify.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!
Located: WinLogon, sclgntfy
command: sclgntfy.dll
file: sclgntfy.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!
Located: WinLogon, SensLogn
command: WlNotify.dll
file: WlNotify.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!
Located: WinLogon, termsrv
command: wlnotify.dll
file: wlnotify.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!
Located: WinLogon, wlballoon
command: wlnotify.dll
file: wlnotify.dll
size: 0
MD5: D41D8CD98F00B204E9800998ECF8427E
Warning: if the file is actually larger than 0 bytes,
the checksum could not be properly calculated!
--- Browser helper object list ---
{201f27d4-3704-41d6-89c1-aa35e39143ed} (AskBar BHO)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
BHO name: AskBar BHO
CLSID name: AskBar BHO
Path: C:\Program Files\AskBarDis\bar\bin\
Long name: askBar.dll
Short name:
Date (created): 07/10/2009 21:35:26
Date (last access): 09/10/2009 17:20:14
Date (last write): 02/04/2009 12:47:00
Filesize: 333192
Attributes: archive
MD5: 72BB59262D18ABD1C7C646F627D80ED7
CRC32: 0F82567A
Version: 4.1.0.5
{AA58ED58-01DD-4d91-8333-CF10577473F7} (Google Toolbar Helper)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
BHO name:
CLSID name: Google Toolbar Helper
description: Google toolbar
classification: Open for discussion
known filename: googletoolbar.dll<br>googletoolbar*.dll<br>(* = number)<br>googletoolbar_en_*.**-big.dll<br>Googletoolbar_en_*.*.**-deleon.dll
info link: http://www.google.com/intl/fr/toolbar/ie/index.html
info source: TonyKlein
Path: C:\Program Files\Google\Google Toolbar\
Long name: GoogleToolbar_32.dll
Short name: GOOGLE~2.DLL
Date (created): 26/08/2009 18:21:14
Date (last access): 09/10/2009 17:53:42
Date (last write): 26/08/2009 18:09:48
Filesize: 256112
Attributes: archive
MD5: 783AD24A77CD964B9888F27535FCC56E
CRC32: 4A1F3697
Version: 6.2.1815.1002
{AF69DE43-7D58-4638-B6FA-CE66B5AD205D} (Google Toolbar Notifier BHO)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
BHO name:
CLSID name: Google Toolbar Notifier BHO
Path: C:\Program Files\Google\GoogleToolbarNotifier\5.3.4501.1418\
Long name: swg.dll
Short name:
Date (created): 07/10/2009 15:41:12
Date (last access): 09/10/2009 17:53:42
Date (last write): 07/10/2009 15:41:12
Filesize: 762864
Attributes: archive
MD5: 927558FA159FED54852692D729039E67
CRC32: EE7BD555
Version: 5.3.4501.1418
{B922D405-6D13-4A2B-AE89-08A030DA4402} (pdfforge Toolbar)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
BHO name:
CLSID name: pdfforge Toolbar
Path: C:\Program Files\pdfforge Toolbar\
Long name: WidgiToolbarIE.dll
Short name: WIDGIT~1.DLL
Date (created): 04/05/2009 16:32:10
Date (last access): 09/10/2009 17:20:14
Date (last write): 04/05/2009 16:32:10
Filesize: 650752
Attributes: archive
MD5: 0369AFFB46AA2071D04A3FB361EE5BD0
CRC32: 8389EAAF
Version: 1.0.0.18
{C84D72FE-E17D-4195-BB24-76C02E2E7C4E} (Google Dictionary Compression sdch)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
BHO name: Google Dictionary Compression sdch
CLSID name: Google Dictionary Compression sdch
Path: C:\Program Files\Google\Google Toolbar\Component\
Long name: fastsearch_B7C5AC242193BB3E.dll
Short name: FASTSE~1.DLL
Date (created): 26/08/2009 18:09:28
Date (last access): 09/10/2009 17:18:18
Date (last write): 26/08/2009 18:09:28
Filesize: 458736
Attributes: archive
MD5: CB84DFAFF68CD27E840251343B9B8E99
CRC32: E25B2196
Version: 1.0.1801.150
{E312764E-7706-43F1-8DAB-FCDD2B1E416D} (SearchSettings Class)
location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
BHO name:
CLSID name: SearchSettings Class
Path: C:\Program Files\pdfforge Toolbar\
Long name: SearchSettings.dll
Short name: SEARCH~1.DLL
Date (created): 30/03/2009 17:13:06
Date (last access): 09/10/2009 17:20:16
Date (last write): 30/03/2009 17:13:06
Filesize: 1091584
Attributes: archive
MD5: C0713F23F1E14D726DDE41D911CF0E4C
CRC32: 59FCC207
Version: 1.2.1.2
--- ActiveX list ---
{5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control)
DPF name:
CLSID name: BDSCANONLINE Control
Installer: C:\WINDOWS\Downloaded Program Files\oscan8.inf
Codebase: http://www.bitdefender.fr/scan_fr/scan8/oscan8.cab
description:
classification: Legitimate
known filename: oscan8.ocx
info link:
info source: Safer Networking Ltd.
Path: C:\WINDOWS\DOWNLO~1\
Long name: oscan8.ocx
Short name:
Date (created): 25/10/2007 16:54:18
Date (last access): 09/10/2009 17:59:20
Date (last write): 25/10/2007 16:54:18
Filesize: 471040
Attributes: archive
MD5: BC4E154A06C9208EF36669B1B9E5FDAD
CRC32: DF08A08D
Version: 1.0.0.1
{CB50428B-657F-47DF-9B32-671F82AA73F7} (Photodex Presenter AX control)
DPF name:
CLSID name: Photodex Presenter AX control
Installer: C:\WINDOWS\Downloaded Program Files\pxplay.inf
Codebase: http://www.photodex.com/pxplay.cab
description:
classification: Open for discussion
known filename: pxplay.ocx
info link:
info source: Safer Networking Ltd.
Path: C:\PROGRA~1\PHOTOD~1\
Long name: pxplay.ocx
Short name:
Date (created): 13/09/2007 20:19:30
Date (last access): 09/10/2009 17:59:20
Date (last write): 01/03/2009 22:06:18
Filesize: 292160
Attributes: archive
MD5: E2BA5A59827D19078A4CA58EFD41807C
CRC32: A9E06657
Version: 4.0.0.2442
--- Process list ---
PID: 0 ( 0) [System]
PID: 764 ( 4) \SystemRoot\System32\smss.exe
size: 50688
PID: 824 ( 764) \??\C:\WINDOWS\system32\csrss.exe
size: 6144
PID: 848 ( 764) \??\C:\WINDOWS\system32\winlogon.exe
size: 512000
PID: 892 ( 848) C:\WINDOWS\system32\services.exe
size: 111104
MD5: C3FB1D70CB88722267949694BA51759E
PID: 904 ( 848) C:\WINDOWS\system32\lsass.exe
size: 13312
MD5: 91E6024D6D4DCDECDB36C43ECF9BBECB
PID: 1064 ( 892) C:\WINDOWS\system32\svchost.exe
size: 14336
MD5: E4BDF223CD75478BF44567B4D5C2634D
PID: 1112 ( 892) C:\WINDOWS\system32\svchost.exe
size: 14336
MD5: E4BDF223CD75478BF44567B4D5C2634D
PID: 1152 ( 892) C:\WINDOWS\System32\svchost.exe
size: 14336
MD5: E4BDF223CD75478BF44567B4D5C2634D
PID: 1180 ( 892) D:\Gravure\Nero 6\InCD\InCDsrv.exe
size: 1192048
MD5: 0359EAFFBEDB614E485C663F51E6F3E1
PID: 1404 ( 892) C:\WINDOWS\system32\svchost.exe
size: 14336
MD5: E4BDF223CD75478BF44567B4D5C2634D
PID: 1428 ( 892) C:\WINDOWS\system32\svchost.exe
size: 14336
MD5: E4BDF223CD75478BF44567B4D5C2634D
PID: 1660 ( 892) C:\WINDOWS\system32\spoolsv.exe
size: 57856
MD5: 460E4CE148BD07218DA0B6A3D31885A9
PID: 1740 ( 892) C:\WINDOWS\system32\svchost.exe
size: 14336
MD5: E4BDF223CD75478BF44567B4D5C2634D
PID: 1772 ( 892) D:\Sécurité\a-squared Free\a2service.exe
size: 366712
MD5: D8ADF0518C336ABC6FA49412DC9DE141
PID: 1820 ( 892) C:\Program Files\Fichiers communs\G DATA\AVKProxy\AVKProxy.exe
size: 1016904
MD5: C6A5552CEBF7D1399194C7C44482C35C
PID: 1836 ( 892) C:\Program Files\G DATA\InternetSecurity\AVK\AVKService.exe
size: 386120
MD5: D58EC89617D3A8DA9185EAA19C930397
PID: 1856 ( 892) C:\Program Files\G DATA\InternetSecurity\AVK\AVKWCtl.exe
size: 1185496
MD5: 690468933B8D00B66EF5DB73150F96EA
PID: 1908 ( 892) C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
size: 65536
MD5: 20DFB4BD5DE8585FDDA02F4C9D00308C
PID: 1968 ( 892) C:\WINDOWS\system32\nvsvc32.exe
size: 143426
MD5: CDE37723E151F52F63A76E92BC19780B
PID: 2016 ( 892) C:\Program Files\Sunbelt Software\CounterSpy\SBAMSvc.exe
size: 1012040
MD5: 95D0F537C781B880799B7960912260B3
PID: 228 ( 892) C:\Program Files\Spyware Terminator\sp_rsser.exe
size: 487424
MD5: AA21CF891D0D8248ECA1E9BA201ACBEF
PID: 264 ( 892) C:\WINDOWS\system32\svchost.exe
size: 14336
MD5: E4BDF223CD75478BF44567B4D5C2634D
PID: 1360 ( 892) C:\WINDOWS\System32\alg.exe
size: 44544
MD5: 5E9A6658A2A69AE7EB195113B7A2E7A9
PID: 1608 ( 892) C:\Program Files\G DATA\InternetSecurity\Firewall\GDFwSvc.exe
size: 1407976
MD5: A681EA5027B9638F8CBFBD25CC5F6420
PID: 2380 (2344) C:\WINDOWS\Explorer.EXE
size: 1037824
MD5: F2317622D29F9FF0F88AEECD5F60F0DD
PID: 3224 (2380) D:\Gravure\Nero 6\InCD\InCD.exe
size: 1450094
MD5: 2F7CA1B8AE0F6B34B2A9537F603B0D0A
PID: 3332 (2380) C:\WINDOWS\RTHDCPL.EXE
size: 16264192
MD5: 692733BE9E923044CEBC96CF882CCEBE
PID: 3380 (2380) C:\WINDOWS\system32\RUNDLL32.EXE
size: 33792
MD5: 93AD0B78C7357A05F50E594EC7C22300
PID: 3396 (2380) D:\Video\Power DVD 1\PowerDVD9\PDVD9Serv.exe
size: 87336
MD5: 1640B7D383023BE9085F93F664BB5CA8
PID: 3416 (2380) C:\Program Files\Cyberlink\Shared Files\brs.exe
size: 75048
MD5: 034265EC1F409EF8748F3FB478356A48
PID: 3520 (2380) C:\Program Files\G DATA\InternetSecurity\Firewall\GDFirewallTray.exe
size: 1037992
MD5: 744F2F10AD961090D476F44C2C6700B8
PID: 3556 (2380) C:\Program Files\G DATA\InternetSecurity\AVKTray\AVKTray.exe
size: 958024
MD5: A1E2D919D5C3D00E628640E9C6E3BBD3
PID: 3592 (2380) C:\WINDOWS\system32\pavrot.exe
size: 352256
MD5: 7D00126A77F7FFC043A9529547F3B2B6
PID: 3740 (3696) C:\Program Files\OrangeHSS\Launcher\Launcher.exe
size: 602864
MD5: 3249EB15DFC4E07E6971C666E3711D18
PID: 3768 (2380) C:\Program Files\Sunbelt Software\CounterSpy\SBAMTray.exe
size: 685352
MD5: 7319668EC904815512BCC0F6AAF8B72E
PID: 3780 (3592) C:\WINDOWS\msprav.exe
size: 352256
MD5: A82E73A06933F07058E308262FBBE796
PID: 3788 (2380) C:\WINDOWS\system32\ctfmon.exe
size: 15360
MD5: 59DC5BB82E4C8E0B3EADCFDBC44BA6E4
PID: 3796 (2380) C:\Program Files\Messenger\msmsgs.exe
size: 1695232
MD5: E13EA4860E8F2AA845B53BFD2B6FEC5B
PID: 3820 (2380) C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
size: 68856
MD5: E616A6A6E91B0A86F2F6217CDE835FFE
PID: 3892 (2380) C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
size: 2260480
MD5: 390679F7A217A5E73D756276C40AE887
PID: 3908 (2380) D:\Internet\uTorrent.exe
size: 288048
MD5: 036B08A28E47478807B56000B8E0E127
PID: 3944 (1064) C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\AlertModule\2\AlertModule.exe
size: 90112
MD5: 66C25F8876357948D480FD7625A8B84E
PID: 4076 (3740) C:\Program Files\OrangeHSS\systray\systrayapp.exe
size: 147456
MD5: DBE1C76A41A7420277E41EABB15A7BFE
PID: 4092 (3740) C:\Program Files\OrangeHSS\connectivity\connectivitymanager.exe
size: 712704
MD5: A4C96A5BD0FF75926EF09873764187BD
PID: 408 (4092) C:\Program Files\OrangeHSS\connectivity\CoreCom\CoreCom.exe
size: 364544
MD5: E57908F55D26E60F929DA530FE4FFAB0
PID: 2092 ( 408) C:\Program Files\OrangeHSS\connectivity\CoreCom\OraConfigRecover.exe
size: 28672
MD5: 823FD44EB11A91578923D0F0702D75B8
PID: 1584 (1064) C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTCOMModule\1\FTCOMModule.exe
size: 65536
MD5: 261359D05A7FBF6E87335675AD902D47
PID: 1808 (1064) C:\WINDOWS\system32\wbem\wmiprvse.exe
size: 227840
MD5: 798A9E6828997EEF4517ADA8A2259831
PID: 3624 (1152) C:\WINDOWS\system32\wuauclt.exe
size: 51224
MD5: E654B78D2F1D791B30D0ED9A8195EC22
PID: 7628 (2380) C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe
size: 5365592
MD5: 0477C2F9171599CA5BC3307FDFBA8D89
PID: 4 ( 0) System
PID: 7364 (3592) C:\WINDOWS\iexplore.exe
size: 334848
MD5: EB7AF43F5DBEBA335CB0388FA546BCB2
--- Browser start & search pages list ---
Spybot - Search & Destroy browser pages report, 09/10/2009 18:00:33
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Local Page
C:\WINDOWS\system32\blank.htm
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Search Page
https://www.google.com/?gws_rd=ssl
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Search Bar
https://www.orange.fr/portail?kw=
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Start Page
www.orange.fr
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search\SearchAssistant
http://www.google.com/toolbar/ie8/sidebar.html
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl\@
http://www.google.com/search?q=%s
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Local Page
%SystemRoot%\system32\blank.htm
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Search Page
https://www.msn.com/fr-fr/
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Search Bar
https://www.bing.com/?toHttps=1&redig=8F3F334EA60E4B1CB4D040DCFE393A89{SUB_RFC1766}/srchasst/srchasst.htm
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Start Page
https://www.msn.com/fr-fr/
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Page_URL
https://www.msn.com/fr-fr/?ocid=iehp
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Search_URL
https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\SearchAssistant
http://www.crawler.com/search/ie.aspx?tb_id=60347
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\SearchAssistant
http://www.crawler.com/search/ie.aspx?tb_id=60347
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\CustomizeSearch
http://dnl.crawler.com/support/sa_customize.aspx?TbId=60347
--- Winsock Layered Service Provider list ---
--- Uninstall list ---
7-Zip 4.65 (7-Zip)
uninstall cmd: "D:\Compression Décompression\7-Zip\Uninstall.exe"
Adobe Flash Player 10 ActiveX 10.0.22.87 (Adobe Flash Player ActiveX)
uninstall cmd: C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
publisher: Adobe Systems Incorporated
help link: https://helpx.adobe.com/flash-player.html
Adobe Flash Player 10 Plugin 10.0.32.18 (Adobe Flash Player Plugin)
uninstall cmd: C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
publisher: Adobe Systems Incorporated
Adobe Photoshop CS2 9.0 (Adobe Photoshop CS2 - {236BB7C4-4419-42FD-040C-1E257A25E34D})
version: 9
version (major): 9
install location: D:\Photos\Photoshop CS 2\
uninstall cmd: msiexec /I {236BB7C4-4419-42FD-040C-1E257A25E34D}
publisher: Adobe Systems, Inc.
comments:
contact: Service support clientèle
help link: https://helpx.adobe.com/support.html
help telephone: +1-555-555-4505
Ask Toolbar 4.1.0.5 (Ask Toolbar_is1)
install date: 20091007
install location: C:\Program Files\AskBarDis\
uninstall cmd: "C:\Program Files\AskBarDis\unins000.exe"
publisher: Ask.com
help link: http://about.ask.com/en/toolbar/toolbarv/faq.html
Audacity 1.2.6 (Audacity_is1)
install location: D:\Musique\Audacity\Audacity\
uninstall cmd: "D:\Musique\Audacity\Audacity\unins000.exe"
help link: https://sourceforge.net/projects/audacity/
(Branding)
Canon PIXMA iP5000 (CANONBJ_Deinstall_CNMCP6d.DLL)
uninstall cmd: C:\WINDOWS\system32\CNMCP6d.exe "-PRINTERNAMECanon PIXMA iP5000" "-HELPERDLLC:\BJPrinter\CNMWINDOWS\Canon PIXMA iP5000 Installer\Inst2\cnmis.dll" "-RCDLLC:\BJPrinter\CNMWINDOWS\Canon PIXMA iP5000 Installer\Inst2\cnmi040c.dll"
CATraxx (CATraxx_is1)
install date: 20090329
install location: D:\Musique\CA Traxx New\
uninstall cmd: "D:\Musique\CA Traxx New\Uninstall\unins000.exe"
publisher: FNProgramvare
CCleaner (remove only) (CCleaner)
uninstall cmd: "D:\Gestion du micro\1C Cleaner\CCleaner\uninst.exe"
publisher: Piriform
(Connection Manager)
DVD Audio Extractor 2.0.1 (DVD Audio Extractor_is1)
install location: C:\Program Files\DVD Audio Extractor\
uninstall cmd: "C:\Program Files\DVD Audio Extractor\unins000.exe"
publisher: Computer Application Studio
help link: http://www.castudio.org/dvdaudioextractor/
DxO Optics Pro v4.0 .0 (DxO Optics Pro v4)
uninstall cmd: D:\Photos\DxO1\DxO Optics Pro v4\uninst.exe
publisher: DxO Labs
Canon Utilities Easy-PhotoPrint (Easy-PhotoPrint)
uninstall cmd: D:\Bureautique\Imprimant Canon IP 5000\Easy-PhotoPrint\uninst.exe D:\Bureautique\Imprimant Canon IP 5000\Easy-PhotoPrint\uninst.ini
Easy-WebPrint (Easy-WebPrint)
uninstall cmd: C:\WINDOWS\IsUn040c.exe -f"D:\Bureautique\Imprimant Canon IP 5000\Easy-WebPrint\Uninst.isu"
eMule (eMule)
uninstall cmd: "D:\Internet\Emule\Uninstall.exe"
Free Mp3 Wma Converter V 1.81 (Free Mp3 Wma Converter_is1)
install date: 20090531
install location: D:\Musique Conversion\Free Audio Pack\
uninstall cmd: "D:\Musique Conversion\Free Audio Pack\unins000.exe"
help link: https://torchbrowser.com/
Outil de mise à jour Google 2.4.1601.7122 (Google Updater)
version (major): 2
version (minor): 4
install location: C:\Program Files\Google\Google Updater
uninstall cmd: "C:\Program Files\Google\Google Updater\GoogleUpdater.exe" -uninstall
publisher: Google Inc.
help link: http://pack.google.com:80/pack-support?hl=fr&gl=fr
HijackThis 2.0.2 2.0.2 (HijackThis)
uninstall cmd: "C:\Program Files\Trend Micro\HijackThis\HijackThis.exe" /uninstall
publisher: TrendMicro
Microsoft Internationalized Domain Names Mitigation APIs (IDNMitigationAPIs)
install date: 20090228
uninstall cmd: "C:\WINDOWS\$NtServicePackUninstallIDNMitigationAPIs$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
Windows Internet Explorer 8 20090308.140743 (ie8)
install date: 20090605
uninstall cmd: "C:\WINDOWS\ie8\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/office/internet-explorer-help-23360e49-9cd3-4dda-ba52-705336cc0de2?ui=en-US&rs=en-001&ad=US
(InCD!UninstallKey)
uninstall cmd: C:\WINDOWS\NuNInst.exe /UNINSTALL
(InstallShield Uninstall Information)
VIA Platform Device Manager 1.13 (InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169})
version: 17629184
version (major): 1
version (minor): 13
install date: 20090222
install source: E:\Drivers\VIA\ChipSet\
uninstall cmd: C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{20D4A895-748C-4D88-871C-FDB1695B0169}
publisher: VIA Technologies, Inc.
comments: VIA Hyperion Pro Setup Program
contact: http://forums.viaarena.com/
help link: http://www.viaarena.com/
help telephone: NULL
readme: NULL
CyberLink PowerDVD 9 9.0.1501 (InstallShield_{A8516AC9-AAF1-47F9-9766-03E2D4CDBCF8})
version: 150994944
version (major): 9
estimated size: 196844
install date: 20090516
install location: D:\Video\Power DVD 1\PowerDVD9\
install source: C:\Documents and Settings\Gilbert\Mes documents\Décompress\Nouveau dossier\CyberLink_PowerDVD9_Ultra_setup\
uninstall cmd: "C:\Program Files\InstallShield Installation Information\{A8516AC9-AAF1-47F9-9766-03E2D4CDBCF8}\setup.exe" /z-uninstall
publisher: CyberLink Corp.
help link: https://www.cyberlink.com/support/index.html
help telephone: +886-2-86671298
(KB884267)
(KB885353)
(KB886612)
(KB887078)
(KB887626)
High Definition Audio Driver Package - KB888111 20040219.000000 (KB888111WXPSP2)
uninstall cmd: "C:\WINDOWS\$NtUninstallKB888111WXPSP2$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us
(KB888656)
(KB889858)
(KB891122)
(KB892313)
(KB893240)
(KB893241)
(KB895181)
(KB895316)
(KB895572)
(KB897586)
(KB898549)
(KB900399)
(KB902344)
(KB907658)
(KB911565)
(KB911854)
Mise à jour de sécurité pour Windows XP (KB923561) 1 (KB923561)
install date: 20090422
uninstall cmd: "C:\WINDOWS\$NtUninstallKB923561$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/923561/ms09-010-description-of-the-update-for-windows-wordpad-converter-april
Hotfix for Windows Media Format 11 SDK (KB929399) (KB929399)
install date: 20090405
uninstall cmd: "C:\WINDOWS\$NtUninstallKB929399$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/929399
Mise à jour de sécurité pour Lecteur Windows Media 11 (KB936782) (KB936782_WMP11)
install date: 20090405
uninstall cmd: "C:\WINDOWS\$NtUninstallKB936782_WMP11$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/936782/ms07-047-vulnerability-in-windows-media-player-could-allow-remote-code
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB938127-v2) 2 (KB938127-v2-IE7)
install date: 20090301
uninstall cmd: "C:\WINDOWS\ie7updates\KB938127-v2-IE7\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/938127
Mise à jour de sécurité pour Windows XP (KB938464) 1 (KB938464)
install date: 20090226
uninstall cmd: "C:\WINDOWS\$NtUninstallKB938464$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/938464/ms08-052-description-of-the-security-update-for-gdi-for-all-editions-o
Mise à jour de sécurité pour Windows XP (KB938464-v2) 2 (KB938464-v2)
install date: 20090312
uninstall cmd: "C:\WINDOWS\$NtUninstallKB938464-v2$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/938464/ms08-052-description-of-the-security-update-for-gdi-for-all-editions-o
Correctif pour Lecteur Windows Media 11 (KB939683) (KB939683)
install date: 20090405
uninstall cmd: "C:\WINDOWS\$NtUninstallKB939683$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/939683
Mise à jour de sécurité pour Windows XP (KB941569) (KB941569)
install date: 20090405
uninstall cmd: "C:\WINDOWS\$NtUninstallKB941569$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/941569/ms07-068-vulnerability-in-windows-media-file-format-could-allow-remote
Mise à jour de sécurité pour Windows XP (KB946648) 1 (KB946648)
install date: 20090227
uninstall cmd: "C:\WINDOWS\$NtUninstallKB946648$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/946648
Mise à jour de sécurité pour Windows XP (KB950760) 1 (KB950760)
install date: 20090226
uninstall cmd: "C:\WINDOWS\$NtUninstallKB950760$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/950760/ms08-032-critical-security-update-of-activex-kill-bits
Mise à jour de sécurité pour Windows XP (KB950762) 1 (KB950762)
install date: 20090227
uninstall cmd: "C:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/950762/ms08-036-vulnerabilities-in-pragmatic-general-multicast-pgm-could-allo
Mise à jour de sécurité pour Windows XP (KB950974) 1 (KB950974)
install date: 20090227
uninstall cmd: "C:\WINDOWS\$NtUninstallKB950974$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/950974/ms08-049-vulnerability-in-event-system-could-allow-remote-code-executi
Mise à jour de sécurité pour Windows XP (KB951066) 1 (KB951066)
install date: 20090226
uninstall cmd: "C:\WINDOWS\$NtUninstallKB951066$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/951066
Mise à jour de sécurité pour Windows XP (KB951376-v2) 2 (KB951376-v2)
install date: 20090227
uninstall cmd: "C:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/951376/ms08-030-vulnerability-in-bluetooth-stack-could-allow-remote-code-exec
Mise à jour de sécurité pour Windows XP (KB951698) 1 (KB951698)
install date: 20090227
uninstall cmd: "C:\WINDOWS\$NtUninstallKB951698$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/951698
Mise à jour de sécurité pour Windows XP (KB951748) 1 (KB951748)
install date: 20090227
uninstall cmd: "C:\WINDOWS\$NtUninstallKB951748$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/951748/ms08-037-description-of-the-security-update-for-dns-in-windows-server
Mise à jour pour Windows XP (KB951978) 1 (KB951978)
install date: 20090301
uninstall cmd: "C:\WINDOWS\$NtUninstallKB951978$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/951978
Mise à jour de sécurité pour Windows XP (KB952004) 1 (KB952004)
install date: 20090422
uninstall cmd: "C:\WINDOWS\$NtUninstallKB952004$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/952004/ms09-012-description-of-the-security-update-for-msdtc-transaction-faci
Mise à jour de sécurité pour Lecteur Windows Media (KB952069) (KB952069_WM9)
install date: 20090227
uninstall cmd: "C:\WINDOWS\$NtUninstallKB952069_WM9$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/952069/ms08-076-description-of-the-security-update-for-windows-media-format-r
Correctif pour Windows XP (KB952287) 1 (KB952287)
install date: 20090227
uninstall cmd: "C:\WINDOWS\$NtUninstallKB952287$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/952287
Mise à jour de sécurité pour Windows XP (KB952954) 1 (KB952954)
install date: 20090227
uninstall cmd: "C:\WINDOWS\$NtUninstallKB952954$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/952954/ms08-046-vulnerabilities-in-microsoft-windows-image-color-management-c
Mise à jour de sécurité pour Lecteur Windows Media 11 (KB954154) (KB954154_WM11)
install date: 20090405
uninstall cmd: "C:\WINDOWS\$NtUninstallKB954154_WM11$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/954154/ms08-054-vulnerability-in-windows-media-player-could-allow-remote-code
Mise à jour de sécurité pour Windows XP (KB954211) 1 (KB954211)
install date: 20090301
uninstall cmd: "C:\WINDOWS\$NtUninstallKB954211$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/954211/ms08-061-vulnerabilities-in-windows-kernel-could-allow-elevation-of-pr
Mise à jour de sécurité pour Windows XP (KB954459) 1 (KB954459)
install date: 20090301
uninstall cmd: "C:\WINDOWS\$NtUninstallKB954459$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/954459/ms08-069-description-of-the-security-update-for-xml-core-services-6-0
Mise à jour de sécurité pour Windows XP (KB954600) 1 (KB954600)
install date: 20090301
uninstall cmd: "C:\WINDOWS\$NtUninstallKB954600$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/954600
Mise à jour de sécurité pour Windows XP (KB955069) 1 (KB955069)
install date: 20090301
uninstall cmd: "C:\WINDOWS\$NtUninstallKB955069$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/955069
Mise à jour pour Windows XP (KB955839) 1 (KB955839)
install date: 20090227
uninstall cmd: "C:\WINDOWS\$NtUninstallKB955839$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/955839
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB956390) 1 (KB956390-IE7)
install date: 20090228
uninstall cmd: "C:\WINDOWS\ie7updates\KB956390-IE7\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/956390
Mise à jour de sécurité pour Windows XP (KB956572) 1 (KB956572)
install date: 20090422
uninstall cmd: "C:\WINDOWS\$NtUninstallKB956572$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/956572/ms09-012-description-of-the-security-update-for-windows-service-isolat
Mise à jour de sécurité pour Windows XP (KB956744) 1 (KB956744)
install date: 20090813
uninstall cmd: "C:\WINDOWS\$NtUninstallKB956744$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/956744/ms09-044-description-of-the-security-update-for-remote-desktop-client
Mise à jour de sécurité pour Windows XP (KB956802) 1 (KB956802)
install date: 20090301
uninstall cmd: "C:\WINDOWS\$NtUninstallKB956802$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/956802
Mise à jour de sécurité pour Windows XP (KB956803) 1 (KB956803)
install date: 20090301
uninstall cmd: "C:\WINDOWS\$NtUninstallKB956803$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/956803/ms08-066-vulnerability-in-the-microsoft-ancillary-function-driver-coul
Mise à jour de sécurité pour Windows XP (KB956841) 1 (KB956841)
install date: 20090301
uninstall cmd: "C:\WINDOWS\$NtUninstallKB956841$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/956841
Mise à jour de sécurité pour Windows XP (KB956844) 1 (KB956844)
install date: 20090909
uninstall cmd: "C:\WINDOWS\$NtUninstallKB956844$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/956844/ms09-046-vulnerability-in-the-dhtml-editing-component-activex-control
Mise à jour de sécurité pour Windows XP (KB957097) 1 (KB957097)
install date: 20090301
uninstall cmd: "C:\WINDOWS\$NtUninstallKB957097$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/957097/ms08-068-vulnerability-in-smb-could-allow-remote-code-execution
Mise à jour de sécurité pour Windows XP (KB958215) 1 (KB958215)
install date: 20090227
uninstall cmd: "C:\WINDOWS\$NtUninstallKB958215$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/958215
Mise à jour de sécurité pour Windows XP (KB958644) 1 (KB958644)
install date: 20090301
uninstall cmd: "C:\WINDOWS\$NtUninstallKB958644$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/958644/ms08-067-vulnerability-in-server-service-could-allow-remote-code-execu
Mise à jour de sécurité pour Windows XP (KB958687) 1 (KB958687)
install date: 20090301
uninstall cmd: "C:\WINDOWS\$NtUninstallKB958687$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/958687/ms09-001-vulnerabilities-in-smb-could-allow-remote-code-execution
Mise à jour de sécurité pour Windows XP (KB958690) 1 (KB958690)
install date: 20090312
uninstall cmd: "C:\WINDOWS\$NtUninstallKB958690$\spuninst\spuninst.exe"
publisher: Microsoft Corporation
help link: https://support.microsoft.com/en-us/help/958690/ms09-006-vulnerabilities-in-windows-kernel-could-allow-remote-code-exe
Mise à jour de sécurité pour Windows XP (KB959426) 1 (KB959426)
install date: 20090422
uninstall cmd: "C:\WINDOWS\$NtUninstallKB959426$\spuninst\spuninst.exe&qu
A voir également:
- Help Hupigon 13 et debugger fou
- Redmi note 13 5g test - Accueil - Téléphones
- Fifa 13 apk - Télécharger - Jeux vidéo
- 06 13 ✓ - Forum Orange
- 13 megapixel - Forum Loisirs / Divertissements
- Désactiver capteur de proximité xiaomi redmi note 13 ✓ - Forum Xiaomi
21 réponses
maupas
Messages postés
20
Date d'inscription
jeudi 8 octobre 2009
Statut
Membre
Dernière intervention
19 octobre 2009
19 oct. 2009 à 21:20
19 oct. 2009 à 21:20
Bonjour,
J'avais déjà fait la purge de la restauration système.
Kaspersky online ne semble plus proposé.
J'ai repassé Spybot et Hupigon 13 a disparu, seulement des cookies. Après un 2ème passage, il ne reste rien Quant à Malware bite il ne signale plus aucun malware.
Les pop up ont disparu et l'alerte debugger aussi.
Cela semble aller mieux. Pour le moment, le PC fonctionne normalement. Comment être sûr que la machine est réellement clean?
A + et merci
J'avais déjà fait la purge de la restauration système.
Kaspersky online ne semble plus proposé.
J'ai repassé Spybot et Hupigon 13 a disparu, seulement des cookies. Après un 2ème passage, il ne reste rien Quant à Malware bite il ne signale plus aucun malware.
Les pop up ont disparu et l'alerte debugger aussi.
Cela semble aller mieux. Pour le moment, le PC fonctionne normalement. Comment être sûr que la machine est réellement clean?
A + et merci
21 oct. 2009 à 21:12
Comme proposé au post précedent ;fait un scan en ligne avec kaspersky ou bitdefender.
Et poste ensuite le rapport.Si ce dernier est propre ,je pense que tout souci est écarté.
Tiens moi au courant
Merci et @+