C'EST GRAVE !!
Résolu/Fermé59 réponses
Utilisateur anonyme
27 oct. 2009 à 10:01
27 oct. 2009 à 10:01
salut :
Desactive ton antivirus le temps de la manip ainsi que ton parefeu si présent
▶ Télécharge List&Kill'em et enregistre le sur ton bureau
Il ne necessite pas d'installation
▶double clic (clic droit "executer en tant qu'administrateur" pour Vista) pour lancer le scan
choisis la langue puis choisis l'option 1 = Mode Recherche
▶laisse travailler l'outil
le rapport va s'afficher , une fois le scan fini
▶colle le contenu dans ta prochaine réponse
Desactive ton antivirus le temps de la manip ainsi que ton parefeu si présent
▶ Télécharge List&Kill'em et enregistre le sur ton bureau
Il ne necessite pas d'installation
▶double clic (clic droit "executer en tant qu'administrateur" pour Vista) pour lancer le scan
choisis la langue puis choisis l'option 1 = Mode Recherche
▶laisse travailler l'outil
le rapport va s'afficher , une fois le scan fini
▶colle le contenu dans ta prochaine réponse
Utilisateur anonyme
27 oct. 2009 à 10:31
27 oct. 2009 à 10:31
bien...ben on essaiera de soigner ca ;)
re bonsoir gen-hackman
je viens de rentrer mon ordi fonctionne normalement pour l'instant , je verrais demain en le rallumant !
ce serait gentil si tu ne fermais pas cette convesation ! merci !
je me suis inscrit comme membre , on se retrouve demain si tu veux bien et si l'ordi recommence !!
bonne nuit
je viens de rentrer mon ordi fonctionne normalement pour l'instant , je verrais demain en le rallumant !
ce serait gentil si tu ne fermais pas cette convesation ! merci !
je me suis inscrit comme membre , on se retrouve demain si tu veux bien et si l'ordi recommence !!
bonne nuit
Utilisateur anonyme
27 oct. 2009 à 17:04
27 oct. 2009 à 17:04
ok no souci
buckhulk
Messages postés
13690
Date d'inscription
dimanche 21 septembre 2008
Statut
Contributeur
Dernière intervention
14 novembre 2020
1 756
27 oct. 2009 à 22:53
27 oct. 2009 à 22:53
au fait gen-hackman,
parfois j'a ça qui s'affiche :
windows-mémoire virtuelle minimale insuffisante
votre système manque de mémoire virtuelle , windows augmente la taille de votre fichier de pagination de mémoire virtuelle .
durant cete opération des demandes de mémoire pour certaine applications porront être refusées .
pour plus d'information consulter : .......
c'est quoi la mémoire cirtuelle et pourquoi j'en manque par moment ??
j'ai :
mémoire pysique :
- total : 894
- utilisée : 587
-disponible: 306
- utilisation : 66%
Zone de swap :
- total : 2170
- utilisée : 1035
-disponible : 865
- utilisation : 60%
mémoire virtuelle :
- total : 3064
- utilisée : 1882
- disponible : 1182
- utilisation : 62 %
Physical aAddresse Extention (PAE)
supporté par système d'exploitation : oui
supporté par le processeur : oui
active : non
j'ai eu ces informations par le logiciel EVEREST Home Edition !
peux-tu m'en dire un peu plus ???
merci
parfois j'a ça qui s'affiche :
windows-mémoire virtuelle minimale insuffisante
votre système manque de mémoire virtuelle , windows augmente la taille de votre fichier de pagination de mémoire virtuelle .
durant cete opération des demandes de mémoire pour certaine applications porront être refusées .
pour plus d'information consulter : .......
c'est quoi la mémoire cirtuelle et pourquoi j'en manque par moment ??
j'ai :
mémoire pysique :
- total : 894
- utilisée : 587
-disponible: 306
- utilisation : 66%
Zone de swap :
- total : 2170
- utilisée : 1035
-disponible : 865
- utilisation : 60%
mémoire virtuelle :
- total : 3064
- utilisée : 1882
- disponible : 1182
- utilisation : 62 %
Physical aAddresse Extention (PAE)
supporté par système d'exploitation : oui
supporté par le processeur : oui
active : non
j'ai eu ces informations par le logiciel EVEREST Home Edition !
peux-tu m'en dire un peu plus ???
merci
buckhulk
Messages postés
13690
Date d'inscription
dimanche 21 septembre 2008
Statut
Contributeur
Dernière intervention
14 novembre 2020
1 756
27 oct. 2009 à 21:22
27 oct. 2009 à 21:22
bonsoir ,
écoute , pour l'instant ça marche , j'ai démaré mon ordi plusieurs fois et cela ne le fait plus , mais je pense que c'est parcequ'hier j'ai , sans le vouloir vraiment ,suprimé un virus qui s'était mis un peu partout !!
en effet j'avais gardé le mot de passe et le pseudo que j'avais choisit pour un site de cul dans mon programme de Roboform (qui mémorise tous les mots de passe ) !
enfin pour l'instant pas de problème merci !
écoute , pour l'instant ça marche , j'ai démaré mon ordi plusieurs fois et cela ne le fait plus , mais je pense que c'est parcequ'hier j'ai , sans le vouloir vraiment ,suprimé un virus qui s'était mis un peu partout !!
en effet j'avais gardé le mot de passe et le pseudo que j'avais choisit pour un site de cul dans mon programme de Roboform (qui mémorise tous les mots de passe ) !
enfin pour l'instant pas de problème merci !
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
buckhulk
Messages postés
13690
Date d'inscription
dimanche 21 septembre 2008
Statut
Contributeur
Dernière intervention
14 novembre 2020
1 756
28 oct. 2009 à 01:06
28 oct. 2009 à 01:06
voici le résultat :
de List&kill'em (rnregistré sur le bureau !
List'em by g3n-h@ckm@n 1.0.4.7
updated on 27.10.2009 ::::: 11.30
Windows_NT
Microsoft Windows XP [version 5.1.2600]
28/10/2009 3:49:14,48
Nom de l'h“te: PC-A2137737F07A
Nom du systŠme d'exploitation: Microsoft Windows XP Professionnel
Version du systŠme: 5.1.2600 Service Pack 3 version 2600
Fabricant du systŠme d'exploitation: Microsoft Corporation
Configuration du systŠme d'exploitation: Station de travail autonome
Type de version du systŠme d'exploitation: Multiprocessor Free
Propri‚taire enregistr‚ÿ: PC.net
Organisation enregistr‚eÿ:
Identificateur de produit: 55711-640-8939526-23868
Date d'installation originale: 13/11/2008, 16:54:00
Dur‚e d'activit‚ systŠme: 0 jours, 4 heures, 3 minutes, 2 secondes
Fabricant du systŠme: MICRO-STAR INTERNATIONAL CO.,LTD
ModŠle du systŠme: MS-7387
Type du systŠme: X86-based PC
Processeur(s): 1 processeur(s) install‚(s).
[01]: x86 Family 6 Model 15 Stepping 13 GenuineIntel ~2000 MHz
Version du BIOS: 121707 - 20071217
R‚pertoire Windows: C:\WINDOWS
R‚pertoire systŠme: C:\WINDOWS\system32
P‚riph‚rique d'amor‡age: \Device\HarddiskVolume1
Option r‚gionale du systŠme: fr;Fran‡ais (France)
ParamŠtres r‚gionaux d'entr‚eÿ: fr;Fran‡ais (France)
Fuseau horaire: N/D
M‚moire physique totale: 894 Mo
M‚moire physique disponible: 203 Mo
M‚moire virtuelle : taille maximale: 2ÿ048 Mo
M‚moire virtuelle : disponible: 2ÿ000 Mo
M‚moire virtuelle : en cours d'utilisation: 48 Mo
Emplacements des fichiers d'‚change: C:\pagefile.sys
Domaine: WORKGROUP
Serveur d'ouverture de session: \\PC-A2137737F07A
Correctif(s): 70 Corrections install‚es.
[01]: File 1
[02]: File 1
[03]: File 1
[04]: File 1
[05]: File 1
[06]: File 1
[07]: File 1
[08]: File 1
[09]: File 1
[10]: File 1
[11]: File 1
[12]: File 1
[13]: File 1
[14]: File 1
[15]: File 1
[16]: File 1
[17]: File 1
[18]: File 1
[19]: File 1
[20]: File 1
[21]: File 1
[22]: File 1
[23]: File 1
[24]: File 1
[25]: File 1
[26]: File 1
[27]: File 1
[28]: File 1
[29]: File 1
[30]: File 1
[31]: Q147222
[32]: M928366 - Update
[33]: S867460 - Update
[34]: Q954430
[35]: IDNMitigationAPIs - Update
[36]: NLSDownlevelMapping - Update
[37]: KB952069_WM9
[38]: KB923689
[39]: KB941569
[40]: KB938127-IE7 - Update
[41]: KB938127-v2-IE7 - Update
[42]: KB958215-IE7 - Update
[43]: KB960714-IE7 - Update
[44]: KB968220-IE8 - Update
[45]: MSCompPackV1 - Update
[46]: KB936929 - Service Pack
[47]: KB938464 - Update
[48]: KB946648 - Update
[49]: KB950762 - Update
[50]: KB950974 - Update
[51]: KB951066 - Update
[52]: KB951376-v2 - Update
[53]: KB951698 - Update
[54]: KB951748 - Update
[55]: KB951978 - Update
[56]: KB952287 - Update
[57]: KB952954 - Update
[58]: KB954211 - Update
[59]: KB954459 - Update
[60]: KB954600 - Update
[61]: KB955069 - Update
[62]: KB955839 - Update
[63]: KB956391 - Update
[64]: KB956802 - Update
[65]: KB956803 - Update
[66]: KB956841 - Update
[67]: KB957095 - Update
[68]: KB957097 - Update
[69]: KB958644 - Update
[70]: KB958687 - Update
Carte(s) r‚seau: 1 carte(s) r‚seau install‚e(s).
[01]: VIA Rhine II Fast Ethernet Adapter
Nom de la connexion : Connexion au r‚seau local
DHCP activ‚ : Oui
Serveur DHCP : 192.168.1.1
Adresse(s) IP
[01] : 192.168.1.2
Nom de l'image PIDÿ Nom de la sessio Num‚ro d Utilisation
========================= ====== ================ ======== ============
System Idle Process 0 Console 0 16 Ko
System 4 Console 0 44 Ko
smss.exe 996 Console 0 52 Ko
csrss.exe 1148 Console 0 3ÿ760 Ko
winlogon.exe 1204 Console 0 3ÿ648 Ko
services.exe 1264 Console 0 2ÿ152 Ko
lsass.exe 1292 Console 0 4ÿ048 Ko
svchost.exe 1496 Console 0 2ÿ200 Ko
svchost.exe 1564 Console 0 2ÿ184 Ko
svchost.exe 1660 Console 0 10ÿ640 Ko
svchost.exe 1848 Console 0 1ÿ800 Ko
svchost.exe 1936 Console 0 864 Ko
AAWService.exe 1996 Console 0 16ÿ840 Ko
spoolsv.exe 240 Console 0 8ÿ032 Ko
sched.exe 352 Console 0 728 Ko
explorer.exe 952 Console 0 30ÿ328 Ko
RTHDCPL.exe 1136 Console 0 2ÿ100 Ko
VTTimer.exe 1164 Console 0 372 Ko
S3Trayp.exe 120 Console 0 664 Ko
ZSSnp211.EXE 1152 Console 0 364 Ko
Domino.EXE 1228 Console 0 168 Ko
apdproxy.exe 1272 Console 0 2ÿ864 Ko
SearchProtection.exe 1416 Console 0 896 Ko
acrotray.exe 1340 Console 0 356 Ko
GoogleQuickSearchBox.exe 1516 Console 0 11ÿ544 Ko
AAWTray.exe 1524 Console 0 404 Ko
lxdnmon.exe 1608 Console 0 680 Ko
avgnt.exe 1756 Console 0 3ÿ140 Ko
lxdnmsdmon.exe 1792 Console 0 3ÿ020 Ko
realsched.exe 1840 Console 0 176 Ko
pctsTray.exe 368 Console 0 1ÿ176 Ko
ctfmon.exe 524 Console 0 1ÿ836 Ko
LightScribeControlPanel.e 544 Console 0 848 Ko
Skype.exe 760 Console 0 16ÿ632 Ko
avguard.exe 788 Console 0 6ÿ236 Ko
fdm.exe 852 Console 0 4ÿ784 Ko
wf_tp.exe 832 Console 0 4ÿ208 Ko
France24 Desktop.exe 1752 Console 0 3ÿ128 Ko
robotaskbaricon.exe 1920 Console 0 2ÿ096 Ko
MgApp.exe 2068 Console 0 2ÿ296 Ko
LSSrvc.exe 2312 Console 0 168 Ko
WindowsSearch.exe 2348 Console 0 820 Ko
lxdnserv.exe 2856 Console 0 200 Ko
ImApp.exe 2932 Console 0 7ÿ196 Ko
lxdncoms.exe 3012 Console 0 5ÿ300 Ko
PCoptimizerService.exe 3136 Console 0 260 Ko
pctsAuxs.exe 3280 Console 0 476 Ko
pctsSvc.exe 3300 Console 0 25ÿ400 Ko
WindowsSearchIndexer.exe 3500 Console 0 4ÿ636 Ko
SeaPort.exe 1760 Console 0 876 Ko
svchost.exe 2868 Console 0 2ÿ456 Ko
YahooAUService.exe 3440 Console 0 644 Ko
avmailc.exe 3644 Console 0 712 Ko
avwebgrd.exe 3872 Console 0 3ÿ752 Ko
skypePM.exe 2972 Console 0 3ÿ436 Ko
unsecapp.exe 3748 Console 0 760 Ko
wscntfy.exe 2328 Console 0 696 Ko
wmiprvse.exe 3100 Console 0 3ÿ068 Ko
alg.exe 2168 Console 0 920 Ko
msnmsgr.exe 2472 Console 0 7ÿ376 Ko
Ymsgr_tray.exe 416 Console 0 1ÿ192 Ko
wlcomm.exe 1820 Console 0 29ÿ028 Ko
iexplore.exe 960 Console 0 6ÿ024 Ko
iexplore.exe 1092 Console 0 157ÿ184 Ko
iexplore.exe 1880 Console 0 227ÿ092 Ko
List_Killem.exe 4712 Console 0 25ÿ572 Ko
cmd.exe 5708 Console 0 7ÿ936 Ko
wmiprvse.exe 5236 Console 0 8ÿ736 Ko
tasklist.exe 5364 Console 0 5ÿ196 Ko
======================
Cles de demarrage "Run"
======================
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\\WINDOWS\\system32\\ctfmon.exe"
"LightScribe Control Panel"="C:\\Program Files\\Fichiers communs\\LightScribe\\LightScribeControlPanel.exe -hidden"
"Messenger (Yahoo!)"="\"C:\\Program Files\\Yahoo!\\Messenger\\YahooMessenger.exe\" -quiet"
"Magentic"="C:\\PROGRA~1\\Magentic\\bin\\Magentic.exe /c"
"IncrediMail"="C:\\Program Files\\IncrediMail\\bin\\IncMail.exe /c"
"Search Protection"="C:\\Program Files\\Yahoo!\\Search Protection\\SearchProtection.exe"
"YSearchProtection"="C:\\Program Files\\Yahoo!\\Search Protection\\SearchProtection.exe"
"Skype"="\"C:\\Program Files\\Skype\\Phone\\Skype.exe\" /nosplash /minimized"
"Free Download Manager"="\"C:\\Program Files\\Free Download Manager\\fdm.exe\" -autorun"
"WISE-FTP Task Planner"="\"C:\\Program Files\\AceBIT\\WISE-FTP 5\\wf_tp.exe\" /bg"
"france24"="C:\\Documents and Settings\\Bienvenue sur XP\\Local Settings\\Application Data\\Djingle\\France24 Desktop\\bin\\autorun.lnk"
"RoboForm"="\"C:\\Program Files\\Siber Systems\\AI RoboForm\\RoboTaskBarIcon.exe\""
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RTHDCPL"="RTHDCPL.EXE"
"VTTimer"="VTTimer.exe"
"S3Trayp"="S3Trayp.exe"
"NeroFilterCheck"="C:\\Program Files\\Fichiers communs\\Ahead\\Lib\\NeroCheck.exe"
"ZSSnp211"="C:\\WINDOWS\\ZSSnp211.exe"
"Domino"="C:\\WINDOWS\\Domino.exe"
"Adobe Photo Downloader"="\"C:\\Program Files\\Adobe\\Photoshop Album Edition D‚couverte\\3.0\\Apps\\apdproxy.exe\""
"FaxCenterServer"="\"C:\\Program Files\\Lexmark Fax Solutions\\fm3032.exe\" /s"
"fssui"="\"C:\\Program Files\\Windows Live\\Family Safety\\fsui.exe\" -autorun"
"YSearchProtection"="\"C:\\Program Files\\Yahoo!\\Search Protection\\SearchProtection.exe\""
"Adobe Reader Speed Launcher"="\"C:\\Program Files\\Adobe\\Reader 9.0\\Reader\\Reader_sl.exe\""
"Adobe Acrobat Speed Launcher"="\"C:\\Program Files\\Adobe\\Acrobat 9.0\\Acrobat\\Acrobat_sl.exe\""
@=""
"Acrobat Assistant 8.0"="\"C:\\Program Files\\Adobe\\Acrobat 9.0\\Acrobat\\Acrotray.exe\""
"Google Quick Search Box"="\"C:\\Program Files\\Google\\Quick Search Box\\GoogleQuickSearchBox.exe\" /autorun"
"Ad-Watch"="C:\\Program Files\\Lavasoft\\Ad-Aware\\AAWTray.exe"
"lxdnmon.exe"="\"C:\\Program Files\\Lexmark 2600 Series\\lxdnmon.exe\""
"lxdnamon"="\"C:\\Program Files\\Lexmark 2600 Series\\lxdnamon.exe\""
"avgnt"="\"C:\\Program Files\\Avira\\AntiVir Desktop\\avgnt.exe\" /min"
"TkBellExe"="\"C:\\Program Files\\Fichiers communs\\Real\\Update_OB\\realsched.exe\" -osboot"
"ISTray"="\"C:\\Program Files\\Spyware Doctor\\pctsTray.exe\""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents\IMAIL]
"Installed"="1"
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents\MAPI]
"NoChange"="1"
"Installed"="1"
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents\MSFS]
"Installed"="1"
@=""
=====================
cles additionnelles
=====================
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=dword:00000000
"legalnoticecaption"=""
"legalnoticetext"=""
"shutdownwithoutlogon"=dword:00000001
"undockwithoutlogon"=dword:00000001
"ConsentPromptBehaviorAdmin"=dword:00000002
===============
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
===============
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
"PostBootReminder"="{7849596a-48ea-486e-8937-a2a3009f31a9}"
"CDBurn"="{fbeb8a05-beee-4442-804e-409d6c4515e9}"
"WebCheck"="{E6FB5E20-DE35-11CF-9C87-00AA005127ED}"
"SysTray"="{35CEC8A3-2BE6-11D2-8773-92E220524153}"
"WPDShServiceObj"="{AAA288BA-9A4C-45B0-95D7-94D524869DB5}"
======
BHO :
======
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4efb-9B51-7695ECA05670}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4efb-9B51-7695ECA05670}\NoExplorer]
@=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1017A80C-6F09-4548-A84D-EDD6AC9525F0}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
@="AcroIEHelperStub"
"NoExplorer"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1AD61D5B-58A3-4592-9B34-DC84688FF805}]
@="PDFHelperBHO"
"NoExplorer"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{201f27d4-3704-41d6-89c1-aa35e39143ed}]
@="AskBar BHO"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{22BF413B-C6D2-4d91-82A9-A0F997BA588C}]
@="Skype add-on (mastermind)"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{724d43a9-0d85-11d4-9908-00400523e39a}]
@="RoboForm"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0}]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C84D72FE-E17D-4195-BB24-76C02E2E7C4E}]
@="Google Dictionary Compression sdch"
"NoExplorer"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CC59E0F9-7E43-44FA-9FAA-8377850BF205}]
"NoExplorer"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
"NoExplorer"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F4971EE7-DAA0-4053-9964-665D8EE6A077}]
"NoExplorer"=dword:00000001
@="SmartSelect"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FDAD4DA1-61A2-4FD8-9C17-86F7AC245081}]
==========================
===============
Path : C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem
===============
¤¤¤¤¤¤¤¤¤¤ Fichiers et dossiers presents :
C:\Documents and Settings\All Users\Application Data\QTSBandwidthCache
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat
C:\Program Files\AskBarDis
C:\WINDOWS\System32\_000006_.tmp.dll
C:\WINDOWS\System32\_000007_.tmp.dll
C:\WINDOWS\System32\_000008_.tmp.dll
C:\WINDOWS\System32\_000022_.tmp.dll
C:\WINDOWS\System32\_000023_.tmp.dll
C:\WINDOWS\System32\_000024_.tmp.dll
C:\WINDOWS\System32\_000025_.tmp.dll
C:\WINDOWS\System32\SET100.tmp
C:\WINDOWS\System32\SET101.tmp
C:\WINDOWS\System32\SET102.tmp
C:\WINDOWS\System32\SET103.tmp
C:\WINDOWS\System32\SET104.tmp
C:\WINDOWS\System32\SET105.tmp
C:\WINDOWS\System32\SET106.tmp
C:\WINDOWS\System32\SET107.tmp
C:\WINDOWS\System32\SET108.tmp
C:\WINDOWS\System32\SET109.tmp
C:\WINDOWS\System32\SET10A.tmp
C:\WINDOWS\System32\SET10B.tmp
C:\WINDOWS\System32\SET10C.tmp
C:\WINDOWS\System32\SET10D.tmp
C:\WINDOWS\System32\SET10E.tmp
C:\WINDOWS\System32\SET10F.tmp
C:\WINDOWS\System32\SET110.tmp
C:\WINDOWS\System32\SET111.tmp
C:\WINDOWS\System32\SET112.tmp
C:\WINDOWS\System32\SET113.tmp
C:\WINDOWS\System32\SET114.tmp
C:\WINDOWS\System32\SET115.tmp
C:\WINDOWS\System32\SET116.tmp
C:\WINDOWS\System32\SET117.tmp
C:\WINDOWS\System32\SET118.tmp
C:\WINDOWS\System32\SET119.tmp
C:\WINDOWS\System32\SET11A.tmp
C:\WINDOWS\System32\SET11B.tmp
C:\WINDOWS\System32\SET11C.tmp
C:\WINDOWS\System32\SET11D.tmp
C:\WINDOWS\System32\SET11E.tmp
C:\WINDOWS\System32\SET11F.tmp
C:\WINDOWS\System32\SET120.tmp
C:\WINDOWS\System32\SET121.tmp
C:\WINDOWS\System32\SET122.tmp
C:\WINDOWS\System32\SET123.tmp
C:\WINDOWS\System32\SET124.tmp
C:\WINDOWS\System32\SET125.tmp
C:\WINDOWS\System32\SET126.tmp
C:\WINDOWS\System32\SET127.tmp
C:\WINDOWS\System32\SET128.tmp
C:\WINDOWS\System32\SET129.tmp
C:\WINDOWS\System32\SET12A.tmp
C:\WINDOWS\System32\SET12B.tmp
C:\WINDOWS\System32\SET12C.tmp
C:\WINDOWS\System32\SET12D.tmp
C:\WINDOWS\System32\SET12E.tmp
C:\WINDOWS\System32\SET12F.tmp
C:\WINDOWS\System32\SET130.tmp
C:\WINDOWS\System32\SET131.tmp
C:\WINDOWS\System32\SET132.tmp
C:\WINDOWS\System32\SET133.tmp
C:\WINDOWS\System32\SET134.tmp
C:\WINDOWS\System32\SET135.tmp
C:\WINDOWS\System32\SET136.tmp
C:\WINDOWS\System32\SET137.tmp
C:\WINDOWS\System32\SET138.tmp
C:\WINDOWS\System32\SET139.tmp
C:\WINDOWS\System32\SET13A.tmp
C:\WINDOWS\System32\SET13B.tmp
C:\WINDOWS\System32\SET13C.tmp
C:\WINDOWS\System32\SET13D.tmp
C:\WINDOWS\System32\SET13E.tmp
C:\WINDOWS\System32\SET13F.tmp
C:\WINDOWS\System32\SET140.tmp
C:\WINDOWS\System32\SET141.tmp
C:\WINDOWS\System32\SET142.tmp
C:\WINDOWS\System32\SET143.tmp
C:\WINDOWS\System32\SET144.tmp
C:\WINDOWS\System32\SET145.tmp
C:\WINDOWS\System32\SET146.tmp
C:\WINDOWS\System32\SET147.tmp
C:\WINDOWS\System32\SET148.tmp
C:\WINDOWS\System32\SET149.tmp
C:\WINDOWS\System32\SET14A.tmp
C:\WINDOWS\System32\SET14B.tmp
C:\WINDOWS\System32\SET14C.tmp
C:\WINDOWS\System32\SET14D.tmp
C:\WINDOWS\System32\SET14E.tmp
C:\WINDOWS\System32\SET14F.tmp
C:\WINDOWS\System32\SET150.tmp
C:\WINDOWS\System32\SET151.tmp
C:\WINDOWS\System32\SET152.tmp
C:\WINDOWS\System32\SET153.tmp
C:\WINDOWS\System32\SET154.tmp
C:\WINDOWS\System32\SET155.tmp
C:\WINDOWS\System32\SET156.tmp
C:\WINDOWS\System32\SET157.tmp
C:\WINDOWS\System32\SET158.tmp
C:\WINDOWS\System32\SET159.tmp
C:\WINDOWS\System32\SET15A.tmp
C:\WINDOWS\System32\SET15B.tmp
C:\WINDOWS\System32\SET15C.tmp
C:\WINDOWS\System32\SET15D.tmp
C:\WINDOWS\System32\SET15E.tmp
C:\WINDOWS\System32\SET15F.tmp
C:\WINDOWS\System32\SET160.tmp
C:\WINDOWS\System32\SET161.tmp
C:\WINDOWS\System32\SET162.tmp
C:\WINDOWS\System32\SET163.tmp
C:\WINDOWS\System32\SET164.tmp
C:\WINDOWS\System32\SET165.tmp
C:\WINDOWS\System32\SET166.tmp
C:\WINDOWS\System32\SET167.tmp
C:\WINDOWS\System32\SET168.tmp
C:\WINDOWS\System32\SET169.tmp
C:\WINDOWS\System32\SET16A.tmp
C:\WINDOWS\System32\SET16B.tmp
C:\WINDOWS\System32\SET16C.tmp
C:\WINDOWS\System32\SET16D.tmp
C:\WINDOWS\System32\SET16E.tmp
C:\WINDOWS\System32\SET16F.tmp
C:\WINDOWS\System32\SET17.tmp
C:\WINDOWS\System32\SET170.tmp
C:\WINDOWS\System32\SET171.tmp
C:\WINDOWS\System32\SET172.tmp
C:\WINDOWS\System32\SET173.tmp
C:\WINDOWS\System32\SET174.tmp
C:\WINDOWS\System32\SET175.tmp
C:\WINDOWS\System32\SET176.tmp
C:\WINDOWS\System32\SET177.tmp
C:\WINDOWS\System32\SET178.tmp
C:\WINDOWS\System32\SET179.tmp
C:\WINDOWS\System32\SET17A.tmp
C:\WINDOWS\System32\SET17B.tmp
C:\WINDOWS\System32\SET17C.tmp
C:\WINDOWS\System32\SET17D.tmp
C:\WINDOWS\System32\SET17E.tmp
C:\WINDOWS\System32\SET17F.tmp
C:\WINDOWS\System32\SET18.tmp
C:\WINDOWS\System32\SET180.tmp
C:\WINDOWS\System32\SET181.tmp
C:\WINDOWS\System32\SET182.tmp
C:\WINDOWS\System32\SET183.tmp
C:\WINDOWS\System32\SET184.tmp
C:\WINDOWS\System32\SET185.tmp
C:\WINDOWS\System32\SET186.tmp
C:\WINDOWS\System32\SET187.tmp
C:\WINDOWS\System32\SET188.tmp
C:\WINDOWS\System32\SET189.tmp
C:\WINDOWS\System32\SET18A.tmp
C:\WINDOWS\System32\SET18B.tmp
C:\WINDOWS\System32\SET18C.tmp
C:\WINDOWS\System32\SET18D.tmp
C:\WINDOWS\System32\SET18E.tmp
C:\WINDOWS\System32\SET18F.tmp
C:\WINDOWS\System32\SET19.tmp
C:\WINDOWS\System32\SET190.tmp
C:\WINDOWS\System32\SET191.tmp
C:\WINDOWS\System32\SET192.tmp
C:\WINDOWS\System32\SET193.tmp
C:\WINDOWS\System32\SET194.tmp
C:\WINDOWS\System32\SET195.tmp
C:\WINDOWS\System32\SET196.tmp
C:\WINDOWS\System32\SET197.tmp
C:\WINDOWS\System32\SET198.tmp
C:\WINDOWS\System32\SET199.tmp
C:\WINDOWS\System32\SET19A.tmp
C:\WINDOWS\System32\SET19B.tmp
C:\WINDOWS\System32\SET19C.tmp
C:\WINDOWS\System32\SET19D.tmp
C:\WINDOWS\System32\SET19E.tmp
C:\WINDOWS\System32\SET19F.tmp
C:\WINDOWS\System32\SET1A.tmp
C:\WINDOWS\System32\SET1A0.tmp
C:\WINDOWS\System32\SET1A1.tmp
C:\WINDOWS\System32\SET1A2.tmp
C:\WINDOWS\System32\SET1A3.tmp
C:\WINDOWS\System32\SET1A4.tmp
C:\WINDOWS\System32\SET1A5.tmp
C:\WINDOWS\System32\SET1A6.tmp
C:\WINDOWS\System32\SET1A7.tmp
C:\WINDOWS\System32\SET1A8.tmp
C:\WINDOWS\System32\SET1A9.tmp
C:\WINDOWS\System32\SET1AA.tmp
C:\WINDOWS\System32\SET1AB.tmp
C:\WINDOWS\System32\SET1AC.tmp
C:\WINDOWS\System32\SET1AD.tmp
C:\WINDOWS\System32\SET1AE.tmp
C:\WINDOWS\System32\SET1AF.tmp
C:\WINDOWS\System32\SET1B.tmp
C:\WINDOWS\System32\SET1B0.tmp
C:\WINDOWS\System32\SET1B1.tmp
C:\WINDOWS\System32\SET1B2.tmp
C:\WINDOWS\System32\SET1B3.tmp
C:\WINDOWS\System32\SET1B4.tmp
C:\WINDOWS\System32\SET1B5.tmp
C:\WINDOWS\System32\SET1B6.tmp
C:\WINDOWS\System32\SET1B7.tmp
C:\WINDOWS\System32\SET1B8.tmp
C:\WINDOWS\System32\SET1B9.tmp
C:\WINDOWS\System32\SET1BA.tmp
C:\WINDOWS\System32\SET1BB.tmp
C:\WINDOWS\System32\SET1BC.tmp
C:\WINDOWS\System32\SET1BD.tmp
C:\WINDOWS\System32\SET1BE.tmp
C:\WINDOWS\System32\SET1BF.tmp
C:\WINDOWS\System32\SET1C.tmp
C:\WINDOWS\System32\SET1C0.tmp
C:\WINDOWS\System32\SET1C1.tmp
C:\WINDOWS\System32\SET1C2.tmp
C:\WINDOWS\System32\SET1C3.tmp
C:\WINDOWS\System32\SET1C4.tmp
C:\WINDOWS\System32\SET1C5.tmp
C:\WINDOWS\System32\SET1C6.tmp
C:\WINDOWS\System32\SET1C7.tmp
C:\WINDOWS\System32\SET1C8.tmp
C:\WINDOWS\System32\SET1C9.tmp
C:\WINDOWS\System32\SET1CA.tmp
C:\WINDOWS\System32\SET1CB.tmp
C:\WINDOWS\System32\SET1CC.tmp
C:\WINDOWS\System32\SET1CD.tmp
C:\WINDOWS\System32\SET1CE.tmp
C:\WINDOWS\System32\SET1CF.tmp
C:\WINDOWS\System32\SET1D.tmp
C:\WINDOWS\System32\SET1D0.tmp
C:\WINDOWS\System32\SET1D1.tmp
C:\WINDOWS\System32\SET1D2.tmp
C:\WINDOWS\System32\SET1D3.tmp
C:\WINDOWS\System32\SET1D4.tmp
C:\WINDOWS\System32\SET1D5.tmp
C:\WINDOWS\System32\SET1D6.tmp
C:\WINDOWS\System32\SET1D7.tmp
C:\WINDOWS\System32\SET1D8.tmp
C:\WINDOWS\System32\SET1D9.tmp
C:\WINDOWS\System32\SET1DA.tmp
C:\WINDOWS\System32\SET1DB.tmp
C:\WINDOWS\System32\SET1DC.tmp
C:\WINDOWS\System32\SET1DD.tmp
C:\WINDOWS\System32\SET1DE.tmp
C:\WINDOWS\System32\SET1DF.tmp
C:\WINDOWS\System32\SET1E.tmp
C:\WINDOWS\System32\SET1E0.tmp
C:\WINDOWS\System32\SET1E1.tmp
C:\WINDOWS\System32\SET1E2.tmp
C:\WINDOWS\System32\SET1E3.tmp
C:\WINDOWS\System32\SET1E4.tmp
C:\WINDOWS\System32\SET1E5.tmp
C:\WINDOWS\System32\SET1E6.tmp
C:\WINDOWS\System32\SET1E7.tmp
C:\WINDOWS\System32\SET1E8.tmp
C:\WINDOWS\System32\SET1E9.tmp
C:\WINDOWS\System32\SET1EA.tmp
C:\WINDOWS\System32\SET1EB.tmp
C:\WINDOWS\System32\SET1EC.tmp
C:\WINDOWS\System32\SET1ED.tmp
C:\WINDOWS\System32\SET1EE.tmp
C:\WINDOWS\System32\SET1EF.tmp
C:\WINDOWS\System32\SET1F.tmp
C:\WINDOWS\System32\SET1F0.tmp
C:\WINDOWS\System32\SET1F1.tmp
C:\WINDOWS\System32\SET1F2.tmp
C:\WINDOWS\System32\SET1F3.tmp
C:\WINDOWS\System32\SET1F4.tmp
C:\WINDOWS\System32\SET1F5.tmp
C:\WINDOWS\System32\SET1F6.tmp
C:\WINDOWS\System32\SET1F7.tmp
C:\WINDOWS\System32\SET1F8.tmp
C:\WINDOWS\System32\SET1F9.tmp
C:\WINDOWS\System32\SET1FA.tmp
C:\WINDOWS\System32\SET1FB.tmp
C:\WINDOWS\System32\SET1FC.tmp
C:\WINDOWS\System32\SET1FD.tmp
C:\WINDOWS\System32\SET1FE.tmp
C:\WINDOWS\System32\SET1FF.tmp
C:\WINDOWS\System32\SET20.tmp
C:\WINDOWS\System32\SET200.tmp
C:\WINDOWS\System32\SET201.tmp
C:\WINDOWS\System32\SET202.tmp
C:\WINDOWS\System32\SET203.tmp
C:\WINDOWS\System32\SET204.tmp
C:\WINDOWS\System32\SET205.tmp
C:\WINDOWS\System32\SET206.tmp
C:\WINDOWS\System32\SET207.tmp
C:\WINDOWS\System32\SET208.tmp
C:\WINDOWS\System32\SET209.tmp
C:\WINDOWS\System32\SET20A.tmp
C:\WINDOWS\System32\SET20B.tmp
C:\WINDOWS\System32\SET20C.tmp
C:\WINDOWS\System32\SET20D.tmp
C:\WINDOWS\System32\SET20E.tmp
C:\WINDOWS\System32\SET20F.tmp
C:\WINDOWS\System32\SET21.tmp
C:\WINDOWS\System32\SET210.tmp
C:\WINDOWS\System32\SET211.tmp
C:\WINDOWS\System32\SET212.tmp
C:\WINDOWS\System32\SET213.tmp
C:\WINDOWS\System32\SET214.tmp
C:\WINDOWS\System32\SET215.tmp
C:\WINDOWS\System32\SET216.tmp
C:\WINDOWS\System32\SET217.tmp
C:\WINDOWS\System32\SET218.tmp
C:\WINDOWS\System32\SET219.tmp
C:\WINDOWS\System32\SET21A.tmp
C:\WINDOWS\System32\SET21B.tmp
C:\WINDOWS\System32\SET21C.tmp
C:\WINDOWS\System32\SET21D.tmp
C:\WINDOWS\System32\SET21E.tmp
C:\WINDOWS\System32\SET21F.tmp
C:\WINDOWS\System32\SET22.tmp
C:\WINDOWS\System32\SET220.tmp
C:\WINDOWS\System32\SET221.tmp
C:\WINDOWS\System32\SET222.tmp
C:\WINDOWS\System32\SET223.tmp
C:\WINDOWS\System32\SET224.tmp
C:\WINDOWS\System32\SET225.tmp
C:\WINDOWS\System32\SET226.tmp
C:\WINDOWS\System32\SET227.tmp
C:\WINDOWS\System32\SET228.tmp
C:\WINDOWS\System32\SET229.tmp
C:\WINDOWS\System32\SET22A.tmp
C:\WINDOWS\System32\SET22B.tmp
C:\WINDOWS\System32\SET22C.tmp
C:\WINDOWS\System32\SET22D.tmp
C:\WINDOWS\System32\SET22E.tmp
C:\WINDOWS\System32\SET22F.tmp
C:\WINDOWS\System32\SET23.tmp
C:\WINDOWS\System32\SET230.tmp
C:\WINDOWS\System32\SET231.tmp
C:\WINDOWS\System32\SET232.tmp
C:\WINDOWS\System32\SET233.tmp
C:\WINDOWS\System32\SET234.tmp
C:\WINDOWS\System32\SET235.tmp
C:\WINDOWS\System32\SET236.tmp
C:\WINDOWS\System32\SET237.tmp
C:\WINDOWS\System32\SET238.tmp
C:\WINDOWS\System32\SET239.tmp
C:\WINDOWS\System32\SET23A.tmp
C:\WINDOWS\System32\SET23B.tmp
C:\WINDOWS\System32\SET23C.tmp
C:\WINDOWS\System32\SET23D.tmp
C:\WINDOWS\System32\SET23E.tmp
C:\WINDOWS\System32\SET23F.tmp
C:\WINDOWS\System32\SET24.tmp
C:\WINDOWS\System32\SET240.tmp
C:\WINDOWS\System32\SET241.tmp
C:\WINDOWS\System32\SET242.tmp
C:\WINDOWS\System32\SET243.tmp
C:\WINDOWS\System32\SET244.tmp
C:\WINDOWS\System32\SET245.tmp
C:\WINDOWS\System32\SET246.tmp
C:\WINDOWS\System32\SET247.tmp
C:\WINDOWS\System32\SET248.tmp
C:\WINDOWS\System32\SET249.tmp
C:\WINDOWS\System32\SET24A.tmp
C:\WINDOWS\System32\SET24B.tmp
C:\WINDOWS\System32\SET24C.tmp
C:\WINDOWS\System32\SET24D.tmp
C:\WINDOWS\System32\SET24E.tmp
C:\WINDOWS\System32\SET24F.tmp
C:\WINDOWS\System32\SET25.tmp
C:\WINDOWS\System32\SET250.tmp
C:\WINDOWS\System32\SET251.tmp
C:\WINDOWS\System32\SET252.tmp
C:\WINDOWS\System32\SET253.tmp
C:\WINDOWS\System32\SET254.tmp
C:\WINDOWS\System32\SET255.tmp
C:\WINDOWS\System32\SET26.tmp
C:\WINDOWS\System32\SET27.tmp
C:\WINDOWS\System32\SET28.tmp
C:\WINDOWS\System32\SET29.tmp
C:\WINDOWS\System32\SET298.tmp
C:\WINDOWS\System32\SET29E.tmp
C:\WINDOWS\System32\SET2A.tmp
C:\WINDOWS\System32\SET2A4.tmp
C:\WINDOWS\System32\SET2A5.tmp
C:\WINDOWS\System32\SET2A7.tmp
C:\WINDOWS\System32\SET2B.tmp
C:\WINDOWS\System32\SET2BC.tmp
C:\WINDOWS\System32\SET2BE.tmp
C:\WINDOWS\System32\SET2C.tmp
C:\WINDOWS\System32\SET2C2.tmp
C:\WINDOWS\System32\SET2C3.tmp
C:\WINDOWS\System32\SET2CC.tmp
C:\WINDOWS\System32\SET2D.tmp
C:\WINDOWS\System32\SET2E.tmp
C:\WINDOWS\System32\SET2ED.tmp
C:\WINDOWS\System32\SET2EE.tmp
C:\WINDOWS\System32\SET2EF.tmp
C:\WINDOWS\System32\SET2F.tmp
C:\WINDOWS\System32\SET2F2.tmp
C:\WINDOWS\System32\SET2F3.tmp
C:\WINDOWS\System32\SET30.tmp
C:\WINDOWS\System32\SET30E.tmp
C:\WINDOWS\System32\SET31.tmp
C:\WINDOWS\System32\SET32.tmp
C:\WINDOWS\System32\SET324.tmp
C:\WINDOWS\System32\SET33.tmp
C:\WINDOWS\System32\SET34.tmp
C:\WINDOWS\System32\SET35.tmp
C:\WINDOWS\System32\SET36.tmp
C:\WINDOWS\System32\SET37.tmp
C:\WINDOWS\System32\SET38.tmp
C:\WINDOWS\System32\SET39.tmp
C:\WINDOWS\System32\SET3A.tmp
C:\WINDOWS\System32\SET3B.tmp
C:\WINDOWS\System32\SET3C.tmp
C:\WINDOWS\System32\SET3D.tmp
C:\WINDOWS\System32\SET3E.tmp
C:\WINDOWS\System32\SET3F.tmp
C:\WINDOWS\System32\SET40.tmp
C:\WINDOWS\System32\SET41.tmp
C:\WINDOWS\System32\SET42.tmp
C:\WINDOWS\System32\SET43.tmp
C:\WINDOWS\System32\SET44.tmp
C:\WINDOWS\System32\SET45.tmp
C:\WINDOWS\System32\SET46.tmp
C:\WINDOWS\System32\SET47.tmp
C:\WINDOWS\System32\SET48.tmp
C:\WINDOWS\System32\SET49.tmp
C:\WINDOWS\System32\SET4A.tmp
C:\WINDOWS\System32\SET4B.tmp
C:\WINDOWS\System32\SET4C.tmp
C:\WINDOWS\System32\SET4D.tmp
C:\WINDOWS\System32\SET4E.tmp
C:\WINDOWS\System32\SET4F.tmp
C:\WINDOWS\System32\SET50.tmp
C:\WINDOWS\System32\SET51.tmp
C:\WINDOWS\System32\SET52.tmp
C:\WINDOWS\System32\SET53.tmp
C:\WINDOWS\System32\SET54.tmp
C:\WINDOWS\System32\SET55.tmp
C:\WINDOWS\System32\SET56.tmp
C:\WINDOWS\System32\SET57.tmp
C:\WINDOWS\System32\SET58.tmp
C:\WINDOWS\System32\SET59.tmp
C:\WINDOWS\System32\SET5A.tmp
C:\WINDOWS\System32\SET5B.tmp
C:\WINDOWS\System32\SET5C.tmp
C:\WINDOWS\System32\SET5D.tmp
C:\WINDOWS\System32\SET5E.tmp
C:\WINDOWS\System32\SET5F.tmp
C:\WINDOWS\System32\SET60.tmp
C:\WINDOWS\System32\SET61.tmp
C:\WINDOWS\System32\SET62.tmp
C:\WINDOWS\System32\SET63.tmp
C:\WINDOWS\System32\SET64.tmp
C:\WINDOWS\System32\SET65.tmp
C:\WINDOWS\System32\SET66.tmp
C:\WINDOWS\System32\SET67.tmp
C:\WINDOWS\System32\SET68.tmp
C:\WINDOWS\System32\SET69.tmp
C:\WINDOWS\System32\SET6A.tmp
C:\WINDOWS\System32\SET6B.tmp
C:\WINDOWS\System32\SET6C.tmp
C:\WINDOWS\System32\SET6D.tmp
C:\WINDOWS\System32\SET6E.tmp
C:\WINDOWS\System32\SET6F.tmp
C:\WINDOWS\System32\SET70.tmp
C:\WINDOWS\System32\SET71.tmp
C:\WINDOWS\System32\SET72.tmp
C:\WINDOWS\System32\SET73.tmp
C:\WINDOWS\System32\SET74.tmp
C:\WINDOWS\System32\SET75.tmp
C:\WINDOWS\System32\SET76.tmp
C:\WINDOWS\System32\SET77.tmp
C:\WINDOWS\System32\SET78.tmp
C:\WINDOWS\System32\SET79.tmp
C:\WINDOWS\System32\SET7A.tmp
C:\WINDOWS\System32\SET7B.tmp
C:\WINDOWS\System32\SET7C.tmp
C:\WINDOWS\System32\SET7D.tmp
C:\WINDOWS\System32\SET7E.tmp
C:\WINDOWS\System32\SET7F.tmp
C:\WINDOWS\System32\SET80.tmp
C:\WINDOWS\System32\SET81.tmp
C:\WINDOWS\System32\SET82.tmp
C:\WINDOWS\System32\SET83.tmp
C:\WINDOWS\System32\SET84.tmp
C:\WINDOWS\System32\SET85.tmp
C:\WINDOWS\System32\SET86.tmp
C:\WINDOWS\System32\SET87.tmp
C:\WINDOWS\System32\SET88.tmp
C:\WINDOWS\System32\SET89.tmp
C:\WINDOWS\System32\SET8A.tmp
C:\WINDOWS\System32\SET8B.tmp
C:\WINDOWS\System32\SET8C.tmp
C:\WINDOWS\System32\SET8D.tmp
C:\WINDOWS\System32\SET8E.tmp
C:\WINDOWS\System32\SET8F.tmp
C:\WINDOWS\System32\SET90.tmp
C:\WINDOWS\System32\SET91.tmp
C:\WINDOWS\System32\SET92.tmp
C:\WINDOWS\System32\SET93.tmp
C:\WINDOWS\System32\SET94.tmp
C:\WINDOWS\System32\SET95.tmp
C:\WINDOWS\System32\SET96.tmp
C:\WINDOWS\System32\SET97.tmp
C:\WINDOWS\System32\SET98.tmp
C:\WINDOWS\System32\SET99.tmp
C:\WINDOWS\System32\SET9A.tmp
C:\WINDOWS\System32\SET9B.tmp
C:\WINDOWS\System32\SET9C.tmp
C:\WINDOWS\System32\SET9D.tmp
C:\WINDOWS\System32\SET9E.tmp
C:\WINDOWS\System32\SET9F.tmp
C:\WINDOWS\System32\SETA0.tmp
C:\WINDOWS\System32\SETA1.tmp
C:\WINDOWS\System32\SETA2.tmp
C:\WINDOWS\System32\SETA3.tmp
C:\WINDOWS\System32\SETA4.tmp
C:\WINDOWS\System32\SETA5.tmp
C:\WINDOWS\System32\SETA6.tmp
C:\WINDOWS\System32\SETA7.tmp
C:\WINDOWS\System32\SETA8.tmp
C:\WINDOWS\System32\SETA9.tmp
C:\WINDOWS\System32\SETAA.tmp
C:\WINDOWS\System32\SETAB.tmp
C:\WINDOWS\System32\SETAC.tmp
C:\WINDOWS\System32\SETAD.tmp
C:\WINDOWS\System32\SETAE.tmp
C:\WINDOWS\System32\SETAF.tmp
C:\WINDOWS\System32\SETB0.tmp
C:\WINDOWS\System32\SETB1.tmp
C:\WINDOWS\System32\SETB2.tmp
C:\WINDOWS\System32\SETB3.tmp
C:\WINDOWS\System32\SETB4.tmp
C:\WINDOWS\System32\SETB5.tmp
C:\WINDOWS\System32\SETB6.tmp
C:\WINDOWS\System32\SETB7.tmp
C:\WINDOWS\System32\SETB8.tmp
C:\WINDOWS\System32\SETB9.tmp
C:\WINDOWS\System32\SETBA.tmp
C:\WINDOWS\System32\SETBB.tmp
C:\WINDOWS\System32\SETBC.tmp
C:\WINDOWS\System32\SETBD.tmp
C:\WINDOWS\System32\SETBE.tmp
C:\WINDOWS\System32\SETBF.tmp
C:\WINDOWS\System32\SETC0.tmp
C:\WINDOWS\System32\SETC1.tmp
C:\WINDOWS\System32\SETC2.tmp
C:\WINDOWS\System32\SETC3.tmp
C:\WINDOWS\System32\SETC4.tmp
C:\WINDOWS\System32\SETC5.tmp
C:\WINDOWS\System32\SETC6.tmp
C:\WINDOWS\System32\SETC7.tmp
C:\WINDOWS\System32\SETC8.tmp
C:\WINDOWS\System32\SETC9.tmp
C:\WINDOWS\System32\SETCA.tmp
C:\WINDOWS\System32\SETCB.tmp
C:\WINDOWS\System32\SETCC.tmp
C:\WINDOWS\System32\SETCD.tmp
C:\WINDOWS\System32\SETCE.tmp
C:\WINDOWS\System32\SETCF.tmp
C:\WINDOWS\System32\SETD0.tmp
C:\WINDOWS\System32\SETD1.tmp
C:\WINDOWS\System32\SETD2.tmp
C:\WINDOWS\System32\SETD3.tmp
C:\WINDOWS\System32\SETD4.tmp
C:\WINDOWS\System32\SETD5.tmp
C:\WINDOWS\System32\SETD6.tmp
C:\WINDOWS\System32\SETD7.tmp
C:\WINDOWS\System32\SETD8.tmp
C:\WINDOWS\System32\SETD9.tmp
C:\WINDOWS\System32\SETDA.tmp
C:\WINDOWS\System32\SETDB.tmp
C:\WINDOWS\System32\SETDC.tmp
C:\WINDOWS\System32\SETDD.tmp
C:\WINDOWS\System32\SETDE.tmp
C:\WINDOWS\System32\SETDF.tmp
C:\WINDOWS\System32\SETE0.tmp
C:\WINDOWS\System32\SETE1.tmp
C:\WINDOWS\System32\SETE2.tmp
C:\WINDOWS\System32\SETE3.tmp
C:\WINDOWS\System32\SETE4.tmp
C:\WINDOWS\System32\SETE5.tmp
C:\WINDOWS\System32\SETE6.tmp
C:\WINDOWS\System32\SETE7.tmp
C:\WINDOWS\System32\SETE8.tmp
C:\WINDOWS\System32\SETE9.tmp
C:\WINDOWS\System32\SETEA.tmp
C:\WINDOWS\System32\SETEB.tmp
C:\WINDOWS\System32\SETEC.tmp
C:\WINDOWS\System32\SETED.tmp
C:\WINDOWS\System32\SETEE.tmp
C:\WINDOWS\System32\SETEF.tmp
C:\WINDOWS\System32\SETF0.tmp
C:\WINDOWS\System32\SETF1.tmp
C:\WINDOWS\System32\SETF2.tmp
C:\WINDOWS\System32\SETF3.tmp
C:\WINDOWS\System32\SETF4.tmp
C:\WINDOWS\System32\SETF5.tmp
C:\WINDOWS\System32\SETF6.tmp
C:\WINDOWS\System32\SETF7.tmp
C:\WINDOWS\System32\SETF8.tmp
C:\WINDOWS\System32\SETF9.tmp
C:\WINDOWS\System32\SETFA.tmp
C:\WINDOWS\System32\SETFB.tmp
C:\WINDOWS\System32\SETFC.tmp
C:\WINDOWS\System32\SETFD.tmp
C:\WINDOWS\System32\SETFE.tmp
C:\WINDOWS\System32\SETFF.tmp
C:\Documents and Settings\Bienvenue sur XP\LOCAL Settings\Temp\8BD54F3E-DD19-4a69-93D8-5C6A5BBBE20E.exe
C:\Documents and Settings\Bienvenue sur XP\LOCAL Settings\Temp\Foxit Reader.exe
C:\Documents and Settings\Bienvenue sur XP\LOCAL Settings\Temp\FoxitCreator20_setup.exe
C:\Documents and Settings\Bienvenue sur XP\LOCAL Settings\Temp\FoxitPDFEditor21_enu_Setup.exe
C:\Documents and Settings\Bienvenue sur XP\LOCAL Settings\Temp\FoxitToolbar_Setup.exe
C:\Documents and Settings\Bienvenue sur XP\LOCAL Settings\Temp\foxit_agent_ifilter.exe
C:\Documents and Settings\Bienvenue sur XP\LOCAL Settings\Temp\InstallPDFReaderPlugin.exe
C:\Documents and Settings\Bienvenue sur XP\LOCAL Settings\Temp\jre-6u15-windows-i586-iftw.exe
C:\Documents and Settings\Bienvenue sur XP\LOCAL Settings\Temp\kiwee_setup.exe
C:\Documents and Settings\Bienvenue sur XP\LOCAL Settings\Temp\lsnfier.exe
C:\Documents and Settings\Bienvenue sur XP\LOCAL Settings\Temp\msizapMG.exe
C:\Documents and Settings\Bienvenue sur XP\LOCAL Settings\Temp\nsk2C3.tmp.exe
C:\Documents and Settings\Bienvenue sur XP\LOCAL Settings\Temp\nsp29F.tmp.exe
C:\Documents and Settings\Bienvenue sur XP\LOCAL Settings\Temp\nsz2C9.tmp.exe
C:\Documents and Settings\Bienvenue sur XP\LOCAL Settings\Temp\setup_wm.exe
C:\Documents and Settings\Bienvenue sur XP\LOCAL Settings\Temp\Upgrade.exe
C:\Documents and Settings\Bienvenue sur XP\LOCAL Settings\Temp\ytb_8.1.0.51-2_2.1.0_ysp_1.2.8_mail_bts_pub_fr_setup_.exe
¤¤¤¤¤¤¤¤¤¤ Clés de registre Presentes :
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Setup.exe
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar "{3041d03e-fd4b-44e0-b742-2d9b88305f98}"
HKCR\EoRezoBHO.EoBho
HKCR\EoRezoBHO.EoBho.1
HKCU\SOFTWARE\EoRezo
HKCU\SOFTWARE\FunWebProducts
HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{64F56FC1-1272-44CD-BA6E-39723696E350}
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{EEE6C35B-6118-11DC-9C72-001320C79847}
HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EEE6C35C-6118-11DC-9C72-001320C79847}
HKLM\SOFTWARE\Classes\AppID\{362A53B2-2913-4F8A-82F5-7E0A23FDC6F9}
HKLM\SOFTWARE\Classes\AppID\EoRezoBHO.dll
HKLM\SOFTWARE\Classes\CLSID\{64F56FC1-1272-44CD-BA6E-39723696E350}
HKLM\Software\Classes\EoRezoBHO.EoBho
HKLM\Software\Classes\EoRezoBHO.EoBho.1
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{201f27d4-3704-41d6-89c1-aa35e39143ed}"
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\07D5290CDBDAE4242926B8E6CA650501
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\08E33F7B61DEFF24BB9673ED7D467636
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\0E3D8A5B48622A445A7DF73FEFF32C3F
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\1AC67655DD68F8240B2860F2D511EBD8
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\34EDDB1BFB3A2D448845F3EFD0F15A43
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\4318DF19719275242801CBE292063A4C
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\45FC115D1FEAEF849A4E1610D6EC8BF0
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\46A5861A389ADB844AF89E31BC9DF0A1
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\49B0E1A6FF50BBE4289E4E23DE6EA0C7
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\4CCCAC049F34D0540AAC13011398BEDB
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\5C4389D0BFB302C479DE4178BD5D9EBA
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\5D19F074C042AD34BAB463D4175A062E
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\5D2B09BDEF4FE54418E6F3373CDBC7AC
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\61B65D3397A1FBF4CB1571B5E4F6B5B0
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\68E8A05C60DD9254591DBD16C94EDDBF
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\697E782CF574CC34CBB9566440BA12BC
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\6AE27A8613CF7EA4782F2886F67295E5
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\7CE172051F585E04187BCB97570BFA74
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\86A901BA5265452499DCBF719C378EE3
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\88ABD1CD5C40EC84789A7F6EF86DAC5E
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\980289C22F80A7C4BB9323DC61255E4E
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\9A4B7EF3789F871419D9302583B20C15
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\A6C53B0F76C44004A8F36716213017DB
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\B59F2D8189784CC46A4597F2842480B0
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\BD746FB95FB8E5B45BF66BE54D5FD91F
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\CCF399FCD6D2D3F46BF02A1378654FC9
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\D149C1355C98DE24E82CEFBD996FE06A
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\DB59FDB786388EA4D897F3EE715683AC
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\DB8DAD19CFBCC2049A4477183787E8C5
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\E337925F629CF4C4FB08F3D9674DD839
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\EC65F200D112357449C8B1BC3CFA03D0
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\F327D0C73C0973644A21E8CC852267A0
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\FA96423FE2B98E248A3B23548D1E22D9
HKCR\CLSID\{3041d03e-fd4b-44e0-b742-2d9b88305f98}
HKCR\CLSID\{64F56FC1-1272-44CD-BA6E-39723696E350}
HKLM\SOFTWARE\Classes\CLSID\{64F56FC1-1272-44CD-BA6E-39723696E350}
HKCR\CLSID\{201f27d4-3704-41d6-89c1-aa35e39143ed}
HKCR\CLSID\{0702a2b6-13aa-4090-9e01-bcdc85dd933f}
HKLM\SOFTWARE\Classes\AppID\{362A53B2-2913-4F8A-82F5-7E0A23FDC6F9}
HKCR\CLSID\{b0de3308-5d5a-470d-81b9-634fc078393b}
¤¤¤¤¤¤¤¤¤¤ C:\WINDOWS\Prefetch :
6.13560-6.13570.EXE-3073C85B.pf
AAWTRAY.EXE-1858AE3F.pf
AAWWSC.EXE-248CAA52.pf
AD-AWARE.EXE-3122AD3A.pf
AD-AWAREADMIN.EXE-102E374C.pf
ALG.EXE-0F138680.pf
AUTOLAUNCH.EXE-24D2557C.pf
AU_.EXE-28064B02.pf
AVGNT.EXE-200FEF40.pf
AVMAILC.EXE-22A964BC.pf
AVSCAN.EXE-07FC469C.pf
AVWEBGRD.EXE-03786D52.pf
AVWSC.EXE-0283F9DD.pf
A~NSISU_.EXE-0D3DC087.pf
CCLEANER.EXE-0BCE437C.pf
CMD.EXE-087B4001.pf
CTFMON.EXE-0E17969B.pf
DLLHOST.EXE-42807EE4.pf
DUMPREP.EXE-1B46F901.pf
DW20.EXE-0F7C73AD.pf
DWWIN.EXE-30875ADC.pf
EVEREST.BIN-25D7F60B.pf
EVEREST.EXE-1DE860E4.pf
EXCEL.EXE-13B3F319.pf
FDM.EXE-1EBA87D2.pf
FRANCE24 DESKTOP.EXE-2635363E.pf
GOOGLECRASHHANDLER.EXE-1A9F3296.pf
GOOGLEUPDATE.EXE-1E123D86.pf
GOOGLEUPDATER.EXE-2CAF5929.pf
GOOGLEUPDATERSERVICE.EXE-3AB369BE.pf
GUARDGUI.EXE-00ECD849.pf
HELPCTR.EXE-3862B6F5.pf
HELPSVC.EXE-2878DDA2.pf
IEXPLORE.EXE-27122324.pf
IMAPI.EXE-0BF740A4.pf
IMAPP.EXE-093362B0.pf
IMNOTFY.EXE-39B9FFE6.pf
INCMAIL.EXE-1D49117E.pf
layout.ini
LIGHTSCRIBECONTROLPANEL.EXE-227B1346.pf
LIST_KILLEM.EXE-010FEA21.pf
LSNFIER.EXE-0576E954.pf
LSNFIER.EXE-2CFCA7FA.pf
LXDNAMON.EXE-06431094.pf
LXDNCOMS.EXE-0469540E.pf
LXDNJSWX.EXE-0A959440.pf
LXDNMON.EXE-34BFF939.pf
LXDNMSDMON.EXE-1EB7FECD.pf
LXDNPSWX.EXE-282F762C.pf
LXDNSERV.EXE-070ED4B5.pf
LXDNTIME.EXE-3837254B.pf
MAGENTIC.EXE-0173035F.pf
MAGENT~1.SCR-2B1F1BA6.pf
MBAM-DOR.EXE-203884D2.pf
MBAM.EXE-0BEE0439.pf
MGAPP.EXE-073133FE.pf
MODE.COM-31685BAE.pf
MSCONFIG.EXE-35E4DAE9.pf
MSFEEDSSYNC.EXE-25E13438.pf
MSNAPPAU.EXE-0FDD9428.pf
MSNMSGR.EXE-030AB647.pf
MSN_SL.EXE-047411B3.pf
NMBGMONITOR.EXE-241A04E8.pf
NMINDEXINGSERVICE.EXE-01E84916.pf
NMINDEXSTORESVR.EXE-22A7DEEF.pf
NOTEPAD.EXE-336351A9.pf
NTOSBOOT-B00DFAAD.pf
OFFICELIVESIGNIN.EXE-042374FE.pf
PASSCARDS.EXE-27438077.pf
PCOPTIMIZERSERVICE.EXE-0BBFA1B2.pf
PCTSAUXS.EXE-1E8D77A6.pf
PCTSSVC.EXE-3A239962.pf
PCTSTRAY.EXE-29391146.pf
PICASAPHOTOVIEWER.EXE-1247CDA5.pf
PICASAUPDATER.EXE-032BAF6F.pf
RACCOURCI WINDOWS LIVE MESSEN-12AA1E43.pf
REALPLAY.EXE-1BF219BD.pf
REALSCHED.EXE-04BEC5CC.pf
REG.EXE-0D2A95F7.pf
REMOVE.EXE-1FF2CB09.pf
ROBOTASKBARICON.EXE-05368BA4.pf
RUNDLL32.EXE-12E27DD0.pf
RUNDLL32.EXE-1357CA32.pf
RUNDLL32.EXE-1BC55A4F.pf
RUNDLL32.EXE-1F20A0D1.pf
RUNDLL32.EXE-2138A4AF.pf
RUNDLL32.EXE-33113202.pf
RUNDLL32.EXE-493BA2A5.pf
SEAPORT.EXE-2D9D4167.pf
SEARCHPROTECTION.EXE-05283968.pf
SETUP.EXE-35DBA8FA.pf
SKYPE.EXE-30AE1A60.pf
SKYPEPM.EXE-2BC7DD5C.pf
SOFFICE.BIN-01E25E9C.pf
SOFFICE.EXE-358D937C.pf
SVCHOST.EXE-3530F672.pf
SWRITER.EXE-38A9F6BD.pf
SYSTEMINFO.EXE-32ED1FAB.pf
TASKLIST.EXE-10D94B23.pf
TASKMGR.EXE-20256C55.pf
THREATWORK.EXE-0F50642D.pf
UNINST.EXE-14B4DB18.pf
UNINSTALL.EXE-09295BCF.pf
UNSECAPP.EXE-1A95A33B.pf
UPDATE.EXE-1A7E7F45.pf
UPDATE.EXE-2577D203.pf
VERCLSID.EXE-3667BD89.pf
VPATCH.EXE-318EC448.pf
WF_TP.EXE-1BBE6C73.pf
WINDOWSSEARCH.EXE-33669DD1.pf
WINDOWSSEARCHFILTER.EXE-0C0DB978.pf
WINDOWSSEARCHINDEXER.EXE-158AA150.pf
WLCOMM.EXE-04AE9009.pf
WMIAPSRV.EXE-1E2270A5.pf
WMIC.EXE-3B772CC6.pf
WMIPRVSE.EXE-28F301A9.pf
WSCNTFY.EXE-1B24F5EB.pf
WUAUCLT.EXE-399A8E72.pf
XP-ANTISPY.EXE-37771C5D.pf
YAHOOAUSERVICE.EXE-051C46F5.pf
YAHOOMESSENGER.EXE-06E29CD9.pf
YMSGR_TRAY.EXE-256366BA.pf
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤( EOF )¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
de List&kill'em (rnregistré sur le bureau !
List'em by g3n-h@ckm@n 1.0.4.7
updated on 27.10.2009 ::::: 11.30
Windows_NT
Microsoft Windows XP [version 5.1.2600]
28/10/2009 3:49:14,48
Nom de l'h“te: PC-A2137737F07A
Nom du systŠme d'exploitation: Microsoft Windows XP Professionnel
Version du systŠme: 5.1.2600 Service Pack 3 version 2600
Fabricant du systŠme d'exploitation: Microsoft Corporation
Configuration du systŠme d'exploitation: Station de travail autonome
Type de version du systŠme d'exploitation: Multiprocessor Free
Propri‚taire enregistr‚ÿ: PC.net
Organisation enregistr‚eÿ:
Identificateur de produit: 55711-640-8939526-23868
Date d'installation originale: 13/11/2008, 16:54:00
Dur‚e d'activit‚ systŠme: 0 jours, 4 heures, 3 minutes, 2 secondes
Fabricant du systŠme: MICRO-STAR INTERNATIONAL CO.,LTD
ModŠle du systŠme: MS-7387
Type du systŠme: X86-based PC
Processeur(s): 1 processeur(s) install‚(s).
[01]: x86 Family 6 Model 15 Stepping 13 GenuineIntel ~2000 MHz
Version du BIOS: 121707 - 20071217
R‚pertoire Windows: C:\WINDOWS
R‚pertoire systŠme: C:\WINDOWS\system32
P‚riph‚rique d'amor‡age: \Device\HarddiskVolume1
Option r‚gionale du systŠme: fr;Fran‡ais (France)
ParamŠtres r‚gionaux d'entr‚eÿ: fr;Fran‡ais (France)
Fuseau horaire: N/D
M‚moire physique totale: 894 Mo
M‚moire physique disponible: 203 Mo
M‚moire virtuelle : taille maximale: 2ÿ048 Mo
M‚moire virtuelle : disponible: 2ÿ000 Mo
M‚moire virtuelle : en cours d'utilisation: 48 Mo
Emplacements des fichiers d'‚change: C:\pagefile.sys
Domaine: WORKGROUP
Serveur d'ouverture de session: \\PC-A2137737F07A
Correctif(s): 70 Corrections install‚es.
[01]: File 1
[02]: File 1
[03]: File 1
[04]: File 1
[05]: File 1
[06]: File 1
[07]: File 1
[08]: File 1
[09]: File 1
[10]: File 1
[11]: File 1
[12]: File 1
[13]: File 1
[14]: File 1
[15]: File 1
[16]: File 1
[17]: File 1
[18]: File 1
[19]: File 1
[20]: File 1
[21]: File 1
[22]: File 1
[23]: File 1
[24]: File 1
[25]: File 1
[26]: File 1
[27]: File 1
[28]: File 1
[29]: File 1
[30]: File 1
[31]: Q147222
[32]: M928366 - Update
[33]: S867460 - Update
[34]: Q954430
[35]: IDNMitigationAPIs - Update
[36]: NLSDownlevelMapping - Update
[37]: KB952069_WM9
[38]: KB923689
[39]: KB941569
[40]: KB938127-IE7 - Update
[41]: KB938127-v2-IE7 - Update
[42]: KB958215-IE7 - Update
[43]: KB960714-IE7 - Update
[44]: KB968220-IE8 - Update
[45]: MSCompPackV1 - Update
[46]: KB936929 - Service Pack
[47]: KB938464 - Update
[48]: KB946648 - Update
[49]: KB950762 - Update
[50]: KB950974 - Update
[51]: KB951066 - Update
[52]: KB951376-v2 - Update
[53]: KB951698 - Update
[54]: KB951748 - Update
[55]: KB951978 - Update
[56]: KB952287 - Update
[57]: KB952954 - Update
[58]: KB954211 - Update
[59]: KB954459 - Update
[60]: KB954600 - Update
[61]: KB955069 - Update
[62]: KB955839 - Update
[63]: KB956391 - Update
[64]: KB956802 - Update
[65]: KB956803 - Update
[66]: KB956841 - Update
[67]: KB957095 - Update
[68]: KB957097 - Update
[69]: KB958644 - Update
[70]: KB958687 - Update
Carte(s) r‚seau: 1 carte(s) r‚seau install‚e(s).
[01]: VIA Rhine II Fast Ethernet Adapter
Nom de la connexion : Connexion au r‚seau local
DHCP activ‚ : Oui
Serveur DHCP : 192.168.1.1
Adresse(s) IP
[01] : 192.168.1.2
Nom de l'image PIDÿ Nom de la sessio Num‚ro d Utilisation
========================= ====== ================ ======== ============
System Idle Process 0 Console 0 16 Ko
System 4 Console 0 44 Ko
smss.exe 996 Console 0 52 Ko
csrss.exe 1148 Console 0 3ÿ760 Ko
winlogon.exe 1204 Console 0 3ÿ648 Ko
services.exe 1264 Console 0 2ÿ152 Ko
lsass.exe 1292 Console 0 4ÿ048 Ko
svchost.exe 1496 Console 0 2ÿ200 Ko
svchost.exe 1564 Console 0 2ÿ184 Ko
svchost.exe 1660 Console 0 10ÿ640 Ko
svchost.exe 1848 Console 0 1ÿ800 Ko
svchost.exe 1936 Console 0 864 Ko
AAWService.exe 1996 Console 0 16ÿ840 Ko
spoolsv.exe 240 Console 0 8ÿ032 Ko
sched.exe 352 Console 0 728 Ko
explorer.exe 952 Console 0 30ÿ328 Ko
RTHDCPL.exe 1136 Console 0 2ÿ100 Ko
VTTimer.exe 1164 Console 0 372 Ko
S3Trayp.exe 120 Console 0 664 Ko
ZSSnp211.EXE 1152 Console 0 364 Ko
Domino.EXE 1228 Console 0 168 Ko
apdproxy.exe 1272 Console 0 2ÿ864 Ko
SearchProtection.exe 1416 Console 0 896 Ko
acrotray.exe 1340 Console 0 356 Ko
GoogleQuickSearchBox.exe 1516 Console 0 11ÿ544 Ko
AAWTray.exe 1524 Console 0 404 Ko
lxdnmon.exe 1608 Console 0 680 Ko
avgnt.exe 1756 Console 0 3ÿ140 Ko
lxdnmsdmon.exe 1792 Console 0 3ÿ020 Ko
realsched.exe 1840 Console 0 176 Ko
pctsTray.exe 368 Console 0 1ÿ176 Ko
ctfmon.exe 524 Console 0 1ÿ836 Ko
LightScribeControlPanel.e 544 Console 0 848 Ko
Skype.exe 760 Console 0 16ÿ632 Ko
avguard.exe 788 Console 0 6ÿ236 Ko
fdm.exe 852 Console 0 4ÿ784 Ko
wf_tp.exe 832 Console 0 4ÿ208 Ko
France24 Desktop.exe 1752 Console 0 3ÿ128 Ko
robotaskbaricon.exe 1920 Console 0 2ÿ096 Ko
MgApp.exe 2068 Console 0 2ÿ296 Ko
LSSrvc.exe 2312 Console 0 168 Ko
WindowsSearch.exe 2348 Console 0 820 Ko
lxdnserv.exe 2856 Console 0 200 Ko
ImApp.exe 2932 Console 0 7ÿ196 Ko
lxdncoms.exe 3012 Console 0 5ÿ300 Ko
PCoptimizerService.exe 3136 Console 0 260 Ko
pctsAuxs.exe 3280 Console 0 476 Ko
pctsSvc.exe 3300 Console 0 25ÿ400 Ko
WindowsSearchIndexer.exe 3500 Console 0 4ÿ636 Ko
SeaPort.exe 1760 Console 0 876 Ko
svchost.exe 2868 Console 0 2ÿ456 Ko
YahooAUService.exe 3440 Console 0 644 Ko
avmailc.exe 3644 Console 0 712 Ko
avwebgrd.exe 3872 Console 0 3ÿ752 Ko
skypePM.exe 2972 Console 0 3ÿ436 Ko
unsecapp.exe 3748 Console 0 760 Ko
wscntfy.exe 2328 Console 0 696 Ko
wmiprvse.exe 3100 Console 0 3ÿ068 Ko
alg.exe 2168 Console 0 920 Ko
msnmsgr.exe 2472 Console 0 7ÿ376 Ko
Ymsgr_tray.exe 416 Console 0 1ÿ192 Ko
wlcomm.exe 1820 Console 0 29ÿ028 Ko
iexplore.exe 960 Console 0 6ÿ024 Ko
iexplore.exe 1092 Console 0 157ÿ184 Ko
iexplore.exe 1880 Console 0 227ÿ092 Ko
List_Killem.exe 4712 Console 0 25ÿ572 Ko
cmd.exe 5708 Console 0 7ÿ936 Ko
wmiprvse.exe 5236 Console 0 8ÿ736 Ko
tasklist.exe 5364 Console 0 5ÿ196 Ko
======================
Cles de demarrage "Run"
======================
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\\WINDOWS\\system32\\ctfmon.exe"
"LightScribe Control Panel"="C:\\Program Files\\Fichiers communs\\LightScribe\\LightScribeControlPanel.exe -hidden"
"Messenger (Yahoo!)"="\"C:\\Program Files\\Yahoo!\\Messenger\\YahooMessenger.exe\" -quiet"
"Magentic"="C:\\PROGRA~1\\Magentic\\bin\\Magentic.exe /c"
"IncrediMail"="C:\\Program Files\\IncrediMail\\bin\\IncMail.exe /c"
"Search Protection"="C:\\Program Files\\Yahoo!\\Search Protection\\SearchProtection.exe"
"YSearchProtection"="C:\\Program Files\\Yahoo!\\Search Protection\\SearchProtection.exe"
"Skype"="\"C:\\Program Files\\Skype\\Phone\\Skype.exe\" /nosplash /minimized"
"Free Download Manager"="\"C:\\Program Files\\Free Download Manager\\fdm.exe\" -autorun"
"WISE-FTP Task Planner"="\"C:\\Program Files\\AceBIT\\WISE-FTP 5\\wf_tp.exe\" /bg"
"france24"="C:\\Documents and Settings\\Bienvenue sur XP\\Local Settings\\Application Data\\Djingle\\France24 Desktop\\bin\\autorun.lnk"
"RoboForm"="\"C:\\Program Files\\Siber Systems\\AI RoboForm\\RoboTaskBarIcon.exe\""
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RTHDCPL"="RTHDCPL.EXE"
"VTTimer"="VTTimer.exe"
"S3Trayp"="S3Trayp.exe"
"NeroFilterCheck"="C:\\Program Files\\Fichiers communs\\Ahead\\Lib\\NeroCheck.exe"
"ZSSnp211"="C:\\WINDOWS\\ZSSnp211.exe"
"Domino"="C:\\WINDOWS\\Domino.exe"
"Adobe Photo Downloader"="\"C:\\Program Files\\Adobe\\Photoshop Album Edition D‚couverte\\3.0\\Apps\\apdproxy.exe\""
"FaxCenterServer"="\"C:\\Program Files\\Lexmark Fax Solutions\\fm3032.exe\" /s"
"fssui"="\"C:\\Program Files\\Windows Live\\Family Safety\\fsui.exe\" -autorun"
"YSearchProtection"="\"C:\\Program Files\\Yahoo!\\Search Protection\\SearchProtection.exe\""
"Adobe Reader Speed Launcher"="\"C:\\Program Files\\Adobe\\Reader 9.0\\Reader\\Reader_sl.exe\""
"Adobe Acrobat Speed Launcher"="\"C:\\Program Files\\Adobe\\Acrobat 9.0\\Acrobat\\Acrobat_sl.exe\""
@=""
"Acrobat Assistant 8.0"="\"C:\\Program Files\\Adobe\\Acrobat 9.0\\Acrobat\\Acrotray.exe\""
"Google Quick Search Box"="\"C:\\Program Files\\Google\\Quick Search Box\\GoogleQuickSearchBox.exe\" /autorun"
"Ad-Watch"="C:\\Program Files\\Lavasoft\\Ad-Aware\\AAWTray.exe"
"lxdnmon.exe"="\"C:\\Program Files\\Lexmark 2600 Series\\lxdnmon.exe\""
"lxdnamon"="\"C:\\Program Files\\Lexmark 2600 Series\\lxdnamon.exe\""
"avgnt"="\"C:\\Program Files\\Avira\\AntiVir Desktop\\avgnt.exe\" /min"
"TkBellExe"="\"C:\\Program Files\\Fichiers communs\\Real\\Update_OB\\realsched.exe\" -osboot"
"ISTray"="\"C:\\Program Files\\Spyware Doctor\\pctsTray.exe\""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents\IMAIL]
"Installed"="1"
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents\MAPI]
"NoChange"="1"
"Installed"="1"
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents\MSFS]
"Installed"="1"
@=""
=====================
cles additionnelles
=====================
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=dword:00000000
"legalnoticecaption"=""
"legalnoticetext"=""
"shutdownwithoutlogon"=dword:00000001
"undockwithoutlogon"=dword:00000001
"ConsentPromptBehaviorAdmin"=dword:00000002
===============
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
===============
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
"PostBootReminder"="{7849596a-48ea-486e-8937-a2a3009f31a9}"
"CDBurn"="{fbeb8a05-beee-4442-804e-409d6c4515e9}"
"WebCheck"="{E6FB5E20-DE35-11CF-9C87-00AA005127ED}"
"SysTray"="{35CEC8A3-2BE6-11D2-8773-92E220524153}"
"WPDShServiceObj"="{AAA288BA-9A4C-45B0-95D7-94D524869DB5}"
======
BHO :
======
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4efb-9B51-7695ECA05670}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4efb-9B51-7695ECA05670}\NoExplorer]
@=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1017A80C-6F09-4548-A84D-EDD6AC9525F0}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
@="AcroIEHelperStub"
"NoExplorer"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1AD61D5B-58A3-4592-9B34-DC84688FF805}]
@="PDFHelperBHO"
"NoExplorer"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{201f27d4-3704-41d6-89c1-aa35e39143ed}]
@="AskBar BHO"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{22BF413B-C6D2-4d91-82A9-A0F997BA588C}]
@="Skype add-on (mastermind)"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{724d43a9-0d85-11d4-9908-00400523e39a}]
@="RoboForm"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0}]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C84D72FE-E17D-4195-BB24-76C02E2E7C4E}]
@="Google Dictionary Compression sdch"
"NoExplorer"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CC59E0F9-7E43-44FA-9FAA-8377850BF205}]
"NoExplorer"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
"NoExplorer"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F4971EE7-DAA0-4053-9964-665D8EE6A077}]
"NoExplorer"=dword:00000001
@="SmartSelect"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FDAD4DA1-61A2-4FD8-9C17-86F7AC245081}]
==========================
===============
Path : C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem
===============
¤¤¤¤¤¤¤¤¤¤ Fichiers et dossiers presents :
C:\Documents and Settings\All Users\Application Data\QTSBandwidthCache
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat
C:\Program Files\AskBarDis
C:\WINDOWS\System32\_000006_.tmp.dll
C:\WINDOWS\System32\_000007_.tmp.dll
C:\WINDOWS\System32\_000008_.tmp.dll
C:\WINDOWS\System32\_000022_.tmp.dll
C:\WINDOWS\System32\_000023_.tmp.dll
C:\WINDOWS\System32\_000024_.tmp.dll
C:\WINDOWS\System32\_000025_.tmp.dll
C:\WINDOWS\System32\SET100.tmp
C:\WINDOWS\System32\SET101.tmp
C:\WINDOWS\System32\SET102.tmp
C:\WINDOWS\System32\SET103.tmp
C:\WINDOWS\System32\SET104.tmp
C:\WINDOWS\System32\SET105.tmp
C:\WINDOWS\System32\SET106.tmp
C:\WINDOWS\System32\SET107.tmp
C:\WINDOWS\System32\SET108.tmp
C:\WINDOWS\System32\SET109.tmp
C:\WINDOWS\System32\SET10A.tmp
C:\WINDOWS\System32\SET10B.tmp
C:\WINDOWS\System32\SET10C.tmp
C:\WINDOWS\System32\SET10D.tmp
C:\WINDOWS\System32\SET10E.tmp
C:\WINDOWS\System32\SET10F.tmp
C:\WINDOWS\System32\SET110.tmp
C:\WINDOWS\System32\SET111.tmp
C:\WINDOWS\System32\SET112.tmp
C:\WINDOWS\System32\SET113.tmp
C:\WINDOWS\System32\SET114.tmp
C:\WINDOWS\System32\SET115.tmp
C:\WINDOWS\System32\SET116.tmp
C:\WINDOWS\System32\SET117.tmp
C:\WINDOWS\System32\SET118.tmp
C:\WINDOWS\System32\SET119.tmp
C:\WINDOWS\System32\SET11A.tmp
C:\WINDOWS\System32\SET11B.tmp
C:\WINDOWS\System32\SET11C.tmp
C:\WINDOWS\System32\SET11D.tmp
C:\WINDOWS\System32\SET11E.tmp
C:\WINDOWS\System32\SET11F.tmp
C:\WINDOWS\System32\SET120.tmp
C:\WINDOWS\System32\SET121.tmp
C:\WINDOWS\System32\SET122.tmp
C:\WINDOWS\System32\SET123.tmp
C:\WINDOWS\System32\SET124.tmp
C:\WINDOWS\System32\SET125.tmp
C:\WINDOWS\System32\SET126.tmp
C:\WINDOWS\System32\SET127.tmp
C:\WINDOWS\System32\SET128.tmp
C:\WINDOWS\System32\SET129.tmp
C:\WINDOWS\System32\SET12A.tmp
C:\WINDOWS\System32\SET12B.tmp
C:\WINDOWS\System32\SET12C.tmp
C:\WINDOWS\System32\SET12D.tmp
C:\WINDOWS\System32\SET12E.tmp
C:\WINDOWS\System32\SET12F.tmp
C:\WINDOWS\System32\SET130.tmp
C:\WINDOWS\System32\SET131.tmp
C:\WINDOWS\System32\SET132.tmp
C:\WINDOWS\System32\SET133.tmp
C:\WINDOWS\System32\SET134.tmp
C:\WINDOWS\System32\SET135.tmp
C:\WINDOWS\System32\SET136.tmp
C:\WINDOWS\System32\SET137.tmp
C:\WINDOWS\System32\SET138.tmp
C:\WINDOWS\System32\SET139.tmp
C:\WINDOWS\System32\SET13A.tmp
C:\WINDOWS\System32\SET13B.tmp
C:\WINDOWS\System32\SET13C.tmp
C:\WINDOWS\System32\SET13D.tmp
C:\WINDOWS\System32\SET13E.tmp
C:\WINDOWS\System32\SET13F.tmp
C:\WINDOWS\System32\SET140.tmp
C:\WINDOWS\System32\SET141.tmp
C:\WINDOWS\System32\SET142.tmp
C:\WINDOWS\System32\SET143.tmp
C:\WINDOWS\System32\SET144.tmp
C:\WINDOWS\System32\SET145.tmp
C:\WINDOWS\System32\SET146.tmp
C:\WINDOWS\System32\SET147.tmp
C:\WINDOWS\System32\SET148.tmp
C:\WINDOWS\System32\SET149.tmp
C:\WINDOWS\System32\SET14A.tmp
C:\WINDOWS\System32\SET14B.tmp
C:\WINDOWS\System32\SET14C.tmp
C:\WINDOWS\System32\SET14D.tmp
C:\WINDOWS\System32\SET14E.tmp
C:\WINDOWS\System32\SET14F.tmp
C:\WINDOWS\System32\SET150.tmp
C:\WINDOWS\System32\SET151.tmp
C:\WINDOWS\System32\SET152.tmp
C:\WINDOWS\System32\SET153.tmp
C:\WINDOWS\System32\SET154.tmp
C:\WINDOWS\System32\SET155.tmp
C:\WINDOWS\System32\SET156.tmp
C:\WINDOWS\System32\SET157.tmp
C:\WINDOWS\System32\SET158.tmp
C:\WINDOWS\System32\SET159.tmp
C:\WINDOWS\System32\SET15A.tmp
C:\WINDOWS\System32\SET15B.tmp
C:\WINDOWS\System32\SET15C.tmp
C:\WINDOWS\System32\SET15D.tmp
C:\WINDOWS\System32\SET15E.tmp
C:\WINDOWS\System32\SET15F.tmp
C:\WINDOWS\System32\SET160.tmp
C:\WINDOWS\System32\SET161.tmp
C:\WINDOWS\System32\SET162.tmp
C:\WINDOWS\System32\SET163.tmp
C:\WINDOWS\System32\SET164.tmp
C:\WINDOWS\System32\SET165.tmp
C:\WINDOWS\System32\SET166.tmp
C:\WINDOWS\System32\SET167.tmp
C:\WINDOWS\System32\SET168.tmp
C:\WINDOWS\System32\SET169.tmp
C:\WINDOWS\System32\SET16A.tmp
C:\WINDOWS\System32\SET16B.tmp
C:\WINDOWS\System32\SET16C.tmp
C:\WINDOWS\System32\SET16D.tmp
C:\WINDOWS\System32\SET16E.tmp
C:\WINDOWS\System32\SET16F.tmp
C:\WINDOWS\System32\SET17.tmp
C:\WINDOWS\System32\SET170.tmp
C:\WINDOWS\System32\SET171.tmp
C:\WINDOWS\System32\SET172.tmp
C:\WINDOWS\System32\SET173.tmp
C:\WINDOWS\System32\SET174.tmp
C:\WINDOWS\System32\SET175.tmp
C:\WINDOWS\System32\SET176.tmp
C:\WINDOWS\System32\SET177.tmp
C:\WINDOWS\System32\SET178.tmp
C:\WINDOWS\System32\SET179.tmp
C:\WINDOWS\System32\SET17A.tmp
C:\WINDOWS\System32\SET17B.tmp
C:\WINDOWS\System32\SET17C.tmp
C:\WINDOWS\System32\SET17D.tmp
C:\WINDOWS\System32\SET17E.tmp
C:\WINDOWS\System32\SET17F.tmp
C:\WINDOWS\System32\SET18.tmp
C:\WINDOWS\System32\SET180.tmp
C:\WINDOWS\System32\SET181.tmp
C:\WINDOWS\System32\SET182.tmp
C:\WINDOWS\System32\SET183.tmp
C:\WINDOWS\System32\SET184.tmp
C:\WINDOWS\System32\SET185.tmp
C:\WINDOWS\System32\SET186.tmp
C:\WINDOWS\System32\SET187.tmp
C:\WINDOWS\System32\SET188.tmp
C:\WINDOWS\System32\SET189.tmp
C:\WINDOWS\System32\SET18A.tmp
C:\WINDOWS\System32\SET18B.tmp
C:\WINDOWS\System32\SET18C.tmp
C:\WINDOWS\System32\SET18D.tmp
C:\WINDOWS\System32\SET18E.tmp
C:\WINDOWS\System32\SET18F.tmp
C:\WINDOWS\System32\SET19.tmp
C:\WINDOWS\System32\SET190.tmp
C:\WINDOWS\System32\SET191.tmp
C:\WINDOWS\System32\SET192.tmp
C:\WINDOWS\System32\SET193.tmp
C:\WINDOWS\System32\SET194.tmp
C:\WINDOWS\System32\SET195.tmp
C:\WINDOWS\System32\SET196.tmp
C:\WINDOWS\System32\SET197.tmp
C:\WINDOWS\System32\SET198.tmp
C:\WINDOWS\System32\SET199.tmp
C:\WINDOWS\System32\SET19A.tmp
C:\WINDOWS\System32\SET19B.tmp
C:\WINDOWS\System32\SET19C.tmp
C:\WINDOWS\System32\SET19D.tmp
C:\WINDOWS\System32\SET19E.tmp
C:\WINDOWS\System32\SET19F.tmp
C:\WINDOWS\System32\SET1A.tmp
C:\WINDOWS\System32\SET1A0.tmp
C:\WINDOWS\System32\SET1A1.tmp
C:\WINDOWS\System32\SET1A2.tmp
C:\WINDOWS\System32\SET1A3.tmp
C:\WINDOWS\System32\SET1A4.tmp
C:\WINDOWS\System32\SET1A5.tmp
C:\WINDOWS\System32\SET1A6.tmp
C:\WINDOWS\System32\SET1A7.tmp
C:\WINDOWS\System32\SET1A8.tmp
C:\WINDOWS\System32\SET1A9.tmp
C:\WINDOWS\System32\SET1AA.tmp
C:\WINDOWS\System32\SET1AB.tmp
C:\WINDOWS\System32\SET1AC.tmp
C:\WINDOWS\System32\SET1AD.tmp
C:\WINDOWS\System32\SET1AE.tmp
C:\WINDOWS\System32\SET1AF.tmp
C:\WINDOWS\System32\SET1B.tmp
C:\WINDOWS\System32\SET1B0.tmp
C:\WINDOWS\System32\SET1B1.tmp
C:\WINDOWS\System32\SET1B2.tmp
C:\WINDOWS\System32\SET1B3.tmp
C:\WINDOWS\System32\SET1B4.tmp
C:\WINDOWS\System32\SET1B5.tmp
C:\WINDOWS\System32\SET1B6.tmp
C:\WINDOWS\System32\SET1B7.tmp
C:\WINDOWS\System32\SET1B8.tmp
C:\WINDOWS\System32\SET1B9.tmp
C:\WINDOWS\System32\SET1BA.tmp
C:\WINDOWS\System32\SET1BB.tmp
C:\WINDOWS\System32\SET1BC.tmp
C:\WINDOWS\System32\SET1BD.tmp
C:\WINDOWS\System32\SET1BE.tmp
C:\WINDOWS\System32\SET1BF.tmp
C:\WINDOWS\System32\SET1C.tmp
C:\WINDOWS\System32\SET1C0.tmp
C:\WINDOWS\System32\SET1C1.tmp
C:\WINDOWS\System32\SET1C2.tmp
C:\WINDOWS\System32\SET1C3.tmp
C:\WINDOWS\System32\SET1C4.tmp
C:\WINDOWS\System32\SET1C5.tmp
C:\WINDOWS\System32\SET1C6.tmp
C:\WINDOWS\System32\SET1C7.tmp
C:\WINDOWS\System32\SET1C8.tmp
C:\WINDOWS\System32\SET1C9.tmp
C:\WINDOWS\System32\SET1CA.tmp
C:\WINDOWS\System32\SET1CB.tmp
C:\WINDOWS\System32\SET1CC.tmp
C:\WINDOWS\System32\SET1CD.tmp
C:\WINDOWS\System32\SET1CE.tmp
C:\WINDOWS\System32\SET1CF.tmp
C:\WINDOWS\System32\SET1D.tmp
C:\WINDOWS\System32\SET1D0.tmp
C:\WINDOWS\System32\SET1D1.tmp
C:\WINDOWS\System32\SET1D2.tmp
C:\WINDOWS\System32\SET1D3.tmp
C:\WINDOWS\System32\SET1D4.tmp
C:\WINDOWS\System32\SET1D5.tmp
C:\WINDOWS\System32\SET1D6.tmp
C:\WINDOWS\System32\SET1D7.tmp
C:\WINDOWS\System32\SET1D8.tmp
C:\WINDOWS\System32\SET1D9.tmp
C:\WINDOWS\System32\SET1DA.tmp
C:\WINDOWS\System32\SET1DB.tmp
C:\WINDOWS\System32\SET1DC.tmp
C:\WINDOWS\System32\SET1DD.tmp
C:\WINDOWS\System32\SET1DE.tmp
C:\WINDOWS\System32\SET1DF.tmp
C:\WINDOWS\System32\SET1E.tmp
C:\WINDOWS\System32\SET1E0.tmp
C:\WINDOWS\System32\SET1E1.tmp
C:\WINDOWS\System32\SET1E2.tmp
C:\WINDOWS\System32\SET1E3.tmp
C:\WINDOWS\System32\SET1E4.tmp
C:\WINDOWS\System32\SET1E5.tmp
C:\WINDOWS\System32\SET1E6.tmp
C:\WINDOWS\System32\SET1E7.tmp
C:\WINDOWS\System32\SET1E8.tmp
C:\WINDOWS\System32\SET1E9.tmp
C:\WINDOWS\System32\SET1EA.tmp
C:\WINDOWS\System32\SET1EB.tmp
C:\WINDOWS\System32\SET1EC.tmp
C:\WINDOWS\System32\SET1ED.tmp
C:\WINDOWS\System32\SET1EE.tmp
C:\WINDOWS\System32\SET1EF.tmp
C:\WINDOWS\System32\SET1F.tmp
C:\WINDOWS\System32\SET1F0.tmp
C:\WINDOWS\System32\SET1F1.tmp
C:\WINDOWS\System32\SET1F2.tmp
C:\WINDOWS\System32\SET1F3.tmp
C:\WINDOWS\System32\SET1F4.tmp
C:\WINDOWS\System32\SET1F5.tmp
C:\WINDOWS\System32\SET1F6.tmp
C:\WINDOWS\System32\SET1F7.tmp
C:\WINDOWS\System32\SET1F8.tmp
C:\WINDOWS\System32\SET1F9.tmp
C:\WINDOWS\System32\SET1FA.tmp
C:\WINDOWS\System32\SET1FB.tmp
C:\WINDOWS\System32\SET1FC.tmp
C:\WINDOWS\System32\SET1FD.tmp
C:\WINDOWS\System32\SET1FE.tmp
C:\WINDOWS\System32\SET1FF.tmp
C:\WINDOWS\System32\SET20.tmp
C:\WINDOWS\System32\SET200.tmp
C:\WINDOWS\System32\SET201.tmp
C:\WINDOWS\System32\SET202.tmp
C:\WINDOWS\System32\SET203.tmp
C:\WINDOWS\System32\SET204.tmp
C:\WINDOWS\System32\SET205.tmp
C:\WINDOWS\System32\SET206.tmp
C:\WINDOWS\System32\SET207.tmp
C:\WINDOWS\System32\SET208.tmp
C:\WINDOWS\System32\SET209.tmp
C:\WINDOWS\System32\SET20A.tmp
C:\WINDOWS\System32\SET20B.tmp
C:\WINDOWS\System32\SET20C.tmp
C:\WINDOWS\System32\SET20D.tmp
C:\WINDOWS\System32\SET20E.tmp
C:\WINDOWS\System32\SET20F.tmp
C:\WINDOWS\System32\SET21.tmp
C:\WINDOWS\System32\SET210.tmp
C:\WINDOWS\System32\SET211.tmp
C:\WINDOWS\System32\SET212.tmp
C:\WINDOWS\System32\SET213.tmp
C:\WINDOWS\System32\SET214.tmp
C:\WINDOWS\System32\SET215.tmp
C:\WINDOWS\System32\SET216.tmp
C:\WINDOWS\System32\SET217.tmp
C:\WINDOWS\System32\SET218.tmp
C:\WINDOWS\System32\SET219.tmp
C:\WINDOWS\System32\SET21A.tmp
C:\WINDOWS\System32\SET21B.tmp
C:\WINDOWS\System32\SET21C.tmp
C:\WINDOWS\System32\SET21D.tmp
C:\WINDOWS\System32\SET21E.tmp
C:\WINDOWS\System32\SET21F.tmp
C:\WINDOWS\System32\SET22.tmp
C:\WINDOWS\System32\SET220.tmp
C:\WINDOWS\System32\SET221.tmp
C:\WINDOWS\System32\SET222.tmp
C:\WINDOWS\System32\SET223.tmp
C:\WINDOWS\System32\SET224.tmp
C:\WINDOWS\System32\SET225.tmp
C:\WINDOWS\System32\SET226.tmp
C:\WINDOWS\System32\SET227.tmp
C:\WINDOWS\System32\SET228.tmp
C:\WINDOWS\System32\SET229.tmp
C:\WINDOWS\System32\SET22A.tmp
C:\WINDOWS\System32\SET22B.tmp
C:\WINDOWS\System32\SET22C.tmp
C:\WINDOWS\System32\SET22D.tmp
C:\WINDOWS\System32\SET22E.tmp
C:\WINDOWS\System32\SET22F.tmp
C:\WINDOWS\System32\SET23.tmp
C:\WINDOWS\System32\SET230.tmp
C:\WINDOWS\System32\SET231.tmp
C:\WINDOWS\System32\SET232.tmp
C:\WINDOWS\System32\SET233.tmp
C:\WINDOWS\System32\SET234.tmp
C:\WINDOWS\System32\SET235.tmp
C:\WINDOWS\System32\SET236.tmp
C:\WINDOWS\System32\SET237.tmp
C:\WINDOWS\System32\SET238.tmp
C:\WINDOWS\System32\SET239.tmp
C:\WINDOWS\System32\SET23A.tmp
C:\WINDOWS\System32\SET23B.tmp
C:\WINDOWS\System32\SET23C.tmp
C:\WINDOWS\System32\SET23D.tmp
C:\WINDOWS\System32\SET23E.tmp
C:\WINDOWS\System32\SET23F.tmp
C:\WINDOWS\System32\SET24.tmp
C:\WINDOWS\System32\SET240.tmp
C:\WINDOWS\System32\SET241.tmp
C:\WINDOWS\System32\SET242.tmp
C:\WINDOWS\System32\SET243.tmp
C:\WINDOWS\System32\SET244.tmp
C:\WINDOWS\System32\SET245.tmp
C:\WINDOWS\System32\SET246.tmp
C:\WINDOWS\System32\SET247.tmp
C:\WINDOWS\System32\SET248.tmp
C:\WINDOWS\System32\SET249.tmp
C:\WINDOWS\System32\SET24A.tmp
C:\WINDOWS\System32\SET24B.tmp
C:\WINDOWS\System32\SET24C.tmp
C:\WINDOWS\System32\SET24D.tmp
C:\WINDOWS\System32\SET24E.tmp
C:\WINDOWS\System32\SET24F.tmp
C:\WINDOWS\System32\SET25.tmp
C:\WINDOWS\System32\SET250.tmp
C:\WINDOWS\System32\SET251.tmp
C:\WINDOWS\System32\SET252.tmp
C:\WINDOWS\System32\SET253.tmp
C:\WINDOWS\System32\SET254.tmp
C:\WINDOWS\System32\SET255.tmp
C:\WINDOWS\System32\SET26.tmp
C:\WINDOWS\System32\SET27.tmp
C:\WINDOWS\System32\SET28.tmp
C:\WINDOWS\System32\SET29.tmp
C:\WINDOWS\System32\SET298.tmp
C:\WINDOWS\System32\SET29E.tmp
C:\WINDOWS\System32\SET2A.tmp
C:\WINDOWS\System32\SET2A4.tmp
C:\WINDOWS\System32\SET2A5.tmp
C:\WINDOWS\System32\SET2A7.tmp
C:\WINDOWS\System32\SET2B.tmp
C:\WINDOWS\System32\SET2BC.tmp
C:\WINDOWS\System32\SET2BE.tmp
C:\WINDOWS\System32\SET2C.tmp
C:\WINDOWS\System32\SET2C2.tmp
C:\WINDOWS\System32\SET2C3.tmp
C:\WINDOWS\System32\SET2CC.tmp
C:\WINDOWS\System32\SET2D.tmp
C:\WINDOWS\System32\SET2E.tmp
C:\WINDOWS\System32\SET2ED.tmp
C:\WINDOWS\System32\SET2EE.tmp
C:\WINDOWS\System32\SET2EF.tmp
C:\WINDOWS\System32\SET2F.tmp
C:\WINDOWS\System32\SET2F2.tmp
C:\WINDOWS\System32\SET2F3.tmp
C:\WINDOWS\System32\SET30.tmp
C:\WINDOWS\System32\SET30E.tmp
C:\WINDOWS\System32\SET31.tmp
C:\WINDOWS\System32\SET32.tmp
C:\WINDOWS\System32\SET324.tmp
C:\WINDOWS\System32\SET33.tmp
C:\WINDOWS\System32\SET34.tmp
C:\WINDOWS\System32\SET35.tmp
C:\WINDOWS\System32\SET36.tmp
C:\WINDOWS\System32\SET37.tmp
C:\WINDOWS\System32\SET38.tmp
C:\WINDOWS\System32\SET39.tmp
C:\WINDOWS\System32\SET3A.tmp
C:\WINDOWS\System32\SET3B.tmp
C:\WINDOWS\System32\SET3C.tmp
C:\WINDOWS\System32\SET3D.tmp
C:\WINDOWS\System32\SET3E.tmp
C:\WINDOWS\System32\SET3F.tmp
C:\WINDOWS\System32\SET40.tmp
C:\WINDOWS\System32\SET41.tmp
C:\WINDOWS\System32\SET42.tmp
C:\WINDOWS\System32\SET43.tmp
C:\WINDOWS\System32\SET44.tmp
C:\WINDOWS\System32\SET45.tmp
C:\WINDOWS\System32\SET46.tmp
C:\WINDOWS\System32\SET47.tmp
C:\WINDOWS\System32\SET48.tmp
C:\WINDOWS\System32\SET49.tmp
C:\WINDOWS\System32\SET4A.tmp
C:\WINDOWS\System32\SET4B.tmp
C:\WINDOWS\System32\SET4C.tmp
C:\WINDOWS\System32\SET4D.tmp
C:\WINDOWS\System32\SET4E.tmp
C:\WINDOWS\System32\SET4F.tmp
C:\WINDOWS\System32\SET50.tmp
C:\WINDOWS\System32\SET51.tmp
C:\WINDOWS\System32\SET52.tmp
C:\WINDOWS\System32\SET53.tmp
C:\WINDOWS\System32\SET54.tmp
C:\WINDOWS\System32\SET55.tmp
C:\WINDOWS\System32\SET56.tmp
C:\WINDOWS\System32\SET57.tmp
C:\WINDOWS\System32\SET58.tmp
C:\WINDOWS\System32\SET59.tmp
C:\WINDOWS\System32\SET5A.tmp
C:\WINDOWS\System32\SET5B.tmp
C:\WINDOWS\System32\SET5C.tmp
C:\WINDOWS\System32\SET5D.tmp
C:\WINDOWS\System32\SET5E.tmp
C:\WINDOWS\System32\SET5F.tmp
C:\WINDOWS\System32\SET60.tmp
C:\WINDOWS\System32\SET61.tmp
C:\WINDOWS\System32\SET62.tmp
C:\WINDOWS\System32\SET63.tmp
C:\WINDOWS\System32\SET64.tmp
C:\WINDOWS\System32\SET65.tmp
C:\WINDOWS\System32\SET66.tmp
C:\WINDOWS\System32\SET67.tmp
C:\WINDOWS\System32\SET68.tmp
C:\WINDOWS\System32\SET69.tmp
C:\WINDOWS\System32\SET6A.tmp
C:\WINDOWS\System32\SET6B.tmp
C:\WINDOWS\System32\SET6C.tmp
C:\WINDOWS\System32\SET6D.tmp
C:\WINDOWS\System32\SET6E.tmp
C:\WINDOWS\System32\SET6F.tmp
C:\WINDOWS\System32\SET70.tmp
C:\WINDOWS\System32\SET71.tmp
C:\WINDOWS\System32\SET72.tmp
C:\WINDOWS\System32\SET73.tmp
C:\WINDOWS\System32\SET74.tmp
C:\WINDOWS\System32\SET75.tmp
C:\WINDOWS\System32\SET76.tmp
C:\WINDOWS\System32\SET77.tmp
C:\WINDOWS\System32\SET78.tmp
C:\WINDOWS\System32\SET79.tmp
C:\WINDOWS\System32\SET7A.tmp
C:\WINDOWS\System32\SET7B.tmp
C:\WINDOWS\System32\SET7C.tmp
C:\WINDOWS\System32\SET7D.tmp
C:\WINDOWS\System32\SET7E.tmp
C:\WINDOWS\System32\SET7F.tmp
C:\WINDOWS\System32\SET80.tmp
C:\WINDOWS\System32\SET81.tmp
C:\WINDOWS\System32\SET82.tmp
C:\WINDOWS\System32\SET83.tmp
C:\WINDOWS\System32\SET84.tmp
C:\WINDOWS\System32\SET85.tmp
C:\WINDOWS\System32\SET86.tmp
C:\WINDOWS\System32\SET87.tmp
C:\WINDOWS\System32\SET88.tmp
C:\WINDOWS\System32\SET89.tmp
C:\WINDOWS\System32\SET8A.tmp
C:\WINDOWS\System32\SET8B.tmp
C:\WINDOWS\System32\SET8C.tmp
C:\WINDOWS\System32\SET8D.tmp
C:\WINDOWS\System32\SET8E.tmp
C:\WINDOWS\System32\SET8F.tmp
C:\WINDOWS\System32\SET90.tmp
C:\WINDOWS\System32\SET91.tmp
C:\WINDOWS\System32\SET92.tmp
C:\WINDOWS\System32\SET93.tmp
C:\WINDOWS\System32\SET94.tmp
C:\WINDOWS\System32\SET95.tmp
C:\WINDOWS\System32\SET96.tmp
C:\WINDOWS\System32\SET97.tmp
C:\WINDOWS\System32\SET98.tmp
C:\WINDOWS\System32\SET99.tmp
C:\WINDOWS\System32\SET9A.tmp
C:\WINDOWS\System32\SET9B.tmp
C:\WINDOWS\System32\SET9C.tmp
C:\WINDOWS\System32\SET9D.tmp
C:\WINDOWS\System32\SET9E.tmp
C:\WINDOWS\System32\SET9F.tmp
C:\WINDOWS\System32\SETA0.tmp
C:\WINDOWS\System32\SETA1.tmp
C:\WINDOWS\System32\SETA2.tmp
C:\WINDOWS\System32\SETA3.tmp
C:\WINDOWS\System32\SETA4.tmp
C:\WINDOWS\System32\SETA5.tmp
C:\WINDOWS\System32\SETA6.tmp
C:\WINDOWS\System32\SETA7.tmp
C:\WINDOWS\System32\SETA8.tmp
C:\WINDOWS\System32\SETA9.tmp
C:\WINDOWS\System32\SETAA.tmp
C:\WINDOWS\System32\SETAB.tmp
C:\WINDOWS\System32\SETAC.tmp
C:\WINDOWS\System32\SETAD.tmp
C:\WINDOWS\System32\SETAE.tmp
C:\WINDOWS\System32\SETAF.tmp
C:\WINDOWS\System32\SETB0.tmp
C:\WINDOWS\System32\SETB1.tmp
C:\WINDOWS\System32\SETB2.tmp
C:\WINDOWS\System32\SETB3.tmp
C:\WINDOWS\System32\SETB4.tmp
C:\WINDOWS\System32\SETB5.tmp
C:\WINDOWS\System32\SETB6.tmp
C:\WINDOWS\System32\SETB7.tmp
C:\WINDOWS\System32\SETB8.tmp
C:\WINDOWS\System32\SETB9.tmp
C:\WINDOWS\System32\SETBA.tmp
C:\WINDOWS\System32\SETBB.tmp
C:\WINDOWS\System32\SETBC.tmp
C:\WINDOWS\System32\SETBD.tmp
C:\WINDOWS\System32\SETBE.tmp
C:\WINDOWS\System32\SETBF.tmp
C:\WINDOWS\System32\SETC0.tmp
C:\WINDOWS\System32\SETC1.tmp
C:\WINDOWS\System32\SETC2.tmp
C:\WINDOWS\System32\SETC3.tmp
C:\WINDOWS\System32\SETC4.tmp
C:\WINDOWS\System32\SETC5.tmp
C:\WINDOWS\System32\SETC6.tmp
C:\WINDOWS\System32\SETC7.tmp
C:\WINDOWS\System32\SETC8.tmp
C:\WINDOWS\System32\SETC9.tmp
C:\WINDOWS\System32\SETCA.tmp
C:\WINDOWS\System32\SETCB.tmp
C:\WINDOWS\System32\SETCC.tmp
C:\WINDOWS\System32\SETCD.tmp
C:\WINDOWS\System32\SETCE.tmp
C:\WINDOWS\System32\SETCF.tmp
C:\WINDOWS\System32\SETD0.tmp
C:\WINDOWS\System32\SETD1.tmp
C:\WINDOWS\System32\SETD2.tmp
C:\WINDOWS\System32\SETD3.tmp
C:\WINDOWS\System32\SETD4.tmp
C:\WINDOWS\System32\SETD5.tmp
C:\WINDOWS\System32\SETD6.tmp
C:\WINDOWS\System32\SETD7.tmp
C:\WINDOWS\System32\SETD8.tmp
C:\WINDOWS\System32\SETD9.tmp
C:\WINDOWS\System32\SETDA.tmp
C:\WINDOWS\System32\SETDB.tmp
C:\WINDOWS\System32\SETDC.tmp
C:\WINDOWS\System32\SETDD.tmp
C:\WINDOWS\System32\SETDE.tmp
C:\WINDOWS\System32\SETDF.tmp
C:\WINDOWS\System32\SETE0.tmp
C:\WINDOWS\System32\SETE1.tmp
C:\WINDOWS\System32\SETE2.tmp
C:\WINDOWS\System32\SETE3.tmp
C:\WINDOWS\System32\SETE4.tmp
C:\WINDOWS\System32\SETE5.tmp
C:\WINDOWS\System32\SETE6.tmp
C:\WINDOWS\System32\SETE7.tmp
C:\WINDOWS\System32\SETE8.tmp
C:\WINDOWS\System32\SETE9.tmp
C:\WINDOWS\System32\SETEA.tmp
C:\WINDOWS\System32\SETEB.tmp
C:\WINDOWS\System32\SETEC.tmp
C:\WINDOWS\System32\SETED.tmp
C:\WINDOWS\System32\SETEE.tmp
C:\WINDOWS\System32\SETEF.tmp
C:\WINDOWS\System32\SETF0.tmp
C:\WINDOWS\System32\SETF1.tmp
C:\WINDOWS\System32\SETF2.tmp
C:\WINDOWS\System32\SETF3.tmp
C:\WINDOWS\System32\SETF4.tmp
C:\WINDOWS\System32\SETF5.tmp
C:\WINDOWS\System32\SETF6.tmp
C:\WINDOWS\System32\SETF7.tmp
C:\WINDOWS\System32\SETF8.tmp
C:\WINDOWS\System32\SETF9.tmp
C:\WINDOWS\System32\SETFA.tmp
C:\WINDOWS\System32\SETFB.tmp
C:\WINDOWS\System32\SETFC.tmp
C:\WINDOWS\System32\SETFD.tmp
C:\WINDOWS\System32\SETFE.tmp
C:\WINDOWS\System32\SETFF.tmp
C:\Documents and Settings\Bienvenue sur XP\LOCAL Settings\Temp\8BD54F3E-DD19-4a69-93D8-5C6A5BBBE20E.exe
C:\Documents and Settings\Bienvenue sur XP\LOCAL Settings\Temp\Foxit Reader.exe
C:\Documents and Settings\Bienvenue sur XP\LOCAL Settings\Temp\FoxitCreator20_setup.exe
C:\Documents and Settings\Bienvenue sur XP\LOCAL Settings\Temp\FoxitPDFEditor21_enu_Setup.exe
C:\Documents and Settings\Bienvenue sur XP\LOCAL Settings\Temp\FoxitToolbar_Setup.exe
C:\Documents and Settings\Bienvenue sur XP\LOCAL Settings\Temp\foxit_agent_ifilter.exe
C:\Documents and Settings\Bienvenue sur XP\LOCAL Settings\Temp\InstallPDFReaderPlugin.exe
C:\Documents and Settings\Bienvenue sur XP\LOCAL Settings\Temp\jre-6u15-windows-i586-iftw.exe
C:\Documents and Settings\Bienvenue sur XP\LOCAL Settings\Temp\kiwee_setup.exe
C:\Documents and Settings\Bienvenue sur XP\LOCAL Settings\Temp\lsnfier.exe
C:\Documents and Settings\Bienvenue sur XP\LOCAL Settings\Temp\msizapMG.exe
C:\Documents and Settings\Bienvenue sur XP\LOCAL Settings\Temp\nsk2C3.tmp.exe
C:\Documents and Settings\Bienvenue sur XP\LOCAL Settings\Temp\nsp29F.tmp.exe
C:\Documents and Settings\Bienvenue sur XP\LOCAL Settings\Temp\nsz2C9.tmp.exe
C:\Documents and Settings\Bienvenue sur XP\LOCAL Settings\Temp\setup_wm.exe
C:\Documents and Settings\Bienvenue sur XP\LOCAL Settings\Temp\Upgrade.exe
C:\Documents and Settings\Bienvenue sur XP\LOCAL Settings\Temp\ytb_8.1.0.51-2_2.1.0_ysp_1.2.8_mail_bts_pub_fr_setup_.exe
¤¤¤¤¤¤¤¤¤¤ Clés de registre Presentes :
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Setup.exe
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar "{3041d03e-fd4b-44e0-b742-2d9b88305f98}"
HKCR\EoRezoBHO.EoBho
HKCR\EoRezoBHO.EoBho.1
HKCU\SOFTWARE\EoRezo
HKCU\SOFTWARE\FunWebProducts
HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{64F56FC1-1272-44CD-BA6E-39723696E350}
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{EEE6C35B-6118-11DC-9C72-001320C79847}
HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EEE6C35C-6118-11DC-9C72-001320C79847}
HKLM\SOFTWARE\Classes\AppID\{362A53B2-2913-4F8A-82F5-7E0A23FDC6F9}
HKLM\SOFTWARE\Classes\AppID\EoRezoBHO.dll
HKLM\SOFTWARE\Classes\CLSID\{64F56FC1-1272-44CD-BA6E-39723696E350}
HKLM\Software\Classes\EoRezoBHO.EoBho
HKLM\Software\Classes\EoRezoBHO.EoBho.1
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{201f27d4-3704-41d6-89c1-aa35e39143ed}"
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\07D5290CDBDAE4242926B8E6CA650501
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\08E33F7B61DEFF24BB9673ED7D467636
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\0E3D8A5B48622A445A7DF73FEFF32C3F
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\1AC67655DD68F8240B2860F2D511EBD8
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\34EDDB1BFB3A2D448845F3EFD0F15A43
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\4318DF19719275242801CBE292063A4C
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\45FC115D1FEAEF849A4E1610D6EC8BF0
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\46A5861A389ADB844AF89E31BC9DF0A1
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\49B0E1A6FF50BBE4289E4E23DE6EA0C7
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\4CCCAC049F34D0540AAC13011398BEDB
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\5C4389D0BFB302C479DE4178BD5D9EBA
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\5D19F074C042AD34BAB463D4175A062E
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\5D2B09BDEF4FE54418E6F3373CDBC7AC
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\61B65D3397A1FBF4CB1571B5E4F6B5B0
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\68E8A05C60DD9254591DBD16C94EDDBF
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\697E782CF574CC34CBB9566440BA12BC
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\6AE27A8613CF7EA4782F2886F67295E5
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\7CE172051F585E04187BCB97570BFA74
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\86A901BA5265452499DCBF719C378EE3
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\88ABD1CD5C40EC84789A7F6EF86DAC5E
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\980289C22F80A7C4BB9323DC61255E4E
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\9A4B7EF3789F871419D9302583B20C15
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\A6C53B0F76C44004A8F36716213017DB
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\B59F2D8189784CC46A4597F2842480B0
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\BD746FB95FB8E5B45BF66BE54D5FD91F
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\CCF399FCD6D2D3F46BF02A1378654FC9
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\D149C1355C98DE24E82CEFBD996FE06A
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\DB59FDB786388EA4D897F3EE715683AC
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\DB8DAD19CFBCC2049A4477183787E8C5
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\E337925F629CF4C4FB08F3D9674DD839
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\EC65F200D112357449C8B1BC3CFA03D0
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\F327D0C73C0973644A21E8CC852267A0
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\FA96423FE2B98E248A3B23548D1E22D9
HKCR\CLSID\{3041d03e-fd4b-44e0-b742-2d9b88305f98}
HKCR\CLSID\{64F56FC1-1272-44CD-BA6E-39723696E350}
HKLM\SOFTWARE\Classes\CLSID\{64F56FC1-1272-44CD-BA6E-39723696E350}
HKCR\CLSID\{201f27d4-3704-41d6-89c1-aa35e39143ed}
HKCR\CLSID\{0702a2b6-13aa-4090-9e01-bcdc85dd933f}
HKLM\SOFTWARE\Classes\AppID\{362A53B2-2913-4F8A-82F5-7E0A23FDC6F9}
HKCR\CLSID\{b0de3308-5d5a-470d-81b9-634fc078393b}
¤¤¤¤¤¤¤¤¤¤ C:\WINDOWS\Prefetch :
6.13560-6.13570.EXE-3073C85B.pf
AAWTRAY.EXE-1858AE3F.pf
AAWWSC.EXE-248CAA52.pf
AD-AWARE.EXE-3122AD3A.pf
AD-AWAREADMIN.EXE-102E374C.pf
ALG.EXE-0F138680.pf
AUTOLAUNCH.EXE-24D2557C.pf
AU_.EXE-28064B02.pf
AVGNT.EXE-200FEF40.pf
AVMAILC.EXE-22A964BC.pf
AVSCAN.EXE-07FC469C.pf
AVWEBGRD.EXE-03786D52.pf
AVWSC.EXE-0283F9DD.pf
A~NSISU_.EXE-0D3DC087.pf
CCLEANER.EXE-0BCE437C.pf
CMD.EXE-087B4001.pf
CTFMON.EXE-0E17969B.pf
DLLHOST.EXE-42807EE4.pf
DUMPREP.EXE-1B46F901.pf
DW20.EXE-0F7C73AD.pf
DWWIN.EXE-30875ADC.pf
EVEREST.BIN-25D7F60B.pf
EVEREST.EXE-1DE860E4.pf
EXCEL.EXE-13B3F319.pf
FDM.EXE-1EBA87D2.pf
FRANCE24 DESKTOP.EXE-2635363E.pf
GOOGLECRASHHANDLER.EXE-1A9F3296.pf
GOOGLEUPDATE.EXE-1E123D86.pf
GOOGLEUPDATER.EXE-2CAF5929.pf
GOOGLEUPDATERSERVICE.EXE-3AB369BE.pf
GUARDGUI.EXE-00ECD849.pf
HELPCTR.EXE-3862B6F5.pf
HELPSVC.EXE-2878DDA2.pf
IEXPLORE.EXE-27122324.pf
IMAPI.EXE-0BF740A4.pf
IMAPP.EXE-093362B0.pf
IMNOTFY.EXE-39B9FFE6.pf
INCMAIL.EXE-1D49117E.pf
layout.ini
LIGHTSCRIBECONTROLPANEL.EXE-227B1346.pf
LIST_KILLEM.EXE-010FEA21.pf
LSNFIER.EXE-0576E954.pf
LSNFIER.EXE-2CFCA7FA.pf
LXDNAMON.EXE-06431094.pf
LXDNCOMS.EXE-0469540E.pf
LXDNJSWX.EXE-0A959440.pf
LXDNMON.EXE-34BFF939.pf
LXDNMSDMON.EXE-1EB7FECD.pf
LXDNPSWX.EXE-282F762C.pf
LXDNSERV.EXE-070ED4B5.pf
LXDNTIME.EXE-3837254B.pf
MAGENTIC.EXE-0173035F.pf
MAGENT~1.SCR-2B1F1BA6.pf
MBAM-DOR.EXE-203884D2.pf
MBAM.EXE-0BEE0439.pf
MGAPP.EXE-073133FE.pf
MODE.COM-31685BAE.pf
MSCONFIG.EXE-35E4DAE9.pf
MSFEEDSSYNC.EXE-25E13438.pf
MSNAPPAU.EXE-0FDD9428.pf
MSNMSGR.EXE-030AB647.pf
MSN_SL.EXE-047411B3.pf
NMBGMONITOR.EXE-241A04E8.pf
NMINDEXINGSERVICE.EXE-01E84916.pf
NMINDEXSTORESVR.EXE-22A7DEEF.pf
NOTEPAD.EXE-336351A9.pf
NTOSBOOT-B00DFAAD.pf
OFFICELIVESIGNIN.EXE-042374FE.pf
PASSCARDS.EXE-27438077.pf
PCOPTIMIZERSERVICE.EXE-0BBFA1B2.pf
PCTSAUXS.EXE-1E8D77A6.pf
PCTSSVC.EXE-3A239962.pf
PCTSTRAY.EXE-29391146.pf
PICASAPHOTOVIEWER.EXE-1247CDA5.pf
PICASAUPDATER.EXE-032BAF6F.pf
RACCOURCI WINDOWS LIVE MESSEN-12AA1E43.pf
REALPLAY.EXE-1BF219BD.pf
REALSCHED.EXE-04BEC5CC.pf
REG.EXE-0D2A95F7.pf
REMOVE.EXE-1FF2CB09.pf
ROBOTASKBARICON.EXE-05368BA4.pf
RUNDLL32.EXE-12E27DD0.pf
RUNDLL32.EXE-1357CA32.pf
RUNDLL32.EXE-1BC55A4F.pf
RUNDLL32.EXE-1F20A0D1.pf
RUNDLL32.EXE-2138A4AF.pf
RUNDLL32.EXE-33113202.pf
RUNDLL32.EXE-493BA2A5.pf
SEAPORT.EXE-2D9D4167.pf
SEARCHPROTECTION.EXE-05283968.pf
SETUP.EXE-35DBA8FA.pf
SKYPE.EXE-30AE1A60.pf
SKYPEPM.EXE-2BC7DD5C.pf
SOFFICE.BIN-01E25E9C.pf
SOFFICE.EXE-358D937C.pf
SVCHOST.EXE-3530F672.pf
SWRITER.EXE-38A9F6BD.pf
SYSTEMINFO.EXE-32ED1FAB.pf
TASKLIST.EXE-10D94B23.pf
TASKMGR.EXE-20256C55.pf
THREATWORK.EXE-0F50642D.pf
UNINST.EXE-14B4DB18.pf
UNINSTALL.EXE-09295BCF.pf
UNSECAPP.EXE-1A95A33B.pf
UPDATE.EXE-1A7E7F45.pf
UPDATE.EXE-2577D203.pf
VERCLSID.EXE-3667BD89.pf
VPATCH.EXE-318EC448.pf
WF_TP.EXE-1BBE6C73.pf
WINDOWSSEARCH.EXE-33669DD1.pf
WINDOWSSEARCHFILTER.EXE-0C0DB978.pf
WINDOWSSEARCHINDEXER.EXE-158AA150.pf
WLCOMM.EXE-04AE9009.pf
WMIAPSRV.EXE-1E2270A5.pf
WMIC.EXE-3B772CC6.pf
WMIPRVSE.EXE-28F301A9.pf
WSCNTFY.EXE-1B24F5EB.pf
WUAUCLT.EXE-399A8E72.pf
XP-ANTISPY.EXE-37771C5D.pf
YAHOOAUSERVICE.EXE-051C46F5.pf
YAHOOMESSENGER.EXE-06E29CD9.pf
YMSGR_TRAY.EXE-256366BA.pf
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤( EOF )¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
Utilisateur anonyme
28 oct. 2009 à 01:21
28 oct. 2009 à 01:21
oulala !!!!
REDEMARRE EN MODE SANS ECHEC , puis :
▶ Relance List&Kill'em comme tu as fait pour l'option 1 (soit en clic droit pour vista),
mais cette fois-ci :
▶ choisis l'option 2 = Mode Destruction
laisse travailler l'outil
apres les verifications , un rapport va s'ouvrir.
▶ ferme-le.
un deuxieme rapport va s'ouvrir ,
▶ colle son contenu dans ta reponse apres avoir redemarré en mode normal
REDEMARRE EN MODE SANS ECHEC , puis :
▶ Relance List&Kill'em comme tu as fait pour l'option 1 (soit en clic droit pour vista),
mais cette fois-ci :
▶ choisis l'option 2 = Mode Destruction
laisse travailler l'outil
apres les verifications , un rapport va s'ouvrir.
▶ ferme-le.
un deuxieme rapport va s'ouvrir ,
▶ colle son contenu dans ta reponse apres avoir redemarré en mode normal
buckhulk
Messages postés
13690
Date d'inscription
dimanche 21 septembre 2008
Statut
Contributeur
Dernière intervention
14 novembre 2020
1 756
28 oct. 2009 à 13:58
28 oct. 2009 à 13:58
hello ge-hackman !!
si tu as reçu mes messages et que tu penses qu'il faut que je fasse autre chose !
mais pour l'instant tout marche bien !
si tu as reçu mes messages et que tu penses qu'il faut que je fasse autre chose !
mais pour l'instant tout marche bien !
buckhulk
Messages postés
13690
Date d'inscription
dimanche 21 septembre 2008
Statut
Contributeur
Dernière intervention
14 novembre 2020
1 756
28 oct. 2009 à 11:07
28 oct. 2009 à 11:07
ça y est ce matin j'ai trouvé ton message , pourtant plus de bruit , enfin j'ai donc redemarer en mode sans echec puis repasser ton programe en mode 2 . j'ai copié , redemaré mais ça a été perdu !donc j'ai redemaré normalemenrt puis refait un passage en mode 1 voilà ce que ça donne :
List'em by g3n-h@ckm@n 1.0.4.7
updated on 27.10.2009 ::::: 11.30
Windows_NT
Microsoft Windows XP [version 5.1.2600]
28/10/2009 14:00:46,84
Nom de l'h“te: PC-A2137737F07A
Nom du systŠme d'exploitation: Microsoft Windows XP Professionnel
Version du systŠme: 5.1.2600 Service Pack 3 version 2600
Fabricant du systŠme d'exploitation: Microsoft Corporation
Configuration du systŠme d'exploitation: Station de travail autonome
Type de version du systŠme d'exploitation: Multiprocessor Free
Propri‚taire enregistr‚ÿ: PC.net
Organisation enregistr‚eÿ:
Identificateur de produit: 55711-640-8939526-23868
Date d'installation originale: 13/11/2008, 16:54:00
Dur‚e d'activit‚ systŠme: 0 jours, 0 heures, 14 minutes, 48 secondes
Fabricant du systŠme: MICRO-STAR INTERNATIONAL CO.,LTD
ModŠle du systŠme: MS-7387
Type du systŠme: X86-based PC
Processeur(s): 1 processeur(s) install‚(s).
[01]: x86 Family 6 Model 15 Stepping 13 GenuineIntel ~2000 MHz
Version du BIOS: 121707 - 20071217
R‚pertoire Windows: C:\WINDOWS
R‚pertoire systŠme: C:\WINDOWS\system32
P‚riph‚rique d'amor‡age: \Device\HarddiskVolume1
Option r‚gionale du systŠme: fr;Fran‡ais (France)
ParamŠtres r‚gionaux d'entr‚eÿ: fr;Fran‡ais (France)
Fuseau horaire: N/D
M‚moire physique totale: 894 Mo
M‚moire physique disponible: 138 Mo
M‚moire virtuelle : taille maximale: 2ÿ048 Mo
M‚moire virtuelle : disponible: 2ÿ000 Mo
M‚moire virtuelle : en cours d'utilisation: 48 Mo
Emplacements des fichiers d'‚change: C:\pagefile.sys
Domaine: WORKGROUP
Serveur d'ouverture de session: \\PC-A2137737F07A
Correctif(s): 70 Corrections install‚es.
[01]: File 1
[02]: File 1
[03]: File 1
[04]: File 1
[05]: File 1
[06]: File 1
[07]: File 1
[08]: File 1
[09]: File 1
[10]: File 1
[11]: File 1
[12]: File 1
[13]: File 1
[14]: File 1
[15]: File 1
[16]: File 1
[17]: File 1
[18]: File 1
[19]: File 1
[20]: File 1
[21]: File 1
[22]: File 1
[23]: File 1
[24]: File 1
[25]: File 1
[26]: File 1
[27]: File 1
[28]: File 1
[29]: File 1
[30]: File 1
[31]: Q147222
[32]: M928366 - Update
[33]: S867460 - Update
[34]: Q954430
[35]: IDNMitigationAPIs - Update
[36]: NLSDownlevelMapping - Update
[37]: KB952069_WM9
[38]: KB923689
[39]: KB941569
[40]: KB938127-IE7 - Update
[41]: KB938127-v2-IE7 - Update
[42]: KB958215-IE7 - Update
[43]: KB960714-IE7 - Update
[44]: KB968220-IE8 - Update
[45]: MSCompPackV1 - Update
[46]: KB936929 - Service Pack
[47]: KB938464 - Update
[48]: KB946648 - Update
[49]: KB950762 - Update
[50]: KB950974 - Update
[51]: KB951066 - Update
[52]: KB951376-v2 - Update
[53]: KB951698 - Update
[54]: KB951748 - Update
[55]: KB951978 - Update
[56]: KB952287 - Update
[57]: KB952954 - Update
[58]: KB954211 - Update
[59]: KB954459 - Update
[60]: KB954600 - Update
[61]: KB955069 - Update
[62]: KB955839 - Update
[63]: KB956391 - Update
[64]: KB956802 - Update
[65]: KB956803 - Update
[66]: KB956841 - Update
[67]: KB957095 - Update
[68]: KB957097 - Update
[69]: KB958644 - Update
[70]: KB958687 - Update
Carte(s) r‚seau: 1 carte(s) r‚seau install‚e(s).
[01]: VIA Rhine II Fast Ethernet Adapter
Nom de la connexion : Connexion au r‚seau local
DHCP activ‚ : Oui
Serveur DHCP : 192.168.1.1
Adresse(s) IP
[01] : 192.168.1.2
Nom de l'image PIDÿ Nom de la sessio Num‚ro d Utilisation
========================= ====== ================ ======== ============
System Idle Process 0 Console 0 16 Ko
System 4 Console 0 104 Ko
smss.exe 960 Console 0 292 Ko
csrss.exe 1096 Console 0 4ÿ224 Ko
winlogon.exe 1152 Console 0 1ÿ376 Ko
services.exe 1228 Console 0 3ÿ556 Ko
lsass.exe 1240 Console 0 2ÿ568 Ko
svchost.exe 1444 Console 0 11ÿ084 Ko
svchost.exe 1512 Console 0 12ÿ444 Ko
svchost.exe 1624 Console 0 46ÿ736 Ko
svchost.exe 1796 Console 0 7ÿ144 Ko
svchost.exe 1888 Console 0 8ÿ988 Ko
AAWService.exe 1964 Console 0 34ÿ632 Ko
spoolsv.exe 176 Console 0 10ÿ108 Ko
sched.exe 240 Console 0 756 Ko
avguard.exe 852 Console 0 14ÿ548 Ko
LSSrvc.exe 1020 Console 0 4ÿ284 Ko
lxdnserv.exe 1720 Console 0 3ÿ084 Ko
lxdncoms.exe 1756 Console 0 4ÿ320 Ko
PCoptimizerService.exe 1792 Console 0 2ÿ824 Ko
pctsAuxs.exe 1848 Console 0 504 Ko
pctsSvc.exe 1860 Console 0 24ÿ800 Ko
SeaPort.exe 448 Console 0 8ÿ936 Ko
svchost.exe 496 Console 0 15ÿ580 Ko
YahooAUService.exe 560 Console 0 10ÿ276 Ko
avmailc.exe 1028 Console 0 744 Ko
avwebgrd.exe 1112 Console 0 12ÿ564 Ko
unsecapp.exe 2556 Console 0 11ÿ536 Ko
alg.exe 2572 Console 0 11ÿ212 Ko
wmiprvse.exe 2640 Console 0 12ÿ812 Ko
wscntfy.exe 2584 Console 0 6ÿ332 Ko
explorer.exe 2720 Console 0 60ÿ876 Ko
RTHDCPL.exe 1080 Console 0 26ÿ000 Ko
VTTimer.exe 3480 Console 0 2ÿ140 Ko
S3Trayp.exe 3512 Console 0 4ÿ468 Ko
ZSSnp211.EXE 932 Console 0 7ÿ224 Ko
Domino.EXE 3552 Console 0 3ÿ084 Ko
apdproxy.exe 912 Console 0 6ÿ852 Ko
SearchProtection.exe 2140 Console 0 11ÿ776 Ko
acrotray.exe 3748 Console 0 5ÿ844 Ko
GoogleQuickSearchBox.exe 3564 Console 0 39ÿ124 Ko
AAWTray.exe 3864 Console 0 9ÿ096 Ko
lxdnmon.exe 3980 Console 0 9ÿ812 Ko
avgnt.exe 4012 Console 0 10ÿ708 Ko
lxdnmsdmon.exe 4076 Console 0 24ÿ564 Ko
realsched.exe 592 Console 0 168 Ko
pctsTray.exe 2060 Console 0 1ÿ152 Ko
ctfmon.exe 2476 Console 0 5ÿ712 Ko
LightScribeControlPanel.e 2712 Console 0 8ÿ996 Ko
MgApp.exe 3064 Console 0 15ÿ404 Ko
Skype.exe 1672 Console 0 84ÿ820 Ko
fdm.exe 2884 Console 0 38ÿ076 Ko
ImApp.exe 2888 Console 0 3ÿ660 Ko
wf_tp.exe 2980 Console 0 10ÿ600 Ko
France24 Desktop.exe 3844 Console 0 3ÿ036 Ko
robotaskbaricon.exe 4072 Console 0 13ÿ116 Ko
WindowsSearch.exe 4064 Console 0 1ÿ004 Ko
skypePM.exe 1092 Console 0 24ÿ604 Ko
WindowsSearchIndexer.exe 2160 Console 0 1ÿ504 Ko
iexplore.exe 1408 Console 0 4ÿ092 Ko
iexplore.exe 520 Console 0 130ÿ724 Ko
Ymsgr_tray.exe 896 Console 0 40ÿ836 Ko
iexplore.exe 3356 Console 0 101ÿ172 Ko
msnmsgr.exe 3896 Console 0 81ÿ840 Ko
ImNotfy.exe 5292 Console 0 50ÿ120 Ko
List_Killem.exe 4140 Console 0 25ÿ544 Ko
cmd.exe 4180 Console 0 7ÿ852 Ko
wmiprvse.exe 5120 Console 0 8ÿ764 Ko
tasklist.exe 5868 Console 0 5ÿ200 Ko
======================
Cles de demarrage "Run"
======================
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\\WINDOWS\\system32\\ctfmon.exe"
"LightScribe Control Panel"="C:\\Program Files\\Fichiers communs\\LightScribe\\LightScribeControlPanel.exe -hidden"
"Messenger (Yahoo!)"="\"C:\\Program Files\\Yahoo!\\Messenger\\YahooMessenger.exe\" -quiet"
"Magentic"="C:\\PROGRA~1\\Magentic\\bin\\Magentic.exe /c"
"IncrediMail"="C:\\Program Files\\IncrediMail\\bin\\IncMail.exe /c"
"Search Protection"="C:\\Program Files\\Yahoo!\\Search Protection\\SearchProtection.exe"
"YSearchProtection"="C:\\Program Files\\Yahoo!\\Search Protection\\SearchProtection.exe"
"Skype"="\"C:\\Program Files\\Skype\\Phone\\Skype.exe\" /nosplash /minimized"
"Free Download Manager"="\"C:\\Program Files\\Free Download Manager\\fdm.exe\" -autorun"
"WISE-FTP Task Planner"="\"C:\\Program Files\\AceBIT\\WISE-FTP 5\\wf_tp.exe\" /bg"
"france24"="C:\\Documents and Settings\\Bienvenue sur XP\\Local Settings\\Application Data\\Djingle\\France24 Desktop\\bin\\autorun.lnk"
"RoboForm"="\"C:\\Program Files\\Siber Systems\\AI RoboForm\\RoboTaskBarIcon.exe\""
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RTHDCPL"="RTHDCPL.EXE"
"VTTimer"="VTTimer.exe"
"S3Trayp"="S3Trayp.exe"
"NeroFilterCheck"="C:\\Program Files\\Fichiers communs\\Ahead\\Lib\\NeroCheck.exe"
"ZSSnp211"="C:\\WINDOWS\\ZSSnp211.exe"
"Domino"="C:\\WINDOWS\\Domino.exe"
"Adobe Photo Downloader"="\"C:\\Program Files\\Adobe\\Photoshop Album Edition D‚couverte\\3.0\\Apps\\apdproxy.exe\""
"FaxCenterServer"="\"C:\\Program Files\\Lexmark Fax Solutions\\fm3032.exe\" /s"
"fssui"="\"C:\\Program Files\\Windows Live\\Family Safety\\fsui.exe\" -autorun"
"YSearchProtection"="\"C:\\Program Files\\Yahoo!\\Search Protection\\SearchProtection.exe\""
"Adobe Reader Speed Launcher"="\"C:\\Program Files\\Adobe\\Reader 9.0\\Reader\\Reader_sl.exe\""
"Adobe Acrobat Speed Launcher"="\"C:\\Program Files\\Adobe\\Acrobat 9.0\\Acrobat\\Acrobat_sl.exe\""
@=""
"Acrobat Assistant 8.0"="\"C:\\Program Files\\Adobe\\Acrobat 9.0\\Acrobat\\Acrotray.exe\""
"Google Quick Search Box"="\"C:\\Program Files\\Google\\Quick Search Box\\GoogleQuickSearchBox.exe\" /autorun"
"Ad-Watch"="C:\\Program Files\\Lavasoft\\Ad-Aware\\AAWTray.exe"
"lxdnmon.exe"="\"C:\\Program Files\\Lexmark 2600 Series\\lxdnmon.exe\""
"lxdnamon"="\"C:\\Program Files\\Lexmark 2600 Series\\lxdnamon.exe\""
"avgnt"="\"C:\\Program Files\\Avira\\AntiVir Desktop\\avgnt.exe\" /min"
"TkBellExe"="\"C:\\Program Files\\Fichiers communs\\Real\\Update_OB\\realsched.exe\" -osboot"
"ISTray"="\"C:\\Program Files\\Spyware Doctor\\pctsTray.exe\""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents\IMAIL]
"Installed"="1"
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents\MAPI]
"NoChange"="1"
"Installed"="1"
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents\MSFS]
"Installed"="1"
@=""
=====================
cles additionnelles
=====================
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=dword:00000000
"legalnoticecaption"=""
"legalnoticetext"=""
"shutdownwithoutlogon"=dword:00000001
"undockwithoutlogon"=dword:00000001
"ConsentPromptBehaviorAdmin"=dword:00000002
===============
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
===============
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
"PostBootReminder"="{7849596a-48ea-486e-8937-a2a3009f31a9}"
"CDBurn"="{fbeb8a05-beee-4442-804e-409d6c4515e9}"
"WebCheck"="{E6FB5E20-DE35-11CF-9C87-00AA005127ED}"
"SysTray"="{35CEC8A3-2BE6-11D2-8773-92E220524153}"
"WPDShServiceObj"="{AAA288BA-9A4C-45B0-95D7-94D524869DB5}"
======
BHO :
======
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4efb-9B51-7695ECA05670}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4efb-9B51-7695ECA05670}\NoExplorer]
@=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1017A80C-6F09-4548-A84D-EDD6AC9525F0}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
@="AcroIEHelperStub"
"NoExplorer"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1AD61D5B-58A3-4592-9B34-DC84688FF805}]
@="PDFHelperBHO"
"NoExplorer"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{201f27d4-3704-41d6-89c1-aa35e39143ed}]
@="AskBar BHO"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{22BF413B-C6D2-4d91-82A9-A0F997BA588C}]
@="Skype add-on (mastermind)"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{724d43a9-0d85-11d4-9908-00400523e39a}]
@="RoboForm"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0}]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C84D72FE-E17D-4195-BB24-76C02E2E7C4E}]
@="Google Dictionary Compression sdch"
"NoExplorer"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CC59E0F9-7E43-44FA-9FAA-8377850BF205}]
"NoExplorer"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
"NoExplorer"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F4971EE7-DAA0-4053-9964-665D8EE6A077}]
"NoExplorer"=dword:00000001
@="SmartSelect"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FDAD4DA1-61A2-4FD8-9C17-86F7AC245081}]
==========================
===============
Path : C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem
===============
¤¤¤¤¤¤¤¤¤¤ Fichiers et dossiers presents :
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat
¤¤¤¤¤¤¤¤¤¤ Clés de registre Presentes :
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Setup.exe
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar "{3041d03e-fd4b-44e0-b742-2d9b88305f98}"
HKCR\EoRezoBHO.EoBho
HKCR\EoRezoBHO.EoBho.1
HKCU\SOFTWARE\EoRezo
HKCU\SOFTWARE\FunWebProducts
HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{64F56FC1-1272-44CD-BA6E-39723696E350}
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{EEE6C35B-6118-11DC-9C72-001320C79847}
HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EEE6C35C-6118-11DC-9C72-001320C79847}
HKLM\SOFTWARE\Classes\AppID\{362A53B2-2913-4F8A-82F5-7E0A23FDC6F9}
HKLM\SOFTWARE\Classes\AppID\EoRezoBHO.dll
HKLM\SOFTWARE\Classes\CLSID\{64F56FC1-1272-44CD-BA6E-39723696E350}
HKLM\Software\Classes\EoRezoBHO.EoBho
HKLM\Software\Classes\EoRezoBHO.EoBho.1
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{201f27d4-3704-41d6-89c1-aa35e39143ed}"
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\07D5290CDBDAE4242926B8E6CA650501
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\08E33F7B61DEFF24BB9673ED7D467636
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\0E3D8A5B48622A445A7DF73FEFF32C3F
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\1AC67655DD68F8240B2860F2D511EBD8
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\34EDDB1BFB3A2D448845F3EFD0F15A43
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\4318DF19719275242801CBE292063A4C
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\45FC115D1FEAEF849A4E1610D6EC8BF0
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\46A5861A389ADB844AF89E31BC9DF0A1
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\49B0E1A6FF50BBE4289E4E23DE6EA0C7
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\4CCCAC049F34D0540AAC13011398BEDB
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\5C4389D0BFB302C479DE4178BD5D9EBA
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\5D19F074C042AD34BAB463D4175A062E
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\5D2B09BDEF4FE54418E6F3373CDBC7AC
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\61B65D3397A1FBF4CB1571B5E4F6B5B0
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\68E8A05C60DD9254591DBD16C94EDDBF
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\697E782CF574CC34CBB9566440BA12BC
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\6AE27A8613CF7EA4782F2886F67295E5
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\7CE172051F585E04187BCB97570BFA74
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\86A901BA5265452499DCBF719C378EE3
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\88ABD1CD5C40EC84789A7F6EF86DAC5E
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\980289C22F80A7C4BB9323DC61255E4E
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\9A4B7EF3789F871419D9302583B20C15
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\A6C53B0F76C44004A8F36716213017DB
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\B59F2D8189784CC46A4597F2842480B0
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\BD746FB95FB8E5B45BF66BE54D5FD91F
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\CCF399FCD6D2D3F46BF02A1378654FC9
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\D149C1355C98DE24E82CEFBD996FE06A
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\DB59FDB786388EA4D897F3EE715683AC
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\DB8DAD19CFBCC2049A4477183787E8C5
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\E337925F629CF4C4FB08F3D9674DD839
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\EC65F200D112357449C8B1BC3CFA03D0
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\F327D0C73C0973644A21E8CC852267A0
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\FA96423FE2B98E248A3B23548D1E22D9
HKCR\CLSID\{3041d03e-fd4b-44e0-b742-2d9b88305f98}
HKCR\CLSID\{64F56FC1-1272-44CD-BA6E-39723696E350}
HKLM\SOFTWARE\Classes\CLSID\{64F56FC1-1272-44CD-BA6E-39723696E350}
HKCR\CLSID\{201f27d4-3704-41d6-89c1-aa35e39143ed}
HKCR\CLSID\{0702a2b6-13aa-4090-9e01-bcdc85dd933f}
HKLM\SOFTWARE\Classes\AppID\{362A53B2-2913-4F8A-82F5-7E0A23FDC6F9}
HKCR\CLSID\{b0de3308-5d5a-470d-81b9-634fc078393b}
¤¤¤¤¤¤¤¤¤¤ C:\WINDOWS\Prefetch :
AAWTRAY.EXE-1858AE3F.pf
AAWWSC.EXE-248CAA52.pf
AD-AWAREADMIN.EXE-102E374C.pf
APDPROXY.EXE-397EBF29.pf
AVWSC.EXE-0283F9DD.pf
CMD.EXE-087B4001.pf
CTFMON.EXE-0E17969B.pf
DLLHOST.EXE-42807EE4.pf
DOMINO.EXE-04EEC00C.pf
EXPLORER.EXE-082F38A9.pf
FDM.EXE-1EBA87D2.pf
FM3032.EXE-20910848.pf
FRANCE24 DESKTOP.EXE-2635363E.pf
FSUI.EXE-2FFACBF6.pf
GOOGLECRASHHANDLER.EXE-1A9F3296.pf
GOOGLEUPDATE.EXE-1E123D86.pf
IEXPLORE.EXE-27122324.pf
IMAPI.EXE-0BF740A4.pf
IMAPP.EXE-093362B0.pf
IMNOTFY.EXE-39B9FFE6.pf
INCMAIL.EXE-1D49117E.pf
layout.ini
LIGHTSCRIBECONTROLPANEL.EXE-227B1346.pf
LIST_KILLEM.EXE-010FEA21.pf
LXDNCOMS.EXE-0469540E.pf
MAGENTIC.EXE-0173035F.pf
MGAPP.EXE-073133FE.pf
MODE.COM-31685BAE.pf
MPNOTIFY.EXE-3631A846.pf
MSNMSGR.EXE-030AB647.pf
NEROCHECK.EXE-35AE1DFB.pf
NOTEPAD.EXE-336351A9.pf
NTOSBOOT-B00DFAAD.pf
PCTSTRAY.EXE-29391146.pf
RACCOURCI WINDOWS LIVE MESSEN-12AA1E43.pf
REG.EXE-0D2A95F7.pf
ROBOTASKBARICON.EXE-05368BA4.pf
RTHDCPL.EXE-06918CFA.pf
RUNDLL32.EXE-33113202.pf
S3TRAYP.EXE-1072C44B.pf
SEARCHPROTECTION.EXE-05283968.pf
SETUP.EXE-35DBA8FA.pf
SKYPE.EXE-30AE1A60.pf
SKYPEPM.EXE-2BC7DD5C.pf
SYSTEMINFO.EXE-32ED1FAB.pf
TASKLIST.EXE-10D94B23.pf
THREATWORK.EXE-0F50642D.pf
USERINIT.EXE-30B18140.pf
VERCLSID.EXE-3667BD89.pf
VTTIMER.EXE-023BA77F.pf
WF_TP.EXE-1BBE6C73.pf
WINDOWSSEARCH.EXE-33669DD1.pf
WINDOWSSEARCHINDEXER.EXE-158AA150.pf
WMIAPSRV.EXE-1E2270A5.pf
WMIPRVSE.EXE-28F301A9.pf
WSCNTFY.EXE-1B24F5EB.pf
WUAUCLT.EXE-399A8E72.pf
YAHOOMESSENGER.EXE-06E29CD9.pf
YMSGR_TRAY.EXE-256366BA.pf
ZSSNP211.EXE-07E59168.pf
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤( EOF )¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
List'em by g3n-h@ckm@n 1.0.4.7
updated on 27.10.2009 ::::: 11.30
Windows_NT
Microsoft Windows XP [version 5.1.2600]
28/10/2009 14:00:46,84
Nom de l'h“te: PC-A2137737F07A
Nom du systŠme d'exploitation: Microsoft Windows XP Professionnel
Version du systŠme: 5.1.2600 Service Pack 3 version 2600
Fabricant du systŠme d'exploitation: Microsoft Corporation
Configuration du systŠme d'exploitation: Station de travail autonome
Type de version du systŠme d'exploitation: Multiprocessor Free
Propri‚taire enregistr‚ÿ: PC.net
Organisation enregistr‚eÿ:
Identificateur de produit: 55711-640-8939526-23868
Date d'installation originale: 13/11/2008, 16:54:00
Dur‚e d'activit‚ systŠme: 0 jours, 0 heures, 14 minutes, 48 secondes
Fabricant du systŠme: MICRO-STAR INTERNATIONAL CO.,LTD
ModŠle du systŠme: MS-7387
Type du systŠme: X86-based PC
Processeur(s): 1 processeur(s) install‚(s).
[01]: x86 Family 6 Model 15 Stepping 13 GenuineIntel ~2000 MHz
Version du BIOS: 121707 - 20071217
R‚pertoire Windows: C:\WINDOWS
R‚pertoire systŠme: C:\WINDOWS\system32
P‚riph‚rique d'amor‡age: \Device\HarddiskVolume1
Option r‚gionale du systŠme: fr;Fran‡ais (France)
ParamŠtres r‚gionaux d'entr‚eÿ: fr;Fran‡ais (France)
Fuseau horaire: N/D
M‚moire physique totale: 894 Mo
M‚moire physique disponible: 138 Mo
M‚moire virtuelle : taille maximale: 2ÿ048 Mo
M‚moire virtuelle : disponible: 2ÿ000 Mo
M‚moire virtuelle : en cours d'utilisation: 48 Mo
Emplacements des fichiers d'‚change: C:\pagefile.sys
Domaine: WORKGROUP
Serveur d'ouverture de session: \\PC-A2137737F07A
Correctif(s): 70 Corrections install‚es.
[01]: File 1
[02]: File 1
[03]: File 1
[04]: File 1
[05]: File 1
[06]: File 1
[07]: File 1
[08]: File 1
[09]: File 1
[10]: File 1
[11]: File 1
[12]: File 1
[13]: File 1
[14]: File 1
[15]: File 1
[16]: File 1
[17]: File 1
[18]: File 1
[19]: File 1
[20]: File 1
[21]: File 1
[22]: File 1
[23]: File 1
[24]: File 1
[25]: File 1
[26]: File 1
[27]: File 1
[28]: File 1
[29]: File 1
[30]: File 1
[31]: Q147222
[32]: M928366 - Update
[33]: S867460 - Update
[34]: Q954430
[35]: IDNMitigationAPIs - Update
[36]: NLSDownlevelMapping - Update
[37]: KB952069_WM9
[38]: KB923689
[39]: KB941569
[40]: KB938127-IE7 - Update
[41]: KB938127-v2-IE7 - Update
[42]: KB958215-IE7 - Update
[43]: KB960714-IE7 - Update
[44]: KB968220-IE8 - Update
[45]: MSCompPackV1 - Update
[46]: KB936929 - Service Pack
[47]: KB938464 - Update
[48]: KB946648 - Update
[49]: KB950762 - Update
[50]: KB950974 - Update
[51]: KB951066 - Update
[52]: KB951376-v2 - Update
[53]: KB951698 - Update
[54]: KB951748 - Update
[55]: KB951978 - Update
[56]: KB952287 - Update
[57]: KB952954 - Update
[58]: KB954211 - Update
[59]: KB954459 - Update
[60]: KB954600 - Update
[61]: KB955069 - Update
[62]: KB955839 - Update
[63]: KB956391 - Update
[64]: KB956802 - Update
[65]: KB956803 - Update
[66]: KB956841 - Update
[67]: KB957095 - Update
[68]: KB957097 - Update
[69]: KB958644 - Update
[70]: KB958687 - Update
Carte(s) r‚seau: 1 carte(s) r‚seau install‚e(s).
[01]: VIA Rhine II Fast Ethernet Adapter
Nom de la connexion : Connexion au r‚seau local
DHCP activ‚ : Oui
Serveur DHCP : 192.168.1.1
Adresse(s) IP
[01] : 192.168.1.2
Nom de l'image PIDÿ Nom de la sessio Num‚ro d Utilisation
========================= ====== ================ ======== ============
System Idle Process 0 Console 0 16 Ko
System 4 Console 0 104 Ko
smss.exe 960 Console 0 292 Ko
csrss.exe 1096 Console 0 4ÿ224 Ko
winlogon.exe 1152 Console 0 1ÿ376 Ko
services.exe 1228 Console 0 3ÿ556 Ko
lsass.exe 1240 Console 0 2ÿ568 Ko
svchost.exe 1444 Console 0 11ÿ084 Ko
svchost.exe 1512 Console 0 12ÿ444 Ko
svchost.exe 1624 Console 0 46ÿ736 Ko
svchost.exe 1796 Console 0 7ÿ144 Ko
svchost.exe 1888 Console 0 8ÿ988 Ko
AAWService.exe 1964 Console 0 34ÿ632 Ko
spoolsv.exe 176 Console 0 10ÿ108 Ko
sched.exe 240 Console 0 756 Ko
avguard.exe 852 Console 0 14ÿ548 Ko
LSSrvc.exe 1020 Console 0 4ÿ284 Ko
lxdnserv.exe 1720 Console 0 3ÿ084 Ko
lxdncoms.exe 1756 Console 0 4ÿ320 Ko
PCoptimizerService.exe 1792 Console 0 2ÿ824 Ko
pctsAuxs.exe 1848 Console 0 504 Ko
pctsSvc.exe 1860 Console 0 24ÿ800 Ko
SeaPort.exe 448 Console 0 8ÿ936 Ko
svchost.exe 496 Console 0 15ÿ580 Ko
YahooAUService.exe 560 Console 0 10ÿ276 Ko
avmailc.exe 1028 Console 0 744 Ko
avwebgrd.exe 1112 Console 0 12ÿ564 Ko
unsecapp.exe 2556 Console 0 11ÿ536 Ko
alg.exe 2572 Console 0 11ÿ212 Ko
wmiprvse.exe 2640 Console 0 12ÿ812 Ko
wscntfy.exe 2584 Console 0 6ÿ332 Ko
explorer.exe 2720 Console 0 60ÿ876 Ko
RTHDCPL.exe 1080 Console 0 26ÿ000 Ko
VTTimer.exe 3480 Console 0 2ÿ140 Ko
S3Trayp.exe 3512 Console 0 4ÿ468 Ko
ZSSnp211.EXE 932 Console 0 7ÿ224 Ko
Domino.EXE 3552 Console 0 3ÿ084 Ko
apdproxy.exe 912 Console 0 6ÿ852 Ko
SearchProtection.exe 2140 Console 0 11ÿ776 Ko
acrotray.exe 3748 Console 0 5ÿ844 Ko
GoogleQuickSearchBox.exe 3564 Console 0 39ÿ124 Ko
AAWTray.exe 3864 Console 0 9ÿ096 Ko
lxdnmon.exe 3980 Console 0 9ÿ812 Ko
avgnt.exe 4012 Console 0 10ÿ708 Ko
lxdnmsdmon.exe 4076 Console 0 24ÿ564 Ko
realsched.exe 592 Console 0 168 Ko
pctsTray.exe 2060 Console 0 1ÿ152 Ko
ctfmon.exe 2476 Console 0 5ÿ712 Ko
LightScribeControlPanel.e 2712 Console 0 8ÿ996 Ko
MgApp.exe 3064 Console 0 15ÿ404 Ko
Skype.exe 1672 Console 0 84ÿ820 Ko
fdm.exe 2884 Console 0 38ÿ076 Ko
ImApp.exe 2888 Console 0 3ÿ660 Ko
wf_tp.exe 2980 Console 0 10ÿ600 Ko
France24 Desktop.exe 3844 Console 0 3ÿ036 Ko
robotaskbaricon.exe 4072 Console 0 13ÿ116 Ko
WindowsSearch.exe 4064 Console 0 1ÿ004 Ko
skypePM.exe 1092 Console 0 24ÿ604 Ko
WindowsSearchIndexer.exe 2160 Console 0 1ÿ504 Ko
iexplore.exe 1408 Console 0 4ÿ092 Ko
iexplore.exe 520 Console 0 130ÿ724 Ko
Ymsgr_tray.exe 896 Console 0 40ÿ836 Ko
iexplore.exe 3356 Console 0 101ÿ172 Ko
msnmsgr.exe 3896 Console 0 81ÿ840 Ko
ImNotfy.exe 5292 Console 0 50ÿ120 Ko
List_Killem.exe 4140 Console 0 25ÿ544 Ko
cmd.exe 4180 Console 0 7ÿ852 Ko
wmiprvse.exe 5120 Console 0 8ÿ764 Ko
tasklist.exe 5868 Console 0 5ÿ200 Ko
======================
Cles de demarrage "Run"
======================
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\\WINDOWS\\system32\\ctfmon.exe"
"LightScribe Control Panel"="C:\\Program Files\\Fichiers communs\\LightScribe\\LightScribeControlPanel.exe -hidden"
"Messenger (Yahoo!)"="\"C:\\Program Files\\Yahoo!\\Messenger\\YahooMessenger.exe\" -quiet"
"Magentic"="C:\\PROGRA~1\\Magentic\\bin\\Magentic.exe /c"
"IncrediMail"="C:\\Program Files\\IncrediMail\\bin\\IncMail.exe /c"
"Search Protection"="C:\\Program Files\\Yahoo!\\Search Protection\\SearchProtection.exe"
"YSearchProtection"="C:\\Program Files\\Yahoo!\\Search Protection\\SearchProtection.exe"
"Skype"="\"C:\\Program Files\\Skype\\Phone\\Skype.exe\" /nosplash /minimized"
"Free Download Manager"="\"C:\\Program Files\\Free Download Manager\\fdm.exe\" -autorun"
"WISE-FTP Task Planner"="\"C:\\Program Files\\AceBIT\\WISE-FTP 5\\wf_tp.exe\" /bg"
"france24"="C:\\Documents and Settings\\Bienvenue sur XP\\Local Settings\\Application Data\\Djingle\\France24 Desktop\\bin\\autorun.lnk"
"RoboForm"="\"C:\\Program Files\\Siber Systems\\AI RoboForm\\RoboTaskBarIcon.exe\""
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RTHDCPL"="RTHDCPL.EXE"
"VTTimer"="VTTimer.exe"
"S3Trayp"="S3Trayp.exe"
"NeroFilterCheck"="C:\\Program Files\\Fichiers communs\\Ahead\\Lib\\NeroCheck.exe"
"ZSSnp211"="C:\\WINDOWS\\ZSSnp211.exe"
"Domino"="C:\\WINDOWS\\Domino.exe"
"Adobe Photo Downloader"="\"C:\\Program Files\\Adobe\\Photoshop Album Edition D‚couverte\\3.0\\Apps\\apdproxy.exe\""
"FaxCenterServer"="\"C:\\Program Files\\Lexmark Fax Solutions\\fm3032.exe\" /s"
"fssui"="\"C:\\Program Files\\Windows Live\\Family Safety\\fsui.exe\" -autorun"
"YSearchProtection"="\"C:\\Program Files\\Yahoo!\\Search Protection\\SearchProtection.exe\""
"Adobe Reader Speed Launcher"="\"C:\\Program Files\\Adobe\\Reader 9.0\\Reader\\Reader_sl.exe\""
"Adobe Acrobat Speed Launcher"="\"C:\\Program Files\\Adobe\\Acrobat 9.0\\Acrobat\\Acrobat_sl.exe\""
@=""
"Acrobat Assistant 8.0"="\"C:\\Program Files\\Adobe\\Acrobat 9.0\\Acrobat\\Acrotray.exe\""
"Google Quick Search Box"="\"C:\\Program Files\\Google\\Quick Search Box\\GoogleQuickSearchBox.exe\" /autorun"
"Ad-Watch"="C:\\Program Files\\Lavasoft\\Ad-Aware\\AAWTray.exe"
"lxdnmon.exe"="\"C:\\Program Files\\Lexmark 2600 Series\\lxdnmon.exe\""
"lxdnamon"="\"C:\\Program Files\\Lexmark 2600 Series\\lxdnamon.exe\""
"avgnt"="\"C:\\Program Files\\Avira\\AntiVir Desktop\\avgnt.exe\" /min"
"TkBellExe"="\"C:\\Program Files\\Fichiers communs\\Real\\Update_OB\\realsched.exe\" -osboot"
"ISTray"="\"C:\\Program Files\\Spyware Doctor\\pctsTray.exe\""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents\IMAIL]
"Installed"="1"
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents\MAPI]
"NoChange"="1"
"Installed"="1"
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents\MSFS]
"Installed"="1"
@=""
=====================
cles additionnelles
=====================
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=dword:00000000
"legalnoticecaption"=""
"legalnoticetext"=""
"shutdownwithoutlogon"=dword:00000001
"undockwithoutlogon"=dword:00000001
"ConsentPromptBehaviorAdmin"=dword:00000002
===============
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
===============
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
"PostBootReminder"="{7849596a-48ea-486e-8937-a2a3009f31a9}"
"CDBurn"="{fbeb8a05-beee-4442-804e-409d6c4515e9}"
"WebCheck"="{E6FB5E20-DE35-11CF-9C87-00AA005127ED}"
"SysTray"="{35CEC8A3-2BE6-11D2-8773-92E220524153}"
"WPDShServiceObj"="{AAA288BA-9A4C-45B0-95D7-94D524869DB5}"
======
BHO :
======
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4efb-9B51-7695ECA05670}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4efb-9B51-7695ECA05670}\NoExplorer]
@=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1017A80C-6F09-4548-A84D-EDD6AC9525F0}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
@="AcroIEHelperStub"
"NoExplorer"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1AD61D5B-58A3-4592-9B34-DC84688FF805}]
@="PDFHelperBHO"
"NoExplorer"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{201f27d4-3704-41d6-89c1-aa35e39143ed}]
@="AskBar BHO"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{22BF413B-C6D2-4d91-82A9-A0F997BA588C}]
@="Skype add-on (mastermind)"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{724d43a9-0d85-11d4-9908-00400523e39a}]
@="RoboForm"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0}]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C84D72FE-E17D-4195-BB24-76C02E2E7C4E}]
@="Google Dictionary Compression sdch"
"NoExplorer"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CC59E0F9-7E43-44FA-9FAA-8377850BF205}]
"NoExplorer"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
"NoExplorer"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F4971EE7-DAA0-4053-9964-665D8EE6A077}]
"NoExplorer"=dword:00000001
@="SmartSelect"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FDAD4DA1-61A2-4FD8-9C17-86F7AC245081}]
==========================
===============
Path : C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem
===============
¤¤¤¤¤¤¤¤¤¤ Fichiers et dossiers presents :
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat
¤¤¤¤¤¤¤¤¤¤ Clés de registre Presentes :
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Setup.exe
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar "{3041d03e-fd4b-44e0-b742-2d9b88305f98}"
HKCR\EoRezoBHO.EoBho
HKCR\EoRezoBHO.EoBho.1
HKCU\SOFTWARE\EoRezo
HKCU\SOFTWARE\FunWebProducts
HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{64F56FC1-1272-44CD-BA6E-39723696E350}
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{EEE6C35B-6118-11DC-9C72-001320C79847}
HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EEE6C35C-6118-11DC-9C72-001320C79847}
HKLM\SOFTWARE\Classes\AppID\{362A53B2-2913-4F8A-82F5-7E0A23FDC6F9}
HKLM\SOFTWARE\Classes\AppID\EoRezoBHO.dll
HKLM\SOFTWARE\Classes\CLSID\{64F56FC1-1272-44CD-BA6E-39723696E350}
HKLM\Software\Classes\EoRezoBHO.EoBho
HKLM\Software\Classes\EoRezoBHO.EoBho.1
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{201f27d4-3704-41d6-89c1-aa35e39143ed}"
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\07D5290CDBDAE4242926B8E6CA650501
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\08E33F7B61DEFF24BB9673ED7D467636
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\0E3D8A5B48622A445A7DF73FEFF32C3F
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\1AC67655DD68F8240B2860F2D511EBD8
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\34EDDB1BFB3A2D448845F3EFD0F15A43
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\4318DF19719275242801CBE292063A4C
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\45FC115D1FEAEF849A4E1610D6EC8BF0
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\46A5861A389ADB844AF89E31BC9DF0A1
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\49B0E1A6FF50BBE4289E4E23DE6EA0C7
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\4CCCAC049F34D0540AAC13011398BEDB
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\5C4389D0BFB302C479DE4178BD5D9EBA
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\5D19F074C042AD34BAB463D4175A062E
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\5D2B09BDEF4FE54418E6F3373CDBC7AC
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\61B65D3397A1FBF4CB1571B5E4F6B5B0
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\68E8A05C60DD9254591DBD16C94EDDBF
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\697E782CF574CC34CBB9566440BA12BC
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\6AE27A8613CF7EA4782F2886F67295E5
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\7CE172051F585E04187BCB97570BFA74
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\86A901BA5265452499DCBF719C378EE3
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\88ABD1CD5C40EC84789A7F6EF86DAC5E
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\980289C22F80A7C4BB9323DC61255E4E
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\9A4B7EF3789F871419D9302583B20C15
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\A6C53B0F76C44004A8F36716213017DB
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\B59F2D8189784CC46A4597F2842480B0
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\BD746FB95FB8E5B45BF66BE54D5FD91F
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\CCF399FCD6D2D3F46BF02A1378654FC9
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\D149C1355C98DE24E82CEFBD996FE06A
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\DB59FDB786388EA4D897F3EE715683AC
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\DB8DAD19CFBCC2049A4477183787E8C5
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\E337925F629CF4C4FB08F3D9674DD839
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\EC65F200D112357449C8B1BC3CFA03D0
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\F327D0C73C0973644A21E8CC852267A0
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\FA96423FE2B98E248A3B23548D1E22D9
HKCR\CLSID\{3041d03e-fd4b-44e0-b742-2d9b88305f98}
HKCR\CLSID\{64F56FC1-1272-44CD-BA6E-39723696E350}
HKLM\SOFTWARE\Classes\CLSID\{64F56FC1-1272-44CD-BA6E-39723696E350}
HKCR\CLSID\{201f27d4-3704-41d6-89c1-aa35e39143ed}
HKCR\CLSID\{0702a2b6-13aa-4090-9e01-bcdc85dd933f}
HKLM\SOFTWARE\Classes\AppID\{362A53B2-2913-4F8A-82F5-7E0A23FDC6F9}
HKCR\CLSID\{b0de3308-5d5a-470d-81b9-634fc078393b}
¤¤¤¤¤¤¤¤¤¤ C:\WINDOWS\Prefetch :
AAWTRAY.EXE-1858AE3F.pf
AAWWSC.EXE-248CAA52.pf
AD-AWAREADMIN.EXE-102E374C.pf
APDPROXY.EXE-397EBF29.pf
AVWSC.EXE-0283F9DD.pf
CMD.EXE-087B4001.pf
CTFMON.EXE-0E17969B.pf
DLLHOST.EXE-42807EE4.pf
DOMINO.EXE-04EEC00C.pf
EXPLORER.EXE-082F38A9.pf
FDM.EXE-1EBA87D2.pf
FM3032.EXE-20910848.pf
FRANCE24 DESKTOP.EXE-2635363E.pf
FSUI.EXE-2FFACBF6.pf
GOOGLECRASHHANDLER.EXE-1A9F3296.pf
GOOGLEUPDATE.EXE-1E123D86.pf
IEXPLORE.EXE-27122324.pf
IMAPI.EXE-0BF740A4.pf
IMAPP.EXE-093362B0.pf
IMNOTFY.EXE-39B9FFE6.pf
INCMAIL.EXE-1D49117E.pf
layout.ini
LIGHTSCRIBECONTROLPANEL.EXE-227B1346.pf
LIST_KILLEM.EXE-010FEA21.pf
LXDNCOMS.EXE-0469540E.pf
MAGENTIC.EXE-0173035F.pf
MGAPP.EXE-073133FE.pf
MODE.COM-31685BAE.pf
MPNOTIFY.EXE-3631A846.pf
MSNMSGR.EXE-030AB647.pf
NEROCHECK.EXE-35AE1DFB.pf
NOTEPAD.EXE-336351A9.pf
NTOSBOOT-B00DFAAD.pf
PCTSTRAY.EXE-29391146.pf
RACCOURCI WINDOWS LIVE MESSEN-12AA1E43.pf
REG.EXE-0D2A95F7.pf
ROBOTASKBARICON.EXE-05368BA4.pf
RTHDCPL.EXE-06918CFA.pf
RUNDLL32.EXE-33113202.pf
S3TRAYP.EXE-1072C44B.pf
SEARCHPROTECTION.EXE-05283968.pf
SETUP.EXE-35DBA8FA.pf
SKYPE.EXE-30AE1A60.pf
SKYPEPM.EXE-2BC7DD5C.pf
SYSTEMINFO.EXE-32ED1FAB.pf
TASKLIST.EXE-10D94B23.pf
THREATWORK.EXE-0F50642D.pf
USERINIT.EXE-30B18140.pf
VERCLSID.EXE-3667BD89.pf
VTTIMER.EXE-023BA77F.pf
WF_TP.EXE-1BBE6C73.pf
WINDOWSSEARCH.EXE-33669DD1.pf
WINDOWSSEARCHINDEXER.EXE-158AA150.pf
WMIAPSRV.EXE-1E2270A5.pf
WMIPRVSE.EXE-28F301A9.pf
WSCNTFY.EXE-1B24F5EB.pf
WUAUCLT.EXE-399A8E72.pf
YAHOOMESSENGER.EXE-06E29CD9.pf
YMSGR_TRAY.EXE-256366BA.pf
ZSSNP211.EXE-07E59168.pf
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤( EOF )¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
Utilisateur anonyme
29 oct. 2009 à 11:50
29 oct. 2009 à 11:50
salut le rapport etait ici :
C:\Kill'em.txt
=====================
▶ Télécharge Ad-remover ( de C_XX ) sur ton bureau :
▶ Déconnecte toi et ferme toutes applications en cours !
▶ Double clique sur "Ad-R.exe" pour lancer l'installation et laisse les paramètres d'installation par défaut .
▶ Double-clique sur le raccourci Ad-remover qui est sur ton bureau pour lancer l'outil .
▶ Au menu principal choisis l'option "L" et tape sur [entrée] .
▶ Laisse travailler l'outil et ne touche à rien ...
▶ Poste le rapport qui apparait à la fin , sur le forum ...
( Le rapport est sauvegardé aussi sous C:\Ad-report.log )
( CTRL+A Pour tout sélectionner , CTRL+C pour copier et CTRL+V pour coller )
▶ Note : "Process.exe", une composante de l'outil, est détecté par certains antivirus (AntiVir, Dr.Web, Kaspersky Anti-Virus) comme étant un RiskTool.
Il ne s'agit pas d'un virus, mais d'un utilitaire destiné à mettre fin à des processus.
Mis entre de mauvaises mains, cet utilitaire pourrait arrêter des logiciels de sécurité (Antivirus, Firewall...) d'où l'alerte émise par ces antivirus.
C:\Kill'em.txt
=====================
▶ Télécharge Ad-remover ( de C_XX ) sur ton bureau :
▶ Déconnecte toi et ferme toutes applications en cours !
▶ Double clique sur "Ad-R.exe" pour lancer l'installation et laisse les paramètres d'installation par défaut .
▶ Double-clique sur le raccourci Ad-remover qui est sur ton bureau pour lancer l'outil .
▶ Au menu principal choisis l'option "L" et tape sur [entrée] .
▶ Laisse travailler l'outil et ne touche à rien ...
▶ Poste le rapport qui apparait à la fin , sur le forum ...
( Le rapport est sauvegardé aussi sous C:\Ad-report.log )
( CTRL+A Pour tout sélectionner , CTRL+C pour copier et CTRL+V pour coller )
▶ Note : "Process.exe", une composante de l'outil, est détecté par certains antivirus (AntiVir, Dr.Web, Kaspersky Anti-Virus) comme étant un RiskTool.
Il ne s'agit pas d'un virus, mais d'un utilitaire destiné à mettre fin à des processus.
Mis entre de mauvaises mains, cet utilitaire pourrait arrêter des logiciels de sécurité (Antivirus, Firewall...) d'où l'alerte émise par ces antivirus.
buckhulk
Messages postés
13690
Date d'inscription
dimanche 21 septembre 2008
Statut
Contributeur
Dernière intervention
14 novembre 2020
1 756
29 oct. 2009 à 12:14
29 oct. 2009 à 12:14
salut gen
donc je télécharge ad-remover ?
je je te poste le resultat c'est ça ?
pourtant ça fonctionne bien aujourd'hui ?
donc je télécharge ad-remover ?
je je te poste le resultat c'est ça ?
pourtant ça fonctionne bien aujourd'hui ?
Utilisateur anonyme
29 oct. 2009 à 12:18
29 oct. 2009 à 12:18
oui il te supprimera toutes les cles infectieuses qui se trouvent dans le rapport de List'em
buckhulk
Messages postés
13690
Date d'inscription
dimanche 21 septembre 2008
Statut
Contributeur
Dernière intervention
14 novembre 2020
1 756
29 oct. 2009 à 12:20
29 oct. 2009 à 12:20
OK a+
buckhulk
Messages postés
13690
Date d'inscription
dimanche 21 septembre 2008
Statut
Contributeur
Dernière intervention
14 novembre 2020
1 756
29 oct. 2009 à 12:49
29 oct. 2009 à 12:49
c'est fait , voici le rapport :
.
======= RAPPORT D'AD-REMOVER 1.1.4.5_Z | UNIQUEMENT XP/VISTA/7 =======
.
Mit à jour par C_XX le 17.10.2009 à 11:48
Contact: AdRemover.contact@gmail.com
Site web: http://pagesperso-orange.fr/NosTools/ad_remover.html
.
Lancé à: 15:21:33, 29/10/2009 | Mode Normal | Option: CLEAN
Exécuté de: C:\Program Files\Ad-Remover\
Système d'exploitation: Microsoft® Windows XP™ Service Pack 3 v5.1.2600
Nom du PC: PC-A2137737F07A | Utilisateur actuel: Bienvenue sur XP
.
============== ÉLÉMENT(S) NEUTRALISÉ(S) ==============
.
HKCU\Software\AppDataLow\AskBarDis
HKCU\Software\EoRezo
HKCU\Software\FunWebProducts
HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{64F56FC1-1272-44CD-BA6E-39723696E350}
HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EEE6C35B-6118-11DC-9C72-001320C79847}
HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EEE6C35C-6118-11DC-9C72-001320C79847}
HKLM\Software\Classes\AppID\{362A53B2-2913-4F8A-82F5-7E0A23FDC6F9}
HKLM\Software\Classes\AppID\EoRezoBHO.DLL
HKLM\Software\Classes\CLSID\{201F27D4-3704-41D6-89C1-AA35E39143ED}
HKLM\Software\Classes\CLSID\{64F56FC1-1272-44CD-BA6E-39723696E350}
HKLM\Software\Classes\EoRezoBHO.EoBho
HKLM\Software\Classes\EoRezoBHO.EoBho.1
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{201f27d4-3704-41d6-89c1-aa35e39143ed}
HKLM\Software\Microsoft\Internet Explorer\Toolbar\\{3041d03e-fd4b-44e0-b742-2d9b88305f98}
HKLM\Software\Classes\CLSID\{0702a2b6-13aa-4090-9e01-bcdc85dd933f}
HKLM\Software\Classes\CLSID\{3041d03e-fd4b-44e0-b742-2d9b88305f98}
HKLM\Software\Classes\CLSID\{622fd888-4e91-4d68-84d4-7262fd0811bf}
HKLM\Software\Classes\CLSID\{b0de3308-5d5a-470d-81b9-634fc078393b}
HKLM\Software\Classes\TypeLib\{4B1C1E16-6B34-430E-B074-5928ECA4C150}
HKLM\Software\Classes\Interface\{66BBA29A-A67B-485B-82BB-151EB8C4E91E}
.
C:\DOCUME~1\BIENVE~1\APPLIC~1\Mozilla\Firefox\Profiles\ej4x10t3.default\extensions\{E9A1DEE0-C623-4439-8932-001E7D17607D}
C:\DOCUME~1\BIENVE~1\APPLIC~1\Mozilla\Firefox\Profiles\ej4x10t3.default\extensions\{EEE6C361-6118-11DC-9C72-001320C79847}
C:\DOCUME~1\BIENVE~1\APPLIC~1\Mozilla\Firefox\Profiles\ej4x10t3.default\searchplugins\ask.xml
C:\DOCUME~1\BIENVE~1\APPLIC~1\Mozilla\Firefox\Profiles\ej4x10t3.default\searchplugins\sweetim.xml
C:\Program Files\Mozilla FireFox\Components\AskSearch.js
C:\Windows\Installer\2b01c57.msi
(!) -- Fichiers temporaires supprimés.
.
============== Scan additionnel ==============
.
.
* Mozilla FireFox Version 3.0.8 [fr] *
.
Nom du profil: ej4x10t3.default (Bienvenue sur XP)
.
(Prefs.js) user_pref("browser.search.defaultenginename", "MyStart Rechercher");
(Prefs.js) user_pref("browser.search.selectedEngine", "MyStart Rechercher");
(Prefs.js) user_pref("browser.search.defaulturl", "hxxp://search.live.com/results.aspx?FORM=IEFM1&q=");
(Prefs.js) user_pref("browser.startup.homepage", "hxxp://mystart.incredimail.com/");
(Prefs.js) user_pref("browser.startup.homepage_override.mstone", "rv:1.9.0.8");
(Invalidprefs.js) user_pref("browser.search.defaultenginename", "Live Search");
(Invalidprefs.js) user_pref("browser.search.defaultenginename", "Live Search");
(Invalidprefs.js) user_pref("browser.search.selectedEngine", "peer2Peer-FR2 Customized Web Search");
(Invalidprefs.js) user_pref("browser.search.selectedEngine", "peer2Peer-FR2 Customized Web Search");
(Invalidprefs.js) user_pref("browser.search.defaulturl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2093510&SearchSource=3&q=");
(Invalidprefs.js) user_pref("browser.search.defaulturl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2093510&SearchSource=3&q=");
(Invalidprefs.js) user_pref("browser.startup.homepage", "hxxp://lo.st#home");
(Invalidprefs.js) user_pref("browser.startup.homepage_override.mstone", "rv:1.9");
(Invalidprefs.js) user_pref("browser.startup.homepage", "hxxp://lo.st#home");
(Invalidprefs.js) user_pref("browser.startup.homepage_override.mstone", "rv:1.9");
.
(Invalidprefs.js) EFFACÉ: user_pref("browser.startup.homepage", "hxxp://lo.st#home");
(Invalidprefs.js) EFFACÉ: user_pref("browser.startup.homepage", "hxxp://lo.st#home");
(prefs.js) EFFACÉ: user_pref("extensions.snipit.chromeURL", "hxxp://toolbar.ask.com/toolbarv/askRedirect?o=101699&gct=&gc=1&q={searchTerms}&crm=1");
(prefs.js) EFFACÉ: user_pref("sweetim.toolbar.highlight.colors", "#FFFF00,#00FFE4,#5AFF00,#0087FF,#FFCC00,#FF00F0");
(prefs.js) EFFACÉ: user_pref("sweetim.toolbar.logger.ConsoleHandler.MinReportLevel", "7");
(prefs.js) EFFACÉ: user_pref("sweetim.toolbar.logger.FileHandler.FileName", "ff-toolbar.log");
(prefs.js) EFFACÉ: user_pref("sweetim.toolbar.logger.FileHandler.MaxFileSize", "200000");
(prefs.js) EFFACÉ: user_pref("sweetim.toolbar.logger.FileHandler.MinReportLevel", "7");
(prefs.js) EFFACÉ: user_pref("sweetim.toolbar.mode.debug", "false");
(prefs.js) EFFACÉ: user_pref("sweetim.toolbar.previous.keyword.URL", "hxxp://toolbar.ask.com/toolbarv/askRedirect?o=101699&gct=&gc=1&q=");
(prefs.js) EFFACÉ: user_pref("sweetim.toolbar.search.external", "<?xml version=\"1.0\"?><TOOLBAR><EXTERNAL_SEARCH engine=\"hxxp://*google.*\" param=\"q=\" /><EXTERNAL_SEARCH engine=\"hxxp://search.yahoo.com/*\" param=\"p=\" /><EXTERNAL_SEARCH engine=\"hxxp://search.sweetim.*\" param=\"q=\" /><EXTERNAL_SEARCH engine=\"hxxp://*.live.*/*\" param=\"q=\" /><EXTERNAL_SEARCH engine=\"hxxp://*youtube.com/\" param=\"search_query=\" /><EXTERNAL_SEARCH engine=\"hxxp://*.ebay.*/search/*\" param=\"satitle=\" /><EXTERNAL_SEARCH engine=\"hxxp://*.amazon.com/s/*\" param=\"field-keywords=\" /></TOOLBAR>");
(prefs.js) EFFACÉ: user_pref("sweetim.toolbar.search.history.capacity", "10");
(prefs.js) EFFACÉ: user_pref("sweetim.toolbar.version", "1.0.0.8");
.
* Internet Explorer Version 8.0.6001.18702 *
.
[HKEY_CURRENT_USER\..\Internet Explorer\Main]
.
Start Page: hxxp://fr.msn.com/
Search Page: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
Default_search_url: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
Default_page_url: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
Search bar: hxxp://go.microsoft.com/fwlink/?linkid=54896
.
[HKEY_LOCAL_MACHINE\..\Internet Explorer\Main]
.
Default_Page_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
Default_Search_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
Search Page: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
Start Page: hxxp://fr.msn.com/
Search bar: hxxp://search.msn.com/spbasic.htm
.
[HKEY_LOCAL_MACHINE\..\Internet Explorer\ABOUTURLS]
.
Tabs: res://ieframe.dll/tabswelcome.htm
.
===================================
.
6765 Octet(s) - C:\Ad-Report-CLEAN[1].log
.
1504 Fichier(s) - C:\DOCUME~1\BIENVE~1\LOCALS~1\Temp
0 Fichier(s) - C:\WINDOWS\Temp
.
20 Fichier(s) - C:\Program Files\Ad-Remover\BACKUP
7 Fichier(s) - C:\Program Files\Ad-Remover\QUARANTINE
.
Fin à: 15:35:18 | 29/10/2009 - CLEAN[1]
.
============== E.O.F ==============
.
.
======= RAPPORT D'AD-REMOVER 1.1.4.5_Z | UNIQUEMENT XP/VISTA/7 =======
.
Mit à jour par C_XX le 17.10.2009 à 11:48
Contact: AdRemover.contact@gmail.com
Site web: http://pagesperso-orange.fr/NosTools/ad_remover.html
.
Lancé à: 15:21:33, 29/10/2009 | Mode Normal | Option: CLEAN
Exécuté de: C:\Program Files\Ad-Remover\
Système d'exploitation: Microsoft® Windows XP™ Service Pack 3 v5.1.2600
Nom du PC: PC-A2137737F07A | Utilisateur actuel: Bienvenue sur XP
.
============== ÉLÉMENT(S) NEUTRALISÉ(S) ==============
.
HKCU\Software\AppDataLow\AskBarDis
HKCU\Software\EoRezo
HKCU\Software\FunWebProducts
HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{64F56FC1-1272-44CD-BA6E-39723696E350}
HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EEE6C35B-6118-11DC-9C72-001320C79847}
HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EEE6C35C-6118-11DC-9C72-001320C79847}
HKLM\Software\Classes\AppID\{362A53B2-2913-4F8A-82F5-7E0A23FDC6F9}
HKLM\Software\Classes\AppID\EoRezoBHO.DLL
HKLM\Software\Classes\CLSID\{201F27D4-3704-41D6-89C1-AA35E39143ED}
HKLM\Software\Classes\CLSID\{64F56FC1-1272-44CD-BA6E-39723696E350}
HKLM\Software\Classes\EoRezoBHO.EoBho
HKLM\Software\Classes\EoRezoBHO.EoBho.1
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{201f27d4-3704-41d6-89c1-aa35e39143ed}
HKLM\Software\Microsoft\Internet Explorer\Toolbar\\{3041d03e-fd4b-44e0-b742-2d9b88305f98}
HKLM\Software\Classes\CLSID\{0702a2b6-13aa-4090-9e01-bcdc85dd933f}
HKLM\Software\Classes\CLSID\{3041d03e-fd4b-44e0-b742-2d9b88305f98}
HKLM\Software\Classes\CLSID\{622fd888-4e91-4d68-84d4-7262fd0811bf}
HKLM\Software\Classes\CLSID\{b0de3308-5d5a-470d-81b9-634fc078393b}
HKLM\Software\Classes\TypeLib\{4B1C1E16-6B34-430E-B074-5928ECA4C150}
HKLM\Software\Classes\Interface\{66BBA29A-A67B-485B-82BB-151EB8C4E91E}
.
C:\DOCUME~1\BIENVE~1\APPLIC~1\Mozilla\Firefox\Profiles\ej4x10t3.default\extensions\{E9A1DEE0-C623-4439-8932-001E7D17607D}
C:\DOCUME~1\BIENVE~1\APPLIC~1\Mozilla\Firefox\Profiles\ej4x10t3.default\extensions\{EEE6C361-6118-11DC-9C72-001320C79847}
C:\DOCUME~1\BIENVE~1\APPLIC~1\Mozilla\Firefox\Profiles\ej4x10t3.default\searchplugins\ask.xml
C:\DOCUME~1\BIENVE~1\APPLIC~1\Mozilla\Firefox\Profiles\ej4x10t3.default\searchplugins\sweetim.xml
C:\Program Files\Mozilla FireFox\Components\AskSearch.js
C:\Windows\Installer\2b01c57.msi
(!) -- Fichiers temporaires supprimés.
.
============== Scan additionnel ==============
.
.
* Mozilla FireFox Version 3.0.8 [fr] *
.
Nom du profil: ej4x10t3.default (Bienvenue sur XP)
.
(Prefs.js) user_pref("browser.search.defaultenginename", "MyStart Rechercher");
(Prefs.js) user_pref("browser.search.selectedEngine", "MyStart Rechercher");
(Prefs.js) user_pref("browser.search.defaulturl", "hxxp://search.live.com/results.aspx?FORM=IEFM1&q=");
(Prefs.js) user_pref("browser.startup.homepage", "hxxp://mystart.incredimail.com/");
(Prefs.js) user_pref("browser.startup.homepage_override.mstone", "rv:1.9.0.8");
(Invalidprefs.js) user_pref("browser.search.defaultenginename", "Live Search");
(Invalidprefs.js) user_pref("browser.search.defaultenginename", "Live Search");
(Invalidprefs.js) user_pref("browser.search.selectedEngine", "peer2Peer-FR2 Customized Web Search");
(Invalidprefs.js) user_pref("browser.search.selectedEngine", "peer2Peer-FR2 Customized Web Search");
(Invalidprefs.js) user_pref("browser.search.defaulturl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2093510&SearchSource=3&q=");
(Invalidprefs.js) user_pref("browser.search.defaulturl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2093510&SearchSource=3&q=");
(Invalidprefs.js) user_pref("browser.startup.homepage", "hxxp://lo.st#home");
(Invalidprefs.js) user_pref("browser.startup.homepage_override.mstone", "rv:1.9");
(Invalidprefs.js) user_pref("browser.startup.homepage", "hxxp://lo.st#home");
(Invalidprefs.js) user_pref("browser.startup.homepage_override.mstone", "rv:1.9");
.
(Invalidprefs.js) EFFACÉ: user_pref("browser.startup.homepage", "hxxp://lo.st#home");
(Invalidprefs.js) EFFACÉ: user_pref("browser.startup.homepage", "hxxp://lo.st#home");
(prefs.js) EFFACÉ: user_pref("extensions.snipit.chromeURL", "hxxp://toolbar.ask.com/toolbarv/askRedirect?o=101699&gct=&gc=1&q={searchTerms}&crm=1");
(prefs.js) EFFACÉ: user_pref("sweetim.toolbar.highlight.colors", "#FFFF00,#00FFE4,#5AFF00,#0087FF,#FFCC00,#FF00F0");
(prefs.js) EFFACÉ: user_pref("sweetim.toolbar.logger.ConsoleHandler.MinReportLevel", "7");
(prefs.js) EFFACÉ: user_pref("sweetim.toolbar.logger.FileHandler.FileName", "ff-toolbar.log");
(prefs.js) EFFACÉ: user_pref("sweetim.toolbar.logger.FileHandler.MaxFileSize", "200000");
(prefs.js) EFFACÉ: user_pref("sweetim.toolbar.logger.FileHandler.MinReportLevel", "7");
(prefs.js) EFFACÉ: user_pref("sweetim.toolbar.mode.debug", "false");
(prefs.js) EFFACÉ: user_pref("sweetim.toolbar.previous.keyword.URL", "hxxp://toolbar.ask.com/toolbarv/askRedirect?o=101699&gct=&gc=1&q=");
(prefs.js) EFFACÉ: user_pref("sweetim.toolbar.search.external", "<?xml version=\"1.0\"?><TOOLBAR><EXTERNAL_SEARCH engine=\"hxxp://*google.*\" param=\"q=\" /><EXTERNAL_SEARCH engine=\"hxxp://search.yahoo.com/*\" param=\"p=\" /><EXTERNAL_SEARCH engine=\"hxxp://search.sweetim.*\" param=\"q=\" /><EXTERNAL_SEARCH engine=\"hxxp://*.live.*/*\" param=\"q=\" /><EXTERNAL_SEARCH engine=\"hxxp://*youtube.com/\" param=\"search_query=\" /><EXTERNAL_SEARCH engine=\"hxxp://*.ebay.*/search/*\" param=\"satitle=\" /><EXTERNAL_SEARCH engine=\"hxxp://*.amazon.com/s/*\" param=\"field-keywords=\" /></TOOLBAR>");
(prefs.js) EFFACÉ: user_pref("sweetim.toolbar.search.history.capacity", "10");
(prefs.js) EFFACÉ: user_pref("sweetim.toolbar.version", "1.0.0.8");
.
* Internet Explorer Version 8.0.6001.18702 *
.
[HKEY_CURRENT_USER\..\Internet Explorer\Main]
.
Start Page: hxxp://fr.msn.com/
Search Page: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
Default_search_url: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
Default_page_url: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
Search bar: hxxp://go.microsoft.com/fwlink/?linkid=54896
.
[HKEY_LOCAL_MACHINE\..\Internet Explorer\Main]
.
Default_Page_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
Default_Search_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
Search Page: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
Start Page: hxxp://fr.msn.com/
Search bar: hxxp://search.msn.com/spbasic.htm
.
[HKEY_LOCAL_MACHINE\..\Internet Explorer\ABOUTURLS]
.
Tabs: res://ieframe.dll/tabswelcome.htm
.
===================================
.
6765 Octet(s) - C:\Ad-Report-CLEAN[1].log
.
1504 Fichier(s) - C:\DOCUME~1\BIENVE~1\LOCALS~1\Temp
0 Fichier(s) - C:\WINDOWS\Temp
.
20 Fichier(s) - C:\Program Files\Ad-Remover\BACKUP
7 Fichier(s) - C:\Program Files\Ad-Remover\QUARANTINE
.
Fin à: 15:35:18 | 29/10/2009 - CLEAN[1]
.
============== E.O.F ==============
.
gauthier62400
Messages postés
77
Date d'inscription
samedi 22 août 2009
Statut
Membre
Dernière intervention
6 juin 2010
4
29 oct. 2009 à 12:56
29 oct. 2009 à 12:56
Bonjours, si ton pc fait beaucoup de bruit comme un moteur qui s'arrête jamais :
Faut le nettoyer a l'intérieure ( cause: poussière > bruit )
Faut nettoyer le ventilo et tout ceux qui s'ensuit avec un coton tige C'est peut-être con, certain vont dire sa et sa marche. Faut bien le nettoyer .
Faut le nettoyer a l'intérieure ( cause: poussière > bruit )
Faut nettoyer le ventilo et tout ceux qui s'ensuit avec un coton tige C'est peut-être con, certain vont dire sa et sa marche. Faut bien le nettoyer .
buckhulk
Messages postés
13690
Date d'inscription
dimanche 21 septembre 2008
Statut
Contributeur
Dernière intervention
14 novembre 2020
1 756
29 oct. 2009 à 13:24
29 oct. 2009 à 13:24
oui merci , ça je vais le faire aussi , c'est vrai qu'ici ou je vis il y a beaucoup de poussière !!
Utilisateur anonyme
29 oct. 2009 à 12:57
29 oct. 2009 à 12:57
supprime List_Kill'em , retelecharge-le et refais l option recherche stp
buckhulk
Messages postés
13690
Date d'inscription
dimanche 21 septembre 2008
Statut
Contributeur
Dernière intervention
14 novembre 2020
1 756
29 oct. 2009 à 13:50
29 oct. 2009 à 13:50
hello , t'es repartit ???
buckhulk
Messages postés
13690
Date d'inscription
dimanche 21 septembre 2008
Statut
Contributeur
Dernière intervention
14 novembre 2020
1 756
29 oct. 2009 à 13:02
29 oct. 2009 à 13:02
ok
buckhulk
Messages postés
13690
Date d'inscription
dimanche 21 septembre 2008
Statut
Contributeur
Dernière intervention
14 novembre 2020
1 756
29 oct. 2009 à 13:13
29 oct. 2009 à 13:13
rapport :
List'em by g3n-h@ckm@n 1.0.4.7
User : Bienvenue sur XP (Administrateurs) # PC-A2137737F07A
Update on 27/10/2009 by g3n-h@ckm@n ::::: 11.30
Start at: 16:04:28 | 29/10/2009
Contact : g3n-h@ckm@n sur CCM
Intel(R) Pentium(R) Dual CPU E2180 @ 2.00GHz
Microsoft Windows XP Professionnel (5.1.2600 32-bit) # Service Pack 3
Internet Explorer 8.0.6001.18702
Windows Firewall Status : Enabled
AV : AntiVir Desktop 9.0.1.32 [ Enabled | Updated ]
A:\ -> Lecteur de disquettes 3 ½ pouces
C:\ -> Disque fixe local | 149,04 Go (102,33 Go free) | NTFS
D:\ -> Disque CD-ROM
Nom de l'image PIDÿ Nom de la sessio Num‚ro d Utilisation
========================= ====== ================ ======== ============
System Idle Process 0 Console 0 16 Ko
System 4 Console 0 48 Ko
smss.exe 1024 Console 0 48 Ko
csrss.exe 1160 Console 0 3ÿ876 Ko
winlogon.exe 1216 Console 0 5ÿ836 Ko
services.exe 1276 Console 0 2ÿ620 Ko
lsass.exe 1288 Console 0 4ÿ668 Ko
svchost.exe 1504 Console 0 3ÿ524 Ko
svchost.exe 1588 Console 0 2ÿ956 Ko
svchost.exe 1684 Console 0 19ÿ204 Ko
svchost.exe 1868 Console 0 2ÿ272 Ko
svchost.exe 1960 Console 0 2ÿ488 Ko
AAWService.exe 2036 Console 0 18ÿ436 Ko
spoolsv.exe 260 Console 0 4ÿ352 Ko
sched.exe 368 Console 0 688 Ko
avguard.exe 892 Console 0 13ÿ672 Ko
LSSrvc.exe 1052 Console 0 356 Ko
lxdnserv.exe 1808 Console 0 232 Ko
lxdncoms.exe 1828 Console 0 5ÿ944 Ko
PCoptimizerService.exe 572 Console 0 300 Ko
pctsAuxs.exe 624 Console 0 480 Ko
pctsSvc.exe 644 Console 0 25ÿ780 Ko
RTHDCPL.exe 1152 Console 0 6ÿ132 Ko
VTTimer.exe 1188 Console 0 424 Ko
S3Trayp.exe 1164 Console 0 1ÿ228 Ko
ZSSnp211.EXE 1356 Console 0 1ÿ048 Ko
Domino.EXE 1368 Console 0 248 Ko
apdproxy.exe 1292 Console 0 3ÿ320 Ko
SearchProtection.exe 1628 Console 0 900 Ko
acrotray.exe 1708 Console 0 1ÿ120 Ko
GoogleQuickSearchBox.exe 1760 Console 0 19ÿ096 Ko
AAWTray.exe 976 Console 0 992 Ko
lxdnmon.exe 1884 Console 0 1ÿ152 Ko
SeaPort.exe 1892 Console 0 2ÿ808 Ko
avgnt.exe 1976 Console 0 1ÿ776 Ko
realsched.exe 2104 Console 0 164 Ko
pctsTray.exe 2116 Console 0 1ÿ256 Ko
lxdnmsdmon.exe 2172 Console 0 4ÿ744 Ko
ctfmon.exe 2236 Console 0 1ÿ724 Ko
svchost.exe 2404 Console 0 3ÿ216 Ko
YahooAUService.exe 2524 Console 0 5ÿ224 Ko
avmailc.exe 2576 Console 0 672 Ko
LightScribeControlPanel.e 2648 Console 0 1ÿ752 Ko
avwebgrd.exe 2676 Console 0 4ÿ200 Ko
Skype.exe 3332 Console 0 26ÿ068 Ko
fdm.exe 3424 Console 0 11ÿ448 Ko
wf_tp.exe 3620 Console 0 4ÿ516 Ko
MgApp.exe 4048 Console 0 5ÿ140 Ko
France24 Desktop.exe 4080 Console 0 3ÿ172 Ko
robotaskbaricon.exe 636 Console 0 3ÿ824 Ko
WindowsSearch.exe 824 Console 0 1ÿ112 Ko
WindowsSearchIndexer.exe 3472 Console 0 4ÿ176 Ko
ImApp.exe 2776 Console 0 3ÿ780 Ko
skypePM.exe 3108 Console 0 8ÿ188 Ko
unsecapp.exe 3456 Console 0 1ÿ748 Ko
wmiprvse.exe 2724 Console 0 2ÿ512 Ko
wscntfy.exe 2732 Console 0 2ÿ028 Ko
alg.exe 2560 Console 0 1ÿ888 Ko
Ymsgr_tray.exe 2604 Console 0 3ÿ808 Ko
IncMail.exe 2220 Console 0 11ÿ248 Ko
explorer.exe 3320 Console 0 91ÿ488 Ko
notepad.exe 4404 Console 0 968 Ko
msnmsgr.exe 5836 Console 0 4ÿ688 Ko
wlcomm.exe 5136 Console 0 23ÿ564 Ko
iexplore.exe 4360 Console 0 2ÿ388 Ko
iexplore.exe 5900 Console 0 112ÿ920 Ko
iexplore.exe 4012 Console 0 132ÿ420 Ko
List_Killem.exe 5968 Console 0 25ÿ604 Ko
cmd.exe 2968 Console 0 7ÿ884 Ko
wmiprvse.exe 4676 Console 0 7ÿ476 Ko
tasklist.exe 1060 Console 0 5ÿ288 Ko
======================
Cles de demarrage "Run"
======================
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\\WINDOWS\\system32\\ctfmon.exe"
"LightScribe Control Panel"="C:\\Program Files\\Fichiers communs\\LightScribe\\LightScribeControlPanel.exe -hidden"
"Messenger (Yahoo!)"="\"C:\\Program Files\\Yahoo!\\Messenger\\YahooMessenger.exe\" -quiet"
"Magentic"="C:\\PROGRA~1\\Magentic\\bin\\Magentic.exe /c"
"IncrediMail"="C:\\Program Files\\IncrediMail\\bin\\IncMail.exe /c"
"Search Protection"="C:\\Program Files\\Yahoo!\\Search Protection\\SearchProtection.exe"
"YSearchProtection"="C:\\Program Files\\Yahoo!\\Search Protection\\SearchProtection.exe"
"Skype"="\"C:\\Program Files\\Skype\\Phone\\Skype.exe\" /nosplash /minimized"
"Free Download Manager"="\"C:\\Program Files\\Free Download Manager\\fdm.exe\" -autorun"
"WISE-FTP Task Planner"="\"C:\\Program Files\\AceBIT\\WISE-FTP 5\\wf_tp.exe\" /bg"
"france24"="C:\\Documents and Settings\\Bienvenue sur XP\\Local Settings\\Application Data\\Djingle\\France24 Desktop\\bin\\autorun.lnk"
"RoboForm"="\"C:\\Program Files\\Siber Systems\\AI RoboForm\\RoboTaskBarIcon.exe\""
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RTHDCPL"="RTHDCPL.EXE"
"VTTimer"="VTTimer.exe"
"S3Trayp"="S3Trayp.exe"
"NeroFilterCheck"="C:\\Program Files\\Fichiers communs\\Ahead\\Lib\\NeroCheck.exe"
"ZSSnp211"="C:\\WINDOWS\\ZSSnp211.exe"
"Domino"="C:\\WINDOWS\\Domino.exe"
"Adobe Photo Downloader"="\"C:\\Program Files\\Adobe\\Photoshop Album Edition D‚couverte\\3.0\\Apps\\apdproxy.exe\""
"FaxCenterServer"="\"C:\\Program Files\\Lexmark Fax Solutions\\fm3032.exe\" /s"
"fssui"="\"C:\\Program Files\\Windows Live\\Family Safety\\fsui.exe\" -autorun"
"YSearchProtection"="\"C:\\Program Files\\Yahoo!\\Search Protection\\SearchProtection.exe\""
"Adobe Reader Speed Launcher"="\"C:\\Program Files\\Adobe\\Reader 9.0\\Reader\\Reader_sl.exe\""
"Adobe Acrobat Speed Launcher"="\"C:\\Program Files\\Adobe\\Acrobat 9.0\\Acrobat\\Acrobat_sl.exe\""
@=""
"Acrobat Assistant 8.0"="\"C:\\Program Files\\Adobe\\Acrobat 9.0\\Acrobat\\Acrotray.exe\""
"Google Quick Search Box"="\"C:\\Program Files\\Google\\Quick Search Box\\GoogleQuickSearchBox.exe\" /autorun"
"Ad-Watch"="C:\\Program Files\\Lavasoft\\Ad-Aware\\AAWTray.exe"
"lxdnmon.exe"="\"C:\\Program Files\\Lexmark 2600 Series\\lxdnmon.exe\""
"lxdnamon"="\"C:\\Program Files\\Lexmark 2600 Series\\lxdnamon.exe\""
"avgnt"="\"C:\\Program Files\\Avira\\AntiVir Desktop\\avgnt.exe\" /min"
"TkBellExe"="\"C:\\Program Files\\Fichiers communs\\Real\\Update_OB\\realsched.exe\" -osboot"
"ISTray"="\"C:\\Program Files\\Spyware Doctor\\pctsTray.exe\""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents\IMAIL]
"Installed"="1"
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents\MAPI]
"NoChange"="1"
"Installed"="1"
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents\MSFS]
"Installed"="1"
@=""
=====================
cles additionnelles
=====================
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=dword:00000000
"legalnoticecaption"=""
"legalnoticetext"=""
"shutdownwithoutlogon"=dword:00000001
"undockwithoutlogon"=dword:00000001
"ConsentPromptBehaviorAdmin"=dword:00000002
===============
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
===============
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
"PostBootReminder"="{7849596a-48ea-486e-8937-a2a3009f31a9}"
"CDBurn"="{fbeb8a05-beee-4442-804e-409d6c4515e9}"
"WebCheck"="{E6FB5E20-DE35-11CF-9C87-00AA005127ED}"
"SysTray"="{35CEC8A3-2BE6-11D2-8773-92E220524153}"
"WPDShServiceObj"="{AAA288BA-9A4C-45B0-95D7-94D524869DB5}"
======
BHO :
======
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4efb-9B51-7695ECA05670}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4efb-9B51-7695ECA05670}\NoExplorer]
@=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1017A80C-6F09-4548-A84D-EDD6AC9525F0}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
@="AcroIEHelperStub"
"NoExplorer"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1AD61D5B-58A3-4592-9B34-DC84688FF805}]
@="PDFHelperBHO"
"NoExplorer"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{22BF413B-C6D2-4d91-82A9-A0F997BA588C}]
@="Skype add-on (mastermind)"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{724d43a9-0d85-11d4-9908-00400523e39a}]
@="RoboForm"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0}]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C84D72FE-E17D-4195-BB24-76C02E2E7C4E}]
@="Google Dictionary Compression sdch"
"NoExplorer"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CC59E0F9-7E43-44FA-9FAA-8377850BF205}]
"NoExplorer"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
"NoExplorer"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F4971EE7-DAA0-4053-9964-665D8EE6A077}]
"NoExplorer"=dword:00000001
@="SmartSelect"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FDAD4DA1-61A2-4FD8-9C17-86F7AC245081}]
==========================
===============
Path : C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem
===============
¤¤¤¤¤¤¤¤¤¤ Fichiers et dossiers presents :
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat
¤¤¤¤¤¤¤¤¤¤ Clés de registre Presentes :
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Setup.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\07D5290CDBDAE4242926B8E6CA650501
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\08E33F7B61DEFF24BB9673ED7D467636
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\0E3D8A5B48622A445A7DF73FEFF32C3F
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\1AC67655DD68F8240B2860F2D511EBD8
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\34EDDB1BFB3A2D448845F3EFD0F15A43
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\4318DF19719275242801CBE292063A4C
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\45FC115D1FEAEF849A4E1610D6EC8BF0
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\46A5861A389ADB844AF89E31BC9DF0A1
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\49B0E1A6FF50BBE4289E4E23DE6EA0C7
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\4CCCAC049F34D0540AAC13011398BEDB
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\5C4389D0BFB302C479DE4178BD5D9EBA
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\5D19F074C042AD34BAB463D4175A062E
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\5D2B09BDEF4FE54418E6F3373CDBC7AC
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\61B65D3397A1FBF4CB1571B5E4F6B5B0
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\68E8A05C60DD9254591DBD16C94EDDBF
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\697E782CF574CC34CBB9566440BA12BC
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\6AE27A8613CF7EA4782F2886F67295E5
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\7CE172051F585E04187BCB97570BFA74
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\86A901BA5265452499DCBF719C378EE3
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\88ABD1CD5C40EC84789A7F6EF86DAC5E
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\980289C22F80A7C4BB9323DC61255E4E
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\9A4B7EF3789F871419D9302583B20C15
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\A6C53B0F76C44004A8F36716213017DB
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\B59F2D8189784CC46A4597F2842480B0
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\BD746FB95FB8E5B45BF66BE54D5FD91F
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\CCF399FCD6D2D3F46BF02A1378654FC9
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\D149C1355C98DE24E82CEFBD996FE06A
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\DB59FDB786388EA4D897F3EE715683AC
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\DB8DAD19CFBCC2049A4477183787E8C5
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\E337925F629CF4C4FB08F3D9674DD839
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\EC65F200D112357449C8B1BC3CFA03D0
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\F327D0C73C0973644A21E8CC852267A0
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\FA96423FE2B98E248A3B23548D1E22D9
¤¤¤¤¤¤¤¤¤¤ C:\WINDOWS\Prefetch :
6.13580-6.13590.EXE-140B2B97.pf
AAWSERVICE.EXE-3B93EBA3.pf
AAWTRAY.EXE-1858AE3F.pf
AAWWSC.EXE-248CAA52.pf
AD-AWAREADMIN.EXE-102E374C.pf
AD-R.EXE-0533C60E.pf
ALG.EXE-0F138680.pf
APDPROXY.EXE-397EBF29.pf
ATTRIB.EXE-39EAFB02.pf
AVGNT.EXE-200FEF40.pf
AVGUARD.EXE-27095CE7.pf
AVSCAN.EXE-07FC469C.pf
AVWSC.EXE-0283F9DD.pf
CHCP.COM-18156052.pf
CMD.EXE-087B4001.pf
CONTROL.EXE-013DBFB5.pf
CSCRIPT.EXE-1C26180C.pf
CTFMON.EXE-0E17969B.pf
DEFRAG.EXE-273F131E.pf
DFRGNTFS.EXE-269967DF.pf
DLLHOST.EXE-42807EE4.pf
DOMINO.EXE-04EEC00C.pf
DRWTSN32.EXE-2B4B52AC.pf
DUMPREP.EXE-1B46F901.pf
DWWIN.EXE-30875ADC.pf
ERUNT.COM-3A876921.pf
EXPLORER.EXE-082F38A9.pf
FDM.EXE-1EBA87D2.pf
FM3032.EXE-20910848.pf
FRANCE24 DESKTOP.EXE-2635363E.pf
FSUI.EXE-2FFACBF6.pf
GOOGLECRASHHANDLER.EXE-1A9F3296.pf
GOOGLEUPDATE.EXE-1E123D86.pf
GOOGLEUPDATER.EXE-2CAF5929.pf
GOOGLEUPDATERSERVICE.EXE-3AB369BE.pf
GREP.COM-30632777.pf
HELPSVC.EXE-2878DDA2.pf
IEXPLORE.EXE-27122324.pf
IMAPI.EXE-0BF740A4.pf
IMAPP.EXE-093362B0.pf
IMNOTFY.EXE-39B9FFE6.pf
INCMAIL.EXE-1D49117E.pf
ISADMIN.COM-2460FC13.pf
layout.ini
LIGHTSCRIBECONTROLPANEL.EXE-227B1346.pf
LIST_KILLEM.EXE-010FEA21.pf
LXDNAMON.EXE-06431094.pf
LXDNCOMS.EXE-0469540E.pf
LXDNMSDMON.EXE-1EB7FECD.pf
MAGENTIC.EXE-0173035F.pf
MAGENT~1.SCR-2B1F1BA6.pf
MGAPP.EXE-073133FE.pf
MODE.COM-31685BAE.pf
MPNOTIFY.EXE-3631A846.pf
MSFEEDSSYNC.EXE-25E13438.pf
MSNAPPAU.EXE-0FDD9428.pf
MSNMSGR.EXE-030AB647.pf
MSN_SL.EXE-047411B3.pf
NEROCHECK.EXE-35AE1DFB.pf
NIRCMD.COM-35BF857A.pf
NOTEPAD.EXE-336351A9.pf
NTOSBOOT-B00DFAAD.pf
PCTSTRAY.EXE-29391146.pf
PROCESS.COM-0458B762.pf
PV.COM-006EB813.pf
RACCOURCI WINDOWS LIVE MESSEN-12AA1E43.pf
REALPLAY.EXE-1BF219BD.pf
REALSCHED.EXE-04BEC5CC.pf
REG.EXE-0D2A95F7.pf
REGDACL.COM-3B1D4525.pf
ROBOTASKBARICON.EXE-05368BA4.pf
RTHDCPL.EXE-06918CFA.pf
RUNDLL32.EXE-13DA0E71.pf
RUNDLL32.EXE-1831A4F3.pf
RUNDLL32.EXE-33113202.pf
S3TRAYP.EXE-1072C44B.pf
SEARCHPROTECTION.EXE-05283968.pf
SED.COM-281CC846.pf
SETPATH.COM-048AD5CE.pf
SETUP.EXE-35DBA8FA.pf
SKYPE.EXE-30AE1A60.pf
SKYPEPM.EXE-2BC7DD5C.pf
SWREG.COM-3A277B41.pf
SWSC.COM-0DAE31A0.pf
SYSTEMINFO.EXE-32ED1FAB.pf
TASKLIST.EXE-10D94B23.pf
THREATWORK.EXE-0F50642D.pf
UNSECAPP.EXE-1A95A33B.pf
UPDATE.EXE-1A7E7F45.pf
UPDATE.EXE-2577D203.pf
USERINIT.EXE-30B18140.pf
VERCLSID.EXE-3667BD89.pf
VPATCH.EXE-318EC448.pf
VTTIMER.EXE-023BA77F.pf
WF_TP.EXE-1BBE6C73.pf
WINDOWSSEARCH.EXE-33669DD1.pf
WINDOWSSEARCHFILTER.EXE-0C0DB978.pf
WINDOWSSEARCHINDEXER.EXE-158AA150.pf
WLCOMM.EXE-04AE9009.pf
WMIAPSRV.EXE-1E2270A5.pf
WMIPRVSE.EXE-28F301A9.pf
WSCNTFY.EXE-1B24F5EB.pf
WUAUCLT.EXE-399A8E72.pf
XPNETDIAG.EXE-1275668B.pf
YAHOOMESSENGER.EXE-06E29CD9.pf
YMSGR_TRAY.EXE-256366BA.pf
ZIP.COM-07004C5C.pf
ZSSNP211.EXE-07E59168.pf
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤( EOF )¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
List'em by g3n-h@ckm@n 1.0.4.7
User : Bienvenue sur XP (Administrateurs) # PC-A2137737F07A
Update on 27/10/2009 by g3n-h@ckm@n ::::: 11.30
Start at: 16:04:28 | 29/10/2009
Contact : g3n-h@ckm@n sur CCM
Intel(R) Pentium(R) Dual CPU E2180 @ 2.00GHz
Microsoft Windows XP Professionnel (5.1.2600 32-bit) # Service Pack 3
Internet Explorer 8.0.6001.18702
Windows Firewall Status : Enabled
AV : AntiVir Desktop 9.0.1.32 [ Enabled | Updated ]
A:\ -> Lecteur de disquettes 3 ½ pouces
C:\ -> Disque fixe local | 149,04 Go (102,33 Go free) | NTFS
D:\ -> Disque CD-ROM
Nom de l'image PIDÿ Nom de la sessio Num‚ro d Utilisation
========================= ====== ================ ======== ============
System Idle Process 0 Console 0 16 Ko
System 4 Console 0 48 Ko
smss.exe 1024 Console 0 48 Ko
csrss.exe 1160 Console 0 3ÿ876 Ko
winlogon.exe 1216 Console 0 5ÿ836 Ko
services.exe 1276 Console 0 2ÿ620 Ko
lsass.exe 1288 Console 0 4ÿ668 Ko
svchost.exe 1504 Console 0 3ÿ524 Ko
svchost.exe 1588 Console 0 2ÿ956 Ko
svchost.exe 1684 Console 0 19ÿ204 Ko
svchost.exe 1868 Console 0 2ÿ272 Ko
svchost.exe 1960 Console 0 2ÿ488 Ko
AAWService.exe 2036 Console 0 18ÿ436 Ko
spoolsv.exe 260 Console 0 4ÿ352 Ko
sched.exe 368 Console 0 688 Ko
avguard.exe 892 Console 0 13ÿ672 Ko
LSSrvc.exe 1052 Console 0 356 Ko
lxdnserv.exe 1808 Console 0 232 Ko
lxdncoms.exe 1828 Console 0 5ÿ944 Ko
PCoptimizerService.exe 572 Console 0 300 Ko
pctsAuxs.exe 624 Console 0 480 Ko
pctsSvc.exe 644 Console 0 25ÿ780 Ko
RTHDCPL.exe 1152 Console 0 6ÿ132 Ko
VTTimer.exe 1188 Console 0 424 Ko
S3Trayp.exe 1164 Console 0 1ÿ228 Ko
ZSSnp211.EXE 1356 Console 0 1ÿ048 Ko
Domino.EXE 1368 Console 0 248 Ko
apdproxy.exe 1292 Console 0 3ÿ320 Ko
SearchProtection.exe 1628 Console 0 900 Ko
acrotray.exe 1708 Console 0 1ÿ120 Ko
GoogleQuickSearchBox.exe 1760 Console 0 19ÿ096 Ko
AAWTray.exe 976 Console 0 992 Ko
lxdnmon.exe 1884 Console 0 1ÿ152 Ko
SeaPort.exe 1892 Console 0 2ÿ808 Ko
avgnt.exe 1976 Console 0 1ÿ776 Ko
realsched.exe 2104 Console 0 164 Ko
pctsTray.exe 2116 Console 0 1ÿ256 Ko
lxdnmsdmon.exe 2172 Console 0 4ÿ744 Ko
ctfmon.exe 2236 Console 0 1ÿ724 Ko
svchost.exe 2404 Console 0 3ÿ216 Ko
YahooAUService.exe 2524 Console 0 5ÿ224 Ko
avmailc.exe 2576 Console 0 672 Ko
LightScribeControlPanel.e 2648 Console 0 1ÿ752 Ko
avwebgrd.exe 2676 Console 0 4ÿ200 Ko
Skype.exe 3332 Console 0 26ÿ068 Ko
fdm.exe 3424 Console 0 11ÿ448 Ko
wf_tp.exe 3620 Console 0 4ÿ516 Ko
MgApp.exe 4048 Console 0 5ÿ140 Ko
France24 Desktop.exe 4080 Console 0 3ÿ172 Ko
robotaskbaricon.exe 636 Console 0 3ÿ824 Ko
WindowsSearch.exe 824 Console 0 1ÿ112 Ko
WindowsSearchIndexer.exe 3472 Console 0 4ÿ176 Ko
ImApp.exe 2776 Console 0 3ÿ780 Ko
skypePM.exe 3108 Console 0 8ÿ188 Ko
unsecapp.exe 3456 Console 0 1ÿ748 Ko
wmiprvse.exe 2724 Console 0 2ÿ512 Ko
wscntfy.exe 2732 Console 0 2ÿ028 Ko
alg.exe 2560 Console 0 1ÿ888 Ko
Ymsgr_tray.exe 2604 Console 0 3ÿ808 Ko
IncMail.exe 2220 Console 0 11ÿ248 Ko
explorer.exe 3320 Console 0 91ÿ488 Ko
notepad.exe 4404 Console 0 968 Ko
msnmsgr.exe 5836 Console 0 4ÿ688 Ko
wlcomm.exe 5136 Console 0 23ÿ564 Ko
iexplore.exe 4360 Console 0 2ÿ388 Ko
iexplore.exe 5900 Console 0 112ÿ920 Ko
iexplore.exe 4012 Console 0 132ÿ420 Ko
List_Killem.exe 5968 Console 0 25ÿ604 Ko
cmd.exe 2968 Console 0 7ÿ884 Ko
wmiprvse.exe 4676 Console 0 7ÿ476 Ko
tasklist.exe 1060 Console 0 5ÿ288 Ko
======================
Cles de demarrage "Run"
======================
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\\WINDOWS\\system32\\ctfmon.exe"
"LightScribe Control Panel"="C:\\Program Files\\Fichiers communs\\LightScribe\\LightScribeControlPanel.exe -hidden"
"Messenger (Yahoo!)"="\"C:\\Program Files\\Yahoo!\\Messenger\\YahooMessenger.exe\" -quiet"
"Magentic"="C:\\PROGRA~1\\Magentic\\bin\\Magentic.exe /c"
"IncrediMail"="C:\\Program Files\\IncrediMail\\bin\\IncMail.exe /c"
"Search Protection"="C:\\Program Files\\Yahoo!\\Search Protection\\SearchProtection.exe"
"YSearchProtection"="C:\\Program Files\\Yahoo!\\Search Protection\\SearchProtection.exe"
"Skype"="\"C:\\Program Files\\Skype\\Phone\\Skype.exe\" /nosplash /minimized"
"Free Download Manager"="\"C:\\Program Files\\Free Download Manager\\fdm.exe\" -autorun"
"WISE-FTP Task Planner"="\"C:\\Program Files\\AceBIT\\WISE-FTP 5\\wf_tp.exe\" /bg"
"france24"="C:\\Documents and Settings\\Bienvenue sur XP\\Local Settings\\Application Data\\Djingle\\France24 Desktop\\bin\\autorun.lnk"
"RoboForm"="\"C:\\Program Files\\Siber Systems\\AI RoboForm\\RoboTaskBarIcon.exe\""
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RTHDCPL"="RTHDCPL.EXE"
"VTTimer"="VTTimer.exe"
"S3Trayp"="S3Trayp.exe"
"NeroFilterCheck"="C:\\Program Files\\Fichiers communs\\Ahead\\Lib\\NeroCheck.exe"
"ZSSnp211"="C:\\WINDOWS\\ZSSnp211.exe"
"Domino"="C:\\WINDOWS\\Domino.exe"
"Adobe Photo Downloader"="\"C:\\Program Files\\Adobe\\Photoshop Album Edition D‚couverte\\3.0\\Apps\\apdproxy.exe\""
"FaxCenterServer"="\"C:\\Program Files\\Lexmark Fax Solutions\\fm3032.exe\" /s"
"fssui"="\"C:\\Program Files\\Windows Live\\Family Safety\\fsui.exe\" -autorun"
"YSearchProtection"="\"C:\\Program Files\\Yahoo!\\Search Protection\\SearchProtection.exe\""
"Adobe Reader Speed Launcher"="\"C:\\Program Files\\Adobe\\Reader 9.0\\Reader\\Reader_sl.exe\""
"Adobe Acrobat Speed Launcher"="\"C:\\Program Files\\Adobe\\Acrobat 9.0\\Acrobat\\Acrobat_sl.exe\""
@=""
"Acrobat Assistant 8.0"="\"C:\\Program Files\\Adobe\\Acrobat 9.0\\Acrobat\\Acrotray.exe\""
"Google Quick Search Box"="\"C:\\Program Files\\Google\\Quick Search Box\\GoogleQuickSearchBox.exe\" /autorun"
"Ad-Watch"="C:\\Program Files\\Lavasoft\\Ad-Aware\\AAWTray.exe"
"lxdnmon.exe"="\"C:\\Program Files\\Lexmark 2600 Series\\lxdnmon.exe\""
"lxdnamon"="\"C:\\Program Files\\Lexmark 2600 Series\\lxdnamon.exe\""
"avgnt"="\"C:\\Program Files\\Avira\\AntiVir Desktop\\avgnt.exe\" /min"
"TkBellExe"="\"C:\\Program Files\\Fichiers communs\\Real\\Update_OB\\realsched.exe\" -osboot"
"ISTray"="\"C:\\Program Files\\Spyware Doctor\\pctsTray.exe\""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents\IMAIL]
"Installed"="1"
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents\MAPI]
"NoChange"="1"
"Installed"="1"
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents\MSFS]
"Installed"="1"
@=""
=====================
cles additionnelles
=====================
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=dword:00000000
"legalnoticecaption"=""
"legalnoticetext"=""
"shutdownwithoutlogon"=dword:00000001
"undockwithoutlogon"=dword:00000001
"ConsentPromptBehaviorAdmin"=dword:00000002
===============
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
===============
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
"PostBootReminder"="{7849596a-48ea-486e-8937-a2a3009f31a9}"
"CDBurn"="{fbeb8a05-beee-4442-804e-409d6c4515e9}"
"WebCheck"="{E6FB5E20-DE35-11CF-9C87-00AA005127ED}"
"SysTray"="{35CEC8A3-2BE6-11D2-8773-92E220524153}"
"WPDShServiceObj"="{AAA288BA-9A4C-45B0-95D7-94D524869DB5}"
======
BHO :
======
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4efb-9B51-7695ECA05670}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4efb-9B51-7695ECA05670}\NoExplorer]
@=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1017A80C-6F09-4548-A84D-EDD6AC9525F0}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
@="AcroIEHelperStub"
"NoExplorer"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1AD61D5B-58A3-4592-9B34-DC84688FF805}]
@="PDFHelperBHO"
"NoExplorer"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{22BF413B-C6D2-4d91-82A9-A0F997BA588C}]
@="Skype add-on (mastermind)"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{724d43a9-0d85-11d4-9908-00400523e39a}]
@="RoboForm"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0}]
@=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C84D72FE-E17D-4195-BB24-76C02E2E7C4E}]
@="Google Dictionary Compression sdch"
"NoExplorer"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CC59E0F9-7E43-44FA-9FAA-8377850BF205}]
"NoExplorer"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
"NoExplorer"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F4971EE7-DAA0-4053-9964-665D8EE6A077}]
"NoExplorer"=dword:00000001
@="SmartSelect"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FDAD4DA1-61A2-4FD8-9C17-86F7AC245081}]
==========================
===============
Path : C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem
===============
¤¤¤¤¤¤¤¤¤¤ Fichiers et dossiers presents :
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat
¤¤¤¤¤¤¤¤¤¤ Clés de registre Presentes :
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Setup.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\07D5290CDBDAE4242926B8E6CA650501
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\08E33F7B61DEFF24BB9673ED7D467636
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\0E3D8A5B48622A445A7DF73FEFF32C3F
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\1AC67655DD68F8240B2860F2D511EBD8
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\34EDDB1BFB3A2D448845F3EFD0F15A43
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\4318DF19719275242801CBE292063A4C
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\45FC115D1FEAEF849A4E1610D6EC8BF0
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\46A5861A389ADB844AF89E31BC9DF0A1
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\49B0E1A6FF50BBE4289E4E23DE6EA0C7
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\4CCCAC049F34D0540AAC13011398BEDB
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\5C4389D0BFB302C479DE4178BD5D9EBA
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\5D19F074C042AD34BAB463D4175A062E
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\5D2B09BDEF4FE54418E6F3373CDBC7AC
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\61B65D3397A1FBF4CB1571B5E4F6B5B0
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\68E8A05C60DD9254591DBD16C94EDDBF
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\697E782CF574CC34CBB9566440BA12BC
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\6AE27A8613CF7EA4782F2886F67295E5
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\7CE172051F585E04187BCB97570BFA74
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\86A901BA5265452499DCBF719C378EE3
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\88ABD1CD5C40EC84789A7F6EF86DAC5E
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\980289C22F80A7C4BB9323DC61255E4E
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\9A4B7EF3789F871419D9302583B20C15
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\A6C53B0F76C44004A8F36716213017DB
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\B59F2D8189784CC46A4597F2842480B0
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\BD746FB95FB8E5B45BF66BE54D5FD91F
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\CCF399FCD6D2D3F46BF02A1378654FC9
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\D149C1355C98DE24E82CEFBD996FE06A
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\DB59FDB786388EA4D897F3EE715683AC
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\DB8DAD19CFBCC2049A4477183787E8C5
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\E337925F629CF4C4FB08F3D9674DD839
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\EC65F200D112357449C8B1BC3CFA03D0
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\F327D0C73C0973644A21E8CC852267A0
HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\FA96423FE2B98E248A3B23548D1E22D9
¤¤¤¤¤¤¤¤¤¤ C:\WINDOWS\Prefetch :
6.13580-6.13590.EXE-140B2B97.pf
AAWSERVICE.EXE-3B93EBA3.pf
AAWTRAY.EXE-1858AE3F.pf
AAWWSC.EXE-248CAA52.pf
AD-AWAREADMIN.EXE-102E374C.pf
AD-R.EXE-0533C60E.pf
ALG.EXE-0F138680.pf
APDPROXY.EXE-397EBF29.pf
ATTRIB.EXE-39EAFB02.pf
AVGNT.EXE-200FEF40.pf
AVGUARD.EXE-27095CE7.pf
AVSCAN.EXE-07FC469C.pf
AVWSC.EXE-0283F9DD.pf
CHCP.COM-18156052.pf
CMD.EXE-087B4001.pf
CONTROL.EXE-013DBFB5.pf
CSCRIPT.EXE-1C26180C.pf
CTFMON.EXE-0E17969B.pf
DEFRAG.EXE-273F131E.pf
DFRGNTFS.EXE-269967DF.pf
DLLHOST.EXE-42807EE4.pf
DOMINO.EXE-04EEC00C.pf
DRWTSN32.EXE-2B4B52AC.pf
DUMPREP.EXE-1B46F901.pf
DWWIN.EXE-30875ADC.pf
ERUNT.COM-3A876921.pf
EXPLORER.EXE-082F38A9.pf
FDM.EXE-1EBA87D2.pf
FM3032.EXE-20910848.pf
FRANCE24 DESKTOP.EXE-2635363E.pf
FSUI.EXE-2FFACBF6.pf
GOOGLECRASHHANDLER.EXE-1A9F3296.pf
GOOGLEUPDATE.EXE-1E123D86.pf
GOOGLEUPDATER.EXE-2CAF5929.pf
GOOGLEUPDATERSERVICE.EXE-3AB369BE.pf
GREP.COM-30632777.pf
HELPSVC.EXE-2878DDA2.pf
IEXPLORE.EXE-27122324.pf
IMAPI.EXE-0BF740A4.pf
IMAPP.EXE-093362B0.pf
IMNOTFY.EXE-39B9FFE6.pf
INCMAIL.EXE-1D49117E.pf
ISADMIN.COM-2460FC13.pf
layout.ini
LIGHTSCRIBECONTROLPANEL.EXE-227B1346.pf
LIST_KILLEM.EXE-010FEA21.pf
LXDNAMON.EXE-06431094.pf
LXDNCOMS.EXE-0469540E.pf
LXDNMSDMON.EXE-1EB7FECD.pf
MAGENTIC.EXE-0173035F.pf
MAGENT~1.SCR-2B1F1BA6.pf
MGAPP.EXE-073133FE.pf
MODE.COM-31685BAE.pf
MPNOTIFY.EXE-3631A846.pf
MSFEEDSSYNC.EXE-25E13438.pf
MSNAPPAU.EXE-0FDD9428.pf
MSNMSGR.EXE-030AB647.pf
MSN_SL.EXE-047411B3.pf
NEROCHECK.EXE-35AE1DFB.pf
NIRCMD.COM-35BF857A.pf
NOTEPAD.EXE-336351A9.pf
NTOSBOOT-B00DFAAD.pf
PCTSTRAY.EXE-29391146.pf
PROCESS.COM-0458B762.pf
PV.COM-006EB813.pf
RACCOURCI WINDOWS LIVE MESSEN-12AA1E43.pf
REALPLAY.EXE-1BF219BD.pf
REALSCHED.EXE-04BEC5CC.pf
REG.EXE-0D2A95F7.pf
REGDACL.COM-3B1D4525.pf
ROBOTASKBARICON.EXE-05368BA4.pf
RTHDCPL.EXE-06918CFA.pf
RUNDLL32.EXE-13DA0E71.pf
RUNDLL32.EXE-1831A4F3.pf
RUNDLL32.EXE-33113202.pf
S3TRAYP.EXE-1072C44B.pf
SEARCHPROTECTION.EXE-05283968.pf
SED.COM-281CC846.pf
SETPATH.COM-048AD5CE.pf
SETUP.EXE-35DBA8FA.pf
SKYPE.EXE-30AE1A60.pf
SKYPEPM.EXE-2BC7DD5C.pf
SWREG.COM-3A277B41.pf
SWSC.COM-0DAE31A0.pf
SYSTEMINFO.EXE-32ED1FAB.pf
TASKLIST.EXE-10D94B23.pf
THREATWORK.EXE-0F50642D.pf
UNSECAPP.EXE-1A95A33B.pf
UPDATE.EXE-1A7E7F45.pf
UPDATE.EXE-2577D203.pf
USERINIT.EXE-30B18140.pf
VERCLSID.EXE-3667BD89.pf
VPATCH.EXE-318EC448.pf
VTTIMER.EXE-023BA77F.pf
WF_TP.EXE-1BBE6C73.pf
WINDOWSSEARCH.EXE-33669DD1.pf
WINDOWSSEARCHFILTER.EXE-0C0DB978.pf
WINDOWSSEARCHINDEXER.EXE-158AA150.pf
WLCOMM.EXE-04AE9009.pf
WMIAPSRV.EXE-1E2270A5.pf
WMIPRVSE.EXE-28F301A9.pf
WSCNTFY.EXE-1B24F5EB.pf
WUAUCLT.EXE-399A8E72.pf
XPNETDIAG.EXE-1275668B.pf
YAHOOMESSENGER.EXE-06E29CD9.pf
YMSGR_TRAY.EXE-256366BA.pf
ZIP.COM-07004C5C.pf
ZSSNP211.EXE-07E59168.pf
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤( EOF )¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
Utilisateur anonyme
29 oct. 2009 à 15:12
29 oct. 2009 à 15:12
Télécharge OTL de OLDTimer
▶ enregistre le sur ton Bureau.
▶ Double clic sur OTL.exe pour le lancer.
▶Copie la liste qui se trouve en gras ci-dessous,
▶ colle-la dans la zone sous Customs Scans/Fixes :
:processes
explorer.exe
iexplore.exe
firefox.exe
msnmsgr.exe
Teatimer.exe
:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Setup.exe]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\07D5290CDBDAE4242926B8E6CA650501]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\08E33F7B61DEFF24BB9673ED7D467636]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\0E3D8A5B48622A445A7DF73FEFF32C3F]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\1AC67655DD68F8240B2860F2D511EBD8]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\34EDDB1BFB3A2D448845F3EFD0F15A43]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\4318DF19719275242801CBE292063A4C]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\45FC115D1FEAEF849A4E1610D6EC8BF0]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\46A5861A389ADB844AF89E31BC9DF0A1]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\49B0E1A6FF50BBE4289E4E23DE6EA0C7]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\4CCCAC049F34D0540AAC13011398BEDB]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\5C4389D0BFB302C479DE4178BD5D9EBA]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\5D19F074C042AD34BAB463D4175A062E]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\5D2B09BDEF4FE54418E6F3373CDBC7AC]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\61B65D3397A1FBF4CB1571B5E4F6B5B0]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\68E8A05C60DD9254591DBD16C94EDDBF]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\697E782CF574CC34CBB9566440BA12BC]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\6AE27A8613CF7EA4782F2886F67295E5]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\7CE172051F585E04187BCB97570BFA74]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\86A901BA5265452499DCBF719C378EE3]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\88ABD1CD5C40EC84789A7F6EF86DAC5E]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\980289C22F80A7C4BB9323DC61255E4E]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\9A4B7EF3789F871419D9302583B20C15]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\A6C53B0F76C44004A8F36716213017DB]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\B59F2D8189784CC46A4597F2842480B0]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\BD746FB95FB8E5B45BF66BE54D5FD91F]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\CCF399FCD6D2D3F46BF02A1378654FC9]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\D149C1355C98DE24E82CEFBD996FE06A]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\DB59FDB786388EA4D897F3EE715683AC]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\DB8DAD19CFBCC2049A4477183787E8C5]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\E337925F629CF4C4FB08F3D9674DD839]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\EC65F200D112357449C8B1BC3CFA03D0]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\F327D0C73C0973644A21E8CC852267A0]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\FA96423FE2B98E248A3B23548D1E22D9]
:commands
[emptytemp]
[start explorer]
[reboot]
▶ Clique sur RunFix pour lancer la suppression.
▶ Poste le rapport.
▶ enregistre le sur ton Bureau.
▶ Double clic sur OTL.exe pour le lancer.
▶Copie la liste qui se trouve en gras ci-dessous,
▶ colle-la dans la zone sous Customs Scans/Fixes :
:processes
explorer.exe
iexplore.exe
firefox.exe
msnmsgr.exe
Teatimer.exe
:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Setup.exe]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\07D5290CDBDAE4242926B8E6CA650501]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\08E33F7B61DEFF24BB9673ED7D467636]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\0E3D8A5B48622A445A7DF73FEFF32C3F]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\1AC67655DD68F8240B2860F2D511EBD8]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\34EDDB1BFB3A2D448845F3EFD0F15A43]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\4318DF19719275242801CBE292063A4C]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\45FC115D1FEAEF849A4E1610D6EC8BF0]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\46A5861A389ADB844AF89E31BC9DF0A1]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\49B0E1A6FF50BBE4289E4E23DE6EA0C7]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\4CCCAC049F34D0540AAC13011398BEDB]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\5C4389D0BFB302C479DE4178BD5D9EBA]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\5D19F074C042AD34BAB463D4175A062E]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\5D2B09BDEF4FE54418E6F3373CDBC7AC]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\61B65D3397A1FBF4CB1571B5E4F6B5B0]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\68E8A05C60DD9254591DBD16C94EDDBF]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\697E782CF574CC34CBB9566440BA12BC]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\6AE27A8613CF7EA4782F2886F67295E5]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\7CE172051F585E04187BCB97570BFA74]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\86A901BA5265452499DCBF719C378EE3]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\88ABD1CD5C40EC84789A7F6EF86DAC5E]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\980289C22F80A7C4BB9323DC61255E4E]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\9A4B7EF3789F871419D9302583B20C15]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\A6C53B0F76C44004A8F36716213017DB]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\B59F2D8189784CC46A4597F2842480B0]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\BD746FB95FB8E5B45BF66BE54D5FD91F]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\CCF399FCD6D2D3F46BF02A1378654FC9]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\D149C1355C98DE24E82CEFBD996FE06A]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\DB59FDB786388EA4D897F3EE715683AC]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\DB8DAD19CFBCC2049A4477183787E8C5]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\E337925F629CF4C4FB08F3D9674DD839]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\EC65F200D112357449C8B1BC3CFA03D0]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\F327D0C73C0973644A21E8CC852267A0]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\FA96423FE2B98E248A3B23548D1E22D9]
:commands
[emptytemp]
[start explorer]
[reboot]
▶ Clique sur RunFix pour lancer la suppression.
▶ Poste le rapport.
buckhulk
Messages postés
13690
Date d'inscription
dimanche 21 septembre 2008
Statut
Contributeur
Dernière intervention
14 novembre 2020
1 756
29 oct. 2009 à 15:43
29 oct. 2009 à 15:43
c'est fait voici le rapport :
All processes killed
========== PROCESSES ==========
Process explorer.exe killed successfully!
Process iexplore.exe killed successfully!
No active process named firefox.exe was found!
Process msnmsgr.exe killed successfully!
No active process named Teatimer.exe was found!
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Setup.exe\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\07D5290CDBDAE4242926B8E6CA650501\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\08E33F7B61DEFF24BB9673ED7D467636\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\0E3D8A5B48622A445A7DF73FEFF32C3F\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\1AC67655DD68F8240B2860F2D511EBD8\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\34EDDB1BFB3A2D448845F3EFD0F15A43\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\4318DF19719275242801CBE292063A4C\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\45FC115D1FEAEF849A4E1610D6EC8BF0\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\46A5861A389ADB844AF89E31BC9DF0A1\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\49B0E1A6FF50BBE4289E4E23DE6EA0C7\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\4CCCAC049F34D0540AAC13011398BEDB\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\5C4389D0BFB302C479DE4178BD5D9EBA\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\5D19F074C042AD34BAB463D4175A062E\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\5D2B09BDEF4FE54418E6F3373CDBC7AC\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\61B65D3397A1FBF4CB1571B5E4F6B5B0\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\68E8A05C60DD9254591DBD16C94EDDBF\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\697E782CF574CC34CBB9566440BA12BC\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\6AE27A8613CF7EA4782F2886F67295E5\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\7CE172051F585E04187BCB97570BFA74\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\86A901BA5265452499DCBF719C378EE3\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\88ABD1CD5C40EC84789A7F6EF86DAC5E\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\980289C22F80A7C4BB9323DC61255E4E\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\9A4B7EF3789F871419D9302583B20C15\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\A6C53B0F76C44004A8F36716213017DB\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\B59F2D8189784CC46A4597F2842480B0\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\BD746FB95FB8E5B45BF66BE54D5FD91F\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\CCF399FCD6D2D3F46BF02A1378654FC9\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\D149C1355C98DE24E82CEFBD996FE06A\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\DB59FDB786388EA4D897F3EE715683AC\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\DB8DAD19CFBCC2049A4477183787E8C5\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\E337925F629CF4C4FB08F3D9674DD839\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\EC65F200D112357449C8B1BC3CFA03D0\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\F327D0C73C0973644A21E8CC852267A0\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\FA96423FE2B98E248A3B23548D1E22D9\ deleted successfully.
========== COMMANDS ==========
[EMPTYTEMP]
User: All Users
User: Bienvenue sur XP
File delete failed. C:\Documents and Settings\Bienvenue sur XP\Local Settings\Temp\etilqs_dX9DCNgslIgsYSqWQ4dQ scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Bienvenue sur XP\Local Settings\Temp\etilqs_K7GhVrzo8ZbDwXMxWAzb scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Bienvenue sur XP\Local Settings\Temp\GoogleQuickSearchBox.log scheduled to be deleted on reboot.
->Temp folder emptied: 227687135 bytes
File delete failed. C:\Documents and Settings\Bienvenue sur XP\Local Settings\Temporary Internet Files\Content.IE5\index.dat scheduled to be deleted on reboot.
->Temporary Internet Files folder emptied: 5244026 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 114452876 bytes
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 67 bytes
User: LocalService
->Temp folder emptied: 0 bytes
File delete failed. C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat scheduled to be deleted on reboot.
->Temporary Internet Files folder emptied: 33172 bytes
User: NetworkService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
%systemdrive% .tmp files removed: 172 bytes
C:\WINDOWS\msdownld.tmp folder deleted successfully.
%systemroot% .tmp files removed: 2134506 bytes
%systemroot%\System32 .tmp files removed: 3072 bytes
Windows Temp folder emptied: 0 bytes
RecycleBin emptied: 120320 bytes
Total Files Cleaned = 333,51 mb
OTL by OldTimer - Version 3.0.22.1 log created on 10292009_181754
Files\Folders moved on Reboot...
File\Folder C:\Documents and Settings\Bienvenue sur XP\Local Settings\Temp\etilqs_dX9DCNgslIgsYSqWQ4dQ not found!
File\Folder C:\Documents and Settings\Bienvenue sur XP\Local Settings\Temp\etilqs_K7GhVrzo8ZbDwXMxWAzb not found!
C:\Documents and Settings\Bienvenue sur XP\Local Settings\Temp\GoogleQuickSearchBox.log moved successfully.
Registry entries deleted on Reboot...
All processes killed
========== PROCESSES ==========
Process explorer.exe killed successfully!
Process iexplore.exe killed successfully!
No active process named firefox.exe was found!
Process msnmsgr.exe killed successfully!
No active process named Teatimer.exe was found!
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Setup.exe\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\07D5290CDBDAE4242926B8E6CA650501\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\08E33F7B61DEFF24BB9673ED7D467636\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\0E3D8A5B48622A445A7DF73FEFF32C3F\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\1AC67655DD68F8240B2860F2D511EBD8\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\34EDDB1BFB3A2D448845F3EFD0F15A43\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\4318DF19719275242801CBE292063A4C\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\45FC115D1FEAEF849A4E1610D6EC8BF0\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\46A5861A389ADB844AF89E31BC9DF0A1\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\49B0E1A6FF50BBE4289E4E23DE6EA0C7\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\4CCCAC049F34D0540AAC13011398BEDB\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\5C4389D0BFB302C479DE4178BD5D9EBA\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\5D19F074C042AD34BAB463D4175A062E\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\5D2B09BDEF4FE54418E6F3373CDBC7AC\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\61B65D3397A1FBF4CB1571B5E4F6B5B0\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\68E8A05C60DD9254591DBD16C94EDDBF\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\697E782CF574CC34CBB9566440BA12BC\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\6AE27A8613CF7EA4782F2886F67295E5\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\7CE172051F585E04187BCB97570BFA74\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\86A901BA5265452499DCBF719C378EE3\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\88ABD1CD5C40EC84789A7F6EF86DAC5E\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\980289C22F80A7C4BB9323DC61255E4E\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\9A4B7EF3789F871419D9302583B20C15\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\A6C53B0F76C44004A8F36716213017DB\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\B59F2D8189784CC46A4597F2842480B0\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\BD746FB95FB8E5B45BF66BE54D5FD91F\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\CCF399FCD6D2D3F46BF02A1378654FC9\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\D149C1355C98DE24E82CEFBD996FE06A\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\DB59FDB786388EA4D897F3EE715683AC\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\DB8DAD19CFBCC2049A4477183787E8C5\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\E337925F629CF4C4FB08F3D9674DD839\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\EC65F200D112357449C8B1BC3CFA03D0\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\F327D0C73C0973644A21E8CC852267A0\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Userdata\S-1-5-18\Components\FA96423FE2B98E248A3B23548D1E22D9\ deleted successfully.
========== COMMANDS ==========
[EMPTYTEMP]
User: All Users
User: Bienvenue sur XP
File delete failed. C:\Documents and Settings\Bienvenue sur XP\Local Settings\Temp\etilqs_dX9DCNgslIgsYSqWQ4dQ scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Bienvenue sur XP\Local Settings\Temp\etilqs_K7GhVrzo8ZbDwXMxWAzb scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\Bienvenue sur XP\Local Settings\Temp\GoogleQuickSearchBox.log scheduled to be deleted on reboot.
->Temp folder emptied: 227687135 bytes
File delete failed. C:\Documents and Settings\Bienvenue sur XP\Local Settings\Temporary Internet Files\Content.IE5\index.dat scheduled to be deleted on reboot.
->Temporary Internet Files folder emptied: 5244026 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 114452876 bytes
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 67 bytes
User: LocalService
->Temp folder emptied: 0 bytes
File delete failed. C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat scheduled to be deleted on reboot.
->Temporary Internet Files folder emptied: 33172 bytes
User: NetworkService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
%systemdrive% .tmp files removed: 172 bytes
C:\WINDOWS\msdownld.tmp folder deleted successfully.
%systemroot% .tmp files removed: 2134506 bytes
%systemroot%\System32 .tmp files removed: 3072 bytes
Windows Temp folder emptied: 0 bytes
RecycleBin emptied: 120320 bytes
Total Files Cleaned = 333,51 mb
OTL by OldTimer - Version 3.0.22.1 log created on 10292009_181754
Files\Folders moved on Reboot...
File\Folder C:\Documents and Settings\Bienvenue sur XP\Local Settings\Temp\etilqs_dX9DCNgslIgsYSqWQ4dQ not found!
File\Folder C:\Documents and Settings\Bienvenue sur XP\Local Settings\Temp\etilqs_K7GhVrzo8ZbDwXMxWAzb not found!
C:\Documents and Settings\Bienvenue sur XP\Local Settings\Temp\GoogleQuickSearchBox.log moved successfully.
Registry entries deleted on Reboot...
Utilisateur anonyme
29 oct. 2009 à 15:53
29 oct. 2009 à 15:53
▶ Double clic sur OTL.exe pour le lancer.
▶ Coche les 2 cases Lop et Purity
▶ Coche la case devant scan all users
▶ règle-le sur "60 Days"
▶ dans la colonne de gauche , mets tout sur all
▶Clic sur Run Scan.
A la fin du scan, le Bloc-Notes va s'ouvrir avec le rapport (OTL.txt).
Ce fichier est sur ton Bureau (en général C:\Documents and settings\le_nom_de_ta_session\OTL.txt)
▶▶▶ NE LE POSTE PAS SUR LE FORUM
Pour me le transmettre clique sur ce lien : https://www.cjoint.com/
▶ Clique sur Parcourir et cherche le fichier ci-dessus.
▶ Clique sur Ouvrir.
▶ Clique sur "Cliquez ici pour déposer le fichier".
Un lien de cette forme :
http://www.cijoint.fr/cjlink.php?file=cjge368/cijSKAP5fU.txt
est ajouté dans la page.
▶ Copie ce lien dans ta réponse.
Tu feras la meme chose avec le "Extra.txt".
▶ Coche les 2 cases Lop et Purity
▶ Coche la case devant scan all users
▶ règle-le sur "60 Days"
▶ dans la colonne de gauche , mets tout sur all
▶Clic sur Run Scan.
A la fin du scan, le Bloc-Notes va s'ouvrir avec le rapport (OTL.txt).
Ce fichier est sur ton Bureau (en général C:\Documents and settings\le_nom_de_ta_session\OTL.txt)
▶▶▶ NE LE POSTE PAS SUR LE FORUM
Pour me le transmettre clique sur ce lien : https://www.cjoint.com/
▶ Clique sur Parcourir et cherche le fichier ci-dessus.
▶ Clique sur Ouvrir.
▶ Clique sur "Cliquez ici pour déposer le fichier".
Un lien de cette forme :
http://www.cijoint.fr/cjlink.php?file=cjge368/cijSKAP5fU.txt
est ajouté dans la page.
▶ Copie ce lien dans ta réponse.
Tu feras la meme chose avec le "Extra.txt".
buckhulk
Messages postés
13690
Date d'inscription
dimanche 21 septembre 2008
Statut
Contributeur
Dernière intervention
14 novembre 2020
1 756
29 oct. 2009 à 16:16
29 oct. 2009 à 16:16
ok j'ai compris et après comment je l'envoi , je clique sur faire un don ?
27 oct. 2009 à 10:19
bon pour l'instant , mon anti-virus s'est mis en route puisqu'il démare toujours à la même heure , après je dois partir , mais je vais faire ton "truc" et je poste , je ne sais pas si tu sera encore là !
au fait des fois mon ordi s'arrête ! comme pour reprendre son souffle , et c'est repartit de plus belle !
je ne l'ai jamais vu autant travailler , enfin avec autant de bruit !!!