Virus ou erreur logiciel???
Fermé
ambrinet
Messages postés
81
Date d'inscription
dimanche 6 janvier 2008
Statut
Membre
Dernière intervention
5 janvier 2022
-
2 nov. 2009 à 13:39
papyber Messages postés 6406 Date d'inscription samedi 24 mars 2007 Statut Contributeur sécurité Dernière intervention 3 octobre 2010 - 20 nov. 2009 à 15:00
papyber Messages postés 6406 Date d'inscription samedi 24 mars 2007 Statut Contributeur sécurité Dernière intervention 3 octobre 2010 - 20 nov. 2009 à 15:00
A voir également:
- Virus ou erreur logiciel???
- Erreur 0x80070643 - Accueil - Windows
- Money logiciel - Télécharger - Comptabilité & Facturation
- Logiciel montage vidéo gratuit windows 10 - Guide
- Logiciel - Guide
- Logiciel de sauvegarde gratuit - Guide
83 réponses
ambrinet
Messages postés
81
Date d'inscription
dimanche 6 janvier 2008
Statut
Membre
Dernière intervention
5 janvier 2022
12 nov. 2009 à 12:16
12 nov. 2009 à 12:16
Comment fait t'on pour desctiver l'UAC. Sinon OTM a rebooter normalement. Merci a tous
ambrinet
Messages postés
81
Date d'inscription
dimanche 6 janvier 2008
Statut
Membre
Dernière intervention
5 janvier 2022
12 nov. 2009 à 15:58
12 nov. 2009 à 15:58
Escusez moi je n'avait^pas posté le rapport
All processes killed
Error: Unable to interpret <:reg
[HKEY_LOCAL_MACHINE\Software]
"SweetIM"=-
:files
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\Program Files\Symantec
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\Program Files\Common Files\Symantec Shared
:Commands
[purity]
[emptytemp]
[Reboot] > in the current context!
OTM by OldTimer - Version 3.1.1.0 log created on 11122009_095428
All processes killed
Error: Unable to interpret <:reg
[HKEY_LOCAL_MACHINE\Software]
"SweetIM"=-
:files
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\Program Files\Symantec
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\Program Files\Common Files\Symantec Shared
:Commands
[purity]
[emptytemp]
[Reboot] > in the current context!
OTM by OldTimer - Version 3.1.1.0 log created on 11122009_095428
moment de grace
Messages postés
29042
Date d'inscription
samedi 6 décembre 2008
Statut
Contributeur sécurité
Dernière intervention
18 juillet 2013
2 274
12 nov. 2009 à 17:19
12 nov. 2009 à 17:19
bonjour à tous puisqu'il y a du monde ici
donc pas de plantage et je m'en rejouit...je ne retiendrai que l'aspect positif des uns et des autres, à savoir l'aide fourni sur ce sujet à ma demande comme spontanée, ainsi que les conseils d'utilisation d'outils en repoussant l'échéance d'un script
evidemment l'ouverture d'un nouveau forum dont je n'ai pas encore trouvé le chemin est noté
en revanche les appréciations qui accompagnent ces interventions, permettez que je les mettent de côté !
ceci étant dit
ambrinet, faisons le point en nous informant de l'état de ton pc et en nous refaisant un nouveau RSIT
donc pas de plantage et je m'en rejouit...je ne retiendrai que l'aspect positif des uns et des autres, à savoir l'aide fourni sur ce sujet à ma demande comme spontanée, ainsi que les conseils d'utilisation d'outils en repoussant l'échéance d'un script
evidemment l'ouverture d'un nouveau forum dont je n'ai pas encore trouvé le chemin est noté
en revanche les appréciations qui accompagnent ces interventions, permettez que je les mettent de côté !
ceci étant dit
ambrinet, faisons le point en nous informant de l'état de ton pc et en nous refaisant un nouveau RSIT
Ca avait bien commencer mais je n'arrive toujours pas a ouvrir l'éditeur. Egalement j'ai eu du mal a ouvrir msn et toujours pas d'imprimante.
Logfile of random's system information tool 1.06 (written by random/random)
Run by salut ma amour at 2009-11-12 17:50:14
Microsoft® Windows Vista™ Édition Familiale Basique Service Pack 2
System drive C: has 106 GB (46%) free of 234 GB
Total RAM: 894 MB (41% free)
======Scheduled tasks folder======
C:\Windows\tasks\Ad-Aware Update (Weekly).job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1336511848-175822680-266065135-1000Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1336511848-175822680-266065135-1000UA.job
C:\Windows\tasks\Maintenance en 1 clic.job
C:\Windows\tasks\Spybot - Search & Destroy - Scheduled Task.job
C:\Windows\tasks\User_Feed_Synchronization-{E457E0EA-E087-4547-955F-80A725C005ED}.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2009-05-19 137600]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Programme d'aide de l'Assistant de connexion Windows Live - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{ccec60fc-2608-4e58-9659-3ffc159e8ea9}]
SHOUTcast Loader - C:\Program Files\SHOUTcast Radio Toolbar\shoutcasttb.dll [2008-09-17 1275176]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-09-28 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{0FBB9689-D3D7-4f7a-A2E2-585B10099BFC} - Veoh Web Player Video Finder - C:\Program Files\Veoh Networks\VeohWebPlayer\VeohIEToolbar.dll [2008-12-16 429816]
{0457331d-8ca6-4f97-9c26-6a9ef2b2dba8} - SHOUTcast Radio Toolbar - C:\Program Files\SHOUTcast Radio Toolbar\shoutcasttb.dll [2008-09-17 1275176]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Neuf Media Center"=C:\Program Files\Neuf\Media Center\MediaCenter.exe [2007-10-15 1025264]
"msnmsgr"=C:\Program Files\Windows Live\Messenger\msnmsgr.exe [2009-07-26 3883856]
"WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2008-01-19 202240]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2008-06-12 34672]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\avgnt]
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [2009-03-02 209153]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BitTorrent DNA]
C:\Users\salut ma amour\Program Files\DNA\btdna.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BroadWave]
C:\Program Files\NCH Swift Sound\BroadWave\broadwave.exe -logon []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ccApp]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cckii]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CollaborationHost]
C:\Windows\system32\p2phost.exe [2008-01-19 192000]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Connexion SFR 9props.exe]
C:\Program Files\Neuf\Kit\9props.exe [2009-06-20 955712]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DPService]
C:\Program Files\HP\DVDPlay\DPService.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\emaswks]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\FaxCenterServer]
C:\Program Files\Lexmark Fax Solutions\fm3032.exe /s []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Fling]
C:\Program Files\NCH Software\Fling\fling.exe -logon []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Desktop Search]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update]
C:\Users\salut ma amour\AppData\Local\Google\Update\GoogleUpdate.exe [2009-11-03 135664]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Software Update]
C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe [2006-12-10 49152]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\hpsysdrv]
c:\hp\support\hpsysdrv.exe [2006-09-28 65536]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LGPCSuiteLanucher]
C:\Program Files\LG PC Suite 2\LGPCSuiteLanucher_Setup.exe [2007-08-31 2637824]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogitechQuickCamRibbon]
C:\Program Files\Logitech\Logitech WebCam Software\LWS.exe [2009-05-08 2780432]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\lxddamon]
C:\Program Files\Lexmark 2500 Series\lxddamon.exe [2007-04-30 20480]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\lxddmon.exe]
C:\Program Files\Lexmark 2500 Series\lxddmon.exe [2007-06-11 291760]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Malwarebytes Anti-Malware (reboot)]
C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe [2009-09-10 1312080]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon]
C:\Windows\system32\NvCpl.dll [2008-05-22 13539872]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvMediaCenter]
C:\Windows\system32\NvMcTray.dll [2008-05-22 92704]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvSvc]
C:\Windows\system32\nvsvc.dll [2008-05-22 526880]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\osCheck]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
C:\Program Files\QuickTime\QTTask.exe -atboottime []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Recordpad]
C:\Program Files\NCH Swift Sound\Recordpad\recordpad.exe -logon []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RocketDock]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl]
C:\Windows\RtHDVCpl.exe [2008-01-15 4874240]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SDTray]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Java\jre6\bin\jusched.exe [2009-09-28 149280]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Symantec PIF AlertEng]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\VeohPlugin]
C:\Program Files\Veoh Networks\VeohWebPlayer\veohwebplayer.exe [2008-12-16 3528440]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinampAgent]
C:\Program Files\Winamp\winampa.exe [2009-07-01 37888]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Windows Mobile-based device management]
C:\Windows\WindowsMobile\wmdSync.exe [2006-11-02 215552]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\wtcwker]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\yrcofzdw]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^McAfee Security Scan.lnk]
C:\Program Files\McAfee Security Scan\1.0.150\SSScheduler.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Outil de mise à jour Google.lnk]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^salut ma amour^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^RocketDock.lnk]
[]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"SetVisualStyle"=C:\Windows\Resources\Themes\Crystal Clear Aero\Crystal Clear Aero.msstyles
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=128
"NoDriveTypeAutoRun"=128
"HonorAutoRunSetting"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=
"NoDriveAutoRun"=
"NoDriveTypeAutoRun"=
"HonorAutoRunSetting"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files\BitTorrent\bittorrent.exe"="C:\Program Files\BitTorrent\bittorrent.exe:*:Enabled:BitTorrent"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
.reg - open - regedit.exe "%1" %*
======List of files/folders created in the last 1 months======
2009-11-12 12:40:57 ----SHD---- C:\Config.Msi
2009-11-12 07:40:50 ----A---- C:\Windows\system32\WSDApi.dll
2009-11-10 16:41:46 ----D---- C:\_OTM
2009-11-10 15:29:58 ----D---- C:\Kill'em
2009-11-10 15:28:07 ----A---- C:\List'em.txt
2009-11-10 15:17:02 ----A---- C:\Kill'em.txt
2009-11-09 11:37:02 ----D---- C:\Program Files\Ad-Remover
2009-11-07 18:48:00 ----D---- C:\ProgramData\Avira
2009-11-07 18:48:00 ----D---- C:\Program Files\Avira
2009-11-07 14:43:05 ----A---- C:\Windows\system32\lxddrwrd.ini
2009-11-07 14:43:04 ----D---- C:\Program Files\Lexmark 2500 Series
2009-11-07 14:43:00 ----A---- C:\Windows\system32\LXDDinst.dll
2009-11-07 14:42:59 ----A---- C:\Windows\system32\lxddinpa.dll
2009-11-07 14:42:59 ----A---- C:\Windows\system32\LXDDhcp.dll
2009-11-07 14:42:58 ----A---- C:\Windows\system32\lxddutil.dll
2009-11-07 14:42:58 ----A---- C:\Windows\system32\lxddiesc.dll
2009-11-07 14:42:57 ----A---- C:\Windows\system32\lxddusb1.dll
2009-11-07 14:42:57 ----A---- C:\Windows\system32\lxddserv.dll
2009-11-07 14:42:56 ----A---- C:\Windows\system32\lxddprox.dll
2009-11-07 14:42:56 ----A---- C:\Windows\system32\lxddpplc.dll
2009-11-07 14:42:56 ----A---- C:\Windows\system32\lxddpmui.dll
2009-11-07 14:42:55 ----A---- C:\Windows\system32\lxddlmpm.dll
2009-11-07 14:42:54 ----A---- C:\Windows\system32\lxddjswr.dll
2009-11-07 14:42:48 ----A---- C:\Windows\system32\lxddinsb.dll
2009-11-07 14:42:40 ----A---- C:\Windows\system32\lxddinsr.dll
2009-11-07 14:42:36 ----A---- C:\Windows\system32\lxddins.dll
2009-11-07 14:42:36 ----A---- C:\Windows\system32\lxddih.exe
2009-11-07 14:42:36 ----A---- C:\Windows\system32\lxddhbn3.dll
2009-11-07 14:42:35 ----A---- C:\Windows\system32\lxddgrd.dll
2009-11-07 14:42:35 ----A---- C:\Windows\system32\lxddgf.dll
2009-11-07 14:42:35 ----A---- C:\Windows\system32\lxddcur.dll
2009-11-07 14:42:35 ----A---- C:\Windows\system32\lxddcub.dll
2009-11-07 14:42:35 ----A---- C:\Windows\system32\lxddcu.dll
2009-11-07 14:42:34 ----A---- C:\Windows\system32\lxddcoms.exe
2009-11-07 14:42:34 ----A---- C:\Windows\system32\lxddcomm.dll
2009-11-07 14:42:34 ----A---- C:\Windows\system32\lxddcomc.dll
2009-11-07 14:42:33 ----A---- C:\Windows\system32\lxddcfg.exe
2009-11-07 14:42:33 ----A---- C:\Windows\system32\lxddcfg.dll
2009-11-07 13:46:56 ----D---- C:\Program Files\Navilog1
2009-11-06 22:41:48 ----D---- C:\GenProc
2009-11-06 08:17:07 ----D---- C:\Users\salut ma amour\AppData\Roaming\Zylom
2009-11-04 18:12:11 ----D---- C:\Program Files\Lexmark Toolbar
2009-11-04 09:43:12 ----A---- C:\Windows\system32\mshtml.dll
2009-11-03 09:22:12 ----D---- C:\ProgramData\Malwarebytes
2009-11-03 09:22:12 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2009-11-03 05:59:06 ----RASHD---- C:\autorun.inf
2009-11-03 05:55:12 ----A---- C:\UsbFix.txt
2009-11-02 19:14:14 ----D---- C:\UsbFix
2009-11-02 14:16:32 ----D---- C:\Program Files\trend micro
2009-11-02 14:16:31 ----D---- C:\rsit
2009-10-29 13:31:53 ----D---- C:\Users\salut ma amour\AppData\Roaming\Yahoo!
2009-10-28 19:33:01 ----D---- C:\Program Files\lx_cats
2009-10-28 04:47:46 ----A---- C:\Windows\system32\wmp.dll
2009-10-28 04:47:43 ----A---- C:\Windows\system32\unregmp2.exe
2009-10-28 04:47:40 ----A---- C:\Windows\system32\wmploc.DLL
2009-10-21 19:28:14 ----D---- C:\Users\salut ma amour\AppData\Roaming\AVS4YOU
2009-10-21 19:28:00 ----D---- C:\ProgramData\AVS4YOU
2009-10-21 18:35:32 ----D---- C:\Program Files\Common Files\AVSMedia
2009-10-21 18:35:20 ----D---- C:\Program Files\AVS4YOU
2009-10-21 18:35:20 ----A---- C:\Windows\system32\msxml3a.dll
2009-10-16 18:52:13 ----D---- C:\Windows\avxoscan
2009-10-15 18:12:37 ----A---- C:\Windows\system32\msv1_0.dll
2009-10-15 18:12:30 ----A---- C:\Windows\system32\ntoskrnl.exe
2009-10-15 18:12:29 ----A---- C:\Windows\system32\ntkrnlpa.exe
2009-10-15 18:10:12 ----A---- C:\Windows\system32\iertutil.dll
2009-10-15 18:10:12 ----A---- C:\Windows\system32\ieframe.dll
2009-10-15 18:10:11 ----A---- C:\Windows\system32\wininet.dll
2009-10-15 18:10:11 ----A---- C:\Windows\system32\urlmon.dll
2009-10-15 18:10:10 ----A---- C:\Windows\system32\occache.dll
2009-10-15 18:10:10 ----A---- C:\Windows\system32\msfeeds.dll
2009-10-15 18:10:10 ----A---- C:\Windows\system32\iedkcs32.dll
2009-10-15 18:10:09 ----A---- C:\Windows\system32\msfeedsbs.dll
2009-10-15 18:10:09 ----A---- C:\Windows\system32\ieUnatt.exe
2009-10-15 18:10:09 ----A---- C:\Windows\system32\ieui.dll
2009-10-15 18:10:09 ----A---- C:\Windows\system32\iepeers.dll
2009-10-15 18:10:08 ----A---- C:\Windows\system32\msfeedssync.exe
2009-10-15 18:10:08 ----A---- C:\Windows\system32\jsproxy.dll
2009-10-15 18:10:08 ----A---- C:\Windows\system32\iesysprep.dll
2009-10-15 18:10:08 ----A---- C:\Windows\system32\iesetup.dll
2009-10-15 18:10:08 ----A---- C:\Windows\system32\iernonce.dll
2009-10-15 18:10:08 ----A---- C:\Windows\system32\ie4uinit.exe
2009-10-15 18:09:09 ----A---- C:\Windows\system32\msasn1.dll
2009-10-15 18:07:11 ----A---- C:\Windows\system32\WMSPDMOD.DLL
2009-10-13 17:22:01 ----HD---- C:\LG3G
======List of files/folders modified in the last 1 months======
2009-11-12 17:50:21 ----D---- C:\Windows\Prefetch
2009-11-12 17:50:10 ----D---- C:\Windows\Temp
2009-11-12 15:38:56 ----D---- C:\ProgramData\Spybot - Search & Destroy
2009-11-12 15:36:53 ----D---- C:\Windows
2009-11-12 14:35:55 ----D---- C:\Windows\Debug
2009-11-12 13:27:54 ----D---- C:\Windows\Microsoft.NET
2009-11-12 13:27:39 ----RSD---- C:\Windows\assembly
2009-11-12 12:44:02 ----SHD---- C:\Windows\Installer
2009-11-12 12:42:20 ----D---- C:\Windows\winsxs
2009-11-12 12:42:14 ----D---- C:\Windows\System32
2009-11-12 08:00:45 ----D---- C:\Windows\system32\catroot
2009-11-12 07:57:30 ----D---- C:\Program Files\Windows Mail
2009-11-12 07:41:05 ----SHD---- C:\System Volume Information
2009-11-12 07:40:42 ----D---- C:\Windows\system32\catroot2
2009-11-11 13:11:49 ----D---- C:\Windows\pss
2009-11-10 15:24:35 ----A---- C:\autoexec.bat
2009-11-09 11:37:02 ----D---- C:\Program Files
2009-11-08 17:08:06 ----D---- C:\Users\salut ma amour\AppData\Roaming\Lexmark Productivity Studio
2009-11-07 18:48:12 ----D---- C:\Windows\system32\drivers
2009-11-07 18:48:00 ----HD---- C:\ProgramData
2009-11-07 14:51:03 ----D---- C:\Windows\inf
2009-11-07 14:29:21 ----D---- C:\Users\salut ma amour\AppData\Roaming\LimeWire
2009-11-06 21:14:09 ----D---- C:\Program Files\Internet Explorer
2009-11-06 21:09:02 ----SHD---- C:\$Recycle.Bin
2009-11-06 09:40:17 ----D---- C:\Windows\system32\Tasks
2009-11-06 09:35:20 ----D---- C:\Program Files\Common Files
2009-11-05 18:36:21 ----A---- C:\Windows\system32\mrt.exe
2009-11-05 17:59:41 ----D---- C:\Program Files\Messenger Plus! Live
2009-11-04 17:22:22 ----D---- C:\Program Files\Logitech
2009-11-04 17:22:17 ----SHDC---- C:\Program Files\Common Files\WindowsLiveInstaller
2009-11-04 17:22:17 ----D---- C:\Program Files\DivX
2009-11-04 17:22:09 ----D---- C:\Program Files\Common Files\Adobe
2009-11-03 15:31:15 ----D---- C:\Windows\Tasks
2009-11-03 10:37:37 ----D---- C:\Users\salut ma amour\AppData\Roaming\FaxCtr
2009-11-02 20:42:06 ----N---- C:\Windows\system32\MpSigStub.exe
2009-11-02 19:20:33 ----D---- C:\Program Files\CCleaner
2009-11-02 19:16:25 ----A---- C:\Windows\system32\PerfStringBackup.INI
2009-10-29 13:15:52 ----SD---- C:\Windows\Downloaded Program Files
2009-10-28 17:50:48 ----D---- C:\Windows\rescache
2009-10-28 17:29:06 ----D---- C:\Windows\system32\fr-FR
2009-10-28 17:29:06 ----D---- C:\Program Files\Windows Media Player
2009-10-25 13:37:23 ----A---- C:\Windows\win.ini
2009-10-17 11:12:54 ----D---- C:\Windows\BDOSCAN8
2009-10-16 21:35:26 ----D---- C:\Program Files\adslTV
2009-10-16 06:58:31 ----SD---- C:\Users\salut ma amour\AppData\Roaming\Microsoft
2009-10-15 18:25:35 ----D---- C:\Windows\system32\migration
2009-10-15 18:20:29 ----D---- C:\Program Files\Microsoft Works
2009-10-15 14:23:53 ----D---- C:\Program Files\Spybot - Search & Destroy
2009-10-15 13:32:34 ----DC---- C:\Windows\system32\DRVSTORE
2009-10-15 09:05:32 ----D---- C:\Program Files\Windows Live Safety Center
2009-10-14 09:37:59 ----D---- C:\Program Files\NCH Software
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 avgio;avgio; \??\C:\Program Files\Avira\AntiVir Desktop\avgio.sys [2009-02-13 11608]
R1 avipbb;avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [2009-03-30 96104]
R1 ssmdrv;ssmdrv; C:\Windows\system32\DRIVERS\ssmdrv.sys [2009-11-09 28520]
R2 avgntflt;avgntflt; C:\Windows\system32\DRIVERS\avgntflt.sys [2009-11-09 55656]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2009-08-04 2744800]
R3 LVPr2Mon;LVPr2Mon Driver; C:\Windows\system32\Drivers\LVPr2Mon.sys [2009-04-30 25624]
R3 LVRS;Logitech RightSound Filter Driver; C:\Windows\system32\DRIVERS\lvrs.sys [2009-04-30 265496]
R3 LVUSBSta;Logitech USB Monitor Filter; C:\Windows\system32\drivers\LVUSBSta.sys [2008-12-17 41752]
R3 NuidFltr;NUID filter driver; C:\Windows\system32\DRIVERS\NuidFltr.sys [2009-05-09 14736]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvmfdx32.sys [2007-05-03 1065384]
R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2008-05-22 7465312]
R3 pepifilter;Volume Adapter; C:\Windows\system32\DRIVERS\lv302af.sys [2009-04-30 13976]
R3 PID_PEPI;Logitech QuickCam IM(PID_PEPI); C:\Windows\system32\DRIVERS\LV302V32.SYS [2009-04-30 2687512]
R3 Point32;Microsoft IntelliPoint Filter Driver; C:\Windows\system32\DRIVERS\point32k.sys [2006-11-08 24064]
R3 Ps2;PS2; C:\Windows\system32\DRIVERS\PS2.sys [2005-12-12 19072]
R3 usbaudio;Pilote USB audio (WDM); C:\Windows\system32\drivers\usbaudio.sys [2009-04-11 73216]
S3 BlueletAudio;Bluetooth Audio Service; C:\Windows\system32\DRIVERS\blueletaudio.sys [2005-05-31 20480]
S3 BT;Bluetooth PAN Network Adapter; C:\Windows\system32\DRIVERS\btnetdrv.sys [2005-04-30 10804]
S3 BTHidEnum;Bluetooth HID Enumerator; C:\Windows\system32\DRIVERS\vbtenum.sys [2005-04-30 11860]
S3 BTWUSB;WIDCOMM USB Bluetooth Driver; C:\Windows\System32\Drivers\btwusb.sys [2007-02-25 57320]
S3 Dot4;Pilote MS IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4.sys [2008-01-19 131584]
S3 Dot4Print;Pilote de classe Imprimante pour IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4Prt.sys [2008-01-19 16384]
S3 dot4usb;MS Dot4USB Filter Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2008-01-19 36864]
S3 driverhardwarev2;driverhardwarev2; \??\C:\Program Files\ma-config.com\Drivers\driverhardwarev2.sys []
S3 drmkaud;Filtre de décodeur DRM (Noyau Microsoft); C:\Windows\system32\drivers\drmkaud.sys [2008-01-19 5632]
S3 HdAudAddService;Pilote de fonction UAA 1.1 Microsoft pour le service High Definition Audio; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]
S3 MSKSSRV;Proxy de service de répartition Microsoft; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-19 8192]
S3 MSPCLOCK;Proxy d'horloge de répartition Microsoft; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-19 5888]
S3 MSPQM;Proxy de gestion de qualité de répartition Microsoft; C:\Windows\system32\drivers\MSPQM.sys [2008-01-19 5504]
S3 MSTEE;Convertisseur en T/site-à-site de répartition Microsoft; C:\Windows\system32\drivers\MSTEE.sys [2008-01-19 6016]
S3 NCHSSVAD;SoundTap Recorder; C:\Windows\system32\drivers\nchssvad.sys [2009-09-03 27136]
S3 SIS163u;SiS163 usb Wireless LAN Adapter Driver; C:\Windows\system32\DRIVERS\sis163u.sys []
S3 SQTECH905C;DualCamera; C:\Windows\System32\Drivers\Capt905c.sys [2005-03-24 38937]
S3 usbbus;LGE Mobile Composite USB Device; C:\Windows\system32\DRIVERS\lgusbbus.sys [2007-07-11 12416]
S3 UsbDiag;LGE Mobile USB Serial Port; C:\Windows\system32\DRIVERS\lgusbdiag.sys [2007-07-11 19840]
S3 USBModem;LGE Mobile USB Modem; C:\Windows\system32\DRIVERS\lgusbmodem.sys [2007-07-11 21632]
S3 usbscan;Pilote de scanneur USB; C:\Windows\system32\DRIVERS\usbscan.sys [2008-01-19 35328]
S3 winusb;WinUSB Service; C:\Windows\system32\DRIVERS\WinUSB.SYS [2009-04-11 31616]
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2008-01-19 39936]
S3 WsAudioDevice_383;WsAudioDevice_383; C:\Windows\system32\drivers\WsAudioDevice_383.sys [2008-11-19 16640]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-19 83328]
S4 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\drivers\wmiacpi.sys [2006-11-02 11264]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AntiVirSchedulerService;Avira AntiVir Planificateur; C:\Program Files\Avira\AntiVir Desktop\sched.exe [2009-11-09 108289]
R2 AntiVirService;Avira AntiVir Guard; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [2009-11-09 185089]
R2 LVPrcSrv;Process Monitor; C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe [2009-04-30 154136]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\Windows\System32\svchost.exe [2008-01-19 21504]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2008-05-22 118784]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2008-01-19 21504]
R2 SeaPort;SeaPort; C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2009-05-19 240512]
S2 hpqddsvc;Service HP CUE DeviceDiscovery; C:\Windows\system32\svchost.exe [2008-01-19 21504]
S2 Planificateur LiveUpdate automatique;Planificateur LiveUpdate automatique; C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe []
S2 SBSDWSCService;SBSD Security Center Service; C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe [2009-01-26 1153368]
S3 hpqcxs08;hpqcxs08; C:\Windows\system32\svchost.exe [2008-01-19 21504]
S3 RapiMgr;Connectivité de l'appareil Windows Mobile; C:\Windows\system32\svchost.exe [2008-01-19 21504]
S3 stllssvr;stllssvr; c:\Program Files\Common Files\SureThing Shared\stllssvr.exe []
S3 WcesComm;Connectivité de l'appareil Windows Mobile 2003; C:\Windows\system32\svchost.exe [2008-01-19 21504]
S4 Symantec Core LC;Symantec Core LC; C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe []
-----------------EOF-----------------
Logfile of random's system information tool 1.06 (written by random/random)
Run by salut ma amour at 2009-11-12 17:50:14
Microsoft® Windows Vista™ Édition Familiale Basique Service Pack 2
System drive C: has 106 GB (46%) free of 234 GB
Total RAM: 894 MB (41% free)
======Scheduled tasks folder======
C:\Windows\tasks\Ad-Aware Update (Weekly).job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1336511848-175822680-266065135-1000Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1336511848-175822680-266065135-1000UA.job
C:\Windows\tasks\Maintenance en 1 clic.job
C:\Windows\tasks\Spybot - Search & Destroy - Scheduled Task.job
C:\Windows\tasks\User_Feed_Synchronization-{E457E0EA-E087-4547-955F-80A725C005ED}.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2009-05-19 137600]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Programme d'aide de l'Assistant de connexion Windows Live - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{ccec60fc-2608-4e58-9659-3ffc159e8ea9}]
SHOUTcast Loader - C:\Program Files\SHOUTcast Radio Toolbar\shoutcasttb.dll [2008-09-17 1275176]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-09-28 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{0FBB9689-D3D7-4f7a-A2E2-585B10099BFC} - Veoh Web Player Video Finder - C:\Program Files\Veoh Networks\VeohWebPlayer\VeohIEToolbar.dll [2008-12-16 429816]
{0457331d-8ca6-4f97-9c26-6a9ef2b2dba8} - SHOUTcast Radio Toolbar - C:\Program Files\SHOUTcast Radio Toolbar\shoutcasttb.dll [2008-09-17 1275176]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Neuf Media Center"=C:\Program Files\Neuf\Media Center\MediaCenter.exe [2007-10-15 1025264]
"msnmsgr"=C:\Program Files\Windows Live\Messenger\msnmsgr.exe [2009-07-26 3883856]
"WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2008-01-19 202240]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2008-06-12 34672]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\avgnt]
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [2009-03-02 209153]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BitTorrent DNA]
C:\Users\salut ma amour\Program Files\DNA\btdna.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BroadWave]
C:\Program Files\NCH Swift Sound\BroadWave\broadwave.exe -logon []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ccApp]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cckii]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CollaborationHost]
C:\Windows\system32\p2phost.exe [2008-01-19 192000]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Connexion SFR 9props.exe]
C:\Program Files\Neuf\Kit\9props.exe [2009-06-20 955712]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DPService]
C:\Program Files\HP\DVDPlay\DPService.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\emaswks]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\FaxCenterServer]
C:\Program Files\Lexmark Fax Solutions\fm3032.exe /s []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Fling]
C:\Program Files\NCH Software\Fling\fling.exe -logon []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Desktop Search]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update]
C:\Users\salut ma amour\AppData\Local\Google\Update\GoogleUpdate.exe [2009-11-03 135664]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Software Update]
C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe [2006-12-10 49152]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\hpsysdrv]
c:\hp\support\hpsysdrv.exe [2006-09-28 65536]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LGPCSuiteLanucher]
C:\Program Files\LG PC Suite 2\LGPCSuiteLanucher_Setup.exe [2007-08-31 2637824]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogitechQuickCamRibbon]
C:\Program Files\Logitech\Logitech WebCam Software\LWS.exe [2009-05-08 2780432]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\lxddamon]
C:\Program Files\Lexmark 2500 Series\lxddamon.exe [2007-04-30 20480]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\lxddmon.exe]
C:\Program Files\Lexmark 2500 Series\lxddmon.exe [2007-06-11 291760]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Malwarebytes Anti-Malware (reboot)]
C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe [2009-09-10 1312080]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon]
C:\Windows\system32\NvCpl.dll [2008-05-22 13539872]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvMediaCenter]
C:\Windows\system32\NvMcTray.dll [2008-05-22 92704]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvSvc]
C:\Windows\system32\nvsvc.dll [2008-05-22 526880]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\osCheck]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
C:\Program Files\QuickTime\QTTask.exe -atboottime []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Recordpad]
C:\Program Files\NCH Swift Sound\Recordpad\recordpad.exe -logon []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RocketDock]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl]
C:\Windows\RtHDVCpl.exe [2008-01-15 4874240]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SDTray]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Java\jre6\bin\jusched.exe [2009-09-28 149280]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Symantec PIF AlertEng]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\VeohPlugin]
C:\Program Files\Veoh Networks\VeohWebPlayer\veohwebplayer.exe [2008-12-16 3528440]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinampAgent]
C:\Program Files\Winamp\winampa.exe [2009-07-01 37888]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Windows Mobile-based device management]
C:\Windows\WindowsMobile\wmdSync.exe [2006-11-02 215552]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\wtcwker]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\yrcofzdw]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^McAfee Security Scan.lnk]
C:\Program Files\McAfee Security Scan\1.0.150\SSScheduler.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Outil de mise à jour Google.lnk]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^salut ma amour^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^RocketDock.lnk]
[]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"SetVisualStyle"=C:\Windows\Resources\Themes\Crystal Clear Aero\Crystal Clear Aero.msstyles
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=128
"NoDriveTypeAutoRun"=128
"HonorAutoRunSetting"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=
"NoDriveAutoRun"=
"NoDriveTypeAutoRun"=
"HonorAutoRunSetting"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files\BitTorrent\bittorrent.exe"="C:\Program Files\BitTorrent\bittorrent.exe:*:Enabled:BitTorrent"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
.reg - open - regedit.exe "%1" %*
======List of files/folders created in the last 1 months======
2009-11-12 12:40:57 ----SHD---- C:\Config.Msi
2009-11-12 07:40:50 ----A---- C:\Windows\system32\WSDApi.dll
2009-11-10 16:41:46 ----D---- C:\_OTM
2009-11-10 15:29:58 ----D---- C:\Kill'em
2009-11-10 15:28:07 ----A---- C:\List'em.txt
2009-11-10 15:17:02 ----A---- C:\Kill'em.txt
2009-11-09 11:37:02 ----D---- C:\Program Files\Ad-Remover
2009-11-07 18:48:00 ----D---- C:\ProgramData\Avira
2009-11-07 18:48:00 ----D---- C:\Program Files\Avira
2009-11-07 14:43:05 ----A---- C:\Windows\system32\lxddrwrd.ini
2009-11-07 14:43:04 ----D---- C:\Program Files\Lexmark 2500 Series
2009-11-07 14:43:00 ----A---- C:\Windows\system32\LXDDinst.dll
2009-11-07 14:42:59 ----A---- C:\Windows\system32\lxddinpa.dll
2009-11-07 14:42:59 ----A---- C:\Windows\system32\LXDDhcp.dll
2009-11-07 14:42:58 ----A---- C:\Windows\system32\lxddutil.dll
2009-11-07 14:42:58 ----A---- C:\Windows\system32\lxddiesc.dll
2009-11-07 14:42:57 ----A---- C:\Windows\system32\lxddusb1.dll
2009-11-07 14:42:57 ----A---- C:\Windows\system32\lxddserv.dll
2009-11-07 14:42:56 ----A---- C:\Windows\system32\lxddprox.dll
2009-11-07 14:42:56 ----A---- C:\Windows\system32\lxddpplc.dll
2009-11-07 14:42:56 ----A---- C:\Windows\system32\lxddpmui.dll
2009-11-07 14:42:55 ----A---- C:\Windows\system32\lxddlmpm.dll
2009-11-07 14:42:54 ----A---- C:\Windows\system32\lxddjswr.dll
2009-11-07 14:42:48 ----A---- C:\Windows\system32\lxddinsb.dll
2009-11-07 14:42:40 ----A---- C:\Windows\system32\lxddinsr.dll
2009-11-07 14:42:36 ----A---- C:\Windows\system32\lxddins.dll
2009-11-07 14:42:36 ----A---- C:\Windows\system32\lxddih.exe
2009-11-07 14:42:36 ----A---- C:\Windows\system32\lxddhbn3.dll
2009-11-07 14:42:35 ----A---- C:\Windows\system32\lxddgrd.dll
2009-11-07 14:42:35 ----A---- C:\Windows\system32\lxddgf.dll
2009-11-07 14:42:35 ----A---- C:\Windows\system32\lxddcur.dll
2009-11-07 14:42:35 ----A---- C:\Windows\system32\lxddcub.dll
2009-11-07 14:42:35 ----A---- C:\Windows\system32\lxddcu.dll
2009-11-07 14:42:34 ----A---- C:\Windows\system32\lxddcoms.exe
2009-11-07 14:42:34 ----A---- C:\Windows\system32\lxddcomm.dll
2009-11-07 14:42:34 ----A---- C:\Windows\system32\lxddcomc.dll
2009-11-07 14:42:33 ----A---- C:\Windows\system32\lxddcfg.exe
2009-11-07 14:42:33 ----A---- C:\Windows\system32\lxddcfg.dll
2009-11-07 13:46:56 ----D---- C:\Program Files\Navilog1
2009-11-06 22:41:48 ----D---- C:\GenProc
2009-11-06 08:17:07 ----D---- C:\Users\salut ma amour\AppData\Roaming\Zylom
2009-11-04 18:12:11 ----D---- C:\Program Files\Lexmark Toolbar
2009-11-04 09:43:12 ----A---- C:\Windows\system32\mshtml.dll
2009-11-03 09:22:12 ----D---- C:\ProgramData\Malwarebytes
2009-11-03 09:22:12 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2009-11-03 05:59:06 ----RASHD---- C:\autorun.inf
2009-11-03 05:55:12 ----A---- C:\UsbFix.txt
2009-11-02 19:14:14 ----D---- C:\UsbFix
2009-11-02 14:16:32 ----D---- C:\Program Files\trend micro
2009-11-02 14:16:31 ----D---- C:\rsit
2009-10-29 13:31:53 ----D---- C:\Users\salut ma amour\AppData\Roaming\Yahoo!
2009-10-28 19:33:01 ----D---- C:\Program Files\lx_cats
2009-10-28 04:47:46 ----A---- C:\Windows\system32\wmp.dll
2009-10-28 04:47:43 ----A---- C:\Windows\system32\unregmp2.exe
2009-10-28 04:47:40 ----A---- C:\Windows\system32\wmploc.DLL
2009-10-21 19:28:14 ----D---- C:\Users\salut ma amour\AppData\Roaming\AVS4YOU
2009-10-21 19:28:00 ----D---- C:\ProgramData\AVS4YOU
2009-10-21 18:35:32 ----D---- C:\Program Files\Common Files\AVSMedia
2009-10-21 18:35:20 ----D---- C:\Program Files\AVS4YOU
2009-10-21 18:35:20 ----A---- C:\Windows\system32\msxml3a.dll
2009-10-16 18:52:13 ----D---- C:\Windows\avxoscan
2009-10-15 18:12:37 ----A---- C:\Windows\system32\msv1_0.dll
2009-10-15 18:12:30 ----A---- C:\Windows\system32\ntoskrnl.exe
2009-10-15 18:12:29 ----A---- C:\Windows\system32\ntkrnlpa.exe
2009-10-15 18:10:12 ----A---- C:\Windows\system32\iertutil.dll
2009-10-15 18:10:12 ----A---- C:\Windows\system32\ieframe.dll
2009-10-15 18:10:11 ----A---- C:\Windows\system32\wininet.dll
2009-10-15 18:10:11 ----A---- C:\Windows\system32\urlmon.dll
2009-10-15 18:10:10 ----A---- C:\Windows\system32\occache.dll
2009-10-15 18:10:10 ----A---- C:\Windows\system32\msfeeds.dll
2009-10-15 18:10:10 ----A---- C:\Windows\system32\iedkcs32.dll
2009-10-15 18:10:09 ----A---- C:\Windows\system32\msfeedsbs.dll
2009-10-15 18:10:09 ----A---- C:\Windows\system32\ieUnatt.exe
2009-10-15 18:10:09 ----A---- C:\Windows\system32\ieui.dll
2009-10-15 18:10:09 ----A---- C:\Windows\system32\iepeers.dll
2009-10-15 18:10:08 ----A---- C:\Windows\system32\msfeedssync.exe
2009-10-15 18:10:08 ----A---- C:\Windows\system32\jsproxy.dll
2009-10-15 18:10:08 ----A---- C:\Windows\system32\iesysprep.dll
2009-10-15 18:10:08 ----A---- C:\Windows\system32\iesetup.dll
2009-10-15 18:10:08 ----A---- C:\Windows\system32\iernonce.dll
2009-10-15 18:10:08 ----A---- C:\Windows\system32\ie4uinit.exe
2009-10-15 18:09:09 ----A---- C:\Windows\system32\msasn1.dll
2009-10-15 18:07:11 ----A---- C:\Windows\system32\WMSPDMOD.DLL
2009-10-13 17:22:01 ----HD---- C:\LG3G
======List of files/folders modified in the last 1 months======
2009-11-12 17:50:21 ----D---- C:\Windows\Prefetch
2009-11-12 17:50:10 ----D---- C:\Windows\Temp
2009-11-12 15:38:56 ----D---- C:\ProgramData\Spybot - Search & Destroy
2009-11-12 15:36:53 ----D---- C:\Windows
2009-11-12 14:35:55 ----D---- C:\Windows\Debug
2009-11-12 13:27:54 ----D---- C:\Windows\Microsoft.NET
2009-11-12 13:27:39 ----RSD---- C:\Windows\assembly
2009-11-12 12:44:02 ----SHD---- C:\Windows\Installer
2009-11-12 12:42:20 ----D---- C:\Windows\winsxs
2009-11-12 12:42:14 ----D---- C:\Windows\System32
2009-11-12 08:00:45 ----D---- C:\Windows\system32\catroot
2009-11-12 07:57:30 ----D---- C:\Program Files\Windows Mail
2009-11-12 07:41:05 ----SHD---- C:\System Volume Information
2009-11-12 07:40:42 ----D---- C:\Windows\system32\catroot2
2009-11-11 13:11:49 ----D---- C:\Windows\pss
2009-11-10 15:24:35 ----A---- C:\autoexec.bat
2009-11-09 11:37:02 ----D---- C:\Program Files
2009-11-08 17:08:06 ----D---- C:\Users\salut ma amour\AppData\Roaming\Lexmark Productivity Studio
2009-11-07 18:48:12 ----D---- C:\Windows\system32\drivers
2009-11-07 18:48:00 ----HD---- C:\ProgramData
2009-11-07 14:51:03 ----D---- C:\Windows\inf
2009-11-07 14:29:21 ----D---- C:\Users\salut ma amour\AppData\Roaming\LimeWire
2009-11-06 21:14:09 ----D---- C:\Program Files\Internet Explorer
2009-11-06 21:09:02 ----SHD---- C:\$Recycle.Bin
2009-11-06 09:40:17 ----D---- C:\Windows\system32\Tasks
2009-11-06 09:35:20 ----D---- C:\Program Files\Common Files
2009-11-05 18:36:21 ----A---- C:\Windows\system32\mrt.exe
2009-11-05 17:59:41 ----D---- C:\Program Files\Messenger Plus! Live
2009-11-04 17:22:22 ----D---- C:\Program Files\Logitech
2009-11-04 17:22:17 ----SHDC---- C:\Program Files\Common Files\WindowsLiveInstaller
2009-11-04 17:22:17 ----D---- C:\Program Files\DivX
2009-11-04 17:22:09 ----D---- C:\Program Files\Common Files\Adobe
2009-11-03 15:31:15 ----D---- C:\Windows\Tasks
2009-11-03 10:37:37 ----D---- C:\Users\salut ma amour\AppData\Roaming\FaxCtr
2009-11-02 20:42:06 ----N---- C:\Windows\system32\MpSigStub.exe
2009-11-02 19:20:33 ----D---- C:\Program Files\CCleaner
2009-11-02 19:16:25 ----A---- C:\Windows\system32\PerfStringBackup.INI
2009-10-29 13:15:52 ----SD---- C:\Windows\Downloaded Program Files
2009-10-28 17:50:48 ----D---- C:\Windows\rescache
2009-10-28 17:29:06 ----D---- C:\Windows\system32\fr-FR
2009-10-28 17:29:06 ----D---- C:\Program Files\Windows Media Player
2009-10-25 13:37:23 ----A---- C:\Windows\win.ini
2009-10-17 11:12:54 ----D---- C:\Windows\BDOSCAN8
2009-10-16 21:35:26 ----D---- C:\Program Files\adslTV
2009-10-16 06:58:31 ----SD---- C:\Users\salut ma amour\AppData\Roaming\Microsoft
2009-10-15 18:25:35 ----D---- C:\Windows\system32\migration
2009-10-15 18:20:29 ----D---- C:\Program Files\Microsoft Works
2009-10-15 14:23:53 ----D---- C:\Program Files\Spybot - Search & Destroy
2009-10-15 13:32:34 ----DC---- C:\Windows\system32\DRVSTORE
2009-10-15 09:05:32 ----D---- C:\Program Files\Windows Live Safety Center
2009-10-14 09:37:59 ----D---- C:\Program Files\NCH Software
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 avgio;avgio; \??\C:\Program Files\Avira\AntiVir Desktop\avgio.sys [2009-02-13 11608]
R1 avipbb;avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [2009-03-30 96104]
R1 ssmdrv;ssmdrv; C:\Windows\system32\DRIVERS\ssmdrv.sys [2009-11-09 28520]
R2 avgntflt;avgntflt; C:\Windows\system32\DRIVERS\avgntflt.sys [2009-11-09 55656]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2009-08-04 2744800]
R3 LVPr2Mon;LVPr2Mon Driver; C:\Windows\system32\Drivers\LVPr2Mon.sys [2009-04-30 25624]
R3 LVRS;Logitech RightSound Filter Driver; C:\Windows\system32\DRIVERS\lvrs.sys [2009-04-30 265496]
R3 LVUSBSta;Logitech USB Monitor Filter; C:\Windows\system32\drivers\LVUSBSta.sys [2008-12-17 41752]
R3 NuidFltr;NUID filter driver; C:\Windows\system32\DRIVERS\NuidFltr.sys [2009-05-09 14736]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvmfdx32.sys [2007-05-03 1065384]
R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2008-05-22 7465312]
R3 pepifilter;Volume Adapter; C:\Windows\system32\DRIVERS\lv302af.sys [2009-04-30 13976]
R3 PID_PEPI;Logitech QuickCam IM(PID_PEPI); C:\Windows\system32\DRIVERS\LV302V32.SYS [2009-04-30 2687512]
R3 Point32;Microsoft IntelliPoint Filter Driver; C:\Windows\system32\DRIVERS\point32k.sys [2006-11-08 24064]
R3 Ps2;PS2; C:\Windows\system32\DRIVERS\PS2.sys [2005-12-12 19072]
R3 usbaudio;Pilote USB audio (WDM); C:\Windows\system32\drivers\usbaudio.sys [2009-04-11 73216]
S3 BlueletAudio;Bluetooth Audio Service; C:\Windows\system32\DRIVERS\blueletaudio.sys [2005-05-31 20480]
S3 BT;Bluetooth PAN Network Adapter; C:\Windows\system32\DRIVERS\btnetdrv.sys [2005-04-30 10804]
S3 BTHidEnum;Bluetooth HID Enumerator; C:\Windows\system32\DRIVERS\vbtenum.sys [2005-04-30 11860]
S3 BTWUSB;WIDCOMM USB Bluetooth Driver; C:\Windows\System32\Drivers\btwusb.sys [2007-02-25 57320]
S3 Dot4;Pilote MS IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4.sys [2008-01-19 131584]
S3 Dot4Print;Pilote de classe Imprimante pour IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4Prt.sys [2008-01-19 16384]
S3 dot4usb;MS Dot4USB Filter Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2008-01-19 36864]
S3 driverhardwarev2;driverhardwarev2; \??\C:\Program Files\ma-config.com\Drivers\driverhardwarev2.sys []
S3 drmkaud;Filtre de décodeur DRM (Noyau Microsoft); C:\Windows\system32\drivers\drmkaud.sys [2008-01-19 5632]
S3 HdAudAddService;Pilote de fonction UAA 1.1 Microsoft pour le service High Definition Audio; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]
S3 MSKSSRV;Proxy de service de répartition Microsoft; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-19 8192]
S3 MSPCLOCK;Proxy d'horloge de répartition Microsoft; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-19 5888]
S3 MSPQM;Proxy de gestion de qualité de répartition Microsoft; C:\Windows\system32\drivers\MSPQM.sys [2008-01-19 5504]
S3 MSTEE;Convertisseur en T/site-à-site de répartition Microsoft; C:\Windows\system32\drivers\MSTEE.sys [2008-01-19 6016]
S3 NCHSSVAD;SoundTap Recorder; C:\Windows\system32\drivers\nchssvad.sys [2009-09-03 27136]
S3 SIS163u;SiS163 usb Wireless LAN Adapter Driver; C:\Windows\system32\DRIVERS\sis163u.sys []
S3 SQTECH905C;DualCamera; C:\Windows\System32\Drivers\Capt905c.sys [2005-03-24 38937]
S3 usbbus;LGE Mobile Composite USB Device; C:\Windows\system32\DRIVERS\lgusbbus.sys [2007-07-11 12416]
S3 UsbDiag;LGE Mobile USB Serial Port; C:\Windows\system32\DRIVERS\lgusbdiag.sys [2007-07-11 19840]
S3 USBModem;LGE Mobile USB Modem; C:\Windows\system32\DRIVERS\lgusbmodem.sys [2007-07-11 21632]
S3 usbscan;Pilote de scanneur USB; C:\Windows\system32\DRIVERS\usbscan.sys [2008-01-19 35328]
S3 winusb;WinUSB Service; C:\Windows\system32\DRIVERS\WinUSB.SYS [2009-04-11 31616]
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2008-01-19 39936]
S3 WsAudioDevice_383;WsAudioDevice_383; C:\Windows\system32\drivers\WsAudioDevice_383.sys [2008-11-19 16640]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-19 83328]
S4 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\drivers\wmiacpi.sys [2006-11-02 11264]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AntiVirSchedulerService;Avira AntiVir Planificateur; C:\Program Files\Avira\AntiVir Desktop\sched.exe [2009-11-09 108289]
R2 AntiVirService;Avira AntiVir Guard; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [2009-11-09 185089]
R2 LVPrcSrv;Process Monitor; C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe [2009-04-30 154136]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\Windows\System32\svchost.exe [2008-01-19 21504]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2008-05-22 118784]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2008-01-19 21504]
R2 SeaPort;SeaPort; C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2009-05-19 240512]
S2 hpqddsvc;Service HP CUE DeviceDiscovery; C:\Windows\system32\svchost.exe [2008-01-19 21504]
S2 Planificateur LiveUpdate automatique;Planificateur LiveUpdate automatique; C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe []
S2 SBSDWSCService;SBSD Security Center Service; C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe [2009-01-26 1153368]
S3 hpqcxs08;hpqcxs08; C:\Windows\system32\svchost.exe [2008-01-19 21504]
S3 RapiMgr;Connectivité de l'appareil Windows Mobile; C:\Windows\system32\svchost.exe [2008-01-19 21504]
S3 stllssvr;stllssvr; c:\Program Files\Common Files\SureThing Shared\stllssvr.exe []
S3 WcesComm;Connectivité de l'appareil Windows Mobile 2003; C:\Windows\system32\svchost.exe [2008-01-19 21504]
S4 Symantec Core LC;Symantec Core LC; C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe []
-----------------EOF-----------------
papyber
Messages postés
6406
Date d'inscription
samedi 24 mars 2007
Statut
Contributeur sécurité
Dernière intervention
3 octobre 2010
257
12 nov. 2009 à 18:20
12 nov. 2009 à 18:20
re
regarde dans ajout suppression si tu vois "live update" de Symantec et supprime le...
supprime Spybot S&D de la même façon, tu le réinstalleras plus tard si tu en ressens le besoin
télécharges malwarebyte
http://www.malwarebytes.org/mbam/program/mbam-setup.exe
mets le à jour et scanne ton PC avec, scan court
ne supprime pas ce qu'il trouve, poste simplement le rapport obtenu
pour ton imprimante, as tu le cd d'installation? si oui, je pense que le mieux est de la réinstaller proprement...
regarde dans ajout suppression si tu vois "live update" de Symantec et supprime le...
supprime Spybot S&D de la même façon, tu le réinstalleras plus tard si tu en ressens le besoin
télécharges malwarebyte
http://www.malwarebytes.org/mbam/program/mbam-setup.exe
mets le à jour et scanne ton PC avec, scan court
ne supprime pas ce qu'il trouve, poste simplement le rapport obtenu
pour ton imprimante, as tu le cd d'installation? si oui, je pense que le mieux est de la réinstaller proprement...
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
moment de grace
Messages postés
29042
Date d'inscription
samedi 6 décembre 2008
Statut
Contributeur sécurité
Dernière intervention
18 juillet 2013
2 274
12 nov. 2009 à 20:07
12 nov. 2009 à 20:07
ton rapport rsit n'est pas complet
peux tu en refaire un autre
peux tu en refaire un autre
pimprenelle27
Messages postés
20857
Date d'inscription
lundi 10 décembre 2007
Statut
Contributeur sécurité
Dernière intervention
8 octobre 2019
2 502
12 nov. 2009 à 20:42
12 nov. 2009 à 20:42
bonsoir,
il est presque complet pour le 1er rapport log.txt car -----------------EOF-----------------
Mais il y a hijackthis qui n'a pas marché, il faut lui faire réinstaller hijackthis et lui faire refaire un scan, pour le rapport info.txt c'est normale car il ne donne pas le rapport à la fin de l'analyse quand on refait plusieur fois RSIT, il faut aller le rechercher là : C:\RSIT\info.txt )
il est presque complet pour le 1er rapport log.txt car -----------------EOF-----------------
Mais il y a hijackthis qui n'a pas marché, il faut lui faire réinstaller hijackthis et lui faire refaire un scan, pour le rapport info.txt c'est normale car il ne donne pas le rapport à la fin de l'analyse quand on refait plusieur fois RSIT, il faut aller le rechercher là : C:\RSIT\info.txt )
moment de grace
Messages postés
29042
Date d'inscription
samedi 6 décembre 2008
Statut
Contributeur sécurité
Dernière intervention
18 juillet 2013
2 274
12 nov. 2009 à 21:39
12 nov. 2009 à 21:39
.
Malwarebytes' Anti-Malware 1.41
Version de la base de données: 3145
Windows 6.0.6002 Service Pack 2
12/11/2009 21:02:40
mbam-log-2009-11-12 (21-02-40).txt
Type de recherche: Examen complet (C:\|)
Eléments examinés: 237338
Temps écoulé: 1 hour(s), 32 minute(s), 31 second(s)
Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 0
Valeur(s) du Registre infectée(s): 0
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 0
Processus mémoire infecté(s):
(Aucun élément nuisible détecté)
Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)
Clé(s) du Registre infectée(s):
(Aucun élément nuisible détecté)
Valeur(s) du Registre infectée(s):
(Aucun élément nuisible détecté)
Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)
Dossier(s) infecté(s):
(Aucun élément nuisible détecté)
Fichier(s) infecté(s):
(Aucun élément nuisible détecté)
Logfile of random's system information tool 1.06 (written by random/random)
Run by salut ma amour at 2009-11-13 08:21:51
Microsoft® Windows Vista™ Édition Familiale Basique Service Pack 2
System drive C: has 105 GB (45%) free of 234 GB
Total RAM: 894 MB (18% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 08:22:40, on 13/11/2009
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18828)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Neuf\Media Center\MediaCenter.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Neuf\Media Center\httpd\httpd.exe
C:\Program Files\Neuf\Media Center\httpd\httpd.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Windows Live\Messenger\wlcsdk.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
c:\program files\shoutcast radio toolbar\SHOUTcastTbServer.exe
C:\Windows\system32\Macromed\Flash\FlashUtil10c.exe
C:\Program Files\CCleaner\CCleaner.exe
C:\Users\salut ma amour\Desktop\RSIT.exe
C:\Program Files\trend micro\salut ma amour.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\NOTEPAD.EXE
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.bing.com/?cc=fr&toHttps=1&redig=55729C844D6A45819CAD368B3E178C9F
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Windows Internet Explorer
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: SHOUTcast Loader - {ccec60fc-2608-4e58-9659-3ffc159e8ea9} - C:\Program Files\SHOUTcast Radio Toolbar\shoutcasttb.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: Veoh Web Player Video Finder - {0FBB9689-D3D7-4f7a-A2E2-585B10099BFC} - C:\Program Files\Veoh Networks\VeohWebPlayer\VeohIEToolbar.dll
O3 - Toolbar: SHOUTcast Radio Toolbar - {0457331d-8ca6-4f97-9c26-6a9ef2b2dba8} - C:\Program Files\SHOUTcast Radio Toolbar\shoutcasttb.dll
O4 - HKCU\..\Run: [Neuf Media Center] "C:\Program Files\Neuf\Media Center\MediaCenter.exe"
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background (User 'Default user')
O8 - Extra context menu item: &SHOUTcast Search - C:\ProgramData\SHOUTcast Radio Toolbar\ieToolbar\resources\en-US\local\search.html
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O16 - DPF: CabBuilder - http://kiw.imgag.com/imgag/kiw/toolbar/download/InstallerControl.cab
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} (Shockwave ActiveX Control) -
O16 - DPF: {3860DD98-0549-4D50-AA72-5D17D200EE10} (Windows Live OneCare safety scanner control) - http://cdn.scan.onecare.live.com/resource/download/scanner/fr-be/wlscctrl2.cab
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} - http://download.divx.com/player/DivXBrowserPlugin.cab
O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - http://ma-config.com/activex/hardwaredetection_3_1_0_3.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O23 - Service: Avira AntiVir Planificateur (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: Planificateur LiveUpdate automatique - Unknown owner - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe (file missing)
O23 - Service: stllssvr - Unknown owner - c:\Program Files\Common Files\SureThing Shared\stllssvr.exe (file missing)
Version de la base de données: 3145
Windows 6.0.6002 Service Pack 2
12/11/2009 21:02:40
mbam-log-2009-11-12 (21-02-40).txt
Type de recherche: Examen complet (C:\|)
Eléments examinés: 237338
Temps écoulé: 1 hour(s), 32 minute(s), 31 second(s)
Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 0
Valeur(s) du Registre infectée(s): 0
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 0
Processus mémoire infecté(s):
(Aucun élément nuisible détecté)
Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)
Clé(s) du Registre infectée(s):
(Aucun élément nuisible détecté)
Valeur(s) du Registre infectée(s):
(Aucun élément nuisible détecté)
Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)
Dossier(s) infecté(s):
(Aucun élément nuisible détecté)
Fichier(s) infecté(s):
(Aucun élément nuisible détecté)
Logfile of random's system information tool 1.06 (written by random/random)
Run by salut ma amour at 2009-11-13 08:21:51
Microsoft® Windows Vista™ Édition Familiale Basique Service Pack 2
System drive C: has 105 GB (45%) free of 234 GB
Total RAM: 894 MB (18% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 08:22:40, on 13/11/2009
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18828)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Neuf\Media Center\MediaCenter.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Neuf\Media Center\httpd\httpd.exe
C:\Program Files\Neuf\Media Center\httpd\httpd.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Windows Live\Messenger\wlcsdk.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
c:\program files\shoutcast radio toolbar\SHOUTcastTbServer.exe
C:\Windows\system32\Macromed\Flash\FlashUtil10c.exe
C:\Program Files\CCleaner\CCleaner.exe
C:\Users\salut ma amour\Desktop\RSIT.exe
C:\Program Files\trend micro\salut ma amour.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\NOTEPAD.EXE
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.bing.com/?cc=fr&toHttps=1&redig=55729C844D6A45819CAD368B3E178C9F
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Windows Internet Explorer
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: SHOUTcast Loader - {ccec60fc-2608-4e58-9659-3ffc159e8ea9} - C:\Program Files\SHOUTcast Radio Toolbar\shoutcasttb.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: Veoh Web Player Video Finder - {0FBB9689-D3D7-4f7a-A2E2-585B10099BFC} - C:\Program Files\Veoh Networks\VeohWebPlayer\VeohIEToolbar.dll
O3 - Toolbar: SHOUTcast Radio Toolbar - {0457331d-8ca6-4f97-9c26-6a9ef2b2dba8} - C:\Program Files\SHOUTcast Radio Toolbar\shoutcasttb.dll
O4 - HKCU\..\Run: [Neuf Media Center] "C:\Program Files\Neuf\Media Center\MediaCenter.exe"
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background (User 'Default user')
O8 - Extra context menu item: &SHOUTcast Search - C:\ProgramData\SHOUTcast Radio Toolbar\ieToolbar\resources\en-US\local\search.html
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O16 - DPF: CabBuilder - http://kiw.imgag.com/imgag/kiw/toolbar/download/InstallerControl.cab
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} (Shockwave ActiveX Control) -
O16 - DPF: {3860DD98-0549-4D50-AA72-5D17D200EE10} (Windows Live OneCare safety scanner control) - http://cdn.scan.onecare.live.com/resource/download/scanner/fr-be/wlscctrl2.cab
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} - http://download.divx.com/player/DivXBrowserPlugin.cab
O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - http://ma-config.com/activex/hardwaredetection_3_1_0_3.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O23 - Service: Avira AntiVir Planificateur (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: Planificateur LiveUpdate automatique - Unknown owner - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe (file missing)
O23 - Service: stllssvr - Unknown owner - c:\Program Files\Common Files\SureThing Shared\stllssvr.exe (file missing)
papyber
Messages postés
6406
Date d'inscription
samedi 24 mars 2007
Statut
Contributeur sécurité
Dernière intervention
3 octobre 2010
257
13 nov. 2009 à 16:29
13 nov. 2009 à 16:29
puisque OTM se semble pas fonctionner correctement sur ton Pc on va utiliser autre chose
suis ce tutoriel et poste le rapport comme indiqué
https://forum.pcastuces.com/ots___tutoriel_analyse_standard-f31s39.htm
suis ce tutoriel et poste le rapport comme indiqué
https://forum.pcastuces.com/ots___tutoriel_analyse_standard-f31s39.htm
[code]
OTS logfile created on: 13/11/2009 19:50:01 - Run 1
OTS by OldTimer - Version 3.1.5.0 Folder = C:\Users\salut ma amour\Desktop
Windows Vista Home Basic Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18828)
Locale: 0000040C | Country: France | Language: FRA | Date Format: dd/MM/yyyy
893,82 Mb Total Physical Memory | 204,59 Mb Available Physical Memory | 22,89% Memory free
2,00 Gb Paging File | 0,63 Gb Available in Paging File | 31,50% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 228,18 Gb Total Space | 100,56 Gb Free Space | 44,07% Space Free | Partition Type: NTFS
Drive D: | 4,71 Gb Total Space | 4,66 Gb Free Space | 98,93% Space Free | Partition Type: NTFS
Drive E: | 540,15 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: NOUS
Current User Name: salut ma amour
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
[Processes - Safe List]
ots.exe -> C:\Users\salut ma amour\Desktop\OTS.exe -> [2009/11/13 18:45:34 | 00,525,824 | ---- | M] (OldTimer Tools)
sched.exe -> C:\Program Files\Avira\AntiVir Desktop\sched.exe -> [2009/11/09 15:24:53 | 00,108,289 | ---- | M] (Avira GmbH)
avguard.exe -> C:\Program Files\Avira\AntiVir Desktop\avguard.exe -> [2009/11/09 15:24:52 | 00,185,089 | ---- | M] (Avira GmbH)
iexplore.exe -> C:\Program Files\Internet Explorer\iexplore.exe -> [2009/08/27 06:23:17 | 00,638,232 | ---- | M] (Microsoft Corporation)
iexplore.exe -> C:\Program Files\Internet Explorer\iexplore.exe -> [2009/08/27 06:23:17 | 00,638,232 | ---- | M] (Microsoft Corporation)
iexplore.exe -> C:\Program Files\Internet Explorer\iexplore.exe -> [2009/08/27 06:23:17 | 00,638,232 | ---- | M] (Microsoft Corporation)
iexplore.exe -> C:\Program Files\Internet Explorer\iexplore.exe -> [2009/08/27 06:23:17 | 00,638,232 | ---- | M] (Microsoft Corporation)
iexplore.exe -> C:\Program Files\Internet Explorer\iexplore.exe -> [2009/08/27 06:23:17 | 00,638,232 | ---- | M] (Microsoft Corporation)
iexplore.exe -> C:\Program Files\Internet Explorer\iexplore.exe -> [2009/08/27 06:23:17 | 00,638,232 | ---- | M] (Microsoft Corporation)
iexplore.exe -> C:\Program Files\Internet Explorer\iexplore.exe -> [2009/08/27 06:23:17 | 00,638,232 | ---- | M] (Microsoft Corporation)
iexplore.exe -> C:\Program Files\Internet Explorer\iexplore.exe -> [2009/08/27 06:23:17 | 00,638,232 | ---- | M] (Microsoft Corporation)
msfeedssync.exe -> C:\Windows\System32\msfeedssync.exe -> [2009/08/27 04:41:45 | 00,013,312 | ---- | M] (Microsoft Corporation)
msnmsgr.exe -> C:\Program Files\Windows Live\Messenger\msnmsgr.exe -> [2009/07/26 16:44:52 | 03,883,856 | ---- | M] (Microsoft Corporation)
flashutil10c.exe -> C:\Windows\System32\Macromed\Flash\FlashUtil10c.exe -> [2009/07/18 04:12:12 | 00,257,440 | R--- | M] (Adobe Systems, Inc.)
seaport.exe -> C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe -> [2009/05/19 10:36:18 | 00,240,512 | ---- | M] (Microsoft Corporation)
lvprcsrv.exe -> C:\Program Files\Common Files\logishrd\LVMVFM\LVPrcSrv.exe -> [2009/04/30 15:01:10 | 00,154,136 | ---- | M] (Logitech Inc.)
explorer.exe -> C:\Windows\explorer.exe -> [2009/04/11 07:27:36 | 02,926,592 | ---- | M] (Microsoft Corporation)
conime.exe -> C:\Windows\System32\conime.exe -> [2009/04/11 07:27:28 | 00,069,120 | ---- | M] (Microsoft Corporation)
infocard.exe -> C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe -> [2009/02/18 19:38:42 | 00,879,448 | ---- | M] (Microsoft Corporation)
wlcsdk.exe -> C:\Program Files\Windows Live\Messenger\wlcsdk.exe -> [2009/02/06 18:21:00 | 00,583,024 | ---- | M] (Microsoft Corporation)
wlcomm.exe -> C:\Program Files\Windows Live\Contacts\wlcomm.exe -> [2009/02/06 17:07:48 | 00,027,512 | ---- | M] (Microsoft Corporation)
shoutcasttbserver.exe -> c:\Program Files\SHOUTcast Radio Toolbar\shoutcasttbServer.exe -> [2008/09/17 16:24:34 | 00,140,584 | ---- | M] (AOL LLC)
nvvsvc.exe -> C:\Windows\System32\nvvsvc.exe -> [2008/05/22 13:49:00 | 00,118,784 | ---- | M] (NVIDIA Corporation)
wmpnetwk.exe -> C:\Program Files\Windows Media Player\wmpnetwk.exe -> [2008/01/19 08:33:39 | 00,896,512 | ---- | M] (Microsoft Corporation)
wmpnscfg.exe -> C:\Program Files\Windows Media Player\wmpnscfg.exe -> [2008/01/19 08:33:39 | 00,202,240 | ---- | M] (Microsoft Corporation)
mediacenter.exe -> C:\Program Files\Neuf\Media Center\MediaCenter.exe -> [2007/10/15 16:57:20 | 01,025,264 | ---- | M] (Neuf)
httpd.exe -> C:\Program Files\Neuf\Media Center\httpd\httpd.exe -> [2007/09/05 07:59:02 | 00,024,635 | ---- | M] (Apache Software Foundation)
httpd.exe -> C:\Program Files\Neuf\Media Center\httpd\httpd.exe -> [2007/09/05 07:59:02 | 00,024,635 | ---- | M] (Apache Software Foundation)
[Modules - Safe List]
ots.exe -> C:\Users\salut ma amour\Desktop\OTS.exe -> [2009/11/13 18:45:34 | 00,525,824 | ---- | M] (OldTimer Tools)
comctl32.dll -> C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6002.18005_none_5cb72f96088b0de0\comctl32.dll -> [2009/04/11 07:21:38 | 01,686,016 | ---- | M] (Microsoft Corporation)
[Win32 Services - Safe List]
(Symantec Core LC) Symantec Core LC [Disabled | Stopped] -> -> File not found
(stllssvr) stllssvr [On_Demand | Stopped] -> -> File not found
(Planificateur LiveUpdate automatique) Planificateur LiveUpdate automatique [Auto | Stopped] -> -> File not found
(AntiVirSchedulerService) Avira AntiVir Planificateur [Auto | Running] -> C:\Program Files\Avira\AntiVir Desktop\sched.exe -> [2009/11/09 15:24:53 | 00,108,289 | ---- | M] (Avira GmbH)
(AntiVirService) Avira AntiVir Guard [Auto | Running] -> C:\Program Files\Avira\AntiVir Desktop\avguard.exe -> [2009/11/09 15:24:52 | 00,185,089 | ---- | M] (Avira GmbH)
(SeaPort) SeaPort [Auto | Running] -> C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe -> [2009/05/19 10:36:18 | 00,240,512 | ---- | M] (Microsoft Corporation)
(LVPrcSrv) Process Monitor [Auto | Running] -> C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe -> [2009/04/30 15:01:10 | 00,154,136 | ---- | M] (Logitech Inc.)
(clr_optimization_v2.0.50727_32) Microsoft .NET Framework NGEN v2.0.50727_X86 [On_Demand | Stopped] -> C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -> [2009/03/30 05:42:14 | 00,066,368 | ---- | M] (Microsoft Corporation)
(FontCache3.0.0.0) Cache de police de Windows Presentation Foundation 3.0.0.0 [On_Demand | Stopped] -> C:\Windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe -> [2009/02/18 19:39:20 | 00,043,904 | ---- | M] (Microsoft Corporation)
(NetTcpPortSharing) Service de partage de ports Net.Tcp [On_Demand | Stopped] -> C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe -> [2009/02/18 19:38:43 | 00,129,880 | ---- | M] (Microsoft Corporation)
(idsvc) Windows CardSpace [Unknown | Running] -> C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe -> [2009/02/18 19:38:42 | 00,879,448 | ---- | M] (Microsoft Corporation)
(nvsvc) NVIDIA Display Driver Service [Auto | Running] -> C:\Windows\System32\nvvsvc.exe -> [2008/05/22 13:49:00 | 00,118,784 | ---- | M] (NVIDIA Corporation)
(WinDefend) Windows Defender [On_Demand | Stopped] -> C:\Program Files\Windows Defender\MpSvc.dll -> [2008/01/19 08:38:24 | 00,272,952 | ---- | M] (Microsoft Corporation)
(WcesComm) Connectivité de l'appareil Windows Mobile 2003 [On_Demand | Stopped] -> C:\Windows\WindowsMobile\wcescomm.dll -> [2008/01/19 08:36:49 | 00,365,568 | ---- | M] (Microsoft Corporation)
(RapiMgr) Connectivité de l'appareil Windows Mobile [On_Demand | Stopped] -> C:\Windows\WindowsMobile\rapimgr.dll -> [2008/01/19 08:36:15 | 00,167,936 | ---- | M] (Microsoft Corporation)
(WMPNetworkSvc) Service Partage réseau du Lecteur Windows Media [Auto | Running] -> C:\Program Files\Windows Media Player\wmpnetwk.exe -> [2008/01/19 08:33:39 | 00,896,512 | ---- | M] (Microsoft Corporation)
(hpqcxs08) hpqcxs08 [On_Demand | Running] -> C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqcxs08.dll -> [2007/02/28 02:00:14 | 00,225,280 | ---- | M] (Hewlett-Packard Co.)
(hpqddsvc) Service HP CUE DeviceDiscovery [Auto | Running] -> C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqddsvc.dll -> [2007/02/28 02:00:14 | 00,131,072 | ---- | M] (Hewlett-Packard Co.)
(Pml Driver HPZ12) Pml Driver HPZ12 [Auto | Running] -> C:\Windows\System32\HPZipm12.dll -> [2006/11/08 16:35:38 | 00,053,248 | ---- | M] (Hewlett-Packard)
(Net Driver HPZ12) Net Driver HPZ12 [Auto | Running] -> C:\Windows\System32\HPZinw12.dll -> [2006/11/08 16:35:36 | 00,043,520 | ---- | M] (Hewlett-Packard)
[Driver Services - Safe List]
(avgntflt) avgntflt [File_System | Auto | Running] -> C:\Windows\System32\drivers\avgntflt.sys -> [2009/11/09 15:24:53 | 00,055,656 | ---- | M] (Avira GmbH)
(ssmdrv) ssmdrv [Kernel | System | Running] -> C:\Windows\System32\drivers\ssmdrv.sys -> [2009/11/09 15:24:53 | 00,028,520 | ---- | M] (Avira GmbH)
(NCHSSVAD) SoundTap Recorder [Kernel | On_Demand | Stopped] -> C:\Windows\System32\drivers\nchssvad.sys -> [2009/09/03 10:01:21 | 00,027,136 | ---- | M] (NCH Swift Sound)
(IntcAzAudAddService) Service for Realtek HD Audio (WDM) [Kernel | On_Demand | Running] -> C:\Windows\System32\drivers\RTKVHDA.sys -> [2009/08/04 08:48:20 | 02,744,800 | ---- | M] (Realtek Semiconductor Corp.)
(NuidFltr) NUID filter driver [Kernel | On_Demand | Running] -> C:\Windows\System32\drivers\nuidfltr.sys -> [2009/05/09 00:14:20 | 00,014,736 | ---- | M] (Microsoft Corporation)
(LVRS) Logitech RightSound Filter Driver [Kernel | On_Demand | Running] -> C:\Windows\System32\drivers\lvrs.sys -> [2009/04/30 22:01:36 | 00,265,496 | ---- | M] (Logitech Inc.)
(PID_PEPI) Logitech QuickCam IM(PID_PEPI) [Kernel | On_Demand | Running] -> C:\Windows\System32\drivers\LV302V32.SYS -> [2009/04/30 21:55:58 | 02,687,512 | ---- | M] (Logitech Inc.)
(pepifilter) Volume Adapter [Kernel | On_Demand | Running] -> C:\Windows\System32\drivers\lv302af.sys -> [2009/04/30 21:55:34 | 00,013,976 | ---- | M] (Logitech Inc.)
(LVPr2Mon) LVPr2Mon Driver [Kernel | On_Demand | Running] -> C:\Windows\System32\drivers\LVPr2Mon.sys -> [2009/04/30 15:00:12 | 00,025,624 | ---- | M] ()
(usbaudio) Pilote USB audio (WDM) [Kernel | On_Demand | Running] -> C:\Windows\System32\drivers\USBAUDIO.sys -> [2009/04/11 05:42:54 | 00,073,216 | ---- | M] (Microsoft Corporation)
(winusb) WinUSB Service [Kernel | On_Demand | Stopped] -> C:\Windows\System32\drivers\winusb.sys -> [2009/04/11 05:42:52 | 00,031,616 | ---- | M] (Microsoft Corporation)
(avipbb) avipbb [Kernel | System | Running] -> C:\Windows\System32\drivers\avipbb.sys -> [2009/03/30 10:32:47 | 00,096,104 | ---- | M] (Avira GmbH)
(avgio) avgio [Kernel | System | Running] -> C:\Program Files\Avira\AntiVir Desktop\avgio.sys -> [2009/02/13 12:34:33 | 00,011,608 | ---- | M] (Avira GmbH)
(LVUSBSta) Logitech USB Monitor Filter [Kernel | On_Demand | Running] -> C:\Windows\System32\drivers\LVUSBSta.sys -> [2008/12/17 07:01:20 | 00,041,752 | ---- | M] (Logitech Inc.)
(WsAudioDevice_383) WsAudioDevice_383 [Kernel | On_Demand | Stopped] -> C:\Windows\System32\drivers\WsAudioDevice_383.sys -> [2008/11/19 08:41:08 | 00,016,640 | ---- | M] (Wondershare)
(nvlddmkm) nvlddmkm [Kernel | On_Demand | Running] -> C:\Windows\System32\drivers\nvlddmkm.sys -> [2008/05/22 13:49:00 | 07,465,312 | ---- | M] (NVIDIA Corporation)
(PzWDM) PzWDM [Kernel | Boot | Running] -> C:\Windows\system32\Drivers\PzWDM.sys -> [2007/12/24 16:09:06 | 00,015,172 | ---- | M] (Prassi Technology)
(nvstor32) nvstor32 [Kernel | Boot | Running] -> C:\Windows\system32\DRIVERS\nvstor32.sys -> [2007/10/26 18:51:22 | 00,110,624 | ---- | M] (NVIDIA Corporation)
(UsbDiag) LGE Mobile USB Serial Port [Kernel | On_Demand | Stopped] -> C:\Windows\System32\drivers\lgusbdiag.sys -> [2007/07/11 14:51:48 | 00,019,840 | ---- | M] (LG Electronics Inc.)
(USBModem) LGE Mobile USB Modem [Kernel | On_Demand | Stopped] -> C:\Windows\System32\drivers\lgusbmodem.sys -> [2007/07/11 09:45:00 | 00,021,632 | ---- | M] (LG Electronics Inc.)
(usbbus) LGE Mobile Composite USB Device [Kernel | On_Demand | Stopped] -> C:\Windows\System32\drivers\lgusbbus.sys -> [2007/07/11 09:40:18 | 00,012,416 | ---- | M] (LG Electronics Inc.)
(NVENETFD) NVIDIA nForce Networking Controller Driver [Kernel | On_Demand | Running] -> C:\Windows\System32\drivers\nvmfdx32.sys -> [2007/05/03 17:29:10 | 01,065,384 | ---- | M] (NVIDIA Corporation)
(BTWUSB) WIDCOMM USB Bluetooth Driver [Kernel | On_Demand | Stopped] -> C:\Windows\System32\drivers\btwusb.sys -> [2007/02/25 05:01:12 | 00,057,320 | ---- | M] (Broadcom Corporation.)
(Point32) Microsoft IntelliPoint Filter Driver [Kernel | On_Demand | Running] -> C:\Windows\System32\drivers\point32k.sys -> [2006/11/08 08:02:40 | 00,024,064 | ---- | M] (Microsoft Corporation)
(ql2300) QLogic Fibre Channel Miniport Driver [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\ql2300.sys -> [2006/11/02 10:51:45 | 00,900,712 | ---- | M] (QLogic Corporation)
(adp94xx) adp94xx [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\adp94xx.sys -> [2006/11/02 10:51:38 | 00,420,968 | ---- | M] (Adaptec, Inc.)
(elxstor) elxstor [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\elxstor.sys -> [2006/11/02 10:51:34 | 00,316,520 | ---- | M] (Emulex)
(adpahci) adpahci [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\adpahci.sys -> [2006/11/02 10:51:32 | 00,297,576 | ---- | M] (Adaptec, Inc.)
(uliahci) uliahci [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\uliahci.sys -> [2006/11/02 10:51:25 | 00,235,112 | ---- | M] (ULi Electronics Inc.)
(iaStorV) Intel RAID Controller Vista [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\iastorv.sys -> [2006/11/02 10:51:25 | 00,232,040 | ---- | M] (Intel Corporation)
(adpu320) adpu320 [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\adpu320.sys -> [2006/11/02 10:51:00 | 00,147,048 | ---- | M] (Adaptec, Inc.)
(ulsata2) ulsata2 [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\ulsata2.sys -> [2006/11/02 10:50:45 | 00,115,816 | ---- | M] (Promise Technology, Inc.)
(vsmraid) vsmraid [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\vsmraid.sys -> [2006/11/02 10:50:41 | 00,112,232 | ---- | M] (VIA Technologies Inc.,Ltd)
(ql40xx) QLogic iSCSI Miniport Driver [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\ql40xx.sys -> [2006/11/02 10:50:35 | 00,106,088 | ---- | M] (QLogic Corporation)
(UlSata) UlSata [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\ulsata.sys -> [2006/11/02 10:50:35 | 00,098,408 | ---- | M] (Promise Technology, Inc.)
(adpu160m) adpu160m [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\adpu160m.sys -> [2006/11/02 10:50:35 | 00,098,408 | ---- | M] (Adaptec, Inc.)
(nvraid) nvraid [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\nvraid.sys -> [2006/11/02 10:50:24 | 00,088,680 | ---- | M] (NVIDIA Corporation)
(nfrd960) nfrd960 [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\nfrd960.sys -> [2006/11/02 10:50:19 | 00,045,160 | ---- | M] (IBM Corporation)
(iirsp) iirsp [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\iirsp.sys -> [2006/11/02 10:50:17 | 00,041,576 | ---- | M] (Intel Corp./ICP vortex GmbH)
(SiSRaid4) SiSRaid4 [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\sisraid4.sys -> [2006/11/02 10:50:16 | 00,071,784 | ---- | M] (Silicon Integrated Systems)
(nvstor) nvstor [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\nvstor.sys -> [2006/11/02 10:50:13 | 00,040,040 | ---- | M] (NVIDIA Corporation)
(aic78xx) aic78xx [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\djsvs.sys -> [2006/11/02 10:50:11 | 00,071,272 | ---- | M] (Adaptec, Inc.)
(arcsas) arcsas [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\arcsas.sys -> [2006/11/02 10:50:10 | 00,067,688 | ---- | M] (Adaptec, Inc.)
(LSI_SCSI) LSI_SCSI [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\lsi_scsi.sys -> [2006/11/02 10:50:10 | 00,065,640 | ---- | M] (LSI Logic)
(SiSRaid2) SiSRaid2 [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\sisraid2.sys -> [2006/11/02 10:50:10 | 00,038,504 | ---- | M] (Silicon Integrated Systems Corp.)
(HpCISSs) HpCISSs [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\hpcisss.sys -> [2006/11/02 10:50:10 | 00,037,480 | ---- | M] (Hewlett-Packard Company)
(arc) arc [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\arc.sys -> [2006/11/02 10:50:09 | 00,067,688 | ---- | M] (Adaptec, Inc.)
(iteraid) ITERAID_Service_Install [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\iteraid.sys -> [2006/11/02 10:50:09 | 00,035,944 | ---- | M] (Integrated Technology Express, Inc.)
(iteatapi) ITEATAPI_Service_Install [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\iteatapi.sys -> [2006/11/02 10:50:07 | 00,035,944 | ---- | M] (Integrated Technology Express, Inc.)
(LSI_SAS) LSI_SAS [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\lsi_sas.sys -> [2006/11/02 10:50:05 | 00,065,640 | ---- | M] (LSI Logic)
(Symc8xx) Symc8xx [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\symc8xx.sys -> [2006/11/02 10:50:05 | 00,035,944 | ---- | M] (LSI Logic)
(LSI_FC) LSI_FC [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\lsi_fc.sys -> [2006/11/02 10:50:04 | 00,065,640 | ---- | M] (LSI Logic)
(Sym_u3) Sym_u3 [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\sym_u3.sys -> [2006/11/02 10:50:03 | 00,034,920 | ---- | M] (LSI Logic)
(Mraid35x) Mraid35x [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\mraid35x.sys -> [2006/11/02 10:49:59 | 00,033,384 | ---- | M] (LSI Logic Corporation)
(Sym_hi) Sym_hi [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\sym_hi.sys -> [2006/11/02 10:49:56 | 00,031,848 | ---- | M] (LSI Logic)
(megasas) megasas [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\megasas.sys -> [2006/11/02 10:49:53 | 00,028,776 | ---- | M] (LSI Logic Corporation)
(viaide) viaide [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\viaide.sys -> [2006/11/02 10:49:30 | 00,017,512 | ---- | M] (VIA Technologies, Inc.)
(cmdide) cmdide [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\cmdide.sys -> [2006/11/02 10:49:28 | 00,016,488 | ---- | M] (CMD Technology, Inc.)
(aliide) aliide [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\aliide.sys -> [2006/11/02 10:49:20 | 00,014,952 | ---- | M] (Acer Laboratories Inc.)
(Brserid) Brother MFC Serial Port Interface Driver (WDM) [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\brserid.sys -> [2006/11/02 09:25:24 | 00,071,808 | ---- | M] (Brother Industries Ltd.)
(BrUsbSer) Brother MFC USB Serial WDM Driver [Kernel | On_Demand | Stopped] -> C:\Windows\system32\drivers\brusbser.sys -> [2006/11/02 09:24:47 | 00,011,904 | ---- | M] (Brother Industries Ltd.)
(BrFiltUp) Brother USB Mass-Storage Upper Filter Driver [Kernel | On_Demand | Stopped] -> C:\Windows\system32\drivers\brfiltup.sys -> [2006/11/02 09:24:46 | 00,005,248 | ---- | M] (Brother Industries, Ltd.)
(BrFiltLo) Brother USB Mass-Storage Lower Filter Driver [Kernel | On_Demand | Stopped] -> C:\Windows\system32\drivers\brfiltlo.sys -> [2006/11/02 09:24:45 | 00,013,568 | ---- | M] (Brother Industries, Ltd.)
(BrSerWdm) Brother WDM Serial driver [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\brserwdm.sys -> [2006/11/02 09:24:44 | 00,062,336 | ---- | M] (Brother Industries Ltd.)
(BrUsbMdm) Brother MFC USB Fax Only Modem [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\brusbmdm.sys -> [2006/11/02 09:24:44 | 00,012,160 | ---- | M] (Brother Industries Ltd.)
(ntrigdigi) N-trig HID Tablet Driver [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\ntrigdigi.sys -> [2006/11/02 08:36:50 | 00,020,608 | ---- | M] (N-trig Innovative Technologies)
(E1G60) Intel(R) PRO/1000 NDIS 6 Adapter Driver [Kernel | On_Demand | Stopped] -> C:\Windows\System32\drivers\E1G60I32.sys -> [2006/11/02 08:30:54 | 00,117,760 | ---- | M] (Intel Corporation)
(secdrv) Security Driver [Kernel | Auto | Running] -> C:\Windows\System32\drivers\secdrv.sys -> [2006/11/02 07:37:21 | 00,020,480 | ---- | M] (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.)
(Ps2) Ps2 [Kernel | On_Demand | Running] -> C:\Windows\System32\drivers\PS2.sys -> [2005/12/12 17:27:00 | 00,019,072 | ---- | M] (Hewlett-Packard Company)
(PxHelp20) PxHelp20 [Kernel | Boot | Running] -> C:\Windows\System32\Drivers\PxHelp20.sys -> [2005/10/26 21:12:48 | 00,020,640 | ---- | M] (Sonic Solutions)
(BlueletAudio) Bluetooth Audio Service [Kernel | On_Demand | Stopped] -> C:\Windows\System32\drivers\blueletaudio.sys -> [2005/05/31 15:40:20 | 00,020,480 | ---- | M] (IVT Corporation)
(BTHidEnum) Bluetooth HID Enumerator [Kernel | On_Demand | Stopped] -> C:\Windows\System32\drivers\VBTEnum.sys -> [2005/04/30 14:50:20 | 00,011,860 | ---- | M] ()
(BTHidMgr) Bluetooth HID Manager Service [Kernel | Boot | Running] -> C:\Windows\System32\Drivers\BTHidMgr.sys -> [2005/04/30 14:50:10 | 00,028,271 | ---- | M] (IVT Corporation)
(BT) Bluetooth PAN Network Adapter [Kernel | On_Demand | Stopped] -> C:\Windows\System32\drivers\BtNetDrv.sys -> [2005/04/30 14:48:58 | 00,010,804 | ---- | M] (IVT Corporation)
(SQTECH905C) DualCamera [Kernel | On_Demand | Stopped] -> C:\Windows\System32\drivers\Capt905c.sys -> [2005/03/24 16:21:22 | 00,038,937 | ---- | M] (Service & Quality Technology.)
[Registry - Safe List]
< Internet Explorer Settings [HKEY_LOCAL_MACHINE\] > -> ->
HKEY_LOCAL_MACHINE\: Main\\"Default_Page_URL" -> http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome ->
HKEY_LOCAL_MACHINE\: Main\\"Default_Search_URL" -> http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch ->
HKEY_LOCAL_MACHINE\: Main\\"Default_Secondary_Page_URL" -> [binary data] ->
HKEY_LOCAL_MACHINE\: Main\\"Extensions Off Page" -> about:NoAdd-ons ->
HKEY_LOCAL_MACHINE\: Main\\"Local Page" -> C:\Windows\System32\blank.htm ->
HKEY_LOCAL_MACHINE\: Main\\"Search Page" -> http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch ->
HKEY_LOCAL_MACHINE\: Main\\"Secondary Start Pages" -> [Binary data over 100 bytes] ->
HKEY_LOCAL_MACHINE\: Main\\"Security Risk Page" -> about:SecurityRisk ->
HKEY_LOCAL_MACHINE\: Main\\"Start Page" -> https://www.msn.com/fr-fr ->
HKEY_LOCAL_MACHINE\: Search\\"SearchAssistant" -> https://www.bing.com/?toHttps=1&redig=8F3F334EA60E4B1CB4D040DCFE393A89{SUB_RFC1766}/srchasst/srchasst.htm ->
HKEY_LOCAL_MACHINE\: URLSearchHooks\\"{14f0d511-36a2-41ca-ae01-ba4f87282c97}" [HKLM] -> C:\Program Files\SHOUTcast Radio Toolbar\shoutcasttb.dll [SHOUTcast Toolbar Search Class] -> [2008/09/17 16:24:32 | 01,275,176 | ---- | M] (AOL LLC)
< Internet Explorer Settings [HKEY_CURRENT_USER\] > -> ->
HKEY_CURRENT_USER\: Main\\"Default_Page_URL" -> http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome ->
HKEY_CURRENT_USER\: Main\\"Default_search_url" -> http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch ->
HKEY_CURRENT_USER\: Main\\"Local Page" -> C:\Windows\system32\blank.htm ->
HKEY_CURRENT_USER\: Main\\"Page_Transitions" -> 1 ->
HKEY_CURRENT_USER\: Main\\"Search Page" -> https://www.msn.com/fr-fr/?redirfallthru=http%3a%2f%2fhome.microsoft.com%2fintl%2fbr%2faccess%2fallinone.asp%3f ->
HKEY_CURRENT_USER\: Main\\"Start Page" -> https://www.msn.com/fr-fr ->
HKEY_CURRENT_USER\: Main\\"StartPageCache" -> 1 ->
HKEY_CURRENT_USER\: Search\\"AutoSearch" -> https://www.bing.com/?toHttps=1&redig=8F3F334EA60E4B1CB4D040DCFE393A89{SUB_RFC1766}/srchasst/saautosearch.aspx ->
HKEY_CURRENT_USER\: Search\\"CustomizeSearch" -> https://www.bing.com/?toHttps=1&redig=8F3F334EA60E4B1CB4D040DCFE393A89{SUB_RFC1766}/srchasst/srchcust.htm ->
HKEY_CURRENT_USER\: Search\\"SearchAssistant" -> http://www.google.com/toolbar/ie8/sidebar.html ->
HKEY_CURRENT_USER\: SearchURL\\"" -> http://home.microsoft.com/access/autosearch.asp?p=%s ->
HKEY_CURRENT_USER\: "ProxyEnable" -> 0 ->
< FireFox Settings [Prefs.js] > -> C:\Users\salut ma amour\AppData\Roaming\Mozilla\FireFox\Profiles\vvcy3nt1.default\prefs.js ->
browser.search.defaulturl -> "https://www.google.com/webhp?lr=&ie=UTF-8&oe=UTF-8&gws_rd=ssl" ->
browser.search.useDBForOrder -> true ->
browser.startup.homepage -> "http://www.google" ->
extensions.enabledItems -> {fce36c1e-58d8-498a-b2a5-66ad1cedebbb}:0.76 ->
extensions.enabledItems -> firegestures@xuldev.org:1.5 ->
extensions.enabledItems -> {CAFEEFAC-0016-0000-0004-ABCDEFFEDCBA}:6.0.04 ->
extensions.enabledItems -> {CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA}:6.0.11 ->
extensions.enabledItems -> {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}:6.0.07 ->
extensions.enabledItems -> {CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}:6.0.13 ->
extensions.enabledItems -> {B13721C7-F507-4982-B2E5-502A71474FED}:2.2.0.87 ->
extensions.enabledItems -> web@veoh.com:1.4 ->
extensions.enabledItems -> {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.0.11 ->
keyword.URL -> "" ->
< FireFox Settings [User.js] > -> C:\Users\salut ma amour\AppData\Roaming\Mozilla\FireFox\Profiles\vvcy3nt1.default\user.js ->
< FireFox Extensions [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Mozilla
HKLM\software\mozilla\Firefox\Extensions -> ->
HKLM\software\mozilla\Firefox\Extensions\\{3112ca9c-de6d-4884-a869-9855de68056c} -> C:\PROGRAMDATA\MOZILLA\FIREFOX EXTENSIONS\{3112CA9C-DE6D-4884-A869-9855DE68056C} ->
HKLM\software\mozilla\Firefox\Extensions\\{20a82645-c095-46ed-80e3-08825760534b} -> C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V3.5\WINDOWS PRESENTATION FOUNDATION\DOTNETASSISTANTEXTENSION\ [C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V3.5\WINDOWS PRESENTATION FOUNDATION\DOTNETASSISTANTEXTENSION\] -> [2009/09/18 17:38:12 | 00,000,000 | ---D | M]
< FireFox Extensions [User Folders] > ->
-> C:\Users\salut ma amour\AppData\Roaming\mozilla\Extensions -> [2009/05/27 10:05:30 | 00,000,000 | ---D | M]
-> C:\Users\salut ma amour\AppData\Roaming\mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384} -> [2008/08/26 15:19:44 | 00,000,000 | ---D | M]
-> C:\Users\salut ma amour\AppData\Roaming\mozilla\Extensions\mozswing@mozswing.org -> [2009/05/27 10:05:30 | 00,000,000 | ---D | M]
-> C:\Users\salut ma amour\AppData\Roaming\mozilla\Firefox\Profiles\vvcy3nt1.default\extensions -> [2009/09/15 19:27:56 | 00,000,000 | ---D | M]
-> C:\Users\salut ma amour\AppData\Roaming\mozilla\Firefox\Profiles\vvcy3nt1.default\extensions\{097d3191-e6fa-4728-9826-b533d755359d}(614) -> [2008/06/25 20:32:41 | 00,000,000 | ---D | M]
-> C:\Users\salut ma amour\AppData\Roaming\mozilla\Firefox\Profiles\vvcy3nt1.default\extensions\{0b38152b-1b20-484d-a11f-5e04a9b0661f} -> [2009/09/15 19:27:56 | 00,000,000 | ---D | M]
-> C:\Users\salut ma amour\AppData\Roaming\mozilla\Firefox\Profiles\vvcy3nt1.default\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1} -> [2008/08/05 14:39:16 | 00,000,000 | ---D | M]
-> C:\Users\salut ma amour\AppData\Roaming\mozilla\Firefox\Profiles\vvcy3nt1.default\extensions\{9A752782-D706-479b-98F8-3F66BF921692}(615) -> [2008/06/23 14:15:51 | 00,000,000 | ---D | M]
-> C:\Users\salut ma amour\AppData\Roaming\mozilla\Firefox\Profiles\vvcy3nt1.default\extensions\{fce36c1e-58d8-498a-b2a5-66ad1cedebbb} -> [2008/12/28 21:26:19 | 00,000,000 | ---D | M]
-> C:\Users\salut ma amour\AppData\Roaming\mozilla\Firefox\Profiles\vvcy3nt1.default\extensions\firegestures@xuldev.org -> [2009/06/12 12:32:29 | 00,000,000 | ---D | M]
-> C:\Users\salut ma amour\AppData\Roaming\mozilla\Firefox\Profiles\vvcy3nt1.default\extensions\fr-FR@dictionaries.addons.mozilla.org -> [2008/08/27 17:49:17 | 00,000,000 | ---D | M]
-> C:\Users\salut ma amour\AppData\Roaming\mozilla\Firefox\Profiles\vvcy3nt1.default\extensions\splash@aldreneo(613).com -> [2008/06/23 14:15:51 | 00,000,000 | ---D | M]
-> C:\Users\salut ma amour\AppData\Roaming\mozilla\Firefox\Profiles\vvcy3nt1.default\extensions\staged-xpis -> [2009/06/12 12:32:29 | 00,000,000 | ---D | M]
< FireFox SearchPlugins [User Folders] > ->
live-search.xml -> C:\Users\salut ma amour\AppData\Roaming\Mozilla\FireFox\Profiles\vvcy3nt1.default\searchplugins\live-search.xml -> [2008/02/17 12:21:55 | 00,001,825 | ---- | M] ()
< HOSTS File > (244116 bytes and 8571 lines) -> C:\Windows\System32\drivers\etc\hosts ->
First 25 entries...
Reset Hosts
127.0.0.1 localhost
::1 localhost
127.0.0.1 007guard.com
127.0.0.1 www.007guard.com
127.0.0.1 008i.com
127.0.0.1 008k.com
127.0.0.1 www.008k.com
127.0.0.1 00hq.com
127.0.0.1 www.00hq.com
127.0.0.1 010402.com
127.0.0.1 032439.com
127.0.0.1 www.032439.com
127.0.0.1 1001-search.info
127.0.0.1 www.1001-search.info
127.0.0.1 100888290cs.com
127.0.0.1 www.100888290cs.com
127.0.0.1 100sexlinks.com
127.0.0.1 www.100sexlinks.com
127.0.0.1 10sek.com
127.0.0.1 www.10sek.com
127.0.0.1 123topsearch.com
127.0.0.1 www.123topsearch.com
127.0.0.1 132.com
127.0.0.1 www.132.com
< BHO's [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\ ->
{18DF081C-E8AD-4283-A596-FA578C2EBDC3} [HKLM] -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [Adobe PDF Link Helper] -> [2008/06/11 22:33:16 | 00,075,128 | ---- | M] (Adobe Systems Incorporated)
{5C255C8A-E604-49b4-9D64-90988571CECB} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found
{6EBF7485-159F-4bff-A14F-B9E3AAC4465B} [HKLM] -> C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [Search Helper] -> [2009/05/19 10:36:18 | 00,137,600 | ---- | M] (Microsoft Corporation)
{9030D464-4C02-4ABF-8ECC-5164760863C6} [HKLM] -> C:\Program Files\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll [Programme d'aide de l'Assistant de connexion Windows Live] -> [2009/01/22 14:41:30 | 00,408,448 | ---- | M] (Microsoft Corporation)
{ccec60fc-2608-4e58-9659-3ffc159e8ea9} [HKLM] -> C:\Program Files\SHOUTcast Radio Toolbar\shoutcasttb.dll [SHOUTcast Loader] -> [2008/09/17 16:24:32 | 01,275,176 | ---- | M] (AOL LLC)
{DBC80044-A445-435b-BC74-9C25C1C588A9} [HKLM] -> C:\Program Files\Java\jre6\bin\jp2ssv.dll [Java(tm) Plug-In 2 SSV Helper] -> [2009/09/28 18:56:58 | 00,041,760 | ---- | M] (Sun Microsystems, Inc.)
< Internet Explorer ToolBars [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ToolBar ->
"{0457331d-8ca6-4f97-9c26-6a9ef2b2dba8}" [HKLM] -> C:\Program Files\SHOUTcast Radio Toolbar\shoutcasttb.dll [SHOUTcast Radio Toolbar] -> [2008/09/17 16:24:32 | 01,275,176 | ---- | M] (AOL LLC)
"{0FBB9689-D3D7-4f7a-A2E2-585B10099BFC}" [HKLM] -> C:\Program Files\Veoh Networks\VeohWebPlayer\VeohIEToolbar.dll [Veoh Web Player Video Finder] -> [2008/12/16 17:57:30 | 00,429,816 | ---- | M] (Veoh Networks Inc)
< Internet Explorer ToolBars [HKEY_CURRENT_USER\] > -> HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\ ->
WebBrowser\\"{0457331D-8CA6-4F97-9C26-6A9EF2B2DBA8}" [HKLM] -> C:\Program Files\SHOUTcast Radio Toolbar\shoutcasttb.dll [SHOUTcast Radio Toolbar] -> [2008/09/17 16:24:32 | 01,275,176 | ---- | M] (AOL LLC)
WebBrowser\\"{1D54967B-19A0-43BC-84DA-28D9AA2382F9}" [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found
WebBrowser\\"{21FA44EF-376D-4D53-9B0F-8A89D3229068}" [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found
WebBrowser\\"{35065594-9169-4A34-B167-FC4865038E53}" [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found
< Run [HKEY_CURRENT_USER\] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run ->
"msnmsgr" -> C:\Program Files\Windows Live\Messenger\msnmsgr.exe ["C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background] -> [2009/07/26 16:44:52 | 03,883,856 | ---- | M] (Microsoft Corporation)
"Neuf Media Center" -> C:\Program Files\Neuf\Media Center\MediaCenter.exe ["C:\Program Files\Neuf\Media Center\MediaCenter.exe"] -> [2007/10/15 16:57:20 | 01,025,264 | ---- | M] (Neuf)
"WMPNSCFG" -> C:\Program Files\Windows Media Player\wmpnscfg.exe [C:\Program Files\Windows Media Player\WMPNSCFG.exe] -> [2008/01/19 08:33:39 | 00,202,240 | ---- | M] (Microsoft Corporation)
< Software Policy Settings [HKEY_CURRENT_USER] > -> HKEY_CURRENT_USER\SOFTWARE\Policies\Microsoft\Internet Explorer ->
HKEY_CURRENT_USER\SOFTWARE\Policies\Microsoft\Internet Explorer
\\"Homepage" -> [0] -> File not found
< CurrentVersion Policy Settings - Explorer [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer
\\"BindDirectlyToPropertySetStorage" -> [0] -> File not found
\\"NoDriveAutoRun" -> [128] -> File not found
\\"NoDriveTypeAutoRun" -> [128] -> File not found
\\"HonorAutoRunSetting" -> [1] -> File not found
< CurrentVersion Policy Settings - System [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System
\\"ConsentPromptBehaviorAdmin" -> [2] -> File not found
\\"ConsentPromptBehaviorUser" -> [1] -> File not found
\\"EnableInstallerDetection" -> [1] -> File not found
\\"EnableSecureUIAPaths" -> [1] -> File not found
\\"EnableVirtualization" -> [1] -> File not found
\\"PromptOnSecureDesktop" -> [1] -> File not found
\\"ValidateAdminCodeSignatures" -> [0] -> File not found
\\"dontdisplaylastusername" -> [0] -> File not found
\\"legalnoticecaption" -> [] -> File not found
\\"legalnoticetext" -> [] -> File not found
\\"scforceoption" -> [0] -> File not found
\\"shutdownwithoutlogon" -> [1] -> File not found
\\"undockwithoutlogon" -> [1] -> File not found
\\"FilterAdministratorToken" -> [0] -> File not found
\\"EnableUIADesktopToggle" -> [0] -> File not found
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats
\UIPI\Clipboard\ExceptionFormats\\"CF_TEXT" -> [1] -> File not found
\UIPI\Clipboard\ExceptionFormats\\"CF_BITMAP" -> [2] -> File not found
\UIPI\Clipboard\ExceptionFormats\\"CF_OEMTEXT" -> [7] -> File not found
\UIPI\Clipboard\ExceptionFormats\\"CF_DIB" -> [8] -> File not found
\UIPI\Clipboard\ExceptionFormats\\"CF_PALETTE" -> [9] -> File not found
\UIPI\Clipboard\ExceptionFormats\\"CF_UNICODETEXT" -> [13] -> File not found
\UIPI\Clipboard\ExceptionFormats\\"CF_DIBV5" -> [17] -> File not found
< CurrentVersion Policy Settings - Explorer [HKEY_CURRENT_USER] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer ->
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer
\\"NoDriveAutoRun" -> [128] -> File not found
\\"NoDriveTypeAutoRun" -> [128] -> File not found
\\"HonorAutoRunSetting" -> [1] -> File not found
< CurrentVersion Policy Settings - System [HKEY_CURRENT_USER] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System ->
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System
\\"SetVisualStyle" -> C:\Windows\Resources\Themes\Crystal Clear Aero\Crystal Clear Aero.msstyles [C:\Windows\Resources\Themes\Crystal Clear Aero\Crystal Clear Aero.msstyles] -> [2006/05/19 12:31:44 | 04,747,264 | ---- | M] (CrystalXP.net)
< Internet Explorer Menu Extensions [HKEY_CURRENT_USER\] > -> HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\ ->
&SHOUTcast Search -> C:\ProgramData\SHOUTcast Radio Toolbar\ieToolbar\resources\en-US\local\search.html [C:\ProgramData\SHOUTcast Radio Toolbar\ieToolbar\resources\en-US\local\search.html] -> [2008/05/22 15:44:38 | 00,000,747 | ---- | M] ()
< Internet Explorer Extensions [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\ ->
{219C3416-8CB2-491a-A3C7-D9FCDDC9D600}:{5F7B1267-94A9-47F5-98DB-E99415F33AEC} [HKLM] -> C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll [Button: Ajout Direct] -> [2009/07/26 20:17:14 | 00,186,192 | ---- | M] (Microsoft Corporation)
{219C3416-8CB2-491a-A3C7-D9FCDDC9D600}:{5F7B1267-94A9-47F5-98DB-E99415F33AEC} [HKLM] -> C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll [Menu: &Ajout Direct dans Windows Live Writer] -> [2009/07/26 20:17:14 | 00,186,192 | ---- | M] (Microsoft Corporation)
< Default Prefix > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\URL\DefaultPrefix
"" -> http://
< Trusted Sites Domains [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 4474 domain(s) found. ->
36 domain(s) and sub-domain(s) not assigned to a zone.
< Trusted Sites Ranges [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 77 range(s) found. ->
< Trusted Sites Domains [HKEY_CURRENT_USER\] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 4784 domain(s) found. ->
46 domain(s) and sub-domain(s) not assigned to a zone.
< Trusted Sites Ranges [HKEY_CURRENT_USER\] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ ->
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 77 range(s) found. ->
< Downloaded Program Files > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\ ->
{166B1BCA-3F9C-11CF-8075-444553540000} [HKLM] -> Reg Error: Value error. [Shockwave ActiveX Control] ->
{3860DD98-0549-4D50-AA72-5D17D200EE10} [HKLM] -> http://cdn.scan.onecare.live.com/resource/download/scanner/fr-be/wlscctrl2.cab [Windows Live OneCare safety scanner control] ->
{67DABFBF-D0AB-41FA-9C46-CC0F21721616} [HKLM] -> http://download.divx.com/player/DivXBrowserPlugin.cab [Reg Error: Key error.] ->
{867E13F2-7F31-44FB-AC97-CD38E0DC46EF} [HKLM] -> http://ma-config.com/activex/hardwaredetection_3_1_0_3.cab [HardwareDetection Control] ->
{8AD9C840-044E-11D1-B3E9-00805F499D93} [HKLM] -> http://java.sun.com/update/1.6.0/jinstall-1_6_0_16-windows-i586.cab [Java Plug-in 1.6.0_16] ->
{8FFBE65D-2C9C-4669-84BD-5829DC0B603C} [HKLM] -> http://fpdownload.macromedia.com/get/flashplayer/current/ultrashim.cab [Reg Error: Key error.] ->
{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} [HKLM] -> http://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab [Java Plug-in 1.6.0_07] ->
{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA} [HKLM] -> http://java.sun.com/update/1.6.0/jinstall-1_6_0_16-windows-i586.cab [Java Plug-in 1.6.0_16] ->
{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} [HKLM] -> http://java.sun.com/update/1.6.0/jinstall-1_6_0_16-windows-i586.cab [Java Plug-in 1.6.0_16] ->
{E2883E8F-472F-4FB0-9522-AC9BF37916A7} [HKLM] -> http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab [Reg Error: Key error.] ->
CabBuilder [HKLM] -> http://kiw.imgag.com/imgag/kiw/toolbar/download/InstallerControl.cab [Reg Error: Key error.] ->
< Name Servers [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\ ->
DhcpNameServer -> 192.168.1.1 ->
< Name Servers [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Adapters\ ->
{E6222653-255D-46B1-ABE9-689DE96265CE}\\DhcpNameServer -> 192.168.1.1 (NVIDIA nForce Networking Controller) ->
< Winlogon settings [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon ->
*Shell* -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell ->
explorer.exe -> C:\Windows\explorer.exe -> [2009/04/11 07:27:36 | 02,926,592 | ---- | M] (Microsoft Corporation)
*MultiFile Done* -> ->
< Standard Profile Authorized Applications List > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List ->
"C:\Program Files\BitTorrent\bittorrent.exe" -> C:\Program Files\BitTorrent\bittorrent.exe [C:\Program Files\BitTorrent\bittorrent.exe:*:Enabled:BitTorrent] -> File not found
< SafeBoot AlternateShell [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot ->
"AlternateShell" -> cmd.exe ->
< CDROM Autorun Setting [HKEY_LOCAL_MACHINE]> -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Cdrom ->
"AutoRun" -> 1 ->
"DisplayName" -> Pilote de CD-ROM ->
"ImagePath" -> [system32\DRIVERS\cdrom.sys] -> File not found
< Drives with AutoRun files > -> ->
C:\autoexec.bat [ | ] -> C:\autoexec.bat [ NTFS ] -> [2009/11/10 15:24:35 | 00,000,004 | ---- | M] ()
C:\autorun.inf [] -> C:\autorun.inf [ NTFS ] -> [2009/11/03 05:59:06 | 00,000,000 | RHSD | M]
D:\autorun.inf [] -> D:\autorun.inf [ NTFS ] -> [2009/11/03 05:59:06 | 00,000,000 | RHSD | M]
E:\autorun.inf [[autorun] | open=Setup.EXE | ] -> E:\autorun.inf [ CDFS ] -> [2006/06/14 08:15:19 | 00,000,025 | R--- | M] ()
< MountPoints2 [HKEY_CURRENT_USER] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2 ->
\{cc7b23eb-889b-11db-ba1c-806e6f6e6963}
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{cc7b23eb-889b-11db-ba1c-806e6f6e6963}\shell
\{cc7b23eb-889b-11db-ba1c-806e6f6e6963}\shell\\"" -> [AutoRun] -> File not found
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{cc7b23eb-889b-11db-ba1c-806e6f6e6963}\shell\AutoRun\command
\{cc7b23eb-889b-11db-ba1c-806e6f6e6963}\shell\AutoRun\command\\"" -> E:\Setup.exe [E:\Setup.EXE] -> [2007/06/11 20:27:17 | 00,304,048 | R--- | M] ( )
< Registry Shell Spawning - Select to Repair > -> HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command ->
comfile [open] -> "%1" %* ->
exefile [open] -> "%1" %* ->
[Registry - Additional Scans - Safe List]
< File Associations - Select to Repair > -> HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>\ ->
.bat [@ = batfile] -> "%1" %* ->
.chm [@ = chm.file] -> "%SystemRoot%\hh.exe" %1 ->
.cmd [@ = cmdfile] -> "%1" %* ->
.com [@ = comfile] -> "%1" %* ->
.cpl [@ = cplfile] -> C:\Windows\System32\control.exe -> [2006/11/02 10:44:59 | 00,211,968 | ---- | M] (Microsoft Corporation)
.exe [@ = exefile] -> "%1" %* ->
.hlp [@ = hlpfile] -> C:\Windows\winhlp32.exe -> [2006/11/02 10:45:57 | 00,009,216 | ---- | M] (Microsoft Corporation)
.html [@ = Reg Error: Value error.] -> Reg Error: Key error. -> File not found
.pif [@ = piffile] -> "%1" %* ->
.reg [@ = regfile] -> C:\Windows\regedit.exe -> [2008/01/19 08:33:24 | 00,134,656 | ---- | M] ()
.scr [@ = scrfile] -> "%1" /S ->
< File Associations - Select to Repair > -> HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>\ ->
.html [@ = ChromeHTML] -> C:\Users\salut ma amour\AppData\Local\Google\Chrome\Application\chrome.exe -> [2009/11/03 06:40:28 | 00,921,072 | ---- | M] (Google Inc.)
< HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost > -> ->
*netsvcs* -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\\netsvcs ->
FastUserSwitchingCompatibility -> [] ->
Ias -> [] ->
Irmon -> [] ->
Nla -> [] ->
Ntmssvc -> [] ->
NWCWorkstation -> [] ->
Nwsapagent -> [] ->
SRService -> [] ->
Wmi -> [] ->
WmdmPmSp -> [] ->
LogonHours -> [] ->
PCAudit -> [] ->
helpsvc -> [] ->
uploadmgr -> [] ->
*MultiFile Done* -> ->
< Protocol Handlers [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\ ->
livecall:{828030A1-22C1-4009-854F-8E305202313F} [HKLM] -> C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll[Reg Error: Value error.] -> [2009/07/26 16:44:54 | 00,061,264 | ---- | M] (Microsoft Corporation)
ms-itss:{0A9007C0-4076-11D3-8789-0000F8105754} [HKLM] -> c:\Program Files\Common Files\microsoft shared\Information Retrieval\msitss.dll[Microsoft Infotech Storage Protocol for IE 4.0] -> [2001/06/20 03:26:46 | 00,221,184 | ---- | M] (Microsoft Corporation)
msnim:{828030A1-22C1-4009-854F-8E305202313F} [HKLM] -> C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll[Reg Error: Value error.] -> [2009/07/26 16:44:54 | 00,061,264 | ---- | M] (Microsoft Corporation)
< SafeBoot-Minimal Settings > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ ->
{36FC9E60-C465-11CF-8056-444553540000} -> Universal Serial Bus controllers
{4D36E965-E325-11CE-BFC1-08002BE10318} -> CD-ROM Drive
{4D36E967-E325-11CE-BFC1-08002BE10318} -> DiskDrive
{4D36E969-E325-11CE-BFC1-08002BE10318} -> Standard floppy disk controller
{4D36E96A-E325-11CE-BFC1-08002BE10318} -> Hdc
{4D36E96B-E325-11CE-BFC1-08002BE10318} -> Keyboard
{4D36E96F-E325-11CE-BFC1-08002BE10318} -> Mouse
{4D36E977-E325-11CE-BFC1-08002BE10318} -> PCMCIA Adapters
{4D36E97B-E325-11CE-BFC1-08002BE10318} -> SCSIAdapter
{4D36E97D-E325-11CE-BFC1-08002BE10318} -> System
{4D36E980-E325-11CE-BFC1-08002BE10318} -> Floppy disk drive
{533C5B84-EC70-11D2-9505-00C04F79DEAF} -> Volume shadow copy
{6BDD1FC1-810F-11D0-BEC7-08002BE2092F} -> IEEE 1394 Bus host controllers
{71A27CDD-812A-11D0-BEC7-08002BE2092F} -> Volume
{745A17A0-74D3-11D0-B6FE-00A0C90F57DA} -> Human Interface Devices
{D48179BE-EC20-11D1-B6B8-00C04FA372A7} -> SBP2 IEEE 1394 Devices
{D94EE5D8-D189-4994-83D2-F68D7D41B0E6} -> SecurityDevices
AppMgmt -> Service
Base -> Driver Group
Boot Bus Extender -> Driver Group
Boot file system -> Driver Group
File system -> Driver Group
Filter -> Driver Group
HelpSvc -> Service
NTDS -> -> File not found
PCI Configuration -> Driver Group
PNP Filter -> Driver Group
Primary disk -> Driver Group
sacsvr -> Service
SCSI Class -> Driver Group
System Bus Extender -> Driver Group
WinDefend -> C:\Program Files\Windows Defender\MpSvc.dll -> [2008/01/19 08:38:24 | 00,272,952 | ---- | M] (Microsoft Corporation)
< SafeBoot-Network Settings > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\ ->
{36FC9E60-C465-11CF-8056-444553540000} -> Universal Serial Bus controllers
{4D36E965-E325-11CE-BFC1-08002BE10318} -> CD-ROM Drive
{4D36E967-E325-11CE-BFC1-08002BE10318} -> DiskDrive
{4D36E969-E325-11CE-BFC1-08002BE10318} -> Standard floppy disk controller
{4D36E96A-E325-11CE-BFC1-08002BE10318} -> Hdc
{4D36E96B-E325-11CE-BFC1-08002BE10318} -> Keyboard
{4D36E96F-E325-11CE-BFC1-08002BE10318} -> Mouse
{4D36E972-E325-11CE-BFC1-08002BE10318} -> Net
{4D36E973-E325-11CE-BFC1-08002BE10318} -> NetClient
{4D36E974-E325-11CE-BFC1-08002BE10318} -> NetService
{4D36E975-E325-11CE-BFC1-08002BE10318} -> NetTrans
{4D36E977-E325-11CE-BFC1-08002BE10318} -> PCMCIA Adapters
{4D36E97B-E325-11CE-BFC1-08002BE10318} -> SCSIAdapter
{4D36E97D-E325-11CE-BFC1-08002BE10318} -> System
{4D36E980-E325-11CE-BFC1-08002BE10318} -> Floppy disk drive
{50DD5230-BA8A-11D1-BF5D-0000F805F530} -> Smart card readers
{533C5B84-EC70-11D2-9505-00C04F79DEAF} -> Volume shadow copy
{6BDD1FC1-810F-11D0-BEC7-08002BE2092F} -> IEEE 1394 Bus host controllers
{71A27CDD-812A-11D0-BEC7-08002BE2092F} -> Volume
{745A17A0-74D3-11D0-B6FE-00A0C90F57DA} -> Human Interface Devices
{D48179BE-EC20-11D1-B6B8-00C04FA372A7} -> SBP2 IEEE 1394 Devices
{D94EE5D8-D189-4994-83D2-F68D7D41B0E6} -> SecurityDevices
AppMgmt -> Service
Base -> Driver Group
Boot Bus Extender -> Driver Group
Boot file system -> Driver Group
File system -> Driver Group
Filter -> Driver Group
HelpSvc -> Service
Messenger -> -> File not found
NDIS Wrapper -> Driver Group
NetBIOSGroup -> Driver Group
NetDDEGroup -> Driver Group
Network -> Driver Group
NetworkProvider -> Driver Group
NTDS -> -> File not found
PCI Configuration -> Driver Group
PNP Filter -> Driver Group
PNP_TDI -> Driver Group
Primary disk -> Driver Group
rdsessmgr -> Service
sacsvr -> Service
SCSI Class -> Driver Group
Streams Drivers -> Driver Group
System Bus Extender -> Driver Group
TDI -> Driver Group
WinDefend -> C:\Program Files\Windows Defender\MpSvc.dll -> [2008/01/19 08:38:24 | 00,272,952 | ---- | M] (Microsoft Corporation)
WudfPf -> Driver
WudfUsbccidDriver -> Driver
< Security Center Settings > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center
\\"cval" -> [1] -> File not found
\\"UacDisableNotify" -> [1] -> File not found
\\"InternetSettingsDisableNotify" -> [1] -> File not found
\\"AutoUpdateDisableNotify" -> [1] -> File not found
\\"AntiVirusDisableNotify" -> [0] -> File not found
\\"AntiVirusOverride" -> [0] -> File not found
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring
\Monitoring\\"DisableMonitoring" -> [1] -> File not found
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus
\Monitoring\SymantecAntiVirus\\"DisableMonitoring" -> [1] -> File not found
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall
\Monitoring\SymantecFirewall\\"DisableMonitoring" -> [1] -> File not found
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc
\Svc\\"AntiVirusOverride" -> [0] -> File not found
\Svc\\"AntiSpywareOverride" -> [0] -> File not found
\Svc\\"FirewallOverride" -> [0] -> File not found
\Svc\\"VistaSp1" -> Reg Error: Unknown registry data type [Reg Error: Unknown registry data type] -> File not found
\Svc\\"VistaSp2" -> Reg Error: Unknown registry data type [Reg Error: Unknown registry data type] -> File not found
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol\ -> ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile
\\"DisableNotifications" -> [0] -> File not found
\\"EnableFirewall" -> [1] -> File not found
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\ -> ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\Logging\ -> ->
< Default Protocols [HKEY_LOCAL_MACHINE\] - Select to Repair > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\ProtocolDefaults ->
ldap -> 4 = Restricted sites (Not a Default Protocol) ->
news -> 4 = Restricted sites (Not a Default Protocol) ->
nntp -> 4 = Restricted sites (Not a Default Protocol) ->
oecmd -> 4 = Restricted sites (Not a Default Protocol) ->
snews -> 4 = Restricted sites (Not a Default Protocol) ->
< Uninstall List [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ ->
{0FA44E79-CD7D-4E8D-A2EE-26FE05F509B6} -> OpenOffice.org 3.1
{179C56A4-F57F-4561-8BBF-F911D26EB435} -> WebReg
{18D10072035C4515918F7E37EAFAACFC} -> AutoUpdate
{1D14373E-7970-4F2F-A467-ACA4F0EA21E3} -> Google Earth
{205C6BDD-7B73-42DE-8505-9A093F35A238} -> Outil de téléchargement Windows Live
{2075CB0A-D26F-4DAA-B424-5079296B43BA} -> Windows Live FolderShare
{22B775E7-6C42-4FC5-8E10-9A5E3257BD94} -> MSVCRT
{26A24AE4-039D-4CA4-87B4-2F83216016FF} -> Java(TM) 6 Update 16
{3248F0A8-6813-11D6-A77B-00B0D0150000} -> J2SE Runtime Environment 5.0
{3248F0A8-6813-11D6-A77B-00B0D0160020} -> Java(TM) 6 Update 2
{3248F0A8-6813-11D6-A77B-00B0D0160040} -> Java(TM) 6 Update 4
{3248F0A8-6813-11D6-A77B-00B0D0160070} -> Java(TM) 6 Update 7
{3B4E636E-9D65-4D67-BA61-189800823F52} -> Windows Live Communications Platform
{3E31821C-7917-367E-938E-E65FC413EA31} -> Microsoft .NET Framework 3.5 Language Pack SP1 - fra
{3FC7CBBC4C1E11DCA1A752EA55D89593} -> DivX Version Checker
{4634B21A-CC07-4396-890C-2B8168661FEA} -> Windows Live Writer
{46ABBC54-1872-4AA3-95E2-F2C063A63F31} -> Installation Windows Live
{4CBA3D4C-8F51-4D60-B27E-F6B641C571E7} -> Microsoft Search Enhancement Pack
{53B20C18-D8D4-4588-8737-9BBFE303C354} -> Windows Live Movie Maker
{55979C41-7D6A-49CC-B591-64AC1BBE2C8B} -> HP Picasso Media Center Add-In
{56C049BE-79E9-4502-BEA7-9754A3E60F9B} -> neroxml
{6009F2FC-EC56-4e28-B91C-0BA5104D6419} -> SF_CDA_Software
{66E6CE0C-5A1E-430C-B40A-0C90FF1804A8} -> eSupportQFolder
{67D3F1A0-A1F2-49b7-B9EE-011277B170CD} -> HPProductAssistant
{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4} -> Windows Media Player Firefox Plugin
{6B1CB38D-E2E4-4a30-933D-EFDEBA76AD9C} -> Microsoft Works
{6F5E2F4A-377D-4700-B0E3-8F7F7507EA15} -> CustomerResearchQFolder
{7299052b-02a4-4627-81f2-1818da5d550d} -> Microsoft Visual C++ 2005 Redistributable
{75E71ADD-042C-4F30-BFAC-A9EC42351313} -> Python 2.4.3
{767CC44C-9BBC-438D-BAD3-FD4595DD148B} -> VC80CRTRedist - 8.0.50727.762
{770657D0-A123-3C07-8E44-1C83EC895118} -> Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
{770F1BEC-2871-4E70-B837-FB8525FFA3B1} -> Windows Live Messenger
{7B63B2922B174135AFC0E1377DD81EC2} -> DivX Codec
{82C7B308-0BDD-49D8-8EA5-9CD3A3F9DF41} -> Windows Live Call
{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} -> Microsoft Silverlight
{8ADFC4160D694100B5B8A22DE9DCABD9} -> DivX Player
{95120000-00B9-0409-0000-0000000FF1CE} -> Microsoft Application Error Reporting
{9541FED0-327F-4DF0-8B96-EF57EF622F19} -> Sonic RecordNow!
{95D08F4E-DFC2-4ce3-ACB7-8C8E206217E9} -> MarketResearch
{9718521B-A345-4ad9-A52B-74D1435FB708} -> SF_CDA_ProductContext
{981DE354-9301-440f-AAFC-025AA2354A93} -> HP Deskjet & Photosmart Printer Driver Software 8.0.A
{993960EE-CA4D-443F-8F88-E24260DD5FD2} -> LG PC Suite
{A36CD345-625C-4d6c-B3E2-76E1248CB451} -> SolutionCenter
{A96E97134CA649888820BCDE5E300BBD} -> H.264 Decoder
{AAC389499AEF40428987B3D30CFC76C9} -> MKV Splitter
{AC76BA86-7AD7-1036-7B44-A90000000001} -> Adobe Reader 9 - Français
{AC96671C-2001-432C-9826-5266D84EF1DC} -> Logitech Webcam Software
{AEF9DC35ADDF4825B049ACBFD1C6EB37} -> AAC Decoder
{AF145F8997B44EE9B106D018EF1DB58B} -> DivX Converter Mobile
{B131E59D-202C-43C6-84C9-68F0C37541F1} -> Galerie de photos Windows Live
{BE77A81F-B315-4666-9BF3-AE70C0ADB057} -> BufferChm
{C3ABE126-2BB2-4246-BFE1-6797679B3579} -> LG USB Modem driver
{C3DC29BC-A8CF-4578-9DFC-37F049C44771} -> OcxSetup
{C716522C-3731-4667-8579-40B098294500} -> Toolbox
{CAE7D1D9-3794-4169-B4DD-964ADBC534EE} -> HP Product Detection
{CCEABD53-C30B-4556-9A71-148B7C178858} -> A310
{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} -> Microsoft .NET Framework 3.5 SP1
{D2D7529F-6B55-4C1C-BC9C-D6F1BCC066B6} -> Ma-Config.com plugin
{DC9A14D9-EC38-4BF4-B529-A69D91D0DEDA} -> HOT ALBUM MYBOX
{DCE8CD14-FBF5-4464-B9A4-E18E473546C7} -> Assistant de connexion Windows Live
OTS logfile created on: 13/11/2009 19:50:01 - Run 1
OTS by OldTimer - Version 3.1.5.0 Folder = C:\Users\salut ma amour\Desktop
Windows Vista Home Basic Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18828)
Locale: 0000040C | Country: France | Language: FRA | Date Format: dd/MM/yyyy
893,82 Mb Total Physical Memory | 204,59 Mb Available Physical Memory | 22,89% Memory free
2,00 Gb Paging File | 0,63 Gb Available in Paging File | 31,50% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 228,18 Gb Total Space | 100,56 Gb Free Space | 44,07% Space Free | Partition Type: NTFS
Drive D: | 4,71 Gb Total Space | 4,66 Gb Free Space | 98,93% Space Free | Partition Type: NTFS
Drive E: | 540,15 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: NOUS
Current User Name: salut ma amour
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
[Processes - Safe List]
ots.exe -> C:\Users\salut ma amour\Desktop\OTS.exe -> [2009/11/13 18:45:34 | 00,525,824 | ---- | M] (OldTimer Tools)
sched.exe -> C:\Program Files\Avira\AntiVir Desktop\sched.exe -> [2009/11/09 15:24:53 | 00,108,289 | ---- | M] (Avira GmbH)
avguard.exe -> C:\Program Files\Avira\AntiVir Desktop\avguard.exe -> [2009/11/09 15:24:52 | 00,185,089 | ---- | M] (Avira GmbH)
iexplore.exe -> C:\Program Files\Internet Explorer\iexplore.exe -> [2009/08/27 06:23:17 | 00,638,232 | ---- | M] (Microsoft Corporation)
iexplore.exe -> C:\Program Files\Internet Explorer\iexplore.exe -> [2009/08/27 06:23:17 | 00,638,232 | ---- | M] (Microsoft Corporation)
iexplore.exe -> C:\Program Files\Internet Explorer\iexplore.exe -> [2009/08/27 06:23:17 | 00,638,232 | ---- | M] (Microsoft Corporation)
iexplore.exe -> C:\Program Files\Internet Explorer\iexplore.exe -> [2009/08/27 06:23:17 | 00,638,232 | ---- | M] (Microsoft Corporation)
iexplore.exe -> C:\Program Files\Internet Explorer\iexplore.exe -> [2009/08/27 06:23:17 | 00,638,232 | ---- | M] (Microsoft Corporation)
iexplore.exe -> C:\Program Files\Internet Explorer\iexplore.exe -> [2009/08/27 06:23:17 | 00,638,232 | ---- | M] (Microsoft Corporation)
iexplore.exe -> C:\Program Files\Internet Explorer\iexplore.exe -> [2009/08/27 06:23:17 | 00,638,232 | ---- | M] (Microsoft Corporation)
iexplore.exe -> C:\Program Files\Internet Explorer\iexplore.exe -> [2009/08/27 06:23:17 | 00,638,232 | ---- | M] (Microsoft Corporation)
msfeedssync.exe -> C:\Windows\System32\msfeedssync.exe -> [2009/08/27 04:41:45 | 00,013,312 | ---- | M] (Microsoft Corporation)
msnmsgr.exe -> C:\Program Files\Windows Live\Messenger\msnmsgr.exe -> [2009/07/26 16:44:52 | 03,883,856 | ---- | M] (Microsoft Corporation)
flashutil10c.exe -> C:\Windows\System32\Macromed\Flash\FlashUtil10c.exe -> [2009/07/18 04:12:12 | 00,257,440 | R--- | M] (Adobe Systems, Inc.)
seaport.exe -> C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe -> [2009/05/19 10:36:18 | 00,240,512 | ---- | M] (Microsoft Corporation)
lvprcsrv.exe -> C:\Program Files\Common Files\logishrd\LVMVFM\LVPrcSrv.exe -> [2009/04/30 15:01:10 | 00,154,136 | ---- | M] (Logitech Inc.)
explorer.exe -> C:\Windows\explorer.exe -> [2009/04/11 07:27:36 | 02,926,592 | ---- | M] (Microsoft Corporation)
conime.exe -> C:\Windows\System32\conime.exe -> [2009/04/11 07:27:28 | 00,069,120 | ---- | M] (Microsoft Corporation)
infocard.exe -> C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe -> [2009/02/18 19:38:42 | 00,879,448 | ---- | M] (Microsoft Corporation)
wlcsdk.exe -> C:\Program Files\Windows Live\Messenger\wlcsdk.exe -> [2009/02/06 18:21:00 | 00,583,024 | ---- | M] (Microsoft Corporation)
wlcomm.exe -> C:\Program Files\Windows Live\Contacts\wlcomm.exe -> [2009/02/06 17:07:48 | 00,027,512 | ---- | M] (Microsoft Corporation)
shoutcasttbserver.exe -> c:\Program Files\SHOUTcast Radio Toolbar\shoutcasttbServer.exe -> [2008/09/17 16:24:34 | 00,140,584 | ---- | M] (AOL LLC)
nvvsvc.exe -> C:\Windows\System32\nvvsvc.exe -> [2008/05/22 13:49:00 | 00,118,784 | ---- | M] (NVIDIA Corporation)
wmpnetwk.exe -> C:\Program Files\Windows Media Player\wmpnetwk.exe -> [2008/01/19 08:33:39 | 00,896,512 | ---- | M] (Microsoft Corporation)
wmpnscfg.exe -> C:\Program Files\Windows Media Player\wmpnscfg.exe -> [2008/01/19 08:33:39 | 00,202,240 | ---- | M] (Microsoft Corporation)
mediacenter.exe -> C:\Program Files\Neuf\Media Center\MediaCenter.exe -> [2007/10/15 16:57:20 | 01,025,264 | ---- | M] (Neuf)
httpd.exe -> C:\Program Files\Neuf\Media Center\httpd\httpd.exe -> [2007/09/05 07:59:02 | 00,024,635 | ---- | M] (Apache Software Foundation)
httpd.exe -> C:\Program Files\Neuf\Media Center\httpd\httpd.exe -> [2007/09/05 07:59:02 | 00,024,635 | ---- | M] (Apache Software Foundation)
[Modules - Safe List]
ots.exe -> C:\Users\salut ma amour\Desktop\OTS.exe -> [2009/11/13 18:45:34 | 00,525,824 | ---- | M] (OldTimer Tools)
comctl32.dll -> C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6002.18005_none_5cb72f96088b0de0\comctl32.dll -> [2009/04/11 07:21:38 | 01,686,016 | ---- | M] (Microsoft Corporation)
[Win32 Services - Safe List]
(Symantec Core LC) Symantec Core LC [Disabled | Stopped] -> -> File not found
(stllssvr) stllssvr [On_Demand | Stopped] -> -> File not found
(Planificateur LiveUpdate automatique) Planificateur LiveUpdate automatique [Auto | Stopped] -> -> File not found
(AntiVirSchedulerService) Avira AntiVir Planificateur [Auto | Running] -> C:\Program Files\Avira\AntiVir Desktop\sched.exe -> [2009/11/09 15:24:53 | 00,108,289 | ---- | M] (Avira GmbH)
(AntiVirService) Avira AntiVir Guard [Auto | Running] -> C:\Program Files\Avira\AntiVir Desktop\avguard.exe -> [2009/11/09 15:24:52 | 00,185,089 | ---- | M] (Avira GmbH)
(SeaPort) SeaPort [Auto | Running] -> C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe -> [2009/05/19 10:36:18 | 00,240,512 | ---- | M] (Microsoft Corporation)
(LVPrcSrv) Process Monitor [Auto | Running] -> C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe -> [2009/04/30 15:01:10 | 00,154,136 | ---- | M] (Logitech Inc.)
(clr_optimization_v2.0.50727_32) Microsoft .NET Framework NGEN v2.0.50727_X86 [On_Demand | Stopped] -> C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -> [2009/03/30 05:42:14 | 00,066,368 | ---- | M] (Microsoft Corporation)
(FontCache3.0.0.0) Cache de police de Windows Presentation Foundation 3.0.0.0 [On_Demand | Stopped] -> C:\Windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe -> [2009/02/18 19:39:20 | 00,043,904 | ---- | M] (Microsoft Corporation)
(NetTcpPortSharing) Service de partage de ports Net.Tcp [On_Demand | Stopped] -> C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe -> [2009/02/18 19:38:43 | 00,129,880 | ---- | M] (Microsoft Corporation)
(idsvc) Windows CardSpace [Unknown | Running] -> C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe -> [2009/02/18 19:38:42 | 00,879,448 | ---- | M] (Microsoft Corporation)
(nvsvc) NVIDIA Display Driver Service [Auto | Running] -> C:\Windows\System32\nvvsvc.exe -> [2008/05/22 13:49:00 | 00,118,784 | ---- | M] (NVIDIA Corporation)
(WinDefend) Windows Defender [On_Demand | Stopped] -> C:\Program Files\Windows Defender\MpSvc.dll -> [2008/01/19 08:38:24 | 00,272,952 | ---- | M] (Microsoft Corporation)
(WcesComm) Connectivité de l'appareil Windows Mobile 2003 [On_Demand | Stopped] -> C:\Windows\WindowsMobile\wcescomm.dll -> [2008/01/19 08:36:49 | 00,365,568 | ---- | M] (Microsoft Corporation)
(RapiMgr) Connectivité de l'appareil Windows Mobile [On_Demand | Stopped] -> C:\Windows\WindowsMobile\rapimgr.dll -> [2008/01/19 08:36:15 | 00,167,936 | ---- | M] (Microsoft Corporation)
(WMPNetworkSvc) Service Partage réseau du Lecteur Windows Media [Auto | Running] -> C:\Program Files\Windows Media Player\wmpnetwk.exe -> [2008/01/19 08:33:39 | 00,896,512 | ---- | M] (Microsoft Corporation)
(hpqcxs08) hpqcxs08 [On_Demand | Running] -> C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqcxs08.dll -> [2007/02/28 02:00:14 | 00,225,280 | ---- | M] (Hewlett-Packard Co.)
(hpqddsvc) Service HP CUE DeviceDiscovery [Auto | Running] -> C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqddsvc.dll -> [2007/02/28 02:00:14 | 00,131,072 | ---- | M] (Hewlett-Packard Co.)
(Pml Driver HPZ12) Pml Driver HPZ12 [Auto | Running] -> C:\Windows\System32\HPZipm12.dll -> [2006/11/08 16:35:38 | 00,053,248 | ---- | M] (Hewlett-Packard)
(Net Driver HPZ12) Net Driver HPZ12 [Auto | Running] -> C:\Windows\System32\HPZinw12.dll -> [2006/11/08 16:35:36 | 00,043,520 | ---- | M] (Hewlett-Packard)
[Driver Services - Safe List]
(avgntflt) avgntflt [File_System | Auto | Running] -> C:\Windows\System32\drivers\avgntflt.sys -> [2009/11/09 15:24:53 | 00,055,656 | ---- | M] (Avira GmbH)
(ssmdrv) ssmdrv [Kernel | System | Running] -> C:\Windows\System32\drivers\ssmdrv.sys -> [2009/11/09 15:24:53 | 00,028,520 | ---- | M] (Avira GmbH)
(NCHSSVAD) SoundTap Recorder [Kernel | On_Demand | Stopped] -> C:\Windows\System32\drivers\nchssvad.sys -> [2009/09/03 10:01:21 | 00,027,136 | ---- | M] (NCH Swift Sound)
(IntcAzAudAddService) Service for Realtek HD Audio (WDM) [Kernel | On_Demand | Running] -> C:\Windows\System32\drivers\RTKVHDA.sys -> [2009/08/04 08:48:20 | 02,744,800 | ---- | M] (Realtek Semiconductor Corp.)
(NuidFltr) NUID filter driver [Kernel | On_Demand | Running] -> C:\Windows\System32\drivers\nuidfltr.sys -> [2009/05/09 00:14:20 | 00,014,736 | ---- | M] (Microsoft Corporation)
(LVRS) Logitech RightSound Filter Driver [Kernel | On_Demand | Running] -> C:\Windows\System32\drivers\lvrs.sys -> [2009/04/30 22:01:36 | 00,265,496 | ---- | M] (Logitech Inc.)
(PID_PEPI) Logitech QuickCam IM(PID_PEPI) [Kernel | On_Demand | Running] -> C:\Windows\System32\drivers\LV302V32.SYS -> [2009/04/30 21:55:58 | 02,687,512 | ---- | M] (Logitech Inc.)
(pepifilter) Volume Adapter [Kernel | On_Demand | Running] -> C:\Windows\System32\drivers\lv302af.sys -> [2009/04/30 21:55:34 | 00,013,976 | ---- | M] (Logitech Inc.)
(LVPr2Mon) LVPr2Mon Driver [Kernel | On_Demand | Running] -> C:\Windows\System32\drivers\LVPr2Mon.sys -> [2009/04/30 15:00:12 | 00,025,624 | ---- | M] ()
(usbaudio) Pilote USB audio (WDM) [Kernel | On_Demand | Running] -> C:\Windows\System32\drivers\USBAUDIO.sys -> [2009/04/11 05:42:54 | 00,073,216 | ---- | M] (Microsoft Corporation)
(winusb) WinUSB Service [Kernel | On_Demand | Stopped] -> C:\Windows\System32\drivers\winusb.sys -> [2009/04/11 05:42:52 | 00,031,616 | ---- | M] (Microsoft Corporation)
(avipbb) avipbb [Kernel | System | Running] -> C:\Windows\System32\drivers\avipbb.sys -> [2009/03/30 10:32:47 | 00,096,104 | ---- | M] (Avira GmbH)
(avgio) avgio [Kernel | System | Running] -> C:\Program Files\Avira\AntiVir Desktop\avgio.sys -> [2009/02/13 12:34:33 | 00,011,608 | ---- | M] (Avira GmbH)
(LVUSBSta) Logitech USB Monitor Filter [Kernel | On_Demand | Running] -> C:\Windows\System32\drivers\LVUSBSta.sys -> [2008/12/17 07:01:20 | 00,041,752 | ---- | M] (Logitech Inc.)
(WsAudioDevice_383) WsAudioDevice_383 [Kernel | On_Demand | Stopped] -> C:\Windows\System32\drivers\WsAudioDevice_383.sys -> [2008/11/19 08:41:08 | 00,016,640 | ---- | M] (Wondershare)
(nvlddmkm) nvlddmkm [Kernel | On_Demand | Running] -> C:\Windows\System32\drivers\nvlddmkm.sys -> [2008/05/22 13:49:00 | 07,465,312 | ---- | M] (NVIDIA Corporation)
(PzWDM) PzWDM [Kernel | Boot | Running] -> C:\Windows\system32\Drivers\PzWDM.sys -> [2007/12/24 16:09:06 | 00,015,172 | ---- | M] (Prassi Technology)
(nvstor32) nvstor32 [Kernel | Boot | Running] -> C:\Windows\system32\DRIVERS\nvstor32.sys -> [2007/10/26 18:51:22 | 00,110,624 | ---- | M] (NVIDIA Corporation)
(UsbDiag) LGE Mobile USB Serial Port [Kernel | On_Demand | Stopped] -> C:\Windows\System32\drivers\lgusbdiag.sys -> [2007/07/11 14:51:48 | 00,019,840 | ---- | M] (LG Electronics Inc.)
(USBModem) LGE Mobile USB Modem [Kernel | On_Demand | Stopped] -> C:\Windows\System32\drivers\lgusbmodem.sys -> [2007/07/11 09:45:00 | 00,021,632 | ---- | M] (LG Electronics Inc.)
(usbbus) LGE Mobile Composite USB Device [Kernel | On_Demand | Stopped] -> C:\Windows\System32\drivers\lgusbbus.sys -> [2007/07/11 09:40:18 | 00,012,416 | ---- | M] (LG Electronics Inc.)
(NVENETFD) NVIDIA nForce Networking Controller Driver [Kernel | On_Demand | Running] -> C:\Windows\System32\drivers\nvmfdx32.sys -> [2007/05/03 17:29:10 | 01,065,384 | ---- | M] (NVIDIA Corporation)
(BTWUSB) WIDCOMM USB Bluetooth Driver [Kernel | On_Demand | Stopped] -> C:\Windows\System32\drivers\btwusb.sys -> [2007/02/25 05:01:12 | 00,057,320 | ---- | M] (Broadcom Corporation.)
(Point32) Microsoft IntelliPoint Filter Driver [Kernel | On_Demand | Running] -> C:\Windows\System32\drivers\point32k.sys -> [2006/11/08 08:02:40 | 00,024,064 | ---- | M] (Microsoft Corporation)
(ql2300) QLogic Fibre Channel Miniport Driver [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\ql2300.sys -> [2006/11/02 10:51:45 | 00,900,712 | ---- | M] (QLogic Corporation)
(adp94xx) adp94xx [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\adp94xx.sys -> [2006/11/02 10:51:38 | 00,420,968 | ---- | M] (Adaptec, Inc.)
(elxstor) elxstor [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\elxstor.sys -> [2006/11/02 10:51:34 | 00,316,520 | ---- | M] (Emulex)
(adpahci) adpahci [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\adpahci.sys -> [2006/11/02 10:51:32 | 00,297,576 | ---- | M] (Adaptec, Inc.)
(uliahci) uliahci [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\uliahci.sys -> [2006/11/02 10:51:25 | 00,235,112 | ---- | M] (ULi Electronics Inc.)
(iaStorV) Intel RAID Controller Vista [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\iastorv.sys -> [2006/11/02 10:51:25 | 00,232,040 | ---- | M] (Intel Corporation)
(adpu320) adpu320 [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\adpu320.sys -> [2006/11/02 10:51:00 | 00,147,048 | ---- | M] (Adaptec, Inc.)
(ulsata2) ulsata2 [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\ulsata2.sys -> [2006/11/02 10:50:45 | 00,115,816 | ---- | M] (Promise Technology, Inc.)
(vsmraid) vsmraid [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\vsmraid.sys -> [2006/11/02 10:50:41 | 00,112,232 | ---- | M] (VIA Technologies Inc.,Ltd)
(ql40xx) QLogic iSCSI Miniport Driver [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\ql40xx.sys -> [2006/11/02 10:50:35 | 00,106,088 | ---- | M] (QLogic Corporation)
(UlSata) UlSata [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\ulsata.sys -> [2006/11/02 10:50:35 | 00,098,408 | ---- | M] (Promise Technology, Inc.)
(adpu160m) adpu160m [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\adpu160m.sys -> [2006/11/02 10:50:35 | 00,098,408 | ---- | M] (Adaptec, Inc.)
(nvraid) nvraid [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\nvraid.sys -> [2006/11/02 10:50:24 | 00,088,680 | ---- | M] (NVIDIA Corporation)
(nfrd960) nfrd960 [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\nfrd960.sys -> [2006/11/02 10:50:19 | 00,045,160 | ---- | M] (IBM Corporation)
(iirsp) iirsp [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\iirsp.sys -> [2006/11/02 10:50:17 | 00,041,576 | ---- | M] (Intel Corp./ICP vortex GmbH)
(SiSRaid4) SiSRaid4 [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\sisraid4.sys -> [2006/11/02 10:50:16 | 00,071,784 | ---- | M] (Silicon Integrated Systems)
(nvstor) nvstor [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\nvstor.sys -> [2006/11/02 10:50:13 | 00,040,040 | ---- | M] (NVIDIA Corporation)
(aic78xx) aic78xx [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\djsvs.sys -> [2006/11/02 10:50:11 | 00,071,272 | ---- | M] (Adaptec, Inc.)
(arcsas) arcsas [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\arcsas.sys -> [2006/11/02 10:50:10 | 00,067,688 | ---- | M] (Adaptec, Inc.)
(LSI_SCSI) LSI_SCSI [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\lsi_scsi.sys -> [2006/11/02 10:50:10 | 00,065,640 | ---- | M] (LSI Logic)
(SiSRaid2) SiSRaid2 [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\sisraid2.sys -> [2006/11/02 10:50:10 | 00,038,504 | ---- | M] (Silicon Integrated Systems Corp.)
(HpCISSs) HpCISSs [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\hpcisss.sys -> [2006/11/02 10:50:10 | 00,037,480 | ---- | M] (Hewlett-Packard Company)
(arc) arc [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\arc.sys -> [2006/11/02 10:50:09 | 00,067,688 | ---- | M] (Adaptec, Inc.)
(iteraid) ITERAID_Service_Install [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\iteraid.sys -> [2006/11/02 10:50:09 | 00,035,944 | ---- | M] (Integrated Technology Express, Inc.)
(iteatapi) ITEATAPI_Service_Install [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\iteatapi.sys -> [2006/11/02 10:50:07 | 00,035,944 | ---- | M] (Integrated Technology Express, Inc.)
(LSI_SAS) LSI_SAS [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\lsi_sas.sys -> [2006/11/02 10:50:05 | 00,065,640 | ---- | M] (LSI Logic)
(Symc8xx) Symc8xx [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\symc8xx.sys -> [2006/11/02 10:50:05 | 00,035,944 | ---- | M] (LSI Logic)
(LSI_FC) LSI_FC [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\lsi_fc.sys -> [2006/11/02 10:50:04 | 00,065,640 | ---- | M] (LSI Logic)
(Sym_u3) Sym_u3 [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\sym_u3.sys -> [2006/11/02 10:50:03 | 00,034,920 | ---- | M] (LSI Logic)
(Mraid35x) Mraid35x [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\mraid35x.sys -> [2006/11/02 10:49:59 | 00,033,384 | ---- | M] (LSI Logic Corporation)
(Sym_hi) Sym_hi [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\sym_hi.sys -> [2006/11/02 10:49:56 | 00,031,848 | ---- | M] (LSI Logic)
(megasas) megasas [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\megasas.sys -> [2006/11/02 10:49:53 | 00,028,776 | ---- | M] (LSI Logic Corporation)
(viaide) viaide [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\viaide.sys -> [2006/11/02 10:49:30 | 00,017,512 | ---- | M] (VIA Technologies, Inc.)
(cmdide) cmdide [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\cmdide.sys -> [2006/11/02 10:49:28 | 00,016,488 | ---- | M] (CMD Technology, Inc.)
(aliide) aliide [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\aliide.sys -> [2006/11/02 10:49:20 | 00,014,952 | ---- | M] (Acer Laboratories Inc.)
(Brserid) Brother MFC Serial Port Interface Driver (WDM) [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\brserid.sys -> [2006/11/02 09:25:24 | 00,071,808 | ---- | M] (Brother Industries Ltd.)
(BrUsbSer) Brother MFC USB Serial WDM Driver [Kernel | On_Demand | Stopped] -> C:\Windows\system32\drivers\brusbser.sys -> [2006/11/02 09:24:47 | 00,011,904 | ---- | M] (Brother Industries Ltd.)
(BrFiltUp) Brother USB Mass-Storage Upper Filter Driver [Kernel | On_Demand | Stopped] -> C:\Windows\system32\drivers\brfiltup.sys -> [2006/11/02 09:24:46 | 00,005,248 | ---- | M] (Brother Industries, Ltd.)
(BrFiltLo) Brother USB Mass-Storage Lower Filter Driver [Kernel | On_Demand | Stopped] -> C:\Windows\system32\drivers\brfiltlo.sys -> [2006/11/02 09:24:45 | 00,013,568 | ---- | M] (Brother Industries, Ltd.)
(BrSerWdm) Brother WDM Serial driver [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\brserwdm.sys -> [2006/11/02 09:24:44 | 00,062,336 | ---- | M] (Brother Industries Ltd.)
(BrUsbMdm) Brother MFC USB Fax Only Modem [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\brusbmdm.sys -> [2006/11/02 09:24:44 | 00,012,160 | ---- | M] (Brother Industries Ltd.)
(ntrigdigi) N-trig HID Tablet Driver [Kernel | Disabled | Stopped] -> C:\Windows\system32\drivers\ntrigdigi.sys -> [2006/11/02 08:36:50 | 00,020,608 | ---- | M] (N-trig Innovative Technologies)
(E1G60) Intel(R) PRO/1000 NDIS 6 Adapter Driver [Kernel | On_Demand | Stopped] -> C:\Windows\System32\drivers\E1G60I32.sys -> [2006/11/02 08:30:54 | 00,117,760 | ---- | M] (Intel Corporation)
(secdrv) Security Driver [Kernel | Auto | Running] -> C:\Windows\System32\drivers\secdrv.sys -> [2006/11/02 07:37:21 | 00,020,480 | ---- | M] (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.)
(Ps2) Ps2 [Kernel | On_Demand | Running] -> C:\Windows\System32\drivers\PS2.sys -> [2005/12/12 17:27:00 | 00,019,072 | ---- | M] (Hewlett-Packard Company)
(PxHelp20) PxHelp20 [Kernel | Boot | Running] -> C:\Windows\System32\Drivers\PxHelp20.sys -> [2005/10/26 21:12:48 | 00,020,640 | ---- | M] (Sonic Solutions)
(BlueletAudio) Bluetooth Audio Service [Kernel | On_Demand | Stopped] -> C:\Windows\System32\drivers\blueletaudio.sys -> [2005/05/31 15:40:20 | 00,020,480 | ---- | M] (IVT Corporation)
(BTHidEnum) Bluetooth HID Enumerator [Kernel | On_Demand | Stopped] -> C:\Windows\System32\drivers\VBTEnum.sys -> [2005/04/30 14:50:20 | 00,011,860 | ---- | M] ()
(BTHidMgr) Bluetooth HID Manager Service [Kernel | Boot | Running] -> C:\Windows\System32\Drivers\BTHidMgr.sys -> [2005/04/30 14:50:10 | 00,028,271 | ---- | M] (IVT Corporation)
(BT) Bluetooth PAN Network Adapter [Kernel | On_Demand | Stopped] -> C:\Windows\System32\drivers\BtNetDrv.sys -> [2005/04/30 14:48:58 | 00,010,804 | ---- | M] (IVT Corporation)
(SQTECH905C) DualCamera [Kernel | On_Demand | Stopped] -> C:\Windows\System32\drivers\Capt905c.sys -> [2005/03/24 16:21:22 | 00,038,937 | ---- | M] (Service & Quality Technology.)
[Registry - Safe List]
< Internet Explorer Settings [HKEY_LOCAL_MACHINE\] > -> ->
HKEY_LOCAL_MACHINE\: Main\\"Default_Page_URL" -> http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome ->
HKEY_LOCAL_MACHINE\: Main\\"Default_Search_URL" -> http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch ->
HKEY_LOCAL_MACHINE\: Main\\"Default_Secondary_Page_URL" -> [binary data] ->
HKEY_LOCAL_MACHINE\: Main\\"Extensions Off Page" -> about:NoAdd-ons ->
HKEY_LOCAL_MACHINE\: Main\\"Local Page" -> C:\Windows\System32\blank.htm ->
HKEY_LOCAL_MACHINE\: Main\\"Search Page" -> http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch ->
HKEY_LOCAL_MACHINE\: Main\\"Secondary Start Pages" -> [Binary data over 100 bytes] ->
HKEY_LOCAL_MACHINE\: Main\\"Security Risk Page" -> about:SecurityRisk ->
HKEY_LOCAL_MACHINE\: Main\\"Start Page" -> https://www.msn.com/fr-fr ->
HKEY_LOCAL_MACHINE\: Search\\"SearchAssistant" -> https://www.bing.com/?toHttps=1&redig=8F3F334EA60E4B1CB4D040DCFE393A89{SUB_RFC1766}/srchasst/srchasst.htm ->
HKEY_LOCAL_MACHINE\: URLSearchHooks\\"{14f0d511-36a2-41ca-ae01-ba4f87282c97}" [HKLM] -> C:\Program Files\SHOUTcast Radio Toolbar\shoutcasttb.dll [SHOUTcast Toolbar Search Class] -> [2008/09/17 16:24:32 | 01,275,176 | ---- | M] (AOL LLC)
< Internet Explorer Settings [HKEY_CURRENT_USER\] > -> ->
HKEY_CURRENT_USER\: Main\\"Default_Page_URL" -> http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome ->
HKEY_CURRENT_USER\: Main\\"Default_search_url" -> http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch ->
HKEY_CURRENT_USER\: Main\\"Local Page" -> C:\Windows\system32\blank.htm ->
HKEY_CURRENT_USER\: Main\\"Page_Transitions" -> 1 ->
HKEY_CURRENT_USER\: Main\\"Search Page" -> https://www.msn.com/fr-fr/?redirfallthru=http%3a%2f%2fhome.microsoft.com%2fintl%2fbr%2faccess%2fallinone.asp%3f ->
HKEY_CURRENT_USER\: Main\\"Start Page" -> https://www.msn.com/fr-fr ->
HKEY_CURRENT_USER\: Main\\"StartPageCache" -> 1 ->
HKEY_CURRENT_USER\: Search\\"AutoSearch" -> https://www.bing.com/?toHttps=1&redig=8F3F334EA60E4B1CB4D040DCFE393A89{SUB_RFC1766}/srchasst/saautosearch.aspx ->
HKEY_CURRENT_USER\: Search\\"CustomizeSearch" -> https://www.bing.com/?toHttps=1&redig=8F3F334EA60E4B1CB4D040DCFE393A89{SUB_RFC1766}/srchasst/srchcust.htm ->
HKEY_CURRENT_USER\: Search\\"SearchAssistant" -> http://www.google.com/toolbar/ie8/sidebar.html ->
HKEY_CURRENT_USER\: SearchURL\\"" -> http://home.microsoft.com/access/autosearch.asp?p=%s ->
HKEY_CURRENT_USER\: "ProxyEnable" -> 0 ->
< FireFox Settings [Prefs.js] > -> C:\Users\salut ma amour\AppData\Roaming\Mozilla\FireFox\Profiles\vvcy3nt1.default\prefs.js ->
browser.search.defaulturl -> "https://www.google.com/webhp?lr=&ie=UTF-8&oe=UTF-8&gws_rd=ssl" ->
browser.search.useDBForOrder -> true ->
browser.startup.homepage -> "http://www.google" ->
extensions.enabledItems -> {fce36c1e-58d8-498a-b2a5-66ad1cedebbb}:0.76 ->
extensions.enabledItems -> firegestures@xuldev.org:1.5 ->
extensions.enabledItems -> {CAFEEFAC-0016-0000-0004-ABCDEFFEDCBA}:6.0.04 ->
extensions.enabledItems -> {CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA}:6.0.11 ->
extensions.enabledItems -> {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}:6.0.07 ->
extensions.enabledItems -> {CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}:6.0.13 ->
extensions.enabledItems -> {B13721C7-F507-4982-B2E5-502A71474FED}:2.2.0.87 ->
extensions.enabledItems -> web@veoh.com:1.4 ->
extensions.enabledItems -> {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.0.11 ->
keyword.URL -> "" ->
< FireFox Settings [User.js] > -> C:\Users\salut ma amour\AppData\Roaming\Mozilla\FireFox\Profiles\vvcy3nt1.default\user.js ->
< FireFox Extensions [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Mozilla
HKLM\software\mozilla\Firefox\Extensions -> ->
HKLM\software\mozilla\Firefox\Extensions\\{3112ca9c-de6d-4884-a869-9855de68056c} -> C:\PROGRAMDATA\MOZILLA\FIREFOX EXTENSIONS\{3112CA9C-DE6D-4884-A869-9855DE68056C} ->
HKLM\software\mozilla\Firefox\Extensions\\{20a82645-c095-46ed-80e3-08825760534b} -> C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V3.5\WINDOWS PRESENTATION FOUNDATION\DOTNETASSISTANTEXTENSION\ [C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V3.5\WINDOWS PRESENTATION FOUNDATION\DOTNETASSISTANTEXTENSION\] -> [2009/09/18 17:38:12 | 00,000,000 | ---D | M]
< FireFox Extensions [User Folders] > ->
-> C:\Users\salut ma amour\AppData\Roaming\mozilla\Extensions -> [2009/05/27 10:05:30 | 00,000,000 | ---D | M]
-> C:\Users\salut ma amour\AppData\Roaming\mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384} -> [2008/08/26 15:19:44 | 00,000,000 | ---D | M]
-> C:\Users\salut ma amour\AppData\Roaming\mozilla\Extensions\mozswing@mozswing.org -> [2009/05/27 10:05:30 | 00,000,000 | ---D | M]
-> C:\Users\salut ma amour\AppData\Roaming\mozilla\Firefox\Profiles\vvcy3nt1.default\extensions -> [2009/09/15 19:27:56 | 00,000,000 | ---D | M]
-> C:\Users\salut ma amour\AppData\Roaming\mozilla\Firefox\Profiles\vvcy3nt1.default\extensions\{097d3191-e6fa-4728-9826-b533d755359d}(614) -> [2008/06/25 20:32:41 | 00,000,000 | ---D | M]
-> C:\Users\salut ma amour\AppData\Roaming\mozilla\Firefox\Profiles\vvcy3nt1.default\extensions\{0b38152b-1b20-484d-a11f-5e04a9b0661f} -> [2009/09/15 19:27:56 | 00,000,000 | ---D | M]
-> C:\Users\salut ma amour\AppData\Roaming\mozilla\Firefox\Profiles\vvcy3nt1.default\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1} -> [2008/08/05 14:39:16 | 00,000,000 | ---D | M]
-> C:\Users\salut ma amour\AppData\Roaming\mozilla\Firefox\Profiles\vvcy3nt1.default\extensions\{9A752782-D706-479b-98F8-3F66BF921692}(615) -> [2008/06/23 14:15:51 | 00,000,000 | ---D | M]
-> C:\Users\salut ma amour\AppData\Roaming\mozilla\Firefox\Profiles\vvcy3nt1.default\extensions\{fce36c1e-58d8-498a-b2a5-66ad1cedebbb} -> [2008/12/28 21:26:19 | 00,000,000 | ---D | M]
-> C:\Users\salut ma amour\AppData\Roaming\mozilla\Firefox\Profiles\vvcy3nt1.default\extensions\firegestures@xuldev.org -> [2009/06/12 12:32:29 | 00,000,000 | ---D | M]
-> C:\Users\salut ma amour\AppData\Roaming\mozilla\Firefox\Profiles\vvcy3nt1.default\extensions\fr-FR@dictionaries.addons.mozilla.org -> [2008/08/27 17:49:17 | 00,000,000 | ---D | M]
-> C:\Users\salut ma amour\AppData\Roaming\mozilla\Firefox\Profiles\vvcy3nt1.default\extensions\splash@aldreneo(613).com -> [2008/06/23 14:15:51 | 00,000,000 | ---D | M]
-> C:\Users\salut ma amour\AppData\Roaming\mozilla\Firefox\Profiles\vvcy3nt1.default\extensions\staged-xpis -> [2009/06/12 12:32:29 | 00,000,000 | ---D | M]
< FireFox SearchPlugins [User Folders] > ->
live-search.xml -> C:\Users\salut ma amour\AppData\Roaming\Mozilla\FireFox\Profiles\vvcy3nt1.default\searchplugins\live-search.xml -> [2008/02/17 12:21:55 | 00,001,825 | ---- | M] ()
< HOSTS File > (244116 bytes and 8571 lines) -> C:\Windows\System32\drivers\etc\hosts ->
First 25 entries...
Reset Hosts
127.0.0.1 localhost
::1 localhost
127.0.0.1 007guard.com
127.0.0.1 www.007guard.com
127.0.0.1 008i.com
127.0.0.1 008k.com
127.0.0.1 www.008k.com
127.0.0.1 00hq.com
127.0.0.1 www.00hq.com
127.0.0.1 010402.com
127.0.0.1 032439.com
127.0.0.1 www.032439.com
127.0.0.1 1001-search.info
127.0.0.1 www.1001-search.info
127.0.0.1 100888290cs.com
127.0.0.1 www.100888290cs.com
127.0.0.1 100sexlinks.com
127.0.0.1 www.100sexlinks.com
127.0.0.1 10sek.com
127.0.0.1 www.10sek.com
127.0.0.1 123topsearch.com
127.0.0.1 www.123topsearch.com
127.0.0.1 132.com
127.0.0.1 www.132.com
< BHO's [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\ ->
{18DF081C-E8AD-4283-A596-FA578C2EBDC3} [HKLM] -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [Adobe PDF Link Helper] -> [2008/06/11 22:33:16 | 00,075,128 | ---- | M] (Adobe Systems Incorporated)
{5C255C8A-E604-49b4-9D64-90988571CECB} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found
{6EBF7485-159F-4bff-A14F-B9E3AAC4465B} [HKLM] -> C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [Search Helper] -> [2009/05/19 10:36:18 | 00,137,600 | ---- | M] (Microsoft Corporation)
{9030D464-4C02-4ABF-8ECC-5164760863C6} [HKLM] -> C:\Program Files\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll [Programme d'aide de l'Assistant de connexion Windows Live] -> [2009/01/22 14:41:30 | 00,408,448 | ---- | M] (Microsoft Corporation)
{ccec60fc-2608-4e58-9659-3ffc159e8ea9} [HKLM] -> C:\Program Files\SHOUTcast Radio Toolbar\shoutcasttb.dll [SHOUTcast Loader] -> [2008/09/17 16:24:32 | 01,275,176 | ---- | M] (AOL LLC)
{DBC80044-A445-435b-BC74-9C25C1C588A9} [HKLM] -> C:\Program Files\Java\jre6\bin\jp2ssv.dll [Java(tm) Plug-In 2 SSV Helper] -> [2009/09/28 18:56:58 | 00,041,760 | ---- | M] (Sun Microsystems, Inc.)
< Internet Explorer ToolBars [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ToolBar ->
"{0457331d-8ca6-4f97-9c26-6a9ef2b2dba8}" [HKLM] -> C:\Program Files\SHOUTcast Radio Toolbar\shoutcasttb.dll [SHOUTcast Radio Toolbar] -> [2008/09/17 16:24:32 | 01,275,176 | ---- | M] (AOL LLC)
"{0FBB9689-D3D7-4f7a-A2E2-585B10099BFC}" [HKLM] -> C:\Program Files\Veoh Networks\VeohWebPlayer\VeohIEToolbar.dll [Veoh Web Player Video Finder] -> [2008/12/16 17:57:30 | 00,429,816 | ---- | M] (Veoh Networks Inc)
< Internet Explorer ToolBars [HKEY_CURRENT_USER\] > -> HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\ ->
WebBrowser\\"{0457331D-8CA6-4F97-9C26-6A9EF2B2DBA8}" [HKLM] -> C:\Program Files\SHOUTcast Radio Toolbar\shoutcasttb.dll [SHOUTcast Radio Toolbar] -> [2008/09/17 16:24:32 | 01,275,176 | ---- | M] (AOL LLC)
WebBrowser\\"{1D54967B-19A0-43BC-84DA-28D9AA2382F9}" [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found
WebBrowser\\"{21FA44EF-376D-4D53-9B0F-8A89D3229068}" [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found
WebBrowser\\"{35065594-9169-4A34-B167-FC4865038E53}" [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found
< Run [HKEY_CURRENT_USER\] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run ->
"msnmsgr" -> C:\Program Files\Windows Live\Messenger\msnmsgr.exe ["C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background] -> [2009/07/26 16:44:52 | 03,883,856 | ---- | M] (Microsoft Corporation)
"Neuf Media Center" -> C:\Program Files\Neuf\Media Center\MediaCenter.exe ["C:\Program Files\Neuf\Media Center\MediaCenter.exe"] -> [2007/10/15 16:57:20 | 01,025,264 | ---- | M] (Neuf)
"WMPNSCFG" -> C:\Program Files\Windows Media Player\wmpnscfg.exe [C:\Program Files\Windows Media Player\WMPNSCFG.exe] -> [2008/01/19 08:33:39 | 00,202,240 | ---- | M] (Microsoft Corporation)
< Software Policy Settings [HKEY_CURRENT_USER] > -> HKEY_CURRENT_USER\SOFTWARE\Policies\Microsoft\Internet Explorer ->
HKEY_CURRENT_USER\SOFTWARE\Policies\Microsoft\Internet Explorer
\\"Homepage" -> [0] -> File not found
< CurrentVersion Policy Settings - Explorer [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer
\\"BindDirectlyToPropertySetStorage" -> [0] -> File not found
\\"NoDriveAutoRun" -> [128] -> File not found
\\"NoDriveTypeAutoRun" -> [128] -> File not found
\\"HonorAutoRunSetting" -> [1] -> File not found
< CurrentVersion Policy Settings - System [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System
\\"ConsentPromptBehaviorAdmin" -> [2] -> File not found
\\"ConsentPromptBehaviorUser" -> [1] -> File not found
\\"EnableInstallerDetection" -> [1] -> File not found
\\"EnableSecureUIAPaths" -> [1] -> File not found
\\"EnableVirtualization" -> [1] -> File not found
\\"PromptOnSecureDesktop" -> [1] -> File not found
\\"ValidateAdminCodeSignatures" -> [0] -> File not found
\\"dontdisplaylastusername" -> [0] -> File not found
\\"legalnoticecaption" -> [] -> File not found
\\"legalnoticetext" -> [] -> File not found
\\"scforceoption" -> [0] -> File not found
\\"shutdownwithoutlogon" -> [1] -> File not found
\\"undockwithoutlogon" -> [1] -> File not found
\\"FilterAdministratorToken" -> [0] -> File not found
\\"EnableUIADesktopToggle" -> [0] -> File not found
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats
\UIPI\Clipboard\ExceptionFormats\\"CF_TEXT" -> [1] -> File not found
\UIPI\Clipboard\ExceptionFormats\\"CF_BITMAP" -> [2] -> File not found
\UIPI\Clipboard\ExceptionFormats\\"CF_OEMTEXT" -> [7] -> File not found
\UIPI\Clipboard\ExceptionFormats\\"CF_DIB" -> [8] -> File not found
\UIPI\Clipboard\ExceptionFormats\\"CF_PALETTE" -> [9] -> File not found
\UIPI\Clipboard\ExceptionFormats\\"CF_UNICODETEXT" -> [13] -> File not found
\UIPI\Clipboard\ExceptionFormats\\"CF_DIBV5" -> [17] -> File not found
< CurrentVersion Policy Settings - Explorer [HKEY_CURRENT_USER] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer ->
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer
\\"NoDriveAutoRun" -> [128] -> File not found
\\"NoDriveTypeAutoRun" -> [128] -> File not found
\\"HonorAutoRunSetting" -> [1] -> File not found
< CurrentVersion Policy Settings - System [HKEY_CURRENT_USER] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System ->
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System
\\"SetVisualStyle" -> C:\Windows\Resources\Themes\Crystal Clear Aero\Crystal Clear Aero.msstyles [C:\Windows\Resources\Themes\Crystal Clear Aero\Crystal Clear Aero.msstyles] -> [2006/05/19 12:31:44 | 04,747,264 | ---- | M] (CrystalXP.net)
< Internet Explorer Menu Extensions [HKEY_CURRENT_USER\] > -> HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\ ->
&SHOUTcast Search -> C:\ProgramData\SHOUTcast Radio Toolbar\ieToolbar\resources\en-US\local\search.html [C:\ProgramData\SHOUTcast Radio Toolbar\ieToolbar\resources\en-US\local\search.html] -> [2008/05/22 15:44:38 | 00,000,747 | ---- | M] ()
< Internet Explorer Extensions [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\ ->
{219C3416-8CB2-491a-A3C7-D9FCDDC9D600}:{5F7B1267-94A9-47F5-98DB-E99415F33AEC} [HKLM] -> C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll [Button: Ajout Direct] -> [2009/07/26 20:17:14 | 00,186,192 | ---- | M] (Microsoft Corporation)
{219C3416-8CB2-491a-A3C7-D9FCDDC9D600}:{5F7B1267-94A9-47F5-98DB-E99415F33AEC} [HKLM] -> C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll [Menu: &Ajout Direct dans Windows Live Writer] -> [2009/07/26 20:17:14 | 00,186,192 | ---- | M] (Microsoft Corporation)
< Default Prefix > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\URL\DefaultPrefix
"" -> http://
< Trusted Sites Domains [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 4474 domain(s) found. ->
36 domain(s) and sub-domain(s) not assigned to a zone.
< Trusted Sites Ranges [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 77 range(s) found. ->
< Trusted Sites Domains [HKEY_CURRENT_USER\] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 4784 domain(s) found. ->
46 domain(s) and sub-domain(s) not assigned to a zone.
< Trusted Sites Ranges [HKEY_CURRENT_USER\] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ ->
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 77 range(s) found. ->
< Downloaded Program Files > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\ ->
{166B1BCA-3F9C-11CF-8075-444553540000} [HKLM] -> Reg Error: Value error. [Shockwave ActiveX Control] ->
{3860DD98-0549-4D50-AA72-5D17D200EE10} [HKLM] -> http://cdn.scan.onecare.live.com/resource/download/scanner/fr-be/wlscctrl2.cab [Windows Live OneCare safety scanner control] ->
{67DABFBF-D0AB-41FA-9C46-CC0F21721616} [HKLM] -> http://download.divx.com/player/DivXBrowserPlugin.cab [Reg Error: Key error.] ->
{867E13F2-7F31-44FB-AC97-CD38E0DC46EF} [HKLM] -> http://ma-config.com/activex/hardwaredetection_3_1_0_3.cab [HardwareDetection Control] ->
{8AD9C840-044E-11D1-B3E9-00805F499D93} [HKLM] -> http://java.sun.com/update/1.6.0/jinstall-1_6_0_16-windows-i586.cab [Java Plug-in 1.6.0_16] ->
{8FFBE65D-2C9C-4669-84BD-5829DC0B603C} [HKLM] -> http://fpdownload.macromedia.com/get/flashplayer/current/ultrashim.cab [Reg Error: Key error.] ->
{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} [HKLM] -> http://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab [Java Plug-in 1.6.0_07] ->
{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA} [HKLM] -> http://java.sun.com/update/1.6.0/jinstall-1_6_0_16-windows-i586.cab [Java Plug-in 1.6.0_16] ->
{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} [HKLM] -> http://java.sun.com/update/1.6.0/jinstall-1_6_0_16-windows-i586.cab [Java Plug-in 1.6.0_16] ->
{E2883E8F-472F-4FB0-9522-AC9BF37916A7} [HKLM] -> http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab [Reg Error: Key error.] ->
CabBuilder [HKLM] -> http://kiw.imgag.com/imgag/kiw/toolbar/download/InstallerControl.cab [Reg Error: Key error.] ->
< Name Servers [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\ ->
DhcpNameServer -> 192.168.1.1 ->
< Name Servers [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Adapters\ ->
{E6222653-255D-46B1-ABE9-689DE96265CE}\\DhcpNameServer -> 192.168.1.1 (NVIDIA nForce Networking Controller) ->
< Winlogon settings [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon ->
*Shell* -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell ->
explorer.exe -> C:\Windows\explorer.exe -> [2009/04/11 07:27:36 | 02,926,592 | ---- | M] (Microsoft Corporation)
*MultiFile Done* -> ->
< Standard Profile Authorized Applications List > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List ->
"C:\Program Files\BitTorrent\bittorrent.exe" -> C:\Program Files\BitTorrent\bittorrent.exe [C:\Program Files\BitTorrent\bittorrent.exe:*:Enabled:BitTorrent] -> File not found
< SafeBoot AlternateShell [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot ->
"AlternateShell" -> cmd.exe ->
< CDROM Autorun Setting [HKEY_LOCAL_MACHINE]> -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Cdrom ->
"AutoRun" -> 1 ->
"DisplayName" -> Pilote de CD-ROM ->
"ImagePath" -> [system32\DRIVERS\cdrom.sys] -> File not found
< Drives with AutoRun files > -> ->
C:\autoexec.bat [ | ] -> C:\autoexec.bat [ NTFS ] -> [2009/11/10 15:24:35 | 00,000,004 | ---- | M] ()
C:\autorun.inf [] -> C:\autorun.inf [ NTFS ] -> [2009/11/03 05:59:06 | 00,000,000 | RHSD | M]
D:\autorun.inf [] -> D:\autorun.inf [ NTFS ] -> [2009/11/03 05:59:06 | 00,000,000 | RHSD | M]
E:\autorun.inf [[autorun] | open=Setup.EXE | ] -> E:\autorun.inf [ CDFS ] -> [2006/06/14 08:15:19 | 00,000,025 | R--- | M] ()
< MountPoints2 [HKEY_CURRENT_USER] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2 ->
\{cc7b23eb-889b-11db-ba1c-806e6f6e6963}
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{cc7b23eb-889b-11db-ba1c-806e6f6e6963}\shell
\{cc7b23eb-889b-11db-ba1c-806e6f6e6963}\shell\\"" -> [AutoRun] -> File not found
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{cc7b23eb-889b-11db-ba1c-806e6f6e6963}\shell\AutoRun\command
\{cc7b23eb-889b-11db-ba1c-806e6f6e6963}\shell\AutoRun\command\\"" -> E:\Setup.exe [E:\Setup.EXE] -> [2007/06/11 20:27:17 | 00,304,048 | R--- | M] ( )
< Registry Shell Spawning - Select to Repair > -> HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command ->
comfile [open] -> "%1" %* ->
exefile [open] -> "%1" %* ->
[Registry - Additional Scans - Safe List]
< File Associations - Select to Repair > -> HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>\ ->
.bat [@ = batfile] -> "%1" %* ->
.chm [@ = chm.file] -> "%SystemRoot%\hh.exe" %1 ->
.cmd [@ = cmdfile] -> "%1" %* ->
.com [@ = comfile] -> "%1" %* ->
.cpl [@ = cplfile] -> C:\Windows\System32\control.exe -> [2006/11/02 10:44:59 | 00,211,968 | ---- | M] (Microsoft Corporation)
.exe [@ = exefile] -> "%1" %* ->
.hlp [@ = hlpfile] -> C:\Windows\winhlp32.exe -> [2006/11/02 10:45:57 | 00,009,216 | ---- | M] (Microsoft Corporation)
.html [@ = Reg Error: Value error.] -> Reg Error: Key error. -> File not found
.pif [@ = piffile] -> "%1" %* ->
.reg [@ = regfile] -> C:\Windows\regedit.exe -> [2008/01/19 08:33:24 | 00,134,656 | ---- | M] ()
.scr [@ = scrfile] -> "%1" /S ->
< File Associations - Select to Repair > -> HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>\ ->
.html [@ = ChromeHTML] -> C:\Users\salut ma amour\AppData\Local\Google\Chrome\Application\chrome.exe -> [2009/11/03 06:40:28 | 00,921,072 | ---- | M] (Google Inc.)
< HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost > -> ->
*netsvcs* -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\\netsvcs ->
FastUserSwitchingCompatibility -> [] ->
Ias -> [] ->
Irmon -> [] ->
Nla -> [] ->
Ntmssvc -> [] ->
NWCWorkstation -> [] ->
Nwsapagent -> [] ->
SRService -> [] ->
Wmi -> [] ->
WmdmPmSp -> [] ->
LogonHours -> [] ->
PCAudit -> [] ->
helpsvc -> [] ->
uploadmgr -> [] ->
*MultiFile Done* -> ->
< Protocol Handlers [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\ ->
livecall:{828030A1-22C1-4009-854F-8E305202313F} [HKLM] -> C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll[Reg Error: Value error.] -> [2009/07/26 16:44:54 | 00,061,264 | ---- | M] (Microsoft Corporation)
ms-itss:{0A9007C0-4076-11D3-8789-0000F8105754} [HKLM] -> c:\Program Files\Common Files\microsoft shared\Information Retrieval\msitss.dll[Microsoft Infotech Storage Protocol for IE 4.0] -> [2001/06/20 03:26:46 | 00,221,184 | ---- | M] (Microsoft Corporation)
msnim:{828030A1-22C1-4009-854F-8E305202313F} [HKLM] -> C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll[Reg Error: Value error.] -> [2009/07/26 16:44:54 | 00,061,264 | ---- | M] (Microsoft Corporation)
< SafeBoot-Minimal Settings > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ ->
{36FC9E60-C465-11CF-8056-444553540000} -> Universal Serial Bus controllers
{4D36E965-E325-11CE-BFC1-08002BE10318} -> CD-ROM Drive
{4D36E967-E325-11CE-BFC1-08002BE10318} -> DiskDrive
{4D36E969-E325-11CE-BFC1-08002BE10318} -> Standard floppy disk controller
{4D36E96A-E325-11CE-BFC1-08002BE10318} -> Hdc
{4D36E96B-E325-11CE-BFC1-08002BE10318} -> Keyboard
{4D36E96F-E325-11CE-BFC1-08002BE10318} -> Mouse
{4D36E977-E325-11CE-BFC1-08002BE10318} -> PCMCIA Adapters
{4D36E97B-E325-11CE-BFC1-08002BE10318} -> SCSIAdapter
{4D36E97D-E325-11CE-BFC1-08002BE10318} -> System
{4D36E980-E325-11CE-BFC1-08002BE10318} -> Floppy disk drive
{533C5B84-EC70-11D2-9505-00C04F79DEAF} -> Volume shadow copy
{6BDD1FC1-810F-11D0-BEC7-08002BE2092F} -> IEEE 1394 Bus host controllers
{71A27CDD-812A-11D0-BEC7-08002BE2092F} -> Volume
{745A17A0-74D3-11D0-B6FE-00A0C90F57DA} -> Human Interface Devices
{D48179BE-EC20-11D1-B6B8-00C04FA372A7} -> SBP2 IEEE 1394 Devices
{D94EE5D8-D189-4994-83D2-F68D7D41B0E6} -> SecurityDevices
AppMgmt -> Service
Base -> Driver Group
Boot Bus Extender -> Driver Group
Boot file system -> Driver Group
File system -> Driver Group
Filter -> Driver Group
HelpSvc -> Service
NTDS -> -> File not found
PCI Configuration -> Driver Group
PNP Filter -> Driver Group
Primary disk -> Driver Group
sacsvr -> Service
SCSI Class -> Driver Group
System Bus Extender -> Driver Group
WinDefend -> C:\Program Files\Windows Defender\MpSvc.dll -> [2008/01/19 08:38:24 | 00,272,952 | ---- | M] (Microsoft Corporation)
< SafeBoot-Network Settings > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\ ->
{36FC9E60-C465-11CF-8056-444553540000} -> Universal Serial Bus controllers
{4D36E965-E325-11CE-BFC1-08002BE10318} -> CD-ROM Drive
{4D36E967-E325-11CE-BFC1-08002BE10318} -> DiskDrive
{4D36E969-E325-11CE-BFC1-08002BE10318} -> Standard floppy disk controller
{4D36E96A-E325-11CE-BFC1-08002BE10318} -> Hdc
{4D36E96B-E325-11CE-BFC1-08002BE10318} -> Keyboard
{4D36E96F-E325-11CE-BFC1-08002BE10318} -> Mouse
{4D36E972-E325-11CE-BFC1-08002BE10318} -> Net
{4D36E973-E325-11CE-BFC1-08002BE10318} -> NetClient
{4D36E974-E325-11CE-BFC1-08002BE10318} -> NetService
{4D36E975-E325-11CE-BFC1-08002BE10318} -> NetTrans
{4D36E977-E325-11CE-BFC1-08002BE10318} -> PCMCIA Adapters
{4D36E97B-E325-11CE-BFC1-08002BE10318} -> SCSIAdapter
{4D36E97D-E325-11CE-BFC1-08002BE10318} -> System
{4D36E980-E325-11CE-BFC1-08002BE10318} -> Floppy disk drive
{50DD5230-BA8A-11D1-BF5D-0000F805F530} -> Smart card readers
{533C5B84-EC70-11D2-9505-00C04F79DEAF} -> Volume shadow copy
{6BDD1FC1-810F-11D0-BEC7-08002BE2092F} -> IEEE 1394 Bus host controllers
{71A27CDD-812A-11D0-BEC7-08002BE2092F} -> Volume
{745A17A0-74D3-11D0-B6FE-00A0C90F57DA} -> Human Interface Devices
{D48179BE-EC20-11D1-B6B8-00C04FA372A7} -> SBP2 IEEE 1394 Devices
{D94EE5D8-D189-4994-83D2-F68D7D41B0E6} -> SecurityDevices
AppMgmt -> Service
Base -> Driver Group
Boot Bus Extender -> Driver Group
Boot file system -> Driver Group
File system -> Driver Group
Filter -> Driver Group
HelpSvc -> Service
Messenger -> -> File not found
NDIS Wrapper -> Driver Group
NetBIOSGroup -> Driver Group
NetDDEGroup -> Driver Group
Network -> Driver Group
NetworkProvider -> Driver Group
NTDS -> -> File not found
PCI Configuration -> Driver Group
PNP Filter -> Driver Group
PNP_TDI -> Driver Group
Primary disk -> Driver Group
rdsessmgr -> Service
sacsvr -> Service
SCSI Class -> Driver Group
Streams Drivers -> Driver Group
System Bus Extender -> Driver Group
TDI -> Driver Group
WinDefend -> C:\Program Files\Windows Defender\MpSvc.dll -> [2008/01/19 08:38:24 | 00,272,952 | ---- | M] (Microsoft Corporation)
WudfPf -> Driver
WudfUsbccidDriver -> Driver
< Security Center Settings > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center
\\"cval" -> [1] -> File not found
\\"UacDisableNotify" -> [1] -> File not found
\\"InternetSettingsDisableNotify" -> [1] -> File not found
\\"AutoUpdateDisableNotify" -> [1] -> File not found
\\"AntiVirusDisableNotify" -> [0] -> File not found
\\"AntiVirusOverride" -> [0] -> File not found
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring
\Monitoring\\"DisableMonitoring" -> [1] -> File not found
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus
\Monitoring\SymantecAntiVirus\\"DisableMonitoring" -> [1] -> File not found
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall
\Monitoring\SymantecFirewall\\"DisableMonitoring" -> [1] -> File not found
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc
\Svc\\"AntiVirusOverride" -> [0] -> File not found
\Svc\\"AntiSpywareOverride" -> [0] -> File not found
\Svc\\"FirewallOverride" -> [0] -> File not found
\Svc\\"VistaSp1" -> Reg Error: Unknown registry data type [Reg Error: Unknown registry data type] -> File not found
\Svc\\"VistaSp2" -> Reg Error: Unknown registry data type [Reg Error: Unknown registry data type] -> File not found
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol\ -> ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile
\\"DisableNotifications" -> [0] -> File not found
\\"EnableFirewall" -> [1] -> File not found
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\ -> ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\Logging\ -> ->
< Default Protocols [HKEY_LOCAL_MACHINE\] - Select to Repair > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\ProtocolDefaults ->
ldap -> 4 = Restricted sites (Not a Default Protocol) ->
news -> 4 = Restricted sites (Not a Default Protocol) ->
nntp -> 4 = Restricted sites (Not a Default Protocol) ->
oecmd -> 4 = Restricted sites (Not a Default Protocol) ->
snews -> 4 = Restricted sites (Not a Default Protocol) ->
< Uninstall List [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ ->
{0FA44E79-CD7D-4E8D-A2EE-26FE05F509B6} -> OpenOffice.org 3.1
{179C56A4-F57F-4561-8BBF-F911D26EB435} -> WebReg
{18D10072035C4515918F7E37EAFAACFC} -> AutoUpdate
{1D14373E-7970-4F2F-A467-ACA4F0EA21E3} -> Google Earth
{205C6BDD-7B73-42DE-8505-9A093F35A238} -> Outil de téléchargement Windows Live
{2075CB0A-D26F-4DAA-B424-5079296B43BA} -> Windows Live FolderShare
{22B775E7-6C42-4FC5-8E10-9A5E3257BD94} -> MSVCRT
{26A24AE4-039D-4CA4-87B4-2F83216016FF} -> Java(TM) 6 Update 16
{3248F0A8-6813-11D6-A77B-00B0D0150000} -> J2SE Runtime Environment 5.0
{3248F0A8-6813-11D6-A77B-00B0D0160020} -> Java(TM) 6 Update 2
{3248F0A8-6813-11D6-A77B-00B0D0160040} -> Java(TM) 6 Update 4
{3248F0A8-6813-11D6-A77B-00B0D0160070} -> Java(TM) 6 Update 7
{3B4E636E-9D65-4D67-BA61-189800823F52} -> Windows Live Communications Platform
{3E31821C-7917-367E-938E-E65FC413EA31} -> Microsoft .NET Framework 3.5 Language Pack SP1 - fra
{3FC7CBBC4C1E11DCA1A752EA55D89593} -> DivX Version Checker
{4634B21A-CC07-4396-890C-2B8168661FEA} -> Windows Live Writer
{46ABBC54-1872-4AA3-95E2-F2C063A63F31} -> Installation Windows Live
{4CBA3D4C-8F51-4D60-B27E-F6B641C571E7} -> Microsoft Search Enhancement Pack
{53B20C18-D8D4-4588-8737-9BBFE303C354} -> Windows Live Movie Maker
{55979C41-7D6A-49CC-B591-64AC1BBE2C8B} -> HP Picasso Media Center Add-In
{56C049BE-79E9-4502-BEA7-9754A3E60F9B} -> neroxml
{6009F2FC-EC56-4e28-B91C-0BA5104D6419} -> SF_CDA_Software
{66E6CE0C-5A1E-430C-B40A-0C90FF1804A8} -> eSupportQFolder
{67D3F1A0-A1F2-49b7-B9EE-011277B170CD} -> HPProductAssistant
{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4} -> Windows Media Player Firefox Plugin
{6B1CB38D-E2E4-4a30-933D-EFDEBA76AD9C} -> Microsoft Works
{6F5E2F4A-377D-4700-B0E3-8F7F7507EA15} -> CustomerResearchQFolder
{7299052b-02a4-4627-81f2-1818da5d550d} -> Microsoft Visual C++ 2005 Redistributable
{75E71ADD-042C-4F30-BFAC-A9EC42351313} -> Python 2.4.3
{767CC44C-9BBC-438D-BAD3-FD4595DD148B} -> VC80CRTRedist - 8.0.50727.762
{770657D0-A123-3C07-8E44-1C83EC895118} -> Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
{770F1BEC-2871-4E70-B837-FB8525FFA3B1} -> Windows Live Messenger
{7B63B2922B174135AFC0E1377DD81EC2} -> DivX Codec
{82C7B308-0BDD-49D8-8EA5-9CD3A3F9DF41} -> Windows Live Call
{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} -> Microsoft Silverlight
{8ADFC4160D694100B5B8A22DE9DCABD9} -> DivX Player
{95120000-00B9-0409-0000-0000000FF1CE} -> Microsoft Application Error Reporting
{9541FED0-327F-4DF0-8B96-EF57EF622F19} -> Sonic RecordNow!
{95D08F4E-DFC2-4ce3-ACB7-8C8E206217E9} -> MarketResearch
{9718521B-A345-4ad9-A52B-74D1435FB708} -> SF_CDA_ProductContext
{981DE354-9301-440f-AAFC-025AA2354A93} -> HP Deskjet & Photosmart Printer Driver Software 8.0.A
{993960EE-CA4D-443F-8F88-E24260DD5FD2} -> LG PC Suite
{A36CD345-625C-4d6c-B3E2-76E1248CB451} -> SolutionCenter
{A96E97134CA649888820BCDE5E300BBD} -> H.264 Decoder
{AAC389499AEF40428987B3D30CFC76C9} -> MKV Splitter
{AC76BA86-7AD7-1036-7B44-A90000000001} -> Adobe Reader 9 - Français
{AC96671C-2001-432C-9826-5266D84EF1DC} -> Logitech Webcam Software
{AEF9DC35ADDF4825B049ACBFD1C6EB37} -> AAC Decoder
{AF145F8997B44EE9B106D018EF1DB58B} -> DivX Converter Mobile
{B131E59D-202C-43C6-84C9-68F0C37541F1} -> Galerie de photos Windows Live
{BE77A81F-B315-4666-9BF3-AE70C0ADB057} -> BufferChm
{C3ABE126-2BB2-4246-BFE1-6797679B3579} -> LG USB Modem driver
{C3DC29BC-A8CF-4578-9DFC-37F049C44771} -> OcxSetup
{C716522C-3731-4667-8579-40B098294500} -> Toolbox
{CAE7D1D9-3794-4169-B4DD-964ADBC534EE} -> HP Product Detection
{CCEABD53-C30B-4556-9A71-148B7C178858} -> A310
{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} -> Microsoft .NET Framework 3.5 SP1
{D2D7529F-6B55-4C1C-BC9C-D6F1BCC066B6} -> Ma-Config.com plugin
{DC9A14D9-EC38-4BF4-B529-A69D91D0DEDA} -> HOT ALBUM MYBOX
{DCE8CD14-FBF5-4464-B9A4-E18E473546C7} -> Assistant de connexion Windows Live
papyber
Messages postés
6406
Date d'inscription
samedi 24 mars 2007
Statut
Contributeur sécurité
Dernière intervention
3 octobre 2010
257
13 nov. 2009 à 22:43
13 nov. 2009 à 22:43
* Désactive temporairement ton antivirus (mais pas le pare-feu),
* Ouvre OTS.exe sur le Bureau (pour Vista : clic droit et exécuter en tant qu'administrateur),
* Fais un copier/coller des lignes suivantes dans la zone Paste fix here :
* Clique sur le bouton Run fix.
* L'exécution devrait être rapide.
* Si tu as une alerte de ton pare-feu, tu acceptes.
* Lorsque la correction est terminée, un message indiquant que c'est fini (finished) devrait apparaître. Il est possible que l'on te demande de redémarrer le pc pour finaliser la correction si certains éléments n'ont pu être corrigés précédemment. Fais-le afin de finaliser la correction dans ce cas-là, en cliquant sur Yes.
* Le bloc-note s'ouvre. Copie/colle son contenu dans ta prochaine réponse.
* N'oublie pas de préciser tout problème rencontré ou tout problème persistant sur ton pc.
* Réactive l'antivirus.
* Si ton Bureau n'apparait pas, fais ceci : fais CTRL+ALT+SUP pour faire apparaître le gestionnaire de tâches.
Rends-toi à l'onglet Processus, clique en haut à gauche sur "Fichiers" et choisis "Exécuter". Tape "explorer" et valide. Cela te fera ré-apparaître ton Bureau.
poste un nouveau rapport RSIT
* Ouvre OTS.exe sur le Bureau (pour Vista : clic droit et exécuter en tant qu'administrateur),
* Fais un copier/coller des lignes suivantes dans la zone Paste fix here :
[Win32 Services - Safe List] YN -> (Symantec Core LC) Symantec Core LC [Disabled | Stopped] -> YN -> (stllssvr) stllssvr [On_Demand | Stopped] -> YN -> (Planificateur LiveUpdate automatique) Planificateur LiveUpdate automatique [Auto | Stopped] -> [Registry - Safe List] < Internet Explorer ToolBars [HKEY_CURRENT_USER\] > -> HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\ YN -> WebBrowser\\"{1D54967B-19A0-43BC-84DA-28D9AA2382F9}" [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] YN -> WebBrowser\\"{21FA44EF-376D-4D53-9B0F-8A89D3229068}" [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] YN -> WebBrowser\\"{35065594-9169-4A34-B167-FC4865038E53}" [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] [Registry - Additional Scans - Safe List] < Security Center Settings > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center YN -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus\ -> YN -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus -> YN -> \Monitoring\SymantecAntiVirus\\"DisableMonitoring" -> [1] YN -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall\ -> YN -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall -> YN -> \Monitoring\SymantecFirewall\\"DisableMonitoring" -> [1]
* Clique sur le bouton Run fix.
* L'exécution devrait être rapide.
* Si tu as une alerte de ton pare-feu, tu acceptes.
* Lorsque la correction est terminée, un message indiquant que c'est fini (finished) devrait apparaître. Il est possible que l'on te demande de redémarrer le pc pour finaliser la correction si certains éléments n'ont pu être corrigés précédemment. Fais-le afin de finaliser la correction dans ce cas-là, en cliquant sur Yes.
* Le bloc-note s'ouvre. Copie/colle son contenu dans ta prochaine réponse.
* N'oublie pas de préciser tout problème rencontré ou tout problème persistant sur ton pc.
* Réactive l'antivirus.
* Si ton Bureau n'apparait pas, fais ceci : fais CTRL+ALT+SUP pour faire apparaître le gestionnaire de tâches.
Rends-toi à l'onglet Processus, clique en haut à gauche sur "Fichiers" et choisis "Exécuter". Tape "explorer" et valide. Cela te fera ré-apparaître ton Bureau.
poste un nouveau rapport RSIT
[Win32 Services - Safe List]
Service Symantec Core LC stopped successfully!
Service stllssvr stopped successfully!
Service Planificateur LiveUpdate automatique stopped successfully!
[Registry - Safe List]
Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{1D54967B-19A0-43BC-84DA-28D9AA2382F9} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1D54967B-19A0-43BC-84DA-28D9AA2382F9}\ not found.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{21FA44EF-376D-4D53-9B0F-8A89D3229068} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{21FA44EF-376D-4D53-9B0F-8A89D3229068}\ not found.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{35065594-9169-4A34-B167-FC4865038E53} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{35065594-9169-4A34-B167-FC4865038E53}\ not found.
[Registry - Additional Scans - Safe List]
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall not found.
< End of fix log >
OTS by OldTimer - Version 3.1.5.0 fix logfile created on 11152009_104650
Logfile of random's system information tool 1.06 (written by random/random)
Run by salut ma amour at 2009-11-15 10:50:39
Microsoft® Windows Vista™ Édition Familiale Basique Service Pack 2
System drive C: has 106 GB (45%) free of 234 GB
Total RAM: 894 MB (24% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 10:51:13, on 15/11/2009
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18828)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\Neuf\Media Center\MediaCenter.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Users\salut ma amour\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files\Neuf\Media Center\httpd\httpd.exe
C:\Program Files\Neuf\Media Center\httpd\httpd.exe
C:\Users\salut ma amour\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\Program Files\Windows Live\Messenger\wlcsdk.exe
C:\Users\salut ma amour\Desktop\OTS.exe
C:\Users\salut ma amour\Desktop\RSIT.exe
C:\Program Files\trend micro\salut ma amour.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.bing.com/?cc=fr&toHttps=1&redig=55729C844D6A45819CAD368B3E178C9F
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Windows Internet Explorer
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: SHOUTcast Loader - {ccec60fc-2608-4e58-9659-3ffc159e8ea9} - C:\Program Files\SHOUTcast Radio Toolbar\shoutcasttb.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: Veoh Web Player Video Finder - {0FBB9689-D3D7-4f7a-A2E2-585B10099BFC} - C:\Program Files\Veoh Networks\VeohWebPlayer\VeohIEToolbar.dll
O3 - Toolbar: SHOUTcast Radio Toolbar - {0457331d-8ca6-4f97-9c26-6a9ef2b2dba8} - C:\Program Files\SHOUTcast Radio Toolbar\shoutcasttb.dll
O4 - HKCU\..\Run: [Neuf Media Center] "C:\Program Files\Neuf\Media Center\MediaCenter.exe"
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background (User 'Default user')
O8 - Extra context menu item: &SHOUTcast Search - C:\ProgramData\SHOUTcast Radio Toolbar\ieToolbar\resources\en-US\local\search.html
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O16 - DPF: CabBuilder - http://kiw.imgag.com/imgag/kiw/toolbar/download/InstallerControl.cab
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} (Shockwave ActiveX Control) -
O16 - DPF: {3860DD98-0549-4D50-AA72-5D17D200EE10} (Windows Live OneCare safety scanner control) - http://cdn.scan.onecare.live.com/resource/download/scanner/fr-be/wlscctrl2.cab
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} - http://download.divx.com/player/DivXBrowserPlugin.cab
O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - http://ma-config.com/activex/hardwaredetection_3_1_0_3.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O23 - Service: Avira AntiVir Planificateur (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: Planificateur LiveUpdate automatique - Unknown owner - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe (file missing)
O23 - Service: stllssvr - Unknown owner - c:\Program Files\Common Files\SureThing Shared\stllssvr.exe (file missing)
Service Symantec Core LC stopped successfully!
Service stllssvr stopped successfully!
Service Planificateur LiveUpdate automatique stopped successfully!
[Registry - Safe List]
Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{1D54967B-19A0-43BC-84DA-28D9AA2382F9} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1D54967B-19A0-43BC-84DA-28D9AA2382F9}\ not found.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{21FA44EF-376D-4D53-9B0F-8A89D3229068} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{21FA44EF-376D-4D53-9B0F-8A89D3229068}\ not found.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{35065594-9169-4A34-B167-FC4865038E53} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{35065594-9169-4A34-B167-FC4865038E53}\ not found.
[Registry - Additional Scans - Safe List]
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall not found.
< End of fix log >
OTS by OldTimer - Version 3.1.5.0 fix logfile created on 11152009_104650
Logfile of random's system information tool 1.06 (written by random/random)
Run by salut ma amour at 2009-11-15 10:50:39
Microsoft® Windows Vista™ Édition Familiale Basique Service Pack 2
System drive C: has 106 GB (45%) free of 234 GB
Total RAM: 894 MB (24% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 10:51:13, on 15/11/2009
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18828)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\Neuf\Media Center\MediaCenter.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Users\salut ma amour\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files\Neuf\Media Center\httpd\httpd.exe
C:\Program Files\Neuf\Media Center\httpd\httpd.exe
C:\Users\salut ma amour\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\Program Files\Windows Live\Messenger\wlcsdk.exe
C:\Users\salut ma amour\Desktop\OTS.exe
C:\Users\salut ma amour\Desktop\RSIT.exe
C:\Program Files\trend micro\salut ma amour.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.bing.com/?cc=fr&toHttps=1&redig=55729C844D6A45819CAD368B3E178C9F
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Windows Internet Explorer
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: SHOUTcast Loader - {ccec60fc-2608-4e58-9659-3ffc159e8ea9} - C:\Program Files\SHOUTcast Radio Toolbar\shoutcasttb.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: Veoh Web Player Video Finder - {0FBB9689-D3D7-4f7a-A2E2-585B10099BFC} - C:\Program Files\Veoh Networks\VeohWebPlayer\VeohIEToolbar.dll
O3 - Toolbar: SHOUTcast Radio Toolbar - {0457331d-8ca6-4f97-9c26-6a9ef2b2dba8} - C:\Program Files\SHOUTcast Radio Toolbar\shoutcasttb.dll
O4 - HKCU\..\Run: [Neuf Media Center] "C:\Program Files\Neuf\Media Center\MediaCenter.exe"
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background (User 'Default user')
O8 - Extra context menu item: &SHOUTcast Search - C:\ProgramData\SHOUTcast Radio Toolbar\ieToolbar\resources\en-US\local\search.html
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O16 - DPF: CabBuilder - http://kiw.imgag.com/imgag/kiw/toolbar/download/InstallerControl.cab
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} (Shockwave ActiveX Control) -
O16 - DPF: {3860DD98-0549-4D50-AA72-5D17D200EE10} (Windows Live OneCare safety scanner control) - http://cdn.scan.onecare.live.com/resource/download/scanner/fr-be/wlscctrl2.cab
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} - http://download.divx.com/player/DivXBrowserPlugin.cab
O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - http://ma-config.com/activex/hardwaredetection_3_1_0_3.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O23 - Service: Avira AntiVir Planificateur (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: Planificateur LiveUpdate automatique - Unknown owner - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe (file missing)
O23 - Service: stllssvr - Unknown owner - c:\Program Files\Common Files\SureThing Shared\stllssvr.exe (file missing)
mon probleme n'est toujours pas résolu car je ne peut pas ouvrir l'editeur de registre, lorsque je demande d'executer une action l'ecran grisé reste pratiquement 1 minute. au démarrage, l'ecran de bienvenue traine particuliérement, et toujours mon imprimante que je n'arrive plus a faire reconnaitre.
papyber
Messages postés
6406
Date d'inscription
samedi 24 mars 2007
Statut
Contributeur sécurité
Dernière intervention
3 octobre 2010
257
15 nov. 2009 à 12:27
15 nov. 2009 à 12:27
on poursuit...
supprime tous les outils téléchargés à l'exception de RSIT et hijack this
Télécharge OTM (de Old_Timer) sur ton bureau,
Double-clique sur OTM.exe pour lancer le programme,
Copie la liste de fichiers ou de dossiers ci-dessous et colle-la dans la fenêtre du programme "Paste Instructions for Items to be Moved" :
(Sous Vista, il faut cliquer droit sur OTM et choisir Exécuter en tant qu'administrateur)
Clique sur MoveIt! pour lancer la suppression,
Le résultat appraraîtra dans le cadre Results.
Clique sur Exit pour fermer le programme.
Poste le rapport qui est situé ici : C:\\\_OTM\MovedFiles
Il te sera peut-être demandé de redémarrer ton PC. Dans ce cas, clique sur Yes.
suis ce tuto et donne le rapport pour voir s'il y a encore ou pas infection
https://forum.pcastuces.com/default.asp
ensuite tu me décris très exactement les soucis restants que nous voyons où nous en sommes
supprime tous les outils téléchargés à l'exception de RSIT et hijack this
Télécharge OTM (de Old_Timer) sur ton bureau,
Double-clique sur OTM.exe pour lancer le programme,
Copie la liste de fichiers ou de dossiers ci-dessous et colle-la dans la fenêtre du programme "Paste Instructions for Items to be Moved" :
(Sous Vista, il faut cliquer droit sur OTM et choisir Exécuter en tant qu'administrateur)
reparer :processes explorer.exe :services Symantec Core LC LiveUpdate automatique :reg [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cckii] [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ccApp] [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\emaswks] [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Fling] [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Symantec PIF AlertEng] [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\wtcwker] [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\yrcofzdw] [-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{cc7b23eb-889b-11db-ba1c-806e6f6e6963}] :files C:\ProgramData\Spybot - Search & Destroy] C:\Program Files\Symantec C:\Program Files\Common Files\Symantec Shared C:\Windows\tasks\Spybot - Search & Destroy - Scheduled Task.job :Commands [emptytemp]
Clique sur MoveIt! pour lancer la suppression,
Le résultat appraraîtra dans le cadre Results.
Clique sur Exit pour fermer le programme.
Poste le rapport qui est situé ici : C:\\\_OTM\MovedFiles
Il te sera peut-être demandé de redémarrer ton PC. Dans ce cas, clique sur Yes.
suis ce tuto et donne le rapport pour voir s'il y a encore ou pas infection
https://forum.pcastuces.com/default.asp
ensuite tu me décris très exactement les soucis restants que nous voyons où nous en sommes
All processes killed
Error: Unable to interpret <reparer> in the current context!
========== PROCESSES ==========
No active process named explorer.exe was found!
========== SERVICES/DRIVERS ==========
Service Symantec Core LC stopped successfully!
Service Symantec Core LC deleted successfully!
Service Planificateur LiveUpdate automatique stopped successfully!
Service Planificateur LiveUpdate automatique deleted successfully!
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cckii\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ccApp\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\emaswks\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Fling\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Symantec PIF AlertEng\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\wtcwker\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\yrcofzdw\ deleted successfully.
Registry key HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{cc7b23eb-889b-11db-ba1c-806e6f6e6963}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{cc7b23eb-889b-11db-ba1c-806e6f6e6963}\ not found.
========== FILES ==========
C:\ProgramData\Spybot - Search & Destroy\Recovery folder moved successfully.
C:\ProgramData\Spybot - Search & Destroy\Logs folder moved successfully.
C:\ProgramData\Spybot - Search & Destroy folder moved successfully.
File/Folder C:\Program Files\Symantec not found.
File/Folder C:\Program Files\Common Files\Symantec Shared not found.
File/Folder C:\Windows\tasks\Spybot - Search & Destroy - Scheduled Task.job not found.
========== COMMANDS ==========
[EMPTYTEMP]
User: Administrateur
->Temp folder emptied: 22378666 bytes
->Temporary Internet Files folder emptied: 34957609 bytes
User: All Users
User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: Public
User: salut ma amour
->Temp folder emptied: 2060450 bytes
->Temporary Internet Files folder emptied: 124391210 bytes
->Java cache emptied: 40773706 bytes
->FireFox cache emptied: 57159382 bytes
->Google Chrome cache emptied: 26849528 bytes
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 585728 bytes
Windows Temp folder emptied: 125721 bytes
%systemroot%\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 3606702 bytes
%systemroot%\system32\config\systemprofile\AppData\LocalLow\Sun\Java\Deployment folder emptied: 31494039 bytes
RecycleBin emptied: 20124291 bytes
Total Files Cleaned = 347,65 mb
OTM by OldTimer - Version 3.1.1.0 log created on 11152009_134117
Files moved on Reboot...
File move failed. C:\Windows\temp\logishrd\LVPrcInj01.dll scheduled to be moved on reboot.
Registry entries deleted on Reboot...
Error: Unable to interpret <reparer> in the current context!
========== PROCESSES ==========
No active process named explorer.exe was found!
========== SERVICES/DRIVERS ==========
Service Symantec Core LC stopped successfully!
Service Symantec Core LC deleted successfully!
Service Planificateur LiveUpdate automatique stopped successfully!
Service Planificateur LiveUpdate automatique deleted successfully!
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cckii\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ccApp\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\emaswks\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Fling\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Symantec PIF AlertEng\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\wtcwker\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\yrcofzdw\ deleted successfully.
Registry key HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{cc7b23eb-889b-11db-ba1c-806e6f6e6963}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{cc7b23eb-889b-11db-ba1c-806e6f6e6963}\ not found.
========== FILES ==========
C:\ProgramData\Spybot - Search & Destroy\Recovery folder moved successfully.
C:\ProgramData\Spybot - Search & Destroy\Logs folder moved successfully.
C:\ProgramData\Spybot - Search & Destroy folder moved successfully.
File/Folder C:\Program Files\Symantec not found.
File/Folder C:\Program Files\Common Files\Symantec Shared not found.
File/Folder C:\Windows\tasks\Spybot - Search & Destroy - Scheduled Task.job not found.
========== COMMANDS ==========
[EMPTYTEMP]
User: Administrateur
->Temp folder emptied: 22378666 bytes
->Temporary Internet Files folder emptied: 34957609 bytes
User: All Users
User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: Public
User: salut ma amour
->Temp folder emptied: 2060450 bytes
->Temporary Internet Files folder emptied: 124391210 bytes
->Java cache emptied: 40773706 bytes
->FireFox cache emptied: 57159382 bytes
->Google Chrome cache emptied: 26849528 bytes
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 585728 bytes
Windows Temp folder emptied: 125721 bytes
%systemroot%\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 3606702 bytes
%systemroot%\system32\config\systemprofile\AppData\LocalLow\Sun\Java\Deployment folder emptied: 31494039 bytes
RecycleBin emptied: 20124291 bytes
Total Files Cleaned = 347,65 mb
OTM by OldTimer - Version 3.1.1.0 log created on 11152009_134117
Files moved on Reboot...
File move failed. C:\Windows\temp\logishrd\LVPrcInj01.dll scheduled to be moved on reboot.
Registry entries deleted on Reboot...
ambrinet
Messages postés
81
Date d'inscription
dimanche 6 janvier 2008
Statut
Membre
Dernière intervention
5 janvier 2022
16 nov. 2009 à 10:11
16 nov. 2009 à 10:11
j'ai effectué le scanner il y avait des erreurs donc j'ai reparé comme inscrit dans le topic, mais le scanner s'est arrété à 68% et marque le message suivant: "La protection des ressources n'a pas réussi a effectuer l'opération demandée."
papyber
Messages postés
6406
Date d'inscription
samedi 24 mars 2007
Statut
Contributeur sécurité
Dernière intervention
3 octobre 2010
257
15 nov. 2009 à 21:14
15 nov. 2009 à 21:14
comment se comporte ce pc désormais? accèdes tu au Registre?
ambrinet
Messages postés
81
Date d'inscription
dimanche 6 janvier 2008
Statut
Membre
Dernière intervention
5 janvier 2022
16 nov. 2009 à 08:33
16 nov. 2009 à 08:33
Bonjour,
Non, je n'ai toujours pas d'accés au registre, et toujours les memes problemes ne sont pas resolus: pilotes d'imprimante impossible, long délai avant executer un programme. J'ai également essayer de scanner plusieurs foi avec avira, mais j'ai l'impression que cela provoque un bug, et des foi le pc se met a ramer inopinément.
Non, je n'ai toujours pas d'accés au registre, et toujours les memes problemes ne sont pas resolus: pilotes d'imprimante impossible, long délai avant executer un programme. J'ai également essayer de scanner plusieurs foi avec avira, mais j'ai l'impression que cela provoque un bug, et des foi le pc se met a ramer inopinément.
papyber
Messages postés
6406
Date d'inscription
samedi 24 mars 2007
Statut
Contributeur sécurité
Dernière intervention
3 octobre 2010
257
16 nov. 2009 à 08:55
16 nov. 2009 à 08:55
bon dans ce cas on va tenter de réparer tout cela car je ne vois plus d'infection.
Démarre une invite de commandes en mode Administrateur
Démarrer/Tous les Programmes/Accessoires
clique droit sur Invite de commandes./ Exécuter en tant qu'Administrateur.
Copie-colle la commande suivante:
sfc /scannow
un tuto en image
http://www.vista-xp.fr/forum/topic346.html
dis moi ce que cela donne
Démarre une invite de commandes en mode Administrateur
Démarrer/Tous les Programmes/Accessoires
clique droit sur Invite de commandes./ Exécuter en tant qu'Administrateur.
Copie-colle la commande suivante:
sfc /scannow
un tuto en image
http://www.vista-xp.fr/forum/topic346.html
dis moi ce que cela donne
papyber
Messages postés
6406
Date d'inscription
samedi 24 mars 2007
Statut
Contributeur sécurité
Dernière intervention
3 octobre 2010
257
16 nov. 2009 à 11:31
16 nov. 2009 à 11:31
essaie en mode sans échec
si cela ne fonctionne toujours pas tu peux tenter ceci
réparer vista sans perte de données
http://www.vista-xp.fr/forum/topic428.html
si cela ne fonctionne toujours pas tu peux tenter ceci
réparer vista sans perte de données
http://www.vista-xp.fr/forum/topic428.html
papyber
Messages postés
6406
Date d'inscription
samedi 24 mars 2007
Statut
Contributeur sécurité
Dernière intervention
3 octobre 2010
257
16 nov. 2009 à 20:02
16 nov. 2009 à 20:02
en mode sans échec cela n'a pas fonctionné?
ambrinet
Messages postés
81
Date d'inscription
dimanche 6 janvier 2008
Statut
Membre
Dernière intervention
5 janvier 2022
16 nov. 2009 à 21:01
16 nov. 2009 à 21:01
non, ca me fait la meme erreur qu'avec ma session courante. arrét du scan à 68%.
papyber
Messages postés
6406
Date d'inscription
samedi 24 mars 2007
Statut
Contributeur sécurité
Dernière intervention
3 octobre 2010
257
17 nov. 2009 à 13:43
17 nov. 2009 à 13:43
alors là, sans cd de vista cela devient compliqué
ne peux tu t'en faire prêter un?
ne peux tu t'en faire prêter un?
papyber
Messages postés
6406
Date d'inscription
samedi 24 mars 2007
Statut
Contributeur sécurité
Dernière intervention
3 octobre 2010
257
19 nov. 2009 à 14:30
19 nov. 2009 à 14:30
quelle est la marque de ton PC?
papyber
Messages postés
6406
Date d'inscription
samedi 24 mars 2007
Statut
Contributeur sécurité
Dernière intervention
3 octobre 2010
257
19 nov. 2009 à 14:55
19 nov. 2009 à 14:55
Si tu n'as pas les DVD de restauration, tu dois pouvoir restaurer la configuration d'usine à partir d'une partition cachée.
Tu redémarres le PC et dès le début du démarrage tu tapotes à intervalles réguliers (2 par seconde) la touche f10 pour lancer le programme de restauration.
Ensuite tu te laisses guider par le programme.
tu perds toutes tes données pense donc à les sauvegarder avant
protège toi en installant antivirus et antispyware (malwarebyte) avant d'aller sur le net!
et puis il te faudra faire toutes tes mises à jour puisque tu retrouveras un PC dans le même état que lorsque tu l'as acheté
bonne chance!
Tu redémarres le PC et dès le début du démarrage tu tapotes à intervalles réguliers (2 par seconde) la touche f10 pour lancer le programme de restauration.
Ensuite tu te laisses guider par le programme.
tu perds toutes tes données pense donc à les sauvegarder avant
protège toi en installant antivirus et antispyware (malwarebyte) avant d'aller sur le net!
et puis il te faudra faire toutes tes mises à jour puisque tu retrouveras un PC dans le même état que lorsque tu l'as acheté
bonne chance!
papyber
Messages postés
6406
Date d'inscription
samedi 24 mars 2007
Statut
Contributeur sécurité
Dernière intervention
3 octobre 2010
257
19 nov. 2009 à 15:15
19 nov. 2009 à 15:15
regarde sur le mode d'emploi fourni avec ton Pc cela devrait t'être indiqué
papyber
Messages postés
6406
Date d'inscription
samedi 24 mars 2007
Statut
Contributeur sécurité
Dernière intervention
3 octobre 2010
257
19 nov. 2009 à 16:02
19 nov. 2009 à 16:02
lorsque tu l'as acheté il ne t'a pas été demandé de faire des DVD?
c'est quelle marque? et quel modèle?
c'est quelle marque? et quel modèle?