Probleme de malware

Résolu
Bonjour,
AIDER MOI J AI EU 194 MALWARE JE LES ai detecter grace a malwarebytes je les ai mi en quarantaine et suprimer mais ses des fichier de se type et j ai peur d avoir fait une betise ou que mon window ou disc dur ai pris un coup voila le rappot d apres scan :

Malwarebytes' Anti-Malware 1.41
Version de la base de données: 3192
Windows 6.0.6002 Service Pack 2

18/11/2009 12:57:48
mbam-log-2009-11-18 (12-57-48).txt

Type de recherche: Examen complet (C:\|D:\|)
Eléments examinés: 274775
Temps écoulé: 1 hour(s), 23 minute(s), 9 second(s)

Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 0
Valeur(s) du Registre infectée(s): 0
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 88
Fichier(s) infecté(s): 105

Processus mémoire infecté(s):
(Aucun élément nuisible détecté)

Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)

Clé(s) du Registre infectée(s):
(Aucun élément nuisible détecté)

Valeur(s) du Registre infectée(s):
(Aucun élément nuisible détecté)

Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)

Dossier(s) infecté(s):
C:\Windows\inf\inf (Trojan.Agent) -> Files: 582 -> Quarantined and deleted successfully.
C:\Windows\inf\inf\.NET CLR Data (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\.NET CLR Data\0000 (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\.NET CLR Data\040C (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\.NET CLR Networking (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\.NET CLR Networking\0000 (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\.NET CLR Networking\040C (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\.NET Data Provider for Oracle (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\.NET Data Provider for Oracle\0000 (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\.NET Data Provider for Oracle\040C (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\.NET Data Provider for SqlServer (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\.NET Data Provider for SqlServer\0000 (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\.NET Data Provider for SqlServer\040C (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\.NETFramework (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\.NETFramework\0000 (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\.NETFramework\040C (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\BITS (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\BITS\0000 (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\BITS\040C (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\EmdCache (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\EmdCache\0000 (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\EmdCache\040C (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\ESENT (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\ESENT\0000 (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\ESENT\040C (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\fr-FR (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\IEM (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\IEM\0409 (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\IEM\040C (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\MSDTC (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\MSDTC\0000 (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\MSDTC\040C (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\MSDTC Bridge 3.0.0.0 (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\MSDTC Bridge 3.0.0.0\0000 (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\MSDTC Bridge 3.0.0.0\0409 (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\MSDTC Bridge 3.0.0.0\040C (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\PERFLIB (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\PERFLIB\0000 (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\PERFLIB\040C (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\PNRPSvc (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\PNRPSvc\0000 (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\PNRPSvc\040C (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\Psched (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\Psched\0009 (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\RemoteAccess (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\RemoteAccess\0000 (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\RemoteAccess\040C (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\ServiceModelEndpoint 3.0.0.0 (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\ServiceModelEndpoint 3.0.0.0\0000 (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\ServiceModelEndpoint 3.0.0.0\0409 (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\ServiceModelEndpoint 3.0.0.0\040C (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\ServiceModelOperation 3.0.0.0 (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\ServiceModelOperation 3.0.0.0\0000 (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\ServiceModelOperation 3.0.0.0\0409 (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\ServiceModelOperation 3.0.0.0\040C (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\ServiceModelService 3.0.0.0 (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\ServiceModelService 3.0.0.0\0000 (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\ServiceModelService 3.0.0.0\0409 (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\ServiceModelService 3.0.0.0\040C (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\SMSvcHost 3.0.0.0 (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\SMSvcHost 3.0.0.0\0000 (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\SMSvcHost 3.0.0.0\0409 (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\SMSvcHost 3.0.0.0\040C (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\TAPISRV (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\TAPISRV\0000 (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\TAPISRV\040C (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\TermService (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\TermService\0000 (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\TermService\040C (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\UGatherer (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\UGatherer\0000 (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\UGatherer\040C (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\UGTHRSVC (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\UGTHRSVC\0000 (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\UGTHRSVC\040C (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\usbhub (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\usbhub\0000 (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\usbhub\040C (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\Windows Workflow Foundation 3.0.0.0 (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\Windows Workflow Foundation 3.0.0.0\0000 (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\Windows Workflow Foundation 3.0.0.0\0409 (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\Windows Workflow Foundation 3.0.0.0\040C (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\WmiApRpl (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\WmiApRpl\0009 (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\WmiApRpl\000C (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\wsearchidxpi (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\wsearchidxpi\0000 (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\wsearchidxpi\040C (Trojan.Agent) -> Quarantined and deleted successfully.

Fichier(s) infecté(s):
C:\Windows\inf\inf\.NET CLR Data\_DataPerfCounters.h (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\.NET CLR Data\_DataPerfCounters.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\.NET CLR Data\0000\_DataPerfCounters_D.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\.NET CLR Data\040C\_DataPerfCounters_D.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\.NET CLR Networking\_NetworkingPerfCounters.h (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\.NET CLR Networking\_Networkingperfcounters.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\.NET CLR Networking\0000\_Networkingperfcounters_D.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\.NET CLR Networking\040C\_Networkingperfcounters_D.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\.NET Data Provider for Oracle\_DataOracleClientPerfCounters_shared12_neutral.h (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\.NET Data Provider for Oracle\_DataOracleClientPerfCounters_shared12_neutral.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\.NET Data Provider for Oracle\0000\_DataOracleClientPerfCounters_shared12_neutral_D.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\.NET Data Provider for Oracle\040C\_DataOracleClientPerfCounters_shared12_neutral_D.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\.NET Data Provider for SqlServer\_dataperfcounters_shared12_neutral.h (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\.NET Data Provider for SqlServer\_dataperfcounters_shared12_neutral.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\.NET Data Provider for SqlServer\0000\_dataperfcounters_shared12_neutral_D.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\.NET Data Provider for SqlServer\040C\_dataperfcounters_shared12_neutral_D.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\.NETFramework\CORPerfMonSymbols.h (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\.NETFramework\corperfmonsymbols.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\.NETFramework\0000\corperfmonsymbols_D.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\.NETFramework\040C\corperfmonsymbols_D.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\BITS\bitsctr.h (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\BITS\0000\bitsctrs.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\BITS\040C\bitsctrs.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\EmdCache\emdperf.h (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\EmdCache\0000\emdperf.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\EmdCache\040C\emdperf.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\ESENT\esentprf.hxx (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\ESENT\0000\esentprf.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\ESENT\040C\esentprf.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\fr-FR\netsstpa.inf_loc (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\fr-FR\netsstpt.inf_loc (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\IEM\0409\inetcorp.iem (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\IEM\0409\inetset.iem (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\IEM\040C\inetcorp.iem (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\IEM\040C\inetset.iem (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\MSDTC\msdtcprf.h (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\MSDTC\0000\msdtcprf.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\MSDTC\040C\msdtcprf.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\MSDTC Bridge 3.0.0.0\_TransactionBridgePerfCounters.h (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\MSDTC Bridge 3.0.0.0\_TransactionBridgePerfCounters.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\MSDTC Bridge 3.0.0.0\0000\_TransactionBridgePerfCounters_D.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\MSDTC Bridge 3.0.0.0\0409\_TransactionBridgePerfCounters_D.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\MSDTC Bridge 3.0.0.0\040C\_TransactionBridgePerfCounters_D.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\PERFLIB\0000\perfc.dat (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\PERFLIB\0000\perfd.dat (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\PERFLIB\0000\perfh.dat (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\PERFLIB\0000\perfi.dat (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\PERFLIB\040C\perfc.dat (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\PERFLIB\040C\perfd.dat (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\PERFLIB\040C\perfh.dat (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\PERFLIB\040C\perfi.dat (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\PNRPSvc\pnrpperfcnt.h (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\PNRPSvc\0000\pnrpclientperfcounters.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\PNRPSvc\040C\pnrpclientperfcounters.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\Psched\PacerCnt.h (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\Psched\0009\pacerprf.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\RemoteAccess\rasctrnm.h (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\RemoteAccess\0000\rasctrs.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\RemoteAccess\040C\rasctrs.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\ServiceModelEndpoint 3.0.0.0\_ServiceModelEndpointPerfCounters.h (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\ServiceModelEndpoint 3.0.0.0\_ServiceModelEndpointPerfCounters.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\ServiceModelEndpoint 3.0.0.0\0000\_ServiceModelEndpointPerfCounters_D.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\ServiceModelEndpoint 3.0.0.0\0409\_ServiceModelEndpointPerfCounters_D.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\ServiceModelEndpoint 3.0.0.0\040C\_ServiceModelEndpointPerfCounters_D.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\ServiceModelOperation 3.0.0.0\_ServiceModelOperationPerfCounters.h (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\ServiceModelOperation 3.0.0.0\_ServiceModelOperationPerfCounters.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\ServiceModelOperation 3.0.0.0\0000\_ServiceModelOperationPerfCounters_D.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\ServiceModelOperation 3.0.0.0\0409\_ServiceModelOperationPerfCounters_D.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\ServiceModelOperation 3.0.0.0\040C\_ServiceModelOperationPerfCounters_D.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\ServiceModelService 3.0.0.0\_ServiceModelServicePerfCounters.h (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\ServiceModelService 3.0.0.0\_ServiceModelServicePerfCounters.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\ServiceModelService 3.0.0.0\0000\_ServiceModelServicePerfCounters_D.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\ServiceModelService 3.0.0.0\0409\_ServiceModelServicePerfCounters_D.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\ServiceModelService 3.0.0.0\040C\_ServiceModelServicePerfCounters_D.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\SMSvcHost 3.0.0.0\_SMSvcHostPerfCounters.h (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\SMSvcHost 3.0.0.0\_SMSvcHostPerfCounters.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\SMSvcHost 3.0.0.0\0000\_SMSvcHostPerfCounters_D.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\SMSvcHost 3.0.0.0\0409\_SMSvcHostPerfCounters_D.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\SMSvcHost 3.0.0.0\040C\_SMSvcHostPerfCounters_D.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\TAPISRV\perfctr.h (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\TAPISRV\0000\tapiperf.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\TAPISRV\040C\tapiperf.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\TermService\tslabels.h (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\TermService\0000\tslabels.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\TermService\040C\tslabels.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\UGatherer\gsrvctr.h (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\UGatherer\0000\gsrvctr.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\UGatherer\040C\gsrvctr.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\UGTHRSVC\gthrctr.h (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\UGTHRSVC\0000\gthrctr.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\UGTHRSVC\040C\gthrctr.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\usbhub\usbperfsym.h (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\usbhub\0000\usbperf.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\usbhub\040C\usbperf.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\Windows Workflow Foundation 3.0.0.0\PerfCounters.h (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\Windows Workflow Foundation 3.0.0.0\PerfCounters.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\Windows Workflow Foundation 3.0.0.0\0000\PerfCounters_D.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\Windows Workflow Foundation 3.0.0.0\0409\PerfCounters_D.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\Windows Workflow Foundation 3.0.0.0\040C\PerfCounters_D.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\WmiApRpl\WmiApRpl.h (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\WmiApRpl\0009\WmiApRpl.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\WmiApRpl\000C\WmiApRpl.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\wsearchidxpi\idxcntrs.h (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\wsearchidxpi\0000\idxcntrs.ini (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\inf\inf\wsearchidxpi\040C\idxcntrs.ini (Trojan.Agent) -> Quarantined and deleted successfully.
Configuration: Windows Vista Internet Explorer 8.0

59 réponses

Résumé de la discussion

Une détection par Malwarebytes signale un ensemble de Trojan.Agent sur Windows, avec mise en quarantaine et suppression des fichiers jugés malveillants suite à un examen complet. Le rapport indique 88 dossiers et 105 fichiers infectés, principalement dans C:\Windows\inf\inf et ses sous-dossiers, tous mis en quarantaine et supprimés avec succès, à l'issue du scan. Aucun processus mémoire ni entrée du registre n'a été infecté au moment du passage de l'outil, ce qui suggère une contamination principalement contenue dans des fichiers. En cas de doute, il peut être utile d'effectuer un second scan après redémarrage et de vérifier les éléments au démarrage pour confirmer l'éradication et prévenir une réinfection future.

Bobot (l’IA à votre service)
  1. LE 2 EME ( enfin je croi si j ai pa mi le 1 er a la place du 2 eme ou le 2 eme a la place du 1 er )

    info.txt logfile of random's system information tool 1.06 2009-11-20 08:56:52

    ======Uninstall list======

    -->"C:\Program Files\HP Games\5 Card Deluxe\Uninstall.exe"
    -->"C:\Program Files\HP Games\Agatha Christie - Death on the Nile\Uninstall.exe"
    -->"C:\Program Files\HP Games\Age of Castles\Uninstall.exe"
    -->"C:\Program Files\HP Games\Bejeweled 2 Deluxe\Uninstall.exe"
    -->"C:\Program Files\HP Games\Blasterball 3\Uninstall.exe"
    -->"C:\Program Files\HP Games\Build-a-lot 2\Uninstall.exe"
    -->"C:\Program Files\HP Games\Cake Mania\Uninstall.exe"
    -->"C:\Program Files\HP Games\Chuzzle Deluxe\Uninstall.exe"
    -->"C:\Program Files\HP Games\Diner Dash 2 Restaurant Rescue\Uninstall.exe"
    -->"C:\Program Files\HP Games\Diner Dash\Uninstall.exe"
    -->"C:\Program Files\HP Games\FATE\Uninstall.exe"
    -->"C:\Program Files\HP Games\Fish Tycoon\Uninstall.exe"
    -->"C:\Program Files\HP Games\Gem Shop\Uninstall.exe"
    -->"C:\Program Files\HP Games\Granny in Paradise\Uninstall.exe"
    -->"C:\Program Files\HP Games\Insaniquarium Deluxe\Uninstall.exe"
    -->"C:\Program Files\HP Games\Mah Jong Quest\Uninstall.exe"
    -->"C:\Program Files\HP Games\Mahjongg Artifacts\Uninstall.exe"
    -->"C:\Program Files\HP Games\My HP Game Console\Uninstall.exe"
    -->"C:\Program Files\HP Games\Ocean Express\Uninstall.exe"
    -->"C:\Program Files\HP Games\Peggle\Uninstall.exe"
    -->"C:\Program Files\HP Games\Polar Bowler\Uninstall.exe"
    -->"C:\Program Files\HP Games\Polar Golfer\Uninstall.exe"
    -->"C:\Program Files\HP Games\Polar Pool\Uninstall.exe"
    -->"C:\Program Files\HP Games\Puzzle Express\Uninstall.exe"
    -->"C:\Program Files\HP Games\Slingo Deluxe\Uninstall.exe"
    -->"C:\Program Files\HP Games\SPORE Creature Creator Trial Edition\Uninstall.exe"
    -->"C:\Program Files\HP Games\Sudoku Quest\Uninstall.exe"
    -->"C:\Program Files\HP Games\The Treasures of Montezuma\Uninstall.exe"
    -->"C:\Program Files\HP Games\Tradewinds\Uninstall.exe"
    -->"C:\Program Files\HP Games\Virtual Villagers - The Secret City\Uninstall.exe"
    -->"C:\Program Files\HP Games\Zuma Deluxe\Uninstall.exe"
    Activation Assistant for the 2007 Microsoft Office suites-->"C:\ProgramData\{174892B1-CBE7-44F5-86FF-AB555EFD73A3}\Microsoft Office Activation Assistant.exe" REMOVE=TRUE MODIFY=FALSE
    ActiveCheck component for HP Active Support Library-->MsiExec.exe /X{254C37AA-6B72-4300-84F6-98A82419187E}
    Adobe Download Manager-->"C:\Windows\system32\rundll32.exe" "C:\Program Files\NOS\bin\getPlus_Helper.dll",Uninstall /IE2883E8F-472F-4fb0-9522-AC9BF37916A7 /Get1
    Adobe Flash Player 10 ActiveX-->C:\Windows\system32\Macromed\Flash\uninstall_activeX.exe
    Adobe Reader 9 - Français-->MsiExec.exe /I{AC76BA86-7AD7-1036-7B44-A90000000001}
    Adobe Shockwave Player-->MsiExec.exe /X{AD72CFB4-C2BF-424E-9DF0-C7BAD1F30A11}
    AMD USB Audio Driver Filter-->MsiExec.exe /X{A3AB35FA-943E-4799-99DC-46EFD59E998F}
    AOL Toolbar 5.0-->"C:\Program Files\AOL\AOL Toolbar 5.0\uninstall.exe"
    Assistant de connexion Windows Live ID-->MsiExec.exe /X{10A44844-4465-456E-8C97-80BDD4F68845}
    Atheros Driver Installation Program-->C:\Program Files\InstallShield Installation Information\{C3A32068-8AB1-4327-BB16-BED9C6219DC7}\setup.exe -runfromtemp -l0x040c
    avast! Antivirus-->C:\Program Files\Alwil Software\Avast4\aswRunDll.exe "C:\Program Files\Alwil Software\Avast4\Setup\setiface.dll",RunSetup
    Catalyst Control Center - Branding-->MsiExec.exe /I{558FF444-F562-4E4C-98BD-7B20EE184D2E}
    Cisco EAP-FAST Module-->MsiExec.exe /I{415B2719-AD3A-4944-B404-C472DB6085B3}
    Cisco LEAP Module-->MsiExec.exe /I{83770D14-21B9-44B3-8689-F7B523F94560}
    Cisco PEAP Module-->MsiExec.exe /I{669C7BD8-DAA2-49B6-966C-F1E2AAE6B17E}
    Contrôle Parental-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{93094D10-9388-11D4-9886-0000B43F396D}\Setup.exe" -l0x40c
    Counter-Strike: Source-->MsiExec.exe /I{9580813D-94B1-4C28-9426-A441E2BB29A5}
    CyberLink DVD Suite-->"C:\Program Files\InstallShield Installation Information\{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}\Setup.exe" /z-uninstall
    CyberLink DVD Suite-->"C:\Program Files\InstallShield Installation Information\{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}\Setup.exe" /z-uninstall
    ESU for Microsoft Vista-->MsiExec.exe /I{3877C901-7B90-4727-A639-B6ED2DD59D43}
    HijackThis 2.0.2-->"C:\Program Files\trend micro\HijackThis.exe" /uninstall
    Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT=""
    Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT=""
    HP Active Support Library-->"C:\Program Files\InstallShield Installation Information\{CE7E3BE0-2DD3-4416-A690-F9E4A99A8CFF}\setup.exe" -runfromtemp -l0x0409 -removeonly
    HP Customer Experience Enhancements-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{57A5AEC1-97FC-474D-92C4-908FCC2253D4}\setup.exe" -l0x9 -removeonly
    HP Doc Viewer-->MsiExec.exe /I{082702D5-5DD8-4600-BCE5-48B15174687F}
    HP Help and Support-->MsiExec.exe /I{0054A0F6-00C9-4498-B821-B5C9578F433E}
    HP MediaSmart DVD-->"C:\Program Files\InstallShield Installation Information\{DCCAD079-F92C-44DA-B258-624FC6517A5A}\setup.exe" /z-uninstall
    HP MediaSmart DVD-->"C:\Program Files\InstallShield Installation Information\{DCCAD079-F92C-44DA-B258-624FC6517A5A}\setup.exe" /z-uninstall
    HP MediaSmart Music/Photo/Video-->"C:\Program Files\InstallShield Installation Information\{B2EE25B9-5B00-4ACF-94F0-92433C28C39E}\setup.exe" /z-uninstall
    HP MediaSmart Music/Photo/Video-->"C:\Program Files\InstallShield Installation Information\{B2EE25B9-5B00-4ACF-94F0-92433C28C39E}\setup.exe" /z-uninstall /zMS
    HP MediaSmart SmartMenu-->MsiExec.exe /I{D8BB0945-B990-47DC-BFE3-3FDE1E165B30}
    HP MediaSmart TV-->"C:\Program Files\InstallShield Installation Information\{67626E09-5366-4480-8F1E-93FADF50CA15}\Setup.exe" /z-uninstall
    HP MediaSmart TV-->"C:\Program Files\InstallShield Installation Information\{67626E09-5366-4480-8F1E-93FADF50CA15}\Setup.exe" /z-uninstall
    HP MediaSmart Webcam-->"C:\Program Files\InstallShield Installation Information\{01FB4998-33C4-4431-85ED-079E3EEFE75D}\setup.exe" /z-uninstall
    HP MediaSmart Webcam-->"C:\Program Files\InstallShield Installation Information\{01FB4998-33C4-4431-85ED-079E3EEFE75D}\setup.exe" /z-uninstall
    HP Quick Launch Buttons 6.40 J1-->C:\Program Files\InstallShield Installation Information\{34D2AB40-150D-475D-AE32-BD23FB5EE355}\setup.exe -runfromtemp -l0x040c uninst
    HP Total Care Advisor-->MsiExec.exe /X{154A4184-1A3D-4BF9-A5AE-4FA1660445F3}
    HP Total Care Advisor-->MsiExec.exe /X{F31E534B-4199-4552-8154-5C130710D68E}
    HP Update-->MsiExec.exe /X{C8FD5BC1-92EF-4C15-92A9-F9AC7F61985F}
    HP User Guides 0128-->MsiExec.exe /X{07A5026D-5F9F-43D1-9073-C2F882D417E7}
    HP Wireless Assistant-->MsiExec.exe /I{9ADABDDE-9644-461B-9E73-83FA3EFCAB50}
    HPAsset component for HP Active Support Library-->MsiExec.exe /X{669D4A35-146B-4314-89F1-1AC3D7B88367}
    HPNetworkAssistant-->MsiExec.exe /I{228C6B46-64E2-404E-898A-EF0830603EF4}
    HPTCSSetup-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{846DDADA-0239-4B67-A6B1-33658863793B}\setup.exe" -l0x9 -removeonly
    IDT Audio-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}\setup.exe" -l0x40c -remove -removeonly
    Insurgency-->"C:\Program Files\Steam\steam.exe" steam://uninstall/17700
    Java(TM) 6 Update 17-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216014FF}
    Java(TM) 6 Update 7-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160070}
    JMicron JMB38X Flash Media Controller-->"C:\Program Files\InstallShield Installation Information\{26604C7E-A313-4D12-867F-7C6E7820BE4C}\setup.exe" delpkg
    LabelPrint-->"C:\Program Files\InstallShield Installation Information\{C59C179C-668D-49A9-B6EA-0121CCFC1243}\Setup.exe" /z-uninstall
    LabelPrint-->"C:\Program Files\InstallShield Installation Information\{C59C179C-668D-49A9-B6EA-0121CCFC1243}\Setup.exe" /z-uninstall
    LightScribe System Software 1.14.17.1-->MsiExec.exe /X{0E7DBD52-B097-4F2B-A7C7-F105B0D20FDB}
    Malwarebytes' Anti-Malware-->"C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"
    Microsoft .NET Framework 3.5 Language Pack SP1 - fra-->MsiExec.exe /I{3E31821C-7917-367E-938E-E65FC413EA31}
    Microsoft .NET Framework 3.5 SP1-->c:\Windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
    Microsoft .NET Framework 3.5 SP1-->MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
    Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0016-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
    Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0018-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
    Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001B-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
    Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-006E-040C-0000-0000000FF1CE} /uninstall {B165D3C2-40AE-4D39-86F7-E5C87C4264C0}
    Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-00A1-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
    Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}
    Microsoft Office Excel MUI (French) 2007-->MsiExec.exe /X{90120000-0016-040C-0000-0000000FF1CE}
    Microsoft Office Home and Student 2007-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall HOMESTUDENTR /dll OSETUP.DLL
    Microsoft Office Home and Student 2007-->MsiExec.exe /X{91120000-002F-0000-0000-0000000FF1CE}
    Microsoft Office Live Add-in 1.4-->MsiExec.exe /I{AE3CF174-872C-46C6-B9F6-C0593F3BC7B8}
    Microsoft Office OneNote MUI (French) 2007-->MsiExec.exe /X{90120000-00A1-040C-0000-0000000FF1CE}
    Microsoft Office PowerPoint MUI (French) 2007-->MsiExec.exe /X{90120000-0018-040C-0000-0000000FF1CE}
    Microsoft Office PowerPoint Viewer 2007 (French)-->MsiExec.exe /X{95120000-00AF-040C-0000-0000000FF1CE}
    Microsoft Office Proof (Arabic) 2007-->MsiExec.exe /X{90120000-001F-0401-0000-0000000FF1CE}
    Microsoft Office Proof (Dutch) 2007-->MsiExec.exe /X{90120000-001F-0413-0000-0000000FF1CE}
    Microsoft Office Proof (English) 2007-->MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
    Microsoft Office Proof (French) 2007-->MsiExec.exe /X{90120000-001F-040C-0000-0000000FF1CE}
    Microsoft Office Proof (German) 2007-->MsiExec.exe /X{90120000-001F-0407-0000-0000000FF1CE}
    Microsoft Office Proof (Spanish) 2007-->MsiExec.exe /X{90120000-001F-0C0A-0000-0000000FF1CE}
    Microsoft Office Proofing (French) 2007-->MsiExec.exe /X{90120000-002C-040C-0000-0000000FF1CE}
    Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0401-0000-0000000FF1CE} /uninstall {14809F99-C601-4D4A-9391-F1E8FAA964C5}
    Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0407-0000-0000000FF1CE} /uninstall {A0516415-ED61-419A-981D-93596DA74165}
    Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0409-0000-0000000FF1CE} /uninstall {ABDDE972-355B-4AF1-89A8-DA50B7B5C045}
    Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-040C-0000-0000000FF1CE} /uninstall {F580DDD5-8D37-4998-968E-EBB76BB86787}
    Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0413-0000-0000000FF1CE} /uninstall {D66D5A44-E480-4BA4-B4F2-C554F6B30EBB}
    Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0C0A-0000-0000000FF1CE} /uninstall {187308AB-5FA7-4F14-9AB9-D290383A10D9}
    Microsoft Office Shared MUI (French) 2007-->MsiExec.exe /X{90120000-006E-040C-0000-0000000FF1CE}
    Microsoft Office Word MUI (French) 2007-->MsiExec.exe /X{90120000-001B-040C-0000-0000000FF1CE}
    Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
    Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053-->MsiExec.exe /X{770657D0-A123-3C07-8E44-1C83EC895118}
    Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
    Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{A49F249F-0C91-497F-86DF-B2585E8E76B7}
    Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148-->MsiExec.exe /X{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729-->MsiExec.exe /X{3C3D696B-0DB7-3C6D-A356-3DB8CE541918}
    Microsoft Works-->MsiExec.exe /I{3B160861-7250-451E-B5EE-8B92BF30A710}
    Mise à jour Microsoft Office Excel 2007 Help (KB963678)-->msiexec /package {90120000-0016-040C-0000-0000000FF1CE} /uninstall {B761869A-B85C-40E2-994C-A1CE78AC8F2C}
    Mise à jour Microsoft Office Powerpoint 2007 Help (KB963669)-->msiexec /package {90120000-0018-040C-0000-0000000FF1CE} /uninstall {C3DCA38E-005E-41BA-A52A-7C3429F351C3}
    Mise à jour Microsoft Office Word 2007 Help (KB963665)-->msiexec /package {90120000-001B-040C-0000-0000000FF1CE} /uninstall {81536A04-DBFB-4DB3-978F-0F284590C223}
    Module de compatibilité pour Microsoft Office System 2007-->MsiExec.exe /X{90120000-0020-040C-0000-0000000FF1CE}
    Module linguistique Microsoft .NET Framework 3.5 SP1- fra-->c:\Windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack SP1 - fra\setup.exe
    MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
    muvee Reveal-->MsiExec.exe /X{DD35C328-F115-BEDA-6EEE-E00C5AACCCBC}
    My HP Games-->"C:\Program Files\HP Games\Uninstall.exe"
    Norton Internet Security-->MsiExec.exe /I{7B15D70E-9449-4CFB-B9BC-798465B2BD5C}
    Package de pilotes Windows - ENE (enecir) HIDClass (09/04/2008 2.6.0.0)-->C:\PROGRA~1\DIFX\270581355A767BF1\DPInst.exe /u C:\Windows\System32\DriverStore\FileRepository\enecir.inf_1a3c82dd\enecir.inf
    Power2Go-->"C:\Program Files\InstallShield Installation Information\{40BF1E83-20EB-11D8-97C5-0009C5020658}\Setup.exe" /z-uninstall
    Power2Go-->"C:\Program Files\InstallShield Installation Information\{40BF1E83-20EB-11D8-97C5-0009C5020658}\Setup.exe" /z-uninstall
    PowerDirector-->"C:\Program Files\InstallShield Installation Information\{CB099890-1D5F-11D5-9EA9-0050BAE317E1}\Setup.exe" /z-uninstall
    PowerDirector-->"C:\Program Files\InstallShield Installation Information\{CB099890-1D5F-11D5-9EA9-0050BAE317E1}\Setup.exe" /z-uninstall
    ProtectSmart Hard Drive Protection-->MsiExec.exe /X{9D615069-AA8F-4E89-AE9D-77AAE90F529F}
    Realtek 8169 8168 8101E 8102E Ethernet Driver-->C:\Program Files\InstallShield Installation Information\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}\setup.exe -runfromtemp -l0x040c -removeonly
    Security Update for 2007 Microsoft Office System (KB969559)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {69F52148-9BF6-4CDC-BF76-103DEAF3DD08}
    Security Update for 2007 Microsoft Office System (KB973704)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {E626DC89-A787-4553-9BB3-DC2EC7E1593F}
    Security Update for Microsoft Office Excel 2007 (KB973593)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {7D6255E3-3423-4D8B-A328-F6F8D28DD5FE}
    Security Update for Microsoft Office PowerPoint 2007 (KB957789)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {7559E742-FF9F-4FAE-B279-008ED296CB4D}
    Security Update for Microsoft Office system 2007 (972581)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {3D019598-7B59-447A-80AE-815B703B84FF}
    Security Update for Microsoft Office system 2007 (KB969613)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {5ECEB317-CBE9-4E08-AB10-756CB6F0FB6C}
    Security Update for Microsoft Office system 2007 (KB974234)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {FCD742B9-7A55-44BC-A776-F795F21FEDDC}
    Security Update for Microsoft Office Visio Viewer 2007 (KB973709)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {71127777-8B2C-4F97-AF7A-6CF8CAC8224D}
    SPORE Creature Creator Trial Edition-->"C:\Program Files\HP Games\SPORE Creature Creator Trial Edition\Uninstall.exe"
    Spybot - Search & Destroy-->"C:\Program Files\Spybot - Search & Destroy\unins000.exe"
    Steam(TM)-->MsiExec.exe /X{048298C9-A4D3-490B-9FF9-AB023A9238F3}
    Synaptics Pointing Device Driver-->rundll32.exe "C:\Program Files\Synaptics\SynTP\SynISDLL.dll",standAloneUninstall
    Update for 2007 Microsoft Office System (KB967642)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {C444285D-5E4F-48A4-91DD-47AAAA68E92D}
    Update for Microsoft .NET Framework 3.5 SP1 (KB963707)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {B2AE9C82-DC7B-3641-BFC8-87275C4F3607} /qb+ REBOOTPROMPT=""
    Update for Microsoft Office Word 2007 (KB974561)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {0CDDBAA2-2111-4A0E-A1B0-76C40C635331}
    1. info.txt logfile of random's system information tool 1.06 2009-11-20 08:56:52

      ======Uninstall list======

      -->"C:\Program Files\HP Games\5 Card Deluxe\Uninstall.exe"
      -->"C:\Program Files\HP Games\Agatha Christie - Death on the Nile\Uninstall.exe"
      -->"C:\Program Files\HP Games\Age of Castles\Uninstall.exe"
      -->"C:\Program Files\HP Games\Bejeweled 2 Deluxe\Uninstall.exe"
      -->"C:\Program Files\HP Games\Blasterball 3\Uninstall.exe"
      -->"C:\Program Files\HP Games\Build-a-lot 2\Uninstall.exe"
      -->"C:\Program Files\HP Games\Cake Mania\Uninstall.exe"
      -->"C:\Program Files\HP Games\Chuzzle Deluxe\Uninstall.exe"
      -->"C:\Program Files\HP Games\Diner Dash 2 Restaurant Rescue\Uninstall.exe"
      -->"C:\Program Files\HP Games\Diner Dash\Uninstall.exe"
      -->"C:\Program Files\HP Games\FATE\Uninstall.exe"
      -->"C:\Program Files\HP Games\Fish Tycoon\Uninstall.exe"
      -->"C:\Program Files\HP Games\Gem Shop\Uninstall.exe"
      -->"C:\Program Files\HP Games\Granny in Paradise\Uninstall.exe"
      -->"C:\Program Files\HP Games\Insaniquarium Deluxe\Uninstall.exe"
      -->"C:\Program Files\HP Games\Mah Jong Quest\Uninstall.exe"
      -->"C:\Program Files\HP Games\Mahjongg Artifacts\Uninstall.exe"
      -->"C:\Program Files\HP Games\My HP Game Console\Uninstall.exe"
      -->"C:\Program Files\HP Games\Ocean Express\Uninstall.exe"
      -->"C:\Program Files\HP Games\Peggle\Uninstall.exe"
      -->"C:\Program Files\HP Games\Polar Bowler\Uninstall.exe"
      -->"C:\Program Files\HP Games\Polar Golfer\Uninstall.exe"
      -->"C:\Program Files\HP Games\Polar Pool\Uninstall.exe"
      -->"C:\Program Files\HP Games\Puzzle Express\Uninstall.exe"
      -->"C:\Program Files\HP Games\Slingo Deluxe\Uninstall.exe"
      -->"C:\Program Files\HP Games\SPORE Creature Creator Trial Edition\Uninstall.exe"
      -->"C:\Program Files\HP Games\Sudoku Quest\Uninstall.exe"
      -->"C:\Program Files\HP Games\The Treasures of Montezuma\Uninstall.exe"
      -->"C:\Program Files\HP Games\Tradewinds\Uninstall.exe"
      -->"C:\Program Files\HP Games\Virtual Villagers - The Secret City\Uninstall.exe"
      -->"C:\Program Files\HP Games\Zuma Deluxe\Uninstall.exe"
      Activation Assistant for the 2007 Microsoft Office suites-->"C:\ProgramData\{174892B1-CBE7-44F5-86FF-AB555EFD73A3}\Microsoft Office Activation Assistant.exe" REMOVE=TRUE MODIFY=FALSE
      ActiveCheck component for HP Active Support Library-->MsiExec.exe /X{254C37AA-6B72-4300-84F6-98A82419187E}
      Adobe Download Manager-->"C:\Windows\system32\rundll32.exe" "C:\Program Files\NOS\bin\getPlus_Helper.dll",Uninstall /IE2883E8F-472F-4fb0-9522-AC9BF37916A7 /Get1
      Adobe Flash Player 10 ActiveX-->C:\Windows\system32\Macromed\Flash\uninstall_activeX.exe
      Adobe Reader 9 - Français-->MsiExec.exe /I{AC76BA86-7AD7-1036-7B44-A90000000001}
      Adobe Shockwave Player-->MsiExec.exe /X{AD72CFB4-C2BF-424E-9DF0-C7BAD1F30A11}
      AMD USB Audio Driver Filter-->MsiExec.exe /X{A3AB35FA-943E-4799-99DC-46EFD59E998F}
      AOL Toolbar 5.0-->"C:\Program Files\AOL\AOL Toolbar 5.0\uninstall.exe"
      Assistant de connexion Windows Live ID-->MsiExec.exe /X{10A44844-4465-456E-8C97-80BDD4F68845}
      Atheros Driver Installation Program-->C:\Program Files\InstallShield Installation Information\{C3A32068-8AB1-4327-BB16-BED9C6219DC7}\setup.exe -runfromtemp -l0x040c
      avast! Antivirus-->C:\Program Files\Alwil Software\Avast4\aswRunDll.exe "C:\Program Files\Alwil Software\Avast4\Setup\setiface.dll",RunSetup
      Catalyst Control Center - Branding-->MsiExec.exe /I{558FF444-F562-4E4C-98BD-7B20EE184D2E}
      Cisco EAP-FAST Module-->MsiExec.exe /I{415B2719-AD3A-4944-B404-C472DB6085B3}
      Cisco LEAP Module-->MsiExec.exe /I{83770D14-21B9-44B3-8689-F7B523F94560}
      Cisco PEAP Module-->MsiExec.exe /I{669C7BD8-DAA2-49B6-966C-F1E2AAE6B17E}
      Contrôle Parental-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{93094D10-9388-11D4-9886-0000B43F396D}\Setup.exe" -l0x40c
      Counter-Strike: Source-->MsiExec.exe /I{9580813D-94B1-4C28-9426-A441E2BB29A5}
      CyberLink DVD Suite-->"C:\Program Files\InstallShield Installation Information\{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}\Setup.exe" /z-uninstall
      CyberLink DVD Suite-->"C:\Program Files\InstallShield Installation Information\{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}\Setup.exe" /z-uninstall
      ESU for Microsoft Vista-->MsiExec.exe /I{3877C901-7B90-4727-A639-B6ED2DD59D43}
      HijackThis 2.0.2-->"C:\Program Files\trend micro\HijackThis.exe" /uninstall
      Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT=""
      Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT=""
      HP Active Support Library-->"C:\Program Files\InstallShield Installation Information\{CE7E3BE0-2DD3-4416-A690-F9E4A99A8CFF}\setup.exe" -runfromtemp -l0x0409 -removeonly
      HP Customer Experience Enhancements-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{57A5AEC1-97FC-474D-92C4-908FCC2253D4}\setup.exe" -l0x9 -removeonly
      HP Doc Viewer-->MsiExec.exe /I{082702D5-5DD8-4600-BCE5-48B15174687F}
      HP Help and Support-->MsiExec.exe /I{0054A0F6-00C9-4498-B821-B5C9578F433E}
      HP MediaSmart DVD-->"C:\Program Files\InstallShield Installation Information\{DCCAD079-F92C-44DA-B258-624FC6517A5A}\setup.exe" /z-uninstall
      HP MediaSmart DVD-->"C:\Program Files\InstallShield Installation Information\{DCCAD079-F92C-44DA-B258-624FC6517A5A}\setup.exe" /z-uninstall
      HP MediaSmart Music/Photo/Video-->"C:\Program Files\InstallShield Installation Information\{B2EE25B9-5B00-4ACF-94F0-92433C28C39E}\setup.exe" /z-uninstall
      HP MediaSmart Music/Photo/Video-->"C:\Program Files\InstallShield Installation Information\{B2EE25B9-5B00-4ACF-94F0-92433C28C39E}\setup.exe" /z-uninstall /zMS
      HP MediaSmart SmartMenu-->MsiExec.exe /I{D8BB0945-B990-47DC-BFE3-3FDE1E165B30}
      HP MediaSmart TV-->"C:\Program Files\InstallShield Installation Information\{67626E09-5366-4480-8F1E-93FADF50CA15}\Setup.exe" /z-uninstall
      HP MediaSmart TV-->"C:\Program Files\InstallShield Installation Information\{67626E09-5366-4480-8F1E-93FADF50CA15}\Setup.exe" /z-uninstall
      HP MediaSmart Webcam-->"C:\Program Files\InstallShield Installation Information\{01FB4998-33C4-4431-85ED-079E3EEFE75D}\setup.exe" /z-uninstall
      HP MediaSmart Webcam-->"C:\Program Files\InstallShield Installation Information\{01FB4998-33C4-4431-85ED-079E3EEFE75D}\setup.exe" /z-uninstall
      HP Quick Launch Buttons 6.40 J1-->C:\Program Files\InstallShield Installation Information\{34D2AB40-150D-475D-AE32-BD23FB5EE355}\setup.exe -runfromtemp -l0x040c uninst
      HP Total Care Advisor-->MsiExec.exe /X{154A4184-1A3D-4BF9-A5AE-4FA1660445F3}
      HP Total Care Advisor-->MsiExec.exe /X{F31E534B-4199-4552-8154-5C130710D68E}
      HP Update-->MsiExec.exe /X{C8FD5BC1-92EF-4C15-92A9-F9AC7F61985F}
      HP User Guides 0128-->MsiExec.exe /X{07A5026D-5F9F-43D1-9073-C2F882D417E7}
      HP Wireless Assistant-->MsiExec.exe /I{9ADABDDE-9644-461B-9E73-83FA3EFCAB50}
      HPAsset component for HP Active Support Library-->MsiExec.exe /X{669D4A35-146B-4314-89F1-1AC3D7B88367}
      HPNetworkAssistant-->MsiExec.exe /I{228C6B46-64E2-404E-898A-EF0830603EF4}
      HPTCSSetup-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{846DDADA-0239-4B67-A6B1-33658863793B}\setup.exe" -l0x9 -removeonly
      IDT Audio-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}\setup.exe" -l0x40c -remove -removeonly
      Insurgency-->"C:\Program Files\Steam\steam.exe" steam://uninstall/17700
      Java(TM) 6 Update 17-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216014FF}
      Java(TM) 6 Update 7-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160070}
      JMicron JMB38X Flash Media Controller-->"C:\Program Files\InstallShield Installation Information\{26604C7E-A313-4D12-867F-7C6E7820BE4C}\setup.exe" delpkg
      LabelPrint-->"C:\Program Files\InstallShield Installation Information\{C59C179C-668D-49A9-B6EA-0121CCFC1243}\Setup.exe" /z-uninstall
      LabelPrint-->"C:\Program Files\InstallShield Installation Information\{C59C179C-668D-49A9-B6EA-0121CCFC1243}\Setup.exe" /z-uninstall
      LightScribe System Software 1.14.17.1-->MsiExec.exe /X{0E7DBD52-B097-4F2B-A7C7-F105B0D20FDB}
      Malwarebytes' Anti-Malware-->"C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"
      Microsoft .NET Framework 3.5 Language Pack SP1 - fra-->MsiExec.exe /I{3E31821C-7917-367E-938E-E65FC413EA31}
      Microsoft .NET Framework 3.5 SP1-->c:\Windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
      Microsoft .NET Framework 3.5 SP1-->MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
      Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0016-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
      Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0018-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
      Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001B-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
      Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-006E-040C-0000-0000000FF1CE} /uninstall {B165D3C2-40AE-4D39-86F7-E5C87C4264C0}
      Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-00A1-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
      Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}
      Microsoft Office Excel MUI (French) 2007-->MsiExec.exe /X{90120000-0016-040C-0000-0000000FF1CE}
      Microsoft Office Home and Student 2007-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall HOMESTUDENTR /dll OSETUP.DLL
      Microsoft Office Home and Student 2007-->MsiExec.exe /X{91120000-002F-0000-0000-0000000FF1CE}
      Microsoft Office Live Add-in 1.4-->MsiExec.exe /I{AE3CF174-872C-46C6-B9F6-C0593F3BC7B8}
      Microsoft Office OneNote MUI (French) 2007-->MsiExec.exe /X{90120000-00A1-040C-0000-0000000FF1CE}
      Microsoft Office PowerPoint MUI (French) 2007-->MsiExec.exe /X{90120000-0018-040C-0000-0000000FF1CE}
      Microsoft Office PowerPoint Viewer 2007 (French)-->MsiExec.exe /X{95120000-00AF-040C-0000-0000000FF1CE}
      Microsoft Office Proof (Arabic) 2007-->MsiExec.exe /X{90120000-001F-0401-0000-0000000FF1CE}
      Microsoft Office Proof (Dutch) 2007-->MsiExec.exe /X{90120000-001F-0413-0000-0000000FF1CE}
      Microsoft Office Proof (English) 2007-->MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
      Microsoft Office Proof (French) 2007-->MsiExec.exe /X{90120000-001F-040C-0000-0000000FF1CE}
      Microsoft Office Proof (German) 2007-->MsiExec.exe /X{90120000-001F-0407-0000-0000000FF1CE}
      Microsoft Office Proof (Spanish) 2007-->MsiExec.exe /X{90120000-001F-0C0A-0000-0000000FF1CE}
      Microsoft Office Proofing (French) 2007-->MsiExec.exe /X{90120000-002C-040C-0000-0000000FF1CE}
      Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0401-0000-0000000FF1CE} /uninstall {14809F99-C601-4D4A-9391-F1E8FAA964C5}
      Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0407-0000-0000000FF1CE} /uninstall {A0516415-ED61-419A-981D-93596DA74165}
      Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0409-0000-0000000FF1CE} /uninstall {ABDDE972-355B-4AF1-89A8-DA50B7B5C045}
      Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-040C-0000-0000000FF1CE} /uninstall {F580DDD5-8D37-4998-968E-EBB76BB86787}
      Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0413-0000-0000000FF1CE} /uninstall {D66D5A44-E480-4BA4-B4F2-C554F6B30EBB}
      Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0C0A-0000-0000000FF1CE} /uninstall {187308AB-5FA7-4F14-9AB9-D290383A10D9}
      Microsoft Office Shared MUI (French) 2007-->MsiExec.exe /X{90120000-006E-040C-0000-0000000FF1CE}
      Microsoft Office Word MUI (French) 2007-->MsiExec.exe /X{90120000-001B-040C-0000-0000000FF1CE}
      Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
      Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053-->MsiExec.exe /X{770657D0-A123-3C07-8E44-1C83EC895118}
      Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
      Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{A49F249F-0C91-497F-86DF-B2585E8E76B7}
      Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148-->MsiExec.exe /X{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}
      Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729-->MsiExec.exe /X{3C3D696B-0DB7-3C6D-A356-3DB8CE541918}
      Microsoft Works-->MsiExec.exe /I{3B160861-7250-451E-B5EE-8B92BF30A710}
      Mise à jour Microsoft Office Excel 2007 Help (KB963678)-->msiexec /package {90120000-0016-040C-0000-0000000FF1CE} /uninstall {B761869A-B85C-40E2-994C-A1CE78AC8F2C}
      Mise à jour Microsoft Office Powerpoint 2007 Help (KB963669)-->msiexec /package {90120000-0018-040C-0000-0000000FF1CE} /uninstall {C3DCA38E-005E-41BA-A52A-7C3429F351C3}
      Mise à jour Microsoft Office Word 2007 Help (KB963665)-->msiexec /package {90120000-001B-040C-0000-0000000FF1CE} /uninstall {81536A04-DBFB-4DB3-978F-0F284590C223}
      Module de compatibilité pour Microsoft Office System 2007-->MsiExec.exe /X{90120000-0020-040C-0000-0000000FF1CE}
      Module linguistique Microsoft .NET Framework 3.5 SP1- fra-->c:\Windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack SP1 - fra\setup.exe
      MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
      muvee Reveal-->MsiExec.exe /X{DD35C328-F115-BEDA-6EEE-E00C5AACCCBC}
      My HP Games-->"C:\Program Files\HP Games\Uninstall.exe"
      Norton Internet Security-->MsiExec.exe /I{7B15D70E-9449-4CFB-B9BC-798465B2BD5C}
      Package de pilotes Windows - ENE (enecir) HIDClass (09/04/2008 2.6.0.0)-->C:\PROGRA~1\DIFX\270581355A767BF1\DPInst.exe /u C:\Windows\System32\DriverStore\FileRepository\enecir.inf_1a3c82dd\enecir.inf
      Power2Go-->"C:\Program Files\InstallShield Installation Information\{40BF1E83-20EB-11D8-97C5-0009C5020658}\Setup.exe" /z-uninstall
      Power2Go-->"C:\Program Files\InstallShield Installation Information\{40BF1E83-20EB-11D8-97C5-0009C5020658}\Setup.exe" /z-uninstall
      PowerDirector-->"C:\Program Files\InstallShield Installation Information\{CB099890-1D5F-11D5-9EA9-0050BAE317E1}\Setup.exe" /z-uninstall
      PowerDirector-->"C:\Program Files\InstallShield Installation Information\{CB099890-1D5F-11D5-9EA9-0050BAE317E1}\Setup.exe" /z-uninstall
      ProtectSmart Hard Drive Protection-->MsiExec.exe /X{9D615069-AA8F-4E89-AE9D-77AAE90F529F}
      Realtek 8169 8168 8101E 8102E Ethernet Driver-->C:\Program Files\InstallShield Installation Information\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}\setup.exe -runfromtemp -l0x040c -removeonly
      Security Update for 2007 Microsoft Office System (KB969559)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {69F52148-9BF6-4CDC-BF76-103DEAF3DD08}
      Security Update for 2007 Microsoft Office System (KB973704)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {E626DC89-A787-4553-9BB3-DC2EC7E1593F}
      Security Update for Microsoft Office Excel 2007 (KB973593)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {7D6255E3-3423-4D8B-A328-F6F8D28DD5FE}
      Security Update for Microsoft Office PowerPoint 2007 (KB957789)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {7559E742-FF9F-4FAE-B279-008ED296CB4D}
      Security Update for Microsoft Office system 2007 (972581)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {3D019598-7B59-447A-80AE-815B703B84FF}
      Security Update for Microsoft Office system 2007 (KB969613)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {5ECEB317-CBE9-4E08-AB10-756CB6F0FB6C}
      Security Update for Microsoft Office system 2007 (KB974234)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {FCD742B9-7A55-44BC-A776-F795F21FEDDC}
      Security Update for Microsoft Office Visio Viewer 2007 (KB973709)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {71127777-8B2C-4F97-AF7A-6CF8CAC8224D}
      SPORE Creature Creator Trial Edition-->"C:\Program Files\HP Games\SPORE Creature Creator Trial Edition\Uninstall.exe"
      Spybot - Search & Destroy-->"C:\Program Files\Spybot - Search & Destroy\unins000.exe"
      Steam(TM)-->MsiExec.exe /X{048298C9-A4D3-490B-9FF9-AB023A9238F3}
      Synaptics Pointing Device Driver-->rundll32.exe "C:\Program Files\Synaptics\SynTP\SynISDLL.dll",standAloneUninstall
      Update for 2007 Microsoft Office System (KB967642)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {C444285D-5E4F-48A4-91DD-47AAAA68E92D}
      Update for Microsoft .NET Framework 3.5 SP1 (KB963707)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {B2AE9C82-DC7B-3641-BFC8-87275C4F3607} /qb+ REBOOTPROMPT=""
      Update for Microsoft Office Word 2007 (KB974561)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {0CDDBAA2-2111-4A0E-A1B0-76C40C635331}

      ======Hosts File======

      127.0.0.1 www.007guard.com
      127.0.0.1 007guard.com
      127.0.0.1 008i.com
      127.0.0.1 www.008k.com
      127.0.0.1 008k.com
      127.0.0.1 www.00hq.com
      127.0.0.1 00hq.com
      127.0.0.1 010402.com
      127.0.0.1 www.032439.com
      127.0.0.1 032439.com

      ======Security center information======

      AS: Spybot - Search and Destroy
      AS: Windows Defender

      ======System event log======

      Computer Name: PC-de-xxxxxxxx
      Event Code: 12
      Message: Le périphérique 'JMB38X SD Host Controller' (PCI\VEN_197B&DEV_2381&SUBSYS_3600103C&REV_00\4&2c5d624a&0&0250) a disparu du système sans que sa suppression ait tout d'abord été préparée.
      Record Number: 18152
      Source Name: PlugPlayManager
      Time Written: 20090709085521.000000-000
      Event Type: Erreur
      User:

      Computer Name: PC-de-xxxxxx
      Event Code: 12
      Message: Le périphérique 'JMB38X SD/MMC Host Controller' (PCI\VEN_197B&DEV_2382&SUBSYS_3600103C&REV_00\4&2c5d624a&0&0150) a disparu du système sans que sa suppression ait tout d'abord été préparée.
      Record Number: 18151
      Source Name: PlugPlayManager
      Time Written: 20090709085521.000000-000
      Event Type: Erreur
      User:

      Computer Name: PC-de-xxxxxxxxxxx
      Event Code: 1003
      Message: Votre ordinateur n'a pas pu renouveler son adresse à partir du réseau (à partir du serveur DHCP) pour la carte réseau dont l'adresse réseau est 00242B42DA58. Il s'est produit l'erreur suivante :
      L'opération a été annulée par l'utilisateur.. Votre ordinateur va continuer à essayer d'obtenir sa propre adresse auprès du serveur d'adresse réseau (DHCP).
      Record Number: 18141
      Source Name: Microsoft-Windows-Dhcp-Client
      Time Written: 20090709085504.000000-000
      Event Type: Avertissement
      User:

      Computer Name: PC-de-xxxxxxxx
      Event Code: 1003
      Message: Votre ordinateur n'a pas pu renouveler son adresse à partir du réseau (à partir du serveur DHCP) pour la carte réseau dont l'adresse réseau est 00242B42DA58. Il s'est produit l'erreur suivante :
      L'opération a été annulée par l'utilisateur.. Votre ordinateur va continuer à essayer d'obtenir sa propre adresse auprès du serveur d'adresse réseau (DHCP).
      Record Number: 18138
      Source Name: Microsoft-Windows-Dhcp-Client
      Time Written: 20090709085501.000000-000
      Event Type: Avertissement
      User:

      Computer Name: PC-de-xxxxxxxx
      Event Code: 1003
      Message: Votre ordinateur n'a pas pu renouveler son adresse à partir du réseau (à partir du serveur DHCP) pour la carte réseau dont l'adresse réseau est 00242B42DA58. Il s'est produit l'erreur suivante :
      L'opération a été annulée par l'utilisateur.. Votre ordinateur va continuer à essayer d'obtenir sa propre adresse auprès du serveur d'adresse réseau (DHCP).
      Record Number: 18133
      Source Name: Microsoft-Windows-Dhcp-Client
      Time Written: 20090708202920.000000-000
      Event Type: Avertissement
      User:

      =====Application event log=====

      Computer Name: PC-de-xxxxxxxx
      Event Code: 10
      Message: Le filtre d’événement avec la requête « SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99 » n’a pas pu être réactivé dans l’espace de noms « //./root/CIMV2 » à cause de l’erreur 0x80041003. Les événements ne peuvent pas être délivrés à travers ce filtre tant que le problème ne sera pas corrigé.
      Record Number: 564
      Source Name: Microsoft-Windows-WMI
      Time Written: 20090704094535.000000-000
      Event Type: Erreur
      User:

      Computer Name: PC-de-xxxxxx
      Event Code: 3008
      Message: Impossible d'insérer l'entrée <C:\USERS\RAPHY\NTUSER.INI> dans l'historique.

      Contexte : Application , Catalogue SystemIndex

      Détails :
      Un périphérique attaché au système ne fonctionne pas correctement. (0x8007001f)

      Record Number: 563
      Source Name: Microsoft-Windows-Search
      Time Written: 20090704094520.000000-000
      Event Type: Erreur
      User:

      Computer Name: PC-de-xxxxxxxxx
      Event Code: 474
      Message: Windows (2380) Windows: La lecture de pages de base de données à partir du fichier « C:\ProgramData\Microsoft\Search\Data\Applications\Windows\Windows.edb » à l’adresse relative 1155072 (0x000000000011a000) (page de base de données 140 (0x8C)) de 8192 (0x00002000) octets a échoué à la vérification à cause d’une non-concordance de total de contrôle. Le total de contrôle attendu était 4683833773609996032 (0x4100520047004f00) tandis que le total de contrôle réel était 601964600722 (0x0000008c27e2dd92). L’opération de lecture échouera en indiquant l’erreur -1018 (0xfffffc06). Si le problème persiste, restaurez la base de données à partir d’une version de sauvegarde antérieure. Ce problème est probablement dû à un matériel défectueux. Contactez votre fournisseur de matériel afin d’obtenir une assistance complémentaire pour diagnostiquer le problème.
      Record Number: 559
      Source Name: ESENT
      Time Written: 20090704094516.000000-000
      Event Type: Erreur
      User:

      Computer Name: PC-de-xxxxxxxxxxx
      Event Code: 1530
      Message: Windows a détecté que votre fichier de Registre est toujours utilisé par d'autres applications ou services. Le fichier va être déchargé. Les applications ou services qui ont accès à votre Registre risquent de ne pas fonctionner correctement après cela.

      DÉTAIL -
      1 user registry handles leaked from \Registry\User\S-1-5-21-2786985380-1862248807-3620367851-1000:
      Process 568 (\Device\HarddiskVolume1\Windows\System32\winlogon.exe) has opened key \REGISTRY\USER\S-1-5-21-2786985380-1862248807-3620367851-1000

      Record Number: 536
      Source Name: Microsoft-Windows-User Profiles Service
      Time Written: 20090704094249.000000-000
      Event Type: Avertissement
      User: AUTORITE NT\SYSTEM

      Computer Name: PC-de-xxxxxxxxxx
      Event Code: 4621
      Message: Le système d'événements de COM+ n'a pas pu supprimer l'objet EventSystem.EventSubscription {CEB8B221-89C5-41A8-98CE-79B413BF150B}-{00000000-0000-0000-0000-000000000000}-{00000000-0000-0000-0000-000000000000}. HRESULT : 80070005.
      Record Number: 533
      Source Name: Microsoft-Windows-EventSystem
      Time Written: 20090704094247.000000-000
      Event Type: Erreur
      User:

      =====Security event log=====

      Computer Name: PC-de-xxxxxxxxx
      Event Code: 5032
      Message: Le Pare-feu Windows n’a pas pu notifier l’utilisateur qu’il a empêché une application d’accepter des connexions entrantes sur le réseau.

      Code d’erreur : 2
      Record Number: 1083
      Source Name: Microsoft-Windows-Security-Auditing
      Time Written: 20090704084004.822200-000
      Event Type: Échec de l'audit
      User:

      Computer Name: PC-de-xxxxxxxxxx
      Event Code: 5032
      Message: Le Pare-feu Windows n’a pas pu notifier l’utilisateur qu’il a empêché une application d’accepter des connexions entrantes sur le réseau.

      Code d’erreur : 2
      Record Number: 1082
      Source Name: Microsoft-Windows-Security-Auditing
      Time Written: 20090704084004.822200-000
      Event Type: Échec de l'audit
      User:

      Computer Name: PC-de-raphy
      Event Code: 4905
      Message: Une tentative d’annulation d’inscription de la source d’un événement de sécurité a été effectuée.

      Sujet :
      ID de sécurité : S-1-5-18
      Nom du compte : xxxxxxxxxxxxxxxx
      Domaine du compte : WORKGROUP
      ID d’ouverture de session : xxxxxx
      Processus :
      ID du processus : 0xe24
      Nom du processus : C:\Windows\System32\VSSVC.exe

      Source de l’événement :
      Nom de la source : VSSAudit
      ID de la source de l’événement : 0x13e635
      Record Number: 1081
      Source Name: Microsoft-Windows-Security-Auditing
      Time Written: 20090704082841.041000-000
      Event Type: Succès de l'audit
      User:

      Computer Name: PC-de-xxxxxxxxxx
      Event Code: 4904
      Message: Une tentative d’inscription de la source d’un événement de sécurité a été effectuée.

      Sujet :
      ID de sécurité : S-1-5-18
      Nom du compte : xxxxxxxxx
      Domaine du compte : WORKGROUP
      ID d’ouverture de session : xxxxxxxx
      Processus :
      ID du processus : 0xe24
      Nom du processus : C:\Windows\System32\VSSVC.exe

      Source de l’événement :
      Nom de la source : VSSAudit
      ID de la source de l’événement : 0x13e635
      Record Number: 1080
      Source Name: Microsoft-Windows-Security-Auditing
      Time Written: 20090704082841.041000-000
      Event Type: Succès de l'audit
      User:

      Computer Name: PC-de-xxxxxxxxxx
      Event Code: 1102
      Message: Le journal d’audit a été effacé.
      Objet :
      ID de sécurité : mon id
      Nom de compte : mon nom
      Nom de domaine : PC-de-mon nom
      ID de connexion : mon id de conexion
      Record Number: 1079
      Source Name: Microsoft-Windows-Eventlog
      Time Written: 20090704082823.600200-000
      Event Type: Succès de l'audit
      User:

      ======Environment variables======

      "ComSpec"=%SystemRoot%\system32\cmd.exe
      "FP_NO_HOST_CHECK"=NO
      "OS"=Windows_NT
      "Path"=%CommonProgramFiles%\Microsoft Shared\Windows Live;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\CyberLink\Power2Go;C:\Program Files\ATI Technologies\ATI.ACE\Core-Static
      "PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
      "PROCESSOR_ARCHITECTURE"=x86
      "TEMP"=%SystemRoot%\TEMP
      "TMP"=%SystemRoot%\TEMP
      "USERNAME"=SYSTEM
      "windir"=%SystemRoot%
      "PROCESSOR_LEVEL"=17
      "PROCESSOR_IDENTIFIER"=x86 Family 17 Model 3 Stepping 1, AuthenticAMD
      "PROCESSOR_REVISION"=0301
      "NUMBER_OF_PROCESSORS"=2
      "TRACE_FORMAT_SEARCH_PATH"=\\NTREL202.ntdev.corp.microsoft.com\4F18C3A5-CA09-4DBD-B6FC-219FDD4C6BE0\TraceFormat
      "DFSTRACINGON"=FALSE
      "OnlineServices"=Online Services
      "Platform"=MCD
      "PCBRAND"=Pavilion

      -----------------EOF-----------------
      1. info.txt logfile of random's system information tool 1.06 2009-11-20 08:56:52

        ======Uninstall list======

        -->"C:\Program Files\HP Games\5 Card Deluxe\Uninstall.exe"
        -->"C:\Program Files\HP Games\Agatha Christie - Death on the Nile\Uninstall.exe"
        -->"C:\Program Files\HP Games\Age of Castles\Uninstall.exe"
        -->"C:\Program Files\HP Games\Bejeweled 2 Deluxe\Uninstall.exe"
        -->"C:\Program Files\HP Games\Blasterball 3\Uninstall.exe"
        -->"C:\Program Files\HP Games\Build-a-lot 2\Uninstall.exe"
        -->"C:\Program Files\HP Games\Cake Mania\Uninstall.exe"
        -->"C:\Program Files\HP Games\Chuzzle Deluxe\Uninstall.exe"
        -->"C:\Program Files\HP Games\Diner Dash 2 Restaurant Rescue\Uninstall.exe"
        -->"C:\Program Files\HP Games\Diner Dash\Uninstall.exe"
        -->"C:\Program Files\HP Games\FATE\Uninstall.exe"
        -->"C:\Program Files\HP Games\Fish Tycoon\Uninstall.exe"
        -->"C:\Program Files\HP Games\Gem Shop\Uninstall.exe"
        -->"C:\Program Files\HP Games\Granny in Paradise\Uninstall.exe"
        -->"C:\Program Files\HP Games\Insaniquarium Deluxe\Uninstall.exe"
        -->"C:\Program Files\HP Games\Mah Jong Quest\Uninstall.exe"
        -->"C:\Program Files\HP Games\Mahjongg Artifacts\Uninstall.exe"
        -->"C:\Program Files\HP Games\My HP Game Console\Uninstall.exe"
        -->"C:\Program Files\HP Games\Ocean Express\Uninstall.exe"
        -->"C:\Program Files\HP Games\Peggle\Uninstall.exe"
        -->"C:\Program Files\HP Games\Polar Bowler\Uninstall.exe"
        -->"C:\Program Files\HP Games\Polar Golfer\Uninstall.exe"
        -->"C:\Program Files\HP Games\Polar Pool\Uninstall.exe"
        -->"C:\Program Files\HP Games\Puzzle Express\Uninstall.exe"
        -->"C:\Program Files\HP Games\Slingo Deluxe\Uninstall.exe"
        -->"C:\Program Files\HP Games\SPORE Creature Creator Trial Edition\Uninstall.exe"
        -->"C:\Program Files\HP Games\Sudoku Quest\Uninstall.exe"
        -->"C:\Program Files\HP Games\The Treasures of Montezuma\Uninstall.exe"
        -->"C:\Program Files\HP Games\Tradewinds\Uninstall.exe"
        -->"C:\Program Files\HP Games\Virtual Villagers - The Secret City\Uninstall.exe"
        -->"C:\Program Files\HP Games\Zuma Deluxe\Uninstall.exe"
        Activation Assistant for the 2007 Microsoft Office suites-->"C:\ProgramData\{174892B1-CBE7-44F5-86FF-AB555EFD73A3}\Microsoft Office Activation Assistant.exe" REMOVE=TRUE MODIFY=FALSE
        ActiveCheck component for HP Active Support Library-->MsiExec.exe /X{254C37AA-6B72-4300-84F6-98A82419187E}
        Adobe Download Manager-->"C:\Windows\system32\rundll32.exe" "C:\Program Files\NOS\bin\getPlus_Helper.dll",Uninstall /IE2883E8F-472F-4fb0-9522-AC9BF37916A7 /Get1
        Adobe Flash Player 10 ActiveX-->C:\Windows\system32\Macromed\Flash\uninstall_activeX.exe
        Adobe Reader 9 - Français-->MsiExec.exe /I{AC76BA86-7AD7-1036-7B44-A90000000001}
        Adobe Shockwave Player-->MsiExec.exe /X{AD72CFB4-C2BF-424E-9DF0-C7BAD1F30A11}
        AMD USB Audio Driver Filter-->MsiExec.exe /X{A3AB35FA-943E-4799-99DC-46EFD59E998F}
        AOL Toolbar 5.0-->"C:\Program Files\AOL\AOL Toolbar 5.0\uninstall.exe"
        Assistant de connexion Windows Live ID-->MsiExec.exe /X{10A44844-4465-456E-8C97-80BDD4F68845}
        Atheros Driver Installation Program-->C:\Program Files\InstallShield Installation Information\{C3A32068-8AB1-4327-BB16-BED9C6219DC7}\setup.exe -runfromtemp -l0x040c
        avast! Antivirus-->C:\Program Files\Alwil Software\Avast4\aswRunDll.exe "C:\Program Files\Alwil Software\Avast4\Setup\setiface.dll",RunSetup
        Catalyst Control Center - Branding-->MsiExec.exe /I{558FF444-F562-4E4C-98BD-7B20EE184D2E}
        Cisco EAP-FAST Module-->MsiExec.exe /I{415B2719-AD3A-4944-B404-C472DB6085B3}
        Cisco LEAP Module-->MsiExec.exe /I{83770D14-21B9-44B3-8689-F7B523F94560}
        Cisco PEAP Module-->MsiExec.exe /I{669C7BD8-DAA2-49B6-966C-F1E2AAE6B17E}
        Contrôle Parental-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{93094D10-9388-11D4-9886-0000B43F396D}\Setup.exe" -l0x40c
        Counter-Strike: Source-->MsiExec.exe /I{9580813D-94B1-4C28-9426-A441E2BB29A5}
        CyberLink DVD Suite-->"C:\Program Files\InstallShield Installation Information\{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}\Setup.exe" /z-uninstall
        CyberLink DVD Suite-->"C:\Program Files\InstallShield Installation Information\{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}\Setup.exe" /z-uninstall
        ESU for Microsoft Vista-->MsiExec.exe /I{3877C901-7B90-4727-A639-B6ED2DD59D43}
        HijackThis 2.0.2-->"C:\Program Files\trend micro\HijackThis.exe" /uninstall
        Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT=""
        Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT=""
        HP Active Support Library-->"C:\Program Files\InstallShield Installation Information\{CE7E3BE0-2DD3-4416-A690-F9E4A99A8CFF}\setup.exe" -runfromtemp -l0x0409 -removeonly
        HP Customer Experience Enhancements-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{57A5AEC1-97FC-474D-92C4-908FCC2253D4}\setup.exe" -l0x9 -removeonly
        HP Doc Viewer-->MsiExec.exe /I{082702D5-5DD8-4600-BCE5-48B15174687F}
        HP Help and Support-->MsiExec.exe /I{0054A0F6-00C9-4498-B821-B5C9578F433E}
        HP MediaSmart DVD-->"C:\Program Files\InstallShield Installation Information\{DCCAD079-F92C-44DA-B258-624FC6517A5A}\setup.exe" /z-uninstall
        HP MediaSmart DVD-->"C:\Program Files\InstallShield Installation Information\{DCCAD079-F92C-44DA-B258-624FC6517A5A}\setup.exe" /z-uninstall
        HP MediaSmart Music/Photo/Video-->"C:\Program Files\InstallShield Installation Information\{B2EE25B9-5B00-4ACF-94F0-92433C28C39E}\setup.exe" /z-uninstall
        HP MediaSmart Music/Photo/Video-->"C:\Program Files\InstallShield Installation Information\{B2EE25B9-5B00-4ACF-94F0-92433C28C39E}\setup.exe" /z-uninstall /zMS
        HP MediaSmart SmartMenu-->MsiExec.exe /I{D8BB0945-B990-47DC-BFE3-3FDE1E165B30}
        HP MediaSmart TV-->"C:\Program Files\InstallShield Installation Information\{67626E09-5366-4480-8F1E-93FADF50CA15}\Setup.exe" /z-uninstall
        HP MediaSmart TV-->"C:\Program Files\InstallShield Installation Information\{67626E09-5366-4480-8F1E-93FADF50CA15}\Setup.exe" /z-uninstall
        HP MediaSmart Webcam-->"C:\Program Files\InstallShield Installation Information\{01FB4998-33C4-4431-85ED-079E3EEFE75D}\setup.exe" /z-uninstall
        HP MediaSmart Webcam-->"C:\Program Files\InstallShield Installation Information\{01FB4998-33C4-4431-85ED-079E3EEFE75D}\setup.exe" /z-uninstall
        HP Quick Launch Buttons 6.40 J1-->C:\Program Files\InstallShield Installation Information\{34D2AB40-150D-475D-AE32-BD23FB5EE355}\setup.exe -runfromtemp -l0x040c uninst
        HP Total Care Advisor-->MsiExec.exe /X{154A4184-1A3D-4BF9-A5AE-4FA1660445F3}
        HP Total Care Advisor-->MsiExec.exe /X{F31E534B-4199-4552-8154-5C130710D68E}
        HP Update-->MsiExec.exe /X{C8FD5BC1-92EF-4C15-92A9-F9AC7F61985F}
        HP User Guides 0128-->MsiExec.exe /X{07A5026D-5F9F-43D1-9073-C2F882D417E7}
        HP Wireless Assistant-->MsiExec.exe /I{9ADABDDE-9644-461B-9E73-83FA3EFCAB50}
        HPAsset component for HP Active Support Library-->MsiExec.exe /X{669D4A35-146B-4314-89F1-1AC3D7B88367}
        HPNetworkAssistant-->MsiExec.exe /I{228C6B46-64E2-404E-898A-EF0830603EF4}
        HPTCSSetup-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{846DDADA-0239-4B67-A6B1-33658863793B}\setup.exe" -l0x9 -removeonly
        IDT Audio-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}\setup.exe" -l0x40c -remove -removeonly
        Insurgency-->"C:\Program Files\Steam\steam.exe" steam://uninstall/17700
        Java(TM) 6 Update 17-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216014FF}
        Java(TM) 6 Update 7-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160070}
        JMicron JMB38X Flash Media Controller-->"C:\Program Files\InstallShield Installation Information\{26604C7E-A313-4D12-867F-7C6E7820BE4C}\setup.exe" delpkg
        LabelPrint-->"C:\Program Files\InstallShield Installation Information\{C59C179C-668D-49A9-B6EA-0121CCFC1243}\Setup.exe" /z-uninstall
        LabelPrint-->"C:\Program Files\InstallShield Installation Information\{C59C179C-668D-49A9-B6EA-0121CCFC1243}\Setup.exe" /z-uninstall
        LightScribe System Software 1.14.17.1-->MsiExec.exe /X{0E7DBD52-B097-4F2B-A7C7-F105B0D20FDB}
        Malwarebytes' Anti-Malware-->"C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"
        Microsoft .NET Framework 3.5 Language Pack SP1 - fra-->MsiExec.exe /I{3E31821C-7917-367E-938E-E65FC413EA31}
        Microsoft .NET Framework 3.5 SP1-->c:\Windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
        Microsoft .NET Framework 3.5 SP1-->MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
        Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0016-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
        Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0018-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
        Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001B-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
        Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-006E-040C-0000-0000000FF1CE} /uninstall {B165D3C2-40AE-4D39-86F7-E5C87C4264C0}
        Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-00A1-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
        Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}
        Microsoft Office Excel MUI (French) 2007-->MsiExec.exe /X{90120000-0016-040C-0000-0000000FF1CE}
        Microsoft Office Home and Student 2007-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall HOMESTUDENTR /dll OSETUP.DLL
        Microsoft Office Home and Student 2007-->MsiExec.exe /X{91120000-002F-0000-0000-0000000FF1CE}
        Microsoft Office Live Add-in 1.4-->MsiExec.exe /I{AE3CF174-872C-46C6-B9F6-C0593F3BC7B8}
        Microsoft Office OneNote MUI (French) 2007-->MsiExec.exe /X{90120000-00A1-040C-0000-0000000FF1CE}
        Microsoft Office PowerPoint MUI (French) 2007-->MsiExec.exe /X{90120000-0018-040C-0000-0000000FF1CE}
        Microsoft Office PowerPoint Viewer 2007 (French)-->MsiExec.exe /X{95120000-00AF-040C-0000-0000000FF1CE}
        Microsoft Office Proof (Arabic) 2007-->MsiExec.exe /X{90120000-001F-0401-0000-0000000FF1CE}
        Microsoft Office Proof (Dutch) 2007-->MsiExec.exe /X{90120000-001F-0413-0000-0000000FF1CE}
        Microsoft Office Proof (English) 2007-->MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
        Microsoft Office Proof (French) 2007-->MsiExec.exe /X{90120000-001F-040C-0000-0000000FF1CE}
        Microsoft Office Proof (German) 2007-->MsiExec.exe /X{90120000-001F-0407-0000-0000000FF1CE}
        Microsoft Office Proof (Spanish) 2007-->MsiExec.exe /X{90120000-001F-0C0A-0000-0000000FF1CE}
        Microsoft Office Proofing (French) 2007-->MsiExec.exe /X{90120000-002C-040C-0000-0000000FF1CE}
        Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0401-0000-0000000FF1CE} /uninstall {14809F99-C601-4D4A-9391-F1E8FAA964C5}
        Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0407-0000-0000000FF1CE} /uninstall {A0516415-ED61-419A-981D-93596DA74165}
        Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0409-0000-0000000FF1CE} /uninstall {ABDDE972-355B-4AF1-89A8-DA50B7B5C045}
        Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-040C-0000-0000000FF1CE} /uninstall {F580DDD5-8D37-4998-968E-EBB76BB86787}
        Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0413-0000-0000000FF1CE} /uninstall {D66D5A44-E480-4BA4-B4F2-C554F6B30EBB}
        Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0C0A-0000-0000000FF1CE} /uninstall {187308AB-5FA7-4F14-9AB9-D290383A10D9}
        Microsoft Office Shared MUI (French) 2007-->MsiExec.exe /X{90120000-006E-040C-0000-0000000FF1CE}
        Microsoft Office Word MUI (French) 2007-->MsiExec.exe /X{90120000-001B-040C-0000-0000000FF1CE}
        Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
        Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053-->MsiExec.exe /X{770657D0-A123-3C07-8E44-1C83EC895118}
        Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
        Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{A49F249F-0C91-497F-86DF-B2585E8E76B7}
        Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148-->MsiExec.exe /X{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}
        Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729-->MsiExec.exe /X{3C3D696B-0DB7-3C6D-A356-3DB8CE541918}
        Microsoft Works-->MsiExec.exe /I{3B160861-7250-451E-B5EE-8B92BF30A710}
        Mise à jour Microsoft Office Excel 2007 Help (KB963678)-->msiexec /package {90120000-0016-040C-0000-0000000FF1CE} /uninstall {B761869A-B85C-40E2-994C-A1CE78AC8F2C}
        Mise à jour Microsoft Office Powerpoint 2007 Help (KB963669)-->msiexec /package {90120000-0018-040C-0000-0000000FF1CE} /uninstall {C3DCA38E-005E-41BA-A52A-7C3429F351C3}
        Mise à jour Microsoft Office Word 2007 Help (KB963665)-->msiexec /package {90120000-001B-040C-0000-0000000FF1CE} /uninstall {81536A04-DBFB-4DB3-978F-0F284590C223}
        Module de compatibilité pour Microsoft Office System 2007-->MsiExec.exe /X{90120000-0020-040C-0000-0000000FF1CE}
        Module linguistique Microsoft .NET Framework 3.5 SP1- fra-->c:\Windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack SP1 - fra\setup.exe
        MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
        muvee Reveal-->MsiExec.exe /X{DD35C328-F115-BEDA-6EEE-E00C5AACCCBC}
        My HP Games-->"C:\Program Files\HP Games\Uninstall.exe"
        Norton Internet Security-->MsiExec.exe /I{7B15D70E-9449-4CFB-B9BC-798465B2BD5C}
        Package de pilotes Windows - ENE (enecir) HIDClass (09/04/2008 2.6.0.0)-->C:\PROGRA~1\DIFX\270581355A767BF1\DPInst.exe /u C:\Windows\System32\DriverStore\FileRepository\enecir.inf_1a3c82dd\enecir.inf
        Power2Go-->"C:\Program Files\InstallShield Installation Information\{40BF1E83-20EB-11D8-97C5-0009C5020658}\Setup.exe" /z-uninstall
        Power2Go-->"C:\Program Files\InstallShield Installation Information\{40BF1E83-20EB-11D8-97C5-0009C5020658}\Setup.exe" /z-uninstall
        PowerDirector-->"C:\Program Files\InstallShield Installation Information\{CB099890-1D5F-11D5-9EA9-0050BAE317E1}\Setup.exe" /z-uninstall
        PowerDirector-->"C:\Program Files\InstallShield Installation Information\{CB099890-1D5F-11D5-9EA9-0050BAE317E1}\Setup.exe" /z-uninstall
        ProtectSmart Hard Drive Protection-->MsiExec.exe /X{9D615069-AA8F-4E89-AE9D-77AAE90F529F}
        Realtek 8169 8168 8101E 8102E Ethernet Driver-->C:\Program Files\InstallShield Installation Information\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}\setup.exe -runfromtemp -l0x040c -removeonly
        Security Update for 2007 Microsoft Office System (KB969559)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {69F52148-9BF6-4CDC-BF76-103DEAF3DD08}
        Security Update for 2007 Microsoft Office System (KB973704)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {E626DC89-A787-4553-9BB3-DC2EC7E1593F}
        Security Update for Microsoft Office Excel 2007 (KB973593)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {7D6255E3-3423-4D8B-A328-F6F8D28DD5FE}
        Security Update for Microsoft Office PowerPoint 2007 (KB957789)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {7559E742-FF9F-4FAE-B279-008ED296CB4D}
        Security Update for Microsoft Office system 2007 (972581)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {3D019598-7B59-447A-80AE-815B703B84FF}
        Security Update for Microsoft Office system 2007 (KB969613)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {5ECEB317-CBE9-4E08-AB10-756CB6F0FB6C}
        Security Update for Microsoft Office system 2007 (KB974234)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {FCD742B9-7A55-44BC-A776-F795F21FEDDC}
        Security Update for Microsoft Office Visio Viewer 2007 (KB973709)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {71127777-8B2C-4F97-AF7A-6CF8CAC8224D}
        SPORE Creature Creator Trial Edition-->"C:\Program Files\HP Games\SPORE Creature Creator Trial Edition\Uninstall.exe"
        Spybot - Search & Destroy-->"C:\Program Files\Spybot - Search & Destroy\unins000.exe"
        Steam(TM)-->MsiExec.exe /X{048298C9-A4D3-490B-9FF9-AB023A9238F3}
        Synaptics Pointing Device Driver-->rundll32.exe "C:\Program Files\Synaptics\SynTP\SynISDLL.dll",standAloneUninstall
        Update for 2007 Microsoft Office System (KB967642)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {C444285D-5E4F-48A4-91DD-47AAAA68E92D}
        Update for Microsoft .NET Framework 3.5 SP1 (KB963707)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {B2AE9C82-DC7B-3641-BFC8-87275C4F3607} /qb+ REBOOTPROMPT=""
        Update for Microsoft Office Word 2007 (KB974561)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {0CDDBAA2-2111-4A0E-A1B0-76C40C635331}

        ======Hosts File======

        127.0.0.1 www.007guard.com
        127.0.0.1 007guard.com
        127.0.0.1 008i.com
        127.0.0.1 www.008k.com
        127.0.0.1 008k.com
        127.0.0.1 www.00hq.com
        127.0.0.1 00hq.com
        127.0.0.1 010402.com
        127.0.0.1 www.032439.com
        127.0.0.1 032439.com

        ======Security center information======

        AS: Spybot - Search and Destroy
        AS: Windows Defender

        ======System event log======

        Computer Name: PC-de-xxxxxxxx
        Event Code: 12
        Message: Le périphérique 'JMB38X SD Host Controller' (PCI\VEN_197B&DEV_2381&SUBSYS_3600103C&REV_00\4&2c5d624a&0&0250) a disparu du système sans que sa suppression ait tout d'abord été préparée.
        Record Number: 18152
        Source Name: PlugPlayManager
        Time Written: 20090709085521.000000-000
        Event Type: Erreur
        User:

        Computer Name: PC-de-xxxxxx
        Event Code: 12
        Message: Le périphérique 'JMB38X SD/MMC Host Controller' (PCI\VEN_197B&DEV_2382&SUBSYS_3600103C&REV_00\4&2c5d624a&0&0150) a disparu du système sans que sa suppression ait tout d'abord été préparée.
        Record Number: 18151
        Source Name: PlugPlayManager
        Time Written: 20090709085521.000000-000
        Event Type: Erreur
        User:

        Computer Name: PC-de-xxxxxxxxxxx
        Event Code: 1003
        Message: Votre ordinateur n'a pas pu renouveler son adresse à partir du réseau (à partir du serveur DHCP) pour la carte réseau dont l'adresse réseau est 00242B42DA58. Il s'est produit l'erreur suivante :
        L'opération a été annulée par l'utilisateur.. Votre ordinateur va continuer à essayer d'obtenir sa propre adresse auprès du serveur d'adresse réseau (DHCP).
        Record Number: 18141
        Source Name: Microsoft-Windows-Dhcp-Client
        Time Written: 20090709085504.000000-000
        Event Type: Avertissement
        User:

        Computer Name: PC-de-xxxxxxxx
        Event Code: 1003
        Message: Votre ordinateur n'a pas pu renouveler son adresse à partir du réseau (à partir du serveur DHCP) pour la carte réseau dont l'adresse réseau est 00242B42DA58. Il s'est produit l'erreur suivante :
        L'opération a été annulée par l'utilisateur.. Votre ordinateur va continuer à essayer d'obtenir sa propre adresse auprès du serveur d'adresse réseau (DHCP).
        Record Number: 18138
        Source Name: Microsoft-Windows-Dhcp-Client
        Time Written: 20090709085501.000000-000
        Event Type: Avertissement
        User:

        Computer Name: PC-de-xxxxxxxx
        Event Code: 1003
        Message: Votre ordinateur n'a pas pu renouveler son adresse à partir du réseau (à partir du serveur DHCP) pour la carte réseau dont l'adresse réseau est 00242B42DA58. Il s'est produit l'erreur suivante :
        L'opération a été annulée par l'utilisateur.. Votre ordinateur va continuer à essayer d'obtenir sa propre adresse auprès du serveur d'adresse réseau (DHCP).
        Record Number: 18133
        Source Name: Microsoft-Windows-Dhcp-Client
        Time Written: 20090708202920.000000-000
        Event Type: Avertissement
        User:

        =====Application event log=====

        Computer Name: PC-de-xxxxxxxx
        Event Code: 10
        Message: Le filtre d’événement avec la requête « SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99 » n’a pas pu être réactivé dans l’espace de noms « //./root/CIMV2 » à cause de l’erreur 0x80041003. Les événements ne peuvent pas être délivrés à travers ce filtre tant que le problème ne sera pas corrigé.
        Record Number: 564
        Source Name: Microsoft-Windows-WMI
        Time Written: 20090704094535.000000-000
        Event Type: Erreur
        User:

        Computer Name: PC-de-xxxxxx
        Event Code: 3008
        Message: Impossible d'insérer l'entrée <C:\USERS\RAPHY\NTUSER.INI> dans l'historique.

        Contexte : Application , Catalogue SystemIndex

        Détails :
        Un périphérique attaché au système ne fonctionne pas correctement. (0x8007001f)

        Record Number: 563
        Source Name: Microsoft-Windows-Search
        Time Written: 20090704094520.000000-000
        Event Type: Erreur
        User:

        Computer Name: PC-de-xxxxxxxxx
        Event Code: 474
        Message: Windows (2380) Windows: La lecture de pages de base de données à partir du fichier « C:\ProgramData\Microsoft\Search\Data\Applications\Windows\Windows.edb » à l’adresse relative 1155072 (0x000000000011a000) (page de base de données 140 (0x8C)) de 8192 (0x00002000) octets a échoué à la vérification à cause d’une non-concordance de total de contrôle. Le total de contrôle attendu était 4683833773609996032 (0x4100520047004f00) tandis que le total de contrôle réel était 601964600722 (0x0000008c27e2dd92). L’opération de lecture échouera en indiquant l’erreur -1018 (0xfffffc06). Si le problème persiste, restaurez la base de données à partir d’une version de sauvegarde antérieure. Ce problème est probablement dû à un matériel défectueux. Contactez votre fournisseur de matériel afin d’obtenir une assistance complémentaire pour diagnostiquer le problème.
        Record Number: 559
        Source Name: ESENT
        Time Written: 20090704094516.000000-000
        Event Type: Erreur
        User:

        Computer Name: PC-de-xxxxxxxxxxx
        Event Code: 1530
        Message: Windows a détecté que votre fichier de Registre est toujours utilisé par d'autres applications ou services. Le fichier va être déchargé. Les applications ou services qui ont accès à votre Registre risquent de ne pas fonctionner correctement après cela.

        DÉTAIL -
        1 user registry handles leaked from \Registry\User\S-1-5-21-2786985380-1862248807-3620367851-1000:
        Process 568 (\Device\HarddiskVolume1\Windows\System32\winlogon.exe) has opened key \REGISTRY\USER\S-1-5-21-2786985380-1862248807-3620367851-1000

        Record Number: 536
        Source Name: Microsoft-Windows-User Profiles Service
        Time Written: 20090704094249.000000-000
        Event Type: Avertissement
        User: AUTORITE NT\SYSTEM

        Computer Name: PC-de-xxxxxxxxxx
        Event Code: 4621
        Message: Le système d'événements de COM+ n'a pas pu supprimer l'objet EventSystem.EventSubscription {CEB8B221-89C5-41A8-98CE-79B413BF150B}-{00000000-0000-0000-0000-000000000000}-{00000000-0000-0000-0000-000000000000}. HRESULT : 80070005.
        Record Number: 533
        Source Name: Microsoft-Windows-EventSystem
        Time Written: 20090704094247.000000-000
        Event Type: Erreur
        User:

        =====Security event log=====

        Computer Name: PC-de-xxxxxxxxx
        Event Code: 5032
        Message: Le Pare-feu Windows n’a pas pu notifier l’utilisateur qu’il a empêché une application d’accepter des connexions entrantes sur le réseau.

        Code d’erreur : 2
        Record Number: 1083
        Source Name: Microsoft-Windows-Security-Auditing
        Time Written: 20090704084004.822200-000
        Event Type: Échec de l'audit
        User:

        Computer Name: PC-de-xxxxxxxxxx
        Event Code: 5032
        Message: Le Pare-feu Windows n’a pas pu notifier l’utilisateur qu’il a empêché une application d’accepter des connexions entrantes sur le réseau.

        Code d’erreur : 2
        Record Number: 1082
        Source Name: Microsoft-Windows-Security-Auditing
        Time Written: 20090704084004.822200-000
        Event Type: Échec de l'audit
        User:

        Computer Name: PC-de-raphy
        Event Code: 4905
        Message: Une tentative d’annulation d’inscription de la source d’un événement de sécurité a été effectuée.

        Sujet :
        ID de sécurité : S-1-5-18
        Nom du compte : xxxxxxxxxxxxxxxx
        Domaine du compte : WORKGROUP
        ID d’ouverture de session : xxxxxx
        Processus :
        ID du processus : 0xe24
        Nom du processus : C:\Windows\System32\VSSVC.exe

        Source de l’événement :
        Nom de la source : VSSAudit
        ID de la source de l’événement : 0x13e635
        Record Number: 1081
        Source Name: Microsoft-Windows-Security-Auditing
        Time Written: 20090704082841.041000-000
        Event Type: Succès de l'audit
        User:

        Computer Name: PC-de-xxxxxxxxxx
        Event Code: 4904
        Message: Une tentative d’inscription de la source d’un événement de sécurité a été effectuée.

        Sujet :
        ID de sécurité : S-1-5-18
        Nom du compte : xxxxxxxxx
        Domaine du compte : WORKGROUP
        ID d’ouverture de session : xxxxxxxx
        Processus :
        ID du processus : 0xe24
        Nom du processus : C:\Windows\System32\VSSVC.exe

        Source de l’événement :
        Nom de la source : VSSAudit
        ID de la source de l’événement : 0x13e635
        Record Number: 1080
        Source Name: Microsoft-Windows-Security-Auditing
        Time Written: 20090704082841.041000-000
        Event Type: Succès de l'audit
        User:

        Computer Name: PC-de-xxxxxxxxxx
        Event Code: 1102
        Message: Le journal d’audit a été effacé.
        Objet :
        ID de sécurité : mon id
        Nom de compte : mon nom
        Nom de domaine : PC-de-mon nom
        ID de connexion : mon id de conexion
        Record Number: 1079
        Source Name: Microsoft-Windows-Eventlog
        Time Written: 20090704082823.600200-000
        Event Type: Succès de l'audit
        User:

        ======Environment variables======

        "ComSpec"=%SystemRoot%\system32\cmd.exe
        "FP_NO_HOST_CHECK"=NO
        "OS"=Windows_NT
        "Path"=%CommonProgramFiles%\Microsoft Shared\Windows Live;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\CyberLink\Power2Go;C:\Program Files\ATI Technologies\ATI.ACE\Core-Static
        "PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
        "PROCESSOR_ARCHITECTURE"=x86
        "TEMP"=%SystemRoot%\TEMP
        "TMP"=%SystemRoot%\TEMP
        "USERNAME"=SYSTEM
        "windir"=%SystemRoot%
        "PROCESSOR_LEVEL"=17
        "PROCESSOR_IDENTIFIER"=x86 Family 17 Model 3 Stepping 1, AuthenticAMD
        "PROCESSOR_REVISION"=0301
        "NUMBER_OF_PROCESSORS"=2
        "TRACE_FORMAT_SEARCH_PATH"=\\NTREL202.ntdev.corp.microsoft.com\4F18C3A5-CA09-4DBD-B6FC-219FDD4C6BE0\TraceFormat
        "DFSTRACINGON"=FALSE
        "OnlineServices"=Online Services
        "Platform"=MCD
        "PCBRAND"=Pavilion

        -----------------EOF-----------------
        1. info.txt logfile of random's system information tool 1.06 2009-11-20 08:56:52

          ======Uninstall list======

          -->"C:\Program Files\HP Games\5 Card Deluxe\Uninstall.exe"
          -->"C:\Program Files\HP Games\Agatha Christie - Death on the Nile\Uninstall.exe"
          -->"C:\Program Files\HP Games\Age of Castles\Uninstall.exe"
          -->"C:\Program Files\HP Games\Bejeweled 2 Deluxe\Uninstall.exe"
          -->"C:\Program Files\HP Games\Blasterball 3\Uninstall.exe"
          -->"C:\Program Files\HP Games\Build-a-lot 2\Uninstall.exe"
          -->"C:\Program Files\HP Games\Cake Mania\Uninstall.exe"
          -->"C:\Program Files\HP Games\Chuzzle Deluxe\Uninstall.exe"
          -->"C:\Program Files\HP Games\Diner Dash 2 Restaurant Rescue\Uninstall.exe"
          -->"C:\Program Files\HP Games\Diner Dash\Uninstall.exe"
          -->"C:\Program Files\HP Games\FATE\Uninstall.exe"
          -->"C:\Program Files\HP Games\Fish Tycoon\Uninstall.exe"
          -->"C:\Program Files\HP Games\Gem Shop\Uninstall.exe"
          -->"C:\Program Files\HP Games\Granny in Paradise\Uninstall.exe"
          -->"C:\Program Files\HP Games\Insaniquarium Deluxe\Uninstall.exe"
          -->"C:\Program Files\HP Games\Mah Jong Quest\Uninstall.exe"
          -->"C:\Program Files\HP Games\Mahjongg Artifacts\Uninstall.exe"
          -->"C:\Program Files\HP Games\My HP Game Console\Uninstall.exe"
          -->"C:\Program Files\HP Games\Ocean Express\Uninstall.exe"
          -->"C:\Program Files\HP Games\Peggle\Uninstall.exe"
          -->"C:\Program Files\HP Games\Polar Bowler\Uninstall.exe"
          -->"C:\Program Files\HP Games\Polar Golfer\Uninstall.exe"
          -->"C:\Program Files\HP Games\Polar Pool\Uninstall.exe"
          -->"C:\Program Files\HP Games\Puzzle Express\Uninstall.exe"
          -->"C:\Program Files\HP Games\Slingo Deluxe\Uninstall.exe"
          -->"C:\Program Files\HP Games\SPORE Creature Creator Trial Edition\Uninstall.exe"
          -->"C:\Program Files\HP Games\Sudoku Quest\Uninstall.exe"
          -->"C:\Program Files\HP Games\The Treasures of Montezuma\Uninstall.exe"
          -->"C:\Program Files\HP Games\Tradewinds\Uninstall.exe"
          -->"C:\Program Files\HP Games\Virtual Villagers - The Secret City\Uninstall.exe"
          -->"C:\Program Files\HP Games\Zuma Deluxe\Uninstall.exe"
          Activation Assistant for the 2007 Microsoft Office suites-->"C:\ProgramData\{174892B1-CBE7-44F5-86FF-AB555EFD73A3}\Microsoft Office Activation Assistant.exe" REMOVE=TRUE MODIFY=FALSE
          ActiveCheck component for HP Active Support Library-->MsiExec.exe /X{254C37AA-6B72-4300-84F6-98A82419187E}
          Adobe Download Manager-->"C:\Windows\system32\rundll32.exe" "C:\Program Files\NOS\bin\getPlus_Helper.dll",Uninstall /IE2883E8F-472F-4fb0-9522-AC9BF37916A7 /Get1
          Adobe Flash Player 10 ActiveX-->C:\Windows\system32\Macromed\Flash\uninstall_activeX.exe
          Adobe Reader 9 - Français-->MsiExec.exe /I{AC76BA86-7AD7-1036-7B44-A90000000001}
          Adobe Shockwave Player-->MsiExec.exe /X{AD72CFB4-C2BF-424E-9DF0-C7BAD1F30A11}
          AMD USB Audio Driver Filter-->MsiExec.exe /X{A3AB35FA-943E-4799-99DC-46EFD59E998F}
          AOL Toolbar 5.0-->"C:\Program Files\AOL\AOL Toolbar 5.0\uninstall.exe"
          Assistant de connexion Windows Live ID-->MsiExec.exe /X{10A44844-4465-456E-8C97-80BDD4F68845}
          Atheros Driver Installation Program-->C:\Program Files\InstallShield Installation Information\{C3A32068-8AB1-4327-BB16-BED9C6219DC7}\setup.exe -runfromtemp -l0x040c
          avast! Antivirus-->C:\Program Files\Alwil Software\Avast4\aswRunDll.exe "C:\Program Files\Alwil Software\Avast4\Setup\setiface.dll",RunSetup
          Catalyst Control Center - Branding-->MsiExec.exe /I{558FF444-F562-4E4C-98BD-7B20EE184D2E}
          Cisco EAP-FAST Module-->MsiExec.exe /I{415B2719-AD3A-4944-B404-C472DB6085B3}
          Cisco LEAP Module-->MsiExec.exe /I{83770D14-21B9-44B3-8689-F7B523F94560}
          Cisco PEAP Module-->MsiExec.exe /I{669C7BD8-DAA2-49B6-966C-F1E2AAE6B17E}
          Contrôle Parental-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{93094D10-9388-11D4-9886-0000B43F396D}\Setup.exe" -l0x40c
          Counter-Strike: Source-->MsiExec.exe /I{9580813D-94B1-4C28-9426-A441E2BB29A5}
          CyberLink DVD Suite-->"C:\Program Files\InstallShield Installation Information\{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}\Setup.exe" /z-uninstall
          CyberLink DVD Suite-->"C:\Program Files\InstallShield Installation Information\{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}\Setup.exe" /z-uninstall
          ESU for Microsoft Vista-->MsiExec.exe /I{3877C901-7B90-4727-A639-B6ED2DD59D43}
          HijackThis 2.0.2-->"C:\Program Files\trend micro\HijackThis.exe" /uninstall
          Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT=""
          Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT=""
          HP Active Support Library-->"C:\Program Files\InstallShield Installation Information\{CE7E3BE0-2DD3-4416-A690-F9E4A99A8CFF}\setup.exe" -runfromtemp -l0x0409 -removeonly
          HP Customer Experience Enhancements-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{57A5AEC1-97FC-474D-92C4-908FCC2253D4}\setup.exe" -l0x9 -removeonly
          HP Doc Viewer-->MsiExec.exe /I{082702D5-5DD8-4600-BCE5-48B15174687F}
          HP Help and Support-->MsiExec.exe /I{0054A0F6-00C9-4498-B821-B5C9578F433E}
          HP MediaSmart DVD-->"C:\Program Files\InstallShield Installation Information\{DCCAD079-F92C-44DA-B258-624FC6517A5A}\setup.exe" /z-uninstall
          HP MediaSmart DVD-->"C:\Program Files\InstallShield Installation Information\{DCCAD079-F92C-44DA-B258-624FC6517A5A}\setup.exe" /z-uninstall
          HP MediaSmart Music/Photo/Video-->"C:\Program Files\InstallShield Installation Information\{B2EE25B9-5B00-4ACF-94F0-92433C28C39E}\setup.exe" /z-uninstall
          HP MediaSmart Music/Photo/Video-->"C:\Program Files\InstallShield Installation Information\{B2EE25B9-5B00-4ACF-94F0-92433C28C39E}\setup.exe" /z-uninstall /zMS
          HP MediaSmart SmartMenu-->MsiExec.exe /I{D8BB0945-B990-47DC-BFE3-3FDE1E165B30}
          HP MediaSmart TV-->"C:\Program Files\InstallShield Installation Information\{67626E09-5366-4480-8F1E-93FADF50CA15}\Setup.exe" /z-uninstall
          HP MediaSmart TV-->"C:\Program Files\InstallShield Installation Information\{67626E09-5366-4480-8F1E-93FADF50CA15}\Setup.exe" /z-uninstall
          HP MediaSmart Webcam-->"C:\Program Files\InstallShield Installation Information\{01FB4998-33C4-4431-85ED-079E3EEFE75D}\setup.exe" /z-uninstall
          HP MediaSmart Webcam-->"C:\Program Files\InstallShield Installation Information\{01FB4998-33C4-4431-85ED-079E3EEFE75D}\setup.exe" /z-uninstall
          HP Quick Launch Buttons 6.40 J1-->C:\Program Files\InstallShield Installation Information\{34D2AB40-150D-475D-AE32-BD23FB5EE355}\setup.exe -runfromtemp -l0x040c uninst
          HP Total Care Advisor-->MsiExec.exe /X{154A4184-1A3D-4BF9-A5AE-4FA1660445F3}
          HP Total Care Advisor-->MsiExec.exe /X{F31E534B-4199-4552-8154-5C130710D68E}
          HP Update-->MsiExec.exe /X{C8FD5BC1-92EF-4C15-92A9-F9AC7F61985F}
          HP User Guides 0128-->MsiExec.exe /X{07A5026D-5F9F-43D1-9073-C2F882D417E7}
          HP Wireless Assistant-->MsiExec.exe /I{9ADABDDE-9644-461B-9E73-83FA3EFCAB50}
          HPAsset component for HP Active Support Library-->MsiExec.exe /X{669D4A35-146B-4314-89F1-1AC3D7B88367}
          HPNetworkAssistant-->MsiExec.exe /I{228C6B46-64E2-404E-898A-EF0830603EF4}
          HPTCSSetup-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{846DDADA-0239-4B67-A6B1-33658863793B}\setup.exe" -l0x9 -removeonly
          IDT Audio-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}\setup.exe" -l0x40c -remove -removeonly
          Insurgency-->"C:\Program Files\Steam\steam.exe" steam://uninstall/17700
          Java(TM) 6 Update 17-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216014FF}
          Java(TM) 6 Update 7-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160070}
          JMicron JMB38X Flash Media Controller-->"C:\Program Files\InstallShield Installation Information\{26604C7E-A313-4D12-867F-7C6E7820BE4C}\setup.exe" delpkg
          LabelPrint-->"C:\Program Files\InstallShield Installation Information\{C59C179C-668D-49A9-B6EA-0121CCFC1243}\Setup.exe" /z-uninstall
          LabelPrint-->"C:\Program Files\InstallShield Installation Information\{C59C179C-668D-49A9-B6EA-0121CCFC1243}\Setup.exe" /z-uninstall
          LightScribe System Software 1.14.17.1-->MsiExec.exe /X{0E7DBD52-B097-4F2B-A7C7-F105B0D20FDB}
          Malwarebytes' Anti-Malware-->"C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"
          Microsoft .NET Framework 3.5 Language Pack SP1 - fra-->MsiExec.exe /I{3E31821C-7917-367E-938E-E65FC413EA31}
          Microsoft .NET Framework 3.5 SP1-->c:\Windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
          Microsoft .NET Framework 3.5 SP1-->MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
          Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0016-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
          Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0018-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
          Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001B-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
          Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-006E-040C-0000-0000000FF1CE} /uninstall {B165D3C2-40AE-4D39-86F7-E5C87C4264C0}
          Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-00A1-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
          Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}
          Microsoft Office Excel MUI (French) 2007-->MsiExec.exe /X{90120000-0016-040C-0000-0000000FF1CE}
          Microsoft Office Home and Student 2007-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall HOMESTUDENTR /dll OSETUP.DLL
          Microsoft Office Home and Student 2007-->MsiExec.exe /X{91120000-002F-0000-0000-0000000FF1CE}
          Microsoft Office Live Add-in 1.4-->MsiExec.exe /I{AE3CF174-872C-46C6-B9F6-C0593F3BC7B8}
          Microsoft Office OneNote MUI (French) 2007-->MsiExec.exe /X{90120000-00A1-040C-0000-0000000FF1CE}
          Microsoft Office PowerPoint MUI (French) 2007-->MsiExec.exe /X{90120000-0018-040C-0000-0000000FF1CE}
          Microsoft Office PowerPoint Viewer 2007 (French)-->MsiExec.exe /X{95120000-00AF-040C-0000-0000000FF1CE}
          Microsoft Office Proof (Arabic) 2007-->MsiExec.exe /X{90120000-001F-0401-0000-0000000FF1CE}
          Microsoft Office Proof (Dutch) 2007-->MsiExec.exe /X{90120000-001F-0413-0000-0000000FF1CE}
          Microsoft Office Proof (English) 2007-->MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
          Microsoft Office Proof (French) 2007-->MsiExec.exe /X{90120000-001F-040C-0000-0000000FF1CE}
          Microsoft Office Proof (German) 2007-->MsiExec.exe /X{90120000-001F-0407-0000-0000000FF1CE}
          Microsoft Office Proof (Spanish) 2007-->MsiExec.exe /X{90120000-001F-0C0A-0000-0000000FF1CE}
          Microsoft Office Proofing (French) 2007-->MsiExec.exe /X{90120000-002C-040C-0000-0000000FF1CE}
          Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0401-0000-0000000FF1CE} /uninstall {14809F99-C601-4D4A-9391-F1E8FAA964C5}
          Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0407-0000-0000000FF1CE} /uninstall {A0516415-ED61-419A-981D-93596DA74165}
          Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0409-0000-0000000FF1CE} /uninstall {ABDDE972-355B-4AF1-89A8-DA50B7B5C045}
          Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-040C-0000-0000000FF1CE} /uninstall {F580DDD5-8D37-4998-968E-EBB76BB86787}
          Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0413-0000-0000000FF1CE} /uninstall {D66D5A44-E480-4BA4-B4F2-C554F6B30EBB}
          Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0C0A-0000-0000000FF1CE} /uninstall {187308AB-5FA7-4F14-9AB9-D290383A10D9}
          Microsoft Office Shared MUI (French) 2007-->MsiExec.exe /X{90120000-006E-040C-0000-0000000FF1CE}
          Microsoft Office Word MUI (French) 2007-->MsiExec.exe /X{90120000-001B-040C-0000-0000000FF1CE}
          Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
          Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053-->MsiExec.exe /X{770657D0-A123-3C07-8E44-1C83EC895118}
          Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
          Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{A49F249F-0C91-497F-86DF-B2585E8E76B7}
          Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148-->MsiExec.exe /X{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}
          Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729-->MsiExec.exe /X{3C3D696B-0DB7-3C6D-A356-3DB8CE541918}
          Microsoft Works-->MsiExec.exe /I{3B160861-7250-451E-B5EE-8B92BF30A710}
          Mise à jour Microsoft Office Excel 2007 Help (KB963678)-->msiexec /package {90120000-0016-040C-0000-0000000FF1CE} /uninstall {B761869A-B85C-40E2-994C-A1CE78AC8F2C}
          Mise à jour Microsoft Office Powerpoint 2007 Help (KB963669)-->msiexec /package {90120000-0018-040C-0000-0000000FF1CE} /uninstall {C3DCA38E-005E-41BA-A52A-7C3429F351C3}
          Mise à jour Microsoft Office Word 2007 Help (KB963665)-->msiexec /package {90120000-001B-040C-0000-0000000FF1CE} /uninstall {81536A04-DBFB-4DB3-978F-0F284590C223}
          Module de compatibilité pour Microsoft Office System 2007-->MsiExec.exe /X{90120000-0020-040C-0000-0000000FF1CE}
          Module linguistique Microsoft .NET Framework 3.5 SP1- fra-->c:\Windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack SP1 - fra\setup.exe
          MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
          muvee Reveal-->MsiExec.exe /X{DD35C328-F115-BEDA-6EEE-E00C5AACCCBC}
          My HP Games-->"C:\Program Files\HP Games\Uninstall.exe"
          Norton Internet Security-->MsiExec.exe /I{7B15D70E-9449-4CFB-B9BC-798465B2BD5C}
          Package de pilotes Windows - ENE (enecir) HIDClass (09/04/2008 2.6.0.0)-->C:\PROGRA~1\DIFX\270581355A767BF1\DPInst.exe /u C:\Windows\System32\DriverStore\FileRepository\enecir.inf_1a3c82dd\enecir.inf
          Power2Go-->"C:\Program Files\InstallShield Installation Information\{40BF1E83-20EB-11D8-97C5-0009C5020658}\Setup.exe" /z-uninstall
          Power2Go-->"C:\Program Files\InstallShield Installation Information\{40BF1E83-20EB-11D8-97C5-0009C5020658}\Setup.exe" /z-uninstall
          PowerDirector-->"C:\Program Files\InstallShield Installation Information\{CB099890-1D5F-11D5-9EA9-0050BAE317E1}\Setup.exe" /z-uninstall
          PowerDirector-->"C:\Program Files\InstallShield Installation Information\{CB099890-1D5F-11D5-9EA9-0050BAE317E1}\Setup.exe" /z-uninstall
          ProtectSmart Hard Drive Protection-->MsiExec.exe /X{9D615069-AA8F-4E89-AE9D-77AAE90F529F}
          Realtek 8169 8168 8101E 8102E Ethernet Driver-->C:\Program Files\InstallShield Installation Information\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}\setup.exe -runfromtemp -l0x040c -removeonly
          Security Update for 2007 Microsoft Office System (KB969559)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {69F52148-9BF6-4CDC-BF76-103DEAF3DD08}
          Security Update for 2007 Microsoft Office System (KB973704)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {E626DC89-A787-4553-9BB3-DC2EC7E1593F}
          Security Update for Microsoft Office Excel 2007 (KB973593)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {7D6255E3-3423-4D8B-A328-F6F8D28DD5FE}
          Security Update for Microsoft Office PowerPoint 2007 (KB957789)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {7559E742-FF9F-4FAE-B279-008ED296CB4D}
          Security Update for Microsoft Office system 2007 (972581)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {3D019598-7B59-447A-80AE-815B703B84FF}
          Security Update for Microsoft Office system 2007 (KB969613)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {5ECEB317-CBE9-4E08-AB10-756CB6F0FB6C}
          Security Update for Microsoft Office system 2007 (KB974234)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {FCD742B9-7A55-44BC-A776-F795F21FEDDC}
          Security Update for Microsoft Office Visio Viewer 2007 (KB973709)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {71127777-8B2C-4F97-AF7A-6CF8CAC8224D}
          SPORE Creature Creator Trial Edition-->"C:\Program Files\HP Games\SPORE Creature Creator Trial Edition\Uninstall.exe"
          Spybot - Search & Destroy-->"C:\Program Files\Spybot - Search & Destroy\unins000.exe"
          Steam(TM)-->MsiExec.exe /X{048298C9-A4D3-490B-9FF9-AB023A9238F3}
          Synaptics Pointing Device Driver-->rundll32.exe "C:\Program Files\Synaptics\SynTP\SynISDLL.dll",standAloneUninstall
          Update for 2007 Microsoft Office System (KB967642)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {C444285D-5E4F-48A4-91DD-47AAAA68E92D}
          Update for Microsoft .NET Framework 3.5 SP1 (KB963707)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {B2AE9C82-DC7B-3641-BFC8-87275C4F3607} /qb+ REBOOTPROMPT=""
          Update for Microsoft Office Word 2007 (KB974561)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {0CDDBAA2-2111-4A0E-A1B0-76C40C635331}

          ======Hosts File======

          127.0.0.1 www.007guard.com
          127.0.0.1 007guard.com
          127.0.0.1 008i.com
          127.0.0.1 www.008k.com
          127.0.0.1 008k.com
          127.0.0.1 www.00hq.com
          127.0.0.1 00hq.com
          127.0.0.1 010402.com
          127.0.0.1 www.032439.com
          127.0.0.1 032439.com

          ======Security center information======

          AS: Spybot - Search and Destroy
          AS: Windows Defender

          ======System event log======

          Computer Name: PC-de-xxxxxxxx
          Event Code: 12
          Message: Le périphérique 'JMB38X SD Host Controller' (PCI\VEN_197B&DEV_2381&SUBSYS_3600103C&REV_00\4&2c5d624a&0&0250) a disparu du système sans que sa suppression ait tout d'abord été préparée.
          Record Number: 18152
          Source Name: PlugPlayManager
          Time Written: 20090709085521.000000-000
          Event Type: Erreur
          User:

          Computer Name: PC-de-xxxxxx
          Event Code: 12
          Message: Le périphérique 'JMB38X SD/MMC Host Controller' (PCI\VEN_197B&DEV_2382&SUBSYS_3600103C&REV_00\4&2c5d624a&0&0150) a disparu du système sans que sa suppression ait tout d'abord été préparée.
          Record Number: 18151
          Source Name: PlugPlayManager
          Time Written: 20090709085521.000000-000
          Event Type: Erreur
          User:

          Computer Name: PC-de-xxxxxxxxxxx
          Event Code: 1003
          Message: Votre ordinateur n'a pas pu renouveler son adresse à partir du réseau (à partir du serveur DHCP) pour la carte réseau dont l'adresse réseau est 00242B42DA58. Il s'est produit l'erreur suivante :
          L'opération a été annulée par l'utilisateur.. Votre ordinateur va continuer à essayer d'obtenir sa propre adresse auprès du serveur d'adresse réseau (DHCP).
          Record Number: 18141
          Source Name: Microsoft-Windows-Dhcp-Client
          Time Written: 20090709085504.000000-000
          Event Type: Avertissement
          User:

          Computer Name: PC-de-xxxxxxxx
          Event Code: 1003
          Message: Votre ordinateur n'a pas pu renouveler son adresse à partir du réseau (à partir du serveur DHCP) pour la carte réseau dont l'adresse réseau est 00242B42DA58. Il s'est produit l'erreur suivante :
          L'opération a été annulée par l'utilisateur.. Votre ordinateur va continuer à essayer d'obtenir sa propre adresse auprès du serveur d'adresse réseau (DHCP).
          Record Number: 18138
          Source Name: Microsoft-Windows-Dhcp-Client
          Time Written: 20090709085501.000000-000
          Event Type: Avertissement
          User:

          Computer Name: PC-de-xxxxxxxx
          Event Code: 1003
          Message: Votre ordinateur n'a pas pu renouveler son adresse à partir du réseau (à partir du serveur DHCP) pour la carte réseau dont l'adresse réseau est 00242B42DA58. Il s'est produit l'erreur suivante :
          L'opération a été annulée par l'utilisateur.. Votre ordinateur va continuer à essayer d'obtenir sa propre adresse auprès du serveur d'adresse réseau (DHCP).
          Record Number: 18133
          Source Name: Microsoft-Windows-Dhcp-Client
          Time Written: 20090708202920.000000-000
          Event Type: Avertissement
          User:

          =====Application event log=====

          Computer Name: PC-de-xxxxxxxx
          Event Code: 10
          Message: Le filtre d’événement avec la requête « SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99 » n’a pas pu être réactivé dans l’espace de noms « //./root/CIMV2 » à cause de l’erreur 0x80041003. Les événements ne peuvent pas être délivrés à travers ce filtre tant que le problème ne sera pas corrigé.
          Record Number: 564
          Source Name: Microsoft-Windows-WMI
          Time Written: 20090704094535.000000-000
          Event Type: Erreur
          User:

          Computer Name: PC-de-xxxxxx
          Event Code: 3008
          Message: Impossible d'insérer l'entrée <C:\USERS\RAPHY\NTUSER.INI> dans l'historique.

          Contexte : Application , Catalogue SystemIndex

          Détails :
          Un périphérique attaché au système ne fonctionne pas correctement. (0x8007001f)

          Record Number: 563
          Source Name: Microsoft-Windows-Search
          Time Written: 20090704094520.000000-000
          Event Type: Erreur
          User:

          Computer Name: PC-de-xxxxxxxxx
          Event Code: 474
          Message: Windows (2380) Windows: La lecture de pages de base de données à partir du fichier « C:\ProgramData\Microsoft\Search\Data\Applications\Windows\Windows.edb » à l’adresse relative 1155072 (0x000000000011a000) (page de base de données 140 (0x8C)) de 8192 (0x00002000) octets a échoué à la vérification à cause d’une non-concordance de total de contrôle. Le total de contrôle attendu était 4683833773609996032 (0x4100520047004f00) tandis que le total de contrôle réel était 601964600722 (0x0000008c27e2dd92). L’opération de lecture échouera en indiquant l’erreur -1018 (0xfffffc06). Si le problème persiste, restaurez la base de données à partir d’une version de sauvegarde antérieure. Ce problème est probablement dû à un matériel défectueux. Contactez votre fournisseur de matériel afin d’obtenir une assistance complémentaire pour diagnostiquer le problème.
          Record Number: 559
          Source Name: ESENT
          Time Written: 20090704094516.000000-000
          Event Type: Erreur
          User:

          Computer Name: PC-de-xxxxxxxxxxx
          Event Code: 1530
          Message: Windows a détecté que votre fichier de Registre est toujours utilisé par d'autres applications ou services. Le fichier va être déchargé. Les applications ou services qui ont accès à votre Registre risquent de ne pas fonctionner correctement après cela.

          DÉTAIL -
          1 user registry handles leaked from \Registry\User\S-1-5-21-2786985380-1862248807-3620367851-1000:
          Process 568 (\Device\HarddiskVolume1\Windows\System32\winlogon.exe) has opened key \REGISTRY\USER\S-1-5-21-2786985380-1862248807-3620367851-1000

          Record Number: 536
          Source Name: Microsoft-Windows-User Profiles Service
          Time Written: 20090704094249.000000-000
          Event Type: Avertissement
          User: AUTORITE NT\SYSTEM

          Computer Name: PC-de-xxxxxxxxxx
          Event Code: 4621
          Message: Le système d'événements de COM+ n'a pas pu supprimer l'objet EventSystem.EventSubscription {CEB8B221-89C5-41A8-98CE-79B413BF150B}-{00000000-0000-0000-0000-000000000000}-{00000000-0000-0000-0000-000000000000}. HRESULT : 80070005.
          Record Number: 533
          Source Name: Microsoft-Windows-EventSystem
          Time Written: 20090704094247.000000-000
          Event Type: Erreur
          User:

          =====Security event log=====

          Computer Name: PC-de-xxxxxxxxx
          Event Code: 5032
          Message: Le Pare-feu Windows n’a pas pu notifier l’utilisateur qu’il a empêché une application d’accepter des connexions entrantes sur le réseau.

          Code d’erreur : 2
          Record Number: 1083
          Source Name: Microsoft-Windows-Security-Auditing
          Time Written: 20090704084004.822200-000
          Event Type: Échec de l'audit
          User:

          Computer Name: PC-de-xxxxxxxxxx
          Event Code: 5032
          Message: Le Pare-feu Windows n’a pas pu notifier l’utilisateur qu’il a empêché une application d’accepter des connexions entrantes sur le réseau.

          Code d’erreur : 2
          Record Number: 1082
          Source Name: Microsoft-Windows-Security-Auditing
          Time Written: 20090704084004.822200-000
          Event Type: Échec de l'audit
          User:

          Computer Name: PC-de-raphy
          Event Code: 4905
          Message: Une tentative d’annulation d’inscription de la source d’un événement de sécurité a été effectuée.

          Sujet :
          ID de sécurité : S-1-5-18
          Nom du compte : xxxxxxxxxxxxxxxx
          Domaine du compte : WORKGROUP
          ID d’ouverture de session : xxxxxx
          Processus :
          ID du processus : 0xe24
          Nom du processus : C:\Windows\System32\VSSVC.exe

          Source de l’événement :
          Nom de la source : VSSAudit
          ID de la source de l’événement : 0x13e635
          Record Number: 1081
          Source Name: Microsoft-Windows-Security-Auditing
          Time Written: 20090704082841.041000-000
          Event Type: Succès de l'audit
          User:

          Computer Name: PC-de-xxxxxxxxxx
          Event Code: 4904
          Message: Une tentative d’inscription de la source d’un événement de sécurité a été effectuée.

          Sujet :
          ID de sécurité : S-1-5-18
          Nom du compte : xxxxxxxxx
          Domaine du compte : WORKGROUP
          ID d’ouverture de session : xxxxxxxx
          Processus :
          ID du processus : 0xe24
          Nom du processus : C:\Windows\System32\VSSVC.exe

          Source de l’événement :
          Nom de la source : VSSAudit
          ID de la source de l’événement : 0x13e635
          Record Number: 1080
          Source Name: Microsoft-Windows-Security-Auditing
          Time Written: 20090704082841.041000-000
          Event Type: Succès de l'audit
          User:

          Computer Name: PC-de-xxxxxxxxxx
          Event Code: 1102
          Message: Le journal d’audit a été effacé.
          Objet :
          ID de sécurité : mon id
          Nom de compte : mon nom
          Nom de domaine : PC-de-mon nom
          ID de connexion : mon id de conexion
          Record Number: 1079
          Source Name: Microsoft-Windows-Eventlog
          Time Written: 20090704082823.600200-000
          Event Type: Succès de l'audit
          User:

          ======Environment variables======

          "ComSpec"=%SystemRoot%\system32\cmd.exe
          "FP_NO_HOST_CHECK"=NO
          "OS"=Windows_NT
          "Path"=%CommonProgramFiles%\Microsoft Shared\Windows Live;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\CyberLink\Power2Go;C:\Program Files\ATI Technologies\ATI.ACE\Core-Static
          "PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
          "PROCESSOR_ARCHITECTURE"=x86
          "TEMP"=%SystemRoot%\TEMP
          "TMP"=%SystemRoot%\TEMP
          "USERNAME"=SYSTEM
          "windir"=%SystemRoot%
          "PROCESSOR_LEVEL"=17
          "PROCESSOR_IDENTIFIER"=x86 Family 17 Model 3 Stepping 1, AuthenticAMD
          "PROCESSOR_REVISION"=0301
          "NUMBER_OF_PROCESSORS"=2
          "TRACE_FORMAT_SEARCH_PATH"=\\NTREL202.ntdev.corp.microsoft.com\4F18C3A5-CA09-4DBD-B6FC-219FDD4C6BE0\TraceFormat
          "DFSTRACINGON"=FALSE
          "OnlineServices"=Online Services
          "Platform"=MCD
          "PCBRAND"=Pavilion

          -----------------EOF-----------------
          1. ** Rapport MyHosts.txt **

            MyHosts V.1.0.0.0 de jeanmimigab

            Merci à la team MH et à Batch_man pour leurs aides

            Résultat de l'opération:

            >>> Le fichier hosts a bien été restauré...

            ** Fin du rapport **

            1. Salut,

              On peut vérifier que tu n'es pas d'autres infections :

              • Télécharge RSIT de Random/Random, et enregistre le sur ton Bureau.

              • Sous XP : Double clique sur RSIT.exe
              • Sous Vista/7 : Fais un clic droit sur RSIT.exe et sélectionne "Exécuter en tant qu'administrateur"

              • Clique sur Continue à l'écran Disclaimer.

              • Si l'outil HijackThis n'est pas présent sur ton PC, RSIT le téléchargera (autorise l'accès dans ton pare-feu s'il te le demande) et tu devras accepter la licence en cliquant sur le bouton accept.

              • Une fois le scan terminé, deux rapports vont apparaître : poste les dans deux messages séparés.

              ▲ Les rapports sont sauvegardés dans C:\rsit\info.txt et C:\rsit\log.txt

              ► Aide en images
              1. Bonsoir,
                Tout d'habort merci de m avoir repondu =) et J ai fait 2 scan se soir avec malwarebytes Anti-malware et Norman anti-malware

                il y a aucune infection et comme protection j ai :
                Avast , Malwaresbytes Anti-malware , Spybot ( fait scan aussi aujourd hui O mouchards ) et Norman malware Cleaner et pour ton logiciel j ai un pc portable nn un fix il prend de la place ?
                Et aige vraiment besoin de l'installer ? si oui comment on le desinstalle apres ? ( completement )
                ET je voudrai savoir si j ai bien fait de les suprimer apres les avoir mit en QUARANTAINE car un mec ma dit " tes con ses des fichier widow reboute ton pc " je prefere vous demander a vous .

                Merci bonne soirée
                1. RSIT ne prend pas de place et sera supprimer en fin de désinfection.

                  Il est préférable de mettre des fichiers infectés en quarantaine, les fichiers qui ont été détectés chez toi ne sont pas des fichiers systèmes, donc tu as bien fait.
                  1. OUF MERCI et la j ai 2 scan par 2 anti malware Norman et malwarbyte il dise tous 2 pas de infecttion donc mon pc va bien merci tu me rasur besoin de faire RSIT?

                    Merci bonne nuit =)
                    1. Pour vérifier que tu n'es pas d'autres infections, çà serait préférable.
                      1. Bonjour

                        Désoler de pas t avoir repondu dans la soirer mais j etait partis ailleur .
                        Bref je vais l installer de suite merci .
                        1. VOILA LE 1 ER :

                          Logfile of random's system information tool 1.06 (written by random/random)
                          Run by raphy at 2009-11-20 08:56:09
                          Microsoft® Windows Vista™ Édition Familiale Premium Service Pack 2
                          System drive C: has 79 GB (56%) free of 142 GB
                          Total RAM: 3069 MB (50% free)

                          Logfile of Trend Micro HijackThis v2.0.2
                          Scan saved at 08:56:50, on 20/11/2009
                          Platform: Windows Vista SP2 (WinNT 6.00.1906)
                          MSIE: Internet Explorer v8.00 (8.00.6001.18828)
                          Boot mode: Normal

                          Running processes:
                          C:\Windows\system32\Dwm.exe
                          C:\Windows\system32\taskeng.exe
                          C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
                          C:\Program Files\Hewlett-Packard\Media\DVD\DVDAgent.exe
                          C:\Program Files\Hewlett-Packard\TouchSmart\Media\TSMAgent.exe
                          C:\Program Files\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe
                          C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe
                          C:\Program Files\Windows Defender\MSASCui.exe
                          C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCtrl.exe
                          C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
                          C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
                          C:\Program Files\Alwil Software\Avast4\ashDisp.exe
                          C:\Program Files\IDT\WDM\sttray.exe
                          C:\Program Files\Hewlett-Packard\Media\TV\TVAgent.exe
                          C:\Program Files\Controle Parental\bin\OPTGui.exe
                          C:\Program Files\Java\jre6\bin\jusched.exe
                          C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
                          C:\Program Files\Hewlett-Packard\HP Advisor\HPAdvisor.exe
                          C:\Windows\ehome\ehtray.exe
                          C:\Program Files\Windows Sidebar\sidebar.exe
                          C:\Program Files\Steam\Steam.exe
                          C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
                          C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
                          C:\Windows\ehome\ehmsas.exe
                          C:\Program Files\Windows Sidebar\sidebar.exe
                          C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
                          C:\Program Files\Hewlett-Packard\HP wireless Assistant\WiFiMsg.EXE
                          C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
                          C:\Program Files\Hewlett-Packard\Shared\HpqToaster.exe
                          C:\Windows\system32\conime.exe
                          C:\Windows\system32\Macromed\Flash\FlashUtil10c.exe
                          C:\Windows\Explorer.EXE
                          C:\Program Files\Internet Explorer\iexplore.exe
                          C:\Program Files\Internet Explorer\iexplore.exe
                          c:\program files\aol\aol toolbar 5.0\AolTbServer.exe
                          C:\Program Files\Internet Explorer\iexplore.exe
                          C:\Windows\system32\SearchFilterHost.exe
                          C:\Users\raphy\Desktop\RSIT.exe
                          C:\Windows\system32\SearchProtocolHost.exe
                          C:\Program Files\trend micro\raphy.exe

                          R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr?cobrand=hp-notebook.msn.com&ocid=HPDHP&pc=HPNTDF
                          R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
                          R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
                          R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr?cobrand=hp-notebook.msn.com&ocid=HPDHP&pc=HPNTDF
                          R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
                          R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
                          R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr?cobrand=hp-notebook.msn.com&ocid=HPDHP&pc=HPNTDF
                          R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
                          R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
                          R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
                          O1 - Hosts: ::1 localhost
                          O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
                          O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
                          O2 - BHO: AOL Toolbar BHO - {7C554162-8CB7-45A4-B8F4-8EA1C75885F9} - C:\Program Files\AOL\AOL Toolbar 5.0\aoltb.dll
                          O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
                          O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
                          O3 - Toolbar: AOL Toolbar - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:\Program Files\AOL\AOL Toolbar 5.0\aoltb.dll
                          O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
                          O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
                          O4 - HKLM\..\Run: [DVDAgent] "C:\Program Files\Hewlett-Packard\Media\DVD\DVDAgent.exe"
                          O4 - HKLM\..\Run: [TSMAgent] "C:\Program Files\Hewlett-Packard\TouchSmart\Media\TSMAgent.exe"
                          O4 - HKLM\..\Run: [CLMLServer for HP TouchSmart] "C:\Program Files\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe"
                          O4 - HKLM\..\Run: [UCam_Menu] "C:\Program Files\Hewlett-Packard\Media\Webcam\MUITransfer\MUIStartMenu.exe" "C:\Program Files\Hewlett-Packard\Media\Webcam" update "Software\Hewlett-Packard\Media\Webcam"
                          O4 - HKLM\..\Run: [SmartMenu] %ProgramFiles%\Hewlett-Packard\HP MediaSmart\SmartMenu.exe
                          O4 - HKLM\..\Run: [UpdateLBPShortCut] "C:\Program Files\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\LabelPrint" UpdateWithCreateOnce "Software\CyberLink\LabelPrint\2.5"
                          O4 - HKLM\..\Run: [UpdatePSTShortCut] "C:\Program Files\CyberLink\DVD Suite\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\DVD Suite" UpdateWithCreateOnce "Software\CyberLink\PowerStarter"
                          O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
                          O4 - HKLM\..\Run: [QlbCtrl.exe] C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
                          O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
                          O4 - HKLM\..\Run: [UpdateP2GoShortCut] "C:\Program Files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"
                          O4 - HKLM\..\Run: [UpdatePDIRShortCut] "C:\Program Files\CyberLink\PowerDirector\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\PowerDirector" UpdateWithCreateOnce "SOFTWARE\CyberLink\PowerDirector\7.0"
                          O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
                          O4 - HKLM\..\Run: [hpWirelessAssistant] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
                          O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
                          O4 - HKLM\..\Run: [SysTrayApp] %ProgramFiles%\IDT\WDM\sttray.exe
                          O4 - HKLM\..\Run: [HP Health Check Scheduler] c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
                          O4 - HKLM\..\Run: [TVAgent] "C:\Program Files\Hewlett-Packard\Media\TV\TVAgent.exe"
                          O4 - HKLM\..\Run: [OPTENET_GUI] C:\PROGRA~1\CONTRO~1\bin\optgui.exe
                          O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
                          O4 - HKLM\..\Run: [Malwarebytes Anti-Malware (reboot)] "C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript
                          O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
                          O4 - HKCU\..\Run: [HPAdvisor] C:\Program Files\Hewlett-Packard\HP Advisor\HPAdvisor.exe autorun=AUTORUN
                          O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
                          O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
                          O4 - HKCU\..\Run: [Sidebar] C:\Program Files\windows sidebar\sidebar.exe /autoRun
                          O4 - HKCU\..\Run: [Steam] "c:\program files\steam\steam.exe" -silent
                          O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
                          O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
                          O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
                          O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
                          O8 - Extra context menu item: &Recherche AOL Toolbar - C:\ProgramData\AOL\ieToolbar\resources\fr-FR\local\search.html
                          O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
                          O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
                          O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
                          O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
                          O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
                          O13 - Gopher Prefix:
                          O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} - http://fichiers.touslesdrivers.com/maconfig/MaConfig_3_5_3_0.cab
                          O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_805f33de\aestsrv.exe
                          O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
                          O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe
                          O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
                          O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
                          O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
                          O23 - Service: Com4QLBEx - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
                          O23 - Service: GameConsoleService - WildTangent, Inc. - C:\Program Files\HP Games\My HP Game Console\GameConsoleService.exe
                          O23 - Service: HP Health Check Service - Hewlett-Packard - c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
                          O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
                          O23 - Service: HP Service (hpsrv) - Hewlett-Packard Corporation - C:\Windows\system32\Hpservice.exe
                          O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
                          O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
                          O23 - Service: Norton Internet Security - Unknown owner - C:\Program Files\Norton Internet Security\Engine\16.0.0.125\ccSvcHst.exe (file missing)
                          O23 - Service: Orange Contrôle Parental (OPTENET_FILTER) - Orange - C:\Program Files\Controle Parental\bin\optproxy.exe
                          O23 - Service: Recovery Service for Windows - Unknown owner - C:\Program Files\SMINST\BLService.exe
                          O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo.exe
                          O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe
                          O23 - Service: Audio Service (STacSV) - IDT, Inc. - C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_805f33de\STacSV.exe
                          O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
                          O23 - Service: TV Background Capture Service (TVBCS) (TVCapSvc) - Unknown owner - C:\Program Files\Hewlett-Packard\Media\TV\Kernel\TV\TVCapSvc.exe
                          O23 - Service: TV Task Scheduler (TVTS) (TVSched) - Unknown owner - C:\Program Files\Hewlett-Packard\Media\TV\Kernel\TV\TVSched.exe
                          1. LE 2 EME ( enfin je croi si j ai pa mi le 1 er a la place du 2 eme ou le 2 eme a la place du 1 er )

                            info.txt logfile of random's system information tool 1.06 2009-11-20 08:56:52

                            ======Uninstall list======

                            -->"C:\Program Files\HP Games\5 Card Deluxe\Uninstall.exe"
                            -->"C:\Program Files\HP Games\Agatha Christie - Death on the Nile\Uninstall.exe"
                            -->"C:\Program Files\HP Games\Age of Castles\Uninstall.exe"
                            -->"C:\Program Files\HP Games\Bejeweled 2 Deluxe\Uninstall.exe"
                            -->"C:\Program Files\HP Games\Blasterball 3\Uninstall.exe"
                            -->"C:\Program Files\HP Games\Build-a-lot 2\Uninstall.exe"
                            -->"C:\Program Files\HP Games\Cake Mania\Uninstall.exe"
                            -->"C:\Program Files\HP Games\Chuzzle Deluxe\Uninstall.exe"
                            -->"C:\Program Files\HP Games\Diner Dash 2 Restaurant Rescue\Uninstall.exe"
                            -->"C:\Program Files\HP Games\Diner Dash\Uninstall.exe"
                            -->"C:\Program Files\HP Games\FATE\Uninstall.exe"
                            -->"C:\Program Files\HP Games\Fish Tycoon\Uninstall.exe"
                            -->"C:\Program Files\HP Games\Gem Shop\Uninstall.exe"
                            -->"C:\Program Files\HP Games\Granny in Paradise\Uninstall.exe"
                            -->"C:\Program Files\HP Games\Insaniquarium Deluxe\Uninstall.exe"
                            -->"C:\Program Files\HP Games\Mah Jong Quest\Uninstall.exe"
                            -->"C:\Program Files\HP Games\Mahjongg Artifacts\Uninstall.exe"
                            -->"C:\Program Files\HP Games\My HP Game Console\Uninstall.exe"
                            -->"C:\Program Files\HP Games\Ocean Express\Uninstall.exe"
                            -->"C:\Program Files\HP Games\Peggle\Uninstall.exe"
                            -->"C:\Program Files\HP Games\Polar Bowler\Uninstall.exe"
                            -->"C:\Program Files\HP Games\Polar Golfer\Uninstall.exe"
                            -->"C:\Program Files\HP Games\Polar Pool\Uninstall.exe"
                            -->"C:\Program Files\HP Games\Puzzle Express\Uninstall.exe"
                            -->"C:\Program Files\HP Games\Slingo Deluxe\Uninstall.exe"
                            -->"C:\Program Files\HP Games\SPORE Creature Creator Trial Edition\Uninstall.exe"
                            -->"C:\Program Files\HP Games\Sudoku Quest\Uninstall.exe"
                            -->"C:\Program Files\HP Games\The Treasures of Montezuma\Uninstall.exe"
                            -->"C:\Program Files\HP Games\Tradewinds\Uninstall.exe"
                            -->"C:\Program Files\HP Games\Virtual Villagers - The Secret City\Uninstall.exe"
                            -->"C:\Program Files\HP Games\Zuma Deluxe\Uninstall.exe"
                            Activation Assistant for the 2007 Microsoft Office suites-->"C:\ProgramData\{174892B1-CBE7-44F5-86FF-AB555EFD73A3}\Microsoft Office Activation Assistant.exe" REMOVE=TRUE MODIFY=FALSE
                            ActiveCheck component for HP Active Support Library-->MsiExec.exe /X{254C37AA-6B72-4300-84F6-98A82419187E}
                            Adobe Download Manager-->"C:\Windows\system32\rundll32.exe" "C:\Program Files\NOS\bin\getPlus_Helper.dll",Uninstall /IE2883E8F-472F-4fb0-9522-AC9BF37916A7 /Get1
                            Adobe Flash Player 10 ActiveX-->C:\Windows\system32\Macromed\Flash\uninstall_activeX.exe
                            Adobe Reader 9 - Français-->MsiExec.exe /I{AC76BA86-7AD7-1036-7B44-A90000000001}
                            Adobe Shockwave Player-->MsiExec.exe /X{AD72CFB4-C2BF-424E-9DF0-C7BAD1F30A11}
                            AMD USB Audio Driver Filter-->MsiExec.exe /X{A3AB35FA-943E-4799-99DC-46EFD59E998F}
                            AOL Toolbar 5.0-->"C:\Program Files\AOL\AOL Toolbar 5.0\uninstall.exe"
                            Assistant de connexion Windows Live ID-->MsiExec.exe /X{10A44844-4465-456E-8C97-80BDD4F68845}
                            Atheros Driver Installation Program-->C:\Program Files\InstallShield Installation Information\{C3A32068-8AB1-4327-BB16-BED9C6219DC7}\setup.exe -runfromtemp -l0x040c
                            avast! Antivirus-->C:\Program Files\Alwil Software\Avast4\aswRunDll.exe "C:\Program Files\Alwil Software\Avast4\Setup\setiface.dll",RunSetup
                            Catalyst Control Center - Branding-->MsiExec.exe /I{558FF444-F562-4E4C-98BD-7B20EE184D2E}
                            Cisco EAP-FAST Module-->MsiExec.exe /I{415B2719-AD3A-4944-B404-C472DB6085B3}
                            Cisco LEAP Module-->MsiExec.exe /I{83770D14-21B9-44B3-8689-F7B523F94560}
                            Cisco PEAP Module-->MsiExec.exe /I{669C7BD8-DAA2-49B6-966C-F1E2AAE6B17E}
                            Contrôle Parental-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{93094D10-9388-11D4-9886-0000B43F396D}\Setup.exe" -l0x40c
                            Counter-Strike: Source-->MsiExec.exe /I{9580813D-94B1-4C28-9426-A441E2BB29A5}
                            CyberLink DVD Suite-->"C:\Program Files\InstallShield Installation Information\{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}\Setup.exe" /z-uninstall
                            CyberLink DVD Suite-->"C:\Program Files\InstallShield Installation Information\{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}\Setup.exe" /z-uninstall
                            ESU for Microsoft Vista-->MsiExec.exe /I{3877C901-7B90-4727-A639-B6ED2DD59D43}
                            HijackThis 2.0.2-->"C:\Program Files\trend micro\HijackThis.exe" /uninstall
                            Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT=""
                            Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT=""
                            HP Active Support Library-->"C:\Program Files\InstallShield Installation Information\{CE7E3BE0-2DD3-4416-A690-F9E4A99A8CFF}\setup.exe" -runfromtemp -l0x0409 -removeonly
                            HP Customer Experience Enhancements-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{57A5AEC1-97FC-474D-92C4-908FCC2253D4}\setup.exe" -l0x9 -removeonly
                            HP Doc Viewer-->MsiExec.exe /I{082702D5-5DD8-4600-BCE5-48B15174687F}
                            HP Help and Support-->MsiExec.exe /I{0054A0F6-00C9-4498-B821-B5C9578F433E}
                            HP MediaSmart DVD-->"C:\Program Files\InstallShield Installation Information\{DCCAD079-F92C-44DA-B258-624FC6517A5A}\setup.exe" /z-uninstall
                            HP MediaSmart DVD-->"C:\Program Files\InstallShield Installation Information\{DCCAD079-F92C-44DA-B258-624FC6517A5A}\setup.exe" /z-uninstall
                            HP MediaSmart Music/Photo/Video-->"C:\Program Files\InstallShield Installation Information\{B2EE25B9-5B00-4ACF-94F0-92433C28C39E}\setup.exe" /z-uninstall
                            HP MediaSmart Music/Photo/Video-->"C:\Program Files\InstallShield Installation Information\{B2EE25B9-5B00-4ACF-94F0-92433C28C39E}\setup.exe" /z-uninstall /zMS
                            HP MediaSmart SmartMenu-->MsiExec.exe /I{D8BB0945-B990-47DC-BFE3-3FDE1E165B30}
                            HP MediaSmart TV-->"C:\Program Files\InstallShield Installation Information\{67626E09-5366-4480-8F1E-93FADF50CA15}\Setup.exe" /z-uninstall
                            HP MediaSmart TV-->"C:\Program Files\InstallShield Installation Information\{67626E09-5366-4480-8F1E-93FADF50CA15}\Setup.exe" /z-uninstall
                            HP MediaSmart Webcam-->"C:\Program Files\InstallShield Installation Information\{01FB4998-33C4-4431-85ED-079E3EEFE75D}\setup.exe" /z-uninstall
                            HP MediaSmart Webcam-->"C:\Program Files\InstallShield Installation Information\{01FB4998-33C4-4431-85ED-079E3EEFE75D}\setup.exe" /z-uninstall
                            HP Quick Launch Buttons 6.40 J1-->C:\Program Files\InstallShield Installation Information\{34D2AB40-150D-475D-AE32-BD23FB5EE355}\setup.exe -runfromtemp -l0x040c uninst
                            HP Total Care Advisor-->MsiExec.exe /X{154A4184-1A3D-4BF9-A5AE-4FA1660445F3}
                            HP Total Care Advisor-->MsiExec.exe /X{F31E534B-4199-4552-8154-5C130710D68E}
                            HP Update-->MsiExec.exe /X{C8FD5BC1-92EF-4C15-92A9-F9AC7F61985F}
                            HP User Guides 0128-->MsiExec.exe /X{07A5026D-5F9F-43D1-9073-C2F882D417E7}
                            HP Wireless Assistant-->MsiExec.exe /I{9ADABDDE-9644-461B-9E73-83FA3EFCAB50}
                            HPAsset component for HP Active Support Library-->MsiExec.exe /X{669D4A35-146B-4314-89F1-1AC3D7B88367}
                            HPNetworkAssistant-->MsiExec.exe /I{228C6B46-64E2-404E-898A-EF0830603EF4}
                            HPTCSSetup-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{846DDADA-0239-4B67-A6B1-33658863793B}\setup.exe" -l0x9 -removeonly
                            IDT Audio-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}\setup.exe" -l0x40c -remove -removeonly
                            Insurgency-->"C:\Program Files\Steam\steam.exe" steam://uninstall/17700
                            Java(TM) 6 Update 17-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216014FF}
                            Java(TM) 6 Update 7-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160070}
                            JMicron JMB38X Flash Media Controller-->"C:\Program Files\InstallShield Installation Information\{26604C7E-A313-4D12-867F-7C6E7820BE4C}\setup.exe" delpkg
                            LabelPrint-->"C:\Program Files\InstallShield Installation Information\{C59C179C-668D-49A9-B6EA-0121CCFC1243}\Setup.exe" /z-uninstall
                            LabelPrint-->"C:\Program Files\InstallShield Installation Information\{C59C179C-668D-49A9-B6EA-0121CCFC1243}\Setup.exe" /z-uninstall
                            LightScribe System Software 1.14.17.1-->MsiExec.exe /X{0E7DBD52-B097-4F2B-A7C7-F105B0D20FDB}
                            Malwarebytes' Anti-Malware-->"C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"
                            Microsoft .NET Framework 3.5 Language Pack SP1 - fra-->MsiExec.exe /I{3E31821C-7917-367E-938E-E65FC413EA31}
                            Microsoft .NET Framework 3.5 SP1-->c:\Windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
                            Microsoft .NET Framework 3.5 SP1-->MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
                            Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0016-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
                            Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0018-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
                            Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001B-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
                            Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-006E-040C-0000-0000000FF1CE} /uninstall {B165D3C2-40AE-4D39-86F7-E5C87C4264C0}
                            Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-00A1-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
                            Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}
                            Microsoft Office Excel MUI (French) 2007-->MsiExec.exe /X{90120000-0016-040C-0000-0000000FF1CE}
                            Microsoft Office Home and Student 2007-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall HOMESTUDENTR /dll OSETUP.DLL
                            Microsoft Office Home and Student 2007-->MsiExec.exe /X{91120000-002F-0000-0000-0000000FF1CE}
                            Microsoft Office Live Add-in 1.4-->MsiExec.exe /I{AE3CF174-872C-46C6-B9F6-C0593F3BC7B8}
                            Microsoft Office OneNote MUI (French) 2007-->MsiExec.exe /X{90120000-00A1-040C-0000-0000000FF1CE}
                            Microsoft Office PowerPoint MUI (French) 2007-->MsiExec.exe /X{90120000-0018-040C-0000-0000000FF1CE}
                            Microsoft Office PowerPoint Viewer 2007 (French)-->MsiExec.exe /X{95120000-00AF-040C-0000-0000000FF1CE}
                            Microsoft Office Proof (Arabic) 2007-->MsiExec.exe /X{90120000-001F-0401-0000-0000000FF1CE}
                            Microsoft Office Proof (Dutch) 2007-->MsiExec.exe /X{90120000-001F-0413-0000-0000000FF1CE}
                            Microsoft Office Proof (English) 2007-->MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
                            Microsoft Office Proof (French) 2007-->MsiExec.exe /X{90120000-001F-040C-0000-0000000FF1CE}
                            Microsoft Office Proof (German) 2007-->MsiExec.exe /X{90120000-001F-0407-0000-0000000FF1CE}
                            Microsoft Office Proof (Spanish) 2007-->MsiExec.exe /X{90120000-001F-0C0A-0000-0000000FF1CE}
                            Microsoft Office Proofing (French) 2007-->MsiExec.exe /X{90120000-002C-040C-0000-0000000FF1CE}
                            Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0401-0000-0000000FF1CE} /uninstall {14809F99-C601-4D4A-9391-F1E8FAA964C5}
                            Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0407-0000-0000000FF1CE} /uninstall {A0516415-ED61-419A-981D-93596DA74165}
                            Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0409-0000-0000000FF1CE} /uninstall {ABDDE972-355B-4AF1-89A8-DA50B7B5C045}
                            Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-040C-0000-0000000FF1CE} /uninstall {F580DDD5-8D37-4998-968E-EBB76BB86787}
                            Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0413-0000-0000000FF1CE} /uninstall {D66D5A44-E480-4BA4-B4F2-C554F6B30EBB}
                            Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0C0A-0000-0000000FF1CE} /uninstall {187308AB-5FA7-4F14-9AB9-D290383A10D9}
                            Microsoft Office Shared MUI (French) 2007-->MsiExec.exe /X{90120000-006E-040C-0000-0000000FF1CE}
                            Microsoft Office Word MUI (French) 2007-->MsiExec.exe /X{90120000-001B-040C-0000-0000000FF1CE}
                            Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
                            Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053-->MsiExec.exe /X{770657D0-A123-3C07-8E44-1C83EC895118}
                            Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
                            Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{A49F249F-0C91-497F-86DF-B2585E8E76B7}
                            Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148-->MsiExec.exe /X{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}
                            Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729-->MsiExec.exe /X{3C3D696B-0DB7-3C6D-A356-3DB8CE541918}
                            Microsoft Works-->MsiExec.exe /I{3B160861-7250-451E-B5EE-8B92BF30A710}
                            Mise à jour Microsoft Office Excel 2007 Help (KB963678)-->msiexec /package {90120000-0016-040C-0000-0000000FF1CE} /uninstall {B761869A-B85C-40E2-994C-A1CE78AC8F2C}
                            Mise à jour Microsoft Office Powerpoint 2007 Help (KB963669)-->msiexec /package {90120000-0018-040C-0000-0000000FF1CE} /uninstall {C3DCA38E-005E-41BA-A52A-7C3429F351C3}
                            Mise à jour Microsoft Office Word 2007 Help (KB963665)-->msiexec /package {90120000-001B-040C-0000-0000000FF1CE} /uninstall {81536A04-DBFB-4DB3-978F-0F284590C223}
                            Module de compatibilité pour Microsoft Office System 2007-->MsiExec.exe /X{90120000-0020-040C-0000-0000000FF1CE}
                            Module linguistique Microsoft .NET Framework 3.5 SP1- fra-->c:\Windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack SP1 - fra\setup.exe
                            MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
                            muvee Reveal-->MsiExec.exe /X{DD35C328-F115-BEDA-6EEE-E00C5AACCCBC}
                            My HP Games-->"C:\Program Files\HP Games\Uninstall.exe"
                            Norton Internet Security-->MsiExec.exe /I{7B15D70E-9449-4CFB-B9BC-798465B2BD5C}
                            Package de pilotes Windows - ENE (enecir) HIDClass (09/04/2008 2.6.0.0)-->C:\PROGRA~1\DIFX\270581355A767BF1\DPInst.exe /u C:\Windows\System32\DriverStore\FileRepository\enecir.inf_1a3c82dd\enecir.inf
                            Power2Go-->"C:\Program Files\InstallShield Installation Information\{40BF1E83-20EB-11D8-97C5-0009C5020658}\Setup.exe" /z-uninstall
                            Power2Go-->"C:\Program Files\InstallShield Installation Information\{40BF1E83-20EB-11D8-97C5-0009C5020658}\Setup.exe" /z-uninstall
                            PowerDirector-->"C:\Program Files\InstallShield Installation Information\{CB099890-1D5F-11D5-9EA9-0050BAE317E1}\Setup.exe" /z-uninstall
                            PowerDirector-->"C:\Program Files\InstallShield Installation Information\{CB099890-1D5F-11D5-9EA9-0050BAE317E1}\Setup.exe" /z-uninstall
                            ProtectSmart Hard Drive Protection-->MsiExec.exe /X{9D615069-AA8F-4E89-AE9D-77AAE90F529F}
                            Realtek 8169 8168 8101E 8102E Ethernet Driver-->C:\Program Files\InstallShield Installation Information\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}\setup.exe -runfromtemp -l0x040c -removeonly
                            Security Update for 2007 Microsoft Office System (KB969559)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {69F52148-9BF6-4CDC-BF76-103DEAF3DD08}
                            Security Update for 2007 Microsoft Office System (KB973704)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {E626DC89-A787-4553-9BB3-DC2EC7E1593F}
                            Security Update for Microsoft Office Excel 2007 (KB973593)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {7D6255E3-3423-4D8B-A328-F6F8D28DD5FE}
                            Security Update for Microsoft Office PowerPoint 2007 (KB957789)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {7559E742-FF9F-4FAE-B279-008ED296CB4D}
                            Security Update for Microsoft Office system 2007 (972581)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {3D019598-7B59-447A-80AE-815B703B84FF}
                            Security Update for Microsoft Office system 2007 (KB969613)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {5ECEB317-CBE9-4E08-AB10-756CB6F0FB6C}
                            Security Update for Microsoft Office system 2007 (KB974234)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {FCD742B9-7A55-44BC-A776-F795F21FEDDC}
                            Security Update for Microsoft Office Visio Viewer 2007 (KB973709)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {71127777-8B2C-4F97-AF7A-6CF8CAC8224D}
                            SPORE Creature Creator Trial Edition-->"C:\Program Files\HP Games\SPORE Creature Creator Trial Edition\Uninstall.exe"
                            Spybot - Search & Destroy-->"C:\Program Files\Spybot - Search & Destroy\unins000.exe"
                            Steam(TM)-->MsiExec.exe /X{048298C9-A4D3-490B-9FF9-AB023A9238F3}
                            Synaptics Pointing Device Driver-->rundll32.exe "C:\Program Files\Synaptics\SynTP\SynISDLL.dll",standAloneUninstall
                            Update for 2007 Microsoft Office System (KB967642)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {C444285D-5E4F-48A4-91DD-47AAAA68E92D}
                            Update for Microsoft .NET Framework 3.5 SP1 (KB963707)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {B2AE9C82-DC7B-3641-BFC8-87275C4F3607} /qb+ REBOOTPROMPT=""
                            Update for Microsoft Office Word 2007 (KB974561)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {0CDDBAA2-2111-4A0E-A1B0-76C40C635331}
                            1. Ok, rien de bien méchant, fais ceci :

                              • Sous XP : Double clique sur HijackThis qui se trouve ici ==> C:\Program Files\trend micro\.exe
                              • Sous Vista/7 : Fais un clic droit et choisis exécuter en tant q'uadministrateur sur HijackThis qui se trouve ici ==> C:\Program Files\trend micro\.exe

                              • Clique sur Do a system Scan only

                              • Coche les cases suivantes (si elles sont présentes) :

                              O4 - HKLM\..\Run: [DVDAgent] "C:\Program Files\Hewlett-Packard\Media\DVD\DVDAgent.exe"
                              O4 - HKLM\..\Run: [TSMAgent] "C:\Program Files\Hewlett-Packard\TouchSmart\Media\TSMAgent.exe"
                              O4 - HKLM\..\Run: [CLMLServer for HP TouchSmart] "C:\Program Files\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe"
                              O4 - HKLM\..\Run: [UpdateLBPShortCut] "C:\Program Files\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\LabelPrint" UpdateWithCreateOnce "Software\CyberLink\LabelPrint\2.5"
                              O4 - HKLM\..\Run: [UpdatePSTShortCut] "C:\Program Files\CyberLink\DVD Suite\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\DVD Suite" UpdateWithCreateOnce "Software\CyberLink\PowerStarter"
                              O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
                              O4 - HKLM\..\Run: [UpdateP2GoShortCut] "C:\Program Files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"
                              O4 - HKLM\..\Run: [UpdatePDIRShortCut] "C:\Program Files\CyberLink\PowerDirector\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\PowerDirector" UpdateWithCreateOnce "SOFTWARE\CyberLink\PowerDirector\7.0"
                              O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
                              O4 - HKLM\..\Run: [HP Health Check Scheduler] c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
                              O4 - HKLM\..\Run: [TVAgent] "C:\Program Files\Hewlett-Packard\Media\TV\TVAgent.exe"
                              O4 - HKLM\..\Run: [Malwarebytes Anti-Malware (reboot)] "C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript
                              O4 - HKCU\..\Run: [HPAdvisor] C:\Program Files\Hewlett-Packard\HP Advisor\HPAdvisor.exe autorun=AUTORUN
                              O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
                              


                              • Clique sur Fix checked puis sur "Oui" dans la fenêtre d'avertissement

                              • Ferme HijackThis

                              Tu as des traces de deux antivirus présents sur ton PC, Avast et Norton, il ne faut en conserver que un.
                              Si tu n'as pas de licence valide de Norton, pas la peine de le garder et Avast n'est pas le plus performant.

                              Le deuxième rapport (info.txt) n'est pas complet. Rend dans le dossier C:\rsit, ouvre le fichier info.txt, sélectionne tout (ctrl + A), copie (ctrl + C) et colle le dans ta réponse (ctrl + V).

                              Il y aura encore quelques mises à jour de logiciels à faire.
                              1. J ai pa Do a system Scan only sa me remet juste ce que je tai copier coller
                                1. ses fai ensuite apres la fenetre ou il fau dire ou je fai quoi

                                  Cordialement Raphael
                                  1. Daccord voila ensuite peu tu m aider a metre mes logiciel a jour et a elever norton parceque moi je le trouve pas la ><
                                    • 1
                                    • 2
                                    • 3