PC qui rame... voir pagaye à la main...

Résolu
Bonjour,

Mon PC rame énormément en ce moment. J'ai remarqué que mon UC est constamment à 50% et que dès que j'ouvre le moindre programme, ça passe à 100% et provoque de gros ralentissements.

Voici un screen des processus:
http://img191.imageshack.us/img191/9169/sanstitrepl.png

On remarque que svchost.exe est constamment aux alentours de 50...

qu'est-ce que je peux faire d'une manière générale pour que mon PC tourne normalement (un UC normal sans programme en cours c'est combien? maximum 10% non?)

merci par avance.
Configuration: processeur 3,2Ghz
2Go de ram
Nvidia GeForce 9600

6 réponses

Résumé de la discussion

Le fil décrit un PC qui rame fortement, avec l’UC passant fréquemment à 100% dès l’ouverture d’un programme et svchost.exe utilisant une charge constante autour de 50%. Plusieurs réponses suggèrent une infection potentielle et recommandent un dépistage, notamment l’envoi d’un fichier suspect sur VirusTotal et l’utilisation d’HijackThis pour repérer et corriger les entrées de démarrage. Des outils et procédures de nettoyage sont proposés: ToolsCleaner2, CCleaner et Malwarebytes, avec des étapes telles que désactiver puis réactiver la restauration système, puis créer un point de restauration propre. Des conseils complémentaires insistent sur les mises à jour Windows et des applications, la prudence lors de l’installation de logiciels gratuits ou de publicités, et la réalisation régulière de sauvegardes externes.

Bobot (l’IA à votre service)
  1. bonjour
    ces 2 processus
    fssm32.exe 64164 KO, correspond à f sécure
    chrome.exe 66484 KO
    c'est énorme
    0
    1. Je te le confirme c'est énorme, encore que Chrome c'est ma plateforme pour naviguer sur le net... je crois que je vais retourner sous firefox même si c'est moins estétique :D

      Pour ce qui est de fssm32.exe c'est bien mon antivirus fsecure... mais celui là je ne peut rien lui faire je suppose.

      Des idées pour remédier à tout cela? SVP
      0
      1. chrome, ça bouffe beaucoup
        on va vérifier son le PC est infecté
        Télécharge Random's System Information Tool (RSIT) de random/random et enregistre l'exécutable sur ton Bureau.

        - http://images.malwareremoval.com/random/RSIT.exe

        ! Déconnecte toi et ferme toutes tes applications en cours !

        * Double-clique sur RSIT.exe pour le lancer .
        * Une première fenêtre s'ouvre avec en titre : Disclaimer of warranty .
        * Devant l'option List files/folders created ... , tu choisis 2 months
        * Clique ensuite sur Continue pour lancer l'analyse ...
        * Laisse faire le scan et ne touche pas au PC ...
        * Lorsque l'analyse sera terminée, deux fichiers texte s'ouvriront (probablement avec le bloc-note).
        * Héberge le contenu de log.txt (c'est celui qui apparait à l'écran), ainsi que de info.txt ici.
        Clique sur parcourir
        Une fois que tu as trouvé les rapports à héberger, clique sur ouvrir
        Clique sur Cliquez ici pour déposer le fichier, puis donne le lien
        qui apparait comme ceci http:/www.cijoint.fr/cjlink.php?file=cj200911/cijgAdC3Ch.txt

        Note : les rapports seront en outre sauvegardés dans ce dossier C:\rsit
        0
    2. Merci de t'intéresser à mon cas :)

      voici le rapport:

      http://www.cijoint.fr/cjlink.php?file=cj201002/cij9cHa0qX.txt
      0
      1. ton anti-virus firewall de f sécure, ça bouffe beaucoup, car j'avais le même, et mon PC ramait, et lorsque je l'ai désinstallé, mon PC ne ramait plus

        Télécharge USBFix (de El Desaparecido, C_XX et Chimay8) sur ton bureau
        http://pagesperso-orange.fr/NosTools/Chiquitine29/UsbFix.txt­
        ou
        https://www.ionos.fr/?affiliate_id=77097

        Branche tes sources de données externes à ton PC, (clé USB, disque dur externe, etc...) susceptible d'avoir été infectées sans les ouvrir

        # Double clic sur le raccourci UsbFix présent sur ton bureau .

        # Sélectionne l'option 1 ( Recherche )

        # Laisse travailler l'outil.

        # Ensuite poste le rapport UsbFix.txt qui apparaitra.

        # Note : Le rapport UsbFix.txt est sauvegardé a la racine du disque. ( C:\UsbFix.txt )

        ( CTRL+A Pour tout selectionner , CTRL+C pour copier et CTRL+V pour coller )

        # Note : "Process.exe", une composante de l'outil, est détecté par certains antivirus (AntiVir, Dr.Web, Kaspersky Anti-Virus) comme étant un RiskTool.
        Il ne s'agit pas d'un virus, mais d'un utilitaire destiné à mettre fin à des processus.
        Mis entre de mauvaises mains, cet utilitaire pourrait arrêter des logiciels de sécurité (Antivirus, Firewall...) d'où l'alerte émise par ces antivirus.
        0
    3. Vi effectivement ça bouffe pas ma de mémoire Fsecure.

      voici le rapport que tu m'as demandé avec USBFix:
      http://www.cijoint.fr/cjlink.php?file=cj201002/cijnlYpipq.tx t
      0
    4. pourrai tu poster le rapport ici, car ce n'est pas accéssible
      0
      1. ############################## | UsbFix V6.097 |

        User : gran kief (Administrateurs) # THE_ROAD_66
        Update on 20/02/2010 by El Desaparecido , C_XX & Chimay8
        Start at: 15:07:00 | 20/02/2010
        Website : http://pagesperso-orange.fr/NosTools/index.html
        Contact : FindyKill.Contact@gmail.com

        Intel(R) Pentium(R) 4 CPU 3.20GHz
        Microsoft Windows XP Édition familiale (5.1.2600 32-bit) # Service Pack 3
        Internet Explorer 6.0.2900.2180
        Windows Firewall Status : Disabled
        AV : AntiVirus Firewall 8.01 8.01 [ Enabled | Updated ]
        FW : AntiVirus Firewall 8.01[ Enabled ]8.01

        C:\ -> Disque fixe local # 129,96 Go (45,08 Go free) # NTFS
        D:\ -> Disque CD-ROM
        E:\ -> Disque amovible
        F:\ -> Disque amovible
        G:\ -> Disque amovible
        H:\ -> Disque amovible

        ############################## | Processus actifs |

        C:\WINDOWS\System32\smss.exe
        C:\WINDOWS\system32\csrss.exe
        C:\WINDOWS\system32\winlogon.exe
        C:\WINDOWS\system32\services.exe
        C:\WINDOWS\system32\lsass.exe
        C:\WINDOWS\system32\nvsvc32.exe
        C:\WINDOWS\system32\svchost.exe
        C:\WINDOWS\system32\svchost.exe
        C:\WINDOWS\System32\svchost.exe
        C:\WINDOWS\system32\svchost.exe
        C:\WINDOWS\system32\svchost.exe
        C:\WINDOWS\system32\svchost.exe
        C:\WINDOWS\system32\spoolsv.exe
        C:\WINDOWS\Explorer.EXE
        C:\WINDOWS\system32\svchost.exe
        C:\Program Files\AntivirusFirewall\Anti-Virus\fsgk32st.exe
        C:\Program Files\AntivirusFirewall\Common\FSMA32.EXE
        C:\Program Files\AntivirusFirewall\Anti-Virus\FSGK32.EXE
        C:\Program Files\AntivirusFirewall\Common\FSMB32.EXE
        C:\WINDOWS\system32\svchost.exe
        C:\Program Files\AntivirusFirewall\Common\FCH32.EXE
        C:\Program Files\AntivirusFirewall\Anti-Virus\fsqh.exe
        C:\Program Files\AntivirusFirewall\Common\FAMEH32.EXE
        C:\WINDOWS\system32\wuauclt.exe
        C:\Program Files\AntivirusFirewall\FSAUA\program\fsaua.exe
        C:\Program Files\AntivirusFirewall\Anti-Virus\fssm32.exe
        C:\Program Files\AntivirusFirewall\ORSP Client\fsorsp.exe
        C:\Program Files\AntivirusFirewall\FWES\Program\fsdfwd.exe
        C:\WINDOWS\system32\wscntfy.exe
        C:\WINDOWS\System32\alg.exe
        C:\Program Files\AntivirusFirewall\FSAUA\program\fsus.exe
        C:\Program Files\AntivirusFirewall\Common\FSM32.EXE
        C:\WINDOWS\System32\svchost.exe
        C:\Program Files\AntivirusFirewall\FSGUI\fsguidll.exe
        C:\Program Files\AntivirusFirewall\Anti-Virus\fsav32.exe
        C:\WINDOWS\system32\wbem\wmiprvse.exe

        ################## | Elements infectieux |

        ################## | Registre |

        ################## | Mountpoints2 |

        HKCU\..\..\Explorer\MountPoints2\{31f912cb-a7f3-11dd-99ca-001109c6766f}
        Shell\AutoRun\command =I:\autorun\autorun.exe

        HKCU\..\..\Explorer\MountPoints2\{b9c5553b-53fe-11d9-aa3e-806d6172696f}
        Shell\AutoRun\command =D:\setup.exe

        HKCU\..\..\Explorer\MountPoints2\{ccba173b-5290-11d9-8ca1-806d6172696f}
        Shell\AutoRun\command =D:\setup.exe

        HKCU\..\..\Explorer\MountPoints2\{d171d1bb-5276-11d9-8426-806d6172696f}
        Shell\AutoRun\command =D:\setup.exe

        HKCU\..\..\Explorer\MountPoints2\{e43cd43b-527f-11d9-aee6-806d6172696f}
        Shell\AutoRun\command =D:\setup.exe

        ################## | Vaccin |

        (!) Cet ordinateur n'est pas vacciné !

        ################## | ! Fin du rapport # UsbFix V6.097 ! |
        0
        1. Branche tes sources de données externes à ton PC, (clé USB, disque dur externe, etc...) susceptible d avoir été infectés sans les ouvrir

          # Double clic sur le raccourci UsbFix présent sur ton bureau

          # Sélectionne l'option 2 ( Suppression )

          # Ton bureau disparaitra et le pc redémarrera .

          # Au redémarrage , UsbFix scannera ton pc , laisse travailler l'outil.

          # Ensuite poste le rapport UsbFix.txt qui apparaitra avec le bureau .

          # Note : Le rapport UsbFix.txt est sauvegardé a la racine du disque.( C:\UsbFix.txt )

          ( CTRL+A Pour tout selectionner , CTRL+C pour copier et CTRL+V pour coller )
          0
        2. @Utilisateur anonymeTrop bien, mon UC tourne ) 2% :D

          voici le rapport de usfix avec l'option 2:

          ############################## | UsbFix V6.097 |

          User : gran kief (Administrateurs) # THE_ROAD_66
          Update on 20/02/2010 by El Desaparecido , C_XX & Chimay8
          Start at: 17:57:53 | 20/02/2010
          Website : http://pagesperso-orange.fr/NosTools/index.html
          Contact : FindyKill.Contact@gmail.com

          Intel(R) Pentium(R) 4 CPU 3.20GHz
          Microsoft Windows XP Édition familiale (5.1.2600 32-bit) # Service Pack 3
          Internet Explorer 6.0.2900.2180
          Windows Firewall Status : Enabled
          AV : AntiVirus Firewall 8.01 8.01 [ Enabled | Updated ]
          FW : AntiVirus Firewall 8.01[ Enabled ]8.01

          C:\ -> Disque fixe local # 129,96 Go (44,95 Go free) # NTFS
          D:\ -> Disque CD-ROM
          E:\ -> Disque amovible
          F:\ -> Disque amovible
          G:\ -> Disque amovible
          H:\ -> Disque amovible

          ############################## | Processus actifs |

          C:\WINDOWS\System32\smss.exe
          C:\WINDOWS\system32\csrss.exe
          C:\WINDOWS\system32\winlogon.exe
          C:\WINDOWS\system32\services.exe
          C:\WINDOWS\system32\lsass.exe
          C:\WINDOWS\system32\nvsvc32.exe
          C:\WINDOWS\system32\logonui.exe
          C:\WINDOWS\system32\svchost.exe
          C:\WINDOWS\system32\svchost.exe
          C:\WINDOWS\System32\svchost.exe
          C:\WINDOWS\system32\svchost.exe
          C:\WINDOWS\system32\svchost.exe
          C:\WINDOWS\system32\svchost.exe
          C:\WINDOWS\system32\spoolsv.exe
          c:\program files\fichiers communs\logitech\lvmvfm\LVPrcSrv.exe
          C:\WINDOWS\Explorer.EXE
          C:\WINDOWS\system32\svchost.exe
          C:\Program Files\AntivirusFirewall\Anti-Virus\fsgk32st.exe
          C:\Program Files\AntivirusFirewall\Common\FSMA32.EXE
          C:\Program Files\AntivirusFirewall\Anti-Virus\FSGK32.EXE
          C:\Program Files\AntivirusFirewall\Common\FSMB32.EXE
          C:\WINDOWS\System32\svchost.exe
          C:\Program Files\AntivirusFirewall\Common\FCH32.EXE
          C:\Program Files\Java\jre6\bin\jqs.exe
          C:\Program Files\CDBurnerXP\NMSAccessU.exe
          C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
          C:\Program Files\AntivirusFirewall\Common\FAMEH32.EXE
          C:\Program Files\AntivirusFirewall\Anti-Virus\fsqh.exe
          C:\WINDOWS\system32\svchost.exe
          C:\Program Files\Windows Media Player\WMPNetwk.exe
          C:\WINDOWS\system32\wuauclt.exe
          C:\WINDOWS\system32\wbem\wmiprvse.exe
          C:\Program Files\AntivirusFirewall\ORSP Client\fsorsp.exe
          C:\Program Files\AntivirusFirewall\Anti-Virus\fssm32.exe
          C:\WINDOWS\system32\wscntfy.exe
          C:\Program Files\AntivirusFirewall\FSAUA\program\fsaua.exe
          C:\Program Files\AntivirusFirewall\FWES\Program\fsdfwd.exe

          ################## | Elements infectieux |

          Supprimé ! C:\Recycler\S-1-5-21-2690646912-4200844247-1566674502-1009

          ################## | Registre |

          ################## | Mountpoints2 |

          Supprimé ! HKCU\...\Explorer\MountPoints2\{31f912cb-a7f3-11dd-99ca-001109c6766f}\Shell\AutoRun\Command
          Supprimé ! HKCU\...\Explorer\MountPoints2\{b9c5553b-53fe-11d9-aa3e-806d6172696f}\Shell\AutoRun\Command
          Supprimé ! HKCU\...\Explorer\MountPoints2\{ccba173b-5290-11d9-8ca1-806d6172696f}\Shell\AutoRun\Command
          Supprimé ! HKCU\...\Explorer\MountPoints2\{d171d1bb-5276-11d9-8426-806d6172696f}\Shell\AutoRun\Command
          Supprimé ! HKCU\...\Explorer\MountPoints2\{e43cd43b-527f-11d9-aee6-806d6172696f}\Shell\AutoRun\Command

          ################## | Listing des fichiers présent |

          [04/04/2008 23:57|-rah-----|786] C:\administrativeInfo.dbf
          [31/12/2007 15:58|-rah-----|7680] C:\albumImagesTable.cdx
          [31/12/2007 15:58|-rah-----|957] C:\albumImagesTable.dbf
          [04/04/2008 23:57|-rah-----|4608] C:\albumTable.cdx
          [04/04/2008 23:57|-rah-----|3762] C:\albumTable.dbf
          [19/04/2005 10:56|-rah-----|627] C:\autoAlbum.log
          [15/12/2004 14:42|-ra------|0] C:\AUTOEXEC.BAT
          [20/02/2010 15:39|-rahs----|216] C:\boot.ini
          [05/08/2004 13:00|-rahs----|4952] C:\Bootfont.bin
          [04/04/2008 23:57|-rah-----|0] C:\CB_Server_Errors.txt
          [15/12/2004 14:42|-ra------|0] C:\CONFIG.SYS
          [20/09/2008 11:18|-rah-----|221] C:\error.log
          [31/12/2007 15:58|-rah-----|3072] C:\EXIFTable.cdx
          [31/12/2007 15:58|-rah-----|488] C:\EXIFTable.dbf
          [?|?|?] C:\hiberfil.sys
          [06/02/2004 16:19|-rah-----|16384] C:\hpqimgrc.resources.dll
          [31/12/2007 15:58|-rah-----|9216] C:\imageTable.cdx
          [31/12/2007 15:58|-rah-----|1089] C:\imageTable.dbf
          [31/12/2007 15:58|-rah-----|512] C:\imageTable.fpt
          [15/12/2004 14:42|-rahs----|0] C:\IO.SYS
          [31/12/2007 15:58|-rah-----|6144] C:\keywordImagesTable.cdx
          [31/12/2007 15:58|-rah-----|360] C:\keywordImagesTable.dbf
          [31/12/2007 15:58|-rah-----|4608] C:\keywordTable.cdx
          [31/12/2007 15:58|-rah-----|456] C:\keywordTable.dbf
          [31/12/2007 15:58|-rah-----|360] C:\managedFolderTable.dbf
          [15/12/2004 14:42|-rahs----|0] C:\MSDOS.SYS
          [05/08/2004 13:00|-rahs----|47564] C:\NTDETECT.COM
          [02/10/2008 22:14|-rahs----|252240] C:\ntldr
          [?|?|?] C:\pagefile.sys
          [31/12/2007 15:58|-rah-----|4608] C:\pathnameTable.cdx
          [31/12/2007 15:58|-rah-----|1490] C:\pathnameTable.dbf
          [31/12/2007 15:58|-rah-----|6144] C:\ROFImagesTable.cdx
          [31/12/2007 15:58|-rah-----|360] C:\ROFImagesTable.dbf
          [31/12/2007 15:58|-rah-----|3072] C:\ROFTable.cdx
          [31/12/2007 15:58|-rah-----|392] C:\ROFTable.dbf
          [02/10/2008 18:20|-rah-----|90] C:\Setup.log
          [20/02/2010 18:07|--a------|5075] C:\UsbFix.txt
          [20/10/2007 19:47|-rah-----|3858] C:\_Sid.txt

          ################## | Vaccination |

          # C:\autorun.inf -> Dossier créé par UsbFix (El Desaparecido).

          ################## | Upload |

          Veuillez envoyer le fichier : C:\UsbFix_Upload_Me_THE_ROAD_66.zip : https://www.ionos.fr/?affiliate_id=77097
          Merci pour votre contribution .

          ################## | ! Fin du rapport # UsbFix V6.097 ! |

          Est-ce que ça te parait bon?

          En tout cas ça n'a plus l'air de ramer :) donc déjà un grand merci :)

          est-ce que je dois faire autre chose?
          0
        3. @jinfuushenPourrai tu me poster le rapport info.txt qui est dans C:\rsit
          0
        4. @Utilisateur anonymebien entendu "mon sauveur" lol

          info.txt logfile of random's system information tool 1.06 2010-02-20 16:44:58

          ======Uninstall list======

          -->"C:\Program Files\AntivirusFirewall\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Anti-Spyware Scanner"
          -->"C:\Program Files\AntivirusFirewall\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Anti-Spyware"
          -->"C:\Program Files\AntivirusFirewall\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Anti-Virus Client Security Installer"
          -->"C:\Program Files\AntivirusFirewall\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Anti-Virus"
          -->"C:\Program Files\AntivirusFirewall\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Automatic Update Agent"
          -->"C:\Program Files\AntivirusFirewall\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure DAAS"
          -->"C:\Program Files\AntivirusFirewall\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure DAAS2"
          -->"C:\Program Files\AntivirusFirewall\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Diagnostics"
          -->"C:\Program Files\AntivirusFirewall\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure E-mail Scanning"
          -->"C:\Program Files\AntivirusFirewall\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure FWES"
          -->"C:\Program Files\AntivirusFirewall\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure GateKeeper Interface"
          -->"C:\Program Files\AntivirusFirewall\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Gemini"
          -->"C:\Program Files\AntivirusFirewall\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure GUI"
          -->"C:\Program Files\AntivirusFirewall\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Help"
          -->"C:\Program Files\AntivirusFirewall\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure HIPS"
          -->"C:\Program Files\AntivirusFirewall\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Internet Shield"
          -->"C:\Program Files\AntivirusFirewall\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure ISP News"
          -->"C:\Program Files\AntivirusFirewall\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Localization API"
          -->"C:\Program Files\AntivirusFirewall\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Management Agent"
          -->"C:\Program Files\AntivirusFirewall\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure ORSP Client"
          -->"C:\Program Files\AntivirusFirewall\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Pegasus Engine"
          -->"C:\Program Files\AntivirusFirewall\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Protocol Scanner"
          -->"C:\Program Files\AntivirusFirewall\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Spam Control"
          -->"C:\Program Files\AntivirusFirewall\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Spam Scanner"
          -->"C:\Program Files\AntivirusFirewall\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure TNB"
          -->"C:\Program Files\AntivirusFirewall\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Uninstall"
          -->C:\WINDOWS\IsUn040c.exe -fC:\WINDOWS\orun32.isu
          -->MsiExec /X{C5C1C0F0-D62F-4DBF-81D4-D7EF397C228B}
          -->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
          Ad-Aware Email Scanner for Outlook-->MsiExec.exe /I{338F08AB-C262-42C7-B000-34DE1A475273}
          Ad-Aware-->"C:\Documents and Settings\All Users\Application Data\{52AC600B-5800-407E-99FF-83CD0669760B}\Ad-AwareInstaller.exe" REMOVE=TRUE MODIFY=FALSE
          Ad-Aware-->C:\Documents and Settings\All Users\Application Data\{52AC600B-5800-407E-99FF-83CD0669760B}\Ad-AwareInstaller.exe
          Adobe Flash Player 10 Plugin-->C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
          Adobe Flash Player ActiveX-->C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
          Adobe Illustrator CS Tryou-->RunDll32 "C:\Program Files\Fichiers communs\InstallShield\Professional\RunTime\0701\Intel32\ctor.dll",LaunchSetup "C:\Program Files\InstallShield Installation Information\{85CC6638-C827-40E8-94C7-110A77E7812B}\setup.exe"
          Adobe Reader 7.0.5 - Français-->MsiExec.exe /I{AC76BA86-7AD7-1036-7B44-A70000000000}
          Age of Empires III - The Asian Dynasties-->C:\Program Files\InstallShield Installation Information\{C43C1415-3DFC-4089-9A32-0BECF28A6046}\install.exe -runfromtemp -l0x040c
          Age of Empires III - The WarChiefs-->C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\11\INTEL3~1\IDriver.exe /M{1C08A24C-B168-407E-A826-68FAF5F20710}
          Age of Empires III-->C:\Program Files\InstallShield Installation Information\{70F8B183-99EB-4304-BA35-080E2DFFD2A3}\install.exe -runfromtemp -l0x040c
          AntiVirus Firewall-->"C:\Program Files\AntivirusFirewall\FSGUI\PostInstall.exe" /tUnInstall
          Archiveur WinRAR-->C:\Program Files\WinRAR\uninstall.exe
          Assistant de connexion Windows Live-->MsiExec.exe /I{D3116CC7-24DC-4CA3-9CE1-23FED836E9F2}
          CCleaner-->"C:\Program Files\CCleaner\uninst.exe"
          CDBurnerXP-->"C:\Program Files\CDBurnerXP\unins000.exe"
          C-Media High Definition Audio Driver-->C:\WINDOWS\system32\cmirmdrv.exe
          Codeur Windows Media Série 9-->msiexec.exe /I {E38C00D0-A68B-4318-A8A6-F7D4B5B1DF0E}
          Codeur Windows Media Série 9-->MsiExec.exe /I{E38C00D0-A68B-4318-A8A6-F7D4B5B1DF0E}
          Creative Modem Blaster V.92 DI5733-1-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{C1C0717C-546A-11D7-9963-00A0C92C4EC3}\setup.exe" -l0x40c /remove
          Defraggler (remove only)-->"C:\Program Files\Defraggler\uninst.exe"
          eMule-->"C:\Program Files\eMule\Uninstall.exe"
          FenAffiche-->C:\WINDOWS\st6unst.exe -n "C:\Program Files\FenAffiche\ST6UNST.LOG"
          Float32 2.0-->MsiExec.exe /I{FED34B00-1DA2-4F4C-A3EC-A5F5893F5D86}
          Fraps-->"C:\Program Files\Fraps\uninstall.exe"
          HASP HL Device Driver-->C:\WINDOWS\system32\UNWISE.EXE C:\WINDOWS\system32\hdd32.log
          HijackThis 2.0.2-->"C:\Program Files\Trend Micro\HijackThis\HijackThis.exe" /uninstall
          Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT=""
          Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT=""
          HP Image Zone 4.2-->C:\Program Files\HP\Digital Imaging\uninstall\hpzscr01.exe -datfile hpqscr01.dat
          HP PSC & OfficeJet 4.2-->"C:\Program Files\HP\Digital Imaging\{A1062847-0846-427A-92A1-BB8251A91E91}\setup\hpzscr01.exe" -datfile hposcr04.dat
          Installation Windows Live-->MsiExec.exe /I{46ABBC54-1872-4AA3-95E2-F2C063A63F31}
          Java(TM) 6 Update 14-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216014FF}
          Junk Mail filter update-->MsiExec.exe /I{E2DFE069-083E-4631-9B6C-43C48E991DE5}
          K-Lite Codec Pack 5.1.0 (Full)-->"C:\Program Files\K-Lite Codec Pack\unins000.exe"
          Lame ACM MP3 Codec-->"C:\WINDOWS\IFinst26.exe" -UC:\Program Files\Lame MP3 Codec\IFU139.inf
          Lecteur Windows Media 11-->"C:\Program Files\Windows Media Player\Setup_wm.exe" /Uninstall
          livebox-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{17342E3B-0818-4A6F-BFF8-99476605ADD6}\Setup.exe" -l0x40c
          Malwarebytes' Anti-Malware-->"C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"
          Microsoft .NET Framework 1.1 French Language Pack-->MsiExec.exe /X{9A394342-4A68-4EBA-85A6-55B559F4E700}
          Microsoft .NET Framework 1.1 Security Update (KB953297)-->"C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe" "C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\M953297\M953297Uninstall.msp"
          Microsoft .NET Framework 1.1-->msiexec.exe /X {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
          Microsoft .NET Framework 1.1-->MsiExec.exe /X{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
          Microsoft .NET Framework 2.0 Service Pack 2 Language Pack - FRA-->MsiExec.exe /I{72AD53CC-CCC0-3757-8480-9EE176866A7C}
          Microsoft .NET Framework 2.0 Service Pack 2-->MsiExec.exe /I{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}
          Microsoft .NET Framework 3.0 French Language Pack-->MsiExec.exe /X{E3C080B0-23F5-49AF-89F8-8E8DBC89E659}
          Microsoft .NET Framework 3.0 Service Pack 2 Language Pack - FRA-->MsiExec.exe /I{0BD83598-C2EF-3343-847B-7D2E84599128}
          Microsoft .NET Framework 3.0 Service Pack 2-->MsiExec.exe /I{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}
          Microsoft .NET Framework 3.5 Language Pack SP1 - fra-->MsiExec.exe /I{3E31821C-7917-367E-938E-E65FC413EA31}
          Microsoft .NET Framework 3.5 SP1-->C:\WINDOWS\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
          Microsoft .NET Framework 3.5 SP1-->MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
          Microsoft Chart Controls for Microsoft .NET Framework 3.5-->MsiExec.exe /X{41785C66-90F2-40CE-8CB5-1C94BFC97280}
          Microsoft Choice Guard-->MsiExec.exe /X{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}
          Microsoft Office XP Professional avec FrontPage-->MsiExec.exe /I{9028040C-6000-11D3-8CFE-0050048383C9}
          Microsoft Search Enhancement Pack-->MsiExec.exe /X{4CBA3D4C-8F51-4D60-B27E-F6B641C571E7}
          Microsoft SQL Server 2005 Compact Edition [ENU]-->MsiExec.exe /I{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}
          Microsoft Sync Framework Runtime Native v1.0 (x86)-->MsiExec.exe /I{8A74E887-8F0F-4017-AF53-CBA42211AAA5}
          Microsoft Sync Framework Services Native v1.0 (x86)-->MsiExec.exe /I{BD64AF4A-8C80-4152-AD77-FCDDF05208AB}
          Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053-->MsiExec.exe /X{770657D0-A123-3C07-8E44-1C83EC895118}
          Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148-->MsiExec.exe /X{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}
          Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17-->MsiExec.exe /X{9A25302D-30C0-39D9-BD6F-21E6EC160475}
          Mise à jour de sécurité pour Windows Internet Explorer 7 (KB939653)-->"C:\WINDOWS\ie7updates\KB939653-IE7\spuninst\spuninst.exe"
          Mise à jour de sécurité pour Windows Internet Explorer 7 (KB944533)-->"C:\WINDOWS\ie7updates\KB944533-IE7\spuninst\spuninst.exe"
          Mise à jour de sécurité pour Windows Internet Explorer 7 (KB950759)-->"C:\WINDOWS\ie7updates\KB950759-IE7\spuninst\spuninst.exe"
          Mise à jour de sécurité pour Windows Internet Explorer 7 (KB956390)-->"C:\WINDOWS\ie7updates\KB956390-IE7\spuninst\spuninst.exe"
          Module de prise en charge linguistique du français de Microsoft .NET Framework 3.0-->c:\WINDOWS\Microsoft.NET\Framework\v3.0\Microsoft .NET Framework 3.0 French Language Pack\setup.exe
          Module linguistique Microsoft .NET Framework 3.5 SP1- fra-->c:\WINDOWS\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack SP1 - fra\setup.exe
          MSVCRT-->MsiExec.exe /I{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
          MSXML 4.0 SP2 (KB925672)-->MsiExec.exe /I{A9CF9052-F4A0-475D-A00F-A8388C62DD63}
          MSXML 4.0 SP2 (KB927978)-->MsiExec.exe /I{37477865-A3F1-4772-AD43-AAFC6BCFF99F}
          MSXML 4.0 SP2 (KB936181)-->MsiExec.exe /I{C04E32E0-0416-434D-AFB9-6969D703A9EF}
          MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
          MSXML 4.0 SP2 (KB973688)-->MsiExec.exe /I{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
          MSXML 6.0 Parser (KB925673)-->MsiExec.exe /I{FE9126DB-5F84-495A-BB46-3C724F1C2D08}
          msxml4-->MsiExec.exe /X{5AE3D9F1-9E9E-4015-8787-E22705AA32C5}
          MyFreeCodec-->C:\Program Files\MyFree Codec\09b beta\uninstall.exe
          NVIDIA Drivers-->C:\WINDOWS\system32\nvuninst.exe UninstallGUI
          NVIDIA nView Desktop Manager-->C:\Program Files\NVIDIA Corporation\nView\nViewSetup.exe -uninstall
          NVIDIA PhysX-->MsiExec.exe /X{C5C1C0F0-D62F-4DBF-81D4-D7EF397C228B}
          Paint.NET v3.5.3-->MsiExec.exe /X{A401975C-C1C5-4ECB-BC18-BFD9F8F401B7}
          PDFCreator-->C:\Program Files\PDFCreator\unins000.exe
          Pro Evolution Soccer 2010-->MsiExec.exe /X{283FFB23-8751-4B08-ACB8-5E0F8BCF7727}
          Programme de gestion Camera de Logitech®-->"C:\Program Files\Fichiers communs\Logitech\QCDRV\BIN\SETUP.EXE" UNINSTALL REMOVEPROMPT
          PS TO PC (2P) CONVERTOR-->C:\PROGRA~1\PSTOPC~1\UNWISE.EXE C:\PROGRA~1\PSTOPC~1\INSTALL.LOG
          REALTEK GbE & FE Ethernet PCI NIC Driver-->C:\Program Files\InstallShield Installation Information\{ACCA20B0-C4D1-4BF5-BF21-0A0EB5EF9730}\setup.exe -runfromtemp -removeonly
          REALTEK Gigabit and Fast Ethernet NIC Driver-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{94FB906A-CF42-4128-A509-D353026A607E}\setup.exe" -l0x40c REMOVE
          Samsung Media Studio-->C:\Program Files\InstallShield Installation Information\{C20CE592-B0F8-4D20-BF31-0151CA6331A6}\Setup.exe -runfromtemp -l0x040c -removeonly
          Security Update for CAPICOM (KB931906)-->MsiExec.exe /I{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
          Security Update for CAPICOM (KB931906)-->MsiExec.exe /X{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
          System Requirements Lab-->C:\Program Files\SystemRequirementsLab\Uninstall.exe
          Update for Microsoft .NET Framework 3.5 SP1 (KB963707)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {B2AE9C82-DC7B-3641-BFC8-87275C4F3607} /qb+ REBOOTPROMPT=""
          VCRedistSetup-->MsiExec.exe /I{3921A67A-5AB1-4E48-9444-C71814CF3027}
          VIA Gestionnaire de périphériques de plate-forme-->C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{20D4A895-748C-4D88-871C-FDB1695B0169}
          Visual C++ 2008 x86 Runtime - (v9.0.30729)-->MsiExec.exe /X{F333A33D-125C-32A2-8DCE-5C5D14231E27}
          Visual C++ 2008 x86 Runtime - v9.0.30729.01-->C:\WINDOWS\system32\msiexec.exe /x {F333A33D-125C-32A2-8DCE-5C5D14231E27} /qb+ REBOOTPROMPT=""
          Windows Installer Clean Up-->MsiExec.exe /X{121634B0-2F4B-11D3-ADA3-00C04F52DD52}
          Windows Live Call-->MsiExec.exe /I{82C7B308-0BDD-49D8-8EA5-9CD3A3F9DF41}
          Windows Live Communications Platform-->MsiExec.exe /I{ED00D08A-3C5F-488D-93A0-A04F21F23956}
          Windows Live Mail-->MsiExec.exe /I{5DD76286-9BE7-4894-A990-E905E91AC818}
          Windows Live Messenger-->MsiExec.exe /X{770F1BEC-2871-4E70-B837-FB8525FFA3B1}
          Windows Media Format 11 runtime-->"C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
          Windows Presentation Foundation Language Pack (FRA)-->MsiExec.exe /X{6901DD22-527A-41EF-9059-E81FEDE9E494}
          Windows Presentation Foundation-->MsiExec.exe /X{BAF78226-3200-4DB4-BE33-4D922A799840}

          ======Hosts File======

          127.0.0.1 www.007guard.com
          127.0.0.1 007guard.com
          127.0.0.1 008i.com
          127.0.0.1 www.008k.com
          127.0.0.1 008k.com
          127.0.0.1 www.00hq.com
          127.0.0.1 00hq.com
          127.0.0.1 010402.com
          127.0.0.1 www.032439.com
          127.0.0.1 032439.com

          ======Security center information======

          AV: AntiVirus Firewall 8.01
          FW: AntiVirus Firewall 8.01

          ======System event log======

          Computer Name: THE_ROAD_66
          Event Code: 7036
          Message: Le service Gestionnaire de connexions d'accès distant est entré dans l'état : en cours d'exécution.

          Record Number: 10
          Source Name: Service Control Manager
          Time Written: 20100125115700.000000+060
          Event Type: Informations
          User:

          Computer Name: THE_ROAD_66
          Event Code: 7036
          Message: Le service NLA (Network Location Awareness) est entré dans l'état : en cours d'exécution.

          Record Number: 9
          Source Name: Service Control Manager
          Time Written: 20100125115659.000000+060
          Event Type: Informations
          User:

          Computer Name: THE_ROAD_66
          Event Code: 7035
          Message: Un contrôle Démarrer a correctement été envoyé au service NLA (Network Location Awareness).

          Record Number: 8
          Source Name: Service Control Manager
          Time Written: 20100125115659.000000+060
          Event Type: Informations
          User: AUTORITE NT\SYSTEM

          Computer Name: THE_ROAD_66
          Event Code: 7035
          Message: Un contrôle Démarrer a correctement été envoyé au service F-Secure Gatekeeper.

          Record Number: 7
          Source Name: Service Control Manager
          Time Written: 20100125115659.000000+060
          Event Type: Informations
          User: AUTORITE NT\SYSTEM

          Computer Name: THE_ROAD_66
          Event Code: 7035
          Message: Un contrôle Démarrer a correctement été envoyé au service Gestionnaire de connexions d'accès distant.

          Record Number: 6
          Source Name: Service Control Manager
          Time Written: 20100125115659.000000+060
          Event Type: Informations
          User: THE_ROAD_66\gran kief

          =====Application event log=====

          Computer Name: THE_ROAD_66
          Event Code: 0
          Message:
          Record Number: 5
          Source Name: RichVideo
          Time Written: 20091017112025.000000+120
          Event Type: Informations
          User:

          Computer Name: THE_ROAD_66
          Event Code: 1517
          Message: Windows a sauvegardé le Registre utilisateur THE_ROAD_66\gran kief alors qu'une application ou un service utilisait toujours le Registre pendant la fermeture de la session. La mémoire utilisée par le Registre de l'utilisateur n'a pas été libérée. le Registre sera déchargé lorsqu'il ne sera plus utilisé.

          Cela est souvent causé par des services s'exécutant en tant que compte d'utilisateur, essayez de configurer les services pour s'exécuter dans le compte service réseau ou service local.

          Record Number: 4
          Source Name: Userenv
          Time Written: 20091017031432.000000+120
          Event Type: Avertissement
          User: AUTORITE NT\SYSTEM

          Computer Name: THE_ROAD_66
          Event Code: 1800
          Message: Le service Centre de sécurité Windows a démarré.

          Record Number: 3
          Source Name: SecurityCenter
          Time Written: 20091016110808.000000+120
          Event Type: Informations
          User:

          Computer Name: THE_ROAD_66
          Event Code: 0
          Message:
          Record Number: 2
          Source Name: RichVideo
          Time Written: 20091016110804.000000+120
          Event Type: Informations
          User:

          Computer Name: THE_ROAD_66
          Event Code: 1001
          Message: Vérification du système de fichiers sur C:
          Le type du système de fichiers est NTFS.

          L'intégrité de l'un de vos disques doit être vérifiée.
          Vous pouvez annuler cette vérification, mais son exécution est
          fortement recommandée.
          Windows va maintenant vérifier le disque.
          L'indicateur d'analyse dans l'attribut d'information standard dans le fichier 0x55b4
          ne devrait pas être activé.
          Correction du segment d'enregistrement de fichier de point d'analyse 21940.
          Nettoyage en cours de petites incohérences sur le lecteur.
          Nettoyage en cours de 22 entrées d'index inutilisées à partir de l'index $SII du fichier 0x9.
          Nettoyage en cours de 22 entrées d'index inutilisées à partir de l'index $SDH du fichier 0x9.
          Nettoyage en cours de 22 descripteurs de sécurité non utilisés.
          CHKDSK vérifie le journal USN...
          Vérification du journal USN terminée.
          CHKDSK a découvert de l'espace libre marqué alloué dans la
          bitmap de la table de fichiers maîtres (MFT).
          Windows a effectué des corrections sur le système de fichiers.

          136271330 Ko d'espace disque au total.
          91836332 Ko dans 81886 fichiers.
          33780 Ko dans 8320 index.
          0 Ko dans des secteurs défectueux.
          311270 Ko utilisés par le système.
          65536 Ko occupés par le fichier journal.
          44089948 Ko disponibles sur le disque.

          4096 octets dans chaque unité d'allocation.
          34067832 unités d'allocation au total sur le disque.
          11022487 unités d'allocation disponibles sur le disque.

          Informations internes :
          20 0f 02 00 68 60 01 00 83 fb 01 00 00 00 00 00 ...h`..........
          f7 11 00 00 02 00 00 00 4f 01 00 00 00 00 00 00 ........O.......
          8a 30 e5 05 00 00 00 00 ec 19 d9 48 00 00 00 00 .0.........H....
          de ce d4 0a 00 00 00 00 00 00 00 00 00 00 00 00 ................
          00 00 00 00 00 00 00 00 06 fe e5 6f 00 00 00 00 ...........o....
          40 aa 42 be 00 00 00 00 18 38 07 00 de 3f 01 00 @.B......8...?..
          00 00 00 00 00 b0 3e e5 15 00 00 00 80 20 00 00 ......>...... ..

          Windows a terminé la vérification de votre disque.
          Veuillez patienter pendant le redémarrage de votre ordinateur.

          Record Number: 1
          Source Name: Winlogon
          Time Written: 20091016110754.000000+120
          Event Type: Informations
          User:

          ======Environment variables======

          "ComSpec"=%SystemRoot%\system32\cmd.exe
          "Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\Microsoft SQL Server\80\Tools\Binn\;C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727;C:\Program Files\ATI Technologies\ATI.ACE\Core-Static
          "windir"=%SystemRoot%
          "FP_NO_HOST_CHECK"=NO
          "OS"=Windows_NT
          "PROCESSOR_ARCHITECTURE"=x86
          "PROCESSOR_LEVEL"=15
          "PROCESSOR_IDENTIFIER"=x86 Family 15 Model 4 Stepping 1, GenuineIntel
          "PROCESSOR_REVISION"=0401
          "NUMBER_OF_PROCESSORS"=2
          "PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
          "TEMP"=%SystemRoot%\TEMP
          "TMP"=%SystemRoot%\TEMP
          "CLASSPATH"=.;

          -----------------EOF-----------------
          0
        5. @jinfuushenad aware ne sert strictement à rien du tout
          Met ton Malwarebytes à jour, et fait un scan complet
          0