Ordi de plus en plus lent et bruyant

Bonjour

Depuis quelques temps, mon ordinateur est beaucoup plus lent qu'avant.
J'ai fait des defragmentations, analyse avec antivir et malwarebytes... mais d'après eux, je n'ai pas de problèmes...

Souvent, quand j'ouvre une seule page internet pour aller sur n'importe quel site, mon CPU Usage monte à 50% ou plus d'un coup et reste ainsi jusqu'à ce que je referme la page internet.

En plus, mon ordinateur semble surchauffer pour rien...par exemple, hier, pendant 5 minutes après l'ouverture, sans que je ne touche rien, la fan n'a pas arrêté jusqu'à ce que je redémarre. Ça chauffait au point où ça sentait le bruler un peu...

Si l'un d'entre vous pourrait m'aider, car je ne peux pas aller faire regarder mon ordinateur par un expert pour le problème avec la fan étant en pleine fin de session.

Merci d'avance pour votre aide!

15 réponses

  1. ta pas télécharger limewire par hasard ???
    0
    1. Non du tout, je fais très attention à mon ordinateur!
      Je ne télécharge rien.
      0
      1. ok, dit moi tout tes logiciels, meme ceux dont tu te dit qu'il n'on rien de méchant.
        0
        1. Tu as peut etre ASK sur ton internet, si tu là vire le et t'aura plus de problème si c'est sa.
          0
          1. J'espère que je dis les bonnes choses...
            J'ai surement oublié certains d'entre eux

            itunes
            quicktime
            CCleaner
            DivX (programme qui m'était nécessaire pour écouter des vidéos)
            Logitech
            Malwarebytes
            Antivir
            Spybot
            Skype
            Nikon Transfer
            Il me semble que j'ai fait un update de java il n'y a pas longtemps, mais je ne me rappelle même pas l'avoir installé
            MSN

            Sinon je ne sais vraiment pas quoi d'autre
            Et non je n'ai pas ASK.
            0
            1. j'ai msn mais il me pose pas trop de soucis, mais fait attention quand meme a ce logiciel. sinon ta boosté ta carte graphique ?
              0
              1. Non j'ai les mêmes composantes qu'à l'achat de mon ordi il y a 1 an et demi
                0
                1. Contributeur sécurité
                  bonjour, si tu pouvais nous mettre un RSIT pour voir si infection , merci

                  1) Télécharges et installes HijackThis :

                  http://www.trendsecure.com/portal/fr/_download/HJTInstall.exe

                  Cliques sur le fichier hijackthis téléchargé pour lancer l'installation
                  laisses toi guider et ne modifies pas les paramètres d'installation .
                  A la fin de l'installation, le programme se lance automatiquement
                  fermes le en cliquant sur la croix rouge.

                  Ne lances pas ce programme pour l'instant et fais la suite

                  2) Télécharge Random's System Information Tool (RSIT) de random/random et enregistre l'exécutable sur ton Bureau.

                  -> http://images.malwareremoval.com/random/RSIT.exe

                  .Déconnectes toi et fermes toutes tes applications en cours

                  Double-clique sur " RSIT.exe " pour le lancer.

                  Clic droit sous VISTA (exécuter en tant que...)

                  .Une première fenêtre s'ouvre avec en titre : " Disclaimer of warranty " .

                  .Devant l'option "List files/folders created ..." , tu choisis : 1 months

                  .cliques ensuite sur " Continuer " pour lancer l'analyse

                  .laisses faire le scan et ne touches pas au PC

                  Lorsque l'analyse sera terminée, deux fichiers texte s'ouvriront

                  Postes le contenu de " log.txt " , ainsi que de " info.txt " (que tu verras dans la barre des tâches), pour analyse et attends la suite ...

                  Important : poste un rapport, puis l'autre dans la réponse suivante

                  Si tu essaies de poster les deux en même temps, cela risque d'être trop long pour le forum ??

                  Note : les rapports seront en outre sauvegardés dans ce dossier C:\rsit

                  0
                  1. Logfile of random's system information tool 1.06 (written by random/random)
                    Run by Charles at 2010-04-18 11:03:11
                    Microsoft® Windows Vista(TM) Home Premium Service Pack 2
                    System drive C: has 92 GB (41%) free of 226 GB
                    Total RAM: 3070 MB (60% free)

                    Logfile of Trend Micro HijackThis v2.0.2
                    Scan saved at 11:03:35, on 2010-04-18
                    Platform: Windows Vista SP2 (WinNT 6.00.1906)
                    MSIE: Internet Explorer v8.00 (8.00.6001.18904)
                    Boot mode: Normal

                    Running processes:
                    C:\Windows\system32\taskeng.exe
                    C:\Program Files\DigitalPersona\Bin\DpAgent.exe
                    C:\Windows\system32\Dwm.exe
                    C:\Windows\Explorer.EXE
                    C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
                    C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
                    C:\Windows\RtHDVCpl.exe
                    C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
                    C:\Program Files\HP\QuickPlay\QPService.exe
                    C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe
                    C:\Program Files\Hewlett-Packard\HP QuickTouch\HPKBDAPP.exe
                    C:\Program Files\Windows Defender\MSASCui.exe
                    C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
                    C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
                    C:\Program Files\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe
                    C:\Program Files\Common Files\Java\Java Update\jusched.exe
                    C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
                    C:\Windows\System32\rundll32.exe
                    C:\Program Files\Common Files\Nikon\Monitor\NkMonitor.exe
                    C:\Program Files\iTunes\iTunesHelper.exe
                    C:\Program Files\Windows Sidebar\sidebar.exe
                    C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
                    C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
                    C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
                    C:\Windows\ehome\ehtray.exe
                    C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
                    C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
                    C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
                    C:\Program Files\Logitech\SetPoint\SetPoint.exe
                    C:\Windows\ehome\ehmsas.exe
                    C:\Program Files\Hewlett-Packard\Shared\HpqToaster.exe
                    C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe
                    C:\Program Files\Common Files\Logitech\KhalShared\KHALMNPR.EXE
                    C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
                    C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
                    C:\Windows\system32\Macromed\Flash\FlashUtil10c.exe
                    C:\Windows\system32\SearchFilterHost.exe
                    C:\Windows\system32\SearchProtocolHost.exe
                    C:\Users\Charles\Desktop\RSIT.exe
                    C:\Program Files\Trend Micro\HijackThis\Charles.exe

                    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://hp-consumer.my.aol.ca/?icid=notebook
                    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
                    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.sympatico.ca/
                    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://hp-consumer.my.aol.ca/?icid=notebook
                    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
                    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
                    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://hp-consumer.my.aol.ca/?icid=notebook
                    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
                    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
                    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
                    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
                    O1 - Hosts: ::1 localhost
                    O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
                    O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
                    O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
                    O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
                    O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
                    O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
                    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
                    O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.5.4723.1820\swg.dll
                    O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
                    O2 - BHO: HP Print Clips - {FFFFFFFF-FF12-44C5-91EC-068E3AA1B2D7} - c:\Program Files\HP\Smart Web Printing\hpswp_framework.dll
                    O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
                    O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
                    O4 - HKLM\..\Run: [SMSERIAL] C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
                    O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
                    O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe
                    O4 - HKLM\..\Run: [QPService] "C:\Program Files\HP\QuickPlay\QPService.exe"
                    O4 - HKLM\..\Run: [QlbCtrl] %ProgramFiles%\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
                    O4 - HKLM\..\Run: [OnScreenDisplay] C:\Program Files\Hewlett-Packard\HP QuickTouch\HPKBDAPP.exe
                    O4 - HKLM\..\Run: [UCam_Menu] "C:\Program Files\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\YouCam" update "Software\CyberLink\YouCam\1.0"
                    O4 - HKLM\..\Run: [DpAgent] C:\Program Files\DigitalPersona\Bin\dpagent.exe
                    O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
                    O4 - HKLM\..\Run: [hpqSRMon] C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe
                    O4 - HKLM\..\Run: [HP Health Check Scheduler] [ProgramFilesFolder]Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
                    O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
                    O4 - HKLM\..\Run: [hpWirelessAssistant] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
                    O4 - HKLM\..\Run: [WAWifiMessage] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe
                    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
                    O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
                    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
                    O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
                    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
                    O4 - HKLM\..\Run: [Nikon Transfer Monitor] C:\Program Files\Common Files\Nikon\Monitor\NkMonitor.exe
                    O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
                    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
                    O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
                    O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
                    O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
                    O4 - HKCU\..\Run: [HPAdvisor] C:\Program Files\Hewlett-Packard\HP Advisor\HPAdvisor.exe autoRun
                    O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
                    O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
                    O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
                    O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
                    O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
                    O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
                    O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
                    O4 - Global Startup: Bluetooth.lnk = ?
                    O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
                    O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
                    O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
                    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
                    O8 - Extra context menu item: Send image to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
                    O8 - Extra context menu item: Send page to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
                    O9 - Extra button: HP Smart Select - {58ECB495-38F0-49cb-A538-10282ABF65E7} - c:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll
                    O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
                    O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\Windows\bdoscandel.exe
                    O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\Windows\bdoscandel.exe
                    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
                    O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
                    O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
                    O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
                    O9 - Extra 'Tools' menuitem: Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
                    O13 - Gopher Prefix:
                    O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scanner/sources/en/scan8/oscan8.cab
                    O16 - DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/2009.07.28_v5.5.8.1/FacebookPhotoUploader55.cab
                    O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
                    O16 - DPF: {E77F23EB-E7AB-4502-8F37-247DBAF1A147} (Windows Live Hotmail Photo Upload Tool) - http://gfx2.hotmail.com/mail/w4/pr01/photouploadcontrol/VistaMSNPUpldfr-ca.cab
                    O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
                    O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
                    O20 - AppInit_DLLs:
                    O23 - Service: Avira AntiVir Planificateur (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe
                    O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
                    O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
                    O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
                    O23 - Service: Com4Qlb - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4Qlb.exe
                    O23 - Service: Biometric Authentication Service (DpHost) - DigitalPersona, Inc. - C:\Program Files\DigitalPersona\Bin\DpHostW.exe
                    O23 - Service: GameConsoleService - WildTangent, Inc. - C:\Program Files\HP Games\My HP Game Console\GameConsoleService.exe
                    O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
                    O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
                    O23 - Service: HP Health Check Service - Hewlett-Packard - c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
                    O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
                    O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
                    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
                    O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
                    O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
                    O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
                    O23 - Service: QuickPlay Background Capture Service (QBCS) (QPCapSvc) - Unknown owner - C:\Program Files\HP\QuickPlay\Kernel\TV\QPCapSvc.exe
                    O23 - Service: QuickPlay Task Scheduler (QTS) (QPSched) - Unknown owner - C:\Program Files\HP\QuickPlay\Kernel\TV\QPSched.exe
                    O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe
                    0
                    1. --
                      End of file - 13647 bytes

                      ======Scheduled tasks folder======

                      C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
                      C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
                      C:\Windows\tasks\Norton Internet Security - Run Full System Scan - Charles.job

                      ======Registry dump======

                      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4efb-9B51-7695ECA05670}]

                      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
                      Adobe PDF Reader Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-23 62080]

                      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{22BF413B-C6D2-4d91-82A9-A0F997BA588C}]
                      Skype add-on (mastermind) - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2009-04-21 1082880]

                      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}]
                      Spybot-S&D IE Protection - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll [2009-01-26 1879896]

                      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}]

                      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
                      Programme d'aide de l'Assistant de connexion Windows Live - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]

                      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
                      Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2010-01-31 279664]

                      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
                      Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.5.4723.1820\swg.dll [2010-01-31 812528]

                      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
                      Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-04-12 41760]

                      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFFFFFFF-FF12-44C5-91EC-068E3AA1B2D7}]
                      HP Print Clips - c:\Program Files\HP\Smart Web Printing\hpswp_framework.dll [2007-08-31 177504]

                      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
                      {2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2010-01-31 279664]

                      [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
                      "SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2008-01-18 1033512]
                      "SMSERIAL"=C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe [2007-01-17 634880]
                      "RtHDVCpl"=C:\Windows\RtHDVCpl.exe [2007-10-09 4702208]
                      "IAAnotif"=C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe [2007-10-24 178712]
                      "QPService"=C:\Program Files\HP\QuickPlay\QPService.exe [2007-12-20 468264]
                      "QlbCtrl"=C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [2007-09-19 202032]
                      "OnScreenDisplay"=C:\Program Files\Hewlett-Packard\HP QuickTouch\HPKBDAPP.exe [2007-09-04 554320]
                      "UCam_Menu"=C:\Program Files\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe [2007-08-17 218408]
                      "DpAgent"=C:\Program Files\DigitalPersona\Bin\dpagent.exe [2007-09-20 671744]
                      "Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-20 1008184]
                      "hpqSRMon"=C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe [2007-08-22 80896]
                      "HP Health Check Scheduler"=[ProgramFilesFolder]Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe []
                      "HP Software Update"=C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [2006-12-10 49152]
                      "hpWirelessAssistant"=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [2007-09-13 480560]
                      "WAWifiMessage"=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe [2007-01-08 311296]
                      "SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-02-18 248040]
                      "avgnt"=C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [2009-03-02 209153]
                      "NvCplDaemon"=C:\Windows\system32\NvCpl.dll [2008-12-04 13556256]
                      "NvMediaCenter"=C:\Windows\system32\NvMcTray.dll [2008-12-04 92704]
                      "Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [2008-10-15 39792]
                      "Nikon Transfer Monitor"=C:\Program Files\Common Files\Nikon\Monitor\NkMonitor.exe [2008-09-30 485208]
                      "Kernel and Hardware Abstraction Layer"=C:\Windows\KHALMNPR.EXE [2007-04-11 56080]
                      "QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2010-03-17 421888]
                      "iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2010-03-26 142120]

                      [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
                      "Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-04-11 1233920]
                      "LightScribe Control Panel"=C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [2007-08-23 455968]
                      "HPAdvisor"=C:\Program Files\Hewlett-Packard\HP Advisor\HPAdvisor.exe autoRun []
                      "SpybotSD TeaTimer"=C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe [2009-01-26 2144088]
                      "msnmsgr"=C:\Program Files\Windows Live\Messenger\msnmsgr.exe [2009-07-26 3883856]
                      "swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2009-12-03 39408]
                      "ehTray.exe"=C:\Windows\ehome\ehTray.exe [2008-01-20 125952]

                      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
                      Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
                      HP Digital Imaging Monitor.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
                      Logitech Desktop Messenger.lnk - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
                      Logitech SetPoint.lnk - C:\Program Files\Logitech\SetPoint\SetPoint.exe

                      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
                      "AppInit_DLLS"=" "

                      [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
                      "notification packages"=scecli
                      DPPWDFLT

                      [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]

                      [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]

                      [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]

                      [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]

                      [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
                      "dontdisplaylastusername"=0
                      "legalnoticecaption"=
                      "legalnoticetext"=
                      "shutdownwithoutlogon"=1
                      "undockwithoutlogon"=1
                      "EnableUIADesktopToggle"=0

                      [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
                      "BindDirectlyToPropertySetStorage"=

                      [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
                      "C:\Program Files\EarthLink TotalAccess\TaskPanl.exe"="C:\Program Files\EarthLink TotalAccess\TaskPanl.exe:*:Enabled:Earthlink"

                      [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

                      [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{49ba8813-29fa-11df-bc72-001e37bd065e}]
                      shell\AutoRun\command - C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL F:\autorun.exe

                      [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{49ba8818-29fa-11df-bc72-001e37bd065e}]
                      shell\AutoRun\command - G:\LaunchU3.exe -a

                      [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{6a8db6cb-02aa-11df-8650-001e37bd065e}]
                      shell\AutoRun\command - G:\DmailerSync_v9_0_15109.exe

                      [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{a27a2f5a-deb6-11de-9182-001e37bd065e}]
                      shell\AutoRun\command - jedna/stvar.exe
                      shell\explore\command - jedna/stvar.exe
                      shell\open\command - jedna/stvar.exe

                      [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{dac3c995-44a6-11df-a65b-001e37bd065e}]
                      shell\AutoRun\command - jedna/stvar.exe
                      shell\explore\command - jedna/stvar.exe
                      shell\open\command - jedna/stvar.exe

                      ======File associations======

                      .js - edit - C:\Windows\System32\Notepad.exe %1
                      .js - open - C:\Windows\System32\WScript.exe "%1" %*

                      ======List of files/folders created in the last 1 months======

                      2010-04-18 11:03:11 ----D---- C:\rsit
                      2010-04-18 11:01:22 ----D---- C:\Program Files\Trend Micro
                      2010-04-17 10:01:04 ----D---- C:\ProgramData\Sun
                      2010-04-17 10:00:42 ----A---- C:\Windows\system32\deployJava1.dll
                      2010-04-17 10:00:41 ----A---- C:\Windows\system32\javaws.exe
                      2010-04-17 10:00:41 ----A---- C:\Windows\system32\javaw.exe
                      2010-04-17 10:00:41 ----A---- C:\Windows\system32\java.exe
                      2010-04-14 14:55:48 ----D---- C:\Program Files\iPod
                      2010-04-14 14:55:45 ----D---- C:\ProgramData\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
                      2010-04-14 14:55:45 ----D---- C:\Program Files\iTunes
                      2010-04-14 14:53:15 ----D---- C:\Program Files\QuickTime
                      2010-04-14 14:50:04 ----D---- C:\Program Files\Bonjour
                      2010-04-13 15:16:25 ----A---- C:\Windows\system32\ntoskrnl.exe
                      2010-04-13 15:16:25 ----A---- C:\Windows\system32\ntkrnlpa.exe
                      2010-04-13 15:16:19 ----A---- C:\Windows\system32\vbscript.dll
                      2010-04-13 15:16:18 ----A---- C:\Windows\system32\wintrust.dll
                      2010-04-13 15:16:13 ----A---- C:\Windows\system32\iphlpsvc.dll
                      2010-04-13 15:16:12 ----A---- C:\Windows\system32\cabview.dll
                      2010-03-31 16:14:28 ----A---- C:\Windows\system32\mshtml.dll
                      2010-03-31 16:14:27 ----A---- C:\Windows\system32\ieframe.dll
                      2010-03-31 16:14:26 ----A---- C:\Windows\system32\wininet.dll
                      2010-03-31 16:14:26 ----A---- C:\Windows\system32\urlmon.dll
                      2010-03-31 16:14:26 ----A---- C:\Windows\system32\occache.dll
                      2010-03-31 16:14:26 ----A---- C:\Windows\system32\mstime.dll
                      2010-03-31 16:14:26 ----A---- C:\Windows\system32\msfeeds.dll
                      2010-03-31 16:14:26 ----A---- C:\Windows\system32\iertutil.dll
                      2010-03-31 16:14:26 ----A---- C:\Windows\system32\iedkcs32.dll
                      2010-03-31 16:14:25 ----A---- C:\Windows\system32\msfeedssync.exe
                      2010-03-31 16:14:25 ----A---- C:\Windows\system32\msfeedsbs.dll
                      2010-03-31 16:14:25 ----A---- C:\Windows\system32\jsproxy.dll
                      2010-03-31 16:14:25 ----A---- C:\Windows\system32\ieUnatt.exe
                      2010-03-31 16:14:25 ----A---- C:\Windows\system32\ieui.dll
                      2010-03-31 16:14:25 ----A---- C:\Windows\system32\iesysprep.dll
                      2010-03-31 16:14:25 ----A---- C:\Windows\system32\iesetup.dll
                      2010-03-31 16:14:25 ----A---- C:\Windows\system32\iernonce.dll
                      2010-03-31 16:14:25 ----A---- C:\Windows\system32\iepeers.dll
                      2010-03-31 16:14:25 ----A---- C:\Windows\system32\ie4uinit.exe
                      2010-03-19 09:44:02 ----D---- C:\Windows\Minidump

                      ======List of files/folders modified in the last 1 months======

                      2010-04-18 11:03:14 ----D---- C:\Windows\Temp
                      2010-04-18 11:01:22 ----RD---- C:\Program Files
                      2010-04-18 09:55:57 ----D---- C:\Windows\System32
                      2010-04-18 09:55:57 ----D---- C:\Windows\inf
                      2010-04-18 09:55:57 ----A---- C:\Windows\system32\PerfStringBackup.INI
                      2010-04-17 10:01:04 ----SHD---- C:\Windows\Installer
                      2010-04-17 10:01:04 ----HD---- C:\ProgramData
                      2010-04-17 10:01:04 ----D---- C:\Program Files\Common Files\Java
                      2010-04-17 10:00:39 ----D---- C:\Program Files\Java
                      2010-04-17 10:00:00 ----SHD---- C:\System Volume Information
                      2010-04-14 15:19:56 ----D---- C:\Windows\winsxs
                      2010-04-14 15:09:51 ----D---- C:\Windows\system32\catroot
                      2010-04-14 15:07:25 ----D---- C:\Windows\Prefetch
                      2010-04-14 15:07:20 ----D---- C:\Windows\system32\drivers
                      2010-04-14 15:07:19 ----D---- C:\Program Files\Windows Mail
                      2010-04-14 15:07:18 ----D---- C:\Windows
                      2010-04-14 14:55:47 ----D---- C:\Program Files\Common Files\Apple
                      2010-04-14 11:04:19 ----D---- C:\ProgramData\Microsoft Help
                      2010-04-14 11:01:35 ----D---- C:\Windows\Debug
                      2010-04-13 15:16:02 ----D---- C:\Windows\system32\catroot2
                      2010-04-10 20:25:06 ----D---- C:\Users\Charles\AppData\Roaming\Facebook
                      2010-04-06 14:52:54 ----A---- C:\Windows\system32\mrt.exe
                      2010-04-01 03:17:03 ----D---- C:\Windows\system32\migration
                      2010-04-01 03:17:03 ----D---- C:\Program Files\Internet Explorer
                      2010-03-21 18:46:35 ----SD---- C:\Users\Charles\AppData\Roaming\Microsoft
                      2010-03-19 09:48:30 ----SD---- C:\ProgramData\Microsoft

                      ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

                      R1 avgio;avgio; \??\C:\Program Files\Avira\AntiVir Desktop\avgio.sys [2009-02-13 11608]
                      R1 avipbb;avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [2009-03-30 96104]
                      R1 ssmdrv;ssmdrv; C:\Windows\system32\DRIVERS\ssmdrv.sys [2009-12-01 28520]
                      R2 avgntflt;avgntflt; C:\Windows\system32\DRIVERS\avgntflt.sys [2009-12-11 56816]
                      R2 rimmptsk;rimmptsk; C:\Windows\system32\DRIVERS\rimmptsk.sys [2007-02-24 39936]
                      R2 rimsptsk;rimsptsk; C:\Windows\system32\DRIVERS\rimsptsk.sys [2007-01-23 42496]
                      R2 rismxdp;Ricoh xD-Picture Card Driver; C:\Windows\system32\DRIVERS\rixdptsk.sys [2007-03-22 37376]
                      R3 ATSWPDRV;AuthenTec TruePrint USB Driver (SwipeSensor); C:\Windows\system32\DRIVERS\ATSwpDrv.sys [2007-08-28 146560]
                      R3 BthEnum;Bluetooth Enumerator Service; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-04-11 22528]
                      R3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2008-01-20 92160]
                      R3 BTHUSB;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2009-04-11 29696]
                      R3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2007-09-18 80424]
                      R3 btwavdt;Bluetooth AVDT; C:\Windows\system32\drivers\btwavdt.sys [2007-09-18 80936]
                      R3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2007-09-18 16168]
                      R3 CmBatt;Microsoft ACPI Control Method Battery Driver; C:\Windows\system32\DRIVERS\CmBatt.sys [2008-01-20 14208]
                      R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys [2009-05-18 26600]
                      R3 HpqKbFiltr;HpqKbFilter Driver; C:\Windows\system32\DRIVERS\HpqKbFiltr.sys [2007-06-18 16768]
                      R3 HpqRemHid;HP Remote Control HID Device; C:\Windows\system32\DRIVERS\HpqRemHid.sys [2007-07-11 7168]
                      R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2007-10-09 1970712]
                      R3 NETw4v32;Intel(R) Wireless WiFi Link Adapter Driver for Windows Vista 32 Bit; C:\Windows\system32\DRIVERS\NETw4v32.sys [2007-06-28 2222080]
                      R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2008-12-04 7606688]
                      R3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-04-11 148992]
                      R3 RTL8169;Realtek 8169 NT Driver; C:\Windows\system32\DRIVERS\Rtlh86.sys [2007-09-17 98816]
                      R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2009-04-11 89088]
                      R3 smserial;smserial; C:\Windows\system32\DRIVERS\smserial.sys [2007-01-17 983936]
                      R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2008-01-18 196784]
                      R3 usbvideo;USB Video Device (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2008-01-20 134016]
                      R3 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\DRIVERS\wmiacpi.sys [2008-01-20 11264]
                      S3 BCM43XV;Broadcom Extensible 802.11 Network Adapter Driver; C:\Windows\system32\DRIVERS\bcmwl6.sys [2006-11-02 464384]
                      S3 BTHPORT;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys [2009-04-11 507904]
                      S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2008-01-20 5632]
                      S3 HdAudAddService;Microsoft 1.1 UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]
                      S3 HSF_DPV;HSF_DPV; C:\Windows\system32\DRIVERS\VSTDPV3.SYS [2008-01-20 987648]
                      S3 HSFHWAZL;HSFHWAZL; C:\Windows\system32\DRIVERS\VSTAZL3.SYS [2008-01-20 200704]
                      S3 LHidFilt;Logitech SetPoint KMDF HID Filter Driver; C:\Windows\system32\DRIVERS\LHidFilt.Sys [2007-04-11 34832]
                      S3 LMouFilt;Logitech SetPoint KMDF Mouse Filter Driver; C:\Windows\system32\DRIVERS\LMouFilt.Sys [2007-04-11 36112]
                      S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\mbamswissarmy.sys [2009-09-10 38224]
                      S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-20 8192]
                      S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-20 5888]
                      S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-20 5504]
                      S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2008-01-20 6016]
                      S3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvm60x32.sys [2006-11-02 429056]
                      S3 winachsf;winachsf; C:\Windows\system32\DRIVERS\VSTCNXT3.SYS [2008-01-20 654336]
                      S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-20 83328]
                      S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2008-01-20 6656]
                      S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-01-20 386616]

                      ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

                      R2 AntiVirSchedulerService;Avira AntiVir Planificateur; C:\Program Files\Avira\AntiVir Desktop\sched.exe [2009-12-01 108289]
                      R2 AntiVirService;Avira AntiVir Guard; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [2009-12-01 185089]
                      R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2010-03-19 144672]
                      R2 Bonjour Service;Service Bonjour; C:\Program Files\Bonjour\mDNSResponder.exe [2010-02-12 345376]
                      R2 BthServ;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2008-01-20 21504]
                      R2 DpHost;Biometric Authentication Service; C:\Program Files\DigitalPersona\Bin\DpHostW.exe [2007-09-20 299008]
                      R2 HP Health Check Service;HP Health Check Service; c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe [2007-09-19 65536]
                      R2 hpqddsvc;HP CUE DeviceDiscovery Service; C:\Windows\system32\svchost.exe [2008-01-20 21504]
                      R2 hpqwmiex;hpqwmiex; C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe [2006-05-02 135168]
                      R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe [2007-10-24 358936]
                      R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2007-08-23 79136]
                      R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2008-12-04 203296]
                      R2 QPCapSvc;QuickPlay Background Capture Service (QBCS); C:\Program Files\HP\QuickPlay\Kernel\TV\QPCapSvc.exe [2007-12-20 271760]
                      R2 QPSched;QuickPlay Task Scheduler (QTS); C:\Program Files\HP\QuickPlay\Kernel\TV\QPSched.exe [2007-12-20 112016]
                      R2 SBSDWSCService;SBSD Security Center Service; C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe [2009-01-26 1153368]
                      R3 hpqcxs08;hpqcxs08; C:\Windows\system32\svchost.exe [2008-01-20 21504]
                      R3 iPod Service;Service de l'iPod; C:\Program Files\iPod\bin\iPodService.exe [2010-03-26 545576]
                      S2 gupdate;Google Update Service (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-01-31 135664]
                      S3 Com4Qlb;Com4Qlb; C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4Qlb.exe [2007-03-05 110592]
                      S3 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-20 21504]
                      S3 GameConsoleService;GameConsoleService; C:\Program Files\HP Games\My HP Game Console\GameConsoleService.exe [2007-07-23 181800]
                      S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-12-03 182768]
                      S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
                      S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
                      S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]

                      -----------------EOF-----------------
                      0
                      1. Contributeur sécurité
                        postes ton log.txt en une seul partie si trop gros pour le forum

                        envoie-le sur : http://www.cijoint.fr/index.php ,

                        fais parcourir recherche le rapport

                        puis sélectionne le rapport en double cliquand dessus

                        et puis sur " cliquer ici pour déposer le fichier "

                        un lien bleu de cette forme va apparaitre :

                        Veuillez noter le lien ci-dessous qui vous permettra d'accéder à ce fichier. 
                        C'est ce même lien que vous devrez transmettre à vos correspondants
                        http://www.cijoint.fr/cjlink.php?file=cjge368/cijSKAP5fU.txt 
                        


                        renvoie le lien tout frais dans ta prochaine reponse .
                        0
                    2. info.txt logfile of random's system information tool 1.06 2010-04-18 11:03:37

                      ======Uninstall list======

                      -->"C:\Program Files\HP Games\3D Ultra Minigolf Adventures\Uninstall.exe"
                      -->"C:\Program Files\HP Games\7 Wonders of the Ancient World\Uninstall.exe"
                      -->"C:\Program Files\HP Games\Bejeweled 2 Deluxe\Uninstall.exe"
                      -->"C:\Program Files\HP Games\Blasterball 2 Revolution\Uninstall.exe"
                      -->"C:\Program Files\HP Games\Blasterball 3\Uninstall.exe"
                      -->"C:\Program Files\HP Games\Chuzzle Deluxe\Uninstall.exe"
                      -->"C:\Program Files\HP Games\Crystal Maze\Uninstall.exe"
                      -->"C:\Program Files\HP Games\Diner Dash\Uninstall.exe"
                      -->"C:\Program Files\HP Games\FATE\Uninstall.exe"
                      -->"C:\Program Files\HP Games\Final Drive Nitro\Uninstall.exe"
                      -->"C:\Program Files\HP Games\Fish Tycoon\Uninstall.exe"
                      -->"C:\Program Files\HP Games\Insaniquarium Deluxe\Uninstall.exe"
                      -->"C:\Program Files\HP Games\Jewel Quest Solitaire\Uninstall.exe"
                      -->"C:\Program Files\HP Games\Jewel Quest\Uninstall.exe"
                      -->"C:\Program Files\HP Games\Magic Academy\Uninstall.exe"
                      -->"C:\Program Files\HP Games\Mah Jong Quest\Uninstall.exe"
                      -->"C:\Program Files\HP Games\My HP Game Console\Uninstall.exe"
                      -->"C:\Program Files\HP Games\Otto's Magic Blocks\Uninstall.exe"
                      -->"C:\Program Files\HP Games\Peggle\Uninstall.exe"
                      -->"C:\Program Files\HP Games\Penguins!\Uninstall.exe"
                      -->"C:\Program Files\HP Games\Polar Bowler\Uninstall.exe"
                      -->"C:\Program Files\HP Games\Polar Golfer Pineapple Cup\Uninstall.exe"
                      -->"C:\Program Files\HP Games\Polar Golfer\Uninstall.exe"
                      -->"C:\Program Files\HP Games\Ricochet Lost Worlds\Uninstall.exe"
                      -->"C:\Program Files\HP Games\Shooting Stars Pool\Uninstall.exe"
                      -->"C:\Program Files\HP Games\Slingo Deluxe\Uninstall.exe"
                      -->"C:\Program Files\HP Games\Super Granny\Uninstall.exe"
                      -->"C:\Program Files\HP Games\Tradewinds\Uninstall.exe"
                      -->"C:\Program Files\HP Games\Virtual Villagers - A New Home\Uninstall.exe"
                      -->"C:\Program Files\HP Games\Virtual Villagers - Chapter 2 - The Lost Children\Uninstall.exe"
                      -->"C:\Program Files\HP Games\Zuma Deluxe\Uninstall.exe"
                      -->C:\Program Files\DivX\DivXConverterUninstall.exe /CONVERTER
                      Activation Assistant for the 2007 Microsoft Office suites-->"C:\ProgramData\{174892B1-CBE7-44F5-86FF-AB555EFD73A3}\Microsoft Office Activation Assistant.exe" REMOVE=TRUE MODIFY=FALSE
                      Adobe Flash Player 10 ActiveX-->C:\Windows\system32\Macromed\Flash\uninstall_activeX.exe
                      Adobe Reader 8.1.4-->MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A81300000003}
                      Adobe Shockwave Player-->MsiExec.exe /X{1BDC9633-895B-4842-BCB6-8FA1EC2A3C5A}
                      AIM 6-->C:\Program Files\AIM6\uninst.exe
                      Apple Application Support-->MsiExec.exe /I{553255F3-78FD-40F1-A6F8-6882140265FE}
                      Apple Mobile Device Support-->MsiExec.exe /I{B5C3B892-0849-476C-9F46-B12F84819D57}
                      Apple Software Update-->MsiExec.exe /I{6956856F-B6B3-4BE0-BA0B-8F495BE32033}
                      ArcSoft Panorama Maker 4-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{D45E8C45-B601-4A80-AFD8-E16338744DE1}\Setup.exe" -l0x40c
                      Assistant de connexion Windows Live-->MsiExec.exe /I{DCE8CD14-FBF5-4464-B9A4-E18E473546C7}
                      AuthenTec Fingerprint Sensor Minimum Install-->MsiExec.exe /X{7F362F06-A9A3-440F-8B19-6A01A72723C4}
                      Avira AntiVir Personal - Free Antivirus-->C:\Program Files\Avira\AntiVir Desktop\setup.exe /REMOVE
                      Bonjour-->MsiExec.exe /X{76BC2442-0002-47FA-9617-43BAD82BEF4C}
                      CCleaner (remove only)-->"C:\Program Files\CCleaner\uninst.exe"
                      CDDRV_Installer-->MsiExec.exe /I{8CC990CD-87C8-475C-AC32-8A7984E2FCFA}
                      Compatibility Pack for the 2007 Office system-->MsiExec.exe /X{90120000-0020-0409-0000-0000000FF1CE}
                      CyberLink YouCam-->"C:\Program Files\InstallShield Installation Information\{01FB4998-33C4-4431-85ED-079E3EEFE75D}\setup.exe" /z-uninstall
                      DigitalPersona Personal 3.0.0-->MsiExec.exe /I{C7AF7F33-9092-997E-2D29-DE8095863FE3}
                      DivX Codec-->C:\Program Files\DivX\DivXCodecUninstall.exe /CODEC
                      DivX Converter-->C:\Program Files\DivX\DivXConverterUninstall.exe /CONVERTER
                      DivX Player-->C:\Program Files\DivX\DivXPlayerUninstall.exe /PLAYER
                      DivX Plus DirectShow Filters-->C:\Program Files\DivX\DivXDSFiltersUninstall.exe /DSFILTERS
                      DivX Web Player-->C:\Program Files\DivX\DivXWebPlayerUninstall.exe /PLUGIN
                      DVD Suite-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}\setup.exe" -uninstall
                      EA Link-->C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\11\INTEL3~1\IDriver.exe /M{F5577101-33CC-4711-8235-3A95BCD49DB0} /l1033
                      File Uploader-->MsiExec.exe /X{237CD223-1B9D-47E8-A76C-E478B83CCEA2}
                      Google Toolbar for Internet Explorer-->"C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarManager_E85CDE7661A53A6A.exe" /uninstall
                      Google Toolbar for Internet Explorer-->MsiExec.exe /I{18455581-E099-4BA8-BC6B-F34B2F06600C}
                      Google Update Helper-->MsiExec.exe /I{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
                      Grand Theft Auto-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{93AE605A-3FD6-40B7-A7EA-D64DA4EABF21}\Setup.exe" -l0x9
                      Hauppauge MCE XP/Vista Software Encoder (2.0.25149)-->C:\PROGRA~1\WinTV\UNSftMCE.EXE C:\PROGRA~1\WinTV\softMCE.LOG
                      Hewlett-Packard Active Check-->MsiExec.exe /X{254C37AA-6B72-4300-84F6-98A82419187E}
                      Hewlett-Packard Asset Agent for Health Check-->MsiExec.exe /X{669D4A35-146B-4314-89F1-1AC3D7B88367}
                      HijackThis 2.0.2-->"C:\Program Files\Trend Micro\HijackThis\HijackThis.exe" /uninstall
                      Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT=""
                      Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT=""
                      HP Customer Experience Enhancements-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{BD0E2B92-3814-46F0-893B-4612EA010C7E}\setup.exe" -l0x9 -removeonly
                      HP Customer Participation Program 8.0-->C:\Program Files\HP\Digital Imaging\ExtCapUninstall\hpzscr01.exe -datfile hpqhsc01.dat
                      HP Deskjet 8.0 Software-->C:\Program Files\HP\Digital Imaging\{58535A90-1788-44f5-80BB-CFF62D9CE6D5}\setup\hpzscr01.exe -datfile hphscr13.dat -showdisconnect -forcereboot
                      HP Doc Viewer-->MsiExec.exe /I{082702D5-5DD8-4600-BCE5-48B15174687F}
                      HP Easy Setup - Frontend-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{9885A11E-60E4-417C-B58B-8B31B21C0B8A}\setup.exe" -l0x9 -removeonly
                      HP Help and Support-->MsiExec.exe /I{28EDCE9C-3304-4331-8AB3-F3EBE94C35B4}
                      HP Imaging Device Functions 8.0-->C:\Program Files\HP\Digital Imaging\DeviceManagement\hpzscr01.exe -datfile hpqbud01.dat
                      HP Integrated Module with Bluetooth wireless technology 6.0.1.5500-->MsiExec.exe /X{03D1988F-469F-4843-8E6E-E5FE9D17889D}
                      HP Photosmart Essential 2.5-->C:\Program Files\HP\Digital Imaging\PhotoSmartEssential\hpzscr01.exe -datfile hpqbud13.dat
                      HP Photosmart Essential-->MsiExec.exe /X{EB21A812-671B-4D08-B974-2A347F0D8F70}
                      HP Product Assistant-->MsiExec.exe /I{36FDBE6E-6684-462B-AE98-9A39A1B200CC}
                      HP Quick Launch Buttons 6.30 E1-->C:\Program Files\InstallShield Installation Information\{34D2AB40-150D-475D-AE32-BD23FB5EE355}\setup.exe -runfromtemp -l0x0009 uninst
                      HP QuickPlay 3.6-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{45D707E9-F3C4-11D9-A373-0050BAE317E1}\Setup.exe" -uninstall
                      HP QuickTouch 1.00 C4-->MsiExec.exe /I{7DC4A410-9986-4329-9E5D-687B2C42CA39}
                      HP Smart Web Printing-->msiexec /i{082F8ABA-84D5-4837-9DFC-F365D91A07D4}
                      HP Solution Center 8.0-->C:\Program Files\HP\Digital Imaging\eSupport\hpzscr01.exe -datfile hpqbud05.dat
                      HP Update-->MsiExec.exe /X{818ABC3C-635C-4651-8183-D0E9640B7DD1}
                      HP User Guides 0087-->MsiExec.exe /I{4D49757C-367A-4333-BDB3-68966162B14E}
                      HP Wireless Assistant-->MsiExec.exe /I{CBAE4F50-9FC9-4557-AB36-9826DF3C103C}
                      HPNetworkAssistant-->MsiExec.exe /I{228C6B46-64E2-404E-898A-EF0830603EF4}
                      HPSSupply-->MsiExec.exe /X{EB75DE50-5754-4F6F-875D-126EDF8E4CB3}
                      Installation Windows Live-->C:\Program Files\Windows Live\Installer\wlarp.exe
                      Installation Windows Live-->MsiExec.exe /I{46ABBC54-1872-4AA3-95E2-F2C063A63F31}
                      Intel® Matrix Storage Manager-->C:\Windows\system32\imsmudlg.exe -uninstall
                      iTunes-->MsiExec.exe /I{996A2FAA-7514-4628-9D12-A8FC34A0016E}
                      Java(TM) 6 Update 2-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160020}
                      Java(TM) 6 Update 20-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216017FF}
                      Junk Mail filter update-->MsiExec.exe /I{E2DFE069-083E-4631-9B6C-43C48E991DE5}
                      KhalInstallWrapper-->MsiExec.exe /I{56918C0C-0D87-4CA6-92BF-4975A43AC719}
                      Logitech Desktop Messenger-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{900B1197-53F5-4F46-A882-2CFFFE2EEDCB}\SETUP.EXE" -l0x40c UNINSTALL
                      Logitech SetPoint-->C:\Program Files\InstallShield Installation Information\{2E8EAC71-BFE4-417A-88F0-5A1BDFBCF5D3}\setup.exe -runfromtemp -l0x040c -removeonly
                      Malwarebytes' Anti-Malware-->"C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"
                      Microsoft .NET Framework 3.5 SP1-->c:\Windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
                      Microsoft .NET Framework 3.5 SP1-->MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
                      Microsoft Choice Guard-->MsiExec.exe /X{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}
                      Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0015-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
                      Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0016-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
                      Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0018-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
                      Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0019-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
                      Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001A-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
                      Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001B-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
                      Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-006E-0409-0000-0000000FF1CE} /uninstall {DE5A002D-8122-4278-A7EE-3121E7EA254E}
                      Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0115-0409-0000-0000000FF1CE} /uninstall {DE5A002D-8122-4278-A7EE-3121E7EA254E}
                      Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0117-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
                      Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {91120000-0014-0000-0000-0000000FF1CE} /uninstall {0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}
                      Microsoft Office Access MUI (English) 2007-->MsiExec.exe /X{90120000-0015-0409-0000-0000000FF1CE}
                      Microsoft Office Access Setup Metadata MUI (English) 2007-->MsiExec.exe /X{90120000-0117-0409-0000-0000000FF1CE}
                      Microsoft Office Excel MUI (English) 2007-->MsiExec.exe /X{90120000-0016-0409-0000-0000000FF1CE}
                      Microsoft Office Outlook MUI (English) 2007-->MsiExec.exe /X{90120000-001A-0409-0000-0000000FF1CE}
                      Microsoft Office PowerPoint MUI (English) 2007-->MsiExec.exe /X{90120000-0018-0409-0000-0000000FF1CE}
                      Microsoft Office Professional 2007-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall PROR /dll OSETUP.DLL
                      Microsoft Office Professional 2007-->MsiExec.exe /X{91120000-0014-0000-0000-0000000FF1CE}
                      Microsoft Office Proof (English) 2007-->MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
                      Microsoft Office Proof (French) 2007-->MsiExec.exe /X{90120000-001F-040C-0000-0000000FF1CE}
                      Microsoft Office Proof (Spanish) 2007-->MsiExec.exe /X{90120000-001F-0C0A-0000-0000000FF1CE}
                      Microsoft Office Proofing (English) 2007-->MsiExec.exe /X{90120000-002C-0409-0000-0000000FF1CE}
                      Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0409-0000-0000000FF1CE} /uninstall {ABDDE972-355B-4AF1-89A8-DA50B7B5C045}
                      Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-040C-0000-0000000FF1CE} /uninstall {F580DDD5-8D37-4998-968E-EBB76BB86787}
                      Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0C0A-0000-0000000FF1CE} /uninstall {187308AB-5FA7-4F14-9AB9-D290383A10D9}
                      Microsoft Office Publisher MUI (English) 2007-->MsiExec.exe /X{90120000-0019-0409-0000-0000000FF1CE}
                      Microsoft Office Shared MUI (English) 2007-->MsiExec.exe /X{90120000-006E-0409-0000-0000000FF1CE}
                      Microsoft Office Shared Setup Metadata MUI (English) 2007-->MsiExec.exe /X{90120000-0115-0409-0000-0000000FF1CE}
                      Microsoft Office Word MUI (English) 2007-->MsiExec.exe /X{90120000-001B-0409-0000-0000000FF1CE}
                      Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
                      Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053-->MsiExec.exe /X{770657D0-A123-3C07-8E44-1C83EC895118}
                      Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
                      Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{A49F249F-0C91-497F-86DF-B2585E8E76B7}
                      Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148-->MsiExec.exe /X{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}
                      Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17-->MsiExec.exe /X{9A25302D-30C0-39D9-BD6F-21E6EC160475}
                      Microsoft Works-->MsiExec.exe /I{15BC8CD0-A65B-47D0-A2DD-90A824590FA8}
                      Motorola SM56 Data Fax Modem-->rundll32.exe sm56co6a.dll,SM56UnInstaller
                      MSVCRT-->MsiExec.exe /I{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
                      MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
                      MSXML 4.0 SP2 (KB973688)-->MsiExec.exe /I{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
                      My HP Games-->"C:\Program Files\HP Games\Uninstall.exe"
                      Nikon Message Center-->MsiExec.exe /X{D2FCC1AE-6311-47C5-8130-C6C66D77DD71}
                      Nikon Transfer-->MsiExec.exe /X{E9757890-7EC5-46C8-99AB-B00F07B6525C}
                      NVIDIA Drivers-->C:\Windows\system32\NVUNINST.EXE UninstallGUI
                      Outil de téléchargement Windows Live-->MsiExec.exe /I{205C6BDD-7B73-42DE-8505-9A093F35A238}
                      QuickPlay SlingPlayer 0.4.6-->"C:\Program Files\HP\QuickPlay\unins000.exe"
                      QuickTime-->MsiExec.exe /I{28BE306E-5DA6-4F9C-BDB0-DBA3C8C6FFFD}
                      Realtek 8169 PCI, 8168 and 8101E PCIe Ethernet Network Card Driver for Windows Vista-->C:\Program Files\InstallShield Installation Information\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}\setup.exe -runfromtemp -l0x0009 -removeonly
                      Realtek High Definition Audio Driver-->RtlUpd.exe -r -m
                      RICOH R5C83x/84x Flash Media Controller Driver Ver.3.51.01-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{59F6A514-9813-47A3-948C-8A155460CC2A}\setup.exe" -l0x9 anything
                      Security Update for 2007 Microsoft Office System (KB969559)-->msiexec /package {91120000-0014-0000-0000-0000000FF1CE} /uninstall {69F52148-9BF6-4CDC-BF76-103DEAF3DD08}
                      Security Update for 2007 Microsoft Office System (KB978380)-->msiexec /package {91120000-0014-0000-0000-0000000FF1CE} /uninstall {667A88D1-0369-4070-A62A-70672D68A9BF}
                      Security Update for Microsoft Office Excel 2007 (KB978382)-->msiexec /package {91120000-0014-0000-0000-0000000FF1CE} /uninstall {6DE3DABF-0203-426B-B330-7287D1003E86}
                      Security Update for Microsoft Office Outlook 2007 (KB972363)-->msiexec /package {91120000-0014-0000-0000-0000000FF1CE} /uninstall {120BE9A0-9B09-4855-9E0C-7DEE45CB03C0}
                      Security Update for Microsoft Office PowerPoint 2007 (KB957789)-->msiexec /package {91120000-0014-0000-0000-0000000FF1CE} /uninstall {7559E742-FF9F-4FAE-B279-008ED296CB4D}
                      Security Update for Microsoft Office Publisher 2007 (KB980470)-->msiexec /package {91120000-0014-0000-0000-0000000FF1CE} /uninstall {34573F17-DADE-4D0D-835F-A54A1DE8AC1F}
                      Security Update for Microsoft Office system 2007 (972581)-->msiexec /package {91120000-0014-0000-0000-0000000FF1CE} /uninstall {3D019598-7B59-447A-80AE-815B703B84FF}
                      Security Update for Microsoft Office system 2007 (KB969613)-->msiexec /package {91120000-0014-0000-0000-0000000FF1CE} /uninstall {5ECEB317-CBE9-4E08-AB10-756CB6F0FB6C}
                      Security Update for Microsoft Office system 2007 (KB974234)-->msiexec /package {91120000-0014-0000-0000-0000000FF1CE} /uninstall {FCD742B9-7A55-44BC-A776-F795F21FEDDC}
                      Security Update for Microsoft Office Visio Viewer 2007 (KB973709)-->msiexec /package {91120000-0014-0000-0000-0000000FF1CE} /uninstall {71127777-8B2C-4F97-AF7A-6CF8CAC8224D}
                      Skype(TM) 4.0-->MsiExec.exe /X{24D753CA-6AE9-4E30-8F5F-EFC93E08BF3D}
                      Spybot - Search & Destroy-->"C:\Program Files\Spybot - Search & Destroy\unins000.exe"
                      Synaptics Pointing Device Driver-->rundll32.exe "C:\Program Files\Synaptics\SynTP\SynISDLL.dll",standAloneUninstall
                      The Sims(TM) Life Stories-->MsiExec.exe /I{2284D904-C138-4B58-93EC-5C362AB5130A}
                      Update for 2007 Microsoft Office System (KB967642)-->msiexec /package {91120000-0014-0000-0000-0000000FF1CE} /uninstall {C444285D-5E4F-48A4-91DD-47AAAA68E92D}
                      Update for 2007 Microsoft Office System (KB981715)-->msiexec /package {91120000-0014-0000-0000-0000000FF1CE} /uninstall {661B3F32-FFE4-4606-AE3A-DFA11DCC0D79}
                      Update for Microsoft .NET Framework 3.5 SP1 (KB963707)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {B2AE9C82-DC7B-3641-BFC8-87275C4F3607} /qb+ REBOOTPROMPT=""
                      Update for Microsoft Office 2007 Help for Common Features (KB963673)-->msiexec /package {90120000-006E-0409-0000-0000000FF1CE} /uninstall {AB365889-0395-4FAD-B702-CA5985D53D42}
                      Update for Microsoft Office Access 2007 Help (KB963663)-->msiexec /package {90120000-0015-0409-0000-0000000FF1CE} /uninstall {6B76A18A-AA1E-42AB-A7AD-6C84BBB43987}
                      Update for Microsoft Office Excel 2007 Help (KB963678)-->msiexec /package {90120000-0016-0409-0000-0000000FF1CE} /uninstall {199DF7B6-169C-448C-B511-1054101BE9C9}
                      Update for Microsoft Office InfoPath 2007 (KB976416)-->msiexec /package {91120000-0014-0000-0000-0000000FF1CE} /uninstall {432C5EE4-8096-4FF1-95E1-65219365DFF7}
                      Update for Microsoft Office Outlook 2007 Help (KB963677)-->msiexec /package {90120000-001A-0409-0000-0000000FF1CE} /uninstall {0451F231-E3E3-4943-AB9F-58EB96171784}
                      Update for Microsoft Office Powerpoint 2007 Help (KB963669)-->msiexec /package {90120000-0018-0409-0000-0000000FF1CE} /uninstall {397B1D4F-ED7B-4ACA-A637-43B670843876}
                      Update for Microsoft Office Publisher 2007 Help (KB963667)-->msiexec /package {90120000-0019-0409-0000-0000000FF1CE} /uninstall {2E40DE55-B289-4C8B-8901-5D369B16814F}
                      Update for Microsoft Office Script Editor Help (KB963671)-->msiexec /package {90120000-006E-0409-0000-0000000FF1CE} /uninstall {CD11C6A2-FFC6-4271-8EAB-79C3582F505C}
                      Update for Microsoft Office Word 2007 (KB974561)-->msiexec /package {91120000-0014-0000-0000-0000000FF1CE} /uninstall {0CDDBAA2-2111-4A0E-A1B0-76C40C635331}
                      Update for Microsoft Office Word 2007 Help (KB963665)-->msiexec /package {90120000-001B-0409-0000-0000000FF1CE} /uninstall {80E762AA-C921-4839-9D7D-DB62A72C0726}
                      Update for Outlook 2007 Junk Email Filter (kb981433)-->msiexec /package {91120000-0014-0000-0000-0000000FF1CE} /uninstall {5A6859A6-042D-4DF7-84E2-79F8DEFB5D48}
                      VC80CRTRedist - 8.0.50727.762-->MsiExec.exe /I{767CC44C-9BBC-438D-BAD3-FD4595DD148B}
                      Viewpoint Media Player-->C:\Program Files\Viewpoint\Viewpoint Experience Technology\mtsAxInstaller.exe /u
                      WeatherBug Gadget-->MsiExec.exe /I{209CDA54-D390-46A2-A97C-7BF61734418D}
                      Windows Live Call-->MsiExec.exe /I{82C7B308-0BDD-49D8-8EA5-9CD3A3F9DF41}
                      Windows Live Communications Platform-->MsiExec.exe /I{ED00D08A-3C5F-488D-93A0-A04F21F23956}
                      Windows Live Mail-->MsiExec.exe /I{5DD76286-9BE7-4894-A990-E905E91AC818}
                      Windows Live Messenger-->MsiExec.exe /X{770F1BEC-2871-4E70-B837-FB8525FFA3B1}
                      0
                      1. ======Security center information======

                        AS: Spybot - Search and Destroy (outdated)
                        AS: Windows Defender

                        ======System event log======

                        Computer Name: Charles-PC
                        Event Code: 4374
                        Message: Windows Servicing identified that package KB976749(Update) is not applicable for this system
                        Record Number: 9283
                        Source Name: Microsoft-Windows-Servicing
                        Time Written: 20091201213407.000000-000
                        Event Type: Warning
                        User: NT AUTHORITY\SYSTEM

                        Computer Name: Charles-PC
                        Event Code: 4374
                        Message: Windows Servicing identified that package KB973687(Update) is not applicable for this system
                        Record Number: 9248
                        Source Name: Microsoft-Windows-Servicing
                        Time Written: 20091201210923.000000-000
                        Event Type: Warning
                        User: NT AUTHORITY\SYSTEM

                        Computer Name: Charles-PC
                        Event Code: 4374
                        Message: Windows Servicing identified that package KB973687(Update) is not applicable for this system
                        Record Number: 9247
                        Source Name: Microsoft-Windows-Servicing
                        Time Written: 20091201210923.000000-000
                        Event Type: Warning
                        User: NT AUTHORITY\SYSTEM

                        Computer Name: Charles-PC
                        Event Code: 4374
                        Message: Windows Servicing identified that package KB973687(Update) is not applicable for this system
                        Record Number: 9246
                        Source Name: Microsoft-Windows-Servicing
                        Time Written: 20091201210923.000000-000
                        Event Type: Warning
                        User: NT AUTHORITY\SYSTEM

                        Computer Name: Charles-PC
                        Event Code: 7000
                        Message: The Parallel port driver service failed to start due to the following error:
                        The service cannot be started, either because it is disabled or because it has no enabled devices associated with it.
                        Record Number: 8673
                        Source Name: Service Control Manager
                        Time Written: 20091201210522.000000-000
                        Event Type: Error
                        User:

                        =====Application event log=====

                        Computer Name: Charles-PC
                        Event Code: 10
                        Message: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
                        Record Number: 210
                        Source Name: Microsoft-Windows-WMI
                        Time Written: 20091201002120.000000-000
                        Event Type: Error
                        User:

                        Computer Name: Charles-PC
                        Event Code: 1530
                        Message: Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.

                        DETAIL -
                        1 user registry handles leaked from \Registry\User\S-1-5-21-3197797478-1381546659-3490569594-1000_Classes:
                        Process 1016 (\Device\HarddiskVolume1\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3197797478-1381546659-3490569594-1000_CLASSES

                        Record Number: 173
                        Source Name: Microsoft-Windows-User Profiles Service
                        Time Written: 20091126222411.000000-000
                        Event Type: Warning
                        User: NT AUTHORITY\SYSTEM

                        Computer Name: Charles-PC
                        Event Code: 1530
                        Message: Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.

                        DETAIL -
                        1 user registry handles leaked from \Registry\User\S-1-5-21-3197797478-1381546659-3490569594-1000:
                        Process 1016 (\Device\HarddiskVolume1\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3197797478-1381546659-3490569594-1000

                        Record Number: 171
                        Source Name: Microsoft-Windows-User Profiles Service
                        Time Written: 20091126222410.000000-000
                        Event Type: Warning
                        User: NT AUTHORITY\SYSTEM

                        Computer Name: Charles-PC
                        Event Code: 10
                        Message: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
                        Record Number: 163
                        Source Name: Microsoft-Windows-WMI
                        Time Written: 20091126222330.000000-000
                        Event Type: Error
                        User:

                        Computer Name: Charles-PC
                        Event Code: 1530
                        Message: Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.

                        DETAIL -
                        1 user registry handles leaked from \Registry\User\S-1-5-21-3197797478-1381546659-3490569594-1000:
                        Process 776 (\Device\HarddiskVolume1\Windows\System32\winlogon.exe) has opened key \REGISTRY\USER\S-1-5-21-3197797478-1381546659-3490569594-1000

                        Record Number: 125
                        Source Name: Microsoft-Windows-User Profiles Service
                        Time Written: 20091125173048.000000-000
                        Event Type: Warning
                        User: NT AUTHORITY\SYSTEM

                        =====Security event log=====

                        Computer Name: Charles-PC
                        Event Code: 1100
                        Message: The event logging service has shut down.
                        Record Number: 529
                        Source Name: Microsoft-Windows-Eventlog
                        Time Written: 20091125173050.689200-000
                        Event Type: Audit Success
                        User:

                        Computer Name: Charles-PC
                        Event Code: 4647
                        Message: User initiated logoff:

                        Subject:
                        Security ID: S-1-5-21-3197797478-1381546659-3490569594-1000
                        Account Name: Charles
                        Account Domain: Charles-PC
                        Logon ID: 0x321a2

                        This event is generated when a logoff is initiated but the token reference count is not zero and the logon session cannot be destroyed. No further user-initiated activity can occur. This event can be interpreted as a logoff event.
                        Record Number: 528
                        Source Name: Microsoft-Windows-Security-Auditing
                        Time Written: 20091125173048.599068-000
                        Event Type: Audit Success
                        User:

                        Computer Name: Charles-PC
                        Event Code: 4905
                        Message: An attempt was made to unregister a security event source.

                        Subject
                        Security ID: S-1-5-18
                        Account Name: CHARLES-PC$
                        Account Domain: WORKGROUP
                        Logon ID: 0x3e7

                        Process:
                        Process ID: 0xc34
                        Process Name: C:\Windows\System32\VSSVC.exe

                        Event Source:
                        Source Name: VSSAudit
                        Event Source ID: 0x3fb489
                        Record Number: 527
                        Source Name: Microsoft-Windows-Security-Auditing
                        Time Written: 20091125170911.406268-000
                        Event Type: Audit Success
                        User:

                        Computer Name: Charles-PC
                        Event Code: 4904
                        Message: An attempt was made to register a security event source.

                        Subject :
                        Security ID: S-1-5-18
                        Account Name: CHARLES-PC$
                        Account Domain: WORKGROUP
                        Logon ID: 0x3e7

                        Process:
                        Process ID: 0xc34
                        Process Name: C:\Windows\System32\VSSVC.exe

                        Event Source:
                        Source Name: VSSAudit
                        Event Source ID: 0x3fb489
                        Record Number: 526
                        Source Name: Microsoft-Windows-Security-Auditing
                        Time Written: 20091125170911.406268-000
                        Event Type: Audit Success
                        User:

                        Computer Name: Charles-PC
                        Event Code: 1102
                        Message: The audit log was cleared.
                        Subject:
                        Security ID: S-1-5-21-3197797478-1381546659-3490569594-1000
                        Account Name: Charles
                        Domain Name: Charles-PC
                        Logon ID: 0x32165
                        Record Number: 525
                        Source Name: Microsoft-Windows-Eventlog
                        Time Written: 20091125170856.820268-000
                        Event Type: Audit Success
                        User:

                        ======Environment variables======

                        "ComSpec"=%SystemRoot%\system32\cmd.exe
                        "FP_NO_HOST_CHECK"=NO
                        "OS"=Windows_NT
                        "Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\CyberLink\Power2Go\;C:\Program Files\Common Files\DivX Shared\;C:\Program Files\QuickTime\QTSystem\
                        "PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
                        "PROCESSOR_ARCHITECTURE"=x86
                        "TEMP"=%SystemRoot%\TEMP
                        "TMP"=%SystemRoot%\TEMP
                        "USERNAME"=SYSTEM
                        "windir"=%SystemRoot%
                        "PROCESSOR_LEVEL"=6
                        "PROCESSOR_IDENTIFIER"=x86 Family 6 Model 15 Stepping 13, GenuineIntel
                        "PROCESSOR_REVISION"=0f0d
                        "NUMBER_OF_PROCESSORS"=2
                        "TRACE_FORMAT_SEARCH_PATH"=\\NTREL202.ntdev.corp.microsoft.com\4F18C3A5-CA09-4DBD-B6FC-219FDD4C6BE0\TraceFormat
                        "DFSTRACINGON"=FALSE
                        "PLATFORM"=MCD
                        "PCBRAND"=Pavilion
                        "OnlineServices"=Online Services
                        "USERPART"=E:
                        "asl.log"=Destination=file;OnFirstLog=command,environment
                        "CLASSPATH"=.;C:\Program Files\Java\jre6\lib\ext\QTJava.zip
                        "QTJAVA"=C:\Program Files\Java\jre6\lib\ext\QTJava.zip

                        -----------------EOF-----------------

                        J'ai vraiment trop eu de difficulté à envoyer les messages ... activer le javascript... j'ai finalement trouvé c'était quoi, mais ca ne semble pas bien marcher quand même...
                        0
                        1. Bon désolé pour ce trouble, enfin!

                          Le dépôt du fichier log.txt a été réalisé avec succès !

                          Veuillez noter le lien ci-dessous qui vous permettra d'accéder à ce fichier.
                          C'est ce même lien que vous devrez transmettre à vos correspondants
                          http://www.cijoint.fr/cjlink.php?file=cj201004/cijJu0YiOJ.txt

                          Le dépôt du fichier info.txt a été réalisé avec succès !

                          Veuillez noter le lien ci-dessous qui vous permettra d'accéder à ce fichier.
                          C'est ce même lien que vous devrez transmettre à vos correspondants
                          http://www.cijoint.fr/cjlink.php?file=cj201004/cijR428qNv.txt
                          0
                          1. Contributeur sécurité
                            bonjour, passes usbfix option 2

                            1) déactives la protection résidente de spybot pour pas qu'il nous bloque le fixe
                            quand tu le réactiveras possible qu'il te demande d'accepter ou pas les modifications il faudra les accepter toutes
                            pour t'aider au cas ou : http://service1.symantec.com/SUPPORT/INTER/tsgeninfointl.nsf/fr_docid/20050414110429924


                            2) pour usbfix

                            * Note : "Process.exe", une composante de l'outil, est détecté par certains antivirus (AntiVir, Dr.Web, Kaspersky Anti-Virus) comme étant un RiskTool.
                            Il ne s'agit pas d'un virus, mais d'un utilitaire destiné à mettre fin à des processus.
                            Mis entre de mauvaises mains, cet utilitaire pourrait arrêter des logiciels de sécurité (Antivirus, Firewall...) d'où l'alerte émise par ces antivirus.

                            * Telecharges et installes: http://pagesperso-orange.fr/NosTools/Chiquitine29/UsbFix.exe

                            (!) Branche tes sources de données externes à ton PC, (clé USB, disque dur externe, etc...) suceptible d avoir été infectés sans les ouvrir

                            * Fais un clic droit sur le raccourci UsbFix présent sur ton bureau et choisis "éxécuter en tant qu'administrateur" .

                            * choisi l'option 2 ( Suppression )

                            * Ton bureau disparaitra et le pc redémarrera .

                            * Au redémarrage , UsbFix scannera ton pc , laisse travailler l outil.

                            * Ensuite post le rapport UsbFix.txt qui apparaitra avec le bureau .

                            * Note : Le rapport UsbFix.txt est sauvegardé a la racine du disque.( C:\UsbFix.txt )

                            ( CTRL+A Pour tout selectionner , CTRL+C pour copier et CTRL+V pour coller )

                            Pendant son nettoyage, l'outil a récolté certains fichiers infectieux.
                            Nous vous demandons de nous les faire parvenir pour des futures mises à jour, ainsi que pour un meilleur traitement des infections.
                            Nous vous remercions pour votre contribution.


                            .UsbFix te proposera d'uploader un dossier compressé à cette adresse : https://www.ionos.fr/?affiliate_id=77097

                            Ce dossier a été créé par UsbFix et est enregistré sur ton bureau.

                            Merci de l'envoyer à l'adresse indiquée afin d'aider l'auteur de UsbFix dans ses recherches.

                            Merci d'avance pour ta contribution !!
                            0