Pour Regis59 et les autres sauveurs
Résolu/Fermé
ptiono
Messages postés
146
Date d'inscription
dimanche 13 novembre 2005
Statut
Membre
Dernière intervention
21 avril 2013
-
13 nov. 2005 à 16:01
balltrap34 Messages postés 16240 Date d'inscription jeudi 8 janvier 2004 Statut Contributeur sécurité Dernière intervention 28 novembre 2009 - 13 nov. 2005 à 22:15
balltrap34 Messages postés 16240 Date d'inscription jeudi 8 janvier 2004 Statut Contributeur sécurité Dernière intervention 28 novembre 2009 - 13 nov. 2005 à 22:15
17 réponses
Utilisateur anonyme
13 nov. 2005 à 16:08
13 nov. 2005 à 16:08
salut,
peux tu m en dire plus sur tes soucis?
cela facilitera notre travail ;-)
a+
peux tu m en dire plus sur tes soucis?
cela facilitera notre travail ;-)
a+
Utilisateur anonyme
13 nov. 2005 à 16:18
13 nov. 2005 à 16:18
re
Télécharge ceci: (merci a S!RI pour ce petit programme).
http://siri.urz.free.fr/Fix/SmitfraudFix.zip
Exécute le, choisit l’option 1, il va générer un rapport
Copie/colle le sur le poste stp.
a+
Télécharge ceci: (merci a S!RI pour ce petit programme).
http://siri.urz.free.fr/Fix/SmitfraudFix.zip
Exécute le, choisit l’option 1, il va générer un rapport
Copie/colle le sur le poste stp.
a+
ptiono
Messages postés
146
Date d'inscription
dimanche 13 novembre 2005
Statut
Membre
Dernière intervention
21 avril 2013
1
13 nov. 2005 à 16:23
13 nov. 2005 à 16:23
Merci monsieur!!!!
Voici le rapport:
SmitFraudFix v1.93
Rapport fait à 16:21:24,24 le 13/11/2005
Executé à partir de C:\Documents and Settings\MADELAINE Arnaud\Bureau\SmitfraudFix
OS: Microsoft Windows XP [version 5.1.2600]
»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\
»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\WINDOWS
»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\WINDOWS\system
»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\WINDOWS\Web
»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\WINDOWS\system32
C:\WINDOWS\system32\hp????.tmp PRESENT !
C:\WINDOWS\system32\mssearchnet.exe PRESENT !
C:\WINDOWS\system32\msvol.tlb PRESENT !
C:\WINDOWS\system32\ncompat.tlb PRESENT !
C:\WINDOWS\system32\nvctrl.exe PRESENT !
C:\WINDOWS\system32\svchosts.dll PRESENT !
»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\WINDOWS\system32\LogFiles
»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\Documents and Settings\MADELAINE Arnaud\Application Data
»»»»»»»»»»»»»»»»»»»»»»»» Recherche Menu Démarrer
»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\Documents and Settings\MADELAINE Arnaud\Bureau
»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\Program Files
»»»»»»»»»»»»»»»»»»»»»»»» Recherche présence de clés corrompues
»»»»»»»»»»»»»»»»»»»»»»»» Recherche infection wininet.dll
»»»»»»»»»»»»»»»»»»»»»»»» Fin du rapport
Voici le rapport:
SmitFraudFix v1.93
Rapport fait à 16:21:24,24 le 13/11/2005
Executé à partir de C:\Documents and Settings\MADELAINE Arnaud\Bureau\SmitfraudFix
OS: Microsoft Windows XP [version 5.1.2600]
»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\
»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\WINDOWS
»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\WINDOWS\system
»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\WINDOWS\Web
»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\WINDOWS\system32
C:\WINDOWS\system32\hp????.tmp PRESENT !
C:\WINDOWS\system32\mssearchnet.exe PRESENT !
C:\WINDOWS\system32\msvol.tlb PRESENT !
C:\WINDOWS\system32\ncompat.tlb PRESENT !
C:\WINDOWS\system32\nvctrl.exe PRESENT !
C:\WINDOWS\system32\svchosts.dll PRESENT !
»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\WINDOWS\system32\LogFiles
»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\Documents and Settings\MADELAINE Arnaud\Application Data
»»»»»»»»»»»»»»»»»»»»»»»» Recherche Menu Démarrer
»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\Documents and Settings\MADELAINE Arnaud\Bureau
»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\Program Files
»»»»»»»»»»»»»»»»»»»»»»»» Recherche présence de clés corrompues
»»»»»»»»»»»»»»»»»»»»»»»» Recherche infection wininet.dll
»»»»»»»»»»»»»»»»»»»»»»»» Fin du rapport
balltrap34
Messages postés
16240
Date d'inscription
jeudi 8 janvier 2004
Statut
Contributeur sécurité
Dernière intervention
28 novembre 2009
331
13 nov. 2005 à 16:24
13 nov. 2005 à 16:24
salut
u peut faire l option 2 en mode sans echec
u peut faire l option 2 en mode sans echec
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
ptiono
Messages postés
146
Date d'inscription
dimanche 13 novembre 2005
Statut
Membre
Dernière intervention
21 avril 2013
1
13 nov. 2005 à 16:26
13 nov. 2005 à 16:26
pour moi c'est du chinois!!! ça veut dire quoi? je suis NUUUUULLL en informatique!
Utilisateur anonyme
13 nov. 2005 à 16:30
13 nov. 2005 à 16:30
Démarre en mode sans échec :
Pour cela, tu tapotes la touche F8 dès le début de l’allumage du pc sans t’arrêter
Une fenêtre va s’ouvrir tu te déplaces avec les flèches du clavier sur démarrer en mode sans échec puis tape entrée.
Une fois sur le bureau s’il n’y a pas toutes les couleurs et autres c’est normal !
(Si F8 ne marche pas utilise la touche F5).
----------------------------------------------------------------------------
Relance le programme Smitfraud,
Cette fois choisit l’option 2, répond oui a tous ;
Sauvegarde le rapport, Redémarre en mode normal, copie/colle le rapport sauvegardé sur le forum
redemarre en mode normal
Ajoute un rapport hijackthis sur le forum…
A bientôt.
Pour cela, tu tapotes la touche F8 dès le début de l’allumage du pc sans t’arrêter
Une fenêtre va s’ouvrir tu te déplaces avec les flèches du clavier sur démarrer en mode sans échec puis tape entrée.
Une fois sur le bureau s’il n’y a pas toutes les couleurs et autres c’est normal !
(Si F8 ne marche pas utilise la touche F5).
----------------------------------------------------------------------------
Relance le programme Smitfraud,
Cette fois choisit l’option 2, répond oui a tous ;
Sauvegarde le rapport, Redémarre en mode normal, copie/colle le rapport sauvegardé sur le forum
redemarre en mode normal
Ajoute un rapport hijackthis sur le forum…
A bientôt.
ben13010
Messages postés
3356
Date d'inscription
vendredi 24 septembre 2004
Statut
Contributeur
Dernière intervention
5 octobre 2012
387
13 nov. 2005 à 16:35
13 nov. 2005 à 16:35
salut tous le monde
dis moi ptiono , tu es sur de ce logiciel SpyFighter ?
on dirait un rogue
attend confirmation et desinstalle si c'est le cas
O4 - HKLM\..\Run: [SpyFighterMonitor] "C:\Program Files\SpyFighter\SpyFighter.exe" monitor
O4 - HKLM\..\Run: [SpyFighterUpdate] "C:\Program Files\SpyFighter\AutoUpdate.exe" silent
O2 - BHO: HomepageBHO - {e9ccf15d-4c68-4b5a-9e9a-8e12e4bd39bd} - C:\WINDOWS\system32\hp59A.tmp
ciao
dis moi ptiono , tu es sur de ce logiciel SpyFighter ?
on dirait un rogue
attend confirmation et desinstalle si c'est le cas
O4 - HKLM\..\Run: [SpyFighterMonitor] "C:\Program Files\SpyFighter\SpyFighter.exe" monitor
O4 - HKLM\..\Run: [SpyFighterUpdate] "C:\Program Files\SpyFighter\AutoUpdate.exe" silent
O2 - BHO: HomepageBHO - {e9ccf15d-4c68-4b5a-9e9a-8e12e4bd39bd} - C:\WINDOWS\system32\hp59A.tmp
ciao
ptiono
Messages postés
146
Date d'inscription
dimanche 13 novembre 2005
Statut
Membre
Dernière intervention
21 avril 2013
1
13 nov. 2005 à 16:36
13 nov. 2005 à 16:36
mes neurones ont tiltés, ai fait choix 2 mode sans echec et cela me dit: arret des processus.... suppression des fichiers infectés....
C:\WINDOWS\system32\hp59A.tmp
Accès refusé
C:\WINDOWS\system32\svcshosts.dll
Accès refusé
Le chemin d'accès spécifié est introuvable
Nettoyage du registre
Voulez-vous nettoyer le registre oui ou non
Que faire maintenant??????????
C:\WINDOWS\system32\hp59A.tmp
Accès refusé
C:\WINDOWS\system32\svcshosts.dll
Accès refusé
Le chemin d'accès spécifié est introuvable
Nettoyage du registre
Voulez-vous nettoyer le registre oui ou non
Que faire maintenant??????????
ptiono
Messages postés
146
Date d'inscription
dimanche 13 novembre 2005
Statut
Membre
Dernière intervention
21 avril 2013
1
13 nov. 2005 à 16:40
13 nov. 2005 à 16:40
pour Regis
SmitFraudFix v1.93
Rapport fait à 16:29:18,22 le 13/11/2005
Executé à partir de C:\Documents and Settings\MADELAINE Arnaud\Bureau\SmitfraudFix
OS: Microsoft Windows XP [version 5.1.2600]
»»»»»»»»»»»»»»»»»»»»»»»» Arret des processus
»»»»»»»»»»»»»»»»»»»»»»»» Suppression des fichiers infectés
Problème suppression C:\WINDOWS\system32\hp????.tmp
C:\WINDOWS\system32\mssearchnet.exe supprimé
C:\WINDOWS\system32\msvol.tlb supprimé
C:\WINDOWS\system32\ncompat.tlb supprimé
C:\WINDOWS\system32\nvctrl.exe supprimé
Problème suppression C:\WINDOWS\system32\svchosts.dll
»»»»»»»»»»»»»»»»»»»»»»»» Nettoyage du registre
»»»»»»»»»»»»»»»»»»»»»»»» Nettoyage du registre
Nettoyage terminé.
»»»»»»»»»»»»»»»»»»»»»»»» Fin du rapport
et rapport après
Logfile of HijackThis v1.99.1
Scan saved at 16:39:20, on 13/11/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\slserv.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATI9CE.EXE
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\Program Files\eBay\eBay Toolbar2\eBayTBDaemon.exe
C:\Program Files\Fichiers communs\PCSuite\DataLayer\DataLayer.exe
C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe
C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe
C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe
C:\PROGRA~1\FICHIE~1\PCSuite\Services\SERVIC~1.EXE
C:\PROGRA~1\FICHIE~1\Nokia\MPAPI\MPAPI3s.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Outlook Express\msimn.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\cmd.exe
C:\Documents and Settings\MADELAINE Arnaud\Bureau\HijackThis.exe
SmitFraudFix v1.93
Rapport fait à 16:29:18,22 le 13/11/2005
Executé à partir de C:\Documents and Settings\MADELAINE Arnaud\Bureau\SmitfraudFix
OS: Microsoft Windows XP [version 5.1.2600]
»»»»»»»»»»»»»»»»»»»»»»»» Arret des processus
»»»»»»»»»»»»»»»»»»»»»»»» Suppression des fichiers infectés
Problème suppression C:\WINDOWS\system32\hp????.tmp
C:\WINDOWS\system32\mssearchnet.exe supprimé
C:\WINDOWS\system32\msvol.tlb supprimé
C:\WINDOWS\system32\ncompat.tlb supprimé
C:\WINDOWS\system32\nvctrl.exe supprimé
Problème suppression C:\WINDOWS\system32\svchosts.dll
»»»»»»»»»»»»»»»»»»»»»»»» Nettoyage du registre
»»»»»»»»»»»»»»»»»»»»»»»» Nettoyage du registre
Nettoyage terminé.
»»»»»»»»»»»»»»»»»»»»»»»» Fin du rapport
et rapport après
Logfile of HijackThis v1.99.1
Scan saved at 16:39:20, on 13/11/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\slserv.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATI9CE.EXE
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\Program Files\eBay\eBay Toolbar2\eBayTBDaemon.exe
C:\Program Files\Fichiers communs\PCSuite\DataLayer\DataLayer.exe
C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe
C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe
C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe
C:\PROGRA~1\FICHIE~1\PCSuite\Services\SERVIC~1.EXE
C:\PROGRA~1\FICHIE~1\Nokia\MPAPI\MPAPI3s.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Outlook Express\msimn.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\cmd.exe
C:\Documents and Settings\MADELAINE Arnaud\Bureau\HijackThis.exe
balltrap34
Messages postés
16240
Date d'inscription
jeudi 8 janvier 2004
Statut
Contributeur sécurité
Dernière intervention
28 novembre 2009
331
13 nov. 2005 à 17:41
13 nov. 2005 à 17:41
salut
je confirme SpyFighter c est un rogue
je confirme SpyFighter c est un rogue
ptiono
Messages postés
146
Date d'inscription
dimanche 13 novembre 2005
Statut
Membre
Dernière intervention
21 avril 2013
1
13 nov. 2005 à 17:42
13 nov. 2005 à 17:42
que me conseille tu de faire?
balltrap34
Messages postés
16240
Date d'inscription
jeudi 8 janvier 2004
Statut
Contributeur sécurité
Dernière intervention
28 novembre 2009
331
13 nov. 2005 à 17:55
13 nov. 2005 à 17:55
deja tu le desinstal
ensuite ont vas essayer de virer cette dll veroler
Démarrer--->Exécuter--->taper
regsvr32.exe -u C:\WINDOWS\system32\svchosts.dll
puis cliquer sur OK
Renommer le fichier C:\WINDOWS\system32\svchosts.dll
en svchosts.dll_
la redemarre et refait le fix option 1 pour voir
ensuite ont vas essayer de virer cette dll veroler
Démarrer--->Exécuter--->taper
regsvr32.exe -u C:\WINDOWS\system32\svchosts.dll
puis cliquer sur OK
Renommer le fichier C:\WINDOWS\system32\svchosts.dll
en svchosts.dll_
la redemarre et refait le fix option 1 pour voir
ptiono
Messages postés
146
Date d'inscription
dimanche 13 novembre 2005
Statut
Membre
Dernière intervention
21 avril 2013
1
13 nov. 2005 à 18:42
13 nov. 2005 à 18:42
Bonjour!!!
l'ordi ne veut pas prendre regsvr32.exe -u C:\WINDOWS\system32\svchosts.dll :on me dit que ça à été chargé mais le point d'entrée DlUnregisisterServer est introuvable
Merci
l'ordi ne veut pas prendre regsvr32.exe -u C:\WINDOWS\system32\svchosts.dll :on me dit que ça à été chargé mais le point d'entrée DlUnregisisterServer est introuvable
Merci
balltrap34
Messages postés
16240
Date d'inscription
jeudi 8 janvier 2004
Statut
Contributeur sécurité
Dernière intervention
28 novembre 2009
331
>
ptiono
Messages postés
146
Date d'inscription
dimanche 13 novembre 2005
Statut
Membre
Dernière intervention
21 avril 2013
13 nov. 2005 à 18:47
13 nov. 2005 à 18:47
essai quand meme de le renommer comme citer plus haut
ptiono
Messages postés
146
Date d'inscription
dimanche 13 novembre 2005
Statut
Membre
Dernière intervention
21 avril 2013
1
>
balltrap34
Messages postés
16240
Date d'inscription
jeudi 8 janvier 2004
Statut
Contributeur sécurité
Dernière intervention
28 novembre 2009
13 nov. 2005 à 18:52
13 nov. 2005 à 18:52
Je ne veux pas etre un boulet pour toi, mais comment fais tu pour trouver ce fichier et pour le renommer, je suis trop NUUUULLLL!!!
merci
merci
balltrap34
Messages postés
16240
Date d'inscription
jeudi 8 janvier 2004
Statut
Contributeur sécurité
Dernière intervention
28 novembre 2009
331
>
ptiono
Messages postés
146
Date d'inscription
dimanche 13 novembre 2005
Statut
Membre
Dernière intervention
21 avril 2013
13 nov. 2005 à 18:58
13 nov. 2005 à 18:58
d abord tu t assure de ceci
Affiche tous les fichiers et dossiers :
cliquer sur démarrer/panneau de configuration/option des dossiers/affichage
Cocher afficher les dossiers cacher
Décoche la case "Masquer les fichiers protégés du système d'exploitation (recommandé)"
Décocher masquer les extensions dont le type est connu
Puis fais "Ok" pour valider les changements.
Et appliquer
ensuite tu clik demarrer/tous les programmes/accessoire/explorateur windows
la dans la fenetre qui s ouvre tu cherche le fichier
tu suis le chemin
C:\WINDOWS\system32\svchosts.dll
la tu clik droit sur le fichier svchosts.dll et sur renommer et tu met ceci svchosts.dll_
la si il veut pas tu fait clik droit dessus/proprieter et tu decoche lecture seul et tu tente a nouveau de le renommer
Affiche tous les fichiers et dossiers :
cliquer sur démarrer/panneau de configuration/option des dossiers/affichage
Cocher afficher les dossiers cacher
Décoche la case "Masquer les fichiers protégés du système d'exploitation (recommandé)"
Décocher masquer les extensions dont le type est connu
Puis fais "Ok" pour valider les changements.
Et appliquer
ensuite tu clik demarrer/tous les programmes/accessoire/explorateur windows
la dans la fenetre qui s ouvre tu cherche le fichier
tu suis le chemin
C:\WINDOWS\system32\svchosts.dll
la tu clik droit sur le fichier svchosts.dll et sur renommer et tu met ceci svchosts.dll_
la si il veut pas tu fait clik droit dessus/proprieter et tu decoche lecture seul et tu tente a nouveau de le renommer
ptiono
Messages postés
146
Date d'inscription
dimanche 13 novembre 2005
Statut
Membre
Dernière intervention
21 avril 2013
1
>
balltrap34
Messages postés
16240
Date d'inscription
jeudi 8 janvier 2004
Statut
Contributeur sécurité
Dernière intervention
28 novembre 2009
13 nov. 2005 à 19:01
13 nov. 2005 à 19:01
SmitFraudFix v1.93
Rapport fait à 18:58:30,74 le 13/11/2005
Executé à partir de C:\Documents and Settings\MADELAINE Arnaud\Bureau\SmitfraudFix
OS: Microsoft Windows XP [version 5.1.2600]
»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\
»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\WINDOWS
»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\WINDOWS\system
»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\WINDOWS\Web
»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\WINDOWS\system32
C:\WINDOWS\system32\hp????.tmp PRESENT !
C:\WINDOWS\system32\ncompat.tlb PRESENT !
»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\WINDOWS\system32\LogFiles
»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\Documents and Settings\MADELAINE Arnaud\Application Data
»»»»»»»»»»»»»»»»»»»»»»»» Recherche Menu Démarrer
»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\Documents and Settings\MADELAINE Arnaud\Bureau
J'ai enfin compris comment faire pour renommer le fichier et voici le rapport
merci
»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\Program Files
»»»»»»»»»»»»»»»»»»»»»»»» Recherche présence de clés corrompues
»»»»»»»»»»»»»»»»»»»»»»»» Recherche infection wininet.dll
»»»»»»»»»»»»»»»»»»»»»»»» Fin du rapport
Rapport fait à 18:58:30,74 le 13/11/2005
Executé à partir de C:\Documents and Settings\MADELAINE Arnaud\Bureau\SmitfraudFix
OS: Microsoft Windows XP [version 5.1.2600]
»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\
»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\WINDOWS
»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\WINDOWS\system
»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\WINDOWS\Web
»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\WINDOWS\system32
C:\WINDOWS\system32\hp????.tmp PRESENT !
C:\WINDOWS\system32\ncompat.tlb PRESENT !
»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\WINDOWS\system32\LogFiles
»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\Documents and Settings\MADELAINE Arnaud\Application Data
»»»»»»»»»»»»»»»»»»»»»»»» Recherche Menu Démarrer
»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\Documents and Settings\MADELAINE Arnaud\Bureau
J'ai enfin compris comment faire pour renommer le fichier et voici le rapport
merci
»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\Program Files
»»»»»»»»»»»»»»»»»»»»»»»» Recherche présence de clés corrompues
»»»»»»»»»»»»»»»»»»»»»»»» Recherche infection wininet.dll
»»»»»»»»»»»»»»»»»»»»»»»» Fin du rapport
ptiono
Messages postés
146
Date d'inscription
dimanche 13 novembre 2005
Statut
Membre
Dernière intervention
21 avril 2013
1
13 nov. 2005 à 18:04
13 nov. 2005 à 18:04
Bonsoir,
Le fichier n'est pas dans mon panneau de configuration. Quand je fais recherche, je trouve 2 fichiers.Exe dans C:\WINDOWS\Prefetch
Je les supprime manuellement?
Merci
Le fichier n'est pas dans mon panneau de configuration. Quand je fais recherche, je trouve 2 fichiers.Exe dans C:\WINDOWS\Prefetch
Je les supprime manuellement?
Merci
ptiono
Messages postés
146
Date d'inscription
dimanche 13 novembre 2005
Statut
Membre
Dernière intervention
21 avril 2013
1
13 nov. 2005 à 18:11
13 nov. 2005 à 18:11
Au fait, j'ai lu sur le blog qu'il etait aussi interressant d'utiliser SpyHunter
Voici le resultat qui ne semble pas génial avec 11 objets relevés
###########################Runnning Processes DATA###########################
processName = SMSS.EXE File Size = 50688 File Path = \SystemRoot\System32\smss.exe ModuleMD5 = b4c08d31e8c2ea9d76f892052a6fcaeb
processName = WINLOGON.EXE File Size = 506368 File Path = \??\C:\WINDOWS\system32\winlogon.exe ModuleMD5 = d2de785aeab0bb8ca4c14a8a199dbe4e
processName = SERVICES.EXE File Size = 108544 File Path = C:\WINDOWS\system32\services.exe ModuleMD5 = 732e0b1abaace15d80ec19056b0a2af9
processName = LSASS.EXE File Size = 13312 File Path = C:\WINDOWS\system32\lsass.exe ModuleMD5 = 9f3744a5c6f49291a7a685040a013399
processName = ATI2EVXX.EXE File Size = 405504 File Path = C:\WINDOWS\system32\Ati2evxx.exe ModuleMD5 = 0d5a84bd7a7b906774b86f62d09aa043
processName = SVCHOST.EXE File Size = 14336 File Path = C:\WINDOWS\system32\svchost.exe ModuleMD5 = 1bd6c2f707a275cb7c16fd99fe0f31ca
processName = SVCHOST.EXE File Size = 14336 File Path = C:\WINDOWS\System32\svchost.exe ModuleMD5 = 1bd6c2f707a275cb7c16fd99fe0f31ca
processName = ATI2EVXX.EXE File Size = 405504 File Path = C:\WINDOWS\system32\Ati2evxx.exe ModuleMD5 = 0d5a84bd7a7b906774b86f62d09aa043
processName = SPOOLSV.EXE File Size = 57856 File Path = C:\WINDOWS\system32\spoolsv.exe ModuleMD5 = da81ec57acd4cdc3d4c51cf3d409af9f
processName = AVGAMSVR.EXE File Size = 336896 File Path = C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe ModuleMD5 = 71599f550d4d892671dba3f05efafb71
processName = AVGUPSVC.EXE File Size = 84480 File Path = C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe ModuleMD5 = 66093610fa61142f6bcfd83afb7e8a29
processName = MDM.EXE File Size = 322120 File Path = C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE ModuleMD5 = 11f714f85530a2bd134074dc30e99fca
processName = SLSERV.EXE File Size = 57344 File Path = C:\WINDOWS\system32\slserv.exe ModuleMD5 = b84b6c9716d93ce0698e2486890cf678
processName = SVCHOST.EXE File Size = 14336 File Path = C:\WINDOWS\system32\svchost.exe ModuleMD5 = 1bd6c2f707a275cb7c16fd99fe0f31ca
processName = ATIPTAXX.EXE File Size = 344064 File Path = C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe ModuleMD5 = cc1a69528a33cb310aa11467697fd265
processName = SYNTPLPR.EXE File Size = 98304 File Path = C:\Program Files\Synaptics\SynTP\SynTPLpr.exe ModuleMD5 = 6c0f0c4b7f53194e3c765cd89c0f4f30
processName = SYNTPENH.EXE File Size = 536576 File Path = C:\Program Files\Synaptics\SynTP\SynTPEnh.exe ModuleMD5 = b5deda5d8fa66b09a94b0e34f91c9330
processName = E_FATI9CE.EXE File Size = 98304 File Path = C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATI9CE.EXE ModuleMD5 = 3501509dd60cc40e88614847d19024c0
processName = AVGCC.EXE File Size = 356352 File Path = C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe ModuleMD5 = 6492815fc67068a11420740637946b0e
processName = EBAYTBDAEMON.EXE File Size = 452968 File Path = C:\Program Files\eBay\eBay Toolbar2\eBayTBDaemon.exe ModuleMD5 = 256765bb4d45934dcdf6fb74832ddbbd
processName = DATALAYER.EXE File Size = 819712 File Path = C:\Program Files\Fichiers communs\PCSuite\DataLayer\DataLayer.exe ModuleMD5 = 53afebe1a74f0daaa2e376b9982c8029
processName = LAUNCHAPPLICATION.EXE File Size = 176128 File Path = C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe ModuleMD5 = 3cb82295c76196c108578f3ec503547f
processName = ISSCH.EXE File Size = 69632 File Path = C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe ModuleMD5 = 872b3d5f6f9f9bdfd6a83ee8aa5824b4
processName = JUSCHED.EXE File Size = 36975 File Path = C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe ModuleMD5 = d3e445a99a1142c35d8d3100b5564591
processName = CTFMON.EXE File Size = 15360 File Path = C:\WINDOWS\system32\ctfmon.exe ModuleMD5 = 5584247b568c2e53934873f4b655fe6a
processName = MSNMSGR.EXE File Size = 7086080 File Path = C:\Program Files\MSN Messenger\MsnMsgr.Exe ModuleMD5 = c595c788c794d893fe70c3e9c0113135
processName = PCSYNC2.EXE File Size = 860160 File Path = C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe ModuleMD5 = 30d0618f903c167b8b2082efc4a6d9a5
processName = SERVIC~1.EXE File Size = 103424 File Path = C:\PROGRA~1\FICHIE~1\PCSuite\Services\SERVIC~1.EXE ModuleMD5 = 8073bd414e977d79be6e2fff14e84c3b
processName = MPAPI3S.EXE File Size = 470016 File Path = C:\PROGRA~1\FICHIE~1\Nokia\MPAPI\MPAPI3s.exe ModuleMD5 = b581a99845331f6d98f3cec780f5ea33
processName = EXPLORER.EXE File Size = 1036288 File Path = C:\WINDOWS\explorer.exe ModuleMD5 = 4c33e5b9a6197b6ed215f6cfba0a2daa
processName = IEXPLORE.EXE File Size = 93184 File Path = C:\Program Files\Internet Explorer\iexplore.exe ModuleMD5 = 833e2b3f0e2484c0f2b804ae871b4381
processName = HIJACKTHIS.EXE File Size = 218112 File Path = C:\Documents and Settings\MADELAINE Arnaud\Bureau\HijackThis.exe ModuleMD5 = ee86268e59e4b38961e7c40d16be5bb4
processName = MSIMN.EXE File Size = 60416 File Path = C:\Program Files\Outlook Express\msimn.exe ModuleMD5 = eaf29ec62803b726c32ad0c9c59cde87
processName = SPYHUNTER.EXE File Size = 2469888 File Path = C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter.exe ModuleMD5 = b0966fa7fbc70d83e6bdbf7257247bff
###########################REGISTRY MD5 DATA###########################
<HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN>
Name=ATIPTA Data=C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe FileSize = 344064 MD5=cc1a69528a33cb310aa11467697fd265
Name=SynTPLpr Data=C:\Program Files\Synaptics\SynTP\SynTPLpr.exe FileSize = 98304 MD5=6c0f0c4b7f53194e3c765cd89c0f4f30
Name=SynTPEnh Data=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe FileSize = 536576 MD5=b5deda5d8fa66b09a94b0e34f91c9330
Name=EPSON Stylus Photo RX420 Series Data=C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATI9CE.EXE /P31 "EPSON Stylus Photo RX420 Series" /O5 "LPT1:" /M "Stylus Photo RX420" FileSize = 98304 MD5=3501509dd60cc40e88614847d19024c0
Name=EPSON Stylus Photo RX420 Series (Copie 1) Data=C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATI9CE.EXE /P41 "EPSON Stylus Photo RX420 Series (Copie 1)" /O6 "USB001" /M "Stylus Photo RX420" FileSize = 98304 MD5=3501509dd60cc40e88614847d19024c0
Name=AVG7_CC Data=C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
FileSize = 356352 MD5=6492815fc67068a11420740637946b0e
<HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUNONCEEX>
<HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUNONCE>
<HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN>
Name=CTFMON.EXE Data=C:\WINDOWS\system32\ctfmon.exe FileSize = 15360 MD5=5584247b568c2e53934873f4b655fe6a
Name=MSMSGS Data="C:\Program Files\Messenger\msmsgs.exe" /background FileSize = 1694208 MD5=74e6e96c6f0e2eca4edbb7f7a468f259
Name=MsnMsgr Data="C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background FileSize = 7086080 MD5=c595c788c794d893fe70c3e9c0113135
Name=PcSync Data=C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog
FileSize = 860160 MD5=30d0618f903c167b8b2082efc4a6d9a5
<HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUNONCE>
<HKEY_USERS\.DEFAULT\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN>
Name=CTFMON.EXE Data=C:\WINDOWS\system32\CTFMON.EXE FileSize = 15360 MD5=5584247b568c2e53934873f4b655fe6a
Name=AVG7_Run Data=C:\PROGRA~1\Grisoft\AVGFRE~1\avgw.exe /RUNONCE
FileSize = 154112 MD5=3c06f8c9084d2ff24e90fcaeb342535a
<HKEY_USERS\.DEFAULT\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUNONCE>
#############################FILE MD5 DATA#############################
<C:\Documents and Settings\MADELAINE Arnaud\Menu Démarrer\Programmes\Démarrage>
File Path = C:\Documents and Settings\MADELAINE Arnaud\Menu Démarrer\Programmes\Démarrage\desktop.ini File Size = 4096 md5=d6a6856702e3f0953e7246a9b4a9fe35
#############################SERVICES DATA#############################
Service Name = ALG Service Display Name = Service de la passerelle de la couche Application Opened = YES Status = Running Query = SUCCESS Service Type = 16 Service Start Type = 3 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\alg.exe Binary Size = 44544 Binary MD5 = 2fe681d10c5fc343dbbc0610b8dd4d24
Service Name = Ati HotKey Poller Service Display Name = Ati HotKey Poller Opened = YES Status = Running Query = SUCCESS Service Type = 272 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\Ati2evxx.exe Binary Size = 405504 Binary MD5 = 0d5a84bd7a7b906774b86f62d09aa043
Service Name = AudioSrv Service Display Name = Audio Windows Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = Avg7Alrt Service Display Name = AVG7 Alert Manager Server Opened = YES Status = Running Query = SUCCESS Service Type = 272 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe Binary Size = 336896 Binary MD5 = 71599f550d4d892671dba3f05efafb71
Service Name = Avg7UpdSvc Service Display Name = AVG7 Update Service Opened = YES Status = Running Query = SUCCESS Service Type = 16 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe Binary Size = 84480 Binary MD5 = 66093610fa61142f6bcfd83afb7e8a29
Service Name = BITS Service Display Name = Service de transfert intelligent en arrière-plan Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = CryptSvc Service Display Name = Services de cryptographie Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = DcomLaunch Service Display Name = Lanceur de processus serveur DCOM Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost -k DcomLaunch Binary Size = 0 Binary MD5 =
Service Name = Dhcp Service Display Name = Client DHCP Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = Dnscache Service Display Name = Client DNS Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k NetworkService Binary Size = 0 Binary MD5 =
Service Name = ERSvc Service Display Name = Service de rapport d'erreurs Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 0 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = Eventlog Service Display Name = Journal des événements Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\services.exe Binary Size = 108544 Binary MD5 = 732e0b1abaace15d80ec19056b0a2af9
Service Name = EventSystem Service Display Name = Système d'événements de COM+ Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 3 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = FastUserSwitchingCompatibility Service Display Name = Compatibilité avec le Changement rapide d'utilisateur Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 3 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = helpsvc Service Display Name = Aide et support Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = HidServ Service Display Name = HID Input Service Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = Irmon Service Display Name = Moniteur infrarouge Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = lanmanserver Service Display Name = Serveur Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = lanmanworkstation Service Display Name = Station de travail Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = LmHosts Service Display Name = Assistance TCP/IP NetBIOS Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k LocalService Binary Size = 0 Binary MD5 =
Service Name = MDM Service Display Name = Machine Debug Manager Opened = YES Status = Running Query = SUCCESS Service Type = 272 Service Start Type = 2 Service Error Control = 1 Service Binary Path = "C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE" Binary Size = 0 Binary MD5 =
Service Name = Netman Service Display Name = Connexions réseau Opened = YES Status = Running Query = SUCCESS Service Type = 288 Service Start Type = 3 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = Nla Service Display Name = NLA (Network Location Awareness) Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 3 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = PlugPlay Service Display Name = Plug-and-Play Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\services.exe Binary Size = 108544 Binary MD5 = 732e0b1abaace15d80ec19056b0a2af9
Service Name = PolicyAgent Service Display Name = Services IPSEC Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\lsass.exe Binary Size = 13312 Binary MD5 = 9f3744a5c6f49291a7a685040a013399
Service Name = ProtectedStorage Service Display Name = Emplacement protégé Opened = YES Status = Running Query = SUCCESS Service Type = 288 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\lsass.exe Binary Size = 13312 Binary MD5 = 9f3744a5c6f49291a7a685040a013399
Service Name = RasAuto Service Display Name = Gestionnaire de connexion automatique d'accès distant Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = RasMan Service Display Name = Gestionnaire de connexions d'accès distant Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 3 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = RpcSs Service Display Name = Appel de procédure distante (RPC) Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost -k rpcss Binary Size = 0 Binary MD5 =
Service Name = SamSs Service Display Name = Gestionnaire de comptes de sécurité Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\lsass.exe Binary Size = 13312 Binary MD5 = 9f3744a5c6f49291a7a685040a013399
Service Name = Schedule Service Display Name = Planificateur de tâches Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = seclogon Service Display Name = Connexion secondaire Opened = YES Status = Running Query = SUCCESS Service Type = 288 Service Start Type = 2 Service Error Control = 0 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = SENS Service Display Name = Notification d'événement système Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = SharedAccess Service Display Name = Pare-feu Windows / Partage de connexion Internet Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = ShellHWDetection Service Display Name = Détection matériel noyau Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 0 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = SLService Service Display Name = SmartLinkService Opened = YES Status = Running Query = SUCCESS Service Type = 272 Service Start Type = 2 Service Error Control = 1 Service Binary Path = slserv.exe Binary Size = 57344 Binary MD5 = b84b6c9716d93ce0698e2486890cf678
Service Name = Spooler Service Display Name = Spouleur d'impression Opened = YES Status = Running Query = SUCCESS Service Type = 272 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\spoolsv.exe Binary Size = 57856 Binary MD5 = da81ec57acd4cdc3d4c51cf3d409af9f
Service Name = srservice Service Display Name = Service de restauration système Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = SSDPSRV Service Display Name = Service de découvertes SSDP Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 3 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k LocalService Binary Size = 0 Binary MD5 =
Service Name = stisvc Service Display Name = Acquisition d'image Windows (WIA) Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k imgsvc Binary Size = 0 Binary MD5 =
Service Name = TapiSrv Service Display Name = Téléphonie Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 3 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = TermService Service Display Name = Services Terminal Server Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 3 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost -k DComLaunch Binary Size = 0 Binary MD5 =
Service Name = Themes Service Display Name = Thèmes Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = TrkWks Service Display Name = Client de suivi de lien distribué Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = UMWdf Service Display Name = Windows User Mode Driver Framework Opened = YES Status = Running Query = SUCCESS Service Type = 16 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\wdfmgr.exe Binary Size = 38912 Binary MD5 = ab0a7ca90d9e3d6a193905dc1715ded0
Service Name = W32Time Service Display Name = Horloge Windows Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = WebClient Service Display Name = WebClient Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k LocalService Binary Size = 0 Binary MD5 =
Service Name = winmgmt Service Display Name = Infrastructure de gestion Windows Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 0 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = wscsvc Service Display Name = Centre de sécurité Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = wuauserv Service Display Name = Mises à jour automatiques Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = WZCSVC Service Display Name = Configuration automatique sans fil Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
#############################WINLOGON DATA#############################
<HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\NOTIFY>
Subkey Name = Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent Filepath = C:\WINDOWS\system32\Ati2evxx.dll File Size = 90112 File MD5 = ff9e07fd13161d4b4f3ef1792675516b
Subkey Name = Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\crypt32chain Filepath = C:\WINDOWS\system32\crypt32.dll File Size = 604672 File MD5 = fd8631128e14583f135eb4b3f37ef626
Subkey Name = Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cryptnet Filepath = C:\WINDOWS\system32\cryptnet.dll File Size = 63488 File MD5 = 344dcb5a0c57e0fc3714c5e5e5fbc232
Subkey Name = Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cscdll Filepath = C:\WINDOWS\system32\cscdll.dll File Size = 102912 File MD5 = fbc2cd20b107b6525dfee9f6e41dcc8b
Subkey Name = Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\NavLogon Filepath = C:\WINDOWS\system32\NavLogon.dll File Size = 45056 File MD5 = c8d5ebecf889534fe52537f18cfeb1c0
Subkey Name = Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ScCertProp Filepath = C:\WINDOWS\system32\wlnotify.dll File Size = 94208 File MD5 = 8201bb13554a855cabd88bbf14b2166b
Subkey Name = Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\Schedule Filepath = C:\WINDOWS\system32\wlnotify.dll File Size = 94208 File MD5 = 8201bb13554a855cabd88bbf14b2166b
Subkey Name = Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\sclgntfy Filepath = C:\WINDOWS\system32\sclgntfy.dll File Size = 22016 File MD5 = 83db3b831c845699ad4f6bfb37c4790c
Subkey Name = Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\SensLogn Filepath = C:\WINDOWS\system32\WlNotify.dll File Size = 94208 File MD5 = 8201bb13554a855cabd88bbf14b2166b
Subkey Name = Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\termsrv Filepath = C:\WINDOWS\system32\wlnotify.dll File Size = 94208 File MD5 = 8201bb13554a855cabd88bbf14b2166b
Subkey Name = Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\wlballoon Filepath = C:\WINDOWS\system32\wlnotify.dll File Size = 94208 File MD5 = 8201bb13554a855cabd88bbf14b2166b
Subkey Name = Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WRNotifier Filepath = File Size = 94208 File MD5 = 8201bb13554a855cabd88bbf14b2166b
##########################BROWSER ADD-ON DATA##########################
<HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar>
CLSID = {EE5D279F-081B-4404-994D-C6B60AAEBA6D} FilePath = C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll File Size = 0 File MD5 = Description = 0
CLSID = {92085AD4-F48A-450D-BD93-B28CC7DF67CE} FilePath = C:\Program Files\eBay\eBay Toolbar2\eBayTB.dll File Size = 0 File MD5 = Description =
<HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Explorer Bars>
CLSID = {4D5C8C25-D075-11d0-B416-00C04FB90376} FilePath = C:\WINDOWS\system32\shdocvw.dll File Size = 1486336 File MD5 = f2845dde9918730782153e909aba0bc3
<HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Explorer Bars>
CLSID = {30D02401-6A81-11D0-8274-00C04FD5AE38} FilePath = C:\WINDOWS\system32\browseui.dll File Size = 1020416 File MD5 = 5d7aebb6efeef36d4b0c70f647d1e464
CLSID = {EFA24E61-B078-11D0-89E4-00C04FC9E26E} FilePath = C:\WINDOWS\system32\shdocvw.dll File Size = 1486336 File MD5 = f2845dde9918730782153e909aba0bc3
CLSID = {EFA24E62-B078-11D0-89E4-00C04FC9E26E} FilePath = C:\WINDOWS\system32\shdocvw.dll File Size = 1486336 File MD5 = f2845dde9918730782153e909aba0bc3
<HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects>
CLSID = {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} FilePath = C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll File Size = 0 File MD5 =
CLSID = {e9ccf15d-4c68-4b5a-9e9a-8e12e4bd39bd} FilePath = C:\WINDOWS\system32\hp59A.tmp File Size = 16384 File MD5 = d1142b374e5eda56a6da2724fc7bc0e2
<HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Extensions>
CLSID = {08B0E5C0-4FCB-11CF-AAA5-00401C608501} FilePath = File Size = 0 File MD5 =
CLSID = {85d1f590-48f4-11d9-9669-0800200c9a66} FilePath = File Size = 0 File MD5 =
CLSID = {92780B25-18CC-41C8-B9BE-3C9C571A8263} FilePath = File Size = 0 File MD5 =
CLSID = {FB5F1910-F110-11d2-BB9E-00C04F795683} FilePath = File Size = 0 File MD5 =
<HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Extensions>
CLSID = CmdMapping FilePath = File Size = 0 File MD5 =
<HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks>
CLSID = {CFBFAE00-17A6-11D0-99CB-00C04FD64497} FilePath = C:\WINDOWS\system32\shdocvw.dll File Size = 1486336 File MD5 = f2845dde9918730782153e909aba0bc3 Description =
##########################LSP CHAIN DATA##########################
<HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\SERVICES\WINSOCK2\PARAMETERS>
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000001 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 247808 File MD5 = ccdd3433f3c3bd0d8502b38fd155b2f0
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000002 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 247808 File MD5 = ccdd3433f3c3bd0d8502b38fd155b2f0
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000003 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 247808 File MD5 = ccdd3433f3c3bd0d8502b38fd155b2f0
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000004 Filepath = C:\WINDOWS\system32\rsvpsp.dll File Size = 90112 File MD5 = bc3752885b2ec7bf57fc6f9b23f2c8d5
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000005 Filepath = C:\WINDOWS\system32\rsvpsp.dll File Size = 90112 File MD5 = bc3752885b2ec7bf57fc6f9b23f2c8d5
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000006 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 247808 File MD5 = ccdd3433f3c3bd0d8502b38fd155b2f0
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000007 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 247808 File MD5 = ccdd3433f3c3bd0d8502b38fd155b2f0
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000008 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 247808 File MD5 = ccdd3433f3c3bd0d8502b38fd155b2f0
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000009 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 247808 File MD5 = ccdd3433f3c3bd0d8502b38fd155b2f0
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000010 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 247808 File MD5 = ccdd3433f3c3bd0d8502b38fd155b2f0
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000011 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 247808 File MD5 = ccdd3433f3c3bd0d8502b38fd155b2f0
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000012 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 247808 File MD5 = ccdd3433f3c3bd0d8502b38fd155b2f0
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000013 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 247808 File MD5 = ccdd3433f3c3bd0d8502b38fd155b2f0
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000014 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 247808 File MD5 = ccdd3433f3c3bd0d8502b38fd155b2f0
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000015 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 247808 File MD5 = ccdd3433f3c3bd0d8502b38fd155b2f0
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000016 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 247808 File MD5 = ccdd3433f3c3bd0d8502b38fd155b2f0
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000017 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 247808 File MD5 = ccdd3433f3c3bd0d8502b38fd155b2f0
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000018 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 247808 File MD5 = ccdd3433f3c3bd0d8502b38fd155b2f0
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000019 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 247808 File MD5 = ccdd3433f3c3bd0d8502b38fd155b2f0
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000020 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 247808 File MD5 = ccdd3433f3c3bd0d8502b38fd155b2f0
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000021 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 247808 File MD5 = ccdd3433f3c3bd0d8502b38fd155b2f0
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000022 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 247808 File MD5 = ccdd3433f3c3bd0d8502b38fd155b2f0
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000023 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 247808 File MD5 = ccdd3433f3c3bd0d8502b38fd155b2f0
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000024 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 247808 File MD5 = ccdd3433f3c3bd0d8502b38fd155b2f0
##########################UNINSTALL DATA##########################
<HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL>
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Ad-Aware SE Personal DisplayName = Ad-Aware SE Personal
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\AddressBook
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\All ATI Software DisplayName = ATI - Utilitaire de désinstallation du logiciel InstallLocation = C:\Program Files\ATI Technologies\UninstallAll
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\ATI Display Driver DisplayName = ATI Display Driver
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\AVG7Uninstall DisplayName = AVG Free Edition
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Branding
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Connection Manager
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\DirectAnimation
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\DirectDrawEx
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\DXM_Runtime
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\EPSON Printer and Utilities DisplayName = EPSON Logiciel imprimante
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\EPSON Scanner DisplayName = EPSON Scan
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\ESPRX420 Guide de réf. DisplayName = ESPRX420 Guide de réf. InstallLocation = C:\Program Files\EPSON\TPMANUAL\ESPRX420\REF_G
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\ESPRX420 Guide des logiciels DisplayName = ESPRX420 Guide des logiciels InstallLocation = C:\Program Files\EPSON\TPMANUAL\ESPRX420\PQU_G
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Fontcore
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Free.fr DisplayName = Free - Kit de connexion
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\HijackThis DisplayName = HijackThis 1.99.1
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\ICW
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\IE40
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\IE4Data
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\IE5BAKEX
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\IEData
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\InstallShield Uninstall Information
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\InstallShield_{3D249F10-79EC-48D4-93E5-C470ABE523FA} DisplayName = Nokia Connectivity Cable Driver InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\InstallShield_{617095DB-B523-4D11-BBFD-2D74C2AD98B8} DisplayName = Nokia PC Suite InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB834707 DisplayName = Correctif Windows XP - KB834707
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB836435 DisplayName = Correctif Windows XP - KB836435
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB867282 DisplayName = Correctif Windows XP - KB867282
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB873333 DisplayName = Correctif Windows XP - KB873333
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB873339 DisplayName = Correctif Windows XP - KB873339
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB883667 DisplayName = Correctif Windows XP - KB883667
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB883939 DisplayName = Mise à jour de sécurité pour Windows XP (KB883939)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB884016
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB884020 DisplayName = Correctif Windows XP - KB884020
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB884575 DisplayName = Correctif Windows XP - KB884575
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB885250 DisplayName = Correctif Windows XP - KB885250
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB885835 DisplayName = Correctif Windows XP - KB885835
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB885836 DisplayName = Correctif Windows XP - KB885836
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB885884 DisplayName = Correctif Windows XP - KB885884
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB885894 DisplayName = Correctif Windows XP - KB885894
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB886185 DisplayName = Correctif Windows XP - KB886185
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB887472 DisplayName = Correctif Windows XP - KB887472
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB887742 DisplayName = Correctif Windows XP - KB887742
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB888113 DisplayName = Correctif Windows XP - KB888113
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB888302 DisplayName = Correctif Windows XP - KB888302
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB890046 DisplayName = Mise à jour de sécurité pour Windows XP (KB890046)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB890047 DisplayName = Correctif Windows XP - KB890047
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB890175 DisplayName = Correctif Windows XP - KB890175
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB890859 DisplayName = Correctif Windows XP - KB890859
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB890923 DisplayName = Correctif Windows XP - KB890923
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB891781 DisplayName = Correctif Windows XP - KB891781
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB893066 DisplayName = Correctif Windows XP - KB893066
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB893086 DisplayName = Correctif Windows XP - KB893086
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB893756 DisplayName = Mise à jour de sécurité pour Windows XP (KB893756)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB893803 DisplayName = Windows Installer 3.1 (KB893803)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB893803v2 DisplayName = Windows Installer 3.1 (KB893803)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB894391 DisplayName = Mise à jour pour Windows XP (KB894391)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB896358 DisplayName = Mise à jour de sécurité pour Windows XP (KB896358)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB896422 DisplayName = Mise à jour de sécurité pour Windows XP (KB896422)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB896423 DisplayName = Mise à jour de sécurité pour Windows XP (KB896423)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB896424 DisplayName = Mise à jour de sécurité pour Windows XP (KB896424)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB896428 DisplayName = Mise à jour de sécurité pour Windows XP (KB896428)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB896688 DisplayName = Mise à jour de sécurité pour Windows XP (KB896688)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB896727 DisplayName = Mise à jour pour Windows XP (KB896727)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB898458 DisplayName = Mise à jour de sécurité pour Step by Step Interactive Training (KB898458)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB898461 DisplayName = Mise à jour pour Windows XP (KB898461)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB899587 DisplayName = Mise à jour de sécurité pour Windows XP (KB899587)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB899588 DisplayName = Mise à jour de sécurité pour Windows XP (KB899588)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB899591 DisplayName = Mise à jour de sécurité pour Windows XP (KB899591)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB900725 DisplayName = Mise à jour de sécurité pour Windows XP (KB900725)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB901017 DisplayName = Mise à jour de sécurité pour Windows XP (KB901017)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB901214 DisplayName = Mise à jour de sécurité pour Windows XP (KB901214)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB902400 DisplayName = Mise à jour de sécurité pour Windows XP (KB902400)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB903235 DisplayName = Mise à jour de sécurité pour Windows XP (KB903235)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB904706 DisplayName = Mise à jour de sécurité pour Windows XP (KB904706)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB905414 DisplayName = Mise à jour de sécurité pour Windows XP (KB905414)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB905749 DisplayName = Mise à jour de sécurité pour Windows XP (KB905749)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Language pack for Ad-Aware SE DisplayName = Language pack for Ad-Aware SE
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\LiveUpdate DisplayName = LiveUpdate 1.90 (Symantec Corporation) InstallLocation = C:\Program Files\Symantec\LiveUpdate
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\M886903 DisplayName = Microsoft .NET Framework 1.1 Hotfix (KB886903)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Microsoft .NET Framework 1.1 (1033) DisplayName = Microsoft .NET Framework 1.1
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Microsoft Interactive Training
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\MobileOptionPack
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\MPlayer2
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\MSI30-Beta1
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\MSI30-Beta2
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\MSI30-KB884016
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\MSI30-RC1
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\MSI30-RC2
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\MSI30a-KB884016
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\MSI31-Beta
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\MSI31-RC1
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\MSNINST DisplayName = MSN
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\NetMeeting
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\OutlookExpress
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\PCHealth
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\SchedulingAgent
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\ShockwaveFlash DisplayName = Macromedia Flash Player 8
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\SynTPDeinstKey DisplayName = Synaptics Pointing Device Driver
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\VIA Audio Driver Setup Program DisplayName = VIA Audio Driver Setup Program
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Web TV DisplayName = Web TV
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Win TV Pro Free DisplayName = Win TV Pro Free
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Windows Media Format Runtime DisplayName = Windows Media Format Runtime
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Windows Media Player DisplayName = Lecteur Windows Media 10
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\WinZip DisplayName = WinZip
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\XviD_is1 DisplayName = XviD MPEG-4 Video Codec InstallLocation = C:\Program Files\XviD\
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{0BEDBD4E-2D34-47B5-9973-57E62B29307C} DisplayName = ATI Control Panel
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{109D28C7-FB38-483A-9C91-001CB59E2699} DisplayName = EPSON CardMonitor
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{18D10072035C4515918F7E37EAFAACFC}
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{23B59ED4-C360-11D7-875B-0090CC005647} DisplayName = EPSON PRINT Image Framer Tool2.1
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{23EFDB58-0874-4883-9810-EDA510B19FAE}
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{2BB79C8D-9DCC-4861-8A23-AE1B0B45E2B6}
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{3248F0A8-6813-11D6-A77B-00B0D0150040} DisplayName = J2SE Runtime Environment 5.0 Update 4 InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{350C940c-3D7C-4EE8-BAA9-00BCB3D54227} DisplayName = WebFldrs XP InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{3C1B8CBC-9118-11D7-86D3-00055DF3561E}
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{3D249F10-79EC-48D4-93E5-C470ABE523FA} DisplayName = Nokia Connectivity Cable Driver InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{3DB5FD00-BB93-4AF3-B925-77DAA0E4E2F4} DisplayName = eBay Toolbar InstallLocation = C:\Program Files\eBay\eBay Toolbar2\
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{3DE5E7D4-7B88-403C-A3FD-2017A8240C5B} DisplayName = Google Earth InstallLocation = C:\Program Files\Google\Google Earth
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{4DEFAA0B-3E04-4ADD-B037-5E93EFA3FAD9} DisplayName = USB-SIR Adapter Device InstallLocation = C:\Program Files\MosSir\
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{617095DB-B523-4D11-BBFD-2D74C2AD98B8} DisplayName = Nokia PC Suite InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{62369F2F77534556AEF4C58152E3BDE5}
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{63569CE9-FA00-469C-AF5C-E5D4D93ACF91} DisplayName = Windows Genuine Advantage v1.3.0254.0 InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{65F5B7AF-3363-11D7-BB6B-00018021113F} DisplayName = EPSON PhotoQuicker3.5
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{66C8BE35-8BBB-472B-96C7-C7C9A499F988} DisplayName = PhotoImpression 5
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{67EDD823-135A-4D59-87BD-950616D6E857} DisplayName = EPSON Copy Utility 3 InstallLocation = C:\Program Files\EPSON\Utility Suite\Copy Utility
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{6C11D561-620B-47DA-A693-4C597F3CDF40} DisplayName = EPSON Smart Panel
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{775FFF70-4A8C-4500-908D-3C34DBEB11D5}
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{7B63B2922B174135AFC0E1377DD81EC2}
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{7BD0A2D8-4EA0-43C6-BDF8-DDA87B8031C6} DisplayName = PIF DESIGNER2.1
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{7F14F68C-17FA-4F88-B3FD-7F449C1EBF32} DisplayName = EPSON Web-To-Page InstallLocation = C:\Program Files\EPSON\EPSON Web-To-Page
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{83021AC3-086F-4B77-ACCD-1BD7C9AB211E}
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{8ADFC4160D694100B5B8A22DE9DCABD9}
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{9011040C-6000-11D3-8CFE-0150048383C9} DisplayName = Microsoft Office Professional Edition 2003 InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{90AF040C-6000-11D3-8CFE-0150048383C9} DisplayName = Microsoft Office PowerPoint Viewer 2003 InstallLocation = C:\Program Files\Microsoft Office\
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{91810AFC-A4F8-4EBA-A5AA-B198BBC81144} DisplayName = InterVideo WinDVD InstallLocation = C:\Program Files\InterVideo\WinDVD
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{9A394342-4A68-4EBA-85A6-55B559F4E700} DisplayName = Microsoft .NET Framework 1.1 French Language Pack InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{A059DE09-1B49-4450-B340-7AE097EC3F04} DisplayName = Microsoft Works InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{AC76BA86-7AD7-1036-7B44-000000000001} DisplayName = Adobe Reader 6.0 - Français InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{B13A7C41581B411290FBC0395694E2A9}
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{B14F9B26-D695-4C4A-8B11-0FE6CDCC797B}
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{B947EFD7-D033-49E2-B837-F43C9D73AD4A} DisplayName = Tsunami-Filter-Pack Mini
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{BAFD3C1E-03EC-11DA-BFBD-00065BBDC0B5} DisplayName = MSN Messenger 7.5 InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{C48817E7-AA05-4151-A99D-1E1E550CE801} DisplayName = EPSON PhotoStarter3.1
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1} DisplayName = Microsoft .NET Framework 1.1 InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{E213C271-AEFA-481D-A9B4-914D88925B8D}
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{EBAE381B-60A6-4863-AA9F-FCAB755BC9E5} DisplayName = ScanToWeb
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{EE5B8E34-973C-4FBE-AC83-99F064009FC7} DisplayName = SpyHunter InstallLocation = C:\Program Files\Enigma Software Group\SpyHunter
Voici le resultat qui ne semble pas génial avec 11 objets relevés
###########################Runnning Processes DATA###########################
processName = SMSS.EXE File Size = 50688 File Path = \SystemRoot\System32\smss.exe ModuleMD5 = b4c08d31e8c2ea9d76f892052a6fcaeb
processName = WINLOGON.EXE File Size = 506368 File Path = \??\C:\WINDOWS\system32\winlogon.exe ModuleMD5 = d2de785aeab0bb8ca4c14a8a199dbe4e
processName = SERVICES.EXE File Size = 108544 File Path = C:\WINDOWS\system32\services.exe ModuleMD5 = 732e0b1abaace15d80ec19056b0a2af9
processName = LSASS.EXE File Size = 13312 File Path = C:\WINDOWS\system32\lsass.exe ModuleMD5 = 9f3744a5c6f49291a7a685040a013399
processName = ATI2EVXX.EXE File Size = 405504 File Path = C:\WINDOWS\system32\Ati2evxx.exe ModuleMD5 = 0d5a84bd7a7b906774b86f62d09aa043
processName = SVCHOST.EXE File Size = 14336 File Path = C:\WINDOWS\system32\svchost.exe ModuleMD5 = 1bd6c2f707a275cb7c16fd99fe0f31ca
processName = SVCHOST.EXE File Size = 14336 File Path = C:\WINDOWS\System32\svchost.exe ModuleMD5 = 1bd6c2f707a275cb7c16fd99fe0f31ca
processName = ATI2EVXX.EXE File Size = 405504 File Path = C:\WINDOWS\system32\Ati2evxx.exe ModuleMD5 = 0d5a84bd7a7b906774b86f62d09aa043
processName = SPOOLSV.EXE File Size = 57856 File Path = C:\WINDOWS\system32\spoolsv.exe ModuleMD5 = da81ec57acd4cdc3d4c51cf3d409af9f
processName = AVGAMSVR.EXE File Size = 336896 File Path = C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe ModuleMD5 = 71599f550d4d892671dba3f05efafb71
processName = AVGUPSVC.EXE File Size = 84480 File Path = C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe ModuleMD5 = 66093610fa61142f6bcfd83afb7e8a29
processName = MDM.EXE File Size = 322120 File Path = C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE ModuleMD5 = 11f714f85530a2bd134074dc30e99fca
processName = SLSERV.EXE File Size = 57344 File Path = C:\WINDOWS\system32\slserv.exe ModuleMD5 = b84b6c9716d93ce0698e2486890cf678
processName = SVCHOST.EXE File Size = 14336 File Path = C:\WINDOWS\system32\svchost.exe ModuleMD5 = 1bd6c2f707a275cb7c16fd99fe0f31ca
processName = ATIPTAXX.EXE File Size = 344064 File Path = C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe ModuleMD5 = cc1a69528a33cb310aa11467697fd265
processName = SYNTPLPR.EXE File Size = 98304 File Path = C:\Program Files\Synaptics\SynTP\SynTPLpr.exe ModuleMD5 = 6c0f0c4b7f53194e3c765cd89c0f4f30
processName = SYNTPENH.EXE File Size = 536576 File Path = C:\Program Files\Synaptics\SynTP\SynTPEnh.exe ModuleMD5 = b5deda5d8fa66b09a94b0e34f91c9330
processName = E_FATI9CE.EXE File Size = 98304 File Path = C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATI9CE.EXE ModuleMD5 = 3501509dd60cc40e88614847d19024c0
processName = AVGCC.EXE File Size = 356352 File Path = C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe ModuleMD5 = 6492815fc67068a11420740637946b0e
processName = EBAYTBDAEMON.EXE File Size = 452968 File Path = C:\Program Files\eBay\eBay Toolbar2\eBayTBDaemon.exe ModuleMD5 = 256765bb4d45934dcdf6fb74832ddbbd
processName = DATALAYER.EXE File Size = 819712 File Path = C:\Program Files\Fichiers communs\PCSuite\DataLayer\DataLayer.exe ModuleMD5 = 53afebe1a74f0daaa2e376b9982c8029
processName = LAUNCHAPPLICATION.EXE File Size = 176128 File Path = C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe ModuleMD5 = 3cb82295c76196c108578f3ec503547f
processName = ISSCH.EXE File Size = 69632 File Path = C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe ModuleMD5 = 872b3d5f6f9f9bdfd6a83ee8aa5824b4
processName = JUSCHED.EXE File Size = 36975 File Path = C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe ModuleMD5 = d3e445a99a1142c35d8d3100b5564591
processName = CTFMON.EXE File Size = 15360 File Path = C:\WINDOWS\system32\ctfmon.exe ModuleMD5 = 5584247b568c2e53934873f4b655fe6a
processName = MSNMSGR.EXE File Size = 7086080 File Path = C:\Program Files\MSN Messenger\MsnMsgr.Exe ModuleMD5 = c595c788c794d893fe70c3e9c0113135
processName = PCSYNC2.EXE File Size = 860160 File Path = C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe ModuleMD5 = 30d0618f903c167b8b2082efc4a6d9a5
processName = SERVIC~1.EXE File Size = 103424 File Path = C:\PROGRA~1\FICHIE~1\PCSuite\Services\SERVIC~1.EXE ModuleMD5 = 8073bd414e977d79be6e2fff14e84c3b
processName = MPAPI3S.EXE File Size = 470016 File Path = C:\PROGRA~1\FICHIE~1\Nokia\MPAPI\MPAPI3s.exe ModuleMD5 = b581a99845331f6d98f3cec780f5ea33
processName = EXPLORER.EXE File Size = 1036288 File Path = C:\WINDOWS\explorer.exe ModuleMD5 = 4c33e5b9a6197b6ed215f6cfba0a2daa
processName = IEXPLORE.EXE File Size = 93184 File Path = C:\Program Files\Internet Explorer\iexplore.exe ModuleMD5 = 833e2b3f0e2484c0f2b804ae871b4381
processName = HIJACKTHIS.EXE File Size = 218112 File Path = C:\Documents and Settings\MADELAINE Arnaud\Bureau\HijackThis.exe ModuleMD5 = ee86268e59e4b38961e7c40d16be5bb4
processName = MSIMN.EXE File Size = 60416 File Path = C:\Program Files\Outlook Express\msimn.exe ModuleMD5 = eaf29ec62803b726c32ad0c9c59cde87
processName = SPYHUNTER.EXE File Size = 2469888 File Path = C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter.exe ModuleMD5 = b0966fa7fbc70d83e6bdbf7257247bff
###########################REGISTRY MD5 DATA###########################
<HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN>
Name=ATIPTA Data=C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe FileSize = 344064 MD5=cc1a69528a33cb310aa11467697fd265
Name=SynTPLpr Data=C:\Program Files\Synaptics\SynTP\SynTPLpr.exe FileSize = 98304 MD5=6c0f0c4b7f53194e3c765cd89c0f4f30
Name=SynTPEnh Data=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe FileSize = 536576 MD5=b5deda5d8fa66b09a94b0e34f91c9330
Name=EPSON Stylus Photo RX420 Series Data=C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATI9CE.EXE /P31 "EPSON Stylus Photo RX420 Series" /O5 "LPT1:" /M "Stylus Photo RX420" FileSize = 98304 MD5=3501509dd60cc40e88614847d19024c0
Name=EPSON Stylus Photo RX420 Series (Copie 1) Data=C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATI9CE.EXE /P41 "EPSON Stylus Photo RX420 Series (Copie 1)" /O6 "USB001" /M "Stylus Photo RX420" FileSize = 98304 MD5=3501509dd60cc40e88614847d19024c0
Name=AVG7_CC Data=C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
FileSize = 356352 MD5=6492815fc67068a11420740637946b0e
<HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUNONCEEX>
<HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUNONCE>
<HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN>
Name=CTFMON.EXE Data=C:\WINDOWS\system32\ctfmon.exe FileSize = 15360 MD5=5584247b568c2e53934873f4b655fe6a
Name=MSMSGS Data="C:\Program Files\Messenger\msmsgs.exe" /background FileSize = 1694208 MD5=74e6e96c6f0e2eca4edbb7f7a468f259
Name=MsnMsgr Data="C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background FileSize = 7086080 MD5=c595c788c794d893fe70c3e9c0113135
Name=PcSync Data=C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog
FileSize = 860160 MD5=30d0618f903c167b8b2082efc4a6d9a5
<HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUNONCE>
<HKEY_USERS\.DEFAULT\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN>
Name=CTFMON.EXE Data=C:\WINDOWS\system32\CTFMON.EXE FileSize = 15360 MD5=5584247b568c2e53934873f4b655fe6a
Name=AVG7_Run Data=C:\PROGRA~1\Grisoft\AVGFRE~1\avgw.exe /RUNONCE
FileSize = 154112 MD5=3c06f8c9084d2ff24e90fcaeb342535a
<HKEY_USERS\.DEFAULT\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUNONCE>
#############################FILE MD5 DATA#############################
<C:\Documents and Settings\MADELAINE Arnaud\Menu Démarrer\Programmes\Démarrage>
File Path = C:\Documents and Settings\MADELAINE Arnaud\Menu Démarrer\Programmes\Démarrage\desktop.ini File Size = 4096 md5=d6a6856702e3f0953e7246a9b4a9fe35
#############################SERVICES DATA#############################
Service Name = ALG Service Display Name = Service de la passerelle de la couche Application Opened = YES Status = Running Query = SUCCESS Service Type = 16 Service Start Type = 3 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\alg.exe Binary Size = 44544 Binary MD5 = 2fe681d10c5fc343dbbc0610b8dd4d24
Service Name = Ati HotKey Poller Service Display Name = Ati HotKey Poller Opened = YES Status = Running Query = SUCCESS Service Type = 272 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\Ati2evxx.exe Binary Size = 405504 Binary MD5 = 0d5a84bd7a7b906774b86f62d09aa043
Service Name = AudioSrv Service Display Name = Audio Windows Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = Avg7Alrt Service Display Name = AVG7 Alert Manager Server Opened = YES Status = Running Query = SUCCESS Service Type = 272 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe Binary Size = 336896 Binary MD5 = 71599f550d4d892671dba3f05efafb71
Service Name = Avg7UpdSvc Service Display Name = AVG7 Update Service Opened = YES Status = Running Query = SUCCESS Service Type = 16 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe Binary Size = 84480 Binary MD5 = 66093610fa61142f6bcfd83afb7e8a29
Service Name = BITS Service Display Name = Service de transfert intelligent en arrière-plan Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = CryptSvc Service Display Name = Services de cryptographie Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = DcomLaunch Service Display Name = Lanceur de processus serveur DCOM Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost -k DcomLaunch Binary Size = 0 Binary MD5 =
Service Name = Dhcp Service Display Name = Client DHCP Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = Dnscache Service Display Name = Client DNS Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k NetworkService Binary Size = 0 Binary MD5 =
Service Name = ERSvc Service Display Name = Service de rapport d'erreurs Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 0 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = Eventlog Service Display Name = Journal des événements Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\services.exe Binary Size = 108544 Binary MD5 = 732e0b1abaace15d80ec19056b0a2af9
Service Name = EventSystem Service Display Name = Système d'événements de COM+ Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 3 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = FastUserSwitchingCompatibility Service Display Name = Compatibilité avec le Changement rapide d'utilisateur Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 3 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = helpsvc Service Display Name = Aide et support Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = HidServ Service Display Name = HID Input Service Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = Irmon Service Display Name = Moniteur infrarouge Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = lanmanserver Service Display Name = Serveur Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = lanmanworkstation Service Display Name = Station de travail Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = LmHosts Service Display Name = Assistance TCP/IP NetBIOS Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k LocalService Binary Size = 0 Binary MD5 =
Service Name = MDM Service Display Name = Machine Debug Manager Opened = YES Status = Running Query = SUCCESS Service Type = 272 Service Start Type = 2 Service Error Control = 1 Service Binary Path = "C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE" Binary Size = 0 Binary MD5 =
Service Name = Netman Service Display Name = Connexions réseau Opened = YES Status = Running Query = SUCCESS Service Type = 288 Service Start Type = 3 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = Nla Service Display Name = NLA (Network Location Awareness) Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 3 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = PlugPlay Service Display Name = Plug-and-Play Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\services.exe Binary Size = 108544 Binary MD5 = 732e0b1abaace15d80ec19056b0a2af9
Service Name = PolicyAgent Service Display Name = Services IPSEC Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\lsass.exe Binary Size = 13312 Binary MD5 = 9f3744a5c6f49291a7a685040a013399
Service Name = ProtectedStorage Service Display Name = Emplacement protégé Opened = YES Status = Running Query = SUCCESS Service Type = 288 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\lsass.exe Binary Size = 13312 Binary MD5 = 9f3744a5c6f49291a7a685040a013399
Service Name = RasAuto Service Display Name = Gestionnaire de connexion automatique d'accès distant Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = RasMan Service Display Name = Gestionnaire de connexions d'accès distant Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 3 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = RpcSs Service Display Name = Appel de procédure distante (RPC) Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost -k rpcss Binary Size = 0 Binary MD5 =
Service Name = SamSs Service Display Name = Gestionnaire de comptes de sécurité Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\lsass.exe Binary Size = 13312 Binary MD5 = 9f3744a5c6f49291a7a685040a013399
Service Name = Schedule Service Display Name = Planificateur de tâches Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = seclogon Service Display Name = Connexion secondaire Opened = YES Status = Running Query = SUCCESS Service Type = 288 Service Start Type = 2 Service Error Control = 0 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = SENS Service Display Name = Notification d'événement système Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = SharedAccess Service Display Name = Pare-feu Windows / Partage de connexion Internet Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = ShellHWDetection Service Display Name = Détection matériel noyau Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 0 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = SLService Service Display Name = SmartLinkService Opened = YES Status = Running Query = SUCCESS Service Type = 272 Service Start Type = 2 Service Error Control = 1 Service Binary Path = slserv.exe Binary Size = 57344 Binary MD5 = b84b6c9716d93ce0698e2486890cf678
Service Name = Spooler Service Display Name = Spouleur d'impression Opened = YES Status = Running Query = SUCCESS Service Type = 272 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\spoolsv.exe Binary Size = 57856 Binary MD5 = da81ec57acd4cdc3d4c51cf3d409af9f
Service Name = srservice Service Display Name = Service de restauration système Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = SSDPSRV Service Display Name = Service de découvertes SSDP Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 3 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k LocalService Binary Size = 0 Binary MD5 =
Service Name = stisvc Service Display Name = Acquisition d'image Windows (WIA) Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k imgsvc Binary Size = 0 Binary MD5 =
Service Name = TapiSrv Service Display Name = Téléphonie Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 3 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = TermService Service Display Name = Services Terminal Server Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 3 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost -k DComLaunch Binary Size = 0 Binary MD5 =
Service Name = Themes Service Display Name = Thèmes Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = TrkWks Service Display Name = Client de suivi de lien distribué Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = UMWdf Service Display Name = Windows User Mode Driver Framework Opened = YES Status = Running Query = SUCCESS Service Type = 16 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\wdfmgr.exe Binary Size = 38912 Binary MD5 = ab0a7ca90d9e3d6a193905dc1715ded0
Service Name = W32Time Service Display Name = Horloge Windows Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = WebClient Service Display Name = WebClient Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k LocalService Binary Size = 0 Binary MD5 =
Service Name = winmgmt Service Display Name = Infrastructure de gestion Windows Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 0 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = wscsvc Service Display Name = Centre de sécurité Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = wuauserv Service Display Name = Mises à jour automatiques Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\system32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
Service Name = WZCSVC Service Display Name = Configuration automatique sans fil Opened = YES Status = Running Query = SUCCESS Service Type = 32 Service Start Type = 2 Service Error Control = 1 Service Binary Path = C:\WINDOWS\System32\svchost.exe -k netsvcs Binary Size = 0 Binary MD5 =
#############################WINLOGON DATA#############################
<HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\NOTIFY>
Subkey Name = Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent Filepath = C:\WINDOWS\system32\Ati2evxx.dll File Size = 90112 File MD5 = ff9e07fd13161d4b4f3ef1792675516b
Subkey Name = Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\crypt32chain Filepath = C:\WINDOWS\system32\crypt32.dll File Size = 604672 File MD5 = fd8631128e14583f135eb4b3f37ef626
Subkey Name = Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cryptnet Filepath = C:\WINDOWS\system32\cryptnet.dll File Size = 63488 File MD5 = 344dcb5a0c57e0fc3714c5e5e5fbc232
Subkey Name = Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cscdll Filepath = C:\WINDOWS\system32\cscdll.dll File Size = 102912 File MD5 = fbc2cd20b107b6525dfee9f6e41dcc8b
Subkey Name = Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\NavLogon Filepath = C:\WINDOWS\system32\NavLogon.dll File Size = 45056 File MD5 = c8d5ebecf889534fe52537f18cfeb1c0
Subkey Name = Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ScCertProp Filepath = C:\WINDOWS\system32\wlnotify.dll File Size = 94208 File MD5 = 8201bb13554a855cabd88bbf14b2166b
Subkey Name = Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\Schedule Filepath = C:\WINDOWS\system32\wlnotify.dll File Size = 94208 File MD5 = 8201bb13554a855cabd88bbf14b2166b
Subkey Name = Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\sclgntfy Filepath = C:\WINDOWS\system32\sclgntfy.dll File Size = 22016 File MD5 = 83db3b831c845699ad4f6bfb37c4790c
Subkey Name = Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\SensLogn Filepath = C:\WINDOWS\system32\WlNotify.dll File Size = 94208 File MD5 = 8201bb13554a855cabd88bbf14b2166b
Subkey Name = Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\termsrv Filepath = C:\WINDOWS\system32\wlnotify.dll File Size = 94208 File MD5 = 8201bb13554a855cabd88bbf14b2166b
Subkey Name = Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\wlballoon Filepath = C:\WINDOWS\system32\wlnotify.dll File Size = 94208 File MD5 = 8201bb13554a855cabd88bbf14b2166b
Subkey Name = Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WRNotifier Filepath = File Size = 94208 File MD5 = 8201bb13554a855cabd88bbf14b2166b
##########################BROWSER ADD-ON DATA##########################
<HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar>
CLSID = {EE5D279F-081B-4404-994D-C6B60AAEBA6D} FilePath = C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll File Size = 0 File MD5 = Description = 0
CLSID = {92085AD4-F48A-450D-BD93-B28CC7DF67CE} FilePath = C:\Program Files\eBay\eBay Toolbar2\eBayTB.dll File Size = 0 File MD5 = Description =
<HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Explorer Bars>
CLSID = {4D5C8C25-D075-11d0-B416-00C04FB90376} FilePath = C:\WINDOWS\system32\shdocvw.dll File Size = 1486336 File MD5 = f2845dde9918730782153e909aba0bc3
<HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Explorer Bars>
CLSID = {30D02401-6A81-11D0-8274-00C04FD5AE38} FilePath = C:\WINDOWS\system32\browseui.dll File Size = 1020416 File MD5 = 5d7aebb6efeef36d4b0c70f647d1e464
CLSID = {EFA24E61-B078-11D0-89E4-00C04FC9E26E} FilePath = C:\WINDOWS\system32\shdocvw.dll File Size = 1486336 File MD5 = f2845dde9918730782153e909aba0bc3
CLSID = {EFA24E62-B078-11D0-89E4-00C04FC9E26E} FilePath = C:\WINDOWS\system32\shdocvw.dll File Size = 1486336 File MD5 = f2845dde9918730782153e909aba0bc3
<HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects>
CLSID = {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} FilePath = C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll File Size = 0 File MD5 =
CLSID = {e9ccf15d-4c68-4b5a-9e9a-8e12e4bd39bd} FilePath = C:\WINDOWS\system32\hp59A.tmp File Size = 16384 File MD5 = d1142b374e5eda56a6da2724fc7bc0e2
<HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Extensions>
CLSID = {08B0E5C0-4FCB-11CF-AAA5-00401C608501} FilePath = File Size = 0 File MD5 =
CLSID = {85d1f590-48f4-11d9-9669-0800200c9a66} FilePath = File Size = 0 File MD5 =
CLSID = {92780B25-18CC-41C8-B9BE-3C9C571A8263} FilePath = File Size = 0 File MD5 =
CLSID = {FB5F1910-F110-11d2-BB9E-00C04F795683} FilePath = File Size = 0 File MD5 =
<HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Extensions>
CLSID = CmdMapping FilePath = File Size = 0 File MD5 =
<HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks>
CLSID = {CFBFAE00-17A6-11D0-99CB-00C04FD64497} FilePath = C:\WINDOWS\system32\shdocvw.dll File Size = 1486336 File MD5 = f2845dde9918730782153e909aba0bc3 Description =
##########################LSP CHAIN DATA##########################
<HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\SERVICES\WINSOCK2\PARAMETERS>
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000001 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 247808 File MD5 = ccdd3433f3c3bd0d8502b38fd155b2f0
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000002 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 247808 File MD5 = ccdd3433f3c3bd0d8502b38fd155b2f0
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000003 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 247808 File MD5 = ccdd3433f3c3bd0d8502b38fd155b2f0
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000004 Filepath = C:\WINDOWS\system32\rsvpsp.dll File Size = 90112 File MD5 = bc3752885b2ec7bf57fc6f9b23f2c8d5
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000005 Filepath = C:\WINDOWS\system32\rsvpsp.dll File Size = 90112 File MD5 = bc3752885b2ec7bf57fc6f9b23f2c8d5
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000006 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 247808 File MD5 = ccdd3433f3c3bd0d8502b38fd155b2f0
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000007 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 247808 File MD5 = ccdd3433f3c3bd0d8502b38fd155b2f0
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000008 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 247808 File MD5 = ccdd3433f3c3bd0d8502b38fd155b2f0
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000009 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 247808 File MD5 = ccdd3433f3c3bd0d8502b38fd155b2f0
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000010 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 247808 File MD5 = ccdd3433f3c3bd0d8502b38fd155b2f0
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000011 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 247808 File MD5 = ccdd3433f3c3bd0d8502b38fd155b2f0
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000012 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 247808 File MD5 = ccdd3433f3c3bd0d8502b38fd155b2f0
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000013 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 247808 File MD5 = ccdd3433f3c3bd0d8502b38fd155b2f0
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000014 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 247808 File MD5 = ccdd3433f3c3bd0d8502b38fd155b2f0
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000015 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 247808 File MD5 = ccdd3433f3c3bd0d8502b38fd155b2f0
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000016 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 247808 File MD5 = ccdd3433f3c3bd0d8502b38fd155b2f0
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000017 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 247808 File MD5 = ccdd3433f3c3bd0d8502b38fd155b2f0
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000018 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 247808 File MD5 = ccdd3433f3c3bd0d8502b38fd155b2f0
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000019 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 247808 File MD5 = ccdd3433f3c3bd0d8502b38fd155b2f0
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000020 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 247808 File MD5 = ccdd3433f3c3bd0d8502b38fd155b2f0
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000021 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 247808 File MD5 = ccdd3433f3c3bd0d8502b38fd155b2f0
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000022 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 247808 File MD5 = ccdd3433f3c3bd0d8502b38fd155b2f0
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000023 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 247808 File MD5 = ccdd3433f3c3bd0d8502b38fd155b2f0
Sequence Num = SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000024 Filepath = C:\WINDOWS\system32\mswsock.dll File Size = 247808 File MD5 = ccdd3433f3c3bd0d8502b38fd155b2f0
##########################UNINSTALL DATA##########################
<HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL>
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Ad-Aware SE Personal DisplayName = Ad-Aware SE Personal
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\AddressBook
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\All ATI Software DisplayName = ATI - Utilitaire de désinstallation du logiciel InstallLocation = C:\Program Files\ATI Technologies\UninstallAll
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\ATI Display Driver DisplayName = ATI Display Driver
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\AVG7Uninstall DisplayName = AVG Free Edition
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Branding
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Connection Manager
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\DirectAnimation
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\DirectDrawEx
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\DXM_Runtime
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\EPSON Printer and Utilities DisplayName = EPSON Logiciel imprimante
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\EPSON Scanner DisplayName = EPSON Scan
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\ESPRX420 Guide de réf. DisplayName = ESPRX420 Guide de réf. InstallLocation = C:\Program Files\EPSON\TPMANUAL\ESPRX420\REF_G
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\ESPRX420 Guide des logiciels DisplayName = ESPRX420 Guide des logiciels InstallLocation = C:\Program Files\EPSON\TPMANUAL\ESPRX420\PQU_G
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Fontcore
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Free.fr DisplayName = Free - Kit de connexion
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\HijackThis DisplayName = HijackThis 1.99.1
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\ICW
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\IE40
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\IE4Data
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\IE5BAKEX
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\IEData
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\InstallShield Uninstall Information
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\InstallShield_{3D249F10-79EC-48D4-93E5-C470ABE523FA} DisplayName = Nokia Connectivity Cable Driver InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\InstallShield_{617095DB-B523-4D11-BBFD-2D74C2AD98B8} DisplayName = Nokia PC Suite InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB834707 DisplayName = Correctif Windows XP - KB834707
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB836435 DisplayName = Correctif Windows XP - KB836435
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB867282 DisplayName = Correctif Windows XP - KB867282
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB873333 DisplayName = Correctif Windows XP - KB873333
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB873339 DisplayName = Correctif Windows XP - KB873339
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB883667 DisplayName = Correctif Windows XP - KB883667
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB883939 DisplayName = Mise à jour de sécurité pour Windows XP (KB883939)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB884016
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB884020 DisplayName = Correctif Windows XP - KB884020
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB884575 DisplayName = Correctif Windows XP - KB884575
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB885250 DisplayName = Correctif Windows XP - KB885250
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB885835 DisplayName = Correctif Windows XP - KB885835
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB885836 DisplayName = Correctif Windows XP - KB885836
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB885884 DisplayName = Correctif Windows XP - KB885884
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB885894 DisplayName = Correctif Windows XP - KB885894
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB886185 DisplayName = Correctif Windows XP - KB886185
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB887472 DisplayName = Correctif Windows XP - KB887472
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB887742 DisplayName = Correctif Windows XP - KB887742
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB888113 DisplayName = Correctif Windows XP - KB888113
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB888302 DisplayName = Correctif Windows XP - KB888302
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB890046 DisplayName = Mise à jour de sécurité pour Windows XP (KB890046)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB890047 DisplayName = Correctif Windows XP - KB890047
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB890175 DisplayName = Correctif Windows XP - KB890175
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB890859 DisplayName = Correctif Windows XP - KB890859
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB890923 DisplayName = Correctif Windows XP - KB890923
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB891781 DisplayName = Correctif Windows XP - KB891781
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB893066 DisplayName = Correctif Windows XP - KB893066
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB893086 DisplayName = Correctif Windows XP - KB893086
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB893756 DisplayName = Mise à jour de sécurité pour Windows XP (KB893756)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB893803 DisplayName = Windows Installer 3.1 (KB893803)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB893803v2 DisplayName = Windows Installer 3.1 (KB893803)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB894391 DisplayName = Mise à jour pour Windows XP (KB894391)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB896358 DisplayName = Mise à jour de sécurité pour Windows XP (KB896358)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB896422 DisplayName = Mise à jour de sécurité pour Windows XP (KB896422)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB896423 DisplayName = Mise à jour de sécurité pour Windows XP (KB896423)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB896424 DisplayName = Mise à jour de sécurité pour Windows XP (KB896424)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB896428 DisplayName = Mise à jour de sécurité pour Windows XP (KB896428)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB896688 DisplayName = Mise à jour de sécurité pour Windows XP (KB896688)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB896727 DisplayName = Mise à jour pour Windows XP (KB896727)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB898458 DisplayName = Mise à jour de sécurité pour Step by Step Interactive Training (KB898458)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB898461 DisplayName = Mise à jour pour Windows XP (KB898461)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB899587 DisplayName = Mise à jour de sécurité pour Windows XP (KB899587)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB899588 DisplayName = Mise à jour de sécurité pour Windows XP (KB899588)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB899591 DisplayName = Mise à jour de sécurité pour Windows XP (KB899591)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB900725 DisplayName = Mise à jour de sécurité pour Windows XP (KB900725)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB901017 DisplayName = Mise à jour de sécurité pour Windows XP (KB901017)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB901214 DisplayName = Mise à jour de sécurité pour Windows XP (KB901214)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB902400 DisplayName = Mise à jour de sécurité pour Windows XP (KB902400)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB903235 DisplayName = Mise à jour de sécurité pour Windows XP (KB903235)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB904706 DisplayName = Mise à jour de sécurité pour Windows XP (KB904706)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB905414 DisplayName = Mise à jour de sécurité pour Windows XP (KB905414)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\KB905749 DisplayName = Mise à jour de sécurité pour Windows XP (KB905749)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Language pack for Ad-Aware SE DisplayName = Language pack for Ad-Aware SE
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\LiveUpdate DisplayName = LiveUpdate 1.90 (Symantec Corporation) InstallLocation = C:\Program Files\Symantec\LiveUpdate
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\M886903 DisplayName = Microsoft .NET Framework 1.1 Hotfix (KB886903)
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Microsoft .NET Framework 1.1 (1033) DisplayName = Microsoft .NET Framework 1.1
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Microsoft Interactive Training
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\MobileOptionPack
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\MPlayer2
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\MSI30-Beta1
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\MSI30-Beta2
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\MSI30-KB884016
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\MSI30-RC1
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\MSI30-RC2
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\MSI30a-KB884016
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\MSI31-Beta
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\MSI31-RC1
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\MSNINST DisplayName = MSN
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\NetMeeting
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\OutlookExpress
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\PCHealth
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\SchedulingAgent
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\ShockwaveFlash DisplayName = Macromedia Flash Player 8
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\SynTPDeinstKey DisplayName = Synaptics Pointing Device Driver
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\VIA Audio Driver Setup Program DisplayName = VIA Audio Driver Setup Program
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Web TV DisplayName = Web TV
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Win TV Pro Free DisplayName = Win TV Pro Free
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Windows Media Format Runtime DisplayName = Windows Media Format Runtime
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\Windows Media Player DisplayName = Lecteur Windows Media 10
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\WinZip DisplayName = WinZip
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\XviD_is1 DisplayName = XviD MPEG-4 Video Codec InstallLocation = C:\Program Files\XviD\
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{0BEDBD4E-2D34-47B5-9973-57E62B29307C} DisplayName = ATI Control Panel
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{109D28C7-FB38-483A-9C91-001CB59E2699} DisplayName = EPSON CardMonitor
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{18D10072035C4515918F7E37EAFAACFC}
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{23B59ED4-C360-11D7-875B-0090CC005647} DisplayName = EPSON PRINT Image Framer Tool2.1
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{23EFDB58-0874-4883-9810-EDA510B19FAE}
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{2BB79C8D-9DCC-4861-8A23-AE1B0B45E2B6}
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{3248F0A8-6813-11D6-A77B-00B0D0150040} DisplayName = J2SE Runtime Environment 5.0 Update 4 InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{350C940c-3D7C-4EE8-BAA9-00BCB3D54227} DisplayName = WebFldrs XP InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{3C1B8CBC-9118-11D7-86D3-00055DF3561E}
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{3D249F10-79EC-48D4-93E5-C470ABE523FA} DisplayName = Nokia Connectivity Cable Driver InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{3DB5FD00-BB93-4AF3-B925-77DAA0E4E2F4} DisplayName = eBay Toolbar InstallLocation = C:\Program Files\eBay\eBay Toolbar2\
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{3DE5E7D4-7B88-403C-A3FD-2017A8240C5B} DisplayName = Google Earth InstallLocation = C:\Program Files\Google\Google Earth
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{4DEFAA0B-3E04-4ADD-B037-5E93EFA3FAD9} DisplayName = USB-SIR Adapter Device InstallLocation = C:\Program Files\MosSir\
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{617095DB-B523-4D11-BBFD-2D74C2AD98B8} DisplayName = Nokia PC Suite InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{62369F2F77534556AEF4C58152E3BDE5}
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{63569CE9-FA00-469C-AF5C-E5D4D93ACF91} DisplayName = Windows Genuine Advantage v1.3.0254.0 InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{65F5B7AF-3363-11D7-BB6B-00018021113F} DisplayName = EPSON PhotoQuicker3.5
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{66C8BE35-8BBB-472B-96C7-C7C9A499F988} DisplayName = PhotoImpression 5
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{67EDD823-135A-4D59-87BD-950616D6E857} DisplayName = EPSON Copy Utility 3 InstallLocation = C:\Program Files\EPSON\Utility Suite\Copy Utility
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{6C11D561-620B-47DA-A693-4C597F3CDF40} DisplayName = EPSON Smart Panel
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{775FFF70-4A8C-4500-908D-3C34DBEB11D5}
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{7B63B2922B174135AFC0E1377DD81EC2}
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{7BD0A2D8-4EA0-43C6-BDF8-DDA87B8031C6} DisplayName = PIF DESIGNER2.1
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{7F14F68C-17FA-4F88-B3FD-7F449C1EBF32} DisplayName = EPSON Web-To-Page InstallLocation = C:\Program Files\EPSON\EPSON Web-To-Page
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{83021AC3-086F-4B77-ACCD-1BD7C9AB211E}
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{8ADFC4160D694100B5B8A22DE9DCABD9}
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{9011040C-6000-11D3-8CFE-0150048383C9} DisplayName = Microsoft Office Professional Edition 2003 InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{90AF040C-6000-11D3-8CFE-0150048383C9} DisplayName = Microsoft Office PowerPoint Viewer 2003 InstallLocation = C:\Program Files\Microsoft Office\
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{91810AFC-A4F8-4EBA-A5AA-B198BBC81144} DisplayName = InterVideo WinDVD InstallLocation = C:\Program Files\InterVideo\WinDVD
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{9A394342-4A68-4EBA-85A6-55B559F4E700} DisplayName = Microsoft .NET Framework 1.1 French Language Pack InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{A059DE09-1B49-4450-B340-7AE097EC3F04} DisplayName = Microsoft Works InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{AC76BA86-7AD7-1036-7B44-000000000001} DisplayName = Adobe Reader 6.0 - Français InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{B13A7C41581B411290FBC0395694E2A9}
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{B14F9B26-D695-4C4A-8B11-0FE6CDCC797B}
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{B947EFD7-D033-49E2-B837-F43C9D73AD4A} DisplayName = Tsunami-Filter-Pack Mini
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{BAFD3C1E-03EC-11DA-BFBD-00065BBDC0B5} DisplayName = MSN Messenger 7.5 InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{C48817E7-AA05-4151-A99D-1E1E550CE801} DisplayName = EPSON PhotoStarter3.1
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1} DisplayName = Microsoft .NET Framework 1.1 InstallLocation =
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{E213C271-AEFA-481D-A9B4-914D88925B8D}
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{EBAE381B-60A6-4863-AA9F-FCAB755BC9E5} DisplayName = ScanToWeb
Subkey Name = Software\Microsoft\Windows\CurrentVersion\Uninstall\{EE5B8E34-973C-4FBE-AC83-99F064009FC7} DisplayName = SpyHunter InstallLocation = C:\Program Files\Enigma Software Group\SpyHunter
ben13010
Messages postés
3356
Date d'inscription
vendredi 24 septembre 2004
Statut
Contributeur
Dernière intervention
5 octobre 2012
387
13 nov. 2005 à 19:04
13 nov. 2005 à 19:04
re
Au fait, j'ai lu sur le blog qu'il etait aussi interressant d'utiliser SpyHunter
quel blog ??? il fait autorité ton blog en matiere de securité ?
si balltrap te dis de le virer , fais le
ciao
Au fait, j'ai lu sur le blog qu'il etait aussi interressant d'utiliser SpyHunter
quel blog ??? il fait autorité ton blog en matiere de securité ?
si balltrap te dis de le virer , fais le
ciao
balltrap34
Messages postés
16240
Date d'inscription
jeudi 8 janvier 2004
Statut
Contributeur sécurité
Dernière intervention
28 novembre 2009
331
13 nov. 2005 à 19:07
13 nov. 2005 à 19:07
il a ete declarer comme rogue pendent un certain temp
a priorie il ont revue leur copie et ne le serait plus
perso je fait pas confiance
a priorie il ont revue leur copie et ne le serait plus
perso je fait pas confiance
ptiono
Messages postés
146
Date d'inscription
dimanche 13 novembre 2005
Statut
Membre
Dernière intervention
21 avril 2013
1
13 nov. 2005 à 19:20
13 nov. 2005 à 19:20
Messieurs, je vous confirme que cette saloperie de virus est encore sur mon ordi.....que faire de plus
Merci de votre aide
Merci de votre aide
13 nov. 2005 à 16:13
sse
ne sais pas quoi faire car ai tenter plusieurs anti espions
merci