Mon pc rame peut on m aidez

Bonjour,
mon pc rame est que quelqu'un peut m aider en faisant une analyse de mon pc je ni comprend rien merci d avance

22 réponses

Résumé de la discussion

Ralentissement d’un PC sous Windows Vista et Internet Explorer 8, nécessitant une analyse complète pour identifier les programmes indésirables et les processus saturant la machine. Plusieurs éléments indiquent une infection par adwares et barres d’outils indésirables, comme des BHO et des objets de démarrage inhabituels, nécessitant une désinfection par des outils dédiés. Des recommandations recommandent Malwarebytes Anti-Malware pour un balayage complet et AD-R pour la suppression des adwares, puis la vérification des éléments de démarrage et des extensions; certains composants détectés peuvent être légitimes selon les éditeurs.

Bobot (l’IA à votre service)
  1. Contributeur
    Bonjour bonjour,
    Ce n'est pas forcément infectieux, mais on va voir ça.

    Utilise ce logiciel de diagnostic :

    * Télécharge ZHPDiag (de Nicolas Coolman)
    * Laisse toi guider lors de l'installation, il se lancera automatiquement à la fin.
    * Clique sur l'icône représentant une loupe (« Lancer le diagnostic »)
    * Enregistre le rapport sur ton Bureau à l'aide de l'icône représentant une disquette
    * Héberge le rapport ZHPDiag.txt sur ce site, puis copie/colle le lien fourni dans ta prochaine réponse sur le forum.
    0
    1. Modérateur
      Salut,

      Bienvenue sur CCM, on va regarder ensemble si ton PC n'est pas infecté.
      Suis bien mes instructions et n'hésite pas à poser des questions en cas de doute pour les manipulations à exécuter.

      Pour établir un diagnostic plus en profondeur de ton PC :
      Télécharge Random's System Information Tool (RSIT) de random/random et enregistre l'exécutable sur le Bureau.
      = = = = >>> En cliquant ici <<< = = = =

      * Clique droit sur RSIT.exe puis sélectionne `Exécuter en tant qu'administrateur` pour le lancer.
      * Une première fenêtre s'ouvre, clique alors sur Continue (Disclaimer).
      * Si la dernière version de HijackThis n'est pas détectée sur ton PC, RSIT le téléchargera et te demandera d'accepter la licence.
      * Lorsque l'analyse sera terminée, deux fichiers texte s'ouvriront (probablement avec le bloc-notes).
      * Poste le contenu de log.txt et de info.txt.

      Si tu as des soucis pour envoyer le fichier, héberge-le sur cijoint.fr.
      Aide en images.
      0
      1. ok merci je vais commence valuu
        0
        1. Logfile of random's system information tool 1.08 (written by random/random)
          Run by guezennec at 2011-01-08 12:58:49
          Microsoft® Windows Vista(TM) Édition Familiale Premium Service Pack 2
          System drive C: has 50 GB (36%) free of 140 GB
          Total RAM: 2814 MB (51% free)

          HijackThis download failed

          ======Scheduled tasks folder======

          C:\Windows\tasks\Extension de garantie-guezennec.job
          C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
          C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
          C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3266656020-2137407233-1988299294-1000Core.job
          C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3266656020-2137407233-1988299294-1000UA.job
          C:\Windows\tasks\Norton Security Scan for guezennec.job
          C:\Windows\tasks\PCConfidential.job
          C:\Windows\tasks\User_Feed_Synchronization-{7E0DE096-B4B7-47BC-B192-1428A48B46FC}.job

          ======Registry dump======

          [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0579B4B1-0293-4d73-B02D-5EBB0BA0F0A2}]
          Ask Search Assistant BHO - C:\Program Files\AskSBar\SrchAstt\1.bin\A2SRCHAS.DLL [2008-09-18 66912]

          [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
          Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-22 75200]

          [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{240373D3-4199-4F41-BB4D-15D5B830C82D}]
          iGraal BHO - C:\Program Files\iGraal\iGraalBHO.dll [2010-11-19 587024]

          [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
          Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2010-09-22 191792]

          [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
          Programme d'aide de l'Assistant de connexion Windows Live - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]

          [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
          Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2010-12-02 297648]

          [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
          Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.6.5805.1910\swg.dll [2010-12-02 843832]

          [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CA6319C0-31B7-401E-A518-A07C3DB8F777}]
          CBrowserHelperObject Object - C:\Program Files\Google\Google_BAE\BAE.dll [2006-11-09 98304]

          [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]
          Bing Bar BHO - C:\Program Files\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll [2010-09-22 612616]

          [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
          Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-09-15 41760]

          [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F0626A63-410B-45E2-99A1-3F2475B2D695}]
          Search Assistant - C:\Program Files\SGPSA\BHO.dll [2009-11-10 292864]

          [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F0D4B231-DA4B-4daf-81E4-DFEE4931A4AA}]
          Ask Toolbar BHO - C:\Program Files\AskSBar\bar\1.bin\ASKSBAR.DLL [2008-09-18 262144]

          [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FCBCCB87-9224-4B8D-B117-F56D924BEB18}]
          Fast Browser Search Toolbar Helper - C:\Program Files\Fast Browser Search\IE\FBStoolbar.dll [2009-08-13 2602368]

          [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
          {F0D4B239-DA4B-4daf-81E4-DFEE4931A4AA} - Ask Toolbar - C:\Program Files\AskSBar\bar\1.bin\ASKSBAR.DLL [2008-09-18 262144]
          {381FFDE8-2394-4f90-B10D-FC6124A40F8C} - BitDefender Toolbar - C:\Program Files\BitDefender\BitDefender 2009\IEToolbar.dll [2009-04-06 95536]
          {1BB22D38-A411-4B13-A746-C2A4F4EC7344} - Fast Browser Search - C:\Program Files\Fast Browser Search\IE\FBStoolbar.dll [2009-08-13 2602368]
          {8dcb7100-df86-4384-8842-8fa844297b3f} - @C:\Program Files\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll,-100 - C:\Program Files\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll [2010-09-22 612616]
          {A6790AA5-C6C7-4BCF-A46D-0FDAC4EA90EB} - iGraal Toolbar - C:\Program Files\iGraal\iGraalToolbar.dll [2010-11-19 830736]
          {2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2010-12-02 297648]

          [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
          "*WerKernelReporting"=C:\Windows\SYSTEM32\WerFault.exe [2009-04-11 217088]

          [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
          "SmpcSys"=C:\Program Files\Packard Bell\SetUpMyPC\SmpSys.exe [2008-02-04 1038136]
          "IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe [2008-01-14 1688872]
          "Speech Recognition"=C:\Windows\Speech\Common\sapisvr.exe [2008-01-21 49664]
          "msnmsgr"=C:\Program Files\Windows Live\Messenger\msnmsgr.exe [2010-04-16 3872080]
          "swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2010-05-02 39408]
          "Google Update"=C:\Users\guezennec\AppData\Local\Google\Update\GoogleUpdate.exe [2010-10-19 136176]

          C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
          HP Digital Imaging Monitor.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
          Logitech SetPoint.lnk - C:\Program Files\Logitech\SetPoint\SetPoint.exe

          C:\Users\guezennec\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
          OneNote 2007 - Capture d'écran et lancement.lnk - C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
          OpenOffice.org 2.4.lnk - C:\Program Files\OpenOffice.org 2.4\program\quickstart.exe

          [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
          "AppInit_DLLs"="C:\PROGRA~1\Google\GOOGLE~3\GOEC62~1.DLL"

          [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]

          [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]

          [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]

          [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]

          [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
          "dontdisplaylastusername"=0
          "legalnoticecaption"=
          "legalnoticetext"=
          "shutdownwithoutlogon"=1
          "undockwithoutlogon"=1
          "EnableUIADesktopToggle"=0

          [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
          "NoDriveTypeAutoRun"=145

          [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
          "BindDirectlyToPropertySetStorage"=0

          [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

          [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

          ======File associations======

          .js - edit - C:\Windows\System32\Notepad.exe %1
          .reg - open - regedit.exe %1

          ======List of files/folders created in the last 1 months======

          2011-01-08 12:58:50 ----D---- C:\Program Files\trend micro
          2011-01-08 12:58:49 ----D---- C:\rsit
          2011-01-08 12:57:47 ----D---- C:\Program Files\ZHPDiag
          2011-01-08 12:39:26 ----AD---- C:\Navilog1
          2011-01-08 12:39:23 ----D---- C:\Program Files\Navilog1
          2011-01-06 19:05:15 ----D---- C:\Windows\system32\drivers\NSS
          2011-01-06 19:05:15 ----D---- C:\Program Files\Norton Security Scan
          2011-01-06 19:05:12 ----D---- C:\Program Files\NortonInstaller
          2010-12-17 09:16:38 ----A---- C:\Windows\system32\win32k.sys
          2010-12-17 09:16:31 ----A---- C:\Windows\system32\schedsvc.dll
          2010-12-17 09:16:30 ----A---- C:\Windows\system32\taskschd.dll
          2010-12-17 09:16:28 ----A---- C:\Windows\system32\wmicmiplugin.dll
          2010-12-17 09:16:28 ----A---- C:\Windows\system32\taskeng.exe
          2010-12-17 09:16:28 ----A---- C:\Windows\system32\taskcomp.dll
          2010-12-17 09:16:20 ----A---- C:\Windows\system32\consent.exe
          2010-12-17 09:16:15 ----A---- C:\Windows\system32\atmlib.dll
          2010-12-17 09:16:15 ----A---- C:\Windows\system32\atmfd.dll
          2010-12-17 09:16:13 ----A---- C:\Windows\system32\fontsub.dll
          2010-12-17 09:16:09 ----A---- C:\Windows\system32\iertutil.dll
          2010-12-17 09:16:05 ----A---- C:\Windows\system32\mshtml.dll
          2010-12-17 09:16:03 ----A---- C:\Windows\system32\mstime.dll
          2010-12-17 09:16:03 ----A---- C:\Windows\system32\ieframe.dll
          2010-12-17 09:16:00 ----A---- C:\Windows\system32\ie4uinit.exe
          2010-12-17 09:15:58 ----A---- C:\Windows\system32\wininet.dll
          2010-12-17 09:15:58 ----A---- C:\Windows\system32\urlmon.dll
          2010-12-17 09:15:58 ----A---- C:\Windows\system32\msfeeds.dll
          2010-12-17 09:15:57 ----A---- C:\Windows\system32\msfeedssync.exe
          2010-12-17 09:15:57 ----A---- C:\Windows\system32\iedkcs32.dll
          2010-12-17 09:15:55 ----A---- C:\Windows\system32\ieui.dll
          2010-12-17 09:15:54 ----A---- C:\Windows\system32\occache.dll
          2010-12-17 09:15:54 ----A---- C:\Windows\system32\ieUnatt.exe
          2010-12-17 09:15:54 ----A---- C:\Windows\system32\iesysprep.dll
          2010-12-17 09:15:54 ----A---- C:\Windows\system32\iepeers.dll
          2010-12-17 09:15:53 ----A---- C:\Windows\system32\mshtmled.dll
          2010-12-17 09:15:53 ----A---- C:\Windows\system32\msfeedsbs.dll
          2010-12-17 09:15:53 ----A---- C:\Windows\system32\licmgr10.dll
          2010-12-17 09:15:53 ----A---- C:\Windows\system32\jsproxy.dll
          2010-12-17 09:15:53 ----A---- C:\Windows\system32\iesetup.dll
          2010-12-17 09:15:53 ----A---- C:\Windows\system32\iernonce.dll
          2010-12-17 09:15:39 ----A---- C:\Windows\system32\tzres.dll
          2010-12-15 13:08:35 ----D---- C:\Users\guezennec\AppData\Roaming\PhotoScape
          2010-12-15 13:07:51 ----D---- C:\Program Files\PhotoScape
          2010-12-12 21:35:54 ----D---- C:\Windows\system32\WindowsPowerShell
          2010-12-12 21:31:44 ----A---- C:\Windows\system32\winrsmgr.dll
          2010-12-12 21:31:13 ----A---- C:\Windows\system32\wsmprovhost.exe
          2010-12-12 21:31:13 ----A---- C:\Windows\system32\winrshost.exe
          2010-12-12 21:31:13 ----A---- C:\Windows\system32\winrs.exe
          2010-12-12 21:31:10 ----A---- C:\Windows\system32\wsmplpxy.dll
          2010-12-12 21:31:10 ----A---- C:\Windows\system32\winrssrv.dll
          2010-12-12 21:31:05 ----A---- C:\Windows\system32\WsmRes.dll
          2010-12-12 21:31:05 ----A---- C:\Windows\system32\wevtfwd.dll
          2010-12-12 21:31:05 ----A---- C:\Windows\system32\wecutil.exe
          2010-12-12 21:31:05 ----A---- C:\Windows\system32\wecsvc.dll
          2010-12-12 21:31:05 ----A---- C:\Windows\system32\wecapi.dll
          2010-12-12 21:31:04 ----A---- C:\Windows\system32\pwrshplugin.dll
          2010-12-12 21:30:52 ----A---- C:\Windows\system32\winrm.vbs
          2010-12-12 21:30:47 ----A---- C:\Windows\system32\WsmWmiPl.dll
          2010-12-12 21:30:47 ----A---- C:\Windows\system32\WsmAuto.dll
          2010-12-12 21:30:47 ----A---- C:\Windows\system32\winrscmd.dll
          2010-12-12 21:30:46 ----A---- C:\Windows\system32\WSManMigrationPlugin.dll
          2010-12-12 21:30:46 ----A---- C:\Windows\system32\WSManHTTPConfig.exe
          2010-12-12 21:30:45 ----A---- C:\Windows\system32\WsmSvc.dll

          ======List of files/folders modified in the last 1 months======

          2011-01-08 12:58:54 ----D---- C:\Windows\Temp
          2011-01-08 12:58:50 ----RD---- C:\Program Files
          2011-01-08 12:58:44 ----D---- C:\Windows\prefetch
          2011-01-08 12:51:12 ----SHD---- C:\System Volume Information
          2011-01-08 12:35:18 ----D---- C:\Users\guezennec\AppData\Roaming\Azureus
          2011-01-08 12:15:26 ----D---- C:\Users\guezennec\AppData\Roaming\OpenOffice.org2
          2011-01-08 12:12:50 ----D---- C:\Windows\system32\drivers\etc
          2011-01-07 23:08:24 ----D---- C:\Windows\Minidump
          2011-01-07 23:08:24 ----D---- C:\Windows\Debug
          2011-01-07 23:08:24 ----D---- C:\Windows
          2011-01-06 23:14:27 ----D---- C:\Program Files\Microsoft Silverlight
          2011-01-06 20:45:59 ----AD---- C:\Windows\System32
          2011-01-06 20:03:21 ----SHD---- C:\Windows\Installer
          2011-01-06 19:05:25 ----D---- C:\Windows\Tasks
          2011-01-06 19:05:23 ----D---- C:\Windows\system32\Tasks
          2011-01-06 19:05:15 ----D---- C:\ProgramData\Norton
          2011-01-06 19:05:15 ----AD---- C:\Windows\system32\drivers
          2011-01-06 19:00:26 ----D---- C:\Windows\system32\Macromed
          2011-01-06 18:41:53 ----D---- C:\Windows\system32\config
          2011-01-06 18:41:46 ----D---- C:\Windows\system32\wbem
          2011-01-06 18:41:46 ----D---- C:\Windows\system32\spool
          2011-01-06 18:41:46 ----D---- C:\Windows\system32\catroot2
          2011-01-06 18:41:46 ----D---- C:\Windows\registration
          2011-01-06 18:41:46 ----D---- C:\Windows\inf
          2010-12-18 09:43:37 ----D---- C:\Windows\rescache
          2010-12-18 09:22:05 ----D---- C:\Program Files\Windows Mail
          2010-12-18 09:22:00 ----D---- C:\Windows\system32\migration
          2010-12-18 09:22:00 ----D---- C:\Program Files\Internet Explorer
          2010-12-17 20:17:57 ----D---- C:\ProgramData\Microsoft Help
          2010-12-17 20:16:48 ----D---- C:\Windows\winsxs
          2010-12-17 20:16:24 ----D---- C:\Program Files\Microsoft Works
          2010-12-17 20:12:05 ----D---- C:\Windows\system32\fr-FR
          2010-12-17 20:08:07 ----D---- C:\Windows\system32\catroot
          2010-12-17 20:02:18 ----A---- C:\Windows\system32\mrt.exe
          2010-12-16 09:15:18 ----D---- C:\ProgramData\Sonic
          2010-12-12 21:40:15 ----D---- C:\Windows\Microsoft.NET
          2010-12-12 21:38:46 ----RSD---- C:\Windows\assembly
          2010-12-12 21:35:58 ----D---- C:\Windows\PolicyDefinitions

          ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

          R0 PxHelp20;PxHelp20; C:\Windows\System32\Drivers\PxHelp20.sys [2008-06-16 44944]
          R1 bdftdif;bdftdif; \??\C:\Program Files\Common Files\BitDefender\BitDefender Firewall\bdftdif.sys [2009-08-21 137224]
          R2 BDVEDISK;BDVEDISK; \??\C:\Program Files\BitDefender\BitDefender 2009\BDVEDISK.sys [2009-01-21 82696]
          R3 bdfm;BDFM; C:\Windows\system32\drivers\bdfm.sys [2009-01-17 111112]
          R3 Bdfndisf;BitDefender Firewall NDIS Filter Service; C:\Windows\system32\DRIVERS\bdfndisf.sys [2009-08-21 104456]
          R3 bdfsfltr;bdfsfltr; C:\Windows\system32\DRIVERS\bdfsfltr.sys [2009-01-21 242184]
          R3 BDSelfPr;BDSelfPr; \??\C:\Program Files\BitDefender\BitDefender 2009\bdselfpr.sys [2009-04-07 8832]
          R3 Dot4;Pilote MS IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4.sys [2008-01-21 131584]
          R3 Dot4Print;Pilote de classe Imprimante pour IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4Prt.sys [2008-01-21 16384]
          R3 dot4usb;MS Dot4USB Filter Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2008-01-21 36864]
          R3 HdAudAddService;Microsoft UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\CHDART.sys [2007-11-05 182272]
          R3 LgBttPort;LGE Bluetooth TransPort; C:\Windows\system32\DRIVERS\lgbtport.sys [2009-05-25 12032]
          R3 lgbusenum;LG Bluetooth Bus Enumerator; C:\Windows\system32\DRIVERS\lgbtbus.sys [2009-05-25 10496]
          R3 LGVMODEM;LGE Virtual Modem; C:\Windows\system32\DRIVERS\lgvmodem.sys [2009-05-25 12928]
          R3 LHidFilt;Logitech SetPoint KMDF HID Filter Driver; C:\Windows\system32\DRIVERS\LHidFilt.Sys [2008-02-29 35344]
          R3 LMouFilt;Logitech SetPoint KMDF Mouse Filter Driver; C:\Windows\system32\DRIVERS\LMouFilt.Sys [2008-02-29 36880]
          R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvmfdx32.sys [2007-11-18 1040544]
          R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2007-09-19 7626400]
          R3 nvsmu;nvsmu; C:\Windows\system32\DRIVERS\nvsmu.sys [2007-02-16 12032]
          R3 RTL8187B;Realtek RTL8187B Wireless 802.11b/g 54Mbps USB 2.0 Network Adapter; C:\Windows\system32\DRIVERS\RTL8187B.sys [2007-10-05 288256]
          R3 RTSTOR;Realtek USB 2.0 Card Reader; C:\Windows\system32\drivers\RTSTOR.SYS [2008-06-23 62464]
          R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2007-02-09 182456]
          R3 usbaudio;Pilote USB audio (WDM); C:\Windows\system32\drivers\usbaudio.sys [2009-04-11 73216]
          R3 usbscan;Pilote de scanneur USB; C:\Windows\system32\DRIVERS\usbscan.sys [2008-01-21 35328]
          R3 vm331avs;Bison Webcam; C:\Windows\System32\Drivers\vm331avs.sys [2007-09-07 943016]
          R3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-21 83328]
          S3 Afc;PPdus ASPI Shell; C:\Windows\system32\drivers\Afc.sys []
          S3 androidusb;ADB Interface Driver; C:\Windows\System32\Drivers\androidusb.sys [2009-06-11 25728]
          S3 drmkaud;Filtre de décodeur DRM (Noyau Microsoft); C:\Windows\system32\drivers\drmkaud.sys [2008-01-21 5632]
          S3 lgmdbus;LG Mobile driver (WDM); C:\Windows\system32\DRIVERS\lgmdbus.sys [2008-07-08 89600]
          S3 lgmdmdfl;LG Mobile USB WMC Modem Filter; C:\Windows\system32\DRIVERS\lgmdmdfl.sys [2008-07-08 14976]
          S3 lgmdmdm;LG Mobile USB WMC Modem Driver; C:\Windows\system32\DRIVERS\lgmdmdm.sys [2008-07-08 121344]
          S3 lgmdmgmt;LG Mobile USB WMC Device Management Drivers (WDM); C:\Windows\system32\DRIVERS\lgmdmgmt.sys [2008-07-08 114944]
          S3 lgmdobex;LG Mobile USB WMC OBEX Interface; C:\Windows\system32\DRIVERS\lgmdobex.sys [2008-07-08 111232]
          S3 MSKSSRV;Proxy de service de répartition Microsoft; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-21 8192]
          S3 MSPCLOCK;Proxy d'horloge de répartition Microsoft; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-21 5888]
          S3 MSPQM;Proxy de gestion de qualité de répartition Microsoft; C:\Windows\system32\drivers\MSPQM.sys [2008-01-21 5504]
          S3 MSTEE;Convertisseur en T/site-à-site de répartition Microsoft; C:\Windows\system32\drivers\MSTEE.sys [2008-01-21 6016]
          S3 Profos;Profos; \??\C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\profos.sys [2009-01-17 13056]
          S3 qcusbser;Huawei USB Device for Legacy Serial Communication; C:\Windows\system32\DRIVERS\smusbser.sys [2009-07-08 106240]
          S3 sscdbus;SAMSUNG USB Composite Device driver (WDM); C:\Windows\system32\DRIVERS\sscdbus.sys [2005-08-17 58352]
          S3 sscdmdfl;SAMSUNG CDMA Modem Filter; C:\Windows\system32\DRIVERS\sscdmdfl.sys [2005-08-17 8272]
          S3 sscdmdm;SAMSUNG CDMA Modem Drivers; C:\Windows\system32\DRIVERS\sscdmdm.sys [2005-08-17 93872]
          S3 Trufos;Trufos; \??\C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\trufos.sys [2009-04-18 39808]
          S3 usbvideo;Périphérique vidéo USB (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2008-01-21 134016]
          S3 WINUSB;Pilote WinUsb; C:\Windows\system32\DRIVERS\WinUSB.SYS [2009-04-11 31616]
          S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2009-10-01 40448]
          S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2008-01-21 6656]
          S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-01-21 386616]
          S4 RxFilter;RxFilter; C:\Windows\system32\DRIVERS\RxFilter.sys [2008-08-11 57328]

          ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

          R2 AdobeActiveFileMonitor6.0;Adobe Active File Monitor V6; C:\Program Files\Adobe\Photoshop Elements 6.0\PhotoshopElementsFileAgent.exe [2007-09-10 124832]
          R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [2009-07-09 144712]
          R2 Bonjour Service;Service Bonjour; C:\Program Files\Bonjour\mDNSResponder.exe [2008-12-12 238888]
          R2 BthServ;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2008-01-21 21504]
          R2 hpqddsvc;Service HP CUE DeviceDiscovery; C:\Windows\system32\svchost.exe [2008-01-21 21504]
          R2 LIVESRV;BitDefender Desktop Update Service; C:\Program Files\Common Files\BitDefender\BitDefender Update Service\livesrv.exe [2009-10-07 413696]
          R2 Nero BackItUp Scheduler 3;Nero BackItUp Scheduler 3; C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe [2007-12-03 869672]
          R2 Net Driver HPZ12;Net Driver HPZ12; C:\Windows\System32\svchost.exe [2008-01-21 21504]
          R2 PLFlash DeviceIoControl Service;PLFlash DeviceIoControl Service; C:\Windows\system32\IoctlSvc.exe [2006-12-19 81920]
          R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2008-01-21 21504]
          R2 RapiMgr;@%windir%\WindowsMobile\rapimgr.dll,-104; C:\Windows\system32\svchost.exe [2008-01-21 21504]
          R2 SeaPort;SeaPort; C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2010-09-22 249136]
          R2 VSSERV;BitDefender Virus Shield; C:\Program Files\BitDefender\BitDefender 2009\vsserv.exe [2009-11-20 1638240]
          R2 WcesComm;@%windir%\WindowsMobile\wcescomm.dll,-40079; C:\Windows\system32\svchost.exe [2008-01-21 21504]
          R3 hpqcxs08;hpqcxs08; C:\Windows\system32\svchost.exe [2008-01-21 21504]
          R3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe [2008-01-14 447784]
          S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
          S2 gupdate1c98b023004a395;Google Update Service (gupdate1c98b023004a395); C:\Program Files\Google\Update\GoogleUpdate.exe [2009-02-09 133104]
          S2 Roxio Upnp Server 11;Roxio Upnp Server 11; C:\Program Files\Roxio Creator 2009\Digital Home 11\RoxioUpnpService11.exe [2008-08-14 367088]
          S2 RoxLiveShare11;LiveShare P2P Server 11; C:\Program Files\Common Files\Roxio Shared\11.0\SharedCOM\RoxLiveShare11.exe [2008-08-14 309744]
          S2 RoxWatch11;Roxio Hard Drive Watcher 11; C:\Program Files\Common Files\Roxio Shared\11.0\SharedCOM\RoxWatch11.exe [2008-08-14 170480]
          S3 Arrakis3;BitDefender Arrakis Server; C:\Program Files\Common Files\BitDefender\BitDefender Arrakis Server\bin\Arrakis3.exe [2008-07-17 118784]
          S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2008-06-26 647680]
          S3 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-21 21504]
          S3 GoogleDesktopManager-051210-111108;Google Desktop Manager 5.9.1005.12335; C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [2010-06-15 30192]
          S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-05-03 182768]
          S3 LBTServ;Logitech Bluetooth Service; C:\Program Files\Common Files\Logitech\Bluetooth\LBTServ.exe [2008-05-02 121360]
          S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
          S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
          S3 Roxio UPnP Renderer 11;Roxio UPnP Renderer 11; C:\Program Files\Roxio Creator 2009\Digital Home 11\RoxioUPnPRenderer11.exe [2008-08-14 313840]
          S3 RoxMediaDB11;RoxMediaDB11; C:\Program Files\Common Files\Roxio Shared\11.0\SharedCOM\RoxMediaDB11.exe [2009-01-09 1122304]
          S3 scan;BitDefender Threat Scanner; C:\Windows\System32\svchost.exe [2008-01-21 21504]
          S3 WPFFontCache_v0400;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe,-100; C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]

          -----------------EOF-----------------
          0
          1. info.txt logfile of random's system information tool 1.08 2011-01-08 12:59:46

            ======Uninstall list======

            -->C:\Program Files\Nero\Nero8\\nero\uninstall\UNNERO.exe /UNINSTALL
            -->C:\Windows\system32\\MSIEXEC.EXE /x {7B91CBFD-0671-4819-9724-CABE3014E886}
            -->C:\Windows\UNNeroBackItUp.exe /UNINSTALL
            -->C:\Windows\UNNeroMediaHome.exe /UNINSTALL
            -->C:\Windows\UNNeroShowTime.exe /UNINSTALL
            -->C:\Windows\UNNeroVision.exe /UNINSTALL
            -->C:\Windows\UNRecode.exe /UNINSTALL
            32 Bit HP CIO Components Installer-->MsiExec.exe /I{F1E63043-54FC-429B-AB2C-31AF9FBA4BC7}
            3DVIA player 5.0-->MsiExec.exe /X{4E868D3D-6EEB-4273-926C-2287236B5B79}
            Adobe Anchor Service CS3-->MsiExec.exe /I{90176341-0A8B-4CCC-A78D-F862228A6B95}
            Adobe Asset Services CS3-->MsiExec.exe /I{6FF5DD7A-FE28-4439-B8CF-1E9AF4EA0A61}
            Adobe Bridge CS3-->MsiExec.exe /I{9C9824D9-9000-4373-A6A5-D0E5D4831394}
            Adobe Bridge Start Meeting-->MsiExec.exe /I{08B32819-6EEF-4057-AEDA-5AB681A36A23}
            Adobe Camera Raw 4.0-->MsiExec.exe /I{B3BF6689-A81D-40D8-9A86-4AC4ACD9FC1C}
            Adobe CMaps-->MsiExec.exe /I{A2B242BD-FF8D-4840-9DAA-9170EABEC59C}
            Adobe Color - Photoshop Specific-->MsiExec.exe /I{A2D81E70-2A98-4A08-A628-94388B063C5E}
            Adobe Color Common Settings-->MsiExec.exe /I{DADD7B8A-BCB0-44F5-967A-ECB6B4F2ECD9}
            Adobe Color EU Recommended Settings-->MsiExec.exe /I{73B5D990-04EA-4751-B10F-5534770B91F2}
            Adobe Color JA Extra Settings-->MsiExec.exe /I{DD7DB3C5-6FA3-4FA3-8A71-C2F2940EB029}
            Adobe Color NA Extra Settings-->MsiExec.exe /I{FF29A7E2-FF40-4D07-B7E4-2093DE59E10A}
            Adobe Default Language CS3-->MsiExec.exe /I{B9B35331-B7E4-4E5C-BF4C-7BC87856124D}
            Adobe Device Central CS3-->MsiExec.exe /I{8D2BA474-F406-4710-9AE4-D4F22D21F0DD}
            Adobe ExtendScript Toolkit 2-->MsiExec.exe /I{C2D69781-F392-4118-A5A7-C7E9C38DBFC2}
            Adobe Flash Player 10 ActiveX-->C:\Windows\system32\Macromed\Flash\FlashUtil10l_ActiveX.exe -maintain activex
            Adobe Flash Player 10 Plugin-->C:\Windows\system32\Macromed\Flash\uninstall_plugin.exe
            Adobe Fonts All-->MsiExec.exe /I{6ABE0BEE-D572-4FE8-B434-9E72A289431B}
            Adobe Help Viewer CS3-->MsiExec.exe /I{04AF207D-9A77-465A-8B76-991F6AB66245}
            Adobe Linguistics CS3-->MsiExec.exe /I{54793AA1-5001-42F4-ABB6-C364617C6078}
            Adobe PDF Library Files-->MsiExec.exe /I{D2559B88-CC9D-4B48-81BB-F492BAA9C48C}
            Adobe Photoshop CS3-->C:\Program Files\Common Files\Adobe\Installers\32e9033392a51340b32fdc6ad893ab7\Setup.exe
            Adobe Photoshop CS3-->MsiExec.exe /I{BF794769-8875-4E01-B7BE-E00104604F4A}
            Adobe Photoshop Elements 6.0-->msiexec /I {F54AC413-D2C6-4A24-B324-370C223C6250}
            Adobe Photoshop Elements 6-->"C:\Program Files\Packard Bell\Smart Restore\SmartRestore.exe" /MSADDREM *AdobePE6*
            Adobe Reader 8-->"C:\Program Files\Packard Bell\Smart Restore\SmartRestore.exe" /MSADDREM *AdobeReader*
            Adobe Reader 9.4.1 - Français-->MsiExec.exe /I{AC76BA86-7AD7-1036-7B44-A94000000001}
            Adobe Setup-->MsiExec.exe /I{926DEB4E-2B0A-4C5C-AE4A-BF6C06949702}
            Adobe Shockwave Player 11.5-->"C:\Windows\system32\Adobe\Shockwave 11\uninstaller.exe"
            Adobe Stock Photos CS3-->MsiExec.exe /I{29E5EA97-5F74-4A57-B8B2-D4F169117183}
            Adobe Type Support-->MsiExec.exe /I{8E6808E2-613D-4FCD-81A2-6C8FA8E03312}
            Adobe Update Manager CS3-->MsiExec.exe /I{E69AE897-9E0B-485C-8552-7841F48D42D8}
            Adobe Version Cue CS3 Client-->MsiExec.exe /I{D0DFF92A-492E-4C40-B862-A74A173C25C5}
            Adobe WinSoft Linguistics Plugin-->MsiExec.exe /I{184CE391-7E0E-4C63-9935-D7A10EDFD3C6}
            Adobe XMP Panels CS3-->MsiExec.exe /I{802771A9-A856-4A41-ACF7-1450E523C923}
            Apple Application Support-->MsiExec.exe /I{553255F3-78FD-40F1-A6F8-6882140265FE}
            Apple Mobile Device Support-->MsiExec.exe /I{C337BDAF-CB4E-47E2-BE1A-CB31BB7DD0E3}
            Apple Software Update-->MsiExec.exe /I{6956856F-B6B3-4BE0-BA0B-8F495BE32033}
            Archiveur WinRAR-->C:\Program Files\WinRAR\uninstall.exe
            Ares 2.1.6-->"C:\Program Files\Ares\uninstall.exe"
            Ask Toolbar-->rundll32 C:\PROGRA~1\AskSBar\bar\1.bin\AskSBar.dll,O
            Assistant de connexion Windows Live-->MsiExec.exe /I{DCE8CD14-FBF5-4464-B9A4-E18E473546C7}
            Barre d'outils Bing-->C:\Program Files\Bing Bar Installer\InstallManager.exe /UNINSTALL
            Bing Bar Platform-->MsiExec.exe /I{65C0025A-2CDE-43C5-82D0-C7A56EF0DB39}
            Bison WebCam-->C:\Program Files\InstallShield Installation Information\{4BB1DCED-84D3-47F9-B718-5947E904593E}\setup.exe -runfromtemp -l0x040c -removeonly
            BitDefender Total Security 2009-->MsiExec.exe /X{8ACF317C-CA66-4363-AEBF-A073B124AA1A}
            Bonjour-->MsiExec.exe /I{07287123-B8AC-41CE-8346-3D777245C35B}
            Browser Address Error Redirector-->regsvr32 /u /s "C:\Program Files\Google\Google_BAE\BAE.dll"
            CCleaner-->"C:\Program Files\CCleaner\uninst.exe"
            CDDRV_Installer-->MsiExec.exe /I{0C826C5B-B131-423A-A229-C71B3CACCD6A}
            Conexant HD Audio-->C:\Program Files\CONEXANT\CNXT_HDAUDIO\UIU32a.exe -U -IFICVENza.INF
            Contrôle ActiveX Windows Live Mesh pour connexions à distance-->MsiExec.exe /I{55D003F4-9599-44BF-BA9E-95D060730DD3}
            DirectX 9 Runtime-->MsiExec.exe /I{AF9E97C1-7431-426D-A8D5-ABE40995C0B1}
            Fast Browser Search (My Web Tattoo)-->regsvr32 /u /s "C:\Program Files\Fast Browser Search\IE\FBStoolbar.dll"
            Favorit-->c:\users\guezennec\appdata\local\iwowu.bat
            ForceHCResetOnResume 1.1.0-->"C:\Program Files\ForceHCResetOnResume\unins000.exe"
            Gestionnaire pour appareils Windows Mobile-->MsiExec.exe /X{904CCF62-818D-4675-BC76-D37EB399F917}
            Google BAE-->"C:\Program Files\Packard Bell\Smart Restore\SmartRestore.exe" /MSADDREM *GoogleBAE*
            Google Desktop-->C:\Program Files\Google\Google Desktop Search\GoogleDesktopSetup.exe -uninstall
            Google Earth-->"C:\Program Files\Packard Bell\Smart Restore\SmartRestore.exe" /MSADDREM *GOOGLE_EARTH*
            Google Toolbar for Internet Explorer-->"C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarManager_4079369A224CB572.exe" /uninstall
            Google Toolbar for Internet Explorer-->MsiExec.exe /I{18455581-E099-4BA8-BC6B-F34B2F06600C}
            Google Update Helper-->MsiExec.exe /I{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
            Google Earth-->MsiExec.exe /X{4286E640-B5FB-11DF-AC4B-005056C00008}
            GoogleDesktop-->"C:\Program Files\Packard Bell\Smart Restore\SmartRestore.exe" /MSADDREM *GoogleDesktop*
            GoogleToolbar-->"C:\Program Files\Packard Bell\Smart Restore\SmartRestore.exe" /MSADDREM *GoogleToolbar*
            HDReg France-->MsiExec.exe /I{0ED40D2A-7131-4FE7-941E-5C329336F712}
            Hercules WebCam Station-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{D208F4A7-6B73-4C2A-8B1E-8756FCBA831E}\Setup.exe" -l0x40c
            Hercules Webcam-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{A250D351-A07F-4D5D-AB6C-693C69B9BFAF}\Setup.exe" -l0x40c
            Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT=""
            Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT=""
            HP Customer Participation Program 8.0-->C:\Program Files\HP\Digital Imaging\ExtCapUninstall\hpzscr01.exe -datfile hpqhsc01.dat
            HP Imaging Device Functions 8.0-->C:\Program Files\HP\Digital Imaging\DeviceManagement\hpzscr01.exe -datfile hpqbud01.dat
            HP OCR Software 8.0-->C:\Program Files\HP\Digital Imaging\OCR\hpzscr01.exe -datfile hpqbud11.dat
            HP Photosmart Essential-->MsiExec.exe /X{EB21A812-671B-4D08-B974-2A347F0D8F70}
            HP Photosmart.All-In-One Driver Software 8.0 .A-->C:\Program Files\HP\Digital Imaging\{282E5AB2-8E47-4571-B6FA-6B512555B557}\setup\hpzscr01.exe -datfile hposcr18.dat -onestop -showdisconnect -forcereboot
            HP Solution Center 8.0-->C:\Program Files\HP\Digital Imaging\eSupport\hpzscr01.exe -datfile hpqbud05.dat
            HP Update-->MsiExec.exe /X{B0069CFA-5BB9-4C03-B1C6-89CE290E5AFE}
            HPSSupply-->MsiExec.exe /X{EB75DE50-5754-4F6F-875D-126EDF8E4CB3}
            iGraal Toolbar for Internet Explorer-->"C:\Program Files\iGraal\uninstall.exe"
            Infineon USB driver 1.0.0.6-->"C:\Program Files\infineon\FlashUtility\drivers\Infineon USB driver\V1.0.0.6\unins000.exe"
            Installation Windows Live-->C:\Program Files\Windows Live\Installer\wlarp.exe
            Installation Windows Live-->MsiExec.exe /I{133742BA-6F46-4D3E-85AF-78631D9AD8B8}
            Java(TM) 6 Update 22-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216012FF}
            Java(TM) 6 Update 4-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160040}
            Junk Mail filter update-->MsiExec.exe /I{8E5233E1-7495-44FB-8DEB-4BE906D59619}
            KhalInstallWrapper-->MsiExec.exe /I{3101CB58-3482-4D21-AF1A-7057FC935355}
            Kwinzy 1.0 build 127-->C:\Program Files\KwinzySrch\uninstall.exe
            LG Bluetooth Driver-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{C6754E95-9700-45AB-A6C5-668F5F449E27}\setup.exe" -l0x9 -removeonly
            LG MC USB U330 driver-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{ABD7DBE3-E344-4BCA-B8AD-4360494DD1D9}\setup.exe" -l0x40c -removeonly
            LG PC Suite III-->C:\Program Files\InstallShield Installation Information\{C0E18DC4-C74A-4889-AE3A-933471023787}\setup.exe -runfromtemp -l0x040c -removeonly
            LG USB Modem Drivers-->MsiExec.exe /I{FA02ACAC-9E14-4878-A257-92A22A647C2C}
            Logitech SetPoint-->C:\Program Files\InstallShield Installation Information\{F29B21BD-CAA6-445F-8EF7-A7E2B9D8B14E}\setup.exe -runfromtemp -l0x040c -removeonly
            Microsoft .NET Framework 3.5 Language Pack SP1 - fra-->MsiExec.exe /I{3E31821C-7917-367E-938E-E65FC413EA31}
            Microsoft .NET Framework 3.5 SP1-->c:\Windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
            Microsoft .NET Framework 3.5 SP1-->MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
            Microsoft .NET Framework 4 Client Profile FRA Language Pack-->MsiExec.exe /X{0F5B4A82-9DAF-3D13-8CB8-AEB25E4A614E}
            Microsoft .NET Framework 4 Client Profile-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\Setup.exe /repair /x86 /parameterfolder Client
            Microsoft .NET Framework 4 Client Profile-->MsiExec.exe /X{3C3901C5-3455-3E0A-A214-0B093A5070A6}
            Microsoft Choice Guard-->MsiExec.exe /X{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}
            Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}
            Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0015-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
            Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0016-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
            Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0016-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
            Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0018-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
            Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0018-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
            Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0019-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
            Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001A-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
            Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001B-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
            Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001B-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
            Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0044-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
            Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-006E-040C-0000-0000000FF1CE} /uninstall {B165D3C2-40AE-4D39-86F7-E5C87C4264C0}
            Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-006E-040C-0000-0000000FF1CE} /uninstall {B165D3C2-40AE-4D39-86F7-E5C87C4264C0}
            Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-00A1-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
            Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}
            Microsoft Office Access MUI (French) 2007-->MsiExec.exe /X{90120000-0015-040C-0000-0000000FF1CE}
            Microsoft Office Excel MUI (French) 2007-->MsiExec.exe /X{90120000-0016-040C-0000-0000000FF1CE}
            Microsoft Office Home and Student 2007-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall HOMESTUDENTR /dll OSETUP.DLL
            Microsoft Office Home and Student 2007-->MsiExec.exe /X{91120000-002F-0000-0000-0000000FF1CE}
            Microsoft Office InfoPath MUI (French) 2007-->MsiExec.exe /X{90120000-0044-040C-0000-0000000FF1CE}
            Microsoft Office Live Add-in 1.5-->MsiExec.exe /I{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}
            Microsoft Office OneNote MUI (French) 2007-->MsiExec.exe /X{90120000-00A1-040C-0000-0000000FF1CE}
            Microsoft Office Outlook Connector-->MsiExec.exe /X{95140000-007A-040C-0000-0000000FF1CE}
            Microsoft Office Outlook MUI (French) 2007-->MsiExec.exe /X{90120000-001A-040C-0000-0000000FF1CE}
            Microsoft Office PowerPoint MUI (French) 2007-->MsiExec.exe /X{90120000-0018-040C-0000-0000000FF1CE}
            Microsoft Office PowerPoint Viewer 2007 (French)-->MsiExec.exe /X{95120000-00AF-040C-0000-0000000FF1CE}
            Microsoft Office Professional Plus 2007-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall PROPLUS /dll OSETUP.DLL
            Microsoft Office Professional Plus 2007-->MsiExec.exe /X{90120000-0011-0000-0000-0000000FF1CE}
            Microsoft Office Proof (Arabic) 2007-->MsiExec.exe /X{90120000-001F-0401-0000-0000000FF1CE}
            Microsoft Office Proof (Dutch) 2007-->MsiExec.exe /X{90120000-001F-0413-0000-0000000FF1CE}
            Microsoft Office Proof (English) 2007-->MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
            Microsoft Office Proof (French) 2007-->MsiExec.exe /X{90120000-001F-040C-0000-0000000FF1CE}
            Microsoft Office Proof (German) 2007-->MsiExec.exe /X{90120000-001F-0407-0000-0000000FF1CE}
            Microsoft Office Proof (Spanish) 2007-->MsiExec.exe /X{90120000-001F-0C0A-0000-0000000FF1CE}
            Microsoft Office Proofing (French) 2007-->MsiExec.exe /X{90120000-002C-040C-0000-0000000FF1CE}
            Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0401-0000-0000000FF1CE} /uninstall {14809F99-C601-4D4A-9391-F1E8FAA964C5}
            Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0401-0000-0000000FF1CE} /uninstall {14809F99-C601-4D4A-9391-F1E8FAA964C5}
            Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0407-0000-0000000FF1CE} /uninstall {A0516415-ED61-419A-981D-93596DA74165}
            Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0407-0000-0000000FF1CE} /uninstall {A0516415-ED61-419A-981D-93596DA74165}
            Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0409-0000-0000000FF1CE} /uninstall {ABDDE972-355B-4AF1-89A8-DA50B7B5C045}
            Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0409-0000-0000000FF1CE} /uninstall {ABDDE972-355B-4AF1-89A8-DA50B7B5C045}
            Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-040C-0000-0000000FF1CE} /uninstall {F580DDD5-8D37-4998-968E-EBB76BB86787}
            Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-040C-0000-0000000FF1CE} /uninstall {F580DDD5-8D37-4998-968E-EBB76BB86787}
            Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0413-0000-0000000FF1CE} /uninstall {D66D5A44-E480-4BA4-B4F2-C554F6B30EBB}
            Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0413-0000-0000000FF1CE} /uninstall {D66D5A44-E480-4BA4-B4F2-C554F6B30EBB}
            Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0C0A-0000-0000000FF1CE} /uninstall {187308AB-5FA7-4F14-9AB9-D290383A10D9}
            Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0C0A-0000-0000000FF1CE} /uninstall {187308AB-5FA7-4F14-9AB9-D290383A10D9}
            Microsoft Office Publisher MUI (French) 2007-->MsiExec.exe /X{90120000-0019-040C-0000-0000000FF1CE}
            Microsoft Office Shared MUI (French) 2007-->MsiExec.exe /X{90120000-006E-040C-0000-0000000FF1CE}
            Microsoft Office Suite Activation Assistant-->MsiExec.exe /X{E50AE784-FABE-46DA-A1F8-7B6B56DCB22E}
            Microsoft Office Word MUI (French) 2007-->MsiExec.exe /X{90120000-001B-040C-0000-0000000FF1CE}
            Microsoft Search Enhancement Pack-->MsiExec.exe /X{CFF8B8E8-E086-4DE0-935F-FE22CAB54F80}
            Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
            Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053-->MsiExec.exe /X{770657D0-A123-3C07-8E44-1C83EC895118}
            Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
            Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{A49F249F-0C91-497F-86DF-B2585E8E76B7}
            Microsoft Works 9 SE-->"C:\Program Files\Packard Bell\Smart Restore\SmartRestore.exe" /MSADDREM *works9se*
            Microsoft Works-->MsiExec.exe /I{0214A441-A4AB-43A8-8DEF-2F73C5364673}
            Microsoft® Office Trial 2007-->"C:\Program Files\Packard Bell\Smart Restore\SmartRestore.exe" /MSADDREM *OFF2k7_FR*
            Mise à jour du pilote du Gestionnaire pour appareils Windows Mobile-->MsiExec.exe /X{E7044E25-3038-4A76-9064-344AC038043E}
            Mise à jour Microsoft Office Excel 2007 Help (KB963678)-->msiexec /package {90120000-0016-040C-0000-0000000FF1CE} /uninstall {B761869A-B85C-40E2-994C-A1CE78AC8F2C}
            Mise à jour Microsoft Office Excel 2007 Help (KB963678)-->msiexec /package {90120000-0016-040C-0000-0000000FF1CE} /uninstall {B761869A-B85C-40E2-994C-A1CE78AC8F2C}
            Mise à jour Microsoft Office Outlook 2007 Help (KB963677)-->msiexec /package {90120000-001A-040C-0000-0000000FF1CE} /uninstall {51EFB347-1F3D-4BAC-8B79-F056B904FE21}
            Mise à jour Microsoft Office Powerpoint 2007 Help (KB963669)-->msiexec /package {90120000-0018-040C-0000-0000000FF1CE} /uninstall {C3DCA38E-005E-41BA-A52A-7C3429F351C3}
            Mise à jour Microsoft Office Powerpoint 2007 Help (KB963669)-->msiexec /package {90120000-0018-040C-0000-0000000FF1CE} /uninstall {C3DCA38E-005E-41BA-A52A-7C3429F351C3}
            Mise à jour Microsoft Office Word 2007 Help (KB963665)-->msiexec /package {90120000-001B-040C-0000-0000000FF1CE} /uninstall {81536A04-DBFB-4DB3-978F-0F284590C223}
            Mise à jour Microsoft Office Word 2007 Help (KB963665)-->msiexec /package {90120000-001B-040C-0000-0000000FF1CE} /uninstall {81536A04-DBFB-4DB3-978F-0F284590C223}
            Module de compatibilité pour Microsoft Office System 2007-->MsiExec.exe /X{90120000-0020-040C-0000-0000000FF1CE}
            Module linguistique Microsoft .NET Framework 3.5 SP1- fra-->c:\Windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack SP1 - fra\setup.exe
            Module linguistique Microsoft .NET Framework 4 Client Profile FRA-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\ClientLP\Setup.exe /repair /x86 /lcid 1036 /parameterfolder ClientLP
            Mozilla Firefox (3.5.7)-->C:\Program Files\Mozilla Firefox\uninstall\helper.exe
            MSVCRT-->MsiExec.exe /I{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
            MSXML 4.0 SP2 (KB936181)-->MsiExec.exe /I{C04E32E0-0416-434D-AFB9-6969D703A9EF}
            MSXML 4.0 SP2 (KB941833)-->MsiExec.exe /I{C523D256-313D-4866-B36A-F3DE528246EF}
            MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
            MSXML 4.0 SP2 (KB973688)-->MsiExec.exe /I{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
            Nero 8 Essentials-->"C:\Program Files\Packard Bell\Smart Restore\SmartRestore.exe" /MSADDREM *Nero8*
            Nero 8 Essentials-->MsiExec.exe /X{980B9958-1239-4FC5-8C88-AC5650321036}
            neroxml-->MsiExec.exe /I{56C049BE-79E9-4502-BEA7-9754A3E60F9B}
            Norton Security Scan-->C:\Program Files\NortonInstaller\{397E31AA-0D78-4649-A01C-339D73A2ED35}\NSS\LicenseType\2.7.3.34\InstStub.exe /X
            NVIDIA Drivers-->C:\Windows\system32\nvunrm.exe UninstallGUI
            OpenOffice.org 2.4-->MsiExec.exe /I{A122962F-331A-4C2E-93DB-AD92D8A4FB14}
            Outil de téléchargement Windows Live-->MsiExec.exe /I{205C6BDD-7B73-42DE-8505-9A093F35A238}
            Package de pilotes Windows - Infineon Technologies (FlashUSB) USB (04/16/2009 1.0.0.6)-->C:\PROGRA~1\DIFX\270581355A767BF1\DPInst.exe /u C:\Windows\System32\DriverStore\FileRepository\flashusb.inf_c8396fa4\flashusb.inf
            Packard Bell ImageWriter-->"C:\Program Files\Packard Bell\Smart Restore\SmartRestore.exe" /MSADDREM *ImageWriter*
            Packard Bell LCD Test-->"C:\Program Files\Packard Bell\Smart Restore\SmartRestore.exe" /MSADDREM *LCDTest*
            Packard Bell Updator-->"C:\Program Files\Packard Bell\Smart Restore\SmartRestore.exe" /MSADDREM *Updator*
            PC Suite-->C:\Program Files\PC Suite\uninst.exe
            PDF Settings-->MsiExec.exe /I{AC5B0C19-D851-42F4-BDA0-410ECF7F70A5}
            PhotoScape-->"C:\Program Files\PhotoScape\uninstall.exe"
            Picasa 2-->"C:\Program Files\Picasa2\Uninstall.exe"
            Picasa 3-->"C:\Program Files\Google\Picasa3\Uninstall.exe"
            Picasa2-->"C:\Program Files\Packard Bell\Smart Restore\SmartRestore.exe" /MSADDREM *Picasa_2*
            QuickTime-->MsiExec.exe /I{28BE306E-5DA6-4F9C-BDB0-DBA3C8C6FFFD}
            Realtek Card Reader Monitor-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{D4210CB1-A469-41AF-A619-C97B07FDF6FD}\setup.exe" -l0x9 -removeonly
            Realtek USB 2.0 Card Reader-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{DC24971E-1946-445D-8A82-CE685433FA7D}\setup.exe" -l0x9 -removeonly
            Roxio Activation Module-->MsiExec.exe /I{1D53B6F9-E66E-42D8-A221-4FF8AC134FD7}
            Roxio BackOnTrack-->MsiExec.exe /I{5A06423A-210C-49FB-950E-CB0EB8C5CEC7}
            Roxio CinePlayer Decoder Pack-->MsiExec.exe /I{C0FE37FA-0886-4B66-B01B-76CF70FB77AB}
            Roxio CinePlayer-->MsiExec.exe /I{AA749D64-3741-4D5F-B804-B0BC05D179D1}
            Roxio Creator 2009-->C:\ProgramData\Uninstall\{7919D8D9-69FB-4E94-B330-04C4AF251867}\setup.exe /x {7919D8D9-69FB-4E94-B330-04C4AF251867}
            Roxio Creator 2009-->MsiExec.exe /I{3383136B-4F86-4F05-8612-DD4BB16A1EAE}
            Roxio Creator 2009-->MsiExec.exe /I{7A7B3764-7F17-4AB1-A1D3-3B01F5F07445}
            Roxio File Backup-->MsiExec.exe /I{60B2315F-680F-4EB3-B8DD-CCDC86A7CCAB}
            Roxio Update Manager-->MsiExec.exe /I{30465B6C-B53F-49A1-9EBA-A3F187AD502E}
            SeaTools for Windows-->MsiExec.exe /I{98613C99-1399-416C-A07C-1EE1C585D872}
            Security Update for 2007 Microsoft Office System (KB2288621)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {5C497F0B-2061-4CC9-A61C-6B45B867354D}
            Security Update for 2007 Microsoft Office System (KB2288621)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {5C497F0B-2061-4CC9-A61C-6B45B867354D}
            Security Update for 2007 Microsoft Office System (KB2288931)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {CD769337-C8AC-46DB-A7DC-643E50089263}
            Security Update for 2007 Microsoft Office System (KB2288931)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {CD769337-C8AC-46DB-A7DC-643E50089263}
            Security Update for 2007 Microsoft Office System (KB2289158)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {210B16C0-CEBD-4DE9-B474-04A7E8735E16}
            Security Update for 2007 Microsoft Office System (KB2289158)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {210B16C0-CEBD-4DE9-B474-04A7E8735E16}
            Security Update for 2007 Microsoft Office System (KB2344875)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {6FC5C4C1-D7AE-44C3-94B7-6424FC3E752F}
            Security Update for 2007 Microsoft Office System (KB2344875)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {6FC5C4C1-D7AE-44C3-94B7-6424FC3E752F}
            Security Update for 2007 Microsoft Office System (KB2345043)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {536FB502-775F-4494-BACE-C02CC90B7A5B}
            Security Update for 2007 Microsoft Office System (KB2345043)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {536FB502-775F-4494-BACE-C02CC90B7A5B}
            Security Update for 2007 Microsoft Office System (KB969559)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {69F52148-9BF6-4CDC-BF76-103DEAF3DD08}
            Security Update for 2007 Microsoft Office System (KB969559)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {69F52148-9BF6-4CDC-BF76-103DEAF3DD08}
            Security Update for 2007 Microsoft Office System (KB976321)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {7F207DCA-3399-40CB-A968-6E5991B1421A}
            Security Update for 2007 Microsoft Office System (KB976321)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {7F207DCA-3399-40CB-A968-6E5991B1421A}
            Security Update for Microsoft .NET Framework 3.5 SP1 (KB2416473)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A8894F19-59C8-38D2-8A75-36C0CCE56A5B} /qb+ REBOOTPROMPT=""
            Security Update for Microsoft Office Access 2007 (KB979440)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {1142CCEC-ACA9-484B-BA90-C3A5CA1988C5}
            Security Update for Microsoft Office Access 2007 (KB979440)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {5A4E43D5-858F-49BD-BA72-8F30E1793060}
            Security Update for Microsoft Office Excel 2007 (KB2345035)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {B23002DD-34EC-4988-B810-A5E2A0BF04F1}
            Security Update for Microsoft Office Excel 2007 (KB2345035)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {B23002DD-34EC-4988-B810-A5E2A0BF04F1}
            Security Update for Microsoft Office InfoPath 2007 (KB979441)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {1109D0B3-EFA3-4553-AAED-4C3E9AD130E8}
            Security Update for Microsoft Office InfoPath 2007 (KB979441)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {8CCB781A-CF6B-4FCB-B6D8-59C64DF5C6DB}
            Security Update for Microsoft Office InfoPath 2007 (KB979441)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {8CCB781A-CF6B-4FCB-B6D8-59C64DF5C6DB}
            Security Update for Microsoft Office Outlook 2007 (KB2288953)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {8B772E1C-7C05-42D2-839D-3EC2D39EFF22}
            Security Update for Microsoft Office PowerPoint 2007 (KB982158)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {F5B70033-E79C-4569-90BF-BC9B4E4F3F46}
            Security Update for Microsoft Office PowerPoint 2007 (KB982158)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {F5B70033-E79C-4569-90BF-BC9B4E4F3F46}
            Security Update for Microsoft Office PowerPoint Viewer (KB2413381)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {3DED0A62-44C8-4E00-A785-5212F297A9D9}
            Security Update for Microsoft Office PowerPoint Viewer (KB2413381)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {3DED0A62-44C8-4E00-A785-5212F297A9D9}
            Security Update for Microsoft Office Publisher 2007 (KB2284697)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {3A4CDE54-2403-483D-8D9A-15E3264410DF}
            Security Update for Microsoft Office system 2007 (972581)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {3D019598-7B59-447A-80AE-815B703B84FF}
            Security Update for Microsoft Office system 2007 (972581)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {3D019598-7B59-447A-80AE-815B703B84FF}
            Security Update for Microsoft Office system 2007 (KB974234)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {FCD742B9-7A55-44BC-A776-F795F21FEDDC}
            Security Update for Microsoft Office system 2007 (KB974234)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {FCD742B9-7A55-44BC-A776-F795F21FEDDC}
            Security Update for Microsoft Office Visio Viewer 2007 (KB973709)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {71127777-8B2C-4F97-AF7A-6CF8CAC8224D}
            Security Update for Microsoft Office Visio Viewer 2007 (KB973709)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {71127777-8B2C-4F97-AF7A-6CF8CAC8224D}
            Security Update for Microsoft Office Word 2007 (KB2344993)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {7A5B74FA-7A92-4FC9-821A-2DD5D4E73E48}
            Security Update for Microsoft Office Word 2007 (KB2344993)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {7A5B74FA-7A92-4FC9-821A-2DD5D4E73E48}
            SetUp My PC-->"C:\Program Files\Packard Bell\Smart Restore\SmartRestore.exe" /MSADDREM *SETUPMYPC_FR*
            Skype 3.6.2.248-->"C:\Program Files\Packard Bell\Smart Restore\SmartRestore.exe" /MSADDREM *SKYPE*
            Skype(TM) 4.2-->MsiExec.exe /X{D103C4BA-F905-437A-8049-DB24763BBE36}
            SmartSound Quicktracks Plugin-->C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\9\INTEL3~1\IDriver.exe /M{4A7FDA4D-F4D7-4A49-934A-066D59A43C7E}
            Spelling Dictionaries Support For Adobe Reader 9-->MsiExec.exe /I{AC76BA86-7AD7-5464-3428-900000000004}
            Synaptics Pointing Device Driver-->rundll32.exe "C:\Program Files\Synaptics\SynTP\SynISDLL.dll",standAloneUninstall
            Update for 2007 Microsoft Office System (KB967642)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {C444285D-5E4F-48A4-91DD-47AAAA68E92D}
            Update for 2007 Microsoft Office System (KB967642)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {C444285D-5E4F-48A4-91DD-47AAAA68E92D}
            Update for Microsoft .NET Framework 3.5 SP1 (KB963707)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {B2AE9C82-DC7B-3641-BFC8-87275C4F3607} /qb+ REBOOTPROMPT=""
            Update for Microsoft Office OneNote 2007 (KB980729)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {329050A9-EF80-40F9-B633-74508F54C1FF}
            Update for Outlook 2007 Junk Email Filter (KB2466076)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {EE71630C-C756-4343-B620-DB5958609E3D}
            USB Flash Port Driver-->MsiExec.exe /I{065D5505-3821-4C2E-BB6C-FE66A7E7CB4F}
            Veetle TV 0.9.17-->C:\Program Files\Veetle\UninstallVeetleTV.exe
            VLC media player 0.9.2-->C:\Program Files\VideoLAN\VLC\uninstall.exe
            Vuze-->C:\Program Files\Azureus\uninstall.exe
            Windows Live Call-->MsiExec.exe /I{B3B487E7-6171-4376-9074-B28082CEB504}
            Windows Live Communications Platform-->MsiExec.exe /I{3175E049-F9A9-4A3D-8F19-AC9FB04514D1}
            Windows Live Mail-->MsiExec.exe /I{5DD76286-9BE7-4894-A990-E905E91AC818}
            Windows Live Messenger-->MsiExec.exe /X{445B183D-F4F1-45C8-B9DB-F11355CA657B}
            Windows Media Player Firefox Plugin-->MsiExec.exe /I{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}
            ZHPDiag 1.27-->"C:\Program Files\ZHPDiag\unins000.exe"

            ======Security center information======

            AV: BitDefender Antivirus
            FW: BitDefender Firewall
            AS: BitDefender Antispyware (disabled)
            AS: Windows Defender

            =====Application event log=====

            Computer Name: PC-de-guezennec
            Event Code: 1002
            Message: Le programme iexplore.exe version 7.0.6001.18226 a cessé d'interagir avec Windows et a été fermé. Pour déterminer si des informations supplémentaires sont disponibles, consultez l'historique du problème dans l'application Rapports et solutions aux problèmes du Panneau de configuration. ID de processus : 1494 Heure de début : 01c9dee585e207c2 Heure de fin : 0
            Record Number: 17440
            Source Name: Application Hang
            Time Written: 20090527161137.000000-000
            Event Type: Erreur
            User:

            Computer Name: PC-de-guezennec
            Event Code: 10
            Message: Le filtre d'événement avec la requête « SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99 » n'a pas pu être réactivé dans l'espace de noms « //./root/CIMV2 » à cause de l'erreur 0x80041003. Les événements ne peuvent pas être délivrés à travers ce filtre tant que le problème ne sera pas corrigé.
            Record Number: 17437
            Source Name: Microsoft-Windows-WMI
            Time Written: 20090527155543.000000-000
            Event Type: Erreur
            User:

            Computer Name: PC-de-guezennec
            Event Code: 10
            Message: Le filtre d'événement avec la requête « SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99 » n'a pas pu être réactivé dans l'espace de noms « //./root/CIMV2 » à cause de l'erreur 0x80041003. Les événements ne peuvent pas être délivrés à travers ce filtre tant que le problème ne sera pas corrigé.
            Record Number: 17401
            Source Name: Microsoft-Windows-WMI
            Time Written: 20090527103735.000000-000
            Event Type: Erreur
            User:

            Computer Name: PC-de-guezennec
            Event Code: 10
            Message: Le filtre d'événement avec la requête « SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99 » n'a pas pu être réactivé dans l'espace de noms « //./root/CIMV2 » à cause de l'erreur 0x80041003. Les événements ne peuvent pas être délivrés à travers ce filtre tant que le problème ne sera pas corrigé.
            Record Number: 17344
            Source Name: Microsoft-Windows-WMI
            Time Written: 20090526154927.000000-000
            Event Type: Erreur
            User:

            Computer Name: PC-de-guezennec
            Event Code: 10
            Message: Le filtre d'événement avec la requête « SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99 » n'a pas pu être réactivé dans l'espace de noms « //./root/CIMV2 » à cause de l'erreur 0x80041003. Les événements ne peuvent pas être délivrés à travers ce filtre tant que le problème ne sera pas corrigé.
            Record Number: 17292
            Source Name: Microsoft-Windows-WMI
            Time Written: 20090525173705.000000-000
            Event Type: Erreur
            User:

            =====Security event log=====

            Computer Name: PC-de-guezennec
            Event Code: 4648
            Message: Tentative d'ouverture de session en utilisant des informations d'identification explicites.

            Sujet :
            ID de sécurité : S-1-5-18
            Nom du compte : PC-DE-GUEZENNEC$
            Domaine du compte : WORKGROUP
            ID d'ouverture de session : 0x3e7
            GUID d'ouverture de session : {00000000-0000-0000-0000-000000000000}

            Compte dont les informations d'identification ont été utilisées :
            Nom du compte : SYSTEM
            Domaine du compte : AUTORITE NT
            GUID d'ouverture de session : {00000000-0000-0000-0000-000000000000}

            Serveur cible :
            Nom du serveur cible : localhost
            Informations supplémentaires : localhost

            Informations sur le processus :
            ID du processus : 0x28c
            Nom du processus : C:\Windows\System32\services.exe

            Informations sur le réseau :
            Adresse du réseau : -
            Port : -

            Cet événement est généré lorsqu'un processus tente d'ouvrir une session pour un compte en spécifiant explicitement les informations d'identification de ce compte. Ceci se produit le plus souvent dans les configurations par lot comme les tâches planifiées, ou avec l'utilisation de la commande RUNAS.
            Record Number: 83563
            Source Name: Microsoft-Windows-Security-Auditing
            Time Written: 20100614072607.137617-000
            Event Type: Succès de l'audit
            User:

            Computer Name: PC-de-guezennec
            Event Code: 5038
            Message: L'intégrité du code a déterminé que le hachage de l'image d'un fichier n'est pas valide. Le fichier peut être endommagé en raison d'une modification non autorisée ou le hachage non valide peut indiquer une erreur d'unité de disque potentielle.

            Nom du fichier : \Device\HarddiskVolume2\Program Files\BitDefender\BitDefender 2009\bdselfpr.sys
            Record Number: 83562
            Source Name: Microsoft-Windows-Security-Auditing
            Time Written: 20100614072431.837217-000
            Event Type: Échec de l'audit
            User:

            Computer Name: PC-de-guezennec
            Event Code: 4672
            Message: Privilèges spéciaux attribués à la nouvelle ouverture de session.

            Sujet :
            ID de sécurité : S-1-5-18
            Nom du compte : SYSTEM
            Domaine du compte : AUTORITE NT
            ID d'ouverture de session : 0x3e7

            Privilèges : SeAssignPrimaryTokenPrivilege
            SeTcbPrivilege
            SeSecurityPrivilege
            SeTakeOwnershipPrivilege
            SeLoadDriverPrivilege
            SeBackupPrivilege
            SeRestorePrivilege
            SeDebugPrivilege
            SeAuditPrivilege
            SeSystemEnvironmentPrivilege
            SeImpersonatePrivilege
            Record Number: 83561
            Source Name: Microsoft-Windows-Security-Auditing
            Time Written: 20100614072426.096417-000
            Event Type: Succès de l'audit
            User:

            Computer Name: PC-de-guezennec
            Event Code: 4624
            Message: L'ouverture de session d'un compte s'est correctement déroulée.

            Sujet :
            ID de sécurité : S-1-5-18
            Nom du compte : PC-DE-GUEZENNEC$
            Domaine du compte : WORKGROUP
            ID d'ouverture de session : 0x3e7

            Type d'ouverture de session : 5

            Nouvelle ouverture de session :
            ID de sécurité : S-1-5-18
            Nom du compte : SYSTEM
            Domaine du compte : AUTORITE NT
            ID d'ouverture de session : 0x3e7
            GUID d'ouverture de session : {00000000-0000-0000-0000-000000000000}

            Informations sur le processus :
            ID du processus : 0x28c
            Nom du processus : C:\Windows\System32\services.exe

            Informations sur le réseau :
            Nom de la station de travail :
            Adresse du réseau source : -
            Port source : -

            Informations détaillées sur l'authentification :
            Processus d'ouverture de session : Advapi
            Package d'authentification : Negotiate
            Services en transit : -
            Nom du package (NTLM uniquement) : -
            Longueur de la clé : 0

            Cet événement est généré lors de la création d'une ouverture de session. Il est généré sur l'ordinateur sur lequel l'ouverture de session a été effectuée.

            Le champ Objet indique le compte sur le système local qui a demandé l'ouverture de session. Il s'agit le plus souvent d'un service, comme le service Serveur, ou un processus local tel que Winlogon.exe ou Services.exe.

            Le champ Type d'ouverture de session indique le type d'ouverture de session qui s'est produit. Les types les plus courants sont 2 (interactif) et 3 (réseau).

            Le champ Nouvelle ouverture de session indique le compte pour lequel la nouvelle ouverture de session a été créée, par exemple, le compte qui s'est connecté.

            Les champs relatifs au réseau indiquent la provenance d'une demande d'ouverture de session à distance. Le nom de la station de travail n'étant pas toujours disponible, peut être laissé vide dans certains cas.

            Les champs relatifs aux informations d'authentification fournissent des détails sur cette demande d'ouverture de session spécifique.
            - Le GUID d'ouverture de session est un identificateur unique pouvant servir à associer cet événement à un événement KDC .
            - Les services en transit indiquent les services intermédiaires qui ont participé à cette demande d'ouverture de session.
            - Nom du package indique quel est le sous-protocole qui a été utilisé parmi les protocoles NTLM.
            - La longueur de la clé indique la longueur de la clé de session générée. Elle a la valeur 0 si aucune clé de session n'a été demandée.
            Record Number: 83560
            Source Name: Microsoft-Windows-Security-Auditing
            Time Written: 20100614072426.096417-000
            Event Type: Succès de l'audit
            User:

            Computer Name: PC-de-guezennec
            Event Code: 4648
            Message: Tentative d'ouverture de session en utilisant des informations d'identification explicites.

            Sujet :
            ID de sécurité : S-1-5-18
            Nom du compte : PC-DE-GUEZENNEC$
            Domaine du compte : WORKGROUP
            ID d'ouverture de session : 0x3e7
            GUID d'ouverture de session : {00000000-0000-0000-0000-000000000000}

            Compte dont les informations d'identification ont été utilisées :
            Nom du compte : SYSTEM
            Domaine du compte : AUTORITE NT
            GUID d'ouverture de session : {00000000-0000-0000-0000-000000000000}

            Serveur cible :
            Nom du serveur cible : localhost
            Informations supplémentaires : localhost

            Informations sur le processus :
            ID du processus : 0x28c
            Nom du processus : C:\Windows\System32\services.exe

            Informations sur le réseau :
            Adresse du réseau : -
            Port : -

            Cet événement est généré lorsqu'un processus tente d'ouvrir une session pour un compte en spécifiant explicitement les informations d'identification de ce compte. Ceci se produit le plus souvent dans les configurations par lot comme les tâches planifiées, ou avec l'utilisation de la commande RUNAS.
            Record Number: 83559
            Source Name: Microsoft-Windows-Security-Auditing
            Time Written: 20100614072426.096417-000
            Event Type: Succès de l'audit
            User:

            ======Environment variables======

            "ComSpec"=%SystemRoot%\system32\cmd.exe
            "FP_NO_HOST_CHECK"=NO
            "OS"=Windows_NT
            "Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\Common Files\Roxio Shared\DLLShared\;C:\Program Files\Common Files\Roxio Shared\DLLShared\;C:\Program Files\Common Files\Roxio Shared\11.0\DLLShared\;C:\Program Files\QuickTime\QTSystem\;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\
            "PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
            "PROCESSOR_ARCHITECTURE"=x86
            "TEMP"=%SystemRoot%\TEMP
            "TMP"=%SystemRoot%\TEMP
            "USERNAME"=SYSTEM
            "windir"=%SystemRoot%
            "PROCESSOR_LEVEL"=15
            "PROCESSOR_IDENTIFIER"=x86 Family 15 Model 104 Stepping 2, AuthenticAMD
            "PROCESSOR_REVISION"=6802
            "NUMBER_OF_PROCESSORS"=2
            "TRACE_FORMAT_SEARCH_PATH"=\\NTREL202.ntdev.corp.microsoft.com\4F18C3A5-CA09-4DBD-B6FC-219FDD4C6BE0\TraceFormat
            "DFSTRACINGON"=FALSE
            "RCAUTOPLAY"=C:\Program Files\Roxio Creator 2009\Roxio Central 4\
            "EMC_AUTOPLAY"=C:\Program Files\Common Files\Roxio Shared\
            "CLASSPATH"=.;C:\Program Files\Java\jre6\lib\ext\QTJava.zip
            "QTJAVA"=C:\Program Files\Java\jre6\lib\ext\QTJava.zip
            "PSModulePath"=%SystemRoot%\system32\WindowsPowerShell\v1.0\Modules\

            -----------------EOF-----------------
            0
            1. Modérateur
              Je te laisse poursuivre avec Valuu ;-).
              0
              1. tu peut pas m aider toi
                0
                1. par raport a ce que j ai poster
                  0
              2. Modérateur
                Bon, je vais avancer la désinfection jusqu'au retour de Valuu.

                Ton PC est bien infecté par des adwares.

                Suppression avec AD-R :

                Télécharge AD-R (de C_XX ) sur ton bureau :
                = = = =>>> En cliquant ici <<<= = = =

                /!\ Déconnecte-toi et ferme toutes applications en cours, désactive ton antivirus le temps de la manipulation/!\

                * Exécute AD-R.
                * Au menu principal clique sur le bouton "Nettoyer".
                * Poste le rapport qui apparaît à la fin.
                (Le rapport est sauvegardé aussi sous Ad-Report-CLEAN[1].txt)
                0
                1. Contributeur
                  Je te laisse la faire sinon ;) y a pas de sushi.
                  0
                2. Modérateur
                  Oki Valuu.
                  doudou082 a l'air pressé(e) :-)
                  0
                3. Contributeur
                  Ouaip, et moi assez occupé dans l'instant ^^
                  Joyeuse désinfection.

                  Et bonne année au passage !
                  0
                4. Modérateur
                  Merci, bonne année également.
                  0
                5. je trouve pas le rapport
                  0
              3. Modérateur
                (Le rapport est sauvegardé aussi sous Ad-Report-CLEAN[1].txt)
                à la racine du disque :

                Poste de travail > C:\ > Ad-Report-CLEAN[1].txt
                0
                1. RAPPORT D'AD-REMOVER 2.0.0.2,D | UNIQUEMENT XP/VISTA/7 =======

                  Mis à jour par TeamXscript le 03/01/11 à 14:20
                  Contact: AdRemover[DOT]contact[AT]gmail[DOT]com
                  Site web: http://www.teamxscript.org

                  C:\Program Files\Ad-Remover\main.exe (CLEAN [1]) -> Lancé à 13:40:55 le 08/01/2011, Mode normal

                  Microsoft® Windows Vista(TM) Édition Familiale Premium Service Pack 2 (X86)
                  guezennec@PC-DE-GUEZENNEC (PACKARD BELL BV EasyNote_SJ51)

                  ============== ACTION(S) ==============

                  Fichier supprimé: C:\Users\guezennec\AppData\Local\iwowu.bat
                  Fichier supprimé: C:\Users\Public\MyWebTattoo.exe
                  Fichier supprimé: C:\Users\guezennec\AppData\Roaming\Mozilla\FireFox\Profiles\gawm3elg.default\searchplugins\fast-browser-search.xml
                  Fichier supprimé: C:\Users\guezennec\AppData\Roaming\Mozilla\FireFox\Profiles\gawm3elg.default\searchplugins\fissa.xml
                  Dossier supprimé: C:\Users\guezennec\AppData\LocalLow\AskSBar
                  Dossier supprimé: C:\Program Files\AskSBar
                  Dossier supprimé: C:\Users\guezennec\AppData\LocalLow\Conduit
                  Dossier supprimé: C:\Program Files\Conduit
                  Dossier supprimé: C:\Program Files\Fast Browser Search
                  Dossier supprimé: C:\Users\guezennec\AppData\Roaming\FissaSearch
                  Dossier supprimé: C:\ProgramData\KwinzySrch
                  Dossier supprimé: C:\Program Files\KwinzySrch
                  Dossier supprimé: C:\Users\guezennec\AppData\LocalLow\PriceGong
                  Dossier supprimé: C:\Program Files\PriceGong
                  Dossier supprimé: C:\Program Files\SGPSA
                  Dossier supprimé: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WebMediaPlayer
                  Dossier supprimé: C:\Users\guezennec\AppData\Roaming\OfferBox
                  Fichier supprimé: C:\Users\guezennec\AppData\Local\gmuwoaw_nav.dat
                  Fichier supprimé: C:\Users\guezennec\AppData\Local\gmuwoaw.dat
                  Fichier supprimé: C:\Users\guezennec\AppData\Local\gmuwoaw_navps.dat

                  (!) -- Fichiers temporaires supprimés.

                  -- Fichier ouvert: C:\Users\guezennec\AppData\Roaming\Mozilla\FireFox\Profiles\gawm3elg.default\Prefs.js --
                  Ligne supprimée:
                  Ligne supprimée:
                  Ligne supprimée: user_pref("browser.search.order.1", "Fast Browser Search");
                  Ligne supprimée: user_pref("browser.search.selectedEngine", "Fissa");
                  -- Fichier Fermé --

                  Clé supprimée: HKLM\Software\Classes\CLSID\{0579B4B1-0293-4d73-B02D-5EBB0BA0F0A2}
                  Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0579B4B1-0293-4d73-B02D-5EBB0BA0F0A2}
                  Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{0579B4B1-0293-4d73-B02D-5EBB0BA0F0A2}
                  Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0579B4B1-0293-4d73-B02D-5EBB0BA0F0A2}
                  Clé supprimée: HKLM\Software\Classes\CLSID\{1BB22D38-A411-4B13-A746-C2A4F4EC7344}
                  Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{1BB22D38-A411-4B13-A746-C2A4F4EC7344}
                  Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1BB22D38-A411-4B13-A746-C2A4F4EC7344}
                  Clé supprimée: HKLM\Software\Classes\CLSID\{57CADC46-58FF-4105-B733-5A9F3FC9783C}
                  Clé supprimée: HKLM\Software\Classes\CLSID\{B15FD82E-85BC-430d-90CB-65DB1B030510}
                  Clé supprimée: HKLM\Software\Classes\CLSID\{F0D4B231-DA4B-4daf-81E4-DFEE4931A4AA}
                  Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F0D4B231-DA4B-4daf-81E4-DFEE4931A4AA}
                  Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{F0D4B231-DA4B-4daf-81E4-DFEE4931A4AA}
                  Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F0D4B231-DA4B-4daf-81E4-DFEE4931A4AA}
                  Clé supprimée: HKLM\Software\Classes\CLSID\{F0D4B239-DA4B-4daf-81E4-DFEE4931A4AA}
                  Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{F0D4B239-DA4B-4daf-81E4-DFEE4931A4AA}
                  Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F0D4B239-DA4B-4daf-81E4-DFEE4931A4AA}
                  Clé supprimée: HKLM\Software\Classes\CLSID\{F0D4B23B-DA4B-4daf-81E4-DFEE4931A4AA}
                  Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{F0D4B23B-DA4B-4daf-81E4-DFEE4931A4AA}
                  Clé supprimée: HKLM\Software\Classes\CLSID\{FCBCCB87-9224-4B8D-B117-F56D924BEB18}
                  Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FCBCCB87-9224-4B8D-B117-F56D924BEB18}
                  Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FCBCCB87-9224-4B8D-B117-F56D924BEB18}
                  Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FCBCCB87-9224-4B8D-B117-F56D924BEB18}
                  Clé supprimée: HKLM\Software\Classes\TypeLib\{3088C799-9630-4719-A471-4544D7CABC2D}
                  Clé supprimée: HKLM\Software\Classes\TypeLib\{77AA25E8-6083-4949-A831-9CB11861DC10}
                  Clé supprimée: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\iwowu
                  Clé supprimée: HKLM\Software\Classes\BHO.PSHelper
                  Clé supprimée: HKLM\Software\Classes\BHO.PSHelper.1
                  Clé supprimée: HKLM\Software\Classes\Toolbar.CT2542115
                  Clé supprimée: HKLM\Software\Casino Tropez
                  Clé supprimée: HKLM\Software\Freeze.com
                  Clé supprimée: HKLM\Software\KwinzySrch
                  Clé supprimée: HKLM\Software\WebMediaPlayer
                  Clé supprimée: HKCU\Software\freeCompressor
                  Clé supprimée: HKCU\Software\OfferBox
                  Clé supprimée: HKCU\Software\FissaSearch
                  Clé supprimée: HKCU\Software\Spointer
                  Clé supprimée: HKCU\Software\Casino Tropez
                  Clé supprimée: HKCU\Software\Conduit
                  Clé supprimée: HKCU\Software\fcn
                  Clé supprimée: HKCU\Software\Freeze.com
                  Clé supprimée: HKCU\Software\WebMediaPlayer
                  Clé supprimée: HKCU\Software\AppDataLow\HavingFunOnline
                  Clé supprimée: HKCU\Software\AppDataLow\Software\Conduit
                  Clé supprimée: HKCU\Software\AppDataLow\Software\PriceGong
                  Clé supprimée: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{3EFC1F64-E225-43E8-84B4-197EDAF54726}
                  Clé supprimée: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}
                  Clé supprimée: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{b41306c6-96d0-442a-bcc4-b0f621e82ce9}
                  Clé supprimée: HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}
                  Clé supprimée: HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{38AADE1D-8507-4025-B2E3-7A5F7FEB60AF}
                  Clé supprimée: HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A14E9FF4-9918-40fc-8C84-E4DD5A13F339}
                  Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\AskSBar Uninstall
                  Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\KwinzySrch

                  Valeur supprimée: HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks|{91C18ED5-5E1C-4AE5-A148-A861DE8C8E16}
                  Valeur supprimée: HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks|{0579B4B6-0293-4D73-B02D-5EBB0BA0F0A2}
                  Valeur supprimée: HKLM\Software\Microsoft\Internet Explorer\Toolbar|{F0D4B239-DA4B-4DAF-81E4-DFEE4931A4AA}
                  Valeur supprimée: HKLM\Software\Microsoft\Internet Explorer\Toolbar|{1BB22D38-A411-4B13-A746-C2A4F4EC7344}
                  Valeur supprimée: HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser|{F0D4B239-DA4B-4DAF-81E4-DFEE4931A4AA}
                  Valeur supprimée: HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser|{1BB22D38-A411-4B13-A746-C2A4F4EC7344}

                  ============== SCAN ADDITIONNEL ==============

                  ** Mozilla Firefox Version [3.5.7 (fr)] **

                  -- C:\Users\guezennec\AppData\Roaming\Mozilla\FireFox\Profiles\gawm3elg.default\Prefs.js --
                  browser.download.dir, C:\\Users\\guezennec\\Downloads
                  browser.download.lastDir, C:\\Users\\guezennec\\Pictures
                  browser.search.defaultenginename, Bing
                  browser.search.defaulturl, hxxp://www.bing.com/search?FORM=IEFM1&q=
                  browser.startup.homepage, www.mivolo.com
                  browser.startup.homepage_override.mstone, rv:1.9.1.7
                  keyword.URL, hxxp://www.bing.com/search?FORM=IEFM1&q=

                  ========================================

                  ** Internet Explorer Version [8.0.6001.18999] **

                  [HKCU\Software\Microsoft\Internet Explorer\Main]
                  AutoHide: yes
                  Default_Page_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
                  Default_Search_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
                  Do404Search: 0x01000000
                  Enable Browser Extensions: yes
                  Local Page: C:\Windows\system32\blank.htm
                  Search bar: hxxp://go.microsoft.com/fwlink/?linkid=54896
                  Show_ToolBar: yes
                  Start Page: hxxp://fr.msn.com/

                  [HKLM\Software\Microsoft\Internet Explorer\Main]
                  AutoHide: yes
                  Default_Page_URL: hxxp://go.microsoft.com/fwlink/?LinkId=54896
                  Default_Search_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
                  Delete_Temp_Files_On_Exit: yes
                  Local Page: C:\Windows\System32\blank.htm
                  Search bar: hxxp://search.msn.com/spbasic.htm
                  Search Page: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
                  Start Page: hxxp://fr.msn.com/

                  [HKLM\Software\Microsoft\Internet Explorer\ABOUTURLS]
                  Tabs: res://ieframe.dll/tabswelcome.htm
                  Blank: res://mshtml.dll/blank.htm

                  ========================================

                  C:\Program Files\Ad-Remover\Quarantine: 133 Fichier(s)
                  C:\Program Files\Ad-Remover\Backup: 14 Fichier(s)

                  C:\Ad-Report-CLEAN[1].txt - 08/01/2011 (8991 Octet(s))

                  Fin à: 13:45:00, 08/01/2011

                  ============== E.O.F ==============
                  0
                  1. Modérateur
                    Une belle brochette supprimée !!!

                    Casino Tropez
                    Freeze.com
                    KwinzySrch
                    Clé supprimée: HKLM\Software\WebMediaPlayer
                    freeCompressor
                    OfferBox
                    FissaSearch
                    Spointer
                    Conduit
                    fcn
                    Freeze.com
                    WebMediaPlayer
                    HavingFunOnline
                    PriceGong
                    SearchScopes


                    Ne retourne pas sur ces sites ou ne télécharges pas ces logiciels ou encore des logiciels qui embarquent ces programmes.

                    *********

                    Télécharge Malwarebytes' Anti-Malware
                    = = = = >>> En cliquant ici <<< = = = =

                    - Enregistre le sur le bureau
                    - Double clique sur le fichier téléchargé pour lancer le processus d'installation
                    - Lorsqu'il te le sera demandé, mets à jour Malwarebytes anti malware
                    - Si le pare-feu demande l'autorisation de se connecter pour malwarebytes, acceptes
                    - Une fois la mise à jour terminée, ferme Malwarebytes
                    - Double-clique sur l'icône de malwarebytes pour le relancer
                    - Dans l'onglet, Recherche, probablement ouvert par défaut,
                    - Sélectionne Exécuter un examen complet
                    - Clique sur Rechercher
                    - Le scan démarre
                    - A la fin de l'analyse, un message s'affiche : L'examen s'est terminé normalement. Cliquez sur `Afficher les résultats' pour afficher tous les objets trouvés.
                    - Clique sur Ok pour poursuivre.
                    - Si des malwares ont été détectés, cliques sur Afficher les résultats
                    - Sélectionnes tout (ou laisses cochés) et cliques sur Supprimer la sélection Malwarebytes va détruire les fichiers et clés de registre et en mettre une copie dans la quarantaine.
                    - Malwarebytes va ouvrir le bloc-notes et y copier le rapport d'analyse.
                    - Rends toi dans l'onglet rapport/log
                    - Tu clique dessus pour l'afficher.
                    - Une fois affiché, cliques sur édition en haut du bloc notes, et puis sur sélectionner tout
                    - Tu recliques sur édition et puis sur copier et tu reviens sur le forum et dans ta réponse
                    - Tu clique droit dans le cadre de la réponse et coller

                    Si tu as besoin d'aide regarde ce tutorial ICI
                    0
                    1. ca fais une heur que l analyse est en route et c tjs pas fini
                      0
                      1. je te posterai le rapport ce soir faut que ji aille merci de tous c renseignement et explication c cool d avoir des personne qui si conaisse autant
                        0
                      2. Modérateur
                        Pas de quoi, n'hésite pas à poser des questions si nécessaire ;-).
                        0
                    2. Malwarebytes' Anti-Malware 1.50
                      www.malwarebytes.org

                      Version de la base de données: 5481

                      Windows 6.0.6002 Service Pack 2
                      Internet Explorer 8.0.6001.18999

                      08/01/2011 19:05:33
                      mbam-log-2011-01-08 (19-05-33).txt

                      Type d'examen: Examen complet (C:\|D:\|)
                      Elément(s) analysé(s): 331427
                      Temps écoulé: 2 heure(s), 54 minute(s), 36 seconde(s)

                      Processus mémoire infecté(s): 0
                      Module(s) mémoire infecté(s): 0
                      Clé(s) du Registre infectée(s): 10
                      Valeur(s) du Registre infectée(s): 1
                      Elément(s) de données du Registre infecté(s): 0
                      Dossier(s) infecté(s): 0
                      Fichier(s) infecté(s): 3

                      Processus mémoire infecté(s):
                      (Aucun élément nuisible détecté)

                      Module(s) mémoire infecté(s):
                      (Aucun élément nuisible détecté)

                      Clé(s) du Registre infectée(s):
                      HKEY_CLASSES_ROOT\CLSID\{5c026fd8-4021-75c5-673f-f6b4d1c16a04} (Adware.LoudMo) -> Quarantined and deleted successfully.
                      HKEY_CLASSES_ROOT\Typelib\{84C94803-B5EC-4491-B2BE-7B113E013B77} (Trojan.FakeAlert) -> Quarantined and deleted successfully.
                      HKEY_CLASSES_ROOT\Interface\{6DEEE498-08CC-43F0-BCA0-DBB5A25C9501} (Trojan.FakeAlert) -> Quarantined and deleted successfully.
                      HKEY_CLASSES_ROOT\CLSID\{A6790AA5-C6C7-4BCF-A46D-0FDAC4EA90EB} (Trojan.FakeAlert) -> Quarantined and deleted successfully.
                      HKEY_CLASSES_ROOT\IGraalToolbar.IGraalToolbarGUI.1 (Trojan.FakeAlert) -> Quarantined and deleted successfully.
                      HKEY_CLASSES_ROOT\IGraalToolbar.IGraalToolbarGUI (Trojan.FakeAlert) -> Quarantined and deleted successfully.
                      HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{A6790AA5-C6C7-4BCF-A46D-0FDAC4EA90EB} (Trojan.FakeAlert) -> Quarantined and deleted successfully.
                      HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{A6790AA5-C6C7-4BCF-A46D-0FDAC4EA90EB} (Trojan.FakeAlert) -> Quarantined and deleted successfully.
                      HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{E312764E-7706-43F1-8DAB-FCDD2B1E416D} (PUP.Dealio) -> Quarantined and deleted successfully.
                      HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{E312764E-7706-43F1-8DAB-FCDD2B1E416D} (PUP.Dealio) -> Quarantined and deleted successfully.

                      Valeur(s) du Registre infectée(s):
                      HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{A6790AA5-C6C7-4BCF-A46D-0FDAC4EA90EB} (Trojan.FakeAlert) -> Value: {A6790AA5-C6C7-4BCF-A46D-0FDAC4EA90EB} -> Quarantined and deleted successfully.

                      Elément(s) de données du Registre infecté(s):
                      (Aucun élément nuisible détecté)

                      Dossier(s) infecté(s):
                      (Aucun élément nuisible détecté)

                      Fichier(s) infecté(s):
                      c:\program files\iGraal\igraaltoolbar.dll (Trojan.FakeAlert) -> Quarantined and deleted successfully.
                      c:\program files\ad-remover\quarantine\C\program files\fast browser search\update.exe.vir (PUP.Fbsearch) -> Quarantined and deleted successfully.
                      c:\program files\ad-remover\quarantine\C\program files\kwinzysrch\uninstall.exe.vir (Adware.Agent) -> Quarantined and deleted successfully.
                      0
                      1. Modérateur
                        Désinstalle depuis l'ajout / suppression de programmes igraal toolbar.

                        *************

                        Vide la quarantaine MBAM.

                        Le PC devrait aller mieux.
                        Qu'en est-il ?
                        0
                        1. c bon j ai tout suprimer comme tu ma dis ca va un peu mieux
                          par contre petit question comment on fait pour suprimer la reconaissance vocal au demarage ca ralentis pas mal
                          0
                      2. Modérateur
                        RSIt est censé télécharger Hijackthis mais il ne l'a pas fait.
                        Il me sera utile pour désactiver la reconnaissance vocale du démarrage (et autres).

                        - Télécharge HijackThis.
                        = = = = >>> En cliquant ici <<< = = = =

                        - Enregistre "HJTInstall.exe" sur ton bureau.
                        - Clique droit sur HJTInstall.exe puis sélectionne "Exécuter en tant qu'administrateur" afin de lancer l'installation
                        - Clique sur Install ensuite sur "I Accept".
                        - Ferme le ensuite.

                        Relance RSIT par clic droit > Exécuter en tant qu'administrateur.
                        Reposte moi le nouveau rapport généré (seulement log.txt sera généré).

                        Merci.

                        Cela permettra de faire le point.
                        0
                        1. Bonsoir mais alors HJT est obselète ou pas ?
                          0
                        2. Modérateur
                          Il te dit qu'Hijackthis est obsolète ?
                          0
                        3. Tout le monde....ici.
                          Non ?
                          0
                        4. Contributeur
                          Bonsoir, oui il est obsolète lorsqu'il est utilisé seul. Mais RSIT fais des analyse autour de ça afin de le compléter.
                          0
                        5. réponse pertinente mais éronnée. Merci quand meme
                          il n'est pas obselète, juste plus synthétique. C'est bien ça ;)
                          0
                      3. Modérateur
                        Ok, maintenant un rapport RSIT comme demandé afin de faire le point.
                        0
                        1. c ce que j ai poster just avant?
                          0
                        2. Modérateur
                          non, c'était un rapport Hijackthis.
                          0
                        3. ET ou je le trouve le rapport RSIT
                          0
                      4. Logfile of random's system information tool 1.08 (written by random/random)
                        Run by guezennec at 2011-01-08 23:38:16
                        Microsoft® Windows Vista(TM) Édition Familiale Premium Service Pack 2
                        System drive C: has 47 GB (34%) free of 140 GB
                        Total RAM: 2814 MB (48% free)

                        HijackThis download failed

                        ======Scheduled tasks folder======

                        C:\Windows\tasks\Extension de garantie-guezennec.job
                        C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
                        C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
                        C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3266656020-2137407233-1988299294-1000Core.job
                        C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3266656020-2137407233-1988299294-1000UA.job
                        C:\Windows\tasks\User_Feed_Synchronization-{7E0DE096-B4B7-47BC-B192-1428A48B46FC}.job

                        ======Registry dump======

                        [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
                        Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-22 75200]

                        [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
                        Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2010-09-22 191792]

                        [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
                        Programme d'aide de l'Assistant de connexion Windows Live - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]

                        [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
                        Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2010-12-02 297648]

                        [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
                        Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.6.5805.1910\swg.dll [2010-12-02 843832]

                        [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CA6319C0-31B7-401E-A518-A07C3DB8F777}]
                        CBrowserHelperObject Object - C:\Program Files\Google\Google_BAE\BAE.dll [2006-11-09 98304]

                        [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]
                        Bing Bar BHO - C:\Program Files\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll [2010-09-22 612616]

                        [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
                        Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-09-15 41760]

                        [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F0626A63-410B-45E2-99A1-3F2475B2D695}]
                        Search Assistant

                        [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
                        {381FFDE8-2394-4f90-B10D-FC6124A40F8C} - BitDefender Toolbar - C:\Program Files\BitDefender\BitDefender 2009\IEToolbar.dll [2009-04-06 95536]
                        {8dcb7100-df86-4384-8842-8fa844297b3f} - @C:\Program Files\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll,-100 - C:\Program Files\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll [2010-09-22 612616]
                        {2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2010-12-02 297648]

                        [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
                        "SmpcSys"=C:\Program Files\Packard Bell\SetUpMyPC\SmpSys.exe [2008-02-04 1038136]
                        "IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe [2008-01-14 1688872]
                        "Speech Recognition"=C:\Windows\Speech\Common\sapisvr.exe [2008-01-21 49664]
                        "msnmsgr"=C:\Program Files\Windows Live\Messenger\msnmsgr.exe [2010-04-16 3872080]
                        "swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2010-05-02 39408]

                        C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
                        HP Digital Imaging Monitor.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
                        Logitech SetPoint.lnk - C:\Program Files\Logitech\SetPoint\SetPoint.exe

                        C:\Users\guezennec\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
                        OneNote 2007 - Capture d'écran et lancement.lnk - C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
                        OpenOffice.org 2.4.lnk - C:\Program Files\OpenOffice.org 2.4\program\quickstart.exe

                        [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]

                        [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]

                        [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]

                        [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]

                        [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
                        "dontdisplaylastusername"=0
                        "legalnoticecaption"=
                        "legalnoticetext"=
                        "shutdownwithoutlogon"=1
                        "undockwithoutlogon"=1
                        "EnableUIADesktopToggle"=0

                        [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
                        "NoDriveTypeAutoRun"=145

                        [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
                        "BindDirectlyToPropertySetStorage"=0

                        [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

                        [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

                        ======File associations======

                        .js - edit - C:\Windows\System32\Notepad.exe %1
                        .reg - open - regedit.exe %1

                        ======List of files/folders created in the last 1 months======

                        2011-01-08 14:21:12 ----D---- C:\Users\guezennec\AppData\Roaming\Malwarebytes
                        2011-01-08 14:20:58 ----A---- C:\Windows\system32\drivers\mbamswissarmy.sys
                        2011-01-08 14:20:56 ----D---- C:\ProgramData\Malwarebytes
                        2011-01-08 14:20:52 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
                        2011-01-08 14:20:52 ----A---- C:\Windows\system32\drivers\mbam.sys
                        2011-01-08 13:14:50 ----A---- C:\Windows\system32\uxtuneup.dll
                        2011-01-08 13:14:50 ----A---- C:\Windows\system32\authuitu.dll
                        2011-01-08 13:08:09 ----A---- C:\Windows\system32\TURegOpt.exe
                        2011-01-08 13:06:52 ----D---- C:\Users\guezennec\AppData\Roaming\TuneUp Software
                        2011-01-08 13:06:11 ----D---- C:\Program Files\TuneUp Utilities 2011
                        2011-01-08 13:05:16 ----D---- C:\ProgramData\TuneUp Software
                        2011-01-08 13:05:02 ----SHD---- C:\ProgramData\{24036256-BFDB-4CD3-BE8A-A3D6160F2E16}
                        2011-01-08 12:58:50 ----D---- C:\Program Files\trend micro
                        2011-01-08 12:58:49 ----D---- C:\rsit
                        2011-01-08 12:39:26 ----AD---- C:\Navilog1
                        2011-01-08 12:39:23 ----D---- C:\Program Files\Navilog1
                        2010-12-17 09:16:38 ----A---- C:\Windows\system32\win32k.sys
                        2010-12-17 09:16:31 ----A---- C:\Windows\system32\schedsvc.dll
                        2010-12-17 09:16:30 ----A---- C:\Windows\system32\taskschd.dll
                        2010-12-17 09:16:28 ----A---- C:\Windows\system32\wmicmiplugin.dll
                        2010-12-17 09:16:28 ----A---- C:\Windows\system32\taskeng.exe
                        2010-12-17 09:16:28 ----A---- C:\Windows\system32\taskcomp.dll
                        2010-12-17 09:16:20 ----A---- C:\Windows\system32\consent.exe
                        2010-12-17 09:16:15 ----A---- C:\Windows\system32\atmlib.dll
                        2010-12-17 09:16:15 ----A---- C:\Windows\system32\atmfd.dll
                        2010-12-17 09:16:13 ----A---- C:\Windows\system32\fontsub.dll
                        2010-12-17 09:16:09 ----A---- C:\Windows\system32\iertutil.dll
                        2010-12-17 09:16:05 ----A---- C:\Windows\system32\mshtml.dll
                        2010-12-17 09:16:03 ----A---- C:\Windows\system32\mstime.dll
                        2010-12-17 09:16:03 ----A---- C:\Windows\system32\ieframe.dll
                        2010-12-17 09:16:00 ----A---- C:\Windows\system32\ie4uinit.exe
                        2010-12-17 09:15:58 ----A---- C:\Windows\system32\wininet.dll
                        2010-12-17 09:15:58 ----A---- C:\Windows\system32\urlmon.dll
                        2010-12-17 09:15:58 ----A---- C:\Windows\system32\msfeeds.dll
                        2010-12-17 09:15:57 ----A---- C:\Windows\system32\msfeedssync.exe
                        2010-12-17 09:15:57 ----A---- C:\Windows\system32\iedkcs32.dll
                        2010-12-17 09:15:55 ----A---- C:\Windows\system32\ieui.dll
                        2010-12-17 09:15:54 ----A---- C:\Windows\system32\occache.dll
                        2010-12-17 09:15:54 ----A---- C:\Windows\system32\ieUnatt.exe
                        2010-12-17 09:15:54 ----A---- C:\Windows\system32\iesysprep.dll
                        2010-12-17 09:15:54 ----A---- C:\Windows\system32\iepeers.dll
                        2010-12-17 09:15:53 ----A---- C:\Windows\system32\mshtmled.dll
                        2010-12-17 09:15:53 ----A---- C:\Windows\system32\msfeedsbs.dll
                        2010-12-17 09:15:53 ----A---- C:\Windows\system32\licmgr10.dll
                        2010-12-17 09:15:53 ----A---- C:\Windows\system32\jsproxy.dll
                        2010-12-17 09:15:53 ----A---- C:\Windows\system32\iesetup.dll
                        2010-12-17 09:15:53 ----A---- C:\Windows\system32\iernonce.dll
                        2010-12-17 09:15:39 ----A---- C:\Windows\system32\tzres.dll
                        2010-12-15 13:08:35 ----D---- C:\Users\guezennec\AppData\Roaming\PhotoScape
                        2010-12-15 13:07:51 ----D---- C:\Program Files\PhotoScape
                        2010-12-12 21:35:54 ----D---- C:\Windows\system32\WindowsPowerShell
                        2010-12-12 21:31:44 ----A---- C:\Windows\system32\winrsmgr.dll
                        2010-12-12 21:31:13 ----A---- C:\Windows\system32\wsmprovhost.exe
                        2010-12-12 21:31:13 ----A---- C:\Windows\system32\winrshost.exe
                        2010-12-12 21:31:13 ----A---- C:\Windows\system32\winrs.exe
                        2010-12-12 21:31:10 ----A---- C:\Windows\system32\wsmplpxy.dll
                        2010-12-12 21:31:10 ----A---- C:\Windows\system32\winrssrv.dll
                        2010-12-12 21:31:05 ----A---- C:\Windows\system32\WsmRes.dll
                        2010-12-12 21:31:05 ----A---- C:\Windows\system32\wevtfwd.dll
                        2010-12-12 21:31:05 ----A---- C:\Windows\system32\wecutil.exe
                        2010-12-12 21:31:05 ----A---- C:\Windows\system32\wecsvc.dll
                        2010-12-12 21:31:05 ----A---- C:\Windows\system32\wecapi.dll
                        2010-12-12 21:31:04 ----A---- C:\Windows\system32\pwrshplugin.dll
                        2010-12-12 21:30:52 ----A---- C:\Windows\system32\winrm.vbs
                        2010-12-12 21:30:47 ----A---- C:\Windows\system32\WsmWmiPl.dll
                        2010-12-12 21:30:47 ----A---- C:\Windows\system32\WsmAuto.dll
                        2010-12-12 21:30:47 ----A---- C:\Windows\system32\winrscmd.dll
                        2010-12-12 21:30:46 ----A---- C:\Windows\system32\WSManMigrationPlugin.dll
                        2010-12-12 21:30:46 ----A---- C:\Windows\system32\WSManHTTPConfig.exe
                        2010-12-12 21:30:45 ----A---- C:\Windows\system32\WsmSvc.dll

                        ======List of files/folders modified in the last 1 months======

                        2011-01-08 23:38:17 ----D---- C:\Windows\prefetch
                        2011-01-08 23:38:14 ----D---- C:\Windows\Temp
                        2011-01-08 20:31:27 ----D---- C:\Windows\inf
                        2011-01-08 20:31:27 ----AD---- C:\Windows\System32
                        2011-01-08 20:31:27 ----A---- C:\Windows\system32\PerfStringBackup.INI
                        2011-01-08 20:25:02 ----D---- C:\Users\guezennec\AppData\Roaming\OpenOffice.org2
                        2011-01-08 20:21:24 ----D---- C:\Windows\system32\drivers\etc
                        2011-01-08 20:03:42 ----RD---- C:\Program Files
                        2011-01-08 20:03:42 ----D---- C:\Windows
                        2011-01-08 19:56:29 ----D---- C:\Program Files\Mozilla Firefox
                        2011-01-08 19:19:15 ----SHD---- C:\System Volume Information
                        2011-01-08 19:18:14 ----D---- C:\ProgramData\Norton
                        2011-01-08 19:18:14 ----AD---- C:\Windows\system32\drivers
                        2011-01-08 19:18:08 ----D---- C:\Windows\Tasks
                        2011-01-08 19:09:27 ----D---- C:\Windows\Web
                        2011-01-08 14:20:56 ----HD---- C:\ProgramData
                        2011-01-08 13:48:44 ----D---- C:\Windows\system32\catroot2
                        2011-01-08 13:30:21 ----D---- C:\Windows\system32\Tasks
                        2011-01-08 13:15:14 ----SHD---- C:\Windows\Installer
                        2011-01-08 12:35:18 ----D---- C:\Users\guezennec\AppData\Roaming\Azureus
                        2011-01-07 23:08:24 ----D---- C:\Windows\Minidump
                        2011-01-07 23:08:24 ----D---- C:\Windows\Debug
                        2011-01-06 23:14:27 ----D---- C:\Program Files\Microsoft Silverlight
                        2011-01-06 19:00:26 ----D---- C:\Windows\system32\Macromed
                        2011-01-06 18:41:53 ----D---- C:\Windows\system32\config
                        2011-01-06 18:41:46 ----D---- C:\Windows\system32\wbem
                        2011-01-06 18:41:46 ----D---- C:\Windows\system32\spool
                        2011-01-06 18:41:46 ----D---- C:\Windows\registration
                        2010-12-18 09:43:37 ----D---- C:\Windows\rescache
                        2010-12-18 09:22:05 ----D---- C:\Program Files\Windows Mail
                        2010-12-18 09:22:00 ----D---- C:\Windows\system32\migration
                        2010-12-18 09:22:00 ----D---- C:\Program Files\Internet Explorer
                        2010-12-17 20:17:57 ----D---- C:\ProgramData\Microsoft Help
                        2010-12-17 20:16:48 ----D---- C:\Windows\winsxs
                        2010-12-17 20:16:24 ----D---- C:\Program Files\Microsoft Works
                        2010-12-17 20:12:05 ----D---- C:\Windows\system32\fr-FR
                        2010-12-17 20:08:07 ----D---- C:\Windows\system32\catroot
                        2010-12-17 20:02:18 ----A---- C:\Windows\system32\mrt.exe
                        2010-12-16 09:15:18 ----D---- C:\ProgramData\Sonic
                        2010-12-12 21:40:15 ----D---- C:\Windows\Microsoft.NET
                        2010-12-12 21:38:46 ----RSD---- C:\Windows\assembly
                        2010-12-12 21:35:58 ----D---- C:\Windows\PolicyDefinitions

                        ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

                        R0 PxHelp20;PxHelp20; C:\Windows\System32\Drivers\PxHelp20.sys [2008-06-16 44944]
                        R1 bdftdif;bdftdif; \??\C:\Program Files\Common Files\BitDefender\BitDefender Firewall\bdftdif.sys [2009-08-21 137224]
                        R2 BDVEDISK;BDVEDISK; \??\C:\Program Files\BitDefender\BitDefender 2009\BDVEDISK.sys [2009-01-21 82696]
                        R3 bdfm;BDFM; C:\Windows\system32\drivers\bdfm.sys [2009-01-17 111112]
                        R3 Bdfndisf;BitDefender Firewall NDIS Filter Service; C:\Windows\system32\DRIVERS\bdfndisf.sys [2009-08-21 104456]
                        R3 bdfsfltr;bdfsfltr; C:\Windows\system32\DRIVERS\bdfsfltr.sys [2009-01-21 242184]
                        R3 BDSelfPr;BDSelfPr; \??\C:\Program Files\BitDefender\BitDefender 2009\bdselfpr.sys [2009-04-07 8832]
                        R3 Dot4;Pilote MS IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4.sys [2008-01-21 131584]
                        R3 Dot4Print;Pilote de classe Imprimante pour IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4Prt.sys [2008-01-21 16384]
                        R3 dot4usb;MS Dot4USB Filter Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2008-01-21 36864]
                        R3 HdAudAddService;Microsoft UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\CHDART.sys [2007-11-05 182272]
                        R3 LgBttPort;LGE Bluetooth TransPort; C:\Windows\system32\DRIVERS\lgbtport.sys [2009-05-25 12032]
                        R3 lgbusenum;LG Bluetooth Bus Enumerator; C:\Windows\system32\DRIVERS\lgbtbus.sys [2009-05-25 10496]
                        R3 LGVMODEM;LGE Virtual Modem; C:\Windows\system32\DRIVERS\lgvmodem.sys [2009-05-25 12928]
                        R3 LHidFilt;Logitech SetPoint KMDF HID Filter Driver; C:\Windows\system32\DRIVERS\LHidFilt.Sys [2008-02-29 35344]
                        R3 LMouFilt;Logitech SetPoint KMDF Mouse Filter Driver; C:\Windows\system32\DRIVERS\LMouFilt.Sys [2008-02-29 36880]
                        R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvmfdx32.sys [2007-11-18 1040544]
                        R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2007-09-19 7626400]
                        R3 nvsmu;nvsmu; C:\Windows\system32\DRIVERS\nvsmu.sys [2007-02-16 12032]
                        R3 RTL8187B;Realtek RTL8187B Wireless 802.11b/g 54Mbps USB 2.0 Network Adapter; C:\Windows\system32\DRIVERS\RTL8187B.sys [2007-10-05 288256]
                        R3 RTSTOR;Realtek USB 2.0 Card Reader; C:\Windows\system32\drivers\RTSTOR.SYS [2008-06-23 62464]
                        R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2007-02-09 182456]
                        R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv; \??\C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesDriver32.sys [2010-10-07 10064]
                        R3 usbaudio;Pilote USB audio (WDM); C:\Windows\system32\drivers\usbaudio.sys [2009-04-11 73216]
                        R3 usbscan;Pilote de scanneur USB; C:\Windows\system32\DRIVERS\usbscan.sys [2008-01-21 35328]
                        R3 vm331avs;Bison Webcam; C:\Windows\System32\Drivers\vm331avs.sys [2007-09-07 943016]
                        S3 Afc;PPdus ASPI Shell; C:\Windows\system32\drivers\Afc.sys []
                        S3 androidusb;ADB Interface Driver; C:\Windows\System32\Drivers\androidusb.sys [2009-06-11 25728]
                        S3 drmkaud;Filtre de décodeur DRM (Noyau Microsoft); C:\Windows\system32\drivers\drmkaud.sys [2008-01-21 5632]
                        S3 lgmdbus;LG Mobile driver (WDM); C:\Windows\system32\DRIVERS\lgmdbus.sys [2008-07-08 89600]
                        S3 lgmdmdfl;LG Mobile USB WMC Modem Filter; C:\Windows\system32\DRIVERS\lgmdmdfl.sys [2008-07-08 14976]
                        S3 lgmdmdm;LG Mobile USB WMC Modem Driver; C:\Windows\system32\DRIVERS\lgmdmdm.sys [2008-07-08 121344]
                        S3 lgmdmgmt;LG Mobile USB WMC Device Management Drivers (WDM); C:\Windows\system32\DRIVERS\lgmdmgmt.sys [2008-07-08 114944]
                        S3 lgmdobex;LG Mobile USB WMC OBEX Interface; C:\Windows\system32\DRIVERS\lgmdobex.sys [2008-07-08 111232]
                        S3 MSKSSRV;Proxy de service de répartition Microsoft; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-21 8192]
                        S3 MSPCLOCK;Proxy d'horloge de répartition Microsoft; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-21 5888]
                        S3 MSPQM;Proxy de gestion de qualité de répartition Microsoft; C:\Windows\system32\drivers\MSPQM.sys [2008-01-21 5504]
                        S3 MSTEE;Convertisseur en T/site-à-site de répartition Microsoft; C:\Windows\system32\drivers\MSTEE.sys [2008-01-21 6016]
                        S3 Profos;Profos; \??\C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\profos.sys [2009-01-17 13056]
                        S3 qcusbser;Huawei USB Device for Legacy Serial Communication; C:\Windows\system32\DRIVERS\smusbser.sys [2009-07-08 106240]
                        S3 sscdbus;SAMSUNG USB Composite Device driver (WDM); C:\Windows\system32\DRIVERS\sscdbus.sys [2005-08-17 58352]
                        S3 sscdmdfl;SAMSUNG CDMA Modem Filter; C:\Windows\system32\DRIVERS\sscdmdfl.sys [2005-08-17 8272]
                        S3 sscdmdm;SAMSUNG CDMA Modem Drivers; C:\Windows\system32\DRIVERS\sscdmdm.sys [2005-08-17 93872]
                        S3 Trufos;Trufos; \??\C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\trufos.sys [2009-04-18 39808]
                        S3 usbvideo;Périphérique vidéo USB (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2008-01-21 134016]
                        S3 WINUSB;Pilote WinUsb; C:\Windows\system32\DRIVERS\WinUSB.SYS [2009-04-11 31616]
                        S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2009-10-01 40448]
                        S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-21 83328]
                        S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2008-01-21 6656]
                        S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-01-21 386616]
                        S4 RxFilter;RxFilter; C:\Windows\system32\DRIVERS\RxFilter.sys [2008-08-11 57328]

                        ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

                        R2 AdobeActiveFileMonitor6.0;Adobe Active File Monitor V6; C:\Program Files\Adobe\Photoshop Elements 6.0\PhotoshopElementsFileAgent.exe [2007-09-10 124832]
                        R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [2009-07-09 144712]
                        R2 Bonjour Service;Service Bonjour; C:\Program Files\Bonjour\mDNSResponder.exe [2008-12-12 238888]
                        R2 BthServ;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2008-01-21 21504]
                        R2 hpqddsvc;Service HP CUE DeviceDiscovery; C:\Windows\system32\svchost.exe [2008-01-21 21504]
                        R2 LIVESRV;BitDefender Desktop Update Service; C:\Program Files\Common Files\BitDefender\BitDefender Update Service\livesrv.exe [2009-10-07 413696]
                        R2 Nero BackItUp Scheduler 3;Nero BackItUp Scheduler 3; C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe [2007-12-03 869672]
                        R2 PLFlash DeviceIoControl Service;PLFlash DeviceIoControl Service; C:\Windows\system32\IoctlSvc.exe [2006-12-19 81920]
                        R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2008-01-21 21504]
                        R2 RapiMgr;@%windir%\WindowsMobile\rapimgr.dll,-104; C:\Windows\system32\svchost.exe [2008-01-21 21504]
                        R2 SeaPort;SeaPort; C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2010-09-22 249136]
                        R2 TuneUp.UtilitiesSvc;TuneUp Utilities Service; C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesService32.exe [2010-12-14 1517376]
                        R2 UxTuneUp;@%SystemRoot%\System32\uxtuneup.dll,-4096; C:\Windows\System32\svchost.exe [2008-01-21 21504]
                        R2 VSSERV;BitDefender Virus Shield; C:\Program Files\BitDefender\BitDefender 2009\vsserv.exe [2009-11-20 1638240]
                        R2 WcesComm;@%windir%\WindowsMobile\wcescomm.dll,-40079; C:\Windows\system32\svchost.exe [2008-01-21 21504]
                        R3 hpqcxs08;hpqcxs08; C:\Windows\system32\svchost.exe [2008-01-21 21504]
                        R3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe [2008-01-14 447784]
                        S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
                        S2 gupdate1c98b023004a395;Google Update Service (gupdate1c98b023004a395); C:\Program Files\Google\Update\GoogleUpdate.exe [2009-02-09 133104]
                        S2 Net Driver HPZ12;Net Driver HPZ12; C:\Windows\System32\svchost.exe [2008-01-21 21504]
                        S2 Roxio Upnp Server 11;Roxio Upnp Server 11; C:\Program Files\Roxio Creator 2009\Digital Home 11\RoxioUpnpService11.exe [2008-08-14 367088]
                        S2 RoxLiveShare11;LiveShare P2P Server 11; C:\Program Files\Common Files\Roxio Shared\11.0\SharedCOM\RoxLiveShare11.exe [2008-08-14 309744]
                        S2 RoxWatch11;Roxio Hard Drive Watcher 11; C:\Program Files\Common Files\Roxio Shared\11.0\SharedCOM\RoxWatch11.exe [2008-08-14 170480]
                        S3 Arrakis3;BitDefender Arrakis Server; C:\Program Files\Common Files\BitDefender\BitDefender Arrakis Server\bin\Arrakis3.exe [2008-07-17 118784]
                        S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2008-06-26 647680]
                        S3 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-21 21504]
                        S3 GoogleDesktopManager-051210-111108;Google Desktop Manager 5.9.1005.12335; C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [2010-06-15 30192]
                        S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-05-03 182768]
                        S3 LBTServ;Logitech Bluetooth Service; C:\Program Files\Common Files\Logitech\Bluetooth\LBTServ.exe [2008-05-02 121360]
                        S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
                        S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
                        S3 Roxio UPnP Renderer 11;Roxio UPnP Renderer 11; C:\Program Files\Roxio Creator 2009\Digital Home 11\RoxioUPnPRenderer11.exe [2008-08-14 313840]
                        S3 RoxMediaDB11;RoxMediaDB11; C:\Program Files\Common Files\Roxio Shared\11.0\SharedCOM\RoxMediaDB11.exe [2009-01-09 1122304]
                        S3 scan;BitDefender Threat Scanner; C:\Windows\System32\svchost.exe [2008-01-21 21504]
                        S3 WPFFontCache_v0400;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe,-100; C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]

                        -----------------EOF-----------------
                        0
                        1. Modérateur
                          Ok.
                          Étrange qu'Hijackthis ne veuille pas se lancer.
                          Tu as peut être lancé RSIT par double clic.

                          ********

                          Lance Hijackthis par clic droit, `Exécuter en tant qu'administrateur`.
                          Il se situe ici :

                          Clique sur "Do a system scan only".
                          Coche ces lignes :
                          O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
                          O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
                          O4 - Startup: OpenOffice.org 2.4.lnk = C:\Program Files\OpenOffice.org 2.4\program\quickstart.exe
                          O2 - BHO: Search Assistant - {F0626A63-410B-45E2-99A1-3F2475B2D695} - (no file)
                          O9 - Extra button: (no name) - {53F6FCCD-9E22-4d71-86EA-6E43136192AB} - (no file)
                          O9 - Extra button: (no name) - {925DAB62-F9AC-4221-806A-057BFB1014AA} - (no file)
                          O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe

                          Clique ensuite sur "Fix checked".
                          Ferme Hijackthis.

                          *******

                          Il ne me semble pas que BitDefender soit actif sur ta machine, est-ce normal ??
                          As-tu l'icône en bas à droite de l'écran, est-il lancé ?

                          *******

                          Pour supprimer toutes les traces des logiciels qui ont servi à traiter les infections spécifiques :

                          Télécharge Toolscleaner sur ton Bureau
                          = = = =>>> En cliquant ici <<<= = = =
                          * Clique droit sur ToolsCleaner2.exe et clique sur "Exécuter en tant qu'administrateur" pour le lancer. Laisse le travailler (même s'il est écrit "Ne répond plus").
                          * Clique sur Recherche et laisse le scan se terminer.
                          * Clique sur Suppression pour finaliser.
                          * Tu peux, si tu le souhaites, te servir des Options facultatives.
                          * Clique sur Quitter, pour que le rapport puisse se créer.
                          * Le rapport (TCleaner.txt) se trouve à la racine de votre disque dur (C:\)...colle le dans ta réponse.

                          *********************

                          Tu peux garder Malwarebytes anti malware en tant qu'anti malware, il est très efficace. (Même s'il ne résout pas tous les problèmes, bien entendu ... !)
                          Par contre, il n'a pas de scan résident en mode gratuit ! Il faut donc pour l'utiliser le lancer, faire les mises à jour et faire un scan complet après.

                          *********************

                          * Télécharge Ccleaner Slim :
                          = = = = >>> En cliquant ici <<< = = = =

                          * Installe le.
                          * Choisis l'onglet Nettoyeur

                          Quitte ton navigateur Internet avant de le lancer, décoche la dernière case (Avancé si elle est cochée) puis clique sur "lancer le nettoyage" quand il aura terminé le scan cliques en bas à droite sur "lancer le nettoyage" et accepte par oui.
                          Attention, il risque de vider ta corbeille : si tu veux récupérer des fichiers effacés par erreur, mieux vaut le faire maintenant.

                          * Choisis l'onglet Registre

                          - Clique sur Chercher des erreurs
                          - Une fois la recherche terminée, clic sur Réparer les erreurs sélectionnées (par défaut, tout est sélectionné, laisse comme ça)
                          - Au message Voulez-vous sauvegarder les changements faits dans le registre, réponds Oui et enregistre le fichier au format « .reg » en le nommant par la date par exemple en le mettant sur le bureau. Puis continue.
                          - A la fenêtre qui s'ouvre ensuite, clique sur Corriger toutes les erreurs sélectionnées puis OK
                          - Recommence jusqu'à ce qu'aucune erreur n'apparaisse (ou une seule récurrente).
                          - Ferme Ccleaner.

                          * Tutoriel en images ICI si besoin.

                          Note : La sauvegarde utilisée permet de remettre tel que la base était avant la manipulation au cas où il y aurait des soucis mais cela ne m'est jamais arrivé ! Il vaut mieux prendre des précautions, c'est tout. ;-)
                          0
                          1. non j ai pas l icone en bas a droite de bit diffender
                            0
                          2. il est allumer dhabitude
                            0
                        2. Modérateur
                          Tu l'as payé, téléchargé, en version boite, ... ?
                          Est-il censé fonctionné ou tu n'as plus de licence active, ...?
                          0
                          • 1
                          • 2