Spyware et autres tout le temps malgré avg

Bonjour,

J'ai tout le temps des spyware,des mouchards que spybots et ewido devenu avg anti-spywate me dégotent tout le temps.
Que puis-je faire pour éviter ça ?

Merci de m'aider, mon précédent mail sur une demande d'analyse de mon log hijackthis est demeuré sans réponse.
Je sais que vous avez énormément demande mais si vous pouviez une fois de plus me faire profiter de vos conseils, je vous en serais reconnaissante.

Tanaud
Configuration: Windows XP
Firefox 1.5.0.9

7 réponses

  1. Contributeur sécurité
    Salut

    Peux tu nous mettre un nouvel Hijack this?

    A+
    0
    1. merci de ta réponse et de ton aide. Voila le log, qu'en penses-tu?
      depuis mon dernier mail, j'ai telechargé a-squared et j'ai fait un scan avec qui m'a trouvé un truc, puis un autre qui n'a rien trouvé. J'ai refait également avg et spybot.
      A bientôt et encore merci
      carite

      Logfile of HijackThis v1.99.1
      Scan saved at 09:21:29, on 23/02/2007
      Platform: Windows XP (WinNT 5.01.2600)
      MSIE: Internet Explorer v6.00 (6.00.2600.0000)

      Running processes:
      C:\WINDOWS\System32\smss.exe
      C:\WINDOWS\system32\winlogon.exe
      C:\WINDOWS\system32\services.exe
      C:\WINDOWS\system32\lsass.exe
      C:\WINDOWS\system32\svchost.exe
      C:\WINDOWS\System32\svchost.exe
      C:\WINDOWS\Explorer.EXE
      C:\WINDOWS\system32\spoolsv.exe
      C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
      C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
      C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
      C:\Program Files\VIA\RAID\raid_tool.exe
      C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
      C:\Program Files\Alwil Software\Avast4\ashServ.exe
      C:\WINDOWS\System32\drivers\CDAC11BA.EXE
      C:\Program Files\Sunbelt Software\Personal Firewall 4\kpf4ss.exe
      C:\WINDOWS\System32\nvsvc32.exe
      C:\WINDOWS\System32\svchost.exe
      C:\Program Files\Sunbelt Software\Personal Firewall 4\kpf4gui.exe
      C:\Program Files\Sunbelt Software\Personal Firewall 4\kpf4gui.exe
      C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
      C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
      C:\WINDOWS\System32\CAPRPCSK.EXE
      C:\WINDOWS\System32\spool\drivers\w32x86\3\CAPPSWK.EXE
      C:\WINDOWS\System32\wuauclt.exe
      C:\Program Files\Outlook Express\msimn.exe
      C:\Program Files\Messenger\msmsgs.exe
      C:\Documents and Settings\Carite\Bureau\Sécurité\hijackthis\hijackthis_hijackthis_1.99.1_anglais_17891.exe

      R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://actus.sfr.fr
      R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://actus.sfr.fr
      R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
      R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
      O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
      O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
      O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
      O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar4.dll
      O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
      O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
      O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar4.dll
      O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
      O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
      O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
      O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
      O4 - Global Startup: VIA RAID TOOL.lnk = C:\Program Files\VIA\RAID\raid_tool.exe
      O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
      O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
      O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} - http://software-dl.real.com/2050c910fa7208eed806/netzip/RdxIE601_fr.cab
      O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
      O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
      O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
      O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
      O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
      O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
      O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
      O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
      O23 - Service: C-DillaCdaC11BA - C-Dilla Ltd - C:\WINDOWS\System32\drivers\CDAC11BA.EXE
      O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
      O23 - Service: Sunbelt Kerio Personal Firewall 4 (KPF4) - Sunbelt Software - C:\Program Files\Sunbelt Software\Personal Firewall 4\kpf4ss.exe
      O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
      0
  2. Contributeur sécurité
    Salut

    Peux tu copier colle le rapport de spybot?

    A+
    0
    1. Bonsoir,

      J'ai refait toute une série de scan dont voici les résultats :

      avast scan minutieux 0 fichier infecté
      ad-aware : a trouvé 3 objet critiques supprimés et un certain nombre en quarantaine dans :
      ArchiveData(auto-quarantine- 2007-02-25 19-30-26.bckp)
      Referencefile : SE1R154 19.02.2007
      ArchiveData(auto-quarantine- 2007-02-25 19-30-26.bckp)
      Referencefile : SE1R154 19.02.2007

      spyboat : 3 éléments que j'ai supprimés mais je n'arrive pas à enregistrer un rapport.

      AVG Anti-Spyware - Rapport d'analyse
      ---------------------------------------------------------
      + Créé à: 20:24:18 25/02/2007
      + Résultat de l'analyse:

      C:\Documents and Settings\Carite\Cookies\carite@247realmedia[1].txt -> TrackingCookie.247realmedia : Nettoyé.
      :mozilla.6:C:\Documents and Settings\Carite\Application Data\Mozilla\Firefox\Profiles\6e1od7k6.default\cookies.txt -> TrackingCookie.Adtech : Nettoyé.
      :mozilla.7:C:\Documents and Settings\Carite\Application Data\Mozilla\Firefox\Profiles\6e1od7k6.default\cookies.txt -> TrackingCookie.Adtech : Nettoyé.
      :mozilla.11:C:\Documents and Settings\Carite\Application Data\Mozilla\Firefox\Profiles\6e1od7k6.default\cookies.txt -> TrackingCookie.Estat : Nettoyé.
      :mozilla.55:C:\Documents and Settings\Carite\Application Data\Mozilla\Firefox\Profiles\6e1od7k6.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé.
      :mozilla.56:C:\Documents and Settings\Carite\Application Data\Mozilla\Firefox\Profiles\6e1od7k6.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé.
      :mozilla.57:C:\Documents and Settings\Carite\Application Data\Mozilla\Firefox\Profiles\6e1od7k6.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé.
      :mozilla.33:C:\Documents and Settings\Carite\Application Data\Mozilla\Firefox\Profiles\6e1od7k6.default\cookies.txt -> TrackingCookie.Weborama : Nettoyé.
      :mozilla.34:C:\Documents and Settings\Carite\Application Data\Mozilla\Firefox\Profiles\6e1od7k6.default\cookies.txt -> TrackingCookie.Weborama : Nettoyé.
      :mozilla.35:C:\Documents and Settings\Carite\Application Data\Mozilla\Firefox\Profiles\6e1od7k6.default\cookies.txt -> TrackingCookie.Weborama : Nettoyé.

      Fin du rapport

      Dernier rapport hijackthis :

      Logfile of HijackThis v1.99.1
      Scan saved at 20:25:22, on 25/02/2007
      Platform: Windows XP (WinNT 5.01.2600)
      MSIE: Internet Explorer v6.00 (6.00.2600.0000)

      Running processes:
      C:\WINDOWS\System32\smss.exe
      C:\WINDOWS\system32\winlogon.exe
      C:\WINDOWS\system32\services.exe
      C:\WINDOWS\system32\lsass.exe
      C:\WINDOWS\system32\svchost.exe
      C:\WINDOWS\System32\svchost.exe
      C:\WINDOWS\Explorer.EXE
      C:\WINDOWS\system32\spoolsv.exe
      C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
      C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
      C:\Program Files\VIA\RAID\raid_tool.exe
      C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
      C:\Program Files\Alwil Software\Avast4\ashServ.exe
      C:\WINDOWS\System32\drivers\CDAC11BA.EXE
      C:\Program Files\Sunbelt Software\Personal Firewall 4\kpf4ss.exe
      C:\WINDOWS\System32\nvsvc32.exe
      C:\Program Files\Sunbelt Software\Personal Firewall 4\kpf4gui.exe
      C:\Program Files\Sunbelt Software\Personal Firewall 4\kpf4gui.exe
      C:\WINDOWS\System32\svchost.exe
      C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
      C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
      C:\WINDOWS\System32\CAPRPCSK.EXE
      C:\WINDOWS\System32\spool\drivers\w32x86\3\CAPPSWK.EXE
      C:\WINDOWS\System32\wuauclt.exe
      C:\Program Files\Mozilla Firefox\firefox.exe
      C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe
      C:\Program Files\Outlook Express\msimn.exe
      C:\Program Files\Messenger\msmsgs.exe
      C:\Program Files\Internet Explorer\iexplore.exe
      C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
      C:\Documents and Settings\Carite\Bureau\Sécurité\hijackthis\hijackthis_hijackthis_1.99.1_anglais_17891.exe

      R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://actus.sfr.fr
      R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://actus.sfr.fr
      R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
      R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
      O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
      O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
      O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
      O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar4.dll
      O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
      O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
      O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar4.dll
      O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
      O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
      O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
      O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
      O4 - Global Startup: VIA RAID TOOL.lnk = C:\Program Files\VIA\RAID\raid_tool.exe
      O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
      O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
      O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} - http://software-dl.real.com/2050c910fa7208eed806/netzip/RdxIE601_fr.cab
      O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
      O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
      O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
      O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
      O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
      O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
      O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
      O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
      O23 - Service: C-DillaCdaC11BA - C-Dilla Ltd - C:\WINDOWS\System32\drivers\CDAC11BA.EXE
      O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
      O23 - Service: Sunbelt Kerio Personal Firewall 4 (KPF4) - Sunbelt Software - C:\Program Files\Sunbelt Software\Personal Firewall 4\kpf4ss.exe
      O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe

      voila qu'en penses-tu?

      Tanaud
      0
  3. Contributeur sécurité
    Salut

    Clik droit sur le rapport de spybot et choisis copier dans le presse papier

    vient ici et clik droit < coller.

    a+
    0
    1. je ne l'ai plus le rapport de spybot car j'ai supprimé les fichiers en question. J'ai refait un scan avec spybot et y a plus rien.
      Mais comment se fait-il qu'un coup il y ait des trucs et un autre non?
      le log hijackthis tu en penses quoi ?

      Merci
      tanaud
      0
  4. Contributeur sécurité
    Salut

    Apparemment il a réussi a les supprimer.
    Hijack this ok sauf tes mises a jour windows, installe le sp1 ou le sp2.

    a+
    0
    1. Je te poste le nouveau rapport de spybot qui révèle à nouveau des trucs qui ne vont pas. j'ai fait après corriger les problèmes et les problèmes ont été corrigés mais ils reviennent toujours.

      --- Search result list ---
      DoubleClick: Cookie traceur (Firefox: default) (Cookie, nothing done)

      MediaPlex: Cookie traceur (Firefox: default) (Cookie, nothing done)

      --- Spybot - Search & Destroy version: 1.4 (build: 20050523) ---

      2005-05-31 blindman.exe (1.0.0.1)
      2005-05-31 SpybotSD.exe (1.4.0.3)
      2005-05-31 TeaTimer.exe (1.4.0.2)
      2007-02-18 unins000.exe (51.41.0.0)
      2005-05-31 Update.exe (1.4.0.0)
      2007-01-15 advcheck.dll (1.2.1.0)
      2005-05-31 aports.dll (2.1.0.0)
      2005-05-31 borlndmm.dll (7.0.4.453)
      2005-05-31 delphimm.dll (7.0.4.453)
      2005-05-31 SDHelper.dll (1.4.0.0)
      2007-01-02 Tools.dll (2.0.1.0)
      2005-05-31 UnzDll.dll (1.73.1.1)
      2005-05-31 ZipDll.dll (1.73.2.0)
      2007-02-21 Includes\Cookies.sbi (*)
      2006-12-08 Includes\Dialer.sbi (*)
      2007-02-21 Includes\DialerC.sbi (*)
      2007-02-07 Includes\Hijackers.sbi (*)
      2007-02-21 Includes\HijackersC.sbi (*)
      2006-10-27 Includes\Keyloggers.sbi (*)
      2007-02-21 Includes\KeyloggersC.sbi (*)
      2004-11-29 Includes\LSP.sbi (*)
      2007-02-14 Includes\Malware.sbi (*)
      2007-02-21 Includes\MalwareC.sbi (*)
      2007-01-19 Includes\PUPS.sbi (*)
      2007-02-21 Includes\PUPSC.sbi (*)
      2007-02-21 Includes\Revision.sbi (*)
      2006-12-08 Includes\Security.sbi (*)
      2007-02-21 Includes\SecurityC.sbi (*)
      2007-02-02 Includes\Spybots.sbi (*)
      2007-02-21 Includes\SpybotsC.sbi (*)
      2005-02-17 Includes\Tracks.uti
      2007-02-14 Includes\Trojans.sbi (*)
      2007-02-21 Includes\TrojansC.sbi (*)

      --- System information ---
      Windows XP (Build: 2600)
      / Internet Explorer 6 / SP0: Correctif Windows XP - Article Base de Connaissances 834707
      / Windows XP / SP1: Windows XP Hotfix - KB823980
      / Windows XP / SP1: Windows XP Hotfix (SP1) [See Q317181 for more information]
      / Windows XP / SP1: Windows XP Hotfix (SP1) [See Q329048 for more information]
      / Windows XP / SP1: Windows XP Hotfix (SP1) Q329170
      / Windows XP / SP1: Windows XP Hotfix (SP1) [See Q329390 for more information]
      / Windows XP / SP1: Windows XP Hotfix (SP1) [See Q329441 for more information]
      / Windows XP / SP1: Windows XP Hotfix (SP1) [See Q329834 for more information]
      / Windows XP / SP1: Windows XP Hotfix (SP1) Q810577
      / Windows XP / SP1: Windows XP Hotfix (SP1) Q810833
      / Windows XP / SP1: Windows XP Hotfix (SP1) Q811630
      / Windows XP / SP1: Windows XP Hotfix (SP1) Q815021
      / Windows XP / SP1: Windows XP Hotfix (SP1) Q817606
      / Windows XP / SP2: Correctif Windows XP - KB823559
      / Windows XP / SP2: Correctif Windows XP - KB828741
      / Windows XP / SP2: Correctif Windows XP - KB835732
      / Windows XP / SP2: Correctif Windows XP - KB842773
      / Windows XP / SP2: Package du correctif Windows XP [voir Q323255 pour plus de détails]
      / Windows XP / SP2: Package du correctif Windows XP [voir Q329115 pour plus de détails]

      --- Startup entries list ---
      Located: HK_LM:Run, !AVG Anti-Spyware
      command: "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
      file: C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
      size: 6266880
      MD5: 01d90ae5dccbce0c7b52874fec35a608

      Located: HK_LM:Run, avast!
      command: C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
      file: C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
      size: 108160
      MD5: 26a15d8d5c81a3b053e82b01a5d8208e

      Located: HK_LM:Run, NvCplDaemon
      command: RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
      file: C:\WINDOWS\system32\RUNDLL32.EXE
      size: 32256
      MD5: ac0f912ea7571e9c1ad7b64c83f72bd9

      Located: HK_LM:Run, TkBellExe
      command: "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
      file: C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
      size: 185896
      MD5: 1eda1c63e0d2ae1aebdf98083454079c

      Located: Démarrage (tous utilisateurs), VIA RAID TOOL.lnk
      command: C:\Program Files\VIA\RAID\raid_tool.exe
      file: C:\Program Files\VIA\RAID\raid_tool.exe
      size: 565248
      MD5: a4b1e950403db9c3cbc9d951112a26c7

      Located: System.ini, crypt32chain
      command: crypt32.dll
      file: crypt32.dll

      Located: System.ini, cryptnet
      command: cryptnet.dll
      file: cryptnet.dll

      Located: System.ini, cscdll
      command: cscdll.dll
      file: cscdll.dll

      Located: System.ini, ScCertProp
      command: wlnotify.dll
      file: wlnotify.dll

      Located: System.ini, Schedule
      command: wlnotify.dll
      file: wlnotify.dll

      Located: System.ini, sclgntfy
      command: sclgntfy.dll
      file: sclgntfy.dll

      Located: System.ini, SensLogn
      command: WlNotify.dll
      file: WlNotify.dll

      Located: System.ini, termsrv
      command: wlnotify.dll
      file: wlnotify.dll

      Located: System.ini, WgaLogon
      command: WgaLogon.dll
      file: WgaLogon.dll

      Located: System.ini, wlballoon
      command: wlnotify.dll
      file: wlnotify.dll

      --- Browser helper object list ---
      {AA58ED58-01DD-4d91-8333-CF10577473F7} (Google Toolbar Helper)
      BHO name:
      CLSID name: Google Toolbar Helper
      description: Google toolbar
      classification: Open for discussion
      known filename: googletoolbar.dll<br>googletoolbar*.dll<br>(* = number)<br>googletoolbar_en_*.**-big.dll<br>Googletoolbar_en_*.*.**-deleon.dll
      info link: http://www.google.com/intl/fr/toolbar/ie/index.html
      info source: TonyKlein
      Path: c:\program files\google\
      Long name: GoogleToolbar4.dll
      Short name: GOOGLE~4.DLL
      Date (created): 14/02/2007 22:35:54
      Date (last access): 26/02/2007 18:42:14
      Date (last write): 19/01/2007 23:56:04
      Filesize: 2436160
      Attributes: readonly archive
      MD5: 6D44E0C3B43D27484FBB355E470C4188
      CRC32: 2DE875CD
      Version: 4.0.1601.4978

      --- ActiveX list ---
      {56336BCB-3D8A-11D6-A00B-0050DA18DE71} ()
      DPF name:
      CLSID name:
      Installer:
      Codebase: http://software-dl.real.com/2050c910fa7208eed806/netzip/RdxIE601_fr.cab
      description: Netster
      classification: Confirmed as malware
      known filename:
      info link:
      info source:

      --- Process list ---
      PID: 0 ( 0) [System]
      PID: 644 ( 4) \SystemRoot\System32\smss.exe
      PID: 708 ( 644) \??\C:\WINDOWS\system32\csrss.exe
      PID: 732 ( 644) \??\C:\WINDOWS\system32\winlogon.exe
      PID: 776 ( 732) C:\WINDOWS\system32\services.exe
      size: 101888
      MD5: FC0691097471EE374907E1024EDCBD43
      PID: 788 ( 732) C:\WINDOWS\system32\lsass.exe
      size: 11776
      MD5: 2C2431B30A629123C1757582C9D93F38
      PID: 972 ( 776) C:\WINDOWS\system32\svchost.exe
      size: 12800
      MD5: 333A4DB8410D8E24DB06D6AEBECDC7C2
      PID: 1072 ( 776) C:\WINDOWS\System32\svchost.exe
      size: 12800
      MD5: 333A4DB8410D8E24DB06D6AEBECDC7C2
      PID: 1256 ( 776) C:\WINDOWS\System32\svchost.exe
      size: 12800
      MD5: 333A4DB8410D8E24DB06D6AEBECDC7C2
      PID: 1312 ( 776) C:\WINDOWS\System32\svchost.exe
      size: 12800
      MD5: 333A4DB8410D8E24DB06D6AEBECDC7C2
      PID: 1616 (1596) C:\WINDOWS\Explorer.EXE
      size: 1005056
      MD5: 9E20A8EF0CA524446AFEE29F4423CC8F
      PID: 1628 ( 776) C:\WINDOWS\system32\spoolsv.exe
      size: 51200
      MD5: B1CE5287F096895D9BE26EB86F4D5FAF
      PID: 1760 (1616) C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
      size: 108160
      MD5: 26A15D8D5C81A3B053E82B01A5D8208E
      PID: 1768 (1616) C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
      size: 6266880
      MD5: 01D90AE5DCCBCE0C7B52874FEC35A608
      PID: 1784 (1616) C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
      size: 185896
      MD5: 1EDA1C63E0D2AE1AEBDF98083454079C
      PID: 1792 (1616) C:\Program Files\VIA\RAID\raid_tool.exe
      size: 565248
      MD5: A4B1E950403DB9C3CBC9D951112A26C7
      PID: 1980 ( 776) C:\WINDOWS\System32\alg.exe
      size: 40960
      MD5: 55D226818B6C3D99741432D37657BA73
      PID: 2020 ( 776) C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
      size: 59008
      MD5: DC995DA2D258C0590C3AE07EC68BFEE6
      PID: 2044 ( 776) C:\Program Files\Alwil Software\Avast4\ashServ.exe
      size: 132736
      MD5: 8E33DA0415023EA7A9378AFA04D9BF4D
      PID: 200 ( 776) C:\WINDOWS\System32\drivers\CDAC11BA.EXE
      size: 39936
      MD5: 3DE014DFC14E8530F3A85572E2763446
      PID: 220 ( 776) C:\Program Files\Sunbelt Software\Personal Firewall 4\kpf4ss.exe
      size: 1368064
      MD5: 37F2DECEBEDC9179A149CC40968CDF5A
      PID: 296 ( 776) C:\WINDOWS\System32\nvsvc32.exe
      size: 127043
      MD5: 43B0A0774EA90BF699D267C45D2702F9
      PID: 416 ( 776) C:\WINDOWS\System32\svchost.exe
      size: 12800
      MD5: 333A4DB8410D8E24DB06D6AEBECDC7C2
      PID: 536 ( 220) C:\Program Files\Sunbelt Software\Personal Firewall 4\kpf4gui.exe
      size: 2617344
      MD5: 34D8182F75D145FD5C1B0384400E588B
      PID: 1160 ( 220) C:\Program Files\Sunbelt Software\Personal Firewall 4\kpf4gui.exe
      size: 2617344
      MD5: 34D8182F75D145FD5C1B0384400E588B
      PID: 904 ( 776) C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
      size: 255616
      MD5: AA6691D73782FA5D94E0CED6D27C3DE8
      PID: 2060 ( 776) C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
      size: 370304
      MD5: D6B2638DDBFB34AC78B153CDD0792C37
      PID: 2620 (1628) C:\WINDOWS\System32\CAPRPCSK.EXE
      size: 28160
      MD5: 58DBF60E65690B295B024DA082D328E3
      PID: 2732 (2632) C:\WINDOWS\System32\spool\drivers\w32x86\3\CAPPSWK.EXE
      size: 114688
      MD5: 9D680CBD0E99E1EAA67442C240FD1021
      PID: 1564 (1072) C:\WINDOWS\System32\wuauclt.exe
      size: 125720
      MD5: 6CC08152ED8681BC176BE1B0F3C0E908
      PID: 3908 (1616) C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe
      size: 4393096
      MD5: 09CA174A605B480318731E691DC98539
      PID: 3160 (1616) C:\Program Files\Microsoft Office\Office\EXCEL.EXE
      size: 5604624
      MD5: 319B5ED60330ABC10DFCA719E380CB6A
      PID: 4 ( 0) System

      --- Browser start & search pages list ---
      Spybot - Search & Destroy browser pages report, 26/02/2007 19:54:25

      HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Local Page
      C:\WINDOWS\System32\blank.htm
      HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Search Page
      https://actus.sfr.fr
      HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Search Bar
      https://actus.sfr.fr
      HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Start Page
      https://www.google.fr/?gws_rd=ssl
      HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search\SearchAssistant
      http://www.google.com/toolbar/ie8/sidebar.html
      HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl\@
      http://www.google.com/search?q=%s
      HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Local Page
      %SystemRoot%\system32\blank.htm
      HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Search Page
      http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
      HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Start Page
      http://www.microsoft.com/isapi/redir.dll?prd={SUB_PRD}&clcid={SUB_CLSID}&pver={SUB_PVER}&ar=home
      HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Page_URL
      http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
      HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Search_URL
      http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
      HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\SearchAssistant
      https://www.bing.com/?toHttps=1&redig=8F3F334EA60E4B1CB4D040DCFE393A89{SUB_RFC1766}/srchasst/srchasst.htm
      HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\CustomizeSearch
      https://www.bing.com/?toHttps=1&redig=8F3F334EA60E4B1CB4D040DCFE393A89{SUB_RFC1766}/srchasst/srchcust.htm

      --- Winsock Layered Service Provider list ---

      --- Uninstall list ---
      a-squared Free 2.0 2.0 (a-squared Free_is1)
      install location: C:\Program Files\a-squared Free\
      uninstall cmd: "C:\Program Files\a-squared Free\unins000.exe"
      publisher: Emsi Software GmbH
      comments: a-squared
      help link: https://support.emsisoft.com/

      (ABBYY FineReader 5.0 Sprint)

      Ad-Aware SE Personal 1.06 (Ad-Aware SE Personal)
      uninstall cmd: C:\PROGRA~1\Lavasoft\AD-AWA~1\UNWISE.EXE C:\PROGRA~1\Lavasoft\AD-AWA~1\INSTALL.LOG
      publisher: Lavasoft
      help link: https://www.adaware.com/

      (AddressBook)

      Adobe Acrobat 5.0 5.0 (Adobe Acrobat 5.0)
      version (major): 5
      install location: C:\Program Files\Adobe\Acrobat 5.0
      install source: C:\Documents and Settings\Carite\Local Settings\Temp\pft355~tmp\
      uninstall cmd: C:\WINDOWS\ISUN040C.EXE -f"C:\Program Files\Fichiers communs\Adobe\Acrobat 5.0\NT\Uninst.isu" -c"C:\Program Files\Fichiers communs\Adobe\Acrobat 5.0\NT\Uninst.dll"
      publisher: Adobe Systems, Inc.
      help link: https://acrobat.adobe.com/us/en/acrobat.html

      avast! Antivirus 4.7 (avast!)
      version (major): 4
      version (minor): 7
      install location: C:\PROGRA~1\ALWILS~1\Avast4
      install source: C:\PROGRA~1\ALWILS~1\Avast4\setup
      uninstall cmd: rundll32 C:\PROGRA~1\ALWILS~1\Avast4\Setup\setiface.dll,RunSetup
      publisher: Alwil Software
      help link: https://www.avast.com/fr-fr/index

      AVG Anti-Spyware 7.5 (AVGAntiSpyware75)
      install location: C:\Program Files\Grisoft\AVG Anti-Spyware 7.5
      uninstall cmd: C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\Uninstall.exe
      publisher: Grisoft Ltd.
      help link: https://www.avg.com/fr-fr/homepage

      (Branding)

      C-Media 3D Audio (C-Media Audio)
      uninstall cmd: C:\WINDOWS\CMIUnInstall.exe

      Imprimantes Canon CAPT (Canon Advanced Printing Technology)
      uninstall cmd: C:\WINDOWS\System32\Spool\Drivers\w32x86\3\CAP1UNIK.EXE

      CCleaner (remove only) (CCleaner)
      uninstall cmd: "C:\Program Files\CCleaner\uninst.exe"

      (Connection Manager)

      (DirectAnimation)

      (DirectDrawEx)

      Mise à jour de licences personnelles (DRM7Tool)
      uninstall cmd: RunDll32 advpack.dll,LaunchINFSection C:\WINDOWS\INF\drmtool.inf,Uninstall

      EPSON Scan (EPSON Scanner)
      uninstall cmd: C:\Program Files\epson\escndv\setup\setup.exe /r

      (Fontcore)

      Grand Atelier de la langue française (Grand Atelier de la langue française)
      uninstall cmd: C:\WINDOWS\IsUn040c.exe -fc:\ATELIER\Uninst.isu

      HijackThis 1.99.1 1.99.1 (HijackThis)
      uninstall cmd: C:\Documents and Settings\Carite\Local Settings\Temp\Répertoire temporaire 1 pour hijackthis.zip\HijackThis.exe /uninstall
      publisher: Soeperman Enterprises Ltd.

      (ICW)

      (IE40)

      (IE4Data)

      (IE5BAKEX)

      (IEData)

      (InstallShield Uninstall Information)

      VIA Gestionnaire de périphériques de plate-forme 1.1 (InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169})
      version: 16842752
      version (major): 1
      version (minor): 1
      install date: 20070104
      install source: E:\Drivers\SATA\3.00b\
      uninstall cmd: C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{20D4A895-748C-4D88-871C-FDB1695B0169}
      publisher: VIA Technologies, Inc.
      comments: VIA Hyperion Pro Setup Program
      contact: http://forums.viaarena.com/
      help link: http://www.viaarena.com/
      help telephone: NULL
      readme: NULL

      Correctif Windows XP - KB823559 20030701.220507 (KB823559)
      uninstall cmd: C:\WINDOWS\$NtUninstallKB823559$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/823559

      Windows XP Hotfix - KB823980 20030705.121642 (KB823980)
      uninstall cmd: C:\WINDOWS\$NtUninstallKB823980$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/823980/

      Correctif Windows XP - KB828741 20040305.180728 (KB828741)
      uninstall cmd: C:\WINDOWS\$NtUninstallKB828741$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/828741/ms04-012-cumulative-update-for-microsoft-rpc-dcom

      Correctif Windows XP - Article Base de Connaissances 834707 20040929.115007 (KB834707-IE6-20040929.115007)
      uninstall cmd: C:\WINDOWS\$NtUninstallKB834707-IE6-20040929.115007$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/834707

      Correctif Windows XP - KB835732 20040329.172648 (KB835732)
      uninstall cmd: C:\WINDOWS\$NtUninstallKB835732$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/835732/ms04-011-security-update-for-microsoft-windows

      (Microsoft NetShow Player 2.0)

      (MobileOptionPack)

      Mozilla Firefox (1.5.0.10) 1.5.0.10 (fr) (Mozilla Firefox (1.5.0.10))
      install location: C:\Program Files\Mozilla Firefox
      uninstall cmd: C:\Program Files\Mozilla Firefox\uninstall\uninstall.exe /ua "1.5.0.10 (fr)"
      publisher: Mozilla

      Mozilla Thunderbird (0.6.) (Mozilla Thunderbird (0.6.))
      uninstall cmd: C:\WINDOWS\UninstallThunderbird.exe /ua "0.6. (fr)"

      (MPlayer2)

      (NetMeeting)

      Neuf - Kit de connexion 6.7.10.1 (Neuf_Kit)
      uninstall cmd: C:\Program Files\Neuf\Kit\uninstall.exe
      publisher: Neuf
      help link: http://abonnes.neuf.fr
      help telephone: 0892 222 109

      Nikon FotoShare 1.0.1.0 (Nikon FotoShare)
      uninstall cmd: C:\Program Files\Nikon\FotoShare\Uninstal.exe C:\PROGRA~1\Nikon\FOTOSH~1\INSTALL.LOG
      contact: FotoSharefr@pixology.com

      NVIDIA Drivers (NVIDIA Drivers)
      uninstall cmd: C:\WINDOWS\System32\nvudisp.exe UninstallGUI

      Microsoft Office 97 Standard (Office8.0)
      uninstall cmd: C:\Program Files\Microsoft Office\Office\Install\Acme.exe /w Off97Std.stf

      (OutlookExpress)

      (PCHealth)
      uninstall cmd: rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf

      Perf2480P_2580P Guide de réf. (Perf2480P_2580P Guide de réf.)
      install location: C:\Program Files\EPSON\TPMANUAL\Perf2480P_2580P\REF_G
      uninstall cmd: C:\Program Files\EPSON\TPMANUAL\Perf2480P_2580P\REF_G\DOCUNINS.EXE

      Windows XP Hotfix (SP1) [See Q329048 for more information] (Q329048)
      uninstall cmd: C:\WINDOWS\$NtUninstallQ329048$\spuninst\spuninst.exe

      Package du correctif Windows XP [voir Q329115 pour plus de détails] (Q329115)
      uninstall cmd: C:\WINDOWS\$NtUninstallQ329115$\spuninst\spuninst.exe

      Windows XP Hotfix (SP1) Q329170 20030102.115458 (Q329170)
      uninstall cmd: C:\WINDOWS\$NtUninstallQ329170$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: Pour plus d'informations, consultez Q329170 à l'adresse https://support.microsoft.com/en-us

      Windows XP Hotfix (SP1) [See Q329390 for more information] (Q329390)
      uninstall cmd: C:\WINDOWS\$NtUninstallQ329390$\spuninst\spuninst.exe

      Windows XP Hotfix (SP1) [See Q329441 for more information] (Q329441)
      uninstall cmd: C:\WINDOWS\$NtUninstallQ329441$\spuninst\spuninst.exe
      publisher: Microsoft Corporation

      Windows XP Hotfix (SP1) [See Q329834 for more information] (Q329834)
      uninstall cmd: C:\WINDOWS\$NtUninstallQ329834$\spuninst\spuninst.exe

      Windows XP Hotfix (SP1) Q810577 20021118.133626 (Q810577)
      uninstall cmd: C:\WINDOWS\$NtUninstallQ810577$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: Pour plus d'informations, consultez Q810577 à l'adresse https://support.microsoft.com/en-us

      Windows XP Hotfix (SP1) Q810833 20021203.200852 (Q810833)
      uninstall cmd: C:\WINDOWS\$NtUninstallQ810833$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: Pour plus d'informations, consultez Q810833 à l'adresse https://support.microsoft.com/en-us

      Windows XP Hotfix (SP1) Q815021 20030502.110434 (Q815021)
      uninstall cmd: C:\WINDOWS\$NtUninstallQ815021$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/815021

      Windows XP Hotfix (SP1) Q817606 20030331.103325 (Q817606)
      uninstall cmd: C:\WINDOWS\$NtUninstallQ817606$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/817606

      (RealJukebox 1.0)
      uninstall cmd: C:\Program Files\Fichiers communs\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0

      RealPlayer (RealPlayer 6.0)
      uninstall cmd: C:\Program Files\Fichiers communs\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0

      (S3)
      uninstall cmd: C:\WINDOWS\IsUn040c.exe -f"C:\Program Files\S3Inc\S3\S3.isu"

      (SchedulingAgent)

      Adobe Flash Player 9 ActiveX 9 (ShockwaveFlash)
      uninstall cmd: C:\WINDOWS\System32\Macromed\Flash\FlashUtil9b.exe -uninstallDelete
      publisher: Adobe Systems
      help link: https://helpx.adobe.com/flash-player.html

      SiS Audio Driver (SiS7012)
      uninstall cmd: C:\Program Files\SiS7012\Uninst\uninst2k.exe PCI\VEN_1039&DEV_7012

      Spybot - Search & Destroy 1.4 1.4 (Spybot - Search & Destroy_is1)
      install location: C:\Program Files\Spybot - Search & Destroy\
      uninstall cmd: "C:\Program Files\Spybot - Search & Destroy\unins000.exe"
      publisher: Safer Networking Limited

      Presto! BizCard 4.1 Fre (Uninstall Presto! BizCard 4.1 Fre)
      uninstall cmd: C:\WINDOWS\IsUn040c.exe -f"C:\Program Files\NewSoft\Presto! BizCard Fre\Uninst.isu"

      (Uninstall Presto! BizCard Fre)
      uninstall cmd: C:\WINDOWS\IsUninst.exe -f"C:\Program Files\NewSoft\Presto! BizCard Fre\Uninst.isu" -c"C:\WINDOWS\StiRegstFre.dll"

      Windows Genuine Advantage Validation Tool (KB892130) 1.5.0530.0 (WGA)
      install date: 20061121
      publisher: Microsoft Corporation
      help link: https://www.microsoft.com/en-us/howtotell/default.aspx

      Windows Genuine Advantage Notifications (KB905474) 1.5.0540.0 (WgaNotify)
      install date: 20070106
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/905474

      Yahoo! Toolbar avec bloqueur de fenêtres pop-up (Yahoo! Companion)
      uninstall cmd: C:\PROGRA~1\Yahoo!\Common\unyt.exe

      Yahoo! Toolbar (Yahoo! Toolbar)

      Reflex'Dictionnaire Collins (YdpDict500)
      uninstall cmd: C:\WINDOWS\IsUn040c.exe -f"C:\Program Files\ReflexDictionnaire\DeIsL1.isu" -c"C:\Program Files\ReflexDictionnaire\uninst.dll"

      Platform 1.1 ({20D4A895-748C-4D88-871C-FDB1695B0169})
      version: 16842752
      version (major): 1
      version (minor): 1
      install date: 20070104
      install source: E:\Drivers\SATA\3.00b\
      publisher: VIA Technologies, Inc.
      comments: VIA Hyperion Pro Setup Program
      contact: http://forums.viaarena.com/
      help link: http://www.viaarena.com/
      help telephone: NULL
      readme: NULL

      Google Toolbar for Internet Explorer ({2318C2B1-4965-11d4-9B18-009027A5CD4F})
      uninstall cmd: regsvr32 /u /s "c:\program files\google\googletoolbar4.dll"

      ({23EFDB58-0874-4883-9810-EDA510B19FAE})
      uninstall cmd: RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{23EFDB58-0874-4883-9810-EDA510B19FAE}\setup.exe" -l0x9

      ({2BB79C8D-9DCC-4861-8A23-AE1B0B45E2B6})
      uninstall cmd: RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{2BB79C8D-9DCC-4861-8A23-AE1B0B45E2B6}\setup.exe" -l0x9

      WebFldrs XP 9.50.5318 ({350C97B8-3D7C-4EE8-BAA9-00BCB3D54227})
      version: 154277062
      version (major): 9
      version (minor): 50
      estimated size: 2668
      install date: 20041123
      install source: C:\WINDOWS\System32\
      publisher: Microsoft Corporation
      help link: https://www.microsoft.com/en-us/windows/

      ({3C1B8CBC-9118-11D7-86D3-00055DF3561E})
      uninstall cmd: RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{3C1B8CBC-9118-11D7-86D3-00055DF3561E}\setup.exe" -l0x9

      ({5D1A81AA-ED90-11D6-86D3-00055DF3561E})
      uninstall cmd: RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{5D1A81AA-ED90-11D6-86D3-00055DF3561E}\setup.exe" -l0x9

      PhotoImpression 5 ({66C8BE35-8BBB-472B-96C7-C7C9A499F988})
      uninstall cmd: RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{66C8BE35-8BBB-472B-96C7-C7C9A499F988}\SETUP.EXE" -l0x40c

      EPSON Copy Utility 3 3.0.1.0 ({67EDD823-135A-4D59-87BD-950616D6E857})
      version: 50331649
      install location: C:\Program Files\EPSON\Utility Suite\Copy Utility
      uninstall cmd: RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{67EDD823-135A-4D59-87BD-950616D6E857}\Setup.exe" -l0x40c -UnInstall

      PowerDVD ({6811CAA0-BF12-11D4-9EA1-0050BAE317E1})
      uninstall cmd: RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}\Setup.exe" -uninstall

      EPSON Smart Panel ({6C11D561-620B-47DA-A693-4C597F3CDF40})
      uninstall cmd: RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{6C11D561-620B-47DA-A693-4C597F3CDF40}\Setup.exe" -l0x40c Uninstall

      ({83021AC3-086F-4B77-ACCD-1BD7C9AB211E})
      uninstall cmd: RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{83021AC3-086F-4B77-ACCD-1BD7C9AB211E}\setup.exe" -l0x9

      Sunbelt Kerio Personal Firewall 4.2.3.912 ({A990EAA7-8941-4621-BC27-4F16261D3180})
      version: 67239939
      version (major): 4
      version (minor): 2
      estimated size: 10430
      install date: 20070116
      install location: C:\Program Files\Sunbelt Software\
      install source: C:\DOCUME~1\Carite\LOCALS~1\Temp\_is25\
      uninstall cmd: MsiExec.exe /X{A990EAA7-8941-4621-BC27-4F16261D3180}
      publisher: Sunbelt Software
      contact: Customer Support Department
      help link: http://www.sunbelt-software.com/support-HomeOffice.cfm
      help telephone: 877-673-1153

      ABBYY FineReader 6.0 6.0.759.29421 ({AF600F7B-67A7-48D9-BA3B-0FF97F35F970})
      version: 100664055
      version (major): 6
      estimated size: 55872
      install date: 20070203
      install source: E:\ABBYY\FR60\
      uninstall cmd: MsiExec.exe /I{AF600F7B-67A7-48D9-BA3B-0FF97F35F970}
      publisher: ABBYY Software House
      comments:
      contact: support@abbyy.com
      help link: https://support.abbyy.com/hc/en-us/
      help telephone: +7 (095) 234 44 00
      readme: ReadmeEng.htm

      ({B14F9B26-D695-4C4A-8B11-0FE6CDCC797B})
      uninstall cmd: RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{B14F9B26-D695-4C4A-8B11-0FE6CDCC797B}\setup.exe" -l0x9

      ABBYY FineReader 5.0 Sprint 5.0.0.33417 ({D1696920-9794-4BBC-8A30-7A88763DE5A2})
      version: 83886080
      version (major): 5
      estimated size: 227214
      install date: 20070203
      install source: E:\ABBYY\
      uninstall cmd: MsiExec.exe /X{D1696920-9794-4BBC-8A30-7A88763DE5A2}
      publisher: ABBYY Software House
      contact: support@abbyy.com
      help link: https://support.abbyy.com/hc/en-us/
      help telephone: +7 (095) 234 44 00

      Nikon Message Center 0.91.000 ({D2FCC1AE-6311-47C5-8130-C6C66D77DD71})
      version: 5963776
      install location: C:\Program Files\Fichiers communs\Nikon\Message Center
      uninstall cmd: RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{D2FCC1AE-6311-47C5-8130-C6C66D77DD71}\Setup.exe" -l0x40c UNINSTALL

      ({E213C271-AEFA-481D-A9B4-914D88925B8D})
      uninstall cmd: RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{E213C271-AEFA-481D-A9B4-914D88925B8D}\setup.exe" -l0x9

      ScanToWeb ({EBAE381B-60A6-4863-AA9F-FCAB755BC9E5})
      uninstall cmd: RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{EBAE381B-60A6-4863-AA9F-FCAB755BC9E5}\setup.exe" ADDREMOVEDLG

      ({FAD9402A-1A9B-4ABE-A410-393A3622FA5A})
      uninstall cmd: RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{FAD9402A-1A9B-4ABE-A410-393A3622FA5A}\setup.exe" -l0x9

      Composant de Presto! BizCard 4.0 pour Windows CE ({FCC30665-B924-4EA0-92F7-D9D676FB70A1})
      uninstall cmd: RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{FCC30665-B924-4EA0-92F7-D9D676FB70A1}\setup.exe" -l0x40c

      PictureProject 1.0 ({FF3999BE-1A7B-4738-88AA-97BF14094A4A})
      version: 16777216
      install location: C:\Program Files\Nikon\PictureProject
      uninstall cmd: RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{FF3999BE-1A7B-4738-88AA-97BF14094A4A}\Setup.exe" -l0x40c UNINSTALL

      --- System Services ---
      Service (registry key): Aavmker4
      Display name: avast! Asynchronous Virus Monitor
      Start: 1
      Type: 1
      Error Control: 1

      Service (registry key): Abiosdsk
      Start: 4
      Type: 1
      Error Control: 0

      Service (registry key): abp480n5
      Start: 4
      Type: 1
      Error Control: 1

      Service (registry key): ACPI
      Display name: Pilote ACPI Microsoft
      Image path: System32\DRIVERS\ACPI.sys
      Image size: 180096
      Image MD5: 34128BB2AB7BD69C72017BE7FCF8BE34
      Start: 0
      Type: 1
      Error Control: 1

      Service (registry key): ACPIEC
      Start: 4
      Type: 1
      Error Control: 1

      Service (registry key): adpu160m
      Start: 4
      Type: 1
      Error Control: 1

      Service (registry key): aec
      Display name: Suppresseur d'écho acoustique (Noyau Microsoft)
      Image path: system32\drivers\aec.sys
      Image size: 122472
      Image MD5: B45A744CA0A15A59D8B0307CE9741E92
      Start: 3
      Type: 1
      Error Control: 1

      Service (registry key): AFD
      Display name: Environnement de prise en charge de réseau AFD
      Image path: \SystemRoot\System32\drivers\afd.sys
      Start: 2
      Type: 1
      Error Control: 1

      Service (registry key): Aha154x
      Start: 4
      Type: 1
      Error Control: 1

      Service (registry key): aic78u2
      Start: 4
      Type: 1
      Error Control: 1

      Service (registry key): aic78xx
      Start: 4
      Type: 1
      Error Control: 1

      Service (registry key): Alerter
      Display name: Avertissement
      Description: Informe les utilisateurs et les ordinateurs sélectionnés des alertes administratives. Si ce service est arrêté, les programmes qui utilisent les alertes administratives ne les recevront pas. Si ce service est désactivé, les services qui en dépendent ne pourront pas démarrer.
      Object name: NT AUTHORITY\LocalService
      Image path: %SystemRoot%\System32\svchost.exe -k LocalService
      Image size: 12800
      Image MD5: 333A4DB8410D8E24DB06D6AEBECDC7C2
      Start: 3
      Type: 32
      Error Control: 1
      Depends On services: LanmanWorkstation

      Service (registry key): ALG
      Display name: Service de la passerelle de la couche Application
      Description: Fournit la prise en charge des plugins de protocoles tiers pour le partage de connexion Internet et le pare-feu Internet.
      Object name: NT AUTHORITY\LocalService
      Image path: %SystemRoot%\System32\alg.exe
      Image size: 40960
      Image MD5: 55D226818B6C3D99741432D37657BA73
      Start: 3
      Type: 16
      Error Control: 1

      Service (registry key): AliIde
      Start: 4
      Type: 1
      Error Control: 1

      Service (registry key): amsint
      Start: 4
      Type: 1
      Error Control: 1

      Service (registry key): AppMgmt
      Display name: Gestion d'applications
      Description: Fournit des services d'installation de logiciels tels que Attribuer, Publier et Supprimer.
      Object name: LocalSystem
      Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
      Image size: 12800
      Image MD5: 333A4DB8410D8E24DB06D6AEBECDC7C2
      Start: 3
      Type: 32
      Error Control: 1

      Service (registry key): asc
      Start: 4
      Type: 1
      Error Control: 1

      Service (registry key): asc3350p
      Start: 4
      Type: 1
      Error Control: 1

      Service (registry key): asc3550
      Start: 4
      Type: 1
      Error Control: 1

      Service (registry key): aswMon2
      Display name: avast! Standard Shield Support
      Start: 2
      Type: 2
      Error Control: 1

      Service (registry key): aswRdr
      Display name: aswRdr
      Start: 3
      Type: 1
      Error Control: 1
      Depends On services: tcpip

      Service (registry key): aswTdi
      Display name: avast! Network Shield Support
      Start: 1
      Type: 1
      Error Control: 1
      Depends On services: tcpip

      Service (registry key): aswUpdSv
      Display name: avast! iAVS4 Control Service
      Description: Fournit la mise à jour automatique pour l'antivirus avast!.
      Object name: LocalSystem
      Image path: "C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe"
      Image size: 59008
      Image MD5: DC995DA2D258C0590C3AE07EC68BFEE6
      Start: 2
      Type: 272
      Error Control: 1

      Service (registry key): AsyncMac
      Display name: Pilote de média asynchrone RAS
      Description: Pilote de média asynchrone RAS
      Image path: System32\DRIVERS\asyncmac.sys
      Image size: 13568
      Image MD5: 03F403B07A884FC2AA54A0916C410931
      Start: 3
      Type: 1
      Error Control: 1

      Service (registry key): atapi
      Display name: Contrôleur de disque dur IDE/ESDI standard
      Image path: System32\DRIVERS\atapi.sys
      Image size: 86656
      Image MD5: A64013E98426E1877CB653685C5C0009
      Start: 0
      Type: 1
      Error Control: 1

      Service (registry key): Atdisk
      Start: 4
      Type: 1
      Error Control: 0

      Service (registry key): Atmarpc
      Display name: Protocole client ATM ARP
      Description: Protocole client ATM ARP
      Image path: System32\DRIVERS\atmarpc.sys
      Image size: 57216
      Image MD5: 8D735CA1CBDB0081B0E3B9FF0EB222D0
      Start: 3
      Type: 1
      Error Control: 1
      Depends On services: Tcpip

      Service (registry key): AudioSrv
      Display name: Audio Windows
      Description: Gère les périphériques audio pour les programmes basés sur Windows. Si ce service est arrêté, les périphériques et les effets audio ne fonctionneront pas correctement. Si ce service est désactivé, les services en dépendant explicitement ne démarreront pas.
      Object name: LocalSystem
      Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
      Image size: 12800
      Image MD5: 333A4DB8410D8E24DB06D6AEBECDC7C2
      Start: 2
      Type: 32
      Error Control: 1
      Depends On services: PlugPlay,RpcSs

      Service (registry key): audstub
      Display name: Pilote audio Stub
      Image path: System32\DRIVERS\audstub.sys
      Image size: 3072
      Image MD5: D9F724AA26C010A217C97606B160ED68
      Start: 3
      Type: 1
      Error Control: 1

      Service (registry key): avast! Antivirus
      Display name: avast! Antivirus
      Description: Gère et implémente les services de l'antivirus avast! pour cet ordinateur. Ceci inclut la protection résidente, la zone de quarantaine et le planificateur.
      Object name: LocalSystem
      Image path: "C:\Program Files\Alwil Software\Avast4\ashServ.exe"
      Image size: 132736
      Image MD5: 8E33DA0415023EA7A9378AFA04D9BF4D
      Start: 2
      Type: 272
      Error Control: 1
      Depends On services: aswMon2,RpcSS

      Service (registry key): avast! Mail Scanner
      Display name: avast! Mail Scanner
      Description: Implémente l'analyse du courrier électronique pour l'antivirus avast!.
      Object name: LocalSystem
      Image path: "C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service
      Image size: 255616
      Image MD5: AA6691D73782FA5D94E0CED6D27C3DE8
      Start: 3
      Type: 272
      Error Control: 1
      Depends On services: "avast! Antivirus"

      Service (registry key): avast! Web Scanner
      Display name: avast! Web Scanner
      Description: Implémente l'analyse du contenu web (HTTP) pour l'antivirus avast!.
      Object name: LocalSystem
      Image path: "C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service
      Image size: 370304
      Image MD5: D6B2638DDBFB34AC78B153CDD0792C37
      Start: 3
      Type: 272
      Error Control: 1
      Depends On services: "avast! Antivirus"

      Service (registry key): AVG Anti-Spyware Driver
      Display name: AVG Anti-Spyware Driver
      Image path: \??\C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.sys
      Image size: 4096
      Image MD5: 7D78B7FD0EBE00F177B053A08C78E35B
      Start: 1
      Type: 1
      Error Control: 1

      Service (registry key): AVG Anti-Spyware Guard
      Display name: AVG Anti-Spyware Guard
      Object name: LocalSystem
      Image path: C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
      Image size: 204800
      Image MD5: E8FBDCC8D618D1BB84B828F247A6244B
      Start: 2
      Type: 16
      Error Control: 1

      Service (registry key): AvgAsCln
      Display name: AVG Anti-Spyware Clean Driver
      Image path: System32\DRIVERS\AvgAsCln.sys
      Image size: 3968
      Image MD5: 6D4A1DA6E6D522B3EBBCBFF4A3589EC5
      Start: 1
      Type: 1
      Error Control: 1
      Depends On services: Ntfs

      Service (registry key): basic2
      Image path: System32\DRIVERS\HSF_BSC2.sys
      Image size: 67167
      Image MD5: 1B9C81AB9A456EABD9F8335F04B5F495
      Start: 3
      Type: 1
      Error Control: 0

      Service (registry key): BattC
      Start: 0
      Type: 0
      Error Control: 0

      Service (registry key): Beep
      Start: 1
      Type: 1
      Error Control: 1

      Service (registry key): BITS
      Display name: Service de transfert intelligent en arrière-plan
      Description: Utilise la bande passante réseau inactive pour transférer des données.
      Object name: LocalSystem
      Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
      Image size: 12800
      Image MD5: 333A4DB8410D8E24DB06D6AEBECDC7C2
      Start: 3
      Type: 32
      Error Control: 1
      Depends On services: LanmanWorkstation,RpcSs

      Service (registry key): Browser
      Display name: Explorateur d'ordinateur
      Description: Tient à jour une liste des ordinateurs présents sur le réseau et fournit cette liste aux ordinateurs désignés comme navigateurs. Si ce service est arrêté, la liste ne sera pas mise ou tenue à jour. Si ce service est désactivé, les services qui en dépendent ne pourront pas démarrer.
      Object name: LocalSystem
      Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
      Image size: 12800
      Image MD5: 333A4DB8410D8E24DB06D6AEBECDC7C2
      Start: 2
      Type: 32
      Error Control: 1
      Depends On services: LanmanWorkstation,LanmanServer

      Service (registry key): C-DillaCdaC11BA
      Display name: C-DillaCdaC11BA
      Object name: LocalSystem
      Image path: C:\WINDOWS\System32\drivers\CDAC11BA.EXE
      Image size: 39936
      Image MD5: 3DE014DFC14E8530F3A85572E2763446
      Start: 2
      Type: 16
      Error Control: 1

      Service (registry key): cbidf2k
      Start: 4
      Type: 1
      Error Control: 1

      Service (registry key): cd20xrnt
      Start: 4
      Type: 1
      Error Control: 1

      Service (registry key): CdaC15BA
      Display name: CdaC15BA
      Image path: \??\C:\WINDOWS\System32\drivers\CDAC15BA.SYS
      Image size: 8864
      Image MD5: 82C4C6A2343B592C4FD590F625A724A9
      Start: 2
      Type: 1
      Error Control: 1

      Service (registry key): Cdaudio
      Start: 1
      Type: 1
      Error Control: 0

      Service (registry key): Cdfs
      Start: 4
      Type: 2
      Error Control: 1
      Depends On group: "SCSI CDROM Class"

      Service (registry key): Cdrom
      Display name: Pilote de CD-ROM
      Image path: System32\DRIVERS\cdrom.sys
      Image size: 47488
      Image MD5: CB762E814F602229A574F4D78D3D6A30
      Start: 1
      Type: 1
      Error Control: 1
      Depends On group: "SCSI miniport"

      Service (registry key): Changer
      Start: 1
      Type: 1
      Error Control: 0

      Service (registry key): cisvc
      Display name: Service d'indexation
      Description: Construit un index des contenus et des propriétés des fichiers sur les ordinateurs locaux et distants ; fournit un accès rapide aux fichiers par le biais d'un langage d'interrogation flexible.
      Object name: LocalSystem
      Image path: %SystemRoot%\system32\cisvc.exe
      Image size: 5120
      Image MD5: 7901AF03767C140467671C7CEEB2C3FE
      Start: 3
      Type: 32
      Error Control: 1
      Depends On services: RPCSS

      Service (registry key): ClipSrv
      Display name: Gestionnaire de l'Album
      Description: Active le Gestionnaire de l'Album afin de stocker les informations et les partager avec des ordinateurs à distance. Si le service est arrêté, le Gestionnaire de l'Album ne pourra pas partager les informations avec des ordinateurs à distance. Si ce service est désactivé, tout service en dépendant explicitement ne démarrera pas.
      Object name: LocalSystem
      Image path: %SystemRoot%\system32\clipsrv.exe
      Image size: 30720
      Image MD5: 3D1AAB2963FABCAFEB507B5C9D67BFBC
      Start: 3
      Type: 16
      Error Control: 1
      Depends On services: NetDDE

      Service (registry key): CmdIde
      Start: 4
      Type: 1
      Error Control: 1

      Service (registry key): cmuda
      Display name: C-Media WDM Audio Interface
      Image path: system32\drivers\cmuda.sys
      Image size: 821760
      Image MD5: 924AB66E831E9CF3E20DBC6B63103516
      Start: 3
      Type: 1
      Error Control: 1

      Service (registry key): COMSysApp
      Display name: Application système COM+
      Description: Gère la configuration et le suivi des composants de base COM+ (Component Object Model) . Si le service est arrêté, la plupart des composants de base COM+ ne fonctionneront pas correctement. Si ce service est désactivé, les services qui en dépendent de manière explicite ne pourront pas démarrer.
      Object name: LocalSystem
      Image path: C:\WINDOWS\System32\dllhost.exe /Processid:{02D4B3F1-FD88-11D1-960D-00805FC79235}
      Image size: 4608
      Image MD5: 17681E6109A67F3AEA66AD6AAE2434E6
      Start: 3
      Type: 16
      Error Control: 1
      Depends On services: rpcss

      Service (registry key): ContentFilter
      Start: 0
      Type: 0
      Error Control: 0

      Service (registry key): ContentIndex
      Start: 0
      Type: 0
      Error Control: 0

      Service (registry key): CO_Mon
      Display name: CO_Mon
      Image path: \??\C:\WINDOWS\System32\Drivers\CO_Mon.sys
      Image size: 28672
      Image MD5: 6BE1D6403727BDD8A2B2568DBE6BFB8B
      Start: 3
      Type: 1
      Error Control: 1

      Service (registry key): Cpqarray
      Start: 4
      Type: 1
      Error Control: 1

      Service (registry key): CryptSvc
      Display name: Services de cryptographie
      Description: Fournit trois services de gestion : le service de base de données de catalogue, qui confirme la signature des fichiers Windows; le service de racine protégée, qui ajoute et supprime des certificats d'autorité de certification de racine approuvés et le service Clé, qui fournit une aide dans l'inscription de cet ordinateur pour les certificats. Si ce service est arrêté, ces services de gestion ne fonctionneront pas correctement. Si ce service est désactivé, tout service en dépendant explicitement ne démarrera pas.
      Object name: LocalSystem
      Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
      Image size: 12800
      Image MD5: 333A4DB8410D8E24DB06D6AEBECDC7C2
      Start: 2
      Type: 32
      Error Control: 1
      Depends On services: RpcSs

      Service (registry key): dac2w2k
      Start: 4
      Type: 1
      Error Control: 0

      Service (registry key): dac960nt
      Start: 4
      Type: 1
      Error Control: 1

      Service (registry key): Dhcp
      Display name: Client DHCP
      Description: Gère la configuration réseau en inscrivant et en mettant à jour les adresses IP et les noms DNS.
      Object name: LocalSystem
      Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
      Image size: 12800
      Image MD5: 333A4DB8410D8E24DB06D6AEBECDC7C2
      Start: 2
      Type: 32
      Error Control: 1
      Depends On services: Tcpip,Afd,NetBT

      Service (registry key): Disk
      Display name: Pilote de disque
      Image path: System32\DRIVERS\disk.sys
      Image size: 33664
      Image MD5: 43A10CD19D648E57ED039A6CAA667A56
      Start: 0
      Type: 1
      Error Control: 1
      Depends On group: "SCSI miniport"

      Service (registry key): dmadmin
      Display name: Service d'administration du Gestionnaire de disque logique
      Description: Configure les lecteurs de disque durs et les volumes. Le service ne s'exécute que pour les processus de configurations puis s'arrête.
      Object name: LocalSystem
      Image path: %SystemRoot%\System32\dmadmin.exe /com
      Image size: 205312
      Image MD5: F03B6377293A2CA253E02366B6F817D3
      Start: 3
      Type: 32
      Error Control: 1
      Depends On services: RpcSs,PlugPlay,DmServer

      Service (registry key): dmboot
      Image path: System32\drivers\dmboot.sys
      Image size: 781440
      Image MD5: 625043857173294DF9239909FC37CCD1
      Start: 4
      Type: 1
      Error Control: 1

      Service (registry key): dmio
      Display name: Pilote de Gestionnaire de disque logique
      Image path: System32\DRIVERS\dmio.sys
      Image size: 147456
      Image MD5: C85A01B45E107B2D80A1263B365E62B5
      Start: 0
      Type: 1
      Error Control: 1

      Service (registry key): dmload
      Start: 0
      Type: 1
      Error Control: 1

      Service (registry key): dmserver
      Display name: Gestionnaire de disque logique
      Description: Détecte et analyse de nouveaux lecteurs de disque durs et envoie les informations de volume de disque au service gestionnaire administratif de disque logique pour la configuration. Si ce service est arrêté, l'état des disques dynamiques et les informations de configuration peuvent devenir obsolètes. Si ce service est désactivé, tout service en dépendant explicitement ne démarrera pas.
      Object name: LocalSystem
      Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
      Image size: 12800
      Image MD5: 333A4DB8410D8E24DB06D6AEBECDC7C2
      Start: 2
      Type: 32
      Error Control: 1
      Depends On services: RpcSs,PlugPlay

      Service (registry key): DMusic
      Display name: Synthétiseur DLS du noyau Microsoft
      Image path: system32\drivers\DMusic.sys
      Image size: 50048
      Image MD5: EF05974D47D56FA8387F170F05BAE5E7
      Start: 3
      Type: 1
      Error Control: 1

      Service (registry key): Dnscache
      Display name: Client DNS
      Description: Résout et met en cache les noms DNS pour cet ordinateur. Si ce service est arrêté, l'ordinateur ne pourra pas résoudre les noms DNS et trouver les contrôleurs de domaine Active Directory. Si ce service est désactivé, les services qui en dépendent ne pourront pas démarrer.
      Object name: NT AUTHORITY\NetworkService
      Image path: %SystemRoot%\System32\svchost.exe -k NetworkService
      Image size: 12800
      Image MD5: 333A4DB8410D8E24DB06D6AEBECDC7C2
      Start: 2
      Type: 32
      Error Control: 1
      Depends On services: Tcpip

      Service (registry key): dpti2o
      Start: 4
      Type: 1
      Error Control: 1

      Service (registry key): driverhardwarev2
      Display name: driverhardwarev2
      Image path: \??\C:\Program Files\HardwareDetection\driverhardwarev2.sys
      Start: 3
      Type: 1
      Error Control: 1

      Service (registry key): drmkaud
      Display name: Filtre de décodeur DRM (Noyau Microsoft)
      Image path: system32\drivers\drmkaud.sys
      Image size: 2816
      Image MD5: AA94E0CBD79DB63100D0EAE061EB69BC
      Start: 3
      Type: 1
      Error Control: 1

      Service (registry key): ERSvc
      Display name: Service de rapport d'erreurs
      Description: Active le rapport d'erreurs pour les services et les applications s'exécutant sur des environnements non standard.
      Object name: LocalSystem
      Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
      Image size: 12800
      Image MD5: 333A4DB8410D8E24DB06D6AEBECDC7C2
      Start: 2
      Type: 32
      Error Control: 0
      Depends On services: RpcSs

      Service (registry key): Eventlog
      Display name: Journal des événements
      Description: Active les messages d'événements émis par les programmes fonctionnant sous Windows et les composants devant être affichés dans l'observateur d'événements. Ce service ne peut être arrêté.
      Object name: LocalSystem
      Image path: %SystemRoot%\system32\services.exe
      Image size: 101888
      Image MD5: FC0691097471EE374907E1024EDCBD43
      Start: 2
      Type: 32
      Error Control: 1

      Service (registry key): EventSystem
      Display name: Système d'événements de COM+
      Description: Prend en charge le service de notification d'événements système (SENS, System Event Notification Service), qui fournit une distribution automatique d'événements aux composants COM (Component Object Model) abonnés. Si le service est arrêté, SENS sera fermé et ne pourra fournir des informations d'ouverture et de fermeture de session. Si ce service est désactivé, le démarrage de tout service qui en dépend explicitement échouera.
      Object name: LocalSystem
      Image path: C:\WINDOWS\System32\svchost.exe -k netsvcs
      Image size: 12800
      Image MD5: 333A4DB8410D8E24DB06D6AEBECDC7C2
      Start: 3
      Type: 32
      Error Control: 1
      Depends On services: RPCSS

      Service (registry key): Fallback
      Image path: System32\DRIVERS\HSF_FALL.sys
      Image size: 289887
      Image MD5: C823DEBE2548656549F84A875D65237B
      Start: 2
      Type: 1
      Error Control: 0

      Service (registry key): Fastfat
      Start: 4
      Type: 2
      Error Control: 1

      Service (registry key): FastUserSwitchingCompatibility
      Display name: Compatibilité avec le Changement rapide d'utilisateur
      Description: Fournit un système de gestion à des applications qui nécessitent de l'Assistance dans un environnement d'utilisateurs multiples.
      Object name: LocalSystem
      Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
      Image size: 12800
      Image MD5: 333A4DB8410D8E24DB06D6AEBECDC7C2
      Start: 3
      Type: 32
      Error Control: 1
      Depends On services: TermService

      Service (registry key): Fdc
      Display name: Pilote de contrôleur de lecteur de disquettes
      Image path: System32\DRIVERS\fdc.sys
      Image size: 26240
      Image MD5: 19C5C7EAC0190A42522290BF002F64EA
      Start: 3
      Type: 1
      Error Control: 1

      Service (registry key): FETNDIS
      Display name: Pilote NT de carte VIA PCI 10/100Mo Fast Ethernet
      Image path: System32\DRIVERS\fetnd5.sys
      Image size: 27165
      Image MD5: E9648254056BCE81A85380C0C3647DC4
      Start: 3
      Type: 1
      Error Control: 1

      Service (registry key): FETNDISB
      Display name: VIA Rhine Family Fast Ethernet Adapter Driver Service
      Image path: System32\DRIVERS\fetnd5b.sys
      Image size: 41984
      Image MD5: B7186B33B6CF3A23841015531E6E7D68
      Start: 3
      Type: 1
      Error Control: 1

      Service (registry key): Fips
      Start: 1
      Type: 1
      Error Control: 1

      Service (registry key): Flpydisk
      Display name: Pilote de lecteur de disquettes
      Image path: System32\DRIVERS\flpydisk.sys
      Image size: 19712
      Image MD5: 21E41E89B9B191B685F99B7A8885310B
      Start: 3
      Type: 1
      Error Control: 1

      Service (registry key): Fsks
      Image path: System32\DRIVERS\HSF_FSKS.sys
      Image size: 115807
      Image MD5: 6483414841D4CAB6C3B4DB2AC6EDD70B
      Start: 2
      Type: 1
      Error Control: 0

      Service (registry key): Fs_Rec
      Start: 1
      Type: 8
      Error Control: 0

      Service (registry key): Ftdisk
      Display name: Pilote du Gestionnaire de volume
      Image path: System32\DRIVERS\ftdisk.sys
      Image size: 126080
      Image MD5: A86859B77B908C18C2657F284AA29FE3
      Start: 0
      Type: 1
      Error Control: 1

      Service (registry key): fwdrv
      Display name: Firewall Driver
      Image path: \SystemRoot\system32\drivers\fwdrv.sys
      Start: 1
      Type: 1
      Error Control: 1

      Service (registry key): gameenum
      Display name: Énumérateur de port jeu
      Image path: System32\DRIVERS\gameenum.sys
      Image size: 9728
      Image MD5: 90D951A8876631E617ED64A9DDF0BAFC
      Start: 3
      Type: 1
      Error Control: 0

      Service (registry key): Gpc
      Display name: Classificateur de paquets générique
      Description: Classificateur de paquets générique
      Image path: System32\DRIVERS\msgpc.sys
      Image size: 33792
      Image MD5: 13591E0A02E85DE2A388F3EC4BD206DF
      Start: 3
      Type: 1
      Error Control: 1

      Service (registry key): gusvc
      Display name: Google Updater Service
      Object name: LocalSystem
      Image path: "C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe"
      Image size: 138168
      Image MD5: 751C1D2CA2ABF4A9F5A6B8D7D45B907C
      Start: 3
      Type: 16
      Error Control: 0
      Depends On services: RPCSS

      Service (registry key): helpsvc
      Display name: Aide et support
      Description: Permet à l'application Aide et support de fonctionner sur cet ordinateur. Si ce service est arrêté, la fonctionnalité Aide et support ne sera pas disponible. S'il est désactivé, tous les services dépendant explicitement de ce service ne pourront pas démarrer.
      Object name: LocalSystem
      Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
      Image size: 12800
      Image MD5: 333A4DB8410D8E24DB06D6AEBECDC7C2
      Start: 2
      Type: 32
      Error Control: 1
      Depends On services: RPCSS

      Service (registry key): HidServ
      Display name: Accès du périphérique d'interface utilisateur
      Description: Permet l'accès entrant générique aux périphériques d'interface utilisateur, qui activent et maintiennent l'utilisation des boutons actifs prédéfinis sur le clavier, les contrôles à distance, et d'autres périphériques multimédia. Si ce service est arrêté, les boutons actifs contrôlés par ce service ne fonctionneront pas. Si ce service est désactivé, tout service en dépendant explicitement ne démarrera pas.
      Object name: LocalSystem
      Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
      Image size: 12800
      Image MD5: 333A4DB8410D8E24DB06D6AEBECDC7C2
      Start: 4
      Type: 32
      Error Control: 1
      Depends On services: RpcSs

      Service (registry key): hpn
      Start: 4
      Type: 1
      Error Control: 1

      Service (registry key): hpt3xx
      Start: 4
      Type: 1
      Error Control: 1

      Service (registry key): hsf_msft
      Image path: System32\DRIVERS\HSF_MSFT.sys
      Image size: 542879
      Image MD5: 74E379857D4C0DFB56DE2D19B8F4C434
      Start: 3
      Type: 1
      Error Control: 0

      Service (registry key): i2omgmt
      Start: 1
      Type: 1
      Error Control: 1

      Service (registry key): i2omp
      Start: 4
      Type: 1
      Error Control: 1

      Service (registry key): i8042prt
      Display name: Pilote pour clavier i8042 et souris sur port PS/2
      Image path: System32\DRIVERS\i8042prt.sys
      Image size: 52608
      Image MD5: 792E4B2D20A1967CF5B87990F9F7AD4E
      Start: 1
      Type: 1
      Error Control: 1

      Service (registry key): Imapi
      Start: 1
      Type: 1
      Error Control: 0

      Service (registry key): ImapiS
      0
      1. Contributeur sécurité
        Salut

        Rien de grave, ce sont des cookies qui s installent selon l'endroit ou tu surfes.
        Par exemple:
        Deux cookies 247realmedia et xiti, sont chargés ici sur CCM, si tu ne bloque pas les publicités du site et selon la gestion de tes cookies.

        A+
        0
        1. Rebonjour,

          Comment je peux faire pour avoir une meilleure gestion des cookies.

          Je viens de faire un scan avec a-squarred et j'en ai encore. je te poste le rapport

          Version - a-squared Free 2.1

          Réglages Scan:

          Objets: Mémoire, Traces, Cookies, C:\WINDOWS\, C:\Program Files
          Scan archives: Marche
          Heuristiques: Marche
          Scan ADS: Marche

          Début du scan: 01/03/2007 23:24:44

          C:\Documents and Settings\Carite\Application Data\Mozilla\Firefox\Profiles\6e1od7k6.default\cookies.txt:35 Détecter: Trace.TrackingCookie
          C:\Documents and Settings\Carite\Application Data\Mozilla\Firefox\Profiles\6e1od7k6.default\cookies.txt:63 Détecter: Trace.TrackingCookie
          C:\Documents and Settings\Carite\Application Data\Mozilla\Firefox\Profiles\6e1od7k6.default\cookies.txt:73 Détecter: Trace.TrackingCookie
          C:\Documents and Settings\Carite\Application Data\Mozilla\Firefox\Profiles\6e1od7k6.default\cookies.txt:74 Détecter: Trace.TrackingCookie
          C:\Documents and Settings\Carite\Application Data\Mozilla\Firefox\Profiles\6e1od7k6.default\cookies.txt:80 Détecter: Trace.TrackingCookie
          C:\Documents and Settings\Carite\Application Data\Mozilla\Firefox\Profiles\6e1od7k6.default\cookies.txt:92 Détecter: Trace.TrackingCookie
          C:\Documents and Settings\Carite\Application Data\Mozilla\Firefox\Profiles\6e1od7k6.default\cookies.txt:112 Détecter: Trace.TrackingCookie
          C:\Documents and Settings\Carite\Application Data\Mozilla\Firefox\Profiles\6e1od7k6.default\cookies.txt:118 Détecter: Trace.TrackingCookie
          C:\Documents and Settings\Carite\Application Data\Mozilla\Firefox\Profiles\6e1od7k6.default\cookies.txt:130 Détecter: Trace.TrackingCookie

          Scanné

          Fichiers: 15694
          Traces: 99932
          Cookies: 160
          Processus: 30

          Trouver

          Fichiers: 0
          Traces: 0
          Cookies: 9
          Processus: 0
          Clés de Registre: 0

          Fin du Scan: 01/03/2007 23:36:13
          Temps du Scan: 00:11:29

          merci de ta réponse
          tanaud
          0