Spyware et autres tout le temps malgré avg

tanaud Messages postés 90 Statut Membre -  
Regis59 Messages postés 21143 Date d'inscription   Statut Contributeur sécurité Dernière intervention   -
Bonjour,

J'ai tout le temps des spyware,des mouchards que spybots et ewido devenu avg anti-spywate me dégotent tout le temps.
Que puis-je faire pour éviter ça ?

Merci de m'aider, mon précédent mail sur une demande d'analyse de mon log hijackthis est demeuré sans réponse.
Je sais que vous avez énormément demande mais si vous pouviez une fois de plus me faire profiter de vos conseils, je vous en serais reconnaissante.

Tanaud
Configuration: Windows XP
Firefox 1.5.0.9

7 réponses

  1. Regis59 Messages postés 21143 Date d'inscription   Statut Contributeur sécurité Dernière intervention   1 349
     
    Salut

    Peux tu nous mettre un nouvel Hijack this?

    A+
    0
    1. tanaud Messages postés 90 Statut Membre 4
       
      merci de ta réponse et de ton aide. Voila le log, qu'en penses-tu?
      depuis mon dernier mail, j'ai telechargé a-squared et j'ai fait un scan avec qui m'a trouvé un truc, puis un autre qui n'a rien trouvé. J'ai refait également avg et spybot.
      A bientôt et encore merci
      carite


      Logfile of HijackThis v1.99.1
      Scan saved at 09:21:29, on 23/02/2007
      Platform: Windows XP (WinNT 5.01.2600)
      MSIE: Internet Explorer v6.00 (6.00.2600.0000)

      Running processes:
      C:\WINDOWS\System32\smss.exe
      C:\WINDOWS\system32\winlogon.exe
      C:\WINDOWS\system32\services.exe
      C:\WINDOWS\system32\lsass.exe
      C:\WINDOWS\system32\svchost.exe
      C:\WINDOWS\System32\svchost.exe
      C:\WINDOWS\Explorer.EXE
      C:\WINDOWS\system32\spoolsv.exe
      C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
      C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
      C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
      C:\Program Files\VIA\RAID\raid_tool.exe
      C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
      C:\Program Files\Alwil Software\Avast4\ashServ.exe
      C:\WINDOWS\System32\drivers\CDAC11BA.EXE
      C:\Program Files\Sunbelt Software\Personal Firewall 4\kpf4ss.exe
      C:\WINDOWS\System32\nvsvc32.exe
      C:\WINDOWS\System32\svchost.exe
      C:\Program Files\Sunbelt Software\Personal Firewall 4\kpf4gui.exe
      C:\Program Files\Sunbelt Software\Personal Firewall 4\kpf4gui.exe
      C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
      C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
      C:\WINDOWS\System32\CAPRPCSK.EXE
      C:\WINDOWS\System32\spool\drivers\w32x86\3\CAPPSWK.EXE
      C:\WINDOWS\System32\wuauclt.exe
      C:\Program Files\Outlook Express\msimn.exe
      C:\Program Files\Messenger\msmsgs.exe
      C:\Documents and Settings\Carite\Bureau\Sécurité\hijackthis\hijackthis_hijackthis_1.99.1_anglais_17891.exe

      R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://actus.sfr.fr
      R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://actus.sfr.fr
      R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
      R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
      O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
      O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
      O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
      O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar4.dll
      O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
      O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
      O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar4.dll
      O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
      O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
      O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
      O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
      O4 - Global Startup: VIA RAID TOOL.lnk = C:\Program Files\VIA\RAID\raid_tool.exe
      O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
      O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
      O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} - http://software-dl.real.com/2050c910fa7208eed806/netzip/RdxIE601_fr.cab
      O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
      O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
      O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
      O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
      O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
      O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
      O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
      O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
      O23 - Service: C-DillaCdaC11BA - C-Dilla Ltd - C:\WINDOWS\System32\drivers\CDAC11BA.EXE
      O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
      O23 - Service: Sunbelt Kerio Personal Firewall 4 (KPF4) - Sunbelt Software - C:\Program Files\Sunbelt Software\Personal Firewall 4\kpf4ss.exe
      O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
      0
  2. Regis59 Messages postés 21143 Date d'inscription   Statut Contributeur sécurité Dernière intervention   1 349
     
    Salut

    Peux tu copier colle le rapport de spybot?

    A+
    0
    1. tanaud Messages postés 90 Statut Membre 4
       
      Bonsoir,

      J'ai refait toute une série de scan dont voici les résultats :

      avast scan minutieux 0 fichier infecté
      ad-aware : a trouvé 3 objet critiques supprimés et un certain nombre en quarantaine dans :
      ArchiveData(auto-quarantine- 2007-02-25 19-30-26.bckp)
      Referencefile : SE1R154 19.02.2007
      ArchiveData(auto-quarantine- 2007-02-25 19-30-26.bckp)
      Referencefile : SE1R154 19.02.2007

      spyboat : 3 éléments que j'ai supprimés mais je n'arrive pas à enregistrer un rapport.

      AVG Anti-Spyware - Rapport d'analyse
      ---------------------------------------------------------
      + Créé à: 20:24:18 25/02/2007
      + Résultat de l'analyse:

      C:\Documents and Settings\Carite\Cookies\carite@247realmedia[1].txt -> TrackingCookie.247realmedia : Nettoyé.
      :mozilla.6:C:\Documents and Settings\Carite\Application Data\Mozilla\Firefox\Profiles\6e1od7k6.default\cookies.txt -> TrackingCookie.Adtech : Nettoyé.
      :mozilla.7:C:\Documents and Settings\Carite\Application Data\Mozilla\Firefox\Profiles\6e1od7k6.default\cookies.txt -> TrackingCookie.Adtech : Nettoyé.
      :mozilla.11:C:\Documents and Settings\Carite\Application Data\Mozilla\Firefox\Profiles\6e1od7k6.default\cookies.txt -> TrackingCookie.Estat : Nettoyé.
      :mozilla.55:C:\Documents and Settings\Carite\Application Data\Mozilla\Firefox\Profiles\6e1od7k6.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé.
      :mozilla.56:C:\Documents and Settings\Carite\Application Data\Mozilla\Firefox\Profiles\6e1od7k6.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé.
      :mozilla.57:C:\Documents and Settings\Carite\Application Data\Mozilla\Firefox\Profiles\6e1od7k6.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé.
      :mozilla.33:C:\Documents and Settings\Carite\Application Data\Mozilla\Firefox\Profiles\6e1od7k6.default\cookies.txt -> TrackingCookie.Weborama : Nettoyé.
      :mozilla.34:C:\Documents and Settings\Carite\Application Data\Mozilla\Firefox\Profiles\6e1od7k6.default\cookies.txt -> TrackingCookie.Weborama : Nettoyé.
      :mozilla.35:C:\Documents and Settings\Carite\Application Data\Mozilla\Firefox\Profiles\6e1od7k6.default\cookies.txt -> TrackingCookie.Weborama : Nettoyé.


      Fin du rapport

      Dernier rapport hijackthis :

      Logfile of HijackThis v1.99.1
      Scan saved at 20:25:22, on 25/02/2007
      Platform: Windows XP (WinNT 5.01.2600)
      MSIE: Internet Explorer v6.00 (6.00.2600.0000)

      Running processes:
      C:\WINDOWS\System32\smss.exe
      C:\WINDOWS\system32\winlogon.exe
      C:\WINDOWS\system32\services.exe
      C:\WINDOWS\system32\lsass.exe
      C:\WINDOWS\system32\svchost.exe
      C:\WINDOWS\System32\svchost.exe
      C:\WINDOWS\Explorer.EXE
      C:\WINDOWS\system32\spoolsv.exe
      C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
      C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
      C:\Program Files\VIA\RAID\raid_tool.exe
      C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
      C:\Program Files\Alwil Software\Avast4\ashServ.exe
      C:\WINDOWS\System32\drivers\CDAC11BA.EXE
      C:\Program Files\Sunbelt Software\Personal Firewall 4\kpf4ss.exe
      C:\WINDOWS\System32\nvsvc32.exe
      C:\Program Files\Sunbelt Software\Personal Firewall 4\kpf4gui.exe
      C:\Program Files\Sunbelt Software\Personal Firewall 4\kpf4gui.exe
      C:\WINDOWS\System32\svchost.exe
      C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
      C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
      C:\WINDOWS\System32\CAPRPCSK.EXE
      C:\WINDOWS\System32\spool\drivers\w32x86\3\CAPPSWK.EXE
      C:\WINDOWS\System32\wuauclt.exe
      C:\Program Files\Mozilla Firefox\firefox.exe
      C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe
      C:\Program Files\Outlook Express\msimn.exe
      C:\Program Files\Messenger\msmsgs.exe
      C:\Program Files\Internet Explorer\iexplore.exe
      C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
      C:\Documents and Settings\Carite\Bureau\Sécurité\hijackthis\hijackthis_hijackthis_1.99.1_anglais_17891.exe

      R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://actus.sfr.fr
      R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://actus.sfr.fr
      R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
      R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
      O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
      O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
      O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
      O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar4.dll
      O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
      O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
      O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar4.dll
      O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
      O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
      O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
      O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
      O4 - Global Startup: VIA RAID TOOL.lnk = C:\Program Files\VIA\RAID\raid_tool.exe
      O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
      O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
      O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} - http://software-dl.real.com/2050c910fa7208eed806/netzip/RdxIE601_fr.cab
      O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
      O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
      O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
      O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
      O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
      O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
      O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
      O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
      O23 - Service: C-DillaCdaC11BA - C-Dilla Ltd - C:\WINDOWS\System32\drivers\CDAC11BA.EXE
      O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
      O23 - Service: Sunbelt Kerio Personal Firewall 4 (KPF4) - Sunbelt Software - C:\Program Files\Sunbelt Software\Personal Firewall 4\kpf4ss.exe
      O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe

      voila qu'en penses-tu?

      Tanaud
      0
  3. Regis59 Messages postés 21143 Date d'inscription   Statut Contributeur sécurité Dernière intervention   1 349
     
    Salut

    Clik droit sur le rapport de spybot et choisis copier dans le presse papier

    vient ici et clik droit < coller.

    a+
    0
    1. tanaud Messages postés 90 Statut Membre 4
       
      je ne l'ai plus le rapport de spybot car j'ai supprimé les fichiers en question. J'ai refait un scan avec spybot et y a plus rien.
      Mais comment se fait-il qu'un coup il y ait des trucs et un autre non?
      le log hijackthis tu en penses quoi ?

      Merci
      tanaud
      0
  4. Regis59 Messages postés 21143 Date d'inscription   Statut Contributeur sécurité Dernière intervention   1 349
     
    Salut

    Apparemment il a réussi a les supprimer.
    Hijack this ok sauf tes mises a jour windows, installe le sp1 ou le sp2.

    a+
    0
  5. Vous n’avez pas trouvé la réponse que vous recherchez ?

    Posez votre question
  6. tanaud Messages postés 90 Statut Membre 4
     
    Je te poste le nouveau rapport de spybot qui révèle à nouveau des trucs qui ne vont pas. j'ai fait après corriger les problèmes et les problèmes ont été corrigés mais ils reviennent toujours.

    --- Search result list ---
    DoubleClick: Cookie traceur (Firefox: default) (Cookie, nothing done)

    MediaPlex: Cookie traceur (Firefox: default) (Cookie, nothing done)

    --- Spybot - Search & Destroy version: 1.4 (build: 20050523) ---

    2005-05-31 blindman.exe (1.0.0.1)
    2005-05-31 SpybotSD.exe (1.4.0.3)
    2005-05-31 TeaTimer.exe (1.4.0.2)
    2007-02-18 unins000.exe (51.41.0.0)
    2005-05-31 Update.exe (1.4.0.0)
    2007-01-15 advcheck.dll (1.2.1.0)
    2005-05-31 aports.dll (2.1.0.0)
    2005-05-31 borlndmm.dll (7.0.4.453)
    2005-05-31 delphimm.dll (7.0.4.453)
    2005-05-31 SDHelper.dll (1.4.0.0)
    2007-01-02 Tools.dll (2.0.1.0)
    2005-05-31 UnzDll.dll (1.73.1.1)
    2005-05-31 ZipDll.dll (1.73.2.0)
    2007-02-21 Includes\Cookies.sbi (*)
    2006-12-08 Includes\Dialer.sbi (*)
    2007-02-21 Includes\DialerC.sbi (*)
    2007-02-07 Includes\Hijackers.sbi (*)
    2007-02-21 Includes\HijackersC.sbi (*)
    2006-10-27 Includes\Keyloggers.sbi (*)
    2007-02-21 Includes\KeyloggersC.sbi (*)
    2004-11-29 Includes\LSP.sbi (*)
    2007-02-14 Includes\Malware.sbi (*)
    2007-02-21 Includes\MalwareC.sbi (*)
    2007-01-19 Includes\PUPS.sbi (*)
    2007-02-21 Includes\PUPSC.sbi (*)
    2007-02-21 Includes\Revision.sbi (*)
    2006-12-08 Includes\Security.sbi (*)
    2007-02-21 Includes\SecurityC.sbi (*)
    2007-02-02 Includes\Spybots.sbi (*)
    2007-02-21 Includes\SpybotsC.sbi (*)
    2005-02-17 Includes\Tracks.uti
    2007-02-14 Includes\Trojans.sbi (*)
    2007-02-21 Includes\TrojansC.sbi (*)

    --- System information ---
    Windows XP (Build: 2600)
    / Internet Explorer 6 / SP0: Correctif Windows XP - Article Base de Connaissances 834707
    / Windows XP / SP1: Windows XP Hotfix - KB823980
    / Windows XP / SP1: Windows XP Hotfix (SP1) [See Q317181 for more information]
    / Windows XP / SP1: Windows XP Hotfix (SP1) [See Q329048 for more information]
    / Windows XP / SP1: Windows XP Hotfix (SP1) Q329170
    / Windows XP / SP1: Windows XP Hotfix (SP1) [See Q329390 for more information]
    / Windows XP / SP1: Windows XP Hotfix (SP1) [See Q329441 for more information]
    / Windows XP / SP1: Windows XP Hotfix (SP1) [See Q329834 for more information]
    / Windows XP / SP1: Windows XP Hotfix (SP1) Q810577
    / Windows XP / SP1: Windows XP Hotfix (SP1) Q810833
    / Windows XP / SP1: Windows XP Hotfix (SP1) Q811630
    / Windows XP / SP1: Windows XP Hotfix (SP1) Q815021
    / Windows XP / SP1: Windows XP Hotfix (SP1) Q817606
    / Windows XP / SP2: Correctif Windows XP - KB823559
    / Windows XP / SP2: Correctif Windows XP - KB828741
    / Windows XP / SP2: Correctif Windows XP - KB835732
    / Windows XP / SP2: Correctif Windows XP - KB842773
    / Windows XP / SP2: Package du correctif Windows XP [voir Q323255 pour plus de détails]
    / Windows XP / SP2: Package du correctif Windows XP [voir Q329115 pour plus de détails]

    --- Startup entries list ---
    Located: HK_LM:Run, !AVG Anti-Spyware
    command: "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
    file: C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
    size: 6266880
    MD5: 01d90ae5dccbce0c7b52874fec35a608

    Located: HK_LM:Run, avast!
    command: C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    file: C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    size: 108160
    MD5: 26a15d8d5c81a3b053e82b01a5d8208e

    Located: HK_LM:Run, NvCplDaemon
    command: RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
    file: C:\WINDOWS\system32\RUNDLL32.EXE
    size: 32256
    MD5: ac0f912ea7571e9c1ad7b64c83f72bd9

    Located: HK_LM:Run, TkBellExe
    command: "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
    file: C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
    size: 185896
    MD5: 1eda1c63e0d2ae1aebdf98083454079c

    Located: Démarrage (tous utilisateurs), VIA RAID TOOL.lnk
    command: C:\Program Files\VIA\RAID\raid_tool.exe
    file: C:\Program Files\VIA\RAID\raid_tool.exe
    size: 565248
    MD5: a4b1e950403db9c3cbc9d951112a26c7

    Located: System.ini, crypt32chain
    command: crypt32.dll
    file: crypt32.dll

    Located: System.ini, cryptnet
    command: cryptnet.dll
    file: cryptnet.dll

    Located: System.ini, cscdll
    command: cscdll.dll
    file: cscdll.dll

    Located: System.ini, ScCertProp
    command: wlnotify.dll
    file: wlnotify.dll

    Located: System.ini, Schedule
    command: wlnotify.dll
    file: wlnotify.dll

    Located: System.ini, sclgntfy
    command: sclgntfy.dll
    file: sclgntfy.dll

    Located: System.ini, SensLogn
    command: WlNotify.dll
    file: WlNotify.dll

    Located: System.ini, termsrv
    command: wlnotify.dll
    file: wlnotify.dll

    Located: System.ini, WgaLogon
    command: WgaLogon.dll
    file: WgaLogon.dll

    Located: System.ini, wlballoon
    command: wlnotify.dll
    file: wlnotify.dll

    --- Browser helper object list ---
    {AA58ED58-01DD-4d91-8333-CF10577473F7} (Google Toolbar Helper)
    BHO name:
    CLSID name: Google Toolbar Helper
    description: Google toolbar
    classification: Open for discussion
    known filename: googletoolbar.dll<br>googletoolbar*.dll<br>(* = number)<br>googletoolbar_en_*.**-big.dll<br>Googletoolbar_en_*.*.**-deleon.dll
    info link: http://www.google.com/intl/fr/toolbar/ie/index.html
    info source: TonyKlein
    Path: c:\program files\google\
    Long name: GoogleToolbar4.dll
    Short name: GOOGLE~4.DLL
    Date (created): 14/02/2007 22:35:54
    Date (last access): 26/02/2007 18:42:14
    Date (last write): 19/01/2007 23:56:04
    Filesize: 2436160
    Attributes: readonly archive
    MD5: 6D44E0C3B43D27484FBB355E470C4188
    CRC32: 2DE875CD
    Version: 4.0.1601.4978

    --- ActiveX list ---
    {56336BCB-3D8A-11D6-A00B-0050DA18DE71} ()
    DPF name:
    CLSID name:
    Installer:
    Codebase: http://software-dl.real.com/2050c910fa7208eed806/netzip/RdxIE601_fr.cab
    description: Netster
    classification: Confirmed as malware
    known filename:
    info link:
    info source:

    --- Process list ---
    PID: 0 ( 0) [System]
    PID: 644 ( 4) \SystemRoot\System32\smss.exe
    PID: 708 ( 644) \??\C:\WINDOWS\system32\csrss.exe
    PID: 732 ( 644) \??\C:\WINDOWS\system32\winlogon.exe
    PID: 776 ( 732) C:\WINDOWS\system32\services.exe
    size: 101888
    MD5: FC0691097471EE374907E1024EDCBD43
    PID: 788 ( 732) C:\WINDOWS\system32\lsass.exe
    size: 11776
    MD5: 2C2431B30A629123C1757582C9D93F38
    PID: 972 ( 776) C:\WINDOWS\system32\svchost.exe
    size: 12800
    MD5: 333A4DB8410D8E24DB06D6AEBECDC7C2
    PID: 1072 ( 776) C:\WINDOWS\System32\svchost.exe
    size: 12800
    MD5: 333A4DB8410D8E24DB06D6AEBECDC7C2
    PID: 1256 ( 776) C:\WINDOWS\System32\svchost.exe
    size: 12800
    MD5: 333A4DB8410D8E24DB06D6AEBECDC7C2
    PID: 1312 ( 776) C:\WINDOWS\System32\svchost.exe
    size: 12800
    MD5: 333A4DB8410D8E24DB06D6AEBECDC7C2
    PID: 1616 (1596) C:\WINDOWS\Explorer.EXE
    size: 1005056
    MD5: 9E20A8EF0CA524446AFEE29F4423CC8F
    PID: 1628 ( 776) C:\WINDOWS\system32\spoolsv.exe
    size: 51200
    MD5: B1CE5287F096895D9BE26EB86F4D5FAF
    PID: 1760 (1616) C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    size: 108160
    MD5: 26A15D8D5C81A3B053E82B01A5D8208E
    PID: 1768 (1616) C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
    size: 6266880
    MD5: 01D90AE5DCCBCE0C7B52874FEC35A608
    PID: 1784 (1616) C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
    size: 185896
    MD5: 1EDA1C63E0D2AE1AEBDF98083454079C
    PID: 1792 (1616) C:\Program Files\VIA\RAID\raid_tool.exe
    size: 565248
    MD5: A4B1E950403DB9C3CBC9D951112A26C7
    PID: 1980 ( 776) C:\WINDOWS\System32\alg.exe
    size: 40960
    MD5: 55D226818B6C3D99741432D37657BA73
    PID: 2020 ( 776) C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    size: 59008
    MD5: DC995DA2D258C0590C3AE07EC68BFEE6
    PID: 2044 ( 776) C:\Program Files\Alwil Software\Avast4\ashServ.exe
    size: 132736
    MD5: 8E33DA0415023EA7A9378AFA04D9BF4D
    PID: 200 ( 776) C:\WINDOWS\System32\drivers\CDAC11BA.EXE
    size: 39936
    MD5: 3DE014DFC14E8530F3A85572E2763446
    PID: 220 ( 776) C:\Program Files\Sunbelt Software\Personal Firewall 4\kpf4ss.exe
    size: 1368064
    MD5: 37F2DECEBEDC9179A149CC40968CDF5A
    PID: 296 ( 776) C:\WINDOWS\System32\nvsvc32.exe
    size: 127043
    MD5: 43B0A0774EA90BF699D267C45D2702F9
    PID: 416 ( 776) C:\WINDOWS\System32\svchost.exe
    size: 12800
    MD5: 333A4DB8410D8E24DB06D6AEBECDC7C2
    PID: 536 ( 220) C:\Program Files\Sunbelt Software\Personal Firewall 4\kpf4gui.exe
    size: 2617344
    MD5: 34D8182F75D145FD5C1B0384400E588B
    PID: 1160 ( 220) C:\Program Files\Sunbelt Software\Personal Firewall 4\kpf4gui.exe
    size: 2617344
    MD5: 34D8182F75D145FD5C1B0384400E588B
    PID: 904 ( 776) C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
    size: 255616
    MD5: AA6691D73782FA5D94E0CED6D27C3DE8
    PID: 2060 ( 776) C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
    size: 370304
    MD5: D6B2638DDBFB34AC78B153CDD0792C37
    PID: 2620 (1628) C:\WINDOWS\System32\CAPRPCSK.EXE
    size: 28160
    MD5: 58DBF60E65690B295B024DA082D328E3
    PID: 2732 (2632) C:\WINDOWS\System32\spool\drivers\w32x86\3\CAPPSWK.EXE
    size: 114688
    MD5: 9D680CBD0E99E1EAA67442C240FD1021
    PID: 1564 (1072) C:\WINDOWS\System32\wuauclt.exe
    size: 125720
    MD5: 6CC08152ED8681BC176BE1B0F3C0E908
    PID: 3908 (1616) C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe
    size: 4393096
    MD5: 09CA174A605B480318731E691DC98539
    PID: 3160 (1616) C:\Program Files\Microsoft Office\Office\EXCEL.EXE
    size: 5604624
    MD5: 319B5ED60330ABC10DFCA719E380CB6A
    PID: 4 ( 0) System

    --- Browser start & search pages list ---
    Spybot - Search & Destroy browser pages report, 26/02/2007 19:54:25

    HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Local Page
    C:\WINDOWS\System32\blank.htm
    HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Search Page
    https://actus.sfr.fr
    HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Search Bar
    https://actus.sfr.fr
    HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Start Page
    https://www.google.fr/?gws_rd=ssl
    HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search\SearchAssistant
    http://www.google.com/toolbar/ie8/sidebar.html
    HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl\@
    http://www.google.com/search?q=%s
    HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Local Page
    %SystemRoot%\system32\blank.htm
    HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Search Page
    http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
    HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Start Page
    http://www.microsoft.com/isapi/redir.dll?prd={SUB_PRD}&clcid={SUB_CLSID}&pver={SUB_PVER}&ar=home
    HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Page_URL
    http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
    HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Search_URL
    http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
    HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\SearchAssistant
    https://www.bing.com/?toHttps=1&redig=8F3F334EA60E4B1CB4D040DCFE393A89{SUB_RFC1766}/srchasst/srchasst.htm
    HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\CustomizeSearch
    https://www.bing.com/?toHttps=1&redig=8F3F334EA60E4B1CB4D040DCFE393A89{SUB_RFC1766}/srchasst/srchcust.htm

    --- Winsock Layered Service Provider list ---

    --- Uninstall list ---
    a-squared Free 2.0 2.0 (a-squared Free_is1)
    install location: C:\Program Files\a-squared Free\
    uninstall cmd: "C:\Program Files\a-squared Free\unins000.exe"
    publisher: Emsi Software GmbH
    comments: a-squared
    help link: https://support.emsisoft.com/

    (ABBYY FineReader 5.0 Sprint)

    Ad-Aware SE Personal 1.06 (Ad-Aware SE Personal)
    uninstall cmd: C:\PROGRA~1\Lavasoft\AD-AWA~1\UNWISE.EXE C:\PROGRA~1\Lavasoft\AD-AWA~1\INSTALL.LOG
    publisher: Lavasoft
    help link: https://www.adaware.com/

    (AddressBook)

    Adobe Acrobat 5.0 5.0 (Adobe Acrobat 5.0)
    version (major): 5
    install location: C:\Program Files\Adobe\Acrobat 5.0
    install source: C:\Documents and Settings\Carite\Local Settings\Temp\pft355~tmp\
    uninstall cmd: C:\WINDOWS\ISUN040C.EXE -f"C:\Program Files\Fichiers communs\Adobe\Acrobat 5.0\NT\Uninst.isu" -c"C:\Program Files\Fichiers communs\Adobe\Acrobat 5.0\NT\Uninst.dll"
    publisher: Adobe Systems, Inc.
    help link: https://acrobat.adobe.com/us/en/acrobat.html

    avast! Antivirus 4.7 (avast!)
    version (major): 4
    version (minor): 7
    install location: C:\PROGRA~1\ALWILS~1\Avast4
    install source: C:\PROGRA~1\ALWILS~1\Avast4\setup
    uninstall cmd: rundll32 C:\PROGRA~1\ALWILS~1\Avast4\Setup\setiface.dll,RunSetup
    publisher: Alwil Software
    help link: https://www.avast.com/fr-fr/index

    AVG Anti-Spyware 7.5 (AVGAntiSpyware75)
    install location: C:\Program Files\Grisoft\AVG Anti-Spyware 7.5
    uninstall cmd: C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\Uninstall.exe
    publisher: Grisoft Ltd.
    help link: https://www.avg.com/fr-fr/homepage

    (Branding)

    C-Media 3D Audio (C-Media Audio)
    uninstall cmd: C:\WINDOWS\CMIUnInstall.exe

    Imprimantes Canon CAPT (Canon Advanced Printing Technology)
    uninstall cmd: C:\WINDOWS\System32\Spool\Drivers\w32x86\3\CAP1UNIK.EXE

    CCleaner (remove only) (CCleaner)
    uninstall cmd: "C:\Program Files\CCleaner\uninst.exe"

    (Connection Manager)

    (DirectAnimation)

    (DirectDrawEx)

    Mise à jour de licences personnelles (DRM7Tool)
    uninstall cmd: RunDll32 advpack.dll,LaunchINFSection C:\WINDOWS\INF\drmtool.inf,Uninstall

    EPSON Scan (EPSON Scanner)
    uninstall cmd: C:\Program Files\epson\escndv\setup\setup.exe /r

    (Fontcore)

    Grand Atelier de la langue française (Grand Atelier de la langue française)
    uninstall cmd: C:\WINDOWS\IsUn040c.exe -fc:\ATELIER\Uninst.isu

    HijackThis 1.99.1 1.99.1 (HijackThis)
    uninstall cmd: C:\Documents and Settings\Carite\Local Settings\Temp\Répertoire temporaire 1 pour hijackthis.zip\HijackThis.exe /uninstall
    publisher: Soeperman Enterprises Ltd.

    (ICW)

    (IE40)

    (IE4Data)

    (IE5BAKEX)

    (IEData)

    (InstallShield Uninstall Information)

    VIA Gestionnaire de périphériques de plate-forme 1.1 (InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169})
    version: 16842752
    version (major): 1
    version (minor): 1
    install date: 20070104
    install source: E:\Drivers\SATA\3.00b\
    uninstall cmd: C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{20D4A895-748C-4D88-871C-FDB1695B0169}
    publisher: VIA Technologies, Inc.
    comments: VIA Hyperion Pro Setup Program
    contact: http://forums.viaarena.com/
    help link: http://www.viaarena.com/
    help telephone: NULL
    readme: NULL

    Correctif Windows XP - KB823559 20030701.220507 (KB823559)
    uninstall cmd: C:\WINDOWS\$NtUninstallKB823559$\spuninst\spuninst.exe
    publisher: Microsoft Corporation
    help link: https://support.microsoft.com/en-us/help/823559

    Windows XP Hotfix - KB823980 20030705.121642 (KB823980)
    uninstall cmd: C:\WINDOWS\$NtUninstallKB823980$\spuninst\spuninst.exe
    publisher: Microsoft Corporation
    help link: https://support.microsoft.com/en-us/help/823980/

    Correctif Windows XP - KB828741 20040305.180728 (KB828741)
    uninstall cmd: C:\WINDOWS\$NtUninstallKB828741$\spuninst\spuninst.exe
    publisher: Microsoft Corporation
    help link: https://support.microsoft.com/en-us/help/828741/ms04-012-cumulative-update-for-microsoft-rpc-dcom

    Correctif Windows XP - Article Base de Connaissances 834707 20040929.115007 (KB834707-IE6-20040929.115007)
    uninstall cmd: C:\WINDOWS\$NtUninstallKB834707-IE6-20040929.115007$\spuninst\spuninst.exe
    publisher: Microsoft Corporation
    help link: https://support.microsoft.com/en-us/help/834707

    Correctif Windows XP - KB835732 20040329.172648 (KB835732)
    uninstall cmd: C:\WINDOWS\$NtUninstallKB835732$\spuninst\spuninst.exe
    publisher: Microsoft Corporation
    help link: https://support.microsoft.com/en-us/help/835732/ms04-011-security-update-for-microsoft-windows

    (Microsoft NetShow Player 2.0)

    (MobileOptionPack)

    Mozilla Firefox (1.5.0.10) 1.5.0.10 (fr) (Mozilla Firefox (1.5.0.10))
    install location: C:\Program Files\Mozilla Firefox
    uninstall cmd: C:\Program Files\Mozilla Firefox\uninstall\uninstall.exe /ua "1.5.0.10 (fr)"
    publisher: Mozilla

    Mozilla Thunderbird (0.6.) (Mozilla Thunderbird (0.6.))
    uninstall cmd: C:\WINDOWS\UninstallThunderbird.exe /ua "0.6. (fr)"

    (MPlayer2)

    (NetMeeting)

    Neuf - Kit de connexion 6.7.10.1 (Neuf_Kit)
    uninstall cmd: C:\Program Files\Neuf\Kit\uninstall.exe
    publisher: Neuf
    help link: http://abonnes.neuf.fr
    help telephone: 0892 222 109

    Nikon FotoShare 1.0.1.0 (Nikon FotoShare)
    uninstall cmd: C:\Program Files\Nikon\FotoShare\Uninstal.exe C:\PROGRA~1\Nikon\FOTOSH~1\INSTALL.LOG
    contact: FotoSharefr@pixology.com

    NVIDIA Drivers (NVIDIA Drivers)
    uninstall cmd: C:\WINDOWS\System32\nvudisp.exe UninstallGUI

    Microsoft Office 97 Standard (Office8.0)
    uninstall cmd: C:\Program Files\Microsoft Office\Office\Install\Acme.exe /w Off97Std.stf

    (OutlookExpress)

    (PCHealth)
    uninstall cmd: rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf

    Perf2480P_2580P Guide de réf. (Perf2480P_2580P Guide de réf.)
    install location: C:\Program Files\EPSON\TPMANUAL\Perf2480P_2580P\REF_G
    uninstall cmd: C:\Program Files\EPSON\TPMANUAL\Perf2480P_2580P\REF_G\DOCUNINS.EXE

    Windows XP Hotfix (SP1) [See Q329048 for more information] (Q329048)
    uninstall cmd: C:\WINDOWS\$NtUninstallQ329048$\spuninst\spuninst.exe

    Package du correctif Windows XP [voir Q329115 pour plus de détails] (Q329115)
    uninstall cmd: C:\WINDOWS\$NtUninstallQ329115$\spuninst\spuninst.exe

    Windows XP Hotfix (SP1) Q329170 20030102.115458 (Q329170)
    uninstall cmd: C:\WINDOWS\$NtUninstallQ329170$\spuninst\spuninst.exe
    publisher: Microsoft Corporation
    help link: Pour plus d'informations, consultez Q329170 à l'adresse https://support.microsoft.com/en-us

    Windows XP Hotfix (SP1) [See Q329390 for more information] (Q329390)
    uninstall cmd: C:\WINDOWS\$NtUninstallQ329390$\spuninst\spuninst.exe

    Windows XP Hotfix (SP1) [See Q329441 for more information] (Q329441)
    uninstall cmd: C:\WINDOWS\$NtUninstallQ329441$\spuninst\spuninst.exe
    publisher: Microsoft Corporation

    Windows XP Hotfix (SP1) [See Q329834 for more information] (Q329834)
    uninstall cmd: C:\WINDOWS\$NtUninstallQ329834$\spuninst\spuninst.exe

    Windows XP Hotfix (SP1) Q810577 20021118.133626 (Q810577)
    uninstall cmd: C:\WINDOWS\$NtUninstallQ810577$\spuninst\spuninst.exe
    publisher: Microsoft Corporation
    help link: Pour plus d'informations, consultez Q810577 à l'adresse https://support.microsoft.com/en-us

    Windows XP Hotfix (SP1) Q810833 20021203.200852 (Q810833)
    uninstall cmd: C:\WINDOWS\$NtUninstallQ810833$\spuninst\spuninst.exe
    publisher: Microsoft Corporation
    help link: Pour plus d'informations, consultez Q810833 à l'adresse https://support.microsoft.com/en-us

    Windows XP Hotfix (SP1) Q815021 20030502.110434 (Q815021)
    uninstall cmd: C:\WINDOWS\$NtUninstallQ815021$\spuninst\spuninst.exe
    publisher: Microsoft Corporation
    help link: https://support.microsoft.com/en-us/help/815021

    Windows XP Hotfix (SP1) Q817606 20030331.103325 (Q817606)
    uninstall cmd: C:\WINDOWS\$NtUninstallQ817606$\spuninst\spuninst.exe
    publisher: Microsoft Corporation
    help link: https://support.microsoft.com/en-us/help/817606

    (RealJukebox 1.0)
    uninstall cmd: C:\Program Files\Fichiers communs\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0

    RealPlayer (RealPlayer 6.0)
    uninstall cmd: C:\Program Files\Fichiers communs\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0

    (S3)
    uninstall cmd: C:\WINDOWS\IsUn040c.exe -f"C:\Program Files\S3Inc\S3\S3.isu"

    (SchedulingAgent)

    Adobe Flash Player 9 ActiveX 9 (ShockwaveFlash)
    uninstall cmd: C:\WINDOWS\System32\Macromed\Flash\FlashUtil9b.exe -uninstallDelete
    publisher: Adobe Systems
    help link: https://helpx.adobe.com/flash-player.html

    SiS Audio Driver (SiS7012)
    uninstall cmd: C:\Program Files\SiS7012\Uninst\uninst2k.exe PCI\VEN_1039&DEV_7012

    Spybot - Search & Destroy 1.4 1.4 (Spybot - Search & Destroy_is1)
    install location: C:\Program Files\Spybot - Search & Destroy\
    uninstall cmd: "C:\Program Files\Spybot - Search & Destroy\unins000.exe"
    publisher: Safer Networking Limited

    Presto! BizCard 4.1 Fre (Uninstall Presto! BizCard 4.1 Fre)
    uninstall cmd: C:\WINDOWS\IsUn040c.exe -f"C:\Program Files\NewSoft\Presto! BizCard Fre\Uninst.isu"

    (Uninstall Presto! BizCard Fre)
    uninstall cmd: C:\WINDOWS\IsUninst.exe -f"C:\Program Files\NewSoft\Presto! BizCard Fre\Uninst.isu" -c"C:\WINDOWS\StiRegstFre.dll"

    Windows Genuine Advantage Validation Tool (KB892130) 1.5.0530.0 (WGA)
    install date: 20061121
    publisher: Microsoft Corporation
    help link: https://www.microsoft.com/en-us/howtotell/default.aspx

    Windows Genuine Advantage Notifications (KB905474) 1.5.0540.0 (WgaNotify)
    install date: 20070106
    publisher: Microsoft Corporation
    help link: https://support.microsoft.com/en-us/help/905474

    Yahoo! Toolbar avec bloqueur de fenêtres pop-up (Yahoo! Companion)
    uninstall cmd: C:\PROGRA~1\Yahoo!\Common\unyt.exe

    Yahoo! Toolbar (Yahoo! Toolbar)

    Reflex'Dictionnaire Collins (YdpDict500)
    uninstall cmd: C:\WINDOWS\IsUn040c.exe -f"C:\Program Files\ReflexDictionnaire\DeIsL1.isu" -c"C:\Program Files\ReflexDictionnaire\uninst.dll"

    Platform 1.1 ({20D4A895-748C-4D88-871C-FDB1695B0169})
    version: 16842752
    version (major): 1
    version (minor): 1
    install date: 20070104
    install source: E:\Drivers\SATA\3.00b\
    publisher: VIA Technologies, Inc.
    comments: VIA Hyperion Pro Setup Program
    contact: http://forums.viaarena.com/
    help link: http://www.viaarena.com/
    help telephone: NULL
    readme: NULL

    Google Toolbar for Internet Explorer ({2318C2B1-4965-11d4-9B18-009027A5CD4F})
    uninstall cmd: regsvr32 /u /s "c:\program files\google\googletoolbar4.dll"

    ({23EFDB58-0874-4883-9810-EDA510B19FAE})
    uninstall cmd: RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{23EFDB58-0874-4883-9810-EDA510B19FAE}\setup.exe" -l0x9

    ({2BB79C8D-9DCC-4861-8A23-AE1B0B45E2B6})
    uninstall cmd: RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{2BB79C8D-9DCC-4861-8A23-AE1B0B45E2B6}\setup.exe" -l0x9

    WebFldrs XP 9.50.5318 ({350C97B8-3D7C-4EE8-BAA9-00BCB3D54227})
    version: 154277062
    version (major): 9
    version (minor): 50
    estimated size: 2668
    install date: 20041123
    install source: C:\WINDOWS\System32\
    publisher: Microsoft Corporation
    help link: https://www.microsoft.com/en-us/windows/

    ({3C1B8CBC-9118-11D7-86D3-00055DF3561E})
    uninstall cmd: RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{3C1B8CBC-9118-11D7-86D3-00055DF3561E}\setup.exe" -l0x9

    ({5D1A81AA-ED90-11D6-86D3-00055DF3561E})
    uninstall cmd: RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{5D1A81AA-ED90-11D6-86D3-00055DF3561E}\setup.exe" -l0x9

    PhotoImpression 5 ({66C8BE35-8BBB-472B-96C7-C7C9A499F988})
    uninstall cmd: RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{66C8BE35-8BBB-472B-96C7-C7C9A499F988}\SETUP.EXE" -l0x40c

    EPSON Copy Utility 3 3.0.1.0 ({67EDD823-135A-4D59-87BD-950616D6E857})
    version: 50331649
    install location: C:\Program Files\EPSON\Utility Suite\Copy Utility
    uninstall cmd: RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{67EDD823-135A-4D59-87BD-950616D6E857}\Setup.exe" -l0x40c -UnInstall

    PowerDVD ({6811CAA0-BF12-11D4-9EA1-0050BAE317E1})
    uninstall cmd: RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}\Setup.exe" -uninstall

    EPSON Smart Panel ({6C11D561-620B-47DA-A693-4C597F3CDF40})
    uninstall cmd: RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{6C11D561-620B-47DA-A693-4C597F3CDF40}\Setup.exe" -l0x40c Uninstall

    ({83021AC3-086F-4B77-ACCD-1BD7C9AB211E})
    uninstall cmd: RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{83021AC3-086F-4B77-ACCD-1BD7C9AB211E}\setup.exe" -l0x9

    Sunbelt Kerio Personal Firewall 4.2.3.912 ({A990EAA7-8941-4621-BC27-4F16261D3180})
    version: 67239939
    version (major): 4
    version (minor): 2
    estimated size: 10430
    install date: 20070116
    install location: C:\Program Files\Sunbelt Software\
    install source: C:\DOCUME~1\Carite\LOCALS~1\Temp\_is25\
    uninstall cmd: MsiExec.exe /X{A990EAA7-8941-4621-BC27-4F16261D3180}
    publisher: Sunbelt Software
    contact: Customer Support Department
    help link: http://www.sunbelt-software.com/support-HomeOffice.cfm
    help telephone: 877-673-1153

    ABBYY FineReader 6.0 6.0.759.29421 ({AF600F7B-67A7-48D9-BA3B-0FF97F35F970})
    version: 100664055
    version (major): 6
    estimated size: 55872
    install date: 20070203
    install source: E:\ABBYY\FR60\
    uninstall cmd: MsiExec.exe /I{AF600F7B-67A7-48D9-BA3B-0FF97F35F970}
    publisher: ABBYY Software House
    comments:
    contact: support@abbyy.com
    help link: https://support.abbyy.com/hc/en-us/
    help telephone: +7 (095) 234 44 00
    readme: ReadmeEng.htm

    ({B14F9B26-D695-4C4A-8B11-0FE6CDCC797B})
    uninstall cmd: RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{B14F9B26-D695-4C4A-8B11-0FE6CDCC797B}\setup.exe" -l0x9

    ABBYY FineReader 5.0 Sprint 5.0.0.33417 ({D1696920-9794-4BBC-8A30-7A88763DE5A2})
    version: 83886080
    version (major): 5
    estimated size: 227214
    install date: 20070203
    install source: E:\ABBYY\
    uninstall cmd: MsiExec.exe /X{D1696920-9794-4BBC-8A30-7A88763DE5A2}
    publisher: ABBYY Software House
    contact: support@abbyy.com
    help link: https://support.abbyy.com/hc/en-us/
    help telephone: +7 (095) 234 44 00

    Nikon Message Center 0.91.000 ({D2FCC1AE-6311-47C5-8130-C6C66D77DD71})
    version: 5963776
    install location: C:\Program Files\Fichiers communs\Nikon\Message Center
    uninstall cmd: RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{D2FCC1AE-6311-47C5-8130-C6C66D77DD71}\Setup.exe" -l0x40c UNINSTALL

    ({E213C271-AEFA-481D-A9B4-914D88925B8D})
    uninstall cmd: RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{E213C271-AEFA-481D-A9B4-914D88925B8D}\setup.exe" -l0x9

    ScanToWeb ({EBAE381B-60A6-4863-AA9F-FCAB755BC9E5})
    uninstall cmd: RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{EBAE381B-60A6-4863-AA9F-FCAB755BC9E5}\setup.exe" ADDREMOVEDLG

    ({FAD9402A-1A9B-4ABE-A410-393A3622FA5A})
    uninstall cmd: RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{FAD9402A-1A9B-4ABE-A410-393A3622FA5A}\setup.exe" -l0x9

    Composant de Presto! BizCard 4.0 pour Windows CE ({FCC30665-B924-4EA0-92F7-D9D676FB70A1})
    uninstall cmd: RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{FCC30665-B924-4EA0-92F7-D9D676FB70A1}\setup.exe" -l0x40c

    PictureProject 1.0 ({FF3999BE-1A7B-4738-88AA-97BF14094A4A})
    version: 16777216
    install location: C:\Program Files\Nikon\PictureProject
    uninstall cmd: RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{FF3999BE-1A7B-4738-88AA-97BF14094A4A}\Setup.exe" -l0x40c UNINSTALL

    --- System Services ---
    Service (registry key): Aavmker4
    Display name: avast! Asynchronous Virus Monitor
    Start: 1
    Type: 1
    Error Control: 1

    Service (registry key): Abiosdsk
    Start: 4
    Type: 1
    Error Control: 0

    Service (registry key): abp480n5
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): ACPI
    Display name: Pilote ACPI Microsoft
    Image path: System32\DRIVERS\ACPI.sys
    Image size: 180096
    Image MD5: 34128BB2AB7BD69C72017BE7FCF8BE34
    Start: 0
    Type: 1
    Error Control: 1

    Service (registry key): ACPIEC
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): adpu160m
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): aec
    Display name: Suppresseur d'écho acoustique (Noyau Microsoft)
    Image path: system32\drivers\aec.sys
    Image size: 122472
    Image MD5: B45A744CA0A15A59D8B0307CE9741E92
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): AFD
    Display name: Environnement de prise en charge de réseau AFD
    Image path: \SystemRoot\System32\drivers\afd.sys
    Start: 2
    Type: 1
    Error Control: 1

    Service (registry key): Aha154x
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): aic78u2
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): aic78xx
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): Alerter
    Display name: Avertissement
    Description: Informe les utilisateurs et les ordinateurs sélectionnés des alertes administratives. Si ce service est arrêté, les programmes qui utilisent les alertes administratives ne les recevront pas. Si ce service est désactivé, les services qui en dépendent ne pourront pas démarrer.
    Object name: NT AUTHORITY\LocalService
    Image path: %SystemRoot%\System32\svchost.exe -k LocalService
    Image size: 12800
    Image MD5: 333A4DB8410D8E24DB06D6AEBECDC7C2
    Start: 3
    Type: 32
    Error Control: 1
    Depends On services: LanmanWorkstation

    Service (registry key): ALG
    Display name: Service de la passerelle de la couche Application
    Description: Fournit la prise en charge des plugins de protocoles tiers pour le partage de connexion Internet et le pare-feu Internet.
    Object name: NT AUTHORITY\LocalService
    Image path: %SystemRoot%\System32\alg.exe
    Image size: 40960
    Image MD5: 55D226818B6C3D99741432D37657BA73
    Start: 3
    Type: 16
    Error Control: 1

    Service (registry key): AliIde
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): amsint
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): AppMgmt
    Display name: Gestion d'applications
    Description: Fournit des services d'installation de logiciels tels que Attribuer, Publier et Supprimer.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 12800
    Image MD5: 333A4DB8410D8E24DB06D6AEBECDC7C2
    Start: 3
    Type: 32
    Error Control: 1

    Service (registry key): asc
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): asc3350p
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): asc3550
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): aswMon2
    Display name: avast! Standard Shield Support
    Start: 2
    Type: 2
    Error Control: 1

    Service (registry key): aswRdr
    Display name: aswRdr
    Start: 3
    Type: 1
    Error Control: 1
    Depends On services: tcpip

    Service (registry key): aswTdi
    Display name: avast! Network Shield Support
    Start: 1
    Type: 1
    Error Control: 1
    Depends On services: tcpip

    Service (registry key): aswUpdSv
    Display name: avast! iAVS4 Control Service
    Description: Fournit la mise à jour automatique pour l'antivirus avast!.
    Object name: LocalSystem
    Image path: "C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe"
    Image size: 59008
    Image MD5: DC995DA2D258C0590C3AE07EC68BFEE6
    Start: 2
    Type: 272
    Error Control: 1

    Service (registry key): AsyncMac
    Display name: Pilote de média asynchrone RAS
    Description: Pilote de média asynchrone RAS
    Image path: System32\DRIVERS\asyncmac.sys
    Image size: 13568
    Image MD5: 03F403B07A884FC2AA54A0916C410931
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): atapi
    Display name: Contrôleur de disque dur IDE/ESDI standard
    Image path: System32\DRIVERS\atapi.sys
    Image size: 86656
    Image MD5: A64013E98426E1877CB653685C5C0009
    Start: 0
    Type: 1
    Error Control: 1

    Service (registry key): Atdisk
    Start: 4
    Type: 1
    Error Control: 0

    Service (registry key): Atmarpc
    Display name: Protocole client ATM ARP
    Description: Protocole client ATM ARP
    Image path: System32\DRIVERS\atmarpc.sys
    Image size: 57216
    Image MD5: 8D735CA1CBDB0081B0E3B9FF0EB222D0
    Start: 3
    Type: 1
    Error Control: 1
    Depends On services: Tcpip

    Service (registry key): AudioSrv
    Display name: Audio Windows
    Description: Gère les périphériques audio pour les programmes basés sur Windows. Si ce service est arrêté, les périphériques et les effets audio ne fonctionneront pas correctement. Si ce service est désactivé, les services en dépendant explicitement ne démarreront pas.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 12800
    Image MD5: 333A4DB8410D8E24DB06D6AEBECDC7C2
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: PlugPlay,RpcSs

    Service (registry key): audstub
    Display name: Pilote audio Stub
    Image path: System32\DRIVERS\audstub.sys
    Image size: 3072
    Image MD5: D9F724AA26C010A217C97606B160ED68
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): avast! Antivirus
    Display name: avast! Antivirus
    Description: Gère et implémente les services de l'antivirus avast! pour cet ordinateur. Ceci inclut la protection résidente, la zone de quarantaine et le planificateur.
    Object name: LocalSystem
    Image path: "C:\Program Files\Alwil Software\Avast4\ashServ.exe"
    Image size: 132736
    Image MD5: 8E33DA0415023EA7A9378AFA04D9BF4D
    Start: 2
    Type: 272
    Error Control: 1
    Depends On services: aswMon2,RpcSS

    Service (registry key): avast! Mail Scanner
    Display name: avast! Mail Scanner
    Description: Implémente l'analyse du courrier électronique pour l'antivirus avast!.
    Object name: LocalSystem
    Image path: "C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service
    Image size: 255616
    Image MD5: AA6691D73782FA5D94E0CED6D27C3DE8
    Start: 3
    Type: 272
    Error Control: 1
    Depends On services: "avast! Antivirus"

    Service (registry key): avast! Web Scanner
    Display name: avast! Web Scanner
    Description: Implémente l'analyse du contenu web (HTTP) pour l'antivirus avast!.
    Object name: LocalSystem
    Image path: "C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service
    Image size: 370304
    Image MD5: D6B2638DDBFB34AC78B153CDD0792C37
    Start: 3
    Type: 272
    Error Control: 1
    Depends On services: "avast! Antivirus"

    Service (registry key): AVG Anti-Spyware Driver
    Display name: AVG Anti-Spyware Driver
    Image path: \??\C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.sys
    Image size: 4096
    Image MD5: 7D78B7FD0EBE00F177B053A08C78E35B
    Start: 1
    Type: 1
    Error Control: 1

    Service (registry key): AVG Anti-Spyware Guard
    Display name: AVG Anti-Spyware Guard
    Object name: LocalSystem
    Image path: C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
    Image size: 204800
    Image MD5: E8FBDCC8D618D1BB84B828F247A6244B
    Start: 2
    Type: 16
    Error Control: 1

    Service (registry key): AvgAsCln
    Display name: AVG Anti-Spyware Clean Driver
    Image path: System32\DRIVERS\AvgAsCln.sys
    Image size: 3968
    Image MD5: 6D4A1DA6E6D522B3EBBCBFF4A3589EC5
    Start: 1
    Type: 1
    Error Control: 1
    Depends On services: Ntfs

    Service (registry key): basic2
    Image path: System32\DRIVERS\HSF_BSC2.sys
    Image size: 67167
    Image MD5: 1B9C81AB9A456EABD9F8335F04B5F495
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): BattC
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): Beep
    Start: 1
    Type: 1
    Error Control: 1

    Service (registry key): BITS
    Display name: Service de transfert intelligent en arrière-plan
    Description: Utilise la bande passante réseau inactive pour transférer des données.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 12800
    Image MD5: 333A4DB8410D8E24DB06D6AEBECDC7C2
    Start: 3
    Type: 32
    Error Control: 1
    Depends On services: LanmanWorkstation,RpcSs

    Service (registry key): Browser
    Display name: Explorateur d'ordinateur
    Description: Tient à jour une liste des ordinateurs présents sur le réseau et fournit cette liste aux ordinateurs désignés comme navigateurs. Si ce service est arrêté, la liste ne sera pas mise ou tenue à jour. Si ce service est désactivé, les services qui en dépendent ne pourront pas démarrer.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 12800
    Image MD5: 333A4DB8410D8E24DB06D6AEBECDC7C2
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: LanmanWorkstation,LanmanServer

    Service (registry key): C-DillaCdaC11BA
    Display name: C-DillaCdaC11BA
    Object name: LocalSystem
    Image path: C:\WINDOWS\System32\drivers\CDAC11BA.EXE
    Image size: 39936
    Image MD5: 3DE014DFC14E8530F3A85572E2763446
    Start: 2
    Type: 16
    Error Control: 1

    Service (registry key): cbidf2k
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): cd20xrnt
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): CdaC15BA
    Display name: CdaC15BA
    Image path: \??\C:\WINDOWS\System32\drivers\CDAC15BA.SYS
    Image size: 8864
    Image MD5: 82C4C6A2343B592C4FD590F625A724A9
    Start: 2
    Type: 1
    Error Control: 1

    Service (registry key): Cdaudio
    Start: 1
    Type: 1
    Error Control: 0

    Service (registry key): Cdfs
    Start: 4
    Type: 2
    Error Control: 1
    Depends On group: "SCSI CDROM Class"

    Service (registry key): Cdrom
    Display name: Pilote de CD-ROM
    Image path: System32\DRIVERS\cdrom.sys
    Image size: 47488
    Image MD5: CB762E814F602229A574F4D78D3D6A30
    Start: 1
    Type: 1
    Error Control: 1
    Depends On group: "SCSI miniport"

    Service (registry key): Changer
    Start: 1
    Type: 1
    Error Control: 0

    Service (registry key): cisvc
    Display name: Service d'indexation
    Description: Construit un index des contenus et des propriétés des fichiers sur les ordinateurs locaux et distants ; fournit un accès rapide aux fichiers par le biais d'un langage d'interrogation flexible.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\cisvc.exe
    Image size: 5120
    Image MD5: 7901AF03767C140467671C7CEEB2C3FE
    Start: 3
    Type: 32
    Error Control: 1
    Depends On services: RPCSS

    Service (registry key): ClipSrv
    Display name: Gestionnaire de l'Album
    Description: Active le Gestionnaire de l'Album afin de stocker les informations et les partager avec des ordinateurs à distance. Si le service est arrêté, le Gestionnaire de l'Album ne pourra pas partager les informations avec des ordinateurs à distance. Si ce service est désactivé, tout service en dépendant explicitement ne démarrera pas.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\clipsrv.exe
    Image size: 30720
    Image MD5: 3D1AAB2963FABCAFEB507B5C9D67BFBC
    Start: 3
    Type: 16
    Error Control: 1
    Depends On services: NetDDE

    Service (registry key): CmdIde
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): cmuda
    Display name: C-Media WDM Audio Interface
    Image path: system32\drivers\cmuda.sys
    Image size: 821760
    Image MD5: 924AB66E831E9CF3E20DBC6B63103516
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): COMSysApp
    Display name: Application système COM+
    Description: Gère la configuration et le suivi des composants de base COM+ (Component Object Model) . Si le service est arrêté, la plupart des composants de base COM+ ne fonctionneront pas correctement. Si ce service est désactivé, les services qui en dépendent de manière explicite ne pourront pas démarrer.
    Object name: LocalSystem
    Image path: C:\WINDOWS\System32\dllhost.exe /Processid:{02D4B3F1-FD88-11D1-960D-00805FC79235}
    Image size: 4608
    Image MD5: 17681E6109A67F3AEA66AD6AAE2434E6
    Start: 3
    Type: 16
    Error Control: 1
    Depends On services: rpcss

    Service (registry key): ContentFilter
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): ContentIndex
    Start: 0
    Type: 0
    Error Control: 0

    Service (registry key): CO_Mon
    Display name: CO_Mon
    Image path: \??\C:\WINDOWS\System32\Drivers\CO_Mon.sys
    Image size: 28672
    Image MD5: 6BE1D6403727BDD8A2B2568DBE6BFB8B
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): Cpqarray
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): CryptSvc
    Display name: Services de cryptographie
    Description: Fournit trois services de gestion : le service de base de données de catalogue, qui confirme la signature des fichiers Windows; le service de racine protégée, qui ajoute et supprime des certificats d'autorité de certification de racine approuvés et le service Clé, qui fournit une aide dans l'inscription de cet ordinateur pour les certificats. Si ce service est arrêté, ces services de gestion ne fonctionneront pas correctement. Si ce service est désactivé, tout service en dépendant explicitement ne démarrera pas.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\svchost.exe -k netsvcs
    Image size: 12800
    Image MD5: 333A4DB8410D8E24DB06D6AEBECDC7C2
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: RpcSs

    Service (registry key): dac2w2k
    Start: 4
    Type: 1
    Error Control: 0

    Service (registry key): dac960nt
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): Dhcp
    Display name: Client DHCP
    Description: Gère la configuration réseau en inscrivant et en mettant à jour les adresses IP et les noms DNS.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 12800
    Image MD5: 333A4DB8410D8E24DB06D6AEBECDC7C2
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: Tcpip,Afd,NetBT

    Service (registry key): Disk
    Display name: Pilote de disque
    Image path: System32\DRIVERS\disk.sys
    Image size: 33664
    Image MD5: 43A10CD19D648E57ED039A6CAA667A56
    Start: 0
    Type: 1
    Error Control: 1
    Depends On group: "SCSI miniport"

    Service (registry key): dmadmin
    Display name: Service d'administration du Gestionnaire de disque logique
    Description: Configure les lecteurs de disque durs et les volumes. Le service ne s'exécute que pour les processus de configurations puis s'arrête.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\dmadmin.exe /com
    Image size: 205312
    Image MD5: F03B6377293A2CA253E02366B6F817D3
    Start: 3
    Type: 32
    Error Control: 1
    Depends On services: RpcSs,PlugPlay,DmServer

    Service (registry key): dmboot
    Image path: System32\drivers\dmboot.sys
    Image size: 781440
    Image MD5: 625043857173294DF9239909FC37CCD1
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): dmio
    Display name: Pilote de Gestionnaire de disque logique
    Image path: System32\DRIVERS\dmio.sys
    Image size: 147456
    Image MD5: C85A01B45E107B2D80A1263B365E62B5
    Start: 0
    Type: 1
    Error Control: 1

    Service (registry key): dmload
    Start: 0
    Type: 1
    Error Control: 1

    Service (registry key): dmserver
    Display name: Gestionnaire de disque logique
    Description: Détecte et analyse de nouveaux lecteurs de disque durs et envoie les informations de volume de disque au service gestionnaire administratif de disque logique pour la configuration. Si ce service est arrêté, l'état des disques dynamiques et les informations de configuration peuvent devenir obsolètes. Si ce service est désactivé, tout service en dépendant explicitement ne démarrera pas.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 12800
    Image MD5: 333A4DB8410D8E24DB06D6AEBECDC7C2
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: RpcSs,PlugPlay

    Service (registry key): DMusic
    Display name: Synthétiseur DLS du noyau Microsoft
    Image path: system32\drivers\DMusic.sys
    Image size: 50048
    Image MD5: EF05974D47D56FA8387F170F05BAE5E7
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): Dnscache
    Display name: Client DNS
    Description: Résout et met en cache les noms DNS pour cet ordinateur. Si ce service est arrêté, l'ordinateur ne pourra pas résoudre les noms DNS et trouver les contrôleurs de domaine Active Directory. Si ce service est désactivé, les services qui en dépendent ne pourront pas démarrer.
    Object name: NT AUTHORITY\NetworkService
    Image path: %SystemRoot%\System32\svchost.exe -k NetworkService
    Image size: 12800
    Image MD5: 333A4DB8410D8E24DB06D6AEBECDC7C2
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: Tcpip

    Service (registry key): dpti2o
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): driverhardwarev2
    Display name: driverhardwarev2
    Image path: \??\C:\Program Files\HardwareDetection\driverhardwarev2.sys
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): drmkaud
    Display name: Filtre de décodeur DRM (Noyau Microsoft)
    Image path: system32\drivers\drmkaud.sys
    Image size: 2816
    Image MD5: AA94E0CBD79DB63100D0EAE061EB69BC
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): ERSvc
    Display name: Service de rapport d'erreurs
    Description: Active le rapport d'erreurs pour les services et les applications s'exécutant sur des environnements non standard.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 12800
    Image MD5: 333A4DB8410D8E24DB06D6AEBECDC7C2
    Start: 2
    Type: 32
    Error Control: 0
    Depends On services: RpcSs

    Service (registry key): Eventlog
    Display name: Journal des événements
    Description: Active les messages d'événements émis par les programmes fonctionnant sous Windows et les composants devant être affichés dans l'observateur d'événements. Ce service ne peut être arrêté.
    Object name: LocalSystem
    Image path: %SystemRoot%\system32\services.exe
    Image size: 101888
    Image MD5: FC0691097471EE374907E1024EDCBD43
    Start: 2
    Type: 32
    Error Control: 1

    Service (registry key): EventSystem
    Display name: Système d'événements de COM+
    Description: Prend en charge le service de notification d'événements système (SENS, System Event Notification Service), qui fournit une distribution automatique d'événements aux composants COM (Component Object Model) abonnés. Si le service est arrêté, SENS sera fermé et ne pourra fournir des informations d'ouverture et de fermeture de session. Si ce service est désactivé, le démarrage de tout service qui en dépend explicitement échouera.
    Object name: LocalSystem
    Image path: C:\WINDOWS\System32\svchost.exe -k netsvcs
    Image size: 12800
    Image MD5: 333A4DB8410D8E24DB06D6AEBECDC7C2
    Start: 3
    Type: 32
    Error Control: 1
    Depends On services: RPCSS

    Service (registry key): Fallback
    Image path: System32\DRIVERS\HSF_FALL.sys
    Image size: 289887
    Image MD5: C823DEBE2548656549F84A875D65237B
    Start: 2
    Type: 1
    Error Control: 0

    Service (registry key): Fastfat
    Start: 4
    Type: 2
    Error Control: 1

    Service (registry key): FastUserSwitchingCompatibility
    Display name: Compatibilité avec le Changement rapide d'utilisateur
    Description: Fournit un système de gestion à des applications qui nécessitent de l'Assistance dans un environnement d'utilisateurs multiples.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 12800
    Image MD5: 333A4DB8410D8E24DB06D6AEBECDC7C2
    Start: 3
    Type: 32
    Error Control: 1
    Depends On services: TermService

    Service (registry key): Fdc
    Display name: Pilote de contrôleur de lecteur de disquettes
    Image path: System32\DRIVERS\fdc.sys
    Image size: 26240
    Image MD5: 19C5C7EAC0190A42522290BF002F64EA
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): FETNDIS
    Display name: Pilote NT de carte VIA PCI 10/100Mo Fast Ethernet
    Image path: System32\DRIVERS\fetnd5.sys
    Image size: 27165
    Image MD5: E9648254056BCE81A85380C0C3647DC4
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): FETNDISB
    Display name: VIA Rhine Family Fast Ethernet Adapter Driver Service
    Image path: System32\DRIVERS\fetnd5b.sys
    Image size: 41984
    Image MD5: B7186B33B6CF3A23841015531E6E7D68
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): Fips
    Start: 1
    Type: 1
    Error Control: 1

    Service (registry key): Flpydisk
    Display name: Pilote de lecteur de disquettes
    Image path: System32\DRIVERS\flpydisk.sys
    Image size: 19712
    Image MD5: 21E41E89B9B191B685F99B7A8885310B
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): Fsks
    Image path: System32\DRIVERS\HSF_FSKS.sys
    Image size: 115807
    Image MD5: 6483414841D4CAB6C3B4DB2AC6EDD70B
    Start: 2
    Type: 1
    Error Control: 0

    Service (registry key): Fs_Rec
    Start: 1
    Type: 8
    Error Control: 0

    Service (registry key): Ftdisk
    Display name: Pilote du Gestionnaire de volume
    Image path: System32\DRIVERS\ftdisk.sys
    Image size: 126080
    Image MD5: A86859B77B908C18C2657F284AA29FE3
    Start: 0
    Type: 1
    Error Control: 1

    Service (registry key): fwdrv
    Display name: Firewall Driver
    Image path: \SystemRoot\system32\drivers\fwdrv.sys
    Start: 1
    Type: 1
    Error Control: 1

    Service (registry key): gameenum
    Display name: Énumérateur de port jeu
    Image path: System32\DRIVERS\gameenum.sys
    Image size: 9728
    Image MD5: 90D951A8876631E617ED64A9DDF0BAFC
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): Gpc
    Display name: Classificateur de paquets générique
    Description: Classificateur de paquets générique
    Image path: System32\DRIVERS\msgpc.sys
    Image size: 33792
    Image MD5: 13591E0A02E85DE2A388F3EC4BD206DF
    Start: 3
    Type: 1
    Error Control: 1

    Service (registry key): gusvc
    Display name: Google Updater Service
    Object name: LocalSystem
    Image path: "C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe"
    Image size: 138168
    Image MD5: 751C1D2CA2ABF4A9F5A6B8D7D45B907C
    Start: 3
    Type: 16
    Error Control: 0
    Depends On services: RPCSS

    Service (registry key): helpsvc
    Display name: Aide et support
    Description: Permet à l'application Aide et support de fonctionner sur cet ordinateur. Si ce service est arrêté, la fonctionnalité Aide et support ne sera pas disponible. S'il est désactivé, tous les services dépendant explicitement de ce service ne pourront pas démarrer.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 12800
    Image MD5: 333A4DB8410D8E24DB06D6AEBECDC7C2
    Start: 2
    Type: 32
    Error Control: 1
    Depends On services: RPCSS

    Service (registry key): HidServ
    Display name: Accès du périphérique d'interface utilisateur
    Description: Permet l'accès entrant générique aux périphériques d'interface utilisateur, qui activent et maintiennent l'utilisation des boutons actifs prédéfinis sur le clavier, les contrôles à distance, et d'autres périphériques multimédia. Si ce service est arrêté, les boutons actifs contrôlés par ce service ne fonctionneront pas. Si ce service est désactivé, tout service en dépendant explicitement ne démarrera pas.
    Object name: LocalSystem
    Image path: %SystemRoot%\System32\svchost.exe -k netsvcs
    Image size: 12800
    Image MD5: 333A4DB8410D8E24DB06D6AEBECDC7C2
    Start: 4
    Type: 32
    Error Control: 1
    Depends On services: RpcSs

    Service (registry key): hpn
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): hpt3xx
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): hsf_msft
    Image path: System32\DRIVERS\HSF_MSFT.sys
    Image size: 542879
    Image MD5: 74E379857D4C0DFB56DE2D19B8F4C434
    Start: 3
    Type: 1
    Error Control: 0

    Service (registry key): i2omgmt
    Start: 1
    Type: 1
    Error Control: 1

    Service (registry key): i2omp
    Start: 4
    Type: 1
    Error Control: 1

    Service (registry key): i8042prt
    Display name: Pilote pour clavier i8042 et souris sur port PS/2
    Image path: System32\DRIVERS\i8042prt.sys
    Image size: 52608
    Image MD5: 792E4B2D20A1967CF5B87990F9F7AD4E
    Start: 1
    Type: 1
    Error Control: 1

    Service (registry key): Imapi
    Start: 1
    Type: 1
    Error Control: 0

    Service (registry key): ImapiS
    0
  7. Regis59 Messages postés 21143 Date d'inscription   Statut Contributeur sécurité Dernière intervention   1 349
     
    Salut

    Rien de grave, ce sont des cookies qui s installent selon l'endroit ou tu surfes.
    Par exemple:
    Deux cookies 247realmedia et xiti, sont chargés ici sur CCM, si tu ne bloque pas les publicités du site et selon la gestion de tes cookies.

    A+
    0
    1. tanaud
       
      Rebonjour,

      Comment je peux faire pour avoir une meilleure gestion des cookies.

      Je viens de faire un scan avec a-squarred et j'en ai encore. je te poste le rapport

      Version - a-squared Free 2.1

      Réglages Scan:

      Objets: Mémoire, Traces, Cookies, C:\WINDOWS\, C:\Program Files
      Scan archives: Marche
      Heuristiques: Marche
      Scan ADS: Marche

      Début du scan: 01/03/2007 23:24:44

      C:\Documents and Settings\Carite\Application Data\Mozilla\Firefox\Profiles\6e1od7k6.default\cookies.txt:35 Détecter: Trace.TrackingCookie
      C:\Documents and Settings\Carite\Application Data\Mozilla\Firefox\Profiles\6e1od7k6.default\cookies.txt:63 Détecter: Trace.TrackingCookie
      C:\Documents and Settings\Carite\Application Data\Mozilla\Firefox\Profiles\6e1od7k6.default\cookies.txt:73 Détecter: Trace.TrackingCookie
      C:\Documents and Settings\Carite\Application Data\Mozilla\Firefox\Profiles\6e1od7k6.default\cookies.txt:74 Détecter: Trace.TrackingCookie
      C:\Documents and Settings\Carite\Application Data\Mozilla\Firefox\Profiles\6e1od7k6.default\cookies.txt:80 Détecter: Trace.TrackingCookie
      C:\Documents and Settings\Carite\Application Data\Mozilla\Firefox\Profiles\6e1od7k6.default\cookies.txt:92 Détecter: Trace.TrackingCookie
      C:\Documents and Settings\Carite\Application Data\Mozilla\Firefox\Profiles\6e1od7k6.default\cookies.txt:112 Détecter: Trace.TrackingCookie
      C:\Documents and Settings\Carite\Application Data\Mozilla\Firefox\Profiles\6e1od7k6.default\cookies.txt:118 Détecter: Trace.TrackingCookie
      C:\Documents and Settings\Carite\Application Data\Mozilla\Firefox\Profiles\6e1od7k6.default\cookies.txt:130 Détecter: Trace.TrackingCookie

      Scanné

      Fichiers: 15694
      Traces: 99932
      Cookies: 160
      Processus: 30

      Trouver

      Fichiers: 0
      Traces: 0
      Cookies: 9
      Processus: 0
      Clés de Registre: 0

      Fin du Scan: 01/03/2007 23:36:13
      Temps du Scan: 00:11:29



      merci de ta réponse
      tanaud
      0
  8. Regis59 Messages postés 21143 Date d'inscription   Statut Contributeur sécurité Dernière intervention   1 349
     
    Salut

    Utilise Ccleaner !

    https://www.malekal.com/tutoriel-ccleaner/

    Lance ensuite tes scans, ils ne devraient plus rien trouver.

    A+
    0