Virus infecté small-ERH trj

Résolu
line6 Messages postés 159 Statut Membre -  
Regis59 Messages postés 21143 Date d'inscription   Statut Contributeur sécurité Dernière intervention   -
Bonjour,

j'ai 7 fichiers infectés d'après le scan Avast, que j'ai mis en quarantaine,ensuite sur le rapport j'ai constaté qu' un fichier n'avait pas été mis en quarantaine, j'ai voulu rectifier le tir, sauf que je me suis trompée, s'est inscrit dépacé/renommé avec succès
mais le hic c'est queje ne sais pas où il est passé.

Alors j'ai fait une analyse avec spybot j'ai le résultat mais ne sais pas traduire, et il n'est pas possible de vous coller le résultat ici, pouvez-vous m'aider SVP, merci à vous.

signé : jonathan livingston
Configuration: Windows XP
Internet Explorer 7.0

15 réponses

  1. Regis59 Messages postés 21143 Date d'inscription   Statut Contributeur sécurité Dernière intervention   1 349
     
    Salut Jonathan,

    télécharge HijackThis ici:
    http://telechargement.zebulon.fr/138-hijackthis-1991.html

    Dézippe le dans un dossier prévu à cet effet.
    Par exemple C:\hijackthis < Enregistre le bien dans c : !
    Démo : (Merci a Balltrap34 pour cette réalisation)
    http://pageperso.aol.fr/balltrap34/Hijenr.gif

    Lance le puis:
    clique sur "do a system scan and save logfile" (cf démo)
    faire un copier coller du log entier sur le forum

    Démo : (Merci a Balltrap34 pour cette réalisation)
    http://pageperso.aol.fr/balltrap34/demohijack.htm

    Bon courage

    A+
    0
  2. line6 Messages postés 159 Statut Membre 31
     
    Un grand merci pour la panoplie !!!!!
    0
  3. Regis59 Messages postés 21143 Date d'inscription   Statut Contributeur sécurité Dernière intervention   1 349
     
    Salut

    Tu peux me mettre le rapport ?!

    a+
    0
    1. line6 Messages postés 159 Statut Membre 31
       
      Logfile of HijackThis v1.99.1
      Scan saved at 18:39:47, on 10/04/2007
      Platform: Windows XP SP2 (WinNT 5.01.2600)
      MSIE: Internet Explorer v7.00 (7.00.5450.0004)

      Running processes:
      C:\WINDOWS\System32\smss.exe
      C:\WINDOWS\system32\winlogon.exe
      C:\WINDOWS\system32\services.exe
      C:\WINDOWS\system32\lsass.exe
      C:\WINDOWS\system32\svchost.exe
      C:\WINDOWS\System32\svchost.exe
      C:\WINDOWS\system32\spoolsv.exe
      C:\Apps\ActivBoard\nhksrv.exe
      C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
      C:\WINDOWS\system32\Ati2evxx.exe
      C:\Program Files\Alwil Software\Avast4\ashServ.exe
      C:\WINDOWS\System32\FTRTSVC.exe
      C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
      C:\Program Files\Spyware Doctor\svcntaux.exe
      C:\Program Files\Spyware Doctor\swdsvc.exe
      C:\WINDOWS\system32\slserv.exe
      C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
      C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
      C:\WINDOWS\Explorer.EXE
      C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe
      C:\WINDOWS\SOINTGR.EXE
      C:\Program Files\Real\RealPlayer\RealPlay.exe
      C:\WINDOWS\system32\RunDLL32.exe
      C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIACE.EXE
      C:\PROGRA~1\MOUSEW~1\SYSTEM\EM_EXEC.EXE
      C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
      C:\WINDOWS\system32\atiptaxx.exe
      C:\Apps\ActivBoard\MMKeybd.exe
      C:\Program Files\Spyware Doctor\SDTrayApp.exe
      C:\WINDOWS\system32\ctfmon.exe
      C:\Apps\ActivBoard\TrayMon.exe
      C:\Program Files\Creative\Shared Files\CamTray.exe
      C:\PROGRA~1\Wanadoo\TaskBarIcon.exe
      C:\Program Files\Calendrier\Cld2000.exe
      C:\Apps\ActivBoard\OSD.exe
      C:\Program Files\FotoStation Easy\FotoStation Easy AutoLaunch.exe
      C:\Program Files\Nikon\NkView5\NkvMon.exe
      C:\Program Files\Google\Google Updater\GoogleUpdater.exe
      C:\WINDOWS\system32\ntvdm.exe
      C:\WINDOWS\System32\svchost.exe
      C:\Program Files\Adobe\Acrobat 4.0\Reader\AcroRd32.exe
      C:\Program Files\Internet Explorer\iexplore.exe
      C:\DOCUME~1\jocelyne\LOCALS~1\Temp\Répertoire temporaire 1 pour hijackthis[1].zip\HijackThis.exe

      R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/
      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
      R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=55245&clcid={SUB_CLCID}
      R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Orange
      R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
      R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL
      O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\apps\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
      O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
      O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
      O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
      O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll
      O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.3558\swg.dll
      O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
      O3 - Toolbar: Barre d'outils MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar\01.01.2607.0\fr\msntb.dll
      O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
      O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll
      O4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u
      O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe"
      O4 - HKLM\..\Run: [SO5 Integrator Pass Two] C:\WINDOWS\SOINTGR.EXE
      O4 - HKLM\..\Run: [RealTray] C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER
      O4 - HKLM\..\Run: [PD0620 STISvc] RunDLL32.exe P0620Pin.dll,RunDLL32EP 513
      O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
      O4 - HKLM\..\Run: [EPSON Stylus DX3800 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIACE.EXE /P26 "EPSON Stylus DX3800 Series" /O6 "USB002" /M "Stylus DX3800"
      O4 - HKLM\..\Run: [EM_EXEC] C:\PROGRA~1\MOUSEW~1\SYSTEM\EM_EXEC.EXE
      O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
      O4 - HKLM\..\Run: [AtiPTA] atiptaxx.exe
      O4 - HKLM\..\Run: [AdslTaskBar] rundll32.exe stmctrl.dll,TaskBar
      O4 - HKLM\..\Run: [ACTIVBOARD] C:\Apps\ActivBoard\MMKeybd.exe
      O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
      O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\GestMaj.exe TaskBarIcon.exe
      O4 - HKLM\..\Run: [SDTray] "C:\Program Files\Spyware Doctor\SDTrayApp.exe"
      O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
      O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\Shell.exe appLaunchClientZone.shl|PARAM= cnx
      O4 - HKCU\..\Run: [Creative WebCam Tray] "C:\Program Files\Creative\Shared Files\CamTray.exe"
      O4 - HKCU\..\Run: [Cld2000.exe] C:\Program Files\Calendrier\Cld2000.exe
      O4 - Startup: Event Reminder.lnk = C:\pmw\PMREMIND.EXE
      O4 - Global Startup: FotoStation Easy AutoLaunch.lnk = ?
      O4 - Global Startup: NkvMon.exe.lnk = C:\Program Files\Nikon\NkView5\NkvMon.exe
      O4 - Global Startup: Outil de mise à jour Google.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe
      O8 - Extra context menu item: &Search - http://bar.mywebsearch.com/menusearch.html?p=ZCxdm482YYFR
      O9 - Extra button: Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
      O9 - Extra 'Tools' menuitem: Windows Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
      O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
      O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
      O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
      O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
      O9 - Extra button: AOL Instant Messenger (SM) - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\PROGRA~1\AIM95\aim.exe (file missing)
      O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
      O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
      O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
      O9 - Extra button: Orange - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
      O11 - Options group: [INTERNATIONAL] International*
      O16 - DPF: Interface Chat Wanadoo - http://chat7.x-echo.com/version6/Applet/wchatsign.cab
      O16 - DPF: {0246ECA8-996F-11D1-BE2F-00A0C9037DFE} (TDServer Control) - http://fr.encyclopedia.yahoo.com/rsc/tdserver.cab
      O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Object) - http://a1540.g.akamai.net/7/1540/52/20061205/qtinstall.info.apple.com/qtactivex/qtplugin.cab
      O16 - DPF: {0A46CB52-CFA0-4E78-A181-948D5E361BE3} (EpsonObj Class) - https://www.epson.eu/support/
      O16 - DPF: {17D8B270-9C15-11D3-8F03-00105A9965CA} - http://www.easyclick.com/ie/pc/ec.cab
      O16 - DPF: {1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB} - http://ak.imgfarm.com/images/nocache/funwebproducts/ei-2/CursorManiaFWBInitialSetup1.0.0.8-2.cab
      O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://lavacakirie.spaces.live.com//PhotoUpload/MsnPUpld.cab
      O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
      O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan8/oscan8.cab
      O16 - DPF: {80DD2229-B8E4-4C77-B72F-F22972D723EA} - http://www.bitdefender.com/scan/Msie/bitdefender.cab
      O16 - DPF: {8F48147B-78D9-40F9-ACC0-BDDE59B246F4} (AccountHelper Class) - http://register.tiscali.fr/configurateur/AccountHelper.cab
      O16 - DPF: {A3009861-330C-4E10-822B-39D16EC8829D} (CRAVOnline Object) - http://www.ravantivirus.com/scan/ravonline.cab
      O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
      O16 - DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} (Zylom Games Player) - http://game07.zylom.com/activex/zylomgamesplayer.cab
      O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
      O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
      O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
      O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
      O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
      O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
      O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe
      O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
      O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
      O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
      O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
      O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe
      O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
      O23 - Service: Netropa NHK Server (nhksrv) - Unknown owner - C:\Apps\ActivBoard\nhksrv.exe
      O23 - Service: Spyware Doctor Auxiliary Service (sdAuxService) - PC Tools - C:\Program Files\Spyware Doctor\svcntaux.exe
      O23 - Service: Spyware Doctor Service (sdCoreService) - PC Tools - C:\Program Files\Spyware Doctor\swdsvc.exe
      O23 - Service: SmartLinkService (SLService) - Smart Link - C:\WINDOWS\SYSTEM32\slserv.exe
      0
    2. line6 Messages postés 159 Statut Membre 31
       
      merci à toi, pendant que nous y sommes, habituellement lorsque je trouve des problèmes avec spybot, je désinfecte le tout sans distinction , est-ce que je fais bien.


      --- Search result list ---
      Sysweb Telecom: Module usage (Clé du registre, nothing done)
      HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ModuleUsage\C:/WINDOWS/Downloaded Program Files/SysWebTelecomInt.dll

      TangoDialer: Dossier Programme (Répertoire, nothing done)
      c:\program files\grandvirtual\

      Divago.Surfairy: Réglages utilisateur (Valeur du registre, nothing done)
      HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Extensions\CmdMapping\{2223664C-1942-4276-9A2D-E8D8F547C5D2}

      Divago.Surfairy: Réglages utilisateur (Valeur du registre, nothing done)
      HKEY_USERS\S-1-5-18\Software\Microsoft\Internet Explorer\Extensions\CmdMapping\{2223664C-1942-4276-9A2D-E8D8F547C5D2}

      SpywareStormer: Donnée (Fichier, nothing done)
      C:\WINDOWS\Downloaded Program Files\Install.inf

      MyWay.MyWebSearch: Réglages (Clé du registre, nothing done)
      HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{07B18EA1-A523-4961-B6BB-170DE4475CCA}

      MyWay.MyWebSearch: Réglages (Clé du registre, nothing done)
      HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{07B18EA1-A523-4961-B6BB-170DE4475CCA}

      MyWay.MyWebSearch: Browser helper object (Clé du registre, nothing done)
      HKEY_USERS\.DEFAULT\Software\MyWebSearch

      MyWay.MyWebSearch: Browser helper object (Clé du registre, nothing done)
      HKEY_USERS\S-1-5-21-1343024091-884357618-839522115-1004\Software\MyWebSearch

      MyWay.MyWebSearch: Browser helper object (Clé du registre, nothing done)
      HKEY_USERS\S-1-5-18\Software\MyWebSearch

      MyWay.MyWebSearch: Class ID (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\CLSID\{1E0DE227-5CE4-4ea3-AB0C-8B03E1AA76BC}

      MyWay.MyWebSearch: Class ID (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\CLSID\{938AA51A-996C-4884-98CE-80DD16A5C9DA}

      MyWay.MyWebSearch: Class ID (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\CLSID\{9FF05104-B030-46FC-94B8-81276E4E27DF}

      MyWay.MyWebSearch: Root class (Clé du registre, nothing done)
      HKEY_LOCAL_MACHINE\Software\Classes\ScreenSaverControl.ScreenSaverInstaller

      MyWay.MyWebSearch: Root class (Clé du registre, nothing done)
      HKEY_LOCAL_MACHINE\Software\Classes\ScreenSaverControl.ScreenSaverInstaller.1

      MyWay.MyWebSearch: Class ID (Clé du registre, nothing done)
      HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{9FF05104-B030-46FC-94B8-81276E4E27DF}

      MyWay.MyWebSearch: Type library (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\TypeLib\{29D67D3C-509A-4544-903F-C8C1B8236554}

      MyWay.MyWebSearch: Type library (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\TypeLib\{7473D290-B7BB-4F24-AE82-7E2CE94BB6A9}

      MyWay.MyWebSearch: Type library (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\TypeLib\{8E6F1830-9607-4440-8530-13BE7C4B1D14}

      MyWay.MyWebSearch: Type library (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\TypeLib\{E47CAEE0-DEEA-464A-9326-3F2801535A4D}

      MyWay.MyWebSearch: Type library (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\TypeLib\{F42228FB-E84E-479E-B922-FBBD096E792C}

      MyWay.MyWebSearch: Browser helper object (Clé du registre, nothing done)
      HKEY_LOCAL_MACHINE\Software\FocusInteractive

      MyWay.MyWebSearch: Réglages (Clé du registre, nothing done)
      HKEY_LOCAL_MACHINE\Software\Microsoft\Code Store Database\Distribution Units\{1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB}

      MyWay.MyWebSearch: Réglages (Clé du registre, nothing done)
      HKEY_LOCAL_MACHINE\Software\Microsoft\Office\Outlook\Addins\MyWebSearch.OutlookAddin

      MyWay.MyWebSearch: Réglages (Clé du registre, nothing done)
      HKEY_LOCAL_MACHINE\Software\Microsoft\Office\Word\Addins\MyWebSearch.OutlookAddin

      MyWay.MyWebSearch: Réglages (Clé du registre, nothing done)
      HKEY_LOCAL_MACHINE\Software\MyWebSearch

      MyWay.MyWebSearch: Dossier Programme (Répertoire, nothing done)
      C:\Program Files\MyWebSearch\

      MyWay.MyWebSearch: Installeur (Fichier, nothing done)
      C:\WINDOWS\Downloaded Program Files\f3initialsetup1.0.0.8-2.inf

      FunWebProducts: Class ID (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\CLSID\{3DC201FB-E9C9-499C-A11F-23C360D7C3F8}

      FunWebProducts: Class ID (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\CLSID\{98D9753D-D73B-42D5-8C85-4469CDA897AB}

      FunWebProducts: Dossier Programme (Répertoire, nothing done)
      C:\Program Files\FunWebProducts\ScreenSaver\

      FunWebProducts: Dossier Programme (Répertoire, nothing done)
      C:\Program Files\FunWebProducts\ScreenSaver\Images\

      FunWebProducts: Class ID (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\CLSID\{147A976F-EEE1-4377-8EA7-4716E4CDD239}

      FunWebProducts: Dossier Programme (Répertoire, nothing done)
      C:\Program Files\FunWebProducts\

      FunWebProducts: Réglages (Clé du registre, nothing done)
      HKEY_USERS\S-1-5-21-1343024091-884357618-839522115-1004\Software\Fun Web Products

      Microsoft.WindowsSecurityCenter.AntiVirusOverride: Réglages (Modification du registre, nothing done)
      HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusOverride!=dword:0

      FunWeb: Root class (Clé du registre, nothing done)
      HKEY_LOCAL_MACHINE\Software\Classes\FunWebProducts.HTMLMenu

      FunWeb: Root class (Clé du registre, nothing done)
      HKEY_LOCAL_MACHINE\Software\Classes\FunWebProducts.HTMLMenu.2

      FunWeb: Class ID (Clé du registre, nothing done)
      HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{3DC201FB-E9C9-499C-A11F-23C360D7C3F8}

      FunWeb: Root class (Clé du registre, nothing done)
      HKEY_LOCAL_MACHINE\Software\Classes\FunWebProducts.HTMLMenu.1

      FunWeb: Class ID (Clé du registre, nothing done)
      HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{98D9753D-D73B-42D5-8C85-4469CDA897AB}

      FunWeb: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{63D0ED2B-B45B-4458-8B3B-60C69BBBD83C}

      FunWeb: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{63D0ED2D-B45B-4458-8B3B-60C69BBBD83C}

      FunWeb: Réglages (Clé du registre, nothing done)
      HKEY_LOCAL_MACHINE\Software\Fun Web Products

      FunWeb: Réglages (Clé du registre, nothing done)
      HKEY_LOCAL_MACHINE\Software\FunWebProducts

      FunWeb: Réglages (Valeur du registre, nothing done)
      HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent\Post Platform\FunWebProducts

      MyWebSearch: Class ID (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\CLSID\{A4730EBE-43A6-443e-9776-36915D323AD3}

      MyWebSearch: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{07B18EAA-A523-4961-B6BB-170DE4475CCA}

      MyWebSearch: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{07B18EAC-A523-4961-B6BB-170DE4475CCA}

      MyWebSearch: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{1093995A-BA37-41D2-836E-091067C4AD17}

      MyWebSearch: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{120927BF-1700-43BC-810F-FAB92549B390}

      MyWebSearch: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{247A115F-06C2-4FB3-967D-2D62D3CF4F0A}

      MyWebSearch: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{2E3537FC-CF2F-4F56-AF54-5A6A3DD375CC}

      MyWebSearch: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{2E9937FC-CF2F-4F56-AF54-5A6A3DD375CC}

      MyWebSearch: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{3E1656ED-F60E-4597-B6AA-B6A58E171495}

      MyWebSearch: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{3E53E2CB-86DB-4A4A-8BD9-FFEB7A64DF82}

      MyWebSearch: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{6E74766C-4D93-4CC0-96D1-47B8E07FF9CA}

      MyWebSearch: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{741DE825-A6F0-4497-9AA6-8023CF9B0FFF}

      MyWebSearch: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{7473D291-B7BB-4F24-AE82-7E2CE94BB6A9}

      MyWebSearch: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{90449521-D834-4703-BB4E-D3AA44042FF8}

      MyWebSearch: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{991AAC62-B100-47CE-8B75-253965244F69}

      MyWebSearch: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{BBABDC90-F3D5-4801-863A-EE6AE529862D}

      MyWebSearch: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{D6FF3684-AD3B-48EB-BBB4-B9E6C5A355C1}

      MyWebSearch: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{DE38C398-B328-4F4C-A3AD-1B5E4ED93477}

      MyWebSearch: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{EB9E5C1C-B1F9-4C2B-BE8A-27D6446FDAF8}

      MyWebSearch: Type library (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\TypeLib\{07B18EA0-A523-4961-B6BB-170DE4475CCA}

      MyWebSearch: Type library (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\TypeLib\{8CA01F0E-987C-49C3-B852-2F1AC4A7094C}

      MyWebSearch: Réglages (Valeur du registre, nothing done)
      HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Media\WMSDK\sources\f3PopularScreensavers

      TagASaurus: Cookie traceur (Internet Explorer: jocelyne) (Cookie, nothing done)


      WebTrends live: Cookie traceur (Internet Explorer: jocelyne) (Cookie, nothing done)


      Advertising.com: Cookie traceur (Internet Explorer: jocelyne) (Cookie, nothing done)


      MediaPlex: Cookie traceur (Internet Explorer: jocelyne) (Cookie, nothing done)


      FastClick: Cookie traceur (Internet Explorer: jocelyne) (Cookie, nothing done)


      DoubleClick: Cookie traceur (Internet Explorer: jocelyne) (Cookie, nothing done)


      Zedo: Cookie traceur (Internet Explorer: jocelyne) (Cookie, nothing done)


      BlueStreak: Cookie traceur (Internet Explorer: jocelyne) (Cookie, nothing done)


      Avenue A, Inc.: Cookie traceur (Internet Explorer: jocelyne) (Cookie, nothing done)



      --- Spybot - Search & Destroy version: 1.4 (build: 20050523) ---

      2005-05-31 blindman.exe (1.0.0.1)
      2005-05-31 SpybotSD.exe (1.4.0.3)
      2005-05-31 TeaTimer.exe (1.4.0.2)
      2007-04-11 unins000.exe (51.41.0.0)
      2005-05-31 Update.exe (1.4.0.0)
      2007-01-15 advcheck.dll (1.2.1.0)
      2005-05-31 aports.dll (2.1.0.0)
      2005-05-31 borlndmm.dll (7.0.4.453)
      2005-05-31 delphimm.dll (7.0.4.453)
      2005-05-31 SDHelper.dll (1.4.0.0)
      2007-01-02 Tools.dll (2.0.1.0)
      2005-05-31 UnzDll.dll (1.73.1.1)
      2005-05-31 ZipDll.dll (1.73.2.0)
      2007-04-04 Includes\Cookies.sbi (*)
      2006-12-08 Includes\Dialer.sbi (*)
      2007-04-04 Includes\DialerC.sbi (*)
      2007-04-04 Includes\Hijackers.sbi (*)
      2007-04-04 Includes\HijackersC.sbi (*)
      2006-10-27 Includes\Keyloggers.sbi (*)
      2007-04-04 Includes\KeyloggersC.sbi (*)
      2007-03-21 Includes\Malware.sbi (*)
      2007-04-04 Includes\MalwareC.sbi (*)
      2007-03-21 Includes\PUPS.sbi (*)
      2007-04-04 Includes\PUPSC.sbi (*)
      2007-04-04 Includes\Revision.sbi (*)
      2006-12-08 Includes\Security.sbi (*)
      2007-04-04 Includes\SecurityC.sbi (*)
      2007-03-21 Includes\Spybots.sbi (*)
      2007-04-04 Includes\SpybotsC.sbi (*)
      2005-02-17 Includes\Tracks.uti
      2007-04-04 Includes\Trojans.sbi (*)
      2007-04-04 Includes\TrojansC.sbi (*)



      --- System information ---
      Windows XP (Build: 2600) Service Pack 2
      / DataAccess: Microsoft Data Access Components KB870669
      / DataAccess: Patch Available For XMLHTTP Vulnerability
      / DataAccess: Patch Available For XMLHTTP Vulnerability
      / DataAccess: Security Update for Microsoft Data Access Components
      / MSXML4: Patch Available For XMLHTTP Vulnerability
      / MSXML4SP2: FIX: ASP stops responding when calling Response.Redirect to another server using msxml4 sp2
      / Step By Step Interactive Training / SP2: Mise à jour de sécurité pour Step by Step Interactive Training (KB898458)
      / Step By Step Interactive Training / SP2: Mise à jour de sécurité pour Step by Step Interactive Training (KB923723)
      / Windows Media Player: Correctif pour le Lecteur Windows Media [Voir Q828026 pour plus d'informations]
      / Windows Media Player / SP0: Correctif pour le Lecteur Windows Media [Voir Q828026 pour plus d'informations]
      / Windows Media Player: Windows Media Update 320920
      / Windows Media Player 10: Mise à jour de sécurité pour Lecteur Windows Media 10 (KB911565)
      / Windows Media Player 10: Mise à jour de sécurité pour Lecteur Windows Media 10 (KB917734)
      / Windows Media Player 6.4: Mise à jour de sécurité pour Lecteur Windows Media 6.4 (KB925398)
      / Windows XP: Mise à jour de sécurité pour Windows XP (KB923689)
      / Windows XP / SP2: Windows XP Service Pack 2
      / Windows XP / SP3: Correctif Windows XP - KB834707
      / Windows XP / SP3: Correctif Windows XP - KB867282
      / Windows XP / SP3: Correctif Windows XP - KB873333
      / Windows XP / SP3: Correctif Windows XP - KB873339
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB883939)
      / Windows XP / SP3: Correctif Windows XP - KB885250
      / Windows XP / SP3: Correctif Windows XP - KB885835
      / Windows XP / SP3: Correctif Windows XP - KB885836
      / Windows XP / SP3: Correctif Windows XP - KB886185
      / Windows XP / SP3: Correctif Windows XP - KB887472
      / Windows XP / SP3: Correctif Windows XP - KB887742
      / Windows XP / SP3: Correctif Windows XP - KB888113
      / Windows XP / SP3: Correctif Windows XP - KB888302
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB890046)
      / Windows XP / SP3: Correctif Windows XP - KB890047
      / Windows XP / SP3: Correctif Windows XP - KB890175
      / Windows XP / SP3: Correctif Windows XP - KB890859
      / Windows XP / SP3: Correctif Windows XP - KB890923
      / Windows XP / SP3: Correctif Windows XP - KB891781
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB893066)
      / Windows XP / SP3: Correctif Windows XP - KB893086
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB893756)
      / Windows XP / SP3: Windows Installer 3.1 (KB893803)
      / Windows XP / SP3: Windows Installer 3.1 (KB893803)
      / Windows XP / SP3: Mise à jour pour Windows XP (KB894391)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB896358)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB896422)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB896423)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB896424)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB896428)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB896688)
      / Windows XP / SP3: Mise à jour pour Windows XP (KB896727)
      / Windows XP / SP3: Mise à jour pour Windows XP (KB898461)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB899587)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB899588)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB899591)
      / Windows XP / SP3: Mise à jour pour Windows XP (KB900485)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB900725)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB901017)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB901214)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB902400)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB903235)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB904706)
      / Windows XP / SP3: Mise à jour pour Windows XP (KB904942)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB905414)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB905749)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB905915)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB908519)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB908531)
      / Windows XP / SP3: Mise à jour pour Windows XP (KB910437)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB911280)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB911562)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB911567)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB911927)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB912812)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB912919)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB913446)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB913580)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB914388)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB914389)
      / Windows XP / SP3: Correctif pour Windows XP (KB914440)
      / Windows XP / SP3: Hotfix for Windows XP (KB915865)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB916281)
      / Windows XP / SP3: Mise à jour pour Windows XP (KB916595)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB917159)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB917344)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB917422)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB917953)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB918118)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB918439)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB919007)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB920213)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB920214)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB920670)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB920683)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB920685)
      / Windows XP / SP3: Mise à jour pour Windows XP (KB920872)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB921398)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB921883)
      / Windows XP / SP3: Mise à jour pour Windows XP (KB922582)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB922616)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB922819)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB923191)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB923414)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB923694)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB923980)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB924191)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB924270)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB924496)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB924667)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB925902)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB926255)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB926436)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB927779)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB927802)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB928255)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB928843)
      / Windows XP / SP3: Mise à jour pour Windows XP (KB929338)
      / Windows XP / SP3: Mise à jour pour Windows XP (KB931836)


      --- Startup entries list ---
      Located: HK_LM:Run, ACTIVBOARD
      command: C:\Apps\ActivBoard\MMKeybd.exe
      file: C:\Apps\ActivBoard\MMKeybd.exe
      size: 159744
      MD5: fdba764cf4b999ed1cc17ec33520d772

      Located: HK_LM:Run, AdslTaskBar
      command: rundll32.exe stmctrl.dll,TaskBar
      file: C:\WINDOWS\system32\rundll32.exe
      size: 33792
      MD5: cdd7140c0eaa754c527b983ccc9993cd

      Located: HK_LM:Run, AtiPTA
      command: atiptaxx.exe
      file: C:\WINDOWS\system32\atiptaxx.exe
      size: 245760
      MD5: b585d826d2d7dee412bd0eb77fcb7cdf

      Located: HK_LM:Run, avast!
      command: C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
      file: C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
      size: 108160
      MD5: 26a15d8d5c81a3b053e82b01a5d8208e

      Located: HK_LM:Run, EM_EXEC
      command: C:\PROGRA~1\MOUSEW~1\SYSTEM\EM_EXEC.EXE
      file: C:\PROGRA~1\MOUSEW~1\SYSTEM\EM_EXEC.EXE
      size: 35328
      MD5: 57e2fb5840c197d2014dfc9b4f820f19

      Located: HK_LM:Run, EPSON Stylus DX3800 Series
      command: C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIACE.EXE /P26 "EPSON Stylus DX3800 Series" /O6 "USB002" /M "Stylus DX3800"
      file: C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIACE.EXE
      size: 98304
      MD5: b9297016cbc59d2d5631cc982479cc96

      Located: HK_LM:Run, KernelFaultCheck
      command: %systemroot%\system32\dumprep 0 -k
      file: C:\WINDOWS\system32\dumprep.exe
      size: 10752
      MD5: ba510a646b02cb44137b8296db2783d3

      Located: HK_LM:Run, PD0620 STISvc
      command: RunDLL32.exe P0620Pin.dll,RunDLL32EP 513
      file: C:\WINDOWS\system32\RunDLL32.exe
      size: 33792
      MD5: cdd7140c0eaa754c527b983ccc9993cd

      Located: HK_LM:Run, RealTray
      command: C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER
      file:

      Located: HK_LM:Run, SO5 Integrator Pass Two
      command: C:\WINDOWS\SOINTGR.EXE
      file: C:\WINDOWS\SOINTGR.EXE
      size: 20480
      MD5: 054bda83fbe97634b875903c2cb3ec3f

      Located: HK_LM:Run, SunJavaUpdateSched
      command: "C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe"
      file: C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe
      size: 75520
      MD5: edf5d27c6d244740418903626df5741a

      Located: HK_LM:Run, UserFaultCheck
      command: %systemroot%\system32\dumprep 0 -u
      file: C:\WINDOWS\system32\dumprep.exe
      size: 10752
      MD5: ba510a646b02cb44137b8296db2783d3

      Located: HK_LM:Run, WOOTASKBARICON
      command: C:\PROGRA~1\Wanadoo\GestMaj.exe TaskBarIcon.exe
      file: C:\PROGRA~1\Wanadoo\GestMaj.exe
      size: 32768
      MD5: 8d6f2c724cfc608872ede3cc4a7b49b9

      Located: HK_LM:Run, WOOWATCH
      command: C:\PROGRA~1\Wanadoo\Watch.exe
      file: C:\PROGRA~1\Wanadoo\Watch.exe
      size: 20480
      MD5: 9a29592cd135f6262c429152f7a8dd4a

      Located: HK_CU:Run, Cld2000.exe
      command: C:\Program Files\Calendrier\Cld2000.exe
      file: C:\Program Files\Calendrier\Cld2000.exe
      size: 3022336
      MD5: 49828a616ee805e2a32129e2a00edb89

      Located: HK_CU:Run, Creative WebCam Tray
      command: "C:\Program Files\Creative\Shared Files\CamTray.exe"
      file: C:\Program Files\Creative\Shared Files\CamTray.exe
      size: 299008
      MD5: 2aa7ee2774035050512f438c2df052a2

      Located: HK_CU:Run, ctfmon.exe
      command: C:\WINDOWS\system32\ctfmon.exe
      file: C:\WINDOWS\system32\ctfmon.exe
      size: 15360
      MD5: 64e41e8fee655b03e3f19ded21ba5118

      Located: HK_CU:Run, WOOKIT
      command: C:\PROGRA~1\Wanadoo\Shell.exe appLaunchClientZone.shl|PARAM= cnx
      file: C:\PROGRA~1\Wanadoo\Shell.exe
      size: 122880
      MD5: 2bd5e1e68614dbc6b320597856ed6ea7

      Located: Démarrage (tous utilisateurs), FotoStation Easy AutoLaunch.lnk
      command: C:\Program Files\FotoStation Easy\FotoStation Easy AutoLaunch.exe
      file: C:\Program Files\FotoStation Easy\FotoStation Easy AutoLaunch.exe
      size: 49152
      MD5: 3a5ff0123a2c033284d70d9ff828648e

      Located: Démarrage (tous utilisateurs), NkvMon.exe.lnk
      command: C:\Program Files\Nikon\NkView5\NkvMon.exe
      file: C:\Program Files\Nikon\NkView5\NkvMon.exe
      size: 233472
      MD5: 44a76cab8c48f2d76def33ad20517115

      Located: Démarrage (utilisateur), Event Reminder.lnk
      command: C:\pmw\PMREMIND.EXE
      file: C:\pmw\PMREMIND.EXE
      size: 254128
      MD5: 074056104244cc11d7000f77872e606e

      Located: System.ini, crypt32chain
      command: crypt32.dll
      file: crypt32.dll

      Located: System.ini, cryptnet
      command: cryptnet.dll
      file: cryptnet.dll

      Located: System.ini, cscdll
      command: cscdll.dll
      file: cscdll.dll

      Located: System.ini, ScCertProp
      command: wlnotify.dll
      file: wlnotify.dll

      Located: System.ini, Schedule
      command: wlnotify.dll
      file: wlnotify.dll

      Located: System.ini, sclgntfy
      command: sclgntfy.dll
      file: sclgntfy.dll

      Located: System.ini, SensLogn
      command: WlNotify.dll
      file: WlNotify.dll

      Located: System.ini, termsrv
      command: wlnotify.dll
      file: wlnotify.dll

      Located: System.ini, WgaLogon
      command: WgaLogon.dll
      file: WgaLogon.dll

      Located: System.ini, wlballoon
      command: wlnotify.dll
      file: wlnotify.dll



      --- Browser helper object list ---
      {9030D464-4C02-4ABF-8ECC-5164760863C6} (Windows Live Sign-in Helper)
      BHO name:
      CLSID name: Windows Live Sign-in Helper
      Path: C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\
      Long name: WindowsLiveLogin.dll
      Short name: WINDOW~1.DLL
      Date (created): 07/07/2006 12:29:52
      Date (last access): 11/04/2007 11:36:52
      Date (last write): 07/07/2006 12:29:52
      Filesize: 324416
      Attributes: archive
      MD5: 52A70C80A446FA3BBCDAF59A9AB26AF4
      CRC32: B1456034
      Version: 4.0.249.1

      {AA58ED58-01DD-4d91-8333-CF10577473F7} (Google Toolbar Helper)
      BHO name:
      CLSID name: Google Toolbar Helper
      description: Google toolbar
      classification: Open for discussion
      known filename: googletoolbar.dll<br>googletoolbar*.dll<br>(* = number)<br>googletoolbar_en_*.**-big.dll<br>Googletoolbar_en_*.*.**-deleon.dll
      info link: http://www.google.com/intl/fr/toolbar/ie/index.html
      info source: TonyKlein
      Path: c:\program files\google\
      Long name: GoogleToolbar3.dll
      Short name: GOOGLE~3.DLL
      Date (created): 27/10/2006 15:25:38
      Date (last access): 11/04/2007 11:36:52
      Date (last write): 17/10/2006 15:04:36
      Filesize: 2153536
      Attributes: readonly archive
      MD5: D7C951510ABB954204A798A21A510D98
      CRC32: 5D8D9479
      Version: 4.0.1020.3054

      {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} (Google Toolbar Notifier BHO)
      BHO name:
      CLSID name: Google Toolbar Notifier BHO
      Path: C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.3558\
      Long name: swg.dll
      Short name:
      Date (created): 09/04/2007 16:04:20
      Date (last access): 11/04/2007 11:36:52
      Date (last write): 09/04/2007 16:04:20
      Filesize: 324536
      Attributes: archive
      MD5: 88C2EAC1F1AE4F6051C1DED1422A08BA
      CRC32: 0F432F90
      Version: 2.0.301.3558

      {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} (EpsonToolBandKicker Class)
      BHO name:
      CLSID name: EpsonToolBandKicker Class
      Path: C:\Program Files\EPSON\EPSON Web-To-Page\
      Long name: EPSON Web-To-Page.dll
      Short name: EPSONW~1.DLL
      Date (created): 29/03/2006 16:27:24
      Date (last access): 11/04/2007 11:36:52
      Date (last write): 21/02/2005 21:50:34
      Filesize: 368640
      Attributes: archive
      MD5: 01319CF4030B3740BA8261E7024ACAD1
      CRC32: D484DB79
      Version: 1.1.0.0



      --- ActiveX list ---
      Interface Chat Wanadoo (Interface Chat Wanadoo)
      DPF name: Interface Chat Wanadoo
      CLSID name:
      Installer:
      Codebase: http://chat7.x-echo.com/version6/Applet/wchatsign.cab
      description:
      classification: Open for discussion
      known filename:
      info link:
      info source: Safer Networking Ltd.

      {17D8B270-9C15-11D3-8F03-00105A9965CA} ()
      DPF name:
      CLSID name:
      Installer: C:\WINDOWS\Downloaded Program Files\ec.inf
      Codebase: http://www.easyclick.com/ie/pc/ec.cab

      {1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB} ()
      DPF name:
      CLSID name:
      Installer: C:\WINDOWS\Downloaded Program Files\f3initialsetup1.0.0.8-2.inf
      Codebase: http://ak.imgfarm.com/images/nocache/funwebproducts/ei-2/CursorManiaFWBInitialSetup1.0.0.8-2.cab
      description: FunWebProducts
      classification: Confirmed as malware
      known filename:
      info link:
      info source: Patrick M. Kolla

      {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class)
      DPF name:
      CLSID name: UnoCtrl Class
      Installer: C:\WINDOWS\Downloaded Program Files\GAME_UNO1.INF
      Codebase: http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
      Path: C:\WINDOWS\Downloaded Program Files\
      Long name: GAME_UNO1.dll
      Short name: GAME_U~1.DLL
      Date (created): 22/11/2006 23:22:42
      Date (last access): 11/04/2007 11:46:54
      Date (last write): 22/11/2006 23:22:42
      Filesize: 372736
      Attributes: archive
      MD5: 491C8F47C0DCFBC1B1329B9B368AA78F
      CRC32: 5BFD37C9
      Version: 1.0.1123.1

      {8F48147B-78D9-40F9-ACC0-BDDE59B246F4} (AccountHelper Class)
      DPF name:
      CLSID name: AccountHelper Class
      Installer: C:\WINDOWS\Downloaded Program Files\Account.inf
      Codebase: http://register.tiscali.fr/configurateur/AccountHelper.cab
      description:
      classification: Open for discussion
      known filename: Account.dll
      info link:
      info source: Safer Networking Ltd.
      Path: C:\WINDOWS\Downloaded Program Files\
      Long name: Account.dll
      Short name:
      Date (created): 09/09/2003 16:47:56
      Date (last access): 11/04/2007 10:10:34
      Date (last write): 09/09/2003 16:47:56
      Filesize: 43520
      Attributes: archive
      MD5: 2B8373ABF0346DFD570C6B9BA6CF48F1
      CRC32: F6D35674
      Version: 1.0.0.75

      {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class)
      DPF name:
      CLSID name: MessengerStatsClient Class
      Installer:
      Codebase: http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
      Path: C:\WINDOWS\Downloaded Program Files\
      Long name: MessengerStatsPAClient.dll
      Short name: MESSEN~1.DLL
      Date (created): 22/02/2007 23:41:12
      Date (last access): 11/04/2007 11:46:54
      Date (last write): 22/02/2007 23:41:12
      Filesize: 304544
      Attributes: archive
      MD5: 8945CCA5FC4F25168E8B6F401EFAF51F
      CRC32: 0F12FD23
      Version: 9.5.6907.1

      {CAFEEFAC-0015-0000-0010-ABCDEFFEDCBA} (Java Runtime Environment 1.5.0)
      DPF name: Java Runtime Environment 1.5.0
      CLSID name: Java Plug-in 1.5.0_10
      Installer:
      Codebase: http://java.sun.com/update/1.5.0/jinstall-1_5_0_10-windows-i586.cab
      Path: C:\Program Files\Java\jre1.5.0_10\bin\
      Long name: NPJPI150_10.dll
      Short name: NPJPI1~1.DLL
      Date (created): 09/11/2006 16:07:34
      Date (last access): 19/02/2007 12:28:18
      Date (last write): 09/11/2006 16:21:54
      Filesize: 75528
      Attributes: archive
      MD5: 635F4B3A0F1C661B5CEDE628BA85E46B
      CRC32: 0C9B7145
      Version: 5.0.100.3

      {CAFEEFAC-0015-0000-0011-ABCDEFFEDCBA} (Java Runtime Environment 1.5.0)
      DPF name: Java Runtime Environment 1.5.0
      CLSID name: Java Plug-in 1.5.0_11
      Installer:
      Codebase: http://java.sun.com/update/1.5.0/jinstall-1_5_0_11-windows-i586.cab
      Path: C:\Program Files\Java\jre1.5.0_11\bin\
      Long name: NPJPI150_11.dll
      Short name: NPJPI1~1.DLL
      Date (created): 15/12/2006 04:09:16
      Date (last access): 11/04/2007 10:03:48
      Date (last write): 15/12/2006 04:23:26
      Filesize: 75528
      Attributes: archive
      MD5: 3B3F6984DBF972DAFF1B7E9C44E2FE75
      CRC32: 4BDE2041
      Version: 5.0.110.3



      --- Process list ---
      PID: 0 ( 0) [System]
      PID: 532 ( 4) \SystemRoot\System32\smss.exe
      PID: 580 ( 532) \??\C:\WINDOWS\system32\csrss.exe
      PID: 604 ( 532) \??\C:\WINDOWS\system32\winlogon.exe
      PID: 648 ( 604) C:\WINDOWS\system32\services.exe
      size: 108544
      MD5: 63DCDE1A0D86EEB8924D6738FF616EAD
      PID: 660 ( 604) C:\WINDOWS\system32\lsass.exe
      size: 13312
      MD5: 259AF82A0932EEA4F316F92DB94707B6
      PID: 812 ( 648) C:\WINDOWS\system32\svchost.exe
      size: 14336
      MD5: 2979B03D5382A602623C0535B16AB9C0
      PID: 868 ( 648) C:\WINDOWS\system32\svchost.exe
      size: 14336
      MD5: 2979B03D5382A602623C0535B16AB9C0
      PID: 960 ( 648) C:\WINDOWS\System32\svchost.exe
      size: 14336
      MD5: 2979B03D5382A602623C0535B16AB9C0
      PID: 1012 ( 648) C:\WINDOWS\System32\svchost.exe
      size: 14336
      MD5: 2979B03D5382A602623C0535B16AB9C0
      PID: 1072 ( 648) C:\WINDOWS\System32\svchost.exe
      size: 14336
      MD5: 2979B03D5382A602623C0535B16AB9C0
      PID: 1336 ( 648) C:\WINDOWS\system32\spoolsv.exe
      size: 57856
      MD5: DA81EC57ACD4CDC3D4C51CF3D409AF9F
      PID: 1460 ( 648) C:\Apps\ActivBoard\nhksrv.exe
      size: 28672
      MD5: D368A8A0FB5DB8B86BBC9B97EFBDB64E
      PID: 1504 ( 648) C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
      size: 59008
      MD5: DC995DA2D258C0590C3AE07EC68BFEE6
      PID: 1516 ( 648) C:\WINDOWS\system32\Ati2evxx.exe
      size: 254037
      MD5: 354BC2C46E542A57099B9E9798A89260
      PID: 1552 ( 648) C:\Program Files\Alwil Software\Avast4\ashServ.exe
      size: 132736
      MD5: 8E33DA0415023EA7A9378AFA04D9BF4D
      PID: 1592 ( 648) C:\WINDOWS\System32\FTRTSVC.exe
      size: 40960
      MD5: D1261099E03EEE90976EA19002995B89
      PID: 1644 ( 648) C:\WINDOWS\system32\slserv.exe
      size: 73796
      MD5: B3828CAEFF06A3FED6280B67AB8C4E9A
      PID: 1712 ( 648) C:\WINDOWS\system32\wdfmgr.exe
      size: 38912
      MD5: C81B8635DEE0D3EF5F64B3DD643023A5
      PID: 472 ( 648) C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
      size: 255616
      MD5: AA6691D73782FA5D94E0CED6D27C3DE8
      PID: 520 ( 648) C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
      size: 370304
      MD5: D6B2638DDBFB34AC78B153CDD0792C37
      PID: 1088 ( 648) C:\WINDOWS\System32\alg.exe
      size: 44544
      MD5: B43CC0F07752D456038CD0268E4D84E9
      PID: 1284 (1288) C:\WINDOWS\Explorer.EXE
      size: 1036288
      MD5: 2A7BD330924252A2FD80344FC949BB72
      PID: 2180 ( 960) C:\WINDOWS\system32\wuauclt.exe
      size: 125720
      MD5: 6CC08152ED8681BC176BE1B0F3C0E908
      PID: 2232 (1284) C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe
      size: 75520
      MD5: EDF5D27C6D244740418903626DF5741A
      PID: 2280 (1284) C:\WINDOWS\SOINTGR.EXE
      size: 20480
      MD5: 054BDA83FBE97634B875903C2CB3EC3F
      PID: 2352 (1284) C:\Program Files\Real\RealPlayer\RealPlay.exe
      size: 26112
      MD5: EA9D3466AC7A7F62D386937DF9CB8C41
      PID: 2384 (1284) C:\WINDOWS\system32\RunDLL32.exe
      size: 33792
      MD5: CDD7140C0EAA754C527B983CCC9993CD
      PID: 2440 (1284) C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIACE.EXE
      size: 98304
      MD5: B9297016CBC59D2D5631CC982479CC96
      PID: 2448 (1284) C:\PROGRA~1\MOUSEW~1\SYSTEM\EM_EXEC.EXE
      size: 35328
      MD5: 57E2FB5840C197D2014DFC9B4F820F19
      PID: 2456 (1284) C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
      size: 108160
      MD5: 26A15D8D5C81A3B053E82B01A5D8208E
      PID: 2464 (1284) C:\WINDOWS\system32\atiptaxx.exe
      size: 245760
      MD5: B585D826D2D7DEE412BD0EB77FCB7CDF
      PID: 2488 (1284) C:\Apps\ActivBoard\MMKeybd.exe
      size: 159744
      MD5: FDBA764CF4B999ED1CC17EC33520D772
      PID: 2548 (1284) C:\WINDOWS\system32\ctfmon.exe
      size: 15360
      MD5: 64E41E8FEE655B03E3F19DED21BA5118
      PID: 2592 (1284) C:\Program Files\Creative\Shared Files\CamTray.exe
      size: 299008
      MD5: 2AA7EE2774035050512F438C2DF052A2
      PID: 2604 (2488) C:\Apps\ActivBoard\TrayMon.exe
      size: 110592
      MD5: 2F2E192234E49E3DE31F22F6D61E4B81
      PID: 2612 (2536) C:\PROGRA~1\Wanadoo\TaskBarIcon.exe
      size: 61440
      MD5: F9710A77123CC3FD09D062F2AF33E473
      PID: 2652 (1284) C:\Program Files\Calendrier\Cld2000.exe
      size: 3022336
      MD5: 49828A616EE805E2A32129E2A00EDB89
      PID: 2660 (2488) C:\Apps\ActivBoard\OSD.exe
      size: 90112
      MD5: 9F7128F4B6CB982DFAE6AF879CB924FA
      PID: 2672 (2644) C:\PROGRA~1\Wanadoo\GestionnaireInternet.exe
      size: 819200
      MD5: 5D17C66B5620142A06B7391BE20C0476
      PID: 2688 (1284) C:\Program Files\FotoStation Easy\FotoStation Easy AutoLaunch.exe
      size: 49152
      MD5: 3A5FF0123A2C033284D70D9FF828648E
      PID: 2700 (1284) C:\Program Files\Nikon\NkView5\NkvMon.exe
      size: 233472
      MD5: 44A76CAB8C48F2D76DEF33AD20517115
      PID: 2744 (1284) C:\WINDOWS\system32\ntvdm.exe
      size: 420864
      MD5: 5827B14B4E84DA4144D8215883E05177
      PID: 2752 (2672) C:\PROGRA~1\Wanadoo\ComComp.exe
      size: 249856
      MD5: 5D589D0436C4C2D285B3418E79E78A21
      PID: 2780 (2672) C:\PROGRA~1\Wanadoo\Toaster.exe
      size: 69632
      MD5: C2D1BD2B433571ECEC29924ACE5D7C62
      PID: 2792 (2672) C:\PROGRA~1\Wanadoo\Inactivity.exe
      size: 32768
      MD5: 5F6DBF75D05462EED92B42376E89D9FE
      PID: 2808 (2672) C:\PROGRA~1\Wanadoo\PollingModule.exe
      size: 69632
      MD5: EDF02F58940FD56C12357D150F5397C0
      PID: 2856 ( 812) C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE
      size: 45056
      MD5: 68E404DB5525373FE0554ED2607F0C82
      PID: 3092 (2752) C:\PROGRA~1\Wanadoo\Watch.exe
      size: 20480
      MD5: 9A29592CD135F6262C429152F7A8DD4A
      PID: 3936 (3716) C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe
      size: 4393096
      MD5: 09CA174A605B480318731E691DC98539
      PID: 4 ( 0) System


      --- Browser start & search pages list ---
      Spybot - Search & Destroy browser pages report, 11/04/2007 12:02:07

      HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Local Page
      C:\WINDOWS\system32\blank.htm
      HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Search Page
      https://www.google.com/?gws_rd=ssl
      HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Search Bar
      http://www.google.com/toolbar/ie8/sidebar.html
      HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Start Page
      https://www.orange.fr/portail
      HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search\SearchAssistant
      http://www.bing.com/spresults.aspx
      HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl\@
      http://home.microsoft.com/access/autosearch.asp?p=%s
      HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Local Page
      %SystemRoot%\system32\blank.htm
      HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Search Page
      https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
      HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Start Page
      http://go.microsoft.com/fwlink/?LinkId=55245&clcid={SUB_CLCID}
      HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Page_URL
      https://www.msn.com/fr-fr/
      HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Search_URL
      https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
      HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\SearchAssistant
      http://www.google.com/toolbar/ie8/sidebar.html
      HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\CustomizeSearch
      https://www.bing.com/?toHttps=1&redig=8F3F334EA60E4B1CB4D040DCFE393A89{SUB_RFC1766}/srchasst/srchcust.htm


      --- Winsock Layered Service Provider list ---


      --- Uninstall list ---
      Ad-Aware SE Personal (Ad-Aware SE Personal)
      uninstall cmd: C:\PROGRA~1\Lavasoft\AD-AWA~2\UNWISE.EXE C:\PROGRA~1\Lavasoft\AD-AWA~2\INSTALL.LOG
      publisher: Lavasoft
      help link: http://www.lavasoft.de

      (AddressBook)

      Adobe Acrobat 4.0 4.0 (Adobe Acrobat 4.0)
      version (major): 4
      install location: C:\Program Files\Adobe\Acrobat 4.0
      install source: C:\Documents and Settings\jocelyne\Local Settings\Temp\pftC~tmp\
      uninstall cmd: C:\WINDOWS\ISUN040C.EXE -f"C:\Program Files\Fichiers communs\Adobe\Acrobat 4.0\NT\Uninst.isu" -c"C:\Program Files\Fichiers communs\Adobe\Acrobat 4.0\NT\Uninst.dll"
      publisher: Adobe Systems, Inc.
      help link: https://acrobat.adobe.com/us/en/acrobat.html

      5.0 (Adobe Acrobat 5.0)
      version (major): 5
      install location: C:\apps\Adobe\Acrobat 5.0
      install source: C:\Documents and Settings\jocelyne\Local Settings\Temp\pftE~tmp\
      uninstall cmd: C:\WINDOWS\ISUN040C.EXE -f"C:\Program Files\Fichiers communs\Adobe\Acrobat 5.0\NT\Uninst.isu" -c"C:\Program Files\Fichiers communs\Adobe\Acrobat 5.0\NT\Uninst.dll"
      publisher: Adobe Systems, Inc.
      help link: https://acrobat.adobe.com/us/en/acrobat.html

      ATI Display Driver (ATI Display Driver)
      uninstall cmd: rundll32 C:\WINDOWS\system32\atiiiexx.dll,_InfEngUnInstallINFFile_RunDLL@16 -force_restart -flags:0x2010001 -inf_class:DISPLAY -clean

      avast! Antivirus 4.7 (avast!)
      version (major): 4
      version (minor): 7
      install location: C:\PROGRA~1\ALWILS~1\Avast4
      install source: C:\PROGRA~1\ALWILS~1\Avast4\setup
      uninstall cmd: rundll32 C:\PROGRA~1\ALWILS~1\Avast4\Setup\setiface.dll,RunSetup
      publisher: Alwil Software
      help link: https://www.avast.com/fr-fr/index

      (BackWeb-4448364 Uninstaller)
      uninstall cmd: C:\WINDOWS\BWUnin-6.1.0.145L.exe -AppId 4448364

      Birds on a Wire Deluxe 1.0.0 (Birds on a Wire Deluxe)
      install location: C:\Program Files\Zylom Games\
      uninstall cmd: "C:\Program Files\Zylom Games\Birds on a Wire Deluxe\GameInstlr.exe" --uninstall UnInstall.log
      publisher: Zylom Games

      (Branding)

      Calendrier Xtra v8.02 (Calendrier 2000_is1)
      install location: C:\Program Files\Calendrier\
      uninstall cmd: "C:\Program Files\Calendrier\unins000.exe"
      publisher: XTRALOG
      help link: mailto:support@xtralog.com

      CCleaner (remove only) (CCleaner)
      uninstall cmd: "C:\Program Files\CCleaner\uninst.exe"

      CCM 2.0.5 (CommentCaMarche 2.0.5_is1)
      install location: C:\Program Files\CommentCaMarche\
      uninstall cmd: "C:\Program Files\CommentCaMarche\unins000.exe"
      publisher: PILLOU Jean-François
      help link: https://www.commentcamarche.net/

      (Conexant PCI Audio)
      uninstall cmd: CIAunwdm.exe

      (Connection Manager)

      Creative WebCam Instant Driver (1.03.02.0425) (Creative PD0620)
      uninstall cmd: C:\WINDOWS\CtDrvIns.exe -uninstall -script PD0620.uns -unsext NT -plugin P0620Pin.dll -pluginres CtCamPin.crl

      Creative Photo Manager (Creative Photo Manager)
      uninstall cmd: RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{513D9FB1-27A2-44E4-8F2D-77A6737921A5}\setup.exe" -l0x40c /remove

      Creative WebCam Center (Creative WebCam Center)
      uninstall cmd: RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{E5ABA5FD-EE3D-4F15-895D-B32321E6C96B}\setup.exe" -l0x40c /remove

      (DirectAnimation)

      (DirectDrawEx)

      Encyclopédie Hachette Multimédia (Encyclopédie Hachette Multimédia)
      uninstall cmd: C:\WINDOWS\unvise32.exe C:\program files\EHMINSTALL\uninstal.log

      EPSON Logiciel imprimante (EPSON Printer and Utilities)
      uninstall cmd: C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\EPUPDATE.EXE /R

      EPSON Scan (EPSON Scanner)
      uninstall cmd: C:\Program Files\epson\escndv\setup\setup.exe /r

      ESDX3800 Guide d'utilisation (ESDX3800 Guide d'utilisation)
      install location: C:\Program Files\EPSON\TPMANUAL\ESDX3800\USE_G
      uninstall cmd: C:\Program Files\EPSON\TPMANUAL\ESDX3800\USE_G\DOCUNINS.EXE

      (expinst)

      (Fontcore)

      Gestionnaire Internet (GestionnaireInternet.exe)
      uninstall cmd: C:\PROGRA~1\Wanadoo\uninstall.exe

      Guide ES C40 C20 (Guide ES C40 C20)
      uninstall cmd: C:\WINDOWS\unin040c.exe -f"C:\Program Files\EPSON\ESC40C20\DeIsL2.isu"

      (HandyBits EasyCrypto Deluxe)
      uninstall cmd: "C:\Program Files\Fichiers communs\Teknum Systems\tsUninst.exe" "C:\Program Files\HandyBits\EasyCrypto\HandyBits EasyCrypto Deluxe.del"

      HijackThis 1.99.1 1.99.1 (HijackThis)
      uninstall cmd: C:\DOCUME~1\jocelyne\LOCALS~1\Temp\Répertoire temporaire 1 pour hijackthis[1].zip\HijackThis.exe /uninstall
      publisher: Soeperman Enterprises Ltd.

      (ICW)

      (IE40)

      (IE4Data)

      (IE5BAKEX)

      Windows Internet Explorer 7 Beta 3 20060623.092706 (ie7beta3)
      install date: 20060805
      uninstall cmd: "C:\WINDOWS\ie7beta3\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/office/internet-explorer-help-23360e49-9cd3-4dda-ba52-705336cc0de2?ui=en-US&rs=en-001&ad=US

      (IEData)

      (IEREADME)

      5.2.5.2598 (IncrediMail)
      publisher: IncrediMail Ltd.
      help link: http://help.incredimail.com/english/help/index.html

      (InstallShield Uninstall Information)

      EPSON Attach To Email 1.01.0000 (InstallShield_{20C45B32-5AB6-46A4-94EF-58950CAF05E5})
      version: 16842752
      version (major): 1
      version (minor): 1
      estimated size: 1108
      install date: 20060329
      install location: C:\Program Files\EPSON\Creativity Suite\Attach To Email\
      install source: D:\COMMON\CreativitySuite\AttachToEmail\
      uninstall cmd: C:\Program Files\Fichiers communs\InstallShield\Driver\8\Intel 32\IDriver.exe /M{20C45B32-5AB6-46A4-94EF-58950CAF05E5} /l1033 ADDREMOVEDLG
      publisher: SEIKO EPSON
      comments: Attach To Email - Email support app
      help link: https://epson.com/

      Le Seigneur des Anneaux: La Communauté de L'Anneau 1.01.0453 (InstallShield_{49C98C60-BAC3-4C92-AF4F-E890FD312D60})
      version: 16843205
      version (major): 1
      version (minor): 1
      estimated size: 784181
      install date: 20030707
      install source: Q:\
      uninstall cmd: C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{49C98C60-BAC3-4C92-AF4F-E890FD312D60}
      publisher: Nom de votre société
      comments: Vos remarques
      contact: Service support clientèle
      help link: http://www.votresociété.com/aide
      help telephone: +1-555-555-4505

      InterActual Player (InterActual Player)
      uninstall cmd: C:\Program Files\InterActual\InterActual Player\inuninst.exe

      WordBiz version 1.8 1.8 (Internet Scrabble Club_is1)
      install location: C:\Program Files\WordBiz\
      uninstall cmd: "C:\Program Files\WordBiz\unins000.exe"
      publisher: Internet Scrabble Club

      Java Runtime Environment 1.1 (JRE 1.1)
      uninstall cmd: C:\WINDOWS\uninst.exe -f"C:\Program Files\JavaSoft\JRE\1.1\lib\DeIsL1.isu"

      Correctif Windows XP - KB834707 20040929.110854 (KB834707)
      uninstall cmd: C:\WINDOWS\$NtUninstallKB834707$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/834707

      Correctif Windows XP - KB867282 20050127.090417 (KB867282)
      uninstall cmd: C:\WINDOWS\$NtUninstallKB867282$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/867282

      Microsoft Data Access Components KB870669 (KB870669)
      uninstall cmd: C:\WINDOWS\muninst.exe C:\WINDOWS\INF\KB870669.inf
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us

      Correctif Windows XP - KB873333 20050114.005213 (KB873333)
      uninstall cmd: C:\WINDOWS\$NtUninstallKB873333$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/873333/ms05-012-vulnerability-in-ole-and-com-could-allow-remote-code-executio

      Correctif Windows XP - KB873339 20041117.092459 (KB873339)
      uninstall cmd: C:\WINDOWS\$NtUninstallKB873339$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/873339

      Mise à jour de sécurité pour Windows XP (KB883939) 1 (KB883939)
      install date: 20050703
      uninstall cmd: "C:\WINDOWS\$NtUninstallKB883939$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/883939

      (KB884016)

      Correctif Windows XP - KB885250 20050118.202711 (KB885250)
      uninstall cmd: C:\WINDOWS\$NtUninstallKB885250$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/885250

      Correctif Windows XP - KB885835 20041027.181713 (KB885835)
      uninstall cmd: C:\WINDOWS\$NtUninstallKB885835$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/885835/ms04-044-vulnerabilities-in-windows-kernel-and-lsass-could-allow-eleva

      Correctif Windows XP - KB885836 20041028.173203 (KB885836)
      uninstall cmd: C:\WINDOWS\$NtUninstallKB885836$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/885836/ms04-041-a-vulnerability-in-wordpad-could-allow-code-execution

      Correctif Windows XP - KB886185 20041021.090540 (KB886185)
      uninstall cmd: C:\WINDOWS\$NtUninstallKB886185$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/886185

      Correctif Windows XP - KB887472 20041014.162858 (KB887472)
      uninstall cmd: C:\WINDOWS\$NtUninstallKB887472$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/887472

      Correctif Windows XP - KB887742 20041103.095002 (KB887742)
      uninstall cmd: C:\WINDOWS\$NtUninstallKB887742$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/887742

      Correctif Windows XP - KB888113 20041116.131036 (KB888113)
      uninstall cmd: C:\WINDOWS\$NtUninstallKB888113$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/888113

      Correctif Windows XP - KB888302 20041207.111426 (KB888302)
      uninstall cmd: C:\WINDOWS\$NtUninstallKB888302$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/888302

      Mise à jour de sécurité pour Windows XP (KB890046) 1 (KB890046)
      install date: 20050616
      uninstall cmd: "C:\WINDOWS\$NtUninstallKB890046$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/890046

      Correctif Windows XP - KB890047 20041221.124506 (KB890047)
      uninstall cmd: C:\WINDOWS\$NtUninstallKB890047$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/890047

      Correctif Windows XP - KB890175 20041201.233338 (KB890175)
      uninstall cmd: C:\WINDOWS\$NtUninstallKB890175$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/890175/ms05-001-vulnerability-in-html-help-could-allow-code-execution

      Correctif Windows XP - KB890859 1 (KB890859)
      install date: 20050413
      uninstall cmd: "C:\WINDOWS\$NtUninstallKB890859$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/890859

      Correctif Windows XP - KB890923 1 (KB890923)
      install date: 20050413
      uninstall cmd: "C:\WINDOWS\$NtUninstallKB890923$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/890923

      Correctif Windows XP - KB891781 20050110.165439 (KB891781)
      uninstall cmd: C:\WINDOWS\$NtUninstallKB891781$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/891781

      Correctif Windows XP - KB893066 1 (KB893066)
      install date: 20050413
      uninstall cmd: "C:\WINDOWS\$NtUninstallKB893066$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/893066/ms05-019-vulnerabilities-in-tcp-ip-could-allow-remote-code-execution-a

      Correctif Windows XP - KB893086 1 (KB893086)
      install date: 20050413
      uninstall cmd: "C:\WINDOWS\$NtUninstallKB893086$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/893086

      Mise à jour de sécurité pour Windows XP (KB893756) 1 (KB893756)
      install date: 20050812
      uninstall cmd: "C:\WINDOWS\$NtUninstallKB893756$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/893756

      Windows Installer 3.1 (KB893803) 3.1 (KB893803)
      uninstall cmd: "C:\WINDOWS\$MSI31Uninstall_KB893803$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/893803/windows-installer-3-1-v2-3-1-4000-2435-is-available

      Windows Installer 3.1 (KB893803) 3.1 (KB893803v2)
      uninstall cmd: "C:\WINDOWS\$MSI31Uninstall_KB893803v2$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/893803/windows-installer-3-1-v2-3-1-4000-2435-is-available

      Mise à jour pour Windows XP (KB894391) 1 (KB894391)
      install date: 20050725
      uninstall cmd: "C:\WINDOWS\$NtUninstallKB894391$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/894391/

      Mise à jour de sécurité pour Windows XP (KB896358) 1 (KB896358)
      install date: 20050616
      uninstall cmd: "C:\WINDOWS\$NtUninstallKB896358$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/896358/ms05-026-a-vulnerability-in-html-help-could-allow-remote-code-executio

      Mise à jour de sécurité pour Windows XP (KB896422) 1 (KB896422)
      install date: 20050703
      uninstall cmd: "C:\WINDOWS\$NtUninstallKB896422$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/896422/ms05-027-vulnerability-in-server-message-block-could-allow-remote-code

      Mise à jour de sécurité pour Windows XP (KB896423) 1 (KB896423)
      install date: 20050812
      uninstall cmd: "C:\WINDOWS\$NtUninstallKB896423$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/windows?ui=en-US&rs=en-001&ad=US

      Mise à jour de sécurité pour Windows XP (KB896424) 1 (KB896424)
      install date: 20051110
      uninstall cmd: "C:\WINDOWS\$NtUninstallKB896424$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/896424

      Mise à jour de sécurité pour Windows XP (KB896428) 1 (KB896428)
      install date: 20050616
      uninstall cmd: "C:\WINDOWS\$NtUninstallKB896428$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/896428

      Mise à jour de sécurité pour Windows XP (KB896688) 1 (KB896688)
      install date: 20051019
      uninstall cmd: "C:\WINDOWS\$NtUninstallKB896688$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/896688/ms05-052-cumulative-security-update-for-internet-explorer

      Mise à jour pour Windows XP (KB896727) 1 (KB896727)
      install date: 20050812
      uninstall cmd: "C:\WINDOWS\$NtUninstallKB896727$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/896727

      Mise à jour de sécurité pour Step by Step Interactive Training (KB898458) 20050502.101010 (KB898458)
      install date: 20050616
      uninstall cmd: "C:\WINDOWS\$NtUn
      0
  4. Regis59 Messages postés 21143 Date d'inscription   Statut Contributeur sécurité Dernière intervention   1 349
     
    Salut

    A la fin du scan de Spybot, clik droit dessu et fais < copier dans le presse papier.
    Vient dans un message, clik droit et coller, le rapport de spybot doit s afficher !

    A+
    0
    1. line6 Messages postés 159 Statut Membre 31
       
      --- Search result list ---
      Sysweb Telecom: Module usage (Clé du registre, nothing done)
      HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ModuleUsage\C:/WINDOWS/Downloaded Program Files/SysWebTelecomInt.dll

      TangoDialer: Dossier Programme (Répertoire, nothing done)
      c:\program files\grandvirtual\

      Divago.Surfairy: Réglages utilisateur (Valeur du registre, nothing done)
      HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Extensions\CmdMapping\{2223664C-1942-4276-9A2D-E8D8F547C5D2}

      Divago.Surfairy: Réglages utilisateur (Valeur du registre, nothing done)
      HKEY_USERS\S-1-5-18\Software\Microsoft\Internet Explorer\Extensions\CmdMapping\{2223664C-1942-4276-9A2D-E8D8F547C5D2}

      SpywareStormer: Donnée (Fichier, nothing done)
      C:\WINDOWS\Downloaded Program Files\Install.inf

      MyWay.MyWebSearch: Réglages (Clé du registre, nothing done)
      HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{07B18EA1-A523-4961-B6BB-170DE4475CCA}

      MyWay.MyWebSearch: Réglages (Clé du registre, nothing done)
      HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{07B18EA1-A523-4961-B6BB-170DE4475CCA}

      MyWay.MyWebSearch: Browser helper object (Clé du registre, nothing done)
      HKEY_USERS\.DEFAULT\Software\MyWebSearch

      MyWay.MyWebSearch: Browser helper object (Clé du registre, nothing done)
      HKEY_USERS\S-1-5-21-1343024091-884357618-839522115-1004\Software\MyWebSearch

      MyWay.MyWebSearch: Browser helper object (Clé du registre, nothing done)
      HKEY_USERS\S-1-5-18\Software\MyWebSearch

      MyWay.MyWebSearch: Class ID (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\CLSID\{1E0DE227-5CE4-4ea3-AB0C-8B03E1AA76BC}

      MyWay.MyWebSearch: Class ID (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\CLSID\{938AA51A-996C-4884-98CE-80DD16A5C9DA}

      MyWay.MyWebSearch: Class ID (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\CLSID\{9FF05104-B030-46FC-94B8-81276E4E27DF}

      MyWay.MyWebSearch: Root class (Clé du registre, nothing done)
      HKEY_LOCAL_MACHINE\Software\Classes\ScreenSaverControl.ScreenSaverInstaller

      MyWay.MyWebSearch: Root class (Clé du registre, nothing done)
      HKEY_LOCAL_MACHINE\Software\Classes\ScreenSaverControl.ScreenSaverInstaller.1

      MyWay.MyWebSearch: Class ID (Clé du registre, nothing done)
      HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{9FF05104-B030-46FC-94B8-81276E4E27DF}

      MyWay.MyWebSearch: Type library (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\TypeLib\{29D67D3C-509A-4544-903F-C8C1B8236554}

      MyWay.MyWebSearch: Type library (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\TypeLib\{7473D290-B7BB-4F24-AE82-7E2CE94BB6A9}

      MyWay.MyWebSearch: Type library (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\TypeLib\{8E6F1830-9607-4440-8530-13BE7C4B1D14}

      MyWay.MyWebSearch: Type library (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\TypeLib\{E47CAEE0-DEEA-464A-9326-3F2801535A4D}

      MyWay.MyWebSearch: Type library (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\TypeLib\{F42228FB-E84E-479E-B922-FBBD096E792C}

      MyWay.MyWebSearch: Browser helper object (Clé du registre, nothing done)
      HKEY_LOCAL_MACHINE\Software\FocusInteractive

      MyWay.MyWebSearch: Réglages (Clé du registre, nothing done)
      HKEY_LOCAL_MACHINE\Software\Microsoft\Code Store Database\Distribution Units\{1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB}

      MyWay.MyWebSearch: Réglages (Clé du registre, nothing done)
      HKEY_LOCAL_MACHINE\Software\Microsoft\Office\Outlook\Addins\MyWebSearch.OutlookAddin

      MyWay.MyWebSearch: Réglages (Clé du registre, nothing done)
      HKEY_LOCAL_MACHINE\Software\Microsoft\Office\Word\Addins\MyWebSearch.OutlookAddin

      MyWay.MyWebSearch: Réglages (Clé du registre, nothing done)
      HKEY_LOCAL_MACHINE\Software\MyWebSearch

      MyWay.MyWebSearch: Dossier Programme (Répertoire, nothing done)
      C:\Program Files\MyWebSearch\

      MyWay.MyWebSearch: Installeur (Fichier, nothing done)
      C:\WINDOWS\Downloaded Program Files\f3initialsetup1.0.0.8-2.inf

      FunWebProducts: Class ID (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\CLSID\{3DC201FB-E9C9-499C-A11F-23C360D7C3F8}

      FunWebProducts: Class ID (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\CLSID\{98D9753D-D73B-42D5-8C85-4469CDA897AB}

      FunWebProducts: Dossier Programme (Répertoire, nothing done)
      C:\Program Files\FunWebProducts\ScreenSaver\

      FunWebProducts: Dossier Programme (Répertoire, nothing done)
      C:\Program Files\FunWebProducts\ScreenSaver\Images\

      FunWebProducts: Class ID (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\CLSID\{147A976F-EEE1-4377-8EA7-4716E4CDD239}

      FunWebProducts: Dossier Programme (Répertoire, nothing done)
      C:\Program Files\FunWebProducts\

      FunWebProducts: Réglages (Clé du registre, nothing done)
      HKEY_USERS\S-1-5-21-1343024091-884357618-839522115-1004\Software\Fun Web Products

      Microsoft.WindowsSecurityCenter.AntiVirusOverride: Réglages (Modification du registre, nothing done)
      HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusOverride!=dword:0

      FunWeb: Root class (Clé du registre, nothing done)
      HKEY_LOCAL_MACHINE\Software\Classes\FunWebProducts.HTMLMenu

      FunWeb: Root class (Clé du registre, nothing done)
      HKEY_LOCAL_MACHINE\Software\Classes\FunWebProducts.HTMLMenu.2

      FunWeb: Class ID (Clé du registre, nothing done)
      HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{3DC201FB-E9C9-499C-A11F-23C360D7C3F8}

      FunWeb: Root class (Clé du registre, nothing done)
      HKEY_LOCAL_MACHINE\Software\Classes\FunWebProducts.HTMLMenu.1

      FunWeb: Class ID (Clé du registre, nothing done)
      HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{98D9753D-D73B-42D5-8C85-4469CDA897AB}

      FunWeb: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{63D0ED2B-B45B-4458-8B3B-60C69BBBD83C}

      FunWeb: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{63D0ED2D-B45B-4458-8B3B-60C69BBBD83C}

      FunWeb: Réglages (Clé du registre, nothing done)
      HKEY_LOCAL_MACHINE\Software\Fun Web Products

      FunWeb: Réglages (Clé du registre, nothing done)
      HKEY_LOCAL_MACHINE\Software\FunWebProducts

      FunWeb: Réglages (Valeur du registre, nothing done)
      HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent\Post Platform\FunWebProducts

      MyWebSearch: Class ID (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\CLSID\{A4730EBE-43A6-443e-9776-36915D323AD3}

      MyWebSearch: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{07B18EAA-A523-4961-B6BB-170DE4475CCA}

      MyWebSearch: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{07B18EAC-A523-4961-B6BB-170DE4475CCA}

      MyWebSearch: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{1093995A-BA37-41D2-836E-091067C4AD17}

      MyWebSearch: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{120927BF-1700-43BC-810F-FAB92549B390}

      MyWebSearch: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{247A115F-06C2-4FB3-967D-2D62D3CF4F0A}

      MyWebSearch: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{2E3537FC-CF2F-4F56-AF54-5A6A3DD375CC}

      MyWebSearch: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{2E9937FC-CF2F-4F56-AF54-5A6A3DD375CC}

      MyWebSearch: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{3E1656ED-F60E-4597-B6AA-B6A58E171495}

      MyWebSearch: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{3E53E2CB-86DB-4A4A-8BD9-FFEB7A64DF82}

      MyWebSearch: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{6E74766C-4D93-4CC0-96D1-47B8E07FF9CA}

      MyWebSearch: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{741DE825-A6F0-4497-9AA6-8023CF9B0FFF}

      MyWebSearch: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{7473D291-B7BB-4F24-AE82-7E2CE94BB6A9}

      MyWebSearch: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{90449521-D834-4703-BB4E-D3AA44042FF8}

      MyWebSearch: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{991AAC62-B100-47CE-8B75-253965244F69}

      MyWebSearch: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{BBABDC90-F3D5-4801-863A-EE6AE529862D}

      MyWebSearch: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{D6FF3684-AD3B-48EB-BBB4-B9E6C5A355C1}

      MyWebSearch: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{DE38C398-B328-4F4C-A3AD-1B5E4ED93477}

      MyWebSearch: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{EB9E5C1C-B1F9-4C2B-BE8A-27D6446FDAF8}

      MyWebSearch: Type library (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\TypeLib\{07B18EA0-A523-4961-B6BB-170DE4475CCA}

      MyWebSearch: Type library (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\TypeLib\{8CA01F0E-987C-49C3-B852-2F1AC4A7094C}

      MyWebSearch: Réglages (Valeur du registre, nothing done)
      HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Media\WMSDK\sources\f3PopularScreensavers

      TagASaurus: Cookie traceur (Internet Explorer: jocelyne) (Cookie, nothing done)


      WebTrends live: Cookie traceur (Internet Explorer: jocelyne) (Cookie, nothing done)


      Advertising.com: Cookie traceur (Internet Explorer: jocelyne) (Cookie, nothing done)


      MediaPlex: Cookie traceur (Internet Explorer: jocelyne) (Cookie, nothing done)


      FastClick: Cookie traceur (Internet Explorer: jocelyne) (Cookie, nothing done)


      DoubleClick: Cookie traceur (Internet Explorer: jocelyne) (Cookie, nothing done)


      Zedo: Cookie traceur (Internet Explorer: jocelyne) (Cookie, nothing done)


      BlueStreak: Cookie traceur (Internet Explorer: jocelyne) (Cookie, nothing done)


      Avenue A, Inc.: Cookie traceur (Internet Explorer: jocelyne) (Cookie, nothing done)



      --- Spybot - Search & Destroy version: 1.4 (build: 20050523) ---

      2005-05-31 blindman.exe (1.0.0.1)
      2005-05-31 SpybotSD.exe (1.4.0.3)
      2005-05-31 TeaTimer.exe (1.4.0.2)
      2007-04-11 unins000.exe (51.41.0.0)
      2005-05-31 Update.exe (1.4.0.0)
      2007-01-15 advcheck.dll (1.2.1.0)
      2005-05-31 aports.dll (2.1.0.0)
      2005-05-31 borlndmm.dll (7.0.4.453)
      2005-05-31 delphimm.dll (7.0.4.453)
      2005-05-31 SDHelper.dll (1.4.0.0)
      2007-01-02 Tools.dll (2.0.1.0)
      2005-05-31 UnzDll.dll (1.73.1.1)
      2005-05-31 ZipDll.dll (1.73.2.0)
      2007-04-04 Includes\Cookies.sbi (*)
      2006-12-08 Includes\Dialer.sbi (*)
      2007-04-04 Includes\DialerC.sbi (*)
      2007-04-04 Includes\Hijackers.sbi (*)
      2007-04-04 Includes\HijackersC.sbi (*)
      2006-10-27 Includes\Keyloggers.sbi (*)
      2007-04-04 Includes\KeyloggersC.sbi (*)
      2007-03-21 Includes\Malware.sbi (*)
      2007-04-04 Includes\MalwareC.sbi (*)
      2007-03-21 Includes\PUPS.sbi (*)
      2007-04-04 Includes\PUPSC.sbi (*)
      2007-04-04 Includes\Revision.sbi (*)
      2006-12-08 Includes\Security.sbi (*)
      2007-04-04 Includes\SecurityC.sbi (*)
      2007-03-21 Includes\Spybots.sbi (*)
      2007-04-04 Includes\SpybotsC.sbi (*)
      2005-02-17 Includes\Tracks.uti
      2007-04-04 Includes\Trojans.sbi (*)
      2007-04-04 Includes\TrojansC.sbi (*)



      --- System information ---
      Windows XP (Build: 2600) Service Pack 2
      / DataAccess: Microsoft Data Access Components KB870669
      / DataAccess: Patch Available For XMLHTTP Vulnerability
      / DataAccess: Patch Available For XMLHTTP Vulnerability
      / DataAccess: Security Update for Microsoft Data Access Components
      / MSXML4: Patch Available For XMLHTTP Vulnerability
      / MSXML4SP2: FIX: ASP stops responding when calling Response.Redirect to another server using msxml4 sp2
      / Step By Step Interactive Training / SP2: Mise à jour de sécurité pour Step by Step Interactive Training (KB898458)
      / Step By Step Interactive Training / SP2: Mise à jour de sécurité pour Step by Step Interactive Training (KB923723)
      / Windows Media Player: Correctif pour le Lecteur Windows Media [Voir Q828026 pour plus d'informations]
      / Windows Media Player / SP0: Correctif pour le Lecteur Windows Media [Voir Q828026 pour plus d'informations]
      / Windows Media Player: Windows Media Update 320920
      / Windows Media Player 10: Mise à jour de sécurité pour Lecteur Windows Media 10 (KB911565)
      / Windows Media Player 10: Mise à jour de sécurité pour Lecteur Windows Media 10 (KB917734)
      / Windows Media Player 6.4: Mise à jour de sécurité pour Lecteur Windows Media 6.4 (KB925398)
      / Windows XP: Mise à jour de sécurité pour Windows XP (KB923689)
      / Windows XP / SP2: Windows XP Service Pack 2
      / Windows XP / SP3: Correctif Windows XP - KB834707
      / Windows XP / SP3: Correctif Windows XP - KB867282
      / Windows XP / SP3: Correctif Windows XP - KB873333
      / Windows XP / SP3: Correctif Windows XP - KB873339
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB883939)
      / Windows XP / SP3: Correctif Windows XP - KB885250
      / Windows XP / SP3: Correctif Windows XP - KB885835
      / Windows XP / SP3: Correctif Windows XP - KB885836
      / Windows XP / SP3: Correctif Windows XP - KB886185
      / Windows XP / SP3: Correctif Windows XP - KB887472
      / Windows XP / SP3: Correctif Windows XP - KB887742
      / Windows XP / SP3: Correctif Windows XP - KB888113
      / Windows XP / SP3: Correctif Windows XP - KB888302
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB890046)
      / Windows XP / SP3: Correctif Windows XP - KB890047
      / Windows XP / SP3: Correctif Windows XP - KB890175
      / Windows XP / SP3: Correctif Windows XP - KB890859
      / Windows XP / SP3: Correctif Windows XP - KB890923
      / Windows XP / SP3: Correctif Windows XP - KB891781
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB893066)
      / Windows XP / SP3: Correctif Windows XP - KB893086
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB893756)
      / Windows XP / SP3: Windows Installer 3.1 (KB893803)
      / Windows XP / SP3: Windows Installer 3.1 (KB893803)
      / Windows XP / SP3: Mise à jour pour Windows XP (KB894391)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB896358)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB896422)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB896423)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB896424)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB896428)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB896688)
      / Windows XP / SP3: Mise à jour pour Windows XP (KB896727)
      / Windows XP / SP3: Mise à jour pour Windows XP (KB898461)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB899587)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB899588)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB899591)
      / Windows XP / SP3: Mise à jour pour Windows XP (KB900485)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB900725)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB901017)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB901214)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB902400)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB903235)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB904706)
      / Windows XP / SP3: Mise à jour pour Windows XP (KB904942)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB905414)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB905749)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB905915)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB908519)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB908531)
      / Windows XP / SP3: Mise à jour pour Windows XP (KB910437)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB911280)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB911562)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB911567)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB911927)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB912812)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB912919)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB913446)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB913580)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB914388)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB914389)
      / Windows XP / SP3: Correctif pour Windows XP (KB914440)
      / Windows XP / SP3: Hotfix for Windows XP (KB915865)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB916281)
      / Windows XP / SP3: Mise à jour pour Windows XP (KB916595)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB917159)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB917344)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB917422)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB917953)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB918118)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB918439)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB919007)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB920213)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB920214)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB920670)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB920683)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB920685)
      / Windows XP / SP3: Mise à jour pour Windows XP (KB920872)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB921398)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB921883)
      / Windows XP / SP3: Mise à jour pour Windows XP (KB922582)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB922616)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB922819)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB923191)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB923414)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB923694)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB923980)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB924191)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB924270)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB924496)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB924667)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB925902)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB926255)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB926436)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB927779)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB927802)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB928255)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB928843)
      / Windows XP / SP3: Mise à jour pour Windows XP (KB929338)
      / Windows XP / SP3: Mise à jour pour Windows XP (KB931836)


      --- Startup entries list ---
      Located: HK_LM:Run, ACTIVBOARD
      command: C:\Apps\ActivBoard\MMKeybd.exe
      file: C:\Apps\ActivBoard\MMKeybd.exe
      size: 159744
      MD5: fdba764cf4b999ed1cc17ec33520d772

      Located: HK_LM:Run, AdslTaskBar
      command: rundll32.exe stmctrl.dll,TaskBar
      file: C:\WINDOWS\system32\rundll32.exe
      size: 33792
      MD5: cdd7140c0eaa754c527b983ccc9993cd

      Located: HK_LM:Run, AtiPTA
      command: atiptaxx.exe
      file: C:\WINDOWS\system32\atiptaxx.exe
      size: 245760
      MD5: b585d826d2d7dee412bd0eb77fcb7cdf

      Located: HK_LM:Run, avast!
      command: C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
      file: C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
      size: 108160
      MD5: 26a15d8d5c81a3b053e82b01a5d8208e

      Located: HK_LM:Run, EM_EXEC
      command: C:\PROGRA~1\MOUSEW~1\SYSTEM\EM_EXEC.EXE
      file: C:\PROGRA~1\MOUSEW~1\SYSTEM\EM_EXEC.EXE
      size: 35328
      MD5: 57e2fb5840c197d2014dfc9b4f820f19

      Located: HK_LM:Run, EPSON Stylus DX3800 Series
      command: C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIACE.EXE /P26 "EPSON Stylus DX3800 Series" /O6 "USB002" /M "Stylus DX3800"
      file: C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIACE.EXE
      size: 98304
      MD5: b9297016cbc59d2d5631cc982479cc96

      Located: HK_LM:Run, KernelFaultCheck
      command: %systemroot%\system32\dumprep 0 -k
      file: C:\WINDOWS\system32\dumprep.exe
      size: 10752
      MD5: ba510a646b02cb44137b8296db2783d3

      Located: HK_LM:Run, PD0620 STISvc
      command: RunDLL32.exe P0620Pin.dll,RunDLL32EP 513
      file: C:\WINDOWS\system32\RunDLL32.exe
      size: 33792
      MD5: cdd7140c0eaa754c527b983ccc9993cd

      Located: HK_LM:Run, RealTray
      command: C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER
      file:

      Located: HK_LM:Run, SO5 Integrator Pass Two
      command: C:\WINDOWS\SOINTGR.EXE
      file: C:\WINDOWS\SOINTGR.EXE
      size: 20480
      MD5: 054bda83fbe97634b875903c2cb3ec3f

      Located: HK_LM:Run, SunJavaUpdateSched
      command: "C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe"
      file: C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe
      size: 75520
      MD5: edf5d27c6d244740418903626df5741a

      Located: HK_LM:Run, UserFaultCheck
      command: %systemroot%\system32\dumprep 0 -u
      file: C:\WINDOWS\system32\dumprep.exe
      size: 10752
      MD5: ba510a646b02cb44137b8296db2783d3

      Located: HK_LM:Run, WOOTASKBARICON
      command: C:\PROGRA~1\Wanadoo\GestMaj.exe TaskBarIcon.exe
      file: C:\PROGRA~1\Wanadoo\GestMaj.exe
      size: 32768
      MD5: 8d6f2c724cfc608872ede3cc4a7b49b9

      Located: HK_LM:Run, WOOWATCH
      command: C:\PROGRA~1\Wanadoo\Watch.exe
      file: C:\PROGRA~1\Wanadoo\Watch.exe
      size: 20480
      MD5: 9a29592cd135f6262c429152f7a8dd4a

      Located: HK_CU:Run, Cld2000.exe
      command: C:\Program Files\Calendrier\Cld2000.exe
      file: C:\Program Files\Calendrier\Cld2000.exe
      size: 3022336
      MD5: 49828a616ee805e2a32129e2a00edb89

      Located: HK_CU:Run, Creative WebCam Tray
      command: "C:\Program Files\Creative\Shared Files\CamTray.exe"
      file: C:\Program Files\Creative\Shared Files\CamTray.exe
      size: 299008
      MD5: 2aa7ee2774035050512f438c2df052a2

      Located: HK_CU:Run, ctfmon.exe
      command: C:\WINDOWS\system32\ctfmon.exe
      file: C:\WINDOWS\system32\ctfmon.exe
      size: 15360
      MD5: 64e41e8fee655b03e3f19ded21ba5118

      Located: HK_CU:Run, WOOKIT
      command: C:\PROGRA~1\Wanadoo\Shell.exe appLaunchClientZone.shl|PARAM= cnx
      file: C:\PROGRA~1\Wanadoo\Shell.exe
      size: 122880
      MD5: 2bd5e1e68614dbc6b320597856ed6ea7

      Located: Démarrage (tous utilisateurs), FotoStation Easy AutoLaunch.lnk
      command: C:\Program Files\FotoStation Easy\FotoStation Easy AutoLaunch.exe
      file: C:\Program Files\FotoStation Easy\FotoStation Easy AutoLaunch.exe
      size: 49152
      MD5: 3a5ff0123a2c033284d70d9ff828648e

      Located: Démarrage (tous utilisateurs), NkvMon.exe.lnk
      command: C:\Program Files\Nikon\NkView5\NkvMon.exe
      file: C:\Program Files\Nikon\NkView5\NkvMon.exe
      size: 233472
      MD5: 44a76cab8c48f2d76def33ad20517115

      Located: Démarrage (utilisateur), Event Reminder.lnk
      command: C:\pmw\PMREMIND.EXE
      file: C:\pmw\PMREMIND.EXE
      size: 254128
      MD5: 074056104244cc11d7000f77872e606e

      Located: System.ini, crypt32chain
      command: crypt32.dll
      file: crypt32.dll

      Located: System.ini, cryptnet
      command: cryptnet.dll
      file: cryptnet.dll

      Located: System.ini, cscdll
      command: cscdll.dll
      file: cscdll.dll

      Located: System.ini, ScCertProp
      command: wlnotify.dll
      file: wlnotify.dll

      Located: System.ini, Schedule
      command: wlnotify.dll
      file: wlnotify.dll

      Located: System.ini, sclgntfy
      command: sclgntfy.dll
      file: sclgntfy.dll

      Located: System.ini, SensLogn
      command: WlNotify.dll
      file: WlNotify.dll

      Located: System.ini, termsrv
      command: wlnotify.dll
      file: wlnotify.dll

      Located: System.ini, WgaLogon
      command: WgaLogon.dll
      file: WgaLogon.dll

      Located: System.ini, wlballoon
      command: wlnotify.dll
      file: wlnotify.dll



      --- Browser helper object list ---
      {9030D464-4C02-4ABF-8ECC-5164760863C6} (Windows Live Sign-in Helper)
      BHO name:
      CLSID name: Windows Live Sign-in Helper
      Path: C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\
      Long name: WindowsLiveLogin.dll
      Short name: WINDOW~1.DLL
      Date (created): 07/07/2006 12:29:52
      Date (last access): 11/04/2007 11:36:52
      Date (last write): 07/07/2006 12:29:52
      Filesize: 324416
      Attributes: archive
      MD5: 52A70C80A446FA3BBCDAF59A9AB26AF4
      CRC32: B1456034
      Version: 4.0.249.1

      {AA58ED58-01DD-4d91-8333-CF10577473F7} (Google Toolbar Helper)
      BHO name:
      CLSID name: Google Toolbar Helper
      description: Google toolbar
      classification: Open for discussion
      known filename: googletoolbar.dll<br>googletoolbar*.dll<br>(* = number)<br>googletoolbar_en_*.**-big.dll<br>Googletoolbar_en_*.*.**-deleon.dll
      info link: http://www.google.com/intl/fr/toolbar/ie/index.html
      info source: TonyKlein
      Path: c:\program files\google\
      Long name: GoogleToolbar3.dll
      Short name: GOOGLE~3.DLL
      Date (created): 27/10/2006 15:25:38
      Date (last access): 11/04/2007 11:36:52
      Date (last write): 17/10/2006 15:04:36
      Filesize: 2153536
      Attributes: readonly archive
      MD5: D7C951510ABB954204A798A21A510D98
      CRC32: 5D8D9479
      Version: 4.0.1020.3054

      {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} (Google Toolbar Notifier BHO)
      BHO name:
      CLSID name: Google Toolbar Notifier BHO
      Path: C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.3558\
      Long name: swg.dll
      Short name:
      Date (created): 09/04/2007 16:04:20
      Date (last access): 11/04/2007 11:36:52
      Date (last write): 09/04/2007 16:04:20
      Filesize: 324536
      Attributes: archive
      MD5: 88C2EAC1F1AE4F6051C1DED1422A08BA
      CRC32: 0F432F90
      Version: 2.0.301.3558

      {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} (EpsonToolBandKicker Class)
      BHO name:
      CLSID name: EpsonToolBandKicker Class
      Path: C:\Program Files\EPSON\EPSON Web-To-Page\
      Long name: EPSON Web-To-Page.dll
      Short name: EPSONW~1.DLL
      Date (created): 29/03/2006 16:27:24
      Date (last access): 11/04/2007 11:36:52
      Date (last write): 21/02/2005 21:50:34
      Filesize: 368640
      Attributes: archive
      MD5: 01319CF4030B3740BA8261E7024ACAD1
      CRC32: D484DB79
      Version: 1.1.0.0



      --- ActiveX list ---
      Interface Chat Wanadoo (Interface Chat Wanadoo)
      DPF name: Interface Chat Wanadoo
      CLSID name:
      Installer:
      Codebase: http://chat7.x-echo.com/version6/Applet/wchatsign.cab
      description:
      classification: Open for discussion
      known filename:
      info link:
      info source: Safer Networking Ltd.

      {17D8B270-9C15-11D3-8F03-00105A9965CA} ()
      DPF name:
      CLSID name:
      Installer: C:\WINDOWS\Downloaded Program Files\ec.inf
      Codebase: http://www.easyclick.com/ie/pc/ec.cab

      {1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB} ()
      DPF name:
      CLSID name:
      Installer: C:\WINDOWS\Downloaded Program Files\f3initialsetup1.0.0.8-2.inf
      Codebase: http://ak.imgfarm.com/images/nocache/funwebproducts/ei-2/CursorManiaFWBInitialSetup1.0.0.8-2.cab
      description: FunWebProducts
      classification: Confirmed as malware
      known filename:
      info link:
      info source: Patrick M. Kolla

      {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class)
      DPF name:
      CLSID name: UnoCtrl Class
      Installer: C:\WINDOWS\Downloaded Program Files\GAME_UNO1.INF
      Codebase: http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
      Path: C:\WINDOWS\Downloaded Program Files\
      Long name: GAME_UNO1.dll
      Short name: GAME_U~1.DLL
      Date (created): 22/11/2006 23:22:42
      Date (last access): 11/04/2007 11:46:54
      Date (last write): 22/11/2006 23:22:42
      Filesize: 372736
      Attributes: archive
      MD5: 491C8F47C0DCFBC1B1329B9B368AA78F
      CRC32: 5BFD37C9
      Version: 1.0.1123.1

      {8F48147B-78D9-40F9-ACC0-BDDE59B246F4} (AccountHelper Class)
      DPF name:
      CLSID name: AccountHelper Class
      Installer: C:\WINDOWS\Downloaded Program Files\Account.inf
      Codebase: http://register.tiscali.fr/configurateur/AccountHelper.cab
      description:
      classification: Open for discussion
      known filename: Account.dll
      info link:
      info source: Safer Networking Ltd.
      Path: C:\WINDOWS\Downloaded Program Files\
      Long name: Account.dll
      Short name:
      Date (created): 09/09/2003 16:47:56
      Date (last access): 11/04/2007 10:10:34
      Date (last write): 09/09/2003 16:47:56
      Filesize: 43520
      Attributes: archive
      MD5: 2B8373ABF0346DFD570C6B9BA6CF48F1
      CRC32: F6D35674
      Version: 1.0.0.75

      {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class)
      DPF name:
      CLSID name: MessengerStatsClient Class
      Installer:
      Codebase: http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
      Path: C:\WINDOWS\Downloaded Program Files\
      Long name: MessengerStatsPAClient.dll
      Short name: MESSEN~1.DLL
      Date (created): 22/02/2007 23:41:12
      Date (last access): 11/04/2007 11:46:54
      Date (last write): 22/02/2007 23:41:12
      Filesize: 304544
      Attributes: archive
      MD5: 8945CCA5FC4F25168E8B6F401EFAF51F
      CRC32: 0F12FD23
      Version: 9.5.6907.1

      {CAFEEFAC-0015-0000-0010-ABCDEFFEDCBA} (Java Runtime Environment 1.5.0)
      DPF name: Java Runtime Environment 1.5.0
      CLSID name: Java Plug-in 1.5.0_10
      Installer:
      Codebase: http://java.sun.com/update/1.5.0/jinstall-1_5_0_10-windows-i586.cab
      Path: C:\Program Files\Java\jre1.5.0_10\bin\
      Long name: NPJPI150_10.dll
      Short name: NPJPI1~1.DLL
      Date (created): 09/11/2006 16:07:34
      Date (last access): 19/02/2007 12:28:18
      Date (last write): 09/11/2006 16:21:54
      Filesize: 75528
      Attributes: archive
      MD5: 635F4B3A0F1C661B5CEDE628BA85E46B
      CRC32: 0C9B7145
      Version: 5.0.100.3

      {CAFEEFAC-0015-0000-0011-ABCDEFFEDCBA} (Java Runtime Environment 1.5.0)
      DPF name: Java Runtime Environment 1.5.0
      CLSID name: Java Plug-in 1.5.0_11
      Installer:
      Codebase: http://java.sun.com/update/1.5.0/jinstall-1_5_0_11-windows-i586.cab
      Path: C:\Program Files\Java\jre1.5.0_11\bin\
      Long name: NPJPI150_11.dll
      Short name: NPJPI1~1.DLL
      Date (created): 15/12/2006 04:09:16
      Date (last access): 11/04/2007 10:03:48
      Date (last write): 15/12/2006 04:23:26
      Filesize: 75528
      Attributes: archive
      MD5: 3B3F6984DBF972DAFF1B7E9C44E2FE75
      CRC32: 4BDE2041
      Version: 5.0.110.3



      --- Process list ---
      PID: 0 ( 0) [System]
      PID: 532 ( 4) \SystemRoot\System32\smss.exe
      PID: 580 ( 532) \??\C:\WINDOWS\system32\csrss.exe
      PID: 604 ( 532) \??\C:\WINDOWS\system32\winlogon.exe
      PID: 648 ( 604) C:\WINDOWS\system32\services.exe
      size: 108544
      MD5: 63DCDE1A0D86EEB8924D6738FF616EAD
      PID: 660 ( 604) C:\WINDOWS\system32\lsass.exe
      size: 13312
      MD5: 259AF82A0932EEA4F316F92DB94707B6
      PID: 812 ( 648) C:\WINDOWS\system32\svchost.exe
      size: 14336
      MD5: 2979B03D5382A602623C0535B16AB9C0
      PID: 868 ( 648) C:\WINDOWS\system32\svchost.exe
      size: 14336
      MD5: 2979B03D5382A602623C0535B16AB9C0
      PID: 960 ( 648) C:\WINDOWS\System32\svchost.exe
      size: 14336
      MD5: 2979B03D5382A602623C0535B16AB9C0
      PID: 1012 ( 648) C:\WINDOWS\System32\svchost.exe
      size: 14336
      MD5: 2979B03D5382A602623C0535B16AB9C0
      PID: 1072 ( 648) C:\WINDOWS\System32\svchost.exe
      size: 14336
      MD5: 2979B03D5382A602623C0535B16AB9C0
      PID: 1336 ( 648) C:\WINDOWS\system32\spoolsv.exe
      size: 57856
      MD5: DA81EC57ACD4CDC3D4C51CF3D409AF9F
      PID: 1460 ( 648) C:\Apps\ActivBoard\nhksrv.exe
      size: 28672
      MD5: D368A8A0FB5DB8B86BBC9B97EFBDB64E
      PID: 1504 ( 648) C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
      size: 59008
      MD5: DC995DA2D258C0590C3AE07EC68BFEE6
      PID: 1516 ( 648) C:\WINDOWS\system32\Ati2evxx.exe
      size: 254037
      MD5: 354BC2C46E542A57099B9E9798A89260
      PID: 1552 ( 648) C:\Program Files\Alwil Software\Avast4\ashServ.exe
      size: 132736
      MD5: 8E33DA0415023EA7A9378AFA04D9BF4D
      PID: 1592 ( 648) C:\WINDOWS\System32\FTRTSVC.exe
      size: 40960
      MD5: D1261099E03EEE90976EA19002995B89
      PID: 1644 ( 648) C:\WINDOWS\system32\slserv.exe
      size: 73796
      MD5: B3828CAEFF06A3FED6280B67AB8C4E9A
      PID: 1712 ( 648) C:\WINDOWS\system32\wdfmgr.exe
      size: 38912
      MD5: C81B8635DEE0D3EF5F64B3DD643023A5
      PID: 472 ( 648) C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
      size: 255616
      MD5: AA6691D73782FA5D94E0CED6D27C3DE8
      PID: 520 ( 648) C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
      size: 370304
      MD5: D6B2638DDBFB34AC78B153CDD0792C37
      PID: 1088 ( 648) C:\WINDOWS\System32\alg.exe
      size: 44544
      MD5: B43CC0F07752D456038CD0268E4D84E9
      PID: 1284 (1288) C:\WINDOWS\Explorer.EXE
      size: 1036288
      MD5: 2A7BD330924252A2FD80344FC949BB72
      PID: 2180 ( 960) C:\WINDOWS\system32\wuauclt.exe
      size: 125720
      MD5: 6CC08152ED8681BC176BE1B0F3C0E908
      PID: 2232 (1284) C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe
      size: 75520
      MD5: EDF5D27C6D244740418903626DF5741A
      PID: 2280 (1284) C:\WINDOWS\SOINTGR.EXE
      size: 20480
      MD5: 054BDA83FBE97634B875903C2CB3EC3F
      PID: 2352 (1284) C:\Program Files\Real\RealPlayer\RealPlay.exe
      size: 26112
      MD5: EA9D3466AC7A7F62D386937DF9CB8C41
      PID: 2384 (1284) C:\WINDOWS\system32\RunDLL32.exe
      size: 33792
      MD5: CDD7140C0EAA754C527B983CCC9993CD
      PID: 2440 (1284) C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIACE.EXE
      size: 98304
      MD5: B9297016CBC59D2D5631CC982479CC96
      PID: 2448 (1284) C:\PROGRA~1\MOUSEW~1\SYSTEM\EM_EXEC.EXE
      size: 35328
      MD5: 57E2FB5840C197D2014DFC9B4F820F19
      PID: 2456 (1284) C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
      size: 108160
      MD5: 26A15D8D5C81A3B053E82B01A5D8208E
      PID: 2464 (1284) C:\WINDOWS\system32\atiptaxx.exe
      size: 245760
      MD5: B585D826D2D7DEE412BD0EB77FCB7CDF
      PID: 2488 (1284) C:\Apps\ActivBoard\MMKeybd.exe
      size: 159744
      MD5: FDBA764CF4B999ED1CC17EC33520D772
      PID: 2548 (1284) C:\WINDOWS\system32\ctfmon.exe
      size: 15360
      MD5: 64E41E8FEE655B03E3F19DED21BA5118
      PID: 2592 (1284) C:\Program Files\Creative\Shared Files\CamTray.exe
      size: 299008
      MD5: 2AA7EE2774035050512F438C2DF052A2
      PID: 2604 (2488) C:\Apps\ActivBoard\TrayMon.exe
      size: 110592
      MD5: 2F2E192234E49E3DE31F22F6D61E4B81
      PID: 2612 (2536) C:\PROGRA~1\Wanadoo\TaskBarIcon.exe
      size: 61440
      MD5: F9710A77123CC3FD09D062F2AF33E473
      PID: 2652 (1284) C:\Program Files\Calendrier\Cld2000.exe
      size: 3022336
      MD5: 49828A616EE805E2A32129E2A00EDB89
      PID: 2660 (2488) C:\Apps\ActivBoard\OSD.exe
      size: 90112
      MD5: 9F7128F4B6CB982DFAE6AF879CB924FA
      PID: 2672 (2644) C:\PROGRA~1\Wanadoo\GestionnaireInternet.exe
      size: 819200
      MD5: 5D17C66B5620142A06B7391BE20C0476
      PID: 2688 (1284) C:\Program Files\FotoStation Easy\FotoStation Easy AutoLaunch.exe
      size: 49152
      MD5: 3A5FF0123A2C033284D70D9FF828648E
      PID: 2700 (1284) C:\Program Files\Nikon\NkView5\NkvMon.exe
      size: 233472
      MD5: 44A76CAB8C48F2D76DEF33AD20517115
      PID: 2744 (1284) C:\WINDOWS\system32\ntvdm.exe
      size: 420864
      MD5: 5827B14B4E84DA4144D8215883E05177
      PID: 2752 (2672) C:\PROGRA~1\Wanadoo\ComComp.exe
      size: 249856
      MD5: 5D589D0436C4C2D285B3418E79E78A21
      PID: 2780 (2672) C:\PROGRA~1\Wanadoo\Toaster.exe
      size: 69632
      MD5: C2D1BD2B433571ECEC29924ACE5D7C62
      PID: 2792 (2672) C:\PROGRA~1\Wanadoo\Inactivity.exe
      size: 32768
      MD5: 5F6DBF75D05462EED92B42376E89D9FE
      PID: 2808 (2672) C:\PROGRA~1\Wanadoo\PollingModule.exe
      size: 69632
      MD5: EDF02F58940FD56C12357D150F5397C0
      PID: 2856 ( 812) C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE
      size: 45056
      MD5: 68E404DB5525373FE0554ED2607F0C82
      PID: 3092 (2752) C:\PROGRA~1\Wanadoo\Watch.exe
      size: 20480
      MD5: 9A29592CD135F6262C429152F7A8DD4A
      PID: 3936 (3716) C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe
      size: 4393096
      MD5: 09CA174A605B480318731E691DC98539
      PID: 4 ( 0) System


      --- Browser start & search pages list ---
      Spybot - Search & Destroy browser pages report, 11/04/2007 12:02:07

      HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Local Page
      C:\WINDOWS\system32\blank.htm
      HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Search Page
      https://www.google.com/?gws_rd=ssl
      HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Search Bar
      http://www.google.com/toolbar/ie8/sidebar.html
      HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Start Page
      https://www.orange.fr/portail
      HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search\SearchAssistant
      http://www.bing.com/spresults.aspx
      HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl\@
      http://home.microsoft.com/access/autosearch.asp?p=%s
      HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Local Page
      %SystemRoot%\system32\blank.htm
      HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Search Page
      https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
      HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Start Page
      http://go.microsoft.com/fwlink/?LinkId=55245&clcid={SUB_CLCID}
      HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Page_URL
      https://www.msn.com/fr-fr/
      HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Search_URL
      https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
      HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\SearchAssistant
      http://www.google.com/toolbar/ie8/sidebar.html
      HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\CustomizeSearch
      https://www.bing.com/?toHttps=1&redig=8F3F334EA60E4B1CB4D040DCFE393A89{SUB_RFC1766}/srchasst/srchcust.htm


      --- Winsock Layered Service Provider list ---


      --- Uninstall list ---
      Ad-Aware SE Personal (Ad-Aware SE Personal)
      uninstall cmd: C:\PROGRA~1\Lavasoft\AD-AWA~2\UNWISE.EXE C:\PROGRA~1\Lavasoft\AD-AWA~2\INSTALL.LOG
      publisher: Lavasoft
      help link: http://www.lavasoft.de

      (AddressBook)

      Adobe Acrobat 4.0 4.0 (Adobe Acrobat 4.0)
      version (major): 4
      install location: C:\Program Files\Adobe\Acrobat 4.0
      install source: C:\Documents and Settings\jocelyne\Local Settings\Temp\pftC~tmp\
      uninstall cmd: C:\WINDOWS\ISUN040C.EXE -f"C:\Program Files\Fichiers communs\Adobe\Acrobat 4.0\NT\Uninst.isu" -c"C:\Program Files\Fichiers communs\Adobe\Acrobat 4.0\NT\Uninst.dll"
      publisher: Adobe Systems, Inc.
      help link: https://acrobat.adobe.com/us/en/acrobat.html

      5.0 (Adobe Acrobat 5.0)
      version (major): 5
      install location: C:\apps\Adobe\Acrobat 5.0
      install source: C:\Documents and Settings\jocelyne\Local Settings\Temp\pftE~tmp\
      uninstall cmd: C:\WINDOWS\ISUN040C.EXE -f"C:\Program Files\Fichiers communs\Adobe\Acrobat 5.0\NT\Uninst.isu" -c"C:\Program Files\Fichiers communs\Adobe\Acrobat 5.0\NT\Uninst.dll"
      publisher: Adobe Systems, Inc.
      help link: https://acrobat.adobe.com/us/en/acrobat.html

      ATI Display Driver (ATI Display Driver)
      uninstall cmd: rundll32 C:\WINDOWS\system32\atiiiexx.dll,_InfEngUnInstallINFFile_RunDLL@16 -force_restart -flags:0x2010001 -inf_class:DISPLAY -clean

      avast! Antivirus 4.7 (avast!)
      version (major): 4
      version (minor): 7
      install location: C:\PROGRA~1\ALWILS~1\Avast4
      install source: C:\PROGRA~1\ALWILS~1\Avast4\setup
      uninstall cmd: rundll32 C:\PROGRA~1\ALWILS~1\Avast4\Setup\setiface.dll,RunSetup
      publisher: Alwil Software
      help link: https://www.avast.com/fr-fr/index

      (BackWeb-4448364 Uninstaller)
      uninstall cmd: C:\WINDOWS\BWUnin-6.1.0.145L.exe -AppId 4448364

      Birds on a Wire Deluxe 1.0.0 (Birds on a Wire Deluxe)
      install location: C:\Program Files\Zylom Games\
      uninstall cmd: "C:\Program Files\Zylom Games\Birds on a Wire Deluxe\GameInstlr.exe" --uninstall UnInstall.log
      publisher: Zylom Games

      (Branding)

      Calendrier Xtra v8.02 (Calendrier 2000_is1)
      install location: C:\Program Files\Calendrier\
      uninstall cmd: "C:\Program Files\Calendrier\unins000.exe"
      publisher: XTRALOG
      help link: mailto:support@xtralog.com

      CCleaner (remove only) (CCleaner)
      uninstall cmd: "C:\Program Files\CCleaner\uninst.exe"

      CCM 2.0.5 (CommentCaMarche 2.0.5_is1)
      install location: C:\Program Files\CommentCaMarche\
      uninstall cmd: "C:\Program Files\CommentCaMarche\unins000.exe"
      publisher: PILLOU Jean-François
      help link: https://www.commentcamarche.net/

      (Conexant PCI Audio)
      uninstall cmd: CIAunwdm.exe

      (Connection Manager)

      Creative WebCam Instant Driver (1.03.02.0425) (Creative PD0620)
      uninstall cmd: C:\WINDOWS\CtDrvIns.exe -uninstall -script PD0620.uns -unsext NT -plugin P0620Pin.dll -pluginres CtCamPin.crl

      Creative Photo Manager (Creative Photo Manager)
      uninstall cmd: RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{513D9FB1-27A2-44E4-8F2D-77A6737921A5}\setup.exe" -l0x40c /remove

      Creative WebCam Center (Creative WebCam Center)
      uninstall cmd: RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{E5ABA5FD-EE3D-4F15-895D-B32321E6C96B}\setup.exe" -l0x40c /remove

      (DirectAnimation)

      (DirectDrawEx)

      Encyclopédie Hachette Multimédia (Encyclopédie Hachette Multimédia)
      uninstall cmd: C:\WINDOWS\unvise32.exe C:\program files\EHMINSTALL\uninstal.log

      EPSON Logiciel imprimante (EPSON Printer and Utilities)
      uninstall cmd: C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\EPUPDATE.EXE /R

      EPSON Scan (EPSON Scanner)
      uninstall cmd: C:\Program Files\epson\escndv\setup\setup.exe /r

      ESDX3800 Guide d'utilisation (ESDX3800 Guide d'utilisation)
      install location: C:\Program Files\EPSON\TPMANUAL\ESDX3800\USE_G
      uninstall cmd: C:\Program Files\EPSON\TPMANUAL\ESDX3800\USE_G\DOCUNINS.EXE

      (expinst)

      (Fontcore)

      Gestionnaire Internet (GestionnaireInternet.exe)
      uninstall cmd: C:\PROGRA~1\Wanadoo\uninstall.exe

      Guide ES C40 C20 (Guide ES C40 C20)
      uninstall cmd: C:\WINDOWS\unin040c.exe -f"C:\Program Files\EPSON\ESC40C20\DeIsL2.isu"

      (HandyBits EasyCrypto Deluxe)
      uninstall cmd: "C:\Program Files\Fichiers communs\Teknum Systems\tsUninst.exe" "C:\Program Files\HandyBits\EasyCrypto\HandyBits EasyCrypto Deluxe.del"

      HijackThis 1.99.1 1.99.1 (HijackThis)
      uninstall cmd: C:\DOCUME~1\jocelyne\LOCALS~1\Temp\Répertoire temporaire 1 pour hijackthis[1].zip\HijackThis.exe /uninstall
      publisher: Soeperman Enterprises Ltd.

      (ICW)

      (IE40)

      (IE4Data)

      (IE5BAKEX)

      Windows Internet Explorer 7 Beta 3 20060623.092706 (ie7beta3)
      install date: 20060805
      uninstall cmd: "C:\WINDOWS\ie7beta3\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/office/internet-explorer-help-23360e49-9cd3-4dda-ba52-705336cc0de2?ui=en-US&rs=en-001&ad=US

      (IEData)

      (IEREADME)

      5.2.5.2598 (IncrediMail)
      publisher: IncrediMail Ltd.
      help link: http://help.incredimail.com/english/help/index.html

      (InstallShield Uninstall Information)

      EPSON Attach To Email 1.01.0000 (InstallShield_{20C45B32-5AB6-46A4-94EF-58950CAF05E5})
      version: 16842752
      version (major): 1
      version (minor): 1
      estimated size: 1108
      install date: 20060329
      install location: C:\Program Files\EPSON\Creativity Suite\Attach To Email\
      install source: D:\COMMON\CreativitySuite\AttachToEmail\
      uninstall cmd: C:\Program Files\Fichiers communs\InstallShield\Driver\8\Intel 32\IDriver.exe /M{20C45B32-5AB6-46A4-94EF-58950CAF05E5} /l1033 ADDREMOVEDLG
      publisher: SEIKO EPSON
      comments: Attach To Email - Email support app
      help link: https://epson.com/

      Le Seigneur des Anneaux: La Communauté de L'Anneau 1.01.0453 (InstallShield_{49C98C60-BAC3-4C92-AF4F-E890FD312D60})
      version: 16843205
      version (major): 1
      version (minor): 1
      estimated size: 784181
      install date: 20030707
      install source: Q:\
      uninstall cmd: C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{49C98C60-BAC3-4C92-AF4F-E890FD312D60}
      publisher: Nom de votre société
      comments: Vos remarques
      contact: Service support clientèle
      help link: http://www.votresociété.com/aide
      help telephone: +1-555-555-4505

      InterActual Player (InterActual Player)
      uninstall cmd: C:\Program Files\InterActual\InterActual Player\inuninst.exe

      WordBiz version 1.8 1.8 (Internet Scrabble Club_is1)
      install location: C:\Program Files\WordBiz\
      uninstall cmd: "C:\Program Files\WordBiz\unins000.exe"
      publisher: Internet Scrabble Club

      Java Runtime Environment 1.1 (JRE 1.1)
      uninstall cmd: C:\WINDOWS\uninst.exe -f"C:\Program Files\JavaSoft\JRE\1.1\lib\DeIsL1.isu"

      Correctif Windows XP - KB834707 20040929.110854 (KB834707)
      uninstall cmd: C:\WINDOWS\$NtUninstallKB834707$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/834707

      Correctif Windows XP - KB867282 20050127.090417 (KB867282)
      uninstall cmd: C:\WINDOWS\$NtUninstallKB867282$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/867282

      Microsoft Data Access Components KB870669 (KB870669)
      uninstall cmd: C:\WINDOWS\muninst.exe C:\WINDOWS\INF\KB870669.inf
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us

      Correctif Windows XP - KB873333 20050114.005213 (KB873333)
      uninstall cmd: C:\WINDOWS\$NtUninstallKB873333$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/873333/ms05-012-vulnerability-in-ole-and-com-could-allow-remote-code-executio

      Correctif Windows XP - KB873339 20041117.092459 (KB873339)
      uninstall cmd: C:\WINDOWS\$NtUninstallKB873339$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/873339

      Mise à jour de sécurité pour Windows XP (KB883939) 1 (KB883939)
      install date: 20050703
      uninstall cmd: "C:\WINDOWS\$NtUninstallKB883939$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/883939

      (KB884016)

      Correctif Windows XP - KB885250 20050118.202711 (KB885250)
      uninstall cmd: C:\WINDOWS\$NtUninstallKB885250$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/885250

      Correctif Windows XP - KB885835 20041027.181713 (KB885835)
      uninstall cmd: C:\WINDOWS\$NtUninstallKB885835$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/885835/ms04-044-vulnerabilities-in-windows-kernel-and-lsass-could-allow-eleva

      Correctif Windows XP - KB885836 20041028.173203 (KB885836)
      uninstall cmd: C:\WINDOWS\$NtUninstallKB885836$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/885836/ms04-041-a-vulnerability-in-wordpad-could-allow-code-execution

      Correctif Windows XP - KB886185 20041021.090540 (KB886185)
      uninstall cmd: C:\WINDOWS\$NtUninstallKB886185$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/886185

      Correctif Windows XP - KB887472 20041014.162858 (KB887472)
      uninstall cmd: C:\WINDOWS\$NtUninstallKB887472$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/887472

      Correctif Windows XP - KB887742 20041103.095002 (KB887742)
      uninstall cmd: C:\WINDOWS\$NtUninstallKB887742$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/887742

      Correctif Windows XP - KB888113 20041116.131036 (KB888113)
      uninstall cmd: C:\WINDOWS\$NtUninstallKB888113$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/888113

      Correctif Windows XP - KB888302 20041207.111426 (KB888302)
      uninstall cmd: C:\WINDOWS\$NtUninstallKB888302$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/888302

      Mise à jour de sécurité pour Windows XP (KB890046) 1 (KB890046)
      install date: 20050616
      uninstall cmd: "C:\WINDOWS\$NtUninstallKB890046$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/890046

      Correctif Windows XP - KB890047 20041221.124506 (KB890047)
      uninstall cmd: C:\WINDOWS\$NtUninstallKB890047$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/890047

      Correctif Windows XP - KB890175 20041201.233338 (KB890175)
      uninstall cmd: C:\WINDOWS\$NtUninstallKB890175$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/890175/ms05-001-vulnerability-in-html-help-could-allow-code-execution

      Correctif Windows XP - KB890859 1 (KB890859)
      install date: 20050413
      uninstall cmd: "C:\WINDOWS\$NtUninstallKB890859$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/890859

      Correctif Windows XP - KB890923 1 (KB890923)
      install date: 20050413
      uninstall cmd: "C:\WINDOWS\$NtUninstallKB890923$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/890923

      Correctif Windows XP - KB891781 20050110.165439 (KB891781)
      uninstall cmd: C:\WINDOWS\$NtUninstallKB891781$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/891781

      Correctif Windows XP - KB893066 1 (KB893066)
      install date: 20050413
      uninstall cmd: "C:\WINDOWS\$NtUninstallKB893066$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/893066/ms05-019-vulnerabilities-in-tcp-ip-could-allow-remote-code-execution-a

      Correctif Windows XP - KB893086 1 (KB893086)
      install date: 20050413
      uninstall cmd: "C:\WINDOWS\$NtUninstallKB893086$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/893086

      Mise à jour de sécurité pour Windows XP (KB893756) 1 (KB893756)
      install date: 20050812
      uninstall cmd: "C:\WINDOWS\$NtUninstallKB893756$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/893756

      Windows Installer 3.1 (KB893803) 3.1 (KB893803)
      uninstall cmd: "C:\WINDOWS\$MSI31Uninstall_KB893803$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/893803/windows-installer-3-1-v2-3-1-4000-2435-is-available

      Windows Installer 3.1 (KB893803) 3.1 (KB893803v2)
      uninstall cmd: "C:\WINDOWS\$MSI31Uninstall_KB893803v2$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/893803/windows-installer-3-1-v2-3-1-4000-2435-is-available

      Mise à jour pour Windows XP (KB894391) 1 (KB894391)
      install date: 20050725
      uninstall cmd: "C:\WINDOWS\$NtUninstallKB894391$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/894391/

      Mise à jour de sécurité pour Windows XP (KB896358) 1 (KB896358)
      install date: 20050616
      uninstall cmd: "C:\WINDOWS\$NtUninstallKB896358$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/896358/ms05-026-a-vulnerability-in-html-help-could-allow-remote-code-executio

      Mise à jour de sécurité pour Windows XP (KB896422) 1 (KB896422)
      install date: 20050703
      uninstall cmd: "C:\WINDOWS\$NtUninstallKB896422$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/896422/ms05-027-vulnerability-in-server-message-block-could-allow-remote-code

      Mise à jour de sécurité pour Windows XP (KB896423) 1 (KB896423)
      install date: 20050812
      uninstall cmd: "C:\WINDOWS\$NtUninstallKB896423$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/windows?ui=en-US&rs=en-001&ad=US

      Mise à jour de sécurité pour Windows XP (KB896424) 1 (KB896424)
      install date: 20051110
      uninstall cmd: "C:\WINDOWS\$NtUninstallKB896424$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/896424

      Mise à jour de sécurité pour Windows XP (KB896428) 1 (KB896428)
      install date: 20050616
      uninstall cmd: "C:\WINDOWS\$NtUninstallKB896428$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/896428

      Mise à jour de sécurité pour Windows XP (KB896688) 1 (KB896688)
      install date: 20051019
      uninstall cmd: "C:\WINDOWS\$NtUninstallKB896688$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/896688/ms05-052-cumulative-security-update-for-internet-explorer

      Mise à jour pour Windows XP (KB896727) 1 (KB896727)
      install date: 20050812
      uninstall cmd: "C:\WINDOWS\$NtUninstallKB896727$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/896727

      Mise à jour de sécurité pour Step by Step Interactive Training (KB898458) 20050502.101010 (KB898458)
      install date: 20050616
      uninstall cmd: "C:\WINDOWS\$NtUninstallKB898458$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link:
      0
    2. line6 Messages postés 159 Statut Membre 31
       
      oui très clair, merci à toi, j' ai pas eu le temps de faire la manip encore, je te tiens informer
      0
  5. Regis59 Messages postés 21143 Date d'inscription   Statut Contributeur sécurité Dernière intervention   1 349
     
    Salut

    Il y a une infection appellée my web searsh.
    La manip permet de la supprimer intégralement !
    C'est clair non? lol

    a+
    0
  6. Regis59 Messages postés 21143 Date d'inscription   Statut Contributeur sécurité Dernière intervention   1 349
     
    ok pas de probleme :)

    Je pars au foot !

    A+
    0
    1. line6 Messages postés 159 Statut Membre 31
       
      hello !!!

      je m'y suis collée, mais j'ai du mal , à savoir que j'ai bien bien mes 2 dossiers dans le fichier, j'exécute ensuite les manips que tu me dis, mais je n'arrive pas à obtenir l'adresse du script dans la boîte "Scriptline to execute".....................
      0
    2. line6 Messages postés 159 Statut Membre 31
       
      en faite lorsque je clique sur le dossier jaune à côté de Scriptline to execute , en haut j'ai le dossier BFU inscrit mais en dessous je n'ai pas de fichier donc je ne peux rien valider, et pourtant lorsque je vais voir dans C j'ai bien mes deux fichiers......
      0
    3. line6 Messages postés 159 Statut Membre 31
       
      j'ai trouvé pour faire ressortir les fichiers, il suffit d'aller en bas dans fichiers de type et de sélectionner Allfiles et voilà mon scan psybot :




      --- Search result list ---
      Sysweb Telecom: Module usage (Clé du registre, nothing done)
      HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ModuleUsage\C:/WINDOWS/Downloaded Program Files/SysWebTelecomInt.dll

      TangoDialer: Dossier Programme (Répertoire, nothing done)
      c:\program files\grandvirtual\

      Divago.Surfairy: Réglages utilisateur (Valeur du registre, nothing done)
      HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Extensions\CmdMapping\{2223664C-1942-4276-9A2D-E8D8F547C5D2}

      Divago.Surfairy: Réglages utilisateur (Valeur du registre, nothing done)
      HKEY_USERS\S-1-5-18\Software\Microsoft\Internet Explorer\Extensions\CmdMapping\{2223664C-1942-4276-9A2D-E8D8F547C5D2}

      SpywareStormer: Donnée (Fichier, nothing done)
      C:\WINDOWS\Downloaded Program Files\Install.inf

      MyWay.MyWebSearch: Réglages (Clé du registre, nothing done)
      HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{07B18EA1-A523-4961-B6BB-170DE4475CCA}

      MyWay.MyWebSearch: Réglages (Clé du registre, nothing done)
      HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{07B18EA1-A523-4961-B6BB-170DE4475CCA}

      MyWay.MyWebSearch: Browser helper object (Clé du registre, nothing done)
      HKEY_USERS\.DEFAULT\Software\MyWebSearch

      MyWay.MyWebSearch: Browser helper object (Clé du registre, nothing done)
      HKEY_USERS\S-1-5-21-1343024091-884357618-839522115-1004\Software\MyWebSearch

      MyWay.MyWebSearch: Browser helper object (Clé du registre, nothing done)
      HKEY_USERS\S-1-5-18\Software\MyWebSearch

      MyWay.MyWebSearch: Class ID (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\CLSID\{1E0DE227-5CE4-4ea3-AB0C-8B03E1AA76BC}

      MyWay.MyWebSearch: Class ID (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\CLSID\{938AA51A-996C-4884-98CE-80DD16A5C9DA}

      MyWay.MyWebSearch: Class ID (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\CLSID\{9FF05104-B030-46FC-94B8-81276E4E27DF}

      MyWay.MyWebSearch: Root class (Clé du registre, nothing done)
      HKEY_LOCAL_MACHINE\Software\Classes\ScreenSaverControl.ScreenSaverInstaller

      MyWay.MyWebSearch: Root class (Clé du registre, nothing done)
      HKEY_LOCAL_MACHINE\Software\Classes\ScreenSaverControl.ScreenSaverInstaller.1

      MyWay.MyWebSearch: Class ID (Clé du registre, nothing done)
      HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{9FF05104-B030-46FC-94B8-81276E4E27DF}

      MyWay.MyWebSearch: Type library (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\TypeLib\{29D67D3C-509A-4544-903F-C8C1B8236554}

      MyWay.MyWebSearch: Type library (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\TypeLib\{7473D290-B7BB-4F24-AE82-7E2CE94BB6A9}

      MyWay.MyWebSearch: Type library (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\TypeLib\{8E6F1830-9607-4440-8530-13BE7C4B1D14}

      MyWay.MyWebSearch: Type library (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\TypeLib\{E47CAEE0-DEEA-464A-9326-3F2801535A4D}

      MyWay.MyWebSearch: Type library (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\TypeLib\{F42228FB-E84E-479E-B922-FBBD096E792C}

      MyWay.MyWebSearch: Browser helper object (Clé du registre, nothing done)
      HKEY_LOCAL_MACHINE\Software\FocusInteractive

      MyWay.MyWebSearch: Réglages (Clé du registre, nothing done)
      HKEY_LOCAL_MACHINE\Software\Microsoft\Code Store Database\Distribution Units\{1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB}

      MyWay.MyWebSearch: Réglages (Clé du registre, nothing done)
      HKEY_LOCAL_MACHINE\Software\Microsoft\Office\Outlook\Addins\MyWebSearch.OutlookAddin

      MyWay.MyWebSearch: Réglages (Clé du registre, nothing done)
      HKEY_LOCAL_MACHINE\Software\Microsoft\Office\Word\Addins\MyWebSearch.OutlookAddin

      MyWay.MyWebSearch: Réglages (Clé du registre, nothing done)
      HKEY_LOCAL_MACHINE\Software\MyWebSearch

      MyWay.MyWebSearch: Dossier Programme (Répertoire, nothing done)
      C:\Program Files\MyWebSearch\

      MyWay.MyWebSearch: Installeur (Fichier, nothing done)
      C:\WINDOWS\Downloaded Program Files\f3initialsetup1.0.0.8-2.inf

      FunWebProducts: Class ID (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\CLSID\{3DC201FB-E9C9-499C-A11F-23C360D7C3F8}

      FunWebProducts: Class ID (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\CLSID\{98D9753D-D73B-42D5-8C85-4469CDA897AB}

      FunWebProducts: Dossier Programme (Répertoire, nothing done)
      C:\Program Files\FunWebProducts\ScreenSaver\

      FunWebProducts: Dossier Programme (Répertoire, nothing done)
      C:\Program Files\FunWebProducts\ScreenSaver\Images\

      FunWebProducts: Class ID (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\CLSID\{147A976F-EEE1-4377-8EA7-4716E4CDD239}

      FunWebProducts: Dossier Programme (Répertoire, nothing done)
      C:\Program Files\FunWebProducts\

      FunWebProducts: Réglages (Clé du registre, nothing done)
      HKEY_USERS\S-1-5-21-1343024091-884357618-839522115-1004\Software\Fun Web Products

      Microsoft.WindowsSecurityCenter.AntiVirusOverride: Réglages (Modification du registre, nothing done)
      HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusOverride!=dword:0

      FunWeb: Root class (Clé du registre, nothing done)
      HKEY_LOCAL_MACHINE\Software\Classes\FunWebProducts.HTMLMenu

      FunWeb: Root class (Clé du registre, nothing done)
      HKEY_LOCAL_MACHINE\Software\Classes\FunWebProducts.HTMLMenu.2

      FunWeb: Class ID (Clé du registre, nothing done)
      HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{3DC201FB-E9C9-499C-A11F-23C360D7C3F8}

      FunWeb: Root class (Clé du registre, nothing done)
      HKEY_LOCAL_MACHINE\Software\Classes\FunWebProducts.HTMLMenu.1

      FunWeb: Class ID (Clé du registre, nothing done)
      HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{98D9753D-D73B-42D5-8C85-4469CDA897AB}

      FunWeb: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{63D0ED2B-B45B-4458-8B3B-60C69BBBD83C}

      FunWeb: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{63D0ED2D-B45B-4458-8B3B-60C69BBBD83C}

      FunWeb: Réglages (Clé du registre, nothing done)
      HKEY_LOCAL_MACHINE\Software\Fun Web Products

      FunWeb: Réglages (Clé du registre, nothing done)
      HKEY_LOCAL_MACHINE\Software\FunWebProducts

      FunWeb: Réglages (Valeur du registre, nothing done)
      HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent\Post Platform\FunWebProducts

      MyWebSearch: Class ID (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\CLSID\{A4730EBE-43A6-443e-9776-36915D323AD3}

      MyWebSearch: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{07B18EAA-A523-4961-B6BB-170DE4475CCA}

      MyWebSearch: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{07B18EAC-A523-4961-B6BB-170DE4475CCA}

      MyWebSearch: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{1093995A-BA37-41D2-836E-091067C4AD17}

      MyWebSearch: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{120927BF-1700-43BC-810F-FAB92549B390}

      MyWebSearch: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{247A115F-06C2-4FB3-967D-2D62D3CF4F0A}

      MyWebSearch: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{2E3537FC-CF2F-4F56-AF54-5A6A3DD375CC}

      MyWebSearch: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{2E9937FC-CF2F-4F56-AF54-5A6A3DD375CC}

      MyWebSearch: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{3E1656ED-F60E-4597-B6AA-B6A58E171495}

      MyWebSearch: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{3E53E2CB-86DB-4A4A-8BD9-FFEB7A64DF82}

      MyWebSearch: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{6E74766C-4D93-4CC0-96D1-47B8E07FF9CA}

      MyWebSearch: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{741DE825-A6F0-4497-9AA6-8023CF9B0FFF}

      MyWebSearch: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{7473D291-B7BB-4F24-AE82-7E2CE94BB6A9}

      MyWebSearch: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{90449521-D834-4703-BB4E-D3AA44042FF8}

      MyWebSearch: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{991AAC62-B100-47CE-8B75-253965244F69}

      MyWebSearch: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{BBABDC90-F3D5-4801-863A-EE6AE529862D}

      MyWebSearch: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{D6FF3684-AD3B-48EB-BBB4-B9E6C5A355C1}

      MyWebSearch: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{DE38C398-B328-4F4C-A3AD-1B5E4ED93477}

      MyWebSearch: Interface (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\Interface\{EB9E5C1C-B1F9-4C2B-BE8A-27D6446FDAF8}

      MyWebSearch: Type library (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\TypeLib\{07B18EA0-A523-4961-B6BB-170DE4475CCA}

      MyWebSearch: Type library (Clé du registre, nothing done)
      HKEY_CLASSES_ROOT\TypeLib\{8CA01F0E-987C-49C3-B852-2F1AC4A7094C}

      MyWebSearch: Réglages (Valeur du registre, nothing done)
      HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Media\WMSDK\sources\f3PopularScreensavers

      TagASaurus: Cookie traceur (Internet Explorer: jocelyne) (Cookie, nothing done)


      Advertising.com: Cookie traceur (Internet Explorer: jocelyne) (Cookie, nothing done)


      MediaPlex: Cookie traceur (Internet Explorer: jocelyne) (Cookie, nothing done)


      FastClick: Cookie traceur (Internet Explorer: jocelyne) (Cookie, nothing done)


      DoubleClick: Cookie traceur (Internet Explorer: jocelyne) (Cookie, nothing done)


      Zedo: Cookie traceur (Internet Explorer: jocelyne) (Cookie, nothing done)


      BlueStreak: Cookie traceur (Internet Explorer: jocelyne) (Cookie, nothing done)


      Adviva: Cookie traceur (Internet Explorer: jocelyne) (Cookie, nothing done)


      Avenue A, Inc.: Cookie traceur (Internet Explorer: jocelyne) (Cookie, nothing done)


      Tradedoubler: Cookie traceur (Internet Explorer: jocelyne) (Cookie, nothing done)



      --- Spybot - Search & Destroy version: 1.4 (build: 20050523) ---

      2005-05-31 blindman.exe (1.0.0.1)
      2005-05-31 SpybotSD.exe (1.4.0.3)
      2005-05-31 TeaTimer.exe (1.4.0.2)
      2007-04-11 unins000.exe (51.41.0.0)
      2005-05-31 Update.exe (1.4.0.0)
      2007-01-15 advcheck.dll (1.2.1.0)
      2005-05-31 aports.dll (2.1.0.0)
      2005-05-31 borlndmm.dll (7.0.4.453)
      2005-05-31 delphimm.dll (7.0.4.453)
      2005-05-31 SDHelper.dll (1.4.0.0)
      2007-01-02 Tools.dll (2.0.1.0)
      2005-05-31 UnzDll.dll (1.73.1.1)
      2005-05-31 ZipDll.dll (1.73.2.0)
      2007-04-04 Includes\Cookies.sbi (*)
      2006-12-08 Includes\Dialer.sbi (*)
      2007-04-04 Includes\DialerC.sbi (*)
      2007-04-04 Includes\Hijackers.sbi (*)
      2007-04-04 Includes\HijackersC.sbi (*)
      2006-10-27 Includes\Keyloggers.sbi (*)
      2007-04-04 Includes\KeyloggersC.sbi (*)
      2007-03-21 Includes\Malware.sbi (*)
      2007-04-04 Includes\MalwareC.sbi (*)
      2007-03-21 Includes\PUPS.sbi (*)
      2007-04-04 Includes\PUPSC.sbi (*)
      2007-04-04 Includes\Revision.sbi (*)
      2006-12-08 Includes\Security.sbi (*)
      2007-04-04 Includes\SecurityC.sbi (*)
      2007-03-21 Includes\Spybots.sbi (*)
      2007-04-04 Includes\SpybotsC.sbi (*)
      2005-02-17 Includes\Tracks.uti
      2007-04-04 Includes\Trojans.sbi (*)
      2007-04-04 Includes\TrojansC.sbi (*)



      --- System information ---
      Windows XP (Build: 2600) Service Pack 2
      / DataAccess: Microsoft Data Access Components KB870669
      / DataAccess: Patch Available For XMLHTTP Vulnerability
      / DataAccess: Patch Available For XMLHTTP Vulnerability
      / DataAccess: Security Update for Microsoft Data Access Components
      / MSXML4: Patch Available For XMLHTTP Vulnerability
      / MSXML4SP2: FIX: ASP stops responding when calling Response.Redirect to another server using msxml4 sp2
      / Step By Step Interactive Training / SP2: Mise à jour de sécurité pour Step by Step Interactive Training (KB898458)
      / Step By Step Interactive Training / SP2: Mise à jour de sécurité pour Step by Step Interactive Training (KB923723)
      / Windows Media Player: Correctif pour le Lecteur Windows Media [Voir Q828026 pour plus d'informations]
      / Windows Media Player / SP0: Correctif pour le Lecteur Windows Media [Voir Q828026 pour plus d'informations]
      / Windows Media Player: Windows Media Update 320920
      / Windows Media Player 10: Mise à jour de sécurité pour Lecteur Windows Media 10 (KB911565)
      / Windows Media Player 10: Mise à jour de sécurité pour Lecteur Windows Media 10 (KB917734)
      / Windows Media Player 6.4: Mise à jour de sécurité pour Lecteur Windows Media 6.4 (KB925398)
      / Windows XP: Mise à jour de sécurité pour Windows XP (KB923689)
      / Windows XP / SP2: Windows XP Service Pack 2
      / Windows XP / SP3: Correctif Windows XP - KB834707
      / Windows XP / SP3: Correctif Windows XP - KB867282
      / Windows XP / SP3: Correctif Windows XP - KB873333
      / Windows XP / SP3: Correctif Windows XP - KB873339
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB883939)
      / Windows XP / SP3: Correctif Windows XP - KB885250
      / Windows XP / SP3: Correctif Windows XP - KB885835
      / Windows XP / SP3: Correctif Windows XP - KB885836
      / Windows XP / SP3: Correctif Windows XP - KB886185
      / Windows XP / SP3: Correctif Windows XP - KB887472
      / Windows XP / SP3: Correctif Windows XP - KB887742
      / Windows XP / SP3: Correctif Windows XP - KB888113
      / Windows XP / SP3: Correctif Windows XP - KB888302
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB890046)
      / Windows XP / SP3: Correctif Windows XP - KB890047
      / Windows XP / SP3: Correctif Windows XP - KB890175
      / Windows XP / SP3: Correctif Windows XP - KB890859
      / Windows XP / SP3: Correctif Windows XP - KB890923
      / Windows XP / SP3: Correctif Windows XP - KB891781
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB893066)
      / Windows XP / SP3: Correctif Windows XP - KB893086
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB893756)
      / Windows XP / SP3: Windows Installer 3.1 (KB893803)
      / Windows XP / SP3: Windows Installer 3.1 (KB893803)
      / Windows XP / SP3: Mise à jour pour Windows XP (KB894391)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB896358)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB896422)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB896423)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB896424)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB896428)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB896688)
      / Windows XP / SP3: Mise à jour pour Windows XP (KB896727)
      / Windows XP / SP3: Mise à jour pour Windows XP (KB898461)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB899587)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB899588)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB899591)
      / Windows XP / SP3: Mise à jour pour Windows XP (KB900485)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB900725)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB901017)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB901214)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB902400)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB903235)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB904706)
      / Windows XP / SP3: Mise à jour pour Windows XP (KB904942)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB905414)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB905749)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB905915)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB908519)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB908531)
      / Windows XP / SP3: Mise à jour pour Windows XP (KB910437)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB911280)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB911562)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB911567)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB911927)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB912812)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB912919)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB913446)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB913580)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB914388)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB914389)
      / Windows XP / SP3: Correctif pour Windows XP (KB914440)
      / Windows XP / SP3: Hotfix for Windows XP (KB915865)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB916281)
      / Windows XP / SP3: Mise à jour pour Windows XP (KB916595)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB917159)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB917344)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB917422)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB917953)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB918118)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB918439)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB919007)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB920213)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB920214)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB920670)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB920683)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB920685)
      / Windows XP / SP3: Mise à jour pour Windows XP (KB920872)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB921398)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB921883)
      / Windows XP / SP3: Mise à jour pour Windows XP (KB922582)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB922616)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB922819)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB923191)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB923414)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB923694)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB923980)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB924191)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB924270)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB924496)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB924667)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB925902)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB926255)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB926436)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB927779)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB927802)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB928255)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB928843)
      / Windows XP / SP3: Mise à jour pour Windows XP (KB929338)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB930178)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB931261)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB931784)
      / Windows XP / SP3: Mise à jour pour Windows XP (KB931836)
      / Windows XP / SP3: Mise à jour de sécurité pour Windows XP (KB932168)


      --- Startup entries list ---
      Located: HK_LM:Run, ACTIVBOARD
      command: C:\Apps\ActivBoard\MMKeybd.exe
      file: C:\Apps\ActivBoard\MMKeybd.exe
      size: 159744
      MD5: fdba764cf4b999ed1cc17ec33520d772

      Located: HK_LM:Run, AdslTaskBar
      command: rundll32.exe stmctrl.dll,TaskBar
      file: C:\WINDOWS\system32\rundll32.exe
      size: 33792
      MD5: cdd7140c0eaa754c527b983ccc9993cd

      Located: HK_LM:Run, AtiPTA
      command: atiptaxx.exe
      file: C:\WINDOWS\system32\atiptaxx.exe
      size: 245760
      MD5: b585d826d2d7dee412bd0eb77fcb7cdf

      Located: HK_LM:Run, avast!
      command: C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
      file: C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
      size: 108160
      MD5: 26a15d8d5c81a3b053e82b01a5d8208e

      Located: HK_LM:Run, EM_EXEC
      command: C:\PROGRA~1\MOUSEW~1\SYSTEM\EM_EXEC.EXE
      file: C:\PROGRA~1\MOUSEW~1\SYSTEM\EM_EXEC.EXE
      size: 35328
      MD5: 57e2fb5840c197d2014dfc9b4f820f19

      Located: HK_LM:Run, EPSON Stylus DX3800 Series
      command: C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIACE.EXE /P26 "EPSON Stylus DX3800 Series" /O6 "USB002" /M "Stylus DX3800"
      file: C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIACE.EXE
      size: 98304
      MD5: b9297016cbc59d2d5631cc982479cc96

      Located: HK_LM:Run, KernelFaultCheck
      command: %systemroot%\system32\dumprep 0 -k
      file: C:\WINDOWS\system32\dumprep.exe
      size: 10752
      MD5: ba510a646b02cb44137b8296db2783d3

      Located: HK_LM:Run, PD0620 STISvc
      command: RunDLL32.exe P0620Pin.dll,RunDLL32EP 513
      file: C:\WINDOWS\system32\RunDLL32.exe
      size: 33792
      MD5: cdd7140c0eaa754c527b983ccc9993cd

      Located: HK_LM:Run, RealTray
      command: C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER
      file:

      Located: HK_LM:Run, SO5 Integrator Pass Two
      command: C:\WINDOWS\SOINTGR.EXE
      file: C:\WINDOWS\SOINTGR.EXE
      size: 20480
      MD5: 054bda83fbe97634b875903c2cb3ec3f

      Located: HK_LM:Run, SunJavaUpdateSched
      command: "C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe"
      file: C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe
      size: 75520
      MD5: edf5d27c6d244740418903626df5741a

      Located: HK_LM:Run, UserFaultCheck
      command: %systemroot%\system32\dumprep 0 -u
      file: C:\WINDOWS\system32\dumprep.exe
      size: 10752
      MD5: ba510a646b02cb44137b8296db2783d3

      Located: HK_LM:Run, WOOTASKBARICON
      command: C:\PROGRA~1\Wanadoo\GestMaj.exe TaskBarIcon.exe
      file: C:\PROGRA~1\Wanadoo\GestMaj.exe
      size: 32768
      MD5: 8d6f2c724cfc608872ede3cc4a7b49b9

      Located: HK_LM:Run, WOOWATCH
      command: C:\PROGRA~1\Wanadoo\Watch.exe
      file: C:\PROGRA~1\Wanadoo\Watch.exe
      size: 20480
      MD5: 9a29592cd135f6262c429152f7a8dd4a

      Located: HK_CU:Run, Cld2000.exe
      command: C:\Program Files\Calendrier\Cld2000.exe
      file: C:\Program Files\Calendrier\Cld2000.exe
      size: 3022336
      MD5: 49828a616ee805e2a32129e2a00edb89

      Located: HK_CU:Run, Creative WebCam Tray
      command: "C:\Program Files\Creative\Shared Files\CamTray.exe"
      file: C:\Program Files\Creative\Shared Files\CamTray.exe
      size: 299008
      MD5: 2aa7ee2774035050512f438c2df052a2

      Located: HK_CU:Run, ctfmon.exe
      command: C:\WINDOWS\system32\ctfmon.exe
      file: C:\WINDOWS\system32\ctfmon.exe
      size: 15360
      MD5: 64e41e8fee655b03e3f19ded21ba5118

      Located: HK_CU:Run, WOOKIT
      command: C:\PROGRA~1\Wanadoo\Shell.exe appLaunchClientZone.shl|PARAM= cnx
      file: C:\PROGRA~1\Wanadoo\Shell.exe
      size: 122880
      MD5: 2bd5e1e68614dbc6b320597856ed6ea7

      Located: Démarrage (tous utilisateurs), FotoStation Easy AutoLaunch.lnk
      command: C:\Program Files\FotoStation Easy\FotoStation Easy AutoLaunch.exe
      file: C:\Program Files\FotoStation Easy\FotoStation Easy AutoLaunch.exe
      size: 49152
      MD5: 3a5ff0123a2c033284d70d9ff828648e

      Located: Démarrage (tous utilisateurs), NkvMon.exe.lnk
      command: C:\Program Files\Nikon\NkView5\NkvMon.exe
      file: C:\Program Files\Nikon\NkView5\NkvMon.exe
      size: 233472
      MD5: 44a76cab8c48f2d76def33ad20517115

      Located: Démarrage (utilisateur), Event Reminder.lnk
      command: C:\pmw\PMREMIND.EXE
      file: C:\pmw\PMREMIND.EXE
      size: 254128
      MD5: 074056104244cc11d7000f77872e606e

      Located: System.ini, crypt32chain
      command: crypt32.dll
      file: crypt32.dll

      Located: System.ini, cryptnet
      command: cryptnet.dll
      file: cryptnet.dll

      Located: System.ini, cscdll
      command: cscdll.dll
      file: cscdll.dll

      Located: System.ini, ScCertProp
      command: wlnotify.dll
      file: wlnotify.dll

      Located: System.ini, Schedule
      command: wlnotify.dll
      file: wlnotify.dll

      Located: System.ini, sclgntfy
      command: sclgntfy.dll
      file: sclgntfy.dll

      Located: System.ini, SensLogn
      command: WlNotify.dll
      file: WlNotify.dll

      Located: System.ini, termsrv
      command: wlnotify.dll
      file: wlnotify.dll

      Located: System.ini, WgaLogon
      command: WgaLogon.dll
      file: WgaLogon.dll

      Located: System.ini, wlballoon
      command: wlnotify.dll
      file: wlnotify.dll



      --- Browser helper object list ---
      {9030D464-4C02-4ABF-8ECC-5164760863C6} (Windows Live Sign-in Helper)
      BHO name:
      CLSID name: Windows Live Sign-in Helper
      Path: C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\
      Long name: WindowsLiveLogin.dll
      Short name: WINDOW~1.DLL
      Date (created): 07/07/2006 12:29:52
      Date (last access): 13/04/2007 14:58:10
      Date (last write): 07/07/2006 12:29:52
      Filesize: 324416
      Attributes: archive
      MD5: 52A70C80A446FA3BBCDAF59A9AB26AF4
      CRC32: B1456034
      Version: 4.0.249.1

      {AA58ED58-01DD-4d91-8333-CF10577473F7} (Google Toolbar Helper)
      BHO name:
      CLSID name: Google Toolbar Helper
      description: Google toolbar
      classification: Open for discussion
      known filename: googletoolbar.dll<br>googletoolbar*.dll<br>(* = number)<br>googletoolbar_en_*.**-big.dll<br>Googletoolbar_en_*.*.**-deleon.dll
      info link: http://www.google.com/intl/fr/toolbar/ie/index.html
      info source: TonyKlein
      Path: c:\program files\google\
      Long name: GoogleToolbar3.dll
      Short name: GOOGLE~3.DLL
      Date (created): 27/10/2006 15:25:38
      Date (last access): 13/04/2007 14:58:10
      Date (last write): 17/10/2006 15:04:36
      Filesize: 2153536
      Attributes: readonly archive
      MD5: D7C951510ABB954204A798A21A510D98
      CRC32: 5D8D9479
      Version: 4.0.1020.3054

      {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} (Google Toolbar Notifier BHO)
      BHO name:
      CLSID name: Google Toolbar Notifier BHO
      Path: C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.3558\
      Long name: swg.dll
      Short name:
      Date (created): 09/04/2007 16:04:20
      Date (last access): 13/04/2007 14:58:10
      Date (last write): 09/04/2007 16:04:20
      Filesize: 324536
      Attributes: archive
      MD5: 88C2EAC1F1AE4F6051C1DED1422A08BA
      CRC32: 0F432F90
      Version: 2.0.301.3558

      {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} (EpsonToolBandKicker Class)
      BHO name:
      CLSID name: EpsonToolBandKicker Class
      Path: C:\Program Files\EPSON\EPSON Web-To-Page\
      Long name: EPSON Web-To-Page.dll
      Short name: EPSONW~1.DLL
      Date (created): 29/03/2006 16:27:24
      Date (last access): 13/04/2007 14:58:10
      Date (last write): 21/02/2005 21:50:34
      Filesize: 368640
      Attributes: archive
      MD5: 01319CF4030B3740BA8261E7024ACAD1
      CRC32: D484DB79
      Version: 1.1.0.0



      --- ActiveX list ---
      Interface Chat Wanadoo (Interface Chat Wanadoo)
      DPF name: Interface Chat Wanadoo
      CLSID name:
      Installer:
      Codebase: http://chat7.x-echo.com/version6/Applet/wchatsign.cab
      description:
      classification: Open for discussion
      known filename:
      info link:
      info source: Safer Networking Ltd.

      {17D8B270-9C15-11D3-8F03-00105A9965CA} ()
      DPF name:
      CLSID name:
      Installer: C:\WINDOWS\Downloaded Program Files\ec.inf
      Codebase: http://www.easyclick.com/ie/pc/ec.cab

      {1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB} ()
      DPF name:
      CLSID name:
      Installer: C:\WINDOWS\Downloaded Program Files\f3initialsetup1.0.0.8-2.inf
      Codebase: http://ak.imgfarm.com/images/nocache/funwebproducts/ei-2/CursorManiaFWBInitialSetup1.0.0.8-2.cab
      description: FunWebProducts
      classification: Confirmed as malware
      known filename:
      info link:
      info source: Patrick M. Kolla

      {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class)
      DPF name:
      CLSID name: UnoCtrl Class
      Installer: C:\WINDOWS\Downloaded Program Files\GAME_UNO1.INF
      Codebase: http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
      Path: C:\WINDOWS\Downloaded Program Files\
      Long name: GAME_UNO1.dll
      Short name: GAME_U~1.DLL
      Date (created): 22/11/2006 23:22:42
      Date (last access): 13/04/2007 15:30:50
      Date (last write): 22/11/2006 23:22:42
      Filesize: 372736
      Attributes: archive
      MD5: 491C8F47C0DCFBC1B1329B9B368AA78F
      CRC32: 5BFD37C9
      Version: 1.0.1123.1

      {8F48147B-78D9-40F9-ACC0-BDDE59B246F4} (AccountHelper Class)
      DPF name:
      CLSID name: AccountHelper Class
      Installer: C:\WINDOWS\Downloaded Program Files\Account.inf
      Codebase: http://register.tiscali.fr/configurateur/AccountHelper.cab
      description:
      classification: Open for discussion
      known filename: Account.dll
      info link:
      info source: Safer Networking Ltd.
      Path: C:\WINDOWS\Downloaded Program Files\
      Long name: Account.dll
      Short name:
      Date (created): 09/09/2003 16:47:56
      Date (last access): 11/04/2007 12:19:12
      Date (last write): 09/09/2003 16:47:56
      Filesize: 43520
      Attributes: archive
      MD5: 2B8373ABF0346DFD570C6B9BA6CF48F1
      CRC32: F6D35674
      Version: 1.0.0.75

      {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class)
      DPF name:
      CLSID name: MessengerStatsClient Class
      Installer:
      Codebase: http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
      Path: C:\WINDOWS\Downloaded Program Files\
      Long name: MessengerStatsPAClient.dll
      Short name: MESSEN~1.DLL
      Date (created): 22/02/2007 23:41:12
      Date (last access): 13/04/2007 15:30:50
      Date (last write): 22/02/2007 23:41:12
      Filesize: 304544
      Attributes: archive
      MD5: 8945CCA5FC4F25168E8B6F401EFAF51F
      CRC32: 0F12FD23
      Version: 9.5.6907.1

      {CAFEEFAC-0015-0000-0010-ABCDEFFEDCBA} (Java Runtime Environment 1.5.0)
      DPF name: Java Runtime Environment 1.5.0
      CLSID name: Java Plug-in 1.5.0_10
      Installer:
      Codebase: http://java.sun.com/update/1.5.0/jinstall-1_5_0_10-windows-i586.cab
      Path: C:\Program Files\Java\jre1.5.0_10\bin\
      Long name: NPJPI150_10.dll
      Short name: NPJPI1~1.DLL
      Date (created): 09/11/2006 16:07:34
      Date (last access): 11/04/2007 12:02:08
      Date (last write): 09/11/2006 16:21:54
      Filesize: 75528
      Attributes: archive
      MD5: 635F4B3A0F1C661B5CEDE628BA85E46B
      CRC32: 0C9B7145
      Version: 5.0.100.3

      {CAFEEFAC-0015-0000-0011-ABCDEFFEDCBA} (Java Runtime Environment 1.5.0)
      DPF name: Java Runtime Environment 1.5.0
      CLSID name: Java Plug-in 1.5.0_11
      Installer:
      Codebase: http://java.sun.com/update/1.5.0/jinstall-1_5_0_11-windows-i586.cab
      Path: C:\Program Files\Java\jre1.5.0_11\bin\
      Long name: NPJPI150_11.dll
      Short name: NPJPI1~1.DLL
      Date (created): 15/12/2006 04:09:16
      Date (last access): 11/04/2007 12:19:12
      Date (last write): 15/12/2006 04:23:26
      Filesize: 75528
      Attributes: archive
      MD5: 3B3F6984DBF972DAFF1B7E9C44E2FE75
      CRC32: 4BDE2041
      Version: 5.0.110.3



      --- Process list ---
      PID: 0 ( 0) [System]
      PID: 516 ( 4) \SystemRoot\System32\smss.exe
      PID: 580 ( 516) \??\C:\WINDOWS\system32\csrss.exe
      PID: 604 ( 516) \??\C:\WINDOWS\system32\winlogon.exe
      PID: 648 ( 604) C:\WINDOWS\system32\services.exe
      size: 108544
      MD5: 63DCDE1A0D86EEB8924D6738FF616EAD
      PID: 660 ( 604) C:\WINDOWS\system32\lsass.exe
      size: 13312
      MD5: 259AF82A0932EEA4F316F92DB94707B6
      PID: 812 ( 648) C:\WINDOWS\system32\svchost.exe
      size: 14336
      MD5: 2979B03D5382A602623C0535B16AB9C0
      PID: 872 ( 648) C:\WINDOWS\system32\svchost.exe
      size: 14336
      MD5: 2979B03D5382A602623C0535B16AB9C0
      PID: 968 ( 648) C:\WINDOWS\System32\svchost.exe
      size: 14336
      MD5: 2979B03D5382A602623C0535B16AB9C0
      PID: 1012 ( 648) C:\WINDOWS\System32\svchost.exe
      size: 14336
      MD5: 2979B03D5382A602623C0535B16AB9C0
      PID: 1076 ( 648) C:\WINDOWS\System32\svchost.exe
      size: 14336
      MD5: 2979B03D5382A602623C0535B16AB9C0
      PID: 1336 ( 648) C:\WINDOWS\system32\spoolsv.exe
      size: 57856
      MD5: DA81EC57ACD4CDC3D4C51CF3D409AF9F
      PID: 1456 ( 648) C:\Apps\ActivBoard\nhksrv.exe
      size: 28672
      MD5: D368A8A0FB5DB8B86BBC9B97EFBDB64E
      PID: 1500 ( 648) C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
      size: 59008
      MD5: DC995DA2D258C0590C3AE07EC68BFEE6
      PID: 1512 ( 648) C:\WINDOWS\system32\Ati2evxx.exe
      size: 254037
      MD5: 354BC2C46E542A57099B9E9798A89260
      PID: 1548 ( 648) C:\Program Files\Alwil Software\Avast4\ashServ.exe
      size: 132736
      MD5: 8E33DA0415023EA7A9378AFA04D9BF4D
      PID: 1592 ( 648) C:\WINDOWS\System32\FTRTSVC.exe
      size: 40960
      MD5: D1261099E03EEE90976EA19002995B89
      PID: 1636 ( 648) C:\WINDOWS\system32\slserv.exe
      size: 73796
      MD5: B3828CAEFF06A3FED6280B67AB8C4E9A
      PID: 1716 ( 648) C:\WINDOWS\system32\wdfmgr.exe
      size: 38912
      MD5: C81B8635DEE0D3EF5F64B3DD643023A5
      PID: 108 ( 432) C:\WINDOWS\Explorer.EXE
      size: 1036288
      MD5: 2A7BD330924252A2FD80344FC949BB72
      PID: 1112 ( 648) C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
      size: 255616
      MD5: AA6691D73782FA5D94E0CED6D27C3DE8
      PID: 1288 ( 648) C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
      size: 370304
      MD5: D6B2638DDBFB34AC78B153CDD0792C37
      PID: 2044 ( 648) C:\WINDOWS\System32\alg.exe
      size: 44544
      MD5: B43CC0F07752D456038CD0268E4D84E9
      PID: 2104 ( 108) C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe
      size: 75520
      MD5: EDF5D27C6D244740418903626DF5741A
      PID: 2168 ( 108) C:\WINDOWS\SOINTGR.EXE
      size: 20480
      MD5: 054BDA83FBE97634B875903C2CB3EC3F
      PID: 2180 ( 108) C:\Program Files\Real\RealPlayer\RealPlay.exe
      size: 26112
      MD5: EA9D3466AC7A7F62D386937DF9CB8C41
      PID: 2188 ( 108) C:\WINDOWS\system32\RunDLL32.exe
      size: 33792
      MD5: CDD7140C0EAA754C527B983CCC9993CD
      PID: 2204 ( 108) C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIACE.EXE
      size: 98304
      MD5: B9297016CBC59D2D5631CC982479CC96
      PID: 2216 ( 108) C:\PROGRA~1\MOUSEW~1\SYSTEM\EM_EXEC.EXE
      size: 35328
      MD5: 57E2FB5840C197D2014DFC9B4F820F19
      PID: 2232 ( 108) C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
      size: 108160
      MD5: 26A15D8D5C81A3B053E82B01A5D8208E
      PID: 2256 ( 108) C:\WINDOWS\system32\atiptaxx.exe
      size: 245760
      MD5: B585D826D2D7DEE412BD0EB77FCB7CDF
      PID: 2292 ( 108) C:\Apps\ActivBoard\MMKeybd.exe
      size: 159744
      MD5: FDBA764CF4B999ED1CC17EC33520D772
      PID: 2356 ( 108) C:\WINDOWS\system32\ctfmon.exe
      size: 15360
      MD5: 64E41E8FEE655B03E3F19DED21BA5118
      PID: 2416 ( 108) C:\Program Files\Creative\Shared Files\CamTray.exe
      size: 299008
      MD5: 2AA7EE2774035050512F438C2DF052A2
      PID: 2444 (2340) C:\PROGRA~1\Wanadoo\TaskBarIcon.exe
      size: 61440
      MD5: F9710A77123CC3FD09D062F2AF33E473
      PID: 2456 ( 108) C:\Program Files\Calendrier\Cld2000.exe
      size: 3022336
      MD5: 49828A616EE805E2A32129E2A00EDB89
      PID: 2464 (2292) C:\Apps\ActivBoard\TrayMon.exe
      size: 110592
      MD5: 2F2E192234E49E3DE31F22F6D61E4B81
      PID: 2496 (2292) C:\Apps\ActivBoard\OSD.exe
      size: 90112
      MD5: 9F7128F4B6CB982DFAE6AF879CB924FA
      PID: 2536 (2472) C:\PROGRA~1\Wanadoo\GestionnaireInternet.exe
      size: 819200
      MD5: 5D17C66B5620142A06B7391BE20C0476
      PID: 2544 ( 108) C:\Program Files\FotoStation Easy\FotoStation Easy AutoLaunch.exe
      size: 49152
      MD5: 3A5FF0123A2C033284D70D9FF828648E
      PID: 2560 ( 108) C:\Program Files\Nikon\NkView5\NkvMon.exe
      size: 233472
      MD5: 44A76CAB8C48F2D76DEF33AD20517115
      PID: 2608 ( 648) C:\WINDOWS\System32\svchost.exe
      size: 14336
      MD5: 2979B03D5382A602623C0535B16AB9C0
      PID: 2628 ( 108) C:\WINDOWS\system32\ntvdm.exe
      size: 420864
      MD5: 5827B14B4E84DA4144D8215883E05177
      PID: 2672 (2536) C:\PROGRA~1\Wanadoo\ComComp.exe
      size: 249856
      MD5: 5D589D0436C4C2D285B3418E79E78A21
      PID: 2812 (2536) C:\PROGRA~1\Wanadoo\Toaster.exe
      size: 69632
      MD5: C2D1BD2B433571ECEC29924ACE5D7C62
      PID: 2820 (2536) C:\PROGRA~1\Wanadoo\Inactivity.exe
      size: 32768
      MD5: 5F6DBF75D05462EED92B42376E89D9FE
      PID: 2828 (2536) C:\PROGRA~1\Wanadoo\PollingModule.exe
      size: 69632
      MD5: EDF02F58940FD56C12357D150F5397C0
      PID: 2860 ( 812) C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE
      size: 45056
      MD5: 68E404DB5525373FE0554ED2607F0C82
      PID: 3076 (2672) C:\PROGRA~1\Wanadoo\Watch.exe
      size: 20480
      MD5: 9A29592CD135F6262C429152F7A8DD4A
      PID: 3952 ( 108) C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe
      size: 4393096
      MD5: 09CA174A605B480318731E691DC98539
      PID: 912 ( 108) C:\Program Files\Internet Explorer\iexplore.exe
      size: 337920
      MD5: 3B0833A3FC5E2E79E4E6FFCC0C6911FB
      PID: 4 ( 0) System


      --- Browser start & search pages list ---
      Spybot - Search & Destroy browser pages report, 13/04/2007 15:48:44

      HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Local Page
      C:\WINDOWS\system32\blank.htm
      HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Search Page
      https://www.google.com/?gws_rd=ssl
      HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Search Bar
      http://www.google.com/toolbar/ie8/sidebar.html
      HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Start Page
      https://www.orange.fr/portail
      HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search\SearchAssistant
      http://www.bing.com/spresults.aspx
      HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl\@
      http://home.microsoft.com/access/autosearch.asp?p=%s
      HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Local Page
      %SystemRoot%\system32\blank.htm
      HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Search Page
      https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
      HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Start Page
      http://go.microsoft.com/fwlink/?LinkId=55245&clcid={SUB_CLCID}
      HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Page_URL
      https://www.msn.com/fr-fr/
      HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Search_URL
      https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
      HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\SearchAssistant
      http://www.google.com/toolbar/ie8/sidebar.html
      HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\CustomizeSearch
      https://www.bing.com/?toHttps=1&redig=8F3F334EA60E4B1CB4D040DCFE393A89{SUB_RFC1766}/srchasst/srchcust.htm


      --- Winsock Layered Service Provider list ---


      --- Uninstall list ---
      Ad-Aware SE Personal (Ad-Aware SE Personal)
      uninstall cmd: C:\PROGRA~1\Lavasoft\AD-AWA~2\UNWISE.EXE C:\PROGRA~1\Lavasoft\AD-AWA~2\INSTALL.LOG
      publisher: Lavasoft
      help link: http://www.lavasoft.de

      (AddressBook)

      Adobe Acrobat 4.0 4.0 (Adobe Acrobat 4.0)
      version (major): 4
      install location: C:\Program Files\Adobe\Acrobat 4.0
      install source: C:\Documents and Settings\jocelyne\Local Settings\Temp\pftC~tmp\
      uninstall cmd: C:\WINDOWS\ISUN040C.EXE -f"C:\Program Files\Fichiers communs\Adobe\Acrobat 4.0\NT\Uninst.isu" -c"C:\Program Files\Fichiers communs\Adobe\Acrobat 4.0\NT\Uninst.dll"
      publisher: Adobe Systems, Inc.
      help link: https://acrobat.adobe.com/us/en/acrobat.html

      5.0 (Adobe Acrobat 5.0)
      version (major): 5
      install location: C:\apps\Adobe\Acrobat 5.0
      install source: C:\Documents and Settings\jocelyne\Local Settings\Temp\pftE~tmp\
      uninstall cmd: C:\WINDOWS\ISUN040C.EXE -f"C:\Program Files\Fichiers communs\Adobe\Acrobat 5.0\NT\Uninst.isu" -c"C:\Program Files\Fichiers communs\Adobe\Acrobat 5.0\NT\Uninst.dll"
      publisher: Adobe Systems, Inc.
      help link: https://acrobat.adobe.com/us/en/acrobat.html

      ATI Display Driver (ATI Display Driver)
      uninstall cmd: rundll32 C:\WINDOWS\system32\atiiiexx.dll,_InfEngUnInstallINFFile_RunDLL@16 -force_restart -flags:0x2010001 -inf_class:DISPLAY -clean

      avast! Antivirus 4.7 (avast!)
      version (major): 4
      version (minor): 7
      install location: C:\PROGRA~1\ALWILS~1\Avast4
      install source: C:\PROGRA~1\ALWILS~1\Avast4\setup
      uninstall cmd: rundll32 C:\PROGRA~1\ALWILS~1\Avast4\Setup\setiface.dll,RunSetup
      publisher: Alwil Software
      help link: https://www.avast.com/fr-fr/index

      (BackWeb-4448364 Uninstaller)
      uninstall cmd: C:\WINDOWS\BWUnin-6.1.0.145L.exe -AppId 4448364

      Birds on a Wire Deluxe 1.0.0 (Birds on a Wire Deluxe)
      install location: C:\Program Files\Zylom Games\
      uninstall cmd: "C:\Program Files\Zylom Games\Birds on a Wire Deluxe\GameInstlr.exe" --uninstall UnInstall.log
      publisher: Zylom Games

      (Branding)

      Calendrier Xtra v8.02 (Calendrier 2000_is1)
      install location: C:\Program Files\Calendrier\
      uninstall cmd: "C:\Program Files\Calendrier\unins000.exe"
      publisher: XTRALOG
      help link: mailto:support@xtralog.com

      CCleaner (remove only) (CCleaner)
      uninstall cmd: "C:\Program Files\CCleaner\uninst.exe"

      CCM 2.0.5 (CommentCaMarche 2.0.5_is1)
      install location: C:\Program Files\CommentCaMarche\
      uninstall cmd: "C:\Program Files\CommentCaMarche\unins000.exe"
      publisher: PILLOU Jean-François
      help link: https://www.commentcamarche.net/

      (Conexant PCI Audio)
      uninstall cmd: CIAunwdm.exe

      (Connection Manager)

      Creative WebCam Instant Driver (1.03.02.0425) (Creative PD0620)
      uninstall cmd: C:\WINDOWS\CtDrvIns.exe -uninstall -script PD0620.uns -unsext NT -plugin P0620Pin.dll -pluginres CtCamPin.crl

      Creative Photo Manager (Creative Photo Manager)
      uninstall cmd: RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{513D9FB1-27A2-44E4-8F2D-77A6737921A5}\setup.exe" -l0x40c /remove

      Creative WebCam Center (Creative WebCam Center)
      uninstall cmd: RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{E5ABA5FD-EE3D-4F15-895D-B32321E6C96B}\setup.exe" -l0x40c /remove

      (DirectAnimation)

      (DirectDrawEx)

      Encyclopédie Hachette Multimédia (Encyclopédie Hachette Multimédia)
      uninstall cmd: C:\WINDOWS\unvise32.exe C:\program files\EHMINSTALL\uninstal.log

      EPSON Logiciel imprimante (EPSON Printer and Utilities)
      uninstall cmd: C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\EPUPDATE.EXE /R

      EPSON Scan (EPSON Scanner)
      uninstall cmd: C:\Program Files\epson\escndv\setup\setup.exe /r

      ESDX3800 Guide d'utilisation (ESDX3800 Guide d'utilisation)
      install location: C:\Program Files\EPSON\TPMANUAL\ESDX3800\USE_G
      uninstall cmd: C:\Program Files\EPSON\TPMANUAL\ESDX3800\USE_G\DOCUNINS.EXE

      (expinst)

      (Fontcore)

      Gestionnaire Internet (GestionnaireInternet.exe)
      uninstall cmd: C:\PROGRA~1\Wanadoo\uninstall.exe

      Guide ES C40 C20 (Guide ES C40 C20)
      uninstall cmd: C:\WINDOWS\unin040c.exe -f"C:\Program Files\EPSON\ESC40C20\DeIsL2.isu"

      (HandyBits EasyCrypto Deluxe)
      uninstall cmd: "C:\Program Files\Fichiers communs\Teknum Systems\tsUninst.exe" "C:\Program Files\HandyBits\EasyCrypto\HandyBits EasyCrypto Deluxe.del"

      HijackThis 1.99.1 1.99.1 (HijackThis)
      uninstall cmd: C:\DOCUME~1\jocelyne\LOCALS~1\Temp\Répertoire temporaire 1 pour hijackthis[1].zip\HijackThis.exe /uninstall
      publisher: Soeperman Enterprises Ltd.

      (ICW)

      (IE40)

      (IE4Data)

      (IE5BAKEX)

      Windows Internet Explorer 7 Beta 3 20060623.092706 (ie7beta3)
      install date: 20060805
      uninstall cmd: "C:\WINDOWS\ie7beta3\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/office/internet-explorer-help-23360e49-9cd3-4dda-ba52-705336cc0de2?ui=en-US&rs=en-001&ad=US

      (IEData)

      (IEREADME)

      5.2.5.2598 (IncrediMail)
      publisher: IncrediMail Ltd.
      help link: http://help.incredimail.com/english/help/index.html

      (InstallShield Uninstall Information)

      EPSON Attach To Email 1.01.0000 (InstallShield_{20C45B32-5AB6-46A4-94EF-58950CAF05E5})
      version: 16842752
      version (major): 1
      version (minor): 1
      estimated size: 1108
      install date: 20060329
      install location: C:\Program Files\EPSON\Creativity Suite\Attach To Email\
      install source: D:\COMMON\CreativitySuite\AttachToEmail\
      uninstall cmd: C:\Program Files\Fichiers communs\InstallShield\Driver\8\Intel 32\IDriver.exe /M{20C45B32-5AB6-46A4-94EF-58950CAF05E5} /l1033 ADDREMOVEDLG
      publisher: SEIKO EPSON
      comments: Attach To Email - Email support app
      help link: https://epson.com/

      Le Seigneur des Anneaux: La Communauté de L'Anneau 1.01.0453 (InstallShield_{49C98C60-BAC3-4C92-AF4F-E890FD312D60})
      version: 16843205
      version (major): 1
      version (minor): 1
      estimated size: 784181
      install date: 20030707
      install source: Q:\
      uninstall cmd: C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{49C98C60-BAC3-4C92-AF4F-E890FD312D60}
      publisher: Nom de votre société
      comments: Vos remarques
      contact: Service support clientèle
      help link: http://www.votresociété.com/aide
      help telephone: +1-555-555-4505

      InterActual Player (InterActual Player)
      uninstall cmd: C:\Program Files\InterActual\InterActual Player\inuninst.exe

      WordBiz version 1.8 1.8 (Internet Scrabble Club_is1)
      install location: C:\Program Files\WordBiz\
      uninstall cmd: "C:\Program Files\WordBiz\unins000.exe"
      publisher: Internet Scrabble Club

      Java Runtime Environment 1.1 (JRE 1.1)
      uninstall cmd: C:\WINDOWS\uninst.exe -f"C:\Program Files\JavaSoft\JRE\1.1\lib\DeIsL1.isu"

      Correctif Windows XP - KB834707 20040929.110854 (KB834707)
      uninstall cmd: C:\WINDOWS\$NtUninstallKB834707$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/834707

      Correctif Windows XP - KB867282 20050127.090417 (KB867282)
      uninstall cmd: C:\WINDOWS\$NtUninstallKB867282$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/867282

      Microsoft Data Access Components KB870669 (KB870669)
      uninstall cmd: C:\WINDOWS\muninst.exe C:\WINDOWS\INF\KB870669.inf
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us

      Correctif Windows XP - KB873333 20050114.005213 (KB873333)
      uninstall cmd: C:\WINDOWS\$NtUninstallKB873333$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/873333/ms05-012-vulnerability-in-ole-and-com-could-allow-remote-code-executio

      Correctif Windows XP - KB873339 20041117.092459 (KB873339)
      uninstall cmd: C:\WINDOWS\$NtUninstallKB873339$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/873339

      Mise à jour de sécurité pour Windows XP (KB883939) 1 (KB883939)
      install date: 20050703
      uninstall cmd: "C:\WINDOWS\$NtUninstallKB883939$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/883939

      (KB884016)

      Correctif Windows XP - KB885250 20050118.202711 (KB885250)
      uninstall cmd: C:\WINDOWS\$NtUninstallKB885250$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/885250

      Correctif Windows XP - KB885835 20041027.181713 (KB885835)
      uninstall cmd: C:\WINDOWS\$NtUninstallKB885835$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/885835/ms04-044-vulnerabilities-in-windows-kernel-and-lsass-could-allow-eleva

      Correctif Windows XP - KB885836 20041028.173203 (KB885836)
      uninstall cmd: C:\WINDOWS\$NtUninstallKB885836$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/885836/ms04-041-a-vulnerability-in-wordpad-could-allow-code-execution

      Correctif Windows XP - KB886185 20041021.090540 (KB886185)
      uninstall cmd: C:\WINDOWS\$NtUninstallKB886185$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/886185

      Correctif Windows XP - KB887472 20041014.162858 (KB887472)
      uninstall cmd: C:\WINDOWS\$NtUninstallKB887472$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/887472

      Correctif Windows XP - KB887742 20041103.095002 (KB887742)
      uninstall cmd: C:\WINDOWS\$NtUninstallKB887742$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/887742

      Correctif Windows XP - KB888113 20041116.131036 (KB888113)
      uninstall cmd: C:\WINDOWS\$NtUninstallKB888113$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/888113

      Correctif Windows XP - KB888302 20041207.111426 (KB888302)
      uninstall cmd: C:\WINDOWS\$NtUninstallKB888302$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/888302

      Mise à jour de sécurité pour Windows XP (KB890046) 1 (KB890046)
      install date: 20050616
      uninstall cmd: "C:\WINDOWS\$NtUninstallKB890046$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/890046

      Correctif Windows XP - KB890047 20041221.124506 (KB890047)
      uninstall cmd: C:\WINDOWS\$NtUninstallKB890047$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/890047

      Correctif Windows XP - KB890175 20041201.233338 (KB890175)
      uninstall cmd: C:\WINDOWS\$NtUninstallKB890175$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/890175/ms05-001-vulnerability-in-html-help-could-allow-code-execution

      Correctif Windows XP - KB890859 1 (KB890859)
      install date: 20050413
      uninstall cmd: "C:\WINDOWS\$NtUninstallKB890859$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/890859

      Correctif Windows XP - KB890923 1 (KB890923)
      install date: 20050413
      uninstall cmd: "C:\WINDOWS\$NtUninstallKB890923$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/890923

      Correctif Windows XP - KB891781 20050110.165439 (KB891781)
      uninstall cmd: C:\WINDOWS\$NtUninstallKB891781$\spuninst\spuninst.exe
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/891781

      Correctif Windows XP - KB893066 1 (KB893066)
      install date: 20050413
      uninstall cmd: "C:\WINDOWS\$NtUninstallKB893066$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/893066/ms05-019-vulnerabilities-in-tcp-ip-could-allow-remote-code-execution-a

      Correctif Windows XP - KB893086 1 (KB893086)
      install date: 20050413
      uninstall cmd: "C:\WINDOWS\$NtUninstallKB893086$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/893086

      Mise à jour de sécurité pour Windows XP (KB893756) 1 (KB893756)
      install date: 20050812
      uninstall cmd: "C:\WINDOWS\$NtUninstallKB893756$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/893756

      Windows Installer 3.1 (KB893803) 3.1 (KB893803)
      uninstall cmd: "C:\WINDOWS\$MSI31Uninstall_KB893803$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/893803/windows-installer-3-1-v2-3-1-4000-2435-is-available

      Windows Installer 3.1 (KB893803) 3.1 (KB893803v2)
      uninstall cmd: "C:\WINDOWS\$MSI31Uninstall_KB893803v2$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/893803/windows-installer-3-1-v2-3-1-4000-2435-is-available

      Mise à jour pour Windows XP (KB894391) 1 (KB894391)
      install date: 20050725
      uninstall cmd: "C:\WINDOWS\$NtUninstallKB894391$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/894391/

      Mise à jour de sécurité pour Windows XP (KB896358) 1 (KB896358)
      install date: 20050616
      uninstall cmd: "C:\WINDOWS\$NtUninstallKB896358$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/896358/ms05-026-a-vulnerability-in-html-help-could-allow-remote-code-executio

      Mise à jour de sécurité pour Windows XP (KB896422) 1 (KB896422)
      install date: 20050703
      uninstall cmd: "C:\WINDOWS\$NtUninstallKB896422$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/896422/ms05-027-vulnerability-in-server-message-block-could-allow-remote-code

      Mise à jour de sécurité pour Windows XP (KB896423) 1 (KB896423)
      install date: 20050812
      uninstall cmd: "C:\WINDOWS\$NtUninstallKB896423$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/windows?ui=en-US&rs=en-001&ad=US

      Mise à jour de sécurité pour Windows XP (KB896424) 1 (KB896424)
      install date: 20051110
      uninstall cmd: "C:\WINDOWS\$NtUninstallKB896424$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/896424

      Mise à jour de sécurité pour Windows XP (KB896428) 1 (KB896428)
      install date: 20050616
      uninstall cmd: "C:\WINDOWS\$NtUninstallKB896428$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/896428

      Mise à jour de sécurité pour Windows XP (KB896688) 1 (KB896688)
      install date: 20051019
      uninstall cmd: "C:\WINDOWS\$NtUninstallKB896688$\spuninst\spuninst.exe"
      publisher: Microsoft Corporation
      help link: https://support.microsoft.com/en-us/help/896688/ms05-052-cumulative-security-update-for-internet-explorer

      Mise à jour pour Windows XP
      0
  7. Regis59 Messages postés 21143 Date d'inscription   Statut Contributeur sécurité Dernière intervention   1 349
     
    Salut

    Tu as bien executé ce qui était demandé?

    a+
    0
  8. line6 Messages postés 159 Statut Membre 31
     
    oui, ,j'ai exécuté à la lettre d'ailleurs ça a bien fonctionné, pourquoi ??
    0
  9. Regis59 Messages postés 21143 Date d'inscription   Statut Contributeur sécurité Dernière intervention   1 349
     
    Re,

    Ok, corrige les probleme de spybot et remet un rapport spybot s il est pas clean !

    a+
    0
    1. line6 Messages postés 159 Statut Membre 31
       
      j'avais corriger les problèmes en son temps, mais maintenant les fichiers sont dans la sauvegarde comme puis-je faire pour te les coller ???
      0
  10. Regis59 Messages postés 21143 Date d'inscription   Statut Contributeur sécurité Dernière intervention   1 349
     
    Supprime les elements de la sauvegarde !
    Ensuite, relance un scan de spybot et dis moi si c est clean !
    Sinon, tu me met le rapport, ok?
    0
  11. line6 Messages postés 159 Statut Membre 31
     
    ouuuuuuuups excuses moi, je suis partie en congés et suis revenue le 25avril et n'ai plus consulté ici....je viens de le faire seulement .....pas eu beaucoup de temps , dès que je peux je regarde et te tiens au courant, encore merci à toi......
    0
  12. Regis59 Messages postés 21143 Date d'inscription   Statut Contributeur sécurité Dernière intervention   1 349
     
    COUCOU

    pas de soucis lol

    A tres vite.
    0
  13. line6 Messages postés 159 Statut Membre 31
     
    Et bien ce fût long, mais bon comme on dit, mon rapport est clean, un grand merci à toi et au plaisir.............
    0
  14. Regis59 Messages postés 21143 Date d'inscription   Statut Contributeur sécurité Dernière intervention   1 349
     
    lol D accord

    content pour toi

    a+
    0