Je pense avoir des problemes de demarrage

noudi -  
 noudi -
Bonjour,
je pense avoir des problemes de demarrage pouvez-vous l'analyse mon log run

merci d'avance pour touts cela qui vont repondres

Runscanner logfile http://www.runscanner.net

* = authenticode signed file
- = file not found

000 General info
----------------
Computer name : NOM-641695C7437
Creation time : 19/11/2007 07:45:15
Hosts <> 127.0.0.1 : 0
Hosts file location : %SystemRoot%\System32\drivers\etc
IE version : 6.0.2900.2180
OS : Microsoft Windows XP
OS Build : 2600
OS SP : Service Pack 2
RunScanner Version : 1.0.3.0
Type of scan : Full scan
User Language : Français (France)
User rights : Administrator
Windows folder : C:\WINDOWS

001 Running processes
---------------------
c:\program files\avira\antivir personaledition classic\avguard.exe (Avira GmbH)
c:\program files\avira\antivir personaledition classic\sched.exe (Avira GmbH)
c:\program files\avira\antivir personaledition classic\avgnt.exe (Avira GmbH)
c:\program files\ati technologies\ati control panel\atiptaxx.exe (ATI Technologies, Inc.)
* c:\progra~1\mozill~1\firefox.exe (Mozilla Corporation)
* c:\program files\java\jre1.6.0_03\bin\jusched.exe (Sun Microsystems, Inc.)
* c:\windows\system32\ps2.exe (Hewlett-Packard Company)
* c:\docume~1\hp_pro~1\locals~1\temp\rar$ex00.062\runscanner.exe (Runscanner.net)
c:\windows\system32\keyhook.exe (Silicon Integrated Systems Corporation)
* c:\program files\sygate\spf\smc.exe (Sygate Technologies, Inc.)
* c:\program files\spybot - search & destroy\teatimer.exe (Safer Networking Limited)
c:\program files\winrar\winrar.exe

002 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run (+subkeys)
-----------------------------------------------------------------
c:\program files\ati technologies\ati control panel\atiptaxx.exe (ATI Technologies, Inc.)
c:\program files\avira\antivir personaledition classic\avgnt.exe (Avira GmbH)
* c:\windows\system32\ps2.exe (Hewlett-Packard Company)
c:\windows\sminst\recguard.exe
c:\windows\system32\keyhook.exe (Silicon Integrated Systems Corporation)
* c:\progra~1\sygate\spf\smc.exe (Sygate Technologies, Inc.)
* c:\program files\java\jre1.6.0_03\bin\jusched.exe (Sun Microsystems, Inc.)

003 HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run (+subkeys)
-----------------------------------------------------------------
* c:\program files\spybot - search & destroy\teatimer.exe (Safer Networking Limited)

010 HKLM\SYSTEM\CurrentControlSet\Services (Services)
-----------------------------------------------------
c:\program files\avira\antivir personaledition classic\avguard.exe (AntiVir PersonalEdition Classic Guard)
c:\program files\avira\antivir personaledition classic\sched.exe (AntiVir PersonalEdition Classic Scheduler)
* C:\WINDOWS\system32\ati2evxx.exe (ati2evxx.exe)
c:\program files\ipod\bin\ipodservice.exe (iPod Service)
C:\WINDOWS\microsoft.net\framework\v1.1.4322\aspnet_state.exe (Service d'état ASP.NET)
* c:\program files\sygate\spf\smc.exe (Sygate Personal Firewall)

011 HKLM\SYSTEM\CurrentControlSet\Services (drivers)
----------------------------------------------------
* c:\program files\avira\antivir personaledition classic\avgio.sys (avgio)
* C:\WINDOWS\system32\drivers\avipbb.sys (avipbb)
* C:\WINDOWS\system32\drivers\gearaspiwdm.sys (GEAR CDRom Filter)
C:\WINDOWS\system32\drivers\iviaspi.sys (IVI ASPI Shell)
C:\WINDOWS\system32\drivers\pfc.sys (Padus ASPI Shell)
* C:\WINDOWS\system32\drivers\hdaudbus.sys (Pilote de bus Microsoft UAA pour High Definition Audio)
* C:\WINDOWS\system32\drivers\ptilink.sys (Pilote de liaison parallèle directe)
C:\WINDOWS\system32\drivers\tcpip.sys (Pilote du protocole TCP/IP)
* C:\WINDOWS\system32\drivers\ps2.sys (PS2)
C:\WINDOWS\system32\drivers\pxhelp20.sys (PxHelp20)
* C:\WINDOWS\system32\drivers\r8139n51.sys (Realtek RTL8139/810x Family Fast Ethernet NIC NT Driver)
* c:\windows\system32\drivers\symredrv.sys (Redirector Filter)
* C:\WINDOWS\system32\drivers\secdrv.sys (Secdrv)
* C:\WINDOWS\system32\drivers\rtkhdaud.sys (Service for Realtek HD Audio (WDM))
* C:\WINDOWS\system32\drivers\sisagpx.sys (SiS AGP Filter)
* C:\WINDOWS\system32\drivers\srvkp.sys (SiS VGA Driver Manager)
* C:\WINDOWS\system32\drivers\ssmdrv.sys (ssmdrv)
C:\WINDOWS\system32\drivers\sfdrv01.sys (StarForce Protection Environment Driver (version 1.x))
* C:\WINDOWS\system32\drivers\sfdrv01a.sys (StarForce Protection Environment Driver (version 1.x.a))
* C:\WINDOWS\system32\drivers\sfhlp02.sys (StarForce Protection Helper Driver (version 2.x))
C:\WINDOWS\system32\drivers\sfsync02.sys (StarForce Protection Synchronization Driver (version 2.x))
* c:\windows\system32\drivers\wg3n.sys (SyGate for NT, wg3n)
* c:\windows\system32\drivers\wg4n.sys (SyGate for NT, wg4n)
* c:\windows\system32\drivers\wg5n.sys (SyGate for NT, wg5n)
* c:\windows\system32\drivers\wg6n.sys (SyGate for NT, wg6n)
* c:\windows\system32\drivers\symtdi.sys (SYMTDI)
C:\WINDOWS\system32\drivers\teefer.sys (Teefer for NT)
* C:\WINDOWS\system32\drivers\viaagp1.sys (VIA AGP Filter)
* C:\WINDOWS\system32\drivers\vtmini.sys (viagfx)
* C:\WINDOWS\system32\drivers\ialmnt5.sys (Video)
* C:\WINDOWS\system32\drivers\ati2mtag.sys (Video)
* C:\WINDOWS\system32\drivers\sisgrp.sys (Video)
c:\windows\system32\drivers\wpsdrvnt.sys (wpsdrvnt)

030 HKLM\SOFTWARE\Classes\PROTOCOLS\Filter
------------------------------------------
c:\windows\system32\mscoree.dll (Microsoft Corporation) {1E66F26B-79EE-11D2-8710-00C04F79ED0D}
c:\windows\system32\mscoree.dll (Microsoft Corporation) {1E66F26B-79EE-11D2-8710-00C04F79ED0D}
c:\windows\system32\mscoree.dll (Microsoft Corporation) {1E66F26B-79EE-11D2-8710-00C04F79ED0D}

031 HKLM\SOFTWARE\Classes\PROTOCOLS\Handler
-------------------------------------------
c:\progra~1\fichie~1\system\oledb~1\msdaipp.dll (Microsoft Corporation) {E1D2BF42-A96B-11d1-9C6B-0000F875AC61}
c:\progra~1\fichie~1\system\oledb~1\msdaipp.dll (Microsoft Corporation) {E1D2BF42-A96B-11d1-9C6B-0000F875AC61}
c:\progra~1\fichie~1\system\oledb~1\msdaipp.dll (Microsoft Corporation) {E1D2BF40-A96B-11d1-9C6B-0000F875AC61}

035 HKLM-HKCU\SOFTWARE\Microsoft\Active Setup\Installed Components
------------------------------------------------------------------
c:\windows\system32\mscories.dll (Microsoft Corporation) {89B4C1CD-B018-4511-B0A1-5476DBF70820}

044 HKCU\Software\Microsoft\Internet Explorer\Toolbar\ShellBrowser
------------------------------------------------------------------
* c:\program files\norton antivirus\navshext.dll (Symantec Corporation) {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6}

052 HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
----------------------------------------------------------------------------------
* c:\program files\adobe\acrobat 6.0\reader\activex\acroiehelper.dll (Adobe Systems Incorporated) {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}
* c:\program files\java\jre1.6.0_03\bin\ssv.dll (Sun Microsystems, Inc.) {761497BB-D6F0-462C-B6EB-D4DAF1D92D43}
* c:\progra~1\spybot~1\sdhelper.dll (Safer Networking Limited) {53707962-6F74-2D53-2644-206D7942484F}

061 HKLM-HCKU\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved
---------------------------------------------------------------------------------
- deskpan.dll {42071714-76d4-11d1-8b24-00a0c9068ff3}
* c:\windows\system32\hticons.dll (Hilgraeve, Inc.) {88895560-9AA2-1069-930E-00AA0030EBC8}
c:\windows\system32\mscoree.dll (Microsoft Corporation) {1D2680C9-0E2A-469d-B787-065558BC7D43}
c:\program files\sonic recordnow!\shlext.dll {DEE12703-6333-4D4E-8F34-738C4DCC2E04}
c:\windows\system32\shellvrtf.dll (XSS) {7F67036B-66F1-411A-AD85-759FB9C5B0DB}
c:\program files\avira\antivir personaledition classic\shlext.dll (Avira GmbH) {45AC2688-0253-4ED8-97DE-B5370FA7D48A}
* c:\program files\real\realplayer\rpshell.dll (RealNetworks, Inc.) {F0CB00CD-5A07-4D91-97F5-A8C92CDA93E4}
c:\program files\winrar\rarext.dll {B41DB860-8EE4-11D2-9906-E49FADC173CA}

067 HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify
---------------------------------------------------------------------
* C:\WINDOWS\system32\ati2evxx.dll
* C:\WINDOWS\system32\igfxsrvc.dll (Intel Corporation)

100 Internet Explorer settings
------------------------------
CustomizeSearch HKLM : https://www.bing.com/?toHttps=1&redig=8F3F334EA60E4B1CB4D040DCFE393A89{SUB_RFC1766}/srchasst/srchcust.htm
Default_Page_URL HKCU : https://www.msn.com/fr-fr?cobrand=hp-desktop.msn.com&ocid=HPDHP&pc=HPDTDF
SearchAssistant HKLM : https://www.bing.com/?toHttps=1&redig=8F3F334EA60E4B1CB4D040DCFE393A89{SUB_RFC1766}/srchasst/srchasst.htm
ShellNext HKCU : https://www.msn.com/fr-fr?cobrand=hp-desktop.msn.com&ocid=HPDHP&pc=HPDTDF
Start Page HKCU : https://www.msn.com/fr-fr/?redirfallthru=http%3a%2f%2fwww.msn.fr%2fmeteo%2f%3f
Start Page HKLM : https://www.msn.com/fr-fr/

104 HKLM\Software\Microsoft\Code Store Database\Distribution Units
------------------------------------------------------------------
c:\windows\downlo~1\bitdef~1.ocx (SOFTWIN SRL ROMANIA) {80DD2229-B8E4-4C77-B72F-F22972D723EA}
* c:\program files\java\jre1.6.0_03\bin\npjpi160_03.dll (Sun Microsystems, Inc.) {8AD9C840-044E-11D1-B3E9-00805F499D93}
c:\program files\java\j2re1.4.2_03\bin\npjpi142_03.dll (JavaSoft / Sun Microsystems, Inc.) {CAFEEFAC-0014-0002-0003-ABCDEFFEDCBA}
* c:\program files\java\jre1.6.0_02\bin\npjpi160_02.dll (Sun Microsystems, Inc.) {CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA}
* c:\program files\java\jre1.6.0_03\bin\npjpi160_03.dll (Sun Microsystems, Inc.) {CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA}
* c:\program files\java\jre1.6.0_03\bin\npjpi160_03.dll (Sun Microsystems, Inc.) {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}

161 HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\System
------------------------------------------------------------------
dontdisplaylastusername : 0
shutdownwithoutlogon : 1
undockwithoutlogon : 1

170 HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2
------------------------------------------------------------------------
{e870e6c2-697e-11dc-804d-806d6172696f} : C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL Info.exe protect.ed 480 480
{e870e6c4-697e-11dc-804d-806d6172696f} : E:\AutoRun.exe

173 HKCR\*\shellex\ContextMenuHandlers
--------------------------------------
c:\program files\avira\antivir personaledition classic\shlext.dll (Avira GmbH) {45AC2688-0253-4ED8-97DE-B5370FA7D48A}
* c:\program files\norton antivirus\navshext.dll (Symantec Corporation) {5345A4D5-41EB-4A2F-9616-CE1D4F6C35B2}
c:\program files\winrar\rarext.dll {B41DB860-8EE4-11D2-9906-E49FADC173CA}
A voir également:

3 réponses

Le Con
 
T'as apparemment 3 Antivirus installés...Norton, BitDefender el l'autre Avira...Commence plutôt par ça...Norton n'est jamais en harmonie avectout autre Antivirus...
0
noudi
 
re j'ai effacer norton antivirus2004"c'est une version oem que j'ai" apres j'ai regarder sur msconfig et ya rien pas de norton et pas de bifender juste avira je re post un run merci de reprondre .
Runscanner logfile http://www.runscanner.net

* = authenticode signed file
- = file not found

000 General info
----------------
Computer name : NOM-641695C7437
Creation time : 19/11/2007 10:20:41
Hosts <> 127.0.0.1 : 0
Hosts file location : %SystemRoot%\System32\drivers\etc
IE version : 6.0.2900.2180
OS : Microsoft Windows XP
OS Build : 2600
OS SP : Service Pack 2
RunScanner Version : 1.0.3.0
Type of scan : Full scan
User Language : Français (France)
User rights : Administrator
Windows folder : C:\WINDOWS

001 Running processes
---------------------
c:\program files\avira\antivir personaledition classic\avguard.exe (Avira GmbH)
c:\program files\avira\antivir personaledition classic\sched.exe (Avira GmbH)
c:\program files\avira\antivir personaledition classic\avgnt.exe (Avira GmbH)
c:\program files\ati technologies\ati control panel\atiptaxx.exe (ATI Technologies, Inc.)
* c:\program files\mozilla firefox\firefox.exe (Mozilla Corporation)
* c:\program files\java\jre1.6.0_03\bin\jusched.exe (Sun Microsystems, Inc.)
c:\progra~1\agnitum\outpos~1.0\outpost.exe (Agnitum Ltd.)
* c:\windows\system32\ps2.exe (Hewlett-Packard Company)
* c:\docume~1\hp_pro~1\locals~1\temp\rar$ex00.704\runscanner.exe (Runscanner.net)
c:\windows\system32\keyhook.exe (Silicon Integrated Systems Corporation)
* c:\program files\spybot - search & destroy\teatimer.exe (Safer Networking Limited)
c:\program files\winrar\winrar.exe

002 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run (+subkeys)
-----------------------------------------------------------------
c:\program files\ati technologies\ati control panel\atiptaxx.exe (ATI Technologies, Inc.)
c:\program files\avira\antivir personaledition classic\avgnt.exe (Avira GmbH)
c:\program files\agnitum\outpost firewall 1.0\outpost.exe (Agnitum Ltd.)
c:\progra~1\agnitum\outpos~1.0\feedback.exe (Agnitum Ltd.)
* c:\windows\system32\ps2.exe (Hewlett-Packard Company)
c:\windows\sminst\recguard.exe
c:\windows\system32\keyhook.exe (Silicon Integrated Systems Corporation)
* c:\program files\java\jre1.6.0_03\bin\jusched.exe (Sun Microsystems, Inc.)

003 HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run (+subkeys)
-----------------------------------------------------------------
* c:\program files\spybot - search & destroy\teatimer.exe (Safer Networking Limited)

010 HKLM\SYSTEM\CurrentControlSet\Services (Services)
-----------------------------------------------------
c:\program files\avira\antivir personaledition classic\avguard.exe (AntiVir PersonalEdition Classic Guard)
c:\program files\avira\antivir personaledition classic\sched.exe (AntiVir PersonalEdition Classic Scheduler)
* C:\WINDOWS\system32\ati2evxx.exe (ati2evxx.exe)
c:\program files\ipod\bin\ipodservice.exe (iPod Service)
c:\progra~1\agnitum\outpos~1.0\outpost.exe (Outpost Firewall Service)
C:\WINDOWS\microsoft.net\framework\v1.1.4322\aspnet_state.exe (Service d'état ASP.NET)
- c:\program files\sygate\spf\smc.exe (smc.exe)

011 HKLM\SYSTEM\CurrentControlSet\Services (drivers)
----------------------------------------------------
* c:\program files\avira\antivir personaledition classic\avgio.sys (avgio)
* C:\WINDOWS\system32\drivers\avipbb.sys (avipbb)
* C:\WINDOWS\system32\drivers\gearaspiwdm.sys (GEAR CDRom Filter)
C:\WINDOWS\system32\drivers\iviaspi.sys (IVI ASPI Shell)
c:\progra~1\agnitum\outpos~1.0\kernel\2000\filtnt.sys (Outpost Firewall Kernel Driver)
c:\progra~1\agnitum\outpos~1.0\kernel\adblock.dll (Outpost Firewall PlugIn (ADBLOCK.DLL))
c:\progra~1\agnitum\outpos~1.0\kernel\arp.dll (Outpost Firewall PlugIn (ARP.DLL))
c:\progra~1\agnitum\outpos~1.0\kernel\content.dll (Outpost Firewall PlugIn (CONTENT.DLL))
c:\progra~1\agnitum\outpos~1.0\kernel\dnscache.dll (Outpost Firewall PlugIn (DNSCACHE.DLL))
c:\progra~1\agnitum\outpos~1.0\kernel\ftpfilt.dll (Outpost Firewall PlugIn (FTPFILT.DLL))
c:\progra~1\agnitum\outpos~1.0\kernel\htmlfilt.dll (Outpost Firewall PlugIn (HTMLFILT.DLL))
c:\progra~1\agnitum\outpos~1.0\kernel\httpfilt.dll (Outpost Firewall PlugIn (HTTPFILT.DLL))
c:\progra~1\agnitum\outpos~1.0\kernel\imapfilt.dll (Outpost Firewall PlugIn (IMAPFILT.DLL))
c:\progra~1\agnitum\outpos~1.0\kernel\mailfilt.dll (Outpost Firewall PlugIn (MAILFILT.DLL))
c:\progra~1\agnitum\outpos~1.0\kernel\nntpfilt.dll (Outpost Firewall PlugIn (NNTPFILT.DLL))
c:\progra~1\agnitum\outpos~1.0\kernel\pop3filt.dll (Outpost Firewall PlugIn (POP3FILT.DLL))
c:\progra~1\agnitum\outpos~1.0\kernel\protect.dll (Outpost Firewall PlugIn (PROTECT.DLL))
c:\progra~1\agnitum\outpos~1.0\kernel\secret.dll (Outpost Firewall PlugIn (SECRET.DLL))
C:\WINDOWS\system32\drivers\pfc.sys (Padus ASPI Shell)
* C:\WINDOWS\system32\drivers\hdaudbus.sys (Pilote de bus Microsoft UAA pour High Definition Audio)
* C:\WINDOWS\system32\drivers\ptilink.sys (Pilote de liaison parallèle directe)
C:\WINDOWS\system32\drivers\tcpip.sys (Pilote du protocole TCP/IP)
* C:\WINDOWS\system32\drivers\ps2.sys (PS2)
C:\WINDOWS\system32\drivers\pxhelp20.sys (PxHelp20)
* C:\WINDOWS\system32\drivers\r8139n51.sys (Realtek RTL8139/810x Family Fast Ethernet NIC NT Driver)
* c:\windows\system32\drivers\symredrv.sys (Redirector Filter)
* C:\WINDOWS\system32\drivers\secdrv.sys (Secdrv)
* C:\WINDOWS\system32\drivers\rtkhdaud.sys (Service for Realtek HD Audio (WDM))
* C:\WINDOWS\system32\drivers\sisagpx.sys (SiS AGP Filter)
* C:\WINDOWS\system32\drivers\srvkp.sys (SiS VGA Driver Manager)
* C:\WINDOWS\system32\drivers\ssmdrv.sys (ssmdrv)
C:\WINDOWS\system32\drivers\sfdrv01.sys (StarForce Protection Environment Driver (version 1.x))
* C:\WINDOWS\system32\drivers\sfdrv01a.sys (StarForce Protection Environment Driver (version 1.x.a))
* C:\WINDOWS\system32\drivers\sfhlp02.sys (StarForce Protection Helper Driver (version 2.x))
C:\WINDOWS\system32\drivers\sfsync02.sys (StarForce Protection Synchronization Driver (version 2.x))
* c:\windows\system32\drivers\wg3n.sys (SyGate for NT, wg3n)
* c:\windows\system32\drivers\wg4n.sys (SyGate for NT, wg4n)
* c:\windows\system32\drivers\wg5n.sys (SyGate for NT, wg5n)
* c:\windows\system32\drivers\wg6n.sys (SyGate for NT, wg6n)
* c:\windows\system32\drivers\symtdi.sys (SYMTDI)
C:\WINDOWS\system32\drivers\teefer.sys (Teefer for NT)
* C:\WINDOWS\system32\drivers\viaagp1.sys (VIA AGP Filter)
* C:\WINDOWS\system32\drivers\vtmini.sys (viagfx)
* C:\WINDOWS\system32\drivers\ati2mtag.sys (Video)
* C:\WINDOWS\system32\drivers\ialmnt5.sys (Video)
* C:\WINDOWS\system32\drivers\sisgrp.sys (Video)
c:\windows\system32\drivers\wpsdrvnt.sys (wpsdrvnt)

030 HKLM\SOFTWARE\Classes\PROTOCOLS\Filter
------------------------------------------
c:\windows\system32\mscoree.dll (Microsoft Corporation) {1E66F26B-79EE-11D2-8710-00C04F79ED0D}
c:\windows\system32\mscoree.dll (Microsoft Corporation) {1E66F26B-79EE-11D2-8710-00C04F79ED0D}
c:\windows\system32\mscoree.dll (Microsoft Corporation) {1E66F26B-79EE-11D2-8710-00C04F79ED0D}

031 HKLM\SOFTWARE\Classes\PROTOCOLS\Handler
-------------------------------------------
c:\progra~1\fichie~1\system\oledb~1\msdaipp.dll (Microsoft Corporation) {E1D2BF42-A96B-11d1-9C6B-0000F875AC61}
c:\progra~1\fichie~1\system\oledb~1\msdaipp.dll (Microsoft Corporation) {E1D2BF42-A96B-11d1-9C6B-0000F875AC61}
c:\progra~1\fichie~1\system\oledb~1\msdaipp.dll (Microsoft Corporation) {E1D2BF40-A96B-11d1-9C6B-0000F875AC61}

035 HKLM-HKCU\SOFTWARE\Microsoft\Active Setup\Installed Components
------------------------------------------------------------------
c:\windows\system32\mscories.dll (Microsoft Corporation) {89B4C1CD-B018-4511-B0A1-5476DBF70820}

052 HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
----------------------------------------------------------------------------------
* c:\program files\adobe\acrobat 6.0\reader\activex\acroiehelper.dll (Adobe Systems Incorporated) {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}
* c:\program files\java\jre1.6.0_03\bin\ssv.dll (Sun Microsystems, Inc.) {761497BB-D6F0-462C-B6EB-D4DAF1D92D43}
* c:\progra~1\spybot~1\sdhelper.dll (Safer Networking Limited) {53707962-6F74-2D53-2644-206D7942484F}

061 HKLM-HCKU\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved
---------------------------------------------------------------------------------
- deskpan.dll {42071714-76d4-11d1-8b24-00a0c9068ff3}
* c:\windows\system32\hticons.dll (Hilgraeve, Inc.) {88895560-9AA2-1069-930E-00AA0030EBC8}
c:\windows\system32\mscoree.dll (Microsoft Corporation) {1D2680C9-0E2A-469d-B787-065558BC7D43}
c:\program files\sonic recordnow!\shlext.dll {DEE12703-6333-4D4E-8F34-738C4DCC2E04}
c:\windows\system32\shellvrtf.dll (XSS) {7F67036B-66F1-411A-AD85-759FB9C5B0DB}
c:\program files\avira\antivir personaledition classic\shlext.dll (Avira GmbH) {45AC2688-0253-4ED8-97DE-B5370FA7D48A}
* c:\program files\real\realplayer\rpshell.dll (RealNetworks, Inc.) {F0CB00CD-5A07-4D91-97F5-A8C92CDA93E4}
c:\program files\winrar\rarext.dll {B41DB860-8EE4-11D2-9906-E49FADC173CA}

067 HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify
---------------------------------------------------------------------
* C:\WINDOWS\system32\ati2evxx.dll
* C:\WINDOWS\system32\igfxsrvc.dll (Intel Corporation)

100 Internet Explorer settings
------------------------------
CustomizeSearch HKLM : https://www.bing.com/?toHttps=1&redig=8F3F334EA60E4B1CB4D040DCFE393A89{SUB_RFC1766}/srchasst/srchcust.htm
Default_Page_URL HKCU : https://www.msn.com/fr-fr?cobrand=hp-desktop.msn.com&ocid=HPDHP&pc=HPDTDF
SearchAssistant HKLM : https://www.bing.com/?toHttps=1&redig=8F3F334EA60E4B1CB4D040DCFE393A89{SUB_RFC1766}/srchasst/srchasst.htm
ShellNext HKCU : https://www.msn.com/fr-fr?cobrand=hp-desktop.msn.com&ocid=HPDHP&pc=HPDTDF
Start Page HKCU : https://www.msn.com/fr-fr/?redirfallthru=http%3a%2f%2fwww.msn.fr%2fmeteo%2f%3f
Start Page HKLM : https://www.msn.com/fr-fr/

104 HKLM\Software\Microsoft\Code Store Database\Distribution Units
------------------------------------------------------------------
c:\windows\downlo~1\bitdef~1.ocx (SOFTWIN SRL ROMANIA) {80DD2229-B8E4-4C77-B72F-F22972D723EA}
* c:\program files\java\jre1.6.0_03\bin\npjpi160_03.dll (Sun Microsystems, Inc.) {8AD9C840-044E-11D1-B3E9-00805F499D93}
c:\program files\java\j2re1.4.2_03\bin\npjpi142_03.dll (JavaSoft / Sun Microsystems, Inc.) {CAFEEFAC-0014-0002-0003-ABCDEFFEDCBA}
* c:\program files\java\jre1.6.0_02\bin\npjpi160_02.dll (Sun Microsystems, Inc.) {CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA}
* c:\program files\java\jre1.6.0_03\bin\npjpi160_03.dll (Sun Microsystems, Inc.) {CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA}
* c:\program files\java\jre1.6.0_03\bin\npjpi160_03.dll (Sun Microsystems, Inc.) {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}

120 Domain/DNS hijacking
------------------------
NameServer {2B25E8F5-5BEB-4938-B916-B6237A295B41} : 81.220.255.4,80.236.0.68

121 HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\AppInit_DLLs
--------------------------------------------------------------------------
c:\progra~1\agnitum\outpos~1.0\wl_hook.dll (Agnitum Ltd.)

161 HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\System
------------------------------------------------------------------
dontdisplaylastusername : 0
shutdownwithoutlogon : 1
undockwithoutlogon : 1

170 HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2
------------------------------------------------------------------------
{e870e6c2-697e-11dc-804d-806d6172696f} : C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL Info.exe protect.ed 480 480
{e870e6c4-697e-11dc-804d-806d6172696f} : E:\AutoRun.exe

173 HKCR\*\shellex\ContextMenuHandlers
--------------------------------------
c:\progra~1\agnitum\outpos~1.0\op_shell.dll (Agnitum Ltd.) {33C9E362-3EDA-4930-8AFE-5DA39A8BB77A}
c:\program files\avira\antivir personaledition classic\shlext.dll (Avira GmbH) {45AC2688-0253-4ED8-97DE-B5370FA7D48A}
GUID / CLSID not found {5345A4D5-41EB-4A2F-9616-CE1D4F6C35B2}
c:\program files\winrar\rarext.dll {B41DB860-8EE4-11D2-9906-E49FADC173CA}
0
noudi
 
Bonjour,
donc j'ai bien effacer norton, et je pense qu'il ya que avira je post le run pouvez-vous me dire si j'ai des probleme de demarrage? merci de me reprondre

Runscanner logfile http://www.runscanner.net

* = authenticode signed file
- = file not found

000 General info
----------------
Computer name : NOM-641695C7437
Creation time : 19/11/2007 10:20:41
Hosts <> 127.0.0.1 : 0
Hosts file location : %SystemRoot%\System32\drivers\etc
IE version : 6.0.2900.2180
OS : Microsoft Windows XP
OS Build : 2600
OS SP : Service Pack 2
RunScanner Version : 1.0.3.0
Type of scan : Full scan
User Language : Français (France)
User rights : Administrator
Windows folder : C:\WINDOWS

001 Running processes
---------------------
c:\program files\avira\antivir personaledition classic\avguard.exe (Avira GmbH)
c:\program files\avira\antivir personaledition classic\sched.exe (Avira GmbH)
c:\program files\avira\antivir personaledition classic\avgnt.exe (Avira GmbH)
c:\program files\ati technologies\ati control panel\atiptaxx.exe (ATI Technologies, Inc.)
* c:\program files\mozilla firefox\firefox.exe (Mozilla Corporation)
* c:\program files\java\jre1.6.0_03\bin\jusched.exe (Sun Microsystems, Inc.)
c:\progra~1\agnitum\outpos~1.0\outpost.exe (Agnitum Ltd.)
* c:\windows\system32\ps2.exe (Hewlett-Packard Company)
* c:\docume~1\hp_pro~1\locals~1\temp\rar$ex00.704\runscanner.exe (Runscanner.net)
c:\windows\system32\keyhook.exe (Silicon Integrated Systems Corporation)
* c:\program files\spybot - search & destroy\teatimer.exe (Safer Networking Limited)
c:\program files\winrar\winrar.exe

002 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run (+subkeys)
-----------------------------------------------------------------
c:\program files\ati technologies\ati control panel\atiptaxx.exe (ATI Technologies, Inc.)
c:\program files\avira\antivir personaledition classic\avgnt.exe (Avira GmbH)
c:\program files\agnitum\outpost firewall 1.0\outpost.exe (Agnitum Ltd.)
c:\progra~1\agnitum\outpos~1.0\feedback.exe (Agnitum Ltd.)
* c:\windows\system32\ps2.exe (Hewlett-Packard Company)
c:\windows\sminst\recguard.exe
c:\windows\system32\keyhook.exe (Silicon Integrated Systems Corporation)
* c:\program files\java\jre1.6.0_03\bin\jusched.exe (Sun Microsystems, Inc.)

003 HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run (+subkeys)
-----------------------------------------------------------------
* c:\program files\spybot - search & destroy\teatimer.exe (Safer Networking Limited)

010 HKLM\SYSTEM\CurrentControlSet\Services (Services)
-----------------------------------------------------
c:\program files\avira\antivir personaledition classic\avguard.exe (AntiVir PersonalEdition Classic Guard)
c:\program files\avira\antivir personaledition classic\sched.exe (AntiVir PersonalEdition Classic Scheduler)
* C:\WINDOWS\system32\ati2evxx.exe (ati2evxx.exe)
c:\program files\ipod\bin\ipodservice.exe (iPod Service)
c:\progra~1\agnitum\outpos~1.0\outpost.exe (Outpost Firewall Service)
C:\WINDOWS\microsoft.net\framework\v1.1.4322\aspnet_state.exe (Service d'état ASP.NET)
- c:\program files\sygate\spf\smc.exe (smc.exe)

011 HKLM\SYSTEM\CurrentControlSet\Services (drivers)
----------------------------------------------------
* c:\program files\avira\antivir personaledition classic\avgio.sys (avgio)
* C:\WINDOWS\system32\drivers\avipbb.sys (avipbb)
* C:\WINDOWS\system32\drivers\gearaspiwdm.sys (GEAR CDRom Filter)
C:\WINDOWS\system32\drivers\iviaspi.sys (IVI ASPI Shell)
c:\progra~1\agnitum\outpos~1.0\kernel\2000\filtnt.sys (Outpost Firewall Kernel Driver)
c:\progra~1\agnitum\outpos~1.0\kernel\adblock.dll (Outpost Firewall PlugIn (ADBLOCK.DLL))
c:\progra~1\agnitum\outpos~1.0\kernel\arp.dll (Outpost Firewall PlugIn (ARP.DLL))
c:\progra~1\agnitum\outpos~1.0\kernel\content.dll (Outpost Firewall PlugIn (CONTENT.DLL))
c:\progra~1\agnitum\outpos~1.0\kernel\dnscache.dll (Outpost Firewall PlugIn (DNSCACHE.DLL))
c:\progra~1\agnitum\outpos~1.0\kernel\ftpfilt.dll (Outpost Firewall PlugIn (FTPFILT.DLL))
c:\progra~1\agnitum\outpos~1.0\kernel\htmlfilt.dll (Outpost Firewall PlugIn (HTMLFILT.DLL))
c:\progra~1\agnitum\outpos~1.0\kernel\httpfilt.dll (Outpost Firewall PlugIn (HTTPFILT.DLL))
c:\progra~1\agnitum\outpos~1.0\kernel\imapfilt.dll (Outpost Firewall PlugIn (IMAPFILT.DLL))
c:\progra~1\agnitum\outpos~1.0\kernel\mailfilt.dll (Outpost Firewall PlugIn (MAILFILT.DLL))
c:\progra~1\agnitum\outpos~1.0\kernel\nntpfilt.dll (Outpost Firewall PlugIn (NNTPFILT.DLL))
c:\progra~1\agnitum\outpos~1.0\kernel\pop3filt.dll (Outpost Firewall PlugIn (POP3FILT.DLL))
c:\progra~1\agnitum\outpos~1.0\kernel\protect.dll (Outpost Firewall PlugIn (PROTECT.DLL))
c:\progra~1\agnitum\outpos~1.0\kernel\secret.dll (Outpost Firewall PlugIn (SECRET.DLL))
C:\WINDOWS\system32\drivers\pfc.sys (Padus ASPI Shell)
* C:\WINDOWS\system32\drivers\hdaudbus.sys (Pilote de bus Microsoft UAA pour High Definition Audio)
* C:\WINDOWS\system32\drivers\ptilink.sys (Pilote de liaison parallèle directe)
C:\WINDOWS\system32\drivers\tcpip.sys (Pilote du protocole TCP/IP)
* C:\WINDOWS\system32\drivers\ps2.sys (PS2)
C:\WINDOWS\system32\drivers\pxhelp20.sys (PxHelp20)
* C:\WINDOWS\system32\drivers\r8139n51.sys (Realtek RTL8139/810x Family Fast Ethernet NIC NT Driver)
* c:\windows\system32\drivers\symredrv.sys (Redirector Filter)
* C:\WINDOWS\system32\drivers\secdrv.sys (Secdrv)
* C:\WINDOWS\system32\drivers\rtkhdaud.sys (Service for Realtek HD Audio (WDM))
* C:\WINDOWS\system32\drivers\sisagpx.sys (SiS AGP Filter)
* C:\WINDOWS\system32\drivers\srvkp.sys (SiS VGA Driver Manager)
* C:\WINDOWS\system32\drivers\ssmdrv.sys (ssmdrv)
C:\WINDOWS\system32\drivers\sfdrv01.sys (StarForce Protection Environment Driver (version 1.x))
* C:\WINDOWS\system32\drivers\sfdrv01a.sys (StarForce Protection Environment Driver (version 1.x.a))
* C:\WINDOWS\system32\drivers\sfhlp02.sys (StarForce Protection Helper Driver (version 2.x))
C:\WINDOWS\system32\drivers\sfsync02.sys (StarForce Protection Synchronization Driver (version 2.x))
* c:\windows\system32\drivers\wg3n.sys (SyGate for NT, wg3n)
* c:\windows\system32\drivers\wg4n.sys (SyGate for NT, wg4n)
* c:\windows\system32\drivers\wg5n.sys (SyGate for NT, wg5n)
* c:\windows\system32\drivers\wg6n.sys (SyGate for NT, wg6n)
* c:\windows\system32\drivers\symtdi.sys (SYMTDI)
C:\WINDOWS\system32\drivers\teefer.sys (Teefer for NT)
* C:\WINDOWS\system32\drivers\viaagp1.sys (VIA AGP Filter)
* C:\WINDOWS\system32\drivers\vtmini.sys (viagfx)
* C:\WINDOWS\system32\drivers\ati2mtag.sys (Video)
* C:\WINDOWS\system32\drivers\ialmnt5.sys (Video)
* C:\WINDOWS\system32\drivers\sisgrp.sys (Video)
c:\windows\system32\drivers\wpsdrvnt.sys (wpsdrvnt)

030 HKLM\SOFTWARE\Classes\PROTOCOLS\Filter
------------------------------------------
c:\windows\system32\mscoree.dll (Microsoft Corporation) {1E66F26B-79EE-11D2-8710-00C04F79ED0D}
c:\windows\system32\mscoree.dll (Microsoft Corporation) {1E66F26B-79EE-11D2-8710-00C04F79ED0D}
c:\windows\system32\mscoree.dll (Microsoft Corporation) {1E66F26B-79EE-11D2-8710-00C04F79ED0D}

031 HKLM\SOFTWARE\Classes\PROTOCOLS\Handler
-------------------------------------------
c:\progra~1\fichie~1\system\oledb~1\msdaipp.dll (Microsoft Corporation) {E1D2BF42-A96B-11d1-9C6B-0000F875AC61}
c:\progra~1\fichie~1\system\oledb~1\msdaipp.dll (Microsoft Corporation) {E1D2BF42-A96B-11d1-9C6B-0000F875AC61}
c:\progra~1\fichie~1\system\oledb~1\msdaipp.dll (Microsoft Corporation) {E1D2BF40-A96B-11d1-9C6B-0000F875AC61}

035 HKLM-HKCU\SOFTWARE\Microsoft\Active Setup\Installed Components
------------------------------------------------------------------
c:\windows\system32\mscories.dll (Microsoft Corporation) {89B4C1CD-B018-4511-B0A1-5476DBF70820}

052 HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
----------------------------------------------------------------------------------
* c:\program files\adobe\acrobat 6.0\reader\activex\acroiehelper.dll (Adobe Systems Incorporated) {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}
* c:\program files\java\jre1.6.0_03\bin\ssv.dll (Sun Microsystems, Inc.) {761497BB-D6F0-462C-B6EB-D4DAF1D92D43}
* c:\progra~1\spybot~1\sdhelper.dll (Safer Networking Limited) {53707962-6F74-2D53-2644-206D7942484F}

061 HKLM-HCKU\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved
---------------------------------------------------------------------------------
- deskpan.dll {42071714-76d4-11d1-8b24-00a0c9068ff3}
* c:\windows\system32\hticons.dll (Hilgraeve, Inc.) {88895560-9AA2-1069-930E-00AA0030EBC8}
c:\windows\system32\mscoree.dll (Microsoft Corporation) {1D2680C9-0E2A-469d-B787-065558BC7D43}
c:\program files\sonic recordnow!\shlext.dll {DEE12703-6333-4D4E-8F34-738C4DCC2E04}
c:\windows\system32\shellvrtf.dll (XSS) {7F67036B-66F1-411A-AD85-759FB9C5B0DB}
c:\program files\avira\antivir personaledition classic\shlext.dll (Avira GmbH) {45AC2688-0253-4ED8-97DE-B5370FA7D48A}
* c:\program files\real\realplayer\rpshell.dll (RealNetworks, Inc.) {F0CB00CD-5A07-4D91-97F5-A8C92CDA93E4}
c:\program files\winrar\rarext.dll {B41DB860-8EE4-11D2-9906-E49FADC173CA}

067 HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify
---------------------------------------------------------------------
* C:\WINDOWS\system32\ati2evxx.dll
* C:\WINDOWS\system32\igfxsrvc.dll (Intel Corporation)

100 Internet Explorer settings
------------------------------
CustomizeSearch HKLM : https://www.bing.com/?toHttps=1&redig=8F3F334EA60E4B1CB4D040DCFE393A89{SUB_RFC1766}/srchasst/srchcust.htm
Default_Page_URL HKCU : https://www.msn.com/fr-fr?cobrand=hp-desktop.msn.com&ocid=HPDHP&pc=HPDTDF
SearchAssistant HKLM : https://www.bing.com/?toHttps=1&redig=8F3F334EA60E4B1CB4D040DCFE393A89{SUB_RFC1766}/srchasst/srchasst.htm
ShellNext HKCU : https://www.msn.com/fr-fr?cobrand=hp-desktop.msn.com&ocid=HPDHP&pc=HPDTDF
Start Page HKCU : https://www.msn.com/fr-fr/?redirfallthru=http%3a%2f%2fwww.msn.fr%2fmeteo%2f%3f
Start Page HKLM : https://www.msn.com/fr-fr/

104 HKLM\Software\Microsoft\Code Store Database\Distribution Units
------------------------------------------------------------------
c:\windows\downlo~1\bitdef~1.ocx (SOFTWIN SRL ROMANIA) {80DD2229-B8E4-4C77-B72F-F22972D723EA}
* c:\program files\java\jre1.6.0_03\bin\npjpi160_03.dll (Sun Microsystems, Inc.) {8AD9C840-044E-11D1-B3E9-00805F499D93}
c:\program files\java\j2re1.4.2_03\bin\npjpi142_03.dll (JavaSoft / Sun Microsystems, Inc.) {CAFEEFAC-0014-0002-0003-ABCDEFFEDCBA}
* c:\program files\java\jre1.6.0_02\bin\npjpi160_02.dll (Sun Microsystems, Inc.) {CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA}
* c:\program files\java\jre1.6.0_03\bin\npjpi160_03.dll (Sun Microsystems, Inc.) {CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA}
* c:\program files\java\jre1.6.0_03\bin\npjpi160_03.dll (Sun Microsystems, Inc.) {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}

120 Domain/DNS hijacking
------------------------
NameServer {2B25E8F5-5BEB-4938-B916-B6237A295B41} : 81.220.255.4,80.236.0.68

121 HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\AppInit_DLLs
--------------------------------------------------------------------------
c:\progra~1\agnitum\outpos~1.0\wl_hook.dll (Agnitum Ltd.)

161 HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\System
------------------------------------------------------------------
dontdisplaylastusername : 0
shutdownwithoutlogon : 1
undockwithoutlogon : 1

170 HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2
------------------------------------------------------------------------
{e870e6c2-697e-11dc-804d-806d6172696f} : C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL Info.exe protect.ed 480 480
{e870e6c4-697e-11dc-804d-806d6172696f} : E:\AutoRun.exe

173 HKCR\*\shellex\ContextMenuHandlers
--------------------------------------
c:\progra~1\agnitum\outpos~1.0\op_shell.dll (Agnitum Ltd.) {33C9E362-3EDA-4930-8AFE-5DA39A8BB77A}
c:\program files\avira\antivir personaledition classic\shlext.dll (Avira GmbH) {45AC2688-0253-4ED8-97DE-B5370FA7D48A}
GUID / CLSID not found {5345A4D5-41EB-4A2F-9616-CE1D4F6C35B2}
c:\program files\winrar\rarext.dll {B41DB860-8EE4-11D2-9906-E49FADC173CA}
0