Lien dans google pas diriger sur bons sites

Résolu
Bonsoir,

Voila j ai un petit soucis actuellement avec mon PC. Lorsque je fais une recherche dans google (Firefox ou IE peu importe) les premiers lien données, ne me renvois pas sur les bons sites, mais sur toute autre chose.

J ai avast comme antivirus, spyboat et ccleaner pour le reste. Avast ne me détecte rien de spécial. Spyboat semble ne plus vouloir se lancer (c est pas normal) et ccleaner a tout nettoyé.

Quelqu'un aurai une idée sur la marche à suivre svp?

Merci
Configuration: Windows XP
Firefox 3.0.4

37 réponses

Résumé de la discussion

Un problème de recherche sur Google affiche les premiers liens vers des sites non pertinents lorsque l’on utilise Firefox ou Internet Explorer sur Windows XP, malgré Avast, Spybot et CCleaner installés. Plusieurs réponses suggèrent des outils de détection et de suppression tels que HijackThis, SDFix, ComboFix ou UsbFix, avec des instructions pas à pas et l’indication de partager les rapports pour aider au nettoyage. D'autres conseils incitent à supprimer les cracks et logiciels piratés, puis à lancer CCleaner en mode Nettoyage et Registre sans sauvegarder au préalable, afin de réduire les conflits entre outils de sécurité.

Bobot (l’IA à votre service)
  1. Hi,

    Commence par cela:

    télécharge hijackthis
    -> enregistre la cible sous .... "le bureau"

    -> Fais un double-clic sur "HJTInstall.exe" afin de lancer l'installation

    -> Clique sur Install ensuite sur "I Accept"

    -> Clique sur" Do a scan system and save log file"

    -> Le bloc-notes s'ouvrira, fais un copier-coller de tout son contenu ici dans ta prochaine réponse

    ->Tuto hijackthis(Merci à Balltrap34)
    1
    1. Contributeur sécurité
      bonjour, pour suivre @+
      0
      1. Bonjour

        Donc quand je clique sur le lien pour télécharger hijackthis Firefox n arrive a ce connecter à la page.

        La connexion a échoué

        Firefox ne peut établir de connexion avec le serveur à l'adresse www.trendsecure.com.

        Bien que le site semble valide, le navigateur n'a pas pu établir de connexion.

        * Le site est peut-être temporairement indisponible ? Réessayez plus tard.
        * D'autres sites sont aussi inaccessibles ? Vérifiez la connexion au réseau de votre ordinateur.
        * Votre ordinateur ou votre réseau est-il protégé par un pare-feu ou un proxy ? Des paramètres incorrects peuvent interférer avec la navigation sur le Web.
        * Vous avez toujours des problèmes ? Consultez votre administrateur réseau ou votre fournisseur d'accès à Internet pour obtenir de l'aide.
        0
        1. Hi,

          Essai avec ce lien:

          Télécharges- FindyKill de Chiquitine29 :

          FindyKill de Chiquitine29

          ->-Enregistres le sur ton bureau et pas ailleurs !

          -!! Déconnectes toi et fermes toute applications en cours !!

          ( Si ton anti-virus s'affolle au moment de l'enregistrement ou de l'utilisation de l'outil , ignore l'alerte ...)

          -> Cliques sur "-FindyKill.exe" pour lancer l'installe de l'outil . Ne touche surtout pas aux paramètres d'installation.

          -Notes importantes :
          * si tu as le prg Elibagla sur ton PC , supprimes le ( risque de conflit entre les deux outils ) .

          --> Double cliques sur le raccourci " FindyKill " qui est sur ton bureau .

          -->choisis l'option 1 ( recherche ) . Puis laisses travailler l'outil sans rien toucher ...

          Une fois terminé, postes le rapport FindyKill.txt qui est généré ...

          ( Note : le rapport est sauvegardé à la racine du disque -> C:\FindyKill.txt )

          PS : "Process.exe", une composante de l'outil, est détecté par certains antivirus (AntiVir, Dr.Web, Kaspersky Anti-Virus) comme étant un RiskTool.
          Il ne s'agit pas d'un virus, mais d'un utilitaire destiné à mettre fin à des processus.
          Mis entre de mauvaises mains, cet utilitaire pourrait arrêter des logiciels de sécurité (Antivirus, Firewall...) d'où l'alerte émise par ces antivirus
          0
          1. Voila le rapport

            ----------------- FindyKill V4.706 ------------------

            * Emplacement : C:\Program Files\FindyKill
            * Outils Mis a jours le 27/11/08 par Chiquitine29
            * Recherche effectuée à 8:59:37 le 30.11.2008
            * Windows XP - Internet Explorer 7.0.5730.13

            ((((((((((((((((( *** Recherche *** ))))))))))))))))))

            --------------- [ Processus actifs ] ----------------

            C:\WINDOWS\System32\smss.exe
            C:\WINDOWS\system32\csrss.exe
            C:\WINDOWS\system32\winlogon.exe
            C:\WINDOWS\system32\services.exe
            C:\WINDOWS\system32\lsass.exe
            C:\WINDOWS\system32\Ati2evxx.exe
            C:\WINDOWS\system32\svchost.exe
            C:\WINDOWS\system32\svchost.exe
            C:\WINDOWS\system32\svchost.exe
            C:\WINDOWS\system32\svchost.exe
            C:\WINDOWS\system32\Ati2evxx.exe
            C:\WINDOWS\Explorer.EXE
            C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
            C:\Program Files\Alwil Software\Avast4\ashServ.exe
            C:\WINDOWS\system32\spoolsv.exe
            C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
            C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
            C:\WINDOWS\system32\svchost.exe
            C:\Program Files\Linksys Wireless-G USB Wireless Network Monitor\WLService.exe
            C:\Program Files\Linksys Wireless-G USB Wireless Network Monitor\WUSB54Gv4.exe
            C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
            C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
            C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
            C:\windows\system\hpsysdrv.exe
            C:\WINDOWS\system32\hphmon06.exe
            C:\HP\KBD\KBD.EXE
            C:\Program Files\Fichiers communs\InterVideo\SchSvr\SchSvr.exe
            C:\Program Files\InterVideo\Common\Bin\WinRemote.exe
            C:\WINDOWS\AGRSMMSG.exe
            C:\WINDOWS\SOUNDMAN.EXE
            C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
            C:\WINDOWS\ALCWZRD.EXE
            C:\WINDOWS\ALCMTR.EXE
            C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
            C:\Program Files\Linksys Wireless-G USB Wireless Network Monitor\InfoMyCa.exe
            C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
            C:\Program Files\iTunes\iTunesHelper.exe
            C:\WINDOWS\System32\alg.exe
            C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
            C:\WINDOWS\system32\ctfmon.exe
            C:\Program Files\iPod\bin\iPodService.exe
            C:\WINDOWS\System32\svchost.exe

            --------------- [ Fichiers/Dossiers infectieux ] ----------------

            »»»» Presence des fichiers dans C:

            »»»» Presence des fichiers dans C:\WINDOWS

            »»»» Presence des fichiers dans C:\WINDOWS\Prefetch

            »»»» Presence des fichiers dans C:\WINDOWS\system32

            »»»» Presence des fichiers dans C:\WINDOWS\system32\drivers

            »»»» Presence des fichiers dans C:\Documents and Settings\HP_Propri‚taire\Application Data

            »»»» Presence des fichiers dans C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp

            »»»» Presence des fichiers dans C:\Documents and Settings\HP_Propri‚taire\Local Settings\Temporary Internet Files\Content.IE5

            --------------- [ Registre / Startup ] ----------------

            [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\run]

            swg=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
            ctfmon.exe=C:\WINDOWS\system32\ctfmon.exe

            [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\run]

            SunJavaUpdateSched="C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
            hpsysdrv=c:\windows\system\hpsysdrv.exe
            IgfxTray=C:\WINDOWS\system32\igfxtray.exe
            HPHUPD06=c:\Program Files\HP\{AAC4FC36-8F89-4587-8DD3-EBC57C83374D}\hphupd06.exe
            HPHmon06=C:\WINDOWS\system32\hphmon06.exe
            KBD=C:\HP\KBD\KBD.EXE
            UpdateManager="C:\Program Files\Fichiers communs\Sonic\Update Manager\sgtray.exe" /r
            Home Theater SchSvr="C:\Program Files\Fichiers communs\InterVideo\SchSvr\SchSvr.exe"
            WINREMOTE="C:\Program Files\InterVideo\Common\Bin\WinRemote.exe"
            Recguard=C:\WINDOWS\SMINST\RECGUARD.EXE
            AlcxMonitor=ALCXMNTR.EXE
            SiSPower=Rundll32.exe SiSPower.dll,ModeAgent
            PS2=C:\WINDOWS\system32\ps2.exe
            AGRSMMSG=AGRSMMSG.exe
            SoundMan=SOUNDMAN.EXE
            ATIPTA=C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
            AlcWzrd=ALCWZRD.EXE
            Alcmtr=ALCMTR.EXE
            LSBWatcher=c:\hp\drivers\hplsbwatcher\lsburnwatcher.exe
            WINCINEMAMGR="C:\Program Files\InterVideo\Common\Bin\WinRemote.exe"
            WUSB54Gv4=C:\Program Files\Linksys Wireless-G USB Wireless Network Monitor\InvokeSvc3.exe
            TkBellExe="C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
            avast!=C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
            ISUSPM Startup="C:\Program Files\Fichiers communs\InstallShield\UpdateService\isuspm.exe" -startup
            QuickTime Task="C:\Program Files\QuickTime\QTTask.exe" -atboottime
            AppleSyncNotifier=C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
            iTunesHelper="C:\Program Files\iTunes\iTunesHelper.exe"
            IMJPMIG8.1="C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
            MSPY2002=C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
            PHIME2002ASync=C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
            PHIME2002A=C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
            HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents=
            HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\IMAIL=
            Installed=1
            HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MAPI=
            Installed=1
            NoChange=1
            HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MSFS=
            Installed=1

            --------------- [ Registre / Clés infectieuses ] ----------------

            --------------- [ Etat / Services ] ----------------

            +- Services : [ Auto=2 / Demande=3 / Désactivé=4 ]

            Ndisuio - Type de démarrage = 3

            EapHost - Type de démarrage = 3

            Ip6Fw - Type de démarrage = 3

            SharedAccess - Type de démarrage = 2

            wuauserv - Type de démarrage = 2

            wscsvc - Type de démarrage = 2

            --------------- [ Recherche dans supports amovibles] ----------------

            +- Informations :

            C: - Lecteur fixe

            D: - Lecteur fixe

            E: - Lecteur de CD-ROM

            +- Contenu de l'autorun : D:\autorun.inf

            [AUTORUN]
            ShellExecute=Info.exe protect.ed 480 480

            +- presence des fichiers :

            Found ! [30.04.2004 23:01][---hs----] - D:\autorun.inf
            Found ! [30.04.2004 23:00][---hs----] - D:\info.exe

            --------------- [ Registre / Mountpoint2 ] ----------------

            Found ! - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{e9ddca0e-7ab4-11d9-a350-806d6172696f}\Shell\AutoRun\command

            ------------------- ! Fin du rapport ! --------------------
            0
            1. Hi,

              Ce rapport de FindyKill est complet. L'infection Bagle s'attrape dans les cracks et keygens donc si tu en as, il faut les supprimer sinon l'infection se relancera.

              --> Branche tes disques amovibles à ton PC (clefs USB, disque dur externe, etc...) sans les ouvrir

              --> Double-clique sur le raccourci FindyKill sur ton bureau

              --> Au menu principal, choisis l'option 2 (Suppression)

              /!\ Il y aura 2 redémarrages, laisse travailler l'outil jusqu'à l'apparition du message "nettoyage effectué" /!\

              --> Ensuite, poste le rapport FindyKill.txt

              Note : le rapport FindyKill.txt est sauvegardé à la racine du disque.
              =*=*=*=*=*=*=*=*=*=*=*=*=*=*=**=*=*=*=*=*=*=*==*=*=*=*=*=*=*=*=*=*=*=*=*=*=*=**==*
              ==>Télécharge random's system information tool (RSIT) et enregistre le sur ton bureau.

              ==>Double clique sur RSIT.exe pour lancer l'outil.

              ==>Clique sur ' continue ' à l'écran Disclaimer.

              ==>Si l'outil HIjackThis (version à jour) n'est pas présent ou non détecté sur l'ordinateur, RSIT le téléchargera et tu devras accepter la licence.

              ==>Une fois le scan fini , 2 rapports vont apparaitre. Poste le contenu des 2 rapports
              ( log.txt & info.txt )

              (CTRL+A Pour tout selectionner , CTRL+C pour copier et CTRL+V pour coller )

              0
              1. Voila le deuxième rapport après nettoyage

                ----------------- FindyKill V4.706 ------------------

                * executed from : C:\Program Files\FindyKill
                * Update on 27/11/08 par Chiquitine29
                * Start at 9:20:36 the 30.11.2008
                * Windows XP - Internet Explorer 7.0.5730.13

                ((((((((((((((( *** deleting *** ))))))))))))))))))

                --------------- [ Active Processes ] ----------------

                C:\WINDOWS\System32\smss.exe
                C:\WINDOWS\system32\csrss.exe
                C:\WINDOWS\system32\winlogon.exe
                C:\WINDOWS\system32\services.exe
                C:\WINDOWS\system32\lsass.exe
                C:\WINDOWS\system32\Ati2evxx.exe
                C:\WINDOWS\system32\svchost.exe
                C:\WINDOWS\system32\svchost.exe
                C:\WINDOWS\System32\svchost.exe
                C:\WINDOWS\system32\svchost.exe
                C:\WINDOWS\system32\logonui.exe
                C:\WINDOWS\system32\svchost.exe
                C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
                C:\Program Files\Alwil Software\Avast4\ashServ.exe
                C:\WINDOWS\system32\Ati2evxx.exe
                C:\WINDOWS\system32\userinit.exe
                C:\WINDOWS\system32\spoolsv.exe
                C:\Program Files\Alwil Software\Avast4\setup\avast.setup
                C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
                C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
                C:\WINDOWS\system32\svchost.exe
                C:\Program Files\Linksys Wireless-G USB Wireless Network Monitor\WLService.exe
                C:\Program Files\Linksys Wireless-G USB Wireless Network Monitor\WUSB54Gv4.exe
                C:\WINDOWS\System32\alg.exe

                --------------- [ Infected files / folders ] ----------------

                »»»» Supression files in C:

                »»»» Supression files in C:\WINDOWS

                »»»» Supression files in C:\WINDOWS\Prefetch

                »»»» Supression files in C:\WINDOWS\system32

                »»»» Supression files in C:\WINDOWS\system32\drivers

                »»»» Supression files in C:\Documents and Settings\HP_Propri‚taire\Application Data

                »»»» Supression files in C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp

                »»»» Supression files in C:\Documents and Settings\HP_Propri‚taire\Local Settings\Temporary Internet Files\Content.IE5

                --------------- [ Registry / Infected keys ] ----------------

                --------------- [ States / Restarting of services ] ----------------

                +- Services : [ Auto=2 / Request=3 / Disable=4 ]

                Ndisuio - Type of startup = 3

                EapHost - Type of startup = 2

                Ip6Fw - Type of startup = 2

                SharedAccess - Type of startup = 2

                wuauserv - Type of startup = 2

                wscsvc - Type of startup = 2

                --------------- [ Cleaning removable drives ] ----------------

                +- Informations :

                C: - Lecteur fixe

                D: - Lecteur fixe

                E: - Lecteur de CD-ROM

                K: - Lecteur amovible

                L: - Lecteur fixe

                +- deleting files :

                Deleted ! - D:\autorun.inf
                Deleted ! - D:\info.exe
                Deleted ! - L:\autorun.inf

                --------------- [ Registry / Mountpoint2 ] ----------------

                -> Not found !

                --------------- [ Searching Cracks / Keygen ] ----------------

                C:\Documents and Settings\HP_Propri‚taire\Mes documents\Backup compte Nadege Pedro\Internet_Download\acdsee\Crack
                C:\Documents and Settings\HP_Propri‚taire\Mes documents\Backup compte Nadege Pedro\Internet_Download\acdsee\Crack\ACDSee 6.0.2.0014 Std. Trial English - Bidjan
                C:\Documents and Settings\HP_Propri‚taire\Mes documents\Backup compte Nadege Pedro\Internet_Download\acdsee\Crack\ACDSee 6.0.2.0014 Std. Trial English - Bidjan.zip
                C:\Documents and Settings\HP_Propri‚taire\Mes documents\Backup compte Nadege Pedro\Internet_Download\acdsee\Crack\ACDSee 6.0.2.0014 Std. Trial French - Bidjan
                C:\Documents and Settings\HP_Propri‚taire\Mes documents\Backup compte Nadege Pedro\Internet_Download\acdsee\Crack\ACDSee 6.0.2.0014 Std. Trial French - Bidjan.zip
                C:\Documents and Settings\HP_Propri‚taire\Mes documents\Backup compte Nadege Pedro\Internet_Download\acdsee\Crack\ACDSee_x[1].xx
                C:\Documents and Settings\HP_Propri‚taire\Mes documents\Backup compte Nadege Pedro\Internet_Download\acdsee\Crack\ACDSee_x[1].xx.zip
                C:\Documents and Settings\HP_Propri‚taire\Mes documents\Backup compte Nadege Pedro\Internet_Download\acdsee\Crack\Nouveau dossier
                C:\Documents and Settings\HP_Propri‚taire\Mes documents\Backup compte Nadege Pedro\Internet_Download\acdsee\Crack\ACDSee 6.0.2.0014 Std. Trial English - Bidjan\ACDSee 6.0.2.0014 Std. Trial English - Bidjan
                C:\Documents and Settings\HP_Propri‚taire\Mes documents\Backup compte Nadege Pedro\Internet_Download\acdsee\Crack\ACDSee 6.0.2.0014 Std. Trial English - Bidjan\ACDSee 6.0.2.0014 Std. Trial English - Bidjan\ACDSee 6.0.2.0014 Std. Trial English - Bidjan.exe
                C:\Documents and Settings\HP_Propri‚taire\Mes documents\Backup compte Nadege Pedro\Internet_Download\acdsee\Crack\ACDSee 6.0.2.0014 Std. Trial French - Bidjan\ACDSee 6.0.2.0014 Std. Trial French - Bidjan
                C:\Documents and Settings\HP_Propri‚taire\Mes documents\Backup compte Nadege Pedro\Internet_Download\acdsee\Crack\ACDSee 6.0.2.0014 Std. Trial French - Bidjan\ACDSee 6.0.2.0014 Std. Trial French - Bidjan\ACDSee 6.0.2.0014 Std. Trial French - Bidjan.exe
                C:\Documents and Settings\HP_Propri‚taire\Mes documents\Backup compte Nadege Pedro\Internet_Download\acdsee\Crack\ACDSee_x[1].xx\acdseecrk.exe
                C:\Documents and Settings\HP_Propri‚taire\Mes documents\Backup compte Nadege Pedro\Internet_Download\acdsee\Crack\ACDSee_x[1].xx\Demian.url
                C:\Documents and Settings\HP_Propri‚taire\Mes documents\Backup compte Nadege Pedro\Internet_Download\acdsee\Crack\ACDSee_x[1].xx\FILE_ID.DIZ
                C:\Documents and Settings\HP_Propri‚taire\Mes documents\Backup compte Nadege Pedro\Internet_Download\acdsee\Crack\ACDSee_x[1].xx\ReadMe.txt
                C:\Documents and Settings\HP_Propri‚taire\Mes documents\Backup compte Nadege Pedro\Internet_Download\acdsee\Crack\ACDSee_x[1].xx\TNT[CraCK!TEaM].NFO

                ---------------- ! End of report ! ------------------

                Par contre pour la deuxième partie de ton mail, je n arrive pas a télécharger RSIT. Encore une fois Firefox n'arrive pas à s y connecter
                0
                1. Hi,

                  Vire tes cracks et ensuite tu fait ceci:

                  ---> Télécharge CCleaner (N'installe pas la Yahoo Toolbar) :
                  CCLEANER

                  ---> Lance-le. Va dans "Options" puis "Avancé", tu décoches la case "Effacer uniquement les fichiers etc...". Tu vas dans "Nettoyeur", tu fais "Analyse". Une fois terminé, tu lances le nettoyage. Puis tu vas dans "Registre", tu fais "Chercher des erreurs". Une fois terminé, tu répares toutes les erreurs sans sauvegarder la base de registre.
                  0
                  1. Je comprends pas quand tu dis vire tes cracks. Quel crack? e ne sais pas trop de quoi on parle :(
                    Par contre ccleaner je l avais déjà avant. J'ai fais ce que tu m as dit de faire. Il a corrigé plusieurs erreurs. Je refais un contrôle du registre et nettoyage jusqu'à ce qu'il me marque aucune erreur de trouvée
                    0
                    1. Contributeur sécurité
                      je pense qu'il fait allusion à ça --------------- [ Searching Cracks / Keygen ] ----------------

                      C:\Documents and Settings\HP_Propri‚taire\Mes documents\Backup compte Nadege Pedro\Internet_Download\acdsee\Crack
                      C:\Documents and Settings\HP_Propri‚taire\Mes documents\Backup compte Nadege Pedro\Internet_Download\acdsee\Crack\ACDSee 6.0.2.0014 Std. Trial English - Bidjan
                      C:\Documents and Settings\HP_Propri‚taire\Mes documents\Backup compte Nadege Pedro\Internet_Download\acdsee\Crack\ACDSee 6.0.2.0014 Std. Trial English - Bidjan.zip
                      C:\Documents and Settings\HP_Propri‚taire\Mes documents\Backup compte Nadege Pedro\Internet_Download\acdsee\Crack\ACDSee 6.0.2.0014 Std. Trial French - Bidjan
                      C:\Documents and Settings\HP_Propri‚taire\Mes documents\Backup compte Nadege Pedro\Internet_Download\acdsee\Crack\ACDSee 6.0.2.0014 Std. Trial French - Bidjan.zip
                      C:\Documents and Settings\HP_Propri‚taire\Mes documents\Backup compte Nadege Pedro\Internet_Download\acdsee\Crack\ACDSee_x[1].xx
                      C:\Documents and Settings\HP_Propri‚taire\Mes documents\Backup compte Nadege Pedro\Internet_Download\acdsee\Crack\ACDSee_x[1].xx.zip
                      C:\Documents and Settings\HP_Propri‚taire\Mes documents\Backup compte Nadege Pedro\Internet_Download\acdsee\Crack\Nouveau dossier
                      C:\Documents and Settings\HP_Propri‚taire\Mes documents\Backup compte Nadege Pedro\Internet_Download\acdsee\Crack\ACDSee 6.0.2.0014 Std. Trial English - Bidjan\ACDSee 6.0.2.0014 Std. Trial English - Bidjan
                      C:\Documents and Settings\HP_Propri‚taire\Mes documents\Backup compte Nadege Pedro\Internet_Download\acdsee\Crack\ACDSee 6.0.2.0014 Std. Trial English - Bidjan\ACDSee 6.0.2.0014 Std. Trial English - Bidjan\ACDSee 6.0.2.0014 Std. Trial English - Bidjan.exe
                      C:\Documents and Settings\HP_Propri‚taire\Mes documents\Backup compte Nadege Pedro\Internet_Download\acdsee\Crack\ACDSee 6.0.2.0014 Std. Trial French - Bidjan\ACDSee 6.0.2.0014 Std. Trial French - Bidjan
                      C:\Documents and Settings\HP_Propri‚taire\Mes documents\Backup compte Nadege Pedro\Internet_Download\acdsee\Crack\ACDSee 6.0.2.0014 Std. Trial French - Bidjan\ACDSee 6.0.2.0014 Std. Trial French - Bidjan\ACDSee 6.0.2.0014 Std. Trial French - Bidjan.exe
                      C:\Documents and Settings\HP_Propri‚taire\Mes documents\Backup compte Nadege Pedro\Internet_Download\acdsee\Crack\ACDSee_x[1].xx\acdseecrk.exe
                      C:\Documents and Settings\HP_Propri‚taire\Mes documents\Backup compte Nadege Pedro\Internet_Download\acdsee\Crack\ACDSee_x[1].xx\Demian.url
                      C:\Documents and Settings\HP_Propri‚taire\Mes documents\Backup compte Nadege Pedro\Internet_Download\acdsee\Crack\ACDSee_x[1].xx\FILE_ID.DIZ
                      C:\Documents and Settings\HP_Propri‚taire\Mes documents\Backup compte Nadege Pedro\Internet_Download\acdsee\Crack\ACDSee_x[1].xx\ReadMe.txt
                      C:\Documents and Settings\HP_Propri‚taire\Mes documents\Backup compte Nadege Pedro\Internet_Download\acdsee\Crack\ACDSee_x[1].xx\TNT[CraCK!TEaM].NFO

                      ---------------- ! End of report ! ------------------
                      0
                  2. Hi,

                    OUI ,

                    Fait ceci alors et ensuite tu rééssais RSIT:

                    Télécharge SDFix (créé par AndyManchesta) et sauvegarde le sur ton Bureau.
                    SDFix (créé par AndyManchesta)

                    ou http://downloads.andymanchesta.com/RemovalTools/SDFix.exe.

                    ou http://downloads.andymanchesta.com/RemovalTools/SDFix.exe?thread

                    ou http://sdfix.net/SDFix.exe

                    --> Double-cliques sur SDFix.exe et choisis "Install" .
                    Double clique sur SDFix.exe et choisis Install pour l'extraire dans un dossier dédié sur le Bureau.

                    Redémarre ton ordinateur en mode sans échec en suivant la procédure que voici :

                    • Redémarre ton ordinateur

                    • Après avoir entendu l'ordinateur biper lors du démarrage, mais avant que l'icône Windows apparaisse, tapote la touche F8 (une pression par seconde).

                    • A la place du chargement normal de Windows, un menu avec différentes options devrait apparaître.

                    • Choisis la première option, pour exécuter Windows en mode sans échec, puis appuie sur "Entrée".

                    • Choisis ton compte.

                    • Puis, ouvre le dossier SDFix qui vient d'être créé dans le répertoire C:\ et double clique sur RunThis. pour lancer le script.

                    • Appuie sur une touche pour commencer le processus de nettoyage.

                    • Il va supprimer les services et les entrées du Registre de certains trojans trouvés puis te demandera d'appuyer sur une touche pour redémarrer.

                    • Appuie sur une touche pour redémarrer le PC.

                    • Ton système sera plus long pour redémarrer qu'à l'accoutumée car l'outil va continuer à s'exécuter et supprimer des fichiers.

                    • Après le chargement du Bureau, l'outil terminera son travail et affichera Finished.

                    • Appuie sur une touche pour finir l'exécution du script et charger les icônes de ton Bureau.

                    • Les icônes du Bureau affichées, le rapport SDFix s'ouvrira à l'écran et s'enregistrera aussi dans le dossier SDFix sous le nom Report.txt.

                    • Enfin, copie/colle le contenu du fichier Report.txt dans ta prochaine réponse sur le forum, avec un nouveau rapport Hijackthis !

                    •NOTE:Si SDFix ne se lance pas
                    Clique sur=> Démarrer => Exécuter
                    Copie/colle ceci :
                    %systemroot%\system32\cmd.exe /K %systemdrive%\SDFix\apps\FixPath.exe

                    Clique sur Ok.

                    Redémarre et essaie de relance SDFix.
                    0
                    1. Alors voila

                      J ai télécharger SDFix grâce au lien http://sdfix.net/SDFix.exe

                      Ensuite quand je double clique pour l exécuter une fenêtre s ouvre pour m avertir que le logiciel comporte un risque blabla, voulez vous quand même l exécuter (rien d anormal). Je dis oui.
                      Alors la j attend 2 minutes et toujours rien. J ouvre le gestionnaire de tache (ctrol-alt-del) et la je vois que SDFix.exe est en train de tourner 2'296Ko.

                      OK je me dis que ca ne marche pas. Je sélectionne SDFix.exe et je fais fin de tache.

                      Je copie le lien %systemroot%\system32\cmd.exe /K %systemdrive%\SDFix\apps\FixPath.exe
                      et je fais exactement comme tu l as demande.

                      La une fenêtre DOS s ouvre et me marque
                      Le chemin d'accès spécifié est introuvable.

                      C:\WINDOWS\system32>
                      0
                      1. Hi,

                        --> Télécharge UsbFix (de Chiquitine29) sur ton Bureau :
                        http://sd-1.archive-host.com/membres/up/116615172019703188/UsbFix.exe

                        --> Lance l'installation avec les paramètres par défaut.

                        --> Branche tes sources de données externes à ton PC (clé USB, disque dur externe, etc...) sans les ouvrir.

                        --> Double-clique sur le raccourci UsbFix sur ton Bureau.

                        --> Choisit l'option 1

                        --> Le PC va redémarrer.

                        --> Après redémarrage, poste le rapport UsbFix.txt

                        Note : le rapport UsbFix.txt est sauvegardé à la racine du disque.

                        (Si le Bureau ne réapparait pas, presse Ctrl+Alt+Suppr, Onglet "Fichier", "Nouvelle tâche", tape explorer.exe et valide)
                        0
                        1. Voila le rapport USBFIX. Est ce grave Docteur ;)

                          -------------- UsbFix V2.413.2 ---------------

                          * Outils mis a jours le 29/11/2008 par Chiquitine29 et Chimay8
                          * Recherche effectuée à 10:37:03 le 30.11.2008
                          * Windows Xp - Internet Explorer 7.0.5730.13

                          --------------- [ Processus actifs ] ----------------

                          C:\WINDOWS\System32\smss.exe
                          C:\WINDOWS\system32\csrss.exe
                          C:\WINDOWS\system32\winlogon.exe
                          C:\WINDOWS\system32\services.exe
                          C:\WINDOWS\system32\lsass.exe
                          C:\WINDOWS\system32\Ati2evxx.exe
                          C:\WINDOWS\system32\svchost.exe
                          C:\WINDOWS\system32\svchost.exe
                          C:\WINDOWS\System32\svchost.exe
                          C:\WINDOWS\system32\svchost.exe
                          C:\WINDOWS\system32\Ati2evxx.exe
                          C:\WINDOWS\system32\svchost.exe
                          C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
                          C:\Program Files\Alwil Software\Avast4\ashServ.exe
                          C:\WINDOWS\system32\spoolsv.exe
                          C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\1.tmp\b2e.exe
                          C:\Program Files\Alwil Software\Avast4\setup\avast.setup
                          C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
                          C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
                          C:\WINDOWS\System32\svchost.exe
                          C:\WINDOWS\system32\svchost.exe
                          C:\Program Files\Linksys Wireless-G USB Wireless Network Monitor\WLService.exe
                          C:\Program Files\Linksys Wireless-G USB Wireless Network Monitor\WUSB54Gv4.exe
                          C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
                          C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
                          C:\WINDOWS\system32\WgaTray.exe

                          --------------- [ Informations lecteurs ] ----------------

                          C: - Lecteur fixe

                          D: - Lecteur fixe

                          E: - Lecteur de CD-ROM

                          K: - Lecteur amovible

                          L: - Lecteur fixe

                          --------------- [ Lecteur C ] ----------------

                          C: - Lecteur fixe

                          +- Listing des fichiers présents :

                          [01.01.2004 15:22][--a------] C:\AUTOEXEC.BAT
                          [05.08.2004 04:00][-rahs----] C:\NTDETECT.COM
                          [12.02.2005 11:51][-rahs----] C:\boot.ini
                          [30.11.2008 09:25][--a------] C:\FindyKill.txt
                          [30.11.2008 09:25][--a------] C:\finfos.txt
                          [30.11.2008 09:25][--a------] C:\UsbFix.txt
                          [01.01.2004 15:22][--a------] C:\CONFIG.SYS
                          [01.01.2004 15:22][--a------] C:\hiberfil.sys
                          [01.01.2004 15:22][--a------] C:\IO.SYS
                          [01.01.2004 15:22][--a------] C:\MSDOS.SYS
                          [01.01.2004 15:22][--a------] C:\pagefile.sys

                          --------------- [ Lecteur D ] ----------------

                          D: - Lecteur fixe

                          +- Listing des fichiers présents :

                          [28.07.2001 07:07][---hs----] D:\AUTOEXEC.BAT
                          [25.07.2001 23:00][---hs----] D:\NTDETECT.COM
                          [09.01.2002 20:52][---hs----] D:\BOOT.INI
                          [09.01.2002 20:52][---hs----] D:\Desktop.ini
                          [09.01.2002 20:52][---hs----] D:\WINBOM.INI
                          [10.09.2002 17:21][---hs----] D:\Folder.htt
                          [28.07.2001 07:07][---hs----] D:\CONFIG.SYS
                          [28.07.2001 07:07][---hs----] D:\IO.SYS
                          [28.07.2001 07:07][---hs----] D:\MSDOS.SYS

                          --------------- [ Lecteur E ] ----------------

                          E: - Lecteur de CD-ROM

                          +- Listing des fichiers présents :

                          --------------- [ Lecteur K ] ----------------

                          K: - Lecteur amovible

                          +- Listing des fichiers présents :

                          --------------- [ Lecteur L ] ----------------

                          L: - Lecteur fixe

                          +- Listing des fichiers présents :

                          --------------- [ Registre / Startup ] ----------------

                          [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
                          "Userinit"="C:\\WINDOWS\\system32\\userinit.exe,"

                          [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
                          "Search Page"="https://www.google.com/?gws_rd=ssl"
                          "Start Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome"

                          [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\run]
                          swg=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
                          ctfmon.exe=C:\WINDOWS\system32\ctfmon.exe

                          [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\run]
                          SunJavaUpdateSched="C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
                          hpsysdrv=c:\windows\system\hpsysdrv.exe
                          IgfxTray=C:\WINDOWS\system32\igfxtray.exe
                          HPHUPD06=c:\Program Files\HP\{AAC4FC36-8F89-4587-8DD3-EBC57C83374D}\hphupd06.exe
                          HPHmon06=C:\WINDOWS\system32\hphmon06.exe
                          KBD=C:\HP\KBD\KBD.EXE
                          UpdateManager="C:\Program Files\Fichiers communs\Sonic\Update Manager\sgtray.exe" /r
                          Home Theater SchSvr="C:\Program Files\Fichiers communs\InterVideo\SchSvr\SchSvr.exe"
                          WINREMOTE="C:\Program Files\InterVideo\Common\Bin\WinRemote.exe"
                          Recguard=C:\WINDOWS\SMINST\RECGUARD.EXE
                          AlcxMonitor=ALCXMNTR.EXE
                          SiSPower=Rundll32.exe SiSPower.dll,ModeAgent
                          PS2=C:\WINDOWS\system32\ps2.exe
                          AGRSMMSG=AGRSMMSG.exe
                          SoundMan=SOUNDMAN.EXE
                          ATIPTA=C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
                          AlcWzrd=ALCWZRD.EXE
                          Alcmtr=ALCMTR.EXE
                          LSBWatcher=c:\hp\drivers\hplsbwatcher\lsburnwatcher.exe
                          WINCINEMAMGR="C:\Program Files\InterVideo\Common\Bin\WinRemote.exe"
                          WUSB54Gv4=C:\Program Files\Linksys Wireless-G USB Wireless Network Monitor\InvokeSvc3.exe
                          TkBellExe="C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
                          avast!=C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
                          ISUSPM Startup="C:\Program Files\Fichiers communs\InstallShield\UpdateService\isuspm.exe" -startup
                          QuickTime Task="C:\Program Files\QuickTime\QTTask.exe" -atboottime
                          AppleSyncNotifier=C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
                          iTunesHelper="C:\Program Files\iTunes\iTunesHelper.exe"
                          IMJPMIG8.1="C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
                          MSPY2002=C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
                          PHIME2002ASync=C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
                          PHIME2002A=C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
                          HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents=
                          HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\IMAIL=
                          Installed=1
                          HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MAPI=
                          Installed=1
                          NoChange=1
                          HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MSFS=
                          Installed=1

                          --------------- [ Registre / Mountpoint2 ] ----------------

                          -> Recherche négative.

                          --------------- [ Nettoyage des disques ] ----------------

                          Supprimé ! - [10.09.2002 17:21][---hs----] D:\Folder.htt

                          --------------- [ Resumé ] ----------------

                          -> /!\ Le resultat doit etre interprété par un spécialiste /!\

                          [01.01.2004 15:22][--a------] C:\AUTOEXEC.BAT
                          [05.08.2004 04:00][-rahs----] C:\NTDETECT.COM
                          [12.02.2005 11:51][-rahs----] C:\boot.ini
                          [28.07.2001 07:07][---hs----] D:\AUTOEXEC.BAT
                          [25.07.2001 23:00][---hs----] D:\NTDETECT.COM
                          [09.01.2002 20:52][---hs----] D:\BOOT.INI
                          [09.01.2002 20:52][---hs----] D:\Desktop.ini
                          [09.01.2002 20:52][---hs----] D:\WINBOM.INI

                          --------------- ! Fin du rapport ! ----------------
                          0
                          1. Hi,

                            Essai de faire au moins un rsit.

                            Alut.
                            0
                            1. Voila j ai reussi a avoir RSiT.

                              voila les 2 rapports

                              Logfile of random's system information tool 1.04 (written by random/random)
                              Run by HP_Propriétaire at 2008-11-30 10:54:59
                              Microsoft Windows XP Édition familiale Service Pack 3
                              System drive C: has 82 GB (44%) free of 185 GB
                              Total RAM: 511 MB (34% free)

                              HijackThis download failed

                              ======Scheduled tasks folder======

                              C:\WINDOWS\tasks\AppleSoftwareUpdate.job
                              C:\WINDOWS\tasks\GoogleUpdateTaskUser.job

                              ======Registry dump======

                              [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
                              AcroIEHlprObj Class - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll [2004-12-14 63136]

                              [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
                              SSVHelper Class - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll [2008-06-10 509328]

                              [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
                              Google Toolbar Helper - c:\program files\google\googletoolbar1.dll [2007-09-01 2436160]

                              [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
                              Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll [2008-09-16 737776]

                              [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
                              {B2847E28-5D7D-4DEB-8B67-05D28BCF79F5} - Vue HP - c:\Program Files\HP\Digital Imaging\bin\HPDTLK02.dll [2003-11-21 98304]

                              {2318C2B1-4965-11d4-9B18-009027A5CD4F} - &Google - c:\program files\google\googletoolbar1.dll [2007-09-01 2436160]

                              [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
                              "SunJavaUpdateSched"=C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe [2008-06-10 144784]
                              "hpsysdrv"=c:\windows\system\hpsysdrv.exe [1998-05-07 52736]
                              "IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2004-08-20 155648]
                              "HPHUPD06"=c:\Program Files\HP\{AAC4FC36-8F89-4587-8DD3-EBC57C83374D}\hphupd06.exe [2004-06-07 49152]
                              "HPHmon06"=C:\WINDOWS\system32\hphmon06.exe [2004-06-07 659456]
                              "KBD"=C:\HP\KBD\KBD.EXE [2003-02-11 61440]
                              "UpdateManager"=C:\Program Files\Fichiers communs\Sonic\Update Manager\sgtray.exe [2003-08-19 110592]
                              "Home Theater SchSvr"=C:\Program Files\Fichiers communs\InterVideo\SchSvr\SchSvr.exe [2004-09-23 106496]
                              "WINREMOTE"=C:\Program Files\InterVideo\Common\Bin\WinRemote.exe [2004-10-01 192512]
                              "Recguard"=C:\WINDOWS\SMINST\RECGUARD.EXE [2004-04-14 233472]
                              "AlcxMonitor"=C:\WINDOWS\ALCXMNTR.EXE [2004-09-07 57344]
                              "SiSPower"=C:\WINDOWS\system32\SiSPower.dll [2004-09-24 49152]
                              "PS2"=C:\WINDOWS\system32\ps2.exe [2002-10-16 81920]
                              "AGRSMMSG"=C:\WINDOWS\AGRSMMSG.exe [2005-03-04 88209]
                              "SoundMan"=C:\WINDOWS\SOUNDMAN.EXE [2004-07-29 77824]
                              "ATIPTA"=C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe [2004-09-09 344064]
                              "AlcWzrd"=C:\WINDOWS\ALCWZRD.EXE [2004-07-29 2551808]
                              "Alcmtr"=C:\WINDOWS\ALCMTR.EXE [2004-07-20 57344]
                              "LSBWatcher"=c:\hp\drivers\hplsbwatcher\lsburnwatcher.exe [2004-10-14 253952]
                              "WINCINEMAMGR"=C:\Program Files\InterVideo\Common\Bin\WinRemote.exe [2004-10-01 192512]
                              "WUSB54Gv4"=C:\Program Files\Linksys Wireless-G USB Wireless Network Monitor\InvokeSvc3.exe [2004-04-19 24576]
                              "TkBellExe"=C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe [2005-09-13 180269]
                              "avast!"=C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe [2008-11-18 81000]
                              "ISUSPM Startup"=C:\Program Files\Fichiers communs\InstallShield\UpdateService\isuspm.exe [2005-08-11 249856]
                              "QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2008-09-06 413696]
                              "AppleSyncNotifier"=C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe [2008-09-03 111936]
                              "iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2008-10-01 289576]
                              "IMJPMIG8.1"=C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE [2004-08-03 208952]
                              "MSPY2002"=C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe [2004-08-03 59392]
                              "PHIME2002ASync"=C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE [2004-08-03 455168]
                              "PHIME2002A"=C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE [2004-08-03 455168]

                              [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
                              "swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2007-09-10 68856]
                              "ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]

                              C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage
                              HotSync Manager.lnk - C:\Program Files\palmOne\Hotsync.exe
                              HP Digital Imaging Monitor.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
                              Lancement rapide d'Adobe Reader.lnk - C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
                              Logitech SetPoint.lnk - C:\Program Files\Logitech\SetPoint\KEM.exe
                              Microsoft Office.lnk - C:\Program Files\Microsoft Office\Office10\OSA.EXE

                              [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
                              C:\WINDOWS\system32\Ati2evxx.dll [2004-09-10 90112]

                              [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
                              C:\WINDOWS\system32\igfxsrvc.dll [2004-08-20 344064]

                              [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
                              C:\WINDOWS\system32\WgaLogon.dll [2007-03-15 236928]

                              [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
                              WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]

                              [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AVG Anti-Spyware Driver]

                              [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AVG Anti-Spyware Guard]

                              [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AVG Anti-Spyware Driver]

                              [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AVG Anti-Spyware Guard]

                              [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
                              "dontdisplaylastusername"=0
                              "legalnoticecaption"=
                              "legalnoticetext"=
                              "shutdownwithoutlogon"=1
                              "undockwithoutlogon"=1

                              [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
                              "NoDriveTypeAutoRun"=145

                              [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
                              "%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
                              "C:\Program Files\Messenger\msmsgs.exe"="C:\Program Files\Messenger\msmsgs.exe:*:Enabled:Windows Messenger"
                              "C:\Program Files\Internet Explorer\IEXPLORE.EXE"="C:\Program Files\Internet Explorer\IEXPLORE.EXE:*:Enabled:Internet Explorer"
                              "C:\WINDOWS\system32\dpvsetup.exe"="C:\WINDOWS\system32\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test"
                              "C:\WINDOWS\system32\rundll32.exe"="C:\WINDOWS\system32\rundll32.exe:*:Enabled:Exécuter une DLL en tant qu'application"
                              "%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
                              "C:\Program Files\Ares\Ares.exe"="C:\Program Files\Ares\Ares.exe:*:Disabled:Ares p2p for windows"
                              "C:\Program Files\eMule\emule.exe"="C:\Program Files\eMule\emule.exe:*:Enabled:eMule"
                              "C:\Program Files\iTunes\iTunes.exe"="C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes"
                              "C:\Program Files\ABC\abc.exe"="C:\Program Files\ABC\abc.exe:*:Enabled:abc"

                              [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
                              "%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
                              "%ProgramFiles%\iTunes\iTunes.exe"="%ProgramFiles%\iTunes\iTunes.exe:*:enabled:iTunes"
                              "%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"

                              ======List of files/folders created in the last 3 months======

                              2008-11-30 10:55:00 ----D---- C:\Program Files\trend micro
                              2008-11-30 10:54:59 ----D---- C:\rsit
                              2008-11-30 10:37:03 ----A---- C:\UsbFix.txt
                              2008-11-30 10:34:37 ----D---- C:\Program Files\UsbFix
                              2008-11-30 10:11:01 ----A---- C:\WINDOWS\ntbtlog.txt
                              2008-11-30 09:20:36 ----A---- C:\FindyKill.txt
                              2008-11-30 08:59:08 ----D---- C:\Program Files\FindyKill
                              2008-11-29 18:30:32 ----D---- C:\Documents and Settings\HP_Propriétaire\Application Data\Grisoft
                              2008-11-29 18:30:13 ----D---- C:\Documents and Settings\All Users\Application Data\Grisoft
                              2008-11-29 18:30:10 ----D---- C:\Program Files\Grisoft
                              2008-11-29 18:06:04 ----AD---- C:\Documents and Settings\All Users\Application Data\TEMP
                              2008-11-22 21:18:35 ----A---- C:\WINDOWS\system32\korwbrkr.dll
                              2008-11-22 21:18:35 ----A---- C:\WINDOWS\system32\chtbrkr.dll
                              2008-11-22 21:18:35 ----A---- C:\WINDOWS\system32\chsbrkr.dll
                              2008-11-22 21:18:34 ----A---- C:\WINDOWS\system32\msir3jp.dll
                              2008-11-22 21:18:26 ----A---- C:\WINDOWS\system32\kbd101a.dll
                              2008-11-22 21:18:18 ----A---- C:\WINDOWS\system32\kbdnecAT.dll
                              2008-11-22 21:18:18 ----A---- C:\WINDOWS\system32\kbdnec95.dll
                              2008-11-22 21:18:17 ----A---- C:\WINDOWS\system32\kbdnecNT.dll
                              2008-11-22 21:18:09 ----A---- C:\WINDOWS\system32\c_is2022.dll
                              2008-11-19 18:18:35 ----HDC---- C:\WINDOWS\$NtUninstallKB939683$
                              2008-11-16 09:20:30 ----D---- C:\Documents and Settings\HP_Propriétaire\Application Data\.ABC
                              2008-11-16 09:20:16 ----D---- C:\Program Files\ABC
                              2008-11-15 17:38:09 ----HDC---- C:\WINDOWS\$NtUninstallKB929399$
                              2008-11-15 17:37:47 ----HDC---- C:\WINDOWS\$NtUninstallKB954154_WM11$
                              2008-11-15 17:37:36 ----HDC---- C:\WINDOWS\$NtUninstallKB936782_WMP11$
                              2008-11-15 09:40:21 ----N---- C:\WINDOWS\system32\spmsg.dll
                              2008-11-15 09:40:19 ----HDC---- C:\WINDOWS\$NtUninstallMSCompPackV1$
                              2008-11-15 09:39:18 ----D---- C:\Program Files\Windows Media Connect 2
                              2008-11-15 09:39:05 ----HDC---- C:\WINDOWS\$NtUninstallwmp11$
                              2008-11-15 09:37:25 ----HDC---- C:\WINDOWS\$NtUninstallWMFDist11$
                              2008-11-15 09:35:49 ----D---- C:\WINDOWS\system32\LogFiles
                              2008-11-15 09:35:36 ----HDC---- C:\WINDOWS\$NtUninstallWudf01000$
                              2008-11-12 18:13:12 ----HDC---- C:\WINDOWS\$NtUninstallKB957097$
                              2008-11-12 18:13:02 ----HDC---- C:\WINDOWS\$NtUninstallKB954459$
                              2008-11-12 18:12:44 ----HDC---- C:\WINDOWS\$NtUninstallKB955069$
                              2008-11-11 18:19:25 ----D---- C:\Documents and Settings\HP_Propriétaire\Application Data\WinRAR
                              2008-11-11 18:19:05 ----D---- C:\Program Files\WinRAR
                              2008-11-11 18:01:10 ----D---- C:\Program Files\ESTsoft
                              2008-11-11 18:01:05 ----D---- C:\Program Files\ALZip
                              2008-11-11 18:01:05 ----D---- C:\Documents and Settings\HP_Propriétaire\Application Data\ESTsoft
                              2008-11-10 18:09:40 ----D---- C:\Documents and Settings\HP_Propriétaire\Application Data\IGN_DLM
                              2008-10-24 16:43:42 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$
                              2008-10-15 20:26:06 ----D---- C:\Program Files\Dialsoft
                              2008-10-14 19:41:14 ----HDC---- C:\WINDOWS\$NtUninstallKB956803$
                              2008-10-14 19:41:07 ----HDC---- C:\WINDOWS\$NtUninstallKB956391$
                              2008-10-14 19:41:00 ----HDC---- C:\WINDOWS\$NtUninstallKB957095$
                              2008-10-14 19:40:19 ----HDC---- C:\WINDOWS\$NtUninstallKB954211$
                              2008-10-14 19:39:34 ----HDC---- C:\WINDOWS\$NtUninstallKB956841$
                              2008-10-09 17:06:07 ----N---- C:\WINDOWS\system32\a_jumtmp.dll
                              2008-10-06 17:08:23 ----D---- C:\Program Files\iTunes
                              2008-10-06 17:08:23 ----D---- C:\Documents and Settings\All Users\Application Data\{3276BE95_AF08_429F_A64F_CA64CB79BCF6}
                              2008-09-30 16:43:34 ----A---- C:\WINDOWS\system32\msxml4.dll
                              2008-09-21 14:19:23 ----D---- C:\Documents and Settings\All Users\Application Data\Adobe
                              2008-09-19 18:12:09 ----D---- C:\Program Files\QuickTime
                              2008-09-10 17:42:27 ----HDC---- C:\WINDOWS\$NtUninstallKB938464$

                              ======List of files/folders modified in the last 3 months======

                              2008-11-30 10:55:00 ----RD---- C:\Program Files
                              2008-11-30 10:54:24 ----D---- C:\WINDOWS
                              2008-11-30 10:39:17 ----D---- C:\Program Files\Mozilla Firefox
                              2008-11-30 10:38:53 ----D---- C:\WINDOWS\Temp
                              2008-11-30 10:35:31 ----A---- C:\WINDOWS\SchedLgU.Txt
                              2008-11-30 10:33:16 ----D---- C:\temp
                              2008-11-30 09:25:21 ----D---- C:\WINDOWS\system32
                              2008-11-30 09:25:21 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
                              2008-11-30 09:20:38 ----D---- C:\WINDOWS\system32\CatRoot2
                              2008-11-30 08:59:40 ----D---- C:\WINDOWS\Prefetch
                              2008-11-29 18:30:15 ----D---- C:\WINDOWS\system32\drivers
                              2008-11-29 17:51:16 ----D---- C:\WINDOWS\system32\Restore
                              2008-11-29 17:40:59 ----SHD---- C:\System Volume Information
                              2008-11-29 10:07:36 ----D---- C:\Documents and Settings
                              2008-11-28 19:24:36 ----SHD---- C:\WINDOWS\Installer
                              2008-11-28 19:24:36 ----HD---- C:\Config.Msi
                              2008-11-28 19:23:41 ----D---- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
                              2008-11-28 19:18:23 ----D---- C:\Documents and Settings\HP_Propriétaire\Application Data\Apple Computer
                              2008-11-24 18:13:11 ----RSD---- C:\WINDOWS\Fonts
                              2008-11-23 08:42:28 ----SD---- C:\Documents and Settings\HP_Propriétaire\Application Data\Microsoft
                              2008-11-22 21:18:42 ----RSHDC---- C:\WINDOWS\system32\dllcache
                              2008-11-22 21:18:28 ----D---- C:\WINDOWS\Help
                              2008-11-21 17:17:18 ----SD---- C:\WINDOWS\Tasks
                              2008-11-19 18:18:42 ----HD---- C:\WINDOWS\inf
                              2008-11-18 18:41:38 ----A---- C:\WINDOWS\system32\aswBoot.exe
                              2008-11-16 08:35:38 ----D---- C:\Program Files\eMule
                              2008-11-15 17:39:05 ----D---- C:\WINDOWS\system32\CatRoot
                              2008-11-15 09:39:31 ----A---- C:\WINDOWS\win.ini
                              2008-11-15 09:39:18 ----D---- C:\Program Files\Windows Media Player
                              2008-11-13 15:09:18 ----D---- C:\WINDOWS\Debug
                              2008-11-12 18:13:10 ----HD---- C:\WINDOWS\$hf_mig$
                              2008-11-12 18:11:53 ----D---- C:\WINDOWS\WinSxS
                              2008-11-10 18:09:40 ----SD---- C:\WINDOWS\Downloaded Program Files
                              2008-11-04 01:10:25 ----A---- C:\WINDOWS\system32\MRT.exe
                              2008-10-25 19:25:13 ----HD---- C:\Program Files\InstallShield Installation Information
                              2008-10-16 14:13:40 ----A---- C:\WINDOWS\system32\wuweb.dll
                              2008-10-16 14:13:40 ----A---- C:\WINDOWS\system32\wuaueng.dll
                              2008-10-16 14:12:22 ----A---- C:\WINDOWS\system32\wucltui.dll
                              2008-10-16 14:12:20 ----A---- C:\WINDOWS\system32\wuapi.dll
                              2008-10-16 14:09:44 ----A---- C:\WINDOWS\system32\wups2.dll
                              2008-10-16 14:09:44 ----A---- C:\WINDOWS\system32\wucltui.dll.mui
                              2008-10-16 14:09:44 ----A---- C:\WINDOWS\system32\wuauclt.exe
                              2008-10-16 14:09:44 ----A---- C:\WINDOWS\system32\cdm.dll
                              2008-10-16 14:08:58 ----A---- C:\WINDOWS\system32\wups.dll
                              2008-10-16 14:08:06 ----A---- C:\WINDOWS\system32\wuapi.dll.mui
                              2008-10-16 14:07:32 ----A---- C:\WINDOWS\system32\wuaueng.dll.mui
                              2008-10-16 14:06:48 ----A---- C:\WINDOWS\system32\muweb.dll
                              2008-10-16 14:06:48 ----A---- C:\WINDOWS\system32\mucltui.dll
                              2008-10-16 14:06:40 ----A---- C:\WINDOWS\system32\mucltui.dll.mui
                              2008-10-15 17:35:43 ----A---- C:\WINDOWS\system32\netapi32.dll
                              2008-10-14 19:40:46 ----D---- C:\Program Files\Internet Explorer
                              2008-10-14 19:40:34 ----D---- C:\WINDOWS\ie7updates
                              2008-10-06 17:08:27 ----D---- C:\Program Files\iPod
                              2008-10-06 17:06:30 ----DC---- C:\WINDOWS\system32\DRVSTORE
                              2008-10-03 18:12:27 ----A---- C:\WINDOWS\system32\ieframe.dll
                              2008-09-21 14:19:58 ----D---- C:\Documents and Settings\HP_Propriétaire\Application Data\AdobeUM
                              2008-09-21 14:17:18 ----D---- C:\Program Files\Adobe
                              2008-09-19 18:12:17 ----D---- C:\Program Files\Fichiers communs\Apple
                              2008-09-19 16:25:14 ----D---- C:\WINDOWS\network diagnostic
                              2008-09-12 17:37:22 ----D---- C:\Program Files\Fichiers communs
                              2008-09-10 02:15:15 ----N---- C:\WINDOWS\system32\msxml6.dll
                              2008-09-04 18:16:10 ----A---- C:\WINDOWS\system32\msxml3.dll

                              ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

                              R1 Aavmker4;avast! Asynchronous Virus Monitor; C:\WINDOWS\system32\drivers\Aavmker4.sys [2008-11-18 26944]
                              R1 aswSP;avast! Self Protection; C:\WINDOWS\system32\drivers\aswSP.sys [2008-11-18 110160]
                              R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2008-11-18 50864]
                              R1 AVG Anti-Spyware Driver;AVG Anti-Spyware Driver; \??\C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.sys []
                              R1 AvgAsCln;AVG Anti-Spyware Clean Driver; C:\WINDOWS\System32\DRIVERS\AvgAsCln.sys [2007-05-30 10872]
                              R1 intelppm;Pilote de processeur Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40576]
                              R1 kbdhid;Pilote HID de clavier; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14720]
                              R1 SiSkp;SiSkp; C:\WINDOWS\system32\DRIVERS\srvkp.sys [2004-09-24 12928]
                              R2 ASPI32;ASPI32; C:\WINDOWS\System32\drivers\aspi32.sys [2002-07-17 16512]
                              R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\DRIVERS\aswFsBlk.sys [2008-11-18 20560]
                              R2 aswMon2;avast! Standard Shield Support; C:\WINDOWS\system32\drivers\aswMon2.sys [2008-11-18 94032]
                              R2 MDC8021X;AEGIS Protocol (IEEE 802.1x) v2.3.1.9; C:\WINDOWS\system32\DRIVERS\mdc8021x.sys [2004-05-26 15781]
                              R3 AgereSoftModem;Agere Systems Soft Modem; C:\WINDOWS\system32\DRIVERS\AGRSM.sys [2005-03-04 1066278]
                              R3 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2008-11-18 23152]
                              R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2004-09-10 798208]
                              R3 Cap7134;ASUS TV7134 WDM Video Capture; C:\WINDOWS\system32\DRIVERS\Cap7134.sys [2004-11-05 335360]
                              R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\WINDOWS\SYSTEM32\DRIVERS\GEARAspiWDM.sys [2008-04-17 15464]
                              R3 GTNDIS5;GTNDIS5 NDIS Protocol Driver; \??\C:\WINDOWS\system32\GTNDIS5.SYS []
                              R3 HDAudBus;Pilote de bus Microsoft UAA pour High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
                              R3 HidUsb;Pilote de classe HID Microsoft; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
                              R3 HPZid412;IEEE-1284.4 Driver HPZid412; C:\WINDOWS\system32\DRIVERS\HPZid412.sys [2005-03-08 51120]
                              R3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; C:\WINDOWS\system32\DRIVERS\HPZipr12.sys [2005-03-08 16496]
                              R3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:\WINDOWS\system32\DRIVERS\HPZius12.sys [2005-03-08 21744]
                              R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2004-07-29 2216128]
                              R3 Iviaspi;IVI ASPI Shell; C:\WINDOWS\system32\drivers\iviaspi.sys [2003-09-10 21060]
                              R3 L8042mou;Logitech SetPoint PS/2 Mouse Filter Driver; C:\WINDOWS\system32\DRIVERS\L8042mou.Sys [2004-04-26 54657]
                              R3 LMouKE;Logitech SetPoint Mouse Filter Driver; C:\WINDOWS\system32\DRIVERS\LMouKE.Sys [2004-04-26 71405]
                              R3 mouhid;Pilote HID de souris; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-08-23 12288]
                              R3 Pfc;Padus ASPI Shell; C:\WINDOWS\system32\drivers\pfc.sys [2003-09-19 10368]
                              R3 PhTVTune;ASUS WDM TV Tuner; C:\WINDOWS\system32\DRIVERS\PhTVTune.sys [2004-11-05 24544]
                              R3 usbccgp;Pilote parent générique USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
                              R3 usbehci;Pilote miniport de contrôleur d'hôte amélioré Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-13 30208]
                              R3 usbhub;Concentrateur USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-13 59520]
                              R3 usbprint;Classe d'imprimantes USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
                              R3 usbscan;Pilote de scanneur USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
                              R3 USBSTOR;Pilote de stockage de masse USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
                              R3 usbuhci;Pilote miniport de contrôleur hôte universel USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
                              R3 WUSB54GPV4SRV;Wireless-G Portable USB Adapter Driver; C:\WINDOWS\system32\DRIVERS\rt2500usb.sys [2004-07-16 140416]
                              S1 AmdK7;Pilote de processeur AMD K7; C:\WINDOWS\system32\DRIVERS\amdk7.sys [2008-04-14 41856]
                              S3 ALCXWDM;Service for Realtek AC97 Audio (WDM); C:\WINDOWS\system32\drivers\ALCXWDM.SYS [2004-10-01 2279424]
                              S3 Arp1394;Protocole client ARP 1394; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-13 60800]
                              S3 CCDECODE;Décodeur sous-titre fermé; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
                              S3 EagleNT;EagleNT; \??\C:\WINDOWS\system32\drivers\EagleNT.sys []
                              S3 EL90XBC;Pilote de la carte EtherLink XL 90XB/C 3Com; C:\WINDOWS\system32\DRIVERS\el90xbc5.sys [2001-08-18 66591]
                              S3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\ialmnt5.sys [2004-08-20 737874]
                              S3 MSTEE;Convertisseur en T/site-à-site de répartition Microsoft; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504]
                              S3 NABTSFEC;Codec NABTS/FEC VBI; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
                              S3 NdisIP;Connection TV/vidéo Microsoft; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-13 10880]
                              S3 NIC1394;Pilote réseau 1394; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-13 61824]
                              S3 PalmUSBD;PalmUSBD; C:\WINDOWS\system32\drivers\PalmUSBD.sys [2005-11-10 16694]
                              S3 Ps2;PS2; C:\WINDOWS\system32\DRIVERS\PS2.sys [2001-06-04 14112]
                              S3 rtl8139;Realtek RTL8139/810x Family Fast Ethernet NIC NT Driver; C:\WINDOWS\system32\DRIVERS\R8139n51.SYS [2002-10-04 46976]
                              S3 SiS315;SiS315; C:\WINDOWS\system32\DRIVERS\sisgrp.sys [2004-09-29 229888]
                              S3 SLIP;Détrameur décalage BDA; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-13 11136]
                              S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-13 15232]
                              S3 usbohci;Pilote miniport de contrôleur hôte ouvert USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbohci.sys [2008-04-13 17152]
                              S3 viagfx;viagfx; C:\WINDOWS\system32\DRIVERS\vtmini.sys [2004-09-23 173312]
                              S3 WSTCODEC;Codec Teletext standard; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]
                              S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
                              S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]

                              ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

                              R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [2008-10-01 116040]
                              R2 aswUpdSv;avast! iAVS4 Control Service; C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe [2008-11-18 18752]
                              R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2004-09-10 405504]
                              R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast4\ashServ.exe [2008-11-18 155160]
                              R2 AVG Anti-Spyware Guard;AVG Anti-Spyware Guard; C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe [2007-05-30 312880]
                              R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe [2008-11-18 254040]
                              R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast4\ashWebSv.exe [2008-11-18 352920]
                              S2 WUSB54Gv4SVC;WUSB54Gv4SVC; C:\Program Files\Linksys Wireless-G USB Wireless Network Monitor\WLService.exe [2004-02-06 41025]
                              S3 aspnet_state;Service d'état ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_state.exe [2004-07-15 32768]
                              S3 Fax;Fax; C:\WINDOWS\system32\fxssvc.exe [2008-04-14 268800]
                              S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2007-09-01 138168]
                              S3 iPod Service;Service de l’iPod; C:\Program Files\iPod\bin\iPodService.exe [2008-10-01 536872]
                              S3 WMPNetworkSvc;Service Partage réseau du Lecteur Windows Media; C:\Program Files\Windows Media Player\WMPNetwk.exe [2006-11-03 918016]
                              S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]

                              -----------------EOF-----------------

                              et le deuxieme

                              info.txt logfile of random's system information tool 1.04 2008-11-30 10:55:36

                              ======Uninstall list======

                              -->"C:\Program Files\InstallShield Installation Information\{1A91D1FA-B9B3-4556-9878-5C61059A19B2}\setup.exe" REMOVEALL
                              -->C:\Program Files\DivX\DivXConverterUninstall.exe /CONVERTER
                              -->C:\Program Files\Fichiers communs\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0
                              -->C:\WINDOWS\IsUn040c.exe -fC:\WINDOWS\orun32.isu
                              -->C:\WINDOWS\system32\\MSIEXEC.EXE /I {09DA4F91-2A09-4232-AB8C-6BC740096DE3} REMOVE=UpdateMgrFeature
                              -->c:\WINDOWS\system32\\MSIEXEC.EXE /x {9541FED0-327F-4df0-8B96-EF57EF622F19}
                              -->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{89AD2814-AFA2-46AF-AE53-C27196D9FBE6}\setup.exe" REMOVEALL
                              -->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{AAA4CCCE-78DB-47B0-A651-68270D838BD4}\setup.exe" REMOVEALL
                              -->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{E06E4F4E-72D6-4497-BFFD-BCB43077C2F4}\setup.exe" -l0x40c -uninst
                              -->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
                              ABC (remove only)-->C:\Program Files\ABC\Uninstall.exe
                              AC3Filter (remove only)-->C:\Program Files\AC3Filter\uninstall.exe
                              Adobe Flash Player ActiveX-->C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
                              Adobe Flash Player Plugin-->C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
                              Adobe Reader 7.0 - Français-->MsiExec.exe /I{AC76BA86-7AD7-1036-7B44-A70000000000}
                              Agere Systems PCI Soft Modem-->agrsmdel
                              ALUpdate-->"C:\Program Files\ESTsoft\ALUpdate\unins000.exe"
                              Apple Mobile Device Support-->MsiExec.exe /I{976C2B2A-CE59-4AB3-83FB-BF895E28F2E6}
                              Apple Software Update-->MsiExec.exe /I{6956856F-B6B3-4BE0-BA0B-8F495BE32033}
                              Archiveur WinRAR-->C:\Program Files\WinRAR\uninstall.exe
                              ATI Control Panel-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{0BEDBD4E-2D34-47B5-9973-57E62B29307C}\setup.exe"
                              ATI Display Driver-->rundll32 C:\WINDOWS\system32\atiiiexx.dll,_InfEngUnInstallINFFile_RunDLL@16 -force_restart -flags:0x2010001 -inf_class:DISPLAY -clean
                              avast! Antivirus-->C:\Program Files\Alwil Software\Avast4\aswRunDll.exe "C:\Program Files\Alwil Software\Avast4\Setup\setiface.dll",RunSetup
                              AviSynth 2.5-->"C:\Program Files\AviSynth 2.5\Uninstall.exe"
                              Baldur's Gate(TM) II - Shadows of Amn(TM)-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{5E30BDEB-9307-11D4-9AE0-006067325E47}\setup.exe"
                              CCleaner (remove only)-->"C:\Program Files\CCleaner\uninst.exe"
                              Compatibility Pack for the 2007 Office system-->MsiExec.exe /X{90120000-0020-040C-0000-0000000FF1CE}
                              Connexion Facile à Internet-->C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{8105684D-8CA6-440D-8F58-7E5FD67A499D} /l1036
                              Correctif pour Lecteur Windows Media 11 (KB939683)-->"C:\WINDOWS\$NtUninstallKB939683$\spuninst\spuninst.exe"
                              Correctif pour Windows Internet Explorer 7 (KB947864)-->"C:\WINDOWS\ie7updates\KB947864-IE7\spuninst\spuninst.exe"
                              Correctif pour Windows XP (KB952287)-->"C:\WINDOWS\$NtUninstallKB952287$\spuninst\spuninst.exe"
                              DivX Codec-->C:\Program Files\DivX\DivXCodecUninstall.exe /CODEC
                              DivX Content Uploader-->C:\Program Files\DivX\DivXContentUploaderUninstall.exe /CUPLOADER
                              DivX Converter-->C:\Program Files\DivX\DivXConverterUninstall.exe /CONVERTER
                              DivX Player-->C:\Program Files\DivX\DivXPlayerUninstall.exe /PLAYER
                              DivX Web Player-->C:\Program Files\DivX\DivXWebPlayerUninstall.exe /PLUGIN
                              Documents To Go-->MsiExec.exe /X{D6FFC3B5-0CE1-4566-801D-3F9D8F000652}
                              eMule-->"C:\Program Files\eMule\Uninstall.exe"
                              FindyKill-->C:\Program Files\FindyKill\Uninstal.exe
                              Google Toolbar for Firefox-->MsiExec.exe /X{2CCBABCB-6427-4A55-B091-49864623C43F}
                              Google Toolbar for Internet Explorer-->MsiExec.exe /I{DBEA1034-5882-4A88-8033-81C4EF0CFA29}
                              Google Toolbar for Internet Explorer-->regsvr32 /u /s "c:\program files\google\googletoolbar1.dll"
                              Help and Support Additions-->C:\PROGRA~1\HELPAN~1\UNWISE.EXE C:\PROGRA~1\HELPAN~1\INSTALL.LOG
                              High Definition Audio Driver Package - KB835221-->C:\WINDOWS\$NtUninstallKB835221WXP$\spuninst\spuninst.exe
                              Hotfix for Windows Media Format 11 SDK (KB929399)-->"C:\WINDOWS\$NtUninstallKB929399$\spuninst\spuninst.exe"
                              HP Appareils photos Photosmart 4.0-->C:\Program Files\HP\Digital Imaging\{4C04DF1B-6A39-4299-9DD1-1FA60000266E}\setup\hpzscr01.exe -datfile hpiscr01.dat
                              HP Deskjet Preloaded Printer Drivers-->MsiExec.exe /X{F419D20A-7719-4639-8E30-C073A040D878}
                              HP Driver Diagnostics-->MsiExec.exe /I{16BE87BC-69F5-4D36-8CF0-E1CB3ACD5ED3}
                              HP Image Zone 4.2.3-->C:\Program Files\HP\Digital Imaging\uninstall\hpzscr01.exe -datfile hpqscr01.dat
                              HP Image Zone Plus 4.2.3-->C:\Program Files\HP\Digital Imaging\{0D182A5E-AEE0-42ca-BD1D-4EEB2FFA256D}\setup\hpzscr01.exe -datfile hpdscr01.dat
                              HP PSC & OfficeJet 4.0-->"C:\Program Files\HP\Digital Imaging\{A1062847-0846-427A-92A1-BB8251A91E91}\setup\hpzscr01.exe" -datfile hposcr04.dat
                              HP Software Update-->MsiExec.exe /X{457791C5-D702-4143-A7B2-2744BE9573F2}
                              HPIZ423-->MsiExec.exe /X{561A9B4E-2E48-4149-B977-59C7AFF62B52}
                              InterActual Player-->C:\Program Files\InterActual\InterActual Player\inuninst.exe
                              InterVideo DiscLabel-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{C3F058C0-A21C-452D-8D99-95B1A45F417D}\setup.exe" REMOVEALL
                              InterVideo Home Theater-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{F7514465-E5F3-48E9-A952-327DAEF33DE6}\setup.exe" REMOVEALL
                              InterVideo WinDVD Creator-->"C:\Program Files\InstallShield Installation Information\{2FCE4FC5-6930-40E7-A4F1-F862207424EF}\setup.exe" REMOVEALL
                              InterVideo WinDVD Player-->"C:\Program Files\InstallShield Installation Information\{91810AFC-A4F8-4EBA-A5AA-B198BBC81144}\setup.exe" REMOVEALL
                              iPod for Windows 2005-06-26-->C:\Program Files\Fichiers communs\InstallShield\Driver\8\Intel 32\IDriver.exe /M{654F0312-CB3D-4FE2-962C-6BB9752E9146} /l1036
                              iTunes-->MsiExec.exe /I{DDDE0BE3-0CBE-4BF6-B75A-E3F69C947843}
                              Java 2 Runtime Environment, SE v1.4.2_03-->MsiExec.exe /I{7148F0A8-6813-11D6-A77B-00B0D0142030}
                              Java(TM) 6 Update 5-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160050}
                              Java(TM) 6 Update 7-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160070}
                              KBD-->C:\HP\KBD\KBD.EXE uninstalled
                              Lame ACM MP3 Codec-->C:\WINDOWS\system32\rundll32.exe setupapi,InstallHinfSection Remove_LameMP3 132 C:\WINDOWS\INF\LameACM.inf
                              Lecteur Windows Media 11-->"C:\Program Files\Windows Media Player\Setup_wm.exe" /Uninstall
                              Linksys Wireless-G USB Network Adapter-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{C7EEF2B9-8C16-4A04-B98D-B1A952A47E55}\setup.exe" -l0x9
                              Logitech SetPoint-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{2E8EAC71-BFE4-417A-88F0-5A1BDFBCF5D3}\setup.exe" -l0x40c
                              Microsoft .NET Framework 1.1 French Language Pack-->MsiExec.exe /X{9A394342-4A68-4EBA-85A6-55B559F4E700}
                              Microsoft .NET Framework 1.1 Hotfix (KB928366)-->"C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe" "C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\M928366\M928366Uninstall.msp"
                              Microsoft .NET Framework 1.1-->msiexec.exe /X {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
                              Microsoft .NET Framework 1.1-->MsiExec.exe /X{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
                              Microsoft Compression Client Pack 1.0 for Windows XP-->"C:\WINDOWS\$NtUninstallMSCompPackV1$\spuninst\spuninst.exe"
                              Microsoft Internationalized Domain Names Mitigation APIs-->"C:\WINDOWS\$NtServicePackUninstallIDNMitigationAPIs$\spuninst\spuninst.exe"
                              Microsoft National Language Support Downlevel APIs-->"C:\WINDOWS\$NtServicePackUninstallNLSDownlevelMapping$\spuninst\spuninst.exe"
                              Microsoft Office XP Professional avec FrontPage-->MsiExec.exe /I{9028040C-6000-11D3-8CFE-0050048383C9}
                              Microsoft User-Mode Driver Framework Feature Pack 1.0-->"C:\WINDOWS\$NtUninstallWudf01000$\spuninst\spuninst.exe"
                              Microsoft Windows Media Video 9 VCM-->RunDll32 advpack.dll,LaunchINFSection C:\WINDOWS\INF\wmv9vcm.inf, Uninstall
                              Mise à jour de sécurité pour Lecteur Windows Media 10 (KB911565)-->"C:\WINDOWS\$NtUninstallKB911565$\spuninst\spuninst.exe"
                              Mise à jour de sécurité pour Lecteur Windows Media 10 (KB917734)-->"C:\WINDOWS\$NtUninstallKB917734_WMP10$\spuninst\spuninst.exe"
                              Mise à jour de sécurité pour Lecteur Windows Media 10 (KB936782)-->"C:\WINDOWS\$NtUninstallKB936782_WMP10$\spuninst\spuninst.exe"
                              Mise à jour de sécurité pour Lecteur Windows Media 11 (KB936782)-->"C:\WINDOWS\$NtUninstallKB936782_WMP11$\spuninst\spuninst.exe"
                              Mise à jour de sécurité pour Lecteur Windows Media 11 (KB954154)-->"C:\WINDOWS\$NtUninstallKB954154_WM11$\spuninst\spuninst.exe"
                              Mise à jour de sécurité pour Step by Step Interactive Training (KB898458)-->"C:\WINDOWS\$NtUninstallKB898458$\spuninst\spuninst.exe"
                              Mise à jour de sécurité pour Step by Step Interactive Training (KB923723)-->"C:\WINDOWS\$NtUninstallKB923723$\spuninst\spuninst.exe"
                              Mise à jour de sécurité pour Windows Internet Explorer 7 (KB938127)-->"C:\WINDOWS\ie7updates\KB938127-IE7\spuninst\spuninst.exe"
                              Mise à jour de sécurité pour Windows Internet Explorer 7 (KB944533)-->"C:\WINDOWS\ie7updates\KB944533-IE7\spuninst\spuninst.exe"
                              Mise à jour de sécurité pour Windows Internet Explorer 7 (KB950759)-->"C:\WINDOWS\ie7updates\KB950759-IE7\spuninst\spuninst.exe"
                              Mise à jour de sécurité pour Windows Internet Explorer 7 (KB953838)-->"C:\WINDOWS\ie7updates\KB953838-IE7\spuninst\spuninst.exe"
                              Mise à jour de sécurité pour Windows Internet Explorer 7 (KB956390)-->"C:\WINDOWS\ie7updates\KB956390-IE7\spuninst\spuninst.exe"
                              Mise à jour de sécurité pour Windows XP (KB938464)-->"C:\WINDOWS\$NtUninstallKB938464$\spuninst\spuninst.exe"
                              Mise à jour de sécurité pour Windows XP (KB941569)-->"C:\WINDOWS\$NtUninstallKB941569$\spuninst\spuninst.exe"
                              Mise à jour de sécurité pour Windows XP (KB946648)-->"C:\WINDOWS\$NtUninstallKB946648$\spuninst\spuninst.exe"
                              Mise à jour de sécurité pour Windows XP (KB950760)-->"C:\WINDOWS\$NtUninstallKB950760$\spuninst\spuninst.exe"
                              Mise à jour de sécurité pour Windows XP (KB950762)-->"C:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe"
                              Mise à jour de sécurité pour Windows XP (KB950974)-->"C:\WINDOWS\$NtUninstallKB950974$\spuninst\spuninst.exe"
                              Mise à jour de sécurité pour Windows XP (KB951066)-->"C:\WINDOWS\$NtUninstallKB951066$\spuninst\spuninst.exe"
                              Mise à jour de sécurité pour Windows XP (KB951376)-->"C:\WINDOWS\$NtUninstallKB951376$\spuninst\spuninst.exe"
                              Mise à jour de sécurité pour Windows XP (KB951376-v2)-->"C:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe"
                              Mise à jour de sécurité pour Windows XP (KB951698)-->"C:\WINDOWS\$NtUninstallKB951698$\spuninst\spuninst.exe"
                              Mise à jour de sécurité pour Windows XP (KB951748)-->"C:\WINDOWS\$NtUninstallKB951748$\spuninst\spuninst.exe"
                              Mise à jour de sécurité pour Windows XP (KB952954)-->"C:\WINDOWS\$NtUninstallKB952954$\spuninst\spuninst.exe"
                              Mise à jour de sécurité pour Windows XP (KB953839)-->"C:\WINDOWS\$NtUninstallKB953839$\spuninst\spuninst.exe"
                              Mise à jour de sécurité pour Windows XP (KB954211)-->"C:\WINDOWS\$NtUninstallKB954211$\spuninst\spuninst.exe"
                              Mise à jour de sécurité pour Windows XP (KB954459)-->"C:\WINDOWS\$NtUninstallKB954459$\spuninst\spuninst.exe"
                              Mise à jour de sécurité pour Windows XP (KB955069)-->"C:\WINDOWS\$NtUninstallKB955069$\spuninst\spuninst.exe"
                              Mise à jour de sécurité pour Windows XP (KB956391)-->"C:\WINDOWS\$NtUninstallKB956391$\spuninst\spuninst.exe"
                              Mise à jour de sécurité pour Windows XP (KB956803)-->"C:\WINDOWS\$NtUninstallKB956803$\spuninst\spuninst.exe"
                              Mise à jour de sécurité pour Windows XP (KB956841)-->"C:\WINDOWS\$NtUninstallKB956841$\spuninst\spuninst.exe"
                              Mise à jour de sécurité pour Windows XP (KB957095)-->"C:\WINDOWS\$NtUninstallKB957095$\spuninst\spuninst.exe"
                              Mise à jour de sécurité pour Windows XP (KB957097)-->"C:\WINDOWS\$NtUninstallKB957097$\spuninst\spuninst.exe"
                              Mise à jour de sécurité pour Windows XP (KB958644)-->"C:\WINDOWS\$NtUninstallKB958644$\spuninst\spuninst.exe"
                              Mise à jour pour Windows XP (KB951072-v2)-->"C:\WINDOWS\$NtUninstallKB951072-v2$\spuninst\spuninst.exe"
                              Mise à jour pour Windows XP (KB951978)-->"C:\WINDOWS\$NtUninstallKB951978$\spuninst\spuninst.exe"
                              Mozilla Firefox (3.0.4)-->C:\Program Files\Mozilla Firefox\uninstall\helper.exe
                              MSXML 4.0 SP2 (KB927978)-->MsiExec.exe /I{37477865-A3F1-4772-AD43-AAFC6BCFF99F}
                              MSXML 4.0 SP2 (KB936181)-->MsiExec.exe /I{C04E32E0-0416-434D-AFB9-6969D703A9EF}
                              MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
                              palmOne-->MsiExec.exe /X{E434580A-2D4A-4433-A81E-4BCAE86AD148}
                              Panneau de configuration MobileMe-->MsiExec.exe /I{6DA9102E-199F-43A0-A36B-6EF48081A658}
                              PC-Doctor for Windows-->C:\Program Files\Fichiers communs\InstallShield\Driver\8\Intel 32\IDriver.exe /M{0C66761E-497A-4BE3-AE0D-8EC30FC9A9AA} /l1036
                              Photosmart 320,370,7400,8100,8400 Series (fra)-->C:\Program Files\HP\{AAC4FC36-8F89-4587-8DD3-EBC57C83374D}\setup\hpzscr01.exe -datfile hphscr01.dat
                              PS2-->C:\WINDOWS\system32\ps2.exe uninstall
                              Python 2.2 combined Win32 extensions-->C:\Python22\Lib\SITE-P~1\UNWISE~1.EXE C:\Python22\Lib\SITE-P~1\w32inst.log
                              Python 2.2.1-->C:\Python22\UNWISE.EXE C:\Python22\INSTALL.LOG
                              QuickTime-->MsiExec.exe /I{8DC42D05-680B-41B0-8878-6C14D24602DB}
                              RealPlayer-->C:\Program Files\Fichiers communs\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0
                              Security Update for CAPICOM (KB931906)-->MsiExec.exe /I{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
                              Security Update for CAPICOM (KB931906)-->MsiExec.exe /X{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
                              SiS VGA Utilities-->Rundll32 SiSInst.dll,Uninstall VGA,R,oem51.inf
                              Sonic Express Labeler-->MsiExec.exe /I{6675CA7F-E51B-4F6A-99D4-F8F0124C6EAA}
                              Sonic RecordNow!-->MsiExec.exe /I{9541FED0-327F-4DF0-8B96-EF57EF622F19}
                              Sonic Update Manager-->MsiExec.exe /I{09DA4F91-2A09-4232-AB8C-6BC740096DE3}
                              UsbFix-->C:\Program Files\UsbFix\Uninstal.exe
                              Windows Media Format 11 runtime-->"C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
                              Windows Media Format 11 runtime-->"C:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe"
                              Windows Media Player 11-->"C:\WINDOWS\$NtUninstallwmp11$\spuninst\spuninst.exe"
                              Windows XP Service Pack 3-->"C:\WINDOWS\$NtServicePackUninstall$\spuninst\spuninst.exe"
                              X-OOM Movies On iPod désinstaller-->C:\Program Files\X-OOM\Movies On iPod\uninstall.exe
                              X-OOM MP3 Radio Recorder-->"C:\Program Files\X-OOM\MP3 Radio Recorder\unins000.exe"

                              ======Hosts File======

                              127.0.0.1 www.007guard.com
                              127.0.0.1 007guard.com
                              127.0.0.1 008i.com
                              127.0.0.1 www.008k.com
                              127.0.0.1 008k.com
                              127.0.0.1 www.00hq.com
                              127.0.0.1 00hq.com
                              127.0.0.1 010402.com
                              127.0.0.1 www.032439.com
                              127.0.0.1 032439.com

                              ======Security center information======

                              AV: avast! antivirus 4.8.1290 [VPS 081129-0]

                              ======Environment variables======

                              "ComSpec"=%SystemRoot%\system32\cmd.exe
                              "Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;c:\Python22;C:\Program Files\ATI Technologies\ATI Control Panel;C:\Program Files\QuickTime\QTSystem
                              "windir"=%SystemRoot%
                              "FP_NO_HOST_CHECK"=NO
                              "OS"=Windows_NT
                              "PROCESSOR_ARCHITECTURE"=x86
                              "PROCESSOR_LEVEL"=15
                              "PROCESSOR_IDENTIFIER"=x86 Family 15 Model 3 Stepping 4, GenuineIntel
                              "PROCESSOR_REVISION"=0304
                              "NUMBER_OF_PROCESSORS"=1
                              "PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
                              "TEMP"=%SystemRoot%\TEMP
                              "TMP"=%SystemRoot%\TEMP
                              "CLASSPATH"=.;C:\Program Files\Java\jre1.6.0_07\lib\ext\QTJava.zip
                              "QTJAVA"=C:\Program Files\Java\jre1.6.0_07\lib\ext\QTJava.zip

                              -----------------EOF-----------------
                              0
                              1. Hi,

                                Fait ceci maintenant:

                                -Télécharge et installe MalwareByte's Anti-Malware
                                Malwarebyte

                                - Mets le à jour

                                ---
                                - Double clique sur le raccourci de MalwareByte's Anti-Malware qui est sur le bureau.
                                - Sélectionne Exécuter un examen complet si ce n'est pas déjà fait
                                - clique sur Rechercher

                                - Une fois le scan terminé, une fenêtre s'ouvre, clique sur sur Ok

                                - Si MalwareByte's n'a rien détecté, clique sur Ok Un rapport va apparaître ferme-le.

                                - Si MalwareByte's a détecté des infections, clique sur Afficher les résultats ensuite sur Supprimer la sélection

                                - Enregistre le rapport sur ton Bureau comme cela il sera plus facile à retrouver, poste ensuite ce rapport.

                                Note : Si MalwareByte's a besoin de redémarrer pour terminer la suppression, accepte en cliquant sur Ok
                                0
                                1. Contributeur sécurité
                                  bonjour, pour une plus grande efficassité de malwarebytes il est préférable de faire l'examen complet en mode sans echec
                                  0
                                  1. Hi,

                                    Cela reste sujet à débat...........

                                    Alut.

                                    PS:vue le topic fait par "Lyonnais92" sur le sujet.
                                    0
                                    1. alors j ai télécharger Malwarebyte mais quand j essaie de l installer, rien ne se passe.
                                      0
                                      • 1
                                      • 2