Fenetres intempestives

Bonjour,
j'ai un petit problème de fenêtres intempestives. Je poste un rapport avant de passer à l'étape suivante d'éradication du problème.

Search Navipromo version 3.6.9 commencé le 08/01/2009 à 14:45:30,45

!!! Attention,ce rapport peut indiquer des fichiers/programmes légitimes!!!
!!! Postez ce rapport sur le forum pour le faire analyser !!!
!!! Ne lancez pas la partie désinfection sans l'avis d'un spécialiste !!!

Outil exécuté depuis C:\Program Files\navilog1
Session actuelle : "Anne-Claire LHOTE"

Mise à jour le 05.11.2008 à 21h00 par IL-MAFIOSO

Microsoft Windows XP [version 5.1.2600]
Internet Explorer : 7.0.5730.13
Système de fichiers : NTFS

Recherche executé en mode normal

*** Recherche Programmes installés ***

*** Recherche dossiers dans "C:\WINDOWS" ***

*** Recherche dossiers dans "C:\Program Files" ***

*** Recherche dossiers dans "C:\Documents and Settings\All Users\menudm~1\progra~1" ***

*** Recherche dossiers dans "C:\Documents and Settings\All Users\menudm~1" ***

*** Recherche dossiers dans "c:\docume~1\alluse~1\applic~1" ***

*** Recherche dossiers dans "C:\Documents and Settings\Anne-Claire LHOTE\applic~1" ***

*** Recherche dossiers dans "C:\DOCUME~1\ADMINI~1\applic~1" ***

*** Recherche dossiers dans "C:\Documents and Settings\Anne-Claire LHOTE\locals~1\applic~1" ***

*** Recherche dossiers dans "C:\DOCUME~1\ADMINI~1\locals~1\applic~1" ***

*** Recherche dossiers dans "C:\Documents and Settings\Anne-Claire LHOTE\menudm~1\progra~1" ***

*** Recherche avec Catchme-rootkit/stealth malware detector par gmer ***
pour + d'infos : http://www.gmer.net

*** Recherche avec GenericNaviSearch ***
!!! Tous ces résultats peuvent révéler des fichiers légitimes !!!
!!! A vérifier impérativement avant toute suppression manuelle !!!

* Recherche dans "C:\WINDOWS\system32" *

* Recherche dans "C:\Documents and Settings\Anne-Claire LHOTE\locals~1\applic~1" *

* Recherche dans "C:\DOCUME~1\ADMINI~1\locals~1\applic~1" *

*** Recherche fichiers ***

*** Recherche clés spécifiques dans le Registre ***

*** Module de Recherche complémentaire ***
(Recherche fichiers spécifiques)

1)Recherche nouveaux fichiers Instant Access :

2)Recherche Heuristique :

* Dans "C:\WINDOWS\system32" :

* Dans "C:\Documents and Settings\Anne-Claire LHOTE\locals~1\applic~1" :

* Dans "C:\DOCUME~1\ADMINI~1\locals~1\applic~1" :

3)Recherche Certificats :

Certificat Egroup absent !
Certificat Electronic-Group absent !
Certificat Montorgueil absent !
Certificat OOO-Favorit absent !
Certificat Sunny-Day-Design-Ltd absent !

4)Recherche fichiers connus :

*** Analyse terminée le 08/01/2009 à 14:52:56,12 ***

D'avance merci.
Configuration: Windows XP
Firefox 3.0.4

22 réponses

  1. Modérateur
    Salut,

    Navilog1 n'a rien détecté.

    - Télécharge HijackThis v2.0.2 sur ton Bureau.

    - Double-clique sur HJTInstall afin de lancer l'installation.

    - Clique sur Install ensuite sur I Accept.

    - Clique sur Do a system scan and save a logfile.

    - Le bloc-notes s'ouvrira, fais un copier/coller de tout son contenu ici dans ton prochain message.
    0
    1. Yop !

      Logfile of Trend Micro HijackThis v2.0.2
      Scan saved at 15:04:57, on 08/01/2009
      Platform: Windows XP SP3 (WinNT 5.01.2600)
      MSIE: Internet Explorer v7.00 (7.00.6000.16735)
      Boot mode: Normal

      Running processes:
      C:\WINDOWS\System32\smss.exe
      C:\WINDOWS\system32\winlogon.exe
      C:\WINDOWS\system32\services.exe
      C:\WINDOWS\system32\lsass.exe
      C:\WINDOWS\system32\svchost.exe
      C:\WINDOWS\System32\svchost.exe
      C:\WINDOWS\system32\spoolsv.exe
      C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
      C:\WINDOWS\Explorer.EXE
      C:\WINDOWS\ehome\ehtray.exe
      C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
      C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
      C:\WINDOWS\system32\RUNDLL32.EXE
      C:\WINDOWS\ATK0100\HControl.exe
      C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
      C:\Program Files\Sonic\DigitalMedia LE v7\MyDVD LE\DetectorApp.exe
      C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe
      C:\Program Files\Java\jre1.5.0_04\bin\jucheck.exe
      C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
      C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
      C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
      C:\Program Files\QuickTime\QTTask.exe
      C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
      C:\Program Files\Bonjour\mDNSResponder.exe
      C:\Program Files\iTunes\iTunesHelper.exe
      C:\Program Files\Fichiers communs\Nero\Nero BackItUp 4\NBService.exe
      C:\Program Files\EoRezo\EoEngine.exe
      C:\WINDOWS\ATK0100\ATKOSD.exe
      C:\Program Files\Messenger\msmsgs.exe
      C:\APPS\SMP\SmpSys.exe
      C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
      C:\WINDOWS\system32\ctfmon.exe
      C:\Program Files\Lecteur CANALPLAY\CanalPlayer.exe
      C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
      C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
      C:\Program Files\Microsoft Office\Office\OSA.EXE
      C:\Program Files\Microsoft Office\Office\FINDFAST.EXE
      C:\WINDOWS\system32\svchost.exe
      C:\Program Files\OpenOffice.org 2.4\program\soffice.exe
      C:\Program Files\Fichiers communs\Ulead Systems\DVD\ULCDRSvr.exe
      C:\Program Files\Sonic\DigitalMedia LE v7\MyDVD LE\USBDeviceService.exe
      C:\Program Files\OpenOffice.org 2.4\program\soffice.BIN
      c:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe
      c:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHid.exe
      c:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHsp.exe
      C:\Program Files\iPod\bin\iPodService.exe
      C:\Program Files\Lecteur CANALPLAY\CanalPlayService.exe
      c:\progra~1\fichie~1\instal~1\update~1\isuspm.exe
      C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
      C:\Program Files\Fichiers communs\InstallShield\UpdateService\agent.exe
      C:\Program Files\Vuze\Azureus.exe
      c:\Program Files\Toshiba\Bluetooth Toshiba Stack\tosOBEX.exe
      c:\Program Files\Toshiba\Bluetooth Toshiba Stack\tosBtProc.exe
      C:\Program Files\Mozilla Firefox\firefox.exe
      C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
      C:\Program Files\Windows Media Player\wmplayer.exe
      C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

      R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://lo.st#home
      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
      R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
      R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
      R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
      O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
      O2 - BHO: EoRezoBHO - {64F56FC1-1272-44CD-BA6E-39723696E350} - C:\PROGRA~1\EoRezo\EoAdv\EOREZO~1.DLL
      O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
      O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll
      O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
      O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
      O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
      O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
      O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
      O4 - HKLM\..\Run: [Raccourci vers la page des propriétés de High Definition Audio] HDAShCut.exe
      O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
      O4 - HKLM\..\Run: [SMSERIAL] C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
      O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
      O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
      O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
      O4 - HKLM\..\Run: [HControl] C:\WINDOWS\ATK0100\HControl.exe
      O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
      O4 - HKLM\..\Run: [DetectorApp] C:\Program Files\Sonic\DigitalMedia LE v7\MyDVD LE\DetectorApp.exe
      O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\FICHIE~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
      O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe" -start
      O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
      O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
      O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
      O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
      O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
      O4 - HKLM\..\Run: [EoEngine] "C:\Program Files\EoRezo\EoEngine.exe"
      O4 - HKLM\..\Run: [ItsTV] "C:\Program Files\ItsLabel\ItsTV.exe"
      O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
      O4 - HKCU\..\Run: [SmpcSys] C:\APPS\SMP\SmpSys.exe
      O4 - HKCU\..\Run: [updateMgr] C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_0_0
      O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
      O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
      O4 - HKCU\..\Run: [CanalPlayer] C:\Program Files\Lecteur CANALPLAY\CanalPlayer.exe
      O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
      O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
      O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
      O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
      O4 - Startup: Démarrage d'Office.lnk = C:\Program Files\Microsoft Office\Office\OSA.EXE
      O4 - Startup: Microsoft Recherche accélérée.lnk = C:\Program Files\Microsoft Office\Office\FINDFAST.EXE
      O4 - Startup: OpenOffice.org 2.4.lnk = C:\Program Files\OpenOffice.org 2.4\program\quickstart.exe
      O4 - Global Startup: Bluetooth Manager.lnk = ?
      O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
      O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
      O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
      O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
      O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
      O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
      O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
      O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
      O15 - Trusted Zone: *.canalplay.com
      O15 - Trusted Zone: *.canalplusactive.com
      O15 - Trusted Zone: *.canalplay.com (HKLM)
      O15 - Trusted Zone: *.canalplusactive.com (HKLM)
      O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx2.hotmail.com/mail/w3/pr01/resources/MSNPUpld.cab
      O16 - DPF: {5D637FAD-E202-48D1-8F18-5B9C459BD1E3} (Image Uploader Control) - https://www.canalblog.com/sharedDocs/misc/uploader/ImageUploader5.cab
      O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/...
      O16 - DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} (get_atlcom Class) - http://www.adobe.com/products/acrobat/nos/gp.cab
      O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
      O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
      O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
      O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
      O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
      O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
      O23 - Service: Service de l’iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
      O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files\Fichiers communs\Nero\Nero BackItUp 4\NBService.exe
      O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
      O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
      O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE Technologies - C:\Program Files\WinPcap\rpcapd.exe
      O23 - Service: Service CANALPLAY - Canal+ Distribution - C:\Program Files\Lecteur CANALPLAY\CanalPlayService.exe
      O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Fichiers communs\Ulead Systems\DVD\ULCDRSvr.exe
      O23 - Service: USBDeviceService - Unknown owner - C:\Program Files\Sonic\DigitalMedia LE v7\MyDVD LE\USBDeviceService.exe
      0
      1. Modérateur
        ---> Désinstalle EoEngine.

        ● Télécharge AD-Remover (de Cyrildu17 / C_XX) sur ton Bureau.

        /!\ Déconnecte-toi et ferme toutes applications en cours /!\

        ● Double-clique sur le programme d'installation, installe-le dans son emplacement par défaut (C:\Program files).
        ● Double-clique sur l'icône Ad-remover située sur ton Bureau.
        ● Au menu principal, choisis l'option "A".
        ● Poste le rapport qui apparaît à la fin.

        (Le rapport est sauvegardé aussi sous C:\Ad-report(date).log)

        (CTRL+A pour tout sélectionner, CTRL+C pour copier et CTRL+V pour coller)

        Note :

        "Process.exe", une composante de l'outil, est détectée par certains antivirus (AntiVir, Dr.Web, Kaspersky Anti-Virus) comme étant un RiskTool.
        Il ne s'agit pas d'un virus, mais d'un utilitaire destiné à mettre fin à des processus.
        Mis entre de mauvaises mains, cet utilitaire pourrait arrêter des logiciels de sécurité (Antivirus, Firewall...) d'où l'alerte émise par ces antivirus.
        0
        1. -------- Logfile of AD-Remover 1.0.5.9 by C_XX ---------

          # START at: 15:18:50 | 08/01/2009 ON Microsoft® Windows XP ™ v5.1.2600
          # BOOT MODE: Normal

          # OPTION: Scan
          # EXECUTED FROM: C:\Program Files\Ad-remover\AD-Remover.bat

          # PC: SN012345678912 | USER: Anne-Claire LHOTE ( Current user is an administrator )

          # DRIVE(S): C:\
          # Systemdrive: C:\ (NTFS)
          # Internet Explorer v7.0.5730.13

          --------- [ RUNNING PROCESSES: 63 ] ---------

          \SystemRoot\System32\smss.exe
          \??\C:\WINDOWS\system32\csrss.exe
          \??\C:\WINDOWS\system32\winlogon.exe
          C:\WINDOWS\system32\services.exe
          C:\WINDOWS\system32\lsass.exe
          C:\WINDOWS\system32\svchost.exe
          C:\WINDOWS\system32\svchost.exe
          C:\WINDOWS\System32\svchost.exe
          C:\WINDOWS\system32\svchost.exe
          C:\WINDOWS\system32\svchost.exe
          C:\WINDOWS\system32\spoolsv.exe
          C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
          C:\WINDOWS\Explorer.EXE
          C:\WINDOWS\ehome\ehtray.exe
          C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
          C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
          C:\WINDOWS\system32\RUNDLL32.EXE
          C:\WINDOWS\ATK0100\HControl.exe
          C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
          C:\Program Files\Sonic\DigitalMedia LE v7\MyDVD LE\DetectorApp.exe
          C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe
          C:\Program Files\Java\jre1.5.0_04\bin\jucheck.exe
          C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
          C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
          C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
          C:\Program Files\QuickTime\QTTask.exe
          C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
          C:\Program Files\Bonjour\mDNSResponder.exe
          C:\Program Files\iTunes\iTunesHelper.exe
          C:\Program Files\Fichiers communs\Nero\Nero BackItUp 4\NBService.exe
          C:\WINDOWS\ATK0100\ATKOSD.exe
          C:\Program Files\Messenger\msmsgs.exe
          C:\APPS\SMP\SmpSys.exe
          C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
          C:\WINDOWS\system32\ctfmon.exe
          C:\Program Files\Lecteur CANALPLAY\CanalPlayer.exe
          C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
          C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
          C:\Program Files\Microsoft Office\Office\OSA.EXE
          C:\Program Files\Microsoft Office\Office\FINDFAST.EXE
          C:\WINDOWS\system32\svchost.exe
          C:\WINDOWS\system32\svchost.exe
          C:\Program Files\OpenOffice.org 2.4\program\soffice.exe
          C:\Program Files\Fichiers communs\Ulead Systems\DVD\ULCDRSvr.exe
          C:\Program Files\Sonic\DigitalMedia LE v7\MyDVD LE\USBDeviceService.exe
          C:\Program Files\OpenOffice.org 2.4\program\soffice.BIN
          c:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe
          C:\WINDOWS\ehome\mcrdsvc.exe
          c:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHid.exe
          c:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHsp.exe
          C:\Program Files\iPod\bin\iPodService.exe
          C:\Program Files\Lecteur CANALPLAY\CanalPlayService.exe
          C:\WINDOWS\System32\alg.exe
          c:\progra~1\fichie~1\instal~1\update~1\isuspm.exe
          C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
          C:\Program Files\Fichiers communs\InstallShield\UpdateService\agent.exe
          C:\Program Files\Vuze\Azureus.exe
          c:\Program Files\Toshiba\Bluetooth Toshiba Stack\tosOBEX.exe
          c:\Program Files\Toshiba\Bluetooth Toshiba Stack\tosBtProc.exe
          C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
          C:\Program Files\Windows Media Player\wmplayer.exe
          C:\WINDOWS\system32\NOTEPAD.EXE
          C:\WINDOWS\system32\wuauclt.exe

          -----------------------------------

          +---------------------------------------------------------------------------+
          +------------------------------- SERVICES FOUND ..
          +---------------------------------------------------------------------------+

          +---------------------------------------------------------------------------+
          +------------------------------- REGISTRY ELEMENTS FOUND ..
          +---------------------------------------------------------------------------+

          "HKEY_CLASSES_ROOT\EoRezoBHO.EoBho"
          "HKEY_CLASSES_ROOT\EoRezoBHO.EoBho.1"
          "HKEY_CLASSES_ROOT\Interface\{B0D071A1-36B3-4757-A126-14C89C56013A}"
          "HKEY_CLASSES_ROOT\Typelib\{B4C656C9-F2E9-4E77-B3F4-443DF2BD778F}"
          "HKEY_CURRENT_USER\SOFTWARE\EoRezo"
          "HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{64F56FC1-1272-44CD-BA6E-39723696E350}"
          "HKEY_LOCAL_MACHINE\SOFTWARE\EoRezo"
          "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{64F56FC1-1272-44CD-BA6E-39723696E350}"
          "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{64F56FC1-1272-44CD-BA6E-39723696E350}"
          "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\run" /v "EoEngine"
          "HKEY_CLASSES_ROOT\CLSID\{147a976f-eee1-4377-8ea7-4716e4cdd239}"
          "HKEY_CLASSES_ROOT\CLSID\{9afb8248-617f-460d-9366-d71cdeda3179}"

          +---------------------------------------------------------------------------+
          +------------------------------- FILES\FOLDERS FOUND ..
          +---------------------------------------------------------------------------+

          [08/01/2009 15:16|d--------] C:\Program Files\EoRezo
          [08/01/2009 15:16|d--------] C:\Documents and Settings\Anne-Claire LHOTE\Application Data\EoRezo

          +---------------------------------------------------------------------------+
          +------------------------------- ADDED SCAN ..
          +---------------------------------------------------------------------------+

          +---------- Scanning prefs.js ... ( # Mozilla User Preferences )

          ...\byldg80q.default\prefs.js :

          ~~~~ Mozilla FireFox version 3.0.4 ~~~~

          +----------+

          +---------------------------------------------------------------------------+

          +--[HKEY_CURRENT_USER\...\Run]

          MSMSGS REG_SZ "C:\Program Files\Messenger\msmsgs.exe" /background
          SmpcSys REG_SZ C:\APPS\SMP\SmpSys.exe
          updateMgr REG_SZ C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_0_0
          swg REG_SZ C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
          ctfmon.exe REG_SZ C:\WINDOWS\system32\ctfmon.exe
          CanalPlayer REG_SZ C:\Program Files\Lecteur CANALPLAY\CanalPlayer.exe

          +--[HKEY_LOCAL_MACHINE\...\Run]

          IMJPMIG8.1 REG_SZ "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
          PHIME2002ASync REG_SZ C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
          PHIME2002A REG_SZ C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
          ehTray REG_SZ C:\WINDOWS\ehome\ehtray.exe
          Raccourci vers la page des propriétés de High Definition Audio REG_SZ HDAShCut.exe
          SynTPEnh REG_SZ C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
          SMSERIAL REG_SZ C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
          NvCplDaemon REG_SZ RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
          nwiz REG_SZ nwiz.exe /install
          NvMediaCenter REG_SZ RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
          HControl REG_SZ C:\WINDOWS\ATK0100\HControl.exe
          SunJavaUpdateSched REG_SZ C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
          DetectorApp REG_SZ C:\Program Files\Sonic\DigitalMedia LE v7\MyDVD LE\DetectorApp.exe
          ISUSPM Startup REG_SZ C:\PROGRA~1\FICHIE~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
          ISUSScheduler REG_SZ "C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe" -start
          HP Software Update REG_SZ C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
          avgnt REG_SZ "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
          Adobe Reader Speed Launcher REG_SZ "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
          QuickTime Task REG_SZ "C:\Program Files\QuickTime\QTTask.exe" -atboottime
          iTunesHelper REG_SZ "C:\Program Files\iTunes\iTunesHelper.exe"
          EoEngine REG_SZ
          ItsTV REG_SZ "C:\Program Files\ItsLabel\ItsTV.exe"

          +--[HKEY_USERS\.DEFAULT\...\Run]

          CTFMON.EXE REG_SZ C:\WINDOWS\system32\CTFMON.EXE

          +--[HKEY_CURRENT_USER\...\Internet Explorer\MAIN]

          Start Page : hxxp://lo.st#home

          +--[HKEY_LOCAL_MACHINE\...\Internet Explorer\MAIN]

          Start Page : hxxp://go.microsoft.com/fwlink/?LinkId=69157

          +---------------------------------------------------------------------------+
          +------------------------------- [ E.O.F - 162 lines ]
          +---------------------------------------------------------------------------+

          - "C:\AD-report-08.01.2009.log" (8234 octets)

          [ END at: 15:19:07 | 08/01/2009 ] - [ Time elapsed: 16.2 seconds ]
          0
          1. Modérateur
            /!\ Déconnecte-toi et ferme toutes applications en cours /!\

            ● Double-clique sur AD-Remover pour le lancer : au menu principal choisi l'option "B".

            ● Choisis de tout sélectionner.

            ● Le programme va travailler...

            ● Poste le rapport qui apparaît à la fin.

            (Le rapport est sauvegardé aussi sous C:\Ad-report.log)

            /!\ Si le Bureau ne réapparaît pas, presse Ctrl + Alt + Suppr, Onglet "Fichier", "Nouvelle tâche", tape explorer.exe et valide) /!\
            0
            1. Yep !

              --------- Logfile of AD-Remover 1.0.5.9 by C_XX ---------

              *** Limited to ***

              Boonty/BoontyGames
              Eorezo
              Everest Poker
              Funwebproduct/MyWay/MyWebsearch
              Messenger Skinner
              Sweetim

              ******************

              # START at: 15:26:10 | 08/01/2009 ON Microsoft® Windows XP ™ v5.1.2600
              # BOOT MODE: Normal

              # OPTION: Scan
              # EXECUTED FROM: C:\Program Files\Ad-remover\AD-Remover.bat

              # PC: SN012345678912 | USER: Anne-Claire LHOTE ( Current user is an administrator )

              # DRIVE(S): C:\
              # Systemdrive: C:\ (NTFS)
              # Internet Explorer v7.0.5730.13

              --------- [ RUNNING PROCESSES: 62 ] ---------

              \SystemRoot\System32\smss.exe
              \??\C:\WINDOWS\system32\csrss.exe
              \??\C:\WINDOWS\system32\winlogon.exe
              C:\WINDOWS\system32\services.exe
              C:\WINDOWS\system32\lsass.exe
              C:\WINDOWS\system32\svchost.exe
              C:\WINDOWS\system32\svchost.exe
              C:\WINDOWS\System32\svchost.exe
              C:\WINDOWS\system32\svchost.exe
              C:\WINDOWS\system32\svchost.exe
              C:\WINDOWS\system32\spoolsv.exe
              C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
              C:\WINDOWS\Explorer.EXE
              C:\WINDOWS\ehome\ehtray.exe
              C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
              C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
              C:\WINDOWS\system32\RUNDLL32.EXE
              C:\WINDOWS\ATK0100\HControl.exe
              C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
              C:\Program Files\Sonic\DigitalMedia LE v7\MyDVD LE\DetectorApp.exe
              C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe
              C:\Program Files\Java\jre1.5.0_04\bin\jucheck.exe
              C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
              C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
              C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
              C:\Program Files\QuickTime\QTTask.exe
              C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
              C:\Program Files\Bonjour\mDNSResponder.exe
              C:\Program Files\iTunes\iTunesHelper.exe
              C:\Program Files\Fichiers communs\Nero\Nero BackItUp 4\NBService.exe
              C:\WINDOWS\ATK0100\ATKOSD.exe
              C:\Program Files\Messenger\msmsgs.exe
              C:\APPS\SMP\SmpSys.exe
              C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
              C:\WINDOWS\system32\ctfmon.exe
              C:\Program Files\Lecteur CANALPLAY\CanalPlayer.exe
              C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
              C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
              C:\Program Files\Microsoft Office\Office\OSA.EXE
              C:\Program Files\Microsoft Office\Office\FINDFAST.EXE
              C:\WINDOWS\system32\svchost.exe
              C:\WINDOWS\system32\svchost.exe
              C:\Program Files\OpenOffice.org 2.4\program\soffice.exe
              C:\Program Files\Fichiers communs\Ulead Systems\DVD\ULCDRSvr.exe
              C:\Program Files\Sonic\DigitalMedia LE v7\MyDVD LE\USBDeviceService.exe
              C:\Program Files\OpenOffice.org 2.4\program\soffice.BIN
              c:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe
              C:\WINDOWS\ehome\mcrdsvc.exe
              c:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHid.exe
              c:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHsp.exe
              C:\Program Files\iPod\bin\iPodService.exe
              C:\Program Files\Lecteur CANALPLAY\CanalPlayService.exe
              C:\WINDOWS\System32\alg.exe
              c:\progra~1\fichie~1\instal~1\update~1\isuspm.exe
              C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
              C:\Program Files\Fichiers communs\InstallShield\UpdateService\agent.exe
              C:\Program Files\Vuze\Azureus.exe
              c:\Program Files\Toshiba\Bluetooth Toshiba Stack\tosOBEX.exe
              c:\Program Files\Toshiba\Bluetooth Toshiba Stack\tosBtProc.exe
              C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
              C:\Program Files\Windows Media Player\wmplayer.exe
              C:\WINDOWS\system32\NOTEPAD.EXE

              -----------------------------------

              (!) ---- IE start pages reset

              +---------------------------------------------------------------------------+
              +------------------------------- SERVICES DELETED ..
              +---------------------------------------------------------------------------+

              +---------------------------------------------------------------------------+
              +------------------------------- REGISTRY ELEMENTS DELETED ..
              +---------------------------------------------------------------------------+

              "HKEY_CLASSES_ROOT\EoRezoBHO.EoBho"
              "HKEY_CLASSES_ROOT\EoRezoBHO.EoBho.1"
              "HKEY_CLASSES_ROOT\Interface\{B0D071A1-36B3-4757-A126-14C89C56013A}"
              "HKEY_CLASSES_ROOT\Typelib\{B4C656C9-F2E9-4E77-B3F4-443DF2BD778F}"
              "HKEY_CURRENT_USER\SOFTWARE\EoRezo"
              "HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{64F56FC1-1272-44CD-BA6E-39723696E350}"
              "HKEY_LOCAL_MACHINE\SOFTWARE\EoRezo"
              "HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{64F56FC1-1272-44CD-BA6E-39723696E350}"
              "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{64F56FC1-1272-44CD-BA6E-39723696E350}"
              "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\run" /v "EoEngine"
              "HKEY_CLASSES_ROOT\CLSID\{147a976f-eee1-4377-8ea7-4716e4cdd239}"
              "HKEY_CLASSES_ROOT\CLSID\{9afb8248-617f-460d-9366-d71cdeda3179}"

              +---------------------------------------------------------------------------+
              +------------------------------- FILES\FOLDERS DELETED ..
              +---------------------------------------------------------------------------+

              [08/01/2009 15:16|d--------] C:\Program Files\EoRezo
              [08/01/2009 15:16|d--------] C:\Documents and Settings\Anne-Claire LHOTE\Application Data\EoRezo

              (!) ---- Temp files deleted.
              (!) ---- Recycle bin emptied in all drives.

              +---------------------------------------------------------------------------+
              +------------------------------- ADDED SCAN ..
              +---------------------------------------------------------------------------+

              +---------- Scanning prefs.js ... ( # Mozilla User Preferences )

              ...\byldg80q.default\prefs.js :

              ~~~~ Mozilla FireFox version 3.0.4 ~~~~

              +----------+

              +--[HKEY_CURRENT_USER\...\Run]

              MSMSGS REG_SZ "C:\Program Files\Messenger\msmsgs.exe" /background
              SmpcSys REG_SZ C:\APPS\SMP\SmpSys.exe
              updateMgr REG_SZ C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_0_0
              swg REG_SZ C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
              ctfmon.exe REG_SZ C:\WINDOWS\system32\ctfmon.exe
              CanalPlayer REG_SZ C:\Program Files\Lecteur CANALPLAY\CanalPlayer.exe

              +--[HKEY_LOCAL_MACHINE\...\Run]

              IMJPMIG8.1 REG_SZ "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
              PHIME2002ASync REG_SZ C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
              PHIME2002A REG_SZ C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
              ehTray REG_SZ C:\WINDOWS\ehome\ehtray.exe
              Raccourci vers la page des propriétés de High Definition Audio REG_SZ HDAShCut.exe
              SynTPEnh REG_SZ C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
              SMSERIAL REG_SZ C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
              NvCplDaemon REG_SZ RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
              nwiz REG_SZ nwiz.exe /install
              NvMediaCenter REG_SZ RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
              HControl REG_SZ C:\WINDOWS\ATK0100\HControl.exe
              SunJavaUpdateSched REG_SZ C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
              DetectorApp REG_SZ C:\Program Files\Sonic\DigitalMedia LE v7\MyDVD LE\DetectorApp.exe
              ISUSPM Startup REG_SZ C:\PROGRA~1\FICHIE~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
              ISUSScheduler REG_SZ "C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe" -start
              HP Software Update REG_SZ C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
              avgnt REG_SZ "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
              Adobe Reader Speed Launcher REG_SZ "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
              QuickTime Task REG_SZ "C:\Program Files\QuickTime\QTTask.exe" -atboottime
              iTunesHelper REG_SZ "C:\Program Files\iTunes\iTunesHelper.exe"
              ItsTV REG_SZ "C:\Program Files\ItsLabel\ItsTV.exe"

              +--[HKEY_USERS\.DEFAULT\...\Run]

              CTFMON.EXE REG_SZ C:\WINDOWS\system32\CTFMON.EXE

              +--[HKEY_CURRENT_USER\...\Internet Explorer\MAIN]

              Start Page : hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome

              +--[HKEY_LOCAL_MACHINE\...\Internet Explorer\MAIN]

              Start Page : hxxp://fr.msn.com/

              +---------------------------------------------------------------------------+
              +------------------------------- [ E.O.F - 173 lines ]
              +---------------------------------------------------------------------------+

              - "C:\AD-report-08.01.2009.log" (8396 octets)

              [ END at: 15:34:53 | 08/01/2009 ] - [ Time elapsed: 8 minutes, 42 seconds ]
              0
              1. Modérateur
                ---> Désinstalle AD-Remover.

                - Télécharge Random's System Information Tool (RSIT) (par random/random) sur ton Bureau.

                - Double-clique sur RSIT.exe afin de lancer le programme.

                - Clique sur Continue à l'écran Disclaimer.

                - Si l'outil HijackThis (version à jour) n'est pas présent ou non détecté sur l'ordinateur, RSIT le téléchargera (autorise l'accès dans ton pare-feu, si demandé) et tu devras accepter la licence.

                - Lorsque l'analyse sera terminée, deux fichiers texte s'ouvriront. Poste le contenu de log.txt (c'est celui qui apparaît à l'écran) ainsi que de info.txt (que tu verras dans la barre des tâches).

                Note : Les rapports sont sauvegardés dans le dossier C:\rsit.
                0
                1. Et de un...

                  Logfile of random's system information tool 1.04 (written by random/random)
                  Run by Anne-Claire LHOTE at 2009-01-08 15:38:10
                  Microsoft Windows XP Professionnel Service Pack 3
                  System drive C: has 34 GB (31%) free of 106 GB
                  Total RAM: 1023 MB (24% free)

                  Logfile of Trend Micro HijackThis v2.0.2
                  Scan saved at 15:38:16, on 08/01/2009
                  Platform: Windows XP SP3 (WinNT 5.01.2600)
                  MSIE: Internet Explorer v7.00 (7.00.6000.16735)
                  Boot mode: Normal

                  Running processes:
                  C:\WINDOWS\System32\smss.exe
                  C:\WINDOWS\system32\winlogon.exe
                  C:\WINDOWS\system32\services.exe
                  C:\WINDOWS\system32\lsass.exe
                  C:\WINDOWS\system32\svchost.exe
                  C:\WINDOWS\System32\svchost.exe
                  C:\WINDOWS\system32\spoolsv.exe
                  C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
                  C:\WINDOWS\ehome\ehtray.exe
                  C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
                  C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
                  C:\WINDOWS\ATK0100\HControl.exe
                  C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
                  C:\Program Files\Sonic\DigitalMedia LE v7\MyDVD LE\DetectorApp.exe
                  C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe
                  C:\Program Files\Java\jre1.5.0_04\bin\jucheck.exe
                  C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
                  C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
                  C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
                  C:\Program Files\QuickTime\QTTask.exe
                  C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
                  C:\Program Files\Bonjour\mDNSResponder.exe
                  C:\Program Files\iTunes\iTunesHelper.exe
                  C:\Program Files\Fichiers communs\Nero\Nero BackItUp 4\NBService.exe
                  C:\WINDOWS\ATK0100\ATKOSD.exe
                  C:\Program Files\Messenger\msmsgs.exe
                  C:\APPS\SMP\SmpSys.exe
                  C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
                  C:\WINDOWS\system32\ctfmon.exe
                  C:\Program Files\Lecteur CANALPLAY\CanalPlayer.exe
                  C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
                  C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
                  C:\Program Files\Microsoft Office\Office\OSA.EXE
                  C:\Program Files\Microsoft Office\Office\FINDFAST.EXE
                  C:\WINDOWS\system32\svchost.exe
                  C:\Program Files\OpenOffice.org 2.4\program\soffice.exe
                  C:\Program Files\Fichiers communs\Ulead Systems\DVD\ULCDRSvr.exe
                  C:\Program Files\Sonic\DigitalMedia LE v7\MyDVD LE\USBDeviceService.exe
                  C:\Program Files\OpenOffice.org 2.4\program\soffice.BIN
                  c:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe
                  c:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHid.exe
                  c:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHsp.exe
                  C:\Program Files\iPod\bin\iPodService.exe
                  C:\Program Files\Lecteur CANALPLAY\CanalPlayService.exe
                  c:\progra~1\fichie~1\instal~1\update~1\isuspm.exe
                  C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
                  C:\Program Files\Fichiers communs\InstallShield\UpdateService\agent.exe
                  C:\Program Files\Vuze\Azureus.exe
                  c:\Program Files\Toshiba\Bluetooth Toshiba Stack\tosOBEX.exe
                  c:\Program Files\Toshiba\Bluetooth Toshiba Stack\tosBtProc.exe
                  C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
                  C:\Program Files\Windows Media Player\wmplayer.exe
                  C:\WINDOWS\system32\NOTEPAD.EXE
                  C:\Program Files\Fichiers communs\Microsoft Shared\Source Engine\OSE.EXE
                  C:\WINDOWS\explorer.exe
                  C:\WINDOWS\system32\notepad.exe
                  C:\Program Files\Mozilla Firefox\firefox.exe
                  C:\WINDOWS\system32\wuauclt.exe
                  C:\Documents and Settings\Anne-Claire LHOTE\Bureau\RSIT.exe
                  C:\Program Files\Trend Micro\HijackThis\Anne-Claire LHOTE.exe

                  R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
                  R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
                  R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
                  R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr
                  R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
                  R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
                  O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
                  O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
                  O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll
                  O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
                  O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
                  O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
                  O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
                  O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
                  O4 - HKLM\..\Run: [Raccourci vers la page des propriétés de High Definition Audio] HDAShCut.exe
                  O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
                  O4 - HKLM\..\Run: [SMSERIAL] C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
                  O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
                  O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
                  O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
                  O4 - HKLM\..\Run: [HControl] C:\WINDOWS\ATK0100\HControl.exe
                  O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
                  O4 - HKLM\..\Run: [DetectorApp] C:\Program Files\Sonic\DigitalMedia LE v7\MyDVD LE\DetectorApp.exe
                  O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\FICHIE~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
                  O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe" -start
                  O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
                  O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
                  O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
                  O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
                  O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
                  O4 - HKLM\..\Run: [ItsTV] "C:\Program Files\ItsLabel\ItsTV.exe"
                  O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
                  O4 - HKCU\..\Run: [SmpcSys] C:\APPS\SMP\SmpSys.exe
                  O4 - HKCU\..\Run: [updateMgr] C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_0_0
                  O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
                  O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
                  O4 - HKCU\..\Run: [CanalPlayer] C:\Program Files\Lecteur CANALPLAY\CanalPlayer.exe
                  O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
                  O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
                  O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
                  O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
                  O4 - Startup: Démarrage d'Office.lnk = C:\Program Files\Microsoft Office\Office\OSA.EXE
                  O4 - Startup: Microsoft Recherche accélérée.lnk = C:\Program Files\Microsoft Office\Office\FINDFAST.EXE
                  O4 - Startup: OpenOffice.org 2.4.lnk = C:\Program Files\OpenOffice.org 2.4\program\quickstart.exe
                  O4 - Global Startup: Bluetooth Manager.lnk = ?
                  O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
                  O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
                  O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
                  O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
                  O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
                  O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
                  O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
                  O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
                  O15 - Trusted Zone: *.canalplay.com
                  O15 - Trusted Zone: *.canalplusactive.com
                  O15 - Trusted Zone: *.canalplay.com (HKLM)
                  O15 - Trusted Zone: *.canalplusactive.com (HKLM)
                  O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx2.hotmail.com/mail/w3/pr01/resources/MSNPUpld.cab
                  O16 - DPF: {5D637FAD-E202-48D1-8F18-5B9C459BD1E3} (Image Uploader Control) - https://www.canalblog.com/sharedDocs/misc/uploader/ImageUploader5.cab
                  O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/...
                  O16 - DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} (get_atlcom Class) - http://www.adobe.com/products/acrobat/nos/gp.cab
                  O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
                  O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
                  O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
                  O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
                  O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
                  O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
                  O23 - Service: Service de l’iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
                  O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files\Fichiers communs\Nero\Nero BackItUp 4\NBService.exe
                  O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
                  O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
                  O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE Technologies - C:\Program Files\WinPcap\rpcapd.exe
                  O23 - Service: Service CANALPLAY - Canal+ Distribution - C:\Program Files\Lecteur CANALPLAY\CanalPlayService.exe
                  O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Fichiers communs\Ulead Systems\DVD\ULCDRSvr.exe
                  O23 - Service: USBDeviceService - Unknown owner - C:\Program Files\Sonic\DigitalMedia LE v7\MyDVD LE\USBDeviceService.exe
                  0
                  1. Et de deux...

                    info.txt logfile of random's system information tool 1.04 2009-01-08 15:38:18

                    ======Uninstall list======

                    -->"c:\apps\skype\phone\unins000.exe"
                    -->"C:\Program Files\Fichiers communs\aolshare\Coach\AolCInUn.exe" -lang="fr-fr"
                    -->"C:\WINDOWS\$NtUninstallKB888111WXPSP2$\spuninst\spuninst.exe"
                    -->C:\PROGRA~1\FICHIE~1\AOL\ACS\AcsUninstall.exe /c
                    -->C:\PROGRA~1\Norman\NORMAN~1\UNWISE.EXE C:\PROGRA~1\Norman\NORMAN~1\INSTALL.LOG
                    -->C:\Program Files\Fichiers communs\AOL\Screensaver\uninst_ygpss.exe
                    -->C:\Program Files\Fichiers communs\aolshare\Aolunins_fr.exe
                    -->C:\Program Files\Fichiers communs\Real\Update\\rnuninst.exe RealNetworks|RealPlayer|6.0
                    -->C:\Program Files\Learn2.com\StRunner\stuninst.exe
                    -->C:\Program Files\Viewpoint\Viewpoint Experience Technology\mtsAxInstaller.exe /u
                    -->C:\WINDOWS\system32\\MSIEXEC.EXE /x {075473F5-846A-448B-BCB3-104AA1760205}
                    -->C:\WINDOWS\system32\\MSIEXEC.EXE /x {AB708C9B-97C8-4AC9-899B-DBF226AC9382}
                    -->C:\WINDOWS\system32\\MSIEXEC.EXE /x {B12665F4-4E93-4AB4-B7FC-37053B524629}
                    -->C:\WINDOWS\system32\nvudisp.exe UninstallGUI
                    -->MsiExec.exe /X{CEBB6BFB-D708-4F99-A633-BC2600E01EF6}
                    -->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{5AFA4872-16B2-419E-ADCA-8E96E739115D}\setup.exe" -l0x40c
                    -->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\10\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{F0A37341-D692-11D4-A984-009027EC0A9C}\setup.exe" -l0x40c -removeonly
                    -->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{ACCA20B0-C4D1-4BF5-BF21-0A0EB5EF9730}\setup.exe" -l0x40c -removeonly
                    -->rundll32.exe "C:\Program Files\Synaptics\SynTP\SynISDLL.dll",standAloneUninstall
                    -->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
                    -->rundll32.exe sm56coin.dll,SM56UnInstaller
                    Adobe Acrobat and Reader 8.1.2 Security Update 1 (KB403742)-->MsiExec.exe /X{6846389C-BAC0-4374-808E-B120F86AF5D7}
                    Adobe Flash Player 10 Plugin-->C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
                    Adobe Flash Player ActiveX-->C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
                    Adobe Reader 8.1.2 - Français-->MsiExec.exe /I{AC76BA86-7AD7-1036-7B44-A81200000003}
                    Apple Mobile Device Support-->MsiExec.exe /I{AA9768AA-FF0B-4C66-A085-31E934F77841}
                    Apple Software Update-->MsiExec.exe /I{6956856F-B6B3-4BE0-BA0B-8F495BE32033}
                    Archiveur WinRAR-->C:\Program Files\WinRAR\uninstall.exe
                    ATK0100 ACPI UTILITY-->C:\WINDOWS\ATK0100\XPunin.exe
                    Atlas Mondial Microsoft Encarta-->D:\install.exe
                    Avira AntiVir Personal - Free Antivirus-->C:\Program Files\Avira\AntiVir PersonalEdition Classic\SETUP.EXE /REMOVE
                    BisonCam, NB Pro-->Rundll32.exe BisonRem.dll,WinMainRmv
                    Bonjour-->MsiExec.exe /I{8A25392D-C5D2-4E79-A2BD-C15DDC5B0959}
                    Codeur Windows Media Série 9-->msiexec.exe /I {E38C00D0-A68B-4318-A8A6-F7D4B5B1DF0E}
                    Codeur Windows Media Série 9-->MsiExec.exe /I{E38C00D0-A68B-4318-A8A6-F7D4B5B1DF0E}
                    Correctif n° 2 pour Windows XP Édition Media Center 2005-->C:\WINDOWS\$NtUninstallKB900325$\spuninst\spuninst.exe
                    Correctif pour Lecteur Windows Media 11 (KB939683)-->"C:\WINDOWS\$NtUninstallKB939683$\spuninst\spuninst.exe"
                    Correctif pour Windows Internet Explorer 7 (KB947864)-->"C:\WINDOWS\ie7updates\KB947864-IE7\spuninst\spuninst.exe"
                    Correctif pour Windows XP (KB952287)-->"C:\WINDOWS\$NtUninstallKB952287$\spuninst\spuninst.exe"
                    D-Link DHP-300 Powerline HD Utility-->C:\Program Files\InstallShield Installation Information\{A80E49B2-4D45-4BEC-AE12-DB233216E2D9}\setup.exe -runfromtemp -l0x0409
                    getPlus(R)_ocx-->rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\inf\GETPLUSo.INF, DefaultUninstall
                    Google Earth-->MsiExec.exe /I{97C0EA4A-1A0B-4C53-ACEB-49984DA79C90}
                    Google Toolbar for Internet Explorer-->MsiExec.exe /I{DBEA1034-5882-4A88-8033-81C4EF0CFA29}
                    Google Toolbar for Internet Explorer-->regsvr32 /u /s "c:\program files\google\googletoolbar1.dll"
                    HijackThis 2.0.2-->"C:\Program Files\Trend Micro\HijackThis\HijackThis.exe" /uninstall
                    Hotfix for Windows Media Format 11 SDK (KB929399)-->"C:\WINDOWS\$NtUninstallKB929399$\spuninst\spuninst.exe"
                    Hotfix for Windows Media Player 10 (KB903157)-->"C:\WINDOWS\$NtUninstallKB903157$\spuninst\spuninst.exe"
                    HP Customer Participation Program 7.0-->C:\Program Files\HP\Digital Imaging\ExtCapUninstall\hpzscr01.exe -datfile hpqhsc01.dat
                    HP Imaging Device Functions 7.0-->C:\Program Files\HP\Digital Imaging\DeviceManagement\hpzscr01.exe -datfile hpqbud01.dat
                    HP Photosmart Essential-->MsiExec.exe /X{6994491D-D491-48F1-AE1F-E179C1FFFC2F}
                    HP Photosmart, Officejet and Deskjet 7.0.A-->C:\Program Files\HP\Digital Imaging\{BDBE2F3E-42DB-4d4a-8CB1-19BA765DBC6C}\setup\hpzscr01.exe -datfile hposcr11.dat
                    HP Software Update-->MsiExec.exe /X{BB85ED9C-AFC9-43BD-B8DC-258C3C7DF72E}
                    HP Solution Center 7.0-->C:\Program Files\HP\Digital Imaging\eSupport\hpzscr01.exe -datfile hpqbud05.dat
                    ItsTV 3.0-->"C:\Program Files\ItsLabel\unins000.exe"
                    iTunes-->MsiExec.exe /I{41B9E2CF-0B3F-442A-B5B3-592A4A355634}
                    J2SE Runtime Environment 5.0 Update 4-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0150040}
                    Lecteur CANALPLAY 2.4-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\10\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{E9E37358-E3E1-47BA-9E21-375EF3616BC9}\setup.exe" -l0x40c -removeonly
                    Lecteur Windows Media 11-->"C:\Program Files\Windows Media Player\Setup_wm.exe" /Uninstall
                    Macromedia Flash Player 8-->MsiExec.exe /X{5E8A1B08-0FBD-4543-9646-F2C2D0D05750}
                    Macromedia Shockwave Player-->MsiExec.exe /X{7D1D6A24-65D4-454C-8815-4F08A5FFF12C}
                    Microsoft .NET Framework 1.1 French Language Pack-->MsiExec.exe /X{9A394342-4A68-4EBA-85A6-55B559F4E700}
                    Microsoft .NET Framework 1.1 Hotfix (KB928366)-->"C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe" "C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\M928366\M928366Uninstall.msp"
                    Microsoft .NET Framework 1.1-->msiexec.exe /X {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
                    Microsoft .NET Framework 1.1-->MsiExec.exe /X{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
                    Microsoft .NET Framework 2.0 Service Pack 1-->MsiExec.exe /I{B508B3F1-A24A-32C0-B310-85786919EF28}
                    Microsoft Age of Empires II : The Conquerors Expansion-->"C:\Program Files\Microsoft Games\Age of Empires II\UNINSTALX.EXE" /runtemp /addremove
                    Microsoft Age of Empires II-->"C:\Program Files\Microsoft Games\Age of Empires II\UNINSTAL.EXE" /runtemp /uninstall
                    Microsoft Compression Client Pack 1.0 for Windows XP-->"C:\WINDOWS\$NtUninstallMSCompPackV1$\spuninst\spuninst.exe"
                    Microsoft Internationalized Domain Names Mitigation APIs-->"C:\WINDOWS\$NtServicePackUninstallIDNMitigationAPIs$\spuninst\spuninst.exe"
                    Microsoft National Language Support Downlevel APIs-->"C:\WINDOWS\$NtServicePackUninstallNLSDownlevelMapping$\spuninst\spuninst.exe"
                    Microsoft Office Word Viewer 2003-->MsiExec.exe /I{9085040C-6000-11D3-8CFE-0150048383C9}
                    Microsoft User-Mode Driver Framework Feature Pack 1.0-->"C:\WINDOWS\$NtUninstallWudf01000$\spuninst\spuninst.exe"
                    Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
                    Microsoft Word 97-->C:\Program Files\Microsoft Office\Office\Install\AcmeWord.exe /w Word97.stf
                    Mise à jour de sécurité pour le Codeur Windows Media (KB954156)-->"C:\WINDOWS\$NtUninstallKB954156_WM9L$\spuninst\spuninst.exe"
                    Mise à jour de sécurité pour Lecteur Windows Media 10 (KB911565)-->"C:\WINDOWS\$NtUninstallKB911565$\spuninst\spuninst.exe"
                    Mise à jour de sécurité pour Lecteur Windows Media 10 (KB917734)-->"C:\WINDOWS\$NtUninstallKB917734_WMP10$\spuninst\spuninst.exe"
                    Mise à jour de sécurité pour Lecteur Windows Media 10 (KB936782)-->"C:\WINDOWS\$NtUninstallKB936782_WMP10$\spuninst\spuninst.exe"
                    Mise à jour de sécurité pour Lecteur Windows Media 11 (KB936782)-->"C:\WINDOWS\$NtUninstallKB936782_WMP11$\spuninst\spuninst.exe"
                    Mise à jour de sécurité pour Lecteur Windows Media 11 (KB954154)-->"C:\WINDOWS\$NtUninstallKB954154_WM11$\spuninst\spuninst.exe"
                    Mise à jour de sécurité pour Step by Step Interactive Training (KB898458)-->"C:\WINDOWS\$NtUninstallKB898458$\spuninst\spuninst.exe"
                    Mise à jour de sécurité pour Windows Internet Explorer 7 (KB938127)-->"C:\WINDOWS\ie7updates\KB938127-IE7\spuninst\spuninst.exe"
                    Mise à jour de sécurité pour Windows Internet Explorer 7 (KB942615)-->"C:\WINDOWS\ie7updates\KB942615-IE7\spuninst\spuninst.exe"
                    Mise à jour de sécurité pour Windows Internet Explorer 7 (KB944533)-->"C:\WINDOWS\ie7updates\KB944533-IE7\spuninst\spuninst.exe"
                    Mise à jour de sécurité pour Windows Internet Explorer 7 (KB950759)-->"C:\WINDOWS\ie7updates\KB950759-IE7\spuninst\spuninst.exe"
                    Mise à jour de sécurité pour Windows Internet Explorer 7 (KB953838)-->"C:\WINDOWS\ie7updates\KB953838-IE7\spuninst\spuninst.exe"
                    Mise à jour de sécurité pour Windows Internet Explorer 7 (KB956390)-->"C:\WINDOWS\ie7updates\KB956390-IE7\spuninst\spuninst.exe"
                    Mise à jour de sécurité pour Windows XP (KB938464)-->"C:\WINDOWS\$NtUninstallKB938464$\spuninst\spuninst.exe"
                    Mise à jour de sécurité pour Windows XP (KB941569)-->"C:\WINDOWS\$NtUninstallKB941569$\spuninst\spuninst.exe"
                    Mise à jour de sécurité pour Windows XP (KB946648)-->"C:\WINDOWS\$NtUninstallKB946648$\spuninst\spuninst.exe"
                    Mise à jour de sécurité pour Windows XP (KB950760)-->"C:\WINDOWS\$NtUninstallKB950760$\spuninst\spuninst.exe"
                    Mise à jour de sécurité pour Windows XP (KB950762)-->"C:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe"
                    Mise à jour de sécurité pour Windows XP (KB950974)-->"C:\WINDOWS\$NtUninstallKB950974$\spuninst\spuninst.exe"
                    Mise à jour de sécurité pour Windows XP (KB951066)-->"C:\WINDOWS\$NtUninstallKB951066$\spuninst\spuninst.exe"
                    Mise à jour de sécurité pour Windows XP (KB951376)-->"C:\WINDOWS\$NtUninstallKB951376$\spuninst\spuninst.exe"
                    Mise à jour de sécurité pour Windows XP (KB951376-v2)-->"C:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe"
                    Mise à jour de sécurité pour Windows XP (KB951698)-->"C:\WINDOWS\$NtUninstallKB951698$\spuninst\spuninst.exe"
                    Mise à jour de sécurité pour Windows XP (KB951748)-->"C:\WINDOWS\$NtUninstallKB951748$\spuninst\spuninst.exe"
                    Mise à jour de sécurité pour Windows XP (KB952954)-->"C:\WINDOWS\$NtUninstallKB952954$\spuninst\spuninst.exe"
                    Mise à jour de sécurité pour Windows XP (KB953839)-->"C:\WINDOWS\$NtUninstallKB953839$\spuninst\spuninst.exe"
                    Mise à jour de sécurité pour Windows XP (KB954211)-->"C:\WINDOWS\$NtUninstallKB954211$\spuninst\spuninst.exe"
                    Mise à jour de sécurité pour Windows XP (KB954459)-->"C:\WINDOWS\$NtUninstallKB954459$\spuninst\spuninst.exe"
                    Mise à jour de sécurité pour Windows XP (KB955069)-->"C:\WINDOWS\$NtUninstallKB955069$\spuninst\spuninst.exe"
                    Mise à jour de sécurité pour Windows XP (KB956391)-->"C:\WINDOWS\$NtUninstallKB956391$\spuninst\spuninst.exe"
                    Mise à jour de sécurité pour Windows XP (KB956803)-->"C:\WINDOWS\$NtUninstallKB956803$\spuninst\spuninst.exe"
                    Mise à jour de sécurité pour Windows XP (KB956841)-->"C:\WINDOWS\$NtUninstallKB956841$\spuninst\spuninst.exe"
                    Mise à jour de sécurité pour Windows XP (KB957095)-->"C:\WINDOWS\$NtUninstallKB957095$\spuninst\spuninst.exe"
                    Mise à jour de sécurité pour Windows XP (KB957097)-->"C:\WINDOWS\$NtUninstallKB957097$\spuninst\spuninst.exe"
                    Mise à jour de sécurité pour Windows XP (KB958644)-->"C:\WINDOWS\$NtUninstallKB958644$\spuninst\spuninst.exe"
                    Mise à jour pour Lecteur Windows Media 10 (KB910393)-->"C:\WINDOWS\$NtUninstallKB910393$\spuninst\spuninst.exe"
                    Mise à jour pour Lecteur Windows Media 10 (KB913800)-->"C:\WINDOWS\$NtUninstallKB913800$\spuninst\spuninst.exe"
                    Mise à jour pour Lecteur Windows Media 10 (KB926251)-->"C:\WINDOWS\$NtUninstallKB926251$\spuninst\spuninst.exe"
                    Mise à jour pour Windows XP (KB951072-v2)-->"C:\WINDOWS\$NtUninstallKB951072-v2$\spuninst\spuninst.exe"
                    Mise à jour pour Windows XP (KB951978)-->"C:\WINDOWS\$NtUninstallKB951978$\spuninst\spuninst.exe"
                    Module de prise en charge linguistique de Microsoft .NET Framework 2.0 - FRA-->C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft .NET Framework 2.0 Language Pack - FRA\install.exe
                    Mozilla Firefox (3.0.4)-->C:\Program Files\Mozilla Firefox\uninstall\helper.exe
                    MSN-->C:\Program Files\MSN\MsnInstaller\msninst.exe /Action:ARP
                    MSXML 4.0 SP2 (KB936181)-->MsiExec.exe /I{C04E32E0-0416-434D-AFB9-6969D703A9EF}
                    MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
                    Navilog1 3.6.9-->"C:\Program Files\Navilog1\unins000.exe"
                    Nero 9 Trial-->C:\Program Files\Fichiers communs\Nero\Nero ProductInstaller 4\SetupX.exe REMOVESERIALNUMBER="8M01-20A9-HA9A-K0HH-91PX-566L-3PT8-WW3H"
                    neroxml-->MsiExec.exe /I{56C049BE-79E9-4502-BEA7-9754A3E60F9B}
                    OCR Software by I.R.I.S 7.0-->C:\Program Files\HP\Digital Imaging\OCR\hpzscr01.exe -datfile hpqbud11.dat
                    OpenOffice.org 2.4-->MsiExec.exe /I{B6694BAA-7604-46AA-A41F-B5F1E6DADE7A}
                    PowerDVD-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}\Setup.exe" -uninstall
                    QuickTime-->MsiExec.exe /I{8DC42D05-680B-41B0-8878-6C14D24602DB}
                    SAMSUNG CDMA Modem Driver Set-->C:\WINDOWS\system32\Samsung_USB_Drivers\3\SSCDUninstall.exe
                    SAMSUNG Mobile USB Modem 1.0 Software-->C:\WINDOWS\system32\Samsung_USB_Drivers\1\SS_Uninstall.exe
                    SAMSUNG Mobile USB Modem Software-->C:\WINDOWS\system32\Samsung_USB_Drivers\2\SSM_Uninstall.exe
                    Samsung PC Studio 3 USB Driver Installer-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\10\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{EBA29752-DDD2-4B62-B2E3-9841F92A3E3A}\setup.exe" -l0x40c -removeonly
                    Samsung PC Studio-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\10\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{C4A4722E-79F9-417C-BD72-8D359A090C97}\setup.exe" -l0x40c -removeonly
                    Samsung Samples Installer-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\10\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{7AC15160-A49B-4A89-B181-D4619C025FFF}\setup.exe" -l0x40c -removeonly
                    Satsuki Decoder Pack-->C:\Program Files\Satsuki Decoder Pack\Uninstall.exe
                    Security Update for CAPICOM (KB931906)-->MsiExec.exe /I{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
                    Security Update for CAPICOM (KB931906)-->MsiExec.exe /X{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
                    Shop for HP Supplies-->C:\Program Files\HP\Digital Imaging\HPSSupply\hpzscr01.exe -datfile hpqbud16.dat
                    SmartSound Quicktracks Plugin-->C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\9\INTEL3~1\IDriver.exe /M{4A7FDA4D-F4D7-4A49-934A-066D59A43C7E}
                    Sonic Encoders-->MsiExec.exe /I{9941F0AA-B903-4AF4-A055-83A9815CC011}
                    Sonic Express Labeler-->MsiExec.exe /I{6675CA7F-E51B-4F6A-99D4-F8F0124C6EAA}
                    Sonic MyDVD LE-->MsiExec.exe /I{21657574-BD54-48A2-9450-EB03B2C7FC29}
                    Sonic RecordNow Audio-->MsiExec.exe /I{AB708C9B-97C8-4AC9-899B-DBF226AC9382}
                    Sonic RecordNow Copy-->MsiExec.exe /I{B12665F4-4E93-4AB4-B7FC-37053B524629}
                    Sonic RecordNow Data-->MsiExec.exe /I{075473F5-846A-448B-BCB3-104AA1760205}
                    Sonic Update Manager-->MsiExec.exe /I{30465B6C-B53F-49A1-9EBA-A3F187AD502E}
                    StuffIt 7.0.2-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{43D9B310-7C71-400E-BD41-AA3D30B6B0C8}\Setup.exe" -l0x40c
                    Ulead PhotoImpact 10 SE-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{5A065EA0-0EEC-4E94-A2A0-40812576C122}\setup.exe" -l0x40c
                    Ulead VideoStudio 9.0 SE DVD-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{8EAB2384-C794-40ED-A9DD-3270A0D2BB76}\setup.exe" -l0x40c
                    VideoLAN VLC media player 0.8.6h-->C:\Program Files\VideoLAN\VLC\uninstall.exe
                    Vuze-->C:\Program Files\Vuze\uninstall.exe
                    Windows Media Format 11 runtime-->"C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
                    Windows Media Format 11 runtime-->"C:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe"
                    Windows Media Player 11-->"C:\WINDOWS\$NtUninstallwmp11$\spuninst\spuninst.exe"
                    Windows XP Media Center Edition 2005 KB908246-->"C:\WINDOWS\$NtUninstallKB908246$\spuninst\spuninst.exe"
                    Windows XP Media Center Edition 2005 KB925766-->"C:\WINDOWS\$NtUninstallKB925766$\spuninst\spuninst.exe"
                    Windows XP Service Pack 3-->"C:\WINDOWS\$NtServicePackUninstall$\spuninst\spuninst.exe"
                    WinPcap 4.0-->C:\Program Files\WinPcap\uninstall.exe

                    ======Security center information======

                    AV: Avira AntiVir PersonalEdition
                    FW: Norton Internet Worm Protection (disabled)

                    ======Environment variables======

                    "ComSpec"=%SystemRoot%\system32\cmd.exe
                    "Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\Fichiers communs\Ulead Systems\MPEG;C:\Program Files\Samsung\Samsung PC Studio 3\;C:\Program Files\QuickTime\QTSystem\
                    "windir"=%SystemRoot%
                    "FP_NO_HOST_CHECK"=NO
                    "OS"=Windows_NT
                    "PROCESSOR_ARCHITECTURE"=x86
                    "PROCESSOR_LEVEL"=6
                    "PROCESSOR_IDENTIFIER"=x86 Family 6 Model 15 Stepping 6, GenuineIntel
                    "PROCESSOR_REVISION"=0f06
                    "NUMBER_OF_PROCESSORS"=2
                    "PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
                    "TEMP"=%SystemRoot%\TEMP
                    "TMP"=%SystemRoot%\TEMP
                    "SonicCentral"=C:\Program Files\Fichiers communs\Sonic Shared\Sonic Central\
                    "CLASSPATH"=.;C:\Program Files\Java\jre1.5.0_04\lib\ext\QTJava.zip
                    "QTJAVA"=C:\Program Files\Java\jre1.5.0_04\lib\ext\QTJava.zip

                    -----------------EOF-----------------
                    0
                    1. Modérateur
                      --> Télécharge UsbFix (de Chiquitine29) sur ton Bureau :
                      http://sd-1.archive-host.com/membres/up/116615172019703188/UsbFix.exe

                      --> Lance l'installation avec les paramètres par défaut.

                      --> Branche tes sources de données externes à ton PC (clé USB, disque dur externe, etc...) sans les ouvrir.

                      --> Double-clique sur le raccourci UsbFix sur ton Bureau.

                      --> Choisis l'option 1 (Nettoyage).

                      --> Le PC va redémarrer.

                      --> Après redémarrage, poste le rapport UsbFix.txt

                      Note : le rapport UsbFix.txt est sauvegardé à la racine du disque.

                      (Si le Bureau ne réapparait pas, presse Ctrl+Alt+Suppr, Onglet "Fichier", "Nouvelle tâche", tape explorer.exe et valide)
                      0
                      1. -------------- UsbFix V2.413.2 ---------------

                        * User : Anne-Claire LHOTE - SN012345678912
                        * Outils mis a jours le 01/12/2008 par Chiquitine29 et Chimay8
                        * Recherche effectuée à 15:46:35 le 08/01/2009
                        * Windows Xp - Internet Explorer 7.0.5730.13

                        --------------- [ Processus actifs ] ----------------

                        C:\WINDOWS\System32\smss.exe
                        C:\WINDOWS\system32\csrss.exe
                        C:\WINDOWS\system32\winlogon.exe
                        C:\WINDOWS\system32\services.exe
                        C:\WINDOWS\system32\lsass.exe
                        C:\WINDOWS\system32\svchost.exe
                        C:\WINDOWS\system32\svchost.exe
                        C:\WINDOWS\System32\svchost.exe
                        C:\WINDOWS\system32\svchost.exe
                        C:\WINDOWS\system32\svchost.exe
                        C:\WINDOWS\system32\spoolsv.exe
                        C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
                        C:\WINDOWS\system32\userinit.exe
                        C:\DOCUME~1\ANNE-C~1\LOCALS~1\Temp\1.tmp\b2e.exe

                        --------------- [ Informations lecteurs ] ----------------

                        C: - Lecteur fixe

                        --------------- [ Lecteur C ] ----------------

                        C: - Lecteur fixe

                        +- Listing des fichiers présents :

                        [10/08/2004 13:00][--a------] C:\NTDETECT.COM
                        [03/03/2008 12:12][--a------] C:\0x0409.ini
                        [03/03/2008 12:12][--a------] C:\BOOT.INI
                        [16/08/2008 00:45][--a------] C:\AILog.txt
                        [16/08/2008 00:45][--a------] C:\DWNLOG.TXT
                        [16/08/2008 00:45][--a------] C:\fixnavi.txt
                        [16/08/2008 00:45][--a------] C:\SAUDIT.TXT
                        [16/08/2008 00:45][--a------] C:\UsbFix.txt
                        [][] C:\hiberfil.sys
                        [][] C:\IO.SYS
                        [][] C:\MSDOS.SYS
                        [][] C:\pagefile.sys

                        --------------- [ Registre / Startup ] ----------------

                        [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
                        "Userinit"="C:\\WINDOWS\\system32\\userinit.exe,"

                        [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
                        "Search Page"="https://www.google.com/?gws_rd=ssl"
                        "Start Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome"

                        [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\run]
                        MSMSGS="C:\Program Files\Messenger\msmsgs.exe" /background
                        SmpcSys=C:\APPS\SMP\SmpSys.exe
                        updateMgr=C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_0_0
                        swg=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
                        ctfmon.exe=C:\WINDOWS\system32\ctfmon.exe
                        CanalPlayer=C:\Program Files\Lecteur CANALPLAY\CanalPlayer.exe

                        [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\run]
                        IMJPMIG8.1="C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
                        PHIME2002ASync=C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
                        PHIME2002A=C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
                        ehTray=C:\WINDOWS\ehome\ehtray.exe
                        Raccourci vers la page des propriétés de High Definition Audio=HDAShCut.exe
                        SynTPEnh=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
                        SMSERIAL=C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
                        NvCplDaemon=RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
                        nwiz=nwiz.exe /install
                        NvMediaCenter=RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
                        HControl=C:\WINDOWS\ATK0100\HControl.exe
                        SunJavaUpdateSched=C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
                        DetectorApp=C:\Program Files\Sonic\DigitalMedia LE v7\MyDVD LE\DetectorApp.exe
                        ISUSPM Startup=C:\PROGRA~1\FICHIE~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
                        ISUSScheduler="C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe" -start
                        HP Software Update=C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
                        avgnt="C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
                        Adobe Reader Speed Launcher="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
                        QuickTime Task="C:\Program Files\QuickTime\QTTask.exe" -atboottime
                        iTunesHelper="C:\Program Files\iTunes\iTunesHelper.exe"
                        ItsTV="C:\Program Files\ItsLabel\ItsTV.exe"
                        HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents=
                        <NO NAME>=
                        HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\IMAIL=
                        Installed=1
                        <NO NAME>=
                        HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MAPI=
                        NoChange=1
                        Installed=1
                        <NO NAME>=
                        HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MSFS=
                        Installed=1
                        <NO NAME>=

                        --------------- [ Registre / Mountpoint2 ] ----------------

                        Supprimé ! - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{226dde6a-9392-11dc-9d97-0018f38c9ef0}\Shell\AutoRun\command
                        Supprimé ! - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{8b02c188-4aa9-11dd-9f35-00038a000015}\Shell\AutoRun\command
                        Supprimé ! - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{9924be24-950b-11db-9c0c-0018f38c9ef0}\Shell\AutoRun\command
                        Supprimé ! - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{9924be24-950b-11db-9c0c-0018f38c9ef0}\Shell\open\Command
                        Supprimé ! - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{bebc144e-81a8-11dd-a006-00038a000015}\Shell\AutoRun\command
                        Supprimé ! - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{bebc144e-81a8-11dd-a006-00038a000015}\Shell\explore\Command
                        Supprimé ! - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{bebc144e-81a8-11dd-a006-00038a000015}\Shell\open\Command
                        Supprimé ! - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c3c0e356-8690-11dd-a00e-00038a000015}\Shell\AutoRun\command

                        --------------- [ Nettoyage des disques ] ----------------

                        --------------- [ Resumé ] ----------------

                        -> /!\ Le resultat doit etre interprété par un spécialiste /!\

                        [10/08/2004 13:00][--a------] C:\NTDETECT.COM
                        [03/03/2008 12:12][--a------] C:\0x0409.ini
                        [03/03/2008 12:12][--a------] C:\BOOT.INI

                        --------------- ! Fin du rapport ! ----------------
                        0
                        1. ...

                          -------------- UsbFix V2.413.2 ---------------

                          * User : Anne-Claire LHOTE - SN012345678912
                          * Outils mis a jours le 01/12/2008 par Chiquitine29 et Chimay8
                          * Recherche effectuée à 15:46:35 le 08/01/2009
                          * Windows Xp - Internet Explorer 7.0.5730.13

                          --------------- [ Processus actifs ] ----------------

                          C:\WINDOWS\System32\smss.exe
                          C:\WINDOWS\system32\csrss.exe
                          C:\WINDOWS\system32\winlogon.exe
                          C:\WINDOWS\system32\services.exe
                          C:\WINDOWS\system32\lsass.exe
                          C:\WINDOWS\system32\svchost.exe
                          C:\WINDOWS\system32\svchost.exe
                          C:\WINDOWS\System32\svchost.exe
                          C:\WINDOWS\system32\svchost.exe
                          C:\WINDOWS\system32\svchost.exe
                          C:\WINDOWS\system32\spoolsv.exe
                          C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
                          C:\WINDOWS\system32\userinit.exe
                          C:\DOCUME~1\ANNE-C~1\LOCALS~1\Temp\1.tmp\b2e.exe

                          --------------- [ Informations lecteurs ] ----------------

                          C: - Lecteur fixe

                          --------------- [ Lecteur C ] ----------------

                          C: - Lecteur fixe

                          +- Listing des fichiers présents :

                          [10/08/2004 13:00][--a------] C:\NTDETECT.COM
                          [03/03/2008 12:12][--a------] C:\0x0409.ini
                          [03/03/2008 12:12][--a------] C:\BOOT.INI
                          [16/08/2008 00:45][--a------] C:\AILog.txt
                          [16/08/2008 00:45][--a------] C:\DWNLOG.TXT
                          [16/08/2008 00:45][--a------] C:\fixnavi.txt
                          [16/08/2008 00:45][--a------] C:\SAUDIT.TXT
                          [16/08/2008 00:45][--a------] C:\UsbFix.txt
                          [][] C:\hiberfil.sys
                          [][] C:\IO.SYS
                          [][] C:\MSDOS.SYS
                          [][] C:\pagefile.sys

                          --------------- [ Registre / Startup ] ----------------

                          [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
                          "Userinit"="C:\\WINDOWS\\system32\\userinit.exe,"

                          [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
                          "Search Page"="https://www.google.com/?gws_rd=ssl"
                          "Start Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome"

                          [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\run]
                          MSMSGS="C:\Program Files\Messenger\msmsgs.exe" /background
                          SmpcSys=C:\APPS\SMP\SmpSys.exe
                          updateMgr=C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_0_0
                          swg=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
                          ctfmon.exe=C:\WINDOWS\system32\ctfmon.exe
                          CanalPlayer=C:\Program Files\Lecteur CANALPLAY\CanalPlayer.exe

                          [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\run]
                          IMJPMIG8.1="C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
                          PHIME2002ASync=C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
                          PHIME2002A=C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
                          ehTray=C:\WINDOWS\ehome\ehtray.exe
                          Raccourci vers la page des propriétés de High Definition Audio=HDAShCut.exe
                          SynTPEnh=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
                          SMSERIAL=C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
                          NvCplDaemon=RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
                          nwiz=nwiz.exe /install
                          NvMediaCenter=RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
                          HControl=C:\WINDOWS\ATK0100\HControl.exe
                          SunJavaUpdateSched=C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
                          DetectorApp=C:\Program Files\Sonic\DigitalMedia LE v7\MyDVD LE\DetectorApp.exe
                          ISUSPM Startup=C:\PROGRA~1\FICHIE~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
                          ISUSScheduler="C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe" -start
                          HP Software Update=C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
                          avgnt="C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
                          Adobe Reader Speed Launcher="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
                          QuickTime Task="C:\Program Files\QuickTime\QTTask.exe" -atboottime
                          iTunesHelper="C:\Program Files\iTunes\iTunesHelper.exe"
                          ItsTV="C:\Program Files\ItsLabel\ItsTV.exe"
                          HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents=
                          <NO NAME>=
                          HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\IMAIL=
                          Installed=1
                          <NO NAME>=
                          HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MAPI=
                          NoChange=1
                          Installed=1
                          <NO NAME>=
                          HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MSFS=
                          Installed=1
                          <NO NAME>=

                          --------------- [ Registre / Mountpoint2 ] ----------------

                          Supprimé ! - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{226dde6a-9392-11dc-9d97-0018f38c9ef0}\Shell\AutoRun\command
                          Supprimé ! - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{8b02c188-4aa9-11dd-9f35-00038a000015}\Shell\AutoRun\command
                          Supprimé ! - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{9924be24-950b-11db-9c0c-0018f38c9ef0}\Shell\AutoRun\command
                          Supprimé ! - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{9924be24-950b-11db-9c0c-0018f38c9ef0}\Shell\open\Command
                          Supprimé ! - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{bebc144e-81a8-11dd-a006-00038a000015}\Shell\AutoRun\command
                          Supprimé ! - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{bebc144e-81a8-11dd-a006-00038a000015}\Shell\explore\Command
                          Supprimé ! - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{bebc144e-81a8-11dd-a006-00038a000015}\Shell\open\Command
                          Supprimé ! - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c3c0e356-8690-11dd-a00e-00038a000015}\Shell\AutoRun\command

                          --------------- [ Nettoyage des disques ] ----------------

                          --------------- [ Resumé ] ----------------

                          -> /!\ Le resultat doit etre interprété par un spécialiste /!\

                          [10/08/2004 13:00][--a------] C:\NTDETECT.COM
                          [03/03/2008 12:12][--a------] C:\0x0409.ini
                          [03/03/2008 12:12][--a------] C:\BOOT.INI

                          --------------- ! Fin du rapport ! ----------------
                          0
                          1. Je ne comprends le rapport ne s'affiche pas dans notre discussion...
                            0
                            1. ???

                              -------------- UsbFix V2.413.2 ---------------

                              * User : Anne-Claire LHOTE - SN012345678912
                              * Outils mis a jours le 01/12/2008 par Chiquitine29 et Chimay8
                              * Recherche effectuée à 15:46:35 le 08/01/2009
                              * Windows Xp - Internet Explorer 7.0.5730.13

                              --------------- [ Processus actifs ] ----------------

                              C:\WINDOWS\System32\smss.exe
                              C:\WINDOWS\system32\csrss.exe
                              C:\WINDOWS\system32\winlogon.exe
                              C:\WINDOWS\system32\services.exe
                              C:\WINDOWS\system32\lsass.exe
                              C:\WINDOWS\system32\svchost.exe
                              C:\WINDOWS\system32\svchost.exe
                              C:\WINDOWS\System32\svchost.exe
                              C:\WINDOWS\system32\svchost.exe
                              C:\WINDOWS\system32\svchost.exe
                              C:\WINDOWS\system32\spoolsv.exe
                              C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
                              C:\WINDOWS\system32\userinit.exe
                              C:\DOCUME~1\ANNE-C~1\LOCALS~1\Temp\1.tmp\b2e.exe

                              --------------- [ Informations lecteurs ] ----------------

                              C: - Lecteur fixe

                              --------------- [ Lecteur C ] ----------------

                              C: - Lecteur fixe

                              +- Listing des fichiers présents :

                              [10/08/2004 13:00][--a------] C:\NTDETECT.COM
                              [03/03/2008 12:12][--a------] C:\0x0409.ini
                              [03/03/2008 12:12][--a------] C:\BOOT.INI
                              [16/08/2008 00:45][--a------] C:\AILog.txt
                              [16/08/2008 00:45][--a------] C:\DWNLOG.TXT
                              [16/08/2008 00:45][--a------] C:\fixnavi.txt
                              [16/08/2008 00:45][--a------] C:\SAUDIT.TXT
                              [16/08/2008 00:45][--a------] C:\UsbFix.txt
                              [][] C:\hiberfil.sys
                              [][] C:\IO.SYS
                              [][] C:\MSDOS.SYS
                              [][] C:\pagefile.sys

                              --------------- [ Registre / Startup ] ----------------

                              [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
                              "Userinit"="C:\\WINDOWS\\system32\\userinit.exe,"

                              [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
                              "Search Page"="https://www.google.com/?gws_rd=ssl"
                              "Start Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome"

                              [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\run]
                              MSMSGS="C:\Program Files\Messenger\msmsgs.exe" /background
                              SmpcSys=C:\APPS\SMP\SmpSys.exe
                              updateMgr=C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_0_0
                              swg=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
                              ctfmon.exe=C:\WINDOWS\system32\ctfmon.exe
                              CanalPlayer=C:\Program Files\Lecteur CANALPLAY\CanalPlayer.exe

                              [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\run]
                              IMJPMIG8.1="C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
                              PHIME2002ASync=C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
                              PHIME2002A=C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
                              ehTray=C:\WINDOWS\ehome\ehtray.exe
                              Raccourci vers la page des propriétés de High Definition Audio=HDAShCut.exe
                              SynTPEnh=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
                              SMSERIAL=C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
                              NvCplDaemon=RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
                              nwiz=nwiz.exe /install
                              NvMediaCenter=RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
                              HControl=C:\WINDOWS\ATK0100\HControl.exe
                              SunJavaUpdateSched=C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
                              DetectorApp=C:\Program Files\Sonic\DigitalMedia LE v7\MyDVD LE\DetectorApp.exe
                              ISUSPM Startup=C:\PROGRA~1\FICHIE~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
                              ISUSScheduler="C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe" -start
                              HP Software Update=C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
                              avgnt="C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
                              Adobe Reader Speed Launcher="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
                              QuickTime Task="C:\Program Files\QuickTime\QTTask.exe" -atboottime
                              iTunesHelper="C:\Program Files\iTunes\iTunesHelper.exe"
                              ItsTV="C:\Program Files\ItsLabel\ItsTV.exe"
                              HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents=
                              <NO NAME>=
                              HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\IMAIL=
                              Installed=1
                              <NO NAME>=
                              HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MAPI=
                              NoChange=1
                              Installed=1
                              <NO NAME>=
                              HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MSFS=
                              Installed=1
                              <NO NAME>=

                              --------------- [ Registre / Mountpoint2 ] ----------------

                              Supprimé ! - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{226dde6a-9392-11dc-9d97-0018f38c9ef0}\Shell\AutoRun\command
                              Supprimé ! - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{8b02c188-4aa9-11dd-9f35-00038a000015}\Shell\AutoRun\command
                              Supprimé ! - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{9924be24-950b-11db-9c0c-0018f38c9ef0}\Shell\AutoRun\command
                              Supprimé ! - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{9924be24-950b-11db-9c0c-0018f38c9ef0}\Shell\open\Command
                              Supprimé ! - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{bebc144e-81a8-11dd-a006-00038a000015}\Shell\AutoRun\command
                              Supprimé ! - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{bebc144e-81a8-11dd-a006-00038a000015}\Shell\explore\Command
                              Supprimé ! - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{bebc144e-81a8-11dd-a006-00038a000015}\Shell\open\Command
                              Supprimé ! - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c3c0e356-8690-11dd-a00e-00038a000015}\Shell\AutoRun\command

                              --------------- [ Nettoyage des disques ] ----------------

                              --------------- [ Resumé ] ----------------

                              -> /!\ Le resultat doit etre interprété par un spécialiste /!\

                              [10/08/2004 13:00][--a------] C:\NTDETECT.COM
                              [03/03/2008 12:12][--a------] C:\0x0409.ini
                              [03/03/2008 12:12][--a------] C:\BOOT.INI

                              --------------- ! Fin du rapport ! ----------------
                              0
                              1. Ah si c'est bon, merde du coup j'en ai foutu partout...
                                0
                                1. Modérateur
                                  CCM a bogué quelques minutes ^^
                                  0
                                  1. Modérateur
                                    ---> Télécharge Toolbar S&D (Team IDN) sur ton Bureau.
                                    * Lance l'installation du programme en exécutant le fichier téléchargé.
                                    * Double-clique maintenant sur le raccourci de Toolbar S&D.
                                    * Sélectionne la langue souhaitée en tapant la lettre de ton choix puis en validant avec la touche Entrée.
                                    * Choisis maintenant l'option 1 (Recherche). Patiente jusqu'à la fin de la recherche.
                                    * Poste le rapport généré. (C:\TB.txt)
                                    0
                                    • 1
                                    • 2