Svp analyse scan hijackthis de antivirus 360

Résolu/Fermé
caroline2 Messages postés 41 Date d'inscription mardi 16 décembre 2008 Statut Membre Dernière intervention 22 décembre 2008 - 16 déc. 2008 à 00:25
jorginho67 Messages postés 14716 Date d'inscription mardi 11 septembre 2007 Statut Contributeur sécurité Dernière intervention 11 février 2011 - 22 déc. 2008 à 17:29
Bonjour,
voilà deux jours que j'ai des pages internet explorer qui s'ouvrent m'indiquant que mon ordinateur est infecté et qu'il faut télécharger antivirus 360 et je fermer toujours ces fenêtres mais ça persiste bien que je n'ai pas téléchargé cet antivirus. J'ai fait le scan avec HijackThis et svp si vous pouver m'aider à analyser oû est le problème je vous serais reconnaissnate
Merci
--------------------------------------------------------------------------
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 17:58:28, on 15/12/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\acs.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\WINDOWS\system32\DRIVERS\CDANTSRV.EXE
C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
C:\Program Files\Symantec AntiVirus\DefWatch.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Microsoft LifeCam\MSCamS32.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Symantec AntiVirus\Rtvscan.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Toshiba\Windows Utilities\Hotkey.exe
C:\Program Files\Synaptics\SynTP\Toshiba.exe
C:\WINDOWS\system32\TPSMain.exe
C:\Program Files\TOSHIBA\ConfigFree\NDSTray.exe
C:\Program Files\TOSHIBA\Utilitaire de zoom TOSHIBA\SmoothView.exe
C:\WINDOWS\system32\TPSBattM.exe
C:\Program Files\TOSHIBA\Touch and Launch\PadExe.exe
C:\WINDOWS\System32\DLA\DLACTRLW.EXE
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
C:\Program Files\TOSHIBA\ConfigFree\CFSServ.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe
C:\PROGRA~1\SYMANT~1\VPTray.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnf.exe
C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe
C:\WINDOWS\vVX3000.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Symantec AntiVirus\DoScan.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpobnz08.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\Bin\hpoSTS08.exe
C:\Program Files\eMule\emule.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_clipbook.exe
C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://safesearch.cyberdefender.com/smallsearch.html
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://fr.yahoo.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: HP Print Clips - {053F9267-DC04-4294-A72C-58F732D338C0} - C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_framework.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\System32\DLA\DLASHX_W.DLL
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [Toshiba Hotkey Utility] "C:\Program Files\Toshiba\Windows Utilities\Hotkey.exe" /lang FR
O4 - HKLM\..\Run: [TPSMain] TPSMain.exe
O4 - HKLM\..\Run: [NDSTray.exe] NDSTray.exe
O4 - HKLM\..\Run: [SmoothView] C:\Program Files\TOSHIBA\Utilitaire de zoom TOSHIBA\SmoothView.exe
O4 - HKLM\..\Run: [PadTouch] C:\Program Files\TOSHIBA\Touch and Launch\PadExe.exe
O4 - HKLM\..\Run: [DLA] C:\WINDOWS\System32\DLA\DLACTRLW.EXE
O4 - HKLM\..\Run: [AdslTaskBar] rundll32.exe stmctrl.dll,TaskBar
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [Share-to-Web Namespace Daemon] C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
O4 - HKLM\..\Run: [CFSServ.exe] CFSServ.exe -NoClient
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [vptray] C:\PROGRA~1\SYMANT~1\VPTray.exe
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [CyberDefender Early Detection Center] "C:\Program Files\CyberDefender\AntiSpyware\ISSIntro.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [VX3000] C:\WINDOWS\vVX3000.exe
O4 - HKLM\..\Run: [LifeCam] "C:\Program Files\Microsoft LifeCam\LifeExp.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [TOSCDSPD] C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [Uniblue RegistryBooster 2009] C:\Program Files\Uniblue\RegistryBooster\RegistryBooster.exe /S
O4 - HKCU\..\Run: [27656107949475256988225418229111] C:\Program Files\Antivirus 2009\av2009.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [AdwareAlert] C:\Program Files\AdwareAlert\AdwareAlert.exe -boot
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: hp psc 2000 Series.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpobnz08.exe
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Livre de reliures HP - {58ECB495-38F0-49cb-A538-10282ABF65E7} - C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_extensions.dll
O9 - Extra button: Sélection intelligente HP - {700259D7-1666-479a-93B1-3250410481E8} - C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_extensions.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
O16 - DPF: {1F831FA7-42FC-11D4-95A6-0080AD30DCE1} (InstaFred) - file://C:\Program Files\Autodesk Architectural Desktop 3 Fra\InstFred.ocx
O16 - DPF: {78AF2F24-A9C3-11D3-BF8C-0060B0FCC122} (Contrôle d'AcDcToday) - file://C:\Program Files\Autodesk Architectural Desktop 3 Fra\AcDcToday.ocx
O16 - DPF: {AE563727-B4F5-11D4-A415-00108302FDFD} (NOXLATE-BANR) - file://C:\Program Files\Autodesk Architectural Desktop 3 Fra\InstBanr.ocx
O16 - DPF: {F281A59C-7B65-11D3-8617-0010830243BD} (Gestion d'AcPreview) - file://C:\Program Files\Autodesk Architectural Desktop 3 Fra\AcPreview.ocx
O16 - DPF: {FE0BD779-44EE-4A4B-AA2E-743C63F2E5E6} (IWinAmpActiveX Class) - http://pdl.stream.aol.com/downloads/aol/unagi/ampx_en_dl.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: C:\WINDOWS\System32\d3dx9_2532.dll
O20 - Winlogon Notify: 78377e2a511 - C:\WINDOWS\System32\d3dx9_2532.dll
O23 - Service: Service de configuration Atheros (ACS) - Unknown owner - C:\WINDOWS\system32\acs.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
O23 - Service: BrlAPI - Unknown owner - D:\UdeM\cygwin\bin\cygrunsrv.exe
O23 - Service: C-DillaSrv - C-Dilla Ltd - C:\WINDOWS\system32\DRIVERS\CDANTSRV.EXE
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
O23 - Service: ConfigFree Service (CFSvcs) - TOSHIBA CORPORATION - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C:\Program Files\Symantec AntiVirus\DefWatch.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: SAVRoam (SavRoam) - symantec - C:\Program Files\Symantec AntiVirus\SavRoam.exe
O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Program Files\Spyware Doctor\pctsAuxs.exe
O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Program Files\Spyware Doctor\pctsSvc.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Symantec AntiVirus - Symantec Corporation - C:\Program Files\Symantec AntiVirus\Rtvscan.exe
----------------------------------------------------------
Meric bcp !
A voir également:

37 réponses

jorginho67 Messages postés 14716 Date d'inscription mardi 11 septembre 2007 Statut Contributeur sécurité Dernière intervention 11 février 2011 1 169
16 déc. 2008 à 00:39
Salut !

Télécharge SmitfraudFix
Utilitaire de S!Ri: Moe et balltrap34

Installe le à la racine de C : tuto d'utilisation

Double clique sur l'exe pour le décompresser et lancer le fix.

Utilisation option 1 Recherche :

Double clique sur smitfraudfix.cmd
Sélectionne 1 pour créer un rapport des fichiers responsables de l'infection.

Ne fais rien d'autre sans notre avis

Copie/colle le RAPPORT sur ta prochaine réponse sur ce post stp.

Process.exe est détecté par certains antivirus (AntiVir, Dr.Web, Kaspersky Anti-Virus) comme étant un RiskTool.
Il ne s'agit pas d'un virus, mais d'un utilitaire destiné à mettre fin à des processus.
Mis entre de mauvaises mains, cet utilitaire pourrait arrêter des logiciels de sécurité (Antivirus, Firewall...) d'où l'alerte émise par ces antivirus.


Tutoriel d'aide
1
caroline2 Messages postés 41 Date d'inscription mardi 16 décembre 2008 Statut Membre Dernière intervention 22 décembre 2008
16 déc. 2008 à 01:03
salut jorginho67,
merci pour la rapidité de ta réponse. En installant SmitfraudFix il y a mon symantec qui m'avertit du risque d'être infecté par IEDefender est-ce normal ? voici donc le rapport de SmitfraudFix
------------
SmitFraudFix v2.386

Rapport fait à 18:54:57,53, 15/12/2008
Executé à partir de C:\SmitfraudFix
OS: Microsoft Windows XP [version 5.1.2600] - Windows_NT
Le type du système de fichiers est NTFS
Fix executé en mode normal

»»»»»»»»»»»»»»»»»»»»»»»» Process

C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\acs.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\WINDOWS\system32\DRIVERS\CDANTSRV.EXE
C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
C:\Program Files\Symantec AntiVirus\DefWatch.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Microsoft LifeCam\MSCamS32.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Symantec AntiVirus\Rtvscan.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Toshiba\Windows Utilities\Hotkey.exe
C:\Program Files\Synaptics\SynTP\Toshiba.exe
C:\WINDOWS\system32\TPSMain.exe
C:\Program Files\TOSHIBA\ConfigFree\NDSTray.exe
C:\Program Files\TOSHIBA\Utilitaire de zoom TOSHIBA\SmoothView.exe
C:\WINDOWS\system32\TPSBattM.exe
C:\Program Files\TOSHIBA\Touch and Launch\PadExe.exe
C:\WINDOWS\System32\DLA\DLACTRLW.EXE
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
C:\Program Files\TOSHIBA\ConfigFree\CFSServ.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe
C:\PROGRA~1\SYMANT~1\VPTray.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnf.exe
C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe
C:\WINDOWS\vVX3000.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Symantec AntiVirus\DoScan.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpobnz08.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\Bin\hpoSTS08.exe
C:\Program Files\eMule\emule.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_clipbook.exe
C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\SmitfraudFix\Policies.exe
C:\WINDOWS\system32\cmd.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe

»»»»»»»»»»»»»»»»»»»»»»»» hosts

Fichier hosts corrompu !

127.0.0.1 www.legal-at-spybot.info
127.0.0.1 legal-at-spybot.info

»»»»»»»»»»»»»»»»»»»»»»»» C:\


»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS


»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system


»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\Web


»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system32


»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system32\LogFiles


»»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\TAHAR


»»»»»»»»»»»»»»»»»»»»»»»» C:\DOCUME~1\TAHAR\LOCALS~1\Temp


»»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\TAHAR\Application Data


»»»»»»»»»»»»»»»»»»»»»»»» Menu Démarrer


»»»»»»»»»»»»»»»»»»»»»»»» C:\DOCUME~1\LOCALS~1\Favoris


»»»»»»»»»»»»»»»»»»»»»»»» Bureau


»»»»»»»»»»»»»»»»»»»»»»»» C:\Program Files


»»»»»»»»»»»»»»»»»»»»»»»» Clés corrompues


»»»»»»»»»»»»»»»»»»»»»»»» Eléments du bureau

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Desktop\Components\0]
"Source"="About:Home"
"SubscribedURL"="About:Home"
"FriendlyName"="Ma page d'accueil"


»»»»»»»»»»»»»»»»»»»»»»»» o4Patch
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

o4Patch
Credits: Malware Analysis & Diagnostic
Code: S!Ri



»»»»»»»»»»»»»»»»»»»»»»»» IEDFix
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

IEDFix
Credits: Malware Analysis & Diagnostic
Code: S!Ri



»»»»»»»»»»»»»»»»»»»»»»»» Agent.OMZ.Fix
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

Agent.OMZ.Fix
Credits: Malware Analysis & Diagnostic
Code: S!Ri


»»»»»»»»»»»»»»»»»»»»»»»» VACFix
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

VACFix
Credits: Malware Analysis & Diagnostic
Code: S!Ri


»»»»»»»»»»»»»»»»»»»»»»»» 404Fix
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

404Fix
Credits: Malware Analysis & Diagnostic
Code: S!Ri


»»»»»»»»»»»»»»»»»»»»»»»» Sharedtaskscheduler
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll


»»»»»»»»»»»»»»»»»»»»»»»» AppInit_DLLs
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\\WINDOWS\\System32\\d3dx9_2532.dll"


»»»»»»»»»»»»»»»»»»»»»»»» Winlogon
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
"Userinit"="C:\\WINDOWS\\system32\\userinit.exe,"
"System"=""


»»»»»»»»»»»»»»»»»»»»»»»» RK



»»»»»»»»»»»»»»»»»»»»»»»» DNS

Description: Realtek RTL8139/810x Family Fast Ethernet NIC - Miniport d'ordonnancement de paquets
DNS Server Search Order: 192.168.2.1

HKLM\SYSTEM\CCS\Services\Tcpip\..\{86E28817-2EA3-4AB9-8831-89F4F2BD9C29}: DhcpNameServer=192.168.2.1
HKLM\SYSTEM\CS1\Services\Tcpip\..\{86E28817-2EA3-4AB9-8831-89F4F2BD9C29}: DhcpNameServer=192.168.2.1
HKLM\SYSTEM\CS2\Services\Tcpip\..\{2ABDBB89-CA82-4F98-8173-FF0896DF4FE5}: DhcpNameServer=192.168.2.1
HKLM\SYSTEM\CS2\Services\Tcpip\Parameters: DhcpNameServer=192.168.2.1


»»»»»»»»»»»»»»»»»»»»»»»» Recherche infection wininet.dll


»»»»»»»»»»»»»»»»»»»»»»»» Fin
----------------------

Merci encore !!
0
Lyonnais92 Messages postés 25159 Date d'inscription vendredi 23 juin 2006 Statut Contributeur sécurité Dernière intervention 16 septembre 2016 1 536
19 déc. 2008 à 00:07
Re,

On va utiliser ComboFix.exe. Rends toi sur cette page web pour obtenir les liens de téléchargement, ainsi que des instructions pour exécuter l'outil:

https://www.bleepingcomputer.com/combofix/fr/comment-utiliser-combofix


* Vérifie que tu as fermé/désactivé tous les programmes anti-virus, anti-malware ou anti-spyware afin qu'ils n'interfèrent pas avec le travail de ComboFix.

Envoie le contenu de C:\ComboFix.txt dans ta prochaine réponse afin que on l'examine.
1
Lyonnais92 Messages postés 25159 Date d'inscription vendredi 23 juin 2006 Statut Contributeur sécurité Dernière intervention 16 septembre 2016 1 536
19 déc. 2008 à 16:46
Re,

beaucoup d'infections par les supports amovibles.

--> Télécharge UsbFix (de Chiquitine29) sur ton Bureau :
http://sd-1.archive-host.com/membres/up/116615172019703188/UsbFix.exe

--> Lance l'installation avec les paramètres par défaut.

--> Branche tes sources de données externes à ton PC (clé USB, disque dur externe, etc...) sans les ouvrir.

--> Double-clique sur le raccourci UsbFix sur ton Bureau.

--> Le PC va redémarrer.

--> Après redémarrage, poste le rapport UsbFix.txt

Note : le rapport UsbFix.txt est sauvegardé à la racine du disque.

(Si le Bureau ne réapparait pas, presse Ctrl+Alt+Suppr, Onglet "Fichier", "Nouvelle tâche", tape explorer.exe et valide)

=====================

Ouvre l'explorateur windows (clic droit sur démarrer et explorer)

Cherche C:\SmitfraudFix fais un clic droit et Supprimer.

(on va utiliser la dernière version)

Ouvre ce lien (merci a S!RI pour ce programme). http://siri.urz.free.fr/Fix/SmitfraudFix.php
et télécharge SmitfraudFix.exe.

Regarde le tuto
Exécute le en choisissant l’option 1, il va générer un rapport
Copie/colle le sur le poste stp.

=======================

Tu continues à surveiller les uploads et downloads ?
1
caroline2 Messages postés 41 Date d'inscription mardi 16 décembre 2008 Statut Membre Dernière intervention 22 décembre 2008
19 déc. 2008 à 16:52
salut Lyonnais,
merci je fais ça tout de suite et je surveille toujours mes uploads et doxnloads et le problème c'est le upload toujours entre 800 et 900 kbps et déjà hier j'ai eu 1.3 Go de upload !!! c'est beaucoup d'habitude je ne dépasse pas les 80 Mo par jour


@+
0
caroline2 Messages postés 41 Date d'inscription mardi 16 décembre 2008 Statut Membre Dernière intervention 22 décembre 2008 > caroline2 Messages postés 41 Date d'inscription mardi 16 décembre 2008 Statut Membre Dernière intervention 22 décembre 2008
19 déc. 2008 à 17:23
c'est vrai qu'en y pensant parfois quand je démarre mon laptop parfois j'ai l'assistant d'un ajout de nouveau matériel qui s'ouvre come si j'ai connecté un matériel à mon port Usb alors que ce n'est pas le cas. Voici les deux rapports :


-------------- UsbFix V2.413.5 ---------------

* User : TAHAR - ASMA
* Outils mis a jours le 17/12/2008 par Chiquitine29 et Chimay8
* Recherche effectuée à 11:01:06 le 19/12/2008
* Windows Xp - Internet Explorer 6.0.2900.5512


--------------- [ Processus actifs ] ----------------


C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\acs.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\WINDOWS\system32\DRIVERS\CDANTSRV.EXE
C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
C:\Program Files\Symantec AntiVirus\DefWatch.exe
C:\DOCUME~1\TAHAR\LOCALS~1\Temp\1.tmp\b2e.exe
C:\Program Files\DU Meter\DUMeterSvc.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Toshiba\Windows Utilities\Hotkey.exe
C:\Program Files\Microsoft LifeCam\MSCamS32.exe
C:\Program Files\Synaptics\SynTP\Toshiba.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\TPSMain.exe
C:\Program Files\TOSHIBA\ConfigFree\NDSTray.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\TOSHIBA\Utilitaire de zoom TOSHIBA\SmoothView.exe
C:\WINDOWS\System32\DLA\DLACTRLW.EXE
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Symantec AntiVirus\Rtvscan.exe

--------------- [ Informations lecteurs ] ----------------

C: - Lecteur fixe D: - Lecteur fixe E: - Lecteur de CD-ROM H: - Lecteur amovible
+- Contenu de l'autorun : E:\autorun.inf

[autorun]
open=setup.exe
icon=setup.exe,0
[Version]
CDGuid={D64BC2CF-0F12-47d7-B412-B4F3FD684253}
SoftwareGuid=
InfrastructureDatabaseList=hpomdl21.dat
LanguagesInthisCD=enu,ell,plk,rus,trk,chs,cht,csy,dan,deu,esn,fin,fra,hun,ita,jpn,kor,nld,nob,ptb,sve,heb,ara
DefaultLanguageInThisRelease=enu
DIVISION=hpo
ICE_REV=21
FIRST_IO_REVISION=09
LAST_IO_REVISION=09
VCD_FILEVER=0
Manufacturer=HP
RegistryManufacturer=Hewlett-Packard
ProductSeries=Photosmart All-In-One Series
Pre-Install=%ProgramFilesx86%%Manufacturer%
SilentInstall=No
InvalidPathCharacters=#$&,%
ConnectivityPlugin=%sourcepath%setup\hpzdui%ICE_SUFFIX%.exe
PreloadICEEngineToGUIDFolder=%sourcepath%hpzprl01.dat
PreloadRecoveryMechanism=%sourcepath%hpzprl02.dat
PreloadRestingPad=%sourcepath%hpzprl03.dat
UI_03=No
UI_20=Yes
UI_21=No
UI_25=No
UI_30=Yes
UI_50=No
UI_80=swreinstall&NoDeviceConnected&NoDeviceDiscovery
UI_250=Yes
UI_260=Yes
UI_40=Yes
UI_60=Yes
UI_70=Yes
UI_110=Yes
UI_100=Yes
RegistryRebootLocation=DigitalImaging\Install
autorunid=PS_AIO_02_Network_UOW_DVD
ConnectivityStopAndRestart=%InstallMainBin%hpqtra08.exe
driverver=09/06/2007, 090.000.261.000
first_ca_revision=0
CPENetworkSupport=Yes
IEFIX=NoFix
last_ca_revision=0
log=1
maxinstalldirlength=64
maxinstalltime=35
maxpathforcd=100
mininstalltime=15
networkinstall=%sourcepath%setup\hpznui%ICE_SUFFIX%.exe
preloadiceexes=hpoprl10.dat
preloadlpmsis=hpoprl08.dat
preloadproductcontext=hpoprl09.dat
preloadproductmsis=hpoprl07.dat
preloadreadme=hpoprl06.dat
productfinishevent=somestring
provider=HP
setupfinishevent=somestring
shortcut=Yes
shortcutcheckbox=Yes
startup=Yes
UI_261=TimeoutIfSWFirst
DirectConnectSuccessTimeout=5
usingdevicediscovery=Yes
DeviceDiscoveryBucket=DeviceManagement_AIO
%DeviceManagementGUID%={3D47716D-05A9-4538-982E-5D83873A16FD}
[Strings]
_TargetDatFile=autorun,scr
%Preload%=%InstallDirx86%Digital Imaging\%CDGuid%\
%ICETemp%=%ProgramFilesx86%%ICETempInPF%\
%ICETempInPF%=%Manufacturer%\Temp\%CDGuid%
%Recovery%=%ICETemp%
%RecoveryInPF%=%ICETempInPF%
%Preloadx86%=%InstallDirx86%Digital Imaging\%CDGuid%\
%InstallMain%=%InstallDirx86%Digital Imaging\
%ProductScrubberDatfile%=hposcr21.dat
%autorunlocation%=.
%setupName%=hpzsetup.exe
%setupStubName%=hpzstub.exe
%MSIRollbackDatFile%=hpzmsirb.dat
%DeviceInstanceRollbackFile%=hpzdirb.dat
%CUEVersion%=9.0
%CUEDivision%=hpq
%WebPrintVersion%=2.0
%DTSSVersion%=8.0
%SoftwareUpdateVersion%=8.0
%PhotosmartEssentialVersion%=2.01
%bounty_id%=D10
%DeviceManagementGUID%={5DD44B11-5236-4e00-BBCC-F30D94AA8741}
%DeviceManagement_ICE_REV%=01
%DeviceManagementDisplayName%=HP Imaging Device Functions
%DeviceManagementUninstallKey%=HP Imaging Device Functions
%eSupportGUID%={EFD54B7D-744F-4730-8F9C-AAF80E6028BA}
%eSupport_ICE_REV%=05
%eSupportDisplayName%=HP Solution Center
%eSupportUninstallKey%=HP Solution Center & Imaging Support Tools
%CustomerExperienceGUID%={BBE9EEF0-BBAC-4871-90DC-4CE0EC02D00B}
%CustomerExperience_ICE_REV%=06
%CustomerExperienceDisplayName%=HP Customer Participation Program
%CustomerExperienceUninstallKey%=HPExtendedCapabilities
%SoftwareUpdate_ICE_REV%=07
%SoftwareUpdateDisplayName%=HP Update
%SoftwareUpdateUninstallKey%={AB40272D-92AB-4F30-B36B-22EDE16F8FE5}
%OCRGUID%={E379D32C-7B7A-48ad-9166-732A48B5A435}
%OCR_ICE_REV%=11
%OCRDisplayName%=HP OCR Software
%OCRUninstallKey%=HPOCR
%WebPrintGUID%={2D1F2124-29E6-460A-B140-E9DF3BC594CE}
%WebPrint_ICE_REV%=15
%WebPrintDisplayName%=HP Smart Web Printing
%WebPrintUninstallKey%={820F9BE6-0998-4187-BE0C-8192BDDC2FEF}
%DTSSGUID%={3D74A00B-BBFC-4834-A728-0633F0D91840}
%DTSS_ICE_REV%=16
%DTSSDisplayName%=Shop for HP Supplies
%DTSSUninstallKey%={7902E313-FF0F-4493-ACB1-A8147B78DCD0}
%DTSSUpgradeCode%={FE9B929E-3BAF-40B1-BFFC-3A078ABAA0C8}
%PhotosmartEssentialGUID%={7FB920E4-5D4E-4e0f-BB7D-C178E5A11A51}
%PhotosmartEssential_ICE_REV%=13
%PhotosmartEssentialDisplayName%=HP Photosmart Essential %PhotosmartEssentialVersion%
%PhotosmartEssentialUninstallKey%=HP Photosmart Essential
%PhotosmartEssentialBASEGUID%={E4E30953-546D-477b-9C50-5B3E07A0A58E}
%PhotosmartEssentialTATTOOGUID%={EAF69D39-7A09-434e-B743-C2CDA5800D75}
%PhotosmartEssentialNOPODGUID%={3C2E7DE1-4FE5-475e-89D7-BA64C1C7B059}
%pcihelp%=%sourcepath%Setup\ps_aio_02_help\
%pcipath%=%InstallDirx86%Digital Imaging\%CDGuid%\Product\
%pcitour%=%sourcepath%Setup\Tour\
%prlhelp%=%InstallDirx86%Digital Imaging\%CDGuid%\Setup\ps_aio_02_help\
%prltour%=%InstallDirx86%Digital Imaging\%CDGuid%\Setup\Tour\
%InstallMainBin%=%InstallDirx86%Digital Imaging\bin\
[MSI]
InstallDir=%ProgramFilesx86%%Manufacturer%\
_TargetDatFile=autorun,scr
Launchbase=msiexec.exe
commandline=ICE_SUFFIX=%ICE_SUFFIX%
[SUI.OPTIN]
Qualifier=%LangQualifier%
LaunchBase=%sourcepath%setup\
1=hpzgat01.exe -on -gate MARS -f %datfile%
[SUI.OPTOUT]
Qualifier=%LangQualifier%
LaunchBase=%sourcepath%setup\
1=hpzgat01.exe -off -gate MARS -f %datfile%
[SUI]
Opt-In_Default=ON
[LanguageMap]
_TargetDatFile=autorun,scr
0x0409=enu
0x0404=cht
0x0804=chs
0x0405=csy
0x0406=dan
0x0407=deu
0x0408=ell
0x040a=esn
0x040b=fin
0x040c=fra
0x040e=hun
0x0410=ita
0x0411=jpn
0x0412=kor
0x0413=nld
0x0414=nob
0x0415=plk
0x0416=ptb
0x0419=rus
0x041d=sve
0x041f=trk
0x0c04=cht
0x1004=chs
0x1404=cht
0x0813=nld
0x0809=enu
0x0c09=enu
0x1009=enu
0x1409=enu
0x1809=enu
0x1c09=enu
0x2009=enu
0x2409=enu
0x2809=enu
0x2c09=enu
0x080c=fra
0x0c0c=fra
0x100c=fra
0x140c=fra
0x180c=fra
0x0456=esn
0x0807=deu
0x0c07=deu
0x1007=deu
0x1407=deu
0x0810=ita
0x0812=kor
0x0c0a=esn
0x080a=esn
0x100a=esn
0x140a=esn
0x180a=esn
0x1c0a=esn
0x200a=esn
0x240a=esn
0x280a=esn
0x2c0a=esn
0x300a=esn
0x340a=esn
0x380a=esn
0x3c0a=esn
0x400a=esn
0x440a=esn
0x480a=esn
0x4c0a=esn
0x500a=esn
0x042d=esn
0x0403=esn
0x081d=sve
0x0422=rus
0x0816=ptb
0x040d=heb
0x041e=xxx
0x0401=ara
0x0801=ara
0x0c01=ara
0x1001=ara
0x1401=ara
0x1801=ara
0x1c01=ara
0x2001=ara
0x2401=ara
0x2801=ara
0x2c01=ara
0x3001=ara
0x3401=ara
0x3801=ara
0x3c01=ara
0x4001=ara
[TwoLetterLanguageMap]
_TargetDatFile=autorun,scr
ara=ar
cht=zh
chs=zh
csy=cs
dan=da
deu=de
ell=el
enu=en
esn=es
fin=fi
fra=fr
heb=he
hun=hu
ita=it
jpn=ja
kor=ko
nld=nl
nob=no
plk=pl
ptb=pt
rus=ru
sve=sv
trk=tr
[PreInstalls]
1=Kahuna1
2=Kahuna2
3=Kahuna3
4=Kahuna4
5=Kahuna5
6=Kahuna6
7=Kahuna7
[PreInstalls.Kahuna1]
CDGUID={5D22B85D-6503-4c4d-8BE1-D5CD9E0F5181}
1={7AB63E68-A8E2-49EF-A575-CCEC39F66312}
2={45B6180B-DCAB-4093-8EE8-6164457517F0}
[PreInstalls.Kahuna2]
CDGUID={5D32B85D-6503-4c4d-8BE1-D5CD9E0F5181}
1={45B6180B-DCAB-4093-8EE8-6164457517F0}
2={19E1E220-E757-43bd-AC1A-EC095CB8A667}
3={F38FA38A-7E5A-4209-88ED-4DE21CD20EEF}
[PreInstalls.Kahuna3]
CDGUID={C6C44651-7C66-4b11-92E8-17565D3D22DD}
1={45B6180B-DCAB-4093-8EE8-6164457517F0}
2={15B9DC72-73F9-4d99-9E28-848D66DA8D99}
3={F38FA38A-7E5A-4209-88ED-4DE21CD20EEF}
4={0FABD3D7-3036-4e78-B29D-58957ADB0A12}
[PreInstalls.Kahuna4]
CDGUID={5E1494D4-3562-4FFB-B35C-600F80F6934C}
1={45B6180B-DCAB-4093-8EE8-6164457517F0}
2={15B9DC72-73F9-4d99-9E28-848D66DA8D99}
3={A1062847-0846-427A-92A1-BB8251A91E91}
[PreInstalls.Kahuna5]
CDGUID={0D182A5E-AEE0-42ca-BD1D-4EEB2FFA256D}
1={A1062847-0846-427A-92A1-BB8251A91E91}
2={4C04DF1B-6A39-4299-9DD1-1FA60000266E}
3={AAC4FC36-8F89-4587-8DD3-EBC57C83374D}
[PreInstalls.Kahuna6]
CDGUID={D0420D64-8D33-4374-A2B2-9225C7925CA6}
1={A1062847-0846-427A-92A1-BB8251A91E91}
2={4C04DF1B-6A39-4299-9DD1-1FA60000266E}
3={AAC4FC36-8F89-4587-8DD3-EBC57C83374D}
[PreInstalls.Kahuna7]
CDGUID={32498B7B-E1F3-4ad5-A23B-F26414E94BE0}
1={342C7C88-D335-4bc2-8CF1-281857629CE2}
2={ABA2B37F-AB88-486e-870A-52454A23FEE0}
3={BA2D9411-DBB4-43e4-9421-780413650A67}
[SystemRequirements]
AdminRightRequired=1
RunIfFailureAsynch=
RunIfFailureSynch=
RunIfFailureSynchTimeout=
RunIfWarningAsynch=
RunIfWarningSynch=
RunIfWarningSynchTimeout=
checkspooler=No
installspace=916
maxos=
mincolors=16
mincputext=Pentium II, K6, Transmeta 5400
mindisk=372
mindisplay=800x600
minie=6.00.2600.0000
minmhz=233
minram=56
minsysdisk=250
oslist=500,501,501_64,600,600_64
reccolors=16
reccputext=Pentium II, K6, Transmeta 5400
recdisk=372
recdisplay=800x600
recie=6.00.2600.0000
recmhz=233
recram=56
recsysdisk=250
sectionlist=Buckets
warnproducttypelist=3
blockproducttypelist=3
[SystemRequirements.600]
MinBuildNumber=6000
RecBuildNumber=6000
checkspooler=No
installspace=916
maxos=
mincolors=16
mincputext=Pentium II, K6, Transmeta 5400
mindisk=930
mindisplay=800x600
minie=6.00.2600.0000
minmhz=233
minram=56
minsysdisk=160
oslist=500,501,501_64,600,600_64
reccolors=16
reccputext=Pentium II, K6, Transmeta 5400
recdisk=930
recdisplay=800x600
recie=6.00.2600.0000
recmhz=233
recram=56
recsysdisk=160
sectionlist=Buckets
warnproducttypelist=3
blockproducttypelist=3
[SystemRequirements.Min]
SysReqPlugIn=%sourcepath%setup\hpzchk01.exe
[OSBlock.400]
launchbase=Setup\
1=hpzchk01.exe
[OSBlock.410]
launchbase=Setup\
1=hpzchk01.exe
[OSBlock.490]
launchbase=Setup\
1=hpzchk01.exe
[RunAs]
launchbase=Setup\
Qualifier=%OS%
[RunAs.500]
launchbase=Setup\
1=hpzchk01.exe
[RunAs.501]
launchbase=Setup\
1=hpzchk01.exe
[RunAs.501_64]
launchbase=Setup\
1=hpzchk01.exe
[Run1]
launchbase=%sourcepath%setup\
1=hpzpnp%ICE_SUFFIX%.exe
2=hpzpsc01.exe -OSUP
3=hpzrein01.exe
4=hpzwup01.exe
5=hpzshl%ICE_SUFFIX%.exe -m WebPrintShield
6=hpzshl%ICE_SUFFIX%.exe -m DelayedReboot
qualifier=%os%
[Run2]
launchbase=%sourcepath%setup\
1=hpzopt01.exe
2=hpqbhp01.exe
3=hpzpsc01.exe -list ProductReleases -CPE
4=hpzsui01.exe
5=hpzshl%ICE_SUFFIX%.exe -m Printer,ICEPreShield,HPSecurity,CompositeDev,MassStorage,CloseManagerofTrayApp
6=[Run.SetRecovery]
qualifier=%os%
[Run3]
launchbase=%sourcepath%Setup\
1=[PatchesAvailable]
2=hpzprl%ICE_SUFFIX%.exe -m PreloadICEEngineToGUIDFolder
3=hpzprl%ICE_SUFFIX%.exe -m PreloadICEExes
4=[DPInstRunXML]
5=[dot4wrp]
6=[Run.stepbystep]
7=hpznop01.exe -PostRegisteredMessage WM_START_BITMAP_TIMER
8=hpzcdl01.exe -storesourcepath
9=[BucketsAvailable]
10=[Run.easyinstall]
11=hpzfwx01.exe -m postinstallfirewallexceptionlist
12=[Run.CommitFull]
qualifier=%os%
[Run.StepByStep]
1=hpzpnp%ICE_SUFFIX%.exe -clean -gateoncmdline easyinstall -runifoff
2=hpzdui%ICE_SUFFIX%.exe -gateoncmdline easyinstall -runifoff
3=hpzpnp%ICE_SUFFIX%.exe -clean -gateoncmdline easyinstall –runifoff
[Run.EasyInstall]
1=hpzpnp%ICE_SUFFIX%.exe -clean -gateoncmdline easyinstall
2=hpzdui%ICE_SUFFIX%.exe -gateoncmdline easyinstall
3=hpzpnp%ICE_SUFFIX%.exe -clean -gateoncmdline easyinstall
[Uninstall]
launchbase=%sourcepath%setup\
1=hpzscr%ICE_SUFFIX%.exe -datfile %ProductScrubberDatfile% -onestop
[ARP.SuppressRebootList]
hpzscr%ICE_SUFFIX%.exe=-r0
msiexec.exe=Reboot="ReallySuppress"
[Prescrub.CPE]
launchbase=%sourcepath%Setup\
SkipOnReinstall=SW
[MSI.FX]
Filename=netfx.msi
RefCount=No
Logfilename=%Temp%hpzFx_Log.txt
CopyToTemp=netfx.msi,netfx1.cab
[MSI.FXLangPack]
Filename=Langpacks\%lang%\langpack.msi
RefCount=No
Logfilename=%Temp%hpzFx%lang%_Log.txt
CopyToTemp=Langpacks\%lang%\langpack.msi,Langpacks\%lang%\langpac1.cab
[MSI.FXLangPack.0x9]
Filename=None.msi
RefCount=No
UI=No
CopyToTemp=hpzmsi01.exe
IgnoreReturnCode=Yes
[MSI.FXLangPack.0x1]
Filename=None.msi
RefCount=No
UI=No
CopyToTemp=hpzmsi01.exe
IgnoreReturnCode=Yes
[MSI.FXLangPack.0xd]
Filename=None.msi
RefCount=No
UI=Yes
CopyToTemp=hpzmsi01.exe
IgnoreReturnCode=Yes
[NetFx]
SkipIfOS=600,600_64
1=StopMSIService
2=Core
3=LangPack
[NetFx.StopMSIService]
1=%sourcepath%setup\hpzwis01.exe -stop
[NetFx.Core]
RegValueToLookFor=OCM
RegKeyToLookFor=SOFTWARE\Microsoft\NET Framework Setup\NDP\v1.1.4322
RegValueShouldBeEqualTo=1
1=%sourcepath%setup\hpzmsi01.exe -m FX
[NetFx.LangPack]
Qualifier=%PrimaryLangQualifier%
RegValueToLookFor=OCM
RegKeyToLookFor=SOFTWARE\Microsoft\NET Framework Setup\NDP\v1.1.4322\%langid%
RegValueShouldBeEqualTo=1
1=%sourcepath%setup\hpzmsi01.exe -m FXLangPack
[NetFx.LangPack.0x9]
1=%sourcepath%setup\hpznop01.exe
[NetFx.LangPack.0x1]
1=%sourcepath%setup\hpznop01.exe
[NetFx.LangPack.0xd]
1=%sourcepath%setup\hpznop01.exe
[NetFx.LangPack.0xa]
RegKeyToLookFor=SOFTWARE\Microsoft\NET Framework Setup\NDP\v1.1.4322\3082
[Setup.Text]
hpznfx01.exe=Installing Microsoft .NET Framework
hpzdxs01.exe=Installing Microsoft DirectX 9.0
HPZpsc01.exe=Searching for installed applications
HPZchk01.exe=Checking System Requirements
HPZwis01.exe=Updating Windows Installer Service
HPZpnp01.exe=Checking hardware
HPZscr01.exe=Uninstalling
HPZwrp01.exe=Installing Additional Software
HPZarp01.exe=Creating Add/Remove Programs entries
HPZrcv01.exe=Setting Recovery Point
HPZdui01.exe=Connecting device
HPZshl01.exe=Inspecting system
HPZopt01.exe=Waiting for user input
HPZsui01.exe=Waiting for user input
HPZrein01.exe=Waiting for user input
HPZtim01.exe=Waiting for user input
HPZdui40.exe=Connecting device
HPZpnp40.exe=Checking hardware
HPZscr40.exe=Uninstalling
HPZshl40.exe=Inspecting system
HPZnui01.exe=Installing Network Device
[Setup.Text.0x804]
hpznfx01.exe=ÕýÔÚ°²×° Microsoft .NET Framework
hpzdxs01.exe=ÕýÔÚ°²×° Microsoft DirectX 9.0
HPZpsc01.exe=²éÕÒÒÑ°²×°µÄÓ¦ÓóÌÐò
HPZchk01.exe=¼ì²éϵͳÐèÇó
HPZwis01.exe=¸üРWindows Installer ·þÎñ
HPZpnp01.exe=¼ì²éÓ²¼þ
HPZscr01.exe=жÔØ
HPZwrp01.exe=°²×°ÆäËûÈí¼þ
HPZarp01.exe=´´½¨¡°Ìí¼Ó/ɾ³ý³ÌÐò¡±ÏîÄ¿
HPZrcv01.exe=ÉèÖû¹Ô­µã
HPZdui01.exe=Á¬½ÓÉ豸
HPZshl01.exe=¼ì²éϵͳ
HPZopt01.exe=µÈ´ýÓû§ÊäÈë
HPZsui01.exe=µÈ´ýÓû§ÊäÈë
HPZrein01.exe=µÈ´ýÓû§ÊäÈë
HPZtim01.exe=µÈ´ýÓû§ÊäÈë
HPZdui40.exe=Á¬½ÓÉ豸
HPZpnp40.exe=¼ì²éÓ²¼þ
HPZscr40.exe=жÔØ
HPZshl40.exe=¼ì²éϵͳ
HPZnui01.exe=°²×°ÍøÂçÉ豸
[Setup.Text.0x404]
hpznfx01.exe=¦w¸Ë Microsoft .NET Framework
hpzdxs01.exe=¦w¸Ë Microsoft DirectX 9.0
HPZpsc01.exe=·j´M¤w¦w¸ËªºÀ³¥Îµ{¦¡
HPZchk01.exe=Àˬd¨t²Î»Ý¨D
HPZwis01.exe=¤É¯Å Windows Installer ªA°È
HPZpnp01.exe=ÀˬdµwÅé
HPZscr01.exe=¸Ñ°£¦w¸Ë¤¤
HPZwrp01.exe=¦w¸Ë¨ä¥L³nÅé
HPZarp01.exe=«Ø¥ß·s¼W/²¾°£µ{¦¡¶µ¥Ø
HPZrcv01.exe=³]©w­×´_ÂI
HPZdui01.exe=³s±µ¸Ë¸m
HPZshl01.exe=°»´ú¨t²Î
HPZopt01.exe=µ¥«Ý¨Ï¥ÎªÌ¿é¤J
HPZsui01.exe=µ¥«Ý¨Ï¥ÎªÌ¿é¤J
HPZrein01.exe=µ¥«Ý¨Ï¥ÎªÌ¿é¤J
HPZtim01.exe=µ¥«Ý¨Ï¥ÎªÌ¿é¤J
HPZdui40.exe=³s±µ¸Ë¸m
HPZpnp40.exe=ÀˬdµwÅé
HPZscr40.exe=¸Ñ°£¦w¸Ë¤¤
HPZshl40.exe=°»´ú¨t²Î
HPZnui01.exe=¦w¸Ëºô¸ô¸Ë¸m
[Setup.Text.0x5]
hpznfx01.exe=Instaluje se Microsoft .NET Framework
hpzdxs01.exe=Instaluje se Microsoft DirectX 9.0
HPZpsc01.exe=Vyhledávání nainstalovaných aplikací
HPZchk01.exe=Kontrola požadavkù na systém
HPZwis01.exe=Aktualizace služby Windows Installer
HPZpnp01.exe=Kontrola hardwaru
HPZscr01.exe=Odinstalace
HPZwrp01.exe=Instalace dalšího softwaru
HPZarp01.exe=Vytváøení položek v panelu Pøidat nebo odebrat programy
HPZrcv01.exe=Nastavení bodu obnovení
HPZdui01.exe=Pøipojení zaøízení
HPZshl01.exe=Kontrola systému
HPZopt01.exe=Èekání na vstup od uživatele
HPZsui01.exe=Èekání na vstup od uživatele
HPZrein01.exe=Èekání na vstup od uživatele
HPZtim01.exe=Èekání na vstup od uživatele
HPZdui40.exe=Pøipojení zaøízení
HPZpnp40.exe=Kontrola hardwaru
HPZscr40.exe=Odinstalace
HPZshl40.exe=Kontrola systému
HPZnui01.exe=Instalace síového zaøízení
[Setup.Text.0x6]
hpznfx01.exe=Installerer Microsoft .NET Framework
hpzdxs01.exe=Installerer Microsoft DirectX 9.0
HPZpsc01.exe=Søger efter allerede installerede programmer
HPZchk01.exe=Undersøger systemkrav
HPZwis01.exe=Opdaterer tjenesten Windows Installer
HPZpnp01.exe=Undersøger hardware
HPZscr01.exe=Fjerner
HPZwrp01.exe=Installerer yderligere software
HPZarp01.exe=Opretter poster i Tilføj/fjern programmer
HPZrcv01.exe=Indstiller gendannelsespunkt
HPZdui01.exe=Tilslutter enhed
HPZshl01.exe=Undersøger system
HPZopt01.exe=Venter på brugerinput
HPZsui01.exe=Venter på brugerinput
HPZrein01.exe=Venter på brugerinput
HPZtim01.exe=Venter på brugerinput
HPZdui40.exe=Tilslutter enhed
HPZpnp40.exe=Undersøger hardware
HPZscr40.exe=Fjerner
HPZshl40.exe=Undersøger system
HPZnui01.exe=Installerer netværksenhed
[Setup.Text.0x7]
hpznfx01.exe=Microsoft .NET Framework wird installiert
hpzdxs01.exe=Microsoft DirectX 9.0 wird installiert
HPZpsc01.exe=Installierte Anwendungen werden gesucht
HPZchk01.exe=Systemanforderungen werden geprüft
HPZwis01.exe=Windows-Installationsdienst wird aktualisiert
HPZpnp01.exe=Hardware wird geprüft
HPZscr01.exe=Deinstallieren
HPZwrp01.exe=Weitere Software wird installiert
HPZarp01.exe=Einträge zum Hinzufügen/Entfernen von Programmen werden erstellt
HPZrcv01.exe=Wiederherstellungsdaten werden gespeichert
HPZdui01.exe=Gerät wird verbunden
HPZshl01.exe=System wird untersucht
HPZopt01.exe=Warten auf Benutzereingabe
HPZsui01.exe=Warten auf Benutzereingabe
HPZrein01.exe=Warten auf Benutzereingabe
HPZtim01.exe=Warten auf Benutzereingabe
HPZdui40.exe=Gerät wird verbunden
HPZpnp40.exe=Hardware wird geprüft
HPZscr40.exe=Deinstallieren
HPZshl40.exe=System wird untersucht
HPZnui01.exe=Netzwerkgerät wird installiert
[Setup.Text.0x8]
hpznfx01.exe=ÅãêáôÜóôáóç Microsoft .NET Framework
hpzdxs01.exe=ÅãêáôÜóôáóç Microsoft DirectX 9.0
HPZpsc01.exe=ÁíáæÞôçóç åãêáôåóôçìÝíùí åöáñìïãþí
HPZchk01.exe=¸ëåã÷ïò ôùí áðáéôÞóåùí ôïõ óõóôÞìáôïò
HPZwis01.exe=ÁíáâÜèìéóç ôçò õðçñåóßáò Windows Installer
HPZpnp01.exe=¸ëåã÷ïò õëéêïý
HPZscr01.exe=ÊáôÜñãçóç åãêáôÜóôáóçò
HPZwrp01.exe=ÅãêáôÜóôáóç ðñüóèåôïõ ëïãéóìéêïý
HPZarp01.exe=Äçìéïõñãßá êáôá÷ùñÞóåùí ãéá ôçí åöáñìïãÞ "Ðñïóèáöáßñåóç ÐñïãñáììÜôùí"
HPZrcv01.exe=Ïñéóìüò óçìåßïõ áíÜêôçóçò
HPZdui01.exe=Óýíäåóç óõóêåõÞò
HPZshl01.exe=ÅîÝôáóç óõóôÞìáôïò
HPZopt01.exe=ÁíáìïíÞ åéóáãùãÞò áðü ôï ÷ñÞóôç
HPZsui01.exe=ÁíáìïíÞ åéóáãùãÞò áðü ôï ÷ñÞóôç
HPZrein01.exe=ÁíáìïíÞ åéóáãùãÞò áðü ôï ÷ñÞóôç
HPZtim01.exe=ÁíáìïíÞ åéóáãùãÞò áðü ôï ÷ñÞóôç
HPZdui40.exe=Óýíäåóç óõóêåõÞò
HPZpnp40.exe=¸ëåã÷ïò õëéêïý
HPZscr40.exe=ÊáôÜñãçóç åãêáôÜóôáóçò
HPZshl40.exe=ÅîÝôáóç óõóôÞìáôïò
HPZnui01.exe=ÅãêáôÜóôáóç óõóêåõÞò äéêôýïõ
[Setup.Text.0x9]
hpznfx01.exe=Installing Microsoft .NET Framework
hpzdxs01.exe=Installing Microsoft DirectX 9.0
HPZpsc01.exe=Searching for installed applications
HPZchk01.exe=Checking System Requirements
HPZwis01.exe=Updating Windows Installer Service
HPZpnp01.exe=Checking hardware
HPZscr01.exe=Uninstalling
HPZwrp01.exe=Installing Additional Software
HPZarp01.exe=Creating Add/Remove Programs entries
HPZrcv01.exe=Setting Recovery Point
HPZdui01.exe=Connecting device
HPZshl01.exe=Inspecting system
HPZopt01.exe=Waiting for user input
HPZsui01.exe=Waiting for user input
HPZrein01.exe=Waiting for user input
HPZtim01.exe=Waiting for user input
HPZdui40.exe=Connecting device
HPZpnp40.exe=Checking hardware
HPZscr40.exe=Uninstalling
HPZshl40.exe=Inspecting system
HPZnui01.exe=Installing Network Device
[Setup.Text.0xa]
hpznfx01.exe=Instalando Microsoft .NET Framework
hpzdxs01.exe=Instalando Microsoft DirectX 9.0
HPZpsc01.exe=Buscando aplicaciones instaladas
HPZchk01.exe=Comprobando los requisitos del sistema
HPZwis01.exe=Actualizando el servicio Windows Installer
HPZpnp01.exe=Comprobando el hardware
HPZscr01.exe=Desinstalando
HPZwrp01.exe=Instalando software adicional
HPZarp01.exe=Creando entradas para Agregar o quitar programas
HPZrcv01.exe=Estableciendo punto de recuperación
HPZdui01.exe=Conectando dispositivo
HPZshl01.exe=Inspeccionando el sistema
HPZopt01.exe=Esperando datos del usuario
HPZsui01.exe=Esperando datos del usuario
HPZrein01.exe=Esperando datos del usuario
HPZtim01.exe=Esperando datos del usuario
HPZdui40.exe=Conectando dispositivo
HPZpnp40.exe=Comprobando el hardware
HPZscr40.exe=Desinstalando
HPZshl40.exe=Inspeccionando el sistema
HPZnui01.exe=Instalando el dispositivo de red
[Setup.Text.0xb]
hpznfx01.exe=Ohjelma asentaa Microsoft .NET Framework -ohjelmaa
hpzdxs01.exe=Ohjelma asentaa Microsoft DirectX 9.0 -ohjelmaa
HPZpsc01.exe=Etsitään asennettuja sovelluksia
HPZchk01.exe=Tarkastetaan järjestelmävaatimuksia
HPZwis01.exe=Päivitetään Windows Installer -palvelua
HPZpnp01.exe=Tarkastetaan laitteistoa
HPZscr01.exe=Asennusta poistetaan
HPZwrp01.exe=Asennetaan muita ohjelmia
HPZarp01.exe=Luodaan Lisää tai poista sovellus -ikkunan tietoja
HPZrcv01.exe=Määritetään palautuspistettä
HPZdui01.exe=Kytketään laitetta
HPZshl01.exe=Tarkastetaan järjestelmää
HPZopt01.exe=Odotetaan käyttäjän syötettä
HPZsui01.exe=Odotetaan käyttäjän syötettä
HPZrein01.exe=Odotetaan käyttäjän syötettä
HPZtim01.exe=Odotetaan käyttäjän syötettä
HPZdui40.exe=Kytketään laitetta
HPZpnp40.exe=Tarkastetaan laitteistoa
HPZscr40.exe=Asennusta poistetaan
HPZshl40.exe=Tarkastetaan järjestelmää
HPZnui01.exe=Asennetaan verkkolaitetta
[Setup.Text.0xc]
hpznfx01.exe=Installation de Microsoft .NET Framework
hpzdxs01.exe=Installation de Microsoft DirectX 9.0
HPZpsc01.exe=Recherche des applications installées
HPZchk01.exe=Vérification de la configuration système requise
HPZwis01.exe=Mise à jour du service Windows Installer
HPZpnp01.exe=Vérification du matériel
HPZscr01.exe=Désinstallation
HPZwrp01.exe=Installation de logiciel supplémentaire
HPZarp01.exe=Création d'entrées dans la boîte de dialogue Ajout/Suppression de programmes
HPZrcv01.exe=Définition du point de récupération
HPZdui01.exe=Connexion du périphérique
HPZshl01.exe=Inspection du système
HPZopt01.exe=Attente d'une intervention de l'utilisateur
HPZsui01.exe=Attente d'une intervention de l'utilisateur
HPZrein01.exe=Attente d'une intervention de l'utilisateur
HPZtim01.exe=Attente d'une intervention de l'utilisateur
HPZdui40.exe=Connexion du périphérique
HPZpnp40.exe=Vérification du matériel
HPZscr40.exe=Désinstallation
HPZshl40.exe=Inspection du système
HPZnui01.exe=Installation du périphérique réseau
[Setup.Text.0xe]
hpznfx01.exe=Microsoft .NET Framework telepítése
hpzdxs01.exe=Microsoft DirectX 9.0 telepítése
HPZpsc01.exe=Telepített alkalmazások keresése
HPZchk01.exe=Rendszerkövetelmények ellenõrzése
HPZwis01.exe=Windows telepítõszolgáltatás frissítése
HPZpnp01.exe=Hardver ellenõrzése
HPZscr01.exe=Eltávolítás
HPZwrp01.exe=További programok telepítése
HPZarp01.exe=Elem létrehozása a Programok telepítése/törlése részben
HPZrcv01.exe=Helyreállítási pont beállítása
HPZdui01.exe=Kapcsolódás az eszközhöz
HPZshl01.exe=Rendszer elemzése
HPZopt01.exe=Várakozás felhasználói adatbevitelre
HPZsui01.exe=Várakozás felhasználói adatbevitelre
HPZrein01.exe=Várakozás felhasználói adatbevitelre
HPZtim01.exe=Várakozás felhasználói adatbevitelre
HPZdui40.exe=Kapcsolódás az eszközhöz
HPZpnp40.exe=Hardver ellenõrzése
HPZscr40.exe=Eltávolítás
HPZshl40.exe=Rendszer elemzése
HPZnui01.exe=Hálózati eszköz telepítése
[Setup.Text.0x10]
hpznfx01.exe=Installazione di Microsoft .NET Framework
hpzdxs01.exe=Installazione di Microsoft DirectX 9.0
HPZpsc01.exe=Ricerca delle applicazioni installate
HPZchk01.exe=Verifica dei requisiti di sistema
HPZwis01.exe=Aggiornamento del servizio Windows Installer
HPZpnp01.exe=Verifica dell'hardware
HPZscr01.exe=Disinstallazione
HPZwrp01.exe=Installazione del software supplementare
HPZarp01.exe=Creazione delle voci di Installazione applicazioni
HPZrcv01.exe=Impostazione del punto di ripristino
HPZdui01.exe=Collegamento della periferica
HPZshl01.exe=Analisi del sistema
HPZopt01.exe=Attesa input utente
HPZsui01.exe=Attesa input utente
HPZrein01.exe=Attesa input utente
HPZtim01.exe=Attesa input utente
HPZdui40.exe=Collegamento della periferica
HPZpnp40.exe=Verifica dell'hardware
HPZscr40.exe=Disinstallazione
HPZshl40.exe=Analisi del sistema
HPZnui01.exe=Installazione della periferica di rete
[Setup.Text.0x11]
hpznfx01.exe=Microsoft .NET Framework ‚ðƒCƒ“ƒXƒg[ƒ‹‚µ‚Ä‚¢‚Ü‚·
hpzdxs01.exe=Microsoft DirectX 9.0 ‚ðƒCƒ“ƒXƒg[ƒ‹‚µ‚Ä‚¢‚Ü‚·
HPZpsc01.exe=ƒCƒ“ƒXƒg[ƒ‹‚³‚ê‚Ä‚¢‚éƒAƒvƒŠƒP[ƒVƒ‡ƒ“‚ðŒŸõ‚µ‚Ä‚¢‚Ü‚·
HPZchk01.exe=ƒVƒXƒeƒ€•K—vðŒ‚̃`ƒFƒbƒN’†
HPZwis01.exe=Windows ƒCƒ“ƒXƒg[ƒ‰ ƒT[ƒrƒX‚̍XV’†
HPZpnp01.exe=ƒn[ƒhƒEƒFƒA‚̃`ƒFƒbƒN’†
HPZscr01.exe=ƒAƒ“ƒCƒ“ƒXƒg[ƒ‹’†
HPZwrp01.exe=‚»‚Ì‘¼‚̃\ƒtƒgƒEƒFƒA‚ðƒCƒ“ƒXƒg[ƒ‹‚µ‚Ä‚¢‚Ü‚·
HPZarp01.exe=’ljÁ^íœƒvƒƒOƒ‰ƒ€ ƒGƒ“ƒgƒŠ‚ðì¬‚µ‚Ä‚¢‚Ü‚·
HPZrcv01.exe=‰ñ•œƒ|ƒCƒ“ƒg‚̐ݒ蒆
HPZdui01.exe=ƒfƒoƒCƒX‚̐ڑ±’†
HPZshl01.exe=ƒVƒXƒeƒ€ŒŸ¸’†
HPZopt01.exe=ƒ†[ƒU[‚©‚ç‚Ì“ü—Í‚ð‘Ò‚Á‚Ä‚¢‚Ü‚·
HPZsui01.exe=ƒ†[ƒU[‚©‚ç‚Ì“ü—Í‚ð‘Ò‚Á‚Ä‚¢‚Ü‚·
HPZrein01.exe=ƒ†[ƒU[‚©‚ç‚Ì“ü—Í‚ð‘Ò‚Á‚Ä‚¢‚Ü‚·
HPZtim01.exe=ƒ†[ƒU[‚©‚ç‚Ì“ü—Í‚ð‘Ò‚Á‚Ä‚¢‚Ü‚·
HPZdui40.exe=ƒfƒoƒCƒX‚̐ڑ±’†
HPZpnp40.exe=ƒn[ƒhƒEƒFƒA‚̃`ƒFƒbƒN’†
HPZscr40.exe=ƒAƒ“ƒCƒ“ƒXƒg[ƒ‹’†
HPZshl40.exe=ƒVƒXƒeƒ€ŒŸ¸’†
HPZnui01.exe=ƒlƒbƒgƒ[ƒN ƒfƒoƒCƒX‚̃Cƒ“ƒXƒg[ƒ‹
[Setup.Text.0x12]
hpznfx01.exe=Microsoft .NET Framework ¼³Ä¡
hpzdxs01.exe=Microsoft DirectX 9.0 ¼³Ä¡
HPZpsc01.exe=¼³Ä¡ÇÑ ÀÀ¿ë ÇÁ·Î±×·¥À» ã´Â Áß
HPZchk01.exe=½Ã½ºÅÛ ¿ä±¸ »çÇ× È®ÀÎ Áß
HPZwis01.exe=Windows ¼³Ä¡ ¼­ºñ½º ¾÷µ¥ÀÌÆ®ÇÏ´Â Áß
HPZpnp01.exe=Çϵå¿þ¾î¸¦ °Ë»çÇÏ´Â Áß
HPZscr01.exe=Á¦°Å Áß
HPZwrp01.exe=Ãß°¡ ¼ÒÇÁÆ®¿þ¾î ¼³Ä¡ Áß
HPZarp01.exe=ÇÁ·Î±×·¥ Ç׸ñ Ãß°¡/Á¦°Å ¸¸µå´Â Áß
HPZrcv01.exe=º¹±¸ Æ÷ÀÎÆ® ¼³Á¤ Áß
HPZdui01.exe=ÀåÄ¡ ¿¬°á Áß
HPZshl01.exe=½Ã½ºÅÛ °Ë»ç Áß
HPZopt01.exe=»ç¿ëÀÚ ÀÔ·Â ´ë±â Áß
HPZsui01.exe=»ç¿ëÀÚ ÀÔ·Â ´ë±â Áß
HPZrein01.exe=»ç¿ëÀÚ ÀÔ·Â ´ë±â Áß
HPZtim01.exe=»ç¿ëÀÚ ÀÔ·Â ´ë±â Áß
HPZdui40.exe=ÀåÄ¡ ¿¬°á Áß
HPZpnp40.exe=Çϵå¿þ¾î¸¦ °Ë»çÇÏ´Â Áß
HPZscr40.exe=Á¦°Å Áß
HPZshl40.exe=½Ã½ºÅÛ °Ë»ç Áß
HPZnui01.exe=³×Æ®¿öÅ© ÀåÄ¡ ¼³Ä¡ Áß
[Setup.Text.0x13]
hpznfx01.exe='Microsoft .NET Framework' installeren
hpzdxs01.exe='Microsoft DirectX 9.0' installeren
HPZpsc01.exe=Bezig met zoeken naar geïnstalleerde toepassingen
HPZchk01.exe=Bezig met controleren van systeemvereisten
HPZwis01.exe=Bezig met bijwerken van Windows Installer-service
HPZpnp01.exe=Bezig met controleren van hardware
HPZscr01.exe=Bezig met ongedaan maken van installatie
HPZwrp01.exe=Bezig met installeren van aanvullende software
HPZarp01.exe=Bezig met aanmaken van items voor Software
HPZrcv01.exe=Bezig met maken van herstelpunt
HPZdui01.exe=Bezig met aansluiten van apparaat
HPZshl01.exe=Bezig met systeemcontrole
HPZopt01.exe=Wachten op invoer van gebruiker
HPZsui01.exe=Wachten op invoer van gebruiker
HPZrein01.exe=Wachten op invoer van gebruiker
HPZtim01.exe=Wachten op invoer van gebruiker
HPZdui40.exe=Bezig met aansluiten van apparaat
HPZpnp40.exe=Bezig met controleren van hardware
HPZscr40.exe=Bezig met ongedaan maken van installatie
HPZshl40.exe=Bezig met systeemcontrole
HPZnui01.exe=Bezig met installeren van netwerkapparaat
[Setup.Text.0x14]
hpznfx01.exe=Installerer 'Microsoft .NET Framework'
hpzdxs01.exe=Installerer 'Microsoft DirectX 9.0'
HPZpsc01.exe=Søker etter installerte programmer
HPZchk01.exe=Kontrollerer systemkrav
HPZwis01.exe=Oppdaterer Windows-installeringstjeneste
HPZpnp01.exe=Kontrollerer maskinvare
HPZscr01.exe=Avinstallerer
HPZwrp01.exe=Installerer tilleggsprogramvare
HPZarp01.exe=Oppretter oppføringer for Legg til / fjern programmer
HPZrcv01.exe=Angir gjenopprettingspunkt
HPZdui01.exe=Kobler til enhet
HPZshl01.exe=Inspiserer system
HPZopt01.exe=Venter på brukerinndata
HPZsui01.exe=Venter på brukerinndata
HPZrein01.exe=Venter på brukerinndata
HPZtim01.exe=Venter på brukerinndata
HPZdui40.exe=Kobler til enhet
HPZpnp40.exe=Kontrollerer maskinvare
HPZscr40.exe=Avinstallerer
HPZshl40.exe=Inspiserer system
HPZnui01.exe=Installere nettverksenhet
[Setup.Text.0x15]
hpznfx01.exe=Instalacja 'Microsoft .NET Framework'
hpzdxs01.exe=Instalacja 'Microsoft DirectX 9.0'
HPZpsc01.exe=Trwa wyszukiwanie zainstalowanych aplikacji
HPZchk01.exe=Trwa sprawdzanie wymagañ systemowych
HPZwis01.exe=Trwa aktualizowanie us³ugi Instalator Windows
HPZpnp01.exe=Trwa sprawdzanie sprzêtu
HPZscr01.exe=Trwa odinstalowywanie
HPZwrp01.exe=Trwa instalowanie dodatkowego oprogramowania
HPZarp01.exe=Trwa tworzenie wpisów aplikacji Dodaj/Usuñ programy
HPZrcv01.exe=Trwa ustawianie punktu odzyskiwania danych
HPZdui01.exe=Trwa pod³¹czanie urz¹dzenia
HPZshl01.exe=Trwa inspekcja systemu
HPZopt01.exe=Trwa oczekiwanie na wprowadzenie danych przez u¿ytkownika
HPZsui01.exe=Trwa oczekiwanie na wprowadzenie danych przez u¿ytkownika
HPZrein01.exe=Trwa oczekiwanie na wprowadzenie danych przez u¿ytkownika
HPZtim01.exe=Trwa oczekiwanie na wprowadzenie danych przez u¿ytkownika
HPZdui40.exe=Trwa pod³¹czanie urz¹dzenia
HPZpnp40.exe=Trwa sprawdzanie sprzêtu
HPZscr40.exe=Trwa odinstalowywanie
HPZshl40.exe=Trwa inspekcja systemu
HPZnui01.exe=Trwa instalowanie urz¹dzenia sieciowego
[Setup.Text.0x16]
hpznfx01.exe=Instalando o Microsoft .NET Framework
hpzdxs01.exe=Instalando o Microsoft DirectX 9.0
HPZpsc01.exe=Procurando aplicativos instalados
HPZchk01.exe=Verificando exigências do sistema
HPZwis01.exe=Atualizando o serviço Windows Installer
HPZpnp01.exe=Verificando hardware
HPZscr01.exe=Desinstalando
HPZwrp01.exe=Instalando software adicional
HPZarp01.exe=Criando entradas em Adicionar ou Remover Programas
HPZrcv01.exe=Definindo ponto de recuperação
HPZdui01.exe=Conectando dispositivo
HPZshl01.exe=Inspecionando sistema
HPZopt01.exe=Aguardando entrada do usuário
HPZsui01.exe=Aguardando entrada do usuário
HPZrein01.exe=Aguardando entrada do usuário
HPZtim01.exe=Aguardando entrada do usuário
HPZdui40.exe=Conectando dispositivo
HPZpnp40.exe=Verificando hardware
HPZscr40.exe=Desinstalando
HPZshl40.exe=Inspecionando sistema
HPZnui01.exe=Instalando dispositivo de rede
[Setup.Text.0x19]
hpznfx01.exe=Óñòàíîâêà Microsoft .NET Framework
hpzdxs01.exe=Óñòàíîâêà Microsoft DirectX 9.0
HPZpsc01.exe=Ïîèñê óñòàíîâëåííûõ ïðèëîæåíèé
HPZchk01.exe=Ïðîâåðêà òðåáîâàíèé ê ñèñòåìå
HPZwis01.exe=Îáíîâëåíèå ñëóæáû óñòàíîâêè Windows
HPZpnp01.exe=Ïðîâåðêà àïïàðàòíîãî îáåñïå÷åíèÿ
HPZscr01.exe=Óäàëåíèå
HPZwrp01.exe=Óñòàíîâêà äîïîëíèòåëüíîãî ïðîãðàììíîãî îáåñïå÷åíèÿ
HPZarp01.exe=Ñîçäàíèå çàïèñåé â îêíå Óñòàíîâêà è óäàëåíèå ïðîãðàìì
HPZrcv01.exe=Óñòàíîâêà òî÷êè âîññòàíîâëåíèÿ
HPZdui01.exe=Ñîåäèíåíèå ñ óñòðîéñòâîì
HPZshl01.exe=Ïðîâåðêà ñèñòåìû
HPZopt01.exe=Îæèäàíèå äåéñòâèé ïîëüçîâàòåëÿ
HPZsui01.exe=Îæèäàíèå äåéñòâèé ïîëüçîâàòåëÿ
HPZrein01.exe=Îæèäàíèå äåéñòâèé ïîëüçîâàòåëÿ
HPZtim01.exe=Îæèäàíèå äåéñòâèé ïîëüçîâàòåëÿ
HPZdui40.exe=Ñîåäèíåíèå ñ óñòðîéñòâîì
HPZpnp40.exe=Ïðîâåðêà àïïàðàòíîãî îáåñïå÷åíèÿ
HPZscr40.exe=Óäàëåíèå
HPZshl40.exe=Ïðîâåðêà ñèñòåìû
HPZnui01.exe=Óñòàíîâêà ñåòåâîãî óñòðîéñòâà
[Setup.Text.0x1d]
hpznfx01.exe=Installerar Microsoft .NET Framework
hpzdxs01.exe=Installerar Microsoft DirectX 9.0
HPZpsc01.exe=Söker efter installerade program
HPZchk01.exe=Kontrollerar systemkrav
HPZwis01.exe=Uppdaterar tjänsten Windows Installer
HPZpnp01.exe=Kontrollerar maskinvara
HPZscr01.exe=Avinstallerar
HPZwrp01.exe=Installerar ytterligare programvara
HPZarp01.exe=Skapa poster för Lägg till/Ta bort program
HPZrcv01.exe=Skapar återställningspunkt
HPZdui01.exe=Ansluter enhet
HPZshl01.exe=Kontrollerar system
HPZopt01.exe=Väntar på användarindata
HPZsui01.exe=Väntar på användarindata
HPZrein01.exe=Väntar på användarindata
HPZtim01.exe=Väntar på användarindata
HPZdui40.exe=Ansluter enhet
HPZpnp40.exe=Kontrollerar maskinvara
HPZscr40.exe=Avinstallerar
HPZshl40.exe=Kontrollerar system
HPZnui01.exe=Installera nätverksenhet
[Setup.Text.0x1f]
hpznfx01.exe=Microsoft .NET Framework Yükleniyor
hpzdxs01.exe=Microsoft DirectX 9.0 Yükleniyor
HPZpsc01.exe=Yüklü uygulamalar aranýyor
HPZchk01.exe=Sistem Gereksinimleri Kontrol Ediliyor
HPZwis01.exe=Windows Yükleyici Hizmeti Güncelleþtiriliyor
HPZpnp01.exe=Donaným kontrol ediliyor
HPZscr01.exe=Yükleme kaldýrýlýyor
HPZwrp01.exe=Ek Yazýlým Yükleniyor
HPZarp01.exe=Program Ekle/Kaldýr giriþleri oluþturuluyor
HPZrcv01.exe=Geri Dönüþ Noktasý Ayarlanýyor
HPZdui01.exe=Aygýt baðlanýyor
HPZshl01.exe=Sistem denetleniyor
HPZopt01.exe=Kullanýcý giriþi bekleniyor
HPZsui01.exe=Kullanýcý giriþi bekleniyor
HPZrein01.exe=Kullanýcý giriþi bekleniyor
HPZtim01.exe=Kullanýcý giriþi bekleniyor
HPZdui40.exe=Aygýt baðlanýyor
HPZpnp40.exe=Donaným kontrol ediliyor
HPZscr40.exe=Yükleme kaldýrýlýyor
HPZshl40.exe=Sistem denetleniyor
HPZnui01.exe=Að Aygýtý Yükleniyor
[Setup.Text.0x1]
hpznfx01.exe=ÌÇÑí ÊËÈíÊ Microsoft .NET Framework
hpzdxs01.exe=ÌÇÑí ÊËÈíÊ Microsoft DirectX 9.0
HPZpsc01.exe=ÇáÈÍË Úä ÊØÈíÞÇÊ ãËÈÊÉ
HPZchk01.exe=ÝÍÕ ãÊØáÈÇÊ ÇáäÙÇã
HPZwis01.exe=ÊÍÏíË ÎÏãÉ ãËÈøÊ Windows
HPZpnp01.exe=ÝÍÕ ÇáÃÌåÒÉ
HPZscr01.exe=ÅáÛÇÁ ÇáÊËÈíÊ
HPZwrp01.exe=ÊËÈíÊ ÈÑÇãÌ ÅÖÇÝíÉ
HPZarp01.exe=ÅäÔÇÁ ÅÏÎÇáÇÊ 'ÅÖÇÝÉ/ÅÒÇáÉ ÈÑÇãÌ'
HPZrcv01.exe=ÖÈØ äÞØÉ ÇÓÊÑÏÇÏ
HPZdui01.exe=ÊæÕíá ÌåÇÒ
HPZshl01.exe=ÝÍÕ ÇáäÙÇã
HPZopt01.exe=ÇáÇäÊÙÇÑ Åáì ÅÏÎÇá ÇáãÓÊÎÏã
HPZsui01.exe=ÇáÇäÊÙÇÑ Åáì ÅÏÎÇá ÇáãÓÊÎÏã
HPZrein01.exe=ÇáÇäÊÙÇÑ Åáì ÅÏÎÇá ÇáãÓÊÎÏã
HPZtim01.exe=ÇáÇäÊÙÇÑ Åáì ÅÏÎÇá ÇáãÓÊÎÏã
HPZdui40.exe=ÊæÕíá ÌåÇÒ
HPZpnp40.exe=ÝÍÕ ÇáÃÌåÒÉ
HPZscr40.exe=ÅáÛÇÁ ÇáÊËÈíÊ
HPZshl40.exe=ÝÍÕ ÇáäÙÇã
HPZnui01.exe=ÊËÈíÊ ÌåÇÒ ÇáÔÈßÉ
[Setup.Text.0xd]
hpznfx01.exe=îú÷éï Microsoft .NET Framework
hpzdxs01.exe=îú÷éï Microsoft DirectX 9.0
HPZpsc01.exe=îçôù ééùåîéí îåú÷ðéí
HPZchk01.exe=áåã÷ ãøéùåú îòøëú
HPZwis01.exe=îòãëï àú ùéøåú Windows Installerþ
HPZpnp01.exe=áåã÷ çåîøä
HPZscr01.exe=îñéø äú÷ðä
HPZwrp01.exe=îú÷éï úåëðåú ðåñôåú
HPZarp01.exe=éåöø òøëé äåñôä/äñøä ùì úåëðéåú
HPZrcv01.exe=îâãéø ð÷åãú ùçæåø
HPZdui01.exe=îçáø àú ääú÷ï
HPZshl01.exe=áåçï àú äîòøëú
HPZopt01.exe=îîúéï ì÷ìè ùì äîùúîù
HPZsui01.exe=îîúéï ì÷ìè ùì äîùúîù
HPZrein01.exe=îîúéï ì÷ìè ùì äîùúîù
HPZtim01.exe=îîúéï ì÷ìè ùì äîùúîù
HPZdui40.exe=îçáø àú ääú÷ï
HPZpnp40.exe=áåã÷ çåîøä
HPZscr40.exe=îñéø äú÷ðä
HPZshl40.exe=áåçï àú äîòøëú
HPZnui01.exe=îú÷éï äú÷ï øùú
[MSI.SelfInstallingPortMonitor]
InstallDir=%System%
Filename=%sourcepath%setup\SIPM\HP_Standard_Port_Monitor.msi
RefCount=No
UI=No
IgnoreNewerVersion=No
SkipIfSilent=No
SkipOnReinstall=DRV
Logfilename=%Temp%%DIVISION%MSI_PortMonitor.log
TRANSFORMS=SIPM\%langid%.MST
[MSI.SelfInstallingPortMonitor_64]
InstallDir=%System%
Filename=%sourcepath%setup\SIPM_64\HP Standard Port Monitor.msi
RefCount=No
UI=No
IgnoreNewerVersion=No
SkipIfSilent=No
SkipOnReinstall=DRV
Logfilename=%Temp%%DIVISION%MSI_PortMonitor.log
TRANSFORMS=SIPM_64\%langid%.MST
[InstallPortMonitor.500]
1=hpzmsi01.exe -m SelfInstallingPortMonitor
[InstallPortMonitor.501]
1=hpzmsi01.exe -m SelfInstallingPortMonitor
[InstallPortMonitor.600]
1=hpzmsi01.exe -m SelfInstallingPortMonitor
[InstallPortMonitor.501_64]
1=hpzmsi01.exe -m SelfInstallingPortMonitor_64
[InstallPortMonitor.502_64]
1=hpzmsi01.exe -m SelfInstallingPortMonitor_64
[InstallPortMonitor.600_64]
1=hpzmsi01.exe -m SelfInstallingPortMonitor_64
[Recovery.LogAnalysis]
CollectLogs=Yes
[Recovery.Startup]
1=%Recovery%setup\hpzrcv01.exe -f ..\%autorunName% -recover
[Recovery.Recover]
1=%Recovery%Setup\hpzscr%ICE_SUFFIX%.exe -datfile .\%ProductScrubberDatfile% -d MsiUninstaller -unattended -forcereboot
[Recovery.SetupQuit]
launchbase=%sourcepath%Setup\
1=hpzrcv01.exe -unsetrecovery
[Uninstall.ERROR_FAILURE_CLEANUP]
launchbase=%sourcepath%Setup\
1=hpzrcv01.exe -recover -logs
[Uninstall.ERROR_FAILURE_CLEANUP.Run4]
launchbase=%sourcepath%Setup\
1=hpzrcv01.exe -recover Run4 -logs
[Recovery.Run4.Recover]
1=%Recovery%Setup\hpzscr%ICE_SUFFIX%.exe -datfile %DeviceInstanceRollbackFile% -unattended -forcereboot
[Recovery.MSIOnly.Startup]
1=%recovery%setup\hpzrcv01.exe -f ..\%autorunName% -recover MSIOnly -logs
[Recovery.MSIOnly.Recover]
SWOnly=Yes
1=%Recovery%Setup\hpzscr%ICE_SUFFIX%.exe -datfile %MsiRollbackDatFile% -unattended -forcereboot
[Recovery.MSIOnly.Error_Failure_Cleanup]
1=hpzrcv01.exe -recover MSIOnly -logs
[Run.SetRecovery]
launchbase=%sourcepath%setup\
1=hpzprl%ICE_SUFFIX%.exe -m PreloadRecoveryMechanism
2=hpzrcv01.exe -setrecovery
[Run.CommitProduct]
launchbase=%sourcepath%setup\
1=hpzmsi01.exe -commit
2=..\%setupName% -commitGuid %CDGuid%
3=hpzrcv01.exe -unsetrecovery
4=hpzrcv01.exe -setrecovery MSIOnly
[Run.CommitFull]
launchbase=%sourcepath%setup\
1=hpzmsi01.exe -commit
2=hpzrcv01.exe -unsetrecovery
[FilesThatForceReboot]
1=mscoree.dll
2=MICROS~1.NET\FRAMEW~1\V11~1.432
3=Microsoft.NET\Framework\v1.1.4322
[WUP]
SecondsToWaitForConnection=30
SecondsToWaitForDownloadComplete=600
[WUP.OptIn]
1=ProductAssistantOpted
2=ProductAssistantNever
3=HPSUNotify
4=HPSUDays
[Wup.OptOut]
1=ProductAssistantOpted
2=ProductAssistantNever
3=HPSUNotify
4=HPSUDays
[Wup.ProductAssistantOpted]
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Hewlett-Packard\Product Assistant
Value=OptInCompleted
OptInData=1
OptOutData=1
[Wup.ProductAssistantOpted.501_64]
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Hewlett-Packard\Product Assistant
[Wup.ProductAssistantOpted.502_64]
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Hewlett-Packard\Product Assistant
[Wup.ProductAssistantOpted.600_64]
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Hewlett-Packard\Product Assistant
[Wup.ProductAssistantNever]
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Hewlett-Packard\HP Software Update\Product Assistant
Value=Never
OptOutData=1
OptInData=0
[Wup.ProductAssistantNever.501_64]
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Hewlett-Packard\HP Software Update\Product Assistant
[Wup.ProductAssistantNever.502_64]
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Hewlett-Packard\HP Software Update\Product Assistant
[Wup.ProductAssistantNever.600_64]
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Hewlett-Packard\HP Software Update\Product Assistant
[Wup.HPSUNotify]
Key=HKEY_LOCAL_MACHINE\Software\Hewlett-Packard\HP Software Update
Value=Notify
OptInData=1
OptOutData=0
[WUP.HPSUNotify.501_64]
Key=HKEY_LOCAL_MACHINE\Software\Wow6432Node\Hewlett-Packard\HP Software Update
[Wup.HPSUNotify.502_64]
Key=HKEY_LOCAL_MACHINE\Software\Wow6432Node\Hewlett-Packard\HP Software Update
[Wup.HPSUNotify.600_64]
Key=HKEY_LOCAL_MACHINE\Software\Wow6432Node\Hewlett-Packard\HP Software Update
[Wup.HPSUDays]
Key=HKEY_LOCAL_MACHINE\Software\Hewlett-Packard\HP Software Update
Value=nDays
OptInData=7
OptOutData=30
[WUP.HPSUDays.501_64]
Key=HKEY_LOCAL_MACHINE\Software\Wow6432Node\Hewlett-Packard\HP Software Update
[Wup.HPSUDays.502_64]
Key=HKEY_LOCAL_MACHINE\Software\Wow6432Node\Hewlett-Packard\HP Software Update
[Wup.HPSUDays.600_64]
Key=HKEY_LOCAL_MACHINE\Software\Wow6432Node\Hewlett-Packard\HP Software Update
[Shield.ICEPreShield]
1=SynTPEnh
2=QTTask
3=.NETUninstall
4=CommonAdminTools
5=MsiExec
6=PlugPlay
7=LocalSoftware
8=LocalSystem
9=EnumRegKey
10=Config.Msi
11=ICE RegKey
12=ClassesRoot
13=softpubDll
14=wintrustDll
15=initpkiDll
16=cryptextDll
17=dssenhDll
18=rsaenhDll
19=gpkcspDll
20=sccbaseDll
21=slbcspDll
22=cryptdlgDll
23=DevicePathRegValue
24=Wow64LocalSoftware
25=Wow64ClassRoot
26=CryptSvc
27=Wow64softpubDll
28=Wow64wintrustDll
29=Wow64dssenhDll
30=Wow64rsaenhDll
31=Wow64gpkcspDll
32=Wow64sccbaseDll
33=Wow64slbcspDll
34=Wow64cryptdlgDll
[Shield.DevicePathRegValue.500]
Data=%SystemRoot%\inf
ReplaceWith=%SystemRoot%\inf
Type=EXPAND_SZ
Manufacturer=Microsoft
IssueType=RegData
Condition=Missing
Action=Autofix
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion
Value=DevicePath
BlockIfFail=Yes
[Shield.DevicePathRegValue.501]
Data=%SystemRoot%\inf
ReplaceWith=%SystemRoot%\inf
Type=EXPAND_SZ
Manufacturer=Microsoft
IssueType=RegData
Condition=Missing
Action=Autofix
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion
Value=DevicePath
BlockIfFail=Yes
[Shield.DevicePathRegValue.501_64]
Data=%SystemRoot%\inf
ReplaceWith=%SystemRoot%\inf
Type=EXPAND_SZ
Manufacturer=Microsoft
IssueType=RegData
Condition=Missing
Action=Autofix
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion
Value=DevicePath
BlockIfFail=Yes
[Shield.DevicePathRegValue.600]
Data=%SystemRoot%\inf
ReplaceWith=%SystemRoot%\inf
Type=EXPAND_SZ
Manufacturer=Microsoft
IssueType=RegData
Condition=Missing
Action=Autofix
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion
Value=DevicePath
BlockIfFail=Yes
[Shield.DevicePathRegValue.600_64]
Data=%SystemRoot%\inf
ReplaceWith=%SystemRoot%\inf
Type=EXPAND_SZ
Manufacturer=Microsoft
IssueType=RegData
Condition=Missing
Action=Autofix
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion
Value=DevicePath
BlockIfFail=Yes
[Shield.CloseIZApps]
1=hpqselsk
2=hpqcopy
3=hpqgalry
4=hpqiscfg
5=hpqimvac
6=hpqpos
7=hpqvapa
[Shield.SynTPEnh]
IssueType=Process
MaxVersion=0x0005000000000893
MinVersion=0x0005000000000893
Manufacturer=HP
Action=Autofix
BlockIfFail=Yes
[Shield.QTTask]
IssueType=Process
MaxVersion=0x0006000100000000
MinVersion=0x0000000000000000
Manufacturer=Apple
Action=Autofix
BlockIfFail=Yes
[Shield..NETUninstall]
IssueType=RebootFile
Manufacturer=Microsoft
Action=Autofix
1=mscoree.dll
2=MICROS~1.NET\FRAMEW~1\V11~1.432
3=Microsoft.NET\Framework\v1.1.4322
Return=Reboot
BlockIfFail=No
[Shield.CommonAdminTools]
Manufacturer=Microsoft
IssueType=RegData
Condition=Contains
Action=Autofix
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders
Value=Common Administrative Tools
Data=<Common Administrative Tools>.All Users\
ReplaceWith=%ALLUSERSPROFILE%\Start Menu\Programs\Administrative Tools
Type=EXPAND_SZ
BlockIfFail=Yes
[Shield.MsiExec]
IssueType=Service
ServiceName=MSIServer
Manufacturer=Microsoft
Action=FIX
Condition=DISABLED
DisplayName=Windows Installer
BlockIfFail=Yes
[Shield.PlugPlay]
IssueType=Service
ServiceName=PlugPlay
Manufacturer=Microsoft
Action=FIX
Condition=STOPPED
DisplayName=Plug and Play
BlockIfFail=Yes
[Shield.LocalSoftware.500]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=NotWriteable
Key=HKEY_LOCAL_MACHINE\SOFTWARE
DisplayName=LocalSoftware
BlockIfFail=Yes
Recurse=No
OverwriteDacl=No
SetOnlyIfInvalid=Yes
CheckAccess=CommonSidList
SetAccess=CommonSidList
CheckCreatedKey=Yes
[Shield.LocalSoftware.501]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=NotWriteable
Key=HKEY_LOCAL_MACHINE\SOFTWARE
DisplayName=LocalSoftware
BlockIfFail=Yes
Recurse=No
OverwriteDacl=No
SetOnlyIfInvalid=Yes
CheckAccess=CommonSidList
SetAccess=CommonSidList
CheckCreatedKey=Yes
[Shield.LocalSoftware.501_64]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=NotWriteable
Key=HKEY_LOCAL_MACHINE\SOFTWARE
DisplayName=LocalSoftware
BlockIfFail=Yes
Recurse=No
OverwriteDacl=No
SetOnlyIfInvalid=Yes
CheckAccess=CommonSidList
SetAccess=CommonSidList
CheckCreatedKey=Yes
[Shield.LocalSoftware.600]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=NotWriteable
Key=HKEY_LOCAL_MACHINE\SOFTWARE
DisplayName=LocalSoftware
BlockIfFail=Yes
Recurse=No
OverwriteDacl=No
SetOnlyIfInvalid=Yes
CheckAccess=CommonSidList
SetAccess=CommonSidList
CheckCreatedKey=Yes
[Shield.LocalSoftware.600_64]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=NotWriteable
Key=HKEY_LOCAL_MACHINE\SOFTWARE
DisplayName=LocalSoftware
BlockIfFail=Yes
Recurse=No
OverwriteDacl=No
SetOnlyIfInvalid=Yes
CheckAccess=CommonSidList
SetAccess=CommonSidList
CheckCreatedKey=Yes
[Shield.Wow64LocalSoftware.501_64]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=NotWriteable
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node
DisplayName=LocalSoftware
BlockIfFail=Yes
Recurse=No
OverwriteDacl=No
SetOnlyIfInvalid=Yes
CheckAccess=CommonSidList
SetAccess=CommonSidList
CheckCreatedKey=Yes
[Shield.Wow64LocalSoftware.600_64]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=NotWriteable
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node
DisplayName=LocalSoftware
BlockIfFail=Yes
Recurse=No
OverwriteDacl=No
SetOnlyIfInvalid=Yes
CheckAccess=CommonSidList
SetAccess=CommonSidList
CheckCreatedKey=Yes
[Shield.LocalSystem.500]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=NotWriteable
Key=HKEY_LOCAL_MACHINE\SYSTEM
DisplayName=LocalSystem
BlockIfFail=Yes
Recurse=No
OverwriteDacl=No
SetOnlyIfInvalid=Yes
CheckAccess=CommonSidList
SetAccess=CommonSidList
[Shield.LocalSystem.501]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=NotWriteable
Key=HKEY_LOCAL_MACHINE\SYSTEM
DisplayName=LocalSystem
BlockIfFail=Yes
Recurse=No
OverwriteDacl=No
SetOnlyIfInvalid=Yes
CheckAccess=CommonSidList
SetAccess=CommonSidList
[Shield.LocalSystem.501_64]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=NotWriteable
Key=HKEY_LOCAL_MACHINE\SYSTEM
DisplayName=LocalSystem
BlockIfFail=Yes
Recurse=No
OverwriteDacl=No
SetOnlyIfInvalid=Yes
CheckAccess=CommonSidList
SetAccess=CommonSidList
[Shield.LocalSystem.600]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=NotWriteable
Key=HKEY_LOCAL_MACHINE\SYSTEM
DisplayName=LocalSystem
BlockIfFail=Yes
Recurse=No
OverwriteDacl=No
SetOnlyIfInvalid=Yes
CheckAccess=CommonSidList
SetAccess=CommonSidList
[Shield.LocalSystem.600_64]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=NotWriteable
Key=HKEY_LOCAL_MACHINE\SYSTEM
DisplayName=LocalSystem
BlockIfFail=Yes
Recurse=No
OverwriteDacl=No
SetOnlyIfInvalid=Yes
CheckAccess=CommonSidList
SetAccess=CommonSidList
[Shield.EnumRegKey.500]
IssueType=RegKey
Manufacturer=Microsoft
DisplayName=Enum
Key=HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum
Condition=NotWriteable
Action=AutoFix
BlockIfFail=Yes
Recurse=Yes
OverwriteDacl=No
CheckAccess=SystemAccess
SetAccess=SystemAccess
Timeout=10
[Shield.EnumRegKey.501]
IssueType=RegKey
Manufacturer=Microsoft
DisplayName=Enum
Key=HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum
Condition=NotWriteable
Action=AutoFix
BlockIfFail=Yes
Recurse=Yes
OverwriteDacl=No
CheckAccess=SystemAccess
SetAccess=SystemAccess
Timeout=10
[Shield.EnumRegKey.501_64]
IssueType=RegKey
Manufacturer=Microsoft
DisplayName=Enum
Key=HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum
Condition=NotWriteable
Action=AutoFix
BlockIfFail=Yes
Recurse=Yes
OverwriteDacl=No
CheckAccess=SystemAccess
SetAccess=SystemAccess
Timeout=10
[Shield.Config.Msi]
IssueType=Folder
Manufacturer=Microsoft Corporation
FolderName=%WindowsDrive%Config.Msi
Action=AUTOFIX
Condition=~EXIST
HIDDEN=Y
[Shield.ICE RegKey]
IssueType=RegKey
Manufacturer=HP
DisplayName=ICE
Key=HKEY_LOCAL_MACHINE\SOFTWARE\ICE
Condition=NotWriteable
Action=Autofix
BlockIfFail=Yes
Recurse=Yes
OverwriteDacl=Yes
CheckAccess=CommonSidList
SetAccess=CommonSidList
Timeout=10
[Shield.ClassesRoot.500]
IssueType=RegKey
Manufacturer=Microsoft
DisplayName=HKEY_CLASSES_ROOT
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Classes
Condition=NotWriteable
Action=Autofix
BlockIfFail=Yes
Recurse=No
OverwriteDacl=No
SetOnlyIfInvalid=Yes
CheckAccess=CommonSidList
SetAccess=CommonSidList
CheckCreatedKey=Yes
[Shield.ClassesRoot.501]
IssueType=RegKey
Manufacturer=Microsoft
DisplayName=HKEY_CLASSES_ROOT
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Classes
Condition=NotWriteable
Action=Autofix
BlockIfFail=Yes
Recurse=No
OverwriteDacl=No
SetOnlyIfInvalid=Yes
CheckAccess=CommonSidList
SetAccess=CommonSidList
CheckCreatedKey=Yes
[Shield.ClassesRoot.501_64]
IssueType=RegKey
Manufacturer=Microsoft
DisplayName=HKEY_CLASSES_ROOT
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Classes
Condition=NotWriteable
Action=Autofix
BlockIfFail=Yes
Recurse=No
OverwriteDacl=No
SetOnlyIfInvalid=Yes
CheckAccess=CommonSidList
SetAccess=CommonSidList
CheckCreatedKey=Yes
[Shield.ClassesRoot.600]
IssueType=RegKey
Manufacturer=Microsoft
DisplayName=HKEY_CLASSES_ROOT
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Classes
Condition=NotWriteable
Action=Autofix
BlockIfFail=Yes
Recurse=No
OverwriteDacl=No
SetOnlyIfInvalid=Yes
CheckAccess=CommonSidList
SetAccess=CommonSidList
CheckCreatedKey=Yes
[Shield.ClassesRoot.600_64]
IssueType=RegKey
Manufacturer=Microsoft
DisplayName=HKEY_CLASSES_ROOT
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Classes
Condition=NotWriteable
Action=Autofix
BlockIfFail=Yes
Recurse=No
OverwriteDacl=No
SetOnlyIfInvalid=Yes
CheckAccess=CommonSidList
SetAccess=CommonSidList
CheckCreatedKey=Yes
[Shield.Wow64ClassRoot.501_64]
IssueType=RegKey
Manufacturer=Microsoft
DisplayName=HKEY_CLASSES_ROOT
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes
Condition=NotWriteable
Action=Autofix
BlockIfFail=Yes
Recurse=No
OverwriteDacl=No
SetOnlyIfInvalid=Yes
CheckAccess=CommonSidList
SetAccess=CommonSidList
CheckCreatedKey=Yes
[Shield.Wow64ClassRoot.600_64]
IssueType=RegKey
Manufacturer=Microsoft
DisplayName=HKEY_CLASSES_ROOT
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes
Condition=NotWriteable
Action=Autofix
BlockIfFail=Yes
Recurse=No
OverwriteDacl=No
SetOnlyIfInvalid=Yes
CheckAccess=CommonSidList
SetAccess=CommonSidList
CheckCreatedKey=Yes
[Shield.DXQVPFix]
1=QVP32
[Shield.QVP32]
Manufacturer=Microsoft
IssueType=RegData
Condition=Contains
Action=Autofix
Key=HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run
Value=DXDllRegExe
Data=dxdllreg.exe
ReplaceWith=%system%dxdllreg.exe
BlockIfFail=Yes
[Shield.CompositeDev]
1=USBInf
2=certclas
3=USBCCGP
[Shield.USBCheck]
1=USBInf
2=USBPrint
3=USBStor
4=USBScan
5=NTPrint
6=certclas
7=USBCCGP
[Shield.Printer]
1=PrintSpooler
2=ReadOnlyPNFs
3=USBPrint
4=NTPrint
5=certclas
6=PrintCoinstaller
[Shield.PnP.Printer]
1=USBPrint
[Shield.MassStorage]
1=Roxio
2=USBStor
3=certclas
4=hpusbfd
[Shield.PnP.MassStorage]
1=USBStor
[Shield.Scanner]
1=ReadOnlyPNFs
2=USBScan
3=certclas
[Shield.PnP.Scanner]
1=USBScan
[Shield.Camera]
1=ReadOnlyPNFs
2=certclas
[Shield.PnPFiles]
1=USBInf
2=certclas
3=USBCCGP
[Shield.USBInf.500]
DisplayName=USB.inf
IssueType=SystemDriver
Condition=~Exists
DriverInfName=usb.inf
DriverSysName=usbhub.sys
SectionToInstall=Composite.Dev.NT
MinVersion=5000008870001
DriverSysMinVersion=5000008850001
Manufacturer=Microsoft
[Shield.USBInf.501]
DisplayName=USB.inf
IssueType=SystemDriver
Condition=~Exists
DriverInfName=usb.inf
DriverSysName=usbccgp.sys
SectionToInstall=Composite.Dev.NT
MinVersion=500010A280000
DriverSysMinVersion=500010A280000
Manufacturer=Microsoft
[Shield.USBInf.501_64]
DisplayName=USB.inf
IssueType=SystemDriver
Condition=~Exists
DriverInfName=usb.inf
DriverSysName=usbccgp.sys
SectionToInstall=Composite.Dev.NT
MinVersion=500010A280000
DriverSysMinVersion=500010A280000
Manufacturer=Microsoft
[Shield.USBPrint.500]
DisplayName=USBPrint
IssueType=SystemDriver
Condition=~Exists
DriverInfName=usbprint.inf
DriverSysName=usbprint.sys
SectionToInstall=USBPRINT_Inst.NT
MinVersion=5000008870001
DriverSysMinVersion=5000008740001
Manufacturer=Microsoft
[Shield.USBPrint.501]
DisplayName=USBPrint
IssueType=SystemDriver
Condition=~Exists
DriverInfName=usbprint.inf
DriverSysName=usbprint.sys
SectionToInstall=USBPRINT_Inst.NT
MinVersion=500010A280000
DriverSysMinVersion=500010A280000
Manufacturer=Microsoft
[Shield.USBPrint.501_64]
DisplayName=USBPrint
IssueType=SystemDriver
Condition=~Exists
DriverInfName=usbprint.inf
DriverSysName=usbprint.sys
SectionToInstall=USBPRINT_Inst.NT
MinVersion=500010A280000
DriverSysMinVersion=500010A280000
Manufacturer=Microsoft
[Shield.NTPrint.500]
DisplayName=NTPrint
IssueType=SystemDriver
Condition=~Exists
DriverInfName=ntprint.inf
DriverSysName=
SectionToInstall=
MinVersion=0
Manufacturer=Microsoft
[Shield.NTPrint.501]
DisplayName=NTPrint
IssueType=SystemDriver
Condition=~Exists
DriverInfName=ntprint.inf
DriverSysName=
SectionToInstall=
MinVersion=0
Manufacturer=Microsoft
[Shield.NTPrint.501_64]
DisplayName=NTPrint
IssueType=SystemDriver
Condition=~Exists
DriverInfName=ntprint.inf
DriverSysName=
SectionToInstall=
MinVersion=0
Manufacturer=Microsoft
[Shield.NTPrint.600]
DisplayName=NTPrint
IssueType=SystemDriver
Condition=~Exists
DriverInfName=ntprint.inf
DriverSysName=
SectionToInstall=
MinVersion=0
Manufacturer=Microsoft
0
caroline2 Messages postés 41 Date d'inscription mardi 16 décembre 2008 Statut Membre Dernière intervention 22 décembre 2008 > caroline2 Messages postés 41 Date d'inscription mardi 16 décembre 2008 Statut Membre Dernière intervention 22 décembre 2008
19 déc. 2008 à 17:36
[Shield.NTPrint.600_64]
DisplayName=NTPrint
IssueType=SystemDriver
Condition=~Exists
DriverInfName=ntprint.inf
DriverSysName=
SectionToInstall=
MinVersion=0
Manufacturer=Microsoft
[Shield.certclas.500]
DisplayName=Certclas.inf
IssueType=SystemDriver
Condition=~Exists
DriverInfName=certclas.inf
DriverSysName=
SectionToInstall=
MinVersion=5000008870001
Manufacturer=Microsoft
[Shield.CertClas.501]
DisplayName=Certclas.inf
IssueType=SystemDriver
Condition=~Exists
DriverInfName=Certclas.inf
DriverSysName=
SectionToInstall=
MinVersion=5000109E70000
Manufacturer=Microsoft
[Shield.CertClas.501_64]
DisplayName=Certclas.inf
IssueType=SystemDriver
Condition=~Exists
DriverInfName=Certclas.inf
DriverSysName=
SectionToInstall=
MinVersion=5000109E70000
Manufacturer=Microsoft
[Shield.USBStor.500]
DisplayName=USBStor
IssueType=SystemDriver
Condition=~Exists
DriverInfName=usbstor.inf
DriverSysName=usbstor.sys
SectionToInstall=USBSTOR_BULK.NT
MinVersion=5000008870001
DriverSysMinVersion=50000085A0001
Manufacturer=Microsoft
[Shield.USBStor.501]
DisplayName=USBStor
IssueType=SystemDriver
Condition=~Exists
DriverInfName=usbstor.inf
DriverSysName=usbstor.sys
SectionToInstall=USBSTOR_BULK.NT
MinVersion=500010A280000
DriverSysMinVersion=500010A280000
Manufacturer=Microsoft
[Shield.USBStor.501_64]
DisplayName=USBStor
IssueType=SystemDriver
Condition=~Exists
DriverInfName=usbstor.inf
DriverSysName=usbstor.sys
SectionToInstall=USBSTOR_BULK.NT
MinVersion=500010A280000
DriverSysMinVersion=500010A280000
Manufacturer=Microsoft
[Shield.USBScan.500]
DisplayName=USBScan
IssueType=SystemDriver
Condition=~Exists
DriverInfName=sti.inf
DriverSysName=usbscan.sys
SectionToInstall=STI.USBSection
MinVersion=5000008870001
DriverSysMinVersion=5000008670001
Manufacturer=Microsoft
[Shield.USBScan.501]
DisplayName=USBScan
IssueType=SystemDriver
Condition=~Exists
DriverInfName=sti.inf
DriverSysName=usbscan.sys
SectionToInstall=STI.USBSection
MinVersion=500010A280000
DriverSysMinVersion=500010A280000
Manufacturer=Microsoft
[Shield.USBScan.501_64]
DisplayName=USBScan
IssueType=SystemDriver
Condition=~Exists
DriverInfName=sti.inf
DriverSysName=usbscan.sys
SectionToInstall=STI.USBSection
MinVersion=500010A280000
DriverSysMinVersion=500010A280000
Manufacturer=Microsoft
[Shield.PrintCoinstaller.500]
Manufacturer=Microsoft
IssueType=RegData
Condition=Missing
Action=Autofix
Key=HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Class\{4D36E979-E325-11CE-BFC1-08002BE10318}
Value=Installer32
BlockIfFail=Yes
Data=ntprint.dll,ClassInstall32
ReplaceWith=ntprint.dll,ClassInstall32
[Shield.PrintCoinstaller.501]
Manufacturer=Microsoft
IssueType=RegData
Condition=Missing
Action=Autofix
Key=HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Class\{4D36E979-E325-11CE-BFC1-08002BE10318}
Value=Installer32
BlockIfFail=Yes
Data=ntprint.dll,ClassInstall32
ReplaceWith=ntprint.dll,ClassInstall32
[Shield.PrintCoinstaller.501_64]
Manufacturer=Microsoft
IssueType=RegData
Condition=Missing
Action=Autofix
Key=HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Class\{4D36E979-E325-11CE-BFC1-08002BE10318}
Value=Installer32
BlockIfFail=Yes
Data=ntprint.dll,ClassInstall32
ReplaceWith=ntprint.dll,ClassInstall32
[Shield.PrintCoinstaller.600]
Manufacturer=Microsoft
IssueType=RegData
Condition=Missing
Action=Autofix
Key=HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Class\{4D36E979-E325-11CE-BFC1-08002BE10318}
Value=Installer32
BlockIfFail=Yes
Data=ntprint.dll,ClassInstall32
ReplaceWith=ntprint.dll,ClassInstall32
[Shield.PrintCoinstaller.600_64]
Manufacturer=Microsoft
IssueType=RegData
Condition=Missing
Action=Autofix
Key=HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Class\{4D36E979-E325-11CE-BFC1-08002BE10318}
Value=Installer32
BlockIfFail=Yes
Data=ntprint.dll,ClassInstall32
ReplaceWith=ntprint.dll,ClassInstall32
[Shield.PrintSpooler]
IssueType=Service
ServiceName=Spooler
Manufacturer=Microsoft
Action=FIX
Condition=STOPPED
DisplayName=Print Spooler
BlockIfFail=Yes
AutoStartService=Yes
[Shield.hpusbfd]
Manufacturer=Hewlett-Packard
IssueType=RegData
Condition=Contains
Action=Autofix
Key=HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Class\{36FC9E60-C465-11CF-8056-444553540000}
Value=UpperFilter
Data=hpusbfd
Type=MULTI_SZ
ReplaceWith=*
BlockIfFail=Yes
[Shield.Roxio.500]
IssueType=File
Manufacturer=Roxio
MaxVersion=0x0002000000000046
MinVersion=0x0002000000000046
Action=STOP
Condition=EXIST
DisplayName=Easy CD Creator 5
BlockIfFail=Yes
FileName=%system%drivers\PrtSeqRd.sys
SpecialText=Shield.Roxio.Text
[Shield.Roxio.501]
IssueType=File
Manufacturer=Roxio
MaxVersion=0x0002000000000046
MinVersion=0x0002000000000046
Action=STOP
Condition=EXIST
DisplayName=Easy CD Creator 5
FileName=%system%drivers\PrtSeqRd.sys
BlockIfFail=Yes
SpecialText=Shield.Roxio.Text
[Shield.Roxio.501_64]
IssueType=File
Manufacturer=Roxio
MaxVersion=0x0002000000000046
MinVersion=0x0002000000000046
Action=STOP
Condition=EXIST
DisplayName=Easy CD Creator 5
FileName=%system%drivers\PrtSeqRd.sys
BlockIfFail=Yes
SpecialText=Shield.Roxio.Text
[Shield.Roxio.600]
IssueType=File
Manufacturer=Roxio
MaxVersion=0x0002000000000046
MinVersion=0x0002000000000046
Action=STOP
Condition=EXIST
DisplayName=Easy CD Creator 5
FileName=%system%drivers\PrtSeqRd.sys
BlockIfFail=Yes
SpecialText=Shield.Roxio.Text
[Shield.Roxio.600_64]
IssueType=File
Manufacturer=Roxio
MaxVersion=0x0002000000000046
MinVersion=0x0002000000000046
Action=STOP
Condition=EXIST
DisplayName=Easy CD Creator 5
FileName=%system%drivers\PrtSeqRd.sys
BlockIfFail=Yes
SpecialText=Shield.Roxio.Text
[Shield.Firewalls]
1=Smc
2=Zapro
3=Ccapp
4=BlackIce
5=MpfAgent
6=Ca
7=ccEvtMgr
8=SndSrvc
9=ccProxy
10=ccPwdSvc
11=ccSetMgr
12=Zlclient
13=Pavfires
[Shield.Smc.500]
IssueType=Service
ServiceName=SmcService
DisplayName=Sygate Security Agent: Firewall
Manufacturer=Sygate Technologies
Action=NoFix
Condition=Running
SpecialText=Shield.Firewalls.Text
[Shield.Smc.501]
IssueType=Service
ServiceName=SmcService
DisplayName=Sygate Security Agent: Firewall
Manufacturer=Sygate Technologies
Action=NoFix
Condition=Running
SpecialText=Shield.Firewalls.Text
[Shield.Smc.501_64]
IssueType=Service
ServiceName=SmcService
DisplayName=Sygate Security Agent: Firewall
Manufacturer=Sygate Technologies
Action=NoFix
Condition=Running
SpecialText=Shield.Firewalls.Text
[Shield.Smc.600]
IssueType=Service
ServiceName=SmcService
DisplayName=Sygate Security Agent: Firewall
Manufacturer=Sygate Technologies
Action=NoFix
Condition=Running
SpecialText=Shield.Firewalls.Text
[Shield.Smc.600_64]
IssueType=Service
ServiceName=SmcService
DisplayName=Sygate Security Agent: Firewall
Manufacturer=Sygate Technologies
Action=NoFix
Condition=Running
SpecialText=Shield.Firewalls.Text
[Shield.Zapro.500]
IssueType=Service
ServiceName=vsmon
DisplayName=Zone Alarm TrueVector Internet Monitor
Manufacturer=Broderbund/Zone Labs,LLC
Action=NoFix
Condition=Running
SpecialText=Shield.Firewalls.Text
[Shield.Zapro.501]
IssueType=Service
ServiceName=vsmon
DisplayName=Zone Alarm TrueVector Internet Monitor
Manufacturer=Broderbund/Zone Labs,LLC
Action=NoFix
Condition=Running
SpecialText=Shield.Firewalls.Text
[Shield.Zapro.501_64]
IssueType=Service
ServiceName=vsmon
DisplayName=Zone Alarm TrueVector Internet Monitor
Manufacturer=Broderbund/Zone Labs,LLC
Action=NoFix
Condition=Running
SpecialText=Shield.Firewalls.Text
[Shield.Zapro.600]
IssueType=Service
ServiceName=vsmon
DisplayName=Zone Alarm TrueVector Internet Monitor
Manufacturer=Broderbund/Zone Labs,LLC
Action=NoFix
Condition=Running
SpecialText=Shield.Firewalls.Text
[Shield.Zapro.600_64]
IssueType=Service
ServiceName=vsmon
DisplayName=Zone Alarm TrueVector Internet Monitor
Manufacturer=Broderbund/Zone Labs,LLC
Action=NoFix
Condition=Running
SpecialText=Shield.Firewalls.Text
[Shield.Ccapp.500]
IssueType=Service
ServiceName=Symantec Core LC
DisplayName=Symantec Core LC: Firewall
Manufacturer=Symantec
Action=NoFix
Condition=Running
SpecialText=Shield.Firewalls.Text
[Shield.Ccapp.501]
IssueType=Service
ServiceName=Symantec Core LC
DisplayName=Symantec Core LC: Firewall
Manufacturer=Symantec
Action=NoFix
Condition=Running
SpecialText=Shield.Firewalls.Text
[Shield.Ccapp.501_64]
IssueType=Service
ServiceName=Symantec Core LC
DisplayName=Symantec Core LC: Firewall
Manufacturer=Symantec
Action=NoFix
Condition=Running
SpecialText=Shield.Firewalls.Text
[Shield.Ccapp.600]
IssueType=Service
ServiceName=Symantec Core LC
DisplayName=Symantec Core LC: Firewall
Manufacturer=Symantec
Action=NoFix
Condition=Running
SpecialText=Shield.Firewalls.Text
[Shield.Ccapp.600_64]
IssueType=Service
ServiceName=Symantec Core LC
DisplayName=Symantec Core LC: Firewall
Manufacturer=Symantec
Action=NoFix
Condition=Running
SpecialText=Shield.Firewalls.Text
[Shield.BlackIce.500]
IssueType=Service
ServiceName=BlackICE
DisplayName=BlackICE: Firewall
Manufacturer=Internet Security Systems
Action=NoFix
Condition=Running
SpecialText=Shield.Firewalls.Text
[Shield.BlackIce.501]
IssueType=Service
ServiceName=BlackICE
DisplayName=BlackICE: Firewall
Manufacturer=Internet Security Systems
Action=NoFix
Condition=Running
SpecialText=Shield.Firewalls.Text
[Shield.BlackIce.501_64]
IssueType=Service
ServiceName=BlackICE
DisplayName=BlackICE: Firewall
Manufacturer=Internet Security Systems
Action=NoFix
Condition=Running
SpecialText=Shield.Firewalls.Text
[Shield.BlackIce.600]
IssueType=Service
ServiceName=BlackICE
DisplayName=BlackICE: Firewall
Manufacturer=Internet Security Systems
Action=NoFix
Condition=Running
SpecialText=Shield.Firewalls.Text
[Shield.BlackIce.600_64]
IssueType=Service
ServiceName=BlackICE
DisplayName=BlackICE: Firewall
Manufacturer=Internet Security Systems
Action=NoFix
Condition=Running
SpecialText=Shield.Firewalls.Text
[Shield.MpfAgent.500]
IssueType=Service
ServiceName=MpfService
DisplayName=McAfee Personal Firewall Service
Manufacturer=McAfee Security
Action=NoFix
Condition=Running
SpecialText=Shield.Firewalls.Text
[Shield.MpfAgent.501]
IssueType=Service
ServiceName=MpfService
DisplayName=McAfee Personal Firewall Service
Manufacturer=McAfee Security
Action=NoFix
Condition=Running
SpecialText=Shield.Firewalls.Text
[Shield.MpfAgent.501_64]
IssueType=Service
ServiceName=MpfService
DisplayName=McAfee Personal Firewall Service
Manufacturer=McAfee Security
Action=NoFix
Condition=Running
SpecialText=Shield.Firewalls.Text
[Shield.MpfAgent.600]
IssueType=Service
ServiceName=MpfService
DisplayName=McAfee Personal Firewall Service
Manufacturer=McAfee Security
Action=NoFix
Condition=Running
SpecialText=Shield.Firewalls.Text
[Shield.MpfAgent.600_64]
IssueType=Service
ServiceName=MpfService
DisplayName=McAfee Personal Firewall Service
Manufacturer=McAfee Security
Action=NoFix
Condition=Running
SpecialText=Shield.Firewalls.Text
[Shield.ccEvtMgr.500]
IssueType=Service
ServiceName=ccEvtMgr
DisplayName=Symantec Event Manager: Firewall
Manufacturer=Symantec
Action=NoFix
Condition=Running
SpecialText=Shield.Firewalls.Text
[Shield.ccEvtMgr.501]
IssueType=Service
ServiceName=ccEvtMgr
DisplayName=Symantec Event Manager: Firewall
Manufacturer=Symantec
Action=NoFix
Condition=Running
SpecialText=Shield.Firewalls.Text
[Shield.ccEvtMgr.501_64]
IssueType=Service
ServiceName=ccEvtMgr
DisplayName=Symantec Event Manager: Firewall
Manufacturer=Symantec
Action=NoFix
Condition=Running
SpecialText=Shield.Firewalls.Text
[Shield.ccEvtMgr.600]
IssueType=Service
ServiceName=ccEvtMgr
DisplayName=Symantec Event Manager: Firewall
Manufacturer=Symantec
Action=NoFix
Condition=Running
SpecialText=Shield.Firewalls.Text
[Shield.ccEvtMgr.600_64]
IssueType=Service
ServiceName=ccEvtMgr
DisplayName=Symantec Event Manager: Firewall
Manufacturer=Symantec
Action=NoFix
Condition=Running
SpecialText=Shield.Firewalls.Text
[Shield.SndSrvc.500]
IssueType=Service
ServiceName=SndSrvc
DisplayName=Symantec Network Drivers Service : Firewall
Manufacturer=Symantec
Action=NoFix
Condition=Running
SpecialText=Shield.Firewalls.Text
[Shield.SndSrvc.501]
IssueType=Service
ServiceName=SndSrvc
DisplayName=Symantec Network Drivers Service : Firewall
Manufacturer=Symantec
Action=NoFix
Condition=Running
SpecialText=Shield.Firewalls.Text
[Shield.SndSrvc.501_64]
IssueType=Service
ServiceName=SndSrvc
DisplayName=Symantec Network Drivers Service : Firewall
Manufacturer=Symantec
Action=NoFix
Condition=Running
SpecialText=Shield.Firewalls.Text
[Shield.SndSrvc.600]
IssueType=Service
ServiceName=SndSrvc
DisplayName=Symantec Network Drivers Service : Firewall
Manufacturer=Symantec
Action=NoFix
Condition=Running
SpecialText=Shield.Firewalls.Text
[Shield.SndSrvc.600_64]
IssueType=Service
ServiceName=SndSrvc
DisplayName=Symantec Network Drivers Service : Firewall
Manufacturer=Symantec
Action=NoFix
Condition=Running
SpecialText=Shield.Firewalls.Text
[Shield.ccProxy.500]
IssueType=Service
ServiceName=ccProxy
DisplayName=Symantec Network Proxy: Firewall
Manufacturer=Symantec
Action=NoFix
Condition=Running
SpecialText=Shield.Firewalls.Text
[Shield.ccProxy.501]
IssueType=Service
ServiceName=ccProxy
DisplayName=Symantec Network Proxy: Firewall
Manufacturer=Symantec
Action=NoFix
Condition=Running
SpecialText=Shield.Firewalls.Text
[Shield.ccProxy.501_64]
IssueType=Service
ServiceName=ccProxy
DisplayName=Symantec Network Proxy: Firewall
Manufacturer=Symantec
Action=NoFix
Condition=Running
SpecialText=Shield.Firewalls.Text
[Shield.ccProxy.600]
IssueType=Service
ServiceName=ccProxy
DisplayName=Symantec Network Proxy: Firewall
Manufacturer=Symantec
Action=NoFix
Condition=Running
SpecialText=Shield.Firewalls.Text
[Shield.ccProxy.600_64]
IssueType=Service
ServiceName=ccProxy
DisplayName=Symantec Network Proxy: Firewall
Manufacturer=Symantec
Action=NoFix
Condition=Running
SpecialText=Shield.Firewalls.Text
[Shield.ccPwdSvc.500]
IssueType=Service
ServiceName=ccPwdSvc
DisplayName=Symantec Password Validation: Firewall
Manufacturer=Symantec
Action=NoFix
Condition=Running
SpecialText=Shield.Firewalls.Text
[Shield.ccPwdSvc.501]
IssueType=Service
ServiceName=ccPwdSvc
DisplayName=Symantec Password Validation: Firewall
Manufacturer=Symantec
Action=NoFix
Condition=Running
SpecialText=Shield.Firewalls.Text
[Shield.ccPwdSvc.501_64]
IssueType=Service
ServiceName=ccPwdSvc
DisplayName=Symantec Password Validation: Firewall
Manufacturer=Symantec
Action=NoFix
Condition=Running
SpecialText=Shield.Firewalls.Text
[Shield.ccPwdSvc.600]
IssueType=Service
ServiceName=ccPwdSvc
DisplayName=Symantec Password Validation: Firewall
Manufacturer=Symantec
Action=NoFix
Condition=Running
SpecialText=Shield.Firewalls.Text
[Shield.ccPwdSvc.600_64]
IssueType=Service
ServiceName=ccPwdSvc
DisplayName=Symantec Password Validation: Firewall
Manufacturer=Symantec
Action=NoFix
Condition=Running
SpecialText=Shield.Firewalls.Text
[Shield.ccSetMgr.500]
IssueType=Service
ServiceName=ccSetMgr
DisplayName=Symantec Settings Manager: Firewall
Manufacturer=Symantec
Action=NoFix
Condition=Running
SpecialText=Shield.Firewalls.Text
[Shield.ccSetMgr.501]
IssueType=Service
ServiceName=ccSetMgr
DisplayName=Symantec Settings Manager: Firewall
Manufacturer=Symantec
Action=NoFix
Condition=Running
SpecialText=Shield.Firewalls.Text
[Shield.ccSetMgr.501_64]
IssueType=Service
ServiceName=ccSetMgr
DisplayName=Symantec Settings Manager: Firewall
Manufacturer=Symantec
Action=NoFix
Condition=Running
SpecialText=Shield.Firewalls.Text
[Shield.ccSetMgr.600]
IssueType=Service
ServiceName=ccSetMgr
DisplayName=Symantec Settings Manager: Firewall
Manufacturer=Symantec
Action=NoFix
Condition=Running
SpecialText=Shield.Firewalls.Text
[Shield.ccSetMgr.600_64]
IssueType=Service
ServiceName=ccSetMgr
DisplayName=Symantec Settings Manager: Firewall
Manufacturer=Symantec
Action=NoFix
Condition=Running
SpecialText=Shield.Firewalls.Text
[Shield.Pavfires.500]
IssueType=Service
ServiceName=PAVFIRES
DisplayName=Panda Firewall Service
Manufacturer=TruPrevent Technologies
Action=NoFix
Condition=Running
SpecialText=Shield.Firewalls.Text
[Shield.Pavfires.501]
IssueType=Service
ServiceName=PAVFIRES
DisplayName=Panda Firewall Service
Manufacturer=TruPrevent Technologies
Action=NoFix
Condition=Running
SpecialText=Shield.Firewalls.Text
[Shield.Pavfires.600]
IssueType=Service
ServiceName=PAVFIRES
DisplayName=Panda Firewall Service
Manufacturer=TruPrevent Technologies
Action=NoFix
Condition=Running
SpecialText=Shield.Firewalls.Text
[Shield.HPSecurity]
1=HP RegKey
2=Hewlett-Packard RegKey
3=Hewlett Packard RegKey
4=LEAD Technologies RegKey
5=WoW64 HP RegKey
6=WoW64 Hewlett-Packard RegKey
7=WoW64 Hewlett Packard RegKey
8=WoW64 LEAD Technologies RegKey
[Shield.HP RegKey.500]
IssueType=RegKey
Manufacturer=HP
DisplayName=HP
Key=HKEY_LOCAL_MACHINE\SOFTWARE\HP
Condition=NotWriteable
Action=AutoFix
BlockIfFail=Yes
Recurse=Yes
OverwriteDacl=Yes
CheckAccess=CommonSidList
SetAccess=CommonSidList
Timeout=10
[Shield.HP RegKey.501]
IssueType=RegKey
Manufacturer=HP
DisplayName=HP
Key=HKEY_LOCAL_MACHINE\SOFTWARE\HP
Condition=NotWriteable
Action=AutoFix
BlockIfFail=Yes
Recurse=Yes
OverwriteDacl=Yes
CheckAccess=CommonSidList
SetAccess=CommonSidList
Timeout=10
[Shield.HP RegKey.501_64]
IssueType=RegKey
Manufacturer=HP
DisplayName=HP
Key=HKEY_LOCAL_MACHINE\SOFTWARE\HP
Condition=NotWriteable
Action=AutoFix
BlockIfFail=Yes
Recurse=Yes
OverwriteDacl=Yes
CheckAccess=CommonSidList
SetAccess=CommonSidList
Timeout=10
[Shield.HP RegKey.600]
IssueType=RegKey
Manufacturer=HP
DisplayName=HP
Key=HKEY_LOCAL_MACHINE\SOFTWARE\HP
Condition=NotWriteable
Action=AutoFix
BlockIfFail=Yes
Recurse=Yes
OverwriteDacl=Yes
CheckAccess=CommonSidList
SetAccess=CommonSidList
Timeout=10
[Shield.HP RegKey.600_64]
IssueType=RegKey
Manufacturer=HP
DisplayName=HP
Key=HKEY_LOCAL_MACHINE\SOFTWARE\HP
Condition=NotWriteable
Action=AutoFix
BlockIfFail=Yes
Recurse=Yes
OverwriteDacl=Yes
CheckAccess=CommonSidList
SetAccess=CommonSidList
Timeout=10
[Shield.Hewlett-Packard RegKey.500]
IssueType=RegKey
Manufacturer=HP
DisplayName=Hewlett-Packard
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Hewlett-Packard
Condition=NotWriteable
Action=AutoFix
BlockIfFail=Yes
Recurse=Yes
OverwriteDacl=Yes
CheckAccess=CommonSidList
SetAccess=CommonSidList
Timeout=10
[Shield.Hewlett-Packard RegKey.501]
IssueType=RegKey
Manufacturer=HP
DisplayName=Hewlett-Packard
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Hewlett-Packard
Condition=NotWriteable
Action=AutoFix
BlockIfFail=Yes
Recurse=Yes
OverwriteDacl=Yes
CheckAccess=CommonSidList
SetAccess=CommonSidList
Timeout=10
[Shield.Hewlett-Packard RegKey.501_64]
IssueType=RegKey
Manufacturer=HP
DisplayName=Hewlett-Packard
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Hewlett-Packard
Condition=NotWriteable
Action=AutoFix
BlockIfFail=Yes
Recurse=Yes
OverwriteDacl=Yes
CheckAccess=CommonSidList
SetAccess=CommonSidList
Timeout=10
[Shield.Hewlett-Packard RegKey.600]
IssueType=RegKey
Manufacturer=HP
DisplayName=Hewlett-Packard
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Hewlett-Packard
Condition=NotWriteable
Action=AutoFix
BlockIfFail=Yes
Recurse=Yes
OverwriteDacl=Yes
CheckAccess=CommonSidList
SetAccess=CommonSidList
Timeout=10
[Shield.Hewlett-Packard RegKey.600_64]
IssueType=RegKey
Manufacturer=HP
DisplayName=Hewlett-Packard
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Hewlett-Packard
Condition=NotWriteable
Action=AutoFix
BlockIfFail=Yes
Recurse=Yes
OverwriteDacl=Yes
CheckAccess=CommonSidList
SetAccess=CommonSidList
Timeout=10
[Shield.Hewlett Packard RegKey.500]
IssueType=RegKey
Manufacturer=HP
DisplayName=Hewlett Packard
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Hewlett Packard
Condition=NotWriteable
Action=AutoFix
BlockIfFail=Yes
Recurse=Yes
OverwriteDacl=Yes
CheckAccess=CommonSidList
SetAccess=CommonSidList
Timeout=10
[Shield.Hewlett Packard RegKey.501]
IssueType=RegKey
Manufacturer=HP
DisplayName=Hewlett Packard
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Hewlett Packard
Condition=NotWriteable
Action=AutoFix
BlockIfFail=Yes
Recurse=Yes
OverwriteDacl=Yes
CheckAccess=CommonSidList
SetAccess=CommonSidList
Timeout=10
[Shield.Hewlett Packard RegKey.501_64]
IssueType=RegKey
Manufacturer=HP
DisplayName=Hewlett Packard
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Hewlett Packard
Condition=NotWriteable
Action=AutoFix
BlockIfFail=Yes
Recurse=Yes
OverwriteDacl=Yes
CheckAccess=CommonSidList
SetAccess=CommonSidList
Timeout=10
[Shield.Hewlett Packard RegKey.600]
IssueType=RegKey
Manufacturer=HP
DisplayName=Hewlett Packard
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Hewlett Packard
Condition=NotWriteable
Action=AutoFix
BlockIfFail=Yes
Recurse=Yes
OverwriteDacl=Yes
CheckAccess=CommonSidList
SetAccess=CommonSidList
Timeout=10
[Shield.Hewlett Packard RegKey.600_64]
IssueType=RegKey
Manufacturer=HP
DisplayName=Hewlett Packard
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Hewlett Packard
Condition=NotWriteable
Action=AutoFix
BlockIfFail=Yes
Recurse=Yes
OverwriteDacl=Yes
CheckAccess=CommonSidList
SetAccess=CommonSidList
Timeout=10
[Shield.LEAD Technologies RegKey.500]
IssueType=RegKey
Manufacturer=HP
DisplayName=LEAD Technologies, Inc.
Key=HKEY_LOCAL_MACHINE\SOFTWARE\LEAD Technologies, Inc.
Condition=NotWriteable
Action=AutoFix
BlockIfFail=Yes
Recurse=Yes
OverwriteDacl=Yes
CheckAccess=CommonSidList
SetAccess=CommonSidList
Timeout=10
[Shield.LEAD Technologies RegKey.501]
IssueType=RegKey
Manufacturer=HP
DisplayName=LEAD Technologies, Inc.
Key=HKEY_LOCAL_MACHINE\SOFTWARE\LEAD Technologies, Inc.
Condition=NotWriteable
Action=AutoFix
BlockIfFail=Yes
Recurse=Yes
OverwriteDacl=Yes
CheckAccess=CommonSidList
SetAccess=CommonSidList
Timeout=10
[Shield.LEAD Technologies RegKey.501_64]
IssueType=RegKey
Manufacturer=HP
DisplayName=LEAD Technologies, Inc.
Key=HKEY_LOCAL_MACHINE\SOFTWARE\LEAD Technologies, Inc.
Condition=NotWriteable
Action=AutoFix
BlockIfFail=Yes
Recurse=Yes
OverwriteDacl=Yes
CheckAccess=CommonSidList
SetAccess=CommonSidList
Timeout=10
[Shield.LEAD Technologies RegKey.600]
IssueType=RegKey
Manufacturer=HP
DisplayName=LEAD Technologies, Inc.
Key=HKEY_LOCAL_MACHINE\SOFTWARE\LEAD Technologies, Inc.
Condition=NotWriteable
Action=AutoFix
BlockIfFail=Yes
Recurse=Yes
OverwriteDacl=Yes
CheckAccess=CommonSidList
SetAccess=CommonSidList
Timeout=10
[Shield.LEAD Technologies RegKey.600_64]
IssueType=RegKey
Manufacturer=HP
DisplayName=LEAD Technologies, Inc.
Key=HKEY_LOCAL_MACHINE\SOFTWARE\LEAD Technologies, Inc.
Condition=NotWriteable
Action=AutoFix
BlockIfFail=Yes
Recurse=Yes
OverwriteDacl=Yes
CheckAccess=CommonSidList
SetAccess=CommonSidList
Timeout=10
[Shield.WoW64 HP RegKey.501_64]
IssueType=RegKey
Manufacturer=HP
DisplayName=HP
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\HP
Condition=NotWriteable
Action=AutoFix
BlockIfFail=Yes
Recurse=Yes
OverwriteDacl=Yes
CheckAccess=CommonSidList
SetAccess=CommonSidList
Timeout=10
[Shield.WoW64 HP RegKey.600_64]
IssueType=RegKey
Manufacturer=HP
DisplayName=HP
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\HP
Condition=NotWriteable
Action=AutoFix
BlockIfFail=Yes
Recurse=Yes
OverwriteDacl=Yes
CheckAccess=CommonSidList
SetAccess=CommonSidList
Timeout=10
[Shield.WoW64 Hewlett-Packard RegKey.501_64]
IssueType=RegKey
Manufacturer=HP
DisplayName=Hewlett-Packard
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Hewlett-Packard
Condition=NotWriteable
Action=AutoFix
BlockIfFail=Yes
Recurse=Yes
OverwriteDacl=Yes
CheckAccess=CommonSidList
SetAccess=CommonSidList
Timeout=10
[Shield.WoW64 Hewlett-Packard RegKey.600_64]
IssueType=RegKey
Manufacturer=HP
DisplayName=Hewlett-Packard
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Hewlett-Packard
Condition=NotWriteable
Action=AutoFix
BlockIfFail=Yes
Recurse=Yes
OverwriteDacl=Yes
CheckAccess=CommonSidList
SetAccess=CommonSidList
Timeout=10
[Shield.WoW64 Hewlett Packard RegKey.501_64]
IssueType=RegKey
Manufacturer=HP
DisplayName=Hewlett Packard
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Hewlett Packard
Condition=NotWriteable
Action=AutoFix
BlockIfFail=Yes
Recurse=Yes
OverwriteDacl=Yes
CheckAccess=CommonSidList
SetAccess=CommonSidList
Timeout=10
[Shield.WoW64 Hewlett Packard RegKey.600_64]
IssueType=RegKey
Manufacturer=HP
DisplayName=Hewlett Packard
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Hewlett Packard
Condition=NotWriteable
Action=AutoFix
BlockIfFail=Yes
Recurse=Yes
OverwriteDacl=Yes
CheckAccess=CommonSidList
SetAccess=CommonSidList
Timeout=10
[Shield.WoW64 LEAD Technologies RegKey.501_64]
IssueType=RegKey
Manufacturer=HP
DisplayName=LEAD Technologies, Inc.
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\LEAD Technologies, Inc.
Condition=NotWriteable
Action=AutoFix
BlockIfFail=Yes
Recurse=Yes
OverwriteDacl=Yes
CheckAccess=CommonSidList
SetAccess=CommonSidList
Timeout=10
[Shield.WoW64 LEAD Technologies RegKey.600_64]
IssueType=RegKey
Manufacturer=HP
DisplayName=LEAD Technologies, Inc.
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\LEAD Technologies, Inc.
Condition=NotWriteable
Action=AutoFix
BlockIfFail=Yes
Recurse=Yes
OverwriteDacl=Yes
CheckAccess=CommonSidList
SetAccess=CommonSidList
Timeout=10
[Shield.CommonSidList]
S-1-5-32-544=0x000f003f
S-1-5-18=0x000f003f
S-1-5-32-545=0x00020019
[Shield.SystemAccess]
S-1-1-0=0x00020019
S-1-5-18=0x000f003f
[Shield.ReadOnlyPNFs.500]
IssueType=File
launchbase=%sourcepath%setup\
Manufacturer=Microsoft
DisplayName=Read Only PNF files
Action=Autofix
FileName=%system%attrib.exe
Condition=Exists
1=hpzwrp01.exe -m SetPnfAttrib
[Shield.ReadOnlyPNFs.501]
IssueType=File
launchbase=%sourcepath%setup\
Manufacturer=Microsoft
DisplayName=Read Only PNF files
Action=Autofix
FileName=%system%attrib.exe
Condition=Exists
1=hpzwrp01.exe -m SetPnfAttrib
[Shield.ReadOnlyPNFs.501_64]
IssueType=File
launchbase=%sourcepath%setup\
Manufacturer=Microsoft
DisplayName=Read Only PNF files
Action=Autofix
FileName=%system%attrib.exe
Condition=Exists
1=hpzwrp01.exe -m SetPnfAttrib
[Shield.ReadOnlyPNFs.600]
IssueType=File
launchbase=%sourcepath%setup\
Manufacturer=Microsoft
DisplayName=Read Only PNF files
Action=Autofix
FileName=%system%attrib.exe
Condition=Exists
1=hpzwrp01.exe -m SetPnfAttrib
[Shield.ReadOnlyPNFs.600_64]
IssueType=File
launchbase=%sourcepath%setup\
Manufacturer=Microsoft
DisplayName=Read Only PNF files
Action=Autofix
FileName=%system%attrib.exe
Condition=Exists
1=hpzwrp01.exe -m SetPnfAttrib
[SetPnfAttrib]
Open=%system%attrib -r %windows%inf\oem*.pnf
[Shield.DelayedReboot]
1=CheckForFiles
[Shield.CheckForFiles]
IssueType=RebootFile
Manufacturer=HP
Action=Autofix
1=Digital Imaging
2=%division%
3=system32\hpz
4=system\hpz
5=hpf
6=twain_32\hpsj
Return=Reboot
BlockIfFail=No
result=Reboot
[Shield.DelayedRebootCUE]
1=CUECheckForFiles
[Shield.CUECheckForFiles]
IssueType=RebootFile
Manufacturer=HP
Action=Autofix
1=Digital Imaging
Return=Reboot
BlockIfFail=No
result=Reboot
[Shield.CryptSvc.501]
IssueType=Service
ServiceName=Cryptsvc
Manufacturer=Microsoft
Action=AUTOFIX
Condition=STOPPED
DisplayName=Windows Cryptographic Service
BlockIfFail=Yes
[Shield.CryptSvc.501_64]
IssueType=Service
ServiceName=Cryptsvc
Manufacturer=Microsoft
Action=AUTOFIX
Condition=STOPPED
DisplayName=Windows Cryptographic Service
BlockIfFail=Yes
[Shield.CryptSvc.600]
IssueType=Service
ServiceName=Cryptsvc
Manufacturer=Microsoft
Action=AUTOFIX
Condition=STOPPED
DisplayName=Windows Cryptographic Service
BlockIfFail=Yes
[Shield.CryptSvc.600_64]
IssueType=Service
ServiceName=Cryptsvc
Manufacturer=Microsoft
Action=AUTOFIX
Condition=STOPPED
DisplayName=Windows Cryptographic Service
BlockIfFail=Yes
[Shield.softpubDll.500]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=~Exist
Key=HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\Providers\Trust\Initialization\{64B9D180-8DA2-11CF-8736-00AA00A485EB}
DisplayName=softpub.dll
BlockIfFail=Yes
1=regsvr32 /s softpub.dll
[Shield.softpubDll.501]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=~Exist
Key=HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\Providers\Trust\Initialization\{64B9D180-8DA2-11CF-8736-00AA00A485EB}
DisplayName=softpub.dll
BlockIfFail=Yes
1=regsvr32 /s softpub.dll
[Shield.softpubDll.501_64]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=~Exist
Key=HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\Providers\Trust\Initialization\{64B9D180-8DA2-11CF-8736-00AA00A485EB}
DisplayName=softpub.dll
BlockIfFail=Yes
1=regsvr32 /s softpub.dll
[Shield.softpubDll.600]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=~Exist
Key=HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\Providers\Trust\Initialization\{64B9D180-8DA2-11CF-8736-00AA00A485EB}
DisplayName=softpub.dll
BlockIfFail=Yes
1=regsvr32 /s softpub.dll
[Shield.softpubDll.600_64]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=~Exist
Key=HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\Providers\Trust\Initialization\{64B9D180-8DA2-11CF-8736-00AA00A485EB}
DisplayName=softpub.dll
BlockIfFail=Yes
1=regsvr32 /s softpub.dll
[Shield.Wow64softpubDll.501_64]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=~Exist
Key=HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Cryptography\Providers\Trust\Initialization\{64B9D180-8DA2-11CF-8736-00AA00A485EB}
DisplayName=softpub.dll
BlockIfFail=Yes
1=%SYSWOW64%regsvr32 /s softpub.dll
[Shield.Wow64softpubDll.600_64]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=~Exist
Key=HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Cryptography\Providers\Trust\Initialization\{64B9D180-8DA2-11CF-8736-00AA00A485EB}
DisplayName=softpub.dll
BlockIfFail=Yes
1=%SYSWOW64%regsvr32 /s softpub.dll
[Shield.wintrustDll.500]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=~Exist
Key=HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.15
DisplayName=wintrust.dll
BlockIfFail=Yes
1=regsvr32 /s wintrust.dll
[Shield.wintrustDll.501]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=~Exist
Key=HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.15
DisplayName=wintrust.dll
BlockIfFail=Yes
1=regsvr32 /s wintrust.dll
[Shield.wintrustDll.501_64]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=~Exist
Key=HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.15
DisplayName=wintrust.dll
BlockIfFail=Yes
1=regsvr32 /s wintrust.dll
[Shield.wintrustDll.600]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=~Exist
Key=HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.15
DisplayName=wintrust.dll
BlockIfFail=Yes
1=regsvr32 /s wintrust.dll
[Shield.wintrustDll.600_64]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=~Exist
Key=HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.15
DisplayName=wintrust.dll
BlockIfFail=Yes
1=regsvr32 /s wintrust.dll
[Shield.Wow64wintrustDll.501_64]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=~Exist
Key=HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.15
DisplayName=wintrust.dll
BlockIfFail=Yes
1=%SYSWOW64%regsvr32 /s wintrust.dll
[Shield.Wow64wintrustDll.600_64]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=~Exist
Key=HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.15
DisplayName=wintrust.dll
BlockIfFail=Yes
1=%SYSWOW64%regsvr32 /s wintrust.dll
[Shield.initpkiDll.500]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=~Exist
Key=HKEY_CLASSES_ROOT\CLSID\{7444C717-39BF-11D1-8CD9-00C04FC29D45}\ProgID
DisplayName=initpki.dll
BlockIfFail=Yes
1=regsvr32 /s initpki.dll
[Shield.initpkiDll.501]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=~Exist
Key=HKEY_CLASSES_ROOT\CLSID\{7444C717-39BF-11D1-8CD9-00C04FC29D45}\ProgID
DisplayName=initpki.dll
BlockIfFail=Yes
1=regsvr32 /s initpki.dll
[Shield.initpkiDll.501_64]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=~Exist
Key=HKEY_CLASSES_ROOT\CLSID\{7444C717-39BF-11D1-8CD9-00C04FC29D45}\ProgID
DisplayName=initpki.dll
BlockIfFail=Yes
1=regsvr32 /s initpki.dll
[Shield.cryptextDll.600]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=~Exist
Key=HKEY_CLASSES_ROOT\CLSID\{7444C717-39BF-11D1-8CD9-00C04FC29D45}\ProgID
DisplayName=cryptext.dll
BlockIfFail=Yes
1=regsvr32 /s cryptext.dll
[Shield.cryptextDll.600_64]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=~Exist
Key=HKEY_CLASSES_ROOT\CLSID\{7444C717-39BF-11D1-8CD9-00C04FC29D45}\ProgID
DisplayName=cryptext.dll
BlockIfFail=Yes
1=regsvr32 /s cryptext.dll
[Shield.dssenhDll.500]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=~Exist
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Defaults\Provider\Microsoft Base DSS Cryptographic Provider
BlockIfFail=Yes
DisplayName=dssbase.dll
1=regsvr32 /s dssbase.dll
[Shield.dssenhDll.501]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=~Exist
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Defaults\Provider\Microsoft Base DSS Cryptographic Provider
BlockIfFail=Yes
DisplayName=dssenh.dll
1=regsvr32 /s dssenh.dll
[Shield.dssenhDll.501_64]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=~Exist
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Defaults\Provider\Microsoft Base DSS Cryptographic Provider
BlockIfFail=Yes
DisplayName=dssenh.dll
1=regsvr32 /s dssenh.dll
[Shield.dssenhDll.600]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=~Exist
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Defaults\Provider\Microsoft Base DSS Cryptographic Provider
BlockIfFail=Yes
DisplayName=dssenh.dll
1=regsvr32 /s dssenh.dll
[Shield.dssenhDll.600_64]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=~Exist
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Defaults\Provider\Microsoft Base DSS Cryptographic Provider
BlockIfFail=Yes
DisplayName=dssenh.dll
1=regsvr32 /s dssenh.dll
[Shield.Wow64dssenhDll.501_64]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=~Exist
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\Defaults\Provider\Microsoft Base DSS Cryptographic Provider
BlockIfFail=Yes
DisplayName=dssenh.dll
1=%SYSWOW64%regsvr32 /s dssenh.dll
[Shield.Wow64dssenhDll.600_64]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=~Exist
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\Defaults\Provider\Microsoft Base DSS Cryptographic Provider
BlockIfFail=Yes
DisplayName=dssenh.dll
1=%SYSWOW64%regsvr32 /s dssenh.dll
[Shield.rsaenhDll.500]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=~Exist
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Defaults\Provider\Microsoft Base Cryptographic Provider v1.0
BlockIfFail=Yes
DisplayName=rsabase.dll
1=regsvr32 /s rsabase.dll
[Shield.rsaenhDll.501]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=~Exist
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Defaults\Provider\Microsoft Base Cryptographic Provider v1.0
BlockIfFail=Yes
DisplayName=rsaenh.dll
1=regsvr32 /s rsaenh.dll
[Shield.rsaenhDll.501_64]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=~Exist
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Defaults\Provider\Microsoft Base Cryptographic Provider v1.0
BlockIfFail=Yes
DisplayName=rsaenh.dll
1=regsvr32 /s rsaenh.dll
[Shield.rsaenhDll.600]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=~Exist
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Defaults\Provider\Microsoft Base Cryptographic Provider v1.0
BlockIfFail=Yes
DisplayName=rsaenh.dll
1=regsvr32 /s rsaenh.dll
[Shield.rsaenhDll.600_64]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=~Exist
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Defaults\Provider\Microsoft Base Cryptographic Provider v1.0
BlockIfFail=Yes
DisplayName=rsaenh.dll
1=regsvr32 /s rsaenh.dll
[Shield.Wow64rsaenhDll.501_64]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=~Exist
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\Defaults\Provider\Microsoft Base Cryptographic Provider v1.0
BlockIfFail=Yes
DisplayName=rsaenh.dll
1=%SYSWOW64%regsvr32 /s rsaenh.dll
[Shield.Wow64rsaenhDll.600_64]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=~Exist
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\Defaults\Provider\Microsoft Base Cryptographic Provider v1.0
BlockIfFail=Yes
DisplayName=rsaenh.dll
1=%SYSWOW64%regsvr32 /s rsaenh.dll
[Shield.gpkcspDll.500]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=~Exist
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Defaults\Provider\Gemplus GemSAFE Card CSP v1.0
DisplayName=gpkcsp.dll
BlockIfFail=Yes
1=regsvr32 /s gpkcsp.dll
[Shield.gpkcspDll.501]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=~Exist
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Defaults\Provider\Gemplus GemSAFE Card CSP v1.0
DisplayName=gpkcsp.dll
BlockIfFail=Yes
1=regsvr32 /s gpkcsp.dll
[Shield.gpkcspDll.501_64]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=~Exist
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Defaults\Provider\Gemplus GemSAFE Card CSP v1.0
DisplayName=gpkcsp.dll
BlockIfFail=Yes
1=regsvr32 /s gpkcsp.dll
[Shield.Wow64gpkcspDll.501_64]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=~Exist
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\Defaults\Provider\Gemplus GemSAFE Card CSP v1.0
DisplayName=gpkcsp.dll
BlockIfFail=Yes
1=%SYSWOW64%regsvr32 /s gpkcsp.dll
[Shield.sccbaseDll.501]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=~Exist
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Defaults\Provider\Infineon SICRYPT Base Smart Card CSP
DisplayName=sccbase.dll
BlockIfFail=Yes
1=regsvr32 /s sccbase.dll
[Shield.sccbaseDll.501_64]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=~Exist
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Defaults\Provider\Infineon SICRYPT Base Smart Card CSP
DisplayName=sccbase.dll
BlockIfFail=Yes
1=regsvr32 /s sccbase.dll
[Shield.Wow64sccbaseDll.501_64]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=~Exist
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\Defaults\Provider\Infineon SICRYPT Base Smart Card CSP
DisplayName=sccbase.dll
BlockIfFail=Yes
1=%SYSWOW64%regsvr32 /s sccbase.dll
[Shield.slbcspDll.500]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=~Exist
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Defaults\Provider\Schlumberger Cryptographic Service Provider
DisplayName=slbcsp.dll
BlockIfFail=Yes
1=regsvr32 /s slbcsp.dll
[Shield.slbcspDll.501]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=~Exist
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Defaults\Provider\Schlumberger Cryptographic Service Provider
DisplayName=slbcsp.dll
BlockIfFail=Yes
1=regsvr32 /s slbcsp.dll
[Shield.slbcspDll.501_64]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=~Exist
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Defaults\Provider\Schlumberger Cryptographic Service Provider
DisplayName=slbcsp.dll
BlockIfFail=Yes
1=regsvr32 /s slbcsp.dll
[Shield.Wow64slbcspDll.501_64]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=~Exist
Key=HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Cryptography\Defaults\Provider\Schlumberger Cryptographic Service Provider
DisplayName=slbcsp.dll
BlockIfFail=Yes
1=%SYSWOW64%regsvr32 /s slbcsp.dll
[Shield.cryptdlgDll.500]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=~Exist
Key=HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.16.1.1
DisplayName=cryptdlg.dll
BlockIfFail=Yes
1=regsvr32 /s cryptdlg.dll
[Shield.cryptdlgDll.501]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=~Exist
Key=HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.16.1.1
DisplayName=cryptdlg.dll
BlockIfFail=Yes
1=regsvr32 /s cryptdlg.dll
[Shield.cryptdlgDll.501_64]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=~Exist
Key=HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.16.1.1
DisplayName=cryptdlg.dll
BlockIfFail=Yes
1=regsvr32 /s cryptdlg.dll
[Shield.cryptdlgDll.600]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=~Exist
Key=HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.16.1.1
DisplayName=cryptdlg.dll
BlockIfFail=Yes
1=regsvr32 /s cryptdlg.dll
[Shield.cryptdlgDll.600_64]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=~Exist
Key=HKEY_LOCAL_MACHINE\Software\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.16.1.1
DisplayName=cryptdlg.dll
BlockIfFail=Yes
1=regsvr32 /s cryptdlg.dll
[Shield.Wow64cryptdlgDll.501_64]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=~Exist
Key=HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.16.1.1
DisplayName=cryptdlg.dll
BlockIfFail=Yes
1=%SYSWOW64%regsvr32 /s cryptdlg.dll
[Shield.Wow64cryptdlgDll.600_64]
Manufacturer=Microsoft
IssueType=RegKey
Action=Autofix
Condition=~Exist
Key=HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.16.1.1
DisplayName=cryptdlg.dll
BlockIfFail=Yes
1=%SYSWOW64%regsvr32 /s cryptdlg.dll
[Shield.SLPService]
1=hpslpsvc
[Shield.hpslpsvc]
IssueType=Service
ServiceName=HPSLPSVC32
Manufacturer=Hewlett-Packard
DisplayName=HP Network Devices Support
BlockIfFail=Yes
[Shield.hpslpsvc.501_64]
IssueType=Service
ServiceName=HPSLPSVC64
Manufacturer=Hewlett-Packard
DisplayName=HP Network Devices Support
BlockIfFail=Yes
[Shield.hpslpsvc.600_64]
IssueType=Service
ServiceName=HPSLPSVC64
Manufacturer=Hewlett-Packard
DisplayName=HP Network Devices Support
BlockIfFail=Yes
[Shield.CloseManagerOfTrayApp]
1=StopCtxManService
2=StopDDService
[Shield.StopCtxManService]
IssueType=Service
ServiceName=hpqcxs08
Manufacturer=HP
Action=AutoFix
Condition=Running
DisplayName=HP Context Manager Service
BlockIfFail=Yes
[Shield.StopDDService]
IssueType=Service
ServiceName=hpqddsvc
Manufacturer=HP
Action=AutoFix
Condition=Running
DisplayName=HP CUE DeviceDiscovery Service
BlockIfFail=Yes
[Shield.Roxio.Text.0x1]
1=åÐÇ ÇáÈÑäÇãÌ ãËÈÊ æáßäå áÇ íÊæÇÝÞ ãÚ åÐÇ ÇáÈÑäÇãÌ ÇáÌÏíÏ.
2=íÌÈ Úáíß ÅãÇ ÅáÛÇÁ ÊËÈíÊ åÐÇ ÇáÈÑäÇãÌ Ãæ ÊÑÞíÊå ÞÈá ÇáÇÓÊãÑÇÑ Ýí ÚãáíÉ ÇáÊËÈíÊ.
3=áÅáÛÇÁ ÊËÈíÊ åÐÇ ÇáÈÑäÇãÌ, ÇäÊÞá Åáì 'ÅÖÇÝÉ/ÅÒÇáÉ ÇáÈÑÇãÌ' Ýí 'áæÍÉ ÇáÊÍßã' áÜWindow.
4=ÅÐÇ ÇÎÊÑÊ ÊÑÞíÉ åÐÇ ÇáÈÑäÇãÌ, ÒÑ http://www.roxio.com/en/support/ecdc/ecdc_plat_535_updt.jhtml ááÊÓÌíá æÞã ÈÊÍãíá ÇáÊÑÞíÉ.
5=ÊÃßÏ ãä ÊÑÞíÉ ÇáÈÑäÇãÌ Ãæ ÅáÛÇÁ ÊËÈíÊå Ëã ÇäÞÑ ÝæÞ 'ÅÚÇÏÉ ÇáãÍÇæáÉ' ááÇÓÊãÑÇÑ Ýí ÚãáíÉ ÇáÊËÈíÊ.
[Shield.Firewalls.Text.0X1]
1=Êã ÇáßÔÝ Úáì ÈÑäÇãÌ ÌÏÇÑ ÇáÍãÇíÉ Ýí ÌåÇÒ ÇáßãÈíæÊÑ. ÞÏ íÞæã ÌÏÇÑ ÇáÍãÇíÉ åÐÇ ÈÚÑÖ ÍæÇÑÇÊ ÊäÈíå ÊÊÚáÞ ÈÚãáíÉ ÇáÊËÈíÊ.
2=íÑÌì ÇáÓãÇÍ áÈÑÇãÌ HP ÈÇáãÊÇÈÚÉ ÚäÏãÇ ÊÑì ÅÍÏì åÐå ÇáÊäÈíåÇÊ.
3=ÈÚÖ ÇáãÕØáÍÇÊ ÇáãÓÊÎÏãÉ ÔíæÚðÇ áÓãÇÍ ÇáÅÌÑÇÁ ÈÇáãÊÇÈÚÉ åí: ÅáÛÇÁ ÇáÞÝá, äÚã, ÇáÓãÇÍ æÅÊÇÍÉ ÇáÅÐä.
4=ãä ÇáãÍÊãá Ãä íÄÏí ÍÙÑ ÈÑäÇãÌ ÇáÊËÈíÊ Åáì ÝÔá ÇáÊËÈíÊ.
[Shield.Roxio.Text.0x404]
1=¦w¸Ëªº¦¹µ{¦¡»P¥»³nÅ餣¬Û®e¡C
2=±z¥²¶·¸Ñ°£¦w¸Ë©Î¤É¯Å¦¹µ{¦¡¡A¦w¸Ë¤~¯àÄ~Äò¡C
3=­n¸Ñ°£¦w¸Ë¦¹µ{¦¡¡A½Ð¦Ü Windows [±±¨î¥x] ¤¤ªº [·s¼W/²¾°£µ{¦¡]¡C
4=¦pªG±z¿ï¾Ü¤É¯Å¦¹µ{¦¡¡A½Ð³y³X http://www.roxio.com/en/support/ecdc/ecdc_plat_535_updt.jhtml¡Aµn¿ýµM«á¤U¸ü¤É¯Å¡C
5=½Ð½T»{µ{¦¡¤w¤É¯Å©Î¤w¸Ñ°£¦w¸Ë¡AµM«á«ö¤@¤U [­«¸Õ] Ä~Äò¦w¸Ë¡C
[Shield.Firewalls.Text.0X404]
1=¦b¦¹¹q¸£¤W°»´ú¨ì¦³¨¾¤õÀð³nÅé¡C¦¹¨¾¤õÀð¥i¯à·|Åã¥Ü»P¦w¸Ë¦³ÃöªºÄµ¥Ü¹ï¸Ü¤è¶ô¡C
2=·í±z¬d¬Ý³o¨Çĵ§i¤¤ªº¨ä¤¤¤@­Óĵ§i®É¡A½Ð¤¹³\¨Ï¥Î HP µ{¦¡¶i¦æ³B²z¡C
3=¤¹³\µ{¦¡°õ¦æªº³¡¤À±`¥Î³N»y¦³¡G¥¼«ÊÂê¡B¬O¡B¤¹³\©M­ã³\¡C
4=«ÊÂê¦w¸Ëµ{¦¡±N¥i¯à¾É­P¦w¸Ë¥¢±Ñ¡C
[Shield.Roxio.Text.0x804]
1=°²×°µÄ´Ë³ÌÐòÓë±¾Èí¼þ²»¼æÈÝ¡£
2=Äú±ØÐëжÔØ»òÉý¼¶´Ë³ÌÐò£¬²ÅÄܼÌÐø°²×°¡£
3=ҪжÔش˳ÌÐò£¬Çëתµ½ Windows ¿ØÖÆÃæ°åÖеġ°Ìí¼Ó/ɾ³ý³ÌÐò¡±¡£
4=Èç¹ûÄúÑ¡ÔñÉý¼¶´Ë³ÌÐò£¬Çë·ÃÎÊ http://www.roxio.com/en/support/ecdc/ecdc_plat_535_updt.jhtml ×¢²á²¢ÏÂÔØÉý¼¶³ÌÐò¡£
5=ÇëÈ·±£¸Ã³ÌÐòÒÑÉý¼¶»òжÔØ£¬È»ºóµ¥»÷¡°ÖØÊÔ¡±¼ÌÐø°²×°¡£
[Shield.Firewalls.Text.0x804]
1=ÔÚ¼ÆËã»úÉϼì²âµ½·À»ðǽÈí¼þ¡£´Ë·À»ðǽ¿ÉÄÜÏÔʾÓë°²×°Óйصľ¯¸æ¶Ô»°¿ò¡£
2=µ±¿´µ½ÕâЩ¾¯±¨ÖеÄÈÎÒ»¸öʱ£¬ÇëÔÊÐí HP ³ÌÐò¼ÌÐøÖ´ÐС£
3=ÔÊÐíÒ»¸ö½ø³ÌÔËÐеÄһЩ³£¼û£¨Òѱ»²ÉÓõģ©ÊõÓï°üÀ¨£ºÈ¡Ïû×èÖ¹¡¢ÊǺÍÔÊÐí¡£
4=×èÖ¹°²×°³ÌÐòºÜ¿ÉÄܵ¼Ö°²×°Ê§°Ü¡£
[Shield.Roxio.Text.0x405]
1=Tento program je nainstalován a není se softwarem kompatibilní.
2=Než bude možné pokraèovat v instalaci, musíte tento program odinstalovat nebo aktualizovat.
3=Chcete-li tento program odinstalovat, pøejdìte v systému Windows na Ovládací panely a vyberte položku Pøidat nebo odebrat programy.
4=Pokud se rozhodnete tento program aktualizovat, mùžete si aktualizaci stáhnout a registrovat na stránce http://www.roxio.com/en/support/ecdc/ecdc_plat_535_updt.jhtml.
5=Zkontrolujte, zda je prográm aktualizován nebo odinstalován. Poté pokraèujte v instalaci klepnutím na tlaèítko Opakovat.
[Shield.Firewalls.Text.0X405]
1=Na tomto poèítaèi byl rozpoznán software bezpeènostní brány. Tento firewall mùže zobrazovat upozornìní týkající se instalace.
2=Když se objeví nìkteré z varovných upozornìní, umožnìte prosím další bìh programù spoleènosti HP.
3=Nìkteré z obvyklých výrazù, které se používají pro povolení bìhu programu jsou: Odblokovat, Ano, Umožnit a Povolit.
4=Blokování instalaèního programu pravdìpodobnì zabrání úspìšné instalaci aplikace.
[Shield.Roxio.Text.0x406]
1=Dette program er installeret og er inkompatibel med denne software.
2=Du skal enten fjerne eller opgradere programmet, før du fortsætter denne installation.
3=Åbn kontrolpanelet i Windows, og vælg Tilføj/fjern programmer for at fjerne programmet.
4=Hvis du vælger at opgradere det pågældende program, skal du besøge http://www.roxio.com/en/support/ecdc/ecdc_plat_535_updt.jhtml for at registrere og hente opgraderingen.
5=Kontroller, at programmet er opgraderet eller fjernet, og klik derefter på Forsøg igen for at fortsætte installationen.
[Shield.Firewalls.Text.0X406]
1=Der blev fundet firewall-software på denne computer. Denne firewall viser muligvis advarsler i forbindelse med installationen.
2=Lad HP-programmer fortsætte, når du ser en af disse advarsler.
3=De mest almindelige ord, der bruges til lade en proces fortsætte, er: Fjern blokering, Ja og Tillad.
4=Hvis du blokerer et installationsprogram, gennemføres installationen sandsynligvis ikke.
[Shield.Roxio.Text.0x407]
1=Diese Anwendung ist installiert und mit dieser Software inkompatibel.
2=Bevor Sie mit der Installation fortfahren, müssen Sie diese Anwendung entweder deinstallieren oder aktualisieren.
3=Die Anwendung kann in der Windows-Systemsteuerung unter 'Software' deinstalliert werden.
4=Wenn Sie diese Anwendung aktualisieren möchten, besuchen Sie http://www.roxio.com/en/support/ecdc/ecdc_plat_535_updt.jhtml für die Registrierung und den Download der neuesten Version.
5=Stellen Sie sicher, dass die Anwendung aktualisiert oder deinstalliert wurde, und klicken Sie anschließend auf 'Wiederholen', um die Installation fortzusetzen.
[Shield.Firewalls.Text.0X407]
1=Auf diesem Computer ist Firewall-Software vorhanden. Von dieser Firewall werden ggf. Warnmeldungen in Bezug auf die Installation angezeigt.
2=Bitte erlauben Sie HP Programmen fortzufahren, wenn eine dieser Warnungen angezeigt wird.
3=Einige häufige Begriffe, die ein Fortfahren ermöglichen, lauten: Entsperren, Ja, Erlauben und Zulassen.
4=Wenn Sie ein Installationsprogramm sperren, wird die Installation nicht ausgeführt.
[Shield.Roxio.Text.0x408]
1=Ôï ðñüãñáììá áõôü Ý÷åé åãêáôáóôáèåß êáé äåí åßíáé óõìâáôü ìå áõôü ôï ëïãéóìéêü.
2=ÐñÝðåé åßôå íá êáôáñãÞóåôå ôçí åãêáôÜóôáóç åßôå íá áíáâáèìßóåôå áõôü ôï ðñüãñáììá ðñéí óõíå÷ßóåôå áõôÞí ôçí åãêáôÜóôáóç.
3=Ãéá íá êáôáñãÞóåôå ôçí åãêáôÜóôáóç áõôïý ôïõ ðñïãñÜììáôïò, ðçãáßíåôå óôï "Add/Remove Programs" ("Ðñïóèáöáßñåóç ðñïãñáììÜôùí") óôïí Ðßíáêá åëÝã÷ïõ.
4=ÅÜí åðéëÝîåôå íá áíáâáèìßóåôå áõôü ôï ðñüãñáììá, åðéóêåöèåßôå ôï http://www.roxio.com/en/support/ecdc/ecdc_plat_535_updt.jhtml ãéá íá åããñáöåßôå êáé íá ðñáãìáôïðïéÞóåôå ëÞøç ôçò áíáâÜèìéóçò.
5=Âåâáéùèåßôå üôé Ý÷åé ðñáãìáôïðïéçèåß áíáâÜèìéóç Þ êáôÜñãçóç åãêáôÜóôáóçò ôïõ ðñïãñÜììáôïò êáé Ýðåéôá êÜíôå êëéê óôçí åðéëïãÞ "ÅðáíÜëçøç" ãéá íá óõíå÷ßóåôå ôçí åãêáôÜóôáóç.
[Shield.Firewalls.Text.0X408]
1=Áíé÷íåýèçêå ëïãéóìéêü ôåß÷ïõò ðñïóôáóßáò óå áõôü ôïí õðïëïãéóôÞ. Áõôü ôï ôåß÷ïò ðñïóôáóßáò åíäÝ÷åôáé íá åìöáíßæåé óôçí ïèüíç ðëáßóéá äéáëüãïõ åéäïðïßçóçò ðïõ ó÷åôßæïíôáé ìå ôçí åãêáôÜóôáóç.
2=ÅðéôñÝøôå óôá ðñïãñÜììáôá ôçò HP íá ðñï÷ùñÞóïõí üôáí äåßôå êÜðïéá áðü áõôÝò ôéò ðñïåéäïðïéÞóåéò.
3=ÊÜðïéïé áðü ôïõò êïéíïýò üñïõò ðïõ åðéôñÝðïõí óå ìéá äéáäéêáóßá íá ðñï÷ùñÞóåé åßíáé: ÎåìðëïêÜñéóìá, Íáé, Áðïäï÷Þ, ÓõíÝ÷åéá.
4=Ôï ìðëïêÜñéóìá åíüò ðñïãñÜììáôïò åãêáôÜóôáóçò èá Ý÷åé ðéèáíþò ùò áðïôÝëåóìá ôçí áðïôõ÷ßá ôçò åãêáôÜóôáóçò.
[Shield.Roxio.Text.0x409]
1=This program is installed and is incompatible with this software.
2=You must either uninstall or upgrade this program before continuing this installation.
3=To uninstall this program, go to Add/Remove Programs in the Windows Control Panel.
4=If you choose to upgrade this program, visit http://www.roxio.com/en/support/ecdc/ecdc_plat_535_updt.jhtml to register and download the upgrade.
5=Ensure the program is upgraded or uninstalled and then click Retry to continue installation.
[Shield.Firewalls.Text.0X409]
1=Firewall software has been detected on this computer.This firewall might display alert dialogs related to the installation.
2=Please allow HP programs to proceed when you see one of these alerts.
3=Some commonly used terms to allow a process to proceed are: Unblock, Yes, Allow, and Permit.
4=Blocking an installation program will likely cause the installation to fail.
[Shield.Roxio.Text.0x40a]
1=El programa está instalado y es compatible con este software.
2=Antes de continuar con la instalación, debe desinstalar o actualizar este programa.
3=Para desinstalar este programa, vaya a Agregar o quitar programas en el Panel de control de Windows.
4=Si decide actualizar el programa, visite http://www.roxio.com/en/support/ecdc/ecdc_plat_535_updt.jhtml para registrarse y descargar la actualización.
5=Asegúrese de que el programa está actualizado o desinstalado y, a continuación, haga clic en Reintentar para continuar con la instalación.
[Shield.Firewalls.Text.0X40a]
1=Se ha detectado software de servidor de seguridad en este equipo. Es posible que el firewall muestre diálogos de advertencia relacionados con el proceso de instalación.
2=Cuando aparezca uno de estos avisos, permita que los programas de HP se sigan ejecutando.
3=Algunos términos utilizados habitualmente para permitir la ejecución de un proceso son: Desbloquear, Sí y Permitir.
4=Si se bloquea un programa de instalación, es muy probable que no se lleve a cabo la instalación.
[Shield.Roxio.Text.0x40b]
1=Tämä ohjelma on asennettu, eikä se ole yhteensopiva ohjelmiston kanssa.
2=Sinun on poistettava tai päivitettävä ohjelma, ennen kuin jatkat asentamista.
3=Voit poistaa ohjelman valitsemalla Windowsin Ohjauspaneelista Lisää tai poista sovellus.
4=Jos päätät päivittää tämän ohjelman, rekisteröi ja lataa päivitys osoitteessa http://www.roxio.com/en/support/ecdc/ecdc_plat_535_updt.jhtml.
5=Varmista, että ohjelma on päivitetty tai poistettu. Jatka sitten asennusta valitsemalla Yritä uudelleen.
[Shield.Firewalls.Text.0X40b]
1=Tietokoneessa on havaittu palomuuriohjelmisto. Palomuuri saattaa näyttää asennukseen liittyviä hälytysikkunoita.
2=Jos näyttöön tulee jokin näistä varoituksista, anna HP:n ohjelmien jatkaa toimintaansa.
3=Toiminnon jatkaminen sallitaan tavallisesti komennolla Salli tai Kyllä.
4=Asennusohjelman toiminnan estäminen keskeyttää asennuksen.
[Shield.Roxio.Text.0x40c]
1=Ce programme est installé mais n'est pas compatible avec ce logiciel.
2=Vous devez désinstaller ou mettre à niveau ce programme pour poursuivre l'installation.
3=Pour désinstaller ce programme, ouvrez la fenêtre Ajout/Suppression de programmes du Panneau de configuration Windows.
4=Si vous choisissez de mettre à niveau ce programme, visitez
0
jorginho67 Messages postés 14716 Date d'inscription mardi 11 septembre 2007 Statut Contributeur sécurité Dernière intervention 11 février 2011 1 169
16 déc. 2008 à 01:08
Arffff tu n'as pas tout lu... ;-p

Process.exe est détecté par certains antivirus (AntiVir, Dr.Web, Kaspersky Anti-Virus) comme étant un RiskTool.
Il ne s'agit pas d'un virus, mais d'un utilitaire destiné à mettre fin à des processus.
Mis entre de mauvaises mains, cet utilitaire pourrait arrêter des logiciels de sécurité (Antivirus, Firewall...) d'où l'alerte émise par ces antivirus.


On continue !

Télécharge HostsXpert sur ton Bureau :
http://www.funkytoad.com/download/HostsXpert.zip

Décompresse-le (Clic droit >> Extraire ici)

Double-clique sur HostsXpert pour le lancer

clique sur le bouton "Restore MS Hosts File" puis ferme le programme

/!\ Avant de cliquer sur le bouton "Restore MS Hosts File", vérifie que le cadenas en haut à gauche est ouvert sinon tu vas avoir un message d'erreur /!\.


Ensuite :

Option 2

Redémarre en mode sans échec

Pour cela, tapotes la touche F8 (Si F8 ne marche pas utilise la touche F5) dès le début de l’allumage du pc sans t’arrêter.
Une fenêtre va s’ouvrir, tu te déplaces avec les flèches du clavier sur démarrer en mode sans échec puis tape [Entrée].
Une fois sur le bureau s’il n’y a pas toutes les couleurs et autres c’est normal !

comment demarrer en mode sans echec en images

-------------------------------------------------------------------------------
Double clique sur smitfraudfix.cmd
Cette fois choisit l’option 2 !!
répond Oui (o) à tout

Une fois le nettoyage terminé, SmitFraudfix ouvre le rapport de nettoyage sur le bloc-note.

Redémarre l'ordinateur en mode normal (comme d'habitude),
Sur le bureau doit se trouver le rapport enregistré (sinon il est sur le Poste de Travail / Disque C / rapport.txt)

Refais un log Hitjackthis et poste les <gras>deux rapports s'il te plait !</gras>

0
caroline2 Messages postés 41 Date d'inscription mardi 16 décembre 2008 Statut Membre Dernière intervention 22 décembre 2008
16 déc. 2008 à 01:55
Salut,
une fenêtre internet explorer vient de s'ouvrir et là c'est le soit disant le rapid antivirus qui fait le scan !! je suis perdue !!
voici les deux rapports :

---------------Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 19:48:47, on 15/12/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\acs.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\WINDOWS\system32\DRIVERS\CDANTSRV.EXE
C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
C:\Program Files\Symantec AntiVirus\DefWatch.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Microsoft LifeCam\MSCamS32.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Symantec AntiVirus\Rtvscan.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Toshiba\Windows Utilities\Hotkey.exe
C:\Program Files\Synaptics\SynTP\Toshiba.exe
C:\WINDOWS\system32\TPSMain.exe
C:\Program Files\TOSHIBA\ConfigFree\NDSTray.exe
C:\Program Files\TOSHIBA\Utilitaire de zoom TOSHIBA\SmoothView.exe
C:\Program Files\TOSHIBA\Touch and Launch\PadExe.exe
C:\WINDOWS\System32\DLA\DLACTRLW.EXE
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
C:\Program Files\TOSHIBA\ConfigFree\CFSServ.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe
C:\PROGRA~1\SYMANT~1\VPTray.exe
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnf.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe
C:\WINDOWS\vVX3000.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Symantec AntiVirus\DoScan.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpobnz08.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\TPSBattM.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\Bin\hpoSTS08.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\WINDOWS\System32\alg.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://safesearch.cyberdefender.com/smallsearch.html
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://fr.yahoo.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: HP Print Clips - {053F9267-DC04-4294-A72C-58F732D338C0} - C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_framework.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\System32\DLA\DLASHX_W.DLL
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [Toshiba Hotkey Utility] "C:\Program Files\Toshiba\Windows Utilities\Hotkey.exe" /lang FR
O4 - HKLM\..\Run: [TPSMain] TPSMain.exe
O4 - HKLM\..\Run: [NDSTray.exe] NDSTray.exe
O4 - HKLM\..\Run: [SmoothView] C:\Program Files\TOSHIBA\Utilitaire de zoom TOSHIBA\SmoothView.exe
O4 - HKLM\..\Run: [PadTouch] C:\Program Files\TOSHIBA\Touch and Launch\PadExe.exe
O4 - HKLM\..\Run: [DLA] C:\WINDOWS\System32\DLA\DLACTRLW.EXE
O4 - HKLM\..\Run: [AdslTaskBar] rundll32.exe stmctrl.dll,TaskBar
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [Share-to-Web Namespace Daemon] C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
O4 - HKLM\..\Run: [CFSServ.exe] CFSServ.exe -NoClient
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [vptray] C:\PROGRA~1\SYMANT~1\VPTray.exe
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [CyberDefender Early Detection Center] "C:\Program Files\CyberDefender\AntiSpyware\ISSIntro.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [VX3000] C:\WINDOWS\vVX3000.exe
O4 - HKLM\..\Run: [LifeCam] "C:\Program Files\Microsoft LifeCam\LifeExp.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [TOSCDSPD] C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [Uniblue RegistryBooster 2009] C:\Program Files\Uniblue\RegistryBooster\RegistryBooster.exe /S
O4 - HKCU\..\Run: [27656107949475256988225418229111] C:\Program Files\Antivirus 2009\av2009.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [AdwareAlert] C:\Program Files\AdwareAlert\AdwareAlert.exe -boot
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: hp psc 2000 Series.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpobnz08.exe
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Livre de reliures HP - {58ECB495-38F0-49cb-A538-10282ABF65E7} - C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_extensions.dll
O9 - Extra button: Sélection intelligente HP - {700259D7-1666-479a-93B1-3250410481E8} - C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_extensions.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
O16 - DPF: {1F831FA7-42FC-11D4-95A6-0080AD30DCE1} (InstaFred) - file://C:\Program Files\Autodesk Architectural Desktop 3 Fra\InstFred.ocx
O16 - DPF: {78AF2F24-A9C3-11D3-BF8C-0060B0FCC122} (Contrôle d'AcDcToday) - file://C:\Program Files\Autodesk Architectural Desktop 3 Fra\AcDcToday.ocx
O16 - DPF: {AE563727-B4F5-11D4-A415-00108302FDFD} (NOXLATE-BANR) - file://C:\Program Files\Autodesk Architectural Desktop 3 Fra\InstBanr.ocx
O16 - DPF: {F281A59C-7B65-11D3-8617-0010830243BD} (Gestion d'AcPreview) - file://C:\Program Files\Autodesk Architectural Desktop 3 Fra\AcPreview.ocx
O16 - DPF: {FE0BD779-44EE-4A4B-AA2E-743C63F2E5E6} (IWinAmpActiveX Class) - http://pdl.stream.aol.com/downloads/aol/unagi/ampx_en_dl.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: C:\WINDOWS\System32\d3dx9_2532.dll
O20 - Winlogon Notify: 78377e2a511 - C:\WINDOWS\System32\d3dx9_2532.dll
O23 - Service: Service de configuration Atheros (ACS) - Unknown owner - C:\WINDOWS\system32\acs.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
O23 - Service: BrlAPI - Unknown owner - D:\UdeM\cygwin\bin\cygrunsrv.exe
O23 - Service: C-DillaSrv - C-Dilla Ltd - C:\WINDOWS\system32\DRIVERS\CDANTSRV.EXE
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
O23 - Service: ConfigFree Service (CFSvcs) - TOSHIBA CORPORATION - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C:\Program Files\Symantec AntiVirus\DefWatch.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: SAVRoam (SavRoam) - symantec - C:\Program Files\Symantec AntiVirus\SavRoam.exe
O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Program Files\Spyware Doctor\pctsAuxs.exe
O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Program Files\Spyware Doctor\pctsSvc.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Symantec AntiVirus - Symantec Corporation - C:\Program Files\Symantec AntiVirus\Rtvscan.exe
------------------------------

SmitFraudFix v2.386

Rapport fait à 19:31:03,40, 15/12/2008
Executé à partir de C:\SmitfraudFix
OS: Microsoft Windows XP [version 5.1.2600] - Windows_NT
Le type du système de fichiers est NTFS
Fix executé en mode sans echec

»»»»»»»»»»»»»»»»»»»»»»»» SharedTaskScheduler Avant SmitFraudFix
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll

»»»»»»»»»»»»»»»»»»»»»»»» Arret des processus


»»»»»»»»»»»»»»»»»»»»»»»» hosts

127.0.0.1 localhost

»»»»»»»»»»»»»»»»»»»»»»»» VACFix

VACFix
Credits: Malware Analysis & Diagnostic
Code: S!Ri


»»»»»»»»»»»»»»»»»»»»»»»» Winsock2 Fix

S!Ri's WS2Fix: LSP not Found.
»»»»»»»»»»»»»»»»»»»»»»»» Generic Renos Fix

GenericRenosFix by S!Ri


»»»»»»»»»»»»»»»»»»»»»»»» Suppression des fichiers infectés


»»»»»»»»»»»»»»»»»»»»»»»» IEDFix

IEDFix
Credits: Malware Analysis & Diagnostic
Code: S!Ri



»»»»»»»»»»»»»»»»»»»»»»»» Agent.OMZ.Fix

Agent.OMZ.Fix
Credits: Malware Analysis & Diagnostic
Code: S!Ri


»»»»»»»»»»»»»»»»»»»»»»»» 404Fix

404Fix
Credits: Malware Analysis & Diagnostic
Code: S!Ri


»»»»»»»»»»»»»»»»»»»»»»»» RK


»»»»»»»»»»»»»»»»»»»»»»»» DNS

HKLM\SYSTEM\CCS\Services\Tcpip\..\{86E28817-2EA3-4AB9-8831-89F4F2BD9C29}: DhcpNameServer=192.168.2.1
HKLM\SYSTEM\CS1\Services\Tcpip\..\{86E28817-2EA3-4AB9-8831-89F4F2BD9C29}: DhcpNameServer=192.168.2.1
HKLM\SYSTEM\CS2\Services\Tcpip\..\{2ABDBB89-CA82-4F98-8173-FF0896DF4FE5}: DhcpNameServer=192.168.2.1
HKLM\SYSTEM\CS2\Services\Tcpip\Parameters: DhcpNameServer=192.168.2.1


»»»»»»»»»»»»»»»»»»»»»»»» Suppression Fichiers Temporaires


»»»»»»»»»»»»»»»»»»»»»»»» Winlogon.System
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
"System"=""


»»»»»»»»»»»»»»»»»»»»»»»» Nettoyage du registre

Nettoyage terminé.

»»»»»»»»»»»»»»»»»»»»»»»» SharedTaskScheduler Après SmitFraudFix
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll


»»»»»»»»»»»»»»»»»»»»»»»» Fin

Merci :)
0
caroline2 Messages postés 41 Date d'inscription mardi 16 décembre 2008 Statut Membre Dernière intervention 22 décembre 2008 > caroline2 Messages postés 41 Date d'inscription mardi 16 décembre 2008 Statut Membre Dernière intervention 22 décembre 2008
17 déc. 2008 à 21:03
Relance de la discussion...

Bonjour,
je n'arrive pas toujours à me débarasser de ce rapidantivirus, j'ai fait un SDfix, actuellement j'ai lancé malwarebyte et j'attends le rapport, y a t il quelqu'un qui peut m'aider svp
Merci !
0
Cesel45 Messages postés 13152 Date d'inscription mardi 24 avril 2007 Statut Contributeur Dernière intervention 29 novembre 2023 2 809
17 déc. 2008 à 21:12
malwarebyte devrait lui faire sa fête.
0
caroline2 Messages postés 41 Date d'inscription mardi 16 décembre 2008 Statut Membre Dernière intervention 22 décembre 2008
17 déc. 2008 à 21:25
j'espère Cesel45 :)
0
jorginho67 Messages postés 14716 Date d'inscription mardi 11 septembre 2007 Statut Contributeur sécurité Dernière intervention 11 février 2011 1 169
17 déc. 2008 à 21:14
Bon, tu me posteras le rapport de MBAM qui se trouve sous l'onglet Log/rapport
0
caroline2 Messages postés 41 Date d'inscription mardi 16 décembre 2008 Statut Membre Dernière intervention 22 décembre 2008
17 déc. 2008 à 21:27
merci jorginho67 le rapport sera prêt d'ici une heure je pense
@+
0
caroline2 Messages postés 41 Date d'inscription mardi 16 décembre 2008 Statut Membre Dernière intervention 22 décembre 2008 > caroline2 Messages postés 41 Date d'inscription mardi 16 décembre 2008 Statut Membre Dernière intervention 22 décembre 2008
17 déc. 2008 à 23:06
voici le rapport (il a détect& Torjan.zlob, Torjan.Vundo et Rogue Adware Alert) mais j'ai toujours ces pages internet explorer qui s'ouvrent avec rapidantivirus :
Malwarebytes' Anti-Malware 1.31
Version de la base de données: 1507
Windows 5.1.2600 Service Pack 3

17/12/2008 16:39:15
mbam-log-2008-12-17 (16-39-07).txt

Type de recherche: Examen complet (C:\|D:\|)
Eléments examinés: 349191
Temps écoulé: 2 hour(s), 35 minute(s), 22 second(s)

Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 1
Clé(s) du Registre infectée(s): 1
Valeur(s) du Registre infectée(s): 1
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 1

Processus mémoire infecté(s):
(Aucun élément nuisible détecté)

Module(s) mémoire infecté(s):
C:\WINDOWS\system32\__c007215C.dat (Trojan.Zlob) -> No action taken.

Clé(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\__c007215c (Trojan.Vundo) -> No action taken.

Valeur(s) du Registre infectée(s):
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\AdwareAlert (Rogue.AdwareAlert) -> No action taken.

Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)

Dossier(s) infecté(s):
(Aucun élément nuisible détecté)

Fichier(s) infecté(s):
C:\WINDOWS\system32\__c007215C.dat (Trojan.Vundo) -> No action taken.
0
caroline2 Messages postés 41 Date d'inscription mardi 16 décembre 2008 Statut Membre Dernière intervention 22 décembre 2008
17 déc. 2008 à 23:25
excusez moi voici le rapport généré :

Malwarebytes' Anti-Malware 1.31
Version de la base de données: 1507
Windows 5.1.2600 Service Pack 3

17/12/2008 16:40:36
mbam-log-2008-12-17 (16-40-36).txt

Type de recherche: Examen complet (C:\|D:\|)
Eléments examinés: 349191
Temps écoulé: 2 hour(s), 35 minute(s), 22 second(s)

Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 1
Clé(s) du Registre infectée(s): 1
Valeur(s) du Registre infectée(s): 1
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 1

Processus mémoire infecté(s):
(Aucun élément nuisible détecté)

Module(s) mémoire infecté(s):
C:\WINDOWS\system32\__c007215C.dat (Trojan.Zlob) -> Delete on reboot.

Clé(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\__c007215c (Trojan.Vundo) -> Delete on reboot.

Valeur(s) du Registre infectée(s):
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\AdwareAlert (Rogue.AdwareAlert) -> Quarantined and deleted successfully.

Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)

Dossier(s) infecté(s):
(Aucun élément nuisible détecté)

Fichier(s) infecté(s):
C:\WINDOWS\system32\__c007215C.dat (Trojan.Vundo) -> Delete on reboot.
0
jorginho67 Messages postés 14716 Date d'inscription mardi 11 septembre 2007 Statut Contributeur sécurité Dernière intervention 11 février 2011 1 169
18 déc. 2008 à 00:18
Ø Relance Hijackthis en double cliquant sur son raccourci sur le Bureau.
Choisis l'option "Do a system scan and save a log file"
Clique sur "Save log" pour enregistrer le rapport qui s'ouvrira avec le bloc-note
Clique sur "Edition" ->> "Sélectionner tout", puis sur "Edition" ->> Copier" pour copier tout le contenu du rapport ici
0
caroline2 Messages postés 41 Date d'inscription mardi 16 décembre 2008 Statut Membre Dernière intervention 22 décembre 2008
18 déc. 2008 à 00:44
j'ai fait passer spyDoctor et il m'a trouvé ces infections,Torjan FakeAlert, AdwareBHO.GEN, Adwareadvertising et Backdoor.VB.GEN qui est d'un risque très élévé mais bon j'ai la version d'évaluation et non la version complète et donc je ne peux pas les réparer. Voici le rapport de HijackThis :
-------------
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:40:42, on 17/12/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\acs.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\WINDOWS\system32\DRIVERS\CDANTSRV.EXE
C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
C:\Program Files\Symantec AntiVirus\DefWatch.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Microsoft LifeCam\MSCamS32.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Symantec AntiVirus\Rtvscan.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Toshiba\Windows Utilities\Hotkey.exe
C:\Program Files\Synaptics\SynTP\Toshiba.exe
C:\WINDOWS\system32\TPSMain.exe
C:\Program Files\TOSHIBA\ConfigFree\NDSTray.exe
C:\Program Files\TOSHIBA\Utilitaire de zoom TOSHIBA\SmoothView.exe
C:\Program Files\TOSHIBA\Touch and Launch\PadExe.exe
C:\WINDOWS\System32\DLA\DLACTRLW.EXE
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnf.exe
C:\Program Files\TOSHIBA\ConfigFree\CFSServ.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe
C:\PROGRA~1\SYMANT~1\VPTray.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe
C:\WINDOWS\vVX3000.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpobnz08.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\system32\TPSBattM.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\Bin\hpoSTS08.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_clipbook.exe
C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Spyware Doctor\pctsGui.exe
C:\Program Files\Spyware Doctor\pctsAuxs.exe
C:\Program Files\Spyware Doctor\pctsSvc.exe
C:\Program Files\Spyware Doctor\pctsTray.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://safesearch.cyberdefender.com/smallsearch.html
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://fr.yahoo.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: HP Print Clips - {053F9267-DC04-4294-A72C-58F732D338C0} - C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_framework.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\System32\DLA\DLASHX_W.DLL
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [Toshiba Hotkey Utility] "C:\Program Files\Toshiba\Windows Utilities\Hotkey.exe" /lang FR
O4 - HKLM\..\Run: [TPSMain] TPSMain.exe
O4 - HKLM\..\Run: [NDSTray.exe] NDSTray.exe
O4 - HKLM\..\Run: [SmoothView] C:\Program Files\TOSHIBA\Utilitaire de zoom TOSHIBA\SmoothView.exe
O4 - HKLM\..\Run: [PadTouch] C:\Program Files\TOSHIBA\Touch and Launch\PadExe.exe
O4 - HKLM\..\Run: [DLA] C:\WINDOWS\System32\DLA\DLACTRLW.EXE
O4 - HKLM\..\Run: [AdslTaskBar] rundll32.exe stmctrl.dll,TaskBar
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [Share-to-Web Namespace Daemon] C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
O4 - HKLM\..\Run: [CFSServ.exe] CFSServ.exe -NoClient
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [vptray] C:\PROGRA~1\SYMANT~1\VPTray.exe
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [CyberDefender Early Detection Center] "C:\Program Files\CyberDefender\AntiSpyware\ISSIntro.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [VX3000] C:\WINDOWS\vVX3000.exe
O4 - HKLM\..\Run: [LifeCam] "C:\Program Files\Microsoft LifeCam\LifeExp.exe"
O4 - HKLM\..\Run: [ISTray] "C:\Program Files\Spyware Doctor\pctsTray.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [TOSCDSPD] C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [Uniblue RegistryBooster 2009] C:\Program Files\Uniblue\RegistryBooster\RegistryBooster.exe /S
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [AdwareAlert] C:\Program Files\AdwareAlert\AdwareAlert.exe -boot
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: hp psc 2000 Series.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpobnz08.exe
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Livre de reliures HP - {58ECB495-38F0-49cb-A538-10282ABF65E7} - C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_extensions.dll
O9 - Extra button: Sélection intelligente HP - {700259D7-1666-479a-93B1-3250410481E8} - C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_extensions.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
O16 - DPF: {1F831FA7-42FC-11D4-95A6-0080AD30DCE1} (InstaFred) - file://C:\Program Files\Autodesk Architectural Desktop 3 Fra\InstFred.ocx
O16 - DPF: {78AF2F24-A9C3-11D3-BF8C-0060B0FCC122} (Contrôle d'AcDcToday) - file://C:\Program Files\Autodesk Architectural Desktop 3 Fra\AcDcToday.ocx
O16 - DPF: {AE563727-B4F5-11D4-A415-00108302FDFD} (NOXLATE-BANR) - file://C:\Program Files\Autodesk Architectural Desktop 3 Fra\InstBanr.ocx
O16 - DPF: {F281A59C-7B65-11D3-8617-0010830243BD} (Gestion d'AcPreview) - file://C:\Program Files\Autodesk Architectural Desktop 3 Fra\AcPreview.ocx
O16 - DPF: {FE0BD779-44EE-4A4B-AA2E-743C63F2E5E6} (IWinAmpActiveX Class) - http://pdl.stream.aol.com/downloads/aol/unagi/ampx_en_dl.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: C:\WINDOWS\System32\d3dx9_2532.dll
O20 - Winlogon Notify: 78377e2a511 - C:\WINDOWS\System32\d3dx9_2532.dll
O20 - Winlogon Notify: __c007215C - C:\WINDOWS\
O23 - Service: Service de configuration Atheros (ACS) - Unknown owner - C:\WINDOWS\system32\acs.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Boonty Games - Unknown owner - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe (file missing)
O23 - Service: BrlAPI - Unknown owner - D:\UdeM\cygwin\bin\cygrunsrv.exe
O23 - Service: C-DillaSrv - C-Dilla Ltd - C:\WINDOWS\system32\DRIVERS\CDANTSRV.EXE
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
O23 - Service: ConfigFree Service (CFSvcs) - TOSHIBA CORPORATION - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C:\Program Files\Symantec AntiVirus\DefWatch.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: SAVRoam (SavRoam) - symantec - C:\Program Files\Symantec AntiVirus\SavRoam.exe
O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Program Files\Spyware Doctor\pctsAuxs.exe
O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Program Files\Spyware Doctor\pctsSvc.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Symantec AntiVirus - Symantec Corporation - C:\Program Files\Symantec AntiVirus\Rtvscan.exe
0
jorginho67 Messages postés 14716 Date d'inscription mardi 11 septembre 2007 Statut Contributeur sécurité Dernière intervention 11 février 2011 1 169
18 déc. 2008 à 00:58
1) • Télécharge OTMoveIt3 de OldTimer
http://oldtimer.geekstogo.com/OTMoveIt3.exe

* Enregistre-le sur ton bureau. Ne le lances pas pour l'instant.

2) • Sauvegarde ces instructions car il faudra fermer toutes les fenêtres et applications lors de l'installation et de l'analyse.

Clic droit sur le bureau => nouveau => document texte => double clique dessus et copi/colle ces instructions que tu pourras consulter pour faire la manip' correctement !

Ferme toutes les autres fenêtres, tous les autres programmes. Pas de connections Internet.


3) • Relance HijackThis, choisis "do a scan only"
coche la case devant les lignes ci-dessous et clic en bas sur "fix checked", puis clique sur OK.


O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O4 - HKLM\..\Run: [PadTouch] C:\Program Files\TOSHIBA\Touch and Launch\PadExe.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [AdwareAlert] C:\Program Files\AdwareAlert\AdwareAlert.exe -boot
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll


Comment fixer les lignes et Générer un rapport
(merci balltrap34)

Ferme HijackThis.

4) • Double-clique sur OTMoveIt3.exe pour le lancer (l'extension peut ne pas apparaître)
* Copie-colle l'ensemble des lignes en gras ci dessous dans la partie "Paste Instructions for Items to be Moved" (en-dessous de la barre jaune) :

:files
c:\program files\cyberdefender\antispyware\issintro.exe
c:\program files\adwarealert\adwarealert.exe
:commands
[emptytemp]
[Reboot]


* Clique sur le bouton rouge Moveit! pour lancer le nettoyage
* Copie-colle dans ta prochaine réponse tout ce qui se trouve dans la fenêtre Results (en vert à droite)

==> Un rapport sera généré dans le dossier C:\ _OTMoveIt\MovedFiles avec la date et l'heure du passage de l'outil (mmddyyyy_hhmmss.log)

* Ferme OTMoveIt3 (en cliquant sur Exit)


Note : Si un fichier ou un dossier ne sait être supprimé directement, l'outil peut demander un redémarrage pour terminer le processus.
Clique alors sur "Yes" pour accepter...



5) • Fais redémarrer ton PC et poste un nouveau rapport HijackThis
0
caroline2 Messages postés 41 Date d'inscription mardi 16 décembre 2008 Statut Membre Dernière intervention 22 décembre 2008
18 déc. 2008 à 01:33
voici les deux rapports :

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 19:27:36, on 17/12/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\acs.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\WINDOWS\system32\DRIVERS\CDANTSRV.EXE
C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
C:\Program Files\Symantec AntiVirus\DefWatch.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Microsoft LifeCam\MSCamS32.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Symantec AntiVirus\Rtvscan.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Synaptics\SynTP\Toshiba.exe
C:\Program Files\Toshiba\Windows Utilities\Hotkey.exe
C:\WINDOWS\system32\TPSMain.exe
C:\Program Files\TOSHIBA\ConfigFree\NDSTray.exe
C:\Program Files\TOSHIBA\Utilitaire de zoom TOSHIBA\SmoothView.exe
C:\WINDOWS\System32\DLA\DLACTRLW.EXE
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\TPSBattM.exe
C:\Program Files\TOSHIBA\ConfigFree\CFSServ.exe
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnf.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe
C:\PROGRA~1\SYMANT~1\VPTray.exe
C:\WINDOWS\vVX3000.exe
C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Symantec AntiVirus\DoScan.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpobnz08.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\Bin\hpoSTS08.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqSTE08.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows NT\Accessoires\WORDPAD.EXE
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://safesearch.cyberdefender.com/smallsearch.html
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://fr.yahoo.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: HP Print Clips - {053F9267-DC04-4294-A72C-58F732D338C0} - C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_framework.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\System32\DLA\DLASHX_W.DLL
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [Toshiba Hotkey Utility] "C:\Program Files\Toshiba\Windows Utilities\Hotkey.exe" /lang FR
O4 - HKLM\..\Run: [TPSMain] TPSMain.exe
O4 - HKLM\..\Run: [NDSTray.exe] NDSTray.exe
O4 - HKLM\..\Run: [SmoothView] C:\Program Files\TOSHIBA\Utilitaire de zoom TOSHIBA\SmoothView.exe
O4 - HKLM\..\Run: [DLA] C:\WINDOWS\System32\DLA\DLACTRLW.EXE
O4 - HKLM\..\Run: [AdslTaskBar] rundll32.exe stmctrl.dll,TaskBar
O4 - HKLM\..\Run: [Share-to-Web Namespace Daemon] C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
O4 - HKLM\..\Run: [CFSServ.exe] CFSServ.exe -NoClient
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [vptray] C:\PROGRA~1\SYMANT~1\VPTray.exe
O4 - HKLM\..\Run: [CyberDefender Early Detection Center] "C:\Program Files\CyberDefender\AntiSpyware\ISSIntro.exe"
O4 - HKLM\..\Run: [VX3000] C:\WINDOWS\vVX3000.exe
O4 - HKLM\..\Run: [LifeCam] "C:\Program Files\Microsoft LifeCam\LifeExp.exe"
O4 - HKCU\..\Run: [TOSCDSPD] C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [Uniblue RegistryBooster 2009] C:\Program Files\Uniblue\RegistryBooster\RegistryBooster.exe /S
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [AdwareAlert] C:\Program Files\AdwareAlert\AdwareAlert.exe -boot
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-18\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe (User 'Default user')
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: hp psc 2000 Series.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpobnz08.exe
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Livre de reliures HP - {58ECB495-38F0-49cb-A538-10282ABF65E7} - C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_extensions.dll
O9 - Extra button: Sélection intelligente HP - {700259D7-1666-479a-93B1-3250410481E8} - C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_extensions.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
O16 - DPF: {1F831FA7-42FC-11D4-95A6-0080AD30DCE1} (InstaFred) - file://C:\Program Files\Autodesk Architectural Desktop 3 Fra\InstFred.ocx
O16 - DPF: {78AF2F24-A9C3-11D3-BF8C-0060B0FCC122} (Contrôle d'AcDcToday) - file://C:\Program Files\Autodesk Architectural Desktop 3 Fra\AcDcToday.ocx
O16 - DPF: {AE563727-B4F5-11D4-A415-00108302FDFD} (NOXLATE-BANR) - file://C:\Program Files\Autodesk Architectural Desktop 3 Fra\InstBanr.ocx
O16 - DPF: {F281A59C-7B65-11D3-8617-0010830243BD} (Gestion d'AcPreview) - file://C:\Program Files\Autodesk Architectural Desktop 3 Fra\AcPreview.ocx
O16 - DPF: {FE0BD779-44EE-4A4B-AA2E-743C63F2E5E6} (IWinAmpActiveX Class) - http://pdl.stream.aol.com/downloads/aol/unagi/ampx_en_dl.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: C:\WINDOWS\System32\d3dx9_2532.dll
O20 - Winlogon Notify: 78377e2a511 - C:\WINDOWS\System32\d3dx9_2532.dll
O20 - Winlogon Notify: __c007215C - C:\WINDOWS\
O23 - Service: Service de configuration Atheros (ACS) - Unknown owner - C:\WINDOWS\system32\acs.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Boonty Games - Unknown owner - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe (file missing)
O23 - Service: BrlAPI - Unknown owner - D:\UdeM\cygwin\bin\cygrunsrv.exe
O23 - Service: C-DillaSrv - C-Dilla Ltd - C:\WINDOWS\system32\DRIVERS\CDANTSRV.EXE
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
O23 - Service: ConfigFree Service (CFSvcs) - TOSHIBA CORPORATION - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C:\Program Files\Symantec AntiVirus\DefWatch.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: SAVRoam (SavRoam) - symantec - C:\Program Files\Symantec AntiVirus\SavRoam.exe
O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Program Files\Spyware Doctor\pctsAuxs.exe
O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Program Files\Spyware Doctor\pctsSvc.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Symantec AntiVirus - Symantec Corporation - C:\Program Files\Symantec AntiVirus\Rtvscan.exe
0
jorginho67 Messages postés 14716 Date d'inscription mardi 11 septembre 2007 Statut Contributeur sécurité Dernière intervention 11 février 2011 1 169
18 déc. 2008 à 07:53
C'est toi qui a installé ceci ? => AdwareAlert
0
caroline2 Messages postés 41 Date d'inscription mardi 16 décembre 2008 Statut Membre Dernière intervention 22 décembre 2008
18 déc. 2008 à 19:55
non je n'ai rien installé à part ce que tu m'a demandé d'installer et en plus il y a quelqu'un qui pirate ma connexion car j'ai une surconsommation de UPLOAD de 5Go ces deux derniers jours et comme j'ai dépassé la limite fixée par fournisseur d'accés internet (10Go) je dois payer 50 $ je ne sais plus quoi faire :((((( aidez-moi stp
0
caroline2 Messages postés 41 Date d'inscription mardi 16 décembre 2008 Statut Membre Dernière intervention 22 décembre 2008
18 déc. 2008 à 22:30
j'ai téléchargé Zone alarm et un autre programme pour savoir le UPLOAD et le DOWNLOAD et je vois que pour ce qui est au niveau du SENT j'atteint les 850 ko est-ce normal ? et Zone ALarm m'alerte de beaucoup de programmes qu'il bloquent est-ce que je dois faire un autre rapport de Hijack

Merci !!
0
jorginho67 Messages postés 14716 Date d'inscription mardi 11 septembre 2007 Statut Contributeur sécurité Dernière intervention 11 février 2011 1 169
18 déc. 2008 à 20:13
Tu sembles ne pas avoir de parefeu contrôlant les connexions sortantes, ce qui est un risque de sécurité.
Tu DOIS ABSOLUMENT installer un vrai FIREWALL ( pare feu autre que celui de Windows qui est une vrai passoire ) .
Tu as le choix entre ces possibilités :

========== /!\ Bien lire les Tutos pour un parametrage optimal /!\ ==========

* ComodoFirewallPro 2.4 En Français et simple aussi.

Téléchargement
tutorial d'instalation => clique sur "Comodo au plus simple (pour les débutants)" .

Attention la 3.0 est en anglais uniquement et est plus difficile a paramétrer
* Tuto de config'
---------------------------------------------------------------------------------------
* Kerio Efficace mais un poil plus compliqué.

* Tuto et lien de téléchargement
autre lien
---------------------------------------------------------------------------------------
* Zone Alarm En Français et le plus simple d'utilisation.

* Tuto et lien de téléchargement



0
caroline2 Messages postés 41 Date d'inscription mardi 16 décembre 2008 Statut Membre Dernière intervention 22 décembre 2008
18 déc. 2008 à 20:21
salut jorginho67,
connais-tu un logiciel gratuit qui me permet de suivre mes dowonload et mes upload
merci
0
jorginho67 Messages postés 14716 Date d'inscription mardi 11 septembre 2007 Statut Contributeur sécurité Dernière intervention 11 février 2011 1 169
18 déc. 2008 à 22:52
et Zone ALarm m'alerte de beaucoup de programmes qu'il bloquent

REGARDE LE TUTORIEL...

Il faut créer des règles.


Plus tu le feras au début, moins d'alertes tu auras par la suite.
0
caroline2 Messages postés 41 Date d'inscription mardi 16 décembre 2008 Statut Membre Dernière intervention 22 décembre 2008
18 déc. 2008 à 23:01
j'arrive pas à savoir comment faire pour bloquer celui qui utilise ma connexion pour faire des upload il a déjà fait plus de 120Mo aujourd'hui, est-il possible de créer une régle pour bloquer tout UPLOAD depuis mon laptop je ne cesse d'avoir de upload de plus de 800ko à cet instant et ces deux derniers jours j'ai eu 10 Go de UPLOAD !!! comment faire stp !
0
jorginho67 Messages postés 14716 Date d'inscription mardi 11 septembre 2007 Statut Contributeur sécurité Dernière intervention 11 février 2011 1 169
18 déc. 2008 à 23:11
UPLOAD...

tu veux dire que quelqu'un envoie des fichiers quelque part depuis TON pc ?

Upload de quoi ?

J'avoue ne pas saisir ce que tu veux dire.

Si tu as mis le pare feu, celui ci bloque les ports, et les odnnées sortantes.
0
caroline2 Messages postés 41 Date d'inscription mardi 16 décembre 2008 Statut Membre Dernière intervention 22 décembre 2008
18 déc. 2008 à 23:21
le upload ça veut dire que quelqu'un est entrain d'envoyer de fichiers à d'autres personnes à partir de ma connexion internet ce n'est pas compté sur sa connexion par exemple moi j'ai avec mon founisseur d'accés internet droit à 10Go en upload (des fichiers que je peux partager avec d'autres) et 20Go en dowload par mois et si je dépasse chaque 1Go me coute dans les 8$ et donc une personne utilise ;q connexion pour partager des fichiers avec d'autres personnes et là actuellement j'ai en upload chaque seconde pratiquement entre 800 et 900 kbps en upload et en download uniauement à peu près 120 kbps et j'ai un gros problème avec le upload car en voyant le rapport d'un logiciel que je viens de télécharger et qui me calcule le traffic plus de 204Mo en upload et si ça continue je dois me déconnecter car d'ici ce soit j'aurais plus de 1Go en upload et je ne comprends pas pourquoi. Je ne sais pas quoi faire et en plus ces pages internet n'arretent pas toujours de s'ouvrir et là j'ai le spyware guard 2008 qui soit disant veut faire son scan... je suis désespérée :((((((((((((
0
jorginho67 Messages postés 14716 Date d'inscription mardi 11 septembre 2007 Statut Contributeur sécurité Dernière intervention 11 février 2011 1 169
19 déc. 2008 à 13:28
Merci Lyonnais ;-)

Caroline, tu peux lui faire confiance, je lui est demandé un coup de main ;-)
0
jorginho67 Messages postés 14716 Date d'inscription mardi 11 septembre 2007 Statut Contributeur sécurité Dernière intervention 11 février 2011 1 169
19 déc. 2008 à 15:57
Juste une question ;

Quel est ton FAI ( Fournisseur Accès Internet ) et ta box ??
0
caroline2 Messages postés 41 Date d'inscription mardi 16 décembre 2008 Statut Membre Dernière intervention 22 décembre 2008
19 déc. 2008 à 16:03
je suis à montréal et j'ai comme fournisseur d'accés internet Videotron avec leur module Arris tu penses que ça peut être un problème de leur réseau ce UPLOAD car je ne comprends plus rien ?? et j'ai vraiment galéré pour ajouter ces deux messages ça me dit que ça c'est ajouté alors que non j'ai dû faire plusieurs tentatives
0
jorginho67 Messages postés 14716 Date d'inscription mardi 11 septembre 2007 Statut Contributeur sécurité Dernière intervention 11 février 2011 1 169
19 déc. 2008 à 16:17
Non, ce ne doit pas être un soucis de leur part, mais surement de quelqu'un qui s'est " gréffé " sur ta connexion.

En attendant, fais ce que t'a demandé Lyonnais plus haut, poste le rapport dès que possible.
0
caroline2 Messages postés 41 Date d'inscription mardi 16 décembre 2008 Statut Membre Dernière intervention 22 décembre 2008
19 déc. 2008 à 16:24
salut,
je l'ai posté plusieurs fois et je n'arrive pas à savoir pourquoi il ne veut pas me l'ajouter, je fais un autre essai :

ComboFix 08-12-18.01 - TAHAR 2008-12-19 9:10:17.1 - NTFSx86
Microsoft Windows XP Édition familiale 5.1.2600.3.1252.1.1036.18.446.85 [GMT -4:00]
Lancé depuis: c:\documents and settings\TAHAR\Bureau\ComboFix.exe
Commutateurs utilisés :: c:\documents and settings\TAHAR\Bureau\WindowsXP-KB310994-SP2-Home-BootDisk-FRA.exe
* Un nouveau point de restauration a été créé
.

(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\documents and settings\Administrateur\Application Data\[u]0/u20000009085d1fe511C.manifest
c:\documents and settings\Administrateur\Application Data\[u]0/u20000009085d1fe511O.manifest
c:\documents and settings\Administrateur\Application Data\[u]0/u20000009085d1fe511P.manifest
c:\documents and settings\Administrateur\Application Data\[u]0/u20000009085d1fe511S.manifest
c:\documents and settings\BOUFADEN\Application Data\[u]0/u20000009085d1fe511C.manifest
c:\documents and settings\BOUFADEN\Application Data\[u]0/u20000009085d1fe511O.manifest
c:\documents and settings\BOUFADEN\Application Data\[u]0/u20000009085d1fe511P.manifest
c:\documents and settings\BOUFADEN\Application Data\[u]0/u20000009085d1fe511S.manifest
c:\documents and settings\TAHAR\Application Data\[u]0/u20000009085d1fe511C.manifest
c:\documents and settings\TAHAR\Application Data\[u]0/u20000009085d1fe511O.manifest
c:\documents and settings\TAHAR\Application Data\[u]0/u20000009085d1fe511P.manifest
c:\documents and settings\TAHAR\Application Data\[u]0/u20000009085d1fe511S.manifest
c:\windows\GnuHashes.ini
c:\windows\system32\AutoRun.inf
c:\windows\system32\GroupPolicy000.dat
c:\windows\system32\GroupPolicyManifest
c:\windows\system32\GroupPolicyManifest\1.music.mp3
c:\windows\system32\GroupPolicyManifest\1.music.mp3.kwd
c:\windows\system32\GroupPolicyManifest\10.setup.zip
c:\windows\system32\GroupPolicyManifest\10.setup.zip.kwd
c:\windows\system32\GroupPolicyManifest\11.unpack.zip
c:\windows\system32\GroupPolicyManifest\11.unpack.zip.kwd
c:\windows\system32\GroupPolicyManifest\12.limepro.zip
c:\windows\system32\GroupPolicyManifest\12.limepro.zip.kwd
c:\windows\system32\GroupPolicyManifest\13.keygen.zip
c:\windows\system32\GroupPolicyManifest\13.keygen.zip.kwd
c:\windows\system32\GroupPolicyManifest\13.tmp
c:\windows\system32\GroupPolicyManifest\2.crack.zip
c:\windows\system32\GroupPolicyManifest\2.crack.zip.kwd
c:\windows\system32\GroupPolicyManifest\8.mpgvideo.mpg
c:\windows\system32\GroupPolicyManifest\8.mpgvideo.mpg.kwd
c:\windows\system32\GroupPolicyManifest\9.remix.mp3
c:\windows\system32\GroupPolicyManifest\9.remix.mp3.kwd
c:\windows\system32\tmp.reg
C:\xcrashdump.dat

.
((((((((((((((((((((((((((((((((((((((( Pilotes/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.

-------\Legacy_BOONTY_GAMES
-------\Legacy_NPF
-------\Service_Boonty Games


((((((((((((((((((((((((((((( Fichiers créés du 2008-11-19 au 2008-12-19 ))))))))))))))))))))))))))))))))))))
.

2008-12-19 08:48 . <REP> c:\windows\LastGood.Tmp
2008-12-19 00:14 . 2008-12-19 00:14 <REP> d-------- c:\documents and settings\TAHAR\Application Data\HPAppData
2008-12-19 00:14 . 2008-12-19 00:14 <REP> d-------- c:\documents and settings\All Users\Application Data\HPSSUPPLY
2008-12-19 00:06 . 2008-12-19 00:06 <REP> d-------- c:\documents and settings\All Users\Application Data\HP Product Assistant
2008-12-18 23:53 . 2008-12-19 08:55 167,256 --a------ c:\windows\hpoins21.dat
2008-12-18 23:53 . 2007-09-05 14:31 8,138 --------- c:\windows\hpomdl21.dat
2008-12-18 16:04 . 2008-12-19 09:19 608,288 --ahs---- c:\windows\system32\drivers\fidbox.dat
2008-12-18 16:04 . 2008-12-19 09:19 9,176 --ahs---- c:\windows\system32\drivers\fidbox.idx
2008-12-18 15:58 . 2008-12-18 15:58 <REP> d-------- c:\documents and settings\All Users\Application Data\MailFrontier
2008-12-18 15:58 . 2008-07-09 09:05 75,248 --a------ c:\windows\zllsputility.exe
2008-12-18 15:58 . 2008-07-09 09:05 54,672 --a------ c:\windows\system32\vsutil_loc040c.dll
2008-12-18 15:58 . 2008-07-09 09:05 42,384 --a------ c:\windows\zllsputility_loc040c.dll
2008-12-18 15:58 . 2008-07-09 09:05 21,904 --a------ c:\windows\system32\imsinstall_loc040c.dll
2008-12-18 15:58 . 2008-07-09 09:05 17,808 --a------ c:\windows\system32\imslsp_install_loc040c.dll
2008-12-18 15:58 . 2004-04-27 04:40 11,264 --a------ c:\windows\system32\SpOrder.dll
2008-12-18 15:58 . 2008-12-18 16:01 4,212 ---h----- c:\windows\system32\zllictbl.dat
2008-12-18 15:48 . 2008-12-18 15:48 <REP> d-------- c:\program files\DU Meter
2008-12-18 15:48 . 2008-12-18 15:48 <REP> d-------- c:\documents and settings\All Users\Application Data\Hagel Technologies
2008-12-18 14:31 . 2008-12-18 14:31 <REP> d-------- c:\documents and settings\TAHAR\Application Data\Comodo
2008-12-18 14:31 . 2008-12-18 14:31 <REP> d-------- c:\documents and settings\All Users\Application Data\Comodo
2008-12-18 14:20 . 2008-12-18 14:20 216 --a------ C:\boot.ini.comodofirewall
2008-12-18 14:19 . 2008-12-18 15:36 <REP> d-------- c:\program files\Comodo
2008-12-18 13:47 . 2008-12-18 13:47 373,760 --ahs---- c:\windows\system32\15E5.tmp
2008-12-18 10:53 . 2008-12-18 10:53 373,760 --ahs---- c:\windows\system32\12.tmp
2008-12-17 19:13 . 2008-12-17 19:13 <REP> d-------- C:\_OTMoveIt
2008-12-16 19:38 . 2008-12-16 19:38 579,584 --a--c--- c:\windows\system32\dllcache\user32.dll
2008-12-16 19:32 . 2008-12-16 19:33 <REP> d-------- c:\windows\ERUNT
2008-12-16 19:15 . 2008-11-06 02:03 <REP> d-------- C:\SDFix
2008-12-16 13:15 . 2008-12-16 13:15 <REP> d-------- c:\program files\Malwarebytes' Anti-Malware
2008-12-16 13:15 . 2008-12-16 13:15 <REP> d-------- c:\documents and settings\TAHAR\Application Data\Malwarebytes
2008-12-16 13:15 . 2008-12-16 13:15 <REP> d-------- c:\documents and settings\All Users\Application Data\Malwarebytes
2008-12-16 13:15 . 2008-12-03 19:52 38,496 --a------ c:\windows\system32\drivers\mbamswissarmy.sys
2008-12-16 13:15 . 2008-12-03 19:52 15,504 --a------ c:\windows\system32\drivers\mbam.sys
2008-12-16 12:12 . 2008-12-16 12:13 <REP> d-------- c:\program files\CCleaner
2008-12-15 19:29 . 2006-08-01 00:01 <REP> d-------- c:\documents and settings\Administrateur\WINDOWS
2008-12-15 19:29 . 2006-07-31 16:16 <REP> d-------- c:\documents and settings\Administrateur\Voisinage réseau
2008-12-15 19:29 . 2006-02-14 03:31 <REP> d--h----- c:\documents and settings\Administrateur\Voisinage d'impression
2008-12-15 19:29 . 2006-08-01 00:01 <REP> d--h----- c:\documents and settings\Administrateur\Modèles
2008-12-15 19:29 . 2006-08-01 00:01 <REP> dr------- c:\documents and settings\Administrateur\Mes documents
2008-12-15 19:29 . 2006-08-01 00:01 <REP> dr------- c:\documents and settings\Administrateur\Menu Démarrer
2008-12-15 19:29 . 2006-08-01 00:01 <REP> dr------- c:\documents and settings\Administrateur\Favoris
2008-12-15 19:29 . 2006-02-14 03:31 <REP> d-------- c:\documents and settings\Administrateur\Bureau
2008-12-15 19:29 . 2006-08-01 00:01 <REP> d-------- c:\documents and settings\Administrateur\Application Data\toshiba
2008-12-15 19:29 . 2006-08-01 00:01 <REP> d-------- c:\documents and settings\Administrateur\Application Data\Sonic
2008-12-15 19:29 . 2008-12-15 19:29 <REP> d-------- c:\documents and settings\Administrateur
2008-12-15 18:43 . 2008-12-18 11:55 <REP> d-------- C:\SmitfraudFix
2008-12-15 18:42 . 2008-12-15 18:47 1,660,481 --a------ C:\SmitfraudFix.exe
2008-12-14 14:40 . 2008-12-14 14:41 373,760 --ahs---- c:\windows\system32\A7.tmp
2008-12-13 20:47 . 2008-12-13 22:34 <REP> d-------- c:\documents and settings\All Users\Application Data\WildTangent
2008-12-13 09:39 . 2008-12-13 09:39 373,760 --ahs---- c:\windows\system32\75F.tmp
2008-12-13 09:39 . 2008-12-13 09:39 135,168 --a------ c:\windows\system32\d3dx9_2532.dll
2008-12-11 20:46 . 2008-12-11 20:47 <REP> d-------- c:\program files\Microsoft LifeCam
2008-12-08 20:21 . 2008-12-11 16:42 921,624 --a------ C:\img2-001.raw
2008-12-08 20:10 . 2008-04-13 20:45 60,032 --a------ c:\windows\system32\drivers\USBAUDIO.sys
2008-12-08 20:10 . 2008-04-13 20:45 60,032 --a--c--- c:\windows\system32\dllcache\usbaudio.sys
2008-12-08 20:08 . 2007-04-10 17:46 1,966,696 --a------ c:\windows\system32\drivers\VX3000.sys
2008-12-08 20:08 . 2007-04-10 17:46 709,992 --a------ c:\windows\vVX3000.exe
2008-12-08 20:08 . 2007-04-10 17:46 476,520 --a------ c:\windows\vVX3000.dll
2008-12-08 20:08 . 2007-04-10 17:46 202,088 --a------ c:\windows\system32\LCCoin14.dll
2008-12-08 20:08 . 2007-04-10 17:46 185,704 --a------ c:\windows\system32\cVX3000.dll
2008-12-08 20:08 . 2007-04-10 17:46 116,072 --a------ c:\windows\VX3000.dll
2008-12-08 20:08 . 2007-04-10 17:46 15,498 --a------ c:\windows\VX3000.ini
2008-12-08 20:08 . 2007-04-10 17:46 13,023 --a------ c:\windows\VX3000.src
2008-12-08 19:22 . 2008-12-08 19:22 <REP> d-------- c:\windows\system32\drivers\umdf
2008-12-02 21:43 . 2008-12-02 21:44 <REP> d-------- c:\program files\QuickTime
2008-11-25 16:36 . 2008-11-25 17:07 <REP> d-------- c:\documents and settings\TAHAR\Application Data\SSH
2008-11-25 16:34 . 2008-11-25 16:34 <REP> d-------- c:\program files\SSH Communications Security

.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-12-19 13:27 --------- d-----w c:\documents and settings\TAHAR\Application Data\Skype
2008-12-19 13:18 --------- d-----w c:\program files\Symantec AntiVirus
2008-12-19 12:19 --------- d-----w c:\documents and settings\TAHAR\Application Data\skypePM
2008-12-19 04:14 --------- d-----w c:\program files\HP
2008-12-19 04:14 --------- d-----w c:\program files\Hewlett-Packard
2008-12-19 04:06 --------- d-----w c:\documents and settings\All Users\Application Data\HP
2008-12-18 23:43 --------- d-----w c:\program files\eMule
2008-12-18 18:56 --------- d-----w c:\documents and settings\All Users\Application Data\Spybot - Search & Destroy
2008-12-18 18:30 --------- d---a-w c:\documents and settings\All Users\Application Data\TEMP
2008-12-18 14:23 --------- d-----w c:\program files\Spyware Doctor
2008-12-13 21:49 --------- d-----w c:\documents and settings\TAHAR\Application Data\LimeWire
2008-12-08 23:15 --------- d--h--w c:\program files\InstallShield Installation Information
2008-12-08 23:15 --------- d-----w c:\program files\Creative
2008-12-03 01:43 --------- d-----w c:\program files\Fichiers communs\Apple
2008-11-30 23:10 --------- d-----w c:\documents and settings\TAHAR\Application Data\dvdcss
2008-11-25 00:44 --------- d-----w c:\documents and settings\TAHAR\Application Data\WinEdt
2008-11-07 15:19 286,720 ------w c:\windows\Setup1.exe
2008-11-07 15:18 73,216 ----a-w c:\windows\ST6UNST.EXE
2008-11-03 21:19 --------- d-----w c:\documents and settings\TAHAR\Application Data\PC Tools
2008-10-26 23:21 237,568 ----a-w c:\windows\system32\rmc_rtspdl.dll
2008-10-26 23:21 156,672 ----a-w c:\windows\system32\rmc_fixasf.exe
2008-10-26 23:19 323,584 ----a-w c:\windows\system32\AUDIOGENIE2.DLL
2008-10-24 11:21 455,296 ----a-w c:\windows\system32\drivers\mrxsmb.sys
2008-10-23 12:36 286,720 ----a-w c:\windows\system32\gdi32.dll
2008-10-21 21:38 --------- d-----w c:\program files\NCH Software
2008-10-16 18:13 202,776 ----a-w c:\windows\system32\wuweb.dll
2008-10-16 18:13 1,809,944 ----a-w c:\windows\system32\wuaueng.dll
2008-10-16 18:12 561,688 ----a-w c:\windows\system32\wuapi.dll
2008-10-16 18:12 323,608 ----a-w c:\windows\system32\wucltui.dll
2008-10-16 18:09 92,696 ----a-w c:\windows\system32\cdm.dll
2008-10-16 18:09 51,224 ----a-w c:\windows\system32\wuauclt.exe
2008-10-16 18:09 43,544 ----a-w c:\windows\system32\wups2.dll
2008-10-16 18:08 34,328 ----a-w c:\windows\system32\wups.dll
2008-10-16 18:06 268,648 ----a-w c:\windows\system32\mucltui.dll
2008-10-16 18:06 208,744 ----a-w c:\windows\system32\muweb.dll
2008-10-16 01:01 670,208 ----a-w c:\windows\system32\wininet.dll
2008-10-03 10:03 247,326 ----a-w c:\windows\system32\strmdll.dll
2008-09-30 20:43 1,286,152 ----a-w c:\windows\system32\msxml4.dll
2007-01-20 13:32 36,808,256 ----a-w c:\program files\iTunesSetup.exe
2005-05-13 15:12 217,073 --sha-r c:\windows\meta4.exe
2005-10-24 09:13 66,560 --sha-r c:\windows\MOTA113.exe
2005-10-13 19:27 422,400 --sha-r c:\windows\x2.64.exe
2005-10-07 17:14 308,224 --sha-r c:\windows\system32\avisynth.dll
2005-07-14 10:31 27,648 --sha-r c:\windows\system32\AVSredirect.dll
2005-06-26 13:32 616,448 --sha-r c:\windows\system32\cygwin1.dll
2005-06-21 20:37 45,568 --sha-r c:\windows\system32\cygz.dll
2004-01-24 22:00 70,656 --sha-r c:\windows\system32\i420vfw.dll
1997-07-21 18:30 1,045,776 --sha-w c:\windows\system32\Msjet35.dll
1997-06-23 02:00 123,664 --sha-w c:\windows\system32\Msjint35.dll
1997-06-23 11:06 24,848 --sha-w c:\windows\system32\Msjter35.dll
1997-06-23 11:06 252,176 --sha-w c:\windows\system32\Msrd2x35.dll
1997-06-23 11:06 287,504 --sha-w c:\windows\system32\Msxbse35.dll
2006-04-27 08:24 2,945,024 --sha-r c:\windows\system32\Smab.dll
2005-02-28 11:16 240,128 --sha-r c:\windows\system32\x.264.exe
2004-01-24 22:00 70,656 --sha-r c:\windows\system32\yv12vfw.dll
.

((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"TOSCDSPD"="c:\program files\TOSHIBA\TOSCDSPD\toscdspd.exe" [2005-04-11 65536]
"Skype"="c:\program files\Skype\Phone\Skype.exe" [2008-09-23 21755688]
"ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2008-04-13 15360]
"DU Meter"="c:\program files\DU Meter\DUMeter.exe" [2008-06-09 2645528]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ATIPTA"="c:\program files\ATI Technologies\ATI Control Panel\atiptaxx.exe" [2005-12-11 344064]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2005-12-16 761945]
"Toshiba Hotkey Utility"="c:\program files\Toshiba\Windows Utilities\Hotkey.exe" [2006-01-28 1589248]
"SmoothView"="c:\program files\TOSHIBA\Utilitaire de zoom TOSHIBA\SmoothView.exe" [2005-05-17 118784]
"DLA"="c:\windows\System32\DLA\DLACTRLW.EXE" [2005-10-06 122940]
"Share-to-Web Namespace Daemon"="c:\program files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe" [2002-04-10 69632]
"ccApp"="c:\program files\Fichiers communs\Symantec Shared\ccApp.exe" [2006-03-07 53408]
"vptray"="c:\progra~1\SYMANT~1\VPTray.exe" [2006-03-31 125072]
"VX3000"="c:\windows\vVX3000.exe" [2007-04-10 709992]
"LifeCam"="c:\program files\Microsoft LifeCam\LifeExp.exe" [2007-05-17 279912]
"QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2008-09-06 413696]
"ZoneAlarm Client"="c:\program files\Zone Labs\ZoneAlarm\zlclient.exe" [2008-07-09 919016]
"HP Software Update"="c:\program files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe" [2007-03-11 49152]
"TPSMain"="TPSMain.exe" [2005-08-03 c:\windows\system32\TPSMain.exe]
"NDSTray.exe"="NDSTray.exe" [BU]
"AdslTaskBar"="stmctrl.dll" [2004-08-31 c:\windows\system32\stmctrl.dll]
"CFSServ.exe"="CFSServ.exe" [BU]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"swg"="c:\program files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe" [2007-05-25 171448]
"msnmsgr"="c:\program files\Windows Live\Messenger\msnmsgr.exe" [2007-10-18 5724184]

c:\documents and settings\BOUFADEN\Menu D‚marrer\Programmes\D‚marrage\
Lancement rapide de Microsoft Office OneNote 2003.lnk - c:\program files\Microsoft Office\OFFICE11\ONENOTEM.EXE [2007-04-19 64864]

c:\documents and settings\All Users\Menu D‚marrer\Programmes\D‚marrage\
HP Digital Imaging Monitor.lnk - c:\program files\Hewlett-Packard\Digital Imaging\bin\hpqtra08.exe [2007-03-11 210520]
hp psc 2000 Series.lnk - c:\program files\Hewlett-Packard\Digital Imaging\bin\hpobnz08.exe [2002-06-26 323646]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\78377e2a511]
2008-12-13 09:39 135168 c:\windows\system32\d3dx9_2532.dll

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=c:\windows\System32\d3dx9_2532.dll

[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^officejet 6100.lnk]
path=c:\documents and settings\All Users\Menu Démarrer\Programmes\Démarrage\officejet 6100.lnk
backup=c:\windows\pss\officejet 6100.lnkCommon Startup

[HKLM\~\startupfolder\C:^Documents and Settings^TAHAR^Menu Démarrer^Programmes^Démarrage^Adobe Gamma.lnk]
path=c:\documents and settings\TAHAR\Menu Démarrer\Programmes\Démarrage\Adobe Gamma.lnk
backup=c:\windows\pss\Adobe Gamma.lnkStartup

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS]
--a------ 2008-04-13 22:34 1695232 c:\program files\Messenger\msmsgs.exe

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\ZoneLabsFirewall]
"DisableMonitoring"=dword:00000001

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\Toshiba\\ConfigFree\\CFXFER.exe"=
"c:\\Program Files\\Messenger\\msmsgs.exe"=
"c:\\WINDOWS\\system32\\dpvsetup.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\livecall.exe"=
"c:\\Program Files\\Microsoft LifeCam\\LifeExp.exe"=
"c:\\Program Files\\Microsoft LifeCam\\LifeCam.exe"=
"c:\\Program Files\\eMule\\emule.exe"=
"c:\\Program Files\\iTunes\\iTunes.exe"=
"e:\\setup\\HPZNUI01.EXE"=
"c:\\Program Files\\Hewlett-Packard\\Digital Imaging\\bin\\hpqtra08.exe"=
"c:\\Program Files\\Hewlett-Packard\\Digital Imaging\\bin\\hpqste08.exe"=
"c:\\Program Files\\Hewlett-Packard\\Digital Imaging\\bin\\hpofxm08.exe"=
"c:\\Program Files\\Hewlett-Packard\\Digital Imaging\\bin\\hposfx08.exe"=
"c:\\Program Files\\Hewlett-Packard\\Digital Imaging\\bin\\hposid01.exe"=
"c:\\Program Files\\Hewlett-Packard\\Digital Imaging\\bin\\hpqscnvw.exe"=
"c:\\Program Files\\Hewlett-Packard\\Digital Imaging\\bin\\hpqkygrp.exe"=
"c:\\Program Files\\Hewlett-Packard\\Digital Imaging\\bin\\hpzwiz01.exe"=
"c:\\Program Files\\Hewlett-Packard\\Digital Imaging\\Unload\\HpqPhUnl.exe"=
"c:\\Program Files\\Hewlett-Packard\\Digital Imaging\\bin\\hpoews01.exe"=
"c:\\Program Files\\Hewlett-Packard\\Digital Imaging\\bin\\hpqnrs08.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=

R2 DUMeterSvc;DU Meter Service;c:\program files\DU Meter\DUMeterSvc.exe /startedbyscm:E1F6D4BE-40E33354-DUMeterService [2008-12-18 1386008]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv;\??\c:\program files\Fichiers communs\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2008-09-04 99376]
R3 HSFHWATI;HSFHWATI;c:\windows\system32\DRIVERS\HSFHWATI.sys [2006-02-14 225792]
R3 Stmatm;ATM/ADSL miniport;c:\windows\system32\DRIVERS\stmatm.sys [2006-08-28 60255]
S3 BrlAPI;BrlAPI;d:\udem\cygwin\bin\cygrunsrv.exe [2008-10-09 68096]
S3 SavRoam;SAVRoam;"c:\program files\Symantec AntiVirus\SavRoam.exe" [2006-03-31 118928]
S3 sdAuxService;PC Tools Auxiliary Service;c:\program files\Spyware Doctor\pctsAuxs.exe [2008-11-03 356920]
S3 TaurusUsb;ADSL Modem USB Service;c:\windows\system32\DRIVERS\torususb.sys [2006-08-28 542991]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc
HPService REG_MULTI_SZ HPSLPSVC

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{01e24a49-c437-11dc-ad4f-0016363d8257}]
\Shell\AutoRun\command - 83fgj.com
\Shell\explore\Command - 83fgj.com
\Shell\open\Command - 83fgj.com

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{0328699a-be2a-11dc-ad4a-0016363d8257}]
\Shell\AutoRun\command - c:\windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL antihost.exe

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{2ecd81cf-7075-11dd-ada5-0016363d8257}]
\Shell\AutoRun\command - F:\83fgj.com
\Shell\explore\Command - F:\83fgj.com
\Shell\open\Command - F:\83fgj.com

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{2ecd81d2-7075-11dd-ada5-0016363d8257}]
\Shell\AutoRun\command - 83fgj.com
\Shell\explore\Command - 83fgj.com
\Shell\open\Command - 83fgj.com

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{2ecd81da-7075-11dd-ada5-0016363d8257}]
\Shell\AutoRun\command - G:\LaunchU3.exe -a

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{2ecd81db-7075-11dd-ada5-0016363d8257}]
\Shell\AutoRun\command - H:\83fgj.com
\Shell\explore\Command - H:\83fgj.com
\Shell\open\Command - H:\83fgj.com

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{340b1b7e-4544-11dd-ad83-0016363d8257}]
\Shell\AutoRun\command - F:\oufddh.exe
\Shell\explore\Command - F:\oufddh.exe
\Shell\open\Command - F:\oufddh.exe

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{5e7dffc0-4f2d-11db-ac19-0016363d8257}]
\Shell\AutoRun\command - RavMon.exe

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{6cf3daf3-6090-11dc-ad11-0016363d8257}]
\Shell\AutoRun\command - F:\oufddh.exe
\Shell\explore\Command - F:\oufddh.exe
\Shell\open\Command - F:\oufddh.exe

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{7b01f798-6fb8-11dd-ada3-0016363d8257}]
\Shell\AutoRun\command - F:\83fgj.com
\Shell\explore\Command - F:\83fgj.com
\Shell\open\Command - F:\83fgj.com

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{7b01f79b-6fb8-11dd-ada3-0016363d8257}]
\Shell\AutoRun\command - F:\83fgj.com
\Shell\explore\Command - F:\83fgj.com
\Shell\open\Command - F:\83fgj.com

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{7db4d2b2-6df1-11dd-ad9f-0016363d8257}]
\Shell\AutoRun\command - F:\c9hehpa.bat
\Shell\explore\Command - F:\c9hehpa.bat
\Shell\open\Command - F:\c9hehpa.bat

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{8a8c8e0e-6b7f-11dd-ad9a-0016363d8257}]
\Shell\AutoRun\command - F:\oufddh.exe
\Shell\explore\Command - F:\oufddh.exe
\Shell\open\Command - F:\oufddh.exe

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{9332580d-12e5-11dd-ad72-0016363d8257}]
\Shell\AutoRun\command - oufddh.exe
\Shell\explore\Command - oufddh.exe
\Shell\open\Command - oufddh.exe
.
Contenu du dossier 'Tâches planifiées'

2008-11-21 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\program files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 11:34]

2007-02-10 c:\windows\Tasks\FRU Task #Hewlett-Packard#hp psc 2100 series#1158325142.job
- c:\program files\Hewlett-Packard\Digital Imaging\Bin\hpqfrucl.exe [2002-06-26 19:46]
.
- - - - ORPHELINS SUPPRIMES - - - -

HKCU-Run-Uniblue RegistryBooster 2009 - c:\program files\Uniblue\RegistryBooster\RegistryBooster.exe
HKCU-Run-AdwareAlert - c:\program files\AdwareAlert\AdwareAlert.exe
HKLM-Run-CyberDefender Early Detection Center - c:\program files\CyberDefender\AntiSpyware\ISSIntro.exe
Notify-__c007215C - (no file)


.
------- Examen supplémentaire -------
.
uStart Page = hxxp://www.yahoo.fr/
IE: E&xporter vers Microsoft Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000

c:\windows\Downloaded Program Files\InstFred.ocx - O16 -: {1F831FA7-42FC-11D4-95A6-0080AD30DCE1}
file://c:\program files\Autodesk Architectural Desktop 3 Fra\InstFred.ocx

c:\windows\Downloaded Program Files\InstBanr.ocx - O16 -: {AE563727-B4F5-11D4-A415-00108302FDFD}
file://c:\program files\Autodesk Architectural Desktop 3 Fra\InstBanr.ocx
.

**************************************************************************

catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-12-19 09:21:08
Windows 5.1.2600 Service Pack 3 NTFS

Recherche de processus cachés ...

Recherche d'éléments en démarrage automatique cachés ...

Recherche de fichiers cachés ...

Scan terminé avec succès
Fichiers cachés: 0

**************************************************************************

[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\DUMeterSvc]
"ImagePath"="c:\program files\DU Meter\DUMeterSvc.exe /startedbyscm:E1F6D4BE-40E33354-DUMeterService"
.
--------------------- DLLs chargées dans les processus actifs ---------------------

- - - - - - - > 'winlogon.exe'(552)
c:\windows\System32\d3dx9_2532.dll
c:\windows\system32\Ati2evxx.dll
.
------------------------ Autres processus actifs ------------------------
.
c:\windows\system32\ati2evxx.exe
c:\windows\system32\ati2evxx.exe
c:\program files\Fichiers communs\Symantec Shared\ccSetMgr.exe
c:\program files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
c:\program files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
c:\windows\system32\acs.exe
c:\program files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
c:\windows\system32\drivers\CDANTSRV.EXE
c:\program files\Toshiba\ConfigFree\CFSvcs.exe
c:\program files\Symantec AntiVirus\DefWatch.exe
c:\program files\DU Meter\DUMeterSvc.exe
c:\program files\Synaptics\SynTP\Toshiba.exe
c:\program files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
c:\program files\Microsoft LifeCam\MSCamS32.exe
c:\program files\Toshiba\ConfigFree\NDSTray.exe
c:\windows\system32\rundll32.exe
c:\program files\Toshiba\ConfigFree\CFSServ.exe
c:\program files\Hewlett-Packard\HP Share-to-Web\hpgs2wnf.exe
c:\windows\system32\fxssvc.exe
c:\program files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe
c:\windows\system32\TPSBattM.exe
c:\program files\Skype\Plugin Manager\skypePM.exe
c:\program files\Hewlett-Packard\Digital Imaging\bin\hposts08.exe
c:\program files\Hewlett-Packard\Digital Imaging\bin\hpqste08.exe
.
**************************************************************************
.
Heure de fin: 2008-12-19 9:33:39 - La machine a redémarré
ComboFix-quarantined-files.txt 2008-12-19 13:33:29

Avant-CF: 9 357 570 048 octets libres
Après-CF: 9,913,978,880 octets libres

WindowsXP-KB310994-SP2-Home-BootDisk-FRA.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP dition familiale" /noexecute=optin /fastdetect

398 --- E O F --- 2008-12-18 14:20:00
0
caroline2 Messages postés 41 Date d'inscription mardi 16 décembre 2008 Statut Membre Dernière intervention 22 décembre 2008 > caroline2 Messages postés 41 Date d'inscription mardi 16 décembre 2008 Statut Membre Dernière intervention 22 décembre 2008
19 déc. 2008 à 16:40
merci pour votre aide et je me demandais s'il n' y a pas moyen de savoir quel processus est entrain de s'exécuter plus que les autres car j'ai toujours à peu près entre 800 et 900kbps de UPLOAD et les pages internet explorer qui s'ouvrent encore avec cette fois le REGISTER DEFENDER qui veut faire le scan... je suis fatiguée mais je tiens bon en espérant que ça se régle sinon je ne sais pas si mon laptop s'en sortira :((
0
Lyonnais92 Messages postés 25159 Date d'inscription vendredi 23 juin 2006 Statut Contributeur sécurité Dernière intervention 16 septembre 2016 1 536
19 déc. 2008 à 17:35
Re,

erreur de ma part, c'est bien le rapport.

Courage.

0
caroline2 Messages postés 41 Date d'inscription mardi 16 décembre 2008 Statut Membre Dernière intervention 22 décembre 2008
19 déc. 2008 à 18:00
je continue :


1=Ce programme est installé mais n'est pas compatible avec ce logiciel.
2=Vous devez désinstaller ou mettre à niveau ce programme pour poursuivre l'installation.
3=Pour désinstaller ce programme, ouvrez la fenêtre Ajout/Suppression de programmes du Panneau de configuration Windows.
4=Si vous choisissez de mettre à niveau ce programme, visitez http://www.roxio.com/en/support/ecdc/ecdc_plat_535_updt.jhtml pour enregistrer et télécharger la mise à niveau.
5=Vérifiez que le programme est mis à niveau ou désinstallé, puis cliquez sur Réessayer pour poursuivre l'installation.
[Shield.Firewalls.Text.0X40c]
1=Un logiciel pare-feu a été détecté sur cet ordinateur. Il est possible que ce pare-feu affiche des alertes liées à l'installation.
2=Veuillez laisser les programmes HP s'exécuter lorsque l'une de ces alertes s'affiche.
3=Certains termes désignent couramment l'autorisation d'exécuter ces programmes, tels que Débloquer, Oui, Autoriser, Permettre.
4=Le blocage d'un programme peut entraîner l'échec de son installation.
[Shield.Roxio.Text.0xd]
1=úåëðéú æå îåú÷ðú åàéðä úåàîú ìúåëðä æå.
2=òìéê ìäñéø úåëðéú æå àå ìùãøâ àåúä ìôðé ùúîùéê áäú÷ðä.
3=ìäñøú ääú÷ðä ùì úåëðéú æå, òáåø àì äåñôä/äñøä ùì úåëðéåú (Add/Remove Programsþ) áìåç äá÷øä (Control Panelþ) ùì Windowsþ.
4=àí úáçø ìùãøâ úåëðéú æå, á÷ø áëúåáú http://www.roxio.com/en/support/ecdc/ecdc_plat_535_updt.jhtmlþ ëãé ìäéøùí åìäåøéã àú äùãøåâ.
5=åãà ùäúåëðéú îùåãøâú àå ùäåñøä äú÷ðúä åìàçø îëï ìçõ òì 'ðñä ùðéú' ëãé ìäîùéê áäú÷ðä.
[Shield.Firewalls.Text.0Xd]
1=æåäúä úåëðú çåîú àù (Firewall) áîçùá æä. çåîú àù æå òùåéä ìäöéâ úéáåú ãå-ùéç ùì äúøàä ä÷ùåøåú ìäú÷ðä.
2=àí úéú÷ì áäúøàåú îñåâ æä, éù ìàôùø äîùê äôòìä ùì úåëðéåú HP.
3=îåðçéí ðôåöéí äîàôùøéí äîùê äôòìä ëåììéí: áéèåì çñéîä, ëï, àôùø åäúø.
4=çñéîä ùì úåëðéú ääú÷ðä úâøåí ìàé áéöåò ùì ääú÷ðä.
[Shield.Roxio.Text.0x40E]
1=Ez a program telepítve van, és nem kompatibilis ezzel a szoftverrel.
2=A telepítés folytatása elõtt el kell távolítania vagy frissítenie kell a szoftvert.
3=A program eltávolításához válassza a Vezérlõpult Programok telepítése/törlése lehetõségét.
4=Ha a program frissítése mellett dönt, akkor látogassa meg a http://www.roxio.com/en/support/ecdc/ecdc_plat_535_updt.jhtml oldalt, és regisztráció után töltse le a frissítést.
5=Gyõzõdjön meg róla, hogy a program frissítve van vagy el lett távolítva, majd a telepítés folytatásához nyomja meg az Újra gombot.
[Shield.Firewalls.Text.0X40E]
1=A számítógépen tûzfalprogram található. A tûzfal a telepítéssel kapcsolatban figyelmeztetõ párbeszédablakokat küldhet.
2=Ha e figyelmeztetések valamelyikét látja, hagyja, hogy a HP programok tovább mûködjenek.
3=A folyamat folytatásával kapcsolatban általánosan használt néhány kifejezés: felold, igen, enged és engedélyez.
4=A telepítõprogram blokkolása valószínûleg sikertelen telepítést eredményez.
[Shield.Roxio.Text.0x410]
1=Questo programma è installato e non è compatibile con il software.
2=È necessario disinstallare o aggiornare il programma prima di continuare l'installazione.
3=Per disinstallare il programma, scegliere Installazione applicazioni nel Pannello di controllo di Windows.
4=Se si sceglie di aggiornare questo programma, visitare http://www.roxio.com/en/support/ecdc/ecdc_plat_535_updt.jhtml per registrarsi e scaricare l'aggiornamento.
5=Verificare che il programma sia aggiornato e fare clic su Riprova per continuare l'installazione.
[Shield.Firewalls.Text.0X410]
1=Il software del firewall è stato rilevato sul computer. Questo firewall potrebbe visualizzare delle finestre di avviso correlate all'installazione.
2=Quando appare uno di questi avvisi, consentire ai programmi HP di procedere.
3=Alcuni termini di uso frequente per consentire ad un processo di continuare sono: Sblocca, Sì, Consenti.
4=Se si blocca un programma di installazione, l'installazione potrebbe non essere completata con successo.
[Shield.Roxio.Text.0x11]
1=ƒCƒ“ƒXƒg[ƒ‹‚µ‚½ƒvƒƒOƒ‰ƒ€‚́A‚±‚̃\ƒtƒgƒEƒFƒA‚ɏ€‹’‚µ‚Ä‚¢‚Ü‚¹‚ñB
2=ƒCƒ“ƒXƒg[ƒ‹‚𑱍s‚·‚é‘O‚ɁA‚±‚̃vƒƒOƒ‰ƒ€‚ðƒAƒ“ƒCƒ“ƒXƒg[ƒ‹‚Ü‚½‚͍XV‚·‚é•K—v‚ª‚ ‚è‚Ü‚·B
3=Windows ƒRƒ“ƒgƒ[ƒ‹ƒpƒlƒ‹‚Ì [ƒAƒvƒŠƒP[ƒVƒ‡ƒ“‚̒ljÁ‚ƍ폜] ‚ðŽg‚Á‚āAƒvƒƒOƒ‰ƒ€‚ðƒAƒ“ƒCƒ“ƒXƒg[ƒ‹‚µ‚Ü‚·B
4=ƒvƒƒOƒ‰ƒ€‚ðXV‚·‚éê‡‚́Ahttp://www.roxio.com/en/support/ecdc/ecdc_plat_535_updt.jhtml ‚É“o˜^‚µ‚āAXV‚ðƒ_ƒEƒ“ƒ[ƒh‚µ‚Ü‚·B
5=ƒvƒƒOƒ‰ƒ€‚̍XV‚Ü‚½‚̓Aƒ“ƒCƒ“ƒXƒg[ƒ‹‚ÌŠ®—¹‚ðŠm”F‚µ‚½Œã A[ÄŽŽs] ‚ðƒNƒŠƒbƒN‚µ‚ăCƒ“ƒXƒg[ƒ‹‚𑱍s‚µ‚Ü‚·B
[Shield.Firewalls.Text.0X11]
1=‚±‚̃Rƒ“ƒsƒ…[ƒ^‚ɂ̓tƒ@ƒCƒAƒEƒH[ƒ‹ ƒ\ƒtƒgƒEƒFƒA‚ªŒŸo‚³‚ê‚Ä‚¢‚Ü‚·Bƒtƒ@ƒCƒAƒEƒH[ƒ‹‚̉æ–ʂɁAƒCƒ“ƒXƒg[ƒ‹‚ÉŠÖ˜A‚·‚éŒxƒ_ƒCƒAƒƒO‚ª•\Ž¦‚³‚ê‚éê‡‚à‚ ‚è‚Ü‚·B
2=ˆÈ‰º‚̃Aƒ‰[ƒg‚ª•\Ž¦‚³‚ꂽ‚Æ‚«‚́AHP ƒvƒƒOƒ‰ƒ€‚ª‚»‚Ì‚Ü‚ÜŽÀs‚Å‚«‚é‚悤‚É‚µ‚Ä‚­‚¾‚³‚¢B
3=ŽÀs‚ðŒp‘±‚³‚¹‚éÛ‚Ɉê”Ê‚É•\Ž¦‚³‚ê‚郆[ƒU[ ƒCƒ“ƒ^ƒtƒF[ƒX: Unblock(‹ÖŽ~‚̉ðœ)AYes (‚Í‚¢)AAllow(‹–‰Â)APermit(‹–‰Â)
4=ƒCƒ“ƒXƒg[ƒ‹ ƒvƒƒOƒ‰ƒ€‚ÌŽÀs‚ð‹ÖŽ~‚·‚é‚ƁAƒCƒ“ƒXƒg[ƒ‹‚ªŽ¸”s‚·‚éê‡‚ª‚ ‚è‚Ü‚·B
[Shield.Roxio.Text.0x12]
1=ÇÁ·Î±×·¥ÀÌ ¼³Ä¡µÇ°í ÀÌ ¼ÒÇÁÆ®¿þ¾î¿Í ȣȯµÇÁö ¾Ê½À´Ï´Ù.
2=¼³Ä¡¸¦ °è¼ÓÇÏ·Á¸é ÇÁ·Î±×·¥À» Á¦°ÅÇϰųª ¾÷±×·¹À̵åÇØ¾ß ÇÕ´Ï´Ù.
3=ÇÁ·Î±×·¥À» Á¦°ÅÇÏ·Á¸é Windows Á¦¾îÆÇÀÇ [ÇÁ·Î±×·¥ Ãß°¡/Á¦°Å]·Î °©´Ï´Ù.
4=ÇÁ·Î±×·¥À» ¾÷±×·¹À̱×Çϵµ·Ï ¼±ÅÃÇϸé http://www.roxio.com/en/support/ecdc/ecdc_plat_535_updt.jhtml¸¦ ¿­¾î µî·ÏÇÏ°í ¾÷±×·¹À̵带 ´Ù¿î·ÎµåÇÕ´Ï´Ù.
5=ÇÁ·Î±×·¥ÀÌ ¾÷±×·¹À̵åµÇ°Å³ª Á¦°ÅµÇ¾ú´ÂÁö È®ÀÎÇÑ ÈÄ [´Ù½Ã ½Ãµµ]¸¦ ´­·¯ ¼³Ä¡¸¦ °è¼ÓÇϽʽÿÀ.
[Shield.Firewalls.Text.0X12]
1=¹æÈ­º® ¼ÒÇÁÆ®¿þ¾î°¡ ÀÌ ÄÄÇ»ÅÍ¿¡¼­ °Ë»öµÇ¾ú½À´Ï´Ù. ÀÌ ¹æÈ­º®Àº ¼³Ä¡¿¡ °ü·ÃµÈ °æ°í ´ëÈ­ »óÀÚ¸¦ Ç¥½ÃÇÒ ¼öµµ ÀÖ½À´Ï´Ù.
2=ÀÌ °æ°í Áß Çϳª°¡ Ç¥½ÃµÉ ¶§ HP ÇÁ·Î±×·¥À» °è¼ÓÇÒ ¼ö ÀÖµµ·Ï Çã¿ëÇØ ÁֽʽÿÀ.
3=ÀýÂ÷ ÁøÇàÀ» Çã¿ëÇÏ´Â µ¥ ÀϹÝÀûÀ¸·Î »ç¿ëµÇ´Â ¿ë¾î: Â÷´ÜÇØÁ¦, ¿¹, Çã¿ë ¹× Çã°¡
4=¼³Ä¡ ÇÁ·Î±×·¥À» Â÷´ÜÇÏ¸é ¼³Ä¡¿¡ ½ÇÆÐÇÒ ¼ö ÀÖ½À´Ï´Ù.
[Shield.Roxio.Text.0x413]
1=Dit programma is geïnstalleerd en is niet compatibel met deze software.
2=U moet de installatie van dit programma ongedaan maken of een upgrade voor dit programma uitvoeren voordat u verder kunt gaan met installeren.
3=Als u de installatie van dit programma ongedaan wilt maken, gaat u naar Software in het Configuratiescherm van Windows.
4=Als u een upgrade voor dit programma wilt uitvoeren, gaat u naar http://www.roxio.com/en/support/ecdc/ecdc_plat_535_updt.jhtml om de upgrade te registeren en te downloaden.
5=Zorg dat het programma is bijgewerkt of dat de installatie ervan ongedaan is gemaakt en klik vervolgens op Opnieuw om verder te gaan met installeren.
[Shield.Firewalls.Text.0X413]
1=Op deze computer is firewall-software gevonden. Door de firewall kunnen waarschuwingsmeldingen worden weergegeven die betrekking hebben op deze installatie.
2=Laat HP-programma's uitvoeren als u een dergelijke waarschuwing ziet.
3=Het laten uitvoeren van een proces gebeurt doorgaans met opties als Blokkering opheffen, Deblokkeren, Ja en Toestaan.
4=Als u een installatieprogramma blokkeert, zal de installatie mislukken.
[Shield.Roxio.Text.0x414]
1=Dette programmet er installert og er inkompatibelt med denne programvaren.
2=Du må enten avinstallere eller oppgradere dette programmet før du fortsetter installasjonen.
3=Gå til Legg til / fjern programmer i Kontrollpanel i Windows for å avinstallere programmet.
4=Hvis du velger å oppgradere dette programmet, går du til http://www.roxio.com/en/support/ecdc/ecdc_plat_535_updt.jhtml for å registrere deg og laste ned oppgraderingen.
5=Kontroller at programmet er oppgradert eller avinstallert, og klikk deretter på Prøv på nytt for å fortsette installasjonen.
[Shield.Firewalls.Text.0X414]
1=Det er funnet brannmurprogramvare på denne datamaskinen. Brannmuren kan vise advarsler i forbindelse med installeringen.
2=Vennligst la HP-programmer fortsette når du ser et av disse varslene.
3=Enkelte vanlige termer som brukes for å la en prosess fortsette, er: Opphev blokkering, Ja og Tillat.
4=Blokkering av et installeringsprogram vil mest sannsynlig føre til at installeringen mislykkes.
[Shield.Roxio.Text.0x415]
1=Program ten zosta³ zainstalowany i nie jest on zgodny z tym oprogramowaniem.
2=Program ten nale¿y odinstalowaæ albo zaktualizowaæ przed kontynuacj¹ instalacji.
3=Aby odinstalowaæ ten program, przejdŸ do opcji Dodaj/Usuñ programy w panelu sterowania Windows.
4=Je¿eli program ma zostaæ zaktualizowany, odwiedŸ http://www.roxio.com/en/support/ecdc/ecdc_plat_535_updt.jhtml, aby zarejestrowaæ i pobraæ aktualizacjê oprogramowania.
5=SprawdŸ, czy program zosta³ zaktualizowany lub odinstalowany, a nastêpnie kliknij przycisk Ponów próbê, aby kontynuowaæ instalacjê.
[Shield.Firewalls.Text.0X415]
1=Wykryto programow¹ zaporê firewall na tym komputerze. Zapora firewall mo¿e spowodowaæ wy¶wietlenie komunikatów zwi±zanych z instalacj±.
2=Je¿eli zauwa¿ysz jedno z poni¿szych powiadomieñ, pozwól na kontynuowanie pracy programów HP.
3=Niektóre z czêsto stosowanych terminów zezwalaj¹cych na kontynuowanie procesu to: Odblokuj, Tak, Zezwól i Pozwól.
4=Zablokowanie programu instalacyjnego najprawdopodobniej spowoduje zakoñczenie instalacji niepowodzeniem.
[Shield.Roxio.Text.0x416]
1=O programa está instalado e é incompatível com o software.
2=Você deve desinstalar ou atualizar o programa antes de continuar com a instalação.
3=Para desinstalar o programa, vá para Adicionar ou Remover Programas no Painel de Controle do Windows.
4=Se optar por atualizar o programa, visite http://www.roxio.com/en/support/ecdc/ecdc_plat_535_updt.jhtml para se registrar e fazer o download da atualização.
5=Verifique se o programa foi atualizado ou desinstalado e clique em Repetir para continuar com a instalação.
[Shield.Firewalls.Text.0X416]
1=O software de firewall foi detectado neste computador. O firewall pode exibir um diálogo de alerta relacionado à instalação.
2=Por favor deixe os programas da HP prosseguirem quando você vir um desses alertas.
3=Os termos mais usados para permitir o prosseguimento de um processo são: Desbloquear, Sim e Permitir.
4=O bloqueio de um programa de instalação provavelmente causará falha na instalação.
[Shield.Roxio.Text.0x419]
1=Ýòà ïðîãðàììà óñòàíîâëåíà è íåñîâìåñòèìà ñ äàííûì ïðîãðàììíûì îáåñïå÷åíèåì.
2=Ïåðåä ïðîäîëæåíèåì ýòîé óñòàíîâêè íåîáõîäèìî óäàëèòü èëè îáíîâèòü ýòó ïðîãðàììó.
3=×òîáû óäàëèòü ýòó ïðîãðàììó, âûáåðèòå Óñòàíîâêà è óäàëåíèå ïðîãðàìì íà ïàíåëè óïðàâëåíèÿ Windows.
4=Åñëè âû ðåøèëè îáíîâèòü ýòó ïðîãðàììó, ïîñåòèòå http://www.roxio.com/en/support/ecdc/ecdc_plat_535_updt.jhtml, ÷òîáû çàðåãèñòðèðîâàòüñÿ è çàãðóçèòü ýòî îáíîâëåíèå.
5=Îáíîâèòå èëè óäàëèòå ýòó ïðîãðàììó è íàæìèòå êíîïêó Ïîâòîðèòü, ÷òîáû ïðîäîëæèòü óñòàíîâêó.
[Shield.Firewalls.Text.0X419]
1=Íà êîìïüþòåðå îáíàðóæåí ïðîãðàììíûé áðàíäìàóýð. Âî âðåìÿ óñòàíîâêè ýòîò áðàíäìàóýð ìîæåò îòîáðàæàòü ïðåäóïðåæäàþùèå ñîîáùåíèÿ.
2=Ïðè ïîÿâëåíèè ïðåäóïðåæäàþùèõ ñîîáùåíèé íå ïðåðûâàéòå ðàáîòó ïðîãðàìì HP.
3=Äàëåå ïåðå÷èñëåíû íåêîòîðûå êîìàíäû, êîòîðûå ÷àñòî èñïîëüçóþòñÿ äëÿ ïðîäîëæåíèÿ âûïîëíåíèÿ ïðîãðàììû: Ðàçáëîêèðîâàòü, Äà, Ðàçðåøèòü è Ïîçâîëèòü.
4=Ïðè áëîêèðîâêå ïðîãðàììû óñòàíîâêà ñêîðåå âñåãî çàâåðøèòñÿ íåóäà÷íî.
[Shield.Roxio.Text.0x41d]
1=Programmet har installerats men är inte kompatibelt med den här programvaran.
2=Du måste avinstallera eller uppdatera programmet innan du fortsätter med installationen.
3=Du avinstallerar programmet genom att gå till Lägg till/ta bort program i Kontrollpanelen i Windows.
4=Om du väljer att uppdatera programmet går du http://www.roxio.com/en/support/ecdc/ecdc_plat_535_updt.jhtml för att registrera dig och hämta uppdateringen.
5=Kontrollera att du uppdaterat eller avinstallerat programmet och klicka på Försök igen så fortsätter installationen .
[Shield.Firewalls.Text.0X41d]
1=Brandväggsprogramvara har upptäckts på datorn. Denna brandvägg kan visa dialogrutor med varningar relaterade till installationen.
2=Tillåt HP-program att fortsätta när du ser en av följande varningar.
3=Några vanliga termer som tillåter en process att fortsätta är: Häv blockering, Ja, Tillåt och Godkänn.
4=Om ett installationsprogram blockeras, misslyckas troligen installationen.
[Shield.Roxio.Text.0x41F]
1=Bu program yüklü ve bu yazýlýmla uyumlu deðil.
2=Yükleme iþlemine devam etmeden önce bu programý kaldýrmalý veya yükseltmelisiniz.
3=Bu programý kaldýrmak için, Windows Denetim Masasý'nda Program Ekle/Kaldýr'a gidin.
4=Bu programý yükseltmeyi seçerseniz, http://www.roxio.com/en/support/ecdc/ecdc_plat_535_updt.jhtml sitesini ziyaret ederek kayýt olun ve yükseltme sürümünü indirin.
5=Programýn yükseltildiðinden veya kaldýrýldýðýndan emin olun ve yüklemeye devam etmek için Yeniden Dene'yi týklatýn.
[Shield.Firewalls.Text.0X41F]
1=Bu bilgisayarda güvenlik duvarý yazýlýmý algýlandý. Bu güvenlik duvarý yüklemeye iliþkin uyarý iletiþim kutularý görüntüleyebilir.
2=Bu uyarýlardan birini gördüðünüzde lütfen HP programlarýnýn devam etmesine izin verin.
3=Ýþlemin devam etmesine izin vermek için genellikle kullanýlan bazý terimler þunlardýr: Engeli kaldýr, Evet, Ýzin ver ve Býrak.
4=Yükleme programýný engellemek, muhtemelen yüklemenin baþarýsýz olmasýna neden olur.
[shield.roxio.text]
1=[%lang%] This program is installed and is incompatible with this software.
2=[%lang%] You must either uninstall or upgrade this program before continuing this installation.
3=[%lang%] To uninstall this program, go to Add/Remove Programs in the Windows Control Panel.
4=[%lang%] If you choose to upgrade this program, visit http://www.roxio.com/en/support/ecdc/ecdc_plat_535_updt.jhtml to register and download the upgrade.
5=[%lang%] Ensure the program is upgraded or uninstalled and then click Retry to continue installation.
[Shield.Firewalls.Text]
1=[%lang%] Firewall software has been detected on this computer.
2=[%lang%] Disable the software firewall before continuing so the HP installation software can detect the device on the network.You can enable the software firewall after completing the installation.
3=[%lang%] See your software firewall documentation for information about how to temporarily disable it.
4=[%lang%] For more information, including how to protect your system when the firewall is disabled visit: https://support.hp.com/us-en?openCLC=true choose your product and search for "network installation with firewalls".
[DirectX]
Version=0x0004000900000384
[setup.bitmap.text.0x1]
1=äÔßÑß Úáì ÇÎÊíÇÑ HP.
2=ÚÑæÖ æÎÕæãÇÊ ÑÇÆÚÉ ááãäÊÌÇÊ ÎÇÕÉ ÈÚãáÇÁ HP
6=Þã ÈÚãá äÓÎÇÊ ÈÏæä ÊÔÛíá ÇáßãÈíæÊÑ ÇáÎÇÕ Èß
7=Þã ÈØÈÇÚÉ ÕæÑ ÑÇÆÚÉ ãä ÇáßÇãíÑÇ ÇáÑÞãíÉ ÇáÎÇÕÉ Èß
8=Þã ÈãÓÍ ÇáÕæÑ æÇáãÓÊäÏÇÊ Åáì ÌåÇÒ ÇáßãÈíæÊÑ ÇáÎÇÕ Èß
[Setup.bitmap.eSupport.text.0x1]
1=ãÕÏÑ ãÊßÇãá ááæÕæá Åáì ãíÒÇÊ ÑÆíÓíÉ ááãäÊÌ, ÇáæËÇÆÞ, ãÚáæãÇÊ Íá ÇáãÔßáÇÊ æÔÑÇÁ ÇáãÓÊáÒãÇÊ Úáì ÇáÅäÊÑäÊ.
[Setup.bitmap.PSE.text.0x1]
1=ÈÑäÇãÌ ÕæÑ íÓãÍ áß ÈÍßÇíÉ ÍßÇíÇÊ ãÏåÔÉ ÈÈÓÇØÉ
2=ÕÝÍÉ ÑÆíÓíÉ ãÎÕÕÉ ÌÏíÏÉ ÊãíøÒ ÃßÈÑ ÕæÑß ÃåãíÉð áÇÓÊÎÏÇã ÝæÑí
3=ÇáÍÕæá Úáì ÇáãØÈæÚÇÊ ÇáãØáæÈÉ ÈãÑÉ æÇÍÏÉ, ÈÚÏÉ ÃÍÌÇã- Ïæä ÃíÉ ãÝÇÌÃÉ
4=ÞæÇáÈ ÈÓíØÉ ÊÓãÍ áß ÈØÈÇÚÉ ÕÝÍÇÊ ÃáÈæã ÈåÇ ãÌãæÚÉ ÞØÚ ãÎÊáÝÉ Ýí ãäÒáß
5=ãÔÇÑßÉ ÃáÈæãÇÊ ÕæÑ ßÇãáÉ ãÚ ÇáÃÕÏÞÇÁ æÇáÚÇÆáÉ Ïæä ÇáÍÇÌÉ Åáì ÊÍãíá ãÑÝÞÇÊ
6=ÇáÚËæÑ Úáì ÕæÑß ÈÓåæáÉ ÈÇáØÑíÞÉ ÇáãØáæÈÉ- ÍÓÈ ÇáÊÇÑíÎ, ÇáÚáÇãÉ, ÇáãÌáÏÇÊ, ÇáÈÍË, ÇáãÝÖáÇÊ
7=ÏÚ ÔÑßÉ HP Ãä ÊÞæã ÂáíðÇ ÈÊÕÍíÍ ÇáÕæÑ, ÅÒÇáÉ ÇáÚíæä ÇáÍãÑÇÁ, ÅÒÇáÉ Úíæä ÇáÍíæÇäÇÊ ÇáÎÖÑÇÁ
8=ÊÚáã ÈÍíË ÊÚãá ÇáãÒíÏ – Þã ÈÇáÌæáÉ ÇáÙÇåÑÉ Úáì ÇáÔÇÔÉ
9=ÊÃßÏ ãä ÇáÞíÇã ÈÇáÊÍÏíË ÈÍíË ÊÍÕá Úáì ÇáãíÒÇÊ æÇáÝæÇÆÏ ÇáÑÇÆÚÉ ÇáÃÍÏË ÈÇáãÌÇä
10=Þã ÈØáÈ ãØÈæÚÇÊ æãäÊÌÇÊ ãÍÊÑÝÉ ááÕæÑ ãä ÞÈá Snapfish (íÊæÝÑ Ýí ãäÇØÞ/ÈáÏÇä ãÎÊÇÑÉ)
[Setup.bitmap.DTSS.text.0x1]
1=Þã ÈØáÈ ÎÑØæÔÇÊ ÍÈÑ ÈÏíáÉ ÃÕáíÉ ãä HP ÈÃßËÑ ÓÑÚÉ æÓåæáÉ ãä ÎáÇá ÈÑäÇãÌ "Shop for HP Supplies" (ÊÓæÞ Úä ãÓÊáÒãÇÊ HP)
[Setup.bitmap.WebPrint.text.0x1]
1=ØÈÇÚÉ ÈÓíØÉ æãÊæÞÚÉ áÕÝÍÇÊ æíÈ ãÚ ÇáÊÍßã ÈãÇ ÊÑÛÈ Ýí ØÈÇÚÊå æßíÝíÉ ØÈÇÚÊå
[setup.bitmap.text]
1=[%lang] Thank you for choosing HP
2=[%lang] Exceptional Product Offers and Discounts for HP Customers
6=Make copies without turning on your computer
7=Print beautiful photos from your digital camera
8=Scan photos and documents to your computer
[Setup.bitmap.eSupport.text]
1=[%lang] Your one-stop for accessing key product features, documentation, troubleshooting, and online supplies shopping
[Setup.bitmap.PSE.text]
1=[%lang] Photo software that simply lets you tell amazing stories
2=[%lang] New personalized homepage elevates your most relevant photos for instant use
3=[%lang] Get the prints you want the first time, in a variety of sizes - no surprises
4=[%lang] Easy templates let you print album collage pages right at home
5=[%lang] Share entire photo albums with friends and family without the hassle of attachments
6=[%lang] Easily find your photos the way you want - Date, Tag, Folders, Search, Favorites
7=[%lang] Let HP automatically fix photos, remove red eye, pet green eye
8=[%lang] Learn to do more - take the onscreen tour
9=[%lang] Make sure to update to get the latest exciting free features and benefits
10=[%lang] Order professional prints and photo products from Snapfish (where available in select regions)
[Setup.bitmap.DTSS.text]
1=[%lang] Quickly and easily order Original HP replacement ink cartridges with "Shop for HP Supplies" software
[Setup.bitmap.WebPrint.text]
1=[%lang] Simple, predictable web printing with control over what you want and how you want it printed
[Setup.bitmap.text.0x404]
1=·PÁ±z¿ïÁÊ HP ªº²£«~¡C
2=¬° HP ¥Î¤á´£¨Ñªº¯S®í²£«~Àu´f©M§é¦©
6=¦b¤£¶}±Ò¹q¸£ªº±¡ªp¤U¶i¦æ¼v¦L
7=±q±zªº¼Æ¦ì¬Û¾÷¦C¦L¥Xº}«Gªº¬Û¤ù
8=±N¬Û¤ù»P¤å¥ó±½´y¦Ü±zªº¹q¸£
[Setup.bitmap.eSupport.text.0x404]
1=¦s¨ú¥D­n²£«~¥\¯à¡B¤å¥ó¡BºÃÃø±Æ¸Ñ©M¹ê²{½u¤WÁʪ«ªº¤@¯¸¦¡¡]One-Stop¡^¥\¯à¡C
[Setup.bitmap.PSE.text.0x404]
1=¬Û¤ù³nÅé¥iÅý±z»´ÃPÁ¿­z¯«©_ªº¬G¨Æ¡C
2=·sªº­Ó©Ê¤Æ­º­¶¥i´£ª@±z§Y®É¨Ï¥Îªº±K¤Á¬ÛÃö¬Û¤ù
3=¤£¥ÎÅå³Y²Ä¤@¦¸´N¯à¨ú±o±z·Q­nªº¤£¦P¤j¤p¦C¦L¥ó
4=²©öªº¼ÒªO¥iÅý±z¦b®a´N¯à¦C¦L¬Ûï¬ü³N­¶
5=¤£¥Î·Ð¤Hªºªþ¥ó´N¥i¥H»P¿ËªB¦n¤Í¦@¨É¾ã­Ó¬Ûï
6=»´ÃP¥H±z·Q­nªº¤è¦¡§ä´M¬Û¤ù ¡Ð ¤é´Á¡B¼Ð°O¡BÀɮק¨¡B·j´M¡B§Úªº³Ì·R¡C
7=Åý HP ¦Û°Ê­×¥¿¬Û¤ù¡B²¾°£¬õ²´©MÃdª«ºñ²´
8=ÁA¸Ñ§ó¦h ¡Ð ¶i¤J¤@³õ¿Ã¹õ¤§®È
9=½T«O§ó·s¡A¥H¨ú±o³Ì·s¥B¿E°Ê¤H¤ßªº§K¶O¥\¯à©MÀu´f
10=±q Snapfish ­qÁʱM·~ªº¦C¦L¥ó©M¬Û¤ù²£«~¡]¶È­­¬Y¨Ç¦a°Ï¡^
0
caroline2 Messages postés 41 Date d'inscription mardi 16 décembre 2008 Statut Membre Dernière intervention 22 décembre 2008 > caroline2 Messages postés 41 Date d'inscription mardi 16 décembre 2008 Statut Membre Dernière intervention 22 décembre 2008
19 déc. 2008 à 18:07
[Setup.bitmap.DTSS.text.0x404]
1=¨Ï¥Î¡uÁʶR HP ¯Ó§÷¡v³nÅé§Ö³t¡B»´ÃP¦a­qÁÊ­ì¸Ë HP §ó´«¾¥§X¡C
[Setup.bitmap.WebPrint.text.0x404]
1=²©ö¡B¥i¹wª¾ªººô­¶¦C¦L¥iÅý±z±±¨î±z·Q­nªº¦C¦L®æ¦¡©M¤è¦¡
[Setup.bitmap.text.0x804]
1=¸ÐлÄúÑ¡¹º HP ²úÆ·¡£
2=Ϊ HP Óû§ÌṩµÄÌرð²úÆ·ÓŻݺÍÕÛ¿Û
6=²»Óôò¿ª¼ÆËã»ú¼´¿É½øÐи´Ó¡
7=´ÓÊýÂëÏà»ú´òÓ¡¾«ÃÀµÄÕÕƬ
8=½«ÕÕƬºÍÎĵµÉ¨Ãèµ½¼ÆËã»úÖÐ
[Setup.bitmap.eSupport.text.0x804]
1=·ÃÎÊÖ÷Òª²úÆ·¹¦ÄÜ¡¢Îĵµ¡¢ÒÉÄÑÅŽâÐÅÏ¢ºÍʵÏÖÔÚÏß¹ºÂòºÄ²ÄµÄһվʽ¹¦ÄÜ
[Setup.bitmap.PSE.text.0x804]
1=¿ÉÈÃÄúÇáËÉչʾ·ÇͬѰ³£¾­ÀúµÄÕÕƬÈí¼þ
2=ÐÂʽ¸öÐÔ»¯Ö÷Ò³¿ÉÌṩ´ó¶àÊýÏà¹ØÕÕƬ£¬ÒԱ㼴ʱʹÓÃ
3=»ñµÃÄúµÚÒ»´Î¾ÍÏëµÃµ½µÄ¶àÖֳߴçµÄ´òÓ¡¼þ £­ Ò»ÃþÒ»Ñù
4=¼òÒ×Ä£°åÈÃÄúÔÚ¼Ò¼´¿É´òÓ¡Ïà²áÆ´ÌùÒ³Ãæ
5=ÎÞÐè·¢ËÍÄÕÈ˵ĸ½¼þ¼´¿ÉÓëÇ×ÅóºÃÓѹ²Í¬·ÖÏíÕû¸öÏà²á
6=°´ÕÕÄúÏ£ÍûµÄ·½Ê½ ¡ª ÈÕÆÚ¡¢±êÇ©¡¢Îļþ¼Ð¡¢ËÑË÷¡¢Êղؼз½±ãµØÕÒµ½ÕÕƬ
7=Èà HP ×Ô¶¯ÐÞ¸´ÕÕƬ¡¢Ïû³ýºìÑۺͳèÎïÂÌÑÛ
8=ѧϰ¸ü¶à¼¼ÇÉ ¡ª Çëͨ¹ýÆÁÄ»²é¿´¼ò½é
9=È·±£¸üУ¬ÒÔ»ñÈ¡×îеÄÁîÈ˾ªÏ²µÄÃâ·Ñ¹¦ÄܺÍÓÅ»Ý
10=ͨ¹ý Snapfish£¨½öÏÞijЩµØÇø£©¶¨¹º×¨Òµ´òÓ¡¼þºÍÕÕƬ²úÆ·
[Setup.bitmap.DTSS.text.0x804]
1=ͨ¹ý¡°¹ºÂò HP ºÄ²Ä¡±Èí¼þ·½±ã¿ì½ÝµØ¶¨¹ºÔ­×° HP ±¸ÓÃÄ«ºÐ
[Setup.bitmap.WebPrint.text.0x804]
1=¼òµ¥¡¢¿ÉÔ¤²âµÄ Web ´òÓ¡Äܹ»ÈÃÄú¿ØÖÆ´òÓ¡ÄÚÈݺʹòÓ¡·½Ê½¡£
[Setup.bitmap.text.0x5]
1=Dìkujeme vám, že jste si vybrali spoleènost Hewlett-Packard.
2=Mimoøádné nabídky produktù a slevy pro zákazníky spoleènosti HP
6=Kopírování bez zapnutí poèítaèe
7=Tisk nádherných fotografií z digitálního fotoaparátu
8=Skenování fotografií a dokumentù do poèítaèe
[Setup.bitmap.eSupport.text.0x5]
1=Váš pøímý pøístup ke klíèovým funkcím produktu, dokumentaci, øešení problémù a online nákupu spotøebního materiálu
[Setup.bitmap.PSE.text.0x5]
1=Fotografický software, který vám umožòuje jednoduše vyprávìt vzrušující pøíbìhy
2=Nová personalizovaná domovská stránka vám umožòuje mít nejžádanìjší fotografie pøipravené k okamžitému použití
3=Na první pokus vytisknìte obázky, které chcete, v rùzných velikostech - žádná nepøíjemná pøekvapení
4=Jednoduché šablony vám pomohou tisknout album koláží - doma
5=Sdílejte alba fotografií s pøáteli a rodinou - bez nutnosti použít obtížných pøíloh
6=Jednoduše vyhledávejte fotografie zpùsobem, který se vám hodí - podle data, oznaèení, vyhledání, oblíbené
7=Nechte HP, aby za vás korigoval fotografie - efekt èervených oèí, zelené oèi domácích mazlíèkù
8=Pouète se, jak lépe využít - prohlédnìte si interaktivní presentaci
9=Proveïte aktualizaci, abyste získali pøístup k nejnovìjším, zdarma poskytovaným funkcím a benefitùm
10=Objednejte si profesionální tisky a fotografické produkty od Snapfish (pokud je dostupný ve vybraných oblastech)
[Setup.bitmap.DTSS.text.0x5]
1=Jednoduše a rychle si objednejte originální náhradní inkoustové kazety HP pomocí software "Shop for HP Supplies"
[Setup.bitmap.WebPrint.text.0x5]
1=Jednoduchý a pøedvídatelný tisk na internetu s možností urèit co a jak chcete vytisknout
[Setup.bitmap.text.0x6]
1=Tak, fordi du valgte HP.
2=Exceptionelle produkttilbud og rabatter til HP-kunder
6=Lav kopier uden at tænde computeren
7=Udskriv flotte fotos fra dit digitalkamera
8=Scan fotos og dokumenter til computeren
[Setup.bitmap.eSupport.text.0x6]
1=Her får du adgang til produktegenskaber, dokumentation, fejlfinding samt online-køb af forbrugsvarer
[Setup.bitmap.PSE.text.0x6]
1=Fotosoftware, som du kan bruge til at fortælle spændende historier.
2=Ny tilpasset hjemmeside, hvor dine nyeste billeder er klar til øjeblikkelig brug
3=Få de rigtige udskrifter i første forsøg, i mange forskellige størrelser – ingen overraskelser
4=Brugervenlige skabeloner, så du kan udskrive albumsider derhjemme
5=Del hele fotoalbum med venner og familie uden at bekymre dig om vedhæftede filer
6=Du finder nemt de fotos, du skal bruge - Dato, Label, Mapper, Søg, Foretrukne
7=Lad HP fjerne røde øjne automatisk
8=Få mere at vide – se præsentationen på skærmen
9=Husk at opdatere, så du får de nyeste gratis funktioner og fordele
10=Bestil professionelle udskrifter og fotoprodukter fra Snapfish (findes kun i nogle områder)
[Setup.bitmap.DTSS.text.0x6]
1=Bestil nemt og hurtigt originale HP-blækpatroner med programmet "Køb HP-forbrugsvarer"
[Setup.bitmap.WebPrint.text.0x6]
1=Enkel og forudsigelig webudskrivning, hvor du har styr på, hvad der udskrives, og hvordan det udskrives
[Setup.bitmap.text.0x7]
1=Vielen Dank, dass Sie sich für HP entschieden haben.
2=Einmalige Produktangebote und Rabatte für HP Kunden
6=Erstellen Sie Kopien, ohne den Computer einzuschalten
7=Drucken Sie schöne Fotos von Ihrer Digitalkamera
8=Scannen Sie über den Computer Fotos und Dokumente
[Setup.bitmap.eSupport.text.0x7]
1=Zentrale Anlaufstelle bzgl. Produktfunktionen, Dokumentation, Fehlerbehebung und Online-Shop für Verbrauchsmaterialien
[Setup.bitmap.PSE.text.0x7]
1=Foto-Software, mit der Sie auf einfache Weise beeindruckende Geschichten erzählen können.
2=Auf der neuen persönlichen Homepage werden immer die relevantesten Fotos zur sofortigen Verwendung angezeigt.
3=Erstellen Sie die gewünschten Ausdrucke gleich beim ersten Mal, auch in verschiedenen Größen - ohne böse Überraschungen.
4=Mit einfachen Vorlagen können Sie zuhause Collagenseiten aus Alben drucken.
5=Zeigen Sie Ihren Freunden und Verwandten ganze Fotoalben, ohne sich mit E-Mail-Anhängen herumplagen zu müssen.
6=Suchen Sie Ihre Fotos anhand der von Ihnen festgelegten Kriterien - Datum, Kennung, Ordner, Suche, Favoriten.
7=Lassen Sie HP automatisch Fotos korrigieren und rote bzw. grüne Augen (bei Tieren) entfernen.
8=Lernen Sie alle verfügbaren Funktionen kennen - nehmen Sie an der Online-Tour teil.
9=Aktualisieren Sie die Software, um auf die neuesten kostenlosen Funktionen zugreifen und Vorteile nutzen zu können.
10=Bestellen Sie professionelle Ausdrucke und Fotoprodukte über Snapfish (in ausgewählten Regionen verfügbar).
[Setup.bitmap.DTSS.text.0x7]
1=Bestellen Sie schnell und einfach original HP Ersatztintenpatronen mit der Software "Shop for HP Supplies".
[Setup.bitmap.WebPrint.text.0x7]
1=Einfaches, zuverlässiges Web-Drucken, bei dem Sie steuern können, was Sie drucken und wie Sie es drucken.
[Setup.bitmap.text.0x8]
1=Óáò åõ÷áñéóôïýìå ðïõ åðéëÝîáôå ôçí HP.
2=ÌïíáäéêÝò ðñïóöïñÝò ðñïúüíôùí êáé åêðôþóåéò ãéá ðåëÜôåò HP
6=ÄçìéïõñãÞóôå áíôßãñáöá ÷ùñßò íá áíïßîåôå ôïí õðïëïãéóôÞ óáò
7=Åêôõðþóôå ðáíÝìïñöåò öùôïãñáößåò áðü ôçí øçöéáêÞ öùôïãñáöéêÞ óáò ìç÷áíÞ
8=Óáñþóôå öùôïãñáößåò êáé Ýããñáöá óôïí õðïëïãéóôÞ óáò
[Setup.bitmap.eSupport.text.0x8]
1=¸íá óçìåßï ðñüóâáóçò óå ÷áñáêôçñéóôéêÜ, ôåêìçñßùóç, áíôéìåôþðéóç ðñïâëçìÜôùí, online áãïñÜ
[Setup.bitmap.PSE.text.0x8]
1=Ëïãéóìéêü öùôïãñáöéþí ðïõ óáò åðéôñÝðåé íá áöçãçèåßôå åêðëçêôéêÝò éóôïñßåò ìå ôïí ðéï áðëü ôñüðï
2=ÍÝá êåíôñéêÞ óåëßäá ðñïóáñìïóìÝíç óôéò ðñïóùðéêÝò óáò ðñïôéìÞóåéò ðïõ êáèéóôÜ ôéò óçìáíôéêüôåñåò öùôïãñáößåò óáò äéáèÝóéìåò ãéá Üìåóç ÷ñÞóç
3=Åîáóöáëßóôå ôéò åêôõðþóåéò ðïõ èÝëåôå áðü ôçí ðñþôç êéüëáò öïñÜ, óå ðïéêéëßá ìåãåèþí - ÷ùñßò åêðëÞîåéò
4=Åý÷ñçóôá ðñüôõðá óÜò åðéôñÝðïõí íá åêôõðþóåôå óåëßäåò êïëëÜæ ãéá Üëìðïõì áðü ôçí Üíåóç ôïõ óðéôéïý óáò
5=Ìïéñáóôåßôå ïëüêëçñá Üëìðïõì öùôïãñáöéþí ìå ößëïõò êáé óõããåíåßò ÷ùñßò åðéóõíÜøåéò
6=Âñåßôå åýêïëá ôéò öùôïãñáößåò óáò ìå ôïí ôñüðï ðïõ óáò âïëåýåé - Çìåñïìçíßá, ÓÞìáíóç, ÖÜêåëïé, ÁíáæÞôçóç, ÁãáðçìÝíá
7=ÁöÞóôå ôçí HP íá äéïñèþóåé áõôüìáôá öùôïãñáößåò, íá áöáéñÝóåé ôá êüêêéíá ìÜôéá áðü öùôïãñáößåò áíèñþðùí Þ ôá ðñÜóéíá ìÜôéá áðü öùôïãñáößåò êáôïéêßäéùí
8=ÌÜèåôå íá êÜíåôå ðåñéóóüôåñá ðñÜãìáôá - êÜíôå ìéá çëåêôñïíéêÞ ðåñéÞãçóç
9=Åðùöåëçèåßôå áðü êÜèå åíçìÝñùóç ãéá íá ëÜâåôå äùñåÜí ôá ôåëåõôáßá óõíáñðáóôéêÜ ÷áñáêôçñéóôéêÜ êáé ðëåïíåêôÞìáôá
10=Ðáñáããåßëôå åðáããåëìáôéêÝò åêôõðþóåéò êáé öùôïãñáöéêÜ ðñïúüíôá áðü ôï Snapfish (äéáèÝóéìï óå åðéëåãìÝíåò ðåñéï÷Ýò)
[Setup.bitmap.DTSS.text.0x8]
1=Ðáñáããåßëôå ãñÞãïñá êáé åýêïëá ãíÞóéá äï÷åßá ìåëÜíçò áíôéêáôÜóôáóçò HP ìå ôï ëïãéóìéêü "Shop for HP Supplies" (ÁãïñÜ áíáëùóßìùí HP)
[Setup.bitmap.WebPrint.text.0x8]
1=ÁðëÞ, ðñïâëÝøéìç åêôýðùóç ìÝóù web ìå ðëÞñç Ýëåã÷ï ùò ðñïò ôï ôé åêôõðþíåôáé êáé ðþò
[setup.bitmap.text.0x9]
1=Thank you for choosing HP
2=Exceptional Product Offers and Discounts for HP Customers
6=Make copies without turning on your computer
7=Print beautiful photos from your digital camera
8=Scan photos and documents to your computer
[Setup.bitmap.eSupport.text.0x9]
1=Your one-stop for accessing key product features, documentation, troubleshooting, and online supplies shopping
[Setup.bitmap.PSE.text.0x9]
1=Photo software that simply lets you tell amazing stories
2=New personalized homepage elevates your most relevant photos for instant use
3=Get the prints you want the first time, in a variety of sizes - no surprises
4=Easy templates let you print album collage pages right at home
5=Share entire photo albums with friends and family without the hassle of attachments
6=Easily find your photos the way you want - Date, Tag, Folders, Search, Favorites
7=Let HP automatically fix photos, remove red eye, pet green eye
8=Learn to do more - take the onscreen tour
9=Make sure to update to get the latest exciting free features and benefits
10=Order professional prints and photo products from Snapfish (where available in select regions)
[Setup.bitmap.DTSS.text.0x9]
1=Quickly and easily order Original HP replacement ink cartridges with "Shop for HP Supplies" software
[Setup.bitmap.WebPrint.text.0x9]
1=Simple, predictable web printing with control over what you want and how you want it printed
[Setup.bitmap.text.0xa]
1=Gracias por elegir HP.
2=Ofertas y descuentos excepcionales para los clientes de HP
6=Realice copias sin encender el equipo
7=Imprima excelentes fotografías desde su cámara digital
8=Escanee y guarde fotografías y documentos en su equipo
[Setup.bitmap.eSupport.text.0xa]
1=Un único punto de acceso a funciones esenciales del producto, documentación, solución de problemas y compra de consumibles en línea
[Setup.bitmap.PSE.text.0xa]
1=Software fotográfico para que pueda contar historias sorprendentes
2=Nueva página principal personalizada que incorpora sus fotografías más importantes para su uso inmediato
3=Consiga las impresiones que quiere a la primera, en distintos tamaños, sin sorpresas
4=Plantillas de fácil uso para imprimir páginas con montajes de álbumes directamente en casa
5=Comparta sus álbumes de fotografías con los amigos y familiares sin la complicación de los archivos adjuntos.
6=Encuentre fácilmente sus fotografías y de la forma que prefiera: por fecha, etiquetas, carpetas, con la opción de búsqueda, en favoritos
7=Deje que HP arregle las fotos automáticamente, elimine el efecto ojos rojos u ojos verdes (en fotos de animales).
8=Aprenda a hacer más, siga la presentación en pantalla
9=Asegúrese de actualizar su aplicación para disfrutar de las prestaciones y ventajas gratuitas más atractivas y novedosas
10=Solicite copias y fotografías profesionales a Snapfish (si está disponible en determinadas zonas)
[Setup.bitmap.DTSS.text.0xa]
1=Pida cartuchos de tinta de repuesto originales de HP, rápida y fácilmente, con el software "Shop for HP Supplies"
[Setup.bitmap.WebPrint.text.0xa]
1=Impresión de Internet sencilla y previsible con control sobre lo que quiere imprimir y sobre cómo imprimirlo
[Setup.bitmap.text.0xb]
1=Kiitos, että valitsit HP:n.
2=Tuotteiden erikoistarjouksia ja alennuksia HP:n asiakkaille
6=Ota kopioita käynnistämättä tietokonetta
7=Tulosta kauniita kuvia digitaalikamerasta
8=Skannaa valokuvia ja asiakirjoja tietokoneeseen
[Setup.bitmap.eSupport.text.0xb]
1=Tästä saat käyttöösi kaiken, tuotteen tärkeimmät ominaisuudet, julkaisut ja vianmäärityksen, ja voit osaa tarvikkeita verkosta
[Setup.bitmap.PSE.text.0xb]
1=Valokuvien käsittelyohjelmisto, jonka avulla voit kertoa mahtavia tarinoita
2=Uusi muokattu kotisivu antaa parhaimmat kuvasi heti käyttöön
3=Tee haluamasi kuvat heti ensimmäisellä yrityksellä ja oikean kokoisina - ei yllätyksiä
4=Helpot mallit auttavat tulostamaan albumisivuja kotona
5=Jaa kokonaisia valokuva-albumeja ystävien ja perheen kesken liitetiedostoja käyttämättä
6=Löydät valokuvat helposti haluamallasi tavalla: päivämäärän, merkin tai kansion perusteella, hakutoiminnolla tai suosikeista
7=Anna HP:n korjata kuvat automaattisesti, poistaa punasilmäisyyden tai lemmikkien vihreäsilmäisyyden
8=Opettele tekemään enemmän - seuraa opetusohjelmaa näytössä
9=Muista päivittää. Saat uusimmat kivat ominaisuudet ja edut ilmaiseksi
10=Tilaa ammattimaisia tulosteita ja valokuvatuotteita Snapfish-palvelusta (käytössä tietyillä alueilla)
[Setup.bitmap.DTSS.text.0xb]
1=Alkuperäisten HP:n vaihtomustekasettien tilaaminen on nopeaa ja kätevää "Shop for HP Supplies" -ohjelmistolla
[Setup.bitmap.WebPrint.text.0xb]
1=Yksinkertaista ja luotettavaa Web-tulostusta. Voit päättää, mitä ja kuinka haluat tulostaa
[Setup.bitmap.text.0xc]
1=Merci d'avoir choisi HP !
2=Offres de produits et promotions exceptionnelles pour les clients HP
6=Réalisez des copies sans allumer votre ordinateur
7=Imprimez de superbes photos à partir de votre appareil photo numérique
8=Numérisez photos et documents sur votre ordinateur
[Setup.bitmap.eSupport.text.0xc]
1=Votre point d'accès centralisé aux principales fonctionnalités du produit, au dépannage et à l'achat de consommables urnitures en ligne
[Setup.bitmap.PSE.text.0xc]
1=Un logiciel photo qui vous permet de raconter simplement des récits stupéfiants !
2=Une nouvelle page d'accueil personnalisée qui met en valeur vos plus belles photos pour une utilisation immédiate
3=Obtenez les épreuves que vous voulez dès la première fois, dans divers formats, sans surprises
4=Des modèles faciles pour imprimer des photocollages de pages de votre album depuis chez vous
5=Partagez intégralement vos albums de photos avec vos proches sans toutes les complications des pièces jointes
6=Trouvez facilement vos photos par le biais de votre choix : Date, Marquage, Dossiers, Rechercher ou Favoris
7=Laissez la correction automatique HP suprprimer l'effet yeux rouges, ou yeux verts pour les animaux
8=Pour voir comment vous perfectionner, laissez-vous guider !
9=Installez la mise à jour pour obtenir notre toute dernière offre gratuire de fonctionnalités et d'avantages
10=Commandez des tirages professionnels et des produits photos à partir de Snapfish (disponible dans plusieurs régions)
[Setup.bitmap.DTSS.text.0xc]
1=Commandez rapidement et facilement des cartouches d'encre HP d'origine avec le logiciel "Achat de consommables HP"
[Setup.bitmap.WebPrint.text.0xc]
1=L'impression Web, simple et prévisible avec la possibilité de choisir l'élément à imprimer et le mode d'impression
[setup.bitmap.text.0xd]
1=úåãä ùáçøú á-HPþ.
2=äðçåú åîáöòéí éåöàéí îï äëìì ìì÷åçåú HP
6=öåø òåú÷éí îáìé ìäôòéì àú äîçùá ùáøùåúê
7=äãôñ öéìåîéí îøäéáéí îäîöìîä äãéâéèìéú ùáøùåúê
8=ñøå÷ öéìåîéí åîñîëéí ìîçùá ùáøùåúê
[Setup.bitmap.eSupport.text.0xd]
1=î÷åí àçã ùáå áàôùøåúê ìîöåà îàôééðé îåöø òé÷øééí, úéòåã, ôúøåï áòéåú åìøëåù çåîøéí îúëìéí áàåôï î÷ååï
[Setup.bitmap.PSE.text.0xd]
1=úåëðåú öéìåí äîàôùøåú ìê ìñôø ñéôåøéí îãäéîéí á÷ìåú
2=ãó áéú çãù åîåúàí àéùéú îòìä àú äöéìåîéí äøìååðèééí áéåúø ùìê ìùéîåù îééãé
3=÷áì àú ääãôñéí äøöåééí áôòí äøàùåðä, áîâååï âãìéí - ììà äôúòåú
4=úáðéåú ÷ìåú îàôùøåú ìê ìäãôéñ ááéú ãôé ÷åìàæ' ìàìáåí
5=ùúó àìáåîé öéìåîéí ùìîéí òí çáøéí åáðé îùôçä ììà èøçä ùì ÷áöéí îöåøôéí
6=áàôùøåúê ìîöåà á÷ìåú àú äöéìåîéí äøöåééí - úàøéê, ñéîåï, úé÷éåú, çéôåù, îåòãôéí
7=àôùø ì-HP ìú÷ï öéìåîéí áàåôï àåèåîèé, ìäñéø òéðééí àãåîåú, òéðééí éøå÷åú á÷øá áòìé çééí
8=ìîã ìáöò éåúø - äùúúó áñéåø ùòì-âáé äîñê
9=ä÷ôã ìòãëï òì-îðú ì÷áì àú äéúøåðåú åäîàôééðéí äîøäéáéí åäòãëðééí áéåúø áçéðí
10=äæîï äãôñéí î÷öåòééí åîåöøé öéìåí î-Snapfish (æîéï áîãéðåú/àæåøéí ðáçøéí)
[Setup.bitmap.DTSS.text.0xd]
1=äæîï áîäéøåú åá÷ìåú îçñðéåú ãéå çìåôéåú åî÷åøéåú ùì HP áàîöòåú äúåëðä "Shop for HP Supplies" (øëéùú çåîøéí îúëìéí ùì HP)
[Setup.bitmap.WebPrint.text.0xd]
1=äãôñä ôùåèä åöôåéä îäàéðèøðè òí á÷øä òì îä ùîåãôñ åòì àåôï ääãôñä
[Setup.bitmap.text.0xe]
1=Köszönjük, hogy HP terméket választott.
2=Rendkívüli termékajánlatok és árengedmények a HP vásárlói számára
6=Másolatok készítése a számítógép bekapcsolása nélkül
7=Kiváló minõségû fényképek nyomtatása a digitális fényképezõgéprõl
8=Fényképek és dokumentumok beolvasása a számítógépbe
[Setup.bitmap.eSupport.text.0xe]
1=Központi webhely a legfontosabb termékszolgáltatások, dokumentációk, hibaelhárítási információk és online megvásárolható kellékek eléréséhez
[Setup.bitmap.PSE.text.0xe]
1=Fényképkezelõ szoftver, mellyel történeteket mesélhet
2=Az új, személyre szabott kezdõlap kiemeli a legfontosabb fényképeket az azonnali felhasználhatóság érdekében
3=Nincs több meglepetés: azonnal a kívánt papírképeket rendelheti meg, különbözõ méretekben
4=A könnyen használható sablonokkal otthon is nyomtathat montázsoldalakat albumaihoz
5=Akár teljes fotóalbumokat is megoszthat barátaival és családtagjaival – e-mail mellékletek nélkül
6=Könnyedén megkeresheti a kívánt fényképeket dátum, címke, mappa és keresõkifejezés alapján, vagy a Kedvencek között
7=A HP automatikus fotójavítási szolgáltatásaival könnyedén eltávolíthatja a vörösszem- és zöldszem-effektust
8=Többre kíváncsi? Tekintse meg az online bemutatót
9=Frissítsen rendszeresen, hogy mindig a legújabb ingyenes szolgáltatásokat használhassa
10=Rendeljen professzionális minõségû papírképeket és fotózási kellékeket a Snapfish webhelyérõl (ha elérhetõ az Ön régiójában)
[Setup.bitmap.DTSS.text.0xe]
1=A HP-kellékek vásárlása szolgáltatással gyorsan és könnyedén rendelhet eredeti HP-cserepatronokat
[Setup.bitmap.WebPrint.text.0xe]
1=Egyszerû, megjósolható eredményeket produkáló webes nyomtatás, ahol Ön dönti el mit és hogyan szeretne kinyomtatni
[Setup.bitmap.text.0x10]
1=Grazie per aver scelto HP.
2=Eccezionali offerte e sconti per i clienti HP
6=Effettuare copie senza accendere il computer
7=Stampare foto eccezionali dalla fotocamera digitale
8=Acquisire tramite scansione foto e documenti sul computer
[Setup.bitmap.eSupport.text.0x10]
1=Per accedere a: funzioni principali, documentazione, risoluzione dei problemi e acquisto materiali di consumo
[Setup.bitmap.PSE.text.0x10]
1=Il software per le foto consente di raccontare storie meravigliose
2=La nuova pagina iniziale personalizzata consente di mettere in primo piano le foto più importanti per un uso immediato
3=Si può stampare ciò che si vuole, subito e in diversi formati - senza brutte sorprese
4=Modelli di facile uso consentono di stampare collage di foto per un album direttamente a casa propria
5=Si possono condividere interi album con amici e parenti senza l'ingombro di allegati
6=Le foto sono sempre reperibili secondo il criterio desiderato - data, tag, cartella, ricerca, preferite
7=HP corregge automaticamente le foto, elimina l'effetto occhi rossi per le persone od occhi verdi per gli animali
8=Per imparare altre cose, basta avvalersi del tour online
9=Gli aggiornamenti consentono di avere sempre il meglio in termini di nuove funzionalità e vantaggi
10=Snapfish consente di ordinare stampe e foto di qualità professionale (nelle zone in cui questo servizio è disponibile)
[Setup.bitmap.DTSS.text.0x10]
1=Il software "Shop for HP Supplies" consente di ordinare facilmente e rapidamente nuove cartucce d'inchiostro originali HP
[Setup.bitmap.WebPrint.text.0x10]
1=Stampare via Internet facile e prevedibile con un controllo completo su ciò che si desidera stampare e come si desidera stamparlo
[Setup.bitmap.text.0x11]
1=HP »•i‚ð‚¨”ƒ‚¢ã‚°‚¢‚½‚¾‚«‚Ü‚µ‚Ä‚ ‚肪‚Æ‚¤‚²‚´‚¢‚Ü‚µ‚½
2=HP ‚Ì‚¨‹q—lŒü‚¯ HP »•iî•ñ‚₨”ƒ‚¢“¾î•ñ
6=ƒRƒ“ƒsƒ…[ƒ^‚Ì“dŒ¹‚ð“ü‚ê‚È‚­‚Ä‚àƒRƒs[‚Å‚«‚Ü‚·B
7=ƒfƒWƒ^ƒ‹ƒJƒƒ‰‚̎ʐ^‚ðãY—í‚Ɉóü‚µ‚Ü‚·B
8=ŽÊ^‚ƃhƒLƒ…ƒƒ“ƒg‚ðƒRƒ“ƒsƒ…[ƒ^‚ɃXƒLƒƒƒ“‚µ‚Ü‚·B
[Setup.bitmap.eSupport.text.0x11]
1=»•i‚ÌŽå—v‚È‹@”\Aƒ}ƒjƒ…ƒAƒ‹Aƒgƒ‰ƒuƒ‹ƒVƒ…[ƒeƒBƒ“ƒOAÁ–Õ•i‚̃Iƒ“ƒ‰ƒCƒ“ ƒVƒ‡ƒbƒsƒ“ƒO‚ȂǂɃAƒNƒZƒX‚·‚邽‚߂̃ƒ“ƒXƒgƒbƒv‚Å‚·
[Setup.bitmap.PSE.text.0x11]
1=Œ©‰h‚¦‚Ì—Ç‚¢ƒAƒ‹ƒoƒ€‚ðŠÈ’P‚ɍ쐬‚Å‚«‚éƒtƒHƒg ƒ\ƒtƒgƒEƒFƒA
2=V‚µ‚­ƒp[ƒ\ƒiƒ‰ƒCƒY‚³‚ꂽƒz[ƒ€ƒy[ƒW‚ł́A‚·‚®‚ÉŽg‚¦‚é‚悤‚É–Ú“I‚ɍ‡‚Á‚½‡‚ɏォ‚çŽÊ^‚ª•\Ž¦‚³‚ê‚Ü‚·
3=‚³‚Ü‚´‚܂ȃTƒCƒY‚̃vƒŠƒ“ƒg‚ð‚²’•¶‚¢‚½‚¾‚¯‚Ü‚·
4=ƒvƒŠƒ“ƒg ƒAƒ‹ƒoƒ€ ƒRƒ‰[ƒWƒ… ƒy[ƒW‚ð‚²Ž©‘î‚ō쐬‚Å‚«‚éAŠÈ’P‚ȃeƒ“ƒvƒŒ[ƒg‚Å‚·
5=‚킸‚ç‚킵‚¢“Y•tƒtƒ@ƒCƒ‹‚È‚µ‚ɁA—Fl‚â‰Æ‘°‚ƃtƒHƒg ƒAƒ‹ƒoƒ€‘S‘Ì‚ð‹¤—L‚Å‚«‚Ü‚·
6=“ú•tAƒ^ƒOAƒtƒHƒ‹ƒ_AŒŸõA‚¨‹C‚É“ü‚è‚ȂǁA‚¨D‚Ý‚Ì•û–@‚ÅŠÈ’P‚Ɏʐ^‚ðŒ©‚Â‚¯‚邱‚Æ‚ª‚Å‚«‚Ü‚·
7=HP ‚ªŽ©“®“I‚Ɏʐ^‚̏C³AÔ–Ú‚âƒyƒbƒg‚̗Ζڂ̏œ‹Ž‚ðs‚¢‚Ü‚·
8=‚³‚ç‚ɏڂµ‚­—‰ð‚·‚邽‚߁AƒIƒ“ƒXƒNƒŠ[ƒ“ ƒcƒA[‚ðs‚¢‚Ü‚·
9=ÅV‚©‚–³—¿‚Ì‹@”\‚ƃƒŠƒbƒg‚ª“¾‚ç‚ê‚é‚悤‚ɍXV‚µ‚Ü‚·
10=Snapfish ‚̃vƒŽÊ^ƒvƒŠƒ“ƒg‚Ǝʐ^»•i‚ð‚²’•¶‚¢‚½‚¾‚¯‚Ü‚· (ˆê•”’nˆæ‚Ì‚Ý)
[Setup.bitmap.DTSS.text.0x11]
1=ŒðŠ·—p‚Ì HP ê—pƒCƒ“ƒN ƒJ[ƒgƒŠƒbƒW‚ðuHP ƒTƒvƒ‰ƒC•i‚̍w“üvƒ\ƒtƒgƒEƒFƒA‚ÅŠÈ’P‚É‚²w“ü‚¢‚½‚¾‚¯‚Ü‚·
[Setup.bitmap.WebPrint.text.0x11]
1=‚ǂ̎ʐ^‚ð‚ǂ̂悤‚ɃvƒŠƒ“ƒg‚·‚é‚Ì‚©‚ðŠÈ’P‚©‚—\‘ª‚Ç‚¨‚è‚É’²®‚Å‚«‚éAWeb ƒvƒŠƒ“ƒg‚Å‚·
[Setup.bitmap.text.0x12]
1=HP¸¦ ÀÌ¿ëÇØ Áּż­ °¨»çÇÕ´Ï´Ù.
2=HP °í°´À» À§ÇÑ Á¦Ç° Ư°¡ Á¦°ø ¹× ÇÒÀÎ
6=ÄÄÇ»Å͸¦ ÄÑÁö ¾Ê°íµµ º¹»çÇÒ ¼ö ÀÖ½À´Ï´Ù.
7=µðÁöÅÐ Ä«¸Þ¶ó¿¡¼­ Àß ³ª¿Â »çÁøÀ» ÀμâÇÒ ¼ö ÀÖ½À´Ï´Ù.
8=»çÁø°ú ¹®¼­¸¦ ÄÄÇ»ÅÍ·Î ½ºÄµÇÒ ¼ö ÀÖ½À´Ï´Ù.
[Setup.bitmap.eSupport.text.0x12]
1=ÇÙ½É Á¦Ç° ±â´É, ¼³¸í¼­, ¹®Á¦ÇØ°á ¹× ¿Â¶óÀÎ ¼Ò¸ðÇ° ¼îÇο¡ ´ëÇÑ ¿ø½ºÅé ¾×¼¼½º
[Setup.bitmap.PSE.text.0x12]
1=°£ÆíÇÑ ±â´ÉÀ¸·Î ¸ÚÁø Ãß¾ïÀ» ÀüÇØÁÖ´Â »çÁø ¼ÒÇÁÆ®¿þ¾î
2=»õ °³ÀΠȨÆäÀÌÁö´Â ¹Ù·Î »ç¿ëÇϱ⿡ °¡Àå ÀûÇÕÇÑ »çÁøÀ» ´õ¿í µ¸º¸ÀÌ°Ô ÇÕ´Ï´Ù.
3=óÀ½ºÎÅÍ ¿øÇÏ´Â Àμ⹰À» ´Ù¾çÇÑ Å©±â·Î ÀμâÇÒ ¼ö ÀÖ½À´Ï´Ù. ÀüÇô ³î¶ó¿î ÀÏÀÌ ¾Æ´Õ´Ï´Ù.
4=°£ÆíÇÑ ÅÛÇø´À» ÅëÇØ ¾Ù¹ü ÄݶóÁÖ ÆäÀÌÁö¸¦ Áý¿¡¼­ ¹Ù·Î ÀμâÇÒ ¼ö ÀÖ½À´Ï´Ù.
5=÷ºÎ ¾øÀ̵µ Àüü »çÁø ¾Ù¹üÀ» °¡Á· ¹× Ä£±¸µé°ú °øÀ¯ÇÒ ¼ö ÀÖ½À´Ï´Ù.
6=³¯Â¥, ű×, Æú´õ, °Ë»ö, Áñ°Üã±â µî ¿øÇÏ´Â ¹æ½ÄÀ¸·Î »çÁøÀ» ½±°Ô ãÀ» ¼ö ÀÖ½À´Ï´Ù.
7=HP°¡ ÀÚµ¿À¸·Î »çÁøÀ» ¼öÁ¤ÇÏ°í Àû¸ñ ¹× ³ì¸ñ Çö»óÀ» Á¦°ÅÇϵµ·Ï ÇÕ´Ï´Ù.
8=ÀÚ¼¼ÇÑ ³»¿ë ¾Ë¾Æº¸±â - È­¸éÀ» µÑ·¯º¾´Ï´Ù.
9=¾÷µ¥ÀÌÆ®¸¦ ÅëÇØ Èï¹Ì·Î¿î ÃֽŠ¹«·á ±â´É ¹× ÀåÁ¡À» ¾òÀ» ¼ö ÀÖ½À´Ï´Ù.
10=Snapfish¿¡¼­ Àü¹®ÀûÀÎ ÀÎ¼â ¹× »çÁø Á¦Ç°À» ÁÖ¹®(ÀϺΠÁö¿ª¿¡¼­ ÀÌ¿ë °¡´É)
[Setup.bitmap.DTSS.text.0x12]
1="Shop for HP Supplies" ¼ÒÇÁÆ®¿þ¾î¸¦ ÅëÇØ Á¤Ç° HP ±³Ã¼¿ë À×Å© Ä«Æ®¸®Áö¸¦ ºü¸£°í ½±°Ô ÁÖ¹®
[Setup.bitmap.WebPrint.text.0x12]
1=¿øÇÏ´Â ³»¿ëÀ» ¿øÇÏ´Â ¹æ½ÄÀ¸·Î ÀμâÇÒ ¼ö ÀÖ´Â °£ÆíÇÏ°í ¿¹Ãø °¡´ÉÇÑ À¥ ÇÁ¸°ÆÃ
[Setup.bitmap.text.0x13]
1=Bedankt dat u hebt gekozen voor HP.
0
Lyonnais92 Messages postés 25159 Date d'inscription vendredi 23 juin 2006 Statut Contributeur sécurité Dernière intervention 16 septembre 2016 1 536
19 déc. 2008 à 18:02
Re,


Tu vas à la fin du rapport, tu donnes les 100 dernières lignes !

0
caroline2 Messages postés 41 Date d'inscription mardi 16 décembre 2008 Statut Membre Dernière intervention 22 décembre 2008
19 déc. 2008 à 18:10
--------------- [ Lecteur C ] ----------------

C: - Lecteur fixe
+- Listing des fichiers présents :

[14/02/2006 02:39][--a------] C:\AUTOEXEC.BAT
[14/02/2006 02:39][--a------] C:\icremov.bat
[18/12/2008 14:20][--a------] C:\boot.ini.comodofirewall
[18/12/2008 14:20][--a------] C:\NTDETECT.COM
[15/12/2008 18:47][--a------] C:\SmitfraudFix.exe
[19/12/2008 09:06][-rahs----] C:\boot.ini
[19/12/2008 09:33][--a------] C:\ComboFix.txt
[19/12/2008 09:33][--a------] C:\rapport.txt
[19/12/2008 09:33][--a------] C:\SWSTAMP.TXT
[19/12/2008 09:33][--a------] C:\UsbFix.txt
[14/02/2006 02:39][--a------] C:\CONFIG.SYS
[14/02/2006 02:39][--a------] C:\hiberfil.sys
[14/02/2006 02:39][--a------] C:\IO.SYS
[14/02/2006 02:39][--a------] C:\MSDOS.SYS
[14/02/2006 02:39][--a------] C:\pagefile.sys

--------------- [ Lecteur D ] ----------------

D: - Lecteur fixe
+- Listing des fichiers présents :

[22/01/2007 22:53][--a------] D:\AUTOREUSSITE Francais V2.0.exe
[22/01/2007 22:53][--a------] D:\baby_1.exe
[22/01/2007 22:53][--a------] D:\IE7RC1-WindowsXP-x86-fra.exe
[22/01/2007 22:53][--a------] D:\setupSNK.exe

--------------- [ Lecteur E ] ----------------

E: - Lecteur de CD-ROM
+- Listing des fichiers présents :

[20/05/2007 23:43][-r-------] E:\HPZstub.exe
[20/05/2007 23:43][-r-------] E:\Setup.exe
[20/05/2007 23:43][-r-------] E:\hpzsetup.exe
[12/11/2006 18:12][-r-------] E:\PS_AIO_02_webreg.ini
[05/09/2007 14:31][-r-------] E:\autorun.inf
[05/09/2007 14:31][-r-------] E:\hpohsla.inf
[05/09/2007 14:31][-r-------] E:\hpohsls.inf
[05/09/2007 14:31][-r-------] E:\hposcu12.inf
[05/09/2007 14:31][-r-------] E:\hpounppsaio2_09.inf
[05/09/2007 14:31][-r-------] E:\hpounppsaio2_64.inf
[05/09/2007 14:31][-r-------] E:\hpzid413.inf
[05/09/2007 14:31][-r-------] E:\hpzipa13.inf
[05/09/2007 14:31][-r-------] E:\hpzipa23.inf
[05/09/2007 14:31][-r-------] E:\hpzipr13.inf
[05/09/2007 14:31][-r-------] E:\hpzipr23.inf
[05/09/2007 14:31][-r-------] E:\hpzius13.inf
[05/09/2007 14:31][-r-------] E:\hpzius23.inf
[05/09/2007 14:31][-r-------] E:\hpzusfnt.inf
[11/03/2004 23:50][-r-------] E:\license.txt

--------------- [ Lecteur H ] ----------------

H: - Lecteur amovible
+- Listing des fichiers présents :


--------------- [ Registre / Startup ] ----------------

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
"Userinit"="C:\\WINDOWS\\system32\\userinit.exe,"

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Search Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
"Start Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome"

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\run]
TOSCDSPD=C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe
Skype="C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
ctfmon.exe=C:\WINDOWS\system32\ctfmon.exe
DU Meter=C:\Program Files\DU Meter\DUMeter.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\run]
ATIPTA="C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"
SynTPEnh=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
Toshiba Hotkey Utility="C:\Program Files\Toshiba\Windows Utilities\Hotkey.exe" /lang FR
TPSMain=TPSMain.exe
NDSTray.exe=NDSTray.exe
SmoothView=C:\Program Files\TOSHIBA\Utilitaire de zoom TOSHIBA\SmoothView.exe
DLA=C:\WINDOWS\System32\DLA\DLACTRLW.EXE
AdslTaskBar=rundll32.exe stmctrl.dll,TaskBar
Share-to-Web Namespace Daemon=C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
CFSServ.exe=CFSServ.exe -NoClient
ccApp="C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
vptray=C:\PROGRA~1\SYMANT~1\VPTray.exe
VX3000=C:\WINDOWS\vVX3000.exe
LifeCam="C:\Program Files\Microsoft LifeCam\LifeExp.exe"
QuickTime Task="C:\Program Files\QuickTime\qttask.exe" -atboottime
ZoneAlarm Client="C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
HP Software Update=C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents=
<NO NAME>=
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\IMAIL=
Installed=1
<NO NAME>=
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MAPI=
NoChange=1
Installed=1
<NO NAME>=
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MSFS=
Installed=1
<NO NAME>=

--------------- [ Registre / Mountpoint2 ] ----------------


-> Recherche négative.

--------------- [ Nettoyage des disques ] ----------------

Supprimé ! - [19/12/2008 11:15][--a------] C:\WINDOWS\system32\tmp.reg
Supprimé ! - [19/12/2008 11:15][--a------] C:\WINDOWS\system32\tmp.txt
Echec de la supression !! - [05/09/2007 14:31] E:\autorun.inf
Echec de la supression !! - [05/09/2007 14:31] E:\autorun.inf
Echec de la supression !! - [05/09/2007 14:31] E:\autorun.inf

--------------- [ Resumé ] ----------------

-> /!\ Le resultat doit etre interprété par un spécialiste /!\

[14/02/2006 02:39][--a------] C:\AUTOEXEC.BAT
[14/02/2006 02:39][--a------] C:\icremov.bat
[18/12/2008 14:20][--a------] C:\boot.ini.comodofirewall
[18/12/2008 14:20][--a------] C:\NTDETECT.COM
[15/12/2008 18:47][--a------] C:\SmitfraudFix.exe
[19/12/2008 09:06][-rahs----] C:\boot.ini
[22/01/2007 22:53][--a------] D:\AUTOREUSSITE Francais V2.0.exe
[22/01/2007 22:53][--a------] D:\baby_1.exe
[22/01/2007 22:53][--a------] D:\IE7RC1-WindowsXP-x86-fra.exe
[22/01/2007 22:53][--a------] D:\setupSNK.exe
[20/05/2007 23:43][-r-------] E:\HPZstub.exe
[20/05/2007 23:43][-r-------] E:\Setup.exe
[20/05/2007 23:43][-r-------] E:\hpzsetup.exe
[12/11/2006 18:12][-r-------] E:\PS_AIO_02_webreg.ini
[05/09/2007 14:31][-r-------] E:\autorun.inf
[05/09/2007 14:31][-r-------] E:\hpohsla.inf
[05/09/2007 14:31][-r-------] E:\hpohsls.inf
[05/09/2007 14:31][-r-------] E:\hposcu12.inf
[05/09/2007 14:31][-r-------] E:\hpounppsaio2_09.inf
[05/09/2007 14:31][-r-------] E:\hpounppsaio2_64.inf
[05/09/2007 14:31][-r-------] E:\hpzid413.inf
[05/09/2007 14:31][-r-------] E:\hpzipa13.inf
[05/09/2007 14:31][-r-------] E:\hpzipa23.inf
[05/09/2007 14:31][-r-------] E:\hpzipr13.inf
[05/09/2007 14:31][-r-------] E:\hpzipr23.inf
[05/09/2007 14:31][-r-------] E:\hpzius13.inf
[05/09/2007 14:31][-r-------] E:\hpzius23.inf
[05/09/2007 14:31][-r-------] E:\hpzusfnt.inf

--------------- ! Fin du rapport ! ----------------
0
caroline2 Messages postés 41 Date d'inscription mardi 16 décembre 2008 Statut Membre Dernière intervention 22 décembre 2008 > caroline2 Messages postés 41 Date d'inscription mardi 16 décembre 2008 Statut Membre Dernière intervention 22 décembre 2008
19 déc. 2008 à 19:33
sault lyonnais92,
penses-tu que je derais voir mon probleme de connexion sur le forum RESEAU ou bien ça doit être lié à ces antivirus 360, Rapidantiirus, RegisterDefender, Spyware Guard 2008 ....
0
caroline2 Messages postés 41 Date d'inscription mardi 16 décembre 2008 Statut Membre Dernière intervention 22 décembre 2008
19 déc. 2008 à 18:13
voic l'autre rapport :

SmitFraudFix v2.387

Rapport fait à 11:14:55,01, 19/12/2008
Executé à partir de C:\Documents and Settings\TAHAR\Bureau\SmitfraudFix
OS: Microsoft Windows XP [version 5.1.2600] - Windows_NT
Le type du système de fichiers est NTFS
Fix executé en mode normal

»»»»»»»»»»»»»»»»»»»»»»»» Process

C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\acs.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\WINDOWS\system32\DRIVERS\CDANTSRV.EXE
C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
C:\Program Files\Symantec AntiVirus\DefWatch.exe
C:\Program Files\DU Meter\DUMeterSvc.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Toshiba\Windows Utilities\Hotkey.exe
C:\Program Files\Microsoft LifeCam\MSCamS32.exe
C:\Program Files\Synaptics\SynTP\Toshiba.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\TOSHIBA\Utilitaire de zoom TOSHIBA\SmoothView.exe
C:\WINDOWS\System32\DLA\DLACTRLW.EXE
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Symantec AntiVirus\Rtvscan.exe
C:\WINDOWS\system32\TPSBattM.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Windows NT\Accessoires\WORDPAD.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_clipbook.exe
C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\Documents and Settings\TAHAR\Bureau\SmitfraudFix\Policies.exe
C:\WINDOWS\system32\cmd.exe

»»»»»»»»»»»»»»»»»»»»»»»» hosts


»»»»»»»»»»»»»»»»»»»»»»»» C:\


»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS


»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system


»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\Web


»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system32


»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system32\LogFiles


»»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\TAHAR


»»»»»»»»»»»»»»»»»»»»»»»» C:\DOCUME~1\TAHAR\LOCALS~1\Temp


»»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\TAHAR\Application Data


»»»»»»»»»»»»»»»»»»»»»»»» Menu Démarrer


»»»»»»»»»»»»»»»»»»»»»»»» C:\DOCUME~1\TAHAR\Favoris


»»»»»»»»»»»»»»»»»»»»»»»» Bureau


»»»»»»»»»»»»»»»»»»»»»»»» C:\Program Files


»»»»»»»»»»»»»»»»»»»»»»»» Clés corrompues


»»»»»»»»»»»»»»»»»»»»»»»» Eléments du bureau



»»»»»»»»»»»»»»»»»»»»»»»» o4Patch
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

o4Patch
Credits: Malware Analysis & Diagnostic
Code: S!Ri



»»»»»»»»»»»»»»»»»»»»»»»» IEDFix
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

IEDFix
Credits: Malware Analysis & Diagnostic
Code: S!Ri



»»»»»»»»»»»»»»»»»»»»»»»» Agent.OMZ.Fix
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

Agent.OMZ.Fix
Credits: Malware Analysis & Diagnostic
Code: S!Ri


»»»»»»»»»»»»»»»»»»»»»»»» VACFix
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

VACFix
Credits: Malware Analysis & Diagnostic
Code: S!Ri


»»»»»»»»»»»»»»»»»»»»»»»» 404Fix
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

404Fix
Credits: Malware Analysis & Diagnostic
Code: S!Ri


»»»»»»»»»»»»»»»»»»»»»»»» Sharedtaskscheduler
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll


»»»»»»»»»»»»»»»»»»»»»»»» AppInit_DLLs
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\\WINDOWS\\System32\\d3dx9_2532.dll"


»»»»»»»»»»»»»»»»»»»»»»»» Winlogon
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
"Userinit"="C:\\WINDOWS\\system32\\userinit.exe,"
"System"=""


»»»»»»»»»»»»»»»»»»»»»»»» RK



»»»»»»»»»»»»»»»»»»»»»»»» DNS

Description: Realtek RTL8139/810x Family Fast Ethernet NIC - Miniport d'ordonnancement de paquets
DNS Server Search Order: 24.200.241.37
DNS Server Search Order: 24.201.245.77
DNS Server Search Order: 24.200.243.189

HKLM\SYSTEM\CCS\Services\Tcpip\..\{86E28817-2EA3-4AB9-8831-89F4F2BD9C29}: DhcpNameServer=24.200.241.37 24.201.245.77 24.200.243.189
HKLM\SYSTEM\CS1\Services\Tcpip\..\{86E28817-2EA3-4AB9-8831-89F4F2BD9C29}: DhcpNameServer=24.200.241.37 24.201.245.77 24.200.243.189
HKLM\SYSTEM\CS2\Services\Tcpip\..\{86E28817-2EA3-4AB9-8831-89F4F2BD9C29}: DhcpNameServer=24.200.241.37 24.201.245.77 24.200.243.189
HKLM\SYSTEM\CCS\Services\Tcpip\Parameters: DhcpNameServer=24.200.241.37 24.201.245.77 24.200.243.189
HKLM\SYSTEM\CS1\Services\Tcpip\Parameters: DhcpNameServer=24.200.241.37 24.201.245.77 24.200.243.189
HKLM\SYSTEM\CS2\Services\Tcpip\Parameters: DhcpNameServer=24.200.241.37 24.201.245.77 24.200.243.189


»»»»»»»»»»»»»»»»»»»»»»»» Recherche infection wininet.dll


»»»»»»»»»»»»»»»»»»»»»»»» Fin
0

Newsletters

Newsletters
A voir également