Vista SP1

Bonjour, j'ai un problème avec Vista, il me bloque l'accès à beaucoup de site comme https://www.generation-nt.com/reponses/comment-debloquer-l-acces-a-certains-sites-et-divers-entraide-2243001.html alors que j'ai un autre orsinateur mais sous XP et cela fonctionne tres bien, pouvez-vous m'aider.
Configuration: Windows Vista Ultimate
Internet Explorer 7.0

11 réponses

  1. Contributeur sécurité
    Et est-ce qu'il a déjà détecté quelque chose ?
    Peux-tu poster un rapport montrant ce qu'il a supprimé stp (tu retrouveras les anciens rapports dans l'onglet 'Rapport/logs')
    0
    1. slt dsl pour ma malpollitesse , mais j'ai deja malwarebytes
      0
      1. Contributeur sécurité
        Avant de continuer, plusieurs remarques :

        - Je t'invite à relire la charte du forum, et à faire preuve d'un minimum de respect envers les autres usagers du forum : poster plusieurs messages à la suite ne te fera pas avoir une réponse plus vite ! J'aide bénévolement sur ce forum, et je ne suis pas en permanence devant mon ordinateur --> si tu trouves que je ne t'aide pas assez vite, tu es libre de quitter ce forum et de payer un professionnel pour s'occuper de ton problème.

        - Ensuite, j'ai vu que tu avais déjà ouvert d'autres sujets pour la même chose : ça aurait été bien de le préciser, et de dire les manipulations que tu as tenté pour résoudre le problème.

        - Enfin, j'ai remarqué que tu intervenais dans certains sujets pour conseiller à des internautes de fixer des lignes néfastes dans les rapports hijackthis. Est-ce que tu as fais la même chose pour toi ?
        Fixer des lignes ne supprime en rien les infections, par contre ça les masque, et on a ensuite des difficultés à identifier l'infection.

        Je ne vois pas d'infection sur ce rapport, fais ce scan pour vérifier stp :

        • Télécharge et installe Malwarebytes' Anti-Malware
        • A la fin de l'installation, veille à ce que l'option « mettre a jour Malwarebyte's Anti-Malware » soit cochée
        • Lance MBAM et laisse les Mises à jour se télécharger (sinon fais les manuellement au lancement du programme)
        • Puis va dans l'onglet "Recherche", coche "Exécuter un examen rapide" puis "Rechercher"
        • Sélectionne tes disques durs" puis clique sur "Lancer l’examen"
        • A la fin du scan, clique sur Afficher les résultats
        • Coche tous les éléments détectés puis clique sur Supprimer la sélection
        • Enregistre le rapport
        • S'il t'est demandé de redémarrer, clique sur Yes

        • Poste le rapport de scan après la suppression ici

        1
        1. est-ce quelqu'un peut repondre
          0
          1. est-ce quelqu'un peut repondre
            0
            1. slt jai fait ce que tu mas demandé puis-je avoir une réponse stp
              0
              1. Logfile of random's system information tool 1.06 (written by random/random)
                Run by Thierry Couturier at 2009-03-28 15:01:17
                Microsoft® Windows Vista™ Ultimate Édition Service Pack 1
                System drive C: has 280 GB (93%) free of 302 GB
                Total RAM: 3007 MB (70% free)

                Logfile of Trend Micro HijackThis v2.0.2
                Scan saved at 15:01:23, on 28.03.2009
                Platform: Windows Vista SP1 (WinNT 6.00.1905)
                MSIE: Internet Explorer v7.00 (7.00.6001.18000)
                Boot mode: Normal

                Running processes:
                C:\Windows\system32\taskeng.exe
                C:\Windows\system32\Dwm.exe
                C:\Windows\Explorer.EXE
                C:\Windows\System32\rundll32.exe
                C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
                C:\Windows\System32\rundll32.exe
                C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
                C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe
                C:\Program Files\iTunes\iTunesHelper.exe
                C:\Program Files\Java\jre6\bin\jusched.exe
                C:\Program Files\Windows Sidebar\sidebar.exe
                C:\Windows\ehome\ehtray.exe
                C:\Windows\System32\rundll32.exe
                C:\Program Files\Olympus\DeviceDetector\DevDtct2.exe
                C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
                C:\Windows\ehome\ehmsas.exe
                C:\Program Files\Windows Sidebar\sidebar.exe
                C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
                C:\Program Files\HP\Digital Imaging\bin\hpqbam08.exe
                C:\Program Files\HP\Digital Imaging\bin\hpqgpc01.exe
                N:\RSIT.exe
                C:\Program Files\trend micro\Thierry Couturier.exe

                R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
                R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
                R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
                R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
                R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
                R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
                R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
                R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
                R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
                R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
                O1 - Hosts: ::1 localhost
                O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
                O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
                O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
                O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
                O4 - HKLM\..\Run: [NVHotkey] rundll32.exe C:\Windows\system32\nvHotkey.dll,Start
                O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
                O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
                O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
                O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
                O4 - HKLM\..\Run: [hpqSRMon] C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe
                O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
                O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
                O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QT Lite\QTTask.exe" -atboottime
                O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
                O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
                O4 - HKLM\..\Run: [Malwarebytes' Anti-Malware] "C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
                O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
                O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
                O4 - HKCU\..\Run: [OM2_Monitor] "C:\Program Files\Olympus\OLYMPUS Master 2\MMonitor.exe" -NoStart
                O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
                O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
                O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
                O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
                O4 - Global Startup: Device Detector 3.lnk = ?
                O4 - Global Startup: HP Digital Imaging Monitor.lnk = ?
                O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
                O9 - Extra button: Sélection intelligente HP - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
                O9 - Extra button: Correcteur - {F7C8E5F6-B6D1-45db-8D91-2BCFA5DF11A9} - C:\Program Files\Druide\Antidote\Internet Explorer\7\Antidote K - IE 7.htm (HKCU)
                O9 - Extra button: Dictionnaires - {F9B969E8-58D0-4dd9-AC8A-EE2336FF8F65} - C:\Program Files\Druide\Antidote\Internet Explorer\7\Antidote D - IE 7.htm (HKCU)
                O9 - Extra button: Guides - {FA089E36-3F1B-4c51-9A1A-C4E7012483AF} - C:\Program Files\Druide\Antidote\Internet Explorer\7\Antidote G - IE 7.htm (HKCU)
                O10 - Broken Internet access because of LSP provider 'c:\windows\system32\pnrpnsp.dll' missing
                O13 - Gopher Prefix:
                O16 - DPF: {6F15128C-E66A-490C-B848-5000B5ABEEAC} (HP Download Manager) - https://h20436.www2.hp.com/ediags/dex/secure/HPDEXAXO.cab
                O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
                O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
                O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Windows\system32\aestsrv.exe
                O23 - Service: Planificateur Avira AntiVir Personal - Free Antivirus (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
                O23 - Service: Avira AntiVir Personal - Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
                O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
                O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
                O23 - Service: Service de l’iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
                O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
                O23 - Service: TeamViewer 4 (TeamViewer4) - TeamViewer GmbH - C:\Program Files\TeamViewer\Version4\TeamViewer_Service.exe
                0
                1. info.txt logfile of random's system information tool 1.06 2009-03-28 15:01:24

                  ======Uninstall list======

                  2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {BEE75E01-DD3F-4D5F-B96C-609E6538D419}
                  2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0015-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}
                  2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0016-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}
                  2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0018-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}
                  2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0019-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}
                  2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001A-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}
                  2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001B-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}
                  2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-0401-0000-0000000FF1CE} /uninstall {5A2F65A4-808F-4A1E-973E-92E17824982D}
                  2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-0407-0000-0000000FF1CE} /uninstall {2AB528A5-BB1B-4EBE-8E51-AD0C4CD33CA9}
                  2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-0409-0000-0000000FF1CE} /uninstall {3EC77D26-799B-4CD8-914F-C1565E796173}
                  2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-040C-0000-0000000FF1CE} /uninstall {430971B1-C31E-45DA-81E0-72C095BAB72C}
                  2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-0413-0000-0000000FF1CE} /uninstall {B3F4DC34-7F60-4B7C-A79F-1C13012D99D4}
                  2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-0C0A-0000-0000000FF1CE} /uninstall {F7A31780-33C4-4E39-951A-5EC9B91D7BF1}
                  2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0044-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}
                  2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-006E-040C-0000-0000000FF1CE} /uninstall {EC50B538-CBE1-42E6-B7FE-87AA540AADFB}
                  32 Bit HP CIO Components Installer-->MsiExec.exe /I{47ECCB1F-2811-49C0-B6A7-26778639ABA0}
                  7-Zip 4.65-->"C:\Program Files\7-Zip\Uninstall.exe"
                  ACDSee Pro 2-->MsiExec.exe /I{4AAC95F4-A30E-4EE5-A086-6F79581D0D70}
                  Adobe Common File Installer-->MsiExec.exe /I{8EDBA74D-0686-4C99-BFDD-F894678E5101}
                  Adobe Flash Player 10 Plugin-->C:\Windows\system32\Macromed\Flash\uninstall_plugin.exe
                  Adobe Flash Player ActiveX-->C:\Windows\system32\Macromed\Flash\uninstall_activeX.exe
                  Adobe Photoshop CS2-->msiexec /I {236BB7C4-4419-42FD-040C-1E257A25E34D}
                  Adobe Reader 8.1.4 - Français-->MsiExec.exe /I{AC76BA86-7AD7-1036-7B44-A81300000003}
                  Adobe Shockwave Player 11-->C:\Windows\system32\adobe\SHOCKW~1\UNWISE.EXE C:\Windows\system32\Adobe\SHOCKW~1\Install.log
                  Alien Skin Xenofex 2.0-->C:\PROGRA~1\Adobe\ADOBEP~1\MODULE~1\XENOFE~1\UNWISE.EXE C:\PROGRA~1\Adobe\ADOBEP~1\MODULE~1\XENOFE~1\INSTALL.LOG
                  Antidote RX v2-->MsiExec.exe /X{A474EA56-5DBD-4181-8230-806A4762EA7F}
                  Apple Mobile Device Support-->MsiExec.exe /I{162B71B8-8464-4680-A086-601D555B331D}
                  Apple Software Update-->MsiExec.exe /I{6956856F-B6B3-4BE0-BA0B-8F495BE32033}
                  Archiveur WinRAR-->C:\Program Files\WinRAR\uninstall.exe
                  Assistant de connexion Windows Live-->MsiExec.exe /I{DCE8CD14-FBF5-4464-B9A4-E18E473546C7}
                  Audacity 1.2.6-->"C:\Program Files\Audacity\unins000.exe"
                  Avira AntiVir Personal - Free Antivirus-->C:\Program Files\Avira\AntiVir PersonalEdition Classic\SETUP.EXE /REMOVE
                  Bonjour-->MsiExec.exe /I{07287123-B8AC-41CE-8346-3D777245C35B}
                  CCleaner (remove only)-->"C:\Program Files\CCleaner\uninst.exe"
                  Choice Guard-->MsiExec.exe /I{8FFC5648-FAF8-43A3-BC8F-42BA1E275C4E}
                  ConTEXT-->"C:\Program Files\ConTEXT\unins000.exe"
                  Eye Candy 4000-->C:\PROGRA~1\Adobe\ADOBEP~1\MODULE~1\EYECAN~1\UNWISE.EXE C:\PROGRA~1\Adobe\ADOBEP~1\MODULE~1\EYECAN~1\INSTALL.LOG
                  FileZilla Client 3.2.3.1-->C:\Program Files\FileZilla FTP Client\uninstall.exe
                  HijackThis 2.0.2-->"C:\Users\Thierry Couturier\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\CX40SHS2\HijackThis.exe" /uninstall
                  Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT=""
                  Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT=""
                  HP Customer Participation Program 12.0-->C:\Program Files\HP\Digital Imaging\ExtCapUninstall\hpzscr01.exe -datfile hpqhsc01.dat -forcereboot
                  HP Imaging Device Functions 12.0-->C:\Program Files\HP\Digital Imaging\DeviceManagement\hpzscr01.exe -datfile hpqbud01.dat
                  HP Photosmart C6300 All-In-One Driver Software 12.0 Rel .4-->C:\Program Files\HP\Digital Imaging\{BA8DF709-6BAB-4092-91E0-4D67EFC12A98}\setup\hpzscr01.exe -datfile hposcr31.dat -onestop -forcereboot
                  HP Photosmart Essential 3.5-->C:\Program Files\HP\Digital Imaging\PhotosmartEssential\hpzscr01.exe -datfile hpqbud13.dat
                  HP Smart Web Printing-->C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpzscr01.exe -datfile hpqbud15.dat
                  HP Solution Center 12.0-->C:\Program Files\HP\Digital Imaging\eSupport\hpzscr01.exe -datfile hpqbud05.dat -forcereboot
                  HP Update-->MsiExec.exe /X{7059BDA7-E1DB-442C-B7A1-6144596720A4}
                  iTunes-->MsiExec.exe /I{C26B06A9-27BB-45B0-9873-9C623EC2BA38}
                  Java(TM) 6 Update 13-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216012FF}
                  Kai's Power Tools 5-->C:\Windows\IsUninst.exe -f"c:\program files\adobe\adobe photoshop cs2\modules externes\kpt5\DeIsL1.isu"
                  K-Lite Mega Codec Pack 3.7.5-->"C:\Program Files\K-Lite Codec Pack\unins000.exe"
                  KPT 6-->C:\Windows\IsUninst.exe -f"c:\program files\adobe\adobe photoshop cs2\modules externes\kpt6\KPT6\KPT6Unin.isu"
                  KPT Goo-->C:\Windows\IsUninst.exe -f"c:\program files\adobe\adobe photoshop cs2\modules externes\kpt goo\KPTGooUn.isu"
                  Malwarebytes' Anti-Malware-->"C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"
                  Microsoft .NET Framework 3.5 SP1-->c:\Windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
                  Microsoft .NET Framework 3.5 SP1-->MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
                  Microsoft Office Access MUI (French) 2007-->MsiExec.exe /X{90120000-0015-040C-0000-0000000FF1CE}
                  Microsoft Office Excel MUI (French) 2007-->MsiExec.exe /X{90120000-0016-040C-0000-0000000FF1CE}
                  Microsoft Office InfoPath MUI (French) 2007-->MsiExec.exe /X{90120000-0044-040C-0000-0000000FF1CE}
                  Microsoft Office Live Add-in 1.3-->MsiExec.exe /I{57F0ED40-8F11-41AA-B926-4A66D0D1A9CC}
                  Microsoft Office Outlook MUI (French) 2007-->MsiExec.exe /X{90120000-001A-040C-0000-0000000FF1CE}
                  Microsoft Office PowerPoint MUI (French) 2007-->MsiExec.exe /X{90120000-0018-040C-0000-0000000FF1CE}
                  Microsoft Office Professional Plus 2007-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall PROPLUS /dll OSETUP.DLL
                  Microsoft Office Professional Plus 2007-->MsiExec.exe /X{90120000-0011-0000-0000-0000000FF1CE}
                  Microsoft Office Proof (Arabic) 2007-->MsiExec.exe /X{90120000-001F-0401-0000-0000000FF1CE}
                  Microsoft Office Proof (Dutch) 2007-->MsiExec.exe /X{90120000-001F-0413-0000-0000000FF1CE}
                  Microsoft Office Proof (English) 2007-->MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
                  Microsoft Office Proof (French) 2007-->MsiExec.exe /X{90120000-001F-040C-0000-0000000FF1CE}
                  Microsoft Office Proof (German) 2007-->MsiExec.exe /X{90120000-001F-0407-0000-0000000FF1CE}
                  Microsoft Office Proof (Spanish) 2007-->MsiExec.exe /X{90120000-001F-0C0A-0000-0000000FF1CE}
                  Microsoft Office Proofing (French) 2007-->MsiExec.exe /X{90120000-002C-040C-0000-0000000FF1CE}
                  Microsoft Office Publisher MUI (French) 2007-->MsiExec.exe /X{90120000-0019-040C-0000-0000000FF1CE}
                  Microsoft Office Shared MUI (French) 2007-->MsiExec.exe /X{90120000-006E-040C-0000-0000000FF1CE}
                  Microsoft Office Word MUI (French) 2007-->MsiExec.exe /X{90120000-001B-040C-0000-0000000FF1CE}
                  Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
                  Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
                  Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{A49F249F-0C91-497F-86DF-B2585E8E76B7}
                  Modèles de sons Windows-->RunDll32 advpack.dll,LaunchINFSection C:\Windows\INF\UltSound.inf,Uninstall
                  Mozilla Firefox (3.0.7)-->C:\Program Files\Mozilla Firefox\uninstall\helper.exe
                  MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
                  MSXML 4.0 SP2 Parser and SDK-->MsiExec.exe /I{716E0306-8318-4364-8B8F-0CC4E9376BAC}
                  Nero 8 Lite 8.2.8.0-->"C:\Program Files\Nero\unins000.exe"
                  Next Generation Visualisations-->MsiExec.exe /I{2E376AD9-5C49-4F7D-A0BA-6A44E8FA5A3B}
                  Notepad++-->C:\Program Files\Notepad++\uninstall.exe
                  NVIDIA Drivers-->C:\Windows\system32\NVUNINST.EXE UninstallGUI
                  Olympus Digital Wave Player-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{FB91E774-867B-4567-ACE7-8144EF036068}\Setup.exe" -l0x40c
                  OLYMPUS muvee theaterPack-->MsiExec.exe /X{EC047FA6-E83D-4326-9195-E7D306C5B9A2}
                  QT Lite 2.2.0-->"C:\Program Files\QT Lite\unins000.exe"
                  QuickTime-->MsiExec.exe /I{216AB108-2AE1-4130-B3D5-20B2C4C80F8F}
                  Real Alternative 1.7.5 Lite-->"C:\Program Files\Real Alternative\unins000.exe"
                  Security Update for 2007 Microsoft Office System (KB951550)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {B243E9A5-ED77-4F1B-B338-2486FD82DC85}
                  Security Update for 2007 Microsoft Office System (KB951944)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {797AE457-BA17-4BBC-B501-25FB3A0103C7}
                  Security Update for 2007 Microsoft Office System (KB958439)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {6491B8AA-D11C-4648-A461-6234B31EB7E2}
                  Security Update for Microsoft Office Excel 2007 (KB958437)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {648FC016-2D6B-4A16-8D87-404533642F4B}
                  Security Update for Microsoft Office PowerPoint 2007 (KB951338)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {558B709B-821B-4FC5-90FC-9A8890641E77}
                  Security Update for Microsoft Office Publisher 2007 (KB950114)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {F9C3CDBA-1F00-4D4D-959D-75C9D3ACDD85}
                  Security Update for Microsoft Office system 2007 (KB954326)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {5F7F6FFF-395D-480E-8450-64F385D82C5F}
                  Security Update for Microsoft Office system 2007 (KB956828)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {885E081B-72BD-4E76-8E98-30B4BE468FAC}
                  Security Update for Microsoft Office Word 2007 (KB956358)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {4551666D-0FD6-4C69-8A81-1C6F2E64517C}
                  Shop for HP Supplies-->C:\Program Files\HP\Digital Imaging\HPSSupply\hpzscr01.exe -datfile hpqbud16.dat
                  SmartFTP 3.0.1026.12 FR (remove only)-->C:\Program Files\SmartFTP Client\Uninstall.SmartFTPFRA.exe
                  SmartFTP Client 3.0 Setup Files (remove only)-->C:\Program Files\SmartFTP Client 3.0 Setup Files\uninst-sftp.exe
                  SmartFTP Client-->MsiExec.exe /I{6F23C1A3-9F62-470C-BD12-B83F04E67865}
                  Spybot - Search & Destroy-->"C:\Program Files\Spybot - Search & Destroy\unins000.exe"
                  TeamViewer 4-->C:\Program Files\TeamViewer\Version4\uninstall.exe
                  TopStyle Lite (Version 3)-->"C:\Program Files\Bradbury\TSLite3\unins000.exe"
                  TopStyle Lite (Version 3)-->C:\Windows\unlite3.exe C:\Program Files\Bradbury\TSLite3
                  Ultimate Extras sounds from Microsoft® Tinker™-->RunDll32 advpack.dll,LaunchINFSection C:\Windows\INF\UltSound2.inf,Uninstall
                  UltraISO Premium V9.0-->"C:\Program Files\UltraISO\unins000.exe"
                  Update for Microsoft Office Excel 2007 Help (KB957242)-->msiexec /package {90120000-0016-040C-0000-0000000FF1CE} /uninstall {49E314EE-81FA-4007-8F1A-8D39BDBB4498}
                  Update for Microsoft Office Outlook 2007 (KB952142)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {4AD3A076-427C-491F-A5B7-7D1DE788A756}
                  Update for Microsoft Office Outlook 2007 Help (KB957246)-->msiexec /package {90120000-001A-040C-0000-0000000FF1CE} /uninstall {80E46078-C1C5-4AE8-8744-3EAFC812E118}
                  Update for Office 2007 (KB946691)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {A420F522-7395-4872-9882-C591B4B92278}
                  Update for Outlook 2007 Junk Email Filter (kb962871)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {297857BF-4011-449B-BD74-DB64D182821C}
                  VDownloader 0.81-->"C:\Program Files\VDOWNLOADER\unins000.exe"
                  VLC media player 0.9.8a-->C:\Program Files\VideoLAN\VLC\uninstall.exe
                  VSTax 2008-->"C:\Program Files\VSTax 2008\Uninstall_VSTax 2008\Deinstallation_VSTax 2008.exe"

                  ======Hosts File======

                  ::1 localhost
                  127.0.0.1 rad.msn.com
                  127.0.0.1 rad.live.com
                  127.0.0.1 ads1.msn.com
                  127.0.0.1 adfarm.mediaplex.com
                  127.0.0.1 localhost
                  127.0.0.1 0-2u.com
                  127.0.0.1 0-days.net
                  127.0.0.1 0.start.bz
                  127.0.0.1 00-12.us

                  ======Security center information======

                  AS: Windows Defender

                  ======System event log======

                  Computer Name: PC-Couture
                  Event Code: 4001
                  Message: Le Service d’autoconfiguration WLAN s’est arrêté correctement.

                  Record Number: 32248
                  Source Name: Microsoft-Windows-WLAN-AutoConfig
                  Time Written: 20090327221021.475125-000
                  Event Type: Avertissement
                  User: AUTORITE NT\SYSTEM

                  Computer Name: PC-Couture
                  Event Code: 6
                  Message: Certaines fonctionnalités de gestion de l’alimentation relatives aux performances du processeur ont été désactivées en raison d’un problème connu avec le microprogramme. Contactez le fabricant de l’ordinateur pour obtenir la mise à jour du microprogramme.
                  Record Number: 32252
                  Source Name: Microsoft-Windows-Kernel-Processor-Power
                  Time Written: 20090328135324.781250-000
                  Event Type: Erreur
                  User: AUTORITE NT\SYSTEM

                  Computer Name: PC-Couture
                  Event Code: 15016
                  Message: Impossible d’initialiser le package de sécurité Kerberos pour l’authentification côté serveur. Le champ de données contient le numéro de l’erreur.
                  Record Number: 32258
                  Source Name: Microsoft-Windows-HttpEvent
                  Time Written: 20090328135415.546875-000
                  Event Type: Erreur
                  User:

                  Computer Name: PC-Couture
                  Event Code: 10016
                  Message: Les paramètres d'autorisation spécifiques à l'application n'accordent pas d'autorisation Local Exécution pour l'application serveur COM avec le CLSID
                  {C97FCC79-E628-407D-AE68-A06AD6D8B4D1}
                  au SID AUTORITE NT\SYSTEM de l'utilisateur (S-1-5-18) depuis l'adresse LocalHost (utilisation de LRPC). Cette autorisation de sécurité peut être modifiée à l'aide de l'outil d'administration Services de composants.
                  Record Number: 32322
                  Source Name: Microsoft-Windows-DistributedCOM
                  Time Written: 20090328135525.000000-000
                  Event Type: Erreur
                  User: AUTORITE NT\SYSTEM

                  Computer Name: PC-Couture
                  Event Code: 24620
                  Message: Vérification du volume chiffré : impossible de lire les informations de volume sur N:.
                  Record Number: 32346
                  Source Name: Microsoft-Windows-BitLocker-Driver
                  Time Written: 20090328140105.636444-000
                  Event Type: Erreur
                  User: AUTORITE NT\SYSTEM

                  =====Application event log=====

                  Computer Name: PC-Couture
                  Event Code: 3084
                  Message: Impossible de charger le gestionnaire de protocole Search.CscHandler.1. Description d'erreur : Le module spécifié est introuvable. .

                  Record Number: 3544
                  Source Name: Microsoft-Windows-Search
                  Time Written: 20090327190449.000000-000
                  Event Type: Erreur
                  User:

                  Computer Name: PC-Couture
                  Event Code: 3084
                  Message: Impossible de charger le gestionnaire de protocole Search.CscHandler.1. Description d'erreur : Le module spécifié est introuvable. .

                  Record Number: 3548
                  Source Name: Microsoft-Windows-Search
                  Time Written: 20090327215117.000000-000
                  Event Type: Erreur
                  User:

                  Computer Name: PC-Couture
                  Event Code: 3084
                  Message: Impossible de charger le gestionnaire de protocole Search.CscHandler.1. Description d'erreur : Le module spécifié est introuvable. .

                  Record Number: 3551
                  Source Name: Microsoft-Windows-Search
                  Time Written: 20090327215859.000000-000
                  Event Type: Erreur
                  User:

                  Computer Name: PC-Couture
                  Event Code: 3084
                  Message: Impossible de charger le gestionnaire de protocole Search.CscHandler.1. Description d'erreur : Le module spécifié est introuvable. .

                  Record Number: 3554
                  Source Name: Microsoft-Windows-Search
                  Time Written: 20090327220427.000000-000
                  Event Type: Erreur
                  User:

                  Computer Name: PC-Couture
                  Event Code: 3084
                  Message: Impossible de charger le gestionnaire de protocole Search.CscHandler.1. Description d'erreur : Le module spécifié est introuvable. .

                  Record Number: 3575
                  Source Name: Microsoft-Windows-Search
                  Time Written: 20090328135523.000000-000
                  Event Type: Erreur
                  User:

                  =====Security event log=====

                  Computer Name: PC-Couture
                  Event Code: 5038
                  Message: L’intégrité du code a déterminé que le hachage de l’image d’un fichier n’est pas valide. Le fichier peut être endommagé en raison d’une modification non autorisée ou le hachage non valide peut indiquer une erreur d’unité de disque potentielle.

                  Nom du fichier : \Device\HarddiskVolume2\Windows\System32\drivers\tcpip.sys
                  Record Number: 8464
                  Source Name: Microsoft-Windows-Security-Auditing
                  Time Written: 20090328140123.285705-000
                  Event Type: Échec de l'audit
                  User:

                  Computer Name: PC-Couture
                  Event Code: 5038
                  Message: L’intégrité du code a déterminé que le hachage de l’image d’un fichier n’est pas valide. Le fichier peut être endommagé en raison d’une modification non autorisée ou le hachage non valide peut indiquer une erreur d’unité de disque potentielle.

                  Nom du fichier : \Device\HarddiskVolume2\Windows\System32\drivers\tcpip.sys
                  Record Number: 8465
                  Source Name: Microsoft-Windows-Security-Auditing
                  Time Written: 20090328140123.302305-000
                  Event Type: Échec de l'audit
                  User:

                  Computer Name: PC-Couture
                  Event Code: 5038
                  Message: L’intégrité du code a déterminé que le hachage de l’image d’un fichier n’est pas valide. Le fichier peut être endommagé en raison d’une modification non autorisée ou le hachage non valide peut indiquer une erreur d’unité de disque potentielle.

                  Nom du fichier : \Device\HarddiskVolume2\Windows\System32\drivers\tcpip.sys
                  Record Number: 8466
                  Source Name: Microsoft-Windows-Security-Auditing
                  Time Written: 20090328140123.317929-000
                  Event Type: Échec de l'audit
                  User:

                  Computer Name: PC-Couture
                  Event Code: 5038
                  Message: L’intégrité du code a déterminé que le hachage de l’image d’un fichier n’est pas valide. Le fichier peut être endommagé en raison d’une modification non autorisée ou le hachage non valide peut indiquer une erreur d’unité de disque potentielle.

                  Nom du fichier : \Device\HarddiskVolume2\Windows\System32\drivers\tcpip.sys
                  Record Number: 8467
                  Source Name: Microsoft-Windows-Security-Auditing
                  Time Written: 20090328140123.333553-000
                  Event Type: Échec de l'audit
                  User:

                  Computer Name: PC-Couture
                  Event Code: 5038
                  Message: L’intégrité du code a déterminé que le hachage de l’image d’un fichier n’est pas valide. Le fichier peut être endommagé en raison d’une modification non autorisée ou le hachage non valide peut indiquer une erreur d’unité de disque potentielle.

                  Nom du fichier : \Device\HarddiskVolume2\Windows\System32\drivers\tcpip.sys
                  Record Number: 8468
                  Source Name: Microsoft-Windows-Security-Auditing
                  Time Written: 20090328140123.349177-000
                  Event Type: Échec de l'audit
                  User:

                  ======Environment variables======

                  "ComSpec"=%SystemRoot%\system32\cmd.exe
                  "FP_NO_HOST_CHECK"=NO
                  "OS"=Windows_NT
                  "Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\Common Files\Adobe\AGL;C:\Program Files\QT Lite\QTSystem\;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\
                  "PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
                  "PROCESSOR_ARCHITECTURE"=x86
                  "TEMP"=%SystemRoot%\TEMP
                  "TMP"=%SystemRoot%\TEMP
                  "USERNAME"=SYSTEM
                  "windir"=%SystemRoot%
                  "PROCESSOR_LEVEL"=6
                  "PROCESSOR_IDENTIFIER"=x86 Family 6 Model 15 Stepping 6, GenuineIntel
                  "PROCESSOR_REVISION"=0f06
                  "NUMBER_OF_PROCESSORS"=2
                  "CLASSPATH"=.;C:\Program Files\QT Lite\QTSystem\QTJava.zip
                  "QTJAVA"=C:\Program Files\QT Lite\QTSystem\QTJava.zip

                  -----------------EOF-----------------
                  -1
                  1. info.txt logfile of random's system information tool 1.06 2009-03-28 15:01:24

                    ======Uninstall list======

                    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {BEE75E01-DD3F-4D5F-B96C-609E6538D419}
                    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0015-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}
                    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0016-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}
                    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0018-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}
                    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0019-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}
                    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001A-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}
                    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001B-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}
                    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-0401-0000-0000000FF1CE} /uninstall {5A2F65A4-808F-4A1E-973E-92E17824982D}
                    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-0407-0000-0000000FF1CE} /uninstall {2AB528A5-BB1B-4EBE-8E51-AD0C4CD33CA9}
                    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-0409-0000-0000000FF1CE} /uninstall {3EC77D26-799B-4CD8-914F-C1565E796173}
                    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-040C-0000-0000000FF1CE} /uninstall {430971B1-C31E-45DA-81E0-72C095BAB72C}
                    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-0413-0000-0000000FF1CE} /uninstall {B3F4DC34-7F60-4B7C-A79F-1C13012D99D4}
                    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-0C0A-0000-0000000FF1CE} /uninstall {F7A31780-33C4-4E39-951A-5EC9B91D7BF1}
                    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0044-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}
                    2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-006E-040C-0000-0000000FF1CE} /uninstall {EC50B538-CBE1-42E6-B7FE-87AA540AADFB}
                    32 Bit HP CIO Components Installer-->MsiExec.exe /I{47ECCB1F-2811-49C0-B6A7-26778639ABA0}
                    7-Zip 4.65-->"C:\Program Files\7-Zip\Uninstall.exe"
                    ACDSee Pro 2-->MsiExec.exe /I{4AAC95F4-A30E-4EE5-A086-6F79581D0D70}
                    Adobe Common File Installer-->MsiExec.exe /I{8EDBA74D-0686-4C99-BFDD-F894678E5101}
                    Adobe Flash Player 10 Plugin-->C:\Windows\system32\Macromed\Flash\uninstall_plugin.exe
                    Adobe Flash Player ActiveX-->C:\Windows\system32\Macromed\Flash\uninstall_activeX.exe
                    Adobe Photoshop CS2-->msiexec /I {236BB7C4-4419-42FD-040C-1E257A25E34D}
                    Adobe Reader 8.1.4 - Français-->MsiExec.exe /I{AC76BA86-7AD7-1036-7B44-A81300000003}
                    Adobe Shockwave Player 11-->C:\Windows\system32\adobe\SHOCKW~1\UNWISE.EXE C:\Windows\system32\Adobe\SHOCKW~1\Install.log
                    Alien Skin Xenofex 2.0-->C:\PROGRA~1\Adobe\ADOBEP~1\MODULE~1\XENOFE~1\UNWISE.EXE C:\PROGRA~1\Adobe\ADOBEP~1\MODULE~1\XENOFE~1\INSTALL.LOG
                    Antidote RX v2-->MsiExec.exe /X{A474EA56-5DBD-4181-8230-806A4762EA7F}
                    Apple Mobile Device Support-->MsiExec.exe /I{162B71B8-8464-4680-A086-601D555B331D}
                    Apple Software Update-->MsiExec.exe /I{6956856F-B6B3-4BE0-BA0B-8F495BE32033}
                    Archiveur WinRAR-->C:\Program Files\WinRAR\uninstall.exe
                    Assistant de connexion Windows Live-->MsiExec.exe /I{DCE8CD14-FBF5-4464-B9A4-E18E473546C7}
                    Audacity 1.2.6-->"C:\Program Files\Audacity\unins000.exe"
                    Avira AntiVir Personal - Free Antivirus-->C:\Program Files\Avira\AntiVir PersonalEdition Classic\SETUP.EXE /REMOVE
                    Bonjour-->MsiExec.exe /I{07287123-B8AC-41CE-8346-3D777245C35B}
                    CCleaner (remove only)-->"C:\Program Files\CCleaner\uninst.exe"
                    Choice Guard-->MsiExec.exe /I{8FFC5648-FAF8-43A3-BC8F-42BA1E275C4E}
                    ConTEXT-->"C:\Program Files\ConTEXT\unins000.exe"
                    Eye Candy 4000-->C:\PROGRA~1\Adobe\ADOBEP~1\MODULE~1\EYECAN~1\UNWISE.EXE C:\PROGRA~1\Adobe\ADOBEP~1\MODULE~1\EYECAN~1\INSTALL.LOG
                    FileZilla Client 3.2.3.1-->C:\Program Files\FileZilla FTP Client\uninstall.exe
                    HijackThis 2.0.2-->"C:\Users\Thierry Couturier\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\CX40SHS2\HijackThis.exe" /uninstall
                    Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT=""
                    Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT=""
                    HP Customer Participation Program 12.0-->C:\Program Files\HP\Digital Imaging\ExtCapUninstall\hpzscr01.exe -datfile hpqhsc01.dat -forcereboot
                    HP Imaging Device Functions 12.0-->C:\Program Files\HP\Digital Imaging\DeviceManagement\hpzscr01.exe -datfile hpqbud01.dat
                    HP Photosmart C6300 All-In-One Driver Software 12.0 Rel .4-->C:\Program Files\HP\Digital Imaging\{BA8DF709-6BAB-4092-91E0-4D67EFC12A98}\setup\hpzscr01.exe -datfile hposcr31.dat -onestop -forcereboot
                    HP Photosmart Essential 3.5-->C:\Program Files\HP\Digital Imaging\PhotosmartEssential\hpzscr01.exe -datfile hpqbud13.dat
                    HP Smart Web Printing-->C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpzscr01.exe -datfile hpqbud15.dat
                    HP Solution Center 12.0-->C:\Program Files\HP\Digital Imaging\eSupport\hpzscr01.exe -datfile hpqbud05.dat -forcereboot
                    HP Update-->MsiExec.exe /X{7059BDA7-E1DB-442C-B7A1-6144596720A4}
                    iTunes-->MsiExec.exe /I{C26B06A9-27BB-45B0-9873-9C623EC2BA38}
                    Java(TM) 6 Update 13-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216012FF}
                    Kai's Power Tools 5-->C:\Windows\IsUninst.exe -f"c:\program files\adobe\adobe photoshop cs2\modules externes\kpt5\DeIsL1.isu"
                    K-Lite Mega Codec Pack 3.7.5-->"C:\Program Files\K-Lite Codec Pack\unins000.exe"
                    KPT 6-->C:\Windows\IsUninst.exe -f"c:\program files\adobe\adobe photoshop cs2\modules externes\kpt6\KPT6\KPT6Unin.isu"
                    KPT Goo-->C:\Windows\IsUninst.exe -f"c:\program files\adobe\adobe photoshop cs2\modules externes\kpt goo\KPTGooUn.isu"
                    Malwarebytes' Anti-Malware-->"C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"
                    Microsoft .NET Framework 3.5 SP1-->c:\Windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
                    Microsoft .NET Framework 3.5 SP1-->MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
                    Microsoft Office Access MUI (French) 2007-->MsiExec.exe /X{90120000-0015-040C-0000-0000000FF1CE}
                    Microsoft Office Excel MUI (French) 2007-->MsiExec.exe /X{90120000-0016-040C-0000-0000000FF1CE}
                    Microsoft Office InfoPath MUI (French) 2007-->MsiExec.exe /X{90120000-0044-040C-0000-0000000FF1CE}
                    Microsoft Office Live Add-in 1.3-->MsiExec.exe /I{57F0ED40-8F11-41AA-B926-4A66D0D1A9CC}
                    Microsoft Office Outlook MUI (French) 2007-->MsiExec.exe /X{90120000-001A-040C-0000-0000000FF1CE}
                    Microsoft Office PowerPoint MUI (French) 2007-->MsiExec.exe /X{90120000-0018-040C-0000-0000000FF1CE}
                    Microsoft Office Professional Plus 2007-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall PROPLUS /dll OSETUP.DLL
                    Microsoft Office Professional Plus 2007-->MsiExec.exe /X{90120000-0011-0000-0000-0000000FF1CE}
                    Microsoft Office Proof (Arabic) 2007-->MsiExec.exe /X{90120000-001F-0401-0000-0000000FF1CE}
                    Microsoft Office Proof (Dutch) 2007-->MsiExec.exe /X{90120000-001F-0413-0000-0000000FF1CE}
                    Microsoft Office Proof (English) 2007-->MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
                    Microsoft Office Proof (French) 2007-->MsiExec.exe /X{90120000-001F-040C-0000-0000000FF1CE}
                    Microsoft Office Proof (German) 2007-->MsiExec.exe /X{90120000-001F-0407-0000-0000000FF1CE}
                    Microsoft Office Proof (Spanish) 2007-->MsiExec.exe /X{90120000-001F-0C0A-0000-0000000FF1CE}
                    Microsoft Office Proofing (French) 2007-->MsiExec.exe /X{90120000-002C-040C-0000-0000000FF1CE}
                    Microsoft Office Publisher MUI (French) 2007-->MsiExec.exe /X{90120000-0019-040C-0000-0000000FF1CE}
                    Microsoft Office Shared MUI (French) 2007-->MsiExec.exe /X{90120000-006E-040C-0000-0000000FF1CE}
                    Microsoft Office Word MUI (French) 2007-->MsiExec.exe /X{90120000-001B-040C-0000-0000000FF1CE}
                    Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
                    Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
                    Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{A49F249F-0C91-497F-86DF-B2585E8E76B7}
                    Modèles de sons Windows-->RunDll32 advpack.dll,LaunchINFSection C:\Windows\INF\UltSound.inf,Uninstall
                    Mozilla Firefox (3.0.7)-->C:\Program Files\Mozilla Firefox\uninstall\helper.exe
                    MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
                    MSXML 4.0 SP2 Parser and SDK-->MsiExec.exe /I{716E0306-8318-4364-8B8F-0CC4E9376BAC}
                    Nero 8 Lite 8.2.8.0-->"C:\Program Files\Nero\unins000.exe"
                    Next Generation Visualisations-->MsiExec.exe /I{2E376AD9-5C49-4F7D-A0BA-6A44E8FA5A3B}
                    Notepad++-->C:\Program Files\Notepad++\uninstall.exe
                    NVIDIA Drivers-->C:\Windows\system32\NVUNINST.EXE UninstallGUI
                    Olympus Digital Wave Player-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{FB91E774-867B-4567-ACE7-8144EF036068}\Setup.exe" -l0x40c
                    OLYMPUS muvee theaterPack-->MsiExec.exe /X{EC047FA6-E83D-4326-9195-E7D306C5B9A2}
                    QT Lite 2.2.0-->"C:\Program Files\QT Lite\unins000.exe"
                    QuickTime-->MsiExec.exe /I{216AB108-2AE1-4130-B3D5-20B2C4C80F8F}
                    Real Alternative 1.7.5 Lite-->"C:\Program Files\Real Alternative\unins000.exe"
                    Security Update for 2007 Microsoft Office System (KB951550)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {B243E9A5-ED77-4F1B-B338-2486FD82DC85}
                    Security Update for 2007 Microsoft Office System (KB951944)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {797AE457-BA17-4BBC-B501-25FB3A0103C7}
                    Security Update for 2007 Microsoft Office System (KB958439)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {6491B8AA-D11C-4648-A461-6234B31EB7E2}
                    Security Update for Microsoft Office Excel 2007 (KB958437)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {648FC016-2D6B-4A16-8D87-404533642F4B}
                    Security Update for Microsoft Office PowerPoint 2007 (KB951338)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {558B709B-821B-4FC5-90FC-9A8890641E77}
                    Security Update for Microsoft Office Publisher 2007 (KB950114)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {F9C3CDBA-1F00-4D4D-959D-75C9D3ACDD85}
                    Security Update for Microsoft Office system 2007 (KB954326)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {5F7F6FFF-395D-480E-8450-64F385D82C5F}
                    Security Update for Microsoft Office system 2007 (KB956828)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {885E081B-72BD-4E76-8E98-30B4BE468FAC}
                    Security Update for Microsoft Office Word 2007 (KB956358)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {4551666D-0FD6-4C69-8A81-1C6F2E64517C}
                    Shop for HP Supplies-->C:\Program Files\HP\Digital Imaging\HPSSupply\hpzscr01.exe -datfile hpqbud16.dat
                    SmartFTP 3.0.1026.12 FR (remove only)-->C:\Program Files\SmartFTP Client\Uninstall.SmartFTPFRA.exe
                    SmartFTP Client 3.0 Setup Files (remove only)-->C:\Program Files\SmartFTP Client 3.0 Setup Files\uninst-sftp.exe
                    SmartFTP Client-->MsiExec.exe /I{6F23C1A3-9F62-470C-BD12-B83F04E67865}
                    Spybot - Search & Destroy-->"C:\Program Files\Spybot - Search & Destroy\unins000.exe"
                    TeamViewer 4-->C:\Program Files\TeamViewer\Version4\uninstall.exe
                    TopStyle Lite (Version 3)-->"C:\Program Files\Bradbury\TSLite3\unins000.exe"
                    TopStyle Lite (Version 3)-->C:\Windows\unlite3.exe C:\Program Files\Bradbury\TSLite3
                    Ultimate Extras sounds from Microsoft® Tinker™-->RunDll32 advpack.dll,LaunchINFSection C:\Windows\INF\UltSound2.inf,Uninstall
                    UltraISO Premium V9.0-->"C:\Program Files\UltraISO\unins000.exe"
                    Update for Microsoft Office Excel 2007 Help (KB957242)-->msiexec /package {90120000-0016-040C-0000-0000000FF1CE} /uninstall {49E314EE-81FA-4007-8F1A-8D39BDBB4498}
                    Update for Microsoft Office Outlook 2007 (KB952142)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {4AD3A076-427C-491F-A5B7-7D1DE788A756}
                    Update for Microsoft Office Outlook 2007 Help (KB957246)-->msiexec /package {90120000-001A-040C-0000-0000000FF1CE} /uninstall {80E46078-C1C5-4AE8-8744-3EAFC812E118}
                    Update for Office 2007 (KB946691)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {A420F522-7395-4872-9882-C591B4B92278}
                    Update for Outlook 2007 Junk Email Filter (kb962871)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {297857BF-4011-449B-BD74-DB64D182821C}
                    VDownloader 0.81-->"C:\Program Files\VDOWNLOADER\unins000.exe"
                    VLC media player 0.9.8a-->C:\Program Files\VideoLAN\VLC\uninstall.exe
                    VSTax 2008-->"C:\Program Files\VSTax 2008\Uninstall_VSTax 2008\Deinstallation_VSTax 2008.exe"

                    ======Hosts File======

                    ::1 localhost
                    127.0.0.1 rad.msn.com
                    127.0.0.1 rad.live.com
                    127.0.0.1 ads1.msn.com
                    127.0.0.1 adfarm.mediaplex.com
                    127.0.0.1 localhost
                    127.0.0.1 0-2u.com
                    127.0.0.1 0-days.net
                    127.0.0.1 0.start.bz
                    127.0.0.1 00-12.us

                    ======Security center information======

                    AS: Windows Defender

                    ======System event log======

                    Computer Name: PC-Couture
                    Event Code: 4001
                    Message: Le Service d’autoconfiguration WLAN s’est arrêté correctement.

                    Record Number: 32248
                    Source Name: Microsoft-Windows-WLAN-AutoConfig
                    Time Written: 20090327221021.475125-000
                    Event Type: Avertissement
                    User: AUTORITE NT\SYSTEM

                    Computer Name: PC-Couture
                    Event Code: 6
                    Message: Certaines fonctionnalités de gestion de l’alimentation relatives aux performances du processeur ont été désactivées en raison d’un problème connu avec le microprogramme. Contactez le fabricant de l’ordinateur pour obtenir la mise à jour du microprogramme.
                    Record Number: 32252
                    Source Name: Microsoft-Windows-Kernel-Processor-Power
                    Time Written: 20090328135324.781250-000
                    Event Type: Erreur
                    User: AUTORITE NT\SYSTEM

                    Computer Name: PC-Couture
                    Event Code: 15016
                    Message: Impossible d’initialiser le package de sécurité Kerberos pour l’authentification côté serveur. Le champ de données contient le numéro de l’erreur.
                    Record Number: 32258
                    Source Name: Microsoft-Windows-HttpEvent
                    Time Written: 20090328135415.546875-000
                    Event Type: Erreur
                    User:

                    Computer Name: PC-Couture
                    Event Code: 10016
                    Message: Les paramètres d'autorisation spécifiques à l'application n'accordent pas d'autorisation Local Exécution pour l'application serveur COM avec le CLSID
                    {C97FCC79-E628-407D-AE68-A06AD6D8B4D1}
                    au SID AUTORITE NT\SYSTEM de l'utilisateur (S-1-5-18) depuis l'adresse LocalHost (utilisation de LRPC). Cette autorisation de sécurité peut être modifiée à l'aide de l'outil d'administration Services de composants.
                    Record Number: 32322
                    Source Name: Microsoft-Windows-DistributedCOM
                    Time Written: 20090328135525.000000-000
                    Event Type: Erreur
                    User: AUTORITE NT\SYSTEM

                    Computer Name: PC-Couture
                    Event Code: 24620
                    Message: Vérification du volume chiffré : impossible de lire les informations de volume sur N:.
                    Record Number: 32346
                    Source Name: Microsoft-Windows-BitLocker-Driver
                    Time Written: 20090328140105.636444-000
                    Event Type: Erreur
                    User: AUTORITE NT\SYSTEM

                    =====Application event log=====

                    Computer Name: PC-Couture
                    Event Code: 3084
                    Message: Impossible de charger le gestionnaire de protocole Search.CscHandler.1. Description d'erreur : Le module spécifié est introuvable. .

                    Record Number: 3544
                    Source Name: Microsoft-Windows-Search
                    Time Written: 20090327190449.000000-000
                    Event Type: Erreur
                    User:

                    Computer Name: PC-Couture
                    Event Code: 3084
                    Message: Impossible de charger le gestionnaire de protocole Search.CscHandler.1. Description d'erreur : Le module spécifié est introuvable. .

                    Record Number: 3548
                    Source Name: Microsoft-Windows-Search
                    Time Written: 20090327215117.000000-000
                    Event Type: Erreur
                    User:

                    Computer Name: PC-Couture
                    Event Code: 3084
                    Message: Impossible de charger le gestionnaire de protocole Search.CscHandler.1. Description d'erreur : Le module spécifié est introuvable. .

                    Record Number: 3551
                    Source Name: Microsoft-Windows-Search
                    Time Written: 20090327215859.000000-000
                    Event Type: Erreur
                    User:

                    Computer Name: PC-Couture
                    Event Code: 3084
                    Message: Impossible de charger le gestionnaire de protocole Search.CscHandler.1. Description d'erreur : Le module spécifié est introuvable. .

                    Record Number: 3554
                    Source Name: Microsoft-Windows-Search
                    Time Written: 20090327220427.000000-000
                    Event Type: Erreur
                    User:

                    Computer Name: PC-Couture
                    Event Code: 3084
                    Message: Impossible de charger le gestionnaire de protocole Search.CscHandler.1. Description d'erreur : Le module spécifié est introuvable. .

                    Record Number: 3575
                    Source Name: Microsoft-Windows-Search
                    Time Written: 20090328135523.000000-000
                    Event Type: Erreur
                    User:

                    =====Security event log=====

                    Computer Name: PC-Couture
                    Event Code: 5038
                    Message: L’intégrité du code a déterminé que le hachage de l’image d’un fichier n’est pas valide. Le fichier peut être endommagé en raison d’une modification non autorisée ou le hachage non valide peut indiquer une erreur d’unité de disque potentielle.

                    Nom du fichier : \Device\HarddiskVolume2\Windows\System32\drivers\tcpip.sys
                    Record Number: 8464
                    Source Name: Microsoft-Windows-Security-Auditing
                    Time Written: 20090328140123.285705-000
                    Event Type: Échec de l'audit
                    User:

                    Computer Name: PC-Couture
                    Event Code: 5038
                    Message: L’intégrité du code a déterminé que le hachage de l’image d’un fichier n’est pas valide. Le fichier peut être endommagé en raison d’une modification non autorisée ou le hachage non valide peut indiquer une erreur d’unité de disque potentielle.

                    Nom du fichier : \Device\HarddiskVolume2\Windows\System32\drivers\tcpip.sys
                    Record Number: 8465
                    Source Name: Microsoft-Windows-Security-Auditing
                    Time Written: 20090328140123.302305-000
                    Event Type: Échec de l'audit
                    User:

                    Computer Name: PC-Couture
                    Event Code: 5038
                    Message: L’intégrité du code a déterminé que le hachage de l’image d’un fichier n’est pas valide. Le fichier peut être endommagé en raison d’une modification non autorisée ou le hachage non valide peut indiquer une erreur d’unité de disque potentielle.

                    Nom du fichier : \Device\HarddiskVolume2\Windows\System32\drivers\tcpip.sys
                    Record Number: 8466
                    Source Name: Microsoft-Windows-Security-Auditing
                    Time Written: 20090328140123.317929-000
                    Event Type: Échec de l'audit
                    User:

                    Computer Name: PC-Couture
                    Event Code: 5038
                    Message: L’intégrité du code a déterminé que le hachage de l’image d’un fichier n’est pas valide. Le fichier peut être endommagé en raison d’une modification non autorisée ou le hachage non valide peut indiquer une erreur d’unité de disque potentielle.

                    Nom du fichier : \Device\HarddiskVolume2\Windows\System32\drivers\tcpip.sys
                    Record Number: 8467
                    Source Name: Microsoft-Windows-Security-Auditing
                    Time Written: 20090328140123.333553-000
                    Event Type: Échec de l'audit
                    User:

                    Computer Name: PC-Couture
                    Event Code: 5038
                    Message: L’intégrité du code a déterminé que le hachage de l’image d’un fichier n’est pas valide. Le fichier peut être endommagé en raison d’une modification non autorisée ou le hachage non valide peut indiquer une erreur d’unité de disque potentielle.

                    Nom du fichier : \Device\HarddiskVolume2\Windows\System32\drivers\tcpip.sys
                    Record Number: 8468
                    Source Name: Microsoft-Windows-Security-Auditing
                    Time Written: 20090328140123.349177-000
                    Event Type: Échec de l'audit
                    User:

                    ======Environment variables======

                    "ComSpec"=%SystemRoot%\system32\cmd.exe
                    "FP_NO_HOST_CHECK"=NO
                    "OS"=Windows_NT
                    "Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\Common Files\Adobe\AGL;C:\Program Files\QT Lite\QTSystem\;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\
                    "PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
                    "PROCESSOR_ARCHITECTURE"=x86
                    "TEMP"=%SystemRoot%\TEMP
                    "TMP"=%SystemRoot%\TEMP
                    "USERNAME"=SYSTEM
                    "windir"=%SystemRoot%
                    "PROCESSOR_LEVEL"=6
                    "PROCESSOR_IDENTIFIER"=x86 Family 6 Model 15 Stepping 6, GenuineIntel
                    "PROCESSOR_REVISION"=0f06
                    "NUMBER_OF_PROCESSORS"=2
                    "CLASSPATH"=.;C:\Program Files\QT Lite\QTSystem\QTJava.zip
                    "QTJAVA"=C:\Program Files\QT Lite\QTSystem\QTJava.zip

                    -----------------EOF-----------------
                    0
                    1. Contributeur sécurité
                      Bonjour,

                      Il est possible que ce soit dû à une infection, on va vérifier. Peux-tu utiliser ce logiciel de diagnostic stp :

                      • Télécharge Random's System Information Tool (RSIT) de random/random, et enregistre le sur ton Bureau.
                      • Double clique sur RSIT.exe pour lancer l'outil.
                      • Clique sur ' continue ' à l'écran Disclaimer.
                      • Si l'outil HijackThis n'est pas présent ou non détecté sur l'ordinateur, RSIT le téléchargera (autorise l'accès dans ton pare-feu, si demandé) et tu devras accepter la licence.
                      • Une fois le scan terminé, deux rapports vont apparaître : poste les dans deux messages séparés

                      0