EoEngine.exe

Bonjour,
des son ouverture mon Pc indique toujours la même erreur: EoEngine à rencontré un problème et doit fermer.
ajouté a cela, Outlook fonctionnent plus correctement .
pouvez vous me dire comment régler ce problème?
merci
Configuration: Windows XP
Safari 525.19

20 réponses

  1. Modérateur
    Lance cet exécutable :
    H:\Program Files\trend micro\User.exe
    Choisis "Do a system scan and save logfile".

    Clique sur "Do a system scan only".
    Coche ces lignes :

     R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
     O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)  
     O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - h:\program files\google\googletoolbar1.dll
     O2 - BHO: (no name) - {C451C08A-EC37-45DF-AAAD-18B51AB5E837} - (no file)  
     O4 - HKLM\..\Run: [LVCOMSX] H:\WINDOWS\system32\LVCOMSX.EXE
     O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
     O4 - HKCU\..\Run: [ctfmon.exe] H:\WINDOWS\system32\ctfmon.exe
     O4 - Global Startup: Microsoft Office.lnk = H:\Program Files\Microsoft Office\Office10\OSA.EXE

    Clique ensuite sur fix checked.
    Ferme Hijackthis.

    ***********

    Pour supprimer toutes les traces des logiciels qui ont servi à traiter les infections spécifiques :

    Télécharge toolscleaner sur ton Bureau
    = = = =>>> En cliquant ici <<<= = = =
    * Double-clique sur ToolsCleaner2.exe et laisse le travailler
    * Clique sur Recherche et laisse le scan se terminer.
    * Clique sur Suppression pour finaliser.
    * Tu peux, si tu le souhaites, te servir des Options facultatives.
    * Clique sur Quitter, pour que le rapport puisse se créer.
    * Le rapport (TCleaner.txt) se trouve à la racine de votre disque dur (C:\)...colle le dans ta réponse.

    ***********

    Tu peux garder Malwarebytes anti malware en tant qu’anti malware, il est très efficace. (Même s’il ne résout pas tous les problèmes, bien entendu … !)
    Par contre, il n’a pas de scan résident en mode gratuit ! Il faut donc pour l’utiliser le lancer, faire les mises à jour et faire un scan complet après.

    ***********

    Installe un pare feu car celui de Windows n’est pas suffisant.
    ZoneAlarm :
    = = = = >>> En cliquant ici <<< = = = =
    Un tutorial pour le configurer
    = = = = >>> En cliquant ici <<< = = = =

    ***********

    * Télécharge Ccleaner Slim :
    = = = = >>> En cliquant ici <<< = = = =

    * Installe le.
    * Choisis l’onglet Nettoyeur

    Quitte ton navigateur Internet avant de le lancer, décoche la dernière case (Avancé si elle est cochée) puis clique sur "lancer le nettoyage" quand il aura terminé le scan cliques en bas à droite sur "lancer le nettoyage" et accepte par oui.
    Attention, il risque de vider ta corbeille : si tu veux récupérer des fichiers effacés par erreur, mieux vaut le faire maintenant.

    * Choisis l’onglet Registre

    - Clique sur Chercher des erreurs
    - Une fois la recherche terminée, clic sur Réparer les erreurs sélectionnées (par défaut, tout est sélectionné, laisse comme ça)
    - Au message Voulez-vous sauvegarder les changements faits dans le registre, réponds Oui et enregistre le fichier au format « .reg » en le nommant par la date par exemple en le mettant sur le bureau. Puis continue.
    - A la fenêtre qui s’ouvre ensuite, clique sur Corriger toutes les erreurs sélectionnées puis OK
    - Recommence jusqu’à ce qu’aucune erreur n’apparaisse (ou une seule récurrente).
    - Ferme Ccleaner.

    * Tutoriel en images ICI si besoin.

    Note : La sauvegarde utilisée permet de remettre tel que la base était avant la manipulation au cas où il y aurait des soucis mais cela ne m’est jamais arrivé ! Il vaut mieux prendre des précautions, c’est tout. ;-)

    ************

    Je te déconseille d’installer des toolbars (barres d’outils sur ton navigateur).
    Regarde cet article qui explique pourquoi les toolbars, c’est pas obligatoire :
    https://forum.malekal.com/viewtopic.php?f=45&t=6173
    Merci à Malekal pour cet article.
    Si tu lis bien, tu verras que souvent elles sont infectieuses car elles t’espionnent sur le net …
    0
    1. Modérateur
      Supprime ce dossier :
      H:\9fe7b80181129ca53108659764f12c2d

      *****************

      Désinstalle ceci de l'ajout / suppression de programmes :
      Ad Remover
      Java(TM) 6 Update 7 (si tu le trouves).

      ****************

      Télécharge HostsXpert sur ton Bureau :
      = = = =>>> En cliquant ici <<<= = = =

      - Décompresse-le (Clic droit => Extraire ici)

      - Double-clique sur HostsXpert pour le lancer

      - Clique sur le bouton "Restore MS Hosts File" puis ferme le programme

      PS : Avant de cliquer sur le bouton "Restore MS Hosts File", vérifie que le cadenas en haut à gauche est ouvert sinon tu vas avoir un message d’erreur.

      ***************

      Comment va le PC avant de passer à la fin de désinfection ??
      0
      1. bonjour
        c'est ok javara est supprimé
        cependant je reponds a ta question sur le dossier je ne connais pas ce dossier et il semble etre vide
        dans propriété il est noté vide de fichier taille 788octets
        bonne journée
        0
        1. Modérateur
          Supprime javara et C:\Javara.log.

          *******

          Connais-tu ce dossier ?
          H:\9fe7b80181129ca53108659764f12c2d
          Que contient-il ?
          0
          1. bonjour voici le rapport JavaRa
            JavaRa 1.14 Removal Log.

            Report follows after line.

            ------------------------------------

            The JavaRa removal process was started on Tue Jun 09 18:40:29 2009

            JavaRa 1.14 Removal Log.

            Report follows after line.

            ------------------------------------

            The JavaRa removal process was started on Tue Jun 09 19:44:32 2009

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0000-0003-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0000-0004-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0000-0005-ABCDEFFEDCBA}

            Found and removed: SOFTWARE\JavaSoft\Java Web Start\1.0.1

            Found and removed: SOFTWARE\JavaSoft\Java Web Start\1.0.1_02

            Found and removed: SOFTWARE\JavaSoft\Java Web Start\1.0.1_03

            Found and removed: SOFTWARE\JavaSoft\Java Web Start\1.0.1_04

            Found and removed: SOFTWARE\JavaSoft\Java Web Start\1.2

            Found and removed: SOFTWARE\JavaSoft\Java Web Start\1.2.0_01

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0000-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0001-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0001-ABCDEFFEDCBB}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0002-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0002-ABCDEFFEDCBB}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0003-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0003-ABCDEFFEDCBB}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0004-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0004-ABCDEFFEDCBB}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0005-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0005-ABCDEFFEDCBB}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0006-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0006-ABCDEFFEDCBB}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0007-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0007-ABCDEFFEDCBB}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0008-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0008-ABCDEFFEDCBB}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0009-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0009-ABCDEFFEDCBB}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0010-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0010-ABCDEFFEDCBB}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0011-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0011-ABCDEFFEDCBB}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0012-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0012-ABCDEFFEDCBB}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0013-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0013-ABCDEFFEDCBB}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0014-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0014-ABCDEFFEDCBB}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0015-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0015-ABCDEFFEDCBB}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0016-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0016-ABCDEFFEDCBB}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0017-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0017-ABCDEFFEDCBB}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0018-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0018-ABCDEFFEDCBB}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0019-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0019-ABCDEFFEDCBB}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0020-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0020-ABCDEFFEDCBB}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0021-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0021-ABCDEFFEDCBB}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0022-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0022-ABCDEFFEDCBB}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0023-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0023-ABCDEFFEDCBB}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0024-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0024-ABCDEFFEDCBB}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0025-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0025-ABCDEFFEDCBB}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0026-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0026-ABCDEFFEDCBB}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0027-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0027-ABCDEFFEDCBB}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0028-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0028-ABCDEFFEDCBB}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0029-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0029-ABCDEFFEDCBB}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0030-ABCDEFFEDCBA}

            Found and removed: Software\Classes\CLSID\{CAFEEFAC-0013-0001-0030-ABCDEFFEDCBB}

            Found and removed: SOFTWARE\Microsoft\Active Setup\Installed Components\{08B0E5C0-4FCB-11CF-AAA5-00401C608500}

            ------------------------------------

            Finished reporting.
            0
            1. Modérateur
              Connais-tu ce dossier ?
              H:\9fe7b80181129ca53108659764f12c2d
              Que contient-il ?

              **********

              Pour supprimer les anciennes versions de Java et télécharger la nouvelle,
              Télécharge JavaRa.zip de Paul ‘Prm753’ McLain et Fred de Vries sur ton Bureau :
              = = = = =>>> En cliquant ici <<<= = = =
              * Décompresse le fichier sur le Bureau (Clic droit > Extraire tout).
              * Double-clique sur le répertoire JavaRa
              * Puis double-clique sur le fichier JavaRa.exe (le .exe peut ne pas s’afficher).
              * Sélectionne ta langue puis clique sur Select
              * Clique sur Recherche de mises à jour
              * Sélectionne Mettre à jour via jucheck.exe puis clique sur Rechercher
              * Autorise le processus à se connecter s’il le demande, clique sur Install et suis les instructions d’installation qui prennent quelques minutes
              * L’installation est terminée
              * Reviens à l’écran de JavaRa et clique sur Effacer les anciennes versions.
              * Clique sur Oui pour confirmer. Laisse travailler et clique ensuite sur Ok, puis une deuxième fois sur Ok.
              * Un rapport va s’ouvrir. Poste-le dans ta prochaine réponse.
              * Ferme l’application.
              Note : le rapport se trouve aussi dans C:\ sous le nom JavaRa.log.
              0
              1. bonjour, voici
                info.txt logfile of random's system information tool 1.06 2009-06-09 05:16:21

                ======Uninstall list======

                -->H:\Program Files\Nero\Nero 7\\nero\uninstall\UNNERO.exe /UNINSTALL
                -->H:\WINDOWS\NuNInst.exe /UNINSTALL
                -->H:\WINDOWS\UNNeroBackItUp.exe /UNINSTALL
                -->H:\WINDOWS\UNNeroMediaHome.exe /UNINSTALL
                -->H:\WINDOWS\UNNeroShowTime.exe /UNINSTALL
                -->H:\WINDOWS\UNNeroVision.exe /UNINSTALL
                -->H:\WINDOWS\UNRecode.exe /UNINSTALL
                -->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 H:\WINDOWS\INF\PCHealth.inf
                Adobe Flash Player 10 ActiveX-->H:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
                Adobe Flash Player 10 Plugin-->H:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
                Adobe Shockwave Player 11.5-->H:\WINDOWS\system32\Adobe\uninstaller.exe
                Ad-remover-->H:\Program Files\Ad-remover\Uninstall ADR.exe
                ArcSoft PhotoStudio 5.5-->RunDll32 H:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "H:\Program Files\InstallShield Installation Information\{85309D89-7BE9-4094-BB17-24999C6118FC}\Setup.exe" -l0x9
                Assistant de connexion Windows Live-->MsiExec.exe /I{DCE8CD14-FBF5-4464-B9A4-E18E473546C7}
                Avira AntiVir Personal - Free Antivirus-->H:\Program Files\Avira\AntiVir PersonalEdition Classic\SETUP.EXE /REMOVE
                BankPerfect 6.23-->"H:\Program Files\BankPerfect\uninstall.exe"
                Canon ScanGear Starter-->RunDll32 H:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "H:\Program Files\InstallShield Installation Information\{18A5DFF2-8A95-49F3-873F-743CB5549F3D}\SETUP.EXE" -l0x9 anything
                CCleaner (remove only)-->"H:\Program Files\CCleaner\uninst.exe"
                CDisplay 1.8.5.2-->"H:\Program Files\CDisplay\unins000.exe"
                Choice Guard-->MsiExec.exe /I{8FFC5648-FAF8-43A3-BC8F-42BA1E275C4E}
                ClassPad Manager v3 Professional (30 Day Trial)-->MsiExec.exe /X{71F205E9-C01C-47C5-B029-8AAC14AF03F1}
                Correctif pour Lecteur Windows Media 11 (KB939683)-->"H:\WINDOWS\$NtUninstallKB939683$\spuninst\spuninst.exe"
                Correctif pour Windows XP (KB952287)-->"H:\WINDOWS\$NtUninstallKB952287$\spuninst\spuninst.exe"
                Foxit Reader-->H:\Program Files\Foxit Software\Foxit Reader\Uninstall.exe
                Free Mp3 Wma Converter V 1.7.3-->"H:\Program Files\Free Audio Pack\unins000.exe"
                Galerie de photos Windows Live-->MsiExec.exe /X{44E54A81-9D91-4AA1-9417-80AFF134F5FF}
                Google Earth Plugin-->MsiExec.exe /I{CFA3D1B0-415C-11DE-8251-005056806466}
                Google Earth-->MsiExec.exe /I{1D14373E-7970-4F2F-A467-ACA4F0EA21E3}
                Google Toolbar for Internet Explorer-->MsiExec.exe /I{DBEA1034-5882-4A88-8033-81C4EF0CFA29}
                Google Toolbar for Internet Explorer-->regsvr32 /u /s "h:\program files\google\googletoolbar1.dll"
                Google Update Helper-->MsiExec.exe /I{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
                High Definition Audio - KB888111-->"H:\WINDOWS\$NtUninstallKB888111WXPSP2$\spuninst\spuninst.exe"
                HijackThis 2.0.2-->"H:\Program Files\trend micro\HijackThis.exe" /uninstall
                HOT ALBUM MYBOX-->H:\Program Files\HOTALBUMMyBOX\VUninst.exe /a
                Hotfix for Windows Media Format 11 SDK (KB929399)-->"H:\WINDOWS\$NtUninstallKB929399$\spuninst\spuninst.exe"
                IL-2 Sturmovik: Forgotten Battles-->H:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{8DF712DA-D325-4FD0-8DE8-E2D78FC3CDC3} /l1036
                Installation Windows Live-->H:\Program Files\Windows Live\Installer\wlarp.exe
                Installation Windows Live-->MsiExec.exe /I{7370DF47-B4F9-4279-BFC3-3F09919F720D}
                InterActual Player-->H:\Program Files\InterActual\InterActual Player\inuninst.exe
                Java(TM) 6 Update 7-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160070}
                Junk Mail filter update-->MsiExec.exe /I{4DE3E3D9-AE81-45DE-9195-3015F7B1DBF3}
                Le Club des TrouveTout, L'énigme du Volcan-->H:\Program Files\Mindscape\Le Club des TrouveTout, L'énigme du Volcan\uninstall.exe
                Lecteur Windows Media 11-->"H:\Program Files\Windows Media Player\Setup_wm.exe" /Uninstall
                Lexmark 730 Series-->H:\WINDOWS\System32\spool\DRIVERS\W32X86\3\lxcfUNST.EXE -NOLICENSE
                Logiciel WebCam de Labtec-->RunDll32 H:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\09\00\Intel32\Ctor.dll,LaunchSetup "H:\Program Files\InstallShield Installation Information\{C43048A9-742C-4DAD-90D2-E3B53C9DB825}\setup.exe" -l0x40c
                Malwarebytes' Anti-Malware-->"H:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"
                Microsoft .NET Framework 1.1 French Language Pack-->MsiExec.exe /X{9A394342-4A68-4EBA-85A6-55B559F4E700}
                Microsoft .NET Framework 1.1 Hotfix (KB928366)-->"H:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe" "H:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\M928366\M928366Uninstall.msp"
                Microsoft .NET Framework 1.1-->msiexec.exe /X {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
                Microsoft .NET Framework 1.1-->MsiExec.exe /X{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
                Microsoft .NET Framework 2.0-->H:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft .NET Framework 2.0\install.exe
                Microsoft Compression Client Pack 1.0 for Windows XP-->"H:\WINDOWS\$NtUninstallMSCompPackV1$\spuninst\spuninst.exe"
                Microsoft Internationalized Domain Names Mitigation APIs-->"H:\WINDOWS\$NtServicePackUninstallIDNMitigationAPIs$\spuninst\spuninst.exe"
                Microsoft National Language Support Downlevel APIs-->"H:\WINDOWS\$NtServicePackUninstallNLSDownlevelMapping$\spuninst\spuninst.exe"
                Microsoft Office Live Add-in 1.3-->MsiExec.exe /I{57F0ED40-8F11-41AA-B926-4A66D0D1A9CC}
                Microsoft Office XP Media Content-->MsiExec.exe /I{9030040C-6000-11D3-8CFE-0050048383C9}
                Microsoft Office XP Professional-->MsiExec.exe /I{9111040C-6000-11D3-8CFE-0050048383C9}
                Microsoft Publisher 98-->H:\Program Files\Microsoft Office\Office\Install\Install.exe /m
                Microsoft Search Enhancement Pack-->MsiExec.exe /X{4CBA3D4C-8F51-4D60-B27E-F6B641C571E7}
                Microsoft SharedView-->MsiExec.exe /I{0EBA7CFF-B7E9-4439-96AC-4D11086685AD}
                Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
                Microsoft SQL Server 2005 Compact Edition [ENU]-->MsiExec.exe /I{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}
                Microsoft Sync Framework Runtime Native v1.0 (x86)-->MsiExec.exe /I{8A74E887-8F0F-4017-AF53-CBA42211AAA5}
                Microsoft Sync Framework Services Native v1.0 (x86)-->MsiExec.exe /I{BD64AF4A-8C80-4152-AD77-FCDDF05208AB}
                Microsoft User-Mode Driver Framework Feature Pack 1.0-->"H:\WINDOWS\$NtUninstallWudf01000$\spuninst\spuninst.exe"
                Mise à jour critique pour Lecteur Windows Media 11 (KB959772)-->"H:\WINDOWS\$NtUninstallKB959772_WM11$\spuninst\spuninst.exe"
                Mise à jour de sécurité pour Lecteur Windows Media (KB952069)-->"H:\WINDOWS\$NtUninstallKB952069_WM9$\spuninst\spuninst.exe"
                Mise à jour de sécurité pour Lecteur Windows Media 11 (KB936782)-->"H:\WINDOWS\$NtUninstallKB936782_WMP11$\spuninst\spuninst.exe"
                Mise à jour de sécurité pour Lecteur Windows Media 11 (KB954154)-->"H:\WINDOWS\$NtUninstallKB954154_WM11$\spuninst\spuninst.exe"
                Mise à jour de sécurité pour Windows Internet Explorer 7 (KB938127)-->"H:\WINDOWS\ie7updates\KB938127-IE7\spuninst\spuninst.exe"
                Mise à jour de sécurité pour Windows Internet Explorer 7 (KB938127-v2)-->"H:\WINDOWS\ie7updates\KB938127-v2-IE7\spuninst\spuninst.exe"
                Mise à jour de sécurité pour Windows Internet Explorer 7 (KB953838)-->"H:\WINDOWS\ie7updates\KB953838-IE7\spuninst\spuninst.exe"
                Mise à jour de sécurité pour Windows Internet Explorer 7 (KB956390)-->"H:\WINDOWS\ie7updates\KB956390-IE7\spuninst\spuninst.exe"
                Mise à jour de sécurité pour Windows Internet Explorer 7 (KB958215)-->"H:\WINDOWS\ie7updates\KB958215-IE7\spuninst\spuninst.exe"
                Mise à jour de sécurité pour Windows Internet Explorer 7 (KB960714)-->"H:\WINDOWS\ie7updates\KB960714-IE7\spuninst\spuninst.exe"
                Mise à jour de sécurité pour Windows Internet Explorer 7 (KB961260)-->"H:\WINDOWS\ie7updates\KB961260-IE7\spuninst\spuninst.exe"
                Mise à jour de sécurité pour Windows Internet Explorer 7 (KB963027)-->"H:\WINDOWS\ie7updates\KB963027-IE7\spuninst\spuninst.exe"
                Mise à jour de sécurité pour Windows XP (KB923561)-->"H:\WINDOWS\$NtUninstallKB923561$\spuninst\spuninst.exe"
                Mise à jour de sécurité pour Windows XP (KB923789)-->H:\WINDOWS\system32\MacroMed\Flash\genuinst.exe H:\WINDOWS\system32\MacroMed\Flash\KB923789.inf
                Mise à jour de sécurité pour Windows XP (KB938464)-->"H:\WINDOWS\$NtUninstallKB938464$\spuninst\spuninst.exe"
                Mise à jour de sécurité pour Windows XP (KB938464-v2)-->"H:\WINDOWS\$NtUninstallKB938464-v2$\spuninst\spuninst.exe"
                Mise à jour de sécurité pour Windows XP (KB941569)-->"H:\WINDOWS\$NtUninstallKB941569$\spuninst\spuninst.exe"
                Mise à jour de sécurité pour Windows XP (KB946648)-->"H:\WINDOWS\$NtUninstallKB946648$\spuninst\spuninst.exe"
                Mise à jour de sécurité pour Windows XP (KB950759)-->"H:\WINDOWS\$NtUninstallKB950759$\spuninst\spuninst.exe"
                Mise à jour de sécurité pour Windows XP (KB950760)-->"H:\WINDOWS\$NtUninstallKB950760$\spuninst\spuninst.exe"
                Mise à jour de sécurité pour Windows XP (KB950762)-->"H:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe"
                Mise à jour de sécurité pour Windows XP (KB950974)-->"H:\WINDOWS\$NtUninstallKB950974$\spuninst\spuninst.exe"
                Mise à jour de sécurité pour Windows XP (KB951066)-->"H:\WINDOWS\$NtUninstallKB951066$\spuninst\spuninst.exe"
                Mise à jour de sécurité pour Windows XP (KB951376)-->"H:\WINDOWS\$NtUninstallKB951376$\spuninst\spuninst.exe"
                Mise à jour de sécurité pour Windows XP (KB951376-v2)-->"H:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe"
                Mise à jour de sécurité pour Windows XP (KB951698)-->"H:\WINDOWS\$NtUninstallKB951698$\spuninst\spuninst.exe"
                Mise à jour de sécurité pour Windows XP (KB951748)-->"H:\WINDOWS\$NtUninstallKB951748$\spuninst\spuninst.exe"
                Mise à jour de sécurité pour Windows XP (KB952004)-->"H:\WINDOWS\$NtUninstallKB952004$\spuninst\spuninst.exe"
                Mise à jour de sécurité pour Windows XP (KB952954)-->"H:\WINDOWS\$NtUninstallKB952954$\spuninst\spuninst.exe"
                Mise à jour de sécurité pour Windows XP (KB953838)-->"H:\WINDOWS\$NtUninstallKB953838$\spuninst\spuninst.exe"
                Mise à jour de sécurité pour Windows XP (KB953839)-->"H:\WINDOWS\$NtUninstallKB953839$\spuninst\spuninst.exe"
                Mise à jour de sécurité pour Windows XP (KB954211)-->"H:\WINDOWS\$NtUninstallKB954211$\spuninst\spuninst.exe"
                Mise à jour de sécurité pour Windows XP (KB954459)-->"H:\WINDOWS\$NtUninstallKB954459$\spuninst\spuninst.exe"
                Mise à jour de sécurité pour Windows XP (KB954600)-->"H:\WINDOWS\$NtUninstallKB954600$\spuninst\spuninst.exe"
                Mise à jour de sécurité pour Windows XP (KB955069)-->"H:\WINDOWS\$NtUninstallKB955069$\spuninst\spuninst.exe"
                Mise à jour de sécurité pour Windows XP (KB956391)-->"H:\WINDOWS\$NtUninstallKB956391$\spuninst\spuninst.exe"
                Mise à jour de sécurité pour Windows XP (KB956572)-->"H:\WINDOWS\$NtUninstallKB956572$\spuninst\spuninst.exe"
                Mise à jour de sécurité pour Windows XP (KB956802)-->"H:\WINDOWS\$NtUninstallKB956802$\spuninst\spuninst.exe"
                Mise à jour de sécurité pour Windows XP (KB956803)-->"H:\WINDOWS\$NtUninstallKB956803$\spuninst\spuninst.exe"
                Mise à jour de sécurité pour Windows XP (KB956841)-->"H:\WINDOWS\$NtUninstallKB956841$\spuninst\spuninst.exe"
                Mise à jour de sécurité pour Windows XP (KB957095)-->"H:\WINDOWS\$NtUninstallKB957095$\spuninst\spuninst.exe"
                Mise à jour de sécurité pour Windows XP (KB957097)-->"H:\WINDOWS\$NtUninstallKB957097$\spuninst\spuninst.exe"
                Mise à jour de sécurité pour Windows XP (KB958644)-->"H:\WINDOWS\$NtUninstallKB958644$\spuninst\spuninst.exe"
                Mise à jour de sécurité pour Windows XP (KB958687)-->"H:\WINDOWS\$NtUninstallKB958687$\spuninst\spuninst.exe"
                Mise à jour de sécurité pour Windows XP (KB958690)-->"H:\WINDOWS\$NtUninstallKB958690$\spuninst\spuninst.exe"
                Mise à jour de sécurité pour Windows XP (KB959426)-->"H:\WINDOWS\$NtUninstallKB959426$\spuninst\spuninst.exe"
                Mise à jour de sécurité pour Windows XP (KB960225)-->"H:\WINDOWS\$NtUninstallKB960225$\spuninst\spuninst.exe"
                Mise à jour de sécurité pour Windows XP (KB960715)-->"H:\WINDOWS\$NtUninstallKB960715$\spuninst\spuninst.exe"
                Mise à jour de sécurité pour Windows XP (KB960803)-->"H:\WINDOWS\$NtUninstallKB960803$\spuninst\spuninst.exe"
                Mise à jour de sécurité pour Windows XP (KB961373)-->"H:\WINDOWS\$NtUninstallKB961373$\spuninst\spuninst.exe"
                Mise à jour pour Windows XP (KB942763)-->"H:\WINDOWS\$NtUninstallKB942763$\spuninst\spuninst.exe"
                Mise à jour pour Windows XP (KB951072-v2)-->"H:\WINDOWS\$NtUninstallKB951072-v2$\spuninst\spuninst.exe"
                Mise à jour pour Windows XP (KB951978)-->"H:\WINDOWS\$NtUninstallKB951978$\spuninst\spuninst.exe"
                Mise à jour pour Windows XP (KB955839)-->"H:\WINDOWS\$NtUninstallKB955839$\spuninst\spuninst.exe"
                Mise à jour pour Windows XP (KB961503)-->"H:\WINDOWS\$NtUninstallKB961503$\spuninst\spuninst.exe"
                Mise à jour pour Windows XP (KB967715)-->"H:\WINDOWS\$NtUninstallKB967715$\spuninst\spuninst.exe"
                Mozilla Firefox (3.0.10)-->H:\Program Files\Mozilla Firefox\uninstall\helper.exe
                Mozilla Thunderbird (2.0.0.21)-->H:\Program Files\Mozilla Thunderbird\uninstall\helper.exe
                MSN-->H:\Program Files\MSN\MsnInstaller\msninst.exe /Action:ARP
                MSVCRT-->MsiExec.exe /I{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
                Nathan Français CE2-->H:\Program Files\Nathan\Francais CE2\Uninstal.exe
                Nathan Francais CM1-->H:\Program Files\Nathan\Francais CM1\Uninstal.exe
                Nero 7 Ultra Edition-->MsiExec.exe /I{F0A7FB2C-99E2-4884-9187-4BC60B2C1036}
                Nero Suite-->H:\Program Files\Fichiers communs\Nero\Uninstall\setup.exe /uninstall ExtraUninstallID=""
                NVIDIA Drivers-->H:\WINDOWS\system32\nvudisp.exe UninstallGUI
                Outil de téléchargement Windows Live-->MsiExec.exe /I{205C6BDD-7B73-42DE-8505-9A093F35A238}
                PDFCreator-->H:\Program Files\PDFCreator\unins000.exe
                PhotoFiltre-->"H:\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires\PhotoFiltre\Uninst.exe"
                Picasa 3-->"H:\Program Files\Google\Picasa3\Uninstall.exe"
                Programme de gestion Camera de Labtec®-->"H:\Program Files\Fichiers communs\Logitech\QCDRV\BIN\SETUP.EXE" UNINSTALL REMOVEPROMPT
                Search Settings 1.2-->MsiExec.exe /X{D0C73318-7B4A-4D16-A0C4-3B83F075EA88}
                Security Update for CAPICOM (KB931906)-->MsiExec.exe /I{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
                Security Update for CAPICOM (KB931906)-->MsiExec.exe /X{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
                Segoe UI-->MsiExec.exe /I{A1F66FC9-11EE-4F2F-98C9-16F8D1E69FB7}
                SIW version 2008-09-03-->"H:\Program Files\SIW\unins000.exe"
                Skype™ 4.0-->MsiExec.exe /X{24D753CA-6AE9-4E30-8F5F-EFC93E08BF3D}
                Spybot - Search & Destroy-->"H:\Program Files\Spybot - Search & Destroy\unins000.exe"
                VideoLAN VLC media player 0.8.6i-->H:\Program Files\VideoLAN\VLC\uninstall.exe
                Warhammer® Mark of Chaos-->H:\Program Files\InstallShield Installation Information\{5F374D5D-DB43-4263-9C29-BAB2C93FEFE6}\setup.exe -runfromtemp -l0x040c -removeonly
                Windows Driver Package - ASUSTeK (3xHybrid) MEDIA (05/05/2005 1.3.2.5)-->H:\PROGRA~1\DIFX\D6ACC4BE676423A2B130B78A4B627FC457D98997\DPInst.exe /u H:\WINDOWS\system32\DRVSTORE\34avstrm_1FB7ED192E32EA5CC3DF15EFC0D70E07C0493348\34avstrm.inf
                Windows Live Call-->MsiExec.exe /I{82C7B308-0BDD-49D8-8EA5-9CD3A3F9DF41}
                Windows Live Communications Platform-->MsiExec.exe /I{3B4E636E-9D65-4D67-BA61-189800823F52}
                Windows Live Contrôle parental-->MsiExec.exe /X{D6A2DDE3-9D7C-412C-932A-756580D29919}
                Windows Live Mail-->MsiExec.exe /I{63DC2DA0-2A6C-4C38-9249-B75395458657}
                Windows Live Messenger-->MsiExec.exe /X{059C042E-796A-4ACC-A81A-ECC2010BB78C}
                Windows Live Toolbar-->MsiExec.exe /X{F7D27C70-90F5-49B9-B188-0A133C0CE353}
                Windows Live Writer-->MsiExec.exe /X{2231CE39-B963-4B9D-823A-F412ECA637B1}
                Windows Media Format 11 runtime-->"H:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
                Windows Media Format 11 runtime-->"H:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe"
                Windows Media Player 11-->"H:\WINDOWS\$NtUninstallwmp11$\spuninst\spuninst.exe"
                Windows XP Service Pack 3-->"H:\WINDOWS\$NtServicePackUninstall$\spuninst\spuninst.exe"
                Yahoo! Install Manager-->H:\WINDOWS\system32\regsvr32 /u H:\PROGRA~1\Yahoo!\Common\YINSTH~1.DLL

                ======Hosts File======

                127.0.0.1 localhost
                127.0.0.1 www.007guard.com
                127.0.0.1 007guard.com
                127.0.0.1 008i.com
                127.0.0.1 www.008k.com
                127.0.0.1 008k.com
                127.0.0.1 www.00hq.com
                127.0.0.1 00hq.com
                127.0.0.1 010402.com
                127.0.0.1 www.032439.com

                ======Security center information======

                AV: Avira AntiVir PersonalEdition

                ======System event log======

                Computer Name: PROPRIETAIRE
                Event Code: 26
                Message: Application popup : Windows - Pas de disque : Exception Processing Message c0000013 Parameters 75afbf7c 4 75afbf7c 75afbf7c

                Record Number: 22575
                Source Name: Application Popup
                Time Written: 20090512054203.000000+660
                Event Type: Informations
                User:

                Computer Name: PROPRIETAIRE
                Event Code: 26
                Message: Application popup : Windows - Pas de disque : Exception Processing Message c0000013 Parameters 75afbf7c 4 75afbf7c 75afbf7c

                Record Number: 22574
                Source Name: Application Popup
                Time Written: 20090512054203.000000+660
                Event Type: Informations
                User:

                Computer Name: PROPRIETAIRE
                Event Code: 26
                Message: Application popup : Windows - Pas de disque : Exception Processing Message c0000013 Parameters 75afbf7c 4 75afbf7c 75afbf7c

                Record Number: 22573
                Source Name: Application Popup
                Time Written: 20090512054202.000000+660
                Event Type: Informations
                User:

                Computer Name: PROPRIETAIRE
                Event Code: 26
                Message: Application popup : Windows - Pas de disque : Exception Processing Message c0000013 Parameters 75afbf7c 4 75afbf7c 75afbf7c

                Record Number: 22572
                Source Name: Application Popup
                Time Written: 20090512054202.000000+660
                Event Type: Informations
                User:

                Computer Name: PROPRIETAIRE
                Event Code: 26
                Message: Application popup : Windows - Pas de disque : Exception Processing Message c0000013 Parameters 75afbf7c 4 75afbf7c 75afbf7c

                Record Number: 22571
                Source Name: Application Popup
                Time Written: 20090512054202.000000+660
                Event Type: Informations
                User:

                =====Application event log=====

                Computer Name: PROPRIETAIRE
                Event Code: 0
                Message:
                Record Number: 5
                Source Name: gupdate1c99fa4c7c3c55e
                Time Written: 20090315074930.000000+660
                Event Type: Informations
                User:

                Computer Name: PROPRIETAIRE
                Event Code: 4096
                Message: The AntiVir service has been started successfully!

                Record Number: 4
                Source Name: Avira AntiVir
                Time Written: 20090315074911.000000+660
                Event Type: Informations
                User: AUTORITE NT\SYSTEM

                Computer Name: PROPRIETAIRE
                Event Code: 1800
                Message: Le service Centre de sécurité Windows a démarré.

                Record Number: 3
                Source Name: SecurityCenter
                Time Written: 20090315074908.000000+660
                Event Type: Informations
                User:

                Computer Name: PROPRIETAIRE
                Event Code: 0
                Message: Service started

                Record Number: 2
                Source Name: SeaPort
                Time Written: 20090315074907.000000+660
                Event Type: Informations
                User:

                Computer Name: PROPRIETAIRE
                Event Code: 0
                Message:
                Record Number: 1
                Source Name: gupdate1c99fa4c7c3c55e
                Time Written: 20090315074900.000000+660
                Event Type: Informations
                User:

                ======Environment variables======

                "ComSpec"=%SystemRoot%\system32\cmd.exe
                "Path"=%systemroot%\system32;%systemroot%;%systemroot%\system32\wbem;H:\PROGRA~1\MICROS~2\Office
                "windir"=%SystemRoot%
                "FP_NO_HOST_CHECK"=NO
                "OS"=Windows_NT
                "PROCESSOR_ARCHITECTURE"=x86
                "PROCESSOR_LEVEL"=15
                "PROCESSOR_IDENTIFIER"=x86 Family 15 Model 4 Stepping 3, GenuineIntel
                "PROCESSOR_REVISION"=0403
                "NUMBER_OF_PROCESSORS"=2
                "PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
                "TEMP"=%SystemRoot%\TEMP
                "TMP"=%SystemRoot%\TEMP

                -----------------EOF-----------------
                0
                1. Logfile of random's system information tool 1.06 (written by random/random)
                  Run by User at 2009-06-09 05:06:26
                  Microsoft Windows XP Professionnel Service Pack 3
                  System drive H: has 113 GB (48%) free of 238 GB
                  Total RAM: 1023 MB (42% free)

                  Logfile of Trend Micro HijackThis v2.0.2
                  Scan saved at 05:06:39, on 09/06/2009
                  Platform: Windows XP SP3 (WinNT 5.01.2600)
                  MSIE: Internet Explorer v7.00 (7.00.6000.16827)
                  Boot mode: Normal

                  Running processes:
                  H:\WINDOWS\System32\smss.exe
                  H:\WINDOWS\system32\winlogon.exe
                  H:\WINDOWS\system32\services.exe
                  H:\WINDOWS\system32\lsass.exe
                  H:\WINDOWS\system32\svchost.exe
                  H:\WINDOWS\System32\svchost.exe
                  H:\Program Files\Ahead\InCD\InCDsrv.exe
                  H:\WINDOWS\system32\spoolsv.exe
                  H:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
                  H:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
                  H:\WINDOWS\system32\nvsvc32.exe
                  H:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
                  H:\Program Files\Google\Update\GoogleUpdate.exe
                  H:\WINDOWS\system32\svchost.exe
                  H:\WINDOWS\System32\svchost.exe
                  H:\WINDOWS\Explorer.EXE
                  H:\WINDOWS\system32\ctfmon.exe
                  H:\Program Files\Logitech\Video\LogiTray.exe
                  H:\Program Files\Ahead\InCD\InCD.exe
                  H:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
                  H:\WINDOWS\system32\LVCOMSX.EXE
                  H:\WINDOWS\system32\rundll32.exe
                  H:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
                  H:\Program Files\Logitech\Video\FxSvr2.exe
                  H:\WINDOWS\system32\wuauclt.exe
                  H:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
                  H:\Documents and Settings\User\Local Settings\Application Data\Google\Update\GoogleUpdate.exe
                  H:\WINDOWS\System32\spool\DRIVERS\W32X86\3\lxcfPSWX.EXE
                  H:\WINDOWS\system32\lxcfcoms.exe
                  H:\Program Files\Windows Live\Contacts\wlcomm.exe
                  H:\Program Files\Skype\Phone\Skype.exe
                  H:\Program Files\Skype\Plugin Manager\skypePM.exe
                  H:\Program Files\Internet Explorer\IEXPLORE.EXE
                  H:\Program Files\Windows Live\Toolbar\wltuser.exe
                  H:\Documents and Settings\User\Local Settings\Temporary Internet Files\Content.IE5\5L2VZK40\RSIT[1].exe
                  H:\Program Files\trend micro\User.exe

                  R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
                  R1 - HKLM\Software\Microsoft\Internet Explorer\Main,SearchAssistant = http://www.crawler.com/search/ie.aspx?tb_id=66028
                  R1 - HKLM\Software\Microsoft\Internet Explorer\Main,CustomizeSearch = http://dnl.crawler.com/support/sa_customize.aspx?TbId=66028
                  R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr
                  R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
                  R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
                  O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - H:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
                  O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - H:\PROGRA~1\SPYBOT~1\SDHelper.dll
                  O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
                  O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - H:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
                  O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - H:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
                  O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - H:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
                  O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - h:\program files\google\googletoolbar1.dll
                  O2 - BHO: (no name) - {C451C08A-EC37-45DF-AAAD-18B51AB5E837} - (no file)
                  O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - H:\Program Files\Windows Live\Toolbar\wltcore.dll
                  O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - H:\Program Files\Windows Live\Toolbar\wltcore.dll
                  O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE H:\WINDOWS\system32\NvCpl.dll,NvStartup
                  O4 - HKLM\..\Run: [LogitechVideoRepair] H:\Program Files\Logitech\Video\ISStart.exe
                  O4 - HKLM\..\Run: [LogitechVideoTray] H:\Program Files\Logitech\Video\LogiTray.exe
                  O4 - HKLM\..\Run: [InCD] H:\Program Files\Ahead\InCD\InCD.exe
                  O4 - HKLM\..\Run: [avgnt] "H:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
                  O4 - HKLM\..\Run: [LVCOMSX] H:\WINDOWS\system32\LVCOMSX.EXE
                  O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE H:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
                  O4 - HKLM\..\Run: [MBBalloon] H:\Program Files\HOTALBUMMyBOX\MBBalloon.exe
                  O4 - HKLM\..\Run: [LXCFCATS] rundll32 H:\WINDOWS\System32\spool\DRIVERS\W32X86\3\LXCFtime.dll,_RunDLLEntry@16
                  O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
                  O4 - HKCU\..\Run: [ctfmon.exe] H:\WINDOWS\system32\ctfmon.exe
                  O4 - HKCU\..\Run: [msnmsgr] "H:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
                  O4 - HKCU\..\Run: [SpybotSD TeaTimer] "H:\Program Files\Spybot - Search & Destroy\TeaTimer.exe"
                  O4 - HKCU\..\Run: [Google Update] "H:\Documents and Settings\User\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
                  O4 - Global Startup: Microsoft Office.lnk = H:\Program Files\Microsoft Office\Office10\OSA.EXE
                  O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://H:\WINDOWS\system32\GPhotos.scr/200
                  O8 - Extra context menu item: Add to Windows &Live Favorites - https://onedrive.live.com/?id=favorites
                  O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://H:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
                  O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - H:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
                  O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - H:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
                  O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - H:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
                  O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - H:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
                  O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - H:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
                  O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - H:\PROGRA~1\SPYBOT~1\SDHelper.dll
                  O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - H:\PROGRA~1\SPYBOT~1\SDHelper.dll
                  O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - H:\WINDOWS\Network Diagnostic\xpnetdiag.exe
                  O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - H:\WINDOWS\Network Diagnostic\xpnetdiag.exe
                  O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - H:\Program Files\Messenger\msmsgs.exe (file missing)
                  O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - H:\Program Files\Messenger\msmsgs.exe (file missing)
                  O10 - Unknown file in Winsock LSP: h:\windows\system32\nwprovau.dll
                  O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - H:\Program Files\Yahoo!\Common\yinsthelper.dll
                  O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.6.0) - https://sdlc-esd.oracle.com/ESD44/JSCDL/jdk/6u7/jinstall-6u7-windows-i586-jc.cab?GroupName=JSC&FilePath=/ESD44/JSCDL/jdk/6u7/jinstall-6u7-windows-i586-jc.cab&BHost=javadl.sun.com&File=jinstall-6u7-windows-i586-jc.cab&AuthParam=1580978829_3fac487ff39b191ded7866fc4973d48d&ext=.cab
                  O16 - DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} -
                  O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
                  O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - H:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
                  O23 - Service: Avira AntiVir Personal - Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - H:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
                  O23 - Service: Avira AntiVir Personal - Free Antivirus Guard (AntiVirService) - Avira GmbH - H:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
                  O23 - Service: Google Update Service (gupdate1c99fa4c7c3c55e) (gupdate1c99fa4c7c3c55e) - Google Inc. - H:\Program Files\Google\Update\GoogleUpdate.exe
                  O23 - Service: Google Updater Service (gusvc) - Google - H:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
                  O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - H:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
                  O23 - Service: InCD Helper (InCDsrv) - Nero AG - H:\Program Files\Ahead\InCD\InCDsrv.exe
                  O23 - Service: lxcf_device - - H:\WINDOWS\system32\lxcfcoms.exe
                  O23 - Service: NBService - Nero AG - H:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
                  O23 - Service: NMIndexingService - Nero AG - H:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingService.exe
                  O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - H:\WINDOWS\system32\nvsvc32.exe
                  O24 - Desktop Component 0: (no name) - http://img.hebus.com/hebus_2008/05/07/tn/080507163644_65.jpg
                  0
                  1. Modérateur
                    Très bien. Ad remover a tellement bien bossé, qu'il reste pas de trace :D
                    Envoie un nouveau rapport RSIT pour faire le point stp.
                    1
                    1. Modérateur
                      Télécharges ToolBar S&D ( de Eric_71 )
                      = = = = >>> En cliquant ici <<< = = = =

                      !! Déconnectes toi et fermes toute tes applications en cours le temps de la manipulation !!
                      * Double clique sur l’exécutable pour lancer l’outil.
                      * Une fois fait, tape F pour sélectionner le Français
                      * Choisis l’option 1 (Recherche) et tape sur Entrée.
                      * Une fois le scan finit, un rapport va apparaître au format .txt.
                      * Copie-colle l’intégralité de son contenu dans ta prochaine réponse ...
                      Note :
                      Le rapport est sauvegardé ici : C:\TB.txt
                      Tuto si besoin ICI
                      0
                      1. Bonjour;
                        voici le rapport
                        -----------\\ ToolBar S&D 1.2.8 XP/Vista

                        Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 3
                        X86-based PC ( Multiprocessor Free : Intel(R) Pentium(R) 4 CPU 3.00GHz )
                        BIOS : Award Medallion BIOS v6.00PG
                        USER : User ( Administrator )
                        BOOT : Normal boot
                        Antivirus : Avira AntiVir PersonalEdition 8.0.1.30 (Activated)
                        A:\ (USB)
                        C:\ (USB)
                        D:\ (USB)
                        E:\ (USB)
                        F:\ (USB)
                        G:\ (CD or DVD)
                        H:\ (Local Disk) - NTFS - Total:232 Go (Free:110 Go)

                        "H:\ToolBar SD" ( MAJ : 21-12-2008|20:47 )
                        Option : [1] ( 08/06/2009|18:25 )

                        -----------\\ Recherche de Fichiers / Dossiers ...

                        -----------\\ Extensions

                        (User) - {EF522540-89F5-46b9-B6FE-1829E2B572C6} => googlepreview

                        -----------\\ [..\Internet Explorer\Main]

                        [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
                        "Local Page"="H:\\WINDOWS\\system32\\blank.htm"
                        "Start Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome"
                        "Search Page"="https://www.google.com/?gws_rd=ssl"
                        "Default_Search_URL"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
                        "Search Bar"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
                        "SearchMigratedDefaultURL"="https://www.google.com/webhp?gws_rd=ssl{searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8"
                        "Default_page_URL"="http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome"

                        [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
                        "Default_Page_URL"="http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome"
                        "Default_Search_URL"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
                        "Search Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
                        "Start Page"="https://www.msn.com/fr-fr"
                        "SearchAssistant"="http://www.crawler.com/search/ie.aspx?tb_id=66028"
                        "CustomizeSearch"="http://dnl.crawler.com/support/sa_customize.aspx?TbId=66028"
                        "Search bar"="http://www.bing.com/spresults.aspx"

                        --------------------\\ Recherche d'autres infections

                        --------------------\\ Cracks & Keygens ..

                        H:\DOCUME~1\User\Mes documents\Power DVD 6\PowerDVD6-Keygen
                        H:\DOCUME~1\User\Mes documents\Power DVD 6\PowerDVD6-Keygen\PowerDVD6-Keygen.exe
                        H:\DOCUME~1\User\Mes documents\Power DVD 6\PowerDVD6-Keygen\readme.txt
                        H:\DOCUME~1\User\Mes documents\Power DVD 6\PowerDVD6-Keygen\SoftArchive.NeT.url
                        H:\DOCUME~1\User\Mes documents\V7.7.5.1\keygen.exe

                        1 - "H:\ToolBar SD\TB_1.txt" - 08/06/2009|18:26 - Option : [1]

                        -----------\\ Fin du rapport a 18:26:32,51
                        0
                    2. Modérateur
                      Ce n'est certainement pas lié.
                      Essaye de poster un nouveau message dans la section Messagerie / Chat.

                      En attendant, consulte tes mails sur Internet ;-).
                      0
                      1. je n'arrive plus a charger les messages, je ne peux plus supprimer les messages dans la boite de reception
                        le message d'erreur que je recois est : l'interface de la messagerie a envoyer une erreur inconnue . si le problème persiste redemarrez outlook.
                        0
                        1. Modérateur
                          la messagerie outlook ne fonctionne plus. 

                          Peux-tu en dire un peu plus ?
                          Quels symptômes ? Des messages d'erreur ?
                          0
                          1. oui c'est ok
                            seul probleme qui persiste et je souhaiterai savoir si c'est lié
                            la messagerie outlook ne fonctionne plus.
                            merci et bonne journée
                            0
                            1. Modérateur
                              Eorezo a disparu normalement non ?
                              Supprime Ad-remover.
                              0
                              1. Modérateur
                                Désolé pour mon erreur dans mon copier coller.
                                Message édité.
                                0
                                1. Modérateur
                                  Salut,

                                  Télécharge Ad-Remover ( de Cyrildu17 / C_XX ) sur ton bureau :
                                  = = = =>>> En cliquant ici <<<= = = =

                                  /!\ Déconnectes toi et fermes toutes applications en cours, désactive ton antivirus le temps de la manipulation/!\

                                  * Double clique sur le programme d’installation, et installe le dans son emplacement par défaut. (C:\Program files)
                                  * Double clique sur l’icône Ad-remover située sur ton bureau
                                  * Au menu principal choisi l’option "L" et tape ensuite [Entrée]
                                  * Poste le rapport qui apparaît à la fin.

                                  (Le rapport est sauvegardé aussi sous C:\Ad-report(date).log)
                                  (CTRL+A Pour tout sélectionner, CTRL+C pour copier et CTRL+V pour coller)

                                  Note :

                                  "Process.exe", une composante de l’outil, est détecté par certains antivirus (AntiVir, Dr.Web, Kaspersky Anti-Virus) comme étant un RiskTool.
                                  Il ne s’agit pas d’un virus, mais d’un utilitaire destiné à mettre fin à des processus.
                                  0
                                  1. .bonjour
                                    le programme m'a donné le rapport suivant
                                    ======= RAPPORT D'AD-REMOVER 1.1.4.5_E | UNIQUEMENT XP/VISTA =======
                                    .
                                    Mit à jour par C_XX le 06/06/2009 à 16:30 PM
                                    Contact: AdRemover.contact@gmail.com
                                    Site web: http://pagesperso-orange.fr/NosTools/ad_remover.html
                                    .
                                    Lancé à: 13:31:55, 07/06/2009 | Mode Normal | Option: CLEAN
                                    Exécuté de: H:\Program Files\Ad-remover\
                                    Système d'exploitation: Microsoft® Windows XP™ Service Pack 3 v5.1.2600
                                    Nom du PC: PROPRIETAIRE | Utilisateur actuel: User
                                    .
                                    Administrateur: Administrateur
                                    N'est pas administrateur: ASPNET
                                    N'est pas administrateur: HelpAssistant *Desactive*
                                    N'est pas administrateur: Invité *Desactive*
                                    N'est pas administrateur: SUPPORT_388945a0 *Desactive*
                                    Administrateur: User
                                    .
                                    ============== ÉLÉMENT(S) NEUTRALISÉ(S) ==============
                                    .
                                    .
                                    .
                                    H:\DOCUME~1\User\APPLIC~1\EoRezo\cmhost.cyp
                                    H:\DOCUME~1\User\APPLIC~1\EoRezo\ConfMedia.cyp
                                    H:\DOCUME~1\User\APPLIC~1\EoRezo\db
                                    H:\DOCUME~1\User\APPLIC~1\EoRezo\eoDesktop
                                    H:\DOCUME~1\User\APPLIC~1\EoRezo\eoStats
                                    H:\DOCUME~1\User\APPLIC~1\EoRezo\host.cyp
                                    H:\DOCUME~1\User\APPLIC~1\EoRezo\SoftwareUpdate
                                    H:\DOCUME~1\User\APPLIC~1\EoRezo\user.cyp
                                    H:\DOCUME~1\User\APPLIC~1\EoRezo\eoDesktop\config.xml
                                    H:\DOCUME~1\User\APPLIC~1\EoRezo\eoDesktop\eoDesktop.html
                                    H:\DOCUME~1\User\APPLIC~1\EoRezo\eoDesktop\userConfig.xml
                                    H:\DOCUME~1\User\APPLIC~1\EoRezo\eoStats\eoStats.txt
                                    H:\DOCUME~1\User\APPLIC~1\EoRezo\SoftwareUpdate\Download
                                    H:\DOCUME~1\User\APPLIC~1\EoRezo\SoftwareUpdate\help_config.cyp
                                    H:\DOCUME~1\User\APPLIC~1\EoRezo\SoftwareUpdate\Software
                                    H:\DOCUME~1\User\APPLIC~1\EoRezo\SoftwareUpdate\SoftwareUpdate.exe
                                    H:\DOCUME~1\User\APPLIC~1\EoRezo\SoftwareUpdate\SoftwareUpdateHP.exe
                                    H:\DOCUME~1\User\APPLIC~1\EoRezo\SoftwareUpdate\unins000.dat
                                    H:\DOCUME~1\User\APPLIC~1\EoRezo\SoftwareUpdate\unins000.exe
                                    H:\DOCUME~1\User\APPLIC~1\EoRezo\SoftwareUpdate\user_config.cyp
                                    H:\DOCUME~1\User\APPLIC~1\EoRezo\SoftwareUpdate\user_profil.cyp
                                    H:\DOCUME~1\User\APPLIC~1\EoRezo\SoftwareUpdate\Software\eobrowserpub
                                    H:\DOCUME~1\User\APPLIC~1\EoRezo\SoftwareUpdate\Software\eoengine
                                    H:\DOCUME~1\User\APPLIC~1\EoRezo\SoftwareUpdate\Software\itsTV
                                    H:\DOCUME~1\User\APPLIC~1\EoRezo\SoftwareUpdate\Software\eobrowserpub\1.0.0.1
                                    H:\DOCUME~1\User\APPLIC~1\EoRezo\SoftwareUpdate\Software\eoengine\9.1.0.0
                                    H:\DOCUME~1\User\APPLIC~1\EoRezo\SoftwareUpdate\Software\itsTV\3.0.0.1
                                    H:\DOCUME~1\User\APPLIC~1\EoRezo\SoftwareUpdate\Software\itsTV\3.0.0.2
                                    H:\DOCUME~1\User\APPLIC~1\EoRezo\SoftwareUpdate\Software\itsTV\3.0.0.3
                                    H:\DOCUME~1\User\APPLIC~1\EoRezo\SoftwareUpdate\Software\itsTV\3.0.0.4
                                    H:\DOCUME~1\User\APPLIC~1\EoRezo\SoftwareUpdate\Software\itsTV\3.0.0.5
                                    H:\DOCUME~1\User\APPLIC~1\EoRezo\SoftwareUpdate\Software\itsTV\3.0.0.6
                                    H:\DOCUME~1\User\APPLIC~1\EoRezo\SoftwareUpdate\Software\itsTV\3.0.0.2\itstv.exe
                                    H:\DOCUME~1\User\APPLIC~1\EoRezo\SoftwareUpdate\Software\itsTV\3.0.0.3\itstv.exe
                                    H:\DOCUME~1\User\APPLIC~1\EoRezo\SoftwareUpdate\Software\itsTV\3.0.0.4\itstv.exe
                                    H:\DOCUME~1\User\APPLIC~1\EoRezo\SoftwareUpdate\Software\itsTV\3.0.0.5\itstv.exe
                                    H:\DOCUME~1\User\APPLIC~1\EoRezo\SoftwareUpdate\Software\itsTV\3.0.0.6\itstv.exe
                                    H:\DOCUME~1\User\APPLIC~1\EoRezo
                                    H:\DOCUME~1\User\APPLIC~1\ItsLabel\ItsTV
                                    H:\DOCUME~1\User\APPLIC~1\ItsLabel\ItsTV\itsTV.xml
                                    H:\DOCUME~1\User\APPLIC~1\ItsLabel
                                    H:\Program Files\AskBarDis\bar
                                    H:\Program Files\AskBarDis\PopSwatter
                                    H:\Program Files\AskBarDis\unins000.exe
                                    H:\Program Files\AskBarDis\bar\bin
                                    H:\Program Files\AskBarDis\bar\Cache
                                    H:\Program Files\AskBarDis\bar\History
                                    H:\Program Files\AskBarDis\bar\Settings
                                    H:\Program Files\AskBarDis\bar\bin\askBar.dll
                                    H:\Program Files\AskBarDis\bar\bin\askPopStp.dll
                                    H:\Program Files\AskBarDis\bar\bin\psvince.dll
                                    H:\Program Files\AskBarDis\bar\Cache\files.ini
                                    H:\Program Files\AskBarDis\PopSwatter\History
                                    H:\Program Files\AskBarDis
                                    H:\Program Files\AskTBar\bar
                                    H:\Program Files\AskTBar\PopSwatr
                                    H:\Program Files\AskTBar\SrchAstt
                                    H:\Program Files\AskTBar\bar\1.bin
                                    H:\Program Files\AskTBar\bar\Cache
                                    H:\Program Files\AskTBar\bar\History
                                    H:\Program Files\AskTBar\bar\Settings
                                    H:\Program Files\AskTBar\bar\1.bin\A5POPSWT.DLL
                                    H:\Program Files\AskTBar\bar\1.bin\ASKTBAR.DLL
                                    H:\Program Files\AskTBar\bar\Cache\000757D2
                                    H:\Program Files\AskTBar\bar\Cache\00C9D2FE.bin
                                    H:\Program Files\AskTBar\bar\Cache\00C9D540.bin
                                    H:\Program Files\AskTBar\bar\Cache\00C9D782.bin
                                    H:\Program Files\AskTBar\bar\Cache\00C9D9D4.bin
                                    H:\Program Files\AskTBar\bar\Cache\files.ini
                                    H:\Program Files\AskTBar\bar\History\search2
                                    H:\Program Files\AskTBar\bar\Settings\prevcfg2.htm
                                    H:\Program Files\AskTBar\PopSwatr\History
                                    H:\Program Files\AskTBar\PopSwatr\History\allowed
                                    H:\Program Files\AskTBar\PopSwatr\History\notallow
                                    H:\Program Files\AskTBar\SrchAstt\1.bin
                                    H:\Program Files\AskTBar\SrchAstt\1.bin\A5SRCHAS.DLL
                                    H:\Program Files\AskTBar
                                    H:\Program Files\EoRezo\EoAdv
                                    H:\Program Files\EoRezo\EoEngine.exe
                                    H:\Program Files\EoRezo\EoMultiLanguage.dll
                                    H:\Program Files\EoRezo\EoRezoComm.dll
                                    H:\Program Files\EoRezo\EoRezoImg_17.dll
                                    H:\Program Files\EoRezo\EoRezoImg_19.dll
                                    H:\Program Files\EoRezo\EoRezoImg_20.dll
                                    H:\Program Files\EoRezo\EoRezoImg_21.dll
                                    H:\Program Files\EoRezo\EoRezoImg_22.dll
                                    H:\Program Files\EoRezo\EoRezoImg_23.dll
                                    H:\Program Files\EoRezo\EoRezoTools_16.dll
                                    H:\Program Files\EoRezo\EoRezoTools_17.dll
                                    H:\Program Files\EoRezo\EoRezoTools_18.dll
                                    H:\Program Files\EoRezo\EoRezoTools_20.dll
                                    H:\Program Files\EoRezo\EoRezoTools_21.dll
                                    H:\Program Files\EoRezo\EoRezoTools_26.dll
                                    H:\Program Files\EoRezo\EoRezoTools_27.dll
                                    H:\Program Files\EoRezo\EoRezoTools_28.dll
                                    H:\Program Files\EoRezo\EoRezoTools_29.dll
                                    H:\Program Files\EoRezo\EoRezoTools_30.dll
                                    H:\Program Files\EoRezo\FreeImage.dll
                                    H:\Program Files\EoRezo\lang
                                    H:\Program Files\EoRezo\MngInstaller.dll
                                    H:\Program Files\EoRezo\unins000.exe
                                    H:\Program Files\EoRezo\EoAdv\atl90.dll
                                    H:\Program Files\EoRezo\EoAdv\EoAdv.dll
                                    H:\Program Files\EoRezo\EoAdv\EoRezoBHO.dll
                                    H:\Program Files\EoRezo\EoAdv\mfc90.dll
                                    H:\Program Files\EoRezo\EoAdv\Microsoft.VC90.ATL.manifest
                                    H:\Program Files\EoRezo\EoAdv\Microsoft.VC90.CRT.manifest
                                    H:\Program Files\EoRezo\EoAdv\Microsoft.VC90.MFC.manifest
                                    H:\Program Files\EoRezo\EoAdv\msvcr90.dll
                                    H:\Program Files\EoRezo
                                    H:\Program Files\ItsLabel\ItsTV.exe
                                    H:\Program Files\ItsLabel\ItsTV.url
                                    H:\Program Files\ItsLabel\ItsTV.xml
                                    H:\Program Files\ItsLabel\Loading.swf
                                    H:\Program Files\ItsLabel\unins000.dat
                                    H:\Program Files\ItsLabel\unins000.exe
                                    H:\Program Files\ItsLabel
                                    H:\WINDOWS\Installer\35f3e56.msi
                                    H:\WINDOWS\Prefetch\SOFTWAREUPDATEHP.EXE-0E9918D6.pf
                                    H:\DOCUME~1\User\Cookies\user@eorezo[2].txt

                                    (!) -- Fichiers temporaires supprimés.

                                    .
                                    ============== Scan additionnel ==============
                                    .

                                    * Mozilla FireFox Version 3.0.10 *

                                    Nom du profil: ugo6h234.default (User)
                                    .
                                    (Prefs.js) user_pref("browser.search.selectedEngine", "Live Search");
                                    (Prefs.js) user_pref("browser.startup.homepage_override.mstone", "rv:1.9.0.1");
                                    (Prefs.js) user_pref("browser.startup.homepage", "hxxp://fr.msn.com/");
                                    .
                                    (prefs.js) EFFACÉ: user_pref("browser.startup.homepage", "hxxp://y.lo.st");
                                    .

                                    * Internet Explorer Version 7.0.5730.13 *

                                    [HKEY_CURRENT_USER\..\Internet Explorer\Main]

                                    Default_Page_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
                                    Default_Search_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
                                    Search bar: hxxp://go.microsoft.com/fwlink/?linkid=54896
                                    Search Page: hxxp://www.google.com
                                    Start Page: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome

                                    [HKEY_LOCAL_MACHINE\..\Internet Explorer\Main]

                                    Default_Page_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
                                    Default_Search_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
                                    SearchAssistant: hxxp://www.crawler.com/search/ie.aspx?tb_id=66028
                                    Search bar: hxxp://search.msn.com/spbasic.htm
                                    Search Page: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
                                    Start Page: hxxp://fr.msn.com/

                                    [HKEY_LOCAL_MACHINE\..\Internet Explorer\ABOUTURLS]

                                    Tabs: res://ieframe.dll/tabswelcome.htm

                                    ============== Suspect (Cracks, Serials ... ) ==============

                                    .

                                    +---------------------------------------------------------------------------+

                                    8364 Octet(s) - H:\Ad-Report-CLEAN.log

                                    17 Fichier(s) - H:\Program Files\Ad-remover\BACKUP
                                    57 Fichier(s) - H:\Program Files\Ad-remover\QUARANTINE

                                    Fin à: 13:42:05 | 07/06/2009
                                    .
                                    ============== E.O.F ==============
                                    .
                                    0
                                2. Salut

                                  Peux tu télécharger Random's system information Tool de Random/random

                                  Double-clique sur RSIT.exe afin de lancer RSIT.
                                  Clique "Continue" à l'écran Disclaimer.

                                  Si l'outil HIjackThis (version à jour) n'est pas présent ou non détecté sur l'ordinateur, RSIT va le télécharger (autorise l'accès dans ton pare-feu, si demandé) et tu devras accepter la licence.
                                  Lorsque l'analyse sera terminée, deux fichiers texte s'ouvriront.
                                  Poste le contenu de log.txt (<<qui sera affiché)
                                  ainsi que de info.txt (<<qui sera réduit dans la Barre des Tâches).

                                  NB : Les rapports sont sauvegardés dans le dossier C:\rsit
                                  0
                                  1. merci pour la prise en compte du probleme
                                    voici les fichiers demandes
                                    nfo.txt logfile of random's system information tool 1.06 2009-06-07 11:07:57

                                    ======Uninstall list======

                                    -->H:\Program Files\Nero\Nero 7\\nero\uninstall\UNNERO.exe /UNINSTALL
                                    -->H:\WINDOWS\NuNInst.exe /UNINSTALL
                                    -->H:\WINDOWS\UNNeroBackItUp.exe /UNINSTALL
                                    -->H:\WINDOWS\UNNeroMediaHome.exe /UNINSTALL
                                    -->H:\WINDOWS\UNNeroShowTime.exe /UNINSTALL
                                    -->H:\WINDOWS\UNNeroVision.exe /UNINSTALL
                                    -->H:\WINDOWS\UNRecode.exe /UNINSTALL
                                    -->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 H:\WINDOWS\INF\PCHealth.inf
                                    Adobe Flash Player 10 ActiveX-->H:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
                                    Adobe Flash Player 10 Plugin-->H:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
                                    Adobe Shockwave Player 11.5-->H:\WINDOWS\system32\Adobe\uninstaller.exe
                                    ArcSoft PhotoStudio 5.5-->RunDll32 H:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "H:\Program Files\InstallShield Installation Information\{85309D89-7BE9-4094-BB17-24999C6118FC}\Setup.exe" -l0x9
                                    Ask Toolbar-->rundll32 H:\PROGRA~1\AskTBar\bar\1.bin\AskTBar.dll,O
                                    Assistant de connexion Windows Live-->MsiExec.exe /I{DCE8CD14-FBF5-4464-B9A4-E18E473546C7}
                                    Avira AntiVir Personal - Free Antivirus-->H:\Program Files\Avira\AntiVir PersonalEdition Classic\SETUP.EXE /REMOVE
                                    BankPerfect 6.23-->"H:\Program Files\BankPerfect\uninstall.exe"
                                    Canon ScanGear Starter-->RunDll32 H:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "H:\Program Files\InstallShield Installation Information\{18A5DFF2-8A95-49F3-873F-743CB5549F3D}\SETUP.EXE" -l0x9 anything
                                    CCleaner (remove only)-->"H:\Program Files\CCleaner\uninst.exe"
                                    CDisplay 1.8.5.2-->"H:\Program Files\CDisplay\unins000.exe"
                                    Choice Guard-->MsiExec.exe /I{8FFC5648-FAF8-43A3-BC8F-42BA1E275C4E}
                                    ClassPad Manager v3 Professional (30 Day Trial)-->MsiExec.exe /X{71F205E9-C01C-47C5-B029-8AAC14AF03F1}
                                    Correctif pour Lecteur Windows Media 11 (KB939683)-->"H:\WINDOWS\$NtUninstallKB939683$\spuninst\spuninst.exe"
                                    Correctif pour Windows XP (KB952287)-->"H:\WINDOWS\$NtUninstallKB952287$\spuninst\spuninst.exe"
                                    eoEngine 9.1-->"H:\Program Files\EoRezo\unins000.exe"
                                    Foxit Reader-->H:\Program Files\Foxit Software\Foxit Reader\Uninstall.exe
                                    Foxit Toolbar-->"H:\Program Files\AskBarDis\unins000.exe"
                                    Free Mp3 Wma Converter V 1.7.3-->"H:\Program Files\Free Audio Pack\unins000.exe"
                                    Galerie de photos Windows Live-->MsiExec.exe /X{44E54A81-9D91-4AA1-9417-80AFF134F5FF}
                                    Google Earth Plugin-->MsiExec.exe /I{CFA3D1B0-415C-11DE-8251-005056806466}
                                    Google Earth-->MsiExec.exe /I{1D14373E-7970-4F2F-A467-ACA4F0EA21E3}
                                    Google Toolbar for Internet Explorer-->MsiExec.exe /I{DBEA1034-5882-4A88-8033-81C4EF0CFA29}
                                    Google Toolbar for Internet Explorer-->regsvr32 /u /s "h:\program files\google\googletoolbar1.dll"
                                    Google Update Helper-->MsiExec.exe /I{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
                                    High Definition Audio - KB888111-->"H:\WINDOWS\$NtUninstallKB888111WXPSP2$\spuninst\spuninst.exe"
                                    HijackThis 2.0.2-->"H:\Program Files\trend micro\HijackThis.exe" /uninstall
                                    HOT ALBUM MYBOX-->H:\Program Files\HOTALBUMMyBOX\VUninst.exe /a
                                    Hotfix for Windows Media Format 11 SDK (KB929399)-->"H:\WINDOWS\$NtUninstallKB929399$\spuninst\spuninst.exe"
                                    IL-2 Sturmovik: Forgotten Battles-->H:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{8DF712DA-D325-4FD0-8DE8-E2D78FC3CDC3} /l1036
                                    Installation Windows Live-->H:\Program Files\Windows Live\Installer\wlarp.exe
                                    Installation Windows Live-->MsiExec.exe /I{7370DF47-B4F9-4279-BFC3-3F09919F720D}
                                    InterActual Player-->H:\Program Files\InterActual\InterActual Player\inuninst.exe
                                    ItsTV 3.0-->"H:\Program Files\ItsLabel\unins000.exe"
                                    Java(TM) 6 Update 7-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160070}
                                    Junk Mail filter update-->MsiExec.exe /I{4DE3E3D9-AE81-45DE-9195-3015F7B1DBF3}
                                    Le Club des TrouveTout, L'énigme du Volcan-->H:\Program Files\Mindscape\Le Club des TrouveTout, L'énigme du Volcan\uninstall.exe
                                    Lecteur Windows Media 11-->"H:\Program Files\Windows Media Player\Setup_wm.exe" /Uninstall
                                    Lexmark 730 Series-->H:\WINDOWS\System32\spool\DRIVERS\W32X86\3\lxcfUNST.EXE -NOLICENSE
                                    Logiciel WebCam de Labtec-->RunDll32 H:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\09\00\Intel32\Ctor.dll,LaunchSetup "H:\Program Files\InstallShield Installation Information\{C43048A9-742C-4DAD-90D2-E3B53C9DB825}\setup.exe" -l0x40c
                                    Malwarebytes' Anti-Malware-->"H:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"
                                    Microsoft .NET Framework 1.1 French Language Pack-->MsiExec.exe /X{9A394342-4A68-4EBA-85A6-55B559F4E700}
                                    Microsoft .NET Framework 1.1 Hotfix (KB928366)-->"H:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe" "H:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\M928366\M928366Uninstall.msp"
                                    Microsoft .NET Framework 1.1-->msiexec.exe /X {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
                                    Microsoft .NET Framework 1.1-->MsiExec.exe /X{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
                                    Microsoft .NET Framework 2.0-->H:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft .NET Framework 2.0\install.exe
                                    Microsoft Compression Client Pack 1.0 for Windows XP-->"H:\WINDOWS\$NtUninstallMSCompPackV1$\spuninst\spuninst.exe"
                                    Microsoft Internationalized Domain Names Mitigation APIs-->"H:\WINDOWS\$NtServicePackUninstallIDNMitigationAPIs$\spuninst\spuninst.exe"
                                    Microsoft National Language Support Downlevel APIs-->"H:\WINDOWS\$NtServicePackUninstallNLSDownlevelMapping$\spuninst\spuninst.exe"
                                    Microsoft Office Live Add-in 1.3-->MsiExec.exe /I{57F0ED40-8F11-41AA-B926-4A66D0D1A9CC}
                                    Microsoft Office XP Media Content-->MsiExec.exe /I{9030040C-6000-11D3-8CFE-0050048383C9}
                                    Microsoft Office XP Professional-->MsiExec.exe /I{9111040C-6000-11D3-8CFE-0050048383C9}
                                    Microsoft Publisher 98-->H:\Program Files\Microsoft Office\Office\Install\Install.exe /m
                                    Microsoft Search Enhancement Pack-->MsiExec.exe /X{4CBA3D4C-8F51-4D60-B27E-F6B641C571E7}
                                    Microsoft SharedView-->MsiExec.exe /I{0EBA7CFF-B7E9-4439-96AC-4D11086685AD}
                                    Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
                                    Microsoft SQL Server 2005 Compact Edition [ENU]-->MsiExec.exe /I{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}
                                    Microsoft Sync Framework Runtime Native v1.0 (x86)-->MsiExec.exe /I{8A74E887-8F0F-4017-AF53-CBA42211AAA5}
                                    Microsoft Sync Framework Services Native v1.0 (x86)-->MsiExec.exe /I{BD64AF4A-8C80-4152-AD77-FCDDF05208AB}
                                    Microsoft User-Mode Driver Framework Feature Pack 1.0-->"H:\WINDOWS\$NtUninstallWudf01000$\spuninst\spuninst.exe"
                                    Mise à jour critique pour Lecteur Windows Media 11 (KB959772)-->"H:\WINDOWS\$NtUninstallKB959772_WM11$\spuninst\spuninst.exe"
                                    Mise à jour de sécurité pour Lecteur Windows Media (KB952069)-->"H:\WINDOWS\$NtUninstallKB952069_WM9$\spuninst\spuninst.exe"
                                    Mise à jour de sécurité pour Lecteur Windows Media 11 (KB936782)-->"H:\WINDOWS\$NtUninstallKB936782_WMP11$\spuninst\spuninst.exe"
                                    Mise à jour de sécurité pour Lecteur Windows Media 11 (KB954154)-->"H:\WINDOWS\$NtUninstallKB954154_WM11$\spuninst\spuninst.exe"
                                    Mise à jour de sécurité pour Windows Internet Explorer 7 (KB938127)-->"H:\WINDOWS\ie7updates\KB938127-IE7\spuninst\spuninst.exe"
                                    Mise à jour de sécurité pour Windows Internet Explorer 7 (KB938127-v2)-->"H:\WINDOWS\ie7updates\KB938127-v2-IE7\spuninst\spuninst.exe"
                                    Mise à jour de sécurité pour Windows Internet Explorer 7 (KB953838)-->"H:\WINDOWS\ie7updates\KB953838-IE7\spuninst\spuninst.exe"
                                    Mise à jour de sécurité pour Windows Internet Explorer 7 (KB956390)-->"H:\WINDOWS\ie7updates\KB956390-IE7\spuninst\spuninst.exe"
                                    Mise à jour de sécurité pour Windows Internet Explorer 7 (KB958215)-->"H:\WINDOWS\ie7updates\KB958215-IE7\spuninst\spuninst.exe"
                                    Mise à jour de sécurité pour Windows Internet Explorer 7 (KB960714)-->"H:\WINDOWS\ie7updates\KB960714-IE7\spuninst\spuninst.exe"
                                    Mise à jour de sécurité pour Windows Internet Explorer 7 (KB961260)-->"H:\WINDOWS\ie7updates\KB961260-IE7\spuninst\spuninst.exe"
                                    Mise à jour de sécurité pour Windows Internet Explorer 7 (KB963027)-->"H:\WINDOWS\ie7updates\KB963027-IE7\spuninst\spuninst.exe"
                                    Mise à jour de sécurité pour Windows XP (KB923561)-->"H:\WINDOWS\$NtUninstallKB923561$\spuninst\spuninst.exe"
                                    Mise à jour de sécurité pour Windows XP (KB923789)-->H:\WINDOWS\system32\MacroMed\Flash\genuinst.exe H:\WINDOWS\system32\MacroMed\Flash\KB923789.inf
                                    Mise à jour de sécurité pour Windows XP (KB938464)-->"H:\WINDOWS\$NtUninstallKB938464$\spuninst\spuninst.exe"
                                    Mise à jour de sécurité pour Windows XP (KB938464-v2)-->"H:\WINDOWS\$NtUninstallKB938464-v2$\spuninst\spuninst.exe"
                                    Mise à jour de sécurité pour Windows XP (KB941569)-->"H:\WINDOWS\$NtUninstallKB941569$\spuninst\spuninst.exe"
                                    Mise à jour de sécurité pour Windows XP (KB946648)-->"H:\WINDOWS\$NtUninstallKB946648$\spuninst\spuninst.exe"
                                    Mise à jour de sécurité pour Windows XP (KB950759)-->"H:\WINDOWS\$NtUninstallKB950759$\spuninst\spuninst.exe"
                                    Mise à jour de sécurité pour Windows XP (KB950760)-->"H:\WINDOWS\$NtUninstallKB950760$\spuninst\spuninst.exe"
                                    Mise à jour de sécurité pour Windows XP (KB950762)-->"H:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe"
                                    Mise à jour de sécurité pour Windows XP (KB950974)-->"H:\WINDOWS\$NtUninstallKB950974$\spuninst\spuninst.exe"
                                    Mise à jour de sécurité pour Windows XP (KB951066)-->"H:\WINDOWS\$NtUninstallKB951066$\spuninst\spuninst.exe"
                                    Mise à jour de sécurité pour Windows XP (KB951376)-->"H:\WINDOWS\$NtUninstallKB951376$\spuninst\spuninst.exe"
                                    Mise à jour de sécurité pour Windows XP (KB951376-v2)-->"H:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe"
                                    Mise à jour de sécurité pour Windows XP (KB951698)-->"H:\WINDOWS\$NtUninstallKB951698$\spuninst\spuninst.exe"
                                    Mise à jour de sécurité pour Windows XP (KB951748)-->"H:\WINDOWS\$NtUninstallKB951748$\spuninst\spuninst.exe"
                                    Mise à jour de sécurité pour Windows XP (KB952004)-->"H:\WINDOWS\$NtUninstallKB952004$\spuninst\spuninst.exe"
                                    Mise à jour de sécurité pour Windows XP (KB952954)-->"H:\WINDOWS\$NtUninstallKB952954$\spuninst\spuninst.exe"
                                    Mise à jour de sécurité pour Windows XP (KB953838)-->"H:\WINDOWS\$NtUninstallKB953838$\spuninst\spuninst.exe"
                                    Mise à jour de sécurité pour Windows XP (KB953839)-->"H:\WINDOWS\$NtUninstallKB953839$\spuninst\spuninst.exe"
                                    Mise à jour de sécurité pour Windows XP (KB954211)-->"H:\WINDOWS\$NtUninstallKB954211$\spuninst\spuninst.exe"
                                    Mise à jour de sécurité pour Windows XP (KB954459)-->"H:\WINDOWS\$NtUninstallKB954459$\spuninst\spuninst.exe"
                                    Mise à jour de sécurité pour Windows XP (KB954600)-->"H:\WINDOWS\$NtUninstallKB954600$\spuninst\spuninst.exe"
                                    Mise à jour de sécurité pour Windows XP (KB955069)-->"H:\WINDOWS\$NtUninstallKB955069$\spuninst\spuninst.exe"
                                    Mise à jour de sécurité pour Windows XP (KB956391)-->"H:\WINDOWS\$NtUninstallKB956391$\spuninst\spuninst.exe"
                                    Mise à jour de sécurité pour Windows XP (KB956572)-->"H:\WINDOWS\$NtUninstallKB956572$\spuninst\spuninst.exe"
                                    Mise à jour de sécurité pour Windows XP (KB956802)-->"H:\WINDOWS\$NtUninstallKB956802$\spuninst\spuninst.exe"
                                    Mise à jour de sécurité pour Windows XP (KB956803)-->"H:\WINDOWS\$NtUninstallKB956803$\spuninst\spuninst.exe"
                                    Mise à jour de sécurité pour Windows XP (KB956841)-->"H:\WINDOWS\$NtUninstallKB956841$\spuninst\spuninst.exe"
                                    Mise à jour de sécurité pour Windows XP (KB957095)-->"H:\WINDOWS\$NtUninstallKB957095$\spuninst\spuninst.exe"
                                    Mise à jour de sécurité pour Windows XP (KB957097)-->"H:\WINDOWS\$NtUninstallKB957097$\spuninst\spuninst.exe"
                                    Mise à jour de sécurité pour Windows XP (KB958644)-->"H:\WINDOWS\$NtUninstallKB958644$\spuninst\spuninst.exe"
                                    Mise à jour de sécurité pour Windows XP (KB958687)-->"H:\WINDOWS\$NtUninstallKB958687$\spuninst\spuninst.exe"
                                    Mise à jour de sécurité pour Windows XP (KB958690)-->"H:\WINDOWS\$NtUninstallKB958690$\spuninst\spuninst.exe"
                                    Mise à jour de sécurité pour Windows XP (KB959426)-->"H:\WINDOWS\$NtUninstallKB959426$\spuninst\spuninst.exe"
                                    Mise à jour de sécurité pour Windows XP (KB960225)-->"H:\WINDOWS\$NtUninstallKB960225$\spuninst\spuninst.exe"
                                    Mise à jour de sécurité pour Windows XP (KB960715)-->"H:\WINDOWS\$NtUninstallKB960715$\spuninst\spuninst.exe"
                                    Mise à jour de sécurité pour Windows XP (KB960803)-->"H:\WINDOWS\$NtUninstallKB960803$\spuninst\spuninst.exe"
                                    Mise à jour de sécurité pour Windows XP (KB961373)-->"H:\WINDOWS\$NtUninstallKB961373$\spuninst\spuninst.exe"
                                    Mise à jour pour Windows XP (KB942763)-->"H:\WINDOWS\$NtUninstallKB942763$\spuninst\spuninst.exe"
                                    Mise à jour pour Windows XP (KB951072-v2)-->"H:\WINDOWS\$NtUninstallKB951072-v2$\spuninst\spuninst.exe"
                                    Mise à jour pour Windows XP (KB951978)-->"H:\WINDOWS\$NtUninstallKB951978$\spuninst\spuninst.exe"
                                    Mise à jour pour Windows XP (KB955839)-->"H:\WINDOWS\$NtUninstallKB955839$\spuninst\spuninst.exe"
                                    Mise à jour pour Windows XP (KB961503)-->"H:\WINDOWS\$NtUninstallKB961503$\spuninst\spuninst.exe"
                                    Mise à jour pour Windows XP (KB967715)-->"H:\WINDOWS\$NtUninstallKB967715$\spuninst\spuninst.exe"
                                    Mozilla Firefox (3.0.10)-->H:\Program Files\Mozilla Firefox\uninstall\helper.exe
                                    Mozilla Thunderbird (2.0.0.21)-->H:\Program Files\Mozilla Thunderbird\uninstall\helper.exe
                                    MSN-->H:\Program Files\MSN\MsnInstaller\msninst.exe /Action:ARP
                                    MSVCRT-->MsiExec.exe /I{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
                                    Nathan Français CE2-->H:\Program Files\Nathan\Francais CE2\Uninstal.exe
                                    Nathan Francais CM1-->H:\Program Files\Nathan\Francais CM1\Uninstal.exe
                                    Nero 7 Ultra Edition-->MsiExec.exe /I{F0A7FB2C-99E2-4884-9187-4BC60B2C1036}
                                    Nero Suite-->H:\Program Files\Fichiers communs\Nero\Uninstall\setup.exe /uninstall ExtraUninstallID=""
                                    NVIDIA Drivers-->H:\WINDOWS\system32\nvudisp.exe UninstallGUI
                                    Outil de téléchargement Windows Live-->MsiExec.exe /I{205C6BDD-7B73-42DE-8505-9A093F35A238}
                                    PDFCreator-->H:\Program Files\PDFCreator\unins000.exe
                                    PhotoFiltre-->"H:\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires\PhotoFiltre\Uninst.exe"
                                    Picasa 3-->"H:\Program Files\Google\Picasa3\Uninstall.exe"
                                    Programme de gestion Camera de Labtec®-->"H:\Program Files\Fichiers communs\Logitech\QCDRV\BIN\SETUP.EXE" UNINSTALL REMOVEPROMPT
                                    Search Settings 1.2-->MsiExec.exe /X{D0C73318-7B4A-4D16-A0C4-3B83F075EA88}
                                    Security Update for CAPICOM (KB931906)-->MsiExec.exe /I{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
                                    Security Update for CAPICOM (KB931906)-->MsiExec.exe /X{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
                                    Segoe UI-->MsiExec.exe /I{A1F66FC9-11EE-4F2F-98C9-16F8D1E69FB7}
                                    SIW version 2008-09-03-->"H:\Program Files\SIW\unins000.exe"
                                    Skype™ 4.0-->MsiExec.exe /X{24D753CA-6AE9-4E30-8F5F-EFC93E08BF3D}
                                    SoftwareUpdate 1.0-->"H:\Documents and Settings\User\Application Data\eoRezo\SoftwareUpdate\unins000.exe"
                                    Spybot - Search & Destroy-->"H:\Program Files\Spybot - Search & Destroy\unins000.exe"
                                    VideoLAN VLC media player 0.8.6i-->H:\Program Files\VideoLAN\VLC\uninstall.exe
                                    Warhammer® Mark of Chaos-->H:\Program Files\InstallShield Installation Information\{5F374D5D-DB43-4263-9C29-BAB2C93FEFE6}\setup.exe -runfromtemp -l0x040c -removeonly
                                    Windows Driver Package - ASUSTeK (3xHybrid) MEDIA (05/05/2005 1.3.2.5)-->H:\PROGRA~1\DIFX\D6ACC4BE676423A2B130B78A4B627FC457D98997\DPInst.exe /u H:\WINDOWS\system32\DRVSTORE\34avstrm_1FB7ED192E32EA5CC3DF15EFC0D70E07C0493348\34avstrm.inf
                                    Windows Live Call-->MsiExec.exe /I{82C7B308-0BDD-49D8-8EA5-9CD3A3F9DF41}
                                    Windows Live Communications Platform-->MsiExec.exe /I{3B4E636E-9D65-4D67-BA61-189800823F52}
                                    Windows Live Contrôle parental-->MsiExec.exe /X{D6A2DDE3-9D7C-412C-932A-756580D29919}
                                    Windows Live Mail-->MsiExec.exe /I{63DC2DA0-2A6C-4C38-9249-B75395458657}
                                    Windows Live Messenger-->MsiExec.exe /X{059C042E-796A-4ACC-A81A-ECC2010BB78C}
                                    Windows Live Toolbar-->MsiExec.exe /X{F7D27C70-90F5-49B9-B188-0A133C0CE353}
                                    Windows Live Writer-->MsiExec.exe /X{2231CE39-B963-4B9D-823A-F412ECA637B1}
                                    Windows Media Format 11 runtime-->"H:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
                                    Windows Media Format 11 runtime-->"H:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe"
                                    Windows Media Player 11-->"H:\WINDOWS\$NtUninstallwmp11$\spuninst\spuninst.exe"
                                    Windows XP Service Pack 3-->"H:\WINDOWS\$NtServicePackUninstall$\spuninst\spuninst.exe"
                                    Yahoo! Install Manager-->H:\WINDOWS\system32\regsvr32 /u H:\PROGRA~1\Yahoo!\Common\YINSTH~1.DLL

                                    ======Hosts File======

                                    127.0.0.1 localhost
                                    127.0.0.1 www.007guard.com
                                    127.0.0.1 007guard.com
                                    127.0.0.1 008i.com
                                    127.0.0.1 www.008k.com
                                    127.0.0.1 008k.com
                                    127.0.0.1 www.00hq.com
                                    127.0.0.1 00hq.com
                                    127.0.0.1 010402.com
                                    127.0.0.1 www.032439.com

                                    ======Security center information======

                                    AV: Avira AntiVir PersonalEdition

                                    ======System event log======

                                    Computer Name: PROPRIETAIRE
                                    Event Code: 26
                                    Message: Application popup : Windows - Pas de disque : Exception Processing Message c0000013 Parameters 75afbf7c 4 75afbf7c 75afbf7c

                                    Record Number: 22525
                                    Source Name: Application Popup
                                    Time Written: 20090512054145.000000+660
                                    Event Type: Informations
                                    User:

                                    Computer Name: PROPRIETAIRE
                                    Event Code: 26
                                    Message: Application popup : Windows - Pas de disque : Exception Processing Message c0000013 Parameters 75afbf7c 4 75afbf7c 75afbf7c

                                    Record Number: 22524
                                    Source Name: Application Popup
                                    Time Written: 20090512054145.000000+660
                                    Event Type: Informations
                                    User:

                                    Computer Name: PROPRIETAIRE
                                    Event Code: 26
                                    Message: Application popup : Windows - Pas de disque : Exception Processing Message c0000013 Parameters 75afbf7c 4 75afbf7c 75afbf7c

                                    Record Number: 22523
                                    Source Name: Application Popup
                                    Time Written: 20090512054144.000000+660
                                    Event Type: Informations
                                    User:

                                    Computer Name: PROPRIETAIRE
                                    Event Code: 26
                                    Message: Application popup : Windows - Pas de disque : Exception Processing Message c0000013 Parameters 75afbf7c 4 75afbf7c 75afbf7c

                                    Record Number: 22522
                                    Source Name: Application Popup
                                    Time Written: 20090512054144.000000+660
                                    Event Type: Informations
                                    User:

                                    Computer Name: PROPRIETAIRE
                                    Event Code: 26
                                    Message: Application popup : Windows - Pas de disque : Exception Processing Message c0000013 Parameters 75afbf7c 4 75afbf7c 75afbf7c

                                    Record Number: 22521
                                    Source Name: Application Popup
                                    Time Written: 20090512054144.000000+660
                                    Event Type: Informations
                                    User:

                                    =====Application event log=====

                                    Computer Name: PROPRIETAIRE
                                    Event Code: 0
                                    Message:
                                    Record Number: 5
                                    Source Name: gupdate1c99fa4c7c3c55e
                                    Time Written: 20090315074930.000000+660
                                    Event Type: Informations
                                    User:

                                    Computer Name: PROPRIETAIRE
                                    Event Code: 4096
                                    Message: The AntiVir service has been started successfully!

                                    Record Number: 4
                                    Source Name: Avira AntiVir
                                    Time Written: 20090315074911.000000+660
                                    Event Type: Informations
                                    User: AUTORITE NT\SYSTEM

                                    Computer Name: PROPRIETAIRE
                                    Event Code: 1800
                                    Message: Le service Centre de sécurité Windows a démarré.

                                    Record Number: 3
                                    Source Name: SecurityCenter
                                    Time Written: 20090315074908.000000+660
                                    Event Type: Informations
                                    User:

                                    Computer Name: PROPRIETAIRE
                                    Event Code: 0
                                    Message: Service started

                                    Record Number: 2
                                    Source Name: SeaPort
                                    Time Written: 20090315074907.000000+660
                                    Event Type: Informations
                                    User:

                                    Computer Name: PROPRIETAIRE
                                    Event Code: 0
                                    Message:
                                    Record Number: 1
                                    Source Name: gupdate1c99fa4c7c3c55e
                                    Time Written: 20090315074900.000000+660
                                    Event Type: Informations
                                    User:

                                    ======Environment variables======

                                    "ComSpec"=%SystemRoot%\system32\cmd.exe
                                    "Path"=%systemroot%\system32;%systemroot%;%systemroot%\system32\wbem;H:\PROGRA~1\MICROS~2\Office
                                    "windir"=%SystemRoot%
                                    "FP_NO_HOST_CHECK"=NO
                                    "OS"=Windows_NT
                                    "PROCESSOR_ARCHITECTURE"=x86
                                    "PROCESSOR_LEVEL"=15
                                    "PROCESSOR_IDENTIFIER"=x86 Family 15 Model 4 Stepping 3, GenuineIntel
                                    "PROCESSOR_REVISION"=0403
                                    "NUMBER_OF_PROCESSORS"=2
                                    "PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
                                    "TEMP"=%SystemRoot%\TEMP
                                    "TMP"=%SystemRoot%\TEMP

                                    -----------------EOF-----------------
                                    Logfile of random's system information tool 1.06 (written by random/random)
                                    Run by User at 2009-06-07 11:07:33
                                    Microsoft Windows XP Professionnel Service Pack 3
                                    System drive H: has 113 GB (48%) free of 238 GB
                                    Total RAM: 1023 MB (27% free)

                                    Logfile of Trend Micro HijackThis v2.0.2
                                    Scan saved at 11:07:54, on 07/06/2009
                                    Platform: Windows XP SP3 (WinNT 5.01.2600)
                                    MSIE: Internet Explorer v7.00 (7.00.6000.16827)
                                    Boot mode: Normal

                                    Running processes:
                                    H:\WINDOWS\System32\smss.exe
                                    H:\WINDOWS\system32\winlogon.exe
                                    H:\WINDOWS\system32\services.exe
                                    H:\WINDOWS\system32\lsass.exe
                                    H:\WINDOWS\system32\svchost.exe
                                    H:\WINDOWS\System32\svchost.exe
                                    H:\Program Files\Ahead\InCD\InCDsrv.exe
                                    H:\WINDOWS\system32\spoolsv.exe
                                    H:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
                                    H:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
                                    H:\WINDOWS\system32\nvsvc32.exe
                                    H:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
                                    H:\Program Files\Google\Update\GoogleUpdate.exe
                                    H:\WINDOWS\system32\svchost.exe
                                    H:\WINDOWS\System32\svchost.exe
                                    H:\WINDOWS\Explorer.EXE
                                    H:\WINDOWS\system32\ctfmon.exe
                                    H:\Program Files\Logitech\Video\LogiTray.exe
                                    H:\Program Files\Ahead\InCD\InCD.exe
                                    H:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
                                    H:\WINDOWS\system32\LVCOMSX.EXE
                                    H:\Documents and Settings\User\Application Data\eoRezo\SoftwareUpdate\SoftwareUpdateHP.exe
                                    H:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
                                    H:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
                                    H:\Documents and Settings\User\Local Settings\Application Data\Google\Update\GoogleUpdate.exe
                                    H:\WINDOWS\system32\rundll32.exe
                                    H:\Program Files\Logitech\Video\FxSvr2.exe
                                    H:\Program Files\Windows Live\Contacts\wlcomm.exe
                                    H:\Program Files\Skype\Phone\Skype.exe
                                    H:\Program Files\Skype\Plugin Manager\skypePM.exe
                                    H:\program files\microsoft office\Office10\EXCEL.EXE
                                    H:\Program Files\Microsoft\Office Live\OfficeLiveSignIn.exe
                                    H:\WINDOWS\system32\wuauclt.exe
                                    H:\WINDOWS\System32\spool\DRIVERS\W32X86\3\lxcfPSWX.EXE
                                    H:\WINDOWS\system32\lxcfcoms.exe
                                    H:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
                                    H:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
                                    H:\Documents and Settings\User\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
                                    H:\Program Files\Internet Explorer\IEXPLORE.EXE
                                    H:\Program Files\Windows Live\Toolbar\wltuser.exe
                                    H:\Documents and Settings\User\Local Settings\Temporary Internet Files\Content.IE5\CB6EOZ43\RSIT[1].exe
                                    H:\Program Files\trend micro\User.exe

                                    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://y.lo.st
                                    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
                                    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
                                    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,SearchAssistant = http://www.crawler.com/search/ie.aspx?tb_id=66028
                                    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,CustomizeSearch = http://dnl.crawler.com/support/sa_customize.aspx?TbId=66028
                                    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
                                    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
                                    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,First Home Page = http://y.lo.st
                                    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
                                    R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
                                    R3 - URLSearchHook: (no name) - {9CB65206-89C4-402c-BA80-02D8C59F9B1D} - H:\Program Files\AskTBar\SrchAstt\1.bin\A5SRCHAS.DLL
                                    O2 - BHO: AskBar BHO - {201f27d4-3704-41d6-89c1-aa35e39143ed} - H:\Program Files\AskBarDis\bar\bin\askBar.dll
                                    O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - H:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
                                    O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - H:\PROGRA~1\SPYBOT~1\SDHelper.dll
                                    O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
                                    O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - H:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
                                    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - H:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
                                    O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - H:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
                                    O2 - BHO: Ask Search Assistant BHO - {9CB65201-89C4-402c-BA80-02D8C59F9B1D} - H:\Program Files\AskTBar\SrchAstt\1.bin\A5SRCHAS.DLL
                                    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - h:\program files\google\googletoolbar1.dll
                                    O2 - BHO: (no name) - {C451C08A-EC37-45DF-AAAD-18B51AB5E837} - (no file)
                                    O2 - BHO: EoBHO - {C7B76B90-3455-4AE6-A752-EAC4D19689E5} - H:\Program Files\EoRezo\EoAdv\EoRezoBHO.dll
                                    O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - H:\Program Files\Windows Live\Toolbar\wltcore.dll
                                    O2 - BHO: Ask Toolbar BHO - {FE063DB1-4EC0-403e-8DD8-394C54984B2C} - H:\Program Files\AskTBar\bar\1.bin\ASKTBAR.DLL
                                    O3 - Toolbar: Ask Toolbar - {FE063DB9-4EC0-403e-8DD8-394C54984B2C} - H:\Program Files\AskTBar\bar\1.bin\ASKTBAR.DLL
                                    O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - H:\Program Files\Windows Live\Toolbar\wltcore.dll
                                    O3 - Toolbar: Foxit Toolbar - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - H:\Program Files\AskBarDis\bar\bin\askBar.dll
                                    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE H:\WINDOWS\system32\NvCpl.dll,NvStartup
                                    O4 - HKLM\..\Run: [LogitechVideoRepair] H:\Program Files\Logitech\Video\ISStart.exe
                                    O4 - HKLM\..\Run: [LogitechVideoTray] H:\Program Files\Logitech\Video\LogiTray.exe
                                    O4 - HKLM\..\Run: [InCD] H:\Program Files\Ahead\InCD\InCD.exe
                                    O4 - HKLM\..\Run: [avgnt] "H:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
                                    O4 - HKLM\..\Run: [LVCOMSX] H:\WINDOWS\system32\LVCOMSX.EXE
                                    O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE H:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
                                    O4 - HKLM\..\Run: [MBBalloon] H:\Program Files\HOTALBUMMyBOX\MBBalloon.exe
                                    O4 - HKLM\..\Run: [LXCFCATS] rundll32 H:\WINDOWS\System32\spool\DRIVERS\W32X86\3\LXCFtime.dll,_RunDLLEntry@16
                                    O4 - HKLM\..\Run: [EoEngine] "H:\Program Files\EoRezo\EoEngine.exe"
                                    O4 - HKLM\..\Run: [SoftwareHelper] H:\Documents and Settings\User\Application Data\eoRezo\SoftwareUpdate\SoftwareUpdateHP.exe
                                    O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
                                    O4 - HKCU\..\Run: [ctfmon.exe] H:\WINDOWS\system32\ctfmon.exe
                                    O4 - HKCU\..\Run: [msnmsgr] "H:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
                                    O4 - HKCU\..\Run: [SpybotSD TeaTimer] "H:\Program Files\Spybot - Search & Destroy\TeaTimer.exe"
                                    O4 - HKCU\..\Run: [Google Update] "H:\Documents and Settings\User\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
                                    O4 - Global Startup: Microsoft Office.lnk = H:\Program Files\Microsoft Office\Office10\OSA.EXE
                                    O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://H:\WINDOWS\system32\GPhotos.scr/200
                                    O8 - Extra context menu item: Add to Windows &Live Favorites - https://onedrive.live.com/?id=favorites
                                    O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://H:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
                                    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - H:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
                                    O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - H:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
                                    O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - H:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
                                    O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - H:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
                                    O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - H:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
                                    O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - H:\PROGRA~1\SPYBOT~1\SDHelper.dll
                                    O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - H:\PROGRA~1\SPYBOT~1\SDHelper.dll
                                    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - H:\WINDOWS\Network Diagnostic\xpnetdiag.exe
                                    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - H:\WINDOWS\Network Diagnostic\xpnetdiag.exe
                                    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - H:\Program Files\Messenger\msmsgs.exe (file missing)
                                    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - H:\Program Files\Messenger\msmsgs.exe (file missing)
                                    O10 - Unknown file in Winsock LSP: h:\windows\system32\nwprovau.dll
                                    O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - H:\Program Files\Yahoo!\Common\yinsthelper.dll
                                    O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.6.0) - https://sdlc-esd.oracle.com/ESD44/JSCDL/jdk/6u7/jinstall-6u7-windows-i586-jc.cab?GroupName=JSC&FilePath=/ESD44/JSCDL/jdk/6u7/jinstall-6u7-windows-i586-jc.cab&BHost=javadl.sun.com&File=jinstall-6u7-windows-i586-jc.cab&AuthParam=1580978829_3fac487ff39b191ded7866fc4973d48d&ext=.cab
                                    O16 - DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} -
                                    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
                                    O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - H:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
                                    O23 - Service: Avira AntiVir Personal - Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - H:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
                                    O23 - Service: Avira AntiVir Personal - Free Antivirus Guard (AntiVirService) - Avira GmbH - H:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
                                    O23 - Service: Google Update Service (gupdate1c99fa4c7c3c55e) (gupdate1c99fa4c7c3c55e) - Google Inc. - H:\Program Files\Google\Update\GoogleUpdate.exe
                                    O23 - Service: Google Updater Service (gusvc) - Google - H:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
                                    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - H:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
                                    O23 - Service: InCD Helper (InCDsrv) - Nero AG - H:\Program Files\Ahead\InCD\InCDsrv.exe
                                    O23 - Service: lxcf_device - - H:\WINDOWS\system32\lxcfcoms.exe
                                    O23 - Service: NBService - Nero AG - H:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
                                    O23 - Service: NMIndexingService - Nero AG - H:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingService.exe
                                    O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - H:\WINDOWS\system32\nvsvc32.exe
                                    O24 - Desktop Component 0: (no name) - http://img.hebus.com/hebus_2008/05/07/tn/080507163644_65.jpg
                                    0