Désinfectons mon ordinateur !

Bonjour,
Voilà. Cela fait quelques temps que mon ordinateur est de plus en plus lent, je ne sais pour quelle raison.
J'aimerais, si c'est possible, qu'il retrouve sa puissance, qu'il avait à l'achat, c'est-à-dire il y a 2 ans.
J'ai donc fait, comme indiqué dans La Méthode Préliminaire de Désinfection , sur ce forum, téléchargé Random's System Information Tool, et je vous poste donc les rapports info.txt et log.txt.

Info.txt :

info.txt logfile of random's system information tool 1.06 2010-02-01 19:02:05

======Uninstall list======

32 Bit HP CIO Components Installer-->MsiExec.exe /I{2614F54E-A828-49FA-93BA-45A3F756BFAA}
AC Tool-->C:\PROGRA~1\ACTOOL~1\UNWISE.EXE C:\PROGRA~1\ACTOOL~1\INSTALL.LOG
ActiveCheck component for HP Active Support Library-->MsiExec.exe /X{254C37AA-6B72-4300-84F6-98A82419187E}
Adobe Acrobat 5.0-->C:\WINDOWS\ISUNINST.EXE -f"C:\Program Files\Common Files\Adobe\Acrobat 5.0\NT\Uninst.isu" -c"C:\Program Files\Common Files\Adobe\Acrobat 5.0\NT\Uninst.dll"
Adobe AIR-->c:\Program Files\Common Files\Adobe AIR\Versions\1.0\Resources\Adobe AIR Updater.exe -arp:uninstall
Adobe AIR-->MsiExec.exe /I{A2BCA9F1-566C-4805-97D1-7FDC93386723}
Adobe Flash Player 10 ActiveX-->C:\Windows\system32\Macromed\Flash\uninstall_activeX.exe
Adobe Flash Player 10 Plugin-->C:\Windows\system32\Macromed\Flash\uninstall_plugin.exe
Adobe Reader 9.1.3 - Français-->MsiExec.exe /I{AC76BA86-7AD7-1036-7B44-A91000000001}
Adobe Shockwave Player-->C:\Windows\System32\Adobe\SHOCKW~1\UNWISE.EXE C:\Windows\System32\Adobe\SHOCKW~1\Install.log
AhnLab Online Security-->C:\Program Files\AhnLab\ASP\Common\aosremove.exe
Apple Application Support-->MsiExec.exe /I{3FA365DF-2D68-45ED-8F83-8C8A33E65143}
Apple Mobile Device Support-->MsiExec.exe /I{AADEA55D-C834-4BCB-98A3-4B8D1C18F4EE}
Apple Software Update-->MsiExec.exe /I{6956856F-B6B3-4BE0-BA0B-8F495BE32033}
Ask.com Search Assistant 1.0.2-->C:\Program Files\Ask Search Assistant\uninst.exe
Assistant de connexion Windows Live-->MsiExec.exe /I{D3116CC7-24DC-4CA3-9CE1-23FED836E9F2}
avast! Antivirus-->C:\Program Files\Alwil Software\Avast4\aswRunDll.exe "C:\Program Files\Alwil Software\Avast4\Setup\setiface.dll",RunSetup
Bibliothèques GTK+ 2.14.6 rev a (supprimer uniquement)-->C:\Program Files\Common Files\GTK\2.0\uninst.exe
Bonjour-->MsiExec.exe /I{07287123-B8AC-41CE-8346-3D777245C35B}
CamStudio 2.0 Fr-->"C:\Program Files\CamStudio\unins000.exe"
CamStudio-->C:\Program Files\Common Files\InstallShield\Driver\8\Intel 32\IDriver.exe /M{EB371786-9449-4ED8-B47A-032467A58CAD} anything\anything
ccc-Branding-->MsiExec.exe /I{4F027497-15AE-4DE5-B3BC-8E721C6127DE}
CCleaner (remove only)-->"C:\Program Files\CCleaner\uninst.exe"
Coffret de pilotes Logitech QuickCam-->"C:\Program Files\Common Files\LogiShrd\LogiDriverStore\lvdrivers\11.90.1262\LgDrvInst.exe" -remove -instdir"C:\Program Files\Common Files\LogiShrd\LogiDriverStore\lvdrivers\" -enumdelay=200 -enabledifx -forcedelete -usbhubsfirst -forceremove -cumulativeremove -arpregkey"lvdrivers_11.90" /clone_wait /hide_progress
Counter-Strike: Source-->"C:\Program Files\Steam\steam.exe" steam://uninstall/240
Counter-Strike: Source-->MsiExec.exe /I{9580813D-94B1-4C28-9426-A441E2BB29A5}
Day of Defeat: Source-->"C:\Program Files\Steam\steam.exe" steam://uninstall/300
Dofus 1.28.0-->C:\Program Files\Dofus\uninstall.exe
Dofus Online-->msiexec /qb /x {BA75A22B-9578-1EC3-F72E-3FD7D4F5E2AF}
Dofus Online-->MsiExec.exe /I{BA75A22B-9578-1EC3-F72E-3FD7D4F5E2AF}
Dofus-->msiexec /qb /x {5EBF7AAB-98C5-2C43-0844-4BD9B9FCA7AD}
Dofus-->MsiExec.exe /I{5EBF7AAB-98C5-2C43-0844-4BD9B9FCA7AD}
Dofus-Arena-->C:\Program Files\DofusArena2\uninstall.exe
DofusBeta 1.27.0-->C:\Program Files\DofusBeta\uninstall.exe
DofusCalc 1.5.1052-->"C:\Program Files\DofusCalc\unins000.exe"
EA.com Matchup-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{2F173C40-563E-11D4-89C5-0010ADDAAC33}\setup.exe" -l0x0 Uninstall
EA.com Update-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{9AB97F52-512B-43EF-AAEC-4825C17B32ED}\setup.exe" -l0x0 Uninstall
Europe MapleStory-->"C:\Program Files\NEXON\Europe MapleStory\unins000.exe"
Free Video Converter V 2.5-->"C:\Program Files\Free Video Converter\unins000.exe"
Galerie de photos Windows Live-->MsiExec.exe /X{B131E59D-202C-43C6-84C9-68F0C37541F1}
Google Toolbar for Internet Explorer-->"C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarManager_0E996B068B56FCA2.exe" /uninstall
Google Toolbar for Internet Explorer-->MsiExec.exe /I{18455581-E099-4BA8-BC6B-F34B2F06600C}
Guitar Pro 5.2-->"C:\Program Files\Guitar Pro 5\unins000.exe"
Half-Life 2: Deathmatch-->"C:\Program Files\Steam\steam.exe" steam://uninstall/320
Half-Life 2: Lost Coast-->"C:\Program Files\Steam\steam.exe" steam://uninstall/340
HijackThis 2.0.2-->"C:\Program Files\trend micro\HijackThis.exe" /uninstall
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT=""
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT=""
HP Active Support Library 32 bit components-->MsiExec.exe /I{6D3DB611-D5E8-4E4B-8952-0D3F549F9CC6}
HP Active Support Library-->C:\Program Files\InstallShield Installation Information\{0A47BAFF-D4FF-4BD3-96CA-02A22EA62722}\setup.exe -runfromtemp -l0x0409
HP Customer Experience Enhancements-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{AB5E289E-76BF-4251-9F3F-9B763F681AE0}\setup.exe" -l0x9 -removeonly
HP Customer Feedback-->MsiExec.exe /I{9DBA770F-BF73-4D39-B1DF-6035D95268FC}
HP Customer Participation Program 9.0-->C:\Program Files\HP\Digital Imaging\ExtCapUninstall\hpzscr01.exe -datfile hpqhsc01.dat
HP Easy Setup - Frontend-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{40F7AED3-0C7D-4582-99F6-484A515C73F2}\setup.exe" -l0x9 -removeonly
HP Imaging Device Functions 9.0-->C:\Program Files\HP\Digital Imaging\DeviceManagement\hpzscr01.exe -datfile hpqbud01.dat
HP OCR Software 9.0-->C:\Program Files\HP\Digital Imaging\OCR\hpzscr01.exe -datfile hpqbud11.dat
HP On-Screen Cap/Num/Scroll Lock Indicator-->C:\Windows\system32\OsdRemove.exe
HP Photosmart All-In-One Software 9.0-->C:\Program Files\HP\Digital Imaging\{B46AC30C-22D2-4610-B041-1DA7BB29EB57}\setup\hpzscr01.exe -datfile hposcr21.dat
HP Photosmart Essential 2.01-->C:\Program Files\HP\Digital Imaging\PhotoSmartEssential\hpzscr01.exe -datfile hpqbud13.dat
HP Picasso Media Center Add-In-->MsiExec.exe /I{55979C41-7D6A-49CC-B591-64AC1BBE2C8B}
HP Product Assistant-->MsiExec.exe /I{36FDBE6E-6684-462B-AE98-9A39A1B200CC}
HP Smart Web Printing-->MsiExec.exe /X{415CDA53-9100-476F-A7B2-476691E117C7}
HP Solution Center 9.0-->C:\Program Files\HP\Digital Imaging\eSupport\hpzscr01.exe -datfile hpqbud05.dat
HP Update-->MsiExec.exe /X{7059BDA7-E1DB-442C-B7A1-6144596720A4}
HPAsset component for HP Active Support Library-->MsiExec.exe /X{669D4A35-146B-4314-89F1-1AC3D7B88367}
Installation Windows Live-->C:\Program Files\Windows Live\Installer\wlarp.exe
Installation Windows Live-->MsiExec.exe /I{46ABBC54-1872-4AA3-95E2-F2C063A63F31}
Intel(R) Matrix Storage Manager-->C:\Windows\System32\Imsmudlg.exe
iTunes-->MsiExec.exe /I{A6FDF86A-F541-4E7B-AEA0-8849A2A700D5}
Java(TM) 6 Update 15-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216015FF}
Junk Mail filter update-->MsiExec.exe /I{E2DFE069-083E-4631-9B6C-43C48E991DE5}
LimeWire 5.4.6-->"C:\Program Files\LimeWire\uninstall.exe"
livebox-->C:\Program Files\InstallShield Installation Information\{17342E3B-0818-4A6F-BFF8-99476605ADD6}\Setup.exe -runfromtemp -l0x040c -removeonly
Logiciel Intel® Viiv™-->MsiExec.exe /X{6E7BF6EC-C3E7-43A7-8A03-0D204E3EC01B} /qb!
Logitech Desktop Messenger-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{900B1197-53F5-4F46-A882-2CFFFE2EEDCB}\Setup.exe" -l0x40c UNINSTALL
Logitech QuickCam-->MsiExec.exe /I{937B232D-9776-471E-92BD-D424E514EF14}
Logitech Updater-->MsiExec.exe /I{53735ECE-E461-4FD0-B742-23A352436D3A}
Malwarebytes' Anti-Malware-->"C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"
MapleStory-->MsiExec.exe /I{3062D9D0-0EF0-4F0D-9575-26013FF60FC9}
McDonald's Dragons-->C:\Program Files\McDonaldsDragons\uninstall.exe
MediaCoder 0.6.0-->C:\Program Files\MediaCoder\uninst.exe
Messenger Plus! Live-->"C:\Program Files\Messenger Plus! Live\Uninstall.exe"
Microsoft .NET Framework 3.5 Language Pack SP1 - fra-->MsiExec.exe /I{3E31821C-7917-367E-938E-E65FC413EA31}
Microsoft .NET Framework 3.5 SP1-->c:\Windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
Microsoft .NET Framework 3.5 SP1-->MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
Microsoft Choice Guard-->MsiExec.exe /X{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}
Microsoft Office 2000 CD-ROM 2-->MsiExec.exe /I{0004040C-78E1-11D2-B60F-006097C998E7}
Microsoft Office 2000 Small Business-->MsiExec.exe /I{0003040C-78E1-11D2-B60F-006097C998E7}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0016-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0018-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001B-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-006E-040C-0000-0000000FF1CE} /uninstall {B165D3C2-40AE-4D39-86F7-E5C87C4264C0}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-00A1-040C-0000-0000000FF1CE} /uninstall {AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}
Microsoft Office Excel MUI (French) 2007-->MsiExec.exe /X{90120000-0016-040C-0000-0000000FF1CE}
Microsoft Office Home and Student 2007-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall HOMESTUDENTR /dll OSETUP.DLL
Microsoft Office Home and Student 2007-->MsiExec.exe /X{91120000-002F-0000-0000-0000000FF1CE}
Microsoft Office Live Add-in 1.3-->MsiExec.exe /I{57F0ED40-8F11-41AA-B926-4A66D0D1A9CC}
Microsoft Office OneNote MUI (French) 2007-->MsiExec.exe /X{90120000-00A1-040C-0000-0000000FF1CE}
Microsoft Office PowerPoint MUI (French) 2007-->MsiExec.exe /X{90120000-0018-040C-0000-0000000FF1CE}
Microsoft Office Proof (Arabic) 2007-->MsiExec.exe /X{90120000-001F-0401-0000-0000000FF1CE}
Microsoft Office Proof (Dutch) 2007-->MsiExec.exe /X{90120000-001F-0413-0000-0000000FF1CE}
Microsoft Office Proof (English) 2007-->MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
Microsoft Office Proof (French) 2007-->MsiExec.exe /X{90120000-001F-040C-0000-0000000FF1CE}
Microsoft Office Proof (German) 2007-->MsiExec.exe /X{90120000-001F-0407-0000-0000000FF1CE}
Microsoft Office Proof (Spanish) 2007-->MsiExec.exe /X{90120000-001F-0C0A-0000-0000000FF1CE}
Microsoft Office Proofing (French) 2007-->MsiExec.exe /X{90120000-002C-040C-0000-0000000FF1CE}
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0401-0000-0000000FF1CE} /uninstall {14809F99-C601-4D4A-9391-F1E8FAA964C5}
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0407-0000-0000000FF1CE} /uninstall {A0516415-ED61-419A-981D-93596DA74165}
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0409-0000-0000000FF1CE} /uninstall {ABDDE972-355B-4AF1-89A8-DA50B7B5C045}
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-040C-0000-0000000FF1CE} /uninstall {F580DDD5-8D37-4998-968E-EBB76BB86787}
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0413-0000-0000000FF1CE} /uninstall {D66D5A44-E480-4BA4-B4F2-C554F6B30EBB}
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0C0A-0000-0000000FF1CE} /uninstall {187308AB-5FA7-4F14-9AB9-D290383A10D9}
Microsoft Office Shared MUI (French) 2007-->MsiExec.exe /X{90120000-006E-040C-0000-0000000FF1CE}
Microsoft Office Word MUI (French) 2007-->MsiExec.exe /X{90120000-001B-040C-0000-0000000FF1CE}
Microsoft PowerPoint 2000-->MsiExec.exe /I{0013040C-78E1-11D2-B60F-006097C998E7}
Microsoft Search Enhancement Pack-->MsiExec.exe /X{4CBA3D4C-8F51-4D60-B27E-F6B641C571E7}
Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
Microsoft SQL Server 2005 Compact Edition [ENU]-->MsiExec.exe /I{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}
Microsoft Sync Framework Runtime Native v1.0 (x86)-->MsiExec.exe /I{8A74E887-8F0F-4017-AF53-CBA42211AAA5}
Microsoft Sync Framework Services Native v1.0 (x86)-->MsiExec.exe /I{BD64AF4A-8C80-4152-AD77-FCDDF05208AB}
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053-->MsiExec.exe /X{770657D0-A123-3C07-8E44-1C83EC895118}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{A49F249F-0C91-497F-86DF-B2585E8E76B7}
Microsoft Works-->MsiExec.exe /I{6B1CB38D-E2E4-4A30-933D-EFDEBA76AD9C}
Mise à jour Microsoft Office Excel 2007 Help (KB963678)-->msiexec /package {90120000-0016-040C-0000-0000000FF1CE} /uninstall {B761869A-B85C-40E2-994C-A1CE78AC8F2C}
Mise à jour Microsoft Office Powerpoint 2007 Help (KB963669)-->msiexec /package {90120000-0018-040C-0000-0000000FF1CE} /uninstall {C3DCA38E-005E-41BA-A52A-7C3429F351C3}
Mise à jour Microsoft Office Word 2007 Help (KB963665)-->msiexec /package {90120000-001B-040C-0000-0000000FF1CE} /uninstall {81536A04-DBFB-4DB3-978F-0F284590C223}
MobileMe Control Panel-->MsiExec.exe /I{3AC54383-31D1-4907-961B-B12CBB1D0AE8}
Module linguistique Microsoft .NET Framework 3.5 SP1- fra-->c:\Windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack SP1 - fra\setup.exe
MSVCRT-->MsiExec.exe /I{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
MSXML 4.0 SP2 (KB936181)-->MsiExec.exe /I{C04E32E0-0416-434D-AFB9-6969D703A9EF}
MSXML 4.0 SP2 (KB941833)-->MsiExec.exe /I{C523D256-313D-4866-B36A-F3DE528246EF}
MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
MSXML 4.0 SP2 (KB973688)-->MsiExec.exe /I{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
muvee autoProducer 6.0-->C:\Program Files\InstallShield Installation Information\{14AF024E-2E3B-49D0-A175-D1C1A06B155A}\setup.exe -runfromtemp -l0x040c -removeonly
Navigateur Orange-->C:\Program Files\Orange HSS\Uninstall\Browser\Shell.exe MainUninstall.shl
Navilog1 3.7.5-->"C:\Program Files\Navilog1\unins000.exe"
OpenMG Limited Patch 4.7-07-14-05-01-->C:\Program Files\Common Files\Sony Shared\OpenMG\HotFixes\HotFix4.7-07-14-05-01\HotFixSetup\setup.exe /u
OpenMG Secure Module 4.7.00-->C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\1150\INTEL3~1\IDriver.exe /M{CCD663AE-610D-4BDF-AAB0-E914B044527D} UNINSTALL
Orange -->C:\Program Files\Orange\GLOBAL\Mnu\uninst.exe /G:{80CA15EA-C0A5-7CAF-B9E9-B8B2A87EFE11}
Orange - Logiciels Internet-->C:\Program Files\Orange HSS\installation\core\Installgui.exe -u
Orange Les offres Internet-->C:\Program Files\Orange\GLOBAL\Sung\uninst.exe /G:{90CA15EA-C0A5-7CAF-B9E9-B8B2A87EFE11}
Outil de téléchargement Windows Live-->MsiExec.exe /I{205C6BDD-7B73-42DE-8505-9A093F35A238}
Outils de diagnostic du matériel-->C:\Program Files\PC-Doctor 5 for Windows\uninst.exe
Python 2.5-->MsiExec.exe /I{0A2C5854-557E-48C8-835A-3B9F074BDCAA}
QuickTime-->MsiExec.exe /I{1451DE6B-ABE1-4F62-BE9A-B363A17588A2}
Realtek High Definition Audio Driver-->RtlUpd.exe -r -m
Reg (DOFUS Audio Subsystem)-->msiexec /qb /x {3F900346-A316-BA88-B83C-2513F1260AD7}
Reg (DOFUS Audio Subsystem)-->MsiExec.exe /I{3F900346-A316-BA88-B83C-2513F1260AD7}
Roxio Activation Module-->MsiExec.exe /I{35E1EC43-D4FC-4E4A-AAB3-20DDA27E8BB0}
Roxio Creator Audio-->MsiExec.exe /X{83FFCFC7-88C6-41c6-8752-958A45325C82}
Roxio Creator Basic v9-->MsiExec.exe /X{C8B0680B-CDAE-4809-9F91-387B6DE00F7C}
Roxio Creator Copy-->MsiExec.exe /X{619CDD8A-14B6-43a1-AB6C-0F4EE48CE048}
Roxio Creator Data-->MsiExec.exe /X{0D397393-9B50-4c52-84D5-77E344289F87}
Roxio Creator EasyArchive-->MsiExec.exe /X{11F93B4B-48F0-4A4E-AE77-DFA96A99664B}
Roxio Creator Tools-->MsiExec.exe /X{0394CDC8-FABD-4ed8-B104-03393876DFDF}
Roxio Express Labeler 3-->MsiExec.exe /X{6675CA7F-E51B-4F6A-99D4-F8F0124C6EAA}
Roxio MyDVD Basic v9-->MsiExec.exe /X{938B1CD7-7C60-491E-AA90-1F1888168240}
Safari-->MsiExec.exe /I{D6E4E5D6-7693-4BB4-95BA-21F38FAFEE90}
SAMSUNG CDMA Modem Driver Set-->C:\Windows\system32\Samsung_USB_Drivers\3\SSCDUninstall.exe
SAMSUNG Mobile USB Modem 1.0 Software-->C:\Windows\system32\Samsung_USB_Drivers\1\SS_Uninstall.exe
SAMSUNG Mobile USB Modem Software-->C:\Windows\system32\Samsung_USB_Drivers\2\SSM_Uninstall.exe
Samsung PC Studio 3 USB Driver Installer-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{EBA29752-DDD2-4B62-B2E3-9841F92A3E3A}\setup.exe" -l0x40c -removeonly
Security Update for 2007 Microsoft Office System (KB969559)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {69F52148-9BF6-4CDC-BF76-103DEAF3DD08}
Security Update for 2007 Microsoft Office System (KB973704)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {E626DC89-A787-4553-9BB3-DC2EC7E1593F}
Security Update for CAPICOM (KB931906)-->MsiExec.exe /I{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
Security Update for CAPICOM (KB931906)-->MsiExec.exe /X{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
Security Update for Microsoft Office Excel 2007 (KB973593)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {7D6255E3-3423-4D8B-A328-F6F8D28DD5FE}
Security Update for Microsoft Office PowerPoint 2007 (KB957789)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {7559E742-FF9F-4FAE-B279-008ED296CB4D}
Security Update for Microsoft Office system 2007 (972581)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {3D019598-7B59-447A-80AE-815B703B84FF}
Security Update for Microsoft Office system 2007 (KB969613)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {5ECEB317-CBE9-4E08-AB10-756CB6F0FB6C}
Security Update for Microsoft Office system 2007 (KB974234)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {FCD742B9-7A55-44BC-A776-F795F21FEDDC}
Security Update for Microsoft Office Visio Viewer 2007 (KB973709)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {71127777-8B2C-4F97-AF7A-6CF8CAC8224D}
Shop for HP Supplies-->C:\Program Files\HP\Digital Imaging\HPSSupply\hpzscr01.exe -datfile hpqbud16.dat
Skype 3.1-->"C:\Program Files\Skype\Phone\unins000.exe"
Skype Plugin Manager-->MsiExec.exe /I{3D5E5C0A-5B36-4F98-99A7-287F7DBDCE03}
Solution de clavier multimédia amélioré-->C:\HP\KBD\Install.exe /u
Spelling Dictionaries Support For Adobe Reader 9-->MsiExec.exe /I{AC76BA86-7AD7-5464-3428-900000000004}
Spider-Man (tm) Movie-->C:\PROGRA~1\ACTIVI~1\SPIDER~1\UNINST~1\UNWISE.EXE C:\PROGRA~1\ACTIVI~1\SPIDER~1\UNINST~1\INSTALL.LOG
Steam-->MsiExec.exe /X{048298C9-A4D3-490B-9FF9-AB023A9238F3}
SUPER © Version 2009.bld.36 (June 10, 2009)-->C:\PROGRA~1\ERIGHT~1\SUPER\Setup.exe /remove /q0
TeamSpeak 2 RC2-->"C:\Program Files\Teamspeak2_RC2\unins000.exe"
Titeuf Méga-Compet'-->"C:\Program Files\Atari\Titeuf\unins001.exe"
Update for 2007 Microsoft Office System (KB967642)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {C444285D-5E4F-48A4-91DD-47AAAA68E92D}
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {B2AE9C82-DC7B-3641-BFC8-87275C4F3607} /qb+ REBOOTPROMPT=""
Update for Microsoft Office InfoPath 2007 (KB976416)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {432C5EE4-8096-4FF1-95E1-65219365DFF7}
Update for Microsoft Office Word 2007 (KB974561)-->msiexec /package {91120000-002F-0000-0000-0000000FF1CE} /uninstall {0CDDBAA2-2111-4A0E-A1B0-76C40C635331}
Version de démonstration de Microsoft Office Home and Student 2007-->c:\hp\bin\MSOffice\uninst2.cmd
VLC media player 0.9.9-->C:\Program Files\VideoLAN\VLC\uninstall.exe
Windows Live Call-->MsiExec.exe /I{82C7B308-0BDD-49D8-8EA5-9CD3A3F9DF41}
Windows Live Communications Platform-->MsiExec.exe /I{3B4E636E-9D65-4D67-BA61-189800823F52}
Windows Live Contrôle parental-->MsiExec.exe /X{D5D81435-B8DE-4CAF-867F-7998F2B92CFC}
Windows Live FolderShare-->MsiExec.exe /X{2075CB0A-D26F-4DAA-B424-5079296B43BA}
Windows Live Mail-->MsiExec.exe /I{5DD76286-9BE7-4894-A990-E905E91AC818}
Windows Live Messenger-->MsiExec.exe /X{770F1BEC-2871-4E70-B837-FB8525FFA3B1}
Windows Live Movie Maker-->MsiExec.exe /X{53B20C18-D8D4-4588-8737-9BBFE303C354}
Windows Live OneCare safety scanner-->"C:\Program Files\Windows Live Safety Center\UnInstall.exe"
Windows Live OneCare safety scanner-->MsiExec.exe /X{FE0646A7-19D0-41B4-A2BB-2C35D644270D}
Windows Live Toolbar-->MsiExec.exe /X{F7D27C70-90F5-49B9-B188-0A133C0CE353}
Windows Live Writer-->MsiExec.exe /X{4634B21A-CC07-4396-890C-2B8168661FEA}
WinRAR archiver-->C:\Program Files\WinRAR\uninstall.exe
Yahoo! Install Manager-->C:\Windows\system32\regsvr32 /u C:\PROGRA~1\Yahoo!\Common\YINSTH~1.DLL
Yahoo! Toolbar avec bloqueur de fenêtres pop-up-->C:\PROGRA~1\Yahoo!\Common\unyt.exe

======Hosts File======

127.0.0.1 localhost
::1 localhost
91.121.124.125 eu.logon.worldofwarcraft.com

======Security center information======

AV: avast! antivirus 4.8.1335 [VPS 090225-1]
AS: Spyware Doctor (disabled)
AS: Windows Defender
AS: avast! antivirus 4.8.1335 [VPS 090225-1]

======System event log======

Computer Name: Family
Event Code: 1003
Message: Votre ordinateur n'a pas pu renouveler son adresse à partir du réseau (à partir du serveur DHCP) pour la carte réseau dont l'adresse réseau est 001D60536B16. Il s'est produit l'erreur suivante :
L'opération a été annulée par l'utilisateur.. Votre ordinateur va continuer à essayer d'obtenir sa propre adresse auprès du serveur d'adresse réseau (DHCP).
Record Number: 299074
Source Name: Microsoft-Windows-Dhcp-Client
Time Written: 20100131184133.000000-000
Event Type: Avertissement
User:

Computer Name: Family
Event Code: 15016
Message: Impossible d’initialiser le package de sécurité Kerberos pour l’authentification côté serveur. Le champ de données contient le numéro de l’erreur.
Record Number: 299123
Source Name: Microsoft-Windows-HttpEvent
Time Written: 20100201171230.505927-000
Event Type: Erreur
User:

Computer Name: Family
Event Code: 7000
Message: Le service Parallel port driver n'a pas pu démarrer en raison de l'erreur :
Le service ne peut pas être démarré parce qu'il est désactivé ou qu'aucun périphérique activé ne lui est associé.
Record Number: 299159
Source Name: Service Control Manager
Time Written: 20100201171405.000000-000
Event Type: Erreur
User:

Computer Name: Family
Event Code: 7000
Message: Le service npkcrypt n'a pas pu démarrer en raison de l'erreur :
Le chemin d'accès spécifié est introuvable.
Record Number: 299174
Source Name: Service Control Manager
Time Written: 20100201171405.000000-000
Event Type: Erreur
User:

Computer Name: Family
Event Code: 7022
Message: Le service Service HP CUE DeviceDiscovery est en attente de démarrage.
Record Number: 299197
Source Name: Service Control Manager
Time Written: 20100201171406.000000-000
Event Type: Erreur
User:

=====Application event log=====

Computer Name: Family
Event Code: 1000
Message: Application défaillante kbd.exe, version 1.0.2.2, horodatage 0x420165d6, module défaillant cfg.dll, version 1.0.2.1, horodatage 0x4564bd20, code d’exception 0xc0000005, décalage d’erreur 0x00003610, ID du processus 0x11f8, heure de début de l’application 0x01caa283477da80f.
Record Number: 103317
Source Name: Application Error
Time Written: 20100131155937.000000-000
Event Type: Erreur
User:

Computer Name: Family
Event Code: 1530
Message: Windows a détecté que votre fichier de Registre est toujours utilisé par d'autres applications ou services. Le fichier va être déchargé. Les applications ou services qui ont accès à votre Registre risquent de ne pas fonctionner correctement après cela.

DÉTAIL -
5 user registry handles leaked from \Registry\User\S-1-5-21-210047736-2168427201-1332939898-1004:
Process 220 (\Device\HarddiskVolume1\Windows\System32\spoolsv.exe) has opened key \REGISTRY\USER\S-1-5-21-210047736-2168427201-1332939898-1004\Software
Process 220 (\Device\HarddiskVolume1\Windows\System32\spoolsv.exe) has opened key \REGISTRY\USER\S-1-5-21-210047736-2168427201-1332939898-1004\Software\Policies
Process 220 (\Device\HarddiskVolume1\Windows\System32\spoolsv.exe) has opened key \REGISTRY\USER\S-1-5-21-210047736-2168427201-1332939898-1004\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings
Process 220 (\Device\HarddiskVolume1\Windows\System32\spoolsv.exe) has opened key \REGISTRY\USER\S-1-5-21-210047736-2168427201-1332939898-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings
Process 220 (\Device\HarddiskVolume1\Windows\System32\spoolsv.exe) has opened key \REGISTRY\USER\S-1-5-21-210047736-2168427201-1332939898-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings

Record Number: 103322
Source Name: Microsoft-Windows-User Profiles Service
Time Written: 20100131195154.000000-000
Event Type: Avertissement
User: AUTORITE NT\SYSTEM

Computer Name: Family
Event Code: 1530
Message: Windows a détecté que votre fichier de Registre est toujours utilisé par d'autres applications ou services. Le fichier va être déchargé. Les applications ou services qui ont accès à votre Registre risquent de ne pas fonctionner correctement après cela.

DÉTAIL -
1 user registry handles leaked from \Registry\User\S-1-5-21-210047736-2168427201-1332939898-1004_Classes:
Process 220 (\Device\HarddiskVolume1\Windows\System32\spoolsv.exe) has opened key \REGISTRY\USER\S-1-5-21-210047736-2168427201-1332939898-1004_CLASSES\Local Settings\Software\Microsoft\Windows\Shell\MuiCache

Record Number: 103323
Source Name: Microsoft-Windows-User Profiles Service
Time Written: 20100131195154.000000-000
Event Type: Avertissement
User: AUTORITE NT\SYSTEM

Computer Name: Family
Event Code: 11
Message: Échec de l'extraction de la liste racine tierce partie depuis le fichier CAB de mise à jour automatique à : <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> avec l'erreur : Un certificat requis n'est pas dans sa période de validité selon la vérification par rapport à l'horloge système en cours ou le tampon daté dans le fichier signé.
.
Record Number: 103354
Source Name: Microsoft-Windows-CAPI2
Time Written: 20100201171810.000000-000
Event Type: Erreur
User:

Computer Name: Family
Event Code: 1000
Message: Application défaillante SystrayApp.exe, version 1.0.37.730, horodatage 0x46a63d01, module défaillant SystrayApp.exe, version 1.0.37.730, horodatage 0x46a63d01, code d’exception 0xc0000005, décalage d’erreur 0x00001c1c, ID du processus 0x784, heure de début de l’application 0x01caa36279f7264c.
Record Number: 103355
Source Name: Application Error
Time Written: 20100201171817.000000-000
Event Type: Erreur
User:

=====Security event log=====

Computer Name: Family
Event Code: 4672
Message: Privilèges spéciaux attribués à la nouvelle ouverture de session.

Sujet :
ID de sécurité : S-1-5-18
Nom du compte : SYSTEM
Domaine du compte : AUTORITE NT
ID d’ouverture de session : 0x3e7

Privilèges : SeAssignPrimaryTokenPrivilege
SeTcbPrivilege
SeSecurityPrivilege
SeTakeOwnershipPrivilege
SeLoadDriverPrivilege
SeBackupPrivilege
SeRestorePrivilege
SeDebugPrivilege
SeAuditPrivilege
SeSystemEnvironmentPrivilege
SeImpersonatePrivilege
Record Number: 71010
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20090827093308.353540-000
Event Type: Succès de l'audit
User:

Computer Name: Family
Event Code: 1100
Message: Le service d’enregistrement des événements a été arrêté.
Record Number: 71011
Source Name: Microsoft-Windows-Eventlog
Time Written: 20090827095736.816400-000
Event Type: Succès de l'audit
User:

Computer Name: Family
Event Code: 1108
Message: Le service de journalisation des événements a rencontré une erreur lors du traitement d’un événement entrant publié à partir de Microsoft-Windows-Security-Auditing.
Record Number: 71012
Source Name: Microsoft-Windows-Eventlog
Time Written: 20090827095736.863200-000
Event Type: Succès de l'audit
User:

Computer Name: Family
Event Code: 1108
Message: Le service de journalisation des événements a rencontré une erreur lors du traitement d’un événement entrant publié à partir de Microsoft-Windows-Security-Auditing.
Record Number: 71013
Source Name: Microsoft-Windows-Eventlog
Time Written: 20090827095736.863200-000
Event Type: Succès de l'audit
User:

Computer Name: Family
Event Code: 4634
Message: Fermeture de session d’un compte.

Sujet :
ID de sécurité : S-1-5-7
Nom du compte : ANONYMOUS LOGON
Domaine du compte : AUTORITE NT
ID du compte : 0x2a963

Type d’ouverture de session : 3

Cet événement est généré lorsqu’une session ouverte est supprimée. Il peut être associé à un événement d’ouverture de session en utilisant la valeur ID d’ouverture de session. Les ID d’ouverture de session ne sont uniques qu’entre les redémarrages sur un même ordinateur.
Record Number: 71014
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20090827095737.112800-000
Event Type: Succès de l'audit
User:

======Environment variables======

"ComSpec"=%SystemRoot%\system32\cmd.exe
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\hp\bin\Python;c:\Program Files\ATI Technologies\ATI.ACE\Core-Static;c:\Program Files\Common Files\Roxio Shared\DLLShared\;c:\Program Files\Common Files\Roxio Shared\9.0\DLLShared\;C:\Program Files\QuickTime\QTSystem\
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
"PROCESSOR_ARCHITECTURE"=x86
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"USERNAME"=SYSTEM
"windir"=%SystemRoot%
"PROCESSOR_LEVEL"=6
"PROCESSOR_IDENTIFIER"=x86 Family 6 Model 15 Stepping 13, GenuineIntel
"PROCESSOR_REVISION"=0f0d
"NUMBER_OF_PROCESSORS"=2
"RoxioCentral"=c:\Program Files\Common Files\Roxio Shared\9.0\Roxio Central33\
"PLATFORM"=HPD
"PCBRAND"=Pavilion
"OnlineServices"=Services en ligne
"CLASSPATH"=.;C:\Program Files\Java\jre6\lib\ext\QTJava.zip
"QTJAVA"=C:\Program Files\Java\jre6\lib\ext\QTJava.zip

-----------------EOF-----------------

et log.txt :

Logfile of random's system information tool 1.06 (written by random/random)
Run by Giorgio at 2010-02-01 19:01:29
Microsoft® Windows Vista™ Édition Familiale Premium Service Pack 1
System drive C: has 187 GB (56%) free of 336 GB
Total RAM: 3070 MB (41% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 19:02:02, on 01/02/2010
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v8.00 (8.00.6001.18882)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Orange HSS\Systray\SystrayApp.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe
C:\hp\support\hpsysdrv.exe
c:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files\Alwil Software\Avast4\ashDisp.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Logitech\QuickCam\Quickcam.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\LimeWire\LimeWire.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Windows\ehome\ehmsas.exe
C:\PROGRA~1\COMMON~1\France Telecom\Shared Modules\AlertModule\1\AlertModule.exe
C:\Users\Giorgio\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Users\Giorgio\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Giorgio\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files\Common Files\Logishrd\LQCVFX\COCIManager.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\hp\kbd\kbd.exe
C:\Windows\system32\wuauclt.exe
C:\Program Files\Dofus\Dofus.exe
C:\Program Files\Dofus\dofus.dll
C:\Users\Giorgio\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Giorgio\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Giorgio\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Giorgio\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Giorgio\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Giorgio\Documents\Downloads\RSIT.exe
C:\Program Files\trend micro\Giorgio.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.plusnetwork.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\Program Files\Orange HSS\SearchURLHook\SearchPageURL.dll
O1 - Hosts: ::1 localhost
O1 - Hosts: 91.121.124.125 eu.logon.worldofwarcraft.com
O2 - BHO: Dealio Toolbar - {01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C} - C:\Program Files\Dealio Toolbar\DealioToolbarIE.dll (file missing)
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: HP Print Clips - {053F9267-DC04-4294-A72C-58F732D338C0} - C:\Program Files\HP\Smart Web Printing\hpswp_framework.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Windows Live Family Safety Browser Helper - {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - C:\Program Files\Windows Live\Family Safety\fssbho.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.4.4525.1752\swg.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [SystrayORAHSS] "C:\Program Files\Orange HSS\Systray\SystrayApp.exe"
O4 - HKLM\..\Run: [SunJavaUpdateReg] "C:\Windows\system32\jureg.exe" -delete
O4 - HKLM\..\Run: [StartCCC] c:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [OsdMaestro] "C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe"
O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KbdStub.EXE
O4 - HKLM\..\Run: [hpsysdrv] c:\hp\support\hpsysdrv.exe
O4 - HKLM\..\Run: [HP Health Check Scheduler] c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
O4 - HKLM\..\Run: [CCUTRAYICON] FactoryMode
O4 - HKLM\..\Run: [ORAHSSSessionManager] C:\Program Files\Orange HSS\SessionManager\SessionManager.exe
O4 - HKLM\..\Run: [ALUAlert] C:\Program Files\Symantec\LiveUpdate\ALuNotify.exe
O4 - HKLM\..\Run: [IAAnotif] "C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe"
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [fssui] "C:\Program Files\Windows Live\Family Safety\fsui.exe" -autorun
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [LogitechQuickCamRibbon] "C:\Program Files\Logitech\QuickCam\Quickcam.exe" /hide
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [HPADVISOR] C:\Program Files\Hewlett-Packard\HP Advisor\HPAdvisor.exe autoRun
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
O4 - Startup: LimeWire On Startup.lnk = C:\Program Files\LimeWire\LimeWire.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_60D6097707281E79.dll/cmsidewiki.html
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Livre de reliures HP - {58ECB495-38F0-49cb-A538-10282ABF65E7} - C:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll
O9 - Extra button: Sélection intelligente HP - {700259D7-1666-479a-93B1-3250410481E8} - C:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O13 - Gopher Prefix:
O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/2008.10.10_v5.5.8/FacebookPhotoUploader5.cab
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {4871A87A-BFDD-4106-8153-FFDE2BAC2967} (DLM Control) - http://dlm.tools.akamai.com/dlmanager/versions/activex/dlm-activex-2.2.4.3.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Intel(R) Alert Service (AlertService) - Intel(R) Corporation - C:\Program Files\Intel\IntelDH\CCU\AlertService.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: DQLWinService - Unknown owner - C:\Program Files\Common Files\Intel\IntelDH\NMS\AdpPlugins\DQLWinService.exe
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom SA - C:\PROGRA~1\COMMON~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HP Health Check Service - Hewlett-Packard - c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: Intel DH Service (IntelDHSvcConf) - Intel(R) Corporation - C:\Program Files\Intel\IntelDH\Intel Media Server\Tools\IntelDHSvcConf.exe
O23 - Service: Service de l’iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel(R) Software Services Manager (ISSM) - Intel(R) Corporation - C:\Program Files\Intel\IntelDH\Intel Media Server\Media Server\bin\ISSM.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - c:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
O23 - Service: Intel(R) Viiv(TM) Media Server (M1 Server) - Unknown owner - C:\Program Files\Intel\IntelDH\Intel Media Server\Media Server\bin\mediaserver.exe
O23 - Service: Intel(R) Application Tracker (MCLServiceATL) - Intel(R) Corporation - C:\Program Files\Intel\IntelDH\Intel Media Server\Shells\MCLServiceATL.exe
O23 - Service: MSCSPTISRV - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe
O23 - Service: PACSPTISVR - Unknown owner - C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe
O23 - Service: Intel(R) Remoting Service (Remote UI Service) - Intel(R) Corporation - C:\Program Files\Intel\IntelDH\Intel Media Server\Shells\Remote UI Service.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - c:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - c:\Program Files\Common Files\SureThing Shared\stllssvr.exe

--
End of file - 14179 bytes

======Scheduled tasks folder======

C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-210047736-2168427201-1332939898-1001Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-210047736-2168427201-1332939898-1001UA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-210047736-2168427201-1332939898-1003Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-210047736-2168427201-1332939898-1003UA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-210047736-2168427201-1332939898-1004Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-210047736-2168427201-1332939898-1004UA.job
C:\Windows\tasks\HPCeeScheduleForGiorgio.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C}]
Dealio Toolbar - C:\Program Files\Dealio Toolbar\DealioToolbarIE.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4EFB-9B51-7695ECA05670}]
Yahoo! Toolbar Helper - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll [2006-11-29 436288]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{053F9267-DC04-4294-A72C-58F732D338C0}]
HP Print Clips - C:\Program Files\HP\Smart Web Printing\hpswp_framework.dll [2007-03-02 177768]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4f3ed5cd-0726-42a9-87f5-d13f3d2976ac}]
Windows Live Family Safety Browser Helper Class - C:\Program Files\Windows Live\Family Safety\fssbho.dll [2009-08-05 113512]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2009-05-19 137600]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Programme d'aide de l'Assistant de connexion Windows Live - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-02-17 408440]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2009-12-04 263280]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.4.4525.1752\swg.dll [2009-11-02 764912]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-08-17 41760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
Windows Live Toolbar Helper - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{EF99BD32-C1FB-11D2-892F-0090271D4F88} - Yahoo! Toolbar avec bloqueur de fenêtres pop-up - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll [2006-11-29 436288]
{21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2009-12-04 263280]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
""= []
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-19 1008184]
"SystrayORAHSS"=C:\Program Files\Orange HSS\Systray\SystrayApp.exe [2007-07-24 94208]
"SunJavaUpdateReg"=C:\Windows\system32\jureg.exe [2007-04-07 54936]
"StartCCC"=c:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2006-11-10 90112]
"RtHDVCpl"=C:\Windows\RtHDVCpl.exe [2008-01-15 4874240]
"OsdMaestro"=C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe [2007-02-15 118784]
"KBD"=C:\HP\KBD\KbdStub.EXE [2006-12-08 65536]
"hpsysdrv"=c:\hp\support\hpsysdrv.exe [2007-04-18 65536]
"HP Health Check Scheduler"=c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe [2007-05-24 71176]
"CCUTRAYICON"=FactoryMode []
"ORAHSSSessionManager"=C:\Program Files\Orange HSS\SessionManager\SessionManager.exe [2007-07-24 102400]
"ALUAlert"=C:\Program Files\Symantec\LiveUpdate\ALuNotify.exe []
"IAAnotif"=C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe [2008-06-02 178712]
"avast!"=C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe [2009-08-17 81000]
"fssui"=C:\Program Files\Windows Live\Family Safety\fsui.exe [2009-08-05 647520]
"SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2009-08-17 149280]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-02-27 35696]
"QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2009-11-10 417792]
"AppleSyncNotifier"=C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe [2009-08-13 177440]
"iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2009-11-12 141600]
"LogitechQuickCamRibbon"=C:\Program Files\Logitech\QuickCam\Quickcam.exe [2008-12-20 2656528]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2008-01-19 1233920]
"HPADVISOR"=C:\Program Files\Hewlett-Packard\HP Advisor\HPAdvisor.exe autoRun []
"ehTray.exe"=C:\Windows\ehome\ehTray.exe [2008-01-19 125952]
"swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2009-01-09 39408]
"msnmsgr"=C:\Program Files\Windows Live\Messenger\msnmsgr.exe [2009-07-26 3883856]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AppleSyncNotifier]
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe [2009-08-13 177440]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update]
C:\Users\Giorgio\AppData\Local\Google\Update\GoogleUpdate.exe [2009-09-23 133104]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Software Update]
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [2007-03-11 49152]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
C:\Program Files\iTunes\iTunesHelper.exe [2009-11-12 141600]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogitechQuickCamRibbon]
C:\Program Files\Logitech\QuickCam\Quickcam.exe [2008-12-20 2656528]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\msnmsgr]
C:\Program Files\Windows Live\Messenger\msnmsgr.exe [2009-07-26 3883856]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
C:\Program Files\QuickTime\QTTask.exe [2009-11-10 417792]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpybotSD TeaTimer]
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe [2008-07-07 2156368]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Steam]
c:\program files\steam\steam.exe [2009-10-26 1217808]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk]
C:\PROGRA~1\HP\DIGITA~1\bin\hpqtra08.exe [2008-03-25 214360]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Logitech Desktop Messenger.lnk]
C:\PROGRA~1\Logitech\DESKTO~1\8876480\Program\LOGITE~1.EXE [2009-04-29 66864]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Microsoft Office.lnk]
C:\PROGRA~1\MICROS~3\Office\OSA9.EXE [1999-02-17 65588]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Belinda^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Notification de cadeaux MSN.lnk]
C:\Users\Belinda\AppData\Roaming\MICROS~1\NOTIFI~1\lsnfier.exe [2009-03-20 135680]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Giorgio^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^LimeWire On Startup.lnk]
C:\PROGRA~1\LimeWire\LimeWire.exe [2009-12-16 503808]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Microsoft Office.lnk - C:\Program Files\Microsoft Office\Office\OSA9.EXE

C:\Users\Giorgio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
LimeWire On Startup.lnk - C:\Program Files\LimeWire\LimeWire.exe

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"EnableLUA"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files\Orange HSS\Connectivity\ConnectivityManager.exe"="C:\Program Files\Orange HSS\Connectivity\ConnectivityManager.exe:*:enabled:CSS"
"C:\Nexon\NEXON_EU_Downloader\NEXON_EU_Downloader_Engine.exe"="C:\Nexon\NEXON_EU_Downloader\NEXON_EU_Downloader_Engine.exe:*:Enabled:NEXON_EU_Downloader_Engine.exe"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{3aae79cc-f538-11de-9164-001d60536b16}]
shell\AutoRun\command - K:\start.exe

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{7d141bca-bbc3-11de-bc3a-001d60536b16}]
shell\AutoRun\command - F:\.\framakey\start.exe
shell\framaKey\command - F:\.\framakey\start.exe

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{7d141bce-bbc3-11de-bc3a-001d60536b16}]
shell\AutoRun\command - K:\autorun.exe

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{eeb4cfac-aff6-11de-adbd-001d60536b16}]
shell\AutoRun\command - F:\start.exe

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{f8046a50-f39c-11de-90a1-001d60536b16}]
shell\AutoRun\command - F:\start.exe

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 months======

2010-02-01 19:01:29 ----D---- C:\rsit
2010-01-27 19:12:46 ----D---- C:\Program Files\MediaCoder
2010-01-27 19:05:49 ----A---- C:\Windows\system32\decdll.dll
2010-01-27 19:05:48 ----D---- C:\Program Files\Free Video Converter
2010-01-26 23:07:58 ----A---- C:\Windows\system32\devil.dll
2010-01-26 23:07:58 ----A---- C:\Windows\system32\avisynth.dll
2010-01-26 23:07:57 ----D---- C:\Program Files\AviSynth 2.5
2010-01-26 23:07:57 ----A---- C:\Windows\system32\yv12vfw.dll
2010-01-26 23:07:57 ----A---- C:\Windows\system32\i420vfw.dll
2010-01-26 23:07:57 ----A---- C:\Windows\system32\AVSredirect.dll
2010-01-26 23:07:47 ----RSH---- C:\Windows\system32\nbDX.dll
2010-01-26 23:07:47 ----RSH---- C:\Windows\system32\msfDX.dll

27 réponses

Résumé de la discussion

La lenteur croissante d'un ordinateur et la recherche de ses performances d'il y a deux ans constituent le sujet central, après une démarche de désinfection et la génération de rapports système. Les rapports Info.txt et log.txt détaillent les éléments du système, notamment une longue liste de programmes à désinstaller et des composants HP, Adobe, Microsoft et divers outils. Le fichier hosts et les journaux système évoquent des éléments de sécurité, de réseau et des services, tandis que des programmes comme Avast, Java et .NET font aussi l'objet d'opérations. En cas de piste utile, le fil présente des points techniques sur l'adresse DHCP, le service HP et des erreurs Windows, sans fournir immédiatement une solution unique.

Bobot (l’IA à votre service)
  1. Excuse-moi du retard, je n'ai pas trop accès à l'ordinateur en ce moment.
    Je fais ce que tu m'as dit d'ici peu.
    Pardon encore.
    0
    1. Autant pour moi...

      Erreur...ce message ne t'était pas destiné !

      ---> Télécharge ComboFix.exe de sUBs sur ton Bureau :
      http://download.bleepingcomputer.com/sUBs/ComboFix.exe

      /!\ Déconnecte-toi du net et ferme toutes les applications, antivirus et antispyware y compris /!\

      ---> Double-clique sur Combofix.exe
      Un "pop-up" va apparaître qui dit que "ComboFix est utilisé à vos risques et avec aucune garantie...".
      Accepte en cliquant sur "Oui"

      ---> Mets-le en langue française F
      Tape sur la touche 1 (Yes) pour démarrer le scan.

      /!\ Ne touche à rien tant que le scan n'est pas terminé. /!\
      En fin de scan, il est possible que ComboFix ait besoin de redémarrer le PC pour finaliser la désinfection, laisse-le faire.

      Une fois le scan achevé, un rapport va s'afficher : Poste son contenu

      /!\ Réactive la protection en temps réel de ton antivirus et de ton antispyware avant de te reconnecter à Internet. /!\

      Note : Le rapport se trouve également là : C:\ComboFix.txt

      a+
      0
      1. Mais ça je l'ai déjà fait !
        Je dois le refaire?!
        0
        1. Desactive ton antivirus le temps de la manip ainsi que ton parefeu si présent(car il est detecté a tort comme infection)

          Télécharge List&Kill'em et enregistre le sur ton bureau
          http://sd-1.archive-host.com/membres/up/829108531491024/List_Killem_Install.exe

          Branche clés usb , disques durs externes , mp3 , mp4 , etc..

          double clique ( clic droit "executer en tant qu'administrateur" pour Vista/7 ) sur le raccourci sur ton bureau pour lancer l'installation

          coche la case "creer une icone sur le bureau"

          une fois terminée , clic sur "terminer" et le programme se lancera seul

          choisis la langue puis choisis l'option 1 = Mode Recherche
          laisse travailler l'outil

          à l'apparition de la fenetre blanche , c'est un peu long , c'est normal , le programme n'est pas bloqué.

          un rapport du nom de catchme apparait sur ton bureau , ignore-le,ne le poste pas , mais ne le supprime pas pour l instant, le scan n'est pas fini.

          Poste le contenu du rapport qui s'ouvre aux 100 % du scan à l'ecran "COMPLETED"

          tu peux supprimer le rapport catchme.log de ton bureau maintenant.

          a+

          0
          1. Mouais, un peu.
            Je joue à Dofus, et j'aimerai bien tenir 8 comptes sans laguer.
            Des fois ca marche, d'autres non. Soit c'est fluide, soit je rame comme un porc.
            Que se passe-t-il?
            0
            1. Comment se comporte le pc ? du mieux ?

              a+
              0
              1. Il a rien détecté je crois :

                Malwarebytes' Anti-Malware 1.44
                Version de la base de données: 3687
                Windows 6.0.6001 Service Pack 1
                Internet Explorer 8.0.6001.18882

                04/02/2010 08:47:56
                mbam-log-2010-02-04 (08-47-56).txt

                Type de recherche: Examen rapide
                Eléments examinés: 144446
                Temps écoulé: 5 minute(s), 26 second(s)

                Processus mémoire infecté(s): 0
                Module(s) mémoire infecté(s): 0
                Clé(s) du Registre infectée(s): 0
                Valeur(s) du Registre infectée(s): 0
                Elément(s) de données du Registre infecté(s): 0
                Dossier(s) infecté(s): 0
                Fichier(s) infecté(s): 0

                Processus mémoire infecté(s):
                (Aucun élément nuisible détecté)

                Module(s) mémoire infecté(s):
                (Aucun élément nuisible détecté)

                Clé(s) du Registre infectée(s):
                (Aucun élément nuisible détecté)

                Valeur(s) du Registre infectée(s):
                (Aucun élément nuisible détecté)

                Elément(s) de données du Registre infecté(s):
                (Aucun élément nuisible détecté)

                Dossier(s) infecté(s):
                (Aucun élément nuisible détecté)

                Fichier(s) infecté(s):
                (Aucun élément nuisible détecté)
                0
                1. Fais un scan avec cet antispyware :
                  Malwarebytes + tutoriel

                  Tu l´installes; mets le a jour...(onglet mise a jour)
                  Click maintenant sur l´onglet recherche et coche la case :
                  "Executer un examen rapide".
                  Puis click sur "rechercher".
                  Laisses le scanner le pc...
                  A la fin du scan, clique sur Afficher les résultats
                  Si des elements on ete trouvés :
                  > click sur supprimer la selection.
                  si il t´es demandé de redemarrer > click sur "oui".
                  A la fin un rapport va s´ouvrir;
                  sauvegarde le de maniere a le retrouver en vue de le poster sur le forum.
                  Copies et colles le rapport stp.

                  a+

                  a+
                  0
                  1. J'ai fait exactement ce que tu m'as dit.
                    Cependant, seul un rapport s'est ouvert. Je me suis dit "C'est le premier, je vais l'enregistrer au cas où".
                    Mais il n'y a eu aucun 2ème rapport.
                    Je t'envoie quand même le premier :

                    Kill'em by g3n-h@ckm@n 1.2.2.0

                    ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Processes running

                    C:\Windows\System32\smss.exe
                    C:\Windows\system32\csrss.exe
                    C:\Windows\system32\csrss.exe
                    C:\Windows\system32\wininit.exe
                    C:\Windows\system32\services.exe
                    C:\Windows\system32\winlogon.exe
                    C:\Windows\system32\lsass.exe
                    C:\Windows\system32\lsm.exe
                    C:\Windows\system32\svchost.exe
                    C:\Windows\system32\svchost.exe
                    C:\Windows\System32\svchost.exe
                    C:\Windows\System32\svchost.exe
                    C:\Windows\system32\svchost.exe
                    C:\Windows\system32\svchost.exe
                    C:\Windows\Explorer.EXE
                    C:\Program Files\List_Kill'em\List_Kill'em.scr
                    C:\Windows\system32\cmd.exe
                    C:\Windows\system32\wbem\wmiprvse.exe
                    C:\Users\Giorgio\AppData\Local\Temp\6FA3.tmp\ERUNT.EXE
                    C:\Users\Giorgio\AppData\Local\Temp\6FA3.tmp\pv.exe

                    Detections :
                    ==========

                    ¤¤¤¤¤¤¤¤¤¤ Files/folders :

                    Quarantined & Deleted !! : C:\ProgramData\{3276BE95_AF08_429F_A64F_CA64CB79BCF6}

                    Quarantined & Deleted !! : C:\Windows\system32\x3daudio1_0.dll
                    Quarantined & Deleted !! : C:\Windows\system32\XInput9_1_0.dll
                    Quarantined & Deleted !! : C:\Windows\System32\drivers\lvuvc.hs
                    Quarantined & Deleted !! : C:\Users\Giorgio\LOCAL Settings\Temp\i4jdel0.exe
                    Quarantined & Deleted !! : C:\Users\Giorgio\LOCAL Settings\Temp\msvcp60.dll
                    Quarantined & Deleted !! : C:\Users\Giorgio\LOCAL Settings\Temp\twapi-2.0a2.dll

                    ==============
                    host file OK !
                    ==============

                    ========
                    Registry
                    ========
                    Deleted : HKCR\Interface\{248dd892-bb45-11cf-9abc-0080c7e7b78d}
                    Deleted : HKCR\Interface\{248dd893-bb45-11cf-9abc-0080c7e7b78d}
                    Deleted : HKCU\Software\AppDataLow\Software\Dealio
                    ¤¤¤¤¤¤¤¤¤¤ Services fonctionnels

                    # Ndisuio : Start = 3
                    # EapHost -> Start = 2
                    # Wlansvc -> Start = 2
                    # SharedAccess -> Start = 2
                    # windefend -> Start = 2
                    # wuauserv -> Start = 2
                    # wscsvc -> Start = 2

                    ============
                    Disk Cleaned
                    ============

                    ================
                    Prefetch cleaned
                    ================

                    ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤( EOF )¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
                    0
                    1. REDEMARRE EN MODE SANS ECHEC
                      1) Redémarre ton ordi
                      2) Tapote la touche F8 immédiatement, (F5 sur certains PC) juste après le "Bip"
                      3) Tu verras un écran avec options de démarrage apparaître
                      4) Choisis la première option : Sans Échec, et valide avec "Entrée"
                      Relance List&Kill'em (clic droit pour vista),

                      mais cette fois-ci :

                      choisis l'option 2 = Mode Destruction
                      laisse travailler l'outil

                      apres les verifications , un rapport va s'ouvrir.

                      ferme-le.

                      un deuxieme rapport va s'ouvrir ,

                      colle son contenu dans ta reponse apres avoir redemarré en mode normal

                      a+
                      0
                      1. Voilà le rapport obtenu à l'aide de List&Kill'em :

                        List'em by g3n-h@ckm@n 1.2.2.0

                        ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Processes running

                        C:\Windows\System32\smss.exe
                        C:\Windows\system32\csrss.exe
                        C:\Windows\system32\wininit.exe
                        C:\Windows\system32\services.exe
                        C:\Windows\system32\lsass.exe
                        C:\Windows\system32\lsm.exe
                        C:\Windows\system32\svchost.exe
                        C:\Windows\system32\svchost.exe
                        C:\Windows\System32\svchost.exe
                        C:\Windows\system32\Ati2evxx.exe
                        C:\Windows\System32\svchost.exe
                        C:\Windows\System32\svchost.exe
                        C:\Windows\system32\svchost.exe
                        C:\Windows\system32\svchost.exe
                        C:\Windows\system32\SLsvc.exe
                        C:\Windows\system32\svchost.exe
                        C:\Windows\system32\svchost.exe
                        C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
                        C:\Program Files\Alwil Software\Avast4\ashServ.exe
                        C:\Windows\System32\spoolsv.exe
                        C:\Windows\system32\svchost.exe
                        C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
                        C:\Program Files\Bonjour\mDNSResponder.exe
                        C:\Program Files\Common Files\Intel\IntelDH\NMS\AdpPlugins\DQLWinService.exe
                        C:\PROGRA~1\COMMON~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
                        C:\Windows\system32\svchost.exe
                        C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
                        c:\Program Files\Common Files\LightScribe\LSSrvc.exe
                        C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
                        C:\Windows\System32\svchost.exe
                        C:\Windows\System32\svchost.exe
                        C:\Windows\system32\svchost.exe
                        C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
                        C:\Windows\system32\svchost.exe
                        C:\Windows\System32\svchost.exe
                        C:\Windows\system32\SearchIndexer.exe
                        C:\Windows\system32\WUDFHost.exe
                        C:\Windows\system32\taskeng.exe
                        C:\Program Files\Windows Media Player\wmpnetwk.exe
                        C:\Program Files\iPod\bin\iPodService.exe
                        c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
                        C:\Windows\system32\wbem\wmiprvse.exe
                        C:\Windows\system32\csrss.exe
                        C:\Windows\system32\winlogon.exe
                        C:\Windows\system32\Ati2evxx.exe
                        C:\Windows\system32\taskeng.exe
                        C:\Windows\system32\Dwm.exe
                        C:\Windows\Explorer.EXE
                        C:\Program Files\Orange HSS\Systray\SystrayApp.exe
                        c:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE
                        C:\Windows\RtHDVCpl.exe
                        C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe
                        C:\hp\support\hpsysdrv.exe
                        C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
                        C:\Program Files\Alwil Software\Avast4\ashDisp.exe
                        C:\Program Files\Java\jre6\bin\jusched.exe
                        C:\Program Files\iTunes\iTunesHelper.exe
                        C:\Program Files\Logitech\QuickCam\Quickcam.exe
                        C:\Program Files\Windows Sidebar\sidebar.exe
                        C:\Windows\ehome\ehtray.exe
                        C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
                        C:\Program Files\Windows Live\Messenger\msnmsgr.exe
                        C:\PROGRA~1\COMMON~1\France Telecom\Shared Modules\AlertModule\1\AlertModule.exe
                        C:\Program Files\Windows Media Player\wmpnscfg.exe
                        C:\Windows\ehome\ehmsas.exe
                        C:\Program Files\Common Files\Logishrd\LQCVFX\COCIManager.exe
                        C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
                        C:\Windows\system32\wuauclt.exe
                        C:\Program Files\Windows Live\Contacts\wlcomm.exe
                        C:\Program Files\Orange HSS\connectivity\connectivitymanager.exe
                        C:\Program Files\Orange HSS\connectivity\CoreCom\CoreCom.exe
                        C:\Program Files\Orange HSS\connectivity\CoreCom\OraConfigRecover.exe
                        C:\PROGRA~1\COMMON~1\France Telecom\Shared Modules\FTCOMModule\1\FTCOMModule.exe
                        C:\hp\kbd\kbd.exe
                        C:\Program Files\Adobe\Reader 9.0\Reader\AcroRd32Info.exe
                        C:\Windows\system32\DllHost.exe
                        C:\Windows\system32\SearchProtocolHost.exe
                        C:\Program Files\List_Kill'em\List_Kill'em.scr
                        C:\Windows\system32\SearchFilterHost.exe
                        C:\Windows\system32\conime.exe
                        C:\Windows\system32\cmd.exe
                        C:\Users\Giorgio\AppData\Local\Temp\C9EE.tmp\pv.exe

                        ======================
                        Keys "Run"
                        ======================
                        [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
                        Sidebar REG_SZ C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
                        ehTray.exe REG_SZ C:\Windows\ehome\ehTray.exe
                        swg REG_SZ "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
                        msnmsgr REG_SZ "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
                        HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run\OsdMaestro

                        [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
                        Windows Defender REG_SZ %ProgramFiles%\Windows Defender\MSASCui.exe -hide
                        SystrayORAHSS REG_SZ "C:\Program Files\Orange HSS\Systray\SystrayApp.exe"
                        SunJavaUpdateReg REG_SZ "C:\Windows\system32\jureg.exe" -delete
                        StartCCC REG_SZ c:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
                        RtHDVCpl REG_SZ RtHDVCpl.exe
                        OsdMaestro REG_SZ "C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe"
                        KBD REG_SZ C:\HP\KBD\KbdStub.EXE
                        hpsysdrv REG_SZ c:\hp\support\hpsysdrv.exe
                        HP Health Check Scheduler REG_SZ c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
                        ORAHSSSessionManager REG_SZ C:\Program Files\Orange HSS\SessionManager\SessionManager.exe
                        IAAnotif REG_SZ "C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe"
                        avast! REG_SZ C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
                        fssui REG_SZ "C:\Program Files\Windows Live\Family Safety\fsui.exe" -autorun
                        SunJavaUpdateSched REG_SZ "C:\Program Files\Java\jre6\bin\jusched.exe"
                        Adobe Reader Speed Launcher REG_SZ "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
                        QuickTime Task REG_SZ "C:\Program Files\QuickTime\QTTask.exe" -atboottime
                        AppleSyncNotifier REG_SZ C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
                        iTunesHelper REG_SZ "C:\Program Files\iTunes\iTunesHelper.exe"
                        LogitechQuickCamRibbon REG_SZ "C:\Program Files\Logitech\QuickCam\Quickcam.exe" /hide

                        [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunServices]

                        [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]

                        =====================
                        Other Keys
                        =====================
                        [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
                        ConsentPromptBehaviorAdmin REG_DWORD 2 (0x2)
                        ConsentPromptBehaviorUser REG_DWORD 1 (0x1)
                        EnableInstallerDetection REG_DWORD 1 (0x1)
                        EnableLUA REG_DWORD 1 (0x1)
                        EnableSecureUIAPaths REG_DWORD 1 (0x1)
                        EnableVirtualization REG_DWORD 1 (0x1)
                        PromptOnSecureDesktop REG_DWORD 1 (0x1)
                        ValidateAdminCodeSignatures REG_DWORD 0 (0x0)
                        dontdisplaylastusername REG_DWORD 0 (0x0)
                        legalnoticecaption REG_SZ
                        legalnoticetext REG_SZ
                        scforceoption REG_DWORD 0 (0x0)
                        shutdownwithoutlogon REG_DWORD 1 (0x1)
                        undockwithoutlogon REG_DWORD 1 (0x1)
                        FilterAdministratorToken REG_DWORD 1 (0x1)
                        EnableUIADesktopToggle REG_DWORD 0 (0x0)

                        ===============
                        [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
                        NoDriveAutoRun REG_DWORD 128 (0x80)
                        NoDriveTypeAutoRun REG_DWORD 128 (0x80)
                        HonorAutoRunSetting REG_DWORD 0 (0x0)

                        ===============
                        [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
                        NoDriveAutoRun REG_DWORD 128 (0x80)
                        NoDriveTypeAutoRun REG_DWORD 128 (0x80)
                        HonorAutoRunSetting REG_DWORD 0 (0x0)

                        ===============
                        [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
                        AppInit_DLLS REG_SZ

                        ===============
                        [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
                        ReportBootOk REG_SZ 1
                        Shell REG_SZ explorer.exe
                        Userinit REG_SZ C:\Windows\system32\userinit.exe,
                        VmApplet REG_SZ rundll32 shell32,Control_RunDLL "sysdm.cpl"
                        AutoRestartShell REG_DWORD 1 (0x1)
                        LegalNoticeCaption REG_SZ
                        LegalNoticeText REG_SZ
                        PowerdownAfterShutdown REG_SZ 0
                        ShutdownWithoutLogon REG_SZ 0
                        cachedlogonscount REG_SZ 10
                        forceunlocklogon REG_DWORD 0 (0x0)
                        passwordexpirywarning REG_DWORD 14 (0xe)
                        Background REG_SZ 0 0 0
                        DebugServerCommand REG_SZ no
                        WinStationsDisabled REG_SZ 0
                        DisableCAD REG_DWORD 1 (0x1)
                        scremoveoption REG_SZ 0
                        ShutdownFlags REG_DWORD 43 (0x2b)
                        HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\AutoLogonChecked

                        ===============

                        ===============
                        [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]

                        ===============
                        [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
                        C:\Program Files\Orange HSS\Connectivity\ConnectivityManager.exe REG_SZ C:\Program Files\Orange HSS\Connectivity\ConnectivityManager.exe:*:enabled:CSS
                        C:\Nexon\NEXON_EU_Downloader\NEXON_EU_Downloader_Engine.exe REG_SZ C:\Nexon\NEXON_EU_Downloader\NEXON_EU_Downloader_Engine.exe:*:Enabled:NEXON_EU_Downloader_Engine.exe

                        [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

                        ===============
                        ActivX controls
                        ===============

                        ===============
                        HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{22d6f312-b0f6-11d0-94ab-0080c74c7e95}
                        HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{26923b43-4d38-484f-9b9e-de460746276c}
                        HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF}
                        HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{0291E591-EA41-4c82-8106-3DC6CE7F7664}
                        HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{08B0E5C0-4FCB-11CF-AAA5-00401C608500}
                        HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{2179C5D3-EBFF-11CF-B6FD-00AA00B4E220}
                        HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{22d6f312-b0f6-11d0-94ab-0080c74c7e95}
                        HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{233C1507-6A77-46A4-9443-F871F945D258}
                        HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{2A202491-F00D-11cf-87CC-0020AFEECF20}
                        HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{2C7339CF-2B09-4501-B3F3-F3508C9228ED}
                        HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{30528230-99F7-4BB4-88D8-FA1D4F56A2AB}
                        HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{347B0667-C7ED-429B-BDE3-CC8D3BACAA31}
                        HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{3af36230-a269-11d1-b5bf-0000f8051515}
                        HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{44BBA840-CC51-11CF-AAFA-00AA00B6015C}
                        HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{44BBA848-CC51-11CF-AAFA-00AA00B6015C}
                        HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{44BBA855-CC51-11CF-AAFA-00AA00B6015F}
                        HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{45ea75a0-a269-11d1-b5bf-0000f8051515}
                        HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{4f645220-306d-11d2-995d-00c04f98bbc9}
                        HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{5fd399c0-a70a-11d1-9948-00c04f98bbc9}
                        HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{630b1da0-b465-11d1-9948-00c04f98bbc9}
                        HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{6BF52A52-394A-11d3-B153-00C04F79FAA6}
                        HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{6fab99d0-bab8-11d1-994a-00c04f98bbc9}
                        HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{73FA19D0-2D75-11D2-995D-00C04F98BBC9}
                        HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{7790769C-0471-11d2-AF11-00C04FA35D02}
                        HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{7C028AF8-F614-47B3-82DA-BA94E41B1089}
                        HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{89820200-ECBD-11cf-8B85-00AA005B4340}
                        HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{89820200-ECBD-11cf-8B85-00AA005B4383}
                        HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{89B4C1CD-B018-4511-B0A1-5476DBF70820}
                        HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{9381D8F2-0288-11D0-9501-00AA00B911A5}
                        HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{C6BAF60B-6E91-453F-BFF9-D3789CFEFCDD}
                        HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{C9E9A340-D1F1-11D0-821E-444553540600}
                        HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{CDD7975E-60F8-41d5-8149-19E51D6F71D0}
                        HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{D27CDB6E-AE6D-11CF-96B8-444553540000}
                        HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{de5aed00-a4bf-11d1-9948-00c04f98bbc9}
                        HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{E92B03AB-B707-11d2-9CBD-0000F87A369E}

                        ==============
                        BHO :
                        ======
                        [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{02478D38-C3F9-4EFB-9B51-7695ECA05670}]
                        [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{053F9267-DC04-4294-A72C-58F732D338C0}]
                        [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
                        [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{4f3ed5cd-0726-42a9-87f5-d13f3d2976ac}]
                        [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
                        [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
                        [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
                        [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
                        [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
                        [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]

                        ================
                        Internet Explorer :
                        ================
                        [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
                        Start Page REG_SZ https://www.msn.com/fr-fr

                        [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
                        Start Page REG_SZ http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome

                        ========
                        Services
                        ========
                        [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services]

                        Ndisuio : 0x3
                        EapHost : 0x3
                        Wlansvc : 0x3
                        SharedAccess : 0x3
                        windefend : 0x2
                        wuauserv : 0x2
                        wscsvc : 0x2

                        =========
                        Atapi.sys
                        =========

                        %%%% HASHDEEP-1.0
                        %%%% size,md5,sha256,filename
                        ## Invoked from: C:\Users\Giorgio\AppData\Local\Temp\C9EE.tmp
                        ## C:\> hashdeep C:\Windows\System32\Drivers\atapi.sys
                        ##
                        21560,2d9c903dc76a66813d350a562de40ed9,82609f01a08c6842e4c17c077bb641c1429c0e6657964b7f2d114035e1bdcbf3,C:\Windows\System32\Drivers\atapi.sys

                        Sources
                        =======

                        C:\Windows\SoftwareDistribution\Download\cd2b15b1a90e884578188440a1660b12\x86_mshdc.inf_31bf3856ad364e35_6.0.6002.18005_none_df23a1261eab99e8\atapi.sys
                        C:\Windows\System32\drivers\atapi.sys
                        C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_7de13c21\atapi.sys
                        C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_c6c2e699\atapi.sys
                        C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_cc18792d\atapi.sys
                        C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.0.6000.16632_none_db337a442479c42c\atapi.sys
                        C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.0.6000.20757_none_dbac78a93da31a8b\atapi.sys
                        C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.0.6001.18000_none_dd38281a2189ce9c\atapi.sys

                        Référence :
                        ==========

                        Win XP_32b : a64013e98426e1877cb653685c5c0009
                        Win XP_SP2_32b : CDFE4411A69C224BD1D11B2DA92DAC51
                        Win XP_SP3_32b : 9F3A2F5AA6875C72BF062C712CFA2674
                        Vista_32b : e03e8c99d15d0381e02743c36afc7c6f
                        Vista_SP1_32b : 2d9c903dc76a66813d350a562de40ed9
                        Vista_SP2_32b : 1F05B78AB91C9075565A9D8A4B880BC4
                        Vista_SP2_64b : 1898FAE8E07D97F2F6C2D5326C633FAC
                        Windows 7_32b : 80C40F7FDFC376E4C5FEEC28B41C119E
                        Windows 7_64b : 02062C0B390B7729EDC9E69C680A6F3C

                        =======
                        Drive :
                        =======

                        D‚fragmenteur de disque Windows
                        Copyright (c) 2006 Microsoft Corp.

                        Rapport d'analyse pour le volume C: HP

                        Taille du volume = 328 Go
                        Espace libre = 182 Go
                        tendue d'espace libre la plus grande = 113 Go
                        Pourcentage de fragmentation des fichiers = 0 %

                        Remarqueÿ: sur les volumes NTFS, les fragments de fichiers de plus de 64ÿMo ne sont pas inclus dans les statistiques de fragmentation.

                        Il n'est pas n‚cessaire de d‚fragmenter ce volume.

                        ¤¤¤¤¤¤¤¤¤¤ Files/folders :

                        Present !! : C:\ProgramData\{3276BE95_AF08_429F_A64F_CA64CB79BCF6}
                        Present !! : C:\Windows\system32\x3daudio1_0.dll
                        Present !! : C:\Windows\system32\XInput9_1_0.dll
                        Present !! : C:\Windows\System32\drivers\lvuvc.hs
                        Present !! : C:\Users\Giorgio\LOCAL Settings\Temp\i4jdel0.exe

                        ¤¤¤¤¤¤¤¤¤¤ Keys :

                        Present !! : HKCR\Interface\{248dd892-bb45-11cf-9abc-0080c7e7b78d}
                        Present !! : HKCR\Interface\{248dd893-bb45-11cf-9abc-0080c7e7b78d}
                        Present !! : HKCU\Software\AppDataLow\Software\Dealio

                        ============

                        catchme 0.3.1398.3 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
                        Rootkit scan 2010-02-03 20:27:58
                        Windows 6.0.6001 Service Pack 1 NTFS

                        scanning hidden processes ...

                        [0] 0x04244489

                        scanning hidden services & system hive ...

                        scanning hidden registry entries ...

                        scanning hidden files ...

                        C:\Users\Giorgio\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\8EOT3JXB\whatsnewservice[1].asmx

                        scan completed successfully
                        hidden processes: 1
                        hidden services: 0
                        hidden files: 1

                        Stealth MBR rootkit/Mebroot/Sinowal detector 0.3.7 by Gmer, http://www.gmer.net

                        device: opened successfully
                        user: MBR read successfully
                        kernel: MBR read successfully
                        user & kernel MBR OK

                        ==========
                        Programs
                        ==========

                        AC Tool
                        Activision
                        Ad-remover
                        Adobe
                        AhnLab
                        Alwil Software
                        Apple Software Update
                        Argente Software
                        Ask Search Assistant
                        Atari
                        ATI
                        ATI Technologies
                        AviSynth 2.5
                        AVS4YOU
                        Babylon
                        Bonjour
                        BoontyGames
                        CamStudio
                        CCleaner
                        Cheat Engine
                        Common Files
                        desktop.ini
                        directx
                        Dofus
                        Dofus 2
                        Dofus 2 Online
                        Dofus-Arena beta 2
                        DofusArena2
                        DofusBeta
                        DofusCalc
                        EACOM
                        EasyBits
                        eRightSoft
                        Eusing Free Registry Cleaner
                        Fichiers communs
                        Fighters
                        Free Video Converter
                        Google
                        Guitar Pro 5
                        Gulliland
                        Hewlett-Packard
                        HP
                        InstallShield Installation Information
                        Intel
                        Internet Explorer
                        Inventel
                        iPod
                        iTunes
                        Java
                        Kellogg's Afrique
                        Kellogg's Am‚rique
                        LimeWire
                        List_Kill'em
                        Logitech
                        Malwarebytes' Anti-Malware
                        McDonaldsDragons
                        MediaCoder
                        Messenger Plus! Live
                        Microsoft
                        Microsoft CAPICOM 2.1.0.2
                        Microsoft Games
                        Microsoft Office
                        Microsoft Silverlight
                        Microsoft SQL Server Compact Edition
                        Microsoft Sync Framework
                        Microsoft Works
                        Microsoft.NET
                        Movie Maker
                        MSBuild
                        MSXML 4.0
                        muvee Technologies
                        Navilog1
                        NEXON
                        Nouveau dossier
                        Orange
                        Orange HSS
                        OrangeHSS
                        PC-Doctor 5 for Windows
                        QuickTime
                        Realtek
                        Reference Assemblies
                        Roxio
                        Safari
                        SAGEM
                        Samsung
                        Securitoo
                        Services en ligne
                        Skype
                        Snapshot Viewer
                        Sony
                        Spybot - Search & Destroy
                        Steam
                        Teamspeak2_RC2
                        trend micro
                        Uninstall Information
                        VideoLAN
                        Wakfu
                        Wanadoo
                        Windows Calendar
                        Windows Collaboration
                        Windows Defender
                        Windows Journal
                        Windows Live
                        Windows Live Safety Center
                        Windows Live SkyDrive
                        Windows Mail
                        Windows Media Player
                        Windows NT
                        Windows Photo Gallery
                        Windows Sidebar
                        WinRAR
                        World Of Warcraft
                        Yahoo!

                        ============
                        Drive C:
                        ============

                        $Recycle.Bin
                        A2Output2.xml
                        A2Output6.xml
                        Ad-Report-CLEAN.log
                        Ad-Report-SCAN.log
                        autoexec.bat
                        autorun.inf
                        Boonty
                        Boot
                        bootmgr
                        BOOTSECT.BAK
                        coktel
                        config.sys
                        Documents and Settings
                        download
                        Europe MapleStory
                        fixnavi.txt
                        hiberfil.sys
                        hp
                        IO.SYS
                        Kill'em
                        List'em.txt
                        Lop SD
                        lopR.txt
                        MSDOS.SYS
                        MSOCache
                        Nexon
                        pagefile.sys
                        PerfLogs
                        Program Files
                        ProgramData
                        RHDSetup.log
                        rsit
                        Securitoo
                        Setup.log
                        sound
                        System Volume Information
                        TB.txt
                        Temp
                        ToolBar SD
                        UsbFix
                        UsbFix.txt
                        UsbFix_Upload_Me_Family.zip
                        Users
                        Windows

                        ¤¤¤¤¤¤¤¤¤¤ Cracks | Keygens | Serials

                        C:\Europe MapleStory\Patcher.exe
                        C:\Nexon\MapleStory\Patcher.exe
                        C:\Program Files\NEXON\Europe MapleStory\Patcher.exe
                        D:\hp\apps\APP27055\src\Support\NCO\Browser\APP\Patch25d.dll
                        C:\hp\KBD\Install.exe
                        D:\hp\apps\APP05770\src\MSWorks\Install.exe
                        D:\hp\Drv\APP29044\Install.exe
                        D:\hp\Drv\APP29044\src\Install.exe

                        ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤( EOF )¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
                        0
                        1. Dsl pour le retard .... Boulot !

                          Desactives ton antivirus le temps de la manip ainsi que ton parefeu si présent

                          Télécharges List&Kill'em et enregistre le sur ton bureau

                          http://sd-1.archive-host.com/membres/up/829108531491024/List_Killem_Install.exe

                          dezippes-le , (clic droit/ extraire.....)

                          Il ne necessite pas d'installation

                          double clic (clic droit "executer en tant qu'administrateur" pour Vista) pour lancer le scan

                          choisis la langue puis choisis l'option 1 = Mode Recherche

                          laisses travailler l'outil

                          colles le contenu dans ta prochaine réponse , un fois la fenetre refermée :

                          C:\List'em.txt

                          a+
                          0
                          1. Voici le rapport Usbfix.txt !
                            Merci de m'aider en tout cas, c'est extrêmement sympathique.

                            ############################## | UsbFix V6.084 |

                            User : Giorgio (Utilisateurs) # FAMILY
                            Update on 01/02/2010 by El Desaparecido , C_XX & Chimay8
                            Start at: 17:29:05 | 02/02/2010
                            Website : http://pagesperso-orange.fr/NosTools/index.html
                            Contact : FindyKill.Contact@gmail.com

                            Intel(R) Core(TM)2 Duo CPU E4400 @ 2.00GHz
                            Microsoft® Windows Vista™ Édition Familiale Premium (6.0.6001 32-bit) # Service Pack 1
                            Internet Explorer 8.0.6001.18882
                            Windows Firewall Status : Enabled
                            AV : avast! antivirus 4.8.1335 [VPS 090225-1] 4.8.1335 [ Enabled | Updated ]

                            C:\ -> Disque fixe local # 327,89 Go (181,82 Go free) [HP] # NTFS
                            D:\ -> Disque fixe local # 7,46 Go (673,7 Mo free) [FACTORY_IMAGE] # NTFS
                            E:\ -> Disque CD-ROM # 7,86 Go (0 Mo free) [CRZ0EFW2 ] # UDF
                            F:\ -> Disque amovible # 1,86 Go (1,03 Go free) [USB DISK] # FAT
                            G:\ -> Disque amovible
                            H:\ -> Disque amovible
                            I:\ -> Disque amovible # 1,9 Go (688,47 Mo free) # FAT
                            J:\ -> Disque amovible

                            ############################## | Processus actifs |

                            C:\Windows\System32\smss.exe
                            C:\Windows\system32\csrss.exe
                            C:\Windows\system32\wininit.exe
                            C:\Windows\system32\csrss.exe
                            C:\Windows\system32\services.exe
                            C:\Windows\system32\lsass.exe
                            C:\Windows\system32\lsm.exe
                            C:\Windows\system32\svchost.exe
                            C:\Windows\system32\winlogon.exe
                            C:\Windows\system32\svchost.exe
                            C:\Windows\System32\svchost.exe
                            C:\Windows\system32\Ati2evxx.exe
                            C:\Windows\System32\svchost.exe
                            C:\Windows\System32\svchost.exe
                            C:\Windows\system32\svchost.exe
                            C:\Windows\system32\svchost.exe
                            C:\Windows\system32\SLsvc.exe
                            C:\Windows\system32\svchost.exe
                            C:\Windows\system32\svchost.exe
                            C:\Windows\system32\Ati2evxx.exe
                            C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
                            C:\Program Files\Alwil Software\Avast4\ashServ.exe
                            C:\Windows\System32\spoolsv.exe
                            C:\Windows\system32\svchost.exe
                            C:\Windows\system32\taskeng.exe
                            C:\Windows\system32\Dwm.exe
                            C:\Windows\Explorer.EXE
                            C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
                            C:\Program Files\Bonjour\mDNSResponder.exe
                            C:\Program Files\Common Files\Intel\IntelDH\NMS\AdpPlugins\DQLWinService.exe
                            C:\PROGRA~1\COMMON~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
                            C:\Windows\system32\svchost.exe
                            C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
                            c:\Program Files\Common Files\LightScribe\LSSrvc.exe
                            C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
                            C:\Windows\System32\svchost.exe
                            C:\Windows\System32\svchost.exe
                            C:\Windows\system32\svchost.exe
                            C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
                            C:\Windows\system32\svchost.exe
                            C:\Windows\System32\svchost.exe
                            C:\Windows\system32\SearchIndexer.exe
                            C:\Windows\system32\WUDFHost.exe
                            C:\Windows\system32\wbem\wmiprvse.exe
                            C:\Windows\system32\wbem\wmiprvse.exe
                            C:\Windows\explorer.exe
                            C:\Windows\system32\taskeng.exe
                            C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
                            C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
                            C:\Windows\system32\runonce.exe
                            C:\Windows\system32\conime.exe

                            ################## | Elements infectieux |

                            Supprimé ! C:\Windows\System32\autorun.inf
                            Supprimé ! C:\$Recycle.Bin\S-1-5-21-1926361211-1241999433-2824582707-500
                            Supprimé ! C:\$Recycle.Bin\S-1-5-21-210047736-2168427201-1332939898-1001
                            Supprimé ! C:\$Recycle.Bin\S-1-5-21-210047736-2168427201-1332939898-1002
                            Supprimé ! C:\$Recycle.Bin\S-1-5-21-210047736-2168427201-1332939898-1003
                            Supprimé ! C:\$Recycle.Bin\S-1-5-21-210047736-2168427201-1332939898-1004
                            Supprimé ! C:\$Recycle.Bin\S-1-5-21-210047736-2168427201-1332939898-500
                            Supprimé ! C:\$Recycle.Bin\S-1-5-21-2152478756-3922319563-605102323-500
                            Supprimé ! C:\$Recycle.Bin\S-1-5-21-2247044132-4097389474-3979866955-1000
                            Supprimé ! D:\$Recycle.Bin\S-1-5-21-210047736-2168427201-1332939898-1001
                            Supprimé ! D:\$Recycle.Bin\S-1-5-21-210047736-2168427201-1332939898-1002
                            Supprimé ! D:\$Recycle.Bin\S-1-5-21-210047736-2168427201-1332939898-1003
                            Supprimé ! D:\$Recycle.Bin\S-1-5-21-210047736-2168427201-1332939898-1004
                            Supprimé ! D:\$Recycle.Bin\S-1-5-21-210047736-2168427201-1332939898-500
                            Supprimé ! F:\autorun.inf

                            ################## | Registre |

                            ################## | Mountpoints2 |

                            Supprimé ! HKCU\...\Explorer\MountPoints2\{3aae79cc-f538-11de-9164-001d60536b16}\Shell\AutoRun\Command
                            Supprimé ! HKCU\...\Explorer\MountPoints2\{7d141bca-bbc3-11de-bc3a-001d60536b16}\Shell\AutoRun\Command
                            Supprimé ! HKCU\...\Explorer\MountPoints2\{7d141bce-bbc3-11de-bc3a-001d60536b16}\Shell\AutoRun\Command
                            Supprimé ! HKCU\...\Explorer\MountPoints2\{eeb4cfac-aff6-11de-adbd-001d60536b16}\Shell\AutoRun\Command
                            Supprimé ! HKCU\...\Explorer\MountPoints2\{f8046a50-f39c-11de-90a1-001d60536b16}\Shell\AutoRun\Command

                            ################## | Listing des fichiers présent |

                            [08/12/2008 16:15|--a------|865] C:\A2Output2.xml
                            [08/12/2008 16:15|--a------|865] C:\A2Output6.xml
                            [17/08/2009 11:55|--a------|7363] C:\Ad-Report-CLEAN.log
                            [16/08/2009 19:47|--a------|3611] C:\Ad-Report-SCAN.log
                            [01/09/2007 06:35|--a------|74] C:\autoexec.bat
                            [19/01/2008 08:45|-rahs----|333203] C:\bootmgr
                            [01/09/2007 15:48|-ra-s----|8192] C:\BOOTSECT.BAK
                            [18/09/2006 22:43|--a------|10] C:\config.sys
                            [25/12/2008 18:52|--a------|2206] C:\fixnavi.txt
                            [?|?|?] C:\hiberfil.sys
                            [16/12/2007 18:17|-rahs----|0] C:\IO.SYS
                            [04/03/2009 12:49|--a------|13098] C:\lopR.txt
                            [16/12/2007 18:17|-rahs----|0] C:\MSDOS.SYS
                            [?|?|?] C:\pagefile.sys
                            [08/04/2008 19:18|--a------|477] C:\RHDSetup.log
                            [12/12/2007 21:18|--a------|159] C:\Setup.log
                            [01/02/2010 20:24|--a------|1971] C:\TB.txt
                            [02/02/2010 17:31|--a------|5634] C:\UsbFix.txt
                            [04/10/2006 01:02|---hs----|438328] D:\boo.mgr
                            [02/11/2006 01:53|---hs----|438840] D:\bootmgr
                            [13/10/2006 16:00|---hs----|1322] D:\Desktop.ini
                            [01/09/2007 17:33|---hs----|111] D:\MASTER.LOG
                            [02/12/2007 13:24|---hs----|429] D:\pcdr.ini
                            [10/09/2002 14:58|---hs----|181616] D:\Protect.ed
                            [01/09/2007 17:33|---hs----|44] D:\RESTORE.INI
                            [11/05/2007 10:48|---hs----|35] D:\SystemRecovery.txt
                            [20/08/2009 15:18|--a------|41662] F:\idf.ico
                            [20/08/2009 15:18|--a------|35951] F:\licence.txt
                            [20/08/2009 15:18|--a------|146] F:\linux.sh
                            [20/08/2009 15:18|--a------|132340] F:\start.exe
                            [12/12/2005 00:00|--ah-----|40796160] I:\.HPIMAGE.VFS

                            ################## | Vaccination |

                            # C:\autorun.inf -> Dossier créé par UsbFix.
                            # D:\autorun.inf -> Dossier créé par UsbFix.
                            # F:\autorun.inf -> Dossier créé par UsbFix.
                            # I:\autorun.inf -> Dossier créé par UsbFix.

                            ################## | Upload |

                            Veuillez envoyer le fichier : C:\UsbFix_Upload_Me_Family.zip : https://www.ionos.fr/?affiliate_id=77097
                            Merci pour votre contribution .

                            ################## | ! Fin du rapport # UsbFix V6.084 ! |
                            0
                            1. Donc finalement je fais quoi?
                              Je dois faire ce que m'a dit Totobetourne, ou Archet9 ?!
                              Je suis perdu ><
                              Donc récapitulez.
                              Et mon log.txt est complet, je fais Ctrl + A, Ctrl + C, Ctrl + V !!!
                              0
                              1. Hello totobetourne,

                                I 'am here...Where is the problem ?

                                aaaaa
                                0
                                1. recolle le juste le rapport log.txt de rsit car incomplet.

                                  1)--> Télécharge UsbFix (de Chiquitine29) sur ton Bureau.
                                  http://pagesperso-orange.fr/NosTools/usbfix.html

                                  --> Branche tes sources de données externes à ton PC (clé USB, disque dur externe, carte SD, etc...) sans les ouvrir.

                                  --> Clique droit sur le raccourci UsbFix situé sur ton Bureau et choisis Exécuter en tant qu'administrateur.

                                  --> Choisis l'option 1 (recherche).

                                  --> Le PC va redémarrer.

                                  --> Après redémarrage, poste le rapport UsbFix.txt

                                  Note : le rapport UsbFix.txt est sauvegardé à la racine du disque.

                                  (Si le Bureau ne réapparaît pas, presse Ctrl+Alt+Suppr, Onglet "Fichier", "Nouvelle tâche", tape explorer.exe et valide)

                                  refais pareil mais en option 2 apres colle le rapport que tu obtiens.

                                  2)tu as du avoir des problemes avec une barre dealio , je crois qu il reste des traces,ask.
                                  on va verifier.
                                  Télécharge ToolBar-S&D ( Merci à Eric_71, Angeldark, Sham_Rock et XmichouX )
                                  https://77b4795d-a-62cb3a1a-s-sites.googlegroups.com/site/eric71mespages/ToolBarSD.exe?attachauth=ANoY7cpVobGk5bHnxrhQ4yaoEUDJvOYNnEGyYjgqHZz5GqZLfutR3fMFPlsC3-CGIilfupPAguYATNyua3csodN_frdMK8sSzUpit10Yac-QJCOkMqJKkbdKcP6ySs8trWPgoNVIq4TGGWCe6o0txXQv-ZueJF9vZzw3RXsGwFYIqN2lvF2LPdQzS8mE1d5kWOVOz6EMzQuE5-lClSJM869uq3oc7-t7yg%3D%3D&attredirects=3
                                  ou
                                  http://ww38.toofiles.com/fr/oip/documents/exe/j7emos-q35go6-hiijx8.html

                                  lors du scan coupe ta connection internet.

                                  * Double-clique sur ToolBar-SD afin de lancer l'installation, un raccourci sera ajouté sur le Bureau.
                                  * Double-clique dessus pour démarrer l'outil; choisis la langue.
                                  * Sous Vista, faire un clic droit et "Exécuter en tant qu'administrateur" (Elévation des privilèges), puis -> Continuer.
                                  * Tape 1 puis sur la touche [Entrée] afin de lancer la suppression.
                                  * Patiente jusqu'à la fin de la recherche.
                                  * À la fin du scan, le rapport s'ouvrira dans le Bloc-notes.
                                  * Poste ce rapport, par copier/coller, dans ta prochaine réponse.
                                  * Le rapport se trouve également sous : C:\TB.txt

                                  relance toolbar mais la appuie sur l option 2. tu obtiens un rapport que tu colles.
                                  0
                                  • 1
                                  • 2