Msa.exe & svchost.exe

Résolu
Bonjour, j'ai depuis un petit moment un problème de ralentissement sur mon pc
J'ai récemment reçu une notification de logiciel malveilant avec avast anti virus, j'ai bien mit supprimer le virus "a mon avi".
Au bout de 5min aprés démarage du pc, dans le gestionnaire de taches apparaît msa.exe
Puis au bout d'une petite demi heure toujours dans le gestionnaire de tache apparait "svchost.exe" qui m'utilise + de 150mo de mémoire vive, l'utilisation de UC est à 100% je ne c plus quoi faire frenchement.
Je vous laisse ici un hijackThis:

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 14:50:24, on 28/02/2010
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Fichiers communs\LogiShrd\LVMVFM\LVPrcSrv.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\CDBurnerXP\NMSAccessU.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Documents and Settings\JuLieN\Application Data\SystemProc\lsass.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Orange\Telephone sur PC\TelephoneSurPCAgent.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\Documents and Settings\JuLieN\Application Data\SystemProc\lsass.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Orange
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: (no name) - {AEEC3B59-CA98-4EBA-A140-57B94E283583} - (no file)
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.5.4723.1820\swg.dll
O2 - BHO: Mega Manager IE Click Monitor - {bf00e119-21a3-4fd1-b178-3b8537e75c92} - C:\Program Files\Megaupload\Mega Manager\MegaIEMn.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKCU\..\Run: [TELEPHONESURPCAGENT] "C:\Program Files\Orange\Telephone sur PC\TelephoneSurPCAgent.exe" -run "C:\Program Files\Orange\Telephone sur PC\TelephoneSurPC.exe"
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKLM\..\Policies\Explorer\Run: [RTHDBPL] C:\Documents and Settings\JuLieN\Application Data\SystemProc\lsass.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: ajouter cette page à vos favoris Orange - C:\DOCUME~1\JuLieN\LOCALS~1\Temp\cce12.html
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_96D6FF0C6D236BF8.dll/cmsidewiki.html
O8 - Extra context menu item: Liens de téléchargement avec Mega Manager... - C:\Program Files\Megaupload\Mega Manager\mm_file.htm
O8 - Extra context menu item: traduire la page - C:\DOCUME~1\JuLieN\LOCALS~1\Temp\cce10.html
O8 - Extra context menu item: traduire le texte sélectionné - C:\DOCUME~1\JuLieN\LOCALS~1\Temp\cce11.html
O9 - Extra button: Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~3\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~3\INetRepl.dll
O9 - Extra 'Tools' menuitem: Créer un Favori de l'appareil mobile... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~3\INetRepl.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Orange - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
O16 - DPF: {9DF1C00D-8426-4337-972C-DC042D19A916} (FTMediaPlayer Class) - http://webtv.guidetv.orange.fr/resources/OCS_9418.cab
O16 - DPF: {BADA82CB-BF48-4D76-9611-78E2C6F49F03} - http://217.23.14.26/cont/Bol.CAB
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - C:\Program Files\Fichiers communs\LogiShrd\LVMVFM\LVPrcSrv.exe
O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe
O23 - Service: NMSAccessU - Unknown owner - C:\Program Files\CDBurnerXP\NMSAccessU.exe

--
End of file - 7848 bytes

Merci d'avance je comte sur vous.

--
[ °~° Le-CaNnaBistRot-esT-aU-cAnnAbiS- -c€-Que-lE-bAr-à-Vin-eSt-à-La-viGn€ °~° ]
_________________________________________________________________
Configuration: Windows XP / Firefox 3.0.9

15 réponses

  1. Heu....je suis un peu géné la..
    Pour récupérer les mises à jour, je dois tout d'abord valider mes logiciels Windows. Ma validation permet de vérifier que j'utilisez une copie authentique sous licence de Windows mais ma version de Windows n'est pas original !.... Donc je ne peut pas metre a jour mon pc c'est sa ? Que doit-je faire stp ?
    [ °~° Le-CaNnaBistRot-esT-aU-cAnnAbiS- -c€-Que-lE-bAr-à-Vin-eSt-à-La-viGn€ °~° ]
    _________________________________________________________________
    0
    1. Re

      Tu utilises une copie?Tu ne disposes d'aucune licence?
      Si c'est le cas ;ici s'arrête mon aide.

      @+
      0
  2. Ok je te remercie beaucoup !
    Je te tien au courant pour mes mise a jour
    a bientôt
    0
    1. Pour vérifier les mises à jour logiciels à appliquer sur mon PC :
      Voila le résultat (copier-coller) dans le bloc note.

      Welcome to Secunia Online Software Inspector (OSI)
      Scan Now
      The Secunia Online Software Inspector will inspect your operating system and software for insecure versions and missing security updates. A default inspection normally lasts 5-40 seconds, while a thorough inspection may take several minutes.

      Detection Statistics:
      9 Applications Detected in Total
      6 Insecure Versions Detected
      3 Patched Versions Detected

      Running For:
      0 Minutes, 30 Seconds

      Errors with the scan:
      0 Errors Detected, scan result should be correct
      Scan Options:

      Enable thorough system inspection
      Display only insecure programs
      Status / Currently Processing:

      Detection completed successfully

      Programs / Result Version Detected Status
      Microsoft Windows XP Professional Service Pack 3
      This installation of Microsoft Windows XP Professional is insecure and potentially exposes your system to security threats!

      Your system does not have all security related patches from Microsoft installed. Please see list below for details about the missing patches.

      Update Instructions:
      You do not have the following Microsoft security updates installed:
      KB941569
      KB950760
      KB950762
      KB951376
      KB952954
      KB950974
      KB958644
      KB955069
      KB954459
      KB956802
      KB956803
      KB960225
      KB956572
      KB952004
      KB960803
      KB961501
      KB970238
      KB973540
      KB973869
      KB956744
      KB973354
      KB973507
      KB960859
      KB973815
      KB971657
      KB956844
      KB971961
      KB968816
      KB954155
      KB975025
      KB974571
      KB958869
      KB969059
      KB954430
      KB969947
      KB974318
      KB974392
      KB973904
      KB972270
      KB975713
      KB978037
      KB977165
      KB978251
      KB975560
      KB977914
      KB971468

      Visit Windows Update to install the missing patches.
      Adobe Reader 9.x 9.3.0.148
      This installation of Adobe Reader 9.x is insecure and potentially exposes your system to security threats!

      The detected version installed on your system is 9.3.0.148, however, the latest patched version released by the vendor, fixing one or more vulnerabilities, is 9.3.1.0.

      Update Instructions:
      Download

      Installed on Your System in:
      C:\Program Files\Adobe\Reader 9.0\Reader\AcroRd32.exe
      Microsoft Outlook Express 6 6.00.2900.5512
      This installation of Microsoft Outlook Express 6 is insecure and potentially exposes your system to security threats!

      Your system does not have all security related patches from Microsoft installed. Please see list below for details about the missing patches.

      Update Instructions:
      Download via Microsoft Windows Update.

      Missing KB Articles:
      KB973540
      KB973869
      KB973354
      KB973507
      KB973815

      Installed on Your System in:
      C:\Program Files\Outlook Express\msimn.exe
      Microsoft Windows Media Player 10.x 10.00.00.3802
      This installation of Microsoft Windows Media Player 10.x is insecure and potentially exposes your system to security threats!

      Your system does not have all security related patches from Microsoft installed. Please see list below for details about the missing patches.

      Update Instructions:
      Download via Microsoft Windows Update.

      Missing KB Articles:
      KB973540
      KB973869
      KB973354
      KB973507
      KB973815

      Installed on Your System in:
      C:\Program Files\Windows Media Player\wmplayer.exe
      Adobe Flash Player 10.x 10.0.42.34 (NPAPI)
      This installation of Adobe Flash Player 10.x is insecure and potentially exposes your system to security threats!

      The detected version installed on your system is 10.0.42.34 (NPAPI), however, the latest patched version released by the vendor, fixing one or more vulnerabilities, is 10.0.45.2 (NPAPI).

      Update Instructions:
      Download

      Installed on Your System in:
      C:\WINDOWS\SYSTEM32\Macromed\Flash\NPSWF32.dll
      Macromedia Flash Player 6.x 6.0.79.0
      This installation of Macromedia Flash Player 6.x is insecure and potentially exposes your system to security threats!

      The detected version installed on your system is 6.0.79.0, however, the latest patched version released by the vendor, fixing one or more vulnerabilities, is 10.x.

      Update Instructions:
      Download

      Installed on Your System in:
      C:\WINDOWS\SYSTEM32\Macromed\Flash\flash.ocx

      Dit moi ce que je doit télécharger pour que mon pc soit a jour
      Car a ce site je n'y ai rien compris lol
      Merci encore
      0
      1. Re

        Tu n'as pas poster le bon rapport pour Java;ce n'est pas grave.Le plus important et que se soit à jour.

        Pour Secunia:
        Windows XP SP3 que tu as installé;il existe des mises à jour qui n'ont pas été faites.
        Donc relances Windows Update.

        Concernant Adobe reader;je te propose de le désinstaller et d'utiliser à la place un logiciel plus léger et qui lui aussi lit le format PDF: Foxit reader

        Pour Outlook express;les mises à jour se font par Windows Update.

        Pour Windows Media Player les mises à jour se font par Windows Update.

        Pour Adobe Flash Player:Ici:https://www.adobe.com/fr/products/flashplayer.html

        Donc comme tu peux le voir;refais Windows Update jusqu'a ce qu'il te dises qu'il n'y à aucunes mises à jour à faire.

        Pour le reste ;suit les liens proposés

        Tiens moi au courant
        @+
        0
    2. Voici le rapport "JAVA":

      .
      ======= RAPPORT D'AD-REMOVER 1.1.4.6_J | UNIQUEMENT XP/VISTA/7 =======
      .
      Mis à jour par C_XX le 05.02.2010 à 17:34
      Contact: AdRemover.contact@gmail.com
      Site web: http://pagesperso-orange.fr/NosTools/ad_remover.html
      .
      Lancé à: 19:07:34, 28/02/2010 | Mode Normal | Option: CLEAN
      Exécuté de: C:\Ad-Remover\
      Système d'exploitation: Microsoft® Windows XP™ Service Pack 3 v5.1.2600
      Nom du PC: SPEEDCOK15 | Utilisateur actuel: JuLieN
      .
      ============== ÉLÉMENT(S) NEUTRALISÉ(S) ==============
      .

      (!) -- Fichiers temporaires supprimés.

      .
      HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{0E5CBF21-D15F-11D0-8301-00AA005B4383}
      .
      ============== Scan additionnel ==============
      .
      .
      * Internet Explorer Version 8.0.6001.18702 *
      .
      [HKEY_CURRENT_USER\..\Internet Explorer\Main]
      .
      Do404Search: 01000000
      Local Page: C:\WINDOWS\system32\blank.htm
      Show_ToolBar: yes
      Start Page: hxxp://fr.msn.com/
      Enable Browser Extensions: yes
      Use Search Asst: no
      Search Bar: hxxp://go.microsoft.com/fwlink/?linkid=54896
      Default_search_url: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
      Default_page_url: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
      .
      [HKEY_LOCAL_MACHINE\..\Internet Explorer\Main]
      .
      Default_Page_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
      Default_Search_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
      Search Page: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
      Delete_Temp_Files_On_Exit: yes
      Local Page: C:\WINDOWS\system32\blank.htm
      Start Page: hxxp://fr.msn.com/
      Search bar: hxxp://search.msn.com/spbasic.htm
      .
      [HKEY_LOCAL_MACHINE\..\Internet Explorer\ABOUTURLS]
      .
      Tabs: res://ieframe.dll/tabswelcome.htm
      .
      ============== Suspect (Cracks, Serials, ...) ==============
      .
      C:\Documents and Settings\JuLieN\Bureau\COD 4\Crack & Serial\COD4MW.nfo
      C:\Documents and Settings\JuLieN\Bureau\COD 4\Crack & Serial\iw3sp.exe
      C:\Documents and Settings\JuLieN\Bureau\COD 4\Crack & Serial\Crack Serveur Windows\… lire.nfo
      C:\Documents and Settings\JuLieN\Bureau\COD 4\Crack & Serial\Crack Serveur Windows\iw3mp.exe
      .
      ===================================
      .
      2199 Octet(s) - C:\Ad-Report-CLEAN[1].log
      .
      30 Fichier(s) - C:\DOCUME~1\JuLieN\LOCALS~1\Temp
      7 Fichier(s) - C:\WINDOWS\Temp
      15 Fichier(s) - C:\WINDOWS\Prefetch
      .
      17 Fichier(s) - C:\Ad-Remover\BACKUP
      0 Fichier(s) - C:\Ad-Remover\QUARANTINE
      .
      Fin à: 19:10:28 | 28/02/2010 - CLEAN[1]
      .
      ============== E.O.F ==============
      .

      0
      1. Voici le rapport de AD-R :

        .
        ======= RAPPORT D'AD-REMOVER 1.1.4.6_J | UNIQUEMENT XP/VISTA/7 =======
        .
        Mis à jour par C_XX le 05.02.2010 à 17:34
        Contact: AdRemover.contact@gmail.com
        Site web: http://pagesperso-orange.fr/NosTools/ad_remover.html
        .
        Lancé à: 19:07:34, 28/02/2010 | Mode Normal | Option: CLEAN
        Exécuté de: C:\Ad-Remover\
        Système d'exploitation: Microsoft® Windows XP™ Service Pack 3 v5.1.2600
        Nom du PC: SPEEDCOK15 | Utilisateur actuel: JuLieN
        .
        ============== ÉLÉMENT(S) NEUTRALISÉ(S) ==============
        .

        (!) -- Fichiers temporaires supprimés.

        .
        HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{0E5CBF21-D15F-11D0-8301-00AA005B4383}
        .
        ============== Scan additionnel ==============
        .
        .
        * Internet Explorer Version 8.0.6001.18702 *
        .
        [HKEY_CURRENT_USER\..\Internet Explorer\Main]
        .
        Do404Search: 01000000
        Local Page: C:\WINDOWS\system32\blank.htm
        Show_ToolBar: yes
        Start Page: hxxp://fr.msn.com/
        Enable Browser Extensions: yes
        Use Search Asst: no
        Search Bar: hxxp://go.microsoft.com/fwlink/?linkid=54896
        Default_search_url: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
        Default_page_url: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
        .
        [HKEY_LOCAL_MACHINE\..\Internet Explorer\Main]
        .
        Default_Page_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
        Default_Search_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
        Search Page: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
        Delete_Temp_Files_On_Exit: yes
        Local Page: C:\WINDOWS\system32\blank.htm
        Start Page: hxxp://fr.msn.com/
        Search bar: hxxp://search.msn.com/spbasic.htm
        .
        [HKEY_LOCAL_MACHINE\..\Internet Explorer\ABOUTURLS]
        .
        Tabs: res://ieframe.dll/tabswelcome.htm
        .
        ============== Suspect (Cracks, Serials, ...) ==============
        .
        C:\Documents and Settings\JuLieN\Bureau\COD 4\Crack & Serial\COD4MW.nfo
        C:\Documents and Settings\JuLieN\Bureau\COD 4\Crack & Serial\iw3sp.exe
        C:\Documents and Settings\JuLieN\Bureau\COD 4\Crack & Serial\Crack Serveur Windows\… lire.nfo
        C:\Documents and Settings\JuLieN\Bureau\COD 4\Crack & Serial\Crack Serveur Windows\iw3mp.exe
        .
        ===================================
        .
        2199 Octet(s) - C:\Ad-Report-CLEAN[1].log
        .
        30 Fichier(s) - C:\DOCUME~1\JuLieN\LOCALS~1\Temp
        7 Fichier(s) - C:\WINDOWS\Temp
        15 Fichier(s) - C:\WINDOWS\Prefetch
        .
        17 Fichier(s) - C:\Ad-Remover\BACKUP
        0 Fichier(s) - C:\Ad-Remover\QUARANTINE
        .
        Fin à: 19:10:28 | 28/02/2010 - CLEAN[1]
        .
        ============== E.O.F ==============
        .

        Je fait dès maintenant "java" comme tu me la demandé
        Je te remercie beaucoup pour tout se ke tu fait pour moi !
        Sa fait plaisir ^^
        0
        1. Voila le rapport de COMBOFIX :

          ComboFix 10-02-27.04 - JuLieN 28/02/2010 17:37:00.1.2 - x86
          Microsoft Windows XP Professionnel 5.1.2600.2.1252.33.1036.18.3327.2861 [GMT 1:00]
          Lancé depuis: c:\documents and settings\JuLieN\Bureau\asdehi.exe
          AV: avast! antivirus 4.8.1227 [VPS 100219-0] *On-access scanning disabled* (Outdated) {7591DB91-41F0-48A3-B128-1A293FD8233D}
          .

          (((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
          .

          Une copie infectée de c:\windows\system32\DRIVERS\atapi.sys a été trouvée et désinfectée
          Copie restaurée à partir de - Kitty ate it :p
          .
          ((((((((((((((((((((((((((((( Fichiers créés du 2010-01-28 au 2010-02-28 ))))))))))))))))))))))))))))))))))))
          .

          2010-02-28 15:44 . 2010-02-28 15:44 -------- d-----w- C:\rsit
          2010-02-28 14:50 . 2010-02-28 14:50 -------- d-----w- c:\documents and settings\JuLieN\Application Data\Malwarebytes
          2010-02-28 14:49 . 2010-01-07 15:07 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
          2010-02-28 14:49 . 2010-02-28 14:49 -------- d-----w- c:\documents and settings\All Users\Application Data\Malwarebytes
          2010-02-28 14:49 . 2010-02-28 14:50 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
          2010-02-28 14:49 . 2010-01-07 15:07 19160 ----a-w- c:\windows\system32\drivers\mbam.sys
          2010-02-28 14:23 . 2010-02-28 14:23 1670693 ----a-w- C:\UsbFix_Upload_Me_SPEEDCOK15.zip
          2010-02-28 14:14 . 2010-02-28 14:23 -------- d-----w- C:\UsbFix
          2010-02-28 13:46 . 2010-02-28 13:46 -------- d-----w- c:\program files\Trend Micro
          2010-02-27 22:51 . 2006-08-01 13:02 49152 ------w- c:\windows\system32\ChCfg.exe
          2010-02-27 22:50 . 2006-07-21 14:14 86016 ------w- c:\windows\SoundMan.exe
          2010-02-27 22:50 . 2007-06-15 14:45 1826816 ------w- c:\windows\SkyTel.exe
          2010-02-27 21:56 . 2010-02-27 21:56 -------- d-----w- c:\program files\ma-config.com
          2010-02-27 21:56 . 2010-02-27 21:56 -------- d-----w- c:\documents and settings\All Users\Application Data\ma-config.com
          2010-02-27 19:04 . 2010-02-27 19:04 -------- d-----w- C:\DriveKey
          2010-02-27 15:40 . 2010-02-27 15:40 -------- d-----w- c:\documents and settings\JuLieN\Application Data\Sega
          2010-02-27 14:55 . 2010-02-27 15:34 -------- d-----w- c:\program files\Sega
          2010-02-27 12:57 . 2010-02-27 12:57 -------- d-----w- c:\program files\SLD Codec Pack
          2010-02-27 10:18 . 2010-02-27 10:18 -------- d-----w- c:\documents and settings\LocalService\Sun
          2010-02-27 00:11 . 2010-02-27 00:11 -------- d-----w- c:\documents and settings\JuLieN\Local Settings\Application Data\Mozilla
          2010-02-26 17:53 . 2010-02-26 17:53 -------- d-----w- c:\program files\Megaupload
          2010-02-26 17:52 . 2010-02-26 17:52 -------- d-----w- c:\documents and settings\JuLieN\Application Data\InstallShield
          2010-02-26 15:41 . 2010-02-26 15:41 -------- d-----w- c:\documents and settings\JuLieN\Local Settings\Application Data\ATI
          2010-02-26 15:41 . 2010-02-26 15:41 -------- d-----w- c:\documents and settings\JuLieN\Application Data\ATI
          2010-02-26 15:41 . 2010-02-26 15:41 -------- d-----w- c:\documents and settings\All Users\Application Data\ATI
          2010-02-26 15:32 . 2010-02-26 15:42 -------- d-----w- c:\program files\ATI
          2010-02-26 14:04 . 2010-02-26 14:07 -------- d--h--w- c:\windows\$hf_mig$
          2010-02-25 18:03 . 2010-02-25 18:03 -------- d-----w- c:\documents and settings\All Users\Application Data\KONAMI
          2010-02-25 17:31 . 2010-02-27 10:18 664 ----a-w- c:\windows\system32\d3d9caps.dat
          2010-02-25 12:12 . 2010-02-25 12:12 -------- d-----w- c:\program files\dumps
          2010-02-24 22:59 . 2010-02-27 22:09 -------- d-----w- c:\program files\KONAMI
          2010-02-24 22:11 . 2010-02-24 23:52 -------- d-----w- c:\program files\F.E.A.R.2 - Project Origin
          2010-02-22 06:33 . 2010-02-22 06:33 -------- d-----w- c:\documents and settings\All Users\Application Data\Codemasters
          2010-02-22 06:27 . 2009-09-04 16:29 5501792 ----a-w- c:\windows\system32\d3dcsx_42.dll
          2010-02-22 06:27 . 2009-03-09 14:27 453456 ----a-w- c:\windows\system32\d3dx10_41.dll
          2010-02-22 06:27 . 2009-03-09 14:27 1846632 ----a-w- c:\windows\system32\D3DCompiler_41.dll
          2010-02-22 06:27 . 2009-03-09 14:27 4178264 ----a-w- c:\windows\system32\D3DX9_41.dll
          2010-02-22 06:27 . 2009-03-16 13:18 517448 ----a-w- c:\windows\system32\XAudio2_4.dll
          2010-02-22 06:27 . 2009-03-16 13:18 235352 ----a-w- c:\windows\system32\xactengine3_4.dll
          2010-02-22 06:27 . 2009-03-16 13:18 22360 ----a-w- c:\windows\system32\X3DAudio1_6.dll
          2010-02-21 01:49 . 2010-02-21 01:49 -------- d--h--w- c:\windows\PIF
          2010-02-20 23:17 . 2010-02-20 23:17 -------- d-----w- c:\documents and settings\JuLieN\Local Settings\Application Data\Help
          2010-02-20 23:16 . 2010-02-20 23:16 -------- d-----w- c:\documents and settings\JuLieN\Local Settings\Application Data\Identities
          2010-02-20 21:56 . 2010-02-20 21:56 -------- d-----w- c:\documents and settings\All Users\Application Data\Orange
          2010-02-20 21:55 . 2010-02-20 21:58 -------- d-----w- c:\documents and settings\JuLieN\Application Data\Telephone sur PC
          2010-02-20 21:42 . 2004-08-23 13:50 32768 ----a-w- c:\windows\system32\WooDial2000.dll
          2010-02-20 21:42 . 2010-02-20 21:42 -------- d-----w- c:\windows\system32\AlertModule
          2010-02-20 21:38 . 2010-02-26 20:24 -------- d-----w- c:\program files\Wanadoo
          2010-02-20 14:26 . 2010-02-20 14:26 -------- d-----w- c:\program files\AGEIA Technologies
          2010-02-20 14:26 . 2010-02-20 14:26 -------- d-----w- c:\windows\system32\AGEIA
          2010-02-20 14:25 . 2010-02-20 14:25 -------- d-----w- c:\program files\Fichiers communs\Wise Installation Wizard
          2010-02-20 01:34 . 2010-02-20 01:34 -------- d-----w- c:\program files\Fireplace 3D Screensaver
          2010-02-20 01:34 . 2009-12-09 21:29 960512 ----a-w- c:\windows\system32\Fireplace_3D_Screensaver.scr
          2010-02-20 01:25 . 2010-02-20 01:25 -------- d-----w- c:\program files\Earth 3D Screensaver
          2010-02-20 01:25 . 2009-12-09 21:29 978944 ----a-w- c:\windows\system32\Earth_3D_Screensaver.scr
          2010-02-20 01:23 . 2010-02-20 01:23 22 ----a-w- c:\windows\brassi.dat
          2010-02-20 01:23 . 2010-02-20 01:23 150016 ----a-w- c:\windows\comet.scr
          2010-02-20 01:17 . 2010-02-20 01:17 -------- d-----w- c:\program files\3D Relief Screensaver
          2010-02-19 22:05 . 2010-02-19 22:05 -------- d-----w- c:\documents and settings\All Users\Application Data\f-secure
          2010-02-19 21:46 . 2010-02-19 21:46 15872 ----a-r- c:\documents and settings\JuLieN\Application Data\Microsoft\Installer\{048298C9-A4D3-490B-9FF9-AB023A9238F3}\Icon048298C9.exe
          2010-02-19 21:46 . 2010-02-27 22:58 -------- d-----w- c:\program files\Steam
          2010-02-19 21:29 . 2004-08-19 14:09 221184 ----a-w- c:\windows\system32\wmpns.dll
          2010-02-19 20:47 . 2010-02-19 20:47 -------- d-----w- c:\documents and settings\JuLieN\Local Settings\Application Data\Orange
          2010-02-19 20:44 . 2009-08-24 12:22 65536 ----a-w- c:\windows\system32\Autodial2000.dll
          2010-02-19 20:44 . 2010-02-20 21:55 -------- d-----w- c:\program files\Orange
          2010-02-19 13:35 . 2010-02-19 13:35 -------- d-----w- C:\ProgramData
          2010-02-19 13:35 . 2010-02-19 13:35 38784 ----a-w- c:\documents and settings\Default User\Application Data\Macromedia\Flash Player\www.macromedia.com\bin\airappinstaller\airappinstaller.exe
          2010-02-19 13:35 . 2010-02-19 13:35 -------- d-----w- c:\program files\Fichiers communs\Adobe AIR
          2010-02-19 13:21 . 2010-02-19 13:21 -------- d-----w- c:\program files\Securitoo
          2010-02-18 12:22 . 2009-08-24 12:22 94208 ----a-w- c:\windows\system32\w32n50.dll
          2010-02-18 12:22 . 2009-08-24 12:22 34688 ----a-w- c:\windows\system32\pcampr5.sys
          2010-02-18 12:22 . 2009-08-24 12:22 32128 ----a-w- c:\windows\system32\pcandis5.sys
          2010-02-18 12:21 . 2010-02-19 20:43 -------- d-----w- c:\program files\Fichiers communs\France Telecom
          2010-02-12 20:02 . 2010-02-12 20:03 -------- dc-h--w- c:\documents and settings\All Users\Application Data\{0691F710-1ECA-4B5A-9727-25554F1BFDC6}
          2010-02-12 20:02 . 2008-08-17 11:39 2928992 -c--a-w- c:\documents and settings\All Users\Application Data\{0691F710-1ECA-4B5A-9727-25554F1BFDC6}\setup.exe
          2010-02-12 19:56 . 2010-02-12 19:56 1568 ----a-w- c:\windows\system32\ealregsnapshot1.reg
          2010-02-12 19:55 . 2010-02-24 22:57 -------- d-----w- c:\documents and settings\JuLieN\Local Settings\Application Data\Downloaded Installations
          2010-02-10 16:34 . 2010-02-10 16:51 -------- d-----w- c:\documents and settings\JuLieN\Application Data\Synthesia
          2010-02-10 16:34 . 2010-02-10 16:34 -------- d-----w- c:\program files\Synthesia
          2010-02-09 05:56 . 2010-02-09 05:56 -------- d--h--w- c:\windows\system32\GroupPolicy
          2010-02-07 18:41 . 2010-02-07 18:41 152576 ----a-w- c:\documents and settings\JuLieN\Application Data\Sun\Java\jre1.6.0_17\lzma.dll
          2010-02-06 20:06 . 2010-02-06 20:06 -------- d-----w- c:\documents and settings\NetworkService\Local Settings\Application Data\Google
          2010-02-06 13:17 . 2010-02-06 13:17 -------- d-----w- c:\documents and settings\LocalService\Local Settings\Application Data\Google
          2010-02-02 19:00 . 2004-04-30 08:37 160640 ----a-w- c:\windows\system32\drivers\a347bus.sys
          2010-02-02 19:00 . 2004-04-30 08:33 5248 ----a-w- c:\windows\system32\drivers\a347scsi.sys
          2010-02-02 19:00 . 2010-02-02 19:00 -------- d-----w- c:\program files\Alcohol Soft
          2010-01-31 17:45 . 2010-01-31 17:45 -------- d-----w- c:\documents and settings\JuLieN\Local Settings\Application Data\My Games
          2010-01-31 17:41 . 2010-01-31 17:41 -------- d--h--r- c:\documents and settings\JuLieN\Application Data\SecuROM
          2010-01-31 17:41 . 2010-01-31 17:41 107888 ----a-w- c:\windows\system32\CmdLineExt.dll
          2010-01-31 17:40 . 2010-01-31 17:40 22328 ----a-w- c:\documents and settings\JuLieN\Application Data\PnkBstrK.sys
          2010-01-31 15:53 . 2010-01-31 15:53 -------- d-----w- c:\program files\eMule

          .
          (((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
          .
          2010-02-28 16:42 . 2010-01-02 19:17 0 ----a-w- c:\windows\system32\drivers\lvuvc.hs
          2010-02-28 16:42 . 2010-01-02 19:17 0 ----a-w- c:\windows\system32\drivers\logiflt.iad
          2010-02-27 22:56 . 2002-08-30 12:00 72728 ----a-w- c:\windows\system32\perfc00C.dat
          2010-02-27 22:56 . 2002-08-30 12:00 464034 ----a-w- c:\windows\system32\perfh00C.dat
          2010-02-27 22:50 . 2010-02-27 22:20 -------- d-----w- c:\program files\Realtek
          2010-02-27 22:50 . 2010-01-02 15:19 -------- d--h--w- c:\program files\InstallShield Installation Information
          2010-02-27 22:50 . 2010-01-02 15:18 -------- d-----w- c:\program files\Fichiers communs\InstallShield
          2010-02-27 22:25 . 2010-02-27 22:25 -------- d-----w- c:\program files\Marvell
          2010-02-27 22:25 . 2010-02-27 22:25 -------- d-----w- c:\documents and settings\JuLieN\Application Data\TMP
          2010-02-27 01:13 . 2010-01-05 13:27 -------- d-----w- c:\documents and settings\JuLieN\Application Data\LimeWire
          2010-02-26 20:25 . 2010-01-03 19:28 -------- d-----w- c:\program files\Electronic Arts
          2010-01-29 16:28 . 2010-01-29 16:27 23773 ----a-w- c:\windows\hpqins15.dat
          2010-01-29 15:16 . 2010-01-29 15:16 -------- d-----w- c:\program files\CCleaner
          2010-01-28 12:00 . 2010-01-28 12:00 -------- d-----w- c:\documents and settings\JuLieN\Application Data\HP
          2010-01-28 12:00 . 2010-01-28 11:52 178592 ----a-w- c:\windows\hpoins29.dat
          2010-01-28 12:00 . 2010-01-28 12:00 -------- d-----w- c:\documents and settings\All Users\Application Data\WEBREG
          2010-01-28 11:59 . 2010-01-28 11:59 -------- d-----w- c:\documents and settings\All Users\Application Data\Hewlett-Packard
          2010-01-28 11:56 . 2010-01-28 11:55 -------- d-----w- c:\documents and settings\All Users\Application Data\HP
          2010-01-28 11:55 . 2010-01-28 11:55 -------- d-----w- c:\documents and settings\All Users\Application Data\HP Product Assistant
          2010-01-28 11:55 . 2010-01-28 11:54 -------- d-----w- c:\program files\HP
          2010-01-28 11:55 . 2010-01-28 11:55 -------- d-----w- c:\program files\Fichiers communs\HP
          2010-01-28 11:55 . 2010-01-28 11:55 -------- d-----w- c:\program files\Hewlett-Packard
          2010-01-28 11:55 . 2010-01-28 11:55 -------- d-----w- c:\program files\Fichiers communs\Hewlett-Packard
          2010-01-27 04:11 . 2010-01-27 04:11 -------- d-----w- c:\program files\Microsoft ActiveSync
          2010-01-27 04:10 . 2010-01-27 04:10 -------- d-----w- c:\program files\Windows Mobile Device Handbook
          2010-01-26 20:22 . 2010-01-05 21:27 -------- d-----w- c:\program files\VstPlugins
          2010-01-26 11:49 . 2010-01-26 11:49 -------- d-----w- c:\documents and settings\All Users\Application Data\EarMaster
          2010-01-24 14:58 . 2010-01-05 21:25 -------- d-----w- c:\program files\Image-Line
          2010-01-24 14:52 . 2010-01-24 14:52 -------- d-----w- c:\program files\Native Instruments
          2010-01-23 16:38 . 2010-01-23 16:18 -------- d-----w- c:\documents and settings\JuLieN\Application Data\Juce VST Host
          2010-01-23 09:18 . 2010-01-22 13:12 -------- d-----w- c:\program files\GoodWay202Free
          2010-01-22 13:25 . 2010-01-22 13:25 -------- d-----w- c:\program files\Micro Application
          2010-01-16 10:26 . 2010-01-10 13:08 -------- d-----w- c:\program files\PhotoScape
          2010-01-07 22:25 . 2010-01-07 12:41 -------- d-----w- c:\documents and settings\All Users\Application Data\NOS
          2010-01-07 12:42 . 2010-01-07 12:41 1956528 ----a-w- c:\documents and settings\All Users\Application Data\NOS\Adobe_Downloads\install_flash_player_ax.exe
          2010-01-05 21:26 . 2010-01-05 21:26 -------- d-----w- c:\program files\Outsim
          2010-01-05 13:26 . 2010-01-05 13:26 152576 ----a-w- c:\documents and settings\JuLieN\Application Data\Sun\Java\jre1.6.0_11\lzma.dll
          2010-01-04 19:08 . 2010-01-04 19:08 -------- d-----w- c:\documents and settings\JuLieN\Application Data\Megaupload
          2010-01-04 19:08 . 2010-01-04 19:08 -------- d-----w- c:\documents and settings\JuLieN\Application Data\EmailNotifier
          2010-01-04 19:08 . 2010-01-04 19:08 -------- d-----w- c:\documents and settings\All Users\Application Data\Megaupload
          2010-01-04 19:08 . 2010-01-04 19:08 -------- d-----w- c:\documents and settings\All Users\Application Data\EmailNotifier
          2010-01-04 17:55 . 2010-01-04 17:55 -------- d-----w- c:\documents and settings\JuLieN\Application Data\Canneverbe_Limited
          2010-01-04 17:54 . 2010-01-04 17:54 -------- d-----w- c:\program files\CDBurnerXP
          2010-01-04 06:34 . 2010-01-02 19:16 -------- d-----w- c:\program files\Fichiers communs\LogiShrd
          2010-01-04 05:58 . 2010-01-02 19:16 -------- d-----w- c:\documents and settings\All Users\Application Data\LogiShrd
          2010-01-03 21:26 . 2010-01-02 14:59 86331 ----a-w- c:\windows\pchealth\helpctr\OfflineCache\index.dat
          2010-01-03 14:31 . 2010-01-03 14:31 -------- d-----w- c:\program files\Alwil Software
          2010-01-02 20:01 . 2010-01-02 20:01 -------- d-----w- c:\documents and settings\JuLieN\Application Data\vlc
          2010-01-02 20:01 . 2010-01-02 20:01 -------- d-----w- c:\program files\VideoLAN
          2010-01-02 19:18 . 2010-01-02 19:16 -------- d-----w- c:\program files\Logitech
          2010-01-02 19:18 . 2010-01-02 19:18 -------- d-----w- c:\documents and settings\JuLieN\Application Data\Leadertech
          2010-01-02 15:45 . 2010-01-02 15:44 -------- d-----w- c:\program files\Windows Live
          2010-01-02 15:44 . 2010-01-02 15:44 -------- d-----w- c:\program files\Microsoft
          2010-01-02 15:44 . 2010-01-02 15:44 -------- d-----w- c:\program files\Windows Live SkyDrive
          2010-01-02 15:34 . 2010-01-02 15:34 -------- d-----w- c:\program files\Fichiers communs\Windows Live
          2010-01-02 15:25 . 2010-01-02 15:25 315392 ----a-w- c:\windows\HideWin.exe
          2010-01-02 15:22 . 2010-01-02 15:22 0 ----a-w- c:\windows\ativpsrm.bin
          2010-01-02 15:00 . 2010-01-02 15:00 -------- d-----w- c:\program files\microsoft frontpage
          2010-01-02 14:58 . 2010-01-02 14:58 -------- d-----w- c:\program files\Services en ligne
          2010-01-02 14:57 . 2010-01-02 14:57 21892 ----a-w- c:\windows\system32\emptyregdb.dat
          2009-12-04 21:17 . 2010-02-26 15:33 198341 ----a-w- c:\windows\system32\atiicdxx.dat
          .

          ((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
          .
          .
          *Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
          REGEDIT4

          [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
          "TELEPHONESURPCAGENT"="c:\program files\Orange\Telephone sur PC\TelephoneSurPCAgent.exe" [2009-11-28 409600]
          "msnmsgr"="c:\program files\Windows Live\Messenger\msnmsgr.exe" [2009-07-26 3883856]
          "swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2010-01-07 39408]

          [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
          "avast!"="c:\progra~1\ALWILS~1\Avast4\ashDisp.exe" [2008-07-19 78008]
          "StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2010-02-02 98304]
          "RTHDCPL"="RTHDCPL.EXE" [2007-06-13 16377344]

          [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
          "CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2004-08-19 15360]

          [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer]
          "HonorAutoRunSetting"= 0 (0x0)

          [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
          "HonorAutoRunSetting"= 0 (0x0)

          [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
          Authentication Packages REG_MULTI_SZ msv1_0 nwprovau

          [HKEY_LOCAL_MACHINE\software\microsoft\security center]
          "AntiVirusOverride"=dword:00000001

          [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
          "EnableFirewall"= 0 (0x0)

          [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
          "%windir%\\system32\\sessmgr.exe"=
          "c:\\Program Files\\Windows Live\\Messenger\\wlcsdk.exe"=
          "c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
          "c:\\Program Files\\Logitech\\Logitech Vid\\Vid.exe"=
          "c:\\Program Files\\Electronic Arts\\Burnout(TM) Paradise The Ultimate Box\\BurnoutLauncher.exe"=
          "c:\\Program Files\\Electronic Arts\\Burnout(TM) Paradise The Ultimate Box\\BurnoutConfigTool.exe"=
          "c:\\Program Files\\Electronic Arts\\Burnout(TM) Paradise The Ultimate Box\\BurnoutParadise.exe"=
          "c:\program files\Microsoft ActiveSync\rapimgr.exe"= c:\program files\Microsoft ActiveSync\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager
          "c:\program files\Microsoft ActiveSync\wcescomm.exe"= c:\program files\Microsoft ActiveSync\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager
          "c:\program files\Microsoft ActiveSync\WCESMgr.exe"= c:\program files\Microsoft ActiveSync\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application
          "c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqtra08.exe"=
          "c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqste08.exe"=
          "c:\\Program Files\\HP\\Digital Imaging\\bin\\hposid01.exe"=
          "c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqkygrp.exe"=
          "c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqcopy2.exe"=
          "c:\\Program Files\\HP\\Digital Imaging\\bin\\hpiscnapp.exe"=
          "c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqsudi.exe"=
          "c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqpsapp.exe"=
          "c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqpse.exe"=
          "c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqgpc01.exe"=
          "c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqusgm.exe"=
          "c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqusgh.exe"=
          "c:\\Program Files\\HP\\HP Software Update\\HPWUCli.exe"=
          "c:\\Program Files\\LimeWire\\LimeWire.exe"=
          "c:\\Program Files\\Steam\\Steam.exe"=
          "c:\\Program Files\\Orange\\Connexion Internet Orange\\Connectivity\\ConnectivityManager.exe"=
          "c:\\Program Files\\Steam\\SteamApps\\common\\left 4 dead 2\\left4dead2.exe"=
          "c:\\Program Files\\Steam\\SteamApps\\puceetninou\\counter-strike source\\hl2.exe"=
          "c:\\Program Files\\KONAMI\\Pro Evolution Soccer 2010\\pes2010.exe"=
          "%windir%\\Network Diagnostic\\xpnetdiag.exe"=

          [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
          "26675:TCP"= 26675:TCP:169.254.2.0/255.255.255.0:Enabled:ActiveSync Service
          "139:TCP"= 139:TCP:10.0.0.0/255.0.0.0,127.0.0.0/255.0.0.0,172.16.0.0/255.240.0.0,192.168.0.0/255.255.0.0:Enabled:@xpsp2res.dll,-22004
          "445:TCP"= 445:TCP:10.0.0.0/255.0.0.0,127.0.0.0/255.0.0.0,172.16.0.0/255.240.0.0,192.168.0.0/255.255.0.0:Enabled:@xpsp2res.dll,-22005
          "137:UDP"= 137:UDP:10.0.0.0/255.0.0.0,127.0.0.0/255.0.0.0,172.16.0.0/255.240.0.0,192.168.0.0/255.255.0.0:Enabled:@xpsp2res.dll,-22001
          "138:UDP"= 138:UDP:10.0.0.0/255.0.0.0,127.0.0.0/255.0.0.0,172.16.0.0/255.240.0.0,192.168.0.0/255.255.0.0:Enabled:@xpsp2res.dll,-22002

          R0 a347scsi;a347scsi;c:\windows\system32\drivers\a347scsi.sys [02/02/2010 20:00 5248]
          R1 aswSP;avast! Self Protection;c:\windows\system32\drivers\aswSP.sys [03/01/2010 15:31 78416]
          R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [03/01/2010 15:31 20560]
          S2 gupdate;Google Update Service (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [06/02/2010 21:01 135664]
          S3 maconfservice;Ma-Config Service;c:\program files\ma-config.com\maconfservice.exe [26/01/2010 17:45 243056]
          S4 a347bus;a347bus;c:\windows\system32\drivers\a347bus.sys [02/02/2010 20:00 160640]

          [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
          HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
          hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc
          .
          Contenu du dossier 'Tâches planifiées'

          2010-02-28 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
          - c:\program files\Google\Update\GoogleUpdate.exe [2010-02-06 20:01]

          2010-02-28 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
          - c:\program files\Google\Update\GoogleUpdate.exe [2010-02-06 20:01]
          .
          .
          ------- Examen supplémentaire -------
          .
          uSearch Page = hxxp://www.google.com
          uSearch Bar = hxxp://www.google.com/ie
          mDefault_Search_URL = hxxp://www.google.com/ie
          uSearchAssistant = hxxp://www.google.com/ie
          uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
          mSearchAssistant = hxxp://www.google.com/ie
          IE: ajouter cette page à vos favoris Orange - c:\docume~1\JuLieN\LOCALS~1\Temp\cce12.html
          IE: Google Sidewiki... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_96D6FF0C6D236BF8.dll/cmsidewiki.html
          IE: Liens de téléchargement avec Mega Manager... - c:\program files\Megaupload\Mega Manager\mm_file.htm
          IE: traduire la page - c:\docume~1\JuLieN\LOCALS~1\Temp\cce10.html
          IE: traduire le texte sélectionné - c:\docume~1\JuLieN\LOCALS~1\Temp\cce11.html
          IE: { - c:\program files\Messenger\msmsgs.exe
          DPF: {9DF1C00D-8426-4337-972C-DC042D19A916} - hxxp://webtv.guidetv.orange.fr/resources/OCS_9418.cab
          FF - ProfilePath - c:\documents and settings\JuLieN\Application Data\Mozilla\Firefox\Profiles\e38beyh0.default\
          FF - plugin: c:\program files\Google\Google Earth\plugin\npgeplugin.dll
          FF - plugin: c:\program files\Google\Update\1.2.183.17\npGoogleOneClick8.dll
          FF - plugin: c:\program files\ma-config.com\nphardwaredetection.dll
          .
          - - - - ORPHELINS SUPPRIMES - - - -

          WebBrowser-{A057A204-BACC-4D26-C39E-35F1D2A32EC8} - (no file)
          AddRemove-CCleaner - f:\ccleaner\uninst.exe
          AddRemove-FranceTelecomUninstall_FTBrowser - c:\progra~1\Wanadoo\Shell.exe inst\uninst_FTBrowser.shl

          **************************************************************************

          catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
          Rootkit scan 2010-02-28 17:43
          Windows 5.1.2600 Service Pack 2 NTFS

          Recherche de processus cachés ...

          Recherche d'éléments en démarrage automatique cachés ...

          Recherche de fichiers cachés ...

          Scan terminé avec succès
          Fichiers cachés: 0

          **************************************************************************
          .
          --------------------- CLES DE REGISTRE BLOQUEES ---------------------

          [HKEY_USERS\S-1-5-21-1220945662-2025429265-839522115-1003\Software\SecuROM\License information*]
          "datasecu"=hex:01,e3,b3,dd,ae,ca,90,f3,95,e3,35,a6,be,93,6b,5a,92,7e,be,b0,f2,
          61,86,a6,70,86,fa,69,78,9c,d3,8d,b0,67,c7,87,0c,a3,6f,d9,4d,c0,d0,7e,8a,19,\
          "rkeysecu"=hex:9c,7a,61,9c,cb,8c,92,15,7c,67,72,58,41,a7,45,6e
          .
          --------------------- DLLs chargées dans les processus actifs ---------------------

          - - - - - - - > 'winlogon.exe'(904)
          c:\windows\system32\Ati2evxx.dll
          c:\windows\system32\atiadlxx.dll

          - - - - - - - > 'explorer.exe'(6040)
          c:\windows\TEMP\logishrd\LVPrcInj01.dll
          c:\progra~1\WINDOW~2\wmpband.dll
          .
          ------------------------ Autres processus actifs ------------------------
          .
          c:\windows\system32\Ati2evxx.exe
          c:\program files\Alwil Software\Avast4\aswUpdSv.exe
          c:\program files\Alwil Software\Avast4\ashServ.exe
          c:\windows\system32\Ati2evxx.exe
          c:\program files\Java\jre6\bin\jqs.exe
          c:\program files\Fichiers communs\LogiShrd\LVMVFM\LVPrcSrv.exe
          c:\program files\CDBurnerXP\NMSAccessU.exe
          c:\windows\system32\wdfmgr.exe
          c:\windows\RTHDCPL.EXE
          c:\program files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
          c:\program files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
          c:\program files\Alwil Software\Avast4\ashMaiSv.exe
          c:\program files\Alwil Software\Avast4\ashWebSv.exe
          c:\windows\system32\wscntfy.exe
          .
          **************************************************************************
          .
          Heure de fin: 2010-02-28 17:45:03 - La machine a redémarré
          ComboFix-quarantined-files.txt 2010-02-28 16:45

          Avant-CF: 183 756 615 680 octets libres
          Après-CF: 183 746 813 952 octets libres

          WindowsXP-KB310994-SP2-Pro-BootDisk-FRA.exe
          [boot loader]
          timeout=2
          default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
          [operating systems]
          c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
          multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professionnel" /noexecute=optin /fastdetect

          - - End Of File - - 88FCF1B5EA863BC92EBDEABAD672D6C9

          J'èspère que tout c'est bien dérouler
          0
          1. Re

            1)Envoie ce fichier comme demandé;merci
            Veuillez envoyer le fichier : C:\UsbFix_Upload_Me_SPEEDCOK15.zip : https://www.ionos.fr/?affiliate_id=77097
            Merci pour votre contribution .


            2)Windows Update>>>XP SP3
            et Internet Explorer 8

            3)• Télécharge Ad-remover ( de C_XX ) sur ton bureau :

            http://pagesperso-orange.fr/NosTools/C_XX/AD-R.exe

            ! Déconnecte toi et ferme toutes applications en cours !

            • Double clique ou clic droit (exécuter en tant que admin…sur Vista et Windows7) sur "Ad-R.exe" pour lancer l'installation et laisse les paramètres d'installation par défaut.

            • Double-clique ou clic droit (exécuter en tant que admin…sur Vista) sur le raccourci Ad-remover qui est sur ton bureau pour lancer l'outil .

            • Au menu principal choisis l'option "L" et sur [entrée] .

            • Laisse travailler l'outil et ne touche à rien ...

            --> Poste le rapport qui apparaît à la fin , sur le forum ...

            ( Le rapport est sauvegardé aussi sous C:\Ad-report.log )
            ( CTRL+A Pour tout sélectionner , CTRL+C pour copier et CTRL+V pour coller )

            Note : "Process.exe", une composante de l'outil, est détecté par certains antivirus (AntiVir, Dr.Web, Kaspersky Anti-Virus) comme étant un RiskTool.
            Il ne s'agit pas d'un virus, mais d'un utilitaire destiné à mettre fin à des processus.
            Mis entre de mauvaises mains, cet utilitaire pourrait arrêter des logiciels de sécurité (Antivirus, Firewall...) d'où l'alerte émise par ces antivirus.

            Aides en images (Installation) : http://pagesperso-orange.fr/NosTools/ad_remover.html images (Recherche): http://pagesperso-orange.fr/NosTools/tuto_adr_2.html

            4)Pour java utilises javaRa https://www.commentcamarche.net/faq/15645-supprimer-les-anciennes-versions-de-java-avec-javara

            et un autre tutoriel javaRa http://www.libellules.ch/dotclear/index.php?post/2008/07/13/2689-javara

            Décompresse le fichier sur le Bureau (Clic droit > Extraire tout).
            * Double-cliques sur le répertoire JavaRa.
            * Puis double-cliques sur le fichier JavaRa.exe (le exe peut ne pas s'afficher).
            * Choisis Français puis cliques sur Select.
            * Cliques sur Recherche de mises à jour.
            * Sélectionne Mettre à jour via jucheck.exe puis clique sur Rechercher.
            * Autorises le processus à se connecter s'il le demande, cliques sur Installer et suis les instructions d'installation qui prennent quelques minutes.
            * L'installation est terminée, reviens à l'écran de JavaRa et cliques sur Effacer les anciennes versions.
            * Cliques sur Oui pour confirmer. Laisses travailler et cliques ensuite sur OK, puis une deuxième fois sur OK.
            * Un rapport va s'ouvrir. Postes-le dans ta prochaine réponse.
            * Ferme l'application.

            Note : le rapport se trouve aussi dans C:\ sous le nom JavaRa.log.

            5)Pour vérifier les mises à jour logiciels à appliquer sur ton PC
            https://www.flexera.com/products/operations/software-vulnerability-management.html
            Divers liens te seront proposés pour les logiciels non à jour.

            Ce n'est pas fini...

            @+
            0
        2. Je poste ici un rapport HIJACKTHIS si jamais sa pourrai te servir:

          Logfile of Trend Micro HijackThis v2.0.2
          Scan saved at 17:04:02, on 28/02/2010
          Platform: Windows XP SP2 (WinNT 5.01.2600)
          MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
          Boot mode: Normal

          Running processes:
          C:\WINDOWS\System32\smss.exe
          C:\WINDOWS\system32\winlogon.exe
          C:\WINDOWS\system32\services.exe
          C:\WINDOWS\system32\lsass.exe
          C:\WINDOWS\system32\Ati2evxx.exe
          C:\WINDOWS\system32\svchost.exe
          C:\WINDOWS\System32\svchost.exe
          C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
          C:\Program Files\Alwil Software\Avast4\ashServ.exe
          C:\WINDOWS\system32\Ati2evxx.exe
          C:\WINDOWS\system32\spoolsv.exe
          C:\WINDOWS\system32\svchost.exe
          C:\Program Files\Java\jre6\bin\jqs.exe
          C:\Program Files\Fichiers communs\LogiShrd\LVMVFM\LVPrcSrv.exe
          C:\WINDOWS\System32\svchost.exe
          C:\Program Files\CDBurnerXP\NMSAccessU.exe
          C:\WINDOWS\System32\svchost.exe
          C:\WINDOWS\system32\svchost.exe
          C:\WINDOWS\Explorer.EXE
          C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
          C:\WINDOWS\RTHDCPL.EXE
          C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
          C:\Program Files\Orange\Telephone sur PC\TelephoneSurPCAgent.exe
          C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
          C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
          C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
          C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
          C:\WINDOWS\system32\wscntfy.exe
          C:\WINDOWS\System32\svchost.exe
          C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

          R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/
          R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Windows Internet Explorer
          R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
          R3 - URLSearchHook: (no name) - {AEEC3B59-CA98-4EBA-A140-57B94E283583} - (no file)
          R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL
          O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
          O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
          O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
          O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
          O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.5.4723.1820\swg.dll
          O2 - BHO: Mega Manager IE Click Monitor - {bf00e119-21a3-4fd1-b178-3b8537e75c92} - C:\Program Files\Megaupload\Mega Manager\MegaIEMn.dll
          O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
          O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
          O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
          O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
          O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
          O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
          O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
          O4 - HKCU\..\Run: [TELEPHONESURPCAGENT] "C:\Program Files\Orange\Telephone sur PC\TelephoneSurPCAgent.exe" -run "C:\Program Files\Orange\Telephone sur PC\TelephoneSurPC.exe"
          O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
          O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
          O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
          O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
          O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
          O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
          O8 - Extra context menu item: ajouter cette page à vos favoris Orange - C:\DOCUME~1\JuLieN\LOCALS~1\Temp\cce12.html
          O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_96D6FF0C6D236BF8.dll/cmsidewiki.html
          O8 - Extra context menu item: Liens de téléchargement avec Mega Manager... - C:\Program Files\Megaupload\Mega Manager\mm_file.htm
          O8 - Extra context menu item: traduire la page - C:\DOCUME~1\JuLieN\LOCALS~1\Temp\cce10.html
          O8 - Extra context menu item: traduire le texte sélectionné - C:\DOCUME~1\JuLieN\LOCALS~1\Temp\cce11.html
          O9 - Extra button: Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
          O9 - Extra 'Tools' menuitem: Windows Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
          O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~3\INetRepl.dll
          O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~3\INetRepl.dll
          O9 - Extra 'Tools' menuitem: Créer un Favori de l'appareil mobile... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~3\INetRepl.dll
          O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
          O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
          O9 - Extra button: Orange - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - http://www.orange.fr (file missing) (HKCU)
          O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
          O16 - DPF: {9DF1C00D-8426-4337-972C-DC042D19A916} (FTMediaPlayer Class) - http://webtv.guidetv.orange.fr/resources/OCS_9418.cab
          O16 - DPF: {BADA82CB-BF48-4D76-9611-78E2C6F49F03} - http://217.23.14.26/cont/Bol.CAB
          O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
          O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
          O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
          O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
          O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
          O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
          O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
          O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
          O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
          O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
          O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - C:\Program Files\Fichiers communs\LogiShrd\LVMVFM\LVPrcSrv.exe
          O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe
          O23 - Service: NMSAccessU - Unknown owner - C:\Program Files\CDBurnerXP\NMSAccessU.exe
          0
          1. Voila j'ai poster les rapport qu'il te faut
            J'èspère que tout va bien ^^
            Merci encore
            0
            1. Re

              Télécharge combofix : http://download.bleepingcomputer.com/sUBs/ComboFix.exe
              Ou ici : https://forospyware.com
              >Renomme le pour l’enregistrer sur ton bureau en asdehi (tout simplement pour que l’infection ne le contre pas)
              -> Double clique combofix.exe.(ou clic droit sous vista « exécuter en tant que… » )
              -> Tape sur la touche 1 (Yes) pour démarrer le scan.
              -> Lorsque le scan sera complété, un rapport apparaîtra. Copie/colle ce rapport dans ta prochaine réponse.

              NOTE : Le rapport se trouve également ici : C:\Combofix.txt

              Avant d'utiliser ComboFix :

              -> Déconnecte toi d'Internet et referme les fenêtres de tous les programmes en cours.

              -> Désactive provisoirement et seulement le temps de l'utilisation de ComboFix, la protection en temps réel de ton Antivirus et de tes Antispywares, qui peuvent gêner fortement la procédure de recherche et de nettoyage de l'outil.

              Une fois fait, sur ton bureau double-clic sur Combofix.exe ; (ou clic droit sous vista « exécuter en tant que… »)

              - Répond oui au message d'avertissement, pour que le programme commence à procéder à l'analyse du pc.

              - Attention Pendant la durée de cette étape, ne te sert pas du pc et n'ouvre aucun programme. Risque de figer l'ordinateur

              - En fin de scan il est possible que ComboFix ait besoin de redémarrer le pc pour finaliser la désinfection\recherche, laisses-le faire.

              - Un rapport s'ouvrira ensuite dans le bloc notes, ce fichier rapport Combofix.txt, est automatiquement sauvegardé et rangé à C:\Combofix.txt)

              -> Réactive la protection en temps réel de ton Antivirus et de tes Antispywares, avant de te reconnecter à internet.

              -> Reviens sur le forum, et copie et colle la totalité du contenu de C:\Combofix.txt dans ton prochain message.

              /!\ Ne touche à rien tant que le scan n'est pas terminé. /!\ : risque de figer l'ordinateur (plantage complet)

              ::Si combofix détecte quelque chose et de demande a redémarrer tu acceptes

              @+
              0
          2. Voici "info.txt":

            info.txt logfile of random's system information tool 1.06 2010-02-28 16:44:08

            ======Uninstall list======

            -->MsiExec.exe /X{E9F81423-211E-46B6-9AE0-38568BC5CF6F}
            -->MsiExec /X{C5C1C0F0-D62F-4DBF-81D4-D7EF397C228B}
            -->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
            32 Bit HP CIO Components Installer-->MsiExec.exe /I{F1E63043-54FC-429B-AB2C-31AF9FBA4BC7}
            Adobe AIR-->c:\Program Files\Fichiers communs\Adobe AIR\Versions\1.0\Resources\Adobe AIR Updater.exe -arp:uninstall
            Adobe AIR-->MsiExec.exe /I{A2BCA9F1-566C-4805-97D1-7FDC93386723}
            Adobe Flash Player 10 ActiveX-->C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
            Adobe Flash Player 10 Plugin-->C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
            Adobe Reader 9.3 - Français-->MsiExec.exe /I{AC76BA86-7AD7-1036-7B44-A93000000001}
            Archiveur WinRAR-->C:\Program Files\WinRAR\uninstall.exe
            Assistant de connexion Windows Live-->MsiExec.exe /I{DCE8CD14-FBF5-4464-B9A4-E18E473546C7}
            ATI Display Driver-->rundll32 C:\WINDOWS\system32\atiiiexx.dll,_InfEngUnInstallINFFile_RunDLL@16 -force_restart -flags:0x2010001 -inf_class:DISPLAY -clean
            avast! Antivirus-->C:\Program Files\Alwil Software\Avast4\aswRunDll.exe "C:\Program Files\Alwil Software\Avast4\Setup\setiface.dll",RunSetup
            Burnout(TM) Paradise The Ultimate Box-->MsiExec.exe /X{9A996B6A-846E-4A89-B9C4-17546B7BE49F}
            Catalyst Control Center - Branding-->MsiExec.exe /I{8D7133DE-27D2-47E5-B248-4180278D32AA}
            CCleaner (remove only)-->"F:\CCleaner\uninst.exe"
            CDBurnerXP-->"C:\Program Files\CDBurnerXP\unins000.exe"
            Coffret de pilotes Logitech Webcam Software-->"C:\Program Files\Fichiers communs\LogiShrd\LogiDriverStore\lvdrivers\12.10.1110\LgDrvInst.exe" -remove -instdir"C:\Program Files\Fichiers communs\LogiShrd\LogiDriverStore\lvdrivers\" -enumdelay=200 -enabledifx -forcedelete -usbhubsfirst -forceremove -cumulativeremove -promptuninstall -arpregkey"lvdrivers_12.10" /clone_wait /hide_progress
            Connexion Internet Orange-->C:\Program Files\Orange\Connexion Internet Orange\installation\core\Installgui.exe -u
            Correctif pour Windows XP (KB914440)-->"C:\WINDOWS\$NtUninstallKB914440$\spuninst\spuninst.exe"
            Counter-Strike: Source-->MsiExec.exe /I{9580813D-94B1-4C28-9426-A441E2BB29A5}
            Crysis WARHEAD(R)-->"C:\Documents and Settings\All Users\Application Data\{0691F710-1ECA-4B5A-9727-25554F1BFDC6}\setup.exe" REMOVE=TRUE MODIFY=FALSE
            Crysis WARHEAD(R)-->C:\Documents and Settings\All Users\Application Data\{0691F710-1ECA-4B5A-9727-25554F1BFDC6}\setup.exe
            Earth 3D Screensaver 1.0-->"C:\Program Files\Earth 3D Screensaver\unins000.exe"
            eMule-->"C:\Program Files\eMule\Uninstall.exe"
            F.E.A.R.2 - Project Origin 1.00-->C:\Program Files\F.E.A.R.2 - Project Origin\Uninstall.exe
            Fireplace 3D Screensaver and Animated Wallpaper 2.0-->"C:\Program Files\Fireplace 3D Screensaver\unins000.exe"
            FL Studio 8-->C:\Program Files\Image-Line\FL Studio 8\uninstall.exe
            Gestionnaire Internet-->C:\PROGRA~1\Wanadoo\uninstall.exe
            Google Toolbar for Internet Explorer-->"C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarManager_E85CDE7661A53A6A.exe" /uninstall
            Google Toolbar for Internet Explorer-->MsiExec.exe /I{18455581-E099-4BA8-BC6B-F34B2F06600C}
            Google Update Helper-->MsiExec.exe /I{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
            Google Earth-->MsiExec.exe /X{2EAF7E61-068E-11DF-953C-005056806466}
            HijackThis 2.0.2-->"C:\Program Files\Trend Micro\HijackThis\HijackThis.exe" /uninstall
            Hotfix for Windows XP (KB909394)-->"C:\WINDOWS\$NtUninstallKB909394$\spuninst\spuninst.exe"
            Hotfix for Windows XP (KB915865)-->"C:\WINDOWS\$NtUninstallKB915865$\spuninst\spuninst.exe"
            HP Customer Participation Program 10.0-->C:\Program Files\HP\Digital Imaging\ExtCapUninstall\hpzscr01.exe -datfile hpqhsc01.dat
            HP Imaging Device Functions 10.0-->C:\Program Files\HP\Digital Imaging\DeviceManagement\hpzscr01.exe -datfile hpqbud01.dat
            HP Photosmart C4400 All-In-One Driver Software 10.0 Rel .3-->C:\Program Files\HP\Digital Imaging\{FF1F4E8E-A833-4c4b-A14A-45D5B841B5D8}\setup\hpzscr01.exe -datfile hposcr29.dat -onestop
            HP Photosmart Essential 2.5-->C:\Program Files\HP\Digital Imaging\PhotoSmartEssential\hpzscr01.exe -datfile hpqbud13.dat
            HP Solution Center 10.0-->C:\Program Files\HP\Digital Imaging\eSupport\hpzscr01.exe -datfile hpqbud05.dat
            HP Update-->MsiExec.exe /X{11B83AD3-7A46-4C2E-A568-9505981D4C6F}
            Installation Windows Live-->C:\Program Files\Windows Live\Installer\wlarp.exe
            Installation Windows Live-->MsiExec.exe /I{46ABBC54-1872-4AA3-95E2-F2C063A63F31}
            Java(TM) 6 Update 17-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216011FF}
            Junk Mail filter update-->MsiExec.exe /I{E2DFE069-083E-4631-9B6C-43C48E991DE5}
            Lecteur Windows Media 10-->"C:\Program Files\Windows Media Player\Setup_wm.exe" /Uninstall
            Left 4 Dead 2 Add-on Support-->"C:\Program Files\Steam\steam.exe" steam://uninstall/564
            Left 4 Dead 2-->"C:\Program Files\Steam\steam.exe" steam://uninstall/550
            LimeWire 5.2.13-->"C:\Program Files\LimeWire\uninstall.exe"
            Logitech Vid-->MsiExec.exe /I{4FBCEA31-5D18-4212-9231-DE7CF1BE7DBB}
            Logitech Webcam Software-->MsiExec.exe /I{C27BC2A2-30DD-4014-B22E-63EB0DB572F9}
            Ma-Config.com-->MsiExec.exe /X{B9706D6B-754E-4D81-8EE9-393008D57EDB}
            Malwarebytes' Anti-Malware-->"C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"
            Manuel de l'appareil Windows Mobile®-->C:\Program Files\Windows Mobile Device Handbook\Windows Mobile Device Handbook\Bin\DHUninstall.exe
            Marvell Miniport Driver-->MsiExec.exe /X{C950420B-4182-49EA-850A-A6A2ABF06C6B}
            Mega Manager-->C:\Program Files\InstallShield Installation Information\{3B6E3FC6-274C-4B6C-BC85-5C3B15DE18E2}\setup.exe -runfromtemp -l0x0009 -removeonly
            Microsoft .NET Framework 2.0 Service Pack 2-->MsiExec.exe /I{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}
            Microsoft ActiveSync-->MsiExec.exe /I{99052DB7-9592-4522-A558-5417BBAD48EE}
            Microsoft Choice Guard-->MsiExec.exe /X{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}
            Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{837b34e3-7c30-493c-8f6a-2b0f04e2912c}
            Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{A49F249F-0C91-497F-86DF-B2585E8E76B7}
            Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022-->MsiExec.exe /X{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}
            Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148-->MsiExec.exe /X{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}
            Mise à jour pour Windows XP (KB904942)-->"C:\WINDOWS\$NtUninstallKB904942$\spuninst\spuninst.exe"
            Mozilla Firefox (3.0.9)-->C:\Program Files\Mozilla Firefox\uninstall\helper.exe
            MSVCRT-->MsiExec.exe /I{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
            Native Instruments Pro-53 Demo-->C:\PROGRA~1\NATIVE~1\PRO-53~1\UNWISE.EXE C:\PROGRA~1\NATIVE~1\PRO-53~1\INSTALL.LOG
            Navigateur Orange-->C:\PROGRA~1\Wanadoo\Shell.exe inst\uninst_FTBrowser.shl
            Notification Mail-->"C:\Program Files\Orange\MailNotifier\uninstallMailNotifier.exe"
            NVIDIA PhysX-->MsiExec.exe /X{C5C1C0F0-D62F-4DBF-81D4-D7EF397C228B}
            OCR Software by I.R.I.S. 10.0-->C:\Program Files\HP\Digital Imaging\OCR\hpzscr01.exe -datfile hpqbud11.dat
            OpenAL-->"C:\Program Files\OpenAL\OpenALwEAX.exe" /U
            Orange WebTV Player 1.29418-->"C:\Program Files\Orange\Orange WebTV Player\unins000.exe"
            Outil de téléchargement Windows Live-->MsiExec.exe /I{205C6BDD-7B73-42DE-8505-9A093F35A238}
            PhotoScape-->"C:\Program Files\PhotoScape\uninstall.exe"
            PoiZone-->C:\Program Files\Image-Line\PoiZone\uninstall.exe
            Pro Evolution Soccer 2010-->MsiExec.exe /X{283FFB23-8751-4B08-ACB8-5E0F8BCF7727}
            REALTEK GbE & FE Ethernet PCI NIC Driver-->C:\Program Files\InstallShield Installation Information\{ACCA20B0-C4D1-4BF5-BF21-0A0EB5EF9730}\setup.exe -runfromtemp -removeonly
            Realtek High Definition Audio Driver-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}\SETUP.exe" -l0x40c -removeonly
            Remue-méninges la saison des fruits-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{7F4F88D0-99D4-4D8F-8529-444BB169FB6B}\setup.exe" -l0x40c
            Segoe UI-->MsiExec.exe /I{A1F66FC9-11EE-4F2F-98C9-16F8D1E69FB7}
            Shop for HP Supplies-->C:\Program Files\HP\Digital Imaging\HPSSupply\hpzscr01.exe -datfile hpqbud16.dat
            SLD Codec Pack-->C:\Program Files\SLD Codec Pack\uninstall.exe
            SONIC HEROES-->C:\Program Files\Sega\SONICHEROES\unsetup.exe
            Sonic Riders-->"C:\Program Files\Sega\Sonic Riders\unins000.exe"
            Steam(TM)-->MsiExec.exe /X{048298C9-A4D3-490B-9FF9-AB023A9238F3}
            Synthesia (remove only)-->"C:\Program Files\Synthesia\uninstall.exe"
            Sytrus-->C:\Program Files\Image-Line\Sytrus\uninstall.exe
            Téléphone sur PC 1.0.2-->"C:\Program Files\Orange\Telephone sur PC\uninst.exe"
            The Lord of the Rings FREE Trial -->MsiExec.exe /X{8ACC73AA-6511-7C55-B1A9-8E5D1DEAFAA3}
            Toxic Biohazard-->C:\Program Files\Image-Line\Toxic Biohazard\uninstall.exe
            VideoLAN VLC media player 0.8.6i-->C:\Program Files\VideoLAN\VLC\uninstall.exe
            Windows Installer 3.1 (KB893803)-->"C:\WINDOWS\$MSI31Uninstall_KB893803v2$\spuninst\spuninst.exe"
            Windows Live Call-->MsiExec.exe /I{82C7B308-0BDD-49D8-8EA5-9CD3A3F9DF41}
            Windows Live Communications Platform-->MsiExec.exe /I{ED00D08A-3C5F-488D-93A0-A04F21F23956}
            Windows Live Mail-->MsiExec.exe /I{5DD76286-9BE7-4894-A990-E905E91AC818}
            Windows Live Messenger-->MsiExec.exe /X{770F1BEC-2871-4E70-B837-FB8525FFA3B1}
            Windows Media Format Runtime-->"C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll

            ======Security center information======

            AV: avast! antivirus 4.8.1227 [VPS 100219-0] (outdated)

            ======System event log======

            Computer Name: SPEEDCOK15
            Event Code: 7036
            Message: Le service Service COM de gravage de CD IMAPI est entré dans l'état : en cours d'exécution.

            Record Number: 4277
            Source Name: Service Control Manager
            Time Written: 20100219192853.000000+060
            Event Type: Informations
            User:

            Computer Name: SPEEDCOK15
            Event Code: 7035
            Message: Un contrôle Démarrer a correctement été envoyé au service Service COM de gravage de CD IMAPI.

            Record Number: 4276
            Source Name: Service Control Manager
            Time Written: 20100219192853.000000+060
            Event Type: Informations
            User: AUTORITE NT\SYSTEM

            Computer Name: SPEEDCOK15
            Event Code: 7036
            Message: Le service Service COM de gravage de CD IMAPI est entré dans l'état : arrêté.

            Record Number: 4275
            Source Name: Service Control Manager
            Time Written: 20100219192824.000000+060
            Event Type: Informations
            User:

            Computer Name: SPEEDCOK15
            Event Code: 7036
            Message: Le service Service COM de gravage de CD IMAPI est entré dans l'état : en cours d'exécution.

            Record Number: 4274
            Source Name: Service Control Manager
            Time Written: 20100219192818.000000+060
            Event Type: Informations
            User:

            Computer Name: SPEEDCOK15
            Event Code: 7035
            Message: Un contrôle Démarrer a correctement été envoyé au service Service COM de gravage de CD IMAPI.

            Record Number: 4273
            Source Name: Service Control Manager
            Time Written: 20100219192818.000000+060
            Event Type: Informations
            User: AUTORITE NT\SYSTEM

            =====Application event log=====

            Computer Name: SPEEDCOK15
            Event Code: 1800
            Message: Le service Centre de sécurité Windows a démarré.

            Record Number: 659
            Source Name: SecurityCenter
            Time Written: 20100211201620.000000+060
            Event Type: Informations
            User:

            Computer Name: SPEEDCOK15
            Event Code: 0
            Message:
            Record Number: 658
            Source Name: gupdate
            Time Written: 20100211201558.000000+060
            Event Type: Informations
            User:

            Computer Name: SPEEDCOK15
            Event Code: 105
            Message:
            Record Number: 657
            Source Name: ATI Smart
            Time Written: 20100211201555.000000+060
            Event Type: Informations
            User:

            Computer Name: SPEEDCOK15
            Event Code: 20
            Message:
            Record Number: 656
            Source Name: Google Update
            Time Written: 20100211201105.000000+060
            Event Type: erreur
            User: SPEEDCOK15\JuLieN

            Computer Name: SPEEDCOK15
            Event Code: 20
            Message:
            Record Number: 655
            Source Name: Google Update
            Time Written: 20100211200606.000000+060
            Event Type: erreur
            User: AUTORITE NT\SYSTEM

            ======Environment variables======

            "ComSpec"=%SystemRoot%\system32\cmd.exe
            "Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\ATI Technologies\ATI.ACE\Core-Static
            "windir"=%SystemRoot%
            "FP_NO_HOST_CHECK"=NO
            "OS"=Windows_NT
            "PROCESSOR_ARCHITECTURE"=x86
            "PROCESSOR_LEVEL"=15
            "PROCESSOR_IDENTIFIER"=x86 Family 15 Model 107 Stepping 1, AuthenticAMD
            "PROCESSOR_REVISION"=6b01
            "NUMBER_OF_PROCESSORS"=2
            "PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
            "TEMP"=%SystemRoot%\TEMP
            "TMP"=%SystemRoot%\TEMP

            -----------------EOF-----------------

            0
            1. LOG.TXT PARTIE 2

              2010-01-03 20:28:50 ----D---- C:\Program Files\Electronic Arts
              2010-01-03 20:28:49 ----A---- C:\WINDOWS\system32\d3dx10_40.dll
              2010-01-03 20:28:49 ----A---- C:\WINDOWS\system32\D3DCompiler_40.dll
              2010-01-03 20:28:48 ----A---- C:\WINDOWS\system32\XAudio2_3.dll
              2010-01-03 20:28:48 ----A---- C:\WINDOWS\system32\XAPOFX1_2.dll
              2010-01-03 20:28:48 ----A---- C:\WINDOWS\system32\xactengine3_3.dll
              2010-01-03 20:28:48 ----A---- C:\WINDOWS\system32\D3DX9_40.dll
              2010-01-03 20:28:47 ----A---- C:\WINDOWS\system32\XAudio2_2.dll
              2010-01-03 20:28:47 ----A---- C:\WINDOWS\system32\XAPOFX1_1.dll
              2010-01-03 20:28:47 ----A---- C:\WINDOWS\system32\xactengine3_2.dll
              2010-01-03 20:28:47 ----A---- C:\WINDOWS\system32\X3DAudio1_5.dll
              2010-01-03 20:28:47 ----A---- C:\WINDOWS\system32\d3dx10_39.dll
              2010-01-03 20:28:47 ----A---- C:\WINDOWS\system32\D3DCompiler_39.dll
              2010-01-03 20:28:46 ----A---- C:\WINDOWS\system32\XAudio2_1.dll
              2010-01-03 20:28:46 ----A---- C:\WINDOWS\system32\XAPOFX1_0.dll
              2010-01-03 20:28:46 ----A---- C:\WINDOWS\system32\xactengine3_1.dll
              2010-01-03 20:28:46 ----A---- C:\WINDOWS\system32\D3DX9_39.dll
              2010-01-03 20:28:45 ----A---- C:\WINDOWS\system32\X3DAudio1_4.dll
              2010-01-03 20:28:45 ----A---- C:\WINDOWS\system32\d3dx10_38.dll
              2010-01-03 20:28:45 ----A---- C:\WINDOWS\system32\D3DCompiler_38.dll
              2010-01-03 20:28:44 ----A---- C:\WINDOWS\system32\XAudio2_0.dll
              2010-01-03 20:28:44 ----A---- C:\WINDOWS\system32\xactengine3_0.dll
              2010-01-03 20:28:44 ----A---- C:\WINDOWS\system32\X3DAudio1_3.dll
              2010-01-03 20:28:44 ----A---- C:\WINDOWS\system32\D3DX9_38.dll
              2010-01-03 20:28:43 ----A---- C:\WINDOWS\system32\xactengine2_10.dll
              2010-01-03 20:28:43 ----A---- C:\WINDOWS\system32\D3DX9_37.dll
              2010-01-03 20:28:43 ----A---- C:\WINDOWS\system32\d3dx10_37.dll
              2010-01-03 20:28:43 ----A---- C:\WINDOWS\system32\D3DCompiler_37.dll
              2010-01-03 20:28:42 ----A---- C:\WINDOWS\system32\d3dx9_36.dll
              2010-01-03 20:28:42 ----A---- C:\WINDOWS\system32\d3dx10_36.dll
              2010-01-03 20:28:42 ----A---- C:\WINDOWS\system32\D3DCompiler_36.dll
              2010-01-03 20:28:41 ----A---- C:\WINDOWS\system32\xactengine2_9.dll
              2010-01-03 20:28:41 ----A---- C:\WINDOWS\system32\d3dx9_35.dll
              2010-01-03 20:28:41 ----A---- C:\WINDOWS\system32\d3dx10_35.dll
              2010-01-03 20:28:41 ----A---- C:\WINDOWS\system32\D3DCompiler_35.dll
              2010-01-03 20:28:40 ----A---- C:\WINDOWS\system32\xactengine2_8.dll
              2010-01-03 20:28:40 ----A---- C:\WINDOWS\system32\X3DAudio1_2.dll
              2010-01-03 20:28:40 ----A---- C:\WINDOWS\system32\d3dx9_34.dll
              2010-01-03 20:28:40 ----A---- C:\WINDOWS\system32\d3dx10_34.dll
              2010-01-03 20:28:40 ----A---- C:\WINDOWS\system32\D3DCompiler_34.dll
              2010-01-03 20:28:39 ----A---- C:\WINDOWS\system32\xinput1_3.dll
              2010-01-03 20:28:39 ----A---- C:\WINDOWS\system32\xactengine2_7.dll
              2010-01-03 20:28:38 ----A---- C:\WINDOWS\system32\xactengine2_6.dll
              2010-01-03 20:28:38 ----A---- C:\WINDOWS\system32\d3dx9_33.dll
              2010-01-03 20:28:38 ----A---- C:\WINDOWS\system32\d3dx10_33.dll
              2010-01-03 20:28:38 ----A---- C:\WINDOWS\system32\D3DCompiler_33.dll
              2010-01-03 20:28:37 ----A---- C:\WINDOWS\system32\xinput1_2.dll
              2010-01-03 20:28:37 ----A---- C:\WINDOWS\system32\xactengine2_5.dll
              2010-01-03 20:28:37 ----A---- C:\WINDOWS\system32\xactengine2_4.dll
              2010-01-03 20:28:37 ----A---- C:\WINDOWS\system32\xactengine2_3.dll
              2010-01-03 20:28:37 ----A---- C:\WINDOWS\system32\x3daudio1_1.dll
              2010-01-03 20:28:37 ----A---- C:\WINDOWS\system32\d3dx9_32.dll
              2010-01-03 20:28:37 ----A---- C:\WINDOWS\system32\d3dx9_31.dll
              2010-01-03 20:28:36 ----A---- C:\WINDOWS\system32\xinput1_1.dll
              2010-01-03 20:28:36 ----A---- C:\WINDOWS\system32\xactengine2_2.dll
              2010-01-03 20:28:36 ----A---- C:\WINDOWS\system32\xactengine2_1.dll
              2010-01-03 20:28:32 ----A---- C:\WINDOWS\system32\d3dx9_30.dll
              2010-01-03 20:28:31 ----A---- C:\WINDOWS\system32\xinput9_1_0.dll
              2010-01-03 20:28:31 ----A---- C:\WINDOWS\system32\xactengine2_0.dll
              2010-01-03 20:28:31 ----A---- C:\WINDOWS\system32\x3daudio1_0.dll
              2010-01-03 20:28:31 ----A---- C:\WINDOWS\system32\d3dx9_29.dll
              2010-01-03 20:28:31 ----A---- C:\WINDOWS\system32\d3dx9_28.dll
              2010-01-03 20:28:31 ----A---- C:\WINDOWS\system32\d3dx9_27.dll
              2010-01-03 20:28:30 ----A---- C:\WINDOWS\system32\d3dx9_26.dll
              2010-01-03 20:28:30 ----A---- C:\WINDOWS\system32\d3dx9_25.dll
              2010-01-03 20:28:29 ----A---- C:\WINDOWS\system32\d3dx9_24.dll
              2010-01-03 20:28:19 ----D---- C:\WINDOWS\Logs
              2010-01-03 15:31:14 ----N---- C:\WINDOWS\system32\MSVCR71.dll
              2010-01-03 15:31:14 ----N---- C:\WINDOWS\system32\MSVCP71.dll
              2010-01-03 15:31:14 ----N---- C:\WINDOWS\system32\MFC71.dll
              2010-01-03 15:31:14 ----A---- C:\WINDOWS\system32\aswBoot.exe
              2010-01-03 15:31:12 ----D---- C:\Program Files\Alwil Software
              2010-01-02 22:02:18 ----SHD---- C:\RECYCLER
              2010-01-02 21:01:24 ----D---- C:\Documents and Settings\JuLieN\Application Data\vlc
              2010-01-02 21:01:09 ----D---- C:\Program Files\VideoLAN
              2010-01-02 20:36:40 ----D---- C:\Documents and Settings\JuLieN\Application Data\Macromedia
              2010-01-02 20:36:40 ----D---- C:\Documents and Settings\JuLieN\Application Data\Adobe
              2010-01-02 20:18:11 ----D---- C:\Documents and Settings\JuLieN\Application Data\Leadertech
              2010-01-02 20:17:50 ----A---- C:\WINDOWS\system32\LVUI2RC.dll
              2010-01-02 20:17:49 ----A---- C:\WINDOWS\system32\LVUI2.dll
              2010-01-02 20:17:49 ----A---- C:\WINDOWS\system32\lvcodec2.dll
              2010-01-02 20:17:33 ----RA---- C:\WINDOWS\system32\lvci1201278.dll
              2010-01-02 20:17:33 ----A---- C:\WINDOWS\system32\lvcoinst.ini
              2010-01-02 20:17:10 ----D---- C:\WINDOWS\system32\ReinstallBackups
              2010-01-02 20:17:04 ----DC---- C:\WINDOWS\system32\DRVSTORE
              2010-01-02 20:16:38 ----D---- C:\Program Files\Fichiers communs\LogiShrd
              2010-01-02 20:16:37 ----D---- C:\Documents and Settings\All Users\Application Data\LogiShrd
              2010-01-02 20:16:32 ----D---- C:\Program Files\Logitech
              2010-01-02 20:14:29 ----A---- C:\WINDOWS\system32\vfwwdm32.dll
              2010-01-02 16:44:45 ----D---- C:\Program Files\Microsoft
              2010-01-02 16:44:30 ----D---- C:\Program Files\Windows Live SkyDrive
              2010-01-02 16:44:10 ----D---- C:\Program Files\Windows Live
              2010-01-02 16:41:10 ----A---- C:\WINDOWS\system32\h323log.txt
              2010-01-02 16:34:42 ----A---- C:\WINDOWS\system32\hidserv.dll
              2010-01-02 16:34:38 ----D---- C:\Program Files\Fichiers communs\Windows Live
              2010-01-02 16:32:49 ----A---- C:\WINDOWS\system32\usbui.dll
              2010-01-02 16:31:49 ----SHD---- C:\WINDOWS\Installer
              2010-01-02 16:31:49 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
              2010-01-02 16:31:48 ----D---- C:\Program Files\Fichiers communs\ODBC
              2010-01-02 16:31:48 ----A---- C:\WINDOWS\ODBCINST.INI
              2010-01-02 16:31:45 ----D---- C:\Program Files\Fichiers communs\SpeechEngines
              2010-01-02 16:31:45 ----D---- C:\Program Files\Fichiers communs\Microsoft Shared
              2010-01-02 16:31:45 ----D---- C:\Program Files\Fichiers communs
              2010-01-02 16:31:45 ----D---- C:\Program Files
              2010-01-02 16:31:42 ----RA---- C:\WINDOWS\system32\kbdtuq.dll
              2010-01-02 16:31:42 ----RA---- C:\WINDOWS\system32\kbdtuf.dll
              2010-01-02 16:31:42 ----RA---- C:\WINDOWS\system32\kbdazel.dll
              2010-01-02 16:31:41 ----RA---- C:\WINDOWS\system32\kbdycc.dll
              2010-01-02 16:31:41 ----RA---- C:\WINDOWS\system32\kbduzb.dll
              2010-01-02 16:31:41 ----RA---- C:\WINDOWS\system32\kbdur.dll
              2010-01-02 16:31:41 ----RA---- C:\WINDOWS\system32\kbdtat.dll
              2010-01-02 16:31:41 ----RA---- C:\WINDOWS\system32\kbdru1.dll
              2010-01-02 16:31:41 ----RA---- C:\WINDOWS\system32\kbdru.dll
              2010-01-02 16:31:41 ----RA---- C:\WINDOWS\system32\kbdmon.dll
              2010-01-02 16:31:41 ----RA---- C:\WINDOWS\system32\kbdkyr.dll
              2010-01-02 16:31:41 ----RA---- C:\WINDOWS\system32\kbdkaz.dll
              2010-01-02 16:31:41 ----RA---- C:\WINDOWS\system32\kbdbu.dll
              2010-01-02 16:31:41 ----RA---- C:\WINDOWS\system32\kbdblr.dll
              2010-01-02 16:31:41 ----RA---- C:\WINDOWS\system32\kbdaze.dll
              2010-01-02 16:31:40 ----RA---- C:\WINDOWS\system32\kbdhept.dll
              2010-01-02 16:31:40 ----RA---- C:\WINDOWS\system32\kbdhela3.dll
              2010-01-02 16:31:40 ----RA---- C:\WINDOWS\system32\kbdhela2.dll
              2010-01-02 16:31:39 ----RA---- C:\WINDOWS\system32\kbdhe319.dll
              2010-01-02 16:31:39 ----RA---- C:\WINDOWS\system32\kbdhe220.dll
              2010-01-02 16:31:39 ----RA---- C:\WINDOWS\system32\kbdhe.dll
              2010-01-02 16:31:39 ----RA---- C:\WINDOWS\system32\kbdgkl.dll
              2010-01-02 16:31:38 ----RA---- C:\WINDOWS\system32\kbdlv1.dll
              2010-01-02 16:31:38 ----RA---- C:\WINDOWS\system32\kbdlv.dll
              2010-01-02 16:31:38 ----RA---- C:\WINDOWS\system32\kbdlt1.dll
              2010-01-02 16:31:38 ----RA---- C:\WINDOWS\system32\kbdlt.dll
              2010-01-02 16:31:38 ----RA---- C:\WINDOWS\system32\kbdest.dll
              2010-01-02 16:31:37 ----RA---- C:\WINDOWS\system32\kbdycl.dll
              2010-01-02 16:31:37 ----RA---- C:\WINDOWS\system32\kbdsl1.dll
              2010-01-02 16:31:37 ----RA---- C:\WINDOWS\system32\kbdsl.dll
              2010-01-02 16:31:37 ----RA---- C:\WINDOWS\system32\kbdro.dll
              2010-01-02 16:31:37 ----RA---- C:\WINDOWS\system32\kbdpl1.dll
              2010-01-02 16:31:37 ----RA---- C:\WINDOWS\system32\kbdpl.dll
              2010-01-02 16:31:37 ----RA---- C:\WINDOWS\system32\kbdhu1.dll
              2010-01-02 16:31:37 ----RA---- C:\WINDOWS\system32\kbdhu.dll
              2010-01-02 16:31:37 ----RA---- C:\WINDOWS\system32\kbdcz2.dll
              2010-01-02 16:31:37 ----RA---- C:\WINDOWS\system32\kbdcz1.dll
              2010-01-02 16:31:37 ----RA---- C:\WINDOWS\system32\kbdcz.dll
              2010-01-02 16:31:37 ----RA---- C:\WINDOWS\system32\kbdcr.dll
              2010-01-02 16:31:37 ----RA---- C:\WINDOWS\system32\KBDAL.DLL
              2010-01-02 16:31:35 ----A---- C:\WINDOWS\system32\spxcoins.dll
              2010-01-02 16:31:35 ----A---- C:\WINDOWS\system32\irclass.dll
              2010-01-02 16:31:35 ----A---- C:\WINDOWS\system32\EqnClass.Dll
              2010-01-02 16:31:35 ----A---- C:\WINDOWS\system32\dgsetup.dll
              2010-01-02 16:31:35 ----A---- C:\WINDOWS\system32\dgrpsetu.dll
              2010-01-02 16:31:33 ----N---- C:\WINDOWS\system32\CONFIG.TMP
              2010-01-02 16:31:33 ----A---- C:\WINDOWS\TASKMAN.EXE
              2010-01-02 16:31:33 ----A---- C:\WINDOWS\system32\batt.dll
              2010-01-02 16:31:32 ----A---- C:\WINDOWS\system32\storprop.dll
              2010-01-02 16:31:32 ----A---- C:\WINDOWS\NOTEPAD.EXE
              2010-01-02 16:31:26 ----ASH---- C:\Documents and Settings\All Users\Application Data\desktop.ini
              2010-01-02 16:31:23 ----RA---- C:\WINDOWS\SET8.tmp
              2010-01-02 16:31:22 ----RA---- C:\WINDOWS\SET4.tmp
              2010-01-02 16:31:20 ----RA---- C:\WINDOWS\SET3.tmp
              2010-01-02 16:31:17 ----D---- C:\WINDOWS\system32\CatRoot2
              2010-01-02 16:31:17 ----D---- C:\WINDOWS\system32\CatRoot
              2010-01-02 16:31:11 ----SD---- C:\Documents and Settings\All Users\Application Data\Microsoft
              2010-01-02 16:30:53 ----SHD---- C:\System Volume Information
              2010-01-02 16:30:53 ----D---- C:\Documents and Settings
              2010-01-02 16:29:57 ----SH---- C:\boot.ini
              2010-01-02 16:28:15 ----D---- C:\WINDOWS\system32\Lang
              2010-01-02 16:26:35 ----D---- C:\WINDOWS\system32\RTCOM
              2010-01-02 16:26:34 ----A---- C:\WINDOWS\system32\ksuser.dll
              2010-01-02 16:26:11 ----A---- C:\WINDOWS\system32\spupdsvc.exe
              2010-01-02 16:25:53 ----A---- C:\WINDOWS\HideWin.exe
              2010-01-02 16:25:25 ----RSHDC---- C:\WINDOWS\system32\dllcache
              2010-01-02 16:25:25 ----RSD---- C:\WINDOWS\Fonts
              2010-01-02 16:25:25 ----RD---- C:\WINDOWS\Web
              2010-01-02 16:25:25 ----HD---- C:\WINDOWS\inf
              2010-01-02 16:25:25 ----D---- C:\WINDOWS\WinSxS
              2010-01-02 16:25:25 ----D---- C:\WINDOWS\twain_32
              2010-01-02 16:25:25 ----D---- C:\WINDOWS\Temp
              2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\wins
              2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\wbem
              2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\usmt
              2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\spool
              2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\ShellExt
              2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\Setup
              2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\ras
              2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\oobe
              2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\npp
              2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\mui
              2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\inetsrv
              2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\IME
              2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\icsxml
              2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\ias
              2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\export
              2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\drivers
              2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\dhcp
              2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\config
              2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\3com_dmi
              2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\3076
              2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\2052
              2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\1054
              2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\1042
              2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\1041
              2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\1037
              2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\1036
              2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\1033
              2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\1031
              2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\1028
              2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\1025
              2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32
              2010-01-02 16:25:25 ----D---- C:\WINDOWS\system
              2010-01-02 16:25:25 ----D---- C:\WINDOWS\security
              2010-01-02 16:25:25 ----D---- C:\WINDOWS\Resources
              2010-01-02 16:25:25 ----D---- C:\WINDOWS\repair
              2010-01-02 16:25:25 ----D---- C:\WINDOWS\Provisioning
              2010-01-02 16:25:25 ----D---- C:\WINDOWS\PeerNet
              2010-01-02 16:25:25 ----D---- C:\WINDOWS\pchealth
              2010-01-02 16:25:25 ----D---- C:\WINDOWS\mui
              2010-01-02 16:25:25 ----D---- C:\WINDOWS\msapps
              2010-01-02 16:25:25 ----D---- C:\WINDOWS\msagent
              2010-01-02 16:25:25 ----D---- C:\WINDOWS\Media
              2010-01-02 16:25:25 ----D---- C:\WINDOWS\java
              2010-01-02 16:25:25 ----D---- C:\WINDOWS\ime
              2010-01-02 16:25:25 ----D---- C:\WINDOWS\Help
              2010-01-02 16:25:25 ----D---- C:\WINDOWS\ehome
              2010-01-02 16:25:25 ----D---- C:\WINDOWS\Driver Cache
              2010-01-02 16:25:25 ----D---- C:\WINDOWS\Debug
              2010-01-02 16:25:25 ----D---- C:\WINDOWS\Cursors
              2010-01-02 16:25:25 ----D---- C:\WINDOWS\Connection Wizard
              2010-01-02 16:25:25 ----D---- C:\WINDOWS\Config
              2010-01-02 16:25:25 ----D---- C:\WINDOWS\AppPatch
              2010-01-02 16:25:25 ----D---- C:\WINDOWS\addins
              2010-01-02 16:25:25 ----D---- C:\WINDOWS
              2010-01-02 16:20:36 ----RSD---- C:\WINDOWS\assembly
              2010-01-02 16:20:25 ----D---- C:\WINDOWS\Microsoft.NET
              2010-01-02 16:19:20 ----HD---- C:\Program Files\InstallShield Installation Information
              2010-01-02 16:18:42 ----D---- C:\Program Files\Fichiers communs\InstallShield
              2010-01-02 16:18:34 ----D---- C:\ATI
              2010-01-02 16:17:34 ----D---- C:\WINDOWS\system32\SoftwareDistribution
              2010-01-02 16:17:34 ----A---- C:\WINDOWS\system32\wups2.dll
              2010-01-02 16:15:09 ----HDC---- C:\WINDOWS\$MSI31Uninstall_KB893803v2$
              2010-01-02 16:09:39 ----D---- C:\Documents and Settings\JuLieN\Application Data\Identities
              2010-01-02 16:09:38 ----HD---- C:\Program Files\Uninstall Information
              2010-01-02 16:09:34 ----SD---- C:\Documents and Settings\JuLieN\Application Data\Microsoft
              2010-01-02 16:09:34 ----ASH---- C:\Documents and Settings\JuLieN\Application Data\desktop.ini
              2010-01-02 16:06:32 ----D---- C:\WINDOWS\SoftwareDistribution
              2010-01-02 16:06:20 ----SD---- C:\WINDOWS\system32\Microsoft
              2010-01-02 16:06:20 ----D---- C:\WINDOWS\Prefetch
              2010-01-02 16:06:20 ----A---- C:\WINDOWS\SchedLgU.Txt
              2010-01-02 16:00:20 ----D---- C:\WINDOWS\system32\xircom
              2010-01-02 16:00:20 ----D---- C:\Program Files\xerox
              2010-01-02 16:00:20 ----D---- C:\Program Files\microsoft frontpage
              2010-01-02 16:00:06 ----A---- C:\WINDOWS\control.ini
              2010-01-02 16:00:06 ----A---- C:\AUTOEXEC.BAT
              2010-01-02 15:59:56 ----A---- C:\WINDOWS\system32\mapi32.dll
              2010-01-02 15:59:05 ----SD---- C:\WINDOWS\Downloaded Program Files
              2010-01-02 15:59:05 ----RD---- C:\WINDOWS\Offline Web Pages
              2010-01-02 15:59:05 ----RAH---- C:\WINDOWS\system32\logonui.exe.manifest
              2010-01-02 15:59:00 ----RAH---- C:\WINDOWS\system32\cdplayer.exe.manifest
              2010-01-02 15:58:57 ----HD---- C:\Program Files\WindowsUpdate
              2010-01-02 15:58:54 ----D---- C:\Program Files\Services en ligne
              2010-01-02 15:58:41 ----D---- C:\WINDOWS\system32\DirectX
              2010-01-02 15:58:24 ----A---- C:\WINDOWS\system32\atrace.dll
              2010-01-02 15:58:22 ----A---- C:\WINDOWS\system32\desktop.ini
              2010-01-02 15:58:22 ----A---- C:\WINDOWS\desktop.ini
              2010-01-02 15:58:16 ----A---- C:\WINDOWS\system32\nmevtmsg.dll
              2010-01-02 15:58:15 ----D---- C:\Program Files\Fichiers communs\Services
              2010-01-02 15:58:15 ----A---- C:\WINDOWS\system32\acctres.dll
              2010-01-02 15:58:13 ----SD---- C:\WINDOWS\Tasks
              2010-01-02 15:58:13 ----A---- C:\WINDOWS\system32\icfgnt5.dll
              2010-01-02 15:58:12 ----D---- C:\Program Files\Fichiers communs\MSSoap
              2010-01-02 15:58:09 ----D---- C:\WINDOWS\srchasst
              2010-01-02 15:58:08 ----D---- C:\WINDOWS\system32\Macromed
              2010-01-02 15:58:06 ----A---- C:\WINDOWS\system32\wuweb.dll
              2010-01-02 15:58:06 ----A---- C:\WINDOWS\system32\wucltui.dll
              2010-01-02 15:58:05 ----A---- C:\WINDOWS\system32\wups.dll
              2010-01-02 15:58:05 ----A---- C:\WINDOWS\system32\wuauserv.dll
              2010-01-02 15:58:05 ----A---- C:\WINDOWS\system32\wuaueng1.dll
              2010-01-02 15:58:05 ----A---- C:\WINDOWS\system32\wuaueng.dll
              2010-01-02 15:58:05 ----A---- C:\WINDOWS\system32\wuauclt1.exe
              2010-01-02 15:58:05 ----A---- C:\WINDOWS\system32\wuauclt.exe
              2010-01-02 15:58:05 ----A---- C:\WINDOWS\system32\wuapi.dll
              2010-01-02 15:58:05 ----A---- C:\WINDOWS\system32\bitsprx3.dll
              2010-01-02 15:58:05 ----A---- C:\WINDOWS\system32\bitsprx2.dll
              2010-01-02 15:58:04 ----A---- C:\WINDOWS\system32\qmgrprxy.dll
              2010-01-02 15:58:04 ----A---- C:\WINDOWS\system32\qmgr.dll
              2010-01-02 15:58:00 ----D---- C:\Program Files\Movie Maker
              2010-01-02 15:57:58 ----A---- C:\WINDOWS\system32\safrslv.dll
              2010-01-02 15:57:58 ----A---- C:\WINDOWS\system32\safrdm.dll
              2010-01-02 15:57:58 ----A---- C:\WINDOWS\system32\safrcdlg.dll
              2010-01-02 15:57:57 ----A---- C:\WINDOWS\system32\racpldlg.dll
              2010-01-02 15:57:54 ----D---- C:\WINDOWS\system32\Restore
              2010-01-02 15:57:54 ----A---- C:\WINDOWS\system32\srrstr.dll
              2010-01-02 15:57:54 ----A---- C:\WINDOWS\system32\fltMc.exe
              2010-01-02 15:57:54 ----A---- C:\WINDOWS\system32\fltlib.dll
              2010-01-02 15:57:53 ----A---- C:\WINDOWS\system32\srsvc.dll
              2010-01-02 15:57:53 ----A---- C:\WINDOWS\system32\srclient.dll
              2010-01-02 15:57:53 ----A---- C:\WINDOWS\system32\nmmkcert.dll
              2010-01-02 15:57:53 ----A---- C:\WINDOWS\system32\mnmdd.dll
              2010-01-02 15:57:53 ----A---- C:\WINDOWS\system32\isrdbg32.dll
              2010-01-02 15:57:53 ----A---- C:\WINDOWS\system32\ils.dll
              2010-01-02 15:57:52 ----A---- C:\WINDOWS\system32\msconf.dll
              2010-01-02 15:57:52 ----A---- C:\WINDOWS\system32\mnmsrvc.exe
              2010-01-02 15:57:50 ----D---- C:\Program Files\NetMeeting
              2010-01-02 15:57:50 ----A---- C:\WINDOWS\system32\msoert2.dll
              2010-01-02 15:57:50 ----A---- C:\WINDOWS\system32\msoeacct.dll
              2010-01-02 15:57:49 ----A---- C:\WINDOWS\system32\inetres.dll
              2010-01-02 15:57:49 ----A---- C:\WINDOWS\system32\inetcomm.dll
              2010-01-02 15:57:48 ----D---- C:\Program Files\Outlook Express
              2010-01-02 15:57:48 ----A---- C:\WINDOWS\system32\schedsvc.dll
              2010-01-02 15:57:47 ----A---- C:\WINDOWS\system32\mstinit.exe
              2010-01-02 15:57:47 ----A---- C:\WINDOWS\system32\mstask.dll
              2010-01-02 15:57:47 ----A---- C:\WINDOWS\system32\isign32.dll
              2010-01-02 15:57:47 ----A---- C:\WINDOWS\system32\inetcfg.dll
              2010-01-02 15:57:47 ----A---- C:\WINDOWS\system32\icwphbk.dll
              2010-01-02 15:57:47 ----A---- C:\WINDOWS\system32\icwdial.dll
              2010-01-02 15:57:42 ----D---- C:\Program Files\Fichiers communs\System
              2010-01-02 15:57:40 ----D---- C:\Program Files\Internet Explorer
              2010-01-02 15:57:15 ----D---- C:\Program Files\ComPlus Applications
              2010-01-02 15:57:14 ----A---- C:\WINDOWS\vbaddin.ini
              2010-01-02 15:57:14 ----A---- C:\WINDOWS\vb.ini
              2010-01-02 15:57:11 ----D---- C:\WINDOWS\Registration
              2010-01-02 15:57:05 ----D---- C:\Program Files\Windows Media Player
              2010-01-02 15:57:05 ----D---- C:\Program Files\Online Services
              2010-01-02 15:57:01 ----D---- C:\Program Files\Messenger
              2010-01-02 15:56:58 ----D---- C:\Program Files\MSN Gaming Zone
              2010-01-02 15:56:58 ----A---- C:\WINDOWS\system32\write.exe
              2010-01-02 15:56:51 ----A---- C:\WINDOWS\system32\sndvol32.exe
              2010-01-02 15:56:51 ----A---- C:\WINDOWS\system32\hticons.dll
              2010-01-02 15:56:50 ----A---- C:\WINDOWS\system32\winchat.exe
              2010-01-02 15:56:50 ----A---- C:\WINDOWS\system32\avwav.dll
              2010-01-02 15:56:50 ----A---- C:\WINDOWS\system32\avtapi.dll
              2010-01-02 15:56:50 ----A---- C:\WINDOWS\system32\avmeter.dll
              2010-01-02 15:56:45 ----A---- C:\WINDOWS\system32\getuname.dll
              2010-01-02 15:56:45 ----A---- C:\WINDOWS\system32\charmap.exe
              2010-01-02 15:56:45 ----A---- C:\WINDOWS\system32\calc.exe
              2010-01-02 15:56:44 ----A---- C:\WINDOWS\system32\winmine.exe
              2010-01-02 15:56:44 ----A---- C:\WINDOWS\system32\usrlogon.cmd
              2010-01-02 15:56:44 ----A---- C:\WINDOWS\system32\tsshutdn.exe
              2010-01-02 15:56:44 ----A---- C:\WINDOWS\system32\tslabels.ini
              2010-01-02 15:56:44 ----A---- C:\WINDOWS\system32\tskill.exe
              2010-01-02 15:56:44 ----A---- C:\WINDOWS\system32\tsdiscon.exe
              2010-01-02 15:56:44 ----A---- C:\WINDOWS\system32\tscon.exe
              2010-01-02 15:56:44 ----A---- C:\WINDOWS\system32\sol.exe
              2010-01-02 15:56:44 ----A---- C:\WINDOWS\system32\reset.exe
              2010-01-02 15:56:44 ----A---- C:\WINDOWS\system32\mshearts.exe
              2010-01-02 15:56:44 ----A---- C:\WINDOWS\system32\freecell.exe
              2010-01-02 15:56:43 ----A---- C:\WINDOWS\system32\shadow.exe
              2010-01-02 15:56:43 ----A---- C:\WINDOWS\system32\rwinsta.exe
              2010-01-02 15:56:43 ----A---- C:\WINDOWS\system32\regini.exe
              2010-01-02 15:56:43 ----A---- C:\WINDOWS\system32\rdpcfgex.dll
              2010-01-02 15:56:43 ----A---- C:\WINDOWS\system32\qwinsta.exe
              2010-01-02 15:56:43 ----A---- C:\WINDOWS\system32\qappsrv.exe
              2010-01-02 15:56:43 ----A---- C:\WINDOWS\system32\msg.exe
              2010-01-02 15:56:43 ----A---- C:\WINDOWS\system32\msdtcprf.ini
              2010-01-02 15:56:43 ----A---- C:\WINDOWS\system32\logoff.exe
              2010-01-02 15:56:43 ----A---- C:\WINDOWS\system32\cdmodem.dll
              2010-01-02 15:56:42 ----A---- C:\WINDOWS\system32\stclient.dll
              2010-01-02 15:56:42 ----A---- C:\WINDOWS\system32\mtxlegih.dll
              2010-01-02 15:56:42 ----A---- C:\WINDOWS\system32\mtxex.dll
              2010-01-02 15:56:42 ----A---- C:\WINDOWS\system32\mtxdm.dll
              2010-01-02 15:56:42 ----A---- C:\WINDOWS\system32\dcomcnfg.exe
              2010-01-02 15:56:42 ----A---- C:\WINDOWS\system32\comsnap.dll
              2010-01-02 15:56:42 ----A---- C:\WINDOWS\system32\comrepl.dll
              2010-01-02 15:56:42 ----A---- C:\WINDOWS\system32\comaddin.dll
              2010-01-02 15:56:38 ----A---- C:\WINDOWS\system32\wmimgmt.msc
              2010-01-02 15:56:26 ----D---- C:\Program Files\MSN
              2010-01-02 15:56:25 ----A---- C:\WINDOWS\system32\sndrec32.exe
              2010-01-02 15:56:25 ----A---- C:\WINDOWS\system32\mplay32.exe
              2010-01-02 15:56:25 ----A---- C:\WINDOWS\system32\accwiz.exe
              2010-01-02 15:56:24 ----D---- C:\Program Files\Windows NT
              2010-01-02 15:56:24 ----A---- C:\WINDOWS\system32\spider.exe
              2010-01-02 15:56:24 ----A---- C:\WINDOWS\system32\mspaint.exe
              2010-01-02 15:56:24 ----A---- C:\WINDOWS\system32\hypertrm.dll
              2010-01-02 15:56:24 ----A---- C:\WINDOWS\system32\clipbrd.exe
              2010-01-02 15:56:23 ----A---- C:\WINDOWS\system32\tscfgwmi.dll
              2010-01-02 15:56:23 ----A---- C:\WINDOWS\system32\sessmgr.exe
              2010-01-02 15:56:23 ----A---- C:\WINDOWS\system32\remotepg.dll
              2010-01-02 15:56:23 ----A---- C:\WINDOWS\system32\rdshost.exe
              2010-01-02 15:56:23 ----A---- C:\WINDOWS\system32\rdsaddin.exe
              2010-01-02 15:56:23 ----A---- C:\WINDOWS\system32\mstscax.dll
              2010-01-02 15:56:23 ----A---- C:\WINDOWS\system32\mstsc.exe
              2010-01-02 15:56:22 ----D---- C:\WINDOWS\system32\MsDtc
              2010-01-02 15:56:22 ----A---- C:\WINDOWS\system32\tscupgrd.exe
              2010-01-02 15:56:22 ----A---- C:\WINDOWS\system32\termsrv.dll
              2010-01-02 15:56:22 ----A---- C:\WINDOWS\system32\rdpwsx.dll
              2010-01-02 15:56:22 ----A---- C:\WINDOWS\system32\rdpsnd.dll
              2010-01-02 15:56:22 ----A---- C:\WINDOWS\system32\rdpclip.exe
              2010-01-02 15:56:22 ----A---- C:\WINDOWS\system32\rdchost.dll
              2010-01-02 15:56:22 ----A---- C:\WINDOWS\system32\qprocess.exe
              2010-01-02 15:56:22 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
              2010-01-02 15:56:22 ----A---- C:\WINDOWS\system32\icaapi.dll
              2010-01-02 15:56:22 ----A---- C:\WINDOWS\system32\cfgbkend.dll
              2010-01-02 15:56:21 ----A---- C:\WINDOWS\system32\xolehlp.dll
              2010-01-02 15:56:21 ----A---- C:\WINDOWS\system32\mtxoci.dll
              2010-01-02 15:56:21 ----A---- C:\WINDOWS\system32\msdtctm.dll
              2010-01-02 15:56:21 ----A---- C:\WINDOWS\system32\msdtcprx.dll
              2010-01-02 15:56:21 ----A---- C:\WINDOWS\system32\msdtclog.dll
              2010-01-02 15:56:21 ----A---- C:\WINDOWS\system32\msdtc.exe
              2010-01-02 15:56:20 ----D---- C:\WINDOWS\system32\Com
              2010-01-02 15:56:20 ----A---- C:\WINDOWS\system32\colbact.dll
              2010-01-02 15:56:20 ----A---- C:\WINDOWS\system32\clbcatex.dll
              2010-01-02 15:56:20 ----A---- C:\WINDOWS\system32\catsrvut.dll
              2010-01-02 15:56:20 ----A---- C:\WINDOWS\system32\catsrvps.dll
              2010-01-02 15:56:20 ----A---- C:\WINDOWS\system32\catsrv.dll
              2010-01-02 15:56:19 ----A---- C:\WINDOWS\system32\comuid.dll
              2010-01-02 15:56:19 ----A---- C:\WINDOWS\system32\comsvcs.dll
              2010-01-02 15:56:19 ----A---- C:\WINDOWS\system32\clbcatq.dll
              2010-01-02 15:56:14 ----A---- C:\WINDOWS\system32\servdeps.dll
              2010-01-02 15:56:14 ----A---- C:\WINDOWS\system32\mmfutil.dll
              2010-01-02 15:56:14 ----A---- C:\WINDOWS\system32\licwmi.dll
              2010-01-02 15:56:13 ----A---- C:\WINDOWS\system32\cmprops.dll

              ======List of files/folders modified in the last 2 months======

              2010-02-18 16:12:49 ----A---- C:\WINDOWS\system.ini
              2010-01-28 12:59:49 ----A---- C:\WINDOWS\win.ini

              ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

              R1 Aavmker4;avast! Asynchronous Virus Monitor; C:\WINDOWS\system32\drivers\Aavmker4.sys [2008-07-19 26944]
              R1 aswSP;avast! Self Protection; C:\WINDOWS\system32\drivers\aswSP.sys [2008-07-19 78416]
              R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2008-07-19 42912]
              R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\DRIVERS\aswFsBlk.sys [2008-07-19 20560]
              R2 aswMon2;avast! Standard Shield Support; C:\WINDOWS\system32\drivers\aswMon2.sys [2008-07-19 94416]
              R2 NwlnkIpx;Protocole de transport compatible NWLink IPX/SPX/NetBIOS; C:\WINDOWS\system32\DRIVERS\nwlnkipx.sys [2004-08-03 88448]
              R2 NwlnkNb;NetBIOS NWLink; C:\WINDOWS\system32\DRIVERS\nwlnknb.sys [2002-08-30 63232]
              R2 NwlnkSpx;Protocole NWLink SPX/SPXII; C:\WINDOWS\system32\DRIVERS\nwlnkspx.sys [2002-08-30 55936]
              R3 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2008-07-19 23152]
              R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2010-02-03 4605952]
              R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2005-01-07 138752]
              R3 hidusb;Pilote de classe HID Microsoft; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2002-08-30 9600]
              R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2007-06-22 4432384]
              R3 LVPr2Mon;LVPr2Mon Driver; C:\WINDOWS\system32\Drivers\LVPr2Mon.sys [2009-10-07 25752]
              R3 LVRS;Logitech RightSound Filter Driver; C:\WINDOWS\system32\DRIVERS\lvrs.sys [2009-10-07 266008]
              R3 LVUVC;Logitech Webcam 500(UVC); C:\WINDOWS\system32\DRIVERS\lvuvc.sys [2009-10-07 6756632]
              R3 mouhid;Pilote HID de souris; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2002-08-30 12288]
              R3 NWRDR;NetWare Rdr; C:\WINDOWS\system32\DRIVERS\nwrdr.sys [2004-08-03 163584]
              R3 RTL8023xp;Realtek 10/100/1000 PCI NIC Family NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtnicxp.sys [2009-03-25 130432]
              R3 usbaudio;Pilote USB audio (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2004-08-03 59264]
              R3 usbccgp;Pilote parent générique USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2004-08-03 31616]
              R3 usbehci;Pilote miniport de contrôleur d'hôte amélioré Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2004-08-03 26624]
              R3 usbhub;Concentrateur USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2004-08-03 57600]
              R3 usbohci;Pilote miniport de contrôleur hôte ouvert USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbohci.sys [2004-08-03 17024]
              R3 yukonwxp;NDIS5.1 Miniport Driver for Marvell Yukon Ethernet Controller; C:\WINDOWS\system32\DRIVERS\yk51x86.sys [2007-09-20 265856]
              S1 kbdhid;Pilote HID de clavier; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2004-08-19 14848]
              S3 BthEnum;Pilote de bloc de demande Bluetooth; C:\WINDOWS\system32\DRIVERS\BthEnum.sys [2004-08-03 17024]
              S3 BthPan;Périphérique Bluetooth (réseau personnel); C:\WINDOWS\system32\DRIVERS\bthpan.sys [2004-08-03 100992]
              S3 BTHPORT;Pilote de port Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2004-08-19 274944]
              S3 BTHUSB;Pilote USB radio Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2004-08-03 18944]
              S3 CCDECODE;Décodeur sous-titre fermé; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2004-08-03 17024]
              S3 driverhardwarev2;driverhardwarev2; \??\C:\Program Files\ma-config.com\Drivers\driverhardwarev2.sys []
              S3 FilterService;UVC Filter Service; C:\WINDOWS\system32\DRIVERS\lvuvcflt.sys [2009-10-07 23832]
              S3 HPZid412;IEEE-1284.4 Driver HPZid412; C:\WINDOWS\system32\DRIVERS\HPZid412.sys [2007-10-29 49920]
              S3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; C:\WINDOWS\system32\DRIVERS\HPZipr12.sys [2007-10-29 16496]
              S3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:\WINDOWS\system32\DRIVERS\HPZius12.sys [2007-10-29 21568]
              S3 MSTEE;Convertisseur en T/site-à-site de répartition Microsoft; C:\WINDOWS\system32\drivers\MSTEE.sys [2004-08-03 5504]
              S3 NABTSFEC;Codec NABTS/FEC VBI; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2004-08-03 85376]
              S3 NdisIP;Connection TV/vidéo Microsoft; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2004-08-03 10880]
              S3 PCAMPR5;PCAMPR5 NDIS Protocol Driver; \??\C:\WINDOWS\system32\PCAMPR5.SYS []
              S3 PCANDIS5;PCANDIS5 NDIS Protocol Driver; \??\C:\WINDOWS\system32\PCANDIS5.SYS []
              S3 RFCOMM;Périphérique Bluetooth (TDI protocole RFCOMM); C:\WINDOWS\system32\DRIVERS\rfcomm.sys [2004-08-03 59648]
              S3 rtl8139;Pilote NT de carte Realtek PCI Fast Ethernet à base RTL8139(A/B/C); C:\WINDOWS\system32\DRIVERS\RTL8139.SYS [2004-08-03 20992]
              S3 SLIP;Détrameur décalage BDA; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2004-08-03 11136]
              S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2004-08-03 15360]
              S3 usb_rndisx;USB RNDIS Adapter; C:\WINDOWS\system32\DRIVERS\usb8023x.sys [2005-10-21 12800]
              S3 usbprint;Classe d'imprimantes USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2004-08-03 25856]
              S3 usbscan;Pilote de scanneur USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2004-08-03 15104]
              S3 USBSTOR;Pilote de stockage de masse USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2004-08-03 26496]
              S3 usbvideo;Périphérique vidéo USB (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2004-08-03 78464]
              S3 wceusbsh;Windows CE USB Serial Host Driver; C:\WINDOWS\system32\DRIVERS\wceusbsh.sys [2006-11-06 28672]
              S3 WSTCODEC;Codec Teletext standard; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2004-08-03 19328]
              S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []

              ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

              R2 aswUpdSv;avast! iAVS4 Control Service; C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe [2008-07-19 16056]
              R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2010-02-03 602112]
              R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast4\ashServ.exe [2008-07-19 147640]
              R2 BthServ;Bluetooth Support Service; C:\WINDOWS\system32\svchost.exe [2004-08-19 14336]
              R2 hpqddsvc;Service HP CUE DeviceDiscovery; C:\WINDOWS\system32\svchost.exe [2004-08-19 14336]
              R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2009-10-11 153376]
              R2 LVPrcSrv;Process Monitor; C:\Program Files\Fichiers communs\LogiShrd\LVMVFM\LVPrcSrv.exe [2009-10-07 154136]
              R2 Net Driver HPZ12;Net Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2004-08-19 14336]
              R2 NMSAccessU;NMSAccessU; C:\Program Files\CDBurnerXP\NMSAccessU.exe [2008-10-20 71096]
              R2 NWCWorkstation;Service client pour NetWare; C:\WINDOWS\system32\svchost.exe [2004-08-19 14336]
              R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2004-08-19 14336]
              R2 UMWdf;Windows User Mode Driver Framework; C:\WINDOWS\system32\wdfmgr.exe [2005-01-28 38912]
              R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe [2008-07-19 250040]
              R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast4\ashWebSv.exe [2008-07-19 348344]
              R3 hpqcxs08;hpqcxs08; C:\WINDOWS\system32\svchost.exe [2004-08-19 14336]
              S2 gupdate;Google Update Service (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-02-06 135664]
              S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
              S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
              S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2010-01-07 182768]
              S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
              S3 maconfservice;Ma-Config Service; C:\Program Files\ma-config.com\maconfservice.exe [2010-01-26 243056]

              -----------------EOF-----------------
              0
              1. LOG.TXT PARTIE 2

                2010-01-03 20:28:50 ----D---- C:\Program Files\Electronic Arts
                2010-01-03 20:28:49 ----A---- C:\WINDOWS\system32\d3dx10_40.dll
                2010-01-03 20:28:49 ----A---- C:\WINDOWS\system32\D3DCompiler_40.dll
                2010-01-03 20:28:48 ----A---- C:\WINDOWS\system32\XAudio2_3.dll
                2010-01-03 20:28:48 ----A---- C:\WINDOWS\system32\XAPOFX1_2.dll
                2010-01-03 20:28:48 ----A---- C:\WINDOWS\system32\xactengine3_3.dll
                2010-01-03 20:28:48 ----A---- C:\WINDOWS\system32\D3DX9_40.dll
                2010-01-03 20:28:47 ----A---- C:\WINDOWS\system32\XAudio2_2.dll
                2010-01-03 20:28:47 ----A---- C:\WINDOWS\system32\XAPOFX1_1.dll
                2010-01-03 20:28:47 ----A---- C:\WINDOWS\system32\xactengine3_2.dll
                2010-01-03 20:28:47 ----A---- C:\WINDOWS\system32\X3DAudio1_5.dll
                2010-01-03 20:28:47 ----A---- C:\WINDOWS\system32\d3dx10_39.dll
                2010-01-03 20:28:47 ----A---- C:\WINDOWS\system32\D3DCompiler_39.dll
                2010-01-03 20:28:46 ----A---- C:\WINDOWS\system32\XAudio2_1.dll
                2010-01-03 20:28:46 ----A---- C:\WINDOWS\system32\XAPOFX1_0.dll
                2010-01-03 20:28:46 ----A---- C:\WINDOWS\system32\xactengine3_1.dll
                2010-01-03 20:28:46 ----A---- C:\WINDOWS\system32\D3DX9_39.dll
                2010-01-03 20:28:45 ----A---- C:\WINDOWS\system32\X3DAudio1_4.dll
                2010-01-03 20:28:45 ----A---- C:\WINDOWS\system32\d3dx10_38.dll
                2010-01-03 20:28:45 ----A---- C:\WINDOWS\system32\D3DCompiler_38.dll
                2010-01-03 20:28:44 ----A---- C:\WINDOWS\system32\XAudio2_0.dll
                2010-01-03 20:28:44 ----A---- C:\WINDOWS\system32\xactengine3_0.dll
                2010-01-03 20:28:44 ----A---- C:\WINDOWS\system32\X3DAudio1_3.dll
                2010-01-03 20:28:44 ----A---- C:\WINDOWS\system32\D3DX9_38.dll
                2010-01-03 20:28:43 ----A---- C:\WINDOWS\system32\xactengine2_10.dll
                2010-01-03 20:28:43 ----A---- C:\WINDOWS\system32\D3DX9_37.dll
                2010-01-03 20:28:43 ----A---- C:\WINDOWS\system32\d3dx10_37.dll
                2010-01-03 20:28:43 ----A---- C:\WINDOWS\system32\D3DCompiler_37.dll
                2010-01-03 20:28:42 ----A---- C:\WINDOWS\system32\d3dx9_36.dll
                2010-01-03 20:28:42 ----A---- C:\WINDOWS\system32\d3dx10_36.dll
                2010-01-03 20:28:42 ----A---- C:\WINDOWS\system32\D3DCompiler_36.dll
                2010-01-03 20:28:41 ----A---- C:\WINDOWS\system32\xactengine2_9.dll
                2010-01-03 20:28:41 ----A---- C:\WINDOWS\system32\d3dx9_35.dll
                2010-01-03 20:28:41 ----A---- C:\WINDOWS\system32\d3dx10_35.dll
                2010-01-03 20:28:41 ----A---- C:\WINDOWS\system32\D3DCompiler_35.dll
                2010-01-03 20:28:40 ----A---- C:\WINDOWS\system32\xactengine2_8.dll
                2010-01-03 20:28:40 ----A---- C:\WINDOWS\system32\X3DAudio1_2.dll
                2010-01-03 20:28:40 ----A---- C:\WINDOWS\system32\d3dx9_34.dll
                2010-01-03 20:28:40 ----A---- C:\WINDOWS\system32\d3dx10_34.dll
                2010-01-03 20:28:40 ----A---- C:\WINDOWS\system32\D3DCompiler_34.dll
                2010-01-03 20:28:39 ----A---- C:\WINDOWS\system32\xinput1_3.dll
                2010-01-03 20:28:39 ----A---- C:\WINDOWS\system32\xactengine2_7.dll
                2010-01-03 20:28:38 ----A---- C:\WINDOWS\system32\xactengine2_6.dll
                2010-01-03 20:28:38 ----A---- C:\WINDOWS\system32\d3dx9_33.dll
                2010-01-03 20:28:38 ----A---- C:\WINDOWS\system32\d3dx10_33.dll
                2010-01-03 20:28:38 ----A---- C:\WINDOWS\system32\D3DCompiler_33.dll
                2010-01-03 20:28:37 ----A---- C:\WINDOWS\system32\xinput1_2.dll
                2010-01-03 20:28:37 ----A---- C:\WINDOWS\system32\xactengine2_5.dll
                2010-01-03 20:28:37 ----A---- C:\WINDOWS\system32\xactengine2_4.dll
                2010-01-03 20:28:37 ----A---- C:\WINDOWS\system32\xactengine2_3.dll
                2010-01-03 20:28:37 ----A---- C:\WINDOWS\system32\x3daudio1_1.dll
                2010-01-03 20:28:37 ----A---- C:\WINDOWS\system32\d3dx9_32.dll
                2010-01-03 20:28:37 ----A---- C:\WINDOWS\system32\d3dx9_31.dll
                2010-01-03 20:28:36 ----A---- C:\WINDOWS\system32\xinput1_1.dll
                2010-01-03 20:28:36 ----A---- C:\WINDOWS\system32\xactengine2_2.dll
                2010-01-03 20:28:36 ----A---- C:\WINDOWS\system32\xactengine2_1.dll
                2010-01-03 20:28:32 ----A---- C:\WINDOWS\system32\d3dx9_30.dll
                2010-01-03 20:28:31 ----A---- C:\WINDOWS\system32\xinput9_1_0.dll
                2010-01-03 20:28:31 ----A---- C:\WINDOWS\system32\xactengine2_0.dll
                2010-01-03 20:28:31 ----A---- C:\WINDOWS\system32\x3daudio1_0.dll
                2010-01-03 20:28:31 ----A---- C:\WINDOWS\system32\d3dx9_29.dll
                2010-01-03 20:28:31 ----A---- C:\WINDOWS\system32\d3dx9_28.dll
                2010-01-03 20:28:31 ----A---- C:\WINDOWS\system32\d3dx9_27.dll
                2010-01-03 20:28:30 ----A---- C:\WINDOWS\system32\d3dx9_26.dll
                2010-01-03 20:28:30 ----A---- C:\WINDOWS\system32\d3dx9_25.dll
                2010-01-03 20:28:29 ----A---- C:\WINDOWS\system32\d3dx9_24.dll
                2010-01-03 20:28:19 ----D---- C:\WINDOWS\Logs
                2010-01-03 15:31:14 ----N---- C:\WINDOWS\system32\MSVCR71.dll
                2010-01-03 15:31:14 ----N---- C:\WINDOWS\system32\MSVCP71.dll
                2010-01-03 15:31:14 ----N---- C:\WINDOWS\system32\MFC71.dll
                2010-01-03 15:31:14 ----A---- C:\WINDOWS\system32\aswBoot.exe
                2010-01-03 15:31:12 ----D---- C:\Program Files\Alwil Software
                2010-01-02 22:02:18 ----SHD---- C:\RECYCLER
                2010-01-02 21:01:24 ----D---- C:\Documents and Settings\JuLieN\Application Data\vlc
                2010-01-02 21:01:09 ----D---- C:\Program Files\VideoLAN
                2010-01-02 20:36:40 ----D---- C:\Documents and Settings\JuLieN\Application Data\Macromedia
                2010-01-02 20:36:40 ----D---- C:\Documents and Settings\JuLieN\Application Data\Adobe
                2010-01-02 20:18:11 ----D---- C:\Documents and Settings\JuLieN\Application Data\Leadertech
                2010-01-02 20:17:50 ----A---- C:\WINDOWS\system32\LVUI2RC.dll
                2010-01-02 20:17:49 ----A---- C:\WINDOWS\system32\LVUI2.dll
                2010-01-02 20:17:49 ----A---- C:\WINDOWS\system32\lvcodec2.dll
                2010-01-02 20:17:33 ----RA---- C:\WINDOWS\system32\lvci1201278.dll
                2010-01-02 20:17:33 ----A---- C:\WINDOWS\system32\lvcoinst.ini
                2010-01-02 20:17:10 ----D---- C:\WINDOWS\system32\ReinstallBackups
                2010-01-02 20:17:04 ----DC---- C:\WINDOWS\system32\DRVSTORE
                2010-01-02 20:16:38 ----D---- C:\Program Files\Fichiers communs\LogiShrd
                2010-01-02 20:16:37 ----D---- C:\Documents and Settings\All Users\Application Data\LogiShrd
                2010-01-02 20:16:32 ----D---- C:\Program Files\Logitech
                2010-01-02 20:14:29 ----A---- C:\WINDOWS\system32\vfwwdm32.dll
                2010-01-02 16:44:45 ----D---- C:\Program Files\Microsoft
                2010-01-02 16:44:30 ----D---- C:\Program Files\Windows Live SkyDrive
                2010-01-02 16:44:10 ----D---- C:\Program Files\Windows Live
                2010-01-02 16:41:10 ----A---- C:\WINDOWS\system32\h323log.txt
                2010-01-02 16:34:42 ----A---- C:\WINDOWS\system32\hidserv.dll
                2010-01-02 16:34:38 ----D---- C:\Program Files\Fichiers communs\Windows Live
                2010-01-02 16:32:49 ----A---- C:\WINDOWS\system32\usbui.dll
                2010-01-02 16:31:49 ----SHD---- C:\WINDOWS\Installer
                2010-01-02 16:31:49 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
                2010-01-02 16:31:48 ----D---- C:\Program Files\Fichiers communs\ODBC
                2010-01-02 16:31:48 ----A---- C:\WINDOWS\ODBCINST.INI
                2010-01-02 16:31:45 ----D---- C:\Program Files\Fichiers communs\SpeechEngines
                2010-01-02 16:31:45 ----D---- C:\Program Files\Fichiers communs\Microsoft Shared
                2010-01-02 16:31:45 ----D---- C:\Program Files\Fichiers communs
                2010-01-02 16:31:45 ----D---- C:\Program Files
                2010-01-02 16:31:42 ----RA---- C:\WINDOWS\system32\kbdtuq.dll
                2010-01-02 16:31:42 ----RA---- C:\WINDOWS\system32\kbdtuf.dll
                2010-01-02 16:31:42 ----RA---- C:\WINDOWS\system32\kbdazel.dll
                2010-01-02 16:31:41 ----RA---- C:\WINDOWS\system32\kbdycc.dll
                2010-01-02 16:31:41 ----RA---- C:\WINDOWS\system32\kbduzb.dll
                2010-01-02 16:31:41 ----RA---- C:\WINDOWS\system32\kbdur.dll
                2010-01-02 16:31:41 ----RA---- C:\WINDOWS\system32\kbdtat.dll
                2010-01-02 16:31:41 ----RA---- C:\WINDOWS\system32\kbdru1.dll
                2010-01-02 16:31:41 ----RA---- C:\WINDOWS\system32\kbdru.dll
                2010-01-02 16:31:41 ----RA---- C:\WINDOWS\system32\kbdmon.dll
                2010-01-02 16:31:41 ----RA---- C:\WINDOWS\system32\kbdkyr.dll
                2010-01-02 16:31:41 ----RA---- C:\WINDOWS\system32\kbdkaz.dll
                2010-01-02 16:31:41 ----RA---- C:\WINDOWS\system32\kbdbu.dll
                2010-01-02 16:31:41 ----RA---- C:\WINDOWS\system32\kbdblr.dll
                2010-01-02 16:31:41 ----RA---- C:\WINDOWS\system32\kbdaze.dll
                2010-01-02 16:31:40 ----RA---- C:\WINDOWS\system32\kbdhept.dll
                2010-01-02 16:31:40 ----RA---- C:\WINDOWS\system32\kbdhela3.dll
                2010-01-02 16:31:40 ----RA---- C:\WINDOWS\system32\kbdhela2.dll
                2010-01-02 16:31:39 ----RA---- C:\WINDOWS\system32\kbdhe319.dll
                2010-01-02 16:31:39 ----RA---- C:\WINDOWS\system32\kbdhe220.dll
                2010-01-02 16:31:39 ----RA---- C:\WINDOWS\system32\kbdhe.dll
                2010-01-02 16:31:39 ----RA---- C:\WINDOWS\system32\kbdgkl.dll
                2010-01-02 16:31:38 ----RA---- C:\WINDOWS\system32\kbdlv1.dll
                2010-01-02 16:31:38 ----RA---- C:\WINDOWS\system32\kbdlv.dll
                2010-01-02 16:31:38 ----RA---- C:\WINDOWS\system32\kbdlt1.dll
                2010-01-02 16:31:38 ----RA---- C:\WINDOWS\system32\kbdlt.dll
                2010-01-02 16:31:38 ----RA---- C:\WINDOWS\system32\kbdest.dll
                2010-01-02 16:31:37 ----RA---- C:\WINDOWS\system32\kbdycl.dll
                2010-01-02 16:31:37 ----RA---- C:\WINDOWS\system32\kbdsl1.dll
                2010-01-02 16:31:37 ----RA---- C:\WINDOWS\system32\kbdsl.dll
                2010-01-02 16:31:37 ----RA---- C:\WINDOWS\system32\kbdro.dll
                2010-01-02 16:31:37 ----RA---- C:\WINDOWS\system32\kbdpl1.dll
                2010-01-02 16:31:37 ----RA---- C:\WINDOWS\system32\kbdpl.dll
                2010-01-02 16:31:37 ----RA---- C:\WINDOWS\system32\kbdhu1.dll
                2010-01-02 16:31:37 ----RA---- C:\WINDOWS\system32\kbdhu.dll
                2010-01-02 16:31:37 ----RA---- C:\WINDOWS\system32\kbdcz2.dll
                2010-01-02 16:31:37 ----RA---- C:\WINDOWS\system32\kbdcz1.dll
                2010-01-02 16:31:37 ----RA---- C:\WINDOWS\system32\kbdcz.dll
                2010-01-02 16:31:37 ----RA---- C:\WINDOWS\system32\kbdcr.dll
                2010-01-02 16:31:37 ----RA---- C:\WINDOWS\system32\KBDAL.DLL
                2010-01-02 16:31:35 ----A---- C:\WINDOWS\system32\spxcoins.dll
                2010-01-02 16:31:35 ----A---- C:\WINDOWS\system32\irclass.dll
                2010-01-02 16:31:35 ----A---- C:\WINDOWS\system32\EqnClass.Dll
                2010-01-02 16:31:35 ----A---- C:\WINDOWS\system32\dgsetup.dll
                2010-01-02 16:31:35 ----A---- C:\WINDOWS\system32\dgrpsetu.dll
                2010-01-02 16:31:33 ----N---- C:\WINDOWS\system32\CONFIG.TMP
                2010-01-02 16:31:33 ----A---- C:\WINDOWS\TASKMAN.EXE
                2010-01-02 16:31:33 ----A---- C:\WINDOWS\system32\batt.dll
                2010-01-02 16:31:32 ----A---- C:\WINDOWS\system32\storprop.dll
                2010-01-02 16:31:32 ----A---- C:\WINDOWS\NOTEPAD.EXE
                2010-01-02 16:31:26 ----ASH---- C:\Documents and Settings\All Users\Application Data\desktop.ini
                2010-01-02 16:31:23 ----RA---- C:\WINDOWS\SET8.tmp
                2010-01-02 16:31:22 ----RA---- C:\WINDOWS\SET4.tmp
                2010-01-02 16:31:20 ----RA---- C:\WINDOWS\SET3.tmp
                2010-01-02 16:31:17 ----D---- C:\WINDOWS\system32\CatRoot2
                2010-01-02 16:31:17 ----D---- C:\WINDOWS\system32\CatRoot
                2010-01-02 16:31:11 ----SD---- C:\Documents and Settings\All Users\Application Data\Microsoft
                2010-01-02 16:30:53 ----SHD---- C:\System Volume Information
                2010-01-02 16:30:53 ----D---- C:\Documents and Settings
                2010-01-02 16:29:57 ----SH---- C:\boot.ini
                2010-01-02 16:28:15 ----D---- C:\WINDOWS\system32\Lang
                2010-01-02 16:26:35 ----D---- C:\WINDOWS\system32\RTCOM
                2010-01-02 16:26:34 ----A---- C:\WINDOWS\system32\ksuser.dll
                2010-01-02 16:26:11 ----A---- C:\WINDOWS\system32\spupdsvc.exe
                2010-01-02 16:25:53 ----A---- C:\WINDOWS\HideWin.exe
                2010-01-02 16:25:25 ----RSHDC---- C:\WINDOWS\system32\dllcache
                2010-01-02 16:25:25 ----RSD---- C:\WINDOWS\Fonts
                2010-01-02 16:25:25 ----RD---- C:\WINDOWS\Web
                2010-01-02 16:25:25 ----HD---- C:\WINDOWS\inf
                2010-01-02 16:25:25 ----D---- C:\WINDOWS\WinSxS
                2010-01-02 16:25:25 ----D---- C:\WINDOWS\twain_32
                2010-01-02 16:25:25 ----D---- C:\WINDOWS\Temp
                2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\wins
                2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\wbem
                2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\usmt
                2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\spool
                2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\ShellExt
                2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\Setup
                2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\ras
                2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\oobe
                2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\npp
                2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\mui
                2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\inetsrv
                2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\IME
                2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\icsxml
                2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\ias
                2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\export
                2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\drivers
                2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\dhcp
                2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\config
                2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\3com_dmi
                2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\3076
                2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\2052
                2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\1054
                2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\1042
                2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\1041
                2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\1037
                2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\1036
                2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\1033
                2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\1031
                2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\1028
                2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32\1025
                2010-01-02 16:25:25 ----D---- C:\WINDOWS\system32
                2010-01-02 16:25:25 ----D---- C:\WINDOWS\system
                2010-01-02 16:25:25 ----D---- C:\WINDOWS\security
                2010-01-02 16:25:25 ----D---- C:\WINDOWS\Resources
                2010-01-02 16:25:25 ----D---- C:\WINDOWS\repair
                2010-01-02 16:25:25 ----D---- C:\WINDOWS\Provisioning
                2010-01-02 16:25:25 ----D---- C:\WINDOWS\PeerNet
                2010-01-02 16:25:25 ----D---- C:\WINDOWS\pchealth
                2010-01-02 16:25:25 ----D---- C:\WINDOWS\mui
                2010-01-02 16:25:25 ----D---- C:\WINDOWS\msapps
                2010-01-02 16:25:25 ----D---- C:\WINDOWS\msagent
                2010-01-02 16:25:25 ----D---- C:\WINDOWS\Media
                2010-01-02 16:25:25 ----D---- C:\WINDOWS\java
                2010-01-02 16:25:25 ----D---- C:\WINDOWS\ime
                2010-01-02 16:25:25 ----D---- C:\WINDOWS\Help
                2010-01-02 16:25:25 ----D---- C:\WINDOWS\ehome
                2010-01-02 16:25:25 ----D---- C:\WINDOWS\Driver Cache
                2010-01-02 16:25:25 ----D---- C:\WINDOWS\Debug
                2010-01-02 16:25:25 ----D---- C:\WINDOWS\Cursors
                2010-01-02 16:25:25 ----D---- C:\WINDOWS\Connection Wizard
                2010-01-02 16:25:25 ----D---- C:\WINDOWS\Config
                2010-01-02 16:25:25 ----D---- C:\WINDOWS\AppPatch
                2010-01-02 16:25:25 ----D---- C:\WINDOWS\addins
                2010-01-02 16:25:25 ----D---- C:\WINDOWS
                2010-01-02 16:20:36 ----RSD---- C:\WINDOWS\assembly
                2010-01-02 16:20:25 ----D---- C:\WINDOWS\Microsoft.NET
                2010-01-02 16:19:20 ----HD---- C:\Program Files\InstallShield Installation Information
                2010-01-02 16:18:42 ----D---- C:\Program Files\Fichiers communs\InstallShield
                2010-01-02 16:18:34 ----D---- C:\ATI
                2010-01-02 16:17:34 ----D---- C:\WINDOWS\system32\SoftwareDistribution
                2010-01-02 16:17:34 ----A---- C:\WINDOWS\system32\wups2.dll
                2010-01-02 16:15:09 ----HDC---- C:\WINDOWS\$MSI31Uninstall_KB893803v2$
                2010-01-02 16:09:39 ----D---- C:\Documents and Settings\JuLieN\Application Data\Identities
                2010-01-02 16:09:38 ----HD---- C:\Program Files\Uninstall Information
                2010-01-02 16:09:34 ----SD---- C:\Documents and Settings\JuLieN\Application Data\Microsoft
                2010-01-02 16:09:34 ----ASH---- C:\Documents and Settings\JuLieN\Application Data\desktop.ini
                2010-01-02 16:06:32 ----D---- C:\WINDOWS\SoftwareDistribution
                2010-01-02 16:06:20 ----SD---- C:\WINDOWS\system32\Microsoft
                2010-01-02 16:06:20 ----D---- C:\WINDOWS\Prefetch
                2010-01-02 16:06:20 ----A---- C:\WINDOWS\SchedLgU.Txt
                2010-01-02 16:00:20 ----D---- C:\WINDOWS\system32\xircom
                2010-01-02 16:00:20 ----D---- C:\Program Files\xerox
                2010-01-02 16:00:20 ----D---- C:\Program Files\microsoft frontpage
                2010-01-02 16:00:06 ----A---- C:\WINDOWS\control.ini
                2010-01-02 16:00:06 ----A---- C:\AUTOEXEC.BAT
                2010-01-02 15:59:56 ----A---- C:\WINDOWS\system32\mapi32.dll
                2010-01-02 15:59:05 ----SD---- C:\WINDOWS\Downloaded Program Files
                2010-01-02 15:59:05 ----RD---- C:\WINDOWS\Offline Web Pages
                2010-01-02 15:59:05 ----RAH---- C:\WINDOWS\system32\logonui.exe.manifest
                2010-01-02 15:59:00 ----RAH---- C:\WINDOWS\system32\cdplayer.exe.manifest
                2010-01-02 15:58:57 ----HD---- C:\Program Files\WindowsUpdate
                2010-01-02 15:58:54 ----D---- C:\Program Files\Services en ligne
                2010-01-02 15:58:41 ----D---- C:\WINDOWS\system32\DirectX
                2010-01-02 15:58:24 ----A---- C:\WINDOWS\system32\atrace.dll
                2010-01-02 15:58:22 ----A---- C:\WINDOWS\system32\desktop.ini
                2010-01-02 15:58:22 ----A---- C:\WINDOWS\desktop.ini
                2010-01-02 15:58:16 ----A---- C:\WINDOWS\system32\nmevtmsg.dll
                2010-01-02 15:58:15 ----D---- C:\Program Files\Fichiers communs\Services
                2010-01-02 15:58:15 ----A---- C:\WINDOWS\system32\acctres.dll
                2010-01-02 15:58:13 ----SD---- C:\WINDOWS\Tasks
                2010-01-02 15:58:13 ----A---- C:\WINDOWS\system32\icfgnt5.dll
                2010-01-02 15:58:12 ----D---- C:\Program Files\Fichiers communs\MSSoap
                2010-01-02 15:58:09 ----D---- C:\WINDOWS\srchasst
                2010-01-02 15:58:08 ----D---- C:\WINDOWS\system32\Macromed
                2010-01-02 15:58:06 ----A---- C:\WINDOWS\system32\wuweb.dll
                2010-01-02 15:58:06 ----A---- C:\WINDOWS\system32\wucltui.dll
                2010-01-02 15:58:05 ----A---- C:\WINDOWS\system32\wups.dll
                2010-01-02 15:58:05 ----A---- C:\WINDOWS\system32\wuauserv.dll
                2010-01-02 15:58:05 ----A---- C:\WINDOWS\system32\wuaueng1.dll
                2010-01-02 15:58:05 ----A---- C:\WINDOWS\system32\wuaueng.dll
                2010-01-02 15:58:05 ----A---- C:\WINDOWS\system32\wuauclt1.exe
                2010-01-02 15:58:05 ----A---- C:\WINDOWS\system32\wuauclt.exe
                2010-01-02 15:58:05 ----A---- C:\WINDOWS\system32\wuapi.dll
                2010-01-02 15:58:05 ----A---- C:\WINDOWS\system32\bitsprx3.dll
                2010-01-02 15:58:05 ----A---- C:\WINDOWS\system32\bitsprx2.dll
                2010-01-02 15:58:04 ----A---- C:\WINDOWS\system32\qmgrprxy.dll
                2010-01-02 15:58:04 ----A---- C:\WINDOWS\system32\qmgr.dll
                2010-01-02 15:58:00 ----D---- C:\Program Files\Movie Maker
                2010-01-02 15:57:58 ----A---- C:\WINDOWS\system32\safrslv.dll
                2010-01-02 15:57:58 ----A---- C:\WINDOWS\system32\safrdm.dll
                2010-01-02 15:57:58 ----A---- C:\WINDOWS\system32\safrcdlg.dll
                2010-01-02 15:57:57 ----A---- C:\WINDOWS\system32\racpldlg.dll
                2010-01-02 15:57:54 ----D---- C:\WINDOWS\system32\Restore
                2010-01-02 15:57:54 ----A---- C:\WINDOWS\system32\srrstr.dll
                2010-01-02 15:57:54 ----A---- C:\WINDOWS\system32\fltMc.exe
                2010-01-02 15:57:54 ----A---- C:\WINDOWS\system32\fltlib.dll
                2010-01-02 15:57:53 ----A---- C:\WINDOWS\system32\srsvc.dll
                2010-01-02 15:57:53 ----A---- C:\WINDOWS\system32\srclient.dll
                2010-01-02 15:57:53 ----A---- C:\WINDOWS\system32\nmmkcert.dll
                2010-01-02 15:57:53 ----A---- C:\WINDOWS\system32\mnmdd.dll
                2010-01-02 15:57:53 ----A---- C:\WINDOWS\system32\isrdbg32.dll
                2010-01-02 15:57:53 ----A---- C:\WINDOWS\system32\ils.dll
                2010-01-02 15:57:52 ----A---- C:\WINDOWS\system32\msconf.dll
                2010-01-02 15:57:52 ----A---- C:\WINDOWS\system32\mnmsrvc.exe
                2010-01-02 15:57:50 ----D---- C:\Program Files\NetMeeting
                2010-01-02 15:57:50 ----A---- C:\WINDOWS\system32\msoert2.dll
                2010-01-02 15:57:50 ----A---- C:\WINDOWS\system32\msoeacct.dll
                2010-01-02 15:57:49 ----A---- C:\WINDOWS\system32\inetres.dll
                2010-01-02 15:57:49 ----A---- C:\WINDOWS\system32\inetcomm.dll
                2010-01-02 15:57:48 ----D---- C:\Program Files\Outlook Express
                2010-01-02 15:57:48 ----A---- C:\WINDOWS\system32\schedsvc.dll
                2010-01-02 15:57:47 ----A---- C:\WINDOWS\system32\mstinit.exe
                2010-01-02 15:57:47 ----A---- C:\WINDOWS\system32\mstask.dll
                2010-01-02 15:57:47 ----A---- C:\WINDOWS\system32\isign32.dll
                2010-01-02 15:57:47 ----A---- C:\WINDOWS\system32\inetcfg.dll
                2010-01-02 15:57:47 ----A---- C:\WINDOWS\system32\icwphbk.dll
                2010-01-02 15:57:47 ----A---- C:\WINDOWS\system32\icwdial.dll
                2010-01-02 15:57:42 ----D---- C:\Program Files\Fichiers communs\System
                2010-01-02 15:57:40 ----D---- C:\Program Files\Internet Explorer
                2010-01-02 15:57:15 ----D---- C:\Program Files\ComPlus Applications
                2010-01-02 15:57:14 ----A---- C:\WINDOWS\vbaddin.ini
                2010-01-02 15:57:14 ----A---- C:\WINDOWS\vb.ini
                2010-01-02 15:57:11 ----D---- C:\WINDOWS\Registration
                2010-01-02 15:57:05 ----D---- C:\Program Files\Windows Media Player
                2010-01-02 15:57:05 ----D---- C:\Program Files\Online Services
                2010-01-02 15:57:01 ----D---- C:\Program Files\Messenger
                2010-01-02 15:56:58 ----D---- C:\Program Files\MSN Gaming Zone
                2010-01-02 15:56:58 ----A---- C:\WINDOWS\system32\write.exe
                2010-01-02 15:56:51 ----A---- C:\WINDOWS\system32\sndvol32.exe
                2010-01-02 15:56:51 ----A---- C:\WINDOWS\system32\hticons.dll
                2010-01-02 15:56:50 ----A---- C:\WINDOWS\system32\winchat.exe
                2010-01-02 15:56:50 ----A---- C:\WINDOWS\system32\avwav.dll
                2010-01-02 15:56:50 ----A---- C:\WINDOWS\system32\avtapi.dll
                2010-01-02 15:56:50 ----A---- C:\WINDOWS\system32\avmeter.dll
                2010-01-02 15:56:45 ----A---- C:\WINDOWS\system32\getuname.dll
                2010-01-02 15:56:45 ----A---- C:\WINDOWS\system32\charmap.exe
                2010-01-02 15:56:45 ----A---- C:\WINDOWS\system32\calc.exe
                2010-01-02 15:56:44 ----A---- C:\WINDOWS\system32\winmine.exe
                2010-01-02 15:56:44 ----A---- C:\WINDOWS\system32\usrlogon.cmd
                2010-01-02 15:56:44 ----A---- C:\WINDOWS\system32\tsshutdn.exe
                2010-01-02 15:56:44 ----A---- C:\WINDOWS\system32\tslabels.ini
                2010-01-02 15:56:44 ----A---- C:\WINDOWS\system32\tskill.exe
                2010-01-02 15:56:44 ----A---- C:\WINDOWS\system32\tsdiscon.exe
                2010-01-02 15:56:44 ----A---- C:\WINDOWS\system32\tscon.exe
                2010-01-02 15:56:44 ----A---- C:\WINDOWS\system32\sol.exe
                2010-01-02 15:56:44 ----A---- C:\WINDOWS\system32\reset.exe
                2010-01-02 15:56:44 ----A---- C:\WINDOWS\system32\mshearts.exe
                2010-01-02 15:56:44 ----A---- C:\WINDOWS\system32\freecell.exe
                2010-01-02 15:56:43 ----A---- C:\WINDOWS\system32\shadow.exe
                2010-01-02 15:56:43 ----A---- C:\WINDOWS\system32\rwinsta.exe
                2010-01-02 15:56:43 ----A---- C:\WINDOWS\system32\regini.exe
                2010-01-02 15:56:43 ----A---- C:\WINDOWS\system32\rdpcfgex.dll
                2010-01-02 15:56:43 ----A---- C:\WINDOWS\system32\qwinsta.exe
                2010-01-02 15:56:43 ----A---- C:\WINDOWS\system32\qappsrv.exe
                2010-01-02 15:56:43 ----A---- C:\WINDOWS\system32\msg.exe
                2010-01-02 15:56:43 ----A---- C:\WINDOWS\system32\msdtcprf.ini
                2010-01-02 15:56:43 ----A---- C:\WINDOWS\system32\logoff.exe
                2010-01-02 15:56:43 ----A---- C:\WINDOWS\system32\cdmodem.dll
                2010-01-02 15:56:42 ----A---- C:\WINDOWS\system32\stclient.dll
                2010-01-02 15:56:42 ----A---- C:\WINDOWS\system32\mtxlegih.dll
                2010-01-02 15:56:42 ----A---- C:\WINDOWS\system32\mtxex.dll
                2010-01-02 15:56:42 ----A---- C:\WINDOWS\system32\mtxdm.dll
                2010-01-02 15:56:42 ----A---- C:\WINDOWS\system32\dcomcnfg.exe
                2010-01-02 15:56:42 ----A---- C:\WINDOWS\system32\comsnap.dll
                2010-01-02 15:56:42 ----A---- C:\WINDOWS\system32\comrepl.dll
                2010-01-02 15:56:42 ----A---- C:\WINDOWS\system32\comaddin.dll
                2010-01-02 15:56:38 ----A---- C:\WINDOWS\system32\wmimgmt.msc
                2010-01-02 15:56:26 ----D---- C:\Program Files\MSN
                2010-01-02 15:56:25 ----A---- C:\WINDOWS\system32\sndrec32.exe
                2010-01-02 15:56:25 ----A---- C:\WINDOWS\system32\mplay32.exe
                2010-01-02 15:56:25 ----A---- C:\WINDOWS\system32\accwiz.exe
                2010-01-02 15:56:24 ----D---- C:\Program Files\Windows NT
                2010-01-02 15:56:24 ----A---- C:\WINDOWS\system32\spider.exe
                2010-01-02 15:56:24 ----A---- C:\WINDOWS\system32\mspaint.exe
                2010-01-02 15:56:24 ----A---- C:\WINDOWS\system32\hypertrm.dll
                2010-01-02 15:56:24 ----A---- C:\WINDOWS\system32\clipbrd.exe
                2010-01-02 15:56:23 ----A---- C:\WINDOWS\system32\tscfgwmi.dll
                2010-01-02 15:56:23 ----A---- C:\WINDOWS\system32\sessmgr.exe
                2010-01-02 15:56:23 ----A---- C:\WINDOWS\system32\remotepg.dll
                2010-01-02 15:56:23 ----A---- C:\WINDOWS\system32\rdshost.exe
                2010-01-02 15:56:23 ----A---- C:\WINDOWS\system32\rdsaddin.exe
                2010-01-02 15:56:23 ----A---- C:\WINDOWS\system32\mstscax.dll
                2010-01-02 15:56:23 ----A---- C:\WINDOWS\system32\mstsc.exe
                2010-01-02 15:56:22 ----D---- C:\WINDOWS\system32\MsDtc
                2010-01-02 15:56:22 ----A---- C:\WINDOWS\system32\tscupgrd.exe
                2010-01-02 15:56:22 ----A---- C:\WINDOWS\system32\termsrv.dll
                2010-01-02 15:56:22 ----A---- C:\WINDOWS\system32\rdpwsx.dll
                2010-01-02 15:56:22 ----A---- C:\WINDOWS\system32\rdpsnd.dll
                2010-01-02 15:56:22 ----A---- C:\WINDOWS\system32\rdpclip.exe
                2010-01-02 15:56:22 ----A---- C:\WINDOWS\system32\rdchost.dll
                2010-01-02 15:56:22 ----A---- C:\WINDOWS\system32\qprocess.exe
                2010-01-02 15:56:22 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
                2010-01-02 15:56:22 ----A---- C:\WINDOWS\system32\icaapi.dll
                2010-01-02 15:56:22 ----A---- C:\WINDOWS\system32\cfgbkend.dll
                2010-01-02 15:56:21 ----A---- C:\WINDOWS\system32\xolehlp.dll
                2010-01-02 15:56:21 ----A---- C:\WINDOWS\system32\mtxoci.dll
                2010-01-02 15:56:21 ----A---- C:\WINDOWS\system32\msdtctm.dll
                2010-01-02 15:56:21 ----A---- C:\WINDOWS\system32\msdtcprx.dll
                2010-01-02 15:56:21 ----A---- C:\WINDOWS\system32\msdtclog.dll
                2010-01-02 15:56:21 ----A---- C:\WINDOWS\system32\msdtc.exe
                2010-01-02 15:56:20 ----D---- C:\WINDOWS\system32\Com
                2010-01-02 15:56:20 ----A---- C:\WINDOWS\system32\colbact.dll
                2010-01-02 15:56:20 ----A---- C:\WINDOWS\system32\clbcatex.dll
                2010-01-02 15:56:20 ----A---- C:\WINDOWS\system32\catsrvut.dll
                2010-01-02 15:56:20 ----A---- C:\WINDOWS\system32\catsrvps.dll
                2010-01-02 15:56:20 ----A---- C:\WINDOWS\system32\catsrv.dll
                2010-01-02 15:56:19 ----A---- C:\WINDOWS\system32\comuid.dll
                2010-01-02 15:56:19 ----A---- C:\WINDOWS\system32\comsvcs.dll
                2010-01-02 15:56:19 ----A---- C:\WINDOWS\system32\clbcatq.dll
                2010-01-02 15:56:14 ----A---- C:\WINDOWS\system32\servdeps.dll
                2010-01-02 15:56:14 ----A---- C:\WINDOWS\system32\mmfutil.dll
                2010-01-02 15:56:14 ----A---- C:\WINDOWS\system32\licwmi.dll
                2010-01-02 15:56:13 ----A---- C:\WINDOWS\system32\cmprops.dll

                ======List of files/folders modified in the last 2 months======

                2010-02-18 16:12:49 ----A---- C:\WINDOWS\system.ini
                2010-01-28 12:59:49 ----A---- C:\WINDOWS\win.ini

                ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

                R1 Aavmker4;avast! Asynchronous Virus Monitor; C:\WINDOWS\system32\drivers\Aavmker4.sys [2008-07-19 26944]
                R1 aswSP;avast! Self Protection; C:\WINDOWS\system32\drivers\aswSP.sys [2008-07-19 78416]
                R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2008-07-19 42912]
                R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\DRIVERS\aswFsBlk.sys [2008-07-19 20560]
                R2 aswMon2;avast! Standard Shield Support; C:\WINDOWS\system32\drivers\aswMon2.sys [2008-07-19 94416]
                R2 NwlnkIpx;Protocole de transport compatible NWLink IPX/SPX/NetBIOS; C:\WINDOWS\system32\DRIVERS\nwlnkipx.sys [2004-08-03 88448]
                R2 NwlnkNb;NetBIOS NWLink; C:\WINDOWS\system32\DRIVERS\nwlnknb.sys [2002-08-30 63232]
                R2 NwlnkSpx;Protocole NWLink SPX/SPXII; C:\WINDOWS\system32\DRIVERS\nwlnkspx.sys [2002-08-30 55936]
                R3 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2008-07-19 23152]
                R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2010-02-03 4605952]
                R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2005-01-07 138752]
                R3 hidusb;Pilote de classe HID Microsoft; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2002-08-30 9600]
                R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2007-06-22 4432384]
                R3 LVPr2Mon;LVPr2Mon Driver; C:\WINDOWS\system32\Drivers\LVPr2Mon.sys [2009-10-07 25752]
                R3 LVRS;Logitech RightSound Filter Driver; C:\WINDOWS\system32\DRIVERS\lvrs.sys [2009-10-07 266008]
                R3 LVUVC;Logitech Webcam 500(UVC); C:\WINDOWS\system32\DRIVERS\lvuvc.sys [2009-10-07 6756632]
                R3 mouhid;Pilote HID de souris; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2002-08-30 12288]
                R3 NWRDR;NetWare Rdr; C:\WINDOWS\system32\DRIVERS\nwrdr.sys [2004-08-03 163584]
                R3 RTL8023xp;Realtek 10/100/1000 PCI NIC Family NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtnicxp.sys [2009-03-25 130432]
                R3 usbaudio;Pilote USB audio (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2004-08-03 59264]
                R3 usbccgp;Pilote parent générique USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2004-08-03 31616]
                R3 usbehci;Pilote miniport de contrôleur d'hôte amélioré Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2004-08-03 26624]
                R3 usbhub;Concentrateur USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2004-08-03 57600]
                R3 usbohci;Pilote miniport de contrôleur hôte ouvert USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbohci.sys [2004-08-03 17024]
                R3 yukonwxp;NDIS5.1 Miniport Driver for Marvell Yukon Ethernet Controller; C:\WINDOWS\system32\DRIVERS\yk51x86.sys [2007-09-20 265856]
                S1 kbdhid;Pilote HID de clavier; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2004-08-19 14848]
                S3 BthEnum;Pilote de bloc de demande Bluetooth; C:\WINDOWS\system32\DRIVERS\BthEnum.sys [2004-08-03 17024]
                S3 BthPan;Périphérique Bluetooth (réseau personnel); C:\WINDOWS\system32\DRIVERS\bthpan.sys [2004-08-03 100992]
                S3 BTHPORT;Pilote de port Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2004-08-19 274944]
                S3 BTHUSB;Pilote USB radio Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2004-08-03 18944]
                S3 CCDECODE;Décodeur sous-titre fermé; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2004-08-03 17024]
                S3 driverhardwarev2;driverhardwarev2; \??\C:\Program Files\ma-config.com\Drivers\driverhardwarev2.sys []
                S3 FilterService;UVC Filter Service; C:\WINDOWS\system32\DRIVERS\lvuvcflt.sys [2009-10-07 23832]
                S3 HPZid412;IEEE-1284.4 Driver HPZid412; C:\WINDOWS\system32\DRIVERS\HPZid412.sys [2007-10-29 49920]
                S3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; C:\WINDOWS\system32\DRIVERS\HPZipr12.sys [2007-10-29 16496]
                S3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:\WINDOWS\system32\DRIVERS\HPZius12.sys [2007-10-29 21568]
                S3 MSTEE;Convertisseur en T/site-à-site de répartition Microsoft; C:\WINDOWS\system32\drivers\MSTEE.sys [2004-08-03 5504]
                S3 NABTSFEC;Codec NABTS/FEC VBI; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2004-08-03 85376]
                S3 NdisIP;Connection TV/vidéo Microsoft; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2004-08-03 10880]
                S3 PCAMPR5;PCAMPR5 NDIS Protocol Driver; \??\C:\WINDOWS\system32\PCAMPR5.SYS []
                S3 PCANDIS5;PCANDIS5 NDIS Protocol Driver; \??\C:\WINDOWS\system32\PCANDIS5.SYS []
                S3 RFCOMM;Périphérique Bluetooth (TDI protocole RFCOMM); C:\WINDOWS\system32\DRIVERS\rfcomm.sys [2004-08-03 59648]
                S3 rtl8139;Pilote NT de carte Realtek PCI Fast Ethernet à base RTL8139(A/B/C); C:\WINDOWS\system32\DRIVERS\RTL8139.SYS [2004-08-03 20992]
                S3 SLIP;Détrameur décalage BDA; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2004-08-03 11136]
                S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2004-08-03 15360]
                S3 usb_rndisx;USB RNDIS Adapter; C:\WINDOWS\system32\DRIVERS\usb8023x.sys [2005-10-21 12800]
                S3 usbprint;Classe d'imprimantes USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2004-08-03 25856]
                S3 usbscan;Pilote de scanneur USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2004-08-03 15104]
                S3 USBSTOR;Pilote de stockage de masse USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2004-08-03 26496]
                S3 usbvideo;Périphérique vidéo USB (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2004-08-03 78464]
                S3 wceusbsh;Windows CE USB Serial Host Driver; C:\WINDOWS\system32\DRIVERS\wceusbsh.sys [2006-11-06 28672]
                S3 WSTCODEC;Codec Teletext standard; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2004-08-03 19328]
                S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []

                ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

                R2 aswUpdSv;avast! iAVS4 Control Service; C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe [2008-07-19 16056]
                R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2010-02-03 602112]
                R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast4\ashServ.exe [2008-07-19 147640]
                R2 BthServ;Bluetooth Support Service; C:\WINDOWS\system32\svchost.exe [2004-08-19 14336]
                R2 hpqddsvc;Service HP CUE DeviceDiscovery; C:\WINDOWS\system32\svchost.exe [2004-08-19 14336]
                R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2009-10-11 153376]
                R2 LVPrcSrv;Process Monitor; C:\Program Files\Fichiers communs\LogiShrd\LVMVFM\LVPrcSrv.exe [2009-10-07 154136]
                R2 Net Driver HPZ12;Net Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2004-08-19 14336]
                R2 NMSAccessU;NMSAccessU; C:\Program Files\CDBurnerXP\NMSAccessU.exe [2008-10-20 71096]
                R2 NWCWorkstation;Service client pour NetWare; C:\WINDOWS\system32\svchost.exe [2004-08-19 14336]
                R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2004-08-19 14336]
                R2 UMWdf;Windows User Mode Driver Framework; C:\WINDOWS\system32\wdfmgr.exe [2005-01-28 38912]
                R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe [2008-07-19 250040]
                R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast4\ashWebSv.exe [2008-07-19 348344]
                R3 hpqcxs08;hpqcxs08; C:\WINDOWS\system32\svchost.exe [2004-08-19 14336]
                S2 gupdate;Google Update Service (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-02-06 135664]
                S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
                S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; c:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
                S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2010-01-07 182768]
                S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
                S3 maconfservice;Ma-Config Service; C:\Program Files\ma-config.com\maconfservice.exe [2010-01-26 243056]

                -----------------EOF-----------------
                0
                1. Re Voici maintenant "Log.txt" PARTIE 1

                  Logfile of random's system information tool 1.06 (written by random/random)
                  Run by JuLieN at 2010-02-28 16:44:02
                  Microsoft Windows XP Professionnel Service Pack 2
                  System drive C: has 175 GB (72%) free of 244 GB
                  Total RAM: 3327 MB (84% free)

                  Logfile of Trend Micro HijackThis v2.0.2
                  Scan saved at 16:44:06, on 28/02/2010
                  Platform: Windows XP SP2 (WinNT 5.01.2600)
                  MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
                  Boot mode: Normal

                  Running processes:
                  C:\WINDOWS\System32\smss.exe
                  C:\WINDOWS\system32\winlogon.exe
                  C:\WINDOWS\system32\services.exe
                  C:\WINDOWS\system32\lsass.exe
                  C:\WINDOWS\system32\Ati2evxx.exe
                  C:\WINDOWS\system32\svchost.exe
                  C:\WINDOWS\System32\svchost.exe
                  C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
                  C:\Program Files\Alwil Software\Avast4\ashServ.exe
                  C:\WINDOWS\system32\Ati2evxx.exe
                  C:\WINDOWS\system32\spoolsv.exe
                  C:\WINDOWS\system32\svchost.exe
                  C:\Program Files\Java\jre6\bin\jqs.exe
                  C:\Program Files\Fichiers communs\LogiShrd\LVMVFM\LVPrcSrv.exe
                  C:\WINDOWS\System32\svchost.exe
                  C:\Program Files\CDBurnerXP\NMSAccessU.exe
                  C:\WINDOWS\System32\svchost.exe
                  C:\WINDOWS\system32\svchost.exe
                  C:\WINDOWS\Explorer.EXE
                  C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
                  C:\WINDOWS\RTHDCPL.EXE
                  C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
                  C:\Program Files\Orange\Telephone sur PC\TelephoneSurPCAgent.exe
                  C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
                  C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
                  C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
                  C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
                  C:\WINDOWS\system32\wscntfy.exe
                  C:\Program Files\Mozilla Firefox\firefox.exe
                  C:\Documents and Settings\JuLieN\Bureau\RSIT.exe
                  C:\Program Files\Trend Micro\HijackThis\JuLieN.exe

                  R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr
                  R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Windows Internet Explorer
                  R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
                  R3 - URLSearchHook: (no name) - {AEEC3B59-CA98-4EBA-A140-57B94E283583} - (no file)
                  R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL
                  O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
                  O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
                  O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
                  O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
                  O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.5.4723.1820\swg.dll
                  O2 - BHO: Mega Manager IE Click Monitor - {bf00e119-21a3-4fd1-b178-3b8537e75c92} - C:\Program Files\Megaupload\Mega Manager\MegaIEMn.dll
                  O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
                  O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
                  O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
                  O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
                  O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
                  O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
                  O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
                  O4 - HKCU\..\Run: [TELEPHONESURPCAGENT] "C:\Program Files\Orange\Telephone sur PC\TelephoneSurPCAgent.exe" -run "C:\Program Files\Orange\Telephone sur PC\TelephoneSurPC.exe"
                  O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
                  O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
                  O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
                  O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
                  O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
                  O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
                  O8 - Extra context menu item: ajouter cette page à vos favoris Orange - C:\DOCUME~1\JuLieN\LOCALS~1\Temp\cce12.html
                  O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_96D6FF0C6D236BF8.dll/cmsidewiki.html
                  O8 - Extra context menu item: Liens de téléchargement avec Mega Manager... - C:\Program Files\Megaupload\Mega Manager\mm_file.htm
                  O8 - Extra context menu item: traduire la page - C:\DOCUME~1\JuLieN\LOCALS~1\Temp\cce10.html
                  O8 - Extra context menu item: traduire le texte sélectionné - C:\DOCUME~1\JuLieN\LOCALS~1\Temp\cce11.html
                  O9 - Extra button: Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
                  O9 - Extra 'Tools' menuitem: Windows Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
                  O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~3\INetRepl.dll
                  O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~3\INetRepl.dll
                  O9 - Extra 'Tools' menuitem: Créer un Favori de l'appareil mobile... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~3\INetRepl.dll
                  O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
                  O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
                  O9 - Extra button: Orange - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
                  O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
                  O16 - DPF: {9DF1C00D-8426-4337-972C-DC042D19A916} (FTMediaPlayer Class) - http://webtv.guidetv.orange.fr/resources/OCS_9418.cab
                  O16 - DPF: {BADA82CB-BF48-4D76-9611-78E2C6F49F03} - http://217.23.14.26/cont/Bol.CAB
                  O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
                  O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
                  O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
                  O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
                  O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
                  O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
                  O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
                  O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
                  O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
                  O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
                  O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - C:\Program Files\Fichiers communs\LogiShrd\LVMVFM\LVPrcSrv.exe
                  O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe
                  O23 - Service: NMSAccessU - Unknown owner - C:\Program Files\CDBurnerXP\NMSAccessU.exe
                  0
                  1. Voici le rapport Malwarebytes :
                    L'analyse c'est dérouler correctement.

                    Malwarebytes' Anti-Malware 1.44
                    Version de la base de données: 3806
                    Windows 5.1.2600 Service Pack 2
                    Internet Explorer 6.0.2900.2180

                    28/02/2010 16:32:14
                    mbam-log-2010-02-28 (16-32-14).txt

                    Type de recherche: Examen complet (C:\|D:\|)
                    Eléments examinés: 222654
                    Temps écoulé: 36 minute(s), 59 second(s)

                    Processus mémoire infecté(s): 0
                    Module(s) mémoire infecté(s): 0
                    Clé(s) du Registre infectée(s): 0
                    Valeur(s) du Registre infectée(s): 0
                    Elément(s) de données du Registre infecté(s): 1
                    Dossier(s) infecté(s): 4
                    Fichier(s) infecté(s): 8

                    Processus mémoire infecté(s):
                    (Aucun élément nuisible détecté)

                    Module(s) mémoire infecté(s):
                    (Aucun élément nuisible détecté)

                    Clé(s) du Registre infectée(s):
                    (Aucun élément nuisible détecté)

                    Valeur(s) du Registre infectée(s):
                    (Aucun élément nuisible détecté)

                    Elément(s) de données du Registre infecté(s):
                    HKEY_CLASSES_ROOT\regfile\shell\open\command\(default) (Broken.OpenCommand) -> Bad: ("regedit.exe" "%1") Good: (regedit.exe "%1") -> Quarantined and deleted successfully.

                    Dossier(s) infecté(s):
                    C:\Documents and Settings\All Users\Application Data\70671122 (Rogue.Multiple) -> Quarantined and deleted successfully.
                    C:\Program Files\Mozilla Firefox\extensions\{8CE11043-9A15-4207-A565-0C94C42D590D} (Trojan.Swisyn) -> Quarantined and deleted successfully.
                    C:\Program Files\Mozilla Firefox\extensions\{8CE11043-9A15-4207-A565-0C94C42D590D}\chrome (Trojan.Swisyn) -> Quarantined and deleted successfully.
                    C:\Program Files\Mozilla Firefox\extensions\{8CE11043-9A15-4207-A565-0C94C42D590D}\chrome\content (Trojan.Swisyn) -> Quarantined and deleted successfully.

                    Fichier(s) infecté(s):
                    C:\System Volume Information\_restore{8AFD6A72-54B9-4A8B-86FF-A16ADE58DE64}\RP92\A0024437.exe (Rogue.SecurityTool) -> Quarantined and deleted successfully.
                    C:\UsbFix\Quarantine\C\DOCUME~1\JuLieN\LOCALS~1\Temp\sshnas21.dll.UsbFix (Trojan.Downloader) -> Quarantined and deleted successfully.
                    D:\Mes logiciels\Logiciel Divers\Live-Player_setup.exe (Adware.NaviPromo) -> Quarantined and deleted successfully.
                    C:\Program Files\Mozilla Firefox\extensions\{8CE11043-9A15-4207-A565-0C94C42D590D}\chrome.manifest (Trojan.Swisyn) -> Quarantined and deleted successfully.
                    C:\Program Files\Mozilla Firefox\extensions\{8CE11043-9A15-4207-A565-0C94C42D590D}\install.rdf (Trojan.Swisyn) -> Quarantined and deleted successfully.
                    C:\Program Files\Mozilla Firefox\extensions\{8CE11043-9A15-4207-A565-0C94C42D590D}\chrome\content\timer.xul (Trojan.Swisyn) -> Quarantined and deleted successfully.
                    C:\Documents and Settings\JuLieN\Local Settings\Temp\dllhosts.exe (Trojan.Agent) -> Quarantined and deleted successfully.
                    C:\Documents and Settings\LocalService\Application Data\avdrn.dat (Malware.Trace) -> Quarantined and deleted successfully.

                    Je vais maintenant télécharger Hijackthis pour vérification comme tu me la demander a tout de suite et
                    Merci encore !!
                    0
                    1. Merci beaucoup d'avoir répondu aussi vite !
                      au rémarage mon pc bugue beaucoup maintenant, impossible d'ouvrir firefox ni internet explorer
                      Je vien de supprimer svchost.exe du gestionnaire de tache (celui qui me prennait 100 000ko de mem vive)
                      Et j'ai enfin peut ouvrir internet.
                      Voila le rapport:

                      ############################## | UsbFix V6.097 |

                      User : JuLieN (Administrateurs) # SPEEDCOK15
                      Update on 20/02/2010 by El Desaparecido , C_XX & Chimay8
                      Start at: 15:18:52 | 28/02/2010
                      Website : http://pagesperso-orange.fr/NosTools/index.html
                      Contact : FindyKill.Contact@gmail.com

                      AMD Athlon(tm) 64 X2 Dual Core Processor 5000+
                      Microsoft Windows XP Professionnel (5.1.2600 32-bit) # Service Pack 2
                      Internet Explorer 6.0.2900.2180
                      Windows Firewall Status : Enabled
                      AV : avast! antivirus 4.8.1227 [VPS 100219-0] 4.8.1227 [ Enabled | (!) Outdated ]

                      C:\ -> Disque fixe local # 237,89 Go (171,18 Go free) # NTFS
                      D:\ -> Disque fixe local # 227,86 Go (104,62 Go free) [¤$p€eDcOk¤] # NTFS
                      E:\ -> Disque CD-ROM
                      G:\ -> Disque CD-ROM
                      H:\ -> Disque CD-ROM

                      ############################## | Processus actifs |

                      C:\WINDOWS\System32\smss.exe
                      C:\WINDOWS\system32\csrss.exe
                      C:\WINDOWS\system32\winlogon.exe
                      C:\WINDOWS\system32\services.exe
                      C:\WINDOWS\system32\lsass.exe
                      C:\WINDOWS\system32\Ati2evxx.exe
                      C:\WINDOWS\system32\svchost.exe
                      C:\WINDOWS\system32\svchost.exe
                      C:\WINDOWS\System32\svchost.exe
                      C:\WINDOWS\system32\svchost.exe
                      C:\WINDOWS\system32\svchost.exe
                      C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
                      C:\Program Files\Alwil Software\Avast4\ashServ.exe
                      C:\WINDOWS\system32\Ati2evxx.exe
                      C:\WINDOWS\system32\spoolsv.exe
                      C:\WINDOWS\system32\svchost.exe
                      C:\Program Files\Google\Update\GoogleUpdate.exe
                      C:\WINDOWS\system32\svchost.exe
                      C:\Program Files\Java\jre6\bin\jqs.exe
                      C:\Program Files\Fichiers communs\LogiShrd\LVMVFM\LVPrcSrv.exe
                      C:\Program Files\Google\Update\GoogleUpdate.exe
                      C:\WINDOWS\System32\svchost.exe
                      C:\Program Files\CDBurnerXP\NMSAccessU.exe
                      C:\WINDOWS\System32\svchost.exe
                      C:\WINDOWS\system32\svchost.exe
                      C:\WINDOWS\system32\wdfmgr.exe
                      C:\WINDOWS\Explorer.EXE
                      C:\DOCUME~1\JuLieN\LOCALS~1\Temp\Slr.exe
                      C:\WINDOWS\msa.exe
                      C:\Program Files\Google\Update\GoogleUpdate.exe
                      C:\WINDOWS\system32\wbem\wmiprvse.exe
                      C:\Program Files\Alwil Software\Avast4\setup\avast.setup

                      ################## | Elements infectieux |

                      Supprimé ! C:\WINDOWS\msa.exe
                      Supprimé ! C:\WINDOWS\Tasks\{35DC3473-A719-4d14-B7C1-FD326CA84A0C}.job
                      Supprimé ! C:\WINDOWS\Tasks\{66BA574B-1E11-49b8-909C-8CC9E0E8E015}.job
                      Supprimé ! C:\WINDOWS\System32\sshnas21.dll
                      Supprimé ! C:\DOCUME~1\JuLieN\APPLIC~1\SystemProc
                      Supprimé ! C:\DOCUME~1\JuLieN\LOCALS~1\Temp\a.dat
                      Supprimé ! C:\DOCUME~1\JuLieN\LOCALS~1\Temp\cs.exe
                      Supprimé ! C:\DOCUME~1\JuLieN\LOCALS~1\Temp\Slp.exe
                      Supprimé ! C:\DOCUME~1\JuLieN\LOCALS~1\Temp\Slq.exe
                      Supprimé ! C:\DOCUME~1\JuLieN\LOCALS~1\Temp\Slr.exe
                      Supprimé ! C:\DOCUME~1\JuLieN\LOCALS~1\Temp\Setup.exe
                      Supprimé ! C:\DOCUME~1\JuLieN\LOCALS~1\Temp\sshnas21.dll
                      Supprimé ! C:\$Recycle.Bin\S-1-5-21-867358292-3120029282-2747524769-1000
                      Supprimé ! C:\Recycler\S-1-5-21-1220945662-2025429265-839522115-1003
                      Supprimé ! D:\$Recycle.Bin\S-1-5-21-2243978142-2102753274-1857502769-1000
                      Supprimé ! D:\$Recycle.Bin\S-1-5-21-867358292-3120029282-2747524769-1000
                      Supprimé ! D:\Recycler\S-1-5-21-1220945662-2025429265-839522115-1003
                      Supprimé ! D:\Recycler\S-1-5-21-1292428093-651377827-839522115-1003
                      Supprimé ! D:\Recycler\S-1-5-21-1659004503-413027322-725345543-1003
                      Supprimé ! D:\Recycler\S-1-5-21-790525478-746137067-682003330-1003

                      ################## | Registre |

                      Supprimé ! [HKCU\SOFTWARE\Microsoft\Handle]
                      Supprimé ! [HKCU\SOFTWARE\ROUA3O12PW]
                      Supprimé ! [HKCU\SOFTWARE\TOY5KNQ8OC]
                      Supprimé ! [HKCU\SOFTWARE\XML]
                      Supprimé ! [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "TOY5KNQ8OC"
                      Supprimé ! [HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run] "RTHDBPL"
                      Supprimé ! [HKLM\SYSTEM\CurrentControlSet\Services\SSHNAS]
                      Supprimé ! [HKLM\SYSTEM\ControlSet002\Services\SSHNAS]
                      Supprimé ! [HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_SSHNAS]
                      Supprimé ! [HKLM\SYSTEM\ControlSet002\Enum\Root\LEGACY_SSHNAS]

                      ################## | Mountpoints2 |

                      ################## | Listing des fichiers présent |

                      [02/01/2010 16:00|--a------|0] C:\AUTOEXEC.BAT
                      [28/02/2010 00:04|--a------|151552] C:\autoexec.exe
                      [02/01/2010 15:40|---hs----|212] C:\boot.ini
                      [30/08/2002 13:00|-rahs----|4952] C:\Bootfont.bin
                      [02/01/2010 16:00|--a------|0] C:\CONFIG.SYS
                      [02/01/2010 16:00|-rahs----|0] C:\IO.SYS
                      [02/01/2010 16:00|-rahs----|0] C:\MSDOS.SYS
                      [03/08/2004 21:38|-rahs----|47564] C:\NTDETECT.COM
                      [03/08/2004 21:59|-rahs----|251712] C:\ntldr
                      [?|?|?] C:\pagefile.sys
                      [28/02/2010 15:23|--a------|4503] C:\UsbFix.txt
                      [09/05/2009 02:56|---hs----|86] D:\Copie de desktop.ini
                      [02/01/2010 16:14|--ahs----|146] D:\desktop.ini
                      [01/01/2010 23:19|--a------|261] D:\serial avast.txt
                      [29/11/2009 18:33|--ahs----|23040] D:\Thumbs.db

                      ################## | Vaccination |

                      # C:\autorun.inf -> Dossier créé par UsbFix (El Desaparecido).
                      # D:\autorun.inf -> Dossier créé par UsbFix (El Desaparecido).

                      ################## | Upload |

                      Veuillez envoyer le fichier : C:\UsbFix_Upload_Me_SPEEDCOK15.zip : https://www.ionos.fr/?affiliate_id=77097
                      Merci pour votre contribution .

                      ################## | ! Fin du rapport # UsbFix V6.097 ! |

                      0
                      1. Re

                        1)Télécharge Malwaresbytes anti malware ici
                        http://www.malwarebytes.org/mbam.php

                        * Installe le (choisis bien "français" ; ne modifie pas les paramètres d'installe ) et mets le à jour .

                        (NB : S'il te manque "COMCTL32.OCX" lors de l'installe, alors télécharge le ici : https://www.malekal.com/tutorial-aboutbuster/

                        * Potasse le tuto pour te familiariser avec le prg :

                        https://forum.pcastuces.com/sujet.asp?f=31&s=3

                        (cela dis, il est très simple d’utilisation).

                        relance Malwaresbytes en suivant scrupuleusement ces consignes :

                        ! Déconnecte toi et ferme toutes applications en cours !

                        * Lance Malwarebyte’s.

                        Fais un examen dit "Complet"

                        --> Laisse le programme travailler ( et ne rien faire d'autre avec le PC durant le scan ).
                        --> à la fin tu cliques sur "Afficher les résultats" " .
                        --> Vérifie que tous les objets infectés soient validés, puis clique sur " supprimer la sélection " .

                        Note : si il faut redémarrer ton PC pour finir le nettoyage, fais le !

                        Poste le rapport sauvegardé après la suppression des objets infectés (dans l'onglet "rapport/log"de Malwaresbytes, le dernier en date)

                        2)
                        Pour vérification;fait ceci stp;merci

                        a) Télécharge et installe le logiciel HijackThis :

                        https://www.commentcamarche.net/telecharger/securite/11747-hijackthis/
                        ou ici http://www.trendsecure.com/portal/en-US/_download/HJTInstall.exe
                        ou ici https://www.clubic.com/telecharger-fiche17891-hijackthis.html

                        -->Clique sur le setup pour lancer l'installation : laisse toi guider et ne modifie pas les paramètres d'installation .
                        A la fin de l’installation, le programme se lance automatiquement : ferme le en cliquant sur la croix rouge.
                        Au final, tu dois avoir un raccourci sur ton bureau et aussi un cheminement comme :
                        "C:\ program files\Trend Micro\HijackThis\HijackThis.exe " .

                        (Ne lance pas ce prg pour l'instant et fais la suite ... )

                        b) Télécharge Random's System Information Tool (RSIT) de random/random et enregistre l'exécutable sur ton Bureau.

                        -> http://images.malwareremoval.com/random/RSIT.exe

                        ! Déconnecte toi et ferme toutes tes applications en cours !

                        Double-clique sur " RSIT.exe " pour le lancer.

                        Clic droit sous VISTA (exécuter en tant que…)

                        -> Une première fenêtre s'ouvre avec en titre : " Disclaimer of warranty " .

                        * Devant l'option "List files/folders created ..." , tu choisis : 2 months

                        * clique ensuite sur " Continue " pour lancer l'analyse ...

                        -> laisse faire le scan et ne touche pas au PC ...

                        Lorsque l'analyse sera terminée, deux fichiers texte s'ouvriront (probablement avec le bloc-notes).

                        Poste le contenu de " log.txt " (c'est celui qui apparaît à l'écran), ainsi que de " info.txt " (que tu verras dans la barre des tâches), pour analyse et attends la suite ...

                        Important : poste un rapport, puis l'autre dans la réponse suivante ...
                        Si tu essaies de poster les deux en même temps, cela risque d'être trop long pour le forum ...
                        ( Et si "log.txt" seul, ne passe pas non plus , fais le en 2 fois ... merci ... )

                        ( Note : les rapports seront en outre sauvegardés dans ce dossier -> C:\rsit

                        Poste les rapports au fur et à mesure;merci
                        @+
                        0
                    2. Bonjour

                      # Note : "Process.exe", une composante de l'outil, est détecté par certains antivirus (AntiVir, Dr.Web, Kaspersky Anti-Virus) comme étant un RiskTool.
                      Il ne s'agit pas d'un virus, mais d'un utilitaire destiné à mettre fin à des processus.
                      Mis entre de mauvaises mains, cet utilitaire pourrait arrêter des logiciels de sécurité (Antivirus, Firewall...) d'où l'alerte émise par ces antivirus.


                      Télécharge et install UsbFix de C_XX
                      Ici : http://pagesperso-orange.fr/NosTools/Chiquitine29/UsbFix.exe

                      Tutorial de Malekal_Morte si besoin, merci à lui : https://www.malekal.com/usbfix-supprimer-virus-usb/

                      Branche tes sources de données externes à ton PC, (clé USB, disque dur externe, etc...) susceptible d avoir été infectés sans les ouvrir

                      # Double clic sur le raccourci UsbFix présent sur ton bureau.

                      # Choisi l option 2 (Suppresssion)

                      # Laisse travailler l outil.

                      # Ensuite post le rapport UsbFix.txt qui apparaîtra.

                      # Note : Le rapport UsbFix.txt est sauvegardé a la racine du disque. ( C:\UsbFix.txt )

                      ( CTRL+A Pour tout sélectionner , CTRL+C pour copier et CTRL+V pour coller )

                      @+
                      0