01net    Web


Actuellement en ligne : 180 Utilisateurs dont 43 dans Windows, Linux, Mac et les autres... >S'inscrire      >S'identifier      >Recherche      >Aide  
modéré par fml, dos2000, tekways  
Micro Hebdo > Forum de Micro Hebdo > Windows, Linux, Mac et les autres... > Windows XP
> probleme demarrage
Aller à :
Auteur
Message
 
<     1       >
kemar94310
  
   
  Posté le 18/11/2008 12:33:22       ?   @    
Voter pour ce message
Bonjours, j'utilise un xp service pack2 et j'ai un probleme au demarrage
quand je demarre mon pc tou se charge bien sauf que sa finit sur un écran noire avec la fleche ou a défois sa se redemarre avan de mettre la page noire

ps: la je suis en mode sans echec avec prise en charge du reseau
j'ai déja reformater mon pc et fai des restauration du systeme mais rien
bernard53
  La Mayenne-son calme -sa verdu
  :-)
  Posté le 18/11/2008 12:58:47       ?   @    
Voter pour ce message
:hello:

Tu as essayer de démarrer sans aucun périphériques de branchés pour voir si l'un deux n'est pas en cause. :chepa:

Garde juste clavier et souris.

:salut:
kemar94310
  
   
  Posté le 18/11/2008 13:09:00       ?   @    
Voter pour ce message
sa veut dire que je debranche sur la tour ou c par rapport a l ordi ?

Ps: je m'i connait pas trop :/
franzip74
  
  :-)
  Posté le 18/11/2008 16:28:24       ?   @    
Voter pour ce message
tu débranches imprimantes, scanneur ou tout qui est externe sauf souris, clavier et moniteur. Mais tu les débranches quand l'ordinateur est fermer.
kemar94310
  
   
  Posté le 19/11/2008 00:29:13       ?   @    
Voter pour ce message
ba j'ai juste la souris le clavier l'écran et la carte wifi ke j'ai mi ya longtemps( mais sa peut pas etre sa le probleme :s )
franzip74
  
  :-)
  Posté le 19/11/2008 00:49:20       ?   @    
Voter pour ce message
ok, redémarre en mode sans échec uniquement, ensuite redémarre mais en mode sans échec avec prise en charge réseau et finalement redémarre en mode normal pour voir.
kemar94310
  
   
  Posté le 19/11/2008 13:03:47       ?   @    
Voter pour ce message
j'ai essayé et sa fonctionne pas :(

sa se pourrai que sa soi des dossier .dll ou .exe du system32 qui soit endomagé ?

Ps: c'est normal quand mode sans echec et en mode sans echec prise en charge du reseau je n'ai pa de son ?
-->Message édité par kemar94310 le 19/11/2008 13:38:17<--
franzip74
  
  :-)
  Posté le 19/11/2008 13:41:54       ?   @    
Voter pour ce message
oui c'est tout à fait normal, il charge le minimum pour régler certaine chose comme tu as surement remarqué ton affichage n'est pas pareil non plus.

Peut-être tenté une réparation
http://forum.telecharger.01net.com/microhebdo/windows-linux-mac-et-les-autres(...)

Mais ça ne fera pas comme si tu venais de formaté ou réinstallé, mais par contre tu pourras sauvegardé tes documents importants et ensuite formaté et installé Windows.
franzip74
  
  :-)
  Posté le 19/11/2008 13:42:55       ?   @    
Voter pour ce message
ou enlève la carte réseau sans fil juste pour voir avant de passé à une réparation.
kemar94310
  
   
  Posté le 19/11/2008 20:39:05       ?   @    
Voter pour ce message
faut que je trouve un cd alors :s
kemar94310
  
   
  Posté le 21/11/2008 04:57:47       ?   @    
Voter pour ce message
on ma dit de faire executer » cmd » mrt
sa a fai une recherche des virus ( peut etre s avien de la le probleme )
et je vouderai savoir si yaurai un logiciel gratuit pour les suprimer en toute sécurité

< inclued picture >< inclued picture >

-->Message édité par kemar94310 le 21/11/2008 05:02:27<--
bernard53
  La Mayenne-son calme -sa verdu
  :-)
  Posté le 21/11/2008 08:31:24       ?   @    
Voter pour ce message
:hello:

fait ceci.

Installe Malewarebytes' Antimalware,
Téléchargement et tuto

[:fml:8] Met-le à jour puis passe en mode sans échec :
http://www.pcloisirs.eu/mode_sans_echec.htm

Choisi, Exécuter un examen complet (environ 1heure)
[:fml:8] Si une infection est trouvée, coche la case a coté et valides avec l’Onglet Supprimer la sélection

Poste le rapport final.
[:fml:8] il est conseillé de désactivé Tea-Timer si tu as Spybot-S&D juste le temps du scan.

:salut:
kemar94310
  
   
  Posté le 26/11/2008 01:54:40       ?   @    
Voter pour ce message
Malwarebytes' Anti-Malware 1.30
Version de la base de données: 1414
Windows 5.1.2600 Service Pack 2

21/11/2008 17:35:03
mbam-log-2008-11-21 (17-35-03).txt

Type de recherche: Examen complet (C:\|D:\|E:\|F:\|G:\|H:\|I:\|)
Eléments examinés: 46017
Temps écoulé: 2 minute(s), 56 second(s)

Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 1
Clé(s) du Registre infectée(s): 128
Valeur(s) du Registre infectée(s): 12
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 18
Fichier(s) infecté(s): 45

Processus mémoire infecté(s):
(Aucun élément nuisible détecté)

Module(s) mémoire infecté(s):
C:\WINDOWS\system32\crypts.dll (Trojan.Agent) -> Delete on reboot.

Clé(s) du Registre infectée(s):
HKEY_CLASSES_ROOT\coresrv.lfgax (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{0729f461-8054-47dc-8d39-a31b61cc0119} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{40ca90f3-4098-4877-ae87-23eb612b18c7} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{4c3b62af-ca25-4fba-8405-32e44f83bb6f} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{5a635a91-c303-45c9-8db9-f759d98a3b9d} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{7e335d04-2e6e-4d0e-a921-c3d9192e7121} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{99ccfb8c-6380-4a14-8fdd-ef3e7e95335d} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{b20d7add-989c-4bc0-a797-f6fe7998efd7} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{bfc20a15-b0ac-44cc-a25a-a7039014ba9f} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{f019aec4-4c95-46de-a107-e302473e3b9a} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{2d00aa2a-69ef-487a-8a40-b3e27f07c91e} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{86c5840b-80c4-4c30-a655-37344a542009} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{b0cb585f-3271-4e42-88d9-ae5c9330d554} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\coresrv.lfgax.1 (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\shoppingreport.hbax (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{e343edfc-1e6c-4cb5-aa29-e9c922641c80} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{d8560ac2-21b5-4c1a-bdd4-bd12bc83b082} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{100eb1fd-d03e-47fd-81f3-ee91287f9465} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{100eb1fd-d03e-47fd-81f3-ee91287f9465} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{100eb1fd-d03e-47fd-81f3-ee91287f9465} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{20ea9658-6bc3-4599-a87d-6371fe9295fc} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{a16ad1e9-f69a-45af-9462-b1c286708842} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{a7cddcdc-beeb-4685-a062-978f5e07ceee} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{a7cddcdc-beeb-4685-a062-978f5e07ceee} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{c9ccbb35-d123-4a31-affc-9b2933132116} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\shoppingreport.hbax.1 (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\shoppingreport.hbinfoband (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\shoppingreport.hbinfoband.1 (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\shoppingreport.iebutton (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\shoppingreport.iebutton.1 (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\shoppingreport.iebuttona (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\shoppingreport.iebuttona.1 (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\shoppingreport.rprtctrl (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\shoppingreport.rprtctrl.1 (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{8ad9ad05-36be-4e40-ba62-5422eb0d02fb} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{aebf09e2-0c15-43c8-99bf-928c645d98a0} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Typelib\{cdca70d8-c6a6-49ee-9bed-7429d6c477a2} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Typelib\{d136987f-e1c4-4ccc-a220-893df03ec5df} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{c5428486-50a0-4a02-9d20-520b59a9f9b2} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{c5428486-50a0-4a02-9d20-520b59a9f9b3} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{eddbb5ee-bb64-4bfc-9dbe-e7c85941335b} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{c5428486-50a0-4a02-9d20-520b59a9f9b2} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{c5428486-50a0-4a02-9d20-520b59a9f9b3} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{148e1447-c728-48fd-beec-a7d06c5fff58} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{8ee46f55-1ce1-4db9-811a-68938ec7f3dd} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{a87dfd99-cf81-4241-85ce-881e0026b686} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{c96b9fae-a032-4100-bb47-32ef05e28be4} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{14113b47-d59c-4f0f-9d10-ff1730265584} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{a9c42a57-421c-4572-8b12-249c59183d1c} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{a57470de-14c7-4fcd-9d4c-e5711f24f0ed} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{2557dd3f-23a0-477c-bcd8-90fd0aecc4b8} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{2893116c-a176-42b1-8794-da8c9fc45564} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{99fdca0c-7380-4e9c-8d99-5dc4750334ef} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{b1d9f4b1-b9ff-463f-bf15-ab9cb26160f7} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{2aa2fbf8-9c76-4e97-a226-25c5f4ab6358} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{2aa2fbf8-9c76-4e97-a226-25c5f4ab6358} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{2aa2fbf8-9c76-4e97-a226-25c5f4ab6358} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{71f731b3-008b-4052-9ea4-4145acce40c3} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{90b8b761-df2b-48ac-bbe0-bcc03a819b3b} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{90b8b761-df2b-48ac-bbe0-bcc03a819b3b} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{90b8b761-df2b-48ac-bbe0-bcc03a819b3b} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{8292078f-f6e9-412b-8eb1-360c05c5ece5} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{2447e305-5e90-42a8-bd1e-0bc333b807e1} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{50d2fdcc-2707-49cb-8223-7fe0424909aa} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{878ce013-7ba9-4650-a78c-b2234c0c1648} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{a5b6fa30-d317-41ca-9cb1-c898d3c7f34e} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{cc19a5f2-b4ad-41d5-a5c9-0680904c1483} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{03d7ff6e-9781-40b5-bb7f-94291a361604} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{3ceb04ab-08af-45f4-81b4-70d13c1f7b85} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{a7213d71-47e1-4832-92d7-d61dfe9f231f} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{cf82f350-e1c4-4916-ac12-ba73db60afb7} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{c62a9e79-2b52-439b-af57-2e60bb06e86c} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{15fd8424-d12a-4c51-8c6c-d5d57b80f781} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{67b3becf-7b6f-42b2-99f0-f7656f89cffa} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{715ffd42-4e05-4eab-9513-c8daa5395ae2} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{759d6f7c-8d30-45b6-abea-fa51c190eed5} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{9a4a64a4-a2fb-48fa-9bba-1ac50267695d} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{62906e60-bce2-4e1b-9ed0-8b9042ee15e4} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{f9bfa98d-9935-4ea4-a05a-72c7f0778f02} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{abec1835-3181-4abd-8dde-875aec4df6d2} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{0af9a087-0cbf-46b2-9dc9-52d0d16b5ab6} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{69725738-cd68-4f36-8d02-8c43722ee5da} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{69725738-cd68-4f36-8d02-8c43722ee5da} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{a56fe01c-77c4-4f5e-8198-e4b72207890a} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{af55160d-cde1-4a8b-8001-66da06bee740} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{89085678-632d-4deb-bda0-cd912c63203e} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{30b15818-e110-4527-9c05-46ace5a3460d} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{618aad04-921f-44c2-be38-c0818af69861} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{b5d2ed96-62f9-4c2c-956d-e425b1f67337} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{d3a412e8-1e4b-47d2-9b12-f88291f5afbb} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{3788e535-897b-463d-b6d6-fee5b86ec144} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{3788e535-897b-463d-b6d6-fee5b86ec144} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{d3f940ea-4e87-423b-9091-934e1e4fceae} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{d3f940ea-4e87-423b-9091-934e1e4fceae} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\shoppingreport (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\crypt (Trojan.Agent) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\fci (Rootkit.Agent) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\ShoppingReport (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\ShoppingReport (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\ICF (Rootkit.Agent) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\zangosa (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Zango (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ZangoSA (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\zangoax.clientdetector (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\zangoax.clientdetector.1 (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\zangoax.userprofiles (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\zangoax.userprofiles.1 (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\wallpaper.wallpapermanager (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\wallpaper.wallpapermanager.1 (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\toolbar.toolbarctl (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\toolbar.toolbarctl.1 (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\toolbar.htmlmenuui (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\toolbar.htmlmenuui.1 (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\srv.coreservices (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\srv.coreservices.1 (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\hostol.webmailsend (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\hostol.webmailsend.1 (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\hostol.mailanim (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\hostol.mailanim.1 (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\hostie.bho (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\hostie.bho.1 (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\hbr.hbmain (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\hbr.hbmain.1 (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\hbmain.commband (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\hbmain.commband.1 (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\coresrv.coreservices (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\coresrv.coreservices.1 (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\zango (Adware.180Solutions) -> Quarantined and deleted successfully.

Valeur(s) du Registre infectée(s):
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\ljhdea (Adware.Navipromo.H) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\rs32net (Trojan.FakeAlert.H) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\reader (Trojan.FakeAlert.H) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Extensions\CmdMapping\{c5428486-50a0-4a02-9d20-520b59a9f9b2} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Extensions\CmdMapping\{c5428486-50a0-4a02-9d20-520b59a9f9b3} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{90b8b761-df2b-48ac-bbe0-bcc03a819b3b} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{90b8b761-df2b-48ac-bbe0-bcc03a819b3b} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\zangooe (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\weatherdpa (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\zangosa (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Mozilla\Firefox\Extensions\Zango@Zango.com (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Post Platform\zango 10.3.75.0 (Adware.Zango) -> Quarantined and deleted successfully.

Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)

Dossier(s) infecté(s):
C:\Program Files\Zango (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0 (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0\firefox (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0\firefox\extensions (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0\firefox\extensions\components (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0\firefox\extensions\plugins (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\ShoppingReport (Adware.Shopping.Report) -> Quarantined and deleted successfully.
C:\Program Files\ShoppingReport\Bin (Adware.Shopping.Report) -> Quarantined and deleted successfully.
C:\Program Files\ShoppingReport\Bin\2.5.0 (Adware.Shopping.Report) -> Quarantined and deleted successfully.
C:\Documents and Settings\Compaq_Propriétaire\Application Data\ShoppingReport (Adware.Shopping.Report) -> Quarantined and deleted successfully.
C:\Documents and Settings\Compaq_Propriétaire\Application Data\ShoppingReport\cs (Adware.Shopping.Report) -> Quarantined and deleted successfully.
C:\Documents and Settings\Compaq_Propriétaire\Application Data\ShoppingReport\cs\db (Adware.Shopping.Report) -> Quarantined and deleted successfully.
C:\Documents and Settings\Compaq_Propriétaire\Application Data\ShoppingReport\cs\dwld (Adware.Shopping.Report) -> Quarantined and deleted successfully.
C:\Documents and Settings\Compaq_Propriétaire\Application Data\ShoppingReport\cs\report (Adware.Shopping.Report) -> Quarantined and deleted successfully.
C:\Documents and Settings\Compaq_Propriétaire\Application Data\ShoppingReport\cs\res1 (Adware.Shopping.Report) -> Quarantined and deleted successfully.
C:\Documents and Settings\All Users\Application Data\ZangoSA (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\All Users\Application Data\2ACA5CC3-0F83-453D-A079-1076FE1A8B65 (Adware.Seekmo) -> Quarantined and deleted successfully.

Fichier(s) infecté(s):
C:\Documents and Settings\Compaq_Propriétaire\Local Settings\Application Data\ljhdea_navps.dat (Adware.Navipromo.H) -> Quarantined and deleted successfully.
C:\Documents and Settings\Compaq_Propriétaire\Local Settings\Application Data\ljhdea_nav.dat (Adware.Navipromo.H) -> Quarantined and deleted successfully.
C:\Documents and Settings\Compaq_Propriétaire\Local Settings\Application Data\ljhdea.dat (Adware.Navipromo.H) -> Quarantined and deleted successfully.
C:\Documents and Settings\Compaq_Propriétaire\Local Settings\Application Data\ljhdea.exe (Adware.Navipromo.H) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\rs32net.exe (Trojan.FakeAlert.H) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\reader.exe (Trojan.FakeAlert.H) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0\CoreSrv.dll (Adware.Zango) -> Quarantined and deleted successfully.
C:\Program Files\ShoppingReport\Bin\2.5.0\ShoppingReport.dll (Adware.Shopping.Report) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0\arrow.ico (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0\CntntCntr.dll (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0\copyright.txt (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0\HostIE.dll (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0\HostOE.dll (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0\HostOL.dll (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0\link.ico (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0\OEAddOn.exe (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0\Srv.exe (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0\Toolbar.dll (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0\Wallpaper.dll (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0\Weather.exe (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0\WeSkin.dll (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0\ZangoSA.exe (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0\ZangoSAAX.dll (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0\ZangoSADF.exe (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0\ZangoSAHook.dll (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0\ZangoUninstaller.exe (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0\firefox\extensions\chrome.manifest (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0\firefox\extensions\install.rdf (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0\firefox\extensions\components\npclntax.xpt (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0\firefox\extensions\plugins\npclntax_ZangoSA.dll (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\ShoppingReport\Uninst.exe (Adware.Shopping.Report) -> Quarantined and deleted successfully.
C:\Documents and Settings\Compaq_Propriétaire\Application Data\ShoppingReport\cs\Config.xml (Adware.Shopping.Report) -> Quarantined and deleted successfully.
C:\Documents and Settings\Compaq_Propriétaire\Application Data\ShoppingReport\cs\db\Aliases.dbs (Adware.Shopping.Report) -> Quarantined and deleted successfully.
C:\Documents and Settings\Compaq_Propriétaire\Application Data\ShoppingReport\cs\db\Sites.dbs (Adware.Shopping.Report) -> Quarantined and deleted successfully.
C:\Documents and Settings\Compaq_Propriétaire\Application Data\ShoppingReport\cs\dwld\WhiteList.xip (Adware.Shopping.Report) -> Quarantined and deleted successfully.
C:\Documents and Settings\Compaq_Propriétaire\Application Data\ShoppingReport\cs\report\aggr_storage.xml (Adware.Shopping.Report) -> Quarantined and deleted successfully.
C:\Documents and Settings\Compaq_Propriétaire\Application Data\ShoppingReport\cs\report\send_storage.xml (Adware.Shopping.Report) -> Quarantined and deleted successfully.
C:\Documents and Settings\Compaq_Propriétaire\Application Data\ShoppingReport\cs\res1\WhiteList.dbs (Adware.Shopping.Report) -> Quarantined and deleted successfully.
C:\Documents and Settings\All Users\Application Data\ZangoSA\ZangoSA.dat (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\All Users\Application Data\ZangoSA\ZangoSAAbout.mht (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\All Users\Application Data\ZangoSA\ZangoSAau.dat (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\All Users\Application Data\ZangoSA\ZangoSAEula.mht (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\All Users\Application Data\ZangoSA\ZangoSA_kyf.dat (Adware.Zango) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\crypts.dll (Trojan.Agent) -> Delete on reboot.
C:\WINDOWS\system32\icf.exe.exe (Worm.Zhelatin) -> Quaran
bernard53
  La Mayenne-son calme -sa verdu
  :-)
  Posté le 26/11/2008 08:41:48       ?   @    
Voter pour ce message
bon bizarre que tu viens de formater et que tu te retrouves avec autant d'intrus sur ton pc.

bon tu as tout bien supprimer. :bien:

Est ce que cette fois cela vas mieux :chepa:

:salut:
kemar94310
  
   
  Posté le 26/11/2008 14:27:33       ?   @    
Voter pour ce message
non sa fait toujour la meme choze :(

moi aussi sa ma étonné d'avoir tout sa alors que sa doit soit disant remettre le pc comme en sortit d'usine

il me reste plus qu'a trouver un cd d'installation :/

et si je dois changer une piece pour qu'il refonctionne sa serait quoi et sa couterais combien ?
bernard53
  La Mayenne-son calme -sa verdu
  :-)
  Posté le 26/11/2008 20:12:22       ?   @    
Voter pour ce message
:hello:

tu as surement refait une remise en état mais sans perte de données.

Fait ceci pour voir un peu plus.

Télécharge random's system information tool (RSIT) par random/random et sauvegarde-le sur le Bureau:

Double clique sur RSIT.exe qui se trouve sur ton bureau pour le lancer:
< inclued picture >

Ensuite :

< inclued picture >

[:fml:8] Si l'outil HijackThis (version à jour) n'est pas présent ou non détecté sur l'ordinateur, RSIT le téléchargera (autorise l'accès dans ton pare-feu, si demandé) et tu devras accepter la licence.

Le rapport va se créer. Pour le mettre sur le forum.

Tout sélectionner : CRTL+ A
Tout copier : CRTL+ C
Tout coller : CRTL+ V

[:fml:8] Vous pouvez, une fois posté, le fermer. Ce rapport s’appelle.log.txt

Le rapport est sauvegardé à la racine du disque: C:\rsit\info.txt et C:\rsit\log.txt


:salut:
kemar94310
  
   
  Posté le 26/11/2008 20:55:56       ?   @    
Voter pour ce message
Logfile of random's system information tool 1.04 (written by random/random)
Run by Compaq_Propriétaire at 2008-11-26 20:50:59
Microsoft Windows XP Édition familiale Service Pack 2
System drive C: has 138 GB (94%) free of 146 GB
Total RAM: 958 MB (72% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 20:51:10, on 26/11/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5730.0013)
Boot mode: Safe mode with network support

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Hercules\WiFi Station\WiFiStation.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Compaq_Propriétaire\Bureau\RSIT.exe
C:\Program Files\trend micro\Compaq_Propriétaire.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.live.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://search.live.com/sphome.aspx
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Click-to-Call BHO - {5C255C8A-E604-49b4-9D64-90988571CECB} - C:\Program Files\Windows Live\Messenger\wlchtc.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - c:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - c:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0\bin\jusched.exe
O4 - HKLM\..\Run: [hpsysdrv] c:\windows\system\hpsysdrv.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KBD.EXE
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
O4 - HKLM\..\Run: [PCDrProfiler] "C:\Program Files\PC-Doctor 5 for Windows\RunProfiler.exe" -r
O4 - HKLM\..\Run: [SSC_UserPrompt] c:\Program Files\Fichiers communs\Symantec Shared\Security Center\UsrPrmpt.exe
O4 - HKLM\..\Run: [ccApp] "c:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [IS CfgWiz] c:\Program Files\Norton Internet Security\cfgwiz.exe /GUID {257BBC47-1B26-432e-9F84-188603799DD3} /MODE CfgWiz /CMDLINE "REBOOT"
O4 - HKLM\..\Run: [URLLSTCK.exe] c:\Program Files\Norton Internet Security\UrlLstCk.exe
O4 - HKLM\..\Run: [AlcxMonitor] ALCXMNTR.EXE
O4 - HKLM\..\Run: [PS2] C:\WINDOWS\system32\ps2.exe
O4 - HKLM\..\Run: [LSBWatcher] c:\hp\drivers\hplsbwatcher\lsburnwatcher.exe
O4 - HKLM\..\Run: [Reminder] "C:\Windows\Creator\Remind_XP.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPwuSchd2.exe
O4 - HKLM\..\Run: [Malwarebytes Anti-Malware (reboot)] "C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript
O4 - HKLM\..\Run: [CamWizard] C:\Program Files\Fichiers communs\Logitech\QCDRV\BIN\CamWizard.exe
O4 - HKLM\..\Run: [LogitechRegisterVideoApplications] "C:\Program Files\Logitech\Video\InstallHelper.exe" /register /runnow
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
O4 - HKLM\..\RunOnce: [InstallShieldSetup] C:\PROGRA~1\INSTAL~1\{C191B~1\setup.exe -rebootC:\PROGRA~1\INSTAL~1\{C191B~1\reboot.ini -l0x40c
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [Steam] "C:\Program Files\Steam\Steam.exe" -silent
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [eMuleAutoStart] C:\Program Files\eMule\emule.exe -AutoStart
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [rs32net] C:\WINDOWS\System32\rs32net.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [rs32net] C:\WINDOWS\System32\rs32net.exe (User 'Default user')
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: WiFi Station.lnk = ?
O8 - Extra context menu item: &Google Search - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: Pages liées - res://C:\Program Files\Google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Pages similaires - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Version de la page actuelle disponible dans le cache Google - res://C:\Program Files\Google\GoogleToolbar1.dll/cmcache.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0\bin\npjpi150.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0\bin\npjpi150.dll
O9 - Extra button: Aide à la connexion - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra 'Tools' menuitem: Aide à la connexion - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O18 - Protocol: bw+0 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw+0s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: bwg0 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwg0s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: offline-8876480 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O20 - Winlogon Notify: lbrasggn - lbrasggn.dll (file missing)
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - c:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - c:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - c:\Program Files\Fichiers communs\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - c:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: IS Service (ISSVC) - Symantec Corporation - c:\Program Files\Norton Internet Security\ISSVC.exe
O23 - Service: LVSrvLauncher - Logitech Inc. - C:\Program Files\Fichiers communs\Logitech\srvLnch.exe
O23 - Service: Service Norton AntiVirus Auto-Protect (navapsvc) - Symantec Corporation - c:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
O23 - Service: SAVScan - Symantec Corporation - c:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - c:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - c:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - c:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe

--
End of file - 20788 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\NSSstub.job
C:\WINDOWS\tasks\Symantec NetDetect.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
AcroIEHlprObj Class - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll [2004-12-14 63136]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}]
Click-to-Call BHO - C:\Program Files\Windows Live\Messenger\wlchtc.dll [2008-09-02 75272]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Programme d'aide de l'Assistant de connexion Windows Live - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2008-02-22 401968]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - c:\program files\google\googletoolbar1.dll [2005-01-02 716800]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BDF3E430-B101-42AD-A544-FADC6B084872}]
CNavExtBho Class - c:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll [2004-08-31 218240]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - &Google - c:\program files\google\googletoolbar1.dll [2005-01-02 716800]
{42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - Norton AntiVirus - c:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll [2004-08-31 218240]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=C:\Program Files\Java\jre1.5.0\bin\jusched.exe [2005-01-02 49260]
"hpsysdrv"=c:\windows\system\hpsysdrv.exe [1998-05-07 61440]
"ATIPTA"=C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe [2005-06-08 356352]
"KBD"=C:\HP\KBD\KBD.EXE [2005-02-03 73728]
"iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2005-05-05 290816]
"Recguard"=C:\WINDOWS\SMINST\RECGUARD.EXE [2004-04-14 245760]
"PCDrProfiler"=C:\Program Files\PC-Doctor 5 for Windows\RunProfiler.exe [2005-05-10 69565]
"SSC_UserPrompt"=c:\Program Files\Fichiers communs\Symantec Shared\Security Center\UsrPrmpt.exe [2004-08-16 218240]
"ccApp"=c:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe [2004-09-07 58488]
"IS CfgWiz"=c:\Program Files\Norton Internet Security\cfgwiz.exe [2004-08-24 132248]
"URLLSTCK.exe"=c:\Program Files\Norton Internet Security\UrlLstCk.exe [2004-08-31 33936]
"AlcxMonitor"=C:\WINDOWS\ALCXMNTR.EXE [2004-09-07 69632]
"PS2"=C:\WINDOWS\system32\ps2.exe [2004-10-25 102400]
"LSBWatcher"=c:\hp\drivers\hplsbwatcher\lsburnwatcher.exe [2005-05-11 266240]
"Reminder"=C:\Windows\Creator\Remind_XP.exe [2004-12-14 675840]
"HP Software Update"=C:\Program Files\HP\HP Software Update\HPwuSchd2.exe [2005-02-17 61440]
"Malwarebytes Anti-Malware (reboot)"=C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe [2008-10-22 1273488]
"CamWizard"=C:\Program Files\Fichiers communs\Logitech\QCDRV\BIN\CamWizard.exe [2005-12-07 139264]
"LogitechRegisterVideoApplications"=C:\Program Files\Logitech\Video\InstallHelper.exe /register /runnow []
"LVCOMSX"=C:\WINDOWS\system32\LVCOMSX.EXE [2005-12-09 237568]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"InstallShieldSetup"=C:\PROGRA~1\INSTAL~1\{C191B~1\setup.exe -rebootC:\PROGRA~1\INSTAL~1\{C191B~1\reboot.ini -l0x40c []

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"msnmsgr"=C:\Program Files\Windows Live\Messenger\msnmsgr.exe [2008-09-09 3513344]
"Steam"=C:\Program Files\Steam\Steam.exe [2008-11-16 1410296]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2004-08-05 24064]
"MSMSGS"=C:\Program Files\Messenger\msmsgs.exe [2004-10-14 1702912]
"eMuleAutoStart"=C:\Program Files\eMule\emule.exe [2008-09-16 5492736]

C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage
Logitech Desktop Messenger.lnk - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
WiFi Station.lnk - C:\Program Files\Hercules\WiFi Station\WifiStation.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2005-06-08 46080]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\lbrasggn]
lbrasggn.dll []

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=
scecli

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ati6hoxx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ati6hoxx.sys]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\iTunes\iTunes.exe"="C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes"
"C:\Program Files\AOL 9.0\waol.exe"="C:\Program Files\AOL 9.0\waol.exe:*:Enabled:AOL France"
"\??\C:\WINDOWS\system32\winlogon.exe"="\??\C:\WINDOWS\system32\winlogon.exe:*:enabled:@shell32.dll,-1"
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\eMule\emule.exe"="C:\Program Files\eMule\emule.exe:*:Enabled:eMule"
"C:\Program Files\Steam\steamapps\zhou_tai94\condition zero\hl.exe"="C:\Program Files\Steam\steamapps\zhou_tai94\condition zero\hl.exe:*:Enabled:Half-Life Launcher"
"C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe"="C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe:*:Disabled:Logitech Desktop Messenger"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%ProgramFiles%\iTunes\iTunes.exe"="%ProgramFiles%\iTunes\iTunes.exe:*:enabled:iTunes"
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe"="C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe:*:Enabled:Logitech Desktop Messenger"

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\D]
shell\AutoRun\command - C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL Info.exe protect.ed 480 480

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\E]
shell\AutoRun\command - E:\setup.exe
shell\LVIPCAP\command - E:\techsupt\CaptureTest\Amcap8.exe


======List of files/folders created in the last 1 months======

2008-11-26 20:50:59 ----D---- C:\rsit
2008-11-26 20:50:59 ----D---- C:\Program Files\trend micro
2008-11-25 03:07:26 ----A---- C:\WINDOWS\system32\12.tmp
2008-11-25 03:07:24 ----A---- C:\WINDOWS\system32\F.tmp
2008-11-25 02:48:17 ----A---- C:\WINDOWS\system32\D.tmp
2008-11-25 02:48:09 ----A---- C:\WINDOWS\system32\A.tmp
2008-11-25 00:58:50 ----RA---- C:\WINDOWS\system32\lvcoinst.ini
2008-11-25 00:58:50 ----RA---- C:\WINDOWS\system32\lvcoinst.dll
2008-11-25 00:58:49 ----RA---- C:\WINDOWS\system32\LVUI2RC.dll
2008-11-25 00:58:49 ----RA---- C:\WINDOWS\system32\LVUI2.dll
2008-11-25 00:58:49 ----RA---- C:\WINDOWS\system32\lvcodec2.dll
2008-11-24 23:22:54 ----A---- C:\WINDOWS\system32\vfwwdm32.dll
2008-11-24 23:20:48 ----RA---- C:\WINDOWS\Instexec.exe
2008-11-24 23:20:45 ----RA---- C:\WINDOWS\system32\InstExec.ini
2008-11-24 23:20:45 ----RA---- C:\WINDOWS\system32\InstExec.exe
2008-11-24 23:19:27 ----D---- C:\Program Files\Fichiers communs\Logitech
2008-11-24 23:19:07 ----A---- C:\WINDOWS\system32\msxml4a.dll
2008-11-24 23:19:06 ----A---- C:\WINDOWS\system32\MFC71KOR.DLL
2008-11-24 23:19:06 ----A---- C:\WINDOWS\system32\MFC71JPN.DLL
2008-11-24 23:19:06 ----A---- C:\WINDOWS\system32\MFC71ITA.DLL
2008-11-24 23:19:06 ----A---- C:\WINDOWS\system32\MFC71ESP.DLL
2008-11-24 23:19:06 ----A---- C:\WINDOWS\system32\MFC71ENU.DLL
2008-11-24 23:19:06 ----A---- C:\WINDOWS\system32\MFC71DEU.DLL
2008-11-24 23:19:06 ----A---- C:\WINDOWS\system32\MFC71CHT.DLL
2008-11-24 23:19:06 ----A---- C:\WINDOWS\system32\MFC71CHS.DLL
2008-11-24 23:19:05 ----A---- C:\WINDOWS\system32\gdiplus.dll
2008-11-24 23:18:46 ----R---- C:\WINDOWS\bwUnin-7.2.0.137-8876480SL.exe
2008-11-24 23:18:37 ----D---- C:\Program Files\Logitech
2008-11-21 17:36:15 ----D---- C:\Avenger
2008-11-21 17:36:15 ----A---- C:\avenger.txt
2008-11-21 17:29:10 ----D---- C:\Documents and Settings\Compaq_Propriétaire\Application Data\Malwarebytes
2008-11-21 17:29:04 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2008-11-21 17:29:04 ----D---- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2008-11-21 16:58:08 ----A---- C:\WINDOWS\system32\11C.tmp
2008-11-21 16:58:06 ----A---- C:\WINDOWS\system32\11B.tmp
2008-11-21 16:57:57 ----A---- C:\WINDOWS\system32\119.tmp
2008-11-21 16:23:06 ----A---- C:\WINDOWS\system32\113.tmp
2008-11-21 16:23:05 ----A---- C:\WINDOWS\system32\112.tmp
2008-11-21 16:22:56 ----A---- C:\WINDOWS\system32\110.tmp
2008-11-21 13:49:51 ----A---- C:\WINDOWS\vgwtdeth.exe
2008-11-21 13:49:51 ----A---- C:\WINDOWS\system32\FA.tmp
2008-11-21 13:49:47 ----A---- C:\WINDOWS\system32\F9.tmp
2008-11-21 13:49:43 ----A---- C:\WINDOWS\system32\F7.tmp
2008-11-19 13:31:40 ----RHD---- C:\Documents and Settings\Compaq_Propriétaire\Application Data\SecuROM
2008-11-19 13:31:39 ----A---- C:\WINDOWS\system32\CmdLineExt.dll
2008-11-19 13:31:27 ----D---- C:\WINDOWS\LastGood
2008-11-19 13:31:25 ----A---- C:\WINDOWS\system32\d3dx9_27.dll
2008-11-19 00:42:29 ----D---- C:\WINDOWS\Sun
2008-11-19 00:41:51 ----D---- C:\Documents and Settings\Compaq_Propriétaire\Application Data\Sun
2008-11-18 16:46:20 ----A---- C:\WINDOWS\bndsqokf.exe
2008-11-18 11:55:11 ----D---- C:\WINDOWS\system32\Adobe
2008-11-18 11:21:23 ----D---- C:\WINDOWS\SoftwareDistribution
2008-11-18 11:20:11 ----D---- C:\WINDOWS\system32\CatRoot2
2008-11-18 11:19:42 ----D---- C:\WINDOWS\temp
2008-11-18 10:44:11 ----A---- C:\WINDOWS\system32\7.tmp
2008-11-18 10:44:04 ----A---- C:\WINDOWS\system32\4.tmp
2008-11-18 10:44:03 ----A---- C:\WINDOWS\system32\3.tmp
2008-11-18 00:18:59 ----D---- C:\Program Files\Hercules
2008-11-17 22:57:07 ----D---- C:\WINDOWS\pss
2008-11-16 23:26:31 ----A---- C:\WINDOWS\ntbtlog.txt
2008-11-16 18:50:10 ----D---- C:\WINDOWS\system32\CatRoot_bak
2008-11-16 18:40:37 ----HDC---- C:\WINDOWS\$NtUninstallKB899587$
2008-11-16 18:40:29 ----HDC---- C:\WINDOWS\$NtUninstallKB927779$
2008-11-16 18:40:24 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2008-11-16 18:40:19 ----HDC---- C:\WINDOWS\$NtUninstallKB927802$
2008-11-16 18:40:11 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2008-11-16 18:40:03 ----HDC---- C:\WINDOWS\$NtUninstallKB943460$
2008-11-16 18:39:56 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2008-11-16 18:39:49 ----HDC---- C:\WINDOWS\$NtUninstallKB956803$
2008-11-16 18:39:41 ----HDC---- C:\WINDOWS\$NtUninstallKB928255$
2008-11-16 18:39:35 ----HDC---- C:\WINDOWS\$NtUninstallKB911927$
2008-11-16 18:39:30 ----HDC---- C:\WINDOWS\$NtUninstallKB901017$
2008-11-16 18:39:24 ----HDC---- C:\WINDOWS\$NtUninstallKB899591$
2008-11-16 18:39:19 ----HDC---- C:\WINDOWS\$NtUninstallKB923723$
2008-11-16 18:39:03 ----D---- C:\WINDOWS\WBEM
2008-11-16 18:39:02 ----D---- C:\WINDOWS\system32\fr-fr
2008-11-16 18:37:46 ----HDC---- C:\WINDOWS\ie7
2008-11-16 18:37:35 ----HDC---- C:\WINDOWS\$NtServicePackUninstallIDNMitigationAPIs$
2008-11-16 18:37:23 ----HDC---- C:\WINDOWS\$NtServicePackUninstallNLSDownlevelMapping$
2008-11-16 18:37:07 ----HDC---- C:\WINDOWS\$NtUninstallKB915865$
2008-11-16 18:37:05 ----N---- C:\WINDOWS\system32\xmllite.dll
2008-11-16 18:35:49 ----HDC---- C:\WINDOWS\$NtUninstallKB904942$
2008-11-16 18:32:09 ----HDC---- C:\WINDOWS\$NtUninstallKB933729$
2008-11-16 18:32:02 ----HDC---- C:\WINDOWS\$NtUninstallKB956391$
2008-11-16 18:31:56 ----HDC---- C:\WINDOWS\$NtUninstallKB957095$
2008-11-16 18:31:48 ----HDC---- C:\WINDOWS\$NtUninstallKB920685$
2008-11-16 18:31:43 ----HDC---- C:\WINDOWS\$NtUninstallKB893756$
2008-11-16 18:31:37 ----HDC---- C:\WINDOWS\$NtUninstallKB923980$
2008-11-16 18:31:31 ----HDC---- C:\WINDOWS\$NtUninstallKB911280$
2008-11-16 18:31:25 ----HDC---- C:\WINDOWS\$NtUninstallKB911562$
2008-11-16 18:31:17 ----HDC---- C:\WINDOWS\$NtUninstallKB938828$
2008-11-16 18:31:12 ----HDC---- C:\WINDOWS\$NtUninstallKB924667$
2008-11-16 18:31:07 ----HDC---- C:\WINDOWS\$NtUninstallKB896423$
2008-11-16 18:31:02 ----HDC---- C:\WINDOWS\$NtUninstallKB900485$
2008-11-16 18:30:55 ----HDC---- C:\WINDOWS\$NtUninstallKB924270$
2008-11-16 18:30:50 ----HDC---- C:\WINDOWS\$NtUninstallKB931261$
2008-11-16 18:30:43 ----HDC---- C:\WINDOWS\$NtUninstallKB924496$
2008-11-16 18:30:37 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2008-11-16 18:30:31 ----HDC---- C:\WINDOWS\$NtUninstallKB951698$
2008-11-16 18:30:21 ----HDC---- C:\WINDOWS\$NtUninstallKB954211$
2008-11-16 18:28:33 ----A---- C:\WINDOWS\system32\MRT.exe
2008-11-16 18:28:27 ----HDC---- C:\WINDOWS\$NtUninstallKB946026$
2008-11-16 18:28:16 ----HDC---- C:\WINDOWS\$NtUninstallKB956841$
2008-11-16 18:28:08 ----HDC---- C:\WINDOWS\$NtUninstallKB925398_WMP64$
2008-11-16 18:27:46 ----HDC---- C:\WINDOWS\$NtUninstallKB910437$
2008-11-16 18:27:35 ----HDC---- C:\WINDOWS\$NtUninstallKB911564$
2008-11-16 18:27:22 ----HDC---- C:\WINDOWS\$NtUninstallKB925902$
2008-11-16 18:27:15 ----HDC---- C:\WINDOWS\$NtUninstallKB929123$
2008-11-16 18:27:09 ----HDC---- C:\WINDOWS\$NtUninstallKB920670$
2008-11-16 18:27:04 ----HDC---- C:\WINDOWS\$NtUninstallKB918439$
2008-11-16 18:26:44 ----HDC---- C:\WINDOWS\$NtUninstallKB902400$
2008-11-16 18:25:52 ----SHD---- C:\Config.Msi
2008-11-16 18:25:24 ----HDC---- C:\WINDOWS\$NtUninstallKB890046$
2008-11-16 18:25:19 ----HDC---- C:\WINDOWS\$NtUninstallKB926436$
2008-11-16 18:25:14 ----HDC---- C:\WINDOWS\$NtUninstallKB920872$
2008-11-16 18:25:06 ----HDC---- C:\WINDOWS\$NtUninstallKB930178$
2008-11-16 18:25:01 ----HDC---- C:\WINDOWS\$NtUninstallKB941569$
2008-11-16 18:24:49 ----HDC---- C:\WINDOWS\$NtUninstallKB914388$
2008-11-16 18:24:43 ----HDC---- C:\WINDOWS\$NtUninstallKB905414$
2008-11-16 18:24:37 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2008-11-16 18:24:33 ----HDC---- C:\WINDOWS\$NtUninstallKB932168$
2008-11-16 18:24:26 ----HDC---- C:\WINDOWS\$NtUninstallKB957097$
2008-11-16 18:24:18 ----HDC---- C:\WINDOWS\$NtUninstallKB951072-v2$
2008-11-16 18:24:10 ----HDC---- C:\WINDOWS\$NtUninstallKB901214$
2008-11-16 18:24:05 ----HDC---- C:\WINDOWS\$NtUninstallKB923689$
2008-11-16 18:23:51 ----HDC---- C:\WINDOWS\$NtUninstallKB923191$
2008-11-16 18:23:45 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2008-11-16 18:23:37 ----HDC---- C:\WINDOWS\$NtUninstallKB918118$
2008-11-16 18:23:32 ----HDC---- C:\WINDOWS\$NtUninstallKB926255$
2008-11-16 18:23:26 ----HDC---- C:\WINDOWS\$NtUninstallKB888302$
2008-11-16 18:23:21 ----HDC---- C:\WINDOWS\$NtUninstallKB948590$
2008-11-16 18:23:15 ----HDC---- C:\WINDOWS\$NtUninstallKB951066$
2008-11-16 18:23:08 ----HDC---- C:\WINDOWS\$NtUninstallKB900725$
2008-11-16 18:23:01 ----HDC---- C:\WINDOWS\$NtUninstallKB938127$
2008-11-16 18:22:54 ----HDC---- C:\WINDOWS\$NtUninstallKB920213$
2008-11-16 18:22:48 ----HDC---- C:\WINDOWS\$NtUninstallKB935840$
2008-11-16 18:22:42 ----HDC---- C:\WINDOWS\$NtUninstallKB943485$
2008-11-16 18:22:37 ----HDC---- C:\WINDOWS\$NtUninstallKB945553$
2008-11-16 18:22:32 ----HDC---- C:\WINDOWS\$NtUninstallKB916595$
2008-11-16 18:22:27 ----HDC---- C:\WINDOWS\$NtUninstallKB930916$
2008-11-16 18:22:15 ----HDC---- C:\WINDOWS\$NtUninstallKB951748$
2008-11-16 18:22:02 ----HDC---- C:\WINDOWS\$NtUninstallKB950749$
2008-11-16 18:21:55 ----HDC---- C:\WINDOWS\$NtUninstallKB938464$
2008-11-16 18:21:46 ----HDC---- C:\WINDOWS\$NtUninstallKB908531$
2008-11-16 18:21:40 ----HDC---- C:\WINDOWS\$NtUninstallKB905749$
2008-11-16 18:21:34 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$
2008-11-16 18:21:27 ----HDC---- C:\WINDOWS\$NtUninstallKB913580$
2008-11-16 18:21:19 ----HDC---- C:\WINDOWS\$NtUninstallKB955069$
2008-11-16 18:21:02 ----HDC---- C:\WINDOWS\$NtUninstallKB956390$
2008-11-16 18:20:51 ----HDC---- C:\WINDOWS\$NtUninstallKB896428$
2008-11-16 18:20:48 ----D---- C:\Program Files\MSXML 4.0
2008-11-16 18:20:38 ----HDC---- C:\WINDOWS\$NtUninstallKB935839$
2008-11-16 18:20:30 ----HDC---- C:\WINDOWS\$NtUninstallKB943055$
2008-11-16 18:20:23 ----HDC---- C:\WINDOWS\$NtUninstallKB894391$
2008-11-16 18:20:18 ----HDC---- C:\WINDOWS\$NtUninstallKB908519$
2008-11-16 18:20:12 ----HDC---- C:\WINDOWS\$NtUninstallKB920683$
2008-11-16 18:20:07 ----HDC---- C:\WINDOWS\$NtUninstallKB953356$
2008-11-16 18:19:59 ----HDC---- C:\WINDOWS\$NtUninstallKB914389$
2008-11-16 18:19:47 ----HDC---- C:\WINDOWS\$NtUninstallKB944338-v2$
2008-11-16 18:19:43 ----HDC---- C:\WINDOWS\$NtUninstallKB944653$
2008-11-16 18:19:35 ----HDC---- C:\WINDOWS\$NtUninstallKB890859$
2008-11-16 18:19:28 ----HDC---- C:\WINDOWS\$NtUninstallKB936782_WMP10$
2008-11-16 18:19:11 ----HDC---- C:\WINDOWS\$NtUninstallKB928843$
2008-11-16 17:53:12 ----D---- C:\Program Files\Steam
2008-11-16 17:40:19 ----D---- C:\Documents and Settings\Compaq_Propriétaire\Application Data\Adobe
2008-11-16 17:27:56 ----D---- C:\Documents and Settings\Compaq_Propriétaire\Application Data\WeatherDPA
2008-11-16 17:27:53 ----D---- C:\Documents and Settings\Compaq_Propriétaire\Application Data\Zango
2008-11-16 17:26:27 ----D---- C:\Program Files\eMule
2008-11-16 17:16:17 ----A---- C:\WINDOWS\system32\d3dx9_32.dll
2008-11-16 17:15:51 ----D---- C:\Program Files\Microsoft SQL Server Compact Edition
2008-11-16 17:15:28 ----HDC---- C:\WINDOWS\$NtUninstallWIC$
2008-11-16 16:56:20 ----D---- C:\Program Files\Microsoft
2008-11-16 16:55:49 ----D---- C:\Program Files\Windows Live
2008-11-16 16:45:59 ----D---- C:\WINDOWS\LastGood.Tmp
2008-11-16 16:45:56 ----D---- C:\Program Files\Fichiers communs\Windows Live
2008-11-16 16:45:24 ----RASH---- C:\BOOT.BAK
2008-11-16 16:45:17 ----RSHD---- C:\cmdcons
2008-11-16 16:45:17 ----A---- C:\WINDOWS\UPGRADE.TXT
2008-11-16 16:45:16 ----D---- C:\WINDOWS\setup.pss
2008-11-16 16:44:55 ----D---- C:\WINDOWS\setupupd
2008-11-16 16:41:17 ----D---- C:\WINDOWS\system32\PreInstall
2008-11-16 16:41:16 ----HDC---- C:\WINDOWS\$NtUninstallKB898461$
2008-11-16 16:40:24 ----HDC---- C:\WINDOWS\$MSI31Uninstall_KB893803v2$
2008-11-16 16:33:04 ----D---- C:\Documents and Settings\Compaq_Propriétaire\Application Data\Mozilla
2008-11-16 16:32:55 ----D---- C:\Program Files\Mozilla Firefox
2008-11-16 16:29:56 ----D---- C:\WINDOWS\system32\SoftwareDistribution
2008-11-16 16:28:13 ----A---- C:\WINDOWS\system32\results.txt
2008-11-16 16:24:55 ----D---- C:\Documents and Settings\Compaq_Propriétaire\Application Data\Macromedia
2008-11-16 16:24:14 ----SHD---- C:\WINDOWS\ftpcache
2008-11-16 16:24:10 ----SHD---- C:\RECYCLER
2008-11-16 16:23:07 ----A---- C:\WINDOWS\system32\wmpns.dll
2008-11-16 11:35:42 ----D---- C:\WINDOWS\I386