Salut,
Ci-joint le rapport Usbfix après option 2 :
############################## [ UsbFix V3.029 | Cleaning ]
# User : SEVERINE (Administrateurs) # SÉVERINE
# Update on 05/06/09 by Chiquitine29, C_XX & Chimay8
# WebSite :
http://pagesperso-orange.fr/NosTools/usbfix.html
# Start at: 00:04:29 | 11/06/2009
# AMD Athlon(tm) 64 Processor 3200+
# Microsoft Windows XP Édition familiale (5.1.2600 32-bit) # Service Pack 3
# Internet Explorer 7.0.5730.11
# Windows Firewall Status : Enabled
# AV : Avira AntiVir PersonalEdition 6.38.0.225
[ Enabled | (!) Outdated ]
# C:\ # Disque fixe local # 28,9 Go (8 Go free) # NTFS
# D:\ # Disque fixe local # 21,07 Go (19,13 Go free) [BACKUP] # NTFS
# E:\ # Disque fixe local # 24,55 Go (24,54 Go free) [RECOVER] # FAT32
# F:\ # Disque CD-ROM # 591,85 Mo (0 Mo free) [The Sims Deluxe] # CDFS
############################## [ Processus actifs ]
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\logonui.exe
C:\Program Files\Ahead\InCD\InCDsrv.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\AntiVir PersonalEdition Classic\sched.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\WINDOWS\system32\slserv.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\system32\userinit.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\wbem\wmiprvse.exe
################## [ Fichiers # Dossiers infectieux ]
Deleted ! E:\AUTORUN.FCB
(!) Not Deleted ! F:\autorun.inf
(!) Not Deleted ! F:\start.exe
################## [ Registre # Clés Run infectieuses ]
# HKLM\software\microsoft\security center\\ "AntiVirusOverride" # -> Reset sucessfully !
################## [ Registre # Mountpoints2 ]
################## [ Listing des fichiers présent ]
[21/07/2006 21:03|--a------|419534] - C:\20062107_205213_SEVERINE.nbi
[29/04/2006 16:43|--a------|136861] - C:\20062904_163959_SEVERINE.nbi
[27/05/2006 17:35|--a------|57] - C:\AUTOEXEC.BAT
[09/10/2007 11:25|---hs----|216] - C:\boot.ini
[05/08/2004 14:00|-rahs----|4952] - C:\Bootfont.bin
[10/06/2009 03:23|--a------|7869] - C:\ComboFix.txt
[10/03/2006 11:25|--a------|0] - C:\CONFIG.SYS
[30/10/2006 19:49|--a------|0] - C:\DBLEX00.ftr
[30/10/2006 19:49|--a------|0] - C:\DBLEX00.iqv
[30/10/2006 19:49|--a------|0] - C:\DBLEX00.lut
[30/10/2006 19:49|--a------|0] - C:\DBLEX00.med
[30/10/2006 19:49|--a------|0] - C:\DBLEX00.out
[30/10/2006 19:49|--a------|0] - C:\DBLEX00.qdb
[30/10/2006 19:49|--a------|0] - C:\DBLEX00.qfa
[30/10/2006 19:49|--a------|0] - C:\DBLEX00.qix
[30/10/2006 19:49|--a------|0] - C:\DBLEX00.qmm
[30/10/2006 19:49|--a------|0] - C:\DBLEX00.tml
[21/09/2006 19:44|--a------|75264] - C:\Fiche d'inscription rallye 2006.doc
[10/06/2009 21:05|--a------|4143] - C:\fixnavi.txt
[01/03/2007 09:01|--a------|80896] - C:\infosortie et inscrits.doc
[19/03/2007 11:49|--a------|52224] - C:\infosortie.doc
[10/03/2006 11:25|-rahs----|0] - C:\IO.SYS
[13/03/2006 11:34|--ah-----|822] - C:\IPH.PH
[10/06/2009 06:55|--a------|71296] - C:\jjcqtt.txt
[23/07/2006 10:35|--a------|151] - C:\liprefs.js
[31/03/2006 14:58|--a------|3285] - C:\MKDEMSG.LOG
[30/03/2006 18:06|--a------|1536] - C:\MKDEWE.TRN
[10/03/2006 11:25|-rahs----|0] - C:\MSDOS.SYS
[05/08/2004 14:00|-rahs----|47564] - C:\NTDETECT.COM
[10/06/2009 07:27|-rahs----|252240] - C:\ntldr
[?|?|?] - C:\pagefile.sys
[10/07/2006 13:16|--a------|18675] - C:\SDSSetup.log
[12/12/2007 12:28|--ah-----|268] - C:\sqmdata00.sqm
[12/12/2007 13:37|--ah-----|172] - C:\sqmdata01.sqm
[12/12/2007 16:25|--ah-----|268] - C:\sqmdata02.sqm
[12/12/2007 17:53|--ah-----|268] - C:\sqmdata03.sqm
[15/12/2007 20:02|--ah-----|268] - C:\sqmdata04.sqm
[22/02/2008 20:49|--ah-----|232] - C:\sqmdata05.sqm
[22/02/2008 20:55|--ah-----|232] - C:\sqmdata06.sqm
[07/10/2008 18:25|--ah-----|268] - C:\sqmdata07.sqm
[19/10/2008 20:46|--ah-----|268] - C:\sqmdata08.sqm
[30/11/2008 12:22|--ah-----|268] - C:\sqmdata09.sqm
[30/11/2008 12:30|--ah-----|268] - C:\sqmdata10.sqm
[05/06/2009 19:53|--ah-----|268] - C:\sqmdata11.sqm
[12/12/2007 12:28|--ah-----|244] - C:\sqmnoopt00.sqm
[12/12/2007 13:37|--ah-----|172] - C:\sqmnoopt01.sqm
[12/12/2007 16:25|--ah-----|244] - C:\sqmnoopt02.sqm
[12/12/2007 17:53|--ah-----|244] - C:\sqmnoopt03.sqm
[15/12/2007 20:02|--ah-----|244] - C:\sqmnoopt04.sqm
[22/02/2008 20:49|--ah-----|244] - C:\sqmnoopt05.sqm
[22/02/2008 20:55|--ah-----|244] - C:\sqmnoopt06.sqm
[07/10/2008 18:25|--ah-----|244] - C:\sqmnoopt07.sqm
[19/10/2008 20:46|--ah-----|244] - C:\sqmnoopt08.sqm
[30/11/2008 12:22|--ah-----|244] - C:\sqmnoopt09.sqm
[30/11/2008 12:30|--ah-----|244] - C:\sqmnoopt10.sqm
[05/06/2009 19:53|--ah-----|244] - C:\sqmnoopt11.sqm
[11/06/2009 00:06|--a------|5004] - C:\UsbFix.txt
[04/08/2004 00:55|--a------|28672] - E:\setupSNK.exe
[02/08/2002 03:15|-r-------|2048] - F:\00000001.TMP
[02/08/2002 03:53|-r-------|16] - F:\MAXIS.ini
[24/07/2001 20:15|-r-------|44] - F:\autorun.inf
[24/07/2001 20:15|-r-------|6574] - F:\simscd.ico
[02/08/2002 01:14|-r-------|5877760] - F:\start.exe
################## [ Vaccination ]
# C:\autorun.inf ( # Not infected ) -> Folder created by UsbFix.
# D:\autorun.inf ( # Not infected ) -> Folder created by UsbFix.
# E:\autorun.inf ( # Not infected ) -> Folder created by UsbFix.
################## [ ! Fin du rapport # UsbFix V3.029 ! ]
Voici aussi le rapport log.txt après avoir passé RSIT :
Logfile of random's system information tool 1.06 (written by random/random)
Run by SEVERINE at 2009-06-11 00:10:33
Microsoft Windows XP Édition familiale Service Pack 3
System drive C: has 8 GB (28%) free of 30 GB
Total RAM: 510 MB (61% free)
HijackThis download failed
======Scheduled tasks folder======
C:\WINDOWS\tasks\Maintenance.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
AcroIEHlprObj Class - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx [2001-03-02 37808]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live Sign-in Helper - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2006-08-31 322368]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - Barre d'outils MSN - C:\Program Files\MSN Toolbar\01.01.2607.0\fr\msntb.dll [2005-02-07 203464]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SoundMan"=C:\WINDOWS\SOUNDMAN.EXE [2004-10-27 73728]
"RealTray"=C:\Program Files\Real\RealPlayer\RealPlay.exe [2006-03-13 26112]
"Adobe Photo Downloader"=C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.0\Apps\apdproxy.exe [2005-06-23 57344]
"QuickTime Task"=C:\Program Files\QuickTime\qttask.exe [2006-03-13 98304]
"avgnt"=C:\Program Files\AntiVir PersonalEdition Classic\avgnt.exe [2007-04-02 327720]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Photo Downloader]
C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.0\Apps\apdproxy.exe [2005-06-23 57344]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Software Update]
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [2004-09-13 49152]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\InCD]
C:\Program Files\Ahead\InCD\InCD.exe [2004-03-16 1294446]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MMTray]
C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
C:\WINDOWS\system32\NeroCheck.exe [2001-07-09 155648]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
C:\Program Files\QuickTime\qttask.exe [2006-03-13 98304]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RealTray]
C:\Program Files\Real\RealPlayer\RealPlay.exe [2006-03-13 26112]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ScheduleSync.Siemens.SmartSync.5.2.exe]
C:\Program Files\Mobile Phone Manager\SmartSync\ScheduleSync.exe [2004-08-27 45056]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WOOKIT]
C:\PROGRA~1\Wanadoo\GestMaj.exe EspaceWanadoo.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^Démarrage rapide du logiciel HP Image Zone.lnk]
C:\PROGRA~1\HP\DIGITA~1\bin\hpqthb08.exe [2004-11-04 53248]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^HP Digital Imaging Monitor.lnk]
C:\PROGRA~1\HP\DIGITA~1\bin\hpqtra08.exe [2004-11-04 258048]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^Microsoft Office.lnk]
C:\PROGRA~1\MICROS~3\Office\OSA9.EXE [1999-02-17 65588]
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage
uninstall.exe
C:\Documents and Settings\SEVERINE\Menu Démarrer\Programmes\Démarrage
Pervasive.SQL Workgroup Engine.lnk - C:\PVSW\Bin\w3dbsmgr.exe
wkcalrem.LNK - C:\Program Files\Fichiers communs\Microsoft Shared\Works Shared\WkCalRem.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2006-06-19 702768]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
"NoDriveAutoRun"=FFFFFFFF
"NoDrives"=0
"NoFind"=0
"NoFolderOptions"=0
"NoRun"=0
"HonorAutoRunSetting"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=
"NoDriveTypeAutoRun"=
"NoDrives"=
"HonorAutoRunSetting"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\PVSW\Bin\w3dbsmgr.exe"="C:\PVSW\Bin\w3dbsmgr.exe:*:Enabled:Database Service Manager"
"C:\Program Files\Microsoft ActiveSync\wcescomm.exe"="C:\Program Files\Microsoft ActiveSync\wcescomm.exe:*:Enabled:ActiveSync Connection Manager"
"C:\Program Files\Messenger\msmsgs.exe"="C:\Program Files\Messenger\msmsgs.exe:*:Enabled:Windows Messenger"
"C:\Program Files\MSN Messenger\msnmsgr.exe"="C:\Program Files\MSN Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.1"
"C:\Program Files\MSN Messenger\livecall.exe"="C:\Program Files\MSN Messenger\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Fichiers communs\AOL\ACS\AOLDial.exe"="C:\Program Files\Fichiers communs\AOL\ACS\AOLDial.exe:*:Enabled:AOL"
"C:\Program Files\Fichiers communs\AOL\ACS\AOLacsd.exe"="C:\Program Files\Fichiers communs\AOL\ACS\AOLacsd.exe:*:Enabled:AOL"
"C:\Program Files\AOL 9.0\waol.exe"="C:\Program Files\AOL 9.0\waol.exe:*:Enabled:AOL 9.0"
"C:\Program Files\MSN Messenger\msnmsgr.exe"="C:\Program Files\MSN Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.1"
"C:\Program Files\MSN Messenger\livecall.exe"="C:\Program Files\MSN Messenger\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
======List of files/folders created in the last 1 months======
2009-06-11 00:10:33 ----D---- C:\rsit
2009-06-11 00:08:35 ----SHD---- C:\RECYCLER
2009-06-11 00:06:36 ----RASHD---- C:\autorun.inf
2009-06-11 00:04:26 ----A---- C:\UsbFix.txt
2009-06-10 23:45:30 ----D---- C:\UsbFix
2009-06-10 21:00:04 ----A---- C:\fixnavi.txt
2009-06-10 20:59:07 ----D---- C:\Program Files\Navilog1
2009-06-10 08:01:19 ----A---- C:\WINDOWS\OEWABLog.txt
2009-06-10 07:58:46 ----A---- C:\WINDOWS\system32\PerfStringBackup.TMP
2009-06-10 07:56:36 ----D---- C:\WINDOWS\Prefetch
2009-06-10 07:44:47 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$
2009-06-10 07:44:37 ----HDC---- C:\WINDOWS\$NtUninstallKB957095$
2009-06-10 07:44:22 ----HDC---- C:\WINDOWS\$NtUninstallKB956841$
2009-06-10 07:44:12 ----HDC---- C:\WINDOWS\$NtUninstallKB956803$
2009-06-10 07:43:59 ----HDC---- C:\WINDOWS\$NtUninstallKB954211$
2009-06-10 07:43:46 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2009-06-10 07:43:34 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2009-06-10 07:43:22 ----HDC---- C:\WINDOWS\$NtUninstallKB951748$
2009-06-10 07:43:12 ----HDC---- C:\WINDOWS\$NtUninstallKB951698$
2009-06-10 07:43:02 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2009-06-10 07:42:53 ----HDC---- C:\WINDOWS\$NtUninstallKB951376$
2009-06-10 07:42:39 ----HDC---- C:\WINDOWS\$NtUninstallKB951066$
2009-06-10 07:42:28 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2009-06-10 07:42:19 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2009-06-10 07:42:06 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2009-06-10 07:41:56 ----HDC---- C:\WINDOWS\$NtUninstallKB938464$
2009-06-10 07:38:11 ----A---- C:\WINDOWS\setuplog.txt
2009-06-10 07:36:17 ----D---- C:\WINDOWS\l2schemas
2009-06-10 07:36:16 ----D---- C:\WINDOWS\system32\fr
2009-06-10 07:36:15 ----D---- C:\WINDOWS\system32\bits
2009-06-10 07:32:05 ----D---- C:\WINDOWS\ServicePackFiles
2009-06-10 07:28:21 ----D---- C:\WINDOWS\network diagnostic
2009-06-10 07:25:38 ----D---- C:\WINDOWS\system32\ReinstallBackups
2009-06-10 07:21:24 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2009-06-10 07:21:21 ----D---- C:\WINDOWS\EHome
2009-06-10 06:55:14 ----A---- C:\jjcqtt.txt
2009-06-10 03:50:01 ----D---- C:\Documents and Settings\SEVERINE\Application Data\Malwarebytes
2009-06-10 03:49:54 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2009-06-10 03:49:54 ----D---- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2009-06-10 03:23:29 ----D---- C:\WINDOWS\temp
2009-06-10 03:23:27 ----A---- C:\ComboFix.txt
2009-06-10 01:15:53 ----A---- C:\WINDOWS\zip.exe
2009-06-10 01:15:53 ----A---- C:\WINDOWS\SWXCACLS.exe
2009-06-10 01:15:53 ----A---- C:\WINDOWS\SWSC.exe
2009-06-10 01:15:53 ----A---- C:\WINDOWS\SWREG.exe
2009-06-10 01:15:53 ----A---- C:\WINDOWS\sed.exe
2009-06-10 01:15:53 ----A---- C:\WINDOWS\PEV.exe
2009-06-10 01:15:53 ----A---- C:\WINDOWS\NIRCMD.exe
2009-06-10 01:15:53 ----A---- C:\WINDOWS\grep.exe
2009-06-10 01:15:24 ----D---- C:\WINDOWS\ERDNT
2009-06-10 01:14:43 ----D---- C:\Qoobox
2009-06-10 00:48:42 ----D---- C:\WINDOWS\Minidump
2009-06-10 00:00:31 ----D---- C:\Program Files\trend micro
2009-06-09 20:38:21 ----A---- C:\WINDOWS\ntbtlog.txt
2009-06-09 20:31:57 ----A---- C:\WINDOWS\SchedLgU.Txt
2009-06-09 20:23:47 ----D---- C:\Program Files\Fichiers communs\Wise Installation Wizard
2009-06-07 16:47:42 ----D---- C:\Program Files\AntiVir PersonalEdition Classic
2009-06-07 16:47:42 ----D---- C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic
======List of files/folders modified in the last 1 months======
2009-06-10 21:05:34 ----D---- C:\WINDOWS\system32
2009-06-10 20:59:07 ----RD---- C:\Program Files
2009-06-10 20:54:49 ----D---- C:\WINDOWS
2009-06-10 07:57:47 ----D---- C:\WINDOWS\Debug
2009-06-10 07:57:25 ----D---- C:\WINDOWS\system32\CatRoot2
2009-06-10 07:55:51 ----D---- C:\WINDOWS\system32\Setup
2009-06-10 07:55:50 ----D---- C:\WINDOWS\AppPatch
2009-06-10 07:55:49 ----D---- C:\WINDOWS\system32\wbem
2009-06-10 07:55:47 ----RSD---- C:\WINDOWS\Fonts
2009-06-10 07:55:36 ----D---- C:\WINDOWS\system32\drivers
2009-06-10 07:55:05 ----D---- C:\WINDOWS\security
2009-06-10 07:45:25 ----D---- C:\WINDOWS\system32\CatRoot
2009-06-10 07:44:52 ----HD---- C:\WINDOWS\inf
2009-06-10 07:44:49 ----RSHDC---- C:\WINDOWS\system32\dllcache
2009-06-10 07:42:09 ----D---- C:\Program Files\Messenger
2009-06-10 07:37:18 ----D---- C:\WINDOWS\WinSxS
2009-06-10 07:37:07 ----D---- C:\Program Files\Windows Media Player
2009-06-10 07:37:04 ----D---- C:\WINDOWS\Help
2009-06-10 07:36:45 ----D---- C:\WINDOWS\ime
2009-06-10 07:36:20 ----D---- C:\WINDOWS\system32\fr-fr
2009-06-10 07:36:19 ----D---- C:\WINDOWS\system32\usmt
2009-06-10 07:36:16 ----SHD---- C:\WINDOWS\Installer
2009-06-10 07:36:15 ----D---- C:\WINDOWS\PeerNet
2009-06-10 07:36:15 ----D---- C:\Program Files\Movie Maker
2009-06-10 07:31:55 ----D---- C:\WINDOWS\system32\Restore
2009-06-10 07:31:55 ----D---- C:\WINDOWS\system32\npp
2009-06-10 07:31:52 ----D---- C:\WINDOWS\msagent
2009-06-10 07:31:50 ----D---- C:\WINDOWS\srchasst
2009-06-10 07:31:48 ----D---- C:\Program Files\NetMeeting
2009-06-10 07:31:46 ----D---- C:\WINDOWS\system32\Com
2009-06-10 07:31:41 ----D---- C:\Program Files\Windows NT
2009-06-10 07:31:41 ----D---- C:\Program Files\Outlook Express
2009-06-10 07:31:36 ----D---- C:\Program Files\Fichiers communs\System
2009-06-10 07:31:02 ----D---- C:\WINDOWS\system32\oobe
2009-06-10 07:30:59 ----D---- C:\WINDOWS\system
2009-06-10 03:20:16 ----A---- C:\WINDOWS\system.ini
2009-06-10 03:03:35 ----D---- C:\WINDOWS\system32\config
2009-06-10 03:01:53 ----D---- C:\Program Files\Fichiers communs
2009-06-10 02:13:51 ----AD---- C:\Documents and Settings\All Users\Application Data\TEMP
2009-06-10 01:27:34 ----D---- C:\Program Files\Applications
2009-06-09 21:07:53 ----D---- C:\TEMP
2009-06-07 16:33:02 ----HD---- C:\Config.Msi
2009-06-07 16:32:55 ----D---- C:\Documents and Settings\All Users\Application Data\Kiwee Toolbar2
2009-06-07 16:32:38 ----D---- C:\Program Files\MSN Messenger
2009-06-07 10:09:08 ----A---- C:\WINDOWS\system32\dfdf521a-.txt
2009-06-05 19:46:37 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 avgio;avgio; \??\C:\Program Files\AntiVir PersonalEdition Classic\avgio.sys []
R1 avipbb;avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [2007-03-20 43584]
R1 InCDPass;InCDPass; C:\WINDOWS\System32\DRIVERS\InCDPass.sys [2004-03-16 27664]
R1 ssmdrv;ssmdrv; C:\WINDOWS\system32\DRIVERS\ssmdrv.sys [2007-03-01 28352]
R2 ASCTRM;ASCTRM; C:\WINDOWS\system32\drivers\ASCTRM.sys [2006-03-13 8552]
R2 irda;Protocole IrDA; C:\WINDOWS\system32\DRIVERS\irda.sys [2008-04-13 88192]
R2 NwlnkIpx;Protocole de transport compatible NWLink IPX/SPX/NetBIOS; C:\WINDOWS\system32\DRIVERS\nwlnkipx.sys [2008-04-13 88320]
R2 NwlnkNb;NetBIOS NWLink; C:\WINDOWS\system32\DRIVERS\nwlnknb.sys [2004-08-05 63232]
R2 NwlnkSpx;Protocole NWLink SPX/SPXII; C:\WINDOWS\system32\DRIVERS\nwlnkspx.sys [2004-08-05 55936]
R3 actser;actser; C:\WINDOWS\system32\drivers\actser.sys [2004-08-23 29440]
R3 ALCXWDM;Service for Realtek AC97 Audio (WDM); C:\WINDOWS\system32\drivers\ALCXWDM.SYS [2004-10-27 2284864]
R3 Arp1394;Protocole client ARP 1394; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-13 60800]
R3 avgntflt;avgntflt; \??\C:\Program Files\AntiVir PersonalEdition Classic\avgntflt.sys []
R3 CmBatt;Pilote d'adaptateur secteur Microsoft; C:\WINDOWS\system32\DRIVERS\CmBatt.sys [2008-04-13 13952]
R3 MODEMCSA;Périphérique de filtrage de flux Unimodem; C:\WINDOWS\system32\drivers\MODEMCSA.sys [2001-08-17 16128]
R3 Mtlmnt5;Mtlmnt5; C:\WINDOWS\system32\DRIVERS\Mtlmnt5.sys [2004-06-15 230584]
R3 NIC1394;Pilote réseau 1394; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-13 61824]
R3 pfc;Padus ASPI Shell; C:\WINDOWS\system32\drivers\pfc.sys [2003-03-20 9856]
R3 Rasirda;Miniport réseau étendu (IrDA); C:\WINDOWS\system32\DRIVERS\rasirda.sys [2001-08-17 19584]
R3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\WINDOWS\System32\Drivers\RootMdm.sys [2004-08-05 5888]
R3 Slntamr;SmartLink AMR_PCI Driver; C:\WINDOWS\system32\DRIVERS\slntamr.sys [2004-06-15 635200]
R3 SlWdmSup;SlWdmSup; C:\WINDOWS\system32\DRIVERS\SlWdmSup.sys [2004-06-15 13248]
R3 usbehci;Pilote miniport de contrôleur d'hôte amélioré Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-13 30208]
R3 usbhub;Concentrateur USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-13 59520]
R3 USBSTOR;Pilote de stockage de masse USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
R3 usbuhci;Pilote miniport de contrôleur hôte universel USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
R3 VIAIRDA;VIA Infrared Device Driver; C:\WINDOWS\system32\DRIVERS\viairda.sys [2001-12-07 24244]
R4 InCDfs;InCD File System; C:\WINDOWS\system32\drivers\InCDfs.sys [2004-03-16 99568]
S3 catchme;catchme; \??\C:\DOCUME~1\SEVERINE\LOCALS~1\Temp\catchme.sys []
S3 HidUsb;Pilote de classe HID Microsoft; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
S3 HPZid412;IEEE-1284.4 Driver HPZid412; C:\WINDOWS\system32\DRIVERS\HPZid412.sys [2004-10-05 51120]
S3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; C:\WINDOWS\system32\DRIVERS\HPZipr12.sys [2004-10-05 16496]
S3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:\WINDOWS\system32\DRIVERS\HPZius12.sys [2004-10-05 21744]
S3 mouhid;Pilote HID de souris; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-08-23 12288]
S3 Mtlstrm;Mtlstrm; C:\WINDOWS\system32\DRIVERS\Mtlstrm.sys [2004-06-15 1300968]
S3 NtMtlFax;NtMtlFax; C:\WINDOWS\system32\DRIVERS\NtMtlFax.sys [2004-06-15 180592]
S3 SIS163u;SiS163 USB Wireless LAN Adapter Driver; C:\WINDOWS\system32\DRIVERS\sis163u.sys [2005-11-02 215552]
S3 siusbmod;siusbmod; C:\WINDOWS\system32\DRIVERS\siusbmod.sys [2004-07-08 26880]
S3 SlNtHal;SlNtHal; C:\WINDOWS\system32\DRIVERS\Slnthal.sys [2004-06-15 95656]
S3 SONYPVU1;Pilote de filtrage Sony USB (SONYPVU1); C:\WINDOWS\system32\DRIVERS\SONYPVU1.SYS [2001-08-17 7552]
S3 usbccgp;Pilote parent générique USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
S3 usbprint;Classe d'imprimantes USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Pilote de scanneur USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 wanatw;WAN Miniport (ATW); C:\WINDOWS\system32\DRIVERS\wanatw4.sys []
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AntiVirScheduler;AntiVir PersonalEdition Classic Scheduler; C:\Program Files\AntiVir PersonalEdition Classic\sched.exe [2007-04-16 57896]
R2 AntiVirService;AntiVir PersonalEdition Classic Guard; C:\Program Files\AntiVir PersonalEdition Classic\avguard.exe [2007-03-28 204840]
R2 InCDsrv;InCD Helper; C:\Program Files\Ahead\InCD\InCDsrv.exe [2004-03-16 876656]
R2 Irmon;Moniteur infrarouge; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R2 NwSapAgent;Agent SAP; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\system32\HPZipm12.exe [2004-09-29 69632]
R2 SLService;SmartLinkService; C:\WINDOWS\system32\slserv.exe [2004-06-15 45056]
S3 aspnet_state;Service d'état ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_state.exe [2004-07-15 32768]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2007-01-04 136120]
S3 usnjsvc;Service Messenger Sharing Folders USN Journal Reader; C:\Program Files\MSN Messenger\usnsvc.exe [2007-01-19 97136]
-----------------EOF-----------------
et enfin le rapport info.txt
info.txt logfile of random's system information tool 1.06 2009-06-11 00:10:42
======Uninstall list======
-->C:\Program Files\Weflirt/uninstall.exe
-->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
802.11 USB Wireless LAN Adapter-->C:\WINDOWS\system32\unwlsdrv.exe SiS163u
Adobe Acrobat 5.0-->C:\WINDOWS\ISUN040C.EXE -f"C:\Program Files\Fichiers communs\Adobe\Acrobat 5.0\NT\Uninst.isu" -c"C:\Program Files\Fichiers communs\Adobe\Acrobat 5.0\NT\Uninst.dll"
Adobe Download Manager 2.0 (Supprimer uniquement)-->"C:\Program Files\Fichiers communs\Adobe\ESD\uninst.exe"
Adobe Flash Player 9 ActiveX-->C:\WINDOWS\system32\Macromed\Flash\FlashUtil9b.exe -uninstallDelete
Adobe Reader 6.0.1 - Français-->MsiExec.exe /I{AC76BA86-7AD7-1036-7B44-A00000000001}
Adobe Reader 6.0.1-->MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A00000000001}
Adobe® Photoshop® Album Edition Découverte 3.0-->MsiExec.exe /I{4BDFD2CE-6329-42E4-9801-9B3D1F10D79B}
Avira AntiVir PersonalEdition Classic-->C:\Program Files\AntiVir PersonalEdition Classic\setup.exe /REMOVE
Barre d'outils MSN-->C:\Program Files\MSN Toolbar\01.01.2607.0\fr\mtbs.exe c
BlackBerry Built-In Desktop Software 1.0-->MsiExec.exe /I{057FA1CC-9529-480D-B325-7AD21878AD15}
BlackBerry Built-In Desktop Software 1.0-->MsiExec.exe /i{057FA1CC-9529-480D-B325-7AD21878AD15} STARTMENUDIR="C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Mobile Phone Manager\BlackBerry Desktop"
Carte France -->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{0703264C-17C4-416C-886A-3DE1BB7AF112}\SETUP.EXE" -uninst
Correctif pour Windows Internet Explorer 7 (KB947864)-->"C:\WINDOWS\ie7updates\KB947864-IE7\spuninst\spuninst.exe"
Correctif pour Windows XP (KB952287)-->"C:\WINDOWS\$NtUninstallKB952287$\spuninst\spuninst.exe"
Coup de Pouce Maternelle Petite Section 2-3 ans-->C:\WINDOWS\IsUn040c.exe -fC:\KA\CPMPS\DeIsL1.isu
Dictionnaire encyclopédique 2000-->C:\WINDOWS\IsUn040c.exe -f"C:\Program Files\Micro Application\Dictionnaire encyclopédique 2000\Uninst.isu"
EBP Business Plan 2006 Edition PME-->MsiExec.exe /I{D6C01862-3183-4D72-894C-3D10FD138961}
EBP Business Plan 2006-->MsiExec.exe /I{3C427B03-AA86-4E0C-BE76-8725EF170E1B}
EBP Compta Flash-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\10\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{BDE37F20-B431-4433-AE30-2BBD6BB411FC}\setup.exe" -l0x40c /uninst
EBP Comptabilité-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\10\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{5827A3F0-23B3-414F-BFD8-95F96A3D199D}\setup.exe" -l0x40c /uninst
EBP Devis & Facturation Flash 2006-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\10\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{7E8BD587-B1EC-4D3B-812B-3256A2165A6E}\setup.exe" -l0x40c -removeonly
EBP Gestion Commerciale-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{46DA90DB-D8D5-474A-B138-D5588F8D0BEF}\Setup.exe" -l0x40c /uninst
EBP Paye-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{73CAA13B-7EEB-4633-B4C2-455EDDE6D264}\Setup.exe" -l0x40c /uninst
English+ New Generation - Débutant 2 French-->C:\WINDOWS\Uninstaller.exe -s -a -un"C:\WINDOWS\IsUn040c.exe %f"C:\Program Files\emme\English+ NG\French\Basic1\Uninst.isu"" -sb
FloorPlan 3D v6-->MsiExec.exe /I{5F9E742B-8FCB-48C3-9420-63136BD01DA1}
Freecom Backup Software 1.15-->"C:\Program Files\Freecom Backup Software\unins000.exe"
Home Cinema-->"C:\Program Files\Uninstall_PCM.exe"
HP Extended Capabilities 4.7-->C:\Program Files\HP\Digital Imaging\ExtCapUninstall\hpzscr01.exe -datfile hpqhsc01.dat
HP Image Zone 4.7-->C:\Program Files\HP\Digital Imaging\uninstall\hpzscr01.exe -datfile hpqscr01.dat
HP PSC & OfficeJet 4.7-->"C:\Program Files\HP\Digital Imaging\{342C7C88-D335-4bc2-8CF1-281857629CE2}\setup\hpzscr01.exe" -datfile hposcr05.dat
HP Software Update-->MsiExec.exe /X{64FC0C98-B035-4530-B15D-3D30610B6DF1}
InCD-->C:\WINDOWS\NuNInst.exe /UNINSTALL
Le corps humain 6.0-->C:\WINDOWS\bw6uinst.exe
Learn2 Player (Uninstall Only)-->C:\Program Files\Learn2.com\StRunner\stuninst.exe
Les Sims 2-->C:\Program Files\EA GAMES\Les Sims 2\EAUninstall.exe
Les Sims Deluxe-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{10798AE3-DCBB-43C3-9C93-C23512427E25}\setup.exe" -l040c
Malwarebytes' Anti-Malware-->"C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"
Micro Application - Atlas Routier et Plans de ville-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{A6F8AE3F-B3A0-47FF-B6C9-6FC1B3B71A8D}/setup.exe"
Microsoft .NET Framework 1.1 French Language Pack-->MsiExec.exe /X{9A394342-4A68-4EBA-85A6-55B559F4E700}
Microsoft .NET Framework 1.1 Hotfix (KB928366)-->"C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe" "C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\M928366\M928366Uninstall.msp"
Microsoft .NET Framework 1.1-->msiexec.exe /X {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 1.1-->MsiExec.exe /X{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft ActiveSync 3.7-->"C:\WINDOWS\ISUN040C.EXE" -f"C:\Program Files\Microsoft ActiveSync\DeIsL1.isu" -c"C:\Program Files\Microsoft ActiveSync\ceuninst.dll"
Microsoft Internationalized Domain Names Mitigation APIs-->"C:\WINDOWS\$NtServicePackUninstallIDNMitigationAPIs$\spuninst\spuninst.exe"
Microsoft National Language Support Downlevel APIs-->"C:\WINDOWS\$NtServicePackUninstallNLSDownlevelMapping$\spuninst\spuninst.exe"
Microsoft Office 2000 CD-ROM 2-->MsiExec.exe /I{0004040C-78E1-11D2-B60F-006097C998E7}
Microsoft Office 2000 Small Business-->MsiExec.exe /I{0003040C-78E1-11D2-B60F-006097C998E7}
Microsoft Windows Media Video 9 VCM-->RunDll32 advpack.dll,LaunchINFSection C:\WINDOWS\INF\wmv9vcm.inf, Uninstall
Microsoft Works-->MsiExec.exe /I{A059DE09-1B49-4450-B340-7AE097EC3F04}
Mise à jour de sécurité pour Lecteur Windows Media 9 (KB911565)-->"C:\WINDOWS\$NtUninstallKB911565$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Lecteur Windows Media 9 (KB917734)-->"C:\WINDOWS\$NtUninstallKB917734_WMP9$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB928090)-->"C:\WINDOWS\ie7updates\KB928090-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB929969)-->"C:\WINDOWS\ie7updates\KB929969\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB931768)-->"C:\WINDOWS\ie7updates\KB931768-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB933566)-->"C:\WINDOWS\ie7updates\KB933566-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB937143)-->"C:\WINDOWS\ie7updates\KB937143-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB938127)-->"C:\WINDOWS\ie7updates\KB938127-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB939653)-->"C:\WINDOWS\ie7updates\KB939653-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB942615)-->"C:\WINDOWS\ie7updates\KB942615-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB944533)-->"C:\WINDOWS\ie7updates\KB944533-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB950759)-->"C:\WINDOWS\ie7updates\KB950759-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB953838)-->"C:\WINDOWS\ie7updates\KB953838-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB956390)-->"C:\WINDOWS\ie7updates\KB956390-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB938464)-->"C:\WINDOWS\$NtUninstallKB938464$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB941569)-->"C:\WINDOWS\$NtUninstallKB941569$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB946648)-->"C:\WINDOWS\$NtUninstallKB946648$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB950760)-->"C:\WINDOWS\$NtUninstallKB950760$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB950762)-->"C:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB950974)-->"C:\WINDOWS\$NtUninstallKB950974$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB951066)-->"C:\WINDOWS\$NtUninstallKB951066$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB951376)-->"C:\WINDOWS\$NtUninstallKB951376$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB951376-v2)-->"C:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB951698)-->"C:\WINDOWS\$NtUninstallKB951698$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB951748)-->"C:\WINDOWS\$NtUninstallKB951748$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB952954)-->"C:\WINDOWS\$NtUninstallKB952954$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB953839)-->"C:\WINDOWS\$NtUninstallKB953839$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB954211)-->"C:\WINDOWS\$NtUninstallKB954211$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB956391)-->"C:\WINDOWS\$NtUninstallKB956391$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB956803)-->"C:\WINDOWS\$NtUninstallKB956803$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB956841)-->"C:\WINDOWS\$NtUninstallKB956841$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB957095)-->"C:\WINDOWS\$NtUninstallKB957095$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB958644)-->"C:\WINDOWS\$NtUninstallKB958644$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB951072-v2)-->"C:\WINDOWS\$NtUninstallKB951072-v2$\spuninst\spuninst.exe"
MP3 Player Utilities-->MsiExec.exe /I{5BBFB0E4-2250-49C3-A8A3-65BE2197D13B}
MSN-->C:\Program Files\MSN\MsnInstaller\msninst.exe /Action:ARP
MSXML 4.0 SP2 (KB927978)-->MsiExec.exe /I{37477865-A3F1-4772-AD43-AAFC6BCFF99F}
MSXML 4.0 SP2 (KB936181)-->MsiExec.exe /I{C04E32E0-0416-434D-AFB9-6969D703A9EF}
Navilog1 3.7.7-->"C:\Program Files\Navilog1\unins000.exe"
Nero Media Player-->C:\WINDOWS\UNNMP.exe /UNINSTALL
Nero OEM-->C:\Program Files\Ahead\nero\uninstall\UNNERO.exe /UNINSTALL
NeroVision Express 2-->C:\WINDOWS\UNNeroVision.exe /UNINSTALL
Netscape Communicator 4.7-->C:\WINDOWS\cd32.exe 4.7 (en)
Pervasive System Analyzer-->C:\WINDOWS\IsUninst.exe -f"C:\Program Files\Fichiers communs\Pervasive Software Shared\PSA\psa.isu"
Pervasive.SQL V8 Workgroup (v8.6)-->MsiExec.exe /I{5FCFC78C-438A-4F4D-B266-E32B8468BAFC}
Picasa 2-->"C:\Program Files\Picasa2\Uninstall.exe"
Plus de 300 Applications pour Excel-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{CC53BB11-87A1-4935-BD1F-2A5083DD32FE}\Setup.exe" -l0x40c
Plus de 50 000 Cliparts Volume 1-->C:\PROGRA~1\MICROA~1\PLUSDE~2\UNWISE.EXE C:\PROGRA~1\MICROA~1\PLUSDE~2\INSTALL.LOG
PowerDVD-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}\setup.exe" -uninstall
PowerProducer-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{B7A0CE06-068E-11D6-97FD-0050BACBF861}\setup.exe" -uninstall
QuickTime-->C:\WINDOWS\unvise32qt.exe C:\WINDOWS\system32\QuickTime\Uninstall.log
RealPlayer Basic-->C:\Program Files\Fichiers communs\Real\Update\\rnuninst.exe RealNetworks|RealPlayer|6.0
Realtek AC'97 Audio-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{FB08F381-6533-4108-B7DD-039E11FBC27E}\setup.exe" REMOVE
Siemens SmartSync-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{5B12573C-9C90-4790-BFEE-2BC43C2EB997}\Setup.exe" UNINSTALL
Smart Link 56K Modem-->C:\WINDOWS\Modio\SLAMR2KV\Setup.exe /Remove
UsbFix-->C:\UsbFix\Uninstal.exe
Viewpoint Media Player-->C:\Program Files\Viewpoint\Viewpoint Experience Technology\mtsAxInstaller.exe /u
Windows Live Messenger-->MsiExec.exe /I{F6326B60-1B1D-4ABF-BFCD-7B7404F44411}
Windows Live Sign-in Assistant-->MsiExec.exe /I{49672EC2-171B-47B4-8CE7-50D7806360D7}
Windows XP Service Pack 3-->"C:\WINDOWS\$NtServicePackUninstall$\spuninst\spuninst.exe"
======Security center information======
AV: Avira AntiVir PersonalEdition (outdated)
======System event log======
Computer Name: SÉVERINE
Event Code: 7035
Message: Un contrôle Démarrer a correctement été envoyé au service Gestion d'applications.
Record Number: 111948
Source Name: Service Control Manager
Time Written: 20081213191034.000000+060
Event Type: Informations
User: SÉVERINE\PASCAL
Computer Name: SÉVERINE
Event Code: 7023
Message: Le service Gestion d'applications s'est arrêté avec l'erreur :
Le module spécifié est introuvable.
Record Number: 111947
Source Name: Service Control Manager
Time Written: 20081213191034.000000+060
Event Type: erreur
User:
Computer Name: SÉVERINE
Event Code: 7036
Message: Le service Gestion d'applications est entré dans l'état : arrêté.
Record Number: 111946
Source Name: Service Control Manager
Time Written: 20081213191034.000000+060
Event Type: Informations
User:
Computer Name: SÉVERINE
Event Code: 7035
Message: Un contrôle Démarrer a correctement été envoyé au service Gestion d'applications.
Record Number: 111945
Source Name: Service Control Manager
Time Written: 20081213191034.000000+060
Event Type: Informations
User: SÉVERINE\PASCAL
Computer Name: SÉVERINE
Event Code: 7023
Message: Le service Gestion d'applications s'est arrêté avec l'erreur :
Le module spécifié est introuvable.
Record Number: 111944
Source Name: Service Control Manager
Time Written: 20081213191034.000000+060
Event Type: erreur
User:
=====Application event log=====
Computer Name: SÉVERINE
Event Code: 4113
Message: AntiVir has detected 'TR/Crypt.ULPM.Gen'
in the file
C:\WINDOWS\system32\yayyyxUO.dll
Record Number: 5780
Source Name: H+BEDV AntiVir
Time Written: 20090607170255.000000+120
Event Type: Avertissement
User: AUTORITE NT\SYSTEM
Computer Name: SÉVERINE
Event Code: 4113
Message: AntiVir has detected 'TR/Crypt.ULPM.Gen'
in the file
C:\WINDOWS\system32\yayyyxUO.dll
Record Number: 5779
Source Name: H+BEDV AntiVir
Time Written: 20090607170254.000000+120
Event Type: Avertissement
User: AUTORITE NT\SYSTEM
Computer Name: SÉVERINE
Event Code: 4113
Message: AntiVir has detected 'TR/Crypt.ULPM.Gen'
in the file
C:\WINDOWS\system32\yayyyxUO.dll
Record Number: 5778
Source Name: H+BEDV AntiVir
Time Written: 20090607170253.000000+120
Event Type: Avertissement
User: AUTORITE NT\SYSTEM
Computer Name: SÉVERINE
Event Code: 4113
Message: AntiVir has detected 'TR/Crypt.ULPM.Gen'
in the file
C:\WINDOWS\system32\yayyyxUO.dll
Record Number: 5777
Source Name: H+BEDV AntiVir
Time Written: 20090607170252.000000+120
Event Type: Avertissement
User: AUTORITE NT\SYSTEM
Computer Name: SÉVERINE
Event Code: 4113
Message: AntiVir has detected 'TR/Crypt.ULPM.Gen'
in the file
C:\WINDOWS\system32\yayyyxUO.dll
Record Number: 5776
Source Name: H+BEDV AntiVir
Time Written: 20090607170250.000000+120
Event Type: Avertissement
User: AUTORITE NT\SYSTEM
======Environment variables======
"ComSpec"=%SystemRoot%\system32\cmd.exe
"Path"=%systemroot%\system32;%systemroot%;%systemroot%\system32\wbem;C:\PVSW\bin;C:\Program Files\Fichiers communs\GIS\Tools
"windir"=%SystemRoot%
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"PROCESSOR_ARCHITECTURE"=x86
"PROCESSOR_LEVEL"=15
"PROCESSOR_IDENTIFIER"=x86 Family 15 Model 4 Stepping 10, AuthenticAMD
"PROCESSOR_REVISION"=040a
"NUMBER_OF_PROCESSORS"=1
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"CLASSPATH"=C:\PVSW\bin\pvjdbc2x.jar;C:\PVSW\bin\pvjdbc.jar
"VSL"=C:\PVSW\bin
-----------------EOF-----------------
En espérant que tout est clean Maintenant.
A+