|
|
|
|
Configuration: Windows Vista Internet Explorer 7.0
Salut
Via ajouter/supprimer des programme, clic sur MSN et choisis "réparer" puis essai à nouveau. c'est en forgeant que l'on devient forgeron ! ** site perso pour forger, dans mon profil **
|
Bizarre !
Télécharge ComboScan sur ton Bureau. ---> http://www.techsupportforum.com/sectools/Deckard/comboscan.exe Ferme toutes les applications en cours ; antivirus, pare-feu, etc .. Double-clic sur comboscan.exe A la fenêtre qui s'affiche, clic sur OK. Soit patient .. Le rapport Comboscan.txt s'affichera, copie et colle le contenu de ce fichier ici. c'est en forgeant que l'on devient forgeron ! ** site perso pour forger, dans mon profil ** |
salut je te donne les infos j'espère que tu pourras m'aider à les déchiffrer parceque moi je n'y comprend rien
ComboScan v20070306.20 run by nathetfranck on 2007-03-24 at 06:12:07 Computer is in Normal Mode. -------------------------------------------------------------------------------- -- Last 5 Restore Point(s) -- 24: 2007-03-22 22:09:20 UTC - RP130 - Windows Update 23: 2007-03-22 12:04:51 UTC - RP129 - Installed Adobe Reader 7.0.9 22: 2007-03-21 03:48:30 UTC - RP128 - Windows Update 21: 2007-03-18 17:01:32 UTC - RP127 - Installé Paint Shop Pro 7 Anniversary Edition 20: 2007-03-17 11:14:45 UTC - RP126 - Windows Update -- First Restore Point -- 1: 2007-02-18 00:53:26 UTC - RP101 - Configuré ProStroke Golf Performed disk cleanup. -- HijackThis (run as nathetfranck.exe) ---------------------------------------- Logfile of HijackThis v1.99.1 Scan saved at 06:13:29, on 2007-03-24 Platform: Unknown Windows (WinNT 6.00.1904) MSIE: Internet Explorer v7.00 (7.00.6000.16386) Running processes: C:\Windows\system32\Dwm.exe C:\Windows\Explorer.EXE C:\Windows\system32\taskeng.exe C:\Program Files\Windows Defender\MSASCui.exe C:\Windows\RtHDVCpl.exe C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe C:\Program Files\MyWebSearch\bar\4.bin\M3SRCHMN.EXE C:\Program Files\Common Files\Symantec Shared\ccApp.exe C:\Program Files\QuickTime\qttask.exe C:\Windows\ehome\ehtray.exe C:\Program Files\MyWebSearch\bar\4.bin\MWSOEMON.EXE C:\Program Files\Windows Media Player\wmpnscfg.exe C:\Program Files\Google\Google Updater\GoogleUpdater.exe C:\Windows\ehome\ehmsas.exe C:\Program Files\MSN Messenger\msnmsgr.exe C:\Program Files\Internet Explorer\IEUser.exe C:\Users\nathetfranck\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\73Z25P4Q\comboscan[1].exe C:\Windows\system32\SearchFilterHost.exe C:\PROGRA~1\HIJACK~1\nathetfranck.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://g.fr.msn.ca/0SEFRCA/SAOS01?FORM=TOOLBR R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://g.fr.msn.ca/0SEFRCA/SAOS01?FORM=TOOLBR R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.ca/ig?hl=fr R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://fr.ca.acer.yahoo.com R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.ca.acer.yahoo.com R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.fr.msn.ca/0SEFRCA/SAOS01?FORM=TOOLBR R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigURL = Marvell Yukon 88E8056 PCI-E Gigabit Ethernet Controller R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file) R3 - URLSearchHook: (no name) - {00A6FAF6-072E-44cf-8957-5838F569A31D} - C:\Program Files\MyWebSearch\SrchAstt\4.bin\MWSSRCAS.DLL O1 - Hosts: ::1 localhost O2 - BHO: MyWebSearch Search Assistant BHO - {00A6FAF1-072E-44cf-8957-5838F569A31D} - C:\Program Files\MyWebSearch\SrchAstt\4.bin\MWSSRCAS.DLL O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: mwsBar BHO - {07B18EA1-A523-4961-B6BB-170DE4475CCA} - C:\Program Files\MyWebSearch\bar\4.bin\MWSBAR.DLL O2 - BHO: (no name) - {1E8A6170-7264-4D0F-BEAE-D42A53123C75} - C:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.5\NppBho.dll O2 - BHO: Canon Easy Web Print Helper - {68F9551E-0411-48E4-9AAF-4BC42A6A46BE} - C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\Windows\system32\eDStoolbar.dll O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll O3 - Toolbar: My &Web Search - {07B18EA9-A523-4961-B6BB-170DE4475CCA} - C:\Program Files\MyWebSearch\bar\4.bin\MWSBAR.DLL O3 - Toolbar: Show Norton Toolbar - {90222687-F593-4738-B738-FBEE9C7B26DF} - C:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.5\UIBHO.dll O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe O4 - HKLM\..\Run: [eDataSecurity Loader] C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start O4 - HKLM\..\Run: [Acer Assist Launcher] C:\Program Files\Acer Assist\launcher.exe O4 - HKLM\..\Run: [My Web Search Bar Search Scope Monitor] "C:\PROGRA~1\MYWEBS~1\bar\4.bin\m3SrchMn.exe" /m=0 O4 - HKLM\..\Run: [MyWebSearch Email Plugin] C:\PROGRA~1\MYWEBS~1\bar\4.bin\mwsoemon.exe O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe" O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun O4 - HKCU\..\Run: [ISUSPM Startup] "c:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe" -startup O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe O4 - HKCU\..\Run: [MyWebSearch Email Plugin] C:\PROGRA~1\MYWEBS~1\bar\4.bin\mwsoemon.exe O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe O4 - HKCU\..\Run: [updateMgr] C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_0_9 O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe O4 - Startup: MSN Messenger 7.5.lnk = ? O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe O4 - Global Startup: Outil de mise à jour Google.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe O8 - Extra context menu item: &Search - http://edits.mywebsearch.com/toolbaredits/menusearch.jhtml?p=ZR O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000 O8 - Extra context menu item: Easy-WebPrint Ajouter à la liste d'impressions - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_AddToList.html O8 - Extra context menu item: Easy-WebPrint Impression rapide - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_HSPrint.html O8 - Extra context menu item: Easy-WebPrint Imprimer - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Print.html O8 - Extra context menu item: Easy-WebPrint Prévisualiser - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Preview.html O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL O10 - Unknown file in Winsock LSP: c:\windows\system32\nlaapi.dll O10 - Unknown file in Winsock LSP: c:\windows\system32\napinsp.dll O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll O11 - Options group: [INTERNATIONAL] International* O13 - Gopher Prefix: O16 - DPF: {05D44720-58E3-49E6-BDF6-D00330E511D3} (StagingUI Object) - http://zone.msn.com/binFrameWork/v10/StagingUI.cab55579.cab O16 - DPF: {1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB} (Fun Web Products Installer Start) - http://ak.exe.imgfarm.com/... O16 - DPF: {3BB54395-5982-4788-8AF4-B5388FFDD0D8} (MSN Games – Buddy Invite) - http://zone.msn.com/BinFrameWork/v10/ZBuddy.cab55579.cab O16 - DPF: {5736C456-EA94-4AAC-BB08-917ABDD035B3} (ZonePAChat Object) - http://zone.msn.com/binframework/v10/ZPAChat.cab55579.cab O16 - DPF: {95B5D20C-BD31-4489-8ABF-F8C8BE748463} (ZPA_HRTZ Object) - http://zone.msn.com/bingame/zpagames/zpa_hrtz.cab55579.cab O16 - DPF: {A4110378-789B-455F-AE86-3A1BFC402853} (ZPA_SHVL Object) - http://zone.msn.com/bingame/zpagames/zpa_shvl.cab55579.cab O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://cdn2.zone.msn.com/binFramework/v10/ZIntro.cab56649.cab O16 - DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} (Zylom Games Player) - http://game09.zylom.com/activex/zylomgamesplayer.cab O16 - DPF: {DA2AA6CF-5C7A-4B71-BC3B-C771BB369937} (MSN Games – Game Communicator) - http://zone.msn.com/binframework/v10/StProxy.cab55579.cab O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing) O18 - Filter hijack: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL O23 - Service: ePerformance Service (AcerMemUsageCheckService) - Unknown owner - C:\Acer\Empowering Technology\ePerformance\MemCheck.exe O23 - Service: Symantec Event Manager (ccEvtMgr) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h ccCommon (file missing) O23 - Service: Symantec Settings Manager (ccSetMgr) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h ccCommon (file missing) O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h cltCommon (file missing) O23 - Service: COM Host (comHost) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe O23 - Service: @%SystemRoot%\ehome\ehstart.dll,-101 (ehstart) - Unknown owner - %windir%\system32\svchost.exe (file missing) O23 - Service: eRecovery Service (eRecoveryService) - Acer Inc. - C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: Symantec IS Password Validation (ISPwdSvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\isPwdSvc.exe O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe O23 - Service: @%SystemRoot%\system32\qwave.dll,-1 (QWAVE) - Unknown owner - %windir%\system32\svchost.exe (file missing) O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe O23 - Service: @%SystemRoot%\system32\seclogon.dll,-7001 (seclogon) - Unknown owner - %windir%\system32\svchost.exe (file missing) O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe O23 - Service: Symantec AppCore Service (SymAppCore) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\AppCore\AppSvc32.exe O23 - Service: @%windir%\system32\inetsrv\iisres.dll,-30003 (W3SVC) - Unknown owner - %windir%\system32\svchost.exe (file missing) O23 - Service: @%windir%\system32\inetsrv\iisres.dll,-30001 (WAS) - Unknown owner - %windir%\system32\svchost.exe (file missing) O23 - Service: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - %ProgramFiles%\Windows Media Player\wmpnetwk.exe (file missing) -- File Associations ----------------------------------------------------------- .bat - batfile - "%1" %* .chm - chm.file - "%SystemRoot%\hh.exe" %1 .cmd - cmdfile - "%1" %* .com - comfile - "%1" %* .exe - exefile - "%1" %* .hlp - hlpfile - %SystemRoot%\winhlp32.exe %1 .inf - inffile - %SystemRoot%\system32\NOTEPAD.EXE %1 .ini - inifile - %SystemRoot%\system32\NOTEPAD.EXE %1 .js - JSFile - %SystemRoot%\System32\WScript.exe "%1" %* .lnk - lnkfile - {00021401-0000-0000-C000-000000000046} .pif - piffile - "%1" %* .reg - regfile - regedit.exe "%1" .scr - scrfile - "%1" /S .txt - txtfile - %SystemRoot%\system32\NOTEPAD.EXE %1 .vbs - VBSFile - "%SystemRoot%\System32\WScript.exe" "%1" %* -- Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled --------------------- 1R eeCtrl (Symantec Eraser Control driver) - \??\C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys 3R EraserUtilRebootDrv - \??\C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys 3S HdAudAddService (Pilote de fonction UAA 1.1 Microsoft pour le service High Definition Audio) - C:\Windows\System32\drivers\HdAudio.sys 1R IDSvix86 (Symantec Intrusion Prevention Driver) - \??\C:\PROGRA~2\Symantec\DEFINI~1\SymcData\idsdefs\20070308.001\IDSvix86.sys 2R int15 - \??\C:\Acer\Empowering Technology\eRecovery\int15.sys 3R IntcAzAudAddService (Service for Realtek HD Audio (WDM)) - C:\Windows\System32\drivers\RTKVHDA.sys 3R NAVENG - \??\C:\PROGRA~2\Symantec\DEFINI~1\VIRUSD~1\20070323.033\NAVENG.SYS 3R NAVEX15 - \??\C:\PROGRA~2\Symantec\DEFINI~1\VIRUSD~1\20070323.033\NAVEX15.SYS 3R NTIDrvr (Upper Class Filter Driver) - C:\Windows\System32\drivers\NTIDrvr.sys 3R nvlddmkm - C:\Windows\System32\drivers\nvlddmkm.sys 0R PSDFilter - C:\Windows\System32\drivers\psdfilter.sys 0R PSDNServ (PSDNSERVER) - C:\Windows\System32\drivers\PSDNServ.sys 0R psdvdisk - C:\Windows\System32\drivers\psdvdisk.sys 3R smserial - C:\Windows\System32\drivers\smserial.sys 1R SPBBCDrv - \??\C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCDrv.sys 3R SRTSP - C:\Windows\System32\drivers\srtsp.sys 3S SRTSPL - C:\Windows\System32\drivers\srtspl.sys 1R SRTSPX - C:\Windows\System32\drivers\srtspx.sys 3R SYMDNS - C:\Windows\System32\drivers\symdns.sys 3R SymEvent - \??\C:\Windows\system32\Drivers\SYMEVENT.SYS 3R SYMFW - C:\Windows\System32\drivers\symfw.sys 3R SYMIDS - C:\Windows\System32\drivers\symids.sys 3R SYMNDISV - C:\Windows\System32\drivers\symndisv.sys 3R SYMREDRV - C:\Windows\System32\drivers\symredrv.sys 1R SYMTDI - C:\Windows\System32\drivers\symtdi.sys 0R UBHelper - C:\Windows\System32\drivers\UBHelper.sys 3S usbscan (Pilote de scanneur USB) - C:\Windows\System32\drivers\usbscan.sys 3R USBSTOR (Pilote de stockage de masse USB) - C:\Windows\System32\drivers\USBSTOR.SYS 3S WSVD - \??\C:\Windows\system32\drivers\WSVD.sys 3R yukonwlh (NDIS6.0 Miniport Driver for Marvell Yukon Ethernet Controller) - C:\Windows\System32\drivers\yk60x86.sys -- Services: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled -------------------- 2R AcerMemUsageCheckService (ePerformance Service) - C:\Acer\Empowering Technology\ePerformance\MemCheck.exe 2R ccEvtMgr (Symantec Event Manager) - "C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h ccCommon 2R ccSetMgr (Symantec Settings Manager) - "C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h ccCommon 2R CLTNetCnService (Symantec Lic NetConnect service) - "C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h cltCommon 3S comHost (COM Host) - "C:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe" 2R eRecoveryService (eRecovery Service) - C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe 2R gusvc (Google Updater Service) - "C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe" 3S IDriverT (InstallDriver Table Manager) - "C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe" 3S ISPwdSvc (Symantec IS Password Validation) - "C:\Program Files\Norton Internet Security\isPwdSvc.exe" 2R LightScribeService (LightScribeService Direct Disc Labeling Service) - "C:\Program Files\Common Files\LightScribe\LSSrvc.exe" 3S LiveUpdate - "C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE" 3S odserv (Microsoft Office Diagnostics Service) - "C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE" 3S ose (Office Source Engine) - "C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE" 2R Planificateur LiveUpdate automatique - "C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe" 2R RichVideo (Cyberlink RichVideo Service(CRVS)) - "C:\Program Files\CyberLink\Shared Files\RichVideo.exe" 3R Symantec Core LC - "C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe" 2R SymAppCore (Symantec AppCore Service) - "C:\Program Files\Common Files\Symantec Shared\AppCore\AppSvc32.exe" 2R W3SVC (Service de publication World Wide Web) - C:\Windows\system32\svchost.exe -k iissvcs 3R WAS (Service d'activation des processus Windows) - C:\Windows\system32\svchost.exe -k iissvcs -- Scheduled Tasks ------------------------------------------------------------- 2007-03-24 06:13:01 268 --a------ C:\Windows\Tasks\Vérifier les mises à jour de Windows Live Toolbar.job<VRIFIE~1.JOB> 2007-03-23 07:22:02 538 --a------ C:\Windows\Tasks\Norton Internet Security - Analyse système complète - nathetfranck.job<NORTON~1.JOB> -- Files created between 2007-02-24 and 2007-03-24 ----------------------------- -- Find3M Report --------------------------------------------------------------- 2007-03-23 15:22:27 0 d-------- C:\Program Files\MSN Games<MSNGAM~1> 2007-03-23 14:46:40 750878 --a------ C:\Windows\system32\perfh00C.dat 2007-03-23 14:46:40 139976 --a------ C:\Windows\system32\perfc00C.dat 2007-03-23 14:38:13 0 d--h----- C:\Program Files\InstallShield Installation Information<INSTAL~1> 2007-03-22 08:06:31 0 d-------- C:\Program Files\Common Files\Adobe 2007-03-18 13:02:13 0 d-------- C:\Program Files\Jasc Software Inc<JASCSO~1> 2007-03-16 09:32:26 69689 --a------ C:\Windows\UNZIP.DLL 2007-03-16 09:32:26 507904 --a------ C:\Windows\TMUPDATE.DLL 2007-03-16 09:32:25 286720 --a------ C:\Windows\PATCH.EXE 2007-03-14 09:36:05 414208 --a------ C:\Windows\system32\msscp.dll 2007-03-14 09:35:43 4153344 --a------ C:\Windows\system32\GameUXLegacyGDFs.dll 2007-03-14 09:35:42 1686016 --a------ C:\Windows\system32\gameux.dll 2007-03-12 09:55:44 0 d---s---- C:\Users\nathetfranck\AppData\Roaming\Microsoft<MICROS~1> 2007-03-11 20:45:54 0 d-------- C:\Program Files\MSN Messenger<MSNMES~1> 2007-03-10 08:49:15 0 d-------- C:\Users\nathetfranck\AppData\Roaming\Adobe 2007-03-05 22:35:14 0 d-------- C:\Users\nathetfranck\AppData\Roaming\Apple Computer<APPLEC~1> 2007-03-05 22:34:27 0 d-------- C:\Program Files\QuickTime<QUICKT~1> 2007-03-05 22:31:44 0 d-------- C:\Program Files\Apple Software Update<APPLES~1> 2007-03-05 13:48:07 0 d-------- C:\Program Files\Common Files\Symantec Shared<SYMANT~1> 2007-03-05 13:38:57 0 d-------- C:\Program Files\Norton Internet Security<NORTON~1> 2007-03-05 13:38:49 0 d-------- C:\Program Files\Symantec 2007-02-18 21:26:38 0 d-------- C:\Program Files\Microsoft Games<MICROS~1> 2007-02-18 08:42:17 501798 --a------ C:\Users\nathetfranck\AppData\Roaming\UserTile.png 2007-02-18 08:25:07 0 d-------- C:\Program Files\Common Files\Intuit 2007-02-15 17:41:46 98304 --a------ C:\Windows\system32\CmdLineExt.dll<CMDLIN~1.DLL> 2007-02-15 09:41:43 0 d--h----- C:\Program Files\CanonBJ 2007-02-15 09:40:38 0 d-------- C:\Users\nathetfranck\AppData\Roaming\Canon 2007-02-14 15:31:45 0 d-------- C:\Program Files\ValuSoft 2007-02-14 07:23:06 0 d-------- C:\Program Files\Windows Mail<WINDOW~1> 2007-02-13 11:51:05 0 d-------- C:\Program Files\MyWebSearch<MYWEBS~1> 2007-02-13 11:51:03 28672 --a------ C:\Windows\system32\f3PSSavr.scr 2007-02-13 11:45:17 0 d-------- C:\Program Files\FunWebProducts<FUNWEB~1> 2007-02-12 16:40:18 0 d-------- C:\Program Files\Yahoo! 2007-02-12 15:35:23 0 d-------- C:\Program Files\Reference Assemblies<REFERE~1> 2007-02-12 15:35:23 0 d-------- C:\Program Files\MSBuild 2007-02-11 15:34:51 0 d-------- C:\Users\nathetfranck\AppData\Roaming\7Wonders 2007-02-11 14:10:14 104448 --a------ C:\Windows\system32\DWWIN.EXE 2007-02-11 14:09:59 229888 --a------ C:\Windows\system32\msshsq.dll 2007-02-11 14:08:38 383488 --a------ C:\Windows\system32\ieapfltr.dll 2007-02-11 14:07:52 974336 --a------ C:\Windows\system32\crypt32.dll 2007-02-10 16:59:47 0 d-------- C:\Users\nathetfranck\AppData\Roaming\Macromedia<MACROM~1> 2007-02-08 15:30:11 0 d-------- C:\Program Files\Registry Helper<REGIST~1> 2007-02-08 15:25:25 0 d-------- C:\Program Files\The Weather Channel FW<THEWEA~1> 2007-02-08 15:20:33 106716412 --a------ C:\2-8-2007--2-19-47-pm.reg<2-8-20~1.REG> 2007-02-08 15:19:34 2814872 --a------ C:\Windows\system32\RegistryHelperSetupFZ.exe<REGIST~1.EXE> 2007-02-08 15:19:02 0 d-------- C:\Program Files\Free Offers from Freeze.com<FREEOF~1.COM> 2007-02-08 15:08:34 1311335 --a------ C:\Windows\system32\aquarium.scr 2007-02-08 15:06:44 1715 --a------ C:\Windows\unins001.dat 2007-02-08 11:46:22 2878 --a------ C:\Windows\unins000.dat 2007-02-08 11:35:46 0 d-------- C:\Users\nathetfranck\AppData\Roaming\Google 2007-02-08 11:34:26 0 d-------- C:\Program Files\Google 2007-02-08 09:35:13 97 --a------ C:\Windows\dun.bat 2007-02-06 07:04:15 0 d-------- C:\Program Files\Java 2007-02-06 06:59:00 0 d-------- C:\Users\nathetfranck\AppData\Roaming\Sun 2007-02-05 15:50:57 0 --a------ C:\Windows\PowerReg.dat 2007-02-05 15:48:59 0 d-------- C:\Program Files\Ubi Soft<UBISOF~1> 2007-02-04 17:42:28 0 d-------- C:\Program Files\Common Files\CANON 2007-02-04 17:41:56 0 d-------- C:\Program Files\Canon 2007-02-03 21:54:40 0 d-------- C:\Program Files\Emoticons-plus.com<EMOTIC~1.COM> 2007-02-03 13:03:00 0 d-------- C:\Program Files\NevoSoft 2007-02-02 21:24:59 0 d-------- C:\Users\nathetfranck\AppData\Roaming\CyberLink<CYBERL~1> 2007-02-02 18:02:43 0 d-------- C:\Program Files\Mindscape<MINDSC~1> 2007-02-02 18:02:30 0 -rahs---- C:\MSDOS.SYS 2007-02-02 18:02:30 0 -rahs---- C:\IO.SYS 2007-02-02 08:11:42 0 d-------- C:\Users\nathetfranck\AppData\Roaming\AdobeUM 2007-02-01 21:55:33 0 d-------- C:\Users\nathetfranck\AppData\Roaming\ArcSoft 2007-02-01 20:56:01 0 d-------- C:\Program Files\Microsoft Works<MICROS~3> 2007-02-01 20:55:34 0 d-------- C:\Program Files\Microsoft.NET<MICROS~1.NET> 2007-02-01 18:23:03 0 d-------- C:\Program Files\LimeWire 2007-02-01 18:21:44 0 d-------- C:\Program Files\Common Files\Java 2007-02-01 17:57:58 0 d-------- C:\Program Files\Windows Live Toolbar<WI81E8~1> 2007-02-01 17:26:05 0 d-------- C:\Users\nathetfranck\AppData\Roaming\ScanSoft 2007-02-01 17:25:53 0 d-------- C:\Program Files\Common Files\ScanSoft Shared<SCANSO~1> 2007-02-01 17:25:11 0 d-------- C:\Program Files\ScanSoft 2007-02-01 17:23:46 0 d-------- C:\Program Files\ArcSoft 2007-02-01 17:02:13 0 d-------- C:\Users\nathetfranck\AppData\Roaming\InterTrust<INTERT~1> 2007-02-01 16:11:22 0 d-------- C:\Users\nathetfranck\AppData\Roaming\Acer 2007-02-01 16:11:17 0 d-------- C:\Users\nathetfranck\AppData\Roaming\Leadertech<LEADER~1> 2007-02-01 16:06:58 0 d-------- C:\Program Files\Acer Inc<ACERIN~1> 2007-02-01 16:06:55 0 d-------- C:\Program Files\Common Files\InstallShield<INSTAL~1> 2007-02-01 16:04:02 0 d-------- C:\Program Files\Acer Assist<ACERAS~1> 2007-02-01 16:02:57 0 d-------- C:\Users\nathetfranck\AppData\Roaming\Identities<IDENTI~1> 2007-02-01 15:58:14 0 d-------- C:\Program Files\Windows NT<WINDOW~2> 2007-02-01 15:58:14 0 d--hs---- C:\Program Files\Fichiers communs<FICHIE~1> 2007-01-25 11:04:52 1680 --a------ C:\Windows\rmt.dat 2007-01-07 14:51:00 1712201 --a------ C:\Windows\system32\InetClnt.dll -- Registry Dump --------------------------------------------------------------- [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run] "Sidebar"="C:\\Program Files\\Windows Sidebar\\sidebar.exe /autoRun" "????r"=hex(42a000): "ISUSPM Startup"="\"c:\\Program Files\\Common Files\\InstallShield\\UpdateService\\isuspm.exe\" -startup" "ehTray.exe"="C:\\Windows\\ehome\\ehTray.exe" "MyWebSearch Email Plugin"="C:\\PROGRA~1\\MYWEBS~1\\bar\\4.bin\\mwsoemon.exe" "swg"="C:\\Program Files\\Google\\GoogleToolbarNotifier\\1.2.1128.5462\\GoogleToolbarNotifier.exe" "updateMgr"="C:\\Program Files\\Adobe\\Acrobat 7.0\\Reader\\AdobeUpdateManager.exe AcRdB7_0_9" "WMPNSCFG"="C:\\Program Files\\Windows Media Player\\WMPNSCFG.exe" [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run] "Windows Defender"=hex(2):25,50,72,6f,67,72,61,6d,46,69,6c,65,73,25,5c,57,69,\ 6e,64,6f,77,73,20,44,65,66,65,6e,64,65,72,5c,4d,53,41,53,43,75,69,2e,65,78,\ 65,20,2d,68,69,64,65,00 "RtHDVCpl"="RtHDVCpl.exe" "Acer Tour"="" "eDataSecurity Loader"="C:\\Acer\\Empowering Technology\\eDataSecurity\\eDSloader.exe" "eRecoveryService"="" "ISUSScheduler"="\"C:\\Program Files\\Common Files\\InstallShield\\UpdateService\\issch.exe\" -start" "Acer Assist Launcher"="C:\\Program Files\\Acer Assist\\launcher.exe" "My Web Search Bar Search Scope Monitor"="\"C:\\PROGRA~1\\MYWEBS~1\\bar\\4.bin\\m3SrchMn.exe\" /m=0" "MyWebSearch Email Plugin"="C:\\PROGRA~1\\MYWEBS~1\\bar\\4.bin\\mwsoemon.exe" "ccApp"="\"C:\\Program Files\\Common Files\\Symantec Shared\\ccApp.exe\"" "QuickTime Task"="\"C:\\Program Files\\QuickTime\\qttask.exe\" -atboottime" [HKEY_USERS\.default\software\microsoft\windows\currentversion\run] "msnmsgr"="\"C:\\Program Files\\MSN Messenger\\msnmsgr.exe\" /background" [HKEY_USERS\s-1-5-18\software\microsoft\windows\currentversion\run] "msnmsgr"="\"C:\\Program Files\\MSN Messenger\\msnmsgr.exe\" /background" [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"=dword:00000002 "ConsentPromptBehaviorUser"=dword:00000001 "EnableInstallerDetection"=dword:00000001 "EnableLUA"=dword:00000001 "EnableSecureUIAPaths"=dword:00000001 "EnableVirtualization"=dword:00000001 "PromptOnSecureDesktop"=dword:00000001 "ValidateAdminCodeSignatures"=dword:00000000 "scforceoption"=dword:00000000 "FilterAdministratorToken"=dword:00000000 [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system\UIPI] [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system\UIPI\Clipboard] [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system\UIPI\Clipboard\ExceptionFormats] "CF_TEXT"=dword:00000001 "CF_BITMAP"=dword:00000002 "CF_OEMTEXT"=dword:00000007 "CF_DIB"=dword:00000008 "CF_PALETTE"=dword:00000009 "CF_UNICODETEXT"=dword:0000000d "CF_DIBV5"=dword:00000011 [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system] "LogonHoursAction"=dword:00000002 "DontDisplayLogonHoursWarnings"=dword:00000001 [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders] "SecurityProviders"="credssp.dll" HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\AppInfo HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\KeyIso HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\NTDS HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\ProfSvc HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\sacsvr HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\SWPRV HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\TabletInputService HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\TBS HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\TrustedInstaller HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\volmgr.sys HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\volmgrx.sys HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F} HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\{D48179BE-EC20-11D1-B6B8-00C04FA372A7} HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6} [HKEY_LOCAL_MACHINE\software\Microsoft\Windows NT\CurrentVersion\Svchost] LocalService REG_MULTI_SZ nsi\0lltdsvc\0SSDPSRV\0upnphost\0SCardSvr\0w32time\0EventSystem\0RemoteRegistry\0WinHttpAutoProxySvc\0lanmanworkstation\0TBS\0SLUINotify\0THREADORDER\0fdrespub\0netprofm\0fdphost\0wcncsvc\0QWAVE\0Mcx2Svc\0WebClient\0\0 LocalSystemNetworkRestricted REG_MULTI_SZ hidserv\0UxSms\0WdiSystemHost\0Netman\0trkwks\0AudioEndpointBuilder\0WUDFSvc\0irmon\0sysmain\0IPBusEnum\0dot3svc\0PcaSvc\0EMDMgmt\0TabletInputService\0wlansvc\0WPDBusEnum\0\0 NetworkServiceNetworkRestricted REG_MULTI_SZ PolicyAgent\0\0 LocalServiceNoNetwork REG_MULTI_SZ PLA\0DPS\0BFE\0mpssvc\0ehstart\0\0 NetworkService REG_MULTI_SZ CryptSvc\0DHCP\0TermService\0KtmRm\0DNSCache\0NapAgent\0nlasvc\0WinRM\0WECSVC\0Tapisrv\0\0 termsvcs REG_MULTI_SZ TermService\0\0 WerSvcGroup REG_MULTI_SZ wersvc\0\0 swprv REG_MULTI_SZ swprv\0\0 LocalServiceNetworkRestricted REG_MULTI_SZ DHCP\0eventlog\0AudioSrv\0LmHosts\0wscsvc\0p2pimsvc\0PNRPSvc\0p2psvc\0WPCSvc\0PnrpAutoReg\0\0 rpcss REG_MULTI_SZ RpcSs\0\0 regsvc REG_MULTI_SZ RemoteRegistry\0\0 wcssvc REG_MULTI_SZ WcsPlugInService\0\0 DcomLaunch REG_MULTI_SZ PlugPlay\0DcomLaunch\0\0 wdisvc REG_MULTI_SZ WdiServiceHost\0\0 sdrsvc REG_MULTI_SZ sdrsvc\0\0 imgsvc REG_MULTI_SZ StiSvc\0\0 secsvcs REG_MULTI_SZ WinDefend\0\0 iissvcs REG_MULTI_SZ w3svc\0was\0\0 HKLM\software\Microsoft\Windows NT\CurrentVersion\Svchost *netsvcs* AeLookupSvc wercplsupport CertPropSvc SCPolicySvc gpsvc IKEEXT LogonHours PCAudit iphlpsvc AppInfo msiscsi MMCSS ProfSvc EapHost SessionEnv hkmsvc *newlycreated* - HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\LEGACY_COMHOST -- End of ComboScan: finished at 2007-03-24 at 06:14:09 ------------------------ merci |
je viens de voir que j'avais une autre page d'ouvert avec les infos du système
je sais pas si tu en as besoin mais je te les donne au cas ComboScan v20070306.20 run by nathetfranck on 2007-03-24 at 06:12:07 Supplementary logfile - please post this as an attachment with your post. -------------------------------------------------------------------------------- -- System Information ---------------------------------------------------------- Microsoft® Windows Vista™ Édition Familiale Premium (build 6000) Architecture: X86; Language: French CPU 0: AMD Athlon(tm) 64 X2 Dual Core Processor 4200+ Percentage of Memory in Use: 64% Physical Memory (total/avail): 766.94 MiB / 271.32 MiB Pagefile Memory (total/avail): 1794.77 MiB / 828.02 MiB Virtual Memory (total/avail): 2047.88 MiB / 1938.94 MiB C: is Fixed (NTFS) - 113.2 GiB total, 83.24 GiB free. D: is Fixed (NTFS) - 112.85 GiB total, 103.34 GiB free. E: is CDROM (No Media) F: is Removable (No Media) G: is Removable (No Media) H: is Removable (No Media) I: is Removable (No Media) -- Security Center ------------------------------------------------------------- AUOptions is scheduled to auto-install. Windows Internal Firewall is disabled. FW: Norton Internet Security v2007 (Symantec Corporation) AV: Norton Internet Security v2007 (Symantec Corporation) AS: Windows Defender v1.1.1505.0 (Microsoft Corporation) AS: Norton Internet Security v2007 (Symantec Corporation) -- Environment Variables ------------------------------------------------------- ALLUSERSPROFILE=C:\ProgramData APPDATA=C:\Users\nathetfranck\AppData\Roaming CLASSPATH=.;C:\Program Files\Java\jre1.5.0_10\lib\ext\QTJava.zip CommonProgramFiles=C:\Program Files\Common Files COMPUTERNAME=PC-NATHETFRANCK ComSpec=C:\Windows\system32\cmd.exe FP_NO_HOST_CHECK=NO HOMEDRIVE=C: HOMEPATH=\Users\nathetfranck LOCALAPPDATA=C:\Users\nathetfranck\AppData\Local LOGONSERVER=\\PC-NATHETFRANCK NUMBER_OF_PROCESSORS=2 OS=Windows_NT Path=C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Program Files\QuickTime\QTSystem\ PATHEXT=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC PROCESSOR_ARCHITECTURE=x86 PROCESSOR_IDENTIFIER=x86 Family 15 Model 75 Stepping 2, AuthenticAMD PROCESSOR_LEVEL=15 PROCESSOR_REVISION=4b02 ProgramData=C:\ProgramData ProgramFiles=C:\Program Files PROMPT=$P$G PUBLIC=C:\Users\Public QTJAVA=C:\Program Files\Java\jre1.5.0_10\lib\ext\QTJava.zip SystemDrive=C: SystemRoot=C:\Windows TEMP=C:\Users\NATHET~1\AppData\Local\Temp TMP=C:\Users\NATHET~1\AppData\Local\Temp USERDOMAIN=PC-nathetfranck USERNAME=nathetfranck USERPROFILE=C:\Users\nathetfranck windir=C:\Windows -- User Profiles --------------------------------------------------------------- nathetfranck enfants -- Add/Remove Programs --------------------------------------------------------- 7 Wonders of the Ancient World --> "C:\Program Files\MSN Games\7 Wonders of the Ancient World\Uninstall.exe" "C:\Program Files\MSN Games\7 Wonders of the Ancient World\install.log" Acer Assist --> C:\Program Files\Acer Assist\uninstall.exe Acer eDataSecurity Management --> C:\Acer\Empowering Technology\eDataSecurity\eDSnstHelper.exe -Operation UNINSTALL Acer Empowering Technology --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{AB6097D9-D722-4987-BD9E-A076E2848EE2}\setup.exe" -l0x40c -removeonly Acer ePerformance Management --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{D462BF9E-0C35-4705-BF9B-3DF9F3816643}\setup.exe" -l0x40c -removeonly Acer Picture Slide DVD --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{41581EF5-45A7-11DA-9D78-000129760D75}\Setup.exe" -uninstall Acer Plug and Record --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{F6EFFB76-4A07-11DA-9D78-000129760D75}\Setup.exe" -uninstall Acer ScreenSaver --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{79DD56FC-DB8B-47F5-9C80-78B62E05F9BC}\setup.exe" -l0x9 -removeonly Acer Tour --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{94389919-B0AA-4882-9BE8-9F0B004ECA35}\setup.exe" -l0x40c -removeonly Acer Zone MagicDirector --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{F79A208D-D929-11D9-9D77-000129760D75}\Setup.exe" -uninstall Acer Zone Main Page --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{EFBDC2B0-FAA8-4B78-8DE1-AEBE7958FA37}\Setup.exe" -uninstall Acer Zone MakeDisk --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{B145EC69-66F5-11D8-9D75-000129760D75}\Setup.exe" -uninstall Acer Zone SoftDMA --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{AA4BF92B-2AAF-11DA-9D78-000129760D75}\Setup.exe" -uninstall Adobe Acrobat 5.0 --> C:\WINDOWS\ISUN040C.EXE -f"C:\Program Files\Common Files\Adobe\Acrobat 5.0\NT\Uninst.isu" -c"C:\Program Files\Common Files\Adobe\Acrobat 5.0\NT\Uninst.dll" Adobe Flash Player 9 ActiveX --> C:\Windows\system32\Macromed\Flash\FlashUtil9b.exe -uninstallDelete Adobe Reader 7.0.9 --> MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A70900000002} Adobe Shockwave Player --> C:\Windows\System32\Macromed\SHOCKW~1\UNWISE.EXE C:\Windows\System32\Macromed\SHOCKW~1\Install.log Animated Water Scenes --> C:\Windows\unins001.exe Animated Waterfalls --> C:\Windows\unins000.exe AppCore --> MsiExec.exe /I{EFB5B3B5-A280-4E25-BE1C-634EEFE32C1B} Apple Software Update --> MsiExec.exe /I{A260B422-70E1-41E2-957D-F76FA21266D5} ArcSoft PhotoStudio 5.5 --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{85309D89-7BE9-4094-BB17-24999C6118FC}\SETUP.EXE" -l0x40c AV --> MsiExec.exe /I{F4DB525F-A986-4249-B98B-42A8066251CA} Canon MP Navigator 3.0 --> "C:\Program Files\Canon\MP Navigator 3.0\Maint.exe" /UninstallRemove C:\Program Files\Canon\MP Navigator 3.0\uninst.ini Canon MP160 --> "C:\Windows\system32\CanonIJ Uninstaller Information\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP160\DelDrv.exe" /U:{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP160 /L0x000c Canon Utilities Easy-PhotoPrint --> C:\Program Files\Canon\Easy-PhotoPrint\uninst.exe uninst.ini ccCommon --> MsiExec.exe /I{3CCAD2EF-CFF2-4637-82AA-AABF370282D3} Crystalize 2 --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{6DCB9F1F-3BCC-4078-B90C-439017F1806C}\Setup.exe" -l0x9 -removeonly Easy-WebPrint --> C:\Windows\IsUn040c.exe -f"C:\Program Files\Canon\Easy-WebPrint\Uninst.isu" Google Toolbar for Internet Explorer --> MsiExec.exe /I{DBEA1034-5882-4A88-8033-81C4EF0CFA29} Google Toolbar for Internet Explorer --> regsvr32 /u /s "c:\program files\google\googletoolbar1.dll" J2SE Runtime Environment 5.0 Update 10 --> MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0150100} J2SE Runtime Environment 5.0 Update 3 --> MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0150030} Lapin Malin Maternelle 1 + Atelier de dessin & de musique --> C:\Program Files\Mindscape\Lapin Malin Maternelle 1 + Atelier de dessin & de musique\uninstall.exe LimeWire 4.12.11 --> "C:\Program Files\LimeWire\uninstall.exe" LiveUpdate 3.2 (Symantec Corporation) --> "C:\Program Files\Symantec\LiveUpdate\LSETUP.EXE" /U Macromedia Flash Player 8 --> MsiExec.exe /X{6815FCDD-401D-481E-BA88-31B4754C2B46} Menus intelligents (Windows Live Toolbar) --> MsiExec.exe /X{3585ED1C-74C5-43B0-A232-831B96A12A2B} Microsoft Office Excel MUI (French) 2007 --> MsiExec.exe /X{90120000-0016-040C-0000-0000000FF1CE} Microsoft Office Home and Student 2007 --> MsiExec.exe /X{91120000-002F-0000-0000-0000000FF1CE} Microsoft Office OneNote MUI (French) 2007 --> MsiExec.exe /X{90120000-00A1-040C-0000-0000000FF1CE} Microsoft Office PowerPoint MUI (French) 2007 --> MsiExec.exe /X{90120000-0018-040C-0000-0000000FF1CE} Microsoft Office Proof (Arabic) 2007 --> MsiExec.exe /X{90120000-001F-0401-0000-0000000FF1CE} Microsoft Office Proof (Dutch) 2007 --> MsiExec.exe /X{90120000-001F-0413-0000-0000000FF1CE} Microsoft Office Proof (English) 2007 --> MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE} Microsoft Office Proof (French) 2007 --> MsiExec.exe /X{90120000-001F-040C-0000-0000000FF1CE} Microsoft Office Proof (German) 2007 --> MsiExec.exe /X{90120000-001F-0407-0000-0000000FF1CE} Microsoft Office Proof (Spanish) 2007 --> MsiExec.exe /X{90120000-001F-0C0A-0000-0000000FF1CE} Microsoft Office Proofing (French) 2007 --> MsiExec.exe /X{90120000-002C-040C-0000-0000000FF1CE} Microsoft Office Shared MUI (French) 2007 --> MsiExec.exe /X{90120000-006E-040C-0000-0000000FF1CE} Microsoft Office Word MUI (French) 2007 --> MsiExec.exe /X{90120000-001B-040C-0000-0000000FF1CE} Microsoft Visual C++ 2005 Redistributable --> MsiExec.exe /X{A49F249F-0C91-497F-86DF-B2585E8E76B7} MSN Messenger 7.5 --> MsiExec.exe /I{BAFD3C1E-03EC-11DA-BFBD-00065BBDC0B5} MSRedist --> MsiExec.exe /I{B7C61755-DB48-4003-948F-3D34DB8EAF69} MSXML 4.0 SP2 (KB925672) --> MsiExec.exe /I{A9CF9052-F4A0-475D-A00F-A8388C62DD63} MSXML 4.0 SP2 (KB927978) --> MsiExec.exe /I{37477865-A3F1-4772-AD43-AAFC6BCFF99F} My Web Search (Popular Screensavers) --> rundll32 C:\PROGRA~1\MYWEBS~1\bar\4.bin\mwsbar.dll,O Norton AntiVirus --> MsiExec.exe /X{830D8CBD-C668-49e2-A969-C2C2106332E0} Norton Confidential Browser Component --> MsiExec.exe /I{4843B611-8FCB-4428-8C23-31D0A5EAE164} Norton Confidential Web Protection Component --> MsiExec.exe /I{D353CC51-430D-4C6F-9B7E-52003DA1E05A} Norton Internet Security --> MsiExec.exe /I{3672B097-EA69-4bfe-B92F-29AE6D9D2B34} Norton Internet Security --> MsiExec.exe /I{48185814-A224-447A-81DA-71BD20580E1B} Norton Internet Security --> MsiExec.exe /I{5AA2CD16-706F-41f3-87C5-2B5A031F2B3B} Norton Internet Security --> MsiExec.exe /I{E3EFA461-EB83-4C3B-9C47-2C1D58A01555} Norton Internet Security --> MsiExec.exe /I{E5EE9939-259F-4DE2-8023-5C49E16A4F43} Norton Internet Security (Symantec Corporation) --> "C:\Program Files\Common Files\Symantec Shared\SymSetup\{5AA2CD16-706F-41f3-87C5-2B5A031F2B3B}_10_2_0_30\{5AA2CD16-706F-41f3-87C5-2B5A031F2B3B}.exe" /X Norton Protection Center --> MsiExec.exe /I{9A129ABC-A53A-4209-A21E-D5DEDFB7CCA8} NTI Backup NOW! 4.7 --> "C:\Program Files\InstallShield Installation Information\{67ADE9AF-5CD9-4089-8825-55DE4B366799}\setup.exe" -removeonly NTI CD & DVD-Maker --> C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{1577A05B-EE62-4BBC-9DB7-FE748FA44EC2} /l1036 CDM7 Outil de mise à jour Google --> "C:\Program Files\Google\Google Updater\GoogleUpdater.exe" -uninstall Paint Shop Pro 7 Anniversary Edition --> MsiExec.exe /I{D6DE02C7-1F47-11D4-9515-00105AE4B89A} QuickTime --> MsiExec.exe /I{5E863175-E85D-44A6-8968-82507D34AE7F} Realtek High Definition Audio Driver --> RtlUpd.exe -r -m ScanSoft OmniPage SE 4.0 --> MsiExec.exe /I{29D851C2-048C-4B5E-8D1F-25D473342BB5} SPBBC 32bit --> MsiExec.exe /I{77772678-817F-4401-9301-ED1D01A8DA56} Symantec Real Time Storage Protection Component --> MsiExec.exe /I{D6E6FA4A-5445-4850-8365-CF216C1CBB7A} SymNet --> MsiExec.exe /I{2DA85B02-13C0-4E6D-9A76-22E6B3DD0CB2} Version d'évaluation de Microsoft Office Home and Student 2007 --> "C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall HOMESTUDENTR /dll OSETUP.DLL Windows Live Toolbar --> "C:\Program Files\Windows Live Toolbar\UnInstall.exe" {45BB90BA-A939-489F-B13F-F97E760A7895} Windows Live Toolbar --> MsiExec.exe /X{45BB90BA-A939-489F-B13F-F97E760A7895} Winkaa 1.0 1.0 --> "C:\Program Files\Emoticons-plus.com\Winkaa 1.0\uninstall.exe" -- End of ComboScan: finished at 2007-03-24 at 06:14:09 ------------------------ |
C'est pas propre 100% !
!! Désinstalle les programmes ci-dessous avant tout !! ¤ Clic sur C:, Program Files, et supprime ce dossier : - MyWebSearch <-- saloprie - Free Offers from Freeze.com < à ne plus installer, saloprie. - The Weather Channel < pas mieux ! - FunWebProducts <-- même chose saloprie - Registry Helper <--- t'as trouvé ça où ? ça semble pas très catholique ¤ Clic sur démarrer, rechercher, tous les fichiers te dossiers et supprime : - aquarium.scr - f3PSSavr.scr **Si un fichier/dossier persiste lors de la suppression fait ceci: - Redémarre ton PC. Dès l'allumage de celui-ci tapote la touche F8 (ou F5 si F8 ne fonctionne pas), à l'écran qui va apparaître choisis "mode sans echec" attends un peu.. Puis va supprimer les fichiers/dossiers, vide ta corbeille et redémarre ton PC normalement. ¤ Rends toi sur se site, en haut à droite clique sur "choose" Tu vas dans C:, windows, tu cherches les processus ci-dessous et tu clic sur "ouvrir" dès que c'est fait, clic sur "send" Tu attends un peu et colle le rapport ici une fois qu'il a terminé stp http://www.virustotal.com/en/virustotalx.html - C:\Windows\dun.bat - C:\Windows\rmt.dat c'est en forgeant que l'on devient forgeron ! ** site perso pour forger, dans mon profil **
|