Se connecter / S'enregistrer
Votre question

Windows xp fréquemment bloqué

Tags :
  • Sécurité
Dernière réponse : dans Sécurité et virus
14 Janvier 2010 10:20:42

Bonjour,

De temps en temps, mon écrant reste bloqué sur la page de chargement windows xp. il bloque en plein chargement.

Je suis obligé de couper l'alimentation car tout est bloqué ... je redémarrae au bout de 3 ou 4 fois avec "dernière bonne configuration" ou en mode sans échec...

Je ne comprends pas d'ou cela peut venir ?

Merci pour votre aide

Autres pages sur : windows frequemment bloque

14 Janvier 2010 10:48:30

Bonjour lietase,

*Télécharge RSIT (merci random/random) sur le Bureau : Ici
Double-clique sur RSIT.exe, il ne nécessite pas d' installation.
Clique Continue à l' écran Disclaimer si tu acceptes les conditions.
-Si HijackThis est non détecté sur ton Pc, il le téléchargera (autorise l' accès dans ton pare-feu si demandé et accepte la licence).
Lorsque l' analyse sera terminée, deux fichiers texte s' ouvriront.
Poste le contenu de log.txt (celui qui s' ouvre) ainsi que info.txt qui est dans la Barre des Tâches
Tuto : http://forum.pcastuces.com/randoms_system_information_t...

NB : Ces rapports sont enregistrés dans le dossier C:\rsit

A+
14 Janvier 2010 10:56:58

Logfile of random's system information tool 1.06 (written by random/random)
Run by Séverine LIETARD at 2010-01-14 10:55:37
Microsoft Windows XP Édition familiale Service Pack 3
System drive C: has 58 GB (61%) free of 94 GB
Total RAM: 1023 MB (44% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 10:55:47, on 14/01/2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\acer\Acer eConsole\MediaServerService.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.2\Apps\apdproxy.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Kiwee Toolbar2\1.5.131\kwtbaim.exe
C:\Program Files\Hotbar\bin\10.2.236.0\OEAddOn.exe
C:\Program Files\Iminent\IMBooster\IMBooster.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Iminent\SearchTheWeb\Iminent.Notifier.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\OLYMPUS\OLYMPUS Master\Monitor.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\DNA\btdna.exe
C:\Program Files\Messenger\msmsgs.exe
C:\documents and settings\séverine lietard\local settings\application data\shuafth.exe
C:\Program Files\Hercules\WiFi Station\WifiStation.exe
C:\Documents and Settings\Séverine LIETARD\Application Data\Microsoft\Notification de cadeaux MSN\lsnfier.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Windows Live\Toolbar\wltuser.exe
C:\Program Files\Hotbar\bin\10.2.236.0\Srv.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Documents and Settings\Séverine LIETARD\Local Settings\Temporary Internet Files\Content.IE5\OO0JPP4G\RSIT[1].exe
C:\Program Files\trend micro\Séverine LIETARD.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://g.msn.fr/0SEFRFR/SAOS01?FORM=TOOLBR
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.msn.fr/0SEFRFR/SAOS01?FORM=TOOLBR
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,First Home Page = http://www.windows.fr/ie8/msn/bienvenue
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Kiwee Toolbar - {6638A9DE-0745-4292-8A2E-AE530E7B9B3F} - C:\Program Files\Kiwee Toolbar2\1.5.131\KiweeIEToolbar.dll
R3 - URLSearchHook: Iminent.BHO.NavigationError - {84FF7BD6-B47F-46F8-9130-01B2696B36CB} - C:\Program Files\Iminent\SearchTheWeb\Iminent.BHO.NavigationError.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: AskBar BHO - {201f27d4-3704-41d6-89c1-aa35e39143ed} - C:\Program Files\AskBarDis\bar\bin\askBar.dll
O2 - BHO: Smart-Shopper - {4A7C84E2-E95C-43C6-8DD3-03ABCD0EB60E} - C:\Program Files\Smart-Shopper\Bin\2.5.1\Smrt-Shpr.dll
O2 - BHO: RXResultTracker Class - {59879FA4-4790-461c-A1CC-4EC4DE4CA483} - C:\PROGRA~1\RXTOOL~1\sfcont.dll (file missing)
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: EoRezoBHO - {64F56FC1-1272-44CD-BA6E-39723696E350} - C:\Program Files\EoRezo\EoAdv\EoRezoBHO.dll (file missing)
O2 - BHO: Kiwee Toolbar - {6638A9DE-0745-4292-8A2E-AE530E7B9B3F} - C:\Program Files\Kiwee Toolbar2\1.5.131\KiweeIEToolbar.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: CHelperBHO - {84FF7BD6-B47F-46F8-9130-01B2696B36CB} - C:\Program Files\Iminent\SearchTheWeb\Iminent.BHO.NavigationError.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Hotbar - {90B8B761-DF2B-48AC-BBE0-BCC03A819B3B} - C:\Program Files\Hotbar\bin\10.2.236.0\HostIE.dll
O2 - BHO: Iminent.LinkToContent - {A6E9BAAF-53CD-4575-967B-2AF710A7D21F} - C:\Program Files\Iminent\IMBooster\Iminent.LinkToContent.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.4.4525.1752\swg.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: Kiwee Toolbar - {6638A9DE-0745-4292-8A2E-AE530E7B9B3F} - C:\Program Files\Kiwee Toolbar2\1.5.131\KiweeIEToolbar.dll
O3 - Toolbar: Hotbar - {90B8B761-DF2B-48AC-BBE0-BCC03A819B3B} - C:\Program Files\Hotbar\bin\10.2.236.0\HostIE.dll
O3 - Toolbar: Ask Toolbar - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - C:\Program Files\AskBarDis\bar\bin\askBar.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.2\Apps\apdproxy.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [KiweeHook] "C:\Program Files\Kiwee Toolbar2\1.5.131\kwtbaim.exe"
O4 - HKLM\..\Run: [HotbarOE] C:\Program Files\Hotbar\bin\10.2.236.0\OEAddOn.exe
O4 - HKLM\..\Run: [IMBooster] C:\Program Files\Iminent\IMBooster\IMBooster.exe /warmup
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Iminent.Notifier] C:\Program Files\Iminent\SearchTheWeb\Iminent.Notifier.exe
O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [OM_Monitor] C:\Program Files\OLYMPUS\OLYMPUS Master\Monitor.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [BitTorrent DNA] "C:\Program Files\DNA\btdna.exe"
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [shuafth] "c:\documents and settings\séverine lietard\local settings\application data\shuafth.exe" shuafth
O4 - HKCU\..\RunOnce: [Shockwave Updater] C:\WINDOWS\system32\Adobe\Shockwave 11\SwHelper_1150596.exe -Update -1150596 -"Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; Trident/4.0; GTB6; .NET CLR 1.1.4322; .NET CLR 2.0.50727; .NET CLR 3.0.4506.2152; .NET CLR 3.5.30729; Hotbar 10.2.236.0)" -"http://www.king.com/play.jsp?tournamentId=6885"
O4 - HKCU\..\RunOnce: [Iminent.Notifier Install] "C:\DOCUME~1\SVERIN~1\LOCALS~1\Temp\NotifierSetup.exe" /s
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: Notification de cadeaux MSN.lnk = ?
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: WiFi Station.lnk = ?
O8 - Extra context menu item: &Search - http://ko.bar.need2find.com/KO/menusearch.html?p=KO
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_60D6097707281E79.dll/cmsidewiki.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: SmartShopper - Compare product prices - {3CC3D8FE-F0E0-4dd1-A69A-8C56BCC7BEBF} - C:\Program Files\Smart-Shopper\Bin\2.5.1\Smrt-Shpr.dll
O9 - Extra button: SmartShopper - Compare travel rates - {3CC3D8FE-F0E0-4dd1-A69A-8C56BCC7BEC0} - C:\Program Files\Smart-Shopper\Bin\2.5.1\Smrt-Shpr.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: CabBuilder - http://kiw.imgag.com/imgag/kiw/toolbar/download/Install...
O16 - DPF: {406B5949-7190-4245-91A9-30A17DE16AD0} (Snapfish Activia) - http://www3.snapfish.fr/SnapfishActivia.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx1.hotmail.com/mail/w2/resources/MSNPUpld.cab
O16 - DPF: {5D637FAD-E202-48D1-8F18-5B9C459BD1E3} (Image Uploader Control) - http://copainsdavant.linternaute.com/framework/lib/obji...
O16 - DPF: {88764F69-3831-4EC1-B40B-FF21D8381345} (AdVerifierADPCtrl Class) - https://static.impots.gouv.fr/tdir/static/adpform/AdSig...
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDown...
O16 - DPF: {E77F23EB-E7AB-4502-8F37-247DBAF1A147} (Windows Live Hotmail Photo Upload Tool) - http://gfx2.hotmail.com/mail/w4/pr01/photouploadcontrol...
O18 - Filter hijack: text/html - {2AB289AE-4B90-4281-B2AE-1F4BB034B647} - C:\PROGRA~1\RXTOOL~1\sfcont.dll
O23 - Service: Acer Media Server - Acer Inc. - C:\Program Files\acer\Acer eConsole\MediaServerService.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Service Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O24 - Desktop Component 0: (no name) - http://images.google.fr/images?q=tbn:T9BKTIwLv4w1GM:htt...

--
End of file - 14114 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\tasks\User_Feed_Synchronization-{D1238B1F-6285-48B6-B1DC-FFEA3A660F7B}.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4EFB-9B51-7695ECA05670}]
Yahoo! Toolbar Helper - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll [2005-12-07 399424]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Aide pour le lien d'Adobe PDF Reader - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{201f27d4-3704-41d6-89c1-aa35e39143ed}]
AskBar BHO - C:\Program Files\AskBarDis\bar\bin\askBar.dll [2008-09-29 325000]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4A7C84E2-E95C-43C6-8DD3-03ABCD0EB60E}]
Smart-Shopper - C:\Program Files\Smart-Shopper\Bin\2.5.1\Smrt-Shpr.dll [2008-10-07 1172952]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{59879FA4-4790-461c-A1CC-4EC4DE4CA483}]
RXResultTracker Class - C:\PROGRA~1\RXTOOL~1\sfcont.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{64F56FC1-1272-44CD-BA6E-39723696E350}]
EoBho Class - C:\Program Files\EoRezo\EoAdv\EoRezoBHO.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6638A9DE-0745-4292-8A2E-AE530E7B9B3F}]
Kiwee Toolbar - C:\Program Files\Kiwee Toolbar2\1.5.131\KiweeIEToolbar.dll [2008-04-03 265360]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2009-05-19 137600]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
SSVHelper Class - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll [2007-09-25 501136]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{84FF7BD6-B47F-46F8-9130-01B2696B36CB}]
Iminent.BHO.NavigationError - C:\Program Files\Iminent\SearchTheWeb\Iminent.BHO.NavigationError.dll [2009-12-01 110832]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Programme d'aide de l'Assistant de connexion Windows Live - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-02-17 408440]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{90B8B761-DF2B-48AC-BBE0-BCC03A819B3B}]
Hotbar - C:\Program Files\Hotbar\bin\10.2.236.0\HostIE.dll [2008-10-29 554248]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A6E9BAAF-53CD-4575-967B-2AF710A7D21F}]
LinkToContent Class - C:\Program Files\Iminent\IMBooster\Iminent.LinkToContent.dll [2009-10-29 106224]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2009-11-28 263280]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.4.4525.1752\swg.dll [2009-11-12 764912]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
Windows Live Toolbar Helper - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E99421FB-68DD-40F0-B4AC-B7027CAE2F1A}]
EpsonToolBandKicker Class - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll [2005-02-21 368640]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{EE5D279F-081B-4404-994D-C6B60AAEBA6D} - EPSON Web-To-Page - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll [2005-02-21 368640]
{EF99BD32-C1FB-11D2-892F-0090271D4F88} - Yahoo! Toolbar - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll [2005-12-07 399424]
{6638A9DE-0745-4292-8A2E-AE530E7B9B3F} - Kiwee Toolbar - C:\Program Files\Kiwee Toolbar2\1.5.131\KiweeIEToolbar.dll [2008-04-03 265360]
{90B8B761-DF2B-48AC-BBE0-BCC03A819B3B} - Hotbar - C:\Program Files\Hotbar\bin\10.2.236.0\HostIE.dll [2008-10-29 554248]
{3041d03e-fd4b-44e0-b742-2d9b88305f98} - Ask Toolbar - C:\Program Files\AskBarDis\bar\bin\askBar.dll [2008-09-29 325000]
{21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2009-11-28 263280]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Adobe Photo Downloader"=C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.2\Apps\apdproxy.exe [2007-03-16 63712]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2005-04-01 5562368]
"QuickTime Task"=C:\Program Files\QuickTime\qttask.exe [2006-08-24 282624]
"KiweeHook"=C:\Program Files\Kiwee Toolbar2\1.5.131\kwtbaim.exe [2008-04-03 56456]
"HotbarOE"=C:\Program Files\Hotbar\bin\10.2.236.0\OEAddOn.exe [2008-10-29 91400]
"IMBooster"=C:\Program Files\Iminent\IMBooster\IMBooster.exe [2009-10-29 1334512]
"avast!"=C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe [2009-11-25 81000]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [2008-10-15 39792]
"Iminent.Notifier"=C:\Program Files\Iminent\SearchTheWeb\Iminent.Notifier.exe [2010-01-04 512608]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"LogitechSoftwareUpdate"=C:\Program Files\Logitech\Video\ManifestEngine.exe [2005-01-18 196608]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe []
"OM_Monitor"=C:\Program Files\OLYMPUS\OLYMPUS Master\Monitor.exe [2005-11-29 57344]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"BitTorrent DNA"=C:\Program Files\DNA\btdna.exe [2009-11-13 323392]
"MSMSGS"=C:\Program Files\Messenger\msmsgs.exe [2008-04-14 1695232]
"shuafth"=c:\documents and settings\séverine lietard\local settings\application data\shuafth.exe [2010-01-10 425984]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Shockwave Updater"=C:\WINDOWS\system32\Adobe\Shockwave 11\SwHelper_1150596.exe [2009-04-29 468408]
"Iminent.Notifier Install"=C:\DOCUME~1\SVERIN~1\LOCALS~1\Temp\NotifierSetup.exe [2010-01-06 1478824]

C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage
Logitech Desktop Messenger.lnk - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
WiFi Station.lnk - C:\Program Files\Hercules\WiFi Station\WifiStation.exe

C:\Documents and Settings\Séverine LIETARD\Menu Démarrer\Programmes\Démarrage
Notification de cadeaux MSN.lnk - C:\Documents and Settings\Séverine LIETARD\Application Data\Microsoft\Notification de cadeaux MSN\lsnfier.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLS"="MsgPlusLoader.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2007-02-15 236928]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
UPnPMonitor - {e57ce738-33e8-4c51-8354-bb4de9d215d1} - C:\WINDOWS\system32\upnpui.dll [2008-04-14 240128]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\acer\Acer eConsole\MediaSync.exe"="C:\Program Files\acer\Acer eConsole\MediaSync.exe:LocalSubNet:Enabled:Media Synchoronizer"
"C:\Program Files\acer\Acer eConsole\eConsole.exe"="C:\Program Files\acer\Acer eConsole\eConsole.exe:LocalSubNet:Enabled:eConsole"
"C:\Program Files\acer\Acer eConsole\MediaServerService.exe"="C:\Program Files\acer\Acer eConsole\MediaServerService.exe:LocalSubNet:Enabled:Acer Media Server"
"C:\Program Files\Kazaa\kazaa.exe"="C:\Program Files\Kazaa\kazaa.exe:*:Enabled:Kazaa Media Desktop"
"C:\Program Files\iTunes\iTunes.exe"="C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\eMule\emule.exe"="C:\Program Files\eMule\emule.exe:*:Enabled:eMule"
"C:\Program Files\DNA\btdna.exe"="C:\Program Files\DNA\btdna.exe:*:Enabled:D NA"
"C:\Program Files\BitTorrent\bittorrent.exe"="C:\Program Files\BitTorrent\bittorrent.exe:*:Enabled:BitTorrent"
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"C:\Program Files\Messenger\msmsgs.exe"="C:\Program Files\Messenger\msmsgs.exe:*:Enabled:Windows Messenger"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live FolderShare"
"C:\Documents and Settings\Séverine LIETARD\Local Settings\Temp\ImInstaller\HiYo_Installer.exe"="C:\Documents and Settings\Séverine LIETARD\Local Settings\Temp\ImInstaller\HiYo_Installer.exe:*:Enabled:IncrediMail Installer"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live FolderShare"

======List of files/folders created in the last 1 months======

2010-01-14 10:55:37 ----D---- C:\rsit
2010-01-14 10:55:37 ----D---- C:\Program Files\trend micro
2010-01-14 10:48:16 ----HD---- C:\WINDOWS\msdownld.tmp
2010-01-14 10:46:43 ----HDC---- C:\WINDOWS\ie8
2010-01-13 20:31:53 ----HDC---- C:\WINDOWS\$NtUninstallKB955759$
2010-01-13 20:31:42 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2010-01-07 09:15:47 ----HD---- C:\Documents and Settings\All Users\Application Data\{04D0A305-8E13-4D5D-BE22-67E85E9E1B7A}
2009-12-23 12:11:32 ----D---- C:\Documents and Settings\Séverine LIETARD\Application Data\BitTorrent
2009-12-23 12:11:29 ----D---- C:\Program Files\BitTorrent
2009-12-23 09:21:04 ----A---- C:\WINDOWS\system32\aswBoot.exe
2009-12-23 09:09:12 ----D---- C:\Documents and Settings\Séverine LIETARD\Application Data\HTML Executable
2009-12-22 13:17:00 ----D---- C:\Documents and Settings\Séverine LIETARD\Application Data\Uniblue

======List of files/folders modified in the last 1 months======

2010-01-14 10:55:37 ----RD---- C:\Program Files
2010-01-14 10:51:15 ----D---- C:\WINDOWS\Temp
2010-01-14 10:49:58 ----D---- C:\Program Files\DNA
2010-01-14 10:49:58 ----D---- C:\Documents and Settings\Séverine LIETARD\Application Data\DNA
2010-01-14 10:49:43 ----AD---- C:\WINDOWS
2010-01-14 10:49:40 ----D---- C:\WINDOWS\system32
2010-01-14 10:49:06 ----RSHD---- C:\WINDOWS\system32\dllcache
2010-01-14 10:49:06 ----HD---- C:\WINDOWS\inf
2010-01-14 10:49:06 ----D---- C:\WINDOWS\system32\fr-fr
2010-01-14 10:49:06 ----D---- C:\WINDOWS\Media
2010-01-14 10:49:06 ----D---- C:\WINDOWS\Help
2010-01-14 10:49:06 ----D---- C:\Program Files\Internet Explorer
2010-01-14 10:48:28 ----A---- C:\WINDOWS\SchedLgU.Txt
2010-01-14 10:48:14 ----D---- C:\WINDOWS\system32\CatRoot
2010-01-14 10:47:59 ----D---- C:\WINDOWS\ie8updates
2010-01-14 10:47:53 ----A---- C:\WINDOWS\imsins.BAK
2010-01-14 10:47:38 ----HD---- C:\WINDOWS\$hf_mig$
2010-01-14 10:46:37 ----D---- C:\WINDOWS\system32\CatRoot2
2010-01-14 10:40:37 ----D---- C:\WINDOWS\Prefetch
2010-01-14 10:40:32 ----SD---- C:\Documents and Settings\Séverine LIETARD\Application Data\Microsoft
2010-01-14 09:45:47 ----A---- C:\WINDOWS\ntbtlog.txt
2010-01-13 20:42:09 ----D---- C:\WINDOWS\AppPatch
2010-01-13 11:03:24 ----D---- C:\Documents and Settings\Séverine LIETARD\Application Data\Smart-Shopper
2010-01-09 18:14:36 ----D---- C:\Documents and Settings\All Users\Application Data\Kiwee Toolbar2
2010-01-09 09:04:13 ----SHD---- C:\Config.Msi
2010-01-08 09:39:05 ----D---- C:\Documents and Settings\Séverine LIETARD\Application Data\FlySuite
2010-01-08 09:39:01 ----D---- C:\FlySuite
2010-01-08 09:22:28 ----SHD---- C:\WINDOWS\Installer
2010-01-07 09:15:49 ----D---- C:\Program Files\Iminent
2010-01-05 12:43:27 ----D---- C:\Program Files\Fichiers communs\Microsoft Shared
2010-01-05 12:43:02 ----D---- C:\Program Files\MSECache
2010-01-05 12:25:05 ----D---- C:\WINDOWS\system32\FxsTmp
2010-01-05 08:43:14 ----D---- C:\WINDOWS\WinSxS
2010-01-05 08:43:10 ----D---- C:\Documents and Settings\All Users\Application Data\Adobe
2010-01-05 08:43:00 ----D---- C:\Program Files\Fichiers communs\Adobe
2010-01-05 08:43:00 ----D---- C:\Program Files\Adobe
2010-01-05 01:17:46 ----A---- C:\WINDOWS\system32\MRT.exe
2009-12-23 12:01:50 ----D---- C:\Program Files\eMule
2009-12-23 09:23:12 ----D---- C:\Program Files\Google
2009-12-23 09:21:24 ----SD---- C:\WINDOWS\Tasks
2009-12-23 09:21:19 ----AD---- C:\WINDOWS\system32\drivers

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 Aavmker4;avast! Asynchronous Virus Monitor; C:\WINDOWS\system32\drivers\Aavmker4.sys [2009-11-25 27408]
R1 AmdK8;Pilote de processeur AMD Athlon64; C:\WINDOWS\system32\DRIVERS\AmdK8.sys [2004-05-08 38912]
R1 aswSP;avast! Self Protection; C:\WINDOWS\system32\drivers\aswSP.sys [2009-11-25 114768]
R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2009-11-25 48560]
R1 cdrbsdrv;cdrbsdrv; C:\WINDOWS\system32\drivers\cdrbsdrv.sys [2004-03-08 13567]
R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files\Fichiers communs\Symantec Shared\EENGINE\eeCtrl.sys []
R1 kbdhid;Pilote HID de clavier; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14720]
R1 StarOpen;StarOpen; C:\WINDOWS\system32\drivers\StarOpen.sys [2008-12-13 5632]
R1 UBHelper;UBHelper; C:\WINDOWS\system32\drivers\UBHelper.sys [2004-12-17 13952]
R2 AegisP;AEGIS Protocol (IEEE 802.1x) v3.5.3.0; C:\WINDOWS\system32\DRIVERS\AegisP.sys [2007-12-27 21419]
R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\DRIVERS\aswFsBlk.sys [2009-11-25 20560]
R2 aswMon2;avast! Standard Shield Support; C:\WINDOWS\system32\drivers\aswMon2.sys [2009-11-25 94160]
R2 fssfltr;FssFltr; C:\WINDOWS\system32\DRIVERS\fssfltr_tdi.sys [2009-08-05 54752]
R2 int15.sys;int15.sys; \??\C:\Program Files\Acer\eRecovery\int15.sys []
R3 Afc;PPdus ASPI Shell; C:\WINDOWS\system32\drivers\Afc.sys [2005-02-23 11776]
R3 Arp1394;Protocole client ARP 1394; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-13 60800]
R3 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2009-11-25 23120]
R3 GEARAspiWDM;GEARAspiWDM; C:\WINDOWS\System32\Drivers\GEARAspiWDM.sys [2005-02-02 14408]
R3 HidUsb;Pilote de classe HID Microsoft; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 LVUSBSta;Logitech USB Monitor Filter; C:\WINDOWS\system32\drivers\lvusbsta.sys [2005-01-31 22016]
R3 mouhid;Pilote HID de souris; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-08-23 12288]
R3 NIC1394;Pilote réseau 1394; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-13 61824]
R3 NTIDrvr;Upper Class Filter Driver; C:\WINDOWS\system32\DRIVERS\NTIDrvr.sys [2005-06-23 6144]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2005-04-01 3454656]
R3 nvax;Service for NVIDIA(R) nForce(TM) Audio Enumerator; C:\WINDOWS\system32\drivers\nvax.sys [2004-09-10 52224]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\WINDOWS\system32\DRIVERS\NVENETFD.sys [2004-11-15 33408]
R3 nvnetbus;NVIDIA Network Bus Enumerator; C:\WINDOWS\system32\DRIVERS\nvnetbus.sys [2004-11-15 12928]
R3 nvnforce;Service for NVIDIA(R) nForce(TM) Audio; C:\WINDOWS\system32\drivers\nvapu.sys [2004-09-10 412032]
R3 Pcouffin;Low level access layer for CD devices; C:\WINDOWS\System32\Drivers\Pcouffin.sys [2006-02-08 47360]
R3 pepifilter;Volume Adapter; C:\WINDOWS\system32\DRIVERS\lv302af.sys [2005-01-31 7104]
R3 PID_08A0;QuickCam IM(PID_08A0); C:\WINDOWS\system32\DRIVERS\LV302AV.SYS [2005-01-31 912768]
R3 RT73;Hercules Wireless USB Dongle Driver ; C:\WINDOWS\system32\DRIVERS\rt73.sys [2006-12-21 429440]
R3 usbaudio;Pilote USB audio (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2008-04-13 60032]
R3 usbccgp;Pilote parent générique USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
R3 usbehci;Pilote miniport de contrôleur d'hôte amélioré Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-13 30208]
R3 usbhub;Concentrateur USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-13 59520]
R3 usbohci;Pilote miniport de contrôleur hôte ouvert USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbohci.sys [2008-04-13 17152]
R3 USBSTOR;Pilote de stockage de masse USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 CCDECODE;Décodeur sous-titre fermé; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
S3 MSTEE;Convertisseur en T/site-à-site de répartition Microsoft; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504]
S3 NABTSFEC;Codec NABTS/FEC VBI; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
S3 NdisIP;Connection TV/vidéo Microsoft; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-13 10880]
S3 PCANDIS5;PCANDIS5 Protocol Driver; \??\C:\WINDOWS\system32\PCANDIS5.SYS []
S3 SLIP;Détrameur décalage BDA; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-13 11136]
S3 sscdbus;SAMSUNG USB Composite Device driver (WDM); C:\WINDOWS\system32\DRIVERS\sscdbus.sys [2007-07-03 80552]
S3 sscdmdfl;SAMSUNG Mobile Modem Filter; C:\WINDOWS\system32\DRIVERS\sscdmdfl.sys [2007-07-03 11944]
S3 sscdmdm;SAMSUNG Mobile Modem Drivers; C:\WINDOWS\system32\DRIVERS\sscdmdm.sys [2007-07-03 106792]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-13 15232]
S3 usbprint;Classe d'imprimantes USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Pilote de scanneur USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 wceusbsh;Windows CE USB Serial Host Driver; C:\WINDOWS\system32\DRIVERS\wceusbsh.sys [2004-08-04 32128]
S3 WSTCODEC;Codec Teletext standard; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 Acer Media Server;Acer Media Server; C:\Program Files\acer\Acer eConsole\MediaServerService.exe [2005-06-21 438272]
R2 aswUpdSv;avast! iAVS4 Control Service; C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe [2009-11-25 18752]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast4\ashServ.exe [2009-11-25 138680]
R2 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2005-04-01 127043]
R2 Planificateur LiveUpdate automatique;Planificateur LiveUpdate automatique; C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe [2006-08-03 100032]
R2 SeaPort;SeaPort; C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2009-05-19 240512]
R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe [2009-11-25 254040]
R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast4\ashWebSv.exe [2009-11-25 352920]
S2 Fax;Fax; C:\WINDOWS\system32\fxssvc.exe [2008-04-14 268800]
S2 gupdate;Service Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2009-12-23 133104]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 fsssvc;Service Windows Live Contrôle parental; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2009-08-05 704864]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-05-12 182768]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-03 69632]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 iPodService;iPodService; C:\Program Files\iPod\bin\iPodService.exe [2006-06-14 323584]
S3 LiveUpdate;LiveUpdate; C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE [2006-08-03 2119360]
S3 WMPNetworkSvc;Service Partage réseau du Lecteur Windows Media; C:\Program Files\Windows Media Player\WMPNetwk.exe [2006-11-03 918016]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------
info.txt logfile of random's system information tool 1.06 2010-01-14 10:55:50

======Uninstall list======

-->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
Acer eConsole-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{EC028E6B-F3F1-4192-B63E-A7C97302ED5A}\setup.exe" -l0x40c
Acer eMode Management-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{65CDEC30-4BF4-48FB-8059-9FC480E4E94F}\setup.exe" -l0x40c
Adobe Flash Player 10 ActiveX-->C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
Adobe Reader 8.1.3 - Français-->MsiExec.exe /I{AC76BA86-7AD7-1036-7B44-A81300000003}
Adobe Shockwave Player 11.5-->"C:\WINDOWS\system32\Adobe\Shockwave 11\uninstaller.exe"
Adobe® Photoshop® Album Edition Découverte 3.2-->MsiExec.exe /I{A654A805-41D9-40C7-AA46-4AF04F044D61}
Ask Toolbar-->"C:\Program Files\AskBarDis\unins000.exe"
Assistant de connexion Windows Live-->MsiExec.exe /I{D3116CC7-24DC-4CA3-9CE1-23FED836E9F2}
Athlon 64 Processor Driver-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{C151CE54-E7EA-4804-854B-F515368B0798}\setup.exe" -l0x40c
avast! Antivirus-->C:\Program Files\Alwil Software\Avast4\aswRunDll.exe "C:\Program Files\Alwil Software\Avast4\Setup\setiface.dll",RunSetup
Barre d'outils Outlook de Windows Live (Windows Live Toolbar)-->MsiExec.exe /X{6E15BEDF-7EB5-4010-998E-B430DB4EFE45}
BitTorrent-->C:\Program Files\BitTorrent\uninst.exe
Bloqueur de fenêtres pop-up (Windows Live Toolbar)-->MsiExec.exe /X{A425C250-A0E1-4D78-B1C1-A5CBC7385E7C}
ConvertXtoDVD 2.0.1-->"C:\Program Files\vso\ConvertXtoDVD\unins000.exe"
Correctif pour Lecteur Windows Media 11 (KB939683)-->"C:\WINDOWS\$NtUninstallKB939683$\spuninst\spuninst.exe"
Correctif pour Windows Internet Explorer 7 (KB947864)-->"C:\WINDOWS\ie7updates\KB947864-IE7\spuninst\spuninst.exe"
Correctif pour Windows XP (KB952287)-->"C:\WINDOWS\$NtUninstallKB952287$\spuninst\spuninst.exe"
Correctif pour Windows XP (KB961118)-->"C:\WINDOWS\$NtUninstallKB961118$\spuninst\spuninst.exe"
Correctif pour Windows XP (KB970653-v3)-->"C:\WINDOWS\$NtUninstallKB970653-v3$\spuninst\spuninst.exe"
Correctif pour Windows XP (KB976098-v2)-->"C:\WINDOWS\$NtUninstallKB976098-v2$\spuninst\spuninst.exe"
Détecteur de flux Windows Live Toolbar (Windows Live Toolbar)-->MsiExec.exe /X{EFFCB0F1-CFEC-48D4-B793-EBFCAE852976}
EPSON Attach To Email-->C:\Program Files\Fichiers communs\InstallShield\Driver\8\Intel 32\IDriver.exe /M{20C45B32-5AB6-46A4-94EF-58950CAF05E5} /l1033 ADDREMOVEDLG
EPSON Copy Utility 3-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{67EDD823-135A-4D59-87BD-950616D6E857}\SETUP.EXE" -l0x40c -UnInstall
EPSON Easy Photo Print-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{5DA7BC15-18D3-41A0-9F59-838DA3EAEF17}\SETUP.EXE" -l0x40c UNINST
EPSON File Manager-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{E86BC406-944E-41F6-ADE6-2C136734C96B}\Setup.exe" -l0x40c UNINST
EPSON Image Clip Palette-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{314F6D08-A8B7-11D8-8446-0050BA1D384D}\Setup.exe" -l0x40c -u
EPSON Logiciel imprimante-->C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\EPUPDATE.EXE /R
EPSON Scan Assistant-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{2A88F1BF-7041-4E42-84B1-6B4ACB83AC64}\Setup.exe" -l0x40c -u
EPSON Scan-->C:\Program Files\epson\escndv\setup\setup.exe /r
EPSON Web-To-Page-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{7F14F68C-17FA-4F88-B3FD-7F449C1EBF32}\SETUP.EXE" -l0x40c -anything
ESDX3800 Guide d'utilisation-->C:\Program Files\EPSON\TPMANUAL\ESDX3800\USE_G\DOCUNINS.EXE
Extension de Windows Live Toolbar (Windows Live Toolbar)-->MsiExec.exe /X{0CA6047C-D28B-4295-834A-07C52BA20C2D}
Favorit-->"c:\documents and settings\séverine lietard\local settings\application data\shuafth.exe" -uninstall
FlySuite v.1.1-->C:\Documents and Settings\Séverine LIETARD\Application Data\FlySuite\uninstall.exe
Galerie de photos Windows Live-->MsiExec.exe /X{B131E59D-202C-43C6-84C9-68F0C37541F1}
Google Chrome-->"C:\Program Files\Google\Chrome\Application\3.0.195.38\Installer\setup.exe" --uninstall --system-level
Google Toolbar for Internet Explorer-->"C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarManager_0E996B068B56FCA2.exe" /uninstall
Google Toolbar for Internet Explorer-->MsiExec.exe /I{18455581-E099-4BA8-BC6B-F34B2F06600C}
Google Update Helper-->MsiExec.exe /I{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
HijackThis 2.0.2-->"C:\Program Files\trend micro\HijackThis.exe" /uninstall
Hotbar-->"C:\Program Files\Hotbar\bin\10.2.236.0\HotbarUninstaller.exe" Web
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT=""
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT=""
Hotfix for Windows Media Format 11 SDK (KB929399)-->"C:\WINDOWS\$NtUninstallKB929399$\spuninst\spuninst.exe"
ImageMixer VCD/DVD2 for OLYMPUS-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{1F51A0CA-2BDD-474E-BB90-C7FA8EA78F52}\Setup.exe" -l0x40c UNINSTALL
IMBooster-->"C:\Documents and Settings\All Users\Application Data\{EB0535DA-8CF3-4A16-A92A-87BDC6432A9B}\IMBoosterSetup.exe" REMOVE=TRUE MODIFY=FALSE
IMBooster-->C:\Documents and Settings\All Users\Application Data\{EB0535DA-8CF3-4A16-A92A-87BDC6432A9B}\IMBoosterSetup.exe
Installation Windows Live-->C:\Program Files\Windows Live\Installer\wlarp.exe
Installation Windows Live-->MsiExec.exe /I{46ABBC54-1872-4AA3-95E2-F2C063A63F31}
iTunes-->C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\11\INTEL3~1\IDriver.exe /M{54C0D94A-F467-4ABC-9D02-6E58748668D4} /l1036
J2SE Runtime Environment 5.0 Update 10-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0150100}
J2SE Runtime Environment 5.0 Update 11-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0150110}
J2SE Runtime Environment 5.0 Update 2-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0150020}
Java(TM) 6 Update 3-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160030}
Junk Mail filter update-->MsiExec.exe /I{E2DFE069-083E-4631-9B6C-43C48E991DE5}
Kiwee Toolbar-->MsiExec.exe /X{12403F20-DE27-4067-B083-A42E8A6432BA}
Lecteur Windows Media 11-->"C:\Program Files\Windows Media Player\Setup_wm.exe" /Uninstall
livebox-->C:\Program Files\InstallShield Installation Information\{17342E3B-0818-4A6F-BFF8-99476605ADD6}\Setup.exe -runfromtemp -l0x040c -removeonly
LiveUpdate 3.0 (Symantec Corporation)-->"C:\Program Files\Symantec\LiveUpdate\LSETUP.EXE" /U
Logiciel QuickCam de Logitech-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\09\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{C43048A9-742C-4DAD-90D2-E3B53C9DB825}\setup.exe" -l0x40c
Logitech Desktop Messenger-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{900B1197-53F5-4F46-A882-2CFFFE2EEDCB}\Setup.exe" -l0x40c UNINSTALL
Logitech Print Service-->C:\PROGRA~1\Logitech\PRINTS~1\UNWISE.EXE C:\PROGRA~1\Logitech\PRINTS~1\INSTALL.LOG
Menus intelligents (Windows Live Toolbar)-->MsiExec.exe /X{0CC70FEF-5068-4CD5-B4DE-86FFD98EC929}
Messenger Plus! 3 & Sponsor-->"C:\Program Files\MessengerPlus! 3\MsgPlus.exe" /Remove
Microsoft .NET Framework 1.1 French Language Pack-->MsiExec.exe /X{9A394342-4A68-4EBA-85A6-55B559F4E700}
Microsoft .NET Framework 1.1 Security Update (KB953297)-->"C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe" "C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\M953297\M953297Uninstall.msp"
Microsoft .NET Framework 1.1-->msiexec.exe /X {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 1.1-->MsiExec.exe /X{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 2.0 Service Pack 2-->MsiExec.exe /I{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}
Microsoft .NET Framework 3.0 Service Pack 2-->MsiExec.exe /I{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}
Microsoft .NET Framework 3.5 SP1-->C:\WINDOWS\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
Microsoft .NET Framework 3.5 SP1-->MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
Microsoft Choice Guard-->MsiExec.exe /X{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}
Microsoft Compression Client Pack 1.0 for Windows XP-->"C:\WINDOWS\$NtUninstallMSCompPackV1$\spuninst\spuninst.exe"
Microsoft Internationalized Domain Names Mitigation APIs-->"C:\WINDOWS\$NtServicePackUninstallIDNMitigationAPIs$\spuninst\spuninst.exe"
Microsoft National Language Support Downlevel APIs-->"C:\WINDOWS\$NtServicePackUninstallNLSDownlevelMapping$\spuninst\spuninst.exe"
Microsoft Office Excel Viewer-->MsiExec.exe /I{95120000-003F-040C-0000-0000000FF1CE}
Microsoft Office PowerPoint Viewer 2007 (French)-->MsiExec.exe /X{95120000-00AF-040C-0000-0000000FF1CE}
Microsoft Search Enhancement Pack-->MsiExec.exe /X{4CBA3D4C-8F51-4D60-B27E-F6B641C571E7}
Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
Microsoft SQL Server 2005 Compact Edition [ENU]-->MsiExec.exe /I{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}
Microsoft Sync Framework Runtime Native v1.0 (x86)-->MsiExec.exe /I{8A74E887-8F0F-4017-AF53-CBA42211AAA5}
Microsoft Sync Framework Services Native v1.0 (x86)-->MsiExec.exe /I{BD64AF4A-8C80-4152-AD77-FCDDF05208AB}
Microsoft User-Mode Driver Framework Feature Pack 1.0-->"C:\WINDOWS\$NtUninstallWudf01000$\spuninst\spuninst.exe"
Microsoft Works 7.0-->MsiExec.exe /I{64D114CE-4234-45C2-B60A-2B07D5A48F72}
Mio Transfer-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{2003F533-7639-4436-8404-CB3DE67F1FFA}\setup.exe" -l0x40c
MioMap v3 Updater for Mio C220 C250-->MsiExec.exe /I{370C2797-8D14-4A13-BED1-0F417B7C0680}
Mise à jour critique pour Lecteur Windows Media 11 (KB959772)-->"C:\WINDOWS\$NtUninstallKB959772_WM11$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Lecteur Windows Media (KB952069)-->"C:\WINDOWS\$NtUninstallKB952069_WM9$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Lecteur Windows Media (KB954155)-->"C:\WINDOWS\$NtUninstallKB954155_WM9$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Lecteur Windows Media (KB968816)-->"C:\WINDOWS\$NtUninstallKB968816_WM9$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Lecteur Windows Media (KB973540)-->"C:\WINDOWS\$NtUninstallKB973540_WM9$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Lecteur Windows Media 10 (KB911565)-->"C:\WINDOWS\$NtUninstallKB911565$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Lecteur Windows Media 10 (KB917734)-->"C:\WINDOWS\$NtUninstallKB917734_WMP10$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Lecteur Windows Media 11 (KB936782)-->"C:\WINDOWS\$NtUninstallKB936782_WMP11$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Lecteur Windows Media 11 (KB954154)-->"C:\WINDOWS\$NtUninstallKB954154_WM11$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB928090)-->"C:\WINDOWS\ie7updates\KB928090-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB929969)-->"C:\WINDOWS\ie7updates\KB929969\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB931768)-->"C:\WINDOWS\ie7updates\KB931768-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB938127)-->"C:\WINDOWS\ie7updates\KB938127-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB942615)-->"C:\WINDOWS\ie7updates\KB942615-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB944533)-->"C:\WINDOWS\ie7updates\KB944533-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB950759)-->"C:\WINDOWS\ie7updates\KB950759-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB953838)-->"C:\WINDOWS\ie7updates\KB953838-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB956390)-->"C:\WINDOWS\ie7updates\KB956390-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB958215)-->"C:\WINDOWS\ie7updates\KB958215-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB960714)-->"C:\WINDOWS\ie7updates\KB960714-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB961260)-->"C:\WINDOWS\ie7updates\KB961260-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB963027)-->"C:\WINDOWS\ie7updates\KB963027-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB969897)-->"C:\WINDOWS\ie7updates\KB969897-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB972260)-->"C:\WINDOWS\ie7updates\KB972260-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 8 (KB976325)-->"C:\WINDOWS\ie8updates\KB976325-IE8\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB923561)-->"C:\WINDOWS\$NtUninstallKB923561$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB938464)-->"C:\WINDOWS\$NtUninstallKB938464$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB938464-v2)-->"C:\WINDOWS\$NtUninstallKB938464-v2$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB941569)-->"C:\WINDOWS\$NtUninstallKB941569$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB946648)-->"C:\WINDOWS\$NtUninstallKB946648$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB950760)-->"C:\WINDOWS\$NtUninstallKB950760$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB950762)-->"C:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB950974)-->"C:\WINDOWS\$NtUninstallKB950974$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB951066)-->"C:\WINDOWS\$NtUninstallKB951066$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB951376)-->"C:\WINDOWS\$NtUninstallKB951376$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB951376-v2)-->"C:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB951698)-->"C:\WINDOWS\$NtUninstallKB951698$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB951748)-->"C:\WINDOWS\$NtUninstallKB951748$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB952004)-->"C:\WINDOWS\$NtUninstallKB952004$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB952954)-->"C:\WINDOWS\$NtUninstallKB952954$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB953839)-->"C:\WINDOWS\$NtUninstallKB953839$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB954211)-->"C:\WINDOWS\$NtUninstallKB954211$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB954459)-->"C:\WINDOWS\$NtUninstallKB954459$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB954600)-->"C:\WINDOWS\$NtUninstallKB954600$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB955069)-->"C:\WINDOWS\$NtUninstallKB955069$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB956391)-->"C:\WINDOWS\$NtUninstallKB956391$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB956572)-->"C:\WINDOWS\$NtUninstallKB956572$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB956744)-->"C:\WINDOWS\$NtUninstallKB956744$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB956802)-->"C:\WINDOWS\$NtUninstallKB956802$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB956803)-->"C:\WINDOWS\$NtUninstallKB956803$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB956841)-->"C:\WINDOWS\$NtUninstallKB956841$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB956844)-->"C:\WINDOWS\$NtUninstallKB956844$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB957095)-->"C:\WINDOWS\$NtUninstallKB957095$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB957097)-->"C:\WINDOWS\$NtUninstallKB957097$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB958644)-->"C:\WINDOWS\$NtUninstallKB958644$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB958687)-->"C:\WINDOWS\$NtUninstallKB958687$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB958690)-->"C:\WINDOWS\$NtUninstallKB958690$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB958869)-->"C:\WINDOWS\$NtUninstallKB958869$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB959426)-->"C:\WINDOWS\$NtUninstallKB959426$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB960225)-->"C:\WINDOWS\$NtUninstallKB960225$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB960715)-->"C:\WINDOWS\$NtUninstallKB960715$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB960803)-->"C:\WINDOWS\$NtUninstallKB960803$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB960859)-->"C:\WINDOWS\$NtUninstallKB960859$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB961371)-->"C:\WINDOWS\$NtUninstallKB961371$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB961373)-->"C:\WINDOWS\$NtUninstallKB961373$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB961501)-->"C:\WINDOWS\$NtUninstallKB961501$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB968537)-->"C:\WINDOWS\$NtUninstallKB968537$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB969059)-->"C:\WINDOWS\$NtUninstallKB969059$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB969898)-->"C:\WINDOWS\$NtUninstallKB969898$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB969947)-->"C:\WINDOWS\$NtUninstallKB969947$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB970238)-->"C:\WINDOWS\$NtUninstallKB970238$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB970430)-->"C:\WINDOWS\$NtUninstallKB970430$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB971486)-->"C:\WINDOWS\$NtUninstallKB971486$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB971557)-->"C:\WINDOWS\$NtUninstallKB971557$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB971633)-->"C:\WINDOWS\$NtUninstallKB971633$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB971657)-->"C:\WINDOWS\$NtUninstallKB971657$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB972270)-->"C:\WINDOWS\$NtUninstallKB972270$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB973346)-->"C:\WINDOWS\$NtUninstallKB973346$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB973354)-->"C:\WINDOWS\$NtUninstallKB973354$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB973507)-->"C:\WINDOWS\$NtUninstallKB973507$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB973525)-->"C:\WINDOWS\$NtUninstallKB973525$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB973869)-->"C:\WINDOWS\$NtUninstallKB973869$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB973904)-->"C:\WINDOWS\$NtUninstallKB973904$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB974112)-->"C:\WINDOWS\$NtUninstallKB974112$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB974318)-->"C:\WINDOWS\$NtUninstallKB974318$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB974392)-->"C:\WINDOWS\$NtUninstallKB974392$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB974571)-->"C:\WINDOWS\$NtUninstallKB974571$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB975025)-->"C:\WINDOWS\$NtUninstallKB975025$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB975467)-->"C:\WINDOWS\$NtUninstallKB975467$\spuninst\spuninst.exe"
Mise à jour pour Windows Internet Explorer 8 (KB975364)-->"C:\WINDOWS\ie8updates\KB975364-IE8\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB951072-v2)-->"C:\WINDOWS\$NtUninstallKB951072-v2$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB951978)-->"C:\WINDOWS\$NtUninstallKB951978$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB955759)-->"C:\WINDOWS\$NtUninstallKB955759$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB955839)-->"C:\WINDOWS\$NtUninstallKB955839$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB961503)-->"C:\WINDOWS\$NtUninstallKB961503$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB967715)-->"C:\WINDOWS\$NtUninstallKB967715$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB968389)-->"C:\WINDOWS\$NtUninstallKB968389$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB971737)-->"C:\WINDOWS\$NtUninstallKB971737$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB973687)-->"C:\WINDOWS\$NtUninstallKB973687$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB973815)-->"C:\WINDOWS\$NtUninstallKB973815$\spuninst\spuninst.exe"
MSN-->C:\Program Files\MSN\MsnInstaller\msninst.exe /Action:ARP
MSVCRT-->MsiExec.exe /I{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
MSXML 4.0 SP2 (KB927978)-->MsiExec.exe /I{37477865-A3F1-4772-AD43-AAFC6BCFF99F}
MSXML 4.0 SP2 (KB936181)-->MsiExec.exe /I{C04E32E0-0416-434D-AFB9-6969D703A9EF}
MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
MSXML 4.0 SP2 (KB973688)-->MsiExec.exe /I{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
Need2Find Bar-->rundll32 C:\PROGRA~1\NEED2F~1\bar\1.bin\Nd2fnBar.dll,O
Nero-->MsiExec.exe /X{A4D7B764-4140-11D4-88EB-0050DA3579C0}
NTI Backup NOW! 4-->C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{385979FE-DC4F-4140-8EAD-A59625000D72} /l1036 BUN4
NTI CD & DVD-Maker-->C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{1577A05B-EE62-4BBC-9DB7-FE748FA44EC2} /l1036 CDM7
NTI HomeVideo-Maker-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{B8A6F713-D72D-47AD-A92D-B5C0E13F98C1}\setup.exe" -l0x40c
NVIDIA Drivers-->C:\WINDOWS\system32\nvudisp.exe UninstallGUI
NvMixer-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{D7A6C517-11F2-419F-B5BB-27772B939698}\SETUP.EXE" -uninstall
OLYMPUS Master-->C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\9\INTEL3~1\IDriver.exe /M{BA820A24-704B-428D-9904-71A10DAC1372} /l1036 /zUNINSTALL
OneCare Advisor (Windows Live Toolbar)-->MsiExec.exe /X{6D7F8D4B-D1A4-402A-973E-31E90940E585}
Outil de téléchargement Windows Live-->MsiExec.exe /I{205C6BDD-7B73-42DE-8505-9A093F35A238}
Package de pilotes Windows - MobileTop (sshpmdm) Modem (02/23/2007 2.5.0.0)-->C:\PROGRA~1\DIFX\7B44739871F4D539FA473F57A832EA4B6A59EF06\DPInst.exe /u C:\WINDOWS\system32\DRVSTORE\shpacm_18A9B92ED8DEDC602E49E767FA4BE98A30525207\shpacm.inf
Package de pilotes Windows - MobileTop (sshpusb) USB (02/23/2007 2.5.0.0)-->C:\PROGRA~1\DIFX\7B44739871F4D539FA473F57A832EA4B6A59EF06\DPInst.exe /u C:\WINDOWS\system32\DRVSTORE\shpusb_558D416BCEB984F35885804D3E1A9C3773F1B17C\shpusb.inf
Picasa 3-->"C:\Program Files\Google\Picasa3\Uninstall.exe"
PIF DESIGNER-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{B90450DF-E781-46FD-B1F1-0C86DA40E443}\SETUP.EXE" -l0x40c anything
Portable MP3 Player-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{0FE67F7B-CFD5-4891-AED4-3E928A20A9D2}\Setup.exe" -l0x40c
PowerDVD-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}\setup.exe" -uninstall
Programme de gestion Camera de Logitech®-->"C:\Program Files\Fichiers communs\Logitech\QCDRV\BIN\SETUP.EXE" UNINSTALL REMOVEPROMPT
QuickTime-->C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\11\INTEL3~1\IDriver.exe /M{C21D5524-A970-42FA-AC8A-59B8C7CDCA31} /l1036
SAMSUNG Mobile Composite Device Software-->C:\WINDOWS\system32\Samsung_USB_Drivers\6\SSBCUninstall.exe
SAMSUNG Mobile Modem Driver Set-->C:\WINDOWS\system32\Samsung_USB_Drivers\3\SSCDUninstall.exe
Samsung Mobile phone USB driver Software-->C:\WINDOWS\system32\Samsung_USB_Drivers\5\SSSDUninstall.exe
SAMSUNG Mobile USB Modem 1.0 Software-->C:\WINDOWS\system32\Samsung_USB_Drivers\1\SS_Uninstall.exe
SAMSUNG Mobile USB Modem Software-->C:\WINDOWS\system32\Samsung_USB_Drivers\2\SSM_Uninstall.exe
Samsung PC Studio 3 USB Driver Installer-->"C:\Program Files\InstallShield Installation Information\{EBA29752-DDD2-4B62-B2E3-9841F92A3E3A}\setup.exe" -runfromtemp -l0x040c -removeonly
Samsung PC Studio 3-->"C:\Program Files\InstallShield Installation Information\{C4A4722E-79F9-417C-BD72-8D359A090C97}\setup.exe" -runfromtemp -l0x040c -removeonly
SearchTheWeb-->"C:\Documents and Settings\All Users\Application Data\{04D0A305-8E13-4D5D-BE22-67E85E9E1B7A}\NotifierSetup.exe" REMOVE=TRUE MODIFY=FALSE
SearchTheWeb-->C:\Documents and Settings\All Users\Application Data\{04D0A305-8E13-4D5D-BE22-67E85E9E1B7A}\NotifierSetup.exe
Security Update for CAPICOM (KB931906)-->MsiExec.exe /I{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
Security Update for CAPICOM (KB931906)-->MsiExec.exe /X{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
Segoe UI-->MsiExec.exe /I{A1F66FC9-11EE-4F2F-98C9-16F8D1E69FB7}
Shareaza version 2.2.3.0-->"C:\Program Files\Shareaza\Uninstall\unins000.exe"
SLD Codec Pack-->C:\Program Files\SLD Codec Pack\uninstall.exe
SmartShopper-->C:\Program Files\Smart-Shopper\Uninst.exe
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {B2AE9C82-DC7B-3641-BFC8-87275C4F3607} /qb+ REBOOTPROMPT=""
VSO Media Playe
Contenus similaires
14 Janvier 2010 10:58:42

info.txt logfile of random's system information tool 1.06 2010-01-14 10:55:50

======Uninstall list======

-->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
Acer eConsole-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{EC028E6B-F3F1-4192-B63E-A7C97302ED5A}\setup.exe" -l0x40c
Acer eMode Management-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{65CDEC30-4BF4-48FB-8059-9FC480E4E94F}\setup.exe" -l0x40c
Adobe Flash Player 10 ActiveX-->C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
Adobe Reader 8.1.3 - Français-->MsiExec.exe /I{AC76BA86-7AD7-1036-7B44-A81300000003}
Adobe Shockwave Player 11.5-->"C:\WINDOWS\system32\Adobe\Shockwave 11\uninstaller.exe"
Adobe® Photoshop® Album Edition Découverte 3.2-->MsiExec.exe /I{A654A805-41D9-40C7-AA46-4AF04F044D61}
Ask Toolbar-->"C:\Program Files\AskBarDis\unins000.exe"
Assistant de connexion Windows Live-->MsiExec.exe /I{D3116CC7-24DC-4CA3-9CE1-23FED836E9F2}
Athlon 64 Processor Driver-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{C151CE54-E7EA-4804-854B-F515368B0798}\setup.exe" -l0x40c
avast! Antivirus-->C:\Program Files\Alwil Software\Avast4\aswRunDll.exe "C:\Program Files\Alwil Software\Avast4\Setup\setiface.dll",RunSetup
Barre d'outils Outlook de Windows Live (Windows Live Toolbar)-->MsiExec.exe /X{6E15BEDF-7EB5-4010-998E-B430DB4EFE45}
BitTorrent-->C:\Program Files\BitTorrent\uninst.exe
Bloqueur de fenêtres pop-up (Windows Live Toolbar)-->MsiExec.exe /X{A425C250-A0E1-4D78-B1C1-A5CBC7385E7C}
ConvertXtoDVD 2.0.1-->"C:\Program Files\vso\ConvertXtoDVD\unins000.exe"
Correctif pour Lecteur Windows Media 11 (KB939683)-->"C:\WINDOWS\$NtUninstallKB939683$\spuninst\spuninst.exe"
Correctif pour Windows Internet Explorer 7 (KB947864)-->"C:\WINDOWS\ie7updates\KB947864-IE7\spuninst\spuninst.exe"
Correctif pour Windows XP (KB952287)-->"C:\WINDOWS\$NtUninstallKB952287$\spuninst\spuninst.exe"
Correctif pour Windows XP (KB961118)-->"C:\WINDOWS\$NtUninstallKB961118$\spuninst\spuninst.exe"
Correctif pour Windows XP (KB970653-v3)-->"C:\WINDOWS\$NtUninstallKB970653-v3$\spuninst\spuninst.exe"
Correctif pour Windows XP (KB976098-v2)-->"C:\WINDOWS\$NtUninstallKB976098-v2$\spuninst\spuninst.exe"
Détecteur de flux Windows Live Toolbar (Windows Live Toolbar)-->MsiExec.exe /X{EFFCB0F1-CFEC-48D4-B793-EBFCAE852976}
EPSON Attach To Email-->C:\Program Files\Fichiers communs\InstallShield\Driver\8\Intel 32\IDriver.exe /M{20C45B32-5AB6-46A4-94EF-58950CAF05E5} /l1033 ADDREMOVEDLG
EPSON Copy Utility 3-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{67EDD823-135A-4D59-87BD-950616D6E857}\SETUP.EXE" -l0x40c -UnInstall
EPSON Easy Photo Print-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{5DA7BC15-18D3-41A0-9F59-838DA3EAEF17}\SETUP.EXE" -l0x40c UNINST
EPSON File Manager-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{E86BC406-944E-41F6-ADE6-2C136734C96B}\Setup.exe" -l0x40c UNINST
EPSON Image Clip Palette-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{314F6D08-A8B7-11D8-8446-0050BA1D384D}\Setup.exe" -l0x40c -u
EPSON Logiciel imprimante-->C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\EPUPDATE.EXE /R
EPSON Scan Assistant-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{2A88F1BF-7041-4E42-84B1-6B4ACB83AC64}\Setup.exe" -l0x40c -u
EPSON Scan-->C:\Program Files\epson\escndv\setup\setup.exe /r
EPSON Web-To-Page-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{7F14F68C-17FA-4F88-B3FD-7F449C1EBF32}\SETUP.EXE" -l0x40c -anything
ESDX3800 Guide d'utilisation-->C:\Program Files\EPSON\TPMANUAL\ESDX3800\USE_G\DOCUNINS.EXE
Extension de Windows Live Toolbar (Windows Live Toolbar)-->MsiExec.exe /X{0CA6047C-D28B-4295-834A-07C52BA20C2D}
Favorit-->"c:\documents and settings\séverine lietard\local settings\application data\shuafth.exe" -uninstall
FlySuite v.1.1-->C:\Documents and Settings\Séverine LIETARD\Application Data\FlySuite\uninstall.exe
Galerie de photos Windows Live-->MsiExec.exe /X{B131E59D-202C-43C6-84C9-68F0C37541F1}
Google Chrome-->"C:\Program Files\Google\Chrome\Application\3.0.195.38\Installer\setup.exe" --uninstall --system-level
Google Toolbar for Internet Explorer-->"C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarManager_0E996B068B56FCA2.exe" /uninstall
Google Toolbar for Internet Explorer-->MsiExec.exe /I{18455581-E099-4BA8-BC6B-F34B2F06600C}
Google Update Helper-->MsiExec.exe /I{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
HijackThis 2.0.2-->"C:\Program Files\trend micro\HijackThis.exe" /uninstall
Hotbar-->"C:\Program Files\Hotbar\bin\10.2.236.0\HotbarUninstaller.exe" Web
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT=""
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT=""
Hotfix for Windows Media Format 11 SDK (KB929399)-->"C:\WINDOWS\$NtUninstallKB929399$\spuninst\spuninst.exe"
ImageMixer VCD/DVD2 for OLYMPUS-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{1F51A0CA-2BDD-474E-BB90-C7FA8EA78F52}\Setup.exe" -l0x40c UNINSTALL
IMBooster-->"C:\Documents and Settings\All Users\Application Data\{EB0535DA-8CF3-4A16-A92A-87BDC6432A9B}\IMBoosterSetup.exe" REMOVE=TRUE MODIFY=FALSE
IMBooster-->C:\Documents and Settings\All Users\Application Data\{EB0535DA-8CF3-4A16-A92A-87BDC6432A9B}\IMBoosterSetup.exe
Installation Windows Live-->C:\Program Files\Windows Live\Installer\wlarp.exe
Installation Windows Live-->MsiExec.exe /I{46ABBC54-1872-4AA3-95E2-F2C063A63F31}
iTunes-->C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\11\INTEL3~1\IDriver.exe /M{54C0D94A-F467-4ABC-9D02-6E58748668D4} /l1036
J2SE Runtime Environment 5.0 Update 10-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0150100}
J2SE Runtime Environment 5.0 Update 11-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0150110}
J2SE Runtime Environment 5.0 Update 2-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0150020}
Java(TM) 6 Update 3-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160030}
Junk Mail filter update-->MsiExec.exe /I{E2DFE069-083E-4631-9B6C-43C48E991DE5}
Kiwee Toolbar-->MsiExec.exe /X{12403F20-DE27-4067-B083-A42E8A6432BA}
Lecteur Windows Media 11-->"C:\Program Files\Windows Media Player\Setup_wm.exe" /Uninstall
livebox-->C:\Program Files\InstallShield Installation Information\{17342E3B-0818-4A6F-BFF8-99476605ADD6}\Setup.exe -runfromtemp -l0x040c -removeonly
LiveUpdate 3.0 (Symantec Corporation)-->"C:\Program Files\Symantec\LiveUpdate\LSETUP.EXE" /U
Logiciel QuickCam de Logitech-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\09\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{C43048A9-742C-4DAD-90D2-E3B53C9DB825}\setup.exe" -l0x40c
Logitech Desktop Messenger-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{900B1197-53F5-4F46-A882-2CFFFE2EEDCB}\Setup.exe" -l0x40c UNINSTALL
Logitech Print Service-->C:\PROGRA~1\Logitech\PRINTS~1\UNWISE.EXE C:\PROGRA~1\Logitech\PRINTS~1\INSTALL.LOG
Menus intelligents (Windows Live Toolbar)-->MsiExec.exe /X{0CC70FEF-5068-4CD5-B4DE-86FFD98EC929}
Messenger Plus! 3 & Sponsor-->"C:\Program Files\MessengerPlus! 3\MsgPlus.exe" /Remove
Microsoft .NET Framework 1.1 French Language Pack-->MsiExec.exe /X{9A394342-4A68-4EBA-85A6-55B559F4E700}
Microsoft .NET Framework 1.1 Security Update (KB953297)-->"C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe" "C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\M953297\M953297Uninstall.msp"
Microsoft .NET Framework 1.1-->msiexec.exe /X {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 1.1-->MsiExec.exe /X{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 2.0 Service Pack 2-->MsiExec.exe /I{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}
Microsoft .NET Framework 3.0 Service Pack 2-->MsiExec.exe /I{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}
Microsoft .NET Framework 3.5 SP1-->C:\WINDOWS\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
Microsoft .NET Framework 3.5 SP1-->MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
Microsoft Choice Guard-->MsiExec.exe /X{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}
Microsoft Compression Client Pack 1.0 for Windows XP-->"C:\WINDOWS\$NtUninstallMSCompPackV1$\spuninst\spuninst.exe"
Microsoft Internationalized Domain Names Mitigation APIs-->"C:\WINDOWS\$NtServicePackUninstallIDNMitigationAPIs$\spuninst\spuninst.exe"
Microsoft National Language Support Downlevel APIs-->"C:\WINDOWS\$NtServicePackUninstallNLSDownlevelMapping$\spuninst\spuninst.exe"
Microsoft Office Excel Viewer-->MsiExec.exe /I{95120000-003F-040C-0000-0000000FF1CE}
Microsoft Office PowerPoint Viewer 2007 (French)-->MsiExec.exe /X{95120000-00AF-040C-0000-0000000FF1CE}
Microsoft Search Enhancement Pack-->MsiExec.exe /X{4CBA3D4C-8F51-4D60-B27E-F6B641C571E7}
Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
Microsoft SQL Server 2005 Compact Edition [ENU]-->MsiExec.exe /I{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}
Microsoft Sync Framework Runtime Native v1.0 (x86)-->MsiExec.exe /I{8A74E887-8F0F-4017-AF53-CBA42211AAA5}
Microsoft Sync Framework Services Native v1.0 (x86)-->MsiExec.exe /I{BD64AF4A-8C80-4152-AD77-FCDDF05208AB}
Microsoft User-Mode Driver Framework Feature Pack 1.0-->"C:\WINDOWS\$NtUninstallWudf01000$\spuninst\spuninst.exe"
Microsoft Works 7.0-->MsiExec.exe /I{64D114CE-4234-45C2-B60A-2B07D5A48F72}
Mio Transfer-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{2003F533-7639-4436-8404-CB3DE67F1FFA}\setup.exe" -l0x40c
MioMap v3 Updater for Mio C220 C250-->MsiExec.exe /I{370C2797-8D14-4A13-BED1-0F417B7C0680}
Mise à jour critique pour Lecteur Windows Media 11 (KB959772)-->"C:\WINDOWS\$NtUninstallKB959772_WM11$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Lecteur Windows Media (KB952069)-->"C:\WINDOWS\$NtUninstallKB952069_WM9$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Lecteur Windows Media (KB954155)-->"C:\WINDOWS\$NtUninstallKB954155_WM9$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Lecteur Windows Media (KB968816)-->"C:\WINDOWS\$NtUninstallKB968816_WM9$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Lecteur Windows Media (KB973540)-->"C:\WINDOWS\$NtUninstallKB973540_WM9$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Lecteur Windows Media 10 (KB911565)-->"C:\WINDOWS\$NtUninstallKB911565$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Lecteur Windows Media 10 (KB917734)-->"C:\WINDOWS\$NtUninstallKB917734_WMP10$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Lecteur Windows Media 11 (KB936782)-->"C:\WINDOWS\$NtUninstallKB936782_WMP11$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Lecteur Windows Media 11 (KB954154)-->"C:\WINDOWS\$NtUninstallKB954154_WM11$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB928090)-->"C:\WINDOWS\ie7updates\KB928090-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB929969)-->"C:\WINDOWS\ie7updates\KB929969\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB931768)-->"C:\WINDOWS\ie7updates\KB931768-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB938127)-->"C:\WINDOWS\ie7updates\KB938127-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB942615)-->"C:\WINDOWS\ie7updates\KB942615-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB944533)-->"C:\WINDOWS\ie7updates\KB944533-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB950759)-->"C:\WINDOWS\ie7updates\KB950759-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB953838)-->"C:\WINDOWS\ie7updates\KB953838-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB956390)-->"C:\WINDOWS\ie7updates\KB956390-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB958215)-->"C:\WINDOWS\ie7updates\KB958215-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB960714)-->"C:\WINDOWS\ie7updates\KB960714-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB961260)-->"C:\WINDOWS\ie7updates\KB961260-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB963027)-->"C:\WINDOWS\ie7updates\KB963027-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB969897)-->"C:\WINDOWS\ie7updates\KB969897-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB972260)-->"C:\WINDOWS\ie7updates\KB972260-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 8 (KB976325)-->"C:\WINDOWS\ie8updates\KB976325-IE8\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB923561)-->"C:\WINDOWS\$NtUninstallKB923561$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB938464)-->"C:\WINDOWS\$NtUninstallKB938464$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB938464-v2)-->"C:\WINDOWS\$NtUninstallKB938464-v2$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB941569)-->"C:\WINDOWS\$NtUninstallKB941569$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB946648)-->"C:\WINDOWS\$NtUninstallKB946648$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB950760)-->"C:\WINDOWS\$NtUninstallKB950760$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB950762)-->"C:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB950974)-->"C:\WINDOWS\$NtUninstallKB950974$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB951066)-->"C:\WINDOWS\$NtUninstallKB951066$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB951376)-->"C:\WINDOWS\$NtUninstallKB951376$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB951376-v2)-->"C:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB951698)-->"C:\WINDOWS\$NtUninstallKB951698$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB951748)-->"C:\WINDOWS\$NtUninstallKB951748$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB952004)-->"C:\WINDOWS\$NtUninstallKB952004$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB952954)-->"C:\WINDOWS\$NtUninstallKB952954$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB953839)-->"C:\WINDOWS\$NtUninstallKB953839$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB954211)-->"C:\WINDOWS\$NtUninstallKB954211$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB954459)-->"C:\WINDOWS\$NtUninstallKB954459$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB954600)-->"C:\WINDOWS\$NtUninstallKB954600$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB955069)-->"C:\WINDOWS\$NtUninstallKB955069$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB956391)-->"C:\WINDOWS\$NtUninstallKB956391$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB956572)-->"C:\WINDOWS\$NtUninstallKB956572$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB956744)-->"C:\WINDOWS\$NtUninstallKB956744$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB956802)-->"C:\WINDOWS\$NtUninstallKB956802$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB956803)-->"C:\WINDOWS\$NtUninstallKB956803$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB956841)-->"C:\WINDOWS\$NtUninstallKB956841$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB956844)-->"C:\WINDOWS\$NtUninstallKB956844$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB957095)-->"C:\WINDOWS\$NtUninstallKB957095$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB957097)-->"C:\WINDOWS\$NtUninstallKB957097$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB958644)-->"C:\WINDOWS\$NtUninstallKB958644$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB958687)-->"C:\WINDOWS\$NtUninstallKB958687$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB958690)-->"C:\WINDOWS\$NtUninstallKB958690$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB958869)-->"C:\WINDOWS\$NtUninstallKB958869$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB959426)-->"C:\WINDOWS\$NtUninstallKB959426$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB960225)-->"C:\WINDOWS\$NtUninstallKB960225$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB960715)-->"C:\WINDOWS\$NtUninstallKB960715$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB960803)-->"C:\WINDOWS\$NtUninstallKB960803$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB960859)-->"C:\WINDOWS\$NtUninstallKB960859$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB961371)-->"C:\WINDOWS\$NtUninstallKB961371$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB961373)-->"C:\WINDOWS\$NtUninstallKB961373$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB961501)-->"C:\WINDOWS\$NtUninstallKB961501$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB968537)-->"C:\WINDOWS\$NtUninstallKB968537$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB969059)-->"C:\WINDOWS\$NtUninstallKB969059$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB969898)-->"C:\WINDOWS\$NtUninstallKB969898$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB969947)-->"C:\WINDOWS\$NtUninstallKB969947$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB970238)-->"C:\WINDOWS\$NtUninstallKB970238$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB970430)-->"C:\WINDOWS\$NtUninstallKB970430$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB971486)-->"C:\WINDOWS\$NtUninstallKB971486$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB971557)-->"C:\WINDOWS\$NtUninstallKB971557$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB971633)-->"C:\WINDOWS\$NtUninstallKB971633$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB971657)-->"C:\WINDOWS\$NtUninstallKB971657$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB972270)-->"C:\WINDOWS\$NtUninstallKB972270$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB973346)-->"C:\WINDOWS\$NtUninstallKB973346$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB973354)-->"C:\WINDOWS\$NtUninstallKB973354$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB973507)-->"C:\WINDOWS\$NtUninstallKB973507$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB973525)-->"C:\WINDOWS\$NtUninstallKB973525$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB973869)-->"C:\WINDOWS\$NtUninstallKB973869$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB973904)-->"C:\WINDOWS\$NtUninstallKB973904$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB974112)-->"C:\WINDOWS\$NtUninstallKB974112$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB974318)-->"C:\WINDOWS\$NtUninstallKB974318$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB974392)-->"C:\WINDOWS\$NtUninstallKB974392$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB974571)-->"C:\WINDOWS\$NtUninstallKB974571$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB975025)-->"C:\WINDOWS\$NtUninstallKB975025$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB975467)-->"C:\WINDOWS\$NtUninstallKB975467$\spuninst\spuninst.exe"
Mise à jour pour Windows Internet Explorer 8 (KB975364)-->"C:\WINDOWS\ie8updates\KB975364-IE8\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB951072-v2)-->"C:\WINDOWS\$NtUninstallKB951072-v2$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB951978)-->"C:\WINDOWS\$NtUninstallKB951978$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB955759)-->"C:\WINDOWS\$NtUninstallKB955759$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB955839)-->"C:\WINDOWS\$NtUninstallKB955839$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB961503)-->"C:\WINDOWS\$NtUninstallKB961503$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB967715)-->"C:\WINDOWS\$NtUninstallKB967715$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB968389)-->"C:\WINDOWS\$NtUninstallKB968389$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB971737)-->"C:\WINDOWS\$NtUninstallKB971737$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB973687)-->"C:\WINDOWS\$NtUninstallKB973687$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB973815)-->"C:\WINDOWS\$NtUninstallKB973815$\spuninst\spuninst.exe"
MSN-->C:\Program Files\MSN\MsnInstaller\msninst.exe /Action:ARP
MSVCRT-->MsiExec.exe /I{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
MSXML 4.0 SP2 (KB927978)-->MsiExec.exe /I{37477865-A3F1-4772-AD43-AAFC6BCFF99F}
MSXML 4.0 SP2 (KB936181)-->MsiExec.exe /I{C04E32E0-0416-434D-AFB9-6969D703A9EF}
MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
MSXML 4.0 SP2 (KB973688)-->MsiExec.exe /I{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
Need2Find Bar-->rundll32 C:\PROGRA~1\NEED2F~1\bar\1.bin\Nd2fnBar.dll,O
Nero-->MsiExec.exe /X{A4D7B764-4140-11D4-88EB-0050DA3579C0}
NTI Backup NOW! 4-->C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{385979FE-DC4F-4140-8EAD-A59625000D72} /l1036 BUN4
NTI CD & DVD-Maker-->C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{1577A05B-EE62-4BBC-9DB7-FE748FA44EC2} /l1036 CDM7
NTI HomeVideo-Maker-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{B8A6F713-D72D-47AD-A92D-B5C0E13F98C1}\setup.exe" -l0x40c
NVIDIA Drivers-->C:\WINDOWS\system32\nvudisp.exe UninstallGUI
NvMixer-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{D7A6C517-11F2-419F-B5BB-27772B939698}\SETUP.EXE" -uninstall
OLYMPUS Master-->C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\9\INTEL3~1\IDriver.exe /M{BA820A24-704B-428D-9904-71A10DAC1372} /l1036 /zUNINSTALL
OneCare Advisor (Windows Live Toolbar)-->MsiExec.exe /X{6D7F8D4B-D1A4-402A-973E-31E90940E585}
Outil de téléchargement Windows Live-->MsiExec.exe /I{205C6BDD-7B73-42DE-8505-9A093F35A238}
Package de pilotes Windows - MobileTop (sshpmdm) Modem (02/23/2007 2.5.0.0)-->C:\PROGRA~1\DIFX\7B44739871F4D539FA473F57A832EA4B6A59EF06\DPInst.exe /u C:\WINDOWS\system32\DRVSTORE\shpacm_18A9B92ED8DEDC602E49E767FA4BE98A30525207\shpacm.inf
Package de pilotes Windows - MobileTop (sshpusb) USB (02/23/2007 2.5.0.0)-->C:\PROGRA~1\DIFX\7B44739871F4D539FA473F57A832EA4B6A59EF06\DPInst.exe /u C:\WINDOWS\system32\DRVSTORE\shpusb_558D416BCEB984F35885804D3E1A9C3773F1B17C\shpusb.inf
Picasa 3-->"C:\Program Files\Google\Picasa3\Uninstall.exe"
PIF DESIGNER-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{B90450DF-E781-46FD-B1F1-0C86DA40E443}\SETUP.EXE" -l0x40c anything
Portable MP3 Player-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{0FE67F7B-CFD5-4891-AED4-3E928A20A9D2}\Setup.exe" -l0x40c
PowerDVD-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}\setup.exe" -uninstall
Programme de gestion Camera de Logitech®-->"C:\Program Files\Fichiers communs\Logitech\QCDRV\BIN\SETUP.EXE" UNINSTALL REMOVEPROMPT
QuickTime-->C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\11\INTEL3~1\IDriver.exe /M{C21D5524-A970-42FA-AC8A-59B8C7CDCA31} /l1036
SAMSUNG Mobile Composite Device Software-->C:\WINDOWS\system32\Samsung_USB_Drivers\6\SSBCUninstall.exe
SAMSUNG Mobile Modem Driver Set-->C:\WINDOWS\system32\Samsung_USB_Drivers\3\SSCDUninstall.exe
Samsung Mobile phone USB driver Software-->C:\WINDOWS\system32\Samsung_USB_Drivers\5\SSSDUninstall.exe
SAMSUNG Mobile USB Modem 1.0 Software-->C:\WINDOWS\system32\Samsung_USB_Drivers\1\SS_Uninstall.exe
SAMSUNG Mobile USB Modem Software-->C:\WINDOWS\system32\Samsung_USB_Drivers\2\SSM_Uninstall.exe
Samsung PC Studio 3 USB Driver Installer-->"C:\Program Files\InstallShield Installation Information\{EBA29752-DDD2-4B62-B2E3-9841F92A3E3A}\setup.exe" -runfromtemp -l0x040c -removeonly
Samsung PC Studio 3-->"C:\Program Files\InstallShield Installation Information\{C4A4722E-79F9-417C-BD72-8D359A090C97}\setup.exe" -runfromtemp -l0x040c -removeonly
SearchTheWeb-->"C:\Documents and Settings\All Users\Application Data\{04D0A305-8E13-4D5D-BE22-67E85E9E1B7A}\NotifierSetup.exe" REMOVE=TRUE MODIFY=FALSE
SearchTheWeb-->C:\Documents and Settings\All Users\Application Data\{04D0A305-8E13-4D5D-BE22-67E85E9E1B7A}\NotifierSetup.exe
Security Update for CAPICOM (KB931906)-->MsiExec.exe /I{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
Security Update for CAPICOM (KB931906)-->MsiExec.exe /X{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
Segoe UI-->MsiExec.exe /I{A1F66FC9-11EE-4F2F-98C9-16F8D1E69FB7}
Shareaza version 2.2.3.0-->"C:\Program Files\Shareaza\Uninstall\unins000.exe"
SLD Codec Pack-->C:\Program Files\SLD Codec Pack\uninstall.exe
SmartShopper-->C:\Program Files\Smart-Shopper\Uninst.exe
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {B2AE9C82-DC7B-3641-BFC8-87275C4F3607} /qb+ REBOOTPROMPT=""
VSO Media Player-->"C:\Program Files\vso\CopyToDVD\unins000.exe"
WiFi Station-->C:\Program Files\InstallShield Installation Information\{DECE22F4-EEDD-4615-BC56-2F4827FAD64B}\setup.exe -runfromtemp -l0x040c -removeonly
Windows Internet Explorer 8-->"C:\WINDOWS\ie8\spuninst\spuninst.exe"
Windows Live Call-->MsiExec.exe /I{82C7B308-0BDD-49D8-8EA5-9CD3A3F9DF41}
Windows Live Communications Platform-->MsiExec.exe /I{3B4E636E-9D65-4D67-BA61-189800823F52}
Windows Live Contrôle parental-->MsiExec.exe /X{D5D81435-B8DE-4CAF-867F-7998F2B92CFC}
Windows Live Favorites pour Windows Live Toolbar-->MsiExec.exe /X{786C4AD1-DCBA-49A6-B0EF-B317A344BD66}
Windows Live FolderShare-->MsiExec.exe /X{2075CB0A-D26F-4DAA-B424-5079296B43BA}
Windows Live Mail-->MsiExec.exe /I{5DD76286-9BE7-4894-A990-E905E91AC818}
Windows Live Messenger-->MsiExec.exe /X{770F1BEC-2871-4E70-B837-FB8525FFA3B1}
Windows Live Toolbar-->MsiExec.exe /X{F7D27C70-90F5-49B9-B188-0A133C0CE353}
Windows Live Writer-->MsiExec.exe /X{4634B21A-CC07-4396-890C-2B8168661FEA}
Windows Media Format 11 runtime-->"C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
Windows Media Format 11 runtime-->"C:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe"
Windows Media Player 11-->"C:\WINDOWS\$NtUninstallwmp11$\spuninst\spuninst.exe"
Windows XP Service Pack 3-->"C:\WINDOWS\$NtServicePackUninstall$\spuninst\spuninst.exe"
Yahoo! Anti-Spy-->C:\PROGRA~1\Yahoo!\Common\unypsr.exe
Yahoo! Toolbar-->C:\PROGRA~1\Yahoo!\Common\unyt.exe

======Security center information======

AV: avast! antivirus 4.8.1368 [VPS 100114-0]

======System event log======

Computer Name: ACER-E3B0141A93
Event Code: 4201
Message: Le système a détecté que la carte réseau Hercules... - Miniport d'ordonnancement de paquets était connectée au réseau,
et a lancé une opération normale sur la carte réseau.

Record Number: 109447
Source Name: Tcpip
Time Written: 20091227204030.000000+060
Event Type: Informations
User:

Computer Name: ACER-E3B0141A93
Event Code: 4226
Message: TCP/IP a atteint la limite de sécurité imposée sur le nombre de tentatives de connexion TCP simultanées.

Record Number: 109446
Source Name: Tcpip
Time Written: 20091227203526.000000+060
Event Type: Avertissement
User:

Computer Name: ACER-E3B0141A93
Event Code: 7036
Message: Le service LiveUpdate est entré dans l'état : arrêté.

Record Number: 109445
Source Name: Service Control Manager
Time Written: 20091227171636.000000+060
Event Type: Informations
User:

Computer Name: ACER-E3B0141A93
Event Code: 7036
Message: Le service LiveUpdate est entré dans l'état : en cours d'exécution.

Record Number: 109444
Source Name: Service Control Manager
Time Written: 20091227171621.000000+060
Event Type: Informations
User:

Computer Name: ACER-E3B0141A93
Event Code: 7035
Message: Un contrôle Démarrer a correctement été envoyé au service LiveUpdate.

Record Number: 109443
Source Name: Service Control Manager
Time Written: 20091227171621.000000+060
Event Type: Informations
User: AUTORITE NT\SYSTEM

=====Application event log=====

Computer Name: ACER-E3B0141A93
Event Code: 101
Message: Niveau d'information : success

L'exécution suivante a été planifiée pour intervenir approximativement à 7:58 PM.

Record Number: 29342
Source Name: Automatic LiveUpdate Scheduler
Time Written: 20091002162853.000000+120
Event Type: Informations
User: AUTORITE NT\SYSTEM

Computer Name: ACER-E3B0141A93
Event Code: 101
Message: Niveau d'information : success

LiveUpdate automatique a terminé.

Record Number: 29341
Source Name: Automatic LiveUpdate Scheduler
Time Written: 20091002162853.000000+120
Event Type: Informations
User: AUTORITE NT\SYSTEM

Computer Name: ACER-E3B0141A93
Event Code: 101
Message: Niveau d'information : success

Le Planificateur a lancé LiveUpdate automatique.

Record Number: 29340
Source Name: Automatic LiveUpdate Scheduler
Time Written: 20091002162843.000000+120
Event Type: Informations
User: AUTORITE NT\SYSTEM

Computer Name: ACER-E3B0141A93
Event Code: 32068
Message: La règle de routage de trafic sortant n'est pas valide car elle ne peut pas trouver de périphérique valide. Les télécopies sortantes qui utilisent cette règle ne peuvent pas être acheminées. Vérifiez que le ou les périphériques concernés (en cas de routage vers un groupe de périphériques) sont connectés et installés correctement et allumés. En cas de routage vers un groupe, vérifiez que le groupe est configuré correctement.
Code de pays/région : '*'
Indicatif régional : '*'

Record Number: 29339
Source Name: Microsoft Fax
Time Written: 20091002162347.000000+120
Event Type: Avertissement
User:

Computer Name: ACER-E3B0141A93
Event Code: 32026
Message: Le service de télécopie n'a pas pu initialiser de périphériques de télécopies attribués (virtuel ou TAPI).
Aucune télécopie ne peut être envoyée ou reçue tant qu'un périphérique de télécopies n'a pas été installé.

Record Number: 29338
Source Name: Microsoft Fax
Time Written: 20091002162347.000000+120
Event Type: Avertissement
User:

======Environment variables======

"ComSpec"=%SystemRoot%\system32\cmd.exe
"Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\QuickTime\QTSystem\;C:\Program Files\Samsung\Samsung PC Studio 3\
"windir"=%SystemRoot%
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"PROCESSOR_ARCHITECTURE"=x86
"PROCESSOR_LEVEL"=15
"PROCESSOR_IDENTIFIER"=x86 Family 15 Model 47 Stepping 2, AuthenticAMD
"PROCESSOR_REVISION"=2f02
"NUMBER_OF_PROCESSORS"=1
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"CLASSPATH"=.;C:\Program Files\Java\jre1.5.0_02\lib\ext\QTJava.zip
"QTJAVA"=C:\Program Files\Java\jre1.5.0_02\lib\ext\QTJava.zip

-----------------EOF-----------------
14 Janvier 2010 12:58:55

Re,

ta machine est surinfectée...

* Télécharge ToolBar-S&D (merci Eric71) : Ici

* Double-clique sur ToolBar S&D afin de lancer l' installation, un raccourci sera ajouté sur le Bureau
* Double-clique dessus pour démarrer l' outil et choisis la langue
* Tape 1 puis sur la touche [Entrée] afin de lancer la recherche
* Patiente jusqu' à la fin de celle-ci, le Bloc-notes s' ouvrira
* Poste le rapport (se trouvant également C:\TB.txt)
14 Janvier 2010 13:23:19

Merci d'avance,


-----------\\ ToolBar S&D 1.2.9 XP/Vista

Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Uniprocessor Free : AMD Athlon(tm) 64 Processor 3200+ )
BIOS : )Phoenix - Award WorkstationBIOS v6.00PG
USER : Séverine LIETARD ( Administrator )
BOOT : Normal boot
Antivirus : avast! antivirus 4.8.1368 [VPS 100114-0] 4.8.1368 (Activated)
C:\ (Local Disk) - NTFS - Total:91 Go (Free:56 Go)
D:\ (Local Disk) - FAT32 - Total:91 Go (Free:91 Go)
E:\ (CD or DVD)
F:\ (USB)
G:\ (USB)
H:\ (USB)
I:\ (USB)

"C:\ToolBar SD" ( MAJ : 22-08-2009|18:42 )
Option : [1] ( 14/01/2010|13:10 )

-----------\\ Recherche de Fichiers / Dossiers ...

C:\Program Files\AskBarDis
C:\Program Files\AskBarDis\bar
C:\Program Files\AskBarDis\PopSwatter
C:\Program Files\AskBarDis\unins000.dat
C:\Program Files\AskBarDis\unins000.exe
C:\Program Files\AskBarDis\bar\bin
C:\Program Files\AskBarDis\bar\Cache
C:\Program Files\AskBarDis\bar\History
C:\Program Files\AskBarDis\bar\Settings
C:\Program Files\AskBarDis\bar\bin\askBar.dll
C:\Program Files\AskBarDis\bar\bin\askPopStp.dll
C:\Program Files\AskBarDis\bar\bin\psvince.dll
C:\Program Files\AskBarDis\bar\Cache\00E23A2F
C:\Program Files\AskBarDis\bar\Cache\01AEC99D.bin
C:\Program Files\AskBarDis\bar\Cache\01AECD37.bin
C:\Program Files\AskBarDis\bar\Cache\01AECF89.bin
C:\Program Files\AskBarDis\bar\Cache\01AED1EA.bin
C:\Program Files\AskBarDis\bar\Cache\01AED390.bin
C:\Program Files\AskBarDis\bar\Cache\01AED536.bin
C:\Program Files\AskBarDis\bar\Cache\files.ini
C:\Program Files\AskBarDis\bar\History\search
C:\Program Files\AskBarDis\bar\Settings\config.dat
C:\Program Files\AskBarDis\bar\Settings\config.dat.bak
C:\Program Files\AskBarDis\bar\Settings\prevcfg.htm
C:\Program Files\AskBarDis\PopSwatter\History
C:\Program Files\AskBarDis\PopSwatter\History\allowed
C:\Program Files\AskBarDis\PopSwatter\History\notallow
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\eskin
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\IESkins
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\dynamic
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\DownLoad
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\030104_emte10_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\030104_emte11_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\030104_emte12_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\030104_emte13_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\030104_emte14_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\030104_emte19_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\030104_emte20_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\030104_emte21_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\030104_emte9_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\030203lib_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\033102angel_1_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\033102bigluf_1_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\033102bigsmile_1_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\033102birthday_1_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\033102cheers_1_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\033102flo_1_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\033102good_1_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\033102jump_1_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\033102king_1_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\033102lough_1_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\033102luf_1_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\033102smiled_1_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\033102smile_1_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\033102sor_1_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\033102thanx_1_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\033102uhu_1_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\040103ahh_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\040103wow_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\040104_emi2_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\042102_1134_112_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\050103big_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\050103gig_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\050103hm_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\050103nomail_emoti_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\050103norm_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\060104_ema15_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\060104_ema16_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\060104_ema17_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\060104_ema18_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\060104_ema19_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\060104_ema20_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\060104_ema21_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\060104_ema24_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\060104_ema25_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\060104_ema26_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\060104_ema30_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\060104_ema33_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\060104_ema34_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\062802hippi_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\062802jumpie_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\080402argh_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\080402oops_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\080402ouch_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\082502no_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\082502yes_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\110103_boring1_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\110103_confused_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\110103_crying_ugly_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\110103_fantastic_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\110103_feel_better_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\110103_gimme_break_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\110103_heehee_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\110103_hlopaet_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\110103_ign_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\110103_lol_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\110103_no_comment_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\110103_peace_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\110103_smashing_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\110103_talk2thehand_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\avatar.res
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\blocked.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\blocked2.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\block_sm.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\block_sm2.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\block_smli.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\block_smli2.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\btn_add-but.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\btn_back-but.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\btn_left_cut_enabled_1.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\btn_left_enabled_1.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\btn_left_pressed_1.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\btn_middle_enabled_1.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\btn_middle_pressed_1.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\btn_right_cut_enabled_1.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\btn_right_enabled_1.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\btn_right_pressed_1.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\business_promo.htm
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\buttondir.txt
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\components.cdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\css2_main.css
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\css2_pagingmodule.css
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\css2_topbuttons.css
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\css_cattree.css
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\css_flashpreview.css
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\delete.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\edit_clear_sound.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\edit_fs.htm
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\edit_select.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\email-def-511745-514279.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\email-def-email-backgrounds.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\email-def-email-bcards.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\email-def-email-ecards.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\email-def-email-edit.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\email-def-email-emoticons.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\email-def-email-estationery.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\email-def-email-funny.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\email-def-email-help.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\email-def-email-images.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\email-def-email-info.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\email-def-email-more.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\email-def-email-my.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\email-def-email-people.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\email-def-email-photo.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\email-def-email-tell.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\email-def-email-temp.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\email-def-email-temp_OI.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\email-def-email-text.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\email-def-email-voice.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\email-def.cdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\email-premium-email-premium.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\email-premium-email-premium_OI.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\email-t1-bg.res
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\email-temp-bg.res
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\estatationery.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\flashpatch.js
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\flashpreview.htm
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\fs3.htm
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\hotbar_promo.htm
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\icon_checked_1.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\icon_close_1.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\icon_close_pressed_1.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\icon_edit_preview.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\icon_edit_send.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\icon_flash_preview.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\icon_recently_used.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\icon_remove_1.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\icon_remove_pressed_1.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\icon_sand-clock2.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\icon_tell_1.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\icon_tell_pressed_1.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\icon_tree_null.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\icon_unchecked_1.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\icon_unchecked_pressed_1.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\img_barlayout.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\img_barlayout2.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\img_barlayout4.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\img_corner_left.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\img_local_logo.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\js2_basetemplate.js
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\js2_hbgroups.js
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\js2_hbobject3.js
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\js2_hbobjectset3.js
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\js2_hotbarwrapper.js
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\js2_iteratorsandreaders3nf.js
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\js2_pagingmoduleobj3.js
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\js2_texts3.js
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\js2_xmltree3nf.js
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\layout.cdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\linkpathlegal.txt
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\more.res
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\n.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\nav_bb_2.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\nav_b_2.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\nav_ff_2.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\nav_f_2.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\progress.res
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\searchbtn.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\submit.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\tab_bg.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\tab_bga.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\tab_bgia.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\tab_l.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\tab_la.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\tab_lia.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\tab_r.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\tab_ra.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\tab_ria.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\treedata_animations.xml
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\treedata_backgrounds.xml
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\treedata_ecards.xml
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\treedata_emoticons.xml
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\treedata_notifiers.xml
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\treedata_text.xml
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\tree_dots.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\tree_minus.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\1\tree_plus.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\030104_emte10_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\030104_emte11_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\030104_emte12_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\030104_emte13_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\030104_emte14_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\030104_emte19_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\030104_emte20_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\030104_emte21_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\030104_emte9_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\030203lib_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\033102angel_1_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\033102bigluf_1_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\033102bigsmile_1_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\033102birthday_1_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\033102cheers_1_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\033102flo_1_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\033102good_1_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\033102jump_1_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\033102king_1_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\033102lough_1_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\033102luf_1_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\033102smiled_1_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\033102smile_1_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\033102sor_1_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\033102thanx_1_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\033102uhu_1_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\040103ahh_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\040103wow_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\040104_emi2_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\042102_1134_112_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\050103big_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\050103gig_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\050103hm_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\050103nomail_emoti_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\050103norm_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\060104_ema15_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\060104_ema16_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\060104_ema17_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\060104_ema18_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\060104_ema19_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\060104_ema20_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\060104_ema21_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\060104_ema24_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\060104_ema25_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\060104_ema26_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\060104_ema30_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\060104_ema33_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\060104_ema34_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\062802hippi_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\062802jumpie_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\080402argh_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\080402oops_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\080402ouch_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\082502no_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\082502yes_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\110103_boring1_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\110103_confused_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\110103_crying_ugly_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\110103_fantastic_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\110103_feel_better_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\110103_gimme_break_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\110103_heehee_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\110103_hlopaet_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\110103_ign_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\110103_lol_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\110103_no_comment_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\110103_peace_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\110103_smashing_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\110103_talk2thehand_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\avatar.res
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\blocked.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\blocked2.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\block_sm.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\block_sm2.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\block_smli.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\block_smli2.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\btn_add-but.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\btn_back-but.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\btn_left_cut_enabled_1.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\btn_left_enabled_1.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\btn_left_pressed_1.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\btn_middle_enabled_1.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\btn_middle_pressed_1.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\btn_right_cut_enabled_1.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\btn_right_enabled_1.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\btn_right_pressed_1.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\business_promo.htm
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\buttondir.txt
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\components.cdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\css2_main.css
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\css2_pagingmodule.css
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\css2_topbuttons.css
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\css_cattree.css
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\css_flashpreview.css
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\delete.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\edit_clear_sound.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\edit_fs.htm
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\edit_select.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\email-def-511745-514279.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\email-def-email-backgrounds.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\email-def-email-bcards.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\email-def-email-ecards.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\email-def-email-edit.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\email-def-email-emoticons.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\email-def-email-estationery.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\email-def-email-funny.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\email-def-email-help.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\email-def-email-images.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\email-def-email-info.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\email-def-email-more.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\email-def-email-my.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\email-def-email-people.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\email-def-email-photo.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\email-def-email-tell.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\email-def-email-temp.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\email-def-email-temp_OI.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\email-def-email-text.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\email-def-email-voice.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\email-def.cdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\email-premium-email-premium.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\email-premium-email-premium_OI.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\email-t1-bg.res
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\email-temp-bg.res
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\estatationery.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\flashpatch.js
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\flashpreview.htm
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\fs3.htm
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\hotbar_promo.htm
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\icon_checked_1.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\icon_close_1.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\icon_close_pressed_1.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\icon_edit_preview.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\icon_edit_send.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\icon_flash_preview.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\icon_recently_used.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\icon_remove_1.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\icon_remove_pressed_1.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\icon_sand-clock2.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\icon_tell_1.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\icon_tell_pressed_1.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\icon_tree_null.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\icon_unchecked_1.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\icon_unchecked_pressed_1.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\img_barlayout.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\img_barlayout2.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\img_barlayout4.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\img_corner_left.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\img_local_logo.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\js2_basetemplate.js
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\js2_hbgroups.js
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\js2_hbobject3.js
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\js2_hbobjectset3.js
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\js2_hotbarwrapper.js
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\js2_iteratorsandreaders3nf.js
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\js2_pagingmoduleobj3.js
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\js2_texts3.js
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\js2_xmltree3nf.js
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\layout.cdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\linkpathlegal.txt
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\more.res
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\n.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\nav_bb_2.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\nav_b_2.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\nav_ff_2.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\nav_f_2.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\progress.res
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\searchbtn.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\submit.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\tab_bg.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\tab_bga.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\tab_bgia.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\tab_l.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\tab_la.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\tab_lia.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\tab_r.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\tab_ra.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\tab_ria.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\treedata_animations.xml
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\treedata_backgrounds.xml
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\treedata_ecards.xml
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\treedata_emoticons.xml
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\treedata_notifiers.xml
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\treedata_text.xml
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\tree_dots.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\tree_minus.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\2\tree_plus.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\DownLoad\avatar.xip
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\DownLoad\business_promo.xip
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\DownLoad\buttondir.xip
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\DownLoad\code.xip
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\DownLoad\email-def.xip
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\DownLoad\email-t1-bg.xip
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\DownLoad\email-temp-bg.xip
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\DownLoad\hotbar_promo.xip
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\DownLoad\images.xip
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\DownLoad\layout.xip
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\DownLoad\linkpathlegal.xip
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\DownLoad\localcontent.xip
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\DownLoad\more.xip
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\DownLoad\progress.xip
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOI\static\DownLoad\treexml.xip
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\dynamic
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\1
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\DownLoad
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\030104_emte10_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\030104_emte11_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\030104_emte12_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\030104_emte13_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\030104_emte14_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\030104_emte19_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\030104_emte20_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\030104_emte21_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\030104_emte9_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\030203lib_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\033102angel_1_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\033102bigluf_1_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\033102bigsmile_1_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\033102birthday_1_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\033102cheers_1_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\033102flo_1_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\033102good_1_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\033102jump_1_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\033102king_1_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\033102lough_1_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\033102luf_1_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\033102smiled_1_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\033102smile_1_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\033102sor_1_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\033102thanx_1_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\033102uhu_1_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\040103ahh_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\040103wow_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\040104_emi2_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\042102_1134_112_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\050103big_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\050103gig_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\050103hm_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\050103nomail_emoti_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\050103norm_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\060104_ema15_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\060104_ema16_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\060104_ema17_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\060104_ema18_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\060104_ema19_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\060104_ema20_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\060104_ema21_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\060104_ema24_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\060104_ema25_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\060104_ema26_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\060104_ema30_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\060104_ema33_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\060104_ema34_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\062802hippi_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\062802jumpie_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\080402argh_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\080402oops_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\080402ouch_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\082502no_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\082502yes_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\110103_boring1_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\110103_confused_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\110103_crying_ugly_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\110103_fantastic_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\110103_feel_better_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\110103_gimme_break_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\110103_heehee_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\110103_hlopaet_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\110103_ign_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\110103_lol_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\110103_no_comment_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\110103_peace_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\110103_smashing_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\110103_talk2thehand_prv.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\blocked.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\blocked2.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\block_sm.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\block_sm2.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\block_smli.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\block_smli2.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\btn_add-but.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\btn_back-but.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\btn_left_cut_enabled_1.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\btn_left_enabled_1.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\btn_left_pressed_1.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\btn_middle_enabled_1.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\btn_middle_pressed_1.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\btn_right_cut_enabled_1.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\btn_right_enabled_1.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\btn_right_pressed_1.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\business_promo.htm
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\buttondir.txt
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\components.cdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\css2_main.css
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\css2_pagingmodule.css
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\css2_topbuttons.css
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\css_cattree.css
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\css_flashpreview.css
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\delete.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\edit_clear_sound.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\edit_fs.htm
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\edit_select.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\email-def-511724-543450.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\email-def-511724-548964.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\email-def-511724-589306.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\email-def-511724-591943.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\email-def-511724-592579.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\email-def-511724-598579.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\email-def-511724-603763.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\email-def-511724-9595.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\email-def-511724-9696.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\email-def-511745-514279.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\email-def-email-backgrounds.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\email-def-email-bcards.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\email-def-email-ecards.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\email-def-email-emoticons.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\email-def-email-estationery.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\email-def-email-funny.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\email-def-email-help.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\email-def-email-images.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\email-def-email-info.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\email-def-email-more.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\email-def-email-my.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\email-def-email-new.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\email-def-email-new2.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\email-def-email-options.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\email-def-email-people.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\email-def-email-photo.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\email-def-email-tell.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\email-def-email-temp.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\email-def-email-text.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\email-def-email-voice.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\email-def.cdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\email-premium-email-premium.mnu
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\email-t1-bg.res
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\email-temp-bg.res
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\estatationery.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\flashpatch.js
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\flashpreview.htm
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\fs3.htm
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\hotbar_promo.htm
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\icon_checked_1.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\icon_close_1.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\icon_close_pressed_1.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\icon_edit_preview.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\icon_edit_send.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\icon_flash_preview.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\icon_recently_used.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\icon_remove_1.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\icon_remove_pressed_1.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\icon_sand-clock2.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\icon_tell_1.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\icon_tell_pressed_1.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\icon_tree_null.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\icon_unchecked_1.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\icon_unchecked_pressed_1.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\img_barlayout.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\img_barlayout2.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\img_barlayout4.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\img_corner_left.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\img_local_logo.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\js2_basetemplate.js
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\js2_hbgroups.js
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\js2_hbobject3.js
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\js2_hbobjectset3.js
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\js2_hotbarwrapper.js
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\js2_iteratorsandreaders3nf.js
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\js2_pagingmoduleobj3.js
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\js2_texts3.js
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\js2_xmltree3nf.js
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\layout.cdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\linkpathlegal.txt
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\n.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\nav_bb_2.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\nav_b_2.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\nav_ff_2.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\nav_f_2.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\progress.res
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\sales_buttons.res
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\searchbtn.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\submit.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\tab_bg.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\tab_bga.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\tab_bgia.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\tab_l.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\tab_la.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\tab_lia.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\tab_r.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\tab_ra.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\tab_ria.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\treedata_animations.xml
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\treedata_backgrounds.xml
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\treedata_ecards.xml
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\treedata_emoticons.xml
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\treedata_notifiers.xml
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\treedata_text.xml
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\tree_dots.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\tree_minus.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\2\tree_plus.gif
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\DownLoad\business_promo.xip
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\DownLoad\buttondir.xip
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\DownLoad\code.xip
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\DownLoad\email-def.xip
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\DownLoad\email-t1-bg.xip
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\DownLoad\email-temp-bg.xip
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\DownLoad\hotbar_promo.xip
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\DownLoad\images.xip
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\DownLoad\layout.xip
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\DownLoad\linkpathlegal.xip
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\DownLoad\localcontent.xip
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\DownLoad\progress.xip
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\DownLoad\sales_buttons.xip
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\HostOL\static\DownLoad\treexml.xip
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\static
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1003063.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\101819.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1022887.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1025988.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1032719.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1041655.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1042745.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1043399.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1049051.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1054344.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1055749.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1055978.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1056027.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1056107.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1056868.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1057439.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1057707.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1057776.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1059014.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1060233.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1065003.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1065005.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1065408.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1067187.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1068023.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1163834.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1257105.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1293930.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\130459.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1383356.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1383387.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1383771.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1384138.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1384147.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1384160.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1384287.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1384370.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1384577.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1384900.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1385382.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1386481.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1386771.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1386779.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1387227.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1387273.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1387411.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1387544.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1387569.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1387611.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1388730.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\138885.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1388868.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1389452.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1389912.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1389924.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1390418.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1390577.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1390720.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1390732.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1390909.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1391092.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1391194.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1391204.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1391437.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1391472.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1391571.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1393134.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1394865.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1394978.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1395297.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1395464.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1395850.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1396531.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1396605.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1396684.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1396707.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1396708.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1396993.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1399888.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1400027.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1400295.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1400443.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1402137.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1402349.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1402657.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1403306.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1403844.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1403925.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1403952.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1404157.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1404209.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1404358.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1404638.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1404802.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1404867.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1405667.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1405828.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1405829.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1405886.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1406055.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1406440.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1406614.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1406741.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1406785.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1415040.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1415067.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1416737.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1416835.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1416859.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1416861.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1435613.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1436350.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1442602.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1447729.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1449178.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1476460.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1481713.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1484571.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1500268.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1504966.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\151198.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1523844.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1537420.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1540066.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1560108.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1584628.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1593391.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\15985.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1608254.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1642471.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1644955.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1651905.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1671775.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1677283.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1700062.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1716936.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1740181.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1746409.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1763141.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1817352.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1820483.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1824481.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1839551.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1840276.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1843511.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1846707.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1849577.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1858008.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1859639.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\186302.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1870688.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1883864.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1899.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1902862.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\190375.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1905489.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1909100.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1911208.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1911298.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1923996.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1940133.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\194557.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1956854.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1976787.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\1984101.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\2065725.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\2066842.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\2074385.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\2093525.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\2101472.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\2108710.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\2151748.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\2168091.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\2183339.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\218441.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\2188084.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\2191085.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\2191345.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\219597.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\2205259.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\2207504.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotbar\dynamic\2208789.sdf
C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0\Hotb
14 Janvier 2010 13:53:29

Re,

double-clique sur le raccourci de ToolBar S&D
- Tape 2 et valide par la touche [Entrée]

/!\ Ne ferme pas la fenêtre lors de la suppression /!\

- Un rapport sera généré.
- Poste ce dernier.

Note : Si ton bureau ne réapparaît pas, fais Ctrl>Alt>Supp pour ouvrir le Gestionnaire des tâches
Rends-toi à l' onglet Processus, clique en haut à gauche sur Fichiers et choisis Exécuter
Tape : explorer et valide
14 Janvier 2010 17:59:28


-----------\\ ToolBar S&D 1.2.9 XP/Vista

Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Uniprocessor Free : AMD Athlon(tm) 64 Processor 3200+ )
BIOS : )Phoenix - Award WorkstationBIOS v6.00PG
USER : Séverine LIETARD ( Administrator )
BOOT : Normal boot
Antivirus : avast! antivirus 4.8.1368 [VPS 100114-1] 4.8.1368 (Activated)
C:\ (Local Disk) - NTFS - Total:91 Go (Free:56 Go)
D:\ (Local Disk) - FAT32 - Total:91 Go (Free:91 Go)
E:\ (CD or DVD)
F:\ (USB)
G:\ (USB)
H:\ (USB)
I:\ (USB)

"C:\ToolBar SD" ( MAJ : 22-08-2009|18:42 )
Option : [2] ( 14/01/2010|17:54 )

-----------\\ SUPPRESSION

Supprime! - C:\Program Files\AskBarDis\bar
Supprime! - C:\Program Files\AskBarDis\PopSwatter
Supprime! - C:\Program Files\AskBarDis\unins000.dat
Supprime! - C:\Program Files\AskBarDis\unins000.exe
Supprime! - C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\eskin
Supprime! - C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\IESkins
Supprime! - C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar\v3.0
Echec ! - C:\Program Files\Hotbar\bin
Echec ! - C:\Program Files\Hotbar\bin\10.2.236.0
Echec ! - C:\Program Files\Hotbar\bin\10.2.236.0\HostOE.dll
Supprime! - C:\DOCUME~1\ALLUSE~1\MENUDÉ~1\PROGRA~1\Hotbar
Supprime! - C:\DOCUME~1\SVERIN~1\Cookies\séverine_lietard@contentcatalog.hotbar[1].txt
Supprime! - C:\DOCUME~1\SVERIN~1\Cookies\séverine_lietard@hotbar[1].txt
Supprime! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\HotbarSA\HotbarSA.dat
Supprime! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\HotbarSA\HotbarSAAbout.mht
Supprime! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\HotbarSA\HotbarSAau.dat
Supprime! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\HotbarSA\HotbarSAEULA.mht
Supprime! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\HotbarSA\HotbarSA_hpk.dat
Supprime! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\HotbarSA\HotbarSA_kyf.dat
Supprime! - C:\Program Files\KaZaA\BGP2P
Supprime! - C:\Program Files\KaZaA\Db
Supprime! - C:\Program Files\KaZaA\My Shared Folder
Supprime! - C:\DOCUME~1\ALLUSE~1\MENUDÉ~1\PROGRA~1\Kiwee Toolbar2
Supprime! - C:\Program Files\Need2Find\bar
Supprime! - C:\DOCUME~1\ALLUSE~1\MENUDÉ~1\PROGRA~1\SmartShopper
Supprime! - C:\DOCUME~1\SVERIN~1\Cookies\séverine_lietard@cs.lp.smartshopper[1].txt
Supprime! - C:\DOCUME~1\SVERIN~1\Cookies\séverine_lietard@cs.lp.smartshopper[3].txt
Supprime! - C:\DOCUME~1\SVERIN~1\APPLIC~1\Smart-Shopper\cs
Supprime! - C:\Program Files\Smart-Shopper\Bin
Supprime! - C:\Program Files\Smart-Shopper\cs
Supprime! - C:\Program Files\Smart-Shopper\Uninst.exe
Supprime! - C:\DOCUME~1\SVERIN~1\Cookies\séverine_lietard@h.starware[2].txt
Supprime! - C:\DOCUME~1\SVERIN~1\Cookies\séverine_lietard@try.starware[2].txt
Supprime! - C:\DOCUME~1\SVERIN~1\APPLIC~1\WeatherDPA\Weather
Supprime! - C:\DOCUME~1\SVERIN~1\Cookies\séverine_lietard@www.zango[1].txt
Supprime! - C:\DOCUME~1\SVERIN~1\Cookies\séverine_lietard@zango[1].txt
Supprime! - C:\WINDOWS\smdat32a.sys
Supprime! - C:\WINDOWS\smdat32m.sys
Supprime! - C:\DOCUME~1\SVERIN~1\LOCALS~1\Temp\nsi12A.tmp
Supprime! - C:\DOCUME~1\SVERIN~1\LOCALS~1\Temp\nsk2F.tmp
Supprime! - C:\Program Files\AskBarDis
Supprime! - C:\DOCUME~1\SVERIN~1\APPLIC~1\Hotbar
Echec ! - C:\Program Files\Hotbar
Supprime! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\HotbarSA
Supprime! - C:\Program Files\KaZaA
Supprime! - C:\Program Files\Need2Find
Supprime! - C:\DOCUME~1\SVERIN~1\APPLIC~1\Smart-Shopper
Supprime! - C:\Program Files\Smart-Shopper
Supprime! - C:\DOCUME~1\SVERIN~1\APPLIC~1\WeatherDPA
Supprime! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\2ACA5CC3-0F83-453D-A079-1076FE1A8B65

-----------\\ DEUXIEME PASSAGE

Echec ! - C:\Program Files\Hotbar\bin
Echec ! - C:\Program Files\Hotbar\bin\10.2.236.0
Echec ! - C:\Program Files\Hotbar\bin\10.2.236.0\HostOE.dll
Echec ! - C:\Program Files\Hotbar

-----------\\ Recherche de Fichiers / Dossiers ...

C:\Program Files\Hotbar
C:\Program Files\Hotbar\bin
C:\Program Files\Hotbar\bin\10.2.236.0
C:\Program Files\Hotbar\bin\10.2.236.0\HostOE.dll

-----------\\ Extensions

(S‚verine LIETARD) - {E9A1DEE0-C623-4439-8932-001E7D17607D} => ajtoolbar


-----------\\ [..\Internet Explorer\Main]

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Local Page"="C:\\WINDOWS\\system32\\blank.htm"
"Search Page"="http://g.msn.fr/0SEFRFR/SAOS01?FORM=TOOLBR"
"SearchMigratedDefaultURL"="http://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page Redirect Cache"="http://fr.msn.com/?ocid=iehp"

[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Local Page"="C:\\WINDOWS\\system32\\blank.htm"
"Start Page"="http://www.msn.com/"


--------------------\\ Recherche d'autres infections

C:\WINDOWS\Pack.epk
C:\DOCUME~1\SVERIN~1\LOCALS~1\Temp\Pack.epk
C:\WINDOWS\System32\nvs2.inf

C:\DOCUME~1\SVERIN~1\LOCALS~1\APPLIC~1\shuafth.dat
C:\DOCUME~1\SVERIN~1\LOCALS~1\APPLIC~1\shuafth.exe
C:\DOCUME~1\SVERIN~1\LOCALS~1\APPLIC~1\shuafth_nav.dat
C:\DOCUME~1\SVERIN~1\LOCALS~1\APPLIC~1\shuafth_navps.dat
C:\WINDOWS\System32\volwhgm.dat
C:\WINDOWS\System32\volwhgm_nav.dat
C:\WINDOWS\System32\volwhgm_navps.dat
C:\WINDOWS\System32\volwhgm_navup.dat
==> EGDACCESS <==

--------------------\\ ROGUES ..

C:\DOCUME~1\SVERIN~1\APPLIC~1\errorsafefrenchnewreleaseinstall[1].exe




1 - "C:\ToolBar SD\TB_1.txt" - 14/01/2010|13:12 - Option : [1]
2 - "C:\ToolBar SD\TB_2.txt" - 14/01/2010|17:56 - Option : [2]

-----------\\ Fin du rapport a 17:56:25,35

14 Janvier 2010 19:34:18

* Télécharge Navilog1 (merci Il_Mafioso) : Ici
* Double-clique dessus pour lancer l' installation
* Une fois terminée, il s' exécutera automatiquement
(sinon double-clique sur le raccourci du Bureau)
* Laisse-toi guider et au menu principal, choisis 1 puis valide
Ne fais pas le choix 2
* Il te sera peut-être demandé de redémarrer ton PC. Laisse l' outil le faire automatiquement, sinon redémarre normalement si c' est proposé
* Patiente jusqu' au message : *** Scan terminé le ..... ***
* Appuie sur une touche, le Bloc-notes va s' ouvrir
* Copie-colle le rapport dans ta prochaine réponse et referme le Bloc-notes
(il est aussi à la racine de C: cleannavi.txt)
14 Janvier 2010 20:45:03

Purée! j'ai du redémarrer en mode sans échec...j'ai les boules, je vais le laisser en veille cette nuit, j'ai peur de plus l'avoir demain...

Fix Navipromo version 4.0.6 commencé le 14/01/2010 20:08:44,12

!!! Attention,ce rapport peut indiquer des fichiers/programmes légitimes!!!
!!! Postez ce rapport sur le forum pour le faire analyser !!!

Outil exécuté depuis C:\Program Files\navilog1

Mise à jour le 03.01.2010 à 11h00 par IL-MAFIOSO

Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Uniprocessor Free : AMD Athlon(tm) 64 Processor 3200+ )
BIOS : )Phoenix - Award WorkstationBIOS v6.00PG
USER : Séverine LIETARD ( Administrator )
BOOT : Normal boot

Antivirus : avast! antivirus 4.8.1368 [VPS 100114-1] 4.8.1368 (Activated)


C:\ (Local Disk) - NTFS - Total:91 Go (Free:56 Go)
D:\ (Local Disk) - FAT32 - Total:91 Go (Free:91 Go)
E:\ (CD or DVD)
F:\ (USB)
G:\ (USB)
H:\ (USB)
I:\ (USB)


Recherche executée en mode normal

Nettoyage exécuté au redémarrage de l'ordinateur


C:\Documents and Settings\S‚verine LIETARD\locals~1\Temp\pack.epk supprimé !
C:\WINDOWS\pack.epk supprimé !
C:\WINDOWS\system32\nvs2.inf supprimé !
C:\WINDOWS\system32\volwhgm.dat supprimé !
C:\WINDOWS\system32\volwhgm_nav.dat supprimé !
C:\WINDOWS\system32\volwhgm_navps.dat supprimé !
C:\WINDOWS\system32\volwhgm_navup.dat supprimé !
c:\docume~1\sverin~1\locals~1\applic~1\shuafth.exe supprimé !
c:\docume~1\sverin~1\locals~1\applic~1\shuafth.dat supprimé !
c:\docume~1\sverin~1\locals~1\applic~1\shuafth_nav.dat supprimé !
c:\docume~1\sverin~1\locals~1\applic~1\shuafth_navps.dat supprimé !


Nettoyage contenu C:\WINDOWS\Temp effectué !
Nettoyage contenu C:\Documents and Settings\S‚verine LIETARD\locals~1\Temp effectué !


*** Sauvegarde du Registre vers dossier Safebackup ***

sauvegarde du Registre réalisée avec succès !

*** Nettoyage Registre ***

Nettoyage Registre Ok

Certificat Egroup supprimé !
Certificat Electronic-Group supprimé !
Certificat OOO-Favorit supprimé !



*** Scan terminé 14/01/2010 20:38:47,60 ***

15 Janvier 2010 00:31:20

Bonsoir lietase,

poste un nouveau rapport RSIT stp...

A+
15 Janvier 2010 09:33:12

Je l'ai laissé en veille cette nuit...
Logfile of random's system information tool 1.06 (written by random/random)
Run by Séverine LIETARD at 2010-01-15 09:32:04
Microsoft Windows XP Édition familiale Service Pack 3
System drive C: has 59 GB (63%) free of 94 GB
Total RAM: 1023 MB (45% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 09:32:12, on 15/01/2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\acer\Acer eConsole\MediaServerService.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.2\Apps\apdproxy.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Iminent\IMBooster\IMBooster.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\MessengerPlus! 3\MsgPlus.exe
C:\Program Files\OLYMPUS\OLYMPUS Master\Monitor.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\DNA\btdna.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Hercules\WiFi Station\WifiStation.exe
C:\Documents and Settings\Séverine LIETARD\Application Data\Microsoft\Notification de cadeaux MSN\lsnfier.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Kiwee Toolbar2\1.5.131\kwtbaim.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Windows Live\Toolbar\wltuser.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Documents and Settings\Séverine LIETARD\Local Settings\Temporary Internet Files\Content.IE5\UIOHFOV0\RSIT[1].exe
C:\Program Files\trend micro\Séverine LIETARD.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://g.msn.fr/0SEFRFR/SAOS01?FORM=TOOLBR
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.msn.fr/0SEFRFR/SAOS01?FORM=TOOLBR
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Kiwee Toolbar - {6638A9DE-0745-4292-8A2E-AE530E7B9B3F} - C:\Program Files\Kiwee Toolbar2\1.5.131\KiweeIEToolbar.dll
R3 - URLSearchHook: Iminent.BHO.NavigationError - {84FF7BD6-B47F-46F8-9130-01B2696B36CB} - C:\Program Files\Iminent\SearchTheWeb\Iminent.BHO.NavigationError.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: RXResultTracker Class - {59879FA4-4790-461c-A1CC-4EC4DE4CA483} - C:\PROGRA~1\RXTOOL~1\sfcont.dll (file missing)
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: EoRezoBHO - {64F56FC1-1272-44CD-BA6E-39723696E350} - C:\Program Files\EoRezo\EoAdv\EoRezoBHO.dll (file missing)
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: CHelperBHO - {84FF7BD6-B47F-46F8-9130-01B2696B36CB} - C:\Program Files\Iminent\SearchTheWeb\Iminent.BHO.NavigationError.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Iminent.LinkToContent - {A6E9BAAF-53CD-4575-967B-2AF710A7D21F} - C:\Program Files\Iminent\IMBooster\Iminent.LinkToContent.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.4.4525.1752\swg.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: (no name) - {90B8B761-DF2B-48AC-BBE0-BCC03A819B3B} - (no file)
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.2\Apps\apdproxy.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [HotbarOE] C:\Program Files\Hotbar\bin\10.2.236.0\OEAddOn.exe
O4 - HKLM\..\Run: [IMBooster] C:\Program Files\Iminent\IMBooster\IMBooster.exe /warmup
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Iminent.Notifier] C:\Program Files\Iminent\SearchTheWeb\Iminent.Notifier.exe
O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe"
O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [OM_Monitor] C:\Program Files\OLYMPUS\OLYMPUS Master\Monitor.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [BitTorrent DNA] "C:\Program Files\DNA\btdna.exe"
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\RunOnce: [Shockwave Updater] C:\WINDOWS\system32\Adobe\Shockwave 11\SwHelper_1150596.exe -Update -1150596 -"Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; Trident/4.0; GTB6; .NET CLR 1.1.4322; .NET CLR 2.0.50727; .NET CLR 3.0.4506.2152; .NET CLR 3.5.30729; Hotbar 10.2.236.0)" -"http://www.king.com/play.jsp?tournamentId=6885"
O4 - HKCU\..\RunOnce: [Iminent.Notifier Install] "C:\DOCUME~1\SVERIN~1\LOCALS~1\Temp\NotifierSetup.exe" /s
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: Notification de cadeaux MSN.lnk = ?
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: WiFi Station.lnk = ?
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_60D6097707281E79.dll/cmsidewiki.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: CabBuilder - http://kiw.imgag.com/imgag/kiw/toolbar/download/Install...
O16 - DPF: {406B5949-7190-4245-91A9-30A17DE16AD0} (Snapfish Activia) - http://www3.snapfish.fr/SnapfishActivia.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx1.hotmail.com/mail/w2/resources/MSNPUpld.cab
O16 - DPF: {5D637FAD-E202-48D1-8F18-5B9C459BD1E3} (Image Uploader Control) - http://copainsdavant.linternaute.com/framework/lib/obji...
O16 - DPF: {88764F69-3831-4EC1-B40B-FF21D8381345} (AdVerifierADPCtrl Class) - https://static.impots.gouv.fr/tdir/static/adpform/AdSig...
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDown...
O16 - DPF: {E77F23EB-E7AB-4502-8F37-247DBAF1A147} (Windows Live Hotmail Photo Upload Tool) - http://gfx2.hotmail.com/mail/w4/pr01/photouploadcontrol...
O18 - Filter hijack: text/html - {2AB289AE-4B90-4281-B2AE-1F4BB034B647} - C:\PROGRA~1\RXTOOL~1\sfcont.dll
O23 - Service: Acer Media Server - Acer Inc. - C:\Program Files\acer\Acer eConsole\MediaServerService.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Service Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O24 - Desktop Component 0: (no name) - http://images.google.fr/images?q=tbn:T9BKTIwLv4w1GM:htt...

--
End of file - 12206 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\tasks\User_Feed_Synchronization-{D1238B1F-6285-48B6-B1DC-FFEA3A660F7B}.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4EFB-9B51-7695ECA05670}]
Yahoo! Toolbar Helper - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll [2005-12-07 399424]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Aide pour le lien d'Adobe PDF Reader - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{59879FA4-4790-461c-A1CC-4EC4DE4CA483}]
RXResultTracker Class - C:\PROGRA~1\RXTOOL~1\sfcont.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{64F56FC1-1272-44CD-BA6E-39723696E350}]
EoBho Class - C:\Program Files\EoRezo\EoAdv\EoRezoBHO.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2009-05-19 137600]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
SSVHelper Class - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll [2007-09-25 501136]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{84FF7BD6-B47F-46F8-9130-01B2696B36CB}]
Iminent.BHO.NavigationError - C:\Program Files\Iminent\SearchTheWeb\Iminent.BHO.NavigationError.dll [2009-12-01 110832]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Programme d'aide de l'Assistant de connexion Windows Live - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-02-17 408440]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A6E9BAAF-53CD-4575-967B-2AF710A7D21F}]
LinkToContent Class - C:\Program Files\Iminent\IMBooster\Iminent.LinkToContent.dll [2009-10-29 106224]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2009-11-28 263280]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.4.4525.1752\swg.dll [2009-11-12 764912]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
Windows Live Toolbar Helper - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E99421FB-68DD-40F0-B4AC-B7027CAE2F1A}]
EpsonToolBandKicker Class - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll [2005-02-21 368640]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{EE5D279F-081B-4404-994D-C6B60AAEBA6D} - EPSON Web-To-Page - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll [2005-02-21 368640]
{EF99BD32-C1FB-11D2-892F-0090271D4F88} - Yahoo! Toolbar - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll [2005-12-07 399424]
{90B8B761-DF2B-48AC-BBE0-BCC03A819B3B}
{21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Adobe Photo Downloader"=C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.2\Apps\apdproxy.exe [2007-03-16 63712]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2005-04-01 5562368]
"QuickTime Task"=C:\Program Files\QuickTime\qttask.exe [2006-08-24 282624]
"HotbarOE"=C:\Program Files\Hotbar\bin\10.2.236.0\OEAddOn.exe []
"IMBooster"=C:\Program Files\Iminent\IMBooster\IMBooster.exe [2009-10-29 1334512]
"avast!"=C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe [2009-11-25 81000]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [2008-10-15 39792]
"Iminent.Notifier"=C:\Program Files\Iminent\SearchTheWeb\Iminent.Notifier.exe [2010-01-04 512608]
"MessengerPlus3"=C:\Program Files\MessengerPlus! 3\MsgPlus.exe [2010-01-14 190024]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"LogitechSoftwareUpdate"=C:\Program Files\Logitech\Video\ManifestEngine.exe [2005-01-18 196608]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe []
"OM_Monitor"=C:\Program Files\OLYMPUS\OLYMPUS Master\Monitor.exe [2005-11-29 57344]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"BitTorrent DNA"=C:\Program Files\DNA\btdna.exe [2009-11-13 323392]
"MSMSGS"=C:\Program Files\Messenger\msmsgs.exe [2008-04-14 1695232]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Shockwave Updater"=C:\WINDOWS\system32\Adobe\Shockwave 11\SwHelper_1150596.exe [2009-04-29 468408]
"Iminent.Notifier Install"=C:\DOCUME~1\SVERIN~1\LOCALS~1\Temp\NotifierSetup.exe /s []

C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage
Logitech Desktop Messenger.lnk - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
WiFi Station.lnk - C:\Program Files\Hercules\WiFi Station\WifiStation.exe

C:\Documents and Settings\Séverine LIETARD\Menu Démarrer\Programmes\Démarrage
Notification de cadeaux MSN.lnk - C:\Documents and Settings\Séverine LIETARD\Application Data\Microsoft\Notification de cadeaux MSN\lsnfier.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2007-02-15 236928]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
UPnPMonitor - {e57ce738-33e8-4c51-8354-bb4de9d215d1} - C:\WINDOWS\system32\upnpui.dll [2008-04-14 240128]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\acer\Acer eConsole\MediaSync.exe"="C:\Program Files\acer\Acer eConsole\MediaSync.exe:LocalSubNet:Enabled:Media Synchoronizer"
"C:\Program Files\acer\Acer eConsole\eConsole.exe"="C:\Program Files\acer\Acer eConsole\eConsole.exe:LocalSubNet:Enabled:eConsole"
"C:\Program Files\acer\Acer eConsole\MediaServerService.exe"="C:\Program Files\acer\Acer eConsole\MediaServerService.exe:LocalSubNet:Enabled:Acer Media Server"
"C:\Program Files\Kazaa\kazaa.exe"="C:\Program Files\Kazaa\kazaa.exe:*:Enabled:Kazaa Media Desktop"
"C:\Program Files\iTunes\iTunes.exe"="C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\eMule\emule.exe"="C:\Program Files\eMule\emule.exe:*:Enabled:eMule"
"C:\Program Files\DNA\btdna.exe"="C:\Program Files\DNA\btdna.exe:*:Enabled:D NA"
"C:\Program Files\BitTorrent\bittorrent.exe"="C:\Program Files\BitTorrent\bittorrent.exe:*:Enabled:BitTorrent"
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"C:\Program Files\Messenger\msmsgs.exe"="C:\Program Files\Messenger\msmsgs.exe:*:Enabled:Windows Messenger"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live FolderShare"
"C:\Documents and Settings\Séverine LIETARD\Local Settings\Temp\ImInstaller\HiYo_Installer.exe"="C:\Documents and Settings\Séverine LIETARD\Local Settings\Temp\ImInstaller\HiYo_Installer.exe:*:Enabled:IncrediMail Installer"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live FolderShare"

======List of files/folders created in the last 1 months======

2010-01-15 09:09:50 ----D---- C:\WINDOWS\LastGood
2010-01-14 20:08:44 ----A---- C:\cleannavi.txt
2010-01-14 20:07:55 ----D---- C:\Program Files\Navilog1
2010-01-14 13:10:50 ----A---- C:\TB.txt
2010-01-14 13:10:02 ----D---- C:\ToolBar SD
2010-01-14 10:55:37 ----D---- C:\rsit
2010-01-14 10:55:37 ----D---- C:\Program Files\trend micro
2010-01-14 10:48:16 ----HD---- C:\WINDOWS\msdownld.tmp
2010-01-14 10:46:43 ----HDC---- C:\WINDOWS\ie8
2010-01-13 20:31:53 ----HDC---- C:\WINDOWS\$NtUninstallKB955759$
2010-01-13 20:31:42 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2010-01-07 09:15:47 ----HD---- C:\Documents and Settings\All Users\Application Data\{04D0A305-8E13-4D5D-BE22-67E85E9E1B7A}
2009-12-23 12:11:32 ----D---- C:\Documents and Settings\Séverine LIETARD\Application Data\BitTorrent
2009-12-23 12:11:29 ----D---- C:\Program Files\BitTorrent
2009-12-23 09:21:04 ----A---- C:\WINDOWS\system32\aswBoot.exe
2009-12-23 09:09:12 ----D---- C:\Documents and Settings\Séverine LIETARD\Application Data\HTML Executable
2009-12-22 13:17:00 ----D---- C:\Documents and Settings\Séverine LIETARD\Application Data\Uniblue

======List of files/folders modified in the last 1 months======

2010-01-15 09:32:11 ----D---- C:\WINDOWS\Prefetch
2010-01-15 09:31:03 ----D---- C:\WINDOWS\Temp
2010-01-15 09:29:27 ----D---- C:\Documents and Settings\Séverine LIETARD\Application Data\DNA
2010-01-15 09:10:13 ----HD---- C:\WINDOWS\inf
2010-01-15 09:10:12 ----AD---- C:\WINDOWS
2010-01-15 09:10:08 ----D---- C:\WINDOWS\system32\CatRoot
2010-01-15 09:10:07 ----RSHD---- C:\WINDOWS\system32\dllcache
2010-01-15 09:10:07 ----D---- C:\WINDOWS\system32
2010-01-15 09:10:05 ----D---- C:\WINDOWS\ie8updates
2010-01-15 09:09:50 ----D---- C:\WINDOWS\system32\CatRoot2
2010-01-14 20:39:49 ----D---- C:\Program Files\DNA
2010-01-14 20:35:43 ----A---- C:\WINDOWS\ntbtlog.txt
2010-01-14 20:09:50 ----A---- C:\WINDOWS\SchedLgU.Txt
2010-01-14 20:07:55 ----RD---- C:\Program Files
2010-01-14 11:00:43 ----D---- C:\Program Files\MessengerPlus! 3
2010-01-14 10:49:06 ----D---- C:\WINDOWS\system32\fr-fr
2010-01-14 10:49:06 ----D---- C:\WINDOWS\Media
2010-01-14 10:49:06 ----D---- C:\WINDOWS\Help
2010-01-14 10:49:06 ----D---- C:\Program Files\Internet Explorer
2010-01-14 10:48:16 ----A---- C:\WINDOWS\imsins.BAK
2010-01-14 10:47:38 ----HD---- C:\WINDOWS\$hf_mig$
2010-01-14 10:40:32 ----SD---- C:\Documents and Settings\Séverine LIETARD\Application Data\Microsoft
2010-01-13 20:42:09 ----D---- C:\WINDOWS\AppPatch
2010-01-09 18:14:36 ----D---- C:\Documents and Settings\All Users\Application Data\Kiwee Toolbar2
2010-01-09 09:04:13 ----SHD---- C:\Config.Msi
2010-01-08 09:39:05 ----D---- C:\Documents and Settings\Séverine LIETARD\Application Data\FlySuite
2010-01-08 09:39:01 ----D---- C:\FlySuite
2010-01-08 09:22:28 ----SHD---- C:\WINDOWS\Installer
2010-01-07 09:15:49 ----D---- C:\Program Files\Iminent
2010-01-05 12:43:27 ----D---- C:\Program Files\Fichiers communs\Microsoft Shared
2010-01-05 12:43:02 ----D---- C:\Program Files\MSECache
2010-01-05 12:25:05 ----D---- C:\WINDOWS\system32\FxsTmp
2010-01-05 08:43:14 ----D---- C:\WINDOWS\WinSxS
2010-01-05 08:43:10 ----D---- C:\Documents and Settings\All Users\Application Data\Adobe
2010-01-05 08:43:00 ----D---- C:\Program Files\Fichiers communs\Adobe
2010-01-05 08:43:00 ----D---- C:\Program Files\Adobe
2010-01-05 01:17:46 ----A---- C:\WINDOWS\system32\MRT.exe
2009-12-23 12:01:50 ----D---- C:\Program Files\eMule
2009-12-23 09:23:12 ----D---- C:\Program Files\Google
2009-12-23 09:21:24 ----SD---- C:\WINDOWS\Tasks
2009-12-23 09:21:19 ----AD---- C:\WINDOWS\system32\drivers

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 Aavmker4;avast! Asynchronous Virus Monitor; C:\WINDOWS\system32\drivers\Aavmker4.sys [2009-11-25 27408]
R1 AmdK8;Pilote de processeur AMD Athlon64; C:\WINDOWS\system32\DRIVERS\AmdK8.sys [2004-05-08 38912]
R1 aswSP;avast! Self Protection; C:\WINDOWS\system32\drivers\aswSP.sys [2009-11-25 114768]
R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2009-11-25 48560]
R1 cdrbsdrv;cdrbsdrv; C:\WINDOWS\system32\drivers\cdrbsdrv.sys [2004-03-08 13567]
R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files\Fichiers communs\Symantec Shared\EENGINE\eeCtrl.sys []
R1 kbdhid;Pilote HID de clavier; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14720]
R1 StarOpen;StarOpen; C:\WINDOWS\system32\drivers\StarOpen.sys [2008-12-13 5632]
R1 UBHelper;UBHelper; C:\WINDOWS\system32\drivers\UBHelper.sys [2004-12-17 13952]
R2 AegisP;AEGIS Protocol (IEEE 802.1x) v3.5.3.0; C:\WINDOWS\system32\DRIVERS\AegisP.sys [2007-12-27 21419]
R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\DRIVERS\aswFsBlk.sys [2009-11-25 20560]
R2 aswMon2;avast! Standard Shield Support; C:\WINDOWS\system32\drivers\aswMon2.sys [2009-11-25 94160]
R2 fssfltr;FssFltr; C:\WINDOWS\system32\DRIVERS\fssfltr_tdi.sys [2009-08-05 54752]
R2 int15.sys;int15.sys; \??\C:\Program Files\Acer\eRecovery\int15.sys []
R3 Afc;PPdus ASPI Shell; C:\WINDOWS\system32\drivers\Afc.sys [2005-02-23 11776]
R3 Arp1394;Protocole client ARP 1394; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-13 60800]
R3 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2009-11-25 23120]
R3 GEARAspiWDM;GEARAspiWDM; C:\WINDOWS\System32\Drivers\GEARAspiWDM.sys [2005-02-02 14408]
R3 HidUsb;Pilote de classe HID Microsoft; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 LVUSBSta;Logitech USB Monitor Filter; C:\WINDOWS\system32\drivers\lvusbsta.sys [2005-01-31 22016]
R3 mouhid;Pilote HID de souris; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-08-23 12288]
R3 NIC1394;Pilote réseau 1394; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-13 61824]
R3 NTIDrvr;Upper Class Filter Driver; C:\WINDOWS\system32\DRIVERS\NTIDrvr.sys [2005-06-23 6144]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2005-04-01 3454656]
R3 nvax;Service for NVIDIA(R) nForce(TM) Audio Enumerator; C:\WINDOWS\system32\drivers\nvax.sys [2004-09-10 52224]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\WINDOWS\system32\DRIVERS\NVENETFD.sys [2004-11-15 33408]
R3 nvnetbus;NVIDIA Network Bus Enumerator; C:\WINDOWS\system32\DRIVERS\nvnetbus.sys [2004-11-15 12928]
R3 nvnforce;Service for NVIDIA(R) nForce(TM) Audio; C:\WINDOWS\system32\drivers\nvapu.sys [2004-09-10 412032]
R3 Pcouffin;Low level access layer for CD devices; C:\WINDOWS\System32\Drivers\Pcouffin.sys [2006-02-08 47360]
R3 pepifilter;Volume Adapter; C:\WINDOWS\system32\DRIVERS\lv302af.sys [2005-01-31 7104]
R3 PID_08A0;QuickCam IM(PID_08A0); C:\WINDOWS\system32\DRIVERS\LV302AV.SYS [2005-01-31 912768]
R3 RT73;Hercules Wireless USB Dongle Driver ; C:\WINDOWS\system32\DRIVERS\rt73.sys [2006-12-21 429440]
R3 usbaudio;Pilote USB audio (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2008-04-13 60032]
R3 usbccgp;Pilote parent générique USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
R3 usbehci;Pilote miniport de contrôleur d'hôte amélioré Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-13 30208]
R3 usbhub;Concentrateur USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-13 59520]
R3 usbohci;Pilote miniport de contrôleur hôte ouvert USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbohci.sys [2008-04-13 17152]
R3 USBSTOR;Pilote de stockage de masse USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 CCDECODE;Décodeur sous-titre fermé; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
S3 MSTEE;Convertisseur en T/site-à-site de répartition Microsoft; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504]
S3 NABTSFEC;Codec NABTS/FEC VBI; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
S3 NdisIP;Connection TV/vidéo Microsoft; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-13 10880]
S3 PCANDIS5;PCANDIS5 Protocol Driver; \??\C:\WINDOWS\system32\PCANDIS5.SYS []
S3 SLIP;Détrameur décalage BDA; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-13 11136]
S3 sscdbus;SAMSUNG USB Composite Device driver (WDM); C:\WINDOWS\system32\DRIVERS\sscdbus.sys [2007-07-03 80552]
S3 sscdmdfl;SAMSUNG Mobile Modem Filter; C:\WINDOWS\system32\DRIVERS\sscdmdfl.sys [2007-07-03 11944]
S3 sscdmdm;SAMSUNG Mobile Modem Drivers; C:\WINDOWS\system32\DRIVERS\sscdmdm.sys [2007-07-03 106792]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-13 15232]
S3 usbprint;Classe d'imprimantes USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Pilote de scanneur USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 wceusbsh;Windows CE USB Serial Host Driver; C:\WINDOWS\system32\DRIVERS\wceusbsh.sys [2004-08-04 32128]
S3 WSTCODEC;Codec Teletext standard; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 Acer Media Server;Acer Media Server; C:\Program Files\acer\Acer eConsole\MediaServerService.exe [2005-06-21 438272]
R2 aswUpdSv;avast! iAVS4 Control Service; C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe [2009-11-25 18752]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast4\ashServ.exe [2009-11-25 138680]
R2 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2005-04-01 127043]
R2 Planificateur LiveUpdate automatique;Planificateur LiveUpdate automatique; C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe [2006-08-03 100032]
R2 SeaPort;SeaPort; C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2009-05-19 240512]
R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe [2009-11-25 254040]
R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast4\ashWebSv.exe [2009-11-25 352920]
S2 Fax;Fax; C:\WINDOWS\system32\fxssvc.exe [2008-04-14 268800]
S2 gupdate;Service Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2009-12-23 133104]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 fsssvc;Service Windows Live Contrôle parental; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2009-08-05 704864]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-05-12 182768]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-03 69632]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 iPodService;iPodService; C:\Program Files\iPod\bin\iPodService.exe [2006-06-14 323584]
S3 LiveUpdate;LiveUpdate; C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE [2006-08-03 2119360]
S3 WMPNetworkSvc;Service Partage réseau du Lecteur Windows Media; C:\Program Files\Windows Media Player\WMPNetwk.exe [2006-11-03 918016]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------



15 Janvier 2010 10:05:03

Bonjour lietase,

fais la manip' d' Ad-Remover (merci C_XX) et poste le rapport : Ici

:) 

A+
15 Janvier 2010 11:02:56

.
======= RAPPORT D'AD-REMOVER 1.1.4.6_H | UNIQUEMENT XP/VISTA/7 =======
.
Mis à jour par C_XX le 14.01.2010 à 18:48
Contact: AdRemover.contact@gmail.com
Site web: http://pagesperso-orange.fr/NosTools/ad_remover.html
.
Lancé à: 10:53:14, 15/01/2010 | Mode Normal | Option: SCAN
Exécuté de: C:\Ad-Remover\
Système d'exploitation: Microsoft® Windows XP™ Service Pack 3 v5.1.2600
Nom du PC: ACER-E3B0141A93 | Utilisateur actuel: S‚verine LIETARD

.
============== ÉLÉMENT(S) TROUVÉ(S) ==============
.

C:\WINDOWS\Installer\{E1B94435-241E-4519-B1C3-C4DD9EB352A2}
C:\Program Files\Mozilla FireFox\Components\AskHPRFF.js
C:\Program Files\Mozilla FireFox\Components\AskSearch.js
C:\Program Files\EoRezo
C:\Program Files\Hotbar
C:\Program Files\Iminent
C:\Program Files\Kiwee Toolbar2
C:\DOCUME~1\SVERIN~1\APPLIC~1\EoRezo
C:\DOCUME~1\SVERIN~1\APPLIC~1\ItsLabel
C:\DOCUME~1\ALLUSE~1\APPLIC~1\Iminent
C:\DOCUME~1\ALLUSE~1\APPLIC~1\Kiwee Toolbar2
C:\Documents and Settings\S‚verine LIETARD\Local Settings\Application Data\Iminent
C:\Documents and Settings\S‚verine LIETARD\Local Settings\Application Data\Kiwee Toolbar2
C:\Windows\Installer\22c4e.msi
C:\Windows\Installer\e704b.msi
.
HKCU\software\AGI
HKCU\software\appdatalow\AskBarDis
HKCU\software\AskBarDis
HKCU\software\EoRezo
HKCU\software\hotbarsa
HKCU\software\Iminent
HKCU\software\ItsLabel
HKCU\Software\Microsoft\Internet Explorer\Explorer Bars\{2AA2FBF8-9C76-4E97-A226-25C5F4AB6358}
HKCU\software\microsoft\internet explorer\searchscopes\{41427F18-E891-4297-BD8C-4BB0E8EAF99F}
HKCU\software\microsoft\internet explorer\searchscopes\{BFFED5CA-8BDF-47CC-AED0-23F4E6D77732}
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{3041D03E-FD4B-44E0-B742-2D9B88305F98}
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{6638A9DE-0745-4292-8A2E-AE530E7B9B3F}
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{90B8B761-DF2B-48AC-BBE0-BCC03A819B3B}
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{90B8B761-DF2B-48AC-BBE0-BCC03A819B3B}
HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks\\{84FF7BD6-B47F-46F8-9130-01B2696B36CB}
HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB}
HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{64F56FC1-1272-44CD-BA6E-39723696E350}
HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{90b8b761-df2b-48ac-bbe0-bcc03a819b3b}
HKLM\software\AGI
HKLM\software\AskBarDis
HKLM\software\classes\AG.MediaPlayerCOM
HKLM\Software\Classes\CLSID\{0702a2b6-13aa-4090-9e01-bcdc85dd933f}
HKLM\Software\Classes\CLSID\{4260e0cc-0f75-462e-88a3-1e05c248bf4c}
HKLM\Software\Classes\CLSID\{4A7C84E2-E95C-43C6-8DD3-03ABCD0EB60E}
HKLM\Software\Classes\CLSID\{4CF088BD-BE95-40A5-BE9B-677F8683EDEA}
HKLM\Software\Classes\CLSID\{4D1C4E81-A32A-416b-BCDB-33B3EF3617D3}
HKLM\Software\Classes\CLSID\{4D1C4E89-A32A-416b-BCDB-33B3EF3617D3}
HKLM\Software\Classes\CLSID\{4D1C4E8B-A32A-416b-BCDB-33B3EF3617D3}
HKLM\Software\Classes\CLSID\{622fd888-4e91-4d68-84d4-7262fd0811bf}
HKLM\Software\Classes\CLSID\{630D6140-04C5-4db0-B27A-020D766FF09B}
HKLM\Software\Classes\CLSID\{64F56FC1-1272-44CD-BA6E-39723696E350}
HKLM\Software\Classes\CLSID\{6638A9DE-0745-4292-8A2E-AE530E7B9B3F}
HKLM\Software\Classes\CLSID\{696E3174-4F6C-4777-7834-654C4A705677}
HKLM\Software\Classes\CLSID\{6FAC4823-815E-4361-836E-46D65ED2550B}
HKLM\Software\Classes\CLSID\{84FF7BD6-B47F-46F8-9130-01B2696B36CB}
HKLM\Software\Classes\CLSID\{86C5840B-80C4-4C30-A655-37344A542009}
HKLM\Software\Classes\CLSID\{8BCB5337-EC01-4E38-840C-A964F174255B}
HKLM\Software\Classes\CLSID\{911F251E-34FD-465E-B6CE-DF00FF49A6BE}
HKLM\Software\Classes\CLSID\{A3E67DAA-DA01-4da5-98BE-3088B554A11E}
HKLM\Software\Classes\CLSID\{A5B6FA30-D317-41CA-9CB1-C898D3C7F34E}
HKLM\Software\Classes\CLSID\{A6E9BAAF-53CD-4575-967B-2AF710A7D21F}
HKLM\Software\Classes\CLSID\{A9C42A57-421C-4572-8B12-249C59183D1C}
HKLM\Software\Classes\CLSID\{b0de3308-5d5a-470d-81b9-634fc078393b}
HKLM\Software\Classes\CLSID\{D95C7240-0282-4c01-93F5-673BCA03DA86}
HKLM\Software\Classes\CLSID\{FE4F1649-8909-49C0-87BA-24D65120DB46}
HKLM\software\classes\EoRezoBHO.EoBho
HKLM\software\classes\EoRezoBHO.EoBho.1
HKLM\software\classes\IminentBHONavigationError.CHelperBHO
HKLM\software\classes\IminentBHONavigationError.CHelperBHO.1
HKLM\software\classes\IminentLinkToContent.LinkToContent
HKLM\software\classes\IminentLinkToContent.LinkToContent.1
HKLM\software\classes\installer\Products\53449B1EE14291541B3C4CDDE93B252A
HKLM\software\classes\installer\Products\C73660D04266C3348A703CD454AD1B48
HKLM\Software\Classes\Interface\{0CA97EEE-C8C4-4B10-A332-10AF1FBEB534}
HKLM\Software\Classes\Interface\{12FB9C3D-0875-4CAA-B3B1-9DCCCE749DE5}
HKLM\Software\Classes\Interface\{1C1793E0-1034-4CAC-837D-AA545F6961BF}
HKLM\Software\Classes\Interface\{2447E305-5E90-42A8-BD1E-0BC333B807E1}
HKLM\Software\Classes\Interface\{3E16A203-C0AA-4D44-ACC5-38A70A8C76DA}
HKLM\Software\Classes\Interface\{40CA90F3-4098-4877-AE87-23EB612B18C7}
HKLM\Software\Classes\Interface\{67B3BECF-7B6F-42B2-99F0-F7656F89CFFA}
HKLM\Software\Classes\Interface\{7E335D04-2E6E-4D0E-A921-C3D9192E7121}
HKLM\Software\Classes\Interface\{90F62EF7-58D1-4E8E-BB3E-CFB10BA9E47B}
HKLM\Software\Classes\Interface\{9A4A64A4-A2FB-48FA-9BBA-1AC50267695D}
HKLM\Software\Classes\Interface\{B0D071A1-36B3-4757-A126-14C89C56013A}
HKLM\Software\Classes\Interface\{B2B92BC9-E149-4EE8-A93E-0B8CFB329808}
HKLM\Software\Classes\Interface\{B671426C-5C1A-48AC-9652-BC9402B1C404}
HKLM\Software\Classes\Interface\{BFC20A15-B0AC-44CC-A25A-A7039014BA9F}
HKLM\Software\Classes\Interface\{C96B9FAE-A032-4100-BB47-32EF05E28BE4}
HKLM\Software\Classes\Interface\{E79B1445-DFEA-4BEF-A786-E0C0F33C863B}
HKLM\software\classes\KiweeIEToolbar.KiweeToolbar
HKLM\software\classes\KiweeIEToolbar.KiweeToolbar.1
HKLM\software\classes\KiweeIEToolbar.ToolbarInfo
HKLM\software\classes\KiweeIEToolbar.ToolbarInfo.1
HKLM\Software\Classes\TypeLib\{022C671F-6CBA-4A03-A8F9-3B3A361B235A}
HKLM\Software\Classes\TypeLib\{0729F461-8054-47DC-8D39-A31B61CC0119}
HKLM\Software\Classes\TypeLib\{2C6674DB-EFB5-464A-A715-3E770B9C8A94}
HKLM\Software\Classes\TypeLib\{305C6CB1-9D31-4489-881D-5A8E2DC3FE14}
HKLM\Software\Classes\TypeLib\{4B1C1E16-6B34-430E-B074-5928ECA4C150}
HKLM\Software\Classes\TypeLib\{4D1C4E80-A32A-416B-BCDB-33B3EF3617D3}
HKLM\Software\Classes\TypeLib\{587D1093-12E0-4B0E-9426-AF9DC5ABB77D}
HKLM\Software\Classes\TypeLib\{77860007-19AE-4C29-B26D-AEA48F3A05C5}
HKLM\Software\Classes\TypeLib\{8292078F-F6E9-412B-8EB1-360C05C5ECE5}
HKLM\Software\Classes\TypeLib\{8AD815FC-607B-419F-8B70-D345A507A54E}
HKLM\Software\Classes\TypeLib\{9FE6E4AA-800C-46A6-943D-DD83D90C25F0}
HKLM\Software\Classes\TypeLib\{B4C656C9-F2E9-4E77-B3F4-443DF2BD778F}
HKLM\software\EoRezo
HKLM\software\iAvatars.com
HKLM\software\Iminent
HKLM\software\ItsLabel
HKLM\software\Loader
HKLM\Software\Microsoft\Code Store Database\Distribution Units\CabBuilder
HKLM\Software\Microsoft\Internet Explorer\Explorer Bars\{2AA2FBF8-9C76-4E97-A226-25C5F4AB6358}
HKLM\software\microsoft\internet explorer\searchscopes\{CF739809-1C6C-47C0-85B9-569DBB141420}
HKLM\Software\Microsoft\Internet Explorer\Toolbar\\{90B8B761-DF2B-48AC-BBE0-BCC03A819B3B}
HKLM\Software\Microsoft\Internet Explorer\Toolbar\\{90B8B761-DF2B-48AC-BBE0-BCC03A819B3B}
HKLM\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\SearchTheWeb
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{64F56FC1-1272-44CD-BA6E-39723696E350}
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{84FF7BD6-B47F-46F8-9130-01B2696B36CB}
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A6E9BAAF-53CD-4575-967B-2AF710A7D21F}
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Products\53449B1EE14291541B3C4CDDE93B252A
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Products\C73660D04266C3348A703CD454AD1B48
HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Post Platform\\Hotbar 10.2.236.0
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\HotbarOE
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\IMBooster
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\Iminent.Notifier
HKLM\software\microsoft\windows\currentversion\uninstall\{0D06637C-6624-433C-A807-C34D45DAB184}
HKLM\software\microsoft\windows\currentversion\uninstall\{E1B94435-241E-4519-B1C3-C4DD9EB352A2}
HKLM\software\microsoft\windows\currentversion\uninstall\IMBooster
HKLM\software\microsoft\windows\currentversion\uninstall\SearchTheWeb
HKLM\Software\Mozilla\Firefox\Extensions\\Hotbar@Hotbar.com
HKU\s-1-5-21-2569472474-3953852920-1251360827-1006\software\AGI
HKU\s-1-5-21-2569472474-3953852920-1251360827-1006\software\appdatalow\AskBarDis
HKU\s-1-5-21-2569472474-3953852920-1251360827-1006\software\AskBarDis
HKU\s-1-5-21-2569472474-3953852920-1251360827-1006\software\EoRezo
HKU\s-1-5-21-2569472474-3953852920-1251360827-1006\software\hotbarsa
HKU\s-1-5-21-2569472474-3953852920-1251360827-1006\software\Iminent
HKU\s-1-5-21-2569472474-3953852920-1251360827-1006\software\ItsLabel
.
============== Scan additionnel ==============
.
.
* Internet Explorer Version 8.0.6001.18702 *
.
[HKEY_CURRENT_USER\..\Internet Explorer\Main]
.
Start Page: hxxp://go.microsoft.com/fwlink/?LinkId=69157
Do404Search: 01000000
Local Page: C:\WINDOWS\system32\blank.htm
Show_ToolBar: yes
Search Page: hxxp://g.msn.fr/0SEFRFR/SAOS01?FORM=TOOLBR
Enable Browser Extensions: yes
Use Search Asst: no
Default_Page_URL: hxxp://go.microsoft.com/fwlink/?LinkId=69157
Start Page Redirect Cache_TIMESTAMP: 06f1a6821495ca01
Start Page Redirect Cache: hxxp://fr.msn.com/?ocid=iehp
Start Page Redirect Cache AcceptLangs: fr
.
[HKEY_LOCAL_MACHINE\..\Internet Explorer\Main]
.
Default_Page_URL: hxxp://go.microsoft.com/fwlink/?LinkId=69157
Default_Search_URL: hxxp://go.microsoft.com/fwlink/?LinkId=54896
Search Page: hxxp://go.microsoft.com/fwlink/?LinkId=54896
Delete_Temp_Files_On_Exit: yes
Local Page: C:\WINDOWS\system32\blank.htm
Start Page: hxxp://www.msn.com/
.
[HKEY_LOCAL_MACHINE\..\Internet Explorer\ABOUTURLS]
.
Tabs: res://ieframe.dll/tabswelcome.htm
.
===================================
.
10434 Octet(s) - C:\Ad-Report-SCAN[1].log
.
9 Fichier(s) - C:\DOCUME~1\SVERIN~1\LOCALS~1\Temp
5 Fichier(s) - C:\WINDOWS\Temp
94 Fichier(s) - C:\WINDOWS\Prefetch
.
0 Fichier(s) - C:\Ad-Remover\BACKUP
0 Fichier(s) - C:\Ad-Remover\QUARANTINE
.
Fin à: 10:58:01 | 15/01/2010 - SCAN[1]
.
============== E.O.F ==============
.
15 Janvier 2010 15:34:34

Re,

ensuite fais celle-ci : Ici

:ange: 
15 Janvier 2010 16:12:06

.
======= RAPPORT D'AD-REMOVER 1.1.4.6_H | UNIQUEMENT XP/VISTA/7 =======
.
Mis à jour par C_XX le 14.01.2010 à 18:48
Contact: AdRemover.contact@gmail.com
Site web: http://pagesperso-orange.fr/NosTools/ad_remover.html
.
Lancé à: 16:02:27, 15/01/2010 | Mode Normal | Option: SCAN
Exécuté de: C:\Ad-Remover\
Système d'exploitation: Microsoft® Windows XP™ Service Pack 3 v5.1.2600
Nom du PC: ACER-E3B0141A93 | Utilisateur actuel: S‚verine LIETARD

.
============== ÉLÉMENT(S) TROUVÉ(S) ==============
.

C:\WINDOWS\Installer\{E1B94435-241E-4519-B1C3-C4DD9EB352A2}
C:\Program Files\Mozilla FireFox\Components\AskHPRFF.js
C:\Program Files\Mozilla FireFox\Components\AskSearch.js
C:\Program Files\EoRezo
C:\Program Files\Hotbar
C:\Program Files\Iminent
C:\Program Files\Kiwee Toolbar2
C:\DOCUME~1\SVERIN~1\APPLIC~1\EoRezo
C:\DOCUME~1\SVERIN~1\APPLIC~1\ItsLabel
C:\DOCUME~1\ALLUSE~1\APPLIC~1\Iminent
C:\DOCUME~1\ALLUSE~1\APPLIC~1\Kiwee Toolbar2
C:\Documents and Settings\S‚verine LIETARD\Local Settings\Application Data\Iminent
C:\Documents and Settings\S‚verine LIETARD\Local Settings\Application Data\Kiwee Toolbar2
C:\Windows\Installer\22c4e.msi
C:\Windows\Installer\e704b.msi
.
HKCU\software\AGI
HKCU\software\appdatalow\AskBarDis
HKCU\software\AskBarDis
HKCU\software\EoRezo
HKCU\software\hotbarsa
HKCU\software\Iminent
HKCU\software\ItsLabel
HKCU\Software\Microsoft\Internet Explorer\Explorer Bars\{2AA2FBF8-9C76-4E97-A226-25C5F4AB6358}
HKCU\software\microsoft\internet explorer\searchscopes\{41427F18-E891-4297-BD8C-4BB0E8EAF99F}
HKCU\software\microsoft\internet explorer\searchscopes\{BFFED5CA-8BDF-47CC-AED0-23F4E6D77732}
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{3041D03E-FD4B-44E0-B742-2D9B88305F98}
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{6638A9DE-0745-4292-8A2E-AE530E7B9B3F}
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{90B8B761-DF2B-48AC-BBE0-BCC03A819B3B}
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{90B8B761-DF2B-48AC-BBE0-BCC03A819B3B}
HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks\\{84FF7BD6-B47F-46F8-9130-01B2696B36CB}
HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB}
HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{64F56FC1-1272-44CD-BA6E-39723696E350}
HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{90b8b761-df2b-48ac-bbe0-bcc03a819b3b}
HKLM\software\AGI
HKLM\software\AskBarDis
HKLM\software\classes\AG.MediaPlayerCOM
HKLM\Software\Classes\CLSID\{0702a2b6-13aa-4090-9e01-bcdc85dd933f}
HKLM\Software\Classes\CLSID\{4260e0cc-0f75-462e-88a3-1e05c248bf4c}
HKLM\Software\Classes\CLSID\{4A7C84E2-E95C-43C6-8DD3-03ABCD0EB60E}
HKLM\Software\Classes\CLSID\{4CF088BD-BE95-40A5-BE9B-677F8683EDEA}
HKLM\Software\Classes\CLSID\{4D1C4E81-A32A-416b-BCDB-33B3EF3617D3}
HKLM\Software\Classes\CLSID\{4D1C4E89-A32A-416b-BCDB-33B3EF3617D3}
HKLM\Software\Classes\CLSID\{4D1C4E8B-A32A-416b-BCDB-33B3EF3617D3}
HKLM\Software\Classes\CLSID\{622fd888-4e91-4d68-84d4-7262fd0811bf}
HKLM\Software\Classes\CLSID\{630D6140-04C5-4db0-B27A-020D766FF09B}
HKLM\Software\Classes\CLSID\{64F56FC1-1272-44CD-BA6E-39723696E350}
HKLM\Software\Classes\CLSID\{6638A9DE-0745-4292-8A2E-AE530E7B9B3F}
HKLM\Software\Classes\CLSID\{696E3174-4F6C-4777-7834-654C4A705677}
HKLM\Software\Classes\CLSID\{6FAC4823-815E-4361-836E-46D65ED2550B}
HKLM\Software\Classes\CLSID\{84FF7BD6-B47F-46F8-9130-01B2696B36CB}
HKLM\Software\Classes\CLSID\{86C5840B-80C4-4C30-A655-37344A542009}
HKLM\Software\Classes\CLSID\{8BCB5337-EC01-4E38-840C-A964F174255B}
HKLM\Software\Classes\CLSID\{911F251E-34FD-465E-B6CE-DF00FF49A6BE}
HKLM\Software\Classes\CLSID\{A3E67DAA-DA01-4da5-98BE-3088B554A11E}
HKLM\Software\Classes\CLSID\{A5B6FA30-D317-41CA-9CB1-C898D3C7F34E}
HKLM\Software\Classes\CLSID\{A6E9BAAF-53CD-4575-967B-2AF710A7D21F}
HKLM\Software\Classes\CLSID\{A9C42A57-421C-4572-8B12-249C59183D1C}
HKLM\Software\Classes\CLSID\{b0de3308-5d5a-470d-81b9-634fc078393b}
HKLM\Software\Classes\CLSID\{D95C7240-0282-4c01-93F5-673BCA03DA86}
HKLM\Software\Classes\CLSID\{FE4F1649-8909-49C0-87BA-24D65120DB46}
HKLM\software\classes\EoRezoBHO.EoBho
HKLM\software\classes\EoRezoBHO.EoBho.1
HKLM\software\classes\IminentBHONavigationError.CHelperBHO
HKLM\software\classes\IminentBHONavigationError.CHelperBHO.1
HKLM\software\classes\IminentLinkToContent.LinkToContent
HKLM\software\classes\IminentLinkToContent.LinkToContent.1
HKLM\software\classes\installer\Products\53449B1EE14291541B3C4CDDE93B252A
HKLM\software\classes\installer\Products\C73660D04266C3348A703CD454AD1B48
HKLM\Software\Classes\Interface\{0CA97EEE-C8C4-4B10-A332-10AF1FBEB534}
HKLM\Software\Classes\Interface\{12FB9C3D-0875-4CAA-B3B1-9DCCCE749DE5}
HKLM\Software\Classes\Interface\{1C1793E0-1034-4CAC-837D-AA545F6961BF}
HKLM\Software\Classes\Interface\{2447E305-5E90-42A8-BD1E-0BC333B807E1}
HKLM\Software\Classes\Interface\{3E16A203-C0AA-4D44-ACC5-38A70A8C76DA}
HKLM\Software\Classes\Interface\{40CA90F3-4098-4877-AE87-23EB612B18C7}
HKLM\Software\Classes\Interface\{67B3BECF-7B6F-42B2-99F0-F7656F89CFFA}
HKLM\Software\Classes\Interface\{7E335D04-2E6E-4D0E-A921-C3D9192E7121}
HKLM\Software\Classes\Interface\{90F62EF7-58D1-4E8E-BB3E-CFB10BA9E47B}
HKLM\Software\Classes\Interface\{9A4A64A4-A2FB-48FA-9BBA-1AC50267695D}
HKLM\Software\Classes\Interface\{B0D071A1-36B3-4757-A126-14C89C56013A}
HKLM\Software\Classes\Interface\{B2B92BC9-E149-4EE8-A93E-0B8CFB329808}
HKLM\Software\Classes\Interface\{B671426C-5C1A-48AC-9652-BC9402B1C404}
HKLM\Software\Classes\Interface\{BFC20A15-B0AC-44CC-A25A-A7039014BA9F}
HKLM\Software\Classes\Interface\{C96B9FAE-A032-4100-BB47-32EF05E28BE4}
HKLM\Software\Classes\Interface\{E79B1445-DFEA-4BEF-A786-E0C0F33C863B}
HKLM\software\classes\KiweeIEToolbar.KiweeToolbar
HKLM\software\classes\KiweeIEToolbar.KiweeToolbar.1
HKLM\software\classes\KiweeIEToolbar.ToolbarInfo
HKLM\software\classes\KiweeIEToolbar.ToolbarInfo.1
HKLM\Software\Classes\TypeLib\{022C671F-6CBA-4A03-A8F9-3B3A361B235A}
HKLM\Software\Classes\TypeLib\{0729F461-8054-47DC-8D39-A31B61CC0119}
HKLM\Software\Classes\TypeLib\{2C6674DB-EFB5-464A-A715-3E770B9C8A94}
HKLM\Software\Classes\TypeLib\{305C6CB1-9D31-4489-881D-5A8E2DC3FE14}
HKLM\Software\Classes\TypeLib\{4B1C1E16-6B34-430E-B074-5928ECA4C150}
HKLM\Software\Classes\TypeLib\{4D1C4E80-A32A-416B-BCDB-33B3EF3617D3}
HKLM\Software\Classes\TypeLib\{587D1093-12E0-4B0E-9426-AF9DC5ABB77D}
HKLM\Software\Classes\TypeLib\{77860007-19AE-4C29-B26D-AEA48F3A05C5}
HKLM\Software\Classes\TypeLib\{8292078F-F6E9-412B-8EB1-360C05C5ECE5}
HKLM\Software\Classes\TypeLib\{8AD815FC-607B-419F-8B70-D345A507A54E}
HKLM\Software\Classes\TypeLib\{9FE6E4AA-800C-46A6-943D-DD83D90C25F0}
HKLM\Software\Classes\TypeLib\{B4C656C9-F2E9-4E77-B3F4-443DF2BD778F}
HKLM\software\EoRezo
HKLM\software\iAvatars.com
HKLM\software\Iminent
HKLM\software\ItsLabel
HKLM\software\Loader
HKLM\Software\Microsoft\Code Store Database\Distribution Units\CabBuilder
HKLM\Software\Microsoft\Internet Explorer\Explorer Bars\{2AA2FBF8-9C76-4E97-A226-25C5F4AB6358}
HKLM\software\microsoft\internet explorer\searchscopes\{CF739809-1C6C-47C0-85B9-569DBB141420}
HKLM\Software\Microsoft\Internet Explorer\Toolbar\\{90B8B761-DF2B-48AC-BBE0-BCC03A819B3B}
HKLM\Software\Microsoft\Internet Explorer\Toolbar\\{90B8B761-DF2B-48AC-BBE0-BCC03A819B3B}
HKLM\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\SearchTheWeb
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{64F56FC1-1272-44CD-BA6E-39723696E350}
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{84FF7BD6-B47F-46F8-9130-01B2696B36CB}
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A6E9BAAF-53CD-4575-967B-2AF710A7D21F}
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Products\53449B1EE14291541B3C4CDDE93B252A
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Products\C73660D04266C3348A703CD454AD1B48
HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Post Platform\\Hotbar 10.2.236.0
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\HotbarOE
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\IMBooster
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\Iminent.Notifier
HKLM\software\microsoft\windows\currentversion\uninstall\{0D06637C-6624-433C-A807-C34D45DAB184}
HKLM\software\microsoft\windows\currentversion\uninstall\{E1B94435-241E-4519-B1C3-C4DD9EB352A2}
HKLM\software\microsoft\windows\currentversion\uninstall\IMBooster
HKLM\software\microsoft\windows\currentversion\uninstall\SearchTheWeb
HKLM\Software\Mozilla\Firefox\Extensions\\Hotbar@Hotbar.com
HKU\s-1-5-21-2569472474-3953852920-1251360827-1006\software\AGI
HKU\s-1-5-21-2569472474-3953852920-1251360827-1006\software\appdatalow\AskBarDis
HKU\s-1-5-21-2569472474-3953852920-1251360827-1006\software\AskBarDis
HKU\s-1-5-21-2569472474-3953852920-1251360827-1006\software\EoRezo
HKU\s-1-5-21-2569472474-3953852920-1251360827-1006\software\hotbarsa
HKU\s-1-5-21-2569472474-3953852920-1251360827-1006\software\Iminent
HKU\s-1-5-21-2569472474-3953852920-1251360827-1006\software\ItsLabel
.
============== Scan additionnel ==============
.
.
* Internet Explorer Version 8.0.6001.18702 *
.
[HKEY_CURRENT_USER\..\Internet Explorer\Main]
.
Start Page: hxxp://go.microsoft.com/fwlink/?LinkId=69157
Do404Search: 01000000
Local Page: C:\WINDOWS\system32\blank.htm
Show_ToolBar: yes
Search Page: hxxp://g.msn.fr/0SEFRFR/SAOS01?FORM=TOOLBR
Enable Browser Extensions: yes
Use Search Asst: no
Default_Page_URL: hxxp://go.microsoft.com/fwlink/?LinkId=69157
Start Page Redirect Cache_TIMESTAMP: 06f1a6821495ca01
Start Page Redirect Cache: hxxp://fr.msn.com/?ocid=iehp
Start Page Redirect Cache AcceptLangs: fr
.
[HKEY_LOCAL_MACHINE\..\Internet Explorer\Main]
.
Default_Page_URL: hxxp://go.microsoft.com/fwlink/?LinkId=69157
Default_Search_URL: hxxp://go.microsoft.com/fwlink/?LinkId=54896
Search Page: hxxp://go.microsoft.com/fwlink/?LinkId=54896
Delete_Temp_Files_On_Exit: yes
Local Page: C:\WINDOWS\system32\blank.htm
Start Page: hxxp://www.msn.com/
.
[HKEY_LOCAL_MACHINE\..\Internet Explorer\ABOUTURLS]
.
Tabs: res://ieframe.dll/tabswelcome.htm
.
===================================
.
10772 Octet(s) - C:\Ad-Report-SCAN[1].log
10478 Octet(s) - C:\Ad-Report-SCAN[2].log
.
10 Fichier(s) - C:\DOCUME~1\SVERIN~1\LOCALS~1\Temp
5 Fichier(s) - C:\WINDOWS\Temp
95 Fichier(s) - C:\WINDOWS\Prefetch
.
1 Fichier(s) - C:\Ad-Remover\BACKUP
0 Fichier(s) - C:\Ad-Remover\QUARANTINE
.
Fin à: 16:05:25 | 15/01/2010 - SCAN[2]
.
============== E.O.F ==============
.
15 Janvier 2010 18:26:18

1) Télécharge :
CCleaner - Slim : http://www.ccleaner.com/download/builds.aspx
Lance-le puis clique sur Options>Avancé et décoche Effacer uniquement les fichiers Temp de Windows datant de+ de 24 heures. Laisse-le avec ses réglages par défaut et ferme le programme pour l' instant.

Malwarebytes' Anti-Malware : Ici
Lance-le et une fois l' exécutable téléchargé, double-clique sur mbam-setup.exe, l' installation commence. Laisse-toi guider par l' assistant : Choix de la langue, acceptation de la licence, dossier par défaut... Pense à cocher la case Créer une icône sur le Bureau. Tu arrives à présent à la fin de l' installation, ferme le programme pour l' instant.

2) Lance CCleaner :
Dans le menu Nettoyeur, clique sur Analyse (laisse-le travailler, cela peut durer longtemps).
Puis clique sur le bouton Lancer le nettoyage.
Fais cela plusieurs fois et ferme CCleaner

3) Lance Malwarebytes' Anti-Malware :
Tuto : http://forum.pcastuces.com/malwarebytes_anti_malware___...

4) Poste le rapport Malwarebytes' Anti-Malware.

Edit : Manip'
15 Janvier 2010 21:07:51

Bon je comprends rien mais j'esaie... je dois le nettoyer ? Explique moi pour pas que je refasse les me^mes erreurs...je sais âs si tu vas résoudre ce problème mais d'avance merci et chapeau!

Malwarebytes' Anti-Malware 1.44
Version de la base de données: 3570
Windows 5.1.2600 Service Pack 3
Internet Explorer 8.0.6001.18702

15/01/2010 21:00:18
mbam-log-2010-01-15 (21-00-12).txt

Type de recherche: Examen complet (C:\|D:\|E:\|F:\|G:\|H:\|I:\|)
Eléments examinés: 174527
Temps écoulé: 54 minute(s), 11 second(s)

Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 49
Valeur(s) du Registre infectée(s): 4
Elément(s) de données du Registre infecté(s): 2
Dossier(s) infecté(s): 3
Fichier(s) infecté(s): 23

Processus mémoire infecté(s):
(Aucun élément nuisible détecté)

Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)

Clé(s) du Registre infectée(s):
HKEY_CLASSES_ROOT\smart-shopper.hbax (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\smart-shopper.hbax.1 (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\smart-shopper.hbinfoband (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\smart-shopper.hbinfoband.1 (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\smart-shopper.iebutton (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\smart-shopper.iebutton.1 (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\smart-shopper.iebuttona (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\smart-shopper.iebuttona.1 (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\smart-shopper.iebuttonb (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\smart-shopper.iebuttonb.1 (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\smart-shopper.smrt-shprctrl (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\smart-shopper.smrt-shprctrl.1 (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{1c1793e0-1034-4cac-837d-aa545f6961bf} (Adware.Hotbar) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{5d16197a-1eaa-45af-b29a-69f1aa055e87} (Adware.Hotbar) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{90f62ef7-58d1-4e8e-bb3e-cfb10ba9e47b} (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{b2b92bc9-e149-4ee8-a93e-0b8cfb329808} (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{b671426c-5c1a-48ac-9652-bc9402b1c404} (Adware.Hotbar) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{e79b1445-dfea-4bef-a786-e0c0f33c863b} (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{4d1c4e81-a32a-416b-bcdb-33b3ef3617d3} (Adware.Need2Find) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{2ab289ae-4b90-4281-b2ae-1f4bb034b647} (Trojan.Agent) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{4a7c84e2-e95c-43c6-8dd3-03abcd0eb60e} (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{4cf088bd-be95-40a5-be9b-677f8683edea} (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{6fac4823-815e-4361-836e-46d65ed2550b} (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{8bcb5337-ec01-4e38-840c-a964f174255b} (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{911f251e-34fd-465e-b6ce-df00ff49a6be} (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{fe4f1649-8909-49c0-87ba-24d65120db46} (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\Typelib\{9fe6e4aa-800c-46a6-943d-dd83d90c25f0} (Adware.Hotbar) -> No action taken.
HKEY_CLASSES_ROOT\Typelib\{022c671f-6cba-4a03-a8f9-3b3a361b235a} (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\Typelib\{305c6cb1-9d31-4489-881d-5a8e2dc3fe14} (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\Typelib\{8ad815fc-607b-419f-8b70-d345a507a54e} (Adware.SmartShopper) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{8bcb5337-ec01-4e38-840c-a964f174255b} (Adware.SmartShopper) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{1d4db7d2-6ec9-47a3-bd87-1e41684e07bb} (Adware.MyWebSearch) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{90b8b761-df2b-48ac-bbe0-bcc03a819b3b} (Adware.Zango) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{09f1adac-76d8-4d0f-99a5-5c907dadb988} (Rogue.Multiple) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{b64f4a7c-97c9-11da-8bde-f66bad1e3f3a} (Rogue.WinAntiVirus) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{6ae02e1c-8859-4f57-9097-5a55a56a4caf} (Trojan.BHO) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{4a7c84e2-e95c-43c6-8dd3-03abcd0eb60e} (Adware.SmartShopper) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{8bcb5337-ec01-4e38-840c-a964f174255b} (Adware.SmartShopper) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{3cc3d8fe-f0e0-4dd1-a69a-8c56bcc7bebf} (Adware.SmartShopper) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{3cc3d8fe-f0e0-4dd1-a69a-8c56bcc7bec0} (Adware.SmartShopper) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{90b8b761-df2b-48ac-bbe0-bcc03a819b3b} (Adware.Zango) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{4a7c84e2-e95c-43c6-8dd3-03abcd0eb60e} (Adware.SmartShopper) -> No action taken.
HKEY_CURRENT_USER\Software\hotbarsa (Adware.Hotbar) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Smart-Shopper (Adware.SmartShopper) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Smart-Shopper (Adware.SmartShopper) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Smart-Shopper (Adware.SmartShopper) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\EoRezo (Rogue.Eorezo) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{59879fa4-4790-461c-a1cc-4ec4de4ca483} (Trojan.BHO) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{59879fa4-4790-461c-a1cc-4ec4de4ca483} (Trojan.BHO) -> No action taken.

Valeur(s) du Registre infectée(s):
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Extensions\CmdMapping\{3cc3d8fe-f0e0-4dd1-a69a-8c56bcc7bebf} (Adware.SmartShopper) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Extensions\CmdMapping\{3cc3d8fe-f0e0-4dd1-a69a-8c56bcc7bec0} (Adware.SmartShopper) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{90b8b761-df2b-48ac-bbe0-bcc03a819b3b} (Adware.Zango) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{90b8b761-df2b-48ac-bbe0-bcc03a819b3b} (Adware.Zango) -> No action taken.

Elément(s) de données du Registre infecté(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken.

Dossier(s) infecté(s):
C:\Program Files\Hotbar (Adware.Hotbar) -> No action taken.
C:\Program Files\Hotbar\bin (Adware.Hotbar) -> No action taken.
C:\Program Files\Hotbar\bin\10.2.236.0 (Adware.Hotbar) -> No action taken.

Fichier(s) infecté(s):
C:\Program Files\EoRezo\EoEngine.exe (Rogue.Eorezo) -> No action taken.
C:\Program Files\EoRezo\EoAdv\EoAdv.dll (Rogue.Eorezo) -> No action taken.
C:\Program Files\Hotbar\bin\10.2.236.0\HostOE.dll (Adware.Seekmo) -> No action taken.
C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP1117\A0148693.exe (Adware.Seekmo) -> No action taken.
C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP1117\A0148683.exe (Adware.Seekmo) -> No action taken.
C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP1117\A0148684.dll (Adware.Seekmo) -> No action taken.
C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP1117\A0148685.dll (Adware.Seekmo) -> No action taken.
C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP1117\A0148687.dll (Adware.Seekmo) -> No action taken.
C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP1117\A0148688.dll (Adware.Seekmo) -> No action taken.
C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP1117\A0148689.dll (Adware.Seekmo) -> No action taken.
C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP1117\A0148690.dll (Adware.Zango) -> No action taken.
C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP1117\A0148691.exe (Adware.Seekmo) -> No action taken.
C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP1117\A0148692.dll (Adware.Seekmo) -> No action taken.
C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP1117\A0148695.exe (Adware.Seekmo) -> No action taken.
C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP1117\A0148696.exe (Adware.Seekmo) -> No action taken.
C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP1117\A0148697.dll (Adware.Seekmo) -> No action taken.
C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP1117\A0148698.dll (Adware.Seekmo) -> No action taken.
C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP1117\A0148699.exe (Adware.Seekmo) -> No action taken.
C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP1117\A0148700.dll (Adware.Seekmo) -> No action taken.
C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP1117\A0148715.dll (Adware.SmartShopper) -> No action taken.
C:\ToolBar SD\Backup-TB\Program Files\Hotbar\bin\HostOE.dll (Adware.Seekmo) -> No action taken.
C:\ToolBar SD\Backup-TB\Program Files\Hotbar\bin\10.2.236.0\HostOE.dll (Adware.Seekmo) -> No action taken.
C:\Documents and Settings\Séverine LIETARD\Application Data\errorsafefrenchnewreleaseinstall[1].exe (Rogue.Installer) -> No action taken.
16 Janvier 2010 01:25:23

Bonsoir lietase,

le rapport MBAM indique Aucune action entreprise
Refais la manip' et supprime tout ce qu' il trouve...

A+
16 Janvier 2010 13:08:57

Malwarebytes' Anti-Malware 1.44
Version de la base de données: 3570
Windows 5.1.2600 Service Pack 3
Internet Explorer 8.0.6001.18702

16/01/2010 13:07:00
mbam-log-2010-01-16 (13-06-54).txt

Type de recherche: Examen complet (C:\|D:\|E:\|F:\|G:\|H:\|I:\|)
Eléments examinés: 174313
Temps écoulé: 3 hour(s), 24 minute(s), 22 second(s)

Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 49
Valeur(s) du Registre infectée(s): 4
Elément(s) de données du Registre infecté(s): 2
Dossier(s) infecté(s): 3
Fichier(s) infecté(s): 23

Processus mémoire infecté(s):
(Aucun élément nuisible détecté)

Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)

Clé(s) du Registre infectée(s):
HKEY_CLASSES_ROOT\smart-shopper.hbax (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\smart-shopper.hbax.1 (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\smart-shopper.hbinfoband (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\smart-shopper.hbinfoband.1 (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\smart-shopper.iebutton (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\smart-shopper.iebutton.1 (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\smart-shopper.iebuttona (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\smart-shopper.iebuttona.1 (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\smart-shopper.iebuttonb (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\smart-shopper.iebuttonb.1 (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\smart-shopper.smrt-shprctrl (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\smart-shopper.smrt-shprctrl.1 (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{1c1793e0-1034-4cac-837d-aa545f6961bf} (Adware.Hotbar) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{5d16197a-1eaa-45af-b29a-69f1aa055e87} (Adware.Hotbar) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{90f62ef7-58d1-4e8e-bb3e-cfb10ba9e47b} (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{b2b92bc9-e149-4ee8-a93e-0b8cfb329808} (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{b671426c-5c1a-48ac-9652-bc9402b1c404} (Adware.Hotbar) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{e79b1445-dfea-4bef-a786-e0c0f33c863b} (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{4d1c4e81-a32a-416b-bcdb-33b3ef3617d3} (Adware.Need2Find) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{2ab289ae-4b90-4281-b2ae-1f4bb034b647} (Trojan.Agent) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{4a7c84e2-e95c-43c6-8dd3-03abcd0eb60e} (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{4cf088bd-be95-40a5-be9b-677f8683edea} (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{6fac4823-815e-4361-836e-46d65ed2550b} (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{8bcb5337-ec01-4e38-840c-a964f174255b} (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{911f251e-34fd-465e-b6ce-df00ff49a6be} (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{fe4f1649-8909-49c0-87ba-24d65120db46} (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\Typelib\{9fe6e4aa-800c-46a6-943d-dd83d90c25f0} (Adware.Hotbar) -> No action taken.
HKEY_CLASSES_ROOT\Typelib\{022c671f-6cba-4a03-a8f9-3b3a361b235a} (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\Typelib\{305c6cb1-9d31-4489-881d-5a8e2dc3fe14} (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\Typelib\{8ad815fc-607b-419f-8b70-d345a507a54e} (Adware.SmartShopper) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{8bcb5337-ec01-4e38-840c-a964f174255b} (Adware.SmartShopper) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{1d4db7d2-6ec9-47a3-bd87-1e41684e07bb} (Adware.MyWebSearch) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{90b8b761-df2b-48ac-bbe0-bcc03a819b3b} (Adware.Zango) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{09f1adac-76d8-4d0f-99a5-5c907dadb988} (Rogue.Multiple) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{b64f4a7c-97c9-11da-8bde-f66bad1e3f3a} (Rogue.WinAntiVirus) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{6ae02e1c-8859-4f57-9097-5a55a56a4caf} (Trojan.BHO) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{4a7c84e2-e95c-43c6-8dd3-03abcd0eb60e} (Adware.SmartShopper) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{8bcb5337-ec01-4e38-840c-a964f174255b} (Adware.SmartShopper) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{3cc3d8fe-f0e0-4dd1-a69a-8c56bcc7bebf} (Adware.SmartShopper) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{3cc3d8fe-f0e0-4dd1-a69a-8c56bcc7bec0} (Adware.SmartShopper) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{90b8b761-df2b-48ac-bbe0-bcc03a819b3b} (Adware.Zango) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{4a7c84e2-e95c-43c6-8dd3-03abcd0eb60e} (Adware.SmartShopper) -> No action taken.
HKEY_CURRENT_USER\Software\hotbarsa (Adware.Hotbar) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Smart-Shopper (Adware.SmartShopper) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Smart-Shopper (Adware.SmartShopper) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Smart-Shopper (Adware.SmartShopper) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\EoRezo (Rogue.Eorezo) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{59879fa4-4790-461c-a1cc-4ec4de4ca483} (Trojan.BHO) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{59879fa4-4790-461c-a1cc-4ec4de4ca483} (Trojan.BHO) -> No action taken.

Valeur(s) du Registre infectée(s):
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Extensions\CmdMapping\{3cc3d8fe-f0e0-4dd1-a69a-8c56bcc7bebf} (Adware.SmartShopper) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Extensions\CmdMapping\{3cc3d8fe-f0e0-4dd1-a69a-8c56bcc7bec0} (Adware.SmartShopper) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{90b8b761-df2b-48ac-bbe0-bcc03a819b3b} (Adware.Zango) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{90b8b761-df2b-48ac-bbe0-bcc03a819b3b} (Adware.Zango) -> No action taken.

Elément(s) de données du Registre infecté(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken.

Dossier(s) infecté(s):
C:\Program Files\Hotbar (Adware.Hotbar) -> No action taken.
C:\Program Files\Hotbar\bin (Adware.Hotbar) -> No action taken.
C:\Program Files\Hotbar\bin\10.2.236.0 (Adware.Hotbar) -> No action taken.

Fichier(s) infecté(s):
C:\Program Files\EoRezo\EoEngine.exe (Rogue.Eorezo) -> No action taken.
C:\Program Files\EoRezo\EoAdv\EoAdv.dll (Rogue.Eorezo) -> No action taken.
C:\Program Files\Hotbar\bin\10.2.236.0\HostOE.dll (Adware.Seekmo) -> No action taken.
C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP1117\A0148693.exe (Adware.Seekmo) -> No action taken.
C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP1117\A0148683.exe (Adware.Seekmo) -> No action taken.
C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP1117\A0148684.dll (Adware.Seekmo) -> No action taken.
C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP1117\A0148685.dll (Adware.Seekmo) -> No action taken.
C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP1117\A0148687.dll (Adware.Seekmo) -> No action taken.
C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP1117\A0148688.dll (Adware.Seekmo) -> No action taken.
C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP1117\A0148689.dll (Adware.Seekmo) -> No action taken.
C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP1117\A0148690.dll (Adware.Zango) -> No action taken.
C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP1117\A0148691.exe (Adware.Seekmo) -> No action taken.
C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP1117\A0148692.dll (Adware.Seekmo) -> No action taken.
C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP1117\A0148695.exe (Adware.Seekmo) -> No action taken.
C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP1117\A0148696.exe (Adware.Seekmo) -> No action taken.
C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP1117\A0148697.dll (Adware.Seekmo) -> No action taken.
C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP1117\A0148698.dll (Adware.Seekmo) -> No action taken.
C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP1117\A0148699.exe (Adware.Seekmo) -> No action taken.
C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP1117\A0148700.dll (Adware.Seekmo) -> No action taken.
C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP1117\A0148715.dll (Adware.SmartShopper) -> No action taken.
C:\ToolBar SD\Backup-TB\Program Files\Hotbar\bin\HostOE.dll (Adware.Seekmo) -> No action taken.
C:\ToolBar SD\Backup-TB\Program Files\Hotbar\bin\10.2.236.0\HostOE.dll (Adware.Seekmo) -> No action taken.
C:\Documents and Settings\Séverine LIETARD\Application Data\errorsafefrenchnewreleaseinstall[1].exe (Rogue.Installer) -> No action taken.
16 Janvier 2010 15:41:27

Bonjour lietase,

as-tu supprimé tout ce qu' a trouvé MBAM :sarcastic: ?
Si oui poste le rapport...

A+
Edit : Mep
16 Janvier 2010 19:22:08

bEN OUI!
je le refais lundi et je te posterai le résultat
18 Janvier 2010 10:11:23

:??:  Oui comme convenu je l'ai refais et j'ai supprimé un fichier
j'ai fais une analyse détaillée

Malwarebytes' Anti-Malware 1.44
Version de la base de données: 3570
Windows 5.1.2600 Service Pack 3
Internet Explorer 8.0.6001.18702

18/01/2010 10:04:47
mbam-log-2010-01-18 (10-04-16).txt

Type de recherche: Examen complet (C:\|D:\|E:\|F:\|G:\|H:\|I:\|)
Eléments examinés: 174442
Temps écoulé: 40 minute(s), 3 second(s)

Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 49
Valeur(s) du Registre infectée(s): 4
Elément(s) de données du Registre infecté(s): 2
Dossier(s) infecté(s): 3
Fichier(s) infecté(s): 23

Processus mémoire infecté(s):
(Aucun élément nuisible détecté)

Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)

Clé(s) du Registre infectée(s):
HKEY_CLASSES_ROOT\smart-shopper.hbax (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\smart-shopper.hbax.1 (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\smart-shopper.hbinfoband (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\smart-shopper.hbinfoband.1 (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\smart-shopper.iebutton (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\smart-shopper.iebutton.1 (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\smart-shopper.iebuttona (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\smart-shopper.iebuttona.1 (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\smart-shopper.iebuttonb (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\smart-shopper.iebuttonb.1 (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\smart-shopper.smrt-shprctrl (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\smart-shopper.smrt-shprctrl.1 (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{1c1793e0-1034-4cac-837d-aa545f6961bf} (Adware.Hotbar) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{5d16197a-1eaa-45af-b29a-69f1aa055e87} (Adware.Hotbar) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{90f62ef7-58d1-4e8e-bb3e-cfb10ba9e47b} (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{b2b92bc9-e149-4ee8-a93e-0b8cfb329808} (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{b671426c-5c1a-48ac-9652-bc9402b1c404} (Adware.Hotbar) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{e79b1445-dfea-4bef-a786-e0c0f33c863b} (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{4d1c4e81-a32a-416b-bcdb-33b3ef3617d3} (Adware.Need2Find) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{2ab289ae-4b90-4281-b2ae-1f4bb034b647} (Trojan.Agent) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{4a7c84e2-e95c-43c6-8dd3-03abcd0eb60e} (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{4cf088bd-be95-40a5-be9b-677f8683edea} (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{6fac4823-815e-4361-836e-46d65ed2550b} (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{8bcb5337-ec01-4e38-840c-a964f174255b} (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{911f251e-34fd-465e-b6ce-df00ff49a6be} (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{fe4f1649-8909-49c0-87ba-24d65120db46} (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\Typelib\{9fe6e4aa-800c-46a6-943d-dd83d90c25f0} (Adware.Hotbar) -> No action taken.
HKEY_CLASSES_ROOT\Typelib\{022c671f-6cba-4a03-a8f9-3b3a361b235a} (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\Typelib\{305c6cb1-9d31-4489-881d-5a8e2dc3fe14} (Adware.SmartShopper) -> No action taken.
HKEY_CLASSES_ROOT\Typelib\{8ad815fc-607b-419f-8b70-d345a507a54e} (Adware.SmartShopper) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{8bcb5337-ec01-4e38-840c-a964f174255b} (Adware.SmartShopper) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{1d4db7d2-6ec9-47a3-bd87-1e41684e07bb} (Adware.MyWebSearch) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{90b8b761-df2b-48ac-bbe0-bcc03a819b3b} (Adware.Zango) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{09f1adac-76d8-4d0f-99a5-5c907dadb988} (Rogue.Multiple) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{b64f4a7c-97c9-11da-8bde-f66bad1e3f3a} (Rogue.WinAntiVirus) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{6ae02e1c-8859-4f57-9097-5a55a56a4caf} (Trojan.BHO) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{4a7c84e2-e95c-43c6-8dd3-03abcd0eb60e} (Adware.SmartShopper) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{8bcb5337-ec01-4e38-840c-a964f174255b} (Adware.SmartShopper) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{3cc3d8fe-f0e0-4dd1-a69a-8c56bcc7bebf} (Adware.SmartShopper) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{3cc3d8fe-f0e0-4dd1-a69a-8c56bcc7bec0} (Adware.SmartShopper) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{90b8b761-df2b-48ac-bbe0-bcc03a819b3b} (Adware.Zango) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{4a7c84e2-e95c-43c6-8dd3-03abcd0eb60e} (Adware.SmartShopper) -> No action taken.
HKEY_CURRENT_USER\Software\hotbarsa (Adware.Hotbar) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Smart-Shopper (Adware.SmartShopper) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Smart-Shopper (Adware.SmartShopper) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Smart-Shopper (Adware.SmartShopper) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\EoRezo (Rogue.Eorezo) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{59879fa4-4790-461c-a1cc-4ec4de4ca483} (Trojan.BHO) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{59879fa4-4790-461c-a1cc-4ec4de4ca483} (Trojan.BHO) -> No action taken.

Valeur(s) du Registre infectée(s):
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Extensions\CmdMapping\{3cc3d8fe-f0e0-4dd1-a69a-8c56bcc7bebf} (Adware.SmartShopper) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Extensions\CmdMapping\{3cc3d8fe-f0e0-4dd1-a69a-8c56bcc7bec0} (Adware.SmartShopper) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{90b8b761-df2b-48ac-bbe0-bcc03a819b3b} (Adware.Zango) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{90b8b761-df2b-48ac-bbe0-bcc03a819b3b} (Adware.Zango) -> No action taken.

Elément(s) de données du Registre infecté(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken.

Dossier(s) infecté(s):
C:\Program Files\Hotbar (Adware.Hotbar) -> No action taken.
C:\Program Files\Hotbar\bin (Adware.Hotbar) -> No action taken.
C:\Program Files\Hotbar\bin\10.2.236.0 (Adware.Hotbar) -> No action taken.

Fichier(s) infecté(s):
C:\Program Files\EoRezo\EoEngine.exe (Rogue.Eorezo) -> No action taken.
C:\Program Files\EoRezo\EoAdv\EoAdv.dll (Rogue.Eorezo) -> No action taken.
C:\Program Files\Hotbar\bin\10.2.236.0\HostOE.dll (Adware.Seekmo) -> No action taken.
C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP1117\A0148693.exe (Adware.Seekmo) -> No action taken.
C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP1117\A0148683.exe (Adware.Seekmo) -> No action taken.
C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP1117\A0148684.dll (Adware.Seekmo) -> No action taken.
C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP1117\A0148685.dll (Adware.Seekmo) -> No action taken.
C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP1117\A0148687.dll (Adware.Seekmo) -> No action taken.
C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP1117\A0148688.dll (Adware.Seekmo) -> No action taken.
C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP1117\A0148689.dll (Adware.Seekmo) -> No action taken.
C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP1117\A0148690.dll (Adware.Zango) -> No action taken.
C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP1117\A0148691.exe (Adware.Seekmo) -> No action taken.
C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP1117\A0148692.dll (Adware.Seekmo) -> No action taken.
C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP1117\A0148695.exe (Adware.Seekmo) -> No action taken.
C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP1117\A0148696.exe (Adware.Seekmo) -> No action taken.
C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP1117\A0148697.dll (Adware.Seekmo) -> No action taken.
C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP1117\A0148698.dll (Adware.Seekmo) -> No action taken.
C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP1117\A0148699.exe (Adware.Seekmo) -> No action taken.
C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP1117\A0148700.dll (Adware.Seekmo) -> No action taken.
C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP1117\A0148715.dll (Adware.SmartShopper) -> No action taken.
C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP1119\A0148965.exe (Rogue.Installer) -> No action taken.
C:\ToolBar SD\Backup-TB\Program Files\Hotbar\bin\HostOE.dll (Adware.Seekmo) -> No action taken.
C:\ToolBar SD\Backup-TB\Program Files\Hotbar\bin\10.2.236.0\HostOE.dll (Adware.Seekmo) -> No action taken.
18 Janvier 2010 11:50:28

Cette fois ci c'est peut etre la bonne, il a redémarré super vite... j'avais pas bien compris ce que tu me demandais. là j'ai tout supprimé je pense...

Malwarebytes' Anti-Malware 1.44
Version de la base de données: 3510
Windows 5.1.2600 Service Pack 3
Internet Explorer 8.0.6001.18702

18/01/2010 11:44:00
mbam-log-2010-01-18 (11-44-00).txt

Type de recherche: Examen rapide
Eléments examinés: 105272
Temps écoulé: 3 minute(s), 59 second(s)

Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 48
Valeur(s) du Registre infectée(s): 4
Elément(s) de données du Registre infecté(s): 2
Dossier(s) infecté(s): 3
Fichier(s) infecté(s): 1

Processus mémoire infecté(s):
(Aucun élément nuisible détecté)

Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)

Clé(s) du Registre infectée(s):
HKEY_CLASSES_ROOT\smart-shopper.hbax (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\smart-shopper.hbax.1 (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\smart-shopper.hbinfoband (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\smart-shopper.hbinfoband.1 (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\smart-shopper.iebutton (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\smart-shopper.iebutton.1 (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\smart-shopper.iebuttona (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\smart-shopper.iebuttona.1 (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\smart-shopper.iebuttonb (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\smart-shopper.iebuttonb.1 (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\smart-shopper.smrt-shprctrl (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\smart-shopper.smrt-shprctrl.1 (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{1c1793e0-1034-4cac-837d-aa545f6961bf} (Adware.Hotbar) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{5d16197a-1eaa-45af-b29a-69f1aa055e87} (Adware.Hotbar) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{90f62ef7-58d1-4e8e-bb3e-cfb10ba9e47b} (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{b2b92bc9-e149-4ee8-a93e-0b8cfb329808} (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{b671426c-5c1a-48ac-9652-bc9402b1c404} (Adware.Hotbar) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{e79b1445-dfea-4bef-a786-e0c0f33c863b} (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{4d1c4e81-a32a-416b-bcdb-33b3ef3617d3} (Adware.Need2Find) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{2ab289ae-4b90-4281-b2ae-1f4bb034b647} (Trojan.Agent) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{4a7c84e2-e95c-43c6-8dd3-03abcd0eb60e} (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{4cf088bd-be95-40a5-be9b-677f8683edea} (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{6fac4823-815e-4361-836e-46d65ed2550b} (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{8bcb5337-ec01-4e38-840c-a964f174255b} (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{911f251e-34fd-465e-b6ce-df00ff49a6be} (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{fe4f1649-8909-49c0-87ba-24d65120db46} (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Typelib\{9fe6e4aa-800c-46a6-943d-dd83d90c25f0} (Adware.Hotbar) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Typelib\{022c671f-6cba-4a03-a8f9-3b3a361b235a} (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Typelib\{305c6cb1-9d31-4489-881d-5a8e2dc3fe14} (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Typelib\{8ad815fc-607b-419f-8b70-d345a507a54e} (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{8bcb5337-ec01-4e38-840c-a964f174255b} (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{1d4db7d2-6ec9-47a3-bd87-1e41684e07bb} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{90b8b761-df2b-48ac-bbe0-bcc03a819b3b} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{09f1adac-76d8-4d0f-99a5-5c907dadb988} (Rogue.Multiple) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{b64f4a7c-97c9-11da-8bde-f66bad1e3f3a} (Rogue.WinAntiVirus) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{6ae02e1c-8859-4f57-9097-5a55a56a4caf} (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{4a7c84e2-e95c-43c6-8dd3-03abcd0eb60e} (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{8bcb5337-ec01-4e38-840c-a964f174255b} (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{3cc3d8fe-f0e0-4dd1-a69a-8c56bcc7bebf} (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{3cc3d8fe-f0e0-4dd1-a69a-8c56bcc7bec0} (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{90b8b761-df2b-48ac-bbe0-bcc03a819b3b} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{4a7c84e2-e95c-43c6-8dd3-03abcd0eb60e} (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Smart-Shopper (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Smart-Shopper (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Smart-Shopper (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\EoRezo (Rogue.Eorezo) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{59879fa4-4790-461c-a1cc-4ec4de4ca483} (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{59879fa4-4790-461c-a1cc-4ec4de4ca483} (Trojan.BHO) -> Quarantined and deleted successfully.

Valeur(s) du Registre infectée(s):
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Extensions\CmdMapping\{3cc3d8fe-f0e0-4dd1-a69a-8c56bcc7bebf} (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Extensions\CmdMapping\{3cc3d8fe-f0e0-4dd1-a69a-8c56bcc7bec0} (Adware.SmartShopper) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{90b8b761-df2b-48ac-bbe0-bcc03a819b3b} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{90b8b761-df2b-48ac-bbe0-bcc03a819b3b} (Adware.Zango) -> Quarantined and deleted successfully.

Elément(s) de données du Registre infecté(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.

Dossier(s) infecté(s):
C:\Program Files\Hotbar (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Program Files\Hotbar\bin (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Program Files\Hotbar\bin\10.2.236.0 (Adware.Hotbar) -> Quarantined and deleted successfully.

Fichier(s) infecté(s):
C:\Program Files\Hotbar\bin\10.2.236.0\HostOE.dll (Adware.Hotbar) -> Quarantined and deleted successfully.
18 Janvier 2010 23:21:18

Bonsoir lietase,

fais la manip' de ComboFix (merci sUBs) et poste le rapport : Ici

A+
19 Janvier 2010 12:47:26

désolée mais je n'y arrive pas , il me dit que le fichier combofix éxiste déjà mais je ne sais pas ou ?
19 Janvier 2010 19:17:30

Bonsoir lietase,

fais démarrer>Exécuter puis tape ComboFix /uninstall>Ok
Et refais scrupuleusement la manip' de ComboFix : Ici

A+
20 Janvier 2010 09:40:05

Message : Windows n'a pas trouvé de fichier ComboFix...

j'ao donc rééesayé avec le lien ci dessus, il me dit : vous ne pouvez pas renommer le fichier comboFix en comboFix 1 ? Utiliser des caractères alphanumériques...

Pour info, mon ordi n'a pas redémarré ce matin, j'ai encore galéré, c'est la poisse !
20 Janvier 2010 11:32:58

Ca y'est j'ai réussi! voila le rapport :

ComboFix 10-01-19.06 - Séverine LIETARD 20/01/2010 11:26:34.1.1 - x86
Microsoft Windows XP Édition familiale 5.1.2600.3.1252.33.1036.18.1023.615 [GMT 1:00]
Lancé depuis: c:\documents and settings\Séverine LIETARD\Bureau\ComboFix.exe
AV: avast! antivirus 4.8.1368 [VPS 100119-1] *On-access scanning disabled* (Updated) {7591DB91-41F0-48A3-B128-1A293FD8233D}
.

(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\recycler\S-1-5-21-1718429716-1672394343-3555341708-1003
c:\windows\system32\autorun.ini

.
((((((((((((((((((((((((((((( Fichiers créés du 2009-12-20 au 2010-01-20 ))))))))))))))))))))))))))))))))))))
.

2010-01-20 10:22 . 2010-01-20 10:23 8354216 ----a-w- c:\documents and settings\All Users\Application Data\Iminent\Iminent Booster\Updates\update.3.0.1001.0.exe
2010-01-18 10:38 . 2010-01-07 15:07 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-01-18 10:38 . 2010-01-07 15:07 19160 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-01-15 17:56 . 2010-01-18 10:45 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2010-01-15 17:56 . 2010-01-15 17:56 -------- d-----w- c:\documents and settings\All Users\Application Data\Malwarebytes
2010-01-15 17:40 . 2010-01-15 17:40 -------- d-----w- c:\program files\CCleaner
2010-01-15 09:53 . 2010-01-15 15:05 -------- d-----w- C:\Ad-Remover
2010-01-14 19:07 . 2010-01-14 19:39 -------- d-----w- c:\program files\Navilog1
2010-01-14 12:10 . 2010-01-14 16:56 -------- d-----w- C:\ToolBar SD
2010-01-14 09:55 . 2010-01-15 08:32 -------- d-----w- c:\program files\trend micro
2010-01-14 09:55 . 2010-01-14 09:55 -------- d-----w- C:\rsit
2010-01-14 09:48 . 2010-01-14 09:48 -------- d--h--w- c:\windows\msdownld.tmp
2010-01-14 09:46 . 2010-01-14 09:47 -------- dc-h--w- c:\windows\ie8
2010-01-13 07:57 . 2009-11-21 15:58 471552 ------w- c:\windows\system32\dllcache\aclayers.dll
2010-01-07 08:15 . 2010-01-05 12:36 2342664 ----a-w- c:\documents and settings\All Users\Application Data\{04D0A305-8E13-4D5D-BE22-67E85E9E1B7A}\NotifierSetup.exe
2010-01-07 08:15 . 2010-01-07 08:15 -------- d--h--w- c:\documents and settings\All Users\Application Data\{04D0A305-8E13-4D5D-BE22-67E85E9E1B7A}
2010-01-07 08:15 . 2010-01-04 13:24 512608 ----a-w- c:\documents and settings\All Users\Application Data\{04D0A305-8E13-4D5D-BE22-67E85E9E1B7A}\offline\3E5507E7\7EC38433\Iminent.Notifier.exe
2010-01-07 08:15 . 2009-12-01 12:46 110832 ----a-w- c:\documents and settings\All Users\Application Data\{04D0A305-8E13-4D5D-BE22-67E85E9E1B7A}\offline\B0BC9675\7EC38433\Iminent.BHO.NavigationError.dll
2009-12-23 11:11 . 2009-12-23 11:11 -------- d-----w- c:\program files\BitTorrent
2009-12-23 08:26 . 2009-12-23 08:26 -------- d-----w- c:\documents and settings\NetworkService\Local Settings\Application Data\Google
2009-12-23 08:21 . 2009-11-24 23:51 93424 ----a-w- c:\windows\system32\drivers\aswmon.sys
2009-12-23 08:21 . 2009-11-24 23:50 94160 ----a-w- c:\windows\system32\drivers\aswmon2.sys
2009-12-23 08:21 . 2009-11-24 23:50 114768 ----a-w- c:\windows\system32\drivers\aswSP.sys
2009-12-23 08:21 . 2009-11-24 23:50 20560 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2009-12-23 08:21 . 2009-11-24 23:49 48560 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2009-12-23 08:21 . 2009-11-24 23:48 23120 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2009-12-23 08:21 . 2009-11-24 23:47 27408 ----a-w- c:\windows\system32\drivers\aavmker4.sys
2009-12-23 08:21 . 2009-11-24 23:47 97480 ----a-w- c:\windows\system32\AvastSS.scr
2009-12-23 08:21 . 2009-11-24 23:54 1280480 ----a-w- c:\windows\system32\aswBoot.exe
2009-12-22 12:05 . 2009-12-22 12:05 -------- d-sh--w- c:\documents and settings\LocalService\IETldCache

.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-01-20 08:22 . 2009-01-23 15:49 -------- d-----w- c:\program files\DNA
2010-01-18 08:00 . 2008-04-20 15:37 -------- d-----w- c:\documents and settings\All Users\Application Data\Kiwee Toolbar2
2010-01-14 10:00 . 2006-01-08 17:01 -------- d-----w- c:\program files\MessengerPlus! 3
2010-01-07 08:15 . 2009-12-13 08:49 -------- d-----w- c:\program files\Iminent
2010-01-05 11:43 . 2007-01-12 18:56 -------- d-----w- c:\program files\MSECache
2010-01-05 07:43 . 2005-06-23 21:10 -------- d-----w- c:\program files\Fichiers communs\Adobe
2009-12-23 11:01 . 2006-01-07 13:39 -------- d-----w- c:\program files\eMule
2009-12-23 08:23 . 2007-01-10 19:47 -------- d-----w- c:\program files\Google
2009-12-13 08:50 . 2009-12-13 08:50 -------- d-----w- c:\documents and settings\All Users\Application Data\Iminent
2009-12-13 08:49 . 2009-12-13 08:49 -------- d--h--w- c:\documents and settings\All Users\Application Data\{EB0535DA-8CF3-4A16-A92A-87BDC6432A9B}
2009-12-10 11:03 . 1979-12-31 22:00 85984 ----a-w- c:\windows\system32\perfc00C.dat
2009-12-10 11:03 . 1979-12-31 22:00 512624 ----a-w- c:\windows\system32\perfh00C.dat
2009-11-21 15:58 . 1979-12-31 22:00 471552 ----a-w- c:\windows\AppPatch\aclayers.dll
2009-11-02 09:21 . 2009-12-13 08:49 2472488 ----a-w- c:\documents and settings\All Users\Application Data\{EB0535DA-8CF3-4A16-A92A-87BDC6432A9B}\IMBoosterSetup.exe
2009-10-29 07:42 . 1979-12-31 22:00 916480 ----a-w- c:\windows\system32\wininet.dll
.

((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
REGEDIT4

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{6638A9DE-0745-4292-8A2E-AE530E7B9B3F}"= "c:\program files\Kiwee Toolbar2\1.5.131\KiweeIEToolbar.dll" [2008-04-03 265360]
"{84FF7BD6-B47F-46F8-9130-01B2696B36CB}"= "c:\program files\Iminent\SearchTheWeb\Iminent.BHO.NavigationError.dll" [2009-12-01 110832]

[HKEY_CLASSES_ROOT\clsid\{6638a9de-0745-4292-8a2e-ae530e7b9b3f}]
[HKEY_CLASSES_ROOT\KiweeIEToolbar.KiweeToolbar.1]
[HKEY_CLASSES_ROOT\TypeLib\{259EEB17-79AA-44DF-8410-8E55F82A902A}]
[HKEY_CLASSES_ROOT\KiweeIEToolbar.KiweeToolbar]

[HKEY_CLASSES_ROOT\clsid\{84ff7bd6-b47f-46f8-9130-01b2696b36cb}]
[HKEY_CLASSES_ROOT\IminentBHONavigationError.CHelperBHO.1]
[HKEY_CLASSES_ROOT\TypeLib\{59E6E159-57CC-4DA5-8700-2AD17DC31DD1}]
[HKEY_CLASSES_ROOT\IminentBHONavigationError.CHelperBHO]

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{84FF7BD6-B47F-46F8-9130-01B2696B36CB}]
2009-12-01 12:46 110832 ----a-w- c:\program files\Iminent\SearchTheWeb\Iminent.BHO.NavigationError.dll

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{A6E9BAAF-53CD-4575-967B-2AF710A7D21F}]
2009-10-29 13:11 106224 ----a-w- c:\program files\Iminent\IMBooster\Iminent.LinkToContent.dll

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
"{6638A9DE-0745-4292-8A2E-AE530E7B9B3F}"= "c:\program files\Kiwee Toolbar2\1.5.131\KiweeIEToolbar.dll" [2008-04-03 265360]

[HKEY_CLASSES_ROOT\clsid\{6638a9de-0745-4292-8a2e-ae530e7b9b3f}]
[HKEY_CLASSES_ROOT\KiweeIEToolbar.KiweeToolbar.1]
[HKEY_CLASSES_ROOT\TypeLib\{259EEB17-79AA-44DF-8410-8E55F82A902A}]
[HKEY_CLASSES_ROOT\KiweeIEToolbar.KiweeToolbar]

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"LogitechSoftwareUpdate"="c:\program files\Logitech\Video\ManifestEngine.exe" [2005-01-18 196608]
"OM_Monitor"="c:\program files\OLYMPUS\OLYMPUS Master\Monitor.exe" [2005-11-29 57344]
"BitTorrent DNA"="c:\program files\DNA\btdna.exe" [2009-11-13 323392]
"MSMSGS"="c:\program files\Messenger\msmsgs.exe" [2008-04-14 1695232]

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
"Shockwave Updater"="c:\windows\system32\Adobe\Shockwave 11\SwHelper_1150596.exe" [2009-04-29 468408]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Adobe Photo Downloader"="c:\program files\Adobe\Photoshop Album Edition Découverte\3.2\Apps\apdproxy.exe" [2007-03-16 63712]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2005-04-01 5562368]
"QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2006-08-24 282624]
"IMBooster"="c:\program files\Iminent\IMBooster\IMBooster.exe" [2009-10-29 1334512]
"avast!"="c:\progra~1\ALWILS~1\Avast4\ashDisp.exe" [2009-11-24 81000]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2008-10-15 39792]
"Iminent.Notifier"="c:\program files\Iminent\SearchTheWeb\Iminent.Notifier.exe" [2010-01-04 512608]
"MessengerPlus3"="c:\program files\MessengerPlus! 3\MsgPlus.exe" [2010-01-14 190024]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]

c:\documents and settings\S‚verine LIETARD\Menu D‚marrer\Programmes\D‚marrage\
Notification de cadeaux MSN.lnk - c:\documents and settings\S‚verine LIETARD\Application Data\Microsoft\Notification de cadeaux MSN\lsnfier.exe [2010-1-14 135680]

c:\documents and settings\All Users\Menu D‚marrer\Programmes\D‚marrage\
Logitech Desktop Messenger.lnk - c:\program files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe [2005-12-21 450560]
WiFi Station.lnk - c:\program files\Hercules\WiFi Station\WifiStation.exe [2007-12-27 654336]

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\iTunes\\iTunes.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\eMule\\emule.exe"=
"c:\\Program Files\\DNA\\btdna.exe"=
"c:\\Program Files\\BitTorrent\\bittorrent.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\wlcsdk.exe"=
"c:\\Program Files\\Messenger\\msmsgs.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"c:\\Program Files\\Windows Live\\Sync\\WindowsLiveSync.exe"=

R0 nvcchflt;NVIDIA Disk Cache Filter Driver;c:\windows\system32\drivers\nvcchflt.sys [31/12/1979 23:00 16640]
R1 aswSP;avast! Self Protection;c:\windows\system32\drivers\aswSP.sys [23/12/2009 09:21 114768]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [23/12/2009 09:21 20560]
R2 fssfltr;FssFltr;c:\windows\system32\drivers\fssfltr_tdi.sys [04/04/2009 14:31 54752]
S2 gupdate;Service Google Update (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [23/12/2009 09:21 133104]
S3 fsssvc;Service Windows Live Contrôle parental;c:\program files\Windows Live\Family Safety\fsssvc.exe [05/08/2009 21:48 704864]
.
Contenu du dossier 'Tâches planifiées'

2010-01-20 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-12-23 08:21]

2010-01-20 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-12-23 08:21]

2010-01-20 c:\windows\Tasks\User_Feed_Synchronization-{D1238B1F-6285-48B6-B1DC-FFEA3A660F7B}.job
- c:\windows\system32\msfeedssync.exe [2006-10-17 03:31]
.
.
------- Examen supplémentaire -------
.
uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
mWindow Title =
uInternet Connection Wizard,ShellNext = iexplore
uSearchURL,(Default) = hxxp://g.msn.fr/0SEFRFR/SAOS01?FORM=TOOLBR
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
IE: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx
IE: Google Sidewiki... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_60D6097707281E79.dll/cmsidewiki.html
DPF: CabBuilder - hxxp://kiw.imgag.com/imgag/kiw/toolbar/download/InstallerControl.cab
DPF: {88764F69-3831-4EC1-B40B-FF21D8381345} - hxxps://static.impots.gouv.fr/tdir/static/adpform/AdSignerADP-2.0.cab
.
- - - - ORPHELINS SUPPRIMES - - - -

WebBrowser-{3041D03E-FD4B-44E0-B742-2D9B88305F98} - (no file)
HKCU-Run-BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA} - c:\program files\Fichiers communs\Ahead\lib\NMBgMonitor.exe
HKCU-RunOnce-Iminent.Notifier Install - c:\docume~1\SVERIN~1\LOCALS~1\Temp\NotifierSetup.exe
AddRemove-Ask Toolbar_is1 - c:\program files\AskBarDis\unins000.exe



**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-01-20 11:29
Windows 5.1.2600 Service Pack 3 NTFS

Recherche de processus cachés ...

Recherche d'éléments en démarrage automatique cachés ...

HKCU\Software\Microsoft\Windows\CurrentVersion\RunOnce
Iminent.Notifier Install = "c:\docume~1\SVERIN~1\LOCALS~1\Temp\NotifierSetup.exe" /s??????????????? ? ?"????x??://vz.iminent.com/vz/A160760F-CCE3-4B98-9AB6-F47514508401/1/NotifierSetup.exe?\?R?u?n??????? ? ?????M?o?d?i?f?i?c?a?t?i?o?n? ?d?e?s? ?p?a?r?a?m???t?r?e?s? ?d?e? ?r?e?c?h?e?r?c?h?e???\?R?u?n????????? ?????????????????????????????????????Stealth?????????????????????1.0.7???????????????????????p??????????????????????

Recherche de fichiers cachés ...

Scan terminé avec succès
Fichiers cachés: 0

**************************************************************************
.
Heure de fin: 2010-01-20 11:30:47
ComboFix-quarantined-files.txt 2010-01-20 10:30

Avant-CF: 63 149 760 512 octets libres
Après-CF: 63 153 385 472 octets libres

WindowsXP-KB310994-SP2-Home-BootDisk-FRA.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(2)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
multi(0)disk(0)rdisk(0)partition(2)\WINDOWS="Microsoft Windows XP dition familiale" /noexecute=optin /fastdetect

Current=4 Default=4 Failed=3 LastKnownGood=1 Sets=1,2,3,4
- - End Of File - - 89A59523B7751662B656D4EB8AEDD98A
20 Janvier 2010 14:23:06

lietase a dit :
> Ca y'est j'ai réussi!


Bonjour lietase,

> ;) 

Refais la manip' d' Ad-Remover (merci C_XX) et poste le rapport : Ici

A+
20 Janvier 2010 18:51:18

.
======= RAPPORT D'AD-REMOVER 1.1.4.6_I | UNIQUEMENT XP/VISTA/7 =======
.
Mis à jour par C_XX le 19.01.2010 à 21:16
Contact: AdRemover.contact@gmail.com
Site web: http://pagesperso-orange.fr/NosTools/ad_remover.html
.
Lancé à: 18:34:59, 20/01/2010 | Mode Normal | Option: SCAN
Exécuté de: C:\Ad-Remover\
Système d'exploitation: Microsoft® Windows XP™ Service Pack 3 v5.1.2600
Nom du PC: ACER-E3B0141A93 | Utilisateur actuel: S‚verine LIETARD
.
============== ÉLÉMENT(S) TROUVÉ(S) ==============
.

C:\WINDOWS\Installer\{E1B94435-241E-4519-B1C3-C4DD9EB352A2}
C:\Program Files\Mozilla FireFox\Components\AskHPRFF.js
C:\Program Files\Mozilla FireFox\Components\AskSearch.js
C:\Program Files\EoRezo
C:\Program Files\Iminent
C:\Program Files\Kiwee Toolbar2
C:\DOCUME~1\SVERIN~1\APPLIC~1\EoRezo
C:\DOCUME~1\SVERIN~1\APPLIC~1\ItsLabel
C:\DOCUME~1\ALLUSE~1\APPLIC~1\Iminent
C:\DOCUME~1\ALLUSE~1\APPLIC~1\Kiwee Toolbar2
C:\Documents and Settings\S‚verine LIETARD\Local Settings\Application Data\Iminent
C:\Documents and Settings\S‚verine LIETARD\Local Settings\Application Data\Kiwee Toolbar2
C:\Windows\Installer\22c4e.msi
C:\Windows\Installer\e704b.msi
.
HKCU\software\AGI
HKCU\software\appdatalow\AskBarDis
HKCU\software\AskBarDis
HKCU\software\EoRezo
HKCU\software\Iminent
HKCU\software\ItsLabel
HKCU\software\microsoft\internet explorer\searchscopes\{41427F18-E891-4297-BD8C-4BB0E8EAF99F}
HKCU\software\microsoft\internet explorer\searchscopes\{BFFED5CA-8BDF-47CC-AED0-23F4E6D77732}
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{6638A9DE-0745-4292-8A2E-AE530E7B9B3F}
HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks\\{84FF7BD6-B47F-46F8-9130-01B2696B36CB}
HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{64F56FC1-1272-44CD-BA6E-39723696E350}
HKLM\software\AGI
HKLM\software\AskBarDis
HKLM\software\classes\AG.MediaPlayerCOM
HKLM\Software\Classes\CLSID\{0702a2b6-13aa-4090-9e01-bcdc85dd933f}
HKLM\Software\Classes\CLSID\{4260e0cc-0f75-462e-88a3-1e05c248bf4c}
HKLM\Software\Classes\CLSID\{4D1C4E89-A32A-416b-BCDB-33B3EF3617D3}
HKLM\Software\Classes\CLSID\{4D1C4E8B-A32A-416b-BCDB-33B3EF3617D3}
HKLM\Software\Classes\CLSID\{622fd888-4e91-4d68-84d4-7262fd0811bf}
HKLM\Software\Classes\CLSID\{630D6140-04C5-4db0-B27A-020D766FF09B}
HKLM\Software\Classes\CLSID\{64F56FC1-1272-44CD-BA6E-39723696E350}
HKLM\Software\Classes\CLSID\{6638A9DE-0745-4292-8A2E-AE530E7B9B3F}
HKLM\Software\Classes\CLSID\{696E3174-4F6C-4777-7834-654C4A705677}
HKLM\Software\Classes\CLSID\{84FF7BD6-B47F-46F8-9130-01B2696B36CB}
HKLM\Software\Classes\CLSID\{86C5840B-80C4-4C30-A655-37344A542009}
HKLM\Software\Classes\CLSID\{A3E67DAA-DA01-4da5-98BE-3088B554A11E}
HKLM\Software\Classes\CLSID\{A5B6FA30-D317-41CA-9CB1-C898D3C7F34E}
HKLM\Software\Classes\CLSID\{A6E9BAAF-53CD-4575-967B-2AF710A7D21F}
HKLM\Software\Classes\CLSID\{A9C42A57-421C-4572-8B12-249C59183D1C}
HKLM\Software\Classes\CLSID\{b0de3308-5d5a-470d-81b9-634fc078393b}
HKLM\Software\Classes\CLSID\{D95C7240-0282-4c01-93F5-673BCA03DA86}
HKLM\software\classes\EoRezoBHO.EoBho
HKLM\software\classes\EoRezoBHO.EoBho.1
HKLM\software\classes\IminentBHONavigationError.CHelperBHO
HKLM\software\classes\IminentBHONavigationError.CHelperBHO.1
HKLM\software\classes\IminentLinkToContent.LinkToContent
HKLM\software\classes\IminentLinkToContent.LinkToContent.1
HKLM\software\classes\installer\Products\53449B1EE14291541B3C4CDDE93B252A
HKLM\software\classes\installer\Products\C73660D04266C3348A703CD454AD1B48
HKLM\Software\Classes\Interface\{0CA97EEE-C8C4-4B10-A332-10AF1FBEB534}
HKLM\Software\Classes\Interface\{12FB9C3D-0875-4CAA-B3B1-9DCCCE749DE5}
HKLM\Software\Classes\Interface\{2447E305-5E90-42A8-BD1E-0BC333B807E1}
HKLM\Software\Classes\Interface\{3E16A203-C0AA-4D44-ACC5-38A70A8C76DA}
HKLM\Software\Classes\Interface\{40CA90F3-4098-4877-AE87-23EB612B18C7}
HKLM\Software\Classes\Interface\{67B3BECF-7B6F-42B2-99F0-F7656F89CFFA}
HKLM\Software\Classes\Interface\{7E335D04-2E6E-4D0E-A921-C3D9192E7121}
HKLM\Software\Classes\Interface\{9A4A64A4-A2FB-48FA-9BBA-1AC50267695D}
HKLM\Software\Classes\Interface\{B0D071A1-36B3-4757-A126-14C89C56013A}
HKLM\Software\Classes\Interface\{BFC20A15-B0AC-44CC-A25A-A7039014BA9F}
HKLM\Software\Classes\Interface\{C96B9FAE-A032-4100-BB47-32EF05E28BE4}
HKLM\software\classes\KiweeIEToolbar.KiweeToolbar
HKLM\software\classes\KiweeIEToolbar.KiweeToolbar.1
HKLM\software\classes\KiweeIEToolbar.ToolbarInfo
HKLM\software\classes\KiweeIEToolbar.ToolbarInfo.1
HKLM\Software\Classes\TypeLib\{0729F461-8054-47DC-8D39-A31B61CC0119}
HKLM\Software\Classes\TypeLib\{2C6674DB-EFB5-464A-A715-3E770B9C8A94}
HKLM\Software\Classes\TypeLib\{4B1C1E16-6B34-430E-B074-5928ECA4C150}
HKLM\Software\Classes\TypeLib\{4D1C4E80-A32A-416B-BCDB-33B3EF3617D3}
HKLM\Software\Classes\TypeLib\{587D1093-12E0-4B0E-9426-AF9DC5ABB77D}
HKLM\Software\Classes\TypeLib\{77860007-19AE-4C29-B26D-AEA48F3A05C5}
HKLM\Software\Classes\TypeLib\{8292078F-F6E9-412B-8EB1-360C05C5ECE5}
HKLM\Software\Classes\TypeLib\{B4C656C9-F2E9-4E77-B3F4-443DF2BD778F}
HKLM\software\iAvatars.com
HKLM\software\Iminent
HKLM\software\ItsLabel
HKLM\software\Loader
HKLM\Software\Microsoft\Code Store Database\Distribution Units\CabBuilder
HKLM\software\microsoft\internet explorer\searchscopes\{CF739809-1C6C-47C0-85B9-569DBB141420}
HKLM\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\SearchTheWeb
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{64F56FC1-1272-44CD-BA6E-39723696E350}
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{84FF7BD6-B47F-46F8-9130-01B2696B36CB}
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A6E9BAAF-53CD-4575-967B-2AF710A7D21F}
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Products\53449B1EE14291541B3C4CDDE93B252A
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Products\C73660D04266C3348A703CD454AD1B48
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\IMBooster
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\Iminent.Notifier
HKLM\software\microsoft\windows\currentversion\uninstall\{0D06637C-6624-433C-A807-C34D45DAB184}
HKLM\software\microsoft\windows\currentversion\uninstall\{E1B94435-241E-4519-B1C3-C4DD9EB352A2}
HKLM\software\microsoft\windows\currentversion\uninstall\IMBooster
HKLM\software\microsoft\windows\currentversion\uninstall\SearchTheWeb
HKU\s-1-5-21-2569472474-3953852920-1251360827-1006\software\AGI
HKU\s-1-5-21-2569472474-3953852920-1251360827-1006\software\appdatalow\AskBarDis
HKU\s-1-5-21-2569472474-3953852920-1251360827-1006\software\AskBarDis
HKU\s-1-5-21-2569472474-3953852920-1251360827-1006\software\EoRezo
HKU\s-1-5-21-2569472474-3953852920-1251360827-1006\software\Iminent
HKU\s-1-5-21-2569472474-3953852920-1251360827-1006\software\ItsLabel
.
============== Scan additionnel ==============
.
.
* Internet Explorer Version 8.0.6001.18702 *
.
[HKEY_CURRENT_USER\..\Internet Explorer\Main]
.
Start Page: hxxp://go.microsoft.com/fwlink/?LinkId=69157
Do404Search: 01000000
Local Page: C:\WINDOWS\system32\blank.htm
Show_ToolBar: yes
Search Page: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
Enable Browser Extensions: yes
Use Search Asst: no
Start Page Redirect Cache_TIMESTAMP: 06f1a6821495ca01
Start Page Redirect Cache: hxxp://fr.msn.com/?ocid=iehp
Start Page Redirect Cache AcceptLangs: fr
.
[HKEY_LOCAL_MACHINE\..\Internet Explorer\Main]
.
Default_Page_URL: hxxp://go.microsoft.com/fwlink/?LinkId=69157
Default_Search_URL: hxxp://go.microsoft.com/fwlink/?LinkId=54896
Search Page: hxxp://go.microsoft.com/fwlink/?LinkId=54896
Delete_Temp_Files_On_Exit: yes
Local Page: C:\WINDOWS\system32\blank.htm
Start Page: hxxp://www.msn.com/
.
[HKEY_LOCAL_MACHINE\..\Internet Explorer\ABOUTURLS]
.
Tabs: res://ieframe.dll/tabswelcome.htm
.
===================================
.
10772 Octet(s) - C:\Ad-Report-SCAN[1].log
10817 Octet(s) - C:\Ad-Report-SCAN[2].log
8104 Octet(s) - C:\Ad-Report-SCAN[3].log
.
6 Fichier(s) - C:\DOCUME~1\SVERIN~1\LOCALS~1\Temp
2 Fichier(s) - C:\WINDOWS\Temp
110 Fichier(s) - C:\WINDOWS\Prefetch
.
2 Fichier(s) - C:\Ad-Remover\BACKUP
0 Fichier(s) - C:\Ad-Remover\QUARANTINE
.
Fin à: 18:37:50 | 20/01/2010 - SCAN[3]
.
============== E.O.F ==============
.
21 Janvier 2010 01:40:38

Bonsoir lietase,

ensuite fais celle-ci : Ici

A+
21 Janvier 2010 09:22:44

.
======= RAPPORT D'AD-REMOVER 1.1.4.6_I | UNIQUEMENT XP/VISTA/7 =======
.
Mis à jour par C_XX le 19.01.2010 à 21:16
Contact: AdRemover.contact@gmail.com
Site web: http://pagesperso-orange.fr/NosTools/ad_remover.html
.
Lancé à: 9:16:57, 21/01/2010 | Mode Normal | Option: SCAN
Exécuté de: C:\Ad-Remover\
Système d'exploitation: Microsoft® Windows XP™ Service Pack 3 v5.1.2600
Nom du PC: ACER-E3B0141A93 | Utilisateur actuel: S‚verine LIETARD
.
============== ÉLÉMENT(S) TROUVÉ(S) ==============
.

C:\WINDOWS\Installer\{E1B94435-241E-4519-B1C3-C4DD9EB352A2}
C:\Program Files\Mozilla FireFox\Components\AskHPRFF.js
C:\Program Files\Mozilla FireFox\Components\AskSearch.js
C:\Program Files\EoRezo
C:\Program Files\Iminent
C:\Program Files\Kiwee Toolbar2
C:\DOCUME~1\SVERIN~1\APPLIC~1\EoRezo
C:\DOCUME~1\SVERIN~1\APPLIC~1\ItsLabel
C:\DOCUME~1\ALLUSE~1\APPLIC~1\Iminent
C:\DOCUME~1\ALLUSE~1\APPLIC~1\Kiwee Toolbar2
C:\Documents and Settings\S‚verine LIETARD\Local Settings\Application Data\Iminent
C:\Documents and Settings\S‚verine LIETARD\Local Settings\Application Data\Kiwee Toolbar2
C:\Windows\Installer\22c4e.msi
C:\Windows\Installer\e704b.msi
.
HKCU\software\AGI
HKCU\software\appdatalow\AskBarDis
HKCU\software\AskBarDis
HKCU\software\EoRezo
HKCU\software\Iminent
HKCU\software\ItsLabel
HKCU\software\microsoft\internet explorer\searchscopes\{41427F18-E891-4297-BD8C-4BB0E8EAF99F}
HKCU\software\microsoft\internet explorer\searchscopes\{BFFED5CA-8BDF-47CC-AED0-23F4E6D77732}
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{6638A9DE-0745-4292-8A2E-AE530E7B9B3F}
HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks\\{84FF7BD6-B47F-46F8-9130-01B2696B36CB}
HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{64F56FC1-1272-44CD-BA6E-39723696E350}
HKLM\software\AGI
HKLM\software\AskBarDis
HKLM\software\classes\AG.MediaPlayerCOM
HKLM\Software\Classes\CLSID\{0702a2b6-13aa-4090-9e01-bcdc85dd933f}
HKLM\Software\Classes\CLSID\{4260e0cc-0f75-462e-88a3-1e05c248bf4c}
HKLM\Software\Classes\CLSID\{4D1C4E89-A32A-416b-BCDB-33B3EF3617D3}
HKLM\Software\Classes\CLSID\{4D1C4E8B-A32A-416b-BCDB-33B3EF3617D3}
HKLM\Software\Classes\CLSID\{622fd888-4e91-4d68-84d4-7262fd0811bf}
HKLM\Software\Classes\CLSID\{630D6140-04C5-4db0-B27A-020D766FF09B}
HKLM\Software\Classes\CLSID\{64F56FC1-1272-44CD-BA6E-39723696E350}
HKLM\Software\Classes\CLSID\{6638A9DE-0745-4292-8A2E-AE530E7B9B3F}
HKLM\Software\Classes\CLSID\{696E3174-4F6C-4777-7834-654C4A705677}
HKLM\Software\Classes\CLSID\{84FF7BD6-B47F-46F8-9130-01B2696B36CB}
HKLM\Software\Classes\CLSID\{86C5840B-80C4-4C30-A655-37344A542009}
HKLM\Software\Classes\CLSID\{A3E67DAA-DA01-4da5-98BE-3088B554A11E}
HKLM\Software\Classes\CLSID\{A5B6FA30-D317-41CA-9CB1-C898D3C7F34E}
HKLM\Software\Classes\CLSID\{A6E9BAAF-53CD-4575-967B-2AF710A7D21F}
HKLM\Software\Classes\CLSID\{A9C42A57-421C-4572-8B12-249C59183D1C}
HKLM\Software\Classes\CLSID\{b0de3308-5d5a-470d-81b9-634fc078393b}
HKLM\Software\Classes\CLSID\{D95C7240-0282-4c01-93F5-673BCA03DA86}
HKLM\software\classes\EoRezoBHO.EoBho
HKLM\software\classes\EoRezoBHO.EoBho.1
HKLM\software\classes\IminentBHONavigationError.CHelperBHO
HKLM\software\classes\IminentBHONavigationError.CHelperBHO.1
HKLM\software\classes\IminentLinkToContent.LinkToContent
HKLM\software\classes\IminentLinkToContent.LinkToContent.1
HKLM\software\classes\installer\Products\53449B1EE14291541B3C4CDDE93B252A
HKLM\software\classes\installer\Products\C73660D04266C3348A703CD454AD1B48
HKLM\Software\Classes\Interface\{0CA97EEE-C8C4-4B10-A332-10AF1FBEB534}
HKLM\Software\Classes\Interface\{12FB9C3D-0875-4CAA-B3B1-9DCCCE749DE5}
HKLM\Software\Classes\Interface\{2447E305-5E90-42A8-BD1E-0BC333B807E1}
HKLM\Software\Classes\Interface\{3E16A203-C0AA-4D44-ACC5-38A70A8C76DA}
HKLM\Software\Classes\Interface\{40CA90F3-4098-4877-AE87-23EB612B18C7}
HKLM\Software\Classes\Interface\{67B3BECF-7B6F-42B2-99F0-F7656F89CFFA}
HKLM\Software\Classes\Interface\{7E335D04-2E6E-4D0E-A921-C3D9192E7121}
HKLM\Software\Classes\Interface\{9A4A64A4-A2FB-48FA-9BBA-1AC50267695D}
HKLM\Software\Classes\Interface\{B0D071A1-36B3-4757-A126-14C89C56013A}
HKLM\Software\Classes\Interface\{BFC20A15-B0AC-44CC-A25A-A7039014BA9F}
HKLM\Software\Classes\Interface\{C96B9FAE-A032-4100-BB47-32EF05E28BE4}
HKLM\software\classes\KiweeIEToolbar.KiweeToolbar
HKLM\software\classes\KiweeIEToolbar.KiweeToolbar.1
HKLM\software\classes\KiweeIEToolbar.ToolbarInfo
HKLM\software\classes\KiweeIEToolbar.ToolbarInfo.1
HKLM\Software\Classes\TypeLib\{0729F461-8054-47DC-8D39-A31B61CC0119}
HKLM\Software\Classes\TypeLib\{2C6674DB-EFB5-464A-A715-3E770B9C8A94}
HKLM\Software\Classes\TypeLib\{4B1C1E16-6B34-430E-B074-5928ECA4C150}
HKLM\Software\Classes\TypeLib\{4D1C4E80-A32A-416B-BCDB-33B3EF3617D3}
HKLM\Software\Classes\TypeLib\{587D1093-12E0-4B0E-9426-AF9DC5ABB77D}
HKLM\Software\Classes\TypeLib\{77860007-19AE-4C29-B26D-AEA48F3A05C5}
HKLM\Software\Classes\TypeLib\{8292078F-F6E9-412B-8EB1-360C05C5ECE5}
HKLM\Software\Classes\TypeLib\{B4C656C9-F2E9-4E77-B3F4-443DF2BD778F}
HKLM\software\iAvatars.com
HKLM\software\Iminent
HKLM\software\ItsLabel
HKLM\software\Loader
HKLM\Software\Microsoft\Code Store Database\Distribution Units\CabBuilder
HKLM\software\microsoft\internet explorer\searchscopes\{CF739809-1C6C-47C0-85B9-569DBB141420}
HKLM\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\SearchTheWeb
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{64F56FC1-1272-44CD-BA6E-39723696E350}
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{84FF7BD6-B47F-46F8-9130-01B2696B36CB}
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A6E9BAAF-53CD-4575-967B-2AF710A7D21F}
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Products\53449B1EE14291541B3C4CDDE93B252A
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Products\C73660D04266C3348A703CD454AD1B48
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\IMBooster
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\Iminent.Notifier
HKLM\software\microsoft\windows\currentversion\uninstall\{0D06637C-6624-433C-A807-C34D45DAB184}
HKLM\software\microsoft\windows\currentversion\uninstall\{E1B94435-241E-4519-B1C3-C4DD9EB352A2}
HKLM\software\microsoft\windows\currentversion\uninstall\IMBooster
HKLM\software\microsoft\windows\currentversion\uninstall\SearchTheWeb
HKU\s-1-5-21-2569472474-3953852920-1251360827-1006\software\AGI
HKU\s-1-5-21-2569472474-3953852920-1251360827-1006\software\appdatalow\AskBarDis
HKU\s-1-5-21-2569472474-3953852920-1251360827-1006\software\AskBarDis
HKU\s-1-5-21-2569472474-3953852920-1251360827-1006\software\EoRezo
HKU\s-1-5-21-2569472474-3953852920-1251360827-1006\software\Iminent
HKU\s-1-5-21-2569472474-3953852920-1251360827-1006\software\ItsLabel
.
============== Scan additionnel ==============
.
.
* Internet Explorer Version 8.0.6001.18702 *
.
[HKEY_CURRENT_USER\..\Internet Explorer\Main]
.
Start Page: hxxp://go.microsoft.com/fwlink/?LinkId=69157
Do404Search: 01000000
Local Page: C:\WINDOWS\system32\blank.htm
Show_ToolBar: yes
Search Page: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
Enable Browser Extensions: yes
Use Search Asst: no
Start Page Redirect Cache_TIMESTAMP: 06f1a6821495ca01
Start Page Redirect Cache: hxxp://fr.msn.com/?ocid=iehp
Start Page Redirect Cache AcceptLangs: fr
.
[HKEY_LOCAL_MACHINE\..\Internet Explorer\Main]
.
Default_Page_URL: hxxp://go.microsoft.com/fwlink/?LinkId=69157
Default_Search_URL: hxxp://go.microsoft.com/fwlink/?LinkId=54896
Search Page: hxxp://go.microsoft.com/fwlink/?LinkId=54896
Delete_Temp_Files_On_Exit: yes
Local Page: C:\WINDOWS\system32\blank.htm
Start Page: hxxp://www.msn.com/
.
[HKEY_LOCAL_MACHINE\..\Internet Explorer\ABOUTURLS]
.
Tabs: res://ieframe.dll/tabswelcome.htm
.
===================================
.
10772 Octet(s) - C:\Ad-Report-SCAN[1].log
10817 Octet(s) - C:\Ad-Report-SCAN[2].log
8441 Octet(s) - C:\Ad-Report-SCAN[3].log
8147 Octet(s) - C:\Ad-Report-SCAN[4].log
.
6 Fichier(s) - C:\DOCUME~1\SVERIN~1\LOCALS~1\Temp
4 Fichier(s) - C:\WINDOWS\Temp
115 Fichier(s) - C:\WINDOWS\Prefetch
.
3 Fichier(s) - C:\Ad-Remover\BACKUP
0 Fichier(s) - C:\Ad-Remover\QUARANTINE
.
Fin à: 9:19:57 | 21/01/2010 - SCAN[4]
.
============== E.O.F ==============
.
21 Janvier 2010 17:33:34

Ok j'ai fais le nettoyage :

.
======= RAPPORT D'AD-REMOVER 1.1.4.6_I | UNIQUEMENT XP/VISTA/7 =======
.
Mis à jour par C_XX le 21.01.2010 à 9:13
Contact: AdRemover.contact@gmail.com
Site web: http://pagesperso-orange.fr/NosTools/ad_remover.html
.
Lancé à: 17:20:37, 21/01/2010 | Mode Normal | Option: CLEAN
Exécuté de: C:\Ad-Remover\
Système d'exploitation: Microsoft® Windows XP™ Service Pack 3 v5.1.2600
Nom du PC: ACER-E3B0141A93 | Utilisateur actuel: S‚verine LIETARD
.
============== ÉLÉMENT(S) NEUTRALISÉ(S) ==============
.

C:\WINDOWS\Installer\{E1B94435-241E-4519-B1C3-C4DD9EB352A2}
C:\Program Files\Mozilla FireFox\Components\AskHPRFF.js
C:\Program Files\Mozilla FireFox\Components\AskSearch.js
C:\Program Files\EoRezo
C:\Program Files\Iminent
C:\Program Files\Kiwee Toolbar2
C:\DOCUME~1\SVERIN~1\APPLIC~1\EoRezo
C:\DOCUME~1\SVERIN~1\APPLIC~1\ItsLabel
C:\DOCUME~1\ALLUSE~1\APPLIC~1\Iminent
C:\DOCUME~1\ALLUSE~1\APPLIC~1\Kiwee Toolbar2
C:\Documents and Settings\S‚verine LIETARD\Local Settings\Application Data\Iminent
C:\Documents and Settings\S‚verine LIETARD\Local Settings\Application Data\Kiwee Toolbar2
C:\Windows\Installer\22c4e.msi
C:\Windows\Installer\e704b.msi

(!) -- Fichiers temporaires supprimés.

.
HKCU\software\AGI
HKCU\software\appdatalow\AskBarDis
HKCU\software\AskBarDis
HKCU\software\EoRezo
HKCU\software\Iminent
HKCU\software\ItsLabel
HKCU\software\microsoft\internet explorer\searchscopes\{41427F18-E891-4297-BD8C-4BB0E8EAF99F}
HKCU\software\microsoft\internet explorer\searchscopes\{BFFED5CA-8BDF-47CC-AED0-23F4E6D77732}
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{6638A9DE-0745-4292-8A2E-AE530E7B9B3F}
HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks\\{84FF7BD6-B47F-46F8-9130-01B2696B36CB}
HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{64F56FC1-1272-44CD-BA6E-39723696E350}
HKLM\software\AGI
HKLM\software\AskBarDis
HKLM\software\classes\AG.MediaPlayerCOM
HKLM\Software\Classes\CLSID\{0702a2b6-13aa-4090-9e01-bcdc85dd933f}
HKLM\Software\Classes\CLSID\{4260e0cc-0f75-462e-88a3-1e05c248bf4c}
HKLM\Software\Classes\CLSID\{4D1C4E89-A32A-416b-BCDB-33B3EF3617D3}
HKLM\Software\Classes\CLSID\{4D1C4E8B-A32A-416b-BCDB-33B3EF3617D3}
HKLM\Software\Classes\CLSID\{622fd888-4e91-4d68-84d4-7262fd0811bf}
HKLM\Software\Classes\CLSID\{630D6140-04C5-4db0-B27A-020D766FF09B}
HKLM\Software\Classes\CLSID\{64F56FC1-1272-44CD-BA6E-39723696E350}
HKLM\Software\Classes\CLSID\{6638A9DE-0745-4292-8A2E-AE530E7B9B3F}
HKLM\Software\Classes\CLSID\{696E3174-4F6C-4777-7834-654C4A705677}
HKLM\Software\Classes\CLSID\{84FF7BD6-B47F-46F8-9130-01B2696B36CB}
HKLM\Software\Classes\CLSID\{86C5840B-80C4-4C30-A655-37344A542009}
HKLM\Software\Classes\CLSID\{A3E67DAA-DA01-4da5-98BE-3088B554A11E}
HKLM\Software\Classes\CLSID\{A5B6FA30-D317-41CA-9CB1-C898D3C7F34E}
HKLM\Software\Classes\CLSID\{A6E9BAAF-53CD-4575-967B-2AF710A7D21F}
HKLM\Software\Classes\CLSID\{A9C42A57-421C-4572-8B12-249C59183D1C}
HKLM\Software\Classes\CLSID\{b0de3308-5d5a-470d-81b9-634fc078393b}
HKLM\Software\Classes\CLSID\{D95C7240-0282-4c01-93F5-673BCA03DA86}
HKLM\software\classes\EoRezoBHO.EoBho
HKLM\software\classes\EoRezoBHO.EoBho.1
HKLM\software\classes\IminentBHONavigationError.CHelperBHO
HKLM\software\classes\IminentBHONavigationError.CHelperBHO.1
HKLM\software\classes\IminentLinkToContent.LinkToContent
HKLM\software\classes\IminentLinkToContent.LinkToContent.1
HKLM\software\classes\installer\Products\53449B1EE14291541B3C4CDDE93B252A
HKLM\software\classes\installer\Products\C73660D04266C3348A703CD454AD1B48
HKLM\Software\Classes\Interface\{0CA97EEE-C8C4-4B10-A332-10AF1FBEB534}
HKLM\Software\Classes\Interface\{12FB9C3D-0875-4CAA-B3B1-9DCCCE749DE5}
HKLM\Software\Classes\Interface\{2447E305-5E90-42A8-BD1E-0BC333B807E1}
HKLM\Software\Classes\Interface\{3E16A203-C0AA-4D44-ACC5-38A70A8C76DA}
HKLM\Software\Classes\Interface\{40CA90F3-4098-4877-AE87-23EB612B18C7}
HKLM\Software\Classes\Interface\{67B3BECF-7B6F-42B2-99F0-F7656F89CFFA}
HKLM\Software\Classes\Interface\{7E335D04-2E6E-4D0E-A921-C3D9192E7121}
HKLM\Software\Classes\Interface\{9A4A64A4-A2FB-48FA-9BBA-1AC50267695D}
HKLM\Software\Classes\Interface\{B0D071A1-36B3-4757-A126-14C89C56013A}
HKLM\Software\Classes\Interface\{BFC20A15-B0AC-44CC-A25A-A7039014BA9F}
HKLM\Software\Classes\Interface\{C96B9FAE-A032-4100-BB47-32EF05E28BE4}
HKLM\software\classes\KiweeIEToolbar.KiweeToolbar
HKLM\software\classes\KiweeIEToolbar.KiweeToolbar.1
HKLM\software\classes\KiweeIEToolbar.ToolbarInfo
HKLM\software\classes\KiweeIEToolbar.ToolbarInfo.1
HKLM\Software\Classes\TypeLib\{0729F461-8054-47DC-8D39-A31B61CC0119}
HKLM\Software\Classes\TypeLib\{2C6674DB-EFB5-464A-A715-3E770B9C8A94}
HKLM\Software\Classes\TypeLib\{4B1C1E16-6B34-430E-B074-5928ECA4C150}
HKLM\Software\Classes\TypeLib\{4D1C4E80-A32A-416B-BCDB-33B3EF3617D3}
HKLM\Software\Classes\TypeLib\{587D1093-12E0-4B0E-9426-AF9DC5ABB77D}
HKLM\Software\Classes\TypeLib\{77860007-19AE-4C29-B26D-AEA48F3A05C5}
HKLM\Software\Classes\TypeLib\{8292078F-F6E9-412B-8EB1-360C05C5ECE5}
HKLM\Software\Classes\TypeLib\{B4C656C9-F2E9-4E77-B3F4-443DF2BD778F}
HKLM\software\iAvatars.com
HKLM\software\Iminent
HKLM\software\ItsLabel
HKLM\software\Loader
HKLM\Software\Microsoft\Code Store Database\Distribution Units\CabBuilder
HKLM\software\microsoft\internet explorer\searchscopes\{CF739809-1C6C-47C0-85B9-569DBB141420}
HKLM\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\SearchTheWeb
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{64F56FC1-1272-44CD-BA6E-39723696E350}
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{84FF7BD6-B47F-46F8-9130-01B2696B36CB}
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A6E9BAAF-53CD-4575-967B-2AF710A7D21F}
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Products\53449B1EE14291541B3C4CDDE93B252A
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Products\C73660D04266C3348A703CD454AD1B48
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\IMBooster
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\Iminent.Notifier
HKLM\software\microsoft\windows\currentversion\uninstall\{0D06637C-6624-433C-A807-C34D45DAB184}
HKLM\software\microsoft\windows\currentversion\uninstall\{E1B94435-241E-4519-B1C3-C4DD9EB352A2}
HKLM\software\microsoft\windows\currentversion\uninstall\IMBooster
HKLM\software\microsoft\windows\currentversion\uninstall\SearchTheWeb
.
============== Scan additionnel ==============
.
.
* Internet Explorer Version 8.0.6001.18702 *
.
[HKEY_CURRENT_USER\..\Internet Explorer\Main]
.
Start Page: hxxp://fr.msn.com/
Do404Search: 01000000
Local Page: C:\WINDOWS\system32\blank.htm
Show_ToolBar: yes
Enable Browser Extensions: yes
Use Search Asst: no
Start Page Redirect Cache_TIMESTAMP: 3abb410eae9aca01
Start Page Redirect Cache: hxxp://fr.msn.com/?ocid=iehp
Start Page Redirect Cache AcceptLangs: fr
Default_search_url: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
Default_page_url: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnh...
Search bar: hxxp://go.microsoft.com/fwlink/?linkid=54896
.
[HKEY_LOCAL_MACHINE\..\Internet Explorer\Main]
.
Default_Page_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnh...
Default_Search_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
Search Page: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
Delete_Temp_Files_On_Exit: yes
Local Page: C:\WINDOWS\system32\blank.htm
Start Page: hxxp://fr.msn.com/
Search bar: hxxp://search.msn.com/spbasic.htm
.
[HKEY_LOCAL_MACHINE\..\Internet Explorer\ABOUTURLS]
.
Tabs: res://ieframe.dll/tabswelcome.htm
.
===================================
.
7866 Octet(s) - C:\Ad-Report-CLEAN[1].log
10772 Octet(s) - C:\Ad-Report-SCAN[1].log
10817 Octet(s) - C:\Ad-Report-SCAN[2].log
8441 Octet(s) - C:\Ad-Report-SCAN[3].log
8484 Octet(s) - C:\Ad-Report-SCAN[4].log
.
8 Fichier(s) - C:\DOCUME~1\SVERIN~1\LOCALS~1\Temp
7 Fichier(s) - C:\WINDOWS\Temp
7 Fichier(s) - C:\WINDOWS\Prefetch
.
20 Fichier(s) - C:\Ad-Remover\BACKUP
446 Fichier(s) - C:\Ad-Remover\QUARANTINE
.
Fin à: 17:24:14 | 21/01/2010 - CLEAN[1]
.
============== E.O.F ==============
.
21 Janvier 2010 20:08:15

Re,

poste un nouveau rapport RSIT stp.
21 Janvier 2010 20:15:25

Logfile of random's system information tool 1.06 (written by random/random)
Run by Séverine LIETARD at 2010-01-21 20:14:54
Microsoft Windows XP Édition familiale Service Pack 3
System drive C: has 60 GB (64%) free of 94 GB
Total RAM: 1023 MB (46% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 20:15:00, on 21/01/2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\acer\Acer eConsole\MediaServerService.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.2\Apps\apdproxy.exe
C:\Program Files\QuickTime\qttask.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\MessengerPlus! 3\MsgPlus.exe
C:\Program Files\OLYMPUS\OLYMPUS Master\Monitor.exe
C:\Program Files\DNA\btdna.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Hercules\WiFi Station\WifiStation.exe
C:\Documents and Settings\Séverine LIETARD\Application Data\Microsoft\Notification de cadeaux MSN\lsnfier.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\internet explorer\iexplore.exe
C:\Program Files\Windows Live\Toolbar\wltuser.exe
C:\Program Files\internet explorer\iexplore.exe
C:\Program Files\internet explorer\iexplore.exe
C:\Documents and Settings\Séverine LIETARD\Local Settings\Temporary Internet Files\Content.IE5\R7XC3NSF\RSIT[1].exe
C:\Program Files\trend micro\Séverine LIETARD.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://go.microsoft.com/fwlink/?linkid=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.msn.fr/0SEFRFR/SAOS01?FORM=TOOLBR
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: (no name) - {6638A9DE-0745-4292-8A2E-AE530E7B9B3F} - (no file)
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.4.4525.1752\swg.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.2\Apps\apdproxy.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe"
O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
O4 - HKCU\..\Run: [OM_Monitor] C:\Program Files\OLYMPUS\OLYMPUS Master\Monitor.exe
O4 - HKCU\..\Run: [BitTorrent DNA] "C:\Program Files\DNA\btdna.exe"
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\RunOnce: [Shockwave Updater] C:\WINDOWS\system32\Adobe\Shockwave 11\SwHelper_1150596.exe -Update -1150596 -"Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; Trident/4.0; GTB6; .NET CLR 1.1.4322; .NET CLR 2.0.50727; .NET CLR 3.0.4506.2152; .NET CLR 3.5.30729; Hotbar 10.2.236.0)" -"http://www.king.com/play.jsp?tournamentId=6885"
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: Notification de cadeaux MSN.lnk = ?
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: WiFi Station.lnk = ?
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_60D6097707281E79.dll/cmsidewiki.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {406B5949-7190-4245-91A9-30A17DE16AD0} (Snapfish Activia) - http://www3.snapfish.fr/SnapfishActivia.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx1.hotmail.com/mail/w2/resources/MSNPUpld.cab
O16 - DPF: {5D637FAD-E202-48D1-8F18-5B9C459BD1E3} (Image Uploader Control) - http://copainsdavant.linternaute.com/framework/lib/obji...
O16 - DPF: {88764F69-3831-4EC1-B40B-FF21D8381345} (AdVerifierADPCtrl Class) - https://static.impots.gouv.fr/tdir/static/adpform/AdSig...
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDown...
O16 - DPF: {E77F23EB-E7AB-4502-8F37-247DBAF1A147} (Windows Live Hotmail Photo Upload Tool) - http://gfx2.hotmail.com/mail/w4/pr01/photouploadcontrol...
O23 - Service: Acer Media Server - Acer Inc. - C:\Program Files\acer\Acer eConsole\MediaServerService.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Service Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O24 - Desktop Component 0: (no name) - http://images.google.fr/images?q=tbn:T9BKTIwLv4w1GM:htt...

--
End of file - 10063 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\tasks\User_Feed_Synchronization-{D1238B1F-6285-48B6-B1DC-FFEA3A660F7B}.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4EFB-9B51-7695ECA05670}]
Yahoo! Toolbar Helper - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll [2005-12-07 399424]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Aide pour le lien d'Adobe PDF Reader - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2009-05-19 137600]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
SSVHelper Class - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll [2007-09-25 501136]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Programme d'aide de l'Assistant de connexion Windows Live - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-02-17 408440]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2009-11-28 263280]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.4.4525.1752\swg.dll [2009-11-12 764912]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
Windows Live Toolbar Helper - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E99421FB-68DD-40F0-B4AC-B7027CAE2F1A}]
EpsonToolBandKicker Class - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll [2005-02-21 368640]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{EE5D279F-081B-4404-994D-C6B60AAEBA6D} - EPSON Web-To-Page - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll [2005-02-21 368640]
{EF99BD32-C1FB-11D2-892F-0090271D4F88} - Yahoo! Toolbar - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll [2005-12-07 399424]
{21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Adobe Photo Downloader"=C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.2\Apps\apdproxy.exe [2007-03-16 63712]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2005-04-01 5562368]
"QuickTime Task"=C:\Program Files\QuickTime\qttask.exe [2006-08-24 282624]
"avast!"=C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe [2009-11-25 81000]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [2008-10-15 39792]
"MessengerPlus3"=C:\Program Files\MessengerPlus! 3\MsgPlus.exe [2010-01-14 190024]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"LogitechSoftwareUpdate"=C:\Program Files\Logitech\Video\ManifestEngine.exe [2005-01-18 196608]
"OM_Monitor"=C:\Program Files\OLYMPUS\OLYMPUS Master\Monitor.exe [2005-11-29 57344]
"BitTorrent DNA"=C:\Program Files\DNA\btdna.exe [2009-11-13 323392]
"MSMSGS"=C:\Program Files\Messenger\msmsgs.exe [2008-04-14 1695232]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Shockwave Updater"=C:\WINDOWS\system32\Adobe\Shockwave 11\SwHelper_1150596.exe [2009-04-29 468408]

C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage
Logitech Desktop Messenger.lnk - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
WiFi Station.lnk - C:\Program Files\Hercules\WiFi Station\WifiStation.exe

C:\Documents and Settings\Séverine LIETARD\Menu Démarrer\Programmes\Démarrage
Notification de cadeaux MSN.lnk - C:\Documents and Settings\Séverine LIETARD\Application Data\Microsoft\Notification de cadeaux MSN\lsnfier.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2007-02-15 236928]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
UPnPMonitor - {e57ce738-33e8-4c51-8354-bb4de9d215d1} - C:\WINDOWS\system32\upnpui.dll [2008-04-14 240128]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=
"NoDriveAutoRun"=
"NoDriveTypeAutoRun"=
"NoDrives"=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\acer\Acer eConsole\MediaSync.exe"="C:\Program Files\acer\Acer eConsole\MediaSync.exe:LocalSubNet:Enabled:Media Synchoronizer"
"C:\Program Files\acer\Acer eConsole\eConsole.exe"="C:\Program Files\acer\Acer eConsole\eConsole.exe:LocalSubNet:Enabled:eConsole"
"C:\Program Files\acer\Acer eConsole\MediaServerService.exe"="C:\Program Files\acer\Acer eConsole\MediaServerService.exe:LocalSubNet:Enabled:Acer Media Server"
"C:\Program Files\iTunes\iTunes.exe"="C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\eMule\emule.exe"="C:\Program Files\eMule\emule.exe:*:Enabled:eMule"
"C:\Program Files\DNA\btdna.exe"="C:\Program Files\DNA\btdna.exe:*:Enabled:D NA"
"C:\Program Files\BitTorrent\bittorrent.exe"="C:\Program Files\BitTorrent\bittorrent.exe:*:Enabled:BitTorrent"
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"C:\Program Files\Messenger\msmsgs.exe"="C:\Program Files\Messenger\msmsgs.exe:*:Enabled:Windows Messenger"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live FolderShare"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live FolderShare"

======List of files/folders created in the last 1 months======

2010-01-21 17:23:53 ----SHD---- C:\RECYCLER
2010-01-20 11:30:48 ----A---- C:\ComboFix.txt
2010-01-20 11:24:05 ----A---- C:\Boot.bak
2010-01-20 11:24:01 ----RASHD---- C:\cmdcons
2010-01-20 11:22:00 ----A---- C:\WINDOWS\zip.exe
2010-01-20 11:22:00 ----A---- C:\WINDOWS\SWXCACLS.exe
2010-01-20 11:22:00 ----A---- C:\WINDOWS\SWSC.exe
2010-01-20 11:22:00 ----A---- C:\WINDOWS\SWREG.exe
2010-01-20 11:22:00 ----A---- C:\WINDOWS\sed.exe
2010-01-20 11:22:00 ----A---- C:\WINDOWS\PEV.exe
2010-01-20 11:22:00 ----A---- C:\WINDOWS\NIRCMD.exe
2010-01-20 11:22:00 ----A---- C:\WINDOWS\MBR.exe
2010-01-20 11:22:00 ----A---- C:\WINDOWS\grep.exe
2010-01-20 11:21:55 ----D---- C:\WINDOWS\ERDNT
2010-01-19 09:34:24 ----D---- C:\Qoobox
2010-01-15 18:56:48 ----D---- C:\Documents and Settings\Séverine LIETARD\Application Data\Malwarebytes
2010-01-15 18:56:43 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2010-01-15 18:56:43 ----D---- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2010-01-15 18:40:30 ----D---- C:\Program Files\CCleaner
2010-01-15 10:53:09 ----D---- C:\Ad-Remover
2010-01-14 20:08:44 ----A---- C:\cleannavi.txt
2010-01-14 20:07:55 ----D---- C:\Program Files\Navilog1
2010-01-14 13:10:50 ----A---- C:\TB.txt
2010-01-14 13:10:02 ----D---- C:\ToolBar SD
2010-01-14 10:55:37 ----D---- C:\rsit
2010-01-14 10:55:37 ----D---- C:\Program Files\trend micro
2010-01-14 10:48:16 ----HD---- C:\WINDOWS\msdownld.tmp
2010-01-14 10:46:43 ----HDC---- C:\WINDOWS\ie8
2010-01-13 20:31:53 ----HDC---- C:\WINDOWS\$NtUninstallKB955759$
2010-01-13 20:31:42 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2010-01-07 09:15:47 ----HD---- C:\Documents and Settings\All Users\Application Data\{04D0A305-8E13-4D5D-BE22-67E85E9E1B7A}
2009-12-23 12:11:32 ----D---- C:\Documents and Settings\Séverine LIETARD\Application Data\BitTorrent
2009-12-23 12:11:29 ----D---- C:\Program Files\BitTorrent
2009-12-23 09:21:04 ----A---- C:\WINDOWS\system32\aswBoot.exe
2009-12-23 09:09:12 ----D---- C:\Documents and Settings\Séverine LIETARD\Application Data\HTML Executable
2009-12-22 13:17:00 ----D---- C:\Documents and Settings\Séverine LIETARD\Application Data\Uniblue

======List of files/folders modified in the last 1 months======

2010-01-21 20:09:19 ----D---- C:\Documents and Settings\Séverine LIETARD\Application Data\DNA
2010-01-21 17:29:03 ----D---- C:\Program Files\DNA
2010-01-21 17:23:57 ----D---- C:\WINDOWS\Prefetch
2010-01-21 17:23:51 ----SHD---- C:\WINDOWS\Installer
2010-01-21 17:23:07 ----D---- C:\WINDOWS\Temp
2010-01-21 17:22:43 ----RD---- C:\Program Files
2010-01-21 17:20:26 ----D---- C:\Program Files\Microsoft Silverlight
2010-01-21 17:19:30 ----A---- C:\WINDOWS\SchedLgU.Txt
2010-01-21 17:19:29 ----D---- C:\WINDOWS\system32\CatRoot2
2010-01-21 09:00:49 ----D---- C:\Config.Msi
2010-01-20 11:29:33 ----AD---- C:\WINDOWS
2010-01-20 11:29:33 ----A---- C:\WINDOWS\system.ini
2010-01-20 11:29:12 ----D---- C:\WINDOWS\system32
2010-01-20 11:28:27 ----D---- C:\WINDOWS\AppPatch
2010-01-20 11:28:27 ----AD---- C:\WINDOWS\system32\drivers
2010-01-20 11:28:22 ----D---- C:\Program Files\Fichiers communs
2010-01-20 11:24:05 ----RASH---- C:\boot.ini
2010-01-18 11:45:34 ----HD---- C:\WINDOWS\$NtUninstallKB888113$
2010-01-15 19:02:56 ----D---- C:\WINDOWS\Debug
2010-01-15 09:11:50 ----D---- C:\WINDOWS\system32\CatRoot
2010-01-15 09:10:13 ----HD---- C:\WINDOWS\inf
2010-01-15 09:10:07 ----RSHD---- C:\WINDOWS\system32\dllcache
2010-01-15 09:10:05 ----D---- C:\WINDOWS\ie8updates
2010-01-14 11:00:43 ----D---- C:\Program Files\MessengerPlus! 3
2010-01-14 10:49:06 ----D---- C:\WINDOWS\system32\fr-fr
2010-01-14 10:49:06 ----D---- C:\WINDOWS\Media
2010-01-14 10:49:06 ----D---- C:\WINDOWS\Help
2010-01-14 10:49:06 ----D---- C:\Program Files\Internet Explorer
2010-01-14 10:47:38 ----HD---- C:\WINDOWS\$hf_mig$
2010-01-14 10:40:32 ----SD---- C:\Documents and Settings\Séverine LIETARD\Application Data\Microsoft
2010-01-08 09:39:05 ----D---- C:\Documents and Settings\Séverine LIETARD\Application Data\FlySuite
2010-01-08 09:39:01 ----D---- C:\FlySuite
2010-01-05 12:43:27 ----D---- C:\Program Files\Fichiers communs\Microsoft Shared
2010-01-05 12:43:02 ----D---- C:\Program Files\MSECache
2010-01-05 12:25:05 ----D---- C:\WINDOWS\system32\FxsTmp
2010-01-05 08:43:14 ----D---- C:\WINDOWS\WinSxS
2010-01-05 08:43:10 ----D---- C:\Documents and Settings\All Users\Application Data\Adobe
2010-01-05 08:43:00 ----D---- C:\Program Files\Fichiers communs\Adobe
2010-01-05 08:43:00 ----D---- C:\Program Files\Adobe
2010-01-05 01:17:46 ----A---- C:\WINDOWS\system32\MRT.exe
2009-12-23 12:01:50 ----D---- C:\Program Files\eMule
2009-12-23 09:23:12 ----D---- C:\Program Files\Google
2009-12-23 09:21:24 ----SD---- C:\WINDOWS\Tasks

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 Aavmker4;avast! Asynchronous Virus Monitor; C:\WINDOWS\system32\drivers\Aavmker4.sys [2009-11-25 27408]
R1 AmdK8;Pilote de processeur AMD Athlon64; C:\WINDOWS\system32\DRIVERS\AmdK8.sys [2004-05-08 38912]
R1 aswSP;avast! Self Protection; C:\WINDOWS\system32\drivers\aswSP.sys [2009-11-25 114768]
R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2009-11-25 48560]
R1 cdrbsdrv;cdrbsdrv; C:\WINDOWS\system32\drivers\cdrbsdrv.sys [2004-03-08 13567]
R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files\Fichiers communs\Symantec Shared\EENGINE\eeCtrl.sys []
R1 kbdhid;Pilote HID de clavier; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14720]
R1 StarOpen;StarOpen; C:\WINDOWS\system32\drivers\StarOpen.sys [2008-12-13 5632]
R1 UBHelper;UBHelper; C:\WINDOWS\system32\drivers\UBHelper.sys [2004-12-17 13952]
R2 AegisP;AEGIS Protocol (IEEE 802.1x) v3.5.3.0; C:\WINDOWS\system32\DRIVERS\AegisP.sys [2007-12-27 21419]
R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\DRIVERS\aswFsBlk.sys [2009-11-25 20560]
R2 aswMon2;avast! Standard Shield Support; C:\WINDOWS\system32\drivers\aswMon2.sys [2009-11-25 94160]
R2 fssfltr;FssFltr; C:\WINDOWS\system32\DRIVERS\fssfltr_tdi.sys [2009-08-05 54752]
R2 int15.sys;int15.sys; \??\C:\Program Files\Acer\eRecovery\int15.sys []
R3 Afc;PPdus ASPI Shell; C:\WINDOWS\system32\drivers\Afc.sys [2005-02-23 11776]
R3 Arp1394;Protocole client ARP 1394; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-13 60800]
R3 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2009-11-25 23120]
R3 GEARAspiWDM;GEARAspiWDM; C:\WINDOWS\System32\Drivers\GEARAspiWDM.sys [2005-02-02 14408]
R3 HidUsb;Pilote de classe HID Microsoft; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 LVUSBSta;Logitech USB Monitor Filter; C:\WINDOWS\system32\drivers\lvusbsta.sys [2005-01-31 22016]
R3 mouhid;Pilote HID de souris; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-08-23 12288]
R3 NIC1394;Pilote réseau 1394; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-13 61824]
R3 NTIDrvr;Upper Class Filter Driver; C:\WINDOWS\system32\DRIVERS\NTIDrvr.sys [2005-06-23 6144]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2005-04-01 3454656]
R3 nvax;Service for NVIDIA(R) nForce(TM) Audio Enumerator; C:\WINDOWS\system32\drivers\nvax.sys [2004-09-10 52224]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\WINDOWS\system32\DRIVERS\NVENETFD.sys [2004-11-15 33408]
R3 nvnetbus;NVIDIA Network Bus Enumerator; C:\WINDOWS\system32\DRIVERS\nvnetbus.sys [2004-11-15 12928]
R3 nvnforce;Service for NVIDIA(R) nForce(TM) Audio; C:\WINDOWS\system32\drivers\nvapu.sys [2004-09-10 412032]
R3 Pcouffin;Low level access layer for CD devices; C:\WINDOWS\System32\Drivers\Pcouffin.sys [2006-02-08 47360]
R3 pepifilter;Volume Adapter; C:\WINDOWS\system32\DRIVERS\lv302af.sys [2005-01-31 7104]
R3 PID_08A0;QuickCam IM(PID_08A0); C:\WINDOWS\system32\DRIVERS\LV302AV.SYS [2005-01-31 912768]
R3 RT73;Hercules Wireless USB Dongle Driver ; C:\WINDOWS\system32\DRIVERS\rt73.sys [2006-12-21 429440]
R3 usbaudio;Pilote USB audio (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2008-04-13 60032]
R3 usbccgp;Pilote parent générique USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
R3 usbehci;Pilote miniport de contrôleur d'hôte amélioré Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-13 30208]
R3 usbhub;Concentrateur USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-13 59520]
R3 usbohci;Pilote miniport de contrôleur hôte ouvert USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbohci.sys [2008-04-13 17152]
R3 USBSTOR;Pilote de stockage de masse USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 catchme;catchme; \??\C:\DOCUME~1\SVERIN~1\LOCALS~1\Temp\catchme.sys []
S3 CCDECODE;Décodeur sous-titre fermé; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
S3 MSTEE;Convertisseur en T/site-à-site de répartition Microsoft; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504]
S3 NABTSFEC;Codec NABTS/FEC VBI; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
S3 NdisIP;Connection TV/vidéo Microsoft; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-13 10880]
S3 PCANDIS5;PCANDIS5 Protocol Driver; \??\C:\WINDOWS\system32\PCANDIS5.SYS []
S3 SLIP;Détrameur décalage BDA; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-13 11136]
S3 sscdbus;SAMSUNG USB Composite Device driver (WDM); C:\WINDOWS\system32\DRIVERS\sscdbus.sys [2007-07-03 80552]
S3 sscdmdfl;SAMSUNG Mobile Modem Filter; C:\WINDOWS\system32\DRIVERS\sscdmdfl.sys [2007-07-03 11944]
S3 sscdmdm;SAMSUNG Mobile Modem Drivers; C:\WINDOWS\system32\DRIVERS\sscdmdm.sys [2007-07-03 106792]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-13 15232]
S3 usbprint;Classe d'imprimantes USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Pilote de scanneur USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 wceusbsh;Windows CE USB Serial Host Driver; C:\WINDOWS\system32\DRIVERS\wceusbsh.sys [2004-08-04 32128]
S3 WSTCODEC;Codec Teletext standard; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 Acer Media Server;Acer Media Server; C:\Program Files\acer\Acer eConsole\MediaServerService.exe [2005-06-21 438272]
R2 aswUpdSv;avast! iAVS4 Control Service; C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe [2009-11-25 18752]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast4\ashServ.exe [2009-11-25 138680]
R2 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2005-04-01 127043]
R2 Planificateur LiveUpdate automatique;Planificateur LiveUpdate automatique; C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe [2006-08-03 100032]
R2 SeaPort;SeaPort; C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2009-05-19 240512]
R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe [2009-11-25 254040]
R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast4\ashWebSv.exe [2009-11-25 352920]
S2 Fax;Fax; C:\WINDOWS\system32\fxssvc.exe [2008-04-14 268800]
S2 gupdate;Service Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2009-12-23 133104]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 fsssvc;Service Windows Live Contrôle parental; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2009-08-05 704864]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-05-12 182768]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-03 69632]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 iPodService;iPodService; C:\Program Files\iPod\bin\iPodService.exe [2006-06-14 323584]
S3 LiveUpdate;LiveUpdate; C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE [2006-08-03 2119360]
S3 WMPNetworkSvc;Service Partage réseau du Lecteur Windows Media; C:\Program Files\Windows Media Player\WMPNetwk.exe [2006-11-03 918016]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------
21 Janvier 2010 20:51:20



Avira AntiVir Personal
Date de création du fichier de rapport : jeudi 21 janvier 2010 20:49

La recherche porte sur 1284893 souches de virus.

Détenteur de la licence : Avira AntiVir Personal - FREE Antivirus
Numéro de série : 0000149996-ADJIE-0000001
Plateforme : Windows XP
Version de Windows : (Service Pack 3) [5.1.2600]
Mode Boot : Démarré normalement
Identifiant : Séverine LIETARD
Nom de l'ordinateur : ACER-E3B0141A93

Informations de version :
BUILD.DAT : 9.0.0.65 17959 Bytes 22/04/2009 12:06:00
AVSCAN.EXE : 9.0.3.6 466689 Bytes 21/04/2009 13:20:54
AVSCAN.DLL : 9.0.3.0 49409 Bytes 03/03/2009 10:21:02
LUKE.DLL : 9.0.3.2 209665 Bytes 20/02/2009 11:35:11
LUKERES.DLL : 9.0.2.0 13569 Bytes 03/03/2009 10:21:31
ANTIVIR0.VDF : 7.1.0.0 15603712 Bytes 27/10/2008 12:30:36
ANTIVIR1.VDF : 7.1.2.12 3336192 Bytes 11/02/2009 20:33:26
ANTIVIR2.VDF : 7.1.2.105 513536 Bytes 03/03/2009 07:41:14
ANTIVIR3.VDF : 7.1.2.127 110592 Bytes 05/03/2009 14:58:20
Version du moteur : 8.2.0.100
AEVDF.DLL : 8.1.1.0 106868 Bytes 27/01/2009 17:36:42
AESCRIPT.DLL : 8.1.1.56 352634 Bytes 26/02/2009 20:01:56
AESCN.DLL : 8.1.1.7 127347 Bytes 12/02/2009 11:44:25
AERDL.DLL : 8.1.1.3 438645 Bytes 29/10/2008 18:24:41
AEPACK.DLL : 8.1.3.10 397686 Bytes 04/03/2009 13:06:10
AEOFFICE.DLL : 8.1.0.36 196987 Bytes 26/02/2009 20:01:56
AEHEUR.DLL : 8.1.0.100 1618295 Bytes 25/02/2009 15:49:16
AEHELP.DLL : 8.1.2.2 119158 Bytes 26/02/2009 20:01:56
AEGEN.DLL : 8.1.1.24 336244 Bytes 04/03/2009 13:06:10
AEEMU.DLL : 8.1.0.9 393588 Bytes 09/10/2008 14:32:40
AECORE.DLL : 8.1.6.6 176501 Bytes 17/02/2009 14:22:44
AEBB.DLL : 8.1.0.3 53618 Bytes 09/10/2008 14:32:40
AVWINLL.DLL : 9.0.0.3 18177 Bytes 12/12/2008 08:47:30
AVPREF.DLL : 9.0.0.1 43777 Bytes 03/12/2008 11:39:26
AVREP.DLL : 8.0.0.3 155905 Bytes 20/01/2009 14:34:28
AVREG.DLL : 9.0.0.0 36609 Bytes 07/11/2008 15:24:42
AVARKT.DLL : 9.0.0.3 292609 Bytes 24/03/2009 15:05:22
AVEVTLOG.DLL : 9.0.0.7 167169 Bytes 30/01/2009 10:36:37
SQLITE3.DLL : 3.6.1.0 326401 Bytes 28/01/2009 15:03:49
SMTPLIB.DLL : 9.2.0.25 28417 Bytes 02/02/2009 08:20:57
NETNT.DLL : 9.0.0.0 11521 Bytes 07/11/2008 15:40:59
RCIMAGE.DLL : 9.0.0.21 2438401 Bytes 17/02/2009 13:49:32
RCTEXT.DLL : 9.0.37.0 88321 Bytes 15/04/2009 10:07:05

Configuration pour la recherche actuelle :
Nom de la tâche...............................: Bref contrôle système après installation
Fichier de configuration......................: c:\program files\avira\antivir desktop\setupprf.dat
Documentation.................................: bas
Action principale.............................: interactif
Action secondaire.............................: ignorer
Recherche sur les secteurs d'amorçage maître..: marche
Recherche sur les secteurs d'amorçage.........: marche
Recherche dans les programmes actifs..........: marche
Recherche en cours sur l'enregistrement.......: marche
Recherche de Rootkits.........................: arrêt
Contrôle d'intégrité de fichiers système......: arrêt
Fichier mode de recherche.....................: Sélection de fichiers intelligente
Recherche sur les archives....................: marche
Limiter la profondeur de récursivité..........: 20
Archive Smart Extensions......................: marche
Heuristique de macrovirus.....................: marche
Heuristique fichier...........................: moyen
Catégories de dangers divergentes.............: +APPL,+GAME,+JOKE,+PCK,+SPR,

Début de la recherche : jeudi 21 janvier 2010 20:49

La recherche sur les processus démarrés commence :
Processus de recherche 'avscan.exe' - '1' module(s) sont contrôlés
Processus de recherche 'avconfig.exe' - '1' module(s) sont contrôlés
Processus de recherche 'notepad.exe' - '1' module(s) sont contrôlés
Processus de recherche 'avgnt.exe' - '1' module(s) sont contrôlés
Processus de recherche 'sched.exe' - '1' module(s) sont contrôlés
Processus de recherche 'avguard.exe' - '1' module(s) sont contrôlés
Processus de recherche 'setup.exe' - '1' module(s) sont contrôlés
Processus de recherche 'msiexec.exe' - '1' module(s) sont contrôlés
Processus de recherche 'presetup.exe' - '1' module(s) sont contrôlés
Processus de recherche 'avira_antivir_personal_free[1].exe' - '1' module(s) sont contrôlés
Processus de recherche 'ctfmon.exe' - '1' module(s) sont contrôlés
Processus de recherche 'wlcomm.exe' - '1' module(s) sont contrôlés
Processus de recherche 'msnmsgr.exe' - '1' module(s) sont contrôlés
Processus de recherche 'lsnfier.exe' - '1' module(s) sont contrôlés
Processus de recherche 'WiFiStation.exe' - '1' module(s) sont contrôlés
Processus de recherche 'msmsgs.exe' - '1' module(s) sont contrôlés
Processus de recherche 'svchost.exe' - '1' module(s) sont contrôlés
Processus de recherche 'btdna.exe' - '1' module(s) sont contrôlés
Processus de recherche 'Monitor.exe' - '1' module(s) sont contrôlés
Processus de recherche 'MsgPlus.exe' - '1' module(s) sont contrôlés
Processus de recherche 'ashDisp.exe' - '1' module(s) sont contrôlés
Processus de recherche 'qttask.exe' - '1' module(s) sont contrôlés
Processus de recherche 'apdproxy.exe' - '1' module(s) sont contrôlés
Processus de recherche 'alg.exe' - '1' module(s) sont contrôlés
Processus de recherche 'ashWebSv.exe' - '1' module(s) sont contrôlés
Processus de recherche 'ashMaiSv.exe' - '1' module(s) sont contrôlés
Processus de recherche 'svchost.exe' - '1' module(s) sont contrôlés
Processus de recherche 'SeaPort.exe' - '1' module(s) sont contrôlés
Processus de recherche 'AluSchedulerSvc.exe' - '1' module(s) sont contrôlés
Processus de recherche 'nvsvc32.exe' - '1' module(s) sont contrôlés
Processus de recherche 'MediaServerService.exe' - '1' module(s) sont contrôlés
Processus de recherche 'svchost.exe' - '1' module(s) sont contrôlés
Processus de recherche 'spoolsv.exe' - '1' module(s) sont contrôlés
Processus de recherche 'explorer.exe' - '1' module(s) sont contrôlés
Processus de recherche 'ashServ.exe' - '1' module(s) sont contrôlés
Processus de recherche 'aswUpdSv.exe' - '1' module(s) sont contrôlés
Processus de recherche 'svchost.exe' - '1' module(s) sont contrôlés
Processus de recherche 'svchost.exe' - '1' module(s) sont contrôlés
Processus de recherche 'svchost.exe' - '1' module(s) sont contrôlés
Processus de recherche 'svchost.exe' - '1' module(s) sont contrôlés
Processus de recherche 'svchost.exe' - '1' module(s) sont contrôlés
Processus de recherche 'lsass.exe' - '1' module(s) sont contrôlés
Processus de recherche 'services.exe' - '1' module(s) sont contrôlés
Processus de recherche 'winlogon.exe' - '1' module(s) sont contrôlés
Processus de recherche 'csrss.exe' - '1' module(s) sont contrôlés
Processus de recherche 'smss.exe' - '1' module(s) sont contrôlés
'46' processus ont été contrôlés avec '46' modules

La recherche sur les secteurs d'amorçage maître commence :
Secteur d'amorçage maître HD0
[INFO] Aucun virus trouvé !
Secteur d'amorçage maître HD1
[INFO] Aucun virus trouvé !
Secteur d'amorçage maître HD2
[INFO] Aucun virus trouvé !
Secteur d'amorçage maître HD3
[INFO] Aucun virus trouvé !
Secteur d'amorçage maître HD4
[INFO] Aucun virus trouvé !

La recherche sur les secteurs d'amorçage commence :

La recherche sur les renvois aux fichiers exécutables (registre) commence :
Le registre a été contrôlé ( '60' fichiers).



Fin de la recherche : jeudi 21 janvier 2010 20:50
Temps nécessaire: 00:13 Minute(s)

La recherche a été effectuée intégralement

0 Les répertoires ont été contrôlés
471 Des fichiers ont été contrôlés
0 Des virus ou programmes indésirables ont été trouvés
0 Des fichiers ont été classés comme suspects
0 Des fichiers ont été supprimés
0 Des virus ou programmes indésirables ont été réparés
0 Les fichiers ont été déplacés dans la quarantaine
0 Les fichiers ont été renommés
0 Impossible de contrôler des fichiers
471 Fichiers non infectés
3 Les archives ont été contrôlées
0 Avertissements
0 Consignes

22 Janvier 2010 02:59:01

Bonsoir lietase,

je te conseille de désinstaller Avast et de garder Antivir...

Q: Comment peut-on désinstaller avast!?

A: avast ! se désinstalle comme la plupart des autres logiciels via le ‘panneau de configuration’ , ‘AJOUTER ou SUPPRIMER des PROGRAMMES’. Si un problème quelconque survient, utilisez l'utilitaire de désinstallation d'avast! : http://www.avast.com/fre/avast-uninstall-utility.html

Procédez comme ceci:

1. Cliquez sur DEMARRER.
2. Sélectionnez PARAMETRES -> PANNEAU DE CONFIGURATION (ou simplement PANNEAU DE CONFIGURATION - cela dépend de votre version de Windows) -> AJOUTER OU SUPPRIMER DES PROGRAMMES.
3. A partir de la liste des applications installées, sélectionnez avast! Antivirus et cliquez sur le bouton MODIFIER/SUPPRIMER.
4. Dans la fenêtre qui appaîtra. sélectionnez DESINSTALLATION et cliquez sur SUIVANT.

Le redémarrage de l'ordinateur sera indispensable après la désinstallation d'avast!.


http://www.avast.com/fre/faq-installation-problems.html...

Et poste un nouveau RSIT.

A+
22 Janvier 2010 09:55:22

Bonjour Frederix,

J'ai désinstallé avast et ci joint le rapport RSIT :

Logfile of random's system information tool 1.06 (written by random/random)
Run by Séverine LIETARD at 2010-01-22 09:53:36
Microsoft Windows XP Édition familiale Service Pack 3
System drive C: has 60 GB (64%) free of 94 GB
Total RAM: 1023 MB (57% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 09:53:40, on 22/01/2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir Desktop\sched.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\acer\Acer eConsole\MediaServerService.exe
C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.2\Apps\apdproxy.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe
C:\Program Files\MessengerPlus! 3\MsgPlus.exe
C:\Program Files\Avira\AntiVir Desktop\avguard.exe
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\OLYMPUS\OLYMPUS Master\Monitor.exe
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\Program Files\DNA\btdna.exe
C:\Program Files\Messenger\msmsgs.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\Program Files\Hercules\WiFi Station\WifiStation.exe
C:\Documents and Settings\Séverine LIETARD\Application Data\Microsoft\Notification de cadeaux MSN\lsnfier.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\Documents and Settings\Séverine LIETARD\Local Settings\Temporary Internet Files\Content.IE5\5XKI1A69\RSIT[1].exe
C:\Program Files\trend micro\Séverine LIETARD.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://go.microsoft.com/fwlink/?linkid=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.msn.fr/0SEFRFR/SAOS01?FORM=TOOLBR
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: (no name) - {6638A9DE-0745-4292-8A2E-AE530E7B9B3F} - (no file)
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.4.4525.1752\swg.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.2\Apps\apdproxy.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe"
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
O4 - HKCU\..\Run: [OM_Monitor] C:\Program Files\OLYMPUS\OLYMPUS Master\Monitor.exe
O4 - HKCU\..\Run: [BitTorrent DNA] "C:\Program Files\DNA\btdna.exe"
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\RunOnce: [Shockwave Updater] C:\WINDOWS\system32\Adobe\Shockwave 11\SwHelper_1150596.exe -Update -1150596 -"Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; Trident/4.0; GTB6; .NET CLR 1.1.4322; .NET CLR 2.0.50727; .NET CLR 3.0.4506.2152; .NET CLR 3.5.30729; Hotbar 10.2.236.0)" -"http://www.king.com/play.jsp?tournamentId=6885"
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: Notification de cadeaux MSN.lnk = ?
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: WiFi Station.lnk = ?
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_60D6097707281E79.dll/cmsidewiki.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {406B5949-7190-4245-91A9-30A17DE16AD0} (Snapfish Activia) - http://www3.snapfish.fr/SnapfishActivia.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx1.hotmail.com/mail/w2/resources/MSNPUpld.cab
O16 - DPF: {5D637FAD-E202-48D1-8F18-5B9C459BD1E3} (Image Uploader Control) - http://copainsdavant.linternaute.com/framework/lib/obji...
O16 - DPF: {88764F69-3831-4EC1-B40B-FF21D8381345} (AdVerifierADPCtrl Class) - https://static.impots.gouv.fr/tdir/static/adpform/AdSig...
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDown...
O16 - DPF: {E77F23EB-E7AB-4502-8F37-247DBAF1A147} (Windows Live Hotmail Photo Upload Tool) - http://gfx2.hotmail.com/mail/w4/pr01/photouploadcontrol...
O23 - Service: Acer Media Server - Acer Inc. - C:\Program Files\acer\Acer eConsole\MediaServerService.exe
O23 - Service: Avira AntiVir Planificateur (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Service Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O24 - Desktop Component 0: (no name) - http://images.google.fr/images?q=tbn:T9BKTIwLv4w1GM:htt...

--
End of file - 9745 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\tasks\User_Feed_Synchronization-{D1238B1F-6285-48B6-B1DC-FFEA3A660F7B}.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4EFB-9B51-7695ECA05670}]
Yahoo! Toolbar Helper - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll [2005-12-07 399424]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Aide pour le lien d'Adobe PDF Reader - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2009-05-19 137600]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
SSVHelper Class - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll [2007-09-25 501136]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Programme d'aide de l'Assistant de connexion Windows Live - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-02-17 408440]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2009-11-28 263280]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.4.4525.1752\swg.dll [2009-11-12 764912]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
Windows Live Toolbar Helper - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E99421FB-68DD-40F0-B4AC-B7027CAE2F1A}]
EpsonToolBandKicker Class - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll [2005-02-21 368640]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{EE5D279F-081B-4404-994D-C6B60AAEBA6D} - EPSON Web-To-Page - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll [2005-02-21 368640]
{EF99BD32-C1FB-11D2-892F-0090271D4F88} - Yahoo! Toolbar - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll [2005-12-07 399424]
{21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Adobe Photo Downloader"=C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.2\Apps\apdproxy.exe [2007-03-16 63712]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2005-04-01 5562368]
"QuickTime Task"=C:\Program Files\QuickTime\qttask.exe [2006-08-24 282624]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [2008-10-15 39792]
"MessengerPlus3"=C:\Program Files\MessengerPlus! 3\MsgPlus.exe [2010-01-14 190024]
"avgnt"=C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [2009-03-02 209153]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"LogitechSoftwareUpdate"=C:\Program Files\Logitech\Video\ManifestEngine.exe [2005-01-18 196608]
"OM_Monitor"=C:\Program Files\OLYMPUS\OLYMPUS Master\Monitor.exe [2005-11-29 57344]
"BitTorrent DNA"=C:\Program Files\DNA\btdna.exe [2009-11-13 323392]
"MSMSGS"=C:\Program Files\Messenger\msmsgs.exe [2008-04-14 1695232]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Shockwave Updater"=C:\WINDOWS\system32\Adobe\Shockwave 11\SwHelper_1150596.exe [2009-04-29 468408]

C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage
Logitech Desktop Messenger.lnk - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
WiFi Station.lnk - C:\Program Files\Hercules\WiFi Station\WifiStation.exe

C:\Documents and Settings\Séverine LIETARD\Menu Démarrer\Programmes\Démarrage
Notification de cadeaux MSN.lnk - C:\Documents and Settings\Séverine LIETARD\Application Data\Microsoft\Notification de cadeaux MSN\lsnfier.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2007-02-15 236928]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
UPnPMonitor - {e57ce738-33e8-4c51-8354-bb4de9d215d1} - C:\WINDOWS\system32\upnpui.dll [2008-04-14 240128]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=
"NoDriveAutoRun"=
"NoDriveTypeAutoRun"=
"NoDrives"=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\acer\Acer eConsole\MediaSync.exe"="C:\Program Files\acer\Acer eConsole\MediaSync.exe:LocalSubNet:Enabled:Media Synchoronizer"
"C:\Program Files\acer\Acer eConsole\eConsole.exe"="C:\Program Files\acer\Acer eConsole\eConsole.exe:LocalSubNet:Enabled:eConsole"
"C:\Program Files\acer\Acer eConsole\MediaServerService.exe"="C:\Program Files\acer\Acer eConsole\MediaServerService.exe:LocalSubNet:Enabled:Acer Media Server"
"C:\Program Files\iTunes\iTunes.exe"="C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\eMule\emule.exe"="C:\Program Files\eMule\emule.exe:*:Enabled:eMule"
"C:\Program Files\DNA\btdna.exe"="C:\Program Files\DNA\btdna.exe:*:Enabled:D NA"
"C:\Program Files\BitTorrent\bittorrent.exe"="C:\Program Files\BitTorrent\bittorrent.exe:*:Enabled:BitTorrent"
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"C:\Program Files\Messenger\msmsgs.exe"="C:\Program Files\Messenger\msmsgs.exe:*:Enabled:Windows Messenger"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live FolderShare"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live FolderShare"

======List of files/folders created in the last 1 months======

2010-01-21 20:48:49 ----D---- C:\Program Files\Avira
2010-01-21 20:48:49 ----D---- C:\Documents and Settings\All Users\Application Data\Avira
2010-01-21 17:23:53 ----SHD---- C:\RECYCLER
2010-01-20 11:30:48 ----A---- C:\ComboFix.txt
2010-01-20 11:24:05 ----A---- C:\Boot.bak
2010-01-20 11:24:01 ----RASHD---- C:\cmdcons
2010-01-20 11:22:00 ----A---- C:\WINDOWS\zip.exe
2010-01-20 11:22:00 ----A---- C:\WINDOWS\SWXCACLS.exe
2010-01-20 11:22:00 ----A---- C:\WINDOWS\SWSC.exe
2010-01-20 11:22:00 ----A---- C:\WINDOWS\SWREG.exe
2010-01-20 11:22:00 ----A---- C:\WINDOWS\sed.exe
2010-01-20 11:22:00 ----A---- C:\WINDOWS\PEV.exe
2010-01-20 11:22:00 ----A---- C:\WINDOWS\NIRCMD.exe
2010-01-20 11:22:00 ----A---- C:\WINDOWS\MBR.exe
2010-01-20 11:22:00 ----A---- C:\WINDOWS\grep.exe
2010-01-20 11:21:55 ----D---- C:\WINDOWS\ERDNT
2010-01-19 09:34:24 ----D---- C:\Qoobox
2010-01-15 18:56:48 ----D---- C:\Documents and Settings\Séverine LIETARD\Application Data\Malwarebytes
2010-01-15 18:56:43 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2010-01-15 18:56:43 ----D---- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2010-01-15 18:40:30 ----D---- C:\Program Files\CCleaner
2010-01-15 10:53:09 ----D---- C:\Ad-Remover
2010-01-14 20:08:44 ----A---- C:\cleannavi.txt
2010-01-14 20:07:55 ----D---- C:\Program Files\Navilog1
2010-01-14 13:10:50 ----A---- C:\TB.txt
2010-01-14 13:10:02 ----D---- C:\ToolBar SD
2010-01-14 10:55:37 ----D---- C:\rsit
2010-01-14 10:55:37 ----D---- C:\Program Files\trend micro
2010-01-14 10:48:16 ----HD---- C:\WINDOWS\msdownld.tmp
2010-01-14 10:46:43 ----HDC---- C:\WINDOWS\ie8
2010-01-13 20:31:53 ----HDC---- C:\WINDOWS\$NtUninstallKB955759$
2010-01-13 20:31:42 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2010-01-07 09:15:47 ----HD---- C:\Documents and Settings\All Users\Application Data\{04D0A305-8E13-4D5D-BE22-67E85E9E1B7A}
2009-12-23 12:11:32 ----D---- C:\Documents and Settings\Séverine LIETARD\Application Data\BitTorrent
2009-12-23 12:11:29 ----D---- C:\Program Files\BitTorrent
2009-12-23 09:09:12 ----D---- C:\Documents and Settings\Séverine LIETARD\Application Data\HTML Executable

======List of files/folders modified in the last 1 months======

2010-01-22 09:52:19 ----D---- C:\WINDOWS\Prefetch
2010-01-22 09:51:44 ----D---- C:\WINDOWS\Temp
2010-01-22 09:50:49 ----D---- C:\WINDOWS\system32\CatRoot2
2010-01-22 09:50:42 ----AD---- C:\WINDOWS
2010-01-22 09:50:21 ----D---- C:\Program Files\DNA
2010-01-22 09:50:21 ----D---- C:\Documents and Settings\Séverine LIETARD\Application Data\DNA
2010-01-22 09:48:54 ----A---- C:\WINDOWS\SchedLgU.Txt
2010-01-22 09:48:40 ----D---- C:\WINDOWS\system32
2010-01-22 09:48:38 ----AD---- C:\WINDOWS\system32\drivers
2010-01-21 20:48:57 ----HD---- C:\WINDOWS\inf
2010-01-21 20:48:49 ----RD---- C:\Program Files
2010-01-21 20:47:38 ----SHD---- C:\WINDOWS\Installer
2010-01-21 20:47:38 ----D---- C:\Config.Msi
2010-01-21 20:47:37 ----D---- C:\WINDOWS\WinSxS
2010-01-21 20:47:36 ----D---- C:\Program Files\Fichiers communs\Microsoft Shared
2010-01-21 17:20:26 ----D---- C:\Program Files\Microsoft Silverlight
2010-01-20 11:29:33 ----A---- C:\WINDOWS\system.ini
2010-01-20 11:28:27 ----D---- C:\WINDOWS\AppPatch
2010-01-20 11:28:22 ----D---- C:\Program Files\Fichiers communs
2010-01-20 11:24:05 ----RASH---- C:\boot.ini
2010-01-18 11:45:34 ----HD---- C:\WINDOWS\$NtUninstallKB888113$
2010-01-15 19:02:56 ----D---- C:\WINDOWS\Debug
2010-01-15 09:11:50 ----D---- C:\WINDOWS\system32\CatRoot
2010-01-15 09:10:07 ----RSHD---- C:\WINDOWS\system32\dllcache
2010-01-15 09:10:05 ----D---- C:\WINDOWS\ie8updates
2010-01-14 11:00:43 ----D---- C:\Program Files\MessengerPlus! 3
2010-01-14 10:49:06 ----D---- C:\WINDOWS\system32\fr-fr
2010-01-14 10:49:06 ----D---- C:\WINDOWS\Media
2010-01-14 10:49:06 ----D---- C:\WINDOWS\Help
2010-01-14 10:49:06 ----D---- C:\Program Files\Internet Explorer
2010-01-14 10:47:38 ----HD---- C:\WINDOWS\$hf_mig$
2010-01-14 10:40:32 ----SD---- C:\Documents and Settings\Séverine LIETARD\Application Data\Microsoft
2010-01-08 09:39:05 ----D---- C:\Documents and Settings\Séverine LIETARD\Application Data\FlySuite
2010-01-08 09:39:01 ----D---- C:\FlySuite
2010-01-05 12:43:02 ----D---- C:\Program Files\MSECache
2010-01-05 12:25:05 ----D---- C:\WINDOWS\system32\FxsTmp
2010-01-05 08:43:10 ----D---- C:\Documents and Settings\All Users\Application Data\Adobe
2010-01-05 08:43:00 ----D---- C:\Program Files\Fichiers communs\Adobe
2010-01-05 08:43:00 ----D---- C:\Program Files\Adobe
2010-01-05 01:17:46 ----A---- C:\WINDOWS\system32\MRT.exe
2009-12-23 12:01:50 ----D---- C:\Program Files\eMule
2009-12-23 09:23:12 ----D---- C:\Program Files\Google
2009-12-23 09:21:24 ----SD---- C:\WINDOWS\Tasks

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 AmdK8;Pilote de processeur AMD Athlon64; C:\WINDOWS\system32\DRIVERS\AmdK8.sys [2004-05-08 38912]
R1 avgio;avgio; \??\C:\Program Files\Avira\AntiVir Desktop\avgio.sys []
R1 avipbb;avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [2009-03-30 96104]
R1 cdrbsdrv;cdrbsdrv; C:\WINDOWS\system32\drivers\cdrbsdrv.sys [2004-03-08 13567]
R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files\Fichiers communs\Symantec Shared\EENGINE\eeCtrl.sys []
R1 kbdhid;Pilote HID de clavier; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14720]
R1 ssmdrv;ssmdrv; C:\WINDOWS\system32\DRIVERS\ssmdrv.sys [2009-02-13 28376]
R1 StarOpen;StarOpen; C:\WINDOWS\system32\drivers\StarOpen.sys [2008-12-13 5632]
R1 UBHelper;UBHelper; C:\WINDOWS\system32\drivers\UBHelper.sys [2004-12-17 13952]
R2 AegisP;AEGIS Protocol (IEEE 802.1x) v3.5.3.0; C:\WINDOWS\system32\DRIVERS\AegisP.sys [2007-12-27 21419]
R2 avgntflt;avgntflt; C:\WINDOWS\system32\DRIVERS\avgntflt.sys [2009-03-24 55640]
R2 fssfltr;FssFltr; C:\WINDOWS\system32\DRIVERS\fssfltr_tdi.sys [2009-08-05 54752]
R2 int15.sys;int15.sys; \??\C:\Program Files\Acer\eRecovery\int15.sys []
R3 Afc;PPdus ASPI Shell; C:\WINDOWS\system32\drivers\Afc.sys [2005-02-23 11776]
R3 Arp1394;Protocole client ARP 1394; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-13 60800]
R3 GEARAspiWDM;GEARAspiWDM; C:\WINDOWS\System32\Drivers\GEARAspiWDM.sys [2005-02-02 14408]
R3 HidUsb;Pilote de classe HID Microsoft; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 LVUSBSta;Logitech USB Monitor Filter; C:\WINDOWS\system32\drivers\lvusbsta.sys [2005-01-31 22016]
R3 mouhid;Pilote HID de souris; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-08-23 12288]
R3 NIC1394;Pilote réseau 1394; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-13 61824]
R3 NTIDrvr;Upper Class Filter Driver; C:\WINDOWS\system32\DRIVERS\NTIDrvr.sys [2005-06-23 6144]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2005-04-01 3454656]
R3 nvax;Service for NVIDIA(R) nForce(TM) Audio Enumerator; C:\WINDOWS\system32\drivers\nvax.sys [2004-09-10 52224]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\WINDOWS\system32\DRIVERS\NVENETFD.sys [2004-11-15 33408]
R3 nvnetbus;NVIDIA Network Bus Enumerator; C:\WINDOWS\system32\DRIVERS\nvnetbus.sys [2004-11-15 12928]
R3 nvnforce;Service for NVIDIA(R) nForce(TM) Audio; C:\WINDOWS\system32\drivers\nvapu.sys [2004-09-10 412032]
R3 Pcouffin;Low level access layer for CD devices; C:\WINDOWS\System32\Drivers\Pcouffin.sys [2006-02-08 47360]
R3 pepifilter;Volume Adapter; C:\WINDOWS\system32\DRIVERS\lv302af.sys [2005-01-31 7104]
R3 PID_08A0;QuickCam IM(PID_08A0); C:\WINDOWS\system32\DRIVERS\LV302AV.SYS [2005-01-31 912768]
R3 RT73;Hercules Wireless USB Dongle Driver ; C:\WINDOWS\system32\DRIVERS\rt73.sys [2006-12-21 429440]
R3 usbaudio;Pilote USB audio (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2008-04-13 60032]
R3 usbccgp;Pilote parent générique USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
R3 usbehci;Pilote miniport de contrôleur d'hôte amélioré Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-13 30208]
R3 usbhub;Concentrateur USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-13 59520]
R3 usbohci;Pilote miniport de contrôleur hôte ouvert USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbohci.sys [2008-04-13 17152]
R3 USBSTOR;Pilote de stockage de masse USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 catchme;catchme; \??\C:\DOCUME~1\SVERIN~1\LOCALS~1\Temp\catchme.sys []
S3 CCDECODE;Décodeur sous-titre fermé; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
S3 MSTEE;Convertisseur en T/site-à-site de répartition Microsoft; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504]
S3 NABTSFEC;Codec NABTS/FEC VBI; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
S3 NdisIP;Connection TV/vidéo Microsoft; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-13 10880]
S3 PCANDIS5;PCANDIS5 Protocol Driver; \??\C:\WINDOWS\system32\PCANDIS5.SYS []
S3 SLIP;Détrameur décalage BDA; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-13 11136]
S3 sscdbus;SAMSUNG USB Composite Device driver (WDM); C:\WINDOWS\system32\DRIVERS\sscdbus.sys [2007-07-03 80552]
S3 sscdmdfl;SAMSUNG Mobile Modem Filter; C:\WINDOWS\system32\DRIVERS\sscdmdfl.sys [2007-07-03 11944]
S3 sscdmdm;SAMSUNG Mobile Modem Drivers; C:\WINDOWS\system32\DRIVERS\sscdmdm.sys [2007-07-03 106792]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-13 15232]
S3 usbprint;Classe d'imprimantes USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Pilote de scanneur USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 wceusbsh;Windows CE USB Serial Host Driver; C:\WINDOWS\system32\DRIVERS\wceusbsh.sys [2004-08-04 32128]
S3 WSTCODEC;Codec Teletext standard; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 Acer Media Server;Acer Media Server; C:\Program Files\acer\Acer eConsole\MediaServerService.exe [2005-06-21 438272]
R2 AntiVirSchedulerService;Avira AntiVir Planificateur; C:\Program Files\Avira\AntiVir Desktop\sched.exe [2009-04-01 108289]
R2 AntiVirService;Avira AntiVir Guard; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [2009-03-02 185089]
R2 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2005-04-01 127043]
R2 Planificateur LiveUpdate automatique;Planificateur LiveUpdate automatique; C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe [2006-08-03 100032]
R2 SeaPort;SeaPort; C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2009-05-19 240512]
S2 Fax;Fax; C:\WINDOWS\system32\fxssvc.exe [2008-04-14 268800]
S2 gupdate;Service Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2009-12-23 133104]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 fsssvc;Service Windows Live Contrôle parental; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2009-08-05 704864]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-05-12 182768]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-03 69632]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 iPodService;iPodService; C:\Program Files\iPod\bin\iPodService.exe [2006-06-14 323584]
S3 LiveUpdate;LiveUpdate; C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE [2006-08-03 2119360]
S3 WMPNetworkSvc;Service Partage réseau du Lecteur Windows Media; C:\Program Files\Windows Media Player\WMPNetwk.exe [2006-11-03 918016]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------
A+,
24 Janvier 2010 19:03:24

Bonsoir lietase,

comment va ta machine?

Fais la 1ère manip' de cette page : http://service1.symantec.com/SUPPORT/INTER/tsgeninfoint...

Il faut mettre à jour Java (faille de sécurité) :
http://java.sun.com/javase/downloads/index.jsp
Clique sur Download Java Runtime Environment (JRE) 6u18 et dans la page suivante, coche I agree puis télécharge Windows Offline Installation, Multi-language/jre-6u18-windows-i586-p.exe/
Adobe (idem) :
http://www.adobe.com/fr/products/acrobat/readstep2.html
Acrobat Reader 9.3
Décoche McAfee Security Scan gratuit

A+
26 Janvier 2010 10:10:40

Bonjour lietase,

où en es-tu?

A+
1 Février 2010 09:21:11

Désolée, je suis rentrée de vacances hier soir tard. Ce matin, il a encore bloqué, j'ai du recouper l'alimentation pour le démarrer... franchement, je ne sais plus quoi faire...
a +,
4 Février 2010 19:55:14

Bon apparemment y'a rien à faire...
6 Février 2010 18:41:51

Bonjour lietase,

ta machine n' est+ infectée, tu devrais poser tes questions au forum Hardware : http://www.infos-du-net.com/forum/forum-6.html

* Je te conseille de défragmenter ton PC : http://www.6ma.fr/tuto/defragmenter+disque+sous+windows...
* Il est fortement recommandé d' avoir tous ses logiciels de sécurité à jour afin d' éviter diverses infections.
* Tu peux supprimer tous les logiciels que nous avons utilisés (RSIT, ToolBar S&D, Navilog1, Ad-Remover, fais démarrer>Exécuter puis tape ComboFix /uninstall>Ok...) traitant des infections spécifiques et mis à jour régulièrement, il est inutile de les garder.
* Tu peux par contre garder Malwarebytes' Anti-Malware et CCleaner.

=========================================================================

Maintenant que ton PC n' est plus infecté, désactive la Restauration du système pour créer un point de restauration sain : http://forum.pcastuces.com/desactiver_la_restauration_s...

=========================================================================

Pour améliorer la sécurité de ton PC, prends quelques instants pour lire :
http://forum.pcastuces.com/prevention_et_protection___c...

=========================================================================

Dénonce ton infection pour faire avancer les choses, en créant un message sur Malware-Complaints :

- Règles du forum : http://www.malwarecomplaints.info/viewtopic.php?t=5
- Enregistre-toi à l' aide du bouton du haut Register
- Si tu as plus de 13 ans, choisis I Agree to these terms and am over or exactly 13 years of age

Tu as alors sous forme de liste, un sujet par type d' infection.

Si le malware que tu as eu n' apparaît pas dans la liste ou si tu ne sais pas par quoi tu étais infecté(e), crée un message dans le sujet Autres infections conformément aux règles (âge, ville, département...).

Indique aussi le nom du Forum qui t' a aidé, Idn Sécurité.

A+
Ps : Bon courage
Edit : Manip'
7 Février 2010 12:10:33

merci pour ton aide Fredrix, je vais voir ce que ca va donner a+
Tom's guide dans le monde
  • Allemagne
  • Italie
  • Irlande
  • Royaume Uni
  • Etats Unis
Suivre Tom's Guide
Inscrivez-vous à la Newsletter
  • ajouter à twitter
  • ajouter à facebook
  • ajouter un flux RSS