bonsoir nickW, merci pour cette aide. Ceci est le rapport de ce que vous m'aviez demandé.
Merci
Deckard's System Scanner v20071014.68
Run by SAMOURAÏ on 2008-03-02 19:58:36
Computer is in Normal Mode.
--------------------------------------------------------------------------------
-- Last 5 Restore Point(s) --
8: 2008-02-28 23:37:33 UTC - RP170 - Windows Update
7: 2008-02-27 17:50:58 UTC - RP169 - Supprimé Microsoft Visual C++ 2005 Redistributable
6: 2008-02-27 03:16:33 UTC - RP168 - Installed Ad-Aware 2007
5: 2008-02-27 01:20:26 UTC - RP167 - Windows Update
4: 2008-02-26 21:35:40 UTC - RP166 - Windows Update
-- First Restore Point --
1: 2008-02-25 13:06:28 UTC - RP163 - Point de contrôle planifié
Backed up registry hives.
Performed disk cleanup.
System Drive C: has 21.59 GiB (less than 15%) free.
-- HijackThis Clone ------------------------------------------------------------
Emulating logfile of Trend Micro HijackThis v2.0.2
Scan saved at 2008-03-02 20:00:26
Platform: Windows Vista (6.00.6000)
MSIE: Internet Explorer (7.00.6000.16386)
Boot mode: Normal
Running processes:
C:\Windows\System32\taskeng.exe
C:\Windows\System32\dwm.exe
C:\Windows\explorer.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Windows\System32\rundll32.exe
C:\Windows\WindowsMobile\wmdc.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\DAEMON Tools Lite\daemon.exe
C:\Users\SAMOURAÏ\AppData\Local\ffymex.exe
C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe
C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
C:\Windows\System32\rundll32.exe
C:\Program Files\OpenOffice.org 2.3\program\soffice.exe
C:\Program Files\OpenOffice.org 2.3\program\soffice.bin
C:\Windows\ehome\ehmsas.exe
C:\Program Files\Yahoo!\Messenger\Ymsgr_tray.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Users\SAMOURAÏ\Desktop\dss.exe
C:\Windows\System32\conime.exe
C:\Windows\System32\SearchFilterHost.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://format.packardbell.com/cgi-bin/r ... ey=IESTART
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://fr.rd.yahoo.com/customize/ie/def ... .yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar =
http://us.rd.yahoo.com/customize/ie/def ... earch.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://fr.rd.yahoo.com/customize/ie/def ... .yahoo.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.yahoo.com/
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {1E8A6170-7264-4D0F-BEAE-D42A53123C75} - C:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.5\NppBHO.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\GoogleToolbar1.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\GoogleToolbar1.dll
O3 - Toolbar: Afficher Norton Toolbar - {90222687-F593-4738-B738-FBEE9C7B26DF} - C:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.5\UIBHO.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [toolbar_eula_launcher] C:\Program Files\Packard Bell\GOOGLE_EULA\EULALauncher.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [RoxWatchTray] "C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe"
O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [JMB36X IDE Setup] C:\Windows\RaidTool\xInsIDE.exe
O4 - HKLM\..\Run: [IAAnotif] "C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe"
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [Windows Mobile-based device management] %windir%\WindowsMobile\wmdc.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe" -autorun
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE" -quiet
O4 - HKCU\..\Run: [ffymex] c:\users\samouraï\appdata\local\ffymex.exe ffymex
O4 - HKCU\..\Run: [ISUSPM] "C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe" -scheduler
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background (User 'Default user')
O4 - HKUS\.DEFAULT\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe (User 'Default user')
O4 - Startup: OneNote 2007 - Capture d'écran et lancement.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
O4 - Startup: OpenOffice.org 2.3.lnk = C:\Program Files\OpenOffice.org 2.3\program\quickstart.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll
O9 - Extra button: (no name) - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra 'Tools' menuitem: @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - (file missing)
O9 - Extra button: Run IMVU - {d9288080-1baa-4bc4-9cf8-a92d743db949} - C:\Users\SAMOURAÏ\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\IMVU\Run IMVU.lnk (file missing)
O16 - DPF: CANALPLAY Installer () -
http://www.canalplay.com/cabs/CanalInstaller.CAB
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) -
http://www.kaspersky.com/kos/eng/partne ... nicode.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) -
http://gfx2.hotmail.com/mail/w2/resourc ... dfr-fr.cab
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} () -
http://fpdownload.macromedia.com/get/fl ... rashim.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) -
http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.8.5.1302.1018.dll
O18 - Protocol: ms-help - {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\microsoft shared\Help\hxds.dll
O18 - Protocol: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\microsoft shared\Information Retrieval\msitss.dll
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.8.5.1302.1018.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll
O18 - Protocol: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files\Windows Live\Mail\mailcomm.dll
O18 - Filter: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: Autodesk Licensing Service - Autodesk - C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Common Files\BOONTY Shared\Service\Boonty.exe
O23 - Service: ccEvtMgr - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: ccSetMgr - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: COM Host (comHost) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\LuComServer_3_2.EXE
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\System32\PnkBstrA.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: Roxio Hard Drive Watcher 9 (RoxWatch9) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: Symantec Core LC - Unknown owner - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
--
End of file - 11743 bytes
-- File Associations -----------------------------------------------------------
.scr - AutoCADScriptFile - shell\open\command - "C:\Windows\system32\notepad.exe" "%1"
-- Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled ---------------------
All drivers whitelisted.
-- Services: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled --------------------
S3 Boonty Games - "c:\program files\common files\boonty shared\service\boonty.exe" <Not>
S3 stllssvr - "c:\program files\common files\surething shared\stllssvr.exe" <Not>
-- Device Manager: Disabled ----------------------------------------------------
No disabled devices found.
-- Scheduled Tasks -------------------------------------------------------------
2008-03-02 20:00:00 346 --a------ C:\Windows\Tasks\Extension de garantie.job
2008-03-02 19:53:33 424 --ah----- C:\Windows\Tasks\User_Feed_Synchronization-{231A724D-5FC5-4DF4-B38E-427EDD7F14E1}.job
2008-01-06 23:56:01 260 --a------ C:\Windows\Tasks\Vérifier les mises à jour de Windows Live Toolbar.job
-- Files created between 2008-02-02 and 2008-03-02 -----------------------------
2008-03-01 02:02:26 0 d-------- C:\Windows\system32\Kaspersky Lab
2008-02-27 04:17:13 0 d-------- C:\Program Files\Lavasoft
2008-02-27 04:17:11 0 d-------- C:\Users\All Users\Lavasoft
2008-02-27 04:17:11 0 d-------- C:\Users\All Users\Application Data\Lavasoft
2008-02-27 04:14:43 0 d-------- C:\Program Files\Common Files\Wise Installation Wizard
2008-02-26 10:22:22 0 d-------- C:\Program Files\OpenOffice.org 2.3
2008-02-22 19:10:29 0 d-------- C:\Program Files\Windows Mobile Device Handbook
2008-02-22 19:01:55 0 d-------- C:\Windows\system32\ShellExt
2008-02-18 19:46:48 32 --a------ C:\Users\All Users\ezsid.dat
2008-02-18 19:46:48 32 --a------ C:\Users\All Users\Application Data\ezsid.dat
2008-02-18 19:46:34 0 d-------- C:\Program Files\Common Files\Skype
2008-02-11 05:59:54 669184 --a------ C:\Windows\system32\pbsvc.exe
2008-02-11 05:58:44 0 d-------- C:\Users\All Users\Media Center Programs
2008-02-11 05:58:44 0 d-------- C:\Users\All Users\Application Data\Media Center Programs
2008-02-11 05:41:41 0 d-------- C:\Program Files\Electronic Arts
2008-02-09 14:07:31 0 d-------- C:\Program Files\Activision
2008-02-09 05:24:19 0 d-------- C:\Program Files\KONAMI
2008-02-09 04:53:16 0 d-------- C:\Program Files\DAEMON Tools Lite
2008-02-07 01:27:53 0 d-------- C:\Users\All Users\Application Data\Apple Computer
2008-02-07 01:27:53 0 d-------- C:\Users\All Users\Apple Computer
2008-02-07 01:27:52 0 d-------- C:\Program Files\Common Files\Real
2008-02-06 13:13:54 2560 --a------ C:\Windows\_MSRSTRT.EXE
2008-02-02 07:45:12 0 d-------- C:\Program Files\free-downloads.net
-- Find3M Report ---------------------------------------------------------------
2008-03-02 19:50:01 0 d-------- C:\Users\SAMOURAÏ\AppData\Roaming\OpenOffice.org2
2008-03-02 19:49:49 13166 --a------ C:\Users\SAMOURAÏ\AppData\Roaming\nvModes.001
2008-03-01 20:28:03 12 --a------ C:\Windows\bthservsdp.dat
2008-03-01 12:08:46 13166 --a------ C:\Users\SAMOURAÏ\AppData\Roaming\nvModes.dat
2008-03-01 00:52:14 1244 --a------ C:\Users\SAMOURAÏ\AppData\Roaming\wklnhst.dat
2008-02-29 02:21:21 0 d-------- C:\Program Files\Google
2008-02-29 02:19:11 0 d-------- C:\Users\SAMOURAÏ\AppData\Roaming\Skype
2008-02-29 00:00:52 0 d-------- C:\Users\SAMOURAÏ\AppData\Roaming\skypePM
2008-02-27 04:14:43 0 d-------- C:\Program Files\Common Files
2008-02-27 03:10:40 0 d-------- C:\Users\SAMOURAÏ\AppData\Roaming\InstallShield
2008-02-27 00:09:28 700222 --a------ C:\Windows\system32\perfh00C.dat
2008-02-27 00:09:28 122020 --a------ C:\Windows\system32\perfc00C.dat
2008-02-22 15:23:15 0 d-------- C:\Program Files\Picasa2
2008-02-18 11:09:25 0 d-------- C:\Program Files\Yahoo!
2008-02-18 10:19:16 0 d-------- C:\Users\SAMOURAÏ\AppData\Roaming\yahoo!
2008-02-11 21:56:59 0 d-------- C:\Program Files\Common Files\Symantec Shared
2008-02-09 14:34:57 0 d--h----- C:\Program Files\InstallShield Installation Information
2008-02-07 01:38:06 0 d-------- C:\Users\SAMOURAÏ\AppData\Roaming\Media Player Classic
2008-02-06 13:22:19 0 d-------- C:\Program Files\GameSpy Arcade
2008-02-03 03:30:41 0 d-------- C:\Program Files\DivX
2008-01-31 23:09:48 196608 --a------ C:\Windows\system32\dtu100.dll <Not>
2008-01-31 23:09:48 81920 --a------ C:\Windows\system32\dpl100.dll <Not>
2008-01-31 23:09:38 682496 --a------ C:\Windows\system32\DivX.dll <Not>
2008-01-31 23:09:02 12288 --a------ C:\Windows\system32\DivXWMPExtType.dll
2008-01-31 22:07:27 0 d-------- C:\Program Files\Ringz Studio
2008-01-30 12:22:46 0 d-------- C:\Users\SAMOURAÏ\AppData\Roaming\Template
2008-01-27 03:13:03 0 d-------- C:\Program Files\EA Sports
2008-01-26 17:37:32 0 dr-h----- C:\Users\SAMOURAÏ\AppData\Roaming\SecuROM
2008-01-25 17:54:57 0 d-------- C:\Program Files\Seagate
2008-01-25 17:44:34 0 d-------- C:\Program Files\Packard Bell ImageWriter
2008-01-25 17:25:55 0 d-------- C:\Program Files\LCD-Test
2008-01-25 10:29:12 0 d-------- C:\Users\SAMOURAÏ\AppData\Roaming\Adobe
2008-01-25 10:20:51 0 d-------- C:\Program Files\Common Files\Adobe
2008-01-24 17:46:40 0 d-------- C:\Users\SAMOURAÏ\AppData\Roaming\U3
2008-01-24 06:29:47 0 d-------- C:\Program Files\Camera Assistant Software Lite
2008-01-23 23:57:30 0 d-------- C:\Program Files\Logitech
2008-01-23 16:41:36 0 d-------- C:\Program Files\Common Files\Logishrd
2008-01-23 15:37:38 0 d-------- C:\Users\SAMOURAÏ\AppData\Roaming\SystemRequirementsLab
2008-01-22 22:02:14 98304 --a------ C:\Windows\system32\CmdLineExt.dll <Not>
2008-01-22 11:40:13 0 d-------- C:\Program Files\Sierra
2008-01-21 15:47:28 0 d-------- C:\Program Files\Norton 360
2008-01-20 01:14:44 18121 --a------ C:\Users\SAMOURAÏ\AppData\Roaming\UserTile.png
2008-01-20 01:14:43 0 d-------- C:\Users\SAMOURAÏ\AppData\Roaming\PeerNetworking
2008-01-19 08:33:33 0 d-------- C:\Users\SAMOURAÏ\AppData\Roaming\DAEMON Tools
2008-01-19 08:10:03 0 d-------- C:\Program Files\Alcohol Soft
2008-01-18 13:14:40 0 d-------- C:\Users\SAMOURAÏ\AppData\Roaming\Autodesk
2008-01-17 12:22:30 0 d-------- C:\Program Files\Windows Live Toolbar
2008-01-17 12:21:59 0 d-------- C:\Program Files\Microsoft SQL Server Compact Edition
2008-01-16 00:38:05 0 d-------- C:\Program Files\Bluetooth Remote Control
2008-01-16 00:34:12 0 d-------- C:\Program Files\9.95 SOFT
2008-01-16 00:17:32 0 d-------- C:\Program Files\ZIO Interactive
2008-01-16 00:16:02 0 d-------- C:\Program Files\Common Files\InstallShield
2008-01-15 22:47:17 0 d-------- C:\Users\SAMOURAÏ\AppData\Roaming\DivX
2008-01-15 22:31:46 0 d-------- C:\Program Files\Java
2008-01-15 22:28:38 0 d-------- C:\Program Files\Common Files\Java
2008-01-15 22:27:06 0 d-------- C:\Program Files\Common Files\Autodesk Shared
2008-01-15 22:26:55 0 d-------- C:\Program Files\AutoCAD 2008
2008-01-15 22:21:09 0 d-------- C:\Program Files\Autodesk
2008-01-15 22:10:37 0 d-------- C:\Program Files\7-Zip
2008-01-12 17:30:20 0 d-------- C:\Program Files\Common Files\PX Storage Engine
2008-01-10 06:25:53 0 d-------- C:\Program Files\Common Files\BOONTY Shared
2008-01-10 04:44:43 0 d-------- C:\Users\SAMOURAÏ\AppData\Roaming\vlc
2008-01-10 03:46:28 737280 --a------ C:\Windows\iun6002.exe <Not>
2008-01-10 03:03:51 0 d-------- C:\Program Files\Messenger Force for MSN
2008-01-10 03:02:52 0 -rahs---- C:\MSDOS.SYS
2008-01-10 03:02:52 0 -rahs---- C:\IO.SYS
2008-01-10 00:59:25 0 d-------- C:\Program Files\Windows Mail
2008-01-10 00:55:14 0 d-------- C:\Program Files\Windows Sidebar
2008-01-07 16:28:58 0 d-------- C:\Users\SAMOURAÏ\AppData\Roaming\CyberLink
2008-01-07 03:01:03 0 d-------- C:\Program Files\MSXML 4.0
2008-01-07 02:53:57 0 d-------- C:\Program Files\Packard Bell
2008-01-07 02:16:16 0 d-------- C:\Program Files\Windows Live
2008-01-07 00:48:50 0 d-------- C:\Users\SAMOURAÏ\AppData\Roaming\Roxio
2008-01-07 00:43:12 0 d-------- C:\Users\SAMOURAÏ\AppData\Roaming\Google
2008-01-06 23:50:25 0 d--hs--c- C:\Program Files\Common Files\WindowsLiveInstaller
2008-01-06 23:01:07 0 d-------- C:\Program Files\MSECache
2008-01-06 20:48:29 0 d-------- C:\Program Files\Symantec
2008-01-05 14:04:54 0 d-------- C:\Users\SAMOURAÏ\AppData\Roaming\Packard Bell
2008-01-05 10:04:22 0 d-------- C:\Users\SAMOURAÏ\AppData\Roaming\Macromedia
2008-01-04 18:43:07 0 d-------- C:\Users\SAMOURAÏ\AppData\Roaming\Symantec
2008-01-04 16:27:25 0 d-------- C:\Users\SAMOURAÏ\AppData\Roaming\Talkback
2008-01-04 16:27:00 0 d-------- C:\Users\SAMOURAÏ\AppData\Roaming\Mozilla
2008-01-04 16:11:19 0 d-------- C:\Users\SAMOURAÏ\AppData\Roaming\Identities
2008-01-04 15:55:19 0 d-------- C:\Program Files\Intel
2008-01-04 15:49:46 0 d-------- C:\Program Files\Windows NT
2008-01-04 15:49:46 0 d--hs---- C:\Program Files\Fichiers communs
-- Registry Dump ---------------------------------------------------------------
*Note* empty entries & legit default entries are not shown
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"="C:\Program Files\Windows Defender\MSASCui.exe" [03/11/2007 00:04]
"toolbar_eula_launcher"="C:\Program Files\Packard Bell\GOOGLE_EULA\EULALauncher.exe" [20/02/2007 17:20]
"SynTPEnh"="C:\Program Files\Synaptics\SynTP\SynTPEnh.exe" [23/03/2007 23:40]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe" [25/09/2007 01:11]
"RoxWatchTray"="C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe" [11/01/2007 11:40]
"Kernel and Hardware Abstraction Layer"="KHALMNPR.EXE" []
"JMB36X IDE Setup"="C:\Windows\RaidTool\xInsIDE.exe" [20/03/2007 14:36]
"IAAnotif"="C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe" [21/03/2007 13:00]
"ccApp"="C:\Program Files\Common Files\Symantec Shared\ccApp.exe" [09/01/2007 22:59]
"NvSvc"="C:\Windows\system32\nvsvc.dll" [04/04/2007 19:41]
"NvCplDaemon"="C:\Windows\system32\NvCpl.dll" [04/04/2007 19:41]
"NvMediaCenter"="C:\Windows\system32\NvMcTray.dll" [04/04/2007 19:41]
"Windows Mobile-based device management"="%windir%\WindowsMobile\wmdc.exe" []
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"msnmsgr"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe" [18/10/2007 11:34]
"ehTray.exe"="C:\Windows\ehome\ehTray.exe" [02/11/2006 13:35]
"DAEMON Tools Lite"="C:\Program Files\DAEMON Tools Lite\daemon.exe" [17/01/2008 17:51]
"Yahoo! Pager"="C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.exe" [30/08/2007 17:43]
"ffymex"="c:\users\samouraï\appdata\local\ffymex.exe" []
"ISUSPM"="C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe" [11/09/2006 04:40]
[HKEY_USERS\.default\software\microsoft\windows\currentversion\run]
"msnmsgr"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
"Picasa Media Detector"=C:\Program Files\Picasa2\PicasaMediaDetector.exe
C:\Users\SAMOURAØ\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
OneNote 2007 - Capture d'‚cran et lancement.lnk - C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE [24/08/2007 04:45:42]
OpenOffice.org 2.3.lnk - C:\Program Files\OpenOffice.org 2.3\program\quickstart.exe [17/08/2007 21:57:56]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\
Adobe Gamma Loader.lnk - C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe [25/01/2008 10:21:10]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"=2 (0x2)
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aawservice]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppInfo]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\KeyIso]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NTDS]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ProfSvc]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sacsvr]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SWPRV]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TabletInputService]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TBS]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TrustedInstaller]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\VDS]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgr.sys]
@="Driver"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgrx.sys]
@="Driver"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]
@="Volume shadow copy"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]
@="IEEE 1394 Bus host controllers"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]
@="SBP2 IEEE 1394 Devices"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]
@="SecurityDevices"
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdVantage]
"C:\Program Files\AdVantage\AdVantage.exe"
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\kravlda]
c:\users\samouraï\appdata\local\kravlda.exe kravlda
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\StormCodec_Helper]
"C:\Program Files\Ringz Studio\Storm Codec\StormSet.exe" /S /opti
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalSystemNetworkRestricted hidserv UxSms WdiSystemHost Netman trkwks AudioEndpointBuilder WUDFSvc irmon sysmain IPBusEnum dot3svc PcaSvc EMDMgmt TabletInputService wlansvc WPDBusEnum
WindowsMobile wcescomm rapimgr
LocalServiceRestricted WcesComm RapiMgr
bthsvcs BthServ
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\G]
AutoRun\command- G:\LaunchU3.exe
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{32eeabb1-e4b3-11dc-a3b5-001b24d88075}]
AutoRun\command- G:\LaunchU3.exe
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{76b30202-be10-11dc-9da3-001b24d88075}]
AutoRun\command- G:\LaunchU3.exe
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{79c2dc87-c660-11dc-8be6-001b24d88075}]
AutoRun\command- E:\autorun_PES2008.exe
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{7ec06b9a-cc4f-11dc-9fc7-001b24d88075}]
AutoRun\command- E:\Autorun.exe
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{8e1d3667-d63a-11dc-89f3-001b24d88075}]
AutoRun\command- E:\setup\rsrc\Autorun.exe
dinstall\command- E:\Directx\dxsetup.exe
*Newly Created Service* - COMHOST
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{22d6f312-b0f6-11d0-94ab-0080c74c7e95}]
C:\Windows\system32\unregmp2.exe /ShowWMP
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{6BF52A52-394A-11d3-B153-00C04F79FAA6}]
%SystemRoot%\system32\unregmp2.exe /FirstLogon /Shortcuts /RegBrowsers /ResetMUI
-- End of Deckard's System Scanner: finished at 2008-03-02 20:01:30 ------------