moins de capital

Magazine
Go Back   Computer Juice > Computer Software > Systèmes d'exploitation Windows

Register


 Default 

Vista Démarrage et arrêt très lentement, pas trop quoi faire




Reply
 
Thread Tools
  #1  
Old 29 mars 2009, 08:59
Groupe de donateurs
 
Default Vista Démarrage et arrêt très lentement, pas trop quoi faire

Premièrement, je suis en supposant que c'est le bon endroit pour mettre ceci.

Je suis allé dans le Panneau de Contrôle, Performance et trouvé un couple de problèmes de performances en disant:

  • Programmes de démarrage Windows causant de commencer lentement
  • Programmes sont à l'origine de Windows pour fermer lentement
Les détails de ces sont les suivants:

Commence lentement:

http://i7.photobucket.com/albums/y27...tartslowly.jpg

Arrêt:

http://i7.photobucket.com/albums/y27...downslowly.jpg


J'ai aussi couru hijackthis mais j'ai ce message:

http://i7.photobucket.com/albums/y27...rormessage.jpg

C'est probablement une question vraiment stupide, mais comment puis-je corriger cela? Si vous les gars ne me point dans la bonne direction qui serait génial.
__________________
Euro Championships pointe = Espagne & Torres <- Damn I devrait avoir placé un pari sur les

Make Poverty History

Justice pour les 96 <- S'il vous plaît jeter un coup d'oeil
__________________

My System: HistoryGirls Self Build!

Processeur (s):
AMD Phenom X3 II 720
Carte mère:
Gigabyte MA770-UD3
Mémoire RAM:
4 Go Ballistix
Carte graphique (s):
Radeon HD 4850 512 Mo
Carte son:
Ordinateur de bord
Hard Drive (s):
1 To de Western Digital
Optical Drive (s):
DVD-ROM/CD + RW DVD-RW LightScribe
Case / PSU:
Coolermaster Elite 330/450W PSU
Refroidissement:
Stock
Réseau / Internet:
Ethernet
Monitor (s):
20 "Acer
Système d'exploitation (s):
Vista HP avec mise à jour pour W7
  #2  
Old 29 mars 2009, 11:19
Modérateur Groupe
 
Default Vista Démarrage et arrêt très lentement, pas trop quoi faire

Avec Vista, vous devez cliquer droit sur l'icône HJT et choisissez «Exécuter en tant qu'administrateur".

Avez-vous fait aucun entretien dernièrement? Nettoyage de disque, la défragmentation?
__________________

  #3  
Old 30 mars 2009, 10:11
Groupe de donateurs
 
Default Vista Démarrage et arrêt très lentement, pas trop quoi faire

Ouais j'ai, je suis à court de nettoyage de disque et de défragmenter récemment, ne serait-ce ce qui a été à l'origine du problème?

Nouveau journal HijackThis:

Citation:
Logfile de Trend Micro HijackThis v2.0.2
Scan saved at 18:25:00, le 30/03/2009
Plate-forme: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18000)
Boot mode: Normal

Running processes:
C: \ Windows \ system32 \ taskeng.exe
C: \ Windows \ Explorer.EXE
C: \ Program Files \ ASUS Security Center \ ASUS Security Protect Manager \ Bin \ AsGHost.exe
C: \ Windows \ system32 \ taskeng.exe
C: \ Program Files \ ASUS \ ASUS Live Update \ ALU.exe
C: \ Windows \ ASScrPro.exe
C: \ Program Files \ Zone Labs \ ZoneAlarm \ zlclient.exe
C: \ Program Files \ Synaptics \ SynTP \ SynTPEnh.exe
C: \ Program Files \ de site \ RocketDock.exe
C: \ Program Files \ Windows Live \ Messenger \ msnmsgr.exe
C: \ Program Files \ Infineon \ Security Platform Software \ PSDrt.exe
C: \ Program Files \ Infineon \ Security Platform Software \ SpTna.exe
C: \ Program Files \ Mozilla Firefox \ firefox.exe
C: \ Program Files \ Trend Micro \ HijackThis \ HijackThis.exe

R0 - HKCU \ Software \ Microsoft \ Internet Explorer \ Main, Start Page = http://www.google.co.uk/
R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Default_Page_URL = http://www.asus.com
R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM \ Software \ Microsoft \ Internet Explorer \ Search, CustomizeSearch =
R1 - HKCU \ Software \ Microsoft \ Windows \ CurrentVersion \ Int ernet Settings, ProxyOverride = *. local
R0 - HKCU \ Software \ Microsoft \ Internet Explorer \ Toolbar, LinksFolderName =
R3 - URLSearchHook: Yahoo! Toolbar - (EF99BD32-C1FB-11D2-892F-0090271D4F88) - (no file)
O1 - Hosts::: 1 localhost
O2 - BHO: AcroIEHelperStub - (18DF081C-E8AD-4283-A596-FA578C2EBDC3) - C: \ Program Files \ Fichiers communs \ Adobe \ Acrobat \ ActiveX \ AcroIEHelperShim.dll
O2 - BHO: RealPlayer Téléchargez et Record Plugin for Internet Explorer - (3049C3E9-B461-4BC5-8870-4C09146192CA) - C: \ Program Files \ Real \ RealPlayer \ rpbrowserrecordplugin.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - (3CA2F312-6F6E-4B53-A66E-4E65E497C8C0) - C: \ Program Files \ AVG \ AVG8 \ avgssie.dll
O2 - BHO: Spybot-S & D IE Protection - (53707962-6F74-2D53-2644-206D7942484F) - C: \ PROGRA ~ 1 \ Spybot ~ 1 \ SDHelper.dll
O2 - BHO: (no name) - (5C255C8A-E604-49b4-9D64-90988571CECB) - (no file)
O2 - BHO: SSVHelper Class - (761497BB-D6F0-462C-B6EB-D4DAF1D92D43) - C: \ Program Files \ Java \ jre1.6.0_07 \ bin \ ssv.dll
O2 - BHO: Windows Live Sign-in Helper - (9030D464-4C02-4ABF-8ECC-5164760863C6) - C: \ Program Files \ Fichiers communs \ Microsoft Shared \ Windows Live \ WindowsLiveLogin.dll
O2 - BHO: AVG Security Toolbar - (A057A204-BACC-4D26-9990-79A187E2698E) - C: \ PROGRA ~ 1 \ AVG \ AVG8 \ AVGTOO ~ 1.DLL
O2 - BHO: (no name) - (AA58ED58-01DD-4d91-8333-CF10577473F7) - (no file)
O2 - BHO: ASUS Security Protect Manager - (DF21F1DB-80C6-11D3-9483-B03D0EC10000) - C: \ Program Files \ ASUS Security Center \ ASUS Security Protect Manager \ Bin \ ItIEAddIn.dll
O3 - Toolbar: (no name) - (2318C2B1-4965-11D4-9B18-009027A5CD4F) - (no file)
O3 - Toolbar: AVG Security Toolbar - (A057A204-BACC-4D26-9990-79A187E2698E) - C: \ PROGRA ~ 1 \ AVG \ AVG8 \ AVGTOO ~ 1.DLL
O4 - HKLM \ .. \ Run: [ASUS Screen Saver Protector] C: \ Windows \ ASScrPro.exe
O4 - HKLM \ .. \ Run: [IFXSPMGT] C: \ Windows \ system32 \ ifxspmgt.exe / NotifyLogon
O4 - HKLM \ .. \ Run: [ZoneAlarm Client] "C: \ Program Files \ Zone Labs \ ZoneAlarm \ zlclient.exe"
O4 - HKLM \ .. \ Run: [SynTPEnh] C: \ Program Files \ Synaptics \ SynTP \ SynTPEnh.exe
O4 - HKCU \ .. \ Run: [de site] "C: \ Program Files \ de site \ RocketDock.exe"
O4 - HKCU \ .. \ Run: [msnmsgr] "C: \ Program Files \ Windows Live \ Messenger \ msnmsgr.exe" / background
O4 - HKUS \ S-1-5-19 \ .. \ Run: [Sidebar]% ProgramFiles% \ Windows Sidebar \ Sidebar.exe / detectMem (User 'LOCAL SERVICE')
O4 - HKUS \ S-1-5-19 \ .. \ Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll, ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS \ S-1-5-20 \ .. \ Run: [Sidebar]% ProgramFiles% \ Windows Sidebar \ Sidebar.exe / detectMem (User 'NETWORK SERVICE')
O8 - Extra du menu contextuel: E & xporter vers Microsoft Excel - res: / / C: \ PROGRA ~ 1 \ MICROS ~ 2 \ Office10 \ EXCEL.EXE/3000
O9 - Extra button: (no name) - (08B0E5C0-4FCB-11CF-AAA5-00401C608501) - C: \ PROGRA ~ 1 \ Java \ JRE16 ~ 4.0_0 \ bin \ ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - (08B0E5C0-4FCB-11CF-AAA5-00401C608501) - C: \ PROGRA ~ 1 \ Java \ JRE16 ~ 4.0_0 \ bin \ ssv.dll
O9 - Extra button: Blog This - (219C3416-8CB2-491a-A3C7-D9FCDDC9D600) - C: \ Program Files \ Windows Live \ Writer \ WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: & Blog Cette Windows Live Writer - (219C3416-8CB2-491a-A3C7-D9FCDDC9D600) - C: \ Program Files \ Windows Live \ Writer \ WriterBrowserExtension.dll
O9 - Extra button: (no name) - (DFB852A3-47F8-48C4-A200-58CAB36FD2A2) - C: \ PROGRA ~ 1 \ Spybot ~ 1 \ SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - (DFB852A3-47F8-48C4-A200-58CAB36FD2A2) - C: \ PROGRA ~ 1 \ Spybot ~ 1 \ SDHelper.dll
O13 - Gopher Prefix:
O16 - DPF: (30528230-99f7-4bb4-88d8-fa1d4f56a2ab) - C: \ Program Files \ Google \ Common \ Yinsthelper.dll
O18 - Protocol: linkscanner - (F274614C-63F8-47D5-A4D1-FBDDE494F8D1) - C: \ Program Files \ AVG \ AVG8 \ avgpp.dll
O20 - AppInit_DLLs: APSHook.dll, avgrsstx.dll
O22 - SharedTaskScheduler: Windows DreamScene - (E31004D1-A431-41B8-826F-E902F9D95C81) - C: \ Windows \ System32 \ DreamScene.dll
O23 - Service: Apple Mobile Device - Apple Inc - C: \ Program Files \ Common Files \ Apple \ Mobile Device Support \ bin \ AppleMobileDeviceService.exe
O23 - Service: Service ASLDR (ASLDRService) - Unknown owner - C: \ Program Files \ ATK Hotkey \ ASLDRSrv.exe
O23 - Service: Service ATKGFNEX (ATKGFNEXSrv) - Unknown owner - C: \ Program Files \ ATKGFNEX \ GFNEXSrv.exe
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C: \ Program Files \ Symantec \ LiveUpdate \ aluschedulersvc.exe
O23 - Service: AVG Free8 E-mail Scanner (avg8emc) - AVG Technologies CZ, sro - C: \ PROGRA ~ 1 \ AVG \ AVG8 \ avgemc.exe
O23 - Service: AVG Free8 WatchDog (avg8wd) - AVG Technologies CZ, sro - C: \ PROGRA ~ 1 \ AVG \ AVG8 \ avgwdsvc.exe
O23 - Service: Bonjour Service - Apple Inc - C: \ Program Files \ Bonjour \ mDNSResponder.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C: \ Program Files \ Common Files \ Symantec Shared \ CCSVCHST.exe (file missing)
O23 - Service: Intel (R) PROSet / Wireless Event Log (EvtEng) - Intel Corporation - C: \ Program Files \ Intel \ Wireless \ Bin \ EvtEng.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd - C: \ Program Files \ Fichiers communs \ Macrovision Shared \ FLEXnet Publisher \ FNPLicensingService.exe
O23 - Service: HDDlife HDD Service d'accès - BinarySense, Inc - C: \ Program Files \ BinarySense \ HDDlife 3 \ hldasvc.exe
O23 - Service: Intel (R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C: \ Program Files \ Intel \ Intel Matrix Storage Manager \ Iaantmon.exe
O23 - Service: Security Platform Management Service (IFXSpMgtSrv) - Infineon Technologies AG - C: \ Windows \ system32 \ ifxspmgt.exe
O23 - Service: Trusted Platform Core Service (IFXTCS) - Infineon Technologies AG - C: \ Windows \ system32 \ ifxtcs.exe
O23 - Service: iPod Service - Apple Inc - C: \ Program Files \ iPod \ bin \ iPodService.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C: \ Program Files \ Common Files \ LightScribe \ LSSrvc.exe
O23 - Service: LiveUpdate - Symantec Corporation - C: \ PROGRA ~ 1 \ Symantec \ LIVEUP ~ 1 \ LUCOMS ~ 1.EXE
O23 - Service: NMIndexingService - Unknown owner - C: \ Program Files \ Common Files \ Ahead \ Lib \ NMIndexingService.exe (file missing)
O23 - Service: Personal Secure Drive Service (PersonalSecureDriveService) - Infineon Technologies AG - C: \ Windows \ system32 \ IfxPsdSv.exe
O23 - Service: ProtexisLicensing - Unknown owner - C: \ Windows \ system32 \ PSIService.exe
O23 - Service: Intel (R) PROSet / Wireless Registry Service (RegSrvc) - Intel Corporation - C: \ Program Files \ Intel \ Wireless \ Bin \ RegSrvc.exe
O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd - C: \ Program Files \ Spybot - Search & Destroy \ SDWinSec.exe
O23 - Service: spmgr - ALWIL Software - C: \ Program Files \ ASUS \ NB Probe \ SPM \ spmgr.exe
O23 - Service: Syntek AVStream USB2.0 WebCam Service (StkSSrv) - Syntek America Inc - C: \ Windows \ System32 \ StkCSrv.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Check Point Software Technologies LTD - C: \ Windows \ System32 \ ZoneLabs \ vsmon.exe

--
__________________
Euro Championships pointe = Espagne & Torres <- Damn I devrait avoir placé un pari sur les

Make Poverty History

Justice pour les 96 <- S'il vous plaît jeter un coup d'oeil
  #4  
Old 30 mars 2009, 10:30
Modérateur Groupe
 
Default Vista Démarrage et arrêt très lentement, pas trop quoi faire

HijackThis et sélectionnez Ouvrir Est-ce que seulement un système de balayage.

Placez une coche à côté de l'entrée suivante: (s'il ya)

  • R0 - HKCU \ Software \ Microsoft \ Internet Explorer \ Toolbar, LinksFolderName =
  • O2 - BHO: (no name) - (5C255C8A-E604-49b4-9D64-90988571CECB) - (no file)
  • O3 - Toolbar: (no name) - (2318C2B1-4965-11D4-9B18-009027A5CD4F) - (no file)


Important: Fermez toutes les fenêtres sauf pour HijackThis et cliquez sur Fix vérifié.

Quitter HijackThis.

----------

Télécharger ComboFix © SUBS de l'un des liens ci-dessous. Assurez-vous haut mettre à la Desktop.

Lien # 1
Link # 2

** Note: Il est important de le sauvegarder directement sur votre bureau

Fermez tous les navigateurs Web. (Firefox, Internet Explorer, etc) avant de lancer ComboFix.

Momentanément désactiver ton antivirus, Et tout antispyware protection en temps réel avant effectuer une analyse. Cliquez sur ce lien pour voir la liste des programmes de sécurité qui doit être désactivé et comment les désactiver.

Double-cliquez sur combofix.exe et suivre les instructions.
Lorsque vous avez terminé ComboFix va produire un journal pour vous.
Publier le ComboFix log dans votre prochaine réponse.

Important: Ne pas ComboFix clic de souris, la fenêtre en cours d'exécution. Cela mai à cause de décrochage.

N'oubliez pas de réactiver votre antivirus et antispyware protection ComboFix est terminée.

Si vous avez des problèmes avec ComboFix utilisation, voir Comment utiliser ComboFix
__________________

  #5  
Old 30 mars 2009, 11:37
Groupe de donateurs
 
Default Vista Démarrage et arrêt très lentement, pas trop quoi faire

Tout d'abord merci pour l'aide et des conseils. J'ai fait ce que vous avez dit HJT, et c'est parfait. Cependant j'ai fait le lien indique au sujet de désactiver le bouclier résident AVG, mais malgré cela lorsque je tente de lancer ComboFix, elle dit encore AVG Anti-virus est en cours d'exécution alors je ne suis pas sûr pourquoi.

Proposeriez-vous peut-être redémarrer mon système?
__________________
Euro Championships pointe = Espagne & Torres <- Damn I devrait avoir placé un pari sur les

Make Poverty History

Justice pour les 96 <- S'il vous plaît jeter un coup d'oeil
  #6  
Old 30 mars 2009, 13:39
Modérateur Groupe
 
Default Vista Démarrage et arrêt très lentement, pas trop quoi faire

AVG et Combofix avoir ce problème. Il suffit de lancer ComboFix de toute façon. Si AVG essaie de le bloquer puis juste lui permettre de courir.
__________________

  #7  
Old 30 mars 2009, 14:21
Groupe de donateurs
 
Default Vista Démarrage et arrêt très lentement, pas trop quoi faire

Droit ok tout est terminé. Connectez-vous comme demandé.

Citation:
ComboFix 09-03-29.04 - CHLOE 2009-03-30 21:54:30.1 - NTFSx86
Microsoft ® Windows Vista ™ Ultimate 6.0.6001.1.1252.1.1033.18.2046.967 [GMT 1:00]
Running From: C: \ Users \ CHLOE \ Desktop \ ComboFix.exe
AV: AVG Anti-Virus Free * Sur-analyse à l'accès permis * (mise à jour)
FW: ZoneAlarm Firewall * activé *
* Création d'un nouveau point de restauration
.

((((((((((((((((((((((((((((((((((((((( Other Deletions ))))))))) ))))))))))))))))))))))))))))))))))))))))
.

c: \ windows \ system32 \ acovcnt.exe

.
((((((((((((((((((((((((( Files Created from 2009-02-28 au 2009-03-30 ))))))))))) ))))))))))))))))))))
.

2009-03-29 16:23. 2008-06-20 02:14 781.344 - a ------ c: \ windows \ System32 \ PresentationNative_v0300.dll
2009-03-29 16:23. 2008-06-20 02:14 622.080 - a ------ c: \ windows \ System32 \ icardagt.exe
2009-03-29 16:23. 2008-06-20 02:14 326.160 - a ------ c: \ windows \ System32 \ PresentationHost.exe
2009-03-29 16:23. 2008-06-20 02:14 105.016 - a ------ c: \ windows \ System32 \ PresentationCFFRasterizerNativ e_v0300.dll
2009-03-29 16:23. 2008-06-20 02:14 97.800 - a ------ c: \ windows \ System32 \ infocardapi.dll
2009-03-29 16:23. 2008-06-20 02:14 43.544 - a ------ c: \ windows \ System32 \ PresentationHostProxy.dll
2009-03-29 16:23. 2008-06-20 02:14 37.384 - a ------ c: \ windows \ System32 \ infocardcpl.cpl
2009-03-29 16:23. 2008-06-20 02:14 11.264 - a ------ c: \ windows \ System32 \ icardres.dll
2009-03-29 16:15. 2008-07-27 19:03 282.112 - a ------ c: \ windows \ System32 \ mscoree.dll
2009-03-29 16:15. 2008-07-27 19:03 96.760 - a ------ c: \ windows \ System32 \ dfshim.dll
2009-03-29 16:15. 2008-07-27 19:03 41.984 - a ------ c: \ windows \ System32 \ netfxperf.dll
2009-03-29 16:14. 2008-07-27 19:03 158.720 - a ------ c: \ windows \ System32 \ mscorier.dll
2009-03-29 16:14. 2008-07-27 19:03 83.968 - a ------ c: \ windows \ System32 \ mscories.dll
2009-03-29 13:52. 2009-03-29 13:53 <DIR> d -------- C: \ Program Files \ Defraggler
2009-03-29 13:26. 2008-02-23 05:38 170.496 - a ------ c: \ windows \ System32 \ tcpipcfg.dll
2009-03-29 13:26. 2008-02-23 03:41 22.528 - a ------ c: \ windows \ System32 \ netiougc.exe
2009-03-29 13:25. 2009-02-16 00:10 1.221.512 - a ------ c: \ windows \ System32 \ zpeng25.dll
2009-03-17 21:57. 2009-03-17 21:57 <DIR> d -------- C: \ Program Files \ Microsoft
2009-03-17 21:56. 2009-03-17 21:56 <DIR> d -------- C: \ Windows \ PCHealth
2009-03-16 22:43. 2009-03-28 22:36 <DIR> d - h ----- C: \ $ $ AVG8.VAULT
2009-03-16 20:59. 2009-03-16 20:59 25 - a ------ c: \ windows \ CDPlayer.ini
2009-03-14 00:34. 2008-12-05 05:32 428.544 - a ------ c: \ windows \ System32 \ EncDec.dll
2009-03-14 00:34. 2008-12-05 05:32 293.376 - a ------ c: \ windows \ System32 \ Psisdecd.dll
2009-03-14 00:34. 2008-12-05 05:31 217.088 - a ------ c: \ windows \ System32 \ psisrndr.ax
2009-03-14 00:34. 2008-12-05 05:31 177.664 - a ------ c: \ windows \ System32 \ mpg2splt.ax
2009-03-14 00:34. 2008-12-05 05:31 80.896 - a ------ c: \ windows \ System32 \ MSNP.ax
2009-03-14 00:29. 2009-03-14 00:29 <DIR> d -------- C: \ Program Files \ (00D89592-F643-4D8D-8f0f-AFAE0F14D4C3)
2009-03-14 00:29. 2009-03-14 00:29 <DIR> d -------- C: \ Program Files \ iTunes
2009-03-14 00:29. 2009-03-14 00:29 <DIR> d -------- C: \ Program Files \ iPod
2009-03-14 00:29. 2008-04-17 13:12 107.368 - a ------ c: \ windows \ System32 \ GEARAspi.dll
2009-03-14 00:29. 2009-01-15 13:19 23.848 - a ------ c: \ windows \ system32 \ drivers \ GEARAspiWDM.sys
2009-03-14 00:26. 2009-03-14 00:27 <DIR> d -------- C: \ Program Files \ QuickTime
2009-03-12 23:39. 2009-03-12 23:39 <DIR> d -------- C: \ Program Files \ Kontiki
2009-03-12 23:39. 2009-03-12 23:39 <DIR> d -------- C: \ Program Files \ Kontiki
2009-03-12 23:39. 2009-03-12 23:39 <DIR> d -------- C: \ Program Files \ Channel4
2009-03-12 23:38. 2009-03-12 23:38 <DIR> d -------- C: \ Program Files \ Channel4
2009-03-11 22:33. 2009-03-30 21:10 <DIR> d -------- C: \ Users \ CHLOE \ Tracing
2009-03-11 22:22. 2009-03-11 22:22 <DIR> d -------- C: \ Program Files \ Windows Live SkyDrive
2009-03-11 22:22. 2009-03-17 21:57 <DIR> d -------- C: \ Program Files \ Windows Live
2009-03-11 21:57. 2009-03-11 21:57 <DIR> d -------- C: \ Program Files \ Fichiers communs \ Windows Live
2009-03-11 13:13. 2009-03-11 21:47 <DIR> d -------- C: \ Program Files \ Amazon
2009-03-11 13:13. 2009-03-11 13:13 107.272 - a ------ c: \ windows \ system32 \ drivers \ avgtdix.sys
2009-03-11 02:09. 2009-01-15 04:36 1.383.424 - a ------ c: \ windows \ System32 \ Mshtml.tlb
2009-03-11 02:09. 2009-01-15 07:11 827.392 - a ------ c: \ windows \ system32 \ Wininet.dll
2009-03-11 02:05. 2008-12-16 04:29 8.147.456 - a ------ c: \ windows \ System32 \ wmploc.dll
2009-03-11 02:05. 2008-12-16 06:31 7.680 - a ------ c: \ windows \ System32 \ spwmp.dll
2009-03-11 02:05. 2008-12-16 06:31 4.096 - a ------ c: \ windows \ System32 \ msdxm.ocx
2009-03-11 02:05. 2008-12-16 06:31 4.096 - a ------ c: \ windows \ System32 \ Dxmasf.dll
2009-03-11 02:03. 2008-12-16 03:42 288.768 - a ------ c: \ windows \ system32 \ drivers \ srv.sys
2009-03-11 02:03. 2008-11-27 05:43 268.288 - a ------ c: \ windows \ System32 \ schannel.dll
2009-03-11 02:02. 2009-02-09 04:10 2.033.152 - a ------ c: \ windows \ System32 \ win32k.sys
2009-02-06 19:52. 2009-02-06 19:52 49.504 - a ------ c: \ windows \ System32 \ sirenacm.dll

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))) ))))))))))))))))))))))))))))))))))))))))))))
.
2009-03-30 21:07 350.195 --- ha-w c: \ windows \ system32 \ drivers \ vsconfig.xml
2009-03-30 21:07 --------- d --- aw C: \ Program Files \ TEMP
2009-03-29 14:42 --------- d ----- wc: \ Program Files \ Spybot - Search & Destroy
2009-03-29 14:42 --------- d ----- wc: \ Program Files \ Spybot - Search & Destroy
2009-03-29 14:42 --------- d ----- wc: \ Program Files \ CCleaner
2009-03-19 16:48 --------- d ----- wc: \ users \ CHLOE \ AppData \ Roaming \ uTorrent
2009-03-16 19:58 --------- d ----- wc: \ Program Files \ Fichiers communs \ Real
2009-03-13 23:29 --------- d ----- wc: \ Program Files \ Apple Computer
2009-03-13 23:29 --------- d ----- wc: \ Program Files \ Fichiers communs \ Apple
2009-03-13 23:27 --------- d ----- wc: \ Program Files \ Bonjour
2009-03-12 22:24 --------- d ----- wc: \ Program Files \ Google
2009-03-11 23:07 --------- d ----- wc: \ Program Files \ Microsoft Silverlight
2009-03-11 23:05 --------- d ----- wc: \ Program Files \ Windows Mail
2009-03-11 12:13 325.128 ---- aw C: \ windows \ system32 \ drivers \ avgldx86.sys
2009-03-11 11:52 --------- d ----- wc: \ Program Files \ AVG8
2009-02-15 23:11 293.528 ---- aw C: \ windows \ system32 \ drivers \ vsdatant.sys
2009-01-14 20:20 55,232 ---- aw C: \ Users \ CHLOE \ AppData \ Roaming \ GDIPFONTCACHEV1.DAT
2008-12-31 21:51 13.025 ---- aw C: \ Users \ CHLOE \ AppData \ Roaming \ nvModes.dat
2008-12-31 14:32 174 - sha-w C: \ Program Files \ Desktop.ini
2008-11-19 15:31 81.920 ---- aw C: \ Users \ CHLOE \ AppData \ Roaming \ ezpinst.exe
2008-11-19 15:31 47.360 ---- aw C: \ Users \ CHLOE \ AppData \ Roaming \ pcouffin.sys
2007-05-31 18:23 77.160 ---- aw C: \ Users \ CHLOE \ dsetup.dll
2007-05-31 18:23 503.144 ---- aw C: \ Users \ CHLOE \ DXSETUP.exe
2007-05-31 18:23 1.673.576 ---- aw C: \ Users \ CHLOE \ Dsetup32.dll
.

((((((((((((((((((((((((((((((((((((( Reg Loading Points )))))))))) ))))))))))))))))))))))))))))))))))))))))
.
.
* Note * empty entries & legit entrées par défaut ne sont pas indiquées
REGEDIT4

[HKEY_CURRENT_USER \ SOFTWARE \ Microsoft \ Windows \ Curré ntVersion \ Run]
"RocketDock" = "C: \ Program Files \ RocketDock \ RocketDock.exe" [2007-09-02 495616]
"msnmsgr" = "c: \ program files \ Windows Live \ Messenger \ msnmsgr.exe" [2009-02-06 3885408]
"WMPNSCFG" = "c: \ program files \ Windows Media Player \ wmpnscfg.exe" [2008-01-19 202240]

[HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ Windows \ Curr entVersion \ Run]
"ASUS Screen Saver Protector" = "c: \ windows \ ASScrPro.exe" [2007-05-15 33136]
"IFXSPMGT" = "c: \ windows \ system32 \ ifxspmgt.exe" [2007-02-26 677408]
"ZoneAlarm Client" = "c: \ program files \ Zone Labs \ ZoneAlarm \ zlclient.exe" [2009-02-16 981384]
"HotKeysCmds" = "C: \ Program Files \ QuickTime \ ashDisp.exe" [2007-03-01 857648]

[HKEY_LOCAL_MACHINE \ software \ microsoft \ windows \ curr entversion \ policies \ system]
"EnableUIADesktopToggle" = 0 (0x0)

[HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ Windows NT \ CurrentVersion \ Windows]
"AppInit_DLLs" = avgrsstx.dll APSHook.dll

[HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ Windows NT \ CurrentVersion \ drivers32]
"msacm.ac3filter" = ac3filter.acm

[HKEY_LOCAL_MACHINE \ SYSTEM \ CurrentControlSet \ contro l \ Lsa]
Notification Packages REG_MULTI_SZ SceCli ASWLNPkg

[HKLM \ ~ \ startupfolder \ C: ^ ProgramData ^ Microsoft Wind ows ^ ^ Menu Démarrer ^ Programmes ^ Démarrage ^ WinZip Quick Pick.lnk]
path = C: \ Program Files \ Microsoft \ Windows \ Start Menu \ Programs \ Startup \ WinZip Quick Pick.lnk
backup = C: \ WINDOWS \ pss \ WinZip Quick Pick.lnk.CommonStartup
backupExtension =. CommonStartup

[HKEY_LOCAL_MACHINE \ software \ microsoft \ shared tools \ msconfig \ startupreg \ 4oD]
- a ------ 2007-04-23 12:23 1032640 C: \ Program Files \ Kontiki \ KHost.exe

[HKEY_LOCAL_MACHINE \ software \ microsoft \ shared tools \ msconfig \ startupreg \ Adobe Reader Speed Launcher]
- a ------ 2008-06-12 02:38 34672 D: \ Program Files \ Acrobat \

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Shared Tools \ \ msconfig startupreg \ ASUS Camera ScreenSaver]
- a ------ 2007-05-15 05:12 37232 c: \ windows \ ASScrProlog.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Shared Tools \ \ msconfig startupreg \ ATKMEDIA]
- a ------ 2006-11-02 16:27 61440 C: \ Program Files \ ASUS \ ATK Media \ DMedia.exe

[HKEY_LOCAL_MACHINE \ software \ microsoft \ shared tools \ msconfig \ startupreg \ AVG8_TRAY]
- a ------ 2009-03-11 13:13 1601304 C: \ PROGRA ~ 1 \ AVG \ AVG8 \ avgtray.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Shared Tools \ \ msconfig startupreg \ iTunesHelper]
-ra ------ 2003-12-21 22:11 17920 C: \ PROGRA ~ 1 \ ASUSSE ~ 1 \ ASUSSE ~ 1 \ Bin \ ASTSVCC.dll

[HKEY_LOCAL_MACHINE \ software \ microsoft \ shared tools \ msconfig \ startupreg \ ehTray.exe]
- a ------ 2008-01-19 08:33 125952 c: \ windows \ ehome \ ehtray.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Shared Tools \ \ msconfig startupreg \ Google Update]
- a ---- t-2009-03-17 22:06 133104 c: \ users \ CHLOE \ AppData \ Local \ Google \ Update \ GoogleU pdate.exe

[HKEY_LOCAL_MACHINE \ software \ microsoft \ shared tools \ msconfig \ startupreg \ iTunesHelper]
- a ------ 2009-03-11 14:52 342312 C: \ Program Files \ iTunes \ iTunesHelper.exe

[HKEY_LOCAL_MACHINE \ software \ microsoft \ shared tools \ msconfig \ startupreg \ msnmsgr]
- a ------ 2009-02-06 19:51 3885408 C: \ Program Files \ Windows Live \ Messenger \ msnmsgr.exe

[HKEY_LOCAL_MACHINE \ software \ microsoft \ shared tools \ msconfig \ startupreg \ NvCplDaemon]
- a ------ 2007-04-04 12:40 8429568 C: \ WINDOWS \ System32 \ NvCpl.dll

[HKEY_LOCAL_MACHINE \ software \ microsoft \ shared tools \ msconfig \ startupreg \ NvMediaCenter]
- a ------ 2007-04-04 12:40 81920 c: \ windows \ system32 \ NvCpl.dll

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Shared Tools \ \ msconfig startupreg \ RtHDVCpl]
- a ------ 2007-04-04 12:40 86016 c: \ windows \ system32 \ nvsvc.dll

[HKEY_LOCAL_MACHINE \ software \ microsoft \ shared tools \ msconfig \ startupreg \ QuickTime Task]
- a ------ 2009-01-05 17:18 413696 C: \ Program Files \ QuickTime \ qttask.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Shared Tools \ \ msconfig startupreg \ RocketDock]
- a ------ 2007-09-02 13:58 495616 C: \ Program Files \ RocketDock \ RocketDock.exe

[HKEY_LOCAL_MACHINE \ software \ microsoft \ shared tools \ msconfig \ startupreg \ SpybotSD TeaTimer]
-rahs ---- 2009-03-05 16:07 2260480 C: \ Program Files \ Spybot - Search & Destroy \ TeaTimer.exe

[HKEY_LOCAL_MACHINE \ software \ microsoft \ shared tools \ msconfig \ startupreg \ SunJavaUpdateSched]
- a ------ 2008-06-10 04:27 144784 C: \ Program Files \ Java \ jre1.6.0_07 \ bin \ ashDisp.exe

[HKEY_LOCAL_MACHINE \ software \ microsoft \ shared tools \ msconfig \ startupreg \ TkBellExe]
- a ------ 2009-03-16 20:58 198160 C: \ Program Files \ Fichiers communs \ Real \ qttask.exe

[HKEY_LOCAL_MACHINE \ software \ microsoft \ shared tools \ msconfig \ startupreg \ Windows Defender]
- a ------ 2008-01-19 08:38 1008184 C: \ Program Files \ Windows Defender \ MSASCui.exe

[HKEY_LOCAL_MACHINE \ software \ microsoft \ shared tools \ msconfig \ startupreg \ WMPNSCFG]
- a ------ 2008-01-19 08:33 202240 C: \ Program Files \ Windows Media Player \ TeaTimer.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Shared Tools \ \ msconfig startupreg \ (0228e555-4f9c-4e35-a3ec-b109a192b4c2)]
- a ------ 2005-07-15 22:48 479232 C: \ Program Files \ Google \ Gmail Notifier \ gnotify.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Shared Tools \ \ msconfig startupreg \ Windows Defender]
- a ------ 2007-02-15 10:07 4390912 C: \ Windows \ RtHDVCpl.exe

[HKEY_LOCAL_MACHINE \ software \ microsoft \ security center \ Monitoring]
"DisableMonitoring" = dword: 00000001

[HKEY_LOCAL_MACHINE \ software \ microsoft \ security center \ Monitoring \ SymantecAntiVirus]
"DisableMonitoring" = dword: 00000001

[HKEY_LOCAL_MACHINE \ software \ microsoft \ security center \ Monitoring \ SymantecFirewall]
"DisableMonitoring" = dword: 00000001

[HKEY_LOCAL_MACHINE \ software \ microsoft \ security center \ Monitoring \ ZoneLabsFirewall]
"DisableMonitoring" = dword: 00000001

[HKLM \ ~ \ Services \ SharedAccess \ Parameters \ firewallpo licy \ DomainProfile]
"EnableFirewall" = 0 (0x0)

[HKLM \ ~ \ Services \ SharedAccess \ Parameters \ firewallpo licy \ FirewallRules]
"(71E74FA5-D1FA-4A82-9121-AE2CACB2ED04)" = Profile = Private | C: \ Program Files \ Windows Live \ Messenger \ livecall.exe: Windows Live Messenger (Phone)
"(2FE2345B-5C77-485E-9855-FC6024DE75EC)" = Profile = Private | C: \ Program Files \ Windows Live \ Messenger \ livecall.exe: Windows Live Messenger (Phone)
"(CC9CFD37-6799-47CF-9AEE-1063F21C5548)" = Profile = Private | C: \ Program Files \ Windows Live \ Messenger \ livecall.exe: Windows Live Messenger (Phone)
"(3D44E6E8-68F3-42F0-B97E-1081F1354874)" = UDP: C: \ Program Files \ LimeWire \ LimeWire.exe: LimeWire 4.12.15
"(B2393435-26B3-4482-A391-C964F3370D66)" = TCP: C: \ Program Files \ LimeWire \ LimeWire.exe: LimeWire 4.12.15
"(1B1039C9-3AEF-4B2E-85ca-DA79FB7CDBD3)" = Disabled: C: \ Program Files \ Windows Live \ Messenger \ livecall.exe: Windows Live Messenger (Phone)
"(F9EC3544-5A35-4D84-A067-E7167563791A)" = Disabled: C: \ Program Files \ Windows Live \ Messenger \ livecall.exe: Windows Live Messenger (Phone)
"(A9CE85F3-F9BA-4875-B169-9DEF59911C8A)" = Disabled: C: \ Program Files \ Windows Live \ Messenger \ livecall.exe: Windows Live Messenger (Phone)
"TCP Query User (0FAAFA32-F5A3-4C35-9afd-A648E4B3016E) c: \ \ Program Files \ \ uTorrent \ \ utorrent.exe" = UDP: C: \ Program Files \ \ uTorrent utorrent.exe: uTorrent
"UDP Query User (CDC85196-C503-4F00-82DC-B95F8D021895) c: \ \ Program Files \ \ uTorrent \ \ utorrent.exe" = TCP: C: \ Program Files \ \ uTorrent utorrent.exe: uTorrent
"TCP Query User (5D761702-BEB7-4B94-B693-1A7EF8E441ED) c: \ \ Program Files \ \ WebTV facile et radio \ \ easywebtv.exe" = UDP: C: \ Program Files \ WebTV facile et radio \ easywebtv.exe : Web TV \ Radio \ Media
"UDP Query User (A7E2F9B1-976E-49B1-960A-8FE671DECB26) C: \ \ Program Files \ \ WebTV facile et radio \ \ easywebtv.exe" = TCP: C: \ Program Files \ WebTV facile et radio \ easywebtv.exe : Web TV \ Radio \ Media
"(978D57EE-8CEF-4E88-B3CC-472590D8A602)" = C: \ Program Files \ Windows Live \ Messenger \ livecall.exe: Windows Live Messenger (Phone)
"(038AD6DB-57BA-4294-B6BE-DC5AC329D87A)" = C: \ Program Files \ Windows Live \ Messenger \ livecall.exe: Windows Live Messenger (Phone)
"TCP Query User (20F3997A-2406-42BC-9A96-17DBA8717938) c: \ \ Program Files \ \ soulseek \ \ slsk.exe" = UDP: C: \ Program Files \ \ soulseek slsk.exe: SoulSeek
"UDP Query User (EBEDABDC-8DFA-4EA4-83A0-5D79C8A2BE45) c: \ \ Program Files \ \ soulseek \ \ slsk.exe" = TCP: C: \ Program Files \ \ soulseek slsk.exe: SoulSeek
"TCP Query User (A2D20908-089C-441B-B9C8-C8811AFCAB9E) c: \ \ Program Files \ \ LimeWire \ \ LimeWire.exe" = UDP: C: \ Program Files \ \ LimeWire LimeWire.exe: LimeWire
"UDP Query User (0B6B64F6-D6E9-4D1D-B83A-E6E85E360C05) c: \ \ Program Files \ \ LimeWire \ \ LimeWire.exe" = TCP: C: \ Program Files \ \ LimeWire LimeWire.exe: LimeWire
"(2E890455-237D-4ABA-BE37-B5E6E1862834)" = C: \ Program Files \ Windows Live \ Messenger \ livecall.exe: Windows Live Messenger (Phone)
"(DDAAC8F6-7557-495A-82B3-EBFF9330A2CC)" = C: \ Program Files \ Windows Live \ Messenger \ livecall.exe: Windows Live Messenger (Phone)
"(5131D757-BC24-44C9-8EA5-E268DFC6DCAC)" = C: \ Program Files \ Windows Live \ Messenger \ livecall.exe: Windows Live Messenger (Phone)
"TCP Query User (4C52E1A6-D998-41D5-8E99-27F21E3CA7CB) c: \ \ Program Files \ Mozilla Firefox \ \ firefox.exe" = UDP: C: \ Program Files \ Mozilla Firefox \ firefox.exe: Firefox
"UDP Query User (80235B6B-2462-4AC3-8A59-7534841DE76B) c: \ \ Program Files \ Mozilla Firefox \ \ firefox.exe" = TCP: C: \ Program Files \ Mozilla Firefox \ firefox.exe: Firefox
"TCP Query User (049DD1E6-8191-4983-A59D-240E79B46042) c: \ \ Program Files \ \ uTorrent \ \ utorrent.exe" = UDP: C: \ Program Files \ \ uTorrent utorrent.exe: uTorrent
"UDP Query User (9A00A32D-A675-4425-8F5E-1528AAB521FB) c: \ \ Program Files \ \ uTorrent \ \ utorrent.exe" = TCP: C: \ Program Files \ \ uTorrent utorrent.exe: uTorrent
"TCP Query User (348698D9-5A1D-4E1C-AC00-DBDC43BE0ACF) c: \ \ Program Files \ \ soulseek \ \ slsk.exe" = UDP: c: \ program files \ soulseek \ slsk.exe: SoulSeek
"UDP Query User (60AFF659-3A7C-488C-9CCA-0A8589DD32FA) c: \ \ Program Files \ \ soulseek \ \ slsk.exe" = TCP: C: \ Program Files \ \ soulseek slsk.exe: SoulSeek
"TCP Query User (3EF98A58-7B3C-42B1-8A5A-CF7DEF59C2A7) c: \ \ Program Files \ \ SopCast \ \ sopcast.exe" = UDP: C: \ Program Files \ \ SopCast sopcast.exe: SopCast Main Application
"UDP Query User (D8A0735D-6D19-4482-A90A-35A9D023DEBE) c: \ \ Program Files \ \ SopCast \ \ sopcast.exe" = TCP: C: \ Program Files \ \ SopCast sopcast.exe: SopCast Main Application
"TCP Query User (7B392C25-D64F-4897-B5CC-5C9B83106BB0) c: \ \ Program Files \ Mozilla Firefox \ \ firefox.exe" = UDP: C: \ Program Files \ Mozilla Firefox \ firefox.exe: Firefox
"UDP Query User (9990806D-9198-4760-93E7-C65D44E1FE8A) c: \ \ Program Files \ Mozilla Firefox \ \ firefox.exe" = TCP: C: \ Program Files \ Mozilla Firefox \ firefox.exe: Firefox
"TCP Query User (9998DAB7-D775-4620-A491-D752230551A3) c: \ \ Program Files \ Internet Explorer \ iexplore.exe" = UDP: C: \ Program Files \ Internet Explorer \ iexplore.exe: Internet Explorer
"UDP Query User (B9293167-A4DC-43ED-893B-B5B1B89F9988) c: \ \ Program Files \ Internet Explorer \ iexplore.exe" = TCP: C: \ Program Files \ Internet Explorer \ iexplore.exe: Internet Explorer
"TCP Query User (B04F6C2B-953A-469D-AFD8-4F3AE27A4941) c: \ \ users \ \ Chloe \ \ AppData \ Roaming \ \ s opcast \ \ adv \ \ sopadver.exe" = UDP: C: \ Users \ \ chloe AppData \ Roaming \ SopCast \ adv \ SOP adver.exe: sopadver.exe
"UDP Query User (914B6A2A-9A2A-43A8-B4EA-BB1EEDC476B5) c: \ \ users \ \ Chloe \ \ AppData \ Roaming \ \ s opcast \ \ adv \ \ sopadver.exe" = TCP: C: \ Users \ \ chloe AppData \ Roaming \ SopCast \ adv \ SOP adver.exe: sopadver.exe
"TCP Query User (69F8C35B-6614-4033-B40E-59012B10975A) c: \ \ Program Files \ \ BearFlix \ \ bearflix.exe" = UDP: C: \ Program Files \ BearFlix \ bearflix.exe: BearFlix
"UDP Query User (89ABF64F-F79E-456d-9136-82A8675A3E17) c: \ \ Program Files \ \ BearFlix \ \ bearflix.exe" = TCP: C: \ Program Files \ BearFlix \ bearflix.exe: BearFlix
"(8D76BC83-ABC9-406B-8945-366EA3B7074B)" = UDP: C: \ Program Files \ SmartFTP Client \ SmartFTP.exe: SmartFTP client
"(9FC79C86-3E66-4A61-aa2A-FAB0C61E0453)" = TCP: C: \ Program Files \ SmartFTP Client \ SmartFTP.exe: SmartFTP client
"TCP Query User (9FF9F89E-5323-45db-89F0-BA37B84180EE) c: \ \ Program Files \ \ TVAnts \ \ tvants.exe" = UDP: C: \ Program Files \ tvants \ tvants.exe: TVAnts
"UDP Query User (C10505B7-BDD4-49BB-93E6-E73B8E6C4E33) c: \ \ Program Files \ \ TVAnts \ \ tvants.exe" = TCP: C: \ Program Files \ tvants \ tvants.exe: TVAnts
"TCP Query User (A9E241F3-D69C-4E67-938B-33C91AB576A1) c: \ \ Program Files \ \ TVUPlayer \ \ tvuplayer.exe" = UDP: C: \ Program Files \ \ TVUPlayer tvuplayer.exe: TVU Player Component
"UDP Query User (D3542B64-2CF9-4C20-B6CB-1D9096FF27EB) c: \ \ Program Files \ \ TVUPlayer \ \ tvuplayer.exe" = TCP: C: \ Program Files \ \ TVUPlayer tvuplayer.exe: TVU Player Component
"(F8B68D6E-3A24-4B31-8261-FB3CA92B5740)" = C: \ Program Files \ Windows Live \ Messenger \ livecall.exe: Windows Live Messenger (Phone)
"TCP Query User (4E95BA55-EDF5-491D-9059-F11FF353A128) c: \ \ users \ \ Chloe \ \ AppData \ Roaming \ \ s opcast \ \ adv \ \ sopadver.exe" = UDP: C: \ Users \ \ chloe AppData \ Roaming \ SopCast \ adv \ SOP adver.exe: sopadver.exe
"UDP Query User (55C79E39-F1AC-45C7-8F99-995A835F089A) c: \ \ users \ \ Chloe \ \ AppData \ Roaming \ \ s opcast \ \ adv \ \ sopadver.exe" = TCP: C: \ Users \ \ chloe AppData \ Roaming \ SopCast \ adv \ SOP adver.exe: sopadver.exe
"TCP Query User (A3EF2380-6740-4FD5-913E-D67F54A54B11) c: \ \ Program Files \ \ SopCast \ \ sopcast.exe" = UDP: C: \ Program Files \ \ SopCast sopcast.exe: SopCast Main Application
"UDP Query User (E9C164FD-CB41-4D08-9DBA-BDDB929D1C86) c: \ \ Program Files \ \ SopCast \ \ sopcast.exe" = TCP: C: \ Program Files \ \ SopCast sopcast.exe: SopCast Main Application
"TCP Query User (C1148110-2D5B-4810-8651-98FBFD3A6751) c: \ \ Program Files \ Internet Explorer \ iexplore.exe" = UDP: C: \ Program Files \ Internet Explorer \ iexplore.exe: Internet Explorer
"UDP Query User (F15683E5-A578-47EE-BEB1-4541978254F4) c: \ \ Program Files \ Internet Explorer \ iexplore.exe" = TCP: C: \ Program Files \ Internet Explorer \ iexplore.exe: Internet Explorer
"TCP Query User (CCA39E89-B85B-41BA-9A33-CA6DB37579E4) d: \ \ Program Files \ \ clue.exe" = UDP: D: \ Program Files \ clue.exe: Les énigmes
"UDP Query User (39F3C83F-DCF0-43B4-B149-19F3630B3078) d: \ \ Program Files \ \ clue.exe" = TCP: D: \ Program Files \ clue.exe: Les énigmes
"(01834D55-82B5-480D-BEFF-52EDB82BB8B5)" = C: \ Program Files \ Windows Live \ Messenger \ livecall.exe: Windows Live Messenger (Phone)
"(90ECB35B-6897-4166-A35A-04BC39978BA9)" = C: \ Program Files \ AVG \ AVG8 \ avgemc.exe: avgemc.exe
"(504F647E-1476-4948-AA42-DC1DF85CA9A8)" = C: \ Program Files \ AVG \ AVG8 \ avgupd.exe: avgupd.exe
"(CC411EBB-9ACA-4217-9994-ABB961E83B3C)" = UDP: C: \ Program Files \ \ uTorrent utorrent.exe: μTorrent (TCP-In)
"(031AA3B5-F93B-4E4B-9ED7-66C6B9FFF3E8)" = TCP: C: \ Program Files \ \ uTorrent utorrent.exe: μTorrent (UDP-In)
"(1D54F818-ABAC-418F-8F39-17EA7664FABE)" = UDP: C: \ Program Files \ Bonjour \ mDNSResponder.exe: Bonjour
"(3C9FFAF4-40EA-450F-A906-D34D3E2EFA72)" = TCP: C: \ Program Files \ Bonjour \ mDNSResponder.exe: Bonjour
"(6AC9F5D1-C3AC-4878-8740-8A3E10F857E2)" = UDP: C: \ Program Files \ iTunes \ iTunes.exe: iTunes
"(77045B5E-EC2E-4749-AC23-32130CD39567)" = TCP: C: \ Program Files \ iTunes \ iTunes.exe: iTunes
"(00BE12C0-42CB-4B64-AA07-80A45C05B97C)" = Disabled: UDP: C: \ Program Files \ Sports Interactive \ Football Manager 2008 \ fm.exe: Football Manager 2008
"(0A529C81-B8E4-4809-A54B-B5141A997A78)" = Disabled: TCP: C: \ Program Files \ Sports Interactive \ Football Manager 2008 \ fm.exe: Football Manager 2008

[HKLM \ ~ \ Services \ SharedAccess \ Parameters \ firewallpo licy \ PublicProfile]
"EnableFirewall" = 0 (0x0)

[HKLM \ ~ \ Services \ SharedAccess \ Parameters \ firewallpo licy \ StandardProfile]
"EnableFirewall" = 0 (0x0)

R1 AvgLdx86; AVG Free AVI Loader Driver x86; c: \ windows \ system32 \ drivers \ avgldx86.sys [2008-12-24 325128]
R1 AvgTdiX; AVG8 Network Redirector; c: \ windows \ system32 \ drivers \ avgtdix.sys [2009-03-11 107272]
R1 ItSDisk; ItSDisk; c: \ windows \ system32 \ drivers \ k.sys itsdis [2006-05-16 23496]
R1 PersonalSecureDrive; PersonalSecureDrive; c: \ windows \ system32 \ drivers \ psd.sys [2007-01-23 39080]
R2 ASBroker; Logon Session Broker; c: \ windows \ System32 \ svchost.exe Cognizance-k [2008-08-07 21504]
R2 ASChannel; Local Communication Channel; c: \ windows \ System32 \ svchost.exe Cognizance-k [2008-08-07 21504]
Avg8emc R2; AVG Free8 E-mail Scanner; C: \ PROGRA ~ 1 \ AVG \ AVG8 \ avgemc.exe [2009-03-11 903960]
R2 avg8wd; AVG Free8 WatchDog; C: \ PROGRA ~ 1 \ AVG \ AVG8 \ avgwdsvc.exe [2009-03-11 298264]
R2 HDDlife HDD Service d'accès; HDDlife HDD Service d'accès C: \ Program Files \ BinarySense \ HDDlife 3 \ hldasvc.exe [2007-08-09 816376]
R2 SBSDWSCService; SBSD Security Center Service; C: \ Program Files \ Spybot - Search & Destroy \ SDWinSec.exe [2007-07-15 1153368]
R2 StkSSrv; Syntek AVStream USB2.0 WebCam Service; c: \ windows \ System32 \ StkCSrv.exe [2007-02-07 24576]
R3 AtcL001; NDIS Miniport Driver pour Attansic L1 Gigabit Ethernet Controller; c: \ windows \ system32 \ drivers \ s atl01v32.sy [2007-03-15 48128]
R3 StkCMini; Syntek AVStream USB2.0 1.3M WebCam; c: \ windows \ system32 \ drivers \ StkCMini.sys [2007-02-13 1245056]

[HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ Windows NT \ CurrentVersion \ svchost]
bthsvcs REG_MULTI_SZ BthServ
Connaissance REG_MULTI_SZ ASBroker ASChannel

[HKEY_CURRENT_USER \ SOFTWARE \ Microsoft \ Windows \ Curré ntversion \ explorer \ mountpoints2 \ E]
\ shell \ AutoRun \ command - E: \ Start.exe

[HKEY_CURRENT_USER \ SOFTWARE \ Microsoft \ Windows \ Curré ntversion \ explorer \ mountpoints2 \ H]
\ shell \ AutoRun \ command - H: \ launchu3.exe

[HKEY_CURRENT_USER \ Software \ Microsoft \ Windows \ CurrentVersion Curre \ Explorer \ mountpoints2 \ (1a4a90a1-32d4-11dc-aa3d-001bfc03310e)]
\ shell \ AutoRun \ command - H: \ launchu3.exe

[HKEY_CURRENT_USER \ Software \ Microsoft \ Windows \ CurrentVersion Curre \ Explorer \ mountpoints2 \ (c1865685-0291-11dc-B943-806e6f6e6963)]
\ shell \ AutoRun \ command - E: \ Autorun.exe
.
Contenu de la "Tâches planifiées" dossier

2009-01-11 C: \ Windows \ Tasks \ Defrag Job # 00.job
- C: \ Program Files \ DiskTrix \ UltimateDefrag \ UDefrag.exe []

2009-03-26 C: \ Windows \ Tasks \ GoogleUpdateTaskUserS-1-5-21-3600620296-2450975610-132854369-1000.job
- C: \ users \ CHLOE \ AppData \ Local \ Google \ Update \ pdate.exe GoogleU [2009-03-17 22:06]

2009-03-30 C: \ Windows \ Tasks \ User_Feed_Synchronization-(5963E371-2796-42F4-9A54-042DA9F406BC). Emploi
- C: \ windows \ system32 \ msfeedssync.exe [2008-01-19 08:33]
.
.
Supplementary Scan ------- -------
.
uStart Page = hxxp: / / www.google.co.uk/
uInternet Settings, ProxyOverride = *. local
IE: E & xporter vers Microsoft Excel - c: \ progra ~ 1 \ MICROS ~ 2 \ Office10 \ EXCEL.EXE/3000
FF - profilePath - c: \ users \ CHLOE \ AppData \ Roaming \ Mozilla \ Firefox \ fichiers Pro \ ppnzryw9.default \
Prefs.js FF -: browser.search.defaulturl - hxxp: / / / search.conduit.com ResultsExt.aspx? Ctid = CT1178131 & SearchSource = 3 & q =
Prefs.js FF -: browser.search.selectedEngine - Recherche sur le Web
Prefs.js FF -: browser.startup.homepage - hxxp: / / www.google.co.uk/
FF - composante: c: \ program files \ AVG \ AVG8 \ Firefox \ components \ avgssff.dll
FF - composante: c: \ program files \ AVG \ AVG8 \ ToolbarFF \ components \ vmAVGConnector. Dll
FF - composante: c: \ program files \ Real \ RealPlayer \ browserrecord \ components \ npr pbrowserrecordplugin.dll
- FF composant: c: \ users \ CHLOE \ AppData \ Roaming \ Mozilla \ Firefox \ fichiers Pro \ ppnzryw9.default \ Extensions \ (463F6CA5-EE3C-4be1-B7E6-7FEE11953374) \ plateforme \ WINNT \ Components \ FoxyTunes. dll
FF - plugin: c: \ program files \ Mozilla Firefox \ plugins \ np-mswmp.dll
- FF plugin: c: \ users \ CHLOE \ AppData \ Local \ Google \ Update \ 1.2.141 .5 \ npGoogleOneClick7.dll
- FF plugin: d: \ Program Files \ Reader \ Browser \ nppdf32.dll

FIREFOX POLITIQUES ---- ----
User.js FF -: general.useragent.extra.zencast - Creative ZENcast v1.02.08); user_pref (general.useragent.extra.zencast, Creative ZENcast v2.00.07.

************************************************** ************************

catchme 0.3.1375 W2K/XP/Vista - rootkit / stealth malware detector par Gmer, http://www.gmer.net
Rootkit scan 2009-03-30 22:08:49
Windows 6.0.6001 Service Pack 1 NTFS

scanning processus cachés ...

scanning hidden autostart entries ...

de balayage des fichiers cachés ...

scan effectué avec succès
les fichiers cachés: 0

************************************************** ************************
.
--------------------- DLLs Loaded Sous Running Processes ---------------------

- - - - - - -> 'Lsass.exe' (696)
C: \ Program Files \ ASUS Security Center \ ASUS Security Protect Manager \ bin \ ASWLNPkg.dll
C: \ Program Files \ ASUS Security Center \ ASUS Security Protect Manager \ bin \ ItMsg.dll

- - - - - - -> 'Explorer.exe' (5000)
C: \ Program Files \ RocketDock \ RocketDock.dll
C: \ Program Files \ ASUS Security Center \ ASUS Security Protect Manager \ Bin \ SFSShell.dll
C: \ Program Files \ ASUS Security Center \ ASUS Security Protect Manager \ Bin \ ItMsg.dll
.
------------------------ Autres processus en cours ----------------------- --
.
c: \ windows \ System32 \ audiodg.exe
c: \ windows \ System32 \ ZoneLabs \ vsmon.exe
c: \ windows \ System32 \ wlanext.exe
c: \ program files \ ATK Hotkey \ ASLDRSrv.exe
c: \ program files \ ATKGFNEX \ GFNEXSrv.exe
C: \ Program Files \ ASUS Security Center \ ASUS Security Protect Manager \ Bin \ asghost.exe
c: \ program files \ ATK Hotkey \ HControl.exe
c: \ program files \ ATKOSD2 \ atkosd2.exe
c: \ program files \ Wireless Console 2 \ wcourier.exe
c: \ program files \ ASUS \ Splendid \ ACMON.exe
c: \ program files \ P4G \ BatteryLife.exe
c: \ windows \ System32 \ ACEngSvr.exe
c: \ program files \ ATK Hotkey \ ATKOSD.EXE
C: \ Program Files \ Common Files \ Apple \ Mobile Device Support \ bin \ AppleMobileDeviceService.exe
c: \ program files \ Symantec \ LiveUpdate \ aluschedulersvc.exe
c: \ program files \ Bonjour \ mDNSResponder.exe
c: \ program files \ Intel \ Wireless \ Bin \ EvtEng.exe
c: \ progra ~ 1 \ AVG \ AVG8 \ avgrsx.exe
c: \ progra ~ 1 \ AVG \ AVG8 \ avgnsx.exe
c: \ program files \ Intel \ Intel Matrix Storage Manager \ IAANTmon.exe
c: \ windows \ System32 \ IFXTCS.exe
C: \ Program Files \ Common Files \ LightScribe \ LSSrvc.exe
c: \ windows \ System32 \ IfxPsdSv.exe
c: \ windows \ system32 \ PSIService.exe
c: \ program files \ Intel \ Wireless \ Bin \ RegSrvc.exe
C: \ Program Files \ ASUS \ NB Probe \ SPM \ spmgr.exe
c: \ program files \ AVG \ AVG8 \ avgcsrvx.exe
c: \ windows \ System32 \ IfxUAGUI.exe
c: \ program files \ Infineon \ Security Platform Software \ PSDrt.exe
c: \ program files \ Infineon \ Security Platform Software \ SpTNA.exe
c: \ windows \ System32 \ rundll32.exe
.
************************************************** ************************
.
Completion time: 2009-03-30 22:16:25 - La machine a redémarré
ComboFix-quarantined-files.txt 2009-03-30 21:15:12

Pre-Run: 38800285696 octets libres
Post-Run: 38307028992 octets libres

Courant = 1 Default = 1 Failed = 0 LastKnownGood = 41 = Définit 1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18, 19,20,21,22,23,24,25,26,27,28,29,30,31,32,33,34,35, 36,37,38,39,40,41
354 --- EOF --- 2009-03-29 15:30:34
Une autre question rapide Firefox semble être en cours d'exécution un peu plus lent que d'habitude et quand je le fermer et aller directement à la mettre en marche un peu plus tard. Elle arrive avec un message disant que Firefox est en cours d'exécution mais ne répond pas. S'il vous plaît fermez toutes les versions avant d'essayer de nouveau ou quelque chose du genre. Serait-ce journal indiquent / afficher n'importe quelle raison pour cela? Désolé si thats une question stupide.
__________________
Euro Championships pointe = Espagne & Torres <- Damn I devrait avoir placé un pari sur les

Make Poverty History

Justice pour les 96 <- S'il vous plaît jeter un coup d'oeil
  #8  
Old 30 mars 2009, 15:17
Modérateur Groupe
 
Default Vista Démarrage et arrêt très lentement, pas trop quoi faire

Supprimer ces fichiers / dossiers, comme suit:

1. Aller à Démarrer > Courir > Type Notepad.exe et cliquez sur OK pour ouvrir le Bloc-notes.
Il devoir être Bloc-notes, Wordpad pas.
2. Copiez le texte ci-dessous dans la case code en mettant en lumière tout le texte et en appuyant sur Ctrl + C

Code:
Killall:: Registry:: [-HKEY_LOCAL_MACHINE \ Software \ \ Microsoft Security Center \ Monitoring \ SymantecAntiVirus] [-HKEY_LOCAL_MACHINE \ Software \ \ Microsoft Security Center \ Monitoring \ SymantecFirewall] [-\ HKEY_CURRENT_USER Software \ Microsoft \ Windows \ CurrentVersion \ Explorer \ mountpoints2 \ E] [-\ HKEY_CURRENT_USER Software \ Microsoft \ Windows \ CurrentVersion \ Explorer \ mountpoints2 \ (c1865685-0291-11dc-B943-806e6f6e6963)] Firefox:: FF - prefs.js: browser.search.defaulturl - hxxp: / / search.conduit.com / ResultsExt.aspx? ctid = CT1178131 & SearchSource = 3 & q = FF - prefs.js: browser.search.selectedEngine - Recherche sur le Web
3. Allez à la fenêtre et cliquez sur Bloc-notes Modifier > Coller
4. Ensuite, cliquez sur Fichier > Sauver
5. Nom du fichier CFScript.txt - Enregistrez le fichier sur votre bureau
6. Ensuite, faites glisser le CFScript (maintenez enfoncé le bouton gauche tout en faisant glisser le fichier) et déposez-le (la libération du bouton gauche de la souris) dans ComboFix.exe comme vous le voyez sur la capture d'écran ci-dessous. Important: Exécutez cette instruction attentivement!



ComboFix va commencer à exécuter, il suffit de suivre les instructions.
Après un redémarrage (dans le cas où il demande de redémarrer l'ordinateur), il va produire un journal pour vous.
Post que log (Combofix.txt) dans votre prochaine réponse.

Note: Ne pas ComboFix clic de souris, la fenêtre en cours d'exécution. Cette mai cause votre système de gel

----------

Téléchargez le Norton Removal Tool (SymNRT) à votre bureau.

Une fois le téléchargement s'il vous plaît Fermez tous les navigateurs, aussi enregistrer tous les travaux parce que cela mai nécessitent un redémarrage.
  • Allez à votre bureau et double-cliquez sur l'outil de suppression et cliquez sur Setup.
  • Une fois ouvert Cliquez Suivant
  • Acceptez l'accord de licence et cliquez sur Suivant
  • Entrez les lettres / chiffres que vous voyez dans la zone de texte puis cliquez sur Suivant.
  • Ensuite, cliquez sur Suivant et l'outil de commencer à courir.
  • Une fois terminé, redémarrez le PC.
  • Supprimer Nortonremoval outil à partir de votre bureau.

----------

Java n'est pas à jour.

Les anciennes versions ont des vulnérabilités que les sites malveillants peuvent utiliser pour infecter votre système.

Tout d'abord installer la nouvelle Sun Java Runtime Environment

Assurez-vous de fermer toutes les fenêtres du navigateur avant de commencer l'installation.

Suppression de l'ancienne version (s)

Télécharger JavaRa
  • Décompressez le fichier et ouvrez le JavaRa.exe
  • Cliquez sur Supprimer les anciennes versions
  • JavaRa va rechercher et supprimer toute ancienne version de Java et de supprimer celles qui sont constatées.
  • Cliquez sur Tâches supplémentaires
  • Place à côté d'un contrôle Supprimer les fichiers inutiles JRE et cliquez sur Aller
  • Exit JavaRa
  • Supprimer les fichiers de la JavaRa Desktop

Note: Le Java Quick Starter (JQS.exe) ajoute un service pour améliorer les premiers temps de démarrage des applets Java et des applications. Pour désactiver le service JQS si vous ne souhaitez pas l'utiliser, rendez-vous à Démarrer> Panneau de configuration> Java> Avancé> Divers et uncochez la case Java Quick Starter. Cliquez sur OK et redémarrez votre ordinateur.

----------

Télécharger ATF Cleaner par Atribune sur votre bureau.

Autre lien de téléchargement

Note: Vista les utilisateurs doivent utiliser Exécuter en tant qu'administrateur
  • Sous Principal: Sélectionnez les fichiers à supprimer choisir: Sélectionner tout.
  • Cliquez sur le Empty Selected bouton.
  • Si vous utilisez le navigateur Firefox cliquez sur Firefox au sommet et à choisir: Sélectionner tout
  • Cliquez sur le Empty Selected bouton.
    Si vous souhaitez conserver vos mots de passe cliquez sur Non à l'invite.
  • Si vous utilisez le navigateur Opera cliquez sur Opera au sommet et à choisir: Sélectionner tout
  • Cliquez sur le Empty Selected bouton.
    Si vous souhaitez conserver vos mots de passe cliquez sur Non à l'invite.
  • Cliquez sur Exit dans le menu principal pour fermer le programme.

Notez que votre système sera plus lent pour un redémarrage ou deux après avoir utilisé cet outil, il ne faut pas paniquer.

Important: Redémarrez l'ordinateur avant de poursuivre.

----------

Comment est l'ordinateur maintenant?
__________________

  #9  
Old 31 mars 2009, 09:25
Groupe de donateurs
 
Default Vista Démarrage et arrêt très lentement, pas trop quoi faire

Nouvelle ComboFix news:

ComboFix 09-03-29.04 - CHLOE 2009-03-31 16:37:20.2 - NTFSx86
Microsoft ® Windows Vista ™ Ultimate 6.0.6001.1.1252.1.1033.18.2046.1173 [GMT 1:00]
Running From: C: \ Users \ CHLOE \ Desktop \ ComboFix.exe
Commande les commutateurs utilisés:: C: \ Users \ CHLOE \ Desktop \ CFScript.txt
AV: AVG Anti-Virus Free * Sur-analyse à l'accès permis * (mise à jour)
FW: ZoneAlarm Firewall * activé *
* Création d'un nouveau point de restauration
.

Créée à partir de ((((((((((((((((((((((((( Files 2009-02-28 au 2009-03-31 ))))))))))) ))))))))))))))))))))
.

2009-03-31 17:15. 2009-03-31 17:15 45.056 - a ------ c: \ windows \ System32 \ acovcnt.exe
2009-03-30 22:26. 2009-03-30 22:26 <DIR> d -------- C: \ Program Files \ MediaMonkey
2009-03-29 16:23. 2008-06-20 02:14 781.344 - a ------ c: \ windows \ System32 \ PresentationNative_v0300.dll
2009-03-29 16:23. 2008-06-20 02:14 622.080 - a ------ c: \ windows \ System32 \ icardagt.exe
2009-03-29 16:23. 2008-06-20 02:14 326.160 - a ------ c: \ windows \ System32 \ PresentationHost.exe
2009-03-29 16:23. 2008-06-20 02:14 105.016 - a ------ c: \ windows \ System32 \ PresentationCFFRasterizerNativ e_v0300.dll
2009-03-29 16:23. 2008-06-20 02:14 97.800 - a ------ c: \ windows \ System32 \ infocardapi.dll
2009-03-29 16:23. 2008-06-20 02:14 43.544 - a ------ c: \ windows \ System32 \ PresentationHostProxy.dll
2009-03-29 16:23. 2008-06-20 02:14 37.384 - a ------ c: \ windows \ System32 \ infocardcpl.cpl
2009-03-29 16:23. 2008-06-20 02:14 11.264 - a ------ c: \ windows \ System32 \ icardres.dll
2009-03-29 16:15. 2008-07-27 19:03 282.112 - a ------ c: \ windows \ System32 \ mscoree.dll
2009-03-29 16:15. 2008-07-27 19:03 96.760 - a ------ c: \ windows \ System32 \ dfshim.dll
2009-03-29 16:15. 2008-07-27 19:03 41.984 - a ------ c: \ windows \ System32 \ netfxperf.dll
2009-03-29 16:14. 2008-07-27 19:03 158.720 - a ------ c: \ windows \ System32 \ mscorier.dll
2009-03-29 16:14. 2008-07-27 19:03 83.968 - a ------ c: \ windows \ System32 \ mscories.dll
2009-03-29 13:52. 2009-03-29 13:53 <DIR> d -------- C: \ Program Files \ Defraggler
2009-03-29 13:26. 2008-02-23 05:38 170.496 - a ------ c: \ windows \ System32 \ tcpipcfg.dll
2009-03-29 13:26. 2008-02-23 03:41 22.528 - a ------ c: \ windows \ System32 \ netiougc.exe
2009-03-29 13:25. 2009-02-16 00:10 1.221.512 - a ------ c: \ windows \ System32 \ zpeng25.dll
2009-03-17 21:57. 2009-03-17 21:57 <DIR> d -------- C: \ Program Files \ Microsoft
2009-03-17 21:56. 2009-03-17 21:56 <DIR> d -------- C: \ Windows \ PCHealth
2009-03-16 22:43. 2009-03-28 22:36 <DIR> d - h ----- C: \ $ $ AVG8.VAULT
2009-03-16 20:59. 2009-03-16 20:59 25 - a ------ c: \ windows \ CDPlayer.ini
2009-03-14 00:34. 2008-12-05 05:32 428.544 - a ------ c: \ windows \ System32 \ EncDec.dll
2009-03-14 00:34. 2008-12-05 05:32 293.376 - a ------ c: \ windows \ System32 \ Psisdecd.dll
2009-03-14 00:34. 2008-12-05 05:31 217.088 - a ------ c: \ windows \ System32 \ psisrndr.ax
2009-03-14 00:34. 2008-12-05 05:31 177.664 - a ------ c: \ windows \ System32 \ mpg2splt.ax
2009-03-14 00:34. 2008-12-05 05:31 80.896 - a ------ c: \ windows \ System32 \ MSNP.ax
2009-03-14 00:29. 2009-03-14 00:29 <DIR> d -------- C: \ Program Files \ (00D89592-F643-4D8D-8f0f-AFAE0F14D4C3)
2009-03-14 00:29. 2009-03-14 00:29 <DIR> d -------- C: \ Program Files \ iTunes
2009-03-14 00:29. 2009-03-14 00:29 <DIR> d -------- C: \ Program Files \ iPod
2009-03-14 00:29. 2008-04-17 13:12 107.368 - a ------ c: \ windows \ System32 \ GEARAspi.dll
2009-03-14 00:29. 2009-01-15 13:19 23.848 - a ------ c: \ windows \ system32 \ drivers \ GEARAspiWDM.sys
2009-03-14 00:26. 2009-03-14 00:27 <DIR> d -------- C: \ Program Files \ QuickTime
2009-03-12 23:39. 2009-03-12 23:39 <DIR> d -------- C: \ Program Files \ Kontiki
2009-03-12 23:39. 2009-03-12 23:39 <DIR> d -------- C: \ Program Files \ Kontiki
2009-03-12 23:39. 2009-03-12 23:39 <DIR> d -------- C: \ Program Files \ Channel4
2009-03-12 23:38. 2009-03-12 23:38 <DIR> d -------- C: \ Program Files \ Channel4
2009-03-11 22:33. 2009-03-31 17:16 <DIR> d -------- C: \ Users \ CHLOE \ Tracing
2009-03-11 22:22. 2009-03-11 22:22 <DIR> d -------- C: \ Program Files \ Windows Live SkyDrive
2009-03-11 22:22. 2009-03-17 21:57 <DIR> d -------- C: \ Program Files \ Windows Live
2009-03-11 21:57. 2009-03-11 21:57 <DIR> d -------- C: \ Program Files \ Fichiers communs \ Windows Live
2009-03-11 13:13. 2009-03-11 21:47 <DIR> d -------- C: \ Program Files \ Amazon
2009-03-11 13:13. 2009-03-11 13:13 107.272 - a ------ c: \ windows \ system32 \ drivers \ avgtdix.sys
2009-03-11 02:09. 2009-01-15 04:36 1.383.424 - a ------ c: \ windows \ System32 \ Mshtml.tlb
2009-03-11 02:09. 2009-01-15 07:11 827.392 - a ------ c: \ windows \ system32 \ Wininet.dll
2009-03-11 02:05. 2008-12-16 04:29 8.147.456 - a ------ c: \ windows \ System32 \ wmploc.dll
2009-03-11 02:05. 2008-12-16 06:31 7.680 - a ------ c: \ windows \ System32 \ spwmp.dll
2009-03-11 02:05. 2008-12-16 06:31 4.096 - a ------ c: \ windows \ System32 \ msdxm.ocx
2009-03-11 02:05. 2008-12-16 06:31 4.096 - a ------ c: \ windows \ System32 \ Dxmasf.dll
2009-03-11 02:03. 2008-12-16 03:42 288.768 - a ------ c: \ windows \ system32 \ drivers \ srv.sys
2009-03-11 02:03. 2008-11-27 05:43 268.288 - a ------ c: \ windows \ System32 \ schannel.dll
2009-03-11 02:02. 2009-02-09 04:10 2.033.152 - a ------ c: \ windows \ System32 \ win32k.sys
2009-02-06 19:52. 2009-02-06 19:52 49.504 - a ------ c: \ windows \ System32 \ sirenacm.dll

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))) ))))))))))))))))))))))))))))))))))))))))))))
.
2009-03-31 16:15 --------- d --- aw C: \ Program Files \ TEMP
2009-03-31 16:14 350.195 --- ha-w c: \ windows \ system32 \ drivers \ vsconfig.xml
2009-03-29 14:42 --------- d ----- wc: \ Program Files \ Spybot - Search & Destroy
2009-03-29 14:42 --------- d ----- wc: \ Program Files \ Spybot - Search & Destroy
2009-03-29 14:42 --------- d ----- wc: \ Program Files \ CCleaner
2009-03-19 16:48 --------- d ----- wc: \ users \ CHLOE \ AppData \ Roaming \ uTorrent
2009-03-16 19:58 --------- d ----- wc: \ Program Files \ Fichiers communs \ Real
2009-03-13 23:29 --------- d ----- wc: \ Program Files \ Apple Computer
2009-03-13 23:29 --------- d ----- wc: \ Program Files \ Fichiers communs \ Apple
2009-03-13 23:27 --------- d ----- wc: \ Program Files \ Bonjour
2009-03-12 22:24 --------- d ----- wc: \ Program Files \ Google
2009-03-11 23:07 --------- d ----- wc: \ Program Files \ Microsoft Silverlight
2009-03-11 23:05 --------- d ----- wc: \ Program Files \ Windows Mail
2009-03-11 12:13 325.128 ---- aw C: \ windows \ system32 \ drivers \ avgldx86.sys
2009-03-11 11:52 --------- d ----- wc: \ Program Files \ AVG8
2009-02-15 23:11 293.528 ---- aw C: \ windows \ system32 \ drivers \ vsdatant.sys
2009-01-14 20:20 55,232 ---- aw C: \ Users \ CHLOE \ AppData \ Roaming \ GDIPFONTCACHEV1.DAT
2008-12-31 21:51 13.025 ---- aw C: \ Users \ CHLOE \ AppData \ Roaming \ nvModes.dat
2008-12-31 14:32 174 - sha-w C: \ Program Files \ Desktop.ini
2008-11-19 15:31 81.920 ---- aw C: \ Users \ CHLOE \ AppData \ Roaming \ ezpinst.exe
2008-11-19 15:31 47.360 ---- aw C: \ Users \ CHLOE \ AppData \ Roaming \ pcouffin.sys
2007-05-31 18:23 77.160 ---- aw C: \ Users \ CHLOE \ dsetup.dll
2007-05-31 18:23 503.144 ---- aw C: \ Users \ CHLOE \ DXSETUP.exe
2007-05-31 18:23 1.673.576 ---- aw C: \ Users \ CHLOE \ Dsetup32.dll
.

((((((((((((((((((((((((((((( SnapShot@2009-03-30_22.13.33.29 )))))))))) )))))))))))))))))))))))))))))))
.
+ 2009-03-31 16:14:31 2.048 - sha-w C: \ Windows \ ServiceProfiles \ LocalService \ AppData \ Lo cal \ lastalive0.dat
+ 2009-03-31 16:14:31 2.048 - sha-w C: \ Windows \ ServiceProfiles \ LocalService \ AppData \ Lo cal \ lastalive1.dat
- 2009-03-30 21:07:56 1.048.576 - sha-w C: \ Windows \ ServiceProfiles \ LocalService \ NTUSER.DAT
+ 2009-03-31 16:15:44 1.048.576 - sha-w C: \ Windows \ ServiceProfiles \ LocalService \ NTUSER.DAT
- 2009-03-30 21:07:56 1.048.576 - sha-w C: \ Windows \ ServiceProfiles \ NetworkService \ NTUSER.D AT
+ 2009-03-31 16:15:44 1.048.576 - sha-w C: \ Windows \ ServiceProfiles \ NetworkService \ NTUSER.D AT
- 2009-03-30 21:07:06 16,384 - sha-w c: \ windows \ system32 \ config \ systemprofile \ AppData \ L OCAL \ Microsoft \ Windows \ History \ History.IE5 \ index.d à
+ 2009-03-31 16:14:35 16.384 - SHA-w c: \ windows \ system32 \ config \ systemprofile \ AppData \ L OCAL \ Microsoft \ Windows \ History \ History.IE5 \ index.d à
- 2009-03-30 21:07:06 32,768 - sha-w c: \ windows \ system32 \ config \ systemprofile \ AppData \ L OCAL \ Microsoft \ Windows \ Temporary Internet Files \ Content.IE5 \ index.dat
+ 2009-03-31 16:14:35 32.768 - SHA-w c: \ windows \ system32 \ config \ systemprofile \ AppData \ L OCAL \ Microsoft \ Windows \ Temporary Internet Files \ Content.IE5 \ index.dat
- 2009-03-30 21:07:06 16,384 - sha-w c: \ windows \ system32 \ config \ systemprofile \ AppData \ oaming R \ Microsoft \ Windows \ Cookies \ index.dat
+ 2009-03-31 16:14:35 16.384 - SHA-w c: \ windows \ system32 \ config \ systemprofile \ AppData \ oaming R \ Microsoft \ Windows \ Cookies \ index.dat
- 2009-03-30 19:05:35 126,818 ---- aw C: \ WINDOWS \ System32 \ perfc007.dat
+ 2009-03-31 15:21:23 126.818 ---- aw C: \ WINDOWS \ System32 \ perfc007.dat
- 2009-03-30 19:05:35 119,076 ---- aw C: \ WINDOWS \ System32 \ Perfc009.dat
+ 2009-03-31 15:21:23 119.076 ---- aw C: \ WINDOWS \ System32 \ Perfc009.dat
- 2009-03-30 19:05:35 127,578 ---- aw C: \ WINDOWS \ System32 \ perfc00C.dat
+ 2009-03-31 15:21:23 127.578 ---- aw C: \ WINDOWS \ System32 \ perfc00C.dat
- 2009-03-30 19:05:35 124,352 ---- aw C: \ WINDOWS \ System32 \ perfc010.dat
+ 2009-03-31 15:21:23 124.352 ---- aw C: \ WINDOWS \ System32 \ perfc010.dat
- 2009-03-30 19:05:35 130,866 ---- aw C: \ WINDOWS \ System32 \ perfc013.dat
+ 2009-03-31 15:21:23 130.866 ---- aw C: \ WINDOWS \ System32 \ perfc013.dat
- 2009-03-30 19:05:35 130,272 ---- aw C: \ WINDOWS \ System32 \ perfc019.dat
+ 2009-03-31 15:21:23 130.272 ---- aw C: \ WINDOWS \ System32 \ perfc019.dat
- 2009-03-30 19:05:35 620,942 ---- aw C: \ WINDOWS \ System32 \ perfh007.dat
+ 2009-03-31 15:21:23 620.942 ---- aw C: \ WINDOWS \ System32 \ perfh007.dat
- 2009-03-30 19:05:35 644,794 ---- aw C: \ WINDOWS \ System32 \ Perfh009.dat
+ 2009-03-31 15:21:23 644.794 ---- aw C: \ WINDOWS \ System32 \ Perfh009.dat
- 2009-03-30 19:05:35 672,380 ---- aw C: \ WINDOWS \ System32 \ perfh00C.dat
+ 2009-03-31 15:21:23 672.380 ---- aw C: \ WINDOWS \ System32 \ perfh00C.dat
- 2009-03-30 19:05:35 666,234 ---- aw C: \ WINDOWS \ System32 \ perfh010.dat
+ 2009-03-31 15:21:23 666.234 ---- aw C: \ WINDOWS \ System32 \ perfh010.dat
- 2009-03-30 19:05:35 669,852 ---- aw C: \ WINDOWS \ System32 \ perfh013.dat
+ 2009-03-31 15:21:23 669.852 ---- aw C: \ WINDOWS \ System32 \ perfh013.dat
- 2009-03-30 19:05:35 657,990 ---- aw C: \ WINDOWS \ System32 \ perfh019.dat
+ 2009-03-31 15:21:23 657.990 ---- aw C: \ WINDOWS \ System32 \ perfh019.dat
- 2009-03-30 19:03:55 17,414 ---- aw C: \ WINDOWS \ System32 \ WDI \ (86432a0b-3c7d-4ddf-a89c-172faa90485d) \ S-1-5-21-3600620296-2450975610 - 132854369-1000_UserData.bin
+ 2009-03-31 16:17:14 18.026 ---- aw C: \ WINDOWS \ System32 \ WDI \ (86432a0b-3c7d-4ddf-a89c-172faa90485d) \ S-1-5-21-3600620296-2450975610 - 132854369-1000_UserData.bin
- 2009-03-30 19:03:55 81,750 ---- aw C: \ WINDOWS \ System32 \ WDI \ BootPerformanceDiagnostics _SystemData.bin
+ 2009-03-31 16:17:14 81.884 ---- aw C: \ WINDOWS \ System32 \ WDI \ BootPerformanceDiagnostics _SystemData.bin
- 2009-03-30 19:03:54 68,204 ---- aw C: \ WINDOWS \ System32 \ WDI \ ShutdownPerformanceDiagnos tics_SystemData.bin
+ 2009-03-31 15:15:30 68.346 ---- aw C: \ WINDOWS \ System32 \ WDI \ ShutdownPerformanceDiagnos tics_SystemData.bin
.
- Snapshot reset à la date du jour --
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points )))))))))) ))))))))))))))))))))))))))))))))))))))))
.
.
* Note * empty entries & legit entrées par défaut ne sont pas indiquées
REGEDIT4

[HKEY_CURRENT_USER \ SOFTWARE \ Microsoft \ Windows \ Curré ntVersion \ Run]
"RocketDock" = "C: \ Program Files \ RocketDock \ RocketDock.exe" [2007-09-02 495616]
"msnmsgr" = "c: \ program files \ Windows Live \ Messenger \ msnmsgr.exe" [2009-02-06 3885408]
"WMPNSCFG" = "c: \ program files \ Windows Media Player \ wmpnscfg.exe" [2008-01-19 202240]

[HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ Windows \ Curr entVersion \ Run]
"ASUS Screen Saver Protector" = "c: \ windows \ ASScrPro.exe" [2007-05-15 33136]
"IFXSPMGT" = "c: \ windows \ system32 \ ifxspmgt.exe" [2007-02-26 677408]
"ZoneAlarm Client" = "c: \ program files \ Zone Labs \ ZoneAlarm \ zlclient.exe" [2009-02-16 981384]
"HotKeysCmds" = "C: \ Program Files \ QuickTime \ ashDisp.exe" [2007-03-01 857648]

[HKEY_LOCAL_MACHINE \ software \ microsoft \ windows \ curr entversion \ policies \ system]
"EnableUIADesktopToggle" = 0 (0x0)

[HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ Windows NT \ CurrentVersion \ Windows]
"AppInit_DLLs" = avgrsstx.dll APSHook.dll

[HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ Windows NT \ CurrentVersion \ drivers32]
"msacm.ac3filter" = ac3filter.acm

[HKEY_LOCAL_MACHINE \ SYSTEM \ CurrentControlSet \ contro l \ Lsa]
Notification Packages REG_MULTI_SZ SceCli ASWLNPkg

[HKLM \ ~ \ startupfolder \ C: ^ ProgramData ^ Microsoft Wind ows ^ ^ Menu Démarrer ^ Programmes ^ Démarrage ^ WinZip Quick Pick.lnk]
path = C: \ Program Files \ Microsoft \ Windows \ Start Menu \ Programs \ Startup \ WinZip Quick Pick.lnk
backup = C: \ WINDOWS \ pss \ WinZip Quick Pick.lnk.CommonStartup
backupExtension =. CommonStartup

[HKEY_LOCAL_MACHINE \ software \ microsoft \ shared tools \ msconfig \ startupreg \ 4oD]
- a ------ 2007-04-23 12:23 1032640 C: \ Program Files \ Kontiki \ KHost.exe

[HKEY_LOCAL_MACHINE \ software \ microsoft \ shared tools \ msconfig \ startupreg \ Adobe Reader Speed Launcher]
- a ------ 2008-06-12 02:38 34672 D: \ Program Files \ Acrobat \

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Shared Tools \ \ msconfig startupreg \ ASUS Camera ScreenSaver]
- a ------ 2007-05-15 05:12 37232 c: \ windows \ ASScrProlog.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Shared Tools \ \ msconfig startupreg \ ATKMEDIA]
- a ------ 2006-11-02 16:27 61440 C: \ Program Files \ ASUS \ ATK Media \ DMedia.exe

[HKEY_LOCAL_MACHINE \ software \ microsoft \ shared tools \ msconfig \ startupreg \ AVG8_TRAY]
- a ------ 2009-03-11 13:13 1601304 C: \ PROGRA ~ 1 \ AVG \ AVG8 \ avgtray.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Shared Tools \ \ msconfig startupreg \ iTunesHelper]
-ra ------ 2003-12-21 22:11 17920 C: \ PROGRA ~ 1 \ ASUSSE ~ 1 \ ASUSSE ~ 1 \ Bin \ ASTSVCC.dll

[HKEY_LOCAL_MACHINE \ software \ microsoft \ shared tools \ msconfig \ startupreg \ ehTray.exe]
- a ------ 2008-01-19 08:33 125952 c: \ windows \ ehome \ ehtray.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Shared Tools \ \ msconfig startupreg \ Google Update]
- a ---- t-2009-03-17 22:06 133104 c: \ users \ CHLOE \ AppData \ Local \ Google \ Update \ GoogleU pdate.exe

[HKEY_LOCAL_MACHINE \ software \ microsoft \ shared tools \ msconfig \ startupreg \ iTunesHelper]
- a ------ 2009-03-11 14:52 342312 C: \ Program Files \ iTunes \ iTunesHelper.exe

[HKEY_LOCAL_MACHINE \ software \ microsoft \ shared tools \ msconfig \ startupreg \ msnmsgr]
- a ------ 2009-02-06 19:51 3885408 C: \ Program Files \ Windows Live \ Messenger \ msnmsgr.exe

[HKEY_LOCAL_MACHINE \ software \ microsoft \ shared tools \ msconfig \ startupreg \ NvCplDaemon]
- a ------ 2007-04-04 12:40 8429568 C: \ WINDOWS \ System32 \ NvCpl.dll

[HKEY_LOCAL_MACHINE \ software \ microsoft \ shared tools \ msconfig \ startupreg \ NvMediaCenter]
- a ------ 2007-04-04 12:40 81920 c: \ windows \ system32 \ NvCpl.dll

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Shared Tools \ \ msconfig startupreg \ RtHDVCpl]
- a ------ 2007-04-04 12:40 86016 c: \ windows \ system32 \ nvsvc.dll

[HKEY_LOCAL_MACHINE \ software \ microsoft \ shared tools \ msconfig \ startupreg \ QuickTime Task]
- a ------ 2009-01-05 17:18 413696 C: \ Program Files \ QuickTime \ qttask.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Shared Tools \ \ msconfig startupreg \ RocketDock]
- a ------ 2007-09-02 13:58 495616 C: \ Program Files \ RocketDock \ RocketDock.exe

[HKEY_LOCAL_MACHINE \ software \ microsoft \ shared tools \ msconfig \ startupreg \ SpybotSD TeaTimer]
-rahs ---- 2009-03-05 16:07 2260480 C: \ Program Files \ Spybot - Search & Destroy \ TeaTimer.exe

[HKEY_LOCAL_MACHINE \ software \ microsoft \ shared tools \ msconfig \ startupreg \ SunJavaUpdateSched]
- a ------ 2008-06-10 04:27 144784 C: \ Program Files \ Java \ jre1.6.0_07 \ bin \ ashDisp.exe

[HKEY_LOCAL_MACHINE \ software \ microsoft \ shared tools \ msconfig \ startupreg \ TkBellExe]
- a ------ 2009-03-16 20:58 198160 C: \ Program Files \ Fichiers communs \ Real \ qttask.exe

[HKEY_LOCAL_MACHINE \ software \ microsoft \ shared tools \ msconfig \ startupreg \ Windows Defender]
- a ------ 2008-01-19 08:38 1008184 C: \ Program Files \ Windows Defender \ MSASCui.exe

[HKEY_LOCAL_MACHINE \ software \ microsoft \ shared tools \ msconfig \ startupreg \ WMPNSCFG]
- a ------ 2008-01-19 08:33 202240 C: \ Program Files \ Windows Media Player \ TeaTimer.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Shared Tools \ \ msconfig startupreg \ (0228e555-4f9c-4e35-a3ec-b109a192b4c2)]
- a ------ 2005-07-15 22:48 479232 C: \ Program Files \ Google \ Gmail Notifier \ gnotify.exe

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Shared Tools \ \ msconfig startupreg \ Windows Defender]
- a ------ 2007-02-15 10:07 4390912 C: \ Windows \ RtHDVCpl.exe

[HKEY_LOCAL_MACHINE \ software \ microsoft \ security center \ Monitoring]
"DisableMonitoring" = dword: 00000001

[HKEY_LOCAL_MACHINE \ software \ microsoft \ security center \ Monitoring \ ZoneLabsFirewall]
"DisableMonitoring" = dword: 00000001

[HKLM \ ~ \ Services \ SharedAccess \ Parameters \ firewallpo licy \ DomainProfile]
"EnableFirewall" = 0 (0x0)

[HKLM \ ~ \ Services \ SharedAccess \ Parameters \ firewallpo licy \ FirewallRules]
"(71E74FA5-D1FA-4A82-9121-AE2CACB2ED04)" = Profile = Private | C: \ Program Files \ Windows Live \ Messenger \ livecall.exe: Windows Live Messenger (Phone)
"(2FE2345B-5C77-485E-9855-FC6024DE75EC)" = Profile = Private | C: \ Program Files \ Windows Live \ Messenger \ livecall.exe: Windows Live Messenger (Phone)
"(CC9CFD37-6799-47CF-9AEE-1063F21C5548)" = Profile = Private | C: \ Program Files \ Windows Live \ Messenger \ livecall.exe: Windows Live Messenger (Phone)
"(3D44E6E8-68F3-42F0-B97E-1081F1354874)" = UDP: C: \ Program Files \ LimeWire \ LimeWire.exe: LimeWire 4.12.15
"(B2393435-26B3-4482-A391-C964F3370D66)" = TCP: C: \ Program Files \ LimeWire \ LimeWire.exe: LimeWire 4.12.15
"(1B1039C9-3AEF-4B2E-85ca-DA79FB7CDBD3)" = Disabled: C: \ Program Files \ Windows Live \ Messenger \ livecall.exe: Windows Live Messenger (Phone)
"(F9EC3544-5A35-4D84-A067-E7167563791A)" = Disabled: C: \ Program Files \ Windows Live \ Messenger \ livecall.exe: Windows Live Messenger (Phone)
"(A9CE85F3-F9BA-4875-B169-9DEF59911C8A)" = Disabled: C: \ Program Files \ Windows Live \ Messenger \ livecall.exe: Windows Live Messenger (Phone)
"TCP Query User (0FAAFA32-F5A3-4C35-9afd-A648E4B3016E) c: \ \ Program Files \ \ uTorrent \ \ utorrent.exe" = UDP: C: \ Program Files \ \ uTorrent utorrent.exe: uTorrent
"UDP Query User (CDC85196-C503-4F00-82DC-B95F8D021895) c: \ \ Program Files \ \ uTorrent \ \ utorrent.exe" = TCP: C: \ Program Files \ \ uTorrent utorrent.exe: uTorrent
"TCP Query User (5D761702-BEB7-4B94-B693-1A7EF8E441ED) c: \ \ Program Files \ \ WebTV facile et radio \ \ easywebtv.exe" = UDP: C: \ Program Files \ WebTV facile et radio \ easywebtv.exe : Web TV \ Radio \ Media
"UDP Query User (A7E2F9B1-976E-49B1-960A-8FE671DECB26) C: \ \ Program Files \ \ WebTV facile et radio \ \ easywebtv.exe" = TCP: C: \ Program Files \ WebTV facile et radio \ easywebtv.exe : Web TV \ Radio \ Media
"(978D57EE-8CEF-4E88-B3CC-472590D8A602)" = C: \ Program Files \ Windows Live \ Messenger \ livecall.exe: Windows Live Messenger (Phone)
"(038AD6DB-57BA-4294-B6BE-DC5AC329D87A)" = C: \ Program Files \ Windows Live \ Messenger \ livecall.exe: Windows Live Messenger (Phone)
"TCP Query User (20F3997A-2406-42BC-9A96-17DBA8717938) c: \ \ Program Files \ \ soulseek \ \ slsk.exe" = UDP: C: \ Program Files \ \ soulseek slsk.exe: SoulSeek
"UDP Query User (EBEDABDC-8DFA-4EA4-83A0-5D79C8A2BE45) c: \ \ Program Files \ \ soulseek \ \ slsk.exe" = TCP: C: \ Program Files \ \ soulseek slsk.exe: SoulSeek
"TCP Query User (A2D20908-089C-441B-B9C8-C8811AFCAB9E) c: \ \ Program Files \ \ LimeWire \ \ LimeWire.exe" = UDP: C: \ Program Files \ \ LimeWire LimeWire.exe: LimeWire
"UDP Query User (0B6B64F6-D6E9-4D1D-B83A-E6E85E360C05) c: \ \ Program Files \ \ LimeWire \ \ LimeWire.exe" = TCP: C: \ Program Files \ \ LimeWire LimeWire.exe: LimeWire
"(2E890455-237D-4ABA-BE37-B5E6E1862834)" = C: \ Program Files \ Windows Live \ Messenger \ livecall.exe: Windows Live Messenger (Phone)
"(DDAAC8F6-7557-495A-82B3-EBFF9330A2CC)" = C: \ Program Files \ Windows Live \ Messenger \ livecall.exe: Windows Live Messenger (Phone)
"(5131D757-BC24-44C9-8EA5-E268DFC6DCAC)" = C: \ Program Files \ Windows Live \ Messenger \ livecall.exe: Windows Live Messenger (Phone)
"TCP Query User (4C52E1A6-D998-41D5-8E99-27F21E3CA7CB) c: \ \ Program Files \ Mozilla Firefox \ \ firefox.exe" = UDP: C: \ Program Files \ Mozilla Firefox \ firefox.exe: Firefox
"UDP Query User (80235B6B-2462-4AC3-8A59-7534841DE76B) c: \ \ Program Files \ Mozilla Firefox \ \ firefox.exe" = TCP: C: \ Program Files \ Mozilla Firefox \ firefox.exe: Firefox
"TCP Query User (049DD1E6-8191-4983-A59D-240E79B46042) c: \ \ Program Files \ \ uTorrent \ \ utorrent.exe" = UDP: C: \ Program Files \ \ uTorrent utorrent.exe: uTorrent
"UDP Query User (9A00A32D-A675-4425-8F5E-1528AAB521FB) c: \ \ Program Files \ \ uTorrent \ \ utorrent.exe" = TCP: C: \ Program Files \ \ uTorrent utorrent.exe: uTorrent
"TCP Query User (348698D9-5A1D-4E1C-AC00-DBDC43BE0ACF) c: \ \ Program Files \ \ soulseek \ \ slsk.exe" = UDP: c: \ program files \ soulseek \ slsk.exe: SoulSeek
"UDP Query User (60AFF659-3A7C-488C-9CCA-0A8589DD32FA) c: \ \ Program Files \ \ soulseek \ \ slsk.exe" = TCP: C: \ Program Files \ \ soulseek slsk.exe: SoulSeek
"TCP Query User (3EF98A58-7B3C-42B1-8A5A-CF7DEF59C2A7) c: \ \ Program Files \ \ SopCast \ \ sopcast.exe" = UDP: C: \ Program Files \ \ SopCast sopcast.exe: SopCast Main Application
"UDP Query User (D8A0735D-6D19-4482-A90A-35A9D023DEBE) c: \ \ Program Files \ \ SopCast \ \ sopcast.exe" = TCP: C: \ Program Files \ \ SopCast sopcast.exe: SopCast Main Application
"TCP Query User (7B392C25-D64F-4897-B5CC-5C9B83106BB0) c: \ \ Program Files \ Mozilla Firefox \ \ firefox.exe" = UDP: C: \ Program Files \ Mozilla Firefox \ firefox.exe: Firefox
"UDP Query User (9990806D-9198-4760-93E7-C65D44E1FE8A) c: \ \ Program Files \ Mozilla Firefox \ \ firefox.exe" = TCP: C: \ Program Files \ Mozilla Firefox \ firefox.exe: Firefox
"TCP Query User (9998DAB7-D775-4620-A491-D752230551A3) c: \ \ Program Files \ Internet Explorer \ iexplore.exe" = UDP: C: \ Program Files \ Internet Explorer \ iexplore.exe: Internet Explorer
"UDP Query User (B9293167-A4DC-43ED-893B-B5B1B89F9988) c: \ \ Program Files \ Internet Explorer \ iexplore.exe" = TCP: C: \ Program Files \ Internet Explorer \ iexplore.exe: Internet Explorer
"TCP Query User (B04F6C2B-953A-469D-AFD8-4F3AE27A4941) c: \ \ users \ \ Chloe \ \ AppData \ Roaming \ \ s opcast \ \ adv \ \ sopadver.exe" = UDP: C: \ Users \ \ chloe AppData \ Roaming \ SopCast \ adv \ SOP adver.exe: sopadver.exe
"UDP Query User (914B6A2A-9A2A-43A8-B4EA-BB1EEDC476B5) c: \ \ users \ \ Chloe \ \ AppData \ Roaming \ \ s opcast \ \ adv \ \ sopadver.exe" = TCP: C: \ Users \ \ chloe AppData \ Roaming \ SopCast \ adv \ SOP adver.exe: sopadver.exe
"TCP Query User (69F8C35B-6614-4033-B40E-59012B10975A) c: \ \ Program Files \ \ BearFlix \ \ bearflix.exe" = UDP: C: \ Program Files \ BearFlix \ bearflix.exe: BearFlix
"UDP Query User (89ABF64F-F79E-456d-9136-82A8675A3E17) c: \ \ Program Files \ \ BearFlix \ \ bearflix.exe" = TCP: C: \ Program Files \ BearFlix \ bearflix.exe: BearFlix
"(8D76BC83-ABC9-406B-8945-366EA3B7074B)" = UDP: C: \ Program Files \ SmartFTP Client \ SmartFTP.exe: SmartFTP client
"(9FC79C86-3E66-4A61-aa2A-FAB0C61E0453)" = TCP: C: \ Program Files \ SmartFTP Client \ SmartFTP.exe: SmartFTP client
"TCP Query User (9FF9F89E-5323-45db-89F0-BA37B84180EE) c: \ \ Program Files \ \ TVAnts \ \ tvants.exe" = UDP: C: \ Program Files \ tvants \ tvants.exe: TVAnts
"UDP Query User (C10505B7-BDD4-49BB-93E6-E73B8E6C4E33) c: \ \ Program Files \ \ TVAnts \ \ tvants.exe" = TCP: C: \ Program Files \ tvants \ tvants.exe: TVAnts
"TCP Query User (A9E241F3-D69C-4E67-938B-33C91AB576A1) c: \ \ Program Files \ \ TVUPlayer \ \ tvuplayer.exe" = UDP: C: \ Program Files \ \ TVUPlayer tvuplayer.exe: TVU Player Component
"UDP Query User (D3542B64-2CF9-4C20-B6CB-1D9096FF27EB) c: \ \ Program Files \ \ TVUPlayer \ \ tvuplayer.exe" = TCP: C: \ Program Files \ \ TVUPlayer tvuplayer.exe: TVU Player Component
"(F8B68D6E-3A24-4B31-8261-FB3CA92B5740)" = C: \ Program Files \ Windows Live \ Messenger \ livecall.exe: Windows Live Messenger (Phone)
"TCP Query User (4E95BA55-EDF5-491D-9059-F11FF353A128) c: \ \ users \ \ Chloe \ \ AppData \ Roaming \ \ s opcast \ \ adv \ \ sopadver.exe" = UDP: C: \ Users \ \ chloe AppData \ Roaming \ SopCast \ adv \ SOP adver.exe: sopadver.exe
"UDP Query User (55C79E39-F1AC-45C7-8F99-995A835F089A) c: \ \ users \ \ Chloe \ \ AppData \ Roaming \ \ s opcast \ \ adv \ \ sopadver.exe" = TCP: C: \ Users \ \ chloe AppData \ Roaming \ SopCast \ adv \ SOP adver.exe: sopadver.exe
"TCP Query User (A3EF2380-6740-4FD5-913E-D67F54A54B11) c: \ \ Program Files \ \ SopCast \ \ sopcast.exe" = UDP: C: \ Program Files \ \ SopCast sopcast.exe: SopCast Main Application
"UDP Query User (E9C164FD-CB41-4D08-9DBA-BDDB929D1C86) c: \ \ Program Files \ \ SopCast \ \ sopcast.exe" = TCP: C: \ Program Files \ \ SopCast sopcast.exe: SopCast Main Application
"TCP Query User (C1148110-2D5B-4810-8651-98FBFD3A6751) c: \ \ Program Files \ Internet Explorer \ iexplore.exe" = UDP: C: \ Program Files \ Internet Explorer \ iexplore.exe: Internet Explorer
"UDP Query User (F15683E5-A578-47EE-BEB1-4541978254F4) c: \ \ Program Files \ Internet Explorer \ iexplore.exe" = TCP: C: \ Program Files \ Internet Explorer \ iexplore.exe: Internet Explorer
"TCP Query User (CCA39E89-B85B-41BA-9A33-CA6DB37579E4) d: \ \ Program Files \ \ clue.exe" = UDP: D: \ Program Files \ clue.exe: Les énigmes
"UDP Query User (39F3C83F-DCF0-43B4-B149-19F3630B3078) d: \ \ Program Files \ \ clue.exe" = TCP: D: \ Program Files \ clue.exe: Les énigmes
"(01834D55-82B5-480D-BEFF-52EDB82BB8B5)" = C: \ Program Files \ Windows Live \ Messenger \ livecall.exe: Windows Live Messenger (Phone)
"(90ECB35B-6897-4166-A35A-04BC39978BA9)" = C: \ Program Files \ AVG \ AVG8 \ avgemc.exe: avgemc.exe
"(504F647E-1476-4948-AA42-DC1DF85CA9A8)" = C: \ Program Files \ AVG \ AVG8 \ avgupd.exe: avgupd.exe
"(CC411EBB-9ACA-4217-9994-ABB961E83B3C)" = UDP: C: \ Program Files \ \ uTorrent utorrent.exe: μTorrent (TCP-In)
"(031AA3B5-F93B-4E4B-9ED7-66C6B9FFF3E8)" = TCP: C: \ Program Files \ \ uTorrent utorrent.exe: μTorrent (UDP-In)
"(1D54F818-ABAC-418F-8F39-17EA7664FABE)" = UDP: C: \ Program Files \ Bonjour \ mDNSResponder.exe: Bonjour
"(3C9FFAF4-40EA-450F-A906-D34D3E2EFA72)" = TCP: C: \ Program Files \ Bonjour \ mDNSResponder.exe: Bonjour
"(6AC9F5D1-C3AC-4878-8740-8A3E10F857E2)" = UDP: C: \ Program Files \ iTunes \ iTunes.exe: iTunes
"(77045B5E-EC2E-4749-AC23-32130CD39567)" = TCP: C: \ Program Files \ iTunes \ iTunes.exe: iTunes
"(00BE12C0-42CB-4B64-AA07-80A45C05B97C)" = Disabled: UDP: C: \ Program Files \ Sports Interactive \ Football Manager 2008 \ fm.exe: Football Manager 2008
"(0A529C81-B8E4-4809-A54B-B5141A997A78)" = Disabled: TCP: C: \ Program Files \ Sports Interactive \ Football Manager 2008 \ fm.exe: Football Manager 2008

[HKLM \ ~ \ Services \ SharedAccess \ Parameters \ firewallpo licy \ PublicProfile]
"EnableFirewall" = 0 (0x0)

[HKLM \ ~ \ Services \ SharedAccess \ Parameters \ firewallpo licy \ StandardProfile]
"EnableFirewall" = 0 (0x0)

R1 AvgLdx86; AVG Free AVI Loader Driver x86; c: \ windows \ system32 \ drivers \ avgldx86.sys [2008-12-24 325128]
R1 AvgTdiX; AVG8 Network Redirector; c: \ windows \ system32 \ drivers \ avgtdix.sys [2009-03-11 107272]
R1 ItSDisk; ItSDisk; c: \ windows \ system32 \ drivers \ k.sys itsdis [2006-05-16 23496]
R1 PersonalSecureDrive; PersonalSecureDrive; c: \ windows \ system32 \ drivers \ psd.sys [2007-01-23 39080]
R2 ASBroker; Logon Session Broker; c: \ windows \ System32 \ svchost.exe Cognizance-k [2008-08-07 21504]
R2 ASChannel; Local Communication Channel; c: \ windows \ System32 \ svchost.exe Cognizance-k [2008-08-07 21504]
Avg8emc R2; AVG Free8 E-mail Scanner; C: \ PROGRA ~ 1 \ AVG \ AVG8 \ avgemc.exe [2009-03-11 903960]
R2 avg8wd; AVG Free8 WatchDog; C: \ PROGRA ~ 1 \ AVG \ AVG8 \ avgwdsvc.exe [2009-03-11 298264]
R2 HDDlife HDD Service d'accès; HDDlife HDD Service d'accès C: \ Program Files \ BinarySense \ HDDlife 3 \ hldasvc.exe [2007-08-09 816376]
R2 SBSDWSCService; SBSD Security Center Service; C: \ Program Files \ Spybot - Search & Destroy \ SDWinSec.exe [2007-07-15 1153368]
R2 StkSSrv; Syntek AVStream USB2.0 WebCam Service; c: \ windows \ System32 \ StkCSrv.exe [2007-02-07 24576]
R3 AtcL001; NDIS Miniport Driver pour Attansic L1 Gigabit Ethernet Controller; c: \ windows \ system32 \ drivers \ s atl01v32.sy [2007-03-15 48128]
R3 StkCMini; Syntek AVStream USB2.0 1.3M WebCam; c: \ windows \ system32 \ drivers \ StkCMini.sys [2007-02-13 1245056]

[HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ Windows NT \ CurrentVersion \ svchost]
bthsvcs REG_MULTI_SZ BthServ
Connaissance REG_MULTI_SZ ASBroker ASChannel

[HKEY_CURRENT_USER \ SOFTWARE \ Microsoft \ Windows \ Curré ntversion \ explorer \ mountpoints2 \ H]
\ shell \ AutoRun \ command - H: \ launchu3.exe

[HKEY_CURRENT_USER \ Software \ Microsoft \ Windows \ CurrentVersion Curre \ Explorer \ mountpoints2 \ (1a4a90a1-32d4-11dc-aa3d-001bfc03310e)]
\ shell \ AutoRun \ command - H: \ launchu3.exe
.
Contenu de la "Tâches planifiées" dossier

2009-01-11 C: \ Windows \ Tasks \ Defrag Job # 00.job
- C: \ Program Files \ DiskTrix \ UltimateDefrag \ UDefrag.exe []

2009-03-26 C: \ Windows \ Tasks \ GoogleUpdateTaskUserS-1-5-21-3600620296-2450975610-132854369-1000.job
- C: \ users \ CHLOE \ AppData \ Local \ Google \ Update \ pdate.exe GoogleU [2009-03-17 22:06]

2009-03-30 C: \ Windows \ Tasks \ User_Feed_Synchronization-(5963E371-2796-42F4-9A54-042DA9F406BC). Emploi
- C: \ windows \ system32 \ msfeedssync.exe [2008-01-19 08:33]
.
.
Supplementary Scan ------- -------
.
uStart Page = hxxp: / / www.google.co.uk/
uInternet Settings, ProxyOverride = *. local
IE: E & xporter vers Microsoft Excel - c: \ progra ~ 1 \ MICROS ~ 2 \ Office10 \ EXCEL.EXE/3000
FF - profilePath - c: \ users \ CHLOE \ AppData \ Roaming \ Mozilla \ Firefox \ fichiers Pro \ ppnzryw9.default \
Prefs.js FF -: browser.search.defaulturl - hxxp: / / / search.conduit.com ResultsExt.aspx? Ctid = CT1178131 & SearchSource = 3 & q =
Prefs.js FF -: browser.search.selectedEngine - Recherche sur le Web
Prefs.js FF -: browser.startup.homepage - hxxp: / / www.google.co.uk/
FF - composante: c: \ program files \ AVG \ AVG8 \ Firefox \ components \ avgssff.dll
FF - composante: c: \ program files \ AVG \ AVG8 \ ToolbarFF \ components \ vmAVGConnector. Dll
FF - composante: c: \ program files \ Real \ RealPlayer \ browserrecord \ components \ npr pbrowserrecordplugin.dll
- FF composant: c: \ users \ CHLOE \ AppData \ Roaming \ Mozilla \ Firefox \ fichiers Pro \ ppnzryw9.default \ Extensions \ (463F6CA5-EE3C-4be1-B7E6-7FEE11953374) \ plateforme \ WINNT \ Components \ FoxyTunes. dll
FF - plugin: c: \ program files \ Mozilla Firefox \ plugins \ np-mswmp.dll
- FF plugin: c: \ users \ CHLOE \ AppData \ Local \ Google \ Update \ 1.2.141 .5 \ npGoogleOneClick7.dll
- FF plugin: d: \ Program Files \ Reader \ Browser \ nppdf32.dll

FIREFOX POLITIQUES ---- ----
User.js FF -: general.useragent.extra.zencast - Creative ZENcast v1.02.08); user_pref (general.useragent.extra.zencast, Creative ZENcast v2.00.07.

************************************************** ************************

catchme 0.3.1375 W2K/XP/Vista - rootkit / stealth malware detector par Gmer, http://www.gmer.net
Rootkit scan 2009-03-31 17:16:10
Windows 6.0.6001 Service Pack 1 NTFS

scanning processus cachés ...

"10ûÿét0ûÿ3ö9sHu [1166747253] 0x75636F44
"10ûÿét0ûÿ3ö9sHu [1166747253] 0x6F6D6D6F
scanning hidden autostart entries ...

de balayage des fichiers cachés ...

scan effectué avec succès
les fichiers cachés: 0

************************************************** ************************
.
--------------------- DLLs Loaded Sous Running Processes ---------------------

- - - - - - -> 'Lsass.exe' (704)
C: \ Program Files \ ASUS Security Center \ ASUS Security Protect Manager \ bin \ ASWLNPkg.dll
C: \ Program Files \ ASUS Security Center \ ASUS Security Protect Manager \ bin \ ItMsg.dll

- - - - - - -> 'Explorer.exe' (3304)
C: \ Program Files \ RocketDock \ RocketDock.dll
C: \ Program Files \ ASUS Security Center \ ASUS Security Protect Manager \ Bin \ SFSShell.dll
C: \ Program Files \ ASUS Security Center \ ASUS Security Protect Manager \ Bin \ ItMsg.dll
.
------------------------ Autres processus en cours ----------------------- --
.
c: \ windows \ System32 \ audiodg.exe
c: \ windows \ System32 \ ZoneLabs \ vsmon.exe
c: \ windows \ System32 \ wlanext.exe
c: \ program files \ ATK Hotkey \ ASLDRSrv.exe
c: \ program files \ ATKGFNEX \ GFNEXSrv.exe
C: \ Program Files \ Common Files \ Apple \ Mobile Device Support \ bin \ AppleMobileDeviceService.exe
c: \ program files \ Symantec \ LiveUpdate \ aluschedulersvc.exe
c: \ program files \ Bonjour \ mDNSResponder.exe
c: \ program files \ Intel \ Wireless \ Bin \ EvtEng.exe
c: \ progra ~ 1 \ AVG \ AVG8 \ avgrsx.exe
c: \ progra ~ 1 \ AVG \ AVG8 \ avgnsx.exe
c: \ program files \ Intel \ Intel Matrix Storage Manager \ IAANTmon.exe
c: \ windows \ System32 \ IFXTCS.exe
C: \ Program Files \ Common Files \ LightScribe \ LSSrvc.exe
c: \ windows \ System32 \ IfxPsdSv.exe
c: \ windows \ system32 \ PSIService.exe
c: \ program files \ Intel \ Wireless \ Bin \ RegSrvc.exe
C: \ Program Files \ ASUS \ NB Probe \ SPM \ spmgr.exe
c: \ program files \ AVG \ AVG8 \ avgcsrvx.exe
C: \ Program Files \ ASUS Security Center \ ASUS Security Protect Manager \ Bin \ asghost.exe
c: \ program files \ ATK Hotkey \ HControl.exe
c: \ program files \ ATKOSD2 \ atkosd2.exe
c: \ program files \ Wireless Console 2 \ wcourier.exe
c: \ program files \ ASUS \ Splendid \ ACMON.exe
c: \ program files \ P4G \ BatteryLife.exe
c: \ windows \ System32 \ ACEngSvr.exe
c: \ program files \ ATK Hotkey \ ATKOSD.EXE
c: \ windows \ System32 \ IfxUAGUI.exe
c: \ program files \ Infineon \ Security Platform Software \ PSDrt.exe
c: \ program files \ Infineon \ Security Platform Software \ SpTNA.exe
c: \ windows \ System32 \ WBEM \ WMIADAP.exe
c: \ windows \ System32 \ DLLHost.exe tombait
.
************************************************** ************************
.
Délai de traitement: 2009-03-31 17:23:29 - La machine a redémarré
ComboFix-quarantined-files.txt 2009-03-31 16:23:16
ComboFix2.txt 2009-03-30 21:16:26

Pre-Run: 39213060096 octets libres
Post-Run: 38632595456 octets libres

Courant = 1 Default = 1 Failed = 0 LastKnownGood = 41 = Définit 1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18, 19,20,21,22,23,24,25,26,27,28,29,30,31,32,33,34,35, 36,37,38,39,40,41
396 --- EOF --- 2009-03-29 15:30:34
__________________
Euro Championships pointe = Espagne & Torres <- Damn I devrait avoir placé un pari sur les

Make Poverty History

Justice pour les 96 <- S'il vous plaît jeter un coup d'oeil
  #10  
Old 31 mars 2009, 09:48
Groupe de donateurs
 
Default Vista Démarrage et arrêt très lentement, pas trop quoi faire

En ce qui concerne la suppression de Norton, je n'ai jamais installé Norton ici alors pourquoi est Symantec liste?
__________________
Euro Championships pointe = Espagne & Torres <- Damn I devrait avoir placé un pari sur les

Make Poverty History

Justice pour les 96 <- S'il vous plaît jeter un coup d'oeil
Reply

Register

Bookmarks

Similar Threads
Fil Thread Starter Forum Réponses Last Post
Carte Graphique Problème Mai arrêter à Vista de démarrer normalement. Jonmal General Hardware Chat 1 5 novembre 2009 11:21
XP s'exécute lentement, pas un logiciel malveillant ... mbonwick Systèmes d'exploitation Windows 3 24 août 2009 07:52
Dell Laptop - Problème de démarrage Windows - Permet de couper jazker Ordinateurs portables, téléphones mobiles et PDAs 4 25 Mar 2009 06:59
Pourquoi est-ce que McAfee scan si lentement? stevescholes Virus, Spyware et sécurité 3 29 déc 2008 15:48
Mon Vista gèle peu après le début. Jyan29 General Hardware Chat 2 30 Nov 2008 16:40
Thread Tools




Arabic Bulgarian Chinese (Simplified) Chinese (Traditional) Croatian Czech Danish Dutch English Finnish French German Greek Hebrew Hungarian Italian Japanese Korean Latvian Lithuanian Norwegian Polish Portuguese Romanian Russian Serbian Slovak Spanish Swedish Thai Turkish Ukrainian

Copyright © 2006 - 2009 Computer Juice.

Powered by vBulletin ® Copyright © 2000 - 2009 Jelsoft Enterprises Ltd SEO by vBSEO © 2009, Crawlability, Inc