|
Bibou Le Forum Portail sur la sécurité |
| | [Résolu] pc lent | |
| | Auteur | Message |
---|
fabye mégabibou
Nombre de messages : 352 Age : 62 Localisation : godarville Date d'inscription : 06/03/2008
| Sujet: [Résolu] pc lent Lun 14 Juin 2010 - 19:31 | |
| bonsoir,depuis quelques temps mon pc rame merci de m aider | |
| | | GrosBébé Moderateurs (trices)
Nombre de messages : 6878 Age : 43 Localisation : devant le pc Date d'inscription : 18/12/2007
| Sujet: Re: [Résolu] pc lent Lun 14 Juin 2010 - 19:56 | |
| Bonsoir Fabye Qu'est ce qui te fait dire que ça rame ? C'est sur le net ou c'est tout qui est lent ? Peut être que tu as beaucoup de processus qui tourne programmes qui se lancent au démarrage Clique sur le menu démarrer, choisis Exécuter et copie/colle ceci dans la petite fenêtre qui s'ouvre : regedit /e c:\file.txt hkey_local_machine\software\microsoft\windows\currentversion\runValide par entrée, puis retourne dans exécuter et copie/colle ceci. c:\file.txtValide par entrée. Un rapport s'ouvre, tu pourrais me copier/coller ce rapport svp. Supprime le rapport qui est ici C:\file.txt Bonne soirée
Dernière édition par GrosBébé le Lun 14 Juin 2010 - 22:32, édité 1 fois (Raison : corrige une bêtise) | |
| | | fabye mégabibou
Nombre de messages : 352 Age : 62 Localisation : godarville Date d'inscription : 06/03/2008
| Sujet: Re: [Résolu] pc lent Lun 14 Juin 2010 - 20:04 | |
| Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run] "avgnt"=""C:\\Program Files\\Avira\\AntiVir Desktop\\avgnt.exe" /min" "Family Tree Builder Update"="C:\\Program Files\\MyHeritage\\Bin\\FTBCheckUpdates.exe" "HP Software Update"=""C:\\Program Files\\HP\\HP Software Update\\HPWuSchd.exe"" "DXDllRegExe"="dxdllreg.exe" "HPpromo psc 1300 series"=""C:\\Program Files\\HP\\Digital Imaging\\Promotions\\HPpromo.exe" /N "psc 1300 series" -r" "SunJavaUpdateSched"=""C:\\Program Files\\Java\\jre6\\bin\\jusched.exe"" "Adobe Reader Speed Launcher"=""C:\\Program Files\\Adobe\\Reader 9.0\\Reader\\Reader_sl.exe"" "Adobe ARM"=""C:\\Program Files\\Fichiers communs\\Adobe\\ARM\\1.0\\AdobeARM.exe"" "UserFaultCheck"=hex(2):25,00,73,00,79,00,73,00,74,00,65,00,6d,00,72,00,6f,00,\ 6f,00,74,00,25,00,5c,00,73,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,\ 00,64,00,75,00,6d,00,70,00,72,00,65,00,70,00,20,00,30,00,20,00,2d,00,75,00,\ 00,00 "KernelFaultCheck"=hex(2):25,00,73,00,79,00,73,00,74,00,65,00,6d,00,72,00,6f,\ 00,6f,00,74,00,25,00,5c,00,73,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,\ 5c,00,64,00,75,00,6d,00,70,00,72,00,65,00,70,00,20,00,30,00,20,00,2d,00,6b,\ 00,00,00
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents] @=""
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\IMAIL] @="" "Installed"="1"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MAPI] @="" "Installed"="1" "NoChange"="1"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MSFS] @="" "Installed"="1"
merci de m aider, j espère que c est ça | |
| | | GrosBébé Moderateurs (trices)
Nombre de messages : 6878 Age : 43 Localisation : devant le pc Date d'inscription : 18/12/2007
| Sujet: Re: [Résolu] pc lent Lun 14 Juin 2010 - 21:21 | |
| Re Oui, c'est ça. - GrosBébé a écrit:
- Qu'est ce qui te fait dire que ça rame ? C'est sur le net ou c'est tout qui est lent ?
Le scan suivant me montrera plus de choses
- Clique ici pour télécharger OTL (de Old Timer) sur ton bureau
- Ferme toutes tes fenêtres, puis double clique sur OTL.exe pour le lancer.
- Clique sur le bouton Analyse en haut à gauche puis patiente quelques instants.
- A la fin du scan, deux rapports s'ouvriront (OTL.Txt et Extras.Txt). Copie/colle ici l'ensemble des rapports.
PS : Les rapports sont aussi enregistrés sur le bureau | |
| | | fabye mégabibou
Nombre de messages : 352 Age : 62 Localisation : godarville Date d'inscription : 06/03/2008
| Sujet: Re: [Résolu] pc lent Mar 15 Juin 2010 - 9:55 | |
| bonjour, il est lent pour tout, sur internet ou pour obtenir quelques chose sur l ordi
voici les rapports
OTL logfile created on: 15/06/2010 9:31:02 - Run 1 OTL by OldTimer - Version 3.2.6.0 Folder = C:\Documents and Settings\naveaux\Bureau Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18702) Locale: 0000080C | Country: Belgique | Language: FRB | Date Format: d/MM/yyyy 479,00 Mb Total Physical Memory | 212,00 Mb Available Physical Memory | 44,00% Memory free 882,00 Mb Paging File | 644,00 Mb Available in Paging File | 73,00% Paging File free Paging file location(s): C:\pagefile.sys 480 672 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 76,32 Gb Total Space | 47,23 Gb Free Space | 61,88% Space Free | Partition Type: NTFS D: Drive not present or media not loaded E: Drive not present or media not loaded F: Drive not present or media not loaded G: Drive not present or media not loaded H: Drive not present or media not loaded I: Drive not present or media not loaded Computer Name: NAVEAU-DJKVV60O Current User Name: naveaux Logged in as Administrator. Current Boot Mode: Normal Scan Mode: Current user Company Name Whitelist: Off Skip Microsoft Files: Off File Age = 30 Days Output = Standard ========== Processes (SafeList) ========== PRC - [2010/06/15 09:30:43 | 000,572,416 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\naveaux\Bureau\OTL.exe PRC - [2009/10/12 12:37:26 | 000,185,089 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe PRC - [2009/09/06 14:38:06 | 000,071,096 | ---- | M] () -- C:\Program Files\CDBurnerXP\NMSAccessU.exe PRC - [2009/05/13 16:47:40 | 000,108,289 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir Desktop\sched.exe PRC - [2009/03/02 13:08:11 | 000,209,153 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe PRC - [2008/04/13 19:34:04 | 001,037,824 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe PRC - [2003/10/09 13:17:48 | 000,126,976 | ---- | M] (hp) -- C:\Program Files\HP\Digital Imaging\Promotions\HPpromo.exe PRC - [2003/06/25 12:24:48 | 000,049,152 | ---- | M] (Hewlett-Packard) -- C:\Program Files\HP\HP Software Update\hpwuSchd.exe ========== Modules (SafeList) ========== MOD - [2010/06/15 09:30:43 | 000,572,416 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\naveaux\Bureau\OTL.exe MOD - [2008/04/13 19:32:04 | 000,110,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msscript.ocx ========== Win32 Services (SafeList) ========== SRV - [2009/10/12 12:37:26 | 000,185,089 | ---- | M] (Avira GmbH) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService) SRV - [2009/09/06 14:38:06 | 000,071,096 | ---- | M] () [Auto | Running] -- C:\Program Files\CDBurnerXP\NMSAccessU.exe -- (NMSAccessU) SRV - [2009/08/05 22:48:42 | 000,704,864 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Live\Family Safety\fsssvc.exe -- (fsssvc) SRV - [2009/05/13 16:47:40 | 000,108,289 | ---- | M] (Avira GmbH) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService) SRV - [2003/08/11 10:44:16 | 000,065,795 | ---- | M] (HP) [On_Demand | Stopped] -- C:\WINDOWS\system32\hpzipm12.exe -- (Pml Driver HPZ12) ========== Driver Services (SafeList) ========== DRV - [2009/11/12 14:48:56 | 000,007,168 | ---- | M] () [File_System | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\StarOpen.sys -- (StarOpen) DRV - [2009/11/05 15:31:07 | 000,043,488 | ---- | M] (Oak Technology Inc.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\AFS2K.SYS -- (AFS2K) DRV - [2009/10/17 11:55:12 | 000,203,776 | ---- | M] (VIA Technologies, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\vinyl97.sys -- (VIAudio) Vinyl AC'97 Audio Controller (WDM) DRV - [2009/08/05 22:48:42 | 000,054,752 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\fssfltr_tdi.sys -- (fssfltr) DRV - [2009/05/11 10:11:52 | 000,028,520 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\ssmdrv.sys -- (ssmdrv) DRV - [2009/03/30 10:32:47 | 000,096,104 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avipbb.sys -- (avipbb) DRV - [2009/02/13 12:28:39 | 000,022,360 | ---- | M] (Avira GmbH) [File_System | Boot | Running] -- C:\WINDOWS\SYSTEM32\DRIVERS\avgntmgr.sys -- (avgntmgr) DRV - [2009/02/13 12:17:49 | 000,045,416 | ---- | M] (Avira GmbH) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\avgntdd.sys -- (avgntdd) DRV - [2008/04/13 09:34:34 | 000,166,912 | ---- | M] (S3 Graphics, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\s3gnbm.sys -- (S3SavageNB) ========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://www.cherche.us IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultName = cherche.us IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultURL = http://google.cherche.us/Result.php?client=pub-0420647136319153&cof=GIMP%3A009900%3BT%3A000000%3BALC%3A551a8b%3BGFNT%3AB7B7B7%3BLC%3A2200cc%3BBGC%3AFFFFFF%3BVLC%3A551a8b%3BGALT%3A008B45%3BFORID%3A11%3BDIV%3A%23FFFFF0%3B&ie=ISO-8859-1&q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.be/ IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://be.msn.com/defaultf.aspx?lang=fr-be&ocid=iehp IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = fr-be IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 4A 3E 03 8A 41 4B CA 01 [binary data] IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page_bak = http://www.google.com IE - HKCU\..\URLSearchHook: {1C4AB6A5-595F-4e86-B15F-F93CCE2BBD48} - C:\Program Files\Family Toolbar\tbhelper.dll () IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 ========== FireFox ========== FF - prefs.js..browser.search.defaultenginename: "iMesh Web Search" FF - prefs.js..browser.search.order.1: "iMesh Web Search" FF - prefs.js..browser.search.selectedEngine: "iMesh Web Search" FF - prefs.js..browser.startup.homepage: "www.google.be" FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0 FF - prefs.js..extensions.enabledItems: {28D35620-51D9-11DE-9D13-2DB156D89593}:3.1 FF - prefs.js..keyword.URL: "http://search.imesh.com/webResults.html?src=ffb&q=" [2010/05/15 20:12:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\naveaux\Application Data\Mozilla\Extensions [2010/05/15 20:12:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\naveaux\Application Data\Mozilla\Extensions\mozswing@mozswing.org [2010/03/23 15:01:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\naveaux\Application Data\Mozilla\Firefox\Profiles\byfhtdry.default\extensions [2009/11/16 20:00:45 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\naveaux\Application Data\Mozilla\Firefox\Profiles\byfhtdry.default\extensions\{20a82645-c095-46ed-80e3-08825760534b} [2009/12/07 16:41:13 | 000,001,587 | ---- | M] () -- C:\Documents and Settings\naveaux\Application Data\Mozilla\Firefox\Profiles\byfhtdry.default\searchplugins\cherche.xml [2009/11/29 13:51:40 | 000,002,456 | ---- | M] () -- C:\Documents and Settings\naveaux\Application Data\Mozilla\Firefox\Profiles\byfhtdry.default\searchplugins\iMeshWebSearch.xml [2010/04/21 19:50:38 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions [2009/10/26 16:53:52 | 000,102,400 | ---- | M] (Zylom) -- C:\Program Files\Mozilla Firefox\plugins\npzylomgamesplayer.dll [2009/11/29 13:51:40 | 000,002,456 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\iMeshWebSearch.xml O1 HOSTS File: ([2003/04/24 14:00:00 | 000,000,790 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (MHTBPos00 Class) - {0C37B053-FD68-456a-82E1-D788EE342E6F} - C:\Program Files\Family Toolbar\tbcore3.dll () O2 - BHO: (Shareaza Web Download Hook) - {0EEDB912-C5FA-486F-8334-57288578C627} - C:\Program Files\Shareaza\RazaWebHook32.dll (Shareaza Development Team) O2 - BHO: (Adobe PDF Link Helper) - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) O2 - BHO: (no name) - {474597C5-AB09-49d6-A4D5-2E8D7341384E} - No CLSID value found. O2 - BHO: (Windows Live Family Safety Browser Helper Class) - {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - C:\Program Files\Windows Live\Family Safety\fssbho.dll (Microsoft Corporation) O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found. O2 - BHO: (Programme d'aide de l'Assistant de connexion Windows Live) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation) O3 - HKLM\..\Toolbar: (Family Toolbar) - {FD2FD708-1F6F-4B68-B141-C5778F0C19BB} - C:\Program Files\Family Toolbar\tbcore3.dll () O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - No CLSID value found. O3 - HKCU\..\Toolbar\WebBrowser: (Family Toolbar) - {FD2FD708-1F6F-4B68-B141-C5778F0C19BB} - C:\Program Files\Family Toolbar\tbcore3.dll () O4 - HKLM..\Run: [Adobe ARM] C:\Program Files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe (Adobe Systems Incorporated) O4 - HKLM..\Run: [avgnt] C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH) O4 - HKLM..\Run: [DXDllRegExe] File not found O4 - HKLM..\Run: [Family Tree Builder Update] C:\Program Files\MyHeritage\Bin\FTBCheckUpdates.exe (MyHeritage) O4 - HKLM..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd.exe (Hewlett-Packard) O4 - HKLM..\Run: [HPpromo psc 1300 series] C:\Program Files\HP\Digital Imaging\Promotions\HPpromo.exe (hp) O4 - HKLM..\Run: [KernelFaultCheck] File not found O4 - HKLM..\Run: [UserFaultCheck] File not found O4 - HKCU..\RunOnce: [Shockwave Updater] C:\WINDOWS\System32\Adobe\Shockwave 11\SwHelper_1151601.exe -Update -1151601 -Mozilla\4.0 (compatible; MSIE 8.0; Windows NT 5.1; Trident\4.0; File not found O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O8 - Extra context menu item: Download with &Shareaza - c:\program files\shareaza\razawebhook32.dll (Shareaza Development Team) O15 - HKCU\..Trusted Domains: chat-land.org ([]* in Trusted sites) O16 - DPF: {140E4DF8-9E14-4A34-9577-C77561ED7883} http://content.systemrequirementslab.com.s3.amazonaws.com/global/bin/srldetect_cyri_4.1.64.0.cab (SysInfo Class) O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab (Checkers Class) O16 - DPF: {233C1507-6A77-46A4-9443-F871F945D258} http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab (Shockwave ActiveX Control) O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} http://v5.windowsupdate.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1255345844106 (WUWebControl Class) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17) O16 - DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} http://game.zylom.com/activex/zylomgamesplayer.cab (Zylom Games Player) O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab (MessengerStatsClient Class) O16 - DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17) O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 212.68.193.110 212.68.193.196 O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\msdaipp.dll (Microsoft Corporation) O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\msdaipp.dll (Microsoft Corporation) O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\msdaipp.dll (Microsoft Corporation) O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\msdaipp.dll (Microsoft Corporation) O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\msdaipp.dll (Microsoft Corporation) O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\msdaipp.dll (Microsoft Corporation) O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\msdaipp.dll (Microsoft Corporation) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O24 - Desktop Components:0 (Ma page d'accueil) - About:Home O24 - Desktop WallPaper: C:\Documents and Settings\naveaux\Local Settings\Application Data\Microsoft\Wallpaper3.bmp O24 - Desktop BackupWallPaper: C:\Documents and Settings\naveaux\Local Settings\Application Data\Microsoft\Wallpaper3.bmp O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2009/10/11 11:22:14 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* ========== Files/Folders - Created Within 30 Days ========== [2010/06/15 09:30:36 | 000,572,416 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\naveaux\Bureau\OTL.exe [2010/06/14 14:07:34 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\naveaux\Recent [2010/06/11 18:09:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\naveaux\Application Data\GamesCafe [2010/06/11 18:06:21 | 000,000,000 | ---D | C] -- C:\Program Files\Sally's Studio [2010/06/10 05:33:20 | 000,743,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iedvtool.dll [2010/06/06 16:07:55 | 000,000,000 | ---D | C] -- C:\Program Files\Cooking Academy 2 - Cuisine du Monde [2010/05/27 16:35:44 | 000,000,000 | ---D | C] -- C:\Documents and Settings\naveaux\Application Data\TitanicMystery [2010/05/23 19:19:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\naveaux\Local Settings\Application Data\Oberon Games [2010/05/23 18:04:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\naveaux\Saved Games [2010/05/23 17:42:09 | 000,000,000 | ---D | C] -- C:\Program Files\bfgclient [2010/05/23 17:41:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\BigFishGamesCache [2010/05/22 19:58:26 | 006,800,257 | ---- | C] (Shareaza Development Team ) -- C:\Documents and Settings\naveaux\Mes documents\shareaza_shareaza_2.5.2.0_francais_11031.exe [2010/05/18 14:05:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\naveaux\Application Data\Oberon Games [2010/05/18 14:05:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Oberon Games [1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [1 C:\Documents and Settings\naveaux\*.tmp files -> C:\Documents and Settings\naveaux\*.tmp -> ] ========== Files - Modified Within 30 Days ========== [2010/06/15 09:30:43 | 000,572,416 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\naveaux\Bureau\OTL.exe [2010/06/15 09:28:31 | 000,012,504 | ---- | M] () -- C:\Documents and Settings\naveaux\Mes documents\heures fabienne.odt [2010/06/15 08:59:31 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT [2010/06/15 08:59:28 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2010/06/15 05:59:43 | 004,718,592 | ---- | M] () -- C:\Documents and Settings\naveaux\NTUSER.DAT [2010/06/15 05:59:43 | 000,000,184 | -HS- | M] () -- C:\Documents and Settings\naveaux\ntuser.ini [2010/06/14 21:41:19 | 004,279,448 | -H-- | M] () -- C:\Documents and Settings\naveaux\Local Settings\Application Data\IconCache.db [2010/06/13 20:13:09 | 000,060,416 | ---- | M] () -- C:\Documents and Settings\naveaux\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2010/06/12 20:57:29 | 000,002,422 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2010/06/11 18:07:19 | 000,001,620 | ---- | M] () -- C:\Documents and Settings\All Users\Bureau\Play Sally's Studio.lnk [2010/06/11 18:07:19 | 000,001,194 | ---- | M] () -- C:\Documents and Settings\All Users\Bureau\More Great Games.lnk [2010/06/10 18:22:23 | 000,000,620 | ---- | M] () -- C:\WINDOWS\MyHeritage.INI [2010/06/10 12:27:34 | 000,015,831 | ---- | M] () -- C:\Documents and Settings\naveaux\Bureau\Descendance Max Naveaux.odt [2010/06/10 12:27:26 | 000,016,359 | ---- | M] () -- C:\Documents and Settings\naveaux\Bureau\Descendance Vital Naveaux.odt [2010/06/10 10:55:54 | 000,164,320 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2010/06/10 09:01:51 | 000,510,656 | ---- | M] () -- C:\WINDOWS\System32\perfh00C.dat [2010/06/10 09:01:51 | 000,084,874 | ---- | M] () -- C:\WINDOWS\System32\perfc00C.dat [2010/06/10 09:01:50 | 001,077,908 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI [2010/06/10 09:01:50 | 000,441,438 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat [2010/06/10 09:01:50 | 000,071,374 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat [2010/06/08 19:35:00 | 000,000,492 | ---- | M] () -- C:\WINDOWS\tasks\Ad-Aware Update (Weekly).job [2010/06/06 16:09:10 | 000,001,824 | ---- | M] () -- C:\Documents and Settings\All Users\Bureau\Jouer à Cooking Academy 2 - Cuisine du Monde.lnk [2010/06/06 16:09:10 | 000,001,238 | ---- | M] () -- C:\Documents and Settings\All Users\Bureau\Encore plus de jeux.lnk [2010/06/05 19:54:13 | 003,398,022 | ---- | M] () -- C:\Documents and Settings\naveaux\Mes documents\Clavier_2002_1.0.exe [2010/06/04 20:38:49 | 000,001,041 | ---- | M] () -- C:\Documents and Settings\naveaux\Application Data\vso_ts_preview.xml [2010/05/30 12:35:15 | 000,218,112 | ---- | M] (Internet) -- C:\Documents and Settings\naveaux\binternet.exe [2010/05/23 17:42:12 | 000,001,578 | ---- | M] () -- C:\Documents and Settings\All Users\Bureau\Game Manager.lnk [2010/05/23 16:24:31 | 000,265,425 | ---- | M] () -- C:\Documents and Settings\naveaux\Mes documents\flo.odt [2010/05/22 20:00:12 | 000,000,744 | ---- | M] () -- C:\Documents and Settings\All Users\Bureau\Shareaza.lnk [2010/05/22 19:58:26 | 006,800,257 | ---- | M] (Shareaza Development Team ) -- C:\Documents and Settings\naveaux\Mes documents\shareaza_shareaza_2.5.2.0_francais_11031.exe [2010/05/20 13:59:56 | 000,015,663 | ---- | M] () -- C:\Documents and Settings\naveaux\Mes documents\cv quertemont f.odt [2010/05/20 13:59:34 | 000,048,966 | ---- | M] () -- C:\Documents and Settings\naveaux\Mes documents\cv quertemont f.pdf [2010/05/20 12:47:25 | 733,347,840 | ---- | M] () -- C:\Documents and Settings\naveaux\Mes documents\Alice.in.Wonderland.FRENCH.DVDRip.XviD-SURViVAL.avi [2010/05/17 09:31:05 | 000,015,155 | ---- | M] () -- C:\Documents and Settings\naveaux\Mes documents\stabilisation menu type.odt [1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [1 C:\Documents and Settings\naveaux\*.tmp files -> C:\Documents and Settings\naveaux\*.tmp -> ] ========== Files Created - No Company Name ========== [2010/06/11 18:07:19 | 000,001,620 | ---- | C] () -- C:\Documents and Settings\All Users\Bureau\Play Sally's Studio.lnk [2010/06/11 18:07:19 | 000,001,194 | ---- | C] () -- C:\Documents and Settings\All Users\Bureau\More Great Games.lnk [2010/06/10 12:27:34 | 000,015,831 | ---- | C] () -- C:\Documents and Settings\naveaux\Bureau\Descendance Max Naveaux.odt [2010/06/10 12:27:25 | 000,016,359 | ---- | C] () -- C:\Documents and Settings\naveaux\Bureau\Descendance Vital Naveaux.odt [2010/06/06 20:14:14 | 000,012,504 | ---- | C] () -- C:\Documents and Settings\naveaux\Mes documents\heures fabienne.odt [2010/06/06 16:09:10 | 000,001,824 | ---- | C] () -- C:\Documents and Settings\All Users\Bureau\Jouer à Cooking Academy 2 - Cuisine du Monde.lnk [2010/06/06 16:09:10 | 000,001,238 | ---- | C] () -- C:\Documents and Settings\All Users\Bureau\Encore plus de jeux.lnk [2010/06/05 19:53:48 | 003,398,022 | ---- | C] () -- C:\Documents and Settings\naveaux\Mes documents\Clavier_2002_1.0.exe [2010/05/23 17:42:12 | 000,001,578 | ---- | C] () -- C:\Documents and Settings\All Users\Bureau\Game Manager.lnk [2010/05/23 16:24:31 | 000,265,425 | ---- | C] () -- C:\Documents and Settings\naveaux\Mes documents\flo.odt [2010/05/22 20:00:12 | 000,000,744 | ---- | C] () -- C:\Documents and Settings\All Users\Bureau\Shareaza.lnk [2010/05/20 13:59:32 | 000,048,966 | ---- | C] () -- C:\Documents and Settings\naveaux\Mes documents\cv quertemont f.pdf [2010/05/20 12:38:42 | 733,347,840 | ---- | C] () -- C:\Documents and Settings\naveaux\Mes documents\Alice.in.Wonderland.FRENCH.DVDRip.XviD-SURViVAL.avi [2010/05/17 09:31:03 | 000,015,155 | ---- | C] () -- C:\Documents and Settings\naveaux\Mes documents\stabilisation menu type.odt [2010/02/13 18:57:31 | 000,000,000 | ---- | C] () -- C:\WINDOWS\BBCAuto.INI [2009/10/30 21:48:55 | 000,007,168 | ---- | C] () -- C:\WINDOWS\System32\drivers\StarOpen.sys [2009/10/19 11:09:58 | 000,000,620 | ---- | C] () -- C:\WINDOWS\MyHeritage.INI [2009/10/19 11:07:54 | 000,454,656 | ---- | C] () -- C:\WINDOWS\System32\PaintX.dll [2003/08/11 10:44:18 | 000,565,248 | ---- | C] () -- C:\WINDOWS\System32\hpotscl.dll ========== Alternate Data Streams ========== @Alternate Data Stream - 16 bytes -> C:\Documents and Settings\naveaux\Mes documents\Shareaza Downloads:Shareaza.GUID @Alternate Data Stream - 146 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:22741C1F @Alternate Data Stream - 144 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:C72A744C @Alternate Data Stream - 125 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:80E965A3 @Alternate Data Stream - 124 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:943E8182 @Alternate Data Stream - 124 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:090FB735 @Alternate Data Stream - 119 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:D9987109 @Alternate Data Stream - 118 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:EA701346 @Alternate Data Stream - 117 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:708BB0FA @Alternate Data Stream - 112 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:9857FAE3 @Alternate Data Stream - 110 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:6BD304B9 @Alternate Data Stream - 110 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:331B76C7 @Alternate Data Stream - 106 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:13AA281B < End of report >
OTL Extras logfile created on: 15/06/2010 9:31:02 - Run 1 OTL by OldTimer - Version 3.2.6.0 Folder = C:\Documents and Settings\naveaux\Bureau Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18702) Locale: 0000080C | Country: Belgique | Language: FRB | Date Format: d/MM/yyyy 479,00 Mb Total Physical Memory | 212,00 Mb Available Physical Memory | 44,00% Memory free 882,00 Mb Paging File | 644,00 Mb Available in Paging File | 73,00% Paging File free Paging file location(s): C:\pagefile.sys 480 672 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 76,32 Gb Total Space | 47,23 Gb Free Space | 61,88% Space Free | Partition Type: NTFS D: Drive not present or media not loaded E: Drive not present or media not loaded F: Drive not present or media not loaded G: Drive not present or media not loaded H: Drive not present or media not loaded I: Drive not present or media not loaded Computer Name: NAVEAU-DJKVV60O Current User Name: naveaux Logged in as Administrator. Current Boot Mode: Normal Scan Mode: Current user Company Name Whitelist: Off Skip Microsoft Files: Off File Age = 30 Days Output = Standard ========== Extra Registry (SafeList) ========== ========== File Associations ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] ========== Shell Spawning ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* htmlfile [edit] -- Reg Error: Key error. piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation) scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" () Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" () Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation) Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation) Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) ========== Security Center Settings ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "AntiVirusDisableNotify" = 0 "FirewallDisableNotify" = 0 "UpdatesDisableNotify" = 0 "AntiVirusOverride" = 0 "FirewallOverride" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List] "1900:UDP" = 1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007 "2869:TCP" = 2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008 ========== Authorized Applications List ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] "C:\Program Files\Windows Live\Messenger\wlcsdk.exe" = C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call -- (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] "C:\Program Files\Windows Live\Messenger\wlcsdk.exe" = C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call -- (Microsoft Corporation) "C:\Program Files\iMesh Applications\iMesh\iMesh.exe" = C:\Program Files\iMesh Applications\iMesh\iMesh.exe:*:Enabled:iMesh -- File not found "C:\Program Files\Shareaza\Shareaza.exe" = C:\Program Files\Shareaza\Shareaza.exe:*:Enabled:Shareaza -- (Shareaza Development Team) ========== HKEY_LOCAL_MACHINE Uninstall List ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 "{092eeeee-9fdd-4895-a568-0818c96beb6c}" = AiO_Scan "{0BD83598-C2EF-3343-847B-7D2E84599128}" = Microsoft .NET Framework 3.0 Service Pack 2 Language Pack - FRA "{0e4a0db5-801d-489e-85c0-6c3f96335d20}" = 1300Trb "{0FA44E79-CD7D-4E8D-A2EE-26FE05F509B6}" = OpenOffice.org 3.1 "{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Outil de téléchargement Windows Live "{20D4A895-748C-4D88-871C-FDB1695B0169}" = Platform "{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT "{261C86E1-7FAE-4F47-AE51-835F127AC0A1}" = HPpromotions "{26A24AE4-039D-4CA4-87B4-2F83216017FF}" = Java(TM) 6 Update 17 "{2E132061-C78A-48D4-A899-1D13B9D189FA}" = Memories Disc Creator 2.0 "{2F1FD032-67D1-4569-923F-47EAF132BF0F}" = DocProc "{350C940c-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP "{3B4E636E-9D65-4D67-BA61-189800823F52}" = Windows Live Communications Platform "{3CF78481-FB7B-4B51-99A2-D5E0CD0B3AAF}" = HPSystemDiagnostics "{3E31821C-7917-367E-938E-E65FC413EA31}" = Microsoft .NET Framework 3.5 Language Pack SP1 - fra "{46ABBC54-1872-4AA3-95E2-F2C063A63F31}" = Installation Windows Live "{4FB6F304-A91D-4919-98E5-D96E074EA9E5}" = SkinsHP1 "{54e854d5-d5d4-452d-9c75-b39f5625b5fb}" = Readme "{5ADF6293-D60F-4425-AFA7-CEB820DB872B}" = QuickProjects "{64F8B9AF-983F-48CE-ABBB-F62BEC02C5A0}" = System Requirements Lab "{6dc18d50-8cc3-4dea-a666-ea6f01907663}" = 1300 "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{72AD53CC-CCC0-3757-8480-9EE176866A7C}" = Microsoft .NET Framework 2.0 Service Pack 2 Language Pack - FRA "{745A92AF-53B4-41A7-91C3-9B026B1D5897}" = InstantShare "{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 "{770F1BEC-2871-4E70-B837-FB8525FFA3B1}" = Windows Live Messenger "{7E265513-8CDA-4631-B696-F40D983F3B07}_is1" = CDBurnerXP "{829698DE-9EAC-475E-9A05-B7BA807CA1EF}" = Director "{82C7B308-0BDD-49D8-8EA5-9CD3A3F9DF41}" = Windows Live Call "{8777AC6D-89F9-4793-8266-DE406F343E89}" = QFolder "{939227BD-19D8-4684-8A04-31AC9F6A564C}" = Scan "{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9A394342-4A68-4EBA-85A6-55B559F4E700}" = Microsoft .NET Framework 1.1 French Language Pack "{9F4EEA0C-7174-4BD3-89AF-7AB2F9F6AEDD}" = hpmdtab "{A1F66FC9-11EE-4F2F-98C9-16F8D1E69FB7}" = Segoe UI "{A2BCA9F1-566C-4805-97D1-7FDC93386723}" = Adobe AIR "{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2 "{A363B66C-1547-47bf-90F0-3834E70A841A}" = CreativeProjects "{AC76BA86-7AD7-1036-7B44-A93000000001}" = Adobe Reader 9.3.2 - Français "{b17cf867-a4e5-41ba-a646-50f237810eca}" = 1300_Help "{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2 "{c330461f-c4a9-4fc7-af5d-c158e0b56aa7}" = AiOSoftware "{C38BC5B7-62D3-4880-82DD-A4803FD81921}" = PhotoGallery "{c46485b1-6527-4937-9dc0-29bb5d5613fe}" = 1300Tour "{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1 "{CC0A24CB-87C9-4F1C-A1F2-F87D8D4DDCAF}" = HP Software Update "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1 "{CE4F8FFB-4063-4247-9F14-ECE61AFEFA25}" = TrayApp "{CFD1B282-555D-494d-8231-4175C2AF08C2}" = PrintScreen "{D1D8C9C4-89BE-4f37-9EC4-B80E3C239C41}" = Copy "{d40e4a88-ebc8-4d52-be3c-a4917a057ef0}" = Fax "{D545BB81-DEB0-49f7-BE26-197BC31AAF57}" = SkinsHP2 "{D5D81435-B8DE-4CAF-867F-7998F2B92CFC}" = Windows Live Contrôle parental "{DB6AB705-C9BD-40E3-8929-2EA57F36A4FF}_is1" = ConvertXtoDVD 4.0.3.311 "{DCE8CD14-FBF5-4464-B9A4-E18E473546C7}" = Assistant de connexion Windows Live "{E4ABB302-9D82-4D18-83D5-AD1DFE786AA8}" = Unload "{ec7d7a6a-31cb-4810-826f-74171bef44f1}" = AIOMinimal "{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}" = Microsoft Choice Guard "{F38FA38A-7E5A-4209-88ED-4DE21CD20EEF}" = HP PSC & OfficeJet 3.0 "{FBBF532A-47AC-457d-AC06-0D3163D8911E}" = WebReg "Adobe AIR" = Adobe AIR "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin "Adobe Shockwave Player" = Adobe Shockwave Player 11.5 "Avira AntiVir Desktop" = Avira AntiVir Personal - Free Antivirus "BFGC" = Big Fish Games: Game Manager "BFG-Cooking Academy 2 - Cuisine du Monde" = Cooking Academy 2: Cuisine du Monde "BFG-Sally's Studio" = Sally's Studio "CCleaner" = CCleaner (remove only) "Family Tree Builder" = MyHeritage Family Tree Builder "Foxit Creator" = Foxit Creator "Foxit Reader" = Foxit Reader "HP Photo & Imaging" = Photo et imagerie HP 3.1 "ie8" = Windows Internet Explorer 8 "InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}" = VIA Platform Device Manager "Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware "Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1 "Microsoft .NET Framework 3.5 Language Pack SP1 - fra" = Module linguistique Microsoft .NET Framework 3.5 SP1- fra "Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1 "Shareaza_is1" = Shareaza 2.5.2.0 "VLC media player" = VLC media player 1.0.2 "Windows Media Format Runtime" = Windows Media Format 11 runtime "Windows XP Service" = Windows XP Service Pack 3 "WinLiveSuite_Wave3" = Installation Windows Live "WinRAR archiver" = Logiciel d'archivage WinRAR "WMFDist11" = Windows Media Format 11 runtime "XPSEPSCLP" = XML Paper Specification Shared Components Language Pack 1.0 ========== HKEY_CURRENT_USER Uninstall List ========== [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Notification de cadeaux MSN" = Notification de cadeaux MSN "PhotoFiltre" = PhotoFiltre ========== Last 10 Event Log Errors ========== [ Application Events ] Error - 11/05/2010 4:54:40 | Computer Name = NAVEAU-DJKVV60O | Source = Application Hang | ID = 1002 Description = Application bloquée ConvertXtoDvd.exe, version 4.0.3.311, module bloqué hungapp, version 0.0.0.0, adresse de blocage 0x00000000. Error - 14/05/2010 11:41:09 | Computer Name = NAVEAU-DJKVV60O | Source = Application Hang | ID = 1002 Description = Application bloquée MyHeritage.exe, version 4.0.0.897, module bloqué hungapp, version 0.0.0.0, adresse de blocage 0x00000000. Error - 14/05/2010 11:41:10 | Computer Name = NAVEAU-DJKVV60O | Source = Application Hang | ID = 1002 Description = Application bloquée MyHeritage.exe, version 4.0.0.897, module bloqué hungapp, version 0.0.0.0, adresse de blocage 0x00000000. Error - 20/05/2010 5:51:09 | Computer Name = NAVEAU-DJKVV60O | Source = ESENT | ID = 490 Description = svchost (1008) Une tentative d'ouverture du fichier "C:\WINDOWS\system32\CatRoot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}\catdb" pour accès en lecture/écriture a échoué en indiquant l'erreur système 32 (0x00000020) : "Le processus ne peut pas accéder au fichier car ce fichier est utilisé par un autre processus. ". L'opération d'ouverture de fichier échouera en indiquant l'erreur -1032 (0xfffffbf8). Error - 26/05/2010 12:50:57 | Computer Name = NAVEAU-DJKVV60O | Source = Application Hang | ID = 1002 Description = Application bloquée explorer.exe, version 6.0.2900.5512, module bloqué hungapp, version 0.0.0.0, adresse de blocage 0x00000000. Error - 28/05/2010 12:56:45 | Computer Name = NAVEAU-DJKVV60O | Source = Application Hang | ID = 1002 Description = Application bloquée Shareaza.exe, version 2.5.2.0, module bloqué hungapp, version 0.0.0.0, adresse de blocage 0x00000000. Error - 4/06/2010 12:28:22 | Computer Name = NAVEAU-DJKVV60O | Source = Application Error | ID = 1000 Description = Application défaillante update.exe, version 9.0.0.52, module défaillant msvcr90.dll, version 9.0.30729.1, adresse de défaillance 0x000371e2. Error - 4/06/2010 13:41:04 | Computer Name = NAVEAU-DJKVV60O | Source = Application Error | ID = 1000 Description = Application défaillante convertxtodvd.exe, version 4.0.3.311, module défaillant kernel32.dll, version 5.1.2600.5781, adresse de défaillance 0x00012afb. Error - 10/06/2010 23:43:43 | Computer Name = NAVEAU-DJKVV60O | Source = Application Error | ID = 1004 Description = Application défaillante update.exe, version 9.0.0.52, module défaillant msvcr90.dll, version 9.0.30729.1, adresse de défaillance 0x000371e2. Error - 13/06/2010 7:48:17 | Computer Name = NAVEAU-DJKVV60O | Source = ESENT | ID = 490 Description = svchost (1048) Une tentative d'ouverture du fichier "C:\WINDOWS\system32\CatRoot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}\catdb" pour accès en lecture/écriture a échoué en indiquant l'erreur système 32 (0x00000020) : "Le processus ne peut pas accéder au fichier car ce fichier est utilisé par un autre processus. ". L'opération d'ouverture de fichier échouera en indiquant l'erreur -1032 (0xfffffbf8). [ System Events ] Error - 14/06/2010 6:23:03 | Computer Name = NAVEAU-DJKVV60O | Source = Dhcp | ID = 1002 Description = Le bail de l'adresse IP 78.129.74.33 pour la carte réseau dont l'adresse réseau est 000D873C7676 a été refusé par le serveur DHCP 0.0.0.0 (celui-ci a envoyé un message DHCPNACK). < End of report > | |
| | | GrosBébé Moderateurs (trices)
Nombre de messages : 6878 Age : 43 Localisation : devant le pc Date d'inscription : 18/12/2007
| Sujet: Re: [Résolu] pc lent Mar 15 Juin 2010 - 19:27 | |
| Bonjour Fabye Ok, et il est lent depuis longtemps ? Tu utilises iMesh Web Search ? Chatland.org, disons que ce n'est pas super fiable, la preuve en est le cadeau que tu y as gagné. Relance OTL
- Dans le cadre Personnalisation qui est en bas, colle le contenu du cadre ci dessous :
- Citation :
- :OTL
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://www.cherche.us IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultName = cherche.us IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultURL = http://google.cherche.us/Result.php?client=pub-0420647136319153&cof=GIMP%3A009900%3BT%3A000000%3BALC%3A551a8b%3BGFNT%3AB7B7B7%3BLC%3A2200cc%3BBGC%3AFFFFFF%3BVLC%3A551a8b%3BGALT%3A008B45%3BFORID%3A11%3BDIV%3A%23FFFFF0%3B&ie=ISO-8859-1&q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8 [2009/12/07 16:41:13 | 000,001,587 | ---- | M] () -- C:\Documents and Settings\naveaux\Application Data\Mozilla\Firefox\Profiles\byfhtdry.default\searchplugins\cherche.xml O2 - BHO: (no name) - {474597C5-AB09-49d6-A4D5-2E8D7341384E} - No CLSID value found. O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found. O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - No CLSID value found. O15 - HKCU\..Trusted Domains: chat-land.org ([]* in Trusted sites) [1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [1 C:\Documents and Settings\naveaux\*.tmp files -> C:\Documents and Settings\naveaux\*.tmp -> ] [2010/05/30 12:35:15 | 000,218,112 | ---- | M] (Internet) -- C:\Documents and Settings\naveaux\binternet.exe
:Services
:Reg
:Files
:Commands [purity] [emptytemp] Puis clique sur le bouton Correction en haut.
- Laisse OTL tourner, le pc va redémarrer.
- Au redémarrage, un nouveau rapport va s'ouvrir, copie/colle son contenu ici svp
ensuite ... Clique ici pour télécharger AD-Remover sur ton bureau. /!\ Déconnecte-toi et ferme toutes les applications en cours /!\- Double-clique sur Ad-R.exe sur ton Bureau.
Utilisateur de Vista/Seven : clique droit sur l'icône puis sélectionne "Exécuter en tant qu'administrateur"
- Au menu principal, choisis l'option "Scanner".
Patiente quelques instants le temps du scan.
Poste le rapport qui apparaît à la fin. (aussi sauvegardé sous C: ) Une aide en image iciA plus tard. | |
| | | fabye mégabibou
Nombre de messages : 352 Age : 62 Localisation : godarville Date d'inscription : 06/03/2008
| Sujet: Re: [Résolu] pc lent Mar 15 Juin 2010 - 20:23 | |
| non je n utilise pas ce programme je ne sais même pas ce que c est
All processes killed Error: Unable to interpret in the current context! Error: Unable to interpret in the current context! Error: Unable to interpret in the current context! Error: Unable to interpret in the current context! Error: Unable to interpret <[2009/12/07 16:41:13 | 000,001,587 | ---- | M] () -- C:\Documents and Settings\naveaux\Application Data\Mozilla\Firefox\Profiles\byfhtdry.default\searchplugins\cherche.xml> in the current context! Error: Unable to interpret in the current context! Error: Unable to interpret in the current context! Error: Unable to interpret in the current context! Error: Unable to interpret in the current context! Error: Unable to interpret <[1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]> in the current context! Error: Unable to interpret <[1 C:\Documents and Settings\naveaux\*.tmp files -> C:\Documents and Settings\naveaux\*.tmp -> ]> in the current context! Error: Unable to interpret <[2010/05/30 12:35:15 | 000,218,112 | ---- | M] (Internet) -- C:\Documents and Settings\naveaux\binternet.exe> in the current context! ========== SERVICES/DRIVERS ========== ========== REGISTRY ========== ========== FILES ========== ========== COMMANDS ========== [EMPTYTEMP] User: Administrateur ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes ->Flash cache emptied: 0 bytes User: All Users User: Default User ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes ->Flash cache emptied: 0 bytes User: LocalService ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 33170 bytes User: naveaux ->Temp folder emptied: 478786 bytes ->Temporary Internet Files folder emptied: 1344039 bytes ->Java cache emptied: 0 bytes ->FireFox cache emptied: 0 bytes ->Flash cache emptied: 0 bytes User: NetworkService ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes %systemdrive% .tmp files removed: 0 bytes %systemroot% .tmp files removed: 0 bytes %systemroot%\System32 .tmp files removed: 0 bytes %systemroot%\System32\dllcache .tmp files removed: 0 bytes %systemroot%\System32\drivers .tmp files removed: 0 bytes Windows Temp folder emptied: 0 bytes %systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 0 bytes %systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 0 bytes RecycleBin emptied: 0 bytes Total Files Cleaned = 2,00 mb OTL by OldTimer - Version 3.2.6.0 log created on 06152010_201700
Files\Folders moved on Reboot...
Registry entries deleted on Reboot... | |
| | | GrosBébé Moderateurs (trices)
Nombre de messages : 6878 Age : 43 Localisation : devant le pc Date d'inscription : 18/12/2007
| Sujet: Re: [Résolu] pc lent Mar 15 Juin 2010 - 22:35 | |
| Ok pour iMesh
Petite précision concernant le script OTL : dans ce que je t'ai demandé de copier/coller, il y avait 2 points en première ligne juste avant OTL, il faut les prendre aussi sinon le script OTL ne marche pas. Il faudrait que tu recommences svp en faisant bien attention à prendre les deux points.
Ensuite tu pourras enchainer sur AD Remover
Ces 2 étapes devraient peut être un peu améliorer la situation en supprimant certaines traces de programmes gênants.
Bonne soirée | |
| | | fabye mégabibou
Nombre de messages : 352 Age : 62 Localisation : godarville Date d'inscription : 06/03/2008
| Sujet: Re: [Résolu] pc lent Mer 16 Juin 2010 - 19:12 | |
| All processes killed ========== OTL ========== HKCU\SOFTWARE\Microsoft\Internet Explorer\Main\\Default_Secondary_Page_URL| /E : value set successfully! HKCU\SOFTWARE\Microsoft\Internet Explorer\Main\\SearchMigratedDefaultName| /E : value set successfully! HKCU\SOFTWARE\Microsoft\Internet Explorer\Main\\SearchMigratedDefaultURL| /E : value set successfully! File C:\Documents and Settings\naveaux\Application Data\Mozilla\Firefox\Profiles\byfhtdry.default\searchplugins\cherche.xml not found. Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{474597C5-AB09-49d6-A4D5-2E8D7341384E}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{474597C5-AB09-49d6-A4D5-2E8D7341384E}\ not found. Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5C255C8A-E604-49b4-9D64-90988571CECB}\ not found. Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{D4027C7F-154A-4066-A1AD-4243D8127440} not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\chat-land.org\ not found. File/Folder C:\WINDOWS\*.tmp not found. File/Folder C:\Documents and Settings\naveaux\*.tmp not found. File C:\Documents and Settings\naveaux\binternet.exe not found. ========== SERVICES/DRIVERS ========== ========== REGISTRY ========== ========== FILES ========== ========== COMMANDS ========== [EMPTYTEMP] User: Administrateur ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes ->Flash cache emptied: 0 bytes User: All Users User: Default User ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes ->Flash cache emptied: 0 bytes User: LocalService ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 33170 bytes User: naveaux ->Temp folder emptied: 300404 bytes ->Temporary Internet Files folder emptied: 67352438 bytes ->Java cache emptied: 0 bytes ->FireFox cache emptied: 0 bytes ->Flash cache emptied: 1690 bytes User: NetworkService ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes %systemdrive% .tmp files removed: 0 bytes %systemroot% .tmp files removed: 0 bytes %systemroot%\System32 .tmp files removed: 0 bytes %systemroot%\System32\dllcache .tmp files removed: 0 bytes %systemroot%\System32\drivers .tmp files removed: 0 bytes Windows Temp folder emptied: 0 bytes %systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 0 bytes %systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 0 bytes RecycleBin emptied: 32190 bytes Total Files Cleaned = 65,00 mb OTL by OldTimer - Version 3.2.6.0 log created on 06162010_190014
Files\Folders moved on Reboot...
Registry entries deleted on Reboot... | |
| | | fabye mégabibou
Nombre de messages : 352 Age : 62 Localisation : godarville Date d'inscription : 06/03/2008
| Sujet: Re: [Résolu] pc lent Mer 16 Juin 2010 - 19:18 | |
| e programme AD-Remover ne fait rien, j ai cliquer dessus il s ouvre j ai choisis scanner et là il ne fait rien je vais réessayer | |
| | | fabye mégabibou
Nombre de messages : 352 Age : 62 Localisation : godarville Date d'inscription : 06/03/2008
| Sujet: Re: [Résolu] pc lent Mer 16 Juin 2010 - 19:28 | |
| non il ne met pas en route | |
| | | GrosBébé Moderateurs (trices)
Nombre de messages : 6878 Age : 43 Localisation : devant le pc Date d'inscription : 18/12/2007
| Sujet: Re: [Résolu] pc lent Jeu 17 Juin 2010 - 23:25 | |
| Bonsoir Fabye
Supprime AD-Remover, puis retélécharge le s'il te plait pour voir si il passe.
Poste un nouveau rapport OTL s'il te plait (relance le puis clique sur Analyse) | |
| | | fabye mégabibou
Nombre de messages : 352 Age : 62 Localisation : godarville Date d'inscription : 06/03/2008
| Sujet: Re: [Résolu] pc lent Ven 18 Juin 2010 - 7:13 | |
| voilà le rapport pour otl pour l autre ad remover je l ai désinstaller et réinstaller il ne réagit pas il s ouvre j appuie sur scanner et rien ne se passe
OTL logfile created on: 18/06/2010 7:00:19 - Run 2 OTL by OldTimer - Version 3.2.6.0 Folder = C:\Documents and Settings\naveaux\Bureau Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18702) Locale: 0000080C | Country: Belgique | Language: FRB | Date Format: d/MM/yyyy 479,00 Mb Total Physical Memory | 217,00 Mb Available Physical Memory | 45,00% Memory free 882,00 Mb Paging File | 651,00 Mb Available in Paging File | 74,00% Paging File free Paging file location(s): C:\pagefile.sys 480 672 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 76,32 Gb Total Space | 46,53 Gb Free Space | 60,97% Space Free | Partition Type: NTFS D: Drive not present or media not loaded E: Drive not present or media not loaded F: Drive not present or media not loaded G: Drive not present or media not loaded H: Drive not present or media not loaded I: Drive not present or media not loaded Computer Name: NAVEAU-DJKVV60O Current User Name: naveaux Logged in as Administrator. Current Boot Mode: Normal Scan Mode: Current user Company Name Whitelist: Off Skip Microsoft Files: Off File Age = 30 Days Output = Standard ========== Processes (SafeList) ========== PRC - [2010/06/15 09:30:43 | 000,572,416 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\naveaux\Bureau\OTL.exe PRC - [2009/10/12 12:37:26 | 000,185,089 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe PRC - [2009/09/06 14:38:06 | 000,071,096 | ---- | M] () -- C:\Program Files\CDBurnerXP\NMSAccessU.exe PRC - [2009/05/13 16:47:40 | 000,108,289 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir Desktop\sched.exe PRC - [2009/03/02 13:08:11 | 000,209,153 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe PRC - [2008/04/13 19:34:04 | 001,037,824 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe PRC - [2003/10/09 13:17:48 | 000,126,976 | ---- | M] (hp) -- C:\Program Files\HP\Digital Imaging\Promotions\HPpromo.exe PRC - [2003/06/25 12:24:48 | 000,049,152 | ---- | M] (Hewlett-Packard) -- C:\Program Files\HP\HP Software Update\hpwuSchd.exe ========== Modules (SafeList) ========== MOD - [2010/06/15 09:30:43 | 000,572,416 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\naveaux\Bureau\OTL.exe MOD - [2008/04/13 19:32:04 | 000,110,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msscript.ocx ========== Win32 Services (SafeList) ========== SRV - [2009/10/12 12:37:26 | 000,185,089 | ---- | M] (Avira GmbH) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService) SRV - [2009/09/06 14:38:06 | 000,071,096 | ---- | M] () [Auto | Running] -- C:\Program Files\CDBurnerXP\NMSAccessU.exe -- (NMSAccessU) SRV - [2009/08/05 22:48:42 | 000,704,864 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Live\Family Safety\fsssvc.exe -- (fsssvc) SRV - [2009/05/13 16:47:40 | 000,108,289 | ---- | M] (Avira GmbH) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService) SRV - [2003/08/11 10:44:16 | 000,065,795 | ---- | M] (HP) [On_Demand | Stopped] -- C:\WINDOWS\system32\hpzipm12.exe -- (Pml Driver HPZ12) ========== Driver Services (SafeList) ========== DRV - [2009/11/12 14:48:56 | 000,007,168 | ---- | M] () [File_System | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\StarOpen.sys -- (StarOpen) DRV - [2009/11/05 15:31:07 | 000,043,488 | ---- | M] (Oak Technology Inc.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\AFS2K.SYS -- (AFS2K) DRV - [2009/10/17 11:55:12 | 000,203,776 | ---- | M] (VIA Technologies, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\vinyl97.sys -- (VIAudio) Vinyl AC'97 Audio Controller (WDM) DRV - [2009/08/05 22:48:42 | 000,054,752 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\fssfltr_tdi.sys -- (fssfltr) DRV - [2009/05/11 10:11:52 | 000,028,520 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\ssmdrv.sys -- (ssmdrv) DRV - [2009/03/30 10:32:47 | 000,096,104 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avipbb.sys -- (avipbb) DRV - [2009/02/13 12:28:39 | 000,022,360 | ---- | M] (Avira GmbH) [File_System | Boot | Running] -- C:\WINDOWS\SYSTEM32\DRIVERS\avgntmgr.sys -- (avgntmgr) DRV - [2009/02/13 12:17:49 | 000,045,416 | ---- | M] (Avira GmbH) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\avgntdd.sys -- (avgntdd) DRV - [2008/04/13 09:34:34 | 000,166,912 | ---- | M] (S3 Graphics, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\s3gnbm.sys -- (S3SavageNB) ========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultName = IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultURL = IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.be/ IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://be.msn.com/defaultf.aspx?lang=fr-be&ocid=iehp IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = fr-be IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 4A 3E 03 8A 41 4B CA 01 [binary data] IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page_bak = http://www.google.com IE - HKCU\..\URLSearchHook: {1C4AB6A5-595F-4e86-B15F-F93CCE2BBD48} - C:\Program Files\Family Toolbar\tbhelper.dll () IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 ========== FireFox ========== FF - prefs.js..browser.search.defaultenginename: "iMesh Web Search" FF - prefs.js..browser.search.order.1: "iMesh Web Search" FF - prefs.js..browser.search.selectedEngine: "iMesh Web Search" FF - prefs.js..browser.startup.homepage: "www.google.be" FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0 FF - prefs.js..extensions.enabledItems: {28D35620-51D9-11DE-9D13-2DB156D89593}:3.1 FF - prefs.js..keyword.URL: "http://search.imesh.com/webResults.html?src=ffb&q=" [2010/05/15 20:12:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\naveaux\Application Data\Mozilla\Extensions [2010/05/15 20:12:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\naveaux\Application Data\Mozilla\Extensions\mozswing@mozswing.org [2010/03/23 15:01:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\naveaux\Application Data\Mozilla\Firefox\Profiles\byfhtdry.default\extensions [2009/11/16 20:00:45 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\naveaux\Application Data\Mozilla\Firefox\Profiles\byfhtdry.default\extensions\{20a82645-c095-46ed-80e3-08825760534b} [2009/11/29 13:51:40 | 000,002,456 | ---- | M] () -- C:\Documents and Settings\naveaux\Application Data\Mozilla\Firefox\Profiles\byfhtdry.default\searchplugins\iMeshWebSearch.xml [2010/04/21 19:50:38 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions [2009/10/26 16:53:52 | 000,102,400 | ---- | M] (Zylom) -- C:\Program Files\Mozilla Firefox\plugins\npzylomgamesplayer.dll [2009/11/29 13:51:40 | 000,002,456 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\iMeshWebSearch.xml O1 HOSTS File: ([2003/04/24 14:00:00 | 000,000,790 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (MHTBPos00 Class) - {0C37B053-FD68-456a-82E1-D788EE342E6F} - C:\Program Files\Family Toolbar\tbcore3.dll () O2 - BHO: (Adobe PDF Link Helper) - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) O2 - BHO: (Windows Live Family Safety Browser Helper Class) - {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - C:\Program Files\Windows Live\Family Safety\fssbho.dll (Microsoft Corporation) O2 - BHO: (Programme d'aide de l'Assistant de connexion Windows Live) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation) O3 - HKLM\..\Toolbar: (Family Toolbar) - {FD2FD708-1F6F-4B68-B141-C5778F0C19BB} - C:\Program Files\Family Toolbar\tbcore3.dll () O3 - HKCU\..\Toolbar\WebBrowser: (Family Toolbar) - {FD2FD708-1F6F-4B68-B141-C5778F0C19BB} - C:\Program Files\Family Toolbar\tbcore3.dll () O4 - HKLM..\Run: [Adobe ARM] C:\Program Files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe (Adobe Systems Incorporated) O4 - HKLM..\Run: [avgnt] C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH) O4 - HKLM..\Run: [DXDllRegExe] File not found O4 - HKLM..\Run: [Family Tree Builder Update] C:\Program Files\MyHeritage\Bin\FTBCheckUpdates.exe (MyHeritage) O4 - HKLM..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd.exe (Hewlett-Packard) O4 - HKLM..\Run: [HPpromo psc 1300 series] C:\Program Files\HP\Digital Imaging\Promotions\HPpromo.exe (hp) O4 - HKLM..\Run: [UserFaultCheck] File not found O4 - HKCU..\RunOnce: [Shockwave Updater] C:\WINDOWS\System32\Adobe\Shockwave 11\SwHelper_1151601.exe -Update -1151601 -Mozilla\4.0 (compatible; MSIE 8.0; Windows NT 5.1; Trident\4.0; File not found O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O16 - DPF: {140E4DF8-9E14-4A34-9577-C77561ED7883} http://content.systemrequirementslab.com.s3.amazonaws.com/global/bin/srldetect_cyri_4.1.64.0.cab (SysInfo Class) O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab (Checkers Class) O16 - DPF: {233C1507-6A77-46A4-9443-F871F945D258} http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab (Shockwave ActiveX Control) O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} http://v5.windowsupdate.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1255345844106 (WUWebControl Class) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17) O16 - DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} http://game.zylom.com/activex/zylomgamesplayer.cab (Zylom Games Player) O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab (MessengerStatsClient Class) O16 - DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17) O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 212.68.193.110 212.68.193.196 O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\msdaipp.dll (Microsoft Corporation) O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\msdaipp.dll (Microsoft Corporation) O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\msdaipp.dll (Microsoft Corporation) O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\msdaipp.dll (Microsoft Corporation) O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\msdaipp.dll (Microsoft Corporation) O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\msdaipp.dll (Microsoft Corporation) O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\msdaipp.dll (Microsoft Corporation) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O24 - Desktop Components:0 (Ma page d'accueil) - About:Home O24 - Desktop WallPaper: C:\Documents and Settings\naveaux\Local Settings\Application Data\Microsoft\Wallpaper3.bmp O24 - Desktop BackupWallPaper: C:\Documents and Settings\naveaux\Local Settings\Application Data\Microsoft\Wallpaper3.bmp O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2009/10/11 11:22:14 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* ========== Files/Folders - Created Within 30 Days ========== [2010/06/17 19:31:49 | 000,000,000 | ---D | C] -- C:\Program Files\Ad-Remover [2010/06/17 19:30:29 | 001,348,754 | ---- | C] (C_XX) -- C:\Documents and Settings\naveaux\Mes documents\AD-R.exe [2010/06/17 19:27:09 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\naveaux\Recent [2010/06/15 19:33:17 | 000,000,000 | ---D | C] -- C:\_OTL [2010/06/15 09:30:36 | 000,572,416 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\naveaux\Bureau\OTL.exe [2010/06/11 18:09:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\naveaux\Application Data\GamesCafe [2010/06/11 18:06:21 | 000,000,000 | ---D | C] -- C:\Program Files\Sally's Studio [2010/06/10 05:33:20 | 000,743,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iedvtool.dll [2010/06/06 16:07:55 | 000,000,000 | ---D | C] -- C:\Program Files\Cooking Academy 2 - Cuisine du Monde [2010/05/27 16:35:44 | 000,000,000 | ---D | C] -- C:\Documents and Settings\naveaux\Application Data\TitanicMystery [2010/05/23 19:19:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\naveaux\Local Settings\Application Data\Oberon Games [2010/05/23 18:04:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\naveaux\Saved Games [2010/05/23 17:42:09 | 000,000,000 | ---D | C] -- C:\Program Files\bfgclient [2010/05/23 17:41:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\BigFishGamesCache [2010/05/22 19:58:26 | 006,800,257 | ---- | C] (Shareaza Development Team ) -- C:\Documents and Settings\naveaux\Mes documents\shareaza_shareaza_2.5.2.0_francais_11031.exe ========== Files - Modified Within 30 Days ========== [2010/06/18 06:44:06 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT [2010/06/18 06:44:04 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2010/06/18 06:00:25 | 004,718,592 | ---- | M] () -- C:\Documents and Settings\naveaux\NTUSER.DAT [2010/06/18 06:00:25 | 000,000,184 | -HS- | M] () -- C:\Documents and Settings\naveaux\ntuser.ini [2010/06/17 19:54:16 | 004,810,180 | -H-- | M] () -- C:\Documents and Settings\naveaux\Local Settings\Application Data\IconCache.db [2010/06/17 19:31:50 | 000,001,554 | ---- | M] () -- C:\Documents and Settings\naveaux\Bureau\AD-R.lnk [2010/06/17 19:30:32 | 001,348,754 | ---- | M] (C_XX) -- C:\Documents and Settings\naveaux\Mes documents\AD-R.exe [2010/06/16 14:46:36 | 000,025,088 | ---- | M] () -- C:\Documents and Settings\naveaux\Bureau\Descendance Max Naveaux.doc [2010/06/16 14:46:14 | 000,030,720 | ---- | M] () -- C:\Documents and Settings\naveaux\Bureau\Descendance Vital Naveaux.doc [2010/06/16 14:40:39 | 000,000,620 | ---- | M] () -- C:\WINDOWS\MyHeritage.INI [2010/06/15 11:46:04 | 000,011,830 | ---- | M] () -- C:\Documents and Settings\naveaux\Mes documents\boulot fabienne.odt [2010/06/15 09:30:43 | 000,572,416 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\naveaux\Bureau\OTL.exe [2010/06/15 09:28:31 | 000,012,504 | ---- | M] () -- C:\Documents and Settings\naveaux\Mes documents\heures fabienne.odt [2010/06/13 20:13:09 | 000,060,416 | ---- | M] () -- C:\Documents and Settings\naveaux\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2010/06/12 20:57:29 | 000,002,422 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2010/06/11 18:07:19 | 000,001,620 | ---- | M] () -- C:\Documents and Settings\All Users\Bureau\Play Sally's Studio.lnk [2010/06/11 18:07:19 | 000,001,194 | ---- | M] () -- C:\Documents and Settings\All Users\Bureau\More Great Games.lnk [2010/06/10 10:55:54 | 000,164,320 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2010/06/10 09:01:51 | 000,510,656 | ---- | M] () -- C:\WINDOWS\System32\perfh00C.dat [2010/06/10 09:01:51 | 000,084,874 | ---- | M] () -- C:\WINDOWS\System32\perfc00C.dat [2010/06/10 09:01:50 | 001,077,908 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI [2010/06/10 09:01:50 | 000,441,438 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat [2010/06/10 09:01:50 | 000,071,374 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat [2010/06/08 19:35:00 | 000,000,492 | ---- | M] () -- C:\WINDOWS\tasks\Ad-Aware Update (Weekly).job [2010/06/06 16:09:10 | 000,001,824 | ---- | M] () -- C:\Documents and Settings\All Users\Bureau\Jouer à Cooking Academy 2 - Cuisine du Monde.lnk [2010/06/06 16:09:10 | 000,001,238 | ---- | M] () -- C:\Documents and Settings\All Users\Bureau\Encore plus de jeux.lnk [2010/06/05 19:54:13 | 003,398,022 | ---- | M] () -- C:\Documents and Settings\naveaux\Mes documents\Clavier_2002_1.0.exe [2010/06/04 20:38:49 | 000,001,041 | ---- | M] () -- C:\Documents and Settings\naveaux\Application Data\vso_ts_preview.xml [2010/05/23 17:42:12 | 000,001,578 | ---- | M] () -- C:\Documents and Settings\All Users\Bureau\Game Manager.lnk [2010/05/23 16:24:31 | 000,265,425 | ---- | M] () -- C:\Documents and Settings\naveaux\Mes documents\flo.odt [2010/05/22 19:58:26 | 006,800,257 | ---- | M] (Shareaza Development Team ) -- C:\Documents and Settings\naveaux\Mes documents\shareaza_shareaza_2.5.2.0_francais_11031.exe [2010/05/20 13:59:56 | 000,015,663 | ---- | M] () -- C:\Documents and Settings\naveaux\Mes documents\cv quertemont f.odt [2010/05/20 13:59:34 | 000,048,966 | ---- | M] () -- C:\Documents and Settings\naveaux\Mes documents\cv quertemont f.pdf [2010/05/20 12:47:25 | 733,347,840 | ---- | M] () -- C:\Documents and Settings\naveaux\Mes documents\Alice.in.Wonderland.FRENCH.DVDRip.XviD-SURViVAL.avi ========== Files Created - No Company Name ========== [2010/06/17 19:31:50 | 000,001,554 | ---- | C] () -- C:\Documents and Settings\naveaux\Bureau\AD-R.lnk [2010/06/16 14:46:34 | 000,025,088 | ---- | C] () -- C:\Documents and Settings\naveaux\Bureau\Descendance Max Naveaux.doc [2010/06/16 14:46:14 | 000,030,720 | ---- | C] () -- C:\Documents and Settings\naveaux\Bureau\Descendance Vital Naveaux.doc [2010/06/15 11:46:01 | 000,011,830 | ---- | C] () -- C:\Documents and Settings\naveaux\Mes documents\boulot fabienne.odt [2010/06/11 18:07:19 | 000,001,620 | ---- | C] () -- C:\Documents and Settings\All Users\Bureau\Play Sally's Studio.lnk [2010/06/11 18:07:19 | 000,001,194 | ---- | C] () -- C:\Documents and Settings\All Users\Bureau\More Great Games.lnk [2010/06/06 20:14:14 | 000,012,504 | ---- | C] () -- C:\Documents and Settings\naveaux\Mes documents\heures fabienne.odt [2010/06/06 16:09:10 | 000,001,824 | ---- | C] () -- C:\Documents and Settings\All Users\Bureau\Jouer à Cooking Academy 2 - Cuisine du Monde.lnk [2010/06/06 16:09:10 | 000,001,238 | ---- | C] () -- C:\Documents and Settings\All Users\Bureau\Encore plus de jeux.lnk [2010/06/05 19:53:48 | 003,398,022 | ---- | C] () -- C:\Documents and Settings\naveaux\Mes documents\Clavier_2002_1.0.exe [2010/05/23 17:42:12 | 000,001,578 | ---- | C] () -- C:\Documents and Settings\All Users\Bureau\Game Manager.lnk [2010/05/23 16:24:31 | 000,265,425 | ---- | C] () -- C:\Documents and Settings\naveaux\Mes documents\flo.odt [2010/05/20 13:59:32 | 000,048,966 | ---- | C] () -- C:\Documents and Settings\naveaux\Mes documents\cv quertemont f.pdf [2010/05/20 12:38:42 | 733,347,840 | ---- | C] () -- C:\Documents and Settings\naveaux\Mes documents\Alice.in.Wonderland.FRENCH.DVDRip.XviD-SURViVAL.avi [2010/02/13 18:57:31 | 000,000,000 | ---- | C] () -- C:\WINDOWS\BBCAuto.INI [2009/10/30 21:48:55 | 000,007,168 | ---- | C] () -- C:\WINDOWS\System32\drivers\StarOpen.sys [2009/10/19 11:09:58 | 000,000,620 | ---- | C] () -- C:\WINDOWS\MyHeritage.INI [2009/10/19 11:07:54 | 000,454,656 | ---- | C] () -- C:\WINDOWS\System32\PaintX.dll [2003/08/11 10:44:18 | 000,565,248 | ---- | C] () -- C:\WINDOWS\System32\hpotscl.dll ========== Alternate Data Streams ========== @Alternate Data Stream - 16 bytes -> C:\Documents and Settings\naveaux\Mes documents\Shareaza Downloads:Shareaza.GUID @Alternate Data Stream - 146 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:22741C1F @Alternate Data Stream - 144 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:C72A744C @Alternate Data Stream - 125 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:80E965A3 @Alternate Data Stream - 124 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:943E8182 @Alternate Data Stream - 124 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:090FB735 @Alternate Data Stream - 119 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:D9987109 @Alternate Data Stream - 118 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:EA701346 @Alternate Data Stream - 117 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:708BB0FA @Alternate Data Stream - 112 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:9857FAE3 @Alternate Data Stream - 110 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:6BD304B9 @Alternate Data Stream - 110 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:331B76C7 @Alternate Data Stream - 106 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:13AA281B < End of report > | |
| | | Laddy Admin
Nombre de messages : 7927 Age : 46 Localisation : suisse Date d'inscription : 14/03/2008
| Sujet: Re: [Résolu] pc lent Ven 18 Juin 2010 - 7:35 | |
| - Citation :
- voilà le rapport pour otl pour l autre ad remover je l ai désinstaller et réinstaller il ne réagit pas il s ouvre j appuie sur scanner et rien ne se passe
Coucou juste de passage, tu as bien désactiver tes protections : antivirus, antimalware avant d'executer ad-remover ? tu as coupé tous les applications avant d'executer ad-remover ? | |
| | | fabye mégabibou
Nombre de messages : 352 Age : 62 Localisation : godarville Date d'inscription : 06/03/2008
| Sujet: Re: [Résolu] pc lent Ven 18 Juin 2010 - 18:29 | |
| bonjour, je l ai retelecharger et fermé toutes les fenêtres, désactiver l antivirus et j ai attendu mais rien ne se passe il y a le sablier mais c est tout, j ai attendu un quart d heure et c etait toujours à o pourcent | |
| | | GrosBébé Moderateurs (trices)
Nombre de messages : 6878 Age : 43 Localisation : devant le pc Date d'inscription : 18/12/2007
| Sujet: Re: [Résolu] pc lent Ven 18 Juin 2010 - 22:17 | |
| Bonsoir Embêtant, on va faire autrement pour supprimer iMesh Relance OTL
- Dans le cadre Personnalisation qui est en bas, colle le contenu du cadre ci dessous :
- Citation :
- :OTL
FF - prefs.js..browser.search.defaultenginename: "iMesh Web Search" FF - prefs.js..browser.search.order.1: "iMesh Web Search" FF - prefs.js..browser.search.selectedEngine: "iMesh Web Search" FF - prefs.js..extensions.enabledItems: {28D35620-51D9-11DE-9D13-2DB156D89593}:3.1 FF - prefs.js..keyword.URL: "http://search.imesh.com/webResults.html?src=ffb&q=" [2009/11/29 13:51:40 | 000,002,456 | ---- | M] () -- C:\Documents and Settings\naveaux\Application Data\Mozilla\Firefox\Profiles\byfhtdry.default\searchplugins\iMeshWebSearch.xml [2009/11/29 13:51:40 | 000,002,456 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\iMeshWebSearch.xml
:Reg [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] "C:\Program Files\iMesh Applications\iMesh\iMesh.exe"=-
:Files C:\Program Files\iMesh Applications
:Commands [emptytemp] Puis clique sur le bouton Correction en haut.
- Laisse OTL tourner, le pc va redémarrer.
- Au redémarrage, un nouveau rapport va s'ouvrir, copie/colle son contenu ici svp
Clique ici pour télécharger SystemLook ( de jpshortstuff) sur ton bureau (autre lien) - Double clique sur SystemLook pour le lancer
- Copie le texte qui se trouve dans l'encadré ci-dessous et colle le dans la fenêtre de texte de SystemLook.
- Citation :
- :folderfind
imesh* :regfind imesh - Clique sur le bouton Look pour lancer le scan
- A la fin, poste le rapport qui apparaitra dans le bloc note (le rapport se trouve aussi ici sur ton bureau sous le nom SystemLook.txt
Note: Le scan peut être plus ou moins long. Bonne soirée | |
| | | fabye mégabibou
Nombre de messages : 352 Age : 62 Localisation : godarville Date d'inscription : 06/03/2008
| Sujet: Re: [Résolu] pc lent Dim 20 Juin 2010 - 10:49 | |
| bonjour voici otl
All processes killed ========== OTL ========== Prefs.js: "iMesh Web Search" removed from browser.search.defaultenginename Prefs.js: "iMesh Web Search" removed from browser.search.order.1 Prefs.js: "iMesh Web Search" removed from browser.search.selectedEngine Prefs.js: {28D35620-51D9-11DE-9D13-2DB156D89593}:3.1 removed from extensions.enabledItems Prefs.js: "http://search.imesh.com/webResults.html?src=ffb&q=" removed from keyword.URL C:\Documents and Settings\naveaux\Application Data\Mozilla\Firefox\Profiles\byfhtdry.default\searchplugins\iMeshWebSearch.xml moved successfully. C:\Program Files\Mozilla Firefox\searchplugins\iMeshWebSearch.xml moved successfully. ========== REGISTRY ========== Registry value HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\\C:\Program Files\iMesh Applications\iMesh\iMesh.exe deleted successfully. ========== FILES ========== C:\Program Files\iMesh Applications folder moved successfully. ========== COMMANDS ========== [EMPTYTEMP] User: Administrateur ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes ->Flash cache emptied: 0 bytes User: All Users User: Default User ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes ->Flash cache emptied: 0 bytes User: LocalService ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 33170 bytes User: naveaux ->Temp folder emptied: 2960678 bytes ->Temporary Internet Files folder emptied: 67374160 bytes ->Java cache emptied: 10680337 bytes ->FireFox cache emptied: 0 bytes ->Flash cache emptied: 3464 bytes User: NetworkService ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 33170 bytes %systemdrive% .tmp files removed: 0 bytes %systemroot% .tmp files removed: 0 bytes %systemroot%\System32 .tmp files removed: 0 bytes %systemroot%\System32\dllcache .tmp files removed: 0 bytes %systemroot%\System32\drivers .tmp files removed: 0 bytes Windows Temp folder emptied: 0 bytes %systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 0 bytes %systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 0 bytes RecycleBin emptied: 0 bytes Total Files Cleaned = 77,00 mb OTL by OldTimer - Version 3.2.6.0 log created on 06202010_103955
Files\Folders moved on Reboot...
Registry entries deleted on Reboot... | |
| | | fabye mégabibou
Nombre de messages : 352 Age : 62 Localisation : godarville Date d'inscription : 06/03/2008
| Sujet: Re: [Résolu] pc lent Dim 20 Juin 2010 - 10:55 | |
| voilà l autre rapport
SystemLook v1.0 by jpshortstuff (11.01.10) Log created at 10:50 on 20/06/2010 by naveaux (Administrator - Elevation successful)
========== folderfind ==========
Searching for "imesh*" C:\_OTL\MovedFiles\06202010_103955\C_Program Files\iMesh Applications d----- [18:15 05/01/2010]
========== regfind ==========
Searching for "imesh" [HKEY_CURRENT_USER\Software\iMesh] [HKEY_CURRENT_USER\Software\iMesh\Inst] "Last"="C:\DOCUME~1\naveaux\LOCALS~1\Temp\iMeshInstaller\nsc2F.tmp.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\iMeshIEHelper.UrlHelper] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\iMeshIEHelper.UrlHelper\CurVer] @="iMeshIEHelper.UrlHelper.1" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\iMeshIEHelper.UrlHelper.1] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{96F7FABC-5789-EFA4-B6ED-1272F4C1D27B}\1.0\0\win32] @="C:\Program Files\iMesh Applications\iMesh\WMHelper.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{96F7FABC-5789-EFA4-B6ED-1272F4C1D27B}\1.0\HELPDIR] @="C:\Program Files\iMesh Applications\iMesh" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{A147AA03-820F-4A0F-9F34-D6CB4004A2F9}\1.0] @="iMeshIEHelper 1.0 Type Library" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{A147AA03-820F-4A0F-9F34-D6CB4004A2F9}\1.0\0\win32] @="C:\Program Files\iMesh Applications\MediaBar\DataMngr\IEBHO.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{A147AA03-820F-4A0F-9F34-D6CB4004A2F9}\1.0\HELPDIR] @="C:\Program Files\iMesh Applications\MediaBar\DataMngr" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMHelperiMesh.WMHelper] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMHelperiMesh.WMHelper\CurVer] @="WMHelperiMesh.WMHelper.1" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMHelperiMesh.WMHelper.1] [HKEY_USERS\S-1-5-21-73586283-1972579041-725345543-1004\Software\iMesh] [HKEY_USERS\S-1-5-21-73586283-1972579041-725345543-1004\Software\iMesh\Inst] "Last"="C:\DOCUME~1\naveaux\LOCALS~1\Temp\iMeshInstaller\nsc2F.tmp.exe"
-=End Of File=- | |
| | | GrosBébé Moderateurs (trices)
Nombre de messages : 6878 Age : 43 Localisation : devant le pc Date d'inscription : 18/12/2007
| Sujet: Re: [Résolu] pc lent Dim 20 Juin 2010 - 13:31 | |
| Bonjour Fabye Des nouvelles du pc, c'est mieux ? c'est pareil ? ... c'est pire ? Relance OTL
- Dans le cadre Personnalisation qui est en bas, colle le contenu du cadre ci dessous :
- Citation :
- :Reg
[-HKEY_CURRENT_USER\Software\iMesh] [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\iMeshIEHelper.UrlHelper] [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\iMeshIEHelper.UrlHelper.1] [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{96F7FABC-5789-EFA4-B6ED-1272F4C1D27B}] [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{A147AA03-820F-4A0F-9F34-D6CB4004A2F9}] [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMHelperiMesh.WMHelper] [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMHelperiMesh.WMHelper.1] [-HKEY_USERS\S-1-5-21-73586283-1972579041-725345543-1004\Software\iMesh]
:Files
:Commands [emptytemp] Puis clique sur le bouton Correction en haut.
- Laisse OTL tourner, le pc va redémarrer.
- Au redémarrage, un nouveau rapport va s'ouvrir, copie/colle son contenu ici svp
PUIS ... Relance OTL clique sur Analyse rapide et poste le rapport svp A plus tard | |
| | | fabye mégabibou
Nombre de messages : 352 Age : 62 Localisation : godarville Date d'inscription : 06/03/2008
| Sujet: Re: [Résolu] pc lent Dim 20 Juin 2010 - 13:50 | |
| il a l air d aller un peu plus vite je poste le rapport et encore merci pour ton aide
All processes killed ========== REGISTRY ========== Registry key HKEY_CURRENT_USER\Software\iMesh\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\iMeshIEHelper.UrlHelper\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\iMeshIEHelper.UrlHelper.1\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{96F7FABC-5789-EFA4-B6ED-1272F4C1D27B}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{96F7FABC-5789-EFA4-B6ED-1272F4C1D27B}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{A147AA03-820F-4A0F-9F34-D6CB4004A2F9}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A147AA03-820F-4A0F-9F34-D6CB4004A2F9}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMHelperiMesh.WMHelper\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMHelperiMesh.WMHelper.1\ deleted successfully. Registry key HKEY_USERS\S-1-5-21-73586283-1972579041-725345543-1004\Software\iMesh\ not found. ========== FILES ========== ========== COMMANDS ========== [EMPTYTEMP] User: Administrateur ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes ->Flash cache emptied: 0 bytes User: All Users User: Default User ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes ->Flash cache emptied: 0 bytes User: LocalService ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 33170 bytes User: naveaux ->Temp folder emptied: 152624 bytes ->Temporary Internet Files folder emptied: 78966619 bytes ->Java cache emptied: 0 bytes ->FireFox cache emptied: 0 bytes ->Flash cache emptied: 643 bytes User: NetworkService ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes %systemdrive% .tmp files removed: 0 bytes %systemroot% .tmp files removed: 0 bytes %systemroot%\System32 .tmp files removed: 0 bytes %systemroot%\System32\dllcache .tmp files removed: 0 bytes %systemroot%\System32\drivers .tmp files removed: 0 bytes Windows Temp folder emptied: 0 bytes %systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 0 bytes %systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 0 bytes RecycleBin emptied: 0 bytes Total Files Cleaned = 75,00 mb OTL by OldTimer - Version 3.2.6.0 log created on 06202010_133657
Files\Folders moved on Reboot... File\Folder C:\Documents and Settings\naveaux\Local Settings\Temp\~DFBAFE.tmp not found! File\Folder C:\Documents and Settings\naveaux\Local Settings\Temp\~DFBBE6.tmp not found! File\Folder C:\Documents and Settings\naveaux\Local Settings\Temp\~DFBC4C.tmp not found! File\Folder C:\Documents and Settings\naveaux\Local Settings\Temp\~DFBCB8.tmp not found! C:\Documents and Settings\naveaux\Local Settings\Temporary Internet Files\Content.IE5\WDBB91EA\admgt[1].htm moved successfully. C:\Documents and Settings\naveaux\Local Settings\Temporary Internet Files\Content.IE5\8P684LPU\pc-lent-t4069[1].htm moved successfully. C:\Documents and Settings\naveaux\Local Settings\Temporary Internet Files\AntiPhishing\2CEDBFBC-DBA8-43AA-B1FD-CC8E6316E3E2.dat moved successfully.
Registry entries deleted on Reboot... | |
| | | fabye mégabibou
Nombre de messages : 352 Age : 62 Localisation : godarville Date d'inscription : 06/03/2008
| Sujet: Re: [Résolu] pc lent Dim 20 Juin 2010 - 13:59 | |
| voilà e rapport d analyse
OTL logfile created on: 20/06/2010 13:51:33 - Run 3 OTL by OldTimer - Version 3.2.6.0 Folder = C:\Documents and Settings\naveaux\Bureau Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18702) Locale: 0000080C | Country: Belgique | Language: FRB | Date Format: d/MM/yyyy 479,00 Mb Total Physical Memory | 229,00 Mb Available Physical Memory | 48,00% Memory free 882,00 Mb Paging File | 690,00 Mb Available in Paging File | 78,00% Paging File free Paging file location(s): C:\pagefile.sys 480 672 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 76,32 Gb Total Space | 46,36 Gb Free Space | 60,75% Space Free | Partition Type: NTFS D: Drive not present or media not loaded E: Drive not present or media not loaded F: Drive not present or media not loaded G: Drive not present or media not loaded H: Drive not present or media not loaded I: Drive not present or media not loaded Computer Name: NAVEAU-DJKVV60O Current User Name: naveaux Logged in as Administrator. Current Boot Mode: Normal Scan Mode: Current user Company Name Whitelist: Off Skip Microsoft Files: Off File Age = 30 Days Output = Standard ========== Processes (SafeList) ========== PRC - [2010/06/15 09:30:43 | 000,572,416 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\naveaux\Bureau\OTL.exe PRC - [2009/10/12 12:37:26 | 000,185,089 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe PRC - [2009/09/06 14:38:06 | 000,071,096 | ---- | M] () -- C:\Program Files\CDBurnerXP\NMSAccessU.exe PRC - [2009/05/13 16:47:40 | 000,108,289 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir Desktop\sched.exe PRC - [2009/03/02 13:08:11 | 000,209,153 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe PRC - [2008/04/13 19:34:04 | 001,037,824 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe PRC - [2003/10/09 13:17:48 | 000,126,976 | ---- | M] (hp) -- C:\Program Files\HP\Digital Imaging\Promotions\HPpromo.exe PRC - [2003/06/25 12:24:48 | 000,049,152 | ---- | M] (Hewlett-Packard) -- C:\Program Files\HP\HP Software Update\hpwuSchd.exe ========== Modules (SafeList) ========== MOD - [2010/06/15 09:30:43 | 000,572,416 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\naveaux\Bureau\OTL.exe MOD - [2008/04/13 19:32:04 | 000,110,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msscript.ocx ========== Win32 Services (SafeList) ========== SRV - [2009/10/12 12:37:26 | 000,185,089 | ---- | M] (Avira GmbH) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService) SRV - [2009/09/06 14:38:06 | 000,071,096 | ---- | M] () [Auto | Running] -- C:\Program Files\CDBurnerXP\NMSAccessU.exe -- (NMSAccessU) SRV - [2009/08/05 22:48:42 | 000,704,864 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Live\Family Safety\fsssvc.exe -- (fsssvc) SRV - [2009/05/13 16:47:40 | 000,108,289 | ---- | M] (Avira GmbH) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService) SRV - [2003/08/11 10:44:16 | 000,065,795 | ---- | M] (HP) [On_Demand | Stopped] -- C:\WINDOWS\system32\hpzipm12.exe -- (Pml Driver HPZ12) ========== Driver Services (SafeList) ========== DRV - [2009/11/12 14:48:56 | 000,007,168 | ---- | M] () [File_System | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\StarOpen.sys -- (StarOpen) DRV - [2009/11/05 15:31:07 | 000,043,488 | ---- | M] (Oak Technology Inc.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\AFS2K.SYS -- (AFS2K) DRV - [2009/10/17 11:55:12 | 000,203,776 | ---- | M] (VIA Technologies, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\vinyl97.sys -- (VIAudio) Vinyl AC'97 Audio Controller (WDM) DRV - [2009/08/05 22:48:42 | 000,054,752 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\fssfltr_tdi.sys -- (fssfltr) DRV - [2009/05/11 10:11:52 | 000,028,520 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\ssmdrv.sys -- (ssmdrv) DRV - [2009/03/30 10:32:47 | 000,096,104 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avipbb.sys -- (avipbb) DRV - [2009/02/13 12:28:39 | 000,022,360 | ---- | M] (Avira GmbH) [File_System | Boot | Running] -- C:\WINDOWS\SYSTEM32\DRIVERS\avgntmgr.sys -- (avgntmgr) DRV - [2009/02/13 12:17:49 | 000,045,416 | ---- | M] (Avira GmbH) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\avgntdd.sys -- (avgntdd) DRV - [2008/04/13 09:34:34 | 000,166,912 | ---- | M] (S3 Graphics, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\s3gnbm.sys -- (S3SavageNB) ========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultName = IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultURL = IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.be/ IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://be.msn.com/defaultf.aspx?lang=fr-be&ocid=iehp IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = fr-be IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 4A 3E 03 8A 41 4B CA 01 [binary data] IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page_bak = http://www.google.com IE - HKCU\..\URLSearchHook: {1C4AB6A5-595F-4e86-B15F-F93CCE2BBD48} - C:\Program Files\Family Toolbar\tbhelper.dll () IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 ========== FireFox ========== FF - prefs.js..browser.search.defaultenginename: "" FF - prefs.js..browser.search.order.1: "" FF - prefs.js..browser.search.selectedEngine: "" FF - prefs.js..browser.startup.homepage: "www.google.be" FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0 FF - prefs.js..extensions.enabledItems: "" [2010/05/15 20:12:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\naveaux\Application Data\Mozilla\Extensions [2010/05/15 20:12:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\naveaux\Application Data\Mozilla\Extensions\mozswing@mozswing.org [2010/03/23 15:01:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\naveaux\Application Data\Mozilla\Firefox\Profiles\byfhtdry.default\extensions [2009/11/16 20:00:45 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\naveaux\Application Data\Mozilla\Firefox\Profiles\byfhtdry.default\extensions\{20a82645-c095-46ed-80e3-08825760534b} [2010/04/21 19:50:38 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions [2009/10/26 16:53:52 | 000,102,400 | ---- | M] (Zylom) -- C:\Program Files\Mozilla Firefox\plugins\npzylomgamesplayer.dll O1 HOSTS File: ([2003/04/24 14:00:00 | 000,000,790 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (MHTBPos00 Class) - {0C37B053-FD68-456a-82E1-D788EE342E6F} - C:\Program Files\Family Toolbar\tbcore3.dll () O2 - BHO: (Adobe PDF Link Helper) - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) O2 - BHO: (Windows Live Family Safety Browser Helper Class) - {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - C:\Program Files\Windows Live\Family Safety\fssbho.dll (Microsoft Corporation) O2 - BHO: (Programme d'aide de l'Assistant de connexion Windows Live) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation) O3 - HKLM\..\Toolbar: (Family Toolbar) - {FD2FD708-1F6F-4B68-B141-C5778F0C19BB} - C:\Program Files\Family Toolbar\tbcore3.dll () O3 - HKCU\..\Toolbar\WebBrowser: (Family Toolbar) - {FD2FD708-1F6F-4B68-B141-C5778F0C19BB} - C:\Program Files\Family Toolbar\tbcore3.dll () O4 - HKLM..\Run: [Adobe ARM] C:\Program Files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe (Adobe Systems Incorporated) O4 - HKLM..\Run: [avgnt] C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH) O4 - HKLM..\Run: [DXDllRegExe] File not found O4 - HKLM..\Run: [Family Tree Builder Update] C:\Program Files\MyHeritage\Bin\FTBCheckUpdates.exe (MyHeritage) O4 - HKLM..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd.exe (Hewlett-Packard) O4 - HKLM..\Run: [HPpromo psc 1300 series] C:\Program Files\HP\Digital Imaging\Promotions\HPpromo.exe (hp) O4 - HKLM..\Run: [UserFaultCheck] File not found O4 - HKCU..\RunOnce: [Shockwave Updater] C:\WINDOWS\System32\Adobe\Shockwave 11\SwHelper_1151601.exe -Update -1151601 -Mozilla\4.0 (compatible; MSIE 8.0; Windows NT 5.1; Trident\4.0; File not found O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O16 - DPF: {140E4DF8-9E14-4A34-9577-C77561ED7883} http://content.systemrequirementslab.com.s3.amazonaws.com/global/bin/srldetect_cyri_4.1.64.0.cab (SysInfo Class) O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab (Checkers Class) O16 - DPF: {233C1507-6A77-46A4-9443-F871F945D258} http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab (Shockwave ActiveX Control) O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} http://v5.windowsupdate.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1255345844106 (WUWebControl Class) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17) O16 - DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} http://game.zylom.com/activex/zylomgamesplayer.cab (Zylom Games Player) O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab (MessengerStatsClient Class) O16 - DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17) O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 212.68.193.110 212.68.193.196 O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\msdaipp.dll (Microsoft Corporation) O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\msdaipp.dll (Microsoft Corporation) O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\msdaipp.dll (Microsoft Corporation) O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\msdaipp.dll (Microsoft Corporation) O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\msdaipp.dll (Microsoft Corporation) O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\msdaipp.dll (Microsoft Corporation) O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\msdaipp.dll (Microsoft Corporation) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O24 - Desktop Components:0 (Ma page d'accueil) - About:Home O24 - Desktop WallPaper: C:\Documents and Settings\naveaux\Local Settings\Application Data\Microsoft\Wallpaper3.bmp O24 - Desktop BackupWallPaper: C:\Documents and Settings\naveaux\Local Settings\Application Data\Microsoft\Wallpaper3.bmp O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2009/10/11 11:22:14 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* ========== Files/Folders - Created Within 30 Days ========== [2010/06/20 12:22:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\eGames [2010/06/20 12:15:38 | 000,000,000 | ---D | C] -- C:\Program Files\Burger Island 2 [2010/06/20 12:15:12 | 000,000,000 | ---D | C] -- C:\Program Files\ReflexiveArcade [2010/06/20 12:07:15 | 000,000,000 | ---D | C] -- C:\Program Files\Burger Island 2 - The Missing Ingredients [2010/06/19 14:20:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\naveaux\Mes documents\Mes fichiers reçus [2010/06/17 19:27:09 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\naveaux\Recent [2010/06/15 19:33:17 | 000,000,000 | ---D | C] -- C:\_OTL [2010/06/15 09:30:36 | 000,572,416 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\naveaux\Bureau\OTL.exe [2010/06/11 18:09:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\naveaux\Application Data\GamesCafe [2010/06/11 18:06:21 | 000,000,000 | ---D | C] -- C:\Program Files\Sally's Studio [2010/06/10 05:33:20 | 000,743,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iedvtool.dll [2010/06/06 16:07:55 | 000,000,000 | ---D | C] -- C:\Program Files\Cooking Academy 2 - Cuisine du Monde [2010/05/27 16:35:44 | 000,000,000 | ---D | C] -- C:\Documents and Settings\naveaux\Application Data\TitanicMystery [2010/05/23 19:19:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\naveaux\Local Settings\Application Data\Oberon Games [2010/05/23 18:04:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\naveaux\Saved Games [2010/05/23 17:42:09 | 000,000,000 | ---D | C] -- C:\Program Files\bfgclient [2010/05/23 17:41:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\BigFishGamesCache [2010/05/22 19:58:26 | 006,800,257 | ---- | C] (Shareaza Development Team ) -- C:\Documents and Settings\naveaux\Mes documents\shareaza_shareaza_2.5.2.0_francais_11031.exe ========== Files - Modified Within 30 Days ========== [2010/06/20 13:40:44 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT [2010/06/20 13:40:41 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2010/06/20 13:38:33 | 004,718,592 | ---- | M] () -- C:\Documents and Settings\naveaux\NTUSER.DAT [2010/06/20 13:38:33 | 000,000,184 | -HS- | M] () -- C:\Documents and Settings\naveaux\ntuser.ini [2010/06/20 12:16:15 | 000,000,766 | ---- | M] () -- C:\Documents and Settings\naveaux\Bureau\Burger Island 2.lnk [2010/06/20 12:08:32 | 000,001,869 | ---- | M] () -- C:\Documents and Settings\All Users\Bureau\Play Burger Island 2 - The Missing Ingredients.lnk [2010/06/20 12:08:32 | 000,001,248 | ---- | M] () -- C:\Documents and Settings\All Users\Bureau\More Great Games.lnk [2010/06/20 10:56:22 | 004,811,722 | -H-- | M] () -- C:\Documents and Settings\naveaux\Local Settings\Application Data\IconCache.db [2010/06/20 10:50:01 | 000,100,908 | ---- | M] () -- C:\Documents and Settings\naveaux\Bureau\SystemLook.exe [2010/06/19 14:04:56 | 000,060,416 | ---- | M] () -- C:\Documents and Settings\naveaux\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2010/06/18 21:56:39 | 730,097,664 | ---- | M] () -- C:\Documents and Settings\naveaux\Mes documents\Solomon.Kane.FRENCH.DVDRip.XviD-AYMO.avi [2010/06/18 19:23:10 | 000,012,962 | ---- | M] () -- C:\Documents and Settings\naveaux\Mes documents\heures fabienne.odt [2010/06/16 14:46:36 | 000,025,088 | ---- | M] () -- C:\Documents and Settings\naveaux\Bureau\Descendance Max Naveaux.doc [2010/06/16 14:46:14 | 000,030,720 | ---- | M] () -- C:\Documents and Settings\naveaux\Bureau\Descendance Vital Naveaux.doc [2010/06/16 14:40:39 | 000,000,620 | ---- | M] () -- C:\WINDOWS\MyHeritage.INI [2010/06/15 11:46:04 | 000,011,830 | ---- | M] () -- C:\Documents and Settings\naveaux\Mes documents\boulot fabienne.odt [2010/06/15 09:30:43 | 000,572,416 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\naveaux\Bureau\OTL.exe [2010/06/12 20:57:29 | 000,002,422 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2010/06/11 18:07:19 | 000,001,620 | ---- | M] () -- C:\Documents and Settings\All Users\Bureau\Play Sally's Studio.lnk [2010/06/10 10:55:54 | 000,164,320 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2010/06/10 09:01:51 | 000,510,656 | ---- | M] () -- C:\WINDOWS\System32\perfh00C.dat [2010/06/10 09:01:51 | 000,084,874 | ---- | M] () -- C:\WINDOWS\System32\perfc00C.dat [2010/06/10 09:01:50 | 001,077,908 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI [2010/06/10 09:01:50 | 000,441,438 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat [2010/06/10 09:01:50 | 000,071,374 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat [2010/06/08 19:35:00 | 000,000,492 | ---- | M] () -- C:\WINDOWS\tasks\Ad-Aware Update (Weekly).job [2010/06/06 16:09:10 | 000,001,824 | ---- | M] () -- C:\Documents and Settings\All Users\Bureau\Jouer à Cooking Academy 2 - Cuisine du Monde.lnk [2010/06/06 16:09:10 | 000,001,238 | ---- | M] () -- C:\Documents and Settings\All Users\Bureau\Encore plus de jeux.lnk [2010/06/05 19:54:13 | 003,398,022 | ---- | M] () -- C:\Documents and Settings\naveaux\Mes documents\Clavier_2002_1.0.exe [2010/06/04 20:38:49 | 000,001,041 | ---- | M] () -- C:\Documents and Settings\naveaux\Application Data\vso_ts_preview.xml [2010/05/23 17:42:12 | 000,001,578 | ---- | M] () -- C:\Documents and Settings\All Users\Bureau\Game Manager.lnk [2010/05/23 16:24:31 | 000,265,425 | ---- | M] () -- C:\Documents and Settings\naveaux\Mes documents\flo.odt [2010/05/22 19:58:26 | 006,800,257 | ---- | M] (Shareaza Development Team ) -- C:\Documents and Settings\naveaux\Mes documents\shareaza_shareaza_2.5.2.0_francais_11031.exe ========== Files Created - No Company Name ========== [2010/06/20 12:16:15 | 000,000,766 | ---- | C] () -- C:\Documents and Settings\naveaux\Bureau\Burger Island 2.lnk [2010/06/20 12:08:32 | 000,001,869 | ---- | C] () -- C:\Documents and Settings\All Users\Bureau\Play Burger Island 2 - The Missing Ingredients.lnk [2010/06/20 12:08:32 | 000,001,248 | ---- | C] () -- C:\Documents and Settings\All Users\Bureau\More Great Games.lnk [2010/06/20 10:50:01 | 000,100,908 | ---- | C] () -- C:\Documents and Settings\naveaux\Bureau\SystemLook.exe [2010/06/18 21:47:10 | 730,097,664 | ---- | C] () -- C:\Documents and Settings\naveaux\Mes documents\Solomon.Kane.FRENCH.DVDRip.XviD-AYMO.avi [2010/06/16 14:46:34 | 000,025,088 | ---- | C] () -- C:\Documents and Settings\naveaux\Bureau\Descendance Max Naveaux.doc [2010/06/16 14:46:14 | 000,030,720 | ---- | C] () -- C:\Documents and Settings\naveaux\Bureau\Descendance Vital Naveaux.doc [2010/06/15 11:46:01 | 000,011,830 | ---- | C] () -- C:\Documents and Settings\naveaux\Mes documents\boulot fabienne.odt [2010/06/11 18:07:19 | 000,001,620 | ---- | C] () -- C:\Documents and Settings\All Users\Bureau\Play Sally's Studio.lnk [2010/06/06 20:14:14 | 000,012,962 | ---- | C] () -- C:\Documents and Settings\naveaux\Mes documents\heures fabienne.odt [2010/06/06 16:09:10 | 000,001,824 | ---- | C] () -- C:\Documents and Settings\All Users\Bureau\Jouer à Cooking Academy 2 - Cuisine du Monde.lnk [2010/06/06 16:09:10 | 000,001,238 | ---- | C] () -- C:\Documents and Settings\All Users\Bureau\Encore plus de jeux.lnk [2010/06/05 19:53:48 | 003,398,022 | ---- | C] () -- C:\Documents and Settings\naveaux\Mes documents\Clavier_2002_1.0.exe [2010/05/23 17:42:12 | 000,001,578 | ---- | C] () -- C:\Documents and Settings\All Users\Bureau\Game Manager.lnk [2010/05/23 16:24:31 | 000,265,425 | ---- | C] () -- C:\Documents and Settings\naveaux\Mes documents\flo.odt [2010/02/13 18:57:31 | 000,000,000 | ---- | C] () -- C:\WINDOWS\BBCAuto.INI [2009/10/30 21:48:55 | 000,007,168 | ---- | C] () -- C:\WINDOWS\System32\drivers\StarOpen.sys [2009/10/19 11:09:58 | 000,000,620 | ---- | C] () -- C:\WINDOWS\MyHeritage.INI [2009/10/19 11:07:54 | 000,454,656 | ---- | C] () -- C:\WINDOWS\System32\PaintX.dll [2003/08/11 10:44:18 | 000,565,248 | ---- | C] () -- C:\WINDOWS\System32\hpotscl.dll ========== Alternate Data Streams ========== @Alternate Data Stream - 16 bytes -> C:\Documents and Settings\naveaux\Mes documents\Shareaza Downloads:Shareaza.GUID @Alternate Data Stream - 146 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:22741C1F @Alternate Data Stream - 144 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:C72A744C @Alternate Data Stream - 125 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:80E965A3 @Alternate Data Stream - 124 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:943E8182 @Alternate Data Stream - 124 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:090FB735 @Alternate Data Stream - 119 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:D9987109 @Alternate Data Stream - 118 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:EA701346 @Alternate Data Stream - 117 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:708BB0FA @Alternate Data Stream - 112 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:9857FAE3 @Alternate Data Stream - 110 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:6BD304B9 @Alternate Data Stream - 110 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:331B76C7 @Alternate Data Stream - 106 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:13AA281B @Alternate Data Stream - 101 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:18897B1D < End of report > | |
| | | GrosBébé Moderateurs (trices)
Nombre de messages : 6878 Age : 43 Localisation : devant le pc Date d'inscription : 18/12/2007
| Sujet: Re: [Résolu] pc lent Dim 20 Juin 2010 - 14:29 | |
| Re De rien Je ne vois rien d'autre dans le rapport. La suite va consister à lancer 2 scans pour vérifier que rien ne traine. 1ère étape- Relance Malwarebyte et mets à jour la base de définition en allant dans l'onglet "mise à jour" puis "Recherche de mise à jour".
- Choisis "Exécuter un examen rapide" puis Rechercher
- Laisse l'analyse se faire (cela peut durer longtemps).
Une fois le scan terminé, clique sur "Afficher les résultats", vérifie que les éléments trouvés soient cochés puis sur Supprimer la sélection" en bas. Un redémarrage peut être nécessaire.Un rapport va s'afficher, enregistre-le sur ton bureau. Sinon, après le démarrage, il se trouvera dans l'onglet Rapports/logs de Malwarebyte[/list] Poste le rapport svp Une aide à l'utilisation ici2nde étapeDésinstalle ce programme "Java(TM) 6 Update 17" Puis réinstalle le à jour http://javadl.sun.com/webapps/download/AutoDL?BundleId=39494 3ème étapeRends toi sur kaspersky online scanner (clique ici) - Clique sur Accept en bas pour installer le programme.
- Ferme toutes tes fenêtres et désactive tes logiciels de sécurité.
- Clique sur exécuter pour lancer le programme.
Patiente le temps de la mise à jour ...
- Clique sur my computer sous scan (à gauche)
Patiente le temps du scan.
- Dès que c'est fini, clique sur Report... à gauche, puis clique sur save report...
Sauvegarde le rapport sous le nom kaspersky.txt et copie/colle son contenu ici svp. Réactive ton antivirus. ps : n'utilise pas ton pc le temps du scan. Une aide en image ici | |
| | | fabye mégabibou
Nombre de messages : 352 Age : 62 Localisation : godarville Date d'inscription : 06/03/2008
| Sujet: Re: [Résolu] pc lent Dim 20 Juin 2010 - 15:23 | |
| Malwarebytes' Anti-Malware 1.46 www.malwarebytes.org
Version de la base de données: 4217
Windows 5.1.2600 Service Pack 3 Internet Explorer 8.0.6001.18702
20/06/2010 15:20:55 mbam-log-2010-06-20 (15-20-55).txt
Type d'examen: Examen rapide Elément(s) analysé(s): 126380 Temps écoulé: 13 minute(s), 58 seconde(s)
Processus mémoire infecté(s): 0 Module(s) mémoire infecté(s): 0 Clé(s) du Registre infectée(s): 0 Valeur(s) du Registre infectée(s): 0 Elément(s) de données du Registre infecté(s): 0 Dossier(s) infecté(s): 0 Fichier(s) infecté(s): 0
Processus mémoire infecté(s): (Aucun élément nuisible détecté)
Module(s) mémoire infecté(s): (Aucun élément nuisible détecté)
Clé(s) du Registre infectée(s): (Aucun élément nuisible détecté)
Valeur(s) du Registre infectée(s): (Aucun élément nuisible détecté)
Elément(s) de données du Registre infecté(s): (Aucun élément nuisible détecté)
Dossier(s) infecté(s): (Aucun élément nuisible détecté)
Fichier(s) infecté(s): (Aucun élément nuisible détecté) | |
| | | fabye mégabibou
Nombre de messages : 352 Age : 62 Localisation : godarville Date d'inscription : 06/03/2008
| Sujet: Re: [Résolu] pc lent Dim 20 Juin 2010 - 19:45 | |
| j ai desinstaller et réinstaller le nouveau java mais je ne sais pas mettre les mises à jour comme dans le tutoriel pour kaspersky et accept on ne sait pas appuyer dessus, désolée mais je ne suis pas trop forte en informatique | |
| | | fabye mégabibou
Nombre de messages : 352 Age : 62 Localisation : godarville Date d'inscription : 06/03/2008
| Sujet: Re: [Résolu] pc lent Dim 20 Juin 2010 - 19:54 | |
| ca y est j ai trouvé je ferai le scan sûrement demain | |
| | | GrosBébé Moderateurs (trices)
Nombre de messages : 6878 Age : 43 Localisation : devant le pc Date d'inscription : 18/12/2007
| Sujet: Re: [Résolu] pc lent Dim 20 Juin 2010 - 21:38 | |
| Ok, bonne soirée | |
| | | fabye mégabibou
Nombre de messages : 352 Age : 62 Localisation : godarville Date d'inscription : 06/03/2008
| Sujet: Re: [Résolu] pc lent Mar 22 Juin 2010 - 18:29 | |
| bonsoir, le scan vient de finir il n y avait rien même pas de rapport, j ai même fait une capture d ecran pour te montrer mais j arrive pas à l envoyer
| |
| | | GrosBébé Moderateurs (trices)
Nombre de messages : 6878 Age : 43 Localisation : devant le pc Date d'inscription : 18/12/2007
| Sujet: Re: [Résolu] pc lent Mar 22 Juin 2010 - 23:12 | |
| Bonsoir
Le scan a détecté quelque chose ?
http://www.bibou0007.com/utilitaires-f81/comment-faire-une-capture-d-ecran-screenshot-et-la-mettre-en-ligne-t877.htm http://www.bibou0007.com/utilitaires-f81/shoot2png-captures-d-images-t3307.htm
Bonne soirée | |
| | | fabye mégabibou
Nombre de messages : 352 Age : 62 Localisation : godarville Date d'inscription : 06/03/2008
| Sujet: Re: [Résolu] pc lent Mer 23 Juin 2010 - 18:43 | |
| voila ce que j ai eu apres avoir cliquer sur report et save the report | |
| | | fabye mégabibou
Nombre de messages : 352 Age : 62 Localisation : godarville Date d'inscription : 06/03/2008
| Sujet: Re: [Résolu] pc lent Mer 23 Juin 2010 - 18:49 | |
| https://i.servimg.com/u/f62/11/22/81/13/k_bmp12.jpg
comme l image est petite je t ai mis son adresse comme ça on peut l agrandir, je ne sais même pas si il y avait un rapport, si cela ne va pas je le recommencerai
| |
| | | GrosBébé Moderateurs (trices)
Nombre de messages : 6878 Age : 43 Localisation : devant le pc Date d'inscription : 18/12/2007
| Sujet: Re: [Résolu] pc lent Mer 23 Juin 2010 - 19:47 | |
| Bonsoir Fabye Tes rapports me semblent propres. On va retirer les logiciels que je t'ai demandés d'installer. Relance OTL
- Dans le cadre Personnalisation qui est en bas, colle le contenu du cadre ci dessous :
- Citation :
- :Commands
[clearallrestorepoints] Puis clique sur le bouton Correction en haut.
- Laisse OTL tourner, le pc va redémarrer.
Relance OTL et clique sur le bouton Purge outils. Le pc va te demander de redémarrer, accepte. Supprime les logiciels qui ne seraient pas partis avec OTL ainsi que les différents rapports. Je te conseille de conserver Malwarebyte et de l'utiliser régulièrement pour t'assurer "que ça roule". C'est un excellent logiciel. Qu'en est il des problèmes de lenteur ? A plus tard | |
| | | fabye mégabibou
Nombre de messages : 352 Age : 62 Localisation : godarville Date d'inscription : 06/03/2008
| Sujet: Re: [Résolu] pc lent Jeu 24 Juin 2010 - 19:26 | |
| bonsoir, cela a l air d aller mieux merci de ton aide si j ai d autres problèmes je reviendtai comme d habitude encore merci | |
| | | GrosBébé Moderateurs (trices)
Nombre de messages : 6878 Age : 43 Localisation : devant le pc Date d'inscription : 18/12/2007
| Sujet: Re: [Résolu] pc lent Ven 25 Juin 2010 - 17:11 | |
| Bonjour Fabye Ok et bon anniversaire
Dernière édition par GrosBébé le Ven 25 Juin 2010 - 17:14, édité 1 fois | |
| | | GrosBébé Moderateurs (trices)
Nombre de messages : 6878 Age : 43 Localisation : devant le pc Date d'inscription : 18/12/2007
| Sujet: Re: [Résolu] pc lent Ven 25 Juin 2010 - 17:11 | |
| Le sujet semble résolu, je le verrouille. Si pour une raison ou une autre, vous avez besoin de le réouvrir, faites en la demande par MP en précisant la raison et le lien vers ce sujet. Ceci ne s'applique qu'à fabye. Pour les autres, créez votre propre sujet svp. | |
| | | Contenu sponsorisé
| Sujet: Re: [Résolu] pc lent | |
| |
| | | | [Résolu] pc lent | |
|
Sujets similaires | |
|
| Permission de ce forum: | Vous ne pouvez pas répondre aux sujets dans ce forum
| |
| |
| |
|