StartupList report, 06/06/2008, 13:35:03
StartupList version: 1.52.2
Started from : C:Documents and SettingsAnthonyBureauSniffle.EXE
Detected: Windows XP SP2 (WinNT 5.01.2600)
Detected: Internet Explorer v6.00 (6.00.2900.2180)
* Using default options
==================================================
Running processes:
C:WINDOWSSystem32smss.exe
C:WINDOWSsystem32winlogon.exe
C:WINDOWSsystem32services.exe
C:WINDOWSsystem32lsass.exe
C:WINDOWSsystem32Ati2evxx.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSsystem32Ati2evxx.exe
C:Program FilesAlwil SoftwareAvast4aswUpdSv.exe
C:Program FilesAlwil SoftwareAvast4ashServ.exe
C:WINDOWSExplorer.EXE
C:WINDOWSsystem32rsvc01a.exe
C:WINDOWSsystem32rss01a.exe
C:WINDOWSsystem32spoolsv.exe
C:PROGRA~1ALWILS~1Avast4ashDisp.exe
C:Program FilesJavajre1.6.0_05injusched.exe
C:Program FilesAnalog DevicesCoresmax4pnp.exe
C:Program FilesAnalog DevicesSoundMAXSmax4.exe
C:Program FilesLogitechVideoLogiTray.exe
C:Program FilesBrotherControlCenter2rctrcen.exe
C:WINDOWSsystem32LVComS.exe
C:WINDOWSsystem32ctfmon.exe
C:Program FilesInternet Exploreriexplore.exe
C:Program FilesUlead SystemsUlead Photo Express 4.0 SECalCheck.exe
C:Program FilesInternet Exploreriexplore.exe
C:WINDOWSsystem32svchost.exe
C:Program FilesMozilla Firefoxfirefox.exe
C:Program FilesAlwil SoftwareAvast4ashMaiSv.exe
C:Program FilesAlwil SoftwareAvast4ashWebSv.exe
C:Program FilesWindows LiveMessengermsnmsgr.exe
C:Program FilesWindows LiveMessengerusnsvc.exe
C:Program FilesWowCartographeWowCartographe.exe
C:Documents and SettingsAnthonyBureauSniffle.exe
--------------------------------------------------
Listing of startup folders:
Shell folders Common Startup:
[C:Documents and SettingsAll UsersMenu DémarrerProgrammesDémarrage]
Contrôleur de calendrier Ulead.lnk = C:Program FilesUlead SystemsUlead Photo Express 4.0 SECalCheck.exe
--------------------------------------------------
Checking Windows NT UserInit:
[HKLMSoftwareMicrosoftWindows NTCurrentVersionWinlogon]
UserInit = C:WINDOWSsystem32userinit.exe,
--------------------------------------------------
Autorun entries from Registry:
HKLMSoftwareMicrosoftWindowsCurrentVersionRun
High Definition Audio Property Page Shortcut = HDAShCut.exe
avast! = C:PROGRA~1ALWILS~1Avast4ashDisp.exe
ATICCC = "C:Program FilesATI TechnologiesATI.ACECLIStart.exe"
SunJavaUpdateSched = "C:Program FilesJavajre1.6.0_05injusched.exe"
SoundMAXPnP = C:Program FilesAnalog DevicesCoresmax4pnp.exe
SoundMAX = "C:Program FilesAnalog DevicesSoundMAXSmax4.exe" /tray
LogitechVideoRepair = C:Program FilesLogitechVideoISStart.exe
LogitechVideoTray = C:Program FilesLogitechVideoLogiTray.exe
SetDefPrt = C:Program FilesBrotherBrmfl05aBrStDvPt.exe
ControlCenter2.0 = C:Program FilesBrotherControlCenter2rctrcen.exe /autorun
QuickTime Task = "C:Program FilesQuickTimeqttask.exe" -atboottime
TkBellExe = "C:Program FilesFichiers communsRealUpdate_OB
ealsched.exe" -osboot
Adobe Reader Speed Launcher = "C:Program FilesAdobeReader 8.0ReaderReader_sl.exe"
--------------------------------------------------
Autorun entries from Registry:
HKLMSoftwareMicrosoftWindowsCurrentVersionRunOnce
NoIE4StubProcessing = C:WINDOWSsystem32
eg.exe DELETE "HKLMSOFTWAREMicrosoftActive SetupInstalled Components" /v "NoIE4StubProcessing" /f
--------------------------------------------------
Autorun entries from Registry:
HKCUSoftwareMicrosoftWindowsCurrentVersionRun
CTFMON.EXE = C:WINDOWSsystem32ctfmon.exe
msnmsgr = "C:Program FilesWindows LiveMessengermsnmsgr.exe" /background
--------------------------------------------------
Autorun entries in Registry subkeys of:
HKLMSoftwareMicrosoftWindowsCurrentVersionRun
[OptionalComponents]
=
--------------------------------------------------
Shell & screensaver key from C:WINDOWSSYSTEM.INI:
Shell=*INI section not found*
SCRNSAVE.EXE=*INI section not found*
drivers=*INI section not found*
Shell & screensaver key from Registry:
Shell=Explorer.exe
SCRNSAVE.EXE=C:WINDOWSSystem32logon.scr
drivers=*Registry value not found*
Policies Shell key:
HKCU..Policies: Shell=*Registry key not found*
HKLM..Policies: Shell=*Registry value not found*
--------------------------------------------------
Enumerating Browser Helper Objects:
(no name) - C:Program FilesFichiers communsAdobeAcrobatActiveXAcroIEHelper.dll - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}
(no name) - C:Program FilesRealRealPlayer
pbrowserrecordplugin.dll - {3049C3E9-B461-4BC5-8870-4C09146192CA}
(no name) - C:Program FilesSpybot - Search & DestroySDHelper.dll - {53707962-6F74-2D53-2644-206D7942484F}
(no name) - C:Program FilesJavajre1.6.0_05inssv.dll - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43}
(no name) - C:Program FilesFichiers communsMicrosoft SharedWindows LiveWindowsLiveLogin.dll - {9030D464-4C02-4ABF-8ECC-5164760863C6}
(no name) - c:program filesgooglegoogletoolbar3.dll - {AA58ED58-01DD-4d91-8333-CF10577473F7}
(no name) - C:Program FilesWindows Live Toolbarmsntb.dll - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0}
--------------------------------------------------
Enumerating Task Scheduler jobs:
AAED20F8918AD500.job
AppleSoftwareUpdate.job
Vérifier les mises à jour de Windows Live Toolbar.job
--------------------------------------------------
Enumerating Download Program Files:
[QuickTime Object]
InProcServer32 = C:Program FilesQuickTimeQTPlugin.ocx
CODEBASE =
http://appldnld.apple.com.edgesuite.net ... plugin.cab
[CamfrogWEB Advanced Unicode Control]
InProcServer32 = C:PROGRA~1CFWEBA~1cfwebadv.ocx
CODEBASE =
http://activex.camfrogweb.com/advanced/ ... module.exe
[UnoCtrl Class]
InProcServer32 = C:WINDOWSDownloaded Program FilesGAME_UNO1.dll
CODEBASE =
http://messenger.zone.msn.com/FR-FR/a-U ... E_UNO1.cab
[{867E13F2-7F31-44FB-AC97-CD38E0DC46EF}]
CODEBASE =
http://www.touslesdrivers.com/fichiers/ ... b?version=
[MessengerStatsClient Class]
InProcServer32 = C:WINDOWSDownloaded Program Filesmessengerstatsclient.dll
CODEBASE =
http://messenger.zone.msn.com/binary/Me ... b31267.cab
[MSN Games - Installer]
InProcServer32 = C:WINDOWSDownloaded Program FilesIntro.ocx
CODEBASE =
http://messenger.zone.msn.com/binary/ZI ... b56649.cab
[MessengerStatsClient Class]
InProcServer32 = C:WINDOWSDownloaded Program FilesMessengerStatsPAClient.dll
CODEBASE =
http://messenger.zone.msn.com/binary/Me ... b56907.cab
[Shockwave Flash Object]
InProcServer32 = C:WINDOWSsystem32MacromedFlashFlash9d.ocx
CODEBASE =
http://download.macromedia.com/pub/shoc ... wflash.cab
--------------------------------------------------
Enumerating ShellServiceObjectDelayLoad items:
PostBootReminder: C:WINDOWSsystem32SHELL32.dll
CDBurn: C:WINDOWSsystem32SHELL32.dll
WebCheck: C:WINDOWSsystem32webcheck.dll
SysTray: C:WINDOWSsystem32stobject.dll
WPDShServiceObj: C:WINDOWSsystem32WPDShServiceObj.dll
--------------------------------------------------
End of report, 8 257 bytes
Report generated in 0,047 seconds
Command line options:
/verbose - to add additional info on each section
/complete - to include empty sections and unsuspicious data
/full - to include several rarely-important sections
/force9x - to include Win9x-only startups even if running on WinNT
/forcent - to include WinNT-only startups even if running on Win9x
/forceall - to include all Win9x and WinNT startups, regardless of platform
/history - to list version history only