Virus ou pas ?
Résolu
phi60420
Messages postés
169
Statut
Membre
-
darkpoet Messages postés 1696 Statut Contributeur sécurité -
darkpoet Messages postés 1696 Statut Contributeur sécurité -
Bonjour, je viens d'avoir mon pc qui ne voulais plus ce mettre en marche j'ai essayé en mode sans echec rien a faire meme aevc le cd de xp dedans et puis il est reparti en mode normal avec le cd de xp dedans mais je ne sias pas comment je joint un rapport hijackthis pour que quelqu'un puisse me dire si mon pc est inffecté ou pas je remercie par avance celui qui pourra m'aider
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:46:59, on 27/12/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16762)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
C:\Program Files\Comodo\Firewall\cmdagent.exe
C:\Documents and Settings\All Users\Application Data\EPSON\EPW!3 SSRP\E_S30RP1.EXE
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\wanmpsvc.exe
C:\WINDOWS\system32\SearchIndexer.exe
C:\WINDOWS\System32\rmctrl.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\PROGRA~1\TECHCI~1\AOLSAV\AOLAgent.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Ahead\InCD\InCD.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\WINDOWS\system32\RunDll32.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe
C:\Program Files\internet explorer\iexplore.exe
C:\WINDOWS\system32\SearchProtocolHost.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.bing.com/?cc=fr&toHttps=1&redig=55729C844D6A45819CAD368B3E178C9F
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.sfr.fr/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = https://www.bing.com/?FORM=TOOLBR&cc=fr&toHttps=1&redig=4527FFF1C12746FC9EDB535C75E80ECC
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,First Home Page = C:\Program Files\AOL Toolbar\welcome.html
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: (no name) - {0579B4B6-0293-4d73-B02D-5EBB0BA0F0A2} - C:\Program Files\AskSBar\SrchAstt\1.bin\A2SRCHAS.DLL
O2 - BHO: Ask Search Assistant BHO - {0579B4B1-0293-4d73-B02D-5EBB0BA0F0A2} - C:\Program Files\AskSBar\SrchAstt\1.bin\A2SRCHAS.DLL
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.0.926.3450\swg.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O2 - BHO: Ask Toolbar BHO - {F0D4B231-DA4B-4daf-81E4-DFEE4931A4AA} - C:\Program Files\AskSBar\bar\1.bin\ASKSBAR.DLL
O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: AOL Toolbar - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:\Program Files\AOL\AOL Toolbar 4.0\aoltb.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: Ask Toolbar - {F0D4B239-DA4B-4daf-81E4-DFEE4931A4AA} - C:\Program Files\AskSBar\bar\1.bin\ASKSBAR.DLL
O3 - Toolbar: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll
O4 - HKLM\..\Run: [RemoteControl] C:\WINDOWS\System32\rmctrl.exe
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [COMODO Firewall Pro] "C:\Program Files\Comodo\Firewall\CPF.exe" /background
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [AOLSAV] C:\PROGRA~1\TECHCI~1\AOLSAV\AOLAgent.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\\NeroCheck.exe
O4 - HKLM\..\Run: [InCD] C:\Program Files\Ahead\InCD\InCD.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [EPSON Stylus Photo RX560 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIBPE.EXE /FU "C:\WINDOWS\TEMP\E_S266.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [ccleaner] "C:\Program Files\CCleaner\CCleaner.exe" /AUTO
O4 - HKCU\..\Run: [Uniblue RegistryBooster 2009] C:\Program Files\Uniblue\RegistryBooster\RegistryBooster.exe /S
O4 - HKCU\..\Run: [Auto EPSON Stylus Photo RX560 Series sur PC-DE-THOMAS] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIBPE.EXE /FU "C:\WINDOWS\TEMP\E_S29.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [\\Pc-de-thomas\EPSON Stylus Photo RX560 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIBPE.EXE /FU "C:\DOCUME~1\@\LOCALS~1\Temp\E_S5.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [Auto EPSON Stylus Photo RX560 Series sur PC-DE-LAETITIA] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIBPE.EXE /FU "C:\WINDOWS\TEMP\E_S20.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [\\Pc-de-laetitia\EPSON Stylus Photo RX560 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIBPE.EXE /FU "C:\DOCUME~1\@\LOCALS~1\Temp\E_S9.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [\\Pc-de-laetitia\EPSON Stylus Photo RX560 Series (Copie 3)] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIBPE.EXE /FU "C:\DOCUME~1\@\LOCALS~1\Temp\E_SC.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [Auto EPSON Stylus Photo RX560 Series sur Pc-de-laetitia (Copie 1)] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIBPE.EXE /FU "C:\WINDOWS\TEMP\E_SF.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [Auto EPSON Stylus Photo RX560 Series (Copie 3) sur Pc-de-laetitia (Copie 1)] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIBPE.EXE /FU "C:\WINDOWS\TEMP\E_S12.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [Auto EPSON Stylus Photo RX560 Series (Copie 1) sur PC-DE-LAETITIA] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIBPE.EXE /FU "C:\WINDOWS\TEMP\E_SB.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [Auto EPSON Stylus Photo RX560 Series sur Pc-de-laetitia (Copie 2)] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIBPE.EXE /FU "C:\WINDOWS\TEMP\E_SE.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [Auto EPSON Stylus Photo RX560 Series (Copie 2) sur PC-DE-LAETITIA] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIBPE.EXE /FU "C:\WINDOWS\TEMP\E_S7.tmp" /EF "HKCU"
O4 - Global Startup: AOL 9.0 Icône AOL.lnk = C:\Program Files\AOL 9.0\aoltray.exe
O8 - Extra context menu item: &Recherche AOL Toolbar - res://C:\Program Files\AOL Toolbar\toolbar.dll/SEARCH.HTML
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Ouvrir dans un nouvel onglet d'arrière-plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/229?70696ede427d4ba48f69a98de8f48e7e
O8 - Extra context menu item: Ouvrir dans un nouvel onglet de premier plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/230?70696ede427d4ba48f69a98de8f48e7e
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: AOL Toolbar - {3369AF0D-62E9-4bda-8103-B4C75499B578} - C:\Program Files\AOL\AOL Toolbar 4.0\aoltb.dll
O9 - Extra button: Capturer ! - {47055D63-DFCD-11d3-8406-00500445A7D0} - C:\Program Files\Goto\MemoWeb 4\IEBtn\Launcher (file missing)
O9 - Extra 'Tools' menuitem: Capturer ce web - {47055D63-DFCD-11d3-8406-00500445A7D0} - C:\Program Files\Goto\MemoWeb 4\IEBtn\Launcher (file missing)
O9 - Extra button: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll
O9 - Extra 'Tools' menuitem: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab31267.cab
O16 - DPF: {4A3CF76B-EC7A-405D-A67D-8DC6B52AB35B} (QDiagAOLCCUpdateObj Class) - http://aolcc.aol.fr/computercheckup/qdiagcc.cab
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} - http://download.av.fr.aol.com/molbin/shared/mcinsctl/fr/4,0,0,84/mcinsctl.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - https://www.touslesdrivers.com/index.php?v_page=29
O16 - DPF: {88764F69-3831-4EC1-B40B-FF21D8381345} (AdVerifierADPCtrl Class) - https://static.impots.gouv.fr/tdir/static/adpform/AdSignerADP-1.1.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {981D847D-2C06-4FB7-A09C-4F0A48601B2C} (DiagSetup Class) - http://techcity.aol.fr/download/img/DiagSetup.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://messenger.zone.msn.com/binary/ZIntro.cab56649.cab
O16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} - http://download.av.fr.aol.com/molbin/shared/mcgdmgr/fr/1,0,0,21/mcgdmgr.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab56986.cab
O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab31267.cab
O16 - DPF: {F8C5C0F1-D884-43EB-A5A0-9E1C4A102FA8} (GoPetsWeb Control) - https://secure.gopetslive.com/dev/GoPetsWeb.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{CD425DEC-7419-4234-B20F-7DA61636C73D}: NameServer = 192.168.30.1
O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Avira AntiVir Personal – Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: Avira AntiVir Personal – Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: AOL Connectivity Service (AOL ACS) - AOL LLC - C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
O23 - Service: Comodo Application Agent (CmdAgent) - COMODO - C:\Program Files\Comodo\Firewall\cmdagent.exe
O23 - Service: EPSON V3 Service4(01) (EPSON_PM_RPCV4_01) - SEIKO EPSON CORPORATION - C:\Documents and Settings\All Users\Application Data\EPSON\EPW!3 SSRP\E_S30RP1.EXE
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - C:\WINDOWS\wanmpsvc.exe
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:46:59, on 27/12/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16762)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
C:\Program Files\Comodo\Firewall\cmdagent.exe
C:\Documents and Settings\All Users\Application Data\EPSON\EPW!3 SSRP\E_S30RP1.EXE
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\wanmpsvc.exe
C:\WINDOWS\system32\SearchIndexer.exe
C:\WINDOWS\System32\rmctrl.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\PROGRA~1\TECHCI~1\AOLSAV\AOLAgent.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Ahead\InCD\InCD.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\WINDOWS\system32\RunDll32.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe
C:\Program Files\internet explorer\iexplore.exe
C:\WINDOWS\system32\SearchProtocolHost.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.bing.com/?cc=fr&toHttps=1&redig=55729C844D6A45819CAD368B3E178C9F
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.sfr.fr/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = https://www.bing.com/?FORM=TOOLBR&cc=fr&toHttps=1&redig=4527FFF1C12746FC9EDB535C75E80ECC
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,First Home Page = C:\Program Files\AOL Toolbar\welcome.html
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: (no name) - {0579B4B6-0293-4d73-B02D-5EBB0BA0F0A2} - C:\Program Files\AskSBar\SrchAstt\1.bin\A2SRCHAS.DLL
O2 - BHO: Ask Search Assistant BHO - {0579B4B1-0293-4d73-B02D-5EBB0BA0F0A2} - C:\Program Files\AskSBar\SrchAstt\1.bin\A2SRCHAS.DLL
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.0.926.3450\swg.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O2 - BHO: Ask Toolbar BHO - {F0D4B231-DA4B-4daf-81E4-DFEE4931A4AA} - C:\Program Files\AskSBar\bar\1.bin\ASKSBAR.DLL
O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: AOL Toolbar - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:\Program Files\AOL\AOL Toolbar 4.0\aoltb.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: Ask Toolbar - {F0D4B239-DA4B-4daf-81E4-DFEE4931A4AA} - C:\Program Files\AskSBar\bar\1.bin\ASKSBAR.DLL
O3 - Toolbar: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll
O4 - HKLM\..\Run: [RemoteControl] C:\WINDOWS\System32\rmctrl.exe
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [COMODO Firewall Pro] "C:\Program Files\Comodo\Firewall\CPF.exe" /background
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [AOLSAV] C:\PROGRA~1\TECHCI~1\AOLSAV\AOLAgent.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\\NeroCheck.exe
O4 - HKLM\..\Run: [InCD] C:\Program Files\Ahead\InCD\InCD.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [EPSON Stylus Photo RX560 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIBPE.EXE /FU "C:\WINDOWS\TEMP\E_S266.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [ccleaner] "C:\Program Files\CCleaner\CCleaner.exe" /AUTO
O4 - HKCU\..\Run: [Uniblue RegistryBooster 2009] C:\Program Files\Uniblue\RegistryBooster\RegistryBooster.exe /S
O4 - HKCU\..\Run: [Auto EPSON Stylus Photo RX560 Series sur PC-DE-THOMAS] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIBPE.EXE /FU "C:\WINDOWS\TEMP\E_S29.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [\\Pc-de-thomas\EPSON Stylus Photo RX560 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIBPE.EXE /FU "C:\DOCUME~1\@\LOCALS~1\Temp\E_S5.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [Auto EPSON Stylus Photo RX560 Series sur PC-DE-LAETITIA] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIBPE.EXE /FU "C:\WINDOWS\TEMP\E_S20.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [\\Pc-de-laetitia\EPSON Stylus Photo RX560 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIBPE.EXE /FU "C:\DOCUME~1\@\LOCALS~1\Temp\E_S9.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [\\Pc-de-laetitia\EPSON Stylus Photo RX560 Series (Copie 3)] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIBPE.EXE /FU "C:\DOCUME~1\@\LOCALS~1\Temp\E_SC.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [Auto EPSON Stylus Photo RX560 Series sur Pc-de-laetitia (Copie 1)] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIBPE.EXE /FU "C:\WINDOWS\TEMP\E_SF.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [Auto EPSON Stylus Photo RX560 Series (Copie 3) sur Pc-de-laetitia (Copie 1)] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIBPE.EXE /FU "C:\WINDOWS\TEMP\E_S12.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [Auto EPSON Stylus Photo RX560 Series (Copie 1) sur PC-DE-LAETITIA] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIBPE.EXE /FU "C:\WINDOWS\TEMP\E_SB.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [Auto EPSON Stylus Photo RX560 Series sur Pc-de-laetitia (Copie 2)] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIBPE.EXE /FU "C:\WINDOWS\TEMP\E_SE.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [Auto EPSON Stylus Photo RX560 Series (Copie 2) sur PC-DE-LAETITIA] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIBPE.EXE /FU "C:\WINDOWS\TEMP\E_S7.tmp" /EF "HKCU"
O4 - Global Startup: AOL 9.0 Icône AOL.lnk = C:\Program Files\AOL 9.0\aoltray.exe
O8 - Extra context menu item: &Recherche AOL Toolbar - res://C:\Program Files\AOL Toolbar\toolbar.dll/SEARCH.HTML
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Ouvrir dans un nouvel onglet d'arrière-plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/229?70696ede427d4ba48f69a98de8f48e7e
O8 - Extra context menu item: Ouvrir dans un nouvel onglet de premier plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/230?70696ede427d4ba48f69a98de8f48e7e
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: AOL Toolbar - {3369AF0D-62E9-4bda-8103-B4C75499B578} - C:\Program Files\AOL\AOL Toolbar 4.0\aoltb.dll
O9 - Extra button: Capturer ! - {47055D63-DFCD-11d3-8406-00500445A7D0} - C:\Program Files\Goto\MemoWeb 4\IEBtn\Launcher (file missing)
O9 - Extra 'Tools' menuitem: Capturer ce web - {47055D63-DFCD-11d3-8406-00500445A7D0} - C:\Program Files\Goto\MemoWeb 4\IEBtn\Launcher (file missing)
O9 - Extra button: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll
O9 - Extra 'Tools' menuitem: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab31267.cab
O16 - DPF: {4A3CF76B-EC7A-405D-A67D-8DC6B52AB35B} (QDiagAOLCCUpdateObj Class) - http://aolcc.aol.fr/computercheckup/qdiagcc.cab
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} - http://download.av.fr.aol.com/molbin/shared/mcinsctl/fr/4,0,0,84/mcinsctl.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - https://www.touslesdrivers.com/index.php?v_page=29
O16 - DPF: {88764F69-3831-4EC1-B40B-FF21D8381345} (AdVerifierADPCtrl Class) - https://static.impots.gouv.fr/tdir/static/adpform/AdSignerADP-1.1.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {981D847D-2C06-4FB7-A09C-4F0A48601B2C} (DiagSetup Class) - http://techcity.aol.fr/download/img/DiagSetup.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://messenger.zone.msn.com/binary/ZIntro.cab56649.cab
O16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} - http://download.av.fr.aol.com/molbin/shared/mcgdmgr/fr/1,0,0,21/mcgdmgr.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab56986.cab
O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab31267.cab
O16 - DPF: {F8C5C0F1-D884-43EB-A5A0-9E1C4A102FA8} (GoPetsWeb Control) - https://secure.gopetslive.com/dev/GoPetsWeb.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{CD425DEC-7419-4234-B20F-7DA61636C73D}: NameServer = 192.168.30.1
O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Avira AntiVir Personal – Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: Avira AntiVir Personal – Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: AOL Connectivity Service (AOL ACS) - AOL LLC - C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
O23 - Service: Comodo Application Agent (CmdAgent) - COMODO - C:\Program Files\Comodo\Firewall\cmdagent.exe
O23 - Service: EPSON V3 Service4(01) (EPSON_PM_RPCV4_01) - SEIKO EPSON CORPORATION - C:\Documents and Settings\All Users\Application Data\EPSON\EPW!3 SSRP\E_S30RP1.EXE
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - C:\WINDOWS\wanmpsvc.exe
A voir également:
- Virus ou pas ?
- Virus mcafee - Accueil - Piratage
- Virus facebook demande d'amis - Accueil - Facebook
- Virus informatique - Guide
- Panda anti virus gratuit - Télécharger - Antivirus & Antimalwares
- Undisclosed-recipients virus - Guide
33 réponses
▶ Relance Lop S&D
▶ Choisis cette fois ci l'Option 2 ( Suppression )
▶ Ne ferme pas la fenêtre lors de la suppression !
▶ Poste le rapport généré ( C:\lopR.txt )
( Si le Bureau ne réapparaît pas presse Ctrl + Alt + Suppr, Onglet Fichier,
Nouvelle tâche, tape explorer.exe et valide )
▶ Choisis cette fois ci l'Option 2 ( Suppression )
▶ Ne ferme pas la fenêtre lors de la suppression !
▶ Poste le rapport généré ( C:\lopR.txt )
( Si le Bureau ne réapparaît pas presse Ctrl + Alt + Suppr, Onglet Fichier,
Nouvelle tâche, tape explorer.exe et valide )
ouvre a nouveau hijackthis
clic sur "do a scan only"
selectionne la ligne suivante
R3 - Default URLSearchHook is missing
et clic sur fix checked
clic sur "do a scan only"
selectionne la ligne suivante
R3 - Default URLSearchHook is missing
et clic sur fix checked
--------------------\\ Lop S&D 4.2.5-0 XP/Vista
Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Uniprocessor Free : AMD Athlon(tm) XP 2500+ )
BIOS : Version 07.00T
USER : @ ( Administrator )
BOOT : Normal boot
Antivirus : Avira AntiVir PersonalEdition 8.0.1.30 (Activated)
Firewall : COMODO Firewall Pro 2.3.035 (Activated)
A:\ (USB)
C:\ (Local Disk) - NTFS - Total:76 Go (Free:9 Go)
D:\ (CD or DVD)
E:\ (CD or DVD)
"C:\Lop SD" ( MAJ : 19-12-2008|23:40 )
Option : [2] ( 28/12/2008|19:47 )
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ SUPPRESSION
Supprime! - C:\DOCUME~1\@\APPLIC~1\BitDownload\Data
Supprime! - C:\DOCUME~1\ALLUSE~1\MENUDM~1\PROGRA~1\BitDownload\BitDownload.lnk
Supprime! - C:\DOCUME~1\ALLUSE~1\MENUDM~1\PROGRA~1\BitDownload\Uninstall BitDownload.lnk
Supprime! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\flag ace stupid data
Supprime! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\Two Idol Wave Flag
Supprime! - C:\DOCUME~1\@\APPLIC~1\Bitdownload
Supprime! - C:\Program Files\Adverts
Supprime! - C:\DOCUME~1\ALLUSE~1\MENUDM~1\PROGRA~1\BitDownload
Supprime! - C:\DOCUME~1\@\APPLIC~1\UPLOAD~1
Supprime! - C:\Program Files\UPLOAD~1
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\
Supprime! - C:\Program Files\Viewpoint
Supprime! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\Viewpoint
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\
--------------------\\ Listing des dossiers dans APPLIC~1
[19/05/2008|10:55] C:\DOCUME~1\@\APPLIC~1\@
[04/12/2008|18:30] C:\DOCUME~1\@\APPLIC~1\Adobe
[08/05/2008|15:41] C:\DOCUME~1\@\APPLIC~1\AdobeUM
[01/06/2004|19:18] C:\DOCUME~1\@\APPLIC~1\AOL
[03/05/2008|11:54] C:\DOCUME~1\@\APPLIC~1\Application Data
[22/12/2003|22:35] C:\DOCUME~1\@\APPLIC~1\Arcsoft
[23/12/2008|17:22] C:\DOCUME~1\@\APPLIC~1\AVS4YOU
[26/06/2008|17:12] C:\DOCUME~1\@\APPLIC~1\Azureus
[04/12/2008|18:23] C:\DOCUME~1\@\APPLIC~1\Canneverbe_Limited
[15/12/2006|09:59] C:\DOCUME~1\@\APPLIC~1\Canon
[16/07/2008|20:52] C:\DOCUME~1\@\APPLIC~1\Comodo
[22/12/2003|18:38] C:\DOCUME~1\@\APPLIC~1\CyberLink
[04/12/2008|22:03] C:\DOCUME~1\@\APPLIC~1\DeepBurner
[11/02/2008|10:18] C:\DOCUME~1\@\APPLIC~1\DivX
[07/09/2004|08:30] C:\DOCUME~1\@\APPLIC~1\DMCache
[23/05/2008|03:55] C:\DOCUME~1\@\APPLIC~1\Documents and Settings
[05/06/2008|17:23] C:\DOCUME~1\@\APPLIC~1\dvdcss
[21/05/2007|17:13] C:\DOCUME~1\@\APPLIC~1\EPSON
[28/06/2008|10:24] C:\DOCUME~1\@\APPLIC~1\GetRightToGo
[04/05/2007|15:36] C:\DOCUME~1\@\APPLIC~1\Google
[22/10/2005|18:42] C:\DOCUME~1\@\APPLIC~1\GTek
[28/12/2006|14:51] C:\DOCUME~1\@\APPLIC~1\Help
[04/01/2004|15:58] C:\DOCUME~1\@\APPLIC~1\Identities
[22/12/2003|17:18] C:\DOCUME~1\@\APPLIC~1\InterTrust
[12/12/2008|18:13] C:\DOCUME~1\@\APPLIC~1\LimeWire
[22/06/2006|17:55] C:\DOCUME~1\@\APPLIC~1\Macromedia
[13/06/2008|15:07] C:\DOCUME~1\@\APPLIC~1\Malwarebytes
[01/03/2008|13:42] C:\DOCUME~1\@\APPLIC~1\Media Player Classic
[18/12/2008|23:09] C:\DOCUME~1\@\APPLIC~1\Microsoft
[07/12/2008|12:59] C:\DOCUME~1\@\APPLIC~1\Mozilla
[26/01/2008|23:15] C:\DOCUME~1\@\APPLIC~1\MP-Manager
[22/01/2005|18:26] C:\DOCUME~1\@\APPLIC~1\MSN6
[28/12/2006|07:41] C:\DOCUME~1\@\APPLIC~1\NetMedia Providers
[28/12/2006|07:41] C:\DOCUME~1\@\APPLIC~1\Publish Providers
[16/06/2008|22:29] C:\DOCUME~1\@\APPLIC~1\Real
[22/12/2003|17:21] C:\DOCUME~1\@\APPLIC~1\ScanSoft
[28/12/2006|07:41] C:\DOCUME~1\@\APPLIC~1\Sony
[03/07/2008|11:37] C:\DOCUME~1\@\APPLIC~1\Sony Corporation
[11/06/2007|19:27] C:\DOCUME~1\@\APPLIC~1\Sun
[13/12/2003|13:48] C:\DOCUME~1\@\APPLIC~1\Symantec
[17/06/2008|07:33] C:\DOCUME~1\@\APPLIC~1\Talkback
[17/04/2004|17:45] C:\DOCUME~1\@\APPLIC~1\Ulead Systems
[17/12/2008|18:53] C:\DOCUME~1\@\APPLIC~1\Uniblue
[01/03/2008|13:31] C:\DOCUME~1\@\APPLIC~1\vlc
[07/10/2007|10:36] C:\DOCUME~1\@\APPLIC~1\Windows Desktop Search
[01/06/2004|19:16] C:\DOCUME~1\@\APPLIC~1\You've Got Pictures Screensaver
[30/11/2007|08:17] C:\DOCUME~1\ADMINI~1\APPLIC~1\Microsoft
[18/12/2008|09:13] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[24/10/2008|17:53] C:\DOCUME~1\ALLUSE~1\APPLIC~1\AOL
[06/05/2007|10:37] C:\DOCUME~1\ALLUSE~1\APPLIC~1\AOL Downloads
[16/06/2008|21:23] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Avira
[23/12/2008|17:22] C:\DOCUME~1\ALLUSE~1\APPLIC~1\AVS4YOU
[26/06/2008|16:51] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Azureus
[16/07/2008|20:52] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Comodo
[13/12/2003|13:48] C:\DOCUME~1\ALLUSE~1\APPLIC~1\CyberLink
[20/12/2008|16:48] C:\DOCUME~1\ALLUSE~1\APPLIC~1\EPSON
[23/11/2008|10:35] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
[28/12/2008|18:52] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google Updater
[22/10/2005|18:42] C:\DOCUME~1\ALLUSE~1\APPLIC~1\GTek
[22/12/2008|23:09] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ma-config.com
[20/08/2004|18:05] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Macrovision
[13/06/2008|15:07] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Malwarebytes
[17/06/2008|13:14] C:\DOCUME~1\ALLUSE~1\APPLIC~1\McAfee.com
[12/06/2007|19:50] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Messenger Plus!
[18/12/2008|09:25] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[22/12/2003|18:09] C:\DOCUME~1\ALLUSE~1\APPLIC~1\MSN6
[13/10/2007|12:08] C:\DOCUME~1\ALLUSE~1\APPLIC~1\oozereadmedriveknob
[13/12/2008|15:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Player Metaboli
[22/04/2004|18:19] C:\DOCUME~1\ALLUSE~1\APPLIC~1\QuickTime
[22/12/2003|22:39] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ScanSoft
[16/06/2008|22:49] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy
[22/12/2003|22:41] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SSScanAppDataDir
[17/01/2004|12:20] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SSScanWizard
[19/03/2006|09:30] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec
[19/06/2008|17:20] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TEMP
[27/12/2006|19:14] C:\DOCUME~1\ALLUSE~1\APPLIC~1\UDL
[17/04/2004|17:44] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Ulead Systems
[16/08/2006|11:10] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[26/08/2006|10:23] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Live Toolbar
[14/12/2007|19:41] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
[30/11/2007|08:17] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[25/02/2008|16:43] C:\DOCUME~1\LOCALS~1\APPLIC~1\Adobe
[25/02/2008|16:43] C:\DOCUME~1\LOCALS~1\APPLIC~1\Google
[14/04/2006|18:35] C:\DOCUME~1\LOCALS~1\APPLIC~1\Macromedia
[22/03/2008|10:34] C:\DOCUME~1\LOCALS~1\APPLIC~1\Media Player Classic
[18/06/2008|06:26] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[10/02/2008|21:58] C:\DOCUME~1\LOCALS~1\APPLIC~1\Real
[13/10/2007|12:08] C:\DOCUME~1\LOCALS~1\APPLIC~1\UPLOADTRUST
[06/10/2007|10:11] C:\DOCUME~1\NETWOR~1\APPLIC~1\Identities
[06/10/2007|10:11] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
[25/01/2006|13:49] C:\DOCUME~1\NETWOR~1\APPLIC~1\Symantec
--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks
[28/12/2008 19:01][--a------] C:\WINDOWS\tasks\V‚rifier les mises … jour de Windows Live Toolbar.job
[28/12/2008 19:36][--a------] C:\WINDOWS\tasks\Symantec NetDetect.job
[28/12/2008 18:38][--ah-----] C:\WINDOWS\tasks\SA.DAT
[30/08/2002 13:00][-r-h-----] C:\WINDOWS\tasks\desktop.ini
--------------------\\ Listing des dossiers dans C:\Program Files
[13/12/2003|14:04] C:\Program Files\Adabas
[18/12/2008|09:13] C:\Program Files\Adobe
[30/06/2008|16:54] C:\Program Files\AGEIA Technologies
[04/12/2008|19:21] C:\Program Files\Ahead
[31/12/2003|09:11] C:\Program Files\Alawar
[09/05/2006|17:47] C:\Program Files\Alcohol Soft
[29/03/2006|11:52] C:\Program Files\Anuman Interactive
[06/05/2007|10:37] C:\Program Files\AOL
[24/10/2008|17:54] C:\Program Files\AOL 9.0
[26/12/2005|19:16] C:\Program Files\AOL 9.0b
[24/10/2008|17:53] C:\Program Files\AOL Compagnon
[24/10/2008|17:52] C:\Program Files\AOL Toolbar
[22/12/2003|17:20] C:\Program Files\ArcSoft
[26/06/2008|16:51] C:\Program Files\AskSBar
[16/12/2008|15:38] C:\Program Files\Astonsoft
[31/10/2008|22:23] C:\Program Files\AtomixMP3
[16/06/2008|21:23] C:\Program Files\Avira
[23/12/2008|17:21] C:\Program Files\AVS4YOU
[22/03/2006|14:54] C:\Program Files\AVSMedia
[26/06/2008|17:13] C:\Program Files\Azureus
[17/03/2007|19:54] C:\Program Files\Boonty
[17/03/2007|19:54] C:\Program Files\BoontyGames
[04/07/2008|07:25] C:\Program Files\Canon
[18/06/2008|06:00] C:\Program Files\CCleaner
[21/12/2006|09:49] C:\Program Files\CDRIPMP3
[13/12/2003|11:23] C:\Program Files\C-Media 3D Audio
[06/06/2008|16:42] C:\Program Files\Codec Pack - All In 1
[16/06/2008|22:01] C:\Program Files\Common Files
[16/07/2008|20:48] C:\Program Files\Comodo
[13/12/2003|10:45] C:\Program Files\ComPlus Applications
[13/12/2003|13:48] C:\Program Files\CyberLink
[28/06/2008|17:34] C:\Program Files\Dactylo
[08/07/2008|02:17] C:\Program Files\data
[29/07/2004|15:17] C:\Program Files\directx
[16/06/2008|22:22] C:\Program Files\DivX
[02/05/2006|18:47] C:\Program Files\Eazel
[01/05/2006|18:04] C:\Program Files\eMule
[05/06/2005|10:17] C:\Program Files\Enigma Software Productions
[27/12/2006|19:10] C:\Program Files\epson
[27/12/2006|19:09] C:\Program Files\EPSON Print CD
[24/10/2008|17:50] C:\Program Files\Fichiers communs
[27/03/2006|11:11] C:\Program Files\Free Audio Pack
[21/06/2008|07:31] C:\Program Files\FYI
[07/08/2005|08:23] C:\Program Files\GameSpy Arcade
[06/04/2005|18:08] C:\Program Files\GOA
[28/12/2008|19:32] C:\Program Files\Google
[17/04/2004|17:32] C:\Program Files\Goto
[13/12/2003|12:02] C:\Program Files\HighMAT CD Writing Wizard
[04/07/2008|07:26] C:\Program Files\Hijackthis Version Fran‡aise
[16/12/2008|15:43] C:\Program Files\InstallShield Installation Information
[04/06/2005|22:56] C:\Program Files\InterActual
[07/09/2004|08:42] C:\Program Files\Internet Download Manager
[12/12/2008|03:16] C:\Program Files\Internet Explorer
[07/12/2008|12:42] C:\Program Files\Java
[12/11/2007|22:51] C:\Program Files\JeCreeMaCuisineAvecLeroyMerlin
[01/03/2008|13:36] C:\Program Files\K-Lite Codec Pack
[17/10/2004|16:01] C:\Program Files\Kodak
[22/12/2008|23:31] C:\Program Files\Lavalys
[17/04/2004|17:30] C:\Program Files\Lavasoft
[01/06/2004|19:16] C:\Program Files\Learn2.com
[12/11/2007|22:56] C:\Program Files\Logitech
[22/12/2008|23:09] C:\Program Files\ma-config.com
[10/07/2007|21:34] C:\Program Files\MaCuisineLapeyre
[13/12/2003|13:46] C:\Program Files\MadOnion.com
[28/12/2008|15:53] C:\Program Files\Malwarebytes' Anti-Malware
[16/08/2008|10:55] C:\Program Files\Messenger
[02/09/2008|21:25] C:\Program Files\Messenger Plus! Live
[24/04/2006|19:39] C:\Program Files\Micro Application
[13/12/2003|10:47] C:\Program Files\microsoft frontpage
[19/12/2008|01:51] C:\Program Files\Microsoft Office
[06/10/2007|10:12] C:\Program Files\Microsoft SQL Server Compact Edition
[20/11/2004|13:49] C:\Program Files\Microsoft.NET
[13/08/2006|13:14] C:\Program Files\MindScape
[25/06/2008|18:46] C:\Program Files\Movie Maker
[27/12/2008|23:22] C:\Program Files\Mozilla Firefox
[26/01/2008|23:06] C:\Program Files\MPMAN
[03/12/2008|22:16] C:\Program Files\MSBuild
[19/12/2008|01:51] C:\Program Files\MSECache
[25/06/2008|18:46] C:\Program Files\msn
[13/12/2003|10:44] C:\Program Files\MSN Gaming Zone
[19/11/2006|03:03] C:\Program Files\MSXML 4.0
[17/10/2005|21:17] C:\Program Files\Multiplication Facts
[17/04/2004|17:37] C:\Program Files\MUSK Codec Pack v4
[03/10/2007|17:32] C:\Program Files\Navman
[25/06/2008|18:42] C:\Program Files\NetMeeting
[18/12/2008|10:23] C:\Program Files\Neuf
[30/12/2003|14:15] C:\Program Files\Nullsoft
[25/06/2008|18:42] C:\Program Files\Outlook Express
[20/03/2006|17:45] C:\Program Files\Oxilog
[29/11/2006|20:09] C:\Program Files\PAN vision
[23/12/2008|14:37] C:\Program Files\Photo Story 3 for Windows
[04/10/2008|10:28] C:\Program Files\Picasa2
[13/12/2008|15:50] C:\Program Files\Player Metaboli
[24/10/2008|17:52] C:\Program Files\QuickTime
[17/03/2006|11:17] C:\Program Files\QuickZip
[24/10/2008|17:51] C:\Program Files\Real
[03/12/2008|22:16] C:\Program Files\Reference Assemblies
[05/04/2005|18:22] C:\Program Files\Rockstar Games
[22/12/2003|17:21] C:\Program Files\ScanSoft
[13/12/2003|10:46] C:\Program Files\Services en ligne
[17/04/2004|16:15] C:\Program Files\Sierra On-Line
[15/03/2008|22:19] C:\Program Files\SimTractor 3.5
[13/12/2003|12:58] C:\Program Files\SiSoftware
[20/03/2006|16:38] C:\Program Files\SLD Codec Pack
[02/07/2008|20:58] C:\Program Files\Sony
[28/12/2006|07:32] C:\Program Files\Sony Setup
[16/06/2008|21:15] C:\Program Files\Spybot - Search & Destroy
[15/12/2007|14:08] C:\Program Files\Starcraft
[12/11/2007|23:00] C:\Program Files\StarOffice6.0
[25/06/2008|22:09] C:\Program Files\Sun
[19/03/2006|09:31] C:\Program Files\Symantec
[07/12/2005|19:10] C:\Program Files\TechCity Solutions
[02/04/2006|19:09] C:\Program Files\Ten Thumbs Typing Tutor 4.1
[22/11/2008|22:21] C:\Program Files\THQ
[27/12/2008|18:46] C:\Program Files\Trend Micro
[10/01/2007|10:29] C:\Program Files\Tropico
[10/01/2007|10:06] C:\Program Files\Ubi Soft
[13/12/2003|11:56] C:\Program Files\Uninstall Information
[01/03/2008|13:25] C:\Program Files\VideoLAN
[08/06/2008|19:19] C:\Program Files\Virtools Web Player 3.5
[26/05/2006|10:22] C:\Program Files\Virtual Magnifying Glass
[22/11/2008|14:46] C:\Program Files\VirtualDJ
[04/12/2008|23:17] C:\Program Files\VirtualDub
[04/12/2008|23:20] C:\Program Files\VirtualDub-1.7.0
[03/05/2004|14:22] C:\Program Files\Webteh
[06/10/2007|10:10] C:\Program Files\Windows Desktop Search
[28/02/2008|03:01] C:\Program Files\Windows Live
[14/12/2008|16:35] C:\Program Files\Windows Live Safety Center
[31/10/2007|03:01] C:\Program Files\Windows Live Toolbar
[03/01/2007|13:04] C:\Program Files\Windows Media Connect 2
[15/11/2008|09:25] C:\Program Files\Windows Media Player
[25/06/2008|18:42] C:\Program Files\Windows NT
[14/08/2004|12:21] C:\Program Files\WindowsUpdate
[16/03/2006|18:56] C:\Program Files\Winfall Publishing
[07/02/2004|11:14] C:\Program Files\WinRAR
[08/03/2005|20:43] C:\Program Files\WinZip
[13/12/2003|10:47] C:\Program Files\xerox
[01/04/2006|06:39] C:\Program Files\Xolox
[03/02/2008|19:12] C:\Program Files\X-OOM
[01/03/2008|13:34] C:\Program Files\XviD
[16/06/2008|22:40] C:\Program Files\Yahoo!
--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs
[24/05/2004|15:57] C:\Program Files\Fichiers communs\Adaptec Shared
[18/12/2008|09:13] C:\Program Files\Fichiers communs\Adobe
[20/08/2004|18:04] C:\Program Files\Fichiers communs\Adobe Systems Shared
[24/10/2008|17:51] C:\Program Files\Fichiers communs\AOL
[01/06/2004|19:17] C:\Program Files\Fichiers communs\aolback
[24/10/2008|17:52] C:\Program Files\Fichiers communs\aolshare
[23/12/2008|17:21] C:\Program Files\Fichiers communs\AVSMedia
[20/11/2004|13:50] C:\Program Files\Fichiers communs\DESIGNER
[05/06/2005|10:34] C:\Program Files\Fichiers communs\DirectX
[01/06/2004|19:58] C:\Program Files\Fichiers communs\fljletdl
[27/12/2006|19:17] C:\Program Files\Fichiers communs\InstallShield
[25/06/2008|22:21] C:\Program Files\Fichiers communs\Java
[17/10/2004|16:02] C:\Program Files\Fichiers communs\KODAK
[17/12/2004|19:26] C:\Program Files\Fichiers communs\Labtec
[23/12/2008|17:20] C:\Program Files\Fichiers communs\Microsoft Shared
[13/12/2003|10:45] C:\Program Files\Fichiers communs\MSSoap
[01/06/2004|19:15] C:\Program Files\Fichiers communs\Nullsoft
[13/12/2003|10:38] C:\Program Files\Fichiers communs\ODBC
[24/10/2008|17:51] C:\Program Files\Fichiers communs\Real
[19/04/2006|06:40] C:\Program Files\Fichiers communs\Scanner
[17/01/2004|12:20] C:\Program Files\Fichiers communs\ScanSoft Shared
[13/12/2003|10:45] C:\Program Files\Fichiers communs\Services
[13/12/2003|10:38] C:\Program Files\Fichiers communs\SpeechEngines
[10/05/2007|06:48] C:\Program Files\Fichiers communs\SWF Studio
[25/06/2008|18:42] C:\Program Files\Fichiers communs\System
[12/12/2007|15:14] C:\Program Files\Fichiers communs\WindowsLiveInstaller
[30/06/2008|16:54] C:\Program Files\Fichiers communs\Wise Installation Wizard
--------------------\\ Process
( 42 Processes )
... OK !
--------------------\\ Recherche avec S_Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Recherche de Fichiers / Dossiers Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Verification du Registre
..... OK !
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-12-28 19:48:57
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 338
--------------------\\ Recherche d'autres infections
--------------------\\ Cracks & Keygens ..
C:\DOCUME~1\@\Bureau\PHILIPPE\facade\eMule\Incoming\Architecte 3D 2005 version complete + KEYGEN
C:\DOCUME~1\@\Bureau\PHILIPPE\facade\eMule\Incoming\Architecte 3D 2006 french(Plan Maison Architecture) + crack
C:\DOCUME~1\@\Bureau\PHILIPPE\facade\eMule\Incoming\Architecte 3D 2005 version complete + KEYGEN\NEW.mdf
C:\DOCUME~1\@\Bureau\PHILIPPE\facade\eMule\Incoming\Architecte 3D 2005 version complete + KEYGEN\NEW.mds
C:\DOCUME~1\@\Bureau\PHILIPPE\facade\eMule\Incoming\Architecte 3D 2005 version complete + KEYGEN\SH3.mds
C:\DOCUME~1\@\Bureau\PHILIPPE\facade\eMule\Incoming\Architecte 3D 2006 french(Plan Maison Architecture) + crack\A LIRE ABSOLUMENT !!!.zip
C:\DOCUME~1\@\Bureau\PHILIPPE\facade\eMule\Incoming\Architecte 3D 2006 french(Plan Maison Architecture) + crack\Architecte3D
C:\DOCUME~1\@\Bureau\PHILIPPE\facade\eMule\Incoming\Architecte 3D 2006 french(Plan Maison Architecture) + crack\temp
C:\DOCUME~1\@\Bureau\PHILIPPE\facade\eMule\Incoming\Architecte 3D 2006 french(Plan Maison Architecture) + crack\Architecte3D\CD1
C:\DOCUME~1\@\Bureau\PHILIPPE\facade\eMule\Incoming\Architecte 3D 2006 french(Plan Maison Architecture) + crack\Architecte3D\CD2
C:\DOCUME~1\@\Bureau\PHILIPPE\facade\eMule\Incoming\Architecte 3D 2006 french(Plan Maison Architecture) + crack\Architecte3D\CD1\Architecte3D.zip
C:\DOCUME~1\@\Bureau\PHILIPPE\facade\eMule\Incoming\Architecte 3D 2006 french(Plan Maison Architecture) + crack\Architecte3D\CD2\Architecte3D_CD2.zip
C:\DOCUME~1\@\Bureau\PHILIPPE\facade\eMule\Incoming\Architecte 3D 2006 french(Plan Maison Architecture) + crack\temp\batpro1_100.exe
C:\DOCUME~1\@\Bureau\PHILIPPE\facade\eMule\Incoming\Architecte 3D 2006 french(Plan Maison Architecture) + crack\temp\KEYGEN.EXE
C:\DOCUME~1\@\Bureau\PHILIPPE\facade\eMule\Incoming\Architecte 3D 2006 french(Plan Maison Architecture) + crack\temp\Serial.txt
C:\DOCUME~1\@\Bureau\PHILIPPE\facade\eMule\Incoming\Logiciel Salon.Styler.Pro.(coiffure_maquillage)\Fantastique !!!\- CRACK EUROBARRE v1.4.exe
C:\DOCUME~1\@\Bureau\PHILIPPE\facade\eMule\Incoming\Logiciel Salon.Styler.Pro.(coiffure_maquillage)\Fantastique !!!\1 ETAPE grace au crack v1.4 gagner plus READ ME.doc
C:\DOCUME~1\@\Bureau\PHILIPPE\facade\eMule\Incoming\Logiciel Salon.Styler.Pro.(coiffure_maquillage)\Fantastique !!!\crack pour Eurobarre.reg
C:\DOCUME~1\@\Mes documents\Cracks architecte 3D00
C:\DOCUME~1\@\Mes documents\Cracks architecte 3D00.zip
C:\DOCUME~1\@\Mes documents\Downloads\Metadata\Deutsch AVS Audio Tools v3.x crack.exe.xml
C:\DOCUME~1\@\Mes documents\Downloads\Metadata\US AVS Audio Tools v3.x crack.exe.xml
C:\DOCUME~1\@\Mes documents\programe\Crack
C:\DOCUME~1\@\Mes documents\programe\Crack\AVS.Audio.Tools.v3.5.1.160-RES-crk.rar
C:\DOCUME~1\@\Mes documents\programe\Crack\AVSAUD~1
C:\DOCUME~1\@\Mes documents\programe\Crack\AVSAUD~1\licence.reg
C:\DOCUME~1\@\Mes documents\programe\Crack\AVSAUD~1\Manager.exe
C:\DOCUME~1\@\Mes documents\programe\Crack\AVSAUD~1\RESURRECTiON.nfo
C:\DOCUME~1\@\Mes documents\programe\Photoshop CS FRENCH\Adobe Photoshop CS V8.0 SafeCast Keygen Only-MiDNiGHT
C:\DOCUME~1\@\Mes documents\programe\Photoshop CS FRENCH\crack
C:\DOCUME~1\@\Mes documents\programe\Photoshop CS FRENCH\Adobe Photoshop CS V8.0 SafeCast Keygen Only-MiDNiGHT\midnight.nfo
C:\DOCUME~1\@\Mes documents\programe\Photoshop CS FRENCH\crack\adobelm.dll
C:\DOCUME~1\@\Mes documents\programe\Photoshop CS FRENCH\crack\lisezmoi.txt
C:\DOCUME~1\@\Mes documents\programe\Photoshop CS FRENCH\crack\tw10122.dat
[F:3][D:1]-> C:\DOCUME~1\@\LOCALS~1\Temp
[F:17][D:0]-> C:\DOCUME~1\@\Cookies
[F:231][D:4]-> C:\DOCUME~1\@\LOCALS~1\TEMPOR~1\content.IE5
1 - "C:\Lop SD\LopR_1.txt" - 28/12/2008|19:23 - Option : [1]
2 - "C:\Lop SD\LopR_2.txt" - 28/12/2008|19:51 - Option : [2]
--------------------\\ Fin du rapport a 19:51:07
Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Uniprocessor Free : AMD Athlon(tm) XP 2500+ )
BIOS : Version 07.00T
USER : @ ( Administrator )
BOOT : Normal boot
Antivirus : Avira AntiVir PersonalEdition 8.0.1.30 (Activated)
Firewall : COMODO Firewall Pro 2.3.035 (Activated)
A:\ (USB)
C:\ (Local Disk) - NTFS - Total:76 Go (Free:9 Go)
D:\ (CD or DVD)
E:\ (CD or DVD)
"C:\Lop SD" ( MAJ : 19-12-2008|23:40 )
Option : [2] ( 28/12/2008|19:47 )
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ SUPPRESSION
Supprime! - C:\DOCUME~1\@\APPLIC~1\BitDownload\Data
Supprime! - C:\DOCUME~1\ALLUSE~1\MENUDM~1\PROGRA~1\BitDownload\BitDownload.lnk
Supprime! - C:\DOCUME~1\ALLUSE~1\MENUDM~1\PROGRA~1\BitDownload\Uninstall BitDownload.lnk
Supprime! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\flag ace stupid data
Supprime! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\Two Idol Wave Flag
Supprime! - C:\DOCUME~1\@\APPLIC~1\Bitdownload
Supprime! - C:\Program Files\Adverts
Supprime! - C:\DOCUME~1\ALLUSE~1\MENUDM~1\PROGRA~1\BitDownload
Supprime! - C:\DOCUME~1\@\APPLIC~1\UPLOAD~1
Supprime! - C:\Program Files\UPLOAD~1
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\
Supprime! - C:\Program Files\Viewpoint
Supprime! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\Viewpoint
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\
--------------------\\ Listing des dossiers dans APPLIC~1
[19/05/2008|10:55] C:\DOCUME~1\@\APPLIC~1\@
[04/12/2008|18:30] C:\DOCUME~1\@\APPLIC~1\Adobe
[08/05/2008|15:41] C:\DOCUME~1\@\APPLIC~1\AdobeUM
[01/06/2004|19:18] C:\DOCUME~1\@\APPLIC~1\AOL
[03/05/2008|11:54] C:\DOCUME~1\@\APPLIC~1\Application Data
[22/12/2003|22:35] C:\DOCUME~1\@\APPLIC~1\Arcsoft
[23/12/2008|17:22] C:\DOCUME~1\@\APPLIC~1\AVS4YOU
[26/06/2008|17:12] C:\DOCUME~1\@\APPLIC~1\Azureus
[04/12/2008|18:23] C:\DOCUME~1\@\APPLIC~1\Canneverbe_Limited
[15/12/2006|09:59] C:\DOCUME~1\@\APPLIC~1\Canon
[16/07/2008|20:52] C:\DOCUME~1\@\APPLIC~1\Comodo
[22/12/2003|18:38] C:\DOCUME~1\@\APPLIC~1\CyberLink
[04/12/2008|22:03] C:\DOCUME~1\@\APPLIC~1\DeepBurner
[11/02/2008|10:18] C:\DOCUME~1\@\APPLIC~1\DivX
[07/09/2004|08:30] C:\DOCUME~1\@\APPLIC~1\DMCache
[23/05/2008|03:55] C:\DOCUME~1\@\APPLIC~1\Documents and Settings
[05/06/2008|17:23] C:\DOCUME~1\@\APPLIC~1\dvdcss
[21/05/2007|17:13] C:\DOCUME~1\@\APPLIC~1\EPSON
[28/06/2008|10:24] C:\DOCUME~1\@\APPLIC~1\GetRightToGo
[04/05/2007|15:36] C:\DOCUME~1\@\APPLIC~1\Google
[22/10/2005|18:42] C:\DOCUME~1\@\APPLIC~1\GTek
[28/12/2006|14:51] C:\DOCUME~1\@\APPLIC~1\Help
[04/01/2004|15:58] C:\DOCUME~1\@\APPLIC~1\Identities
[22/12/2003|17:18] C:\DOCUME~1\@\APPLIC~1\InterTrust
[12/12/2008|18:13] C:\DOCUME~1\@\APPLIC~1\LimeWire
[22/06/2006|17:55] C:\DOCUME~1\@\APPLIC~1\Macromedia
[13/06/2008|15:07] C:\DOCUME~1\@\APPLIC~1\Malwarebytes
[01/03/2008|13:42] C:\DOCUME~1\@\APPLIC~1\Media Player Classic
[18/12/2008|23:09] C:\DOCUME~1\@\APPLIC~1\Microsoft
[07/12/2008|12:59] C:\DOCUME~1\@\APPLIC~1\Mozilla
[26/01/2008|23:15] C:\DOCUME~1\@\APPLIC~1\MP-Manager
[22/01/2005|18:26] C:\DOCUME~1\@\APPLIC~1\MSN6
[28/12/2006|07:41] C:\DOCUME~1\@\APPLIC~1\NetMedia Providers
[28/12/2006|07:41] C:\DOCUME~1\@\APPLIC~1\Publish Providers
[16/06/2008|22:29] C:\DOCUME~1\@\APPLIC~1\Real
[22/12/2003|17:21] C:\DOCUME~1\@\APPLIC~1\ScanSoft
[28/12/2006|07:41] C:\DOCUME~1\@\APPLIC~1\Sony
[03/07/2008|11:37] C:\DOCUME~1\@\APPLIC~1\Sony Corporation
[11/06/2007|19:27] C:\DOCUME~1\@\APPLIC~1\Sun
[13/12/2003|13:48] C:\DOCUME~1\@\APPLIC~1\Symantec
[17/06/2008|07:33] C:\DOCUME~1\@\APPLIC~1\Talkback
[17/04/2004|17:45] C:\DOCUME~1\@\APPLIC~1\Ulead Systems
[17/12/2008|18:53] C:\DOCUME~1\@\APPLIC~1\Uniblue
[01/03/2008|13:31] C:\DOCUME~1\@\APPLIC~1\vlc
[07/10/2007|10:36] C:\DOCUME~1\@\APPLIC~1\Windows Desktop Search
[01/06/2004|19:16] C:\DOCUME~1\@\APPLIC~1\You've Got Pictures Screensaver
[30/11/2007|08:17] C:\DOCUME~1\ADMINI~1\APPLIC~1\Microsoft
[18/12/2008|09:13] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[24/10/2008|17:53] C:\DOCUME~1\ALLUSE~1\APPLIC~1\AOL
[06/05/2007|10:37] C:\DOCUME~1\ALLUSE~1\APPLIC~1\AOL Downloads
[16/06/2008|21:23] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Avira
[23/12/2008|17:22] C:\DOCUME~1\ALLUSE~1\APPLIC~1\AVS4YOU
[26/06/2008|16:51] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Azureus
[16/07/2008|20:52] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Comodo
[13/12/2003|13:48] C:\DOCUME~1\ALLUSE~1\APPLIC~1\CyberLink
[20/12/2008|16:48] C:\DOCUME~1\ALLUSE~1\APPLIC~1\EPSON
[23/11/2008|10:35] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
[28/12/2008|18:52] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google Updater
[22/10/2005|18:42] C:\DOCUME~1\ALLUSE~1\APPLIC~1\GTek
[22/12/2008|23:09] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ma-config.com
[20/08/2004|18:05] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Macrovision
[13/06/2008|15:07] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Malwarebytes
[17/06/2008|13:14] C:\DOCUME~1\ALLUSE~1\APPLIC~1\McAfee.com
[12/06/2007|19:50] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Messenger Plus!
[18/12/2008|09:25] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[22/12/2003|18:09] C:\DOCUME~1\ALLUSE~1\APPLIC~1\MSN6
[13/10/2007|12:08] C:\DOCUME~1\ALLUSE~1\APPLIC~1\oozereadmedriveknob
[13/12/2008|15:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Player Metaboli
[22/04/2004|18:19] C:\DOCUME~1\ALLUSE~1\APPLIC~1\QuickTime
[22/12/2003|22:39] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ScanSoft
[16/06/2008|22:49] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy
[22/12/2003|22:41] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SSScanAppDataDir
[17/01/2004|12:20] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SSScanWizard
[19/03/2006|09:30] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec
[19/06/2008|17:20] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TEMP
[27/12/2006|19:14] C:\DOCUME~1\ALLUSE~1\APPLIC~1\UDL
[17/04/2004|17:44] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Ulead Systems
[16/08/2006|11:10] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[26/08/2006|10:23] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Live Toolbar
[14/12/2007|19:41] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
[30/11/2007|08:17] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[25/02/2008|16:43] C:\DOCUME~1\LOCALS~1\APPLIC~1\Adobe
[25/02/2008|16:43] C:\DOCUME~1\LOCALS~1\APPLIC~1\Google
[14/04/2006|18:35] C:\DOCUME~1\LOCALS~1\APPLIC~1\Macromedia
[22/03/2008|10:34] C:\DOCUME~1\LOCALS~1\APPLIC~1\Media Player Classic
[18/06/2008|06:26] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[10/02/2008|21:58] C:\DOCUME~1\LOCALS~1\APPLIC~1\Real
[13/10/2007|12:08] C:\DOCUME~1\LOCALS~1\APPLIC~1\UPLOADTRUST
[06/10/2007|10:11] C:\DOCUME~1\NETWOR~1\APPLIC~1\Identities
[06/10/2007|10:11] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
[25/01/2006|13:49] C:\DOCUME~1\NETWOR~1\APPLIC~1\Symantec
--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks
[28/12/2008 19:01][--a------] C:\WINDOWS\tasks\V‚rifier les mises … jour de Windows Live Toolbar.job
[28/12/2008 19:36][--a------] C:\WINDOWS\tasks\Symantec NetDetect.job
[28/12/2008 18:38][--ah-----] C:\WINDOWS\tasks\SA.DAT
[30/08/2002 13:00][-r-h-----] C:\WINDOWS\tasks\desktop.ini
--------------------\\ Listing des dossiers dans C:\Program Files
[13/12/2003|14:04] C:\Program Files\Adabas
[18/12/2008|09:13] C:\Program Files\Adobe
[30/06/2008|16:54] C:\Program Files\AGEIA Technologies
[04/12/2008|19:21] C:\Program Files\Ahead
[31/12/2003|09:11] C:\Program Files\Alawar
[09/05/2006|17:47] C:\Program Files\Alcohol Soft
[29/03/2006|11:52] C:\Program Files\Anuman Interactive
[06/05/2007|10:37] C:\Program Files\AOL
[24/10/2008|17:54] C:\Program Files\AOL 9.0
[26/12/2005|19:16] C:\Program Files\AOL 9.0b
[24/10/2008|17:53] C:\Program Files\AOL Compagnon
[24/10/2008|17:52] C:\Program Files\AOL Toolbar
[22/12/2003|17:20] C:\Program Files\ArcSoft
[26/06/2008|16:51] C:\Program Files\AskSBar
[16/12/2008|15:38] C:\Program Files\Astonsoft
[31/10/2008|22:23] C:\Program Files\AtomixMP3
[16/06/2008|21:23] C:\Program Files\Avira
[23/12/2008|17:21] C:\Program Files\AVS4YOU
[22/03/2006|14:54] C:\Program Files\AVSMedia
[26/06/2008|17:13] C:\Program Files\Azureus
[17/03/2007|19:54] C:\Program Files\Boonty
[17/03/2007|19:54] C:\Program Files\BoontyGames
[04/07/2008|07:25] C:\Program Files\Canon
[18/06/2008|06:00] C:\Program Files\CCleaner
[21/12/2006|09:49] C:\Program Files\CDRIPMP3
[13/12/2003|11:23] C:\Program Files\C-Media 3D Audio
[06/06/2008|16:42] C:\Program Files\Codec Pack - All In 1
[16/06/2008|22:01] C:\Program Files\Common Files
[16/07/2008|20:48] C:\Program Files\Comodo
[13/12/2003|10:45] C:\Program Files\ComPlus Applications
[13/12/2003|13:48] C:\Program Files\CyberLink
[28/06/2008|17:34] C:\Program Files\Dactylo
[08/07/2008|02:17] C:\Program Files\data
[29/07/2004|15:17] C:\Program Files\directx
[16/06/2008|22:22] C:\Program Files\DivX
[02/05/2006|18:47] C:\Program Files\Eazel
[01/05/2006|18:04] C:\Program Files\eMule
[05/06/2005|10:17] C:\Program Files\Enigma Software Productions
[27/12/2006|19:10] C:\Program Files\epson
[27/12/2006|19:09] C:\Program Files\EPSON Print CD
[24/10/2008|17:50] C:\Program Files\Fichiers communs
[27/03/2006|11:11] C:\Program Files\Free Audio Pack
[21/06/2008|07:31] C:\Program Files\FYI
[07/08/2005|08:23] C:\Program Files\GameSpy Arcade
[06/04/2005|18:08] C:\Program Files\GOA
[28/12/2008|19:32] C:\Program Files\Google
[17/04/2004|17:32] C:\Program Files\Goto
[13/12/2003|12:02] C:\Program Files\HighMAT CD Writing Wizard
[04/07/2008|07:26] C:\Program Files\Hijackthis Version Fran‡aise
[16/12/2008|15:43] C:\Program Files\InstallShield Installation Information
[04/06/2005|22:56] C:\Program Files\InterActual
[07/09/2004|08:42] C:\Program Files\Internet Download Manager
[12/12/2008|03:16] C:\Program Files\Internet Explorer
[07/12/2008|12:42] C:\Program Files\Java
[12/11/2007|22:51] C:\Program Files\JeCreeMaCuisineAvecLeroyMerlin
[01/03/2008|13:36] C:\Program Files\K-Lite Codec Pack
[17/10/2004|16:01] C:\Program Files\Kodak
[22/12/2008|23:31] C:\Program Files\Lavalys
[17/04/2004|17:30] C:\Program Files\Lavasoft
[01/06/2004|19:16] C:\Program Files\Learn2.com
[12/11/2007|22:56] C:\Program Files\Logitech
[22/12/2008|23:09] C:\Program Files\ma-config.com
[10/07/2007|21:34] C:\Program Files\MaCuisineLapeyre
[13/12/2003|13:46] C:\Program Files\MadOnion.com
[28/12/2008|15:53] C:\Program Files\Malwarebytes' Anti-Malware
[16/08/2008|10:55] C:\Program Files\Messenger
[02/09/2008|21:25] C:\Program Files\Messenger Plus! Live
[24/04/2006|19:39] C:\Program Files\Micro Application
[13/12/2003|10:47] C:\Program Files\microsoft frontpage
[19/12/2008|01:51] C:\Program Files\Microsoft Office
[06/10/2007|10:12] C:\Program Files\Microsoft SQL Server Compact Edition
[20/11/2004|13:49] C:\Program Files\Microsoft.NET
[13/08/2006|13:14] C:\Program Files\MindScape
[25/06/2008|18:46] C:\Program Files\Movie Maker
[27/12/2008|23:22] C:\Program Files\Mozilla Firefox
[26/01/2008|23:06] C:\Program Files\MPMAN
[03/12/2008|22:16] C:\Program Files\MSBuild
[19/12/2008|01:51] C:\Program Files\MSECache
[25/06/2008|18:46] C:\Program Files\msn
[13/12/2003|10:44] C:\Program Files\MSN Gaming Zone
[19/11/2006|03:03] C:\Program Files\MSXML 4.0
[17/10/2005|21:17] C:\Program Files\Multiplication Facts
[17/04/2004|17:37] C:\Program Files\MUSK Codec Pack v4
[03/10/2007|17:32] C:\Program Files\Navman
[25/06/2008|18:42] C:\Program Files\NetMeeting
[18/12/2008|10:23] C:\Program Files\Neuf
[30/12/2003|14:15] C:\Program Files\Nullsoft
[25/06/2008|18:42] C:\Program Files\Outlook Express
[20/03/2006|17:45] C:\Program Files\Oxilog
[29/11/2006|20:09] C:\Program Files\PAN vision
[23/12/2008|14:37] C:\Program Files\Photo Story 3 for Windows
[04/10/2008|10:28] C:\Program Files\Picasa2
[13/12/2008|15:50] C:\Program Files\Player Metaboli
[24/10/2008|17:52] C:\Program Files\QuickTime
[17/03/2006|11:17] C:\Program Files\QuickZip
[24/10/2008|17:51] C:\Program Files\Real
[03/12/2008|22:16] C:\Program Files\Reference Assemblies
[05/04/2005|18:22] C:\Program Files\Rockstar Games
[22/12/2003|17:21] C:\Program Files\ScanSoft
[13/12/2003|10:46] C:\Program Files\Services en ligne
[17/04/2004|16:15] C:\Program Files\Sierra On-Line
[15/03/2008|22:19] C:\Program Files\SimTractor 3.5
[13/12/2003|12:58] C:\Program Files\SiSoftware
[20/03/2006|16:38] C:\Program Files\SLD Codec Pack
[02/07/2008|20:58] C:\Program Files\Sony
[28/12/2006|07:32] C:\Program Files\Sony Setup
[16/06/2008|21:15] C:\Program Files\Spybot - Search & Destroy
[15/12/2007|14:08] C:\Program Files\Starcraft
[12/11/2007|23:00] C:\Program Files\StarOffice6.0
[25/06/2008|22:09] C:\Program Files\Sun
[19/03/2006|09:31] C:\Program Files\Symantec
[07/12/2005|19:10] C:\Program Files\TechCity Solutions
[02/04/2006|19:09] C:\Program Files\Ten Thumbs Typing Tutor 4.1
[22/11/2008|22:21] C:\Program Files\THQ
[27/12/2008|18:46] C:\Program Files\Trend Micro
[10/01/2007|10:29] C:\Program Files\Tropico
[10/01/2007|10:06] C:\Program Files\Ubi Soft
[13/12/2003|11:56] C:\Program Files\Uninstall Information
[01/03/2008|13:25] C:\Program Files\VideoLAN
[08/06/2008|19:19] C:\Program Files\Virtools Web Player 3.5
[26/05/2006|10:22] C:\Program Files\Virtual Magnifying Glass
[22/11/2008|14:46] C:\Program Files\VirtualDJ
[04/12/2008|23:17] C:\Program Files\VirtualDub
[04/12/2008|23:20] C:\Program Files\VirtualDub-1.7.0
[03/05/2004|14:22] C:\Program Files\Webteh
[06/10/2007|10:10] C:\Program Files\Windows Desktop Search
[28/02/2008|03:01] C:\Program Files\Windows Live
[14/12/2008|16:35] C:\Program Files\Windows Live Safety Center
[31/10/2007|03:01] C:\Program Files\Windows Live Toolbar
[03/01/2007|13:04] C:\Program Files\Windows Media Connect 2
[15/11/2008|09:25] C:\Program Files\Windows Media Player
[25/06/2008|18:42] C:\Program Files\Windows NT
[14/08/2004|12:21] C:\Program Files\WindowsUpdate
[16/03/2006|18:56] C:\Program Files\Winfall Publishing
[07/02/2004|11:14] C:\Program Files\WinRAR
[08/03/2005|20:43] C:\Program Files\WinZip
[13/12/2003|10:47] C:\Program Files\xerox
[01/04/2006|06:39] C:\Program Files\Xolox
[03/02/2008|19:12] C:\Program Files\X-OOM
[01/03/2008|13:34] C:\Program Files\XviD
[16/06/2008|22:40] C:\Program Files\Yahoo!
--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs
[24/05/2004|15:57] C:\Program Files\Fichiers communs\Adaptec Shared
[18/12/2008|09:13] C:\Program Files\Fichiers communs\Adobe
[20/08/2004|18:04] C:\Program Files\Fichiers communs\Adobe Systems Shared
[24/10/2008|17:51] C:\Program Files\Fichiers communs\AOL
[01/06/2004|19:17] C:\Program Files\Fichiers communs\aolback
[24/10/2008|17:52] C:\Program Files\Fichiers communs\aolshare
[23/12/2008|17:21] C:\Program Files\Fichiers communs\AVSMedia
[20/11/2004|13:50] C:\Program Files\Fichiers communs\DESIGNER
[05/06/2005|10:34] C:\Program Files\Fichiers communs\DirectX
[01/06/2004|19:58] C:\Program Files\Fichiers communs\fljletdl
[27/12/2006|19:17] C:\Program Files\Fichiers communs\InstallShield
[25/06/2008|22:21] C:\Program Files\Fichiers communs\Java
[17/10/2004|16:02] C:\Program Files\Fichiers communs\KODAK
[17/12/2004|19:26] C:\Program Files\Fichiers communs\Labtec
[23/12/2008|17:20] C:\Program Files\Fichiers communs\Microsoft Shared
[13/12/2003|10:45] C:\Program Files\Fichiers communs\MSSoap
[01/06/2004|19:15] C:\Program Files\Fichiers communs\Nullsoft
[13/12/2003|10:38] C:\Program Files\Fichiers communs\ODBC
[24/10/2008|17:51] C:\Program Files\Fichiers communs\Real
[19/04/2006|06:40] C:\Program Files\Fichiers communs\Scanner
[17/01/2004|12:20] C:\Program Files\Fichiers communs\ScanSoft Shared
[13/12/2003|10:45] C:\Program Files\Fichiers communs\Services
[13/12/2003|10:38] C:\Program Files\Fichiers communs\SpeechEngines
[10/05/2007|06:48] C:\Program Files\Fichiers communs\SWF Studio
[25/06/2008|18:42] C:\Program Files\Fichiers communs\System
[12/12/2007|15:14] C:\Program Files\Fichiers communs\WindowsLiveInstaller
[30/06/2008|16:54] C:\Program Files\Fichiers communs\Wise Installation Wizard
--------------------\\ Process
( 42 Processes )
... OK !
--------------------\\ Recherche avec S_Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Recherche de Fichiers / Dossiers Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Verification du Registre
..... OK !
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-12-28 19:48:57
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 338
--------------------\\ Recherche d'autres infections
--------------------\\ Cracks & Keygens ..
C:\DOCUME~1\@\Bureau\PHILIPPE\facade\eMule\Incoming\Architecte 3D 2005 version complete + KEYGEN
C:\DOCUME~1\@\Bureau\PHILIPPE\facade\eMule\Incoming\Architecte 3D 2006 french(Plan Maison Architecture) + crack
C:\DOCUME~1\@\Bureau\PHILIPPE\facade\eMule\Incoming\Architecte 3D 2005 version complete + KEYGEN\NEW.mdf
C:\DOCUME~1\@\Bureau\PHILIPPE\facade\eMule\Incoming\Architecte 3D 2005 version complete + KEYGEN\NEW.mds
C:\DOCUME~1\@\Bureau\PHILIPPE\facade\eMule\Incoming\Architecte 3D 2005 version complete + KEYGEN\SH3.mds
C:\DOCUME~1\@\Bureau\PHILIPPE\facade\eMule\Incoming\Architecte 3D 2006 french(Plan Maison Architecture) + crack\A LIRE ABSOLUMENT !!!.zip
C:\DOCUME~1\@\Bureau\PHILIPPE\facade\eMule\Incoming\Architecte 3D 2006 french(Plan Maison Architecture) + crack\Architecte3D
C:\DOCUME~1\@\Bureau\PHILIPPE\facade\eMule\Incoming\Architecte 3D 2006 french(Plan Maison Architecture) + crack\temp
C:\DOCUME~1\@\Bureau\PHILIPPE\facade\eMule\Incoming\Architecte 3D 2006 french(Plan Maison Architecture) + crack\Architecte3D\CD1
C:\DOCUME~1\@\Bureau\PHILIPPE\facade\eMule\Incoming\Architecte 3D 2006 french(Plan Maison Architecture) + crack\Architecte3D\CD2
C:\DOCUME~1\@\Bureau\PHILIPPE\facade\eMule\Incoming\Architecte 3D 2006 french(Plan Maison Architecture) + crack\Architecte3D\CD1\Architecte3D.zip
C:\DOCUME~1\@\Bureau\PHILIPPE\facade\eMule\Incoming\Architecte 3D 2006 french(Plan Maison Architecture) + crack\Architecte3D\CD2\Architecte3D_CD2.zip
C:\DOCUME~1\@\Bureau\PHILIPPE\facade\eMule\Incoming\Architecte 3D 2006 french(Plan Maison Architecture) + crack\temp\batpro1_100.exe
C:\DOCUME~1\@\Bureau\PHILIPPE\facade\eMule\Incoming\Architecte 3D 2006 french(Plan Maison Architecture) + crack\temp\KEYGEN.EXE
C:\DOCUME~1\@\Bureau\PHILIPPE\facade\eMule\Incoming\Architecte 3D 2006 french(Plan Maison Architecture) + crack\temp\Serial.txt
C:\DOCUME~1\@\Bureau\PHILIPPE\facade\eMule\Incoming\Logiciel Salon.Styler.Pro.(coiffure_maquillage)\Fantastique !!!\- CRACK EUROBARRE v1.4.exe
C:\DOCUME~1\@\Bureau\PHILIPPE\facade\eMule\Incoming\Logiciel Salon.Styler.Pro.(coiffure_maquillage)\Fantastique !!!\1 ETAPE grace au crack v1.4 gagner plus READ ME.doc
C:\DOCUME~1\@\Bureau\PHILIPPE\facade\eMule\Incoming\Logiciel Salon.Styler.Pro.(coiffure_maquillage)\Fantastique !!!\crack pour Eurobarre.reg
C:\DOCUME~1\@\Mes documents\Cracks architecte 3D00
C:\DOCUME~1\@\Mes documents\Cracks architecte 3D00.zip
C:\DOCUME~1\@\Mes documents\Downloads\Metadata\Deutsch AVS Audio Tools v3.x crack.exe.xml
C:\DOCUME~1\@\Mes documents\Downloads\Metadata\US AVS Audio Tools v3.x crack.exe.xml
C:\DOCUME~1\@\Mes documents\programe\Crack
C:\DOCUME~1\@\Mes documents\programe\Crack\AVS.Audio.Tools.v3.5.1.160-RES-crk.rar
C:\DOCUME~1\@\Mes documents\programe\Crack\AVSAUD~1
C:\DOCUME~1\@\Mes documents\programe\Crack\AVSAUD~1\licence.reg
C:\DOCUME~1\@\Mes documents\programe\Crack\AVSAUD~1\Manager.exe
C:\DOCUME~1\@\Mes documents\programe\Crack\AVSAUD~1\RESURRECTiON.nfo
C:\DOCUME~1\@\Mes documents\programe\Photoshop CS FRENCH\Adobe Photoshop CS V8.0 SafeCast Keygen Only-MiDNiGHT
C:\DOCUME~1\@\Mes documents\programe\Photoshop CS FRENCH\crack
C:\DOCUME~1\@\Mes documents\programe\Photoshop CS FRENCH\Adobe Photoshop CS V8.0 SafeCast Keygen Only-MiDNiGHT\midnight.nfo
C:\DOCUME~1\@\Mes documents\programe\Photoshop CS FRENCH\crack\adobelm.dll
C:\DOCUME~1\@\Mes documents\programe\Photoshop CS FRENCH\crack\lisezmoi.txt
C:\DOCUME~1\@\Mes documents\programe\Photoshop CS FRENCH\crack\tw10122.dat
[F:3][D:1]-> C:\DOCUME~1\@\LOCALS~1\Temp
[F:17][D:0]-> C:\DOCUME~1\@\Cookies
[F:231][D:4]-> C:\DOCUME~1\@\LOCALS~1\TEMPOR~1\content.IE5
1 - "C:\Lop SD\LopR_1.txt" - 28/12/2008|19:23 - Option : [1]
2 - "C:\Lop SD\LopR_2.txt" - 28/12/2008|19:51 - Option : [2]
--------------------\\ Fin du rapport a 19:51:07
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
une derniere verif
passes sdfix absolument à faire en mode sans echec
Télécharge SDFix (créé par AndyManchesta) et sauvegarde le sur ton Bureau.
http://downloads.andymanchesta.com/RemovalTools/SDFix.exe
Double clique sur SDFix.exe et choisis Install pour l'extraire dans un dossier dédié sur le Bureau. Redémarre ton ordinateur en mode sans échec
------
= Redémarre en mode Sans Échec (le démarrage peut prendre plusieurs minutes)
Attention, pas d’accès à internet dans ce mode. Enregistre ou imprime les consignes.
Relance le Pc et tapote la touche F8 ( ou F5 pour certains) , jusqu’à l’apparition des inscriptions avec choix de démarrage
Avec les touches « flèches », sélectionne Mode sans échec ==> entrée ==>nom utilisateur habituel
-------
= Ouvre le dossier SDFix qui vient d'être créé dans le répertoire C:\ et double clique sur RunThis.bat pour lancer le script.
= Appuie sur Y pour commencer le processus de nettoyage.
= Il va supprimer les services et les entrées du Registre de certains trojans trouvés puis te demandera d'appuyer sur une touche pour redémarrer.
= Appuie sur une touche pour redémarrer le PC.
= Ton système sera plus long pour redémarrer qu'à l'accoutumée car l'outil va continuer à s'exécuter et supprimer des fichiers.
= Après le chargement du Bureau, l'outil terminera son travail et affichera Finished.
= Appuie sur une touche pour finir l'exécution du script et charger les icônes de ton Bureau.
= Les icônes du Bureau affichées, le rapport SDFix s'ouvrira à l'écran et s'enregistrera aussi dans le dossier SDFix sous le nom Report.txt.
= Enfin, copie/colle le contenu du fichier Report.txt dans ta prochaine réponse
TUTO: https://www.malekal.com/slenfbot-still-an-other-irc-bot/
passes sdfix absolument à faire en mode sans echec
Télécharge SDFix (créé par AndyManchesta) et sauvegarde le sur ton Bureau.
http://downloads.andymanchesta.com/RemovalTools/SDFix.exe
Double clique sur SDFix.exe et choisis Install pour l'extraire dans un dossier dédié sur le Bureau. Redémarre ton ordinateur en mode sans échec
------
= Redémarre en mode Sans Échec (le démarrage peut prendre plusieurs minutes)
Attention, pas d’accès à internet dans ce mode. Enregistre ou imprime les consignes.
Relance le Pc et tapote la touche F8 ( ou F5 pour certains) , jusqu’à l’apparition des inscriptions avec choix de démarrage
Avec les touches « flèches », sélectionne Mode sans échec ==> entrée ==>nom utilisateur habituel
-------
= Ouvre le dossier SDFix qui vient d'être créé dans le répertoire C:\ et double clique sur RunThis.bat pour lancer le script.
= Appuie sur Y pour commencer le processus de nettoyage.
= Il va supprimer les services et les entrées du Registre de certains trojans trouvés puis te demandera d'appuyer sur une touche pour redémarrer.
= Appuie sur une touche pour redémarrer le PC.
= Ton système sera plus long pour redémarrer qu'à l'accoutumée car l'outil va continuer à s'exécuter et supprimer des fichiers.
= Après le chargement du Bureau, l'outil terminera son travail et affichera Finished.
= Appuie sur une touche pour finir l'exécution du script et charger les icônes de ton Bureau.
= Les icônes du Bureau affichées, le rapport SDFix s'ouvrira à l'écran et s'enregistrera aussi dans le dossier SDFix sous le nom Report.txt.
= Enfin, copie/colle le contenu du fichier Report.txt dans ta prochaine réponse
TUTO: https://www.malekal.com/slenfbot-still-an-other-irc-bot/
bonsoir voila le rapport
[b]SDFix: Version 1.240 [/b]
Run by @ on 28/12/2008 at 20:47
Microsoft Windows XP [version 5.1.2600]
Running From: C:\SDFix
[b]Checking Services [/b]:
Restoring Default Security Values
Restoring Default Hosts File
Rebooting
[b]Checking Files [/b]:
No Trojan Files Found
Removing Temp Files
[b]ADS Check [/b]:
[b]Final Check [/b]:
catchme 0.3.1361.2 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-12-28 21:10:58
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden services & system hive ...
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04]
"h0"=dword:00000000
"ujdew"=hex:eb,93,69,3a,50,32,60,36,07,50,60,d5,03,b6,40,34,a7,a9,8d,c9,91,..
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4]
"h0"=dword:00000001
"khjeh"=hex:13,2d,64,8e,b4,c4,27,1d,a3,e9,1d,bd,14,72,ae,41,8b,ea,72,16,b7,..
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg]
"s0"=dword:1cacc672
"s1"=dword:605cf174
"s2"=dword:d8bee2eb
"h0"=dword:00000002
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04]
"h0"=dword:00000000
"ujdew"=hex:eb,93,69,3a,50,32,60,36,07,50,60,d5,03,b6,40,34,a7,a9,8d,c9,91,..
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4]
"h0"=dword:00000001
"khjeh"=hex:13,2d,64,8e,b4,c4,27,1d,a3,e9,1d,bd,14,72,ae,41,8b,ea,72,16,b7,..
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04]
"h0"=dword:00000000
"ujdew"=hex:eb,93,69,3a,50,32,60,36,07,50,60,d5,03,b6,40,34,a7,a9,8d,c9,91,..
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4]
"h0"=dword:00000001
"khjeh"=hex:13,2d,64,8e,b4,c4,27,1d,a3,e9,1d,bd,14,72,ae,41,8b,ea,72,16,b7,..
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04]
"h0"=dword:00000000
"ujdew"=hex:eb,93,69,3a,50,32,60,36,07,50,60,d5,03,b6,40,34,a7,a9,8d,c9,91,..
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4]
"h0"=dword:00000001
"khjeh"=hex:13,2d,64,8e,b4,c4,27,1d,a3,e9,1d,bd,14,72,ae,41,8b,ea,72,16,b7,..
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet005\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04]
"h0"=dword:00000000
"ujdew"=hex:eb,93,69,3a,50,32,60,36,07,50,60,d5,03,b6,40,34,a7,a9,8d,c9,91,..
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet005\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4]
"h0"=dword:00000001
"khjeh"=hex:13,2d,64,8e,b4,c4,27,1d,a3,e9,1d,bd,14,72,ae,41,8b,ea,72,16,b7,..
scanning hidden registry entries ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden services: 0
hidden files: 0
[b]Remaining Services [/b]:
Authorized Application Key Export:
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\eMule\\emule.exe"="C:\\Program Files\\eMule\\emule.exe:*:Enabled:eMule"
"C:\\Program Files\\Fichiers communs\\AOL\\ACS\\AOLDial.exe"="C:\\Program Files\\Fichiers communs\\AOL\\ACS\\AOLDial.exe:*:Enabled:AOL"
"C:\\Program Files\\Fichiers communs\\AOL\\ACS\\AOLacsd.exe"="C:\\Program Files\\Fichiers communs\\AOL\\ACS\\AOLacsd.exe:*:Enabled:AOL"
"C:\\Documents and Settings\\@\\Bureau\\PHILIPPE\\facade\\eMule\\emule.exe"="C:\\Documents and Settings\\@\\Bureau\\PHILIPPE\\facade\\eMule\\emule.exe:*:Enabled:eMule"
"C:\\Program Files\\Xolox\\XoloxEXE.exe"="C:\\Program Files\\Xolox\\XoloxEXE.exe:*:Enabled:Xolox"
"C:\\Starcraft\\StarCraft.exe"="C:\\Starcraft\\StarCraft.exe:*:Enabled:Starcraft"
"C:\\Program Files\\Messenger\\msmsgs.exe"="C:\\Program Files\\Messenger\\msmsgs.exe:*:Enabled:Windows Messenger"
"C:\\Program Files\\Kazaa\\kazaa.exe"="C:\\Program Files\\Kazaa\\kazaa.exe:*:Disabled:Kazaa Media Desktop"
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"="C:\\Program Files\\Windows Live\\Messenger\\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\Program Files\\Azureus\\Azureus.exe"="C:\\Program Files\\Azureus\\Azureus.exe:*:Disabled:Azureus"
"C:\\Program Files\\Worms 4 Mayhem Online Demo.exe"="C:\\Program Files\\Worms 4 Mayhem Online Demo.exe:*:Enabled:Worms 4 Mayhem"
"C:\\Program Files\\AOL 9.0\\waol.exe"="C:\\Program Files\\AOL 9.0\\waol.exe:*:Enabled:AOL"
"C:\\Program Files\\LimeWire\\LimeWire.exe"="C:\\Program Files\\LimeWire\\LimeWire.exe:*:Enabled:LimeWire"
"C:\\Program Files\\ma-config.com\\maconfservice.exe"="C:\\Program Files\\ma-config.com\\maconfservice.exe:LocalSubNet:Enabled:maconfservice"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\Fichiers communs\\AOL\\ACS\\AOLDial.exe"="C:\\Program Files\\Fichiers communs\\AOL\\ACS\\AOLDial.exe:*:Enabled:AOL"
"C:\\Program Files\\Fichiers communs\\AOL\\ACS\\AOLacsd.exe"="C:\\Program Files\\Fichiers communs\\AOL\\ACS\\AOLacsd.exe:*:Enabled:AOL"
"C:\\Program Files\\AOL 9.0a\\waol.exe"="C:\\Program Files\\AOL 9.0a\\waol.exe:*:Enabled:AOL"
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"="C:\\Program Files\\Windows Live\\Messenger\\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\Program Files\\AOL 9.0\\waol.exe"="C:\\Program Files\\AOL 9.0\\waol.exe:*:Enabled:AOL"
[b]Remaining Files [/b]:
[b]Files with Hidden Attributes [/b]:
Fri 9 Apr 2004 54,384 A..H. --- "C:\Program Files\AOL 9.0\aolphx.exe"
Fri 9 Apr 2004 156,784 A..H. --- "C:\Program Files\AOL 9.0\aoltray.exe"
Fri 9 Apr 2004 31,344 A..H. --- "C:\Program Files\AOL 9.0\RBM.exe"
Sat 4 Oct 2008 6,108,728 A..H. --- "C:\Program Files\Picasa2\setup.exe"
Mon 28 Jan 2008 1,404,240 A.SHR --- "C:\Program Files\Spybot - Search & Destroy\SDUpdate.exe"
Mon 28 Jan 2008 5,146,448 A.SHR --- "C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe"
Mon 28 Jan 2008 2,097,488 A.SHR --- "C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe"
Mon 14 Apr 2008 617,472 A.SH. --- "C:\WINDOWS\system32\comctl32.dll"
Mon 14 Apr 2008 1,028,096 A.SH. --- "C:\WINDOWS\system32\mfc42.dll"
Fri 30 Aug 2002 57,344 A.SH. --- "C:\WINDOWS\system32\mfc42loc.dll"
Mon 14 Apr 2008 413,696 A.SH. --- "C:\WINDOWS\system32\msvcp60.dll"
Mon 14 Apr 2008 343,040 A.SH. --- "C:\WINDOWS\system32\msvcrt.dll"
Fri 30 Aug 2002 253,952 A.SH. --- "C:\WINDOWS\system32\msvcrt20.dll"
Mon 14 Apr 2008 30,749 A.SH. --- "C:\WINDOWS\system32\vbajet32.dll"
Tue 12 Sep 2006 4,348 ..SH. --- "C:\Documents and Settings\All Users\DRM\DRMv1.bak"
Mon 14 Nov 2005 462 A..H. --- "C:\Program Files\InterActual\InterActual Player\itiD38.tmp"
Mon 5 Mar 2007 0 A.SH. --- "C:\Documents and Settings\All Users\DRM\Cache\Indiv01.tmp"
Sat 23 Dec 2006 1,077 A..H. --- "C:\Program Files\Fichiers communs\AOL\IPHSend\IPH.BAK"
Tue 12 Sep 2006 4,348 A..H. --- "C:\Documents and Settings\@\Mes documents\Ma musique\Sauvegarde de la licence\drmv1key.bak"
Tue 12 Sep 2006 20 A..H. --- "C:\Documents and Settings\@\Mes documents\Ma musique\Sauvegarde de la licence\drmv1lic.bak"
Tue 12 Sep 2006 400 A.SH. --- "C:\Documents and Settings\@\Mes documents\Ma musique\Sauvegarde de la licence\drmv2key.bak"
Tue 5 Aug 2008 17,995,272 A..H. --- "C:\Documents and Settings\All Users\Application Data\Google Updater\cache\BIT5.tmp"
Sat 22 Oct 2005 8 A..H. --- "C:\Documents and Settings\All Users\Application Data\GTek\GTUpdate\AUpdate\Channels\ch1\lock.tmp"
[b]Finished![/b]
[b]SDFix: Version 1.240 [/b]
Run by @ on 28/12/2008 at 20:47
Microsoft Windows XP [version 5.1.2600]
Running From: C:\SDFix
[b]Checking Services [/b]:
Restoring Default Security Values
Restoring Default Hosts File
Rebooting
[b]Checking Files [/b]:
No Trojan Files Found
Removing Temp Files
[b]ADS Check [/b]:
[b]Final Check [/b]:
catchme 0.3.1361.2 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-12-28 21:10:58
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden services & system hive ...
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04]
"h0"=dword:00000000
"ujdew"=hex:eb,93,69,3a,50,32,60,36,07,50,60,d5,03,b6,40,34,a7,a9,8d,c9,91,..
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4]
"h0"=dword:00000001
"khjeh"=hex:13,2d,64,8e,b4,c4,27,1d,a3,e9,1d,bd,14,72,ae,41,8b,ea,72,16,b7,..
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg]
"s0"=dword:1cacc672
"s1"=dword:605cf174
"s2"=dword:d8bee2eb
"h0"=dword:00000002
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04]
"h0"=dword:00000000
"ujdew"=hex:eb,93,69,3a,50,32,60,36,07,50,60,d5,03,b6,40,34,a7,a9,8d,c9,91,..
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4]
"h0"=dword:00000001
"khjeh"=hex:13,2d,64,8e,b4,c4,27,1d,a3,e9,1d,bd,14,72,ae,41,8b,ea,72,16,b7,..
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04]
"h0"=dword:00000000
"ujdew"=hex:eb,93,69,3a,50,32,60,36,07,50,60,d5,03,b6,40,34,a7,a9,8d,c9,91,..
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4]
"h0"=dword:00000001
"khjeh"=hex:13,2d,64,8e,b4,c4,27,1d,a3,e9,1d,bd,14,72,ae,41,8b,ea,72,16,b7,..
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04]
"h0"=dword:00000000
"ujdew"=hex:eb,93,69,3a,50,32,60,36,07,50,60,d5,03,b6,40,34,a7,a9,8d,c9,91,..
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4]
"h0"=dword:00000001
"khjeh"=hex:13,2d,64,8e,b4,c4,27,1d,a3,e9,1d,bd,14,72,ae,41,8b,ea,72,16,b7,..
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet005\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04]
"h0"=dword:00000000
"ujdew"=hex:eb,93,69,3a,50,32,60,36,07,50,60,d5,03,b6,40,34,a7,a9,8d,c9,91,..
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet005\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4]
"h0"=dword:00000001
"khjeh"=hex:13,2d,64,8e,b4,c4,27,1d,a3,e9,1d,bd,14,72,ae,41,8b,ea,72,16,b7,..
scanning hidden registry entries ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden services: 0
hidden files: 0
[b]Remaining Services [/b]:
Authorized Application Key Export:
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\eMule\\emule.exe"="C:\\Program Files\\eMule\\emule.exe:*:Enabled:eMule"
"C:\\Program Files\\Fichiers communs\\AOL\\ACS\\AOLDial.exe"="C:\\Program Files\\Fichiers communs\\AOL\\ACS\\AOLDial.exe:*:Enabled:AOL"
"C:\\Program Files\\Fichiers communs\\AOL\\ACS\\AOLacsd.exe"="C:\\Program Files\\Fichiers communs\\AOL\\ACS\\AOLacsd.exe:*:Enabled:AOL"
"C:\\Documents and Settings\\@\\Bureau\\PHILIPPE\\facade\\eMule\\emule.exe"="C:\\Documents and Settings\\@\\Bureau\\PHILIPPE\\facade\\eMule\\emule.exe:*:Enabled:eMule"
"C:\\Program Files\\Xolox\\XoloxEXE.exe"="C:\\Program Files\\Xolox\\XoloxEXE.exe:*:Enabled:Xolox"
"C:\\Starcraft\\StarCraft.exe"="C:\\Starcraft\\StarCraft.exe:*:Enabled:Starcraft"
"C:\\Program Files\\Messenger\\msmsgs.exe"="C:\\Program Files\\Messenger\\msmsgs.exe:*:Enabled:Windows Messenger"
"C:\\Program Files\\Kazaa\\kazaa.exe"="C:\\Program Files\\Kazaa\\kazaa.exe:*:Disabled:Kazaa Media Desktop"
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"="C:\\Program Files\\Windows Live\\Messenger\\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\Program Files\\Azureus\\Azureus.exe"="C:\\Program Files\\Azureus\\Azureus.exe:*:Disabled:Azureus"
"C:\\Program Files\\Worms 4 Mayhem Online Demo.exe"="C:\\Program Files\\Worms 4 Mayhem Online Demo.exe:*:Enabled:Worms 4 Mayhem"
"C:\\Program Files\\AOL 9.0\\waol.exe"="C:\\Program Files\\AOL 9.0\\waol.exe:*:Enabled:AOL"
"C:\\Program Files\\LimeWire\\LimeWire.exe"="C:\\Program Files\\LimeWire\\LimeWire.exe:*:Enabled:LimeWire"
"C:\\Program Files\\ma-config.com\\maconfservice.exe"="C:\\Program Files\\ma-config.com\\maconfservice.exe:LocalSubNet:Enabled:maconfservice"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\Fichiers communs\\AOL\\ACS\\AOLDial.exe"="C:\\Program Files\\Fichiers communs\\AOL\\ACS\\AOLDial.exe:*:Enabled:AOL"
"C:\\Program Files\\Fichiers communs\\AOL\\ACS\\AOLacsd.exe"="C:\\Program Files\\Fichiers communs\\AOL\\ACS\\AOLacsd.exe:*:Enabled:AOL"
"C:\\Program Files\\AOL 9.0a\\waol.exe"="C:\\Program Files\\AOL 9.0a\\waol.exe:*:Enabled:AOL"
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"="C:\\Program Files\\Windows Live\\Messenger\\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\Program Files\\AOL 9.0\\waol.exe"="C:\\Program Files\\AOL 9.0\\waol.exe:*:Enabled:AOL"
[b]Remaining Files [/b]:
[b]Files with Hidden Attributes [/b]:
Fri 9 Apr 2004 54,384 A..H. --- "C:\Program Files\AOL 9.0\aolphx.exe"
Fri 9 Apr 2004 156,784 A..H. --- "C:\Program Files\AOL 9.0\aoltray.exe"
Fri 9 Apr 2004 31,344 A..H. --- "C:\Program Files\AOL 9.0\RBM.exe"
Sat 4 Oct 2008 6,108,728 A..H. --- "C:\Program Files\Picasa2\setup.exe"
Mon 28 Jan 2008 1,404,240 A.SHR --- "C:\Program Files\Spybot - Search & Destroy\SDUpdate.exe"
Mon 28 Jan 2008 5,146,448 A.SHR --- "C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe"
Mon 28 Jan 2008 2,097,488 A.SHR --- "C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe"
Mon 14 Apr 2008 617,472 A.SH. --- "C:\WINDOWS\system32\comctl32.dll"
Mon 14 Apr 2008 1,028,096 A.SH. --- "C:\WINDOWS\system32\mfc42.dll"
Fri 30 Aug 2002 57,344 A.SH. --- "C:\WINDOWS\system32\mfc42loc.dll"
Mon 14 Apr 2008 413,696 A.SH. --- "C:\WINDOWS\system32\msvcp60.dll"
Mon 14 Apr 2008 343,040 A.SH. --- "C:\WINDOWS\system32\msvcrt.dll"
Fri 30 Aug 2002 253,952 A.SH. --- "C:\WINDOWS\system32\msvcrt20.dll"
Mon 14 Apr 2008 30,749 A.SH. --- "C:\WINDOWS\system32\vbajet32.dll"
Tue 12 Sep 2006 4,348 ..SH. --- "C:\Documents and Settings\All Users\DRM\DRMv1.bak"
Mon 14 Nov 2005 462 A..H. --- "C:\Program Files\InterActual\InterActual Player\itiD38.tmp"
Mon 5 Mar 2007 0 A.SH. --- "C:\Documents and Settings\All Users\DRM\Cache\Indiv01.tmp"
Sat 23 Dec 2006 1,077 A..H. --- "C:\Program Files\Fichiers communs\AOL\IPHSend\IPH.BAK"
Tue 12 Sep 2006 4,348 A..H. --- "C:\Documents and Settings\@\Mes documents\Ma musique\Sauvegarde de la licence\drmv1key.bak"
Tue 12 Sep 2006 20 A..H. --- "C:\Documents and Settings\@\Mes documents\Ma musique\Sauvegarde de la licence\drmv1lic.bak"
Tue 12 Sep 2006 400 A.SH. --- "C:\Documents and Settings\@\Mes documents\Ma musique\Sauvegarde de la licence\drmv2key.bak"
Tue 5 Aug 2008 17,995,272 A..H. --- "C:\Documents and Settings\All Users\Application Data\Google Updater\cache\BIT5.tmp"
Sat 22 Oct 2005 8 A..H. --- "C:\Documents and Settings\All Users\Application Data\GTek\GTUpdate\AUpdate\Channels\ch1\lock.tmp"
[b]Finished![/b]
apparament tous va bien je pense que c'est reparti je te remercie pour avoir pris sur ton temps pour me dépaner et bravo pour tes connaissances en te remercient encore @+
utilise le programme suivant pour desinstaller tout les fix que l on a utilisé bon courage pour la suite clic resolu
Télécharge ToolsCleaner sur ton bureau.
-->
https://www.commentcamarche.net/telecharger/ 34055291 toolscleaner
# Clique sur "Recherche" et laisse le scan agir ...
# Clique sur "Suppression" pour finaliser.
# Tu peux, si tu le souhaites, te servir des Options facultatives.
# Clique sur Quitter pour obtenir le rapport.
# Poste le rapport (TCleaner.txt) qui se trouve à la racine de ton disque dur (C:\).
ensuite
Télécharges : - CCleaner (n'installe pas la barre d'outil Yahoo)
https://www.pcastuces.com/logitheque/ccleaner.htm
Ce logiciel va permettre de supprimer tous les fichiers temporaires et de corrigé ton registre .Lors de l'installation, avant de cliquer sur le bouton "installer", décoche toutes les "options supplémentaires" sauf les 2 première.
Une fois le prg instalé et lancé, Clique sur "Options", "Avancé" et décoche la case "Effacer uniquement les fichiers, du dossier Temp de Windows, plus vieux que 48 heures"( Par la suite, laisse-le avec ses réglages par défaut. C'est tout ).
Un tuto ( aide ):
http://perso.orange.fr/jesses/Docs/Logiciels/CCleaner.htm
---> Utilisation:
! déconnectes toi et fermes toutes applications en cours !
* vas dans "nettoyeur" : fait analyse puis nettoyage
* vas dans "registre" : fait chercher les erreurs et réparer ( plusieurs fois jusqu'à ce qu'il n'y est plus d'erreur ) .
( CCleaner : soft à garder sur son PC , super utile pour de bons nettoyages ... )
et bientot sur les forums
Télécharge ToolsCleaner sur ton bureau.
-->
https://www.commentcamarche.net/telecharger/ 34055291 toolscleaner
# Clique sur "Recherche" et laisse le scan agir ...
# Clique sur "Suppression" pour finaliser.
# Tu peux, si tu le souhaites, te servir des Options facultatives.
# Clique sur Quitter pour obtenir le rapport.
# Poste le rapport (TCleaner.txt) qui se trouve à la racine de ton disque dur (C:\).
ensuite
Télécharges : - CCleaner (n'installe pas la barre d'outil Yahoo)
https://www.pcastuces.com/logitheque/ccleaner.htm
Ce logiciel va permettre de supprimer tous les fichiers temporaires et de corrigé ton registre .Lors de l'installation, avant de cliquer sur le bouton "installer", décoche toutes les "options supplémentaires" sauf les 2 première.
Une fois le prg instalé et lancé, Clique sur "Options", "Avancé" et décoche la case "Effacer uniquement les fichiers, du dossier Temp de Windows, plus vieux que 48 heures"( Par la suite, laisse-le avec ses réglages par défaut. C'est tout ).
Un tuto ( aide ):
http://perso.orange.fr/jesses/Docs/Logiciels/CCleaner.htm
---> Utilisation:
! déconnectes toi et fermes toutes applications en cours !
* vas dans "nettoyeur" : fait analyse puis nettoyage
* vas dans "registre" : fait chercher les erreurs et réparer ( plusieurs fois jusqu'à ce qu'il n'y est plus d'erreur ) .
( CCleaner : soft à garder sur son PC , super utile pour de bons nettoyages ... )
et bientot sur les forums
voila le rapport que tuas demander et encore merci por tous
[ Rapport ToolsCleaner version 2.2.9 (par A.Rothstein & dj QUIOU) ]
-->- Recherche:
C:\fixnavi.txt: trouvé !
C:\cleannavi.txt: trouvé !
C:\lopR.txt: trouvé !
C:\TB.txt: trouvé !
C:\SDFIX: trouvé !
C:\Lop SD: trouvé !
C:\Toolbar SD: trouvé !
C:\Documents and Settings\@\Bureau\HijackThis.lnk: trouvé !
C:\Documents and Settings\@\Bureau\SmitFraudFix.exe: trouvé !
C:\Documents and Settings\@\Bureau\SmitFraudfix: trouvé !
C:\Documents and Settings\@\Mes documents\programe\SdFix.exe: trouvé !
C:\Documents and Settings\@\Mes documents\programe\LopSD.exe: trouvé !
C:\Documents and Settings\@\Mes documents\programe\HJTInstall.exe: trouvé !
C:\Documents and Settings\@\Mes documents\programe\ToolBarSD.exe: trouvé !
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis: trouvé !
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis\HijackThis.lnk: trouvé !
C:\nettoyage\TB.txt: trouvé !
C:\Program Files\Hijackthis Version Française\hijackthis.log: trouvé !
C:\Program Files\Trend Micro\HijackThis: trouvé !
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe: trouvé !
C:\Program Files\Trend Micro\HijackThis\hijackthis.log: trouvé !
C:\WINDOWS\ERUNT\SDFIX: trouvé !
---------------------------------
-->- Suppression:
C:\Documents and Settings\@\Bureau\HijackThis.lnk: supprimé !
C:\Documents and Settings\@\Bureau\SmitFraudFix.exe: supprimé !
C:\Documents and Settings\@\Mes documents\programe\SdFix.exe: supprimé !
C:\Documents and Settings\@\Mes documents\programe\LopSD.exe: supprimé !
C:\Documents and Settings\@\Mes documents\programe\HJTInstall.exe: supprimé !
C:\Documents and Settings\@\Mes documents\programe\ToolBarSD.exe: supprimé !
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis\HijackThis.lnk: supprimé !
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe: supprimé !
C:\fixnavi.txt: supprimé !
C:\cleannavi.txt: supprimé !
C:\lopR.txt: supprimé !
C:\TB.txt: supprimé !
C:\nettoyage\TB.txt: supprimé !
C:\Program Files\Hijackthis Version Française\hijackthis.log: supprimé !
C:\Program Files\Trend Micro\HijackThis\hijackthis.log: supprimé !
C:\SDFIX: supprimé !
C:\Lop SD: supprimé !
C:\Toolbar SD: supprimé !
C:\Documents and Settings\@\Bureau\SmitFraudfix: supprimé !
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis: supprimé !
C:\Program Files\Trend Micro\HijackThis: supprimé !
C:\WINDOWS\ERUNT\SDFIX: supprimé !
[ Rapport ToolsCleaner version 2.2.9 (par A.Rothstein & dj QUIOU) ]
-->- Recherche:
C:\fixnavi.txt: trouvé !
C:\cleannavi.txt: trouvé !
C:\lopR.txt: trouvé !
C:\TB.txt: trouvé !
C:\SDFIX: trouvé !
C:\Lop SD: trouvé !
C:\Toolbar SD: trouvé !
C:\Documents and Settings\@\Bureau\HijackThis.lnk: trouvé !
C:\Documents and Settings\@\Bureau\SmitFraudFix.exe: trouvé !
C:\Documents and Settings\@\Bureau\SmitFraudfix: trouvé !
C:\Documents and Settings\@\Mes documents\programe\SdFix.exe: trouvé !
C:\Documents and Settings\@\Mes documents\programe\LopSD.exe: trouvé !
C:\Documents and Settings\@\Mes documents\programe\HJTInstall.exe: trouvé !
C:\Documents and Settings\@\Mes documents\programe\ToolBarSD.exe: trouvé !
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis: trouvé !
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis\HijackThis.lnk: trouvé !
C:\nettoyage\TB.txt: trouvé !
C:\Program Files\Hijackthis Version Française\hijackthis.log: trouvé !
C:\Program Files\Trend Micro\HijackThis: trouvé !
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe: trouvé !
C:\Program Files\Trend Micro\HijackThis\hijackthis.log: trouvé !
C:\WINDOWS\ERUNT\SDFIX: trouvé !
---------------------------------
-->- Suppression:
C:\Documents and Settings\@\Bureau\HijackThis.lnk: supprimé !
C:\Documents and Settings\@\Bureau\SmitFraudFix.exe: supprimé !
C:\Documents and Settings\@\Mes documents\programe\SdFix.exe: supprimé !
C:\Documents and Settings\@\Mes documents\programe\LopSD.exe: supprimé !
C:\Documents and Settings\@\Mes documents\programe\HJTInstall.exe: supprimé !
C:\Documents and Settings\@\Mes documents\programe\ToolBarSD.exe: supprimé !
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis\HijackThis.lnk: supprimé !
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe: supprimé !
C:\fixnavi.txt: supprimé !
C:\cleannavi.txt: supprimé !
C:\lopR.txt: supprimé !
C:\TB.txt: supprimé !
C:\nettoyage\TB.txt: supprimé !
C:\Program Files\Hijackthis Version Française\hijackthis.log: supprimé !
C:\Program Files\Trend Micro\HijackThis\hijackthis.log: supprimé !
C:\SDFIX: supprimé !
C:\Lop SD: supprimé !
C:\Toolbar SD: supprimé !
C:\Documents and Settings\@\Bureau\SmitFraudfix: supprimé !
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis: supprimé !
C:\Program Files\Trend Micro\HijackThis: supprimé !
C:\WINDOWS\ERUNT\SDFIX: supprimé !