Winupgro.exe

sabine -  
 franck -
Bonjour,
voila comme les autres je suis infecté par winupgro.exe
je ne peux pas démarrer en mode sans échec, plus de son, plus d antivirus et j en passe.
je vous le rapport findykill:

----------------- FindyKill V4.710 ------------------

* User : Administrateur - SABINE-C91ECD6E
* Emplacement : C:\Program Files\FindyKill
* Outils Mis a jours le 21/12/08 par Chiquitine29
* Recherche effectuée à 21:18:13 le 28/12/2008
* Windows XP - Internet Explorer 6.0.2900.2180

((((((((((((((((( *** Recherche *** ))))))))))))))))))

--------------- [ Processus actifs ] ----------------

C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\agrsmsvc.exe
C:\WINDOWS\System32\FTRTSVC.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\system32\VTTimer.exe
C:\PROGRA~1\Wanadoo\TaskBarIcon.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Documents and Settings\Administrateur\Application Data\drivers\winupgro.exe
C:\Program Files\Samsung\Digimax Viewer 2.0\STImgBrowser.exe
C:\WINDOWS\System32\svchost.exe

--------------- [ Processus infectieux stoppés ] ----------------

"C:\Documents and Settings\Administrateur\Application Data\drivers\winupgro.exe" (600)

--------------- [ Fichiers/Dossiers infectieux ] ----------------

»»»» Presence des fichiers dans C:

»»»» Presence des fichiers dans C:\WINDOWS

»»»» Presence des fichiers dans C:\WINDOWS\Prefetch

Found ! - C:\WINDOWS\prefetch\1264125.EXE-28DFBB09.pf
Found ! - C:\WINDOWS\prefetch\1300390.EXE-3924C373.pf
Found ! - C:\WINDOWS\prefetch\405093.EXE-360D79F7.pf
Found ! - C:\WINDOWS\prefetch\465640.EXE-0161D9C3.pf
Found ! - C:\WINDOWS\prefetch\511562.EXE-142C84D7.pf
Found ! - C:\WINDOWS\prefetch\555250.EXE-34650101.pf
Found ! - C:\WINDOWS\prefetch\578484.EXE-36C2671F.pf
Found ! - C:\WINDOWS\prefetch\68734.EXE-2F463DDE.pf
Found ! - C:\WINDOWS\prefetch\882875.EXE-1D691AD8.pf
Found ! - C:\WINDOWS\prefetch\91953.EXE-2D197016.pf
Found ! - C:\WINDOWS\prefetch\FLEC006.EXE-0695BA6E.pf
Found ! - C:\WINDOWS\prefetch\MDELK.EXE-1D176F91.pf
Found ! - C:\WINDOWS\prefetch\WINTEMS.EXE-2A563F9B.pf

»»»» Presence des fichiers dans C:\WINDOWS\system32

Found ! [28/12/2008 20:41] - C:\WINDOWS\system32\mdelk.exe
Found ! [28/12/2008 20:41] - C:\WINDOWS\system32\wintems.exe
Found ! [28/12/2008 20:41] - C:\WINDOWS\system32\ban_list.txt

»»»» Presence des fichiers dans C:\WINDOWS\system32\config\systemprofile\AppData\Roaming

»»»» Presence des fichiers dans C:\WINDOWS\system32\drivers

»»»» Presence des fichiers dans C:\Documents and Settings\Administrateur\Application Data

Found ! [28/12/2008 16:45] - "C:\Documents and Settings\Administrateur\Application Data\m\flec006.exe"
Found ! [28/12/2008 19:18] - "C:\Documents and Settings\Administrateur\Application Data\m\list.oct"
Found ! [28/12/2008 19:31] - "C:\Documents and Settings\Administrateur\Application Data\m\data.oct"
Found ! [28/12/2008 19:31] - "C:\Documents and Settings\Administrateur\Application Data\m\srvlist.oct"
Found ! [28/12/2008 20:42] - "C:\Documents and Settings\Administrateur\Application Data\m\shared"
Found ! [25/12/2008 12:44] - "C:\Documents and Settings\Administrateur\Application Data\m"
Found ! [28/12/2008 20:42] - "C:\Documents and Settings\Administrateur\Application Data\drivers"
Found ! [28/12/2008 20:40] - "C:\Documents and Settings\Administrateur\Application Data\drivers\srosa.sys"
Found ! [28/12/2008 20:43] - "C:\Documents and Settings\Administrateur\Application Data\drivers\winupgro.exe"
Found ! [28/12/2008 20:50] - "C:\Documents and Settings\Administrateur\Application Data\drivers\downld"
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\101171.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\102187.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\102437.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\102515.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\103687.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\1040781.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\1041843.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\1041906.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\106140.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\108375.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\112062.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\113156.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\113609.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\114062.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\115296.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\115796.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\116187.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\117468.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\118140.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\118640.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\119203.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\1197781.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\1198656.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\1198671.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\121421.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\1215484.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\1217109.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\1217546.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\1218437.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\1221125.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\122187.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\1222593.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\122500.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\122671.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\122781.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\123593.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\123609.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\123687.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\124109.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\124171.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\124203.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\1244328.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\1245406.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\1245984.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\125218.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\125296.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\126343.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\1264125.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\1275343.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\1277218.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\1277843.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\1314953.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\1315687.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\1315750.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\136218.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\136937.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\142765.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\14645906.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\14646359.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\14646390.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\14659828.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\14712812.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\14720265.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\14722281.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\147234.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\14756875.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\14758359.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\14758375.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\147640.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\14783640.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\14783765.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\14783781.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\14813078.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\14813546.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\14813843.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\14831109.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\14854359.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\14865531.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\14867250.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\14976781.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\14993828.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\14994109.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\14994187.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15019968.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15020000.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15020015.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15033703.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15034875.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15035546.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15036218.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15036859.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15037093.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15037296.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15091515.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15093812.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15094578.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15096812.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15099484.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15101203.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15127140.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15128500.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15128968.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15130812.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15131187.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15131312.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15164359.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15165343.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15165703.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15188109.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15191468.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\151921.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15197562.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15228500.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15234765.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15236484.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15248531.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15253703.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15254562.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\152750.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15300609.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15300828.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\153312.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15356500.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15357765.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15358203.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15359078.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15361125.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15362843.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15384687.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15385343.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15385734.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\153984.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15460453.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15469781.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15469906.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\154796.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15485953.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15487500.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15488218.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\154906.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\156531.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\157296.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\157312.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\169296.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\170765.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\171406.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\171703.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\172359.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\172437.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\173140.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\173625.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\173671.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\173765.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\174218.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\174906.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\175859.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\176328.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\176421.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\177187.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\177203.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\177296.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\178000.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\178015.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\187500.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\189046.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\189500.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\191609.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\192687.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\192968.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\193156.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\193203.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\193515.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\193750.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\194109.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\194218.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\194250.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\194656.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\195046.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\195343.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\195531.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\195656.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\196046.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\196125.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\196421.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\196625.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\201921.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\203250.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\203687.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\204796.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\205578.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\206343.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\206640.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\206812.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\207390.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\207890.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\209203.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\209953.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\210296.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\213890.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\214609.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\214921.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\220109.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\220812.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\221265.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\224593.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\225968.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\227390.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\227750.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\229375.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\229484.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\229750.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\229859.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\229937.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\231187.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\231718.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\231890.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\239406.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\240390.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\240453.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\241843.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\242531.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\242687.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\247796.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\248578.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\248687.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\250953.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\251375.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\251437.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\260843.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\261468.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\261578.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\261687.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\262296.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\263187.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\263421.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\263437.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\263828.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\264109.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\264125.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\264140.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\264203.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\265046.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\267468.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\269531.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\275234.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\275968.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\276437.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\282203.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\282234.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\290265.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\290515.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\291109.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\291500.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\292171.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\292625.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\293390.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\294093.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\294656.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\297046.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\298437.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\300140.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\300156.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\30061625.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\30062359.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\30062671.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\30088000.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\303000.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\303562.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\303578.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\30470718.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\30475265.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\30476453.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\30694203.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\308703.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\30886812.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\30887578.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\30887625.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\30901375.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\30902796.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\30903609.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\30905234.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\30906406.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\30907359.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\30927656.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\30928500.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\30929187.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\30938500.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\30940062.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\30940625.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\30943046.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\30944250.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\30944515.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\309468.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\30980515.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\30982453.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\30983359.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\310093.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\312531.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\313968.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\314421.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\314562.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\314937.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\315250.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\315328.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\316015.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\316437.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\322062.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\323546.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\323609.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\324109.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\324796.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\324953.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\325203.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\326953.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\328015.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\328484.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\328687.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\329109.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\330109.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\331015.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\331031.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\335593.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\336281.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\336656.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\343937.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\345234.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\345687.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\347375.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\348328.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\348765.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\348859.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\348968.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\349343.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\349500.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\350875.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\351171.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\351875.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\352203.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\352328.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\352421.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\364046.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\365234.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\365296.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\371203.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\372296.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\372609.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\375890.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\376609.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\376671.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\380031.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\381312.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\381421.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\386625.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\388093.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\388687.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\389671.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\391187.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\391640.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\395156.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\405093.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\411359.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\413406.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\413734.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\420265.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\424421.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\424515.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\425218.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\425234.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\425328.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\425671.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\434375.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\440687.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\440718.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\453546.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\454812.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\454828.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\465640.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\467531.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\469109.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\469578.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\470421.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\473468.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\475281.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\482578.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\498578.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\499687.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\500093.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\504218.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\505062.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\505078.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\511562.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\524890.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\526765.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\528234.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\528250.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\528765.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\529156.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\529328.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\531015.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\532796.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\551765.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\557218.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\557515.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\559093.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\569125.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\569921.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\570093.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\572390.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\572421.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\572875.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\573656.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\574109.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\578484.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\60203.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\60671.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\611500.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\612703.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\613062.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\61796.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\61843.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\627984.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\63468.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\63781.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\64250.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\64640.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\648843.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\649984.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\651031.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\65140.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\65218.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\65812.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\65937.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\66484.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\66593.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\66828.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\66859.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\67343.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\67796.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\68734.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\689593.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\69281.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\694406.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\69546.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\695656.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\70640.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\74390.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\74406.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\74828.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\781218.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\78328.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\785421.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\786640.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\78828.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\793031.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\793703.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\793781.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\81843.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\81906.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\82015.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\82859.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\83109.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\83656.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\85796.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\85984.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\86031.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\86765.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\882875.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\88890.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\88953.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\90546.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\91421.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\91750.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\918109.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\91953.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\921140.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\921656.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\92609.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\92640.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\93187.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\94328.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\94453.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\96593.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\97515.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\97609.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\98015.exe
Found ! [28/12/2008 20:50] - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\98281.exe

»»»» Presence des fichiers dans C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp

»»»» Presence des fichiers dans C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5

Found ! [14/08/2007 05:02] - C:\Documents and Settings\Administrateur\Bureau\sabine\Program Files\Wanadoo\Utilisateur1\Mes images\m_0abe4db6436a96ee78d0a73880770fdd.jpg
Found ! [27/12/2008 10:31] - C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\0V4ZGL0B\b64_3[1].jpg
Found ! [28/12/2008 08:58] - C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\0V4ZGL0B\s_5e666d1c807d4c4d9da7b64b6751a826[1].jpg
Found ! [28/12/2008 11:33] - C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\2WHPFF77\f75b009e6166f858b64812d74413-66822553-1[1].jpg
Found ! [28/12/2008 10:35] - C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\3SH97C0O\b64[1].jpg
Found ! [28/12/2008 16:24] - C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\5GLQK564\b64_1[1].jpg
Found ! [28/12/2008 20:48] - C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\5GLQK564\b64_1[2].jpg
Found ! [28/12/2008 19:38] - C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\5KIP0IU2\b64_1[1].jpg
Found ! [27/12/2008 19:50] - C:\Documents and Settings\Administrateur\Local Settings\Temporary Inte
Configuration: 

11 réponses

  1. jlpjlp Messages postés 52399 Statut Contributeur sécurité 5 041
     
    Branche tes sources de données externes à ton PC, (clé USB, disque dur externe, etc...) suceptible d avoir été infectés sans les ouvrir

    --> Double clic sur le raccourci FindyKill sur ton bureau

    --> Au menu principal,choisi l option 2 (Suppression)

    /!\ il y aura 2 redémarrage, laisse travailler l outils jusqu a l apparition du message "nettoyage effectué"

    /!\ Ne te sert pas du pc durant la suppression , ton bureau ne sera pas accessible c est normal !

    -------> ensuite post le rapport FindyKill.txt

    Note : le rapport FindyKill.txt est sauvegardé a la racine du disque
    Note : Si le Bureau ne réapparait pas presse Ctrl + Alt + Suppr , Onglet "Fichier" , "Nouvelle tâche" , tapes explorer.exe et valides

    _____________________________

    colle le rapport d'un scan en ligne
    avec un des suivants:

    Kaspersky en ligne
    https://www.kaspersky.fr/?domain=webscanner.kaspersky.fr

    bitdefender en ligne :
    http://www.bitdefender.fr/scan_fr/scan8/ie.html

    Panda en ligne :
    http://pandasoftware.fr
    0
    1. sabine
       
      bonjour et merci de m aider voici le rapport findykill:

      ----------------- FindyKill V4.710 ------------------

      * User : Administrateur - SABINE-C91ECD6E
      * executed from : C:\Program Files\FindyKill
      * Update on 21/12/08 par Chiquitine29
      * Start at 8:16:08 the 29/12/2008
      * Windows XP - Internet Explorer 6.0.2900.2180


      ((((((((((((((( *** deleting *** ))))))))))))))))))


      --------------- [ Active Processes ] ----------------


      C:\WINDOWS\System32\smss.exe
      C:\WINDOWS\system32\csrss.exe
      C:\WINDOWS\system32\winlogon.exe
      C:\WINDOWS\system32\services.exe
      C:\WINDOWS\system32\lsass.exe
      C:\WINDOWS\system32\svchost.exe
      C:\WINDOWS\system32\svchost.exe
      C:\WINDOWS\System32\svchost.exe
      C:\WINDOWS\system32\svchost.exe
      C:\WINDOWS\system32\svchost.exe
      C:\WINDOWS\system32\spoolsv.exe
      C:\WINDOWS\system32\logonui.exe
      C:\WINDOWS\system32\userinit.exe
      C:\WINDOWS\system32\agrsmsvc.exe
      C:\WINDOWS\System32\FTRTSVC.exe
      C:\Program Files\Java\jre6\bin\jqs.exe
      C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
      C:\WINDOWS\system32\svchost.exe

      --------------- [ Infected files / folders ] ----------------


      »»»» Supression files in C:


      »»»» Supression files in C:\WINDOWS


      »»»» Supression files in C:\WINDOWS\Prefetch

      Deleted ! - C:\WINDOWS\prefetch\1264125.EXE-28DFBB09.pf
      Deleted ! - C:\WINDOWS\prefetch\1300390.EXE-3924C373.pf
      Deleted ! - C:\WINDOWS\prefetch\149671.EXE-0167B6A7.pf
      Deleted ! - C:\WINDOWS\prefetch\405093.EXE-360D79F7.pf
      Deleted ! - C:\WINDOWS\prefetch\465640.EXE-0161D9C3.pf
      Deleted ! - C:\WINDOWS\prefetch\511562.EXE-142C84D7.pf
      Deleted ! - C:\WINDOWS\prefetch\555250.EXE-34650101.pf
      Deleted ! - C:\WINDOWS\prefetch\578484.EXE-36C2671F.pf
      Deleted ! - C:\WINDOWS\prefetch\68734.EXE-2F463DDE.pf
      Deleted ! - C:\WINDOWS\prefetch\76343.EXE-2C652717.pf
      Deleted ! - C:\WINDOWS\prefetch\882875.EXE-1D691AD8.pf
      Deleted ! - C:\WINDOWS\prefetch\91953.EXE-2D197016.pf
      Deleted ! - C:\WINDOWS\prefetch\FLEC006.EXE-0695BA6E.pf
      Deleted ! - C:\WINDOWS\prefetch\MDELK.EXE-1D176F91.pf
      Deleted ! - C:\WINDOWS\prefetch\WINTEMS.EXE-2A563F9B.pf

      »»»» Supression files in C:\WINDOWS\system32

      Deleted ! - C:\WINDOWS\system32\mdelk.exe
      Deleted ! - C:\WINDOWS\system32\wintems.exe
      Deleted ! - C:\WINDOWS\system32\ban_list.txt

      »»»» Supression files in C:\WINDOWS\system32\config\systemprofile\AppData\Roaming


      »»»» Supression files in C:\WINDOWS\system32\drivers

      Deleted ! - C:\WINDOWS\system32\drivers\srosa.sys
      Deleted ! - C:\WINDOWS\system32\drivers\srosa2.sys

      »»»» Supression files in C:\Documents and Settings\Administrateur\Application Data

      Deleted ! - "C:\Documents and Settings\Administrateur\Application Data\m\flec006.exe"
      Deleted ! - "C:\Documents and Settings\Administrateur\Application Data\m\list.oct"
      Deleted ! - "C:\Documents and Settings\Administrateur\Application Data\m\data.oct"
      Deleted ! - "C:\Documents and Settings\Administrateur\Application Data\m\srvlist.oct"
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\000-297 - WebSphere MQ V5.3 Solution Development Practice Exam Questions 1.0.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\1-More Scanner 1.10.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\2Flyer Screensaver Builder 7.9.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\642-522 Practice Exam Testing Engine Software 1.0.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\A.M.L. - Lite Edition
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\access2asp 4.0.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\AddUp 2.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\Afree DVD to AVI WMV MOV MPEG MP4 Ripper 5.1.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\Alaska Cruise 1.0.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\AlphaFridgeMagnets.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\Amateur Examination Practice Software 1.0.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\Anvil Studio 2007.05.01.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\ApecSoft PSP MP4 Converter 1.36 build 260.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\Automatic USB Backup 2.0.0.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\AVG.7.0.Free.298a417.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\Bay near the Waterfall - Animated Wallpaper 5.07.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\Beltcomp.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\Bitdefender.Professional.Plus.v8.0.-=MIA=-.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\BitIdentify Pro For All Web Browsers 2.1.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\Boy Smiley Angel Clock Screensaver 1.0.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\BrowseControl 3.1.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\Browsers Compass Icon Pack.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\C&B Shutdown 1.0.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\CallerID 1.01.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\Catamarans Screensaver 1.15.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\Convenient Clock 1.1.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\CPU Indicator Screen Saver 2.2.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\Crack.Norton.Antivirus.-.Extiende.La.Fecha.De.Renovacion.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\Curency Converter EX 1.00.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\DataPouch 1.0.352.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\DB Organizer Deluxe 3.0.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\DbaBar 1.2.0 build 255.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\DiffDog 2007 SP2.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\DLL & OCX Setup 1.0.4.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\Dogs 3 Screensaver.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\dtrt.NavBarWin 1.0.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\ELVideoCapure ActiveX DLL 1.9.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\Extra DVD to Sony PSP PS3 Ripper 6.04.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\EyeGuard 1.0.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\FileRenamer 1.0.2869.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\FlatStyle 0.9.2.5.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\Free 3D Screensaver 2.06.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\Girl on River Screensaver 1.0.0.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\Hint Box 1.0.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\HotSheet 1.0.36.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\HydroCalc 3.0 Build 103.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\iCarbon 2.2.1.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\IconXtractor 1.0.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\IP Detector 1.1.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\IP Laboratorium 5.60.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\iPod nano 1.0.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\jCipherPAD 0.9.4.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\Jpeg Enhancer 1.8.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\Kaleidoscope AIP 3.0.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\LanguageStudio Swedish 2.1s build 69.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\Last Seconds Bidder 2.4.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\Lebendig 1.0.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\Level Patcher 1.0.0.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\LineFree 1.0.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\LTF-Cimulator 1.0.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\LunarEclipse 1.2.7.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\MainStreetStreetSearch 2.14.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\Match-n-Freq 5.11.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\Medlin Accounts Payable 3.9.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\MemoryBoost Pro 2.6.15.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\MestRes 1.12.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\MingSoft 3GP Converter Lite 1.5.0.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\MS Word Print Off Multiple MS Word Documents 9.0.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\My Article Page Creator 1.0.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\Net Profile Switch 5.46.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\Netoscope 1.6.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\NewsPoint 1.0.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\Nidesoft AVI Converter 2.3.08.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\Nitobi Grid JSP 3.22.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\NOKIA - Assassin's Creed.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\Novagraph Chartist 5.2.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\O'Harian Clock 1.1.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\OakDoc PS to IMAGE Converter Command Line 2.0.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\Obfuscator 1.0.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\PaxKel Radio 4.3.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\PCMSCAN 2.2.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\PDF Page Size Split Batch 1.03.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\Planner 1.7.9.0.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\Playtunes Player 1.0.1.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\Professional Template Pack - Italian 1.0.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\Program Sentry 1.0.0.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\QSearch 2006.10.25.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\Quick Concordance 1.0.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\reader URLs 005.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\ReducePhotoSize 1.3.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\Revelator 1.0.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\Rotor 3D Viewer 1.3.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\ScreenSaver Works 2.00.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\SharePoint Cross-Site Lookup 2.1.1.0.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\Simple Amazon.com Search Gadget.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\Smart Roadster Coupe Screensaver.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\STRRATUS 0.83 Beta Manthan 2005 Build.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\STS Alarm Clock 3.1.3.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\Surfer 8.06.39.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\SWFlash Screesaver 1.5.0.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\SwiftMP3 1.6.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\Symantec.Antivirus.Corporate.Edition.v10.2.276.WinVista.Retail-ARN.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\Symantec_Norton_Antivirus_Corporate_9.0_Fr_(serveur_et_client)_(ISO)_[Gathaka].zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\Test My Hardware 2.4.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\The Big Corals - Animated Wallpaper 2.52.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\The Captive King Screensaver 1.0.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\The Farm 1.0.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\The Hat 2.3.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\TomTom_6.020_for_Windows_Mobile_Smartphone updated-fixed 01-2008.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\TShed 1.3a.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\Unsteady Oversteer.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\Update.10.2006.Kaspersky.ANTIVIRUS.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\Very Simple Network Scanner 1.1.2.22.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\WENT 1.0.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\WinMag Secret 1.3.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\Wondershare MPEG Converter 3.2.49.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\Wusikstation VSTi 5.6.2.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\Xenon 6.2 Build 463.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\XML Viewer 2.3.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\Zebra Screen Savers 5 1.0.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\ZINvoice 3.19.zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\[Antivirus].Panda.Platinium.Internet.Security.(2008).zip
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\m\shared\[Pc.Program.Ita]Antivirus.Nod32.zip
      Deleted ! - "C:\Documents and Settings\Administrateur\Application Data\m\shared"
      Deleted ! - "C:\Documents and Settings\Administrateur\Application Data\m"
      Deleted ! - "C:\Documents and Settings\Administrateur\Application Data\drivers\srosa.sys"
      Deleted ! - "C:\Documents and Settings\Administrateur\Application Data\drivers\srosa2.sys"
      Deleted ! - "C:\Documents and Settings\Administrateur\Application Data\drivers\winupgro.exe"
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\101171.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\102187.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\102437.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\102515.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\103687.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\1040781.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\1041843.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\1041906.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\106140.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\108375.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\112062.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\113156.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\113609.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\114062.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\115296.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\115796.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\116187.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\117468.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\118140.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\118640.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\119203.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\1197781.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\1198656.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\1198671.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\121421.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\1215484.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\1217109.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\1217546.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\1218437.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\1221125.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\122187.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\1222593.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\122500.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\122671.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\122781.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\123593.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\123609.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\123687.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\124109.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\124171.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\124203.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\1244328.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\1245406.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\1245984.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\125218.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\125296.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\126343.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\1264125.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\1275343.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\127609.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\1277218.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\1277843.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\128343.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\128781.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\1314953.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\1315687.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\1315750.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\136218.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\136937.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\142765.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\14645906.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\14646359.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\14646390.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\14659828.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\14712812.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\14720265.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\14722281.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\147234.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\14756875.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\14758359.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\14758375.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\147640.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\14783640.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\14783765.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\14783781.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\14813078.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\14813546.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\14813843.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\14831109.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\14854359.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\14865531.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\14867250.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\149671.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\14976781.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\14993828.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\14994109.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\14994187.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15019968.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15020000.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15020015.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15033703.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15034875.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15035546.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15036218.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15036859.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15037093.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15037296.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15091515.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15093812.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15094578.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15096812.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15099484.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15101203.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15127140.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15128500.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15128968.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15130812.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15131187.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15131312.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15164359.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15165343.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15165703.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15188109.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15191468.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\151921.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15197562.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15228500.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15234765.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15236484.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15248531.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15253703.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15254562.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\152750.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15300609.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15300828.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\153312.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15356500.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15357765.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15358203.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15359078.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15361125.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15362843.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15384687.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15385343.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15385734.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\153984.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15460453.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15469781.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15469906.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\154796.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15485953.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15487500.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\15488218.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\154906.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\156531.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\157296.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\157312.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\169296.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\170765.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\171406.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\171703.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\172359.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\172437.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\173140.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\173625.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\173671.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\173765.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\174218.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\174906.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\175859.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\176328.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\176421.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\177187.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\177203.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\177296.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\178000.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\178015.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\187500.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\188031.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\188734.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\188765.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\189046.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\189500.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\191609.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\192687.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\192968.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\193156.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\193203.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\193515.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\193750.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\194109.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\194218.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\194250.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\194656.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\195046.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\195343.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\195531.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\195656.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\196046.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\196125.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\196421.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\196625.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\199750.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\201671.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\201921.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\202187.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\202250.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\203250.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\203687.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\203796.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\204359.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\204796.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\205187.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\205578.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\206343.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\206640.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\206812.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\207390.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\207890.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\208000.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\209203.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\209953.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\209968.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\210296.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\213890.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\214609.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\214921.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\220109.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\220812.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\221265.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\224593.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\225968.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\227390.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\227750.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\229375.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\229484.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\229750.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\229859.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\229937.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\230390.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\231000.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\231187.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\231296.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\231718.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\231890.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\239406.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\240390.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\240453.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\241843.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\242531.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\242687.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\247796.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\248578.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\248687.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\250953.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\251375.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\251437.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\260843.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\261468.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\261578.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\261687.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\262296.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\263187.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\263421.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\263437.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\263828.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\263984.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\264109.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\264125.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\264140.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\264203.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\264703.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\265046.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\265187.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\267468.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\269531.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\275234.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\275968.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\276437.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\282203.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\282234.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\290265.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\290515.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\291109.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\291500.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\292171.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\292625.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\293390.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\294093.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\294656.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\295437.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\296125.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\296187.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\297046.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\298437.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\300140.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\300156.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\30061625.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\30062359.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\30062671.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\30088000.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\303000.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\303562.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\303578.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\30470718.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\30475265.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\30476453.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\30694203.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\308703.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\30886812.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\30887578.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\30887625.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\30901375.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\30902796.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\30903609.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\30905234.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\30906406.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\30907359.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\30927656.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\30928500.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\30929187.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\30938500.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\30940062.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\30940625.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\30943046.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\30944250.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\30944515.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\309468.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\30980515.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\30982453.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\30983359.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\310093.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\312531.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\313968.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\314421.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\314562.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\314937.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\315250.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\315328.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\316015.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\316437.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\322062.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\323546.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\323609.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\324109.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\324796.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\324953.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\325203.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\326953.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\328015.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\328484.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\328687.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\329109.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\330109.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\331015.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\331031.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\335593.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\336281.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\336656.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\343937.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\345234.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\345687.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\347375.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\348328.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\348765.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\348859.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\348968.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\349343.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\349500.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\350875.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\351171.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\351875.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\352203.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\352328.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\352421.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\364046.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\365234.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\365296.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\371203.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\372296.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\372609.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\375890.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\376609.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\376671.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\380031.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\381312.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\381421.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\386625.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\388093.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\388687.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\389671.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\391187.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\391640.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\395156.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\405093.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\411359.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\413406.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\413734.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\420265.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\424421.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\424515.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\425218.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\425234.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\425328.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\425671.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\434375.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\440687.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\440718.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\453546.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\454812.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\454828.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\465640.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\467531.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\469109.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\469578.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\470421.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\473468.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\475281.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\482578.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\498578.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\499687.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\500093.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\504218.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\505062.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\505078.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\511562.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\524890.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\526765.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\528234.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\528250.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\528765.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\529156.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\529328.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\531015.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\532796.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\551765.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\557218.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\557515.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\559093.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\569125.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\569921.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\570093.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\572390.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\572421.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\572875.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\573656.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\574109.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\578484.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\60203.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\60671.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\611500.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\612703.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\613062.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\61796.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\61843.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\627984.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\63468.exe
      Deleted ! - C:\Documents and Settings\Administrateur\Application Data\drivers\downld\63781.exe
      Deleted ! - C:\Documents and Settings
      0
  2. jlpjlp Messages postés 52399 Statut Contributeur sécurité 5 041
     
    ok fais la suite
    0
    1. sabine
       
      bonsoir,
      voici le rapport du scanne :

      ;***********************************************************************************************************************************************************************************
      ANALYSIS: 2008-12-29 20:55:01
      PROTECTIONS: 0
      MALWARE: 38
      SUSPECTS: 0
      ;***********************************************************************************************************************************************************************************
      PROTECTIONS
      Description Version Active Updated
      ;===================================================================================================================================================================================
      ;===================================================================================================================================================================================
      MALWARE
      Id Description Type Active Severity Disinfectable Disinfected Location
      ;===================================================================================================================================================================================
      00139060 Cookie/Casalemedia TrackingCookie No 0 Yes No C:\Documents and Settings\Administrateur\Cookies\administrateur@casalemedia[2].txt
      00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No C:\Documents and Settings\Administrateur\Cookies\administrateur@doubleclick[1].txt
      00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No C:\Documents and Settings\Administrateur\Cookies\administrateur@atdmt[2].txt
      00145393 Cookie/Tradedoubler TrackingCookie No 0 Yes No C:\Documents and Settings\Administrateur\Cookies\administrateur@tradedoubler[1].txt
      00145405 Cookie/RealMedia TrackingCookie No 0 Yes No C:\Documents and Settings\Administrateur\Cookies\administrateur@247realmedia[1].txt
      00145457 Cookie/FastClick TrackingCookie No 0 Yes No C:\Documents and Settings\Administrateur\Cookies\administrateur@fastclick[2].txt
      00145738 Cookie/Mediaplex TrackingCookie No 0 Yes No C:\Documents and Settings\Administrateur\Cookies\administrateur@mediaplex[2].txt
      00167642 Cookie/Com.com TrackingCookie No 0 Yes No C:\Documents and Settings\Administrateur\Cookies\administrateur@com[1].txt
      00167647 Cookie/Yadro TrackingCookie No 0 Yes No C:\Documents and Settings\Administrateur\Cookies\administrateur@yadro[1].txt
      00167704 Cookie/Xiti TrackingCookie No 0 Yes No C:\Documents and Settings\Administrateur\Bureau\sabine\Documents and Settings\Compaq_Propriétaire\Cookies\compaq_propriétaire@xiti[1].txt
      00167704 Cookie/Xiti TrackingCookie No 0 Yes No C:\Documents and Settings\Administrateur\Cookies\administrateur@xiti[1].txt
      00167709 Cookie/fe.lea.lycos TrackingCookie No 0 Yes No C:\Documents and Settings\Administrateur\Cookies\administrateur@fe.lea.lycos[1].txt
      00167753 Cookie/Statcounter TrackingCookie No 0 Yes No C:\Documents and Settings\Administrateur\Cookies\administrateur@statcounter[1].txt
      00168056 Cookie/YieldManager TrackingCookie No 0 Yes No C:\Documents and Settings\Administrateur\Cookies\administrateur@ad.yieldmanager[1].txt
      00168061 Cookie/Apmebf TrackingCookie No 0 Yes No C:\Documents and Settings\Administrateur\Cookies\administrateur@apmebf[2].txt
      00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Documents and Settings\Administrateur\Cookies\administrateur@serving-sys[1].txt
      00168093 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Documents and Settings\Administrateur\Cookies\administrateur@bs.serving-sys[2].txt
      00168106 Cookie/Weborama TrackingCookie No 0 Yes No C:\Documents and Settings\Administrateur\Cookies\administrateur@weborama[1].txt
      00168109 Cookie/Adtech TrackingCookie No 0 Yes No C:\Documents and Settings\Administrateur\Cookies\administrateur@adtech[1].txt
      00168110 Cookie/Server.iad.Liveperson TrackingCookie No 0 Yes No C:\Documents and Settings\Administrateur\Cookies\administrateur@server.iad.liveperson[1].txt
      00168116 Cookie/Comclick TrackingCookie No 0 Yes No C:\Documents and Settings\Administrateur\Cookies\administrateur@fl01.ct2.comclick[1].txt
      00169190 Cookie/Advertising TrackingCookie No 0 Yes No C:\Documents and Settings\Administrateur\Cookies\administrateur@advertising[2].txt
      00169287 Cookie/Adrevolver TrackingCookie No 0 Yes No C:\Documents and Settings\Administrateur\Cookies\administrateur@adrevolver[3].txt
      00170304 Cookie/WebtrendsLive TrackingCookie No 0 Yes No C:\Documents and Settings\Administrateur\Cookies\administrateur@statse.webtrendslive[2].txt
      00170495 Cookie/PointRoll TrackingCookie No 0 Yes No C:\Documents and Settings\Administrateur\Cookies\administrateur@ads.pointroll[2].txt
      00170554 Cookie/Overture TrackingCookie No 0 Yes No C:\Documents and Settings\Administrateur\Cookies\administrateur@overture[1].txt
      00172221 Cookie/Zedo TrackingCookie No 0 Yes No C:\Documents and Settings\Administrateur\Cookies\administrateur@zedo[2].txt
      00172449 Cookie/MetriWeb TrackingCookie No 0 Yes No C:\Documents and Settings\Administrateur\Bureau\sabine\Documents and Settings\Compaq_Propriétaire\Cookies\compaq_propriétaire@metriweb[1].txt
      00184846 Cookie/Adrevolver TrackingCookie No 0 Yes No C:\Documents and Settings\Administrateur\Cookies\administrateur@adrevolver[2].txt
      00207936 Cookie/Adviva TrackingCookie No 0 Yes No C:\Documents and Settings\Administrateur\Cookies\administrateur@adviva[2].txt
      00273339 Cookie/Smartadserver TrackingCookie No 0 Yes No C:\Documents and Settings\Administrateur\Cookies\administrateur@smartadserver[2].txt
      00286739 Cookie/Hitbox TrackingCookie No 0 Yes No C:\Documents and Settings\Administrateur\Cookies\administrateur@ehg-dig.hitbox[2].txt
      00459277 W32/Bagle.RC.worm Virus/Worm No 0 Yes Yes C:\System Volume Information\_restore{D84C0599-6ED2-4029-9A6B-5D88DD585D64}\RP1\A0000030.sys
      00459277 W32/Bagle.RC.worm Virus/Worm No 0 Yes Yes C:\System Volume Information\_restore{D84C0599-6ED2-4029-9A6B-5D88DD585D64}\RP1\A0000008.sys
      02898934 W32/Bagle.RP.worm Virus/Worm No 0 Yes Yes C:\System Volume Information\_restore{D84C0599-6ED2-4029-9A6B-5D88DD585D64}\RP1\A0000547.exe
      02898934 W32/Bagle.RP.worm Virus/Worm No 0 Yes Yes C:\System Volume Information\_restore{D84C0599-6ED2-4029-9A6B-5D88DD585D64}\RP1\A0000548.exe
      02898934 W32/Bagle.RP.worm Virus/Worm No 0 Yes Yes C:\System Volume Information\_restore{D84C0599-6ED2-4029-9A6B-5D88DD585D64}\RP1\A0000537.exe
      02898934 W32/Bagle.RP.worm Virus/Worm No 0 Yes Yes C:\System Volume Information\_restore{D84C0599-6ED2-4029-9A6B-5D88DD585D64}\RP1\A0000010.exe
      02898934 W32/Bagle.RP.worm Virus/Worm No 0 Yes Yes C:\System Volume Information\_restore{D84C0599-6ED2-4029-9A6B-5D88DD585D64}\RP1\A0000011.exe
      02898934 W32/Bagle.RP.worm Virus/Worm No 0 Yes Yes C:\System Volume Information\_restore{D84C0599-6ED2-4029-9A6B-5D88DD585D64}\RP1\A0000013.exe
      02898934 W32/Bagle.RP.worm Virus/Worm No 0 Yes Yes C:\System Volume Information\_restore{D84C0599-6ED2-4029-9A6B-5D88DD585D64}\RP1\A0000026.exe
      02898934 W32/Bagle.RP.worm Virus/Worm No 0 Yes Yes C:\System Volume Information\_restore{D84C0599-6ED2-4029-9A6B-5D88DD585D64}\RP1\A0000027.exe
      02898934 W32/Bagle.RP.worm Virus/Worm No 0 Yes Yes C:\System Volume Information\_restore{D84C0599-6ED2-4029-9A6B-5D88DD585D64}\RP1\A0000549.exe
      02898934 W32/Bagle.RP.worm Virus/Worm No 0 Yes Yes C:\System Volume Information\_restore{D84C0599-6ED2-4029-9A6B-5D88DD585D64}\RP1\A0000530.exe
      02898934 W32/Bagle.RP.worm Virus/Worm No 0 Yes Yes C:\System Volume Information\_restore{D84C0599-6ED2-4029-9A6B-5D88DD585D64}\RP1\A0000028.exe
      02898934 W32/Bagle.RP.worm Virus/Worm No 0 Yes Yes C:\System Volume Information\_restore{D84C0599-6ED2-4029-9A6B-5D88DD585D64}\RP1\A0000527.exe
      02898934 W32/Bagle.RP.worm Virus/Worm No 0 Yes Yes C:\System Volume Information\_restore{D84C0599-6ED2-4029-9A6B-5D88DD585D64}\RP1\A0000049.exe
      02898934 W32/Bagle.RP.worm Virus/Worm No 0 Yes Yes C:\System Volume Information\_restore{D84C0599-6ED2-4029-9A6B-5D88DD585D64}\RP1\A0000052.exe
      02898934 W32/Bagle.RP.worm Virus/Worm No 0 Yes Yes C:\System Volume Information\_restore{D84C0599-6ED2-4029-9A6B-5D88DD585D64}\RP1\A0000509.exe
      02898934 W32/Bagle.RP.worm Virus/Worm No 0 Yes Yes C:\System Volume Information\_restore{D84C0599-6ED2-4029-9A6B-5D88DD585D64}\RP1\A0000089.exe
      02898934 W32/Bagle.RP.worm Virus/Worm No 0 Yes Yes C:\System Volume Information\_restore{D84C0599-6ED2-4029-9A6B-5D88DD585D64}\RP1\A0000090.exe
      02898934 W32/Bagle.RP.worm Virus/Worm No 0 Yes Yes C:\System Volume Information\_restore{D84C0599-6ED2-4029-9A6B-5D88DD585D64}\RP1\A0000091.exe
      02898934 W32/Bagle.RP.worm Virus/Worm No 0 Yes Yes C:\System Volume Information\_restore{D84C0599-6ED2-4029-9A6B-5D88DD585D64}\RP1\A0000095.exe
      02898934 W32/Bagle.RP.worm Virus/Worm No 0 Yes Yes C:\System Volume Information\_restore{D84C0599-6ED2-4029-9A6B-5D88DD585D64}\RP1\A0000110.exe
      02898934 W32/Bagle.RP.worm Virus/Worm No 0 Yes Yes C:\System Volume Information\_restore{D84C0599-6ED2-4029-9A6B-5D88DD585D64}\RP1\A0000114.exe
      02898934 W32/Bagle.RP.worm Virus/Worm No 0 Yes Yes C:\System Volume Information\_restore{D84C0599-6ED2-4029-9A6B-5D88DD585D64}\RP1\A0000115.exe
      02898934 W32/Bagle.RP.worm Virus/Worm No 0 Yes Yes C:\System Volume Information\_restore{D84C0599-6ED2-4029-9A6B-5D88DD585D64}\RP1\A0000127.exe
      02898934 W32/Bagle.RP.worm Virus/Worm No 0 Yes Yes C:\System Volume Information\_restore{D84C0599-6ED2-4029-9A6B-5D88DD585D64}\RP1\A0000208.exe
      02898934 W32/Bagle.RP.worm Virus/Worm No 0 Yes Yes C:\System Volume Information\_restore{D84C0599-6ED2-4029-9A6B-5D88DD585D64}\RP1\A0000235.exe
      02898934 W32/Bagle.RP.worm Virus/Worm No 0 Yes Yes C:\System Volume Information\_restore{D84C0599-6ED2-4029-9A6B-5D88DD585D64}\RP1\A0000284.exe
      02898934 W32/Bagle.RP.worm Virus/Worm No 0 Yes Yes C:\System Volume Information\_restore{D84C0599-6ED2-4029-9A6B-5D88DD585D64}\RP1\A0000299.exe
      02898934 W32/Bagle.RP.worm Virus/Worm No 0 Yes Yes C:\System Volume Information\_restore{D84C0599-6ED2-4029-9A6B-5D88DD585D64}\RP1\A0000301.exe
      02898934 W32/Bagle.RP.worm Virus/Worm No 0 Yes Yes C:\System Volume Information\_restore{D84C0599-6ED2-4029-9A6B-5D88DD585D64}\RP1\A0000302.exe
      02898934 W32/Bagle.RP.worm Virus/Worm No 0 Yes Yes C:\System Volume Information\_restore{D84C0599-6ED2-4029-9A6B-5D88DD585D64}\RP1\A0000504.exe
      02898934 W32/Bagle.RP.worm Virus/Worm No 0 Yes Yes C:\System Volume Information\_restore{D84C0599-6ED2-4029-9A6B-5D88DD585D64}\RP1\A0000322.exe
      02898934 W32/Bagle.RP.worm Virus/Worm No 0 Yes Yes C:\System Volume Information\_restore{D84C0599-6ED2-4029-9A6B-5D88DD585D64}\RP1\A0000329.exe
      02898934 W32/Bagle.RP.worm Virus/Worm No 0 Yes Yes C:\System Volume Information\_restore{D84C0599-6ED2-4029-9A6B-5D88DD585D64}\RP1\A0000415.exe
      02898934 W32/Bagle.RP.worm Virus/Worm No 0 Yes Yes C:\System Volume Information\_restore{D84C0599-6ED2-4029-9A6B-5D88DD585D64}\RP1\A0000416.exe
      02898934 W32/Bagle.RP.worm Virus/Worm No 0 Yes Yes C:\System Volume Information\_restore{D84C0599-6ED2-4029-9A6B-5D88DD585D64}\RP1\A0000433.exe
      02898934 W32/Bagle.RP.worm Virus/Worm No 0 Yes Yes C:\System Volume Information\_restore{D84C0599-6ED2-4029-9A6B-5D88DD585D64}\RP1\A0000495.exe
      02898934 W32/Bagle.RP.worm Virus/Worm No 0 Yes Yes C:\System Volume Information\_restore{D84C0599-6ED2-4029-9A6B-5D88DD585D64}\RP1\A0000494.exe
      02898934 W32/Bagle.RP.worm Virus/Worm No 0 Yes Yes C:\System Volume Information\_restore{D84C0599-6ED2-4029-9A6B-5D88DD585D64}\RP1\A0000469.exe
      02898934 W32/Bagle.RP.worm Virus/Worm No 0 Yes Yes C:\System Volume Information\_restore{D84C0599-6ED2-4029-9A6B-5D88DD585D64}\RP1\A0000487.exe
      02898935 W32/Bagle.RC.worm Virus/Worm No 0 Yes Yes C:\System Volume Information\_restore{D84C0599-6ED2-4029-9A6B-5D88DD585D64}\RP1\A0000009.sys
      02898935 W32/Bagle.RC.worm Virus/Worm No 0 Yes Yes C:\System Volume Information\_restore{D84C0599-6ED2-4029-9A6B-5D88DD585D64}\RP1\A0000029.sys
      02990320 Application/BoontyGames HackTools No 0 Yes No C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
      03074964 Trj/CI.A Virus/Trojan No 0 Yes Yes C:\Documents and Settings\Administrateur\Local Settings\Application Data\Mozilla\Firefox\Profiles\laqq8f12.default\Cache\C2152591d01
      04150964 Generic Trojan Virus/Trojan No 0 Yes Yes C:\System Volume Information\_restore{D84C0599-6ED2-4029-9A6B-5D88DD585D64}\RP1\A0000477.exe
      04150964 Generic Trojan Virus/Trojan No 0 Yes Yes C:\System Volume Information\_restore{D84C0599-6ED2-4029-9A6B-5D88DD585D64}\RP1\A0000440.exe
      04150964 Generic Trojan Virus/Trojan No 0 Yes Yes C:\System Volume Information\_restore{D84C0599-6ED2-4029-9A6B-5D88DD585D64}\RP1\A0000447.exe
      04150964 Generic Trojan Virus/Trojan No 0 Yes Yes C:\System Volume Information\_restore{D84C0599-6ED2-4029-9A6B-5D88DD585D64}\RP1\A0000079.exe
      04150964 Generic Trojan Virus/Trojan No 0 Yes Yes C:\System Volume Information\_restore{D84C0599-6ED2-4029-9A6B-5D88DD585D64}\RP1\A0000315.exe
      04472521 W32/Bagle.KV.worm Virus No 1 Yes Yes C:\System Volume Information\_restore{D84C0599-6ED2-4029-9A6B-5D88DD585D64}\RP1\A0000031.exe
      04472521 W32/Bagle.KV.worm Virus No 1 Yes Yes c:\program files\siber systems\ai roboform\robotaskbaricon.exe
      ;===================================================================================================================================================================================
      SUSPECTS
      Sent Location 1
      ;===================================================================================================================================================================================
      ;===================================================================================================================================================================================
      VULNERABILITIES
      Id Severity Description 1
      ;===================================================================================================================================================================================
      184380 MEDIUM MS08-002 1
      184379 MEDIUM MS08-001 1
      182048 HIGH MS07-069 1
      182046 HIGH MS07-067 1
      182043 HIGH MS07-064 1
      179553 HIGH MS07-061 1
      176382 HIGH MS07-057 1
      176383 HIGH MS07-058 1
      170911 HIGH MS07-050 1
      170907 HIGH MS07-046 1
      170906 HIGH MS07-045 1
      170904 HIGH MS07-043 1
      164915 HIGH MS07-035 1
      164913 HIGH MS07-033 1
      164911 HIGH MS07-031 1
      160623 HIGH MS07-027 1
      157262 HIGH MS07-022 1
      157261 HIGH MS07-021 1
      157260 HIGH MS07-020 1
      157259 HIGH MS07-019 1
      156477 HIGH MS07-017 1
      150253 HIGH MS07-016 1
      150249 HIGH MS07-013 1
      150248 HIGH MS07-012 1
      150247 HIGH MS07-011 1
      150243 HIGH MS07-008 1
      150242 HIGH MS07-007 1
      150241 MEDIUM MS07-006 1
      141034 HIGH MS06-076 1
      141033 MEDIUM MS06-075 1
      141030 HIGH MS06-072 1
      137571 HIGH MS06-070 1
      137568 HIGH MS06-067 1
      133387 MEDIUM MS06-065 1
      133386 MEDIUM MS06-064 1
      133385 MEDIUM MS06-063 1
      133379 HIGH MS06-057 1
      131654 HIGH MS06-055 1
      129977 MEDIUM MS06-053 1
      129976 MEDIUM MS06-052 1
      126093 HIGH MS06-051 1
      126092 MEDIUM MS06-050 1
      126087 HIGH MS06-046 1
      126086 MEDIUM MS06-045 1
      126083 HIGH MS06-042 1
      126082 HIGH MS06-041 1
      126081 HIGH MS06-040 1
      123421 HIGH MS06-036 1
      123420 HIGH MS06-035 1
      120825 MEDIUM MS06-032 1
      120823 MEDIUM MS06-030 1
      120818 HIGH MS06-025 1
      120815 HIGH MS06-022 1
      120814 HIGH MS06-021 1
      117384 MEDIUM MS06-018 1
      114666 HIGH MS06-015 1
      114664 HIGH MS06-013 1
      108744 MEDIUM MS06-008 1
      108743 MEDIUM MS06-007 1
      108742 MEDIUM MS06-006 1
      104567 HIGH MS06-002 1
      104237 HIGH MS06-001 1
      96574 HIGH MS05-053 1
      93395 HIGH MS05-051 1
      93394 HIGH MS05-050 1
      93454 MEDIUM MS05-049 1
      ;===================================================================================================================================================================================
      que dois je faire maintenant?
      merci de ton aide
      0
  3. jlpjlp Messages postés 52399 Statut Contributeur sécurité 5 041
     
    télécharge OTMoveIt

    http://oldtimer.geekstogo.com/OTMoveIt3.exe

    (de Old_Timer) sur ton Bureau.
    double-clique sur OTMoveIt.exe pour le lancer.
    copie la liste qui se trouve en citation ci-dessous,
    et colle-la dans le cadre de gauche de OTMoveIt :Paste List of Files/Folders to be moved.

    :files
    C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
    C:\Documents and Settings\Administrateur\Local Settings\Application Data\Mozilla\Firefox\Profiles\laqq8f12.default\Cache\C215259­1d01
    c:\program files\siber systems\ai roboform\robotaskbaricon.exe
    C:\Program Files\Fichiers communs\BOONTY Shared

    clique sur MoveIt! pour lancer la suppression.
    le résultat apparaitra dans le cadre "Results".
    clique sur Exit pour fermer.
    poste le rapport situé dans C:\_OTMoveIt\MovedFiles.

    il te sera peut-être demander de redémarrer le pc pour achever la suppression.si c'est le cas accepte par Yes.

    _________________________

    vire ce qui est dans moved files en allant dans poste de travail puis

    C:\_OTMoveIt\MovedFiles

    _________________________

    tu avais quel antivirus? quelle protections?

    vire ton antivirus et remets le et dis si il marche
    ______________________

    Télécharge ici :

    http://images.malwareremoval.com/random/RSIT.exe

    random's system information tool (RSIT) par andom/random et sauvegarde-le sur le Bureau.

    Double-clique sur RSIT.exe afin de lancer RSIT.

    Clique Continue à l'écran Disclaimer.

    Si l'outil HijackThis (version à jour) n'est pas présent ou non détecté sur l'ordinateur, RSIT le téléchargera (autorise l'accès dans ton pare-feu, si demandé) et tu devras accepter la licence.

    Lorsque l'analyse sera terminée, deux fichiers texte s'ouvriront.

    Poste le contenu de log.txt (<<qui sera affiché)
    ainsi que de info.txt (<<qui sera réduit dans la Barre des Tâches).

    NB : Les rapports sont sauvegardés dans le dossier C:\rsit
    Télécharge ici :

    http://images.malwareremoval.com/random/RSIT.exe

    random's system information tool (RSIT) par andom/random et sauvegarde-le sur le Bureau.

    Double-clique sur RSIT.exe afin de lancer RSIT.

    Clique Continue à l'écran Disclaimer.

    Si l'outil HijackThis (version à jour) n'est pas présent ou non détecté sur l'ordinateur, RSIT le téléchargera (autorise l'accès dans ton pare-feu, si demandé) et tu devras accepter la licence.

    Lorsque l'analyse sera terminée, deux fichiers texte s'ouvriront.

    Poste le contenu de log.txt (<<qui sera affiché)
    ainsi que de info.txt (<<qui sera réduit dans la Barre des Tâches).

    NB : Les rapports sont sauvegardés dans le dossier C:\rsit
    0
    1. sabine
       
      voila le rapport:

      ========== FILES ==========
      C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe moved successfully.
      File/Folder C:\Documents and Settings\Administrateur\Local Settings\Application Data\Mozilla\Firefox\Profiles\laqq8f12.default\Cache\C215259­­1d01 not found.
      File/Folder c:\program files\siber systems\ai roboform\robotaskbaricon.exe not found.
      C:\Program Files\Fichiers communs\BOONTY Shared\Service moved successfully.
      C:\Program Files\Fichiers communs\BOONTY Shared moved successfully.

      OTMoveIt3 by OldTimer - Version 1.0.7.2 log created on 12292008_211002

      je fais le reste
      0
      1. sabine > sabine
         
        j ai reinstallé l antivirus avast 4. il marche.
        j ai fait un scanne dessus il m a trouvé un trojan.
        je fais la suite
        0
      2. sabine > sabine
         
        rappport log:
        Logfile of random's system information tool 1.05 (written by random/random)
        Run by Administrateur at 2008-12-30 08:16:46
        Microsoft Windows XP Professionnel Service Pack 2
        System drive C: has 44 GB (58%) free of 76 GB
        Total RAM: 191 MB (8% free)

        Logfile of Trend Micro HijackThis v2.0.2
        Scan saved at 08:17:49, on 30/12/2008
        Platform: Windows XP SP2 (WinNT 5.01.2600)
        MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
        Boot mode: Normal

        Running processes:
        C:\WINDOWS\System32\smss.exe
        C:\WINDOWS\system32\winlogon.exe
        C:\WINDOWS\system32\services.exe
        C:\WINDOWS\system32\lsass.exe
        C:\WINDOWS\system32\svchost.exe
        C:\WINDOWS\System32\svchost.exe
        C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
        C:\Program Files\Alwil Software\Avast4\ashServ.exe
        C:\WINDOWS\Explorer.EXE
        C:\WINDOWS\system32\spoolsv.exe
        C:\WINDOWS\system32\agrsmsvc.exe
        C:\WINDOWS\System32\FTRTSVC.exe
        C:\Program Files\Java\jre6\bin\jqs.exe
        C:\WINDOWS\SOUNDMAN.EXE
        C:\WINDOWS\system32\VTTimer.exe
        C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
        C:\WINDOWS\system32\svchost.exe
        C:\Program Files\Java\jre6\bin\jusched.exe
        C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
        C:\PROGRA~1\Wanadoo\TaskBarIcon.exe
        C:\WINDOWS\system32\ctfmon.exe
        C:\Program Files\Samsung\Digimax Viewer 2.0\STImgBrowser.exe
        C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
        C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
        C:\Program Files\Wanadoo\GestionnaireInternet.exe
        C:\Program Files\Wanadoo\ComComp.exe
        C:\PROGRA~1\Wanadoo\Toaster.exe
        C:\PROGRA~1\Wanadoo\Inactivity.exe
        C:\PROGRA~1\Wanadoo\PollingModule.exe
        C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE
        C:\Program Files\Wanadoo\Watch.exe
        C:\Program Files\Windows Live\Messenger\usnsvc.exe
        C:\Program Files\Mozilla Firefox\firefox.exe
        C:\Documents and Settings\Administrateur\Bureau\RSIT.exe
        C:\Program Files\trend micro\Administrateur.exe

        R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
        R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Orange
        R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
        R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL
        R3 - URLSearchHook: SearchSettings Class - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\Search Settings\kb127\SearchSettings.dll
        O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
        O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll (file missing)
        O2 - BHO: DealioBHO Class - {6A87B991-A31F-4130-AE72-6D0C294BF082} - C:\Program Files\Dealio\kb127\Dealio.dll (file missing)
        O2 - BHO: RoboForm - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll
        O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
        O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
        O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
        O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
        O2 - BHO: SearchSettings Class - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\Search Settings\kb127\SearchSettings.dll
        O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
        O3 - Toolbar: &RoboForm - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll
        O3 - Toolbar: Dealio - {E67C74F4-A00A-4F2C-9FEC-FD9DC004A67F} - C:\Program Files\Dealio\kb127\Dealio.dll (file missing)
        O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
        O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
        O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
        O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\GestMaj.exe TaskBarIcon.exe
        O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
        O4 - HKLM\..\Run: [SearchSettings] C:\Program Files\Search Settings\SearchSettings.exe
        O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
        O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
        O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\Shell.exe appLaunchClientZone.shl|PARAM= cnx
        O4 - HKCU\..\Run: [drvsyskit] C:\Documents and Settings\Administrateur\Application Data\drivers\winupgro.exe
        O4 - HKCU\..\Run: [german.exe] C:\WINDOWS\system32\wintems.exe
        O4 - HKCU\..\Run: [mule_st_key] C:\Documents and Settings\Administrateur\Application Data\m\flec006.exe
        O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
        O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
        O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
        O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
        O4 - Global Startup: Digimax Viewer 2.0.lnk = ?
        O8 - Extra context menu item: Barre RoboForm - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
        O8 - Extra context menu item: Compare Prices with &Dealio - C:\Documents and Settings\Administrateur\Application Data\Dealio\kb127\res\DealioSearch.html
        O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
        O8 - Extra context menu item: Enregistrer le formulaire - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
        O8 - Extra context menu item: Personnaliser le menu - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html
        O8 - Extra context menu item: Remplir le formulaire - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
        O9 - Extra button: Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
        O9 - Extra 'Tools' menuitem: Windows Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
        O9 - Extra button: Remplir - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
        O9 - Extra 'Tools' menuitem: Remplir le formulaire - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
        O9 - Extra button: Enregistrer - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
        O9 - Extra 'Tools' menuitem: Enregistrer le formulaire - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
        O9 - Extra button: Barre RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
        O9 - Extra 'Tools' menuitem: Barre RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
        O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
        O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
        O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
        O9 - Extra button: Dealio - {E908B145-C847-4e85-B315-07E2E70DECF8} - C:\Program Files\Dealio\kb127\Dealio.dll (file missing)
        O9 - Extra 'Tools' menuitem: Dealio - {E908B145-C847-4e85-B315-07E2E70DECF8} - C:\Program Files\Dealio\kb127\Dealio.dll (file missing)
        O9 - Extra button: Orange - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
        O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/2008.10.10_v5.5.8/FacebookPhotoUploader5.cab
        O16 - DPF: {2D8ED06D-3C30-438B-96AE-4D110FDC1FB8} (ActiveScan 2.0 Installer Class) - http://www.pandasecurity.com/activescan/cabs/as2stubie.cab
        O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.zebulon.fr/scan8/oscan8.cab
        O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/...
        O16 - DPF: {80DD2229-B8E4-4C77-B72F-F22972D723EA} - http://www.inoculer.com/antivirus/Msie/bitdefender.cab
        O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - https://www.touslesdrivers.com/index.php?v_page=29
        O16 - DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} (Zylom Games Player) - http://game05.zylom.com/activex/zylomgamesplayer.cab
        O16 - DPF: {D0C0F75C-683A-4390-A791-1ACFD5599AB8} (Oberon Flash Game Host) - http://jeuxmultijoueurs.orange.fr/Gameshell/GameHost/1.0/OberonGameHost.cab
        O17 - HKLM\System\CCS\Services\Tcpip\..\{04C6133D-2F8B-4125-8533-3461A511062E}: NameServer = 192.168.1.1
        O17 - HKLM\System\CS1\Services\Tcpip\..\{04C6133D-2F8B-4125-8533-3461A511062E}: NameServer = 192.168.1.1
        O17 - HKLM\System\CS2\Services\Tcpip\..\{04C6133D-2F8B-4125-8533-3461A511062E}: NameServer = 192.168.1.1
        O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - Agere Systems - C:\WINDOWS\system32\agrsmsvc.exe
        O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
        O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
        O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
        O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
        O23 - Service: Boonty Games - Unknown owner - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe (file missing)
        O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe
        O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
        O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe
        O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
        0
      3. sabine > sabine
         
        rapport info.text:
        info.txt logfile of random's system information tool 1.05 2008-12-30 08:18:02

        ======Uninstall list======

        -->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
        Adobe Flash Player 10 ActiveX-->C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
        Adobe Flash Player 10 Plugin-->C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
        Adobe Reader 8.1.0 - Français-->MsiExec.exe /I{AC76BA86-7AD7-1036-7B44-A81000000003}
        Adobe Shockwave Player-->C:\WINDOWS\system32\Adobe\SHOCKW~1\UNWISE.EXE C:\WINDOWS\system32\Adobe\SHOCKW~1\Install.log
        Agere Systems PCI Soft Modem-->agrsmdel
        AI RoboForm (All Users)-->"C:\Program Files\Siber Systems\AI RoboForm\rfwipeout.exe"
        Archiveur WinRAR-->C:\Program Files\WinRAR\uninstall.exe
        Assistant de connexion Windows Live-->MsiExec.exe /I{AFA4E5FD-ED70-4D92-99D0-162FD56DC986}
        Audacity 1.2.6-->"C:\Program Files\Audacity\unins000.exe"
        avast! Antivirus-->C:\Program Files\Alwil Software\Avast4\aswRunDll.exe "C:\Program Files\Alwil Software\Avast4\Setup\setiface.dll",RunSetup
        Correctif pour Lecteur Windows Media 11 (KB939683)-->"C:\WINDOWS\$NtUninstallKB939683$\spuninst\spuninst.exe"
        Correctif pour Windows XP (KB952287)-->"C:\WINDOWS\$NtUninstallKB952287$\spuninst\spuninst.exe"
        Dealio Toolbar 3.4-->MsiExec.exe /X{6105648C-0C3C-481D-8C11-1F4952D6FB53}
        Digimax 301-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{63C02196-D8B3-11D7-ABE1-0080C8274868}\Setup.exe" -l0x9
        Digimax Viewer 2.0-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{9EE54C1F-FC99-44D6-916A-0CA2D45E740F}\Setup.exe"
        Disque de souvenirs HP-->MsiExec.exe /X{B376402D-58EA-45EA-BD50-DD924EB67A70}
        DivX Codec-->C:\Program Files\DivX\DivXCodecUninstall.exe /CODEC
        DivX Player-->C:\Program Files\DivX\DivXPlayerUninstall.exe /PLAYER
        DivX Web Player-->C:\Program Files\DivX\DivXWebPlayerUninstall.exe /PLUGIN
        FindyKill-->C:\Program Files\FindyKill\Uninstal.exe
        Free Easy Burner V 3.8-->"C:\Program Files\Free Easy Burner\unins000.exe"
        Gestionnaire Internet-->C:\PROGRA~1\Wanadoo\uninstall.exe
        HijackThis 2.0.2-->"C:\Program Files\trend micro\HijackThis.exe" /uninstall
        Hotfix for Windows Media Format 11 SDK (KB929399)-->"C:\WINDOWS\$NtUninstallKB929399$\spuninst\spuninst.exe"
        Hotfix for Windows XP (KB926239)-->"C:\WINDOWS\$NtUninstallKB926239$\spuninst\spuninst.exe"
        hp psc 1200 series-->MsiExec.exe /X{C900EF06-2E76-49C7-8DB0-41F629B21DC5}
        Java(TM) 6 Update 10-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216010FF}
        Lecteur Windows Media 11-->"C:\Program Files\Windows Media Player\Setup_wm.exe" /Uninstall
        Ma-Config.com-->MsiExec.exe /X{EC7FE2ED-F305-41B7-90B8-3DAE9E35307A}
        Microsoft Compression Client Pack 1.0 for Windows XP-->"C:\WINDOWS\$NtUninstallMSCompPackV1$\spuninst\spuninst.exe"
        Microsoft Office Professional Edition 2003-->MsiExec.exe /I{9011040C-6000-11D3-8CFE-0150048383C9}
        Microsoft User-Mode Driver Framework Feature Pack 1.0-->"C:\WINDOWS\$NtUninstallWudf01000$\spuninst\spuninst.exe"
        Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
        Mise à jour de sécurité pour Lecteur Windows Media (KB952069)-->"C:\WINDOWS\$NtUninstallKB952069_WM9$\spuninst\spuninst.exe"
        Mise à jour de sécurité pour Lecteur Windows Media 11 (KB936782)-->"C:\WINDOWS\$NtUninstallKB936782_WMP11$\spuninst\spuninst.exe"
        Mise à jour de sécurité pour Lecteur Windows Media 11 (KB954154)-->"C:\WINDOWS\$NtUninstallKB954154_WM11$\spuninst\spuninst.exe"
        Mise à jour de sécurité pour Windows XP (KB923789)-->C:\WINDOWS\system32\MacroMed\Flash\genuinst.exe C:\WINDOWS\system32\MacroMed\Flash\KB923789.inf
        Mise à jour de sécurité pour Windows XP (KB938464)-->"C:\WINDOWS\$NtUninstallKB938464$\spuninst\spuninst.exe"
        Mise à jour de sécurité pour Windows XP (KB941569)-->"C:\WINDOWS\$NtUninstallKB941569$\spuninst\spuninst.exe"
        Mise à jour de sécurité pour Windows XP (KB944338-v2)-->"C:\WINDOWS\$NtUninstallKB944338-v2$\spuninst\spuninst.exe"
        Mise à jour de sécurité pour Windows XP (KB946648)-->"C:\WINDOWS\$NtUninstallKB946648$\spuninst\spuninst.exe"
        Mise à jour de sécurité pour Windows XP (KB950762)-->"C:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe"
        Mise à jour de sécurité pour Windows XP (KB950974)-->"C:\WINDOWS\$NtUninstallKB950974$\spuninst\spuninst.exe"
        Mise à jour de sécurité pour Windows XP (KB951066)-->"C:\WINDOWS\$NtUninstallKB951066$\spuninst\spuninst.exe"
        Mise à jour de sécurité pour Windows XP (KB951376-v2)-->"C:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe"
        Mise à jour de sécurité pour Windows XP (KB951698)-->"C:\WINDOWS\$NtUninstallKB951698$\spuninst\spuninst.exe"
        Mise à jour de sécurité pour Windows XP (KB952954)-->"C:\WINDOWS\$NtUninstallKB952954$\spuninst\spuninst.exe"
        Mise à jour de sécurité pour Windows XP (KB954211)-->"C:\WINDOWS\$NtUninstallKB954211$\spuninst\spuninst.exe"
        Mise à jour de sécurité pour Windows XP (KB954600)-->"C:\WINDOWS\$NtUninstallKB954600$\spuninst\spuninst.exe"
        Mise à jour de sécurité pour Windows XP (KB955069)-->"C:\WINDOWS\$NtUninstallKB955069$\spuninst\spuninst.exe"
        Mise à jour de sécurité pour Windows XP (KB956390)-->"C:\WINDOWS\$NtUninstallKB956390$\spuninst\spuninst.exe"
        Mise à jour de sécurité pour Windows XP (KB956391)-->"C:\WINDOWS\$NtUninstallKB956391$\spuninst\spuninst.exe"
        Mise à jour de sécurité pour Windows XP (KB956802)-->"C:\WINDOWS\$NtUninstallKB956802$\spuninst\spuninst.exe"
        Mise à jour de sécurité pour Windows XP (KB956803)-->"C:\WINDOWS\$NtUninstallKB956803$\spuninst\spuninst.exe"
        Mise à jour de sécurité pour Windows XP (KB956841)-->"C:\WINDOWS\$NtUninstallKB956841$\spuninst\spuninst.exe"
        Mise à jour de sécurité pour Windows XP (KB957095)-->"C:\WINDOWS\$NtUninstallKB957095$\spuninst\spuninst.exe"
        Mise à jour de sécurité pour Windows XP (KB957097)-->"C:\WINDOWS\$NtUninstallKB957097$\spuninst\spuninst.exe"
        Mise à jour de sécurité pour Windows XP (KB958215)-->"C:\WINDOWS\$NtUninstallKB958215$\spuninst\spuninst.exe"
        Mise à jour de sécurité pour Windows XP (KB958644)-->"C:\WINDOWS\$NtUninstallKB958644$\spuninst\spuninst.exe"
        Mise à jour de sécurité pour Windows XP (KB960714)-->"C:\WINDOWS\$NtUninstallKB960714$\spuninst\spuninst.exe"
        Mise à jour pour Windows XP (KB898461)-->"C:\WINDOWS\$NtUninstallKB898461$\spuninst\spuninst.exe"
        Mise à jour pour Windows XP (KB922582)-->"C:\WINDOWS\$NtUninstallKB922582$\spuninst\spuninst.exe"
        Mise à jour pour Windows XP (KB951072-v2)-->"C:\WINDOWS\$NtUninstallKB951072-v2$\spuninst\spuninst.exe"
        Mise à jour pour Windows XP (KB955839)-->"C:\WINDOWS\$NtUninstallKB955839$\spuninst\spuninst.exe"
        Mozilla Firefox (3.0.4)-->C:\Program Files\Mozilla Firefox\uninstall\helper.exe
        MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
        Navigateur Orange-->C:\PROGRA~1\Wanadoo\Shell.exe inst\uninst_FTBrowser.shl
        Norton Security Scan-->"C:\Program Files\Fichiers communs\Symantec Shared\NSSSetup\{E579F5FB-D9C9-43A6-8DCF-67B9573C2E7C}_2_0_0\NSSSetup.exe" /X
        Panda ActiveScan 2.0-->C:\Program Files\Panda Security\ActiveScan 2.0\as2uninst.exe
        Photo et imagerie HP 2.0 - All-in-One Pilote-->MsiExec.exe /X{6ECB39BD-73C2-44DD-B1A0-898207C58D8B}
        Photo et imagerie HP 2.0 - All-in-One-->MsiExec.exe /X{9867A917-5D17-40DE-83BA-BEA5293194B1}
        Photo et imagerie HP 2.0 - hp psc 1200 series-->C:\Program Files\Hewlett-Packard\Digital Imaging\{7C8BB31C-E09E-4c7d-BBF1-45E33B467FE1}\Setup\hpzscr01.exe -datfile hposcr02.dat -forcereboot
        Pinnacle PCTV-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{3C02ED4F-46B0-4E9E-87F7-47AEBA4031C8}\Setup.exe" -l0x40c -L0x40c UNINSTALL
        Realtek AC'97 Audio-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{FB08F381-6533-4108-B7DD-039E11FBC27E}\setup.exe" -l0x40c -removeonly
        Search Settings 1.2-->MsiExec.exe /X{D0C73318-7B4A-4D16-A0C4-3B83F075EA88}
        Sony Ericsson Device Data-->MsiExec.exe /I{C92E7DF1-624A-4D95-A4C4-18CB491B44A4}
        Sony Ericsson Drivers-->MsiExec.exe /I{5CC68528-24FF-4DF8-91C9-AF540F98505A}
        Sony Ericsson PC Suite-->C:\WINDOWS\Installer\{D6BF6477-8369-489F-8DE6-3731F4B88560}\setup.exe /uninstall
        Sony Ericsson PC Suite-->MsiExec.exe /I{B192E1BB-98A4-4369-9271-96117A57F546}
        Unity Web Player-->C:\Program Files\Unity\WebPlayer\Uninstall.exe
        VIA Gestionnaire de périphériques de plate-forme-->C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{20D4A895-748C-4D88-871C-FDB1695B0169}
        VIA Rhine-Family Fast-Ethernet Adapter-->Rundll32.exe vuins32.dll,vuins32Ex $Rhine $VIA
        Winamp (remove only)-->"C:\Program Files\Winamp\UninstWA.exe"
        Winamp Toolbar for Firefox-->"C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\laqq8f12.default\extensions\{0b38152b-1b20-484d-a11f-5e04a9b0661f}\uninstall.exe"
        Windows Installer 3.1 (KB893803)-->"C:\WINDOWS\$MSI31Uninstall_KB893803v2$\spuninst\spuninst.exe"
        Windows Live installer-->MsiExec.exe /X{FD44E544-E7D0-4DBA-9FA0-8AE1A1300390}
        Windows Live Messenger-->MsiExec.exe /X{BADF6744-3787-48F6-B8C9-4C4995401D65}
        Windows Media Format 11 runtime-->"C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
        Windows Media Format 11 runtime-->"C:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe"
        Windows Media Player 11-->"C:\WINDOWS\$NtUninstallwmp11$\spuninst\spuninst.exe"

        ======Security center information======

        AV: avast! antivirus 4.8.1296 [VPS 081229-0]

        System event log

        Computer Name: SABINE-C91ECD6E
        Event Code: 6009
        Message: Microsoft (R) Windows (R) 5.01. 2600 Service Pack 2 Uniprocessor Free.

        Record Number: 5778
        Source Name: EventLog
        Time Written: 20081218085457.000000+060
        Event Type: Informations
        User:

        Computer Name: SABINE-C91ECD6E
        Event Code: 6006
        Message: Le service d'Enregistrement d'événement a été arrêté.

        Record Number: 5777
        Source Name: EventLog
        Time Written: 20081217204846.000000+060
        Event Type: Informations
        User:

        Computer Name: SABINE-C91ECD6E
        Event Code: 7036
        Message: Le service Configuration automatique sans fil est entré dans l'état : en cours d'exécution.

        Record Number: 5776
        Source Name: Service Control Manager
        Time Written: 20081217204804.000000+060
        Event Type: Informations
        User:

        Computer Name: SABINE-C91ECD6E
        Event Code: 7035
        Message: Un contrôle Démarrer a correctement été envoyé au service Configuration automatique sans fil.

        Record Number: 5775
        Source Name: Service Control Manager
        Time Written: 20081217204804.000000+060
        Event Type: Informations
        User: SABINE-C91ECD6E\Administrateur

        Computer Name: SABINE-C91ECD6E
        Event Code: 7036
        Message: Le service Service Messenger Sharing Folders USN Journal Reader est entré dans l'état : en cours d'exécution.

        Record Number: 5774
        Source Name: Service Control Manager
        Time Written: 20081217184718.000000+060
        Event Type: Informations
        User:

        Application event log

        Computer Name: SABINE-C91ECD6E
        Event Code: 1000
        Message: Les compteurs de performances pour le service MSDTC (MSDTC) ont été chargés.
        Les données d'enregistrement contiennent les nouvelles valeurs d'index
        assignées à ce service.

        Record Number: 5
        Source Name: LoadPerf
        Time Written: 20081113184242.000000+060
        Event Type: Informations
        User:

        Computer Name: SABINE-C91ECD6E
        Event Code: 1000
        Message: Les compteurs de performances pour le service TermService (Services Terminal Server) ont été chargés.
        Les données d'enregistrement contiennent les nouvelles valeurs d'index
        assignées à ce service.

        Record Number: 4
        Source Name: LoadPerf
        Time Written: 20081113184238.000000+060
        Event Type: Informations
        User:

        Computer Name: SABINE-C91ECD6E
        Event Code: 1000
        Message: Les compteurs de performances pour le service RemoteAccess (Routage et accès distant) ont été chargés.
        Les données d'enregistrement contiennent les nouvelles valeurs d'index
        assignées à ce service.

        Record Number: 3
        Source Name: LoadPerf
        Time Written: 20081113184129.000000+060
        Event Type: Informations
        User:

        Computer Name: SABINE-C91ECD6E
        Event Code: 1000
        Message: Les compteurs de performances pour le service PSched (PSched) ont été chargés.
        Les données d'enregistrement contiennent les nouvelles valeurs d'index
        assignées à ce service.

        Record Number: 2
        Source Name: LoadPerf
        Time Written: 20081113184100.000000+060
        Event Type: Informations
        User:

        Computer Name: SABINE-C91ECD6E
        Event Code: 1000
        Message: Les compteurs de performances pour le service RSVP (QoS RSVP) ont été chargés.
        Les données d'enregistrement contiennent les nouvelles valeurs d'index
        assignées à ce service.

        Record Number: 1
        Source Name: LoadPerf
        Time Written: 20081113184059.000000+060
        Event Type: Informations
        User:

        ======Environment variables======

        "ComSpec"=%SystemRoot%\system32\cmd.exe
        "Path"=C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;C:\Program Files\Fichiers communs\Teleca Shared
        "windir"=%SystemRoot%
        "FP_NO_HOST_CHECK"=NO
        "OS"=Windows_NT
        "PROCESSOR_ARCHITECTURE"=x86
        "PROCESSOR_LEVEL"=6
        "PROCESSOR_IDENTIFIER"=x86 Family 6 Model 10 Stepping 0, AuthenticAMD
        "PROCESSOR_REVISION"=0a00
        "NUMBER_OF_PROCESSORS"=1
        "PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
        "TEMP"=%SystemRoot%\TEMP
        "TMP"=%SystemRoot%\TEMP

        -----------------EOF-----------------
        0
  4. jlpjlp Messages postés 52399 Statut Contributeur sécurité 5 041
     
    télécharge combofix (par sUBs) ici :

    http://download.bleepingcomputer.com/sUBs/ComboFix.exe

    et enregistre le sur le bureau après l'avoir renommé en killbagle.

    déconnecte toi d'internet et ferme toutes tes applications.

    désactive tes protections (antivirus, parefeu, garde en temps réel de l'antispyware)

    double-clique sur combofix.exe et suis les instructions

    à la fin, il va produire un rapport C:\ComboFix.txt

    réactive ton parefeu, ton antivirus, la garde de ton antispyware

    copie/colle le rapport C:\ComboFix.txt dans ta prochaine réponse.

    Attention, n'utilise pas ta souris ni ton clavier (ni un autre système de pointage) pendant que le programme tourne. Cela pourrait figer l'ordi.

    Tu as un tutoriel complet ici :

    https://www.bleepingcomputer.com/combofix/fr/comment-utiliser-combofix

    _____________________

    Télécharge Toolbar-S&D (Team IDN) sur ton Bureau.
    https://77b4795d-a-62cb3a1a-s-sites.googlegroups.com/site/eric71mespages/ToolBarSD.exe?attachauth=ANoY7cqJWPphpudyTqv7TRo5RQ3nm_Sx8JluVMO59X5E9cyE3j3LqKlmStIqiDqJdIgMJLi7MXn2nKVajQfoWuVvZZ2wIx_vkqO4k4P0K9jh-ra9jaKPXdZcoaVF2UqJZNH8ubL_42uIwh6f35xJ2GJMuzddVj2Qth1DgZ839lxEIFGkgWz3TdfvNMy-YtxfA3gqBUrj4U4LFeAPiWr3ClmjIP0t_Xs5PQ%3D%3D&attredirects=2

    * Lance l'installation du programme en exécutant le fichier téléchargé.
    * Double-clique maintenant sur le raccourci de Toolbar-S&D.
    * Sélectionne la langue souhaitée en tapant la lettre de ton choix puis en validant avec la touche Entrée.
    * Choisis maintenant l'option 1 (Recherche). Patiente jusqu'à la fin de la recherche.
    * Poste le rapport généré. (C:\TB.txt)
    0
    1. sabine
       
      rapport combofix:
      ComboFix 08-12-29.02 - Administrateur 2008-12-30 19:15:40.1 - NTFSx86
      Microsoft Windows XP Professionnel 5.1.2600.2.1252.1.1036.18.191.37 [GMT 1:00]
      Lancé depuis: c:\documents and settings\Administrateur\Bureau\ComboFix.exe
      * Un nouveau point de restauration a été créé
      .

      (((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
      .

      c:\documents and settings\Administrateur\Application Data\drivers\downld
      C:\Documents
      c:\windows\IE4 Error Log.txt

      .
      ((((((((((((((((((((((((((((((((((((((( Pilotes/Services )))))))))))))))))))))))))))))))))))))))))))))))))
      .

      -------\Legacy_BOONTY_GAMES
      -------\Service_Boonty Games


      ((((((((((((((((((((((((((((( Fichiers créés du 2008-11-28 au 2008-12-30 ))))))))))))))))))))))))))))))))))))
      .

      2008-12-30 08:17 . 2008-12-30 08:17 <REP> d-------- c:\program files\trend micro
      2008-12-30 08:16 . 2008-12-30 08:18 <REP> d-------- C:\rsit
      2008-12-29 21:10 . 2008-12-29 21:15 <REP> d-------- C:\_OTMoveIt
      2008-12-29 09:32 . 2008-12-29 09:32 <REP> d-------- c:\program files\Panda Security
      2008-12-29 09:32 . 2008-06-19 17:24 28,544 --a------ c:\windows\system32\drivers\pavboot.sys
      2008-12-29 08:32 . 2008-12-30 19:18 <REP> d--h----- c:\documents and settings\Administrateur\Application Data\drivers
      2008-12-28 21:17 . 2008-12-29 08:20 <REP> d-------- c:\program files\FindyKill
      2008-12-28 19:44 . 2008-12-28 20:30 <REP> d-------- c:\windows\BDOSCAN8
      2008-12-28 17:51 . 2008-12-28 17:51 <REP> d-------- c:\documents and settings\Administrateur\Application Data\MySpace
      2008-12-28 17:47 . 2008-12-28 17:47 253,952 --------- c:\windows\Setup1.exe
      2008-12-28 17:47 . 2008-12-28 17:47 74,752 --a------ c:\windows\ST6UNST.EXE
      2008-12-28 15:10 . 2008-12-28 15:12 <REP> d-------- c:\windows\avxoscan
      2008-12-28 15:09 . 2008-12-28 15:09 507,904 --a------ c:\windows\TMUPDATE.DLL
      2008-12-28 15:09 . 2008-12-28 15:09 286,720 --a------ c:\windows\PATCH.EXE
      2008-12-28 15:09 . 2008-12-28 15:09 69,689 --a------ c:\windows\UNZIP.DLL
      2008-12-25 15:50 . 2008-12-25 16:00 <REP> d-------- c:\program files\uTorrent
      2008-12-25 15:42 . 2008-12-27 21:03 <REP> d-------- c:\documents and settings\Administrateur\Application Data\uTorrent
      2008-12-24 08:56 . 2008-12-24 08:56 <REP> d-------- c:\documents and settings\Administrateur\Application Data\Search Settings
      2008-12-19 20:07 . 2008-12-19 20:07 <REP> d-------- c:\program files\Search Settings
      2008-12-19 20:05 . 2008-12-28 19:19 <REP> d-------- c:\documents and settings\Administrateur\Application Data\Dealio
      2008-12-19 20:04 . 2006-11-18 11:38 200,704 --a------ c:\windows\system32\vbalExpBar6.ocx
      2008-12-19 20:04 . 1998-07-13 17:53 44,544 --a------ c:\windows\system32\GIF89.DLL
      2008-12-19 20:03 . 2008-12-20 17:29 <REP> d-------- c:\program files\Free Easy Burner
      2008-12-19 20:03 . 2005-03-11 18:37 1,986,560 --a------ c:\windows\system32\AudFile.dll
      2008-12-19 20:03 . 2005-02-24 13:11 1,212,416 --a------ c:\windows\system32\AudioInfos.dll
      2008-12-19 20:03 . 2005-02-24 12:51 348,160 --a------ c:\windows\system32\WMAFile.dll
      2008-12-19 20:03 . 2003-08-07 13:01 237,568 --a------ c:\windows\system32\lame_enc.dll
      2008-12-19 20:03 . 2005-01-10 13:54 116,296 --a------ c:\windows\system32\NCTWMAProfiles.prx
      2008-12-19 20:03 . 2003-04-18 15:29 44,544 --a------ c:\windows\system32\msxml4a.dll
      2008-12-19 20:03 . 2003-01-26 12:41 40,960 --a------ c:\windows\system32\SSubTmr6.dll
      2008-12-19 08:12 . 2008-12-19 08:12 <REP> d-------- c:\program files\d-lusion
      2008-12-17 08:36 . 2008-12-17 08:36 <REP> d-------- c:\program files\Samsung
      2008-12-17 08:34 . 2008-12-17 08:34 <REP> d-------- c:\program files\directx
      2008-12-14 18:49 . 2008-12-14 18:49 <REP> d-------- c:\documents and settings\All Users\Application Data\PlayFirst
      2008-12-14 18:49 . 2008-12-14 18:49 <REP> d-------- c:\documents and settings\Administrateur\Application Data\Zylom
      2008-12-14 18:49 . 2008-12-14 18:49 <REP> d-------- c:\documents and settings\Administrateur\Application Data\PlayFirst
      2008-12-14 18:47 . 2008-12-14 19:18 <REP> d-------- c:\program files\Zylom Games
      2008-12-08 20:36 . 2008-12-10 08:36 <REP> d-------- c:\documents and settings\Administrateur\Application Data\DivX
      2008-12-08 20:30 . 2008-11-21 22:47 120,056 --------- c:\windows\system32\pxcpyi64.exe
      2008-12-08 20:30 . 2008-11-21 22:47 118,520 --------- c:\windows\system32\pxinsi64.exe
      2008-12-08 20:28 . 2008-12-09 20:33 <REP> d-------- c:\program files\DivX
      2008-12-08 18:35 . 2008-12-08 18:35 <REP> d-------- c:\documents and settings\All Users\Application Data\BOONTY
      2008-12-07 14:13 . 2008-12-07 17:31 <REP> d-a------ c:\documents and settings\All Users\Application Data\TEMP
      2008-12-07 13:54 . 2008-12-07 13:54 <REP> d-------- c:\program files\Unity
      2008-12-06 12:13 . 2008-12-06 12:13 <REP> d-------- c:\program files\Siber Systems
      2008-12-06 12:13 . 2008-12-06 12:13 <REP> d-------- c:\documents and settings\All Users\Application Data\RoboForm
      2008-12-05 21:30 . 2008-12-05 21:36 <REP> d-------- C:\audiograbber
      2008-12-05 20:53 . 2008-12-05 20:53 <REP> d-------- c:\program files\EXPStudio
      2008-12-05 20:50 . 2008-12-05 20:50 245,804 --a------ C:\Song001.wav
      2008-12-05 20:40 . 1998-06-24 00:00 164,144 --a------ c:\windows\system32\COMCT232.OCX
      2008-12-05 20:40 . 2000-10-01 19:00 119,568 --a------ c:\windows\system32\VB6FR.DLL
      2008-12-05 20:40 . 2000-05-22 15:58 115,920 --a------ c:\windows\system32\msinet.OCX
      2008-12-05 20:40 . 1999-03-25 19:00 101,888 --a------ c:\windows\system32\VB6STKIT.DLL
      2008-12-05 20:40 . 1998-07-12 23:00 15,360 --a------ c:\windows\system32\inetfr.DLL
      2008-12-05 20:39 . 2004-03-08 23:00 662,288 --a------ c:\windows\system32\MSCOMCT2.OCX
      2008-12-05 20:39 . 2004-03-08 23:00 224,016 --a------ c:\windows\system32\TABCTL32.OCX
      2008-12-05 20:39 . 2004-03-08 23:00 152,848 --a------ c:\windows\system32\COMDLG32.OCX
      2008-12-05 20:39 . 1998-07-12 23:00 141,312 --a------ c:\windows\system32\MSCMCFR.DLL
      2008-12-05 20:39 . 1998-07-12 23:00 59,904 --a------ c:\windows\system32\Mscc2fr.dll
      2008-12-05 20:39 . 1998-07-12 19:00 32,768 --a------ c:\windows\system32\CMDLGFR.DLL
      2008-12-05 20:39 . 1998-07-12 23:00 21,504 --a------ c:\windows\system32\TABCTFR.DLL
      2008-12-03 20:14 . 2008-12-03 20:14 <REP> d-------- c:\documents and settings\All Users\Application Data\AVS4YOU
      2008-12-03 20:14 . 2008-12-03 20:14 <REP> d-------- c:\documents and settings\Administrateur\Application Data\AVS4YOU
      2008-12-03 20:12 . 2008-12-05 20:09 <REP> d-------- c:\program files\Fichiers communs\AVSMedia
      2008-12-03 20:12 . 2006-03-03 10:02 658,432 --a------ c:\windows\system32\cc3270mt.dll
      2008-12-03 20:12 . 2003-05-21 13:50 24,576 --a------ c:\windows\system32\msxml3a.dll
      2008-12-03 19:52 . 2008-12-03 19:52 <REP> d-------- C:\My Music
      2008-12-03 18:05 . 2008-12-05 21:40 34 --a------ c:\windows\cdplayer.ini
      2008-12-03 17:58 . 2008-12-03 17:58 <REP> d-------- c:\program files\Audacity
      2008-12-01 07:00 . 2008-12-01 07:00 <REP> d-------- c:\program files\Fichiers communs\Symantec Shared
      2008-11-30 17:43 . 2008-11-30 18:49 <REP> d-------- c:\windows\system32\Adobe
      2008-11-30 16:45 . 2008-11-30 16:45 <REP> d-------- c:\windows\Sun
      2008-11-30 16:42 . 2008-11-30 16:42 <REP> d-------- c:\program files\Java
      2008-11-30 16:42 . 2008-11-30 16:42 410,976 --a------ c:\windows\system32\deploytk.dll
      2008-11-30 16:42 . 2008-11-30 16:42 73,728 --a------ c:\windows\system32\javacpl.cpl
      2008-11-23 18:40 . 2008-11-23 18:40 <REP> d-------- c:\program files\orange
      2008-11-23 18:40 . 2008-11-23 18:40 <REP> d-------- c:\program files\Fichiers communs\Oberon Media
      2008-11-23 11:31 . 2008-11-23 11:31 <REP> d-------- c:\documents and settings\All Users\Application Data\Zylom
      2008-11-22 20:44 . 2008-11-22 20:44 <REP> d-------- c:\program files\Fichiers communs\NSV
      2008-11-22 20:43 . 2008-12-28 17:18 1,065 --a------ c:\windows\winamp.ini
      2008-11-22 20:42 . 2008-12-28 17:17 <REP> d-------- c:\program files\Winamp
      2008-11-21 22:47 . 2008-11-21 22:47 3,596,288 --a------ c:\windows\system32\qt-dx331.dll
      2008-11-21 22:47 . 2008-11-21 22:47 524,288 --a------ c:\windows\system32\DivXsm.exe
      2008-11-21 22:47 . 2008-11-21 22:47 9,878 --a------ c:\windows\system32\dsm_fr.qm
      2008-11-21 22:47 . 2008-11-21 22:47 4,816 --a------ c:\windows\system32\divxsm.tlb
      2008-11-21 22:46 . 2008-11-21 22:46 1,044,480 --a------ c:\windows\system32\libdivx.dll
      2008-11-21 22:46 . 2008-11-21 22:46 200,704 --a------ c:\windows\system32\ssldivx.dll
      2008-11-21 22:44 . 2008-11-21 22:44 161,096 --a------ c:\windows\system32\DivXCodecVersionChecker.exe
      2008-11-21 22:44 . 2008-11-21 22:44 12,288 --a------ c:\windows\system32\DivXWMPExtType.dll
      2008-11-21 22:05 . 2008-11-21 22:05 <REP> d-------- c:\program files\MSXML 4.0
      2008-11-20 20:49 . 2008-11-20 20:50 <REP> d-------- c:\documents and settings\Administrateur\Application Data\Teleca
      2008-11-20 20:49 . 2007-04-04 12:43 108,552 -ra------ c:\windows\system32\drivers\s716mdm.sys
      2008-11-20 20:49 . 2007-04-04 12:43 100,360 -ra------ c:\windows\system32\drivers\s716mgmt.sys
      2008-11-20 20:49 . 2007-04-04 12:43 98,952 -ra------ c:\windows\system32\drivers\s716unic.sys
      2008-11-20 20:49 . 2007-04-04 12:43 98,568 -ra------ c:\windows\system32\drivers\s716obex.sys
      2008-11-20 20:49 . 2007-04-04 12:43 83,208 -ra------ c:\windows\system32\drivers\s716bus.sys
      2008-11-20 20:49 . 2007-04-04 12:43 23,176 -ra------ c:\windows\system32\drivers\s716nd5.sys
      2008-11-20 20:49 . 2007-04-04 12:43 15,112 -ra------ c:\windows\system32\drivers\s716mdfl.sys
      2008-11-20 20:49 . 2007-04-04 12:43 12,424 -ra------ c:\windows\system32\drivers\s716whnt.sys
      2008-11-20 20:49 . 2007-04-04 12:43 12,424 -ra------ c:\windows\system32\drivers\s716wh.sys
      2008-11-20 20:49 . 2007-04-04 12:43 12,424 -ra------ c:\windows\system32\drivers\s716cmnt.sys
      2008-11-20 20:49 . 2007-04-04 12:43 12,424 -ra------ c:\windows\system32\drivers\s716cm.sys
      2008-11-20 20:49 . 2007-04-04 12:43 11,016 -ra------ c:\windows\system32\drivers\s716cr.sys
      2008-11-20 20:42 . 2008-11-20 20:42 <REP> d-------- c:\documents and settings\Administrateur\Application Data\Sony Ericsson
      2008-11-20 20:39 . 2008-11-20 20:39 <REP> d-------- c:\program files\Sony Ericsson
      2008-11-20 20:39 . 2008-11-20 20:45 <REP> d-------- c:\program files\Fichiers communs\Teleca Shared
      2008-11-20 20:39 . 2008-11-20 20:39 <REP> d-------- c:\program files\Fichiers communs\Sony Ericsson Shared
      2008-11-20 20:35 . 2008-11-20 20:35 <REP> d-------- c:\windows\Downloaded Installations
      2008-11-20 20:32 . 2008-11-20 20:40 <REP> d-------- c:\documents and settings\All Users\Application Data\Teleca
      2008-11-20 20:32 . 2008-11-20 20:39 <REP> d-------- c:\documents and settings\All Users\Application Data\Sony Ericsson
      2008-11-20 08:35 . 2008-12-28 20:20 524 --a------ C:\hpfr3420.xml
      2008-11-20 08:23 . 2008-11-20 08:23 <REP> d-------- c:\documents and settings\Administrateur\Application Data\Hewlett-Packard
      2008-11-20 08:22 . 2008-11-20 08:22 82,380 --a------ c:\windows\system32\drivers\AFS2K.SYS
      2008-11-20 08:19 . 2003-03-09 05:31 233,528 -ra------ c:\windows\system32\HPZidr12.dll
      2008-11-20 08:19 . 2003-03-09 05:31 167,936 -ra------ c:\windows\system32\HPZipr12.dll
      2008-11-20 08:19 . 2003-03-09 05:31 94,208 -ra------ c:\windows\system32\HPZipt12.dll
      2008-11-20 08:19 . 2003-03-09 05:31 65,795 -ra------ c:\windows\system32\HPZipm12.exe
      2008-11-20 08:19 . 2003-03-09 05:31 61,699 -ra------ c:\windows\system32\HPZinw12.exe
      2008-11-20 08:19 . 2003-03-09 05:31 57,344 -ra------ c:\windows\system32\HPZisn12.dll
      2008-11-20 08:19 . 2003-03-09 05:31 51,024 -ra------ c:\windows\system32\drivers\hpzid412.sys
      2008-11-20 08:19 . 2003-03-09 05:31 21,456 -ra------ c:\windows\system32\drivers\HPZius12.sys
      2008-11-20 08:19 . 2003-03-09 05:31 16,080 -ra------ c:\windows\system32\drivers\HPZipr12.sys
      2008-11-20 08:18 . 2004-08-03 23:08 31,616 --a------ c:\windows\system32\drivers\usbccgp.sys
      2008-11-20 08:18 . 2004-08-03 23:08 31,616 --a--c--- c:\windows\system32\dllcache\usbccgp.sys
      2008-11-20 08:18 . 2004-08-03 23:01 25,856 --a------ c:\windows\system32\drivers\usbprint.sys

      .
      (((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
      .
      2008-11-21 21:47 129,784 ------w c:\windows\system32\pxafs.dll
      2008-11-13 17:47 --------- d-----w c:\program files\microsoft frontpage
      2008-11-13 17:44 --------- d-----w c:\program files\Services en ligne
      2008-10-23 13:00 283,648 ----a-w c:\windows\system32\gdi32.dll
      2008-10-16 13:13 202,776 ----a-w c:\windows\system32\wuweb.dll
      2008-10-16 13:13 1,809,944 ----a-w c:\windows\system32\wuaueng.dll
      2008-10-16 13:12 561,688 ----a-w c:\windows\system32\wuapi.dll
      2008-10-16 13:12 323,608 ----a-w c:\windows\system32\wucltui.dll
      2008-10-16 13:09 92,696 ----a-w c:\windows\system32\cdm.dll
      2008-10-16 13:09 51,224 ----a-w c:\windows\system32\wuauclt.exe
      2008-10-16 13:08 34,328 ----a-w c:\windows\system32\wups.dll
      2008-10-16 10:38 663,552 ----a-w c:\windows\system32\wininet.dll
      2008-10-03 10:17 247,326 ----a-w c:\windows\system32\strmdll.dll
      2008-09-30 15:43 1,286,152 ----a-w c:\windows\system32\msxml4.dll
      2008-09-23 16:46 245,408 ----a-w c:\windows\system32\unicows.dll
      2008-09-15 15:39 1,846,144 ----a-w c:\windows\system32\win32k.sys
      2008-09-04 16:45 1,106,944 ----a-w c:\windows\system32\msxml3.dll
      .

      ((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
      .
      .
      *Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
      REGEDIT4

      [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
      "CTFMON.EXE"="c:\windows\system32\ctfmon.exe" [2004-08-05 15360]
      "WOOKIT"="c:\progra~1\Wanadoo\Shell.exe" [2004-08-23 122880]

      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
      "WOOWATCH"="c:\progra~1\Wanadoo\Watch.exe" [2004-08-23 20480]
      "WOOTASKBARICON"="c:\progra~1\Wanadoo\GestMaj.exe" [2004-10-14 32768]
      "SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2008-11-30 136600]
      "SearchSettings"="c:\program files\Search Settings\SearchSettings.exe" [2008-06-12 991584]
      "avast!"="c:\progra~1\ALWILS~1\Avast4\ashDisp.exe" [2008-11-26 81000]
      "SoundMan"="SOUNDMAN.EXE" [2007-04-16 c:\windows\soundman.exe]
      "VTTimer"="VTTimer.exe" [2005-03-08 c:\windows\system32\VTTimer.exe]

      [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
      "CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2004-08-05 15360]

      [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
      "VIDC.PIM1"= PCLEPIM1.dll

      [HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^hp psc 1000 series.lnk]
      path=c:\documents and settings\All Users\Menu Démarrer\Programmes\Démarrage\hp psc 1000 series.lnk
      backup=c:\windows\pss\hp psc 1000 series.lnkCommon Startup

      [HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^hpoddt01.exe.lnk]
      path=c:\documents and settings\All Users\Menu Démarrer\Programmes\Démarrage\hpoddt01.exe.lnk
      backup=c:\windows\pss\hpoddt01.exe.lnkCommon Startup

      [HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^Pinnacle Scheduler.lnk]
      path=c:\documents and settings\All Users\Menu Démarrer\Programmes\Démarrage\Pinnacle Scheduler.lnk
      backup=c:\windows\pss\Pinnacle Scheduler.lnkCommon Startup

      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
      --a------ 2007-05-11 03:06 40048 c:\program files\Adobe\Reader 8.0\Reader\reader_sl.exe

      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
      --a------ 2008-08-08 13:11 490952 c:\program files\DAEMON Tools Lite\daemon.exe

      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sony Ericsson PC Suite]
      -ra------ 2007-05-28 10:14 528384 c:\program files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe

      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinampAgent]
      --a------ 2003-04-02 03:20 12288 c:\program files\Winamp\winampa.exe

      [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
      "EnableFirewall"= 0 (0x0)

      [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
      "%windir%\\system32\\sessmgr.exe"=
      "c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
      "c:\\Program Files\\Windows Live\\Messenger\\livecall.exe"=

      [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
      "4662:TCP"= 4662:TCP:tcpmule
      "4672:UDP"= 4672:UDP:udpmule

      R0 pavboot;pavboot;c:\windows\system32\drivers\pavboot.sys [2008-12-29 28544]
      R0 xfilt;VIA SATA IDE Hot-plug Driver;c:\windows\system32\DRIVERS\xfilt.sys [2008-11-14 17920]
      R1 aswSP;avast! Self Protection;c:\windows\system32\drivers\aswSP.sys [2008-12-29 111184]
      R2 aswFsBlk;aswFsBlk;c:\windows\system32\DRIVERS\aswFsBlk.sys [2008-12-29 20560]
      S3 pctvvbi;PCTVVBI;c:\windows\system32\DRIVERS\pctvvbi.sys [2008-11-14 6400]
      S3 S3chipid;S3chipid;\??\c:\docume~1\ADMINI~1\LOCALS~1\Temp\{2B43252C-A1E3-4C47-927C-9F2C276D3515}\S3chipid.sys []
      S3 s716bus;Sony Ericsson Device 716 driver (WDM);c:\windows\system32\DRIVERS\s716bus.sys [2008-11-20 83208]
      S3 s716mdfl;Sony Ericsson Device 716 USB WMC Modem Filter;c:\windows\system32\DRIVERS\s716mdfl.sys [2008-11-20 15112]
      S3 s716mdm;Sony Ericsson Device 716 USB WMC Modem Driver;c:\windows\system32\DRIVERS\s716mdm.sys [2008-11-20 108552]
      S3 s716mgmt;Sony Ericsson Device 716 USB WMC Device Management Drivers (WDM);c:\windows\system32\DRIVERS\s716mgmt.sys [2008-11-20 100360]
      S3 s716nd5;Sony Ericsson Device 716 USB Ethernet Emulation SEMC716 (NDIS);c:\windows\system32\DRIVERS\s716nd5.sys [2008-11-20 23176]
      S3 s716obex;Sony Ericsson Device 716 USB WMC OBEX Interface;c:\windows\system32\DRIVERS\s716obex.sys [2008-11-20 98568]
      S3 s716unic;Sony Ericsson Device 716 USB Ethernet Emulation SEMC716 (WDM);c:\windows\system32\DRIVERS\s716unic.sys [2008-11-20 98952]
      .
      Contenu du dossier 'Tâches planifiées'

      2008-12-23 c:\windows\Tasks\FRU Task #Hewlett-Packard#hp psc 1200 series#1227165783.job
      - c:\program files\Hewlett-Packard\Digital Imaging\Bin\hpqfrucl.exe [2003-04-06 00:52]
      .
      - - - - ORPHELINS SUPPRIMES - - - -

      URLSearchHooks-{E312764E-7706-43F1-8DAB-FCDD2B1E416D} - (no file)
      MSConfigStartUp-au - c:\program files\Dealio\DealioAU.exe
      MSConfigStartUp-PCTVRemote - c:\program files\Pinnacle\Pinnacle PCTV\Remote\Remoterm.exe


      .
      ------- Examen supplémentaire -------
      .
      uStart Page = hxxp://www.orange.fr/
      uInternet Connection Wizard,ShellNext = iexplore
      IE: Barre RoboForm - file://c:\program files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
      IE: Compare Prices with &Dealio - c:\documents and settings\Administrateur\Application Data\Dealio\kb127\res\DealioSearch.html
      IE: E&xporter vers Microsoft Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
      IE: Enregistrer le formulaire - file://c:\program files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
      IE: Personnaliser le menu - file://c:\program files\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html
      IE: Remplir le formulaire - file://c:\program files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
      IE: { - c:\program files\Messenger\msmsgs.exe
      TCP: {04C6133D-2F8B-4125-8533-3461A511062E} = 192.168.1.1

      c:\windows\Downloaded Program Files\oscan81.ocx_x - c:\windows\bdoscandellang.ini
      c:\windows\bdoscandel.exe
      c:\windows\Downloaded Program Files\live.ini
      c:\windows\Downloaded Program Files\scanoptions.tsi
      c:\windows\Downloaded Program Files\lang.ini
      c:\windows\Downloaded Program Files\ipsupd.dll
      c:\windows\Downloaded Program Files\bdupd.dll
      c:\windows\Downloaded Program Files\libfn.dll
      c:\windows\Downloaded Program Files\bdcore.dll
      c:\windows\Downloaded Program Files\oscan8.ocx
      O16 -: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499}
      hxxp://www.zebulon.fr/scan8/oscan8.cab
      c:\windows\Downloaded Program Files\oscan8.inf

      O16 -: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} - hxxp://fichiers.touslesdrivers.com/fichiers/hardwaredetection/hardwaredetection_3_1_0_4.cab
      c:\windows\Downloaded Program Files\hardwaredetection.inf

      c:\windows\Downloaded Program Files\zylomgamesplayer.dll - O16 -: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B}
      hxxp://game05.zylom.com/activex/zylomgamesplayer.cab
      c:\windows\Downloaded Program Files\ZylomGamesPlayer.inf

      c:\windows\Downloaded Program Files\OberonGameHost.dll - O16 -: {D0C0F75C-683A-4390-A791-1ACFD5599AB8}
      hxxp://jeuxmultijoueurs.orange.fr/Gameshell/GameHost/1.0/OberonGameHost.cab
      c:\windows\Downloaded Program Files\OberonGameHost_dbg.inf
      FF - ProfilePath - c:\documents and settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\laqq8f12.default\
      FF - prefs.js: browser.startup.homepage - hxxp://www.orange.fr/
      FF - component: c:\documents and settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\laqq8f12.default\extensions\{0b38152b-1b20-484d-a11f-5e04a9b0661f}\components\WinampTBPlayer.dll
      FF - plugin: c:\documents and settings\All Users\Application Data\Zylom\ZylomGamesPlayer\npzylomgamesplayer.dll
      FF - plugin: c:\program files\ma-config.com\nphardwaredetection.dll
      FF - plugin: c:\program files\Mozilla Firefox\plugins\npzylomgamesplayer.dll
      FF - plugin: c:\program files\Unity\WebPlayer\loader\npUnity3D32.dll
      .

      **************************************************************************

      catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
      Rootkit scan 2008-12-30 19:24:03
      Windows 5.1.2600 Service Pack 2 NTFS

      Recherche de processus cachés ...

      Recherche d'éléments en démarrage automatique cachés ...

      Recherche de fichiers cachés ...

      Scan terminé avec succès
      Fichiers cachés: 0

      **************************************************************************
      .
      ------------------------ Autres processus actifs ------------------------
      .
      c:\program files\Alwil Software\Avast4\aswUpdSv.exe
      c:\program files\Alwil Software\Avast4\ashServ.exe
      c:\windows\system32\agrsmsvc.exe
      c:\windows\system32\FTRTSVC.exe
      c:\program files\Java\jre6\bin\jqs.exe
      c:\program files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
      c:\program files\Alwil Software\Avast4\ashMaiSv.exe
      c:\program files\Alwil Software\Avast4\ashWebSv.exe
      c:\windows\system32\wscntfy.exe
      c:\progra~1\Wanadoo\TaskBarIcon.exe
      c:\program files\Samsung\Digimax Viewer 2.0\STImgBrowser.exe
      c:\progra~1\Wanadoo\GestionnaireInternet.exe
      c:\progra~1\Wanadoo\Toaster.exe
      c:\progra~1\Wanadoo\Inactivity.exe
      c:\progra~1\Wanadoo\PollingModule.exe
      .
      **************************************************************************
      .
      Heure de fin: 2008-12-30 19:34:29 - La machine a redémarré
      ComboFix-quarantined-files.txt 2008-12-30 18:34:18

      Avant-CF: 46ÿ403ÿ670ÿ016 octets libres
      AprÞs-CF: 46,566,486,016 octets libres

      WindowsXP-KB310994-SP2-Pro-BootDisk-FRA.exe
      [boot loader]
      timeout=2
      default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
      [operating systems]
      c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
      multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professionnel" /noexecute=optin /fastdetect

      315 --- E O F --- 2008-12-29 07:25:38
      0
  5. Vous n’avez pas trouvé la réponse que vous recherchez ?

    Posez votre question
  6. sabine
     
    j ai oublié de renommé combofix c est grave?

    voici le rapport de toolbar
    0
    1. sabine
       
      euh voici le rapport:


      -----------\\ ToolBar S&D 1.2.8 XP/Vista

      Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 2
      X86-based PC ( Uniprocessor Free : AMD Sempron(tm) 3000+ )
      BIOS : Rev. 3.11
      USER : Administrateur ( Administrator )
      BOOT : Normal boot
      Antivirus : avast! antivirus 4.8.1296 [VPS 081230-0] 4.8.1296 (Activated)
      A:\ (USB)
      C:\ (Local Disk) - NTFS - Total:74 Go (Free:43 Go)
      D:\ (CD or DVD)
      E:\ (CD or DVD)

      "C:\ToolBar SD" ( MAJ : 21-12-2008|20:47 )
      Option : [1] ( 30/12/2008|19:41 )

      -----------\\ Recherche de Fichiers / Dossiers ...

      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\dinstallhelper.700A766F3FAF471797FAE4E091DD257F.dll
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\dinstallhelper.B5473397AC2D4738A453E4BB10BF8BA2.dll
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\dinstallhelper.D14263AB8F6C48E6AB4A7D08DB8A2656.dll
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\dinstallhelper.FFCCB66F6BAF4B7F802610A465D1E61B.dll
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\temp
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\alerts.gif
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\alerts_over.gif
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\alerts_rec.gif
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\alerts_rec_over.gif
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\chevron-small.gif
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\DealioSearch.html
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\deals-leftcap.gif
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\deal_report.jpg
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\ebay_login.jpg
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\err_mainwindow.html
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\err_toolbar.html
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\global_scripts.js
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\headerbgthin.jpg
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\highlight-bg.png
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\logo.gif
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\logo_over.gif
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\man_toolbar.css
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\man_toolbar.html
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\man_toolbar.js
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\man_toolbarl.js
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\post-this-deal.gif
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\post-this-deal_over.gif
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\scripts.js
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\scroller.js
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\search-chevron.gif
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\search-chevron_over.gif
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\search_bg_blink.gif
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\separator.gif
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\settings.gif
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\settings_over.gif
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\res\yahoo-search.png
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\index.76.35
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.10.76
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.109.43
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.110.43
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.12.52
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.13.58
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.130.58
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.135.50
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.153.44
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.155.43
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.156.49
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.16.60
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.161.52
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.178.66
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.184.55
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.188.52
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.189.45
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.196.43
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.198.56
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.199.43
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.200.53
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.201.43
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.202.43
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.203.71
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.205.62
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.213.71
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.214.49
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.215.43
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.216.67
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.217.67
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.218.52
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.219.43
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.220.43
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.221.57
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.222.43
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.223.68
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.226.68
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.227.43
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.228.62
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.229.76
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.23.63
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.239.43
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.24.43
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.240.43
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.241.43
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.242.43
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.243.43
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.244.63
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.245.43
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.247.43
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.248.43
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.249.43
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.250.43
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.251.43
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.252.43
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.253.43
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.254.43
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.255.43
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.256.43
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.257.43
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.279.43
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.28.58
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.282.75
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.283.43
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.284.43
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.289.67
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.290.62
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.291.61
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.296.43
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.297.43
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.304.43
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.307.43
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.308.75
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.31.47
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.310.46
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.311.43
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.315.43
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.316.43
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.317.43
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.318.43
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.319.49
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.32.48
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.334.44
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.335.60
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.336.44
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.337.44
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.338.75
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.339.47
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.34.43
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.340.47
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.341.47
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.349.50
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.35.48
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.350.50
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.351.51
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.352.54
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.353.51
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.354.51
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.357.62
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.358.52
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.359.52
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.360.53
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.361.54
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.362.68
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.363.58
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.364.54
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.365.53
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.367.56
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.368.58
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.369.55
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.370.56
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.371.56
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.372.57
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.373.55
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.375.56
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.376.57
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.377.55
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.378.65
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.384.58
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.386.71
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.387.59
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.388.59
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.389.59
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.390.60
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.391.60
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.392.60
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.393.60
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.394.60
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.396.61
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.397.61
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.398.60
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.399.60
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.403.61
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.404.63
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.405.61
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.406.61
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.407.76
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.408.63
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.409.61
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.412.62
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.413.62
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.414.62
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.415.62
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.416.62
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.417.62
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.418.62
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.419.62
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.420.62
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.421.62
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.423.63
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.424.63
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.425.63
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.426.63
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.427.63
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.428.65
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.429.63
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.430.63
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.432.65
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.433.64
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.434.65
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.435.64
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.436.76
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.437.64
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.438.71
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.439.71
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.440.75
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.442.73
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.443.73
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.444.73
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.445.68
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.446.69
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.450.67
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.451.67
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.452.68
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.453.68
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.454.69
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.456.69
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.457.75
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.458.70
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.459.70
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.460.69
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.462.74
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.463.69
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.464.70
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.465.68
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.468.70
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.469.70
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.470.70
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.471.73
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.472.70
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.478.74
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.479.73
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.480.68
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.481.71
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.482.74
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.49.67
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.50.43
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.500.71
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.501.74
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.502.71
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.51.69
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.52.72
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.520.76
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.521.76
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.522.76
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.53.51
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.531.76
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.532.75
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.534.75
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.54.47
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.55.45
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.56.69
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.57.43
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.58.47
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.593.76
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.595.76
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.63.57
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.66.47
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.70.75
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\rules\rules.1.71.43
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\temp\dealio-14237.log
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\temp\dealio-14238.log
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127\temp\dealio-14239.log
      C:\WINDOWS\Prefetch\SEARCHSETTINGS.EXE-253CB611.pf
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Search Settings
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Search Settings\kb127
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Search Settings\kb127\res
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Search Settings\kb127\temp
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Search Settings\kb127\temp\ws-14240.log
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Search Settings\kb127\temp\ws-14241.log
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Search Settings\kb127\temp\ws-14242.log
      C:\DOCUME~1\ADMINI~1\APPLIC~1\Search Settings\kb127\temp\ws-14243.log
      C:\Program Files\Search Settings
      C:\Program Files\Search Settings\kb127
      C:\Program Files\Search Settings\SearchSettings.exe
      C:\Program Files\Search Settings\kb127\res
      C:\Program Files\Search Settings\kb127\SearchSettings.dll
      C:\Program Files\Search Settings\kb127\SearchSettingsRes409.dll
      C:\Program Files\Search Settings\kb127\temp

      -----------\\ Extensions

      (Administrateur) - {0b38152b-1b20-484d-a11f-5e04a9b0661f} => winamptoolbar


      -----------\\ [..\Internet Explorer\Main]

      [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
      "Local Page"="C:\\WINDOWS\\system32\\blank.htm"
      "Start Page"="https://www.orange.fr/portail"
      "Search Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"

      [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
      "Default_Page_URL"="https://www.msn.com/fr-fr/?ocid=iehp"
      "Default_Search_URL"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
      "Search Page"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
      "Start Page"="http://www.microsoft.com/isapi/redir.dll?prd={SUB_PRD}&clcid={SUB_CLSID}&pver={SUB_PVER}&ar=home"


      --------------------\\ Recherche d'autres infections

      --------------------\\ Cracks & Keygens ..

      C:\DOCUME~1\ADMINI~1\Bureau\sabine\Documents and Settings\Compaq_Propri‚taire\Recent\Carnival Mania v1.0 Crack.rar.lnk



      1 - "C:\ToolBar SD\TB_1.txt" - 30/12/2008|19:45 - Option : [1]

      -----------\\ Fin du rapport a 19:45:18,62
      0
  7. jlpjlp Messages postés 52399 Statut Contributeur sécurité 5 041
     
    pas grave pour combofix il est passé

    __________

    refais toolsbar sd choisi l'option 2 et colle le rapport

    ___________

    puis remets un rapport hijakchits ou RSIt
    0
    1. sabine
       
      rapport toolbar:

      -----------\\ ToolBar S&D 1.2.8 XP/Vista

      Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 2
      X86-based PC ( Uniprocessor Free : AMD Sempron(tm) 3000+ )
      BIOS : Rev. 3.11
      USER : Administrateur ( Administrator )
      BOOT : Normal boot
      Antivirus : avast! antivirus 4.8.1296 [VPS 081230-0] 4.8.1296 (Activated)
      A:\ (USB)
      C:\ (Local Disk) - NTFS - Total:74 Go (Free:43 Go)
      D:\ (CD or DVD)
      E:\ (CD or DVD)

      "C:\ToolBar SD" ( MAJ : 21-12-2008|20:47 )
      Option : [2] ( 30/12/2008|20:12 )

      -----------\\ SUPPRESSION

      Supprime! - C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\dinstallhelper.700A766F3FAF471797FAE4E091DD257F.dll
      Supprime! - C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\dinstallhelper.B5473397AC2D4738A453E4BB10BF8BA2.dll
      Supprime! - C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\dinstallhelper.D14263AB8F6C48E6AB4A7D08DB8A2656.dll
      Supprime! - C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\dinstallhelper.FFCCB66F6BAF4B7F802610A465D1E61B.dll
      Supprime! - C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio\kb127
      Supprime! - C:\WINDOWS\Prefetch\SEARCHSETTINGS.EXE-253CB611.pf
      Supprime! - C:\DOCUME~1\ADMINI~1\APPLIC~1\Search Settings\kb127
      Supprime! - C:\Program Files\Search Settings\kb127
      Supprime! - C:\Program Files\Search Settings\SearchSettings.exe
      Supprime! - C:\DOCUME~1\ADMINI~1\APPLIC~1\Dealio
      Supprime! - C:\DOCUME~1\ADMINI~1\APPLIC~1\Search Settings
      Supprime! - C:\Program Files\Search Settings

      -----------\\ Recherche de Fichiers / Dossiers ...


      -----------\\ Extensions

      (Administrateur) - {0b38152b-1b20-484d-a11f-5e04a9b0661f} => winamptoolbar


      -----------\\ [..\Internet Explorer\Main]

      [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
      "Local Page"="C:\\WINDOWS\\system32\\blank.htm"
      "Start Page"="https://www.orange.fr/portail"
      "Search Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"

      [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
      "Default_Page_URL"="https://www.msn.com/fr-fr/?ocid=iehp"
      "Default_Search_URL"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
      "Search Page"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
      "Start Page"="https://www.msn.com/fr-fr/"


      --------------------\\ Recherche d'autres infections

      --------------------\\ Cracks & Keygens ..

      C:\DOCUME~1\ADMINI~1\Bureau\sabine\Documents and Settings\Compaq_Propri‚taire\Recent\Carnival Mania v1.0 Crack.rar.lnk



      1 - "C:\ToolBar SD\TB_1.txt" - 30/12/2008|19:45 - Option : [1]
      2 - "C:\ToolBar SD\TB_2.txt" - 30/12/2008|20:21 - Option : [2]

      -----------\\ Fin du rapport a 20:21:10,56
      0
  8. sabine
     
    rapport log.text:
    Logfile of random's system information tool 1.05 (written by random/random)
    Run by Administrateur at 2008-12-30 20:30:49
    Microsoft Windows XP Professionnel Service Pack 2
    System drive C: has 44 GB (58%) free of 76 GB
    Total RAM: 191 MB (10% free)

    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 20:31:25, on 30/12/2008
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    C:\Program Files\Alwil Software\Avast4\ashServ.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\system32\agrsmsvc.exe
    C:\WINDOWS\System32\FTRTSVC.exe
    C:\Program Files\Java\jre6\bin\jqs.exe
    C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
    C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
    C:\WINDOWS\SOUNDMAN.EXE
    C:\WINDOWS\system32\VTTimer.exe
    C:\Program Files\Java\jre6\bin\jusched.exe
    C:\PROGRA~1\Wanadoo\TaskBarIcon.exe
    C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\Samsung\Digimax Viewer 2.0\STImgBrowser.exe
    C:\PROGRA~1\Wanadoo\GestionnaireInternet.exe
    C:\PROGRA~1\Wanadoo\Toaster.exe
    C:\PROGRA~1\Wanadoo\Inactivity.exe
    C:\PROGRA~1\Wanadoo\PollingModule.exe
    C:\WINDOWS\explorer.exe
    C:\Program Files\Mozilla Firefox\firefox.exe
    C:\Documents and Settings\Administrateur\Bureau\RSIT.exe
    C:\Program Files\trend micro\Administrateur.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
    R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL
    O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
    O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll (file missing)
    O2 - BHO: RoboForm - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll
    O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
    O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
    O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
    O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
    O3 - Toolbar: &RoboForm - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll
    O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
    O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
    O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
    O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\GestMaj.exe TaskBarIcon.exe
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
    O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\Shell.exe appLaunchClientZone.shl|PARAM= cnx
    O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
    O4 - Global Startup: Digimax Viewer 2.0.lnk = ?
    O8 - Extra context menu item: Barre RoboForm - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
    O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
    O8 - Extra context menu item: Enregistrer le formulaire - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
    O8 - Extra context menu item: Personnaliser le menu - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html
    O8 - Extra context menu item: Remplir le formulaire - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
    O9 - Extra button: Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra button: Remplir - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
    O9 - Extra 'Tools' menuitem: Remplir le formulaire - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
    O9 - Extra button: Enregistrer - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
    O9 - Extra 'Tools' menuitem: Enregistrer le formulaire - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
    O9 - Extra button: Barre RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
    O9 - Extra 'Tools' menuitem: Barre RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
    O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
    O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
    O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
    O9 - Extra button: Orange - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
    O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/2008.10.10_v5.5.8/FacebookPhotoUploader5.cab
    O16 - DPF: {2D8ED06D-3C30-438B-96AE-4D110FDC1FB8} (ActiveScan 2.0 Installer Class) - http://www.pandasecurity.com/activescan/cabs/as2stubie.cab
    O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.zebulon.fr/scan8/oscan8.cab
    O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/...
    O16 - DPF: {80DD2229-B8E4-4C77-B72F-F22972D723EA} - http://www.inoculer.com/antivirus/Msie/bitdefender.cab
    O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - https://www.touslesdrivers.com/index.php?v_page=29
    O16 - DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} (Zylom Games Player) - http://game05.zylom.com/activex/zylomgamesplayer.cab
    O16 - DPF: {D0C0F75C-683A-4390-A791-1ACFD5599AB8} (Oberon Flash Game Host) - http://jeuxmultijoueurs.orange.fr/Gameshell/GameHost/1.0/OberonGameHost.cab
    O17 - HKLM\System\CCS\Services\Tcpip\..\{04C6133D-2F8B-4125-8533-3461A511062E}: NameServer = 192.168.1.1
    O17 - HKLM\System\CS1\Services\Tcpip\..\{04C6133D-2F8B-4125-8533-3461A511062E}: NameServer = 192.168.1.1
    O17 - HKLM\System\CS2\Services\Tcpip\..\{04C6133D-2F8B-4125-8533-3461A511062E}: NameServer = 192.168.1.1
    O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - Agere Systems - C:\WINDOWS\system32\agrsmsvc.exe
    O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
    O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
    O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
    O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe
    O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
    O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe
    O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
    0
  9. jlpjlp Messages postés 52399 Statut Contributeur sécurité 5 041
     
    vire ce crack:

    C:\DOCUME~1\ADMINI~1\Bureau\sabine\Documents and Settings\Compaq_Propri‚taire\Recent\Carnival Mania v1.0 Crack.rar.lnk

    __________________

    relance hijakchits, fais :do a system scan only puis fixe ces lignes (fix cheked)

    O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll (file missing)

    O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)

    O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE

    O16 - DPF: {D0C0F75C-683A-4390-A791-1ACFD5599AB8} (Oberon Flash Game Host) - http://jeuxmultijoueurs.orange.fr/Gameshell/GameHost/1.0/OberonGameHost.cab

    ____________________
    mets spybot en complément de ton antivirus et scan avec : (décocher la case TEA TIMER lors de l'installation)

    https://www.01net.com/telecharger/windows/Securite/anti-spyware/fiches/26157.html

    ______________________
    lance ccleaner pour virer les traces d'infections:
    https://www.malekal.com/tutoriel-ccleaner/
    _____________________
    pour virer ce qui a été utilisé:
    lance tools cleaner:
    http://www.commentcamarche.net/telecharger/telecharger 34055291 toolscleaner
    _____________________
    mets a jour internet explorer avec la version 7 :
    https://www.01net.com/telecharger/windows/Internet/navigateur/fiches/33081.html

    et windows avec le sp3

    _____________________

    ensuite si tout es ok désactive ta restauration pour virer les infections puis redemarre ton ordi puis réactive la:

    https://www.informatruc.com

    ___________________

    encore des soucis???

    pour protéger gratos ton ordi
    http://www.commentcamarche.net/telecharger/logiciel 4 securite

    mettre un antivirus

    ANTIVIR ou AVG8 ou (avast)
    https://www.malekal.com/avira-free-security-antivirus-gratuit/ (merci Malekal)
    -------------
    des anti-espions :
    MALWAREBYTE ANTIMALWARE + SPYBOT
    +
    SPYWAREBLASTER pour immuniser le système contre vundo notamment mais en anglais (mais facile d'utilisation : il suffit de faire "update" pour mettre à jour tous les mois et ensuite" enable all protection" pour immuniser)...

    --------
    un pare feu :
    (celui de Windows) ou mieux COMODO ou KERIO ou JETICO ou ZONE ALARM (mettre que le parefeu gratuit)

    http://www.clubic.com/telecharger-fiche11071-sunbelt-persona­l-firewall-e(...)
    https://manuelsdaide.com/contact/
    http://www.open-files.com/forum/index.php?showtopic=29277
    https://www.commentcamarche.net/telecharger/ 157 zonealarm

    -----------

    CCLEANER pour effacer les traces de surf
    0
    1. franck
       
      Bonsoir,

      Merci beaucouppour vos conseil....
      c'est super qu'ily ai des gens comme vous pour aider...
      Encore merci....

      Franck
      0
  10. sabine
     
    il me reste a telecharger le pack3.
    j ai lu que plusieur personnes avaient de nombreux problemes depuis l installation du pack.
    tu en pense quoi du pack3 toi?
    0
  11. jlpjlp Messages postés 52399 Statut Contributeur sécurité 5 041
     
    moi je suis pour ! mais effectivement il peut y avoir un souci, cré un point de restauraton avant comme cela si tu as un problème tu reviendra en arrière
    0
    1. sabine
       
      alors j ai cree un point de restauration et j ai intallé le pack 3.
      ca a l air d aller nikel. l antivirus va et le son aussi. tous remarche comme avant.

      je tiens a te remercier, c est sympa d avoir des personnes comme toi qui donne un peu de leur temps a des novices de l informatique.
      merci merci milles fois

      bonne année 2009!
      0
  12. jlpjlp Messages postés 52399 Statut Contributeur sécurité 5 041
     
    ok parfait

    bonne année et bon surf!
    0