Petits soucis et trucs bizzard
Résolu
SuperFun
Messages postés
850
Date d'inscription
Statut
Membre
Dernière intervention
-
SuperFun Messages postés 850 Date d'inscription Statut Membre Dernière intervention -
SuperFun Messages postés 850 Date d'inscription Statut Membre Dernière intervention -
Bonjour,
Commençons par souhaiter la bonne année a vous tous.
Cela étant dit je vous expose mon problème qui à vrai dire je ne sais pas comment l exposer mais il se passe des choses pas très catholique.
Exemple lorsque je veux faire une vaccination avec sypbot une fenetre vient en disant que cette action ne peut pas être exécuté totalement car ne suis pas l admin (ce qui est faut je suis aller controler le compte des fois que mais il est bien admin)
Lorsque j essai de faire un scan en ligne bitdefender marche pas trend micro marche pas kaspersky marche pas (PS fais avec IE)
fait des scan avec spyboot, a-squared, ad-aware, Malwarebytes' Anti-Malware et pas grand chose a dire, j ai un soft qui s appel Smart PC (qui m a été offert licence légal) mais je ne sais pas trop si je doit l utiliser peur des conséquences
Comme autre problème j ai l erreur msn erreur 81000306 (essayé pas mal de choses trouvé par ici mais rien y fait)
Je vous laisse un rapport hijack pour analyse
Merci
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 10:38:33, on 02.01.2009
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18000)
Boot mode: Normal
Running processes:
C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\DellTPad\Apoint.exe
C:\Program Files\IDT\WDM\sttray.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Windows\System32\WLTRAY.EXE
C:\Program Files\Dell Webcam\Dell Webcam Central\WebcamDell.exe
C:\Program Files\Dell\MediaDirect\PCMService.exe
C:\Program Files\Dell Support Center\bin\sprtcmd.exe
C:\Program Files\Maxtor\MSS Backup\MaxBackService.exe
C:\Program Files\Maxtor\OneTouch Status\MaxMenuMgr.exe
C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe
C:\Program Files\Logitech\QuickCam\Quickcam.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe
C:\Program Files\TomTom HOME 2\HOMERunner.exe
C:\Program Files\Dell Video Chat\DellVideoChat.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Program Files\C-CHANNEL\PayPen\PayPen.exe
C:\Program Files\Dell\QuickSet\quickset.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\DellTPad\ApMsgFwd.exe
C:\Program Files\DellTPad\Apntex.exe
C:\Program Files\DellTPad\HidFind.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe
C:\Program Files\Common Files\Logitech\KhalShared\KHALMNPR.EXE
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files\C-CHANNEL\PayPen\CPenDesk.exe
C:\Program Files\C-CHANNEL\PayPen\CPenOCR.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files\Common Files\Logishrd\LQCVFX\COCIManager.exe
C:\Program Files\DigitalPeers\CamTrack\camtrack.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\a-squared Free\a2free.exe
C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Internet Explorer\ieuser.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\Windows\system32\SearchFilterHost.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.google.ch
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.ulrichmatterag.ch/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Internet Explorer fourni par Dell
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - c:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\ievkbd.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll
O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\Dell\BAE\BAE.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [ECenter] C:\Dell\E-Center\EULALauncher.exe
O4 - HKLM\..\Run: [Apoint] C:\Program Files\DellTPad\Apoint.exe
O4 - HKLM\..\Run: [SysTrayApp] %ProgramFiles%\IDT\WDM\sttray.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe"
O4 - HKLM\..\Run: [IAAnotif] "C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe"
O4 - HKLM\..\Run: [Broadcom Wireless Manager UI] C:\Windows\system32\WLTRAY.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "c:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Dell Webcam Central] "C:\Program Files\Dell Webcam\Dell Webcam Central\WebcamDell.exe" /mode2
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\MediaDirect\PCMService.exe"
O4 - HKLM\..\Run: [dellsupportcenter] "C:\Program Files\Dell Support Center\bin\sprtcmd.exe" /P dellsupportcenter
O4 - HKLM\..\Run: [MaxBackSchedule] "C:\Program Files\Maxtor\MSS Backup\maxbackservice.exe"
O4 - HKLM\..\Run: [mxomssmenu] "C:\Program Files\Maxtor\OneTouch Status\maxmenumgr.exe"
O4 - HKLM\..\Run: [mssSort] "C:\Program Files\Maxtor\ManagerApp\msssort.exe"
O4 - HKLM\..\Run: [Acrobat Assistant 7.0] "C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe"
O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe"
O4 - HKLM\..\Run: [LogitechQuickCamRibbon] "C:\Program Files\Logitech\QuickCam\Quickcam.exe" /hide
O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe"
O4 - HKCU\..\Run: [TomTomHOME.exe] "C:\Program Files\TomTom HOME 2\HOMERunner.exe"
O4 - HKCU\..\Run: [updateMgr] C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AdobeUpdateManager.exe AcPro7_0_0 -reboot 1
O4 - HKCU\..\Run: [SightSpeed] "C:\Program Files\Dell Video Chat\DellVideoChat.exe" -bootmode
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
O4 - .DEFAULT User Startup: CamTrack.lnk = C:\Program Files\DigitalPeers\CamTrack\camtrack.exe (User 'Default user')
O4 - .DEFAULT User Startup: Dell Dock First Run.lnk = C:\Program Files\Dell\DellDock\DellDock.exe (User 'Default user')
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: C-CHANNEL OnlineUpdate.lnk = ?
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Lancement rapide d'Adobe Acrobat.lnk = ?
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
O4 - Global Startup: PayPen.lnk = ?
O4 - Global Startup: QuickSet.lnk = C:\Program Files\Dell\QuickSet\quickset.exe
O8 - Extra context menu item: Ajouter à Kaspersky Anti-Banner - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\ie_banner_deny.htm
O8 - Extra context menu item: Convertir en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convertir en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convertir la cible du lien en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convertir la cible du lien en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convertir la sélection en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convertir la sélection en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convertir les liens sélectionnés en fichier Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Convertir les liens sélectionnés en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Envoyer au périphérique &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O8 - Extra context menu item: Envoyer l'&image au périphérique Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O9 - Extra button: Statistiques de la protection du trafic Internet - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\SCIEPlgn.dll
O9 - Extra button: Run WinHTTrack - {36ECAF82-3300-8F84-092E-AFF36D6C7040} - C:\Program Files\WinHTTrack\WinHTTrackIEBar.dll
O9 - Extra 'Tools' menuitem: Launch WinHTTrack - {36ECAF82-3300-8F84-092E-AFF36D6C7040} - C:\Program Files\WinHTTrack\WinHTTrackIEBar.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\Windows\bdoscandel.exe
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\Windows\bdoscandel.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O13 - Gopher Prefix:
O16 - DPF: {0742B9EF-8C83-41CA-BFBA-830A59E23533} (Microsoft Data Collection Control) - https://support.serviceshub.microsoft.com/supportforbusiness/create
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - https://www.kaspersky.fr/?domain=webscanner.kaspersky.fr
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan_fr/scan8/oscan8.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O16 - DPF: {DFB5BCF1-06AE-4ABB-BFA8-1E228F41C50A} (CamfrogWEB Advanced Unicode Control) - https://www.bobtv.fr/download/cfweb_www.bobtv.fr-download_instmodule.exe
O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) - http://download.mcafee.com/molbin/iss-loc/mcfscan/2,2,0,5480/mcfscan.cab
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~2\GOEC62~1.DLL,C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd.dll,C:\PROGRA~1\KASPER~1\KASPER~1\adialhk.dll,C:\PROGRA~1\KASPER~1\KASPER~1\kloehk.dll
O20 - Winlogon Notify: GoToAssist - C:\Program Files\Citrix\GoToAssist\514\G2AWinLogon.dll
O22 - SharedTaskScheduler: Windows DreamScene - {E31004D1-A431-41B8-826F-E902F9D95C81} - C:\Windows\System32\DreamScene.dll
O23 - Service: a-squared Free Service (a2free) - Emsi Software GmbH - C:\Program Files\a-squared Free\a2service.exe
O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_2ba5baa4\aestsrv.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe
O23 - Service: Kaspersky Internet Security (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: BvrpKrnl - Unknown owner - C:\Program Files\WinFax eXPert\BVRPKrnl.exe
O23 - Service: Dock Login Service (DockLoginService) - Stardock Corporation - C:\Program Files\Dell\DellDock\DockLogin.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Google Desktop Manager 5.7.801.7324 (GoogleDesktopManager-010708-104812) - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: GoToAssist - Citrix Online, a division of Citrix Systems, Inc. - C:\Program Files\Citrix\GoToAssist\514\g2aservice.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HASP License Manager (hasplms) - Aladdin Knowledge Systems Ltd. - C:\Windows\system32\hasplms.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
O23 - Service: Service de l’iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LVCOMSer - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe
O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
O23 - Service: SupportSoft Sprocket Service (DellSupportCenter) (sprtsvc_DellSupportCenter) - SupportSoft, Inc. - C:\Program Files\Dell Support Center\bin\sprtsvc.exe
O23 - Service: Audio Service (STacSV) - IDT, Inc. - C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_2ba5baa4\STacSV.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: Dell Wireless WLAN Tray Service (wltrysvc) - Unknown owner - C:\Windows\System32\WLTRYSVC.EXE
Commençons par souhaiter la bonne année a vous tous.
Cela étant dit je vous expose mon problème qui à vrai dire je ne sais pas comment l exposer mais il se passe des choses pas très catholique.
Exemple lorsque je veux faire une vaccination avec sypbot une fenetre vient en disant que cette action ne peut pas être exécuté totalement car ne suis pas l admin (ce qui est faut je suis aller controler le compte des fois que mais il est bien admin)
Lorsque j essai de faire un scan en ligne bitdefender marche pas trend micro marche pas kaspersky marche pas (PS fais avec IE)
fait des scan avec spyboot, a-squared, ad-aware, Malwarebytes' Anti-Malware et pas grand chose a dire, j ai un soft qui s appel Smart PC (qui m a été offert licence légal) mais je ne sais pas trop si je doit l utiliser peur des conséquences
Comme autre problème j ai l erreur msn erreur 81000306 (essayé pas mal de choses trouvé par ici mais rien y fait)
Je vous laisse un rapport hijack pour analyse
Merci
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 10:38:33, on 02.01.2009
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18000)
Boot mode: Normal
Running processes:
C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\DellTPad\Apoint.exe
C:\Program Files\IDT\WDM\sttray.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Windows\System32\WLTRAY.EXE
C:\Program Files\Dell Webcam\Dell Webcam Central\WebcamDell.exe
C:\Program Files\Dell\MediaDirect\PCMService.exe
C:\Program Files\Dell Support Center\bin\sprtcmd.exe
C:\Program Files\Maxtor\MSS Backup\MaxBackService.exe
C:\Program Files\Maxtor\OneTouch Status\MaxMenuMgr.exe
C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe
C:\Program Files\Logitech\QuickCam\Quickcam.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe
C:\Program Files\TomTom HOME 2\HOMERunner.exe
C:\Program Files\Dell Video Chat\DellVideoChat.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Program Files\C-CHANNEL\PayPen\PayPen.exe
C:\Program Files\Dell\QuickSet\quickset.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\DellTPad\ApMsgFwd.exe
C:\Program Files\DellTPad\Apntex.exe
C:\Program Files\DellTPad\HidFind.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe
C:\Program Files\Common Files\Logitech\KhalShared\KHALMNPR.EXE
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files\C-CHANNEL\PayPen\CPenDesk.exe
C:\Program Files\C-CHANNEL\PayPen\CPenOCR.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files\Common Files\Logishrd\LQCVFX\COCIManager.exe
C:\Program Files\DigitalPeers\CamTrack\camtrack.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\a-squared Free\a2free.exe
C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Internet Explorer\ieuser.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\Windows\system32\SearchFilterHost.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.google.ch
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.ulrichmatterag.ch/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Internet Explorer fourni par Dell
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - c:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\ievkbd.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll
O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\Dell\BAE\BAE.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [ECenter] C:\Dell\E-Center\EULALauncher.exe
O4 - HKLM\..\Run: [Apoint] C:\Program Files\DellTPad\Apoint.exe
O4 - HKLM\..\Run: [SysTrayApp] %ProgramFiles%\IDT\WDM\sttray.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe"
O4 - HKLM\..\Run: [IAAnotif] "C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe"
O4 - HKLM\..\Run: [Broadcom Wireless Manager UI] C:\Windows\system32\WLTRAY.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "c:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Dell Webcam Central] "C:\Program Files\Dell Webcam\Dell Webcam Central\WebcamDell.exe" /mode2
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\MediaDirect\PCMService.exe"
O4 - HKLM\..\Run: [dellsupportcenter] "C:\Program Files\Dell Support Center\bin\sprtcmd.exe" /P dellsupportcenter
O4 - HKLM\..\Run: [MaxBackSchedule] "C:\Program Files\Maxtor\MSS Backup\maxbackservice.exe"
O4 - HKLM\..\Run: [mxomssmenu] "C:\Program Files\Maxtor\OneTouch Status\maxmenumgr.exe"
O4 - HKLM\..\Run: [mssSort] "C:\Program Files\Maxtor\ManagerApp\msssort.exe"
O4 - HKLM\..\Run: [Acrobat Assistant 7.0] "C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe"
O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe"
O4 - HKLM\..\Run: [LogitechQuickCamRibbon] "C:\Program Files\Logitech\QuickCam\Quickcam.exe" /hide
O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe"
O4 - HKCU\..\Run: [TomTomHOME.exe] "C:\Program Files\TomTom HOME 2\HOMERunner.exe"
O4 - HKCU\..\Run: [updateMgr] C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AdobeUpdateManager.exe AcPro7_0_0 -reboot 1
O4 - HKCU\..\Run: [SightSpeed] "C:\Program Files\Dell Video Chat\DellVideoChat.exe" -bootmode
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
O4 - .DEFAULT User Startup: CamTrack.lnk = C:\Program Files\DigitalPeers\CamTrack\camtrack.exe (User 'Default user')
O4 - .DEFAULT User Startup: Dell Dock First Run.lnk = C:\Program Files\Dell\DellDock\DellDock.exe (User 'Default user')
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: C-CHANNEL OnlineUpdate.lnk = ?
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Lancement rapide d'Adobe Acrobat.lnk = ?
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
O4 - Global Startup: PayPen.lnk = ?
O4 - Global Startup: QuickSet.lnk = C:\Program Files\Dell\QuickSet\quickset.exe
O8 - Extra context menu item: Ajouter à Kaspersky Anti-Banner - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\ie_banner_deny.htm
O8 - Extra context menu item: Convertir en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convertir en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convertir la cible du lien en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convertir la cible du lien en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convertir la sélection en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convertir la sélection en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convertir les liens sélectionnés en fichier Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Convertir les liens sélectionnés en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Envoyer au périphérique &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O8 - Extra context menu item: Envoyer l'&image au périphérique Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O9 - Extra button: Statistiques de la protection du trafic Internet - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\SCIEPlgn.dll
O9 - Extra button: Run WinHTTrack - {36ECAF82-3300-8F84-092E-AFF36D6C7040} - C:\Program Files\WinHTTrack\WinHTTrackIEBar.dll
O9 - Extra 'Tools' menuitem: Launch WinHTTrack - {36ECAF82-3300-8F84-092E-AFF36D6C7040} - C:\Program Files\WinHTTrack\WinHTTrackIEBar.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\Windows\bdoscandel.exe
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\Windows\bdoscandel.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O13 - Gopher Prefix:
O16 - DPF: {0742B9EF-8C83-41CA-BFBA-830A59E23533} (Microsoft Data Collection Control) - https://support.serviceshub.microsoft.com/supportforbusiness/create
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - https://www.kaspersky.fr/?domain=webscanner.kaspersky.fr
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan_fr/scan8/oscan8.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O16 - DPF: {DFB5BCF1-06AE-4ABB-BFA8-1E228F41C50A} (CamfrogWEB Advanced Unicode Control) - https://www.bobtv.fr/download/cfweb_www.bobtv.fr-download_instmodule.exe
O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) - http://download.mcafee.com/molbin/iss-loc/mcfscan/2,2,0,5480/mcfscan.cab
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~2\GOEC62~1.DLL,C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd.dll,C:\PROGRA~1\KASPER~1\KASPER~1\adialhk.dll,C:\PROGRA~1\KASPER~1\KASPER~1\kloehk.dll
O20 - Winlogon Notify: GoToAssist - C:\Program Files\Citrix\GoToAssist\514\G2AWinLogon.dll
O22 - SharedTaskScheduler: Windows DreamScene - {E31004D1-A431-41B8-826F-E902F9D95C81} - C:\Windows\System32\DreamScene.dll
O23 - Service: a-squared Free Service (a2free) - Emsi Software GmbH - C:\Program Files\a-squared Free\a2service.exe
O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_2ba5baa4\aestsrv.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe
O23 - Service: Kaspersky Internet Security (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: BvrpKrnl - Unknown owner - C:\Program Files\WinFax eXPert\BVRPKrnl.exe
O23 - Service: Dock Login Service (DockLoginService) - Stardock Corporation - C:\Program Files\Dell\DellDock\DockLogin.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Google Desktop Manager 5.7.801.7324 (GoogleDesktopManager-010708-104812) - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: GoToAssist - Citrix Online, a division of Citrix Systems, Inc. - C:\Program Files\Citrix\GoToAssist\514\g2aservice.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HASP License Manager (hasplms) - Aladdin Knowledge Systems Ltd. - C:\Windows\system32\hasplms.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
O23 - Service: Service de l’iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LVCOMSer - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe
O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
O23 - Service: SupportSoft Sprocket Service (DellSupportCenter) (sprtsvc_DellSupportCenter) - SupportSoft, Inc. - C:\Program Files\Dell Support Center\bin\sprtsvc.exe
O23 - Service: Audio Service (STacSV) - IDT, Inc. - C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_2ba5baa4\STacSV.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: Dell Wireless WLAN Tray Service (wltrysvc) - Unknown owner - C:\Windows\System32\WLTRYSVC.EXE
A voir également:
- Petits soucis et trucs bizzard
- Meilleurs ordinateurs portables petits et légers - Guide
- Les petits numéros ✓ - Forum Word
- Comment s'appellent les petits carrés qui apparaissent lorsqu'on zoome sur une image ? ✓ - Forum Bureautique
- Deux petits points - Forum Windows
- Petits carrés non identifiés PCNI - Forum Logiciels
12 réponses
Hello merci,
Pour commencer kaspersky ne m a pas autoriser a aller sur la page
alors je l ai désactivé pour le telecharger
Mais lorsque je lance l'application une fenetre dos s ouvre et il viens plusieurs fois acces refusé ensuite une 2ème fenetre s ouvre ou je peu entrer le chiffre 1 pour la recherche mais rien ne se passe
Pour commencer kaspersky ne m a pas autoriser a aller sur la page
alors je l ai désactivé pour le telecharger
Mais lorsque je lance l'application une fenetre dos s ouvre et il viens plusieurs fois acces refusé ensuite une 2ème fenetre s ouvre ou je peu entrer le chiffre 1 pour la recherche mais rien ne se passe
re, essaye se si
▶ Télécharge et installe MalwareByte's Anti-Malware
Malwarebyte
▶ Mets le à jour
▶ Double clique sur le raccourci de MalwareByte's Anti-Malware qui est sur le bureau.
▶ Sélectionne Exécuter un examen complet si ce n'est pas déjà fait
▶ clique sur Rechercher
▶ Une fois le scan terminé, une fenêtre s'ouvre, clique sur sur Ok
▶ Si MalwareByte's n'a rien détecté, clique sur Ok Un rapport va apparaître ferme-le.
▶ Si MalwareByte's a détecté des infections, clique sur Afficher les résultats ensuite sur Supprimer la sélection
▶ Enregistre le rapport sur ton Bureau comme cela il sera plus facile à retrouver, poste ensuite ce rapport.
Note : Si MalwareByte's a besoin de redémarrer pour terminer la suppression, accepte en cliquant sur Ok
▶ Télécharge et installe MalwareByte's Anti-Malware
Malwarebyte
▶ Mets le à jour
▶ Double clique sur le raccourci de MalwareByte's Anti-Malware qui est sur le bureau.
▶ Sélectionne Exécuter un examen complet si ce n'est pas déjà fait
▶ clique sur Rechercher
▶ Une fois le scan terminé, une fenêtre s'ouvre, clique sur sur Ok
▶ Si MalwareByte's n'a rien détecté, clique sur Ok Un rapport va apparaître ferme-le.
▶ Si MalwareByte's a détecté des infections, clique sur Afficher les résultats ensuite sur Supprimer la sélection
▶ Enregistre le rapport sur ton Bureau comme cela il sera plus facile à retrouver, poste ensuite ce rapport.
Note : Si MalwareByte's a besoin de redémarrer pour terminer la suppression, accepte en cliquant sur Ok
re ca va mieux en supprimant le controle des comptes voila le rapport demandé de SmitfraudFix.exe
SmitFraudFix v2.388
Rapport fait à 11:52:23.34, 02.01.2009
Executé à partir de C:\Users\Francisco\Desktop\SmitfraudFix
OS: Microsoft Windows [version 6.0.6001] - Windows_NT
Le type du système de fichiers est NTFS
Fix executé en mode normal
»»»»»»»»»»»»»»»»»»»»»»»» Process
C:\Windows\system32\csrss.exe
C:\Windows\system32\wininit.exe
C:\Windows\system32\csrss.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\winlogon.exe
C:\Windows\system32\svchost.exe
C:\Windows\System32\svchost.exe
C:\Windows\system32\Ati2evxx.exe
C:\Windows\System32\svchost.exe
C:\Windows\System32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_2ba5baa4\STacSV.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\SLsvc.exe
C:\Windows\system32\svchost.exe
C:\Program Files\Dell\DellDock\DockLogin.exe
C:\Windows\system32\Ati2evxx.exe
C:\Windows\System32\WLTRYSVC.EXE
C:\Windows\System32\bcmwltry.exe
C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\a-squared Free\a2service.exe
C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_2ba5baa4\aestsrv.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe
C:\Program Files\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Windows\system32\svchost.exe
C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\hasplms.exe
C:\Windows\system32\svchost.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe
C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
C:\Windows\System32\svchost.exe
C:\Windows\System32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Program Files\Dell Support Center\bin\sprtsvc.exe
c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
C:\Windows\system32\svchost.exe
C:\Windows\System32\svchost.exe
C:\Windows\system32\SearchIndexer.exe
c:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe
C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\DellTPad\Apoint.exe
C:\Program Files\IDT\WDM\sttray.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Windows\System32\WLTRAY.EXE
C:\Program Files\Dell Webcam\Dell Webcam Central\WebcamDell.exe
C:\Program Files\Dell\MediaDirect\PCMService.exe
C:\Program Files\Dell Support Center\bin\sprtcmd.exe
C:\Program Files\Maxtor\MSS Backup\MaxBackService.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\Maxtor\OneTouch Status\MaxMenuMgr.exe
C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe
C:\Program Files\Logitech\QuickCam\Quickcam.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe
C:\Program Files\TomTom HOME 2\HOMERunner.exe
C:\Program Files\Dell Video Chat\DellVideoChat.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Program Files\C-CHANNEL\PayPen\PayPen.exe
C:\Program Files\Dell\QuickSet\quickset.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files\DellTPad\ApMsgFwd.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Program Files\DellTPad\Apntex.exe
C:\Program Files\DellTPad\HidFind.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe
C:\Program Files\Adobe\Acrobat 7.0\Acrobat\Acrobat.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files\Common Files\Logitech\KhalShared\KHALMNPR.EXE
C:\Program Files\C-CHANNEL\PayPen\CPenDesk.exe
C:\Program Files\Dell Support Center\gs_agent\dsc.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Users\Francisco\Desktop\SmitfraudFix\Policies.exe
C:\Windows\system32\cmd.exe
C:\Program Files\C-CHANNEL\PayPen\CPenOCR.exe
C:\Windows\system32\conime.exe
C:\Program Files\Common Files\Logishrd\LQCVFX\COCIManager.exe
C:\Windows\system32\wbem\wmiprvse.exe
»»»»»»»»»»»»»»»»»»»»»»»» hosts
Fichier hosts corrompu !
127.0.0.1 www.legal-at-spybot.info
127.0.0.1 legal-at-spybot.info
»»»»»»»»»»»»»»»»»»»»»»»» C:\
»»»»»»»»»»»»»»»»»»»»»»»» C:\Windows
»»»»»»»»»»»»»»»»»»»»»»»» C:\Windows\system
»»»»»»»»»»»»»»»»»»»»»»»» C:\Windows\Web
»»»»»»»»»»»»»»»»»»»»»»»» C:\Windows\system32
»»»»»»»»»»»»»»»»»»»»»»»» C:\Windows\system32\LogFiles
»»»»»»»»»»»»»»»»»»»»»»»» C:\Users\Francisco
»»»»»»»»»»»»»»»»»»»»»»»» C:\Users\FRANCI~1\AppData\Local\Temp
»»»»»»»»»»»»»»»»»»»»»»»» C:\Users\Francisco\Application Data
»»»»»»»»»»»»»»»»»»»»»»»» Menu Démarrer
»»»»»»»»»»»»»»»»»»»»»»»» C:\Users\FRANCI~1\FAVORI~1
»»»»»»»»»»»»»»»»»»»»»»»» Bureau
»»»»»»»»»»»»»»»»»»»»»»»» C:\Program Files
C:\Program Files\Google\googletoolbar1.dll PRESENT !
»»»»»»»»»»»»»»»»»»»»»»»» Clés corrompues
»»»»»»»»»»»»»»»»»»»»»»»» Eléments du bureau
»»»»»»»»»»»»»»»»»»»»»»»» o4Patch
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
o4Patch
Credits: Malware Analysis & Diagnostic
Code: S!Ri
»»»»»»»»»»»»»»»»»»»»»»»» IEDFix
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
IEDFix
Credits: Malware Analysis & Diagnostic
Code: S!Ri
»»»»»»»»»»»»»»»»»»»»»»»» Agent.OMZ.Fix
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
Agent.OMZ.Fix
Credits: Malware Analysis & Diagnostic
Code: S!Ri
»»»»»»»»»»»»»»»»»»»»»»»» VACFix
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
VACFix
Credits: Malware Analysis & Diagnostic
Code: S!Ri
»»»»»»»»»»»»»»»»»»»»»»»» 404Fix
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
404Fix
Credits: Malware Analysis & Diagnostic
Code: S!Ri
»»»»»»»»»»»»»»»»»»»»»»»» Sharedtaskscheduler
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler]
"{E31004D1-A431-41B8-826F-E902F9D95C81}"="Windows DreamScene"
[HKEY_CLASSES_ROOT\CLSID\{E31004D1-A431-41B8-826F-E902F9D95C81}\InProcServer32]
@="%SystemRoot%\System32\DreamScene.dll"
[HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{E31004D1-A431-41B8-826F-E902F9D95C81}\InProcServer32]
@="%SystemRoot%\System32\DreamScene.dll"
»»»»»»»»»»»»»»»»»»»»»»»» AppInit_DLLs
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\\PROGRA~1\\Google\\GOOGLE~2\\GOEC62~1.DLL,C:\\PROGRA~1\\KASPER~1\\KASPER~1\\mzvkbd.dll,C:\\PROGRA~1\\KASPER~1\\KASPER~1\\adialhk.dll,C:\\PROGRA~1\\KASPER~1\\KASPER~1\\kloehk.dll"
"LoadAppInit_DLLs"=dword:00000001
»»»»»»»»»»»»»»»»»»»»»»»» Winlogon
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
"Userinit"="C:\\Windows\\system32\\userinit.exe,"
»»»»»»»»»»»»»»»»»»»»»»»» RK
»»»»»»»»»»»»»»»»»»»»»»»» DNS
Description: Broadcom NetLink (TM) Gigabit Ethernet
DNS Server Search Order: 194.230.1.103
DNS Server Search Order: 194.230.1.39
Description: Dell Wireless 1397 WLAN Mini-Card
DNS Server Search Order: 194.230.1.103
DNS Server Search Order: 194.230.1.39
HKLM\SYSTEM\CCS\Services\Tcpip\..\{1172A7BC-F439-4A50-A8A9-95E598AD5BAF}: DhcpNameServer=194.230.1.103 194.230.1.39
HKLM\SYSTEM\CCS\Services\Tcpip\..\{AAD7D150-8D38-4351-98FB-78B1218E6855}: DhcpNameServer=194.230.1.103 194.230.1.39
HKLM\SYSTEM\CS1\Services\Tcpip\..\{1172A7BC-F439-4A50-A8A9-95E598AD5BAF}: DhcpNameServer=194.230.1.103 194.230.1.39
HKLM\SYSTEM\CS1\Services\Tcpip\..\{AAD7D150-8D38-4351-98FB-78B1218E6855}: DhcpNameServer=194.230.1.103 194.230.1.39
HKLM\SYSTEM\CS3\Services\Tcpip\..\{1172A7BC-F439-4A50-A8A9-95E598AD5BAF}: DhcpNameServer=194.230.1.103 194.230.1.39
HKLM\SYSTEM\CS3\Services\Tcpip\..\{AAD7D150-8D38-4351-98FB-78B1218E6855}: DhcpNameServer=194.230.1.103 194.230.1.39
HKLM\SYSTEM\CCS\Services\Tcpip\Parameters: DhcpNameServer=194.230.1.103 194.230.1.39
HKLM\SYSTEM\CS1\Services\Tcpip\Parameters: DhcpNameServer=194.230.1.103 194.230.1.39
HKLM\SYSTEM\CS3\Services\Tcpip\Parameters: DhcpNameServer=194.230.1.103 194.230.1.39
»»»»»»»»»»»»»»»»»»»»»»»» Recherche infection wininet.dll
»»»»»»»»»»»»»»»»»»»»»»»» Fin
SmitFraudFix v2.388
Rapport fait à 11:52:23.34, 02.01.2009
Executé à partir de C:\Users\Francisco\Desktop\SmitfraudFix
OS: Microsoft Windows [version 6.0.6001] - Windows_NT
Le type du système de fichiers est NTFS
Fix executé en mode normal
»»»»»»»»»»»»»»»»»»»»»»»» Process
C:\Windows\system32\csrss.exe
C:\Windows\system32\wininit.exe
C:\Windows\system32\csrss.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\winlogon.exe
C:\Windows\system32\svchost.exe
C:\Windows\System32\svchost.exe
C:\Windows\system32\Ati2evxx.exe
C:\Windows\System32\svchost.exe
C:\Windows\System32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_2ba5baa4\STacSV.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\SLsvc.exe
C:\Windows\system32\svchost.exe
C:\Program Files\Dell\DellDock\DockLogin.exe
C:\Windows\system32\Ati2evxx.exe
C:\Windows\System32\WLTRYSVC.EXE
C:\Windows\System32\bcmwltry.exe
C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\a-squared Free\a2service.exe
C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_2ba5baa4\aestsrv.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe
C:\Program Files\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Windows\system32\svchost.exe
C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\hasplms.exe
C:\Windows\system32\svchost.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe
C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
C:\Windows\System32\svchost.exe
C:\Windows\System32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Program Files\Dell Support Center\bin\sprtsvc.exe
c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
C:\Windows\system32\svchost.exe
C:\Windows\System32\svchost.exe
C:\Windows\system32\SearchIndexer.exe
c:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe
C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\DellTPad\Apoint.exe
C:\Program Files\IDT\WDM\sttray.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Windows\System32\WLTRAY.EXE
C:\Program Files\Dell Webcam\Dell Webcam Central\WebcamDell.exe
C:\Program Files\Dell\MediaDirect\PCMService.exe
C:\Program Files\Dell Support Center\bin\sprtcmd.exe
C:\Program Files\Maxtor\MSS Backup\MaxBackService.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\Maxtor\OneTouch Status\MaxMenuMgr.exe
C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe
C:\Program Files\Logitech\QuickCam\Quickcam.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe
C:\Program Files\TomTom HOME 2\HOMERunner.exe
C:\Program Files\Dell Video Chat\DellVideoChat.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Program Files\C-CHANNEL\PayPen\PayPen.exe
C:\Program Files\Dell\QuickSet\quickset.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files\DellTPad\ApMsgFwd.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Program Files\DellTPad\Apntex.exe
C:\Program Files\DellTPad\HidFind.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe
C:\Program Files\Adobe\Acrobat 7.0\Acrobat\Acrobat.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files\Common Files\Logitech\KhalShared\KHALMNPR.EXE
C:\Program Files\C-CHANNEL\PayPen\CPenDesk.exe
C:\Program Files\Dell Support Center\gs_agent\dsc.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Users\Francisco\Desktop\SmitfraudFix\Policies.exe
C:\Windows\system32\cmd.exe
C:\Program Files\C-CHANNEL\PayPen\CPenOCR.exe
C:\Windows\system32\conime.exe
C:\Program Files\Common Files\Logishrd\LQCVFX\COCIManager.exe
C:\Windows\system32\wbem\wmiprvse.exe
»»»»»»»»»»»»»»»»»»»»»»»» hosts
Fichier hosts corrompu !
127.0.0.1 www.legal-at-spybot.info
127.0.0.1 legal-at-spybot.info
»»»»»»»»»»»»»»»»»»»»»»»» C:\
»»»»»»»»»»»»»»»»»»»»»»»» C:\Windows
»»»»»»»»»»»»»»»»»»»»»»»» C:\Windows\system
»»»»»»»»»»»»»»»»»»»»»»»» C:\Windows\Web
»»»»»»»»»»»»»»»»»»»»»»»» C:\Windows\system32
»»»»»»»»»»»»»»»»»»»»»»»» C:\Windows\system32\LogFiles
»»»»»»»»»»»»»»»»»»»»»»»» C:\Users\Francisco
»»»»»»»»»»»»»»»»»»»»»»»» C:\Users\FRANCI~1\AppData\Local\Temp
»»»»»»»»»»»»»»»»»»»»»»»» C:\Users\Francisco\Application Data
»»»»»»»»»»»»»»»»»»»»»»»» Menu Démarrer
»»»»»»»»»»»»»»»»»»»»»»»» C:\Users\FRANCI~1\FAVORI~1
»»»»»»»»»»»»»»»»»»»»»»»» Bureau
»»»»»»»»»»»»»»»»»»»»»»»» C:\Program Files
C:\Program Files\Google\googletoolbar1.dll PRESENT !
»»»»»»»»»»»»»»»»»»»»»»»» Clés corrompues
»»»»»»»»»»»»»»»»»»»»»»»» Eléments du bureau
»»»»»»»»»»»»»»»»»»»»»»»» o4Patch
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
o4Patch
Credits: Malware Analysis & Diagnostic
Code: S!Ri
»»»»»»»»»»»»»»»»»»»»»»»» IEDFix
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
IEDFix
Credits: Malware Analysis & Diagnostic
Code: S!Ri
»»»»»»»»»»»»»»»»»»»»»»»» Agent.OMZ.Fix
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
Agent.OMZ.Fix
Credits: Malware Analysis & Diagnostic
Code: S!Ri
»»»»»»»»»»»»»»»»»»»»»»»» VACFix
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
VACFix
Credits: Malware Analysis & Diagnostic
Code: S!Ri
»»»»»»»»»»»»»»»»»»»»»»»» 404Fix
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
404Fix
Credits: Malware Analysis & Diagnostic
Code: S!Ri
»»»»»»»»»»»»»»»»»»»»»»»» Sharedtaskscheduler
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler]
"{E31004D1-A431-41B8-826F-E902F9D95C81}"="Windows DreamScene"
[HKEY_CLASSES_ROOT\CLSID\{E31004D1-A431-41B8-826F-E902F9D95C81}\InProcServer32]
@="%SystemRoot%\System32\DreamScene.dll"
[HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{E31004D1-A431-41B8-826F-E902F9D95C81}\InProcServer32]
@="%SystemRoot%\System32\DreamScene.dll"
»»»»»»»»»»»»»»»»»»»»»»»» AppInit_DLLs
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\\PROGRA~1\\Google\\GOOGLE~2\\GOEC62~1.DLL,C:\\PROGRA~1\\KASPER~1\\KASPER~1\\mzvkbd.dll,C:\\PROGRA~1\\KASPER~1\\KASPER~1\\adialhk.dll,C:\\PROGRA~1\\KASPER~1\\KASPER~1\\kloehk.dll"
"LoadAppInit_DLLs"=dword:00000001
»»»»»»»»»»»»»»»»»»»»»»»» Winlogon
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
"Userinit"="C:\\Windows\\system32\\userinit.exe,"
»»»»»»»»»»»»»»»»»»»»»»»» RK
»»»»»»»»»»»»»»»»»»»»»»»» DNS
Description: Broadcom NetLink (TM) Gigabit Ethernet
DNS Server Search Order: 194.230.1.103
DNS Server Search Order: 194.230.1.39
Description: Dell Wireless 1397 WLAN Mini-Card
DNS Server Search Order: 194.230.1.103
DNS Server Search Order: 194.230.1.39
HKLM\SYSTEM\CCS\Services\Tcpip\..\{1172A7BC-F439-4A50-A8A9-95E598AD5BAF}: DhcpNameServer=194.230.1.103 194.230.1.39
HKLM\SYSTEM\CCS\Services\Tcpip\..\{AAD7D150-8D38-4351-98FB-78B1218E6855}: DhcpNameServer=194.230.1.103 194.230.1.39
HKLM\SYSTEM\CS1\Services\Tcpip\..\{1172A7BC-F439-4A50-A8A9-95E598AD5BAF}: DhcpNameServer=194.230.1.103 194.230.1.39
HKLM\SYSTEM\CS1\Services\Tcpip\..\{AAD7D150-8D38-4351-98FB-78B1218E6855}: DhcpNameServer=194.230.1.103 194.230.1.39
HKLM\SYSTEM\CS3\Services\Tcpip\..\{1172A7BC-F439-4A50-A8A9-95E598AD5BAF}: DhcpNameServer=194.230.1.103 194.230.1.39
HKLM\SYSTEM\CS3\Services\Tcpip\..\{AAD7D150-8D38-4351-98FB-78B1218E6855}: DhcpNameServer=194.230.1.103 194.230.1.39
HKLM\SYSTEM\CCS\Services\Tcpip\Parameters: DhcpNameServer=194.230.1.103 194.230.1.39
HKLM\SYSTEM\CS1\Services\Tcpip\Parameters: DhcpNameServer=194.230.1.103 194.230.1.39
HKLM\SYSTEM\CS3\Services\Tcpip\Parameters: DhcpNameServer=194.230.1.103 194.230.1.39
»»»»»»»»»»»»»»»»»»»»»»»» Recherche infection wininet.dll
»»»»»»»»»»»»»»»»»»»»»»»» Fin
voila passé l étape 2 le rapport le voila
SmitFraudFix v2.388
Rapport fait à 12:00:13.32, 02.01.2009
Executé à partir de C:\Users\Francisco\Desktop\SmitfraudFix
OS: Microsoft Windows [version 6.0.6001] - Windows_NT
Le type du système de fichiers est NTFS
Fix executé en mode normal
»»»»»»»»»»»»»»»»»»»»»»»» SharedTaskScheduler Avant SmitFraudFix
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler]
"{E31004D1-A431-41B8-826F-E902F9D95C81}"="Windows DreamScene"
[HKEY_CLASSES_ROOT\CLSID\{E31004D1-A431-41B8-826F-E902F9D95C81}\InProcServer32]
@="%SystemRoot%\System32\DreamScene.dll"
[HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{E31004D1-A431-41B8-826F-E902F9D95C81}\InProcServer32]
@="%SystemRoot%\System32\DreamScene.dll"
»»»»»»»»»»»»»»»»»»»»»»»» Arret des processus
»»»»»»»»»»»»»»»»»»»»»»»» hosts
127.0.0.1 localhost
::1 localhost
127.0.0.1 www.007guard.com
127.0.0.1 007guard.com
127.0.0.1 008i.com
127.0.0.1 www.008k.com
127.0.0.1 008k.com
127.0.0.1 www.00hq.com
127.0.0.1 00hq.com
127.0.0.1 010402.com
...
»»»»»»»»»»»»»»»»»»»»»»»» VACFix
VACFix
Credits: Malware Analysis & Diagnostic
Code: S!Ri
»»»»»»»»»»»»»»»»»»»»»»»» Winsock2 Fix
S!Ri's WS2Fix: LSP not Found.
»»»»»»»»»»»»»»»»»»»»»»»» Generic Renos Fix
GenericRenosFix by S!Ri
»»»»»»»»»»»»»»»»»»»»»»»» Suppression des fichiers infectés
C:\Program Files\Google\googletoolbar1.dll supprimé
»»»»»»»»»»»»»»»»»»»»»»»» IEDFix
IEDFix
Credits: Malware Analysis & Diagnostic
Code: S!Ri
»»»»»»»»»»»»»»»»»»»»»»»» Agent.OMZ.Fix
Agent.OMZ.Fix
Credits: Malware Analysis & Diagnostic
Code: S!Ri
»»»»»»»»»»»»»»»»»»»»»»»» 404Fix
404Fix
Credits: Malware Analysis & Diagnostic
Code: S!Ri
»»»»»»»»»»»»»»»»»»»»»»»» RK
»»»»»»»»»»»»»»»»»»»»»»»» DNS
Description: Broadcom NetLink (TM) Gigabit Ethernet
DNS Server Search Order: 194.230.1.103
DNS Server Search Order: 194.230.1.39
Description: Dell Wireless 1397 WLAN Mini-Card
DNS Server Search Order: 194.230.1.103
DNS Server Search Order: 194.230.1.39
HKLM\SYSTEM\CCS\Services\Tcpip\..\{1172A7BC-F439-4A50-A8A9-95E598AD5BAF}: DhcpNameServer=194.230.1.103 194.230.1.39
HKLM\SYSTEM\CCS\Services\Tcpip\..\{AAD7D150-8D38-4351-98FB-78B1218E6855}: DhcpNameServer=194.230.1.103 194.230.1.39
HKLM\SYSTEM\CS1\Services\Tcpip\..\{1172A7BC-F439-4A50-A8A9-95E598AD5BAF}: DhcpNameServer=194.230.1.103 194.230.1.39
HKLM\SYSTEM\CS1\Services\Tcpip\..\{AAD7D150-8D38-4351-98FB-78B1218E6855}: DhcpNameServer=194.230.1.103 194.230.1.39
HKLM\SYSTEM\CS3\Services\Tcpip\..\{1172A7BC-F439-4A50-A8A9-95E598AD5BAF}: DhcpNameServer=194.230.1.103 194.230.1.39
HKLM\SYSTEM\CS3\Services\Tcpip\..\{AAD7D150-8D38-4351-98FB-78B1218E6855}: DhcpNameServer=194.230.1.103 194.230.1.39
HKLM\SYSTEM\CCS\Services\Tcpip\Parameters: DhcpNameServer=194.230.1.103 194.230.1.39
HKLM\SYSTEM\CS1\Services\Tcpip\Parameters: DhcpNameServer=194.230.1.103 194.230.1.39
HKLM\SYSTEM\CS3\Services\Tcpip\Parameters: DhcpNameServer=194.230.1.103 194.230.1.39
»»»»»»»»»»»»»»»»»»»»»»»» Suppression Fichiers Temporaires
»»»»»»»»»»»»»»»»»»»»»»»» Winlogon.System
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
»»»»»»»»»»»»»»»»»»»»»»»» Nettoyage du registre
Nettoyage terminé.
»»»»»»»»»»»»»»»»»»»»»»»» SharedTaskScheduler Après SmitFraudFix
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler]
"{E31004D1-A431-41B8-826F-E902F9D95C81}"="Windows DreamScene"
[HKEY_CLASSES_ROOT\CLSID\{E31004D1-A431-41B8-826F-E902F9D95C81}\InProcServer32]
@="%SystemRoot%\System32\DreamScene.dll"
[HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{E31004D1-A431-41B8-826F-E902F9D95C81}\InProcServer32]
@="%SystemRoot%\System32\DreamScene.dll"
»»»»»»»»»»»»»»»»»»»»»»»» Fin
SmitFraudFix v2.388
Rapport fait à 12:00:13.32, 02.01.2009
Executé à partir de C:\Users\Francisco\Desktop\SmitfraudFix
OS: Microsoft Windows [version 6.0.6001] - Windows_NT
Le type du système de fichiers est NTFS
Fix executé en mode normal
»»»»»»»»»»»»»»»»»»»»»»»» SharedTaskScheduler Avant SmitFraudFix
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler]
"{E31004D1-A431-41B8-826F-E902F9D95C81}"="Windows DreamScene"
[HKEY_CLASSES_ROOT\CLSID\{E31004D1-A431-41B8-826F-E902F9D95C81}\InProcServer32]
@="%SystemRoot%\System32\DreamScene.dll"
[HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{E31004D1-A431-41B8-826F-E902F9D95C81}\InProcServer32]
@="%SystemRoot%\System32\DreamScene.dll"
»»»»»»»»»»»»»»»»»»»»»»»» Arret des processus
»»»»»»»»»»»»»»»»»»»»»»»» hosts
127.0.0.1 localhost
::1 localhost
127.0.0.1 www.007guard.com
127.0.0.1 007guard.com
127.0.0.1 008i.com
127.0.0.1 www.008k.com
127.0.0.1 008k.com
127.0.0.1 www.00hq.com
127.0.0.1 00hq.com
127.0.0.1 010402.com
...
»»»»»»»»»»»»»»»»»»»»»»»» VACFix
VACFix
Credits: Malware Analysis & Diagnostic
Code: S!Ri
»»»»»»»»»»»»»»»»»»»»»»»» Winsock2 Fix
S!Ri's WS2Fix: LSP not Found.
»»»»»»»»»»»»»»»»»»»»»»»» Generic Renos Fix
GenericRenosFix by S!Ri
»»»»»»»»»»»»»»»»»»»»»»»» Suppression des fichiers infectés
C:\Program Files\Google\googletoolbar1.dll supprimé
»»»»»»»»»»»»»»»»»»»»»»»» IEDFix
IEDFix
Credits: Malware Analysis & Diagnostic
Code: S!Ri
»»»»»»»»»»»»»»»»»»»»»»»» Agent.OMZ.Fix
Agent.OMZ.Fix
Credits: Malware Analysis & Diagnostic
Code: S!Ri
»»»»»»»»»»»»»»»»»»»»»»»» 404Fix
404Fix
Credits: Malware Analysis & Diagnostic
Code: S!Ri
»»»»»»»»»»»»»»»»»»»»»»»» RK
»»»»»»»»»»»»»»»»»»»»»»»» DNS
Description: Broadcom NetLink (TM) Gigabit Ethernet
DNS Server Search Order: 194.230.1.103
DNS Server Search Order: 194.230.1.39
Description: Dell Wireless 1397 WLAN Mini-Card
DNS Server Search Order: 194.230.1.103
DNS Server Search Order: 194.230.1.39
HKLM\SYSTEM\CCS\Services\Tcpip\..\{1172A7BC-F439-4A50-A8A9-95E598AD5BAF}: DhcpNameServer=194.230.1.103 194.230.1.39
HKLM\SYSTEM\CCS\Services\Tcpip\..\{AAD7D150-8D38-4351-98FB-78B1218E6855}: DhcpNameServer=194.230.1.103 194.230.1.39
HKLM\SYSTEM\CS1\Services\Tcpip\..\{1172A7BC-F439-4A50-A8A9-95E598AD5BAF}: DhcpNameServer=194.230.1.103 194.230.1.39
HKLM\SYSTEM\CS1\Services\Tcpip\..\{AAD7D150-8D38-4351-98FB-78B1218E6855}: DhcpNameServer=194.230.1.103 194.230.1.39
HKLM\SYSTEM\CS3\Services\Tcpip\..\{1172A7BC-F439-4A50-A8A9-95E598AD5BAF}: DhcpNameServer=194.230.1.103 194.230.1.39
HKLM\SYSTEM\CS3\Services\Tcpip\..\{AAD7D150-8D38-4351-98FB-78B1218E6855}: DhcpNameServer=194.230.1.103 194.230.1.39
HKLM\SYSTEM\CCS\Services\Tcpip\Parameters: DhcpNameServer=194.230.1.103 194.230.1.39
HKLM\SYSTEM\CS1\Services\Tcpip\Parameters: DhcpNameServer=194.230.1.103 194.230.1.39
HKLM\SYSTEM\CS3\Services\Tcpip\Parameters: DhcpNameServer=194.230.1.103 194.230.1.39
»»»»»»»»»»»»»»»»»»»»»»»» Suppression Fichiers Temporaires
»»»»»»»»»»»»»»»»»»»»»»»» Winlogon.System
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
»»»»»»»»»»»»»»»»»»»»»»»» Nettoyage du registre
Nettoyage terminé.
»»»»»»»»»»»»»»»»»»»»»»»» SharedTaskScheduler Après SmitFraudFix
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler]
"{E31004D1-A431-41B8-826F-E902F9D95C81}"="Windows DreamScene"
[HKEY_CLASSES_ROOT\CLSID\{E31004D1-A431-41B8-826F-E902F9D95C81}\InProcServer32]
@="%SystemRoot%\System32\DreamScene.dll"
[HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{E31004D1-A431-41B8-826F-E902F9D95C81}\InProcServer32]
@="%SystemRoot%\System32\DreamScene.dll"
»»»»»»»»»»»»»»»»»»»»»»»» Fin
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
oups je viens de comprendre le en mse (Mode Sans Echec) que j ai pas fais je refait donc .
NON!!!
FAIT SE SI SVP
---> Télécharge Lop S&D sur ton Bureau.
---> Double-clique dessus pour lancer l'installation.
---> Clique droit sur le raccourci Lop S&D présent sur ton Bureau et choisis Exécuter en tant qu'administrateur.
---> Sélectionne la langue souhaitée, puis choisis l'option 1 (Recherche).
---> Patiente jusqu'à la fin du scan.
---> Poste le rapport généré (C:\lopR.txt).
FAIT SE SI SVP
---> Télécharge Lop S&D sur ton Bureau.
---> Double-clique dessus pour lancer l'installation.
---> Clique droit sur le raccourci Lop S&D présent sur ton Bureau et choisis Exécuter en tant qu'administrateur.
---> Sélectionne la langue souhaitée, puis choisis l'option 1 (Recherche).
---> Patiente jusqu'à la fin du scan.
---> Poste le rapport généré (C:\lopR.txt).
voila le rapport
--------------------\\ Lop S&D 4.2.5-0 XP/Vista
Microsoft® Windows Vista™ Édition Intégrale ( v6.0.6001 ) Service Pack 1
X86-based PC ( Multiprocessor Free : Intel(R) Core(TM)2 Duo CPU T5800 @ 2.00GHz )
BIOS : Phoenix ROM BIOS PLUS Version 1.10 A04
USER : Franco ( Administrator )
BOOT : Normal boot
Antivirus : Kaspersky Internet Security 8.0.0.357 (Activated)
Firewall : Bitdefender Firewall 8.0 (Not Activated)
C:\ (Local Disk) - NTFS - Total:287 Go (Free:198 Go)
D:\ (Local Disk) - NTFS - Total:9 Go (Free:4 Go)
E:\ (CD or DVD)
"C:\Lop SD" ( MAJ : 19-12-2008|23:40 )
Option : [1] ( 02.01.2009|12:36 )
[ UAC => 0 ]
--------------------\\ Listing des dossiers dans Local
[05.11.2008|08:41] C:\Users\FRANCI~1\AppData\Local\Adobe
[11.11.2008|15:12] C:\Users\FRANCI~1\AppData\Local\Apple
[28.12.2008|08:52] C:\Users\FRANCI~1\AppData\Local\Apple Computer
[03.11.2008|14:43] C:\Users\FRANCI~1\AppData\Local\Application Data
[03.11.2008|14:47] C:\Users\FRANCI~1\AppData\Local\ATI
[03.11.2008|18:23] C:\Users\FRANCI~1\AppData\Local\BVRP Software
[05.12.2008|06:40] C:\Users\FRANCI~1\AppData\Local\d3d9caps.dat
[02.01.2009|06:44] C:\Users\FRANCI~1\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[03.11.2008|18:29] C:\Users\FRANCI~1\AppData\Local\Downloaded Installations
[03.11.2008|15:18] C:\Users\FRANCI~1\AppData\Local\FileMaker
[06.12.2008|06:47] C:\Users\FRANCI~1\AppData\Local\GDIPFONTCACHEV1.DAT
[03.11.2008|14:51] C:\Users\FRANCI~1\AppData\Local\Google
[03.11.2008|14:43] C:\Users\FRANCI~1\AppData\Local\Historique
[03.11.2008|21:30] C:\Users\FRANCI~1\AppData\Local\Installer1856
[10.11.2008|15:06] C:\Users\FRANCI~1\AppData\Local\Installer6168
[10.11.2008|06:42] C:\Users\FRANCI~1\AppData\Local\MediaDirect
[06.12.2008|10:20] C:\Users\FRANCI~1\AppData\Local\Microsoft
[16.11.2008|09:45] C:\Users\FRANCI~1\AppData\Local\Microsoft Games
[05.12.2008|10:00] C:\Users\FRANCI~1\AppData\Local\Microsoft Help
[03.11.2008|14:55] C:\Users\FRANCI~1\AppData\Local\Mozilla
[10.11.2008|06:38] C:\Users\FRANCI~1\AppData\Local\Powercinema
[03.11.2008|15:34] C:\Users\FRANCI~1\AppData\Local\Stardock_Corporation
[03.11.2008|17:15] C:\Users\FRANCI~1\AppData\Local\SupportSoft
[02.01.2009|12:35] C:\Users\FRANCI~1\AppData\Local\Temp
[03.11.2008|14:43] C:\Users\FRANCI~1\AppData\Local\Temporary Internet Files
[03.11.2008|20:48] C:\Users\FRANCI~1\AppData\Local\TomTom
[03.11.2008|18:41] C:\Users\FRANCI~1\AppData\Local\VirtualStore
--------------------\\ Tâches planifiées dans C:\Windows\tasks
[02.01.2009 12:11][--ah-----] C:\Windows\tasks\SA.DAT
[02.01.2009 12:06][--a------] C:\Windows\tasks\SCHEDLGU.TXT
--------------------\\ Listing des dossiers dans C:\ProgramData
[25.12.2008|17:41] C:\ProgramData\{3276BE95_AF08_429F_A64F_CA64CB79BCF6}
[05.11.2008|10:00] C:\ProgramData\3D3
[06.12.2008|06:42] C:\ProgramData\Adobe
[05.11.2008|07:55] C:\ProgramData\Adobe Systems
[11.11.2008|15:12] C:\ProgramData\Apple
[25.12.2008|16:54] C:\ProgramData\Apple Computer
[03.11.2008|14:39] C:\ProgramData\Application Data
[28.10.2008|00:41] C:\ProgramData\ATI
[03.11.2008|14:39] C:\ProgramData\Bureau
[03.11.2008|18:23] C:\ProgramData\BVRP Software
[04.11.2008|21:42] C:\ProgramData\C-CHANNEL
[11.12.2008|07:09] C:\ProgramData\Circutor
[09.11.2008|15:59] C:\ProgramData\Creative
[10.11.2008|06:38] C:\ProgramData\CyberLink
[14.11.2008|07:29] C:\ProgramData\Dell
[03.11.2008|14:39] C:\ProgramData\Documents
[03.11.2008|21:51] C:\ProgramData\ezsidmv.dat
[03.11.2008|14:39] C:\ProgramData\Favoris
[05.11.2008|08:14] C:\ProgramData\FLEXnet
[28.10.2008|00:12] C:\ProgramData\Google
[03.11.2008|17:06] C:\ProgramData\HP
[03.11.2008|17:57] C:\ProgramData\hpzinstall.log
[28.10.2008|00:16] C:\ProgramData\InstallShield
[02.01.2009|12:18] C:\ProgramData\Kaspersky Lab
[29.12.2008|11:39] C:\ProgramData\Kaspersky Lab Setup Files
[19.11.2008|11:02] C:\ProgramData\Lavasoft
[09.11.2008|14:16] C:\ProgramData\Logishrd
[20.11.2008|13:05] C:\ProgramData\Logitech
[19.11.2008|10:50] C:\ProgramData\Malwarebytes
[05.11.2008|07:05] C:\ProgramData\Maxtor
[03.11.2008|14:39] C:\ProgramData\Menu D‚marrer
[02.01.2009|10:50] C:\ProgramData\Microsoft
[10.12.2008|06:52] C:\ProgramData\Microsoft Help
[03.11.2008|14:39] C:\ProgramData\ModŠles
[29.12.2008|11:34] C:\ProgramData\Norton
[30.11.2008|20:20] C:\ProgramData\NortonInstaller
[04.11.2008|07:14] C:\ProgramData\OPHD
[28.10.2008|00:25] C:\ProgramData\PC-Doctor
[28.10.2008|00:25] C:\ProgramData\PCDr
[30.11.2008|20:22] C:\ProgramData\PCSettings
[03.11.2008|21:48] C:\ProgramData\Skype
[28.10.2008|00:17] C:\ProgramData\Sonic
[02.01.2009|10:43] C:\ProgramData\Spybot - Search & Destroy
[28.10.2008|00:25] C:\ProgramData\SupportSoft
[30.11.2008|20:31] C:\ProgramData\Symantec
[30.11.2008|20:18] C:\ProgramData\Symantec Temporary Files
[02.01.2009|08:52] C:\ProgramData\TEMP
[03.11.2008|20:53] C:\ProgramData\TomTom
[28.10.2008|00:18] C:\ProgramData\Uninstall
[03.11.2008|17:56] C:\ProgramData\WEBREG
[02.01.2009|11:32] C:\ProgramData\WLInstaller
--------------------\\ Listing des dossiers dans C:\Program Files
[06.12.2008|06:41] C:\Program Files\Adobe
[11.11.2008|15:12] C:\Program Files\Apple Software Update
[21.12.2008|10:15] C:\Program Files\a-squared Free
[28.10.2008|00:01] C:\Program Files\ATI Technologies
[03.11.2008|18:24] C:\Program Files\Avanquest update
[04.11.2008|08:37] C:\Program Files\BitLocker
[25.12.2008|17:43] C:\Program Files\Bonjour
[04.11.2008|21:42] C:\Program Files\C-CHANNEL
[01.01.2009|15:14] C:\Program Files\CCleaner
[09.11.2008|13:04] C:\Program Files\CFWebAdvancedU_BOBTV.FR
[03.11.2008|18:07] C:\Program Files\Circutor
[28.10.2008|00:06] C:\Program Files\Cisco
[28.10.2008|00:20] C:\Program Files\Citrix
[02.01.2009|10:51] C:\Program Files\Common Files
[28.10.2008|00:14] C:\Program Files\Creative
[28.10.2008|00:13] C:\Program Files\Creative Live! Cam
[28.10.2008|00:15] C:\Program Files\CyberLink
[04.11.2008|07:33] C:\Program Files\DATA BECKER
[28.10.2008|00:30] C:\Program Files\Dell
[28.10.2008|00:25] C:\Program Files\Dell Support Center
[28.10.2008|00:15] C:\Program Files\Dell Video Chat
[28.10.2008|00:13] C:\Program Files\Dell Webcam
[28.10.2008|08:35] C:\Program Files\DellTPad
[04.11.2008|21:41] C:\Program Files\DIFX
[03.11.2008|19:12] C:\Program Files\DigitalPeers
[03.11.2008|15:16] C:\Program Files\Email Reference
[05.12.2008|10:07] C:\Program Files\Famille3
[05.12.2008|10:07] C:\Program Files\FamTree3
[03.11.2008|14:39] C:\Program Files\Fichiers communs [C:\Program Files\Common Files]
[05.11.2008|15:38] C:\Program Files\FLV Player
[02.01.2009|12:01] C:\Program Files\Google
[03.11.2008|17:05] C:\Program Files\Hewlett-Packard
[03.11.2008|17:00] C:\Program Files\HP
[28.10.2008|00:41] C:\Program Files\IDT
[28.11.2008|12:18] C:\Program Files\InstallShield Installation Information
[28.10.2008|00:01] C:\Program Files\Intel
[11.11.2008|15:14] C:\Program Files\Internet Explorer
[25.12.2008|17:41] C:\Program Files\iPod
[25.12.2008|17:41] C:\Program Files\iTunes
[10.12.2008|13:46] C:\Program Files\Java
[29.12.2008|11:41] C:\Program Files\Kaspersky Lab
[19.11.2008|11:00] C:\Program Files\Lavasoft
[20.11.2008|10:58] C:\Program Files\Logitech
[21.12.2008|10:02] C:\Program Files\Malwarebytes' Anti-Malware
[05.11.2008|07:02] C:\Program Files\Maxtor
[02.01.2009|10:57] C:\Program Files\Microsoft
[10.11.2008|07:29] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[04.11.2008|08:38] C:\Program Files\Microsoft Games
[28.10.2008|00:29] C:\Program Files\Microsoft Office
[04.11.2008|08:35] C:\Program Files\Microsoft Silverlight
[28.10.2008|00:29] C:\Program Files\Microsoft Small Business
[03.11.2008|20:37] C:\Program Files\Microsoft SQL Server
[28.10.2008|00:11] C:\Program Files\Microsoft Visual Studio
[28.10.2008|00:12] C:\Program Files\Microsoft Works
[28.10.2008|00:27] C:\Program Files\Microsoft.NET
[21.01.2008|03:33] C:\Program Files\Movie Maker
[02.01.2009|12:29] C:\Program Files\Mozilla Firefox
[02.11.2006|13:35] C:\Program Files\MSBuild
[10.12.2008|11:30] C:\Program Files\MSECache
[03.11.2008|20:36] C:\Program Files\MSXML 4.0
[03.11.2008|18:30] C:\Program Files\Oxemis
[02.01.2009|10:22] C:\Program Files\Panda Security
[03.11.2008|17:25] C:\Program Files\PDF to Word
[03.11.2008|15:32] C:\Program Files\PhotoFiltre
[25.12.2008|17:39] C:\Program Files\QuickTime
[02.11.2006|13:35] C:\Program Files\Reference Assemblies
[28.10.2008|00:18] C:\Program Files\Roxio
[25.12.2008|17:32] C:\Program Files\Safari
[04.11.2008|10:58] C:\Program Files\ShopFactory V7
[03.11.2008|21:48] C:\Program Files\Skype
[03.12.2008|15:34] C:\Program Files\Smart PC Solutions
[19.11.2008|21:29] C:\Program Files\Spybot - Search & Destroy
[02.01.2009|08:52] C:\Program Files\SpywareBlaster
[03.11.2008|20:48] C:\Program Files\TomTom HOME 2
[02.01.2009|10:32] C:\Program Files\Trend Micro
[28.11.2008|12:19] C:\Program Files\TWIXTEL
[03.11.2008|18:40] C:\Program Files\Ulead Systems
[02.11.2006|14:00] C:\Program Files\Uninstall Information
[05.11.2008|15:44] C:\Program Files\VideoLAN
[28.10.2008|00:03] C:\Program Files\WIDCOMM
[21.01.2008|03:33] C:\Program Files\Windows Calendar
[21.01.2008|03:33] C:\Program Files\Windows Collaboration
[21.01.2008|03:33] C:\Program Files\Windows Defender
[21.01.2008|03:33] C:\Program Files\Windows Journal
[02.01.2009|11:34] C:\Program Files\Windows Live
[02.01.2009|10:57] C:\Program Files\Windows Live SkyDrive
[10.12.2008|07:22] C:\Program Files\Windows Mail
[21.01.2008|03:33] C:\Program Files\Windows Media Player
[03.11.2008|14:39] C:\Program Files\Windows NT
[21.01.2008|03:33] C:\Program Files\Windows Photo Gallery
[21.01.2008|03:33] C:\Program Files\Windows Sidebar
[03.11.2008|18:24] C:\Program Files\WinFax eXPert
[04.11.2008|14:19] C:\Program Files\WinHTTrack
[04.11.2008|06:41] C:\Program Files\WinRAR
[28.12.2008|16:50] C:\Program Files\WinUtilities
[18.12.2008|17:58] C:\Program Files\Wondershare
--------------------\\ Listing des dossiers dans C:\Program Files\Common Files
[06.12.2008|06:39] C:\Program Files\Common Files\Adobe
[05.11.2008|07:55] C:\Program Files\Common Files\Adobe Systems Shared
[03.11.2008|18:07] C:\Program Files\Common Files\Aladdin Shared
[25.12.2008|17:41] C:\Program Files\Common Files\Apple
[28.10.2008|00:11] C:\Program Files\Common Files\DESIGNER
[03.11.2008|17:05] C:\Program Files\Common Files\Hewlett-Packard
[03.11.2008|17:05] C:\Program Files\Common Files\HP
[05.11.2008|07:01] C:\Program Files\Common Files\InstallShield
[27.10.2008|23:55] C:\Program Files\Common Files\Java
[09.11.2008|14:19] C:\Program Files\Common Files\LogiShrd
[20.11.2008|10:54] C:\Program Files\Common Files\Logitech
[03.11.2008|17:29] C:\Program Files\Common Files\Macrovision Shared
[02.01.2009|10:57] C:\Program Files\Common Files\microsoft shared
[28.10.2008|00:17] C:\Program Files\Common Files\PX Storage Engine
[28.10.2008|00:13] C:\Program Files\Common Files\Reallusion
[28.10.2008|00:17] C:\Program Files\Common Files\Roxio Shared
[02.11.2006|12:18] C:\Program Files\Common Files\Services
[03.11.2008|21:48] C:\Program Files\Common Files\Skype
[05.11.2008|07:40] C:\Program Files\Common Files\Softwin
[28.10.2008|00:17] C:\Program Files\Common Files\Sonic Shared
[02.11.2006|12:18] C:\Program Files\Common Files\SpeechEngines
[28.10.2008|00:25] C:\Program Files\Common Files\supportsoft
[28.10.2008|00:18] C:\Program Files\Common Files\SureThing Shared
[29.12.2008|11:34] C:\Program Files\Common Files\Symantec Shared
[28.10.2008|00:09] C:\Program Files\Common Files\System
[02.01.2009|10:51] C:\Program Files\Common Files\Windows Live
[03.11.2008|16:44] C:\Program Files\Common Files\WindowsLiveInstaller
[19.11.2008|10:59] C:\Program Files\Common Files\Wise Installation Wizard
--------------------\\ Process
( 101 Processes )
... OK !
--------------------\\ Recherche avec S_Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Recherche de Fichiers / Dossiers Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Verification du Registre
..... OK !
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-01-02 12:36:40
Windows 6.0.6001 Service Pack 1 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 0
--------------------\\ Recherche d'autres infections
--------------------\\ Cracks & Keygens ..
C:\Users\FRANCI~1\Documents\Recup disque dur 24 oct 08\Documents Franco\Favoris\Crack cle activation.url
C:\Users\FRANCI~1\Documents\R‚cup sur disque dur avec ‚toile\Mes documents\Mes Programmes\Dreamweaver CS3\Keygen
[F:19][D:12]-> C:\Users\FRANCI~1\AppData\Local\Temp
[F:34][D:1]-> C:\Users\FRANCI~1\AppData\Roaming\MICROS~1\Windows\Cookies
[F:80][D:6]-> C:\Users\FRANCI~1\AppData\Local\MICROS~1\Windows\TEMPOR~1\content.IE5
[F:11][D:3]-> C:\$Recycle.Bin
1 - "C:\Lop SD\LopR_1.txt" - 02.01.2009|12:38 - Option : [1]
--------------------\\ Fin du rapport a 12:38:55
[ UAC => 1 ]
--------------------\\ Lop S&D 4.2.5-0 XP/Vista
Microsoft® Windows Vista™ Édition Intégrale ( v6.0.6001 ) Service Pack 1
X86-based PC ( Multiprocessor Free : Intel(R) Core(TM)2 Duo CPU T5800 @ 2.00GHz )
BIOS : Phoenix ROM BIOS PLUS Version 1.10 A04
USER : Franco ( Administrator )
BOOT : Normal boot
Antivirus : Kaspersky Internet Security 8.0.0.357 (Activated)
Firewall : Bitdefender Firewall 8.0 (Not Activated)
C:\ (Local Disk) - NTFS - Total:287 Go (Free:198 Go)
D:\ (Local Disk) - NTFS - Total:9 Go (Free:4 Go)
E:\ (CD or DVD)
"C:\Lop SD" ( MAJ : 19-12-2008|23:40 )
Option : [1] ( 02.01.2009|12:36 )
[ UAC => 0 ]
--------------------\\ Listing des dossiers dans Local
[05.11.2008|08:41] C:\Users\FRANCI~1\AppData\Local\Adobe
[11.11.2008|15:12] C:\Users\FRANCI~1\AppData\Local\Apple
[28.12.2008|08:52] C:\Users\FRANCI~1\AppData\Local\Apple Computer
[03.11.2008|14:43] C:\Users\FRANCI~1\AppData\Local\Application Data
[03.11.2008|14:47] C:\Users\FRANCI~1\AppData\Local\ATI
[03.11.2008|18:23] C:\Users\FRANCI~1\AppData\Local\BVRP Software
[05.12.2008|06:40] C:\Users\FRANCI~1\AppData\Local\d3d9caps.dat
[02.01.2009|06:44] C:\Users\FRANCI~1\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[03.11.2008|18:29] C:\Users\FRANCI~1\AppData\Local\Downloaded Installations
[03.11.2008|15:18] C:\Users\FRANCI~1\AppData\Local\FileMaker
[06.12.2008|06:47] C:\Users\FRANCI~1\AppData\Local\GDIPFONTCACHEV1.DAT
[03.11.2008|14:51] C:\Users\FRANCI~1\AppData\Local\Google
[03.11.2008|14:43] C:\Users\FRANCI~1\AppData\Local\Historique
[03.11.2008|21:30] C:\Users\FRANCI~1\AppData\Local\Installer1856
[10.11.2008|15:06] C:\Users\FRANCI~1\AppData\Local\Installer6168
[10.11.2008|06:42] C:\Users\FRANCI~1\AppData\Local\MediaDirect
[06.12.2008|10:20] C:\Users\FRANCI~1\AppData\Local\Microsoft
[16.11.2008|09:45] C:\Users\FRANCI~1\AppData\Local\Microsoft Games
[05.12.2008|10:00] C:\Users\FRANCI~1\AppData\Local\Microsoft Help
[03.11.2008|14:55] C:\Users\FRANCI~1\AppData\Local\Mozilla
[10.11.2008|06:38] C:\Users\FRANCI~1\AppData\Local\Powercinema
[03.11.2008|15:34] C:\Users\FRANCI~1\AppData\Local\Stardock_Corporation
[03.11.2008|17:15] C:\Users\FRANCI~1\AppData\Local\SupportSoft
[02.01.2009|12:35] C:\Users\FRANCI~1\AppData\Local\Temp
[03.11.2008|14:43] C:\Users\FRANCI~1\AppData\Local\Temporary Internet Files
[03.11.2008|20:48] C:\Users\FRANCI~1\AppData\Local\TomTom
[03.11.2008|18:41] C:\Users\FRANCI~1\AppData\Local\VirtualStore
--------------------\\ Tâches planifiées dans C:\Windows\tasks
[02.01.2009 12:11][--ah-----] C:\Windows\tasks\SA.DAT
[02.01.2009 12:06][--a------] C:\Windows\tasks\SCHEDLGU.TXT
--------------------\\ Listing des dossiers dans C:\ProgramData
[25.12.2008|17:41] C:\ProgramData\{3276BE95_AF08_429F_A64F_CA64CB79BCF6}
[05.11.2008|10:00] C:\ProgramData\3D3
[06.12.2008|06:42] C:\ProgramData\Adobe
[05.11.2008|07:55] C:\ProgramData\Adobe Systems
[11.11.2008|15:12] C:\ProgramData\Apple
[25.12.2008|16:54] C:\ProgramData\Apple Computer
[03.11.2008|14:39] C:\ProgramData\Application Data
[28.10.2008|00:41] C:\ProgramData\ATI
[03.11.2008|14:39] C:\ProgramData\Bureau
[03.11.2008|18:23] C:\ProgramData\BVRP Software
[04.11.2008|21:42] C:\ProgramData\C-CHANNEL
[11.12.2008|07:09] C:\ProgramData\Circutor
[09.11.2008|15:59] C:\ProgramData\Creative
[10.11.2008|06:38] C:\ProgramData\CyberLink
[14.11.2008|07:29] C:\ProgramData\Dell
[03.11.2008|14:39] C:\ProgramData\Documents
[03.11.2008|21:51] C:\ProgramData\ezsidmv.dat
[03.11.2008|14:39] C:\ProgramData\Favoris
[05.11.2008|08:14] C:\ProgramData\FLEXnet
[28.10.2008|00:12] C:\ProgramData\Google
[03.11.2008|17:06] C:\ProgramData\HP
[03.11.2008|17:57] C:\ProgramData\hpzinstall.log
[28.10.2008|00:16] C:\ProgramData\InstallShield
[02.01.2009|12:18] C:\ProgramData\Kaspersky Lab
[29.12.2008|11:39] C:\ProgramData\Kaspersky Lab Setup Files
[19.11.2008|11:02] C:\ProgramData\Lavasoft
[09.11.2008|14:16] C:\ProgramData\Logishrd
[20.11.2008|13:05] C:\ProgramData\Logitech
[19.11.2008|10:50] C:\ProgramData\Malwarebytes
[05.11.2008|07:05] C:\ProgramData\Maxtor
[03.11.2008|14:39] C:\ProgramData\Menu D‚marrer
[02.01.2009|10:50] C:\ProgramData\Microsoft
[10.12.2008|06:52] C:\ProgramData\Microsoft Help
[03.11.2008|14:39] C:\ProgramData\ModŠles
[29.12.2008|11:34] C:\ProgramData\Norton
[30.11.2008|20:20] C:\ProgramData\NortonInstaller
[04.11.2008|07:14] C:\ProgramData\OPHD
[28.10.2008|00:25] C:\ProgramData\PC-Doctor
[28.10.2008|00:25] C:\ProgramData\PCDr
[30.11.2008|20:22] C:\ProgramData\PCSettings
[03.11.2008|21:48] C:\ProgramData\Skype
[28.10.2008|00:17] C:\ProgramData\Sonic
[02.01.2009|10:43] C:\ProgramData\Spybot - Search & Destroy
[28.10.2008|00:25] C:\ProgramData\SupportSoft
[30.11.2008|20:31] C:\ProgramData\Symantec
[30.11.2008|20:18] C:\ProgramData\Symantec Temporary Files
[02.01.2009|08:52] C:\ProgramData\TEMP
[03.11.2008|20:53] C:\ProgramData\TomTom
[28.10.2008|00:18] C:\ProgramData\Uninstall
[03.11.2008|17:56] C:\ProgramData\WEBREG
[02.01.2009|11:32] C:\ProgramData\WLInstaller
--------------------\\ Listing des dossiers dans C:\Program Files
[06.12.2008|06:41] C:\Program Files\Adobe
[11.11.2008|15:12] C:\Program Files\Apple Software Update
[21.12.2008|10:15] C:\Program Files\a-squared Free
[28.10.2008|00:01] C:\Program Files\ATI Technologies
[03.11.2008|18:24] C:\Program Files\Avanquest update
[04.11.2008|08:37] C:\Program Files\BitLocker
[25.12.2008|17:43] C:\Program Files\Bonjour
[04.11.2008|21:42] C:\Program Files\C-CHANNEL
[01.01.2009|15:14] C:\Program Files\CCleaner
[09.11.2008|13:04] C:\Program Files\CFWebAdvancedU_BOBTV.FR
[03.11.2008|18:07] C:\Program Files\Circutor
[28.10.2008|00:06] C:\Program Files\Cisco
[28.10.2008|00:20] C:\Program Files\Citrix
[02.01.2009|10:51] C:\Program Files\Common Files
[28.10.2008|00:14] C:\Program Files\Creative
[28.10.2008|00:13] C:\Program Files\Creative Live! Cam
[28.10.2008|00:15] C:\Program Files\CyberLink
[04.11.2008|07:33] C:\Program Files\DATA BECKER
[28.10.2008|00:30] C:\Program Files\Dell
[28.10.2008|00:25] C:\Program Files\Dell Support Center
[28.10.2008|00:15] C:\Program Files\Dell Video Chat
[28.10.2008|00:13] C:\Program Files\Dell Webcam
[28.10.2008|08:35] C:\Program Files\DellTPad
[04.11.2008|21:41] C:\Program Files\DIFX
[03.11.2008|19:12] C:\Program Files\DigitalPeers
[03.11.2008|15:16] C:\Program Files\Email Reference
[05.12.2008|10:07] C:\Program Files\Famille3
[05.12.2008|10:07] C:\Program Files\FamTree3
[03.11.2008|14:39] C:\Program Files\Fichiers communs [C:\Program Files\Common Files]
[05.11.2008|15:38] C:\Program Files\FLV Player
[02.01.2009|12:01] C:\Program Files\Google
[03.11.2008|17:05] C:\Program Files\Hewlett-Packard
[03.11.2008|17:00] C:\Program Files\HP
[28.10.2008|00:41] C:\Program Files\IDT
[28.11.2008|12:18] C:\Program Files\InstallShield Installation Information
[28.10.2008|00:01] C:\Program Files\Intel
[11.11.2008|15:14] C:\Program Files\Internet Explorer
[25.12.2008|17:41] C:\Program Files\iPod
[25.12.2008|17:41] C:\Program Files\iTunes
[10.12.2008|13:46] C:\Program Files\Java
[29.12.2008|11:41] C:\Program Files\Kaspersky Lab
[19.11.2008|11:00] C:\Program Files\Lavasoft
[20.11.2008|10:58] C:\Program Files\Logitech
[21.12.2008|10:02] C:\Program Files\Malwarebytes' Anti-Malware
[05.11.2008|07:02] C:\Program Files\Maxtor
[02.01.2009|10:57] C:\Program Files\Microsoft
[10.11.2008|07:29] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[04.11.2008|08:38] C:\Program Files\Microsoft Games
[28.10.2008|00:29] C:\Program Files\Microsoft Office
[04.11.2008|08:35] C:\Program Files\Microsoft Silverlight
[28.10.2008|00:29] C:\Program Files\Microsoft Small Business
[03.11.2008|20:37] C:\Program Files\Microsoft SQL Server
[28.10.2008|00:11] C:\Program Files\Microsoft Visual Studio
[28.10.2008|00:12] C:\Program Files\Microsoft Works
[28.10.2008|00:27] C:\Program Files\Microsoft.NET
[21.01.2008|03:33] C:\Program Files\Movie Maker
[02.01.2009|12:29] C:\Program Files\Mozilla Firefox
[02.11.2006|13:35] C:\Program Files\MSBuild
[10.12.2008|11:30] C:\Program Files\MSECache
[03.11.2008|20:36] C:\Program Files\MSXML 4.0
[03.11.2008|18:30] C:\Program Files\Oxemis
[02.01.2009|10:22] C:\Program Files\Panda Security
[03.11.2008|17:25] C:\Program Files\PDF to Word
[03.11.2008|15:32] C:\Program Files\PhotoFiltre
[25.12.2008|17:39] C:\Program Files\QuickTime
[02.11.2006|13:35] C:\Program Files\Reference Assemblies
[28.10.2008|00:18] C:\Program Files\Roxio
[25.12.2008|17:32] C:\Program Files\Safari
[04.11.2008|10:58] C:\Program Files\ShopFactory V7
[03.11.2008|21:48] C:\Program Files\Skype
[03.12.2008|15:34] C:\Program Files\Smart PC Solutions
[19.11.2008|21:29] C:\Program Files\Spybot - Search & Destroy
[02.01.2009|08:52] C:\Program Files\SpywareBlaster
[03.11.2008|20:48] C:\Program Files\TomTom HOME 2
[02.01.2009|10:32] C:\Program Files\Trend Micro
[28.11.2008|12:19] C:\Program Files\TWIXTEL
[03.11.2008|18:40] C:\Program Files\Ulead Systems
[02.11.2006|14:00] C:\Program Files\Uninstall Information
[05.11.2008|15:44] C:\Program Files\VideoLAN
[28.10.2008|00:03] C:\Program Files\WIDCOMM
[21.01.2008|03:33] C:\Program Files\Windows Calendar
[21.01.2008|03:33] C:\Program Files\Windows Collaboration
[21.01.2008|03:33] C:\Program Files\Windows Defender
[21.01.2008|03:33] C:\Program Files\Windows Journal
[02.01.2009|11:34] C:\Program Files\Windows Live
[02.01.2009|10:57] C:\Program Files\Windows Live SkyDrive
[10.12.2008|07:22] C:\Program Files\Windows Mail
[21.01.2008|03:33] C:\Program Files\Windows Media Player
[03.11.2008|14:39] C:\Program Files\Windows NT
[21.01.2008|03:33] C:\Program Files\Windows Photo Gallery
[21.01.2008|03:33] C:\Program Files\Windows Sidebar
[03.11.2008|18:24] C:\Program Files\WinFax eXPert
[04.11.2008|14:19] C:\Program Files\WinHTTrack
[04.11.2008|06:41] C:\Program Files\WinRAR
[28.12.2008|16:50] C:\Program Files\WinUtilities
[18.12.2008|17:58] C:\Program Files\Wondershare
--------------------\\ Listing des dossiers dans C:\Program Files\Common Files
[06.12.2008|06:39] C:\Program Files\Common Files\Adobe
[05.11.2008|07:55] C:\Program Files\Common Files\Adobe Systems Shared
[03.11.2008|18:07] C:\Program Files\Common Files\Aladdin Shared
[25.12.2008|17:41] C:\Program Files\Common Files\Apple
[28.10.2008|00:11] C:\Program Files\Common Files\DESIGNER
[03.11.2008|17:05] C:\Program Files\Common Files\Hewlett-Packard
[03.11.2008|17:05] C:\Program Files\Common Files\HP
[05.11.2008|07:01] C:\Program Files\Common Files\InstallShield
[27.10.2008|23:55] C:\Program Files\Common Files\Java
[09.11.2008|14:19] C:\Program Files\Common Files\LogiShrd
[20.11.2008|10:54] C:\Program Files\Common Files\Logitech
[03.11.2008|17:29] C:\Program Files\Common Files\Macrovision Shared
[02.01.2009|10:57] C:\Program Files\Common Files\microsoft shared
[28.10.2008|00:17] C:\Program Files\Common Files\PX Storage Engine
[28.10.2008|00:13] C:\Program Files\Common Files\Reallusion
[28.10.2008|00:17] C:\Program Files\Common Files\Roxio Shared
[02.11.2006|12:18] C:\Program Files\Common Files\Services
[03.11.2008|21:48] C:\Program Files\Common Files\Skype
[05.11.2008|07:40] C:\Program Files\Common Files\Softwin
[28.10.2008|00:17] C:\Program Files\Common Files\Sonic Shared
[02.11.2006|12:18] C:\Program Files\Common Files\SpeechEngines
[28.10.2008|00:25] C:\Program Files\Common Files\supportsoft
[28.10.2008|00:18] C:\Program Files\Common Files\SureThing Shared
[29.12.2008|11:34] C:\Program Files\Common Files\Symantec Shared
[28.10.2008|00:09] C:\Program Files\Common Files\System
[02.01.2009|10:51] C:\Program Files\Common Files\Windows Live
[03.11.2008|16:44] C:\Program Files\Common Files\WindowsLiveInstaller
[19.11.2008|10:59] C:\Program Files\Common Files\Wise Installation Wizard
--------------------\\ Process
( 101 Processes )
... OK !
--------------------\\ Recherche avec S_Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Recherche de Fichiers / Dossiers Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Verification du Registre
..... OK !
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-01-02 12:36:40
Windows 6.0.6001 Service Pack 1 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 0
--------------------\\ Recherche d'autres infections
--------------------\\ Cracks & Keygens ..
C:\Users\FRANCI~1\Documents\Recup disque dur 24 oct 08\Documents Franco\Favoris\Crack cle activation.url
C:\Users\FRANCI~1\Documents\R‚cup sur disque dur avec ‚toile\Mes documents\Mes Programmes\Dreamweaver CS3\Keygen
[F:19][D:12]-> C:\Users\FRANCI~1\AppData\Local\Temp
[F:34][D:1]-> C:\Users\FRANCI~1\AppData\Roaming\MICROS~1\Windows\Cookies
[F:80][D:6]-> C:\Users\FRANCI~1\AppData\Local\MICROS~1\Windows\TEMPOR~1\content.IE5
[F:11][D:3]-> C:\$Recycle.Bin
1 - "C:\Lop SD\LopR_1.txt" - 02.01.2009|12:38 - Option : [1]
--------------------\\ Fin du rapport a 12:38:55
[ UAC => 1 ]
c est fait voila le rapport
--------------------\\ Lop S&D 4.2.5-0 XP/Vista
Microsoft® Windows Vista™ Édition Intégrale ( v6.0.6001 ) Service Pack 1
X86-based PC ( Multiprocessor Free : Intel(R) Core(TM)2 Duo CPU T5800 @ 2.00GHz )
BIOS : Phoenix ROM BIOS PLUS Version 1.10 A04
USER : Franco ( Administrator )
BOOT : Normal boot
Antivirus : Kaspersky Internet Security 8.0.0.357 (Activated)
Firewall : Bitdefender Firewall 8.0 (Not Activated)
C:\ (Local Disk) - NTFS - Total:287 Go (Free:198 Go)
D:\ (Local Disk) - NTFS - Total:9 Go (Free:4 Go)
E:\ (CD or DVD)
"C:\Lop SD" ( MAJ : 19-12-2008|23:40 )
Option : [2] ( 02.01.2009|12:48 )
[ UAC => 1 ]
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ SUPPRESSION
-
[ Fichier Hosts ] .. Restaure!
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\
--------------------\\ Listing des dossiers dans Local
[05.11.2008|08:41] C:\Users\FRANCI~1\AppData\Local\Adobe
[11.11.2008|15:12] C:\Users\FRANCI~1\AppData\Local\Apple
[28.12.2008|08:52] C:\Users\FRANCI~1\AppData\Local\Apple Computer
[03.11.2008|14:43] C:\Users\FRANCI~1\AppData\Local\Application Data
[03.11.2008|14:47] C:\Users\FRANCI~1\AppData\Local\ATI
[03.11.2008|18:23] C:\Users\FRANCI~1\AppData\Local\BVRP Software
[05.12.2008|06:40] C:\Users\FRANCI~1\AppData\Local\d3d9caps.dat
[02.01.2009|06:44] C:\Users\FRANCI~1\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[03.11.2008|18:29] C:\Users\FRANCI~1\AppData\Local\Downloaded Installations
[03.11.2008|15:18] C:\Users\FRANCI~1\AppData\Local\FileMaker
[06.12.2008|06:47] C:\Users\FRANCI~1\AppData\Local\GDIPFONTCACHEV1.DAT
[03.11.2008|14:51] C:\Users\FRANCI~1\AppData\Local\Google
[03.11.2008|14:43] C:\Users\FRANCI~1\AppData\Local\Historique
[03.11.2008|21:30] C:\Users\FRANCI~1\AppData\Local\Installer1856
[10.11.2008|15:06] C:\Users\FRANCI~1\AppData\Local\Installer6168
[10.11.2008|06:42] C:\Users\FRANCI~1\AppData\Local\MediaDirect
[06.12.2008|10:20] C:\Users\FRANCI~1\AppData\Local\Microsoft
[16.11.2008|09:45] C:\Users\FRANCI~1\AppData\Local\Microsoft Games
[05.12.2008|10:00] C:\Users\FRANCI~1\AppData\Local\Microsoft Help
[03.11.2008|14:55] C:\Users\FRANCI~1\AppData\Local\Mozilla
[10.11.2008|06:38] C:\Users\FRANCI~1\AppData\Local\Powercinema
[03.11.2008|15:34] C:\Users\FRANCI~1\AppData\Local\Stardock_Corporation
[03.11.2008|17:15] C:\Users\FRANCI~1\AppData\Local\SupportSoft
[02.01.2009|12:48] C:\Users\FRANCI~1\AppData\Local\Temp
[03.11.2008|14:43] C:\Users\FRANCI~1\AppData\Local\Temporary Internet Files
[03.11.2008|20:48] C:\Users\FRANCI~1\AppData\Local\TomTom
[03.11.2008|18:41] C:\Users\FRANCI~1\AppData\Local\VirtualStore
--------------------\\ Tâches planifiées dans C:\Windows\tasks
[02.01.2009 12:11][--ah-----] C:\Windows\tasks\SA.DAT
[02.01.2009 12:06][--a------] C:\Windows\tasks\SCHEDLGU.TXT
--------------------\\ Listing des dossiers dans C:\ProgramData
[25.12.2008|17:41] C:\ProgramData\{3276BE95_AF08_429F_A64F_CA64CB79BCF6}
[05.11.2008|10:00] C:\ProgramData\3D3
[06.12.2008|06:42] C:\ProgramData\Adobe
[05.11.2008|07:55] C:\ProgramData\Adobe Systems
[11.11.2008|15:12] C:\ProgramData\Apple
[25.12.2008|16:54] C:\ProgramData\Apple Computer
[03.11.2008|14:39] C:\ProgramData\Application Data
[28.10.2008|00:41] C:\ProgramData\ATI
[03.11.2008|14:39] C:\ProgramData\Bureau
[03.11.2008|18:23] C:\ProgramData\BVRP Software
[04.11.2008|21:42] C:\ProgramData\C-CHANNEL
[11.12.2008|07:09] C:\ProgramData\Circutor
[09.11.2008|15:59] C:\ProgramData\Creative
[10.11.2008|06:38] C:\ProgramData\CyberLink
[14.11.2008|07:29] C:\ProgramData\Dell
[03.11.2008|14:39] C:\ProgramData\Documents
[03.11.2008|21:51] C:\ProgramData\ezsidmv.dat
[03.11.2008|14:39] C:\ProgramData\Favoris
[05.11.2008|08:14] C:\ProgramData\FLEXnet
[28.10.2008|00:12] C:\ProgramData\Google
[03.11.2008|17:06] C:\ProgramData\HP
[03.11.2008|17:57] C:\ProgramData\hpzinstall.log
[28.10.2008|00:16] C:\ProgramData\InstallShield
[02.01.2009|12:18] C:\ProgramData\Kaspersky Lab
[29.12.2008|11:39] C:\ProgramData\Kaspersky Lab Setup Files
[19.11.2008|11:02] C:\ProgramData\Lavasoft
[09.11.2008|14:16] C:\ProgramData\Logishrd
[20.11.2008|13:05] C:\ProgramData\Logitech
[19.11.2008|10:50] C:\ProgramData\Malwarebytes
[05.11.2008|07:05] C:\ProgramData\Maxtor
[03.11.2008|14:39] C:\ProgramData\Menu D‚marrer
[02.01.2009|10:50] C:\ProgramData\Microsoft
[10.12.2008|06:52] C:\ProgramData\Microsoft Help
[03.11.2008|14:39] C:\ProgramData\ModŠles
[29.12.2008|11:34] C:\ProgramData\Norton
[30.11.2008|20:20] C:\ProgramData\NortonInstaller
[04.11.2008|07:14] C:\ProgramData\OPHD
[28.10.2008|00:25] C:\ProgramData\PC-Doctor
[28.10.2008|00:25] C:\ProgramData\PCDr
[30.11.2008|20:22] C:\ProgramData\PCSettings
[03.11.2008|21:48] C:\ProgramData\Skype
[28.10.2008|00:17] C:\ProgramData\Sonic
[02.01.2009|10:43] C:\ProgramData\Spybot - Search & Destroy
[28.10.2008|00:25] C:\ProgramData\SupportSoft
[30.11.2008|20:31] C:\ProgramData\Symantec
[30.11.2008|20:18] C:\ProgramData\Symantec Temporary Files
[02.01.2009|08:52] C:\ProgramData\TEMP
[03.11.2008|20:53] C:\ProgramData\TomTom
[28.10.2008|00:18] C:\ProgramData\Uninstall
[03.11.2008|17:56] C:\ProgramData\WEBREG
[02.01.2009|11:32] C:\ProgramData\WLInstaller
--------------------\\ Listing des dossiers dans C:\Program Files
[06.12.2008|06:41] C:\Program Files\Adobe
[11.11.2008|15:12] C:\Program Files\Apple Software Update
[21.12.2008|10:15] C:\Program Files\a-squared Free
[28.10.2008|00:01] C:\Program Files\ATI Technologies
[03.11.2008|18:24] C:\Program Files\Avanquest update
[04.11.2008|08:37] C:\Program Files\BitLocker
[25.12.2008|17:43] C:\Program Files\Bonjour
[04.11.2008|21:42] C:\Program Files\C-CHANNEL
[01.01.2009|15:14] C:\Program Files\CCleaner
[09.11.2008|13:04] C:\Program Files\CFWebAdvancedU_BOBTV.FR
[03.11.2008|18:07] C:\Program Files\Circutor
[28.10.2008|00:06] C:\Program Files\Cisco
[28.10.2008|00:20] C:\Program Files\Citrix
[02.01.2009|10:51] C:\Program Files\Common Files
[28.10.2008|00:14] C:\Program Files\Creative
[28.10.2008|00:13] C:\Program Files\Creative Live! Cam
[28.10.2008|00:15] C:\Program Files\CyberLink
[04.11.2008|07:33] C:\Program Files\DATA BECKER
[28.10.2008|00:30] C:\Program Files\Dell
[28.10.2008|00:25] C:\Program Files\Dell Support Center
[28.10.2008|00:15] C:\Program Files\Dell Video Chat
[28.10.2008|00:13] C:\Program Files\Dell Webcam
[28.10.2008|08:35] C:\Program Files\DellTPad
[04.11.2008|21:41] C:\Program Files\DIFX
[03.11.2008|19:12] C:\Program Files\DigitalPeers
[03.11.2008|15:16] C:\Program Files\Email Reference
[05.12.2008|10:07] C:\Program Files\Famille3
[05.12.2008|10:07] C:\Program Files\FamTree3
[03.11.2008|14:39] C:\Program Files\Fichiers communs [C:\Program Files\Common Files]
[05.11.2008|15:38] C:\Program Files\FLV Player
[02.01.2009|12:01] C:\Program Files\Google
[03.11.2008|17:05] C:\Program Files\Hewlett-Packard
[03.11.2008|17:00] C:\Program Files\HP
[28.10.2008|00:41] C:\Program Files\IDT
[28.11.2008|12:18] C:\Program Files\InstallShield Installation Information
[28.10.2008|00:01] C:\Program Files\Intel
[11.11.2008|15:14] C:\Program Files\Internet Explorer
[25.12.2008|17:41] C:\Program Files\iPod
[25.12.2008|17:41] C:\Program Files\iTunes
[10.12.2008|13:46] C:\Program Files\Java
[29.12.2008|11:41] C:\Program Files\Kaspersky Lab
[19.11.2008|11:00] C:\Program Files\Lavasoft
[20.11.2008|10:58] C:\Program Files\Logitech
[21.12.2008|10:02] C:\Program Files\Malwarebytes' Anti-Malware
[05.11.2008|07:02] C:\Program Files\Maxtor
[02.01.2009|10:57] C:\Program Files\Microsoft
[10.11.2008|07:29] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[04.11.2008|08:38] C:\Program Files\Microsoft Games
[28.10.2008|00:29] C:\Program Files\Microsoft Office
[04.11.2008|08:35] C:\Program Files\Microsoft Silverlight
[28.10.2008|00:29] C:\Program Files\Microsoft Small Business
[03.11.2008|20:37] C:\Program Files\Microsoft SQL Server
[28.10.2008|00:11] C:\Program Files\Microsoft Visual Studio
[28.10.2008|00:12] C:\Program Files\Microsoft Works
[28.10.2008|00:27] C:\Program Files\Microsoft.NET
[21.01.2008|03:33] C:\Program Files\Movie Maker
[02.01.2009|12:40] C:\Program Files\Mozilla Firefox
[02.11.2006|13:35] C:\Program Files\MSBuild
[10.12.2008|11:30] C:\Program Files\MSECache
[03.11.2008|20:36] C:\Program Files\MSXML 4.0
[03.11.2008|18:30] C:\Program Files\Oxemis
[02.01.2009|10:22] C:\Program Files\Panda Security
[03.11.2008|17:25] C:\Program Files\PDF to Word
[03.11.2008|15:32] C:\Program Files\PhotoFiltre
[25.12.2008|17:39] C:\Program Files\QuickTime
[02.11.2006|13:35] C:\Program Files\Reference Assemblies
[28.10.2008|00:18] C:\Program Files\Roxio
[25.12.2008|17:32] C:\Program Files\Safari
[04.11.2008|10:58] C:\Program Files\ShopFactory V7
[03.11.2008|21:48] C:\Program Files\Skype
[03.12.2008|15:34] C:\Program Files\Smart PC Solutions
[19.11.2008|21:29] C:\Program Files\Spybot - Search & Destroy
[02.01.2009|08:52] C:\Program Files\SpywareBlaster
[03.11.2008|20:48] C:\Program Files\TomTom HOME 2
[02.01.2009|10:32] C:\Program Files\Trend Micro
[28.11.2008|12:19] C:\Program Files\TWIXTEL
[03.11.2008|18:40] C:\Program Files\Ulead Systems
[02.11.2006|14:00] C:\Program Files\Uninstall Information
[05.11.2008|15:44] C:\Program Files\VideoLAN
[28.10.2008|00:03] C:\Program Files\WIDCOMM
[21.01.2008|03:33] C:\Program Files\Windows Calendar
[21.01.2008|03:33] C:\Program Files\Windows Collaboration
[21.01.2008|03:33] C:\Program Files\Windows Defender
[21.01.2008|03:33] C:\Program Files\Windows Journal
[02.01.2009|11:34] C:\Program Files\Windows Live
[02.01.2009|10:57] C:\Program Files\Windows Live SkyDrive
[10.12.2008|07:22] C:\Program Files\Windows Mail
[21.01.2008|03:33] C:\Program Files\Windows Media Player
[03.11.2008|14:39] C:\Program Files\Windows NT
[21.01.2008|03:33] C:\Program Files\Windows Photo Gallery
[21.01.2008|03:33] C:\Program Files\Windows Sidebar
[03.11.2008|18:24] C:\Program Files\WinFax eXPert
[04.11.2008|14:19] C:\Program Files\WinHTTrack
[04.11.2008|06:41] C:\Program Files\WinRAR
[28.12.2008|16:50] C:\Program Files\WinUtilities
[18.12.2008|17:58] C:\Program Files\Wondershare
--------------------\\ Listing des dossiers dans C:\Program Files\Common Files
[06.12.2008|06:39] C:\Program Files\Common Files\Adobe
[05.11.2008|07:55] C:\Program Files\Common Files\Adobe Systems Shared
[03.11.2008|18:07] C:\Program Files\Common Files\Aladdin Shared
[25.12.2008|17:41] C:\Program Files\Common Files\Apple
[28.10.2008|00:11] C:\Program Files\Common Files\DESIGNER
[03.11.2008|17:05] C:\Program Files\Common Files\Hewlett-Packard
[03.11.2008|17:05] C:\Program Files\Common Files\HP
[05.11.2008|07:01] C:\Program Files\Common Files\InstallShield
[27.10.2008|23:55] C:\Program Files\Common Files\Java
[09.11.2008|14:19] C:\Program Files\Common Files\LogiShrd
[20.11.2008|10:54] C:\Program Files\Common Files\Logitech
[03.11.2008|17:29] C:\Program Files\Common Files\Macrovision Shared
[02.01.2009|10:57] C:\Program Files\Common Files\microsoft shared
[28.10.2008|00:17] C:\Program Files\Common Files\PX Storage Engine
[28.10.2008|00:13] C:\Program Files\Common Files\Reallusion
[28.10.2008|00:17] C:\Program Files\Common Files\Roxio Shared
[02.11.2006|12:18] C:\Program Files\Common Files\Services
[03.11.2008|21:48] C:\Program Files\Common Files\Skype
[05.11.2008|07:40] C:\Program Files\Common Files\Softwin
[28.10.2008|00:17] C:\Program Files\Common Files\Sonic Shared
[02.11.2006|12:18] C:\Program Files\Common Files\SpeechEngines
[28.10.2008|00:25] C:\Program Files\Common Files\supportsoft
[28.10.2008|00:18] C:\Program Files\Common Files\SureThing Shared
[29.12.2008|11:34] C:\Program Files\Common Files\Symantec Shared
[28.10.2008|00:09] C:\Program Files\Common Files\System
[02.01.2009|10:51] C:\Program Files\Common Files\Windows Live
[03.11.2008|16:44] C:\Program Files\Common Files\WindowsLiveInstaller
[19.11.2008|10:59] C:\Program Files\Common Files\Wise Installation Wizard
--------------------\\ Process
( 104 Processes )
... OK !
--------------------\\ Recherche avec S_Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Recherche de Fichiers / Dossiers Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Verification du Registre
..... OK !
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-01-02 12:48:53
Windows 6.0.6001 Service Pack 1 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 0
--------------------\\ Recherche d'autres infections
--------------------\\ Cracks & Keygens ..
C:\Users\FRANCI~1\Documents\Recup disque dur 24 oct 08\Documents Franco\Favoris\Crack cle activation.url
C:\Users\FRANCI~1\Documents\R‚cup sur disque dur avec ‚toile\Mes documents\Mes Programmes\Dreamweaver CS3\Keygen
[F:25][D:13]-> C:\Users\FRANCI~1\AppData\Local\Temp
[F:34][D:1]-> C:\Users\FRANCI~1\AppData\Roaming\MICROS~1\Windows\Cookies
[F:94][D:6]-> C:\Users\FRANCI~1\AppData\Local\MICROS~1\Windows\TEMPOR~1\content.IE5
[F:13][D:3]-> C:\$Recycle.Bin
1 - "C:\Lop SD\LopR_1.txt" - 02.01.2009|12:38 - Option : [1]
2 - "C:\Lop SD\LopR_2.txt" - 02.01.2009|12:50 - Option : [2]
--------------------\\ Fin du rapport a 12:50:35
[ UAC => 1 ]
--------------------\\ Lop S&D 4.2.5-0 XP/Vista
Microsoft® Windows Vista™ Édition Intégrale ( v6.0.6001 ) Service Pack 1
X86-based PC ( Multiprocessor Free : Intel(R) Core(TM)2 Duo CPU T5800 @ 2.00GHz )
BIOS : Phoenix ROM BIOS PLUS Version 1.10 A04
USER : Franco ( Administrator )
BOOT : Normal boot
Antivirus : Kaspersky Internet Security 8.0.0.357 (Activated)
Firewall : Bitdefender Firewall 8.0 (Not Activated)
C:\ (Local Disk) - NTFS - Total:287 Go (Free:198 Go)
D:\ (Local Disk) - NTFS - Total:9 Go (Free:4 Go)
E:\ (CD or DVD)
"C:\Lop SD" ( MAJ : 19-12-2008|23:40 )
Option : [2] ( 02.01.2009|12:48 )
[ UAC => 1 ]
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ SUPPRESSION
-
[ Fichier Hosts ] .. Restaure!
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\
--------------------\\ Listing des dossiers dans Local
[05.11.2008|08:41] C:\Users\FRANCI~1\AppData\Local\Adobe
[11.11.2008|15:12] C:\Users\FRANCI~1\AppData\Local\Apple
[28.12.2008|08:52] C:\Users\FRANCI~1\AppData\Local\Apple Computer
[03.11.2008|14:43] C:\Users\FRANCI~1\AppData\Local\Application Data
[03.11.2008|14:47] C:\Users\FRANCI~1\AppData\Local\ATI
[03.11.2008|18:23] C:\Users\FRANCI~1\AppData\Local\BVRP Software
[05.12.2008|06:40] C:\Users\FRANCI~1\AppData\Local\d3d9caps.dat
[02.01.2009|06:44] C:\Users\FRANCI~1\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[03.11.2008|18:29] C:\Users\FRANCI~1\AppData\Local\Downloaded Installations
[03.11.2008|15:18] C:\Users\FRANCI~1\AppData\Local\FileMaker
[06.12.2008|06:47] C:\Users\FRANCI~1\AppData\Local\GDIPFONTCACHEV1.DAT
[03.11.2008|14:51] C:\Users\FRANCI~1\AppData\Local\Google
[03.11.2008|14:43] C:\Users\FRANCI~1\AppData\Local\Historique
[03.11.2008|21:30] C:\Users\FRANCI~1\AppData\Local\Installer1856
[10.11.2008|15:06] C:\Users\FRANCI~1\AppData\Local\Installer6168
[10.11.2008|06:42] C:\Users\FRANCI~1\AppData\Local\MediaDirect
[06.12.2008|10:20] C:\Users\FRANCI~1\AppData\Local\Microsoft
[16.11.2008|09:45] C:\Users\FRANCI~1\AppData\Local\Microsoft Games
[05.12.2008|10:00] C:\Users\FRANCI~1\AppData\Local\Microsoft Help
[03.11.2008|14:55] C:\Users\FRANCI~1\AppData\Local\Mozilla
[10.11.2008|06:38] C:\Users\FRANCI~1\AppData\Local\Powercinema
[03.11.2008|15:34] C:\Users\FRANCI~1\AppData\Local\Stardock_Corporation
[03.11.2008|17:15] C:\Users\FRANCI~1\AppData\Local\SupportSoft
[02.01.2009|12:48] C:\Users\FRANCI~1\AppData\Local\Temp
[03.11.2008|14:43] C:\Users\FRANCI~1\AppData\Local\Temporary Internet Files
[03.11.2008|20:48] C:\Users\FRANCI~1\AppData\Local\TomTom
[03.11.2008|18:41] C:\Users\FRANCI~1\AppData\Local\VirtualStore
--------------------\\ Tâches planifiées dans C:\Windows\tasks
[02.01.2009 12:11][--ah-----] C:\Windows\tasks\SA.DAT
[02.01.2009 12:06][--a------] C:\Windows\tasks\SCHEDLGU.TXT
--------------------\\ Listing des dossiers dans C:\ProgramData
[25.12.2008|17:41] C:\ProgramData\{3276BE95_AF08_429F_A64F_CA64CB79BCF6}
[05.11.2008|10:00] C:\ProgramData\3D3
[06.12.2008|06:42] C:\ProgramData\Adobe
[05.11.2008|07:55] C:\ProgramData\Adobe Systems
[11.11.2008|15:12] C:\ProgramData\Apple
[25.12.2008|16:54] C:\ProgramData\Apple Computer
[03.11.2008|14:39] C:\ProgramData\Application Data
[28.10.2008|00:41] C:\ProgramData\ATI
[03.11.2008|14:39] C:\ProgramData\Bureau
[03.11.2008|18:23] C:\ProgramData\BVRP Software
[04.11.2008|21:42] C:\ProgramData\C-CHANNEL
[11.12.2008|07:09] C:\ProgramData\Circutor
[09.11.2008|15:59] C:\ProgramData\Creative
[10.11.2008|06:38] C:\ProgramData\CyberLink
[14.11.2008|07:29] C:\ProgramData\Dell
[03.11.2008|14:39] C:\ProgramData\Documents
[03.11.2008|21:51] C:\ProgramData\ezsidmv.dat
[03.11.2008|14:39] C:\ProgramData\Favoris
[05.11.2008|08:14] C:\ProgramData\FLEXnet
[28.10.2008|00:12] C:\ProgramData\Google
[03.11.2008|17:06] C:\ProgramData\HP
[03.11.2008|17:57] C:\ProgramData\hpzinstall.log
[28.10.2008|00:16] C:\ProgramData\InstallShield
[02.01.2009|12:18] C:\ProgramData\Kaspersky Lab
[29.12.2008|11:39] C:\ProgramData\Kaspersky Lab Setup Files
[19.11.2008|11:02] C:\ProgramData\Lavasoft
[09.11.2008|14:16] C:\ProgramData\Logishrd
[20.11.2008|13:05] C:\ProgramData\Logitech
[19.11.2008|10:50] C:\ProgramData\Malwarebytes
[05.11.2008|07:05] C:\ProgramData\Maxtor
[03.11.2008|14:39] C:\ProgramData\Menu D‚marrer
[02.01.2009|10:50] C:\ProgramData\Microsoft
[10.12.2008|06:52] C:\ProgramData\Microsoft Help
[03.11.2008|14:39] C:\ProgramData\ModŠles
[29.12.2008|11:34] C:\ProgramData\Norton
[30.11.2008|20:20] C:\ProgramData\NortonInstaller
[04.11.2008|07:14] C:\ProgramData\OPHD
[28.10.2008|00:25] C:\ProgramData\PC-Doctor
[28.10.2008|00:25] C:\ProgramData\PCDr
[30.11.2008|20:22] C:\ProgramData\PCSettings
[03.11.2008|21:48] C:\ProgramData\Skype
[28.10.2008|00:17] C:\ProgramData\Sonic
[02.01.2009|10:43] C:\ProgramData\Spybot - Search & Destroy
[28.10.2008|00:25] C:\ProgramData\SupportSoft
[30.11.2008|20:31] C:\ProgramData\Symantec
[30.11.2008|20:18] C:\ProgramData\Symantec Temporary Files
[02.01.2009|08:52] C:\ProgramData\TEMP
[03.11.2008|20:53] C:\ProgramData\TomTom
[28.10.2008|00:18] C:\ProgramData\Uninstall
[03.11.2008|17:56] C:\ProgramData\WEBREG
[02.01.2009|11:32] C:\ProgramData\WLInstaller
--------------------\\ Listing des dossiers dans C:\Program Files
[06.12.2008|06:41] C:\Program Files\Adobe
[11.11.2008|15:12] C:\Program Files\Apple Software Update
[21.12.2008|10:15] C:\Program Files\a-squared Free
[28.10.2008|00:01] C:\Program Files\ATI Technologies
[03.11.2008|18:24] C:\Program Files\Avanquest update
[04.11.2008|08:37] C:\Program Files\BitLocker
[25.12.2008|17:43] C:\Program Files\Bonjour
[04.11.2008|21:42] C:\Program Files\C-CHANNEL
[01.01.2009|15:14] C:\Program Files\CCleaner
[09.11.2008|13:04] C:\Program Files\CFWebAdvancedU_BOBTV.FR
[03.11.2008|18:07] C:\Program Files\Circutor
[28.10.2008|00:06] C:\Program Files\Cisco
[28.10.2008|00:20] C:\Program Files\Citrix
[02.01.2009|10:51] C:\Program Files\Common Files
[28.10.2008|00:14] C:\Program Files\Creative
[28.10.2008|00:13] C:\Program Files\Creative Live! Cam
[28.10.2008|00:15] C:\Program Files\CyberLink
[04.11.2008|07:33] C:\Program Files\DATA BECKER
[28.10.2008|00:30] C:\Program Files\Dell
[28.10.2008|00:25] C:\Program Files\Dell Support Center
[28.10.2008|00:15] C:\Program Files\Dell Video Chat
[28.10.2008|00:13] C:\Program Files\Dell Webcam
[28.10.2008|08:35] C:\Program Files\DellTPad
[04.11.2008|21:41] C:\Program Files\DIFX
[03.11.2008|19:12] C:\Program Files\DigitalPeers
[03.11.2008|15:16] C:\Program Files\Email Reference
[05.12.2008|10:07] C:\Program Files\Famille3
[05.12.2008|10:07] C:\Program Files\FamTree3
[03.11.2008|14:39] C:\Program Files\Fichiers communs [C:\Program Files\Common Files]
[05.11.2008|15:38] C:\Program Files\FLV Player
[02.01.2009|12:01] C:\Program Files\Google
[03.11.2008|17:05] C:\Program Files\Hewlett-Packard
[03.11.2008|17:00] C:\Program Files\HP
[28.10.2008|00:41] C:\Program Files\IDT
[28.11.2008|12:18] C:\Program Files\InstallShield Installation Information
[28.10.2008|00:01] C:\Program Files\Intel
[11.11.2008|15:14] C:\Program Files\Internet Explorer
[25.12.2008|17:41] C:\Program Files\iPod
[25.12.2008|17:41] C:\Program Files\iTunes
[10.12.2008|13:46] C:\Program Files\Java
[29.12.2008|11:41] C:\Program Files\Kaspersky Lab
[19.11.2008|11:00] C:\Program Files\Lavasoft
[20.11.2008|10:58] C:\Program Files\Logitech
[21.12.2008|10:02] C:\Program Files\Malwarebytes' Anti-Malware
[05.11.2008|07:02] C:\Program Files\Maxtor
[02.01.2009|10:57] C:\Program Files\Microsoft
[10.11.2008|07:29] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[04.11.2008|08:38] C:\Program Files\Microsoft Games
[28.10.2008|00:29] C:\Program Files\Microsoft Office
[04.11.2008|08:35] C:\Program Files\Microsoft Silverlight
[28.10.2008|00:29] C:\Program Files\Microsoft Small Business
[03.11.2008|20:37] C:\Program Files\Microsoft SQL Server
[28.10.2008|00:11] C:\Program Files\Microsoft Visual Studio
[28.10.2008|00:12] C:\Program Files\Microsoft Works
[28.10.2008|00:27] C:\Program Files\Microsoft.NET
[21.01.2008|03:33] C:\Program Files\Movie Maker
[02.01.2009|12:40] C:\Program Files\Mozilla Firefox
[02.11.2006|13:35] C:\Program Files\MSBuild
[10.12.2008|11:30] C:\Program Files\MSECache
[03.11.2008|20:36] C:\Program Files\MSXML 4.0
[03.11.2008|18:30] C:\Program Files\Oxemis
[02.01.2009|10:22] C:\Program Files\Panda Security
[03.11.2008|17:25] C:\Program Files\PDF to Word
[03.11.2008|15:32] C:\Program Files\PhotoFiltre
[25.12.2008|17:39] C:\Program Files\QuickTime
[02.11.2006|13:35] C:\Program Files\Reference Assemblies
[28.10.2008|00:18] C:\Program Files\Roxio
[25.12.2008|17:32] C:\Program Files\Safari
[04.11.2008|10:58] C:\Program Files\ShopFactory V7
[03.11.2008|21:48] C:\Program Files\Skype
[03.12.2008|15:34] C:\Program Files\Smart PC Solutions
[19.11.2008|21:29] C:\Program Files\Spybot - Search & Destroy
[02.01.2009|08:52] C:\Program Files\SpywareBlaster
[03.11.2008|20:48] C:\Program Files\TomTom HOME 2
[02.01.2009|10:32] C:\Program Files\Trend Micro
[28.11.2008|12:19] C:\Program Files\TWIXTEL
[03.11.2008|18:40] C:\Program Files\Ulead Systems
[02.11.2006|14:00] C:\Program Files\Uninstall Information
[05.11.2008|15:44] C:\Program Files\VideoLAN
[28.10.2008|00:03] C:\Program Files\WIDCOMM
[21.01.2008|03:33] C:\Program Files\Windows Calendar
[21.01.2008|03:33] C:\Program Files\Windows Collaboration
[21.01.2008|03:33] C:\Program Files\Windows Defender
[21.01.2008|03:33] C:\Program Files\Windows Journal
[02.01.2009|11:34] C:\Program Files\Windows Live
[02.01.2009|10:57] C:\Program Files\Windows Live SkyDrive
[10.12.2008|07:22] C:\Program Files\Windows Mail
[21.01.2008|03:33] C:\Program Files\Windows Media Player
[03.11.2008|14:39] C:\Program Files\Windows NT
[21.01.2008|03:33] C:\Program Files\Windows Photo Gallery
[21.01.2008|03:33] C:\Program Files\Windows Sidebar
[03.11.2008|18:24] C:\Program Files\WinFax eXPert
[04.11.2008|14:19] C:\Program Files\WinHTTrack
[04.11.2008|06:41] C:\Program Files\WinRAR
[28.12.2008|16:50] C:\Program Files\WinUtilities
[18.12.2008|17:58] C:\Program Files\Wondershare
--------------------\\ Listing des dossiers dans C:\Program Files\Common Files
[06.12.2008|06:39] C:\Program Files\Common Files\Adobe
[05.11.2008|07:55] C:\Program Files\Common Files\Adobe Systems Shared
[03.11.2008|18:07] C:\Program Files\Common Files\Aladdin Shared
[25.12.2008|17:41] C:\Program Files\Common Files\Apple
[28.10.2008|00:11] C:\Program Files\Common Files\DESIGNER
[03.11.2008|17:05] C:\Program Files\Common Files\Hewlett-Packard
[03.11.2008|17:05] C:\Program Files\Common Files\HP
[05.11.2008|07:01] C:\Program Files\Common Files\InstallShield
[27.10.2008|23:55] C:\Program Files\Common Files\Java
[09.11.2008|14:19] C:\Program Files\Common Files\LogiShrd
[20.11.2008|10:54] C:\Program Files\Common Files\Logitech
[03.11.2008|17:29] C:\Program Files\Common Files\Macrovision Shared
[02.01.2009|10:57] C:\Program Files\Common Files\microsoft shared
[28.10.2008|00:17] C:\Program Files\Common Files\PX Storage Engine
[28.10.2008|00:13] C:\Program Files\Common Files\Reallusion
[28.10.2008|00:17] C:\Program Files\Common Files\Roxio Shared
[02.11.2006|12:18] C:\Program Files\Common Files\Services
[03.11.2008|21:48] C:\Program Files\Common Files\Skype
[05.11.2008|07:40] C:\Program Files\Common Files\Softwin
[28.10.2008|00:17] C:\Program Files\Common Files\Sonic Shared
[02.11.2006|12:18] C:\Program Files\Common Files\SpeechEngines
[28.10.2008|00:25] C:\Program Files\Common Files\supportsoft
[28.10.2008|00:18] C:\Program Files\Common Files\SureThing Shared
[29.12.2008|11:34] C:\Program Files\Common Files\Symantec Shared
[28.10.2008|00:09] C:\Program Files\Common Files\System
[02.01.2009|10:51] C:\Program Files\Common Files\Windows Live
[03.11.2008|16:44] C:\Program Files\Common Files\WindowsLiveInstaller
[19.11.2008|10:59] C:\Program Files\Common Files\Wise Installation Wizard
--------------------\\ Process
( 104 Processes )
... OK !
--------------------\\ Recherche avec S_Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Recherche de Fichiers / Dossiers Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Verification du Registre
..... OK !
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-01-02 12:48:53
Windows 6.0.6001 Service Pack 1 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 0
--------------------\\ Recherche d'autres infections
--------------------\\ Cracks & Keygens ..
C:\Users\FRANCI~1\Documents\Recup disque dur 24 oct 08\Documents Franco\Favoris\Crack cle activation.url
C:\Users\FRANCI~1\Documents\R‚cup sur disque dur avec ‚toile\Mes documents\Mes Programmes\Dreamweaver CS3\Keygen
[F:25][D:13]-> C:\Users\FRANCI~1\AppData\Local\Temp
[F:34][D:1]-> C:\Users\FRANCI~1\AppData\Roaming\MICROS~1\Windows\Cookies
[F:94][D:6]-> C:\Users\FRANCI~1\AppData\Local\MICROS~1\Windows\TEMPOR~1\content.IE5
[F:13][D:3]-> C:\$Recycle.Bin
1 - "C:\Lop SD\LopR_1.txt" - 02.01.2009|12:38 - Option : [1]
2 - "C:\Lop SD\LopR_2.txt" - 02.01.2009|12:50 - Option : [2]
--------------------\\ Fin du rapport a 12:50:35
[ UAC => 1 ]
adobe 7 est la version adobe pro 7 qui permet des modif de fichier et pas simplemement le lecteur reader
il me semble plus rapide et spyboot ne me dit plus que je doi etre admin pour faire la vaccination
par contre msn boff connecte pas
par contre msn boff connecte pas
PEUT TU FAIRE SE SI MAINTENANT
DES QUE TU A TOOSCLEANER SUR TON BUREAU http://www.commentcamarche.net/telecharger/telecharger 34055291 toolscleaner
TU DOUBLES CLICK DESSUS ET TU FAIT RECHERCHE ET TU LE LAISSE TRAVAILLER
IL VA TROUVER DES OUTILS ET TU FAIT SUPRIMER LA SELECTION
DES QUE TU A TOOSCLEANER SUR TON BUREAU http://www.commentcamarche.net/telecharger/telecharger 34055291 toolscleaner
TU DOUBLES CLICK DESSUS ET TU FAIT RECHERCHE ET TU LE LAISSE TRAVAILLER
IL VA TROUVER DES OUTILS ET TU FAIT SUPRIMER LA SELECTION
ce genre de truc je peux virer?
C:\Program Files\Panda Security
C:\Program Files\Trend Micro
C:\Program Files\Common Files\Symantec Shared
C:\ProgramData\Norton
C:\ProgramData\NortonInstaller
C:\ProgramData\Symantec
C:\ProgramData\Symantec Temporary Files
C:\Program Files\Panda Security
C:\Program Files\Trend Micro
C:\Program Files\Common Files\Symantec Shared
C:\ProgramData\Norton
C:\ProgramData\NortonInstaller
C:\ProgramData\Symantec
C:\ProgramData\Symantec Temporary Files
voila c est fait le rapport
[ Rapport ToolsCleaner version 2.2.9 (par A.Rothstein & dj QUIOU) ]
-->- Recherche:
C:\lopR.txt: trouvé !
C:\Lop SD: trouvé !
C:\Program Files\Trend Micro\HijackThis: trouvé !
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe: trouvé !
C:\Program Files\Trend Micro\HijackThis\hijackthis.log: trouvé !
C:\ProgramData\Microsoft\Windows\Start Menu\Programmes\HijackThis: trouvé !
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HijackThis: trouvé !
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HijackThis\HijackThis.lnk: trouvé !
C:\Users\All Users\Microsoft\Windows\Start Menu\Programmes\HijackThis: trouvé !
C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\HijackThis: trouvé !
C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\HijackThis\HijackThis.lnk: trouvé !
C:\Users\Francisco\AppData\Local\VirtualStore\Program Files\Trend Micro\HijackThis: trouvé !
C:\Users\Francisco\AppData\Local\VirtualStore\Program Files\Trend Micro\HijackThis\hijackthis.log: trouvé !
C:\Users\Francisco\Desktop\HijackThis.lnk: trouvé !
C:\Users\Francisco\Desktop\HJTInstall.exe: trouvé !
C:\Users\Francisco\Desktop\SmitFraudFix.exe: trouvé !
C:\Users\Francisco\Desktop\SmitFraudfix: trouvé !
---------------------------------
-->- Suppression:
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe: supprimé !
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HijackThis\HijackThis.lnk: supprimé !
C:\Users\Francisco\Desktop\HijackThis.lnk: supprimé !
C:\Users\Francisco\Desktop\HJTInstall.exe: supprimé !
C:\Users\Francisco\Desktop\SmitFraudFix.exe: supprimé !
C:\lopR.txt: supprimé !
C:\Program Files\Trend Micro\HijackThis\hijackthis.log: supprimé !
C:\Users\Francisco\AppData\Local\VirtualStore\Program Files\Trend Micro\HijackThis\hijackthis.log: supprimé !
C:\Lop SD: ERREUR DE SUPPRESSION !!
C:\Program Files\Trend Micro\HijackThis: supprimé !
C:\ProgramData\Microsoft\Windows\Start Menu\Programmes\HijackThis: ERREUR DE SUPPRESSION !!
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HijackThis: supprimé !
C:\Users\Francisco\AppData\Local\VirtualStore\Program Files\Trend Micro\HijackThis: supprimé !
C:\Users\Francisco\Desktop\SmitFraudfix: supprimé !
Oui je peux vacciner correctemement avec spybot
[ Rapport ToolsCleaner version 2.2.9 (par A.Rothstein & dj QUIOU) ]
-->- Recherche:
C:\lopR.txt: trouvé !
C:\Lop SD: trouvé !
C:\Program Files\Trend Micro\HijackThis: trouvé !
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe: trouvé !
C:\Program Files\Trend Micro\HijackThis\hijackthis.log: trouvé !
C:\ProgramData\Microsoft\Windows\Start Menu\Programmes\HijackThis: trouvé !
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HijackThis: trouvé !
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HijackThis\HijackThis.lnk: trouvé !
C:\Users\All Users\Microsoft\Windows\Start Menu\Programmes\HijackThis: trouvé !
C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\HijackThis: trouvé !
C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\HijackThis\HijackThis.lnk: trouvé !
C:\Users\Francisco\AppData\Local\VirtualStore\Program Files\Trend Micro\HijackThis: trouvé !
C:\Users\Francisco\AppData\Local\VirtualStore\Program Files\Trend Micro\HijackThis\hijackthis.log: trouvé !
C:\Users\Francisco\Desktop\HijackThis.lnk: trouvé !
C:\Users\Francisco\Desktop\HJTInstall.exe: trouvé !
C:\Users\Francisco\Desktop\SmitFraudFix.exe: trouvé !
C:\Users\Francisco\Desktop\SmitFraudfix: trouvé !
---------------------------------
-->- Suppression:
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe: supprimé !
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HijackThis\HijackThis.lnk: supprimé !
C:\Users\Francisco\Desktop\HijackThis.lnk: supprimé !
C:\Users\Francisco\Desktop\HJTInstall.exe: supprimé !
C:\Users\Francisco\Desktop\SmitFraudFix.exe: supprimé !
C:\lopR.txt: supprimé !
C:\Program Files\Trend Micro\HijackThis\hijackthis.log: supprimé !
C:\Users\Francisco\AppData\Local\VirtualStore\Program Files\Trend Micro\HijackThis\hijackthis.log: supprimé !
C:\Lop SD: ERREUR DE SUPPRESSION !!
C:\Program Files\Trend Micro\HijackThis: supprimé !
C:\ProgramData\Microsoft\Windows\Start Menu\Programmes\HijackThis: ERREUR DE SUPPRESSION !!
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HijackThis: supprimé !
C:\Users\Francisco\AppData\Local\VirtualStore\Program Files\Trend Micro\HijackThis: supprimé !
C:\Users\Francisco\Desktop\SmitFraudfix: supprimé !
Oui je peux vacciner correctemement avec spybot
• Télécharger smitfraudfix ici : http://siri.urz.free.fr/Fix/SmitfraudFix.exe
• Tuto ici : http://siri.urz.free.fr/Fix/SmitfraudFix.php
• Poste le rapport dans ton prochain message
http://pctutoriel.servhome.org/tutowindows/desactiver_UAC.php