Virus sur mon PC rapport HijackThis
xav1664
Messages postés
57
Statut
Membre
-
loloetseb Messages postés 5684 Statut Membre -
loloetseb Messages postés 5684 Statut Membre -
Bonjour,
Je voudrais supprimer les virus et autres infectant mon ordinateur.
J'ai donc utilisé hijackthis et voici le rapport :
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 16:20:11, on 14/04/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\AskBarDis\bar\bin\AskService.exe
C:\Program Files\AskBarDis\bar\bin\ASKUpgrade.exe
C:\WINDOWS\ATKKBService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\svchost.exe
C:\Installation Logiciels\Power Cinema\PowerCinema\Kernel\TV\CLCapSvc.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\WINDOWS\system32\PnkBstrB.exe
C:\Program Files\Cyberlink\Shared files\RichVideo.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Program Files\Analog Devices\SoundMAX\Smax4.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe
C:\Installation Logiciels\Power Cinema\PowerCinema\PCMService.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Fichiers communs\InstallShield\UpdateService\ISUSPM.exe
C:\Installation Logiciels\Super Copieur\SuperCopier2\SuperCopier2.exe
C:\Program Files\Software Informer\softinfo.exe
C:\Installation Logiciels\Power Cinema\PowerCinema\Kernel\TV\CLSched.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Yahoo!\Widgets\YahooWidgets.exe
C:\WINDOWS\System32\alg.exe
C:\Program Files\Yahoo!\Widgets\YahooWidgets.exe
C:\Program Files\Yahoo!\Widgets\YahooWidgets.exe
C:\Program Files\Yahoo!\Widgets\YahooWidgets.exe
C:\Program Files\Yahoo!\Widgets\YahooWidgets.exe
C:\Program Files\Yahoo!\Widgets\YahooWidgets.exe
C:\Program Files\Java\jre1.6.0_06\bin\jucheck.exe
C:\Installation Logiciels\iTunes\iPod\bin\iPodService.exe
C:\Installation Logiciels\Azureus\Azureus.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Installation Logiciels\iTunes\iTunes.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceHelper.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\distnoted.exe
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://toolbar.ask.com/toolbarv/askRedirect?o=10611&gct=&gc=1&q=
R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://toolbar.ask.com/toolbarv/askRedirect?o=10611&gct=&gc=1&q=
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://toolbar.ask.com/toolbarv/askRedirect?o=10611&gct=&gc=1&q=%s
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: DefaultSearchHook Class - {C94E154B-1459-4A47-966B-4B843BEFC7DB} - C:\Program Files\AskSearch\bin\DefaultSearch.dll
F3 - REG:win.ini: load=System
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,System
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: AskBar BHO - {201f27d4-3704-41d6-89c1-aa35e39143ed} - C:\Program Files\AskBarDis\bar\bin\askBar.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll
O2 - BHO: FDMIECookiesBHO Class - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files\Free Download Manager\iefdm2.dll
O3 - Toolbar: Ask Toolbar - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - C:\Program Files\AskBarDis\bar\bin\askBar.dll
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [SoundMAX] "C:\Program Files\Analog Devices\SoundMAX\Smax4.exe" /tray
O4 - HKLM\..\Run: [JMB36X Configure] C:\WINDOWS\system32\JMRaidTool.exe boot
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe"
O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
O4 - HKLM\..\Run: [PCMService] "C:\Installation Logiciels\Power Cinema\PowerCinema\PCMService.exe"
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [ANIWZCS2Service] C:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [ISUSPM] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\ISUSPM.exe" -scheduler
O4 - HKCU\..\Run: [SuperCopier2.exe] C:\Installation Logiciels\Super Copieur\SuperCopier2\SuperCopier2.exe
O4 - HKCU\..\Run: [Free Download Manager] "C:\Program Files\Free Download Manager\fdm.exe" -autorun
O4 - HKCU\..\Run: [Software Informer] "C:\Program Files\Software Informer\softinfo.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: Yahoo! Widgets.lnk = C:\Program Files\Yahoo!\Widgets\YahooWidgets.exe
O4 - Global Startup: ASUS
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Tout télécharger avec Free Download Manager - file://C:\Program Files\Free Download Manager\dlall.htm
O8 - Extra context menu item: Télécharger avec Free Download Manager - file://C:\Program Files\Free Download Manager\dllink.htm
O8 - Extra context menu item: Télécharger la sélection avec Free Download Manager - file://C:\Program Files\Free Download Manager\dlselected.htm
O8 - Extra context menu item: Télécharger la vidéo avec Free Download Manager - file://C:\Program Files\Free Download Manager\dlfvideo.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - C:\Program Files\Yahoo!\Common\Yinsthelper.dll
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL
O23 - Service: ANIWZCSd Service (ANIWZCSdService) - Wireless Service - C:\Program Files\ANI\ANIWZCS2 Service\ANIWZCSdS.exe
O23 - Service: Planificateur Avira AntiVir Personal - Free Antivirus (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: Avira AntiVir Personal - Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: ASKService - Unknown owner - C:\Program Files\AskBarDis\bar\bin\AskService.exe
O23 - Service: ASKUpgrade - Unknown owner - C:\Program Files\AskBarDis\bar\bin\ASKUpgrade.exe
O23 - Service: ATK Keyboard Service (ATKKeyboardService) - ASUSTeK COMPUTER INC. - C:\WINDOWS\ATKKBService.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - C:\Installation Logiciels\Power Cinema\PowerCinema\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Installation Logiciels\Power Cinema\PowerCinema\Kernel\TV\CLSched.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Fichiers communs\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Google Update Service (gupdate1c98c60aa0fe60c) (gupdate1c98c60aa0fe60c) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Installation Logiciels\iTunes\iPod\bin\iPodService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: PnkBstrB - Unknown owner - C:\WINDOWS\system32\PnkBstrB.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\Cyberlink\Shared files\RichVideo.exe
Je voudrais supprimer les virus et autres infectant mon ordinateur.
J'ai donc utilisé hijackthis et voici le rapport :
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 16:20:11, on 14/04/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\AskBarDis\bar\bin\AskService.exe
C:\Program Files\AskBarDis\bar\bin\ASKUpgrade.exe
C:\WINDOWS\ATKKBService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\svchost.exe
C:\Installation Logiciels\Power Cinema\PowerCinema\Kernel\TV\CLCapSvc.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\WINDOWS\system32\PnkBstrB.exe
C:\Program Files\Cyberlink\Shared files\RichVideo.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Program Files\Analog Devices\SoundMAX\Smax4.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe
C:\Installation Logiciels\Power Cinema\PowerCinema\PCMService.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Fichiers communs\InstallShield\UpdateService\ISUSPM.exe
C:\Installation Logiciels\Super Copieur\SuperCopier2\SuperCopier2.exe
C:\Program Files\Software Informer\softinfo.exe
C:\Installation Logiciels\Power Cinema\PowerCinema\Kernel\TV\CLSched.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Yahoo!\Widgets\YahooWidgets.exe
C:\WINDOWS\System32\alg.exe
C:\Program Files\Yahoo!\Widgets\YahooWidgets.exe
C:\Program Files\Yahoo!\Widgets\YahooWidgets.exe
C:\Program Files\Yahoo!\Widgets\YahooWidgets.exe
C:\Program Files\Yahoo!\Widgets\YahooWidgets.exe
C:\Program Files\Yahoo!\Widgets\YahooWidgets.exe
C:\Program Files\Java\jre1.6.0_06\bin\jucheck.exe
C:\Installation Logiciels\iTunes\iPod\bin\iPodService.exe
C:\Installation Logiciels\Azureus\Azureus.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Installation Logiciels\iTunes\iTunes.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceHelper.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\distnoted.exe
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://toolbar.ask.com/toolbarv/askRedirect?o=10611&gct=&gc=1&q=
R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://toolbar.ask.com/toolbarv/askRedirect?o=10611&gct=&gc=1&q=
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://toolbar.ask.com/toolbarv/askRedirect?o=10611&gct=&gc=1&q=%s
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: DefaultSearchHook Class - {C94E154B-1459-4A47-966B-4B843BEFC7DB} - C:\Program Files\AskSearch\bin\DefaultSearch.dll
F3 - REG:win.ini: load=System
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,System
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: AskBar BHO - {201f27d4-3704-41d6-89c1-aa35e39143ed} - C:\Program Files\AskBarDis\bar\bin\askBar.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll
O2 - BHO: FDMIECookiesBHO Class - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files\Free Download Manager\iefdm2.dll
O3 - Toolbar: Ask Toolbar - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - C:\Program Files\AskBarDis\bar\bin\askBar.dll
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [SoundMAX] "C:\Program Files\Analog Devices\SoundMAX\Smax4.exe" /tray
O4 - HKLM\..\Run: [JMB36X Configure] C:\WINDOWS\system32\JMRaidTool.exe boot
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe"
O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
O4 - HKLM\..\Run: [PCMService] "C:\Installation Logiciels\Power Cinema\PowerCinema\PCMService.exe"
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [ANIWZCS2Service] C:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [ISUSPM] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\ISUSPM.exe" -scheduler
O4 - HKCU\..\Run: [SuperCopier2.exe] C:\Installation Logiciels\Super Copieur\SuperCopier2\SuperCopier2.exe
O4 - HKCU\..\Run: [Free Download Manager] "C:\Program Files\Free Download Manager\fdm.exe" -autorun
O4 - HKCU\..\Run: [Software Informer] "C:\Program Files\Software Informer\softinfo.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: Yahoo! Widgets.lnk = C:\Program Files\Yahoo!\Widgets\YahooWidgets.exe
O4 - Global Startup: ASUS
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Tout télécharger avec Free Download Manager - file://C:\Program Files\Free Download Manager\dlall.htm
O8 - Extra context menu item: Télécharger avec Free Download Manager - file://C:\Program Files\Free Download Manager\dllink.htm
O8 - Extra context menu item: Télécharger la sélection avec Free Download Manager - file://C:\Program Files\Free Download Manager\dlselected.htm
O8 - Extra context menu item: Télécharger la vidéo avec Free Download Manager - file://C:\Program Files\Free Download Manager\dlfvideo.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - C:\Program Files\Yahoo!\Common\Yinsthelper.dll
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL
O23 - Service: ANIWZCSd Service (ANIWZCSdService) - Wireless Service - C:\Program Files\ANI\ANIWZCS2 Service\ANIWZCSdS.exe
O23 - Service: Planificateur Avira AntiVir Personal - Free Antivirus (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: Avira AntiVir Personal - Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: ASKService - Unknown owner - C:\Program Files\AskBarDis\bar\bin\AskService.exe
O23 - Service: ASKUpgrade - Unknown owner - C:\Program Files\AskBarDis\bar\bin\ASKUpgrade.exe
O23 - Service: ATK Keyboard Service (ATKKeyboardService) - ASUSTeK COMPUTER INC. - C:\WINDOWS\ATKKBService.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - C:\Installation Logiciels\Power Cinema\PowerCinema\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Installation Logiciels\Power Cinema\PowerCinema\Kernel\TV\CLSched.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Fichiers communs\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Google Update Service (gupdate1c98c60aa0fe60c) (gupdate1c98c60aa0fe60c) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Installation Logiciels\iTunes\iPod\bin\iPodService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: PnkBstrB - Unknown owner - C:\WINDOWS\system32\PnkBstrB.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\Cyberlink\Shared files\RichVideo.exe
A voir également:
- Virus sur mon PC rapport HijackThis
- Mon pc est lent - Guide
- Plus de son sur mon pc - Guide
- Télécharger musique gratuitement sur pc - Télécharger - Conversion & Extraction
- Reinitialiser pc - Guide
- Downloader for pc - Télécharger - Téléchargement & Transfert
83 réponses
Voila le rapport " log.txt " :
Logfile of random's system information tool 1.06 (written by random/random)
Run by Xavier at 2009-04-15 21:52:46
Microsoft Windows XP Professionnel Service Pack 2
System drive C: has 8 GB (8%) free of 100 GB
Total RAM: 2047 MB (79% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 21:52:53, on 15/04/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\Program Files\ANI\ANIWZCS2 Service\ANIWZCSdS.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\WINDOWS\ATKKBService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Installation Logiciels\Power Cinema\PowerCinema\Kernel\TV\CLCapSvc.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\WINDOWS\system32\PnkBstrB.exe
C:\Program Files\Cyberlink\Shared files\RichVideo.exe
C:\WINDOWS\system32\svchost.exe
C:\Installation Logiciels\Power Cinema\PowerCinema\Kernel\TV\CLSched.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\explorer.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Documents and Settings\Xavier\Bureau\RSIT.exe
C:\Program Files\Trend Micro\HijackThis\Xavier.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avwsc.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://toolbar.ask.com/toolbarv/askRedirect?o=10611&gct=&gc=1&q=
R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://toolbar.ask.com/toolbarv/askRedirect?o=10611&gct=&gc=1&q=
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://toolbar.ask.com/toolbarv/askRedirect?o=10611&gct=&gc=1&q=%s
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: DefaultSearchHook Class - {C94E154B-1459-4A47-966B-4B843BEFC7DB} - C:\Program Files\AskSearch\bin\DefaultSearch.dll
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,System
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll
O2 - BHO: FDMIECookiesBHO Class - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files\Free Download Manager\iefdm2.dll
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [SoundMAX] "C:\Program Files\Analog Devices\SoundMAX\Smax4.exe" /tray
O4 - HKLM\..\Run: [JMB36X Configure] C:\WINDOWS\system32\JMRaidTool.exe boot
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe"
O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
O4 - HKLM\..\Run: [PCMService] "C:\Installation Logiciels\Power Cinema\PowerCinema\PCMService.exe"
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [ANIWZCS2Service] C:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [ISUSPM] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\ISUSPM.exe" -scheduler
O4 - HKCU\..\Run: [SuperCopier2.exe] C:\Installation Logiciels\Super Copieur\SuperCopier2\SuperCopier2.exe
O4 - HKCU\..\Run: [Free Download Manager] "C:\Program Files\Free Download Manager\fdm.exe" -autorun
O4 - HKCU\..\Run: [Software Informer] "C:\Program Files\Software Informer\softinfo.exe" -autorun
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: Yahoo! Widgets.lnk = C:\Program Files\Yahoo!\Widgets\YahooWidgets.exe
O4 - Global Startup: ASUS
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Tout télécharger avec Free Download Manager - file://C:\Program Files\Free Download Manager\dlall.htm
O8 - Extra context menu item: Télécharger avec Free Download Manager - file://C:\Program Files\Free Download Manager\dllink.htm
O8 - Extra context menu item: Télécharger la sélection avec Free Download Manager - file://C:\Program Files\Free Download Manager\dlselected.htm
O8 - Extra context menu item: Télécharger la vidéo avec Free Download Manager - file://C:\Program Files\Free Download Manager\dlfvideo.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - C:\Program Files\Yahoo!\Common\Yinsthelper.dll
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O23 - Service: ANIWZCSd Service (ANIWZCSdService) - Wireless Service - C:\Program Files\ANI\ANIWZCS2 Service\ANIWZCSdS.exe
O23 - Service: Planificateur Avira AntiVir Personal - Free Antivirus (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: Avira AntiVir Personal - Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: ATK Keyboard Service (ATKKeyboardService) - ASUSTeK COMPUTER INC. - C:\WINDOWS\ATKKBService.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - C:\Installation Logiciels\Power Cinema\PowerCinema\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Installation Logiciels\Power Cinema\PowerCinema\Kernel\TV\CLSched.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Fichiers communs\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Google Update Service (gupdate1c98c60aa0fe60c) (gupdate1c98c60aa0fe60c) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Installation Logiciels\iTunes\iPod\bin\iPodService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: PnkBstrB - Unknown owner - C:\WINDOWS\system32\PnkBstrB.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\Cyberlink\Shared files\RichVideo.exe
Logfile of random's system information tool 1.06 (written by random/random)
Run by Xavier at 2009-04-15 21:52:46
Microsoft Windows XP Professionnel Service Pack 2
System drive C: has 8 GB (8%) free of 100 GB
Total RAM: 2047 MB (79% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 21:52:53, on 15/04/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\Program Files\ANI\ANIWZCS2 Service\ANIWZCSdS.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\WINDOWS\ATKKBService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Installation Logiciels\Power Cinema\PowerCinema\Kernel\TV\CLCapSvc.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\WINDOWS\system32\PnkBstrB.exe
C:\Program Files\Cyberlink\Shared files\RichVideo.exe
C:\WINDOWS\system32\svchost.exe
C:\Installation Logiciels\Power Cinema\PowerCinema\Kernel\TV\CLSched.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\explorer.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Documents and Settings\Xavier\Bureau\RSIT.exe
C:\Program Files\Trend Micro\HijackThis\Xavier.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avwsc.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://toolbar.ask.com/toolbarv/askRedirect?o=10611&gct=&gc=1&q=
R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://toolbar.ask.com/toolbarv/askRedirect?o=10611&gct=&gc=1&q=
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://toolbar.ask.com/toolbarv/askRedirect?o=10611&gct=&gc=1&q=%s
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: DefaultSearchHook Class - {C94E154B-1459-4A47-966B-4B843BEFC7DB} - C:\Program Files\AskSearch\bin\DefaultSearch.dll
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,System
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll
O2 - BHO: FDMIECookiesBHO Class - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files\Free Download Manager\iefdm2.dll
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [SoundMAX] "C:\Program Files\Analog Devices\SoundMAX\Smax4.exe" /tray
O4 - HKLM\..\Run: [JMB36X Configure] C:\WINDOWS\system32\JMRaidTool.exe boot
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe"
O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
O4 - HKLM\..\Run: [PCMService] "C:\Installation Logiciels\Power Cinema\PowerCinema\PCMService.exe"
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [ANIWZCS2Service] C:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [ISUSPM] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\ISUSPM.exe" -scheduler
O4 - HKCU\..\Run: [SuperCopier2.exe] C:\Installation Logiciels\Super Copieur\SuperCopier2\SuperCopier2.exe
O4 - HKCU\..\Run: [Free Download Manager] "C:\Program Files\Free Download Manager\fdm.exe" -autorun
O4 - HKCU\..\Run: [Software Informer] "C:\Program Files\Software Informer\softinfo.exe" -autorun
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: Yahoo! Widgets.lnk = C:\Program Files\Yahoo!\Widgets\YahooWidgets.exe
O4 - Global Startup: ASUS
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Tout télécharger avec Free Download Manager - file://C:\Program Files\Free Download Manager\dlall.htm
O8 - Extra context menu item: Télécharger avec Free Download Manager - file://C:\Program Files\Free Download Manager\dllink.htm
O8 - Extra context menu item: Télécharger la sélection avec Free Download Manager - file://C:\Program Files\Free Download Manager\dlselected.htm
O8 - Extra context menu item: Télécharger la vidéo avec Free Download Manager - file://C:\Program Files\Free Download Manager\dlfvideo.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - C:\Program Files\Yahoo!\Common\Yinsthelper.dll
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O23 - Service: ANIWZCSd Service (ANIWZCSdService) - Wireless Service - C:\Program Files\ANI\ANIWZCS2 Service\ANIWZCSdS.exe
O23 - Service: Planificateur Avira AntiVir Personal - Free Antivirus (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: Avira AntiVir Personal - Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: ATK Keyboard Service (ATKKeyboardService) - ASUSTeK COMPUTER INC. - C:\WINDOWS\ATKKBService.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - C:\Installation Logiciels\Power Cinema\PowerCinema\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Installation Logiciels\Power Cinema\PowerCinema\Kernel\TV\CLSched.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Fichiers communs\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Google Update Service (gupdate1c98c60aa0fe60c) (gupdate1c98c60aa0fe60c) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Installation Logiciels\iTunes\iPod\bin\iPodService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: PnkBstrB - Unknown owner - C:\WINDOWS\system32\PnkBstrB.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\Cyberlink\Shared files\RichVideo.exe
Et le rapport " info.txt " :
info.txt logfile of random's system information tool 1.06 2009-04-15 21:52:55
======Uninstall list======
-->MsiExec /X{85EBB283-65AF-4C53-9EBE-7C0A232762F7}
-->MsiExec.exe /X{69495273-FCDC-4A86-BCB7-49B504D3FB0E}
-->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
Adobe Anchor Service CS3-->MsiExec.exe /I{90176341-0A8B-4CCC-A78D-F862228A6B95}
Adobe Asset Services CS3-->MsiExec.exe /I{6FF5DD7A-FE28-4439-B8CF-1E9AF4EA0A61}
Adobe Bridge CS3-->MsiExec.exe /I{9C9824D9-9000-4373-A6A5-D0E5D4831394}
Adobe Bridge Start Meeting-->MsiExec.exe /I{08B32819-6EEF-4057-AEDA-5AB681A36A23}
Adobe Camera Raw 4.0-->MsiExec.exe /I{B3BF6689-A81D-40D8-9A86-4AC4ACD9FC1C}
Adobe CMaps-->MsiExec.exe /I{A2B242BD-FF8D-4840-9DAA-9170EABEC59C}
Adobe Color - Photoshop Specific-->MsiExec.exe /I{A2D81E70-2A98-4A08-A628-94388B063C5E}
Adobe Color Common Settings-->MsiExec.exe /I{DADD7B8A-BCB0-44F5-967A-ECB6B4F2ECD9}
Adobe Color EU Extra Settings-->MsiExec.exe /I{51846830-E7B2-4218-8968-B77F0FF475B8}
Adobe Color JA Extra Settings-->MsiExec.exe /I{DD7DB3C5-6FA3-4FA3-8A71-C2F2940EB029}
Adobe Color NA Recommended Settings-->MsiExec.exe /I{95655ED4-7CA5-46DF-907F-7144877A32E5}
Adobe Default Language CS3-->MsiExec.exe /I{B9B35331-B7E4-4E5C-BF4C-7BC87856124D}
Adobe Device Central CS3-->MsiExec.exe /I{8D2BA474-F406-4710-9AE4-D4F22D21F0DD}
Adobe ExtendScript Toolkit 2-->MsiExec.exe /I{C2D69781-F392-4118-A5A7-C7E9C38DBFC2}
Adobe Flash Player ActiveX-->C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
Adobe Flash Player Plugin-->C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
Adobe Fonts All-->MsiExec.exe /I{6ABE0BEE-D572-4FE8-B434-9E72A289431B}
Adobe Help Viewer CS3-->MsiExec.exe /I{04AF207D-9A77-465A-8B76-991F6AB66245}
Adobe Linguistics CS3-->MsiExec.exe /I{54793AA1-5001-42F4-ABB6-C364617C6078}
Adobe PDF Library Files-->MsiExec.exe /I{D2559B88-CC9D-4B48-81BB-F492BAA9C48C}
Adobe Photoshop CS3-->C:\Program Files\Fichiers communs\Adobe\Installers\719d6f144d0c086a0dfa7ff76bb9ac1\Setup.exe
Adobe Photoshop CS3-->MsiExec.exe /I{3D7E3EC9-46CF-4359-9289-39CE01DFB82F}
Adobe Reader 7.0-->MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A70000000000}
Adobe Setup-->MsiExec.exe /I{FF11004C-F42A-4A31-9BCF-7F5C8FDBE53C}
Adobe Shockwave Player-->C:\WINDOWS\system32\Adobe\SHOCKW~1\UNWISE.EXE C:\WINDOWS\system32\Adobe\SHOCKW~1\Install.log
Adobe Stock Photos CS3-->MsiExec.exe /I{29E5EA97-5F74-4A57-B8B2-D4F169117183}
Adobe Type Support-->MsiExec.exe /I{8E6808E2-613D-4FCD-81A2-6C8FA8E03312}
Adobe Update Manager CS3-->MsiExec.exe /I{E69AE897-9E0B-485C-8552-7841F48D42D8}
Adobe Version Cue CS3 Client-->MsiExec.exe /I{D0DFF92A-492E-4C40-B862-A74A173C25C5}
Adobe WinSoft Linguistics Plugin-->MsiExec.exe /I{184CE391-7E0E-4C63-9935-D7A10EDFD3C6}
Adobe XMP Panels CS3-->MsiExec.exe /I{802771A9-A856-4A41-ACF7-1450E523C923}
AGEIA PhysX v7.03.21-->MsiExec.exe /X{85EBB283-65AF-4C53-9EBE-7C0A232762F7}
AI Suite-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{310BC5E2-31AF-49BB-904D-E71EB93645DC}\Setup.exe" -l0x40c
Alien Skin Blow Up-->C:\INSTAL~1\ADOBEP~1.CS3\ADOBEP~1\Plug-Ins\ALIENS~1\BLOWUP~1\Unwise32.exe C:\INSTAL~1\ADOBEP~1.CS3\ADOBEP~1\Plug-Ins\ALIENS~1\BLOWUP~1\INSTALL.LOG
ANIO Service-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{7B5CE976-C7A9-4E38-A7F3-6C8EF025DD8E}\Setup.exe"
ANIWZCS2 Service-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{4C590030-7469-453E-8589-D15DA9D03F52}\Setup.exe"
Apple Mobile Device Support-->MsiExec.exe /I{976C2B2A-CE59-4AB3-83FB-BF895E28F2E6}
Apple Software Update-->MsiExec.exe /I{6956856F-B6B3-4BE0-BA0B-8F495BE32033}
Assistant de connexion Windows Live-->MsiExec.exe /I{AFA4E5FD-ED70-4D92-99D0-162FD56DC986}
ASUS Enhanced Display Driver-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{315ACD04-BCEB-478B-9B1D-5431D0E6CB11}\setup.exe" -l0x40c -removeonly
ASUS GameFace Library-->C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\11\INTEL3~1\IDriver.exe /M{92B07938-0550-4937-9447-E0ECC04AB99D}
ASUS GameLiveShow-->C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\11\INTEL3~1\IDriver.exe /M{04726714-8286-43B8-AFD6-2DF92EC49995}
ASUS MyCinema Series-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{D70666B2-7E6B-46F0-85E2-06C30C1269C0}\setup.exe" -l0x9
ASUS SmartDoctor-->C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\9\INTEL3~1\IDriver.exe /M{12E11FBB-7CA6-4A86-834D-5E6390D51009} /l1036
ASUS Utilities-->C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\9\INTEL3~1\IDriver.exe /M{43C67D92-F56E-4729-8673-9A2D5A6036F8} /l1036
ASUS VideoSecurity Online-->C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\9\INTEL3~1\IDriver.exe /M{7A529246-912F-4C40-A82A-E608DB702FD7}
AsusUpdate-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{587178E7-B1DF-494E-9838-FA4DD36E873C}\setup.exe" -l0x40c
Avira AntiVir Personal - Free Antivirus-->C:\Program Files\Avira\AntiVir PersonalEdition Classic\SETUP.EXE /REMOVE
Azureus-->C:\Installation Logiciels\Azureus\Uninstall.exe
Bonjour-->MsiExec.exe /I{07287123-B8AC-41CE-8346-3D777245C35B}
Call of Duty(R) - World at War(TM)-->C:\Program Files\InstallShield Installation Information\{D80A6A73-E58A-4673-AFF5-F12D7110661F}\setup.exe -runfromtemp -l0x040c
Call of Duty(R) 4 - Modern Warfare(TM)-->C:\Program Files\InstallShield Installation Information\{E48469CC-635E-4FD5-A122-1497C286D217}\setup.exe -runfromtemp -l0x040c
Cameron Screen Saver-->C:\WINDOWS\system32\uninstall.exe Cameron Screen Saver
CCleaner (remove only)-->"C:\Installation Logiciels\CCleaner\uninst.exe"
CDBurnerXP Pro 3-->MsiExec.exe /I{896D642C-7125-44F0-AC49-A23ABF82209C}
Clive Barker's Jericho-->"C:\Program Files\InstallShield Installation Information\{BE9A67F1-BDD3-4259-9F5C-2EFCE6B3A6C5}\setup.exe" -runfromtemp -l0x040c -removeonly
Code de la route-->"C:\Installation Logiciels\Code de la route\Code de la route\unins000.exe"
Conquist-->d:\Xavier\Jeux\Risk\Conquist\Data\Unist.exe
Correctif pour Windows XP (KB942288-v3)-->"C:\WINDOWS\$NtUninstallKB942288-v3$\spuninst\spuninst.exe"
CryEngine(R)2 Sandbox(TM)2-->MsiExec.exe /I{7E4B7FD9-4ECE-4298-A910-3160B7918059}
Crysis(R)-->MsiExec.exe /I{000E79B7-E725-4F01-870A-C12942B7F8E4}
Dev-C++ 5 beta 9 release (4.9.9.2)-->"C:\InstallationLogiciels\Dev-C\Dev-Cpp\uninstall.exe"
EasyHelper Contact Plus SMSBackup v1.2.3 - SyMBiAN-->C:\Program Files\Microsoft ActiveSync\EasyHelper Contact Plus SMSBackup v1.2.3 - SyMBiAN\Uninstall.exe EasyHelper Contact Plus SMSBackup v1.2.3 - SyMBiAN
EasyRecovery Professional-->C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{268723B7-A994-4286-9F85-B974D5CAFC7B} /l1036
FindyKill-->C:\FindyKill\Uninstal.exe
Free Download Manager 3.0-->"C:\Program Files\Free Download Manager\unins000.exe"
Free iPod Video Converter 1.34-->"C:\Installation Logiciels\Free iPod Video Converter\Free iPod Video Converter\unins000.exe"
GameFace Messenger-->C:\WINDOWS\iun6002.exe "C:\Program Files\GameFace Messenger\irunin.ini"
Google Chrome-->"C:\Program Files\Google\Chrome\Application\1.0.154.53\Installer\setup.exe" --uninstall --system-level
Google Update Helper-->MsiExec.exe /I{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
Google Earth-->MsiExec.exe /X{548EAC70-EE00-11DD-908C-005056806466}
Grand Theft Auto IV-->"C:\Program Files\InstallShield Installation Information\{579BA58C-F33D-4970-9953-B94B43768AC3}\setup.exe" -runfromtemp -l0x040c -removeonly
Guide routier France-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\10\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{DC828A42-3901-4178-81AF-712A55AC5A65}\SETUP.exe" -l0x40c -removeonly
High Definition Audio Driver Package - KB888111-->C:\WINDOWS\$NtUninstallKB888111WXPSP2$\spuninst\spuninst.exe
HijackThis 2.0.2-->"C:\Program Files\Trend Micro\HijackThis\HijackThis.exe" /uninstall
Hotfix for Windows XP (KB909394)-->"C:\WINDOWS\$NtUninstallKB909394$\spuninst\spuninst.exe"
Hotfix for Windows XP (KB926239)-->"C:\WINDOWS\$NtUninstallKB926239$\spuninst\spuninst.exe"
Hunting Unlimited 2008 1.0-->C:\Installation Jeux\Hunting Unlimited 2008\uninst.exe
iPod for Windows 2006-06-28-->C:\Program Files\Fichiers communs\InstallShield\Driver\8\Intel 32\IDriver.exe /M{BD57EA4D-026E-4F08-9B93-080E282B81FE} /l1036
iPod To Computer Transfer 3.5-->"C:\Program Files\iPod To Computer Transfer\unins000.exe"
iTunes-->MsiExec.exe /I{EF6C4600-306D-4F6A-A119-C2A877D25B4A}
Java(TM) 6 Update 6-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160060}
JRAID-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}\setup.exe" -l0x40c -removeonly
KC Softwares VideoInspector-->"C:\Program Files\KC Softwares\VideoInspector\unins000.exe"
MediaInfo 0.7.13-->C:\Program Files\MediaInfo\uninst.exe
Messenger Plus! Live-->"C:\Program Files\Messenger Plus! Live\Uninstall.exe"
Microsoft .NET Framework 1.1-->MsiExec.exe /X{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 2.0-->C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft .NET Framework 2.0\install.exe
Microsoft .NET Framework 3.0 French Language Pack-->MsiExec.exe /X{E3C080B0-23F5-49AF-89F8-8E8DBC89E659}
Microsoft .NET Framework 3.0-->C:\WINDOWS\Microsoft.NET\Framework\v3.0\Microsoft .NET Framework 3.0\setup.exe
Microsoft .NET Framework 3.0-->MsiExec.exe /X{15095BF3-A3D7-4DDF-B193-3A496881E003}
Microsoft Games for Windows - LIVE Redistributable-->MsiExec.exe /X{59E4543A-D49D-4489-B445-473D763C79AF}
Microsoft Office Access MUI (English) 2007-->MsiExec.exe /X{90120000-0015-0409-0000-0000000FF1CE}
Microsoft Office Access Setup Metadata MUI (English) 2007-->MsiExec.exe /X{90120000-0117-0409-0000-0000000FF1CE}
Microsoft Office Enterprise 2007-->"C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall ENTERPRISE /dll OSETUP.DLL
Microsoft Office Enterprise 2007-->MsiExec.exe /X{90120000-0030-0000-0000-0000000FF1CE}
Microsoft Office Excel MUI (English) 2007-->MsiExec.exe /X{90120000-0016-0409-0000-0000000FF1CE}
Microsoft Office Groove MUI (English) 2007-->MsiExec.exe /X{90120000-00BA-0409-0000-0000000FF1CE}
Microsoft Office Groove Setup Metadata MUI (English) 2007-->MsiExec.exe /X{90120000-0114-0409-0000-0000000FF1CE}
Microsoft Office InfoPath MUI (English) 2007-->MsiExec.exe /X{90120000-0044-0409-0000-0000000FF1CE}
Microsoft Office OneNote MUI (English) 2007-->MsiExec.exe /X{90120000-00A1-0409-0000-0000000FF1CE}
Microsoft Office Outlook MUI (English) 2007-->MsiExec.exe /X{90120000-001A-0409-0000-0000000FF1CE}
Microsoft Office PowerPoint MUI (English) 2007-->MsiExec.exe /X{90120000-0018-0409-0000-0000000FF1CE}
Microsoft Office Professional Edition 2003-->MsiExec.exe /I{90110409-6000-11D3-8CFE-0150048383C9}
Microsoft Office Proof (English) 2007-->MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
Microsoft Office Proof (French) 2007-->MsiExec.exe /X{90120000-001F-040C-0000-0000000FF1CE}
Microsoft Office Proof (Spanish) 2007-->MsiExec.exe /X{90120000-001F-0C0A-0000-0000000FF1CE}
Microsoft Office Proofing (English) 2007-->MsiExec.exe /X{90120000-002C-0409-0000-0000000FF1CE}
Microsoft Office Publisher MUI (English) 2007-->MsiExec.exe /X{90120000-0019-0409-0000-0000000FF1CE}
Microsoft Office Shared MUI (English) 2007-->MsiExec.exe /X{90120000-006E-0409-0000-0000000FF1CE}
Microsoft Office Shared Setup Metadata MUI (English) 2007-->MsiExec.exe /X{90120000-0115-0409-0000-0000000FF1CE}
Microsoft Office Word MUI (English) 2007-->MsiExec.exe /X{90120000-001B-0409-0000-0000000FF1CE}
Microsoft Rise Of Nations-->"C:\Installation Jeux\RON\UNINSTAL.EXE" /runtemp /addremove
Microsoft User-Mode Driver Framework Feature Pack 1.0-->"C:\WINDOWS\$NtUninstallWudf01000$\spuninst\spuninst.exe"
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
Mise à jour pour Windows XP (KB898461)-->"C:\WINDOWS\$NtUninstallKB898461$\spuninst\spuninst.exe"
MobileMe Control Panel-->MsiExec.exe /I{2604C0F9-BFD3-4BA0-9EB5-22537C648F03}
Module de prise en charge linguistique de Microsoft .NET Framework 2.0 - FRA-->C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft .NET Framework 2.0 Language Pack - FRA\install.exe
Module de prise en charge linguistique du français de Microsoft .NET Framework 3.0-->C:\WINDOWS\Microsoft.NET\Framework\v3.0\Microsoft .NET Framework 3.0 French Language Pack\setup.exe
Movie Collection 5.4.9.0-->"C:\Installation Logiciels\Movie Collection\Movie Collection\unins000.exe"
Mozilla Firefox (3.0.8)-->C:\Program Files\Mozilla Firefox\uninstall\helper.exe
MS Access 97 SP2-->C:\Program Files\Microsoft Office\setup\setup.exe
MSXML 6.0 Parser (KB925673)-->MsiExec.exe /I{FE9126DB-5F84-495A-BB46-3C724F1C2D08}
MSXML4 Parser-->MsiExec.exe /I{01501EBA-EC35-4F9F-8889-3BE346E5DA13}
Need for Speed™ Most Wanted-->C:\Installation Jeux\NFS Most Wanted\EAUninstall.exe
NVIDIA Drivers-->C:\WINDOWS\system32\nvudisp.exe UninstallGUI
OpenOffice.org 2.4-->MsiExec.exe /I{B6694BAA-7604-46AA-A41F-B5F1E6DADE7A}
Outil de mise à jour Google-->"C:\Program Files\Google\Google Updater\GoogleUpdater.exe" -uninstall
PC Probe II-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{F7338FA3-DAB5-49B2-900D-0AFB5760C166}\setup.exe" -l0x40c
PDF Settings-->MsiExec.exe /I{AC5B0C19-D851-42F4-BDA0-410ECF7F70A5}
Postal 2 Share The Pain-->C:\WINDOWS\unvise32.exe c:\installation jeux\postal2stp\uninstal.log
PowerCinema MakeDisc Module-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{FC4F90EC-B1DA-11D9-9D77-000129760D75}\setup.exe" -uninstall
PowerCinema-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{2637C347-9DAD-11D6-9EA2-00055D0CA761}\setup.exe" -uninstall
PunkBuster Services-->C:\WINDOWS\system32\pbsvc.exe -u
QuickTime-->MsiExec.exe /I{8DC42D05-680B-41B0-8878-6C14D24602DB}
REALTEK GbE & FE Ethernet PCI-E NIC Driver-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{C9BED750-1211-4480-B1A5-718A3BE15525}\Setup.exe" -l0x40c -removeonly
Rockstar Games Social Club-->"C:\Program Files\InstallShield Installation Information\{08B3869E-D282-424C-9AFC-870E04A4BA14}\setup.exe" -runfromtemp -l0x040c -removeonly
SimCity 3000 World Edition-->C:\WINDOWS\IsUn040c.exe -f"c:\installation jeux\sim city 3000\DeIsL1.isu" -c"c:\installation jeux\sim city 3000\_UnInstall.dll"
SimCity 4-->C:\Installation Jeux\Maxis\SimCity 4\EAUninstall.exe
Software Informer 1.0 BETA-->"C:\Program Files\Software Informer\unins000.exe"
SoundMAX-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\10\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{F0A37341-D692-11D4-A984-009027EC0A9C}\Setup.exe" -l0x40c -removeonly
SpeedFan (remove only)-->"C:\Program Files\SpeedFan\uninstall.exe"
Stellarium 0.10.2-->"C:\Program Files\Stellarium\unins000.exe"
SUPER © Version 2007.bld.21 (Jan 4, 2007)-->C:\PROGRA~1\ERIGHT~1\SUPER\Setup.exe /remove /q0
SUPERAntiSpyware Free Edition-->MsiExec.exe /X{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}
SuperCopier2-->"C:\Installation Logiciels\Super Copieur\SuperCopier2\SC2Uninst.exe"
TmNationsForever-->"C:\Installation Jeux\TmNationsForever\TmNationsForever\unins000.exe"
Tom Clancy's H.A.W.X-->"C:\Program Files\InstallShield Installation Information\{6E36A172-06FB-4BC8-B7FC-D30D219E6776}\setup.exe" -runfromtemp -l0x040c -removeonly
Tom Clancy's Rainbow Six Vegas 2-->"C:\Program Files\InstallShield Installation Information\{FD416706-875C-4B0B-A23A-9E740DAE029E}\setup.exe" -runfromtemp -l0x040c -removeonly
Tom Clancy's Rainbow Six Vegas-->C:\Program Files\InstallShield Installation Information\{5731C0A8-B266-451A-8D3F-8066AA21836F}\setup.exe -runfromtemp -l0x040c -removeonly
VideoLAN VLC media player 0.8.6-->C:\Installation Logiciels\VLC\uninstall.exe
VirtualDub 1.6.9 Fr-->C:\Installation Logiciels\VirtualDub\UnInstall_VirtualDub.exe
Vuze Toolbar-->"C:\Program Files\AskBarDis\unins000.exe"
Vuze-->C:\Installation Logiciels\Azureus\uninstall.exe
Warhammer® Mark of Chaos-->C:\Program Files\InstallShield Installation Information\{5F374D5D-DB43-4263-9C29-BAB2C93FEFE6}\setup.exe -runfromtemp -l0x040c -removeonly
Windows Communication Foundation-->MsiExec.exe /X{491DD792-AD81-429C-9EB4-86DD3D22E333}
Windows Imaging Component-->"C:\WINDOWS\$NtUninstallWIC$\spuninst\spuninst.exe"
Windows Installer 3.1 (KB893803)-->"C:\WINDOWS\$MSI31Uninstall_KB893803v2$\spuninst\spuninst.exe"
Windows Live installer-->MsiExec.exe /X{FD44E544-E7D0-4DBA-9FA0-8AE1A1300390}
Windows Live Messenger-->MsiExec.exe /X{BADF6744-3787-48F6-B8C9-4C4995401D65}
Windows Media Format 11 runtime-->"C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
Windows Media Format 11 runtime-->"C:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe"
Windows Presentation Foundation Language Pack (FRA)-->MsiExec.exe /X{6901DD22-527A-41EF-9059-E81FEDE9E494}
Windows Presentation Foundation-->MsiExec.exe /X{BAF78226-3200-4DB4-BE33-4D922A799840}
Windows Workflow Foundation FR Language Pack-->MsiExec.exe /I{B84C141C-9A13-44BE-9A69-301D7B11D836}
Windows Workflow Foundation-->MsiExec.exe /I{7D1B85BD-AA07-48B8-808D-67A4067FC6BD}
WinRAR archiver-->C:\Installation Logiciels\Winrar\uninstall.exe
WMTorrent-->C:\Program Files\Microsoft ActiveSync\WMTorrent\Uninstall.exe WMTorrent
Worms 4 Mayhem-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\10\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{93515E6A-EE53-4A4B-BA65-94A026A363E2}\setup.exe" -l0x9 -removeonly
XML Paper Specification Shared Components Language Pack 1.0-->"C:\WINDOWS\$NtUninstallXPSEPSCLP$\spuninst\spuninst.exe"
Yahoo! Install Manager-->C:\WINDOWS\system32\regsvr32 /u C:\PROGRA~1\Yahoo!\Common\YINSTH~1.DLL
Yahoo! Widgets-->C:\PROGRA~1\Yahoo!\Widgets\uninstall.exe
======Hosts File======
127.0.0.1 localhost
======Security center information======
AV: Avira AntiVir PersonalEdition Classic
======System event log======
Computer Name: LANGOUET
Event Code: 4201
Message: Le système a détecté que la carte réseau \DEVICE\TCPIP_{1C3C67ED-BAD2-4749-912C-359B869B29C1} était connectée au réseau,
et a lancé une opération normale sur la carte réseau.
Record Number: 23385
Source Name: Tcpip
Time Written: 20090321115106.000000+060
Event Type: Informations
User:
Computer Name: LANGOUET
Event Code: 4201
Message: Le système a détecté que la carte réseau \DEVICE\TCPIP_{1C3C67ED-BAD2-4749-912C-359B869B29C1} était connectée au réseau,
et a lancé une opération normale sur la carte réseau.
Record Number: 23384
Source Name: Tcpip
Time Written: 20090321115103.000000+060
Event Type: Informations
User:
Computer Name: LANGOUET
Event Code: 4201
Message: Le système a détecté que la carte réseau \DEVICE\TCPIP_{1C3C67ED-BAD2-4749-912C-359B869B29C1} était connectée au réseau,
et a lancé une opération normale sur la carte réseau.
Record Number: 23383
Source Name: Tcpip
Time Written: 20090321115048.000000+060
Event Type: Informations
User:
Computer Name: LANGOUET
Event Code: 1001
Message: Le réseau n'a attribué aucune adresse à votre ordinateur (par le serveur
DHCP) pour la carte réseau avec l'adresse réseau 0022B05D1B0D. Il s'est produit
l'erreur suivante :
L'opération a été annulée par l'utilisateur.
.
Votre ordinateur va continuer à essayer d'obtenir sa propre adresse auprès du
serveur d'adresse réseau (DHCP).
Record Number: 23382
Source Name: Dhcp
Time Written: 20090321114830.000000+060
Event Type: erreur
User:
Computer Name: LANGOUET
Event Code: 4201
Message: Le système a détecté que la carte réseau \DEVICE\TCPIP_{1C3C67ED-BAD2-4749-912C-359B869B29C1} était connectée au réseau,
et a lancé une opération normale sur la carte réseau.
Record Number: 23381
Source Name: Tcpip
Time Written: 20090321114830.000000+060
Event Type: Informations
User:
=====Application event log=====
Computer Name: LANGOUET
Event Code: 103
Message: msnmsgr (544) \\.\C:\Documents and Settings\Xavier\Local Settings\Application Data\Microsoft\Messenger\dimitri1989@hotmail.fr\SharingMetadata\Working\database_A6CC_7421_CC73_E9C7\dfsr.db: Le moteur de base de données a arrêté une instance (0).
Record Number: 5581
Source Name: ESENT
Time Written: 20090305212845.000000+060
Event Type: Informations
User:
Computer Name: LANGOUET
Event Code: 102
Message: msnmsgr (544) \\.\C:\Documents and Settings\Xavier\Local Settings\Application Data\Microsoft\Messenger\dimitri1989@hotmail.fr\SharingMetadata\Working\database_A6CC_7421_CC73_E9C7\dfsr.db: Le moteur de base de données a démarré une nouvelle instance (0).
Record Number: 5580
Source Name: ESENT
Time Written: 20090305212501.000000+060
Event Type: Informations
User:
Computer Name: LANGOUET
Event Code: 100
Message: msnmsgr (544) Le moteur de base de données 5.01.2600.2180 est démarré.
Record Number: 5579
Source Name: ESENT
Time Written: 20090305212501.000000+060
Event Type: Informations
User:
Computer Name: LANGOUET
Event Code: 101
Message: msnmsgr (544) Le moteur de base de données est arrêté.
Record Number: 5578
Source Name: ESENT
Time Written: 20090305212303.000000+060
Event Type: Informations
User:
Computer Name: LANGOUET
Event Code: 103
Message: msnmsgr (544) \\.\C:\Documents and Settings\Xavier\Local Settings\Application Data\Microsoft\Messenger\dimitri1989@hotmail.fr\SharingMetadata\Working\database_A6CC_7421_CC73_E9C7\dfsr.db: Le moteur de base de données a arrêté une instance (0).
Record Number: 5577
Source Name: ESENT
Time Written: 20090305212303.000000+060
Event Type: Informations
User:
======Environment variables======
"ComSpec"=%SystemRoot%\system32\cmd.exe
"Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\Fichiers communs\GIS\Tools;C:\Program Files\QuickTime\QTSystem\
"windir"=%SystemRoot%
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"PROCESSOR_ARCHITECTURE"=x86
"PROCESSOR_LEVEL"=6
"PROCESSOR_IDENTIFIER"=x86 Family 6 Model 15 Stepping 6, GenuineIntel
"PROCESSOR_REVISION"=0f06
"NUMBER_OF_PROCESSORS"=2
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"CLASSPATH"=.;C:\Program Files\Java\jre1.6.0_06\lib\ext\QTJava.zip
"QTJAVA"=C:\Program Files\Java\jre1.6.0_06\lib\ext\QTJava.zip
"RGSCLauncher"=C:\Installation Jeux\GTA IV\Rockstar Games Social Club
"RGSC"=C:\Installation Jeux\GTA IV\Rockstar Games Social Club\1_0_0_0
-----------------EOF-----------------
info.txt logfile of random's system information tool 1.06 2009-04-15 21:52:55
======Uninstall list======
-->MsiExec /X{85EBB283-65AF-4C53-9EBE-7C0A232762F7}
-->MsiExec.exe /X{69495273-FCDC-4A86-BCB7-49B504D3FB0E}
-->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
Adobe Anchor Service CS3-->MsiExec.exe /I{90176341-0A8B-4CCC-A78D-F862228A6B95}
Adobe Asset Services CS3-->MsiExec.exe /I{6FF5DD7A-FE28-4439-B8CF-1E9AF4EA0A61}
Adobe Bridge CS3-->MsiExec.exe /I{9C9824D9-9000-4373-A6A5-D0E5D4831394}
Adobe Bridge Start Meeting-->MsiExec.exe /I{08B32819-6EEF-4057-AEDA-5AB681A36A23}
Adobe Camera Raw 4.0-->MsiExec.exe /I{B3BF6689-A81D-40D8-9A86-4AC4ACD9FC1C}
Adobe CMaps-->MsiExec.exe /I{A2B242BD-FF8D-4840-9DAA-9170EABEC59C}
Adobe Color - Photoshop Specific-->MsiExec.exe /I{A2D81E70-2A98-4A08-A628-94388B063C5E}
Adobe Color Common Settings-->MsiExec.exe /I{DADD7B8A-BCB0-44F5-967A-ECB6B4F2ECD9}
Adobe Color EU Extra Settings-->MsiExec.exe /I{51846830-E7B2-4218-8968-B77F0FF475B8}
Adobe Color JA Extra Settings-->MsiExec.exe /I{DD7DB3C5-6FA3-4FA3-8A71-C2F2940EB029}
Adobe Color NA Recommended Settings-->MsiExec.exe /I{95655ED4-7CA5-46DF-907F-7144877A32E5}
Adobe Default Language CS3-->MsiExec.exe /I{B9B35331-B7E4-4E5C-BF4C-7BC87856124D}
Adobe Device Central CS3-->MsiExec.exe /I{8D2BA474-F406-4710-9AE4-D4F22D21F0DD}
Adobe ExtendScript Toolkit 2-->MsiExec.exe /I{C2D69781-F392-4118-A5A7-C7E9C38DBFC2}
Adobe Flash Player ActiveX-->C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
Adobe Flash Player Plugin-->C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
Adobe Fonts All-->MsiExec.exe /I{6ABE0BEE-D572-4FE8-B434-9E72A289431B}
Adobe Help Viewer CS3-->MsiExec.exe /I{04AF207D-9A77-465A-8B76-991F6AB66245}
Adobe Linguistics CS3-->MsiExec.exe /I{54793AA1-5001-42F4-ABB6-C364617C6078}
Adobe PDF Library Files-->MsiExec.exe /I{D2559B88-CC9D-4B48-81BB-F492BAA9C48C}
Adobe Photoshop CS3-->C:\Program Files\Fichiers communs\Adobe\Installers\719d6f144d0c086a0dfa7ff76bb9ac1\Setup.exe
Adobe Photoshop CS3-->MsiExec.exe /I{3D7E3EC9-46CF-4359-9289-39CE01DFB82F}
Adobe Reader 7.0-->MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A70000000000}
Adobe Setup-->MsiExec.exe /I{FF11004C-F42A-4A31-9BCF-7F5C8FDBE53C}
Adobe Shockwave Player-->C:\WINDOWS\system32\Adobe\SHOCKW~1\UNWISE.EXE C:\WINDOWS\system32\Adobe\SHOCKW~1\Install.log
Adobe Stock Photos CS3-->MsiExec.exe /I{29E5EA97-5F74-4A57-B8B2-D4F169117183}
Adobe Type Support-->MsiExec.exe /I{8E6808E2-613D-4FCD-81A2-6C8FA8E03312}
Adobe Update Manager CS3-->MsiExec.exe /I{E69AE897-9E0B-485C-8552-7841F48D42D8}
Adobe Version Cue CS3 Client-->MsiExec.exe /I{D0DFF92A-492E-4C40-B862-A74A173C25C5}
Adobe WinSoft Linguistics Plugin-->MsiExec.exe /I{184CE391-7E0E-4C63-9935-D7A10EDFD3C6}
Adobe XMP Panels CS3-->MsiExec.exe /I{802771A9-A856-4A41-ACF7-1450E523C923}
AGEIA PhysX v7.03.21-->MsiExec.exe /X{85EBB283-65AF-4C53-9EBE-7C0A232762F7}
AI Suite-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{310BC5E2-31AF-49BB-904D-E71EB93645DC}\Setup.exe" -l0x40c
Alien Skin Blow Up-->C:\INSTAL~1\ADOBEP~1.CS3\ADOBEP~1\Plug-Ins\ALIENS~1\BLOWUP~1\Unwise32.exe C:\INSTAL~1\ADOBEP~1.CS3\ADOBEP~1\Plug-Ins\ALIENS~1\BLOWUP~1\INSTALL.LOG
ANIO Service-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{7B5CE976-C7A9-4E38-A7F3-6C8EF025DD8E}\Setup.exe"
ANIWZCS2 Service-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{4C590030-7469-453E-8589-D15DA9D03F52}\Setup.exe"
Apple Mobile Device Support-->MsiExec.exe /I{976C2B2A-CE59-4AB3-83FB-BF895E28F2E6}
Apple Software Update-->MsiExec.exe /I{6956856F-B6B3-4BE0-BA0B-8F495BE32033}
Assistant de connexion Windows Live-->MsiExec.exe /I{AFA4E5FD-ED70-4D92-99D0-162FD56DC986}
ASUS Enhanced Display Driver-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{315ACD04-BCEB-478B-9B1D-5431D0E6CB11}\setup.exe" -l0x40c -removeonly
ASUS GameFace Library-->C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\11\INTEL3~1\IDriver.exe /M{92B07938-0550-4937-9447-E0ECC04AB99D}
ASUS GameLiveShow-->C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\11\INTEL3~1\IDriver.exe /M{04726714-8286-43B8-AFD6-2DF92EC49995}
ASUS MyCinema Series-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{D70666B2-7E6B-46F0-85E2-06C30C1269C0}\setup.exe" -l0x9
ASUS SmartDoctor-->C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\9\INTEL3~1\IDriver.exe /M{12E11FBB-7CA6-4A86-834D-5E6390D51009} /l1036
ASUS Utilities-->C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\9\INTEL3~1\IDriver.exe /M{43C67D92-F56E-4729-8673-9A2D5A6036F8} /l1036
ASUS VideoSecurity Online-->C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\9\INTEL3~1\IDriver.exe /M{7A529246-912F-4C40-A82A-E608DB702FD7}
AsusUpdate-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{587178E7-B1DF-494E-9838-FA4DD36E873C}\setup.exe" -l0x40c
Avira AntiVir Personal - Free Antivirus-->C:\Program Files\Avira\AntiVir PersonalEdition Classic\SETUP.EXE /REMOVE
Azureus-->C:\Installation Logiciels\Azureus\Uninstall.exe
Bonjour-->MsiExec.exe /I{07287123-B8AC-41CE-8346-3D777245C35B}
Call of Duty(R) - World at War(TM)-->C:\Program Files\InstallShield Installation Information\{D80A6A73-E58A-4673-AFF5-F12D7110661F}\setup.exe -runfromtemp -l0x040c
Call of Duty(R) 4 - Modern Warfare(TM)-->C:\Program Files\InstallShield Installation Information\{E48469CC-635E-4FD5-A122-1497C286D217}\setup.exe -runfromtemp -l0x040c
Cameron Screen Saver-->C:\WINDOWS\system32\uninstall.exe Cameron Screen Saver
CCleaner (remove only)-->"C:\Installation Logiciels\CCleaner\uninst.exe"
CDBurnerXP Pro 3-->MsiExec.exe /I{896D642C-7125-44F0-AC49-A23ABF82209C}
Clive Barker's Jericho-->"C:\Program Files\InstallShield Installation Information\{BE9A67F1-BDD3-4259-9F5C-2EFCE6B3A6C5}\setup.exe" -runfromtemp -l0x040c -removeonly
Code de la route-->"C:\Installation Logiciels\Code de la route\Code de la route\unins000.exe"
Conquist-->d:\Xavier\Jeux\Risk\Conquist\Data\Unist.exe
Correctif pour Windows XP (KB942288-v3)-->"C:\WINDOWS\$NtUninstallKB942288-v3$\spuninst\spuninst.exe"
CryEngine(R)2 Sandbox(TM)2-->MsiExec.exe /I{7E4B7FD9-4ECE-4298-A910-3160B7918059}
Crysis(R)-->MsiExec.exe /I{000E79B7-E725-4F01-870A-C12942B7F8E4}
Dev-C++ 5 beta 9 release (4.9.9.2)-->"C:\InstallationLogiciels\Dev-C\Dev-Cpp\uninstall.exe"
EasyHelper Contact Plus SMSBackup v1.2.3 - SyMBiAN-->C:\Program Files\Microsoft ActiveSync\EasyHelper Contact Plus SMSBackup v1.2.3 - SyMBiAN\Uninstall.exe EasyHelper Contact Plus SMSBackup v1.2.3 - SyMBiAN
EasyRecovery Professional-->C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{268723B7-A994-4286-9F85-B974D5CAFC7B} /l1036
FindyKill-->C:\FindyKill\Uninstal.exe
Free Download Manager 3.0-->"C:\Program Files\Free Download Manager\unins000.exe"
Free iPod Video Converter 1.34-->"C:\Installation Logiciels\Free iPod Video Converter\Free iPod Video Converter\unins000.exe"
GameFace Messenger-->C:\WINDOWS\iun6002.exe "C:\Program Files\GameFace Messenger\irunin.ini"
Google Chrome-->"C:\Program Files\Google\Chrome\Application\1.0.154.53\Installer\setup.exe" --uninstall --system-level
Google Update Helper-->MsiExec.exe /I{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
Google Earth-->MsiExec.exe /X{548EAC70-EE00-11DD-908C-005056806466}
Grand Theft Auto IV-->"C:\Program Files\InstallShield Installation Information\{579BA58C-F33D-4970-9953-B94B43768AC3}\setup.exe" -runfromtemp -l0x040c -removeonly
Guide routier France-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\10\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{DC828A42-3901-4178-81AF-712A55AC5A65}\SETUP.exe" -l0x40c -removeonly
High Definition Audio Driver Package - KB888111-->C:\WINDOWS\$NtUninstallKB888111WXPSP2$\spuninst\spuninst.exe
HijackThis 2.0.2-->"C:\Program Files\Trend Micro\HijackThis\HijackThis.exe" /uninstall
Hotfix for Windows XP (KB909394)-->"C:\WINDOWS\$NtUninstallKB909394$\spuninst\spuninst.exe"
Hotfix for Windows XP (KB926239)-->"C:\WINDOWS\$NtUninstallKB926239$\spuninst\spuninst.exe"
Hunting Unlimited 2008 1.0-->C:\Installation Jeux\Hunting Unlimited 2008\uninst.exe
iPod for Windows 2006-06-28-->C:\Program Files\Fichiers communs\InstallShield\Driver\8\Intel 32\IDriver.exe /M{BD57EA4D-026E-4F08-9B93-080E282B81FE} /l1036
iPod To Computer Transfer 3.5-->"C:\Program Files\iPod To Computer Transfer\unins000.exe"
iTunes-->MsiExec.exe /I{EF6C4600-306D-4F6A-A119-C2A877D25B4A}
Java(TM) 6 Update 6-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160060}
JRAID-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}\setup.exe" -l0x40c -removeonly
KC Softwares VideoInspector-->"C:\Program Files\KC Softwares\VideoInspector\unins000.exe"
MediaInfo 0.7.13-->C:\Program Files\MediaInfo\uninst.exe
Messenger Plus! Live-->"C:\Program Files\Messenger Plus! Live\Uninstall.exe"
Microsoft .NET Framework 1.1-->MsiExec.exe /X{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 2.0-->C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft .NET Framework 2.0\install.exe
Microsoft .NET Framework 3.0 French Language Pack-->MsiExec.exe /X{E3C080B0-23F5-49AF-89F8-8E8DBC89E659}
Microsoft .NET Framework 3.0-->C:\WINDOWS\Microsoft.NET\Framework\v3.0\Microsoft .NET Framework 3.0\setup.exe
Microsoft .NET Framework 3.0-->MsiExec.exe /X{15095BF3-A3D7-4DDF-B193-3A496881E003}
Microsoft Games for Windows - LIVE Redistributable-->MsiExec.exe /X{59E4543A-D49D-4489-B445-473D763C79AF}
Microsoft Office Access MUI (English) 2007-->MsiExec.exe /X{90120000-0015-0409-0000-0000000FF1CE}
Microsoft Office Access Setup Metadata MUI (English) 2007-->MsiExec.exe /X{90120000-0117-0409-0000-0000000FF1CE}
Microsoft Office Enterprise 2007-->"C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall ENTERPRISE /dll OSETUP.DLL
Microsoft Office Enterprise 2007-->MsiExec.exe /X{90120000-0030-0000-0000-0000000FF1CE}
Microsoft Office Excel MUI (English) 2007-->MsiExec.exe /X{90120000-0016-0409-0000-0000000FF1CE}
Microsoft Office Groove MUI (English) 2007-->MsiExec.exe /X{90120000-00BA-0409-0000-0000000FF1CE}
Microsoft Office Groove Setup Metadata MUI (English) 2007-->MsiExec.exe /X{90120000-0114-0409-0000-0000000FF1CE}
Microsoft Office InfoPath MUI (English) 2007-->MsiExec.exe /X{90120000-0044-0409-0000-0000000FF1CE}
Microsoft Office OneNote MUI (English) 2007-->MsiExec.exe /X{90120000-00A1-0409-0000-0000000FF1CE}
Microsoft Office Outlook MUI (English) 2007-->MsiExec.exe /X{90120000-001A-0409-0000-0000000FF1CE}
Microsoft Office PowerPoint MUI (English) 2007-->MsiExec.exe /X{90120000-0018-0409-0000-0000000FF1CE}
Microsoft Office Professional Edition 2003-->MsiExec.exe /I{90110409-6000-11D3-8CFE-0150048383C9}
Microsoft Office Proof (English) 2007-->MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
Microsoft Office Proof (French) 2007-->MsiExec.exe /X{90120000-001F-040C-0000-0000000FF1CE}
Microsoft Office Proof (Spanish) 2007-->MsiExec.exe /X{90120000-001F-0C0A-0000-0000000FF1CE}
Microsoft Office Proofing (English) 2007-->MsiExec.exe /X{90120000-002C-0409-0000-0000000FF1CE}
Microsoft Office Publisher MUI (English) 2007-->MsiExec.exe /X{90120000-0019-0409-0000-0000000FF1CE}
Microsoft Office Shared MUI (English) 2007-->MsiExec.exe /X{90120000-006E-0409-0000-0000000FF1CE}
Microsoft Office Shared Setup Metadata MUI (English) 2007-->MsiExec.exe /X{90120000-0115-0409-0000-0000000FF1CE}
Microsoft Office Word MUI (English) 2007-->MsiExec.exe /X{90120000-001B-0409-0000-0000000FF1CE}
Microsoft Rise Of Nations-->"C:\Installation Jeux\RON\UNINSTAL.EXE" /runtemp /addremove
Microsoft User-Mode Driver Framework Feature Pack 1.0-->"C:\WINDOWS\$NtUninstallWudf01000$\spuninst\spuninst.exe"
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
Mise à jour pour Windows XP (KB898461)-->"C:\WINDOWS\$NtUninstallKB898461$\spuninst\spuninst.exe"
MobileMe Control Panel-->MsiExec.exe /I{2604C0F9-BFD3-4BA0-9EB5-22537C648F03}
Module de prise en charge linguistique de Microsoft .NET Framework 2.0 - FRA-->C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft .NET Framework 2.0 Language Pack - FRA\install.exe
Module de prise en charge linguistique du français de Microsoft .NET Framework 3.0-->C:\WINDOWS\Microsoft.NET\Framework\v3.0\Microsoft .NET Framework 3.0 French Language Pack\setup.exe
Movie Collection 5.4.9.0-->"C:\Installation Logiciels\Movie Collection\Movie Collection\unins000.exe"
Mozilla Firefox (3.0.8)-->C:\Program Files\Mozilla Firefox\uninstall\helper.exe
MS Access 97 SP2-->C:\Program Files\Microsoft Office\setup\setup.exe
MSXML 6.0 Parser (KB925673)-->MsiExec.exe /I{FE9126DB-5F84-495A-BB46-3C724F1C2D08}
MSXML4 Parser-->MsiExec.exe /I{01501EBA-EC35-4F9F-8889-3BE346E5DA13}
Need for Speed™ Most Wanted-->C:\Installation Jeux\NFS Most Wanted\EAUninstall.exe
NVIDIA Drivers-->C:\WINDOWS\system32\nvudisp.exe UninstallGUI
OpenOffice.org 2.4-->MsiExec.exe /I{B6694BAA-7604-46AA-A41F-B5F1E6DADE7A}
Outil de mise à jour Google-->"C:\Program Files\Google\Google Updater\GoogleUpdater.exe" -uninstall
PC Probe II-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{F7338FA3-DAB5-49B2-900D-0AFB5760C166}\setup.exe" -l0x40c
PDF Settings-->MsiExec.exe /I{AC5B0C19-D851-42F4-BDA0-410ECF7F70A5}
Postal 2 Share The Pain-->C:\WINDOWS\unvise32.exe c:\installation jeux\postal2stp\uninstal.log
PowerCinema MakeDisc Module-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{FC4F90EC-B1DA-11D9-9D77-000129760D75}\setup.exe" -uninstall
PowerCinema-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{2637C347-9DAD-11D6-9EA2-00055D0CA761}\setup.exe" -uninstall
PunkBuster Services-->C:\WINDOWS\system32\pbsvc.exe -u
QuickTime-->MsiExec.exe /I{8DC42D05-680B-41B0-8878-6C14D24602DB}
REALTEK GbE & FE Ethernet PCI-E NIC Driver-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{C9BED750-1211-4480-B1A5-718A3BE15525}\Setup.exe" -l0x40c -removeonly
Rockstar Games Social Club-->"C:\Program Files\InstallShield Installation Information\{08B3869E-D282-424C-9AFC-870E04A4BA14}\setup.exe" -runfromtemp -l0x040c -removeonly
SimCity 3000 World Edition-->C:\WINDOWS\IsUn040c.exe -f"c:\installation jeux\sim city 3000\DeIsL1.isu" -c"c:\installation jeux\sim city 3000\_UnInstall.dll"
SimCity 4-->C:\Installation Jeux\Maxis\SimCity 4\EAUninstall.exe
Software Informer 1.0 BETA-->"C:\Program Files\Software Informer\unins000.exe"
SoundMAX-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\10\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{F0A37341-D692-11D4-A984-009027EC0A9C}\Setup.exe" -l0x40c -removeonly
SpeedFan (remove only)-->"C:\Program Files\SpeedFan\uninstall.exe"
Stellarium 0.10.2-->"C:\Program Files\Stellarium\unins000.exe"
SUPER © Version 2007.bld.21 (Jan 4, 2007)-->C:\PROGRA~1\ERIGHT~1\SUPER\Setup.exe /remove /q0
SUPERAntiSpyware Free Edition-->MsiExec.exe /X{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}
SuperCopier2-->"C:\Installation Logiciels\Super Copieur\SuperCopier2\SC2Uninst.exe"
TmNationsForever-->"C:\Installation Jeux\TmNationsForever\TmNationsForever\unins000.exe"
Tom Clancy's H.A.W.X-->"C:\Program Files\InstallShield Installation Information\{6E36A172-06FB-4BC8-B7FC-D30D219E6776}\setup.exe" -runfromtemp -l0x040c -removeonly
Tom Clancy's Rainbow Six Vegas 2-->"C:\Program Files\InstallShield Installation Information\{FD416706-875C-4B0B-A23A-9E740DAE029E}\setup.exe" -runfromtemp -l0x040c -removeonly
Tom Clancy's Rainbow Six Vegas-->C:\Program Files\InstallShield Installation Information\{5731C0A8-B266-451A-8D3F-8066AA21836F}\setup.exe -runfromtemp -l0x040c -removeonly
VideoLAN VLC media player 0.8.6-->C:\Installation Logiciels\VLC\uninstall.exe
VirtualDub 1.6.9 Fr-->C:\Installation Logiciels\VirtualDub\UnInstall_VirtualDub.exe
Vuze Toolbar-->"C:\Program Files\AskBarDis\unins000.exe"
Vuze-->C:\Installation Logiciels\Azureus\uninstall.exe
Warhammer® Mark of Chaos-->C:\Program Files\InstallShield Installation Information\{5F374D5D-DB43-4263-9C29-BAB2C93FEFE6}\setup.exe -runfromtemp -l0x040c -removeonly
Windows Communication Foundation-->MsiExec.exe /X{491DD792-AD81-429C-9EB4-86DD3D22E333}
Windows Imaging Component-->"C:\WINDOWS\$NtUninstallWIC$\spuninst\spuninst.exe"
Windows Installer 3.1 (KB893803)-->"C:\WINDOWS\$MSI31Uninstall_KB893803v2$\spuninst\spuninst.exe"
Windows Live installer-->MsiExec.exe /X{FD44E544-E7D0-4DBA-9FA0-8AE1A1300390}
Windows Live Messenger-->MsiExec.exe /X{BADF6744-3787-48F6-B8C9-4C4995401D65}
Windows Media Format 11 runtime-->"C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
Windows Media Format 11 runtime-->"C:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe"
Windows Presentation Foundation Language Pack (FRA)-->MsiExec.exe /X{6901DD22-527A-41EF-9059-E81FEDE9E494}
Windows Presentation Foundation-->MsiExec.exe /X{BAF78226-3200-4DB4-BE33-4D922A799840}
Windows Workflow Foundation FR Language Pack-->MsiExec.exe /I{B84C141C-9A13-44BE-9A69-301D7B11D836}
Windows Workflow Foundation-->MsiExec.exe /I{7D1B85BD-AA07-48B8-808D-67A4067FC6BD}
WinRAR archiver-->C:\Installation Logiciels\Winrar\uninstall.exe
WMTorrent-->C:\Program Files\Microsoft ActiveSync\WMTorrent\Uninstall.exe WMTorrent
Worms 4 Mayhem-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\10\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{93515E6A-EE53-4A4B-BA65-94A026A363E2}\setup.exe" -l0x9 -removeonly
XML Paper Specification Shared Components Language Pack 1.0-->"C:\WINDOWS\$NtUninstallXPSEPSCLP$\spuninst\spuninst.exe"
Yahoo! Install Manager-->C:\WINDOWS\system32\regsvr32 /u C:\PROGRA~1\Yahoo!\Common\YINSTH~1.DLL
Yahoo! Widgets-->C:\PROGRA~1\Yahoo!\Widgets\uninstall.exe
======Hosts File======
127.0.0.1 localhost
======Security center information======
AV: Avira AntiVir PersonalEdition Classic
======System event log======
Computer Name: LANGOUET
Event Code: 4201
Message: Le système a détecté que la carte réseau \DEVICE\TCPIP_{1C3C67ED-BAD2-4749-912C-359B869B29C1} était connectée au réseau,
et a lancé une opération normale sur la carte réseau.
Record Number: 23385
Source Name: Tcpip
Time Written: 20090321115106.000000+060
Event Type: Informations
User:
Computer Name: LANGOUET
Event Code: 4201
Message: Le système a détecté que la carte réseau \DEVICE\TCPIP_{1C3C67ED-BAD2-4749-912C-359B869B29C1} était connectée au réseau,
et a lancé une opération normale sur la carte réseau.
Record Number: 23384
Source Name: Tcpip
Time Written: 20090321115103.000000+060
Event Type: Informations
User:
Computer Name: LANGOUET
Event Code: 4201
Message: Le système a détecté que la carte réseau \DEVICE\TCPIP_{1C3C67ED-BAD2-4749-912C-359B869B29C1} était connectée au réseau,
et a lancé une opération normale sur la carte réseau.
Record Number: 23383
Source Name: Tcpip
Time Written: 20090321115048.000000+060
Event Type: Informations
User:
Computer Name: LANGOUET
Event Code: 1001
Message: Le réseau n'a attribué aucune adresse à votre ordinateur (par le serveur
DHCP) pour la carte réseau avec l'adresse réseau 0022B05D1B0D. Il s'est produit
l'erreur suivante :
L'opération a été annulée par l'utilisateur.
.
Votre ordinateur va continuer à essayer d'obtenir sa propre adresse auprès du
serveur d'adresse réseau (DHCP).
Record Number: 23382
Source Name: Dhcp
Time Written: 20090321114830.000000+060
Event Type: erreur
User:
Computer Name: LANGOUET
Event Code: 4201
Message: Le système a détecté que la carte réseau \DEVICE\TCPIP_{1C3C67ED-BAD2-4749-912C-359B869B29C1} était connectée au réseau,
et a lancé une opération normale sur la carte réseau.
Record Number: 23381
Source Name: Tcpip
Time Written: 20090321114830.000000+060
Event Type: Informations
User:
=====Application event log=====
Computer Name: LANGOUET
Event Code: 103
Message: msnmsgr (544) \\.\C:\Documents and Settings\Xavier\Local Settings\Application Data\Microsoft\Messenger\dimitri1989@hotmail.fr\SharingMetadata\Working\database_A6CC_7421_CC73_E9C7\dfsr.db: Le moteur de base de données a arrêté une instance (0).
Record Number: 5581
Source Name: ESENT
Time Written: 20090305212845.000000+060
Event Type: Informations
User:
Computer Name: LANGOUET
Event Code: 102
Message: msnmsgr (544) \\.\C:\Documents and Settings\Xavier\Local Settings\Application Data\Microsoft\Messenger\dimitri1989@hotmail.fr\SharingMetadata\Working\database_A6CC_7421_CC73_E9C7\dfsr.db: Le moteur de base de données a démarré une nouvelle instance (0).
Record Number: 5580
Source Name: ESENT
Time Written: 20090305212501.000000+060
Event Type: Informations
User:
Computer Name: LANGOUET
Event Code: 100
Message: msnmsgr (544) Le moteur de base de données 5.01.2600.2180 est démarré.
Record Number: 5579
Source Name: ESENT
Time Written: 20090305212501.000000+060
Event Type: Informations
User:
Computer Name: LANGOUET
Event Code: 101
Message: msnmsgr (544) Le moteur de base de données est arrêté.
Record Number: 5578
Source Name: ESENT
Time Written: 20090305212303.000000+060
Event Type: Informations
User:
Computer Name: LANGOUET
Event Code: 103
Message: msnmsgr (544) \\.\C:\Documents and Settings\Xavier\Local Settings\Application Data\Microsoft\Messenger\dimitri1989@hotmail.fr\SharingMetadata\Working\database_A6CC_7421_CC73_E9C7\dfsr.db: Le moteur de base de données a arrêté une instance (0).
Record Number: 5577
Source Name: ESENT
Time Written: 20090305212303.000000+060
Event Type: Informations
User:
======Environment variables======
"ComSpec"=%SystemRoot%\system32\cmd.exe
"Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\Fichiers communs\GIS\Tools;C:\Program Files\QuickTime\QTSystem\
"windir"=%SystemRoot%
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"PROCESSOR_ARCHITECTURE"=x86
"PROCESSOR_LEVEL"=6
"PROCESSOR_IDENTIFIER"=x86 Family 6 Model 15 Stepping 6, GenuineIntel
"PROCESSOR_REVISION"=0f06
"NUMBER_OF_PROCESSORS"=2
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"CLASSPATH"=.;C:\Program Files\Java\jre1.6.0_06\lib\ext\QTJava.zip
"QTJAVA"=C:\Program Files\Java\jre1.6.0_06\lib\ext\QTJava.zip
"RGSCLauncher"=C:\Installation Jeux\GTA IV\Rockstar Games Social Club
"RGSC"=C:\Installation Jeux\GTA IV\Rockstar Games Social Club\1_0_0_0
-----------------EOF-----------------
1/######## | XP _ Instal & recherche | #######
Telecharge et install UsbFix (de C_XX & Chiquitine29)
Branche tes sources de données externes à ton PC, (clé USB, disque dur externe, etc...) suceptible d avoir été infectés sans les ouvrir
# Double clic sur le raccourci UsbFix présent sur ton bureau .
# Choisi l option 1 ( Recherche )
# Laisse travailler l outil.
# Ensuite post le rapport UsbFix.txt qui apparaitra.
# Note : Le rapport UsbFix.txt est sauvegardé a la racine du disque. ( C:\UsbFix.txt )
( CTRL+A Pour tout selectionner , CTRL+C pour copier et CTRL+V pour coller )
# Note : "Process.exe", une composante de l'outil, est détecté par certains antivirus (AntiVir, Dr.Web, Kaspersky Anti-Virus) comme étant un RiskTool.
Il ne s'agit pas d'un virus, mais d'un utilitaire destiné à mettre fin à des processus.
Mis entre de mauvaises mains, cet utilitaire pourrait arrêter des logiciels de sécurité (Antivirus, Firewall...) d'où l'alerte émise par ces antivirus.
2/
######## | Suppression | ########
Branche tes sources de données externes à ton PC, (clé USB, disque dur externe, etc...) suceptible d avoir été infectés sans les ouvrir
# Double clic sur le raccourci UsbFix présent sur ton bureau
# choisi l option 2 ( Suppression )
# Ton bureau disparaitra et le pc redémarrera .
# Au redémarrage , UsbFix scannera ton pc , laisse travailler l outil.
# Ensuite post le rapport UsbFix.txt qui apparaitra avec le bureau .
# Note : Le rapport UsbFix.txt est sauvegardé a la racine du disque.( C:\UsbFix.txt )
( CTRL+A Pour tout selectionner , CTRL+C pour copier et CTRL+V pour coller )
######### | Désinstallation | #######
# Double clic sur le raccourci UsbFix présent sur ton bureau
# Choisi l option 3 ( Désinstaller ) ....
Ensuite relances toolbar sd option 1 ,tu t'es reinstallé l'ask toolbar
2009-04-14 18:48:04 ----D---- C:\Program Files\AskBardis
Tu as l'heure du telechargement,tu l'as attrappé comment,sur quel site ?
Telecharge et install UsbFix (de C_XX & Chiquitine29)
Branche tes sources de données externes à ton PC, (clé USB, disque dur externe, etc...) suceptible d avoir été infectés sans les ouvrir
# Double clic sur le raccourci UsbFix présent sur ton bureau .
# Choisi l option 1 ( Recherche )
# Laisse travailler l outil.
# Ensuite post le rapport UsbFix.txt qui apparaitra.
# Note : Le rapport UsbFix.txt est sauvegardé a la racine du disque. ( C:\UsbFix.txt )
( CTRL+A Pour tout selectionner , CTRL+C pour copier et CTRL+V pour coller )
# Note : "Process.exe", une composante de l'outil, est détecté par certains antivirus (AntiVir, Dr.Web, Kaspersky Anti-Virus) comme étant un RiskTool.
Il ne s'agit pas d'un virus, mais d'un utilitaire destiné à mettre fin à des processus.
Mis entre de mauvaises mains, cet utilitaire pourrait arrêter des logiciels de sécurité (Antivirus, Firewall...) d'où l'alerte émise par ces antivirus.
2/
######## | Suppression | ########
Branche tes sources de données externes à ton PC, (clé USB, disque dur externe, etc...) suceptible d avoir été infectés sans les ouvrir
# Double clic sur le raccourci UsbFix présent sur ton bureau
# choisi l option 2 ( Suppression )
# Ton bureau disparaitra et le pc redémarrera .
# Au redémarrage , UsbFix scannera ton pc , laisse travailler l outil.
# Ensuite post le rapport UsbFix.txt qui apparaitra avec le bureau .
# Note : Le rapport UsbFix.txt est sauvegardé a la racine du disque.( C:\UsbFix.txt )
( CTRL+A Pour tout selectionner , CTRL+C pour copier et CTRL+V pour coller )
######### | Désinstallation | #######
# Double clic sur le raccourci UsbFix présent sur ton bureau
# Choisi l option 3 ( Désinstaller ) ....
Ensuite relances toolbar sd option 1 ,tu t'es reinstallé l'ask toolbar
2009-04-14 18:48:04 ----D---- C:\Program Files\AskBardis
Tu as l'heure du telechargement,tu l'as attrappé comment,sur quel site ?
Je ne suis allé que sur 4 sites aujourd'hui :
- Facebook,
- Comment ça marche.com,
- Ogame,
- Un site de téléchargement de torrent ( je ne sais pas si je peux mettre le nom du site).
Comment éviter de réinstaller l'ask toolbar ?
- Facebook,
- Comment ça marche.com,
- Ogame,
- Un site de téléchargement de torrent ( je ne sais pas si je peux mettre le nom du site).
Comment éviter de réinstaller l'ask toolbar ?
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
Voila le rapport option 1 :
############################## [ UsbFix V3.008 ]
# User : Xavier (Administrateurs) # LANGOUET
# Update on 13/04/09 by C_XX & Chiquitine29
# Start at: 22:29:11 | 15/04/2009
# Intel(R) Core(TM)2 CPU 6400 @ 2.13GHz
# Microsoft Windows XP Professionnel (5.1.2600 32-bit) # Service Pack 2
# Internet Explorer 6.0.2900.2180
# Windows Firewall Status : Enabled
# AV : Avira AntiVir PersonalEdition Classic 8.0.1.30 [ Enabled | Updated ]
# A:\ # Lecteur de disquettes 3 ½ pouces
# C:\ # Disque fixe local # 97,65 Go (7,59 Go free) # NTFS
# D:\ # Disque fixe local # 200,43 Go (28,37 Go free) # NTFS
# E:\ # Disque fixe local # 465,76 Go (12,92 Go free) # NTFS
# F:\ # Disque fixe local # 149,05 Go (29,69 Go free) [Disque local] # NTFS
# G:\ # Disque CD-ROM
# H:\ # Disque CD-ROM
# I:\ # Disque CD-ROM
# J:\ # Disque fixe local # 698,64 Go (78,18 Go free) [My Book] # NTFS
############################## [ Processus actifs ]
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\Program Files\ANI\ANIWZCS2 Service\ANIWZCSdS.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\WINDOWS\ATKKBService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\svchost.exe
C:\Installation Logiciels\Power Cinema\PowerCinema\Kernel\TV\CLCapSvc.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\WINDOWS\system32\PnkBstrB.exe
C:\Program Files\Cyberlink\Shared files\RichVideo.exe
C:\WINDOWS\system32\svchost.exe
C:\Installation Logiciels\Power Cinema\PowerCinema\Kernel\TV\CLSched.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\explorer.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
################## [ Registre # Startup ]
HKCU_Main: "Local Page"="C:\\WINDOWS\\system32\\blank.htm"
HKCU_Main: "Search Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
HKCU_Main: "Start Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome"
HKLM_logon: "Userinit"="C:\\WINDOWS\\system32\\userinit.exe,System"
HKLM_logon: "DefaultUserName"="Xavier"
HKLM_logon: "AltDefaultUserName"="Xavier"
HKLM_logon: "LegalNoticeCaption"=""
HKLM_logon: "LegalNoticeText"=""
HKCU_Run: ctfmon.exe=C:\WINDOWS\system32\ctfmon.exe
HKCU_Run: ISUSPM="C:\Program Files\Fichiers communs\InstallShield\UpdateService\ISUSPM.exe" -scheduler
HKCU_Run: SuperCopier2.exe=C:\Installation Logiciels\Super Copieur\SuperCopier2\SuperCopier2.exe
HKCU_Run: Free Download Manager="C:\Program Files\Free Download Manager\fdm.exe" -autorun
HKCU_Run: Software Informer="C:\Program Files\Software Informer\softinfo.exe" -autorun
HKCU_Run: fsm=
HKCU_Run: SUPERAntiSpyware=C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
HKCU_Run: HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run\AdobeUpdater=
HKLM_Run: SoundMAXPnP=C:\Program Files\Analog Devices\Core\smax4pnp.exe
HKLM_Run: SoundMAX="C:\Program Files\Analog Devices\SoundMAX\Smax4.exe" /tray
HKLM_Run: JMB36X Configure=C:\WINDOWS\system32\JMRaidTool.exe boot
HKLM_Run: NvCplDaemon=RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
HKLM_Run: nwiz=nwiz.exe /install
HKLM_Run: NvMediaCenter=RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
HKLM_Run: GrooveMonitor="C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
HKLM_Run: SunJavaUpdateSched="C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe"
HKLM_Run: AppleSyncNotifier=C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
HKLM_Run: PCMService="C:\Installation Logiciels\Power Cinema\PowerCinema\PCMService.exe"
HKLM_Run: BluetoothAuthenticationAgent=rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
HKLM_Run: ANIWZCS2Service=C:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe
HKLM_Run: avgnt="C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
HKLM_Run: QuickTime Task="C:\Program Files\QuickTime\qttask.exe" -atboottime
HKLM_Run: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents=
################## [ Informations ]
# -> ( Value | Good = 0x0 Bad = 0x1 )
# HKCU\SOFTWARE\...\Policies\System "DisableRegedit" = (0x0)
# HKCU\SOFTWARE\...\Policies\System "DisableRegistryTools" = (0x0)
# HKCU\SOFTWARE\...\Policies\System "DisableTaskMgr" = (0x0)
# HKLM\SOFTWARE\...\Policies\System "DisableRegedit" = (0x0)
# HKLM\SOFTWARE\...\Policies\System "DisableRegistryTools" = (0x0)
# HKLM\SOFTWARE\...\Policies\System "DisableTaskMgr" = (0x0)
################## [ Fichiers # Dossiers infectieux ]
################## [ Registre # Clés Run infectieuses ]
# -> Not Found !
################## [ Registre # Mountpoints2 ]
HKCU\Software\Microsoft\....\MountPoints2\I\Shell\AutoRun\command
HKCU\Software\Microsoft\....\MountPoints2\{01516678-f730-11dc-963d-0019e06896df}\Shell\Auto\command
HKCU\Software\Microsoft\....\MountPoints2\{01516678-f730-11dc-963d-0019e06896df}\Shell\explore\Command
HKCU\Software\Microsoft\....\MountPoints2\{01516678-f730-11dc-963d-0019e06896df}\Shell\open\Command
HKCU\Software\Microsoft\....\MountPoints2\{08978292-f9cd-11dc-9640-0019e06896df}\Shell\AutoRun\command
HKCU\Software\Microsoft\....\MountPoints2\{297f5c2c-20d9-11dd-967f-0019e06896df}\Shell\AutoRun\command
HKCU\Software\Microsoft\....\MountPoints2\{297f5c2c-20d9-11dd-967f-0019e06896df}\Shell\explore\Command
HKCU\Software\Microsoft\....\MountPoints2\{297f5c2c-20d9-11dd-967f-0019e06896df}\Shell\open\Command
HKCU\Software\Microsoft\....\MountPoints2\{3444f06a-d6f9-11dc-95f8-0018f3b27944}\Shell\Auto\command
HKCU\Software\Microsoft\....\MountPoints2\{3444f06a-d6f9-11dc-95f8-0018f3b27944}\Shell\AutoRun\command
HKCU\Software\Microsoft\....\MountPoints2\{3444f06a-d6f9-11dc-95f8-0018f3b27944}\Shell\explore\Command
HKCU\Software\Microsoft\....\MountPoints2\{3444f06a-d6f9-11dc-95f8-0018f3b27944}\Shell\open\Command
HKCU\Software\Microsoft\....\MountPoints2\{4345f9e2-b650-11dd-81da-fa2ef67867d3}\Shell\AutoRun\command
HKCU\Software\Microsoft\....\MountPoints2\{4345f9e2-b650-11dd-81da-fa2ef67867d3}\Shell\explore\Command
HKCU\Software\Microsoft\....\MountPoints2\{4345f9e2-b650-11dd-81da-fa2ef67867d3}\Shell\open\Command
HKCU\Software\Microsoft\....\MountPoints2\{54846a50-21dc-11dd-9680-0019e06896df}\Shell\AutoRun\command
HKCU\Software\Microsoft\....\MountPoints2\{54846a50-21dc-11dd-9680-0019e06896df}\Shell\explore\Command
HKCU\Software\Microsoft\....\MountPoints2\{54846a50-21dc-11dd-9680-0019e06896df}\Shell\open\Command
HKCU\Software\Microsoft\....\MountPoints2\{646382b6-906c-11dd-81a2-c4b68c542e6b}\Shell\AutoRun\command
HKCU\Software\Microsoft\....\MountPoints2\{646382b6-906c-11dd-81a2-c4b68c542e6b}\Shell\explore\Command
HKCU\Software\Microsoft\....\MountPoints2\{646382b6-906c-11dd-81a2-c4b68c542e6b}\Shell\open\Command
HKCU\Software\Microsoft\....\MountPoints2\{66b8e8ae-d8b7-11dc-95fc-0018f3b27944}\Shell\AutoRun\command
HKCU\Software\Microsoft\....\MountPoints2\{66b8e8ae-d8b7-11dc-95fc-0018f3b27944}\Shell\explore\Command
HKCU\Software\Microsoft\....\MountPoints2\{66b8e8ae-d8b7-11dc-95fc-0018f3b27944}\Shell\open\Command
HKCU\Software\Microsoft\....\MountPoints2\{6d17f47c-cb64-11dd-81fa-92d385324be5}\Shell\AutoRun\command
HKCU\Software\Microsoft\....\MountPoints2\{6d17f47c-cb64-11dd-81fa-92d385324be5}\Shell\explore\Command
HKCU\Software\Microsoft\....\MountPoints2\{6d17f47c-cb64-11dd-81fa-92d385324be5}\Shell\open\Command
HKCU\Software\Microsoft\....\MountPoints2\{80336ac2-d1a3-11dc-bf8c-806d6172696f}\Shell\AutoRun\command
HKCU\Software\Microsoft\....\MountPoints2\{8f595eea-57da-11dd-8165-b764136118ad}\Shell\AutoRun\command
HKCU\Software\Microsoft\....\MountPoints2\{8f595eea-57da-11dd-8165-b764136118ad}\Shell\explore\Command
HKCU\Software\Microsoft\....\MountPoints2\{8f595eea-57da-11dd-8165-b764136118ad}\Shell\open\Command
HKCU\Software\Microsoft\....\MountPoints2\{948d1ae0-dbc1-11dc-9603-0019e06896df}\Shell\AutoRun\command
HKCU\Software\Microsoft\....\MountPoints2\{948d1ae0-dbc1-11dc-9603-0019e06896df}\Shell\explore\Command
HKCU\Software\Microsoft\....\MountPoints2\{948d1ae0-dbc1-11dc-9603-0019e06896df}\Shell\open\Command
HKCU\Software\Microsoft\....\MountPoints2\{a6f81f52-5efc-11dd-8173-de4fcb82dfb4}\Shell\Auto\command
HKCU\Software\Microsoft\....\MountPoints2\{a6f81f52-5efc-11dd-8173-de4fcb82dfb4}\Shell\AutoRun\command
HKCU\Software\Microsoft\....\MountPoints2\{a6f81f52-5efc-11dd-8173-de4fcb82dfb4}\Shell\explore\Command
HKCU\Software\Microsoft\....\MountPoints2\{a6f81f52-5efc-11dd-8173-de4fcb82dfb4}\Shell\open\Command
HKCU\Software\Microsoft\....\MountPoints2\{ad0d0f8c-f4cb-11dc-9636-0019e06896df}\Shell\AutoRun\command
HKCU\Software\Microsoft\....\MountPoints2\{ad0d0f8c-f4cb-11dc-9636-0019e06896df}\Shell\explore\Command
HKCU\Software\Microsoft\....\MountPoints2\{ad0d0f8c-f4cb-11dc-9636-0019e06896df}\Shell\open\Command
HKCU\Software\Microsoft\....\MountPoints2\{ad0d0f8d-f4cb-11dc-9636-0019e06896df}\Shell\Auto\command
HKCU\Software\Microsoft\....\MountPoints2\{ad0d0f8d-f4cb-11dc-9636-0019e06896df}\Shell\AutoRun\command
HKCU\Software\Microsoft\....\MountPoints2\{ad0d0f8d-f4cb-11dc-9636-0019e06896df}\Shell\explore\Command
HKCU\Software\Microsoft\....\MountPoints2\{ad0d0f8d-f4cb-11dc-9636-0019e06896df}\Shell\open\Command
HKCU\Software\Microsoft\....\MountPoints2\{b22539a8-f5f3-11dd-8232-8ba0e1887d3e}\Shell\AutoRun\command
HKCU\Software\Microsoft\....\MountPoints2\{b22539a8-f5f3-11dd-8232-8ba0e1887d3e}\Shell\explore\Command
HKCU\Software\Microsoft\....\MountPoints2\{b22539a8-f5f3-11dd-8232-8ba0e1887d3e}\Shell\open\Command
HKCU\Software\Microsoft\....\MountPoints2\{d011f0d0-dd6e-11dc-9608-0019e06896df}\Shell\AutoRun\command
HKCU\Software\Microsoft\....\MountPoints2\{d011f0d0-dd6e-11dc-9608-0019e06896df}\Shell\open\Command
HKCU\Software\Microsoft\....\MountPoints2\{d011f0d2-dd6e-11dc-9608-0019e06896df}\Shell\AutoRun\command
HKCU\Software\Microsoft\....\MountPoints2\{d011f0d2-dd6e-11dc-9608-0019e06896df}\Shell\explore\Command
HKCU\Software\Microsoft\....\MountPoints2\{d011f0d2-dd6e-11dc-9608-0019e06896df}\Shell\open\Command
HKCU\Software\Microsoft\....\MountPoints2\{d976afcc-f406-11dc-9635-0019e06896df}\Shell\AutoRun\command
HKCU\Software\Microsoft\....\MountPoints2\{d976afcc-f406-11dc-9635-0019e06896df}\Shell\explore\Command
HKCU\Software\Microsoft\....\MountPoints2\{d976afcc-f406-11dc-9635-0019e06896df}\Shell\open\Command
HKCU\Software\Microsoft\....\MountPoints2\{d976afcd-f406-11dc-9635-0019e06896df}\Shell\AutoRun\command
HKCU\Software\Microsoft\....\MountPoints2\{d976afcd-f406-11dc-9635-0019e06896df}\Shell\explore\Command
HKCU\Software\Microsoft\....\MountPoints2\{d976afcd-f406-11dc-9635-0019e06896df}\Shell\open\Command
HKCU\Software\Microsoft\....\MountPoints2\{e50b2aaf-f115-11dc-9631-0019e06896df}\Shell\AutoRun\command
HKCU\Software\Microsoft\....\MountPoints2\{e50b2aaf-f115-11dc-9631-0019e06896df}\Shell\explore\Command
HKCU\Software\Microsoft\....\MountPoints2\{e50b2aaf-f115-11dc-9631-0019e06896df}\Shell\open\Command
HKCU\Software\Microsoft\....\MountPoints2\{ee72e973-ee99-11dc-962b-0019e06896df}\Shell\AutoRun\command
HKCU\Software\Microsoft\....\MountPoints2\{ee72e973-ee99-11dc-962b-0019e06896df}\Shell\explore\Command
HKCU\Software\Microsoft\....\MountPoints2\{ee72e973-ee99-11dc-962b-0019e06896df}\Shell\open\Command
HKCU\Software\Microsoft\....\MountPoints2\{f92d9d90-b62e-11dd-81d9-fef17f52f5d5}\Shell\AutoRun\command
HKCU\Software\Microsoft\....\MountPoints2\{f92d9d90-b62e-11dd-81d9-fef17f52f5d5}\Shell\explore\Command
HKCU\Software\Microsoft\....\MountPoints2\{f92d9d90-b62e-11dd-81d9-fef17f52f5d5}\Shell\open\Command
HKCU\Software\Microsoft\....\MountPoints2\{fe9ad726-51a3-11dd-96c5-d9dba084b6e2}\Shell\AutoRun\command
HKCU\Software\Microsoft\....\MountPoints2\{fe9ad726-51a3-11dd-96c5-d9dba084b6e2}\Shell\explore\Command
HKCU\Software\Microsoft\....\MountPoints2\{fe9ad726-51a3-11dd-96c5-d9dba084b6e2}\Shell\open\Command
################## [ ! Fin du rapport # UsbFix V3.008 ! ]
############################## [ UsbFix V3.008 ]
# User : Xavier (Administrateurs) # LANGOUET
# Update on 13/04/09 by C_XX & Chiquitine29
# Start at: 22:29:11 | 15/04/2009
# Intel(R) Core(TM)2 CPU 6400 @ 2.13GHz
# Microsoft Windows XP Professionnel (5.1.2600 32-bit) # Service Pack 2
# Internet Explorer 6.0.2900.2180
# Windows Firewall Status : Enabled
# AV : Avira AntiVir PersonalEdition Classic 8.0.1.30 [ Enabled | Updated ]
# A:\ # Lecteur de disquettes 3 ½ pouces
# C:\ # Disque fixe local # 97,65 Go (7,59 Go free) # NTFS
# D:\ # Disque fixe local # 200,43 Go (28,37 Go free) # NTFS
# E:\ # Disque fixe local # 465,76 Go (12,92 Go free) # NTFS
# F:\ # Disque fixe local # 149,05 Go (29,69 Go free) [Disque local] # NTFS
# G:\ # Disque CD-ROM
# H:\ # Disque CD-ROM
# I:\ # Disque CD-ROM
# J:\ # Disque fixe local # 698,64 Go (78,18 Go free) [My Book] # NTFS
############################## [ Processus actifs ]
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\Program Files\ANI\ANIWZCS2 Service\ANIWZCSdS.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\WINDOWS\ATKKBService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\svchost.exe
C:\Installation Logiciels\Power Cinema\PowerCinema\Kernel\TV\CLCapSvc.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\WINDOWS\system32\PnkBstrB.exe
C:\Program Files\Cyberlink\Shared files\RichVideo.exe
C:\WINDOWS\system32\svchost.exe
C:\Installation Logiciels\Power Cinema\PowerCinema\Kernel\TV\CLSched.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\explorer.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
################## [ Registre # Startup ]
HKCU_Main: "Local Page"="C:\\WINDOWS\\system32\\blank.htm"
HKCU_Main: "Search Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
HKCU_Main: "Start Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome"
HKLM_logon: "Userinit"="C:\\WINDOWS\\system32\\userinit.exe,System"
HKLM_logon: "DefaultUserName"="Xavier"
HKLM_logon: "AltDefaultUserName"="Xavier"
HKLM_logon: "LegalNoticeCaption"=""
HKLM_logon: "LegalNoticeText"=""
HKCU_Run: ctfmon.exe=C:\WINDOWS\system32\ctfmon.exe
HKCU_Run: ISUSPM="C:\Program Files\Fichiers communs\InstallShield\UpdateService\ISUSPM.exe" -scheduler
HKCU_Run: SuperCopier2.exe=C:\Installation Logiciels\Super Copieur\SuperCopier2\SuperCopier2.exe
HKCU_Run: Free Download Manager="C:\Program Files\Free Download Manager\fdm.exe" -autorun
HKCU_Run: Software Informer="C:\Program Files\Software Informer\softinfo.exe" -autorun
HKCU_Run: fsm=
HKCU_Run: SUPERAntiSpyware=C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
HKCU_Run: HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run\AdobeUpdater=
HKLM_Run: SoundMAXPnP=C:\Program Files\Analog Devices\Core\smax4pnp.exe
HKLM_Run: SoundMAX="C:\Program Files\Analog Devices\SoundMAX\Smax4.exe" /tray
HKLM_Run: JMB36X Configure=C:\WINDOWS\system32\JMRaidTool.exe boot
HKLM_Run: NvCplDaemon=RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
HKLM_Run: nwiz=nwiz.exe /install
HKLM_Run: NvMediaCenter=RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
HKLM_Run: GrooveMonitor="C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
HKLM_Run: SunJavaUpdateSched="C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe"
HKLM_Run: AppleSyncNotifier=C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
HKLM_Run: PCMService="C:\Installation Logiciels\Power Cinema\PowerCinema\PCMService.exe"
HKLM_Run: BluetoothAuthenticationAgent=rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
HKLM_Run: ANIWZCS2Service=C:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe
HKLM_Run: avgnt="C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
HKLM_Run: QuickTime Task="C:\Program Files\QuickTime\qttask.exe" -atboottime
HKLM_Run: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents=
################## [ Informations ]
# -> ( Value | Good = 0x0 Bad = 0x1 )
# HKCU\SOFTWARE\...\Policies\System "DisableRegedit" = (0x0)
# HKCU\SOFTWARE\...\Policies\System "DisableRegistryTools" = (0x0)
# HKCU\SOFTWARE\...\Policies\System "DisableTaskMgr" = (0x0)
# HKLM\SOFTWARE\...\Policies\System "DisableRegedit" = (0x0)
# HKLM\SOFTWARE\...\Policies\System "DisableRegistryTools" = (0x0)
# HKLM\SOFTWARE\...\Policies\System "DisableTaskMgr" = (0x0)
################## [ Fichiers # Dossiers infectieux ]
################## [ Registre # Clés Run infectieuses ]
# -> Not Found !
################## [ Registre # Mountpoints2 ]
HKCU\Software\Microsoft\....\MountPoints2\I\Shell\AutoRun\command
HKCU\Software\Microsoft\....\MountPoints2\{01516678-f730-11dc-963d-0019e06896df}\Shell\Auto\command
HKCU\Software\Microsoft\....\MountPoints2\{01516678-f730-11dc-963d-0019e06896df}\Shell\explore\Command
HKCU\Software\Microsoft\....\MountPoints2\{01516678-f730-11dc-963d-0019e06896df}\Shell\open\Command
HKCU\Software\Microsoft\....\MountPoints2\{08978292-f9cd-11dc-9640-0019e06896df}\Shell\AutoRun\command
HKCU\Software\Microsoft\....\MountPoints2\{297f5c2c-20d9-11dd-967f-0019e06896df}\Shell\AutoRun\command
HKCU\Software\Microsoft\....\MountPoints2\{297f5c2c-20d9-11dd-967f-0019e06896df}\Shell\explore\Command
HKCU\Software\Microsoft\....\MountPoints2\{297f5c2c-20d9-11dd-967f-0019e06896df}\Shell\open\Command
HKCU\Software\Microsoft\....\MountPoints2\{3444f06a-d6f9-11dc-95f8-0018f3b27944}\Shell\Auto\command
HKCU\Software\Microsoft\....\MountPoints2\{3444f06a-d6f9-11dc-95f8-0018f3b27944}\Shell\AutoRun\command
HKCU\Software\Microsoft\....\MountPoints2\{3444f06a-d6f9-11dc-95f8-0018f3b27944}\Shell\explore\Command
HKCU\Software\Microsoft\....\MountPoints2\{3444f06a-d6f9-11dc-95f8-0018f3b27944}\Shell\open\Command
HKCU\Software\Microsoft\....\MountPoints2\{4345f9e2-b650-11dd-81da-fa2ef67867d3}\Shell\AutoRun\command
HKCU\Software\Microsoft\....\MountPoints2\{4345f9e2-b650-11dd-81da-fa2ef67867d3}\Shell\explore\Command
HKCU\Software\Microsoft\....\MountPoints2\{4345f9e2-b650-11dd-81da-fa2ef67867d3}\Shell\open\Command
HKCU\Software\Microsoft\....\MountPoints2\{54846a50-21dc-11dd-9680-0019e06896df}\Shell\AutoRun\command
HKCU\Software\Microsoft\....\MountPoints2\{54846a50-21dc-11dd-9680-0019e06896df}\Shell\explore\Command
HKCU\Software\Microsoft\....\MountPoints2\{54846a50-21dc-11dd-9680-0019e06896df}\Shell\open\Command
HKCU\Software\Microsoft\....\MountPoints2\{646382b6-906c-11dd-81a2-c4b68c542e6b}\Shell\AutoRun\command
HKCU\Software\Microsoft\....\MountPoints2\{646382b6-906c-11dd-81a2-c4b68c542e6b}\Shell\explore\Command
HKCU\Software\Microsoft\....\MountPoints2\{646382b6-906c-11dd-81a2-c4b68c542e6b}\Shell\open\Command
HKCU\Software\Microsoft\....\MountPoints2\{66b8e8ae-d8b7-11dc-95fc-0018f3b27944}\Shell\AutoRun\command
HKCU\Software\Microsoft\....\MountPoints2\{66b8e8ae-d8b7-11dc-95fc-0018f3b27944}\Shell\explore\Command
HKCU\Software\Microsoft\....\MountPoints2\{66b8e8ae-d8b7-11dc-95fc-0018f3b27944}\Shell\open\Command
HKCU\Software\Microsoft\....\MountPoints2\{6d17f47c-cb64-11dd-81fa-92d385324be5}\Shell\AutoRun\command
HKCU\Software\Microsoft\....\MountPoints2\{6d17f47c-cb64-11dd-81fa-92d385324be5}\Shell\explore\Command
HKCU\Software\Microsoft\....\MountPoints2\{6d17f47c-cb64-11dd-81fa-92d385324be5}\Shell\open\Command
HKCU\Software\Microsoft\....\MountPoints2\{80336ac2-d1a3-11dc-bf8c-806d6172696f}\Shell\AutoRun\command
HKCU\Software\Microsoft\....\MountPoints2\{8f595eea-57da-11dd-8165-b764136118ad}\Shell\AutoRun\command
HKCU\Software\Microsoft\....\MountPoints2\{8f595eea-57da-11dd-8165-b764136118ad}\Shell\explore\Command
HKCU\Software\Microsoft\....\MountPoints2\{8f595eea-57da-11dd-8165-b764136118ad}\Shell\open\Command
HKCU\Software\Microsoft\....\MountPoints2\{948d1ae0-dbc1-11dc-9603-0019e06896df}\Shell\AutoRun\command
HKCU\Software\Microsoft\....\MountPoints2\{948d1ae0-dbc1-11dc-9603-0019e06896df}\Shell\explore\Command
HKCU\Software\Microsoft\....\MountPoints2\{948d1ae0-dbc1-11dc-9603-0019e06896df}\Shell\open\Command
HKCU\Software\Microsoft\....\MountPoints2\{a6f81f52-5efc-11dd-8173-de4fcb82dfb4}\Shell\Auto\command
HKCU\Software\Microsoft\....\MountPoints2\{a6f81f52-5efc-11dd-8173-de4fcb82dfb4}\Shell\AutoRun\command
HKCU\Software\Microsoft\....\MountPoints2\{a6f81f52-5efc-11dd-8173-de4fcb82dfb4}\Shell\explore\Command
HKCU\Software\Microsoft\....\MountPoints2\{a6f81f52-5efc-11dd-8173-de4fcb82dfb4}\Shell\open\Command
HKCU\Software\Microsoft\....\MountPoints2\{ad0d0f8c-f4cb-11dc-9636-0019e06896df}\Shell\AutoRun\command
HKCU\Software\Microsoft\....\MountPoints2\{ad0d0f8c-f4cb-11dc-9636-0019e06896df}\Shell\explore\Command
HKCU\Software\Microsoft\....\MountPoints2\{ad0d0f8c-f4cb-11dc-9636-0019e06896df}\Shell\open\Command
HKCU\Software\Microsoft\....\MountPoints2\{ad0d0f8d-f4cb-11dc-9636-0019e06896df}\Shell\Auto\command
HKCU\Software\Microsoft\....\MountPoints2\{ad0d0f8d-f4cb-11dc-9636-0019e06896df}\Shell\AutoRun\command
HKCU\Software\Microsoft\....\MountPoints2\{ad0d0f8d-f4cb-11dc-9636-0019e06896df}\Shell\explore\Command
HKCU\Software\Microsoft\....\MountPoints2\{ad0d0f8d-f4cb-11dc-9636-0019e06896df}\Shell\open\Command
HKCU\Software\Microsoft\....\MountPoints2\{b22539a8-f5f3-11dd-8232-8ba0e1887d3e}\Shell\AutoRun\command
HKCU\Software\Microsoft\....\MountPoints2\{b22539a8-f5f3-11dd-8232-8ba0e1887d3e}\Shell\explore\Command
HKCU\Software\Microsoft\....\MountPoints2\{b22539a8-f5f3-11dd-8232-8ba0e1887d3e}\Shell\open\Command
HKCU\Software\Microsoft\....\MountPoints2\{d011f0d0-dd6e-11dc-9608-0019e06896df}\Shell\AutoRun\command
HKCU\Software\Microsoft\....\MountPoints2\{d011f0d0-dd6e-11dc-9608-0019e06896df}\Shell\open\Command
HKCU\Software\Microsoft\....\MountPoints2\{d011f0d2-dd6e-11dc-9608-0019e06896df}\Shell\AutoRun\command
HKCU\Software\Microsoft\....\MountPoints2\{d011f0d2-dd6e-11dc-9608-0019e06896df}\Shell\explore\Command
HKCU\Software\Microsoft\....\MountPoints2\{d011f0d2-dd6e-11dc-9608-0019e06896df}\Shell\open\Command
HKCU\Software\Microsoft\....\MountPoints2\{d976afcc-f406-11dc-9635-0019e06896df}\Shell\AutoRun\command
HKCU\Software\Microsoft\....\MountPoints2\{d976afcc-f406-11dc-9635-0019e06896df}\Shell\explore\Command
HKCU\Software\Microsoft\....\MountPoints2\{d976afcc-f406-11dc-9635-0019e06896df}\Shell\open\Command
HKCU\Software\Microsoft\....\MountPoints2\{d976afcd-f406-11dc-9635-0019e06896df}\Shell\AutoRun\command
HKCU\Software\Microsoft\....\MountPoints2\{d976afcd-f406-11dc-9635-0019e06896df}\Shell\explore\Command
HKCU\Software\Microsoft\....\MountPoints2\{d976afcd-f406-11dc-9635-0019e06896df}\Shell\open\Command
HKCU\Software\Microsoft\....\MountPoints2\{e50b2aaf-f115-11dc-9631-0019e06896df}\Shell\AutoRun\command
HKCU\Software\Microsoft\....\MountPoints2\{e50b2aaf-f115-11dc-9631-0019e06896df}\Shell\explore\Command
HKCU\Software\Microsoft\....\MountPoints2\{e50b2aaf-f115-11dc-9631-0019e06896df}\Shell\open\Command
HKCU\Software\Microsoft\....\MountPoints2\{ee72e973-ee99-11dc-962b-0019e06896df}\Shell\AutoRun\command
HKCU\Software\Microsoft\....\MountPoints2\{ee72e973-ee99-11dc-962b-0019e06896df}\Shell\explore\Command
HKCU\Software\Microsoft\....\MountPoints2\{ee72e973-ee99-11dc-962b-0019e06896df}\Shell\open\Command
HKCU\Software\Microsoft\....\MountPoints2\{f92d9d90-b62e-11dd-81d9-fef17f52f5d5}\Shell\AutoRun\command
HKCU\Software\Microsoft\....\MountPoints2\{f92d9d90-b62e-11dd-81d9-fef17f52f5d5}\Shell\explore\Command
HKCU\Software\Microsoft\....\MountPoints2\{f92d9d90-b62e-11dd-81d9-fef17f52f5d5}\Shell\open\Command
HKCU\Software\Microsoft\....\MountPoints2\{fe9ad726-51a3-11dd-96c5-d9dba084b6e2}\Shell\AutoRun\command
HKCU\Software\Microsoft\....\MountPoints2\{fe9ad726-51a3-11dd-96c5-d9dba084b6e2}\Shell\explore\Command
HKCU\Software\Microsoft\....\MountPoints2\{fe9ad726-51a3-11dd-96c5-d9dba084b6e2}\Shell\open\Command
################## [ ! Fin du rapport # UsbFix V3.008 ! ]
Voila le rapport de l'option 2 :
############################## [ UsbFix V3.008 ]
# User : Xavier (Administrateurs) # LANGOUET
# Update on 13/04/09 by C_XX & Chiquitine29
# Start at: 22:37:43 | 15/04/2009
# Intel(R) Core(TM)2 CPU 6400 @ 2.13GHz
# Microsoft Windows XP Professionnel (5.1.2600 32-bit) # Service Pack 2
# Internet Explorer 6.0.2900.2180
# Windows Firewall Status : Enabled
# AV : Avira AntiVir PersonalEdition Classic 8.0.1.30 [ Enabled | Updated ]
# A:\ # Lecteur de disquettes 3 ½ pouces
# C:\ # Disque fixe local # 97,65 Go (7,59 Go free) # NTFS
# D:\ # Disque fixe local # 200,43 Go (28,37 Go free) # NTFS
# E:\ # Disque fixe local # 465,76 Go (12,92 Go free) # NTFS
# F:\ # Disque fixe local # 149,05 Go (29,69 Go free) [Disque local] # NTFS
# G:\ # Disque CD-ROM
# H:\ # Disque CD-ROM
# I:\ # Disque CD-ROM
# J:\ # Disque fixe local # 698,64 Go (78,18 Go free) [My Book] # NTFS
############################## [ Processus actifs ]
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\logonui.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\Program Files\ANI\ANIWZCS2 Service\ANIWZCSdS.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\WINDOWS\ATKKBService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\svchost.exe
C:\Installation Logiciels\Power Cinema\PowerCinema\Kernel\TV\CLCapSvc.exe
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\WINDOWS\system32\PnkBstrB.exe
C:\Program Files\Cyberlink\Shared files\RichVideo.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\Installation Logiciels\Power Cinema\PowerCinema\Kernel\TV\CLSched.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\System32\alg.exe
################## [ Fichiers # Dossiers infectieux ]
################## [ Registre # Clés Run infectieuses ]
# -> Not Found !
################## [ Registre # Mountpoints2 ]
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\I\Shell\AutoRun\command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{01516678-f730-11dc-963d-0019e06896df}\Shell\Auto\command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{01516678-f730-11dc-963d-0019e06896df}\Shell\explore\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{01516678-f730-11dc-963d-0019e06896df}\Shell\open\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{08978292-f9cd-11dc-9640-0019e06896df}\Shell\AutoRun\command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{297f5c2c-20d9-11dd-967f-0019e06896df}\Shell\AutoRun\command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{297f5c2c-20d9-11dd-967f-0019e06896df}\Shell\explore\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{297f5c2c-20d9-11dd-967f-0019e06896df}\Shell\open\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{3444f06a-d6f9-11dc-95f8-0018f3b27944}\Shell\Auto\command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{3444f06a-d6f9-11dc-95f8-0018f3b27944}\Shell\AutoRun\command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{3444f06a-d6f9-11dc-95f8-0018f3b27944}\Shell\explore\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{3444f06a-d6f9-11dc-95f8-0018f3b27944}\Shell\open\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{4345f9e2-b650-11dd-81da-fa2ef67867d3}\Shell\AutoRun\command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{4345f9e2-b650-11dd-81da-fa2ef67867d3}\Shell\explore\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{4345f9e2-b650-11dd-81da-fa2ef67867d3}\Shell\open\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{54846a50-21dc-11dd-9680-0019e06896df}\Shell\AutoRun\command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{54846a50-21dc-11dd-9680-0019e06896df}\Shell\explore\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{54846a50-21dc-11dd-9680-0019e06896df}\Shell\open\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{646382b6-906c-11dd-81a2-c4b68c542e6b}\Shell\AutoRun\command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{646382b6-906c-11dd-81a2-c4b68c542e6b}\Shell\explore\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{646382b6-906c-11dd-81a2-c4b68c542e6b}\Shell\open\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{66b8e8ae-d8b7-11dc-95fc-0018f3b27944}\Shell\AutoRun\command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{66b8e8ae-d8b7-11dc-95fc-0018f3b27944}\Shell\explore\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{66b8e8ae-d8b7-11dc-95fc-0018f3b27944}\Shell\open\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{6d17f47c-cb64-11dd-81fa-92d385324be5}\Shell\AutoRun\command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{6d17f47c-cb64-11dd-81fa-92d385324be5}\Shell\explore\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{6d17f47c-cb64-11dd-81fa-92d385324be5}\Shell\open\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{80336ac2-d1a3-11dc-bf8c-806d6172696f}\Shell\AutoRun\command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{8f595eea-57da-11dd-8165-b764136118ad}\Shell\AutoRun\command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{8f595eea-57da-11dd-8165-b764136118ad}\Shell\explore\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{8f595eea-57da-11dd-8165-b764136118ad}\Shell\open\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{948d1ae0-dbc1-11dc-9603-0019e06896df}\Shell\AutoRun\command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{948d1ae0-dbc1-11dc-9603-0019e06896df}\Shell\explore\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{948d1ae0-dbc1-11dc-9603-0019e06896df}\Shell\open\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{a6f81f52-5efc-11dd-8173-de4fcb82dfb4}\Shell\Auto\command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{a6f81f52-5efc-11dd-8173-de4fcb82dfb4}\Shell\AutoRun\command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{a6f81f52-5efc-11dd-8173-de4fcb82dfb4}\Shell\explore\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{a6f81f52-5efc-11dd-8173-de4fcb82dfb4}\Shell\open\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{ad0d0f8c-f4cb-11dc-9636-0019e06896df}\Shell\AutoRun\command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{ad0d0f8c-f4cb-11dc-9636-0019e06896df}\Shell\explore\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{ad0d0f8c-f4cb-11dc-9636-0019e06896df}\Shell\open\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{ad0d0f8d-f4cb-11dc-9636-0019e06896df}\Shell\Auto\command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{ad0d0f8d-f4cb-11dc-9636-0019e06896df}\Shell\AutoRun\command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{ad0d0f8d-f4cb-11dc-9636-0019e06896df}\Shell\explore\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{ad0d0f8d-f4cb-11dc-9636-0019e06896df}\Shell\open\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{b22539a8-f5f3-11dd-8232-8ba0e1887d3e}\Shell\AutoRun\command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{b22539a8-f5f3-11dd-8232-8ba0e1887d3e}\Shell\explore\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{b22539a8-f5f3-11dd-8232-8ba0e1887d3e}\Shell\open\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{d011f0d0-dd6e-11dc-9608-0019e06896df}\Shell\AutoRun\command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{d011f0d0-dd6e-11dc-9608-0019e06896df}\Shell\open\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{d011f0d2-dd6e-11dc-9608-0019e06896df}\Shell\AutoRun\command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{d011f0d2-dd6e-11dc-9608-0019e06896df}\Shell\explore\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{d011f0d2-dd6e-11dc-9608-0019e06896df}\Shell\open\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{d976afcc-f406-11dc-9635-0019e06896df}\Shell\AutoRun\command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{d976afcc-f406-11dc-9635-0019e06896df}\Shell\explore\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{d976afcc-f406-11dc-9635-0019e06896df}\Shell\open\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{d976afcd-f406-11dc-9635-0019e06896df}\Shell\AutoRun\command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{d976afcd-f406-11dc-9635-0019e06896df}\Shell\explore\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{d976afcd-f406-11dc-9635-0019e06896df}\Shell\open\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{e50b2aaf-f115-11dc-9631-0019e06896df}\Shell\AutoRun\command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{e50b2aaf-f115-11dc-9631-0019e06896df}\Shell\explore\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{e50b2aaf-f115-11dc-9631-0019e06896df}\Shell\open\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{ee72e973-ee99-11dc-962b-0019e06896df}\Shell\AutoRun\command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{ee72e973-ee99-11dc-962b-0019e06896df}\Shell\explore\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{ee72e973-ee99-11dc-962b-0019e06896df}\Shell\open\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{f92d9d90-b62e-11dd-81d9-fef17f52f5d5}\Shell\AutoRun\command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{f92d9d90-b62e-11dd-81d9-fef17f52f5d5}\Shell\explore\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{f92d9d90-b62e-11dd-81d9-fef17f52f5d5}\Shell\open\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{fe9ad726-51a3-11dd-96c5-d9dba084b6e2}\Shell\AutoRun\command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{fe9ad726-51a3-11dd-96c5-d9dba084b6e2}\Shell\explore\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{fe9ad726-51a3-11dd-96c5-d9dba084b6e2}\Shell\open\Command
################## [ Listing des fichiers présent ]
C:\AUTOEXEC.BAT
C:\NTDETECT.COM
C:\boot.ini
C:\drive.ini
################## [ Vaccination ]
# C:\autorun.inf -> Folder created by UsbFix.
# D:\autorun.inf -> Folder created by UsbFix.
# E:\autorun.inf -> Folder created by UsbFix.
# F:\autorun.inf -> Folder created by UsbFix.
# J:\autorun.inf -> Folder created by UsbFix.
################## [ ! Fin du rapport # UsbFix V3.008 ! ]
############################## [ UsbFix V3.008 ]
# User : Xavier (Administrateurs) # LANGOUET
# Update on 13/04/09 by C_XX & Chiquitine29
# Start at: 22:37:43 | 15/04/2009
# Intel(R) Core(TM)2 CPU 6400 @ 2.13GHz
# Microsoft Windows XP Professionnel (5.1.2600 32-bit) # Service Pack 2
# Internet Explorer 6.0.2900.2180
# Windows Firewall Status : Enabled
# AV : Avira AntiVir PersonalEdition Classic 8.0.1.30 [ Enabled | Updated ]
# A:\ # Lecteur de disquettes 3 ½ pouces
# C:\ # Disque fixe local # 97,65 Go (7,59 Go free) # NTFS
# D:\ # Disque fixe local # 200,43 Go (28,37 Go free) # NTFS
# E:\ # Disque fixe local # 465,76 Go (12,92 Go free) # NTFS
# F:\ # Disque fixe local # 149,05 Go (29,69 Go free) [Disque local] # NTFS
# G:\ # Disque CD-ROM
# H:\ # Disque CD-ROM
# I:\ # Disque CD-ROM
# J:\ # Disque fixe local # 698,64 Go (78,18 Go free) [My Book] # NTFS
############################## [ Processus actifs ]
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\logonui.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\Program Files\ANI\ANIWZCS2 Service\ANIWZCSdS.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\WINDOWS\ATKKBService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\svchost.exe
C:\Installation Logiciels\Power Cinema\PowerCinema\Kernel\TV\CLCapSvc.exe
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\WINDOWS\system32\PnkBstrB.exe
C:\Program Files\Cyberlink\Shared files\RichVideo.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\Installation Logiciels\Power Cinema\PowerCinema\Kernel\TV\CLSched.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\System32\alg.exe
################## [ Fichiers # Dossiers infectieux ]
################## [ Registre # Clés Run infectieuses ]
# -> Not Found !
################## [ Registre # Mountpoints2 ]
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\I\Shell\AutoRun\command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{01516678-f730-11dc-963d-0019e06896df}\Shell\Auto\command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{01516678-f730-11dc-963d-0019e06896df}\Shell\explore\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{01516678-f730-11dc-963d-0019e06896df}\Shell\open\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{08978292-f9cd-11dc-9640-0019e06896df}\Shell\AutoRun\command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{297f5c2c-20d9-11dd-967f-0019e06896df}\Shell\AutoRun\command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{297f5c2c-20d9-11dd-967f-0019e06896df}\Shell\explore\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{297f5c2c-20d9-11dd-967f-0019e06896df}\Shell\open\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{3444f06a-d6f9-11dc-95f8-0018f3b27944}\Shell\Auto\command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{3444f06a-d6f9-11dc-95f8-0018f3b27944}\Shell\AutoRun\command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{3444f06a-d6f9-11dc-95f8-0018f3b27944}\Shell\explore\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{3444f06a-d6f9-11dc-95f8-0018f3b27944}\Shell\open\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{4345f9e2-b650-11dd-81da-fa2ef67867d3}\Shell\AutoRun\command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{4345f9e2-b650-11dd-81da-fa2ef67867d3}\Shell\explore\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{4345f9e2-b650-11dd-81da-fa2ef67867d3}\Shell\open\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{54846a50-21dc-11dd-9680-0019e06896df}\Shell\AutoRun\command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{54846a50-21dc-11dd-9680-0019e06896df}\Shell\explore\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{54846a50-21dc-11dd-9680-0019e06896df}\Shell\open\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{646382b6-906c-11dd-81a2-c4b68c542e6b}\Shell\AutoRun\command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{646382b6-906c-11dd-81a2-c4b68c542e6b}\Shell\explore\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{646382b6-906c-11dd-81a2-c4b68c542e6b}\Shell\open\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{66b8e8ae-d8b7-11dc-95fc-0018f3b27944}\Shell\AutoRun\command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{66b8e8ae-d8b7-11dc-95fc-0018f3b27944}\Shell\explore\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{66b8e8ae-d8b7-11dc-95fc-0018f3b27944}\Shell\open\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{6d17f47c-cb64-11dd-81fa-92d385324be5}\Shell\AutoRun\command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{6d17f47c-cb64-11dd-81fa-92d385324be5}\Shell\explore\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{6d17f47c-cb64-11dd-81fa-92d385324be5}\Shell\open\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{80336ac2-d1a3-11dc-bf8c-806d6172696f}\Shell\AutoRun\command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{8f595eea-57da-11dd-8165-b764136118ad}\Shell\AutoRun\command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{8f595eea-57da-11dd-8165-b764136118ad}\Shell\explore\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{8f595eea-57da-11dd-8165-b764136118ad}\Shell\open\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{948d1ae0-dbc1-11dc-9603-0019e06896df}\Shell\AutoRun\command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{948d1ae0-dbc1-11dc-9603-0019e06896df}\Shell\explore\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{948d1ae0-dbc1-11dc-9603-0019e06896df}\Shell\open\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{a6f81f52-5efc-11dd-8173-de4fcb82dfb4}\Shell\Auto\command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{a6f81f52-5efc-11dd-8173-de4fcb82dfb4}\Shell\AutoRun\command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{a6f81f52-5efc-11dd-8173-de4fcb82dfb4}\Shell\explore\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{a6f81f52-5efc-11dd-8173-de4fcb82dfb4}\Shell\open\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{ad0d0f8c-f4cb-11dc-9636-0019e06896df}\Shell\AutoRun\command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{ad0d0f8c-f4cb-11dc-9636-0019e06896df}\Shell\explore\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{ad0d0f8c-f4cb-11dc-9636-0019e06896df}\Shell\open\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{ad0d0f8d-f4cb-11dc-9636-0019e06896df}\Shell\Auto\command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{ad0d0f8d-f4cb-11dc-9636-0019e06896df}\Shell\AutoRun\command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{ad0d0f8d-f4cb-11dc-9636-0019e06896df}\Shell\explore\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{ad0d0f8d-f4cb-11dc-9636-0019e06896df}\Shell\open\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{b22539a8-f5f3-11dd-8232-8ba0e1887d3e}\Shell\AutoRun\command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{b22539a8-f5f3-11dd-8232-8ba0e1887d3e}\Shell\explore\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{b22539a8-f5f3-11dd-8232-8ba0e1887d3e}\Shell\open\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{d011f0d0-dd6e-11dc-9608-0019e06896df}\Shell\AutoRun\command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{d011f0d0-dd6e-11dc-9608-0019e06896df}\Shell\open\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{d011f0d2-dd6e-11dc-9608-0019e06896df}\Shell\AutoRun\command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{d011f0d2-dd6e-11dc-9608-0019e06896df}\Shell\explore\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{d011f0d2-dd6e-11dc-9608-0019e06896df}\Shell\open\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{d976afcc-f406-11dc-9635-0019e06896df}\Shell\AutoRun\command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{d976afcc-f406-11dc-9635-0019e06896df}\Shell\explore\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{d976afcc-f406-11dc-9635-0019e06896df}\Shell\open\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{d976afcd-f406-11dc-9635-0019e06896df}\Shell\AutoRun\command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{d976afcd-f406-11dc-9635-0019e06896df}\Shell\explore\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{d976afcd-f406-11dc-9635-0019e06896df}\Shell\open\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{e50b2aaf-f115-11dc-9631-0019e06896df}\Shell\AutoRun\command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{e50b2aaf-f115-11dc-9631-0019e06896df}\Shell\explore\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{e50b2aaf-f115-11dc-9631-0019e06896df}\Shell\open\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{ee72e973-ee99-11dc-962b-0019e06896df}\Shell\AutoRun\command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{ee72e973-ee99-11dc-962b-0019e06896df}\Shell\explore\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{ee72e973-ee99-11dc-962b-0019e06896df}\Shell\open\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{f92d9d90-b62e-11dd-81d9-fef17f52f5d5}\Shell\AutoRun\command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{f92d9d90-b62e-11dd-81d9-fef17f52f5d5}\Shell\explore\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{f92d9d90-b62e-11dd-81d9-fef17f52f5d5}\Shell\open\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{fe9ad726-51a3-11dd-96c5-d9dba084b6e2}\Shell\AutoRun\command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{fe9ad726-51a3-11dd-96c5-d9dba084b6e2}\Shell\explore\Command
Deleted ! HKCU\Software\Microsoft\....\MountPoints2\{fe9ad726-51a3-11dd-96c5-d9dba084b6e2}\Shell\open\Command
################## [ Listing des fichiers présent ]
C:\AUTOEXEC.BAT
C:\NTDETECT.COM
C:\boot.ini
C:\drive.ini
################## [ Vaccination ]
# C:\autorun.inf -> Folder created by UsbFix.
# D:\autorun.inf -> Folder created by UsbFix.
# E:\autorun.inf -> Folder created by UsbFix.
# F:\autorun.inf -> Folder created by UsbFix.
# J:\autorun.inf -> Folder created by UsbFix.
################## [ ! Fin du rapport # UsbFix V3.008 ! ]
J'ai relancé ToolBarSD option 1, voila le rapport :
-----------\\ ToolBar S&D 1.2.8 XP/Vista
Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 2
X86-based PC ( Multiprocessor Free : Intel(R) Core(TM)2 CPU 6400 @ 2.13GHz )
BIOS : BIOS Date: 10/02/06 17:12:27 Ver: 08.00.12
USER : Xavier ( Administrator )
BOOT : Normal boot
Antivirus : Avira AntiVir PersonalEdition Classic 8.0.1.30 (Activated)
A:\ (USB)
C:\ (Local Disk) - NTFS - Total:97 Go (Free:7 Go)
D:\ (Local Disk) - NTFS - Total:200 Go (Free:28 Go)
E:\ (Local Disk) - NTFS - Total:465 Go (Free:12 Go)
F:\ (Local Disk) - NTFS - Total:149 Go (Free:29 Go)
G:\ (CD or DVD)
H:\ (CD or DVD)
I:\ (CD or DVD)
J:\ (Local Disk) - NTFS - Total:698 Go (Free:78 Go)
"C:\ToolBar SD" ( MAJ : 21-12-2008|20:47 )
Option : [1] ( 15/04/2009|22:54 )
-----------\\ Recherche de Fichiers / Dossiers ...
C:\Program Files\AskBarDis
C:\Program Files\AskBarDis\bar
C:\Program Files\AskBarDis\bar\Settings
C:\Program Files\AskBarDis\bar\Settings\prevCfg2.htm
-----------\\ Extensions
(Xavier) - {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d} => adblockplus
(Xavier) - {E9A1DEE0-C623-4439-8932-001E7D17607D} => ajtoolbar
-----------\\ [..\Internet Explorer\Main]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Local Page"="C:\\WINDOWS\\system32\\blank.htm"
"Search Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
"Start Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome"
"Default_Search_URL"="http://toolbar.ask.com/toolbarv/askRedirect?o=10611&gct=&gc=1&q="
"Search Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
"Start Page"="https://www.msn.com/fr-fr"
--------------------\\ Recherche d'autres infections
Aucune autre infection trouvée !
1 - "C:\ToolBar SD\TB_1.txt" - 14/04/2009|17:37 - Option : [1]
2 - "C:\ToolBar SD\TB_2.txt" - 14/04/2009|17:58 - Option : [2]
3 - "C:\ToolBar SD\TB_3.txt" - 15/04/2009|22:55 - Option : [1]
-----------\\ Fin du rapport a 22:55:28,40
Est-ce que je dois lancer l'option 2 ?
-----------\\ ToolBar S&D 1.2.8 XP/Vista
Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 2
X86-based PC ( Multiprocessor Free : Intel(R) Core(TM)2 CPU 6400 @ 2.13GHz )
BIOS : BIOS Date: 10/02/06 17:12:27 Ver: 08.00.12
USER : Xavier ( Administrator )
BOOT : Normal boot
Antivirus : Avira AntiVir PersonalEdition Classic 8.0.1.30 (Activated)
A:\ (USB)
C:\ (Local Disk) - NTFS - Total:97 Go (Free:7 Go)
D:\ (Local Disk) - NTFS - Total:200 Go (Free:28 Go)
E:\ (Local Disk) - NTFS - Total:465 Go (Free:12 Go)
F:\ (Local Disk) - NTFS - Total:149 Go (Free:29 Go)
G:\ (CD or DVD)
H:\ (CD or DVD)
I:\ (CD or DVD)
J:\ (Local Disk) - NTFS - Total:698 Go (Free:78 Go)
"C:\ToolBar SD" ( MAJ : 21-12-2008|20:47 )
Option : [1] ( 15/04/2009|22:54 )
-----------\\ Recherche de Fichiers / Dossiers ...
C:\Program Files\AskBarDis
C:\Program Files\AskBarDis\bar
C:\Program Files\AskBarDis\bar\Settings
C:\Program Files\AskBarDis\bar\Settings\prevCfg2.htm
-----------\\ Extensions
(Xavier) - {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d} => adblockplus
(Xavier) - {E9A1DEE0-C623-4439-8932-001E7D17607D} => ajtoolbar
-----------\\ [..\Internet Explorer\Main]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Local Page"="C:\\WINDOWS\\system32\\blank.htm"
"Search Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
"Start Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome"
"Default_Search_URL"="http://toolbar.ask.com/toolbarv/askRedirect?o=10611&gct=&gc=1&q="
"Search Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
"Start Page"="https://www.msn.com/fr-fr"
--------------------\\ Recherche d'autres infections
Aucune autre infection trouvée !
1 - "C:\ToolBar SD\TB_1.txt" - 14/04/2009|17:37 - Option : [1]
2 - "C:\ToolBar SD\TB_2.txt" - 14/04/2009|17:58 - Option : [2]
3 - "C:\ToolBar SD\TB_3.txt" - 15/04/2009|22:55 - Option : [1]
-----------\\ Fin du rapport a 22:55:28,40
Est-ce que je dois lancer l'option 2 ?
Je t'ai mis l'hueue du telechargement ,regardes dans ton historique internet sur quel site tu etais à cette heure et minutes,et dis moi
Relance Toolbar-S&D en double-cliquant sur le raccourci
.
Ø Tape sur "2" puis valide en appuyant sur "Entrée".
! Ne ferme pas la fenêtre lors de la suppression !
Un rapport sera généré, poste son contenu ici.
NOTE : Si ton Bureau ne réapparait pas, appuie simultanément sur Ctrl+Alt+Suppr pour ouvrir le Gestionnaire des tâches.
Rends-toi sur l'onglet "Processus". Clique en haut à gauche sur Fichier et choisis "Exécuter..."
Tape explorer puis valide.
Relance Toolbar-S&D en double-cliquant sur le raccourci
.
Ø Tape sur "2" puis valide en appuyant sur "Entrée".
! Ne ferme pas la fenêtre lors de la suppression !
Un rapport sera généré, poste son contenu ici.
NOTE : Si ton Bureau ne réapparait pas, appuie simultanément sur Ctrl+Alt+Suppr pour ouvrir le Gestionnaire des tâches.
Rends-toi sur l'onglet "Processus". Clique en haut à gauche sur Fichier et choisis "Exécuter..."
Tape explorer puis valide.
Je ne peux pas savoir exactement lequel c'est, car mon historique s'efface a chaque fermeture de Firefox. Mais je pense que c'est le site de téléchargement de torrent.
Le rapport de ToolBarSD option 2 :
-----------\\ ToolBar S&D 1.2.8 XP/Vista
Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 2
X86-based PC ( Multiprocessor Free : Intel(R) Core(TM)2 CPU 6400 @ 2.13GHz )
BIOS : BIOS Date: 10/02/06 17:12:27 Ver: 08.00.12
USER : Xavier ( Administrator )
BOOT : Normal boot
Antivirus : Avira AntiVir PersonalEdition Classic 8.0.1.30 (Activated)
A:\ (USB)
C:\ (Local Disk) - NTFS - Total:97 Go (Free:7 Go)
D:\ (Local Disk) - NTFS - Total:200 Go (Free:28 Go)
E:\ (Local Disk) - NTFS - Total:465 Go (Free:12 Go)
F:\ (Local Disk) - NTFS - Total:149 Go (Free:29 Go)
G:\ (CD or DVD)
H:\ (CD or DVD)
I:\ (CD or DVD)
J:\ (Local Disk) - NTFS - Total:698 Go (Free:78 Go)
"C:\ToolBar SD" ( MAJ : 21-12-2008|20:47 )
Option : [2] ( 15/04/2009|23:35 )
-----------\\ SUPPRESSION
Supprime! - C:\Program Files\AskBarDis\bar
Supprime! - C:\Program Files\AskBarDis
-----------\\ Recherche de Fichiers / Dossiers ...
-----------\\ Extensions
(Xavier) - {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d} => adblockplus
(Xavier) - {E9A1DEE0-C623-4439-8932-001E7D17607D} => ajtoolbar
-----------\\ [..\Internet Explorer\Main]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Local Page"="C:\\WINDOWS\\system32\\blank.htm"
"Search Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
"Start Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome"
"Default_Search_URL"="http://toolbar.ask.com/toolbarv/askRedirect?o=10611&gct=&gc=1&q="
"Search Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
"Start Page"="https://www.msn.com/fr-fr/"
--------------------\\ Recherche d'autres infections
Aucune autre infection trouvée !
1 - "C:\ToolBar SD\TB_1.txt" - 14/04/2009|17:37 - Option : [1]
2 - "C:\ToolBar SD\TB_2.txt" - 14/04/2009|17:58 - Option : [2]
3 - "C:\ToolBar SD\TB_3.txt" - 15/04/2009|22:55 - Option : [1]
4 - "C:\ToolBar SD\TB_4.txt" - 15/04/2009|23:36 - Option : [2]
-----------\\ Fin du rapport a 23:36:27,34
-----------\\ ToolBar S&D 1.2.8 XP/Vista
Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 2
X86-based PC ( Multiprocessor Free : Intel(R) Core(TM)2 CPU 6400 @ 2.13GHz )
BIOS : BIOS Date: 10/02/06 17:12:27 Ver: 08.00.12
USER : Xavier ( Administrator )
BOOT : Normal boot
Antivirus : Avira AntiVir PersonalEdition Classic 8.0.1.30 (Activated)
A:\ (USB)
C:\ (Local Disk) - NTFS - Total:97 Go (Free:7 Go)
D:\ (Local Disk) - NTFS - Total:200 Go (Free:28 Go)
E:\ (Local Disk) - NTFS - Total:465 Go (Free:12 Go)
F:\ (Local Disk) - NTFS - Total:149 Go (Free:29 Go)
G:\ (CD or DVD)
H:\ (CD or DVD)
I:\ (CD or DVD)
J:\ (Local Disk) - NTFS - Total:698 Go (Free:78 Go)
"C:\ToolBar SD" ( MAJ : 21-12-2008|20:47 )
Option : [2] ( 15/04/2009|23:35 )
-----------\\ SUPPRESSION
Supprime! - C:\Program Files\AskBarDis\bar
Supprime! - C:\Program Files\AskBarDis
-----------\\ Recherche de Fichiers / Dossiers ...
-----------\\ Extensions
(Xavier) - {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d} => adblockplus
(Xavier) - {E9A1DEE0-C623-4439-8932-001E7D17607D} => ajtoolbar
-----------\\ [..\Internet Explorer\Main]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Local Page"="C:\\WINDOWS\\system32\\blank.htm"
"Search Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
"Start Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome"
"Default_Search_URL"="http://toolbar.ask.com/toolbarv/askRedirect?o=10611&gct=&gc=1&q="
"Search Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
"Start Page"="https://www.msn.com/fr-fr/"
--------------------\\ Recherche d'autres infections
Aucune autre infection trouvée !
1 - "C:\ToolBar SD\TB_1.txt" - 14/04/2009|17:37 - Option : [1]
2 - "C:\ToolBar SD\TB_2.txt" - 14/04/2009|17:58 - Option : [2]
3 - "C:\ToolBar SD\TB_3.txt" - 15/04/2009|22:55 - Option : [1]
4 - "C:\ToolBar SD\TB_4.txt" - 15/04/2009|23:36 - Option : [2]
-----------\\ Fin du rapport a 23:36:27,34
Fais gaffe ou tu surfes sinon crées toi une cession avec des droit admin restreint ca t'evitera des installations de programme a ton insu
Supprimes les logiciels de desinfection inutiles avec tool cleaner
http://www.commentcamarche.net/telecharger/telechargement 34055291 toolscleaner
---> Télécharge ToolsCleaner2 sur ton Bureau.
* Double-clique sur ToolsCleaner2.exe pour le lancer.
* Clique sur Recherche et laisse le scan agir.
* Clique sur Suppression pour finaliser.
* Tu peux, si tu le souhaites, te servir des Options Facultatives.
* Clique sur Quitter pour obtenir le rapport.
* Poste le rapport (TCleaner.txt) qui se trouve à la racine de ton disque dur (C:\).
_________________________________________________
Ensuite scan de controle avec dr web
> Télécharge Dr Web CureIt sur ton Bureau :
- Double clique <drweb-cureit.exe> et ensuite clique sur <Analyse>;
- Clique <Ok> à l'invite de l'analyse rapide. S'il trouve des processus infectés alors clique le bouton <Oui>.
Note : une fenêtre s'ouvrira avec options pour "Commander" ou "50% de réduction" : Quitte en cliquant le "X".
- Lorsque le scan rapide est terminé, clique sur le menu <Options> puis <Changer la configuration> ; Choisis l'onglet <Scanner>, et décoche <Analyse heuristique>. Clique ensuite sur <Ok>.
- De retour à la fenêtre principale : clique pour activer <Analyse complète>
- Clique le bouton avec flèche verte sur la droite, et le scan débutera.
- Clique <Oui> pour tout à l'invite "Désinfecter ?" lorsqu'un fichier est détecté, et ensuite clique "Désinfecter".
- Lorsque le scan sera complété, regarde si tu peux cliquer sur l' icône, adjacente aux fichiers détectés (plusieurs feuilles l'une sur l'autre). Si oui, alors clique dessus et ensuite clique sur l'icône <Suivant>, au dessous, et choisis <Déplacer en quarantaine l'objet indésirable>.
- Du menu principal de l'outil, au haut à gauche, clique sur le menu <Fichier> et choisis <Enregistrer le rapport>. Sauvegarde le rapport sur ton Bureau. Ce dernier se nommera DrWeb.csv
- Ferme Dr.Web Cureit
- Redémarre ton ordi (important car certains fichiers peuvent être déplacés/réparés au redémarrage).
- Suite au redémarrage, poste (Copie/Colle) le contenu du rapport de Dr.Web dans ta prochaine réponse.
http://www.commentcamarche.net/telecharger/telechargement 34055291 toolscleaner
---> Télécharge ToolsCleaner2 sur ton Bureau.
* Double-clique sur ToolsCleaner2.exe pour le lancer.
* Clique sur Recherche et laisse le scan agir.
* Clique sur Suppression pour finaliser.
* Tu peux, si tu le souhaites, te servir des Options Facultatives.
* Clique sur Quitter pour obtenir le rapport.
* Poste le rapport (TCleaner.txt) qui se trouve à la racine de ton disque dur (C:\).
_________________________________________________
Ensuite scan de controle avec dr web
> Télécharge Dr Web CureIt sur ton Bureau :
- Double clique <drweb-cureit.exe> et ensuite clique sur <Analyse>;
- Clique <Ok> à l'invite de l'analyse rapide. S'il trouve des processus infectés alors clique le bouton <Oui>.
Note : une fenêtre s'ouvrira avec options pour "Commander" ou "50% de réduction" : Quitte en cliquant le "X".
- Lorsque le scan rapide est terminé, clique sur le menu <Options> puis <Changer la configuration> ; Choisis l'onglet <Scanner>, et décoche <Analyse heuristique>. Clique ensuite sur <Ok>.
- De retour à la fenêtre principale : clique pour activer <Analyse complète>
- Clique le bouton avec flèche verte sur la droite, et le scan débutera.
- Clique <Oui> pour tout à l'invite "Désinfecter ?" lorsqu'un fichier est détecté, et ensuite clique "Désinfecter".
- Lorsque le scan sera complété, regarde si tu peux cliquer sur l' icône, adjacente aux fichiers détectés (plusieurs feuilles l'une sur l'autre). Si oui, alors clique dessus et ensuite clique sur l'icône <Suivant>, au dessous, et choisis <Déplacer en quarantaine l'objet indésirable>.
- Du menu principal de l'outil, au haut à gauche, clique sur le menu <Fichier> et choisis <Enregistrer le rapport>. Sauvegarde le rapport sur ton Bureau. Ce dernier se nommera DrWeb.csv
- Ferme Dr.Web Cureit
- Redémarre ton ordi (important car certains fichiers peuvent être déplacés/réparés au redémarrage).
- Suite au redémarrage, poste (Copie/Colle) le contenu du rapport de Dr.Web dans ta prochaine réponse.
[ Rapport ToolsCleaner version 2.3.5 (par A.Rothstein & dj QUIOU) ]
--> Recherche:
C:\TB.txt: trouvé !
C:\FindyKill.txt: trouvé !
C:\SDFIX: trouvé !
C:\Toolbar SD: trouvé !
C:\UsbFix: trouvé !
C:\FindyKill: trouvé !
C:\Rsit: trouvé !
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis: trouvé !
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis\HijackThis.lnk: trouvé !
C:\Documents and Settings\Xavier\Bureau\SdFix.exe: trouvé !
C:\Documents and Settings\Xavier\Bureau\HijackThis.lnk: trouvé !
C:\Documents and Settings\Xavier\Bureau\HJTInstall.exe: trouvé !
C:\Documents and Settings\Xavier\Bureau\ToolBarSD.exe: trouvé !
C:\Documents and Settings\Xavier\Bureau\UsbFix.exe: trouvé !
C:\Documents and Settings\Xavier\Bureau\Rsit.exe: trouvé !
C:\Documents and Settings\Xavier\Menu Démarrer\Programmes\FindyKill: trouvé !
C:\Documents and Settings\Xavier\Recent\HijackThis.lnk: trouvé !
C:\Program Files\Trend Micro\HijackThis: trouvé !
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe: trouvé !
C:\Program Files\Trend Micro\HijackThis\hijackthis.log: trouvé !
---------------------------------
--> Suppression:
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis\HijackThis.lnk: supprimé !
C:\Documents and Settings\Xavier\Bureau\SdFix.exe: supprimé !
C:\Documents and Settings\Xavier\Bureau\HijackThis.lnk: supprimé !
C:\Documents and Settings\Xavier\Bureau\HJTInstall.exe: supprimé !
C:\Documents and Settings\Xavier\Bureau\ToolBarSD.exe: supprimé !
C:\Documents and Settings\Xavier\Recent\HijackThis.lnk: supprimé !
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe: supprimé !
C:\TB.txt: supprimé !
C:\FindyKill.txt: supprimé !
C:\Documents and Settings\Xavier\Bureau\UsbFix.exe: supprimé !
C:\Documents and Settings\Xavier\Bureau\Rsit.exe: supprimé !
C:\Program Files\Trend Micro\HijackThis\hijackthis.log: supprimé !
C:\SDFIX: supprimé !
C:\Toolbar SD: supprimé !
C:\UsbFix: ERREUR DE SUPPRESSION !!
C:\FindyKill: supprimé !
C:\Rsit: supprimé !
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis: supprimé !
C:\Documents and Settings\Xavier\Menu Démarrer\Programmes\FindyKill: supprimé !
C:\Program Files\Trend Micro\HijackThis: supprimé !
--> Recherche:
C:\TB.txt: trouvé !
C:\FindyKill.txt: trouvé !
C:\SDFIX: trouvé !
C:\Toolbar SD: trouvé !
C:\UsbFix: trouvé !
C:\FindyKill: trouvé !
C:\Rsit: trouvé !
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis: trouvé !
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis\HijackThis.lnk: trouvé !
C:\Documents and Settings\Xavier\Bureau\SdFix.exe: trouvé !
C:\Documents and Settings\Xavier\Bureau\HijackThis.lnk: trouvé !
C:\Documents and Settings\Xavier\Bureau\HJTInstall.exe: trouvé !
C:\Documents and Settings\Xavier\Bureau\ToolBarSD.exe: trouvé !
C:\Documents and Settings\Xavier\Bureau\UsbFix.exe: trouvé !
C:\Documents and Settings\Xavier\Bureau\Rsit.exe: trouvé !
C:\Documents and Settings\Xavier\Menu Démarrer\Programmes\FindyKill: trouvé !
C:\Documents and Settings\Xavier\Recent\HijackThis.lnk: trouvé !
C:\Program Files\Trend Micro\HijackThis: trouvé !
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe: trouvé !
C:\Program Files\Trend Micro\HijackThis\hijackthis.log: trouvé !
---------------------------------
--> Suppression:
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis\HijackThis.lnk: supprimé !
C:\Documents and Settings\Xavier\Bureau\SdFix.exe: supprimé !
C:\Documents and Settings\Xavier\Bureau\HijackThis.lnk: supprimé !
C:\Documents and Settings\Xavier\Bureau\HJTInstall.exe: supprimé !
C:\Documents and Settings\Xavier\Bureau\ToolBarSD.exe: supprimé !
C:\Documents and Settings\Xavier\Recent\HijackThis.lnk: supprimé !
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe: supprimé !
C:\TB.txt: supprimé !
C:\FindyKill.txt: supprimé !
C:\Documents and Settings\Xavier\Bureau\UsbFix.exe: supprimé !
C:\Documents and Settings\Xavier\Bureau\Rsit.exe: supprimé !
C:\Program Files\Trend Micro\HijackThis\hijackthis.log: supprimé !
C:\SDFIX: supprimé !
C:\Toolbar SD: supprimé !
C:\UsbFix: ERREUR DE SUPPRESSION !!
C:\FindyKill: supprimé !
C:\Rsit: supprimé !
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis: supprimé !
C:\Documents and Settings\Xavier\Menu Démarrer\Programmes\FindyKill: supprimé !
C:\Program Files\Trend Micro\HijackThis: supprimé !
Bonjour, le scan m a pris beaucoup de temps.
Voila le rapport :
FindyKill.exe\data015 C:\Documents and Settings\Xavier\Bureau\FindyKill.exe Tool.Prockill
FindyKill.exe C:\Documents and Settings\Xavier\Bureau Conteneur comporte des objets infectés Quarantaine.
A0051435.exe/data002/AutoPlay/Docs/AOLKicker V.1.0.0.zip\AOL Kicker v.1.0.0.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/AOLKicker Tool.AolKick
AutoPlay/Docs/AOLKicker V.1.0.0.zip C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312 L'archive contient des éléments infectés
A0051435.exe/data002/AutoPlay/Docs/B-S_Spy.zip\B-S_Spy/B-S EditServer.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/B-S_Spy.zi BackDoor.BSSpy.109
A0051435.exe/data002/AutoPlay/Docs/B-S_Spy.zip\B-S_Spy/Msn-server.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/B-S_Spy.zi BackDoor.Generic.70
A0051435.exe/data002/AutoPlay/Docs/B-S_Spy.zip\B-S_Spy/Net-server.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/B-S_Spy.zi BackDoor.Generic.71
A0051435.exe/data002/AutoPlay/Docs/B-S_Spy.zip\B-S_Spy/Ya-server.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/B-S_Spy.zi BackDoor.Generic.72
AutoPlay/Docs/B-S_Spy.zip C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312 L'archive contient des éléments infectés
A0051435.exe/data002\AutoPlay/Docs/cokluoturum.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Trojan.MulDrop.11303
A0051435.exe/data002/AutoPlay/Docs/Fake Login Hotmail.zip\Fake Login Hotmail/Hotmail.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/Fake Login Trojan.Fahoil
AutoPlay/Docs/Fake Login Hotmail.zip C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312 L'archive contient des éléments infectés
A0051435.exe/data002/AutoPlay/Docs/Fake MSN Messenger Version 5.0.rar\Fake MSN Messenger Version 5.0\fakemsn.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/Fake MSN M Trojan.PWS.Fakemsn.50
AutoPlay/Docs/Fake MSN Messenger Version 5.0.rar C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312 L'archive contient des éléments infectés
A0051435.exe/data002/AutoPlay/Docs/Fake_Hotmail_Login_Screen.zip\hotmailhack/Hotmail hack.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/Fake_Hotma Tool.Hotmailhack
AutoPlay/Docs/Fake_Hotmail_Login_Screen.zip C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312 L'archive contient des éléments infectés
A0051435.exe/data002/AutoPlay/Docs/fakeypager.zip\YPager.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/fakeypager Trojan.PWS.Cicure
AutoPlay/Docs/fakeypager.zip C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312 L'archive contient des éléments infectés
A0051435.exe/data002/AutoPlay/Docs/fmsn.zip\fakemsn.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/fmsn.zip Trojan.PWS.Fakemsn.10
AutoPlay/Docs/fmsn.zip C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312 L'archive contient des éléments infectés
A0051435.exe/data002\AutoPlay/Docs/freeze.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Tool.Frozen
A0051435.exe/data002/AutoPlay/Docs/Give me your pass v1.0.rar\Give me your pass v1.0\Give me your pass V1.0.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/Give me yo BackDoor.MPass
A0051435.exe/data002/AutoPlay/Docs/Give me your pass v1.0.rar\Give me your pass v1.0\mspass.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/Give me yo Tool.PassView
AutoPlay/Docs/Give me your pass v1.0.rar C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312 L'archive contient des éléments infectés
A0051435.exe/data002\AutoPlay/Docs/Hack MSN Password/msnc2.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Tool.Msnacc
A0051435.exe/data002\AutoPlay/Docs/hacking/BluesPortScan.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Trojan.Hunt.28680
A0051435.exe/data002\AutoPlay/Docs/hacking/FTP Brute Forcer.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Tool.FtpBrute
A0051435.exe/data002/AutoPlay/Docs/hacking/HooK-TooLbOx.exe\data001 C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/hacking/Ho Trojan.MulDrop.1185
A0051435.exe/data002/AutoPlay/Docs/hacking/HooK-TooLbOx.exe\data002 C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/hacking/Ho Trojan.MulDrop.1230
AutoPlay/Docs/hacking/HooK-TooLbOx.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312 Conteneur comporte des objets infectés
A0051435.exe/data002\AutoPlay/Docs/hacking/ipscan.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Tool.AngryIpscan
A0051435.exe/data002\AutoPlay/Docs/hacking/netpass.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Tool.Netpass
A0051435.exe/data002\AutoPlay/Docs/hacking/PHPBB DEFACER/PHPBB DEFACER.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Tool.Phpbb
A0051435.exe/data002\AutoPlay/Docs/hacking/phpBBAttacker.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Tool.Sanity
A0051435.exe/data002\AutoPlay/Docs/hacking/remoteanything365/Slave.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Program.RemoteAdmin
A0051435.exe/data002\AutoPlay/Docs/hacking/Smart-Hack Uploader/S-H Client.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Trojan.Smahak
A0051435.exe/data002\AutoPlay/Docs/hacking/Smart-Hack Uploader/S-H Create Server.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Trojan.Smahak
A0051435.exe/data002\AutoPlay/Docs/hacking/SniffPass.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Tool.Sniffpass
A0051435.exe/data002\AutoPlay/Docs/hacking/SQL Inject.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Exploit.Sqlinject
A0051435.exe/data002\AutoPlay/Docs/hacking/www2ip.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Trojan.DownLoad.13580
A0051435.exe/data002/AutoPlay/Docs/Head Fuck Hotmail Hack.rar\Head Fuck Hotmail Hack\Edit Server.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/Head Fuck Trojan.PWS.Hothack
A0051435.exe/data002/AutoPlay/Docs/Head Fuck Hotmail Hack.rar\Head Fuck Hotmail Hack\hotmailhack.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/Head Fuck Trojan.PWS.Hothack
AutoPlay/Docs/Head Fuck Hotmail Hack.rar C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312 L'archive contient des éléments infectés
A0051435.exe/data002\AutoPlay/Docs/HotFreeze 1.6.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 BackDoor.HotFreez
A0051435.exe/data002/AutoPlay/Docs/Hotmail Hacker GOLD.rar\Hotmail Hacker GOLD\Hotmail Hacker GOLD.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/Hotmail Ha Win32.HLLM.Energy.40960
AutoPlay/Docs/Hotmail Hacker GOLD.rar C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312 L'archive contient des éléments infectés
A0051435.exe/data002\AutoPlay/Docs/Hotmail Killer 2.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Trojan.PWS.Banker.2529
A0051435.exe/data002\AutoPlay/Docs/HoTMaiL_Hacker.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Tool.Hothack
A0051435.exe/data002/AutoPlay/Docs/hotmailhack.rar\hotmailhack\Hotmail hack.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/hotmailhac Tool.Hotmailhack
AutoPlay/Docs/hotmailhack.rar C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312 L'archive contient des éléments infectés
A0051435.exe/data002\AutoPlay/Docs/HotmailHack/HotmailHack.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 BackDoor.Generic.664
A0051435.exe/data002\AutoPlay/Docs/HotmailHacker_XEdition/HH X-Edition.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Trojan.PWS.Hotix
A0051435.exe/data002\AutoPlay/Docs/HotmailHacker_XEdition/server.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 BackDoor.Generic.544
A0051435.exe/data002\AutoPlay/Docs/kitle.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Tool.Brum
A0051435.exe/data002\AutoPlay/Docs/Locker/MSN Locker.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Tool.Msnlock
A0051435.exe/data002/AutoPlay/Docs/Magic Password-15-SE.rar\Magic Password-15-SE\MPS-15-SE.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/Magic Pass Trojan.PWS.MagicPs.15
A0051435.exe/data002/AutoPlay/Docs/Magic Password-15-SE.rar\Magic Password-15-SE\MPS-Decoder.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/Magic Pass Trojan.PWS.MagicPs.15
AutoPlay/Docs/Magic Password-15-SE.rar C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312 L'archive contient des éléments infectés
A0051435.exe/data002\AutoPlay/Docs/MSN Bomberman v3.1.2.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Flooder.Bomberman
A0051435.exe/data002\AutoPlay/Docs/Msn Dondurucu.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Trojan.Smithfraud
A0051435.exe/data002/AutoPlay/Docs/MSN Hacker DUC.rar/H0TM41LH4CK3R-DUC V.4.0.rar\H0TM41LH4CK3R-DUC V.4.0\H0TM41LH4CKER-DUCV.4. C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/MSN Hacker Win32.HLLW.Generic.175
A0051435.exe/data002/AutoPlay/Docs/MSN Hacker DUC.rar/H0TM41LH4CK3R-DUC V.4.0.rar\H0TM41LH4CK3R-DUC V.4.0\H0TM41LH4CKER-DUCV.4. C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/MSN Hacker Win32.HLLW.Generic.175
A0051435.exe/data002/AutoPlay/Docs/MSN Hacker DUC.rar/H0TM41LH4CK3R-DUC V.4.0.rar\H0TM41LH4CK3R-DUC V.4.0\H0TM41LH4CKER-DUCV.4. C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/MSN Hacker Win32.HLLW.Generic.175
A0051435.exe/data002/AutoPlay/Docs/MSN Hacker DUC.rar/H0TM41LH4CK3R-DUC V.4.0.rar\H0TM41LH4CK3R-DUC V.4.0\H0TM41LH4CKER-DUCV.4. C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/MSN Hacker Win32.HLLW.Generic.175
H0TM41LH4CK3R-DUC V.4.0.rar C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312 L'archive contient des éléments infectés
AutoPlay/Docs/MSN Hacker DUC.rar C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312 L'archive contient des éléments infectés
A0051435.exe/data002\AutoPlay/Docs/MSN Password Finder v2.0.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Tool.MsnCheck
A0051435.exe/data002\AutoPlay/Docs/MSN passwords/MSN/Msn messanger.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 BackDoor.Generic.1669
A0051435.exe/data002/AutoPlay/Docs/MSN Spy Lite v1.0.rar\stub.stb C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/MSN Spy Li Trojan.PWS.MSNSpy
A0051435.exe/data002/AutoPlay/Docs/MSN Spy Lite v1.0.rar\builder.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/MSN Spy Li Trojan.MSNSpy
AutoPlay/Docs/MSN Spy Lite v1.0.rar C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312 L'archive contient des éléments infectés
MsnSniffer_Setup.exe\MSNSNIFFER.EXE C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/MSN.Sniffe Tool.MSNSniffer
MSN.Sniffer.1.2.+.Crack\MsnSniffer_Setup.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/MSN.Sniffe L'archive contient des éléments infectés
AutoPlay/Docs/MSN.Sniffer.1.2.+.Crack.rar C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312 L'archive contient des éléments infectés
A0051435.exe/data002\AutoPlay/Docs/MSNPasswordRetriever.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Trojan.Fakemsn
A0051435.exe/data002\AutoPlay/Docs/mspass.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Tool.MessenPass
A0051435.exe/data002\AutoPlay/Docs/Nuke1[1].5/Lanzador1.5.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Tool.Lanzador
A0051435.exe/data002\AutoPlay/Docs/Nuke1[1].5/nukemsn.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Nuke.Msn
A0051435.exe/data002/AutoPlay/Docs/Saria Fake Logins 2.0.rar\Saria Fake Logins 2.0\Msn (Xp).exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/Saria Fake Trojan.Fakelog
A0051435.exe/data002/AutoPlay/Docs/Saria Fake Logins 2.0.rar\Saria Fake Logins 2.0\Editor.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/Saria Fake Trojan.Fakelog
A0051435.exe/data002/AutoPlay/Docs/Saria Fake Logins 2.0.rar\Saria Fake Logins 2.0\YAHOO.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/Saria Fake Trojan.Fakelog
A0051435.exe/data002/AutoPlay/Docs/Saria Fake Logins 2.0.rar\Saria Fake Logins 2.0\Paltalk.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/Saria Fake Trojan.Fakelog
A0051435.exe/data002/AutoPlay/Docs/Saria Fake Logins 2.0.rar\Saria Fake Logins 2.0\Msn (9,x,me,2000).exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/Saria Fake Trojan.Fakelog
AutoPlay/Docs/Saria Fake Logins 2.0.rar C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312 L'archive contient des éléments infectés
A0051435.exe/data002\AutoPlay/Docs/S-H Y! Pass Sender 1.1/S_H_Yahoo_Pass_Sender.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Trojan.PWS.Fably
A0051435.exe/data002\AutoPlay/Docs/Ultimate Nickpopupz 2004 v0.4.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Flooder.Popapz
A0051435.exe/data002/AutoPlay/Docs/XP Killer.rar\xpkiller.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/XP Killer. Trojan.KillXP
AutoPlay/Docs/XP Killer.rar C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312 L'archive contient des éléments infectés
XP Killer.rar\xpkiller.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/XP-Killer. Trojan.KillXP
XP-Killer\XP Killer.rar C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/XP-Killer. L'archive contient des éléments infectés
AutoPlay/Docs/XP-Killer.rar C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312 L'archive contient des éléments infectés
A0051435.exe/data002\AutoPlay/Docs/YAHOO Password stealer.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Trojan.PWS.Smartps.13
A0051435.exe/data002\AutoPlay/Docs/yahoocrack.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Tool.YahooCrack
A0051435.exe/data002\AutoPlay/Docs/YahooPasswordRetrieval/Yahoo Password Retrieval.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 BackDoor.MoSucker
data002 C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312 L'archive contient des éléments infectés
A0051435.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312 Conteneur comporte des objets infectés Quarantaine.
A0061869.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP389 Adware.SaveNow Irréparable.Quarantaine.
A0061954.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP390 Tool.Prockill Irréparable.Quarantaine.
A0061978.exe\SDFix\apps\Process.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP390\A0061978.exe Tool.Prockill
A0061978.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP390 L'archive contient des éléments infectés Quarantaine.
A0061984.exe\data009 C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP390\A0061984.exe Tool.Prockill
A0061984.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP390 Conteneur comporte des objets infectés Quarantaine.
A0062032.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP390 Tool.Prockill Irréparable.Quarantaine.
A0062101.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP390 Tool.Prockill Irréparable.Quarantaine.
A0062116.exe\data015 C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP390\A0062116.exe Tool.Prockill
A0062116.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP390 Conteneur comporte des objets infectés Quarantaine.
A0054116.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP332 Joke.Puncher Irréparable.Quarantaine.
A0054234.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP332 Joke.Puncher Irréparable.Quarantaine.
A0060592.exe/data002/AutoPlay/Docs/AOLKicker V.1.0.0.zip\AOL Kicker v.1.0.0.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/AOLKicker Tool.AolKick
AutoPlay/Docs/AOLKicker V.1.0.0.zip D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367 L'archive contient des éléments infectés
A0060592.exe/data002/AutoPlay/Docs/B-S_Spy.zip\B-S_Spy/B-S EditServer.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/B-S_Spy.zi BackDoor.BSSpy.109
A0060592.exe/data002/AutoPlay/Docs/B-S_Spy.zip\B-S_Spy/Msn-server.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/B-S_Spy.zi BackDoor.Generic.70
A0060592.exe/data002/AutoPlay/Docs/B-S_Spy.zip\B-S_Spy/Net-server.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/B-S_Spy.zi BackDoor.Generic.71
A0060592.exe/data002/AutoPlay/Docs/B-S_Spy.zip\B-S_Spy/Ya-server.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/B-S_Spy.zi BackDoor.Generic.72
AutoPlay/Docs/B-S_Spy.zip D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367 L'archive contient des éléments infectés
A0060592.exe/data002\AutoPlay/Docs/cokluoturum.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Trojan.MulDrop.11303
A0060592.exe/data002/AutoPlay/Docs/Fake Login Hotmail.zip\Fake Login Hotmail/Hotmail.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/Fake Login Trojan.Fahoil
AutoPlay/Docs/Fake Login Hotmail.zip D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367 L'archive contient des éléments infectés
A0060592.exe/data002/AutoPlay/Docs/Fake MSN Messenger Version 5.0.rar\Fake MSN Messenger Version 5.0\fakemsn.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/Fake MSN M Trojan.PWS.Fakemsn.50
AutoPlay/Docs/Fake MSN Messenger Version 5.0.rar D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367 L'archive contient des éléments infectés
A0060592.exe/data002/AutoPlay/Docs/Fake_Hotmail_Login_Screen.zip\hotmailhack/Hotmail hack.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/Fake_Hotma Tool.Hotmailhack
AutoPlay/Docs/Fake_Hotmail_Login_Screen.zip D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367 L'archive contient des éléments infectés
A0060592.exe/data002/AutoPlay/Docs/fakeypager.zip\YPager.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/fakeypager Trojan.PWS.Cicure
AutoPlay/Docs/fakeypager.zip D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367 L'archive contient des éléments infectés
A0060592.exe/data002/AutoPlay/Docs/fmsn.zip\fakemsn.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/fmsn.zip Trojan.PWS.Fakemsn.10
AutoPlay/Docs/fmsn.zip D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367 L'archive contient des éléments infectés
A0060592.exe/data002\AutoPlay/Docs/freeze.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Tool.Frozen
A0060592.exe/data002/AutoPlay/Docs/Give me your pass v1.0.rar\Give me your pass v1.0\Give me your pass V1.0.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/Give me yo BackDoor.MPass
A0060592.exe/data002/AutoPlay/Docs/Give me your pass v1.0.rar\Give me your pass v1.0\mspass.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/Give me yo Tool.PassView
AutoPlay/Docs/Give me your pass v1.0.rar D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367 L'archive contient des éléments infectés
A0060592.exe/data002\AutoPlay/Docs/Hack MSN Password/msnc2.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Tool.Msnacc
A0060592.exe/data002\AutoPlay/Docs/hacking/BluesPortScan.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Trojan.Hunt.28680
A0060592.exe/data002\AutoPlay/Docs/hacking/FTP Brute Forcer.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Tool.FtpBrute
A0060592.exe/data002/AutoPlay/Docs/hacking/HooK-TooLbOx.exe\data001 D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/hacking/Ho Trojan.MulDrop.1185
A0060592.exe/data002/AutoPlay/Docs/hacking/HooK-TooLbOx.exe\data002 D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/hacking/Ho Trojan.MulDrop.1230
AutoPlay/Docs/hacking/HooK-TooLbOx.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367 Conteneur comporte des objets infectés
A0060592.exe/data002\AutoPlay/Docs/hacking/ipscan.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Tool.AngryIpscan
A0060592.exe/data002\AutoPlay/Docs/hacking/netpass.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Tool.Netpass
A0060592.exe/data002\AutoPlay/Docs/hacking/PHPBB DEFACER/PHPBB DEFACER.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Tool.Phpbb
A0060592.exe/data002\AutoPlay/Docs/hacking/phpBBAttacker.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Tool.Sanity
A0060592.exe/data002\AutoPlay/Docs/hacking/remoteanything365/Slave.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Program.RemoteAdmin
A0060592.exe/data002\AutoPlay/Docs/hacking/Smart-Hack Uploader/S-H Client.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Trojan.Smahak
A0060592.exe/data002\AutoPlay/Docs/hacking/Smart-Hack Uploader/S-H Create Server.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Trojan.Smahak
A0060592.exe/data002\AutoPlay/Docs/hacking/SniffPass.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Tool.Sniffpass
A0060592.exe/data002\AutoPlay/Docs/hacking/SQL Inject.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Exploit.Sqlinject
A0060592.exe/data002\AutoPlay/Docs/hacking/www2ip.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Trojan.DownLoad.13580
A0060592.exe/data002/AutoPlay/Docs/Head Fuck Hotmail Hack.rar\Head Fuck Hotmail Hack\Edit Server.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/Head Fuck Trojan.PWS.Hothack
A0060592.exe/data002/AutoPlay/Docs/Head Fuck Hotmail Hack.rar\Head Fuck Hotmail Hack\hotmailhack.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/Head Fuck Trojan.PWS.Hothack
AutoPlay/Docs/Head Fuck Hotmail Hack.rar D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367 L'archive contient des éléments infectés
A0060592.exe/data002\AutoPlay/Docs/HotFreeze 1.6.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 BackDoor.HotFreez
A0060592.exe/data002/AutoPlay/Docs/Hotmail Hacker GOLD.rar\Hotmail Hacker GOLD\Hotmail Hacker GOLD.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/Hotmail Ha Win32.HLLM.Energy.40960
AutoPlay/Docs/Hotmail Hacker GOLD.rar D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367 L'archive contient des éléments infectés
A0060592.exe/data002\AutoPlay/Docs/Hotmail Killer 2.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Trojan.PWS.Banker.2529
A0060592.exe/data002\AutoPlay/Docs/HoTMaiL_Hacker.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Tool.Hothack
A0060592.exe/data002/AutoPlay/Docs/hotmailhack.rar\hotmailhack\Hotmail hack.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/hotmailhac Tool.Hotmailhack
AutoPlay/Docs/hotmailhack.rar D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367 L'archive contient des éléments infectés
A0060592.exe/data002\AutoPlay/Docs/HotmailHack/HotmailHack.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 BackDoor.Generic.664
A0060592.exe/data002\AutoPlay/Docs/HotmailHacker_XEdition/HH X-Edition.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Trojan.PWS.Hotix
A0060592.exe/data002\AutoPlay/Docs/HotmailHacker_XEdition/server.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 BackDoor.Generic.544
A0060592.exe/data002\AutoPlay/Docs/kitle.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Tool.Brum
A0060592.exe/data002\AutoPlay/Docs/Locker/MSN Locker.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Tool.Msnlock
A0060592.exe/data002/AutoPlay/Docs/Magic Password-15-SE.rar\Magic Password-15-SE\MPS-15-SE.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/Magic Pass Trojan.PWS.MagicPs.15
A0060592.exe/data002/AutoPlay/Docs/Magic Password-15-SE.rar\Magic Password-15-SE\MPS-Decoder.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/Magic Pass Trojan.PWS.MagicPs.15
AutoPlay/Docs/Magic Password-15-SE.rar D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367 L'archive contient des éléments infectés
A0060592.exe/data002\AutoPlay/Docs/MSN Bomberman v3.1.2.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Flooder.Bomberman
A0060592.exe/data002\AutoPlay/Docs/Msn Dondurucu.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Trojan.Smithfraud
A0060592.exe/data002/AutoPlay/Docs/MSN Hacker DUC.rar/H0TM41LH4CK3R-DUC V.4.0.rar\H0TM41LH4CK3R-DUC V.4.0\H0TM41LH4CKER-DUCV.4. D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/MSN Hacker Win32.HLLW.Generic.175
A0060592.exe/data002/AutoPlay/Docs/MSN Hacker DUC.rar/H0TM41LH4CK3R-DUC V.4.0.rar\H0TM41LH4CK3R-DUC V.4.0\H0TM41LH4CKER-DUCV.4. D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/MSN Hacker Win32.HLLW.Generic.175
A0060592.exe/data002/AutoPlay/Docs/MSN Hacker DUC.rar/H0TM41LH4CK3R-DUC V.4.0.rar\H0TM41LH4CK3R-DUC V.4.0\H0TM41LH4CKER-DUCV.4. D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/MSN Hacker Win32.HLLW.Generic.175
A0060592.exe/data002/AutoPlay/Docs/MSN Hacker DUC.rar/H0TM41LH4CK3R-DUC V.4.0.rar\H0TM41LH4CK3R-DUC V.4.0\H0TM41LH4CKER-DUCV.4. D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/MSN Hacker Win32.HLLW.Generic.175
H0TM41LH4CK3R-DUC V.4.0.rar D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367 L'archive contient des éléments infectés
AutoPlay/Docs/MSN Hacker DUC.rar D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367 L'archive contient des éléments infectés
A0060592.exe/data002\AutoPlay/Docs/MSN Password Finder v2.0.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Tool.MsnCheck
A0060592.exe/data002\AutoPlay/Docs/MSN passwords/MSN/Msn messanger.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 BackDoor.Generic.1669
A0060592.exe/data002/AutoPlay/Docs/MSN Spy Lite v1.0.rar\stub.stb D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/MSN Spy Li Trojan.PWS.MSNSpy
A0060592.exe/data002/AutoPlay/Docs/MSN Spy Lite v1.0.rar\builder.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/MSN Spy Li Trojan.MSNSpy
AutoPlay/Docs/MSN Spy Lite v1.0.rar D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367 L'archive contient des éléments infectés
MsnSniffer_Setup.exe\MSNSNIFFER.EXE D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/MSN.Sniffe Tool.MSNSniffer
MSN.Sniffer.1.2.+.Crack\MsnSniffer_Setup.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/MSN.Sniffe L'archive contient des éléments infectés
AutoPlay/Docs/MSN.Sniffer.1.2.+.Crack.rar D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367 L'archive contient des éléments infectés
A0060592.exe/data002\AutoPlay/Docs/MSNPasswordRetriever.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Trojan.Fakemsn
A0060592.exe/data002\AutoPlay/Docs/mspass.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Tool.MessenPass
A0060592.exe/data002\AutoPlay/Docs/Nuke1[1].5/Lanzador1.5.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Tool.Lanzador
A0060592.exe/data002\AutoPlay/Docs/Nuke1[1].5/nukemsn.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Nuke.Msn
A0060592.exe/data002/AutoPlay/Docs/Saria Fake Logins 2.0.rar\Saria Fake Logins 2.0\Msn (Xp).exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/Saria Fake Trojan.Fakelog
A0060592.exe/data002/AutoPlay/Docs/Saria Fake Logins 2.0.rar\Saria Fake Logins 2.0\Editor.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/Saria Fake Trojan.Fakelog
A0060592.exe/data002/AutoPlay/Docs/Saria Fake Logins 2.0.rar\Saria Fake Logins 2.0\YAHOO.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/Saria Fake Trojan.Fakelog
A0060592.exe/data002/AutoPlay/Docs/Saria Fake Logins 2.0.rar\Saria Fake Logins 2.0\Paltalk.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/Saria Fake Trojan.Fakelog
A0060592.exe/data002/AutoPlay/Docs/Saria Fake Logins 2.0.rar\Saria Fake Logins 2.0\Msn (9,x,me,2000).exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/Saria Fake Trojan.Fakelog
AutoPlay/Docs/Saria Fake Logins 2.0.rar D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367 L'archive contient des éléments infectés
A0060592.exe/data002\AutoPlay/Docs/S-H Y! Pass Sender 1.1/S_H_Yahoo_Pass_Sender.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Trojan.PWS.Fably
A0060592.exe/data002\AutoPlay/Docs/Ultimate Nickpopupz 2004 v0.4.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Flooder.Popapz
A0060592.exe/data002/AutoPlay/Docs/XP Killer.rar\xpkiller.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/XP Killer. Trojan.KillXP
AutoPlay/Docs/XP Killer.rar D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367 L'archive contient des éléments infectés
XP Killer.rar\xpkiller.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/XP-Killer. Trojan.KillXP
XP-Killer\XP Killer.rar D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/XP-Killer. L'archive contient des éléments infectés
AutoPlay/Docs/XP-Killer.rar D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367 L'archive contient des éléments infectés
A0060592.exe/data002\AutoPlay/Docs/YAHOO Password stealer.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Trojan.PWS.Smartps.13
A0060592.exe/data002\AutoPlay/Docs/yahoocrack.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Tool.YahooCrack
A0060592.exe/data002\AutoPlay/Docs/YahooPasswordRetrieval/Yahoo Password Retrieval.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 BackDoor.MoSucker
data002 D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367 L'archive contient des éléments infectés
A0060592.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367 Conteneur comporte des objets infectés Quarantaine.
Craagle.u3p\Host/Craagle.exe F:\DIMITRI\Dimitr\Dimi\Nouveau dossier\Aps u3p\Craagle.u3p Tool.HackDiy
Craagle.u3p F:\DIMITRI\Dimitr\Dimi\Nouveau dossier\Aps u3p L'archive contient des éléments infectés Quarantaine.
UltraISO_V8.0_PE.u3p\Host/cmdow.exe F:\DIMITRI\Dimitr\Dimi\Nouveau dossier\Aps u3p\UltraISO_V8.0_PE.u3p Tool.HideWindows
UltraISO_V8.0_PE.u3p F:\DIMITRI\Dimitr\Dimi\Nouveau dossier\Aps u3p L'archive contient des éléments infectés Quarantaine.
MsnAIOHacks.exe/data002/AutoPlay/Docs/AOLKicker V.1.0.0.zip\AOL Kicker v.1.0.0.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/AOLKicker V.1.0.0.zip Tool.AolKick
AutoPlay/Docs/AOLKicker V.1.0.0.zip F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack L'archive contient des éléments infectés
MsnAIOHacks.exe/data002/AutoPlay/Docs/B-S_Spy.zip\B-S_Spy/B-S EditServer.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/B-S_Spy.zip BackDoor.BSSpy.109
MsnAIOHacks.exe/data002/AutoPlay/Docs/B-S_Spy.zip\B-S_Spy/Msn-server.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/B-S_Spy.zip BackDoor.Generic.70
MsnAIOHacks.exe/data002/AutoPlay/Docs/B-S_Spy.zip\B-S_Spy/Net-server.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/B-S_Spy.zip BackDoor.Generic.71
MsnAIOHacks.exe/data002/AutoPlay/Docs/B-S_Spy.zip\B-S_Spy/Ya-server.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/B-S_Spy.zip BackDoor.Generic.72
AutoPlay/Docs/B-S_Spy.zip F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack L'archive contient des éléments infectés
MsnAIOHacks.exe/data002\AutoPlay/Docs/cokluoturum.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Trojan.MulDrop.11303
MsnAIOHacks.exe/data002/AutoPlay/Docs/Fake Login Hotmail.zip\Fake Login Hotmail/Hotmail.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/Fake Login Hotmail.zip Trojan.Fahoil
AutoPlay/Docs/Fake Login Hotmail.zip F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack L'archive contient des éléments infectés
MsnAIOHacks.exe/data002/AutoPlay/Docs/Fake MSN Messenger Version 5.0.rar\Fake MSN Messenger Version 5.0\fakemsn.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/Fake MSN Messenger Version 5.0.rar Trojan.PWS.Fakemsn.50
AutoPlay/Docs/Fake MSN Messenger Version 5.0.rar F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack L'archive contient des éléments infectés
MsnAIOHacks.exe/data002/AutoPlay/Docs/Fake_Hotmail_Login_Screen.zip\hotmailhack/Hotmail hack.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/Fake_Hotmail_Login_Screen.zip Tool.Hotmailhack
AutoPlay/Docs/Fake_Hotmail_Login_Screen.zip F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack L'archive contient des éléments infectés
MsnAIOHacks.exe/data002/AutoPlay/Docs/fakeypager.zip\YPager.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/fakeypager.zip Trojan.PWS.Cicure
AutoPlay/Docs/fakeypager.zip F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack L'archive contient des éléments infectés
MsnAIOHacks.exe/data002/AutoPlay/Docs/fmsn.zip\fakemsn.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/fmsn.zip Trojan.PWS.Fakemsn.10
AutoPlay/Docs/fmsn.zip F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack L'archive contient des éléments infectés
MsnAIOHacks.exe/data002\AutoPlay/Docs/freeze.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Tool.Frozen
MsnAIOHacks.exe/data002/AutoPlay/Docs/Give me your pass v1.0.rar\Give me your pass v1.0\Give me your pass V1.0.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/Give me your pass v1.0.rar BackDoor.MPass
MsnAIOHacks.exe/data002/AutoPlay/Docs/Give me your pass v1.0.rar\Give me your pass v1.0\mspass.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/Give me your pass v1.0.rar Tool.PassView
AutoPlay/Docs/Give me your pass v1.0.rar F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack L'archive contient des éléments infectés
MsnAIOHacks.exe/data002\AutoPlay/Docs/Hack MSN Password/msnc2.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Tool.Msnacc
MsnAIOHacks.exe/data002\AutoPlay/Docs/hacking/BluesPortScan.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Trojan.Hunt.28680
MsnAIOHacks.exe/data002\AutoPlay/Docs/hacking/FTP Brute Forcer.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Tool.FtpBrute
MsnAIOHacks.exe/data002/AutoPlay/Docs/hacking/HooK-TooLbOx.exe\data001 F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/hacking/HooK-TooLbOx.exe Trojan.MulDrop.1185
MsnAIOHacks.exe/data002/AutoPlay/Docs/hacking/HooK-TooLbOx.exe\data002 F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/hacking/HooK-TooLbOx.exe Trojan.MulDrop.1230
AutoPlay/Docs/hacking/HooK-TooLbOx.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack Conteneur comporte des objets infectés
MsnAIOHacks.exe/data002\AutoPlay/Docs/hacking/ipscan.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Tool.AngryIpscan
MsnAIOHacks.exe/data002\AutoPlay/Docs/hacking/netpass.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Tool.Netpass
MsnAIOHacks.exe/data002\AutoPlay/Docs/hacking/PHPBB DEFACER/PHPBB DEFACER.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Tool.Phpbb
MsnAIOHacks.exe/data002\AutoPlay/Docs/hacking/phpBBAttacker.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Tool.Sanity
MsnAIOHacks.exe/data002\AutoPlay/Docs/hacking/remoteanything365/Slave.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Program.RemoteAdmin
MsnAIOHacks.exe/data002\AutoPlay/Docs/hacking/Smart-Hack Uploader/S-H Client.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Trojan.Smahak
MsnAIOHacks.exe/data002\AutoPlay/Docs/hacking/Smart-Hack Uploader/S-H Create Server.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Trojan.Smahak
MsnAIOHacks.exe/data002\AutoPlay/Docs/hacking/SniffPass.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Tool.Sniffpass
MsnAIOHacks.exe/data002\AutoPlay/Docs/hacking/SQL Inject.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Exploit.Sqlinject
MsnAIOHacks.exe/data002\AutoPlay/Docs/hacking/www2ip.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Trojan.DownLoad.13580
MsnAIOHacks.exe/data002/AutoPlay/Docs/Head Fuck Hotmail Hack.rar\Head Fuck Hotmail Hack\Edit Server.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/Head Fuck Hotmail Hack.rar Trojan.PWS.Hothack
MsnAIOHacks.exe/data002/AutoPlay/Docs/Head Fuck Hotmail Hack.rar\Head Fuck Hotmail Hack\hotmailhack.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/Head Fuck Hotmail Hack.rar Trojan.PWS.Hothack
AutoPlay/Docs/Head Fuck Hotmail Hack.rar F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack L'archive contient des éléments infectés
MsnAIOHacks.exe/data002\AutoPlay/Docs/HotFreeze 1.6.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 BackDoor.HotFreez
MsnAIOHacks.exe/data002/AutoPlay/Docs/Hotmail Hacker GOLD.rar\Hotmail Hacker GOLD\Hotmail Hacker GOLD.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/Hotmail Hacker GOLD.rar Win32.HLLM.Energy.40960
AutoPlay/Docs/Hotmail Hacker GOLD.rar F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack L'archive contient des éléments infectés
MsnAIOHacks.exe/data002\AutoPlay/Docs/Hotmail Killer 2.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Trojan.PWS.Banker.2529
MsnAIOHacks.exe/data002\AutoPlay/Docs/HoTMaiL_Hacker.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Tool.Hothack
MsnAIOHacks.exe/data002/AutoPlay/Docs/hotmailhack.rar\hotmailhack\Hotmail hack.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/hotmailhack.rar Tool.Hotmailhack
AutoPlay/Docs/hotmailhack.rar F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack L'archive contient des éléments infectés
MsnAIOHacks.exe/data002\AutoPlay/Docs/HotmailHack/HotmailHack.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 BackDoor.Generic.664
MsnAIOHacks.exe/data002\AutoPlay/Docs/HotmailHacker_XEdition/HH X-Edition.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Trojan.PWS.Hotix
MsnAIOHacks.exe/data002\AutoPlay/Docs/HotmailHacker_XEdition/server.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 BackDoor.Generic.544
MsnAIOHacks.exe/data002\AutoPlay/Docs/kitle.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Tool.Brum
MsnAIOHacks.exe/data002\AutoPlay/Docs/Locker/MSN Locker.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Tool.Msnlock
MsnAIOHacks.exe/data002/AutoPlay/Docs/Magic Password-15-SE.rar\Magic Password-15-SE\MPS-15-SE.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/Magic Password-15-SE.rar Trojan.PWS.MagicPs.15
MsnAIOHacks.exe/data002/AutoPlay/Docs/Magic Password-15-SE.rar\Magic Password-15-SE\MPS-Decoder.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/Magic Password-15-SE.rar Trojan.PWS.MagicPs.15
AutoPlay/Docs/Magic Password-15-SE.rar F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack L'archive contient des éléments infectés
MsnAIOHacks.exe/data002\AutoPlay/Docs/MSN Bomberman v3.1.2.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Flooder.Bomberman
MsnAIOHacks.exe/data002\AutoPlay/Docs/Msn Dondurucu.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Trojan.Smithfraud
MsnAIOHacks.exe/data002/AutoPlay/Docs/MSN Hacker DUC.rar/H0TM41LH4CK3R-DUC V.4.0.rar\H0TM41LH4CK3R-DUC V.4.0\H0TM41LH4CKER-DUCV F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/MSN Hacker DUC.rar/H0TM41LH4CK3R-DUC Win32.HLLW.Generic.175
MsnAIOHacks.exe/data002/AutoPlay/Docs/MSN Hacker DUC.rar/H0TM41LH4CK3R-DUC V.4.0.rar\H0TM41LH4CK3R-DUC V.4.0\H0TM41LH4CKER-DUCV F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/MSN Hacker DUC.rar/H0TM41LH4CK3R-DUC Win32.HLLW.Generic.175
MsnAIOHacks.exe/data002/AutoPlay/Docs/MSN Hacker DUC.rar/H0TM41LH4CK3R-DUC V.4.0.rar\H0TM41LH4CK3R-DUC V.4.0\H0TM41LH4CKER-DUCV F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/MSN Hacker DUC.rar/H0TM41LH4CK3R-DUC Win32.HLLW.Generic.175
MsnAIOHacks.exe/data002/AutoPlay/Docs/MSN Hacker DUC.rar/H0TM41LH4CK3R-DUC V.4.0.rar\H0TM41LH4CK3R-DUC V.4.0\H0TM41LH4CKER-DUCV F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/MSN Hacker DUC.rar/H0TM41LH4CK3R-DUC Win32.HLLW.Generic.175
H0TM41LH4CK3R-DUC V.4.0.rar F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack L'archive contient des éléments infectés
AutoPlay/Docs/MSN Hacker DUC.rar F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack L'archive contient des éléments infectés
MsnAIOHacks.exe/data002\AutoPlay/Docs/MSN Password Finder v2.0.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Tool.MsnCheck
MsnAIOHacks.exe/data002\AutoPlay/Docs/MSN passwords/MSN/Msn messanger.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 BackDoor.Generic.1669
MsnAIOHacks.exe/data002/AutoPlay/Docs/MSN Spy Lite v1.0.rar\stub.stb F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/MSN Spy Lite v1.0.rar Trojan.PWS.MSNSpy
MsnAIOHacks.exe/data002/AutoPlay/Docs/MSN Spy Lite v1.0.rar\builder.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/MSN Spy Lite v1.0.rar Trojan.MSNSpy
AutoPlay/Docs/MSN Spy Lite v1.0.rar F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack L'archive contient des éléments infectés
MsnSniffer_Setup.exe\MSNSNIFFER.EXE F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/MSN.Sniffer.1.2.+.Crack.rar/MSN.Sniff Tool.MSNSniffer
MSN.Sniffer.1.2.+.Crack\MsnSniffer_Setup.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/MSN.Sniffer.1.2.+.Crack.rar/MSN.Sniff L'archive contient des éléments infectés
AutoPlay/Docs/MSN.Sniffer.1.2.+.Crack.rar F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack L'archive contient des éléments infectés
MsnAIOHacks.exe/data002\AutoPlay/Docs/MSNPasswordRetriever.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Trojan.Fakemsn
MsnAIOHacks.exe/data002\AutoPlay/Docs/mspass.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Tool.MessenPass
MsnAIOHacks.exe/data002\AutoPlay/Docs/Nuke1[1].5/Lanzador1.5.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Tool.Lanzador
MsnAIOHacks.exe/data002\AutoPlay/Docs/Nuke1[1].5/nukemsn.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Nuke.Msn
MsnAIOHacks.exe/data002/AutoPlay/Docs/Saria Fake Logins 2.0.rar\Saria Fake Logins 2.0\Msn (Xp).exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/Saria Fake Logins 2.0.rar Trojan.Fakelog
MsnAIOHacks.exe/data002/AutoPlay/Docs/Saria Fake Logins 2.0.rar\Saria Fake Logins 2.0\Editor.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/Saria Fake Logins 2.0.rar Trojan.Fakelog
MsnAIOHacks.exe/data002/AutoPlay/Docs/Saria Fake Logins 2.0.rar\Saria Fake Logins 2.0\YAHOO.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/Saria Fake Logins 2.0.rar Trojan.Fakelog
MsnAIOHacks.exe/data002/AutoPlay/Docs/Saria Fake Logins 2.0.rar\Saria Fake Logins 2.0\Paltalk.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/Saria Fake Logins 2.0.rar Trojan.Fakelog
MsnAIOHacks.exe/data002/AutoPlay/Docs/Saria Fake Logins 2.0.rar\Saria Fake Logins 2.0\Msn (9,x,me,2000).exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/Saria Fake Logins 2.0.rar Trojan.Fakelog
AutoPlay/Docs/Saria Fake Logins 2.0.rar F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack L'archive contient des éléments infectés
MsnAIOHacks.exe/data002\AutoPlay/Docs/S-H Y! Pass Sender 1.1/S_H_Yahoo_Pass_Sender.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Trojan.PWS.Fably
MsnAIOHacks.exe/data002\AutoPlay/Docs/Ultimate Nickpopupz 2004 v0.4.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Flooder.Popapz
MsnAIOHacks.exe/data002/AutoPlay/Docs/XP Killer.rar\xpkiller.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/XP Killer.rar Trojan.KillXP
AutoPlay/Docs/XP Killer.rar F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack L'archive contient des éléments infectés
XP Killer.rar\xpkiller.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/XP-Killer.rar/XP-Killer\XP Killer.rar Trojan.KillXP
XP-Killer\XP Killer.rar F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/XP-Killer.rar/XP-Killer L'archive contient des éléments infectés
AutoPlay/Docs/XP-Killer.rar F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack L'archive contient des éléments infectés
MsnAIOHacks.exe/data002\AutoPlay/Docs/YAHOO Password stealer.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Trojan.PWS.Smartps.13
MsnAIOHacks.exe/data002\AutoPlay/Docs/yahoocrack.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Tool.YahooCrack
MsnAIOHacks.exe/data002\AutoPlay/Docs/YahooPasswordRetrieval/Yahoo Password Retrieval.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 BackDoor.MoSucker
data002 F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack L'archive contient des éléments infectés
MsnAIOHacks.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack Conteneur comporte des objets infectés Quarantaine.
A0053990.exe/data002/AutoPlay/Docs/AOLKicker V.1.0.0.zip\AOL Kicker v.1.0.0.exe F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331\A0053990.exe/data002/AutoPlay/Docs/AOLKicker Tool.AolKick
AutoPlay/Docs/AOLKicker V.1.0.0.zip F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331 L'archive contient des éléments infectés
A0053990.exe/data002/AutoPlay/Docs/B-S_Spy.zip\B-S_Spy/B-S EditServer.exe F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331\A0053990.exe/data002/AutoPlay/Docs/B-S_Spy.zi BackDoor.BSSpy.109
A0053990.exe/data002/AutoPlay/Docs/B-S_Spy.zip\B-S_Spy/Msn-server.exe F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331\A0053990.exe/data002/AutoPlay/Docs/B-S_Spy.zi BackDoor.Generic.70
A0053990.exe/data002/AutoPlay/Docs/B-S_Spy.zip\B-S_Spy/Net-server.exe F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331\A0053990.exe/data002/AutoPlay/Docs/B-S_Spy.zi BackDoor.Generic.71
A0053990.exe/data002/AutoPlay/Docs/B-S_Spy.zip\B-S_Spy/Ya-server.exe F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331\A0053990.exe/data002/AutoPlay/Docs/B-S_Spy.zi BackDoor.Generic.72
AutoPlay/Docs/B-S_Spy.zip F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331 L'archive contient des éléments infectés
A0053990.exe/data002\AutoPlay/Docs/cokluoturum.exe F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331\A0053990.exe/data002 Trojan.MulDrop.11303
A0053990.exe/data002/AutoPlay/Docs/Fake Login Hotmail.zip\Fake Login Hotmail/Hotmail.exe F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331\A0053990.exe/data002/AutoPlay/Docs/Fake Login Trojan.Fahoil
AutoPlay/Docs/Fake Login Hotmail.zip F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331 L'archive contient des éléments infectés
A0053990.exe/data002/AutoPlay/Docs/Fake MSN Messenger Version 5.0.rar\Fake MSN Messenger Version 5.0\fakemsn.exe F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331\A0053990.exe/data002/AutoPlay/Docs/Fake MSN M Trojan.PWS.Fakemsn.50
AutoPlay/Docs/Fake MSN Messenger Version 5.0.rar F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331 L'archive contient des éléments infectés
A0053990.exe/data002/AutoPlay/Docs/Fake_Hotmail_Login_Screen.zip\hotmailhack/Hotmail hack.exe F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331\A0053990.exe/data002/AutoPlay/Docs/Fake_Hotma Tool.Hotmailhack
AutoPlay/Docs/Fake_Hotmail_Login_Screen.zip F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331 L'archive contient des éléments infectés
A0053990.exe/data002/AutoPlay/Docs/fakeypager.zip\YPager.exe F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331\A0053990.exe/data002/AutoPlay/Docs/fakeypager Trojan.PWS.Cicure
AutoPlay/Docs/fakeypager.zip F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331 L'archive contient des éléments infectés
A0053990.exe/data002/AutoPlay/Docs/fmsn.zip\fakemsn.exe F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331\A0053990.exe/data002/AutoPlay/Docs/fmsn.zip Trojan.PWS.Fakemsn.10
AutoPlay/Docs/fmsn.zip F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331 L'archive contient des éléments infectés
A0053990.exe/data002\AutoPlay/Docs/freeze.exe F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331\A0053990.exe/data002 Tool.Frozen
A0053990.exe/data002/AutoPlay/Docs/Give me your pass v1.0.rar\Give me your pass v1.0\Give me your pass V1.0.exe F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331\A0053990.exe/data002/AutoPlay/Docs/Give me yo BackDoor.MPass
A0053990.exe/data002/AutoPlay/Docs/Give me your pass v1.0.rar\Give me your pass v1.0\mspass.exe F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331\A0053990.exe/data002/AutoPlay/Docs/Give me yo Tool.PassView
AutoPlay/Docs/Give me your pass v1.0.rar F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331 L'archive contient des éléments infectés
A0053990.exe/data002\AutoPlay/Docs/Hack MSN Password/msnc2.exe F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331\A0053990.exe/data002 Tool.Msnacc
A0053990.exe/data002\AutoPlay/Docs/hacking/BluesPortScan.exe F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331\A0053990.exe/data002 Trojan.Hunt.28680
A0053990.exe/data002\AutoPlay/Docs/hacking/FTP Brute Forcer.exe F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331\A0053990.exe/data002 Tool.FtpBrute
A0053990.exe/data002/AutoPlay/Docs/hacking/HooK-TooLbOx.exe\data001 F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331\A0053990.exe/data002/AutoPlay/Docs/hacking/Ho Trojan.MulDrop.1185
A0053990.exe/data002/AutoPlay/Docs/hacking/HooK-TooLbOx.exe\data002 F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331\A0053990.exe/data002/AutoPlay/Docs/hacking/Ho Trojan.MulDrop.1230
AutoPlay/Docs/hacking/HooK-TooLbOx.exe F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331 Conteneur comporte des objets infectés
A0053990.exe/data002\AutoPlay/Docs/hacking/ipscan.exe F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331\A0053990.exe/data002 Tool.AngryIpscan
A0053990.exe/data002\AutoPlay/Docs/hacking/netpass.exe F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331\A0053990.exe/data002 Tool.Netpass
A0053990.exe/data002\AutoPlay/Docs/hacking/PHPBB DEFACER/PHPBB DEFACER.exe F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331\A0053990.exe/data002 Tool.Phpbb
A0053990.exe/data002\AutoPlay/Docs/hacking/phpBBAttacker.exe F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331\A0053990.exe/data002 Tool.Sanity
A0053990.exe/data002\AutoPlay/Docs/hacking/remoteanything365/Slave.exe F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331\A0053990.exe/data002 Program.RemoteAdmin
A0053990.exe/data002\AutoPlay/Docs/hacking/Smart-Hack Uploader/S-H Client.exe F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331\A0053990.exe/data002 Trojan.Smahak
A0053990.exe/data002\AutoPlay/Docs/hacking/Smart-Hack Uploader/S-H Create Server.exe F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331\A0053990.exe/data002 Trojan.Smahak
A0053990.exe/data002\AutoPlay/Docs/hacking/SniffPass.exe F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331\A0053990.exe/data002 Tool.Sniffpass
A0053990.exe/data002\AutoPlay/Docs/hacking/SQL Inject.exe F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331\A0053990.exe/data002 Exploit.Sqlinject
A0053990.ex
Voila le rapport :
FindyKill.exe\data015 C:\Documents and Settings\Xavier\Bureau\FindyKill.exe Tool.Prockill
FindyKill.exe C:\Documents and Settings\Xavier\Bureau Conteneur comporte des objets infectés Quarantaine.
A0051435.exe/data002/AutoPlay/Docs/AOLKicker V.1.0.0.zip\AOL Kicker v.1.0.0.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/AOLKicker Tool.AolKick
AutoPlay/Docs/AOLKicker V.1.0.0.zip C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312 L'archive contient des éléments infectés
A0051435.exe/data002/AutoPlay/Docs/B-S_Spy.zip\B-S_Spy/B-S EditServer.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/B-S_Spy.zi BackDoor.BSSpy.109
A0051435.exe/data002/AutoPlay/Docs/B-S_Spy.zip\B-S_Spy/Msn-server.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/B-S_Spy.zi BackDoor.Generic.70
A0051435.exe/data002/AutoPlay/Docs/B-S_Spy.zip\B-S_Spy/Net-server.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/B-S_Spy.zi BackDoor.Generic.71
A0051435.exe/data002/AutoPlay/Docs/B-S_Spy.zip\B-S_Spy/Ya-server.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/B-S_Spy.zi BackDoor.Generic.72
AutoPlay/Docs/B-S_Spy.zip C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312 L'archive contient des éléments infectés
A0051435.exe/data002\AutoPlay/Docs/cokluoturum.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Trojan.MulDrop.11303
A0051435.exe/data002/AutoPlay/Docs/Fake Login Hotmail.zip\Fake Login Hotmail/Hotmail.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/Fake Login Trojan.Fahoil
AutoPlay/Docs/Fake Login Hotmail.zip C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312 L'archive contient des éléments infectés
A0051435.exe/data002/AutoPlay/Docs/Fake MSN Messenger Version 5.0.rar\Fake MSN Messenger Version 5.0\fakemsn.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/Fake MSN M Trojan.PWS.Fakemsn.50
AutoPlay/Docs/Fake MSN Messenger Version 5.0.rar C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312 L'archive contient des éléments infectés
A0051435.exe/data002/AutoPlay/Docs/Fake_Hotmail_Login_Screen.zip\hotmailhack/Hotmail hack.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/Fake_Hotma Tool.Hotmailhack
AutoPlay/Docs/Fake_Hotmail_Login_Screen.zip C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312 L'archive contient des éléments infectés
A0051435.exe/data002/AutoPlay/Docs/fakeypager.zip\YPager.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/fakeypager Trojan.PWS.Cicure
AutoPlay/Docs/fakeypager.zip C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312 L'archive contient des éléments infectés
A0051435.exe/data002/AutoPlay/Docs/fmsn.zip\fakemsn.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/fmsn.zip Trojan.PWS.Fakemsn.10
AutoPlay/Docs/fmsn.zip C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312 L'archive contient des éléments infectés
A0051435.exe/data002\AutoPlay/Docs/freeze.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Tool.Frozen
A0051435.exe/data002/AutoPlay/Docs/Give me your pass v1.0.rar\Give me your pass v1.0\Give me your pass V1.0.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/Give me yo BackDoor.MPass
A0051435.exe/data002/AutoPlay/Docs/Give me your pass v1.0.rar\Give me your pass v1.0\mspass.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/Give me yo Tool.PassView
AutoPlay/Docs/Give me your pass v1.0.rar C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312 L'archive contient des éléments infectés
A0051435.exe/data002\AutoPlay/Docs/Hack MSN Password/msnc2.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Tool.Msnacc
A0051435.exe/data002\AutoPlay/Docs/hacking/BluesPortScan.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Trojan.Hunt.28680
A0051435.exe/data002\AutoPlay/Docs/hacking/FTP Brute Forcer.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Tool.FtpBrute
A0051435.exe/data002/AutoPlay/Docs/hacking/HooK-TooLbOx.exe\data001 C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/hacking/Ho Trojan.MulDrop.1185
A0051435.exe/data002/AutoPlay/Docs/hacking/HooK-TooLbOx.exe\data002 C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/hacking/Ho Trojan.MulDrop.1230
AutoPlay/Docs/hacking/HooK-TooLbOx.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312 Conteneur comporte des objets infectés
A0051435.exe/data002\AutoPlay/Docs/hacking/ipscan.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Tool.AngryIpscan
A0051435.exe/data002\AutoPlay/Docs/hacking/netpass.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Tool.Netpass
A0051435.exe/data002\AutoPlay/Docs/hacking/PHPBB DEFACER/PHPBB DEFACER.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Tool.Phpbb
A0051435.exe/data002\AutoPlay/Docs/hacking/phpBBAttacker.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Tool.Sanity
A0051435.exe/data002\AutoPlay/Docs/hacking/remoteanything365/Slave.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Program.RemoteAdmin
A0051435.exe/data002\AutoPlay/Docs/hacking/Smart-Hack Uploader/S-H Client.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Trojan.Smahak
A0051435.exe/data002\AutoPlay/Docs/hacking/Smart-Hack Uploader/S-H Create Server.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Trojan.Smahak
A0051435.exe/data002\AutoPlay/Docs/hacking/SniffPass.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Tool.Sniffpass
A0051435.exe/data002\AutoPlay/Docs/hacking/SQL Inject.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Exploit.Sqlinject
A0051435.exe/data002\AutoPlay/Docs/hacking/www2ip.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Trojan.DownLoad.13580
A0051435.exe/data002/AutoPlay/Docs/Head Fuck Hotmail Hack.rar\Head Fuck Hotmail Hack\Edit Server.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/Head Fuck Trojan.PWS.Hothack
A0051435.exe/data002/AutoPlay/Docs/Head Fuck Hotmail Hack.rar\Head Fuck Hotmail Hack\hotmailhack.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/Head Fuck Trojan.PWS.Hothack
AutoPlay/Docs/Head Fuck Hotmail Hack.rar C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312 L'archive contient des éléments infectés
A0051435.exe/data002\AutoPlay/Docs/HotFreeze 1.6.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 BackDoor.HotFreez
A0051435.exe/data002/AutoPlay/Docs/Hotmail Hacker GOLD.rar\Hotmail Hacker GOLD\Hotmail Hacker GOLD.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/Hotmail Ha Win32.HLLM.Energy.40960
AutoPlay/Docs/Hotmail Hacker GOLD.rar C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312 L'archive contient des éléments infectés
A0051435.exe/data002\AutoPlay/Docs/Hotmail Killer 2.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Trojan.PWS.Banker.2529
A0051435.exe/data002\AutoPlay/Docs/HoTMaiL_Hacker.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Tool.Hothack
A0051435.exe/data002/AutoPlay/Docs/hotmailhack.rar\hotmailhack\Hotmail hack.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/hotmailhac Tool.Hotmailhack
AutoPlay/Docs/hotmailhack.rar C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312 L'archive contient des éléments infectés
A0051435.exe/data002\AutoPlay/Docs/HotmailHack/HotmailHack.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 BackDoor.Generic.664
A0051435.exe/data002\AutoPlay/Docs/HotmailHacker_XEdition/HH X-Edition.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Trojan.PWS.Hotix
A0051435.exe/data002\AutoPlay/Docs/HotmailHacker_XEdition/server.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 BackDoor.Generic.544
A0051435.exe/data002\AutoPlay/Docs/kitle.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Tool.Brum
A0051435.exe/data002\AutoPlay/Docs/Locker/MSN Locker.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Tool.Msnlock
A0051435.exe/data002/AutoPlay/Docs/Magic Password-15-SE.rar\Magic Password-15-SE\MPS-15-SE.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/Magic Pass Trojan.PWS.MagicPs.15
A0051435.exe/data002/AutoPlay/Docs/Magic Password-15-SE.rar\Magic Password-15-SE\MPS-Decoder.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/Magic Pass Trojan.PWS.MagicPs.15
AutoPlay/Docs/Magic Password-15-SE.rar C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312 L'archive contient des éléments infectés
A0051435.exe/data002\AutoPlay/Docs/MSN Bomberman v3.1.2.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Flooder.Bomberman
A0051435.exe/data002\AutoPlay/Docs/Msn Dondurucu.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Trojan.Smithfraud
A0051435.exe/data002/AutoPlay/Docs/MSN Hacker DUC.rar/H0TM41LH4CK3R-DUC V.4.0.rar\H0TM41LH4CK3R-DUC V.4.0\H0TM41LH4CKER-DUCV.4. C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/MSN Hacker Win32.HLLW.Generic.175
A0051435.exe/data002/AutoPlay/Docs/MSN Hacker DUC.rar/H0TM41LH4CK3R-DUC V.4.0.rar\H0TM41LH4CK3R-DUC V.4.0\H0TM41LH4CKER-DUCV.4. C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/MSN Hacker Win32.HLLW.Generic.175
A0051435.exe/data002/AutoPlay/Docs/MSN Hacker DUC.rar/H0TM41LH4CK3R-DUC V.4.0.rar\H0TM41LH4CK3R-DUC V.4.0\H0TM41LH4CKER-DUCV.4. C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/MSN Hacker Win32.HLLW.Generic.175
A0051435.exe/data002/AutoPlay/Docs/MSN Hacker DUC.rar/H0TM41LH4CK3R-DUC V.4.0.rar\H0TM41LH4CK3R-DUC V.4.0\H0TM41LH4CKER-DUCV.4. C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/MSN Hacker Win32.HLLW.Generic.175
H0TM41LH4CK3R-DUC V.4.0.rar C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312 L'archive contient des éléments infectés
AutoPlay/Docs/MSN Hacker DUC.rar C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312 L'archive contient des éléments infectés
A0051435.exe/data002\AutoPlay/Docs/MSN Password Finder v2.0.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Tool.MsnCheck
A0051435.exe/data002\AutoPlay/Docs/MSN passwords/MSN/Msn messanger.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 BackDoor.Generic.1669
A0051435.exe/data002/AutoPlay/Docs/MSN Spy Lite v1.0.rar\stub.stb C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/MSN Spy Li Trojan.PWS.MSNSpy
A0051435.exe/data002/AutoPlay/Docs/MSN Spy Lite v1.0.rar\builder.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/MSN Spy Li Trojan.MSNSpy
AutoPlay/Docs/MSN Spy Lite v1.0.rar C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312 L'archive contient des éléments infectés
MsnSniffer_Setup.exe\MSNSNIFFER.EXE C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/MSN.Sniffe Tool.MSNSniffer
MSN.Sniffer.1.2.+.Crack\MsnSniffer_Setup.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/MSN.Sniffe L'archive contient des éléments infectés
AutoPlay/Docs/MSN.Sniffer.1.2.+.Crack.rar C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312 L'archive contient des éléments infectés
A0051435.exe/data002\AutoPlay/Docs/MSNPasswordRetriever.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Trojan.Fakemsn
A0051435.exe/data002\AutoPlay/Docs/mspass.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Tool.MessenPass
A0051435.exe/data002\AutoPlay/Docs/Nuke1[1].5/Lanzador1.5.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Tool.Lanzador
A0051435.exe/data002\AutoPlay/Docs/Nuke1[1].5/nukemsn.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Nuke.Msn
A0051435.exe/data002/AutoPlay/Docs/Saria Fake Logins 2.0.rar\Saria Fake Logins 2.0\Msn (Xp).exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/Saria Fake Trojan.Fakelog
A0051435.exe/data002/AutoPlay/Docs/Saria Fake Logins 2.0.rar\Saria Fake Logins 2.0\Editor.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/Saria Fake Trojan.Fakelog
A0051435.exe/data002/AutoPlay/Docs/Saria Fake Logins 2.0.rar\Saria Fake Logins 2.0\YAHOO.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/Saria Fake Trojan.Fakelog
A0051435.exe/data002/AutoPlay/Docs/Saria Fake Logins 2.0.rar\Saria Fake Logins 2.0\Paltalk.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/Saria Fake Trojan.Fakelog
A0051435.exe/data002/AutoPlay/Docs/Saria Fake Logins 2.0.rar\Saria Fake Logins 2.0\Msn (9,x,me,2000).exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/Saria Fake Trojan.Fakelog
AutoPlay/Docs/Saria Fake Logins 2.0.rar C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312 L'archive contient des éléments infectés
A0051435.exe/data002\AutoPlay/Docs/S-H Y! Pass Sender 1.1/S_H_Yahoo_Pass_Sender.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Trojan.PWS.Fably
A0051435.exe/data002\AutoPlay/Docs/Ultimate Nickpopupz 2004 v0.4.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Flooder.Popapz
A0051435.exe/data002/AutoPlay/Docs/XP Killer.rar\xpkiller.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/XP Killer. Trojan.KillXP
AutoPlay/Docs/XP Killer.rar C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312 L'archive contient des éléments infectés
XP Killer.rar\xpkiller.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/XP-Killer. Trojan.KillXP
XP-Killer\XP Killer.rar C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002/AutoPlay/Docs/XP-Killer. L'archive contient des éléments infectés
AutoPlay/Docs/XP-Killer.rar C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312 L'archive contient des éléments infectés
A0051435.exe/data002\AutoPlay/Docs/YAHOO Password stealer.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Trojan.PWS.Smartps.13
A0051435.exe/data002\AutoPlay/Docs/yahoocrack.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 Tool.YahooCrack
A0051435.exe/data002\AutoPlay/Docs/YahooPasswordRetrieval/Yahoo Password Retrieval.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312\A0051435.exe/data002 BackDoor.MoSucker
data002 C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312 L'archive contient des éléments infectés
A0051435.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP312 Conteneur comporte des objets infectés Quarantaine.
A0061869.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP389 Adware.SaveNow Irréparable.Quarantaine.
A0061954.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP390 Tool.Prockill Irréparable.Quarantaine.
A0061978.exe\SDFix\apps\Process.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP390\A0061978.exe Tool.Prockill
A0061978.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP390 L'archive contient des éléments infectés Quarantaine.
A0061984.exe\data009 C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP390\A0061984.exe Tool.Prockill
A0061984.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP390 Conteneur comporte des objets infectés Quarantaine.
A0062032.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP390 Tool.Prockill Irréparable.Quarantaine.
A0062101.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP390 Tool.Prockill Irréparable.Quarantaine.
A0062116.exe\data015 C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP390\A0062116.exe Tool.Prockill
A0062116.exe C:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP390 Conteneur comporte des objets infectés Quarantaine.
A0054116.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP332 Joke.Puncher Irréparable.Quarantaine.
A0054234.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP332 Joke.Puncher Irréparable.Quarantaine.
A0060592.exe/data002/AutoPlay/Docs/AOLKicker V.1.0.0.zip\AOL Kicker v.1.0.0.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/AOLKicker Tool.AolKick
AutoPlay/Docs/AOLKicker V.1.0.0.zip D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367 L'archive contient des éléments infectés
A0060592.exe/data002/AutoPlay/Docs/B-S_Spy.zip\B-S_Spy/B-S EditServer.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/B-S_Spy.zi BackDoor.BSSpy.109
A0060592.exe/data002/AutoPlay/Docs/B-S_Spy.zip\B-S_Spy/Msn-server.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/B-S_Spy.zi BackDoor.Generic.70
A0060592.exe/data002/AutoPlay/Docs/B-S_Spy.zip\B-S_Spy/Net-server.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/B-S_Spy.zi BackDoor.Generic.71
A0060592.exe/data002/AutoPlay/Docs/B-S_Spy.zip\B-S_Spy/Ya-server.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/B-S_Spy.zi BackDoor.Generic.72
AutoPlay/Docs/B-S_Spy.zip D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367 L'archive contient des éléments infectés
A0060592.exe/data002\AutoPlay/Docs/cokluoturum.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Trojan.MulDrop.11303
A0060592.exe/data002/AutoPlay/Docs/Fake Login Hotmail.zip\Fake Login Hotmail/Hotmail.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/Fake Login Trojan.Fahoil
AutoPlay/Docs/Fake Login Hotmail.zip D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367 L'archive contient des éléments infectés
A0060592.exe/data002/AutoPlay/Docs/Fake MSN Messenger Version 5.0.rar\Fake MSN Messenger Version 5.0\fakemsn.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/Fake MSN M Trojan.PWS.Fakemsn.50
AutoPlay/Docs/Fake MSN Messenger Version 5.0.rar D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367 L'archive contient des éléments infectés
A0060592.exe/data002/AutoPlay/Docs/Fake_Hotmail_Login_Screen.zip\hotmailhack/Hotmail hack.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/Fake_Hotma Tool.Hotmailhack
AutoPlay/Docs/Fake_Hotmail_Login_Screen.zip D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367 L'archive contient des éléments infectés
A0060592.exe/data002/AutoPlay/Docs/fakeypager.zip\YPager.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/fakeypager Trojan.PWS.Cicure
AutoPlay/Docs/fakeypager.zip D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367 L'archive contient des éléments infectés
A0060592.exe/data002/AutoPlay/Docs/fmsn.zip\fakemsn.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/fmsn.zip Trojan.PWS.Fakemsn.10
AutoPlay/Docs/fmsn.zip D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367 L'archive contient des éléments infectés
A0060592.exe/data002\AutoPlay/Docs/freeze.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Tool.Frozen
A0060592.exe/data002/AutoPlay/Docs/Give me your pass v1.0.rar\Give me your pass v1.0\Give me your pass V1.0.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/Give me yo BackDoor.MPass
A0060592.exe/data002/AutoPlay/Docs/Give me your pass v1.0.rar\Give me your pass v1.0\mspass.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/Give me yo Tool.PassView
AutoPlay/Docs/Give me your pass v1.0.rar D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367 L'archive contient des éléments infectés
A0060592.exe/data002\AutoPlay/Docs/Hack MSN Password/msnc2.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Tool.Msnacc
A0060592.exe/data002\AutoPlay/Docs/hacking/BluesPortScan.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Trojan.Hunt.28680
A0060592.exe/data002\AutoPlay/Docs/hacking/FTP Brute Forcer.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Tool.FtpBrute
A0060592.exe/data002/AutoPlay/Docs/hacking/HooK-TooLbOx.exe\data001 D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/hacking/Ho Trojan.MulDrop.1185
A0060592.exe/data002/AutoPlay/Docs/hacking/HooK-TooLbOx.exe\data002 D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/hacking/Ho Trojan.MulDrop.1230
AutoPlay/Docs/hacking/HooK-TooLbOx.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367 Conteneur comporte des objets infectés
A0060592.exe/data002\AutoPlay/Docs/hacking/ipscan.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Tool.AngryIpscan
A0060592.exe/data002\AutoPlay/Docs/hacking/netpass.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Tool.Netpass
A0060592.exe/data002\AutoPlay/Docs/hacking/PHPBB DEFACER/PHPBB DEFACER.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Tool.Phpbb
A0060592.exe/data002\AutoPlay/Docs/hacking/phpBBAttacker.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Tool.Sanity
A0060592.exe/data002\AutoPlay/Docs/hacking/remoteanything365/Slave.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Program.RemoteAdmin
A0060592.exe/data002\AutoPlay/Docs/hacking/Smart-Hack Uploader/S-H Client.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Trojan.Smahak
A0060592.exe/data002\AutoPlay/Docs/hacking/Smart-Hack Uploader/S-H Create Server.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Trojan.Smahak
A0060592.exe/data002\AutoPlay/Docs/hacking/SniffPass.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Tool.Sniffpass
A0060592.exe/data002\AutoPlay/Docs/hacking/SQL Inject.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Exploit.Sqlinject
A0060592.exe/data002\AutoPlay/Docs/hacking/www2ip.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Trojan.DownLoad.13580
A0060592.exe/data002/AutoPlay/Docs/Head Fuck Hotmail Hack.rar\Head Fuck Hotmail Hack\Edit Server.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/Head Fuck Trojan.PWS.Hothack
A0060592.exe/data002/AutoPlay/Docs/Head Fuck Hotmail Hack.rar\Head Fuck Hotmail Hack\hotmailhack.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/Head Fuck Trojan.PWS.Hothack
AutoPlay/Docs/Head Fuck Hotmail Hack.rar D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367 L'archive contient des éléments infectés
A0060592.exe/data002\AutoPlay/Docs/HotFreeze 1.6.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 BackDoor.HotFreez
A0060592.exe/data002/AutoPlay/Docs/Hotmail Hacker GOLD.rar\Hotmail Hacker GOLD\Hotmail Hacker GOLD.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/Hotmail Ha Win32.HLLM.Energy.40960
AutoPlay/Docs/Hotmail Hacker GOLD.rar D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367 L'archive contient des éléments infectés
A0060592.exe/data002\AutoPlay/Docs/Hotmail Killer 2.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Trojan.PWS.Banker.2529
A0060592.exe/data002\AutoPlay/Docs/HoTMaiL_Hacker.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Tool.Hothack
A0060592.exe/data002/AutoPlay/Docs/hotmailhack.rar\hotmailhack\Hotmail hack.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/hotmailhac Tool.Hotmailhack
AutoPlay/Docs/hotmailhack.rar D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367 L'archive contient des éléments infectés
A0060592.exe/data002\AutoPlay/Docs/HotmailHack/HotmailHack.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 BackDoor.Generic.664
A0060592.exe/data002\AutoPlay/Docs/HotmailHacker_XEdition/HH X-Edition.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Trojan.PWS.Hotix
A0060592.exe/data002\AutoPlay/Docs/HotmailHacker_XEdition/server.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 BackDoor.Generic.544
A0060592.exe/data002\AutoPlay/Docs/kitle.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Tool.Brum
A0060592.exe/data002\AutoPlay/Docs/Locker/MSN Locker.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Tool.Msnlock
A0060592.exe/data002/AutoPlay/Docs/Magic Password-15-SE.rar\Magic Password-15-SE\MPS-15-SE.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/Magic Pass Trojan.PWS.MagicPs.15
A0060592.exe/data002/AutoPlay/Docs/Magic Password-15-SE.rar\Magic Password-15-SE\MPS-Decoder.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/Magic Pass Trojan.PWS.MagicPs.15
AutoPlay/Docs/Magic Password-15-SE.rar D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367 L'archive contient des éléments infectés
A0060592.exe/data002\AutoPlay/Docs/MSN Bomberman v3.1.2.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Flooder.Bomberman
A0060592.exe/data002\AutoPlay/Docs/Msn Dondurucu.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Trojan.Smithfraud
A0060592.exe/data002/AutoPlay/Docs/MSN Hacker DUC.rar/H0TM41LH4CK3R-DUC V.4.0.rar\H0TM41LH4CK3R-DUC V.4.0\H0TM41LH4CKER-DUCV.4. D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/MSN Hacker Win32.HLLW.Generic.175
A0060592.exe/data002/AutoPlay/Docs/MSN Hacker DUC.rar/H0TM41LH4CK3R-DUC V.4.0.rar\H0TM41LH4CK3R-DUC V.4.0\H0TM41LH4CKER-DUCV.4. D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/MSN Hacker Win32.HLLW.Generic.175
A0060592.exe/data002/AutoPlay/Docs/MSN Hacker DUC.rar/H0TM41LH4CK3R-DUC V.4.0.rar\H0TM41LH4CK3R-DUC V.4.0\H0TM41LH4CKER-DUCV.4. D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/MSN Hacker Win32.HLLW.Generic.175
A0060592.exe/data002/AutoPlay/Docs/MSN Hacker DUC.rar/H0TM41LH4CK3R-DUC V.4.0.rar\H0TM41LH4CK3R-DUC V.4.0\H0TM41LH4CKER-DUCV.4. D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/MSN Hacker Win32.HLLW.Generic.175
H0TM41LH4CK3R-DUC V.4.0.rar D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367 L'archive contient des éléments infectés
AutoPlay/Docs/MSN Hacker DUC.rar D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367 L'archive contient des éléments infectés
A0060592.exe/data002\AutoPlay/Docs/MSN Password Finder v2.0.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Tool.MsnCheck
A0060592.exe/data002\AutoPlay/Docs/MSN passwords/MSN/Msn messanger.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 BackDoor.Generic.1669
A0060592.exe/data002/AutoPlay/Docs/MSN Spy Lite v1.0.rar\stub.stb D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/MSN Spy Li Trojan.PWS.MSNSpy
A0060592.exe/data002/AutoPlay/Docs/MSN Spy Lite v1.0.rar\builder.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/MSN Spy Li Trojan.MSNSpy
AutoPlay/Docs/MSN Spy Lite v1.0.rar D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367 L'archive contient des éléments infectés
MsnSniffer_Setup.exe\MSNSNIFFER.EXE D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/MSN.Sniffe Tool.MSNSniffer
MSN.Sniffer.1.2.+.Crack\MsnSniffer_Setup.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/MSN.Sniffe L'archive contient des éléments infectés
AutoPlay/Docs/MSN.Sniffer.1.2.+.Crack.rar D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367 L'archive contient des éléments infectés
A0060592.exe/data002\AutoPlay/Docs/MSNPasswordRetriever.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Trojan.Fakemsn
A0060592.exe/data002\AutoPlay/Docs/mspass.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Tool.MessenPass
A0060592.exe/data002\AutoPlay/Docs/Nuke1[1].5/Lanzador1.5.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Tool.Lanzador
A0060592.exe/data002\AutoPlay/Docs/Nuke1[1].5/nukemsn.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Nuke.Msn
A0060592.exe/data002/AutoPlay/Docs/Saria Fake Logins 2.0.rar\Saria Fake Logins 2.0\Msn (Xp).exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/Saria Fake Trojan.Fakelog
A0060592.exe/data002/AutoPlay/Docs/Saria Fake Logins 2.0.rar\Saria Fake Logins 2.0\Editor.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/Saria Fake Trojan.Fakelog
A0060592.exe/data002/AutoPlay/Docs/Saria Fake Logins 2.0.rar\Saria Fake Logins 2.0\YAHOO.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/Saria Fake Trojan.Fakelog
A0060592.exe/data002/AutoPlay/Docs/Saria Fake Logins 2.0.rar\Saria Fake Logins 2.0\Paltalk.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/Saria Fake Trojan.Fakelog
A0060592.exe/data002/AutoPlay/Docs/Saria Fake Logins 2.0.rar\Saria Fake Logins 2.0\Msn (9,x,me,2000).exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/Saria Fake Trojan.Fakelog
AutoPlay/Docs/Saria Fake Logins 2.0.rar D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367 L'archive contient des éléments infectés
A0060592.exe/data002\AutoPlay/Docs/S-H Y! Pass Sender 1.1/S_H_Yahoo_Pass_Sender.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Trojan.PWS.Fably
A0060592.exe/data002\AutoPlay/Docs/Ultimate Nickpopupz 2004 v0.4.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Flooder.Popapz
A0060592.exe/data002/AutoPlay/Docs/XP Killer.rar\xpkiller.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/XP Killer. Trojan.KillXP
AutoPlay/Docs/XP Killer.rar D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367 L'archive contient des éléments infectés
XP Killer.rar\xpkiller.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/XP-Killer. Trojan.KillXP
XP-Killer\XP Killer.rar D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002/AutoPlay/Docs/XP-Killer. L'archive contient des éléments infectés
AutoPlay/Docs/XP-Killer.rar D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367 L'archive contient des éléments infectés
A0060592.exe/data002\AutoPlay/Docs/YAHOO Password stealer.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Trojan.PWS.Smartps.13
A0060592.exe/data002\AutoPlay/Docs/yahoocrack.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 Tool.YahooCrack
A0060592.exe/data002\AutoPlay/Docs/YahooPasswordRetrieval/Yahoo Password Retrieval.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367\A0060592.exe/data002 BackDoor.MoSucker
data002 D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367 L'archive contient des éléments infectés
A0060592.exe D:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP367 Conteneur comporte des objets infectés Quarantaine.
Craagle.u3p\Host/Craagle.exe F:\DIMITRI\Dimitr\Dimi\Nouveau dossier\Aps u3p\Craagle.u3p Tool.HackDiy
Craagle.u3p F:\DIMITRI\Dimitr\Dimi\Nouveau dossier\Aps u3p L'archive contient des éléments infectés Quarantaine.
UltraISO_V8.0_PE.u3p\Host/cmdow.exe F:\DIMITRI\Dimitr\Dimi\Nouveau dossier\Aps u3p\UltraISO_V8.0_PE.u3p Tool.HideWindows
UltraISO_V8.0_PE.u3p F:\DIMITRI\Dimitr\Dimi\Nouveau dossier\Aps u3p L'archive contient des éléments infectés Quarantaine.
MsnAIOHacks.exe/data002/AutoPlay/Docs/AOLKicker V.1.0.0.zip\AOL Kicker v.1.0.0.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/AOLKicker V.1.0.0.zip Tool.AolKick
AutoPlay/Docs/AOLKicker V.1.0.0.zip F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack L'archive contient des éléments infectés
MsnAIOHacks.exe/data002/AutoPlay/Docs/B-S_Spy.zip\B-S_Spy/B-S EditServer.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/B-S_Spy.zip BackDoor.BSSpy.109
MsnAIOHacks.exe/data002/AutoPlay/Docs/B-S_Spy.zip\B-S_Spy/Msn-server.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/B-S_Spy.zip BackDoor.Generic.70
MsnAIOHacks.exe/data002/AutoPlay/Docs/B-S_Spy.zip\B-S_Spy/Net-server.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/B-S_Spy.zip BackDoor.Generic.71
MsnAIOHacks.exe/data002/AutoPlay/Docs/B-S_Spy.zip\B-S_Spy/Ya-server.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/B-S_Spy.zip BackDoor.Generic.72
AutoPlay/Docs/B-S_Spy.zip F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack L'archive contient des éléments infectés
MsnAIOHacks.exe/data002\AutoPlay/Docs/cokluoturum.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Trojan.MulDrop.11303
MsnAIOHacks.exe/data002/AutoPlay/Docs/Fake Login Hotmail.zip\Fake Login Hotmail/Hotmail.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/Fake Login Hotmail.zip Trojan.Fahoil
AutoPlay/Docs/Fake Login Hotmail.zip F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack L'archive contient des éléments infectés
MsnAIOHacks.exe/data002/AutoPlay/Docs/Fake MSN Messenger Version 5.0.rar\Fake MSN Messenger Version 5.0\fakemsn.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/Fake MSN Messenger Version 5.0.rar Trojan.PWS.Fakemsn.50
AutoPlay/Docs/Fake MSN Messenger Version 5.0.rar F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack L'archive contient des éléments infectés
MsnAIOHacks.exe/data002/AutoPlay/Docs/Fake_Hotmail_Login_Screen.zip\hotmailhack/Hotmail hack.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/Fake_Hotmail_Login_Screen.zip Tool.Hotmailhack
AutoPlay/Docs/Fake_Hotmail_Login_Screen.zip F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack L'archive contient des éléments infectés
MsnAIOHacks.exe/data002/AutoPlay/Docs/fakeypager.zip\YPager.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/fakeypager.zip Trojan.PWS.Cicure
AutoPlay/Docs/fakeypager.zip F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack L'archive contient des éléments infectés
MsnAIOHacks.exe/data002/AutoPlay/Docs/fmsn.zip\fakemsn.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/fmsn.zip Trojan.PWS.Fakemsn.10
AutoPlay/Docs/fmsn.zip F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack L'archive contient des éléments infectés
MsnAIOHacks.exe/data002\AutoPlay/Docs/freeze.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Tool.Frozen
MsnAIOHacks.exe/data002/AutoPlay/Docs/Give me your pass v1.0.rar\Give me your pass v1.0\Give me your pass V1.0.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/Give me your pass v1.0.rar BackDoor.MPass
MsnAIOHacks.exe/data002/AutoPlay/Docs/Give me your pass v1.0.rar\Give me your pass v1.0\mspass.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/Give me your pass v1.0.rar Tool.PassView
AutoPlay/Docs/Give me your pass v1.0.rar F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack L'archive contient des éléments infectés
MsnAIOHacks.exe/data002\AutoPlay/Docs/Hack MSN Password/msnc2.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Tool.Msnacc
MsnAIOHacks.exe/data002\AutoPlay/Docs/hacking/BluesPortScan.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Trojan.Hunt.28680
MsnAIOHacks.exe/data002\AutoPlay/Docs/hacking/FTP Brute Forcer.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Tool.FtpBrute
MsnAIOHacks.exe/data002/AutoPlay/Docs/hacking/HooK-TooLbOx.exe\data001 F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/hacking/HooK-TooLbOx.exe Trojan.MulDrop.1185
MsnAIOHacks.exe/data002/AutoPlay/Docs/hacking/HooK-TooLbOx.exe\data002 F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/hacking/HooK-TooLbOx.exe Trojan.MulDrop.1230
AutoPlay/Docs/hacking/HooK-TooLbOx.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack Conteneur comporte des objets infectés
MsnAIOHacks.exe/data002\AutoPlay/Docs/hacking/ipscan.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Tool.AngryIpscan
MsnAIOHacks.exe/data002\AutoPlay/Docs/hacking/netpass.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Tool.Netpass
MsnAIOHacks.exe/data002\AutoPlay/Docs/hacking/PHPBB DEFACER/PHPBB DEFACER.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Tool.Phpbb
MsnAIOHacks.exe/data002\AutoPlay/Docs/hacking/phpBBAttacker.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Tool.Sanity
MsnAIOHacks.exe/data002\AutoPlay/Docs/hacking/remoteanything365/Slave.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Program.RemoteAdmin
MsnAIOHacks.exe/data002\AutoPlay/Docs/hacking/Smart-Hack Uploader/S-H Client.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Trojan.Smahak
MsnAIOHacks.exe/data002\AutoPlay/Docs/hacking/Smart-Hack Uploader/S-H Create Server.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Trojan.Smahak
MsnAIOHacks.exe/data002\AutoPlay/Docs/hacking/SniffPass.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Tool.Sniffpass
MsnAIOHacks.exe/data002\AutoPlay/Docs/hacking/SQL Inject.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Exploit.Sqlinject
MsnAIOHacks.exe/data002\AutoPlay/Docs/hacking/www2ip.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Trojan.DownLoad.13580
MsnAIOHacks.exe/data002/AutoPlay/Docs/Head Fuck Hotmail Hack.rar\Head Fuck Hotmail Hack\Edit Server.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/Head Fuck Hotmail Hack.rar Trojan.PWS.Hothack
MsnAIOHacks.exe/data002/AutoPlay/Docs/Head Fuck Hotmail Hack.rar\Head Fuck Hotmail Hack\hotmailhack.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/Head Fuck Hotmail Hack.rar Trojan.PWS.Hothack
AutoPlay/Docs/Head Fuck Hotmail Hack.rar F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack L'archive contient des éléments infectés
MsnAIOHacks.exe/data002\AutoPlay/Docs/HotFreeze 1.6.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 BackDoor.HotFreez
MsnAIOHacks.exe/data002/AutoPlay/Docs/Hotmail Hacker GOLD.rar\Hotmail Hacker GOLD\Hotmail Hacker GOLD.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/Hotmail Hacker GOLD.rar Win32.HLLM.Energy.40960
AutoPlay/Docs/Hotmail Hacker GOLD.rar F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack L'archive contient des éléments infectés
MsnAIOHacks.exe/data002\AutoPlay/Docs/Hotmail Killer 2.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Trojan.PWS.Banker.2529
MsnAIOHacks.exe/data002\AutoPlay/Docs/HoTMaiL_Hacker.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Tool.Hothack
MsnAIOHacks.exe/data002/AutoPlay/Docs/hotmailhack.rar\hotmailhack\Hotmail hack.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/hotmailhack.rar Tool.Hotmailhack
AutoPlay/Docs/hotmailhack.rar F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack L'archive contient des éléments infectés
MsnAIOHacks.exe/data002\AutoPlay/Docs/HotmailHack/HotmailHack.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 BackDoor.Generic.664
MsnAIOHacks.exe/data002\AutoPlay/Docs/HotmailHacker_XEdition/HH X-Edition.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Trojan.PWS.Hotix
MsnAIOHacks.exe/data002\AutoPlay/Docs/HotmailHacker_XEdition/server.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 BackDoor.Generic.544
MsnAIOHacks.exe/data002\AutoPlay/Docs/kitle.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Tool.Brum
MsnAIOHacks.exe/data002\AutoPlay/Docs/Locker/MSN Locker.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Tool.Msnlock
MsnAIOHacks.exe/data002/AutoPlay/Docs/Magic Password-15-SE.rar\Magic Password-15-SE\MPS-15-SE.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/Magic Password-15-SE.rar Trojan.PWS.MagicPs.15
MsnAIOHacks.exe/data002/AutoPlay/Docs/Magic Password-15-SE.rar\Magic Password-15-SE\MPS-Decoder.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/Magic Password-15-SE.rar Trojan.PWS.MagicPs.15
AutoPlay/Docs/Magic Password-15-SE.rar F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack L'archive contient des éléments infectés
MsnAIOHacks.exe/data002\AutoPlay/Docs/MSN Bomberman v3.1.2.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Flooder.Bomberman
MsnAIOHacks.exe/data002\AutoPlay/Docs/Msn Dondurucu.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Trojan.Smithfraud
MsnAIOHacks.exe/data002/AutoPlay/Docs/MSN Hacker DUC.rar/H0TM41LH4CK3R-DUC V.4.0.rar\H0TM41LH4CK3R-DUC V.4.0\H0TM41LH4CKER-DUCV F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/MSN Hacker DUC.rar/H0TM41LH4CK3R-DUC Win32.HLLW.Generic.175
MsnAIOHacks.exe/data002/AutoPlay/Docs/MSN Hacker DUC.rar/H0TM41LH4CK3R-DUC V.4.0.rar\H0TM41LH4CK3R-DUC V.4.0\H0TM41LH4CKER-DUCV F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/MSN Hacker DUC.rar/H0TM41LH4CK3R-DUC Win32.HLLW.Generic.175
MsnAIOHacks.exe/data002/AutoPlay/Docs/MSN Hacker DUC.rar/H0TM41LH4CK3R-DUC V.4.0.rar\H0TM41LH4CK3R-DUC V.4.0\H0TM41LH4CKER-DUCV F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/MSN Hacker DUC.rar/H0TM41LH4CK3R-DUC Win32.HLLW.Generic.175
MsnAIOHacks.exe/data002/AutoPlay/Docs/MSN Hacker DUC.rar/H0TM41LH4CK3R-DUC V.4.0.rar\H0TM41LH4CK3R-DUC V.4.0\H0TM41LH4CKER-DUCV F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/MSN Hacker DUC.rar/H0TM41LH4CK3R-DUC Win32.HLLW.Generic.175
H0TM41LH4CK3R-DUC V.4.0.rar F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack L'archive contient des éléments infectés
AutoPlay/Docs/MSN Hacker DUC.rar F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack L'archive contient des éléments infectés
MsnAIOHacks.exe/data002\AutoPlay/Docs/MSN Password Finder v2.0.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Tool.MsnCheck
MsnAIOHacks.exe/data002\AutoPlay/Docs/MSN passwords/MSN/Msn messanger.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 BackDoor.Generic.1669
MsnAIOHacks.exe/data002/AutoPlay/Docs/MSN Spy Lite v1.0.rar\stub.stb F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/MSN Spy Lite v1.0.rar Trojan.PWS.MSNSpy
MsnAIOHacks.exe/data002/AutoPlay/Docs/MSN Spy Lite v1.0.rar\builder.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/MSN Spy Lite v1.0.rar Trojan.MSNSpy
AutoPlay/Docs/MSN Spy Lite v1.0.rar F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack L'archive contient des éléments infectés
MsnSniffer_Setup.exe\MSNSNIFFER.EXE F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/MSN.Sniffer.1.2.+.Crack.rar/MSN.Sniff Tool.MSNSniffer
MSN.Sniffer.1.2.+.Crack\MsnSniffer_Setup.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/MSN.Sniffer.1.2.+.Crack.rar/MSN.Sniff L'archive contient des éléments infectés
AutoPlay/Docs/MSN.Sniffer.1.2.+.Crack.rar F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack L'archive contient des éléments infectés
MsnAIOHacks.exe/data002\AutoPlay/Docs/MSNPasswordRetriever.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Trojan.Fakemsn
MsnAIOHacks.exe/data002\AutoPlay/Docs/mspass.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Tool.MessenPass
MsnAIOHacks.exe/data002\AutoPlay/Docs/Nuke1[1].5/Lanzador1.5.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Tool.Lanzador
MsnAIOHacks.exe/data002\AutoPlay/Docs/Nuke1[1].5/nukemsn.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Nuke.Msn
MsnAIOHacks.exe/data002/AutoPlay/Docs/Saria Fake Logins 2.0.rar\Saria Fake Logins 2.0\Msn (Xp).exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/Saria Fake Logins 2.0.rar Trojan.Fakelog
MsnAIOHacks.exe/data002/AutoPlay/Docs/Saria Fake Logins 2.0.rar\Saria Fake Logins 2.0\Editor.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/Saria Fake Logins 2.0.rar Trojan.Fakelog
MsnAIOHacks.exe/data002/AutoPlay/Docs/Saria Fake Logins 2.0.rar\Saria Fake Logins 2.0\YAHOO.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/Saria Fake Logins 2.0.rar Trojan.Fakelog
MsnAIOHacks.exe/data002/AutoPlay/Docs/Saria Fake Logins 2.0.rar\Saria Fake Logins 2.0\Paltalk.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/Saria Fake Logins 2.0.rar Trojan.Fakelog
MsnAIOHacks.exe/data002/AutoPlay/Docs/Saria Fake Logins 2.0.rar\Saria Fake Logins 2.0\Msn (9,x,me,2000).exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/Saria Fake Logins 2.0.rar Trojan.Fakelog
AutoPlay/Docs/Saria Fake Logins 2.0.rar F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack L'archive contient des éléments infectés
MsnAIOHacks.exe/data002\AutoPlay/Docs/S-H Y! Pass Sender 1.1/S_H_Yahoo_Pass_Sender.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Trojan.PWS.Fably
MsnAIOHacks.exe/data002\AutoPlay/Docs/Ultimate Nickpopupz 2004 v0.4.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Flooder.Popapz
MsnAIOHacks.exe/data002/AutoPlay/Docs/XP Killer.rar\xpkiller.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/XP Killer.rar Trojan.KillXP
AutoPlay/Docs/XP Killer.rar F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack L'archive contient des éléments infectés
XP Killer.rar\xpkiller.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/XP-Killer.rar/XP-Killer\XP Killer.rar Trojan.KillXP
XP-Killer\XP Killer.rar F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002/AutoPlay/Docs/XP-Killer.rar/XP-Killer L'archive contient des éléments infectés
AutoPlay/Docs/XP-Killer.rar F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack L'archive contient des éléments infectés
MsnAIOHacks.exe/data002\AutoPlay/Docs/YAHOO Password stealer.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Trojan.PWS.Smartps.13
MsnAIOHacks.exe/data002\AutoPlay/Docs/yahoocrack.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 Tool.YahooCrack
MsnAIOHacks.exe/data002\AutoPlay/Docs/YahooPasswordRetrieval/Yahoo Password Retrieval.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack\MsnAIOHacks.exe/data002 BackDoor.MoSucker
data002 F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack L'archive contient des éléments infectés
MsnAIOHacks.exe F:\DIMITRI\Dimitri\ppc\Nouveau dossier\Msn.AIO.Hack Conteneur comporte des objets infectés Quarantaine.
A0053990.exe/data002/AutoPlay/Docs/AOLKicker V.1.0.0.zip\AOL Kicker v.1.0.0.exe F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331\A0053990.exe/data002/AutoPlay/Docs/AOLKicker Tool.AolKick
AutoPlay/Docs/AOLKicker V.1.0.0.zip F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331 L'archive contient des éléments infectés
A0053990.exe/data002/AutoPlay/Docs/B-S_Spy.zip\B-S_Spy/B-S EditServer.exe F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331\A0053990.exe/data002/AutoPlay/Docs/B-S_Spy.zi BackDoor.BSSpy.109
A0053990.exe/data002/AutoPlay/Docs/B-S_Spy.zip\B-S_Spy/Msn-server.exe F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331\A0053990.exe/data002/AutoPlay/Docs/B-S_Spy.zi BackDoor.Generic.70
A0053990.exe/data002/AutoPlay/Docs/B-S_Spy.zip\B-S_Spy/Net-server.exe F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331\A0053990.exe/data002/AutoPlay/Docs/B-S_Spy.zi BackDoor.Generic.71
A0053990.exe/data002/AutoPlay/Docs/B-S_Spy.zip\B-S_Spy/Ya-server.exe F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331\A0053990.exe/data002/AutoPlay/Docs/B-S_Spy.zi BackDoor.Generic.72
AutoPlay/Docs/B-S_Spy.zip F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331 L'archive contient des éléments infectés
A0053990.exe/data002\AutoPlay/Docs/cokluoturum.exe F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331\A0053990.exe/data002 Trojan.MulDrop.11303
A0053990.exe/data002/AutoPlay/Docs/Fake Login Hotmail.zip\Fake Login Hotmail/Hotmail.exe F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331\A0053990.exe/data002/AutoPlay/Docs/Fake Login Trojan.Fahoil
AutoPlay/Docs/Fake Login Hotmail.zip F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331 L'archive contient des éléments infectés
A0053990.exe/data002/AutoPlay/Docs/Fake MSN Messenger Version 5.0.rar\Fake MSN Messenger Version 5.0\fakemsn.exe F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331\A0053990.exe/data002/AutoPlay/Docs/Fake MSN M Trojan.PWS.Fakemsn.50
AutoPlay/Docs/Fake MSN Messenger Version 5.0.rar F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331 L'archive contient des éléments infectés
A0053990.exe/data002/AutoPlay/Docs/Fake_Hotmail_Login_Screen.zip\hotmailhack/Hotmail hack.exe F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331\A0053990.exe/data002/AutoPlay/Docs/Fake_Hotma Tool.Hotmailhack
AutoPlay/Docs/Fake_Hotmail_Login_Screen.zip F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331 L'archive contient des éléments infectés
A0053990.exe/data002/AutoPlay/Docs/fakeypager.zip\YPager.exe F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331\A0053990.exe/data002/AutoPlay/Docs/fakeypager Trojan.PWS.Cicure
AutoPlay/Docs/fakeypager.zip F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331 L'archive contient des éléments infectés
A0053990.exe/data002/AutoPlay/Docs/fmsn.zip\fakemsn.exe F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331\A0053990.exe/data002/AutoPlay/Docs/fmsn.zip Trojan.PWS.Fakemsn.10
AutoPlay/Docs/fmsn.zip F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331 L'archive contient des éléments infectés
A0053990.exe/data002\AutoPlay/Docs/freeze.exe F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331\A0053990.exe/data002 Tool.Frozen
A0053990.exe/data002/AutoPlay/Docs/Give me your pass v1.0.rar\Give me your pass v1.0\Give me your pass V1.0.exe F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331\A0053990.exe/data002/AutoPlay/Docs/Give me yo BackDoor.MPass
A0053990.exe/data002/AutoPlay/Docs/Give me your pass v1.0.rar\Give me your pass v1.0\mspass.exe F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331\A0053990.exe/data002/AutoPlay/Docs/Give me yo Tool.PassView
AutoPlay/Docs/Give me your pass v1.0.rar F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331 L'archive contient des éléments infectés
A0053990.exe/data002\AutoPlay/Docs/Hack MSN Password/msnc2.exe F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331\A0053990.exe/data002 Tool.Msnacc
A0053990.exe/data002\AutoPlay/Docs/hacking/BluesPortScan.exe F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331\A0053990.exe/data002 Trojan.Hunt.28680
A0053990.exe/data002\AutoPlay/Docs/hacking/FTP Brute Forcer.exe F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331\A0053990.exe/data002 Tool.FtpBrute
A0053990.exe/data002/AutoPlay/Docs/hacking/HooK-TooLbOx.exe\data001 F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331\A0053990.exe/data002/AutoPlay/Docs/hacking/Ho Trojan.MulDrop.1185
A0053990.exe/data002/AutoPlay/Docs/hacking/HooK-TooLbOx.exe\data002 F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331\A0053990.exe/data002/AutoPlay/Docs/hacking/Ho Trojan.MulDrop.1230
AutoPlay/Docs/hacking/HooK-TooLbOx.exe F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331 Conteneur comporte des objets infectés
A0053990.exe/data002\AutoPlay/Docs/hacking/ipscan.exe F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331\A0053990.exe/data002 Tool.AngryIpscan
A0053990.exe/data002\AutoPlay/Docs/hacking/netpass.exe F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331\A0053990.exe/data002 Tool.Netpass
A0053990.exe/data002\AutoPlay/Docs/hacking/PHPBB DEFACER/PHPBB DEFACER.exe F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331\A0053990.exe/data002 Tool.Phpbb
A0053990.exe/data002\AutoPlay/Docs/hacking/phpBBAttacker.exe F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331\A0053990.exe/data002 Tool.Sanity
A0053990.exe/data002\AutoPlay/Docs/hacking/remoteanything365/Slave.exe F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331\A0053990.exe/data002 Program.RemoteAdmin
A0053990.exe/data002\AutoPlay/Docs/hacking/Smart-Hack Uploader/S-H Client.exe F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331\A0053990.exe/data002 Trojan.Smahak
A0053990.exe/data002\AutoPlay/Docs/hacking/Smart-Hack Uploader/S-H Create Server.exe F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331\A0053990.exe/data002 Trojan.Smahak
A0053990.exe/data002\AutoPlay/Docs/hacking/SniffPass.exe F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331\A0053990.exe/data002 Tool.Sniffpass
A0053990.exe/data002\AutoPlay/Docs/hacking/SQL Inject.exe F:\System Volume Information\_restore{B5742A74-54EE-49F9-907D-499147A03F1B}\RP331\A0053990.exe/data002 Exploit.Sqlinject
A0053990.ex
Je serais toi ,je virerais rapidement toutes les co.... (cracks ,keygens......) que tu as sur le pc,si tu veux avoir encore pouvoir utiliser ton pc.C'est quoi ces programmes de hack que tu as sur le pc?
>>>>>Ce logiciel n'est à utiliser que prescrit par un helper qualifié et formé à l'outil.<<<<
>>>>Ne pas utiliser en dehors de ce cas de figure : dangereux!<<<<<<<<<<
=============================================================================================
Lors de son exécution,
ComboFix va vérifier si la Console de récupération Microsoft Windows est installée. Avec des infections comme celles d'aujourd'hui, il est fortement conseillé de l'avoir pré-installée sur votre PC avant toute suppression de nuisibles.
Elle vous permettra de démarrer dans un mode spécial, de récupération (réparation), qui nous permet de vous aider plus facilement si jamais votre ordinateur rencontre un problème après une tentative de nettoyage.
Suivez les invites pour permettre à ComboFix de télécharger et installer la Console de récupération Microsoft Windows
et lorsque cela vous est demandé, acceptez le Contrat de Licence Utilisateur Final pour installer la Console de récupération Microsoft Windows.
Sous XP
Sous Vista
**Note importante: Si la Console de récupération Microsoft Windows est déjà installée, ComboFix continuera ses procédures de suppression de nuisibles.
A Lire , Impératif !!!!
Télécharges Combofix :
Et important, enregistre le sous "moi.exe" sur le bureau.
Avant d'utiliser ComboFix :
? Déconnecte toi d'internet et referme les fenêtres de tous les programmes en cours.
? Désactive provisoirement et seulement le temps de l'utilisation de ComboFix, la protection en temps réel de ton Antivirus et de tes Antispywares, qui peuvent gêner fortement la procédure de recherche et de nettoyage de l'outil.
Une fois fait, sur ton bureau double-clic sur moi.exe
- Répond oui au message d'avertissement, pour que le programme commence à procéder à l'analyse du pc.
/!\ Pendant la durée de cette étape, ne te sert pas du pc et n'ouvre aucun programmes.
- En fin de scan il est possible que ComboFix ait besoin de redémarrer le pc pour finaliser la désinfection\recherche, laisses-le faire.
- Un rapport s'ouvrira ensuite dans le bloc notes, ce fichier rapport Combofix.txt, est automatiquement sauvegardé et rangé à C:\Combofix.txt)
? Réactive la protection en temps réel de ton Antivirus et de tes Antispywares, avant de te reconnecter à internet.
? Reviens sur le forum, et
copie et colle la totalité du contenu de C:\Combofix.txt dans ton prochain message.
--
>>>>>Ce logiciel n'est à utiliser que prescrit par un helper qualifié et formé à l'outil.<<<<
>>>>Ne pas utiliser en dehors de ce cas de figure : dangereux!<<<<<<<<<<
=============================================================================================
Lors de son exécution,
ComboFix va vérifier si la Console de récupération Microsoft Windows est installée. Avec des infections comme celles d'aujourd'hui, il est fortement conseillé de l'avoir pré-installée sur votre PC avant toute suppression de nuisibles.
Elle vous permettra de démarrer dans un mode spécial, de récupération (réparation), qui nous permet de vous aider plus facilement si jamais votre ordinateur rencontre un problème après une tentative de nettoyage.
Suivez les invites pour permettre à ComboFix de télécharger et installer la Console de récupération Microsoft Windows
et lorsque cela vous est demandé, acceptez le Contrat de Licence Utilisateur Final pour installer la Console de récupération Microsoft Windows.
Sous XP
Sous Vista
**Note importante: Si la Console de récupération Microsoft Windows est déjà installée, ComboFix continuera ses procédures de suppression de nuisibles.
A Lire , Impératif !!!!
Télécharges Combofix :
Et important, enregistre le sous "moi.exe" sur le bureau.
Avant d'utiliser ComboFix :
? Déconnecte toi d'internet et referme les fenêtres de tous les programmes en cours.
? Désactive provisoirement et seulement le temps de l'utilisation de ComboFix, la protection en temps réel de ton Antivirus et de tes Antispywares, qui peuvent gêner fortement la procédure de recherche et de nettoyage de l'outil.
Une fois fait, sur ton bureau double-clic sur moi.exe
- Répond oui au message d'avertissement, pour que le programme commence à procéder à l'analyse du pc.
/!\ Pendant la durée de cette étape, ne te sert pas du pc et n'ouvre aucun programmes.
- En fin de scan il est possible que ComboFix ait besoin de redémarrer le pc pour finaliser la désinfection\recherche, laisses-le faire.
- Un rapport s'ouvrira ensuite dans le bloc notes, ce fichier rapport Combofix.txt, est automatiquement sauvegardé et rangé à C:\Combofix.txt)
? Réactive la protection en temps réel de ton Antivirus et de tes Antispywares, avant de te reconnecter à internet.
? Reviens sur le forum, et
copie et colle la totalité du contenu de C:\Combofix.txt dans ton prochain message.
--
Je ne savais pas que j'avais des programmes de Hack, c'est dans les dossiers de mon frère.
J'envoie Combofix.
J'envoie Combofix.
d'accord,ben dis à ton frere que s'il continue ,il va devoir te racheter un pc car les hacker en herbe sont la proie facile des vrais hackers
D'accord j'ai vais lui dire de tout supprimer, merci.
Voila le rapport de Combofix :
ComboFix 09-04-16.02 - Xavier 16/04/2009 16:27.1 - NTFSx86
Microsoft Windows XP Professionnel 5.1.2600.2.1252.33.1036.18.2047.1610 [GMT 2:00]
Lancé depuis: c:\documents and settings\Xavier\Bureau\ComboFix.exe
AV: Avira AntiVir PersonalEdition Classic *On-access scanning disabled* (Updated)
.
(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\windows\system32\uninstall.exe
.
((((((((((((((((((((((((((((( Fichiers créés du 2009-03-16 au 2009-04-16 ))))))))))))))))))))))))))))))))))))
.
2009-04-15 23:04 . 2009-04-15 23:13 -------- d-----w c:\documents and settings\Xavier\DoctorWeb
2009-04-15 20:38 . 2009-04-15 20:38 -------- d-sha-r C:\autorun.inf
2009-04-15 20:28 . 2009-04-15 20:54 -------- d-----w C:\UsbFix
2009-04-14 17:29 . 2009-04-14 17:29 -------- d-----w c:\documents and settings\All Users\Application Data\SUPERAntiSpyware.com
2009-04-14 17:29 . 2009-04-14 17:29 -------- d-----w c:\documents and settings\Xavier\Application Data\SUPERAntiSpyware.com
2009-04-14 16:32 . 2009-04-15 22:59 -------- d-----w c:\windows\ERUNT
2009-04-14 16:32 . 2009-04-14 16:44 -------- d-----w C:\Backups
2009-04-10 16:33 . 2009-04-10 16:33 -------- d-----w c:\documents and settings\Xavier\Local Settings\Application Data\Rockstar Games
2009-04-09 17:15 . 2009-04-09 17:16 -------- d-----w c:\windows\system32\drivers\umdf
2009-04-09 17:14 . 2009-04-09 17:14 -------- d-----w c:\windows\system32\xlive
2009-04-09 16:55 . 2009-04-09 16:55 -------- d-----w c:\windows\system32\fr-FR
2009-04-09 16:53 . 2009-04-13 14:37 854632 ----a-w c:\documents and settings\LocalService\Local Settings\Application Data\FontCache3.0.0.0.dat
2009-04-09 16:51 . 2009-04-09 16:55 -------- d-----w c:\windows\system32\XPSViewer
2009-04-09 16:50 . 2006-06-29 11:07 14048 ------w c:\windows\system32\spmsg2.dll
2009-03-24 15:35 . 2009-03-24 16:00 5 ----a-w c:\windows\sbacknt.bin
2009-03-24 15:35 . 2009-03-24 15:35 152904 ----a-w c:\windows\system32\vghd.scr
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-04-16 14:23 . 2009-03-08 11:16 -------- d-----w c:\documents and settings\Xavier\Application Data\Free Download Manager
2009-04-16 12:51 . 2008-06-12 08:38 -------- d-----w c:\documents and settings\Xavier\Application Data\Azureus
2009-04-16 09:17 . 2009-03-08 11:16 -------- d-----w c:\documents and settings\Xavier\Application Data\Software Informer
2009-04-15 22:59 . 2009-04-15 22:59 2296 ----a-w C:\TCleaner.txt
2009-04-15 22:59 . 2009-04-14 14:19 -------- d-----w c:\program files\Trend Micro
2009-04-15 21:11 . 2009-02-07 14:39 -------- d-----w c:\documents and settings\All Users\Application Data\Google Updater
2009-04-15 17:46 . 2001-08-28 12:00 83286 ----a-w c:\windows\system32\perfc00C.dat
2009-04-15 17:46 . 2001-08-28 12:00 504910 ----a-w c:\windows\system32\perfh00C.dat
2009-04-14 17:29 . 2009-04-14 17:29 -------- d-----w c:\program files\SUPERAntiSpyware
2009-04-14 17:28 . 2008-02-25 18:56 -------- d-----w c:\program files\Fichiers communs\Wise Installation Wizard
2009-04-10 16:08 . 2008-02-02 16:08 -------- d--h--w c:\program files\InstallShield Installation Information
2009-04-10 11:30 . 2009-04-10 10:32 -------- d-----w c:\program files\MediaInfo
2009-04-10 10:13 . 2009-04-10 10:13 -------- d-----w c:\program files\KC Softwares
2009-04-09 19:11 . 2008-02-02 18:05 74200 ----a-w c:\documents and settings\Xavier\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2009-04-09 17:14 . 2009-04-09 17:14 -------- d-----w c:\program files\Microsoft Games for Windows - LIVE
2009-04-09 16:53 . 2008-02-15 19:05 -------- d-----w c:\program files\MSBuild
2009-04-09 16:50 . 2009-04-09 16:50 -------- d-----w c:\program files\Reference Assemblies
2009-04-09 13:16 . 2009-04-09 13:16 -------- d-----w c:\program files\Ubisoft
2009-04-08 12:05 . 2008-05-01 13:26 -------- d-----w c:\documents and settings\All Users\Application Data\TrackMania
2009-04-05 17:19 . 2008-04-18 20:18 365 ----a-w C:\wepkeys.txt
2009-03-25 19:33 . 2008-03-19 17:56 -------- d-----w c:\program files\Bonjour
2009-03-16 11:21 . 2009-03-16 11:21 129 ----a-w c:\documents and settings\Xavier\Local Settings\Application Data\fusioncache.dat
2009-03-15 13:03 . 2009-03-15 12:50 -------- d-----w c:\program files\Battle for Wesnoth 1.5.12-1.6rc1
2009-03-14 17:10 . 2009-03-14 17:03 -------- d-----w c:\program files\Stellarium
2009-03-14 17:03 . 2009-03-14 17:03 -------- d-----w c:\documents and settings\Xavier\Application Data\Stellarium
2009-03-14 16:44 . 2009-03-14 16:44 -------- d-----w c:\program files\Yahoo!
2009-03-14 10:18 . 2009-03-13 22:20 -------- d-----w c:\program files\Gamenext
2009-03-14 10:17 . 2009-03-13 22:35 -------- d---a-w c:\documents and settings\All Users\Application Data\TEMP
2009-03-13 22:20 . 2009-03-13 22:20 -------- d-----w c:\program files\Oberon Media
2009-03-13 22:20 . 2009-03-13 22:20 -------- d-----w c:\program files\Fichiers communs\Oberon Media
2009-03-09 12:48 . 2008-02-03 21:30 -------- d-----w c:\documents and settings\Xavier\Application Data\dvdcss
2009-03-08 11:16 . 2009-03-08 11:16 -------- d-----w c:\program files\Free Download Manager
2009-03-08 11:16 . 2009-03-08 11:16 -------- d-----w c:\program files\Software Informer
2009-03-08 11:16 . 2009-03-08 11:16 -------- d-----w c:\documents and settings\All Users\Application Data\FreeDownloadManager.ORG
2009-03-08 11:06 . 2009-03-08 11:04 -------- d-----w c:\program files\Internet Download Manager
2009-03-08 11:05 . 2008-03-24 18:49 -------- d-----w c:\documents and settings\Xavier\Application Data\DMCache
2009-03-08 11:04 . 2009-03-08 11:04 -------- d-----w c:\documents and settings\Xavier\Application Data\IDM
2008-07-29 18:54 . 2008-02-09 10:47 22328 ----a-w c:\documents and settings\Xavier\Application Data\PnkBstrK.sys
.
((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
REGEDIT4
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{C94E154B-1459-4A47-966B-4B843BEFC7DB}"= "c:\program files\AskSearch\bin\DefaultSearch.dll" [2008-12-09 95624]
[HKEY_CLASSES_ROOT\clsid\{c94e154b-1459-4a47-966b-4b843befc7db}]
[HKEY_CLASSES_ROOT\DefaultSearch.DefaultSearchHook.1]
[HKEY_CLASSES_ROOT\TypeLib\{EC73A159-0736-4EF3-972D-6EA9B2278495}]
[HKEY_CLASSES_ROOT\DefaultSearch.DefaultSearchHook]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2004-08-19 15360]
"ISUSPM"="c:\program files\Fichiers communs\InstallShield\UpdateService\ISUSPM.exe" [2006-09-10 218032]
"SuperCopier2.exe"="c:\installation logiciels\Super Copieur\SuperCopier2\SuperCopier2.exe" [2006-07-07 1052672]
"Free Download Manager"="c:\program files\Free Download Manager\fdm.exe" [2009-01-31 3399727]
"Software Informer"="c:\program files\Software Informer\softinfo.exe" [2009-01-30 1708101]
"SUPERAntiSpyware"="c:\program files\SUPERAntiSpyware\SUPERAntiSpyware.exe" [2009-03-23 1830128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SoundMAXPnP"="c:\program files\Analog Devices\Core\smax4pnp.exe" [2006-05-01 843776]
"JMB36X Configure"="c:\windows\system32\JMRaidTool.exe" [2006-06-02 385024]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2006-08-11 7630848]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2006-08-11 86016]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2006-10-26 31016]
"SunJavaUpdateSched"="c:\program files\Java\jre1.6.0_06\bin\jusched.exe" [2008-03-25 144784]
"AppleSyncNotifier"="c:\program files\Fichiers communs\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe" [2008-10-01 111936]
"PCMService"="c:\installation logiciels\Power Cinema\PowerCinema\PCMService.exe" [2007-02-09 159744]
"ANIWZCS2Service"="c:\program files\ANI\ANIWZCS2 Service\WZCSLDR2.exe" [2007-01-19 49152]
"avgnt"="c:\program files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" [2008-06-12 266497]
"QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2008-09-06 413696]
"nwiz"="nwiz.exe" - c:\windows\system32\nwiz.exe [2006-08-11 1519616]
"BluetoothAuthenticationAgent"="bthprops.cpl" - c:\windows\system32\bthprops.cpl [2004-08-19 110592]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2004-08-19 15360]
c:\documents and settings\Xavier\Menu D‚marrer\Programmes\D‚marrage\
Yahoo! Widgets.lnk - c:\program files\Yahoo!\Widgets\YahooWidgets.exe [2007-12-12 3746856]
c:\documents and settings\All Users\Menu D‚marrer\Programmes\D‚marrage\ASUS\ASUS Splendid
ASUS Splendid.lnk - c:\program files\ASUS\ASUS Splendid\ASUSplendid.exe [2008-2-3 651264]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"DisableRegedit"= 0 (0x0)
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system]
"DisableRegedit"= 0 (0x0)
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "c:\program files\SUPERAntiSpyware\SASSEH.DLL" [2008-05-13 77824]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
2008-12-22 10:05 356352 ----a-w c:\program files\SUPERAntiSpyware\SASWINLO.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"VIDC.I420"= i420vfw.dll
"vidc.asv2"= asusasv2.dll
"msacm.l3codecp"= l3codecp.acm
"msacm.mkdmp3enc"= c:\instal~1\POWERC~1\POWERC~1\Kernel\Burner\MKDMP3Enc.ACM
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Electronic Arts\\Crytek\\Crysis\\Bin32\\CrysisDedicatedServer.exe"=
"c:\\WINDOWS\\system32\\PnkBstrA.exe"=
"c:\\WINDOWS\\system32\\PnkBstrB.exe"=
"c:\\Program Files\\Activision\\Call of Duty 4 - Modern Warfare\\iw3mp.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"=
"c:\\Installation Jeux\\Warhammer® Mark of Chaos\\Warhammer.exe"=
"d:\\Xavier\\Jeux\\TrackMania Nations ESWC\\TmNationsESWC.exe"=
"c:\\Installation Jeux\\Tom Clancy's Rainbow Six Vegas\\Binaries\\R6Vegas_Game.exe"=
"c:\\Installation Jeux\\Tom Clancy's Rainbow Six Vegas\\Binaries\\R6Vegas_Launcher.exe"=
"c:\\Installation Jeux\\TmNationsForever\\TmNationsForever\\TmForever.exe"=
"c:\\Program Files\\Messenger\\msmsgs.exe"=
"c:\\Installation Logiciels\\Azureus\\Azureus.exe"=
"c:\\Installation Jeux\\Tom Clancy's Rainbow Six Vegas 2\\Binaries\\R6Vegas2_Game.exe"=
"c:\\Installation Jeux\\Tom Clancy's Rainbow Six Vegas 2\\Binaries\\R6Vegas2_Launcher.exe"=
"c:\\Installation Jeux\\Tom Clancy's Rainbow Six Vegas 2\\Binaries\\RainbowSixVegas2_SADS.exe"=
"c:\\Installation Jeux\\RON\\rise.exe"=
"c:\\Installation Logiciels\\iTunes\\iTunes.exe"=
"c:\\Installation Logiciels\\Power Cinema\\PowerCinema\\PowerCinema.exe"=
"c:\\Installation Logiciels\\Power Cinema\\PowerCinema\\PCMService.exe"=
"c:\\Installation Jeux\\Worms 4 Mayhem\\WORMS 4 MAYHEM.EXE"=
"c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\livecall.exe"=
"c:\\Program Files\\Activision\\Call of Duty - World at War\\CoDWaWmp.exe"=
"c:\\Program Files\\Activision\\Call of Duty - World at War\\CoDWaW.exe"=
"c:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"c:\\Program Files\\Ubisoft\\Tom Clancy's H.A.W.X\\HAWX.exe"=
"c:\\Installation Jeux\\GTA IV\\Rockstar Games Social Club\\RGSCLauncher.exe"=
"c:\\Installation Jeux\\GTA 4\\Grand Theft Auto IV\\LaunchGTAIV.exe"=
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"17143:TCP"= 17143:TCP:NortonAV
"13637:TCP"= 13637:TCP:NortonAV
"12744:TCP"= 12744:TCP:NortonAV
"14240:TCP"= 14240:TCP:NortonAV
"12826:TCP"= 12826:TCP:NortonAV
"18446:TCP"= 18446:TCP:NortonAV
R2 gupdate1c98c60aa0fe60c;Google Update Service (gupdate1c98c60aa0fe60c);c:\program files\Google\Update\GoogleUpdate.exe [2009-02-11 133104]
R3 PVUSB;CESG502 USB Driver;c:\windows\system32\DRIVERS\CESG502.sys [2002-06-12 40672]
S1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\SASDIFSV.SYS [2009-03-23 9968]
S1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL.sys [2009-03-23 72944]
S3 3xHybrid;ASUSTek SAA713x PCI Card;c:\windows\system32\DRIVERS\3xHybrid.sys [2007-01-25 2831232]
S3 A3AB;D-Link AirPro 802.11a/b Wireless Adapter Service(A3AB);c:\windows\system32\DRIVERS\A3AB.sys [2006-10-15 472832]
S3 SASENUM;SASENUM;c:\program files\SUPERAntiSpyware\SASENUM.SYS [2009-03-23 7408]
--- Autres Services/Pilotes en mémoire ---
*Deregistered* - mchInjDrv
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{0e367d09-0d42-11dd-9664-0019e06896df}]
\ll\open\Command - G:\RavMon.exe
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{9cfafbe0-c5f0-11dd-81f2-cc6266afd53d}]
\Shell\Shell00\Command - G:\Start.exe
.
Contenu du dossier 'Tâches planifiées'
2009-04-15 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\program files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 10:34]
2009-04-16 c:\windows\Tasks\Google Software Updater.job
- c:\program files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-02-07 20:41]
2009-04-16 c:\windows\Tasks\GoogleUpdateTaskMachine.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-02-11 15:51]
.
- - - - ORPHELINS SUPPRIMES - - - -
WebBrowser-{3041D03E-FD4B-44E0-B742-2D9B88305F98} - (no file)
HKCU-Run-fsm - (no file)
.
------- Examen supplémentaire -------
.
mWindow Title =
uInternet Settings,ProxyOverride = *.local
uSearchURL,(Default) = hxxp://toolbar.ask.com/toolbarv/askRedirect?o=10611&gct=&gc=1&q=%s
IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
IE: Tout télécharger avec Free Download Manager - file://c:\program files\Free Download Manager\dlall.htm
IE: Télécharger avec Free Download Manager - file://c:\program files\Free Download Manager\dllink.htm
IE: Télécharger la sélection avec Free Download Manager - file://c:\program files\Free Download Manager\dlselected.htm
IE: Télécharger la vidéo avec Free Download Manager - file://c:\program files\Free Download Manager\dlfvideo.htm
FF - ProfilePath - c:\documents and settings\Xavier\Application Data\Mozilla\Firefox\Profiles\m81c3k88.default\
FF - prefs.js: browser.search.selectedEngine - Deezer
FF - prefs.js: keyword.URL - hxxp://toolbar.ask.com/toolbarv/askRedirect?o=10611&gct=&gc=1&q=
FF - component: c:\program files\Free Download Manager\Firefox\Extension\components\vmsfdmff.dll
FF - plugin: c:\installation logiciels\iTunes\Mozilla Plugins\npitunes.dll
FF - plugin: c:\program files\Google\Google Updater\2.4.1536.6592\npCIDetect13.dll
FF - plugin: c:\program files\Google\Update\1.2.141.5\npGoogleOneClick7.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\npyaxmpb.dll
.
**************************************************************************
catchme 0.3.1375 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-04-16 16:28
Windows 5.1.2600 Service Pack 2 NTFS
Recherche de processus cachés ...
Recherche d'éléments en démarrage automatique cachés ...
Recherche de fichiers cachés ...
Scan terminé avec succès
Fichiers cachés: 0
**************************************************************************
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\mchInjDrv]
"ImagePath"="\??\c:\docume~1\Xavier\LOCALS~1\Temp\mc23.tmp"
.
--------------------- CLES DE REGISTRE BLOQUEES ---------------------
[HKEY_USERS\S-1-5-21-1757981266-1788223648-839522115-1003\Software\Microsoft\SystemCertificates\AddressBook*]
@Allowed: (Read) (RestrictedCode)
@Allowed: (Read) (RestrictedCode)
[HKEY_USERS\S-1-5-21-1757981266-1788223648-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\{C93C54F0-C03C-D9D6-4488-9355E205D6D7}*]
@Allowed: (Read) (RestrictedCode)
@Allowed: (Read) (RestrictedCode)
"abhihnfhojcpghadlpgakldgmjhcninnlo"=hex:6a,61,6f,63,6c,61,64,67,6b,68,66,61,
6b,69,6e,67,6a,6a,6f,68,00,53
"pafhbaieieaejgdamjibmdiolalcmfda"=hex:6a,61,61,64,66,61,66,6e,64,63,67,63,66,
6e,6c,62,63,6f,6d,61,00,53
[HKEY_USERS\S-1-5-21-1757981266-1788223648-839522115-1003\Software\Microsoft\Windows Mobile Disc\W*i*n*d*o*w*s* *M*o*b*i*l*e*"!\CriticalAppInstall\ActiveSync]
"Name"="ActiveSync"
"DisplayName"="Microsoft ActiveSync"
"Param1"="ActiveSync"
"Type"="wellknown"
"Order"=dword:00000001
"State"=dword:0000000b
[HKEY_USERS\S-1-5-21-1757981266-1788223648-839522115-1003\Software\Microsoft\Windows Mobile Disc\W*i*n*d*o*w*s* *M*o*b*i*l*e*"!\CriticalAppInstall\IESettings]
"Name"="IESettings"
"Type"="IESettings"
"Order"=dword:00000004
"State"=dword:0000000b
[HKEY_USERS\S-1-5-21-1757981266-1788223648-839522115-1003\Software\Microsoft\Windows Mobile Disc\W*i*n*d*o*w*s* *M*o*b*i*l*e*"!\CriticalAppInstall\MediaFiles]
"Name"="MediaFiles"
"Type"="MediaFiles"
"Order"=dword:00000003
"State"=dword:0000000b
[HKEY_USERS\S-1-5-21-1757981266-1788223648-839522115-1003\Software\Microsoft\Windows Mobile Disc\W*i*n*d*o*w*s* *M*o*b*i*l*e*"!\CriticalAppInstall\NPW]
"Name"="NPW"
"Param1"="NPW"
"Type"="wellknown"
"Order"=dword:00000002
"State"=dword:0000000b
[HKEY_USERS\S-1-5-21-1757981266-1788223648-839522115-1003\Software\Microsoft\Windows Mobile Disc\W*i*n*d*o*w*s* *M*o*b*i*l*e*"!\CriticalAppInstall\Outlook]
"Name"="Outlook"
"DisplayName"="Microsoft Outlook"
"Param1"="Outlook"
"Type"="wellknown"
"Order"=dword:00000000
"State"=dword:00000020
[HKEY_USERS\S-1-5-21-1757981266-1788223648-839522115-1003\Software\SecuROM\!CAUTION! NEVER A OR CHANGE ANY KEY*]
"??"=hex:28,bf,2a,38,a8,88,dc,18,2b,b8,5b,21,d5,27,39,37,2e,32,0a,4c,34,e2,75,
98,de,93,33,4d,dd,6b,23,58,e6,a0,51,62,19,47,f7,65,b5,44,af,e7,4d,ac,d4,e2,\
"??"=hex:67,0e,c9,f8,fb,2d,10,6d,f8,68,15,86,7d,a7,28,1a
[HKEY_USERS\S-1-5-21-1757981266-1788223648-839522115-1003\Software\SecuROM\License information*]
"datasecu"=hex:2a,63,33,23,71,c9,36,d4,ca,38,77,ba,57,66,f0,14,3e,9b,e7,ae,f9,
b7,fb,73,0f,51,b4,16,79,fe,e9,ad,b3,78,47,72,5a,15,a6,09,4d,9c,29,a6,61,f5,\
"rkeysecu"=hex:29,23,be,84,e1,6c,d6,ae,52,90,49,f1,f1,bb,e9,eb
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{7B8E9164-324D-4A2E-A46D-0165FB2000EC}]
@Denied: (Full) (Everyone)
"scansk"=hex(0):7e,af,16,42,4e,69,49,3f,02,c0,36,ce,66,2d,a8,38,18,62,35,fe,3f,
3a,37,6f,f4,95,9d,09,43,12,5e,74,b9,9d,49,e0,6d,9a,e8,f7,00,00,00,00,00,00,\
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{e05be328-3025-496a-914e-c414e4b18480}]
@Denied: (Full) (Everyone)
"Model"=dword:00000126
"Therad"=dword:0000001d
"MData"=hex(0):cb,9b,ad,ef,27,7d,29,69,f5,02,f0,76,aa,4a,f1,7c,d3,d9,67,7f,6a,
4b,7b,ad,04,7a,b1,b5,76,9b,27,47,fe,9b,c9,4d,ce,e8,10,45,ff,de,1b,59,3f,a3,\
.
--------------------- DLLs chargées dans les processus actifs ---------------------
- - - - - - - > 'winlogon.exe'(536)
c:\program files\SUPERAntiSpyware\SASWINLO.dll
.
Heure de fin: 2009-04-16 16:29
ComboFix-quarantined-files.txt 2009-04-16 14:29
Avant-CF: 7 731 904 512 octets libres
Après-CF: 7 759 814 656 octets libres
WindowsXP-KB310994-SP2-Pro-BootDisk-FRA.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professionnel" /noexecute=optin /fastdetect
291 --- E O F --- 2008-11-13 17:16
Voila le rapport de Combofix :
ComboFix 09-04-16.02 - Xavier 16/04/2009 16:27.1 - NTFSx86
Microsoft Windows XP Professionnel 5.1.2600.2.1252.33.1036.18.2047.1610 [GMT 2:00]
Lancé depuis: c:\documents and settings\Xavier\Bureau\ComboFix.exe
AV: Avira AntiVir PersonalEdition Classic *On-access scanning disabled* (Updated)
.
(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\windows\system32\uninstall.exe
.
((((((((((((((((((((((((((((( Fichiers créés du 2009-03-16 au 2009-04-16 ))))))))))))))))))))))))))))))))))))
.
2009-04-15 23:04 . 2009-04-15 23:13 -------- d-----w c:\documents and settings\Xavier\DoctorWeb
2009-04-15 20:38 . 2009-04-15 20:38 -------- d-sha-r C:\autorun.inf
2009-04-15 20:28 . 2009-04-15 20:54 -------- d-----w C:\UsbFix
2009-04-14 17:29 . 2009-04-14 17:29 -------- d-----w c:\documents and settings\All Users\Application Data\SUPERAntiSpyware.com
2009-04-14 17:29 . 2009-04-14 17:29 -------- d-----w c:\documents and settings\Xavier\Application Data\SUPERAntiSpyware.com
2009-04-14 16:32 . 2009-04-15 22:59 -------- d-----w c:\windows\ERUNT
2009-04-14 16:32 . 2009-04-14 16:44 -------- d-----w C:\Backups
2009-04-10 16:33 . 2009-04-10 16:33 -------- d-----w c:\documents and settings\Xavier\Local Settings\Application Data\Rockstar Games
2009-04-09 17:15 . 2009-04-09 17:16 -------- d-----w c:\windows\system32\drivers\umdf
2009-04-09 17:14 . 2009-04-09 17:14 -------- d-----w c:\windows\system32\xlive
2009-04-09 16:55 . 2009-04-09 16:55 -------- d-----w c:\windows\system32\fr-FR
2009-04-09 16:53 . 2009-04-13 14:37 854632 ----a-w c:\documents and settings\LocalService\Local Settings\Application Data\FontCache3.0.0.0.dat
2009-04-09 16:51 . 2009-04-09 16:55 -------- d-----w c:\windows\system32\XPSViewer
2009-04-09 16:50 . 2006-06-29 11:07 14048 ------w c:\windows\system32\spmsg2.dll
2009-03-24 15:35 . 2009-03-24 16:00 5 ----a-w c:\windows\sbacknt.bin
2009-03-24 15:35 . 2009-03-24 15:35 152904 ----a-w c:\windows\system32\vghd.scr
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-04-16 14:23 . 2009-03-08 11:16 -------- d-----w c:\documents and settings\Xavier\Application Data\Free Download Manager
2009-04-16 12:51 . 2008-06-12 08:38 -------- d-----w c:\documents and settings\Xavier\Application Data\Azureus
2009-04-16 09:17 . 2009-03-08 11:16 -------- d-----w c:\documents and settings\Xavier\Application Data\Software Informer
2009-04-15 22:59 . 2009-04-15 22:59 2296 ----a-w C:\TCleaner.txt
2009-04-15 22:59 . 2009-04-14 14:19 -------- d-----w c:\program files\Trend Micro
2009-04-15 21:11 . 2009-02-07 14:39 -------- d-----w c:\documents and settings\All Users\Application Data\Google Updater
2009-04-15 17:46 . 2001-08-28 12:00 83286 ----a-w c:\windows\system32\perfc00C.dat
2009-04-15 17:46 . 2001-08-28 12:00 504910 ----a-w c:\windows\system32\perfh00C.dat
2009-04-14 17:29 . 2009-04-14 17:29 -------- d-----w c:\program files\SUPERAntiSpyware
2009-04-14 17:28 . 2008-02-25 18:56 -------- d-----w c:\program files\Fichiers communs\Wise Installation Wizard
2009-04-10 16:08 . 2008-02-02 16:08 -------- d--h--w c:\program files\InstallShield Installation Information
2009-04-10 11:30 . 2009-04-10 10:32 -------- d-----w c:\program files\MediaInfo
2009-04-10 10:13 . 2009-04-10 10:13 -------- d-----w c:\program files\KC Softwares
2009-04-09 19:11 . 2008-02-02 18:05 74200 ----a-w c:\documents and settings\Xavier\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2009-04-09 17:14 . 2009-04-09 17:14 -------- d-----w c:\program files\Microsoft Games for Windows - LIVE
2009-04-09 16:53 . 2008-02-15 19:05 -------- d-----w c:\program files\MSBuild
2009-04-09 16:50 . 2009-04-09 16:50 -------- d-----w c:\program files\Reference Assemblies
2009-04-09 13:16 . 2009-04-09 13:16 -------- d-----w c:\program files\Ubisoft
2009-04-08 12:05 . 2008-05-01 13:26 -------- d-----w c:\documents and settings\All Users\Application Data\TrackMania
2009-04-05 17:19 . 2008-04-18 20:18 365 ----a-w C:\wepkeys.txt
2009-03-25 19:33 . 2008-03-19 17:56 -------- d-----w c:\program files\Bonjour
2009-03-16 11:21 . 2009-03-16 11:21 129 ----a-w c:\documents and settings\Xavier\Local Settings\Application Data\fusioncache.dat
2009-03-15 13:03 . 2009-03-15 12:50 -------- d-----w c:\program files\Battle for Wesnoth 1.5.12-1.6rc1
2009-03-14 17:10 . 2009-03-14 17:03 -------- d-----w c:\program files\Stellarium
2009-03-14 17:03 . 2009-03-14 17:03 -------- d-----w c:\documents and settings\Xavier\Application Data\Stellarium
2009-03-14 16:44 . 2009-03-14 16:44 -------- d-----w c:\program files\Yahoo!
2009-03-14 10:18 . 2009-03-13 22:20 -------- d-----w c:\program files\Gamenext
2009-03-14 10:17 . 2009-03-13 22:35 -------- d---a-w c:\documents and settings\All Users\Application Data\TEMP
2009-03-13 22:20 . 2009-03-13 22:20 -------- d-----w c:\program files\Oberon Media
2009-03-13 22:20 . 2009-03-13 22:20 -------- d-----w c:\program files\Fichiers communs\Oberon Media
2009-03-09 12:48 . 2008-02-03 21:30 -------- d-----w c:\documents and settings\Xavier\Application Data\dvdcss
2009-03-08 11:16 . 2009-03-08 11:16 -------- d-----w c:\program files\Free Download Manager
2009-03-08 11:16 . 2009-03-08 11:16 -------- d-----w c:\program files\Software Informer
2009-03-08 11:16 . 2009-03-08 11:16 -------- d-----w c:\documents and settings\All Users\Application Data\FreeDownloadManager.ORG
2009-03-08 11:06 . 2009-03-08 11:04 -------- d-----w c:\program files\Internet Download Manager
2009-03-08 11:05 . 2008-03-24 18:49 -------- d-----w c:\documents and settings\Xavier\Application Data\DMCache
2009-03-08 11:04 . 2009-03-08 11:04 -------- d-----w c:\documents and settings\Xavier\Application Data\IDM
2008-07-29 18:54 . 2008-02-09 10:47 22328 ----a-w c:\documents and settings\Xavier\Application Data\PnkBstrK.sys
.
((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
REGEDIT4
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{C94E154B-1459-4A47-966B-4B843BEFC7DB}"= "c:\program files\AskSearch\bin\DefaultSearch.dll" [2008-12-09 95624]
[HKEY_CLASSES_ROOT\clsid\{c94e154b-1459-4a47-966b-4b843befc7db}]
[HKEY_CLASSES_ROOT\DefaultSearch.DefaultSearchHook.1]
[HKEY_CLASSES_ROOT\TypeLib\{EC73A159-0736-4EF3-972D-6EA9B2278495}]
[HKEY_CLASSES_ROOT\DefaultSearch.DefaultSearchHook]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2004-08-19 15360]
"ISUSPM"="c:\program files\Fichiers communs\InstallShield\UpdateService\ISUSPM.exe" [2006-09-10 218032]
"SuperCopier2.exe"="c:\installation logiciels\Super Copieur\SuperCopier2\SuperCopier2.exe" [2006-07-07 1052672]
"Free Download Manager"="c:\program files\Free Download Manager\fdm.exe" [2009-01-31 3399727]
"Software Informer"="c:\program files\Software Informer\softinfo.exe" [2009-01-30 1708101]
"SUPERAntiSpyware"="c:\program files\SUPERAntiSpyware\SUPERAntiSpyware.exe" [2009-03-23 1830128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SoundMAXPnP"="c:\program files\Analog Devices\Core\smax4pnp.exe" [2006-05-01 843776]
"JMB36X Configure"="c:\windows\system32\JMRaidTool.exe" [2006-06-02 385024]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2006-08-11 7630848]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2006-08-11 86016]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2006-10-26 31016]
"SunJavaUpdateSched"="c:\program files\Java\jre1.6.0_06\bin\jusched.exe" [2008-03-25 144784]
"AppleSyncNotifier"="c:\program files\Fichiers communs\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe" [2008-10-01 111936]
"PCMService"="c:\installation logiciels\Power Cinema\PowerCinema\PCMService.exe" [2007-02-09 159744]
"ANIWZCS2Service"="c:\program files\ANI\ANIWZCS2 Service\WZCSLDR2.exe" [2007-01-19 49152]
"avgnt"="c:\program files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" [2008-06-12 266497]
"QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2008-09-06 413696]
"nwiz"="nwiz.exe" - c:\windows\system32\nwiz.exe [2006-08-11 1519616]
"BluetoothAuthenticationAgent"="bthprops.cpl" - c:\windows\system32\bthprops.cpl [2004-08-19 110592]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2004-08-19 15360]
c:\documents and settings\Xavier\Menu D‚marrer\Programmes\D‚marrage\
Yahoo! Widgets.lnk - c:\program files\Yahoo!\Widgets\YahooWidgets.exe [2007-12-12 3746856]
c:\documents and settings\All Users\Menu D‚marrer\Programmes\D‚marrage\ASUS\ASUS Splendid
ASUS Splendid.lnk - c:\program files\ASUS\ASUS Splendid\ASUSplendid.exe [2008-2-3 651264]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"DisableRegedit"= 0 (0x0)
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system]
"DisableRegedit"= 0 (0x0)
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "c:\program files\SUPERAntiSpyware\SASSEH.DLL" [2008-05-13 77824]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
2008-12-22 10:05 356352 ----a-w c:\program files\SUPERAntiSpyware\SASWINLO.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"VIDC.I420"= i420vfw.dll
"vidc.asv2"= asusasv2.dll
"msacm.l3codecp"= l3codecp.acm
"msacm.mkdmp3enc"= c:\instal~1\POWERC~1\POWERC~1\Kernel\Burner\MKDMP3Enc.ACM
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Electronic Arts\\Crytek\\Crysis\\Bin32\\CrysisDedicatedServer.exe"=
"c:\\WINDOWS\\system32\\PnkBstrA.exe"=
"c:\\WINDOWS\\system32\\PnkBstrB.exe"=
"c:\\Program Files\\Activision\\Call of Duty 4 - Modern Warfare\\iw3mp.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"=
"c:\\Installation Jeux\\Warhammer® Mark of Chaos\\Warhammer.exe"=
"d:\\Xavier\\Jeux\\TrackMania Nations ESWC\\TmNationsESWC.exe"=
"c:\\Installation Jeux\\Tom Clancy's Rainbow Six Vegas\\Binaries\\R6Vegas_Game.exe"=
"c:\\Installation Jeux\\Tom Clancy's Rainbow Six Vegas\\Binaries\\R6Vegas_Launcher.exe"=
"c:\\Installation Jeux\\TmNationsForever\\TmNationsForever\\TmForever.exe"=
"c:\\Program Files\\Messenger\\msmsgs.exe"=
"c:\\Installation Logiciels\\Azureus\\Azureus.exe"=
"c:\\Installation Jeux\\Tom Clancy's Rainbow Six Vegas 2\\Binaries\\R6Vegas2_Game.exe"=
"c:\\Installation Jeux\\Tom Clancy's Rainbow Six Vegas 2\\Binaries\\R6Vegas2_Launcher.exe"=
"c:\\Installation Jeux\\Tom Clancy's Rainbow Six Vegas 2\\Binaries\\RainbowSixVegas2_SADS.exe"=
"c:\\Installation Jeux\\RON\\rise.exe"=
"c:\\Installation Logiciels\\iTunes\\iTunes.exe"=
"c:\\Installation Logiciels\\Power Cinema\\PowerCinema\\PowerCinema.exe"=
"c:\\Installation Logiciels\\Power Cinema\\PowerCinema\\PCMService.exe"=
"c:\\Installation Jeux\\Worms 4 Mayhem\\WORMS 4 MAYHEM.EXE"=
"c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\livecall.exe"=
"c:\\Program Files\\Activision\\Call of Duty - World at War\\CoDWaWmp.exe"=
"c:\\Program Files\\Activision\\Call of Duty - World at War\\CoDWaW.exe"=
"c:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"c:\\Program Files\\Ubisoft\\Tom Clancy's H.A.W.X\\HAWX.exe"=
"c:\\Installation Jeux\\GTA IV\\Rockstar Games Social Club\\RGSCLauncher.exe"=
"c:\\Installation Jeux\\GTA 4\\Grand Theft Auto IV\\LaunchGTAIV.exe"=
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"17143:TCP"= 17143:TCP:NortonAV
"13637:TCP"= 13637:TCP:NortonAV
"12744:TCP"= 12744:TCP:NortonAV
"14240:TCP"= 14240:TCP:NortonAV
"12826:TCP"= 12826:TCP:NortonAV
"18446:TCP"= 18446:TCP:NortonAV
R2 gupdate1c98c60aa0fe60c;Google Update Service (gupdate1c98c60aa0fe60c);c:\program files\Google\Update\GoogleUpdate.exe [2009-02-11 133104]
R3 PVUSB;CESG502 USB Driver;c:\windows\system32\DRIVERS\CESG502.sys [2002-06-12 40672]
S1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\SASDIFSV.SYS [2009-03-23 9968]
S1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL.sys [2009-03-23 72944]
S3 3xHybrid;ASUSTek SAA713x PCI Card;c:\windows\system32\DRIVERS\3xHybrid.sys [2007-01-25 2831232]
S3 A3AB;D-Link AirPro 802.11a/b Wireless Adapter Service(A3AB);c:\windows\system32\DRIVERS\A3AB.sys [2006-10-15 472832]
S3 SASENUM;SASENUM;c:\program files\SUPERAntiSpyware\SASENUM.SYS [2009-03-23 7408]
--- Autres Services/Pilotes en mémoire ---
*Deregistered* - mchInjDrv
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{0e367d09-0d42-11dd-9664-0019e06896df}]
\ll\open\Command - G:\RavMon.exe
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{9cfafbe0-c5f0-11dd-81f2-cc6266afd53d}]
\Shell\Shell00\Command - G:\Start.exe
.
Contenu du dossier 'Tâches planifiées'
2009-04-15 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\program files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 10:34]
2009-04-16 c:\windows\Tasks\Google Software Updater.job
- c:\program files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-02-07 20:41]
2009-04-16 c:\windows\Tasks\GoogleUpdateTaskMachine.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-02-11 15:51]
.
- - - - ORPHELINS SUPPRIMES - - - -
WebBrowser-{3041D03E-FD4B-44E0-B742-2D9B88305F98} - (no file)
HKCU-Run-fsm - (no file)
.
------- Examen supplémentaire -------
.
mWindow Title =
uInternet Settings,ProxyOverride = *.local
uSearchURL,(Default) = hxxp://toolbar.ask.com/toolbarv/askRedirect?o=10611&gct=&gc=1&q=%s
IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
IE: Tout télécharger avec Free Download Manager - file://c:\program files\Free Download Manager\dlall.htm
IE: Télécharger avec Free Download Manager - file://c:\program files\Free Download Manager\dllink.htm
IE: Télécharger la sélection avec Free Download Manager - file://c:\program files\Free Download Manager\dlselected.htm
IE: Télécharger la vidéo avec Free Download Manager - file://c:\program files\Free Download Manager\dlfvideo.htm
FF - ProfilePath - c:\documents and settings\Xavier\Application Data\Mozilla\Firefox\Profiles\m81c3k88.default\
FF - prefs.js: browser.search.selectedEngine - Deezer
FF - prefs.js: keyword.URL - hxxp://toolbar.ask.com/toolbarv/askRedirect?o=10611&gct=&gc=1&q=
FF - component: c:\program files\Free Download Manager\Firefox\Extension\components\vmsfdmff.dll
FF - plugin: c:\installation logiciels\iTunes\Mozilla Plugins\npitunes.dll
FF - plugin: c:\program files\Google\Google Updater\2.4.1536.6592\npCIDetect13.dll
FF - plugin: c:\program files\Google\Update\1.2.141.5\npGoogleOneClick7.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\npyaxmpb.dll
.
**************************************************************************
catchme 0.3.1375 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-04-16 16:28
Windows 5.1.2600 Service Pack 2 NTFS
Recherche de processus cachés ...
Recherche d'éléments en démarrage automatique cachés ...
Recherche de fichiers cachés ...
Scan terminé avec succès
Fichiers cachés: 0
**************************************************************************
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\mchInjDrv]
"ImagePath"="\??\c:\docume~1\Xavier\LOCALS~1\Temp\mc23.tmp"
.
--------------------- CLES DE REGISTRE BLOQUEES ---------------------
[HKEY_USERS\S-1-5-21-1757981266-1788223648-839522115-1003\Software\Microsoft\SystemCertificates\AddressBook*]
@Allowed: (Read) (RestrictedCode)
@Allowed: (Read) (RestrictedCode)
[HKEY_USERS\S-1-5-21-1757981266-1788223648-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\{C93C54F0-C03C-D9D6-4488-9355E205D6D7}*]
@Allowed: (Read) (RestrictedCode)
@Allowed: (Read) (RestrictedCode)
"abhihnfhojcpghadlpgakldgmjhcninnlo"=hex:6a,61,6f,63,6c,61,64,67,6b,68,66,61,
6b,69,6e,67,6a,6a,6f,68,00,53
"pafhbaieieaejgdamjibmdiolalcmfda"=hex:6a,61,61,64,66,61,66,6e,64,63,67,63,66,
6e,6c,62,63,6f,6d,61,00,53
[HKEY_USERS\S-1-5-21-1757981266-1788223648-839522115-1003\Software\Microsoft\Windows Mobile Disc\W*i*n*d*o*w*s* *M*o*b*i*l*e*"!\CriticalAppInstall\ActiveSync]
"Name"="ActiveSync"
"DisplayName"="Microsoft ActiveSync"
"Param1"="ActiveSync"
"Type"="wellknown"
"Order"=dword:00000001
"State"=dword:0000000b
[HKEY_USERS\S-1-5-21-1757981266-1788223648-839522115-1003\Software\Microsoft\Windows Mobile Disc\W*i*n*d*o*w*s* *M*o*b*i*l*e*"!\CriticalAppInstall\IESettings]
"Name"="IESettings"
"Type"="IESettings"
"Order"=dword:00000004
"State"=dword:0000000b
[HKEY_USERS\S-1-5-21-1757981266-1788223648-839522115-1003\Software\Microsoft\Windows Mobile Disc\W*i*n*d*o*w*s* *M*o*b*i*l*e*"!\CriticalAppInstall\MediaFiles]
"Name"="MediaFiles"
"Type"="MediaFiles"
"Order"=dword:00000003
"State"=dword:0000000b
[HKEY_USERS\S-1-5-21-1757981266-1788223648-839522115-1003\Software\Microsoft\Windows Mobile Disc\W*i*n*d*o*w*s* *M*o*b*i*l*e*"!\CriticalAppInstall\NPW]
"Name"="NPW"
"Param1"="NPW"
"Type"="wellknown"
"Order"=dword:00000002
"State"=dword:0000000b
[HKEY_USERS\S-1-5-21-1757981266-1788223648-839522115-1003\Software\Microsoft\Windows Mobile Disc\W*i*n*d*o*w*s* *M*o*b*i*l*e*"!\CriticalAppInstall\Outlook]
"Name"="Outlook"
"DisplayName"="Microsoft Outlook"
"Param1"="Outlook"
"Type"="wellknown"
"Order"=dword:00000000
"State"=dword:00000020
[HKEY_USERS\S-1-5-21-1757981266-1788223648-839522115-1003\Software\SecuROM\!CAUTION! NEVER A OR CHANGE ANY KEY*]
"??"=hex:28,bf,2a,38,a8,88,dc,18,2b,b8,5b,21,d5,27,39,37,2e,32,0a,4c,34,e2,75,
98,de,93,33,4d,dd,6b,23,58,e6,a0,51,62,19,47,f7,65,b5,44,af,e7,4d,ac,d4,e2,\
"??"=hex:67,0e,c9,f8,fb,2d,10,6d,f8,68,15,86,7d,a7,28,1a
[HKEY_USERS\S-1-5-21-1757981266-1788223648-839522115-1003\Software\SecuROM\License information*]
"datasecu"=hex:2a,63,33,23,71,c9,36,d4,ca,38,77,ba,57,66,f0,14,3e,9b,e7,ae,f9,
b7,fb,73,0f,51,b4,16,79,fe,e9,ad,b3,78,47,72,5a,15,a6,09,4d,9c,29,a6,61,f5,\
"rkeysecu"=hex:29,23,be,84,e1,6c,d6,ae,52,90,49,f1,f1,bb,e9,eb
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{7B8E9164-324D-4A2E-A46D-0165FB2000EC}]
@Denied: (Full) (Everyone)
"scansk"=hex(0):7e,af,16,42,4e,69,49,3f,02,c0,36,ce,66,2d,a8,38,18,62,35,fe,3f,
3a,37,6f,f4,95,9d,09,43,12,5e,74,b9,9d,49,e0,6d,9a,e8,f7,00,00,00,00,00,00,\
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{e05be328-3025-496a-914e-c414e4b18480}]
@Denied: (Full) (Everyone)
"Model"=dword:00000126
"Therad"=dword:0000001d
"MData"=hex(0):cb,9b,ad,ef,27,7d,29,69,f5,02,f0,76,aa,4a,f1,7c,d3,d9,67,7f,6a,
4b,7b,ad,04,7a,b1,b5,76,9b,27,47,fe,9b,c9,4d,ce,e8,10,45,ff,de,1b,59,3f,a3,\
.
--------------------- DLLs chargées dans les processus actifs ---------------------
- - - - - - - > 'winlogon.exe'(536)
c:\program files\SUPERAntiSpyware\SASWINLO.dll
.
Heure de fin: 2009-04-16 16:29
ComboFix-quarantined-files.txt 2009-04-16 14:29
Avant-CF: 7 731 904 512 octets libres
Après-CF: 7 759 814 656 octets libres
WindowsXP-KB310994-SP2-Pro-BootDisk-FRA.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professionnel" /noexecute=optin /fastdetect
291 --- E O F --- 2008-11-13 17:16