Virus win32 :skimorph [cryp]
Résolu
misterwhite64
Messages postés
58
Statut
Membre
-
^^Marie^^ Messages postés 126523 Date d'inscription Statut Membre Dernière intervention -
^^Marie^^ Messages postés 126523 Date d'inscription Statut Membre Dernière intervention -
Bonjour,j'ai attrapé un virus mais comme je suis débutant en informatique je suis perdu car apparament avast ne me le supprime pas.je sais que pour moi c'est hyper compliqué mais je suis sur que pour certains d'entre vous c'est de "la rigolade".cela serait vraiment sympas de m'aider car en plus je suis en réseau et avast me dit que cela peut infecté les autres. De plus j'ai un intel celeron 1.70ghz et 256mo de ram non vous n'halluciné pas j'ai bien un pc qui date de la préhistoire lol c'est pour cela que j'ai vraiment besoin de vous par avance merci.
A voir également:
- Virus win32 :skimorph [cryp]
- Virus mcafee - Accueil - Piratage
- Virus informatique - Guide
- Virus facebook demande d'amis - Accueil - Facebook
- Panda anti virus gratuit - Télécharger - Antivirus & Antimalwares
- Undisclosed-recipients virus - Guide
25 réponses
moi je veux bien tout ce que tu veux mais c est toi qui m a dit d installer spybot mais t inquiete je fais le max pour le supprimer et voila le log(je pense avoir retirer spybot par contre d aprés toi quelles sont les meilleurs logiciels
pour se protéger de toutes les sa......ies que l on peut attraper sur internet j espere que ca va aler mieux pour toi courage
Logfile of random's system information tool 1.06 (written by random/random)
Run by misterwhite64 at 2009-05-30 12:49:05
Microsoft Windows XP Édition familiale Service Pack 3
System drive C: has 19 GB (57%) free of 33 GB
Total RAM: 255 MB (19% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 12:49:14, on 30/05/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\LEXPPS.EXE
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\WINDOWS\system32\lxddcoms.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\VIAudioi\SBADeck\ADeck.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Lexmark 2200 Series\lxbvbmgr.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Software Informer\softinfo.exe
C:\Documents and Settings\misterwhite64\Application Data\Microsoft\Notification de cadeaux MSN\lsnfier.exe
C:\Program Files\Lexmark 2200 Series\lxbvbmon.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Windows Live\Toolbar\wltuser.exe
c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\Documents and Settings\misterwhite64\Bureau\RSIT.exe
C:\Program Files\trend micro\misterwhite64.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O4 - HKLM\..\Run: [AudioDeck] C:\Program Files\VIAudioi\SBADeck\ADeck.exe 1
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [Lexmark 2200 Series] "C:\Program Files\Lexmark 2200 Series\lxbvbmgr.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [Software Informer] "C:\Program Files\Software Informer\softinfo.exe" -autorun
O4 - HKCU\..\Run: [ccleaner] "C:\Program Files\CCleaner\CCleaner.exe" /AUTO
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Startup: Notification de cadeaux MSN.lnk = C:\Documents and Settings\misterwhite64\Application Data\Microsoft\Notification de cadeaux MSN\lsnfier.exe
O8 - Extra context menu item: Add to Windows &Live Favorites - https://onedrive.live.com/?id=favorites
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: ShopperReports - Compare travel rates - {C5428486-50A0-4a02-9D20-520B59A9F9B3} - C:\WINDOWS\System32\shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/...
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Service Google Update (gupdate1c9979317959cfc) (gupdate1c9979317959cfc) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
O23 - Service: lxdd_device - - C:\WINDOWS\system32\lxddcoms.exe
pour se protéger de toutes les sa......ies que l on peut attraper sur internet j espere que ca va aler mieux pour toi courage
Logfile of random's system information tool 1.06 (written by random/random)
Run by misterwhite64 at 2009-05-30 12:49:05
Microsoft Windows XP Édition familiale Service Pack 3
System drive C: has 19 GB (57%) free of 33 GB
Total RAM: 255 MB (19% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 12:49:14, on 30/05/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\LEXPPS.EXE
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\WINDOWS\system32\lxddcoms.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\VIAudioi\SBADeck\ADeck.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Lexmark 2200 Series\lxbvbmgr.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Software Informer\softinfo.exe
C:\Documents and Settings\misterwhite64\Application Data\Microsoft\Notification de cadeaux MSN\lsnfier.exe
C:\Program Files\Lexmark 2200 Series\lxbvbmon.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Windows Live\Toolbar\wltuser.exe
c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\Documents and Settings\misterwhite64\Bureau\RSIT.exe
C:\Program Files\trend micro\misterwhite64.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O4 - HKLM\..\Run: [AudioDeck] C:\Program Files\VIAudioi\SBADeck\ADeck.exe 1
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [Lexmark 2200 Series] "C:\Program Files\Lexmark 2200 Series\lxbvbmgr.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [Software Informer] "C:\Program Files\Software Informer\softinfo.exe" -autorun
O4 - HKCU\..\Run: [ccleaner] "C:\Program Files\CCleaner\CCleaner.exe" /AUTO
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Startup: Notification de cadeaux MSN.lnk = C:\Documents and Settings\misterwhite64\Application Data\Microsoft\Notification de cadeaux MSN\lsnfier.exe
O8 - Extra context menu item: Add to Windows &Live Favorites - https://onedrive.live.com/?id=favorites
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: ShopperReports - Compare travel rates - {C5428486-50A0-4a02-9D20-520B59A9F9B3} - C:\WINDOWS\System32\shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/...
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Service Google Update (gupdate1c9979317959cfc) (gupdate1c9979317959cfc) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
O23 - Service: lxdd_device - - C:\WINDOWS\system32\lxddcoms.exe
Re
mais c est toi qui m a dit d installer spybot
Rhhoouuuu !! Que nenni ;)))
J'ai parlé avec toi de la Tea Timer ;)))
Télécharge OTMoveIt3 (OldTimer) sur ton Bureau :
http://oldtimer.geekstogo.com/OTMoveIt3.exe
---> Double-clique sur OTMoveIt3.exe afin de le lancer.
---> Copie (Ctrl+C) le texte suivant ci-dessous :
:processes
explorer.exe
:files
c:\windows\system32\shdocvw.dll
:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{C5428486-50A0-4a02-9D20-520B59A9F9B3}]
:commands
[emptytemp]
[start explorer]
---> Colle (Ctrl+V) le texte précédemment copié dans le cadre Paste Instructions for Items to be Moved.
---> Clique maintenant sur le bouton MoveIt! puis ferme OTMoveIt3.
Si un fichier ou dossier ne peut pas être supprimé immédiatement, le logiciel te demandera de redémarrer.
Accepte en cliquant sur YES.
---> Poste le rapport situé dans ce dossier : C:\_OTMoveIt\MovedFiles\
Le nom du rapport correspond au moment de sa création : date_heure.log
++
mais c est toi qui m a dit d installer spybot
Rhhoouuuu !! Que nenni ;)))
J'ai parlé avec toi de la Tea Timer ;)))
Télécharge OTMoveIt3 (OldTimer) sur ton Bureau :
http://oldtimer.geekstogo.com/OTMoveIt3.exe
---> Double-clique sur OTMoveIt3.exe afin de le lancer.
---> Copie (Ctrl+C) le texte suivant ci-dessous :
:processes
explorer.exe
:files
c:\windows\system32\shdocvw.dll
:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{C5428486-50A0-4a02-9D20-520B59A9F9B3}]
:commands
[emptytemp]
[start explorer]
---> Colle (Ctrl+V) le texte précédemment copié dans le cadre Paste Instructions for Items to be Moved.
---> Clique maintenant sur le bouton MoveIt! puis ferme OTMoveIt3.
Si un fichier ou dossier ne peut pas être supprimé immédiatement, le logiciel te demandera de redémarrer.
Accepte en cliquant sur YES.
---> Poste le rapport situé dans ce dossier : C:\_OTMoveIt\MovedFiles\
Le nom du rapport correspond au moment de sa création : date_heure.log
++
re en esperant que cela va t'aller et que tu vas pouvoir me débarrasser de cette grosse m....
1000000merci pour ta patience
========== PROCESSES ==========
Process explorer.exe killed successfully.
========== FILES ==========
c:\windows\system32\shdocvw.dll unregistered successfully.
c:\windows\system32\shdocvw.dll moved successfully.
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{C5428486-50A0-4a02-9D20-520B59A9F9B3}\\ deleted successfully.
========== COMMANDS ==========
File delete failed. C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\fla11.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\fla13.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DF9CC2.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DF9CD6.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFA8CB.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFA8EA.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFAE31.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFAFD4.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFB0FE.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFB119.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFB238.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFB24E.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFB471.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFB4AF.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFB5D4.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFB5EA.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFB92D.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFB973.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFBBEE.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFBC7A.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFFB20.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFFD37.tmp scheduled to be deleted on reboot.
User's Temp folder emptied.
User's Internet Explorer cache folder emptied.
File delete failed. C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\YOW5UA14\01[1].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\YOW5UA14\ADSAdClient31[4].txt scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\YOW5UA14\index-fr[2].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\YOW5UA14\signin[1].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\W1P7FBXK\01[1].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\W1P7FBXK\default[1].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\W1P7FBXK\im[1].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\W1P7FBXK\telecharger-157-zone-alarm[1].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\6CN0C0FC\ads[3].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\6CN0C0FC\affich-12432536-virus-win32-skimorph-cryp[1].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\6CN0C0FC\affich-12432536-virus-win32-skimorph-cryp[2].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\6CN0C0FC\InboxLight[1].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\6CN0C0FC\index-fr[1].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\6CN0C0FC\ToastFull[1].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\6CN0C0FC\ToastMini[1].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\index.dat scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\AntiPhishing\2CEDBFBC-DBA8-43AA-B1FD-CC8E6316E3E2.dat scheduled to be deleted on reboot.
User's Temporary Internet Files folder emptied.
Local Service Temp folder emptied.
File delete failed. C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat scheduled to be deleted on reboot.
Local Service Temporary Internet Files folder emptied.
Network Service Temp folder emptied.
File delete failed. C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\index.dat scheduled to be deleted on reboot.
Network Service Temporary Internet Files folder emptied.
File delete failed. C:\WINDOWS\temp\_avast4_\Webshlock.txt scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\Perflib_Perfdata_4f0.dat scheduled to be deleted on reboot.
Windows Temp folder emptied.
FireFox cache emptied.
Temp folders emptied.
Explorer started successfully
OTMoveIt3 by OldTimer - Version 1.0.11.0 log created on 05302009_133230
Files moved on Reboot...
File C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\fla11.tmp not found!
File C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\fla13.tmp not found!
File C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DF9CC2.tmp not found!
File C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DF9CD6.tmp not found!
File C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFA8CB.tmp not found!
File C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFA8EA.tmp not found!
File C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFAE31.tmp not found!
File C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFAFD4.tmp not found!
File C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFB0FE.tmp not found!
File C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFB119.tmp not found!
File C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFB238.tmp not found!
File C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFB24E.tmp not found!
File C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFB471.tmp not found!
File C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFB4AF.tmp not found!
File C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFB5D4.tmp not found!
File C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFB5EA.tmp not found!
File C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFB92D.tmp not found!
File C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFB973.tmp not found!
File C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFBBEE.tmp not found!
File C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFBC7A.tmp not found!
File C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFFB20.tmp not found!
File C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFFD37.tmp not found!
C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\YOW5UA14\01[1].htm moved successfully.
C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\YOW5UA14\ADSAdClient31[4].txt moved successfully.
C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\YOW5UA14\index-fr[2].htm moved successfully.
C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\YOW5UA14\signin[1].htm moved successfully.
C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\W1P7FBXK\01[1].htm moved successfully.
C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\W1P7FBXK\default[1].htm moved successfully.
C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\W1P7FBXK\im[1].htm moved successfully.
C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\W1P7FBXK\telecharger-157-zone-alarm[1].htm moved successfully.
C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\6CN0C0FC\ads[3].htm moved successfully.
C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\6CN0C0FC\affich-12432536-virus-win32-skimorph-cryp[1].htm moved successfully.
C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\6CN0C0FC\affich-12432536-virus-win32-skimorph-cryp[2].htm moved successfully.
C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\6CN0C0FC\InboxLight[1].htm moved successfully.
C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\6CN0C0FC\index-fr[1].htm moved successfully.
C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\6CN0C0FC\ToastFull[1].htm moved successfully.
C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\6CN0C0FC\ToastMini[1].htm moved successfully.
C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\AntiPhishing\2CEDBFBC-DBA8-43AA-B1FD-CC8E6316E3E2.dat moved successfully.
File move failed. C:\WINDOWS\temp\_avast4_\Webshlock.txt scheduled to be moved on reboot.
File C:\WINDOWS\temp\Perflib_Perfdata_4f0.dat not found!
1000000merci pour ta patience
========== PROCESSES ==========
Process explorer.exe killed successfully.
========== FILES ==========
c:\windows\system32\shdocvw.dll unregistered successfully.
c:\windows\system32\shdocvw.dll moved successfully.
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{C5428486-50A0-4a02-9D20-520B59A9F9B3}\\ deleted successfully.
========== COMMANDS ==========
File delete failed. C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\fla11.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\fla13.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DF9CC2.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DF9CD6.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFA8CB.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFA8EA.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFAE31.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFAFD4.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFB0FE.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFB119.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFB238.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFB24E.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFB471.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFB4AF.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFB5D4.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFB5EA.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFB92D.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFB973.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFBBEE.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFBC7A.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFFB20.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFFD37.tmp scheduled to be deleted on reboot.
User's Temp folder emptied.
User's Internet Explorer cache folder emptied.
File delete failed. C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\YOW5UA14\01[1].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\YOW5UA14\ADSAdClient31[4].txt scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\YOW5UA14\index-fr[2].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\YOW5UA14\signin[1].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\W1P7FBXK\01[1].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\W1P7FBXK\default[1].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\W1P7FBXK\im[1].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\W1P7FBXK\telecharger-157-zone-alarm[1].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\6CN0C0FC\ads[3].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\6CN0C0FC\affich-12432536-virus-win32-skimorph-cryp[1].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\6CN0C0FC\affich-12432536-virus-win32-skimorph-cryp[2].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\6CN0C0FC\InboxLight[1].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\6CN0C0FC\index-fr[1].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\6CN0C0FC\ToastFull[1].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\6CN0C0FC\ToastMini[1].htm scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\index.dat scheduled to be deleted on reboot.
File delete failed. C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\AntiPhishing\2CEDBFBC-DBA8-43AA-B1FD-CC8E6316E3E2.dat scheduled to be deleted on reboot.
User's Temporary Internet Files folder emptied.
Local Service Temp folder emptied.
File delete failed. C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat scheduled to be deleted on reboot.
Local Service Temporary Internet Files folder emptied.
Network Service Temp folder emptied.
File delete failed. C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\index.dat scheduled to be deleted on reboot.
Network Service Temporary Internet Files folder emptied.
File delete failed. C:\WINDOWS\temp\_avast4_\Webshlock.txt scheduled to be deleted on reboot.
File delete failed. C:\WINDOWS\temp\Perflib_Perfdata_4f0.dat scheduled to be deleted on reboot.
Windows Temp folder emptied.
FireFox cache emptied.
Temp folders emptied.
Explorer started successfully
OTMoveIt3 by OldTimer - Version 1.0.11.0 log created on 05302009_133230
Files moved on Reboot...
File C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\fla11.tmp not found!
File C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\fla13.tmp not found!
File C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DF9CC2.tmp not found!
File C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DF9CD6.tmp not found!
File C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFA8CB.tmp not found!
File C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFA8EA.tmp not found!
File C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFAE31.tmp not found!
File C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFAFD4.tmp not found!
File C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFB0FE.tmp not found!
File C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFB119.tmp not found!
File C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFB238.tmp not found!
File C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFB24E.tmp not found!
File C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFB471.tmp not found!
File C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFB4AF.tmp not found!
File C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFB5D4.tmp not found!
File C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFB5EA.tmp not found!
File C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFB92D.tmp not found!
File C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFB973.tmp not found!
File C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFBBEE.tmp not found!
File C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFBC7A.tmp not found!
File C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFFB20.tmp not found!
File C:\DOCUME~1\MISTER~1\LOCALS~1\Temp\~DFFD37.tmp not found!
C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\YOW5UA14\01[1].htm moved successfully.
C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\YOW5UA14\ADSAdClient31[4].txt moved successfully.
C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\YOW5UA14\index-fr[2].htm moved successfully.
C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\YOW5UA14\signin[1].htm moved successfully.
C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\W1P7FBXK\01[1].htm moved successfully.
C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\W1P7FBXK\default[1].htm moved successfully.
C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\W1P7FBXK\im[1].htm moved successfully.
C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\W1P7FBXK\telecharger-157-zone-alarm[1].htm moved successfully.
C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\6CN0C0FC\ads[3].htm moved successfully.
C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\6CN0C0FC\affich-12432536-virus-win32-skimorph-cryp[1].htm moved successfully.
C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\6CN0C0FC\affich-12432536-virus-win32-skimorph-cryp[2].htm moved successfully.
C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\6CN0C0FC\InboxLight[1].htm moved successfully.
C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\6CN0C0FC\index-fr[1].htm moved successfully.
C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\6CN0C0FC\ToastFull[1].htm moved successfully.
C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\Content.IE5\6CN0C0FC\ToastMini[1].htm moved successfully.
C:\Documents and Settings\misterwhite64\Local Settings\Temporary Internet Files\AntiPhishing\2CEDBFBC-DBA8-43AA-B1FD-CC8E6316E3E2.dat moved successfully.
File move failed. C:\WINDOWS\temp\_avast4_\Webshlock.txt scheduled to be moved on reboot.
File C:\WINDOWS\temp\Perflib_Perfdata_4f0.dat not found!
salut ^^Marie^^ je ne t 'embèterais plus avec ce probleme car mon amie préfère le reformater mais je tiens vraiment à te remercier pour ta patience et pour avoir passer du temps a essayer de tuer ce virus de brin.Mais j ai quand même une dernière chose à te demander si tu le veux bien ma question est la suivante: d aprés toi quel sont les meilleurs solutions pour protéger un pc? merci d avance et ne change rien a+
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
Salut
Relance un log Logfile of random's system information tool 1.06 RSTI
Je repasserai ce soir
Relance un log Logfile of random's system information tool 1.06 RSTI
Je repasserai ce soir
continue
Logfile of random's system information tool 1.06 (written by random/random)
Run by misterwhite64 at 2009-05-30 12:24:12
Microsoft Windows XP Édition familiale Service Pack 3
System drive C: has 19 GB (57%) free of 33 GB
Total RAM: 255 MB (14% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 12:24:28, on 30/05/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\LEXPPS.EXE
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\WINDOWS\system32\lxddcoms.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\VIAudioi\SBADeck\ADeck.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Lexmark 2200 Series\lxbvbmgr.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Software Informer\softinfo.exe
C:\Documents and Settings\misterwhite64\Application Data\Microsoft\Notification de cadeaux MSN\lsnfier.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Lexmark 2200 Series\lxbvbmon.exe
C:\Program Files\Alwil Software\Avast4\setup\avast.setup
C:\Documents and Settings\misterwhite64\Bureau\RSIT.exe
C:\Program Files\trend micro\misterwhite64.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O4 - HKLM\..\Run: [AudioDeck] C:\Program Files\VIAudioi\SBADeck\ADeck.exe 1
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [Lexmark 2200 Series] "C:\Program Files\Lexmark 2200 Series\lxbvbmgr.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [Software Informer] "C:\Program Files\Software Informer\softinfo.exe" -autorun
O4 - HKCU\..\Run: [ccleaner] "C:\Program Files\CCleaner\CCleaner.exe" /AUTO
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Startup: Notification de cadeaux MSN.lnk = C:\Documents and Settings\misterwhite64\Application Data\Microsoft\Notification de cadeaux MSN\lsnfier.exe
O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: ShopperReports - Compare travel rates - {C5428486-50A0-4a02-9D20-520B59A9F9B3} - C:\WINDOWS\System32\shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/...
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Service Google Update (gupdate1c9979317959cfc) (gupdate1c9979317959cfc) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
O23 - Service: lxdd_device - - C:\WINDOWS\system32\lxddcoms.exe