Rapport HIjackthis

Pharrel Williams Messages postés 67 Statut Membre -  
eZula Messages postés 3509 Statut Contributeur -
Bonjour,
Je vous solicite en vous remerciant d'avance car je n'est pas touché mon ordi tous l'été et il l'était au main des mes freres et soeur qui ont fait n'importe quoi dessu, en effet mon ordi ralentit je pense que mon ordi est vrement infecté: voici un rapport hijackthis pour que puissiez m'aidez.
Cordialement =)
A voir également:

20 réponses

eZula Messages postés 3509 Statut Contributeur 392
 
Bonjour,

télécharge GenProc http://www.genproc.com/GenProc.exe

double-clique sur GenProc.exe et poste le contenu du rapport qui s'ouvre
0
Xplode Messages postés 9212 Statut Contributeur sécurité 726
 
Où est le rapport ?
0
Pharrel Williams Messages postés 67 Statut Membre
 
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 10:13:34, on 04/10/2009
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v8.00 (8.00.6001.18813)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\ATI Technologies\ATI.ACE\CLI.EXE
C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe
C:\Program Files\Winamp\winampa.exe
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
C:\Program Files\Alwil Software\Avast4\ashDisp.exe
C:\Program Files\Search Settings\SearchSettings.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Packard Bell\SetUpMyPC\SmpSys.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\DAEMON Tools Lite\daemon.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Windows\ehome\ehmsas.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\CPSHelpRunner.exe
C:\Program Files\ATI Technologies\ATI.ACE\CLI.exe
C:\Program Files\ATI Technologies\ATI.ACE\CLI.exe
C:\Windows\system32\conime.exe
C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe
C:\Windows\explorer.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\PROGRA~1\MOZILL~1\FIREFOX.EXE
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.sfr.fr/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - {6638A9DE-0745-4292-8A2E-AE530E7B9B3F} - (no file)
R3 - URLSearchHook: SearchSettings Class - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\Search Settings\kb128\SearchSettings.dll
O2 - BHO: Dealio Toolbar - {01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C} - C:\Program Files\Dealio Toolbar\DealioToolbarIE.dll
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: UrlHelper Class - {74322BF9-DF26-493f-B0DA-6D2FC5E6429E} - C:\Program Files\BearShare Applications\BearShare\BearShareIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll
O2 - BHO: MegaIEMn - {bf00e119-21a3-4fd1-b178-3b8537e75c92} - C:\Program Files\Megaupload\Mega Manager\MegaIEMn.dll
O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\Google\Google_BAE\BAE.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O2 - BHO: SearchSettings Class - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\Search Settings\kb128\SearchSettings.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: Dealio Toolbar - {01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C} - C:\Program Files\Dealio Toolbar\DealioToolbarIE.dll
O3 - Toolbar: BearShare MediaBar - {D3DEE18F-DB64-4BEB-9FF1-E1F0A5033E4A} - C:\Program Files\BearShare Applications\BearShare MediaBar\BearShareMediaBar.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\CLIStart.exe"
O4 - HKLM\..\Run: [RoxWatchTray] "C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe"
O4 - HKLM\..\Run: [toolbar_eula_launcher] C:\Program Files\Packard Bell\GOOGLE_EULA\EULALauncher.exe
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\winampa.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [SearchSettings] C:\Program Files\Search Settings\SearchSettings.exe
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [SmpcSys] C:\Program Files\Packard Bell\SetUpMyPC\SmpSys.exe
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe" -autorun
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
O8 - Extra context menu item: Add to Windows &Live Favorites - https://onedrive.live.com/?id=favorites
O8 - Extra context menu item: Liens de téléchargement avec Mega Manager... - C:\Program Files\Megaupload\Mega Manager\mm_file.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\PROGRA~1\Java\JRE16~1.0_0\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\PROGRA~1\Java\JRE16~1.0_0\bin\ssv.dll
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\Windows\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\Windows\bdoscandel.exe (file missing)
O13 - Gopher Prefix:
O16 - DPF: CabBuilder - http://ak.imgag.com/imgag/kiw/toolbar/download/InstallerControl.cab
O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/2008.10.10_v5.5.8/FacebookPhotoUploader5.cab
O16 - DPF: {78ABDC59-D8E7-44D3-9A76-9A0918C52B4A} (DLoader Class) - http://dl.uc.sina.com/cab/downloader.cab
O23 - Service: AOL Connectivity Service (AOL ACS) - AOL LLC - C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: FsUsbExService - Teruten - C:\Windows\system32\FsUsbExService.Exe
O23 - Service: Generic Service for HID Keyboard Input Collections (GenericHidService) - Packard Bell BV - C:\Program Files\Packard bell\SAXO27\HIDSERVICE.EXE
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: Roxio Hard Drive Watcher 9 (RoxWatch9) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe
O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe
O23 - Service: SrvCDEject - Unknown owner - C:\Program Files\Packard Bell\SrvCDEject.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
0
Pharrel Williams Messages postés 67 Statut Membre
 
Desolé j'ai oublié de le coller xD
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
eZula Messages postés 3509 Statut Contributeur 392
 
0
Pharrel Williams Messages postés 67 Statut Membre
 
Je n'est pas compri dsl ezula? :S
0
eZula Messages postés 3509 Statut Contributeur 392
 
télécharge GenProc http://www.genproc.com/GenProc.exe

double-clique sur GenProc.exe et poste le contenu du rapport qui s'ouvre
0
Pharrel Williams Messages postés 67 Statut Membre
 
J'ai deja publié mon rapport nan?
ou est ce que c'est une autre manip? :S
0
eZula Messages postés 3509 Statut Contributeur 392
 
il est 10h20, faut se réveiller ^^
0
Pharrel Williams Messages postés 67 Statut Membre
 
lool ok jvai faire ce que tu m'as dit =P
0
Pharrel Williams Messages postés 67 Statut Membre
 
Je dois faire tous se que est marqué dans le bloc note? Ccleener...?
0
eZula Messages postés 3509 Statut Contributeur 392
 
est-ce que tu peux copier-coller ce rapport ici, pour que je voie ce qu'il te propose ?
0
Pharrel Williams Messages postés 67 Statut Membre
 
oui bien sur le voici :

Rapport GenProc 2.633 [1] - 04/10/2009 à 10:22:12
@ Windows Vista Service Pack 1 - Mode normal
@ Internet Explorer (8.0.6001.18813) [Navigateur par défaut]

Dans CCleaner, clique sur "Options", "Avancé" et décoche la case "Effacer uniquement les fichiers, du dossier Temp de Windows, plus vieux que 48 heures" ; par la suite, laisse-le avec ses réglages par défaut. C'est tout.

# Etape 1/ Télécharge :

- Lop S&D https://77b4795d-a-62cb3a1a-s-sites.googlegroups.com/site/eric71mespages/LopSD.exe?attachauth=ANoY7co3ntqUavpZ3q1BG-h4pc13vqDZmhcNeEPChtsyrgAykRbhE8bZzhk979EfQD4AgwtQUHCaQ7ZQwNYMo3_0kA8htAspckDJtu2K5t6J9z6dLW4fpZyH4FpFL1tVMBZ8H-KnN7afZ5vt-WxZRpnynk-a0XmV_Y0C0q6DxGEDKie1TnPT7gFoZnoCnspzBmbW6ZzxA4fNr3oEDlbelNZON-LjF8nOmQ%3D%3D&attredirects=2 (Eric 71 & Angeldark) sur ton Bureau.

- Toolbar-S&D https://77b4795d-a-62cb3a1a-s-sites.googlegroups.com/site/eric71mespages/ToolBarSD.exe?attachauth=ANoY7cpVobGk5bHnxrhQ4yaoEUDJvOYNnEGyYjgqHZz5GqZLfutR3fMFPlsC3-CGIilfupPAguYATNyua3csodN_frdMK8sSzUpit10Yac-QJCOkMqJKkbdKcP6ySs8trWPgoNVIq4TGGWCe6o0txXQv-ZueJF9vZzw3RXsGwFYIqN2lvF2LPdQzS8mE1d5kWOVOz6EMzQuE5-lClSJM869uq3oc7-t7yg%3D%3D&attredirects=3 (Team IDN) sur ton Bureau.

Redémarre en mode sans échec comme indiqué ici https://www.wekyo.com/demarrer-le-pc-en-mode-sans-echec-windows-7-et-8/ ; Choisis ta session courante *** mon prenom *** (pour retrouver le rapport, clique sur le raccourci "Rapport GenProc[1]" sur ton bureau).

# Etape 2/

Lance Toolbar-S&D situé sur le Bureau. Tape sur "2" puis valide en appuyant sur "Entrée". Ne ferme pas la fenêtre lors de la suppression.

# Etape 3/

Double-clique sur Lop S&D pour lancer l'installation, séléctionne la langue souhaitée, puis choisis l'Option 2 - Suppression - et patiente jusqu'à ce qu'il ait terminé.

# Etape 4/

Lance CCleaner : "Nettoyeur"/"lancer le nettoyage" et c'est tout.

# Etape 5/

Redémarre normalement et poste, dans la même réponse :

- Le contenu du rapport TB.txt situé dans C:\ ;
- Le contenu du rapport lopR.txt situé dans C:\ ;
- Un nouveau rapport HijackThis ;
- Un nouveau rapport GenProc ;

Précise les difficultés que tu as eu (ce que tu n'as pas pu faire...) ainsi que l'évolution de la situation.

~~ Arguments de la procédure ~~

# Détections [1] GenProc 2.633 04/10/2009 à 10:22:19
Lop:le 04/10/2009 à 10:22:42 "C:\Program Files\Circle Developement"
Toolbar:le 04/10/2009 à 10:22:44 "C:\Program Files\Search Settings"

----------------------------------------------------------------------
Sites officiels GenProc : www.alt-shift-return.org et www.genproc.com
----------------------------------------------------------------------

~~ Fin à 10:23:02 ~~
0
eZula Messages postés 3509 Statut Contributeur 392
 
Ok, suis cette procédure, jusqu'au bout
0
Pharrel Williams Messages postés 67 Statut Membre
 
J'ai suivi la procedure voici tous les rapport demander : ( merci de ton aide )

raport tb :

-----------\\ ToolBar S&D 1.2.9 XP/Vista

Microsoft® Windows Vista™ Édition Familiale Premium ( v6.0.6001 ) Service Pack 1
X86-based PC ( Multiprocessor Free : Intel(R) Core(TM)2 CPU 6320 @ 1.86GHz )
BIOS : Phoenix - AwardBIOS v6.00PG
USER : othman ( Not Administrator ! )
BOOT : Fail-safe boot
C:\ (Local Disk) - NTFS - Total:290 Go (Free:38 Go)
D:\ (CD or DVD)
H:\ (CD or DVD) - CDFS - Total:0 Go (Free:0 Go)
I:\ (CD or DVD)

"C:\ToolBar SD" ( MAJ : 22-08-2009|18:42 )
Option : [2] ( 04/10/2009|10:52 )

[ UAC => 0 ]

-----------\\ SUPPRESSION

Supprime! - C:\Program Files\Mozilla Firefox\extensions\search@searchsettings.com
Supprime! - C:\Program Files\Search Settings\kb128
Supprime! - C:\Program Files\Search Settings\SearchSettings.exe
Supprime! - C:\Program Files\Search Settings

-----------\\ Recherche de Fichiers / Dossiers ...

-----------\\ [..\Internet Explorer\Main]

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Local Page"="C:\\Windows\\system32\\blank.htm"
"Search Page"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
"Start Page"="https://www.sfr.fr/"
"Default_search_url"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
"Default_page_URL"="http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome"
"Search bar"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
"Url"="https://www.msn.com/fr-fr/actualite/"

[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Start Page"="https://www.msn.com/fr-fr/"
"Default_Page_URL"="http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome"
"Default_Search_URL"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
"Search Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
"Local Page"="C:\\Windows\\System32\\blank.htm"
"Search bar"="http://www.bing.com/spresults.aspx"

--------------------\\ Recherche d'autres infections

--------------------\\ Cracks & Keygens ..

C:\Users\othman\AppData\Roaming\Microsoft\Windows\Recent\._FM2009.9.3.0.b36280.UBCrack.dmg.lnk
C:\Users\othman\AppData\Roaming\Microsoft\Windows\Recent\Crack Final Fantasy VIII Fr.zip.lnk
C:\Users\othman\AppData\Roaming\Microsoft\Windows\Recent\FM2009.9.3.0.b36280.UBCrack.dmg.zip.lnk
C:\Users\othman\AppData\Roaming\Microsoft\Windows\Recent\GTA.4.CRACK.WORKING-LOBO.rar.lnk
C:\Users\othman\Desktop\son$ a Othman\14.04.2009\14 mars sonn\07.04.2009\07.04.2009\Rick Ross - Crack A Bottle (Remix) ( 2oo9 ) [ www.MzHipHop.com ].mp3
C:\Users\othman\Desktop\son$ a Othman\14.04.2009\14 mars sonn\17.3.2OO9\18.3.2OO9\19.3.2OO9\20.3.2OO9\20.3.2OO9\Jay Rock - Crack A Bottle (Freestyle) ( 2oo9 ) [ www.MzHipHop.com ].mp3
C:\Users\othman\Desktop\son$ a Othman\30.1.2OO9\5.2.2OO9\5.2.2OO9\Eminem Feat. Ca$his & Bobby Creekwater - Crack A Bottle (Remix) ( 2oo9 ) [ www.MzHipHop.com ].mp3
C:\Users\othman\Desktop\son$ a Othman\30.1.2OO9\6.1.2OO9\Eminem Feat. Dr. Dre & 50 Cent - Crack A Bottle (Prod. By Dr. Dre) (Official) ( 2oo9 ) [ www.MzHipHop.com ].mp3
C:\Users\othman\Desktop\son$ a Othman\JAY-Z DISCOGRAPHY\Jay-z - in my lifetime... vol 1\12-jay-z-rap_game__crack_game-eDm.mp3
C:\Users\othman\Desktop\son$ a Othman\Rim-K-Famille_Nombreuse-FR-2007-H5N1-TCHEK_DA_PUTE\Rim-K-Famille_Nombreuse-FR-2007-H5N1\11-rim-k-pilotes_crack_musik_feat._hamza.mp3
C:\Users\othman\Documents\Mes t‚l‚chargements\The.Sims.3.Crackfix.Read.Nfo-Razor1911.Up.By.DarK-AleX.for.TeaM-Digital
C:\Users\othman\Documents\Mes t‚l‚chargements\The.Sims.3.Crackfix.Read.Nfo-Razor1911.Up.By.DarK-AleX.for.TeaM-Digital.rar
C:\Users\othman\Documents\Mes t‚l‚chargements\GTA San Andreas\GTA San Andreas\data\Decision\Craig\crack1.ped
C:\Users\othman\Documents\Mes t‚l‚chargements\The.Sims.3.Crackfix.Read.Nfo-Razor1911.Up.By.DarK-AleX.for.TeaM-Digital\The_Sims_3_Crackfix_Read_Nfo-Razor1911
C:\Users\othman\Documents\Mes t‚l‚chargements\The.Sims.3.Crackfix.Read.Nfo-Razor1911.Up.By.DarK-AleX.for.TeaM-Digital\The_Sims_3_Crackfix_Read_Nfo-Razor1911\rzr-s3cf.nfo
C:\Users\othman\Documents\Mes t‚l‚chargements\The.Sims.3.Crackfix.Read.Nfo-Razor1911.Up.By.DarK-AleX.for.TeaM-Digital\The_Sims_3_Crackfix_Read_Nfo-Razor1911\TS3.exe
C:\Users\othman\Downloads\FM2009.9.3.0.b36280.UBCrack.dmg.zip
C:\Users\othman\Downloads\FM9Keygen
C:\Users\othman\Downloads\GTA.4.CRACK.WORKING-LOBO.rar
C:\Users\othman\Downloads\eMule\Incoming\Fruty Loops Studio 8 With Crack
C:\Users\othman\Downloads\eMule\Incoming\Fruty Loops Studio 8 With Crack\FLRegkey.Reg
C:\Users\othman\Downloads\eMule\Incoming\Fruty Loops Studio 8 With Crack\flstudio8_rc2.exe

[ UAC => 1 ]

1 - "C:\ToolBar SD\TB_1.txt" - 04/10/2009|10:55 - Option : [2]

-----------\\ Fin du rapport a 10:55:02,42

raport lopR:

--------------------\\ Lop S&D 4.2.5-0 XP/Vista

Microsoft® Windows Vista™ Édition Familiale Premium ( v6.0.6001 ) Service Pack 1
X86-based PC ( Multiprocessor Free : Intel(R) Core(TM)2 CPU 6320 @ 1.86GHz )
BIOS : Phoenix - AwardBIOS v6.00PG
USER : othman ( Not Administrator ! )
BOOT : Fail-safe boot
C:\ (Local Disk) - NTFS - Total:290 Go (Free:38 Go)
D:\ (CD or DVD)
H:\ (CD or DVD) - CDFS - Total:0 Go (Free:0 Go)
I:\ (CD or DVD)

"C:\Lop SD" ( MAJ : 19-12-2008|23:40 )
Option : [2] ( 04/10/2009|10:57 )

[ UAC => 1 ]

\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ SUPPRESSION

Supprime! - C:\Users\othman\AppData\Roaming\MICROS~1\Windows\Cookies\othman@advertstream[2].txt
Supprime! - C:\Program Files\Circle Developement
-
[ Fichier Hosts ] .. Restaure!

\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\

Supprime! - C:\Program Files\Viewpoint
Supprime! - C:\PROGRA~2\Viewpoint

\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\

--------------------\\ Listing des dossiers dans Local

[28/06/2009|15:05] C:\Users\othman\AppData\Local\{3F26CA59-9AB0-47A4-9AAE-A33D10F008C9}
[18/12/2007|15:33] C:\Users\othman\AppData\Local\Adobe
[04/05/2007|20:36] C:\Users\othman\AppData\Local\AOL
[21/05/2009|16:28] C:\Users\othman\AppData\Local\Apple
[21/05/2009|16:32] C:\Users\othman\AppData\Local\Apple Computer
[04/05/2007|20:24] C:\Users\othman\AppData\Local\Application Data
[04/10/2009|09:50] C:\Users\othman\AppData\Local\ApplicationHistory
[04/07/2008|11:19] C:\Users\othman\AppData\Local\Apps
[04/05/2007|20:36] C:\Users\othman\AppData\Local\ATI
[01/10/2009|17:36] C:\Users\othman\AppData\Local\BearShare
[21/07/2009|22:02] C:\Users\othman\AppData\Local\d3d9caps.dat
[03/10/2009|18:03] C:\Users\othman\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[04/07/2008|13:35] C:\Users\othman\AppData\Local\Deployment
[01/10/2009|15:12] C:\Users\othman\AppData\Local\Downloaded Installations
[23/11/2007|19:06] C:\Users\othman\AppData\Local\eMule
[04/07/2008|11:19] C:\Users\othman\AppData\Local\EPS-FileDownloader
[05/01/2009|21:05] C:\Users\othman\AppData\Local\FullTiltPoker
[04/05/2007|20:36] C:\Users\othman\AppData\Local\fusioncache.dat
[12/07/2007|10:50] C:\Users\othman\AppData\Local\GDIPFONTCACHEV1.DAT
[25/07/2007|13:09] C:\Users\othman\AppData\Local\Google
[04/05/2007|20:24] C:\Users\othman\AppData\Local\Historique
[04/10/2009|10:46] C:\Users\othman\AppData\Local\IconCache.db
[26/04/2009|09:58] C:\Users\othman\AppData\Local\Microsoft
[06/05/2007|13:46] C:\Users\othman\AppData\Local\Microsoft Games
[18/07/2007|19:43] C:\Users\othman\AppData\Local\MicroVision Applications
[05/09/2008|22:23] C:\Users\othman\AppData\Local\MigWiz
[01/07/2007|19:08] C:\Users\othman\AppData\Local\Mozilla
[16/09/2009|20:49] C:\Users\othman\AppData\Local\Oblivion
[04/07/2009|11:04] C:\Users\othman\AppData\Local\Pando
[30/10/2007|09:34] C:\Users\othman\AppData\Local\Shareaza
[04/10/2009|10:57] C:\Users\othman\AppData\Local\Temp
[04/05/2007|20:24] C:\Users\othman\AppData\Local\Temporary Internet Files
[08/04/2008|22:59] C:\Users\othman\AppData\Local\TVU Networks
[04/05/2007|20:36] C:\Users\othman\AppData\Local\VirtualStore

--------------------\\ Tâches planifiées dans C:\Windows\tasks

[04/10/2009 09:52][--a------] C:\Windows\tasks\Google Software Updater.job
[11/06/2008 23:02][--a------] C:\Windows\tasks\HDReg.job
[02/10/2009 20:00][--a------] C:\Windows\tasks\Norton Internet Security - Analyse systŠme complŠte - othman.job
[04/10/2009 10:44][--ah-----] C:\Windows\tasks\User_Feed_Synchronization-{8872FB24-A449-4011-9D31-616F20C400DB}.job
[04/10/2009 10:45][--ah-----] C:\Windows\tasks\User_Feed_Synchronization-{2E61C77D-B1DC-456A-9664-B0071F64BAE4}.job
[04/10/2009 10:30][--a------] C:\Windows\tasks\Extension de garantie.job
[04/10/2009 10:30][--a------] C:\Windows\tasks\Recovery DVD Creator.job
[04/10/2009 10:47][--ah-----] C:\Windows\tasks\SA.DAT
[04/10/2009 10:47][--a------] C:\Windows\tasks\SCHEDLGU.TXT

--------------------\\ Listing des dossiers dans C:\ProgramData

[01/03/2009|10:49] C:\ProgramData\Adobe
[10/05/2008|19:32] C:\ProgramData\AOL
[02/11/2006|15:02] C:\ProgramData\Application Data
[04/05/2007|20:21] C:\ProgramData\Bureau
[04/04/2007|11:51] C:\ProgramData\Ciel
[02/11/2006|15:02] C:\ProgramData\Desktop
[02/11/2006|15:02] C:\ProgramData\Documents
[31/03/2009|19:09] C:\ProgramData\EmailNotifier
[23/11/2007|19:07] C:\ProgramData\eMule
[04/05/2007|20:21] C:\ProgramData\Favoris
[02/11/2006|15:02] C:\ProgramData\Favorites
[16/11/2008|15:45] C:\ProgramData\Google
[03/10/2009|20:28] C:\ProgramData\Google Updater
[04/04/2007|11:44] C:\ProgramData\InstallShield
[01/10/2008|14:23] C:\ProgramData\Kaspersky Lab
[17/02/2008|12:46] C:\ProgramData\Kiwee Toolbar2
[25/05/2008|09:52] C:\ProgramData\Malwarebytes
[04/05/2007|20:21] C:\ProgramData\Menu D‚marrer
[11/07/2007|23:11] C:\ProgramData\Messenger Plus!
[21/03/2009|13:17] C:\ProgramData\Microsoft
[04/05/2007|20:21] C:\ProgramData\ModŠles
[14/06/2008|16:20] C:\ProgramData\Motive
[01/07/2007|19:08] C:\ProgramData\Mozilla
[29/07/2008|09:03] C:\ProgramData\Name 01 Find
[04/07/2009|11:01] C:\ProgramData\ntuser.pol
[04/04/2007|11:59] C:\ProgramData\OFFICE One v7
[21/08/2009|10:55] C:\ProgramData\Roxio
[10/05/2008|20:04] C:\ProgramData\Skype
[08/05/2007|13:46] C:\ProgramData\Sonic
[15/07/2009|17:08] C:\ProgramData\Sports Interactive
[18/07/2009|09:29] C:\ProgramData\Spybot - Search & Destroy
[02/11/2006|15:02] C:\ProgramData\Start Menu
[03/01/2009|18:10] C:\ProgramData\TEMP
[02/11/2006|15:02] C:\ProgramData\Templates
[08/04/2008|22:59] C:\ProgramData\TVU Networks
[14/04/2008|17:38] C:\ProgramData\WLInstaller

--------------------\\ Listing des dossiers dans C:\Program Files

[01/11/2008|11:35] C:\Program Files\7-Zip
[01/03/2009|10:48] C:\Program Files\Adobe
[26/04/2009|09:26] C:\Program Files\Ad-remover
[02/08/2007|21:18] C:\Program Files\Alwil Software
[18/12/2007|13:25] C:\Program Files\Ankama Games
[10/05/2008|19:27] C:\Program Files\AOL
[21/05/2009|16:28] C:\Program Files\Apple Software Update
[28/01/2009|13:00] C:\Program Files\ASIO4ALL v2
[04/04/2007|11:38] C:\Program Files\ATI Technologies
[22/10/2008|22:27] C:\Program Files\Audacity
[24/05/2009|13:47] C:\Program Files\AviSynth 2.5
[19/07/2009|23:50] C:\Program Files\BearShare Applications
[06/09/2009|10:29] C:\Program Files\Bethesda Softworks
[11/07/2007|23:47] C:\Program Files\BoontyGames
[25/05/2008|09:50] C:\Program Files\CCleaner
[04/04/2007|11:51] C:\Program Files\Ciel
[24/12/2007|12:38] C:\Program Files\Club-Internet
[14/07/2009|20:09] C:\Program Files\Common Files
[31/10/2008|15:56] C:\Program Files\DAEMON Tools Lite
[24/05/2009|13:49] C:\Program Files\Dealio Toolbar
[13/11/2007|13:26] C:\Program Files\Disc2Phone
[29/10/2007|21:47] C:\Program Files\DivX
[14/04/2008|12:24] C:\Program Files\DMV
[30/09/2009|14:06] C:\Program Files\Dofus
[07/04/2009|07:14] C:\Program Files\DofusBeta
[16/07/2009|21:08] C:\Program Files\Electronic Arts
[23/11/2007|19:06] C:\Program Files\eMule
[28/11/2007|20:53] C:\Program Files\EPSON
[24/05/2009|13:45] C:\Program Files\eRightSoft
[04/05/2007|20:21] C:\Program Files\Fichiers communs [C:\Program Files\Common Files]
[27/02/2008|21:27] C:\Program Files\Five A Side Football
[09/09/2009|11:04] C:\Program Files\Free Video Converter
[26/04/2009|12:24] C:\Program Files\Full Tilt Poker
[22/10/2008|13:30] C:\Program Files\GeoGebra
[05/08/2008|15:55] C:\Program Files\Google
[15/07/2008|17:12] C:\Program Files\Gpotato.eu
[08/05/2008|11:34] C:\Program Files\GRISOFT
[04/04/2007|11:38] C:\Program Files\HDReg
[28/02/2009|13:30] C:\Program Files\Image-Line
[04/10/2009|10:29] C:\Program Files\InstallShield Installation Information
[27/08/2009|09:39] C:\Program Files\Internet Explorer
[04/04/2007|11:56] C:\Program Files\ISSENDIS
[18/09/2008|19:42] C:\Program Files\Java
[15/08/2007|22:59] C:\Program Files\Jeskola Buzz
[01/10/2009|17:23] C:\Program Files\KONAMI
[03/05/2009|12:14] C:\Program Files\LG Electronics
[24/05/2009|13:36] C:\Program Files\LG PC Suite II
[28/02/2009|09:48] C:\Program Files\LimeWire
[04/08/2009|15:33] C:\Program Files\Malwarebytes' Anti-Malware
[28/09/2009|07:41] C:\Program Files\MarkAny
[13/11/2008|18:39] C:\Program Files\Mars
[10/02/2008|16:24] C:\Program Files\Matchball Tennis
[27/10/2008|13:30] C:\Program Files\Megaupload
[06/09/2008|10:35] C:\Program Files\Messenger Plus! Live
[07/07/2007|07:46] C:\Program Files\MessengerPlus! 3
[10/02/2008|16:03] C:\Program Files\Micro Application
[21/03/2009|13:12] C:\Program Files\Microsoft
[07/02/2008|22:33] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[02/11/2006|14:37] C:\Program Files\Microsoft Games
[07/02/2008|22:48] C:\Program Files\Microsoft SQL Server Compact Edition
[21/03/2009|13:17] C:\Program Files\Microsoft Sync Framework
[16/07/2009|21:17] C:\Program Files\Microsoft WSE
[17/02/2008|21:16] C:\Program Files\MiniKuGoo
[19/07/2008|09:57] C:\Program Files\Movie Maker
[07/04/2009|20:13] C:\Program Files\Mozilla Firefox
[02/11/2006|14:37] C:\Program Files\MSBuild
[07/06/2007|13:36] C:\Program Files\MSN
[29/06/2007|09:59] C:\Program Files\MSXML 4.0
[04/08/2009|16:02] C:\Program Files\Navilog1
[04/04/2007|11:59] C:\Program Files\OFFICE ONE 7.0
[04/04/2007|11:59] C:\Program Files\OFFICE One v7
[28/01/2009|13:00] C:\Program Files\Outsim
[04/04/2007|12:00] C:\Program Files\Packard Bell
[19/08/2008|10:42] C:\Program Files\Panda Security
[28/09/2009|07:41] C:\Program Files\PC Connectivity Solution
[27/05/2009|18:07] C:\Program Files\PDFCreator
[17/02/2008|12:47] C:\Program Files\PPLive TV
[17/02/2008|12:45] C:\Program Files\ppStream
[18/05/2008|07:13] C:\Program Files\Project64 1.6
[21/05/2009|16:30] C:\Program Files\QuickTime
[23/08/2008|17:03] C:\Program Files\Ratajik Software
[30/08/2008|19:59] C:\Program Files\Real
[04/04/2007|11:37] C:\Program Files\Realtek
[02/11/2006|14:37] C:\Program Files\Reference Assemblies
[08/09/2009|15:18] C:\Program Files\Rockstar Games
[04/04/2007|11:44] C:\Program Files\Roxio
[28/09/2009|07:40] C:\Program Files\Samsung
[28/08/2009|12:37] C:\Program Files\SFR
[01/10/2008|21:07] C:\Program Files\sina
[10/05/2008|20:04] C:\Program Files\Skype
[05/08/2007|01:47] C:\Program Files\Sony Setup
[12/04/2008|17:45] C:\Program Files\SopCast
[14/07/2009|20:08] C:\Program Files\Sports Interactive
[04/10/2009|09:57] C:\Program Files\Spybot - Search & Destroy
[20/07/2007|18:31] C:\Program Files\SystemRequirementsLab
[08/05/2008|14:03] C:\Program Files\Trend Micro
[08/04/2008|23:02] C:\Program Files\tvants
[08/04/2008|22:58] C:\Program Files\TVUPlayer
[02/11/2006|15:01] C:\Program Files\Uninstall Information
[07/08/2009|18:20] C:\Program Files\Veetle
[29/06/2007|18:00] C:\Program Files\VideoLAN
[28/02/2009|13:30] C:\Program Files\VstPlugins
[28/08/2009|13:47] C:\Program Files\Wakfu
[28/04/2009|09:36] C:\Program Files\Winamp
[19/07/2008|09:57] C:\Program Files\Windows Calendar
[19/07/2008|09:57] C:\Program Files\Windows Collaboration
[19/07/2008|09:57] C:\Program Files\Windows Defender
[19/07/2008|09:57] C:\Program Files\Windows Journal
[21/03/2009|13:18] C:\Program Files\Windows Live
[07/02/2008|22:53] C:\Program Files\Windows Live Favorites
[24/10/2008|19:27] C:\Program Files\Windows Live Safety Center
[21/03/2009|13:11] C:\Program Files\Windows Live SkyDrive
[21/03/2009|13:18] C:\Program Files\Windows Live Toolbar
[10/09/2009|06:51] C:\Program Files\Windows Mail
[14/08/2009|10:33] C:\Program Files\Windows Media Player
[04/05/2007|20:21] C:\Program Files\Windows NT
[19/07/2008|09:57] C:\Program Files\Windows Photo Gallery
[19/07/2008|09:57] C:\Program Files\Windows Sidebar
[01/11/2008|20:17] C:\Program Files\WinRAR
[22/10/2008|13:30] C:\Program Files\Zero G Registry

--------------------\\ Listing des dossiers dans C:\Program Files\Common Files

[01/03/2009|10:48] C:\Program Files\Common Files\Adobe
[10/05/2008|19:32] C:\Program Files\Common Files\aol
[04/04/2007|11:51] C:\Program Files\Common Files\Ciel
[15/07/2008|17:40] C:\Program Files\Common Files\INCA Shared
[04/04/2007|11:43] C:\Program Files\Common Files\InstallShield
[18/09/2008|19:40] C:\Program Files\Common Files\Java
[16/07/2009|21:16] C:\Program Files\Common Files\microsoft shared
[24/12/2007|12:38] C:\Program Files\Common Files\Motive
[04/04/2007|11:51] C:\Program Files\Common Files\MSSoap
[04/04/2007|11:40] C:\Program Files\Common Files\Nullsoft
[13/09/2008|15:13] C:\Program Files\Common Files\Real
[04/04/2007|11:44] C:\Program Files\Common Files\Roxio Shared
[02/11/2006|13:18] C:\Program Files\Common Files\Services
[04/04/2007|11:44] C:\Program Files\Common Files\Sonic Shared
[02/11/2006|13:18] C:\Program Files\Common Files\SpeechEngines
[14/07/2009|20:18] C:\Program Files\Common Files\Steam
[04/04/2007|11:44] C:\Program Files\Common Files\SureThing Shared
[10/05/2008|20:14] C:\Program Files\Common Files\Symantec Shared
[02/10/2007|21:20] C:\Program Files\Common Files\Synacast
[19/07/2008|09:57] C:\Program Files\Common Files\System
[21/03/2009|13:05] C:\Program Files\Common Files\Windows Live
[07/02/2008|21:51] C:\Program Files\Common Files\WindowsLiveInstaller

--------------------\\ Process

( 24 Processes )

... OK !

--------------------\\ Recherche avec S_Lop

Aucun fichier / dossier Lop trouvé !

--------------------\\ Recherche de Fichiers / Dossiers Lop

Aucun fichier / dossier Lop trouvé !

--------------------\\ Verification du Registre

..... OK !

--------------------\\ Verification du fichier Hosts

Fichier Hosts PROPRE

--------------------\\ Recherche de fichiers avec Catchme

catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-10-04 10:57:48
Windows 6.0.6001 Service Pack 1 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 370

--------------------\\ Recherche d'autres infections

--------------------\\ Cracks & Keygens ..

C:\Users\othman\AppData\Roaming\Microsoft\Windows\Recent\._FM2009.9.3.0.b36280.UBCrack.dmg.lnk
C:\Users\othman\AppData\Roaming\Microsoft\Windows\Recent\Crack Final Fantasy VIII Fr.zip.lnk
C:\Users\othman\AppData\Roaming\Microsoft\Windows\Recent\FM2009.9.3.0.b36280.UBCrack.dmg.zip.lnk
C:\Users\othman\AppData\Roaming\Microsoft\Windows\Recent\GTA.4.CRACK.WORKING-LOBO.rar.lnk
C:\Users\othman\Desktop\son$ a Othman\14.04.2009\14 mars sonn\07.04.2009\07.04.2009\Rick Ross - Crack A Bottle (Remix) ( 2oo9 ) [ www.MzHipHop.com ].mp3
C:\Users\othman\Desktop\son$ a Othman\14.04.2009\14 mars sonn\17.3.2OO9\18.3.2OO9\19.3.2OO9\20.3.2OO9\20.3.2OO9\Jay Rock - Crack A Bottle (Freestyle) ( 2oo9 ) [ www.MzHipHop.com ].mp3
C:\Users\othman\Desktop\son$ a Othman\30.1.2OO9\5.2.2OO9\5.2.2OO9\Eminem Feat. Ca$his & Bobby Creekwater - Crack A Bottle (Remix) ( 2oo9 ) [ www.MzHipHop.com ].mp3
C:\Users\othman\Desktop\son$ a Othman\30.1.2OO9\6.1.2OO9\Eminem Feat. Dr. Dre & 50 Cent - Crack A Bottle (Prod. By Dr. Dre) (Official) ( 2oo9 ) [ www.MzHipHop.com ].mp3
C:\Users\othman\Desktop\son$ a Othman\JAY-Z DISCOGRAPHY\Jay-z - in my lifetime... vol 1\12-jay-z-rap_game__crack_game-eDm.mp3
C:\Users\othman\Desktop\son$ a Othman\Rim-K-Famille_Nombreuse-FR-2007-H5N1-TCHEK_DA_PUTE\Rim-K-Famille_Nombreuse-FR-2007-H5N1\11-rim-k-pilotes_crack_musik_feat._hamza.mp3
C:\Users\othman\Documents\Mes t‚l‚chargements\The.Sims.3.Crackfix.Read.Nfo-Razor1911.Up.By.DarK-AleX.for.TeaM-Digital
C:\Users\othman\Documents\Mes t‚l‚chargements\The.Sims.3.Crackfix.Read.Nfo-Razor1911.Up.By.DarK-AleX.for.TeaM-Digital.rar
C:\Users\othman\Documents\Mes t‚l‚chargements\GTA San Andreas\GTA San Andreas\data\Decision\Craig\crack1.ped
C:\Users\othman\Documents\Mes t‚l‚chargements\The.Sims.3.Crackfix.Read.Nfo-Razor1911.Up.By.DarK-AleX.for.TeaM-Digital\The_Sims_3_Crackfix_Read_Nfo-Razor1911
C:\Users\othman\Documents\Mes t‚l‚chargements\The.Sims.3.Crackfix.Read.Nfo-Razor1911.Up.By.DarK-AleX.for.TeaM-Digital\The_Sims_3_Crackfix_Read_Nfo-Razor1911\rzr-s3cf.nfo
C:\Users\othman\Documents\Mes t‚l‚chargements\The.Sims.3.Crackfix.Read.Nfo-Razor1911.Up.By.DarK-AleX.for.TeaM-Digital\The_Sims_3_Crackfix_Read_Nfo-Razor1911\TS3.exe
C:\Users\othman\Downloads\FM2009.9.3.0.b36280.UBCrack.dmg.zip
C:\Users\othman\Downloads\FM9Keygen
C:\Users\othman\Downloads\GTA.4.CRACK.WORKING-LOBO.rar
C:\Users\othman\Downloads\eMule\Incoming\Fruty Loops Studio 8 With Crack
C:\Users\othman\Downloads\eMule\Incoming\Fruty Loops Studio 8 With Crack\FLRegkey.Reg
C:\Users\othman\Downloads\eMule\Incoming\Fruty Loops Studio 8 With Crack\flstudio8_rc2.exe

[F:26][D:66]-> C:\Users\othman\AppData\Local\Temp
[F:59][D:1]-> C:\Users\othman\AppData\Roaming\MICROS~1\Windows\Cookies
[F:1212][D:8]-> C:\Users\othman\AppData\Local\MICROS~1\Windows\TEMPOR~1\content.IE5
[F:277][D:29]-> C:\$Recycle.Bin

1 - "C:\Lop SD\LopR_1.txt" - 04/10/2009|11:00 - Option : [2]

--------------------\\ Fin du rapport a 11:00:11
[ UAC => 1 ]

le nouveau raport hijackthis :

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 10:13:34, on 04/10/2009
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v8.00 (8.00.6001.18813)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\ATI Technologies\ATI.ACE\CLI.EXE
C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe
C:\Program Files\Winamp\winampa.exe
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
C:\Program Files\Alwil Software\Avast4\ashDisp.exe
C:\Program Files\Search Settings\SearchSettings.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Packard Bell\SetUpMyPC\SmpSys.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\DAEMON Tools Lite\daemon.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Windows\ehome\ehmsas.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\CPSHelpRunner.exe
C:\Program Files\ATI Technologies\ATI.ACE\CLI.exe
C:\Program Files\ATI Technologies\ATI.ACE\CLI.exe
C:\Windows\system32\conime.exe
C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe
C:\Windows\explorer.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\PROGRA~1\MOZILL~1\FIREFOX.EXE
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.sfr.fr/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - {6638A9DE-0745-4292-8A2E-AE530E7B9B3F} - (no file)
R3 - URLSearchHook: SearchSettings Class - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\Search Settings\kb128\SearchSettings.dll
O2 - BHO: Dealio Toolbar - {01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C} - C:\Program Files\Dealio Toolbar\DealioToolbarIE.dll
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: UrlHelper Class - {74322BF9-DF26-493f-B0DA-6D2FC5E6429E} - C:\Program Files\BearShare Applications\BearShare\BearShareIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll
O2 - BHO: MegaIEMn - {bf00e119-21a3-4fd1-b178-3b8537e75c92} - C:\Program Files\Megaupload\Mega Manager\MegaIEMn.dll
O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\Google\Google_BAE\BAE.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O2 - BHO: SearchSettings Class - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\Search Settings\kb128\SearchSettings.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: Dealio Toolbar - {01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C} - C:\Program Files\Dealio Toolbar\DealioToolbarIE.dll
O3 - Toolbar: BearShare MediaBar - {D3DEE18F-DB64-4BEB-9FF1-E1F0A5033E4A} - C:\Program Files\BearShare Applications\BearShare MediaBar\BearShareMediaBar.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\CLIStart.exe"
O4 - HKLM\..\Run: [RoxWatchTray] "C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe"
O4 - HKLM\..\Run: [toolbar_eula_launcher] C:\Program Files\Packard Bell\GOOGLE_EULA\EULALauncher.exe
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\winampa.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [SearchSettings] C:\Program Files\Search Settings\SearchSettings.exe
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [SmpcSys] C:\Program Files\Packard Bell\SetUpMyPC\SmpSys.exe
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe" -autorun
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
O8 - Extra context menu item: Add to Windows &Live Favorites - https://onedrive.live.com/?id=favorites
O8 - Extra context menu item: Liens de téléchargement avec Mega Manager... - C:\Program Files\Megaupload\Mega Manager\mm_file.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\PROGRA~1\Java\JRE16~1.0_0\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\PROGRA~1\Java\JRE16~1.0_0\bin\ssv.dll
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\Windows\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\Windows\bdoscandel.exe (file missing)
O13 - Gopher Prefix:
O16 - DPF: CabBuilder - http://ak.imgag.com/imgag/kiw/toolbar/download/InstallerControl.cab
O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/2008.10.10_v5.5.8/FacebookPhotoUploader5.cab
O16 - DPF: {78ABDC59-D8E7-44D3-9A76-9A0918C52B4A} (DLoader Class) - http://dl.uc.sina.com/cab/downloader.cab
O23 - Service: AOL Connectivity Service (AOL ACS) - AOL LLC - C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: FsUsbExService - Teruten - C:\Windows\system32\FsUsbExService.Exe
O23 - Service: Generic Service for HID Keyboard Input Collections (GenericHidService) - Packard Bell BV - C:\Program Files\Packard bell\SAXO27\HIDSERVICE.EXE
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: Roxio Hard Drive Watcher 9 (RoxWatch9) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe
O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe
O23 - Service: SrvCDEject - Unknown owner - C:\Program Files\Packard Bell\SrvCDEject.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
0
eZula Messages postés 3509 Statut Contributeur 392
 
Suis les instructions du dernier rapport GenProc
0
Pharrel Williams Messages postés 67 Statut Membre
 
J'ai suivi les instructions et aucune infection... puis aucun rapport egalement meme dans c:/
0
eZula Messages postés 3509 Statut Contributeur 392
 
Où en sont tes problèmes ?
0
Pharrel Williams Messages postés 67 Statut Membre
 
et bien pas de ralentissement... l'unité centrale mais un peut de bruit c tout. Aparamen je psycote un pe pour rien aparamen mais freres et soeur ne l'ont pas si maltraité que sa lol
0
eZula Messages postés 3509 Statut Contributeur 392
 
Par contre fais attention avec ça

--------------------\\ Cracks & Keygens ..

C:\Users\othman\AppData\Roaming\Microsoft\Windows\Recent\._FM2009.9.3.0.b36280.UBCrack.dmg.lnk
C:\Users\othman\AppData\Roaming\Microsoft\Windows\Recent\Crack Final Fantasy VIII Fr.zip.lnk
C:\Users\othman\AppData\Roaming\Microsoft\Windows\Recent\FM2009.9.3.0.b36280.UBCrack.dmg.zip.lnk
C:\Users\othman\AppData\Roaming\Microsoft\Windows\Recent\GTA.4.CRACK.WORKING-LOBO.rar.lnk
C:\Users\othman\Desktop\son$ a Othman\14.04.2009\14 mars sonn\07.04.2009\07.04.2009\Rick Ross - Crack A Bottle (Remix) ( 2oo9 ) [ www.MzHipHop.com ].mp3
C:\Users\othman\Desktop\son$ a Othman\14.04.2009\14 mars sonn\17.3.2OO9\18.3.2OO9\19.3.2OO9\20.3.2OO9\20.3.2OO9\Jay Rock - Crack A Bottle (Freestyle) ( 2oo9 ) [ www.MzHipHop.com ].mp3
C:\Users\othman\Desktop\son$ a Othman\30.1.2OO9\5.2.2OO9\5.2.2OO9\Eminem Feat. Ca$his & Bobby Creekwater - Crack A Bottle (Remix) ( 2oo9 ) [ www.MzHipHop.com ].mp3
C:\Users\othman\Desktop\son$ a Othman\30.1.2OO9\6.1.2OO9\Eminem Feat. Dr. Dre & 50 Cent - Crack A Bottle (Prod. By Dr. Dre) (Official) ( 2oo9 ) [ www.MzHipHop.com ].mp3
C:\Users\othman\Desktop\son$ a Othman\JAY-Z DISCOGRAPHY\Jay-z - in my lifetime... vol 1\12-jay-z-rap_game__crack_game-eDm.mp3
C:\Users\othman\Desktop\son$ a Othman\Rim-K-Famille_Nombreuse-FR-2007-H5N1-TCHEK_DA_PUTE\Rim-K-Famille_Nombreuse-FR-2007-H5N1\11-rim-k-pilotes_crack_musik_feat._hamza.mp3
C:\Users\othman\Documents\Mes t‚l‚chargements\The.Sims.3.Crackfix.Read.Nfo-Razor1911.Up.By.DarK-AleX.for.TeaM-Digital
C:\Users\othman\Documents\Mes t‚l‚chargements\The.Sims.3.Crackfix.Read.Nfo-Razor1911.Up.By.DarK-AleX.for.TeaM-Digital.rar
C:\Users\othman\Documents\Mes t‚l‚chargements\GTA San Andreas\GTA San Andreas\data\Decision\Craig\crack1.ped
C:\Users\othman\Documents\Mes t‚l‚chargements\The.Sims.3.Crackfix.Read.Nfo-Razor1911.Up.By.DarK-AleX.for.TeaM-Digital\The_Sims_3_Crackfix_Read_Nfo-Razor1911
C:\Users\othman\Documents\Mes t‚l‚chargements\The.Sims.3.Crackfix.Read.Nfo-Razor1911.Up.By.DarK-AleX.for.TeaM-Digital\The_Sims_3_Crackfix_Read_Nfo-Razor1911\rzr-s3cf.nfo
C:\Users\othman\Documents\Mes t‚l‚chargements\The.Sims.3.Crackfix.Read.Nfo-Razor1911.Up.By.DarK-AleX.for.TeaM-Digital\The_Sims_3_Crackfix_Read_Nfo-Razor1911\TS3.exe
C:\Users\othman\Downloads\FM2009.9.3.0.b36280.UBCrack.dmg.zip
C:\Users\othman\Downloads\FM9Keygen
C:\Users\othman\Downloads\GTA.4.CRACK.WORKING-LOBO.rar
C:\Users\othman\Downloads\eMule\Incoming\Fruty Loops Studio 8 With Crack
C:\Users\othman\Downloads\eMule\Incoming\Fruty Loops Studio 8 With Crack\FLRegkey.Reg
C:\Users\othman\Downloads\eMule\Incoming\Fruty Loops Studio 8 With Crack\flstudio8_rc2.exe 


je te fais pas un dessin
0