Virus et skype

Olivier -  
darkcrystal33 Messages postés 3809 Date d'inscription   Statut Contributeur Dernière intervention   -
Bonjour,

J’ai du choper un virus hier et depuis ma page de démarrage de IE a change pour celle de MSN et surtout mon skype ne marche plus !!!
IL semble toujours se lancer au démarrage mais est inaccessible. Il n’est plus affiché dans le gestionnaire de programme, onglet applications mais seulement dans les processus. Mes contacts Skype me voit comme « connecté » et s’il essaye de m’envoyer un message, je m’en rends compte car l’icône apparaît quand je fais ALT TAB, la petite fenêtre dans le coin de l’écran s’ouvre aussi pour m’avertir de leur envoi mais elle est vide comme si Skype n’arrivait pas à afficher son contenu.
Je soupçonne un sale truc d’avoir changé la config des ports qu’utilise Skype ou de s’en servir et donc de le ralentir, ce qui l’empêcherait donc d’afficher le contenu de ses fenêtres.
Je pense avoir tout essayé :
anti virus : Bitdefender, AVK et antivir
anti espion : adaware, spy bot et spycatcher
J’ai trouvé qq petits trucs que j’ai nettoyés :
un trojan supprimé dans une archive
2 espions low et une vingtaine de cookie
Depuis j’ai installé kerio (je n’avais pas de part feu, travaillant avec une freebox en mode routeur) et winpatrol qui me donne le rapport suivant :




WinPatrol Report Log
Report created by WinPatrol version 9.0.0.3:9.0.0.3 at 4:59:06 PM, on 5/28/2005

Platform: Windows XP Home Edition Service Pack 2 (Build 2600)
Browser: Système d'exploitation Microsoft® Windows® - Internet Explorer version 6.00.2900.2180
Memory currently in use: 65%

MSIE: Internet Explorer (6.00.2900.2180)
IE Cookie Path: C:\Documents and Settings\RECTORAT DE LYON\Cookies\
Firefox 1.7.5: 2004110812 installed in C:\Program Files\internet\FireFox\

HKLM Default_Page_URL = http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
HKCU Start Page = http://www.google.fr/
HKLM Start Page = http://www.msn.com

WinLogon DefaultUserName=RECTORAT DE LYON
WinLogon DefaultDomainName=MAXDATA-D178041
WinLogon Shell=Explorer.exe
WinLogon UserInit=C:\WINDOWS\system32\userinit.exe,

• Démarrage •
• IgfxTray
igfxtray.exe igfxTray Module
Version: 7,0,0,2082 Copyright 1999-2003, Intel Corporation
Location: HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run
Path: C:\Windows\system32\igfxtray.exe
Click for Plus Info

• HotKeysCmds
hkcmd.exe hkcmd Module
Version: 7,0,0,2082 Copyright 1999-2003, Intel Corporation
Location: HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run
Path: C:\Windows\system32\hkcmd.exe
Click for Plus Info

• RemoteControl
PDVDServ.exe PowerDVD RC Service
Version: 5.00.0000 Copyright (c) CyberLink Corp. 1997-2002
Location: HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run
Path: C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
Click for Plus Info

• NeroFilterCheck
NeroCheck.exe NeroCheck
Version: 1, 0, 0, 2 Copyright © 2001
Location: HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run
Path: C:\Windows\system32\NeroCheck.exe
Click for Plus Info

• AVK Mail Checker
AVKPop.exe AVK POP3/IMAP Proxy
Version: 3, 0, 2, 0 Copyright 2001-2004
Location: HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run
Path: C:\Program Files\Fichiers communs\G DATA\AVKMail\AVKPop.exe
Click for Plus Info

• ezShieldProtector for Px
ezSP_Px.exe ezSP_Px MFC Application
Version: 1, 0, 0, 0 Copyright (C) 2002 Easy Systems Japan Ltd.
Location: HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run
Path: C:\Windows\system32\ezSP_Px.exe
Click for Plus Info

• SunJavaUpdateSched
jusched.exe Java(TM) 2 Platform Standard Edition binary
Version: 5.0.20.9 Copyright © 2004
Location: HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run
Path: C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
Click for Plus Info

• SoundMan
SOUNDMAN.EXE Realtek Sound Manager
Version: 5.0.21 Copyright (c) 2001-2003 Realtek Semiconductor Corp.
Location: HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run
Path: SOUNDMAN.EXE
Click for Plus Info

• HPDJ Taskbar Utility
hpztsb04.exe Version: 2,76,0,0 Copyright (c) Hewlett-Packard Company 1999-2001
Location: HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run
Path: C:\Windows\system32\spool\drivers\w32x86\3\hpztsb04.exe
Click for Plus Info

• FTP Server
ftpserv.exe TYPSoft FTP Server
Version: 1.10 Copyright © TYPSoft 1998-2003
Location: HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run
Path: C:\Program Files\TYPSoft FTP Server\ftpserv.exe
Click for Plus Info

• Zone Labs Client
zlclient.exe Zone Labs Client
Version: 5.1.039.004 Copyright © 1998-2004, Zone Labs Inc.
Location: HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run
Path: C:\Program Files\sécurité\ZoneAlarm\zlclient.exe
Click for Plus Info

• WinPatrol
winpatrol.exe WinPatrol System Monitor
Version: 9.0.0.3 Copyright © 1997- 2005 BillP Studios
Location: HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run
Path: C:\Program Files\sécurité\winpatrol\winpatrol.exe
Click for Plus Info

• BDMCon
bdmcon.exe BitDefender Management Console
Version: 7.0 Copyright (C) 2002 SOFTWIN S.R.L.
Location: HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run
Path: C:\Program Files\sécurité\Bitdefender\\bdmcon.exe
Click for Plus Info

• BDNewsAgent
bdnagent.exe
Location: HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run
Path: C:\Program Files\sécurité\Bitdefender\\bdnagent.exe
Click for Plus Info

• Titre inconnu
WinKey.exe
Location: Windows Startup Group
Path: C:\Program Files\sytème\WinKey\WinKey.exe
Click for Plus Info

• No-IP DUC
DUC20.exe No-IP.com DUC
Version: 2.2.1.0 Vitalwerks LLC & No-IP.com
Location: Windows Startup Group
Path: C:\Program Files\No-IP\DUC20.exe
Click for Plus Info

• OmniPage
OPware32.exe OCR Aware (32-bit)
Version: 10.0 Copyright © 1995-1999 Caere Corporation
Location: * Désactivé * HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run
Path: C:\Program Files\bureautique\omnipage pro10\OPware32.exe
Click for Plus Info

• TkBellExe
realsched.exe -osboot RealNetworks Scheduler
Version: 0.1.0.3249 Copyright © RealNetworks, Inc. 1995-2004
Location: * Désactivé * HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run
Path: C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe -osboot
Click for Plus Info

• GhostSurfDelSatellite
DeleteSatellite.exe GhostSurf satellite deletion tool
Version: 3, 0, 0, 1 Copyright © 2004 Tenebril Inc.
Location: * Désactivé * HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce
Path: C:\Program Files\sécurité\SpyCatcher\DeleteSatellite.exe
Click for Plus Info

• TotalRecorderScheduler
TotRecSched.exe Total Recorder scheduler
Version: 4, 0, 0, 1 Copyright (C) High Criteria inc.,1998-2002
Location: * Désactivé * HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run
Path: C:\Program Files\audio\total recorder\TotRecSched.exe
Click for Plus Info

• UserFaultCheck
dumprep 0 -u
Location: * Désactivé * HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run
Path: %systemroot%\system32\dumprep 0 -u
Click for Plus Info

• GhostSurfDelSatellite
DeleteSatellite.exe nowait GhostSurf satellite deletion tool
Version: 3, 0, 0, 1 Copyright © 2004 Tenebril Inc.
Location: * Désactivé * HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce
Path: C:\Program Files\sécurité\SpyCatcher\DeleteSatellite.exe nowait
Click for Plus Info

• Tâches actives •
• Gestionnaire de session Windows NT
smss.exe Gestionnaire de session Windows NT
Version: 5.1.2600.2180 © Microsoft Corporation. Tous droits réservés.
Path: C:\Windows\system32\smss.exe
Click for Plus Info

• Application d'ouverture de session Windows NT
winlogon.exe Application d'ouverture de session Windows NT
Version: 5.1.2600.2180 © Microsoft Corporation. Tous droits réservés.
Path: C:\Windows\system32\winlogon.exe
Click for Plus Info

• Applications Services et Contrôleur
services.exe Applications Services et Contrôleur
Version: 5.1.2600.2180 © Microsoft Corporation. Tous droits réservés.
Path: C:\Windows\system32\services.exe
Click for Plus Info

• LSA Shell (Export Version)
lsass.exe LSA Shell (Export Version)
Version: 5.1.2600.2180 © Microsoft Corporation. All rights reserved.
Path: C:\Windows\system32\lsass.exe
Click for Plus Info

• Generic Host Process for Win32 Services
svchost.exe Generic Host Process for Win32 Services
Version: 5.1.2600.2180 © Microsoft Corporation. All rights reserved.
Path: C:\Windows\system32\svchost.exe
Click for Plus Info

• Spooler SubSystem App
spoolsv.exe Spooler SubSystem App
Version: 5.1.2600.2180 © Microsoft Corporation. All rights reserved.
Path: C:\Windows\system32\spoolsv.exe
Click for Plus Info

• Explorateur Windows
explorer.exe Explorateur Windows
Version: 6.00.2900.2180 © Microsoft Corporation. Tous droits réservés.
Path: C:\Windows\explorer.exe
Click for Plus Info

• igfxTray Module
igfxtray.exe igfxTray Module
Version: 7,0,0,2082 Copyright 1999-2003, Intel Corporation
Path: C:\Windows\system32\igfxtray.exe
Click for Plus Info

• hkcmd Module
hkcmd.exe hkcmd Module
Version: 7,0,0,2082 Copyright 1999-2003, Intel Corporation
Path: C:\Windows\system32\hkcmd.exe
Click for Plus Info

• AVK POP3/IMAP Proxy
AVKPop.exe AVK POP3/IMAP Proxy
Version: 3, 0, 2, 0 Copyright 2001-2004
Path: C:\PROGRAM FILES\FICHIERS COMMUNS\G DATA\AVKMail\AVKPop.exe
Click for Plus Info

• ZoomText 8
Zt8.exe ZoomText 8
Version: 8.13 Copyright © Ai Squared 1999-2005, All Rights Reserved
Path: C:\PROGRAM FILES\ZOOMTEXT 8.1\Zt8.exe
Click for Plus Info

• ezSP_Px MFC Application
ezSP_Px.exe ezSP_Px MFC Application
Version: 1, 0, 0, 0 Copyright (C) 2002 Easy Systems Japan Ltd.
Path: C:\Windows\system32\ezSP_Px.exe
Click for Plus Info

• Java(TM) 2 Platform Standard Edition binary
jusched.exe Java(TM) 2 Platform Standard Edition binary
Version: 5.0.20.9 Copyright © 2004
Path: C:\PROGRAM FILES\Java\JRE1.5.0_02\bin\jusched.exe
Click for Plus Info

• Realtek Sound Manager
SOUNDMAN.EXE Realtek Sound Manager
Version: 5.0.21 Copyright (c) 2001-2003 Realtek Semiconductor Corp.
Path: C:\Windows\SOUNDMAN.EXE
Click for Plus Info

• AVKService Module
AVKSERVICE.EXE AVKService Module
Version: 11, 0, 0, 0 Copyright G DATA Software AG 2001-2003
Path: C:\PROGRAM FILES\ANTIVIRUSKIT 2004\AVKSERVICE.EXE
Click for Plus Info

• WinPatrol System Monitor
WINPATROL.EXE WinPatrol System Monitor
Version: 9.0.0.3 Copyright © 1997- 2005 BillP Studios
Path: C:\Program Files\sécurité\winpatrol\WINPATROL.EXE
Click for Plus Info

• AVKWCtl Monitor Service
AVKWCtl.exe AVKWCtl Monitor Service
Version: 14, 0, 0, 0 Path: C:\PROGRAM FILES\ANTIVIRUSKIT 2004\AVKWCtl.exe
Click for Plus Info

• AntiVir Software Update Service for Windows
AVWUPSRV.EXE AntiVir Software Update Service for Windows
Version: 6.30.00.02 Copyright © 1998-2005 H+BEDV Datentechnik GmbH. Alle Reche vorbehalten.
Path: C:\PROGRAM FILES\sécurité\Antivir\AVWUPSRV.EXE
Click for Plus Info

• CrypKey NT Service
Crypserv.exe CrypKey NT Service
Version: 5.4 Copyright © 2000
Path: C:\Windows\system32\Crypserv.exe
Click for Plus Info

• Application file for JAWS
jfw.exe Application file for JAWS
Version: 5, 0, 855, 0 Copyright © 1993-2004
Path: C:\JAWS500\jfw.exe
Click for Plus Info

• Titre inconnu
WinKey.exe
Path: C:\PROGRAM FILES\sytème\WinKey\WinKey.exe
Click for Plus Info

• Kerio Personal Firewall 4 - Service
kpf4ss.exe Kerio Personal Firewall 4 - Service
Version: 4.1.3 Copyright (C) 1997-2004 Kerio Technologies
Path: C:\PROGRAM FILES\sécurité\kerio\PERSONAL FIREWALL 4\kpf4ss.exe
Click for Plus Info

• Kerio Personal Firewall 4 - GUI
kpf4gui.exe Kerio Personal Firewall 4 - GUI
Version: 4.1.3 Copyright (C) 1997-2004 Kerio Technologies
Path: C:\PROGRAM FILES\sécurité\kerio\PERSONAL FIREWALL 4\kpf4gui.exe
Click for Plus Info

• BitDefender Communicator Server
xcommsvr.exe BitDefender Communicator Server
Version: 1, 7, 0, 6 Copyright © 2003-2004 Softwin
Path: C:\PROGRAM FILES\FICHIERS COMMUNS\Softwin\BITDEFENDER COMMUNICATOR\xcommsvr.exe
Click for Plus Info

• Titre inconnu
bdss.exe
Path: C:\PROGRAM FILES\FICHIERS COMMUNS\Softwin\BITDEFENDER SCAN SERVER\bdss.exe
Click for Plus Info

• Titre inconnu
jhookldr.exe
Path: C:\JAWS500\jhookldr.exe
Click for Plus Info

• MSN Messenger
msnmsgr.exe MSN Messenger
Version: Version 6.2 Copyright (c) Microsoft Corporation 1997-2004
Path: C:\PROGRAM FILES\MSN MESSENGER\msnmsgr.exe
Click for Plus Info

• WinPatrol Explorer
WINPATROLEX.EXE WinPatrol Explorer
Version: 9.0.0.3 Copyright © 2004-2005 BillP Studios
Path: C:\Program Files\sécurité\winpatrol\WINPATROLEX.EXE
Click for Plus Info

• BHO/Barres d'outils IE •
• ZoomText 8
ah_ie_bho.dll AHOI Module for Internet Explorer
Version: 8.13 Copyright © Ai Squared 2001-2005, All Rights Reserved
Path: C:\Program Files\ZoomText 8.1\ahoi\ah_ie_bho.dll
8.13
Emplacement: "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects"
Click for Plus Info

• Recherche

c:\PROGRA~1\MICROS~2\OFFICE11\REFBARH.ICO
Emplacement: "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions"
Click for Plus Info

• Messenger
msmsgs.exe Windows Messenger
Version: Version 4.7.3001 Copyright (c) Microsoft Corporation 2004
Path: C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Messenger\msmsgs.exe,302
Emplacement: "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions"
Click for Plus Info

• Types de fichiers •
• AVI Video
RealPlay.exe %1 RealPlayer
Version: 6.0.12.1059 Copyright © RealNetworks, Inc. 1995-2004
Path: C:\Program Files\multimedia\realplayer\RealPlay.exe %1
.AVI
Click for Plus Info

• Fichier de commande MS-DOS
%1 %*
Path: %1 %*
.BAT
Click for Plus Info

• Image bitmap
ois.exe /shellOpen %1 Microsoft Office Picture Manager
Version: 11.0.5510 Copyright © 2003 Microsoft Corporation. All rights reserved.
Path: C:\PROGRA~1\MICROS~2\OFFICE11\ois.exe /shellOpen %1
.BMP
Click for Plus Info

• CD Audio
RealPlay.exe %1 RealPlayer
Version: 6.0.12.1059 Copyright © RealNetworks, Inc. 1995-2004
Path: C:\Program Files\multimedia\realplayer\RealPlay.exe %1
.CDA
Click for Plus Info

• Fichier HTML compilé
hh.exe %1 Microsoft® HTML Help Executable
Version: 5.2.3790.1159 © Microsoft Corporation. All rights reserved.
Path: C:\WINDOWS\hh.exe %1
.CHM
Click for Plus Info

• Application MS-DOS
%1 %*
Path: %1 %*
.COM
Click for Plus Info

• Script de commande Windows NT
%1 %*
Path: %1 %*
.CMD
Click for Plus Info

• Document Microsoft Word
WINWORD.EXE /n /dde Microsoft Office Word
Version: 11.0.6359 Copyright © 1983-2003 Microsoft Corporation. All rights reserved.
Path: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE /n /dde
.DOC
Click for Plus Info

• Message de Outlook Express Mail
msimn.exe /eml:%1 Outlook Express
Version: 6.00.2900.2180 © 2004 Microsoft Corporation. Tous droits réservés.
Path: C:\Program Files\Outlook Express\msimn.exe /eml:%1
.EML
Click for Plus Info

• Application
%1 %*
Path: %1 %*
.EXE
Click for Plus Info

• Image GIF
ois.exe /shellOpen %1 Microsoft Office Picture Manager
Version: 11.0.5510 Copyright © 2003 Microsoft Corporation. All rights reserved.
Path: C:\PROGRA~1\MICROS~2\OFFICE11\ois.exe /shellOpen %1
.GIF
Click for Plus Info

• HTML Document
iexplore.exe -nohome Internet Explorer
Version: 6.00.2900.2180 © Microsoft Corporation. Tous droits réservés.
Path: C:\Program Files\Internet Explorer\iexplore.exe -nohome
.HTML
Click for Plus Info

• Informations de configuration
NOTEPAD.EXE %1 Bloc-notes
Version: 5.1.2600.2180 © Microsoft Corporation. Tous droits réservés.
Path: C:\WINDOWS\System32\NOTEPAD.EXE %1
.INF
Click for Plus Info

• Image JPEG
ois.exe /shellOpen %1 Microsoft Office Picture Manager
Version: 11.0.5510 Copyright © 2003 Microsoft Corporation. All rights reserved.
Path: C:\PROGRA~1\MICROS~2\OFFICE11\ois.exe /shellOpen %1
.JPG
Click for Plus Info

• Fichier script JScript
WScript.exe %1 %* Microsoft (r) Windows Based Script Host
Version: 5.6.0.8820 Copyright © Microsoft Corp. 2002
Path: C:\WINDOWS\System32\WScript.exe %1 %*
.JS
Click for Plus Info

• Document texte
NOTEPAD.EXE %1 Bloc-notes
Version: 5.1.2600.2180 © Microsoft Corporation. Tous droits réservés.
Path: C:\WINDOWS\system32\NOTEPAD.EXE %1
.LOG
Click for Plus Info

• Séquence MIDI
wmplayer.exe /Open %L Lecteur Windows Media
Version: 10.00.00.3646 (C) Microsoft Corporation. Tous droits réservés.
Path: C:\Program Files\Windows Media Player\wmplayer.exe /Open %L
.MID
Click for Plus Info

• MP3 Audio
RealPlay.exe %1 RealPlayer
Version: 6.0.12.1059 Copyright © RealNetworks, Inc. 1995-2004
Path: C:\Program Files\multimedia\realplayer\RealPlay.exe %1
.MP3
Click for Plus Info

• Raccourci pour le programme MS-DOS
%1 %*
Path: %1 %*
.PIF
Click for Plus Info

• Adobe Acrobat Document
AcroRd32.exe %1 Adobe Reader 6.0
Version: 6.0.1.2003110300 Copyright 1984-2003 Adobe Systems Incorporated and its licensors. All rights reserved.
Path: C:\Program Files\Adobe\Acrobat 6.0\Reader\AcroRd32.exe %1
.PDF
Click for Plus Info

• RealPlayer Presentation
RealPlay.exe %1 RealPlayer
Version: 6.0.12.1059 Copyright © RealNetworks, Inc. 1995-2004
Path: C:\Program Files\multimedia\realplayer\RealPlay.exe %1
.RAM
Click for Plus Info

• Inscription dans le Registre
regedit.exe %1 Éditeur du Registre
Version: 5.1.2600.2180 © Microsoft Corporation. Tous droits réservés.
Path: regedit.exe %1
.REG
Click for Plus Info

• Format RTF
WINWORD.EXE /n /dde Microsoft Office Word
Version: 11.0.6359 Copyright © 1983-2003 Microsoft Corporation. All rights reserved.
Path: C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE /n /dde
.RTF
Click for Plus Info

• Spyware supplemental file
SpybotSD.exe %1
Path: C:\Program Files\sécurité\Spybot - Search & Destroy\SpybotSD.exe %1
.SBS
Click for Plus Info

• Écran de veille
%1 /S
Path: %1 /S
.SCR
Click for Plus Info

• Document texte
NOTEPAD.EXE %1 Bloc-notes
Version: 5.1.2600.2180 © Microsoft Corporation. Tous droits réservés.
Path: C:\WINDOWS\system32\NOTEPAD.EXE %1
.TXT
Click for Plus Info

• Raccourci Internet
rundll32.exe shdocvw.dll,OpenURL %l Exécuter une DLL en tant qu'application
Version: 5.1.2600.2180 © Microsoft Corporation. Tous droits réservés.
Path: rundll32.exe shdocvw.dll,OpenURL %l
.URL
Click for Plus Info

• Fichier script VBScript
WScript.exe %1 %* Microsoft (r) Windows Based Script Host
Version: 5.6.0.8820 Copyright © Microsoft Corp. 2002
Path: C:\WINDOWS\System32\WScript.exe %1 %*
.VBS
Click for Plus Info

• Fichier script crypté VBScript
WScript.exe %1 %* Microsoft (r) Windows Based Script Host
Version: 5.6.0.8820 Copyright © Microsoft Corp. 2002
Path: C:\WINDOWS\System32\WScript.exe %1 %*
.VBE
Click for Plus Info

• WAV Audio
RealPlay.exe %1 RealPlayer
Version: 6.0.12.1059 Copyright © RealNetworks, Inc. 1995-2004
Path: C:\Program Files\multimedia\realplayer\RealPlay.exe %1
.WAV
Click for Plus Info

• Fichier script Windows
WScript.exe %1 %* Microsoft (r) Windows Based Script Host
Version: 5.6.0.8820 Copyright © Microsoft Corp. 2002
Path: C:\WINDOWS\System32\WScript.exe %1 %*
.WSF
Click for Plus Info

• Fichier de configuration de l'environnement d'exécution de scripts Windows
WScript.exe %1 %* Microsoft (r) Windows Based Script Host
Version: 5.6.0.8820 Copyright © Microsoft Corp. 2002
Path: C:\WINDOWS\System32\WScript.exe %1 %*
.WSH
Click for Plus Info

• Fichier audio/vidéo Windows Media
wmplayer.exe /prefetch:7 /Open %L Lecteur Windows Media
Version: 10.00.00.3646 (C) Microsoft Corporation. Tous droits réservés.
Path: C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:7 /Open %L
.WMV
Click for Plus Info

• Feuille de calcul Microsoft Excel
EXCEL.EXE /e Microsoft Office Excel
Version: 11.0.6355 Copyright © 1985-2003 Microsoft Corporation. All rights reserved.
Path: C:\Program Files\Microsoft Office\OFFICE11\EXCEL.EXE /e
.XLS
Click for Plus Info

• Dossier compressé
rundll32.exe zipfldr.dll,RouteTheCall %L Exécuter une DLL en tant qu'application
Version: 5.1.2600.2180 © Microsoft Corporation. Tous droits réservés.
Path: rundll32.exe zipfldr.dll,RouteTheCall %L
.ZIP
Click for Plus Info


AIDEZ MOI SVP
MERCI !

Olivier
A voir également:

5 réponses

Utilisateur anonyme
 
slt !
télécharge hijackthis ici:
http://www.hijackthis.de/downloads/hijackthis_199.zip
L'aide est ici:
http://www.zebulon.fr/articles/HijackThis.php

Dezippz le dans un dossier prévu a cet effet.
Par exemple C:\hijackthis
lancez le puis:
clic sur "do a system scan and save logfile"
faire un copier coller du log entier sur le forum.
0
darkcrystal33 Messages postés 3809 Date d'inscription   Statut Contributeur Dernière intervention   193
 
tu a peut être attrapé le vers agobot...

voir le lien suivant pour description et nettoyage:

http://www.sophos.com/virusinfo/analyses/w32agobotjs.htm

scanne ton pc comme suit:

télécharge sysclean ici (nettoyeur):
http://fr.trendmicro-europe.com/file_downloads/common/tsc/sysclean.com

puis télécharge lpt645.zip ici (fichier de définitions de virus/pattern file):
http://fr.trendmicro-europe.com/global/file_downloads/common/pattern/opr/lpt645.zip

dézippe ensuite lpt645.zip et tu obtiendras le fichier lpt$vpn.645

une fois obtenu le fichier lpt$vpn.645 (qui doit être placé au même endroit que sysclean.com) tu lance sysclean.com

et tu clique sur le bouton scan.

a executer en mode sans échec et restauration système désactivée afin de pouvoir effectuer un nettoyage complet.

si le numéro de numéro de pattern (lpt***.zip) a changé,
le fichier de définition de virus ne sera plus téléchargeable directement en utilisant les liens donnés ci-dessus.
==>dans ce cas voir le lien ci-dessous pour télécharger lpt***.zip
http://fr.trendmicro-europe.com/enterprise/support/pattern.php


pour mettre a jour le scanner antivirus il suffit d'effacer la vieille version et de télécharger la derniére version des fichiers.
*
si ton accés internet ne fonctionne plus, procéde comme suit:
télécharge sysclean a partir d'un pc sain de préférence:
(copain/ami/voisin/parents/boulot/cyber café etc...)
puis grave le sur un cd, cd/rw,ou copie le sur une clé usb, ou sur un disque dur amovible et scanne ton pc avec.
0
Olivier
 
Bonjour à tous,

Je n'ai toujours pas résolu mon prblème. Au niveau des nouveautés, je me suis rendu compte que le changement de page au démarrage de IE pouvait venir du logiciel de recherche d'espion Xoftspy : maintenant que j'ai installé WinPatrol, celui ci m'a annoncé 2 fois une tentative de changement de page d'accueil et à chaque fois c'était un peu après avoir lancé Xoftspy.
J'arrivé toujours à accéder à internet avec Outlookexpress par contre pour ce qui est de IE et Firefox, j'y arrive au démarrage de l'ordinateur mais au bout de quelques temps je n'y arrive plus et tombe sur "page inaccessible". Cela s'est déjà reproduit 5 fois depuis le début de mes problèmes, je redémarre alors mon ordi et ça remarche.
J'ai donc pu ainsi télécharger Hijackthis, vous trouverez son rapport ci dessous. Ainsique sysclean qui, après une recherche d'environ une heure, alors qu'il affiche scanning "C:\*.*"n a ouvert une fenêtre DOS d'un programme VSCANTM qui affiche des choses du genre :
searching c:\pagefile.sys -> << ERROR (-94)>>
ouis a repris sa recherche dans la fenêtre de sysclean mais n'a rien trouvé. La copie du log est également ci dessous.

Merci pour votre aide

Olivier


Logfile of HijackThis v1.99.0
Scan saved at 15:59:46, on 03/02/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\AntiVirusKit 2004\AVKService.exe
C:\Program Files\AntiVirusKit 2004\AVKWCtl.exe
C:\WINDOWS\system32\crypserv.exe
C:\JAWS500\jfw.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\Program Files\Fichiers communs\G DATA\AVKMail\AVKPOP.EXE
C:\Program Files\ZoomText 8.1\Zt8.exe
C:\WINDOWS\system32\ezSP_Px.exe
C:\Program Files\bureautique\omnipage pro10\opware32.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\sytème\SmartSync Pro\SmartSync.exe
C:\Program Files\sytème\WinKey\WinKey.exe
C:\JAWS500\JHookLdr.exe
C:\Program Files\AntiVirusKit 2004\AVK.exe
C:\DOCUME~1\RECTOR~1\LOCALS~1\Temp\Répertoire temporaire 1 pour hijackthis.zip\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AH IE BHO - {10384d0e-2bc1-48b6-844b-ad0e9e6d2511} - C:\Program Files\ZoomText 8.1\AHOI\ah_ie_bho.dll
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [AVK Mail Checker] "C:\Program Files\Fichiers communs\G DATA\AVKMail\AVKPOP.EXE"
O4 - HKLM\..\Run: [ZoomText 8.1] "C:\Program Files\ZoomText 8.1\Zt8.exe"
O4 - HKLM\..\Run: [ezShieldProtector for Px] C:\WINDOWS\system32\ezSP_Px.exe
O4 - HKLM\..\Run: [OmniPage] C:\Program Files\bureautique\omnipage pro10\opware32.exe
O4 - HKLM\..\Run: [Total Uninstall] C:\Program Files\système\Total Uninstall\Tun.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [SmartSync Pro] "C:\Program Files\sytème\SmartSync Pro\SmartSync.exe" /Logon
O4 - Global Startup: WinKey.lnk = ?
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://c:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - c:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.com/v5consumer/V5Controls/en/x86/client/wuweb_site.cab?1103205356484
O23 - Service: AVK Service - Unknown - C:\Program Files\AntiVirusKit 2004\AVKService.exe
O23 - Service: Gardien d'AVK - Unknown - C:\Program Files\AntiVirusKit 2004\AVKWCtl.exe
O23 - Service: Crypkey License - Unknown - crypserv.exe (file missing)
O23 - Service: Service d'administration du Gestionnaire de disque logique - Unknown - C:\WINDOWS\System32\dmadmin.exe
O23 - Service: Journal des événements - Unknown - C:\WINDOWS\system32\services.exe
O23 - Service: Service COM de gravage de CD IMAPI - Unknown - C:\WINDOWS\system32\imapi.exe
O23 - Service: JFWService - Freedom Scientific BLV Group, LLC - C:\JAWS500\jfw.exe
O23 - Service: Partage de Bureau à distance NetMeeting - Unknown - C:\WINDOWS\system32\mnmsrvc.exe
O23 - Service: PACSPTISVR - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\AVLib\PACSPTISVR.exe
O23 - Service: Plug-and-Play - Unknown - C:\WINDOWS\system32\services.exe
O23 - Service: Gestionnaire de session d'aide sur le Bureau à distance - Unknown - C:\WINDOWS\system32\sessmgr.exe
O23 - Service: Carte à puce - Unknown - C:\WINDOWS\System32\SCardSvr.exe
O23 - Service: Sony SPTI Service - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\AVLib\SPTISRV.exe
O23 - Service: Journaux et alertes de performance - Unknown - C:\WINDOWS\system32\smlogsvc.exe
O23 - Service: Cliché instantané de volume - Unknown - C:\WINDOWS\System32\vssvc.exe
O23 - Service: Carte de performance WMI - Unknown - C:\WINDOWS\system32\wbem\wmiapsrv.exe










/--------------------------------------------------------------\
| Trend Micro Sysclean Package |
| Copyright 2002, Trend Micro, Inc. |
| http://www.trendmicro.com |
\--------------------------------------------------------------/


2005-05-29, 15:22:44, Auto-clean mode specified.
2005-05-29, 15:22:44, Running scanner "E:\Zip\Sécurité\TSC.BIN"...
2005-05-29, 15:23:32, Scanner "E:\Zip\Sécurité\TSC.BIN" has finished running.
2005-05-29, 15:23:32, TSC Log:

Damage Cleanup Engine (DCE) 3.9(Build 1020)
Windows XP(Build 2600: Service Pack 2)

Start time : dim. mai 29 2005 15:22:44

Load Damage Cleanup Template (DCT) "E:\Zip\Sécurité\tsc.ptn" (version 600) [success]

Complete time : dim. mai 29 2005 15:23:32
Execute pattern count(3668), Virus found count(0), Virus clean count(0), Clean failed count(0)

2005-05-29, 15:24:02, An error occurred while scanning file "C:\Documents and Settings\NetworkService\NTUSER.DAT": Accès refusé.
2005-05-29, 15:24:02, An error occurred while scanning file "C:\Documents and Settings\NetworkService\ntuser.dat.LOG": Accès refusé.
2005-05-29, 15:24:03, An error occurred while scanning file "C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat": Accès refusé.
2005-05-29, 15:24:03, An error occurred while scanning file "C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG": Accès refusé.
2005-05-29, 15:24:04, An error occurred while scanning file "C:\Documents and Settings\RECTORAT DE LYON\ntuser.dat": Accès refusé.
2005-05-29, 15:24:04, An error occurred while scanning file "C:\Documents and Settings\RECTORAT DE LYON\ntuser.dat.LOG": Accès refusé.
2005-05-29, 15:24:23, The user stopped the operation.


/--------------------------------------------------------------\
| Trend Micro Sysclean Package |
| Copyright 2002, Trend Micro, Inc. |
| http://www.trendmicro.com |
\--------------------------------------------------------------/


2005-05-29, 15:25:08, Running scanner "E:\Zip\Sécurité\TSC.BIN"...
2005-05-29, 15:25:52, Scanner "E:\Zip\Sécurité\TSC.BIN" has finished running.
2005-05-29, 15:25:52, TSC Log:

Damage Cleanup Engine (DCE) 3.9(Build 1020)
Windows XP(Build 2600: Service Pack 2)

Start time : dim. mai 29 2005 15:25:08

Load Damage Cleanup Template (DCT) "E:\Zip\Sécurité\tsc.ptn" (version 600) [success]

Complete time : dim. mai 29 2005 15:25:52
Execute pattern count(3668), Virus found count(0), Virus clean count(0), Clean failed count(0)

2005-05-29, 15:25:56, An error occurred while scanning file "C:\Documents and Settings\NetworkService\NTUSER.DAT": Accès refusé.
2005-05-29, 15:25:56, An error occurred while scanning file "C:\Documents and Settings\NetworkService\ntuser.dat.LOG": Accès refusé.
2005-05-29, 15:25:56, An error occurred while scanning file "C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat": Accès refusé.
2005-05-29, 15:25:56, An error occurred while scanning file "C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG": Accès refusé.
2005-05-29, 15:25:56, An error occurred while scanning file "C:\Documents and Settings\RECTORAT DE LYON\ntuser.dat": Accès refusé.
2005-05-29, 15:25:56, An error occurred while scanning file "C:\Documents and Settings\RECTORAT DE LYON\ntuser.dat.LOG": Accès refusé.
2005-05-29, 15:26:14, An error occurred while scanning file "C:\Documents and Settings\RECTORAT DE LYON\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat": Accès refusé.
2005-05-29, 15:26:14, An error occurred while scanning file "C:\Documents and Settings\RECTORAT DE LYON\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG": Accès refusé.
2005-05-29, 16:10:38, Could not set file for reading on "C:\RECYCLER\S-1-5-21-2838867905-2859028216-16704334-1006\Dc1759.pf": Accès refusé.
2005-05-29, 16:10:45, Could not set file for reading on "C:\RECYCLER\S-1-5-21-2838867905-2859028216-16704334-1006\Dc1823.pf": Accès refusé.
2005-05-29, 16:10:45, Could not set file for reading on "C:\RECYCLER\S-1-5-21-2838867905-2859028216-16704334-1006\Dc1824.pf": Accès refusé.
2005-05-29, 16:10:45, Could not set file for reading on "C:\RECYCLER\S-1-5-21-2838867905-2859028216-16704334-1006\Dc1825.pf": Accès refusé.
2005-05-29, 16:10:45, Could not set file for reading on "C:\RECYCLER\S-1-5-21-2838867905-2859028216-16704334-1006\Dc1826.pf": Accès refusé.
2005-05-29, 16:10:58, Could not set file for reading on "C:\RECYCLER\S-1-5-21-2838867905-2859028216-16704334-1006\Dc363.pf": Accès refusé.
2005-05-29, 16:13:42, An error was detected on "C:\System Volume Information\*.*": Accès refusé.
2005-05-29, 16:24:31, Could not set file for reading on "C:\Windows\pchealth\ERRORREP\UserDumps\svchost.exe.20050318-214500-00.hdmp": Accès refusé.
2005-05-29, 16:24:31, Could not set file for reading on "C:\Windows\pchealth\ERRORREP\UserDumps\svchost.exe.20050319-151708-00.hdmp": Accès refusé.
2005-05-29, 16:24:31, Could not set file for reading on "C:\Windows\pchealth\ERRORREP\UserDumps\svchost.exe.20050402-212903-00.hdmp": Accès refusé.
2005-05-29, 16:24:31, Could not set file for reading on "C:\Windows\pchealth\ERRORREP\UserDumps\svchost.exe.20050409-211914-00.hdmp": Accès refusé.
2005-05-29, 16:24:45, Could not set file for reading on "C:\Windows\Prefetch\7ZGN.EXE-3511B4C1.pf": Accès refusé.
2005-05-29, 16:24:45, Could not set file for reading on "C:\Windows\Prefetch\A2HIJACKFREE.EXE-2CF098B2.pf": Accès refusé.
2005-05-29, 16:24:45, Could not set file for reading on "C:\Windows\Prefetch\A2SCAN.EXE-003CBDD3.pf": Accès refusé.
2005-05-29, 16:24:45, Could not set file for reading on "C:\Windows\Prefetch\A2SCAN.EXE-111C0877.pf": Accès refusé.
2005-05-29, 16:24:45, Could not set file for reading on "C:\Windows\Prefetch\A2START.EXE-1BD6AC28.pf": Accès refusé.
2005-05-29, 16:24:45, Could not set file for reading on "C:\Windows\Prefetch\A2UPD.EXE-1027C8D4.pf": Accès refusé.
2005-05-29, 16:24:45, Could not set file for reading on "C:\Windows\Prefetch\ACRORD32.EXE-20C463C1.pf": Accès refusé.
2005-05-29, 16:24:45, Could not set file for reading on "C:\Windows\Prefetch\AD-AWARE.EXE-30D26BED.pf": Accès refusé.
2005-05-29, 16:24:45, Could not set file for reading on "C:\Windows\Prefetch\AGENT.EXE-16E8EE4C.pf": Accès refusé.
2005-05-29, 16:24:45, Could not set file for reading on "C:\Windows\Prefetch\ALG.EXE-0F138680.pf": Accès refusé.
2005-05-29, 16:24:45, Could not set file for reading on "C:\Windows\Prefetch\AUPATCH.DAT-2AD5837E.pf": Accès refusé.
2005-05-29, 16:24:45, Could not set file for reading on "C:\Windows\Prefetch\AUUNZIP.DAT-06A9276C.pf": Accès refusé.
2005-05-29, 16:24:45, Could not set file for reading on "C:\Windows\Prefetch\AUUPDATE.DAT-2643CA81.pf": Accès refusé.
2005-05-29, 16:24:45, Could not set file for reading on "C:\Windows\Prefetch\AVK.EXE-0ABBA598.pf": Accès refusé.
2005-05-29, 16:24:45, Could not set file for reading on "C:\Windows\Prefetch\AVKPOP.EXE-07E18939.pf": Accès refusé.
2005-05-29, 16:24:45, Could not set file for reading on "C:\Windows\Prefetch\AVXLIVE.EXE-145B221F.pf": Accès refusé.
2005-05-29, 16:24:45, Could not set file for reading on "C:\Windows\Prefetch\A~NSISU_.EXE-2F9C0825.pf": Accès refusé.
2005-05-29, 16:24:45, Could not set file for reading on "C:\Windows\Prefetch\BDINIT.XE-0234401F.pf": Accès refusé.
2005-05-29, 16:24:45, Could not set file for reading on "C:\Windows\Prefetch\CLEANMGR.EXE-1F86EA8E.pf": Accès refusé.
2005-05-29, 16:24:45, Could not set file for reading on "C:\Windows\Prefetch\DEFRAG.EXE-273F131E.pf": Accès refusé.
2005-05-29, 16:24:45, Could not set file for reading on "C:\Windows\Prefetch\DFRGNTFS.EXE-269967DF.pf": Accès refusé.
2005-05-29, 16:24:45, Could not set file for reading on "C:\Windows\Prefetch\DRWTSN32.EXE-2B4B52AC.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\DUMPREP.EXE-1B46F901.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\DWWIN.EXE-30875ADC.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\EMULE.EXE-20BBE1E3.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\ESSENTIALPIM.EXE-13075BA2.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\EXCEL.EXE-13B3F319.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\EXPLORER.EXE-082F38A9.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\EZSP_PX.EXE-1E169BED.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\FILEZILLA.EXE-11522882.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\FIREFOX.EXE-12BF1524.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\FREEGO.EXE-098CFA11.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\FREEINFO.EXE-0389EE19.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\FXMYDOOM.EXE-1BB244FE.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\GETPOPUPINFO.EXE-125F88E2.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\GFTOPK.EXE-318CEFDE.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\GRABIT.EXE-26EE7A07.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\HELPSVC.EXE-2878DDA2.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\HKCMD.EXE-1D05234B.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\IEDW.EXE-1880380E.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\IEXPLORE.EXE-27122324.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\IGFXTRAY.EXE-3391579A.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\IMAPI.EXE-0BF740A4.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\IS-92K9Q.TMP-202E3B78.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\IS-B9LHI.TMP-19862134.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\IS-IA9NL.TMP-29E86039.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\IS-ML3CF.TMP-18855E67.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\JDICTION.EXE-32E24A40.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\JFW.EXE-042D18DE.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\JHOOKLDR.EXE-0BA1B4C3.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\KPF4GUI.EXE-08FAB688.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\LATEX.EXE-26757E28.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\LOGON.SCR-151EFAEA.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\LOGONUI.EXE-0AF22957.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\MAKEINDEX.EXE-04178F1A.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\MAKEPK.EXE-30B8892B.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\MF.EXE-05F8982D.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\MMC.EXE-39071BCC.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\MSIMN.EXE-38BA891D.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\MSNMSGR.EXE-366A1A81.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\MSOHELP.EXE-04B3CC65.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\MSOHTMED.EXE-1BD4AAD2.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\MSOXMLED.EXE-0227BB73.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\NEROCHECK.EXE-092C6DFA.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\NOTEPAD.EXE-336351A9.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\NTVDM.EXE-1A10A423.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\OBU.EXE-01DD6F62.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\OIS.EXE-33076924.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\ONVIRUS.EXE-0651B8D3.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\OSE.EXE-0125EB9C.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\PATCH.EXE-1DE617D3.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\PDFLATEX.EXE-2A1B1E42.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\PDVDSERV.EXE-0448293E.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\PNJOB5.EXE-2625D815.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\PNSRV5.EXE-04981DFC.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\QTRANS.EXE-22F3DB69.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\REALONEMESSAGECENTER.EXE-1B5B11B5.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\REALPLAY.EXE-20B1E59C.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\REALSCHED.EXE-04BEC5CC.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\RPHELPERAPP.EXE-3703C1ED.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\RUNDLL32.EXE-13DA0E71.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\RUNDLL32.EXE-188DF14E.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\RUNDLL32.EXE-2138A4AF.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\RUNDLL32.EXE-22E35C38.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\RUNDLL32.EXE-24DBE541.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\RUNDLL32.EXE-29E47CC4.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\RUNDLL32.EXE-37E883CE.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\RUNDLL32.EXE-43D29D7C.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\RUNDLL32.EXE-4489B61B.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\RUNDLL32.EXE-451FC2C0.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\SETUP.EXE-0495A274.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\SETUP_FREEINFO.EXE-0E50EC26.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\SKYPE.EXE-04B5584C.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\SKYPESETUP MAI 2005.EXE-2171BDD0.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\SKYPESETUP.EXE-35496907.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\SKYPESETUP.EXE-3AE4398F.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\SNDVOL32.EXE-383480B7.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\SOFTNOTE2002.EXE-00D9F0DB.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\SPYBOTSD.EXE-07AAA6EF.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\SPYCATCHER.EXE-06888908.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\SPYWAREBLASTER.EXE-017DA7FC.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\SPYWAREBLASTERSETUP ANTI ESPI-13795871.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\SPYWAREBLASTERSETUP34.EXE-0B1CB8D8.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\STLKRN32.EXE-0F1F59F0.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\STP31A9_TMP.EXE-02046C0A.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\SYSTRAY.EXE-345DCC1C.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\TASKMGR.EXE-20256C55.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\TEXIFY.EXE-04453727.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\TSC.EXE-2B4C0858.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\TUN.EXE-020AFB71.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\UNINS000.EXE-00F2F78E.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\UNINSTALL.EXE-0026EE9A.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\UPDATEWIZARD.EXE-0B79E488.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\UPGREPL.EXE-265C8F51.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\USERINIT.EXE-30B18140.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\VIAVOL.EXE-058564A3.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\WINEDT.EXE-339CD2D7.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\WINPATROLEX.EXE-354079CE.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\WINWORD.EXE-37F6AE09.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\WMIPRVSE.EXE-28F301A9.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\WUAUCLT.EXE-399A8E72.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\XOCR32B.EXE-2E010264.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\XOFTSPY.EXE-15AEB9AC.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\XOFTSPY413_87 SCAN DE VIRUS.E-1A6BA638.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\XP-ANTISPY.EXE-0002C9FE.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\YAP.EXE-0175A9AD.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\ZT8.EXE-13A8EBF9.pf": Accès refusé.
2005-05-29, 16:24:46, Could not set file for reading on "C:\Windows\Prefetch\_IU14D2N.TMP-0AA3F627.pf": Accès refusé.
2005-05-29, 16:28:27, An error occurred while scanning file "C:\Windows\system32\config\default": Accès refusé.
2005-05-29, 16:28:27, An error occurred while scanning file "C:\Windows\system32\config\DEFAULT.LOG": Accès refusé.
2005-05-29, 16:28:27, An error occurred while scanning file "C:\Windows\system32\config\SAM": Accès refusé.
2005-05-29, 16:28:27, An error occurred while scanning file "C:\Windows\system32\config\SAM.LOG": Accès refusé.
2005-05-29, 16:28:27, An error occurred while scanning file "C:\Windows\system32\config\SECURITY": Accès refusé.
2005-05-29, 16:28:27, An error occurred while scanning file "C:\Windows\system32\config\SECURITY.LOG": Accès refusé.
2005-05-29, 16:28:27, An error occurred while scanning file "C:\Windows\system32\config\software": Accès refusé.
2005-05-29, 16:28:33, An error occurred while scanning file "C:\Windows\system32\config\Software.LOG": Accès refusé.
2005-05-29, 16:28:33, An error occurred while scanning file "C:\Windows\system32\config\system": Accès refusé.
2005-05-29, 16:28:34, An error occurred while scanning file "C:\Windows\system32\config\System.LOG": Accès refusé.
2005-05-29, 16:29:39, An error was detected on "C:\Windows\system32\????????\*.*": Syntaxe du nom de fichier, de répertoire ou de volume incorrecte.
2005-05-29, 16:29:48, Running scanner "E:\Zip\Sécurité\VSCANTM.BIN"...
2005-05-29, 17:09:08, Files Detected:
Copyright (c) 1990 - 2004 Trend Micro Inc.
Report Date : 5/29/2005 16:29:49
VSAPI Engine Version : 7.000-1004
VSCANTM Version : 1.1-1001
Virus Pattern Version : 645 (102374 Patterns) (2005/05/26) (264500)
Command Line: E:\Zip\Sécurité\VSCANTM.BIN /NBPM /S /CLEANALL /LAPPEND /LD /LC /LCF /NM /NB C:\*.* /P=E:\Zip\Sécurité

66835 files have been read.
66835 files have been checked.
50606 files have been scanned.
94561 files have been scanned. (including files in archived)
0 files containing viruses.
Found 0 viruses totally.
Maybe 0 viruses totally.
Stop At : 5/29/2005 17:09:07
---------*---------*---------*---------*---------*---------*---------*---------*
2005-05-29, 17:09:08, Files Clean:
Copyright (c) 1990 - 2004 Trend Micro Inc.
Report Date : 5/29/2005 16:29:49
VSAPI Engine Version : 7.000-1004
VSCANTM Version : 1.1-1001
Virus Pattern Version : 645 (102374 Patterns) (2005/05/26) (264500)
Command Line: E:\Zip\Sécurité\VSCANTM.BIN /NBPM /S /CLEANALL /LAPPEND /LD /LC /LCF /NM /NB C:\*.* /P=E:\Zip\Sécurité

66835 files have been read.
66835 files have been checked.
50606 files have been scanned.
94561 files have been scanned. (including files in archived)
0 files containing viruses.
Found 0 viruses totally.
Maybe 0 viruses totally.
Stop At : 5/29/2005 17:09:07 39 minutes 14 seconds (2353.80 seconds) has elapsed.

---------*---------*---------*---------*---------*---------*---------*---------*
2005-05-29, 17:09:08, Clean Fail:
Copyright (c) 1990 - 2004 Trend Micro Inc.
Report Date : 5/29/2005 16:29:49
VSAPI Engine Version : 7.000-1004
VSCANTM Version : 1.1-1001
Virus Pattern Version : 645 (102374 Patterns) (2005/05/26) (264500)
Command Line: E:\Zip\Sécurité\VSCANTM.BIN /NBPM /S /CLEANALL /LAPPEND /LD /LC /LCF /NM /NB C:\*.* /P=E:\Zip\Sécurité

66835 files have been read.
66835 files have been checked.
50606 files have been scanned.
94561 files have been scanned. (including files in archived)
0 files containing viruses.
Found 0 viruses totally.
Maybe 0 viruses totally.
Stop At : 5/29/2005 17:09:07 39 minutes 14 seconds (2353.80 seconds) has elapsed.

---------*---------*---------*---------*---------*---------*---------*---------*
2005-05-29, 17:09:08, Scanner "E:\Zip\Sécurité\VSCANTM.BIN" has finished running.
2005-05-29, 17:36:16, Running scanner "E:\Zip\Sécurité\VSCANTM.BIN"...
2005-05-29, 17:39:24, Files Detected:
Copyright (c) 1990 - 2004 Trend Micro Inc.
Report Date : 5/29/2005 17:36:16
VSAPI Engine Version : 7.000-1004
VSCANTM Version : 1.1-1001
Virus Pattern Version : 645 (102374 Patterns) (2005/05/26) (264500)
Command Line: E:\Zip\Sécurité\VSCANTM.BIN /NBPM /S /CLEANALL /LAPPEND /LD /LC /LCF /NM /NB E:\*.* /P=E:\Zip\Sécurité

9758 files have been read.
9758 files have been checked.
7914 files have been scanned.
12357 files have been scanned. (including files in archived)
0 files containing viruses.
Found 0 viruses totally.
Maybe 0 viruses totally.
Stop At : 5/29/2005 17:39:24
---------*---------*---------*---------*---------*---------*---------*---------*
2005-05-29, 17:39:24, Files Clean:
Copyright (c) 1990 - 2004 Trend Micro Inc.
Report Date : 5/29/2005 17:36:16
VSAPI Engine Version : 7.000-1004
VSCANTM Version : 1.1-1001
Virus Pattern Version : 645 (102374 Patterns) (2005/05/26) (264500)
Command Line: E:\Zip\Sécurité\VSCANTM.BIN /NBPM /S /CLEANALL /LAPPEND /LD /LC /LCF /NM /NB E:\*.* /P=E:\Zip\Sécurité

9758 files have been read.
9758 files have been checked.
7914 files have been scanned.
12357 files have been scanned. (including files in archived)
0 files containing viruses.
Found 0 viruses totally.
Maybe 0 viruses totally.
Stop At : 5/29/2005 17:39:24 3 minutes 3 seconds (183.00 seconds) has elapsed.

---------*---------*---------*---------*---------*---------*---------*---------*
2005-05-29, 17:39:24, Clean Fail:
Copyright (c) 1990 - 2004 Trend Micro Inc.
Report Date : 5/29/2005 17:36:16
VSAPI Engine Version : 7.000-1004
VSCANTM Version : 1.1-1001
Virus Pattern Version : 645 (102374 Patterns) (2005/05/26) (264500)
Command Line: E:\Zip\Sécurité\VSCANTM.BIN /NBPM /S /CLEANALL /LAPPEND /LD /LC /LCF /NM /NB E:\*.* /P=E:\Zip\Sécurité

9758 files have been read.
9758 files have been checked.
7914 files have been scanned.
12357 files have been scanned. (including files in archived)
0 files containing viruses.
Found 0 viruses totally.
Maybe 0 viruses totally.
Stop At : 5/29/2005 17:39:24 3 minutes 3 seconds (183.00 seconds) has elapsed.

---------*---------*---------*---------*---------*---------*---------*---------*
2005-05-29, 17:39:24, Scanner "E:\Zip\Sécurité\VSCANTM.BIN" has finished running.
2005-05-29, 18:56:13, Running scanner "E:\Zip\Sécurité\VSCANTM.BIN"...
2005-05-29, 18:58:12, Files Detected:
Copyright (c) 1990 - 2004 Trend Micro Inc.
Report Date : 5/29/2005 18:56:13
VSAPI Engine Version : 7.000-1004
VSCANTM Version : 1.1-1001
Virus Pattern Version : 645 (102374 Patterns) (2005/05/26) (264500)
Command Line: E:\Zip\Sécurité\VSCANTM.BIN /NBPM /S /CLEANALL /LAPPEND /LD /LC /LCF /NM /NB F:\*.* /P=E:\Zip\Sécurité

4409 files have been read.
4409 files have been checked.
2734 files have been scanned.
2741 files have been scanned. (including files in archived)
0 files containing viruses.
Found 0 viruses totally.
Maybe 0 viruses totally.
Stop At : 5/29/2005 18:58:12
---------*---------*---------*---------*---------*---------*---------*---------*
2005-05-29, 18:58:12, Files Clean:
Copyright (c) 1990 - 2004 Trend Micro Inc.
Report Date : 5/29/2005 18:56:13
VSAPI Engine Version : 7.000-1004
VSCANTM Version : 1.1-1001
Virus Pattern Version : 645 (102374 Patterns) (2005/05/26) (264500)
Command Line: E:\Zip\Sécurité\VSCANTM.BIN /NBPM /S /CLEANALL /LAPPEND /LD /LC /LCF /NM /NB F:\*.* /P=E:\Zip\Sécurité

4409 files have been read.
4409 files have been checked.
2734 files have been scanned.
2741 files have been scanned. (including files in archived)
0 files containing viruses.
Found 0 viruses totally.
Maybe 0 viruses totally.
Stop At : 5/29/2005 18:58:12 1 minute 54 seconds (114.00 seconds) has elapsed.

---------*---------*---------*---------*---------*---------*---------*---------*
2005-05-29, 18:58:12, Clean Fail:
Copyright (c) 1990 - 2004 Trend Micro Inc.
Report Date : 5/29/2005 18:56:13
VSAPI Engine Version : 7.000-1004
VSCANTM Version : 1.1-1001
Virus Pattern Version : 645 (102374 Patterns) (2005/05/26) (264500)
Command Line: E:\Zip\Sécurité\VSCANTM.BIN /NBPM /S /CLEANALL /LAPPEND /LD /LC /LCF /NM /NB F:\*.* /P=E:\Zip\Sécurité

4409 files have been read.
4409 files have been checked.
2734 files have been scanned.
2741 files have been scanned. (including files in archived)
0 files containing viruses.
Found 0 viruses totally.
Maybe 0 viruses totally.
Stop At : 5/29/2005 18:58:12 1 minute 54 seconds (114.00 seconds) has elapsed.

---------*---------*---------*---------*---------*---------*---------*---------*
2005-05-29, 18:58:12, Scanner "E:\Zip\Sécurité\VSCANTM.BIN" has finished running.
2005-05-29, 20:14:09, Running scanner "E:\Zip\Sécurité\VSCANTM.BIN"...
2005-05-29, 20:14:41, Files Detected:
Copyright (c) 1990 - 2004 Trend Micro Inc.
Report Date : 5/29/2005 20:14:10
VSAPI Engine Version : 7.000-1004
VSCANTM Version : 1.1-1001
Virus Pattern Version : 645 (102374 Patterns) (2005/05/26) (264500)
Command Line: E:\Zip\Sécurité\VSCANTM.BIN /NBPM /S /CLEANALL /LAPPEND /LD /LC /LCF /NM /NB G:\*.* /P=E:\Zip\Sécurité

116 files have been read.
116 files have been checked.
92 files have been scanned.
410 files have been scanned. (including files in archived)
0 files containing viruses.
Found 0 viruses totally.
Maybe 0 viruses totally.
Stop At : 5/29/2005 20:14:41
---------*---------*---------*---------*---------*---------*---------*---------*
2005-05-29, 20:14:41, Files Clean:
Copyright (c) 1990 - 2004 Trend Micro Inc.
Report Date : 5/29/2005 20:14:10
VSAPI Engine Version : 7.000-1004
VSCANTM Version : 1.1-1001
Virus Pattern Version : 645 (102374 Patterns) (2005/05/26) (264500)
Command Line: E:\Zip\Sécurité\VSCANTM.BIN /NBPM /S /CLEANALL /LAPPEND /LD /LC /LCF /NM /NB G:\*.* /P=E:\Zip\Sécurité

116 files have been read.
116 files have been checked.
92 files have been scanned.
410 files have been scanned. (including files in archived)
0 files containing viruses.
Found 0 viruses totally.
Maybe 0 viruses totally.
Stop At : 5/29/2005 20:14:41 27 seconds (27.20 seconds) has elapsed.

---------*---------*---------*---------*---------*---------*---------*---------*
2005-05-29, 20:14:41, Clean Fail:
Copyright (c) 1990 - 2004 Trend Micro Inc.
Report Date : 5/29/2005 20:14:10
VSAPI Engine Version : 7.000-1004
VSCANTM Version : 1.1-1001
Virus Pattern Version : 645 (102374 Patterns) (2005/05/26) (264500)
Command Line: E:\Zip\Sécurité\VSCANTM.BIN /NBPM /S /CLEANALL /LAPPEND /LD /LC /LCF /NM /NB G:\*.* /P=E:\Zip\Sécurité

116 files have been read.
116 files have been checked.
92 files have been scanned.
410 files have been scanned. (including files in archived)
0 files containing viruses.
Found 0 viruses totally.
Maybe 0 viruses totally.
Stop At : 5/29/2005 20:14:41 27 seconds (27.20 seconds) has elapsed.

---------*---------*---------*---------*---------*---------*---------*---------*
2005-05-29, 20:14:41, Scanner "E:\Zip\Sécurité\VSCANTM.BIN" has finished running.
2005-05-29, 20:32:42, Running scanner "E:\Zip\Sécurité\VSCANTM.BIN"...
2005-05-29, 20:34:21, Files Detected:
Copyright (c) 1990 - 2004 Trend Micro Inc.
Report Date : 5/29/2005 20:32:42
VSAPI Engine Version : 7.000-1004
VSCANTM Version : 1.1-1001
Virus Pattern Version : 645 (102374 Patterns) (2005/05/26) (264500)
Command Line: E:\Zip\Sécurité\VSCANTM.BIN /NBPM /S /CLEANALL /LAPPEND /LD /LC /LCF /NM /NB H:\*.* /P=E:\Zip\Sécurité

2139 files have been read.
2139 files have been checked.
1355 files have been scanned.
8467 files have been scanned. (including files in archived)
0 files containing viruses.
Found 0 viruses totally.
Maybe 0 viruses totally.
Stop At : 5/29/2005 20:34:21
---------*---------*---------*---------*---------*---------*---------*---------*
2005-05-29, 20:34:21, Files Clean:
Copyright (c) 1990 - 2004 Trend Micro Inc.
Report Date : 5/29/2005 20:32:42
VSAPI Engine Version : 7.000-1004
VSCANTM Version : 1.1-1001
Virus Pattern Version : 645 (102374 Patterns) (2005/05/26) (264500)
Command Line: E:\Zip\Sécurité\VSCANTM.BIN /NBPM /S /CLEANALL /LAPPEND /LD /LC /LCF /NM /NB H:\*.* /P=E:\Zip\Sécurité

2139 files have been read.
2139 files have been checked.
1355 files have been scanned.
8467 files have been scanned. (including files in archived)
0 files containing viruses.
Found 0 viruses totally.
Maybe 0 viruses totally.
Stop At : 5/29/2005 20:34:21 1 minute 34 seconds (94.59 seconds) has elapsed.

---------*---------*---------*---------*---------*---------*---------*---------*
2005-05-29, 20:34:21, Clean Fail:
Copyright (c) 1990 - 2004 Trend Micro Inc.
Report Date : 5/29/2005 20:32:42
VSAPI Engine Version : 7.000-1004
VSCANTM Version : 1.1-1001
Virus Pattern Version : 645 (102374 Patterns) (2005/05/26) (264500)
Command Line: E:\Zip\Sécurité\VSCANTM.BIN /NBPM /S /CLEANALL /LAPPEND /LD /LC /LCF /NM /NB H:\*.* /P=E:\Zip\Sécurité

2139 files have been read.
2139 files have been checked.
1355 files have been scanned.
8467 files have been scanned. (including files in archived)
0 files containing viruses.
Found 0 viruses totally.
Maybe 0 viruses totally.
Stop At : 5/29/2005 20:34:21 1 minute 34 seconds (94.59 seconds) has elapsed.

---------*---------*---------*---------*---------*---------*---------*---------*
2005-05-29, 20:34:21, Scanner "E:\Zip\Sécurité\VSCANTM.BIN" has finished running.
2005-05-29, 20:43:26, Running scanner "E:\Zip\Sécurité\VSCANTM.BIN"...
2005-05-29, 20:43:42, Files Detected:
Copyright (c) 1990 - 2004 Trend Micro Inc.
Report Date : 5/29/2005 20:43:26
VSAPI Engine Version : 7.000-1004
VSCANTM Version : 1.1-1001
Virus Pattern Version : 645 (102374 Patterns) (2005/05/26) (264500)
Command Line: E:\Zip\Sécurité\VSCANTM.BIN /NBPM /S /CLEANALL /LAPPEND /LD /LC /LCF /NM /NB I:\*.* /P=E:\Zip\Sécurité

133 files have been read.
133 files have been checked.
57 files have been scanned.
59 files have been scanned. (including files in archived)
0 files containing viruses.
Found 0 viruses totally.
Maybe 0 viruses totally.
Stop At : 5/29/2005 20:43:42
---------*---------*---------*---------*---------*---------*---------*---------*
2005-05-29, 20:43:42, Files Clean:
Copyright (c) 1990 - 2004 Trend Micro Inc.
Report Date : 5/29/2005 20:43:26
VSAPI Engine Version : 7.000-1004
VSCANTM Version : 1.1-1001
Virus Pattern Version : 645 (102374 Patterns) (2005/05/26) (264500)
Command Line: E:\Zip\Sécurité\VSCANTM.BIN /NBPM /S /CLEANALL /LAPPEND /LD /LC /LCF /NM /NB I:\*.* /P=E:\Zip\Sécurité

133 files have been read.
133 files have been checked.
57 files have been scanned.
59 files have been scanned. (including files in archived)
0 files containing viruses.
Found 0 viruses totally.
Maybe 0 viruses totally.
Stop At : 5/29/2005 20:43:42 11 seconds (11.13 seconds) has elapsed.

---------*---------*---------*---------*---------*---------*---------*---------*
2005-05-29, 20:43:42, Clean Fail:
Copyright (c) 1990 - 2004 Trend Micro Inc.
Report Date : 5/29/2005 20:43:26
VSAPI Engine Version : 7.000-1004
VSCANTM Version : 1.1-1001
Virus Pattern Version : 645 (102374 Patterns) (2005/05/26) (264500)
Command Line: E:\Zip\Sécurité\VSCANTM.BIN /NBPM /S /CLEANALL /LAPPEND /LD /LC /LCF /NM /NB I:\*.* /P=E:\Zip\Sécurité

133 files have been read.
133 files have been checked.
57 files have been scanned.
59 files have been scanned. (including files in archived)
0 files containing viruses.
Found 0 viruses totally.
Maybe 0 viruses totally.
Stop At : 5/29/2005 20:43:42 11 seconds (11.13 seconds) has elapsed.

---------*---------*---------*---------*---------*---------*---------*---------*
2005-05-29, 20:43:42, Scanner "E:\Zip\Sécurité\VSCANTM.BIN" has finished running.
0
darkcrystal33 Messages postés 3809 Date d'inscription   Statut Contributeur Dernière intervention   193
 
pour te rassurer:

http://www.xsoftspy.com/ ne semble pas être un logiciel suspect, trompeur, ou crapuleux...http://www.winpatrol.com/non plus...

voir le lien ci-dessous:

http://assiste.free.fr/p/faux_utilitaires/anti_logitheque.php

***

c:\pagefile.sys -> << ERROR (-94)>> est une erreur normale, qui indique que le fichier a scanner est en cours d'utilisation et ne peut donc pas être scanné.

néamoins un virus/spyware/troyen peut se cacher aussi derriére une telle erreur, c'est pourquoi il est impératif de scanner son ordinateur en mode sans échec.

d'aprés ton log...==>
0 files containing viruses.
Found 0 viruses totally.
Maybe 0 viruses totally.
<== Trend Micro Sysclean Package |
| http://www.trendmicro.com | n'a pas trouvé de virus.
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
darkcrystal33 Messages postés 3809 Date d'inscription   Statut Contributeur Dernière intervention   193
 
"J'arrivé toujours à accéder à internet avec Outlookexpress par contre pour ce qui est de IE et Firefox, j'y arrive au démarrage de l'ordinateur mais au bout de quelques temps je n'y arrive plus et tombe sur "page inaccessible". Cela s'est déjà reproduit 5 fois depuis le début de mes problèmes, je redémarre alors mon ordi et ça remarche. "

<== si tu n'est pas infecté ça peut être un problème de réglage de firewall.

"Au niveau des nouveautés, je me suis rendu compte que le changement de page au démarrage de IE pouvait venir du logiciel de recherche d'espion Xoftspy : maintenant que j'ai installé WinPatrol, celui ci m'a annoncé 2 fois une tentative de changement de page d'accueil et à chaque fois c'était un peu après avoir lancé Xoftspy. "

<==le changement de page d'accueil peut-être légitime ou malin, de qu'elle redirection de page winpatrol t'informe t'il?

ça peut être de la publicité pour Xoftspy.

utilise les logiciels suivants qui sont réputés sûrs afin de scanner ton ordinateur:

curatif==>

nettoie ton pc avec ccleaner(gratuit)
http://www.ccleaner.com/

télécharge/installe/met a jour et nettoie ton pc avec spybot (gratuit)
http://users.skynet.be/fa936042/spybotsd13.exe

télécharge/installe/met a jour et nettoie ton pc avec adaware (gratuit)
http://www.lavasoftusa.com/default.shtml.fr

télécharge/installe/met a jour et nettoie ton pc avec Microsoft anti-spyware (GIANT anti-spyware) (gratuit)
http://www.microsoft.com/athome/security/spyware/software/default.mspx

en cas d'échec des solutions gratuites précédentes:
télécharge/installe/met a jour et nettoie ton pc avec spysweeper:
(démo valable 30 jours)
http://www.webroot.com/fr/products/spysweeper/

afin de ne plus te faire infecter a nouveau applique les solutions préventives ci-dessous:

préventif==>

télécharge/installe et vaccine ton pc avec spywareblaster (gratuit)
http://www.javacoolsoftware.com/spywareblaster.html

change de navigateur internet
remplace internet explorer par firefox (gratuit)
http://www.mozilla-europe.org/fr/products/firefox/

si tu est sous Windows 2000 / XP / 2003 server
vaccine ton pc avec Windows Worms Doors Cleaner (gratuit)
http://www.firewallleaktester.com/tools/wwdc.exe

***

pour ton scan hijackthis voir là:

tutoriel hijackthis (gratuit)
http://www.zebulon.fr/articles/HijackThis.php
analyse automatique en ligne (gratuit)
http://www.hijackthis.de/index.php?langselect=french
analyse automatique en ligne (gratuit)
http://hjt.iamnotageek.com/

***
0