Fenetre CID : une question d'abord

manouchka13 -  
 Utilisateur anonyme -
Bonjour,

Je suis moi aussi envahie de fenetres CID.
J'ai lu plusieurs post avant de vous demander de l'aide. J'ai bien compris que j'allais devoir télécharger HiJackThis mais j'ai une question préliminaire à l'éventuel post de mon log : est-ce qu'on peut utiliser mon log contre moi ?
Pour moi, la liste des lignes qui ressortent est un immonde charabia mais est-ce que des pros malintentionnés ne pourraient pas s'en servir ?

Merci de me rassurer
A voir également:

10 réponses

Utilisateur anonyme
 
salut laisse tomber hijackthis :

▶ télécharge LOP S&D sur ton Bureau.

▶ Double-clique dessus pour lancer l'installation
▶ Puis double-clique sur le raccourci Lop S&D présent sur ton Bureau
▶ Séléctionne la langue souhaitée , puis choisis l'option 1 (Recherche)
▶ Patiente jusqu'à la fin du scan

▶ Poste le rapport généré (C:\lopR.txt)
0
manouchka13
 
Bonsoir

Merci pour la réponse rapide. Le scan de LopSD est en cours.
A tout de site
0
manouchka13
 
--------------------\\ Lop S&D 4.2.5-0 XP/Vista

Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 2
X86-based PC ( Uniprocessor Free : AMD Sempron(tm) Processor 3000+ )
BIOS : Phoenix - Award BIOS v6.00PG
USER : HP_Propriétaire ( Administrator )
BOOT : Normal boot
Antivirus : avast! Antivirus 5.0.83886476 (Activated)
C:\ (Local Disk) - NTFS - Total:144 Go (Free:114 Go)
D:\ (Local Disk) - FAT32 - Total:4 Go (Free:0 Go)
E:\ (CD or DVD)
F:\ (USB)
H:\ (USB)
I:\ (USB)
J:\ (USB)

"C:\Lop SD" ( MAJ : 19-12-2008|23:40 )
Option : [1] ( 07/02/2010|22:37 )

--------------------\\ Listing des dossiers dans APPLIC~1

[20/12/2008|21:47] C:\DOCUME~1\ADMINI~1\APPLIC~1\Adobe
[20/12/2008|10:33] C:\DOCUME~1\ADMINI~1\APPLIC~1\Macromedia
[20/12/2008|21:47] C:\DOCUME~1\ADMINI~1\APPLIC~1\Microsoft

[28/02/2009|14:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\0FA
[20/10/2009|19:16] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[07/02/2010|15:41] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Alwil Software
[02/11/2009|22:31] C:\DOCUME~1\ALLUSE~1\APPLIC~1\AOL
[13/12/2008|15:41] C:\DOCUME~1\ALLUSE~1\APPLIC~1\AOL Downloads
[13/12/2008|15:42] C:\DOCUME~1\ALLUSE~1\APPLIC~1\AOL OCP
[02/01/2005|00:51] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer
[17/09/2009|21:20] C:\DOCUME~1\ALLUSE~1\APPLIC~1\f-secure
[16/09/2009|10:09] C:\DOCUME~1\ALLUSE~1\APPLIC~1\fssg
[26/01/2009|20:16] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
[02/01/2005|00:41] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Hewlett-Packard
[02/01/2005|00:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\InstallShield
[07/02/2010|18:26] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Lavasoft
[06/01/2010|15:02] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Messenger Plus!
[10/06/2009|14:14] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[10/12/2009|13:01] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft Help
[06/12/2008|16:24] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Mozilla
[02/01/2005|00:52] C:\DOCUME~1\ALLUSE~1\APPLIC~1\QuickTime
[02/01/2005|00:19] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SBSI
[12/01/2010|13:45] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Software rule flag owns
[30/11/2008|13:39] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec
[13/12/2008|15:42] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Viewpoint
[07/02/2010|18:44] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[30/11/2008|13:01] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller

[02/01/2005|00:52] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Apple Computer
[25/11/2004|04:26] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities
[02/01/2005|01:23] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[02/01/2005|01:04] C:\DOCUME~1\DEFAUL~1\APPLIC~1\SampleView
[02/01/2005|01:13] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Symantec

[03/12/2008|08:21] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Adobe
[20/10/2009|19:18] C:\DOCUME~1\HP_PRO~1\APPLIC~1\AdobeUM
[02/01/2005|00:52] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Apple Computer
[06/01/2010|15:00] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Axis Ref Fork
[26/10/2009|18:44] C:\DOCUME~1\HP_PRO~1\APPLIC~1\BearShare
[06/12/2008|16:26] C:\DOCUME~1\HP_PRO~1\APPLIC~1\DivX
[23/11/2008|19:38] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Google
[25/11/2004|04:26] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Identities
[06/01/2009|13:26] C:\DOCUME~1\HP_PRO~1\APPLIC~1\InterVideo
[22/11/2008|16:34] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Macromedia
[02/12/2009|10:26] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Microsoft
[13/12/2008|15:41] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Mozilla
[30/11/2008|12:56] C:\DOCUME~1\HP_PRO~1\APPLIC~1\MSNInstaller
[02/01/2005|01:04] C:\DOCUME~1\HP_PRO~1\APPLIC~1\SampleView
[21/12/2008|14:03] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Sun
[29/11/2008|19:14] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Symantec
[06/12/2008|16:25] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Talkback
[04/05/2009|11:46] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Template

[02/01/2005|00:13] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft

[02/01/2005|00:13] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft

--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks

[07/02/2010 22:23][--a------] C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[07/02/2010 21:00][--a------] C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[07/02/2010 22:00][--ah-----] C:\WINDOWS\tasks\908EF4E7B4FD656B.job
[15/01/2010 00:00][--a------] C:\WINDOWS\tasks\Scheduled scanning task.job
[07/02/2010 21:07][--ah-----] C:\WINDOWS\tasks\User_Feed_Synchronization-{B52B1EBE-1849-4098-BD18-7A9E91100BFE}.job
[07/02/2010 21:00][--ah-----] C:\WINDOWS\tasks\SA.DAT
[05/08/2004 19:00][-rah-----] C:\WINDOWS\tasks\desktop.ini

--------------------\\ Listing des dossiers dans C:\Program Files

[20/10/2009|19:13] C:\Program Files\Adobe
[07/02/2010|21:04] C:\Program Files\Alwil Software
[02/01/2005|00:29] C:\Program Files\ATI Technologies
[06/01/2010|15:00] C:\Program Files\Axis Ref Fork
[26/12/2008|10:29] C:\Program Files\BearShare Applications
[06/01/2010|14:59] C:\Program Files\Circle Development
[24/11/2004|02:37] C:\Program Files\ComPlus Applications
[06/06/2009|14:15] C:\Program Files\DivX
[21/01/2009|20:34] C:\Program Files\Easy Internet signup
[02/11/2009|22:28] C:\Program Files\eMule
[20/01/2009|20:43] C:\Program Files\ExtractNow
[07/02/2010|18:26] C:\Program Files\Fichiers communs
[07/02/2010|15:18] C:\Program Files\Google
[02/01/2005|00:41] C:\Program Files\Hewlett-Packard
[02/01/2005|00:41] C:\Program Files\HP
[02/01/2005|00:57] C:\Program Files\HPQ
[02/01/2005|01:22] C:\Program Files\InstallShield Installation Information
[27/01/2010|15:24] C:\Program Files\Internet Explorer
[02/01/2005|01:21] C:\Program Files\InterVideo
[02/01/2005|00:51] C:\Program Files\iPod
[02/01/2005|00:51] C:\Program Files\iTunes
[26/11/2009|08:23] C:\Program Files\Java
[23/11/2008|19:45] C:\Program Files\Lavasoft
[20/12/2008|21:47] C:\Program Files\Messenger
[06/01/2010|15:13] C:\Program Files\Messenger Plus! Live
[10/06/2009|14:20] C:\Program Files\Microsoft
[27/11/2008|20:59] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[25/11/2004|04:27] C:\Program Files\microsoft frontpage
[30/11/2008|17:51] C:\Program Files\Microsoft Office
[27/01/2010|14:35] C:\Program Files\Microsoft Silverlight
[30/11/2008|13:04] C:\Program Files\Microsoft SQL Server Compact Edition
[10/06/2009|14:14] C:\Program Files\Microsoft Sync Framework
[31/10/2009|22:59] C:\Program Files\Microsoft Works
[23/11/2008|12:14] C:\Program Files\Microsoft.NET
[20/12/2008|21:47] C:\Program Files\Movie Maker
[06/12/2008|16:25] C:\Program Files\Mozilla Firefox
[17/08/2009|19:49] C:\Program Files\MSBuild
[30/11/2008|13:22] C:\Program Files\MSN
[25/11/2004|04:27] C:\Program Files\MSN Gaming Zone
[23/11/2008|20:25] C:\Program Files\MSXML 4.0
[17/08/2009|19:42] C:\Program Files\MSXML 6.0
[02/01/2005|01:22] C:\Program Files\muvee Technologies
[20/12/2008|21:48] C:\Program Files\NetMeeting
[25/11/2004|04:27] C:\Program Files\Online Services
[17/08/2009|19:40] C:\Program Files\Outlook Express
[02/01/2005|01:00] C:\Program Files\PC-Doctor for Windows
[02/01/2005|00:52] C:\Program Files\QuickTime
[17/08/2009|19:49] C:\Program Files\Reference Assemblies
[02/01/2005|01:03] C:\Program Files\Services en ligne
[16/09/2009|10:09] C:\Program Files\SFR
[02/01/2005|00:48] C:\Program Files\Sonic
[24/11/2004|02:37] C:\Program Files\Uninstall Information
[13/12/2008|15:42] C:\Program Files\Viewpoint
[24/11/2009|11:07] C:\Program Files\Windows Live
[10/06/2009|14:10] C:\Program Files\Windows Live SkyDrive
[21/12/2008|16:25] C:\Program Files\Windows Media Player
[20/12/2008|21:48] C:\Program Files\Windows NT
[24/11/2004|02:37] C:\Program Files\WindowsUpdate
[25/11/2004|04:28] C:\Program Files\xerox

--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs

[03/12/2008|08:21] C:\Program Files\Fichiers communs\Adobe
[23/11/2008|12:14] C:\Program Files\Fichiers communs\DESIGNER
[06/06/2009|14:08] C:\Program Files\Fichiers communs\DivX Shared
[02/01/2005|00:42] C:\Program Files\Fichiers communs\Hewlett-Packard
[02/01/2005|00:35] C:\Program Files\Fichiers communs\HP
[02/01/2005|00:55] C:\Program Files\Fichiers communs\InstallShield
[02/01/2005|00:23] C:\Program Files\Fichiers communs\Java
[07/02/2010|21:05] C:\Program Files\Fichiers communs\Microsoft Shared
[25/11/2004|04:26] C:\Program Files\Fichiers communs\MSSoap
[02/01/2005|01:22] C:\Program Files\Fichiers communs\muvee Technologies
[25/11/2004|04:26] C:\Program Files\Fichiers communs\ODBC
[22/11/2008|23:51] C:\Program Files\Fichiers communs\Services
[02/01/2005|00:46] C:\Program Files\Fichiers communs\Sonic Shared
[25/11/2004|04:26] C:\Program Files\Fichiers communs\SpeechEngines
[02/01/2005|00:46] C:\Program Files\Fichiers communs\SureThing Shared
[30/11/2008|13:39] C:\Program Files\Fichiers communs\Symantec Shared
[21/12/2008|16:24] C:\Program Files\Fichiers communs\System
[02/01/2005|00:48] C:\Program Files\Fichiers communs\TiVo Shared
[10/06/2009|14:02] C:\Program Files\Fichiers communs\Windows Live
[30/11/2008|13:02] C:\Program Files\Fichiers communs\WindowsLiveInstaller

--------------------\\ Process

( 45 Processes )

IEXPLORE.EXE ~ [PID:1912]
IEXPLORE.EXE ~ [PID:1964]
IEXPLORE.EXE ~ [PID:3692]
IEXPLORE.EXE ~ [PID:2428]

--------------------\\ Recherche avec S_Lop

C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\bisE1.exe

--------------------\\ Recherche de Fichiers / Dossiers Lop

C:\DOCUME~1\ALLUSE~1\APPLIC~1\Software rule flag owns
C:\DOCUME~1\ALLUSE~1\APPLIC~1\Software rule flag owns\Math Slow.dat
C:\DOCUME~1\ALLUSE~1\APPLIC~1\Software rule flag owns\Math Slow.exe
C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\nsbC.tmp
C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\nseC.tmp
C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\nseC.tmp.exe
C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\nsi12.tmp
C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\nsi12.tmp.exe
C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\nsl7.tmp
C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\nsp1B.tmp
C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\nsp1B.tmp.exe
C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\nsu7C.tmp
C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\nsu7C.tmp.exe
C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\nsv45.tmp
C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\nsv45.tmp.exe

--------------------\\ Verification du Registre

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Flag Owns Live Grim"="C:\\Documents and Settings\\All Users\\Application Data\\Software rule flag owns\\Math Slow.exe"

--------------------\\ Verification du fichier Hosts

Fichier Hosts PROPRE

--------------------\\ Recherche de fichiers avec Catchme

catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-02-07 22:40:12
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 0

--------------------\\ Recherche d'autres infections

Aucune autre infection trouvée !

[F:1069][D:189]-> C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp
[F:2][D:0]-> C:\DOCUME~1\HP_PRO~1\Cookies
[F:11][D:7]-> C:\DOCUME~1\HP_PRO~1\LOCALS~1\TEMPOR~1\content.IE5

1 - "C:\Lop SD\LopR_1.txt" - 07/02/2010|22:46 - Option : [1]

--------------------\\ Fin du rapport a 22:46:50
0
Utilisateur anonyme
 
hello

▶ double-clique ( pour Vista / 7 => clic droit "executer en tant qu'administrateuir" ) sur le raccourci Lop S&D présent sur ton Bureau

▶ Séléctionne la langue souhaitée , puis choisis l'option "Suppression + Hosts"
▶ Patiente jusqu'à la fin du scan
▶ Poste le rapport généré (C:\lopR.txt)
0
manouchka13
 
Bonjour

2e post après l'option Suppression + Hosts

Merci de ton aide, même si je déteste faire des trucs que je ne comprends pas ;)


--------------------\\ Lop S&D 4.2.5-0 XP/Vista

Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 2
X86-based PC ( Uniprocessor Free : AMD Sempron(tm) Processor 3000+ )
BIOS : Phoenix - Award BIOS v6.00PG
USER : HP_Propriétaire ( Administrator )
BOOT : Normal boot
Antivirus : avast! Antivirus 5.0.83886476 (Activated)
C:\ (Local Disk) - NTFS - Total:144 Go (Free:114 Go)
D:\ (Local Disk) - FAT32 - Total:4 Go (Free:0 Go)
E:\ (CD or DVD)
F:\ (USB)
H:\ (USB)
I:\ (USB)
J:\ (USB)

"C:\Lop SD" ( MAJ : 19-12-2008|23:40 )
Option : [2] ( 08/02/2010|18:03 )


\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ SUPPRESSION

Supprime! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\Software rule flag owns\Math Slow.dat
Supprime! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\Software rule flag owns\Math Slow.exe
Supprime! - C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\nsbC.tmp
Supprime! - C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\nseC.tmp
Supprime! - C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\nseC.tmp.exe
Supprime! - C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\nsi12.tmp
Supprime! - C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\nsi12.tmp.exe
Supprime! - C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\nsl7.tmp
Supprime! - C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\nsp1B.tmp
Supprime! - C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\nsp1B.tmp.exe
Supprime! - C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\nsu7C.tmp
Supprime! - C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\nsu7C.tmp.exe
Supprime! - C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\nsv45.tmp
Supprime! - C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\nsv45.tmp.exe
Supprime! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\Software rule flag owns

\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\

Supprime! - C:\Program Files\Viewpoint
Supprime! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\Viewpoint

\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\


--------------------\\ Listing des dossiers dans APPLIC~1

[20/12/2008|21:47] C:\DOCUME~1\ADMINI~1\APPLIC~1\Adobe
[20/12/2008|10:33] C:\DOCUME~1\ADMINI~1\APPLIC~1\Macromedia
[20/12/2008|21:47] C:\DOCUME~1\ADMINI~1\APPLIC~1\Microsoft

[28/02/2009|14:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\0FA
[20/10/2009|19:16] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[07/02/2010|15:41] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Alwil Software
[02/11/2009|22:31] C:\DOCUME~1\ALLUSE~1\APPLIC~1\AOL
[13/12/2008|15:41] C:\DOCUME~1\ALLUSE~1\APPLIC~1\AOL Downloads
[13/12/2008|15:42] C:\DOCUME~1\ALLUSE~1\APPLIC~1\AOL OCP
[02/01/2005|00:51] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer
[17/09/2009|21:20] C:\DOCUME~1\ALLUSE~1\APPLIC~1\f-secure
[16/09/2009|10:09] C:\DOCUME~1\ALLUSE~1\APPLIC~1\fssg
[26/01/2009|20:16] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
[02/01/2005|00:41] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Hewlett-Packard
[02/01/2005|00:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\InstallShield
[07/02/2010|18:26] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Lavasoft
[06/01/2010|15:02] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Messenger Plus!
[10/06/2009|14:14] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[10/12/2009|13:01] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft Help
[06/12/2008|16:24] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Mozilla
[02/01/2005|00:52] C:\DOCUME~1\ALLUSE~1\APPLIC~1\QuickTime
[02/01/2005|00:19] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SBSI
[30/11/2008|13:39] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec
[07/02/2010|18:44] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[30/11/2008|13:01] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller

[02/01/2005|00:52] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Apple Computer
[25/11/2004|04:26] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities
[02/01/2005|01:23] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[02/01/2005|01:04] C:\DOCUME~1\DEFAUL~1\APPLIC~1\SampleView
[02/01/2005|01:13] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Symantec

[03/12/2008|08:21] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Adobe
[20/10/2009|19:18] C:\DOCUME~1\HP_PRO~1\APPLIC~1\AdobeUM
[02/01/2005|00:52] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Apple Computer
[08/02/2010|17:58] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Axis Ref Fork
[26/10/2009|18:44] C:\DOCUME~1\HP_PRO~1\APPLIC~1\BearShare
[06/12/2008|16:26] C:\DOCUME~1\HP_PRO~1\APPLIC~1\DivX
[23/11/2008|19:38] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Google
[25/11/2004|04:26] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Identities
[06/01/2009|13:26] C:\DOCUME~1\HP_PRO~1\APPLIC~1\InterVideo
[22/11/2008|16:34] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Macromedia
[02/12/2009|10:26] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Microsoft
[13/12/2008|15:41] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Mozilla
[30/11/2008|12:56] C:\DOCUME~1\HP_PRO~1\APPLIC~1\MSNInstaller
[02/01/2005|01:04] C:\DOCUME~1\HP_PRO~1\APPLIC~1\SampleView
[21/12/2008|14:03] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Sun
[29/11/2008|19:14] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Symantec
[06/12/2008|16:25] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Talkback
[04/05/2009|11:46] C:\DOCUME~1\HP_PRO~1\APPLIC~1\Template

[02/01/2005|00:13] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft

[02/01/2005|00:13] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft

--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks

[07/02/2010 23:23][--a------] C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[07/02/2010 21:00][--a------] C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[08/02/2010 18:00][--ah-----] C:\WINDOWS\tasks\908EF4E7B4FD656B.job
[15/01/2010 00:00][--a------] C:\WINDOWS\tasks\Scheduled scanning task.job
[08/02/2010 17:59][--ah-----] C:\WINDOWS\tasks\User_Feed_Synchronization-{B52B1EBE-1849-4098-BD18-7A9E91100BFE}.job
[07/02/2010 21:00][--ah-----] C:\WINDOWS\tasks\SA.DAT
[05/08/2004 19:00][-rah-----] C:\WINDOWS\tasks\desktop.ini

--------------------\\ Listing des dossiers dans C:\Program Files

[20/10/2009|19:13] C:\Program Files\Adobe
[07/02/2010|21:04] C:\Program Files\Alwil Software
[02/01/2005|00:29] C:\Program Files\ATI Technologies
[06/01/2010|15:00] C:\Program Files\Axis Ref Fork
[26/12/2008|10:29] C:\Program Files\BearShare Applications
[06/01/2010|14:59] C:\Program Files\Circle Development
[24/11/2004|02:37] C:\Program Files\ComPlus Applications
[06/06/2009|14:15] C:\Program Files\DivX
[21/01/2009|20:34] C:\Program Files\Easy Internet signup
[02/11/2009|22:28] C:\Program Files\eMule
[20/01/2009|20:43] C:\Program Files\ExtractNow
[07/02/2010|18:26] C:\Program Files\Fichiers communs
[07/02/2010|15:18] C:\Program Files\Google
[02/01/2005|00:41] C:\Program Files\Hewlett-Packard
[02/01/2005|00:41] C:\Program Files\HP
[02/01/2005|00:57] C:\Program Files\HPQ
[02/01/2005|01:22] C:\Program Files\InstallShield Installation Information
[27/01/2010|15:24] C:\Program Files\Internet Explorer
[02/01/2005|01:21] C:\Program Files\InterVideo
[02/01/2005|00:51] C:\Program Files\iPod
[02/01/2005|00:51] C:\Program Files\iTunes
[26/11/2009|08:23] C:\Program Files\Java
[23/11/2008|19:45] C:\Program Files\Lavasoft
[20/12/2008|21:47] C:\Program Files\Messenger
[06/01/2010|15:13] C:\Program Files\Messenger Plus! Live
[10/06/2009|14:20] C:\Program Files\Microsoft
[27/11/2008|20:59] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[25/11/2004|04:27] C:\Program Files\microsoft frontpage
[30/11/2008|17:51] C:\Program Files\Microsoft Office
[27/01/2010|14:35] C:\Program Files\Microsoft Silverlight
[30/11/2008|13:04] C:\Program Files\Microsoft SQL Server Compact Edition
[10/06/2009|14:14] C:\Program Files\Microsoft Sync Framework
[31/10/2009|22:59] C:\Program Files\Microsoft Works
[23/11/2008|12:14] C:\Program Files\Microsoft.NET
[20/12/2008|21:47] C:\Program Files\Movie Maker
[06/12/2008|16:25] C:\Program Files\Mozilla Firefox
[17/08/2009|19:49] C:\Program Files\MSBuild
[30/11/2008|13:22] C:\Program Files\MSN
[25/11/2004|04:27] C:\Program Files\MSN Gaming Zone
[23/11/2008|20:25] C:\Program Files\MSXML 4.0
[17/08/2009|19:42] C:\Program Files\MSXML 6.0
[02/01/2005|01:22] C:\Program Files\muvee Technologies
[20/12/2008|21:48] C:\Program Files\NetMeeting
[25/11/2004|04:27] C:\Program Files\Online Services
[17/08/2009|19:40] C:\Program Files\Outlook Express
[02/01/2005|01:00] C:\Program Files\PC-Doctor for Windows
[02/01/2005|00:52] C:\Program Files\QuickTime
[17/08/2009|19:49] C:\Program Files\Reference Assemblies
[02/01/2005|01:03] C:\Program Files\Services en ligne
[16/09/2009|10:09] C:\Program Files\SFR
[02/01/2005|00:48] C:\Program Files\Sonic
[24/11/2004|02:37] C:\Program Files\Uninstall Information
[24/11/2009|11:07] C:\Program Files\Windows Live
[10/06/2009|14:10] C:\Program Files\Windows Live SkyDrive
[21/12/2008|16:25] C:\Program Files\Windows Media Player
[20/12/2008|21:48] C:\Program Files\Windows NT
[24/11/2004|02:37] C:\Program Files\WindowsUpdate
[25/11/2004|04:28] C:\Program Files\xerox

--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs

[03/12/2008|08:21] C:\Program Files\Fichiers communs\Adobe
[23/11/2008|12:14] C:\Program Files\Fichiers communs\DESIGNER
[06/06/2009|14:08] C:\Program Files\Fichiers communs\DivX Shared
[02/01/2005|00:42] C:\Program Files\Fichiers communs\Hewlett-Packard
[02/01/2005|00:35] C:\Program Files\Fichiers communs\HP
[02/01/2005|00:55] C:\Program Files\Fichiers communs\InstallShield
[02/01/2005|00:23] C:\Program Files\Fichiers communs\Java
[07/02/2010|21:05] C:\Program Files\Fichiers communs\Microsoft Shared
[25/11/2004|04:26] C:\Program Files\Fichiers communs\MSSoap
[02/01/2005|01:22] C:\Program Files\Fichiers communs\muvee Technologies
[25/11/2004|04:26] C:\Program Files\Fichiers communs\ODBC
[22/11/2008|23:51] C:\Program Files\Fichiers communs\Services
[02/01/2005|00:46] C:\Program Files\Fichiers communs\Sonic Shared
[25/11/2004|04:26] C:\Program Files\Fichiers communs\SpeechEngines
[02/01/2005|00:46] C:\Program Files\Fichiers communs\SureThing Shared
[30/11/2008|13:39] C:\Program Files\Fichiers communs\Symantec Shared
[21/12/2008|16:24] C:\Program Files\Fichiers communs\System
[02/01/2005|00:48] C:\Program Files\Fichiers communs\TiVo Shared
[10/06/2009|14:02] C:\Program Files\Fichiers communs\Windows Live
[30/11/2008|13:02] C:\Program Files\Fichiers communs\WindowsLiveInstaller

--------------------\\ Process

( 40 Processes )

... OK !

--------------------\\ Recherche avec S_Lop

Aucun fichier / dossier Lop trouvé !

--------------------\\ Recherche de Fichiers / Dossiers Lop

Aucun fichier / dossier Lop trouvé !

--------------------\\ Verification du Registre

..... OK !

--------------------\\ Verification du fichier Hosts

Fichier Hosts PROPRE


--------------------\\ Recherche de fichiers avec Catchme

catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-02-08 18:04:41
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 0

--------------------\\ Recherche d'autres infections


Aucune autre infection trouvée !

[F:1055][D:189]-> C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp
[F:2][D:0]-> C:\DOCUME~1\HP_PRO~1\Cookies
[F:12][D:8]-> C:\DOCUME~1\HP_PRO~1\LOCALS~1\TEMPOR~1\content.IE5

1 - "C:\Lop SD\LopR_1.txt" - 07/02/2010|22:46 - Option : [1]
2 - "C:\Lop SD\LopR_2.txt" - 08/02/2010|18:05 - Option : [2]

--------------------\\ Fin du rapport a 18:05:48
0
Utilisateur anonyme
 
tu peux me donner les proprietes de ce fichier stp .?

C:\WINDOWS\tasks\908EF4E7B4FD656B.job
0
manouchak
 
J'ai eu du mal à le trouver...
Dans propriétés, je vois que c'est un Objet Tache. L'heure et le jour de création correspondent à mon dernier scan avec LopSD.
Dans l'onglet "Tache" il est censé éxécuter : "c:\docume~1\hp_pro~1\applic~1\axisre~1\log settings deaf.exe"

Est-ce qu'il te faut autre chose ?
0
manouchka13
 
J'ai eu du mal à le trouver...

Dans les propriétés, il est écrit que c'est un "objet Tache".
Le jour et l'heure de création correspondent à mon dernier scan avec LopSD.

Et dans l'onglet "Tache" il est écrit qu'il est censé exécuter "c:\docume~1\hp_pro~1\applic~1\axisre~1\log settings deaf.exe"

Est-ce qu'il te faut autre chose ?
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
manouchka13
 
Il semblerait en tous cas que les fenetres publicitaires aient déjà disparues car depuis mon 2e scan, il n'y en a plus !

Merci pour le temps passé déjà.
Est-ce qu'il faut que je cloture par qqch ?
0
Kiev62 Messages postés 258 Statut Membre 9
 
Bonsoir, pas certains mais je crois voir deux elements d'antivirus different "alwil software=>Avast et Symantec=> Norton.

Quel antivirus utilisez vous?
0
manouchka13
 
Bonsoir

Norton était installé auparavant mais il n'y est plus... normalement !
J'utilise Avast.

Quel est le risque d'avoir 2 antivirus ?
0
Kiev62 Messages postés 258 Statut Membre 9
 
Risque de conflit et que l'antivirus avast ne remplissent pas bien son travail, télécharge et installe ce logiciel car il reste des traces de norton dans ton systéme lien=> http://www.commentcamarche.net/telecharger/telecharger-34055566-norton-removal-tool

Est lance ce programme qui effecera toute trace de norton.
0
Utilisateur anonyme
 
Desactive ton antivirus le temps de la manip ainsi que ton parefeu si présent(car il est detecté a tort comme infection)

▶ Télécharge List&Kill'em et enregistre le sur ton bureau

▶ Branche clés usb , disques durs externes , mp3 , mp4 , etc..

double clique ( clic droit "executer en tant qu'administrateur" pour Vista/7 ) sur le raccourci sur ton bureau pour lancer l'installation

coche la case "creer une icone sur le bureau"

une fois terminée , clic sur "terminer" et le programme se lancera seul

choisis la langue puis choisis l'option 1 = Mode Recherche

▶ laisse travailler l'outil

à l'apparition de la fenetre blanche , c'est un peu long , c'est normal , le programme n'est pas bloqué.

un rapport du nom de catchme apparait sur ton bureau , ignore-le,ne le poste pas , mais ne le supprime pas pour l instant, le scan n'est pas fini.

▶ Poste le contenu du rapport qui s'ouvre aux 100 % du scan à l'ecran "COMPLETED"

tu peux supprimer le rapport catchme.log de ton bureau maintenant.

0
manouchka13
 
Salut
Désolée pour l'absence d'un jour et Merci encore pour l'aide précieuse.
Bravo pour le logiciel.

Voici le post :


List'em by g3n-h@ckm@n 1.2.5.0

User : HP_Propriétaire (Administrateurs)
Update on 08/02/2010 by g3n-h@ckm@n ::::: 15.30
Start at: 20:40:22 | 10/02/2010
Contact : https://forums.commentcamarche.net/forum/virus-securite-7

AMD Sempron(tm) Processor 3000+
Microsoft Windows XP Édition familiale (5.1.2600 32-bit) # Service Pack 2
Internet Explorer 8.0.6001.18702
Windows Firewall Status : Enabled
AV : avast! Antivirus 5.0.83886476 [ Enabled | Updated ]

C:\ -> Disque fixe local | 144,43 Go (114,4 Go free) [HP_PAVILION] | NTFS
D:\ -> Disque fixe local | 4,6 Go (381,79 Mo free) [HP_RECOVERY] | FAT32
E:\ -> Disque CD-ROM
F:\ -> Disque amovible
H:\ -> Disque amovible
I:\ -> Disque amovible
J:\ -> Disque amovible

¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Processes running

C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\windows\system\hpsysdrv.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\WINDOWS\AGRSMMSG.exe
C:\WINDOWS\system32\hphmon06.exe
C:\HP\KBD\KBD.EXE
C:\WINDOWS\ALCXMNTR.EXE
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\SFR\Kit\9props.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\wdfmgr.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\WINDOWS\System32\alg.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\List_Kill'em\List_Kill'em.scr
C:\WINDOWS\system32\cmd.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\Documents and Settings\HP_Propriétaire\Local Settings\Temp\128.tmp\pv.exe

======================
Keys "Run"
======================
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
ctfmon.exe REG_SZ C:\WINDOWS\system32\ctfmon.exe
Connexion SFR 9props.exe REG_SZ "C:\Program Files\SFR\Kit\9props.exe" /trayicon
TickSize REG_SZ C:\DOCUME~1\HP_PRO~1\APPLIC~1\AXISRE~1\Tons blue.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
hpsysdrv REG_SZ c:\windows\system\hpsysdrv.exe
ATIPTA REG_SZ C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
AGRSMMSG REG_SZ AGRSMMSG.exe
HPHUPD06 REG_SZ c:\Program Files\HP\{AAC4FC36-8F89-4587-8DD3-EBC57C83374D}\hphupd06.exe
HPHmon06 REG_SZ C:\WINDOWS\system32\hphmon06.exe
KBD REG_SZ C:\HP\KBD\KBD.EXE
Recguard REG_SZ C:\WINDOWS\SMINST\RECGUARD.EXE
AlcxMonitor REG_SZ ALCXMNTR.EXE
PS2 REG_SZ C:\WINDOWS\system32\ps2.exe
LSBWatcher REG_SZ c:\hp\drivers\hplsbwatcher\lsburnwatcher.exe
QuickTime Task REG_SZ "C:\Program Files\QuickTime\qttask.exe" -atboottime
SunJavaUpdateSched REG_SZ "C:\Program Files\Java\jre6\bin\jusched.exe"
avast5 REG_SZ C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe /nogui

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunServices]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]

=====================
Other Keys
=====================
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
dontdisplaylastusername REG_DWORD 0 (0x0)
legalnoticecaption REG_SZ
legalnoticetext REG_SZ
shutdownwithoutlogon REG_DWORD 1 (0x1)
undockwithoutlogon REG_DWORD 1 (0x1)

===============
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
NoDriveTypeAutoRun REG_DWORD 145 (0x91)

===============
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
HonorAutoRunSetting REG_DWORD 1 (0x1)

===============
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
AppInit_DLLS REG_SZ

===============
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
AutoRestartShell REG_DWORD 1 (0x1)
DefaultDomainName REG_SZ NOM-EB85C523610
DefaultUserName REG_SZ HP_Propriétaire
LegalNoticeCaption REG_SZ
LegalNoticeText REG_SZ
PowerdownAfterShutdown REG_SZ 0
ReportBootOk REG_SZ 1
Shell REG_SZ Explorer.exe
ShutdownWithoutLogon REG_SZ 0
System REG_SZ
Userinit REG_SZ C:\WINDOWS\system32\userinit.exe,
VmApplet REG_SZ rundll32 shell32,Control_RunDLL "sysdm.cpl"
SfcQuota REG_DWORD -1 (0xffffffff)
allocatecdroms REG_SZ 0
allocatedasd REG_SZ 0
allocatefloppies REG_SZ 0
cachedlogonscount REG_SZ 10
forceunlocklogon REG_DWORD 0 (0x0)
passwordexpirywarning REG_DWORD 14 (0xe)
scremoveoption REG_SZ 0
AllowMultipleTSSessions REG_DWORD 1 (0x1)
UIHost REG_EXPAND_SZ logonui.exe
LogonType REG_DWORD 1 (0x1)
Background REG_SZ 0 0 0
DebugServerCommand REG_SZ no
SFCDisable REG_DWORD 0 (0x0)
WinStationsDisabled REG_SZ 0
HibernationPreviouslyEnabled REG_DWORD 1 (0x1)
ShowLogonOptions REG_DWORD 0 (0x0)
AltDefaultUserName REG_SZ HP_Propriétaire
AltDefaultDomainName REG_SZ NOM-EB85C523610

===============
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\AtiExtEvent]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\crypt32chain]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\cryptnet]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\cscdll]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\ScCertProp]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\Schedule]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\sclgntfy]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\SensLogn]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\termsrv]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\wlballoon]

===============
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
{AEB6717E-7E19-11d0-97EE-00C04FD91972} REG_SZ

===============
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
%windir%\system32\sessmgr.exe REG_SZ %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019
C:\Program Files\iTunes\iTunes.exe REG_SZ C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes
C:\Program Files\AOL 9.0\waol.exe REG_SZ C:\Program Files\AOL 9.0\waol.exe:*:Enabled:AOL France
C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE REG_SZ C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote
C:\Program Files\Messenger\msmsgs.exe REG_SZ C:\Program Files\Messenger\msmsgs.exe:*:Enabled:Windows Messenger
%windir%\Network Diagnostic\xpnetdiag.exe REG_SZ %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000
C:\Program Files\Fichiers communs\AOL\Loader\aolload.exe REG_SZ C:\Program Files\Fichiers communs\AOL\Loader\aolload.exe:*:Enabled:AOL Loader
C:\Program Files\eMule\emule.exe REG_SZ C:\Program Files\eMule\emule.exe:*:Enabled:eMule
C:\Program Files\BearShare Applications\BearShare\BearShare.exe REG_SZ C:\Program Files\BearShare Applications\BearShare\BearShare.exe:*:Enabled:BearShare
C:\Program Files\Windows Live\Messenger\wlcsdk.exe REG_SZ C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call
C:\Program Files\Windows Live\Messenger\msnmsgr.exe REG_SZ C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger
C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe REG_SZ C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live FolderShare
C:\Documents and Settings\HP_Propriétaire\Local Settings\Temp\7zS9.tmp\SymNRT.exe REG_SZ C:\Documents and Settings\HP_Propriétaire\Local Settings\Temp\7zS9.tmp\SymNRT.exe:*:Enabled:Norton Removal Tool

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
%windir%\system32\sessmgr.exe REG_SZ %windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019
%ProgramFiles%\iTunes\iTunes.exe REG_SZ %ProgramFiles%\iTunes\iTunes.exe:*:enabled:iTunes
%windir%\Network Diagnostic\xpnetdiag.exe REG_SZ %windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000
C:\Program Files\Windows Live\Messenger\wlcsdk.exe REG_SZ C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call
C:\Program Files\Windows Live\Messenger\msnmsgr.exe REG_SZ C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger
C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe REG_SZ C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live FolderShare

===============
ActivX controls
===============
HKEY_LOCAL_MACHINE\software\microsoft\code store database\distribution units\{0CCA191D-13A6-4E29-B746-314DEE697D83}
HKEY_LOCAL_MACHINE\software\microsoft\code store database\distribution units\{8AD9C840-044E-11D1-B3E9-00805F499D93}
HKEY_LOCAL_MACHINE\software\microsoft\code store database\distribution units\{8FFBE65D-2C9C-4669-84BD-5829DC0B603C}
HKEY_LOCAL_MACHINE\software\microsoft\code store database\distribution units\{CAFEEFAC-0015-0000-0000-ABCDEFFEDCBA}
HKEY_LOCAL_MACHINE\software\microsoft\code store database\distribution units\{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}
HKEY_LOCAL_MACHINE\software\microsoft\code store database\distribution units\{CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}
HKEY_LOCAL_MACHINE\software\microsoft\code store database\distribution units\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
HKEY_LOCAL_MACHINE\software\microsoft\code store database\distribution units\{D27CDB6E-AE6D-11CF-96B8-444553540000}

===============
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\<{12d0ed0d-0ee0-4f90-8827-78cefb8f4988}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{22d6f312-b0f6-11d0-94ab-0080c74c7e95}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{26923b43-4d38-484f-9b9e-de460746276c}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{881dd1c5-3dcf-431b-b061-f3f88e8be88a}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{DFB17AA8-042A-429D-987C-26CE244A4189}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{03F998B2-0E00-11D3-A498-00104B6EB52E}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{08B0E5C0-4FCB-11CF-AAA5-00401C608500}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{10072CEC-8CC1-11D1-986E-00A0C955B42F}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{1B00725B-C455-4DE6-BFB6-AD540AD427CD}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{2179C5D3-EBFF-11CF-B6FD-00AA00B4E220}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{22d6f312-b0f6-11d0-94ab-0080c74c7e95}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{283807B5-2C60-11D0-A31D-00AA00B92C03}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{2C7339CF-2B09-4501-B3F3-F3508C9228ED}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{36f8ec70-c29a-11d1-b5c7-0000f8051515}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{3af36230-a269-11d1-b5bf-0000f8051515}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{3bf42070-b3b1-11d1-b5c5-0000f8051515}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{411EDCF7-755D-414E-A74B-3DCD6583F589}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{4278c270-a269-11d1-b5bf-0000f8051515}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{44BBA840-CC51-11CF-AAFA-00AA00B6015C}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{44BBA842-CC51-11CF-AAFA-00AA00B6015B}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{44BBA848-CC51-11CF-AAFA-00AA00B6015C}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{44BBA855-CC51-11CF-AAFA-00AA00B6015F}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{45ea75a0-a269-11d1-b5bf-0000f8051515}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{4f216970-c90c-11d1-b5c7-0000f8051515}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{4f645220-306d-11d2-995d-00c04f98bbc9}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{5945c046-1e7d-11d1-bc44-00c04fd912be}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{5A8D6EE0-3E18-11D0-821E-444553540000}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{5fd399c0-a70a-11d1-9948-00c04f98bbc9}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{630b1da0-b465-11d1-9948-00c04f98bbc9}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{6BF52A52-394A-11d3-B153-00C04F79FAA6}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{6fab99d0-bab8-11d1-994a-00c04f98bbc9}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{7131646D-CD3C-40F4-97B9-CD9E4E6262EF}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{73fa19d0-2d75-11d2-995d-00c04f98bbc9}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{7790769C-0471-11d2-AF11-00C04FA35D02}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{89820200-ECBD-11cf-8B85-00AA005B4340}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{89820200-ECBD-11cf-8B85-00AA005B4383}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{89B4C1CD-B018-4511-B0A1-5476DBF70820}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{8b15971b-5355-4c82-8c07-7e181ea07608}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{9381D8F2-0288-11D0-9501-00AA00B911A5}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{94de52c8-2d59-4f1b-883e-79663d2d9a8c}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{9A394342-4A68-4EBA-85A6-55B559F4E700}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{ACC563BC-4266-43f0-B6ED-9D38C4202C7E}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{C9E9A340-D1F1-11D0-821E-444553540600}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{CC2A9BA0-3BDD-11D0-821E-444553540000}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{CDD7975E-60F8-41d5-8149-19E51D6F71D0}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{D27CDB6E-AE6D-11cf-96B8-444553540000}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{DAA94A2A-2A8D-4D3B-9DB8-56FBECED082D}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{de5aed00-a4bf-11d1-9948-00c04f98bbc9}
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{E92B03AB-B707-11d2-9CBD-0000F87A369E}

==============
BHO :
======
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{5C255C8A-E604-49b4-9D64-90988571CECB}]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{6D023EBF-70B8-45A6-9ED5-556515FA0FE4}]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{74322BF9-DF26-493f-B0DA-6D2FC5E6429E}]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]

================
Internet Explorer :
================
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
Start Page REG_SZ https://www.msn.com/fr-fr/?ocid=iehp

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
Start Page REG_SZ https://www.google.fr/?gws_rd=ssl

========
Services
========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services]

Ndisuio : 0x3 ( OK = 3 )
SharedAccess : 0x2 ( OK = 2 )
wuauserv : 0x2 ( OK = 2 )

=========
Atapi.sys
=========

%%%% HASHDEEP-1.0
%%%% size,md5,sha256,filename
## Invoked from: C:\Documents and Settings\HP_Propriétaire\Local Settings\Temp\128.tmp
## C:\> hashdeep C:\WINDOWS\System32\Drivers\atapi.sys
##
95360,cdfe4411a69c224bd1d11b2da92dac51,0e6b23a80f171550575bebc56f7500cd87a5cf03b2b9fdc49bc3de96282cd69d,C:\WINDOWS\System32\Drivers\atapi.sys

%%%% HASHDEEP-1.0
%%%% size,md5,sha256,filename
## Invoked from: C:\Documents and Settings\HP_Propriétaire\Local Settings\Temp\128.tmp
## C:\> hashdeep C:\WINDOWS\System32\DllCache\atapi.sys
##
95360,cdfe4411a69c224bd1d11b2da92dac51,0e6b23a80f171550575bebc56f7500cd87a5cf03b2b9fdc49bc3de96282cd69d,C:\WINDOWS\System32\DllCache\atapi.sys

Sources
=======

C:\WINDOWS\SoftwareDistribution\Download\72435c12e13d6da3bbaa7c93396b47e3\backup\atapi.sys
C:\WINDOWS\system32\dllcache\atapi.sys
C:\WINDOWS\system32\drivers\atapi.sys
C:\WINDOWS\system32\ReinstallBackups\0000\DriverFiles\i386\atapi.sys

Référence :
==========

Win XP_32b : a64013e98426e1877cb653685c5c0009
Win XP_SP2_32b : CDFE4411A69C224BD1D11B2DA92DAC51
Win XP_SP3_32b : 9F3A2F5AA6875C72BF062C712CFA2674
Vista_32b : e03e8c99d15d0381e02743c36afc7c6f
Vista_SP1_32b : 2d9c903dc76a66813d350a562de40ed9
Vista_SP2_32b : 1F05B78AB91C9075565A9D8A4B880BC4
Vista_SP2_64b : 1898FAE8E07D97F2F6C2D5326C633FAC
Windows 7_32b : 80C40F7FDFC376E4C5FEEC28B41C119E
Windows 7_64b : 02062C0B390B7729EDC9E69C680A6F3C


D:\Autorun.inf :
----------------
[AUTORUN]
ShellExecute=Info.exe protect.ed 480 480

=======
Drive :
=======

D‚fragmenteur de disque Windows
Copyright (c) 2001 Microsoft Corp. et Executive Software International Inc.

Rapport d'analyse
144 Go total, 114 Go libre (79%), 0% fragment‚ (fragmentation du fichier 0%)

Il ne vous est pas n‚cessaire de d‚fragmenter ce volume.

¤¤¤¤¤¤¤¤¤¤ Files/folders :

Present !! : C:\Program Files\Circle Development
Present !! : C:\WINDOWS\000001_.tmp
Present !! : C:\WINDOWS\002786_.tmp
Present !! : C:\WINDOWS\System32\ps2.bat"
Present !! : C:\Documents and Settings\HP_Propri‚taire\Application Data\wklnhst.dat
Present !! : C:\Documents and Settings\HP_Propri‚taire\Application Data\wklnhst.dat
Present !! : C:\Documents and Settings\HP_Propri‚taire\Local Settings\Temp\dw.log
Present !! : C:\Documents and Settings\HP_Propri‚taire\LOCAL Settings\Temp\BearShare_2554015.exe
Present !! : C:\Documents and Settings\HP_Propri‚taire\LOCAL Settings\Temp\BearShare_27071718.exe
Present !! : C:\Documents and Settings\HP_Propri‚taire\LOCAL Settings\Temp\BearShare_4091062.exe
Present !! : C:\Documents and Settings\HP_Propri‚taire\LOCAL Settings\Temp\IE8-Setup-Full-MSN-XP.exe
Present !! : C:\Documents and Settings\HP_Propri‚taire\LOCAL Settings\Temp\jre-6u13-windows-i586-p-iftw.exe
Present !! : C:\Documents and Settings\HP_Propri‚taire\LOCAL Settings\Temp\jre-6u15-windows-i586-iftw.exe
Present !! : C:\Documents and Settings\HP_Propri‚taire\LOCAL Settings\Temp\jre-6u16-windows-i586-iftw.exe
Present !! : C:\Documents and Settings\HP_Propri‚taire\LOCAL Settings\Temp\jre-6u17-windows-i586-iftw-rv.exe
Present !! : C:\Documents and Settings\HP_Propri‚taire\LOCAL Settings\Temp\ose00000.exe
Present !! : C:\Documents and Settings\HP_Propri‚taire\LOCAL Settings\Temp\preconfig.exe
Present !! : C:\Documents and Settings\HP_Propri‚taire\LOCAL Settings\Temp\TFR24D.exe
Present !! : C:\Documents and Settings\HP_Propri‚taire\LOCAL Settings\Temp\fsprod.dll
Present !! : C:\Documents and Settings\HP_Propri‚taire\LOCAL Settings\Temp\fssfm.dll
Present !! : C:\Documents and Settings\HP_Propri‚taire\LOCAL Settings\Temp\progupd.dll
Present !! : C:\Documents and Settings\HP_Propri‚taire\LOCAL Settings\Temp\tmp79.tmp
Present !! : C:\Documents and Settings\HP_Propri‚taire\LOCAL Settings\Temp\tmp7B.tmp
Present !! : C:\Documents and Settings\HP_Propri‚taire\LOCAL Settings\Temp\tmp7E.tmp
Present !! : C:\Documents and Settings\HP_Propri‚taire\LOCAL Settings\Temp\tmp83.tmp
Present !! : C:\Documents and Settings\HP_Propri‚taire\LOCAL Settings\Temp\tmp8C.tmp
Present !! : C:\Documents and Settings\HP_Propri‚taire\LOCAL Settings\Temp\tmpA2.tmp
Present !! : C:\Documents and Settings\HP_Propri‚taire\LOCAL Settings\Temp\tmpD6.tmp
Present !! : C:\Documents and Settings\HP_Propri‚taire\LOCAL Settings\Temp\tmpEC.tmp

¤¤¤¤¤¤¤¤¤¤ Keys :

Present !! : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{0E5CBF21-D15F-11D0-8301-00AA005B4383}
Present !! : "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Install.exe"
Present !! : "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Setup.exe"

============

catchme 0.3.1398.3 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-02-10 20:48:49
Windows 5.1.2600 Service Pack 2 NTFS

scanning hidden processes ...

scanning hidden services & system hive ...

scanning hidden registry entries ...

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Prefetcher]
"TracesProcessed"=dword:00003f86

scanning hidden files ...

scan completed successfully
hidden processes: 0
hidden services: 0
hidden files: 0


Stealth MBR rootkit/Mebroot/Sinowal detector 0.3.7 by Gmer, http://www.gmer.net

device: opened successfully
user: MBR read successfully
called modules: ntkrnlpa.exe CLASSPNP.SYS disk.sys ACPI.sys hal.dll atapi.sys pciide.sys PCIIDEX.SYS
kernel: MBR read successfully
user & kernel MBR OK

==========
Programs
==========

Adobe
Alwil Software
ATI Technologies
Axis Ref Fork
BearShare Applications
Circle Development
ComPlus Applications
DivX
Easy Internet signup
eMule
ExtractNow
Fichiers communs
Google
Hewlett-Packard
HP
HPQ
InstallShield Installation Information
Internet Explorer
InterVideo
iPod
iTunes
Java
Lavasoft
List_Kill'em
Messenger
Messenger Plus! Live
Microsoft
Microsoft CAPICOM 2.1.0.2
microsoft frontpage
Microsoft Office
Microsoft Silverlight
Microsoft SQL Server Compact Edition
Microsoft Sync Framework
Microsoft Works
Microsoft.NET
Movie Maker
Mozilla Firefox
MSBuild
MSN
MSN Gaming Zone
MSXML 4.0
MSXML 6.0
muvee Technologies
NetMeeting
Online Services
Outlook Express
PC-Doctor for Windows
QuickTime
Reference Assemblies
Services en ligne
SFR
Sonic
Uninstall Information
Windows Live
Windows Live SkyDrive
Windows Media Player
Windows NT
WindowsUpdate
xerox

============
Drive C:
============

ad451f5c43ae5be73c0e09c44ffd
AUTOEXEC.BAT
BOOT.BAK
boot.ini
Bootfont.bin
cmdcons
cmldr
Config.Msi
CONFIG.SYS
d5803f9f4f7e01246a6467c829c9
Documents and Settings
drwtsn32.log
hiberfil.sys
hp
IO.SYS
IPH.PH
Kill'em
List'em.txt
Lop SD
lopR.txt
MSDOS.SYS
MSOCache
NTDETECT.COM
ntldr
pagefile.sys
Program Files
Python22
RECYCLER
sqmdata00.sqm
sqmdata01.sqm
sqmdata02.sqm
sqmdata03.sqm
sqmdata04.sqm
sqmdata05.sqm
sqmdata06.sqm
sqmdata07.sqm
sqmdata08.sqm
sqmdata09.sqm
sqmdata10.sqm
sqmdata11.sqm
sqmdata12.sqm
sqmdata13.sqm
sqmdata14.sqm
sqmdata15.sqm
sqmdata16.sqm
sqmdata17.sqm
sqmdata18.sqm
sqmdata19.sqm
sqmnoopt00.sqm
sqmnoopt01.sqm
sqmnoopt02.sqm
sqmnoopt03.sqm
sqmnoopt04.sqm
sqmnoopt05.sqm
sqmnoopt06.sqm
sqmnoopt07.sqm
sqmnoopt08.sqm
sqmnoopt09.sqm
sqmnoopt10.sqm
sqmnoopt11.sqm
sqmnoopt12.sqm
sqmnoopt13.sqm
sqmnoopt14.sqm
sqmnoopt15.sqm
sqmnoopt16.sqm
sqmnoopt17.sqm
sqmnoopt18.sqm
sqmnoopt19.sqm
sysprep
System Volume Information
system.sav
WINDOWS

¤¤¤¤¤¤¤¤¤¤ Cracks | Keygens | Serials

C:\hp\bin\Works\Install.exe
D:\I386\Apps\APP26057\src\Install.exe




¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤( EOF )¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤

End of scan : 20:56:28,15
0
Utilisateur anonyme
 
salut

▶ Relance List&Kill'em(soit en clic droit pour vista),avec le raccourci sur ton bureau.
mais cette fois-ci :

▶ choisis l'option 2 = Mode Suppression

laisse travailler l'outil.

en fin de scan un rapport s'ouvre

▶ colle le contenu dans ta reponse
0
manouchka13
 
Salut
Merci beaucoup pour tout le temps que tu as passé sur mon problème.

Pour l'instant, je n'ai plus aucun souci. Je vais donc arrêter d'essayer de faire mieux car "le mieux est l'ennemi du bien".

Merci encore pour ta sollicitude.
0
Utilisateur anonyme
 
tu as fait la suppression ?
0