Carré noir avec liseret vert sur le bureau

Fermé
nassenp77 Messages postés 14 Date d'inscription mercredi 23 novembre 2005 Statut Membre Dernière intervention 27 novembre 2005 - 27 nov. 2005 à 03:23
 Utilisateur anonyme - 27 nov. 2005 à 14:51
bonjour,
auriez vous la gentillesse de faire l'analyse des données ci dessous
et me dire ce que je dois supprimer pour etre tranquille avec ce carré noir avec liseret vert sur mon bureau.
de plus maintenant je pense qu'il m'a mangé les descriptions de mes dossiers ?
dans l'attente merci d'avance de votre sollicitude amicalement nassenp77
Logfile of HijackThis v1.99.1
Scan saved at 3:16:53, on 27/11/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\sstray.exe
C:\Program Files\Support.com\bin\tgcmd.exe
C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\QuickTime\qttask.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Sony Corporation\Picture Package\Picture Package Menu\SonyTray.exe
C:\Program Files\Sony Corporation\Picture Package\Picture Package Applications\Residence.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Microsoft Office\OFFICE11\OUTLOOK.EXE
C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE
C:\WINDOWS\msagent\AgentSvr.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Philippe\Mes documents\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://g.fr.msn.be/0SEFRBE/SAOS01
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.skynet.be/index.html
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_5_7_0.dll
O2 - BHO: (no name) - {4E7BD74F-2B8D-469E-85B1-A42BE89AAE29} - (no file)
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.4000.1001\fr-be\msntb.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [nForce Tray Options] sstray.exe /r
O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\System32\\NeroCheck.exe
O4 - HKLM\..\Run: [tgcmd] "C:\Program Files\Support.com\bin\tgcmd.exe" /server /startmonitor
O4 - HKLM\..\Run: [OpwareSE2] "C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe"
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [NVIEW] rundll32.exe nview.dll,nViewLoadHook
O4 - Global Startup: Adobe Gamma Loader.exe.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Picture Package Menu.lnk = ?
O4 - Global Startup: Picture Package VCD Maker.lnk = ?
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: &eBay Search - res://C:\Program Files\eBay\eBay Toolbar2\eBayTb.dll/RCSearch.html
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint Ajouter à la Liste à Imprimer - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint Impression rapide - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Imprimer - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html
O8 - Extra context menu item: Easy-WebPrint Prévisualiser - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: Dexia BusinessClick - http://businessclick.dexia.be/PC//Dynamic/Shared/Applet//DexiaBC.cab
O16 - DPF: {0D995900-7E1B-11D6-905A-0000F66B24B3} (B-WEB V2 BASE) - https://banking.belgolaise.com/bweb/cabv2/pkbwebV2p.cab
O16 - DPF: {1F2F4C9E-6F09-47BC-970D-3C54734667FE} (LSSupCtl Class) - https://www-secure.symantec.com/techsupp/asa/LSSupCtl.cab
O16 - DPF: {2472DCCC-68CE-49DA-AA81-E7E6D83C1DFA} (PackageHTML) - http://acces.blonde.com/package/op/PackageHtmlCab.CAB
O16 - DPF: {2BBB1380-7E1B-11D6-905A-0000F66B24B3} (B-WEB V2 EFT) - https://banking.belgolaise.com/bweb/cabv2/pkeft.cab
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
O16 - DPF: {3CA6DFF6-C6B0-11D4-8035-0050BF0BA18C} (BMSPX Control) - http://avroy.no-ip.biz/bmspx.cab
O16 - DPF: {425F11B0-7E1B-11D6-905A-0000F66B24B3} (B-WEB V2 KERNEL) - https://banking.belgolaise.com/bweb/cabv2/pkkernel.cab
O16 - DPF: {4C39376E-FA9D-4349-BACC-D305C1750EF3} (EPUImageControl Class) - http://tools.ebayimg.com/eps/wl/activex/EPUWALControl_v1-0-3-24.cab
O16 - DPF: {4E7BD74F-2B8D-469E-85B1-A42BE89AAE29} - http://www.skynet.be/static/default/default/communication/toolbar/toolbar_fr/skynettoolbar.cab
O16 - DPF: {52D0EB40-7E1B-11D6-905A-0000F66B24B3} (B-WEB V2 MAP) - https://banking.belgolaise.com/bweb/cabv2/pkmap.cab
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
O16 - DPF: {A410A090-9CC4-11D7-9077-0000F66B24B3} (B-WEB V2 MAP Data) - https://banking.belgolaise.com/bweb/cabv2/pkmapdata.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/msnmessengersetupdownloader.cab
O16 - DPF: {CE28D5D2-60CF-4C7D-9FE8-0F47A3308078} (ActiveDataInfo Class) - https://www-secure.symantec.com/techsupp/asa/SymAData.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe
A voir également:

4 réponses

Utilisateur anonyme
27 nov. 2005 à 03:27
Salut,
tu as quoi comme logiciel anti-spyware?
0
nassenp77 Messages postés 14 Date d'inscription mercredi 23 novembre 2005 Statut Membre Dernière intervention 27 novembre 2005
27 nov. 2005 à 03:30
bonjour
avg free
amicalement nassenp77
0
Utilisateur anonyme > nassenp77 Messages postés 14 Date d'inscription mercredi 23 novembre 2005 Statut Membre Dernière intervention 27 novembre 2005
27 nov. 2005 à 03:38
Oki, voila telecharge ces logiciels anti-spyware ils sont gratuit, les 3 sont complementaire, ça devrait reglé ton probléme, je regarde ton rapport apres ce message, en attendant tu peux les installer et scanner ton pc.

SpyBot - Search & Destroy en français:
Spybot Search & Destroy

A² free: Contre les trojans et malware.(inscription sur le site pour pouvoir l'utiliser)
a² free

Ad-Aware SE Personal:(en anglais)
Ad-aware
-Le patch pour le faire fonctionner Ad-Aware SE en français:
Patch FR pour Ad-aware
0
nassenp77 Messages postés 14 Date d'inscription mercredi 23 novembre 2005 Statut Membre Dernière intervention 27 novembre 2005
27 nov. 2005 à 03:35
bonjour
avg free
amicalement nassenp77
0
Utilisateur anonyme
27 nov. 2005 à 03:43
Tu peux relancer HijackThis, choisis l'option 2, puis coches chaque cases devant les lignes que je t'ai dit puis une fois que c'est fait clique en bas sur " fix checked"

O2 - BHO: (no name) - {4E7BD74F-2B8D-469E-85B1-A42BE89AAE29} - (no file)
O16 - DPF: Dexia BusinessClick - http://businessclick.dexia.be/PC//Dynamic/Shared/Applet//DexiaBC.cab
O16 - DPF: {0D995900-7E1B-11D6-905A-0000F66B24B3} (B-WEB V2 BASE) - https://banking.belgolaise.com/bweb/cabv2/pkbwebV2p.cab
O16 - DPF: {1F2F4C9E-6F09-47BC-970D-3C54734667FE} (LSSupCtl Class) - https://support.broadcom.com/security
O16 - DPF: {2472DCCC-68CE-49DA-AA81-E7E6D83C1DFA} (PackageHTML) - http://acces.blonde.com/package/op/PackageHtmlCab.CAB
O16 - DPF: {2BBB1380-7E1B-11D6-905A-0000F66B24B3} (B-WEB V2 EFT) - https://banking.belgolaise.com/bweb/cabv2/pkeft.cab
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
O16 - DPF: {3CA6DFF6-C6B0-11D4-8035-0050BF0BA18C} (BMSPX Control) - http://avroy.no-ip.biz/bmspx.cab
O16 - DPF: {425F11B0-7E1B-11D6-905A-0000F66B24B3} (B-WEB V2 KERNEL) - https://banking.belgolaise.com/bweb/cabv2/pkkernel.cab
O16 - DPF: {4C39376E-FA9D-4349-BACC-D305C1750EF3} (EPUImageControl Class) - http://tools.ebayimg.com/eps/wl/activex/EPUWALControl_v1-0-3-24.cab
O16 - DPF: {4E7BD74F-2B8D-469E-85B1-A42BE89AAE29} - https://www.proximus.be/pickx
O16 - DPF: {52D0EB40-7E1B-11D6-905A-0000F66B24B3} (B-WEB V2 MAP) - https://banking.belgolaise.com/bweb/cabv2/pkmap.cab
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
O16 - DPF: {A410A090-9CC4-11D7-9077-0000F66B24B3} (B-WEB V2 MAP Data) - https://banking.belgolaise.com/bweb/cabv2/pkmapdata.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/msnmessengersetupdownloader.cab
O16 - DPF: {CE28D5D2-60CF-4C7D-9FE8-0F47A3308078} (ActiveDataInfo Class) - https://support.broadcom.com/security

Installe un pare-feu pour pouvoir te proteger des eventuelles attaques du net et de pouvoir controller les programmes qui voudrait acceder à internet, voici un pare-feu gratuit et en français:
ZoneAlarm:
Zone Alarm

Sinon, ton rapport me semble corret, utilise les 3 programmes que je t'ai donné au dessus, si ton probléme persiste remet un nouveau rapport HijackThis.

Bon courage.
0
nassenp77 Messages postés 14 Date d'inscription mercredi 23 novembre 2005 Statut Membre Dernière intervention 27 novembre 2005
27 nov. 2005 à 04:37
bonjour encore moi j'ai fait tout ce que tu m'as dit la seule chose c'est qu'a un certain moments j'étais sur les mises ajours sur un controle de 7 et cela étais le 4 je n'ai pas eu l'occasion de faire 5/6/7 c'est peut etre cela ? et le carré est toujours là ? amicalement nassenp77 voici la nouvelle version
Logfile of HijackThis v1.99.1
Scan saved at 4:28:18, on 27/11/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\sstray.exe
C:\Program Files\Support.com\bin\tgcmd.exe
C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Sony Corporation\Picture Package\Picture Package Menu\SonyTray.exe
C:\Program Files\Sony Corporation\Picture Package\Picture Package Applications\Residence.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\Program Files\a-squared\a2start.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\a-squared\a2scan.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Microsoft Office\OFFICE11\OUTLOOK.EXE
C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE
C:\WINDOWS\msagent\AgentSvr.exe
C:\Documents and Settings\Philippe\Mes documents\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://g.fr.msn.be/0SEFRBE/SAOS01
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.skynet.be/index.html
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_5_7_0.dll
O2 - BHO: (no name) - {4E7BD74F-2B8D-469E-85B1-A42BE89AAE29} - (no file)
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.4000.1001\fr-be\msntb.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [nForce Tray Options] sstray.exe /r
O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\System32\\NeroCheck.exe
O4 - HKLM\..\Run: [tgcmd] "C:\Program Files\Support.com\bin\tgcmd.exe" /server /startmonitor
O4 - HKLM\..\Run: [OpwareSE2] "C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe"
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Zone Labs Client] C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [NVIEW] rundll32.exe nview.dll,nViewLoadHook
O4 - Global Startup: Adobe Gamma Loader.exe.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Picture Package Menu.lnk = ?
O4 - Global Startup: Picture Package VCD Maker.lnk = ?
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: &eBay Search - res://C:\Program Files\eBay\eBay Toolbar2\eBayTb.dll/RCSearch.html
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint Ajouter à la Liste à Imprimer - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint Impression rapide - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Imprimer - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html
O8 - Extra context menu item: Easy-WebPrint Prévisualiser - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe
0
Utilisateur anonyme
27 nov. 2005 à 04:40
Télécharge SmitfraudFix
http://siri.urz.free.fr/Fix/SmitfraudFix.zip
décomprime SmitfraudFix
Lance SmitfraudFix, et choisir l’option 1 copie le rapport ici
0
nassenp77 Messages postés 14 Date d'inscription mercredi 23 novembre 2005 Statut Membre Dernière intervention 27 novembre 2005 > Utilisateur anonyme
27 nov. 2005 à 05:08
bonjour comment dois je faire il y a trois bouton en anglais et moi l'anglais ?amicalement
0
Utilisateur anonyme > nassenp77 Messages postés 14 Date d'inscription mercredi 23 novembre 2005 Statut Membre Dernière intervention 27 novembre 2005
27 nov. 2005 à 05:10
choisis celui là : SmitfraudFix puis option 1
0
nassenp77 Messages postés 14 Date d'inscription mercredi 23 novembre 2005 Statut Membre Dernière intervention 27 novembre 2005 > Utilisateur anonyme
27 nov. 2005 à 06:04
bonjour
difficile mais j'y suis arrivé
j'attends ton analyse et je te remercie amicalement nassenp77
@ECHO OFF
REM Smitfraud Fix (balltrap, moe, S!Ri, Vazkor)
REM Miekiemoes Shudder key fix added. thanxx.
REM http://siri.urz.free.fr/Fix/SmitfraudFix.zip

set fixname=SmitFraudFix
set fixvers=v1.97

VER|find "Windows 95">NUL
IF NOT ERRORLEVEL 1 GOTO Win
VER|find "Windows 98">NUL
IF NOT ERRORLEVEL 1 GOTO Win
VER|find "Windows Millennium">NUL
IF NOT ERRORLEVEL 1 GOTO Win
VER|find "Windows XP">NUL
IF NOT ERRORLEVEL 1 GOTO NT
VER|find "Windows 2000">NUL
IF NOT ERRORLEVEL 1 GOTO NT
VER|find "Windows 2003">NUL
IF NOT ERRORLEVEL 1 GOTO NT
color 47
echo %fixname% %fixvers%
echo.
echo Version non support‚e.
echo Windows 2000 / XP requis !
echo.
pause
goto end

:Win
color 47
echo %fixname% %fixvers%
echo.
echo Version non support‚e.
echo Windows 2000 / XP requis !
echo.
pause
goto exit

:NT
set DoReboot=0
set syspath=%windir%\system32
if exist "%userprofile%\Desktop" set desktop=%userprofile%\Desktop
if exist "%userprofile%\Bureau" set desktop=%userprofile%\Bureau
if exist "%allusersprofile%\Desktop" set audesktop=%allusersprofile%\Desktop
if exist "%allusersprofile%\Bureau" set audesktop=%allusersprofile%\Bureau
if exist "%userprofile%\Favorites" set favorites=%userprofile%\Favorites
if exist "%userprofile%\Favoris" set favorites=%userprofile%\Favoris
goto test

:test
if not exist Process.exe (
color 47
echo %fixname% %fixvers%
echo.
echo Fichier Process.exe absent !
echo Dezippez la totalit‚ de l'archive dans un dossier C:\fix\
echo.
pause
goto exit
)

if not exist reg.exe (
color 47
echo %fixname% %fixvers%
echo.
echo Fichier reg.exe absent !
echo Dezippez la totalit‚ de l'archive dans un dossier C:\fix\
echo.
pause
goto exit
)
if not exist %syspath%\Process.exe copy Process.exe %syspath%
if not exist %syspath%\reg.exe copy reg.exe %syspath%
goto menu

:menu
color 17
cls
echo.
echo ÉÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍ»
echo º %fixname% %fixvers% º
echo ÌÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍ͹
echo º 1. Recherche º
echo º 2. Nettoyage (mode sans echec recommand‚) º
echo º 3. Effacer les sites de confiance et sensibles º
echo º Q. Quitter º
echo ÈÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍÍͼ
echo.
echo Fermez tous les programmes
echo un red‚marrage peut-ˆtre n‚cessaire
echo.
echo.
set ChoixMenu=''
set /p ChoixMenu=Entrez votre choix (1,2,3,Q) :
if '%ChoixMenu%'=='q' GOTO exit
if '%ChoixMenu%'=='Q' GOTO exit
if '%ChoixMenu%'=='1' GOTO search
if '%ChoixMenu%'=='2' GOTO fix
if '%ChoixMenu%'=='3' GOTO zonefix
goto menu



:search
cls
echo %fixname% %fixvers%
echo %fixname% %fixvers%>%systemdrive%\rapport.txt
echo.
echo.>>%systemdrive%\rapport.txt
echo Rapport fait à %time% le %date%>>%systemdrive%\rapport.txt
for /f "Tokens=*" %%i in ('cd') do set CurDir=%%i
echo Executé à partir de %CurDir%>>%systemdrive%\rapport.txt
IF ERRORLEVEL 1 (
echo Executé à partir de >>%systemdrive%\rapport.txt
cd >>%systemdrive%\rapport.txt
)
for /f "Tokens=*" %%i in ('ver') do set Version=%%i
echo OS: %Version%>>%systemdrive%\rapport.txt
echo.>>%systemdrive%\rapport.txt




echo Recherche %HOMEDRIVE%\...
echo »»»»»»»»»»»»»»»»»»»»»»»» Recherche %HOMEDRIVE%\>>%systemdrive%\rapport.txt
echo.>>%systemdrive%\rapport.txt



pushd %HOMEDRIVE%\

if exist bsw.exe (echo %HOMEDRIVE%\bsw.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist loader.exe (echo %HOMEDRIVE%\loader.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist ntdetecd.exe (echo %HOMEDRIVE%\ntdetecd.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist r.exe (echo %HOMEDRIVE%\r.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist secure32.html (echo %HOMEDRIVE%\secure32.html PRESENT !>>%systemdrive%\rapport.txt)
if exist winstall.exe (echo %HOMEDRIVE%\winstall.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist wp.bmp (echo %HOMEDRIVE%\wp.bmp PRESENT !>>%systemdrive%\rapport.txt)
if exist wp.exe (echo %HOMEDRIVE%\wp.exe PRESENT !>>%systemdrive%\rapport.txt)

popd



echo.>>%systemdrive%\rapport.txt
echo Recherche %windir%\...
echo »»»»»»»»»»»»»»»»»»»»»»»» Recherche %windir%>>%systemdrive%\rapport.txt
echo.>>%systemdrive%\rapport.txt



pushd %windir%

if exist adsldpbc.dll (echo %windir%\adsldpbc.dll PRESENT !>>%systemdrive%\rapport.txt)
if exist adsldpbd.dll (echo %windir%\adsldpbd.dll PRESENT !>>%systemdrive%\rapport.txt)
if exist blank.mht (echo %windir%\blank.mht PRESENT !>>%systemdrive%\rapport.txt)
if exist desktop.html (echo %windir%\desktop.html PRESENT !>>%systemdrive%\rapport.txt)
if exist kl.exe (echo %windir%\kl.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist ms1.exe (echo %windir%\ms1.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist popuper.exe (echo %windir%\popuper.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist q*_disk.dll (echo %windir%\q*_disk.dll PRESENT !>>%systemdrive%\rapport.txt)
if exist screen.html (echo %windir%\screen.html PRESENT !>>%systemdrive%\rapport.txt)
if exist sites.ini (echo %windir%\sites.ini PRESENT !>>%systemdrive%\rapport.txt)
if exist slassac.dll (echo %windir%\slassac.dll PRESENT !>>%systemdrive%\rapport.txt)
if exist svchost.exe (echo %windir%\svchost.exe PRESENT!>>%systemdrive%\rapport.txt)
if exist tool1.exe (echo %windir%\tool1.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist tool2.exe (echo %windir%\tool2.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist tool3.exe (echo %windir%\tool3.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist tool4.exe (echo %windir%\tool4.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist tool5.exe (echo %windir%\tool5.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist uninstIU.exe (echo %windir%\uninstIU.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist warnhp.html (echo %windir%\warnhp.html PRESENT !>>%systemdrive%\rapport.txt)
if exist windows.html (echo %windir%\windows.html PRESENT !>>%systemdrive%\rapport.txt)
if exist zloader3.exe (echo %windir%\zloader3.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist __delete_on_reboot__popuper.exe (echo %windir%\__delete_on_reboot__popuper.exe PRESENT !>>%systemdrive%\rapport.txt)

popd






echo.>>%systemdrive%\rapport.txt
echo Recherche %windir%\system...
echo »»»»»»»»»»»»»»»»»»»»»»»» Recherche %windir%\system>>%systemdrive%\rapport.txt
echo.>>%systemdrive%\rapport.txt



pushd %windir%\system

if exist svchost.exe (echo %windir%\system\svchost.exe PRESENT!>>%systemdrive%\rapport.txt)

popd




echo.>>%systemdrive%\rapport.txt
echo Recherche %windir%\Web...
echo »»»»»»»»»»»»»»»»»»»»»»»» Recherche %windir%\Web>>%systemdrive%\rapport.txt
echo.>>%systemdrive%\rapport.txt



pushd %windir%\Web

if exist desktop.html (echo %windir%\Web\desktop.html PRESENT!>>%systemdrive%\rapport.txt)
if exist wallpaper.html (echo %windir%\Web\wallpaper.html PRESENT!>>%systemdrive%\rapport.txt)

popd



echo.>>%systemdrive%\rapport.txt
echo Recherche %syspath%...
echo »»»»»»»»»»»»»»»»»»»»»»»» Recherche %syspath%>>%systemdrive%\rapport.txt
echo.>>%systemdrive%\rapport.txt



pushd %syspath%

if exist AdService.dll (echo %syspath%\AdService.dll PRESENT !>>%systemdrive%\rapport.txt)
if exist birdihuy.dll (echo %syspath%\birdihuy.dll PRESENT !>>%systemdrive%\rapport.txt)
if exist birdihuy32.dll (echo %syspath%\birdihuy32.dll PRESENT !>>%systemdrive%\rapport.txt)
if exist cmdtel.exe (echo %syspath%\cmdtel.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist cnymxw32.dll (echo %syspath%\cnymxw32.dll PRESENT !>>%systemdrive%\rapport.txt)
if exist combo.exe (echo %syspath%\combo.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist cvxh8jkdq?.exe (echo %syspath%\cvxh8jkdq?.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist doser.exe (echo %syspath%\doser.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist efsdfgxg.exe (echo %syspath%\efsdfgxg.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist gunist.exe (echo %syspath%\gunist.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist helper.exe (echo %syspath%\helper.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist hhk.dll (echo %syspath%\hhk.dll PRESENT !>>%systemdrive%\rapport.txt)
if exist hookdump.exe (echo %syspath%\hookdump.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist hp????.tmp (echo %syspath%\hp????.tmp PRESENT !>>%systemdrive%\rapport.txt)
if exist intel32.exe (echo %syspath%\intel32.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist intell32.exe (echo %syspath%\intell32.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist intmon.exe (echo %syspath%\intmon.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist intmonp.exe (echo %syspath%\intmonp.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist kernels32.exe (echo %syspath%\kernels32.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist latest.exe (echo %syspath%\latest.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist ld????.tmp (echo %syspath%\ld????.tmp PRESENT !>>%systemdrive%\rapport.txt)
if exist maxd1.exe (echo %syspath%\maxd1.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist mscornet.exe (echo %syspath%\mscornet.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist mssearchnet.exe (echo %syspath%\mssearchnet.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist msmsgs.exe (echo %syspath%\msmsgs.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist msole32.exe (echo %syspath%\msole32.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist msupdate32.dll (echo %syspath%\msupdate32.dll PRESENT !>>%systemdrive%\rapport.txt)
if exist msvol.tlb (echo %syspath%\msvol.tlb PRESENT !>>%systemdrive%\rapport.txt)
if exist MTC.dll (echo %syspath%\MTC.dll PRESENT !>>%systemdrive%\rapport.txt)
if exist MTC.ini (echo %syspath%\MTC.ini PRESENT !>>%systemdrive%\rapport.txt)
if exist multitran.exe (echo %syspath%\multitran.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist ncompat.tlb (echo %syspath%\ncompat.tlb PRESENT !>>%systemdrive%\rapport.txt)
if exist nuclabdll.dll (echo %syspath%\nuclabdll.dll PRESENT !>>%systemdrive%\rapport.txt)
if exist nvctrl.exe (echo %syspath%\nvctrl.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist ole32vbs.exe (echo %syspath%\ole32vbs.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist oleadm.dll (echo %syspath%\oleadm.dll PRESENT !>>%systemdrive%\rapport.txt)
if exist oleadm32.dll (echo %syspath%\oleadm32.dll PRESENT !>>%systemdrive%\rapport.txt)
if exist oleext.dll (echo %syspath%\oleext.dll PRESENT !>>%systemdrive%\rapport.txt)
if exist oleext32.dll (echo %syspath%\oleext32.dll PRESENT !>>%systemdrive%\rapport.txt)
if exist param32.dll (echo %syspath%\param32.dll PRESENT !>>%systemdrive%\rapport.txt)
if exist paytime.exe (echo %syspath%\paytime.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist perfcii.ini (echo %syspath%\perfcii.ini PRESENT !>>%systemdrive%\rapport.txt)
if exist performent217.dll (echo %syspath%\performent217.dll PRESENT !>>%systemdrive%\rapport.txt)
if exist pop_up.dll (echo %syspath%\pop_up.dll PRESENT !>>%systemdrive%\rapport.txt)
if exist priva.exe (echo %syspath%\priva.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist prflbmsgp32.dll (echo %syspath%\prflbmsgp32.dll PRESENT !>>%systemdrive%\rapport.txt)
if exist qvxgamet?.exe (echo %syspath%\qvxgamet?.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist runsrv32.dll (echo %syspath%\runsrv32.dll PRESENT !>>%systemdrive%\rapport.txt)
if exist runsrv32.exe (echo %syspath%\runsrv32.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist sdfdil.exe (echo %syspath%\sdfdil.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist searchdll.dll (echo %syspath%\searchdll.dll PRESENT !>>%systemdrive%\rapport.txt)
if exist sender.exe (echo %syspath%\sender.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist shdocsvc.dll (echo %syspath%\shdocsvc.dll PRESENT !>>%systemdrive%\rapport.txt)
if exist shdocsvc.exe (echo %syspath%\shdocsvc.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist shdochop.dll (echo %syspath%\shdochop.dll PRESENT !>>%systemdrive%\rapport.txt)
if exist shdocnva.dll (echo %syspath%\shdocnva.dll PRESENT !>>%systemdrive%\rapport.txt)
if exist shnlog.exe (echo %syspath%\shnlog.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist socks.exe (echo %syspath%\socks.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist split.exe (echo %syspath%\split.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist split1.exe (echo %syspath%\split1.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist split2.exe (echo %syspath%\split2.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist srpcsrv32.dll (echo %syspath%\srpcsrv32.dll PRESENT !>>%systemdrive%\rapport.txt)
if exist srpcsrv32.exe (echo %syspath%\srpcsrv32.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist st3.dll (echo %syspath%\st3.dll PRESENT !>>%systemdrive%\rapport.txt)
if exist svchop.exe (echo %syspath%\svchop.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist svchosts.dll (echo %syspath%\svchosts.dll PRESENT !>>%systemdrive%\rapport.txt)
if exist svchosts.exe (echo %syspath%\svchosts.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist svcnt.exe (echo %syspath%\svcnt.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist svcnt32.exe (echo %syspath%\svcnt32.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist svcnva.exe (echo %syspath%\svcnva.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist svwhost.exe (echo %syspath%\svwhost.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist sysbho.exe (echo %syspath%\sysbho.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist sysinit32z.exe (echo %syspath%\sysinit32z.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist sysmain.dll (echo %syspath%\sysmain.dll PRESENT !>>%systemdrive%\rapport.txt)
if exist sysvcs.exe (echo %syspath%\sysvcs.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist taras.exe (echo %syspath%\taras.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist txfdb32.dll (echo %syspath%\txfdb32.dll PRESENT !>>%systemdrive%\rapport.txt)
if exist vxgame?.exe (echo %syspath%\vxgame?.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist vxgamet?.exe (echo %syspath%\vxgamet?.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist vxh8jkdq?.exe (echo %syspath%\vxh8jkdq?.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist w8673492.exe (echo %syspath%\w8673492.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist web.exe (echo %syspath%\web.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist winldra.exe (echo %syspath%\winldra.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist winnook.exe (echo %syspath%\winnook.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist winstyle2.dll (echo %syspath%\winstyle2.dll PRESENT !>>%systemdrive%\rapport.txt)
if exist winstyle3.dll (echo %syspath%\winstyle3.dll PRESENT !>>%systemdrive%\rapport.txt)
if exist winstyle32.dll (echo %syspath%\winstyle32.dll PRESENT !>>%systemdrive%\rapport.txt)
if exist wldr.dll (echo %syspath%\wldr.dll PRESENT !>>%systemdrive%\rapport.txt)
if exist wp.bmp (echo %syspath%\wp.bmp PRESENT !>>%systemdrive%\rapport.txt)
if exist wppp.html (echo %syspath%\wppp.html PRESENT !>>%systemdrive%\rapport.txt)
if exist yaemu.exe (echo %syspath%\yaemu.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist zlbw.dll (echo %syspath%\zlbw.dll PRESENT !>>%systemdrive%\rapport.txt)
if exist zolker011.dll (echo %syspath%\zolker011.dll PRESENT !>>%systemdrive%\rapport.txt)
if exist ztoolb011.dll (echo %syspath%\ztoolb011.dll PRESENT !>>%systemdrive%\rapport.txt)
if exist __delete_on_reboot__intmon.exe (echo %syspath%\__delete_on_reboot__intmon.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist __delete_on_reboot__intel32.exe (echo %syspath%\__delete_on_reboot__intel32.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist __delete_on_reboot__intell32.exe (echo %syspath%\__delete_on_reboot__intell32.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist __delete_on_reboot__OLEADM.dll (echo %syspath%\__delete_on_reboot__OLEADM.dll PRESENT !>>%systemdrive%\rapport.txt)

if exist "Air Tickets.ico" (echo %syspath%\Air Tickets.ico PRESENT !>>%systemdrive%\rapport.txt)
if exist "Big Tits.ico" (echo %syspath%\Big Tits.ico PRESENT !>>%systemdrive%\rapport.txt)
if exist Blackjack.ico (echo %syspath%\Blackjack.ico PRESENT !>>%systemdrive%\rapport.txt)
if exist "Britney Spears.ico" (echo %syspath%\Britney Spears.ico PRESENT !>>%systemdrive%\rapport.txt)
if exist "Car Insurance.ico" (echo %syspath%\Car Insurance.ico PRESENT !>>%systemdrive%\rapport.txt)
if exist casino.ico (echo %syspath%\casino.ico PRESENT !>>%systemdrive%\rapport.txt)
if exist "Cheap Cigarettes.ico" (echo %syspath%\Cheap Cigarettes.ico PRESENT !>>%systemdrive%\rapport.txt)
if exist "Credit Card.ico" (echo %syspath%\Credit Card.ico PRESENT !>>%systemdrive%\rapport.txt)
if exist Cruises.ico (echo %syspath%\Cruises.ico PRESENT !>>%systemdrive%\rapport.txt)
if exist "Currency Trading.ico" (echo %syspath%\Currency Trading.ico PRESENT !>>%systemdrive%\rapport.txt)
if exist date.ico (echo %syspath%\date.ico PRESENT !>>%systemdrive%\rapport.txt)
if exist games.ico (echo %syspath%\games.ico PRESENT !>>%systemdrive%\rapport.txt)
if exist "Lesbian Sex.ico" (echo %syspath%\Lesbian Sex.ico PRESENT !>>%systemdrive%\rapport.txt)
if exist mobile.ico (echo %syspath%\mobile.ico PRESENT !>>%systemdrive%\rapport.txt)
if exist MP3.ico (echo %syspath%\MP3.ico PRESENT !>>%systemdrive%\rapport.txt)
if exist network.ico (echo %syspath%\network.ico PRESENT !>>%systemdrive%\rapport.txt)
if exist "Online Betting.ico" (echo %syspath%\Online Betting.ico PRESENT !>>%systemdrive%\rapport.txt)
if exist "Online Gambling.ico" (echo %syspath%\Online Gambling.ico PRESENT !>>%systemdrive%\rapport.txt)
if exist "Oral Sex.ico" (echo %syspath%\Oral Sex.ico PRESENT !>>%systemdrive%\rapport.txt)
if exist "Party Poker.ico" (echo %syspath%\Party Poker.ico PRESENT !>>%systemdrive%\rapport.txt)
if exist pharm.ico (echo %syspath%\pharm.ico PRESENT !>>%systemdrive%\rapport.txt)
if exist pharm2.ico (echo %syspath%\pharm2.ico PRESENT !>>%systemdrive%\rapport.txt)
if exist Pharmacy.ico (echo %syspath%\Pharmacy.ico PRESENT !>>%systemdrive%\rapport.txt)
if exist Phentermine.ico (echo %syspath%\Phentermine.ico PRESENT !>>%systemdrive%\rapport.txt)
if exist Pornstars.ico (echo %syspath%\Pornstars.ico PRESENT !>>%systemdrive%\rapport.txt)
if exist "Remove Spyware.ico" (echo %syspath%\Remove Spyware.ico PRESENT !>>%systemdrive%\rapport.txt)
if exist scanner.ico (echo %syspath%\scanner.ico PRESENT !>>%systemdrive%\rapport.txt)
if exist spam.ico (echo %syspath%\spam.ico PRESENT !>>%systemdrive%\rapport.txt)
if exist spyware.ico (echo %syspath%\spyware.ico PRESENT !>>%systemdrive%\rapport.txt)
if exist viagra.ico (echo %syspath%\viagra.ico PRESENT !>>%systemdrive%\rapport.txt)

popd





if NOT exist %syspath%\LogFiles goto suiteScanAppData

echo.>>%systemdrive%\rapport.txt
echo Recherche %syspath%\LogFiles...
echo »»»»»»»»»»»»»»»»»»»»»»»» Recherche %syspath%\LogFiles>>%systemdrive%\rapport.txt
echo.>>%systemdrive%\rapport.txt

pushd %syspath%\LogFiles

if exist A5281300.so (echo %syspath%\A5281300.so PRESENT !>>%systemdrive%\rapport.txt)
if exist T54111925.so (echo %syspath%\T54111925.so PRESENT !>>%systemdrive%\rapport.txt)
if exist H53131712.so (echo %syspath%\H53131712.so PRESENT !>>%systemdrive%\rapport.txt)
if exist A54102200.so (echo %syspath%\A54102200.so PRESENT !>>%systemdrive%\rapport.txt)
if exist S53252000.so (echo %syspath%\S53252000.so PRESENT !>>%systemdrive%\rapport.txt)
if exist A04111925.so (echo %syspath%\A04111925.so PRESENT !>>%systemdrive%\rapport.txt)
if exist M54111925.so (echo %syspath%\M54111925.so PRESENT !>>%systemdrive%\rapport.txt)
if exist P54111925.so (echo %syspath%\P54111925.so PRESENT !>>%systemdrive%\rapport.txt)

popd



:suiteScanAppData
echo.>>%systemdrive%\rapport.txt
echo Recherche %userprofile%\Application Data...
echo »»»»»»»»»»»»»»»»»»»»»»»» Recherche %userprofile%\Application Data>>%systemdrive%\rapport.txt
echo.>>%systemdrive%\rapport.txt




pushd %userprofile%\Application Data


if exist Install.dat (echo %userprofile%\Application Data\Install.dat PRESENT !>>%systemdrive%\rapport.txt)
if exist "%userprofile%\Application Data\Shudder Global Limited" echo %userprofile%\Application Data\Shudder Global Limited PRESENT !>>%systemdrive%\rapport.txt
if exist "%userprofile%\Application Data\PSGuard.com" echo %userprofile%\Application Data\PSGuard.com PRESENT !>>%systemdrive%\rapport.txt

popd





echo.>>%systemdrive%\rapport.txt
echo Recherche Menu D‚marrer...
echo »»»»»»»»»»»»»»»»»»»»»»»» Recherche Menu Démarrer>>%systemdrive%\rapport.txt
echo.>>%systemdrive%\rapport.txt


if exist "%userprofile%\Menu D‚marrer\Programmes\SpySheriff" (echo %userprofile%\Menu Démarrer\Programmes\SpySheriff PRESENT !>>%systemdrive%\rapport.txt)
if exist "%allusersprofile%\Menu D‚marrer\PopUp Blocker.url" (echo %allusersprofile%\Menu Démarrer\PopUp Blocker.url PRESENT !>>%systemdrive%\rapport.txt)
if exist "%allusersprofile%\Menu D‚marrer\Spyware Remover.url" (echo %allusersprofile%\Menu Démarrer\Spyware Remover.url PRESENT !>>%systemdrive%\rapport.txt)
if exist "%allusersprofile%\Menu D‚marrer\Programmes\P.S.Guard spyware remover" (echo %allusersprofile%\Menu Démarrer\Programmes\P.S.Guard spyware remover PRESENT !>>%systemdrive%\rapport.txt)


echo.>>%systemdrive%\rapport.txt
echo Recherche %desktop%...
echo »»»»»»»»»»»»»»»»»»»»»»»» Recherche Bureau>>%systemdrive%\rapport.txt
echo.>>%systemdrive%\rapport.txt

pushd %desktop%

if exist m00.exe (echo %desktop%\m00.exe PRESENT !>>%systemdrive%\rapport.txt)
if exist "Air Tickets.url" (echo %desktop%\Air Tickets.url PRESENT !>>%systemdrive%\rapport.txt)
if exist AntivirusGold.lnk (echo %desktop%\AntivirusGold.lnk PRESENT !>>%systemdrive%\rapport.txt)
if exist "Big Tits.url" (echo %desktop%\Big Tits.url PRESENT !>>%systemdrive%\rapport.txt)
if exist Blackjack.url (echo %desktop%\Blackjack.url PRESENT !>>%systemdrive%\rapport.txt)
if exist Blowjob.url (echo %desktop%\Blowjob.url PRESENT !>>%systemdrive%\rapport.txt)
if exist "Britney Spears.url" (echo %desktop%\Britney Spears.url PRESENT !>>%systemdrive%\rapport.txt)
if exist "Car Insurance.url" (echo %desktop%\Car Insurance.url PRESENT !>>%systemdrive%\rapport.txt)
if exist "Cheap Cigarettes.url" (echo %desktop%\Cheap Cigarettes.url PRESENT !>>%systemdrive%\rapport.txt)
if exist "Cigarettes Discount.url" (echo %desktop%\Cigarettes Discount.url PRESENT !>>%systemdrive%\rapport.txt)
if exist "Credit Card.url" (echo %desktop%\Credit Card.url PRESENT !>>%systemdrive%\rapport.txt)
if exist Cruises.url (echo %desktop%\Cruises.url PRESENT !>>%systemdrive%\rapport.txt)
if exist "Currency Trading.url" (echo %desktop%\Currency Trading.url PRESENT !>>%systemdrive%\rapport.txt)
if exist "Forex Trading.url" (echo %desktop%\Forex Trading.url PRESENT !>>%systemdrive%\rapport.txt)
if exist "Free Ringtones.url" (echo %desktop%\Free Ringtones.url PRESENT !>>%systemdrive%\rapport.txt)
if exist "Gift Ideas.url" (echo %desktop%\Gift Ideas.url PRESENT !>>%systemdrive%\rapport.txt)
if exist "Group Sex.url" (echo %desktop%\Group Sex.url PRESENT !>>%systemdrive%\rapport.txt)
if exist "Home Loan.url" (echo %desktop%\Home Loan.url PRESENT !>>%systemdrive%\rapport.txt)
if exist "Lesbian Sex.url" (echo %desktop%\Lesbian Sex.url PRESENT !>>%systemdrive%\rapport.txt)
if exist MP3.url (echo %desktop%\MP3.url PRESENT !>>%systemdrive%\rapport.txt)
if exist "Mp3 Download.url" (echo %desktop%\Mp3 Download.url PRESENT !>>%systemdrive%\rapport.txt)
if exist "Online Betting.url" (echo %desktop%\Online Betting.url PRESENT !>>%systemdrive%\rapport.txt)
if exist "Online Casino.url" (echo %desktop%\Online Casino.url PRESENT !>>%systemdrive%\rapport.txt)
if exist "Online Dating.url" (echo %desktop%\Online Dating.url PRESENT !>>%systemdrive%\rapport.txt)
if exist "Online Gambling.url" (echo %desktop%\Online Gambling.url PRESENT !>>%systemdrive%\rapport.txt)
if exist "Oral Sex.url" (echo %desktop%\Oral Sex.url PRESENT !>>%systemdrive%\rapport.txt)
if exist "Party Poker.url" (echo %desktop%\Party Poker.url PRESENT !>>%systemdrive%\rapport.txt)
if exist Pharmacy.url (echo %desktop%\Pharmacy.url PRESENT !>>%systemdrive%\rapport.txt)
if exist Phentermine.url (echo %desktop%\Phentermine.url PRESENT !>>%systemdrive%\rapport.txt)
if exist "Play Poker.url" (echo %desktop%\Play Poker.url PRESENT !>>%systemdrive%\rapport.txt)
if exist "PopUp Blocker.url" (echo %desktop%\PopUp Blocker.url PRESENT !>>%systemdrive%\rapport.txt)
if exist "Porn Dvd.url" (echo %desktop%\Porn Dvd.url PRESENT !>>%systemdrive%\rapport.txt)
if exist Pornstars.url (echo %desktop%\Pornstars.url PRESENT !>>%systemdrive%\rapport.txt)
if exist "P.S.Guard spyware remover.lnk" (echo %desktop%\P.S.Guard spyware remover.lnk PRESENT !>>%systemdrive%\rapport.txt)
if exist "Real Estate.url" (echo %desktop%\Real Estate.url PRESENT !>>%systemdrive%\rapport.txt)
if exist "Remove Spyware.url" (echo %desktop%\Remove Spyware.url PRESENT !>>%systemdrive%\rapport.txt)
if exist "Sport Betting.url" (echo %desktop%\Sport Betting.url PRESENT !>>%systemdrive%\rapport.txt)
if exist SpySheriff.lnk (echo %desktop%\SpySheriff.lnk PRESENT !>>%systemdrive%\rapport.txt)
if exist "Spyware Remover.url" (echo %desktop%\Spyware Remover.url PRESENT !>>%systemdrive%\rapport.txt)
if exist viagra.url (echo %desktop%\viagra.url PRESENT !>>%systemdrive%\rapport.txt)
if exist "Texas Holdem.url" (echo %desktop%\Texas Holdem.url PRESENT !>>%systemdrive%\rapport.txt)

popd



pushd %audesktop%


if exist "Air Tickets.url" (echo %audesktop%\Air Tickets.url PRESENT !>>%systemdrive%\rapport.txt)
if exist AntivirusGold.lnk (echo %audesktop%\AntivirusGold.lnk PRESENT !>>%systemdrive%\rapport.txt)
if exist "Big Tits.url" (echo %audesktop%\Big Tits.url PRESENT !>>%systemdrive%\rapport.txt)
if exist Blackjack.url (echo %audesktop%\Blackjack.url PRESENT !>>%systemdrive%\rapport.txt)
if exist Blowjob.url (echo %audesktop%\Blowjob.url PRESENT !>>%systemdrive%\rapport.txt)
if exist "Britney Spears.url" (echo %audesktop%\Britney Spears.url PRESENT !>>%systemdrive%\rapport.txt)
if exist "Car Insurance.url" (echo %audesktop%\Car Insurance.url PRESENT !>>%systemdrive%\rapport.txt)
if exist "Cheap Cigarettes.url" (echo %audesktop%\Cheap Cigarettes.url PRESENT !>>%systemdrive%\rapport.txt)
if exist "Cigarettes Discount.url" (echo %audesktop%\Cigarettes Discount.url PRESENT !>>%systemdrive%\rapport.txt)
if exist "Credit Card.url" (echo %audesktop%\Credit Card.url PRESENT !>>%systemdrive%\rapport.txt)
if exist Cruises.url (echo %audesktop%\Cruises.url PRESENT !>>%systemdrive%\rapport.txt)
if exist "Currency Trading.url" (echo %audesktop%\Currency Trading.url PRESENT !>>%systemdrive%\rapport.txt)
if exist "Forex Trading.url" (echo %audesktop%\Forex Trading.url PRESENT !>>%systemdrive%\rapport.txt)
if exist "Free Ringtones.url" (echo %audesktop%\Free Ringtones.url PRESENT !>>%systemdrive%\rapport.txt)
if exist "Gift Ideas.url" (echo %audesktop%\Gift Ideas.url PRESENT !>>%systemdrive%\rapport.txt)
if exist "Group Sex.url" (echo %audesktop%\Group Sex.url PRESENT !>>%systemdrive%\rapport.txt)
if exist "Home Loan.url" (echo %audesktop%\Home Loan.url PRESENT !>>%systemdrive%\rapport.txt)
if exist "Lesbian Sex.url" (echo %audesktop%\Lesbian Sex.url PRESENT !>>%systemdrive%\rapport.txt)
if exist "Mp3 Download.url" (echo %audesktop%\Mp3 Download.url PRESENT !>>%systemdrive%\rapport.txt)
if exist MP3.url (echo %audesktop%\MP3.url PRESENT !>>%systemdrive%\rapport.txt)
if exist "Online Betting.url" (echo %audesktop%\Online Betting.url PRESENT !>>%systemdrive%\rapport.txt)
if exist "Online Casino.url" (echo %audesktop%\Online Casino.url PRESENT !>>%systemdrive%\rapport.txt)
if exist "Online Dating.url" (echo %audesktop%\Online Dating.url PRESENT !>>%systemdrive%\rapport.txt)
if exist "Online Gambling.url" (echo %audesktop%\Online Gambling.url PRESENT !>>%systemdrive%\rapport.txt)
if exist "Oral Sex.url" (echo %audesktop%\Oral Sex.url PRESENT !>>%systemdrive%\rapport.txt)
if exist "Party Poker.url" (echo %audesktop%\Party Poker.url PRESENT !>>%systemdrive%\rapport.txt)
if exist Pharmacy.url (echo %audesktop%\Pharmacy.url PRESENT !>>%systemdrive%\rapport.txt)
if exist Phentermine.url (echo %audesktop%\Phentermine.url PRESENT !>>%systemdrive%\rapport.txt)
if exist "Play Poker.url" (echo %audesktop%\Play Poker.url PRESENT !>>%systemdrive%\rapport.txt)
if exist "PopUp Blocker.url" (echo %audesktop%\PopUp Blocker.url PRESENT !>>%systemdrive%\rapport.txt)
if exist "Porn Dvd.url" (echo %audesktop%\Porn Dvd.url PRESENT !>>%systemdrive%\rapport.txt)
if exist Pornstars.url (echo %audesktop%\Pornstars.url PRESENT !>>%systemdrive%\rapport.txt)
if exist "P.S.Guard spyware remover.lnk" (echo %audesktop%\P.S.Guard spyware remover.lnk PRESENT !>>%systemdrive%\rapport.txt)
if exist "Real Estate.url" (echo %audesktop%\Real Estate.url PRESENT !>>%systemdrive%\rapport.txt)
if exist "Remove Spyware.url" (echo %audesktop%\Remove Spyware.url PRESENT !>>%systemdrive%\rapport.txt)
if exist "Sport Betting.url" (echo %audesktop%\Sport Betting.url PRESENT !>>%systemdrive%\rapport.txt)
if exist SpySheriff.lnk (echo %audesktop%\SpySheriff.lnk PRESENT !>>%systemdrive%\rapport.txt)
if exist "Spyware Remover.url" (echo %audesktop%\Spyware Remover.url PRESENT !>>%systemdrive%\rapport.txt)
if exist viagra.url (echo %audesktop%\viagra.url PRESENT !>>%systemdrive%\rapport.txt)
if exist "Texas Holdem.url" (echo %audesktop%\Texas Holdem.url PRESENT !>>%systemdrive%\rapport.txt)

popd


echo.>>%systemdrive%\rapport.txt
echo Recherche %ProgramFiles%...
echo »»»»»»»»»»»»»»»»»»»»»»»» Recherche %ProgramFiles% >>%systemdrive%\rapport.txt
echo.>>%systemdrive%\rapport.txt



if exist "%ProgramFiles%\AdwareDelete" echo %ProgramFiles%\AdwareDelete\ PRESENT !>>%systemdrive%\rapport.txt
if exist "%ProgramFiles%\AntivirusGold" echo %ProgramFiles%\AntivirusGold\ PRESENT !>>%systemdrive%\rapport.txt
if exist "%ProgramFiles%\Daily Weather Forecast" echo %ProgramFiles%\Daily Weather Forecast\ PRESENT !>>%systemdrive%\rapport.txt
if exist "%ProgramFiles%\PSGuard" echo %ProgramFiles%\PSGuard\ PRESENT!>>%systemdrive%\rapport.txt
if exist "%ProgramFiles%\P.S.Guard" echo %ProgramFiles%\P.S.Guard\ PRESENT!>>%systemdrive%\rapport.txt
if exist "%ProgramFiles%\Search Maid" echo %ProgramFiles%\Search Maid\ PRESENT !>>%systemdrive%\rapport.txt
if exist "%ProgramFiles%\Security IGuard" echo %ProgramFiles%\Security IGuard\ PRESENT !>>%systemdrive%\rapport.txt
if exist "%ProgramFiles%\SpySheriff" echo %ProgramFiles%\SpySheriff\PRESENT!>>%systemdrive%\rapport.txt
if exist "%ProgramFiles%\SpyKiller" echo %ProgramFiles%\SpyKiller\ PRESENT !>>%systemdrive%\rapport.txt
if exist "%ProgramFiles%\Virtual Maid" echo %ProgramFiles%\Virtual Maid\ PRESENT !>>%systemdrive%\rapport.txt

if exist "%ProgramFiles%\internet explorer\ieengine.exe" echo %ProgramFiles%\internet explorer\ieengine.exe PRESENT !>>%systemdrive%\rapport.txt
if exist "%ProgramFiles%\Fichiers communs\Download\mc-58-12-0000113.exe" echo %ProgramFiles%\Fichiers communs\Download\mc-58-12-0000113.exe PRESENT !>>%systemdrive%\rapport.txt
if exist "%ProgramFiles%\Common Files\Download\mc-58-12-0000113.exe" echo %ProgramFiles%\Common Files\Download\mc-58-12-0000113.exe PRESENT !>>%systemdrive%\rapport.txt
if exist "%ProgramFiles%\Fichiers communs\InetGet\mc-58-12-0000113.exe" echo %ProgramFiles%\Fichiers communs\InetGet\mc-58-12-0000113.exe PRESENT !>>%systemdrive%\rapport.txt
if exist "%ProgramFiles%\Common Files\InetGet\mc-58-12-0000113.exe" echo %ProgramFiles%\Common Files\InetGet\mc-58-12-0000113.exe PRESENT !>>%systemdrive%\rapport.txt
if exist "%ProgramFiles%\Fichiers communs\Windows\mc-58-12-0000113.exe" echo %ProgramFiles%\Fichiers communs\Windows\mc-58-12-0000113.exe PRESENT !>>%systemdrive%\rapport.txt
if exist "%ProgramFiles%\Common Files\Windows\mc-58-12-0000113.exe" echo %ProgramFiles%\Common Files\Windows\mc-58-12-0000113.exe PRESENT !>>%systemdrive%\rapport.txt
if exist "%ProgramFiles%\Fichiers communs\Windows\services32.exe" echo %ProgramFiles%\Fichiers communs\Windows\services32.exe PRESENT !>>%systemdrive%\rapport.txt
if exist "%ProgramFiles%\Common Files\Windows\services32.exe" echo %ProgramFiles%\Common Files\Windows\services32.exe PRESENT !>>%systemdrive%\rapport.txt

if exist "%HOMEDRIVE%\spywarevanisher-free" echo %HOMEDRIVE%\spywarevanisher-free\ PRESENT !>>%systemdrive%\rapport.txt



if exist %syspath%\intell32.exe goto DateFile
goto sudderltd

:DateFile
dir %syspath%\intell32.exe /4 /A /N /-C>result.txt
type result.txt | find /i "intell32.exe">result2.txt
for /f "tokens=1" %%a in (result2.txt) do set filedate=%%a

echo Recherche des fichiers cr‚‚s le %filedate%...
echo.>>%systemdrive%\rapport.txt
echo »»»»»»»»»»»»»»»»»»»»»»»» Recherche fichiers créés le %filedate%>>%systemdrive%\rapport.txt
echo !!! Attention, les fichiers qui suivent ne sont pas forcément infectés !!!>>%systemdrive%\rapport.txt
echo.>>%systemdrive%\rapport.txt

dir %HOMEDRIVE%\*.* /4 /A /N /-C | find /i "%filedate%">result.txt
for /f "tokens=4" %%a in (result.txt) do echo %HOMEDRIVE%\%%a>>%systemdrive%\rapport.txt
dir %windir%\*.* /4 /A /N /-C | find /i "%filedate%">result.txt
for /f "tokens=4" %%a in (result.txt) do echo %windir%\%%a>>%systemdrive%\rapport.txt
dir %syspath%\*.* /4 /A /N /-C | find /i "%filedate%">result.txt
for /f "tokens=4" %%a in (result.txt) do echo %syspath%\%%a>>%systemdrive%\rapport.txt

if exist result.txt del result.txt
if exist result2.txt del result2.txt
goto sudderltd


:sudderltd
echo Recherche pr‚sence de cl‚s corrompues
echo.>>%systemdrive%\rapport.txt
echo »»»»»»»»»»»»»»»»»»»»»»»» Recherche présence de clés corrompues>>%systemdrive%\rapport.txt
echo.>>%systemdrive%\rapport.txt

regedit.exe /e %systemdrive%\SHUDDERLTD.txt "HKEY_LOCAL_MACHINE\SOFTWARE\SHUDDERLTD"
IF EXIST %systemdrive%\SHUDDERLTD.txt (
echo HKLM\SOFTWARE\SHUDDERLTD Présent !>>%systemdrive%\rapport.txt
del %systemdrive%\SHUDDERLTD.txt
)

regedit.exe /e %systemdrive%\PSGuard.txt "HKEY_LOCAL_MACHINE\SOFTWARE\PSGuard.com"
IF EXIST %systemdrive%\PSGuard.txt (
echo HKLM\SOFTWARE\PSGuard.com Présent !>>%systemdrive%\rapport.txt
del %systemdrive%\PSGuard.txt
)

goto wininetscan


:wininetscan
echo Recherche infection wininet.dll
echo.>>%systemdrive%\rapport.txt
echo »»»»»»»»»»»»»»»»»»»»»»»» Recherche infection wininet.dll>>%systemdrive%\rapport.txt
echo.>>%systemdrive%\rapport.txt

findstr /m /I "OLEADM" %syspath%\wininet.dll>result.txt
for /F "TOKENS=* DELIMS=" %%A IN (result.txt) do echo wininet.dll infecté !>infected.txt
findstr /m /I "OLEEXT" %syspath%\wininet.dll>result.txt
for /F "TOKENS=* DELIMS=" %%A IN (result.txt) do echo wininet.dll infecté !>infected.txt
del result.txt
if exist infected.txt (
del infected.txt
echo.
echo %syspath%\wininet.dll infect‚ !
echo %syspath%\wininet.dll infecté !>>%systemdrive%\rapport.txt
echo.>>%systemdrive%\rapport.txt
echo »»»»»»»»»»»»»»»»»»»»»»»» Recherche wininet.dll de remplacement>>%systemdrive%\rapport.txt
echo.>>%systemdrive%\rapport.txt
dir %systemroot%\wininet.dll /a h /s>>%systemdrive%\rapport.txt
)


echo.
echo fin
echo.>>%systemdrive%\rapport.txt
echo »»»»»»»»»»»»»»»»»»»»»»»» Fin du rapport>>%systemdrive%\rapport.txt
echo.>>%systemdrive%\rapport.txt
if exist CheckVersion.vbs del CheckVersion.vbs
if exist result2.txt del result2.txt
start %windir%\notepad.exe %systemdrive%\rapport.txt
goto menu





:fix

cls
echo %fixname% %fixvers%
echo %fixname% %fixvers%>%systemdrive%\rapport.txt
echo.
echo.>>%systemdrive%\rapport.txt
echo Rapport fait à %time% le %date%>>%systemdrive%\rapport.txt
for /f "Tokens=*" %%i in ('cd') do set CurDir=%%i
echo Executé à partir de %CurDir%>>%systemdrive%\rapport.txt
IF ERRORLEVEL 1 (
echo Executé à partir de >>%systemdrive%\rapport.txt
cd >>%systemdrive%\rapport.txt
)
for /f "Tokens=*" %%i in ('ver') do set Version=%%i
echo OS: %Version%>>%systemdrive%\rapport.txt
echo.>>%systemdrive%\rapport.txt



echo Arret des processus...
echo »»»»»»»»»»»»»»»»»»»»»»»» Arret des processus>>%systemdrive%\rapport.txt
echo.>>%systemdrive%\rapport.txt

process -k explorer.exe >NUL

Process -k AntivirusGold.exe >NUL
Process -k bsw.exe >NUL
Process -k cmdtel.exe >NUL
Process -k combo.exe >NUL
Process -k doser.exe >NUL
Process -k efsdfgxg.exe >NUL
Process -k gunist.exe >NUL
Process -k helper.exe >NUL
Process -k hookdump.exe >NUL
Process -k ieengine.exe >NUL
Process -k intel32.exe >NUL
Process -k intell32.exe >NUL
Process -k intmon.exe >NUL
Process -k intmonp.exe >NUL
Process -k kernels32.exe >NUL
Process -k kl.exe >NUL
Process -k latest.exe >NUL
Process -k loader.exe >NUL
Process -k maxd1.exe >NUL
Process -k ms1.exe >NUL
Process -k mscornet.exe >NUL
Process -k mssearchnet.exe >NUL
Process -k msmsgs.exe >NUL
Process -k msole32.exe >NUL
Process -k multitran.exe >NUL
Process -k nvctrl.exe >NUL
Process -k ntdetecd.exe >NUL
Process -k ole32vbs.exe >NUL
Process -k ongi.exe >NUL
Process -k paytime.exe >NUL
Process -k popuper.exe >NUL
Process -k priva.exe >NUL
Process -k r.exe >NUL
Process -k runsrv32.exe >NUL
Process -k sdfdil.exe >NUL
Process -k sender.exe >NUL
Process -k shdocsvc.exe >NUL
Process -k shnlog.exe >NUL
Process -k services32.exe >NUL
Process -k socks.exe >NUL
Process -k split.exe >NUL
Process -k split1.exe >NUL
Process -k split2.exe >NUL
Process -k spoolsrv32.exe >NUL
Process -k spysheriff.exe >NUL
Process -k svchop.exe >NUL
Process -k svchosts.exe >NUL
Process -k svcnt.exe >NUL
Process -k svcnt32.exe >NUL
Process -k svwhost.exe >NUL
Process -k sysbho.exe >NUL
Process -k sysinit32z.exe >NUL
Process -k sysvcs.exe >NUL
Process -k taras.exe >NUL
Process -k tool1.exe >NUL
Process -k tool2.exe >NUL
Process -k tool3.exe >NUL
Process -k tool4.exe >NUL
Process -k tool5.exe >NUL
Process -k uninst.exe >NUL
Process -k uninstIU.exe >NUL
Process -k w8673492.exe >NUL
Process -k weather.exe >NUL
Process -k web.exe >NUL
Process -k winldra.exe >NUL
Process -k winnook.exe >NUL
Process -k winstall.exe >NUL
Process -k wp.exe >NUL
Process -k yaemu.exe >NUL
Process -k zloader3.exe >NUL

echo.>>%systemdrive%\rapport.txt

echo Suppression des fichiers infect‚s...
echo »»»»»»»»»»»»»»»»»»»»»»»» Suppression des fichiers infectés>>%systemdrive%\rapport.txt
echo.>>%systemdrive%\rapport.txt



pushd %HOMEDRIVE%\

if exist bsw.exe (
attrib -r -s -h bsw.exe
del /a /f bsw.exe
if NOT exist bsw.exe echo %HOMEDRIVE%\bsw.exe supprimé>>%systemdrive%\rapport.txt
if exist bsw.exe echo Problème suppression %HOMEDRIVE%\bsw.exe>>%systemdrive%\rapport.txt
)

if exist loader.exe (
attrib -r -s -h loader.exe
del /a /f loader.exe
if NOT exist loader.exe echo %HOMEDRIVE%\loader.exe supprimé>>%systemdrive%\rapport.txt
if exist loader.exe echo Problème suppression %HOMEDRIVE%\loader.exe>>%systemdrive%\rapport.txt
)

if exist ntdetecd.exe (
attrib -r -s -h ntdetecd.exe
del /a /f ntdetecd.exe
if NOT exist ntdetecd.exe echo %HOMEDRIVE%\ntdetecd.exe supprimé>>%systemdrive%\rapport.txt
if exist ntdetecd.exe echo Problème suppression %HOMEDRIVE%\ntdetecd.exe>>%systemdrive%\rapport.txt
)

if exist r.exe (
attrib -r -s -h r.exe
del /a /f r.exe
if NOT exist r.exe echo %HOMEDRIVE%\r.exe supprimé>>%systemdrive%\rapport.txt
if exist r.exe echo Problème suppression %HOMEDRIVE%\r.exe>>%systemdrive%\rapport.txt
)

if exist secure32.html (
attrib -r -s -h secure32.html
del /a /f secure32.html
if NOT exist secure32.html echo %HOMEDRIVE%\secure32.html supprimé>>%systemdrive%\rapport.txt
if exist secure32.html echo Problème suppression %HOMEDRIVE%\secure32.html>>%systemdrive%\rapport.txt
)

if exist winstall.exe (
attrib -r -s -h winstall.exe
del /a /f winstall.exe
if NOT exist winstall.exe echo %HOMEDRIVE%\winstall.exe supprimé>>%systemdrive%\rapport.txt
if exist winstall.exe echo Problème suppression %HOMEDRIVE%\winstall.exe>>%systemdrive%\rapport.txt
)

if exist wp.bmp (
attrib -r -s -h wp.bmp
del /a /f wp.bmp
if NOT exist wp.bmp echo %HOMEDRIVE%\wp.bmp supprimé>>%systemdrive%\rapport.txt
if exist wp.bmp echo Problème suppression %HOMEDRIVE%\wp.bmp>>%systemdrive%\rapport.txt
)

if exist wp.exe (
attrib -r -s -h wp.exe
del /a /f wp.exe
if NOT exist wp.exe echo %HOMEDRIVE%\wp.exe supprimé>>%systemdrive%\rapport.txt
if exist wp.exe echo Problème suppression %HOMEDRIVE%\wp.exe>>%systemdrive%\rapport.txt
)

popd






pushd %windir%


if exist adsldpbc.dll (
attrib -r -s -h adsldpbc.dll
del /a /f adsldpbc.dll
if NOT exist adsldpbc.dll echo %windir%\adsldpbc.dll supprimé>>%systemdrive%\rapport.txt
if exist adsldpbc.dll echo Problème suppression %windir%\adsldpbc.dll>>%systemdrive%\rapport.txt
)

if exist adsldpbd.dll (
attrib -r -s -h adsldpbd.dll
del /a /f adsldpbd.dll
if NOT exist adsldpbd.dll echo %windir%\adsldpbd.dll supprimé>>%systemdrive%\rapport.txt
if exist adsldpbd.dll echo Problème suppression %windir%\adsldpbd.dll>>%systemdrive%\rapport.txt
)

if exist blank.mht (
attrib -r -s -h blank.mht
del /a /f blank.mht
if NOT exist blank.mht echo %windir%\blank.mht supprimé>>%systemdrive%\rapport.txt
if exist blank.mht echo Problème suppression %windir%\blank.mht>>%systemdrive%\rapport.txt
)

if exist desktop.html (
attrib -r -s -h desktop.html
del /a /f desktop.html
if NOT exist desktop.html echo %windir%\desktop.html supprimé>>%systemdrive%\rapport.txt
if exist desktop.html echo Problème suppression %windir%\desktop.html>>%systemdrive%\rapport.txt
)

if exist kl.exe (
attrib -r -s -h kl.exe
del /a /f kl.exe
if NOT exist kl.exe echo %windir%\kl.exe supprimé>>%systemdrive%\rapport.txt
if exist kl.exe echo Problème suppression %windir%\kl.exe>>%systemdrive%\rapport.txt
)

if exist ms1.exe (
attrib -r -s -h ms1.exe
del /a /f ms1.exe
if NOT exist ms1.exe echo %windir%\ms1.exe supprimé>>%systemdrive%\rapport.txt
if exist ms1.exe echo Problème suppression %windir%\ms1.exe>>%systemdrive%\rapport.txt
)

if exist popuper.exe (
attrib -r -s -h popuper.exe
del /a /f popuper.exe
if NOT exist popuper.exe echo %windir%\popuper.exe supprimé>>%systemdrive%\rapport.txt
if exist popuper.exe echo Problème suppression %windir%\popuper.exe>>%systemdrive%\rapport.txt
)

if exist q*_disk.dll (
attrib -r -s -h q*_disk.dll
del /a /f q*_disk.dll
if NOT exist q*_disk.dll echo %windir%\q*_disk.dll supprimé>>%systemdrive%\rapport.txt
if exist q*_disk.dll echo Problème suppression %windir%\q*_disk.dll>>%systemdrive%\rapport.txt
)

if exist screen.html (
attrib -r -s -h screen.html
del /a /f screen.html
if NOT exist screen.html echo %windir%\screen.html supprimé>>%systemdrive%\rapport.txt
if exist screen.html echo Problème suppression %windir%\screen.html>>%systemdrive%\rapport.txt
)

if exist sites.ini (
attrib -r -s -h sites.ini
del /a /f sites.ini
if NOT exist sites.ini echo %windir%\sites.ini supprimé>>%systemdrive%\rapport.txt
if exist sites.ini echo Problème suppression %windir%\sites.ini>>%systemdrive%\rapport.txt
)

if exist slassac.dll (
attrib -r -s -h slassac.dll
del /a /f slassac.dll
if NOT exist slassac.dll echo %windir%\slassac.dll supprimé>>%systemdrive%\rapport.txt
if exist slassac.dll echo Problème suppression %windir%\slassac.dll>>%systemdrive%\rapport.txt
)

if exist svchost.exe (
attrib -r -s -h svchost.exe
del /a /f svchost.exe
if NOT exist svchost.exe echo %windir%\svchost.exe supprimé>>%systemdrive%\rapport.txt
if exist svchost.exe echo Problème suppression %windir%\svchost.exe>>%systemdrive%\rapport.txt
)

if exist tool1.exe (
attrib -r -s -h tool1.exe
del /a /f tool1.exe
if NOT exist tool1.exe echo %windir%\tool1.exe supprimé>>%systemdrive%\rapport.txt
if exist tool1.exe echo Problème suppression %windir%\tool1.exe>>%systemdrive%\rapport.txt
)

if exist tool2.exe (
attrib -r -s -h tool2.exe
del /a /f tool2.exe
if NOT exist tool2.exe echo %windir%\tool2.exe supprimé>>%systemdrive%\rapport.txt
if exist tool2.exe echo Problème suppression %windir%\tool2.exe>>%systemdrive%\rapport.txt
)

if exist tool3.exe (
attrib -r -s -h tool3.exe
del /a /f tool3.exe
if NOT exist tool3.exe echo %windir%\tool3.exe supprimé>>%systemdrive%\rapport.txt
if exist tool3.exe echo Problème suppression %windir%\tool3.exe>>%systemdrive%\rapport.txt
)

if exist tool4.exe (
attrib -r -s -h tool4.exe
del /a /f tool4.exe
if NOT exist tool4.exe echo %windir%\tool4.exe supprimé>>%systemdrive%\rapport.txt
if exist tool4.exe echo Problème suppression %windir%\tool4.exe>>%systemdrive%\rapport.txt
)

if exist tool5.exe (
attrib -r -s -h tool5.exe
del /a /f tool5.exe
if NOT exist tool5.exe echo %windir%\tool5.exe supprimé>>%systemdrive%\rapport.txt
if exist tool5.exe echo Problème suppression %windir%\tool5.exe>>%systemdrive%\rapport.txt
)

if exist uninstIU.exe (
attrib -r -s -h uninstIU.exe
del /a /f uninstIU.exe
if NOT exist uninstIU.exe echo %windir%\uninstIU.exe supprimé>>%systemdrive%\rapport.txt
if exist uninstIU.exe echo Problème suppression %windir%\uninstIU.exe>>%systemdrive%\rapport.txt
)

if exist warnhp.html (
attrib -r -s -h warnhp.html
del /a /f warnhp.html
if NOT exist warnhp.html echo %windir%\warnhp.html supprimé>>%systemdrive%\rapport.txt
if exist warnhp.html echo Problème suppression %windir%\warnhp.html>>%systemdrive%\rapport.txt
)

if exist windows.html (
attrib -r -s -h windows.html
del /a /f windows.html
if NOT exist windows.html echo %windir%\windows.html supprimé>>%systemdrive%\rapport.txt
if exist windows.html echo Problème suppression %windir%\windows.html>>%systemdrive%\rapport.txt
)

if exist zloader3.exe (
attrib -r -s -h zloader3.exe
del /a /f zloader3.exe
if NOT exist zloader3.exe echo %windir%\zloader3.exe supprimé>>%systemdrive%\rapport.txt
if exist zloader3.exe echo Problème suppression %windir%\zloader3.exe>>%systemdrive%\rapport.txt
)

if exist __delete_on_reboot__popuper.exe (
attrib -r -s -h __delete_on_reboot__popuper.exe
del /a /f __delete_on_reboot__popuper.exe
if NOT exist __delete_on_reboot__popuper.exe echo %windir%\__delete_on_reboot__popuper.exe supprimé>>%systemdrive%\rapport.txt
if exist __delete_on_reboot__popuper.exe echo Problème suppression %windir%\__delete_on_reboot__popuper.exe>>%systemdrive%\rapport.txt
)

popd




pushd %windir%\system

if exist svchost.exe (
attrib -r -s -h svchost.exe
del /a /f svchost.exe
if NOT exist svchost.exe echo %windir%\systemb\svchost.exe supprimé>>%systemdrive%\rapport.txt
if exist svchost.exe echo Problème suppression %windir%\system\svchost.exe>>%systemdrive%\rapport.txt
)

popd





pushd %windir%\Web

if exist desktop.html (
attrib -r -s -h desktop.html
del /a /f desktop.html
if NOT exist desktop.html echo %windir%\Web\desktop.html supprimé>>%systemdrive%\rapport.txt
if exist desktop.html echo Problème suppression %windir%\Web\desktop.html>>%systemdrive%\rapport.txt
)

if exist wallpaper.html (
attrib -r -s -h wallpaper.html
del /a /f wallpaper.html
if NOT exist wallpaper.html echo %windir%\Web\wallpaper.html supprimé>>%systemdrive%\rapport.txt
if exist wallpaper.html echo Problème suppression %windir%\Web\wallpaper.html>>%systemdrive%\rapport.txt
)

popd




pushd %syspath%


if exist AdService.dll (
attrib -r -s -h AdService.dll
del /a /f AdService.dll
if NOT exist AdService.dll echo %syspath%\AdService.dll supprimé>>%systemdrive%\rapport.txt
if exist AdService.dll echo Problème suppression %syspath%\AdService.dll>>%systemdrive%\rapport.txt
)

if exist birdihuy.dll (
attrib -r -s -h birdihuy.dll
del /a /f birdihuy.dll
if NOT exist birdihuy.dll echo %syspath%\birdihuy.dll supprimé>>%systemdrive%\rapport.txt
if exist birdihuy.dll echo Problème suppression %syspath%\birdihuy.dll>>%systemdrive%\rapport.txt
)

if exist birdihuy32.dll (
attrib -r -s -h birdihuy32.dll
del /a /f birdihuy32.dll
if NOT exist birdihuy32.dll echo %syspath%\birdihuy32.dll supprimé>>%systemdrive%\rapport.txt
if exist birdihuy32.dll echo Problème suppression %syspath%\birdihuy32.dll>>%systemdrive%\rapport.txt
)

if exist cmdtel.exe (
attrib -r -s -h cmdtel.exe
del /a /f cmdtel.exe
if NOT exist cmdtel.exe echo %syspath%\cmdtel.exe supprimé>>%systemdrive%\rapport.txt
if exist cmdtel.exe echo Problème suppression %syspath%\cmdtel.exe>>%systemdrive%\rapport.txt
)

if exist cnymxw32.dll (
attrib -r -s -h cnymxw32.dll
del /a /f cnymxw32.dll
if NOT exist cnymxw32.dll echo %syspath%\cnymxw32.dll supprimé>>%systemdrive%\rapport.txt
if exist cnymxw32.dll echo Problème suppression %syspath%\cnymxw32.dll>>%systemdrive%\rapport.txt
)

if exist combo.exe (
attrib -r -s -h combo.exe
del /a /f combo.exe
if NOT exist combo.exe echo %syspath%\combo.exe supprimé>>%systemdrive%\rapport.txt
if exist combo.exe echo Problème suppression %syspath%\combo.exe>>%systemdrive%\rapport.txt
)

if exist countrydial.exe (
attrib -r -s -h countrydial.exe
del /a /f countrydial.exe
if NOT exist countrydial.exe echo %syspath%\countrydial.exe supprimé>>%systemdrive%\rapport.txt
if exist countrydial.exe echo Problème suppression %syspath%\countrydial.exe>>%systemdrive%\rapport.txt
)

if exist cvxh8jkdq?.exe (
attrib -r -s -h cvxh8jkdq?.exe
del /a /f /q cvxh8jkdq?.exe
if NOT exist cvxh8jkdq?.exe echo %syspath%\cvxh8jkdq?.exe supprimé>>%systemdrive%\rapport.txt
if exist cvxh8jkdq?.exe echo Problème suppression %syspath%\cvxh8jkdq?.exe>>%systemdrive%\rapport.txt
)

if exist doser.exe (
attrib -r -s -h doser.exe
del /a /f doser.exe
if NOT exist doser.exe echo %syspath%\doser.exe supprimé>>%systemdrive%\rapport.txt
if exist doser.exe echo Problème suppression %syspath%\doser.exe>>%systemdrive%\rapport.txt
)

if exist efsdfgxg.exe (
attrib -r -s -h efsdfgxg.exe
del /a /f efsdfgxg.exe
if NOT exist efsdfgxg.exe echo %syspath%\efsdfgxg.exe supprimé>>%systemdrive%\rapport.txt
if exist efsdfgxg.exe echo Problème suppression %syspath%\efsdfgxg.exe>>%systemdrive%\rapport.txt
)

if exist gunist.exe (
attrib -r -s -h gunist.exe
del /a /f gunist.exe
if NOT exist gunist.exe echo %syspath%\gunist.exe supprimé>>%systemdrive%\rapport.txt
if exist gunist.exe echo Problème suppression %syspath%\gunist.exe>>%systemdrive%\rapport.txt
)

if exist helper.exe (
attrib -r -s -h helper.exe
del /a /f helper.exe
if NOT exist helper.exe echo %syspath%\helper.exe supprimé>>%systemdrive%\rapport.txt
if exist helper.exe echo Problème suppression %syspath%\helper.exe>>%systemdrive%\rapport.txt
)

if exist hhk.dll (
attrib -r -s -h hhk.dll
del /a /f hhk.dll
if NOT exist hhk.dll echo %syspath%\hhk.dll supprimé>>%systemdrive%\rapport.txt
if exist hhk.dll echo Problème suppression %syspath%\hhk.dll>>%systemdrive%\rapport.txt
)

if exist hookdump.exe (
attrib -r -s -h hookdump.exe
del /a /f hookdump.exe
if NOT exist hookdump.exe echo %syspath%\hookdump.exe supprimé>>%systemdrive%\rapport.txt
if exist hookdump.exe echo Problème suppression %syspath%\hookdump.exe>>%systemdrive%\rapport.txt
)

if exist hp????.tmp (
attrib -r -s -h hp????.tmp
del /a /f hp????.tmp
if NOT exist hp*.tmp echo %syspath%\hp????.tmp supprimé>>%systemdrive%\rapport.txt
if exist hp????.tmp echo Problème suppression %syspath%\hp????.tmp>>%systemdrive%\rapport.txt
)

if exist intel32.exe (
attrib -r -s -h intel32.exe
del /a /f intel32.exe
if NOT exist intel32.exe echo %syspath%\intel32.exe supprimé>>%systemdrive%\rapport.txt
if exist intel32.exe echo Problème suppression %syspath%\intel32.exe>>%systemdrive%\rapport.txt
)

if exist intell32.exe (
attrib -r -s -h intell32.exe
del /a /f intell32.exe
if NOT exist intell32.exe echo %syspath%\intell32.exe supprimé>>%systemdrive%\rapport.txt
if exist intell32.exe echo Problème suppression %syspath%\intell32.exe>>%systemdrive%\rapport.txt
)

if exist intmon.exe (
attrib -r -s -h intmon.exe
del /a /f intmon.exe
if NOT exist intmon.exe echo %syspath%\intmon.exe supprimé>>%systemdrive%\rapport.txt
if exist intmon.exe echo Problème suppression %syspath%\intmon.exe>>%systemdrive%\rapport.txt
)

if exist intmonp.exe (
attrib -r -s -h intmonp.exe
del /a /f intmonp.exe
if NOT exist intmonp.exe echo %syspath%\intmonp.exe supprimé>>%systemdrive%\rapport.txt
if exist intmonp.exe echo Problème suppression %syspath%\intmonp.exe >>%systemdrive%\rapport.txt
)

if exist kernels32.exe (
attrib -r -s -h kernels32.exe
del /a /f kernels32.exe
if NOT exist kernels32.exe echo %syspath%\kernels32.exe supprimé>>%systemdrive%\rapport.txt
if exist kernels32.exe echo Problème suppression %syspath%\kernels32.exe>>%systemdrive%\rapport.txt
)

if exist latest.exe (
attrib -r -s -h latest.exe
del /a /f latest.exe
if NOT exist latest.exe echo %syspath%\latest.exe supprimé>>%systemdrive%\rapport.txt
if exist latest.exe echo Problème suppression %syspath%\latest.exe>>%systemdrive%\rapport.txt
)

if exist ld????.tmp (
attrib -r -s -h ld????.tmp
del /a /f ld????.tmp
if NOT exist ld*.tmp echo %syspath%\ld????.tmp supprimé>>%systemdrive%\rapport.txt
if exist ld????.tmp echo Problème suppression %syspath%\ld????.tmp>>%systemdrive%\rapport.txt
)

if exist maxd1.exe (
attrib -r -s -h maxd1.exe
del /a /f maxd1.exe
if NOT exist maxd1.exe echo %syspath%\maxd1.exe supprimé>>%systemdrive%\rapport.txt
if exist maxd1.exe echo Problème suppression %syspath%\maxd1.exe>>%systemdrive%\rapport.txt
)

if exist mscornet.exe (
attrib -r -s -h mscornet.exe
del /a /f mscornet.exe
if NOT exist mscornet.exe echo %syspath%\mscornet.exe supprimé>>%systemdrive%\rapport.txt
if exist mscornet.exe echo Problème suppression %syspath%\mscornet.exe>>%systemdrive%\rapport.txt
)

if exist mssearchnet.exe (
attrib -r -s -h mssearchnet.exe
del /a /f mssearchnet.exe
if NOT exist mssearchnet.exe echo %syspath%\mssearchnet.exe supprimé>>%systemdrive%\rapport.txt
if exist mssearchnet.exe echo Problème suppression %syspath%\mssearchnet.exe>>%systemdrive%\rapport.txt
)

if exist msmsgs.exe (
attrib -r -s -h msmsgs.exe
del /a /f msmsgs.exe
if NOT exist msmsgs.exe echo %syspath%\msmsgs.exe supprimé>>%systemdrive%\rapport.txt
if exist msmsgs.exe echo Problème suppression %syspath%\msmsgs.exe>>%systemdrive%\rapport.txt
)

if exist msole32.exe (
attrib -r -s -h msole32.exe
del /a /f msole32.exe
if NOT exist msole32.exe echo %syspath%\msole32.exe supprimé>>%systemdrive%\rapport.txt
if exist msole32.exe echo Problème suppression %syspath%\msole32.exe>>%systemdrive%\rapport.txt
)

if exist msupdate32.dll (
attrib -r -s -h msupdate32.dll
del /a /f msupdate32.dll
if NOT exist msupdate32.dll echo %syspath%\msupdate32.dll supprimé>>%systemdrive%\rapport.txt
if exist msupdate32.dll echo Problème suppression %syspath%\msupdate32.dll>>%systemdrive%\rapport.txt
)

if exist msvol.tlb (
attrib -r -s -h msvol.tlb
del /a /f msvol.tlb
if NOT exist msvol.tlb echo %syspath%\msvol.tlb supprimé>>%systemdrive%\rapport.txt
if exist msvol.tlb echo Problème suppression %syspath%\msvol.tlb>>%systemdrive%\rapport.txt
)

if exist MTC.dll (
attrib -r -s -h MTC.dll
del /a /f MTC.dll
if NOT exist MTC.dll echo %syspath%\MTC.dll supprimé>>%systemdrive%\rapport.txt
if exist MTC.dll echo Problème suppression %syspath%\MTC.dll>>%systemdrive%\rapport.txt
)

if exist MTC.ini (
attrib -r -s -h MTC.ini
del /a /f MTC.ini
if NOT exist MTC.ini echo %syspath%\MTC.ini supprimé>>%systemdrive%\rapport.txt
if exist MTC.ini echo Problème suppression %syspath%\MTC.ini>>%systemdrive%\rapport.txt
)

if exist multitran.exe (
attrib -r -s -h multitran.exe
del /a /f multitran.exe
if NOT exist multitran.exe echo %syspath%\multitran.exe supprimé>>%systemdrive%\rapport.txt
if exist multitran.exe echo Problème suppression %syspath%\multitran.exe>>%systemdrive%\rapport.txt
)

if exist ncompat.tlb (
attrib -r -s -h ncompat.tlb
del /a /f ncompat.tlb
if NOT exist ncompat.tlb echo %syspath%\ncompat.tlb supprimé>>%systemdrive%\rapport.txt
if exist ncompat.tlb echo Problème suppression %syspath%\ncompat.tlb>>%systemdrive%\rapport.txt
)

if exist nvctrl.exe (
attrib -r -s -h nvctrl.exe
del /a /f nvctrl.exe
if NOT exist nvctrl.exe echo %syspath%\nvctrl.exe supprimé>>%systemdrive%\rapport.txt
if exist nvctrl.exe echo Problème suppression %syspath%\nvctrl.exe>>%systemdrive%\rapport.txt
)

if exist nuclabdll.dll (
attrib -r -s -h nuclabdll.dll
del /a /f nuclabdll.dll
if NOT exist nuclabdll.dll echo %syspath%\nuclabdll.dll supprimé>>%systemdrive%\rapport.txt
if exist nuclabdll.dll echo Problème suppression %syspath%\nuclabdll.dll>>%systemdrive%\rapport.txt
)

if
0
Utilisateur anonyme > nassenp77 Messages postés 14 Date d'inscription mercredi 23 novembre 2005 Statut Membre Dernière intervention 27 novembre 2005
27 nov. 2005 à 14:51
Salut,
recommence car ça doit plus ressembler à ça quand tu cliques sur le fichier SmitFraud fix

SmitFraudFix v1.97

Rapport fait à 14:27:19,57 le 27/11/2005
Executé à partir de C:\antivirus\SmitfraudFix
OS: Microsoft Windows XP [version 5.1.2600]

»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\


»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\WINDOWS


»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\WINDOWS\system


»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\WINDOWS\Web


»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\WINDOWS\system32


»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\Documents and Settings\cricri\Application Data


»»»»»»»»»»»»»»»»»»»»»»»» Recherche Menu Démarrer


»»»»»»»»»»»»»»»»»»»»»»»» Recherche Bureau


»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\Program Files


»»»»»»»»»»»»»»»»»»»»»»»» Recherche présence de clés corrompues


»»»»»»»»»»»»»»»»»»»»»»»» Recherche infection wininet.dll


»»»»»»»»»»»»»»»»»»»»»»»» Fin du rapport
0