A voir également:
- Compte utilisateur
- Créer un compte google - Guide
- Créer un compte gmail - Guide
- Installer windows 10 sans compte microsoft - Guide
- Comment savoir qui regarde mon compte facebook - Guide
- Compte facebook désactivé - Guide
28 réponses
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
ouaip
d'abord tu lis cela pour ton info personnelle
http://sebsauvage.net/safehex.html
et tu devras souvent t'y ressourcer
--------
défragmente une fois par semaine, fais le de suite
--------
ensuite tu télécharges tous ces logs que tu feras fonctionner aprés les avoir fait fonctionner
Ad-Aware (gratuit) :
http://telecharger.01net.com/windows/Internet/internet_utlitaire/fiches/11643.html
Le patch en Français pour Ad-Aware (gratuit) :
http://telecharger.01net.com/windows/Internet/internet_utlitaire/fiches/25543.html
Spybot (gratuit) :
http://telecharger.01net.com/windows/Internet/internet_utlitaire/fiches/26157.html
http://www.emsisoft.net/fr/software/free/
http://www.ewido.net/fr/
http://www.01net.com/windows/Utilitaire/nettoyeurs_et_installeurs/fiches/4894.html
- et cleanup40
http://pageperso.aol.fr/balltrap34/democleanup.htm
¤Télécharger CleanUp40 (qui élimine les fichiers temporaires) sur ce lien : http://pageperso.aol.fr/Balltrap34/CleanUp40.exe
(=> démo animée : http://pageperso.aol.fr/balltrap34/democleanup.htm)
___________
donne-moi les résultats
des questions à ce stade ?
___________
ensuite des fais des scans online avec
http://www.bitdefender.fr/bd/site/search.php#
et
http://fr.trendmicro-europe.com/consumer/housecall/housecall_launch.php
_________
donne moi les résultats
est-ce que ton pb demeure ?
tiens moi au courant
________
bonnes fêtes
d'abord tu lis cela pour ton info personnelle
http://sebsauvage.net/safehex.html
et tu devras souvent t'y ressourcer
--------
défragmente une fois par semaine, fais le de suite
--------
ensuite tu télécharges tous ces logs que tu feras fonctionner aprés les avoir fait fonctionner
Ad-Aware (gratuit) :
http://telecharger.01net.com/windows/Internet/internet_utlitaire/fiches/11643.html
Le patch en Français pour Ad-Aware (gratuit) :
http://telecharger.01net.com/windows/Internet/internet_utlitaire/fiches/25543.html
Spybot (gratuit) :
http://telecharger.01net.com/windows/Internet/internet_utlitaire/fiches/26157.html
http://www.emsisoft.net/fr/software/free/
http://www.ewido.net/fr/
http://www.01net.com/windows/Utilitaire/nettoyeurs_et_installeurs/fiches/4894.html
- et cleanup40
http://pageperso.aol.fr/balltrap34/democleanup.htm
¤Télécharger CleanUp40 (qui élimine les fichiers temporaires) sur ce lien : http://pageperso.aol.fr/Balltrap34/CleanUp40.exe
(=> démo animée : http://pageperso.aol.fr/balltrap34/democleanup.htm)
___________
donne-moi les résultats
des questions à ce stade ?
___________
ensuite des fais des scans online avec
http://www.bitdefender.fr/bd/site/search.php#
et
http://fr.trendmicro-europe.com/consumer/housecall/housecall_launch.php
_________
donne moi les résultats
est-ce que ton pb demeure ?
tiens moi au courant
________
bonnes fêtes
bon et bien je suis vraiment enervée!!!
j ai voulu defragmenter le pc est le pc c est eteint tout seul
j ai vraiment un bleme!!
et quand j allume ma mule ben ca decend au bout de 3minutes et paf plus de conexion obligé de redemarrer
je crois que j ai du endommager mon pc et quand j allume mon pc il fait un gros bruit le ventilo raisonne beaucoup je trouve
pff!!!raz le bol
par contre j ai retrouvé mon compte utilisateur
je sais pas comment!!
mais mon ordinateur est bizarre..j ai l impression qu ila ete endommagé car il y a 1 semaine j ai choper des saloperie avec winfixer2005 ouais comme une conne je l ai telecharger mais j ai reussi a le virer et j ai scanner avec pas mal de logiciels et j ai plus rien mais j ai l imression que le pc a eu un coup!!
j ai voulu defragmenter le pc est le pc c est eteint tout seul
j ai vraiment un bleme!!
et quand j allume ma mule ben ca decend au bout de 3minutes et paf plus de conexion obligé de redemarrer
je crois que j ai du endommager mon pc et quand j allume mon pc il fait un gros bruit le ventilo raisonne beaucoup je trouve
pff!!!raz le bol
par contre j ai retrouvé mon compte utilisateur
je sais pas comment!!
mais mon ordinateur est bizarre..j ai l impression qu ila ete endommagé car il y a 1 semaine j ai choper des saloperie avec winfixer2005 ouais comme une conne je l ai telecharger mais j ai reussi a le virer et j ai scanner avec pas mal de logiciels et j ai plus rien mais j ai l imression que le pc a eu un coup!!
hello
évite de causer de la mule ici car
http://www.commentcamarche.net/faq/sujet-175-Les-logiciels-P2P
évite de causer de la mule ici car
http://www.commentcamarche.net/faq/sujet-175-Les-logiciels-P2P
bon et bien je defragmente a nouveau sinon voici ce que me donne regcleaner mais je sais pas quoi effacer
HKEY_LOCAL_MACHINE, Software\Microsoft\Windows\CurrentVersion\App Paths\cmmgr32.exe, {KEY}, {KEY}, N/A
HKEY_LOCAL_MACHINE, Software\Microsoft\Windows\CurrentVersion\App Paths\HijackThis.exe, {KEY}, {KEY}, N/A
HKEY_LOCAL_MACHINE, Software\Microsoft\Windows\CurrentVersion\App Paths\PowerDirector Pro Disc Wizard, {KEY}, {KEY}, N/A
HKEY_LOCAL_MACHINE, Software\Microsoft\Windows\CurrentVersion\App Paths\RegCloneDVD2.exe, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \.dos, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \.nls, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, CLSID\{01B08978-C80F-41B8-8E55-1C15381AF085}, {KEY}, {KEY}, N/A
HKEY_USERS, .DEFAULT\Software\Microsoft\Windows Media\WMSDK\Namespace, LocalDelta, C:\WINDOWS\system32\config\systemprofile\Local Settings\Application Data\Microsoft\Windows Media\9.0\WMSDKNSD.XML, 12/20/2005 01:47 PM
HKEY_USERS, .DEFAULT\Software\Microsoft\Windows Media\WMSDK\Namespace, RemoteDelta, C:\WINDOWS\system32\config\systemprofile\Local Settings\Application Data\Microsoft\Windows Media\9.0\WMSDKNSR.XML, 12/20/2005 01:47 PM
HKEY_CLASSES_ROOT, CLSID\{30304176-4A80-45D9-87F6-80326E94BEDE}, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, CLSID\{38E0E56C-DCF4-4C89-817D-ABBF253DE1FE}, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \Connection Manager Profile\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, CLSID\{4C50B299-486B-4737-814F-CEDA1E4E38DF}, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, CLSID\{660BE932-8E46-4FBF-92C2-14C72D978FCA}, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, CLSID\{664C480B-F4E5-4059-A36F-38C62E24F24F}, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, CLSID\{7B024BB2-CAF5-4D45-B32B-8F06048C2C82}, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, CLSID\{83D4679F-B6D7-11D2-BF36-00C04FB90A03}, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, CLSID\{87D744A2-4B88-479E-85C6-75A0A5F457A1}, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, CLSID\{A654673E-54BC-417D-B84D-77162DC43DFF}, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, CLSID\{B561364B-8F2A-4CC7-B452-0297D387DC05}, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, CLSID\{C312205F-8FDA-428E-A683-C4EDBA2EB64A}, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, CLSID\{C3D3A588-6DAA-4542-811C-BAC3BE05E83B}, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArc7Z\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcA\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcACE\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcARC\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcARJ\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcB64\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcBH\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcBIN\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcBZ2\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcBZA\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcC2D\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcCAB\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcCDI\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcCPIO\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcDEB\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcENC\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcGCA\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcGZ\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcGZA\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcHA\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcIMG\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcISO\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcIZE\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcJAR\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcLHA\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcLIB\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcLZH\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcMBF\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcMDF\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcMIM\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcNRG\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcPAK\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcPDI\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcPK3\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcRAR\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcRPM\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcTAR\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcTAZ\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcTBZ\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcTGZ\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcTZ\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcUUE\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcWAR\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcXXE\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcYZ1\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcZ\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcZIP\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcZOO\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, CLSID\{CFD27F75-ADB4-4409-A424-1E4CFB4C6113}, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, CLSID\{D2467BBA-1558-4EE4-9B43-8CE408F3EEF4}, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, CLSID\{E7BC1353-A7C1-466B-872B-3DCD1AADE548}, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, TypeLib\{C523F390-9C83-11D3-9094-00104BD0D535}, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, TypeLib\{DCB43485-19FB-4D6D-BB3D-73C7F48D5F00}, {KEY}, {KEY}, N/A
HKEY_USERS, S-1-5-21-1182249341-1303445744-2746759442-1005\Software\Ahead\Nero ShowTime\Settings, BookmarksFileName, C:\Documents and Settings\lylou\Application Data\Ahead\NeroShowTime.bmk, 12/20/2005 08:16 AM
HKEY_USERS, S-1-5-21-1182249341-1303445744-2746759442-1005\Software\Canon\MP Navigator\1.1\MP130 Series\Folders, ScanFolder, C:\Documents and Settings\lylou\Application Data\Canon\MP Navigator V110\temp\, 12/20/2005 10:13 PM
HKEY_USERS, S-1-5-21-1182249341-1303445744-2746759442-1005\Software\DivXNetworks\DivX4Windows, Nth Pass debug file name, c:\newrc.txt, 12/21/2005 03:30 PM
HKEY_USERS, S-1-5-21-1182249341-1303445744-2746759442-1005\Software\DivXNetworks\DivX4Windows, MP4 File Name, c:\test.divx, 12/21/2005 03:30 PM
HKEY_USERS, S-1-5-21-1182249341-1303445744-2746759442-1005\Software\DivXNetworks\DivX4Windows, YUV Dir Name, c:\yuv, 12/21/2005 03:30 PM
HKEY_USERS, S-1-5-21-1182249341-1303445744-2746759442-1005\Software\DivXNetworks\DivX4Windows, MV File Name, c:\mvinfo.bin, 12/21/2005 03:30 PM
HKEY_USERS, S-1-5-21-1182249341-1303445744-2746759442-1005\Software\Google\NavClient\1.1\Options, DictDataPath, C:\Program Files\Google\googledict2.dat, 12/23/2005 06:34 PM
HKEY_USERS, S-1-5-21-1182249341-1303445744-2746759442-1005\Software\MadOnion.com\3DMark2001 SE\Settings, DefaultPath, C:\Program Files\MadOnion.com\3DMark2001 SE, 12/19/2005 05:21 PM
HKEY_USERS, S-1-5-21-1182249341-1303445744-2746759442-1005\Software\Microsoft\Windows\CurrentVersion\Applets\Wordpad\Recent File List, File1, C:\Program Files\eChanblard\Incoming\Crack zone Alarme 5.1.0333.doc, 12/21/2005 09:10 AM
HKEY_USERS, S-1-5-21-1182249341-1303445744-2746759442-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\*, b, C:\Documents and Settings\lylou\Mes documents\Ma musique\divers\The Drill - The Drill.asf, 12/24/2005 07:46 AM
HKEY_USERS, S-1-5-21-1182249341-1303445744-2746759442-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\asf, a, C:\Documents and Settings\lylou\Mes documents\Ma musique\divers\The Drill - The Drill.asf, 12/21/2005 03:28 PM
HKEY_USERS, S-1-5-21-1182249341-1303445744-2746759442-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\htm, a, C:\Documents and Settings\lylou\Bureau\affich-1986631.htm, 12/21/2005 03:28 PM
HKEY_LOCAL_MACHINE, Software\Classes\Connection Manager Profile\DefaultIcon, , C:\WINDOWS\System32\CMMGR32.EXE,1, 09/01/2003 01:55 PM
HKEY_CLASSES_ROOT, \ShockwaveFlash.ShockwaveFlash\shell\open\command, {KEY}, {KEY}, N/A
HKEY_USERS, S-1-5-21-1182249341-1303445744-2746759442-1005\Software\Microsoft\Windows Media\WMSDK\Namespace, LocalDelta, C:\Documents and Settings\lylou\Local Settings\Application Data\Microsoft\Windows Media\9.0\WMSDKNSD.XML, 12/20/2005 01:22 PM
HKEY_USERS, S-1-5-21-1182249341-1303445744-2746759442-1005\Software\Microsoft\Windows Media\WMSDK\Namespace, RemoteDelta, C:\Documents and Settings\lylou\Local Settings\Application Data\Microsoft\Windows Media\9.0\WMSDKNSR.XML, 12/20/2005 01:22 PM
HKEY_CLASSES_ROOT, \SysmonLogManager.Snapin, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \WMPCD, {KEY}, {KEY}, N/A
HKEY_LOCAL_MACHINE, software\Microsoft\Windows\CurrentVersion\ModuleUsage\C:/WINDOWS/System32/iuctl.dll, {KEY}, {KEY}, N/A
HKEY_USERS, S-1-5-18\Software\Microsoft\Windows Media\WMSDK\Namespace, LocalDelta, C:\WINDOWS\system32\config\systemprofile\Local Settings\Application Data\Microsoft\Windows Media\9.0\WMSDKNSD.XML, 12/20/2005 01:47 PM
HKEY_USERS, S-1-5-18\Software\Microsoft\Windows Media\WMSDK\Namespace, RemoteDelta, C:\WINDOWS\system32\config\systemprofile\Local Settings\Application Data\Microsoft\Windows Media\9.0\WMSDKNSR.XML, 12/20/2005 01:47 PM
HKEY_LOCAL_MACHINE, Software\Classes\IZArc7Z\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcA\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcACE\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcARC\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcARJ\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcB64\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcBH\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcBIN\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcBZ2\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcBZA\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcC2D\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcCAB\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcCDI\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcCPIO\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcDEB\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcENC\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcGCA\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcGZ\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcGZA\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcHA\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcIMG\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcISO\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcIZE\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcJAR\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcLHA\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcLIB\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcLZH\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcMBF\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcMDF\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcMIM\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcNRG\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcPAK\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcPDI\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcPK3\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcRAR\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcRPM\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcTAR\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcTAZ\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcTBZ\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcTGZ\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcTZ\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcUUE\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcWAR\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcXXE\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcYZ1\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcZ\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcZIP\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcZOO\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\ShockwaveFlash.ShockwaveFlash\DefaultIcon, , C:\DOCUME~1\lylou\LOCALS~1\Temp\ARCCB\Noel_Jackie_Lawson.exe,1, 12/23/2005 06:31 PM
HKEY_LOCAL_MACHINE, Software\DivXNetworks\Artwork\7B63B2922B174135AFC0E1377DD81EC2, xmlPath, C:\Program Files\DivX\Artwork\Artwork-1.0.xml, 12/21/2005 01:56 PM
HKEY_LOCAL_MACHINE, Software\DivXNetworks\Artwork\8ADFC4160D694100B5B8A22DE9DCABD9, xmlPath, C:\Program Files\DivX\Artwork\Artwork-1.0.xml, 12/21/2005 01:56 PM
HKEY_LOCAL_MACHINE, Software\Microsoft\IMAPI\StashInfo, StashPath, C:\WINDOWS\Temp\StashIMAPI.bin, 09/01/2003 02:03 PM
HKEY_LOCAL_MACHINE, Software\Microsoft\MediaPlayer, MetadataTemplatesDir, C:\Program Files\Windows Media Player\Templates, 12/20/2005 01:22 PM
HKEY_LOCAL_MACHINE, Software\Microsoft\Windows\CurrentVersion\Explorer\DocFolderPaths, Propriétaire, C:\Documents and Settings\Propriétaire\Mes documents, 12/19/2005 05:21 PM
HKEY_LOCAL_MACHINE, Software\Microsoft\Windows NT\CurrentVersion\SeCEdit, TemplateUsed, C:\WINDOWS\SECFDD.tmp, 12/20/2005 01:26 PM
HKEY_LOCAL_MACHINE, Software\Via4in1Driver, 4in1Path, C:\Documents and Settings\Propriétaire\Local Settings\Temp\pft56~tmp\, 12/19/2005 05:17 PM
HKEY_LOCAL_MACHINE, Software\Webroot\SpySweeper\Startup\2_SpySweeper_BT01, path, C:\Program Files\Webroot\Spy Sweeper\Bt01.exe, 12/21/2005 08:07 AM
HKEY_LOCAL_MACHINE, Software\Webroot\SpySweeper\Startup\id_1, Shortcut, C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage\Utilitaire réseau pour SAGEM Wi-Fi 11g USB adapter.lnk, 12/21/2005 08:08 AM
HKEY_LOCAL_MACHINE, Software\Microsoft\Windows\CurrentVersion\App Paths\cmmgr32.exe, {KEY}, {KEY}, N/A
HKEY_LOCAL_MACHINE, Software\Microsoft\Windows\CurrentVersion\App Paths\HijackThis.exe, {KEY}, {KEY}, N/A
HKEY_LOCAL_MACHINE, Software\Microsoft\Windows\CurrentVersion\App Paths\PowerDirector Pro Disc Wizard, {KEY}, {KEY}, N/A
HKEY_LOCAL_MACHINE, Software\Microsoft\Windows\CurrentVersion\App Paths\RegCloneDVD2.exe, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \.dos, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \.nls, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, CLSID\{01B08978-C80F-41B8-8E55-1C15381AF085}, {KEY}, {KEY}, N/A
HKEY_USERS, .DEFAULT\Software\Microsoft\Windows Media\WMSDK\Namespace, LocalDelta, C:\WINDOWS\system32\config\systemprofile\Local Settings\Application Data\Microsoft\Windows Media\9.0\WMSDKNSD.XML, 12/20/2005 01:47 PM
HKEY_USERS, .DEFAULT\Software\Microsoft\Windows Media\WMSDK\Namespace, RemoteDelta, C:\WINDOWS\system32\config\systemprofile\Local Settings\Application Data\Microsoft\Windows Media\9.0\WMSDKNSR.XML, 12/20/2005 01:47 PM
HKEY_CLASSES_ROOT, CLSID\{30304176-4A80-45D9-87F6-80326E94BEDE}, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, CLSID\{38E0E56C-DCF4-4C89-817D-ABBF253DE1FE}, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \Connection Manager Profile\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, CLSID\{4C50B299-486B-4737-814F-CEDA1E4E38DF}, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, CLSID\{660BE932-8E46-4FBF-92C2-14C72D978FCA}, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, CLSID\{664C480B-F4E5-4059-A36F-38C62E24F24F}, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, CLSID\{7B024BB2-CAF5-4D45-B32B-8F06048C2C82}, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, CLSID\{83D4679F-B6D7-11D2-BF36-00C04FB90A03}, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, CLSID\{87D744A2-4B88-479E-85C6-75A0A5F457A1}, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, CLSID\{A654673E-54BC-417D-B84D-77162DC43DFF}, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, CLSID\{B561364B-8F2A-4CC7-B452-0297D387DC05}, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, CLSID\{C312205F-8FDA-428E-A683-C4EDBA2EB64A}, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, CLSID\{C3D3A588-6DAA-4542-811C-BAC3BE05E83B}, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArc7Z\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcA\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcACE\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcARC\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcARJ\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcB64\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcBH\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcBIN\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcBZ2\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcBZA\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcC2D\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcCAB\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcCDI\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcCPIO\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcDEB\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcENC\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcGCA\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcGZ\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcGZA\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcHA\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcIMG\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcISO\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcIZE\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcJAR\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcLHA\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcLIB\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcLZH\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcMBF\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcMDF\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcMIM\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcNRG\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcPAK\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcPDI\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcPK3\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcRAR\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcRPM\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcTAR\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcTAZ\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcTBZ\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcTGZ\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcTZ\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcUUE\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcWAR\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcXXE\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcYZ1\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcZ\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcZIP\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \IZArcZOO\shell\open\command, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, CLSID\{CFD27F75-ADB4-4409-A424-1E4CFB4C6113}, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, CLSID\{D2467BBA-1558-4EE4-9B43-8CE408F3EEF4}, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, CLSID\{E7BC1353-A7C1-466B-872B-3DCD1AADE548}, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, TypeLib\{C523F390-9C83-11D3-9094-00104BD0D535}, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, TypeLib\{DCB43485-19FB-4D6D-BB3D-73C7F48D5F00}, {KEY}, {KEY}, N/A
HKEY_USERS, S-1-5-21-1182249341-1303445744-2746759442-1005\Software\Ahead\Nero ShowTime\Settings, BookmarksFileName, C:\Documents and Settings\lylou\Application Data\Ahead\NeroShowTime.bmk, 12/20/2005 08:16 AM
HKEY_USERS, S-1-5-21-1182249341-1303445744-2746759442-1005\Software\Canon\MP Navigator\1.1\MP130 Series\Folders, ScanFolder, C:\Documents and Settings\lylou\Application Data\Canon\MP Navigator V110\temp\, 12/20/2005 10:13 PM
HKEY_USERS, S-1-5-21-1182249341-1303445744-2746759442-1005\Software\DivXNetworks\DivX4Windows, Nth Pass debug file name, c:\newrc.txt, 12/21/2005 03:30 PM
HKEY_USERS, S-1-5-21-1182249341-1303445744-2746759442-1005\Software\DivXNetworks\DivX4Windows, MP4 File Name, c:\test.divx, 12/21/2005 03:30 PM
HKEY_USERS, S-1-5-21-1182249341-1303445744-2746759442-1005\Software\DivXNetworks\DivX4Windows, YUV Dir Name, c:\yuv, 12/21/2005 03:30 PM
HKEY_USERS, S-1-5-21-1182249341-1303445744-2746759442-1005\Software\DivXNetworks\DivX4Windows, MV File Name, c:\mvinfo.bin, 12/21/2005 03:30 PM
HKEY_USERS, S-1-5-21-1182249341-1303445744-2746759442-1005\Software\Google\NavClient\1.1\Options, DictDataPath, C:\Program Files\Google\googledict2.dat, 12/23/2005 06:34 PM
HKEY_USERS, S-1-5-21-1182249341-1303445744-2746759442-1005\Software\MadOnion.com\3DMark2001 SE\Settings, DefaultPath, C:\Program Files\MadOnion.com\3DMark2001 SE, 12/19/2005 05:21 PM
HKEY_USERS, S-1-5-21-1182249341-1303445744-2746759442-1005\Software\Microsoft\Windows\CurrentVersion\Applets\Wordpad\Recent File List, File1, C:\Program Files\eChanblard\Incoming\Crack zone Alarme 5.1.0333.doc, 12/21/2005 09:10 AM
HKEY_USERS, S-1-5-21-1182249341-1303445744-2746759442-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\*, b, C:\Documents and Settings\lylou\Mes documents\Ma musique\divers\The Drill - The Drill.asf, 12/24/2005 07:46 AM
HKEY_USERS, S-1-5-21-1182249341-1303445744-2746759442-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\asf, a, C:\Documents and Settings\lylou\Mes documents\Ma musique\divers\The Drill - The Drill.asf, 12/21/2005 03:28 PM
HKEY_USERS, S-1-5-21-1182249341-1303445744-2746759442-1005\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\htm, a, C:\Documents and Settings\lylou\Bureau\affich-1986631.htm, 12/21/2005 03:28 PM
HKEY_LOCAL_MACHINE, Software\Classes\Connection Manager Profile\DefaultIcon, , C:\WINDOWS\System32\CMMGR32.EXE,1, 09/01/2003 01:55 PM
HKEY_CLASSES_ROOT, \ShockwaveFlash.ShockwaveFlash\shell\open\command, {KEY}, {KEY}, N/A
HKEY_USERS, S-1-5-21-1182249341-1303445744-2746759442-1005\Software\Microsoft\Windows Media\WMSDK\Namespace, LocalDelta, C:\Documents and Settings\lylou\Local Settings\Application Data\Microsoft\Windows Media\9.0\WMSDKNSD.XML, 12/20/2005 01:22 PM
HKEY_USERS, S-1-5-21-1182249341-1303445744-2746759442-1005\Software\Microsoft\Windows Media\WMSDK\Namespace, RemoteDelta, C:\Documents and Settings\lylou\Local Settings\Application Data\Microsoft\Windows Media\9.0\WMSDKNSR.XML, 12/20/2005 01:22 PM
HKEY_CLASSES_ROOT, \SysmonLogManager.Snapin, {KEY}, {KEY}, N/A
HKEY_CLASSES_ROOT, \WMPCD, {KEY}, {KEY}, N/A
HKEY_LOCAL_MACHINE, software\Microsoft\Windows\CurrentVersion\ModuleUsage\C:/WINDOWS/System32/iuctl.dll, {KEY}, {KEY}, N/A
HKEY_USERS, S-1-5-18\Software\Microsoft\Windows Media\WMSDK\Namespace, LocalDelta, C:\WINDOWS\system32\config\systemprofile\Local Settings\Application Data\Microsoft\Windows Media\9.0\WMSDKNSD.XML, 12/20/2005 01:47 PM
HKEY_USERS, S-1-5-18\Software\Microsoft\Windows Media\WMSDK\Namespace, RemoteDelta, C:\WINDOWS\system32\config\systemprofile\Local Settings\Application Data\Microsoft\Windows Media\9.0\WMSDKNSR.XML, 12/20/2005 01:47 PM
HKEY_LOCAL_MACHINE, Software\Classes\IZArc7Z\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcA\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcACE\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcARC\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcARJ\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcB64\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcBH\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcBIN\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcBZ2\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcBZA\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcC2D\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcCAB\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcCDI\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcCPIO\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcDEB\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcENC\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcGCA\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcGZ\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcGZA\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcHA\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcIMG\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcISO\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcIZE\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcJAR\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcLHA\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcLIB\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcLZH\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcMBF\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcMDF\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcMIM\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcNRG\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcPAK\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcPDI\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcPK3\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcRAR\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcRPM\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcTAR\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcTAZ\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcTBZ\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcTGZ\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcTZ\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcUUE\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcWAR\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcXXE\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcYZ1\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcZ\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcZIP\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\IZArcZOO\DefaultIcon, , C:\PROGRA~1\IZARC\IZARC.EXE,0, 12/20/2005 08:14 AM
HKEY_LOCAL_MACHINE, Software\Classes\ShockwaveFlash.ShockwaveFlash\DefaultIcon, , C:\DOCUME~1\lylou\LOCALS~1\Temp\ARCCB\Noel_Jackie_Lawson.exe,1, 12/23/2005 06:31 PM
HKEY_LOCAL_MACHINE, Software\DivXNetworks\Artwork\7B63B2922B174135AFC0E1377DD81EC2, xmlPath, C:\Program Files\DivX\Artwork\Artwork-1.0.xml, 12/21/2005 01:56 PM
HKEY_LOCAL_MACHINE, Software\DivXNetworks\Artwork\8ADFC4160D694100B5B8A22DE9DCABD9, xmlPath, C:\Program Files\DivX\Artwork\Artwork-1.0.xml, 12/21/2005 01:56 PM
HKEY_LOCAL_MACHINE, Software\Microsoft\IMAPI\StashInfo, StashPath, C:\WINDOWS\Temp\StashIMAPI.bin, 09/01/2003 02:03 PM
HKEY_LOCAL_MACHINE, Software\Microsoft\MediaPlayer, MetadataTemplatesDir, C:\Program Files\Windows Media Player\Templates, 12/20/2005 01:22 PM
HKEY_LOCAL_MACHINE, Software\Microsoft\Windows\CurrentVersion\Explorer\DocFolderPaths, Propriétaire, C:\Documents and Settings\Propriétaire\Mes documents, 12/19/2005 05:21 PM
HKEY_LOCAL_MACHINE, Software\Microsoft\Windows NT\CurrentVersion\SeCEdit, TemplateUsed, C:\WINDOWS\SECFDD.tmp, 12/20/2005 01:26 PM
HKEY_LOCAL_MACHINE, Software\Via4in1Driver, 4in1Path, C:\Documents and Settings\Propriétaire\Local Settings\Temp\pft56~tmp\, 12/19/2005 05:17 PM
HKEY_LOCAL_MACHINE, Software\Webroot\SpySweeper\Startup\2_SpySweeper_BT01, path, C:\Program Files\Webroot\Spy Sweeper\Bt01.exe, 12/21/2005 08:07 AM
HKEY_LOCAL_MACHINE, Software\Webroot\SpySweeper\Startup\id_1, Shortcut, C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage\Utilitaire réseau pour SAGEM Wi-Fi 11g USB adapter.lnk, 12/21/2005 08:08 AM
scan avec ad-award
d-Aware SE Build 1.06r1
Logfile Created on:samedi 24 décembre 2005 09:02:39
Created with Ad-Aware SE Personal, free for private use.
Using definitions file:SE1R82 19.12.2005
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
References detected during the scan:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
MRU List(TAC index:0):20 total references
Tracking Cookie(TAC index:3):5 total references
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Ad-Aware SE Settings
===========================
Set : Search for negligible risk entries
Set : Safe mode (always request confirmation)
Set : Scan active processes
Set : Scan registry
Set : Deep-scan registry
Set : Scan my IE Favorites for banned URLs
Set : Scan my Hosts file
Extended Ad-Aware SE Settings
===========================
Set : Unload recognized processes & modules during scan
Set : Scan registry for all users instead of current user only
Set : Always try to unload modules before deletion
Set : During removal, unload Explorer and IE if necessary
Set : Let Windows remove files in use at next reboot
Set : Delete quarantined objects after restoring
Set : Include basic Ad-Aware settings in log file
Set : Include additional Ad-Aware settings in log file
Set : Include reference summary in log file
Set : Include alternate data stream details in log file
Set : Play sound at scan completion if scan locates critical objects
24-12-2005 09:02:39 - Scan started. (Smart mode)
Listing running processes
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
#:1 [smss.exe]
FilePath : \SystemRoot\System32\
ProcessID : 552
ThreadCreationTime : 24-12-2005 07:19:29
BasePriority : Normal
#:2 [csrss.exe]
FilePath : \??\C:\WINDOWS\system32\
ProcessID : 792
ThreadCreationTime : 24-12-2005 07:20:38
BasePriority : Normal
#:3 [winlogon.exe]
FilePath : \??\C:\WINDOWS\system32\
ProcessID : 816
ThreadCreationTime : 24-12-2005 07:20:39
BasePriority : High
#:4 [services.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 860
ThreadCreationTime : 24-12-2005 07:20:41
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Système d'exploitation Microsoft® Windows®
CompanyName : Microsoft Corporation
FileDescription : Applications Services et Contrôleur
InternalName : services.exe
LegalCopyright : © Microsoft Corporation. Tous droits réservés.
OriginalFilename : services.exe
#:5 [lsass.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 872
ThreadCreationTime : 24-12-2005 07:20:41
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : LSA Shell (Export Version)
InternalName : lsass.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : lsass.exe
#:6 [svchost.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 1012
ThreadCreationTime : 24-12-2005 07:20:42
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : svchost.exe
#:7 [svchost.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 1080
ThreadCreationTime : 24-12-2005 07:20:43
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : svchost.exe
#:8 [svchost.exe]
FilePath : C:\WINDOWS\System32\
ProcessID : 1112
ThreadCreationTime : 24-12-2005 07:20:43
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : svchost.exe
#:9 [svchost.exe]
FilePath : C:\WINDOWS\System32\
ProcessID : 1200
ThreadCreationTime : 24-12-2005 07:20:44
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : svchost.exe
#:10 [svchost.exe]
FilePath : C:\WINDOWS\System32\
ProcessID : 1364
ThreadCreationTime : 24-12-2005 07:20:45
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : svchost.exe
#:11 [explorer.exe]
FilePath : C:\WINDOWS\
ProcessID : 1604
ThreadCreationTime : 24-12-2005 07:20:48
BasePriority : Normal
FileVersion : 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 6.00.2900.2180
ProductName : Système d'exploitation Microsoft® Windows®
CompanyName : Microsoft Corporation
FileDescription : Explorateur Windows
InternalName : explorer
LegalCopyright : © Microsoft Corporation. Tous droits réservés.
OriginalFilename : EXPLORER.EXE
#:12 [spoolsv.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 1688
ThreadCreationTime : 24-12-2005 07:20:49
BasePriority : Normal
FileVersion : 5.1.2600.2696 (xpsp_sp2_gdr.050610-1519)
ProductVersion : 5.1.2600.2696
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Spooler SubSystem App
InternalName : spoolsv.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : spoolsv.exe
#:13 [ati2evxx.exe]
FilePath : C:\WINDOWS\System32\
ProcessID : 1780
ThreadCreationTime : 24-12-2005 07:20:50
BasePriority : Normal
#:14 [carpserv.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 2016
ThreadCreationTime : 24-12-2005 07:20:54
BasePriority : Normal
FileVersion : 6.02.05
ProductVersion : 6.02.05
ProductName : SoftK56 Modem Driver
CompanyName : Conexant Systems, Inc.
FileDescription : carpserv
InternalName : carpserv
LegalCopyright : Copyright© Conexant Systems, Inc. 2003
OriginalFilename : carpserv.exe
#:15 [svchost.exe]
FilePath : C:\WINDOWS\System32\
ProcessID : 2024
ThreadCreationTime : 24-12-2005 07:20:54
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : svchost.exe
#:16 [wrsssdk.exe]
FilePath : C:\Program Files\Webroot\Spy Sweeper\
ProcessID : 132
ThreadCreationTime : 24-12-2005 07:20:54
BasePriority : Normal
FileVersion : 2,0,8,483
ProductVersion : 2, 0
ProductName : Spy Sweeper SDK
CompanyName : Webroot Software, Inc.
FileDescription : Spy Sweeper SDK
LegalCopyright : Copyright (C) 2002 - 2005, All Rights Reserved.
LegalTrademarks : Spy Sweeper is a trademark of Webroot Software, Inc.
OriginalFilename : SpySweeper.exe
#:17 [atiptaxx.exe]
FilePath : C:\Program Files\ATI Technologies\ATI Control Panel\
ProcessID : 2044
ThreadCreationTime : 24-12-2005 07:20:54
BasePriority : Normal
FileVersion : 6.14.10.5021
ProductVersion : 6.14.10.5021
ProductName : ATI Desktop Component
CompanyName : ATI Technologies, Inc.
FileDescription : ATI Desktop Control Panel
InternalName : Atiptaxx.exe
LegalCopyright : Copyright (C) 1998-2002 ATI Technologies Inc.
OriginalFilename : Atiptaxx.exe
#:18 [vspdfprsrv.exe]
FilePath : C:\Program Files\Visage\PDF Printer\
ProcessID : 244
ThreadCreationTime : 24-12-2005 07:20:55
BasePriority : Normal
FileVersion : 2.0.0.0
ProductVersion : 1.0.0.0
ProductName : Visage PDF Printer
CompanyName : Visage Software
FileDescription : Visage PDF Printer
InternalName : vspdfprsrv.exe
LegalCopyright : Visage Software
OriginalFilename : vspdfprsrv.exe
#:19 [realsched.exe]
FilePath : C:\Program Files\Fichiers communs\Real\Update_OB\
ProcessID : 308
ThreadCreationTime : 24-12-2005 07:20:56
BasePriority : Normal
FileVersion : 0.1.0.3427
ProductVersion : 0.1.0.3427
ProductName : RealPlayer (32-bit)
CompanyName : RealNetworks, Inc.
FileDescription : RealNetworks Scheduler
InternalName : schedapp
LegalCopyright : Copyright © RealNetworks, Inc. 1995-2004
LegalTrademarks : RealAudio(tm) is a trademark of RealNetworks, Inc.
OriginalFilename : realsched.exe
#:20 [zlclient.exe]
FilePath : C:\Program Files\Zone Labs\ZoneAlarm\
ProcessID : 420
ThreadCreationTime : 24-12-2005 07:20:56
BasePriority : Normal
FileVersion : 5.5.109.000
ProductVersion : 5.5.109.000
ProductName : Zone Labs Client
CompanyName : Zone Labs, LLC
FileDescription : Zone Labs Client
InternalName : zlclient
LegalCopyright : Copyright © 1998-2005, Zone Labs, LLC
OriginalFilename : zlclient.exe
#:21 [nmbgmonitor.exe]
FilePath : C:\Program Files\Fichiers communs\Ahead\lib\
ProcessID : 476
ThreadCreationTime : 24-12-2005 07:20:58
BasePriority : Normal
#:22 [vsmon.exe]
FilePath : C:\WINDOWS\system32\ZONELABS\
ProcessID : 180
ThreadCreationTime : 24-12-2005 07:21:08
BasePriority : Normal
FileVersion : 5.5.109.000
ProductVersion : 5.5.109.000
ProductName : TrueVector Service
CompanyName : Zone Labs, LLC
FileDescription : TrueVector Service
InternalName : vsmon
LegalCopyright : Copyright © 1998-2005, Zone Labs, LLC
OriginalFilename : vsmon.exe
#:23 [mspmspsv.exe]
FilePath : C:\WINDOWS\System32\
ProcessID : 216
ThreadCreationTime : 24-12-2005 07:21:10
BasePriority : Normal
FileVersion : 7.01.00.3055
ProductVersion : 7.01.00.3055
ProductName : Microsoft (R) DRM
CompanyName : Microsoft Corporation
FileDescription : WMDM PMSP Service
InternalName : MSPMSPSV.EXE
LegalCopyright : Copyright (C) Microsoft Corp. 1981-2000
OriginalFilename : MSPMSPSV.EXE
#:24 [erobar.exe]
FilePath : C:\PROGRA~1\EUROBA~1\
ProcessID : 1152
ThreadCreationTime : 24-12-2005 07:21:23
BasePriority : Normal
FileVersion : 2.00
ProductVersion : 2.00
ProductName : EUROBARRE
CompanyName : EUROBARRE
InternalName : erobar
LegalCopyright : EUROBARRE 2003
OriginalFilename : erobar.exe
Comments : Eurobarre V2
#:25 [firefox.exe]
FilePath : C:\Program Files\Mozilla Firefox\
ProcessID : 2424
ThreadCreationTime : 24-12-2005 07:21:45
BasePriority : Normal
#:26 [alg.exe]
FilePath : C:\WINDOWS\System32\
ProcessID : 2624
ThreadCreationTime : 24-12-2005 07:21:48
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Application Layer Gateway Service
InternalName : ALG.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : ALG.exe
#:27 [mmc.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 3324
ThreadCreationTime : 24-12-2005 07:31:00
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Système d'exploitation Microsoft® Windows®
CompanyName : Microsoft Corporation
FileDescription : Microsoft Management Console
InternalName : mmc.exe
LegalCopyright : © Microsoft Corporation. Tous droits réservés.
OriginalFilename : mmc.exe
#:28 [dfrgfat.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 2852
ThreadCreationTime : 24-12-2005 08:00:29
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Défragmenteur de disque Windows
CompanyName : Microsoft Corp. et Executive Software International, Inc.
FileDescription : Module Système de fichiers FAT du défragmenteur de disque
InternalName : DFRGFAT.EXE
LegalCopyright : ©2001 Microsoft Corp. et Executive Software Int'l, Inc.
OriginalFilename : DFRGFAT.EXE
#:29 [a2start.exe]
FilePath : C:\Program Files\a-squared\
ProcessID : 336
ThreadCreationTime : 24-12-2005 08:02:05
BasePriority : Normal
#:30 [a2scan.exe]
FilePath : C:\Program Files\a-squared\
ProcessID : 2200
ThreadCreationTime : 24-12-2005 08:02:10
BasePriority : Normal
#:31 [ad-aware.exe]
FilePath : C:\Program Files\Lavasoft\Ad-Aware SE Personal\
ProcessID : 1580
ThreadCreationTime : 24-12-2005 08:02:28
BasePriority : Normal
FileVersion : 6.2.0.236
ProductVersion : SE 106
ProductName : Lavasoft Ad-Aware SE
CompanyName : Lavasoft Sweden
FileDescription : Ad-Aware SE Core application
InternalName : Ad-Aware.exe
LegalCopyright : Copyright © Lavasoft AB Sweden
OriginalFilename : Ad-Aware.exe
Comments : All Rights Reserved
Memory scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 0
Started registry scan
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Registry Scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 0
Started deep registry scan
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Deep registry scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 0
Started Tracking Cookie scan
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : lylou@weborama[1].txt
TAC Rating : 3
Category : Data Miner
Comment : Hits:10
Value : Cookie:lylou@weborama.fr/
Expires : 21-12-2007 15:10:48
LastSync : Hits:10
UseCount : 0
Hits : 10
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : lylou@adserver.adreactor[1].txt
TAC Rating : 3
Category : Data Miner
Comment : Hits:1
Value : Cookie:lylou@adserver.adreactor.com/
Expires : 21-12-2006 13:22:40
LastSync : Hits:1
UseCount : 0
Hits : 1
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : lylou@statcounter[2].txt
TAC Rating : 3
Category : Data Miner
Comment : Hits:3
Value : Cookie:lylou@statcounter.com/
Expires : 23-12-2010 08:43:10
LastSync : Hits:3
UseCount : 0
Hits : 3
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : lylou@estat[1].txt
TAC Rating : 3
Category : Data Miner
Comment : Hits:4
Value : Cookie:lylou@estat.com/
Expires : 19-12-2015 15:10:50
LastSync : Hits:4
UseCount : 0
Hits : 4
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : lylou@www.cibleclick[2].txt
TAC Rating : 3
Category : Data Miner
Comment : Hits:32
Value : Cookie:lylou@www.cibleclick.com/
Expires : 14-12-2035 15:12:38
LastSync : Hits:32
UseCount : 0
Hits : 32
Tracking cookie scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 5
Objects found so far: 5
Deep scanning and examining files...
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Disk Scan Result for C:\WINDOWS
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 5
Disk Scan Result for C:\WINDOWS\system32
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 5
Disk Scan Result for C:\DOCUME~1\lylou\LOCALS~1\Temp\
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 5
Scanning Hosts file......
Hosts file location:"C:\WINDOWS\system32\drivers\etc\hosts".
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Hosts file scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
1 entries scanned.
New critical objects:0
Objects found so far: 5
MRU List Object Recognized!
Location: : C:\Documents and Settings\lylou\recent
Description : list of recently opened documents
MRU List Object Recognized!
Location: : S-1-5-21-1182249341-1303445744-2746759442-1005\software\ahead\cover designer\recent file list
Description : list of recently used files in ahead cover designer
MRU List Object Recognized!
Location: : S-1-5-21-1182249341-1303445744-2746759442-1005\software\google\navclient\1.1\history
Description : list of recently used search terms in the google toolbar
MRU List Object Recognized!
Location: : software\microsoft\direct3d\mostrecentapplication
Description : most recent application to use microsoft direct3d
MRU List Object Recognized!
Location: : software\microsoft\direct3d\mostrecentapplication
Description : most recent application to use microsoft direct X
MRU List Object Recognized!
Location: : software\microsoft\directdraw\mostrecentapplication
Description : most recent application to use microsoft directdraw
MRU List Object Recognized!
Location: : S-1-5-21-1182249341-1303445744-2746759442-1005\software\microsoft\directinput\mostrecentapplication
Description : most recent application to use microsoft directinput
MRU List Object Recognized!
Location: : S-1-5-21-1182249341-1303445744-2746759442-1005\software\microsoft\directinput\mostrecentapplication
Description : most recent application to use microsoft directinput
MRU List Object Recognized!
Location: : S-1-5-21-1182249341-1303445744-2746759442-1005\software\microsoft\internet explorer
Description : last download directory used in microsoft internet explorer
MRU List Object Recognized!
Location: : S-1-5-21-1182249341-1303445744-2746759442-1005\software\microsoft\mediaplayer\player\recentfilelist
Description : list of recently used files in microsoft windows media player
MRU List Object Recognized!
Location: : S-1-5-21-1182249341-1303445744-2746759442-1005\software\microsoft\mediaplayer\preferences
Description : last playlist index loaded in microsoft windows media player
MRU List Object Recognized!
Location: : S-1-5-21-1182249341-1303445744-2746759442-1005\software\microsoft\mediaplayer\preferences
Description : last playlist loaded in microsoft windows media player
MRU List Object Recognized!
Location: : S-1-5-21-1182249341-1303445744-2746759442-1005\software\microsoft\search assistant\acmru
Description : list of recent search terms used with the search assistant
MRU List Object Recognized!
Location: : S-1-5-21-1182249341-1303445744-2746759442-1005\software\microsoft\windows\currentversion\applets\wordpad\recent file list
Description : list of recent files opened using wordpad
MRU List Object Recognized!
Location: : S-1-5-21-1182249341-1303445744-2746759442-1005\software\microsoft\windows\currentversion\explorer\comdlg32\lastvisitedmru
Description : list of recent programs opened
MRU List Object Recognized!
Location: : S-1-5-21-1182249341-1303445744-2746759442-1005\software\microsoft\windows\currentversion\explorer\comdlg32\opensavemru
Description : list of recently saved files, stored according to file extension
MRU List Object Recognized!
Location: : S-1-5-21-1182249341-1303445744-2746759442-1005\software\microsoft\windows\currentversion\explorer\recentdocs
Description : list of recent documents opened
MRU List Object Recognized!
Location: : S-1-5-21-1182249341-1303445744-2746759442-1005\software\realnetworks\realplayer\6.0\preferences
Description : list of recent skins in realplayer
MRU List Object Recognized!
Location: : S-1-5-21-1182249341-1303445744-2746759442-1005\software\realnetworks\realplayer\6.0\preferences
Description : list of recent clips in realplayer
MRU List Object Recognized!
Location: : S-1-5-21-1182249341-1303445744-2746759442-1005\software\microsoft\windows media\wmsdk\general
Description : windows media sdk
Performing conditional scans...
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Conditional scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 25
09:08:06 Scan Complete
Summary Of This Scan
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Total scanning time:00:05:27.187
Objects scanned:74004
Objects identified:5
Objects ignored:0
New critical objects:5
d-Aware SE Build 1.06r1
Logfile Created on:samedi 24 décembre 2005 09:02:39
Created with Ad-Aware SE Personal, free for private use.
Using definitions file:SE1R82 19.12.2005
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
References detected during the scan:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
MRU List(TAC index:0):20 total references
Tracking Cookie(TAC index:3):5 total references
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Ad-Aware SE Settings
===========================
Set : Search for negligible risk entries
Set : Safe mode (always request confirmation)
Set : Scan active processes
Set : Scan registry
Set : Deep-scan registry
Set : Scan my IE Favorites for banned URLs
Set : Scan my Hosts file
Extended Ad-Aware SE Settings
===========================
Set : Unload recognized processes & modules during scan
Set : Scan registry for all users instead of current user only
Set : Always try to unload modules before deletion
Set : During removal, unload Explorer and IE if necessary
Set : Let Windows remove files in use at next reboot
Set : Delete quarantined objects after restoring
Set : Include basic Ad-Aware settings in log file
Set : Include additional Ad-Aware settings in log file
Set : Include reference summary in log file
Set : Include alternate data stream details in log file
Set : Play sound at scan completion if scan locates critical objects
24-12-2005 09:02:39 - Scan started. (Smart mode)
Listing running processes
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
#:1 [smss.exe]
FilePath : \SystemRoot\System32\
ProcessID : 552
ThreadCreationTime : 24-12-2005 07:19:29
BasePriority : Normal
#:2 [csrss.exe]
FilePath : \??\C:\WINDOWS\system32\
ProcessID : 792
ThreadCreationTime : 24-12-2005 07:20:38
BasePriority : Normal
#:3 [winlogon.exe]
FilePath : \??\C:\WINDOWS\system32\
ProcessID : 816
ThreadCreationTime : 24-12-2005 07:20:39
BasePriority : High
#:4 [services.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 860
ThreadCreationTime : 24-12-2005 07:20:41
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Système d'exploitation Microsoft® Windows®
CompanyName : Microsoft Corporation
FileDescription : Applications Services et Contrôleur
InternalName : services.exe
LegalCopyright : © Microsoft Corporation. Tous droits réservés.
OriginalFilename : services.exe
#:5 [lsass.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 872
ThreadCreationTime : 24-12-2005 07:20:41
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : LSA Shell (Export Version)
InternalName : lsass.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : lsass.exe
#:6 [svchost.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 1012
ThreadCreationTime : 24-12-2005 07:20:42
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : svchost.exe
#:7 [svchost.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 1080
ThreadCreationTime : 24-12-2005 07:20:43
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : svchost.exe
#:8 [svchost.exe]
FilePath : C:\WINDOWS\System32\
ProcessID : 1112
ThreadCreationTime : 24-12-2005 07:20:43
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : svchost.exe
#:9 [svchost.exe]
FilePath : C:\WINDOWS\System32\
ProcessID : 1200
ThreadCreationTime : 24-12-2005 07:20:44
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : svchost.exe
#:10 [svchost.exe]
FilePath : C:\WINDOWS\System32\
ProcessID : 1364
ThreadCreationTime : 24-12-2005 07:20:45
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : svchost.exe
#:11 [explorer.exe]
FilePath : C:\WINDOWS\
ProcessID : 1604
ThreadCreationTime : 24-12-2005 07:20:48
BasePriority : Normal
FileVersion : 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 6.00.2900.2180
ProductName : Système d'exploitation Microsoft® Windows®
CompanyName : Microsoft Corporation
FileDescription : Explorateur Windows
InternalName : explorer
LegalCopyright : © Microsoft Corporation. Tous droits réservés.
OriginalFilename : EXPLORER.EXE
#:12 [spoolsv.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 1688
ThreadCreationTime : 24-12-2005 07:20:49
BasePriority : Normal
FileVersion : 5.1.2600.2696 (xpsp_sp2_gdr.050610-1519)
ProductVersion : 5.1.2600.2696
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Spooler SubSystem App
InternalName : spoolsv.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : spoolsv.exe
#:13 [ati2evxx.exe]
FilePath : C:\WINDOWS\System32\
ProcessID : 1780
ThreadCreationTime : 24-12-2005 07:20:50
BasePriority : Normal
#:14 [carpserv.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 2016
ThreadCreationTime : 24-12-2005 07:20:54
BasePriority : Normal
FileVersion : 6.02.05
ProductVersion : 6.02.05
ProductName : SoftK56 Modem Driver
CompanyName : Conexant Systems, Inc.
FileDescription : carpserv
InternalName : carpserv
LegalCopyright : Copyright© Conexant Systems, Inc. 2003
OriginalFilename : carpserv.exe
#:15 [svchost.exe]
FilePath : C:\WINDOWS\System32\
ProcessID : 2024
ThreadCreationTime : 24-12-2005 07:20:54
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : svchost.exe
#:16 [wrsssdk.exe]
FilePath : C:\Program Files\Webroot\Spy Sweeper\
ProcessID : 132
ThreadCreationTime : 24-12-2005 07:20:54
BasePriority : Normal
FileVersion : 2,0,8,483
ProductVersion : 2, 0
ProductName : Spy Sweeper SDK
CompanyName : Webroot Software, Inc.
FileDescription : Spy Sweeper SDK
LegalCopyright : Copyright (C) 2002 - 2005, All Rights Reserved.
LegalTrademarks : Spy Sweeper is a trademark of Webroot Software, Inc.
OriginalFilename : SpySweeper.exe
#:17 [atiptaxx.exe]
FilePath : C:\Program Files\ATI Technologies\ATI Control Panel\
ProcessID : 2044
ThreadCreationTime : 24-12-2005 07:20:54
BasePriority : Normal
FileVersion : 6.14.10.5021
ProductVersion : 6.14.10.5021
ProductName : ATI Desktop Component
CompanyName : ATI Technologies, Inc.
FileDescription : ATI Desktop Control Panel
InternalName : Atiptaxx.exe
LegalCopyright : Copyright (C) 1998-2002 ATI Technologies Inc.
OriginalFilename : Atiptaxx.exe
#:18 [vspdfprsrv.exe]
FilePath : C:\Program Files\Visage\PDF Printer\
ProcessID : 244
ThreadCreationTime : 24-12-2005 07:20:55
BasePriority : Normal
FileVersion : 2.0.0.0
ProductVersion : 1.0.0.0
ProductName : Visage PDF Printer
CompanyName : Visage Software
FileDescription : Visage PDF Printer
InternalName : vspdfprsrv.exe
LegalCopyright : Visage Software
OriginalFilename : vspdfprsrv.exe
#:19 [realsched.exe]
FilePath : C:\Program Files\Fichiers communs\Real\Update_OB\
ProcessID : 308
ThreadCreationTime : 24-12-2005 07:20:56
BasePriority : Normal
FileVersion : 0.1.0.3427
ProductVersion : 0.1.0.3427
ProductName : RealPlayer (32-bit)
CompanyName : RealNetworks, Inc.
FileDescription : RealNetworks Scheduler
InternalName : schedapp
LegalCopyright : Copyright © RealNetworks, Inc. 1995-2004
LegalTrademarks : RealAudio(tm) is a trademark of RealNetworks, Inc.
OriginalFilename : realsched.exe
#:20 [zlclient.exe]
FilePath : C:\Program Files\Zone Labs\ZoneAlarm\
ProcessID : 420
ThreadCreationTime : 24-12-2005 07:20:56
BasePriority : Normal
FileVersion : 5.5.109.000
ProductVersion : 5.5.109.000
ProductName : Zone Labs Client
CompanyName : Zone Labs, LLC
FileDescription : Zone Labs Client
InternalName : zlclient
LegalCopyright : Copyright © 1998-2005, Zone Labs, LLC
OriginalFilename : zlclient.exe
#:21 [nmbgmonitor.exe]
FilePath : C:\Program Files\Fichiers communs\Ahead\lib\
ProcessID : 476
ThreadCreationTime : 24-12-2005 07:20:58
BasePriority : Normal
#:22 [vsmon.exe]
FilePath : C:\WINDOWS\system32\ZONELABS\
ProcessID : 180
ThreadCreationTime : 24-12-2005 07:21:08
BasePriority : Normal
FileVersion : 5.5.109.000
ProductVersion : 5.5.109.000
ProductName : TrueVector Service
CompanyName : Zone Labs, LLC
FileDescription : TrueVector Service
InternalName : vsmon
LegalCopyright : Copyright © 1998-2005, Zone Labs, LLC
OriginalFilename : vsmon.exe
#:23 [mspmspsv.exe]
FilePath : C:\WINDOWS\System32\
ProcessID : 216
ThreadCreationTime : 24-12-2005 07:21:10
BasePriority : Normal
FileVersion : 7.01.00.3055
ProductVersion : 7.01.00.3055
ProductName : Microsoft (R) DRM
CompanyName : Microsoft Corporation
FileDescription : WMDM PMSP Service
InternalName : MSPMSPSV.EXE
LegalCopyright : Copyright (C) Microsoft Corp. 1981-2000
OriginalFilename : MSPMSPSV.EXE
#:24 [erobar.exe]
FilePath : C:\PROGRA~1\EUROBA~1\
ProcessID : 1152
ThreadCreationTime : 24-12-2005 07:21:23
BasePriority : Normal
FileVersion : 2.00
ProductVersion : 2.00
ProductName : EUROBARRE
CompanyName : EUROBARRE
InternalName : erobar
LegalCopyright : EUROBARRE 2003
OriginalFilename : erobar.exe
Comments : Eurobarre V2
#:25 [firefox.exe]
FilePath : C:\Program Files\Mozilla Firefox\
ProcessID : 2424
ThreadCreationTime : 24-12-2005 07:21:45
BasePriority : Normal
#:26 [alg.exe]
FilePath : C:\WINDOWS\System32\
ProcessID : 2624
ThreadCreationTime : 24-12-2005 07:21:48
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Application Layer Gateway Service
InternalName : ALG.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : ALG.exe
#:27 [mmc.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 3324
ThreadCreationTime : 24-12-2005 07:31:00
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Système d'exploitation Microsoft® Windows®
CompanyName : Microsoft Corporation
FileDescription : Microsoft Management Console
InternalName : mmc.exe
LegalCopyright : © Microsoft Corporation. Tous droits réservés.
OriginalFilename : mmc.exe
#:28 [dfrgfat.exe]
FilePath : C:\WINDOWS\system32\
ProcessID : 2852
ThreadCreationTime : 24-12-2005 08:00:29
BasePriority : Normal
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
ProductName : Défragmenteur de disque Windows
CompanyName : Microsoft Corp. et Executive Software International, Inc.
FileDescription : Module Système de fichiers FAT du défragmenteur de disque
InternalName : DFRGFAT.EXE
LegalCopyright : ©2001 Microsoft Corp. et Executive Software Int'l, Inc.
OriginalFilename : DFRGFAT.EXE
#:29 [a2start.exe]
FilePath : C:\Program Files\a-squared\
ProcessID : 336
ThreadCreationTime : 24-12-2005 08:02:05
BasePriority : Normal
#:30 [a2scan.exe]
FilePath : C:\Program Files\a-squared\
ProcessID : 2200
ThreadCreationTime : 24-12-2005 08:02:10
BasePriority : Normal
#:31 [ad-aware.exe]
FilePath : C:\Program Files\Lavasoft\Ad-Aware SE Personal\
ProcessID : 1580
ThreadCreationTime : 24-12-2005 08:02:28
BasePriority : Normal
FileVersion : 6.2.0.236
ProductVersion : SE 106
ProductName : Lavasoft Ad-Aware SE
CompanyName : Lavasoft Sweden
FileDescription : Ad-Aware SE Core application
InternalName : Ad-Aware.exe
LegalCopyright : Copyright © Lavasoft AB Sweden
OriginalFilename : Ad-Aware.exe
Comments : All Rights Reserved
Memory scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 0
Started registry scan
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Registry Scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 0
Started deep registry scan
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Deep registry scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 0
Started Tracking Cookie scan
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : lylou@weborama[1].txt
TAC Rating : 3
Category : Data Miner
Comment : Hits:10
Value : Cookie:lylou@weborama.fr/
Expires : 21-12-2007 15:10:48
LastSync : Hits:10
UseCount : 0
Hits : 10
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : lylou@adserver.adreactor[1].txt
TAC Rating : 3
Category : Data Miner
Comment : Hits:1
Value : Cookie:lylou@adserver.adreactor.com/
Expires : 21-12-2006 13:22:40
LastSync : Hits:1
UseCount : 0
Hits : 1
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : lylou@statcounter[2].txt
TAC Rating : 3
Category : Data Miner
Comment : Hits:3
Value : Cookie:lylou@statcounter.com/
Expires : 23-12-2010 08:43:10
LastSync : Hits:3
UseCount : 0
Hits : 3
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : lylou@estat[1].txt
TAC Rating : 3
Category : Data Miner
Comment : Hits:4
Value : Cookie:lylou@estat.com/
Expires : 19-12-2015 15:10:50
LastSync : Hits:4
UseCount : 0
Hits : 4
Tracking Cookie Object Recognized!
Type : IECache Entry
Data : lylou@www.cibleclick[2].txt
TAC Rating : 3
Category : Data Miner
Comment : Hits:32
Value : Cookie:lylou@www.cibleclick.com/
Expires : 14-12-2035 15:12:38
LastSync : Hits:32
UseCount : 0
Hits : 32
Tracking cookie scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 5
Objects found so far: 5
Deep scanning and examining files...
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Disk Scan Result for C:\WINDOWS
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 5
Disk Scan Result for C:\WINDOWS\system32
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 5
Disk Scan Result for C:\DOCUME~1\lylou\LOCALS~1\Temp\
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 5
Scanning Hosts file......
Hosts file location:"C:\WINDOWS\system32\drivers\etc\hosts".
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Hosts file scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
1 entries scanned.
New critical objects:0
Objects found so far: 5
MRU List Object Recognized!
Location: : C:\Documents and Settings\lylou\recent
Description : list of recently opened documents
MRU List Object Recognized!
Location: : S-1-5-21-1182249341-1303445744-2746759442-1005\software\ahead\cover designer\recent file list
Description : list of recently used files in ahead cover designer
MRU List Object Recognized!
Location: : S-1-5-21-1182249341-1303445744-2746759442-1005\software\google\navclient\1.1\history
Description : list of recently used search terms in the google toolbar
MRU List Object Recognized!
Location: : software\microsoft\direct3d\mostrecentapplication
Description : most recent application to use microsoft direct3d
MRU List Object Recognized!
Location: : software\microsoft\direct3d\mostrecentapplication
Description : most recent application to use microsoft direct X
MRU List Object Recognized!
Location: : software\microsoft\directdraw\mostrecentapplication
Description : most recent application to use microsoft directdraw
MRU List Object Recognized!
Location: : S-1-5-21-1182249341-1303445744-2746759442-1005\software\microsoft\directinput\mostrecentapplication
Description : most recent application to use microsoft directinput
MRU List Object Recognized!
Location: : S-1-5-21-1182249341-1303445744-2746759442-1005\software\microsoft\directinput\mostrecentapplication
Description : most recent application to use microsoft directinput
MRU List Object Recognized!
Location: : S-1-5-21-1182249341-1303445744-2746759442-1005\software\microsoft\internet explorer
Description : last download directory used in microsoft internet explorer
MRU List Object Recognized!
Location: : S-1-5-21-1182249341-1303445744-2746759442-1005\software\microsoft\mediaplayer\player\recentfilelist
Description : list of recently used files in microsoft windows media player
MRU List Object Recognized!
Location: : S-1-5-21-1182249341-1303445744-2746759442-1005\software\microsoft\mediaplayer\preferences
Description : last playlist index loaded in microsoft windows media player
MRU List Object Recognized!
Location: : S-1-5-21-1182249341-1303445744-2746759442-1005\software\microsoft\mediaplayer\preferences
Description : last playlist loaded in microsoft windows media player
MRU List Object Recognized!
Location: : S-1-5-21-1182249341-1303445744-2746759442-1005\software\microsoft\search assistant\acmru
Description : list of recent search terms used with the search assistant
MRU List Object Recognized!
Location: : S-1-5-21-1182249341-1303445744-2746759442-1005\software\microsoft\windows\currentversion\applets\wordpad\recent file list
Description : list of recent files opened using wordpad
MRU List Object Recognized!
Location: : S-1-5-21-1182249341-1303445744-2746759442-1005\software\microsoft\windows\currentversion\explorer\comdlg32\lastvisitedmru
Description : list of recent programs opened
MRU List Object Recognized!
Location: : S-1-5-21-1182249341-1303445744-2746759442-1005\software\microsoft\windows\currentversion\explorer\comdlg32\opensavemru
Description : list of recently saved files, stored according to file extension
MRU List Object Recognized!
Location: : S-1-5-21-1182249341-1303445744-2746759442-1005\software\microsoft\windows\currentversion\explorer\recentdocs
Description : list of recent documents opened
MRU List Object Recognized!
Location: : S-1-5-21-1182249341-1303445744-2746759442-1005\software\realnetworks\realplayer\6.0\preferences
Description : list of recent skins in realplayer
MRU List Object Recognized!
Location: : S-1-5-21-1182249341-1303445744-2746759442-1005\software\realnetworks\realplayer\6.0\preferences
Description : list of recent clips in realplayer
MRU List Object Recognized!
Location: : S-1-5-21-1182249341-1303445744-2746759442-1005\software\microsoft\windows media\wmsdk\general
Description : windows media sdk
Performing conditional scans...
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Conditional scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 25
09:08:06 Scan Complete
Summary Of This Scan
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Total scanning time:00:05:27.187
Objects scanned:74004
Objects identified:5
Objects ignored:0
New critical objects:5
bon et bien j ai reussi a degfragmenter mon pc
il en avait besoin vue les fichiers rouges defragmenter
il en avait besoin vue les fichiers rouges defragmenter
et bien merci pour tout je suis tout ce que tu me dit et je continue la suite
merci encore
poutous
lylou
merci encore
poutous
lylou
bon et bien j ai tout scaneeer que dalle
rien pas de virus
mais on m a dit que cela pourrait provenir de ma carte memoire qui serait peut etre usé
comment savoir?
rien pas de virus
mais on m a dit que cela pourrait provenir de ma carte memoire qui serait peut etre usé
comment savoir?
bjr
"rien pas de virus " eheh suis moins sur
fais ceci exactement
Télécharge ceci: (merci a S!RI pour ce petit programme).
http://siri.urz.free.fr/Fix/SmitfraudFix.zip
Exécute le, Double click sur Smitfraudfix.cmd choisit l’option 1, il va générer un rapport
Copie/colle le sur le poste stp.
----------------------------------------------------------------------------
Démarre en mode sans échec :
Pour cela, tu tapotes la touche F8 dès le début de l’allumage du pc sans t’arrêter
Une fenêtre va s’ouvrir tu te déplaces avec les flèches du clavier sur démarrer en mode sans échec puis tape entrée.
Une fois sur le bureau s’il n’y a pas toutes les couleurs et autres c’est normal !
(Si F8 ne marche pas utilise la touche F5).
----------------------------------------------------------------------------
Relance le programme Smitfraud,
Cette fois choisit l’option 2, répond oui a tous ;
Sauvegarde le rapport, Redémarre en mode normal, copie/colle le rapport sauvegardé sur le forum
"rien pas de virus " eheh suis moins sur
fais ceci exactement
Télécharge ceci: (merci a S!RI pour ce petit programme).
http://siri.urz.free.fr/Fix/SmitfraudFix.zip
Exécute le, Double click sur Smitfraudfix.cmd choisit l’option 1, il va générer un rapport
Copie/colle le sur le poste stp.
----------------------------------------------------------------------------
Démarre en mode sans échec :
Pour cela, tu tapotes la touche F8 dès le début de l’allumage du pc sans t’arrêter
Une fenêtre va s’ouvrir tu te déplaces avec les flèches du clavier sur démarrer en mode sans échec puis tape entrée.
Une fois sur le bureau s’il n’y a pas toutes les couleurs et autres c’est normal !
(Si F8 ne marche pas utilise la touche F5).
----------------------------------------------------------------------------
Relance le programme Smitfraud,
Cette fois choisit l’option 2, répond oui a tous ;
Sauvegarde le rapport, Redémarre en mode normal, copie/colle le rapport sauvegardé sur le forum
mitFraudFix v2.11
Rapport fait à 11:12:45,95 le 01/01/2006
Executé à partir de C:\Documents and Settings\lylou\Bureau\SmitfraudFix\SmitfraudFix
OS: Microsoft Windows XP [version 5.1.2600]
»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\
»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\WINDOWS
»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\WINDOWS\system
»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\WINDOWS\Web
»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\WINDOWS\system32
»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\WINDOWS\system32\LogFiles
»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\Documents and Settings\lylou\Application Data
»»»»»»»»»»»»»»»»»»»»»»»» Recherche Menu Démarrer
»»»»»»»»»»»»»»»»»»»»»»»» Recherche Bureau
»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\Program Files
»»»»»»»»»»»»»»»»»»»»»»»» Recherche présence de clés corrompues
»»»»»»»»»»»»»»»»»»»»»»»» Recherche éléments du bureau
»»»»»»»»»»»»»»»»»»»»»»»» Recherche Sharedtaskscheduler
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler]
"{438755C2-A8BA-11D1-B96B-00A0C90312E1}"="Pr‚-chargeur Browseui"
"{8C7461EF-2B13-11d2-BE35-3078302C2030}"="D‚mon de cache des cat‚gories de composant"
»»»»»»»»»»»»»»»»»»»»»»»» Recherche infection wininet.dll
»»»»»»»»»»»»»»»»»»»»»»»» Fin du rapport
Rapport fait à 11:12:45,95 le 01/01/2006
Executé à partir de C:\Documents and Settings\lylou\Bureau\SmitfraudFix\SmitfraudFix
OS: Microsoft Windows XP [version 5.1.2600]
»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\
»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\WINDOWS
»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\WINDOWS\system
»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\WINDOWS\Web
»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\WINDOWS\system32
»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\WINDOWS\system32\LogFiles
»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\Documents and Settings\lylou\Application Data
»»»»»»»»»»»»»»»»»»»»»»»» Recherche Menu Démarrer
»»»»»»»»»»»»»»»»»»»»»»»» Recherche Bureau
»»»»»»»»»»»»»»»»»»»»»»»» Recherche C:\Program Files
»»»»»»»»»»»»»»»»»»»»»»»» Recherche présence de clés corrompues
»»»»»»»»»»»»»»»»»»»»»»»» Recherche éléments du bureau
»»»»»»»»»»»»»»»»»»»»»»»» Recherche Sharedtaskscheduler
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler]
"{438755C2-A8BA-11D1-B96B-00A0C90312E1}"="Pr‚-chargeur Browseui"
"{8C7461EF-2B13-11d2-BE35-3078302C2030}"="D‚mon de cache des cat‚gories de composant"
»»»»»»»»»»»»»»»»»»»»»»»» Recherche infection wininet.dll
»»»»»»»»»»»»»»»»»»»»»»»» Fin du rapport
ET VOICI MON RAPPORT EN MODE SANS ECHEC
itFraudFix v2.11
Rapport fait à 11:26:23,57 le 01/01/2006
Executé à partir de C:\Documents and Settings\lylou\Bureau\SmitfraudFix\SmitfraudFix
OS: Microsoft Windows XP [version 5.1.2600]
»»»»»»»»»»»»»»»»»»»»»»»» Arret des processus
»»»»»»»»»»»»»»»»»»»»»»»» Suppression des fichiers infectés
»»»»»»»»»»»»»»»»»»»»»»»» Nettoyage du registre
Nettoyage terminé.
»»»»»»»»»»»»»»»»»»»»»»»» Fin du rapport
itFraudFix v2.11
Rapport fait à 11:26:23,57 le 01/01/2006
Executé à partir de C:\Documents and Settings\lylou\Bureau\SmitfraudFix\SmitfraudFix
OS: Microsoft Windows XP [version 5.1.2600]
»»»»»»»»»»»»»»»»»»»»»»»» Arret des processus
»»»»»»»»»»»»»»»»»»»»»»»» Suppression des fichiers infectés
»»»»»»»»»»»»»»»»»»»»»»»» Nettoyage du registre
Nettoyage terminé.
»»»»»»»»»»»»»»»»»»»»»»»» Fin du rapport
hello
des corrections ont été apportées
est ce que cela va mieux ?
fais ceci
http://www.01net.com/telecharger/windows/Internet/internet_utlitaire/fiches/29061.html
http://pageperso.aol.fr/balltrap34/demohijack.htm
colle rapport ici
des corrections ont été apportées
est ce que cela va mieux ?
fais ceci
http://www.01net.com/telecharger/windows/Internet/internet_utlitaire/fiches/29061.html
http://pageperso.aol.fr/balltrap34/demohijack.htm
colle rapport ici
Logfile of HijackThis v1.99.1
Scan saved at 19:06:46, on 01/01/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
C:\WINDOWS\system32\carpserv.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Visage\PDF Printer\vspdfprsrv.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files\MessengerPlus! 3\MsgPlus.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe
C:\Program Files\SAGEM Wi-Fi USB 802.11g\WLANUTL.exe
C:\WINDOWS\system32\ZONELABS\vsmon.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\WINDOWS\System32\svchost.exe
C:\PROGRA~1\EUROBA~1\erobar.exe
C:\Program Files\eChanblard\emule.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\lylou\Mes documents\logiciels\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.wanadoo.fr/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: IEHlprObj Class - {F62A47A7-4CA3-9D00-95A3-6724d43a9E8C} - LineAudio.dll (file missing)
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [CARPService] carpserv.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [RoxioEngineUtility] "C:\Program Files\Fichiers communs\Roxio Shared\System\EngUtil.exe"
O4 - HKLM\..\Run: [KAVPersonal50] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\kav.exe" /minimize
O4 - HKLM\..\Run: [vspdfprsrv.exe] C:\Program Files\Visage\PDF Printer\vspdfprsrv.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\System32\NeroCheck.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [Zone Labs Client] C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe"
O4 - Startup: Eurobarre.lnk = C:\Program Files\eurobarre\eb.exe
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Utilitaire réseau pour SAGEM Wi-Fi 11g USB adapter.lnk = ?
O8 - Extra context menu item: &Traduire à partir de l'anglais - res://C:\Program Files\Google\GoogleToolbar1.dll/cmwordtrans.html
O8 - Extra context menu item: Pages liées - res://C:\Program Files\Google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Pages similaires - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Recherche &Google - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: Version de la page actuelle disponible dans le cache Google - res://C:\Program Files\Google\GoogleToolbar1.dll/cmcache.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {193C772A-87BE-4B19-A7BB-445B226FE9A1} (ewidoOnlineScan Control) - http://download.ewido.net/ewidoOnlineScan.cab
O16 - DPF: {31E68DE2-5548-4B23-88F0-C51E6A0F695E} (Microsoft PID Sniffer) - https://support.microsoft.com/OAS/ActiveX/odc.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan8/oscan8.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1135075287703
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1135990889984
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2005111401/housecall.trendmicro.com/housecall/xscan53.cab
O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - http://charon777.free.fr/plugins/hardwaredetection.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - AppInit_DLLs: MsgPlusLoader.dll
O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: kavsvc - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\kavsvc.exe
O23 - Service: Webroot Spy Sweeper Engine (svcWRSSSDK) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZONELABS\vsmon.exe
OUI CA A L AIR MIEUX IL BEUG MOINS MAIS TOUJOURS DES PETIT DEFAUT UN PEU LENT ET SURTOUT AVEC INTERNET EXPLORER IL M A MARQUER
INTERNET EXPLORER A RENCONTRE UN PROBLEME AVEC UN MODULE COMPLEMENTAIRE ET DOIT FERMER
Scan saved at 19:06:46, on 01/01/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
C:\WINDOWS\system32\carpserv.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Visage\PDF Printer\vspdfprsrv.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files\MessengerPlus! 3\MsgPlus.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe
C:\Program Files\SAGEM Wi-Fi USB 802.11g\WLANUTL.exe
C:\WINDOWS\system32\ZONELABS\vsmon.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\WINDOWS\System32\svchost.exe
C:\PROGRA~1\EUROBA~1\erobar.exe
C:\Program Files\eChanblard\emule.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\lylou\Mes documents\logiciels\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.wanadoo.fr/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: IEHlprObj Class - {F62A47A7-4CA3-9D00-95A3-6724d43a9E8C} - LineAudio.dll (file missing)
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [CARPService] carpserv.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [RoxioEngineUtility] "C:\Program Files\Fichiers communs\Roxio Shared\System\EngUtil.exe"
O4 - HKLM\..\Run: [KAVPersonal50] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\kav.exe" /minimize
O4 - HKLM\..\Run: [vspdfprsrv.exe] C:\Program Files\Visage\PDF Printer\vspdfprsrv.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\System32\NeroCheck.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [Zone Labs Client] C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe"
O4 - Startup: Eurobarre.lnk = C:\Program Files\eurobarre\eb.exe
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Utilitaire réseau pour SAGEM Wi-Fi 11g USB adapter.lnk = ?
O8 - Extra context menu item: &Traduire à partir de l'anglais - res://C:\Program Files\Google\GoogleToolbar1.dll/cmwordtrans.html
O8 - Extra context menu item: Pages liées - res://C:\Program Files\Google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Pages similaires - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Recherche &Google - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: Version de la page actuelle disponible dans le cache Google - res://C:\Program Files\Google\GoogleToolbar1.dll/cmcache.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {193C772A-87BE-4B19-A7BB-445B226FE9A1} (ewidoOnlineScan Control) - http://download.ewido.net/ewidoOnlineScan.cab
O16 - DPF: {31E68DE2-5548-4B23-88F0-C51E6A0F695E} (Microsoft PID Sniffer) - https://support.microsoft.com/OAS/ActiveX/odc.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan8/oscan8.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1135075287703
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1135990889984
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2005111401/housecall.trendmicro.com/housecall/xscan53.cab
O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - http://charon777.free.fr/plugins/hardwaredetection.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - AppInit_DLLs: MsgPlusLoader.dll
O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: kavsvc - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\kavsvc.exe
O23 - Service: Webroot Spy Sweeper Engine (svcWRSSSDK) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZONELABS\vsmon.exe
OUI CA A L AIR MIEUX IL BEUG MOINS MAIS TOUJOURS DES PETIT DEFAUT UN PEU LENT ET SURTOUT AVEC INTERNET EXPLORER IL M A MARQUER
INTERNET EXPLORER A RENCONTRE UN PROBLEME AVEC UN MODULE COMPLEMENTAIRE ET DOIT FERMER
bsr
avant toute chose
vire-moi cette saloperie de msn+ qui te contamine sans cesse
fixe toutes les lignes 016 - elles repositionneront à la demande de ton surf
pour le reste, faut que je lise en détail - patience
avant toute chose
vire-moi cette saloperie de msn+ qui te contamine sans cesse
fixe toutes les lignes 016 - elles repositionneront à la demande de ton surf
pour le reste, faut que je lise en détail - patience
OK!! MERCI BIEN J AI VIRE MSN PLUS JE SAVAIS PAS QUE C ETAIT UNE SALOPERIE ET FIXER LES LIGNES 016
OK JE T ATTEND MERCI ENCORE
LYLOU
OK JE T ATTEND MERCI ENCORE
LYLOU
bjr lyl
pas de MAJ stp (voir charte)
-----
as-tu ewido, spycatcher & a2 ?
si non, au boulot et fais fonctionner, donne résultats
a-squared
http://www.emsisoft.net/fr/software/download/
ewido (dowload)
http://www.ewido.net/fr/download/
spycatcher express free
http://www.tenebril.com/downloads/
--------
as-tu un nettoyeur de registre ?
regcleaner ( nettoyeur de registre)
http://www.01net.com/windows/Utilitaire/nettoyeurs_et_installeurs/fiches/4894.html
------------
cleanup40 nettoie cookies,historiqye,temps,tempos,prefetch,etc....
http://pageperso.aol.fr/balltrap34/democleanup.htm
¤Télécharger CleanUp40 (qui élimine les fichiers temporaires) sur ce lien : http://pageperso.aol.fr/Balltrap34/CleanUp40.exe
-----------
aprés cela redonne un hijack
pas de MAJ stp (voir charte)
-----
as-tu ewido, spycatcher & a2 ?
si non, au boulot et fais fonctionner, donne résultats
a-squared
http://www.emsisoft.net/fr/software/download/
ewido (dowload)
http://www.ewido.net/fr/download/
spycatcher express free
http://www.tenebril.com/downloads/
--------
as-tu un nettoyeur de registre ?
regcleaner ( nettoyeur de registre)
http://www.01net.com/windows/Utilitaire/nettoyeurs_et_installeurs/fiches/4894.html
------------
cleanup40 nettoie cookies,historiqye,temps,tempos,prefetch,etc....
http://pageperso.aol.fr/balltrap34/democleanup.htm
¤Télécharger CleanUp40 (qui élimine les fichiers temporaires) sur ce lien : http://pageperso.aol.fr/Balltrap34/CleanUp40.exe
-----------
aprés cela redonne un hijack