Ereure svchoste !!!!!

Fermé
bigbos120 Messages postés 30 Date d'inscription dimanche 5 septembre 2010 Statut Membre Dernière intervention 18 septembre 2014 - 20 nov. 2010 à 16:23
bigbos120 Messages postés 30 Date d'inscription dimanche 5 septembre 2010 Statut Membre Dernière intervention 18 septembre 2014 - 27 nov. 2010 à 16:16
Bonjour, je cherche comment desactivé ou repare ereurr svchoste

svp aide moi

ce sie le lien d'eurre http://img703.imageshack.us/img703/5404/ereuresvchoste.png

19 réponses

Malekal_morte- Messages postés 180230 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 626
Modifié par Malekal_morte- le 20/11/2010 à 23:50
OK c'est le TDSS avec le job...

Fais ça - Lis tout avant de le faire - car tu peux perdre internet - note les instructions pour les DNS/Serveurs de noms :

Relance OTL.
o sous Personnalisation, copie_colle le contenu du cadre ci dessous et clic Correction, un rapport apparraitra suite à l'operation que tu conserveras sur clé usb par exemple afin d'en coller le resultat:

:OTL
PRC - [2010/11/20 15:46:43 | 000,011,776 | ---- | M] () -- C:\Documents and Settings\adam\Local Settings\Temp\wintsgg.exe
PRC - [2010/10/30 17:16:39 | 000,421,888 | ---- | M] (Radical Software Ltd.) -- D:\Program Files\Wyzo\wyzo.exe
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 93.188.162.88,93.188.161.228
[2010/11/11 20:14:11 | 000,000,000 | ---D | C] -- C:\Documents and Settings\adam\Mes documents\yosra
[2010/11/07 14:07:18 | 000,000,000 | ---D | C] -- C:\Documents and Settings\adam\Mes documents\atef
[2010/11/07 00:23:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\adam\Application Data\Bc


* redemarre le pc sous windows et poste le rapport ici

Attention si tu as plus de connexion - mettre la config réseau sur les serveurs de noms en "obtenir les serveurs de noms automatiquement".
Voir explications et captures sur le paragraphe "Les problèmes de résolution DNS" de cette page :
https://forum.malekal.com/viewtopic.php?t=21222&start=

~~

Ensuite.... ménage time :
T'as Search Settings, c'est un adware, désinstalle le - voir : https://forum.malekal.com/viewtopic.php?t=21599&start=
T'as des barres d'outils Conduit, Jookz Toolbar ça sert à rien....
Désinstalle les ça bouffe des ressources.


C:\Documents and Settings\adam\Application Data\PriceGong <= kaka à virer...

owi........... cache ton IP et donne moi tes mots de passe....
arnaque.... lire : https://forum.malekal.com/viewtopic.php?t=15059&start=
C:\Documents and Settings\All Users\Application Data\FreeHideIP
C:\Documents and Settings\adam\Application Data\FreeHideIP
C:\Documents and Settings\All Users\Application Data\PlatinumHideIP
C:\Documents and Settings\adam\Application Data\PlatinumHideIP

DriverCure <= ....

Sérieux arrete les trucs ParetoLogic...

En 3 mots : arrete d'installer n'importe quoi.
Faut pas t'étonner si ta machine est pourrie ensuite.

~~~

Télécharge et installe Malwarebyte : https://www.malekal.com/tutoriel-malwarebyte-anti-malware/
Mets le à jour, fais un scan, supprime tout et poste le rapport ici.


et

Fais un scan NOD32 et poste le rapport ici :

https://www.malekal.com/scan-antivirus-ligne-nod32/#NOD32

Proverbe Chinois : "Si tu sais mettre un bonnet sur la tete, tu sais mettre une capote"
3
Malekal_morte- Messages postés 180230 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 626
20 nov. 2010 à 16:28
Salut,

Ca peux venir de plein de choses.
Infection.
Appli qui plante
Prb matériel (barrette mémoire qui merdouille).


Salut,

Passe un coup de TDSSKiller : https://forum.malekal.com/viewtopic.php?t=28637&start=
Poste le rapport ici.


puis :

Tu peux suivre les indications de cette page pour t'aider : https://www.malekal.com/tutorial-otl/

* Télécharge http://www.geekstogo.com/forum/files/file/398-otl-oldtimers-list-it/ sur ton bureau.
(Sous Vista/Win7, il faut cliquer droit sur OTL et choisir Exécuter en tant qu'administrateur)

* Lance OTL
* Sous Peronnalisation, copie-colle ce qu'il y a dans le cadre ci-dessous :
netsvcs
msconfig
safebootminimal
safebootnetwork
activex
drivers32
%ALLUSERSPROFILE%Application Data*.
%ALLUSERSPROFILE%Application Data*.exe /s
%APPDATA%*.
%APPDATA%*.exe /s
%SYSTEMDRIVE%*.exe
%systemroot%*. /mp /s
%systemroot%system32*.dll /lockedfiles
%systemroot%Tasks*.job /lockedfiles
%systemroot%system32drivers*.sys /lockedfiles
%systemroot%System32config*.sav
/md5start
explorer.exe
winlogon.exe
wininit.exe
/md5stop
CREATERESTOREPOINT

* Clique sur le bouton Analyse.
* Quand le scan est fini, utilise le site http://www.cijoint.fr/ pour me donner les deux rapports : OTL.Txt et Extras.Txt.
2
Malekal_morte- Messages postés 180230 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 626
20 nov. 2010 à 17:13
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 93.188.162.88,93.188.161.228

t'es infecté par TDSS.

donc j'attends le rapport TDSSKiller comme cela était demandé.
1
Malekal_morte- Messages postés 180230 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 626
21 nov. 2010 à 23:43
Est-ce que tu as encore des plantages?
Fais le ménage des progs cités si c'est pas fait.

A la limite demain, tu mets à jour Malwarebyte et tu fais un scan rapide histoire de.

Refais un scan OTL demain avec les paramètres comme la première fois : https://forums.commentcamarche.net/forum/affich-19898101-ereure-svchoste#1
et tu envoies bien les rapports sur cijoint.

1

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
bigbos120 Messages postés 30 Date d'inscription dimanche 5 septembre 2010 Statut Membre Dernière intervention 18 septembre 2014
20 nov. 2010 à 17:12
merci pour ta reponce


rapport OTL.Txt

http://www.cijoint.fr/cjlink.php?file=cj201011/cijZ5hSwXM.txt

rapport Extras.Txt.

http://www.cijoint.fr/cjlink.php?file=cj201011/cijKWIo98d.txt
0
bigbos120 Messages postés 30 Date d'inscription dimanche 5 septembre 2010 Statut Membre Dernière intervention 18 septembre 2014
20 nov. 2010 à 23:32
le rapport de TDSSKiller

http://www.cijoint.fr/cjlink.php?file=cj201011/cijtGZqF7u.txt

apres je fais comment ?
0
bigbos120 Messages postés 30 Date d'inscription dimanche 5 septembre 2010 Statut Membre Dernière intervention 18 septembre 2014
21 nov. 2010 à 02:45
le rapport Malwarebyte



Malwarebytes' Anti-Malware 1.46
www.malwarebytes.org

Version de la base de données: 4052

Windows 5.1.2600 Service Pack 2
Internet Explorer 6.0.2900.2180

21/11/2010 02:37:11
mbam-log-2010-11-21 (02-37-11).txt

Type d'examen: Examen complet (C:\|D:\|)
Elément(s) analysé(s): 229629
Temps écoulé: 42 minute(s), 17 seconde(s)

Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 3
Valeur(s) du Registre infectée(s): 0
Elément(s) de données du Registre infecté(s): 10
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 2

Processus mémoire infecté(s):
(Aucun élément nuisible détecté)

Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)

Clé(s) du Registre infectée(s):
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{f334c7b0-8774-4d5b-bd7a-4f448d03a1ae} (Adware.SkyLab) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{2863e737-dd3f-4280-9af8-e9e79c16f312} (Adware.SkyMediaPack) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\Recherche avec cherche.us (Redir.ChercheUs) -> Quarantined and deleted successfully.

Valeur(s) du Registre infectée(s):
(Aucun élément nuisible détecté)

Elément(s) de données du Registre infecté(s):
HKEY_CLASSES_ROOT\regfile\shell\open\command\(default) (Broken.OpenCommand) -> Bad: ("regedit.exe" "%1") Good: (regedit.exe "%1") -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Main\Start Page_bak (Hijack.StartPage) -> Bad: (http://www.cherche.us) Good: (http://www.google.com) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Main\Default_Search_URL (Hijack.SearchPage) -> Bad: (http://ww12.cherche.us Good: (http://www.google.com) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\UpdatesDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\DisableRegistryTools (Hijack.Regedit) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\DisableTaskMgr (Hijack.TaskManager) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{056b7d65-bcfb-41a6-97af-36732457bec2}\NameServer (Trojan.DNSChanger) -> Data: 93.188.162.88,93.188.161.228 -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{49149781-9bcb-4e59-a94d-dd432c8a4cb9}\NameServer (Trojan.DNSChanger) -> Data: 93.188.162.88,93.188.161.228 -> Quarantined and deleted successfully.

Dossier(s) infecté(s):
(Aucun élément nuisible détecté)

Fichier(s) infecté(s):
C:\Documents and Settings\adam\Mes documents\SaveTubeVideo\_Work\Updater.exe (Trojan.Zlob) -> Quarantined and deleted successfully.
C:\Program Files\SaveTubeVideo.com\SaveTubeVideo\Updater.exe (Trojan.Zlob) -> Quarantined and deleted successfully.
0
Malekal_morte- Messages postés 180230 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 626
21 nov. 2010 à 10:03
manque le rapport de suppression d'OTL.
Tu l'as fait ?
0
bigbos120 Messages postés 30 Date d'inscription dimanche 5 septembre 2010 Statut Membre Dernière intervention 18 septembre 2014
21 nov. 2010 à 13:57
le rappot d 'OTL



OTL logfile created on: 20/11/2010 16:52:53 - Run 1
OTL by OldTimer - Version 3.2.17.3 Folder = C:\Documents and Settings\adam\Mes documents\Downloads
Windows XP Professional Edition Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 6.0.2900.2180)
Locale: 0000040C | Country: France | Language: FRA | Date Format: dd/MM/yyyy

511,00 Mb Total Physical Memory | 73,00 Mb Available Physical Memory | 14,00% Memory free
1,00 Gb Paging File | 1,00 Gb Available in Paging File | 50,00% Paging File free
Paging file location(s): C:\pagefile.sys 768 1536 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 20,06 Gb Total Space | 7,18 Gb Free Space | 35,81% Space Free | Partition Type: NTFS
Drive D: | 60,00 Gb Total Space | 34,22 Gb Free Space | 57,02% Space Free | Partition Type: NTFS
Drive E: | 49,03 Gb Total Space | 17,47 Gb Free Space | 35,63% Space Free | Partition Type: NTFS

Computer Name: JENHANI | User Name: adam | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

[color=#E56717]========== Processes (SafeList) ==========[/color]

PRC - [2010/11/20 16:36:53 | 000,575,488 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\adam\Mes documents\Downloads\OTL.exe
PRC - [2010/11/20 15:46:43 | 000,011,776 | ---- | M] () -- C:\Documents and Settings\adam\Local Settings\Temp\wintsgg.exe
PRC - [2010/10/30 17:16:39 | 000,421,888 | ---- | M] (Radical Software Ltd.) -- D:\Program Files\Wyzo\wyzo.exe
PRC - [2010/10/30 17:16:35 | 000,008,704 | ---- | M] (Mozilla Corporation) -- D:\Program Files\Wyzo\plugin-container.exe
PRC - [2010/10/25 22:20:06 | 000,667,648 | ---- | M] (Ralink Technology, Corp.) -- C:\WINDOWS\RaUI.exe
PRC - [2010/10/25 22:20:05 | 001,523,712 | ---- | M] (Time Information Services Ltd.) -- D:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe
PRC - [2010/10/25 22:20:04 | 000,299,008 | ---- | M] (Nokia) -- D:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe
PRC - [2010/10/06 02:46:09 | 000,528,384 | R--- | M] (VIA Technologies, Inc.) -- C:\Program Files\VIA\VIAudioi\SBADeck\ADeck.exe
PRC - [2010/10/06 02:03:17 | 000,139,264 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Java\jre6\bin\javaw.exe
PRC - [2010/09/26 21:36:58 | 000,603,904 | ---- | M] (TuneUp Software) -- C:\WINDOWS\system32\TUProgSt.exe
PRC - [2010/07/26 22:37:40 | 000,237,224 | ---- | M] () -- C:\Program Files\Jookz Toolbar\tbsvc.exe
PRC - [2010/06/18 22:02:20 | 001,423,520 | ---- | M] () -- D:\Program Files\No-IP\DUC30.exe
PRC - [2007/07/09 12:54:08 | 000,177,416 | ---- | M] (Authentium, Inc.) -- C:\Program Files\Fichiers communs\Authentium\AntiVirus\dvpapi.exe
PRC - [2006/12/08 15:20:14 | 010,528,768 | ---- | M] (Realtek Semiconductor Corp.) -- C:\Program Files\Realtek AC97\RTLCPL.exe
PRC - [2006/06/09 09:37:18 | 000,573,952 | ---- | M] (Nokia Corporation) -- C:\Program Files\Fichiers communs\Nokia\MPAPI\MPAPI3s.exe
PRC - [2006/06/05 12:59:18 | 000,174,080 | ---- | M] (Nokia.) -- C:\Program Files\Fichiers communs\PCSuite\Services\ServiceLayer.exe
PRC - [2006/05/14 21:47:48 | 000,421,888 | ---- | M] () -- D:\WINDOWS\BricoPacks\Crystal Clear\RocketDock\RocketDock.exe
PRC - [2006/04/28 16:53:30 | 000,075,344 | ---- | M] (AOL) -- c:\Program Files\Fichiers communs\AOL\1290206847\ee\aexplore.exe
PRC - [2006/04/27 14:34:01 | 000,050,760 | ---- | M] (America Online, Inc.) -- C:\Program Files\Fichiers communs\AOL\1290206847\ee\aolsoftware.exe
PRC - [2006/04/18 11:16:16 | 000,063,176 | ---- | M] (America Online Inc) -- C:\Program Files\Fichiers communs\AOL\TopSpeed\3.0\aoltpsd3.exe
PRC - [2004/09/29 11:14:36 | 000,069,632 | ---- | M] (HP) -- C:\WINDOWS\system32\HPZipm12.exe
PRC - [2004/08/19 16:09:54 | 001,036,288 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2001/08/24 17:00:00 | 000,418,304 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\sndvol32.exe


[color=#E56717]========== Modules (SafeList) ==========[/color]

MOD - [2010/11/20 16:36:53 | 000,575,488 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\adam\Mes documents\Downloads\OTL.exe
MOD - [2009/07/12 00:12:06 | 000,632,656 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_e6967989\msvcr80.dll
MOD - [2009/07/11 18:41:02 | 000,097,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.VC80.ATL_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_473666fd\ATL80.dll
MOD - [2006/04/25 00:40:58 | 000,003,584 | ---- | M] () -- D:\WINDOWS\BricoPacks\Crystal Clear\RocketDock\MouseHook2.dll
MOD - [2004/08/19 16:09:24 | 000,165,376 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\dinput.dll
MOD - [2004/08/19 16:07:58 | 001,050,624 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll
MOD - [2004/08/03 23:31:44 | 000,152,576 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\rsaenh.dll
MOD - [2004/02/23 19:42:40 | 001,386,496 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\MSVBVM60.DLL
MOD - [2001/08/28 14:00:00 | 000,149,019 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\crtdll.dll


[color=#E56717]========== Win32 Services (SafeList) ==========[/color]

SRV - File not found [Auto | Stopped] -- C:\WINDOWS\System32\vsgghv.dll -- (yagvqzic)
SRV - File not found [Auto | Stopped] -- C:\WINDOWS\System32\vsgghv.dll -- (wvaolbu)
SRV - File not found [Disabled | Stopped] -- -- (SpyHunter 4 Service)
SRV - File not found [On_Demand | Stopped] -- C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe -- (Microsoft Office Groove Audit Service)
SRV - File not found [Auto | Stopped] -- -- (ioloSystemService)
SRV - File not found [Auto | Stopped] -- -- (ioloFileInfoList)
SRV - File not found [On_Demand | Stopped] -- -- (IDriverT)
SRV - File not found [Auto | Stopped] -- -- (Amsp)
SRV - [2010/10/14 13:36:00 | 000,355,584 | ---- | M] (TuneUp Software GmbH) [On_Demand | Stopped] -- C:\WINDOWS\system32\TuneUpDefragService.exe -- (TuneUp.Defrag)
SRV - [2010/09/26 21:36:58 | 000,603,904 | ---- | M] (TuneUp Software) [Auto | Running] -- C:\WINDOWS\system32\TUProgSt.exe -- (TuneUp.ProgramStatisticsSvc)
SRV - [2010/09/12 14:30:52 | 000,251,248 | ---- | M] (CybelSoft) [On_Demand | Stopped] -- C:\Program Files\ma-config.com\maconfservice.exe -- (maconfservice)
SRV - [2010/07/26 22:37:40 | 000,237,224 | ---- | M] () [Auto | Running] -- C:\Program Files\Jookz Toolbar\tbsvc.exe -- (Jookz Toolbar Helper)
SRV - [2010/06/25 18:07:20 | 000,195,088 | ---- | M] (CACE Technologies, Inc.) [Disabled | Stopped] -- C:\Program Files\WinPcap\rpcapd.exe -- (rpcapd) Remote Packet Capture Protocol v.0 (experimental)
SRV - [2010/01/07 23:51:02 | 000,380,928 | ---- | M] (Spigot, Inc.) [On_Demand | Stopped] -- C:\Program Files\Application Updater\ApplicationUpdater.exe -- (Application Updater)
SRV - [2007/08/24 02:19:12 | 000,443,776 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\ODSERV.EXE -- (odserv)
SRV - [2007/07/09 12:54:08 | 000,177,416 | ---- | M] (Authentium, Inc.) [Auto | Running] -- C:\Program Files\Fichiers communs\Authentium\AntiVirus\dvpapi.exe -- (dvpapi)
SRV - [2006/10/26 13:03:08 | 000,145,184 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Fichiers communs\Microsoft Shared\Source Engine\OSE.EXE -- (ose)
SRV - [2006/06/05 12:59:18 | 000,174,080 | ---- | M] (Nokia.) [On_Demand | Running] -- C:\Program Files\Fichiers communs\PCSuite\Services\ServiceLayer.exe -- (ServiceLayer)
SRV - [2004/09/29 11:14:36 | 000,069,632 | ---- | M] (HP) [Auto | Running] -- C:\WINDOWS\system32\HPZipm12.exe -- (Pml Driver HPZ12)


[color=#E56717]========== Driver Services (SafeList) ==========[/color]

DRV - File not found [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\Drivers\Video3D.sys -- (Video3D)
DRV - File not found [Kernel | System | Stopped] -- C:\WINDOWS\System32\DRIVERS\tmtdi.sys -- (tmtdi)
DRV - File not found [Kernel | Auto | Stopped] -- C:\WINDOWS\System32\DRIVERS\tmevtmgr.sys -- (tmevtmgr)
DRV - File not found [Kernel | Auto | Stopped] -- C:\WINDOWS\System32\DRIVERS\tmcomm.sys -- (tmcomm)
DRV - File not found [Kernel | Auto | Stopped] -- C:\WINDOWS\System32\DRIVERS\tmactmon.sys -- (tmactmon)
DRV - File not found [Kernel | Auto | Stopped] -- d:\Program Files\Anti Trojan Elite\ATEPMon.sys -- (ATE_PROCMON)
DRV - File not found [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\drivers\mnlqsn.sys -- (abp470n5)
DRV - [2010/10/22 07:23:22 | 009,623,680 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nv4_mini.sys -- (nv)
DRV - [2010/10/05 17:11:24 | 006,164,584 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM)
DRV - [2010/09/20 23:57:02 | 000,032,768 | ---- | M] (AnchorFree Inc) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\taphss.sys -- (taphss)
DRV - [2010/08/30 11:19:54 | 000,014,336 | ---- | M] (CybelSoft) [Kernel | On_Demand | Stopped] -- C:\Program Files\ma-config.com\Drivers\driverhardwarev2.sys -- (driverhardwarev2)
DRV - [2010/06/25 18:07:14 | 000,035,088 | ---- | M] (CACE Technologies, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\npf.sys -- (NPF)
DRV - [2009/11/18 06:17:00 | 001,395,800 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Monfilt.sys -- (Monfilt)
DRV - [2009/11/18 06:16:00 | 001,691,480 | ---- | M] (Creative) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Ambfilt.sys -- (Ambfilt)
DRV - [2009/07/30 10:15:54 | 000,014,336 | ---- | M] (ASUSTeK Computer Inc.) [Kernel | Auto | Stopped] -- C:\WINDOWS\system32\drivers\EIO_XP.sys -- (EIO_XP)
DRV - [2007/07/09 12:01:04 | 000,834,448 | ---- | M] (Authentium, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\Css-Dvp.sys -- (CSS DVP)
DRV - [2007/06/27 13:42:00 | 000,207,488 | R--- | M] (VIA Technologies, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\vinyl97.sys -- (VIAudio) Vinyl AC'97 Audio Controller (WDM)
DRV - [2007/06/08 07:52:54 | 000,027,136 | ---- | M] (The OpenVPN Project) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\tapvpn.sys -- (tapvpn)
DRV - [2006/12/29 14:48:06 | 004,026,112 | R--- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\alcxwdm.sys -- (ALCXWDM) Service for Realtek AC97 Audio (WDM)
DRV - [2005/07/01 11:22:00 | 000,339,072 | ---- | M] (Ralink Technology Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\rt61.sys -- (RT61)
DRV - [2005/01/07 16:07:16 | 000,145,920 | ---- | M] (Windows (R) Server 2003 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Hdaudio.sys -- (HdAudAddService)
DRV - [2004/12/14 16:55:22 | 000,009,472 | R--- | M] (ASUSTeK Computer Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\EIO.sys -- (EIO)
DRV - [2004/08/03 23:59:52 | 000,040,320 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nmnt.sys -- (nm)
DRV - [2004/08/03 21:31:34 | 000,020,992 | ---- | M] (Realtek Semiconductor Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RTL8139.sys -- (rtl8139) Pilote NT de carte Realtek PCI Fast Ethernet à base RTL8139(A/B/C)
DRV - [2004/05/07 05:17:00 | 000,024,856 | ---- | M] (Compuware NuMega) [Kernel | On_Demand | Stopped] -- D:\asus\Driver\Gart\EnumChip.sys -- (EnumChip)


[color=#E56717]========== Standard Registry (SafeList) ==========[/color]


[color=#E56717]========== Internet Explorer ==========[/color]

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant =

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_search_url = http://ww12.cherche.us
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://ww12.cherche.us
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultName = cherche.us
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultURL = http://ww12.cherche.us{searchTerms}
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page_bak = http://ww12.cherche.us
IE - HKCU\..\URLSearchHook: {1CB20BF0-BBAE-40A7-93F4-6435FF3D0411} - Reg Error: Key error. File not found
IE - HKCU\..\URLSearchHook: {51a86bb3-6602-4c85-92a5-130ee4864f13} - Reg Error: Key error. File not found
IE - HKCU\..\URLSearchHook: {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\Search Settings\SearchSettings.dll (Spigot, Inc.)
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = http=;ftp=;https=;

[color=#E56717]========== FireFox ==========[/color]

FF - prefs.js..browser.search.defaultengine: "Jookz"
FF - prefs.js..browser.search.defaultenginename: "Jookz"
FF - prefs.js..browser.search.order.1: "Jookz"
FF - prefs.js..browser.search.selectedEngine: "Jookz"
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "https://www.ask.com/?o=15003&l=dis"
FF - prefs.js..extensions.enabledItems: firesheep@codebutler.com:0.1
FF - prefs.js..extensions.enabledItems: engine@conduit.com:3.2.1.3
FF - prefs.js..extensions.enabledItems: {4daac69c-cba7-45e2-9bc8-1044483d3352}:3.2.1.3
FF - prefs.js..extensions.enabledItems: search@helper:8.17
FF - prefs.js..network.proxy.share_proxy_settings: true
FF - prefs.js..network.proxy.type: 0
FF - prefs.js..browser.search.defaultengine: "Jookz"
FF - prefs.js..browser.search.defaultenginename: "Jookz"
FF - prefs.js..browser.search.order.1: "Jookz"
FF - prefs.js..browser.search.selectedEngine: "Jookz"
FF - prefs.js..browser.search.defaultengine: "Jookz"
FF - prefs.js..browser.search.defaultenginename: "Jookz"
FF - prefs.js..browser.search.order.1: "Jookz"
FF - prefs.js..browser.search.selectedEngine: "Jookz"

FF - HKLM\software\mozilla\Mozilla Firefox 3.6.12\extensions\\Components: d:\Program Files\Mozilla Firefox\components [2010/11/03 14:42:03 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.12\extensions\\Plugins: d:\Program Files\Mozilla Firefox\plugins [2010/10/31 13:33:01 | 000,000,000 | ---D | M]

[2010/10/31 13:35:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\adam\Application Data\Mozilla\Extensions
[2010/11/19 17:34:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\adam\Application Data\Mozilla\Firefox\Profiles\6qbdrstm.default\extensions
[2010/11/02 14:42:48 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\adam\Application Data\Mozilla\Firefox\Profiles\6qbdrstm.default\extensions\{0329E7D6-6F54-462D-93F6-F5C3118BADF2}
[2010/11/05 02:45:26 | 000,000,000 | ---D | M] (Softonic_France Community Toolbar) -- C:\Documents and Settings\adam\Application Data\Mozilla\Firefox\Profiles\6qbdrstm.default\extensions\{4daac69c-cba7-45e2-9bc8-1044483d3352}
[2010/11/05 02:45:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\adam\Application Data\Mozilla\Firefox\Profiles\6qbdrstm.default\extensions\engine@conduit.com
[2010/11/04 14:57:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\adam\Application Data\Mozilla\Firefox\Profiles\6qbdrstm.default\extensions\firesheep@codebutler.com
[2010/11/08 16:05:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\adam\Application Data\Mozilla\Firefox\Profiles\6qbdrstm.default\extensions\SearchHelper
[2010/11/05 02:35:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\adam\Application Data\Mozilla\Firefox\Profiles\6qbdrstm.default\extensions\support@platinumhideip.com
[2010/11/13 18:53:13 | 000,002,394 | ---- | M] () -- C:\Documents and Settings\adam\Application Data\Mozilla\Firefox\Profiles\6qbdrstm.default\searchplugins\askcom.xml
[2010/11/08 16:05:07 | 000,002,138 | ---- | M] () -- C:\Documents and Settings\adam\Application Data\Mozilla\Firefox\Profiles\6qbdrstm.default\searchplugins\GoogleFeed.xml
[2010/10/31 13:15:06 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions
[2010/09/11 00:51:26 | 000,000,000 | ---D | M] (Skype extension for Firefox) -- C:\Program Files\Mozilla Firefox\extensions\{AB2CE124-6272-4b12-94A9-7303C7397BD1}
[2010/09/11 04:37:06 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}
[2010/10/18 22:32:59 | 000,000,000 | ---D | M] (TabDiscover) -- C:\Program Files\Mozilla Firefox\extensions\{F9E87066-236C-4067-A3C2-BDA51D6B6B03}
[2010/10/23 18:51:10 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions\jookztoolbar2@jookz.com
[2010/09/11 04:36:55 | 000,423,656 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll
[2009/09/21 11:24:16 | 000,001,329 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\crawlersrch.xml
[2010/10/31 13:11:14 | 000,002,767 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\jookz.xml
[2010/10/31 13:11:14 | 000,002,757 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\jookz.xml.bak

O1 HOSTS File: ([2010/10/10 18:46:01 | 000,000,792 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O2 - BHO: (Dealio Toolbar) - {01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C} - C:\Program Files\Dealio Toolbar\IE\4.0.2\dealioToolbarIE.dll (Spigot, Inc.)
O2 - BHO: (Adobe PDF Link Helper) - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
O2 - BHO: (no name) - {1CA1377B-DC1D-4A52-9585-6E06050FAC53} - No CLSID value found.
O2 - BHO: (Conduit Engine) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngin0.dll (Conduit Ltd.)
O2 - BHO: (no name) - {43C6D902-A1C5-45c9-91F6-FD9E90337E18} - No CLSID value found.
O2 - BHO: (Programme d'aide de l'Assistant de connexion Windows Live) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
O2 - BHO: (Skype add-on for Internet Explorer) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (no name) - {BBACBAFD-FA5E-4079-8B33-00EB9F13D4AC} - No CLSID value found.
O2 - BHO: (SearchSettings Class) - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\Search Settings\SearchSettings.dll (Spigot, Inc.)
O3 - HKLM\..\Toolbar: (Dealio Toolbar) - {01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C} - C:\Program Files\Dealio Toolbar\IE\4.0.2\dealioToolbarIE.dll (Spigot, Inc.)
O3 - HKLM\..\Toolbar: (Conduit Engine) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngin0.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (Jookz Toolbar) - {4C350B19-6CA1-4569-B14C-296D8D6535B2} - C:\Program Files\Jookz Toolbar\jookztoolbar.dll (Jookz)
O3 - HKLM\..\Toolbar: (no name) - {51a86bb3-6602-4c85-92a5-130ee4864f13} - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - {CCAC5586-44D7-4c43-B64A-F042461A97D2} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (Conduit Engine) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngin0.dll (Conduit Ltd.)
O3 - HKCU\..\Toolbar\WebBrowser: (Jookz Toolbar) - {4C350B19-6CA1-4569-B14C-296D8D6535B2} - C:\Program Files\Jookz Toolbar\jookztoolbar.dll (Jookz)
O4 - HKLM..\Run: [AudioDeck] C:\Program Files\VIA\VIAudioi\SBADeck\ADeck.exe (VIA Technologies, Inc.)
O4 - HKLM..\Run: [HostManager] C:\Program Files\Fichiers communs\AOL\1290206847\ee\aolsoftware.exe (America Online, Inc.)
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.DLL (NVIDIA Corporation)
O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.DLL (NVIDIA Corporation)
O4 - HKLM..\Run: [nwiz] C:\Program Files\NVIDIA Corporation\nView\nwiz.exe ()
O4 - HKLM..\Run: [PCSuiteTrayApplication] D:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe (Nokia)
O4 - HKLM..\Run: [SkyTel] C:\WINDOWS\SkyTel.EXE (Realtek Semiconductor Corp.)
O4 - HKCU..\Run: [PcSync] D:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe (Time Information Services Ltd.)
O4 - Startup: C:\Documents and Settings\adam\Menu Démarrer\Programmes\Démarrage\RocketDock.lnk = D:\WINDOWS\BricoPacks\Crystal Clear\RocketDock\RocketDock.exe ()
O4 - Startup: C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage\Ralink Wireless Utility.lnk = C:\WINDOWS\RaUI.exe (Ralink Technology, Corp.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 149
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 255
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableChangePassword = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableTaskMgr = 1
O8 - Extra context menu item: Recherche avec cherche.us - C:\Documents and Settings\adam\scriptjava.html ()
O8 - Extra context menu item: ????3?? - C:\Documents and Settings\adam\Application Data\FlashGetBHO\GetUrl.htm ()
O8 - Extra context menu item: ????3?????? - C:\Documents and Settings\adam\Application Data\FlashGetBHO\GetAllUrl.htm ()
O9 - Extra Button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000018 - C:\WINDOWS\mfnspstd32.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000019 - C:\WINDOWS\mfnspstd32.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000020 - C:\WINDOWS\mfnspstd32.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000021 - C:\WINDOWS\mfnspstd32.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000022 - C:\WINDOWS\mfnspstd32.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000023 - C:\WINDOWS\mfnspstd32.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000024 - C:\WINDOWS\mfnspstd32.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000025 - C:\WINDOWS\mfnspstd32.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000026 - C:\WINDOWS\mfnspstd32.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000027 - C:\WINDOWS\mfnspstd32.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000028 - C:\WINDOWS\mfnspstd32.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000029 - C:\WINDOWS\mfnspstd32.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000030 - C:\WINDOWS\mfnspstd32.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000031 - C:\WINDOWS\mfnspstd32.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000032 - C:\WINDOWS\mfnspstd32.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000033 - C:\WINDOWS\mfnspstd32.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000034 - C:\WINDOWS\mfnspstd32.dll File not found
O15 - HKCU\..Trusted Domains: chat-land.org ([]* in Sites de confiance)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab (Java Plug-in 1.6.0_21)
O16 - DPF: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab (Java Plug-in 1.6.0_21)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab (Java Plug-in 1.6.0_21)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 93.188.162.88,93.188.161.228
O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Fichiers communs\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Fichiers communs\Microsoft Shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Fichiers communs\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O18 - Protocol\Handler\tmbp {1A77E7DC-C9A0-4110-8A37-2F36BAE71ECF} - Reg Error: Key error. File not found
O18 - Protocol\Handler\tmpx {0E526CB5-7446-41D1-A403-19BFE95E8C23} - Reg Error: Key error. File not found
O18 - Protocol\Handler\tmtb {04EAF3FB-4BAC-4B5A-A37D-A1CF210A5A42} - Reg Error: Key error. File not found
O18 - Protocol\Handler\tmtbim {0B37915C-8B98-4B9E-80D4-464D2C830D10} - Reg Error: Key error. File not found
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\WgaLogon: DllName - WgaLogon.dll - File not found
O24 - Desktop Components:0 (Ma page d'accueil) - About:Home
O24 - Desktop WallPaper: C:\Documents and Settings\adam\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\adam\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2010/09/11 00:29:46 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O32 - AutoRun File - [2010/09/11 06:12:37 | 000,000,000 | RHSD | M] - C:\Autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2010/09/11 06:12:37 | 000,000,000 | RHSD | M] - D:\Autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2010/09/11 06:12:37 | 000,000,000 | RHSD | M] - E:\Autorun.inf -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk /p \??\F:) - File not found
O34 - HKLM BootExecute: (autocheck autochk /p \??\F:) - File not found
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

NetSvcs: 6to4 - File not found
NetSvcs: Ias - File not found
NetSvcs: Iprip - C:\WINDOWS\System32\iprip.dll (Microsoft Corporation)
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: WmdmPmSp - File not found
NetSvcs: yagvqzic - C:\WINDOWS\System32\vsgghv.dll File not found
NetSvcs: wvaolbu - C:\WINDOWS\System32\vsgghv.dll File not found




ActiveX: {08B0E5C0-4FCB-11CF-AAA5-00401C608500} - Microsoft VM
ActiveX: {10072CEC-8CC1-11D1-986E-00A0C955B42F} - Rendu VML (Vector Graphics Rendering)
ActiveX: {2179C5D3-EBFF-11CF-B6FD-00AA00B4E220} - NetShow
ActiveX: {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - Lecteur Windows Media Microsoft 6.4
ActiveX: {283807B5-2C60-11D0-A31D-00AA00B92C03} - DirectAnimation
ActiveX: {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - %SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll
ActiveX: {36f8ec70-c29a-11d1-b5c7-0000f8051515} - Liaison de données Dynamic HTML pour Java
ActiveX: {3af36230-a269-11d1-b5bf-0000f8051515} - Logiciel de navigation hors connexion
ActiveX: {3bf42070-b3b1-11d1-b5c5-0000f8051515} - Uniscribe
ActiveX: {4278c270-a269-11d1-b5bf-0000f8051515} - Création avancée
ActiveX: {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "%ProgramFiles%\Outlook Express\setup50.exe" /APP:OE /CALLER:WINNT /user /install
ActiveX: {44BBA842-CC51-11CF-AAFA-00AA00B6015B} - rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msnetmtg.inf,NetMtg.Install.PerUser.NT
ActiveX: {44BBA848-CC51-11CF-AAFA-00AA00B6015C} - DirectShow
ActiveX: {44BBA855-CC51-11CF-AAFA-00AA00B6015F} - DirectDrawEx
ActiveX: {45ea75a0-a269-11d1-b5bf-0000f8051515} - Aide sur Internet Explorer
ActiveX: {4f216970-c90c-11d1-b5c7-0000f8051515} - Classes Java DirectAnimation
ActiveX: {4f645220-306d-11d2-995d-00c04f98bbc9} - Microsoft Windows Script 5.6
ActiveX: {5945c046-1e7d-11d1-bc44-00c04fd912be} - rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msmsgs.inf,BLC.QuietInstall.PerUser
ActiveX: {5A8D6EE0-3E18-11D0-821E-444553540000} - ICW
ActiveX: {5fd399c0-a70a-11d1-9948-00c04f98bbc9} - Outils d'installation Internet Explorer
ActiveX: {630b1da0-b465-11d1-9948-00c04f98bbc9} - Améliorations pour la navigation
ActiveX: {6BF52A52-394A-11d3-B153-00C04F79FAA6} - Microsoft Windows Media Player
ActiveX: {6fab99d0-bab8-11d1-994a-00c04f98bbc9} - Accès au site MSN
ActiveX: {73fa19d0-2d75-11d2-995d-00c04f98bbc9} - Web Folders
ActiveX: {7790769C-0471-11d2-AF11-00C04FA35D02} - "%ProgramFiles%\Outlook Express\setup50.exe" /APP:WAB /CALLER:WINNT /user /install
ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4340} - regsvr32.exe /s /n /i:U shell32.dll
ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4383} - %SystemRoot%\system32\ie4uinit.exe
ActiveX: {9381D8F2-0288-11D0-9501-00AA00B911A5} - Liaison de données Dynamic HTML
ActiveX: {C9E9A340-D1F1-11D0-821E-444553540600} - Polices de base Internet Explorer
ActiveX: {CC2A9BA0-3BDD-11D0-821E-444553540000} - Planificateur de tâches
ActiveX: {CDD7975E-60F8-41d5-8149-19E51D6F71D0} - Windows Movie Maker v2.1
ActiveX: {D27CDB6E-AE6D-11cf-96B8-444553540000} - Adobe Flash Player
ActiveX: {de5aed00-a4bf-11d1-9948-00c04f98bbc9} - Aide HTML
ActiveX: {E92B03AB-B707-11d2-9CBD-0000F87A369E} - Active Directory Service Interface
ActiveX: >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} - C:\WINDOWS\INF\unregmp2.exe /ShowWMP
ActiveX: >{26923b43-4d38-484f-9b9e-de460746276c} - %systemroot%\system32\shmgrate.exe OCInstallUserConfigIE
ActiveX: >{60B49E34-C7CC-11D0-8953-00A0C90347FF}MICROS - RunDLL32 IEDKCS32.DLL,BrandIE4 SIGNUP
ActiveX: >{881dd1c5-3dcf-431b-b061-f3f88e8be88a} - %systemroot%\system32\shmgrate.exe OCInstallUserConfigOE

Drivers32: msacm.ac3acm - C:\WINDOWS\System32\ac3acm.acm (fccHandler)
Drivers32: msacm.ac3filter - C:\WINDOWS\System32\ac3filter.acm ()
Drivers32: msacm.iac2 - C:\WINDOWS\system32\iac25_32.ax (Intel Corporation)
Drivers32: msacm.l3acm - C:\WINDOWS\system32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.lameacm - C:\WINDOWS\System32\lameACM.acm (http://www.mp3dev.org/
Drivers32: msacm.sl_anet - C:\WINDOWS\System32\sl_anet.acm (Sipro Lab Telecom Inc.)
Drivers32: msacm.trspch - C:\WINDOWS\System32\tssoft32.acm (DSP GROUP, INC.)
Drivers32: msacm.vorbis - C:\WINDOWS\System32\vorbis.acm (HMS http://hp.vector.co.jp/authors/VA012897/)
Drivers32: MSVideo8 - C:\WINDOWS\System32\vfwwdm32.dll (Microsoft Corporation)
Drivers32: vidc.cvid - C:\WINDOWS\System32\iccvid.dll (Radius Inc.)
Drivers32: vidc.divx - C:\WINDOWS\System32\divx.dll (DivX, Inc.)
Drivers32: VIDC.FFDS - C:\WINDOWS\System32\ff_vfw.dll ()
Drivers32: vidc.iv31 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv32 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv41 - C:\WINDOWS\System32\ir41_32.ax (Intel Corporation)
Drivers32: vidc.iv50 - C:\WINDOWS\System32\ir50_32.dll (Intel Corporation)
Drivers32: VIDC.XVID - C:\WINDOWS\System32\xvidvfw.dll ()
Drivers32: VIDC.YV12 - C:\WINDOWS\System32\divx.dll (DivX, Inc.)

CREATERESTOREPOINT
Restore point Set: OTL Restore Point (78263654276923392)

[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]

[2010/11/20 15:24:49 | 000,000,000 | ---D | C] -- C:\WINDOWS\Prefetch
[2010/11/20 15:19:14 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\spmsg.dll
[2010/11/19 23:48:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\adam\Local Settings\Application Data\AOL
[2010/11/19 23:47:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\AOL
[2010/11/19 23:47:26 | 000,000,000 | ---D | C] -- C:\Program Files\Fichiers communs\AOL
[2010/11/19 23:47:04 | 000,000,000 | ---D | C] -- C:\Program Files\AOL
[2010/11/19 23:43:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\AOL Downloads
[2010/11/18 23:00:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Application Data\TuneUp Software
[2010/11/18 22:22:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\adam\Local Settings\Application Data\Apple Computer
[2010/11/18 22:22:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\adam\Application Data\Apple Computer
[2010/11/18 22:21:54 | 000,000,000 | ---D | C] -- C:\Program Files\Bonjour
[2010/11/18 22:21:34 | 000,000,000 | ---D | C] -- C:\Program Files\Fichiers communs\Apple
[2010/11/18 22:21:16 | 000,000,000 | ---D | C] -- C:\Documents and Settings\adam\Local Settings\Application Data\Apple
[2010/11/18 22:21:11 | 000,000,000 | ---D | C] -- C:\Program Files\Apple Software Update
[2010/11/18 22:21:11 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Apple
[2010/11/18 15:53:47 | 000,167,734 | ---- | C] (MadeForNet.com) -- C:\WINDOWS\System32\uninstall.exe
[2010/11/17 14:48:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\adam\Bureau\regcure 1.5.0.0
[2010/11/14 23:27:42 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\All Users\Application Data\{24036256-BFDB-4CD3-BE8A-A3D6160F2E16}
[2010/11/14 17:57:41 | 000,000,000 | ---D | C] -- C:\Program Files\ESET
[2010/11/14 16:44:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\adam\Application Data\DriverCure
[2010/11/14 16:44:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\adam\Application Data\ParetoLogic
[2010/11/14 16:41:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\ParetoLogic
[2010/11/14 16:18:01 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\ESET
[2010/11/14 16:17:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\adam\Application Data\ESET
[2010/11/14 16:17:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\adam\Local Settings\Application Data\ESET
[2010/11/13 17:42:56 | 000,000,000 | ---D | C] -- C:\FindyKill
[2010/11/12 01:34:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\adam\Application Data\Nokia
[2010/11/11 20:14:11 | 000,000,000 | ---D | C] -- C:\Documents and Settings\adam\Mes documents\yosra
[2010/11/11 00:27:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\adam\Bureau\+Bonus
[2010/11/09 00:05:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\adam\Bureau\Lesson_1
[2010/11/08 16:05:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\adam\Mes documents\SaveTubeVideo
[2010/11/08 16:01:37 | 000,000,000 | ---D | C] -- C:\Program Files\SaveTubeVideo.com
[2010/11/07 14:07:18 | 000,000,000 | ---D | C] -- C:\Documents and Settings\adam\Mes documents\atef
[2010/11/07 00:23:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\adam\Application Data\Bc
[2010/11/06 16:12:04 | 000,061,440 | ---- | C] (Khronos Group) -- C:\WINDOWS\System32\OpenCL.dll
[2010/11/06 16:12:02 | 014,532,608 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvoglnt.dll
[2010/11/06 16:12:02 | 004,882,432 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvcuda.dll
[2010/11/06 16:12:02 | 002,932,840 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvcuvid.dll
[2010/11/06 16:12:02 | 002,666,600 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvcuvenc.dll
[2010/11/06 16:12:02 | 000,888,424 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvdispco32.dll
[2010/11/06 16:12:02 | 000,813,672 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvgenco32.dll
[2010/11/06 16:11:58 | 013,012,992 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvcompiler.dll
[2010/11/06 16:11:58 | 001,462,272 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvapi.dll
[2010/11/06 16:10:30 | 000,000,000 | ---D | C] -- C:\Program Files\NVIDIA Corporation
[2010/11/06 15:55:55 | 000,245,760 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvudisp.exe
[2010/11/06 15:36:09 | 000,000,000 | ---D | C] -- C:\Program Files\ASUSTeK
[2010/11/06 13:53:07 | 000,060,416 | ---- | C] (Realtek Semiconductor Corp.) -- C:\WINDOWS\ALCFDRTM.EXE
[2010/11/06 13:03:53 | 000,000,000 | ---D | C] -- C:\Program Files\Realtek AC97
[2010/11/06 13:03:44 | 000,315,392 | ---- | C] (Realtek Semiconductor Corp.) -- C:\WINDOWS\alcupd.exe
[2010/11/06 13:03:44 | 000,286,720 | ---- | C] (Realtek Semiconductor Corp.) -- C:\WINDOWS\alcrmv.exe
[2010/11/06 01:35:40 | 004,026,112 | R--- | C] (Realtek Semiconductor Corp.) -- C:\WINDOWS\System32\drivers\alcxwdm.sys
[2010/11/06 01:35:39 | 010,631,168 | ---- | C] (Realtek Semiconductor Corp.) -- C:\WINDOWS\System32\RTLCPL.exe
[2010/11/06 01:35:39 | 000,154,216 | ---- | C] (Realtek Semiconductor Corp.) -- C:\WINDOWS\SOUNDMAN.EXE
[2010/11/06 01:35:35 | 000,285,288 | ---- | C] (Realtek Semiconductor Corp.) -- C:\WINDOWS\System32\ALSNDMGR.CPL
[2010/11/05 21:44:50 | 009,623,680 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\drivers\nv4_mini.sys
[2010/11/05 21:44:50 | 009,623,680 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\dllcache\nv4_mini.sys
[2010/11/05 21:44:45 | 006,359,552 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nv4_disp.dll
[2010/11/05 21:44:45 | 006,359,552 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\dllcache\nv4_disp.dll
[2010/11/05 19:52:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\adam\Application Data\PriceGong
[2010/11/05 19:31:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
[2010/11/05 14:30:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\RTCOM
[2010/11/05 02:47:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\FreeHideIP
[2010/11/05 02:47:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\adam\Application Data\FreeHideIP
[2010/11/05 02:45:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\adam\Local Settings\Application Data\Conduit
[2010/11/05 02:35:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\PlatinumHideIP
[2010/11/05 02:35:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\adam\Application Data\PlatinumHideIP
[2010/11/05 01:37:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\adam\Local Settings\Application Data\VS Revo Group
[2010/11/04 20:30:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Application Data\iolo
[2010/11/04 20:30:08 | 000,000,000 | ---D | C] -- C:\Program Files\Fichiers communs\Authentium
[2010/11/04 20:28:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\iolo
[2010/11/04 20:28:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\adam\Application Data\iolo
[2010/11/04 20:12:13 | 000,000,000 | ---D | C] -- C:\Downloads
[2010/11/04 18:01:45 | 000,000,000 | ---D | C] -- C:\VideoSec
[2010/11/04 14:38:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\ESET
[2010/11/04 14:19:30 | 000,000,000 | ---D | C] -- C:\Program Files\Software Informer
[2010/11/04 02:02:38 | 000,040,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\irbus.sys
[2010/11/04 02:02:38 | 000,010,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\smtpapi.dll
[2010/11/04 02:02:38 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rwnh.dll
[2010/11/04 02:02:38 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\comsdupd.exe
[2010/11/04 02:02:35 | 000,004,255 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\adv01nt5.dll
[2010/11/04 02:02:35 | 000,003,967 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\adv02nt5.dll
[2010/11/04 02:02:35 | 000,003,647 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\adv07nt5.dll
[2010/11/04 02:02:35 | 000,003,615 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\adv05nt5.dll
[2010/11/04 02:02:35 | 000,003,135 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\adv08nt5.dll
[2010/11/04 02:02:34 | 000,701,440 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati2mtag.sys
[2010/11/04 02:02:34 | 000,327,168 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati2mtaa.sys
[2010/11/04 02:02:34 | 000,063,663 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati1rvxx.sys
[2010/11/04 02:02:34 | 000,057,856 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\atinbtxx.sys
[2010/11/04 02:02:34 | 000,056,623 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati1btxx.sys
[2010/11/04 02:02:34 | 000,052,224 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\atinraxx.sys
[2010/11/04 02:02:34 | 000,043,008 | ---- | C] (Advanced Micro Devices, Inc.) -- C:\WINDOWS\System32\drivers\amdagp.sys
[2010/11/04 02:02:34 | 000,036,463 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati1tuxx.sys
[2010/11/04 02:02:34 | 000,034,735 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati1xsxx.sys
[2010/11/04 02:02:34 | 000,030,671 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati1raxx.sys
[2010/11/04 02:02:34 | 000,029,455 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati1xbxx.sys
[2010/11/04 02:02:34 | 000,026,367 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati1snxx.sys
[2010/11/04 02:02:34 | 000,021,343 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati1ttxx.sys
[2010/11/04 02:02:34 | 000,014,336 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\atinpdxx.sys
[2010/11/04 02:02:34 | 000,013,824 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\atinmdxx.sys
[2010/11/04 02:02:34 | 000,012,047 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati1pdxx.sys
[2010/11/04 02:02:34 | 000,011,615 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati1mdxx.sys
[2010/11/04 02:02:34 | 000,003,775 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\adv11nt5.dll
[2010/11/04 02:02:34 | 000,003,711 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\adv09nt5.dll
[2010/11/04 02:02:33 | 000,104,960 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\atinrvxx.sys
[2010/11/04 02:02:33 | 000,073,216 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\atintuxx.sys
[2010/11/04 02:02:33 | 000,063,488 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\atinxsxx.sys
[2010/11/04 02:02:33 | 000,035,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\bthprint.sys
[2010/11/04 02:02:33 | 000,031,744 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\atinxbxx.sys
[2010/11/04 02:02:33 | 000,028,672 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\atinsnxx.sys
[2010/11/04 02:02:33 | 000,025,471 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\atv04nt5.dll
[2010/11/04 02:02:33 | 000,021,183 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\atv01nt5.dll
[2010/11/04 02:02:33 | 000,017,279 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\atv10nt5.dll
[2010/11/04 02:02:33 | 000,014,143 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\atv06nt5.dll
[2010/11/04 02:02:33 | 000,013,824 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\atinttxx.sys
[2010/11/04 02:02:33 | 000,011,359 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\atv02nt5.dll
[2010/11/04 02:02:32 | 001,309,184 | ---- | C] (Smart Link) -- C:\WINDOWS\System32\drivers\mtlstrm.sys
[2010/11/04 02:02:32 | 000,452,736 | ---- | C] (Matrox Graphics Inc.) -- C:\WINDOWS\System32\drivers\mtxparhm.sys
[2010/11/04 02:02:32 | 000,180,360 | ---- | C] (Smart Link) -- C:\WINDOWS\System32\drivers\ntmtlfax.sys
[2010/11/04 02:02:32 | 000,166,912 | ---- | C] (S3 Graphics, Inc.) -- C:\WINDOWS\System32\drivers\s3gnbm.sys
[2010/11/04 02:02:32 | 000,126,686 | ---- | C] (Smart Link) -- C:\WINDOWS\System32\drivers\mtlmnt5.sys
[2010/11/04 02:02:32 | 000,030,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\rndismpx.sys
[2010/11/04 02:02:32 | 000,015,423 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\ch7xxnt5.dll
[2010/11/04 02:02:32 | 000,013,776 | ---- | C] (Smart Link) -- C:\WINDOWS\System32\drivers\recagent.sys
[2010/11/04 02:02:32 | 000,012,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\mutohpen.sys
[2010/11/04 02:02:32 | 000,003,901 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\siint5.dll
[2010/11/04 02:02:31 | 000,404,990 | ---- | C] (Smart Link) -- C:\WINDOWS\System32\drivers\slntamr.sys
[2010/11/04 02:02:31 | 000,129,535 | ---- | C] (Smart Link) -- C:\WINDOWS\System32\drivers\slnt7554.sys
[2010/11/04 02:02:31 | 000,095,424 | ---- | C] (Smart Link) -- C:\WINDOWS\System32\drivers\slnthal.sys
[2010/11/04 02:02:31 | 000,041,088 | ---- | C] (Silicon Integrated Systems Corporation) -- C:\WINDOWS\System32\drivers\sisagp.sys
[2010/11/04 02:02:31 | 000,013,240 | ---- | C] (Smart Link) -- C:\WINDOWS\System32\drivers\slwdmsup.sys
[2010/11/04 02:02:31 | 000,011,935 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\wadv11nt.sys
[2010/11/04 02:02:31 | 000,011,871 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\wadv09nt.sys
[2010/11/04 02:02:31 | 000,011,807 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\wadv07nt.sys
[2010/11/04 02:02:31 | 000,011,325 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\vchnt5.dll
[2010/11/04 02:02:31 | 000,011,295 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\wadv08nt.sys
[2010/11/04 02:02:31 | 000,006,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\smbali.sys
[2010/11/04 02:02:30 | 001,888,992 | ---- | C] (ATI Technologies Inc. ) -- C:\WINDOWS\System32\ati3duag.dll
[2010/11/04 02:02:30 | 000,870,784 | ---- | C] (ATI Technologies Inc. ) -- C:\WINDOWS\System32\ati3d1ag.dll
[2010/11/04 02:02:30 | 000,516,768 | ---- | C] (ATI Technologies Inc. ) -- C:\WINDOWS\System32\ativvaxx.dll
[2010/11/04 02:02:30 | 000,377,984 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\ati2dvaa.dll
[2010/11/04 02:02:30 | 000,229,376 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\ati2cqag.dll
[2010/11/04 02:02:30 | 000,201,728 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\ati2dvag.dll
[2010/11/04 02:02:30 | 000,032,768 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\ativtmxx.dll
[2010/11/04 02:02:30 | 000,025,471 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\watv10nt.sys
[2010/11/04 02:02:30 | 000,023,040 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\ativmvxx.ax
[2010/11/04 02:02:30 | 000,022,271 | ---- | C] (Intel(R) Corporation) -- C:\WINDOWS\System32\drivers\watv06nt.sys
[2010/11/04 02:02:30 | 000,009,728 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\ativdaxx.ax
[2010/11/04 02:02:28 | 000,032,285 | ---- | C] (Conexant Systems, Inc.) -- C:\WINDOWS\System32\hsfcisp2.dll
[2010/11/04 02:02:25 | 000,086,016 | ---- | C] (Conexant) -- C:\WINDOWS\System32\mdmxsdk.dll
[2010/11/04 02:02:24 | 001,737,856 | ---- | C] (Matrox Graphics Inc.) -- C:\WINDOWS\System32\mtxparhd.dll
[2010/11/04 02:02:23 | 000,397,056 | ---- | C] (S3 Graphics, Inc.) -- C:\WINDOWS\System32\s3gnb.dll
[2010/11/04 02:02:22 | 000,286,792 | ---- | C] (Smart Link) -- C:\WINDOWS\System32\slextspk.dll
[2010/11/04 02:02:22 | 000,188,508 | ---- | C] (Smart Link) -- C:\WINDOWS\System32\slgen.dll
[2010/11/04 02:02:22 | 000,073,832 | ---- | C] (Smart Link) -- C:\WINDOWS\System32\slcoinst.dll
[2010/11/04 02:02:22 | 000,073,796 | ---- | C] (Smart Link) -- C:\WINDOWS\System32\slserv.exe
[2010/11/04 02:02:22 | 000,032,866 | ---- | C] (Smart Link) -- C:\WINDOWS\System32\slrundll.exe
[2010/11/04 02:02:18 | 000,032,866 | ---- | C] (Smart Link) -- C:\WINDOWS\slrundll.exe
[2010/11/04 01:02:44 | 000,012,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wgatray.exe.bak
[2010/11/04 01:02:44 | 000,012,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\WgaTray.exe
[2010/11/04 01:02:44 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\WgaLogon.dll
[2010/11/03 15:04:20 | 000,000,000 | ---D | C] -- C:\Program Files\Realtek WLAN Driver
[2010/11/02 19:43:45 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files
[2010/11/02 19:25:46 | 000,000,000 | ---D | C] -- C:\Program Files\Web Publish
[2010/11/02 19:17:43 | 000,152,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wjview.exe
[2010/11/02 19:17:41 | 000,158,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\jview.exe
[2010/11/02 19:17:39 | 000,049,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\clspack.exe
[2010/11/02 14:39:54 | 000,000,000 | ---D | C] -- C:\Documents and Settings\adam\Application Data\FlashGet
[2010/11/02 14:39:37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\adam\Application Data\FlashGetBHO
[2010/11/02 14:23:42 | 000,000,000 | ---D | C] -- C:\Program Files\SpeedBit Toolbar
[2010/11/02 14:16:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\adam\Application Data\Toolbar4
[2010/11/02 14:16:05 | 000,172,032 | ---- | C] (Jin Hui E-mail: jinhui@jcomsoft.com Web: http://www.jcomsoft.com) -- C:\WINDOWS\System32\AniGIF.ocx
[2010/10/31 13:22:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\adam\Application Data\Mozilla
[2010/10/30 18:04:44 | 000,022,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\spupdsvc.exe
[2010/10/30 18:03:41 | 001,915,496 | ---- | C] (Realtek Semiconductor Corp.) -- C:\WINDOWS\SkyTel.EXE
[2010/10/30 18:03:41 | 001,489,512 | ---- | C] (Realtek Semiconductor Corp.) -- C:\WINDOWS\RtlUpd.exe
[2010/10/30 18:03:41 | 000,891,496 | ---- | C] (Realtek Semiconductor Corp.) -- C:\WINDOWS\System32\RTSndMgr.CPL
[2010/10/30 18:03:41 | 000,359,016 | ---- | C] (Realtek Semiconductor Crop.) -- C:\WINDOWS\vncutil.exe
[2010/10/30 18:03:40 | 009,721,960 | ---- | C] (Realtek Semiconductor Corp.) -- C:\WINDOWS\RTLCPL.EXE
[2010/10/30 18:03:40 | 006,164,584 | ---- | C] (Realtek Semiconductor Corp.) -- C:\WINDOWS\System32\drivers\RtkHDAud.sys
[2010/10/30 18:03:40 | 000,129,640 | ---- | C] (Realtek Semiconductor) -- C:\WINDOWS\RtkAudioService.exe
[2010/10/30 18:03:40 | 000,054,888 | ---- | C] (Realtek Semiconductor Corp.) -- C:\WINDOWS\System32\RtkCoInstXP.dll
[2010/10/30 18:03:39 | 001,395,800 | ---- | C] (Creative Technology Ltd.) -- C:\WINDOWS\System32\drivers\Monfilt.sys
[2010/10/30 18:03:38 | 002,815,592 | ---- | C] (RealTek Semicoductor Corp.) -- C:\WINDOWS\ALCWZRD.EXE
[2010/10/30 18:03:38 | 002,180,712 | ---- | C] (Realtek Semiconductor Corp.) -- C:\WINDOWS\MicCal.exe
[2010/10/30 18:03:38 | 001,691,480 | ---- | C] (Creative) -- C:\WINDOWS\System32\drivers\Ambfilt.sys
[2010/10/30 18:03:38 | 000,141,928 | ---- | C] (Realtek Semiconductor Corp.) -- C:\WINDOWS\ALCMTR.EXE
[2010/10/30 17:17:30 | 000,000,000 | ---D | C] -- C:\Program Files\Wyzo
[2010/10/30 14:39:18 | 000,225,280 | ---- | C] (Ariad Software) -- C:\WINDOWS\System32\AS-Exp2.ocx
[2010/10/30 14:39:18 | 000,203,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\RICHTX32.OCX
[2010/10/30 14:39:17 | 000,608,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\COMCTL32.OCX
[2010/10/30 14:39:17 | 000,224,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\Tabctl32.ocx
[2010/10/27 22:50:26 | 000,000,000 | --SD | C] -- C:\Documents and Settings\adam\Bureau\programme
[2010/10/27 14:09:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\adam\Mes documents\WebAcappella
[2010/10/27 14:08:00 | 000,000,000 | ---D | C] -- C:\Program Files\Intuisphere
[2010/10/27 12:57:30 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\NtmsData
[2010/10/26 15:11:51 | 000,000,000 | ---D | C] -- C:\Documents and Settings\adam\Local Settings\Application Data\ConduitEngine
[2010/10/26 15:11:50 | 000,000,000 | ---D | C] -- C:\Program Files\ConduitEngine
[2010/10/26 15:11:46 | 000,000,000 | ---D | C] -- C:\Program Files\BrotherSoft_Extreme
[2010/10/26 15:10:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\adam\Application Data\GetRightToGo
[2010/10/23 18:51:10 | 000,000,000 | ---D | C] -- C:\Documents and Settings\adam\Application Data\Jookz Toolbar
[2010/10/23 18:50:52 | 000,000,000 | ---D | C] -- C:\Program Files\Jookz Toolbar
[2010/10/23 16:01:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\adam\Application Data\Uniblue
[2010/10/21 17:53:54 | 000,000,000 | ---D | C] -- C:\Documents and Settings\adam\Mes documents\Nouveau dossier
[2 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]

[2010/11/20 16:21:19 | 000,060,416 | ---- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\ALCFDRTM.VER
[2010/11/20 16:18:00 | 000,001,142 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-823518204-1637723038-725345543-1003UA.job
[2010/11/20 16:00:01 | 000,000,538 | ---- | M] () -- C:\WINDOWS\tasks\Automatic Maintenance.job
[2010/11/20 15:42:41 | 000,000,436 | ---- | M] () -- C:\WINDOWS\tasks\RegCure Program Check.job
[2010/11/20 15:42:38 | 000,000,310 | ---- | M] () -- C:\WINDOWS\tasks\GlaryInitialize.job
[2010/11/20 15:42:33 | 000,000,306 | -HS- | M] () -- C:\WINDOWS\tasks\stzp.job
[2010/11/20 15:42:27 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2010/11/20 15:39:21 | 000,043,520 | ---- | M] () -- C:\WINDOWS\System32\svchost.opt
[2010/11/20 15:34:57 | 000,262,214 | ---- | M] () -- C:\Documents and Settings\adam\Bureau\ereure svchoste.bmp
[2010/11/20 15:27:27 | 000,000,804 | ---- | M] () -- C:\Documents and Settings\adam\Application Data\Microsoft\Internet Explorer\Quick Launch\Lecteur Windows Media.lnk
[2010/11/20 15:27:22 | 000,316,640 | ---- | M] () -- C:\WINDOWS\WMSysPr9.prx
[2010/11/20 15:24:48 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2010/11/20 15:20:34 | 000,000,212 | RHS- | M] () -- C:\boot.ini
[2010/11/19 23:47:56 | 000,001,862 | ---- | M] () -- C:\Documents and Settings\All Users\Bureau\AOL Explorer.lnk
[2010/11/19 23:47:03 | 000,000,335 | ---- | M] () -- C:\WINDOWS\nsreg.dat
[2010/11/19 23:42:52 | 000,000,029 | ---- | M] () -- C:\WINDOWS\atid.ini
[2010/11/19 18:44:37 | 000,000,618 | ---- | M] () -- C:\Documents and Settings\adam\Bureau\JDownloader.lnk
[2010/11/18 22:21:18 | 000,000,284 | ---- | M] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[2010/11/18 15:53:47 | 000,167,734 | ---- | M] (MadeForNet.com) -- C:\WINDOWS\System32\uninstall.exe
[2010/11/18 15:28:03 | 000,000,698 | ---- | M] () -- C:\Documents and Settings\adam\Bureau\Raccourci vers RTLCPL.lnk
[2010/11/17 14:49:59 | 000,000,370 | ---- | M] () -- C:\WINDOWS\tasks\RegCure.job
[2010/11/17 14:49:28 | 000,034,308 | ---- | M] () -- C:\WINDOWS\System32\BASSMOD.dll
[2010/11/17 14:48:47 | 000,000,339 | ---- | M] () -- C:\Documents and Settings\All Users\Bureau\RegCure.lnk
[2010/11/17 14:48:47 | 000,000,339 | ---- | M] () -- C:\Documents and Settings\adam\Application Data\Microsoft\Internet Explorer\Quick Launch\RegCure.lnk
[2010/11/14 17:16:29 | 000,000,711 | ---- | M] () -- C:\Documents and Settings\adam\Bureau\Serials World.lnk
[2010/11/13 19:46:09 | 000,381,826 | ---- | M] () -- C:\WINDOWS\System32\perfh00C.dat
[2010/11/13 19:46:09 | 000,314,508 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2010/11/13 19:46:09 | 000,053,246 | ---- | M] () -- C:\WINDOWS\System32\perfc00C.dat
[2010/11/13 19:46:09 | 000,040,836 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2010/11/13 19:24:43 | 000,003,016 | RHS- | M] () -- C:\Documents and Settings\adam\ntuser.pol
[2010/11/13 17:42:59 | 000,001,376 | ---- | M] () -- C:\Documents and Settings\adam\Bureau\FindyKill V4.727.lnk
[2010/11/12 01:00:30 | 000,008,628 | -H-- | M] () -- C:\WINDOWS\RaConfigENG.GID
[2010/11/11 21:12:11 | 000,023,552 | ---- | M] () -- C:\Documents and Settings\adam\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/11/11 20:18:00 | 000,001,090 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-823518204-1637723038-725345543-1003Core.job
[2010/11/10 19:04:54 | 000,000,056 | ---- | M] () -- C:\WINDOWS\System32\.directory
[2010/11/08 16:02:36 | 000,000,000 | ---- | M] () -- C:\WINDOWS\System32\-1
[2010/11/06 19:33:38 | 000,000,233 | ---- | M] () -- C:\Documents and Settings\adam\Bureau\Gestionnaire d'Effets Sonores.lnk
[2010/11/06 16:45:56 | 000,240,592 | ---- | M] () -- C:\WINDOWS\System32\nvdrsdb1.bin
[2010/11/06 16:45:56 | 000,000,001 | ---- | M] () -- C:\WINDOWS\System32\nvdrssel.bin
[2010/11/06 16:37:13 | 000,000,664 | ---- | M] () -- C:\WINDOWS\System32\d3d9caps.dat
[2010/11/06 16:33:56 | 000,240,592 | ---- | M] () -- C:\WINDOWS\System32\nvdrsdb0.bin
[2010/11/06 16:18:20 | 000,000,000 | ---- | M] () -- C:\WINDOWS\System32\nvdrswr.lk
[2010/11/06 13:53:07 | 000,060,416 | ---- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\ALCFDRTM.EXE
[2010/11/06 00:03:22 | 000,002,265 | ---- | M] () -- C:\Documents and Settings\All Users\Bureau\Skype.lnk
[2010/11/05 21:43:37 | 000,043,520 | ---- | M] () -- C:\WINDOWS\System32\rundll32.opt
[2010/11/05 19:25:03 | 006,029,312 | ---- | M] () -- C:\Documents and Settings\adam\NTUSER.bak
[2010/11/04 20:28:50 | 000,074,703 | ---- | M] () -- C:\WINDOWS\System32\mfc45.dll
[2010/11/04 02:20:23 | 000,001,507 | ---- | M] () -- C:\Documents and Settings\adam\Bureau\Loupe.lnk
0
Malekal_morte- Messages postés 180230 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 626
21 nov. 2010 à 18:00
double combo pas bon !

1/ Faut pas faire un scan OTL, relis bien ce qui est demandé à faire avec OTL.
C'est une correction et pas un scan (bouton corriger ou Fix s'il est en anglais).
2/ Quand tu fais un scan OTL, mets les rapports sur cijoint car en copier/coller direct, c'est super pas lisible et en plus il est pas pris dans son entier!
0
bigbos120 Messages postés 30 Date d'inscription dimanche 5 septembre 2010 Statut Membre Dernière intervention 18 septembre 2014
21 nov. 2010 à 23:33
le rapport OTL :(desole copier colle) car il ne peut rejoint dans cijoint et merci d'avance


========== OTL ==========
No active process named wintsgg.exe was found!
Process wyzo.exe killed successfully!
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\\NameServer| /E : value set successfully!
Folder C:\Documents and Settings\adam\Mes documents\yosra\ not found.
Folder C:\Documents and Settings\adam\Mes documents\atef\ not found.
Folder C:\Documents and Settings\adam\Application Data\Bc\ not found.

OTL by OldTimer - Version 3.2.17.3 log created on 11212010_232635
0
bigbos120 Messages postés 30 Date d'inscription dimanche 5 septembre 2010 Statut Membre Dernière intervention 18 septembre 2014
22 nov. 2010 à 13:37
en ce momment il y a une petite ereure (il n'ya pas de disque)quand il demarre


http://img502.imageshack.us/img502/4373/estpasdedisque.png


le rapport de otl (analyse )

http://www.cijoint.fr/cjlink.php?file=cj201011/cijOPrsnFN.txt

le rapport Malwarebyte

http://www.cijoint.fr/cjlink.php?file=cj201011/cijfGAw8lm.txt
0
Malekal_morte- Messages postés 180230 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 626
22 nov. 2010 à 13:50
T'als l'air d'avoir d'abord fait OTL puis malwarebyte.....
or Malwarebyte a désinfecter un truc.... que l'on voit sur OTL.

Du coup t'as encore des messages d'erreur disque après le nettoyage de Malwarebyte ?
0
bigbos120 Messages postés 30 Date d'inscription dimanche 5 septembre 2010 Statut Membre Dernière intervention 18 septembre 2014
22 nov. 2010 à 17:51
pour le momment non mais dans mp4 oui est ce que je secanne avec malwarebyte
0
Malekal_morte- Messages postés 180230 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 626
23 nov. 2010 à 19:40
je n'ai pas compris pour le mp4. Tu veux parler de ton lecteur MP3 ?
Essaye d'être plus clair et surtout de donner un max d'infos.
0
bigbos120 Messages postés 30 Date d'inscription dimanche 5 septembre 2010 Statut Membre Dernière intervention 18 septembre 2014
25 nov. 2010 à 19:44
a propos de mon lecteur mp3 j'ai un virus qui ne peut po etre suprimer sous le nom "kpvsjd" (sous forme d'application) et quand je connecte mon mp3 une erreur de lecteur s'affiche (il n' y a pas de disque dans le lecteur )
http://img502.imageshack.us/img502/4373/estpasdedisque.png


+ apres avoir installer un nouveau programme son interface ne s'affiche pas quand je les exucutes par contre le processus de programme fonctionne correctement dans la genstionnaire des processus(exemple; kaspersky,vinyl deck, Jdownloader...)
0
Malekal_morte- Messages postés 180230 Date d'inscription mercredi 17 mai 2006 Statut Modérateur, Contributeur sécurité Dernière intervention 15 décembre 2020 24 626
26 nov. 2010 à 17:10
OK pour le lecteur MP3.
Ca doit pas être très grave, ça doit être l'autorun qui référence un fichier dans un lecteur qui n'existe plus.

Suis ce tuto pour nettoyer ton lecteur MP3 : https://www.malekal.com/usbfix-supprimer-virus-usb/
Poste les rapports ici.
0
bigbos120 Messages postés 30 Date d'inscription dimanche 5 septembre 2010 Statut Membre Dernière intervention 18 septembre 2014
27 nov. 2010 à 16:01
le rapport de usb fix:




############################## | UsbFix 7.035 | [Recherche]

Utilisateur: adam (Administrateur) # JENHANI [ ]
Mis à jour le 22/11/10 par El Desaparecido / C_XX
Lancé à 15:56:06 | 27/11/2010
Site Web: http://www.teamxscript.org
Contact: eldesaparecido@teamxscript.org

CPU: Intel(R) Pentium(R) 4 CPU 3.00GHz
CPU 2: Intel(R) Pentium(R) 4 CPU 3.00GHz
Microsoft Windows XP Professionnel (5.1.2600 32-Bit) # Service Pack 2
Internet Explorer 6.0.2900.2180

Pare-feu Windows: Désactivé /!\
Antivirus: AVG Internet Security 9.0 [Enabled | (!) Outdated]
Antivirus: Norton Internet Security 17.8.0.5 [Enabled | Updated]
Antivirus: McAfee VirusScan [(!) Disabled | Updated]
Antivirus: Kaspersky Internet Security 11.0.1.400 [(!) Disabled | (!) Outdated]
Antivirus: Trend Micro Titanium Maximum Security 3.0 [(!) Disabled | Updated]
Firewall: McAfee Personal Firewall [Enabled]
Firewall: Norton Internet Security 17.8.0.5 [Enabled]
Firewall: Kaspersky Internet Security 11.0.1.400 [(!) Disabled]
Firewall: AVG Firewall 9.0 [Enabled]
RAM -> 511 Mo
C:\ (%systemdrive%) -> Disque fixe # 20 Go (8 Go libre(s) - 39%) [] # NTFS
D:\ -> Disque fixe # 60 Go (35 Go libre(s) - 59%) [] # NTFS
E:\ -> Disque fixe # 49 Go (18 Go libre(s) - 37%) [] # NTFS
F:\ -> Disque amovible # 988 Mo (244 Mo libre(s) - 25%) [JENHANI] # FAT32
G:\ -> CD-ROM

################## | Éléments infectieux |


Présent! C:\DOCUME~1\adam\LOCALS~1\Temp\amt.log

################## | Registre |

Présent! HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System|DisableRegistryTools
Présent! HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System|DisableTaskMgr
Présent! HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\explorer|NoDrives
Présent! HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\explorer|NoDrives

################## | Mountpoints2 |


################## | Vaccin |

(!) Cet ordinateur n'est pas vacciné!

################## | E.O.F |
0
bigbos120 Messages postés 30 Date d'inscription dimanche 5 septembre 2010 Statut Membre Dernière intervention 18 septembre 2014
27 nov. 2010 à 16:16
rapport apres la supression :



############################## | UsbFix 7.035 | [Suppression]

Utilisateur: adam (Administrateur) # JENHANI [ ]
Mis à jour le 22/11/10 par El Desaparecido / C_XX
Lancé à 16:06:55 | 27/11/2010
Site Web: http://www.teamxscript.org
Contact: eldesaparecido@teamxscript.org

CPU: Intel(R) Pentium(R) 4 CPU 3.00GHz
CPU 2: Intel(R) Pentium(R) 4 CPU 3.00GHz
Microsoft Windows XP Professionnel (5.1.2600 32-Bit) # Service Pack 2
Internet Explorer 6.0.2900.2180

Pare-feu Windows: Désactivé /!\
Antivirus: AVG Internet Security 9.0 [Enabled | (!) Outdated]
Antivirus: Norton Internet Security 17.8.0.5 [Enabled | Updated]
Antivirus: McAfee VirusScan [(!) Disabled | Updated]
Antivirus: Kaspersky Internet Security 11.0.1.400 [(!) Disabled | (!) Outdated]
Antivirus: Trend Micro Titanium Maximum Security 3.0 [(!) Disabled | Updated]
Firewall: McAfee Personal Firewall [Enabled]
Firewall: Norton Internet Security 17.8.0.5 [Enabled]
Firewall: Kaspersky Internet Security 11.0.1.400 [(!) Disabled]
Firewall: AVG Firewall 9.0 [Enabled]
RAM -> 511 Mo
C:\ (%systemdrive%) -> Disque fixe # 20 Go (8 Go libre(s) - 39%) [] # NTFS
D:\ -> Disque fixe # 60 Go (35 Go libre(s) - 59%) [] # NTFS
E:\ -> Disque fixe # 49 Go (18 Go libre(s) - 37%) [] # NTFS
F:\ -> Disque amovible # 988 Mo (244 Mo libre(s) - 25%) [JENHANI] # FAT32
G:\ -> CD-ROM

################## | Éléments infectieux |


Supprimé! C:\DOCUME~1\adam\LOCALS~1\Temp\amt.log
Supprimé! F:\kpvsjd.cmd
Non supprimé ! F:\Autorun.inf
Supprimé! C:\Recycler\S-1-5-21-823518204-1637723038-725345543-1003
Supprimé! D:\Recycler\S-1-5-21-823518204-1637723038-725345543-1003
Supprimé! E:\Recycler\S-1-5-21-823518204-1637723038-725345543-1003
Supprimé! F:\Recycler\S-5-3-42-2819952290-8240758988-879315005-3665
Supprimé! F:\System\Desktop.ini

################## | Registre |

Supprimé! HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System|DisableRegistryTools
Supprimé! HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System|DisableTaskMgr
Supprimé! HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\explorer|NoDrives
Supprimé! HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\explorer|NoDrives

################## | Mountpoints2 |


################## | Listing |

[11/09/2010 - 00:29:46 | N | 0] C:\AUTOEXEC.BAT
[11/09/2010 - 06:12:37 | RAD ] C:\Autorun.inf
[20/11/2010 - 15:20:34 | N | 212] C:\boot.ini
[28/08/2001 - 14:00:00 | N | 4952] C:\Bootfont.bin
[25/11/2010 - 20:21:31 | D ] C:\Config.Msi
[11/09/2010 - 00:29:46 | N | 0] C:\CONFIG.SYS
[11/10/2010 - 22:37:35 | D ] C:\D
[11/09/2010 - 00:34:16 | D ] C:\Documents and Settings
[06/11/2010 - 02:19:08 | D ] C:\Downloads
[14/05/2008 - 06:02:31 | N | 770] C:\DriverPack_LAN_wnt5_x86-32.ini
[01/04/2008 - 16:37:53 | N | 4214] C:\DriverPack_Sound_A_wnt5_x86-32.ini
[12/04/2008 - 10:47:12 | | 3525] C:\DriverPack_Sound_B_wnt5_x86-32.ini
[20/11/2010 - 14:57:53 | D ] C:\FindyKill
[20/11/2010 - 14:57:53 | N | 2638] C:\FindyKill.txt
[12/09/2010 - 20:02:40 | D ] C:\found.000
[19/09/2010 - 01:46:50 | D ] C:\found.001
[26/03/2001 - 23:00:00 | N | 53248] C:\gendel32.exe
[15/11/2010 - 23:22:27 | D ] C:\Hotspot Shield
[10/10/2010 - 21:27:45 | D ] C:\Inetpub
[11/09/2010 - 00:29:46 | N | 0] C:\IO.SYS
[11/09/2010 - 00:29:46 | N | 0] C:\MSDOS.SYS
[22/09/2010 - 20:47:37 | RD ] C:\MSOCache
[12/10/2010 - 13:45:36 | D ] C:\My Installations
[03/08/2004 - 23:38:34 | N | 47564] C:\NTDETECT.COM
[03/08/2004 - 23:59:44 | N | 251712] C:\ntldr
[27/10/2010 - 12:13:53 | D ] C:\NVIDIA
[27/09/2010 - 22:45:04 | D ] C:\NVIDIA14
[27/11/2010 - 15:12:59 | ASH | 805306368] C:\pagefile.sys
[25/11/2010 - 20:19:31 | D ] C:\Program Files
[27/11/2010 - 16:08:52 | SHD ] C:\RECYCLER
[11/09/2010 - 05:36:59 | D ] C:\sh4ldr
[07/11/2010 - 12:24:39 | SHD ] C:\System Volume Information
[29/09/2010 - 19:44:00 | D ] C:\TPW
[27/11/2010 - 16:08:52 | D ] C:\UsbFix
[27/11/2010 - 16:08:53 | A | 1853] C:\UsbFix.txt
[12/09/2010 - 01:24:46 | N | 3933] C:\UsbFix2.txt
[12/09/2010 - 01:23:54 | N | 1800] C:\UsbFix_Upload_Me_JENHANI.zip
[06/11/2010 - 01:41:18 | D ] C:\VideoSec
[23/11/2010 - 18:44:40 | D ] C:\WINDOWS
[10/09/2010 - 18:48:43 | N | 121042424] D:\258.96_desktop_winxp_32bit_international_whql.exe
[27/09/2010 - 18:29:26 | D ] D:\asus
[04/10/2010 - 19:26:16 | N | 194313205] D:\asus.rar
[18/10/2010 - 23:53:01 | D ] D:\ateher
[11/09/2010 - 06:12:37 | RAD ] D:\Autorun.inf
[09/09/2010 - 20:32:00 | N | 2056962048] D:\Battlefield 2.iso
[24/11/2010 - 16:51:37 | D ] D:\bureaux c
[12/09/2010 - 03:06:00 | N | 0] D:\cd.dat
[30/09/2010 - 09:47:29 | N | 4381117] D:\Dirty-Hello GoodMorning.mp3
[12/09/2010 - 04:01:36 | D ] D:\Documents and Settings
[03/11/2010 - 14:49:22 | D ] D:\Downloads
[03/11/2010 - 14:30:59 | N | 17188522] D:\Driver_Genius_Pro_9.0.0.186.rar
[14/09/2010 - 04:04:39 | N | 4218965] D:\eminem-ft-rihanna-e28093-love-the-way-you-lie.mp3
[14/10/2010 - 22:25:48 | N | 3026473] D:\Facebook Vidéos publiées par Cool video give me your heart.mp3
[11/10/2010 - 11:34:02 | D ] D:\fl
[11/10/2010 - 22:10:10 | N | 196] D:\install.log
[12/09/2010 - 02:34:15 | N | 8070357] D:\McAfee_AVERT_Stinger_10.0.1.972.rar
[12/10/2010 - 20:17:56 | D ] D:\modem
[10/09/2010 - 18:50:55 | D ] D:\msdownld.tmp
[23/11/2010 - 14:41:16 | D ] D:\ne pas suprime
[04/10/2010 - 19:53:17 | D ] D:\Nouveau dossier
[28/09/2010 - 19:03:57 | N | 4118656] D:\Panet.co.il_Adam-3ala-Bali.mp3
[25/09/2010 - 23:01:47 | N | 4315136] D:\Panet.co.il_Nancy-3ajram-Fe-7agat.mp3
[14/09/2010 - 17:47:12 | N | 6010398] D:\preview-1.mp3
[14/09/2010 - 14:41:44 | N | 5581449] D:\preview.mp3
[27/11/2010 - 15:53:54 | D ] D:\Program Files
[30/08/2010 - 03:49:56 | N | 20025576] D:\realtek_wlan_20100225 - Copie (2).zip
[27/11/2010 - 16:08:52 | SHD ] D:\RECYCLER
[04/11/2010 - 20:37:31 | SHD ] D:\System Volume Information
[13/11/2010 - 18:52:19 | D ] D:\Update
[16/10/2010 - 16:33:03 | D ] D:\WINDOWS
[07/09/2010 - 02:19:31 | N | 3345541120] D:\windows sweet 5.1.iso
[26/10/2010 - 13:02:48 | N | 53521] D:\wirelesskeyview.zip
[26/10/2010 - 13:04:56 | N | 53521] D:\wirelesskeyview2.zip
[06/10/2010 - 00:14:31 | D ] D:\Wyzo
[18/10/2010 - 21:38:35 | D ] D:\XtremeXP
[18/06/2010 - 21:02:42 | D ] E:\09 jeux
[02/03/2009 - 16:56:54 | D ] E:\20080210
[18/02/2009 - 20:19:18 | D ] E:\20080219
[11/04/2009 - 12:35:05 | D ] E:\20080222
[18/02/2009 - 20:19:21 | D ] E:\20080227
[18/02/2009 - 20:19:21 | D ] E:\20080314
[18/02/2009 - 20:19:22 | D ] E:\20080317
[18/02/2009 - 20:19:23 | D ] E:\20080323
[18/02/2009 - 20:19:25 | D ] E:\20080325
[18/02/2009 - 20:19:25 | D ] E:\20080326
[18/02/2009 - 20:19:25 | D ] E:\20080407
[18/02/2009 - 20:19:25 | D ] E:\20080409
[18/02/2009 - 20:19:26 | D ] E:\20080411
[18/02/2009 - 20:19:26 | D ] E:\20080413
[18/02/2009 - 20:19:27 | D ] E:\20080423
[18/02/2009 - 20:18:20 | D ] E:\20080504
[18/02/2009 - 20:18:23 | D ] E:\20080526
[18/02/2009 - 20:18:23 | D ] E:\20080527
[18/02/2009 - 20:18:23 | D ] E:\20080528
[18/02/2009 - 20:18:24 | D ] E:\20080603
[18/02/2009 - 20:18:27 | D ] E:\20080613
[18/02/2009 - 20:18:27 | D ] E:\20080615
[18/02/2009 - 20:18:27 | D ] E:\20080621
[18/02/2009 - 20:18:27 | D ] E:\20080625
[18/02/2009 - 20:18:28 | D ] E:\20080710
[18/02/2009 - 20:18:29 | D ] E:\20080711
[18/02/2009 - 20:18:29 | D ] E:\20080719
[18/02/2009 - 20:18:30 | D ] E:\20080801
[18/02/2009 - 20:18:30 | D ] E:\20080813
[18/02/2009 - 20:18:33 | D ] E:\20080825
[17/03/2009 - 22:22:47 | D ] E:\20080917
[18/02/2009 - 20:18:34 | D ] E:\20080926
[18/02/2009 - 20:18:35 | D ] E:\20081010
[18/02/2009 - 20:18:37 | D ] E:\20081014
[18/02/2009 - 20:18:37 | D ] E:\20081019
[18/02/2009 - 20:18:37 | D ] E:\20081020
[05/04/2009 - 16:09:47 | D ] E:\20081026
[18/02/2009 - 20:18:37 | D ] E:\20081206
[18/02/2009 - 20:18:39 | D ] E:\20081221
[18/02/2009 - 20:18:39 | D ] E:\20081225
[21/02/2009 - 16:15:26 | D ] E:\20090216
[17/03/2009 - 22:17:41 | D ] E:\20090306
[14/03/2009 - 22:06:56 | D ] E:\20090314
[01/04/2009 - 09:50:04 | D ] E:\20090401
[11/04/2009 - 12:21:38 | D ] E:\20090411
[21/04/2009 - 21:50:46 | D ] E:\20090421
[23/04/2009 - 15:09:07 | D ] E:\20090423
[26/04/2009 - 13:17:56 | D ] E:\20090426
[04/05/2009 - 19:38:50 | D ] E:\20090504
[07/05/2009 - 20:02:41 | D ] E:\20090507
[26/05/2009 - 16:59:28 | D ] E:\20090512
[24/05/2009 - 21:58:39 | D ] E:\20090524
[25/06/2009 - 21:34:50 | D ] E:\20090526
[25/06/2009 - 21:34:32 | D ] E:\20090607
[18/06/2009 - 18:40:50 | D ] E:\20090618
[21/06/2009 - 14:22:06 | D ] E:\20090621
[09/07/2009 - 17:07:44 | D ] E:\20090707
[26/07/2009 - 17:48:03 | D ] E:\20090720
[06/08/2009 - 15:09:09 | D ] E:\20090806
[12/08/2009 - 11:21:05 | D ] E:\20090812
[22/08/2009 - 19:30:44 | D ] E:\20090822
[12/11/2009 - 18:03:30 | D ] E:\20090830
[26/09/2009 - 13:48:43 | D ] E:\20090926
[30/09/2009 - 11:12:49 | D ] E:\20090930
[12/10/2009 - 15:57:34 | D ] E:\20091012
[15/01/2010 - 18:01:46 | D ] E:\20091025
[17/04/2010 - 16:42:34 | D ] E:\20091103
[05/11/2009 - 19:01:08 | D ] E:\20091105
[14/11/2009 - 00:42:09 | D ] E:\20091114
[26/06/2010 - 21:43:31 | D ] E:\20100626
[17/08/2010 - 14:00:34 | D ] E:\20100728
[11/08/2010 - 10:31:42 | D ] E:\20100730
[07/09/2010 - 19:21:42 | N | 0] E:\92e9
[11/09/2010 - 06:12:37 | RAD ] E:\Autorun.inf
[11/08/2010 - 10:37:04 | D ] E:\BILE
[26/11/2008 - 22:31:26 | N | 28160] E:\cv original.doc
[10/10/2010 - 21:02:39 | D ] E:\dr
[12/04/2010 - 14:01:23 | D ] E:\ena
[11/11/2010 - 00:25:17 | D ] E:\found.000
[05/10/2010 - 14:11:51 | D ] E:\kl.files
[17/12/2008 - 12:08:02 | N | 22528] E:\lettre de motivation original.doc
[27/10/2010 - 21:52:34 | D ] E:\ma music
[07/11/2010 - 13:56:38 | D ] E:\mes image
[27/11/2010 - 16:08:52 | SHD ] E:\RECYCLER
[30/06/2009 - 15:30:23 | N | 0] E:\result.txt
[30/06/2009 - 15:30:27 | N | 0] E:\result_Combos.txt
[30/06/2009 - 15:30:27 | N | 0] E:\result_URL.txt
[12/03/2009 - 19:35:23 | D ] E:\SMRTNTKY
[07/11/2010 - 12:42:07 | SHD ] E:\System Volume Information
[19/08/2004 - 16:09:32 | N | 317] F:\autorun.inf
[13/10/2008 - 01:22:26 | N | 4675800] F:\Metallica - Nothing else matters.mp3
[24/08/2009 - 18:04:54 | N | 4514623] F:\-moi_jai_pas_(version_album).mp3
[25/10/2006 - 17:47:34 | N | 3613] F:\Perhaps.txt
[16/05/2010 - 00:30:12 | N | 28672] F:\Snani Adel.doc
[03/04/2010 - 17:35:26 | D ] F:\Marilyn Manson - Lest We Forget The Best Of (Bonus Track - 320KBPS)
[27/09/2010 - 23:09:16 | D ] F:\MY
[28/09/2010 - 20:03:58 | N | 4118656] F:\Panet.co.il_Adam-3ala-Bali.mp3
[14/09/2010 - 04:04:38 | N | 4218965] F:\eminem-ft-rihanna-e28093-love-the-way-you-lie.mp3
[13/11/2010 - 17:39:12 | RSHD ] F:\RECYCLER
[26/06/2009 - 13:48:30 | N | 4933632] F:\(04) D-Devils - Judgement Day (Radio Mix).mp3
[11/10/2010 - 13:19:02 | D ] F:\topnet
[26/09/2010 - 00:01:48 | N | 4315136] F:\Panet.co.il_Nancy-3ajram-Fe-7agat.mp3
[14/10/2010 - 23:25:50 | N | 3026473] F:\Facebook Vidéos publiées par Cool video give me your heart.mp3
[14/09/2010 - 17:47:12 | N | 6010398] F:\preview-1.mp3
[13/11/2010 - 17:23:56 | N | 4143232] F:\Zaho_JeTePromets_128kbps.mp3
[23/07/2009 - 13:48:50 | N | 3310563] F:\02 Sandstorm(1).wma
[27/09/2010 - 18:38:26 | D ] F:\Nouveau dossier
[07/03/2010 - 00:18:10 | N | 8590827] F:\001-justin_timberlake-what_goes_around-comes_around_(interlude).mp3
[30/09/2010 - 10:47:30 | N | 4381117] F:\Dirty-Hello GoodMorning.mp3
[14/09/2010 - 14:41:44 | N | 5581449] F:\preview.mp3
[23/11/2010 - 17:25:16 | D ] F:\English
[22/04/2010 - 11:09:10 | D ] F:\system
[25/09/2010 - 15:35:46 | D ] F:\wwww
[30/12/2008 - 22:38:44 | N | 5015680] F:\12-justin_timberlake-what_goes_around...comes_around.mp3
[11/04/2010 - 20:09:38 | N | 4429952] F:\14- Justin Timberlake Feat.T.I. - my love.mp3
[18/08/2009 - 14:00:10 | N | 6696960] F:\16- Booba - Numero 10.mp3
[27/10/2008 - 17:12:46 | N | 49206] F:\212980_5593.bmp
[15/12/2005 - 09:52:16 | N | 12171047] F:\Alizee.amv
[03/08/2004 - 21:14:10 | N | 2837908] F:\butterfly.mp3
[15/02/2004 - 16:39:02 | N | 1091] F:\butterfly.lrc
[24/05/2008 - 14:45:56 | N | 3546491] F:\DJ.mp3
[27/10/2008 - 18:52:32 | N | 49206] F:\ilisten1.bmp
[27/10/2008 - 19:03:16 | N | 49206] F:\ilisten2.bmp
[27/10/2008 - 18:52:50 | N | 49206] F:\ilisten5.bmp
[23/11/2010 - 17:25:36 | D ] F:\Kaspersky Lab Setup Files
[23/11/2010 - 17:32:04 | D ] F:\Ville de Soliman ????? ?????? Le groupe Zodiac fabrique ses airbags à Soliman_files
[23/11/2010 - 17:32:04 | N | 36292] F:\Ville de Soliman ????? ?????? Le groupe Zodiac fabrique ses airbags à Soliman.htm
[23/11/2010 - 17:34:54 | N | 3819860] F:\httrack-3.43-9C.exe
[23/11/2010 - 17:42:20 | D ] F:\ZODIAC AEROSPACE_files
[23/11/2010 - 17:42:20 | N | 27347] F:\ZODIAC AEROSPACE.htm
[23/11/2010 - 17:46:04 | N | 952549] F:\Brochure 2009.pdf
[23/11/2010 - 17:40:54 | N | 22945] F:\ZODIAC AEROSPACE.html
[23/11/2010 - 17:52:28 | N | 10723] F:\Wysigot.wgz
[23/11/2010 - 17:53:36 | D ] F:\ZODIAC AEROSPA2CE_files
[23/11/2010 - 17:53:36 | N | 27370] F:\ZODIAC AEROSPA2CE.htm
[23/11/2010 - 18:01:14 | D ] F:\acccaZODIAC AEROSPACE_files
[23/11/2010 - 18:01:14 | N | 27462] F:\acccaZODIAC AEROSPACE.htm
[23/11/2010 - 18:03:42 | D ] F:\Tunisie - Zodiac Aerospace 471,5 millions d'euros chiffre d'affaires du 1er trimestre 2009 2010_files
[23/11/2010 - 18:03:42 | N | 201874] F:\Tunisie - Zodiac Aerospace 471,5 millions d'euros chiffre d'affaires du 1er trimestre 2009 2010.htm
[23/11/2010 - 18:05:04 | N | 4631] F:\471.5
[23/11/2010 - 18:12:04 | N | 881725] F:\528.pdf
[23/11/2010 - 18:12:38 | N | 153294] F:\101123_ZC_CP_FR_2009_10_FY_FINAL.pdf
[23/11/2010 - 18:14:54 | D ] F:\My Web Sites
[23/11/2010 - 18:15:24 | D ] F:\Société ZODIAC AEROSPACE TUNISIE 13 personnes 8 MBA, MS & Masters_files
[23/11/2010 - 18:15:24 | N | 29545] F:\Société ZODIAC AEROSPACE TUNISIE 13 personnes 8 MBA, MS & Masters.htm
[23/11/2010 - 18:33:50 | N | 0] F:\FOXUSER.DBF
[23/11/2010 - 18:33:52 | N | 0] F:\FOXUSER.FPT

################## | Vaccin |

C:\Autorun.inf -> Dossier créé par UsbFix (El Desaparecido & C_XX)
D:\Autorun.inf -> Dossier créé par UsbFix (El Desaparecido & C_XX)
E:\Autorun.inf -> Dossier créé par UsbFix (El Desaparecido & C_XX)

################## | Upload |

Veuillez envoyer le fichier: C:\UsbFix_Upload_Me_JENHANI.zip
http://www.teamxscript.org/Upload.php
Merci de votre contribution.

################## | E.O.F |
0