Fichiers disparus + "windows repair" me spam!

Fermé
SnakeFurie Messages postés 68 Date d'inscription samedi 22 septembre 2007 Statut Membre Dernière intervention 30 janvier 2014 - 2 avril 2011 à 12:34
juju666 Messages postés 35446 Date d'inscription jeudi 18 décembre 2008 Statut Contributeur sécurité Dernière intervention 21 avril 2024 - 14 avril 2011 à 01:14
Salut la compagnie,
je vous présente mon problème quelque peu embarrassant puisque n'ayant plus d'antivirus depuis 3 jours j'ai choppé virus sur virus ! J'ai su me débrouiller en faisant de petites recherches et en trouvant tel ou tel technique pour anéantir les deux premiers, celui-ci en revanche me pose une colle.
En effet mes fichiers ont donc disparus, et même lorsque j'arrive à atteindre l'outil de restauration, lorsque je fais le last clique qui aurait dû tout me sauver, le fameux "suivant", la restau ne fonctionne pas et ne se déclenche pas malgré une courte attente qui me fait toujours un peu espérer. J'aurais alors besoin d'une aide efficace qui puisse remettre dans le droit chemin ce pc fou !
@Juju666 : J'ai pris l'initiative de fouiller un peu roguekiller, et j'ai finalement retrouvé mes fichier, seulement il semble que ce ne soit que de l'apparence puisque la restauration est toujours erronée et ne fonctionne pas !

Merci d'avance pour vos réponses,
Quentin.

A voir également:

29 réponses

SnakeFurie Messages postés 68 Date d'inscription samedi 22 septembre 2007 Statut Membre Dernière intervention 30 janvier 2014
2 avril 2011 à 13:39
Re,
Bon il se trouve que ma restauration s'étant finalement remise à fonctionner et ce malgré un message d'erreur m'informant que celle-ci n'avait pas été effective et que dès lors rien n'aurait changé, je n'ai plus l'apparition du spam windows repair et mon pc à l'air de réagir du mieux qu'il puisse.
Cependant il me reste des doutes, le trojan est-il bien éradiquer ? Un clean du pc est-il toujours nécessaire ? Je pense tout de même que ce sujet peut se clore, merci quant à vous si précision il y a !
Bonne journée.
0
juju666 Messages postés 35446 Date d'inscription jeudi 18 décembre 2008 Statut Contributeur sécurité Dernière intervention 21 avril 2024 4 795
2 avril 2011 à 13:42
salut, tu peux poster les rapports que roguekiller t as donné stp ?
0
SnakeFurie Messages postés 68 Date d'inscription samedi 22 septembre 2007 Statut Membre Dernière intervention 30 janvier 2014
Modifié par SnakeFurie le 2/04/2011 à 14:35
Euhm je ne les ai plus je peux les refaire si tu veux. Bon puis des nouvelles puisque je ne peux pas me co à wow, preuve que le virus doit toujours être efficient, un clean suffit-il ? De plus j'ai toujours l'icône du raccourcis de windows repair et un spam IE me demandant d'arrêter le script.
Vaut-mieux que je clean mon pc ou que je réessaie de le restaurer ?
0
SnakeFurie Messages postés 68 Date d'inscription samedi 22 septembre 2007 Statut Membre Dernière intervention 30 janvier 2014
2 avril 2011 à 14:28
RogueKiller V4.3.6 par Tigzy
contact sur https://www.luanagames.com/index.fr.html
mail: tigzyRK<at>gmail<dot>com
Remontees: https://www.luanagames.com/index.fr.html

Systeme d'exploitation: Windows XP (5.1.2600 Service Pack 3) 32 bits version
Demarrage : Mode normal
Utilisateur: test [Droits d'admin]
Mode: Suppression -- Date : 02/04/2011 14:27:18

Processus malicieux: 0

Entrees de registre: 0

Fichier HOSTS:
127.0.0.1 localhost
192.246.40.62 etguidauth.evenbalance.com
127.0.0.1 localhost # loopback
213.239.219.83 l2authd.lineage2.com # m0o age
213.239.219.83 L2testauthd.lineage2.com #m0o age
127.0.0.1 www.007guard.com
127.0.0.1 007guard.com
127.0.0.1 008i.com
127.0.0.1 www.008k.com
127.0.0.1 008k.com
127.0.0.1 www.00hq.com
127.0.0.1 00hq.com
127.0.0.1 010402.com
127.0.0.1 www.032439.com
127.0.0.1 032439.com
127.0.0.1 www.0scan.com
127.0.0.1 0scan.com
127.0.0.1 www.1000gratisproben.com
127.0.0.1 1000gratisproben.com
127.0.0.1 www.1001namen.com
[...]


Termine : << RKreport[1].txt >>
RKreport[1].txt
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
juju666 Messages postés 35446 Date d'inscription jeudi 18 décembre 2008 Statut Contributeur sécurité Dernière intervention 21 avril 2024 4 795
2 avril 2011 à 14:33
Ok vu la suite:

DÉSACTIVE TON ANTIVIRUS ET TON PARE-FEU SI PRÉSENTS !!!!! (car l'outil est détecté a tort comme infection contenant un module qui sert à arrêter des processus , et un autre servant à prendre des droits dans le registre pour effectuer des suppressions)

▶ Télécharge ici :List_Kill'em de gen-hackman

et télécharge Pre_scan de gen-hackman

et enregistre les sur ton bureau

si tu as XP => double clique
si tu as Vista ou windows 7 => clic droit "exécuter en tant que...."


sur Pre_Scan.exe. Laisse le travailler et poste le contenu du rapport rapport.txt sur ton bureau ici directement.

Puis:

si tu as XP => double clique
si tu as Vista ou windows 7 => clic droit "exécuter en tant que...."


sur sur List_Kill'em_Instal.exe sur ton bureau pour lancer l'installation

Laisse coché :

♦ Exécuter List_Kill'em

une fois terminée , clic sur "terminer"

lance-le via le raccourci apparu sur ton bureau comme précité au début

choisis l'option Search

▶ laisse travailler l'outil

à l'apparition de la fenêtre blanche , c'est un peu long , c'est normal , il se peut que l'outil bloque anormalement longtemps arrivé à 95% , relance-le avec le raccourci sur le bureau sans l'arreter , puis clique sur le tout petit "X" en bas de la fenetre d'accueil du programme, ca le debloquera pour finir son scan

▶ Poste le contenu du rapport qui s'ouvre aux 100 % du scan à l'écran "COMPLETED"

▶▶▶ NE LE POSTE PAS SUR LE FORUM

Pour me le transmettre clique sur ce lien : http://www.cijoint.fr/

▶ Clique sur Parcourir et cherche le fichier C:\List'em.txt

▶ Clique sur Ouvrir.

▶ Clique sur "Cliquez ici pour déposer le fichier".

Un lien de cette forme :

http://www.cijoint.fr/cjlink.php?file=265368/cijSKAP5fU.txt

est ajouté dans la page.

▶ Fais de même avec more.txt qui se trouve sur ton bureau

▶ Copie ces liens dans ta réponse.
0
SnakeFurie Messages postés 68 Date d'inscription samedi 22 septembre 2007 Statut Membre Dernière intervention 30 janvier 2014
Modifié par SnakeFurie le 2/04/2011 à 15:12
Ton implication dans ce tuto fait plaisir à voir et à exécuter aussi :p ! Voici le lien du pre scan : http://www.cijoint.fr/cjlink.php?file=cj201104/cij0NkbCP0.txt

Quant à list_kill'em il semble qu'il se bloque à Shell extensions, la barre étant à 5/10% et une fenêtre style invite de commandes s'est ouverte ! Que dois-je faire diraient omar et fred :p Je n'ai pas prévu la barre de raccourcis en plus :(

EDIT : euh en fait il m'a dit recherche terminée et m'a copié deux autres .txt dont le more, est-elle bien terminée ?
Les deux autres liens :
- http://www.cijoint.fr/cjlink.php?file=cj201104/cijgh5OGVe.txt
- http://www.cijoint.fr/cjlink.php?file=cj201104/cijC1mYsXG.txt
0
SnakeFurie Messages postés 68 Date d'inscription samedi 22 septembre 2007 Statut Membre Dernière intervention 30 janvier 2014
Modifié par SnakeFurie le 2/04/2011 à 15:41
Je viens de le refaire est ça me fait sensiblement la même chose ! Ma barre coince à un moment ( au debut ) et s'ouvre une Invite de commande. Est ce que c'est le bug dont tu parlais ? Je n'ai pas saisi la manière avec laquelle je pourrais empêcher ce bug, ha si j'ai une idée je vais tester en attendant !
Même en suivi à la lettre je n'arrive pas à placer list_kill'em en raccourcis
0
juju666 Messages postés 35446 Date d'inscription jeudi 18 décembre 2008 Statut Contributeur sécurité Dernière intervention 21 avril 2024 4 795
2 avril 2011 à 16:44
Re


si tu as XP => double clique
si tu as Vista ou windows 7 => clic droit "exécuter en tant que...."


▶ Relance List_Kill'em,avec le raccourci sur ton bureau.

mais cette fois-ci :

▶ choisis l'Option Suppression

▶▶▶ Ne clique qu'une seule fois sur le bouton !!

laisse travailler l'outil.

en fin de scan la fenêtre se ferme , et tu as un rapport du nom de Kill'em.txt sur ton bureau ,

▶ colle le contenu dans ta réponse

=====================================

▶ Télécharge Malwarebytes' Anti-Malware et enregistre le sur ton bureau.

▶ ▶ Miroir 1 si inaccessible

▶ ▶ Miroir 2 si inaccessible

▶ ▶ /!\ Utilisateur de Vista et Windows 7 : Clique droit sur le logo de Malwarebytes' Anti-Malware, « exécuter en tant qu'Administrateur »

▶ Double clique sur le fichier téléchargé pour lancer le processus d'installation.
▶ Dans l'onglet "mise à jour", clique sur le bouton Recherche de mise à jour
▶ si le pare-feu demande l'autorisation de se connecter pour Malwarebytes, accepte
Une fois la mise à jour terminée
▶ rends-toi dans l'onglet Recherche
▶ Sélectionne Exécuter un examen complet
▶ Clique sur Rechercher
▶ ▶ Le scan démarre.
▶ A la fin de l'analyse, un message s'affiche : L'examen s'est terminé normalement. Cliquez sur 'Afficher les résultats' pour afficher tous les objets trouvés.
▶ Clique sur Ok pour poursuivre.
▶ Si des malwares ont été détectés, cliques sur Afficher les résultats
▶ Sélectionne tout (ou laisse coché) et clique sur Supprimer la sélection . Malwarebytes va détruire les fichiers et clés de registre et en mettre une copie dans la quarantaine.
▶ Malwarebytes va ouvrir le bloc-notes et y copier le rapport d'analyse. Copie/colle le ici (ctrl+a pour tout sélectionner, ctrl+c pour copier, ctrl+v pour coller)

▶ ▶ Il se peut que MBAM ait besoin de redémarrer le pc pour finaliser la suppression, donc pas de panique, redémarre ton pc !!!
▶ Une fois le PC redémarré, rends toi dans l'onglet rapport/log
▶ Tu clique dessus pour l'afficher, une fois affiché
▶ Copie/colle le ici (ctrl+a pour tout sélectionner, ctrl+c pour copier, ctrl+v pour coller)

Si tu as besoin d'aide regarde ce tutoriel :
https://www.malekal.com/tutoriel-malwarebyte-anti-malware/

▶ ▶ Si tu n'arrive pas à le mettre à jour, télécharge ce fichier

==============================

▶ Télécharger, sur le Bureau, MBRCheck (par a_d_13) en cliquant sur l'un de ces liens:

* http://www.geekstogo.com/forum/files/file/441-mbrcheck/
* https://download.bleepingcomputer.com/rootrepeal/MBRCheck.exe
* http://www.kernelmode.info/MBRCheck.exe

▶ Fermer tout et cliquer sur MBRCheck.exe

▶ ▶ S'il te demande de taper "Y or N", tapes Y puis valider en tapant sur la touche entrée de ton clavier,
▶ ▶ S'il te demande de taper sur la touche "entrée" seulement, fais le
▶ ▶ S'il te demande 1, 2 ou 3, Appuie sur 2

▶ Un rapport s'ouvre en fin de scan et sera automatiquement enregistré sur le Bureau. Il sera du type MBRCheck_AA.JJ.MM_hh.mm.ss.txt (i.e. MBRCheck_07.21.10_18.08.06.txt).
0
SnakeFurie Messages postés 68 Date d'inscription samedi 22 septembre 2007 Statut Membre Dernière intervention 30 janvier 2014
2 avril 2011 à 19:05
Voici les rapports :

- Kill'em.txt
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Kill'em by g3n-h@ckm@n 2.1.3.7 ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤

Mis à jour le 02/04/2011 | 12.50 par g3n-h@ckm@n
Utilisateur : test (Administrateurs)
Ordinateur : ACER-FE8B363750

Système d'exploitation : Microsoft Windows XP (32 bits)

c:\ -> [Fixed] | [ACER] | Total : 73560 Mo | Free : 13500 Mo -> NTFS
d:\ -> [Fixed] | [ACERDATA] | Total : 74050 Mo | Free : 39510 Mo -> FAT32
e:\ -> [CDROM] | [CDRoot] | Total : 700 Mo | Free : 0 Mo -> CDFS
f:\ -> [Removable] | [] | Total : 0 Mo | Free : 0 Mo ->
g:\ -> [Removable] | [] | Total : 0 Mo | Free : 0 Mo ->
h:\ -> [Removable] | [] | Total : 0 Mo | Free : 0 Mo ->
i:\ -> [Removable] | [] | Total : 0 Mo | Free : 0 Mo ->
j:\ -> [CDROM] | [] | Total : 0 Mo | Free : 0 Mo ->

Scan : 17:31:55 | 02/04/2011

¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤

¤¤¤¤¤¤¤¤¤¤ Winlogon ¤¤¤¤¤¤¤¤¤¤

[HKLM\..\..\Winlogon] | AutoRestartShell = 1
[HKLM\..\..\Winlogon] | Shell = Explorer.exe
[HKLM\..\..\Winlogon] | Userinit = C:\WINDOWS\system32\Userinit.exe,
[HKLM\..\..\Winlogon] | System =
[HKLM\..\..\Winlogon] | PowerdownAfterShutdown = 1

¤¤¤¤¤¤¤¤¤¤ Internet Explorer ¤¤¤¤¤¤¤¤¤¤

[HKCU\..\..\Internet Explorer\Main] | Start Page=https://www.google.com/?gws_rd=ssl
[HKCU\..\..\Internet Explorer\Main] | Local Page=C:\WINDOWS\system32\blank.htm
[HKCU\..\..\Internet Explorer\Main] | Search Page=http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch

[HKLM\..\..\Internet Explorer\Main] | Start Page=http://go.microsoft.com/fwlink/?LinkId=69157
[HKLM\..\..\Internet Explorer\Main] | Local Page=C:\WINDOWS\system32\blank.htm
[HKLM\..\..\Internet Explorer\Main] | Default_Search_URL=http://go.microsoft.com/fwlink/?LinkId=54896
[HKLM\..\..\Internet Explorer\Main] | Default_Page_URL=http://go.microsoft.com/fwlink/?LinkId=69157
[HKLM\..\..\Internet Explorer\Main] | Search Page=http://go.microsoft.com/fwlink/?LinkId=54896

¤¤¤¤¤¤¤¤¤¤ IFEO ¤¤¤¤¤¤¤¤¤¤

Supprimé : [ctfmon.exe] -> C:\WINDOWS\system32\ctfmon_ez.exe
Supprimé : [Your Image File Name Here without a path] -> ntsd -d

¤¤¤¤¤¤¤¤¤¤ Mountpoints2 ¤¤¤¤¤¤¤¤¤¤

Supprimé : [HKCU\..\..\Mountpoints2\{af0cb1bb-c087-11de-86ea-0019212289b3}] -> command : J:\wdsync.exe

¤¤¤¤¤¤¤¤¤¤ Services ¤¤¤¤¤¤¤¤¤¤

[HKLM\..\..\Services\Ndisuio] | Start -> Aucune modification : 3 -> 3
[HKLM\..\..\Services\EapHost] | Start -> Modification apportée : 3 -> 2
[HKLM\..\..\Services\Wlansvc] | Start -> Modification apportée : -> 2
[HKLM\..\..\Services\SharedAccess] | Start -> Aucune modification : 2 -> 2
[HKLM\..\..\Services\windefend] | Start -> Modification apportée : -> 2
[HKLM\..\..\Services\wuauserv] | Start -> Aucune modification : 2 -> 2
[HKLM\..\..\Services\wscsvc] | Start -> Aucune modification : 2 -> 2

¤¤¤¤¤¤¤¤¤¤ Hosts ¤¤¤¤¤¤¤¤¤¤

127.0.0.1 localhost



¤¤¤¤¤¤¤¤¤¤ Supression Fichiers | Dossiers ¤¤¤¤¤¤¤¤¤¤

Mise en quarantaine : C:\Program Files\Fichiers communs\FDEUnInstaller.exe

¤¤¤¤¤¤¤¤¤¤ Suppression Clés ¤¤¤¤¤¤¤¤¤¤


¤¤¤¤¤¤¤¤¤¤¤ Services néfastes ¤¤¤¤¤¤¤¤¤¤





¤¤¤¤¤¤¤¤¤¤ Suppression Valeurs ¤¤¤¤¤¤¤¤¤¤

Valeur Supprimée : [HKLM\..\..\Terminal Server\..\..\Run] | Firevall Administrating

¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤

[HKLM\..\..\Security Center] | FirstRunDisabled = 1
[HKLM\..\..\Security Center] | AntiVirusDisableNotify = 1
[HKLM\..\..\Security Center] | FirewallDisableNotify = 1
[HKLM\..\..\Security Center] | UpdatesDisableNotify = 1
[HKLM\..\..\Security Center] | AntiVirusOverride = 0
[HKLM\..\..\Security Center] | FirewallOverride = 0


Fin : 17:40:55

¤¤¤¤¤¤¤¤¤¤¤¤¤( EOF )¤¤¤¤¤¤¤¤¤¤¤¤
0
SnakeFurie Messages postés 68 Date d'inscription samedi 22 septembre 2007 Statut Membre Dernière intervention 30 janvier 2014
2 avril 2011 à 19:05
-Malwarebytes' Anti-Malware 1.50
www.malwarebytes.org

Version de la base de données: 6247

Windows 5.1.2600 Service Pack 3
Internet Explorer 6.0.2900.5512

02/04/2011 18:56:19
mbam-log-2011-04-02 (18-56-19).txt

Type d'examen: Examen complet (C:\|D:\|)
Elément(s) analysé(s): 263217
Temps écoulé: 54 minute(s), 51 seconde(s)

Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 36
Valeur(s) du Registre infectée(s): 1
Elément(s) de données du Registre infecté(s): 3
Dossier(s) infecté(s): 27
Fichier(s) infecté(s): 346

Processus mémoire infecté(s):
(Aucun élément nuisible détecté)

Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)

Clé(s) du Registre infectée(s):
HKEY_CLASSES_ROOT\CLSID\{DADF9052-F5BF-3FF1-8A5C-D98297CC9C63} (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\D.1 (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\D (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DADF9052-F5BF-3FF1-8A5C-D98297CC9C63} (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\{DADF9052-F5BF-3FF1-8A5C-D98297CC9C63} (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{DADF9052-F5BF-3FF1-8A5C-D98297CC9C63} (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{F2849503-9CF9-3B25-B6AD-2909189D708E} (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{F51FEB8D-DB86-3741-97B8-FAB3D9F2441B} (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{2F9AD413-2E0B-4a85-BB2A-CF961238262A} (Adware.Hotbar) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{A078F691-9C07-4AF2-BF43-35E79EECF8B7} (Adware.Softomate) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\HotbarWeather.WeatherController.1 (Adware.Softomate) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\HotbarWeather.WeatherController (Adware.Softomate) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A078F691-9C07-4AF2-BF43-35E79EECF8B7} (Adware.Softomate) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{A078F691-9C07-4AF2-BF43-35E79EECF8B7} (Adware.Softomate) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{A3E67DAA-DA01-4da5-98BE-3088B554A11E} (Adware.Hotbar) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\HotbarAX.UserProfiles.1 (Adware.Hotbar) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\HotbarAX.UserProfiles (Adware.Hotbar) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{A3E67DAA-DA01-4DA5-98BE-3088B554A11E} (Adware.Hotbar) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{D95C7240-0282-4c01-93F5-673BCA03DA86} (Adware.Hotbar) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\HotbarAX.Info.1 (Adware.Hotbar) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\HotbarAX.Info (Adware.Hotbar) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{D95C7240-0282-4C01-93F5-673BCA03DA86} (Adware.Hotbar) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Typelib\{40196867-19F8-7157-C097-ECAFF653C9AD} (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{2AA2FBF8-9C76-4E97-A226-25C5F4AB6358} (Adware.Hotbar) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{500BCA15-57A7-4EAF-8143-8C619470B13D} (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{90B8B761-DF2B-48AC-BBE0-BCC03A819B3B} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{C5428486-50A0-4A02-9D20-520B59A9F9B2} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{C5428486-50A0-4A02-9D20-520B59A9F9B3} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{69725738-CD68-4f36-8D02-8C43722EE5DA} (Adware.Hotbar) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Findbasic (Adware.Agent) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Z0 - AVI Converter (Adware.Agent) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\XML (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\Software\hotbarsa (Adware.Hotbar) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\Software\IEBarProperties (Adware.Mirar) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Findbasic (Adware.FindBasic) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Findbasic Service (Adware.FindBasic) -> Quarantined and deleted successfully.

Valeur(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Mozilla\Firefox\extensions\Hotbar@Hotbar.com (Adware.Hotbar) -> Value: Hotbar@Hotbar.com -> Quarantined and deleted successfully.

Elément(s) de données du Registre infecté(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\UpdatesDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.

Dossier(s) infecté(s):
c:\documents and settings\all users\application data\05061214 (Rogue.Multiple) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\50457156 (Rogue.Multiple) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\50467546 (Rogue.Multiple) -> Quarantined and deleted successfully.
c:\documents and settings\all users\application data\findbasic (Adware.FindBasic) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\IESkins (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5 (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\HostOI (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\HostOI\dynamic (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\HostOL (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\HostOL\dynamic (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\dynamic (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\dynamic\tooltipxml (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\dynamic\ustat (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1 (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2 (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\DownLoad (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\Weather (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\Weather\weatherdpa (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\Weather\weatherdpa\weather_xml (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\Weather\weather_xml (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\all users\application data\HotbarSA (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\Quentin\application data\Seekmo (Adware.Seekmo) -> Quarantined and deleted successfully.
c:\program files\findbasic (Adware.FindBasic) -> Quarantined and deleted successfully.
c:\documents and settings\all users\menu démarrer\programmes\Hotbar (Adware.Hotbar) -> Quarantined and deleted successfully.

Fichier(s) infecté(s):
c:\WINDOWS\system32\hh77648.dll (Trojan.BHO) -> Quarantined and deleted successfully.
c:\documents and settings\test\Bureau\générateur de clé cod4.exe (HackTool.Keygen) -> Quarantined and deleted successfully.
c:\documents and settings\test\Bureau\aviconvertersetup.exe (Adware.Agent) -> Quarantined and deleted successfully.
c:\documents and settings\test\local settings\Temp\0.4035568661807516.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\documents and settings\test\local settings\Temp\0.4680436971395434.exe (Rogue.Installer) -> Quarantined and deleted successfully.
c:\documents and settings\test\rk_quarantine\cdeftcxscste.exe.vir (Trojan.FakeAlert) -> Quarantined and deleted successfully.
c:\program files\mozilla firefox\plugins\npclntax_hotbarsa.dll (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\program files\findbasic\uninstall.exe (Adware.Agent) -> Quarantined and deleted successfully.
c:\program files\foxtabaviconverter\uninstall\uninstall.exe (Adware.Agent) -> Quarantined and deleted successfully.
c:\system volume information\_restore{eada2b13-36ae-4518-a8c2-3d8b7d759571}\RP1249\A1017246.dll (Adware.Mirar) -> Quarantined and deleted successfully.
c:\system volume information\_restore{eada2b13-36ae-4518-a8c2-3d8b7d759571}\RP1251\A1021317.exe (Trojan.FakeMS) -> Quarantined and deleted successfully.
c:\system volume information\_restore{eada2b13-36ae-4518-a8c2-3d8b7d759571}\RP1251\A1021316.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
c:\system volume information\_restore{eada2b13-36ae-4518-a8c2-3d8b7d759571}\RP1251\A1021318.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\system volume information\_restore{eada2b13-36ae-4518-a8c2-3d8b7d759571}\RP1251\A1021319.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
c:\system volume information\_restore{eada2b13-36ae-4518-a8c2-3d8b7d759571}\RP1251\A1021320.exe (Trojan.FakeMS) -> Quarantined and deleted successfully.
c:\system volume information\_restore{eada2b13-36ae-4518-a8c2-3d8b7d759571}\RP1253\A1024383.exe (Rogue.Installer.Gen) -> Quarantined and deleted successfully.
c:\system volume information\_restore{eada2b13-36ae-4518-a8c2-3d8b7d759571}\RP1253\A1024391.dll (Adware.Mirar) -> Quarantined and deleted successfully.
c:\system volume information\_restore{eada2b13-36ae-4518-a8c2-3d8b7d759571}\RP1254\A1026444.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
c:\system volume information\_restore{eada2b13-36ae-4518-a8c2-3d8b7d759571}\RP1254\A1026445.exe (Trojan.FakeMS) -> Quarantined and deleted successfully.
c:\system volume information\_restore{eada2b13-36ae-4518-a8c2-3d8b7d759571}\RP1254\A1026446.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\system volume information\_restore{eada2b13-36ae-4518-a8c2-3d8b7d759571}\RP1254\A1026447.exe (Backdoor.Bot) -> Quarantined and deleted successfully.
c:\system volume information\_restore{eada2b13-36ae-4518-a8c2-3d8b7d759571}\RP1254\A1026448.exe (Trojan.FakeMS) -> Quarantined and deleted successfully.
c:\system volume information\_restore{eada2b13-36ae-4518-a8c2-3d8b7d759571}\RP1276\A1032990.exe (Rogue.FakeHDD) -> Quarantined and deleted successfully.
c:\system volume information\_restore{eada2b13-36ae-4518-a8c2-3d8b7d759571}\RP1276\A1032994.dll (Trojan.BHO) -> Quarantined and deleted successfully.
c:\system volume information\_restore{eada2b13-36ae-4518-a8c2-3d8b7d759571}\RP1277\A1033728.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
c:\system volume information\_restore{eada2b13-36ae-4518-a8c2-3d8b7d759571}\RP1277\A1033875.dll (Adware.Mirar) -> Quarantined and deleted successfully.
c:\WINDOWS\bricopacks\gant3 ocean shellpack\packfiles\116_calc.exe (Trojan.Agent.Gen) -> Quarantined and deleted successfully.
c:\WINDOWS\bricopacks\SysFiles\128_iexplore.exe (Trojan.FakeMS) -> Quarantined and deleted successfully.
c:\WINDOWS\bricopacks\vista inspirat 2\packfiles\79_iexplore.exe (Trojan.FakeMS) -> Quarantined and deleted successfully.
c:\WINDOWS\$ntservicepackuninstall$\iexplore.exe (Trojan.FakeMS) -> Quarantined and deleted successfully.
c:\WINDOWS\system32\4578.dll (Adware.Mirar) -> Quarantined and deleted successfully.
c:\WINDOWS\system32\ctfmon_ez.exe (Trojan.BHO) -> Quarantined and deleted successfully.
c:\documents and settings\test\local settings\Temp\ppddfcfux.exxe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
c:\documents and settings\test\local settings\Temp\w32rim_mem.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
c:\documents and settings\test\local settings\Temp\wrfwe_di.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
c:\documents and settings\Quentin\local settings\application data\cimoznbf_nav.dat (Adware.NaviPromo) -> Quarantined and deleted successfully.
c:\documents and settings\Quentin\local settings\application data\cimoznbf_navps.dat (Adware.NaviPromo) -> Quarantined and deleted successfully.
c:\documents and settings\test\local settings\Temp\dffuck.exe (Malware.Trace) -> Quarantined and deleted successfully.
c:\documents and settings\all users\application data\findbasic\findbasic125.exe (Adware.FindBasic) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\50457156\userid.dat (Rogue.Multiple) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\50467546\userid.dat (Rogue.Multiple) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\dynamic\1.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\dynamic\1001886.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\dynamic\1383356.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\dynamic\1387231.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\dynamic\1404358.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\dynamic\1817352.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\dynamic\2883915.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\dynamic\3852296.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\dynamic\domains.txt (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\dynamic\tooltipxml\29547 (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\dynamic\tooltipxml\1000023894 (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\dynamic\tooltipxml\1000024063 (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\dynamic\tooltipxml\1000024490 (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\dynamic\tooltipxml\1000024944 (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\dynamic\tooltipxml\1000026058 (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\dynamic\tooltipxml\1000026997 (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\dynamic\tooltipxml\1000033079 (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\dynamic\tooltipxml\1000052045 (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\dynamic\tooltipxml\1000052046 (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\dynamic\tooltipxml\1000052678 (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\dynamic\tooltipxml\1000068667 (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\dynamic\tooltipxml\1000069613 (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\dynamic\tooltipxml\1000080020 (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\dynamic\tooltipxml\1000082926 (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\dynamic\tooltipxml\1000083033 (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\dynamic\tooltipxml\1000083145 (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\dynamic\tooltipxml\1058 (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\dynamic\tooltipxml\11891 (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\dynamic\tooltipxml\1491 (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\dynamic\tooltipxml\275654 (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\dynamic\tooltipxml\29115 (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\dynamic\tooltipxml\30854 (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\dynamic\tooltipxml\403305 (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\dynamic\tooltipxml\43184 (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\dynamic\tooltipxml\44228 (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\dynamic\tooltipxml\44271 (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\dynamic\tooltipxml\461315 (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\dynamic\tooltipxml\528757 (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\dynamic\tooltipxml\53481 (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\dynamic\tooltipxml\543041 (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\dynamic\tooltipxml\54473 (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\dynamic\tooltipxml\571472 (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\dynamic\tooltipxml\576702 (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\dynamic\tooltipxml\6558 (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\dynamic\tooltipxml\65770 (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\dynamic\tooltipxml\705183 (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\dynamic\tooltipxml\705381 (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\dynamic\tooltipxml\705401 (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\dynamic\tooltipxml\738258 (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\dynamic\tooltipxml\744884 (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\dynamic\tooltipxml\744978 (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\dynamic\tooltipxml\745107 (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\dynamic\tooltipxml\81392 (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\dynamic\tooltipxml\95825 (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\ads.cdf (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\btntrans.idx (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\btntrans1.dat (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\business_promo.htm (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\buttondir.txt (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\components.cdf (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\cursors.res (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\default_bidz12.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\default_bidz13.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\default_bidz14.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\default_bidz15.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\default_bidz16.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\default_bidz17.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\default_bidz18.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\default_bidz19.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\default_bidz2.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\default_bidz20.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\default_bidz3.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\default_bidz4.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\default_bidz5.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\default_bidz6.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\default_bidz7.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\default_bidz8.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\default_categorize.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\default_comparison.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\default_em_profl_ca_flow_b_ieb.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\default_explorer-mails.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\default_explorer-people.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\default_favorites.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\default_games.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\default_hide.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\default_hotbarcom.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\default_hotmail.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\default_hsskin.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\default_jemster.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\default_jemsterie.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\default_jemsteruk.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\default_jobsearch.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\default.cdf (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\default_511745-514279.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\default_bidz.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\default_bidz1.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\default_bidz10.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\default_new.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\default_premium.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\default_reun.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\default_ringtones.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\default_searchboxtrapper.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\default_searchfor.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\default_searchgo.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\default_weather.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\default_yellowpages.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\d_icons_buttons_1000.res (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\d_icons_buttons_2000.res (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\d_icons_buttons_3000.res (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\d_icons_buttons_bar.res (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\d_icons_buttons_bbar1.res (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\d_icons_buttons_logos.res (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\d_icons_buttons_other.res (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\d_icons_weather.res (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\editblbuttons.res (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\email-def-511724-548964.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\default_bidz11.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\default_bidz9.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\default_mails.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\email-def-511724-9595.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\ie_games_icon.res (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\email-t1-bg.res (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\gamesmenu.cdf (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\gamesmenu.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\hb_ie_menu.res (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\hotbar-premium-hotbar-premium.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\hotbar-premium.cdf (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\hotbar_promo.htm (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\icons2.res (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\ie_video.res (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\keywords.idx (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\keywords1.dat (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\layout.cdf (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\linkpathlegal.txt (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\more.res (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\new_games.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\progress.res (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\sales_buttons.res (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\sdfmodifier.xml (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\s_icons_buttons.res (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\t2_bg.res (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\theweb.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\top7.cdf (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\top7_theweb.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\tsd_bg.res (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\1\weathericon.res (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\ads.cdf (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\btntrans.idx (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\btntrans1.dat (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\business_promo.htm (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\buttondir.txt (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\components.cdf (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\cursors.res (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\default_bidz12.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\default_bidz13.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\default_bidz14.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\default_bidz15.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\default_bidz16.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\default_bidz17.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\default_bidz18.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\default_bidz19.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\default_bidz2.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\default_bidz20.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\default_bidz3.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\default_bidz4.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\default_bidz5.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\default_bidz6.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\default_bidz7.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\default_bidz8.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\default_categorize.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\default_comparison.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\default_em_profl_ca_flow_b_ieb.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\default_explorer-mails.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\default_explorer-people.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\default_favorites.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\default_games.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\default_hide.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\default_hotbarcom.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\default_hotmail.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\default_hsskin.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\default_jemster.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\default_jemsterie.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\default_jemsteruk.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\default_jobsearch.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\default.cdf (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\default_511745-514279.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\default_bidz.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\default_bidz1.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\default_bidz10.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\default_new.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\default_premium.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\default_reun.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\default_ringtones.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\default_searchboxtrapper.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\default_searchfor.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\default_searchgo.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\default_weather.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\default_yellowpages.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\d_icons_buttons_1000.res (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\d_icons_buttons_2000.res (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\d_icons_buttons_3000.res (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\d_icons_buttons_bar.res (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\d_icons_buttons_bbar1.res (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\d_icons_buttons_logos.res (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\d_icons_buttons_other.res (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\d_icons_weather.res (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\editblbuttons.res (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\email-def-511724-548964.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\default_bidz11.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\default_bidz9.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\default_mails.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\email-def-511724-9595.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\ie_games_icon.res (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\email-t1-bg.res (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\gamesmenu.cdf (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\gamesmenu.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\hb_ie_menu.res (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\hotbar-premium-hotbar-premium.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\hotbar-premium.cdf (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\hotbar_promo.htm (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\icons2.res (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\ie_video.res (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\keywords.idx (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\keywords1.dat (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\layout.cdf (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\linkpathlegal.txt (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\more.res (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\new_games.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\progress.res (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\sales_buttons.res (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\sdfmodifier.xml (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\s_icons_buttons.res (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\t2_bg.res (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\theweb.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\top7.cdf (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\top7_theweb.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\tsd_bg.res (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\2\weathericon.res (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\DownLoad\ads.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\DownLoad\BtnTrans.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\DownLoad\btntrans1.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\DownLoad\business_promo.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\DownLoad\buttondir.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\DownLoad\editblbuttons.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\DownLoad\email-t1-bg.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\DownLoad\progress.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\DownLoad\sales_buttons.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\DownLoad\samplegroups2.txt (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\DownLoad\samplegroups2.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\DownLoad\sdfmodifier.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\DownLoad\s_icons_buttons.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\DownLoad\t2_bg.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\DownLoad\top7.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\DownLoad\tsd_bg.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\DownLoad\weathericon.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\DownLoad\d_icons_buttons_2000.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\DownLoad\d_icons_buttons_3000.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\DownLoad\d_icons_buttons_bar.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\DownLoad\d_icons_buttons_bbar1.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\DownLoad\d_icons_buttons_logos.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\DownLoad\d_icons_buttons_other.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\DownLoad\ie_video.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\DownLoad\keywords.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\DownLoad\keywords1.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\DownLoad\layout.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\DownLoad\linkpathlegal.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\DownLoad\default.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\DownLoad\cursors.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\DownLoad\d_icons_buttons_1000.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\DownLoad\d_icons_weather.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\DownLoad\ie_games_icon.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\DownLoad\more.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\DownLoad\gamesmenu.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\DownLoad\hb_ie_menu.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\DownLoad\hotbar-premium.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\DownLoad\hotbar_promo.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\v3.5\Hotbar\static\DownLoad\icons2.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\Weather\history (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\Weather\searchweather.xml (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\Weather\weatherstartup.xml (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\Weather\weatherdpa\Links (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\Weather\weatherdpa\radar-big.jpg (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\Weather\weatherdpa\radar-small (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\Weather\weatherdpa\satellite-big.jpg (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\Weather\weatherdpa\satellite-small (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\Weather\weatherdpa\weatherpreferences (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\Weather\weatherdpa\weather_xml\Display (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\Weather\weatherdpa\weather_xml\Loading (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\Weather\weatherdpa\weather_xml\screen1 (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\Weather\weatherdpa\weather_xml\screen2 (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\Weather\weatherdpa\weather_xml\screen3 (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\Weather\weatherdpa\weather_xml\soaperror (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\Weather\weather_xml\Default (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\Weather\weather_xml\Genera1 (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\test\application data\Hotbar\Weather\weather_xml\General (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\all users\application data\HotbarSA\HotbarSA.dat (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\all users\application data\HotbarSA\hotbarsaabout.mht (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\all users\application data\HotbarSA\hotbarsaau.dat (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\all users\application data\HotbarSA\hotbarsaeula.mht (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\all users\application data\HotbarSA\hotbarsa_kyf.dat (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\program files\findbasic\findbasic.exe (Adware.FindBasic) -> Quarantined and deleted successfully.
c:\documents and settings\all users\menu démarrer\programmes\Hotbar\about hotbar.lnk (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\all users\menu démarrer\programmes\Hotbar\hotbar customer support center.lnk (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\all users\menu démarrer\programmes\Hotbar\hotbar games!.lnk (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\documents and settings\all users\menu démarrer\programmes\Hotbar\hotbar videos!.lnk (Adware.Hotbar) -> Quarantined and deleted s
0
SnakeFurie Messages postés 68 Date d'inscription samedi 22 septembre 2007 Statut Membre Dernière intervention 30 janvier 2014
2 avril 2011 à 19:06
MBRCheck, version 1.2.3
(c) 2010, AD

Command-line:
Windows Version: Windows XP Home Edition
Windows Information: Service Pack 3 (build 2600)
Logical Drives Mask: 0x000003fc

Kernel Drivers (total 136):
0x804D7000 \WINDOWS\system32\ntoskrnl.exe
0x80700000 \WINDOWS\system32\hal.dll
0xF7987000 \WINDOWS\system32\KDCOM.DLL
0xF7897000 \WINDOWS\system32\BOOTVID.dll
0xF75F7000 arlkiaji.sys
0xF7443000 spga.sys
0xF7989000 \WINDOWS\System32\Drivers\WMILIB.SYS
0xF742B000 \WINDOWS\System32\Drivers\SCSIPORT.SYS
0xF7868000 ACPI.sys
0xF7607000 isapnp.sys
0xF741A000 pci.sys
0xF7A4F000 pciide.sys
0xF7707000 \WINDOWS\system32\DRIVERS\PCIIDEX.SYS
0xF7617000 MountMgr.sys
0xF7849000 ftdisk.sys
0xF770F000 PartMgr.sys
0xF7627000 VolSnap.sys
0xF7402000 atapi.sys
0xF7637000 disk.sys
0xF7647000 \WINDOWS\system32\DRIVERS\CLASSPNP.SYS
0xF7829000 fltmgr.sys
0xF7975000 sr.sys
0xF7657000 PxHelp20.sys
0xF795E000 KSecDD.sys
0xF7B52000 Ntfs.sys
0xF7A22000 NDIS.sys
0xF7667000 uagp35.sys
0xBA7ED000 sfvfs02.sys
0xF7717000 sfhlp02.sys
0xBA7DB000 sfdrv01.sys
0xBA7C1000 Mup.sys
0xF76A7000 \SystemRoot\system32\DRIVERS\intelppm.sys
0xBA2AF000 \SystemRoot\system32\DRIVERS\nv4_mini.sys
0xBA29B000 \SystemRoot\system32\DRIVERS\VIDEOPRT.SYS
0xF7546000 \SystemRoot\system32\DRIVERS\imapi.sys
0xF77FF000 \SystemRoot\system32\drivers\Afc.sys
0xF7947000 \SystemRoot\System32\Drivers\UBHelper.SYS
0xF7536000 \SystemRoot\system32\DRIVERS\cdrom.sys
0xBA769000 \SystemRoot\system32\DRIVERS\redbook.sys
0xBA278000 \SystemRoot\system32\DRIVERS\ks.sys
0xF7995000 \SystemRoot\system32\DRIVERS\NTIDrvr.sys
0xF7767000 \SystemRoot\System32\Drivers\GEARAspiWDM.sys
0xB9EFE000 \SystemRoot\system32\drivers\ALCXWDM.SYS
0xB9EDA000 \SystemRoot\system32\drivers\portcls.sys
0xBA759000 \SystemRoot\system32\drivers\drmk.sys
0xF77C7000 \SystemRoot\system32\DRIVERS\usbohci.sys
0xB9EB6000 \SystemRoot\system32\DRIVERS\USBPORT.SYS
0xF77F7000 \SystemRoot\system32\DRIVERS\usbehci.sys
0xF780F000 \SystemRoot\system32\DRIVERS\sisnic.sys
0xB9E7F000 \SystemRoot\System32\Drivers\a57exb0w.SYS
0xB9E3C000 \SystemRoot\System32\Drivers\a6w1bs06.SYS
0xB9E2B000 \SystemRoot\system32\DRIVERS\serial.sys
0xBA6C5000 \SystemRoot\system32\DRIVERS\serenum.sys
0xB9E17000 \SystemRoot\system32\DRIVERS\parport.sys
0xBA749000 \SystemRoot\system32\DRIVERS\i8042prt.sys
0xBA6BD000 \SystemRoot\system32\DRIVERS\L8042Kbd.sys
0xF777F000 \SystemRoot\system32\DRIVERS\kbdclass.sys
0xF7A7D000 \SystemRoot\system32\DRIVERS\audstub.sys
0xBA739000 \SystemRoot\system32\DRIVERS\rasl2tp.sys
0xBA6B1000 \SystemRoot\system32\DRIVERS\ndistapi.sys
0xB9E00000 \SystemRoot\system32\DRIVERS\ndiswan.sys
0xBA729000 \SystemRoot\system32\DRIVERS\raspppoe.sys
0xBA719000 \SystemRoot\system32\DRIVERS\raspptp.sys
0xF77CF000 \SystemRoot\system32\DRIVERS\TDI.SYS
0xB9D4F000 \SystemRoot\system32\DRIVERS\psched.sys
0xBA709000 \SystemRoot\system32\DRIVERS\msgpc.sys
0xF7807000 \SystemRoot\system32\DRIVERS\ptilink.sys
0xF781F000 \SystemRoot\system32\DRIVERS\raspti.sys
0xBA6F9000 \SystemRoot\system32\DRIVERS\termdd.sys
0xF774F000 \SystemRoot\system32\DRIVERS\mouclass.sys
0xF79A7000 \SystemRoot\system32\DRIVERS\swenum.sys
0xB9CA1000 \SystemRoot\system32\DRIVERS\update.sys
0xBA693000 \SystemRoot\system32\DRIVERS\mssmbios.sys
0xBA6E9000 \SystemRoot\System32\Drivers\NDProxy.SYS
0xBA6D9000 \SystemRoot\system32\DRIVERS\usbhub.sys
0xF79B1000 \SystemRoot\system32\DRIVERS\USBD.SYS
0xF79B5000 \SystemRoot\System32\Drivers\Fs_Rec.SYS
0xF7A85000 \SystemRoot\System32\Drivers\Null.SYS
0xF79B9000 \SystemRoot\System32\Drivers\Beep.SYS
0xB9D0F000 \SystemRoot\system32\DRIVERS\HIDPARSE.SYS
0xB9CFF000 \SystemRoot\System32\drivers\vga.sys
0xF79BD000 \SystemRoot\System32\Drivers\mnmdd.SYS
0xF79C1000 \SystemRoot\System32\DRIVERS\RDPCDD.sys
0xF7747000 \SystemRoot\System32\Drivers\Msfs.SYS
0xF775F000 \SystemRoot\System32\Drivers\Npfs.SYS
0xBA78D000 \SystemRoot\system32\DRIVERS\rasacd.sys
0xB7B1E000 \SystemRoot\system32\DRIVERS\ipsec.sys
0xB7AC5000 \SystemRoot\system32\DRIVERS\tcpip.sys
0xF7697000 \SystemRoot\System32\Drivers\aswTdi.SYS
0xB7A9F000 \SystemRoot\system32\DRIVERS\ipnat.sys
0xF76B7000 \SystemRoot\system32\DRIVERS\wanarp.sys
0xB7A77000 \SystemRoot\system32\DRIVERS\netbt.sys
0xB7A4B000 \SystemRoot\System32\drivers\afd.sys
0xF76C7000 \SystemRoot\system32\DRIVERS\netbios.sys
0xF77BF000 \SystemRoot\system32\DRIVERS\USBSTOR.SYS
0xBA6C9000 \SystemRoot\system32\DRIVERS\srvkp.sys
0xB7A20000 \SystemRoot\system32\DRIVERS\rdbss.sys
0xB79B0000 \SystemRoot\system32\DRIVERS\mrxsmb.sys
0xF76D7000 \SystemRoot\System32\Drivers\Fips.SYS
0xB78EF000 \SystemRoot\System32\Drivers\aswSP.SYS
0xB9D2F000 \SystemRoot\System32\Drivers\Aavmker4.SYS
0xF77B7000 \SystemRoot\System32\Drivers\LUsbFilt.Sys
0xF75C6000 \SystemRoot\System32\Drivers\WDFLDR.SYS
0xB77FC000 \SystemRoot\system32\DRIVERS\Wdf01000.sys
0xB77D8000 \SystemRoot\System32\Drivers\Fastfat.SYS
0xB7B5D000 \SystemRoot\system32\DRIVERS\hidusb.sys
0xF75B6000 \SystemRoot\system32\DRIVERS\HIDCLASS.SYS
0xF7777000 \SystemRoot\system32\DRIVERS\LHidFilt.Sys
0xB7B55000 \SystemRoot\system32\DRIVERS\mouhid.sys
0xF7797000 \SystemRoot\system32\DRIVERS\LMouFilt.Sys
0xF75A6000 \SystemRoot\System32\Drivers\Cdfs.SYS
0xB77C0000 \SystemRoot\System32\Drivers\dump_atapi.sys
0xF79D7000 \SystemRoot\System32\Drivers\dump_WMILIB.SYS
0xBF800000 \SystemRoot\System32\win32k.sys
0xBA6B5000 \SystemRoot\System32\drivers\Dxapi.sys
0xB7887000 \SystemRoot\System32\watchdog.sys
0xBF000000 \SystemRoot\System32\drivers\dxg.sys
0xF7AB5000 \SystemRoot\System32\drivers\dxgthk.sys
0xBF012000 \SystemRoot\System32\nv4_disp.dll
0xBF464000 \SystemRoot\System32\ATMFD.DLL
0xF77AF000 \SystemRoot\system32\DRIVERS\aswFsBlk.sys
0xB5BDF000 \SystemRoot\system32\DRIVERS\nwlnkipx.sys
0xB6587000 \SystemRoot\system32\DRIVERS\nwlnknb.sys
0xB64C1000 \SystemRoot\system32\DRIVERS\ndisuio.sys
0xB5C85000 \SystemRoot\system32\DRIVERS\nwlnkspx.sys
0xB5AB1000 \SystemRoot\System32\Drivers\aswMon2.SYS
0xB590C000 \SystemRoot\system32\drivers\wdmaud.sys
0xB7940000 \SystemRoot\system32\drivers\sysaudio.sys
0xB58BE000
0xB5559000 \SystemRoot\system32\DRIVERS\atksgt.sys
0xB54C8000 \SystemRoot\System32\Drivers\HTTP.sys
0xB9D1F000 \SystemRoot\system32\DRIVERS\lirsgt.sys
0xF79F5000 \??\C:\WINDOWS\system32\Drivers\Vcs.sys
0xB5330000 \SystemRoot\system32\DRIVERS\srv.sys
0x7C910000 \WINDOWS\system32\ntdll.dll
0x10000000 \Program Files\Alcohol Soft\Alcohol 120\Alcoholx.dll

Processes (total 30):
0 System Idle Process
4 System
532 C:\WINDOWS\system32\smss.exe
840 csrss.exe
904 C:\WINDOWS\system32\winlogon.exe
980 C:\WINDOWS\system32\services.exe
1004 C:\WINDOWS\system32\lsass.exe
1204 C:\WINDOWS\system32\svchost.exe
1304 svchost.exe
1400 C:\WINDOWS\system32\svchost.exe
1540 svchost.exe
1668 svchost.exe
1748 C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
1944 C:\Program Files\Alwil Software\Avast4\ashServ.exe
2016 C:\WINDOWS\explorer.exe
628 C:\WINDOWS\system32\spoolsv.exe
1156 C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
1484 C:\Program Files\iTunes\iTunesHelper.exe
1592 C:\Program Files\Adobe\Reader 9.0\Reader\reader_sl.exe
1716 C:\Program Files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe
1960 C:\Program Files\Fichiers communs\Apple\Mobile Device Support\AppleMobileDeviceService.exe
2028 C:\Program Files\Bonjour\mDNSResponder.exe
1280 C:\WINDOWS\system32\svchost.exe
828 C:\WINDOWS\system32\svchost.exe
852 wdfmgr.exe
1816 C:\WINDOWS\system32\wuauclt.exe
2404 C:\Program Files\iPod\bin\iPodService.exe
2608 C:\WINDOWS\system32\wscntfy.exe
2668 alg.exe
2952 C:\Documents and Settings\test\Bureau\MBRCheck.exe

\\.\C: --> \\.\PhysicalDrive0 at offset 0x00000001'384c7a00 (NTFS)
\\.\D: --> \\.\PhysicalDrive0 at offset 0x00000013'2e00be00 (FAT32)

PhysicalDrive0 Model Number: HDT722516DLA380, Rev: V43OA96A

Size Device Name MBR Status
--------------------------------------------
153 GB \\.\PhysicalDrive0 Unknown MBR code
SHA1: 6A37CCD118436B688B51F6BD4C2B47A895EBDF7F


Found non-standard or infected MBR.
Enter 'Y' and hit ENTER for more options, or 'N' to exit:
Options:
[1] Dump the MBR of a physical disk to file.
[2] Restore the MBR of a physical disk with a standard boot code.
[3] Exit.

Enter your choice: Enter the physical disk number to fix (0-99, -1 to cancel):
0
SnakeFurie Messages postés 68 Date d'inscription samedi 22 septembre 2007 Statut Membre Dernière intervention 30 janvier 2014
2 avril 2011 à 19:10
Voilà j'espère que ça vous va! Qu'est ce que je fais à partir de là ? ^^
Encore merci pour tout déjà.
0
juju666 Messages postés 35446 Date d'inscription jeudi 18 décembre 2008 Statut Contributeur sécurité Dernière intervention 21 avril 2024 4 795
2 avril 2011 à 20:00
non ça me plait pas encore :P

Télécharge de AD-Remover sur ton Bureau. (Merci à C_XX)

http://www.teamxscript.org/adremoverTelechargement.html ( Lien officiel )
OU
https://www.androidworld.fr/ ( Miroir )

/!\ Ferme toutes applications en cours /!\

▶ Double-clique sur l'icône Ad-remover située sur ton Bureau.
▶ Sur la page, clique sur le bouton « Nettoyer »
▶ Confirme lancement du scan
▶ Laisse travailler l'outil.
▶ Poste le rapport qui apparaît à la fin.

(Le rapport est sauvegardé aussi sous C:\Ad-Report-CLEAN[1].txt)

(CTRL+A pour tout sélectionner, CTRL+C pour copier et CTRL+V pour coller)

===========================

Relance mbrcheck.
appuie sur Y et enter, puis 2 et enter. poste son rapport.
0
SnakeFurie Messages postés 68 Date d'inscription samedi 22 septembre 2007 Statut Membre Dernière intervention 30 janvier 2014
2 avril 2011 à 20:35
héhé ^^

voici pour AD :
======= RAPPORT D'AD-REMOVER 2.0.0.2,F | UNIQUEMENT XP/VISTA/7 =======

Mis à jour par TeamXscript le 01/03/11
Contact: AdRemover[DOT]contact[AT]gmail[DOT]com
Site web: http://www.teamxscript.org

C:\Program Files\Ad-Remover\main.exe (CLEAN [1]) -> Lancé à 20:28:26 le 02/04/2011, Mode normal

Microsoft Windows XP Édition familiale Service Pack 3 (X86)
test@ACER-FE8B363750 ( )

============== ACTION(S) ==============


Fichier supprimé: C:\WINDOWS\system32\ConduitEngine.tmp
Fichier supprimé: C:\Documents and Settings\test\Application Data\Mozilla\FireFox\Profiles\942ftg2v.default\searchplugins\conduit.xml
Dossier supprimé: C:\Documents and Settings\test\Local Settings\Application Data\Conduit
Dossier supprimé: C:\Program Files\Conduit
Dossier supprimé: C:\Documents and Settings\test\Local Settings\Application Data\ConduitEngine
Dossier supprimé: C:\Program Files\ConduitEngine
Dossier supprimé: C:\Documents and Settings\test\Application Data\PriceGong
Dossier supprimé: C:\Documents and Settings\test\Application Data\VMNTOOLBAR
Dossier supprimé: C:\Program Files\VMNTOOLBAR

(!) -- Fichiers temporaires supprimés.


Clé supprimée: HKLM\Software\Classes\Interface\{BFE569F7-646C-4512-969B-9BE3E580D393}
Clé supprimée: HKLM\Software\Classes\Interface\{C8D424EF-CB21-49A0-8659-476FBAB0F8E8}
Clé supprimée: HKLM\Software\Classes\Interface\{D1063603-F045-475F-AFBC-8CBA7D5797FB}
Clé supprimée: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{5521E7D8-972F-4751-AF30-E5558981A41D}
Clé supprimée: HKLM\Software\Classes\Toolbar.CT2102473
Clé supprimée: HKLM\Software\Classes\vmntoolbar.VMNTOOLBAR
Clé supprimée: HKLM\Software\Classes\vmntoolbar.VMNTOOLBARMenu Button
Clé supprimée: HKLM\Software\Classes\vmntoolbar.VMNTOOLBARToggle Button
Clé supprimée: HKLM\Software\Conduit
Clé supprimée: HKCU\Software\Conduit
Clé supprimée: HKCU\Software\vmntoolbar
Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\Hotbar
Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\Seekmo
Clé supprimée: HKLM\Software\Microsoft\Shared Tools\MSConfig\startupreg\SeekmoSA
Clé supprimée: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{1F096B29-E9DA-4D64-8D63-936BE7762CC5}
Clé supprimée: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2EB55F9F-CC93-45B7-B551-0CA40CEC791A}
Clé supprimée: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}
Clé supprimée: HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{2EB55F9F-CC93-45B7-B551-0CA40CEC791A}
Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\DealAssistant
Clé supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\vmntoolbar

Valeur supprimée: HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Post Platform|Hotbar 11.0.78.0
Valeur supprimée: HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser|{4E7BD74F-2B8D-469E-8DA9-FD60BB9AAE33}


============== SCAN ADDITIONNEL ==============

**** Mozilla Firefox Version [3.6.16 (fr)] ****

Plugins\npBitCometAgent.dll (BitComet)
Plugins\npdivx32.dll (DivX,Inc.)
Searchplugins\avg_igeared.xml (hxxp://search.avg.com/route/?d=4d976616&v=6.103.018.001&i=23&tp=chrome&q={searchTerms}&lng=fr&iy=b&ychte=fr/)
Searchplugins\babylon.xml (hxxp://search.babylon.com/?babsrc=SP_ss&q={searchTerms}&mntrId=320d180e0000000000000019212289b3&tlver=1.4.19.19&affID=17161/)
Searchplugins\findbasic125.xml ( hxxp://www.findbasic.com/?prt=FbasicNN&keywords={searchTerms})
Extensions\{258fe8b8-a13c-4b91-9a0c-c2d3cab8b990} (PHPNukeFR Toolbar)
Extensions\{C3F23840-B14B-4B61-AAEF-6BCC3621FA63} (Findbasic)
HKLM_Extensions|{1E73965B-8B48-48be-9C8D-68B920ABC1C4} - C:\Program Files\AVG\AVG10\Firefox4\
HKLM_Extensions|avg@igeared - C:\Program Files\AVG\AVG10\Toolbar\Firefox\avg@igeared

-- C:\Documents and Settings\test\Application Data\Mozilla\FireFox\Profiles\942ftg2v.default --
Extensions\ffxtlbr@babylon.com (Babylon)
Extensions\{258fe8b8-a13c-4b91-9a0c-c2d3cab8b990} (PHPNukeFR Toolbar)
Extensions\{7694c49c-9fbd-11dc-8314-0800200c9a66} (Aquatint Black Gloss)
Extensions\{9f08cb5a-76b1-4bcf-aff9-90e1a5d60b1e} (Noia 2.0 (eXtreme))
Extensions\{B042753D-F57E-4e8e-A01B-7379A6D4CEFB} (BitComet Video Downloader)
Searchplugins\sumotorrentcom-search.xml (?)
Prefs.js - browser.download.lastDir, C:\\Documents and Settings\\test\\Bureau
Prefs.js - browser.search.selectedEngine, Search the web (Babylon)
Prefs.js - browser.startup.homepage, hxxp://search.babylon.com/?babsrc=HP_ss&mntrId=320d180e0000000000000019212289b3&tlver=1.4.19.1...
Prefs.js - browser.startup.homepage_override.mstone, rv:1.9.2.16
Prefs.js - keyword.URL, hxxp://search.babylon.com/?babsrc=SP_ss&mntrId=320d180e0000000000000019212289b3&tlver=1.4.19.19&instlRef=ss...

========================================

**** Internet Explorer Version [6.0.2900.5512] ****

Plugins\NPUPano.dll (Ulead Systems, Inc.)
Plugins\PanoViewer.dll (?)
Plugins\UPjpeg.dll (?)
HKCU_Main|Default_Page_URL - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
HKCU_Main|Default_Search_URL - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKCU_Main|Search bar - hxxp://go.microsoft.com/fwlink/?linkid=54896
HKCU_Main|Start Page - hxxp://fr.msn.com/
HKLM_Main|Default_Page_URL - hxxp://go.microsoft.com/fwlink/?LinkId=54896
HKLM_Main|Default_Search_URL - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKLM_Main|Search bar - hxxp://search.msn.com/spbasic.htm
HKLM_Main|Search Page - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKLM_Main|Start Page - hxxp://fr.msn.com/
HKCU_URLSearchHooks|{258fe8b8-a13c-4b91-9a0c-c2d3cab8b990} - "PHPNukeFR Toolbar" (C:\Program Files\PHPNukeFR\tbPHP1.dll)
HKCU_SearchScopes\{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - "AVG Secure Search" (hxxp://search.avg.com/route/?d=4d976616&v=6.103.18.1&i=23&tp=chrome&q={searchTer...)
HKCU_Toolbar\ShellBrowser|{42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} (x)
HKCU_Toolbar\WebBrowser|{4E7BD74F-2B8D-469E-CCB0-B130EEDBE97C} (x)
HKCU_Toolbar\WebBrowser|{258FE8B8-A13C-4B91-9A0C-C2D3CAB8B990} (C:\Program Files\PHPNukeFR\tbPHP1.dll)
HKCU_Toolbar\WebBrowser|{5521E7D8-972F-4751-AF30-E5558981A41D} (x)
HKLM_Toolbar|{E0E899AB-F487-11D5-8D29-0050BA6940E3} (x)
HKLM_Toolbar|{17939A30-18E2-471E-9D3A-56DD725F1215} (x)
HKLM_Toolbar|{4E7BD74F-2B8D-469E-CCB0-B130EEDBE97C} (x)
HKLM_Toolbar|{258fe8b8-a13c-4b91-9a0c-c2d3cab8b990} (C:\Program Files\PHPNukeFR\tbPHP1.dll)
HKLM_Toolbar|{98889811-442D-49dd-99D7-DC866BE87DBC} (C:\Program Files\BabylonToolbar\BabylonToolbar\1.4.19.19\BabylonToolbarTlbr.dll)
HKLM_Toolbar|{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} (C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll)
HKLM_Toolbar|{CCC7A320-B3CA-4199-B1A6-9F516DD69829} (C:\Program Files\AVG\AVG10\Toolbar\IEToolbar.dll)
HKLM_ElevationPolicy\${ELV_GUID} - C:\Program Files\BabylonToolbar\BabylonToolbar\1.4.19.19\BabylonToolbarsrv.exe (Babylon Ltd.)
HKLM_ElevationPolicy\22ca2be7-233e-4d75-a427-6cd252b81577 - C:\Program Files\PHPNukeFR\PHPNukeFRToolbarHelper.exe (?)
HKLM_ElevationPolicy\46eef4c9-aff7-4ee8-88ee-0ccf5c640a1f - C:\Program Files\PHPNukeFR\PHPNukeFRToolbarHelper.exe (?)
HKLM_ElevationPolicy\d0d4fcf8-78ad-4c61-ad74-0340706e6f61 - C:\Program Files\PHPNukeFR\PHPNukeFRToolbarHelper.exe (?)
HKLM_ElevationPolicy\{44295CB8-D71B-11DA-8750-001185653D78} - c:\program files\google\googletoolbar3user.exe (?)
HKLM_ElevationPolicy\{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\Program Files\AVG\AVG10\Toolbar\ToolbarBroker.exe (?)
HKLM_Extensions\{D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - "BitComet" (C:\Program Files\BitComet\tools\BitCometBHO_1.4.4.13.dll,203)
HKLM_Extensions\{e2e2dd38-d088-4134-82b7-f2ba38496583} - "?" (?)
BHO\{258fe8b8-a13c-4b91-9a0c-c2d3cab8b990} - "PHPNukeFR Toolbar" (C:\Program Files\PHPNukeFR\tbPHP1.dll)
BHO\{2EECD738-5844-4a99-B4B6-146BF802613B} - "CescrtHlpr Object" (C:\Program Files\BabylonToolbar\BabylonToolbar\1.4.19.19\bh\BabylonToolbar.dll)
BHO\{39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - "BitComet Helper" (C:\Program Files\BitComet\tools\BitCometBHO_1.4.4.13.dll)
BHO\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - "avast! WebRep" (C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll)
BHO\{A3BC75A2-1F87-4686-AA43-5347D756017C} - "AVG Security Toolbar BHO" (C:\Program Files\AVG\AVG10\Toolbar\IEToolbar.dll)

========================================

C:\Program Files\Ad-Remover\Quarantine: 97 Fichier(s)
C:\Program Files\Ad-Remover\Backup: 13 Fichier(s)

C:\Ad-Report-CLEAN[1].txt - 02/04/2011 20:29:30 (7538 Octet(s))

Fin à: 20:30:27, 02/04/2011

============== E.O.F ==============
0
SnakeFurie Messages postés 68 Date d'inscription samedi 22 septembre 2007 Statut Membre Dernière intervention 30 janvier 2014
2 avril 2011 à 20:36
Et voilà le reste !

MBRCheck, version 1.2.3
(c) 2010, AD

Command-line:
Windows Version: Windows XP Home Edition
Windows Information: Service Pack 3 (build 2600)
Logical Drives Mask: 0x000003fc

Kernel Drivers (total 138):
0x804D7000 \WINDOWS\system32\ntoskrnl.exe
0x80700000 \WINDOWS\system32\hal.dll
0xF7987000 \WINDOWS\system32\KDCOM.DLL
0xF7897000 \WINDOWS\system32\BOOTVID.dll
0xF74E3000 spsa.sys
0xF7989000 \WINDOWS\System32\Drivers\WMILIB.SYS
0xF74CB000 \WINDOWS\System32\Drivers\SCSIPORT.SYS
0xF749C000 ACPI.sys
0xF75F7000 isapnp.sys
0xF7876000 pci.sys
0xF7A4F000 pciide.sys
0xF7707000 \WINDOWS\system32\DRIVERS\PCIIDEX.SYS
0xF7607000 MountMgr.sys
0xF7857000 ftdisk.sys
0xF770F000 PartMgr.sys
0xF7617000 VolSnap.sys
0xF783F000 atapi.sys
0xF7627000 disk.sys
0xF7637000 \WINDOWS\system32\DRIVERS\CLASSPNP.SYS
0xF7967000 fltmgr.sys
0xF782D000 sr.sys
0xF7647000 PxHelp20.sys
0xF7950000 KSecDD.sys
0xF7B52000 Ntfs.sys
0xF7A22000 NDIS.sys
0xF7657000 uagp35.sys
0xF7A0F000 sfvfs02.sys
0xF7717000 sfhlp02.sys
0xF7B40000 sfdrv01.sys
0xF7B26000 Mup.sys
0xF771F000 avgrkx86.sys
0xF7667000 AVGIDSEH.Sys
0xF76B7000 \SystemRoot\system32\DRIVERS\intelppm.sys
0xB90FA000 \SystemRoot\system32\DRIVERS\nv4_mini.sys
0xB90E6000 \SystemRoot\system32\DRIVERS\VIDEOPRT.SYS
0xBA02C000 \SystemRoot\system32\DRIVERS\imapi.sys
0xF774F000 \SystemRoot\system32\drivers\Afc.sys
0xBA67E000 \SystemRoot\System32\Drivers\UBHelper.SYS
0xBA01C000 \SystemRoot\system32\DRIVERS\cdrom.sys
0xBA00C000 \SystemRoot\system32\DRIVERS\redbook.sys
0xB90C3000 \SystemRoot\system32\DRIVERS\ks.sys
0xF79DD000 \SystemRoot\system32\DRIVERS\NTIDrvr.sys
0xF7757000 \SystemRoot\System32\Drivers\GEARAspiWDM.sys
0xB8D21000 \SystemRoot\system32\drivers\ALCXWDM.SYS
0xB8CFD000 \SystemRoot\system32\drivers\portcls.sys
0xB9FDC000 \SystemRoot\system32\drivers\drmk.sys
0xF775F000 \SystemRoot\system32\DRIVERS\usbohci.sys
0xB8CD9000 \SystemRoot\system32\DRIVERS\USBPORT.SYS
0xF7767000 \SystemRoot\system32\DRIVERS\usbehci.sys
0xF776F000 \SystemRoot\system32\DRIVERS\sisnic.sys
0xB8CA2000 \SystemRoot\System32\Drivers\a0yx9nx9.SYS
0xB8A87000 \SystemRoot\System32\Drivers\aba9oqpn.SYS
0xB8A76000 \SystemRoot\system32\DRIVERS\serial.sys
0xB9D49000 \SystemRoot\system32\DRIVERS\serenum.sys
0xB8A62000 \SystemRoot\system32\DRIVERS\parport.sys
0xB9FCC000 \SystemRoot\system32\DRIVERS\i8042prt.sys
0xB9D45000 \SystemRoot\system32\DRIVERS\L8042Kbd.sys
0xF77E7000 \SystemRoot\system32\DRIVERS\kbdclass.sys
0xF7ABE000 \SystemRoot\system32\DRIVERS\audstub.sys
0xF743C000 \SystemRoot\system32\DRIVERS\rasl2tp.sys
0xB9D41000 \SystemRoot\system32\DRIVERS\ndistapi.sys
0xB8947000 \SystemRoot\system32\DRIVERS\ndiswan.sys
0xF742C000 \SystemRoot\system32\DRIVERS\raspppoe.sys
0xF740C000 \SystemRoot\system32\DRIVERS\raspptp.sys
0xF77FF000 \SystemRoot\system32\DRIVERS\TDI.SYS
0xB891F000 \SystemRoot\system32\DRIVERS\psched.sys
0xBA778000 \SystemRoot\system32\DRIVERS\msgpc.sys
0xF777F000 \SystemRoot\system32\DRIVERS\ptilink.sys
0xB9512000 \SystemRoot\system32\DRIVERS\raspti.sys
0xF7697000 \SystemRoot\system32\DRIVERS\termdd.sys
0xB950A000 \SystemRoot\system32\DRIVERS\mouclass.sys
0xF79F1000 \SystemRoot\system32\DRIVERS\swenum.sys
0xB86EA000 \SystemRoot\system32\DRIVERS\update.sys
0xF793B000 \SystemRoot\system32\DRIVERS\mssmbios.sys
0xB587E000 \SystemRoot\System32\Drivers\NDProxy.SYS
0xB589E000 \SystemRoot\system32\DRIVERS\usbhub.sys
0xF79C7000 \SystemRoot\system32\DRIVERS\USBD.SYS
0xB58BE000 \SystemRoot\system32\DRIVERS\avgmfx86.sys
0xF79CB000 \SystemRoot\System32\Drivers\Fs_Rec.SYS
0xB170C000 \SystemRoot\System32\Drivers\Null.SYS
0xB7E79000 \SystemRoot\System32\Drivers\Beep.SYS
0xB94CA000 \SystemRoot\system32\DRIVERS\HIDPARSE.SYS
0xF77EF000 \SystemRoot\System32\drivers\vga.sys
0xB7E77000 \SystemRoot\System32\Drivers\mnmdd.SYS
0xF79D5000 \SystemRoot\System32\DRIVERS\RDPCDD.sys
0xF77D7000 \SystemRoot\System32\Drivers\Msfs.SYS
0xB515F000 \SystemRoot\System32\Drivers\Npfs.SYS
0xB5FF6000 \SystemRoot\system32\DRIVERS\rasacd.sys
0xAF4FF000 \SystemRoot\system32\DRIVERS\ipsec.sys
0xAF4A6000 \SystemRoot\system32\DRIVERS\tcpip.sys
0xAF45E000 \SystemRoot\system32\DRIVERS\avgtdix.sys
0xAF438000 \SystemRoot\system32\DRIVERS\ipnat.sys
0xB58AE000 \SystemRoot\system32\DRIVERS\wanarp.sys
0xAF410000 \SystemRoot\system32\DRIVERS\netbt.sys
0xAF3EE000 \SystemRoot\System32\drivers\afd.sys
0xB588E000 \SystemRoot\system32\DRIVERS\netbios.sys
0xB16D6000 \SystemRoot\system32\DRIVERS\srvkp.sys
0xAF3C3000 \SystemRoot\system32\DRIVERS\rdbss.sys
0xAF353000 \SystemRoot\system32\DRIVERS\mrxsmb.sys
0xB586E000 \SystemRoot\System32\Drivers\Fips.SYS
0xAF317000 \SystemRoot\system32\DRIVERS\avgldx86.sys
0xB553A000 \SystemRoot\system32\DRIVERS\USBSTOR.SYS
0xB5532000 \SystemRoot\System32\Drivers\LUsbFilt.Sys
0xBA738000 \SystemRoot\System32\Drivers\WDFLDR.SYS
0xAF29C000 \SystemRoot\system32\DRIVERS\Wdf01000.sys
0xBA7C0000 \SystemRoot\system32\DRIVERS\hidusb.sys
0xF745C000 \SystemRoot\system32\DRIVERS\HIDCLASS.SYS
0xB86D2000 \SystemRoot\system32\DRIVERS\LHidFilt.Sys
0xB59DF000 \SystemRoot\system32\DRIVERS\mouhid.sys
0xB5B7F000 \SystemRoot\system32\DRIVERS\LMouFilt.Sys
0xAF278000 \SystemRoot\System32\Drivers\Fastfat.SYS
0xB5259000 \SystemRoot\System32\Drivers\Cdfs.SYS
0xAF260000 \SystemRoot\System32\Drivers\dump_atapi.sys
0xB7636000 \SystemRoot\System32\Drivers\dump_WMILIB.SYS
0xBF800000 \SystemRoot\System32\win32k.sys
0xB2B30000 \SystemRoot\System32\drivers\Dxapi.sys
0xB5847000 \SystemRoot\System32\watchdog.sys
0xBF000000 \SystemRoot\System32\drivers\dxg.sys
0xB1704000 \SystemRoot\System32\drivers\dxgthk.sys
0xBF012000 \SystemRoot\System32\nv4_disp.dll
0xBF464000 \SystemRoot\System32\ATMFD.DLL
0xAE019000 \SystemRoot\system32\DRIVERS\nwlnkipx.sys
0xB5C0F000 \SystemRoot\system32\DRIVERS\nwlnknb.sys
0xAE0BB000 \SystemRoot\system32\DRIVERS\ndisuio.sys
0xB604F000 \SystemRoot\system32\DRIVERS\nwlnkspx.sys
0xAD6EC000 \SystemRoot\system32\drivers\wdmaud.sys
0xB7E1B000 \SystemRoot\system32\drivers\sysaudio.sys
0xAD69E000 \SystemRoot\system32\drivers\kmixer.sys
0xAD65B000 \SystemRoot\system32\DRIVERS\atksgt.sys
0xB58FE000 \SystemRoot\system32\DRIVERS\AVGIDSShim.Sys
0xAD5F2000 \SystemRoot\System32\Drivers\HTTP.sys
0xB5137000 \SystemRoot\system32\DRIVERS\lirsgt.sys
0xAD54A000 \SystemRoot\system32\DRIVERS\srv.sys
0xB5B29000 \??\C:\WINDOWS\system32\Drivers\Vcs.sys
0xB602F000 \SystemRoot\system32\DRIVERS\AVGIDSFilter.Sys
0xAD45A000 \SystemRoot\system32\DRIVERS\AVGIDSDriver.Sys
0x7C910000 \WINDOWS\system32\ntdll.dll
0x10000000 \Program Files\Alcohol Soft\Alcohol 120\Alcoholx.dll

Processes (total 38):
0 System Idle Process
4 System
648 C:\WINDOWS\system32\smss.exe
712 C:\PROGRA~1\AVG\AVG10\avgchsvx.exe
776 C:\PROGRA~1\AVG\AVG10\avgrsx.exe
1464 csrss.exe
1492 C:\WINDOWS\system32\winlogon.exe
1548 C:\WINDOWS\system32\services.exe
1560 C:\WINDOWS\system32\lsass.exe
1744 C:\WINDOWS\system32\svchost.exe
1804 svchost.exe
1880 C:\WINDOWS\system32\svchost.exe
1944 svchost.exe
200 svchost.exe
552 C:\WINDOWS\system32\spoolsv.exe
560 C:\WINDOWS\explorer.exe
1856 C:\Program Files\Fichiers communs\Apple\Mobile Device Support\AppleMobileDeviceService.exe
1904 C:\Program Files\AVG\AVG10\avgwdsvc.exe
1932 C:\Program Files\Bonjour\mDNSResponder.exe
1972 C:\WINDOWS\system32\svchost.exe
768 C:\WINDOWS\system32\svchost.exe
996 wdfmgr.exe
1816 C:\WINDOWS\system32\wuauclt.exe
1940 C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe
1392 C:\Program Files\iTunes\iTunesHelper.exe
284 C:\Program Files\Adobe\Reader 9.0\Reader\reader_sl.exe
1396 C:\Program Files\AVAST Software\Avast\AvastUI.exe
1692 C:\Program Files\AVG\AVG10\avgtray.exe
2512 C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSMonitor.exe
2652 C:\Program Files\AVG\AVG10\avgnsx.exe
2680 C:\Program Files\AVG\AVG10\avgemcx.exe
3516 C:\Program Files\iPod\bin\iPodService.exe
3616 C:\WINDOWS\system32\wscntfy.exe
3676 alg.exe
1640 wmiprvse.exe
2100 C:\WINDOWS\system32\notepad.exe
236 C:\Program Files\Mozilla Firefox\firefox.exe
180 C:\Documents and Settings\test\Bureau\MBRCheck.exe

\\.\C: --> \\.\PhysicalDrive0 at offset 0x00000001'384c7a00 (NTFS)
\\.\D: --> \\.\PhysicalDrive0 at offset 0x00000013'2e00be00 (FAT32)

PhysicalDrive0 Model Number: HDT722516DLA380, Rev: V43OA96A

Size Device Name MBR Status
--------------------------------------------
153 GB \\.\PhysicalDrive0 Unknown MBR code
SHA1: 6A37CCD118436B688B51F6BD4C2B47A895EBDF7F


Found non-standard or infected MBR.
Enter 'Y' and hit ENTER for more options, or 'N' to exit:
Options:
[1] Dump the MBR of a physical disk to file.
[2] Restore the MBR of a physical disk with a standard boot code.
[3] Exit.

Enter your choice: Enter the physical disk number to fix (0-99, -1 to cancel):
0
juju666 Messages postés 35446 Date d'inscription jeudi 18 décembre 2008 Statut Contributeur sécurité Dernière intervention 21 avril 2024 4 795
2 avril 2011 à 20:41
refais mbrcheck en suivant ce tuto : https://www.commentcamarche.net/faq/25171-infection-sinowal-mebroot-rootkit-mbr-bootkit#cinquieme-methode-mbrcheck
0
SnakeFurie Messages postés 68 Date d'inscription samedi 22 septembre 2007 Statut Membre Dernière intervention 30 janvier 2014
2 avril 2011 à 21:10
MBRCheck, version 1.2.3
(c) 2010, AD

Command-line:
Windows Version: Windows XP Home Edition
Windows Information: Service Pack 3 (build 2600)
Logical Drives Mask: 0x000003fc

Kernel Drivers (total 138):
0x804D7000 \WINDOWS\system32\ntoskrnl.exe
0x80700000 \WINDOWS\system32\hal.dll
0xF7987000 \WINDOWS\system32\KDCOM.DLL
0xF7897000 \WINDOWS\system32\BOOTVID.dll
0xF74E3000 spsa.sys
0xF7989000 \WINDOWS\System32\Drivers\WMILIB.SYS
0xF74CB000 \WINDOWS\System32\Drivers\SCSIPORT.SYS
0xF749C000 ACPI.sys
0xF75F7000 isapnp.sys
0xF7876000 pci.sys
0xF7A4F000 pciide.sys
0xF7707000 \WINDOWS\system32\DRIVERS\PCIIDEX.SYS
0xF7607000 MountMgr.sys
0xF7857000 ftdisk.sys
0xF770F000 PartMgr.sys
0xF7617000 VolSnap.sys
0xF783F000 atapi.sys
0xF7627000 disk.sys
0xF7637000 \WINDOWS\system32\DRIVERS\CLASSPNP.SYS
0xF7967000 fltmgr.sys
0xF782D000 sr.sys
0xF7647000 PxHelp20.sys
0xF7950000 KSecDD.sys
0xF7B52000 Ntfs.sys
0xF7A22000 NDIS.sys
0xF7657000 uagp35.sys
0xF7A0F000 sfvfs02.sys
0xF7717000 sfhlp02.sys
0xF7B40000 sfdrv01.sys
0xF7B26000 Mup.sys
0xF771F000 avgrkx86.sys
0xF7667000 AVGIDSEH.Sys
0xF76B7000 \SystemRoot\system32\DRIVERS\intelppm.sys
0xB90FA000 \SystemRoot\system32\DRIVERS\nv4_mini.sys
0xB90E6000 \SystemRoot\system32\DRIVERS\VIDEOPRT.SYS
0xBA02C000 \SystemRoot\system32\DRIVERS\imapi.sys
0xF774F000 \SystemRoot\system32\drivers\Afc.sys
0xBA67E000 \SystemRoot\System32\Drivers\UBHelper.SYS
0xBA01C000 \SystemRoot\system32\DRIVERS\cdrom.sys
0xBA00C000 \SystemRoot\system32\DRIVERS\redbook.sys
0xB90C3000 \SystemRoot\system32\DRIVERS\ks.sys
0xF79DD000 \SystemRoot\system32\DRIVERS\NTIDrvr.sys
0xF7757000 \SystemRoot\System32\Drivers\GEARAspiWDM.sys
0xB8D21000 \SystemRoot\system32\drivers\ALCXWDM.SYS
0xB8CFD000 \SystemRoot\system32\drivers\portcls.sys
0xB9FDC000 \SystemRoot\system32\drivers\drmk.sys
0xF775F000 \SystemRoot\system32\DRIVERS\usbohci.sys
0xB8CD9000 \SystemRoot\system32\DRIVERS\USBPORT.SYS
0xF7767000 \SystemRoot\system32\DRIVERS\usbehci.sys
0xF776F000 \SystemRoot\system32\DRIVERS\sisnic.sys
0xB8CA2000 \SystemRoot\System32\Drivers\a0yx9nx9.SYS
0xB8A87000 \SystemRoot\System32\Drivers\aba9oqpn.SYS
0xB8A76000 \SystemRoot\system32\DRIVERS\serial.sys
0xB9D49000 \SystemRoot\system32\DRIVERS\serenum.sys
0xB8A62000 \SystemRoot\system32\DRIVERS\parport.sys
0xB9FCC000 \SystemRoot\system32\DRIVERS\i8042prt.sys
0xB9D45000 \SystemRoot\system32\DRIVERS\L8042Kbd.sys
0xF77E7000 \SystemRoot\system32\DRIVERS\kbdclass.sys
0xF7ABE000 \SystemRoot\system32\DRIVERS\audstub.sys
0xF743C000 \SystemRoot\system32\DRIVERS\rasl2tp.sys
0xB9D41000 \SystemRoot\system32\DRIVERS\ndistapi.sys
0xB8947000 \SystemRoot\system32\DRIVERS\ndiswan.sys
0xF742C000 \SystemRoot\system32\DRIVERS\raspppoe.sys
0xF740C000 \SystemRoot\system32\DRIVERS\raspptp.sys
0xF77FF000 \SystemRoot\system32\DRIVERS\TDI.SYS
0xB891F000 \SystemRoot\system32\DRIVERS\psched.sys
0xBA778000 \SystemRoot\system32\DRIVERS\msgpc.sys
0xF777F000 \SystemRoot\system32\DRIVERS\ptilink.sys
0xB9512000 \SystemRoot\system32\DRIVERS\raspti.sys
0xF7697000 \SystemRoot\system32\DRIVERS\termdd.sys
0xB950A000 \SystemRoot\system32\DRIVERS\mouclass.sys
0xF79F1000 \SystemRoot\system32\DRIVERS\swenum.sys
0xB86EA000 \SystemRoot\system32\DRIVERS\update.sys
0xF793B000 \SystemRoot\system32\DRIVERS\mssmbios.sys
0xB587E000 \SystemRoot\System32\Drivers\NDProxy.SYS
0xB589E000 \SystemRoot\system32\DRIVERS\usbhub.sys
0xF79C7000 \SystemRoot\system32\DRIVERS\USBD.SYS
0xB58BE000 \SystemRoot\system32\DRIVERS\avgmfx86.sys
0xF79CB000 \SystemRoot\System32\Drivers\Fs_Rec.SYS
0xB170C000 \SystemRoot\System32\Drivers\Null.SYS
0xB7E79000 \SystemRoot\System32\Drivers\Beep.SYS
0xB94CA000 \SystemRoot\system32\DRIVERS\HIDPARSE.SYS
0xF77EF000 \SystemRoot\System32\drivers\vga.sys
0xB7E77000 \SystemRoot\System32\Drivers\mnmdd.SYS
0xF79D5000 \SystemRoot\System32\DRIVERS\RDPCDD.sys
0xF77D7000 \SystemRoot\System32\Drivers\Msfs.SYS
0xB515F000 \SystemRoot\System32\Drivers\Npfs.SYS
0xB5FF6000 \SystemRoot\system32\DRIVERS\rasacd.sys
0xAF4FF000 \SystemRoot\system32\DRIVERS\ipsec.sys
0xAF4A6000 \SystemRoot\system32\DRIVERS\tcpip.sys
0xAF45E000 \SystemRoot\system32\DRIVERS\avgtdix.sys
0xAF438000 \SystemRoot\system32\DRIVERS\ipnat.sys
0xB58AE000 \SystemRoot\system32\DRIVERS\wanarp.sys
0xAF410000 \SystemRoot\system32\DRIVERS\netbt.sys
0xAF3EE000 \SystemRoot\System32\drivers\afd.sys
0xB588E000 \SystemRoot\system32\DRIVERS\netbios.sys
0xB16D6000 \SystemRoot\system32\DRIVERS\srvkp.sys
0xAF3C3000 \SystemRoot\system32\DRIVERS\rdbss.sys
0xAF353000 \SystemRoot\system32\DRIVERS\mrxsmb.sys
0xB586E000 \SystemRoot\System32\Drivers\Fips.SYS
0xAF317000 \SystemRoot\system32\DRIVERS\avgldx86.sys
0xB553A000 \SystemRoot\system32\DRIVERS\USBSTOR.SYS
0xB5532000 \SystemRoot\System32\Drivers\LUsbFilt.Sys
0xBA738000 \SystemRoot\System32\Drivers\WDFLDR.SYS
0xAF29C000 \SystemRoot\system32\DRIVERS\Wdf01000.sys
0xBA7C0000 \SystemRoot\system32\DRIVERS\hidusb.sys
0xF745C000 \SystemRoot\system32\DRIVERS\HIDCLASS.SYS
0xB86D2000 \SystemRoot\system32\DRIVERS\LHidFilt.Sys
0xB59DF000 \SystemRoot\system32\DRIVERS\mouhid.sys
0xB5B7F000 \SystemRoot\system32\DRIVERS\LMouFilt.Sys
0xAF278000 \SystemRoot\System32\Drivers\Fastfat.SYS
0xB5259000 \SystemRoot\System32\Drivers\Cdfs.SYS
0xAF260000 \SystemRoot\System32\Drivers\dump_atapi.sys
0xB7636000 \SystemRoot\System32\Drivers\dump_WMILIB.SYS
0xBF800000 \SystemRoot\System32\win32k.sys
0xB2B30000 \SystemRoot\System32\drivers\Dxapi.sys
0xB5847000 \SystemRoot\System32\watchdog.sys
0xBF000000 \SystemRoot\System32\drivers\dxg.sys
0xB1704000 \SystemRoot\System32\drivers\dxgthk.sys
0xBF012000 \SystemRoot\System32\nv4_disp.dll
0xBF464000 \SystemRoot\System32\ATMFD.DLL
0xAE019000 \SystemRoot\system32\DRIVERS\nwlnkipx.sys
0xB5C0F000 \SystemRoot\system32\DRIVERS\nwlnknb.sys
0xAE0BB000 \SystemRoot\system32\DRIVERS\ndisuio.sys
0xB604F000 \SystemRoot\system32\DRIVERS\nwlnkspx.sys
0xAD6EC000 \SystemRoot\system32\drivers\wdmaud.sys
0xB7E1B000 \SystemRoot\system32\drivers\sysaudio.sys
0xAD65B000 \SystemRoot\system32\DRIVERS\atksgt.sys
0xB58FE000 \SystemRoot\system32\DRIVERS\AVGIDSShim.Sys
0xAD5F2000 \SystemRoot\System32\Drivers\HTTP.sys
0xB5137000 \SystemRoot\system32\DRIVERS\lirsgt.sys
0xAD54A000 \SystemRoot\system32\DRIVERS\srv.sys
0xB5B29000 \??\C:\WINDOWS\system32\Drivers\Vcs.sys
0xB602F000 \SystemRoot\system32\DRIVERS\AVGIDSFilter.Sys
0xAD45A000 \SystemRoot\system32\DRIVERS\AVGIDSDriver.Sys
0xA9E6B000 \SystemRoot\system32\drivers\kmixer.sys
0x7C910000 \WINDOWS\system32\ntdll.dll
0x10000000 \Program Files\Alcohol Soft\Alcohol 120\Alcoholx.dll

Processes (total 35):
0 System Idle Process
4 System
648 C:\WINDOWS\system32\smss.exe
712 C:\PROGRA~1\AVG\AVG10\avgchsvx.exe
1464 csrss.exe
1492 C:\WINDOWS\system32\winlogon.exe
1548 C:\WINDOWS\system32\services.exe
1560 C:\WINDOWS\system32\lsass.exe
1744 C:\WINDOWS\system32\svchost.exe
1804 svchost.exe
1880 C:\WINDOWS\system32\svchost.exe
1944 svchost.exe
200 svchost.exe
552 C:\WINDOWS\system32\spoolsv.exe
560 C:\WINDOWS\explorer.exe
1856 C:\Program Files\Fichiers communs\Apple\Mobile Device Support\AppleMobileDeviceService.exe
1904 C:\Program Files\AVG\AVG10\avgwdsvc.exe
1932 C:\Program Files\Bonjour\mDNSResponder.exe
1972 C:\WINDOWS\system32\svchost.exe
768 C:\WINDOWS\system32\svchost.exe
996 wdfmgr.exe
1940 C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe
1392 C:\Program Files\iTunes\iTunesHelper.exe
1396 C:\Program Files\AVAST Software\Avast\AvastUI.exe
1692 C:\Program Files\AVG\AVG10\avgtray.exe
2512 C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSMonitor.exe
2652 C:\Program Files\AVG\AVG10\avgnsx.exe
2680 C:\Program Files\AVG\AVG10\avgemcx.exe
3516 C:\Program Files\iPod\bin\iPodService.exe
3616 C:\WINDOWS\system32\wscntfy.exe
3676 alg.exe
236 C:\Program Files\Mozilla Firefox\firefox.exe
2296 C:\PROGRA~1\AVG\AVG10\avgrsx.exe
2336 C:\Program Files\AVG\AVG10\avgcsrvx.exe
1028 C:\Documents and Settings\test\Bureau\MBRCheck.exe

\\.\C: --> \\.\PhysicalDrive0 at offset 0x00000001'384c7a00 (NTFS)
\\.\D: --> \\.\PhysicalDrive0 at offset 0x00000013'2e00be00 (FAT32)

PhysicalDrive0 Model Number: HDT722516DLA380, Rev: V43OA96A

Size Device Name MBR Status
--------------------------------------------
153 GB \\.\PhysicalDrive0 Unknown MBR code
SHA1: 6A37CCD118436B688B51F6BD4C2B47A895EBDF7F


Found non-standard or infected MBR.
Enter 'Y' and hit ENTER for more options, or 'N' to exit:
Options:
[1] Dump the MBR of a physical disk to file.
[2] Restore the MBR of a physical disk with a standard boot code.
[3] Exit.

Enter your choice: Enter the physical disk number to fix (0-99, -1 to cancel): 0Available MBR codes:
[ 0] Default (Windows XP)
[ 1] Windows XP
[ 2] Windows Server 2003
[ 3] Windows Vista
[ 4] Windows 2008
[ 5] Windows 7
[-1] Cancel

Please select the MBR code to write to this drive: 0
Do you want to fix the MBR code? Type 'YES' and hit ENTER to continue: yes
Successfully wrote new MBR code!
Please reboot your computer to complete the fix.


Done!
0
juju666 Messages postés 35446 Date d'inscription jeudi 18 décembre 2008 Statut Contributeur sécurité Dernière intervention 21 avril 2024 4 795
2 avril 2011 à 21:12
aaah voilà :-)

tu as relancé l ordi ?

Nous allons effectuer un diagnostic de ton PC:
Télécharge ZHPDiag sur ton bureau :

https://www.zebulon.fr/telechargements/securite/systeme/zhpdiag.html
ou :
http://www.premiumorange.com/zeb-help-process/zhpdiag.html
ou :
https://www.commentcamarche.net/telecharger/utilitaires/24803-zhpdiag/

▶ Laisse toi guider lors de l'installation,coche "Ajouter une icône sur le bureau" et décoche la case "Exécuter ZHPDiag"

/!\Utilisateur de Vista et Seven : Clique droit sur le logo de ZHPdiag, « exécuter en tant qu'Administrateur »

▶ Clique sur l'icône représentant une loupe (« Lancer le diagnostic »)
▶ Enregistre le rapport sur ton Bureau à l'aide de l'icône représentant une disquette
▶ Héberge le rapport ZHPDiag.txt sur un des sites ci dessous, puis copie/colle le lien fourni dans ta prochaine réponse sur le forum :
http://pjjoint.malekal.com/

Si indispo:
http://www.cijoint.fr/
ou :
http://ww38.toofiles.com/fr/documents-upload.html
ou :
https://www.cjoint.com/
ou :
https://www.casimages.com/

▶ Tuto zhpdiag :
http://www.premiumorange.com/zeb-help-process/zhpdiag.html


Hébergement de rapport sur pjjoint.malekal.com

▶ Rends toi sur pjjoint.malekal.com
▶ Clique sur le bouton Parcourir
▶ Sélectionne le fichier que tu veux heberger et clique sur Ouvrir
▶ Clique sur le bouton Envoyer
▶ Un message de confirmation s'affiche (L'upload a réussi ! - Le lien à transmettre à vos correspondant pour visualiser le fichier est : https://pjjoint.malekal.com/files.php?id=df5ea299241015 Copie le lien dans ta prochaine réponse.
0
juju666 Messages postés 35446 Date d'inscription jeudi 18 décembre 2008 Statut Contributeur sécurité Dernière intervention 21 avril 2024 4 795
2 avril 2011 à 21:27
clique sur la loupe ...
0
SnakeFurie Messages postés 68 Date d'inscription samedi 22 septembre 2007 Statut Membre Dernière intervention 30 janvier 2014
Modifié par SnakeFurie le 2/04/2011 à 21:41
https://pjjoint.malekal.com/files.php?read=d9l6q12r8s7u6f6c8z14 et voilà le travail :p ( c'était pas trop dur ça mais j'ai qd même trouvé le moyen de me planter ^^ )
0
juju666 Messages postés 35446 Date d'inscription jeudi 18 décembre 2008 Statut Contributeur sécurité Dernière intervention 21 avril 2024 4 795
2 avril 2011 à 21:50
surtout que ton rapport est vide xD

envoie sur cjoint.com pour voir si c est la même chose?
0
SnakeFurie Messages postés 68 Date d'inscription samedi 22 septembre 2007 Statut Membre Dernière intervention 30 janvier 2014
2 avril 2011 à 21:52
mince j'men doutais j'ai regardé en plus je te refais ca vite fait !
0
SnakeFurie Messages postés 68 Date d'inscription samedi 22 septembre 2007 Statut Membre Dernière intervention 30 janvier 2014
2 avril 2011 à 21:53
http://www.cijoint.fr/cjlink.php?file=cj201104/cijcWMtuOM.txt voilà !
0