Besoin aide ordi lent et plante souvent!!! :S

Fermé
phoenixgirl Messages postés 230 Date d'inscription dimanche 7 septembre 2008 Statut Membre Dernière intervention 1 décembre 2016 - 11 juil. 2011 à 20:35
phoenixgirl Messages postés 230 Date d'inscription dimanche 7 septembre 2008 Statut Membre Dernière intervention 1 décembre 2016 - 28 juil. 2011 à 15:43
Bonjour,

J<aimerais avoir de l<aide svp

mon ordi est lent, vraiment lent parfois et il plante souvent peut-[etre y a t-il un virus, vous pourrez probablement m</clairer la-dessus...

Aussi j<ai pu de son depuis hier



J<ai effectuer un Hijack this:

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 14:28:33, on 2011-07-11
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\AVG\AVG9\avgchsvx.exe
C:\Program Files\AVG\AVG9\avgrsx.exe
C:\Program Files\AVG\AVG9\avgcsrvx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files\AVG\AVG9\avgwdsvc.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\Program Files\AVG\AVG9\avgnsx.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\AVG\AVG9\avgemc.exe
C:\Program Files\AVG\AVG9\avgcsrvx.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\ehome\ehtray.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\system32\hkcmd.exe
C:\PROGRA~1\AVG\AVG9\avgtray.exe
C:\PROGRA~1\Guffins\bar\1.bin\u4brmon.exe
C:\WINDOWS\eHome\ehmsas.exe
C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.2\Apps\apdproxy.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\QuickTime\QTTask.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\McAfee Security Scan\2.0.181\SSScheduler.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\HP\KBD\KBD.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\ALCMTR.EXE
C:\WINDOWS\ALCWZRD.EXE
c:\hp\drivers\hplsbwatcher\lsburnwatcher.exe
c:\windows\system\hpsysdrv.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\WINDOWS\ALCFDRTM.EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\WINDOWS\explorer.exe
C:\WINDOWS\system32\igfxsrvc.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.babylon.com/home?AF=17824
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R3 - URLSearchHook: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll
R3 - URLSearchHook: (no name) - *{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
R3 - URLSearchHook: (no name) - {c3d3840c-12ea-4461-a61d-190555fecc82} - C:\Program Files\Guffins\bar\1.bin\u4SrcAs.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG9\avgssie.dll
O2 - BHO: Click-to-Call BHO - {5C255C8A-E604-49b4-9D64-90988571CECB} - C:\Program Files\Windows Live\Messenger\wlchtc.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Babylon IE plugin - {9CFACCB6-2F3F-4177-94EA-0D2B72D384C1} - (no file)
O2 - BHO: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll
O2 - BHO: Toolbar BHO - {a916eefe-6a17-4d7d-a131-2738b260bb55} - C:\PROGRA~1\Guffins\bar\1.bin\u4bar.dll
O2 - BHO: SVIEBHO Class - {B3C54716-9D0A-4666-A81A-6072A6325A5A} - C:\Program Files\SelectView\svie.dll
O2 - BHO: Search Assistant BHO - {d6a34acb-76fa-4a14-88ea-5d54797a2028} - C:\Program Files\Guffins\bar\1.bin\u4SrcAs.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: AVG Security Toolbar - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: Guffins - {de2fdf7c-2637-4ba3-b427-3fce2d331db5} - C:\Program Files\Guffins\bar\1.bin\u4bar.dll
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [High Definition Audio Property Page Shortcut] HDAShCut.exe
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [HPBootOp] "C:\Program Files\Hewlett-Packard\HP Boot Optimizer\HPBootOp.exe" /run
O4 - HKLM\..\Run: [PS2] C:\WINDOWS\system32\ps2.exe
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [AVG9_TRAY] C:\PROGRA~1\AVG\AVG9\avgtray.exe
O4 - HKLM\..\Run: [Guffins Browser Plugin Loader] C:\PROGRA~1\Guffins\bar\1.bin\u4brmon.exe
O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.2\Apps\apdproxy.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [ISUSPM] "C:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe" -scheduler
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Policies\Explorer\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - Global Startup: McAfee Security Scan Plus.lnk = ?
O8 - Extra context menu item: &Search - http://tbedits.guffins.com/one-toolbaredits/menusearch.jhtml?s=100000442&p=YJxdm030YYca&si=62050&a=330BCF65-A3AE-432F-A3EC-FBBAE7B5D711&n=2011012318
O8 - Extra context menu item: Add to Windows &Live Favorites - https://onedrive.live.com/?id=favorites
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_43C348BC2E93EB2B.dll/cmsidewiki.html
O8 - Extra context menu item: Translate this web page with Babylon - res://C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll/ActionTU.htm
O8 - Extra context menu item: Translate with Babylon - res://C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll/Action.htm
O9 - Extra button: SelectView - {16D60F96-2FF6-40b2-96D3-C32170E45A01} - C:\Program Files\SelectView\svie.dll
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra button: PartyCasino - {B4B52284-A248-4c51-9F7C-F0A0C67FCC9D} - C:\Program Files\PartyGaming\PartyCasino\RunApp.exe (file missing)
O9 - Extra 'Tools' menuitem: PartyCasino - {B4B52284-A248-4c51-9F7C-F0A0C67FCC9D} - C:\Program Files\PartyGaming\PartyCasino\RunApp.exe (file missing)
O9 - Extra button: Connection Help - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra 'Tools' menuitem: Connection Help - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Translate this web page with Babylon - {F72841F0-4EF1-4df5-BCE5-B3AC8ACF5478} - C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll (file missing)
O9 - Extra 'Tools' menuitem: Translate this web page with Babylon - {F72841F0-4EF1-4df5-BCE5-B3AC8ACF5478} - C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab31267.cab
O16 - DPF: {4A85DBE0-BFB2-4119-8401-186A7C6EB653} - http://messenger.zone.msn.com/MessengerGamesContent/GameContent/fr/mjss/MJSS.cab109791.cab
O16 - DPF: {5C051655-FCD5-4969-9182-770EA5AA5565} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab56986.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/MessengerGamesContent/GameContent/fr/uno1/GAME_UNO1.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scanner/sources/en/scan8/oscan8.cab
O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety Center Base Module) - http://cdn.scan.onecare.live.com/resource/download/scanner/wlscbase5036.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1217948411078
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1296345561359
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {A1F2F2CE-06AF-483C-9F12-D3BAA72477D6} (BatchDownloader Class) - http://appdirectory.messenger.msn.com/AppDirectory/P4Apps/PhotoSwap/DigWXMSN.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab47946.cab
O16 - DPF: {BFD90062-6B5E-4F8F-87B1-5F022C14E32F} (ActiveReceiver Control) - http://www.meetstream.com/activex/28014/activereceiver.cab
O16 - DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} (Zylom Games Player) - http://game.zylom.com/activex/zylomgamesplayer.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: avgsecuritytoolbar - {F2DDE6B2-9684-4A55-86D4-E255E237B77C} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll
O18 - Protocol: CDS300 - {AD43AA67-6860-4531-AC8A-0E68F9CF023E} - (no file)
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG9\avgpp.dll
O20 - Winlogon Notify: avgrsstarter - C:\WINDOWS\SYSTEM32\avgrsstx.dll
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: AVG Security Toolbar Service - Unknown owner - C:\Program Files\AVG\AVG9\Toolbar\ToolbarBroker.exe
O23 - Service: AVG Free E-mail Scanner (avg9emc) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG9\avgemc.exe
O23 - Service: AVG Free WatchDog (avg9wd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG9\avgwdsvc.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Guffins Service (GuffinsService) - Guffins - C:\PROGRA~1\Guffins\bar\1.bin\u4barsvc.exe
O23 - Service: Service Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Service Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - C:\Program Files\McAfee Security Scan\2.0.181\McCHSvc.exe
O23 - Service: LiveShare P2P Server 9 (RoxLiveShare9) - Unknown owner - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxLiveShare9.exe (file missing)
A voir également:

12 réponses

phoenixgirl Messages postés 230 Date d'inscription dimanche 7 septembre 2008 Statut Membre Dernière intervention 1 décembre 2016 35
Modifié par phoenixgirl le 11/07/2011 à 20:50
ah j<oubliais je ne cesse de d/sinstaller des toolbar, pou8vez m<aider 'a les supprimer pour de bon et enti'erement

Merci!!

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 14:42:59, on 2011-07-11
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\AVG\AVG9\avgchsvx.exe
C:\Program Files\AVG\AVG9\avgrsx.exe
C:\Program Files\AVG\AVG9\avgcsrvx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files\AVG\AVG9\avgwdsvc.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\Program Files\AVG\AVG9\avgnsx.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\AVG\AVG9\avgemc.exe
C:\Program Files\AVG\AVG9\avgcsrvx.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\ehome\ehtray.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\system32\hkcmd.exe
C:\PROGRA~1\AVG\AVG9\avgtray.exe
C:\PROGRA~1\Guffins\bar\1.bin\u4brmon.exe
C:\WINDOWS\eHome\ehmsas.exe
C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.2\Apps\apdproxy.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\QuickTime\QTTask.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\McAfee Security Scan\2.0.181\SSScheduler.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\HP\KBD\KBD.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\ALCMTR.EXE
C:\WINDOWS\ALCWZRD.EXE
c:\hp\drivers\hplsbwatcher\lsburnwatcher.exe
c:\windows\system\hpsysdrv.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\WINDOWS\ALCFDRTM.EXE
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\WINDOWS\explorer.exe
C:\WINDOWS\system32\igfxsrvc.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.babylon.com/home?AF=17824
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R3 - URLSearchHook: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll
R3 - URLSearchHook: (no name) - *{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
R3 - URLSearchHook: (no name) - {c3d3840c-12ea-4461-a61d-190555fecc82} - C:\Program Files\Guffins\bar\1.bin\u4SrcAs.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG9\avgssie.dll
O2 - BHO: Click-to-Call BHO - {5C255C8A-E604-49b4-9D64-90988571CECB} - C:\Program Files\Windows Live\Messenger\wlchtc.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Babylon IE plugin - {9CFACCB6-2F3F-4177-94EA-0D2B72D384C1} - (no file)
O2 - BHO: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll
O2 - BHO: Toolbar BHO - {a916eefe-6a17-4d7d-a131-2738b260bb55} - C:\PROGRA~1\Guffins\bar\1.bin\u4bar.dll
O2 - BHO: SVIEBHO Class - {B3C54716-9D0A-4666-A81A-6072A6325A5A} - C:\Program Files\SelectView\svie.dll
O2 - BHO: Search Assistant BHO - {d6a34acb-76fa-4a14-88ea-5d54797a2028} - C:\Program Files\Guffins\bar\1.bin\u4SrcAs.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: AVG Security Toolbar - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: Guffins - {de2fdf7c-2637-4ba3-b427-3fce2d331db5} - C:\Program Files\Guffins\bar\1.bin\u4bar.dll
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [High Definition Audio Property Page Shortcut] HDAShCut.exe
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [HPBootOp] "C:\Program Files\Hewlett-Packard\HP Boot Optimizer\HPBootOp.exe" /run
O4 - HKLM\..\Run: [PS2] C:\WINDOWS\system32\ps2.exe
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [AVG9_TRAY] C:\PROGRA~1\AVG\AVG9\avgtray.exe
O4 - HKLM\..\Run: [Guffins Browser Plugin Loader] C:\PROGRA~1\Guffins\bar\1.bin\u4brmon.exe
O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.2\Apps\apdproxy.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [ISUSPM] "C:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe" -scheduler
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Policies\Explorer\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - Global Startup: McAfee Security Scan Plus.lnk = ?
O8 - Extra context menu item: &Search - http://tbedits.guffins.com/one-toolbaredits/menusearch.jhtml?s=100000442&p=YJxdm030YYca&si=62050&a=330BCF65-A3AE-432F-A3EC-FBBAE7B5D711&n=2011012318
O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_43C348BC2E93EB2B.dll/cmsidewiki.html
O8 - Extra context menu item: Translate this web page with Babylon - res://C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll/ActionTU.htm
O8 - Extra context menu item: Translate with Babylon - res://C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll/Action.htm
O9 - Extra button: SelectView - {16D60F96-2FF6-40b2-96D3-C32170E45A01} - C:\Program Files\SelectView\svie.dll
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra button: PartyCasino - {B4B52284-A248-4c51-9F7C-F0A0C67FCC9D} - C:\Program Files\PartyGaming\PartyCasino\RunApp.exe (file missing)
O9 - Extra 'Tools' menuitem: PartyCasino - {B4B52284-A248-4c51-9F7C-F0A0C67FCC9D} - C:\Program Files\PartyGaming\PartyCasino\RunApp.exe (file missing)
O9 - Extra button: Connection Help - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra 'Tools' menuitem: Connection Help - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Translate this web page with Babylon - {F72841F0-4EF1-4df5-BCE5-B3AC8ACF5478} - C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll (file missing)
O9 - Extra 'Tools' menuitem: Translate this web page with Babylon - {F72841F0-4EF1-4df5-BCE5-B3AC8ACF5478} - C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab31267.cab
O16 - DPF: {4A85DBE0-BFB2-4119-8401-186A7C6EB653} - http://messenger.zone.msn.com/MessengerGamesContent/GameContent/fr/mjss/MJSS.cab109791.cab
O16 - DPF: {5C051655-FCD5-4969-9182-770EA5AA5565} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab56986.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/MessengerGamesContent/GameContent/fr/uno1/GAME_UNO1.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scanner/sources/en/scan8/oscan8.cab
O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety Center Base Module) - http://cdn.scan.onecare.live.com/resource/download/scanner/wlscbase5036.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1217948411078
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1296345561359
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {A1F2F2CE-06AF-483C-9F12-D3BAA72477D6} (BatchDownloader Class) - http://appdirectory.messenger.msn.com/AppDirectory/P4Apps/PhotoSwap/DigWXMSN.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab47946.cab
O16 - DPF: {BFD90062-6B5E-4F8F-87B1-5F022C14E32F} (ActiveReceiver Control) - http://www.meetstream.com/activex/28014/activereceiver.cab
O16 - DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} (Zylom Games Player) - http://game.zylom.com/activex/zylomgamesplayer.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: avgsecuritytoolbar - {F2DDE6B2-9684-4A55-86D4-E255E237B77C} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll
O18 - Protocol: CDS300 - {AD43AA67-6860-4531-AC8A-0E68F9CF023E} - (no file)
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG9\avgpp.dll
O20 - Winlogon Notify: avgrsstarter - C:\WINDOWS\SYSTEM32\avgrsstx.dll
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: AVG Security Toolbar Service - Unknown owner - C:\Program Files\AVG\AVG9\Toolbar\ToolbarBroker.exe
O23 - Service: AVG Free E-mail Scanner (avg9emc) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG9\avgemc.exe
O23 - Service: AVG Free WatchDog (avg9wd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG9\avgwdsvc.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Guffins Service (GuffinsService) - Guffins - C:\PROGRA~1\Guffins\bar\1.bin\u4barsvc.exe
O23 - Service: Service Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Service Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - C:\Program Files\McAfee Security Scan\2.0.181\McCHSvc.exe
O23 - Service: LiveShare P2P Server 9 (RoxLiveShare9) - Unknown owner - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxLiveShare9.exe (file missing)

Autre question: comment savoir s<il manque de memoire ou de memoire vive????
0
phoenixgirl Messages postés 230 Date d'inscription dimanche 7 septembre 2008 Statut Membre Dernière intervention 1 décembre 2016 35
13 juil. 2011 à 20:43
Jai fait un analyse en ligne avec bitdefender & on dit que lordi est infecte!!

Je tient a ajouter que mon AVG9 (antivirus) narrete pas de detecter des tracking7 cookies a chaque ouverture de page!!!! Pouvez-vous m<aidez SVP!!

voici le rapport du bitdefender online quick:
QuickScan Beta 32-bit v0.9.9.96
-------------------------------
Date de l'analyse : Wed Jul 13 14:20:19 2011
ID de la machine : A48289D4



Aucune infection détectée.
--------------------------



Processus
---------
ALCWZRD 3808 C:\WINDOWS\ALCWZRD.EXE
AVG Internet Security 1156 C:\Program Files\AVG\AVG9\avgchsvx.exe
AVG Internet Security 3364 C:\Program Files\AVG\AVG9\avgcsrvx.exe
AVG Internet Security 1276 C:\Program Files\AVG\AVG9\avgcsrvx.exe
AVG Internet Security 3072 C:\Program Files\AVG\AVG9\avgemc.exe
AVG Internet Security 2544 C:\Program Files\AVG\AVG9\avgnsx.exe
AVG Internet Security 1180 C:\Program Files\AVG\AVG9\avgrsx.exe
AVG Internet Security 392 C:\Program Files\AVG\AVG9\avgwdsvc.exe
AVG Internet Security 1860 C:\PROGRA~1\AVG\AVG9\avgtray.exe
Bonjour 424 C:\Program Files\Bonjour\mDNSResponder.exe
Glary Utilities 2320 C:\Program Files\Glary Utilities\memdefrag.exe
Guffins 2004 C:\PROGRA~1\Guffins\bar\1.bin\u4brmon.exe
Hewlett-Packard Company KBD EXE 212 C:\hp\KBD\kbd.exe
hpsysdrv 3216 C:\WINDOWS\system\hpsysdrv.exe
Intel(R) Common User Interface 1732 C:\WINDOWS\system32\hkcmd.exe
Intel(R) Common User Interface 1040 C:\WINDOWS\system32\igfxpers.exe
iTunes 2016 C:\Program Files\iPod\bin\iPodService.exe
iTunes 2188 C:\Program Files\iTunes\iTunesHelper.exe
Java(TM) Platform SE 6 U25 1392 C:\Program Files\Java\jre6\bin\jqs.exe
Java(TM) Platform SE Auto Updater 2 0 2096 C:\Program Files\Common Files\Java\Java Update\jusched.exe
Java(TM) Platform SE Auto Updater 2 0 1692 C:\Program Files\Common Files\Java\Java Update\jusched.exe
LightScribe 3896 C:\hp\drivers\hplsbwatcher\LSBurnWatcher.exe
LightScribe 2180 C:\Program Files\Common Files\LightScribe\LSSrvc.exe
Microsoft® Windows® Operating System 456 C:\WINDOWS\ehome\ehRecvr.exe
Microsoft® Windows® Operating System 552 C:\WINDOWS\ehome\ehSched.exe
Microsoft® Windows® Operating System 580 C:\WINDOWS\ehome\ehtray.exe
Microsoft® Windows® Operating System 1344 C:\WINDOWS\system32\spoolsv.exe
MobileDeviceService 188 C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
QuickTime 2136 C:\Program Files\QuickTime\QTTask.exe
Realtek HD Sound Manager 2836 C:\WINDOWS\SOUNDMAN.EXE
Software Manager 2296 C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe
Windows Live Communications Platform 908 C:\Program Files\Windows Live\Contacts\wlcomm.exe
Windows Live Messenger 2208 C:\Program Files\Windows Live\Messenger\msnmsgr.exe
(verifié) Microsoft Search Enhancement Pack 2616 C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
(verifié) Microsoft® Visual Studio .NET 2448 C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
(verifié) Microsoft® Windows® Operating System 1980 C:\WINDOWS\explorer.exe
(verifié) Microsoft® Windows® Operating System 2480 C:\WINDOWS\system32\alg.exe
(verifié) Microsoft® Windows® Operating System 584 C:\WINDOWS\system32\csrss.exe
(verifié) Microsoft® Windows® Operating System 2308 C:\WINDOWS\system32\ctfmon.exe
(verifié) Microsoft® Windows® Operating System 988 C:\WINDOWS\system32\dllhost.exe
(verifié) Microsoft® Windows® Operating System 664 C:\WINDOWS\system32\lsass.exe
(verifié) Microsoft® Windows® Operating System 652 C:\WINDOWS\system32\services.exe
(verifié) Microsoft® Windows® Operating System 512 C:\WINDOWS\system32\smss.exe
(verifié) Microsoft® Windows® Operating System 836 C:\WINDOWS\system32\svchost.exe
(verifié) Microsoft® Windows® Operating System 884 C:\WINDOWS\system32\svchost.exe
(verifié) Microsoft® Windows® Operating System 952 C:\WINDOWS\system32\svchost.exe
(verifié) Microsoft® Windows® Operating System 1432 C:\WINDOWS\system32\svchost.exe
(verifié) Microsoft® Windows® Operating System 2924 C:\WINDOWS\system32\svchost.exe
(verifié) Microsoft® Windows® Operating System 1092 C:\WINDOWS\system32\svchost.exe
(verifié) Microsoft® Windows® Operating System 1004 C:\WINDOWS\system32\svchost.exe
(verifié) Microsoft® Windows® Operating System 3000 C:\WINDOWS\system32\wdfmgr.exe
(verifié) Microsoft® Windows® Operating System 608 C:\WINDOWS\system32\winlogon.exe
(verifié) Realtek AC97 Audio - Event Monitor 3196 C:\WINDOWS\ALCMTR.EXE
(verifié) Windows® Internet Explorer 2748 C:\Program Files\Internet Explorer\iexplore.exe
(verifié) Windows® Internet Explorer 3084 C:\Program Files\Internet Explorer\iexplore.exe


Activité du réseau
------------------
Processus msnmsgr.exe (2208) connecté sur le port 1863 (MSN) --> 64.4.44.40
Processus iexplore.exe (3084) connecté sur le port 80 (HTTP) --> 74.125.226.129
Processus iexplore.exe (3084) connecté sur le port 80 (HTTP) --> 74.125.226.129
Processus iexplore.exe (3084) connecté sur le port 80 (HTTP) --> 74.125.226.129

Processus svchost.exe (884) écoute sur les ports: 135 (RPC)


Fichiers critiques et Autorun
-----------------------------
Apple Software Update C:\Program Files\Apple Software Update\SoftwareUpdate.exe
AVG Internet Security C:\Program Files\AVG\AVG9\avgtray.exe
AVG Internet Security C:\WINDOWS\system32\avgrsstx.dll
Glary Utilities C:\Program Files\Glary Utilities\initialize.exe
Glary Utilities C:\Program Files\Glary Utilities\memdefrag.exe
Guffins C:\Program Files\Guffins\bar\1.bin\u4brmon.exe
Hewlett-Packard Company PS2 EXE C:\WINDOWS\system32\ps2.exe
HP Service Delivery Platform C:\Program Files\Easy Internet signup\HPSdpApp.exe
HPBootOp C:\Program Files\Hewlett-Packard\HP Boot Optimizer\HPBootOp.exe
Intel(R) Common User Interface C:\WINDOWS\system32\hkcmd.exe
Intel(R) Common User Interface C:\WINDOWS\system32\igfxdev.dll
Intel(R) Common User Interface C:\WINDOWS\system32\igfxpers.exe
Intel(R) Common User Interface C:\WINDOWS\system32\igfxtray.exe
iTunes C:\Program Files\iTunes\iTunesHelper.exe
Java(TM) Platform SE Auto Updater 2 0 C:\Program Files\Common Files\Java\Java Update\jusched.exe
Microsoft® Windows® Operating System C:\WINDOWS\ehome\ehtray.exe
Microsoft® Windows® Operating System C:\WINDOWS\system32\CRYPT32.dll
Microsoft® Windows® Operating System C:\WINDOWS\system32\CRYPTNET.dll
Microsoft® Windows® Operating System C:\WINDOWS\system32\cscdll.dll
Microsoft® Windows® Operating System C:\WINDOWS\System32\dimsntfy.dll
Microsoft® Windows® Operating System C:\WINDOWS\system32\HDAShCut.exe
Microsoft® Windows® Operating System C:\WINDOWS\system32\SHELL32.dll
Microsoft® Windows® Operating System C:\WINDOWS\system32\ssmypics.scr
Microsoft® Windows® Operating System c:\windows\system32\userinit.exe
Microsoft® Windows® Operating System C:\WINDOWS\system32\WlNotify.dll
Microsoft® Windows® Operating System D:\setupsnk.exe
QuickTime C:\Program Files\QuickTime\QTTask.exe
Software Manager C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe
Windows Genuine Advantage C:\WINDOWS\system32\WgaLogon.dll
Windows Live Messenger C:\Program Files\Windows Live\Messenger\msnmsgr.exe
(verifié) Google Update C:\Program Files\Google\Update\GoogleUpdate.exe
(verifié) Microsoft® Windows® Operating System C:\WINDOWS\system32\BROWSEUI.dll
(verifié) Microsoft® Windows® Operating System C:\WINDOWS\system32\ctfmon.exe
(verifié) Microsoft® Windows® Operating System C:\WINDOWS\system32\logonui.exe
(verifié) Microsoft® Windows® Operating System C:\WINDOWS\system32\sclgntfy.dll
(verifié) Microsoft® Windows® Operating System C:\WINDOWS\system32\stobject.dll
(verifié) Windows® Internet Explorer C:\WINDOWS\system32\msfeedssync.exe
(verifié) Windows® Internet Explorer C:\WINDOWS\system32\webcheck.dll


Plugins du navigateur
---------------------
ActiveReceiver ActiveX Control Module C:\WINDOWS\Downloaded Program Files\ActiveReceiver.ocx
Adobe® Flash® Player ActiveX C:\WINDOWS\Downloaded Program Files\FP_AX_CAB_INSTALLER.exe
AVG Internet Security C:\Program Files\AVG\AVG9\avgssie.dll
AVG Security Toolbar c:\program files\avg\avg9\toolbar\ietoolbar.dll
bdscanonline C:\WINDOWS\Downloaded Program Files\oscan82.ocx
bdupd.dll C:\WINDOWS\Downloaded Program Files\bdupd.dll
BitDefender QuickScan C:\WINDOWS\Downloaded Program Files\qsax.dll
Bonjour C:\Program Files\Bonjour\mdnsNSP.dll
Google Update C:\Program Files\Google\Update\1.3.21.57\npGoogleUpdate3.dll
Guffins for Internet Explorer and Firef C:\Program Files\Guffins\bar\1.bin\u4bar.dll
Guffins Plugin Stub C:\Program Files\Guffins\bar\1.bin\NPu4Stub.dll
Guffins Search Assistant for Internet E C:\Program Files\Guffins\bar\1.bin\u4SrcAs.dll
ipsupd.dll C:\WINDOWS\Downloaded Program Files\ipsupd.dll
Java(TM) Platform SE 6 U25 c:\program files\java\jre6\bin\jp2ssv.dll
Java(TM) Platform SE 6 U25 C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
Java(TM) Platform SE 6 U25 C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
Microsoft® Windows Live OneCare C:\WINDOWS\Downloaded Program Files\wlscBase.dll
Microsoft® Windows® Operating System C:\WINDOWS\system32\mswsock.dll
Microsoft® Windows® Operating System C:\WINDOWS\system32\nwprovau.dll
Microsoft® Windows® Operating System C:\WINDOWS\system32\rsvpsp.dll
Microsoft® Windows® Operating System C:\WINDOWS\System32\winrnr.dll
MSN Photo Upload Control C:\WINDOWS\Downloaded Program Files\PURen-us.dll
MSN Photos BatchEd Module C:\WINDOWS\Downloaded Program Files\DigWXMSN.dll
MSN® Games by Zone.com C:\WINDOWS\Downloaded Program Files\CONFLICT.1\MessengerStatsPAClient.dll
MSN® Games by Zone.com C:\WINDOWS\Downloaded Program Files\messengerstatsclient.dll
MSN® Games by Zone.com C:\WINDOWS\Downloaded Program Files\MessengerStatsPAClient.dll
MSN® Games by Zone.com C:\WINDOWS\Downloaded Program Files\minesweeper.dll
MSN® Games by Zone.com C:\WINDOWS\Downloaded Program Files\MJSS.ocx
MSN® Games by Zone.com C:\WINDOWS\Downloaded Program Files\msgrchkr.dll
MSN® Games by Zone.com C:\WINDOWS\Downloaded Program Files\SolitaireShowdown.dll
MSN® Games by Zone.com C:\WINDOWS\Downloaded Program Files\ZIntro.ocx
npitunes.dll C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll
npPhotosynthMozilla.dll C:\Program Files\Photosynth\npPhotosynthMozilla.dll
NPSWF32.dll C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll
QuickTime Plug-in 7.6.9 C:\Program Files\Internet Explorer\plugins\npqtplugin.dll
QuickTime Plug-in 7.6.9 C:\Program Files\Internet Explorer\plugins\npqtplugin2.dll
QuickTime Plug-in 7.6.9 C:\Program Files\Internet Explorer\plugins\npqtplugin3.dll
QuickTime Plug-in 7.6.9 C:\Program Files\Internet Explorer\plugins\npqtplugin4.dll
QuickTime Plug-in 7.6.9 C:\Program Files\Internet Explorer\plugins\npqtplugin5.dll
QuickTime Plug-in 7.6.9 C:\Program Files\Internet Explorer\plugins\npqtplugin6.dll
QuickTime Plug-in 7.6.9 C:\Program Files\Internet Explorer\plugins\npqtplugin7.dll
SelectView Filter C:\Program Files\SelectView\svie.dll
Shockwave for Director C:\WINDOWS\system32\Adobe\Director\np32dsw.dll
Silverlight Plug-In c:\Program Files\Microsoft Silverlight\4.0.51204.0\npctrl.dll
Software Manager C:\WINDOWS\Downloaded Program Files\isusweb.dll
UNO Messenger C:\WINDOWS\Downloaded Program Files\GAME_UNO1.dll
Windows Live Call Click-to-Call BHO C:\Program Files\Windows Live\Messenger\wlchtc.dll
Windows Live Photo Upload Control C:\WINDOWS\Downloaded Program Files\MsnPUpld.dll
Windows Live Toolbar c:\program files\windows live\toolbar\wltcore.dll
Windows Live® Photo Gallery C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
Windows Presentation Foundation c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
Windows® Internet Explorer C:\WINDOWS\system32\ieframe.dll
Yahoo! Toolbar c:\program files\yahoo!\companion\installs\cpn\yt.dll
Zylom Games Player C:\WINDOWS\Downloaded Program Files\zylomgamesplayer.dll
Zylom Plugin C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\npzylomgamesplayer.dll
(verifié) bdoscandel.exe C:\WINDOWS\bdoscandel.exe
(verifié) InstallShield Update Service C:\WINDOWS\Downloaded Program Files\dwusplay.dll
(verifié) InstallShield Update Service C:\WINDOWS\Downloaded Program Files\dwusplay.exe
(verifié) Microsoft Search Enhancement Pack C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
(verifié) Microsoft® Windows Live Login Helper C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
(verifié) Microsoft® Windows® Operating System C:\WINDOWS\Network Diagnostic\xpnetdiag.exe


Analyse
-------
MD5: fc5866f7793af2cbcd425cc4b8d32a9e C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\npzylomgamesplayer.dll
MD5: 5fd441fa69b135b8891ebf8f2f8631b7 C:\hp\drivers\hplsbwatcher\LSBurnWatcher.exe
MD5: 3009ca3f54c5416047b626f82dd2d562 C:\HP\KBD\aol.dll
MD5: 261e5e3602941656a1442b255c936b9e C:\HP\KBD\cfg.dll
MD5: c81be1b951c36e97d3da90da745da5f7 C:\hp\KBD\kbd.exe
MD5: f68a3f0d63be926ed65ed1c8c5b03a3d C:\HP\KBD\led.dll
MD5: 205db5a0dd15df2657efd4b64d0cc4a3 C:\HP\KBD\msg.dll
MD5: 60db5561f7b646fa217e9ea6561e6705 C:\HP\KBD\MSIKBDIF.DLL
MD5: 01fe97e6f8d3d51c2290e6acdf53996a C:\HP\KBD\onl.dll
MD5: 5048db37a482447ee60d23ee4356d23e C:\HP\KBD\osd.dll
MD5: 2ae54f20144b2af570587a8478d02885 C:\HP\KBD\ps2.dll
MD5: 7b0cb1eeb0e743cb8b3f75e7ee571959 C:\HP\KBD\sct.dll
MD5: 10f35088935908d9cc7a248104939f7e C:\HP\KBD\url.dll
MD5: d1eaecfbc6777802079cb4ee5ea3e31d C:\HP\KBD\USB.dll
MD5: 34ebd4ff6a24d86bb4716d6afcc1a89b C:\Program Files\Apple Software Update\SoftwareUpdate.exe
MD5: 25d18be0e181c9e8c38973a3b2111d7f C:\Program Files\AVG\AVG9\avgapix.dll
MD5: 14722a961dd3f3862335ca2656a45ded C:\Program Files\AVG\AVG9\avgcclix.dll
MD5: 6060390ac5b9f7ec2e62b1eb2d5d50c6 C:\Program Files\AVG\AVG9\avgcfgx.dll
MD5: 05573096e8c9574ac733114d74fb2ecd C:\Program Files\AVG\AVG9\avgchclx.dll
MD5: e9dc2ece7a0c77821b2c6364086f239b C:\Program Files\AVG\AVG9\avgchjwx.dll
MD5: c4bd9b642be1f65663b34fbad79ffab2 C:\Program Files\AVG\AVG9\avgclitx.dll
MD5: 960ca388a0694a6e6644b32f958b297d C:\Program Files\AVG\AVG9\avgcorex.dll
MD5: a43e97f3ff01b6f0a21c848454e98c13 C:\Program Files\AVG\AVG9\avgcslx.dll
MD5: 737a5253008be7f12acedd6876f24b4b C:\Program Files\AVG\AVG9\avgcsrvx.exe
MD5: 4728d3bc556d677591797d600c47467c C:\Program Files\AVG\AVG9\avgnsx.exe
MD5: 3d9895b981afac3ce2abe9c0a63d949a C:\Program Files\AVG\AVG9\avgpp.dll
MD5: 0f80a1a931a25a39a6f339fbd001bf3f C:\Program Files\AVG\AVG9\avgsched.dll
MD5: 7c0d60ceb9d710b70d50fcad7955f406 C:\Program Files\AVG\AVG9\avgsrmx.dll
MD5: 7f18c04f815ddcbeb9e836756cafc479 C:\Program Files\AVG\AVG9\avgssie.dll
MD5: 035a4dc0ea6506f422ebf388de9ee720 C:\Program Files\AVG\AVG9\avgtray.exe
MD5: 91b4689702cc07266246dd2b4e8a4a33 C:\Program Files\AVG\AVG9\avgwd.dll
MD5: 7e279342d3fd9ff473a8fe946f21d280 C:\Program Files\AVG\AVG9\avgxpl.dll
MD5: 312d3f5c306752e88a069d0b73e40a6e c:\program files\avg\avg9\toolbar\ietoolbar.dll
MD5: ee651d98b03fe3c075ccc58ab61c9287 C:\Program Files\AVG\AVG9\Toolbar\ToolbarBroker.exe
MD5: 37bc9e0e4b3657b54037777135569d1e C:\Program Files\Bonjour\mdnsNSP.dll
MD5: f2060a34c8a75bc24a9222eb4f8c07bd C:\Program Files\Bonjour\mDNSResponder.exe
MD5: dddd1d04d5f4360371bc99c7c476f70d C:\Program Files\Common Files\Apple\Apple Application Support\ASL.dll
MD5: 1edd423e34c5ff8f1c9c94a1afc12d03 C:\Program Files\Common Files\Apple\Apple Application Support\CFNetwork.DLL
MD5: de4835a2de88d3597fdc92b863333f05 C:\Program Files\Common Files\Apple\Apple Application Support\CoreFoundation.dll
MD5: d30dd708f05fb85ef2c53727ed3573d2 C:\Program Files\Common Files\Apple\Apple Application Support\icudt40.dll
MD5: 38711bb50d27b7145186f61ce31b3336 C:\Program Files\Common Files\Apple\Apple Application Support\icuin40.dll
MD5: 9e515554a3ea7b70c975f61971c6977d C:\Program Files\Common Files\Apple\Apple Application Support\icuuc40.dll
MD5: 7ef0c8a9a1a57756f4868e3693173c08 C:\Program Files\Common Files\Apple\Apple Application Support\libdispatch.dll
MD5: 258d35f5f5f5f3f6045488ecdc14faab C:\Program Files\Common Files\Apple\Apple Application Support\objc.dll
MD5: 20f6f19fe9e753f2780dc2fa083ad597 C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
MD5: dc70310b3d079d667b67f0c7067209f3 C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService_main.dll
MD5: e6748a0adc22f0595e31448cac746d3f C:\Program Files\Common Files\Apple\Mobile Device Support\iTunesMobileDevice.dll
MD5: 43d083268a0919f3527a2837390baf63 C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe
MD5: 13b19dd5ebeb6fddbd11dd77490a3585 C:\Program Files\Common Files\Java\Java Update\jusched.exe
MD5: 3706642e75b5aab16a9cac0287af5f7d C:\Program Files\Common Files\lightscribe\LSCapi.dll
MD5: 51d54af343d536e7130dfeadb5372afe C:\Program Files\Common Files\lightscribe\LSDrComm.dll
MD5: 3690c710787d2e44f183dc70bd66290c C:\Program Files\Common Files\lightscribe\LSLog.dll
MD5: 6ca9c9c471d384698945e2b9caab294e C:\Program Files\Common Files\lightscribe\LSPrtEn.dll
MD5: 4446045b7f00482ac9fc3a03d271ff12 C:\Program Files\Common Files\lightscribe\LSSProxy.dll
MD5: 00944d59948596721d17510c94cd3e4f C:\Program Files\Common Files\LightScribe\LSSrvc.exe
MD5: b39df61258854deb605f1668ca525cbb C:\Program Files\Easy Internet signup\HPSdpApp.exe
MD5: 431b759146514f05a1dc7d4a4515c5f7 C:\Program Files\Glary Utilities\cxLibraryVCLD7.bpl
MD5: 4c6bf8b513f767e2949c3b4eb6c5181c C:\Program Files\Glary Utilities\dxBarD7.bpl
MD5: 685ac0bb5ea2ee0891f6cd2030012900 C:\Program Files\Glary Utilities\dxComnD7.bpl
MD5: c2a4c8ec76d280625e19bd35096ecd83 C:\Program Files\Glary Utilities\dxCoreD7.bpl
MD5: 3d2b8e812635cea6d12bb8d3377e0565 C:\Program Files\Glary Utilities\dxGDIPlusD7.bpl
MD5: b6d464b48d238b96c25927252d7ff392 C:\Program Files\Glary Utilities\dxSkinOffice2007BlueD7.bpl
MD5: d5069588e634403c7f2f761f81217689 C:\Program Files\Glary Utilities\dxSkinsCoreD7.bpl
MD5: a7563ea81cc8c2bbd6f0ccf83f895b06 C:\Program Files\Glary Utilities\dxSkinsdxBarPainterD7.bpl
MD5: 0aa42c97f212c71841037dfaeff233b5 C:\Program Files\Glary Utilities\dxThemeD7.bpl
MD5: c9a698345a0900d3c8ee2817e6e28d22 C:\Program Files\Glary Utilities\GUControlD7.bpl
MD5: 9b63519b2d0badd690e72655e972f367 C:\Program Files\Glary Utilities\GUTrayIconD7.bpl
MD5: c1eb8b996a97aeea2e59d42ae632672b C:\Program Files\Glary Utilities\initialize.exe
MD5: 2ae7bd0d362bf05507dc761035c78043 C:\Program Files\Glary Utilities\memdefrag.exe
MD5: 0dcd17c9a3b135c61834c716a412a5bf C:\Program Files\Glary Utilities\rtl70.bpl
MD5: 599dabd485b83b3ddbfcacfd60ac8774 C:\Program Files\Glary Utilities\vcl70.bpl
MD5: d7b49da980884f53c3d78e1e853b02e4 C:\Program Files\Glary Utilities\VclSmp70.bpl
MD5: e12c66ffd510c78731d5400eddecd8c8 C:\Program Files\Glary Utilities\vclx70.bpl
MD5: 78693e83e57a63f3522d1ccc1ece54a5 C:\Program Files\Glary Utilities\VirtualTreesD7.bpl
MD5: b226054bfa3d3a1920f7b95e54f3e87d C:\Program Files\Google\Update\1.3.21.57\npGoogleUpdate3.dll
MD5: 25713fe7101346de7119c853075a3b79 C:\Program Files\Guffins\bar\1.bin\NPu4Stub.dll
MD5: 47c27a0a465b3a2e9ecc1dcfcf54fd3b C:\Program Files\Guffins\bar\1.bin\u4auxstb.dll
MD5: 2204d24e206a6d597b885093a7a04422 C:\Program Files\Guffins\bar\1.bin\u4bar.dll
MD5: 5ec9edfbae8971870129d6de7b747ccd C:\Program Files\Guffins\bar\1.bin\u4brmon.exe
MD5: f5f6e3252eeac7474db8f833fdc6c8f2 C:\Program Files\Guffins\bar\1.bin\u4brstub.dll
MD5: b2e357f8c19ec155b3abc0c811d042ce C:\Program Files\Guffins\bar\1.bin\u4dlghk.dll
MD5: e7019cd2849b1e5db4a752d900056024 C:\Program Files\Guffins\bar\1.bin\u4SrcAs.dll
MD5: 30a086ba3520555b718e77763b1c52c0 C:\Program Files\Hewlett-Packard\HP Boot Optimizer\HPBootOp.exe
MD5: 5c8a29e5a379b27456a506907cc7548f C:\Program Files\Internet Explorer\ieproxy.dll
MD5: 52811ce9ff226011a1152c85b4cdf24f C:\Program Files\Internet Explorer\plugins\npqtplugin.dll
MD5: 52811ce9ff226011a1152c85b4cdf24f C:\Program Files\Internet Explorer\plugins\npqtplugin2.dll
MD5: 52811ce9ff226011a1152c85b4cdf24f C:\Program Files\Internet Explorer\plugins\npqtplugin3.dll
MD5: 52811ce9ff226011a1152c85b4cdf24f C:\Program Files\Internet Explorer\plugins\npqtplugin4.dll
MD5: 52811ce9ff226011a1152c85b4cdf24f C:\Program Files\Internet Explorer\plugins\npqtplugin5.dll
MD5: 52811ce9ff226011a1152c85b4cdf24f C:\Program Files\Internet Explorer\plugins\npqtplugin6.dll
MD5: 52811ce9ff226011a1152c85b4cdf24f C:\Program Files\Internet Explorer\plugins\npqtplugin7.dll
MD5: 5906643ebc9dac817800908b3ffd99ad C:\Program Files\Internet Explorer\xpshims.dll
MD5: 3384d1961ce2698c29914f43a29ef823 C:\Program Files\iPod\bin\iPodService.exe
MD5: 9aa72d7fdb4f1234ee1331a0af2d91c2 C:\Program Files\iPod\bin\iPodService.Resources\fr.lproj\iPodServiceLocalized.DLL
MD5: 48f8b49adb3dbbdc0812672d844948c5 C:\Program Files\iPod\bin\iPodService.Resources\iPodService.DLL
MD5: 836731f87fed9282ff708b1825e56dae C:\Program Files\iTunes\iTunesHelper.dll
MD5: 14d24a2b96069a48a578c605f6d68e29 C:\Program Files\iTunes\iTunesHelper.exe
MD5: e99e93a7d3c0b02ae3ba93a0d91bd7f6 C:\Program Files\iTunes\iTunesHelper.Resources\fr.lproj\iTunesHelperLocalized.DLL
MD5: 79bed8cab3e3292643b90bfbaec8330b C:\Program Files\iTunes\iTunesHelper.Resources\iTunesHelper.DLL
MD5: 7f8aefd3bbc0f30c42c59fd27a828dcf C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll
MD5: ec48890b04d283371dc2cadac40ad5b5 c:\program files\java\jre6\bin\jp2ssv.dll
MD5: 11c3efb4bac41175d03b1595db1a4a4f C:\Program Files\Java\jre6\bin\jqs.exe
MD5: ed5394c852ae873d5a67e14e8049881d C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
MD5: 0db5b013e0abcb6502f4cc9516872d29 C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
MD5: 9b25e7cbebca73b64c5a8f7b20eb64ee c:\Program Files\Microsoft Silverlight\4.0.51204.0\npctrl.dll
MD5: 2c394f44766b83a5b590a374dcea159f C:\Program Files\Microsoft\Search Enhancement Pack\SeaNote\SeaNote.dll
MD5: 6565242c64a88fd3786cd5a86c1f2986 C:\Program Files\Microsoft\Search Enhancement Pack\Search Box Extension\srchbxex.dll
MD5: c2e38d1d021d93466e580df7d88698c5 C:\Program Files\Photosynth\npPhotosynthMozilla.dll
MD5: afdae59fe562a7cdb44f9d4abedac316 C:\Program Files\QuickTime\QTSystem\QTCF.dll
MD5: 1d856e6e7490447fcfaa46e09a2bf9c9 C:\Program Files\QuickTime\QTSystem\QuickTime.qts
MD5: 0aee5668eb59912f32ff245bfa72465f C:\Program Files\QuickTime\QTTask.exe
MD5: eabadfd150f006cacf67ad8d9c5e87e5 C:\Program Files\SelectView\svie.dll
MD5: 94a85e956a065e23e0010a6a7826243b C:\Program Files\Windows Live\installer\WLSetupSvc.exe
MD5: 0c83f8b03793886960698fed440a60e2 C:\Program Files\Windows Live\Messenger\wlchtc.dll
MD5: 8bbb9feec360f11867b28059b5360843 c:\program files\yahoo!\companion\installs\cpn\yt.dll
MD5: 035a4dc0ea6506f422ebf388de9ee720 C:\PROGRA~1\AVG\AVG9\avgtray.exe
MD5: ff93bba8ed9237b58992132fe7449c54 C:\PROGRA~1\Guffins\bar\1.bin\u4barsvc.exe
MD5: 5ec9edfbae8971870129d6de7b747ccd C:\PROGRA~1\Guffins\bar\1.bin\u4brmon.exe
MD5: 986e16d223eeaf13ed30e6c0c576982c C:\WINDOWS\ALCWZRD.EXE
MD5: 310c15fd8358b2c4cd7a5b98a112883f C:\WINDOWS\AppPatch\AcGenral.DLL
MD5: 43fe4032f5efb97568f1176c2dc83a1f C:\WINDOWS\Downloaded Program Files\ActiveReceiver.ocx
MD5: a57234a9295b026c13fbf81b729fafa6 C:\WINDOWS\Downloaded Program Files\bdupd.dll
MD5: 8945cca5fc4f25168e8b6f401efaf51f C:\WINDOWS\Downloaded Program Files\CONFLICT.1\MessengerStatsPAClient.dll
MD5: 718167a6b519b31d5643c034776a70ae C:\WINDOWS\Downloaded Program Files\DigWXMSN.dll
MD5: 80f4a456633f78a26a3c6b16e64efec5 C:\WINDOWS\Downloaded Program Files\GAME_UNO1.dll
MD5: fe691848ced7c74b2a177319ac154a1f C:\WINDOWS\Downloaded Program Files\ipsupd.dll
MD5: b069b555a00aa026f657aa4fd13ae154 C:\WINDOWS\Downloaded Program Files\messengerstatsclient.dll
MD5: 94d1773aeaa2197afee3a6f8404fe4e9 C:\WINDOWS\Downloaded Program Files\MessengerStatsPAClient.dll
MD5: f951fd0ea383df2d49ca0359e4a86968 C:\WINDOWS\Downloaded Program Files\minesweeper.dll
MD5: a5ec4dd82f1647260d78c67042fd6fba C:\WINDOWS\Downloaded Program Files\MJSS.ocx
MD5: 42d567df86b9b7ac4a89664c9651b68b C:\WINDOWS\Downloaded Program Files\msgrchkr.dll
MD5: 230a39d8950142cf2c94a5c1e567e95e C:\WINDOWS\Downloaded Program Files\oscan82.ocx
MD5: 03f57e8a00774d831926dac89b21bb2d C:\WINDOWS\Downloaded Program Files\PURen-us.dll
MD5: 23dc75d158d484177ffe99e23264f89f C:\WINDOWS\Downloaded Program Files\qsax.dll
MD5: 93f7304161c8cb7c335f99d9232bd347 C:\WINDOWS\Downloaded Program Files\SolitaireShowdown.dll
MD5: 17536c890df63ab4644eb111c28128f5 C:\WINDOWS\Downloaded Program Files\wlscBase.dll
MD5: 62e2eb8aaf9800d6cb9983b0d32bf781 C:\WINDOWS\Downloaded Program Files\ZIntro.ocx
MD5: 7faf5222eeb546e1dc0f348dcb314b0b C:\WINDOWS\Downloaded Program Files\zylomgamesplayer.dll
MD5: 326a73f82bcec1d01f8d25c69c297245 C:\WINDOWS\eHome\ehProxy.dll
MD5: 63f371f0248e3732a4821f86e6d0e370 C:\WINDOWS\ehome\ehRecvr.exe
MD5: 16910f8b482919bb6035ed053b691692 C:\WINDOWS\ehome\ehSched.exe
MD5: f90137a9897071ede961a5aba4ea524f C:\WINDOWS\ehome\ehtray.exe
MD5: 219af0f9a54ebeeb3e7e20025d801034 C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\culture.dll
MD5: ea3af33a9341b88d23fdc20d6ec826fe C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Fusion.dll
MD5: 9a2d686c89acc36e3aa7cde3d1c45c1a C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorie.dll
MD5: 36ba8022693af7e967359ff3f97531d7 C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Shfusion.dll
MD5: 327de7a9766cc9aa302c8d7f3925c8ce C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ShFusRes.dll
MD5: ab87eeffd18f2baafc274e7075ea6c67 c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
MD5: 1319df88f588709d13ac701c39745705 C:\WINDOWS\SOUNDMAN.EXE
MD5: c07d5197410aab28d0d93f943f59656d C:\WINDOWS\system32\6to4svc.dll
MD5: 12b4c8208b5146c8d17f3f502e00a540 C:\WINDOWS\system32\aaaamon.dll
MD5: b0c23b6813a9fcbae18370247be594ce C:\WINDOWS\system32\aaclient.dll
MD5: 59683d1e4cd0b1ad6ae32e1d627ae25f C:\WINDOWS\system32\AC3ACM.acm
MD5: 841fb340abc439b4557fbdd32b7ba11d C:\WINDOWS\system32\access.cpl
MD5: d4b13d675dec600c5a0ed2bb0eb301e6 C:\WINDOWS\system32\accwiz.exe
MD5: cd2e69985fe38952b4d258107db46934 C:\WINDOWS\system32\acelpdec.ax
MD5: a9517ec6f843959566692570390c457f C:\WINDOWS\system32\acledit.dll
MD5: 96a0066ab9872d3575575a463c53ff6c C:\WINDOWS\system32\aclui.dll
MD5: f5cea0ed3328e3957cb0a355907f9911 C:\WINDOWS\system32\activeds.tlb
MD5: 56c7905cb7a7356f1301e5b209c96272 C:\WINDOWS\system32\actmovie.exe
MD5: 6db2cae1a84068ceba0e768bb5c29009 C:\WINDOWS\system32\admparse.dll
MD5: b6a800d881a0176c544988870861e798 C:\WINDOWS\system32\Adobe\Director\np32dsw.dll
MD5: d05ab88927849df74cf4f1c303daeb4f c:\windows\system32\adptif.dll
MD5: a7f361875622aa5829aa39ba248f68e9 C:\WINDOWS\system32\adsldp.dll
MD5: c238f767e6742c2147964fdc070956e1 C:\WINDOWS\system32\adsmsext.dll
MD5: 716852109c79039fbadb452403fa4027 C:\WINDOWS\system32\adsnds.dll
MD5: 446321d798e28daac1383637fbb524e0 C:\WINDOWS\system32\adsnt.dll
MD5: d592a3e3545f208deb5b145bb129d3e2 C:\WINDOWS\system32\adsnw.dll
MD5: d5f37a37b59e7490f7edbab56cceb856 C:\WINDOWS\system32\advpack.dll.mui
MD5: 3a988d8877393374230d2445e77733f7 C:\WINDOWS\system32\ahui.exe
MD5: 8210141840ce237fbf40b6e26e2dd11d C:\WINDOWS\system32\alf2cd.acm
MD5: 94197eb896f67a72a484aecb669673cb C:\WINDOWS\system32\ALSNDMGR.CPL
MD5: f8e4901cb3027eb0a0384001f11877c2 C:\WINDOWS\system32\amstream.dll
MD5: d0ffa8c1a260ba1186b637c3efc7742b C:\WINDOWS\system32\apcups.dll
MD5: 76422d781c0fbbb368f8559dc12a39b1 C:\WINDOWS\system32\appmgr.dll
MD5: 7e43e181abdc1f304251b597da600d10 C:\WINDOWS\system32\appwiz.cpl
MD5: 33f9b0e02d9d93f920605d02fb53f3fd C:\WINDOWS\system32\arp.exe
MD5: 654d765758f5f2a0014e5ac56cdedaa1 C:\WINDOWS\system32\asctrls.ocx
MD5: c8667f83c8fecafd3efb0fd6f9c3787b C:\WINDOWS\system32\asr_fmt.exe
MD5: d200711a7a0df27e8ce7042369e4b770 C:\WINDOWS\system32\asr_ldm.exe
MD5: bc8941fcb5f4c658054dc49b7e5c526b C:\WINDOWS\system32\asr_pfu.exe
MD5: ff90eec0fab78482be97c5637fef4090 C:\WINDOWS\system32\at.exe
MD5: b90394a426fea378cac90fbdd74701e2 C:\WINDOWS\system32\ati2cqag.dll
MD5: 2c15b4a5e8ab5bb8cfbeb375750ac05c C:\WINDOWS\system32\ati2dvaa.dll
MD5: 20a00bd20152e0342bc9e46c30cc687a C:\WINDOWS\system32\ati2dvag.dll
MD5: 1b874ade4c19d65d6557527189b8a968 C:\WINDOWS\system32\ati3d1ag.dll
MD5: b896f27eccbf2616800b9aa33d59898d C:\WINDOWS\system32\ati3duag.dll
MD5: 96ff2c80dc7962d1b5016b85558109b4 C:\WINDOWS\system32\ativdaxx.ax
MD5: 481a805b5abc92363cf901cfcf1ee68d C:\WINDOWS\system32\ativmvxx.ax
MD5: 994f947386c9a17bba19569dc3a92b2c C:\WINDOWS\system32\ativtmxx.dll
MD5: cfa86e49afb5c9ad8839ce4a1f2e532f C:\WINDOWS\system32\ativvaxx.dll
MD5: 51ef0cd67068dc954bdda3bf7a6f3c81 C:\WINDOWS\system32\atkctrs.dll
MD5: 48b5f0b89c1f354e366ca716d763b9a7 C:\WINDOWS\system32\atl70.dll
MD5: 91015b1f922c050498b1c9c725307f3d C:\WINDOWS\system32\atmadm.exe
MD5: 9bb5690b2ca8c4435484e23362115fea C:\WINDOWS\system32\atmfd.dll
MD5: d95e8831cc262ac9d19274664afac86c C:\WINDOWS\system32\atmlib.dll
MD5: 06f6fb49d36b08e46d45cb705d7d52e0 C:\WINDOWS\system32\atmpvcno.dll
MD5: 1204fa2ab2a5f321125f777e8d061b22 C:\WINDOWS\system32\atrace.dll
MD5: e6d680494c812b82a15600fd23c94424 C:\WINDOWS\system32\attrib.exe
MD5: 59526deac6e55bbb19cf39174dcd1e59 C:\WINDOWS\system32\auditusr.exe
MD5: 23043c91a0f9dfb4b9e9f87b680863b4 C:\WINDOWS\system32\autochk.exe
MD5: 1f54d1f842805e71562552a9ae757c9c C:\WINDOWS\system32\autoconv.exe
MD5: 03e17b2dc1bc66345ffb34325ca627a1 C:\WINDOWS\system32\autodisc.dll
MD5: a38c1a7d8d8f4428cd8e96f3f2b6e046 C:\WINDOWS\system32\autofmt.exe
MD5: 106c0f76987cd8ea3cb6eed6dcdb1588 C:\WINDOWS\system32\autolfn.exe
MD5: 01cfa88f8dee91ec9f8e0988f49d106e C:\WINDOWS\system32\avicap32.dll
MD5: 399495998bceea80f23e57ccab074508 C:\WINDOWS\system32\avmeter.dll
MD5: b82c4535e430ddc631fec10d63390eca C:\WINDOWS\system32\avtapi.dll
MD5: f415acc27107aa6dadabe339949ee670 C:\WINDOWS\system32\avwav.dll
MD5: 5b6245518d71a6108bc385c4a8348218 C:\WINDOWS\system32\azroles.dll
MD5: a956751ef995df776f19831123868a83 C:\WINDOWS\system32\batt.dll
MD5: 920f96b11ab9b7764b0fbad336e6d016 C:\WINDOWS\system32\bcbmm.dll
MD5: d7fabfcff1be05b126509a4bc89729f5 C:\WINDOWS\system32\bcbsmp50.bpl
MD5: fb98940dae46644180580539db99f218 C:\WINDOWS\system32\bfc42.dll
MD5: 67d1d28ec6e67e5eb543612b32064c76 C:\WINDOWS\system32\bfc42d.dll
MD5: c9fc430129db4e5272003e9307759987 C:\WINDOWS\system32\bidispl.dll
MD5: 9b2e14f4d66a59306584566a705f8cdd C:\WINDOWS\system32\bitsprx2.dll
MD5: 08763c1ae79d88d122207d0471e834db C:\WINDOWS\system32\bitsprx3.dll
MD5: 97ae3a4180cab360f44f7f03e5e0f409 C:\WINDOWS\system32\bitsprx4.dll
MD5: f29356002df533028467ed7947be1dc4 C:\WINDOWS\system32\blastcln.exe
MD5: df42260ba2a5826f77b7a4bd105baacc C:\WINDOWS\system32\bootcfg.exe
MD5: 875e85605bd6921862734f8a6e70e7a7 C:\WINDOWS\system32\bootok.exe
MD5: cc306bf581446d5e443eae5b3bb900f0 C:\WINDOWS\system32\bootvid.dll
MD5: c2ab77d9dc66447dc1db63751d7f673a C:\WINDOWS\system32\bootvrfy.exe
MD5: 47ea0043ba1bffebd1fa570aff12939b C:\WINDOWS\system32\borlndmm.dll
MD5: 50f898e7564f2de6fecc272a31c277f9 C:\WINDOWS\system32\browsewm.dll
MD5: 034a05e2d77e92486bedc89a4c177ba9 C:\WINDOWS\system32\bthci.dll
MD5: 80aa4214c5bc0a355151bd115017313f C:\WINDOWS\system32\bthprops.cpl
MD5: f4c43c66471b87996d95db7a3a664a37 C:\WINDOWS\system32\bthserv.dll
MD5: 11d4a27f511a3e99f2bd8da6835fefbd C:\WINDOWS\system32\btpanui.dll
MD5: c10312e5aeea7a3d723599e7cb46650e C:\WINDOWS\system32\cabview.dll
MD5: 45cc061d9581e52f008e90e81da2cfd9 C:\WINDOWS\system32\cacls.exe
MD5: 829e4805b0e12b383ee09abdc9e2dc3c C:\WINDOWS\system32\calc.exe
MD5: fdccb90fdac518c6cf62a29ca6c47975 C:\WINDOWS\system32\camocx.dll
MD5: e091c3acd0c3863f4da4d72e384aa655 C:\WINDOWS\system32\capesnpn.dll
MD5: 1b6e2050abbda860f4f9f245d1e150a5 C:\WINDOWS\system32\capicom.dll
MD5: 989974032e6c873a17c9e92d4b339571 C:\WINDOWS\system32\cards.dll
MD5: 5f5e83e18e9344bcd680704101cea78a C:\WINDOWS\system32\catsrvps.dll
MD5: a6741b31058830cbe26aa635ffa7ba34 C:\WINDOWS\system32\cc3250.dll
MD5: 7fef9df21cc3f7aadd4f355c69b4f076 C:\WINDOWS\system32\cc3250mt.dll
MD5: 6737310e1a9a019a52df1d0399f80ce8 C:\WINDOWS\system32\ccfgnt.dll
MD5: 332a091ac338e6025a3f1a6c3d61249f C:\WINDOWS\system32\cdfview.dll
MD5: 0d72d44a333628b15288c69738583a2e C:\WINDOWS\system32\cdmodem.dll
MD5: 465f0eb786e0f667e4374704836b5717 C:\WINDOWS\system32\cdosys.dll
MD5: f137739e3ab15387a813c37a235bae24 C:\WINDOWS\system32\certmgr.dll
MD5: aa4a015e2acae6127fdf833f301c1fe4 C:\WINDOWS\system32\cfgbkend.dll
MD5: ac9fa2ba34225342a8897930503ae12f C:\WINDOWS\system32\charmap.exe
MD5: cbdb7f64381912a4158d7f0df4a4bf51 C:\WINDOWS\system32\chcp.com
MD5: 5f7eaaf5d10e2a715d5e305ac992b2a7 C:\WINDOWS\system32\chkdsk.exe
MD5: 8c0e9012eb04596b757fa4c547438908 C:\WINDOWS\system32\chkntfs.exe
MD5: b8e095e6c3f8a34bb1c93a84c7976604 C:\WINDOWS\system32\ciadmin.dll
MD5: 6de1a72468603b6ea37c29df343f42e9 C:\WINDOWS\system32\cic.dll
MD5: 582304f6f1946fa5068cf143d729d7ed C:\WINDOWS\system32\cidaemon.exe
MD5: f400d78446a02c9d548ed83d90d2e6e2 C:\WINDOWS\system32\Cihttp.ocx
MD5: 997a910ba3747e6b8e1923a8f3bdc408 C:\WINDOWS\system32\ciodm.dll
MD5: af4e13ca861860a3f620b595b49065a1 C:\WINDOWS\system32\cipher.exe
MD5: 564e58a6f7f41d8539da950bb18ab98b C:\WINDOWS\system32\Ciras.ocx
MD5: 602c3d1017c3a6ccaf44da5050de5817 C:\WINDOWS\system32\ckcnv.exe
MD5: 37461f2c3f212cf508a20fdc729abde5 C:\WINDOWS\system32\clb.dll
MD5: 33b37bb0c69f2dbd19277220435590be C:\WINDOWS\system32\clbcatex.dll
MD5: 2c4e4027e418eb4f0ed1e3793a4834df C:\WINDOWS\system32\cleanmgr.exe
MD5: 0734c66ed8f837b7c90e629f6ab9c11d C:\WINDOWS\system32\cliconfg.dll
MD5: f90b51cb5fdfd2731af88ccd5cb22eac C:\WINDOWS\system32\cliconfg.exe
MD5: e6641c66dc826fbf623b9ee1c91264d5 C:\WINDOWS\system32\cliconfg.rll
MD5: 7a526169ac958e6602023a39734c8684 C:\WINDOWS\system32\clipbrd.exe
MD5: 865bb7cd7d06e2d8b47d51e82ea4cfc7 C:\WINDOWS\system32\cmcfg32.dll
MD5: b3a4c9130872322888249f827cfab0c3 C:\WINDOWS\system32\cmdial32.dll
MD5: fc8c41cfa2e3408ee217effa3b854798 C:\WINDOWS\system32\cmdl32.exe
MD5: 0131552eb5c43a74163a62bdca7aa715 C:\WINDOWS\system32\cmmon32.exe
MD5: 45c8f5cc033b21088c8918eb26ef3e0e C:\WINDOWS\system32\cmpbk32.dll
MD5: 1c2c0143333f9651f088e29344d3bd0f C:\WINDOWS\system32\cmprops.dll
MD5: f1dad2fd181c58dfb4ca414fc2052e4f C:\WINDOWS\system32\cmsetacl.dll
MD5: 231138871dce86961694177508cc8f17 C:\WINDOWS\system32\cmstp.exe
MD5: c70dbf90f9b58bae2b7f6cd22c85fc0c C:\WINDOWS\system32\cmutil.dll
MD5: 1174b4282b4b617c64505adcf253375d C:\WINDOWS\system32\cnetcfg.dll
MD5: aee886ce131b9367006531e28c6f497e C:\WINDOWS\system32\cnvfat.dll
MD5: 035fecd913735e843e95510d7cc89a4e C:\WINDOWS\system32\comaddin.dll
MD5: ffad3f4edff2d549b5966f59ccf8389b C:\WINDOWS\system32\comcat.dll
MD5: 93afb83fbc1f9443cac722fca63d73bf C:\WINDOWS\system32\comctl32.dll
MD5: eb5f811c1f78005b3c147599a0cccf51 C:\WINDOWS\system32\comctl32.ocx
MD5: d76f0eab36f83a31d411aeaf70da7396 C:\WINDOWS\system32\COMDLG32.OCX
MD5: 7b29c2b4d0609168ba768344ddfcc354 C:\WINDOWS\system32\comp.exe
MD5: f47b111821e8557a5605ef83c549887b C:\WINDOWS\system32\compact.exe
MD5: 809cfe39672e833e806e00560ddd7568 C:\WINDOWS\system32\compatui.dll
MD5: f3daa4dd728761e1acacd1d17c6c3c93 C:\WINDOWS\system32\compstui.dll
MD5: e7427b6bd2f2b32403c23a4fe15df3b3 C:\WINDOWS\system32\comrepl.dll
MD5: 5b431dcac4a76276ceb8a1ab0c1c11f2 C:\WINDOWS\system32\comsdupd.exe
MD5: 85a335171b8d56b09276d1c6df2a63b2 C:\WINDOWS\system32\comsnap.dll
MD5: ed0c0df222209e43ad9afbf3fe87dde0 C:\WINDOWS\system32\comsvcs.dll
MD5: e0950a5b73350a26ab063ef6772fdca4 C:\WINDOWS\system32\comuid.dll
MD5: f5430b03e141e098c78d5db46b00f8fc C:\WINDOWS\system32\confmsp.dll
MD5: abc9002269e569538901109441660dd2 C:\WINDOWS\system32\conime.exe
MD5: be6efa58bb1773c6e46e3286193d5129 C:\WINDOWS\system32\console.dll
MD5: 4c6785e3d2e45ee87cb995190a0c7737 C:\WINDOWS\system32\control.exe
MD5: d094341a23cc083c9411dee93194ff89 C:\WINDOWS\system32\convert.exe
MD5: 8fcf03e4d7be9b5587ccf11719959006 C:\WINDOWS\system32\corpol.dll
MD5: f18bab0270e101009a1849f4f93cec64 C:\WINDOWS\system32\cPC_DMIRD.dll
MD5: 8e20d83d04076a3682706a2be1bba80e C:\WINDOWS\system32\credssp.dll
MD5: 06f2aea1065838aae394553063cdf28e C:\WINDOWS\system32\crtdll.dll
MD5: bdaaf79dd63f194434d31a74b9bb8b77 C:\WINDOWS\system32\CRYPT32.dll
MD5: 779baf24cd9335bc311af9e079b3162d C:\WINDOWS\system32\cryptdlg.dll
MD5: 95c9810ee06a6302c7330b295cfe4ba5 C:\WINDOWS\system32\cryptext.dll
MD5: c14350fc0d47d806699c4f907fc6785b C:\WINDOWS\system32\CRYPTNET.dll
MD5: 515a7fae2070c2b0242b2353443e2f11 C:\WINDOWS\system32\cscdll.dll
MD5: 23d42c651f89420f7232aeb7a2a43d03 C:\WINDOWS\system32\cscript.exe
MD5: 77f525ab8c674f2cd148ace5c345ce19 C:\WINDOWS\system32\csseqchk.dll
MD5: 71c4a5da6a940ddbf17c99f0b7611f06 C:\WINDOWS\system32\ctl3d32.dll
MD5: f099b129022170f2df9e1c0185c9bcfb C:\WINDOWS\system32\d3d8.dll
MD5: 0607cbc6fa20114cb491efe4b2f9efad C:\WINDOWS\system32\d3d9.dll
MD5: 79e4ec1d4b6b9a80543b13958ac773d0 C:\WINDOWS\system32\d3dim.dll
MD5: 56adb11f7d4d0816c0be1e701c1b5e52 C:\WINDOWS\system32\D3DIM700.DLL
MD5: a023d0c8897ee721a54b125c3c0c9d1b C:\WINDOWS\system32\d3dpmesh.dll
MD5: f3fb1edda3d4d38a03f6669dd9f5657a C:\WINDOWS\system32\d3dramp.dll
MD5: dde9e3b8c264957ae0a017d371293123 C:\WINDOWS\system32\d3drm.dll
MD5: 9bb566d2992a94caa25b2a886b0fb53b C:\WINDOWS\system32\d3dxof.dll
MD5: f031a8615ecf625178b25be7278410d9 C:\WINDOWS\system32\danim.dll
MD5: 8888bdbd4e118d915d40a11748282bca C:\WINDOWS\system32\DAO350.DLl
MD5: 6739fe1acf5cd23dede869af0596acac C:\WINDOWS\system32\dataclen.dll
MD5: 797b037e2ee15f44b8b32e59e3153529 C:\WINDOWS\system32\datime.dll
MD5: 8efe67c26eeeded21fae6ec0abe64fbe C:\WINDOWS\system32\davinci.scr
MD5: 56c6186ab474831b407152f8569d15ed C:\WINDOWS\system32\daxctle.ocx
MD5: 06848c5a1674fe6c9b7e9ca9b5b4e6e5 C:\WINDOWS\system32\dbgeng.dll
MD5: 57cf0bd4216e0a65c13d4b693757d366 C:\WINDOWS\system32\dbmsrpcn.dll
MD5: 605aa7e19f6ccdc6d171095883a1b1c5 C:\WINDOWS\system32\dbnetlib.dll
MD5: c6c5e638cf647a790623f7d34218a51e C:\WINDOWS\system32\dbnmpntw.dll
MD5: 238bdce83af21a6c2c0fcf216d3260e3 C:\WINDOWS\system32\dcomcnfg.exe
MD5: 4c7dc46c27d2bf288726bac3f8fe34ec C:\WINDOWS\system32\ddeshare.exe
MD5: 29d41e4ed94b2048f96583d18bc1950f C:\WINDOWS\system32\defrag.exe
MD5: 2c7531f639ee5e0c01fca9c87daa7df4 C:\WINDOWS\system32\delphimm.dll
MD5: b4ed498e3bfee64e952bc44fc6057db8 C:\WINDOWS\system32\desk.cpl
MD5: 188b7b757549d7fff3a398fe5b96ab57 C:\WINDOWS\system32\deskadp.dll
MD5: 74e6c29348cf7f474ae6dbe4421fe624 C:\WINDOWS\system32\deskmon.dll
MD5: 2591cd8d4654ae3c7d5b83d582fb6c2b C:\WINDOWS\system32\deskperf.dll
MD5: b1762156256b0238c21baa4c06cef727 C:\WINDOWS\system32\devmgr.dll
MD5: 04e20d6d69fec8535fa57e02ba3d8e59 C:\WINDOWS\system32\dfrgfat.exe
MD5: 609adb6aac0acd162b051cce9106f07e C:\WINDOWS\system32\dfrgntfs.exe
MD5: 7dac4089bca671c305bb61242cde29f8 C:\WINDOWS\system32\dfrgres.dll
MD5: ccc5b7e12d6002d308e8d11ff9d1fc57 C:\WINDOWS\system32\dfrgsnap.dll
MD5: a8ea0cf06ba8054834f40bbf759ac380 C:\WINDOWS\system32\dfrgui.dll
MD5: e305d407e888f5859ab9b3df3a342838 C:\WINDOWS\system32\dfsshlex.dll
MD5: 2b90b311b85b7ad7cbc1df8640cdae26 C:\WINDOWS\system32\dgnet.dll
MD5: 1e8f9818d695f8759b125ee146beb935 C:\WINDOWS\system32\dgrpsetu.dll
MD5: 060110976c713d49cefee9a7291ce9d7 C:\WINDOWS\system32\dgsetup.dll
MD5: a2e0bc103d087fa0d9d16c6c8ce31948 C:\WINDOWS\system32\dhcpmon.dll
MD5: 11a9e0581f6441876ffbf331d294c10a C:\WINDOWS\system32\dhcpqec.dll
MD5: 7e2c977c4a53911e69804edcef4c162c C:\WINDOWS\system32\dhcpsapi.dll
MD5: 6c386b07c8afe51e976eecd4b44169fa C:\WINDOWS\system32\diactfrm.dll
MD5: 74b230a8261ec5ddc1dc0f3bbecd5b20 C:\WINDOWS\system32\diantz.exe
MD5: 3d76dd0cbc536e0f8c45d23ed230beb2 C:\WINDOWS\system32\digest.dll
MD5: b5603cb6cebf85058eade5d62258acba C:\WINDOWS\system32\dimap.dll
MD5: e2092f0a1d7abc243f9c2362483d150d C:\WINDOWS\System32\dimsntfy.dll
MD5: 11f4a22796cb652bd574d8cb03b9874c C:\WINDOWS\system32\dimsroam.dll
MD5: bc87db4759083525f96a159861670c5e C:\WINDOWS\system32\dinput.dll
MD5: aa0507f0516a4dff1b1279ab4a2abb37 C:\WINDOWS\system32\dinput8.dll
MD5: cbc7e5947e9ffbe47665a3d251f72420 C:\WINDOWS\system32\diskcomp.com
MD5: c9930835ad3c23e37c0cf5d8102ec403 C:\WINDOWS\system32\diskcopy.com
MD5: d62e7a444ffba599a49c0bf93fb004f1 C:\WINDOWS\system32\diskcopy.dll
MD5: 51c2bbf52894411b0a2d4d3d72abeea4 C:\WINDOWS\system32\diskpart.exe
MD5: 6eae0d36c471a19eb45bed40b16d6c1c C:\WINDOWS\system32\diskperf.exe
MD5: 78e862846112347eee8214b649ae563f C:\WINDOWS\system32\dispex.dll
MD5: 902179013800f311aff57cd5f29be346 C:\WINDOWS\system32\divx.dll
MD5: eff71e68dd8f9dc0bbd89cd83153c336 C:\WINDOWS\system32\divxdec.ax
MD5: 58a73cea70897e4c5bbda51a823521dd C:\WINDOWS\system32\dllhst3g.exe
MD5: a68d8fca5f4a24c5da10dcb4cf9ce234 C:\WINDOWS\system32\dmband.dll
MD5: 0a1a3bb6565d1c73e0b6aa070c7fda45 C:\WINDOWS\system32\dmcompos.dll
MD5: d0d7d34120dab5f78bf6017eda99a815 C:\WINDOWS\system32\dmconfig.dll
MD5: 16e504e09a1c69f8ee8bb7ee237f0070 C:\WINDOWS\system32\dmdlgs.dll
MD5: 8efea4a7cccce7d3fde4d90f324218a9 C:\WINDOWS\system32\dmdskmgr.dll
MD5: 057f636c4e4f11fab91371c2c83f678b C:\WINDOWS\system32\dmdskres.dll
MD5: 1efb987153b0c28c71b3882ad4e392c0 C:\WINDOWS\system32\dmime.dll
MD5: c17b0415da7bcd5429c945e55354144a C:\WINDOWS\system32\dmintf.dll
MD5: 67370bdd46d642b3196c46e3b72cdad4 C:\WINDOWS\system32\dmloader.dll
MD5: 75a782fff9821426382453253999853b C:\WINDOWS\system32\dmocx.dll
MD5: d5738f58e19f04e12ecd3a25c8bc6231 C:\WINDOWS\system32\dmremote.exe
MD5: 7ce6e106ff34186f3d2621fbbd40dfdf C:\WINDOWS\system32\dmscript.dll
MD5: 649f44444ee82909e572af0a7a1bbe0a C:\WINDOWS\system32\dmstyle.dll
MD5: 5efcb0e037c8dc500d0bb08943c583a4 C:\WINDOWS\system32\dmsynth.dll
MD5: d919f4e479d344ca34c9289390c03844 C:\WINDOWS\system32\dmusic.dll
MD5: 3b548248a510ec24c8e46ea7d013e225 C:\WINDOWS\system32\dmutil.dll
MD5: 2c03d0c9473f12cbb0e341c4e4f1f31f C:\WINDOWS\system32\dmview.ocx
MD5: 5d3fde8fb2801a2041d1b965372c4928 C:\WINDOWS\system32\DNSAPI.dll
MD5: 3d4f2a08c0d060b62894c1d1a25b5125 C:\WINDOWS\system32\docprop.dll
MD5: 72dd38c9f051575bd767822e92c8f468 C:\WINDOWS\system32\docprop2.dll
MD5: d7325a9f12013345434e1cc58b58d98c C:\WINDOWS\system32\doskey.exe
MD5: e85fd6aba80bd637aa2aa9d93308d355 C:\WINDOWS\system32\dot3cfg.dll
MD5: f69189eb97b118b690acca93760ad738 C:\WINDOWS\system32\dot3gpclnt.dll
MD5: ea39da293c8bbaa0f89419ba64734cc7 C:\WINDOWS\system32\dot3msm.dll
MD5: f21a712eb2b656cd86fcc057446f9c34 C:\WINDOWS\system32\dot3ui.dll
MD5: 6c26dcf01e2a92f183b97d434017268a C:\WINDOWS\system32\dpcdll.dll
MD5: 2fc74ff8dc4c8bb68b9eecc6538c56b7 C:\WINDOWS\system32\dplay.dll
MD5: 3bd2348e0eb21960d82fdf5347e04ba5 C:\WINDOWS\system32\dplaysvr.exe
MD5: e819111d4cda099e1c4dae85ede31de8 C:\WINDOWS\system32\dplayx.dll
MD5: c0cffff3eb948a655d63a8f239fa3bdf C:\WINDOWS\system32\dpmodemx.dll
MD5: 51cb03649f57a9cc3094ddd53a0daa26 C:\WINDOWS\system32\dpnaddr.dll
MD5: c855bb26697a4c6027722435df153720 C:\WINDOWS\system32\dpnet.dll
MD5: c9c07a74576b2143aae86bf306a4d8a4 C:\WINDOWS\system32\dpnhpast.dll
MD5: d651151c706b961cf375ffd33545daf9 C:\WINDOWS\system32\dpnhupnp.dll
MD5: 5afa706ed6f4280a64be47cb3caffa8f C:\WINDOWS\system32\dpnlobby.dll
MD5: 21a41f107c6e0f0de2e3f5dc7ecbf2b0 C:\WINDOWS\system32\dpnmodem.dll
MD5: 7e51f5bc7016acc4b7ca017a197d63fd C:\WINDOWS\system32\dpnsvr.exe
MD5: dcf07242c89596ba9937d87a6a2f0693 C:\WINDOWS\system32\dpnwsock.dll
MD5: a0d2d0346ff2ae17775675df1daf9236 C:\WINDOWS\system32\dpserial.dll
MD5: cfdadf2e10e0d024b102145143653c4f C:\WINDOWS\system32\dpvacm.dll
MD5: f4cdc0f3562b90216039bb8dc15ce5b2 C:\WINDOWS\system32\dpvoice.dll
MD5: ea36b806e30d927f70e24eaf545ccc17 C:\WINDOWS\system32\dpvsetup.exe
MD5: 1f08a3b80727a308ce545f98d66ee349 C:\WINDOWS\system32\dpvvox.dll
MD5: 662cfe19d0e62b7be883dddd104a521d C:\WINDOWS\system32\dpwsock.dll
MD5: 1a0ddd90baecff15eb3e38a29043a400 C:\WINDOWS\system32\dpwsockx.dll
MD5: e9f6bdb0d4578c4a27590fc6aa0713d3 C:\WINDOWS\system32\driverquery.exe
MD5: 9a7a93388f503a34e7339ae7f9997449 C:\WINDOWS\System32\Drivers\avgtdix.sys
MD5: 7270d070173b20ac9487ea16bb08b45f C:\WINDOWS\system32\DRIVERS\bb-run.sys
MD5: 5776322f93cdb91086111f5ffbfda2a0 C:\WINDOWS\system32\DRIVERS\d347bus.sys
MD5: b49f79ace459763f4e0380071be9cb45 C:\WINDOWS\System32\Drivers\d347prt.sys
MD5: 92e8443c7bf5c0137671cde080655dfc C:\WINDOWS\system32\DRIVERS\ftsata2.sys
MD5: 2a013e7530beab6e569faa83f517e836 C:\WINDOWS\system32\drivers\HdAudio.sys
MD5: 748031ff4fe45ccc47546294905feab8 C:\WINDOWS\system32\DRIVERS\HidBatt.sys
MD5: 9f1d80908658eb7f1bf70809e0b51470 C:\WINDOWS\system32\DRIVERS\HPZid412.sys
MD5: f7e3e9d50f9cd3de28085a8fdaa0a1c3 C:\WINDOWS\system32\DRIVERS\HPZipr12.sys
MD5: cf1b7951b4ec8d13f3c93b74bb2b461b C:\WINDOWS\system32\DRIVERS\HPZius12.sys
MD5: 473ee64c368ce2eed110376c11960259 C:\WINDOWS\system32\DRIVERS\HSF_CNXT.sys
MD5: dfa8f86c0dbca7db948043aa3be6793b C:\WINDOWS\system32\DRIVERS\HSF_DP.sys
MD5: 5df616addb75c1ad36c1f9e4de0f7654 C:\WINDOWS\system32\DRIVERS\HSFHWBS2.sys
MD5: 4007984827e19e6a5b6faf8532eaefba C:\WINDOWS\system32\DRIVERS\ialmnt5.sys
MD5: 79ae2a97c120f282845d854d0f070ea9 C:\WINDOWS\system32\DRIVERS\iaStor.sys
MD5: 9ee18a5a45552673a67532ea37370377 C:\WINDOWS\system32\DRIVERS\ltmdmnt.sys
MD5: 3c318b9cd391371bed62126581ee9961 C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys
MD5: 7f2f1d2815a6449d346fcccbc569fbd6 C:\WINDOWS\system32\DRIVERS\mhndrv.sys
MD5: 8b8b1be2dba4025da6786c645f77f123 C:\WINDOWS\system32\DRIVERS\nwlnkipx.sys
MD5: 36b9b950e3d2e100970a48d8bad86740 C:\WINDOWS\system32\DRIVERS\nwrdr.sys
MD5: 444f122e68db44c0589227781f3c8b3f C:\WINDOWS\system32\drivers\pfc.sys
MD5: bffdb363485501a38f0bca83aec810db C:\WINDOWS\system32\DRIVERS\PS2.sys
MD5: d9b34325ee5df78b8f28a3de9f577c7d C:\WINDOWS\system32\DRIVERS\RimSerial.sys
MD5: d87ffa95d630ec8d1482ca25c454846a C:\WINDOWS\system32\drivers\RtkHDAud.sys
MD5: 7f0413bdd7d53eb4c7a371e7f6f84df1 C:\WINDOWS\system32\DRIVERS\Rtlnicxp.sys
MD5: b7ea2f12416693d2d9bffaaa5eff7037 C:\WINDOWS\System32\drivers\sdcplh.sys
MD5: 4c0d673281178cb496011a2e28571fc8 C:\WINDOWS\System32\drivers\sfdrv01.sys
MD5: 15be2b5e4dc5b8623cf167720682abc9 C:\WINDOWS\System32\drivers\sfhlp02.sys
MD5: efebbc1d13fdb77a6af4eddfc7232edf C:\WINDOWS\System32\drivers\sfsync02.sys
MD5: 9ef50060cc7e6953bab83f2a42ccc421 C:\WINDOWS\System32\drivers\sfvfs02.sys
MD5: cd7dc2e6dd56dc9e81a4550012a5674b C:\WINDOWS\system32\DRIVERS\snpp106.sys
MD5: 0f6aefad3641a657e18081f52d0c15af C:\WINDOWS\system32\DRIVERS\srv.sys
MD5: 0a716c08cb13c3a8f4f51e882dbf7416 C:\WINDOWS\system32\DRIVERS\wanatw4.sys
MD5: 1385e5aa9c9821790d33a9563b8d2dd0 C:\WINDOWS\System32\Drivers\wpdusb.sys
MD5: c9f5e1de6da983e89e714ed80c11f000 C:\WINDOWS\system32\drwtsn32.exe
MD5: 0a6a6d76e9a07384ab9b1d3f27d4b1d8 C:\WINDOWS\system32\ds32gt.dll
MD5: eda57c644ca1ea58a361b81822f3ff0c C:\WINDOWS\system32\dsauth.dll
MD5: ea84c76c6b55b3f5ae1d0baf5ad204d6 C:\WINDOWS\system32\dsdmo.dll
MD5: 0cd4a2a4b5323efc67bb8e4b55534fa2 C:\WINDOWS\system32\dsdmoprp.dll
MD5: fb6ee278bc2046e0952f320ac62d3e07 C:\WINDOWS\system32\dskquota.dll
MD5: dd4906169d7f99f582276fc4d478c986 C:\WINDOWS\system32\dskquoui.dll
MD5: 44155e6d24315ceb9428547bb0e40e3a C:\WINDOWS\system32\dsnpp106.ax
MD5: a42cc1e17b0528d4be27d33a8fc7037c C:\WINDOWS\system32\dsound3d.dll
MD5: 287f10ef7f9253670eaa3a9c41366576 C:\WINDOWS\system32\dsprop.dll
MD5: f4e1708e843c3f46d2130292e4cc60d7 C:\WINDOWS\system32\dsprpres.dll
MD5: a416b20935c4bc3f0f1208d200b8af88 C:\WINDOWS\system32\dsquery.dll
MD5: 843176bf01f4208675d6c71ce7b13325 C:\WINDOWS\system32\dssec.dll
MD5: 72b4aaefc66764893faeeee5614ec30e C:\WINDOWS\system32\dsuiext.dll
MD5: 3ebc5dd41fdbf0fc4598b7c7ff5dbdae C:\WINDOWS\system32\dswave.dll
MD5: 8e16bf5600797e678ea97051cf93e6bf C:\WINDOWS\system32\dumprep.exe
MD5: b989cf7256a3ce36ed874d9eae9641c6 C:\WINDOWS\system32\dvdplay.exe
MD5: ea587d3a081f21358a8d3d62ad006dc1 C:\WINDOWS\system32\dvdupgrd.exe
MD5: 86042f6f6a5287eaf9379c91d0bf72b6 C:\WINDOWS\system32\dwwin.exe
MD5: e86b94338fbad7446a48c26f2350ce90 C:\WINDOWS\system32\dx7vb.dll
MD5: 688a920e2f3e15f0e1ae61d26f8339ee C:\WINDOWS\system32\dx8vb.dll
MD5: 06ac31bac1c7a6ec43a26730a3a11779 C:\WINDOWS\system32\dxdiag.exe
MD5: 57e51c6347165622c69d456b96b1eb46 C:\WINDOWS\system32\dxdiagn.dll
MD5: 8b4c502de1aaaf6af41ae3c14e40ba0a C:\WINDOWS\system32\dxmasf.dll
MD5: 7954a8b0657676e947403f0ac0f21755 C:\WINDOWS\system32\eapp3hst.dll
MD5: 395fd41d69c1ab8ce91feabd2168097e C:\WINDOWS\system32\eappgnui.dll
MD5: 0bcb0ebc1b08fa384ec68f253c7253ef C:\WINDOWS\system32\eapphost.dll
MD5: 3b06cdd1a41618944a906589c052f2b3 C:\WINDOWS\system32\eapqec.dll
MD5: 0c5839dff864e280cf958da67de85126 C:\WINDOWS\system32\efsadu.dll
MD5: f48ab90a886200bcda169ad7f06037d6 C:\WINDOWS\system32\els.dll
MD5: 09515d23c06928f749546e57c2400b0e C:\WINDOWS\system32\encapi.dll
MD5: a50262b56ba1028afd0b1435b32d51c0 C:\WINDOWS\system32\encdec.dll
MD5: 5726cb81771655731d011abd878cb65d C:\WINDOWS\system32\EqnClass.Dll
MD5: f5b754cdea20bbb3a31e16a776ede6d6 C:\WINDOWS\system32\ESENT.dll
MD5: 3c16c5f0e0c57da2aceb412825860286 C:\WINDOWS\system32\esent97.dll
MD5: 6e2e91b2225d09496163b56f909908d2 C:\WINDOWS\system32\esentprf.dll
MD5: df17198f6a13ca1011ffef1d9b702481 C:\WINDOWS\system32\esentutl.exe
MD5: 799961190a2deb65b180a46f1e7aa0a6 C:\WINDOWS\system32\eudcedit.exe
MD5: 4f866cb807f44e77f65ae716f49ed530 C:\WINDOWS\system32\eventcls.dll
MD5: 483856fbec9624c76f3cfd4c8fd3603f C:\WINDOWS\system32\eventcreate.exe
MD5: f5ad210cf45c5340195ab20fa775bde3 C:\WINDOWS\system32\eventtriggers.exe
MD5: f636fd7e97ab17b8ff9d3ff593833301 C:\WINDOWS\system32\eventvwr.exe
MD5: 9f06d6991cab51b1199817a4479a799f C:\WINDOWS\system32\expand.exe
MD5: be87245ce60329b31c94f1b4236e5832 C:\WINDOWS\system32\expsrv.dll
MD5: 91443272c710138b3639e00fe456cdc3 C:\WINDOWS\system32\extmgr.dll
MD5: 0df640c0665596dc256e40d6010078a6 C:\WINDOWS\system32\extrac32.exe
MD5: d7ae907903a6f46384b0f1d618fce822 C:\WINDOWS\system32\exts.dll
MD5: b8f9dd87eb19bfacb06ddb3293c485ed C:\WINDOWS\system32\faxpatch.exe
MD5: 3f3e75cb1bf1815db2315dcf3f88a666 C:\WINDOWS\system32\fc.exe
MD5: cba0be94e3985f6db7701e259c73b43b C:\WINDOWS\system32\fde.dll
MD5: 5e12974f81fae8f695e2b4ea05418af3 C:\WINDOWS\system32\fdeploy.dll
MD5: 303a63f4b913aa5d8998161cb77a8ce7 C:\WINDOWS\system32\feclient.dll
MD5: 4dc59b4223e833652135b2454f7ecad2 C:\WINDOWS\system32\filemgmt.dll
MD5: 09b4e22c86f7e9f1e5c7554ac03b9c9d C:\WINDOWS\system32\find.exe
MD5: 75951d8a85067f8eccd0076f21e9e4e8 C:\WINDOWS\system32\findstr.exe
MD5: 5cef88f1f78451d5baffb8ffd0692640 C:\WINDOWS\system32\finger.exe
MD5: 2da9b2b1ce97a115bd0c178c0ff4791f C:\WINDOWS\system32\firewall.cpl
MD5: 88569daebc1218b35f7d35f70c0ac877 C:\WINDOWS\system32\fixmapi.exe
MD5: 81ef7547abd2d8738d88c05d4fb06d85 C:\WINDOWS\system32\fldrclnr.dll
MD5: 1de61baede3fd349b7ae86f428c25482 C:\WINDOWS\system32\fltmc.exe
MD5: c3c519108835010f7815d38cc82d5e22 C:\WINDOWS\system32\FM20.DLL
MD5: 8e70080188094a33e28767866e7a86e0 C:\WINDOWS\system32\FM20ENU.DLL
MD5: 9a45a2e7841acae5c2232f2aaa46698f C:\WINDOWS\system32\FM20FRA.DLL
MD5: 2690d4d3c0ab58ede321b69004203a31 C:\WINDOWS\system32\fmifs.dll
MD5: e518b7e8b372ee8dc9868946faa8c4c4 C:\WINDOWS\system32\fontext.dll
MD5: 6b6faa61e31c496ca6f7b1663b01f286 C:\WINDOWS\system32\fontsub.dll
MD5: 3cd582300bd7d3352d3280dd152ac6e4 C:\WINDOWS\system32\fontview.exe
MD5: 4ab98661e251e53f3a2c00919f0a3eb8 C:\WINDOWS\system32\forcedos.exe
MD5: a0f70edb428eab4422b665b1943626dd C:\WINDOWS\system32\format.com
MD5: 8d1805727e8642ff88de9daeb088adef C:\WINDOWS\system32\fpalsu.dll
MD5: c669a8b0a436641aad3c2eada780cbb9 C:\WINDOWS\system32\framebuf.dll
MD5: 11b050d9474681405b07a6f47681590f C:\WINDOWS\system32\fsquirt.exe
MD5: 6103e69f711d5b8b53b001b720348a60 C:\WINDOWS\system32\fsusd.dll
MD5: b744371e828cc71f3841b90ef6c83e01 C:\WINDOWS\system32\fsutil.exe
MD5: 0f91c0dbdd463a1f0fc13fab46522c87 C:\WINDOWS\system32\ftp.exe
MD5: 416c5f4cdc877fd288ac21ad5d373a3a C:\WINDOWS\system32\ftsrch.dll
MD5: b8ed44b59233b1872ae4cc246c6bbfe2 C:\WINDOWS\system32\ftutil2.dll
MD5: 17f37365af926f20346301ba781ef3e5 C:\WINDOWS\system32\fwcfg.dll
MD5: 5999f0404ff132d3017fd9f3af60f8be C:\WINDOWS\system32\fxscfgwz.dll
MD5: 3fb7a90504e70d19cf4a206880620bef C:\WINDOWS\system32\fxsclnt.exe
MD5: 20f602bdaa95289994d60a55ea042d55 C:\WINDOWS\system32\fxsclntR.dll
MD5: c01219bec6694c7416f862da995603a6 C:\WINDOWS\system32\fxscom.dll
MD5: e777fb8b90d71dbf80d33c04298a44ae C:\WINDOWS\system32\fxscomex.dll
MD5: 18d08c2775806ed82b08524078ba03a2 C:\WINDOWS\system32\fxscover.exe
MD5: b23b7e66f340426be5983adf9016720f C:\WINDOWS\system32\fxsdrv.dll
MD5: 8e091559ee14792d81b47ba26501ff42 C:\WINDOWS\system32\fxsperf.dll
MD5: c3b131d6cb671b294154c986984509ac C:\WINDOWS\system32\fxsres.dll
MD5: 2d583e2844fdd592d1629eb6b10e5702 C:\WINDOWS\system32\fxsroute.dll
MD5: 7a54fd8cdb223bc5a7224c91882c586a C:\WINDOWS\system32\fxssend.exe
MD5: 0ce5f8ae9c371a965d17e3f2ed134809 C:\WINDOWS\system32\fxst30.dll
MD5: 1144ef6b4bb72e33b41912ae1ae4f97a C:\WINDOWS\system32\fxstiff.dll
MD5: c82a7449c35518e50969f4804b9e868e C:\WINDOWS\system32\fxsui.dll
MD5: 02f152aa793bdcc06f6bf68dacc313ce C:\WINDOWS\system32\fxswzrd.dll
MD5: d8248466625f48a31820f2b8ea81660a C:\WINDOWS\system32\fxsxp32.dll
MD5: 54d50a8785e768377d7d9819efd8a0cf C:\WINDOWS\system32\g711codc.ax
MD5: f18eae2c867f68c921601d1fa2e2719d C:\WINDOWS\system32\gcdef.dll
MD5: d0aaae16ba162dd89d646887f1539855 C:\WINDOWS\system32\gdiplus.dll
MD5: 72d1890e6f0cd5c3cf05a1f1dbc598d9 C:\WINDOWS\system32\getmac.exe
MD5: 60b9959d333c3d11255d8695d2685430 C:\WINDOWS\system32\getuname.dll
MD5: 9f8a3d6e720ec1995b52fe9309d55df4 C:\WINDOWS\system32\glmf32.dll
MD5: a78516d04dd71a18fdfdf820a6413634 C:\WINDOWS\system32\glu32.dll
MD5: 65f8da8424ad27a365f61ccc8621fed2 C:\WINDOWS\system32\gpedit.dll
MD5: 0e13deaa35e93ea67c84c7c7236722ad C:\WINDOWS\system32\gpkcsp.dll
MD5: 0e6a744c3b40a0f19d16c605646415d2 C:\WINDOWS\system32\gpkrsrc.dll
MD5: 1832fe014ff6b1fbb3a5e62e39218b82 C:\WINDOWS\system32\gpresult.exe
MD5: e75463b95cb67b77bb6fa71e4f0539e8 C:\WINDOWS\system32\gptext.dll
MD5: 71288e0b1d9b4f91cf78f3b58a298d36 C:\WINDOWS\system32\gpupdate.exe
MD5: dd47f76395d46c4de9559b5db1473464 C:\WINDOWS\system32\graftabl.com
MD5: 6dd28a6d99cf7b14b2d1786d143624e0 C:\WINDOWS\system32\grpconv.exe
MD5: ce8c3bc1377b83dbcd7304ab2d0a4735 C:\WINDOWS\system32\h323msp.dll
MD5: 4329ee7d502c9113eba0f9570392f5ee C:\WINDOWS\system32\HAL.DLL
MD5: 428597f7da0d13ea834f87130c6a0cfc C:\WINDOWS\system32\hccoin.dll
MD5: f7b1c8ebf40cde03356cadff0b3eb4fe C:\WINDOWS\system32\hccutils.DLL
MD5: ccb5449e9bf1ba2b2cb7d0a0c7e34e65 C:\WINDOWS\system32\HdAProp.dll
MD5: 9c3b2302b60fb0efb13bc880a5e3e93e C:\WINDOWS\system32\HDAShCut.exe
MD5: 25fa7a6a8e081eac69cabfd13297a5d0 C:\WINDOWS\system32\HdAudRes.dll
MD5: daf5d86eb3ec52d6f79815f69e237f3d C:\WINDOWS\system32\hdwwiz.cpl
MD5: 84759cb654f45422bc2458806ab07762 C:\WINDOWS\system32\help.exe
MD5: d3e868700d9b5e3c54b7eed060215cc1 C:\WINDOWS\system32\hhsetup.dll
MD5: 409f6851bdaec9accbdde692d56d5c87 C:\WINDOWS\system32\hkcmd.exe
MD5: f7215c40ac625d6764e07abf3376ad3d C:\WINDOWS\system32\hlp95en.dll
MD5: cb0b260e371968cb253252e81adc051e C:\WINDOWS\system32\hnetmon.dll
MD5: 706d2b737e8673d365b6e8fda3d0478f C:\WINDOWS\system32\hnetwiz.dll
MD5: 13253731d13168ef06dca97f70ad57cc C:\WINDOWS\system32\hostname.exe
MD5: 5380496d6e5898c10b785816875fa049 C:\WINDOWS\system32\hotplug.dll
MD5: 187b944f719c5915bf5c615f56c0395a C:\WINDOWS\system32\hpgwiamd.dll
MD5: 398078479be25ed10931270a7660f43a C:\WINDOWS\system32\HPODXPAT.DLL
MD5: d20a45796b4cbb26865085ff643a28ad C:\WINDOWS\system32\hpotscl.dll
MD5: 97f27c8ba1b7998d34b03651d1a77f10 C:\WINDOWS\system32\hpovst08.dll
MD5: 05898261d50e965f13d3f86c44c82ff4 C:\WINDOWS\system32\hpreg.dll
MD5: 36247c6d5e1fe03a56ee81bb99d7e68c C:\WINDOWS\system32\hptcpmib.dll
MD5: e0b83adfb16d794a0d207fe119d03182 C:\WINDOWS\system32\HpTcpMon.dll
MD5: 5cc3838902a9257b79bd43f56d8b7275 C:\WINDOWS\system32\HPTcpMUI.dll
MD5: a0f1e7e887f7d4eb2722c6c1bca8d7dd C:\WINDOWS\system32\HPZc3212.dll
0
Salut,

1/
Tu as deux antivirus : AVG9 et McAfee Security Scan, on doit utiliser qu'un seul pour qu'il n'y'aura pas de conflit!
Quel est l'antivirus que tu veux garder ?

NB:
Lors de la passation d'un outil de désinfection (combofix), AVG peut poser des problèmes, on est obligé de le désinstaller ... !!

2/
* Télécharge de AD-Remover sur ton Bureau.
http://www.teamxscript.org/adremoverTelechargement.html

/!\ Ferme toutes applications en cours /!\

- Double-clique sur l'icône Ad-remover située sur ton Bureau.
- Sur la page, clique sur le bouton «chercher»
- Confirme lancement du scan
- Laisse travailler l'outil.
- Poste le rapport qui apparaît à la fin.

(Le rapport est sauvegardé aussi sous C:\Ad-report(Scan/clean).Txt)

(CTRL+A pour tout sélectionner, CTRL+C pour copier et CTRL+V pour c

-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*
Membre, Contributeur

-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*-*
0
phoenixgirl Messages postés 230 Date d'inscription dimanche 7 septembre 2008 Statut Membre Dernière intervention 1 décembre 2016 35
Modifié par phoenixgirl le 22/07/2011 à 16:09
Merci pour ta reponse et desolee de ne pas avoir fait de suivi avant... : S

Je prefererais garder AVG. Jai desinstaller McAfee.

Voila le resultat du scan de Ad-R:

======= REPORT FROM AD-REMOVER 2.0.0.2,G | ONLY XP/VISTA/7 =======

Updated by TeamXscript on 12/04/11
Contact: AdRemover[DOT]contact[AT]gmail[DOT]com
website: http://www.teamxscript.org

C:\Program Files\Ad-Remover\main.exe (SCAN [1]) -> Launched at 10:06:38 on 22/07/2011, Normal boot

Microsoft Windows XP Professional Service Pack 3 (X86)
HP_Administrator@PAM_ALEX ( )

============== SEARCH ==============


Folder found: C:\Program Files\Ask.com
Folder found: C:\Program Files\PartyGaming
Folder found: C:\Documents and Settings\HP_Administrator\Local Settings\Application Data\Conduit
Folder found: C:\Documents and Settings\HP_Administrator\Application Data\PriceGong

Key found: HKLM\Software\Classes\CLSID\{601ac3dc-786a-4eb0-bf40-ee3521e70bfb}
Key found: HKLM\Software\Classes\CLSID\{72b3882f-453a-4633-aac9-8c3dced62aff}
Key found: HKLM\Software\Classes\Interface\{20FA25EB-486C-4B69-8E2D-169FD142B2FB}
Key found: HKLM\Software\Classes\Interface\{44A28C79-727D-40AD-9B8C-287DBC2F6151}
Key found: HKLM\Software\Classes\Interface\{B30438D0-2FEF-4A56-9BA8-BF9EF7D21AF3}
Key found: HKLM\Software\Classes\Interface\{D51BF978-3D10-4809-AE62-A1A0CCEBF616}
Key found: HKLM\Software\Classes\Interface\{EF8A3F71-3ADC-41F9-866D-BD9EB9AC63FD}
Key found: HKLM\Software\Classes\AxMetaStream.MetaStreamCtl
Key found: HKLM\Software\Classes\AxMetaStream.MetaStreamCtl.1
Key found: HKLM\Software\Classes\AxMetaStream.MetaStreamCtlSecondary
Key found: HKLM\Software\Classes\AxMetaStream.MetaStreamCtlSecondary.1
Key found: HKLM\Software\Conduit
Key found: HKLM\Software\MetaStream
Key found: HKLM\Software\PopCap
Key found: HKCU\Software\Conduit
Key found: HKCU\Software\conduitEngine
Key found: HKCU\Software\PartyGaming
Key found: HKCU\Software\PriceGong
Key found: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}
Key found: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}
Key found: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9bd172ba-3f40-4303-bca1-0484b5ba2a7b}
Key found: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Key found: HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{9bd172ba-3f40-4303-bca1-0484b5ba2a7b}
Key found: HKCU\Software\Microsoft\Internet Explorer\MenuExt\&Search
Key found: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key found: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key found: HKLM\Software\Microsoft\Active Setup\Installed Components\{03F998B2-0E00-11D3-A498-00104B6EB52E}
Key found: HKLM\Software\Microsoft\Active Setup\Installed Components\{1B00725B-C455-4DE6-BFB6-AD540AD427CD}
Key found: HKLM\Software\MozillaPlugins\@viewpoint.com/VMP

Value found: HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser|{D4027C7F-154A-4066-A1AD-4243D8127440}


============== ADDITIONNAL SCAN ==============

**** Internet Explorer Version [8.0.6001.18702] ****

HKCU_Main|Default_Search_URL - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKCU_Main|SearchMigratedDefaultURL - hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
HKCU_Main|Search Page - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKCU_Main|Start Page - hxxp://search.babylon.com/home?AF=17824
HKLM_Main|Default_Page_URL - hxxp://go.microsoft.com/fwlink/?LinkId=69157
HKLM_Main|Default_Search_URL - hxxp://go.microsoft.com/fwlink/?LinkId=54896
HKLM_Main|Search bar - hxxp://search.msn.com/spbasic.htm
HKLM_Main|Search Page - hxxp://go.microsoft.com/fwlink/?LinkId=54896
HKLM_Main|Start Page - hxxp://fr.msn.com/
HKCU_URLSearchHooks|{A3BC75A2-1F87-4686-AA43-5347D756017C} - "AVG Security Toolbar BHO" (C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll)
HKCU_URLSearchHooks|*{CFBFAE00-17A6-11D0-99CB-00C04FD64497} (x)
HKCU_URLSearchHooks|{c3d3840c-12ea-4461-a61d-190555fecc82} - "?" (C:\Program Files\Guffins\bar\1.bin\u4SrcAs.dll)
HKCU_SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} - "Search the web (Babylon)" (hxxp://search.babylon.com/web/{searchTerms}?babsrc=browsersearch&AF=17824)
HKCU_SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E} - "Ask Search" (hxxp://websearch.ask.com/redirect?client=ie&tb=LMW4&o=16796&src=crm&q={searchTer...)
HKCU_SearchScopes\{9bd172ba-3f40-4303-bca1-0484b5ba2a7b} - "My Web Search" (hxxp://search.mywebsearch.com/mywebsearch/GGmain.jhtml?id=YJxdm030YYca&ptb=330BC...)
HKCU_SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B} - "uTorrentBar_FR Customized Web Search" (hxxp://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT...)
HKLM_SearchScopes\{9bd172ba-3f40-4303-bca1-0484b5ba2a7b} - "My Web Search" (hxxp://search.mywebsearch.com/mywebsearch/GGmain.jhtml?id=YJxdm030YYca&ptb=330BC...)
HKCU_Toolbar\WebBrowser|{42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} (x)
HKCU_Toolbar\WebBrowser|{BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} (x)
HKCU_Toolbar\WebBrowser|{A057A204-BACC-4D26-9990-79A187E2698E} (x)
HKCU_Toolbar\WebBrowser|{CCC7A320-B3CA-4199-B1A6-9F516DD69829} (C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll)
HKCU_Toolbar\WebBrowser|{D4027C7F-154A-4066-A1AD-4243D8127440} (x)
HKCU_Toolbar\WebBrowser|{DE2FDF7C-2637-4BA3-B427-3FCE2D331DB5} (C:\Program Files\Guffins\bar\1.bin\u4bar.dll)
HKLM_Toolbar|{CCC7A320-B3CA-4199-B1A6-9F516DD69829} (C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll)
HKLM_Toolbar|{de2fdf7c-2637-4ba3-b427-3fce2d331db5} (C:\Program Files\Guffins\bar\1.bin\u4bar.dll)
HKLM_ElevationPolicy\2a3540ef-967b-402a-9de1-8d81641cc5bb - C:\Program Files\Messenger_Plus_Live_CA-EN\Messenger_Plus_Live_CA-ENToolbarHelper.exe (x)
HKLM_ElevationPolicy\9975839d-fb49-4baf-a6ea-3a1db9d2cddb - C:\Program Files\P2P_Max_DE\P2P_Max_DEToolbarHelper.exe (x)
HKLM_ElevationPolicy\f3354527-03bd-4088-94d7-369ffdd6f2b7 - C:\Program Files\Messenger_Plus_Live_CA-EN\Messenger_Plus_Live_CA-ENToolbarHelper.exe (x)
HKLM_ElevationPolicy\{1d2aa885-2c50-4758-a262-17254662a5d5} - C:\Program Files\Guffins\bar\1.bin\u4medint.exe (Guffins)
HKLM_ElevationPolicy\{49a32f81-0ba1-4b43-856c-9a61425e5bf1} - C:\Program Files\Guffins\bar\1.bin\u4SkPlay.exe (Guffins)
HKLM_ElevationPolicy\{A6E2003F-95C5-4591-BA9A-0093080FDB5C} - C:\Program Files\Common Files\Oberon Media\OberonBroker\1.0.0.63\OberonBroker.exe (?)
HKLM_ElevationPolicy\{c277597d-c02b-4c09-9778-671530d2700f} - C:\Program Files\Guffins\bar\1.bin\u4SrchMn.exe (x)
HKLM_ElevationPolicy\{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\Program Files\AVG\AVG9\Toolbar\ToolbarBroker.exe (?)
HKLM_ElevationPolicy\{d22421a9-9464-4365-ae9b-d4ad70b99924} - C:\Program Files\Guffins\bar\1.bin\u4impipe.exe (Guffins)
HKLM_ElevationPolicy\{ff777bf5-d424-4519-a61e-2b5bb204894d} - C:\Program Files\Guffins\bar\1.bin\u4SlSrch.exe (x)
HKLM_Extensions\{16D60F96-2FF6-40b2-96D3-C32170E45A01} - "SelectView" (C:\Program Files\SelectView\svie.dll,201)
HKLM_Extensions\{85d1f590-48f4-11d9-9669-0800200c9a66} - "?" (?)
HKLM_Extensions\{B4B52284-A248-4c51-9F7C-F0A0C67FCC9D} - "PartyCasino" (C:\Program Files\PartyGaming\PartyCasino\images\PartyCasino.ico)
HKLM_Extensions\{E2D4D26B-0180-43a4-B05F-462D6D54C789} - "Connection Help" (C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\conn_support.ico)
HKLM_Extensions\{e2e2dd38-d088-4134-82b7-f2ba38496583} - "?" (?)
HKLM_Extensions\{F72841F0-4EF1-4df5-BCE5-B3AC8ACF5478} - "Translate this web page with Babylon" (C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll,202)
BHO\{5C255C8A-E604-49b4-9D64-90988571CECB} - "Click-to-Call BHO" (C:\Program Files\Windows Live\Messenger\wlchtc.dll)
BHO\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - "Search Helper" (C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll)
BHO\{A3BC75A2-1F87-4686-AA43-5347D756017C} - "AVG Security Toolbar BHO" (C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll)
BHO\{a916eefe-6a17-4d7d-a131-2738b260bb55} - "Toolbar BHO" (C:\PROGRA~1\Guffins\bar\1.bin\u4bar.dll)
BHO\{B3C54716-9D0A-4666-A81A-6072A6325A5A} - "SVIEBHO Class" (C:\Program Files\SelectView\svie.dll)
BHO\{d6a34acb-76fa-4a14-88ea-5d54797a2028} - "Search Assistant BHO" (C:\Program Files\Guffins\bar\1.bin\u4SrcAs.dll)

========================================

C:\Program Files\Ad-Remover\Quarantine: 1 File(s)
C:\Program Files\Ad-Remover\Backup: 13 File(s)

C:\Ad-Report-SCAN[1].txt - 22/07/2011 10:07:05 (6592 Byte(s))

End at: 10:07:53, 22/07/2011

============== E.O.F ==============


Merci pour ton aide!! :P
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
Utilisateur anonyme
22 juil. 2011 à 16:13
Re,

L'essentiel c'est d'avoir qu'un seul antivirus!
1/
Pour désinstaller proprement McAfee :

télécharge l'utilitaire de désinstallation iciet suis ces instructions .

2/
Ou est le rapport Ad-remover ?
0
phoenixgirl Messages postés 230 Date d'inscription dimanche 7 septembre 2008 Statut Membre Dernière intervention 1 décembre 2016 35
23 juil. 2011 à 00:15
J<avais utiliser ce programme pour le desinstaller deja mais jai repeter le processus...

Le rappport Ad-Remover etait juste la je tai copier/coller le rapport qui cetait ouvert a la fin du scan (qui na pas ete tres long, 45 sec tout au plus...)

Je vais repeter s cela peut taider...
0
phoenixgirl Messages postés 230 Date d'inscription dimanche 7 septembre 2008 Statut Membre Dernière intervention 1 décembre 2016 35
Modifié par phoenixgirl le 23/07/2011 à 00:52
======= REPORT FROM AD-REMOVER 2.0.0.2,G | ONLY XP/VISTA/7 =======

Updated by TeamXscript on 12/04/11
Contact: AdRemover[DOT]contact[AT]gmail[DOT]com
website: http://www.teamxscript.org

C:\Program Files\Ad-Remover\main.exe (SCAN [2]) -> Launched at 18:16:06 on 22/07/2011, Normal boot

Microsoft Windows XP Professional Service Pack 3 (X86)
HP_Administrator@PAM_ALEX ( )

============== SEARCH ==============


Folder found: C:\Program Files\Ask.com
Folder found: C:\Program Files\PartyGaming
Folder found: C:\Documents and Settings\HP_Administrator\Local Settings\Application Data\Conduit
Folder found: C:\Documents and Settings\HP_Administrator\Application Data\PriceGong

Key found: HKLM\Software\Classes\CLSID\{601ac3dc-786a-4eb0-bf40-ee3521e70bfb}
Key found: HKLM\Software\Classes\CLSID\{72b3882f-453a-4633-aac9-8c3dced62aff}
Key found: HKLM\Software\Classes\Interface\{20FA25EB-486C-4B69-8E2D-169FD142B2FB}
Key found: HKLM\Software\Classes\Interface\{44A28C79-727D-40AD-9B8C-287DBC2F6151}
Key found: HKLM\Software\Classes\Interface\{B30438D0-2FEF-4A56-9BA8-BF9EF7D21AF3}
Key found: HKLM\Software\Classes\Interface\{D51BF978-3D10-4809-AE62-A1A0CCEBF616}
Key found: HKLM\Software\Classes\Interface\{EF8A3F71-3ADC-41F9-866D-BD9EB9AC63FD}
Key found: HKLM\Software\Classes\AxMetaStream.MetaStreamCtl
Key found: HKLM\Software\Classes\AxMetaStream.MetaStreamCtl.1
Key found: HKLM\Software\Classes\AxMetaStream.MetaStreamCtlSecondary
Key found: HKLM\Software\Classes\AxMetaStream.MetaStreamCtlSecondary.1
Key found: HKLM\Software\Conduit
Key found: HKLM\Software\MetaStream
Key found: HKLM\Software\PopCap
Key found: HKCU\Software\Conduit
Key found: HKCU\Software\conduitEngine
Key found: HKCU\Software\PartyGaming
Key found: HKCU\Software\PriceGong
Key found: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}
Key found: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}
Key found: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9bd172ba-3f40-4303-bca1-0484b5ba2a7b}
Key found: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Key found: HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{9bd172ba-3f40-4303-bca1-0484b5ba2a7b}
Key found: HKCU\Software\Microsoft\Internet Explorer\MenuExt\&Search
Key found: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key found: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key found: HKLM\Software\Microsoft\Active Setup\Installed Components\{03F998B2-0E00-11D3-A498-00104B6EB52E}
Key found: HKLM\Software\Microsoft\Active Setup\Installed Components\{1B00725B-C455-4DE6-BFB6-AD540AD427CD}
Key found: HKLM\Software\MozillaPlugins\@viewpoint.com/VMP

Value found: HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser|{D4027C7F-154A-4066-A1AD-4243D8127440}


============== ADDITIONNAL SCAN ==============

**** Internet Explorer Version [8.0.6001.18702] ****

HKCU_Main|Default_Search_URL - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKCU_Main|SearchMigratedDefaultURL - hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
HKCU_Main|Search Page - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKCU_Main|Start Page - hxxp://search.babylon.com/home?AF=17824
HKLM_Main|Default_Page_URL - hxxp://go.microsoft.com/fwlink/?LinkId=69157
HKLM_Main|Default_Search_URL - hxxp://go.microsoft.com/fwlink/?LinkId=54896
HKLM_Main|Search bar - hxxp://search.msn.com/spbasic.htm
HKLM_Main|Search Page - hxxp://go.microsoft.com/fwlink/?LinkId=54896
HKLM_Main|Start Page - hxxp://fr.msn.com/
HKCU_URLSearchHooks|{A3BC75A2-1F87-4686-AA43-5347D756017C} - "AVG Security Toolbar BHO" (C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll)
HKCU_URLSearchHooks|*{CFBFAE00-17A6-11D0-99CB-00C04FD64497} (x)
HKCU_URLSearchHooks|{c3d3840c-12ea-4461-a61d-190555fecc82} - "?" (C:\Program Files\Guffins\bar\1.bin\u4SrcAs.dll)
HKCU_SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} - "Search the web (Babylon)" (hxxp://search.babylon.com/web/{searchTerms}?babsrc=browsersearch&AF=17824)
HKCU_SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E} - "Ask Search" (hxxp://websearch.ask.com/redirect?client=ie&tb=LMW4&o=16796&src=crm&q={searchTer...)
HKCU_SearchScopes\{9bd172ba-3f40-4303-bca1-0484b5ba2a7b} - "My Web Search" (hxxp://search.mywebsearch.com/mywebsearch/GGmain.jhtml?id=YJxdm030YYca&ptb=330BC...)
HKCU_SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B} - "uTorrentBar_FR Customized Web Search" (hxxp://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT...)
HKLM_SearchScopes\{9bd172ba-3f40-4303-bca1-0484b5ba2a7b} - "My Web Search" (hxxp://search.mywebsearch.com/mywebsearch/GGmain.jhtml?id=YJxdm030YYca&ptb=330BC...)
HKCU_Toolbar\WebBrowser|{42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} (x)
HKCU_Toolbar\WebBrowser|{BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} (x)
HKCU_Toolbar\WebBrowser|{A057A204-BACC-4D26-9990-79A187E2698E} (x)
HKCU_Toolbar\WebBrowser|{CCC7A320-B3CA-4199-B1A6-9F516DD69829} (C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll)
HKCU_Toolbar\WebBrowser|{D4027C7F-154A-4066-A1AD-4243D8127440} (x)
HKCU_Toolbar\WebBrowser|{DE2FDF7C-2637-4BA3-B427-3FCE2D331DB5} (C:\Program Files\Guffins\bar\1.bin\u4bar.dll)
HKLM_Toolbar|{CCC7A320-B3CA-4199-B1A6-9F516DD69829} (C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll)
HKLM_Toolbar|{de2fdf7c-2637-4ba3-b427-3fce2d331db5} (C:\Program Files\Guffins\bar\1.bin\u4bar.dll)
HKLM_ElevationPolicy\2a3540ef-967b-402a-9de1-8d81641cc5bb - C:\Program Files\Messenger_Plus_Live_CA-EN\Messenger_Plus_Live_CA-ENToolbarHelper.exe (x)
HKLM_ElevationPolicy\9975839d-fb49-4baf-a6ea-3a1db9d2cddb - C:\Program Files\P2P_Max_DE\P2P_Max_DEToolbarHelper.exe (x)
HKLM_ElevationPolicy\f3354527-03bd-4088-94d7-369ffdd6f2b7 - C:\Program Files\Messenger_Plus_Live_CA-EN\Messenger_Plus_Live_CA-ENToolbarHelper.exe (x)
HKLM_ElevationPolicy\{1d2aa885-2c50-4758-a262-17254662a5d5} - C:\Program Files\Guffins\bar\1.bin\u4medint.exe (Guffins)
HKLM_ElevationPolicy\{49a32f81-0ba1-4b43-856c-9a61425e5bf1} - C:\Program Files\Guffins\bar\1.bin\u4SkPlay.exe (Guffins)
HKLM_ElevationPolicy\{A6E2003F-95C5-4591-BA9A-0093080FDB5C} - C:\Program Files\Common Files\Oberon Media\OberonBroker\1.0.0.63\OberonBroker.exe (?)
HKLM_ElevationPolicy\{c277597d-c02b-4c09-9778-671530d2700f} - C:\Program Files\Guffins\bar\1.bin\u4SrchMn.exe (x)
HKLM_ElevationPolicy\{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\Program Files\AVG\AVG9\Toolbar\ToolbarBroker.exe (?)
HKLM_ElevationPolicy\{d22421a9-9464-4365-ae9b-d4ad70b99924} - C:\Program Files\Guffins\bar\1.bin\u4impipe.exe (Guffins)
HKLM_ElevationPolicy\{ff777bf5-d424-4519-a61e-2b5bb204894d} - C:\Program Files\Guffins\bar\1.bin\u4SlSrch.exe (x)
HKLM_Extensions\{16D60F96-2FF6-40b2-96D3-C32170E45A01} - "SelectView" (C:\Program Files\SelectView\svie.dll,201)
HKLM_Extensions\{85d1f590-48f4-11d9-9669-0800200c9a66} - "?" (?)
HKLM_Extensions\{B4B52284-A248-4c51-9F7C-F0A0C67FCC9D} - "PartyCasino" (C:\Program Files\PartyGaming\PartyCasino\images\PartyCasino.ico)
HKLM_Extensions\{E2D4D26B-0180-43a4-B05F-462D6D54C789} - "Connection Help" (C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\conn_support.ico)
HKLM_Extensions\{e2e2dd38-d088-4134-82b7-f2ba38496583} - "?" (?)
HKLM_Extensions\{F72841F0-4EF1-4df5-BCE5-B3AC8ACF5478} - "Translate this web page with Babylon" (C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll,202)
BHO\{5C255C8A-E604-49b4-9D64-90988571CECB} - "Click-to-Call BHO" (C:\Program Files\Windows Live\Messenger\wlchtc.dll)
BHO\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - "Search Helper" (C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll)
BHO\{A3BC75A2-1F87-4686-AA43-5347D756017C} - "AVG Security Toolbar BHO" (C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll)
BHO\{a916eefe-6a17-4d7d-a131-2738b260bb55} - "Toolbar BHO" (C:\PROGRA~1\Guffins\bar\1.bin\u4bar.dll)
BHO\{B3C54716-9D0A-4666-A81A-6072A6325A5A} - "SVIEBHO Class" (C:\Program Files\SelectView\svie.dll)
BHO\{d6a34acb-76fa-4a14-88ea-5d54797a2028} - "Search Assistant BHO" (C:\Program Files\Guffins\bar\1.bin\u4SrcAs.dll)

========================================

C:\Program Files\Ad-Remover\Quarantine: 1 File(s)
C:\Program Files\Ad-Remover\Backup: 14 File(s)

C:\Ad-Report-SCAN[1].txt - 22/07/2011 10:07:05 (8673 Byte(s))
C:\Ad-Report-SCAN[2].txt - 22/07/2011 18:16:15 (6592 Byte(s))

End at: 18:17:08, 22/07/2011

============== E.O.F ==============

======= REPORT FROM AD-REMOVER 2.0.0.2,G | ONLY XP/VISTA/7 =======

Updated by TeamXscript on 12/04/11
Contact: AdRemover[DOT]contact[AT]gmail[DOT]com
website: http://www.teamxscript.org

C:\Program Files\Ad-Remover\main.exe (SCAN [1]) -> Launched at 10:06:38 on 22/07/2011, Normal boot

Microsoft Windows XP Professional Service Pack 3 (X86)
HP_Administrator@PAM_ALEX ( )

============== SEARCH ==============


Folder found: C:\Program Files\Ask.com
Folder found: C:\Program Files\PartyGaming
Folder found: C:\Documents and Settings\HP_Administrator\Local Settings\Application Data\Conduit
Folder found: C:\Documents and Settings\HP_Administrator\Application Data\PriceGong

Key found: HKLM\Software\Classes\CLSID\{601ac3dc-786a-4eb0-bf40-ee3521e70bfb}
Key found: HKLM\Software\Classes\CLSID\{72b3882f-453a-4633-aac9-8c3dced62aff}
Key found: HKLM\Software\Classes\Interface\{20FA25EB-486C-4B69-8E2D-169FD142B2FB}
Key found: HKLM\Software\Classes\Interface\{44A28C79-727D-40AD-9B8C-287DBC2F6151}
Key found: HKLM\Software\Classes\Interface\{B30438D0-2FEF-4A56-9BA8-BF9EF7D21AF3}
Key found: HKLM\Software\Classes\Interface\{D51BF978-3D10-4809-AE62-A1A0CCEBF616}
Key found: HKLM\Software\Classes\Interface\{EF8A3F71-3ADC-41F9-866D-BD9EB9AC63FD}
Key found: HKLM\Software\Classes\AxMetaStream.MetaStreamCtl
Key found: HKLM\Software\Classes\AxMetaStream.MetaStreamCtl.1
Key found: HKLM\Software\Classes\AxMetaStream.MetaStreamCtlSecondary
Key found: HKLM\Software\Classes\AxMetaStream.MetaStreamCtlSecondary.1
Key found: HKLM\Software\Conduit
Key found: HKLM\Software\MetaStream
Key found: HKLM\Software\PopCap
Key found: HKCU\Software\Conduit
Key found: HKCU\Software\conduitEngine
Key found: HKCU\Software\PartyGaming
Key found: HKCU\Software\PriceGong
Key found: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}
Key found: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}
Key found: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9bd172ba-3f40-4303-bca1-0484b5ba2a7b}
Key found: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Key found: HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{9bd172ba-3f40-4303-bca1-0484b5ba2a7b}
Key found: HKCU\Software\Microsoft\Internet Explorer\MenuExt\&Search
Key found: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key found: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key found: HKLM\Software\Microsoft\Active Setup\Installed Components\{03F998B2-0E00-11D3-A498-00104B6EB52E}
Key found: HKLM\Software\Microsoft\Active Setup\Installed Components\{1B00725B-C455-4DE6-BFB6-AD540AD427CD}
Key found: HKLM\Software\MozillaPlugins\@viewpoint.com/VMP

Value found: HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser|{D4027C7F-154A-4066-A1AD-4243D8127440}


============== ADDITIONNAL SCAN ==============

**** Internet Explorer Version [8.0.6001.18702] ****

HKCU_Main|Default_Search_URL - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKCU_Main|SearchMigratedDefaultURL - hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
HKCU_Main|Search Page - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKCU_Main|Start Page - hxxp://search.babylon.com/home?AF=17824
HKLM_Main|Default_Page_URL - hxxp://go.microsoft.com/fwlink/?LinkId=69157
HKLM_Main|Default_Search_URL - hxxp://go.microsoft.com/fwlink/?LinkId=54896
HKLM_Main|Search bar - hxxp://search.msn.com/spbasic.htm
HKLM_Main|Search Page - hxxp://go.microsoft.com/fwlink/?LinkId=54896
HKLM_Main|Start Page - hxxp://fr.msn.com/
HKCU_URLSearchHooks|{A3BC75A2-1F87-4686-AA43-5347D756017C} - "AVG Security Toolbar BHO" (C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll)
HKCU_URLSearchHooks|*{CFBFAE00-17A6-11D0-99CB-00C04FD64497} (x)
HKCU_URLSearchHooks|{c3d3840c-12ea-4461-a61d-190555fecc82} - "?" (C:\Program Files\Guffins\bar\1.bin\u4SrcAs.dll)
HKCU_SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} - "Search the web (Babylon)" (hxxp://search.babylon.com/web/{searchTerms}?babsrc=browsersearch&AF=17824)
HKCU_SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E} - "Ask Search" (hxxp://websearch.ask.com/redirect?client=ie&tb=LMW4&o=16796&src=crm&q={searchTer...)
HKCU_SearchScopes\{9bd172ba-3f40-4303-bca1-0484b5ba2a7b} - "My Web Search" (hxxp://search.mywebsearch.com/mywebsearch/GGmain.jhtml?id=YJxdm030YYca&ptb=330BC...)
HKCU_SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B} - "uTorrentBar_FR Customized Web Search" (hxxp://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT...)
HKLM_SearchScopes\{9bd172ba-3f40-4303-bca1-0484b5ba2a7b} - "My Web Search" (hxxp://search.mywebsearch.com/mywebsearch/GGmain.jhtml?id=YJxdm030YYca&ptb=330BC...)
HKCU_Toolbar\WebBrowser|{42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} (x)
HKCU_Toolbar\WebBrowser|{BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} (x)
HKCU_Toolbar\WebBrowser|{A057A204-BACC-4D26-9990-79A187E2698E} (x)
HKCU_Toolbar\WebBrowser|{CCC7A320-B3CA-4199-B1A6-9F516DD69829} (C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll)
HKCU_Toolbar\WebBrowser|{D4027C7F-154A-4066-A1AD-4243D8127440} (x)
HKCU_Toolbar\WebBrowser|{DE2FDF7C-2637-4BA3-B427-3FCE2D331DB5} (C:\Program Files\Guffins\bar\1.bin\u4bar.dll)
HKLM_Toolbar|{CCC7A320-B3CA-4199-B1A6-9F516DD69829} (C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll)
HKLM_Toolbar|{de2fdf7c-2637-4ba3-b427-3fce2d331db5} (C:\Program Files\Guffins\bar\1.bin\u4bar.dll)
HKLM_ElevationPolicy\2a3540ef-967b-402a-9de1-8d81641cc5bb - C:\Program Files\Messenger_Plus_Live_CA-EN\Messenger_Plus_Live_CA-ENToolbarHelper.exe (x)
HKLM_ElevationPolicy\9975839d-fb49-4baf-a6ea-3a1db9d2cddb - C:\Program Files\P2P_Max_DE\P2P_Max_DEToolbarHelper.exe (x)
HKLM_ElevationPolicy\f3354527-03bd-4088-94d7-369ffdd6f2b7 - C:\Program Files\Messenger_Plus_Live_CA-EN\Messenger_Plus_Live_CA-ENToolbarHelper.exe (x)
HKLM_ElevationPolicy\{1d2aa885-2c50-4758-a262-17254662a5d5} - C:\Program Files\Guffins\bar\1.bin\u4medint.exe (Guffins)
HKLM_ElevationPolicy\{49a32f81-0ba1-4b43-856c-9a61425e5bf1} - C:\Program Files\Guffins\bar\1.bin\u4SkPlay.exe (Guffins)
HKLM_ElevationPolicy\{A6E2003F-95C5-4591-BA9A-0093080FDB5C} - C:\Program Files\Common Files\Oberon Media\OberonBroker\1.0.0.63\OberonBroker.exe (?)
HKLM_ElevationPolicy\{c277597d-c02b-4c09-9778-671530d2700f} - C:\Program Files\Guffins\bar\1.bin\u4SrchMn.exe (x)
HKLM_ElevationPolicy\{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\Program Files\AVG\AVG9\Toolbar\ToolbarBroker.exe (?)
HKLM_ElevationPolicy\{d22421a9-9464-4365-ae9b-d4ad70b99924} - C:\Program Files\Guffins\bar\1.bin\u4impipe.exe (Guffins)
HKLM_ElevationPolicy\{ff777bf5-d424-4519-a61e-2b5bb204894d} - C:\Program Files\Guffins\bar\1.bin\u4SlSrch.exe (x)
HKLM_Extensions\{16D60F96-2FF6-40b2-96D3-C32170E45A01} - "SelectView" (C:\Program Files\SelectView\svie.dll,201)
HKLM_Extensions\{85d1f590-48f4-11d9-9669-0800200c9a66} - "?" (?)
HKLM_Extensions\{B4B52284-A248-4c51-9F7C-F0A0C67FCC9D} - "PartyCasino" (C:\Program Files\PartyGaming\PartyCasino\images\PartyCasino.ico)
HKLM_Extensions\{E2D4D26B-0180-43a4-B05F-462D6D54C789} - "Connection Help" (C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\conn_support.ico)
HKLM_Extensions\{e2e2dd38-d088-4134-82b7-f2ba38496583} - "?" (?)
HKLM_Extensions\{F72841F0-4EF1-4df5-BCE5-B3AC8ACF5478} - "Translate this web page with Babylon" (C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll,202)
BHO\{5C255C8A-E604-49b4-9D64-90988571CECB} - "Click-to-Call BHO" (C:\Program Files\Windows Live\Messenger\wlchtc.dll)
BHO\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - "Search Helper" (C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll)
BHO\{A3BC75A2-1F87-4686-AA43-5347D756017C} - "AVG Security Toolbar BHO" (C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll)
BHO\{a916eefe-6a17-4d7d-a131-2738b260bb55} - "Toolbar BHO" (C:\PROGRA~1\Guffins\bar\1.bin\u4bar.dll)
BHO\{B3C54716-9D0A-4666-A81A-6072A6325A5A} - "SVIEBHO Class" (C:\Program Files\SelectView\svie.dll)
BHO\{d6a34acb-76fa-4a14-88ea-5d54797a2028} - "Search Assistant BHO" (C:\Program Files\Guffins\bar\1.bin\u4SrcAs.dll)

========================================

C:\Program Files\Ad-Remover\Quarantine: 1 File(s)
C:\Program Files\Ad-Remover\Backup: 13 File(s)

C:\Ad-Report-SCAN[1].txt - 22/07/2011 10:07:05 (6592 Byte(s))

End at: 10:07:53, 22/07/2011

============== E.O.F ==============


Jai copier le rapport genere et je suis allee chercher le rapport dans le dossier back-up.

Merci encore!!
0
Bonjour,
1/
Ad-remover Mode nettoyage :

/!\ Ferme toutes applications en cours /!\

- Double-clique sur l'icône Ad-remover située sur ton Bureau.
- Sur la page, clique sur le bouton «Nettoyer»
- Confirme lancement du scan
- Laisse travailler l'outil.
- Poste le rapport qui apparaît à la fin.

(Le rapport est sauvegardé aussi sous C:\Ad-report(Scan/clean).Txt)

(CTRL+A pour tout sélectionner, CTRL+C pour copier et CTRL+V pour c

2/ Ensuite

Nous allons effectuer un diagnostic de ton PC:
*Télécharge ZHPDiag sur ton bureau :

https://www.zebulon.fr/telechargements/securite/systeme/zhpdiag.html
ou :
http://www.premiumorange.com/zeb-help-process/zhpdiag.html

* Laisse toi guider lors de l'installation,coche "Ajouter une icône sur le bureau" et décoche la case "Exécuter ZHPDiag"

/!\Utilisateur de Vista et Seven : Clique droit sur le logo de ZHPdiag, « exécuter en tant qu'Administrateur »

* Clique sur l'icône représentant une loupe (« Lancer le diagnostic »)
* Enregistre le rapport sur ton Bureau à l'aide de l'icône représentant une disquette
* Héberge le rapport ZHPDiag.txt sur un des sites ci dessous, puis copie/colle le lien fourni dans ta prochaine réponse sur le forum :
http://pjjoint.malekal.com/

Si indisponible:
http://www.cijoint.fr/

* Tuto zhpdiag :
http://www.premiumorange.com/zeb-help-process/zhpdiag.html


Hébergement de rapport sur pjjoint.malekal.com

* Rends toi sur http://pjjoint.malekal.com/
* Clique sur le bouton Parcourir
* Sélectionne le fichier que tu veux heberger et clique sur Ouvrir
*Clique sur le bouton Envoyer
* Un message de confirmation s'affiche, copie le lien dans ta prochaine réponse.

@+


-*-*-*-*-*-*-*-*-*-*-*-*-*<<<<<<<<<<
Membre, Contributeur
-*-*-*-*-*-*-*-*-*-*-*-*-*<<<<<<<<<<
0
phoenixgirl Messages postés 230 Date d'inscription dimanche 7 septembre 2008 Statut Membre Dernière intervention 1 décembre 2016 35
23 juil. 2011 à 18:41
Salut

Voil'a le rapport du Nettoyage:

======= REPORT FROM AD-REMOVER 2.0.0.2,G | ONLY XP/VISTA/7 =======

Updated by TeamXscript on 12/04/11
Contact: AdRemover[DOT]contact[AT]gmail[DOT]com
website: http://www.teamxscript.org

C:\Program Files\Ad-Remover\main.exe (CLEAN [1]) -> Launched at 12:19:34 on 23/07/2011, Normal boot

Microsoft Windows XP Professional Service Pack 3 (X86)
HP_Administrator@PAM_ALEX ( )

============== ACTION(S) ==============


Folder deleted: C:\Program Files\Ask.com
Folder deleted: C:\Program Files\PartyGaming
Folder deleted: C:\Documents and Settings\HP_Administrator\Local Settings\Application Data\Conduit
Folder deleted: C:\Documents and Settings\HP_Administrator\Application Data\PriceGong

(!) -- Temporary files deleted.


Key deleted: HKLM\Software\Classes\CLSID\{601ac3dc-786a-4eb0-bf40-ee3521e70bfb}
Key deleted: HKLM\Software\Classes\CLSID\{72b3882f-453a-4633-aac9-8c3dced62aff}
Key deleted: HKLM\Software\Classes\Interface\{20FA25EB-486C-4B69-8E2D-169FD142B2FB}
Key deleted: HKLM\Software\Classes\Interface\{44A28C79-727D-40AD-9B8C-287DBC2F6151}
Key deleted: HKLM\Software\Classes\Interface\{B30438D0-2FEF-4A56-9BA8-BF9EF7D21AF3}
Key deleted: HKLM\Software\Classes\Interface\{D51BF978-3D10-4809-AE62-A1A0CCEBF616}
Key deleted: HKLM\Software\Classes\Interface\{EF8A3F71-3ADC-41F9-866D-BD9EB9AC63FD}
Key deleted: HKLM\Software\Classes\AxMetaStream.MetaStreamCtl
Key deleted: HKLM\Software\Classes\AxMetaStream.MetaStreamCtl.1
Key deleted: HKLM\Software\Classes\AxMetaStream.MetaStreamCtlSecondary
Key deleted: HKLM\Software\Classes\AxMetaStream.MetaStreamCtlSecondary.1
Key deleted: HKLM\Software\Conduit
Key deleted: HKLM\Software\MetaStream
Key deleted: HKLM\Software\PopCap
Key deleted: HKCU\Software\Conduit
Key deleted: HKCU\Software\conduitEngine
Key deleted: HKCU\Software\PartyGaming
Key deleted: HKCU\Software\PriceGong
Key deleted: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}
Key deleted: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}
Key deleted: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9bd172ba-3f40-4303-bca1-0484b5ba2a7b}
Key deleted: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Key deleted: HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{9bd172ba-3f40-4303-bca1-0484b5ba2a7b}
Key deleted: HKCU\Software\Microsoft\Internet Explorer\MenuExt\&Search
Key deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}
Key deleted: HKLM\Software\Microsoft\Active Setup\Installed Components\{03F998B2-0E00-11D3-A498-00104B6EB52E}
Key deleted: HKLM\Software\Microsoft\Active Setup\Installed Components\{1B00725B-C455-4DE6-BFB6-AD540AD427CD}
Key deleted: HKLM\Software\MozillaPlugins\@viewpoint.com/VMP

Value deleted: HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser|{D4027C7F-154A-4066-A1AD-4243D8127440}


============== ADDITIONNAL SCAN ==============

**** Internet Explorer Version [8.0.6001.18702] ****

HKCU_Main|Default_Page_URL - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
HKCU_Main|Default_Search_URL - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKCU_Main|Search bar - hxxp://go.microsoft.com/fwlink/?linkid=54896
HKCU_Main|Start Page - hxxp://fr.msn.com/
HKLM_Main|Default_Page_URL - hxxp://go.microsoft.com/fwlink/?LinkId=54896
HKLM_Main|Default_Search_URL - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKLM_Main|Search bar - hxxp://search.msn.com/spbasic.htm
HKLM_Main|Search Page - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKLM_Main|Start Page - hxxp://fr.msn.com/
HKCU_URLSearchHooks|{A3BC75A2-1F87-4686-AA43-5347D756017C} - "AVG Security Toolbar BHO" (C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll)
HKCU_URLSearchHooks|*{CFBFAE00-17A6-11D0-99CB-00C04FD64497} (x)
HKCU_URLSearchHooks|{c3d3840c-12ea-4461-a61d-190555fecc82} - "?" (C:\Program Files\Guffins\bar\1.bin\u4SrcAs.dll)
HKCU_Toolbar\WebBrowser|{42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} (x)
HKCU_Toolbar\WebBrowser|{BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} (x)
HKCU_Toolbar\WebBrowser|{A057A204-BACC-4D26-9990-79A187E2698E} (x)
HKCU_Toolbar\WebBrowser|{CCC7A320-B3CA-4199-B1A6-9F516DD69829} (C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll)
HKCU_Toolbar\WebBrowser|{DE2FDF7C-2637-4BA3-B427-3FCE2D331DB5} (C:\Program Files\Guffins\bar\1.bin\u4bar.dll)
HKLM_Toolbar|{CCC7A320-B3CA-4199-B1A6-9F516DD69829} (C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll)
HKLM_Toolbar|{de2fdf7c-2637-4ba3-b427-3fce2d331db5} (C:\Program Files\Guffins\bar\1.bin\u4bar.dll)
HKLM_ElevationPolicy\2a3540ef-967b-402a-9de1-8d81641cc5bb - C:\Program Files\Messenger_Plus_Live_CA-EN\Messenger_Plus_Live_CA-ENToolbarHelper.exe (x)
HKLM_ElevationPolicy\9975839d-fb49-4baf-a6ea-3a1db9d2cddb - C:\Program Files\P2P_Max_DE\P2P_Max_DEToolbarHelper.exe (x)
HKLM_ElevationPolicy\f3354527-03bd-4088-94d7-369ffdd6f2b7 - C:\Program Files\Messenger_Plus_Live_CA-EN\Messenger_Plus_Live_CA-ENToolbarHelper.exe (x)
HKLM_ElevationPolicy\{1d2aa885-2c50-4758-a262-17254662a5d5} - C:\Program Files\Guffins\bar\1.bin\u4medint.exe (Guffins)
HKLM_ElevationPolicy\{49a32f81-0ba1-4b43-856c-9a61425e5bf1} - C:\Program Files\Guffins\bar\1.bin\u4SkPlay.exe (Guffins)
HKLM_ElevationPolicy\{A6E2003F-95C5-4591-BA9A-0093080FDB5C} - C:\Program Files\Common Files\Oberon Media\OberonBroker\1.0.0.63\OberonBroker.exe (?)
HKLM_ElevationPolicy\{c277597d-c02b-4c09-9778-671530d2700f} - C:\Program Files\Guffins\bar\1.bin\u4SrchMn.exe (x)
HKLM_ElevationPolicy\{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\Program Files\AVG\AVG9\Toolbar\ToolbarBroker.exe (?)
HKLM_ElevationPolicy\{d22421a9-9464-4365-ae9b-d4ad70b99924} - C:\Program Files\Guffins\bar\1.bin\u4impipe.exe (Guffins)
HKLM_ElevationPolicy\{ff777bf5-d424-4519-a61e-2b5bb204894d} - C:\Program Files\Guffins\bar\1.bin\u4SlSrch.exe (x)
HKLM_Extensions\{16D60F96-2FF6-40b2-96D3-C32170E45A01} - "SelectView" (C:\Program Files\SelectView\svie.dll,201)
HKLM_Extensions\{85d1f590-48f4-11d9-9669-0800200c9a66} - "?" (?)
HKLM_Extensions\{B4B52284-A248-4c51-9F7C-F0A0C67FCC9D} - "PartyCasino" (C:\Program Files\PartyGaming\PartyCasino\images\PartyCasino.ico)
HKLM_Extensions\{E2D4D26B-0180-43a4-B05F-462D6D54C789} - "Connection Help" (C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\conn_support.ico)
HKLM_Extensions\{e2e2dd38-d088-4134-82b7-f2ba38496583} - "?" (?)
HKLM_Extensions\{F72841F0-4EF1-4df5-BCE5-B3AC8ACF5478} - "Translate this web page with Babylon" (C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll,202)
BHO\{5C255C8A-E604-49b4-9D64-90988571CECB} - "Click-to-Call BHO" (C:\Program Files\Windows Live\Messenger\wlchtc.dll)
BHO\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - "Search Helper" (C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll)
BHO\{A3BC75A2-1F87-4686-AA43-5347D756017C} - "AVG Security Toolbar BHO" (C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll)
BHO\{a916eefe-6a17-4d7d-a131-2738b260bb55} - "Toolbar BHO" (C:\PROGRA~1\Guffins\bar\1.bin\u4bar.dll)
BHO\{B3C54716-9D0A-4666-A81A-6072A6325A5A} - "SVIEBHO Class" (C:\Program Files\SelectView\svie.dll)
BHO\{d6a34acb-76fa-4a14-88ea-5d54797a2028} - "Search Assistant BHO" (C:\Program Files\Guffins\bar\1.bin\u4SrcAs.dll)

========================================

C:\Program Files\Ad-Remover\Quarantine: 39 File(s)
C:\Program Files\Ad-Remover\Backup: 27 File(s)

C:\Ad-Report-CLEAN[1].txt - 23/07/2011 12:19:49 (746 Byte(s))
C:\Ad-Report-SCAN[2].txt - 22/07/2011 18:16:15 (8737 Byte(s))

End at: 12:21:06, 23/07/2011

============== E.O.F ==============
0
Utilisateur anonyme
23 juil. 2011 à 18:43
Salut,

Reste rapport ZHPDiag
0
phoenixgirl Messages postés 230 Date d'inscription dimanche 7 septembre 2008 Statut Membre Dernière intervention 1 décembre 2016 35
23 juil. 2011 à 19:36
0
phoenixgirl Messages postés 230 Date d'inscription dimanche 7 septembre 2008 Statut Membre Dernière intervention 1 décembre 2016 35
23 juil. 2011 à 19:43
Aurais-tu un tuto a me conseiller pour AVG9 SVP jaimerais pouvoir lutiliser plus efficacement

jai tres souvent des alertes du bouclier me disant quil a detecte des tracking cookies
jai le choix dacceder aux fichiers, ajouter au exeptions ou supprimer la selection ou simplement ignorer

comment savoir si je doit supprimer ou ignorer

bref que dois-je faire avec ca

Merci!!

@+
0
Utilisateur anonyme
23 juil. 2011 à 19:50
Re,

Copie tout le texte présent en gras ( tu le selectionnes avec ta souris / Clique droit dessus et choisis "copier" ou fait Ctrl+C )


[HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusOverride: Modified     
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} . (.Yahoo! Inc. - Yahoo! Toolbar.) -- C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll     
O8 - Extra context menu item: Add to Windows &Live Favorites - (.not file.) - http:\\favorites.live.com\quickadd.aspx 
O8 - Extra context menu item: Translate this web page with Babylon - (.not file.) - C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll     
O9 - Extra button: Translate this web page with Babylon - {F72841F0-4EF1-4df5-BCE5-B3AC8ACF5478} -- C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll (.not file.)     
O43 - CFD: 2011-07-11 - 17:32:44 - [2383362] ----D- C:\Program Files\RencontresHard     
O43 - CFD: 2005-10-22 - 04:30:16 - [1106432] ----D- C:\Program Files\Common Files\Totem Shared     
O43 - CFD: 2011-04-16 - 00:26:36 - [304464] ----D- C:\Documents and Settings\HP_Administrator\Application Data\Babylon     
O43 - CFD: 2011-04-16 - 00:26:00 - [0] ----D- C:\Documents and Settings\HP_Administrator\Application Data\BabylonToolbar     
O43 - CFD: 2011-04-16 - 00:25:58 - [6715] ----D- C:\Documents and Settings\HP_Administrator\Local Settings\Application Data\Babylon     
[HKLM\Software\Classes\imside1egate.application.1] 
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{00000000-6E41-4FD3-8538-502F5495E5FC}]     
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}]     
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}]     
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2EECD738-5844-4a99-B4B6-146BF802613B}]     
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{2EECD738-5844-4a99-B4B6-146BF802613B}]     
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{30F9B915-B755-4826-820B-08FBA6BD249D}]     
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{4B3803EA-5230-4DC3-A7FC-33638F3D3542}]     
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{4B3803EA-5230-4DC3-A7FC-33638F3D3542}]     
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8736C681-37A0-40C6-A0F0-4C083409151C}]     
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{98889811-442D-49dd-99D7-DC866BE87DBC}]     
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{98889811-442D-49dd-99D7-DC866BE87DBC}]     
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{b7fe5d70-9aa2-40f1-9c6b-12a255f085e1}]     
[HKLM\Software\InstUf]     
[HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\5] 
C:\Program Files\Common Files\Totem Shared     
C:\Documents and Settings\HP_Administrator\Application Data\Babylon     
C:\Documents and Settings\HP_Administrator\Application Data\BabylonToolbar     
C:\Documents and Settings\HP_Administrator\Local Settings\Application Data\Babylon     
    

FirewallRAZ
EmptyTemp
EmptyFlash



Puis Lance ZHPFix depuis le raccourci du bureau .

* Une fois l'outil ZHPFix ouvert , clique sur le bouton [ H ] ( "coller les lignes Helper" ) .

* Dans l'encadré principal tu verras donc les lignes que tu as copié précédemment apparaitrent .

Vérifie que toutes les lignes que je t'ai demandé de copier (et seulement elles) sont dans la fenêtre.

Clique sur le bouton GO

Copie/Colle le rapport à l'écran dans ton prochain message.


@+
0
phoenixgirl Messages postés 230 Date d'inscription dimanche 7 septembre 2008 Statut Membre Dernière intervention 1 décembre 2016 35
23 juil. 2011 à 20:38
l<ordi a planter a la toute fin du rapport, jai du debrancher lordi pour la redemarrer (je sais ce nest pas tres bon mas je nai pas troiuver dautre moyen)

voici quand meme ce qui a ete fait:

Rapport de ZHPFix 1.12.3344 par Nicolas Coolman, Update du 21/07/2011
Fichier d'export Registre :
Run by HP_Administrator at 2011-07-23 14:06:20
Windows XP Professional Service Pack 3 (Build 2600)
Web site : http://www.premiumorange.com/zeb-help-process/zhpfix.html

========== Clé(s) du Registre ==========
SUPPRIME Key: Menu Contextuel: Add to Windows &Live Favorites
SUPPRIME Key: Menu Contextuel: Translate this web page with Babylon
SUPPRIME Key: CLSID Extra Buttons: {F72841F0-4EF1-4df5-BCE5-B3AC8ACF5478}
SUPPRIME Key: HKLM\Software\Classes\imside1egate.application.1
SUPPRIME Key: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{00000000-6E41-4FD3-8538-502F5495E5FC}
SUPPRIME Key: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
SUPPRIME Key: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
SUPPRIME Key: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2EECD738-5844-4a99-B4B6-146BF802613B}
SUPPRIME Key: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{2EECD738-5844-4a99-B4B6-146BF802613B}
SUPPRIME Key: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{30F9B915-B755-4826-820B-08FBA6BD249D}
SUPPRIME Key: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{4B3803EA-5230-4DC3-A7FC-33638F3D3542}
SUPPRIME Key: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{4B3803EA-5230-4DC3-A7FC-33638F3D3542}
SUPPRIME Key: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8736C681-37A0-40C6-A0F0-4C083409151C}
SUPPRIME Key: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{98889811-442D-49dd-99D7-DC866BE87DBC}
SUPPRIME Key: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{98889811-442D-49dd-99D7-DC866BE87DBC}
SUPPRIME Key: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{b7fe5d70-9aa2-40f1-9c6b-12a255f085e1}
SUPPRIME Key: HKLM\Software\InstUf
ABSENT Key: HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\5

========== Valeur(s) du Registre ==========
SUPPRIME Toolbar: {EF99BD32-C1FB-11D2-892F-0090271D4F88}
SUPPRIME FirewallRaz (SP) : C:\Program Files\LimeWire\LimeWire.exe
SUPPRIME FirewallRaz (SP) : C:\Program Files\Messenger\msmsgs.exe
SUPPRIME FirewallRaz (SP) : C:\Program Files\IncrediMail\Bin\IncMail.exe
SUPPRIME FirewallRaz (SP) : C:\Program Files\IncrediMail\Bin\ImApp.exe
SUPPRIME FirewallRaz (SP) : C:\Program Files\IncrediMail\Bin\ImpCnt.exe
SUPPRIME FirewallRaz (SP) : C:\Documents and Settings\HP_Administrator\Desktop\pics\LimeWire\LimeWire.exe
SUPPRIME FirewallRaz (DP) : C:\Program Files\MSN Messenger\livecall.exe
Aucune valeur présente dans la clé d'exception du registre (FirewallRaz)

========== Elément(s) de donnée du Registre ==========
REMPLACE Value AntiVirusOverride : Good (0) - Bad (1)

========== Dossier(s) ==========
SUPPRIME Folder*: C:\Program Files\RencontresHard
SUPPRIME Folder*: C:\Program Files\Common Files\Totem Shared
SUPPRIME Folder*: C:\Documents and Settings\HP_Administrator\Application Data\Babylon
SUPPRIME Folder*: C:\Documents and Settings\HP_Administrator\Application Data\BabylonToolbar
SUPPRIME Folder*: C:\Documents and Settings\HP_Administrator\Local Settings\Application Data\Babylon
SUPPRIME Temporaires Windows: : 31
SUPPRIME Flash Cookies: 108

========== Fichier(s) ==========
SUPPRIME c:\program files\yahoo!\companion\installs\cpn\yt.dll
ABSENT File: p:\\favorites.live.com
ABSENT File: c:\program files\babylon\babylon-pro\utils\babyloniepi.dll
ABSENT Folder/File: c:\program files\common files\totem shared
ABSENT Folder/File: c:\documents and settings\hp_administrator\application data\babylon
ABSENT Folder/File: c:\documents and settings\hp_administrator\application data\babylontoolbar
ABSENT Folder/File: c:\documents and settings\hp_administrator\local settings\application data\babylon
SUPPRIME Temporaires Windows: : 533
SUPPRIME Flash Cookies: 59


========== Récapitulatif ==========
18 : Clé(s) du Registre
9 : Valeur(s) du Registre
1 : Elément(s) de donnée du Registre
7 : Dossier(s)
9 : Fichier(s)


========== Chemin du fichier rapport ==========
C:\Program Files\ZHPDiag\ZHPFixReport.txt



End of the scan in 00mn 19s


Merci pour ton aide!!

@+
0
Utilisateur anonyme
23 juil. 2011 à 22:30
Concernant AVG, on va faire une analyse à la fin de la désinfection!
0
Utilisateur anonyme
23 juil. 2011 à 23:09
Lance Malwarebytes pour une analyse complète après avoir fait la mise à jour, à la fin de l'analyse clique sur "afficher le résultat" puis sur " supprimer la sélection" ensuite poste le rapport
0
phoenixgirl Messages postés 230 Date d'inscription dimanche 7 septembre 2008 Statut Membre Dernière intervention 1 décembre 2016 35
26 juil. 2011 à 17:31
Voila le rapport de MBytes:

Malwarebytes' Anti-Malware 1.51.1.1800
www.malwarebytes.org

Version de la base de données: 7281

Windows 5.1.2600 Service Pack 3
Internet Explorer 8.0.6001.18702

2011-07-26 11:24:49
mbam-log-2011-07-26 (11-24-49).txt

Type d'examen: Examen complet (C:\|D:\|E:\|F:\|G:\|H:\|I:\|J:\|)
Elément(s) analysé(s): 286989
Temps écoulé: 2 heure(s), 30 minute(s), 4 seconde(s)

Processus mémoire infecté(s): 1
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 0
Valeur(s) du Registre infectée(s): 2
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 1

Processus mémoire infecté(s):
c:\program files\windows live\messenger\msnmsgr.exe (Backdoor.Agent) -> 3384 -> Failed to unload process.

Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)

Clé(s) du Registre infectée(s):
(Aucun élément nuisible détecté)

Valeur(s) du Registre infectée(s):
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\msnmsgr (Backdoor.Agent) -> Value: msnmsgr -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\msnmsgr (Backdoor.Agent) -> Value: msnmsgr -> Quarantined and deleted successfully.

Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)

Dossier(s) infecté(s):
(Aucun élément nuisible détecté)

Fichier(s) infecté(s):
c:\program files\windows live\messenger\msnmsgr.exe (Backdoor.Agent) -> Delete on reboot.


Jattend la suite :P

@!+
0
phoenixgirl Messages postés 230 Date d'inscription dimanche 7 septembre 2008 Statut Membre Dernière intervention 1 décembre 2016 35
Modifié par phoenixgirl le 29/07/2011 à 14:09
A titre informatif, mes MAJ automatique pour Windows ne fonctionnent plus depuis le debut de lannee, je sais que cela peut creer certaines failles au niveau securite alors je suis allee chercher de laide pour ca...

voici le lien vers le post de mon probleme:

https://forums.commentcamarche.net/forum/affich-22732319-erreur-ox80070020-windows-update-impossible#p22735427
0
phoenixgirl Messages postés 230 Date d'inscription dimanche 7 septembre 2008 Statut Membre Dernière intervention 1 décembre 2016 35
Modifié par phoenixgirl le 28/07/2011 à 16:26
aussi je vai9s reinstaller windows live puisque le fichier etait infecte... et quil a ete efface
ca ne cause pas de probleme???
je vais telecharger le logiciel depuis ce site, il ne devrais donc pas etre infecter!!! lolll

Merci encore pour ton aide precieuse!

@+

Re,

ca ne fonctionne pas

windows mindique que le logiciel ne peut etre installer (its not a Win32 application..??)
0