[Hijackthis] IRQL_... => analyse

Résolu
Bonjour ,

Apres avoir regardé moultes et moultes messages concernant le fameux probleme de l'ecran bleu :D j'en ai vite conclut que chaque probleme etait different ... :/ .
Je me permet donc de rajouter un x post sur ce sujet .

Au debut je remarquais que cet ecran bleu ne se mettait que lorsque je telechargais , mais il s'est quand meme affiché par la suite lorsque je ne fesais rien de special ...
Je n'ai pas installé de peripheriques et de logiciels nouveaux recemment (a part un jeu ...).
Voici le message d'erreur =>
message d'erreur affiché :
" Driver IRQL_NOT_LESS_OR_EQUAL
***Stop :
0x000000d1(0x0000004,0x00000002,0x0000001,0EFD6CD86)
(..... blabla de windows ...)
MRV0335xp.sys
Adress :FFD6CD86 base at EFD6c000
Date stamp: 421ac521 "

J'ai aussi fait un rapport Hijackthis que voici :) :

Logfile of HijackThis v1.99.1
Scan saved at 11:08:54, on 29/10/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~2\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~2\Grisoft\AVGFRE~1\avgupsvc.exe
C:\PROGRA~2\Grisoft\AVGFRE~1\avgemc.exe
C:\cygwin\bin\cygrunsrv.exe
C:\WINDOWS\System32\svchost.exe
C:\cygwin\usr\sbin\sshd.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~2\Grisoft\AVGFRE~1\avgcc.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Google\Google Talk\googletalk.exe
C:\Program Files\TuneUp Utilities 2006\MemOptimizer.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Hijackthis\HijackThis.exe
C:\Program Files\Windows Media Player\wmplayer.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.tfmwoicdsvrfnfowcofdfo.net/Xuv_vafgXVj2BEXsM_kVtNGdi0g61yroAacC_BgysikXxKQciHn9nCIxWZlGanXp.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {0B13A083-1EB1-BF51-94B8-5E0943C5FABC} - (no file)
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: (no name) - {BE0F692F-28CB-4677-9BE1-C09F41F16BC2} - C:\WINDOWS\system32\dslquoui.dll
O3 - Toolbar: (no name) - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - (no file)
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~2\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [googletalk] "C:\Program Files\Google\Google Talk\googletalk.exe" /autostart
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [TuneUp MemOptimizer] "C:\Program Files\TuneUp Utilities 2006\MemOptimizer.exe" autostart
O8 - Extra context menu item: &Clean Traces - C:\Program Files\DAP\Privacy Package\dapcleanerie.htm
O8 - Extra context menu item: &Download with &DAP - C:\Program Files\DAP\dapextie.htm
O8 - Extra context menu item: Download &all with DAP - C:\Program Files\DAP\dapextie2.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab31267.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.com/v5consumer/V5Controls/en/x86/client/wuweb_site.cab?1105912526542
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab32846.cab
O16 - DPF: {BD393C14-72AD-4790-A095-76522973D6B8} (CBreakshotControl Class) - http://messenger.zone.msn.com/binary/Bankshot.cab31267.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{17E72BFB-266F-451D-8604-64DC667F9B40}: NameServer = 192.168.0.1,0.0.0.0
O17 - HKLM\System\CCS\Services\Tcpip\..\{2D74B23E-3D8A-47AA-B3AC-9A478DB1F284}: NameServer = 192.168.0.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{387E5A68-1ECD-40F7-AF28-A4BDE9503AD0}: NameServer = 212.27.54.252,212.27.53.252
O17 - HKLM\System\CCS\Services\Tcpip\..\{4515F444-042D-4442-8806-71F6F5943916}: NameServer = 212.27.54.252,212.27.32.176
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~2\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~2\MSNMES~1\MSGRAP~1.DLL
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~2\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~2\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~2\Grisoft\AVGFRE~1\avgemc.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: CYGWIN sshd (sshd) - Unknown owner - C:\cygwin\bin\cygrunsrv.exe

(le windows media player ==>j 'ecoutais de la musique quand je l'ai fait :p)

Bien , en esperant avoir une reponse , je vous remercie d'avance et
vous souhaite ...bonne journée :)

Nikko ,

A Bientot.

Windows : SP2
AMD athlon 64 processor

34 réponses

Résumé de la discussion

Le sujet détaille un écran bleu et l'erreur Driver IRQL_NOT_LESS_OR_EQUAL, code Stop 0x000000d1, associée au fichier MRV0335xp.sys sur Windows XP SP2 et survenant même sans action particulière. Plusieurs conseils recommandent d'analyser le rapport HijackThis et de corriger les infections via un outil comme Bitdefender, et de supprimer les répertoires suspects old_C et old_D ainsi que les éléments détectés. D'autres préconisent des tests mémoire avec Memtest et un examen des composants matériels (RAM, carte graphique, ventilateur) et suggèrent aussi d'imposer un pare-feu comme Kerio pour prévenir les malwares. D'autre part, ewido a détecté et nettoyé plusieurs éléments malveillants dans les répertoires old_C et old_D, ainsi que des cookies et des téléchargeurs importuns, soulignant l'intérêt d'un balayage multiprotocole.

Bobot (l’IA à votre service)
  1. Salut ,

    J'ai deja regadé cette page mais ca ne m'aide pas tellement en realité ...
    (je n'ai pas essayé de " desactiver la combinaisons d'ecriture " mais ca ne me dit pas trop ...)

    Si jamais qql un pourrait voir ce qu'il cloche :)

    Merci beaucoup ,

    @++
    0
    1. Modérateur
      re

      il y a des lignes suspectes, mais bon ...

      télécharge et execute Ewido (gratuit) :

      ewido

      http://rubmic.monsite.wanadoo.fr/page6.html

      colle le rapport ici

      ++

      **En vérité, le chemin importe peu, la volonté d'arriver suffit à tout ( A.Camus ) **
      0
      1. Salut,

        Oo , ewido a decouvert des " trucs " que n'ont pas decouvert AVG and ad-aware :D.

        Voici le scan report:

        ---------------------------------------------------------
        ewido anti-spyware - Scan Report
        ---------------------------------------------------------

        + Created at: 11:49:49 30/10/2006

        + Scan result:

        C:\old_C\WINDOWS\system32\mbho.dll -> Adware.WurldMedia : Cleaned.
        C:\old_D\windows\Downloaded Program Files\kit.exe -> Dialer.Generic : Cleaned.
        C:\RECYCLER\S-1-5-21-790525478-1383384898-854245398-1008\Dc183.exe -> Downloader.Small : Cleaned.
        C:\old_D\CMDS\vncviewer.exe -> Not-A-Virus.RemoteAdmin.Win32.WinVNC.333 : Cleaned.
        :mozilla.118:C:\Documents and Settings\emmanuelle\Application Data\Mozilla\Firefox\Profiles\474bqfm0.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
        :mozilla.132:C:\Documents and Settings\anne\Application Data\Mozilla\Firefox\Profiles\6li2axme.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
        :mozilla.15:C:\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\eiyrlob0.nico\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
        :mozilla.160:C:\Documents and Settings\olivier\Application Data\Mozilla\Firefox\Profiles\bevf7mia.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
        :mozilla.161:C:\Documents and Settings\olivier\Application Data\Mozilla\Firefox\Profiles\bevf7mia.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
        :mozilla.162:C:\Documents and Settings\olivier\Application Data\Mozilla\Firefox\Profiles\bevf7mia.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
        :mozilla.18:C:\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\eiyrlob0.nico\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
        :mozilla.19:C:\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\eiyrlob0.nico\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
        :mozilla.20:C:\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\eiyrlob0.nico\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
        :mozilla.6:C:\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\ttzaislt.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
        :mozilla.7:C:\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\ttzaislt.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
        :mozilla.114:C:\Documents and Settings\olivier\Application Data\Mozilla\Firefox\Profiles\bevf7mia.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
        :mozilla.130:C:\Documents and Settings\anne\Application Data\Mozilla\Firefox\Profiles\6li2axme.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
        :mozilla.133:C:\Documents and Settings\anne\Application Data\Mozilla\Firefox\Profiles\6li2axme.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
        :mozilla.134:C:\Documents and Settings\anne\Application Data\Mozilla\Firefox\Profiles\6li2axme.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
        :mozilla.176:C:\Documents and Settings\clemence\Application Data\Mozilla\Firefox\Profiles\rqr6f5ua.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
        :mozilla.177:C:\Documents and Settings\clemence\Application Data\Mozilla\Firefox\Profiles\rqr6f5ua.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
        :mozilla.71:C:\Documents and Settings\emmanuelle\Application Data\Mozilla\Firefox\Profiles\474bqfm0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
        :mozilla.73:C:\Documents and Settings\emmanuelle\Application Data\Mozilla\Firefox\Profiles\474bqfm0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
        :mozilla.7:C:\old_C\Documents and Settings\nicolas\Application Data\Mozilla\Profiles\default\9fwdd6xz.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned.
        C:\Documents and Settings\nicolas\Cookies\nicolas@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
        C:\old_C\Documents and Settings\emmanuelle\Cookies\emmanuelle@112.2o7[2].txt -> TrackingCookie.2o7 : Cleaned.
        :mozilla.177:C:\Documents and Settings\olivier\Application Data\Mozilla\Firefox\Profiles\bevf7mia.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
        :mozilla.178:C:\Documents and Settings\olivier\Application Data\Mozilla\Firefox\Profiles\bevf7mia.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
        :mozilla.179:C:\Documents and Settings\olivier\Application Data\Mozilla\Firefox\Profiles\bevf7mia.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
        C:\Documents and Settings\nicolas\Cookies\nicolas@adbrite[1].txt -> TrackingCookie.Adbrite : Cleaned.
        :mozilla.10:C:\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\ttzaislt.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.
        :mozilla.11:C:\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\ttzaislt.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.
        :mozilla.136:C:\Documents and Settings\anne\Application Data\Mozilla\Firefox\Profiles\6li2axme.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.
        :mozilla.137:C:\Documents and Settings\anne\Application Data\Mozilla\Firefox\Profiles\6li2axme.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.
        :mozilla.19:C:\Documents and Settings\clemence\Application Data\Mozilla\Firefox\Profiles\rqr6f5ua.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.
        :mozilla.20:C:\Documents and Settings\clemence\Application Data\Mozilla\Firefox\Profiles\rqr6f5ua.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.
        :mozilla.22:C:\old_C\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\a33bylui.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.
        :mozilla.23:C:\old_C\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\a33bylui.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.
        :mozilla.28:C:\Documents and Settings\olivier\Application Data\Mozilla\Firefox\Profiles\bevf7mia.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.
        :mozilla.29:C:\Documents and Settings\olivier\Application Data\Mozilla\Firefox\Profiles\bevf7mia.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.
        :mozilla.33:C:\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\eiyrlob0.nico\cookies.txt -> TrackingCookie.Adtech : Cleaned.
        :mozilla.34:C:\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\eiyrlob0.nico\cookies.txt -> TrackingCookie.Adtech : Cleaned.
        :mozilla.6:C:\old_C\Documents and Settings\anne\Application Data\Mozilla\Firefox\Profiles\pschyvd1.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.
        :mozilla.7:C:\old_C\Documents and Settings\anne\Application Data\Mozilla\Firefox\Profiles\pschyvd1.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.
        :mozilla.145:C:\Documents and Settings\olivier\Application Data\Mozilla\Firefox\Profiles\bevf7mia.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
        :mozilla.146:C:\Documents and Settings\olivier\Application Data\Mozilla\Firefox\Profiles\bevf7mia.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
        :mozilla.17:C:\Documents and Settings\anne\Application Data\Mozilla\Firefox\Profiles\6li2axme.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
        :mozilla.45:C:\Documents and Settings\clemence\Application Data\Mozilla\Firefox\Profiles\rqr6f5ua.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
        :mozilla.46:C:\Documents and Settings\clemence\Application Data\Mozilla\Firefox\Profiles\rqr6f5ua.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
        :mozilla.47:C:\Documents and Settings\clemence\Application Data\Mozilla\Firefox\Profiles\rqr6f5ua.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
        :mozilla.52:C:\Documents and Settings\emmanuelle\Application Data\Mozilla\Firefox\Profiles\474bqfm0.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
        :mozilla.61:C:\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\eiyrlob0.nico\cookies.txt -> TrackingCookie.Advertising : Cleaned.
        :mozilla.62:C:\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\eiyrlob0.nico\cookies.txt -> TrackingCookie.Advertising : Cleaned.
        :mozilla.63:C:\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\eiyrlob0.nico\cookies.txt -> TrackingCookie.Advertising : Cleaned.
        :mozilla.155:C:\Documents and Settings\clemence\Application Data\Mozilla\Firefox\Profiles\rqr6f5ua.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned.
        :mozilla.48:C:\Documents and Settings\anne\Application Data\Mozilla\Firefox\Profiles\6li2axme.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned.
        :mozilla.53:C:\Documents and Settings\olivier\Application Data\Mozilla\Firefox\Profiles\bevf7mia.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned.
        :mozilla.82:C:\old_C\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\a33bylui.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned.
        :mozilla.90:C:\Documents and Settings\emmanuelle\Application Data\Mozilla\Firefox\Profiles\474bqfm0.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned.
        :mozilla.24:C:\Documents and Settings\olivier\Application Data\Mozilla\Firefox\Profiles\bevf7mia.default\cookies.txt -> TrackingCookie.Bluestreak : Cleaned.
        :mozilla.251:C:\Documents and Settings\anne\Application Data\Mozilla\Firefox\Profiles\6li2axme.default\cookies.txt -> TrackingCookie.Bluestreak : Cleaned.
        :mozilla.31:C:\old_C\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\a33bylui.default\cookies.txt -> TrackingCookie.Bluestreak : Cleaned.
        :mozilla.69:C:\Documents and Settings\emmanuelle\Application Data\Mozilla\Firefox\Profiles\474bqfm0.default\cookies.txt -> TrackingCookie.Bluestreak : Cleaned.
        :mozilla.69:C:\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\eiyrlob0.nico\cookies.txt -> TrackingCookie.Bluestreak : Cleaned.
        :mozilla.6:C:\Documents and Settings\anne\Application Data\Mozilla\Firefox\Profiles\6li2axme.default\cookies.txt -> TrackingCookie.Bluestreak : Cleaned.
        :mozilla.80:C:\Documents and Settings\emmanuelle\Application Data\Mozilla\Firefox\Profiles\474bqfm0.default\cookies.txt -> TrackingCookie.Bluestreak : Cleaned.
        :mozilla.91:C:\Documents and Settings\clemence\Application Data\Mozilla\Firefox\Profiles\rqr6f5ua.default\cookies.txt -> TrackingCookie.Bluestreak : Cleaned.
        C:\Documents and Settings\nicolas\Cookies\nicolas@bluestreak[2].txt -> TrackingCookie.Bluestreak : Cleaned.
        :mozilla.127:C:\Documents and Settings\anne\Application Data\Mozilla\Firefox\Profiles\6li2axme.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
        :mozilla.128:C:\Documents and Settings\anne\Application Data\Mozilla\Firefox\Profiles\6li2axme.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
        :mozilla.184:C:\Documents and Settings\olivier\Application Data\Mozilla\Firefox\Profiles\bevf7mia.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
        :mozilla.125:C:\old_C\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\a33bylui.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
        :mozilla.126:C:\old_C\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\a33bylui.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
        :mozilla.127:C:\old_C\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\a33bylui.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
        :mozilla.185:C:\Documents and Settings\olivier\Application Data\Mozilla\Firefox\Profiles\bevf7mia.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
        :mozilla.252:C:\Documents and Settings\olivier\Application Data\Mozilla\Firefox\Profiles\bevf7mia.default\cookies.txt -> TrackingCookie.Casinotropez : Cleaned.
        :mozilla.31:C:\old_C\Documents and Settings\nicolas\Application Data\Mozilla\Profiles\default\9fwdd6xz.slt\cookies.txt -> TrackingCookie.Centrport : Cleaned.
        :mozilla.189:C:\Documents and Settings\olivier\Application Data\Mozilla\Firefox\Profiles\bevf7mia.default\cookies.txt -> TrackingCookie.Com : Cleaned.
        C:\old_C\Documents and Settings\jloup\Cookies\jloup@com[1].txt -> TrackingCookie.Com : Cleaned.
        C:\old_D\windows\Profiles\olivier\Cookies\olivier@com[1].txt -> TrackingCookie.Com : Cleaned.
        C:\old_D\windows\Profiles\olivier\Cookies\olivier@com[3].txt -> TrackingCookie.Com : Cleaned.
        :mozilla.10:C:\old_C\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\a33bylui.default\cookies.txt -> TrackingCookie.Comclick : Cleaned.
        :mozilla.11:C:\old_C\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\a33bylui.default\cookies.txt -> TrackingCookie.Comclick : Cleaned.
        :mozilla.12:C:\old_C\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\a33bylui.default\cookies.txt -> TrackingCookie.Comclick : Cleaned.
        :mozilla.13:C:\old_C\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\a33bylui.default\cookies.txt -> TrackingCookie.Comclick : Cleaned.
        :mozilla.14:C:\old_C\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\a33bylui.default\cookies.txt -> TrackingCookie.Comclick : Cleaned.
        :mozilla.15:C:\old_C\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\a33bylui.default\cookies.txt -> TrackingCookie.Comclick : Cleaned.
        :mozilla.16:C:\old_C\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\a33bylui.default\cookies.txt -> TrackingCookie.Comclick : Cleaned.
        :mozilla.174:C:\Documents and Settings\olivier\Application Data\Mozilla\Firefox\Profiles\bevf7mia.default\cookies.txt -> TrackingCookie.Comclick : Cleaned.
        :mozilla.175:C:\Documents and Settings\olivier\Application Data\Mozilla\Firefox\Profiles\bevf7mia.default\cookies.txt -> TrackingCookie.Comclick : Cleaned.
        :mozilla.176:C:\Documents and Settings\olivier\Application Data\Mozilla\Firefox\Profiles\bevf7mia.default\cookies.txt -> TrackingCookie.Comclick : Cleaned.
        :mozilla.17:C:\old_C\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\a33bylui.default\cookies.txt -> TrackingCookie.Comclick : Cleaned.
        :mozilla.18:C:\old_C\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\a33bylui.default\cookies.txt -> TrackingCookie.Comclick : Cleaned.
        :mozilla.20:C:\old_C\Documents and Settings\nicolas\Application Data\Mozilla\Profiles\default\9fwdd6xz.slt\cookies.txt -> TrackingCookie.Comclick : Cleaned.
        :mozilla.21:C:\old_C\Documents and Settings\nicolas\Application Data\Mozilla\Profiles\default\9fwdd6xz.slt\cookies.txt -> TrackingCookie.Comclick : Cleaned.
        :mozilla.244:C:\Documents and Settings\anne\Application Data\Mozilla\Firefox\Profiles\6li2axme.default\cookies.txt -> TrackingCookie.Comclick : Cleaned.
        :mozilla.245:C:\Documents and Settings\anne\Application Data\Mozilla\Firefox\Profiles\6li2axme.default\cookies.txt -> TrackingCookie.Comclick : Cleaned.
        :mozilla.246:C:\Documents and Settings\anne\Application Data\Mozilla\Firefox\Profiles\6li2axme.default\cookies.txt -> TrackingCookie.Comclick : Cleaned.
        :mozilla.7:C:\old_C\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\a33bylui.default\cookies.txt -> TrackingCookie.Comclick : Cleaned.
        :mozilla.86:C:\Documents and Settings\clemence\Application Data\Mozilla\Firefox\Profiles\rqr6f5ua.default\cookies.txt -> TrackingCookie.Comclick : Cleaned.
        :mozilla.87:C:\Documents and Settings\clemence\Application Data\Mozilla\Firefox\Profiles\rqr6f5ua.default\cookies.txt -> TrackingCookie.Comclick : Cleaned.
        :mozilla.88:C:\Documents and Settings\clemence\Application Data\Mozilla\Firefox\Profiles\rqr6f5ua.default\cookies.txt -> TrackingCookie.Comclick : Cleaned.
        :mozilla.89:C:\Documents and Settings\clemence\Application Data\Mozilla\Firefox\Profiles\rqr6f5ua.default\cookies.txt -> TrackingCookie.Comclick : Cleaned.
        :mozilla.8:C:\old_C\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\a33bylui.default\cookies.txt -> TrackingCookie.Comclick : Cleaned.
        :mozilla.9:C:\old_C\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\a33bylui.default\cookies.txt -> TrackingCookie.Comclick : Cleaned.
        C:\old_D\windows\Cookies\anne@comtrack_comclick.txt -> TrackingCookie.Comclick : Cleaned.
        C:\old_D\windows\Profiles\anne\Cookies\anne@comtrack_comclick.txt -> TrackingCookie.Comclick : Cleaned.
        :mozilla.12:C:\Documents and Settings\anne\Application Data\Mozilla\Firefox\Profiles\6li2axme.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned.
        :mozilla.20:C:\Documents and Settings\emmanuelle\Application Data\Mozilla\Firefox\Profiles\474bqfm0.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned.
        :mozilla.24:C:\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\eiyrlob0.nico\cookies.txt -> TrackingCookie.Doubleclick : Cleaned.
        :mozilla.40:C:\Documents and Settings\clemence\Application Data\Mozilla\Firefox\Profiles\rqr6f5ua.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned.
        :mozilla.40:C:\Documents and Settings\olivier\Application Data\Mozilla\Firefox\Profiles\bevf7mia.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned.
        C:\old_D\windows\Profiles\olivier\Cookies\olivier@epilot[1].txt -> TrackingCookie.Epilot : Cleaned.
        C:\old_D\windows\Profiles\olivier\Cookies\olivier@www.epilot[1].txt -> TrackingCookie.Epilot : Cleaned.
        :mozilla.125:C:\Documents and Settings\olivier\Application Data\Mozilla\Firefox\Profiles\bevf7mia.default\cookies.txt -> TrackingCookie.Estat : Cleaned.
        :mozilla.146:C:\old_C\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\a33bylui.default\cookies.txt -> TrackingCookie.Estat : Cleaned.
        :mozilla.21:C:\Documents and Settings\clemence\Application Data\Mozilla\Firefox\Profiles\rqr6f5ua.default\cookies.txt -> TrackingCookie.Estat : Cleaned.
        :mozilla.27:C:\old_C\Documents and Settings\nicolas\Application Data\Mozilla\Profiles\default\9fwdd6xz.slt\cookies.txt -> TrackingCookie.Estat : Cleaned.
        :mozilla.35:C:\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\ttzaislt.default\cookies.txt -> TrackingCookie.Estat : Cleaned.
        :mozilla.43:C:\Documents and Settings\emmanuelle\Application Data\Mozilla\Firefox\Profiles\474bqfm0.default\cookies.txt -> TrackingCookie.Estat : Cleaned.
        :mozilla.49:C:\Documents and Settings\anne\Application Data\Mozilla\Firefox\Profiles\6li2axme.default\cookies.txt -> TrackingCookie.Estat : Cleaned.
        :mozilla.59:C:\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\eiyrlob0.nico\cookies.txt -> TrackingCookie.Estat : Cleaned.
        C:\old_D\windows\Cookies\anne@prof_estat.txt -> TrackingCookie.Estat : Cleaned.
        C:\old_D\windows\Cookies\clemence@estat.txt -> TrackingCookie.Estat : Cleaned.
        C:\old_D\windows\Cookies\emmanuelle@estat.txt -> TrackingCookie.Estat : Cleaned.
        C:\old_D\windows\Cookies\nicolas@estat.txt -> TrackingCookie.Estat : Cleaned.
        C:\old_D\windows\Cookies\olivier@estat.txt -> TrackingCookie.Estat : Cleaned.
        C:\old_D\windows\Profiles\anne\Cookies\anne@prof_estat.txt -> TrackingCookie.Estat : Cleaned.
        C:\old_D\windows\Profiles\clemence\Cookies\clemence@estat.txt -> TrackingCookie.Estat : Cleaned.
        C:\old_D\windows\Profiles\emmanuelle\Cookies\emmanuelle@estat.txt -> TrackingCookie.Estat : Cleaned.
        C:\old_D\windows\Profiles\nico\Cookies\nicolas@estat.txt -> TrackingCookie.Estat : Cleaned.
        C:\old_D\windows\Profiles\olivier\Cookies\olivier@estat.txt -> TrackingCookie.Estat : Cleaned.
        C:\old_D\windows\Cookies\clemence@euniverseads.txt -> TrackingCookie.Euniverseads : Cleaned.
        C:\old_D\windows\Profiles\clemence\Cookies\clemence@euniverseads.txt -> TrackingCookie.Euniverseads : Cleaned.
        :mozilla.30:C:\Documents and Settings\clemence\Application Data\Mozilla\Firefox\Profiles\rqr6f5ua.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
        :mozilla.129:C:\Documents and Settings\anne\Application Data\Mozilla\Firefox\Profiles\6li2axme.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
        :mozilla.144:C:\Documents and Settings\olivier\Application Data\Mozilla\Firefox\Profiles\bevf7mia.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
        :mozilla.74:C:\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\eiyrlob0.nico\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
        :mozilla.75:C:\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\eiyrlob0.nico\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
        :mozilla.196:C:\Documents and Settings\olivier\Application Data\Mozilla\Firefox\Profiles\bevf7mia.default\cookies.txt -> TrackingCookie.Gamershell : Cleaned.
        :mozilla.110:C:\old_C\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\a33bylui.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
        :mozilla.41:C:\Documents and Settings\clemence\Application Data\Mozilla\Firefox\Profiles\rqr6f5ua.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
        :mozilla.9:C:\Documents and Settings\clemence\Application Data\Mozilla\Firefox\Profiles\rqr6f5ua.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
        :mozilla.116:C:\Documents and Settings\clemence\Application Data\Mozilla\Firefox\Profiles\rqr6f5ua.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
        :mozilla.118:C:\Documents and Settings\clemence\Application Data\Mozilla\Firefox\Profiles\rqr6f5ua.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
        :mozilla.119:C:\Documents and Settings\clemence\Application Data\Mozilla\Firefox\Profiles\rqr6f5ua.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
        :mozilla.154:C:\Documents and Settings\olivier\Application Data\Mozilla\Firefox\Profiles\bevf7mia.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
        :mozilla.155:C:\Documents and Settings\olivier\Application Data\Mozilla\Firefox\Profiles\bevf7mia.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
        :mozilla.157:C:\Documents and Settings\olivier\Application Data\Mozilla\Firefox\Profiles\bevf7mia.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
        :mozilla.166:C:\Documents and Settings\anne\Application Data\Mozilla\Firefox\Profiles\6li2axme.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
        :mozilla.167:C:\Documents and Settings\anne\Application Data\Mozilla\Firefox\Profiles\6li2axme.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
        :mozilla.176:C:\Documents and Settings\anne\Application Data\Mozilla\Firefox\Profiles\6li2axme.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
        C:\old_D\windows\Profiles\nico\Cookies\nicolas@ehg-dig.hitbox[2].txt -> TrackingCookie.Hitbox : Cleaned.
        C:\old_D\windows\Cookies\anne@hyperbanner.txt -> TrackingCookie.Hyperbanner : Cleaned.
        C:\old_D\windows\Profiles\anne\Cookies\anne@hyperbanner.txt -> TrackingCookie.Hyperbanner : Cleaned.
        C:\old_D\windows\Profiles\clemence\Cookies\clemence@hyperbanner[1].txt -> TrackingCookie.Hyperbanner : Cleaned.
        C:\old_D\windows\Profiles\nico\Cookies\nicolas@hyperbanner[1].txt -> TrackingCookie.Hyperbanner : Cleaned.
        C:\old_D\windows\Profiles\anne\Cookies\anne@ads_link4ads.txt -> TrackingCookie.Link4ads : Cleaned.
        C:\old_D\windows\Profiles\clemence\Cookies\clemence@ads.link4ads[1].txt -> TrackingCookie.Link4ads : Cleaned.
        C:\old_D\windows\Profiles\jloup\Cookies\jloup@ads.link4ads[1].txt -> TrackingCookie.Link4ads : Cleaned.
        C:\old_D\windows\Profiles\nico\Cookies\nicolas@ads.link4ads[1].txt -> TrackingCookie.Link4ads : Cleaned.
        C:\old_D\windows\Profiles\nico\Cookies\nicolas@ads.link4ads[2].txt -> TrackingCookie.Link4ads : Cleaned.
        C:\old_D\windows\Profiles\nico\Cookies\nicolas@ads.link4ads[4].txt -> TrackingCookie.Link4ads : Cleaned.
        C:\old_D\windows\Profiles\olivier\Cookies\olivier@ads.link4ads[1].txt -> TrackingCookie.Link4ads : Cleaned.
        C:\old_D\windows\Profiles\olivier\Cookies\olivier@ads_link4ads.txt -> TrackingCookie.Link4ads : Cleaned.
        :mozilla.98:C:\Documents and Settings\anne\Application Data\Mozilla\Firefox\Profiles\6li2axme.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
        :mozilla.99:C:\Documents and Settings\anne\Application Data\Mozilla\Firefox\Profiles\6li2axme.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
        :mozilla.109:C:\Documents and Settings\emmanuelle\Application Data\Mozilla\Firefox\Profiles\474bqfm0.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned.
        :mozilla.203:C:\Documents and Settings\clemence\Application Data\Mozilla\Firefox\Profiles\rqr6f5ua.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned.
        :mozilla.35:C:\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\eiyrlob0.nico\cookies.txt -> TrackingCookie.Mediaplex : Cleaned.
        C:\old_D\windows\Profiles\anne\Cookies\anne@php.offshoreclicks[2].txt -> TrackingCookie.Offshoreclicks : Cleaned.
        C:\old_D\windows\Profiles\olivier\Cookies\olivier@php.offshoreclicks[2].txt -> TrackingCookie.Offshoreclicks : Cleaned.
        :mozilla.258:C:\Documents and Settings\anne\Application Data\Mozilla\Firefox\Profiles\6li2axme.default\cookies.txt -> TrackingCookie.Onestat : Cleaned.
        :mozilla.259:C:\Documents and Settings\anne\Application Data\Mozilla\Firefox\Profiles\6li2axme.default\cookies.txt -> TrackingCookie.Onestat : Cleaned.
        :mozilla.260:C:\Documents and Settings\anne\Application Data\Mozilla\Firefox\Profiles\6li2axme.default\cookies.txt -> TrackingCookie.Onestat : Cleaned.
        :mozilla.82:C:\Documents and Settings\emmanuelle\Application Data\Mozilla\Firefox\Profiles\474bqfm0.default\cookies.txt -> TrackingCookie.Onestat : Cleaned.
        :mozilla.83:C:\Documents and Settings\emmanuelle\Application Data\Mozilla\Firefox\Profiles\474bqfm0.default\cookies.txt -> TrackingCookie.Onestat : Cleaned.
        :mozilla.100:C:\Documents and Settings\anne\Application Data\Mozilla\Firefox\Profiles\6li2axme.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
        :mozilla.101:C:\Documents and Settings\anne\Application Data\Mozilla\Firefox\Profiles\6li2axme.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
        :mozilla.41:C:\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\eiyrlob0.nico\cookies.txt -> TrackingCookie.Overture : Cleaned.
        :mozilla.42:C:\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\eiyrlob0.nico\cookies.txt -> TrackingCookie.Overture : Cleaned.
        :mozilla.54:C:\Documents and Settings\olivier\Application Data\Mozilla\Firefox\Profiles\bevf7mia.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
        :mozilla.180:C:\Documents and Settings\olivier\Application Data\Mozilla\Firefox\Profiles\bevf7mia.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
        :mozilla.181:C:\Documents and Settings\olivier\Application Data\Mozilla\Firefox\Profiles\bevf7mia.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
        :mozilla.182:C:\Documents and Settings\olivier\Application Data\Mozilla\Firefox\Profiles\bevf7mia.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
        :mozilla.183:C:\Documents and Settings\olivier\Application Data\Mozilla\Firefox\Profiles\bevf7mia.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
        C:\old_D\windows\Profiles\clemence\Cookies\clemence@www.popuptraffic[1].txt -> TrackingCookie.Popuptraffic : Cleaned.
        C:\old_D\windows\Profiles\olivier\Cookies\olivier@aphrodite.porntrack[1].txt -> TrackingCookie.Porntrack : Cleaned.
        C:\old_D\windows\Cookies\anne@preferences.txt -> TrackingCookie.Preferences : Cleaned.
        C:\old_D\windows\Cookies\jloup@preferences.txt -> TrackingCookie.Preferences : Cleaned.
        C:\old_D\windows\Cookies\olivier@preferences.txt -> TrackingCookie.Preferences : Cleaned.
        C:\old_D\windows\Profiles\anne\Cookies\anne@gm.preferences[1].txt -> TrackingCookie.Preferences : Cleaned.
        C:\old_D\windows\Profiles\anne\Cookies\anne@preferences.txt -> TrackingCookie.Preferences : Cleaned.
        C:\old_D\windows\Profiles\clemence\Cookies\clemence@preferences[1].txt -> TrackingCookie.Preferences : Cleaned.
        C:\old_D\windows\Profiles\jloup\Cookies\jloup@preferences.txt -> TrackingCookie.Preferences : Cleaned.
        C:\old_D\windows\Profiles\nico\Cookies\nicolas@preferences[1].txt -> TrackingCookie.Preferences : Cleaned.
        C:\old_D\windows\Profiles\nicolas\Cookies\jloup@preferences.txt -> TrackingCookie.Preferences : Cleaned.
        C:\old_D\windows\Profiles\olivier\Cookies\olivier@preferences(1).txt -> TrackingCookie.Preferences : Cleaned.
        C:\old_D\windows\Profiles\olivier\Cookies\olivier@preferences[1].txt -> TrackingCookie.Preferences : Cleaned.
        :mozilla.46:C:\Documents and Settings\olivier\Application Data\Mozilla\Firefox\Profiles\bevf7mia.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
        :mozilla.48:C:\Documents and Settings\olivier\Application Data\Mozilla\Firefox\Profiles\bevf7mia.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
        C:\old_D\windows\Cookies\clemence@realmedia.txt -> TrackingCookie.Realmedia : Cleaned.
        C:\old_D\windows\Cookies\olivier@realmedia.txt -> TrackingCookie.Realmedia : Cleaned.
        C:\old_D\windows\Profiles\clemence\Cookies\clemence@realmedia.txt -> TrackingCookie.Realmedia : Cleaned.
        C:\old_D\windows\Profiles\olivier\Cookies\olivier@realmedia.txt -> TrackingCookie.Realmedia : Cleaned.
        C:\Documents and Settings\olivier\Cookies\olivier@stats1.reliablestats[2].txt -> TrackingCookie.Reliablestats : Cleaned.
        :mozilla.206:C:\Documents and Settings\anne\Application Data\Mozilla\Firefox\Profiles\6li2axme.default\cookies.txt -> TrackingCookie.Revenue : Cleaned.
        :mozilla.59:C:\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\ttzaislt.default\cookies.txt -> TrackingCookie.Revenue : Cleaned.
        :mozilla.19:C:\Documents and Settings\anne\Application Data\Mozilla\Firefox\Profiles\6li2axme.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
        :mozilla.20:C:\Documents and Settings\anne\Application Data\Mozilla\Firefox\Profiles\6li2axme.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
        :mozilla.21:C:\Documents and Settings\anne\Application Data\Mozilla\Firefox\Profiles\6li2axme.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
        :mozilla.22:C:\Documents and Settings\anne\Application Data\Mozilla\Firefox\Profiles\6li2axme.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
        :mozilla.23:C:\Documents and Settings\anne\Application Data\Mozilla\Firefox\Profiles\6li2axme.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
        :mozilla.23:C:\Documents and Settings\emmanuelle\Application Data\Mozilla\Firefox\Profiles\474bqfm0.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
        :mozilla.24:C:\Documents and Settings\anne\Application Data\Mozilla\Firefox\Profiles\6li2axme.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
        :mozilla.24:C:\Documents and Settings\emmanuelle\Application Data\Mozilla\Firefox\Profiles\474bqfm0.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
        :mozilla.25:C:\Documents and Settings\anne\Application Data\Mozilla\Firefox\Profiles\6li2axme.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
        :mozilla.26:C:\Documents and Settings\emmanuelle\Application Data\Mozilla\Firefox\Profiles\474bqfm0.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
        :mozilla.27:C:\Documents and Settings\emmanuelle\Application Data\Mozilla\Firefox\Profiles\474bqfm0.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
        :mozilla.41:C:\Documents and Settings\olivier\Application Data\Mozilla\Firefox\Profiles\bevf7mia.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
        :mozilla.42:C:\Documents and Settings\olivier\Application Data\Mozilla\Firefox\Profiles\bevf7mia.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
        :mozilla.43:C:\Documents and Settings\olivier\Application Data\Mozilla\Firefox\Profiles\bevf7mia.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
        :mozilla.44:C:\Documents and Settings\olivier\Application Data\Mozilla\Firefox\Profiles\bevf7mia.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
        :mozilla.45:C:\Documents and Settings\olivier\Application Data\Mozilla\Firefox\Profiles\bevf7mia.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
        :mozilla.47:C:\Documents and Settings\olivier\Application Data\Mozilla\Firefox\Profiles\bevf7mia.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
        :mozilla.62:C:\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\ttzaislt.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
        :mozilla.63:C:\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\ttzaislt.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
        :mozilla.64:C:\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\ttzaislt.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
        :mozilla.65:C:\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\ttzaislt.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
        :mozilla.66:C:\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\ttzaislt.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
        :mozilla.95:C:\Documents and Settings\clemence\Application Data\Mozilla\Firefox\Profiles\rqr6f5ua.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
        :mozilla.96:C:\Documents and Settings\clemence\Application Data\Mozilla\Firefox\Profiles\rqr6f5ua.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
        :mozilla.97:C:\Documents and Settings\clemence\Application Data\Mozilla\Firefox\Profiles\rqr6f5ua.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
        :mozilla.98:C:\Documents and Settings\clemence\Application Data\Mozilla\Firefox\Profiles\rqr6f5ua.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
        :mozilla.165:C:\Documents and Settings\clemence\Application Data\Mozilla\Firefox\Profiles\rqr6f5ua.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.
        :mozilla.166:C:\Documents and Settings\clemence\Application Data\Mozilla\Firefox\Profiles\rqr6f5ua.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.
        :mozilla.178:C:\Documents and Settings\clemence\Application Data\Mozilla\Firefox\Profiles\rqr6f5ua.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.
        :mozilla.249:C:\Documents and Settings\anne\Application Data\Mozilla\Firefox\Profiles\6li2axme.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.
        :mozilla.12:C:\Documents and Settings\emmanuelle\Application Data\Mozilla\Firefox\Profiles\474bqfm0.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
        :mozilla.139:C:\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\ttzaislt.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
        :mozilla.13:C:\Documents and Settings\emmanuelle\Application Data\Mozilla\Firefox\Profiles\474bqfm0.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
        :mozilla.140:C:\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\ttzaislt.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
        :mozilla.141:C:\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\ttzaislt.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
        :mozilla.14:C:\Documents and Settings\emmanuelle\Application Data\Mozilla\Firefox\Profiles\474bqfm0.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
        :mozilla.15:C:\Documents and Settings\clemence\Application Data\Mozilla\Firefox\Profiles\rqr6f5ua.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
        :mozilla.16:C:\Documents and Settings\clemence\Application Data\Mozilla\Firefox\Profiles\rqr6f5ua.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
        :mozilla.17:C:\Documents and Settings\clemence\Application Data\Mozilla\Firefox\Profiles\rqr6f5ua.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
        :mozilla.18:C:\Documents and Settings\clemence\Application Data\Mozilla\Firefox\Profiles\rqr6f5ua.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
        :mozilla.18:C:\Documents and Settings\olivier\Application Data\Mozilla\Firefox\Profiles\bevf7mia.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
        :mozilla.19:C:\Documents and Settings\olivier\Application Data\Mozilla\Firefox\Profiles\bevf7mia.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
        :mozilla.20:C:\Documents and Settings\olivier\Application Data\Mozilla\Firefox\Profiles\bevf7mia.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
        :mozilla.21:C:\Documents and Settings\olivier\Application Data\Mozilla\Firefox\Profiles\bevf7mia.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
        :mozilla.31:C:\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\eiyrlob0.nico\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
        :mozilla.36:C:\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\eiyrlob0.nico\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
        :mozilla.37:C:\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\eiyrlob0.nico\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
        :mozilla.59:C:\old_C\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\a33bylui.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
        :mozilla.60:C:\old_C\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\a33bylui.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
        :mozilla.61:C:\old_C\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\a33bylui.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
        :mozilla.95:C:\Documents and Settings\anne\Application Data\Mozilla\Firefox\Profiles\6li2axme.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
        :mozilla.96:C:\Documents and Settings\anne\Application Data\Mozilla\Firefox\Profiles\6li2axme.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
        :mozilla.97:C:\Documents and Settings\anne\Application Data\Mozilla\Firefox\Profiles\6li2axme.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
        C:\Documents and Settings\nicolas\Cookies\nicolas@www.smartadserver[1].txt -> TrackingCookie.Smartadserver : Cleaned.
        C:\Documents and Settings\olivier\Cookies\olivier@starware[2].txt -> TrackingCookie.Starware : Cleaned.
        :mozilla.148:C:\Documents and Settings\olivier\Application Data\Mozilla\Firefox\Profiles\bevf7mia.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
        :mozilla.63:C:\Documents and Settings\anne\Application Data\Mozilla\Firefox\Profiles\6li2axme.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
        :mozilla.64:C:\Documents and Settings\anne\Application Data\Mozilla\Firefox\Profiles\6li2axme.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
        :mozilla.65:C:\Documents and Settings\anne\Application Data\Mozilla\Firefox\Profiles\6li2axme.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
        :mozilla.66:C:\Documents and Settings\anne\Application Data\Mozilla\Firefox\Profiles\6li2axme.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
        :mozilla.235:C:\Documents and Settings\olivier\Application Data\Mozilla\Firefox\Profiles\bevf7mia.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
        :mozilla.236:C:\Documents and Settings\olivier\Application Data\Mozilla\Firefox\Profiles\bevf7mia.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
        :mozilla.107:C:\Documents and Settings\emmanuelle\Application Data\Mozilla\Firefox\Profiles\474bqfm0.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
        :mozilla.108:C:\Documents and Settings\emmanuelle\Application Data\Mozilla\Firefox\Profiles\474bqfm0.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
        :mozilla.123:C:\Documents and Settings\anne\Application Data\Mozilla\Firefox\Profiles\6li2axme.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
        :mozilla.124:C:\Documents and Settings\anne\Application Data\Mozilla\Firefox\Profiles\6li2axme.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
        :mozilla.125:C:\Documents and Settings\anne\Application Data\Mozilla\Firefox\Profiles\6li2axme.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
        :mozilla.126:C:\Documents and Settings\anne\Application Data\Mozilla\Firefox\Profiles\6li2axme.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
        :mozilla.21:C:\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\eiyrlob0.nico\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
        :mozilla.22:C:\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\eiyrlob0.nico\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
        :mozilla.51:C:\old_C\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\a33bylui.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
        :mozilla.70:C:\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\ttzaislt.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
        :mozilla.71:C:\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\ttzaislt.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
        :mozilla.72:C:\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\ttzaislt.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
        :mozilla.73:C:\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\ttzaislt.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
        :mozilla.85:C:\Documents and Settings\clemence\Application Data\Mozilla\Firefox\Profiles\rqr6f5ua.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
        :mozilla.86:C:\Documents and Settings\olivier\Application Data\Mozilla\Firefox\Profiles\bevf7mia.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
        :mozilla.87:C:\Documents and Settings\olivier\Application Data\Mozilla\Firefox\Profiles\bevf7mia.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
        :mozilla.239:C:\Documents and Settings\olivier\Application Data\Mozilla\Firefox\Profiles\bevf7mia.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned.
        :mozilla.73:C:\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\eiyrlob0.nico\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned.
        :mozilla.75:C:\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\ttzaislt.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned.
        :mozilla.76:C:\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\eiyrlob0.nico\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned.
        :mozilla.126:C:\Documents and Settings\emmanuelle\Application Data\Mozilla\Firefox\Profiles\474bqfm0.default\cookies.txt -> TrackingCookie.Valueclick : Cleaned.
        :mozilla.24:C:\old_C\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\a33bylui.default\cookies.txt -> TrackingCookie.Valueclick : Cleaned.
        :mozilla.26:C:\old_C\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\a33bylui.default\cookies.txt -> TrackingCookie.Valueclick : Cleaned.
        :mozilla.79:C:\Documents and Settings\clemence\Application Data\Mozilla\Firefox\Profiles\rqr6f5ua.default\cookies.txt -> TrackingCookie.Valueclick : Cleaned.
        :mozilla.80:C:\Documents and Settings\clemence\Application Data\Mozilla\Firefox\Profiles\rqr6f5ua.default\cookies.txt -> TrackingCookie.Valueclick : Cleaned.
        :mozilla.121:C:\Documents and Settings\clemence\Application Data\Mozilla\Firefox\Profiles\rqr6f5ua.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.
        :mozilla.122:C:\Documents and Settings\clemence\Application Data\Mozilla\Firefox\Profiles\rqr6f5ua.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.
        :mozilla.32:C:\Documents and Settings\olivier\Application Data\Mozilla\Firefox\Profiles\bevf7mia.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.
        :mozilla.33:C:\Documents and Settings\olivier\Application Data\Mozilla\Firefox\Profiles\bevf7mia.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.
        :mozilla.34:C:\Documents and Settings\olivier\Application Data\Mozilla\Firefox\Profiles\bevf7mia.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.
        :mozilla.52:C:\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\eiyrlob0.nico\cookies.txt -> TrackingCookie.Weborama : Cleaned.
        :mozilla.52:C:\old_C\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\a33bylui.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.
        :mozilla.53:C:\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\eiyrlob0.nico\cookies.txt -> TrackingCookie.Weborama : Cleaned.
        :mozilla.7:C:\Documents and Settings\anne\Application Data\Mozilla\Firefox\Profiles\6li2axme.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.
        :mozilla.83:C:\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\ttzaislt.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.
        :mozilla.8:C:\Documents and Settings\anne\Application Data\Mozilla\Firefox\Profiles\6li2axme.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.
        :mozilla.91:C:\Documents and Settings\emmanuelle\Application Data\Mozilla\Firefox\Profiles\474bqfm0.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.
        :mozilla.92:C:\Documents and Settings\emmanuelle\Application Data\Mozilla\Firefox\Profiles\474bqfm0.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.
        :mozilla.9:C:\Documents and Settings\anne\Application Data\Mozilla\Firefox\Profiles\6li2axme.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.
        C:\Documents and Settings\nicolas\Cookies\nicolas@weborama[2].txt -> TrackingCookie.Weborama : Cleaned.
        C:\Documents and Settings\olivier\Cookies\olivier@weborama[2].txt -> TrackingCookie.Weborama : Cleaned.
        :mozilla.116:C:\Documents and Settings\emmanuelle\Application Data\Mozilla\Firefox\Profiles\474bqfm0.default\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned.
        :mozilla.132:C:\Documents and Settings\clemence\Application Data\Mozilla\Firefox\Profiles\rqr6f5ua.default\cookies.txt -> TrackingCookie.Yadro : Cleaned.
        C:\old_C\Documents and Settings\clemence\Cookies\clemence@yadro[2].txt -> TrackingCookie.Yadro : Cleaned.
        :mozilla.72:C:\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\eiyrlob0.nico\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
        :mozilla.91:C:\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\ttzaislt.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
        :mozilla.92:C:\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\ttzaislt.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
        :mozilla.93:C:\Documents and Settings\nicolas\Application Data\Mozilla\Firefox\Profiles\ttzaislt.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
        C:\Documents and Settings\nicolas\Cookies\nicolas@ad.yieldmanager[1].txt -> TrackingCookie.Yieldmanager : Cleaned.
        C:\Documents and Settings\olivier\Cookies\olivier@ad.yieldmanager[1].txt -> TrackingCookie.Yieldmanager : Cleaned.
        :mozilla.111:C:\Documents and Settings\clemence\Application Data\Mozilla\Firefox\Profiles\rqr6f5ua.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
        :mozilla.113:C:\Documents and Settings\clemence\Application Data\Mozilla\Firefox\Profiles\rqr6f5ua.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
        C:\Program Files\EA GAMES\Command & Conquer Generals Zero Hour\nocd_patch_crack.exe -> Trojan.BHO.b : Cleaned.
        C:\Program Files\eMule\Incoming\C&C Generals - Zero Hour NoCD Patch - Crack - Serial.zip/nocd_patch_crack.exe -> Trojan.BHO.b : Cleaned.
        C:\WINDOWS\system32\__delete_on_reboot__d_s_l_q_u_o_u_i_._d_l_l_ -> Trojan.BHO.b : Cleaned.

        ::Report end

        Mais la plupart c'est des cookies ... Il y avait quand meme un trojan !

        bon en esperant que ca peut t'aider , Merci beaucoup !!

        @++
        0
        1. Contributeur
          slt,

          remet un log Hijack .
          0
          1. Salut ,

            Ok et merci encore pour votre aide !!!

            Logfile of HijackThis v1.99.1
            Scan saved at 13:00:01, on 30/10/2006
            Platform: Windows XP SP2 (WinNT 5.01.2600)
            MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

            Running processes:
            C:\WINDOWS\System32\smss.exe
            C:\WINDOWS\system32\winlogon.exe
            C:\WINDOWS\system32\services.exe
            C:\WINDOWS\system32\lsass.exe
            C:\WINDOWS\system32\svchost.exe
            C:\WINDOWS\System32\svchost.exe
            C:\WINDOWS\system32\spoolsv.exe
            C:\PROGRA~2\Grisoft\AVGFRE~1\avgamsvr.exe
            C:\PROGRA~2\Grisoft\AVGFRE~1\avgupsvc.exe
            C:\PROGRA~2\Grisoft\AVGFRE~1\avgemc.exe
            C:\cygwin\bin\cygrunsrv.exe
            C:\WINDOWS\System32\svchost.exe
            C:\cygwin\usr\sbin\sshd.exe
            C:\WINDOWS\Explorer.EXE
            C:\PROGRA~2\Grisoft\AVGFRE~1\avgcc.exe
            C:\Program Files\MSN Messenger\msnmsgr.exe
            C:\Program Files\Messenger\msmsgs.exe
            C:\Program Files\TuneUp Utilities 2006\MemOptimizer.exe
            C:\WINDOWS\system32\svchost.exe
            C:\Program Files\Mozilla Firefox\firefox.exe
            C:\Program Files\ewido anti-spyware 4.0\guard.exe
            C:\Program Files\ewido anti-spyware 4.0\ewido.exe
            C:\Program Files\Webteh\BSplayer\bsplayer.exe
            C:\WINDOWS\system32\divxsm.exe
            C:\Program Files\Hijackthis\HijackThis.exe

            R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.tfmwoicdsvrfnfowcofdfo.net/Xuv_vafgXVj2BEXsM_kVtNGdi0g61yroAacC_BgysikXxKQciHn9nCIxWZlGanXp.htm
            R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
            O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
            O2 - BHO: (no name) - {0B13A083-1EB1-BF51-94B8-5E0943C5FABC} - (no file)
            O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
            O2 - BHO: (no name) - {BE0F692F-28CB-4677-9BE1-C09F41F16BC2} - C:\WINDOWS\system32\dslquoui.dll (file missing)
            O3 - Toolbar: (no name) - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - (no file)
            O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~2\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
            O4 - HKLM\..\Run: [!ewido] "C:\Program Files\ewido anti-spyware 4.0\ewido.exe" /minimized
            O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
            O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
            O4 - HKCU\..\Run: [googletalk] "C:\Program Files\Google\Google Talk\googletalk.exe" /autostart
            O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
            O4 - HKCU\..\Run: [TuneUp MemOptimizer] "C:\Program Files\TuneUp Utilities 2006\MemOptimizer.exe" autostart
            O8 - Extra context menu item: &Clean Traces - C:\Program Files\DAP\Privacy Package\dapcleanerie.htm
            O8 - Extra context menu item: &Download with &DAP - C:\Program Files\DAP\dapextie.htm
            O8 - Extra context menu item: Download &all with DAP - C:\Program Files\DAP\dapextie2.htm
            O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
            O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
            O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
            O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
            O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
            O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
            O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab31267.cab
            O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.com/v5consumer/V5Controls/en/x86/client/wuweb_site.cab?1105912526542
            O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
            O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab32846.cab
            O16 - DPF: {BD393C14-72AD-4790-A095-76522973D6B8} (CBreakshotControl Class) - http://messenger.zone.msn.com/binary/Bankshot.cab31267.cab
            O17 - HKLM\System\CCS\Services\Tcpip\..\{17E72BFB-266F-451D-8604-64DC667F9B40}: NameServer = 192.168.0.1,0.0.0.0
            O17 - HKLM\System\CCS\Services\Tcpip\..\{2D74B23E-3D8A-47AA-B3AC-9A478DB1F284}: NameServer = 192.168.0.1
            O17 - HKLM\System\CCS\Services\Tcpip\..\{387E5A68-1ECD-40F7-AF28-A4BDE9503AD0}: NameServer = 212.27.54.252,212.27.53.252
            O17 - HKLM\System\CCS\Services\Tcpip\..\{4515F444-042D-4442-8806-71F6F5943916}: NameServer = 212.27.54.252,212.27.32.176
            O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~2\MSNMES~1\MSGRAP~1.DLL
            O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~2\MSNMES~1\MSGRAP~1.DLL
            O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
            O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
            O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe
            O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
            O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~2\Grisoft\AVGFRE~1\avgamsvr.exe
            O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~2\Grisoft\AVGFRE~1\avgupsvc.exe
            O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~2\Grisoft\AVGFRE~1\avgemc.exe
            O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
            O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
            O23 - Service: CYGWIN sshd (sshd) - Unknown owner - C:\cygwin\bin\cygrunsrv.exe
            0
            1. re,
              euhhh j'ai fait le scan de hijack alors que j"etais sur msn + bsplayer etc..
              juste pour vous dire que je sais que ces programmes tournent :p (et pas a mon insu )

              ++
              0
              1. Contributeur
                Relance Hijack , choisi « do a scan only » ou « scanner seulement » coches ces lignes :

                O2 - BHO: (no name) - {0B13A083-1EB1-BF51-94B8-5E0943C5FABC} - (no file)
                O2 - BHO: (no name) - {BE0F692F-28CB-4677-9BE1-C09F41F16BC2} - C:\WINDOWS\system32\dslquoui.dll (file missing)

                O17 - HKLM\System\CCS\Services\Tcpip\..\{17E72BFB-266F-451D-8604-64DC667F9B40}: NameServer = 192.168.0.1,0.0.0.0
                O17 - HKLM\System\CCS\Services\Tcpip\..\{2D74B23E-3D8A-47AA-B3AC-9A478DB1F284}: NameServer = 192.168.0.1


                Ensuite cliques sur « fix checked » ou « fixer objet ».

                ================================

                recherche et supprime ce fichiers en gras ( si présent) :

                C:\WINDOWS\system32\dslquoui.dll

                vide ta poubelle , redémarre ton PC et dis moi ou en sont tes probs.

                a+

                0
                1. Salut,

                  J'ai tout fait par contre la DLL a du etre supprimé par hijack car je ne l'ai pas trouvé.
                  Je pense que ca doit etre bon parceque j'ai deja vu cette DLL qql part^^ (ca devait etre dans un scan ...:s)
                  En tout cas pour l'instant ca marche .

                  Merci beaucoup beaucoup et continuez comme ca , c'est vraiment bien ce que vous faites :)

                  @++
                  0
                  1. Contributeur
                    Ok :)

                    Pour vérifier, scanne ton PC avec cet antivirus en ligne (sous IE et accepte l’activX) :
                    http://www.bitdefender.fr/bd/site/search.php#
                    Clique sur « scan on line » suis les instructions.
                    Et colle le rapport

                    et remet nous un rapport Hijack a la suite.

                    0
                    1. Salut ,

                      OK je suis en train de le faire (ca dure 3h ...)

                      Merci pour tout !

                      @++

                      PS : je post des que c'est fini !
                      0
                      1. Contributeur
                        Ok quelqufois ca marque 3h voir plus mais il durera - que ça je pense... :)

                        Ok poste le des qu'il est fini si je ne suis plus branché je le regarderai + tard.

                        a+
                        0
                        1. Salut ,
                          c'est fini , mais le rapport est en html donc ... je t'ai fait un coper/coller mais le rapport est dans plusieurs tableau (et bon l'enlever a la main .. c'est long :p). Donc c'est un peu mis n'importe comment ...

                          BitDefender Online Scanner

                          Rapport d'analyse généré à: Mon, Oct 30, 2006 - 21:08:44

                          Voie d'analyse: A:\;C:\;D:\;E:\;

                          Statistiques

                          Temps

                          03:30:23

                          Fichiers

                          649741

                          Directoires

                          14645

                          Secteurs de boot

                          9

                          Archives

                          35464

                          Paquets programmes

                          45255

                          Résultats

                          Virus identifiés

                          11

                          Fichiers infectés

                          24

                          Fichiers suspects

                          0

                          Avertissements

                          0

                          Désinfectés

                          6

                          Fichiers effacés

                          18

                          Info sur les moteurs

                          Définition virus

                          479377

                          Version des moteurs

                          AVCORE v1.0 (build 2310) (i386) (Apr 17 2006 16:24:38)

                          Analyse des plugins

                          13

                          Archive des plugins

                          38

                          Unpack des plugins

                          6

                          E-mail plugins

                          6

                          Système plugins

                          1

                          Paramètres d'analyse

                          Première action

                          Désinfecté

                          Seconde Action

                          Supprimé

                          Heuristique

                          Oui

                          Acceptez les avertissements

                          Oui

                          Extensions analysées

                          *;

                          Excludez les extensions

                          Analyse d'emails

                          Oui

                          Analyse des Archives

                          Oui

                          Analyser paquets programmes

                          Oui

                          Analyse des fichiers

                          Oui

                          Analyse de boot

                          Oui

                          Fichier analysé

                          Statut

                          C:\Documents and Settings\anne\Local Settings\Application Data\Identities\{4CFB9C94-6456-4AAE-9C9B-61206FB66633}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 821)=>[Subject: CV olivier][Date: Sun, 6 Jun 2004 11:25:34 +0200]=>(MIME part)=>(application)=>(Embedded DocFile g)

                          Infecté par: W97M.Thus.I

                          C:\Documents and Settings\anne\Local Settings\Application Data\Identities\{4CFB9C94-6456-4AAE-9C9B-61206FB66633}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 821)=>[Subject: CV olivier][Date: Sun, 6 Jun 2004 11:25:34 +0200]=>(MIME part)=>(application)=>(Embedded DocFile g)

                          Désinfecté

                          C:\Documents and Settings\anne\Local Settings\Application Data\Identities\{4CFB9C94-6456-4AAE-9C9B-61206FB66633}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 821)=>[Subject: CV olivier][Date: Sun, 6 Jun 2004 11:25:34 +0200]=>(MIME part)=>(application)

                          Echec de la mise à jour

                          C:\Documents and Settings\anne\Local Settings\Application Data\Identities\{4CFB9C94-6456-4AAE-9C9B-61206FB66633}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 821)=>[Subject: CV olivier][Date: Sun, 6 Jun 2004 11:25:34 +0200]=>(MIME part)=>(application)=>(MacBinary III data fork)

                          Infecté par: W97M.Thus.I

                          C:\Documents and Settings\anne\Local Settings\Application Data\Identities\{4CFB9C94-6456-4AAE-9C9B-61206FB66633}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 821)=>[Subject: CV olivier][Date: Sun, 6 Jun 2004 11:25:34 +0200]=>(MIME part)=>(application)=>(MacBinary III data fork)

                          Désinfecté

                          C:\Documents and Settings\anne\Local Settings\Application Data\Identities\{4CFB9C94-6456-4AAE-9C9B-61206FB66633}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 821)=>[Subject: CV olivier][Date: Sun, 6 Jun 2004 11:25:34 +0200]=>(MIME part)=>(application)

                          Echec de la mise à jour

                          C:\Documents and Settings\nicolas\Application Data\Flawgrim.bad\Frag Draw.ex

                          Infecté par: Trojan.Downloader.Swizzor.BO

                          C:\Documents and Settings\nicolas\Application Data\Flawgrim.bad\Frag Draw.ex

                          Supprimé

                          C:\Documents and Settings\olivier\Application Data\Flawgrim\Frag Draw.exe

                          Infecté par: Trojan.Downloader.Swizzor.BO

                          C:\Documents and Settings\olivier\Application Data\Flawgrim\Frag Draw.exe

                          Supprimé

                          C:\Documents and Settings\olivier\Local Settings\Application Data\Identities\{52B84B2A-A0C7-4A5B-BDFC-AF5E1D72F2E4}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 213)=>[Subject: Registration Confirmation][Date: Fri, 30 Dec 2005 18:06:22 GMT]=>(MIME part)=>reg_pass.zip

                          Infecté par: Win32.Sober.Y@mm

                          C:\Documents and Settings\olivier\Local Settings\Application Data\Identities\{52B84B2A-A0C7-4A5B-BDFC-AF5E1D72F2E4}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 213)=>[Subject: Registration Confirmation][Date: Fri, 30 Dec 2005 18:06:22 GMT]=>(MIME part)=>reg_pass.zip

                          Echec de la désinfection

                          C:\Documents and Settings\olivier\Local Settings\Application Data\Identities\{52B84B2A-A0C7-4A5B-BDFC-AF5E1D72F2E4}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 213)=>[Subject: Registration Confirmation][Date: Fri, 30 Dec 2005 18:06:22 GMT]=>(MIME part)=>reg_pass.zip

                          Supprimé

                          C:\Documents and Settings\olivier\Local Settings\Application Data\Identities\{52B84B2A-A0C7-4A5B-BDFC-AF5E1D72F2E4}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 213)=>[Subject: Registration Confirmation][Date: Fri, 30 Dec 2005 18:06:22 GMT]=>(MIME part)

                          Mis à jour

                          C:\Documents and Settings\olivier\Local Settings\Application Data\Identities\{52B84B2A-A0C7-4A5B-BDFC-AF5E1D72F2E4}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 213)

                          Mis à jour

                          C:\Documents and Settings\olivier\Local Settings\Application Data\Identities\{52B84B2A-A0C7-4A5B-BDFC-AF5E1D72F2E4}\Microsoft\Outlook Express\Éléments supprimés.dbx

                          Echec de la mise à jour

                          C:\JLG\jdg-setup\runexe-xp.htm

                          Infecté par: Generic.XPL.CodeBase.A52E2BCA

                          C:\JLG\jdg-setup\runexe-xp.htm

                          Echec de la désinfection

                          C:\JLG\jdg-setup\runexe-xp.htm

                          Supprimé

                          C:\JLG\jdg-setup\runexe.htm

                          Infecté par: Generic.XPL.CodeBase.EF24AAFD

                          C:\JLG\jdg-setup\runexe.htm

                          Echec de la désinfection

                          C:\JLG\jdg-setup\runexe.htm

                          Supprimé

                          C:\JLG\jdg-setup\runexe.htm~

                          Infecté par: Generic.XPL.CodeBase.DD865A92

                          C:\JLG\jdg-setup\runexe.htm~

                          Echec de la désinfection

                          C:\JLG\jdg-setup\runexe.htm~

                          Supprimé

                          C:\JLG\jdg-setup\runexe98.htm

                          Infecté par: Generic.XPL.CodeBase.E178D6CA

                          C:\JLG\jdg-setup\runexe98.htm

                          Echec de la désinfection

                          C:\JLG\jdg-setup\runexe98.htm

                          Supprimé

                          C:\JLG\jeudego\prog\igo\empty.htm

                          Infecté par: Generic.XPL.CodeBase.E39DE6CE

                          C:\JLG\jeudego\prog\igo\empty.htm

                          Echec de la désinfection

                          C:\JLG\jeudego\prog\igo\empty.htm

                          Supprimé

                          C:\old_C\Documents and Settings\olivier\Bureau\CC olivier G=>(Embedded DocFile g)

                          Infecté par: W97M.Thus.I

                          C:\old_C\Documents and Settings\olivier\Bureau\CC olivier G=>(Embedded DocFile g)

                          Désinfecté

                          C:\old_C\Documents and Settings\olivier\Bureau\CC olivier G

                          Echec de la mise à jour

                          C:\old_C\Documents and Settings\olivier\Bureau\CC olivier G=>(MacBinary III data fork)

                          Infecté par: W97M.Thus.I

                          C:\old_C\Documents and Settings\olivier\Bureau\CC olivier G=>(MacBinary III data fork)

                          Désinfecté

                          C:\old_C\Documents and Settings\olivier\Bureau\CC olivier G

                          Echec de la mise à jour

                          C:\old_D\OLD\JLG\jdg-setup\runexe-xp.htm

                          Infecté par: Generic.XPL.CodeBase.A52E2BCA

                          C:\old_D\OLD\JLG\jdg-setup\runexe-xp.htm

                          Echec de la désinfection

                          C:\old_D\OLD\JLG\jdg-setup\runexe-xp.htm

                          Supprimé

                          C:\old_D\OLD\JLG\jdg-setup\runexe.htm

                          Infecté par: Generic.XPL.CodeBase.EF24AAFD

                          C:\old_D\OLD\JLG\jdg-setup\runexe.htm

                          Echec de la désinfection

                          C:\old_D\OLD\JLG\jdg-setup\runexe.htm

                          Supprimé

                          C:\old_D\OLD\JLG\jdg-setup\runexe.htm~

                          Infecté par: Generic.XPL.CodeBase.DD865A92

                          C:\old_D\OLD\JLG\jdg-setup\runexe.htm~

                          Echec de la désinfection

                          C:\old_D\OLD\JLG\jdg-setup\runexe.htm~

                          Supprimé

                          C:\old_D\OLD\JLG\jdg-setup\runexe98.htm

                          Infecté par: Generic.XPL.CodeBase.E178D6CA

                          C:\old_D\OLD\JLG\jdg-setup\runexe98.htm

                          Echec de la désinfection

                          C:\old_D\OLD\JLG\jdg-setup\runexe98.htm

                          Supprimé

                          C:\old_D\OLD\JLG\jeudego\prog\igo\empty.htm

                          Infecté par: Generic.XPL.CodeBase.E39DE6CE

                          C:\old_D\OLD\JLG\jeudego\prog\igo\empty.htm

                          Echec de la désinfection

                          C:\old_D\OLD\JLG\jeudego\prog\igo\empty.htm

                          Supprimé

                          C:\old_D\windows\Profiles\anne\Application Data\Identities\{B0F17D40-5A65-11D4-9E14-004F490AD11F}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 240)=>[Subject: CV olivier][Date: Sun, 6 Jun 2004 11:25:34 +0200]=>(MIME part)=>(application)=>(Embedded DocFile g)

                          Infecté par: W97M.Thus.I

                          C:\old_D\windows\Profiles\anne\Application Data\Identities\{B0F17D40-5A65-11D4-9E14-004F490AD11F}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 240)=>[Subject: CV olivier][Date: Sun, 6 Jun 2004 11:25:34 +0200]=>(MIME part)=>(application)=>(Embedded DocFile g)

                          Désinfecté

                          C:\old_D\windows\Profiles\anne\Application Data\Identities\{B0F17D40-5A65-11D4-9E14-004F490AD11F}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 240)=>[Subject: CV olivier][Date: Sun, 6 Jun 2004 11:25:34 +0200]=>(MIME part)=>(application)

                          Echec de la mise à jour

                          C:\old_D\windows\Profiles\anne\Application Data\Identities\{B0F17D40-5A65-11D4-9E14-004F490AD11F}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 240)=>[Subject: CV olivier][Date: Sun, 6 Jun 2004 11:25:34 +0200]=>(MIME part)=>(application)=>(MacBinary III data fork)

                          Infecté par: W97M.Thus.I

                          C:\old_D\windows\Profiles\anne\Application Data\Identities\{B0F17D40-5A65-11D4-9E14-004F490AD11F}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 240)=>[Subject: CV olivier][Date: Sun, 6 Jun 2004 11:25:34 +0200]=>(MIME part)=>(application)=>(MacBinary III data fork)

                          Désinfecté

                          C:\old_D\windows\Profiles\anne\Application Data\Identities\{B0F17D40-5A65-11D4-9E14-004F490AD11F}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 240)=>[Subject: CV olivier][Date: Sun, 6 Jun 2004 11:25:34 +0200]=>(MIME part)=>(application)

                          Echec de la mise à jour

                          C:\Program Files\Electronic Arts\La Bataille pour la Terre du Milieu II\install.exe

                          Infecté par: Trojan.Downloader.Istbar.TO

                          C:\Program Files\Electronic Arts\La Bataille pour la Terre du Milieu II\install.exe

                          Echec de la désinfection

                          C:\Program Files\Electronic Arts\La Bataille pour la Terre du Milieu II\install.exe

                          Supprimé

                          C:\System Volume Information\_restore{BC6CE609-DC8D-4C48-AAE3-6B709EA647BE}\RP561\A0184134.dll

                          Infecté par: Trojan.BHO.WebPrefix.A

                          C:\System Volume Information\_restore{BC6CE609-DC8D-4C48-AAE3-6B709EA647BE}\RP561\A0184134.dll

                          Echec de la désinfection

                          C:\System Volume Information\_restore{BC6CE609-DC8D-4C48-AAE3-6B709EA647BE}\RP561\A0184134.dll

                          Supprimé

                          C:\System Volume Information\_restore{BC6CE609-DC8D-4C48-AAE3-6B709EA647BE}\RP561\A0184137.exe

                          Infecté par: Trojan.Downloader.Agent.JJ

                          C:\System Volume Information\_restore{BC6CE609-DC8D-4C48-AAE3-6B709EA647BE}\RP561\A0184137.exe

                          Echec de la désinfection

                          C:\System Volume Information\_restore{BC6CE609-DC8D-4C48-AAE3-6B709EA647BE}\RP561\A0184137.exe

                          Supprimé

                          C:\System Volume Information\_restore{BC6CE609-DC8D-4C48-AAE3-6B709EA647BE}\RP561\A0184171.exe

                          Infecté par: Trojan.Downloader.Swizzor.BO

                          C:\System Volume Information\_restore{BC6CE609-DC8D-4C48-AAE3-6B709EA647BE}\RP561\A0184171.exe

                          Supprimé

                          C:\System Volume Information\_restore{BC6CE609-DC8D-4C48-AAE3-6B709EA647BE}\RP561\A0184173.exe

                          Infecté par: Trojan.Downloader.Istbar.TO

                          C:\System Volume Information\_restore{BC6CE609-DC8D-4C48-AAE3-6B709EA647BE}\RP561\A0184173.exe

                          Echec de la désinfection

                          C:\System Volume Information\_restore{BC6CE609-DC8D-4C48-AAE3-6B709EA647BE}\RP561\A0184173.exe

                          Supprimé

                          analyse Hijack this :

                          Logfile of HijackThis v1.99.1
                          Scan saved at 22:47:21, on 30/10/2006
                          Platform: Windows XP SP2 (WinNT 5.01.2600)
                          MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

                          Running processes:
                          C:\WINDOWS\System32\smss.exe
                          C:\WINDOWS\system32\winlogon.exe
                          C:\WINDOWS\system32\services.exe
                          C:\WINDOWS\system32\lsass.exe
                          C:\WINDOWS\system32\svchost.exe
                          C:\WINDOWS\System32\svchost.exe
                          C:\WINDOWS\system32\spoolsv.exe
                          C:\PROGRA~2\Grisoft\AVGFRE~1\avgamsvr.exe
                          C:\PROGRA~2\Grisoft\AVGFRE~1\avgupsvc.exe
                          C:\PROGRA~2\Grisoft\AVGFRE~1\avgemc.exe
                          C:\Program Files\ewido anti-spyware 4.0\guard.exe
                          C:\cygwin\bin\cygrunsrv.exe
                          C:\WINDOWS\System32\svchost.exe
                          C:\cygwin\usr\sbin\sshd.exe
                          C:\WINDOWS\Explorer.EXE
                          C:\PROGRA~2\Grisoft\AVGFRE~1\avgcc.exe
                          C:\Program Files\Messenger\msmsgs.exe
                          C:\Program Files\TuneUp Utilities 2006\MemOptimizer.exe
                          C:\WINDOWS\system32\svchost.exe
                          C:\Program Files\MSN Messenger\msnmsgr.exe
                          C:\Program Files\Mozilla Firefox\firefox.exe
                          C:\Program Files\Hijackthis\HijackThis.exe

                          R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.tfmwoicdsvrfnfowcofdfo.net/Xuv_vafgXVj2BEXsM_kVtNGdi0g61yroAacC_BgysikXxKQciHn9nCIxWZlGanXp.htm
                          R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
                          O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
                          O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
                          O3 - Toolbar: (no name) - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - (no file)
                          O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~2\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
                          O4 - HKLM\..\Run: [!ewido] "C:\Program Files\ewido anti-spyware 4.0\ewido.exe" /minimized
                          O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
                          O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
                          O4 - HKCU\..\Run: [googletalk] "C:\Program Files\Google\Google Talk\googletalk.exe" /autostart
                          O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
                          O4 - HKCU\..\Run: [TuneUp MemOptimizer] "C:\Program Files\TuneUp Utilities 2006\MemOptimizer.exe" autostart
                          O8 - Extra context menu item: &Clean Traces - C:\Program Files\DAP\Privacy Package\dapcleanerie.htm
                          O8 - Extra context menu item: &Download with &DAP - C:\Program Files\DAP\dapextie.htm
                          O8 - Extra context menu item: Download &all with DAP - C:\Program Files\DAP\dapextie2.htm
                          O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
                          O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
                          O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
                          O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
                          O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
                          O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
                          O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
                          O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
                          O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab31267.cab
                          O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan8/oscan8.cab
                          O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.com/v5consumer/V5Controls/en/x86/client/wuweb_site.cab?1105912526542
                          O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
                          O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab32846.cab
                          O16 - DPF: {BD393C14-72AD-4790-A095-76522973D6B8} (CBreakshotControl Class) - http://messenger.zone.msn.com/binary/Bankshot.cab31267.cab
                          O17 - HKLM\System\CCS\Services\Tcpip\..\{387E5A68-1ECD-40F7-AF28-A4BDE9503AD0}: NameServer = 212.27.54.252,212.27.53.252
                          O17 - HKLM\System\CCS\Services\Tcpip\..\{4515F444-042D-4442-8806-71F6F5943916}: NameServer = 212.27.54.252,212.27.32.176
                          O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~2\MSNMES~1\MSGRAP~1.DLL
                          O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~2\MSNMES~1\MSGRAP~1.DLL
                          O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
                          O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
                          O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe
                          O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
                          O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~2\Grisoft\AVGFRE~1\avgamsvr.exe
                          O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~2\Grisoft\AVGFRE~1\avgupsvc.exe
                          O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~2\Grisoft\AVGFRE~1\avgemc.exe
                          O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
                          O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
                          O23 - Service: CYGWIN sshd (sshd) - Unknown owner - C:\cygwin\bin\cygrunsrv.exe

                          Voila , en esperant que mon probleme soit resolu (ca doit commencer a etre fatiguant de lire 5rapports a la suite non ? ^^)

                          Merci encore ,

                          @++
                          0
                          1. Contributeur
                            Relance Hijack , choisi « do a scan only » ou « scanner seulement » coches ces lignes :

                            O3 - Toolbar: (no name) - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - (no file)

                            O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
                            O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)


                            Ensuite cliques sur « fix checked » ou « fixer objet ».

                            ===============================

                            Mets ce service:

                            ewido anti-spyware 4.0 guard

                            sur "manuel" pour ça fais ceci :

                            Démarrer ->executer ->tape services.msc fais un clic droit sur le service cité -> propriété et dans type de démarrage mets le sur "manuel".

                            dis moi ou en sont tes probs.

                            0
                            1. Salut ,

                              J'ai fait le scan only avec hijack , et pour le service ewido j'avais hesité entre le garder en automatique ou le mettre en manuel ... ca prenait pas enormement de RAM et ca pouvait pas faire de mal mais je fais ce que tu me dis pour l'instant :p

                              Pour l'instant , il n'y a toujours pas de probleme . Je te remet un scan hijackthis pour " la verification ultime " :D

                              Logfile of HijackThis v1.99.1
                              Scan saved at 11:08:46, on 31/10/2006
                              Platform: Windows XP SP2 (WinNT 5.01.2600)
                              MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

                              Running processes:
                              C:\WINDOWS\System32\smss.exe
                              C:\WINDOWS\system32\winlogon.exe
                              C:\WINDOWS\system32\services.exe
                              C:\WINDOWS\system32\lsass.exe
                              C:\WINDOWS\system32\svchost.exe
                              C:\WINDOWS\System32\svchost.exe
                              C:\WINDOWS\system32\spoolsv.exe
                              C:\PROGRA~2\Grisoft\AVGFRE~1\avgamsvr.exe
                              C:\PROGRA~2\Grisoft\AVGFRE~1\avgupsvc.exe
                              C:\PROGRA~2\Grisoft\AVGFRE~1\avgemc.exe
                              C:\Program Files\ewido anti-spyware 4.0\guard.exe
                              C:\cygwin\bin\cygrunsrv.exe
                              C:\WINDOWS\System32\svchost.exe
                              C:\cygwin\usr\sbin\sshd.exe
                              C:\WINDOWS\Explorer.EXE
                              C:\PROGRA~2\Grisoft\AVGFRE~1\avgcc.exe
                              C:\Program Files\MSN Messenger\msnmsgr.exe
                              C:\Program Files\Messenger\msmsgs.exe
                              C:\WINDOWS\system32\svchost.exe
                              C:\Program Files\TuneUp Utilities 2006\MemOptimizer.exe
                              C:\Program Files\Mozilla Firefox\firefox.exe
                              C:\Program Files\Azureus\Azureus.exe
                              C:\Program Files\Hijackthis\HijackThis.exe

                              R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.tfmwoicdsvrfnfowcofdfo.net/Xuv_vafgXVj2BEXsM_kVtNGdi0g61yroAacC_BgysikXxKQciHn9nCIxWZlGanXp.htm
                              R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
                              O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
                              O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
                              O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~2\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
                              O4 - HKLM\..\Run: [!ewido] "C:\Program Files\ewido anti-spyware 4.0\ewido.exe" /minimized
                              O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
                              O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
                              O4 - HKCU\..\Run: [googletalk] "C:\Program Files\Google\Google Talk\googletalk.exe" /autostart
                              O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
                              O4 - HKCU\..\Run: [TuneUp MemOptimizer] "C:\Program Files\TuneUp Utilities 2006\MemOptimizer.exe" autostart
                              O8 - Extra context menu item: &Clean Traces - C:\Program Files\DAP\Privacy Package\dapcleanerie.htm
                              O8 - Extra context menu item: &Download with &DAP - C:\Program Files\DAP\dapextie.htm
                              O8 - Extra context menu item: Download &all with DAP - C:\Program Files\DAP\dapextie2.htm
                              O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
                              O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
                              O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
                              O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
                              O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
                              O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
                              O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab31267.cab
                              O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan8/oscan8.cab
                              O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.com/v5consumer/V5Controls/en/x86/client/wuweb_site.cab?1105912526542
                              O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
                              O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab32846.cab
                              O16 - DPF: {BD393C14-72AD-4790-A095-76522973D6B8} (CBreakshotControl Class) - http://messenger.zone.msn.com/binary/Bankshot.cab31267.cab
                              O17 - HKLM\System\CCS\Services\Tcpip\..\{387E5A68-1ECD-40F7-AF28-A4BDE9503AD0}: NameServer = 212.27.54.252,212.27.53.252
                              O17 - HKLM\System\CCS\Services\Tcpip\..\{4515F444-042D-4442-8806-71F6F5943916}: NameServer = 212.27.54.252,212.27.32.176
                              O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~2\MSNMES~1\MSGRAP~1.DLL
                              O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~2\MSNMES~1\MSGRAP~1.DLL
                              O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
                              O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
                              O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe
                              O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
                              O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~2\Grisoft\AVGFRE~1\avgamsvr.exe
                              O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~2\Grisoft\AVGFRE~1\avgupsvc.exe
                              O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~2\Grisoft\AVGFRE~1\avgemc.exe
                              O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
                              O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
                              O23 - Service: CYGWIN sshd (sshd) - Unknown owner - C:\cygwin\bin\cygrunsrv.exe

                              Voila voila :)

                              En te remerciant enormement pour ton aide , je te souhaite une bonne journée !

                              @++
                              0
                              1. Contributeur
                                Ewido n'est pas en manuel mais si c'est toon choix ok je le respecte.

                                Pour vérifier, scanne ton PC avec cet antivirus en ligne (sous IE et accepte l’activX) :
                                http://www.bitdefender.fr/bd/site/search.php#
                                Clique sur « scan on line » suis les instructions.
                                Et colle le rapport

                                0
                                1. Salut ,

                                  c'est parti pour Bitdefender ...

                                  Et pour Ewido , je vais plutot ecouter les conseils d'un pro que mon "instinct informatique" :D (vu comment ca me reussi :p).

                                  Bon je post des que c'est fini,

                                  @++
                                  0
                                  1. Contributeur
                                    y'a pas de souci c'est juste pour t'eviter que ça rame si tu laisses la protection (service) tourner en continu car c'est bien ça qui tourne, Ewido doit tourner comme un antivirus ?
                                    Tu as un icone d'Ewido dans ta barre des taches en bas à droite ?
                                    Juste pour savoir.
                                    0
                                    1. Oui oui ,c'est ca, mais comme ewido avait detecté des " merdes " que AVG n'avait pas decouvert , je me suis dit que ca pouvait pas faire de mal de le laisser mais de toute facon j'ai remarqué comme tu l'as dit que ca prenait trop de memoire pour ce que ca fesait ,je trouve :D
                                      Donc je l'enleve pour l'instant :) ...

                                      Bientot fini Bitdefender...
                                      0
                                      1. Fini !

                                        voici le rapport Bitdefender online :

                                        BitDefender Online Scanner

                                        Rapport d'analyse généré à: Tue, Oct 31, 2006 - 15:18:52

                                        Voie d'analyse: A:\;C:\;D:\;E:\;

                                        Statistiques

                                        Temps

                                        02:24:13

                                        Fichiers

                                        650834

                                        Directoires

                                        14647

                                        Secteurs de boot

                                        9

                                        Archives

                                        35463

                                        Paquets programmes

                                        45297

                                        Résultats

                                        Virus identifiés

                                        2

                                        Fichiers infectés

                                        7

                                        Fichiers suspects

                                        0

                                        Avertissements

                                        0

                                        Désinfectés

                                        6

                                        Fichiers effacés

                                        1

                                        Info sur les moteurs

                                        Définition virus

                                        479473

                                        Version des moteurs

                                        AVCORE v1.0 (build 2310) (i386) (Apr 17 2006 16:24:38)

                                        Analyse des plugins

                                        13

                                        Archive des plugins

                                        38

                                        Unpack des plugins

                                        6

                                        E-mail plugins

                                        6

                                        Système plugins

                                        1

                                        Paramètres d'analyse

                                        Première action

                                        Désinfecté

                                        Seconde Action

                                        Supprimé

                                        Heuristique

                                        Oui

                                        Acceptez les avertissements

                                        Oui

                                        Extensions analysées

                                        *;

                                        Excludez les extensions

                                        Analyse d'emails

                                        Oui

                                        Analyse des Archives

                                        Oui

                                        Analyser paquets programmes

                                        Oui

                                        Analyse des fichiers

                                        Oui

                                        Analyse de boot

                                        Oui

                                        Fichier analysé

                                        Statut

                                        C:\Documents and Settings\anne\Local Settings\Application Data\Identities\{4CFB9C94-6456-4AAE-9C9B-61206FB66633}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 821)=>[Subject: CV olivier][Date: Sun, 6 Jun 2004 11:25:34 +0200]=>(MIME part)=>(application)=>(Embedded DocFile g)

                                        Infecté par: W97M.Thus.I

                                        C:\Documents and Settings\anne\Local Settings\Application Data\Identities\{4CFB9C94-6456-4AAE-9C9B-61206FB66633}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 821)=>[Subject: CV olivier][Date: Sun, 6 Jun 2004 11:25:34 +0200]=>(MIME part)=>(application)=>(Embedded DocFile g)

                                        Désinfecté

                                        C:\Documents and Settings\anne\Local Settings\Application Data\Identities\{4CFB9C94-6456-4AAE-9C9B-61206FB66633}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 821)=>[Subject: CV olivier][Date: Sun, 6 Jun 2004 11:25:34 +0200]=>(MIME part)=>(application)

                                        Echec de la mise à jour

                                        C:\Documents and Settings\anne\Local Settings\Application Data\Identities\{4CFB9C94-6456-4AAE-9C9B-61206FB66633}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 821)=>[Subject: CV olivier][Date: Sun, 6 Jun 2004 11:25:34 +0200]=>(MIME part)=>(application)=>(MacBinary III data fork)

                                        Infecté par: W97M.Thus.I

                                        C:\Documents and Settings\anne\Local Settings\Application Data\Identities\{4CFB9C94-6456-4AAE-9C9B-61206FB66633}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 821)=>[Subject: CV olivier][Date: Sun, 6 Jun 2004 11:25:34 +0200]=>(MIME part)=>(application)=>(MacBinary III data fork)

                                        Désinfecté

                                        C:\Documents and Settings\anne\Local Settings\Application Data\Identities\{4CFB9C94-6456-4AAE-9C9B-61206FB66633}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 821)=>[Subject: CV olivier][Date: Sun, 6 Jun 2004 11:25:34 +0200]=>(MIME part)=>(application)

                                        Echec de la mise à jour

                                        C:\Documents and Settings\olivier\Local Settings\Application Data\Identities\{52B84B2A-A0C7-4A5B-BDFC-AF5E1D72F2E4}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 213)=>[Subject: Registration Confirmation][Date: Fri, 30 Dec 2005 18:06:22 GMT]=>(MIME part)=>reg_pass.zip

                                        Infecté par: Win32.Sober.Y@mm

                                        C:\Documents and Settings\olivier\Local Settings\Application Data\Identities\{52B84B2A-A0C7-4A5B-BDFC-AF5E1D72F2E4}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 213)=>[Subject: Registration Confirmation][Date: Fri, 30 Dec 2005 18:06:22 GMT]=>(MIME part)=>reg_pass.zip

                                        Echec de la désinfection

                                        C:\Documents and Settings\olivier\Local Settings\Application Data\Identities\{52B84B2A-A0C7-4A5B-BDFC-AF5E1D72F2E4}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 213)=>[Subject: Registration Confirmation][Date: Fri, 30 Dec 2005 18:06:22 GMT]=>(MIME part)=>reg_pass.zip

                                        Supprimé

                                        C:\Documents and Settings\olivier\Local Settings\Application Data\Identities\{52B84B2A-A0C7-4A5B-BDFC-AF5E1D72F2E4}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 213)=>[Subject: Registration Confirmation][Date: Fri, 30 Dec 2005 18:06:22 GMT]=>(MIME part)

                                        Mis à jour

                                        C:\Documents and Settings\olivier\Local Settings\Application Data\Identities\{52B84B2A-A0C7-4A5B-BDFC-AF5E1D72F2E4}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 213)

                                        Mis à jour

                                        C:\Documents and Settings\olivier\Local Settings\Application Data\Identities\{52B84B2A-A0C7-4A5B-BDFC-AF5E1D72F2E4}\Microsoft\Outlook Express\Éléments supprimés.dbx

                                        Echec de la mise à jour

                                        C:\old_C\Documents and Settings\olivier\Bureau\CC olivier G=>(Embedded DocFile g)

                                        Infecté par: W97M.Thus.I

                                        C:\old_C\Documents and Settings\olivier\Bureau\CC olivier G=>(Embedded DocFile g)

                                        Désinfecté

                                        C:\old_C\Documents and Settings\olivier\Bureau\CC olivier G

                                        Echec de la mise à jour

                                        C:\old_C\Documents and Settings\olivier\Bureau\CC olivier G=>(MacBinary III data fork)

                                        Infecté par: W97M.Thus.I

                                        C:\old_C\Documents and Settings\olivier\Bureau\CC olivier G=>(MacBinary III data fork)

                                        Désinfecté

                                        C:\old_C\Documents and Settings\olivier\Bureau\CC olivier G

                                        Echec de la mise à jour

                                        C:\old_D\windows\Profiles\anne\Application Data\Identities\{B0F17D40-5A65-11D4-9E14-004F490AD11F}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 240)=>[Subject: CV olivier][Date: Sun, 6 Jun 2004 11:25:34 +0200]=>(MIME part)=>(application)=>(Embedded DocFile g)

                                        Infecté par: W97M.Thus.I

                                        C:\old_D\windows\Profiles\anne\Application Data\Identities\{B0F17D40-5A65-11D4-9E14-004F490AD11F}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 240)=>[Subject: CV olivier][Date: Sun, 6 Jun 2004 11:25:34 +0200]=>(MIME part)=>(application)=>(Embedded DocFile g)

                                        Désinfecté

                                        C:\old_D\windows\Profiles\anne\Application Data\Identities\{B0F17D40-5A65-11D4-9E14-004F490AD11F}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 240)=>[Subject: CV olivier][Date: Sun, 6 Jun 2004 11:25:34 +0200]=>(MIME part)=>(application)

                                        Echec de la mise à jour

                                        C:\old_D\windows\Profiles\anne\Application Data\Identities\{B0F17D40-5A65-11D4-9E14-004F490AD11F}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 240)=>[Subject: CV olivier][Date: Sun, 6 Jun 2004 11:25:34 +0200]=>(MIME part)=>(application)=>(MacBinary III data fork)

                                        Infecté par: W97M.Thus.I

                                        C:\old_D\windows\Profiles\anne\Application Data\Identities\{B0F17D40-5A65-11D4-9E14-004F490AD11F}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 240)=>[Subject: CV olivier][Date: Sun, 6 Jun 2004 11:25:34 +0200]=>(MIME part)=>(application)=>(MacBinary III data fork)

                                        Désinfecté

                                        C:\old_D\windows\Profiles\anne\Application Data\Identities\{B0F17D40-5A65-11D4-9E14-004F490AD11F}\Microsoft\Outlook Express\Boîte de réception.dbx=>(message 240)=>[Subject: CV olivier][Date: Sun, 6 Jun 2004 11:25:34 +0200]=>(MIME part)=>(application)

                                        Echec de la mise à jour

                                        Voila , j'espere que c'est bon ,
                                        et un super merci encore !!

                                        @++
                                        0
                                        • 1
                                        • 2