[ virus ou trojant] Besoin d'aide

Aurelieeee Messages postés 64 Statut Membre -  
Regis59 Messages postés 21143 Date d'inscription   Statut Contributeur sécurité Dernière intervention   -
Bonjour , j'ai besoin d'aide s'il vous plait

Depuis peu mon anti virus détecte assez souvent des virus ou troyen.. avec beaucoup de mal j'ai réussi il me semblait a m'en dépêtré mais je ne pense pas que la menace soit totalement éradiqué.

A explorant le forum afin d'avacancer le travail J'ai pu voir que vous fonctionné beaucoup avec HijackThis J'ai donc fait un scan en voici le rapport.
Je join un rapport d'ewido ainsi qu'un scan avec Bit defendre Online fin de complété un eventuel manque d'information.

Je suis prête et disponible a recevoir toutes aides pouvant m'aider.

Merci d'avoir pris quelque minute pour avoir lu ce post et je l'espère recevoir un peu d'aide.

@ bientôt

Logfile of HijackThis v1.99.1
Scan saved at 11:08:58, on 07/11/2006
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\RUNDLL32.EXE
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\MessengerPlus! 3\MsgPlus.exe
C:\WINDOWS\System32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\WINDOWS\System32\rundll32.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Program Files\Belkin\Belkin Wireless Network Utility\WLService.exe
C:\Program Files\ewido anti-spyware 4.0\guard.exe
C:\Program Files\Belkin\Belkin Wireless Network Utility\WLanCfgG.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
C:\WINDOWS\System32\services.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
C:\WINDOWS\TEMP\winBC76.tmp
C:\Program Files\Google\GoogleToolbarNotifier\1.2.908.5008\GoogleToolbarNotifier.exe
C:\Program Files\Alwil Software\Avast4\ashSimpl.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Alwil Software\Avast4\ashSimpl.exe
C:\Program Files\WinRAR\WinRAR.exe
C:\DOCUME~1\nou\LOCALS~1\Temp\Rar$EX00.907\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/?gws_rd=ssl
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = LanguedocWarez Rien que pour le plaisir!
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe"
O4 - HKLM\..\Run: [spoolsvv] C:\WINDOWS\System32\spoolsvv.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [WinMedia] C:\WINDOWS\loader8108921.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/eng/partner/default/kavwebscan_unicode.cab
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab31267.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety Center Base Module) - http://cdn.scan.safety.live.com/resource/download/scanner/wlscbase8460.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/default.aspx
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - AppInit_DLLs: MsgPlusLoader.dll
O20 - Winlogon Notify: rpcc - C:\WINDOWS\System32\rpcc.dll (file missing)
O20 - Winlogon Notify: winsys2freg - C:\Documents and Settings\All Users\Documents\Settings\winsys2f.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: Belkin 54g Wireless USB Network Adapter (Belkin 54g Wireless USB Network Adapter Service) - Unknown owner - C:\Program Files\Belkin\Belkin Wireless Network Utility\WLService.exe
O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
O23 - Service: Sunbelt Kerio Personal Firewall 4 (KPF4) - Sunbelt Software - C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
O23 - Service: Microsoft authenticate service (MsaSvc) - Unknown owner - C:\WINDOWS\System32\msasvc.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe

---------------------------------------------------------
ewido anti-spyware - Scan Report
---------------------------------------------------------

+ Created at: 14:38:32 07/11/2006

+ Scan result:

C:\mjbvlado.exe -> Backdoor.Pakes : No action taken.
C:\Documents and Settings\nou\Local Settings\Temp\2.dlb -> Downloader.Tibs.gc : No action taken.
C:\Documents and Settings\nou\Local Settings\Temp\6.dlb -> Downloader.Tibs.gc : No action taken.
C:\Documents and Settings\nou\Local Settings\Temp\7.dlb -> Downloader.Tibs.gc : No action taken.
C:\Documents and Settings\nou\Local Settings\Temp\Temporary Internet Files\Content.IE5\WD2FKPUR\loader[1].exe -> Downloader.Tiny.bm : No action taken.
[1184] C:\Documents and Settings\All Users\Documents\Settings\winsys2f.dll -> Proxy.Xorpix.at : No action taken.
C:\Documents and Settings\nou\Cookies\nou@247realmedia[1].txt -> TrackingCookie.247realmedia : No action taken.
C:\Documents and Settings\nou\Cookies\nou@2o7[2].txt -> TrackingCookie.2o7 : No action taken.
C:\Documents and Settings\nou\Cookies\nou@adtech[2].txt -> TrackingCookie.Adtech : No action taken.
C:\Documents and Settings\nou\Cookies\nou@bluestreak[2].txt -> TrackingCookie.Bluestreak : No action taken.
C:\Documents and Settings\nou\Cookies\nou@com[1].txt -> TrackingCookie.Com : No action taken.
C:\Documents and Settings\nou\Cookies\nou@fl01.ct2.comclick[1].txt -> TrackingCookie.Comclick : No action taken.
C:\Documents and Settings\nou\Cookies\nou@estat[1].txt -> TrackingCookie.Estat : No action taken.
C:\Documents and Settings\nou\Cookies\nou@www.smartadserver[2].txt -> TrackingCookie.Smartadserver : No action taken.
C:\Documents and Settings\nou\Cookies\nou@tacoda[1].txt -> TrackingCookie.Tacoda : No action taken.
C:\Documents and Settings\nou\Cookies\nou@tradedoubler[1].txt -> TrackingCookie.Tradedoubler : No action taken.
C:\Documents and Settings\nou\Cookies\nou@tribalfusion[1].txt -> TrackingCookie.Tribalfusion : No action taken.
C:\Documents and Settings\nou\Cookies\nou@weborama[2].txt -> TrackingCookie.Weborama : No action taken.
C:\WINDOWS\system32\msasvc.exe -> Trojan.Sinowal.bh : No action taken.
[964] C:\WINDOWS\System32\msasvc.exe -> Trojan.Sinowal.bh : No action taken.

::Report end

______________________________________________________

BitDefender Online Scanner

Scan report generated at: Tue, Nov 07, 2006 - 12:50:18

Scan path: A:\;C:\;D:\;E:\;

Statistics

Time
01:13:47

Files
131743

Folders
2871

Boot Sectors
2

Archives
2302

Packed Files
8794

Results

Identified Viruses
4

Infected Files
5

Suspect Files
0

Warnings
0

Disinfected
0

Deleted Files
5

Engines Info

Virus Definitions
312708

Engine build
AVCORE v1.0 (build 2310) (i386) (Apr 17 2006 16:24:38)

Scan plugins
13

Archive plugins
38

Unpack plugins
6

E-mail plugins
6

System plugins
1

Scan Settings

First Action
Disinfect

Second Action
Delete

Heuristics
Yes

Enable Warnings
Yes

Scanned Extensions
*;

Exclude Extensions

Scan Emails
Yes

Scan Archives
Yes

Scan Packed
Yes

Scan Files
Yes

Scan Boot
Yes

Scanned File
Status

C:\System Volume Information\_restore{EE5C1D49-E816-48D3-9EEF-82DEDEB6497C}\RP18\A0002648.exe=>(NSIS o)=>zlib_nsis0002
Infected with: Trojan.Dropper.VB

C:\System Volume Information\_restore{EE5C1D49-E816-48D3-9EEF-82DEDEB6497C}\RP18\A0002648.exe=>(NSIS o)=>zlib_nsis0002
Disinfection failed

C:\System Volume Information\_restore{EE5C1D49-E816-48D3-9EEF-82DEDEB6497C}\RP18\A0002648.exe=>(NSIS o)=>zlib_nsis0002
Deleted

C:\System Volume Information\_restore{EE5C1D49-E816-48D3-9EEF-82DEDEB6497C}\RP18\A0002648.exe=>(NSIS o)
Update failed

C:\System Volume Information\_restore{EE5C1D49-E816-48D3-9EEF-82DEDEB6497C}\RP86\A0022921.exe
Infected with: Trojan.Downloader.Small.CPT

C:\System Volume Information\_restore{EE5C1D49-E816-48D3-9EEF-82DEDEB6497C}\RP86\A0022921.exe
Deleted

C:\System Volume Information\_restore{EE5C1D49-E816-48D3-9EEF-82DEDEB6497C}\RP86\A0022991.dll
Infected with: Generic.Malware.SMdldg.D37C9328

C:\System Volume Information\_restore{EE5C1D49-E816-48D3-9EEF-82DEDEB6497C}\RP86\A0022991.dll
Disinfection failed

C:\System Volume Information\_restore{EE5C1D49-E816-48D3-9EEF-82DEDEB6497C}\RP86\A0022991.dll
Deleted

C:\WINDOWS\msagent\agentsvr.exe
Infected with: Win32.Mixor.A@mm

C:\WINDOWS\msagent\agentsvr.exe
Disinfection failed

C:\WINDOWS\msagent\agentsvr.exe
Deleted

C:\WINDOWS\system32\dllcache\agentsvr.exe
Infected with: Win32.Mixor.A@mm

C:\WINDOWS\system32\dllcache\agentsvr.exe
Disinfection failed

C:\WINDOWS\system32\dllcache\agentsvr.exe
Deleted

voila voila :/
UNe question aussi, les fichiers placé en quarentaire par ewido doivent-ils etre suprimé ?
A voir également:

38 réponses

Regis59 Messages postés 21143 Date d'inscription   Statut Contributeur sécurité Dernière intervention   1 322
 
Salut Aurélie

Tu es bien infecté.

Relance ewido et supprime tout ce qu il trouve sans probleme.
copie colle le rapport ensuite.

a+
0
Aurelieeee Messages postés 64 Statut Membre 4
 
Merci a vous de m'aider c'est très gentil, voila le rapport:
Tous les jours je scan mon pc avec ewido et tous les jour des trojan aparraissent dans le raport des fois ceux sont les meme qui reviennent..
depuis que j'ai ces problme mon pc est très lent, Je ram énormement et le pc a tendance a s'e bloqué pendant l'utilsation de jeux par exemple. L'image de fige et pu aucune touche ni manipulation ne répond, ce qui n'arrivait jamais avant..

Je suis très embarassée, aidez moi s'il vous plait


ewido anti-spyware - Scan Report
---------------------------------------------------------

+ Created at: 21:58:50 08/11/2006

+ Scan result:



:mozilla.12:C:\Documents and Settings\nou\Application Data\Mozilla\Firefox\Profiles\zd2m8lm2.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
:mozilla.13:C:\Documents and Settings\nou\Application Data\Mozilla\Firefox\Profiles\zd2m8lm2.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
:mozilla.15:C:\Documents and Settings\nou\Application Data\Mozilla\Firefox\Profiles\zd2m8lm2.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
:mozilla.16:C:\Documents and Settings\nou\Application Data\Mozilla\Firefox\Profiles\zd2m8lm2.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
:mozilla.29:C:\Documents and Settings\nou\Application Data\Mozilla\Firefox\Profiles\zd2m8lm2.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.35:C:\Documents and Settings\nou\Application Data\Mozilla\Firefox\Profiles\zd2m8lm2.default\cookies.txt -> TrackingCookie.Bluestreak : Cleaned.
C:\Documents and Settings\nou\Cookies\nou@bluestreak[1].txt -> TrackingCookie.Bluestreak : Cleaned.
:mozilla.14:C:\Documents and Settings\nou\Application Data\Mozilla\Firefox\Profiles\zd2m8lm2.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.20:C:\Documents and Settings\nou\Application Data\Mozilla\Firefox\Profiles\zd2m8lm2.default\cookies.txt -> TrackingCookie.Estat : Cleaned.
:mozilla.10:C:\Documents and Settings\nou\Application Data\Mozilla\Firefox\Profiles\zd2m8lm2.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
:mozilla.11:C:\Documents and Settings\nou\Application Data\Mozilla\Firefox\Profiles\zd2m8lm2.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
:mozilla.9:C:\Documents and Settings\nou\Application Data\Mozilla\Firefox\Profiles\zd2m8lm2.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
C:\Documents and Settings\nou\Cookies\nou@www.smartadserver[1].txt -> TrackingCookie.Smartadserver : Cleaned.
:mozilla.36:C:\Documents and Settings\nou\Application Data\Mozilla\Firefox\Profiles\zd2m8lm2.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.
C:\Documents and Settings\nou\Cookies\nou@weborama[2].txt -> TrackingCookie.Weborama : Cleaned.


::Report end
0
Aurelieeee Messages postés 64 Statut Membre 4
 
De nouveau symptome s'ajoutent au faits que le pc rame énormement...

Il arrive maintenant très souvent que pendant l'utilisation de jeux (qui reste très difficile) l'écran se fige plus aucune manipulation ne répond, Je suis obligé de resté appuyé sur le bouton de mon alim pr reboot.

Ceci commence aussi a m'arriver en surfant tout simplement. Je suis complètement dépasssée, J'hésite a ramener mon pc en réparation :(
0
Utilisateur anonyme
 
non n'amene po ton pc en reparation car c'est le fait du virus qui te fait sa effectivement tu est infecte par 5 virus mais je peux t'aider .
ps est-ce que ton anti-virus est bitdefender?
0
^^Marie^^ Messages postés 126523 Date d'inscription   Statut Membre Dernière intervention   3 279
 
ps est-ce que ton anti-virus est bitdefender?

tu lis un peu les rapports, toi ????

0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
Utilisateur anonyme
 
re bon alors je te conseille de telecharger clamwin il fait une analyse dAa Z moi je l'ai et sa marche tres bien ton analyse durera 1h30 a peu pres et apres tu m'enverras le resultat de ton analyse sur le forum
tien le lien pour telecharger clamwin sur 01net :

https://www.01net.com/telecharger/windows/Securite/antivirus-antitrojan/fiches/30799.html

en plus il est gratuit
bon je croise les doigts pour toi
0
did71 Messages postés 2187 Statut Contributeur sécurité 36
 
bonjour à tous,

et moi je te conseille de laisser faire regis59!

T'en as pas marre de faire de la pub pour clamwin sur tous les sujets de CCM!!!

a+
0
Aurelieeee Messages postés 64 Statut Membre 4
 
Bon et bien maintenant je suis encore plus perdu...

On essaye de m'aider et d'un autre côté on me di de ne pas suivre les informations.

Si quelqu'un aurait de bonne information ce serait super sympa.

Merci a vous, c'est gentil quand meme. Je reste a votre dispostion

Aurelie.

Ps: J'ai effectué un scan avec avast dans l'aprés midi il ne detecte rien, voici au cas où un nouvo raport hijackthis

Logfile of HijackThis v1.99.1
Scan saved at 17:40:43, on 09/11/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Program Files\Belkin\Belkin Wireless Network Utility\WLService.exe
C:\Program Files\Belkin\Belkin Wireless Network Utility\WLanCfgG.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\system32\rundll32.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\MessengerPlus! 3\MsgPlus.exe
C:\Program Files\Messenger\msmsgs.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Google\GoogleToolbarNotifier\1.2.908.5008\GoogleToolbarNotifier.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\HLSW\hlsw.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\WinRAR\WinRAR.exe
C:\DOCUME~1\nou\LOCALS~1\Temp\Rar$EX00.359\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/?gws_rd=ssl
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = LanguedocWarez Rien que pour le plaisir!
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe"
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/eng/partner/default/kavwebscan_unicode.cab
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab31267.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety Center Base Module) - http://cdn.scan.safety.live.com/resource/download/scanner/wlscbase8460.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/...
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - AppInit_DLLs: MsgPlusLoader.dll
O20 - Winlogon Notify: rpcc - C:\WINDOWS\
O20 - Winlogon Notify: winsys2freg - C:\Documents and Settings\All Users\Documents\Settings\winsys2f.dll (file missing)
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: Belkin 54g Wireless USB Network Adapter (Belkin 54g Wireless USB Network Adapter Service) - Unknown owner - C:\Program Files\Belkin\Belkin Wireless Network Utility\WLService.exe
O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
O23 - Service: Sunbelt Kerio Personal Firewall 4 (KPF4) - Sunbelt Software - C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
O23 - Service: Microsoft authenticate service (MsaSvc) - Unknown owner - C:\WINDOWS\System32\msasvc.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
0
^^Marie^^ Messages postés 126523 Date d'inscription   Statut Membre Dernière intervention   3 279
 
Re,

Rien de méchant dans ton log
As-tu encore des soucis particuliers
Régis passera aussi

A++
0
Regis59 Messages postés 21143 Date d'inscription   Statut Contributeur sécurité Dernière intervention   1 322
 
Salut Aurélie,

Il s'en passe des choses pendant mon absence lol

Rend toi sur ce site :
http://www.virustotal.com/xhtml/virustotal_en.html
Clik sur parcourir
Recherche ceci :

C:\Documents and Settings\All Users\Documents\Settings\winsys2f.dll

Clik send et colle le rapport stp

A+
0
Aurelieeee Messages postés 64 Statut Membre 4
 
Merci
0
Aurelieeee Messages postés 64 Statut Membre 4
 
Merci
0
Aurelieeee Messages postés 64 Statut Membre 4
 
désolé pour les 2 post, petit souci d'actualisation de page

Bonjour régis,

J'ai effectué les manipulation mais je n'ai pas trouvé le dll demandé.

Je suis bien allé dans:
C:\document and seeting\all user...

Mais je n'ai pas de repertoire "document" ensuite, je me suis pas arrété à ca j'ai quand meme fouinné un peu partout j'ai meme recherché via l'explorateur et le moteur de recherche de windows mais je ne trouve pas le fichier.

Pourrais tu me donner d'avantage d'information ou de manipulation.

Merci beaucoup pour ton aide c'est vraiment sympa.

Aurelie.
0
Regis59 Messages postés 21143 Date d'inscription   Statut Contributeur sécurité Dernière intervention   1 322
 
Salut

Quand tu le recherches, c est bien via le site avec la case "parcourir"?

a+
0
Aurelieeee Messages postés 64 Statut Membre 4
 
Salut,

oui c'est bien via le site..

Moi j'ai ceci (via le site):
C:\document and seetings\all user\ Application Data
\ Bureau
\ Document partagés
\ Favoris
\ Menu demarrer
\ Modeles
\ ntuser.dat
\ ntuser.dat

C'est pas évident tout ca. @ bientot Merci bien ;-)
0
Aurelieeee Messages postés 64 Statut Membre 4
 
Voila g réussi Merci bcp c gentil, voila le rapport =)
Jtrouve encore bizard que mon PC rame encore autant :/
Je reste a disposition pour d'eventuelles manipulation ou information pouvant m'aider. A bientot encore merci

Complete scanning result of "winsys2f.dll_", received in VirusTotal at 11.11.2006, 13:46:55 (CET).

Antivirus Version Update Result
AntiVir 7.2.0.39 11.10.2006 no virus found
Authentium 4.93.8 11.10.2006 no virus found
Avast 4.7.892.0 11.09.2006 no virus found
AVG 386 11.10.2006 no virus found
BitDefender 7.2 11.11.2006 no virus found
CAT-QuickHeal 8.00 11.10.2006 no virus found
ClamAV devel-20060426 11.11.2006 no virus found
DrWeb 4.33 11.11.2006 no virus found
eTrust-InoculateIT 23.73.52 11.11.2006 no virus found
eTrust-Vet 30.3.3186 11.10.2006 no virus found
Ewido 4.0 11.10.2006 no virus found
Fortinet 2.82.0.0 11.11.2006 no virus found
F-Prot 3.16f 11.10.2006 no virus found
F-Prot4 4.2.1.29 11.10.2006 no virus found
Ikarus 0.2.65.0 11.10.2006 no virus found
Kaspersky 4.0.2.24 11.11.2006 no virus found
McAfee 4893 11.10.2006 no virus found
Microsoft 1.1609 11.11.2006 no virus found
NOD32v2 1862 11.10.2006 no virus found
Norman 5.80.02 11.10.2006 no virus found
Panda 9.0.0.4 11.10.2006 no virus found
Sophos 4.11.0 11.07.2006 no virus found
TheHacker 6.0.1.116 11.09.2006 no virus found
UNA 1.83 11.10.2006 no virus found
VBA32 3.11.1 11.10.2006 no virus found
VirusBuster 4.3.15:9 11.10.2006 no virus found
0
Regis59 Messages postés 21143 Date d'inscription   Statut Contributeur sécurité Dernière intervention   1 322
 
Salut

C'est ok !
Il rame a quels moments?

A+
0
Aurelieeee Messages postés 64 Statut Membre 4
 
Il ram on va dire tout le temps...

Voulant ouvrir par exemple "Démarrer" je dois attendre 4-5 seconde pour voir s'affiché en entier le menu déroulant.

pour ouvrir un repertoir c'est pareil. quand le pc démarre aussi le petit sablié dure et duree.

J'ai pour celà arrangé un peu la lsite de programme s'éxécutant au démarrage en vaint.
J'ai supprimé les entrées superflu gravec notament a Regcleaner ou ccleaner ainsi que les fichier temp etc², défragmenté mais bon le pc rame je trouve 2x plus qu'il y as un mois.

En tout ca mes problème sont partiellement résolu et c'est très bien comme ca. c'est pas tout le monde qui prendrait soins d'aider une inconnu !
Encore merci
0
Regis59 Messages postés 21143 Date d'inscription   Statut Contributeur sécurité Dernière intervention   1 322
 
Salut

Dans demarer < executer < tape msconfig
Onglet démarrage, decoche tous les programmes sauf ton antivirus et ton pare feu

accepte le redmearrage
Au demarrage tu auras un message, coche ne plus afficher et valide

a+
0
Aurelieeee Messages postés 64 Statut Membre 4
 
Salut,

j'ai peu de chose dans l'onglet Démarrage et c'est juste L'anti virus le parfeu pi msn... tout a fait banale

J'ai remarquée qu'au démarrage du pc les toutes premières infos m'informent:

DDr Sdram: 312Mo (je ne suis pas sur si c'est bien DDr ou Sdram enfin bon)

Alor que j'ai 2 barrettes de 256 Mo,celà me fait penser que le pc n'utilise pas toutes ses capacités pour fonctionner.. peut etre auras tu un avis là dessus.

Connait tu aussi le par feu Kerio ? J'aimerai savoir comment le configurer pour laisser passer un program me ayant besoin d'un accés internet.. comme un jeu, la mule etc² car je le desactive systematiquement.. :/

@ bientot, merci
0
Regis59 Messages postés 21143 Date d'inscription   Statut Contributeur sécurité Dernière intervention   1 322
 
Salut

Pour ta ram, t es sur qu il y en a pas une d HS?
Essaie d en enlever une et apres l autre pour voir si le chiffre varie deja.

Pour kério:
https://kerio.probb.fr/

A+
0
Aurelieeee Messages postés 64 Statut Membre 4
 
Salut Salut,

Pour la ram je vais pas chercher beaucoup plus loin je vais la changer je vais la doubler en prennant une marque comme corsair ou kingstone afin d'avoir de bonne pièce fiable et performante. l'utilisation de ce triste pc n'en sera que plus aisée.

pour kerio j'arrive toujours pas a le régler :-/
Tu pourrais M'indiquer une manipulation qui pourrait me servir d'exemple ? enfin c'est pas le plus important

Mon pc as semblé être en meilleur forme le temps de quelques jours, mais il recommence a se bloqué sans raison. l'écran se fige plus rien ne répond, la souris ne bouge pu, meme par exemple en tapotant sur la touche Ver Maj ou Ver Num les petites lumières verte devant normalement m'indiquer si tel ou tel touche sont enclenché ne s'allume pu! le pc est vraiment PLanté! ceci beaucoup plus rapidement quand je joue en reseaux ou plus longuement en utilisant le pc de manière tout a fait banale..

j'ai refai un scan sur le site que tu m'avai donné (http://www.virustotal.com/xhtml/virustotal_en.html) J'ai procédé de la meme façon. R.A.S

Ewido Adaware spybot et tout autre programme ne decelle pu de trojan comme ca avai pu etre le cas, ils detectectent des cookies ou divers log sans grande importance que je supprime immediatement. et Avast ne trouve rien

Je Joins un rapport au cas où tu decelerai quelque chose..

Logfile of HijackThis v1.99.1
Scan saved at 20:42:05, on 13/11/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Program Files\Belkin\Belkin Wireless Network Utility\WLService.exe
C:\Program Files\Belkin\Belkin Wireless Network Utility\WLanCfgG.exe
C:\Program Files\ewido anti-spyware 4.0\guard.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Messenger\msmsgs.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\Google\GoogleToolbarNotifier\1.2.908.5008\GoogleToolbarNotifier.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\nou\Mes documents\Mes logiciels\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = LanguedocWarez Rien que pour le plaisir!
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: Ouvrir dans un nouvel onglet d'arrière-plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/229?72fd761c7ed84d648356d8a18f264629
O8 - Extra context menu item: Ouvrir dans un nouvel onglet de premier plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/230?72fd761c7ed84d648356d8a18f264629
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/eng/partner/default/kavwebscan_unicode.cab
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab31267.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety Center Base Module) - http://cdn.scan.safety.live.com/resource/download/scanner/wlscbase8460.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/...
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - Winlogon Notify: rpcc - C:\WINDOWS\
O20 - Winlogon Notify: winsys2freg - C:\Documents and Settings\All Users\Documents\Settings\winsys2f.dll (file missing)
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: Belkin 54g Wireless USB Network Adapter (Belkin 54g Wireless USB Network Adapter Service) - Unknown owner - C:\Program Files\Belkin\Belkin Wireless Network Utility\WLService.exe
O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
O23 - Service: Sunbelt Kerio Personal Firewall 4 (KPF4) - Sunbelt Software - C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
O23 - Service: Microsoft authenticate service (MsaSvc) - Unknown owner - C:\WINDOWS\System32\msasvc.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe

Merci de prendre autant de patiente pour m'aider j'en suis très reconnaissante.
@ bientot
0
Aurelieeee Messages postés 64 Statut Membre 4
 
Je pense pas avoir perdu mon temps avec ce scan.. j'espère que ces infos te seront utiles

KASPERSKY ONLINE SCANNER REPORT
Tuesday, November 14, 2006 3:14:11 AM
Operating System: Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600)
Kaspersky Online Scanner version: 5.0.83.0
Kaspersky Anti-Virus database last update: 14/11/2006
Kaspersky Anti-Virus database records: 227474
Scan Settings
Scan using the following antivirus database standard
Scan Archives true
Scan Mail Bases true
Scan Target My Computer
A:\
C:\
D:\
E:\
Scan Statistics
Total number of scanned objects 57033
Number of viruses found 8
Number of infected objects 12 / 0
Number of suspicious objects 0
Duration of the scan process 00:39:10

Infected Object Name Virus Name Last Action
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat Object is locked skipped
C:\Documents and Settings\LocalService\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Historique\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\nou\Application Data\Mozilla\Firefox\Profiles\zd2m8lm2.default\cert8.db Object is locked skipped
C:\Documents and Settings\nou\Application Data\Mozilla\Firefox\Profiles\zd2m8lm2.default\formhistory.dat Object is locked skipped
C:\Documents and Settings\nou\Application Data\Mozilla\Firefox\Profiles\zd2m8lm2.default\history.dat Object is locked skipped
C:\Documents and Settings\nou\Application Data\Mozilla\Firefox\Profiles\zd2m8lm2.default\key3.db Object is locked skipped
C:\Documents and Settings\nou\Application Data\Mozilla\Firefox\Profiles\zd2m8lm2.default\parent.lock Object is locked skipped
C:\Documents and Settings\nou\Application Data\Mozilla\Firefox\Profiles\zd2m8lm2.default\search.sqlite Object is locked skipped
C:\Documents and Settings\nou\Application Data\Mozilla\Firefox\Profiles\zd2m8lm2.default\urlclassifier2.sqlite Object is locked skipped
C:\Documents and Settings\nou\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Application Data\Mozilla\Firefox\Profiles\zd2m8lm2.default\Cache\_CACHE_001_ Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Application Data\Mozilla\Firefox\Profiles\zd2m8lm2.default\Cache\_CACHE_002_ Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Application Data\Mozilla\Firefox\Profiles\zd2m8lm2.default\Cache\_CACHE_003_ Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Application Data\Mozilla\Firefox\Profiles\zd2m8lm2.default\Cache\_CACHE_MAP_ Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Historique\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Historique\History.IE5\MSHist012006111420061115\index.dat Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\ALBKDGBM\leftTopMenu[1].gif Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\ALBKDGBM\liensCommRight-title[1].png Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\ALBKDGBM\log[1].gif Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\ALBKDGBM\membre[1].gif Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\ALBKDGBM\mymsn[1].js Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\ALBKDGBM\onglet_info_off[1].gif Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\ALBKDGBM\optn=1[1] Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\ALBKDGBM\show23[1].asp Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\ALBKDGBM\smartad[1].js Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\ALBKDGBM\smiley[1].gif Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\ALBKDGBM\start[2].css Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\ALBKDGBM\tab.separator.on.l[1].gif Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\ALBKDGBM\tld2bg[1].gif Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\ALBKDGBM\WMCLogo[1].png Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\ALBKDGBM\wreport[1].js Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\ALBKDGBM\X_barre_acc[1].gif Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\ALBKDGBM\zsa_hp_04[1].gif Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\CPIN4T2N\3x_ssfrais_ok_03[1].gif Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\CPIN4T2N\403307094_small[1].jpg Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\CPIN4T2N\403310641_small[1].jpg Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\CPIN4T2N\519108445_small[1].jpg Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\CPIN4T2N\bannerFR1[1].jpg Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\CPIN4T2N\BC19119EE793ABA0722E932110B283[1].gif Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\CPIN4T2N\bg3[1].gif Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\CPIN4T2N\DartRichMedia_1_03[1].js Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\CPIN4T2N\desktop.ini Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\CPIN4T2N\d[1].htm Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\CPIN4T2N\entreprise-1[1].gif Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\CPIN4T2N\expand_~Right~_rest_~ContainerHeaderTextLuminance~[1].gif Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\CPIN4T2N\flag_croatia[1].gif Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\CPIN4T2N\Home[1].gif Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\CPIN4T2N\HTML[1].htm Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\CPIN4T2N\i.p.emwink[1].gif Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\CPIN4T2N\ie60win[2].css Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\CPIN4T2N\ImageClicable5[1].jpg Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\CPIN4T2N\imprimer[1].gif Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\CPIN4T2N\includenbcomment[4].js Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\CPIN4T2N\includenbcomment[7].js Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\CPIN4T2N\jewel_collage[1].png Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\CPIN4T2N\Live.Controls.CustomizeDialog[1].js Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\CPIN4T2N\look2_1[1].gif Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\CPIN4T2N\micro[1].gif Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\CPIN4T2N\msft[1].gif Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\CPIN4T2N\nav2_r[1].gif Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\CPIN4T2N\offres_haut_gauxhe[1].gif Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\CPIN4T2N\onglet_jouets_off[1].gif Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\CPIN4T2N\open[1].gif Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\CPIN4T2N\referencez-le[1].gif Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\CPIN4T2N\relance_05[1].gif Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\CPIN4T2N\remotesuggestions[1].js Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\CPIN4T2N\remote[1].htm Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\CPIN4T2N\satisfait1[1].gif Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\CPIN4T2N\show23[4].asp Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\CPIN4T2N\signup[1].htm Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\CPIN4T2N\SMmega_lancement1[1].swf Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\CPIN4T2N\souvenir[1].gif Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\CPIN4T2N\tiretsrouge_305_bordgauchedroite[1].gif Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\FZ17BPKW\bracelet_offert[1].gif Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\FZ17BPKW\CAZISNR1.htm Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\FZ17BPKW\cothaut_garantie[1].gif Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\FZ17BPKW\desktop.ini Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\FZ17BPKW\gateway[1].31418 Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\FZ17BPKW\gateway[1].5226 Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\FZ17BPKW\global[3].css Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\FZ17BPKW\grattage[4].js Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\FZ17BPKW\hl2[1].gif Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\FZ17BPKW\img[2].gif Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\FZ17BPKW\info[1].gif Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\FZ17BPKW\page-prix-fou_02[1].jpg Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\FZ17BPKW\skyblogsms[1].png Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\KPQF0TU3\25169_90_70_FFFFFF[1].jpg Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\KPQF0TU3\2586[1].jpg Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\KPQF0TU3\3009ab322882[1] Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\KPQF0TU3\41B26545CBDCCFE86C61FB6A52EC3[1].jpg Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\KPQF0TU3\601187146_comment_1[1].htm Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\KPQF0TU3\audible_a_icon_15T[1].png Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\KPQF0TU3\desktop.ini Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\KPQF0TU3\ecrire[1].gif Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\KPQF0TU3\env[1].jpg Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\KPQF0TU3\gateway[1].5864 Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\KPQF0TU3\gateway[1].9263 Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\KPQF0TU3\getmsg_urlframewarn[1].htm Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\KPQF0TU3\i.p.im_off[1].gif Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\KPQF0TU3\mari0n-59.spaces.live[1].htm Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\KPQF0TU3\msft[1].gif Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\M7ABAH6F\535564119_small[1].jpg Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\M7ABAH6F\601174470[1].jpg Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\M7ABAH6F\alaune-071106[1].jpg Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\M7ABAH6F\bouton[1].gif Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\M7ABAH6F\grand_jeu[1].gif Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\M7ABAH6F\hawaii_blue0102_S_Informations_944A882C_FR[1].gif Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\M7ABAH6F\search[10].htm Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\M7ABAH6F\search[15].htm Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\M7ABAH6F\search[21].htm Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\M7ABAH6F\search[26].htm Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\M7ABAH6F\search[33].htm Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\M7ABAH6F\search[4].htm Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\M7ABAH6F\search[6].htm Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\M7ABAH6F\select_all[1].gif Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\OXOLAF8T\471562233[1].jpg Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\OXOLAF8T\473799729_small[1].jpg Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\OXOLAF8T\AO%3D0%3BLY%3D0%3BYA%3D0%3BGO%3D0%3BRSS%3D0%3BCA%3D0%3Bbillboard%2CSousRubrique%2Cwindows_Bureautique_tableur[1] Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\OXOLAF8T\Ban_v4_DernieresNews[1].gif Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\OXOLAF8T\b_new[1].gif Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\OXOLAF8T\dragdrop[1].js Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\OXOLAF8T\HeaderCenterImage[1].gif Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\Q93QJ7C0\42239_90_70_FFFFFF[1].jpg Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\Q93QJ7C0\btn_hot_normal[1].gif Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\Q93QJ7C0\gateway[1].15600 Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\Q93QJ7C0\gateway[1].20448 Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\SXQZS5UR\495139122_small[1].jpg Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\SXQZS5UR\bl_rs[1].gif Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\SXQZS5UR\btn_jouer[1].gif Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\SXQZS5UR\CAFIUTNJ.htm Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\SXQZS5UR\grattage[1].js Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\SXQZS5UR\grattage[6].js Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\SXQZS5UR\tagger_v02[1].htm Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\SXQZS5UR\TC_produit_points_promo[1].gif Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\W9YZ8L27\1011-video-ina[1].gif Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\W9YZ8L27\1531885604@Top,Bottom[2] Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\W9YZ8L27\1564320968@Top,Bottom[1] Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\W9YZ8L27\abonne[1].gif Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\W9YZ8L27\clearicon_~ContainerHeaderTextLuminance~[1].gif Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\W9YZ8L27\commentaireForm[1].htm Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\W9YZ8L27\cr[1].js Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\W9YZ8L27\ebayfooter_e4831fr[1].js Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\W9YZ8L27\fl_t_bg_1[1].gif Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\W9YZ8L27\FutureCREW-paveSupv2[1].swf Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\W9YZ8L27\gateway[1].16573 Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\W9YZ8L27\gateway[1].17572 Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\W9YZ8L27\gateway[1].25947 Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\W9YZ8L27\gateway[1].30635 Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\W9YZ8L27\gateway[1].7614 Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\W9YZ8L27\global[3].css Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\W9YZ8L27\grattage[7].js Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\W9YZ8L27\header[1].js Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\W9YZ8L27\helppane___10210002F[2].js Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\W9YZ8L27\spacer[1].gif Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\Y18R6DQ5\343245173_small[1].jpg Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\Y18R6DQ5\495174216_small[1].jpg Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\Y18R6DQ5\511918626_comment_1[1].htm Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\Y18R6DQ5\builder[1].js Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\Y18R6DQ5\CA5WONH1.swf Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\Y18R6DQ5\CAFMAD77.htm Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\Y18R6DQ5\campaign_postxmas_2_234x60[1].gif Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\Y18R6DQ5\CAT8YH9F.htm Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\Y18R6DQ5\logo[1].gif Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\Y18R6DQ5\menuitem_fr_pe_2[1].xml Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\Y18R6DQ5\monde0[1].css Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\Y18R6DQ5\start[1].cab Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\Y18R6DQ5\success[1].htm Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\Y18R6DQ5\tr_vsure[1].gif Object is locked skipped
C:\Documents and Settings\nou\Local Settings\Temporary Internet Files\Content.IE5\Y18R6DQ5\VerticalBleu_DA28EF6_FR[1].jpg Object is locked skipped
C:\Documents and Settings\nou\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\nou\ntuser.dat.LOG Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\aswResp.dat Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\Avast4.db Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\log\AshWebSv.ws Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\log\aswMaiSv.log Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\log\nshield.log Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\report\Protection résidente.txt Object is locked skipped
C:\Program Files\Sunbelt Software\Personal Firewall\logs\debug.log Object is locked skipped
C:\Program Files\Sunbelt Software\Personal Firewall\logs\debug.log.idx Object is locked skipped
C:\Program Files\Sunbelt Software\Personal Firewall\logs\error.log Object is locked skipped
C:\Program Files\Sunbelt Software\Personal Firewall\logs\error.log.idx Object is locked skipped
C:\Program Files\Sunbelt Software\Personal Firewall\logs\hips.log Object is locked skipped
C:\Program Files\Sunbelt Software\Personal Firewall\logs\hips.log.idx Object is locked skipped
C:\Program Files\Sunbelt Software\Personal Firewall\logs\ids.log Object is locked skipped
C:\Program Files\Sunbelt Software\Personal Firewall\logs\ids.log.idx Object is locked skipped
C:\Program Files\Sunbelt Software\Personal Firewall\logs\network.log Object is locked skipped
C:\Program Files\Sunbelt Software\Personal Firewall\logs\network.log.idx Object is locked skipped
C:\Program Files\Sunbelt Software\Personal Firewall\logs\system.log Object is locked skipped
C:\Program Files\Sunbelt Software\Personal Firewall\logs\system.log.idx Object is locked skipped
C:\Program Files\Sunbelt Software\Personal Firewall\logs\warning.log Object is locked skipped
C:\Program Files\Sunbelt Software\Personal Firewall\logs\warning.log.idx Object is locked skipped
C:\Program Files\Sunbelt Software\Personal Firewall\logs\web.log Object is locked skipped
C:\Program Files\Sunbelt Software\Personal Firewall\logs\web.log.idx Object is locked skipped
C:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped
C:\System Volume Information\_restore{EE5C1D49-E816-48D3-9EEF-82DEDEB6497C}\RP86\A0022889.exe Infected: Trojan-Downloader.Win32.Tibs.gc skipped
C:\System Volume Information\_restore{EE5C1D49-E816-48D3-9EEF-82DEDEB6497C}\RP86\A0022890.exe Infected: Trojan-Downloader.Win32.Tibs.gc skipped
C:\System Volume Information\_restore{EE5C1D49-E816-48D3-9EEF-82DEDEB6497C}\RP86\A0022891.exe Infected: Trojan-Downloader.Win32.Tibs.gc skipped
C:\System Volume Information\_restore{EE5C1D49-E816-48D3-9EEF-82DEDEB6497C}\RP86\A0022892.exe Infected: Trojan-Downloader.Win32.Tibs.gc skipped
C:\System Volume Information\_restore{EE5C1D49-E816-48D3-9EEF-82DEDEB6497C}\RP86\A0022919.exe Infected: Trojan-Downloader.Win32.Small.dzd skipped
C:\System Volume Information\_restore{EE5C1D49-E816-48D3-9EEF-82DEDEB6497C}\RP86\A0022920.exe Infected: Trojan-Proxy.Win32.Xorpix.au skipped
C:\System Volume Information\_restore{EE5C1D49-E816-48D3-9EEF-82DEDEB6497C}\RP86\A0022922.exe Infected: Email-Worm.Win32.Glowa.g skipped
C:\System Volume Information\_restore{EE5C1D49-E816-48D3-9EEF-82DEDEB6497C}\RP86\A0022923.exe Infected: Trojan-Downloader.Win32.Tibs.jb skipped
C:\System Volume Information\_restore{EE5C1D49-E816-48D3-9EEF-82DEDEB6497C}\RP87\A0024158.exe Infected: Trojan-Downloader.Win32.Tiny.bw skipped
C:\System Volume Information\_restore{EE5C1D49-E816-48D3-9EEF-82DEDEB6497C}\RP87\A0024159.exe Infected: Backdoor.Win32.Pakes skipped
C:\System Volume Information\_restore{EE5C1D49-E816-48D3-9EEF-82DEDEB6497C}\RP90\A0027631.exe Infected: Trojan.Win32.Agent.zq skipped
C:\System Volume Information\_restore{EE5C1D49-E816-48D3-9EEF-82DEDEB6497C}\RP94\A0039258.exe Infected: Trojan-Downloader.Win32.Tibs.jb skipped
C:\System Volume Information\_restore{EE5C1D49-E816-48D3-9EEF-82DEDEB6497C}\RP99\change.log Object is locked skipped
C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped
C:\WINDOWS\SchedLgU.Txt Object is locked skipped
C:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked skipped
C:\WINDOWS\Sti_Trace.log Object is locked skipped
C:\WINDOWS\system32\config\Antivirus.Evt Object is locked skipped
C:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\default Object is locked skipped
C:\WINDOWS\system32\config\default.LOG Object is locked skipped
C:\WINDOWS\system32\config\SAM Object is locked skipped
C:\WINDOWS\system32\config\SAM.LOG Object is locked skipped
C:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\SECURITY Object is locked skipped
C:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped
C:\WINDOWS\system32\config\software Object is locked skipped
C:\WINDOWS\system32\config\software.LOG Object is locked skipped
C:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\system Object is locked skipped
C:\WINDOWS\system32\config\system.LOG Object is locked skipped
C:\WINDOWS\system32\h323log.txt Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP Object is locked skipped
C:\WINDOWS\Temp\Perflib_Perfdata_48c.dat Object is locked skipped
C:\WINDOWS\Temp\_avast4_\Webshlock.txt Object is locked skipped
C:\WINDOWS\wiadebug.log Object is locked skipped
C:\WINDOWS\wiaservc.log Object is locked skipped
C:\WINDOWS\WindowsUpdate.log Object is locked skipped
Scan process completed.
0
Regis59 Messages postés 21143 Date d'inscription   Statut Contributeur sécurité Dernière intervention   1 322
 
Salut

As tu un nettoyeur de registre?

A+
0
Aurelieeee Messages postés 64 Statut Membre 4
 
bsr,

oui J'en est 2, Je viens de fair un nettoyage du registre avec easy cleaner.
J'ai aussi Regcleaner.

Et J'ai aussi ccleaner mais l'installation plante au tout début après selection de langue..

@ bientot
0