[Virus] Iexplore.exe en double exemplaire

Kozee -  
 Utilisateur anonyme -
Bonjour :-)

Depuis quelques jours j'ai IEXPLORE.exe en deux exemplaires dans mon gestionnaire de taches... Je sais que c'est un virus, mais je ne sais pas comment m'en debarasser... Avast ne le detecte pas... J'ai parcouru google, mais d'après ce que j'ai compris, chacun doit regler son problème d'une manière differente selon son rapport Hijackthis...
Voici le mien :

Logfile of HijackThis v1.99.1
Scan saved at 13:21:40, on 26/12/2006
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Java\jre1.5.0_09\bin\jusched.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\System32\RUNDLL32.EXE
C:\WINDOWS\System32\ctfmon.exe
C:\WINDOWS\System32\rundll32.exe
C:\Program Files\Internet Explorer\iexplore.exe
c:\progra~1\intern~1\iexplore.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\WINDOWS\System32\wuauclt.exe
C:\Program Files\Java\jre1.5.0_09\bin\jucheck.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Guillaume\Bureau\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = [url=http://www.wanadoo.fr]https://www.orange.fr/portail[/url]
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_09\bin\jusched.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [Storeaxisshowacid] C:\Documents and Settings\All Users\Application Data\global16storeaxis\List Bait.exe
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe /auto
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\Shell.exe appLaunchClientZone.shl|DEFAULT=cnx|PARAM=
O4 - HKCU\..\Run: [bits new] C:\DOCUME~1\GUILLA~1\APPLIC~1\BOLTDU~1\metainfoaxis.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O16 - DPF: {B64F4A7C-97C9-11DA-8BDE-F66BAD1E3F3A} - [url=https://www.afternic.com/domains/errorsafe.comb]https://www.afternic.com/domains/errorsafe.com[/url]
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: BlueSoleil Hid Service - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\Intel 32\IDriverT.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe


Si quelqu'un peut m'aider...
Merci
Configuration: Windows XP
Firefox 2.0.0.1

8 réponses

  1. Utilisateur anonyme
     
    Salut

    évite le bleu s'il te plait.

    ¤ Télécharge lopxp :
    http://perso.numericable.fr/~altshift/Info/Fichiers/lopxpMH2.zip

    dézippe-le sur ton bureau puis double-clic sur le fichier "lopxpMH.bat"
    quand il à terminé, un rapport s'ouvre : fait un copier-coller puis mets le ici

    ¤ Installe ce pare-feu pour lus de sécurité :

    Kerio: (pare-feu, qui reste gratuit après la periode d'essai!)
    --->Kerio
    -tutoriel : pour configurer et comprendre l'utilisation de Kerio
    https://kerio.probb.fr/f2-sunbelt-kerio-personal-firewall

    ¤ Télécharge, installe puis met à jour ce logiciel(Ewido), une fois que c'est fait, fais un scan complet de ton système, supprime (delete) tout ce qu'il te trouve puis colle le rapport ici stp
    Ewido: (en Anglais reste gratuit après la période d'essai)
    --->Ewido
    Si tu as besoin d'aide avec Ewido(devenu AVG-antispyware) regarde ce tutoriel:
    http://www.kachouri.com/tuto/tuto-161-avg-anti-spyware-75-pour-votre-securite.html
    0
  2. Kozee
     
    Merci d'essayer de m'aider ! ;)
    Je n'utilise pas le bleu, j'utilise simplement l'outil "code", je l'utiliserai plus ;)

    Voila le rapport lopxp :

    Rapport fait à 17:42:46,34 le 05/01/2007

    ******************************************
    ## Répertoires Application Data

    Le volume dans le lecteur C n'a pas de nom.
    Le num‚ro de s‚rie du volume est 6046-5798

    R‚pertoire de C:\Documents and Settings\All Users\Application Data

    21/10/2006 14:55 <REP> .
    21/10/2006 14:55 <REP> ..
    03/11/2006 17:26 <REP> Adobe
    03/11/2006 17:30 <REP> Adobe Systems
    01/11/2006 23:46 <REP> Apple Computer
    27/11/2006 21:05 <REP> Bluetooth
    07/12/2006 21:44 <REP> global16storeaxis
    21/10/2006 23:01 <REP> IconTweaker
    03/01/2007 23:09 <REP> Locktime
    26/12/2006 15:33 <REP> Macromedia
    18/12/2006 19:24 <REP> McNeel
    07/12/2006 21:46 <REP> Messenger Plus!
    21/10/2006 14:55 <REP> Microsoft
    21/10/2006 14:15 <REP> nView_Profiles
    23/12/2006 11:51 <REP> Windows Genuine Advantage
    21/10/2006 14:55 62 desktop.ini
    1 fichier(s) 62 octets
    15 R‚p(s) 26ÿ792ÿ251ÿ392 octets libres
    Le volume dans le lecteur C n'a pas de nom.
    Le num‚ro de s‚rie du volume est 6046-5798

    R‚pertoire de C:\Documents and Settings\Default User\Application Data

    21/10/2006 14:55 <REP> .
    21/10/2006 14:55 <REP> ..
    21/10/2006 14:55 <REP> Microsoft
    21/10/2006 14:55 62 desktop.ini
    1 fichier(s) 62 octets
    3 R‚p(s) 26ÿ792ÿ251ÿ392 octets libres
    Le volume dans le lecteur C n'a pas de nom.
    Le num‚ro de s‚rie du volume est 6046-5798

    R‚pertoire de C:\Documents and Settings\Default User\Local Settings\Application Data

    21/10/2006 14:55 <REP> .
    21/10/2006 14:55 <REP> ..
    0 fichier(s) 0 octets
    2 R‚p(s) 26ÿ792ÿ251ÿ392 octets libres
    Le volume dans le lecteur C n'a pas de nom.
    Le num‚ro de s‚rie du volume est 6046-5798

    R‚pertoire de C:\Documents and Settings\Guillaume\Application Data

    21/10/2006 14:06 <REP> .
    21/10/2006 14:06 <REP> ..
    21/10/2006 17:32 <REP> Adobe
    11/11/2006 20:10 <REP> Apple Computer
    07/12/2006 21:44 <REP> boltdupecity
    24/10/2006 18:54 <REP> DivX
    22/10/2006 14:24 <REP> Help
    21/10/2006 14:07 <REP> Identities
    03/01/2007 23:10 <REP> Locktime
    21/10/2006 14:37 <REP> Macromedia
    21/10/2006 14:06 <REP> Microsoft
    21/10/2006 14:36 <REP> Morpheus
    21/10/2006 14:35 <REP> Mozilla
    03/11/2006 23:53 <REP> Sun
    03/01/2007 18:46 <REP> Xfire
    21/10/2006 14:06 62 desktop.ini
    02/11/2006 15:19 60 sversion.ini
    02/11/2006 15:21 8ÿ192 user52.rdb
    3 fichier(s) 8ÿ314 octets
    15 R‚p(s) 26ÿ792ÿ255ÿ488 octets libres
    Le volume dans le lecteur C n'a pas de nom.
    Le num‚ro de s‚rie du volume est 6046-5798

    R‚pertoire de C:\Documents and Settings\Guillaume\Local Settings\Application Data

    21/10/2006 14:06 <REP> .
    21/10/2006 14:06 <REP> ..
    03/11/2006 17:31 <REP> Adobe
    01/11/2006 23:48 <REP> Apple Computer
    21/12/2006 21:58 <REP> Downloaded Installations
    22/10/2006 14:24 <REP> Help
    05/12/2006 19:36 <REP> Identities
    21/10/2006 14:06 <REP> Microsoft
    21/10/2006 14:35 <REP> Mozilla
    31/10/2006 19:15 <REP> Sun
    27/10/2006 13:07 10ÿ240 DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
    07/12/2006 21:43 81ÿ680 GDIPFONTCACHEV1.DAT
    22/10/2006 13:11 4ÿ992ÿ338 IconCache.db
    3 fichier(s) 5ÿ084ÿ258 octets
    10 R‚p(s) 26ÿ792ÿ255ÿ488 octets libres
    Le volume dans le lecteur C n'a pas de nom.
    Le num‚ro de s‚rie du volume est 6046-5798

    R‚pertoire de C:\Documents and Settings\LocalService\Application Data

    21/10/2006 14:06 <REP> .
    21/10/2006 14:06 <REP> ..
    21/10/2006 14:06 <REP> Microsoft
    0 fichier(s) 0 octets
    3 R‚p(s) 26ÿ792ÿ251ÿ392 octets libres
    Le volume dans le lecteur C n'a pas de nom.
    Le num‚ro de s‚rie du volume est 6046-5798

    R‚pertoire de C:\Documents and Settings\LocalService\Local Settings\Application Data

    21/10/2006 14:06 <REP> .
    21/10/2006 14:06 <REP> ..
    21/10/2006 14:06 <REP> Microsoft
    0 fichier(s) 0 octets
    3 R‚p(s) 26ÿ792ÿ251ÿ392 octets libres
    Le volume dans le lecteur C n'a pas de nom.
    Le num‚ro de s‚rie du volume est 6046-5798

    R‚pertoire de C:\Documents and Settings\NetworkService\Application Data

    21/10/2006 14:06 <REP> .
    21/10/2006 14:06 <REP> ..
    21/10/2006 14:06 <REP> Microsoft
    0 fichier(s) 0 octets
    3 R‚p(s) 26ÿ792ÿ251ÿ392 octets libres
    Le volume dans le lecteur C n'a pas de nom.
    Le num‚ro de s‚rie du volume est 6046-5798

    R‚pertoire de C:\Documents and Settings\NetworkService\Local Settings\Application Data

    21/10/2006 14:06 <REP> .
    21/10/2006 14:06 <REP> ..
    21/10/2006 14:06 <REP> Microsoft
    0 fichier(s) 0 octets
    3 R‚p(s) 26ÿ792ÿ251ÿ392 octets libres
    Le volume dans le lecteur C n'a pas de nom.
    Le num‚ro de s‚rie du volume est 6046-5798

    R‚pertoire de C:\WINDOWS\system32\config\systemprofile\Application Data

    21/10/2006 14:04 <REP> .
    21/10/2006 14:04 <REP> ..
    21/10/2006 14:04 <REP> Microsoft
    21/10/2006 14:04 62 desktop.ini
    1 fichier(s) 62 octets
    3 R‚p(s) 26ÿ792ÿ251ÿ392 octets libres
    Le volume dans le lecteur C n'a pas de nom.
    Le num‚ro de s‚rie du volume est 6046-5798

    R‚pertoire de C:\WINDOWS\system32\config\systemprofile\Local Settings\Application Data

    21/10/2006 14:04 <REP> .
    21/10/2006 14:04 <REP> ..
    0 fichier(s) 0 octets
    2 R‚p(s) 26ÿ792ÿ251ÿ392 octets libres

    ******************************************
    Recherche des taches planifiées dans C:\WINDOWS\tasks

    Le volume dans le lecteur C n'a pas de nom.
    Le num‚ro de s‚rie du volume est 6046-5798

    R‚pertoire de C:\WINDOWS\Tasks

    07/12/2006 21:44 274 A84FBDCF914C36AF.job
    01/11/2006 23:47 284 AppleSoftwareUpdate.job
    21/10/2006 14:02 6 SA.DAT
    21/10/2006 14:00 65 desktop.ini
    21/10/2006 14:00 <REP> ..
    21/10/2006 14:00 <REP> .
    4 fichier(s) 629 octets
    2 R‚p(s) 26ÿ792ÿ251ÿ392 octets libres

    ******************************************
    ## Répertoires de Program files

    Le volume dans le lecteur C n'a pas de nom.
    Le num‚ro de s‚rie du volume est 6046-5798

    R‚pertoire de C:\Program Files

    05/01/2007 17:28 <REP> .
    05/01/2007 17:28 <REP> ..
    03/01/2007 14:06 <REP> Adobe
    07/12/2006 21:43 <REP> Adverts
    21/11/2006 18:20 <REP> Alwil Software
    11/11/2006 20:03 <REP> Apple Software Update
    21/10/2006 15:11 <REP> AvRack
    07/12/2006 21:44 <REP> boltdupecity
    18/12/2006 19:24 <REP> Common Files
    21/10/2006 14:00 <REP> ComPlus Applications
    11/11/2006 16:49 <REP> Curious Labs
    22/12/2006 11:45 <REP> DirectX
    21/10/2006 22:14 <REP> DivX
    27/12/2006 21:40 <REP> DkZ Studio
    25/12/2006 22:05 <REP> EA GAMES
    23/12/2006 11:43 <REP> Electronic Arts
    04/01/2007 13:53 <REP> eMule
    26/12/2006 15:34 <REP> Fichiers communs
    18/11/2006 16:07 <REP> Game Graphic Studio
    21/10/2006 14:01 <REP> Internet Explorer
    25/12/2006 02:38 <REP> iPod
    25/12/2006 02:38 <REP> iTunes
    27/11/2006 21:02 <REP> IVT Corporation
    31/10/2006 19:16 <REP> Java
    27/12/2006 16:23 <REP> KONAMI
    21/10/2006 14:56 <REP> Lavalys
    26/12/2006 15:33 <REP> Macromedia
    21/10/2006 13:59 <REP> Messenger
    07/12/2006 21:43 <REP> Messenger Plus! Live
    22/11/2006 22:38 <REP> MessengerPlus! 3
    21/10/2006 14:03 <REP> microsoft frontpage
    04/01/2007 20:45 <REP> Morpheus
    27/11/2006 20:27 <REP> MorpheusBar
    21/10/2006 14:01 <REP> Movie Maker
    05/01/2007 17:21 <REP> Mozilla Firefox
    21/10/2006 13:59 <REP> MSN
    21/10/2006 13:59 <REP> MSN Gaming Zone
    07/12/2006 22:15 <REP> MSN Messenger
    03/01/2007 23:09 <REP> NetLimiter 2 Pro
    21/10/2006 14:01 <REP> NetMeeting
    18/12/2006 19:00 <REP> OEdit
    21/10/2006 14:01 <REP> Outlook Express
    11/11/2006 18:28 <REP> P3dO Explorer
    11/11/2006 20:09 <REP> QuickTime
    21/10/2006 15:11 <REP> Realtek Sound Manager
    25/12/2006 02:04 <REP> RegistrySmart
    18/12/2006 19:25 <REP> Rhinoceros 3.0 Evaluation
    23/10/2006 18:07 <REP> SAGEM
    21/10/2006 14:01 <REP> Services en ligne
    21/10/2006 23:17 <REP> Stardock
    05/01/2007 17:28 <REP> Sunbelt Software
    03/01/2007 19:26 <REP> The All-Seeing Eye
    21/10/2006 22:38 <REP> UxTheme Multipatcher Fr
    26/11/2006 11:58 <REP> Wanadoo
    21/10/2006 18:06 <REP> Winamp
    21/10/2006 14:07 <REP> Windows Media Player
    21/10/2006 13:59 <REP> Windows NT
    21/10/2006 15:01 <REP> WinRAR
    21/10/2006 14:03 <REP> xerox
    0 fichier(s) 0 octets
    59 R‚p(s) 26ÿ792ÿ247ÿ296 octets libres

    ******************************************
    ## Popups autorisées

    * Internet Explorer

    * Mozilla Firefox (1 autorisé 2 interdit)

    ---------- C:\DOCUMENTS AND SETTINGS\GUILLAUME\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\VMZY4IEB.DEFAULT\HOSTPERM.1
    host popup 1 www.myheritage.com
    host popup 1 www.infos-du-net.com
    host popup 1 webmessenger.msn.com
    host popup 1 www.jeux2foot.com
    host popup 1 www.touslesdrivers.com

    ******************************************
    ## Registre

    * [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    Storeaxisshowacid REG_SZ C:\Documents and Settings\All Users\Application Data\global16storeaxis\List Bait.exe

    * [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    bits new REG_SZ C:\DOCUME~1\GUILLA~1\APPLIC~1\BOLTDU~1\metainfoaxis.exe

    * [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg]
    command REG_SZ C:\DOCUME~1\GUILLA~1\APPLIC~1\BOLTDU~1\metainfoaxis.exe

    ******************************************
    ## Zones de sécurité

    * HKCU Domains (4)

    * P3P History (5)

    ******************************************
    ## Recherche C:\WINDOWS\*.htm, "C:\WINDOWS\*.gif"

    Le volume dans le lecteur C n'a pas de nom.
    Le num‚ro de s‚rie du volume est 6046-5798

    R‚pertoire de C:\WINDOWS

    Le volume dans le lecteur C n'a pas de nom.
    Le num‚ro de s‚rie du volume est 6046-5798

    R‚pertoire de C:\WINDOWS

    *************** Fin du rapport ****************

    Rapport ewido :

    ---------------------------------------------------------
    ewido anti-spyware - Scan Report
    ---------------------------------------------------------

    + Created at: 18:20:45 05/01/2007

    + Scan result:

    HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{c95fe080-8f5d-11d2-a20b-00aa003c157a} -> Adware.Generic : Cleaned with backup (quarantined).
    C:\Documents and Settings\Guillaume\Local Settings\Temporary Internet Files\Content.IE5\ZA6BLE1T\ErrorSafeFrenchNewReleaseInstall[1].cab/UERSV_0001_N91S2108NetInstaller.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Ignored.
    :mozilla.10:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
    :mozilla.11:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
    :mozilla.9:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
    :mozilla.434:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.435:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.436:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.437:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.438:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.439:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.440:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.441:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.442:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.443:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.444:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.445:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.446:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.872:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    C:\Documents and Settings\Guillaume\Cookies\guillaume@2o7[2].txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.386:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
    :mozilla.387:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
    C:\Documents and Settings\Guillaume\Cookies\guillaume@admarketplace[1].txt -> TrackingCookie.Admarketplace : Cleaned.
    :mozilla.116:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
    :mozilla.117:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
    :mozilla.292:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.
    :mozilla.293:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.
    :mozilla.119:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
    :mozilla.120:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
    :mozilla.125:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
    :mozilla.126:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
    :mozilla.127:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
    C:\Documents and Settings\Guillaume\Cookies\guillaume@advertising[1].txt -> TrackingCookie.Advertising : Cleaned.
    :mozilla.122:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned.
    C:\Documents and Settings\Guillaume\Cookies\guillaume@atdmt[2].txt -> TrackingCookie.Atdmt : Cleaned.
    :mozilla.409:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Bluestreak : Cleaned.
    C:\Documents and Settings\Guillaume\Cookies\guillaume@bluestreak[2].txt -> TrackingCookie.Bluestreak : Cleaned.
    :mozilla.123:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
    :mozilla.124:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
    :mozilla.520:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
    :mozilla.521:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
    :mozilla.522:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
    :mozilla.523:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
    :mozilla.524:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
    :mozilla.525:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
    C:\Documents and Settings\Guillaume\Cookies\guillaume@casalemedia[2].txt -> TrackingCookie.Casalemedia : Cleaned.
    C:\Documents and Settings\Guillaume\Cookies\guillaume@clickbank[2].txt -> TrackingCookie.Clickbank : Cleaned.
    :mozilla.818:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Clickhype : Cleaned.
    :mozilla.707:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Clickzs : Cleaned.
    :mozilla.708:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Clickzs : Cleaned.
    :mozilla.710:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Clickzs : Cleaned.
    :mozilla.711:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Clickzs : Cleaned.
    :mozilla.448:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Com : Cleaned.
    :mozilla.449:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Com : Cleaned.
    :mozilla.160:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Comclick : Cleaned.
    :mozilla.161:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Comclick : Cleaned.
    :mozilla.163:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Comclick : Cleaned.
    C:\Documents and Settings\Guillaume\Cookies\guillaume@fl01.ct2.comclick[1].txt -> TrackingCookie.Comclick : Cleaned.
    C:\Documents and Settings\Guillaume\Cookies\guillaume@data.coremetrics[1].txt -> TrackingCookie.Coremetrics : Cleaned.
    :mozilla.709:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Cqcounter : Cleaned.
    :mozilla.27:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned.
    C:\Documents and Settings\Guillaume\Cookies\guillaume@doubleclick[2].txt -> TrackingCookie.Doubleclick : Cleaned.
    :mozilla.870:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
    :mozilla.371:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Estat : Cleaned.
    :mozilla.921:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
    :mozilla.922:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
    :mozilla.219:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
    :mozilla.221:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
    :mozilla.222:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
    :mozilla.223:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
    :mozilla.224:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
    C:\Documents and Settings\Guillaume\Cookies\guillaume@as-us.falkag[1].txt -> TrackingCookie.Falkag : Cleaned.
    C:\Documents and Settings\Guillaume\Cookies\guillaume@as1.falkag[1].txt -> TrackingCookie.Falkag : Cleaned.
    :mozilla.114:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
    :mozilla.115:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
    :mozilla.118:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
    C:\Documents and Settings\Guillaume\Cookies\guillaume@fastclick[1].txt -> TrackingCookie.Fastclick : Cleaned.
    :mozilla.881:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
    :mozilla.882:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
    :mozilla.362:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned.
    :mozilla.363:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned.
    C:\Documents and Settings\Guillaume\Cookies\guillaume@mediaplex[1].txt -> TrackingCookie.Mediaplex : Cleaned.
    :mozilla.100:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
    C:\Documents and Settings\Guillaume\Cookies\guillaume@ads.pointroll[1].txt -> TrackingCookie.Pointroll : Cleaned.
    :mozilla.802:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Quarterserver : Cleaned.
    :mozilla.827:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
    :mozilla.828:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
    :mozilla.829:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
    C:\Documents and Settings\Guillaume\Cookies\guillaume@stats1.reliablestats[2].txt -> TrackingCookie.Reliablestats : Cleaned.
    C:\Documents and Settings\Guillaume\Cookies\guillaume@revenue[2].txt -> TrackingCookie.Revenue : Cleaned.
    :mozilla.764:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
    :mozilla.765:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
    :mozilla.766:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
    :mozilla.767:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
    :mozilla.768:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
    :mozilla.769:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
    C:\Documents and Settings\Guillaume\Cookies\guillaume@bs.serving-sys[1].txt -> TrackingCookie.Serving-sys : Cleaned.
    C:\Documents and Settings\Guillaume\Cookies\guillaume@serving-sys[1].txt -> TrackingCookie.Serving-sys : Cleaned.
    :mozilla.189:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.
    :mozilla.190:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.
    :mozilla.932:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.
    :mozilla.274:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
    :mozilla.275:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
    :mozilla.276:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
    C:\Documents and Settings\Guillaume\Cookies\guillaume@www.smartadserver[2].txt -> TrackingCookie.Smartadserver : Cleaned.
    :mozilla.545:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.546:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.548:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.549:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.550:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.551:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.552:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.553:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.554:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.555:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.556:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.557:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.785:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
    :mozilla.786:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
    :mozilla.787:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
    C:\Documents and Settings\Guillaume\Cookies\guillaume@tacoda[1].txt -> TrackingCookie.Tacoda : Cleaned.
    :mozilla.876:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Tracking101 : Cleaned.
    :mozilla.43:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
    :mozilla.45:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
    :mozilla.46:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
    :mozilla.47:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
    C:\Documents and Settings\Guillaume\Cookies\guillaume@tradedoubler[2].txt -> TrackingCookie.Tradedoubler : Cleaned.
    :mozilla.803:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
    :mozilla.804:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
    :mozilla.805:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
    :mozilla.806:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
    :mozilla.807:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
    :mozilla.808:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
    :mozilla.809:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
    :mozilla.121:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned.
    :mozilla.542:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Valueclick : Cleaned.
    :mozilla.324:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.
    :mozilla.325:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.
    :mozilla.326:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.
    C:\Documents and Settings\Guillaume\Cookies\guillaume@weborama[2].txt -> TrackingCookie.Weborama : Cleaned.
    :mozilla.693:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned.
    :mozilla.28:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
    :mozilla.29:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
    :mozilla.30:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
    :mozilla.31:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
    :mozilla.32:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
    :mozilla.37:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
    :mozilla.38:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
    C:\Documents and Settings\Guillaume\Cookies\guillaume@ad.yieldmanager[2].txt -> TrackingCookie.Yieldmanager : Cleaned.
    :mozilla.824:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
    :mozilla.825:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
    :mozilla.826:C:\Documents and Settings\Guillaume\Application Data\Mozilla\Firefox\Profiles\vmzy4ieb.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
    C:\Documents and Settings\Guillaume\Cookies\guillaume@zedo[1].txt -> TrackingCookie.Zedo : Cleaned.

    ::Report end
    0
  3. Kozee
     
    S'il vous plait, j'ai toujours le virus :( Merci de bien vouloir m'aider.
    0
  4. Utilisateur anonyme
     
    Salut

    Fait ce nettoyage: à faire réguliérement

    ¤ Télécharge et installe CCleaner (n'installe pas la barre d'outil Yahoo)
    ---> http://www.infos-du-net.com/telecharger/CCleaner,0301-1039.html

    - Dans la colonne de gauche clic sur "erreurs" coches toutes les cases, puis cliques en bas sur "chercher des erreurs" une fois finit, clic sur "reparer les erreurs" et tu aura un message pour sauvegarder ta base de registre tu dis "oui" puis tu recommences jusqu'a ce qu'il te trouve plus d'erreurs.
    Les sauvegardes que tu aura faites, tu pourra les supprimer si ton ordinateur n'a plus de problémes.

    - Relance Ccleaner, vas dans l'onglet "nettoyeur" présent sur la gauche, decoches la derniere case (Avancé si elle est cochée) puis clic sur "lancer le nettoyage"

    Si tu as besoin d'aide avec Ccleaner, regarde ce tutoriel :
    https://kerio.probb.fr/t242-tuto-ccleaner-v-2

    Puis remet un rapport hijackthis stp
    0
    1. Kozee
       
      [code]Logfile of HijackThis v1.99.1
      Scan saved at 22:27:57, on 28/02/2007
      Platform: Windows XP SP1 (WinNT 5.01.2600)
      MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

      Running processes:
      C:\WINDOWS\System32\smss.exe
      C:\WINDOWS\system32\winlogon.exe
      C:\WINDOWS\system32\services.exe
      C:\WINDOWS\system32\lsass.exe
      C:\WINDOWS\system32\svchost.exe
      C:\WINDOWS\System32\svchost.exe
      C:\WINDOWS\Explorer.EXE
      C:\WINDOWS\system32\spoolsv.exe
      C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
      C:\WINDOWS\System32\RUNDLL32.EXE
      C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
      C:\WINDOWS\SOUNDMAN.EXE
      C:\WINDOWS\System32\ctfmon.exe
      C:\Program Files\Internet Explorer\iexplore.exe
      C:\WINDOWS\System32\rundll32.exe
      c:\progra~1\intern~1\iexplore.exe
      C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
      C:\Program Files\Alwil Software\Avast4\ashServ.exe
      C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
      C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
      C:\WINDOWS\System32\nvsvc32.exe
      C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
      C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
      C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
      C:\WINDOWS\System32\wuauclt.exe
      C:\WINDOWS\System32\svchost.exe
      C:\WINDOWS\System32\svchost.exe
      C:\Documents and Settings\Guillaume\Bureau\Utilitaires\HijackThis.exe

      R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
      R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
      O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
      O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
      O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
      O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
      O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
      O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
      O4 - HKLM\..\Run: [Storeaxisshowacid] C:\Documents and Settings\All Users\Application Data\global16storeaxis\List Bait.exe
      O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
      O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
      O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
      O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
      O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
      O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
      O4 - HKCU\..\Run: [bits new] C:\DOCUME~1\GUILLA~1\APPLIC~1\BOLTDU~1\metainfoaxis.exe
      O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
      O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
      O16 - DPF: {B64F4A7C-97C9-11DA-8BDE-F66BAD1E3F3A} - https://www.afternic.com/domains/errorsafe.com
      O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
      O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
      O21 - SSODL: eitheror - {2016a466-91a2-43c6-97d8-2fd380f065ef} - (no file)
      O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
      O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
      O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
      O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
      O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
      O23 - Service: BlueSoleil Hid Service - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
      O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
      O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
      O23 - Service: Sunbelt Kerio Personal Firewall 4 (KPF4) - Sunbelt Software - C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
      O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe[/code]

      Merci de m'aider ;)
      0
  5. Vous n’avez pas trouvé la réponse que vous recherchez ?

    Posez votre question
  6. Utilisateur anonyme
     
    Ne met pas de "code" stp car on va rien voir sinon.

    Télécharge lopxp :
    http://perso.numericable.fr/~altshift/Info/Fichiers/lopxpMH2.zip

    dézippe-le sur ton bureau puis double-clic sur le fichier "lopxpMH.bat"
    quand il a terminé, un rapport s'ouvre : fait un copier-coller du rapport puis mets le ici
    0
  7. Kozee
     
    Rapport fait à 17:42:46,34 le 05/01/2007

    ******************************************
    ## Répertoires Application Data

    Le volume dans le lecteur C n'a pas de nom.
    Le num‚ro de s‚rie du volume est 6046-5798

    R‚pertoire de C:\Documents and Settings\All Users\Application Data

    21/10/2006 14:55 <REP> .
    21/10/2006 14:55 <REP> ..
    03/11/2006 17:26 <REP> Adobe
    03/11/2006 17:30 <REP> Adobe Systems
    01/11/2006 23:46 <REP> Apple Computer
    27/11/2006 21:05 <REP> Bluetooth
    07/12/2006 21:44 <REP> global16storeaxis
    21/10/2006 23:01 <REP> IconTweaker
    03/01/2007 23:09 <REP> Locktime
    26/12/2006 15:33 <REP> Macromedia
    18/12/2006 19:24 <REP> McNeel
    07/12/2006 21:46 <REP> Messenger Plus!
    21/10/2006 14:55 <REP> Microsoft
    21/10/2006 14:15 <REP> nView_Profiles
    23/12/2006 11:51 <REP> Windows Genuine Advantage
    21/10/2006 14:55 62 desktop.ini
    1 fichier(s) 62 octets
    15 R‚p(s) 26ÿ792ÿ251ÿ392 octets libres
    Le volume dans le lecteur C n'a pas de nom.
    Le num‚ro de s‚rie du volume est 6046-5798

    R‚pertoire de C:\Documents and Settings\Default User\Application Data

    21/10/2006 14:55 <REP> .
    21/10/2006 14:55 <REP> ..
    21/10/2006 14:55 <REP> Microsoft
    21/10/2006 14:55 62 desktop.ini
    1 fichier(s) 62 octets
    3 R‚p(s) 26ÿ792ÿ251ÿ392 octets libres
    Le volume dans le lecteur C n'a pas de nom.
    Le num‚ro de s‚rie du volume est 6046-5798

    R‚pertoire de C:\Documents and Settings\Default User\Local Settings\Application Data

    21/10/2006 14:55 <REP> .
    21/10/2006 14:55 <REP> ..
    0 fichier(s) 0 octets
    2 R‚p(s) 26ÿ792ÿ251ÿ392 octets libres
    Le volume dans le lecteur C n'a pas de nom.
    Le num‚ro de s‚rie du volume est 6046-5798

    R‚pertoire de C:\Documents and Settings\Guillaume\Application Data

    21/10/2006 14:06 <REP> .
    21/10/2006 14:06 <REP> ..
    21/10/2006 17:32 <REP> Adobe
    11/11/2006 20:10 <REP> Apple Computer
    07/12/2006 21:44 <REP> boltdupecity
    24/10/2006 18:54 <REP> DivX
    22/10/2006 14:24 <REP> Help
    21/10/2006 14:07 <REP> Identities
    03/01/2007 23:10 <REP> Locktime
    21/10/2006 14:37 <REP> Macromedia
    21/10/2006 14:06 <REP> Microsoft
    21/10/2006 14:36 <REP> Morpheus
    21/10/2006 14:35 <REP> Mozilla
    03/11/2006 23:53 <REP> Sun
    03/01/2007 18:46 <REP> Xfire
    21/10/2006 14:06 62 desktop.ini
    02/11/2006 15:19 60 sversion.ini
    02/11/2006 15:21 8ÿ192 user52.rdb
    3 fichier(s) 8ÿ314 octets
    15 R‚p(s) 26ÿ792ÿ255ÿ488 octets libres
    Le volume dans le lecteur C n'a pas de nom.
    Le num‚ro de s‚rie du volume est 6046-5798

    R‚pertoire de C:\Documents and Settings\Guillaume\Local Settings\Application Data

    21/10/2006 14:06 <REP> .
    21/10/2006 14:06 <REP> ..
    03/11/2006 17:31 <REP> Adobe
    01/11/2006 23:48 <REP> Apple Computer
    21/12/2006 21:58 <REP> Downloaded Installations
    22/10/2006 14:24 <REP> Help
    05/12/2006 19:36 <REP> Identities
    21/10/2006 14:06 <REP> Microsoft
    21/10/2006 14:35 <REP> Mozilla
    31/10/2006 19:15 <REP> Sun
    27/10/2006 13:07 10ÿ240 DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
    07/12/2006 21:43 81ÿ680 GDIPFONTCACHEV1.DAT
    22/10/2006 13:11 4ÿ992ÿ338 IconCache.db
    3 fichier(s) 5ÿ084ÿ258 octets
    10 R‚p(s) 26ÿ792ÿ255ÿ488 octets libres
    Le volume dans le lecteur C n'a pas de nom.
    Le num‚ro de s‚rie du volume est 6046-5798

    R‚pertoire de C:\Documents and Settings\LocalService\Application Data

    21/10/2006 14:06 <REP> .
    21/10/2006 14:06 <REP> ..
    21/10/2006 14:06 <REP> Microsoft
    0 fichier(s) 0 octets
    3 R‚p(s) 26ÿ792ÿ251ÿ392 octets libres
    Le volume dans le lecteur C n'a pas de nom.
    Le num‚ro de s‚rie du volume est 6046-5798

    R‚pertoire de C:\Documents and Settings\LocalService\Local Settings\Application Data

    21/10/2006 14:06 <REP> .
    21/10/2006 14:06 <REP> ..
    21/10/2006 14:06 <REP> Microsoft
    0 fichier(s) 0 octets
    3 R‚p(s) 26ÿ792ÿ251ÿ392 octets libres
    Le volume dans le lecteur C n'a pas de nom.
    Le num‚ro de s‚rie du volume est 6046-5798

    R‚pertoire de C:\Documents and Settings\NetworkService\Application Data

    21/10/2006 14:06 <REP> .
    21/10/2006 14:06 <REP> ..
    21/10/2006 14:06 <REP> Microsoft
    0 fichier(s) 0 octets
    3 R‚p(s) 26ÿ792ÿ251ÿ392 octets libres
    Le volume dans le lecteur C n'a pas de nom.
    Le num‚ro de s‚rie du volume est 6046-5798

    R‚pertoire de C:\Documents and Settings\NetworkService\Local Settings\Application Data

    21/10/2006 14:06 <REP> .
    21/10/2006 14:06 <REP> ..
    21/10/2006 14:06 <REP> Microsoft
    0 fichier(s) 0 octets
    3 R‚p(s) 26ÿ792ÿ251ÿ392 octets libres
    Le volume dans le lecteur C n'a pas de nom.
    Le num‚ro de s‚rie du volume est 6046-5798

    R‚pertoire de C:\WINDOWS\system32\config\systemprofile\Application Data

    21/10/2006 14:04 <REP> .
    21/10/2006 14:04 <REP> ..
    21/10/2006 14:04 <REP> Microsoft
    21/10/2006 14:04 62 desktop.ini
    1 fichier(s) 62 octets
    3 R‚p(s) 26ÿ792ÿ251ÿ392 octets libres
    Le volume dans le lecteur C n'a pas de nom.
    Le num‚ro de s‚rie du volume est 6046-5798

    R‚pertoire de C:\WINDOWS\system32\config\systemprofile\Local Settings\Application Data

    21/10/2006 14:04 <REP> .
    21/10/2006 14:04 <REP> ..
    0 fichier(s) 0 octets
    2 R‚p(s) 26ÿ792ÿ251ÿ392 octets libres

    ******************************************
    Recherche des taches planifiées dans C:\WINDOWS\tasks

    Le volume dans le lecteur C n'a pas de nom.
    Le num‚ro de s‚rie du volume est 6046-5798

    R‚pertoire de C:\WINDOWS\Tasks

    07/12/2006 21:44 274 A84FBDCF914C36AF.job
    01/11/2006 23:47 284 AppleSoftwareUpdate.job
    21/10/2006 14:02 6 SA.DAT
    21/10/2006 14:00 65 desktop.ini
    21/10/2006 14:00 <REP> ..
    21/10/2006 14:00 <REP> .
    4 fichier(s) 629 octets
    2 R‚p(s) 26ÿ792ÿ251ÿ392 octets libres

    ******************************************
    ## Répertoires de Program files

    Le volume dans le lecteur C n'a pas de nom.
    Le num‚ro de s‚rie du volume est 6046-5798

    R‚pertoire de C:\Program Files

    05/01/2007 17:28 <REP> .
    05/01/2007 17:28 <REP> ..
    03/01/2007 14:06 <REP> Adobe
    07/12/2006 21:43 <REP> Adverts
    21/11/2006 18:20 <REP> Alwil Software
    11/11/2006 20:03 <REP> Apple Software Update
    21/10/2006 15:11 <REP> AvRack
    07/12/2006 21:44 <REP> boltdupecity
    18/12/2006 19:24 <REP> Common Files
    21/10/2006 14:00 <REP> ComPlus Applications
    11/11/2006 16:49 <REP> Curious Labs
    22/12/2006 11:45 <REP> DirectX
    21/10/2006 22:14 <REP> DivX
    27/12/2006 21:40 <REP> DkZ Studio
    25/12/2006 22:05 <REP> EA GAMES
    23/12/2006 11:43 <REP> Electronic Arts
    04/01/2007 13:53 <REP> eMule
    26/12/2006 15:34 <REP> Fichiers communs
    18/11/2006 16:07 <REP> Game Graphic Studio
    21/10/2006 14:01 <REP> Internet Explorer
    25/12/2006 02:38 <REP> iPod
    25/12/2006 02:38 <REP> iTunes
    27/11/2006 21:02 <REP> IVT Corporation
    31/10/2006 19:16 <REP> Java
    27/12/2006 16:23 <REP> KONAMI
    21/10/2006 14:56 <REP> Lavalys
    26/12/2006 15:33 <REP> Macromedia
    21/10/2006 13:59 <REP> Messenger
    07/12/2006 21:43 <REP> Messenger Plus! Live
    22/11/2006 22:38 <REP> MessengerPlus! 3
    21/10/2006 14:03 <REP> microsoft frontpage
    04/01/2007 20:45 <REP> Morpheus
    27/11/2006 20:27 <REP> MorpheusBar
    21/10/2006 14:01 <REP> Movie Maker
    05/01/2007 17:21 <REP> Mozilla Firefox
    21/10/2006 13:59 <REP> MSN
    21/10/2006 13:59 <REP> MSN Gaming Zone
    07/12/2006 22:15 <REP> MSN Messenger
    03/01/2007 23:09 <REP> NetLimiter 2 Pro
    21/10/2006 14:01 <REP> NetMeeting
    18/12/2006 19:00 <REP> OEdit
    21/10/2006 14:01 <REP> Outlook Express
    11/11/2006 18:28 <REP> P3dO Explorer
    11/11/2006 20:09 <REP> QuickTime
    21/10/2006 15:11 <REP> Realtek Sound Manager
    25/12/2006 02:04 <REP> RegistrySmart
    18/12/2006 19:25 <REP> Rhinoceros 3.0 Evaluation
    23/10/2006 18:07 <REP> SAGEM
    21/10/2006 14:01 <REP> Services en ligne
    21/10/2006 23:17 <REP> Stardock
    05/01/2007 17:28 <REP> Sunbelt Software
    03/01/2007 19:26 <REP> The All-Seeing Eye
    21/10/2006 22:38 <REP> UxTheme Multipatcher Fr
    26/11/2006 11:58 <REP> Wanadoo
    21/10/2006 18:06 <REP> Winamp
    21/10/2006 14:07 <REP> Windows Media Player
    21/10/2006 13:59 <REP> Windows NT
    21/10/2006 15:01 <REP> WinRAR
    21/10/2006 14:03 <REP> xerox
    0 fichier(s) 0 octets
    59 R‚p(s) 26ÿ792ÿ247ÿ296 octets libres

    ******************************************
    ## Popups autorisées

    * Internet Explorer

    * Mozilla Firefox (1 autorisé 2 interdit)

    ---------- C:\DOCUMENTS AND SETTINGS\GUILLAUME\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\VMZY4IEB.DEFAULT\HOSTPERM.1
    host popup 1 www.myheritage.com
    host popup 1 www.infos-du-net.com
    host popup 1 webmessenger.msn.com
    host popup 1 www.jeux2foot.com
    host popup 1 www.touslesdrivers.com

    ******************************************
    ## Registre

    * [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    Storeaxisshowacid REG_SZ C:\Documents and Settings\All Users\Application Data\global16storeaxis\List Bait.exe

    * [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    bits new REG_SZ C:\DOCUME~1\GUILLA~1\APPLIC~1\BOLTDU~1\metainfoaxis.exe

    * [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg]
    command REG_SZ C:\DOCUME~1\GUILLA~1\APPLIC~1\BOLTDU~1\metainfoaxis.exe

    ******************************************
    ## Zones de sécurité

    * HKCU Domains (4)

    * P3P History (5)

    ******************************************
    ## Recherche C:\WINDOWS\*.htm, "C:\WINDOWS\*.gif"

    Le volume dans le lecteur C n'a pas de nom.
    Le num‚ro de s‚rie du volume est 6046-5798

    R‚pertoire de C:\WINDOWS

    Le volume dans le lecteur C n'a pas de nom.
    Le num‚ro de s‚rie du volume est 6046-5798

    R‚pertoire de C:\WINDOWS

    *************** Fin du rapport ****************
    Rapport fait à 22:11:48,71 le 01/03/2007

    ******************************************
    ## Répertoires Application Data

    Le volume dans le lecteur C n'a pas de nom.
    Le num‚ro de s‚rie du volume est 6046-5798

    R‚pertoire de C:\Documents and Settings\All Users\Application Data

    21/10/2006 14:55 <REP> .
    21/10/2006 14:55 <REP> ..
    03/11/2006 17:26 <REP> Adobe
    03/11/2006 17:30 <REP> Adobe Systems
    01/11/2006 23:46 <REP> Apple Computer
    27/11/2006 21:05 <REP> Bluetooth
    07/12/2006 21:44 <REP> global16storeaxis
    21/10/2006 23:01 <REP> IconTweaker
    03/01/2007 23:09 <REP> Locktime
    26/12/2006 15:33 <REP> Macromedia
    18/12/2006 19:24 <REP> McNeel
    07/12/2006 21:46 <REP> Messenger Plus!
    21/10/2006 14:55 <REP> Microsoft
    21/10/2006 14:15 <REP> nView_Profiles
    23/12/2006 11:51 <REP> Windows Genuine Advantage
    21/10/2006 14:55 62 desktop.ini
    16/01/2007 21:50 2ÿ160 QTSBandwidthCache
    2 fichier(s) 2ÿ222 octets
    15 R‚p(s) 19ÿ253ÿ456ÿ896 octets libres
    Le volume dans le lecteur C n'a pas de nom.
    Le num‚ro de s‚rie du volume est 6046-5798

    R‚pertoire de C:\Documents and Settings\Default User\Application Data

    21/10/2006 14:55 <REP> .
    21/10/2006 14:55 <REP> ..
    21/10/2006 14:55 <REP> Microsoft
    21/10/2006 14:55 62 desktop.ini
    1 fichier(s) 62 octets
    3 R‚p(s) 19ÿ253ÿ456ÿ896 octets libres
    Le volume dans le lecteur C n'a pas de nom.
    Le num‚ro de s‚rie du volume est 6046-5798

    R‚pertoire de C:\Documents and Settings\Default User\Local Settings\Application Data

    21/10/2006 14:55 <REP> .
    21/10/2006 14:55 <REP> ..
    0 fichier(s) 0 octets
    2 R‚p(s) 19ÿ253ÿ456ÿ896 octets libres
    Le volume dans le lecteur C n'a pas de nom.
    Le num‚ro de s‚rie du volume est 6046-5798

    R‚pertoire de C:\Documents and Settings\Guillaume\Application Data

    21/10/2006 14:06 <REP> .
    21/10/2006 14:06 <REP> ..
    21/10/2006 17:32 <REP> Adobe
    11/11/2006 20:10 <REP> Apple Computer
    07/12/2006 21:44 <REP> boltdupecity
    24/10/2006 18:54 <REP> DivX
    22/10/2006 14:24 <REP> Help
    21/10/2006 14:07 <REP> Identities
    03/01/2007 23:10 <REP> Locktime
    21/10/2006 14:37 <REP> Macromedia
    21/10/2006 14:06 <REP> Microsoft
    21/10/2006 14:36 <REP> Morpheus
    21/10/2006 14:35 <REP> Mozilla
    21/01/2007 19:57 <REP> Real
    03/11/2006 23:53 <REP> Sun
    07/01/2007 18:36 <REP> teamspeak2
    03/01/2007 18:46 <REP> Xfire
    21/10/2006 14:06 62 desktop.ini
    02/11/2006 15:19 60 sversion.ini
    02/11/2006 15:21 8ÿ192 user52.rdb
    3 fichier(s) 8ÿ314 octets
    17 R‚p(s) 19ÿ253ÿ456ÿ896 octets libres
    Le volume dans le lecteur C n'a pas de nom.
    Le num‚ro de s‚rie du volume est 6046-5798

    R‚pertoire de C:\Documents and Settings\Guillaume\Local Settings\Application Data

    21/10/2006 14:06 <REP> .
    21/10/2006 14:06 <REP> ..
    03/11/2006 17:31 <REP> Adobe
    01/11/2006 23:48 <REP> Apple Computer
    21/12/2006 21:58 <REP> Downloaded Installations
    21/01/2007 19:58 <REP> Google
    22/10/2006 14:24 <REP> Help
    05/12/2006 19:36 <REP> Identities
    21/10/2006 14:06 <REP> Microsoft
    21/10/2006 14:35 <REP> Mozilla
    31/10/2006 19:15 <REP> Sun
    27/10/2006 13:07 13ÿ312 DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
    07/12/2006 21:43 81ÿ680 GDIPFONTCACHEV1.DAT
    24/01/2007 22:52 5ÿ747ÿ160 IconCache.db
    3 fichier(s) 5ÿ842ÿ152 octets
    11 R‚p(s) 19ÿ253ÿ456ÿ896 octets libres
    Le volume dans le lecteur C n'a pas de nom.
    Le num‚ro de s‚rie du volume est 6046-5798

    R‚pertoire de C:\Documents and Settings\LocalService\Application Data

    21/10/2006 14:06 <REP> .
    21/10/2006 14:06 <REP> ..
    21/10/2006 14:06 <REP> Microsoft
    0 fichier(s) 0 octets
    3 R‚p(s) 19ÿ253ÿ456ÿ896 octets libres
    Le volume dans le lecteur C n'a pas de nom.
    Le num‚ro de s‚rie du volume est 6046-5798

    R‚pertoire de C:\Documents and Settings\LocalService\Local Settings\Application Data

    21/10/2006 14:06 <REP> .
    21/10/2006 14:06 <REP> ..
    21/10/2006 14:06 <REP> Microsoft
    0 fichier(s) 0 octets
    3 R‚p(s) 19ÿ253ÿ452ÿ800 octets libres
    Le volume dans le lecteur C n'a pas de nom.
    Le num‚ro de s‚rie du volume est 6046-5798

    R‚pertoire de C:\Documents and Settings\NetworkService\Application Data

    21/10/2006 14:06 <REP> .
    21/10/2006 14:06 <REP> ..
    21/10/2006 14:06 <REP> Microsoft
    0 fichier(s) 0 octets
    3 R‚p(s) 19ÿ253ÿ452ÿ800 octets libres
    Le volume dans le lecteur C n'a pas de nom.
    Le num‚ro de s‚rie du volume est 6046-5798

    R‚pertoire de C:\Documents and Settings\NetworkService\Local Settings\Application Data

    21/10/2006 14:06 <REP> .
    21/10/2006 14:06 <REP> ..
    21/10/2006 14:06 <REP> Microsoft
    0 fichier(s) 0 octets
    3 R‚p(s) 19ÿ253ÿ452ÿ800 octets libres
    Le volume dans le lecteur C n'a pas de nom.
    Le num‚ro de s‚rie du volume est 6046-5798

    R‚pertoire de C:\WINDOWS\system32\config\systemprofile\Application Data

    21/10/2006 14:04 <REP> .
    21/10/2006 14:04 <REP> ..
    21/10/2006 14:04 <REP> Microsoft
    21/10/2006 14:04 62 desktop.ini
    1 fichier(s) 62 octets
    3 R‚p(s) 19ÿ253ÿ452ÿ800 octets libres
    Le volume dans le lecteur C n'a pas de nom.
    Le num‚ro de s‚rie du volume est 6046-5798

    R‚pertoire de C:\WINDOWS\system32\config\systemprofile\Local Settings\Application Data

    21/10/2006 14:04 <REP> .
    21/10/2006 14:04 <REP> ..
    0 fichier(s) 0 octets
    2 R‚p(s) 19ÿ253ÿ452ÿ800 octets libres

    ******************************************
    Recherche des taches planifiées dans C:\WINDOWS\tasks

    Le volume dans le lecteur C n'a pas de nom.
    Le num‚ro de s‚rie du volume est 6046-5798

    R‚pertoire de C:\WINDOWS\Tasks

    07/12/2006 21:44 274 A84FBDCF914C36AF.job
    01/11/2006 23:47 284 AppleSoftwareUpdate.job
    21/10/2006 14:02 6 SA.DAT
    21/10/2006 14:00 65 desktop.ini
    21/10/2006 14:00 <REP> ..
    21/10/2006 14:00 <REP> .
    4 fichier(s) 629 octets
    2 R‚p(s) 19ÿ253ÿ452ÿ800 octets libres

    ******************************************
    ## Répertoires de C:\Program Files

    Le volume dans le lecteur C n'a pas de nom.
    Le num‚ro de s‚rie du volume est 6046-5798

    R‚pertoire de C:\Program Files

    01/03/2007 18:52 <REP> .
    01/03/2007 18:52 <REP> ..
    03/01/2007 14:06 <REP> Adobe
    07/12/2006 21:43 <REP> Adverts
    21/11/2006 18:20 <REP> Alwil Software
    11/11/2006 20:03 <REP> Apple Software Update
    21/10/2006 15:11 <REP> AvRack
    07/12/2006 21:44 <REP> boltdupecity
    28/02/2007 22:21 <REP> CCleaner
    18/12/2006 19:24 <REP> Common Files
    21/10/2006 14:00 <REP> ComPlus Applications
    11/11/2006 16:49 <REP> Curious Labs
    22/12/2006 11:45 <REP> DirectX
    21/10/2006 22:14 <REP> DivX
    31/01/2007 17:33 <REP> DkZ Studio
    26/02/2007 13:01 <REP> EA GAMES
    10/02/2007 22:08 <REP> Electronic Arts
    22/02/2007 22:38 <REP> eMule
    21/01/2007 19:58 <REP> Fichiers communs
    18/11/2006 16:07 <REP> Game Graphic Studio
    21/10/2006 14:01 <REP> Internet Explorer
    17/01/2007 21:56 <REP> iPod
    17/01/2007 21:56 <REP> iTunes
    27/11/2006 21:02 <REP> IVT Corporation
    31/10/2006 19:16 <REP> Java
    27/12/2006 16:23 <REP> KONAMI
    21/10/2006 14:56 <REP> Lavalys
    26/12/2006 15:33 <REP> Macromedia
    21/10/2006 13:59 <REP> Messenger
    07/12/2006 21:43 <REP> Messenger Plus! Live
    22/11/2006 22:38 <REP> MessengerPlus! 3
    21/10/2006 14:03 <REP> microsoft frontpage
    01/03/2007 18:52 <REP> Morpheus
    27/11/2006 20:27 <REP> MorpheusBar
    21/10/2006 14:01 <REP> Movie Maker
    25/02/2007 01:39 <REP> Mozilla Firefox
    21/10/2006 13:59 <REP> MSN
    21/10/2006 13:59 <REP> MSN Gaming Zone
    17/02/2007 16:13 <REP> MSN Messenger
    21/10/2006 14:01 <REP> NetMeeting
    18/12/2006 19:00 <REP> OEdit
    21/10/2006 14:01 <REP> Outlook Express
    11/11/2006 18:28 <REP> P3dO Explorer
    11/11/2006 20:09 <REP> QuickTime
    21/01/2007 19:57 <REP> Real
    26/02/2007 14:15 <REP> Realtek AC97
    21/10/2006 15:11 <REP> Realtek Sound Manager
    25/12/2006 02:04 <REP> RegistrySmart
    23/10/2006 18:07 <REP> SAGEM
    21/10/2006 14:01 <REP> Services en ligne
    26/02/2007 11:53 <REP> SpyDawn
    21/10/2006 23:17 <REP> Stardock
    05/01/2007 17:28 <REP> Sunbelt Software
    07/01/2007 18:36 <REP> Teamspeak2_RC2
    11/01/2007 20:08 <REP> The All-Seeing Eye
    21/10/2006 22:38 <REP> UxTheme Multipatcher Fr
    26/02/2007 11:39 <REP> Video Access ActiveX Object
    26/11/2006 11:58 <REP> Wanadoo
    25/01/2007 21:19 <REP> Winamp
    25/01/2007 20:22 <REP> Windows Media Player
    21/10/2006 13:59 <REP> Windows NT
    21/10/2006 15:01 <REP> WinRAR
    21/01/2007 17:15 <REP> WisePixel Multimedia
    21/10/2006 14:03 <REP> xerox
    0 fichier(s) 0 octets
    64 R‚p(s) 19ÿ253ÿ448ÿ704 octets libres

    ******************************************
    ## Popups autorisées

    * Internet Explorer

    * Mozilla Firefox (1 autorisé 2 interdit)

    ---------- C:\DOCUMENTS AND SETTINGS\GUILLAUME\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\VMZY4IEB.DEFAULT\HOSTPERM.1
    host popup 1 www.3suisses.fr
    host popup 1 fr.play.yahoo.com
    host popup 1 footiearts.com
    host popup 1 www.myheritage.com
    host popup 1 www.infos-du-net.com
    host popup 1 webmessenger.msn.com
    host popup 1 www.jeux2foot.com
    host popup 1 www.touslesdrivers.com

    ******************************************
    ## Registre

    * [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    Storeaxisshowacid REG_SZ C:\Documents and Settings\All Users\Application Data\global16storeaxis\List Bait.exe

    * [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    bits new REG_SZ C:\DOCUME~1\GUILLA~1\APPLIC~1\BOLTDU~1\metainfoaxis.exe

    * [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg]
    command REG_SZ C:\DOCUME~1\GUILLA~1\APPLIC~1\BOLTDU~1\metainfoaxis.exe

    ******************************************
    ## Zones de sécurité

    * HKCU Domains (4)

    * P3P History (5)

    ******************************************
    ## Recherche C:\WINDOWS\*.htm, "C:\WINDOWS\*.gif"

    *************** Fin du rapport ****************

    Ok pour le code ;)
    0
  8. Kozee
     
    Desolé de "up" mais j'ai encore besoin d'aide :(
    0
  9. Utilisateur anonyme
     
    Salut

    ¤ Clic sur démarrer, poste de travail, C:, program files et supprime ces dossiers :

    - SpyDawn
    - Video Access ActiveX Object
    - Adverts

    ¤ Fait ceci :

    Pour afficher tous les dossiers et fichiers cachés :

    Clique sur "démarrer", "panneau de configuration", "outils" ,"option des dossiers", "affichage"
    "
    Coche:
    ¤ afficher les fichiers et dossiers cachés
    - Clique sur "appliquer" puis "ok"
    --------------------------------------------------------------------

    Clic sur C:\Documents and Settings\All Users\Application Data et supprime ce dossier :

    - global16storeaxis

    Clic sur C:\Documents and Settings\All Users\Application Data et supprime ce dossier :

    - boltdupecity

    **Si un fichier/dossier persiste lors de la suppression fait ceci:
    - Redémarre ton PC. Dès l'allumage de celui-ci tapote la touche F8 (ou F5 si F8 ne fonctionne pas), à l'écran qui va apparaître choisis "mode sans echec" attends un peu..
    Puis va supprimer les fichiers/dossiers, vide ta corbeille et redémarre ton PC normalement.

    ¤ Clic sur C:, Windows, et vide le contenu de ce dossier :

    _ Tasks

    ¤ Télécharge SmitfraudFix (enregistre le sur le "bureau")
    http://siri.urz.free.fr/Fix/SmitfraudFix.zip

    décompresse SmitfraudFix
    Lance le fichier SmitfraudFix ou SmitfraudFix.cmd et choisit l option 1 copie le rapport ici stp

    A++
    0