[que des spywars] svp comment arréter les pub

Résolu
Bonjour à vous tous
SVP comment faire pour me débarrassé des publicitées intempestives qui s'ouvre tout le temps.
J'ai essayé spybot, adaward et c'est toujour pareil mon PC se met à bloquer de plus en plus.
SVP j'ai besoin d'un coup de main.
Voici se que j'obtiends avec HijackThis:
Logfile of HijackThis v1.99.1
Scan saved at 02:09:01, on 26/02/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16414)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Fichiers communs\Acronis\Schedule2\schedul2.exe
C:\WINDOWS\arservice.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\dllhost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\ehome\ehtray.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Cloneur Expert\TrueImageMonitor.exe
C:\WINDOWS\eHome\ehmsas.exe
C:\Program Files\Fichiers communs\Acronis\Schedule2\schedhlp.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\Pinnacle\Shared Files\Programs\USBTip\USBTip.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
c:\progra~1\intern~1\iexplore.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Windows Media Player\WMPNSCFG.exe
C:\Program Files\Google\Google Updater\GoogleUpdater.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Club-Internet\Lanceur\lanceur.exe
C:\Program Files\Club-Internet\Le Compagnon Club\bin\mpbtn.exe
C:\Program Files\Alwil Software\Avast4\setup\avast.setup
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\HP_Administrateur\Local Settings\Temporary Internet Files\Content.IE5\L11FO3RR\HijackThis[1].exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://actus.sfr.fr
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = https://www.bing.com/search?form=MO0035&q=open+2+file
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Multi Media France Toolbar - {7009fcd4-05be-44f4-9583-93fe419ab7b0} - C:\Program Files\Multi_Media_France\tbMult.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Multi Media France Toolbar - {7009fcd4-05be-44f4-9583-93fe419ab7b0} - C:\Program Files\Multi_Media_France\tbMult.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.5000.1021\fr\msntb.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.5000.1021\fr\msntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: Multi Media France Toolbar - {7009fcd4-05be-44f4-9583-93fe419ab7b0} - C:\Program Files\Multi_Media_France\tbMult.dll
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [ftutil2] rundll32.exe ftutil2.dll,SetWriteCacheMode
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [Cloneur Expert Monitor] "C:\Program Files\Cloneur Expert\TrueImageMonitor.exe"
O4 - HKLM\..\Run: [Acronis Scheduler2 Service] "C:\Program Files\Fichiers communs\Acronis\Schedule2\schedhlp.exe"
O4 - HKLM\..\Run: [Zone Labs Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Fichiers communs\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [safewarnmessacid] C:\Documents and Settings\All Users\Application Data\atom idol safe warn\MAPI ANTI.exe
O4 - HKLM\..\Run: [USBToolTip] "C:\Program Files\Pinnacle\Shared Files\Programs\USBTip\USBTip.exe"
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [SurfExtra] C:\DOCUME~1\HP_ADM~1\APPLIC~1\INSIDE~1\curb hope byte.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - Startup: Club Internet.lnk = C:\Program Files\Club-Internet\Lanceur\lanceur.exe
O4 - Global Startup: LE COMPAGNON CLUB.lnk = C:\Program Files\Club-Internet\Le Compagnon Club\bin\matcli.exe
O4 - Global Startup: Outil de mise à jour Google.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_05\bin\npjpi150_05.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_05\bin\npjpi150_05.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Aide à la connexion - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra 'Tools' menuitem: Aide à la connexion - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: {6A060448-60F9-11D5-A6CD-0002B31F7455} (ExentInf Class) -
O16 - DPF: {97E71027-0BA2-44F2-97DB-F84D808ED0B6} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab55762.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://messenger.zone.msn.com/binary/ZIntro.cab55579.cab
O16 - DPF: {BD393C14-72AD-4790-A095-76522973D6B8} (CBreakshotControl Class) - http://messenger.zone.msn.com/binary/Bankshot.cab31267.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Acronis Scheduler2 Service (AcrSch2Svc) - Acronis - C:\Program Files\Fichiers communs\Acronis\Schedule2\schedul2.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe

Merci d'avance pour la réponse.
Configuration: Windows XP
Internet Explorer 7.0

7 réponses

  1. Salut

    Télécharge lopxp :
    http://perso.numericable.fr/~altshift/Info/Fichiers/lopxpMH2.zip

    dézippe-le sur ton bureau puis double-clic sur le fichier "lopxpMH.bat"
    quand il a terminé, un rapport s'ouvre : fait un copier-coller du rapport puis mets le ici
    1
    1. C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
      C:\WINDOWS\system32\spoolsv.exe
      C:\WINDOWS\system32\svchost.exe
      C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
      C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
      C:\Program Files\Internet Explorer\IEXPLORE.EXE
      C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
      C:\Documents and Settings\amer\Bureau\HijackThis.exe

      R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
      R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
      O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
      O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
      O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
      O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
      O2 - BHO: (no name) - {9C8A568E-4201-478a-8536-526CF371D2E2} - (no file)
      O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll
      O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.615.5858\swg.dll
      O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
      O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
      O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll
      O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
      O4 - HKLM\..\Run: [EPSON Stylus DX4000 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIBEE.EXE /FU "C:\WINDOWS\TEMP\E_SC2.tmp" /EF "HKLM"
      O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
      O4 - HKLM\..\Run: [MSUpdater] System32i.exe
      O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
      O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
      O4 - HKLM\..\RunServices: [MSUpdater] System32i.exe
      O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
      O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
      O4 - HKCU\..\Run: [EPSON Stylus DX4000 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIBEE.EXE /FU "C:\DOCUME~1\amer\LOCALS~1\Temp\E_SD.tmp" /EF "HKCU"
      O4 - HKCU\..\Run: [ares] "C:\Program Files\Ares\Ares.exe" -h
      O8 - Extra context menu item: &Télécharger avec NetTransport - C:\Program Files\Xi\NetTransport 2\NTAddLink.html
      O8 - Extra context menu item: Add to AMV Convert Tool... - C:\Program Files\MP3 Player Utilities 4.00\AMVConverter\grab.html
      O8 - Extra context menu item: MediaManager tool grab multimedia file - C:\Program Files\MP3 Player Utilities 4.00\MediaManager\grab.html
      O8 - Extra context menu item: Tout t&élécharger avec NetTransport - C:\Program Files\Xi\NetTransport 2\NTAddList.html
      O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
      O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
      O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
      O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
      O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} - C:\Program Files\Yahoo!\Common\yinsthelper.dll
      O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - http://download.divx.com/player/DivXBrowserPlugin.cab
      O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - https://fpdownload.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
      O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~2\MSGRAP~1.DLL
      O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~2\MSGRAP~1.DLL
      O23 - Service: Ares Chatroom server (AresChatServer) - Ares Development Group - C:\Program Files\Ares\chatServer.exe
      O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
      O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
      O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
      O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
      O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
      O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe
      0
      1. /!\ Attention /!\

        Les résultats de ce rapport sont sujets à interprétations,
        Et ne démontrent pas systématiquement des dossiers infectés...

        ___________________________________________________________________________

        [1] -> Threads Internet Explorer

        /!\ Suspect IEXPLORE.EXE pid: 3032 8D8: C:\Documents and Settings\All Users\Application Data\Google\Toolbar Dictionary\googledict_en2fr.dat
        /!\ Suspect IEXPLORE.EXE pid: 3788 888: C:\Documents and Settings\All Users\Application Data\Google\Toolbar Dictionary\googledict_en2fr.dat

        ___________________________________________________________________________

        [2] -> Recherche présence de Messenger Plus!...

        Messenger Plus! 2 N'est pas ou plus installé.

        MessengerPlus! 3 N'est pas ou plus installé.

        Messenger Plus! Live N'est pas ou plus installé.

        ___________________________________________________________________________

        [3] -> Tâches planifiées

        AppleSoftwareUpdate.job: C:\Program Files\Apple Software Update\SoftwareUpdate.exe -task

        ___________________________________________________________________________

        [4] -> Sponsor P2P

        ___________________________________________________________________________

        [5] -> Listing des dossiers Application Data

        C:\Documents and Settings\All Users\Application Data

        12/12/2007 à 17:04 - - Coktel
        12/12/2007 à 13:15 - - Apple
        04/11/2007 à 19:07 - - BitDefender
        04/11/2007 à 18:16 - - Kaspersky Lab Setup Files
        30/10/2007 à 11:49 - - SlySoft
        24/10/2007 à 12:01 - - Mozilla
        20/10/2007 à 19:32 - - NannyMania
        18/10/2007 à 11:20 - - Sony Corporation
        12/10/2007 à 11:47 - - Droppix
        05/10/2007 à 20:07 - - PlayFirst
        05/10/2007 à 19:40 - - BVRP Software
        05/10/2007 à 11:23 - - Zylom
        25/09/2007 à 08:07 - - Apple Computer
        24/09/2007 à 19:58 - - Google
        24/09/2007 à 19:58 - - Google Updater
        24/09/2007 à 16:37 - - Windows Genuine Advantage
        23/09/2007 à 15:55 - - UDL
        19/09/2007 à 01:38 - - Microsoft

        C:\Documents and Settings\amer\Application Data

        10/12/2007 à 12:56 - - IDM
        06/11/2007 à 19:28 - - Yahoo!
        05/11/2007 à 18:57 - - Move Networks
        05/11/2007 à 11:59 - - UseNeXT
        03/11/2007 à 18:09 - - Eyeblaster
        31/10/2007 à 12:44 - - vlc
        30/10/2007 à 14:32 - - SecuROM
        30/10/2007 à 10:53 - - InstallShield
        28/10/2007 à 08:51 - - Help
        27/10/2007 à 17:09 - - WinRAR
        24/10/2007 à 12:03 - - Talkback
        21/10/2007 à 12:50 - - Adssite Advanced Toolbar
        21/10/2007 à 10:23 - - EPSON
        18/10/2007 à 11:18 - - Sony Corporation
        17/10/2007 à 20:09 - - DeepBurner
        12/10/2007 à 11:53 - - Droppix
        10/10/2007 à 12:22 - - Mozilla
        08/10/2007 à 12:11 - - Sun
        05/10/2007 à 20:07 - - PlayFirst
        05/10/2007 à 11:23 - - Zylom
        29/09/2007 à 19:40 - - DMCache
        25/09/2007 à 08:09 - - Apple Computer
        25/09/2007 à 07:50 - - ConvertTemp
        25/09/2007 à 07:50 - - Temporary
        25/09/2007 à 07:50 - - TransRender
        25/09/2007 à 07:50 - - Samsung
        24/09/2007 à 19:58 - - Google
        23/09/2007 à 17:10 - - Macromedia
        23/09/2007 à 13:38 - - MSNInstaller
        19/09/2007 à 08:36 - - Identities
        19/09/2007 à 08:36 - - Microsoft

        C:\Documents and Settings\amer\Local Settings\Application Data

        28/10/2007 à 08:51 - - Help
        20/10/2007 à 18:50 - - Shareaza
        18/10/2007 à 17:40 - - Sony Corporation
        10/10/2007 à 12:22 - - Mozilla
        26/09/2007 à 14:04 - - WMTools Downloaded Files
        25/09/2007 à 08:06 - - Apple
        25/09/2007 à 08:04 - - Apple Computer
        24/09/2007 à 19:58 - - Google
        24/09/2007 à 18:12 - - ABBYY
        23/09/2007 à 14:18 - - Identities
        23/09/2007 à 12:37 - - Ares
        19/09/2007 à 08:36 - - Microsoft

        ___________________________________________________________________________

        [6] -> Listing du dossier Program Files

        C:\Program Files

        14/12/2007 à 12:42 - - Lopxp
        12/12/2007 à 16:59 - - Coktel
        12/12/2007 à 13:16 - - Apple Software Update
        09/12/2007 à 19:56 - - Free Download Manager
        08/12/2007 à 20:53 - - TVAnts
        22/11/2007 à 12:38 - - Zylom Games
        19/11/2007 à 19:12 - - adslTV
        08/11/2007 à 17:07 - - CCleaner
        06/11/2007 à 19:19 - - DivX
        06/11/2007 à 19:19 - - Yahoo!
        06/11/2007 à 19:11 - - SopCast
        30/10/2007 à 11:13 - - MSN Messenger
        27/10/2007 à 17:09 - - WinRAR
        15/10/2007 à 17:33 - - Change Extension
        08/10/2007 à 12:12 - - Java
        06/10/2007 à 14:51 - - VideoLAN
        02/10/2007 à 14:15 - - Athan
        29/09/2007 à 16:19 - - LG Electronics
        28/09/2007 à 14:32 - - LGGSM
        24/09/2007 à 19:58 - - Google
        24/09/2007 à 18:06 - - Samsung
        23/09/2007 à 15:49 - - epson
        23/09/2007 à 14:25 - - MSN Messenger(2)
        23/09/2007 à 14:06 - - InstallShield Installation Information
        23/09/2007 à 12:37 - - Ares
        23/09/2007 à 12:28 - - Alwil Software
        19/09/2007 à 08:36 - - Uninstall Information
        19/09/2007 à 06:28 - - xerox
        19/09/2007 à 06:28 - - microsoft frontpage
        19/09/2007 à 06:25 - - WindowsUpdate
        19/09/2007 à 06:25 - - Services en ligne
        19/09/2007 à 06:24 - - Movie Maker
        19/09/2007 à 06:23 - - NetMeeting
        19/09/2007 à 06:23 - - Outlook Express
        19/09/2007 à 06:23 - - Internet Explorer
        19/09/2007 à 06:22 - - Online Services
        19/09/2007 à 06:22 - - Windows Media Player
        19/09/2007 à 06:21 - - Messenger
        19/09/2007 à 06:21 - - MSN Gaming Zone
        19/09/2007 à 06:21 - - MSN
        19/09/2007 à 06:21 - - Windows NT
        19/09/2007 à 01:39 - - Fichiers communs

        ___________________________________________________________________________

        [7] -> Clés registre de démarrage

        ___________________________________________________________________________

        [8] -> Popups autorisés

        # Internet Explorer

        HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\New Windows\Allow
        www.01net.com REG_BINARY
        *.zylom.com REG_BINARY
        *.zylomgames.com REG_BINARY 00000000

        # Mozilla Firefox (1 autorisé 2 interdit)

        # Suite Mozilla / SeaMonkey (1 autorisé 2 interdit)

        ___________________________________________________________________________

        [9] -> Suggestion nettoyage registre

        - Aucune suggestion.
        0
        1. Bonjour,

          CREER SON PROPRE TOPIK

          Il serait préférable que tu crées ton propre « topik » message personnel. Cela rendra le poste (ici) plus compréhensible, et nous pourrons traiter ton soucis avec plus d’efficacité.
          Donc
          Fais ce qui suit, SVP
          http://perso.orange.fr/rginformatique/section%20virus/demofairesontmessage.htm
          Merci
          A++
          http://perso.orange.fr/rginformatique/section%20virus/demofairesontmessage.htm

          A++

          0
      2. Bonjour je suis avec mozilla firefox et j'ai un tas de fenetre qui s'ouvre a chaque fois que je me connecte ca me soul car ca ralenti ma connexion !
        Des que je me connecte il y a entre 10 a 50 fenetre qui s'ouvre que faire merci de me repondre !!!
        0
        1. bonjour as-tu trouvé une réponse à ta question car j'ai le même problème que toi. Merci d'avance !
          0
          1. Contributeur sécurité
            Bonjour

            Ouvrez un nouveau sujet, plus personne ne viendra vous aider dans ce sujet :-)
            0
            1. Merci pour la réponse j'ai fait une reconfiguration des programmes et en ce moment ça se passe assé bien mais j'ai un peu peur que ça recommence...
              Alors est ce qu'il y a quelque chose d'anormale svp???
              Rapport fait à 6:38:13,45 le 09/03/2007

              ******************************************
              ## Répertoires Application Data

              Le volume dans le lecteur C s'appelle HP_PAVILION
              Le num‚ro de s‚rie du volume est 906C-749B

              R‚pertoire de C:\Documents and Settings\Administrateur\Application Data

              01/02/2006 09:05 <REP> .
              01/02/2006 09:05 <REP> ..
              15/11/2005 03:22 <REP> Identities
              15/11/2005 03:22 <REP> Microsoft
              02/01/2006 22:02 <REP> Real
              10/10/2005 14:24 62 desktop.ini
              1 fichier(s) 62 octets
              5 R‚p(s) 14ÿ694ÿ232ÿ064 octets libres
              Le volume dans le lecteur C s'appelle HP_PAVILION
              Le num‚ro de s‚rie du volume est 906C-749B

              R‚pertoire de C:\Documents and Settings\Administrateur\Local Settings\Application Data

              15/11/2005 03:22 <REP> .
              15/11/2005 03:22 <REP> ..
              02/01/2006 21:27 <REP> {3248F0A6-6813-11D6-A77B-00B0D0150050}
              02/01/2006 21:21 <REP> ApplicationHistory
              15/11/2005 03:22 <REP> Microsoft
              02/01/2006 21:21 137 fusioncache.dat
              02/01/2006 22:10 2ÿ003ÿ250 IconCache.db
              2 fichier(s) 2ÿ003ÿ387 octets
              5 R‚p(s) 14ÿ694ÿ227ÿ968 octets libres
              Le volume dans le lecteur C s'appelle HP_PAVILION
              Le num‚ro de s‚rie du volume est 906C-749B

              R‚pertoire de C:\Documents and Settings\All Users\Application Data

              01/02/2006 09:05 <REP> .
              01/02/2006 09:05 <REP> ..
              02/01/2006 22:06 <REP> Adobe
              20/01/2007 22:06 <REP> Apple Computer
              11/02/2007 22:28 <REP> atom idol safe warn
              02/01/2006 22:06 <REP> CyberLink
              03/02/2007 05:05 <REP> Exetender
              20/01/2007 06:54 <REP> Google
              09/02/2007 07:16 <REP> Google Updater
              02/01/2006 22:38 <REP> Hewlett-Packard
              02/01/2006 21:52 <REP> HP
              02/01/2006 22:03 <REP> InstallShield
              15/11/2005 03:23 <REP> Microsoft
              18/01/2007 13:28 <REP> Motive
              19/01/2007 17:26 <REP> MotiveSysIDs
              11/01/2007 00:51 <REP> muvee Technologies
              01/03/2007 15:49 <REP> Nero
              12/01/2007 07:31 <REP> nView_Profiles
              29/01/2007 05:02 <REP> Otto
              22/02/2007 06:50 <REP> Pinnacle
              02/02/2007 22:24 <REP> pixelStorm
              10/01/2007 13:05 <REP> QuickTime
              02/01/2006 21:41 <REP> SBSI
              23/02/2007 16:52 <REP> SmartSound Software Inc
              02/01/2006 21:48 <REP> Sonic
              16/02/2007 06:59 <REP> Spybot - Search & Destroy
              02/01/2006 22:29 <REP> Symantec
              15/02/2007 08:47 <REP> TEMP
              21/01/2007 05:31 <REP> Windows Genuine Advantage
              26/02/2007 20:05 <REP> Windows Live Toolbar
              19/01/2007 19:10 <REP> Yahoo!
              19/01/2007 19:36 <REP> Yahoo! Companion
              29/01/2007 17:11 <REP> Zylom
              10/10/2005 14:24 62 desktop.ini
              02/01/2006 21:47 1ÿ712 hpzinstall.log
              21/01/2007 05:01 1ÿ755 QTSBandwidthCache
              3 fichier(s) 3ÿ529 octets
              33 R‚p(s) 14ÿ694ÿ227ÿ968 octets libres
              Le volume dans le lecteur C s'appelle HP_PAVILION
              Le num‚ro de s‚rie du volume est 906C-749B

              R‚pertoire de C:\Documents and Settings\Default User\Application Data

              01/02/2006 09:06 <REP> .
              01/02/2006 09:06 <REP> ..
              15/11/2005 03:23 <REP> Identities
              15/11/2005 03:23 <REP> Microsoft
              10/01/2007 09:40 <REP> Real
              10/10/2005 14:24 62 desktop.ini
              1 fichier(s) 62 octets
              5 R‚p(s) 14ÿ694ÿ227ÿ968 octets libres
              Le volume dans le lecteur C s'appelle HP_PAVILION
              Le num‚ro de s‚rie du volume est 906C-749B

              R‚pertoire de C:\Documents and Settings\Default User\Local Settings\Application Data

              15/11/2005 03:23 <REP> .
              15/11/2005 03:23 <REP> ..
              10/01/2007 09:40 <REP> {3248F0A6-6813-11D6-A77B-00B0D0150050}
              10/01/2007 09:40 <REP> ApplicationHistory
              15/11/2005 03:23 <REP> Microsoft
              10/01/2007 09:40 137 fusioncache.dat
              10/01/2007 09:40 2ÿ003ÿ250 IconCache.db
              2 fichier(s) 2ÿ003ÿ387 octets
              5 R‚p(s) 14ÿ694ÿ223ÿ872 octets libres
              Le volume dans le lecteur C s'appelle HP_PAVILION
              Le num‚ro de s‚rie du volume est 906C-749B

              R‚pertoire de C:\Documents and Settings\HP_Administrateur\Application Data

              26/02/2007 18:30 <REP> .
              26/02/2007 18:30 <REP> ..
              10/01/2007 23:27 <REP> Adobe
              17/01/2007 07:08 <REP> AdobeUM
              30/01/2007 18:28 <REP> Ahead
              21/01/2007 05:01 <REP> Apple Computer
              11/02/2007 22:27 <REP> BitDownload
              17/01/2007 15:59 <REP> CyberLink
              12/01/2007 07:35 <REP> Google
              16/01/2007 07:34 <REP> Help
              10/01/2007 19:42 <REP> Hewlett-Packard
              10/01/2007 13:13 <REP> HP
              10/01/2007 12:52 <REP> HPQ
              26/02/2007 18:30 <REP> Identities
              27/02/2007 09:03 <REP> ImgBurn
              11/02/2007 22:28 <REP> Inside Log
              22/02/2007 07:58 <REP> Lavasoft
              10/01/2007 18:29 <REP> Leadertech
              10/01/2007 16:41 <REP> Macromedia
              01/02/2007 06:10 <REP> Media Player Classic
              25/01/2007 08:40 <REP> Micro Application
              26/02/2007 18:30 <REP> Microsoft
              19/01/2007 19:00 <REP> Motive
              03/03/2007 07:02 <REP> Mozilla
              20/01/2007 15:04 <REP> MSNInstaller
              11/01/2007 00:51 <REP> muvee Technologies
              01/02/2007 06:48 <REP> Nero
              25/01/2007 07:48 <REP> NewsLeecher
              29/01/2007 05:02 <REP> Otto
              15/02/2007 08:46 <REP> PC Tools
              26/02/2007 18:30 <REP> Real
              31/01/2007 08:31 <REP> Samsung
              10/01/2007 18:29 <REP> Sonic
              14/01/2007 22:18 <REP> Sun
              07/03/2007 19:24 <REP> Talkback
              01/03/2007 15:39 <REP> vlc
              22/01/2007 22:33 <REP> Yahoo!
              29/01/2007 17:11 <REP> Zylom
              26/02/2007 18:30 62 desktop.ini
              24/01/2007 08:53 480ÿ312 PatchUpdate_HP_CounterReport_Update_HPSU.log
              11/01/2007 00:04 0 wklnhst.dat
              3 fichier(s) 480ÿ374 octets
              38 R‚p(s) 14ÿ694ÿ223ÿ872 octets libres
              Le volume dans le lecteur C s'appelle HP_PAVILION
              Le num‚ro de s‚rie du volume est 906C-749B

              R‚pertoire de C:\Documents and Settings\HP_Administrateur\Local Settings\Application Data

              26/02/2007 18:30 <REP> .
              26/02/2007 18:30 <REP> ..
              30/01/2007 07:34 <REP> .SIPPS
              26/02/2007 18:30 <REP> {3248F0A6-6813-11D6-A77B-00B0D0150050}
              10/01/2007 23:27 <REP> Adobe
              30/01/2007 18:30 <REP> Ahead
              21/01/2007 05:01 <REP> Apple Computer
              26/02/2007 18:30 <REP> ApplicationHistory
              17/01/2007 15:59 <REP> DVDPlay
              20/01/2007 07:07 <REP> Google
              16/01/2007 07:34 <REP> Help
              10/01/2007 13:13 <REP> HP
              16/01/2007 22:51 <REP> Identities
              27/01/2007 21:22 <REP> IM
              10/01/2007 13:13 <REP> IsolatedStorage
              28/01/2007 15:12 <REP> LightScribe
              26/02/2007 18:30 <REP> Microsoft
              28/01/2007 15:11 <REP> MicroVision Applications
              03/03/2007 07:02 <REP> Mozilla
              25/01/2007 07:46 <REP> QuickPar
              12/01/2007 00:05 <REP> WMTools Downloaded Files
              10/01/2007 10:18 177ÿ664 DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
              26/02/2007 18:30 140 fusioncache.dat
              10/01/2007 12:51 74ÿ768 GDIPFONTCACHEV1.DAT
              26/02/2007 18:30 3ÿ176ÿ392 IconCache.db
              4 fichier(s) 3ÿ428ÿ964 octets
              21 R‚p(s) 14ÿ694ÿ219ÿ776 octets libres
              Le volume dans le lecteur C s'appelle HP_PAVILION
              Le num‚ro de s‚rie du volume est 906C-749B

              R‚pertoire de C:\Documents and Settings\LocalService\Application Data

              02/01/2006 21:14 <REP> .
              02/01/2006 21:14 <REP> ..
              02/01/2006 21:14 <REP> Microsoft
              0 fichier(s) 0 octets
              3 R‚p(s) 14ÿ694ÿ219ÿ776 octets libres
              Le volume dans le lecteur C s'appelle HP_PAVILION
              Le num‚ro de s‚rie du volume est 906C-749B

              R‚pertoire de C:\Documents and Settings\LocalService\Local Settings\Application Data

              02/01/2006 21:14 <REP> .
              02/01/2006 21:14 <REP> ..
              02/01/2006 21:14 <REP> Microsoft
              0 fichier(s) 0 octets
              3 R‚p(s) 14ÿ694ÿ219ÿ776 octets libres
              Le volume dans le lecteur C s'appelle HP_PAVILION
              Le num‚ro de s‚rie du volume est 906C-749B

              R‚pertoire de C:\Documents and Settings\NetworkService\Application Data

              02/01/2006 21:14 <REP> .
              02/01/2006 21:14 <REP> ..
              02/01/2006 21:14 <REP> Microsoft
              0 fichier(s) 0 octets
              3 R‚p(s) 14ÿ694ÿ219ÿ776 octets libres
              Le volume dans le lecteur C s'appelle HP_PAVILION
              Le num‚ro de s‚rie du volume est 906C-749B

              R‚pertoire de C:\Documents and Settings\NetworkService\Local Settings\Application Data

              02/01/2006 21:14 <REP> .
              02/01/2006 21:14 <REP> ..
              02/01/2006 21:14 <REP> Microsoft
              0 fichier(s) 0 octets
              3 R‚p(s) 14ÿ694ÿ219ÿ776 octets libres
              Le volume dans le lecteur C s'appelle HP_PAVILION
              Le num‚ro de s‚rie du volume est 906C-749B

              R‚pertoire de C:\WINDOWS\system32\config\systemprofile\Application Data

              27/02/2007 01:57 <REP> .
              27/02/2007 01:57 <REP> ..
              15/11/2005 03:59 <REP> Identities
              15/11/2005 03:59 <REP> Microsoft
              26/02/2007 18:29 <REP> Real
              26/02/2007 18:29 <REP> Symantec
              10/10/2005 14:24 62 desktop.ini
              1 fichier(s) 62 octets
              6 R‚p(s) 14ÿ694ÿ219ÿ776 octets libres
              Le volume dans le lecteur C s'appelle HP_PAVILION
              Le num‚ro de s‚rie du volume est 906C-749B

              R‚pertoire de C:\WINDOWS\system32\config\systemprofile\Local Settings\Application Data

              15/11/2005 03:59 <REP> .
              15/11/2005 03:59 <REP> ..
              26/02/2007 18:29 <REP> {3248F0A6-6813-11D6-A77B-00B0D0150050}
              26/02/2007 18:29 <REP> ApplicationHistory
              15/11/2005 03:59 <REP> Microsoft
              26/02/2007 18:29 137 fusioncache.dat
              26/02/2007 18:29 2ÿ003ÿ250 IconCache.db
              2 fichier(s) 2ÿ003ÿ387 octets
              5 R‚p(s) 14ÿ694ÿ219ÿ776 octets libres

              ******************************************
              Recherche des taches planifiées dans C:\WINDOWS\tasks

              Le volume dans le lecteur C s'appelle HP_PAVILION
              Le num‚ro de s‚rie du volume est 906C-749B

              R‚pertoire de C:\WINDOWS\Tasks

              26/02/2007 20:05 278 V‚rifier les mises … jour de Windows Live Toolbar.job
              15/11/2005 04:15 <REP> ..
              15/11/2005 04:15 <REP> .
              10/10/2005 13:31 6 SA.DAT
              10/08/2004 12:00 65 desktop.ini
              3 fichier(s) 349 octets
              2 R‚p(s) 14ÿ694ÿ219ÿ776 octets libres

              ******************************************
              ## Répertoires de C:\Program Files

              Le volume dans le lecteur C s'appelle HP_PAVILION
              Le num‚ro de s‚rie du volume est 906C-749B

              R‚pertoire de C:\Program Files

              06/03/2007 06:58 <REP> .
              06/03/2007 06:58 <REP> ..
              02/01/2006 22:06 <REP> Adobe
              19/01/2007 18:03 <REP> Alwil Software
              27/02/2007 09:43 <REP> AskTBar
              27/02/2007 09:04 <REP> AviSynth 2.5
              11/02/2007 22:34 <REP> BitDownload
              18/01/2007 13:24 <REP> BroadJump
              01/03/2007 17:03 <REP> CCleaner
              19/01/2007 17:33 <REP> Club-Internet
              18/01/2007 13:28 <REP> Common Files
              12/11/2005 01:09 <REP> ComPlus Applications
              08/03/2007 07:11 <REP> Connection Booster
              10/01/2007 09:54 <REP> directx
              29/01/2007 04:16 <REP> DivX
              09/03/2007 06:05 <REP> eMule
              26/02/2007 19:00 <REP> Fichiers communs
              02/01/2006 21:22 <REP> FrenchOtto
              02/01/2006 21:22 <REP> GemMasterFrench
              26/02/2007 18:49 <REP> Google
              06/03/2007 07:07 <REP> GrabIt
              27/02/2007 07:20 <REP> Grisoft
              22/01/2007 18:59 <REP> Hercules
              02/01/2006 22:23 <REP> Hewlett-Packard
              02/01/2006 22:05 <REP> HP
              02/01/2006 22:02 <REP> HP DigitalMedia Archive
              27/01/2007 21:34 <REP> IncrediMail
              11/02/2007 22:28 <REP> Inside Log
              02/01/2006 21:36 <REP> Internet Explorer
              02/01/2006 21:27 <REP> Java
              25/01/2007 06:06 <REP> jv16 PowerTools
              24/02/2007 14:50 <REP> Lavasoft
              23/01/2007 20:41 <REP> Livre Album Fuji Photo
              02/01/2006 21:44 <REP> MainConcept
              02/01/2006 21:32 <REP> Messenger
              15/11/2005 03:24 <REP> microsoft frontpage
              02/01/2006 22:08 <REP> Microsoft Office
              02/01/2006 22:08 <REP> Microsoft Works
              18/01/2007 06:03 <REP> Microsoft.NET
              19/01/2007 17:19 <REP> Motive
              15/11/2005 03:24 <REP> Movie Maker
              04/03/2007 06:28 <REP> Mozilla Firefox
              20/02/2007 09:44 <REP> MP3 Player Utilities
              20/02/2007 09:45 <REP> MP3 Player Utilities 3.75
              15/11/2005 03:24 <REP> MSN
              20/01/2007 01:13 <REP> MSN Apps
              15/11/2005 03:25 <REP> MSN Gaming Zone
              26/02/2007 20:04 <REP> MSN Messenger
              20/01/2007 07:46 <REP> MSXML 4.0
              02/03/2007 18:18 <REP> Multi_Media
              10/02/2007 06:22 <REP> Multi_Media_France
              02/01/2006 22:10 <REP> muvee Technologies
              27/02/2007 09:54 <REP> Nero
              30/01/2007 18:27 <REP> Nero 7
              15/11/2005 03:25 <REP> NetMeeting
              06/03/2007 07:03 <REP> NewsLeecher
              15/11/2005 03:25 <REP> Online Services
              15/11/2005 03:25 <REP> Outlook Express
              26/02/2007 19:40 <REP> PC-Doctor 5 for Windows
              16/01/2007 22:29 2ÿ505ÿ207 photo 013.jpg
              04/03/2007 05:23 <REP> Pinnacle
              25/01/2007 06:23 <REP> PowerQuest
              25/01/2007 07:43 <REP> QuickPar
              04/03/2007 05:10 <REP> QuickTime
              02/01/2006 22:02 <REP> Real
              31/01/2007 08:10 <REP> Samsung
              02/01/2006 22:25 <REP> Services en ligne
              23/02/2007 16:52 <REP> SmartSound Software
              02/01/2006 22:04 <REP> Sonic
              26/07/2002 17:02 153ÿ088 UNWISE.EXE
              01/03/2007 15:38 <REP> VideoLAN
              26/02/2007 20:06 <REP> Windows Live Favorites
              26/02/2007 20:06 <REP> Windows Live Toolbar
              05/03/2007 19:57 <REP> Windows Media Connect 2
              01/03/2007 06:56 <REP> Windows Media Player
              15/11/2005 03:25 <REP> Windows NT
              15/11/2005 03:25 <REP> Windows Plus
              08/02/2007 17:18 <REP> WinRAR
              29/01/2007 04:56 251 wt3d.ini
              15/11/2005 03:26 <REP> xerox
              10/01/2007 09:56 <REP> XviD
              19/01/2007 19:09 <REP> Yahoo!
              30/01/2007 05:57 <REP> Zylom Games
              3 fichier(s) 2ÿ658ÿ546 octets
              80 R‚p(s) 14ÿ694ÿ215ÿ680 octets libres

              ******************************************
              ## Popups autorisées

              * Internet Explorer

              ! REG.EXE VERSION 3.0

              HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\New Windows\Allow

              * Mozilla Firefox (1 autorisé 2 interdit)

              ---------- C:\DOCUMENTS AND SETTINGS\HP_ADMINISTRATEUR\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\KW9TFPZK.DEFAULT\HOSTPERM.1

              ******************************************
              ## Registre

              * [HKEY_CURRENT_USER\\Software\Microsoft\Internet Explorer\Main]
              Search Bar REG_SZ http://www.google.com/toolbar/ie8/sidebar.html

              ******************************************
              ## Zones de sécurité

              * HKCU Domains (4)

              * P3P History (5)

              ******************************************
              ## Recherche C:\WINDOWS\*.htm, "C:\WINDOWS\*.gif"

              *************** Fin du rapport ****************
              -2