Cheval de Troie detecté par Avast!

Résolu
Bonjour,

Avast! m'alerte au sujet d'un Cheval de Troie "FlapBlah.exe"..
Help :)

Merci d'avance :D
Configuration: Windows XP
Firefox 2.0.0.3

12 réponses

  1. Modérateur
    Salut

    fais ceci stp :

    virus methode preliminaire de desinfection version fr

    ++
    0
    1. Merci Green Day ;) voilà les rapports...
      ---------------------------------------------------------
      AVG Anti-Spyware - Rapport d'analyse
      ---------------------------------------------------------

      + Créé à: 17:10:35 20/04/2007

      + Résultat de l'analyse:

      E:\Program Files\HbTools\HBTV\uninstaller.exe -> Adware.180Solutions : Aucune action entreprise.
      E:\Program Files\HbTools\Bin\4.8.2.0\HbtCoreSrv.dll -> Adware.HotBar : Aucune action entreprise.
      E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP35\A0002862.dll -> Adware.HotBar : Aucune action entreprise.
      HKU\S-1-5-21-1606980848-1060284298-725345543-1008\Software\HbTools -> Adware.HotBar : Aucune action entreprise.
      HKU\S-1-5-21-1606980848-1060284298-725345543-1008\Software\HbTools\HbTools -> Adware.HotBar : Aucune action entreprise.
      HKU\S-1-5-21-1606980848-1060284298-725345543-1008\Software\HbTools\HbTools\options -> Adware.HotBar : Aucune action entreprise.
      E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP58\A0006837.exe -> Adware.Kaffid : Aucune action entreprise.
      E:\Documents and Settings\All Users\Application Data\Blehtimemodenoun\FlapBlah.exe -> Adware.Lop : Aucune action entreprise.
      E:\Documents and Settings\Clémence\Application Data\Name Phone Sect\mlbuneqv.exe -> Adware.Lop : Aucune action entreprise.
      E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013141.exe -> Adware.Lop : Aucune action entreprise.
      :mozilla.21:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.247realmedia : Aucune action entreprise.
      :mozilla.22:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.247realmedia : Aucune action entreprise.
      :mozilla.386:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.2o7 : Aucune action entreprise.
      :mozilla.482:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.2o7 : Aucune action entreprise.
      :mozilla.548:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.2o7 : Aucune action entreprise.
      :mozilla.642:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.2o7 : Aucune action entreprise.
      :mozilla.765:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.2o7 : Aucune action entreprise.
      :mozilla.81:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.2o7 : Aucune action entreprise.
      :mozilla.82:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.2o7 : Aucune action entreprise.
      :mozilla.83:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.2o7 : Aucune action entreprise.
      :mozilla.84:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.2o7 : Aucune action entreprise.
      :mozilla.85:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.2o7 : Aucune action entreprise.
      :mozilla.86:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.2o7 : Aucune action entreprise.
      :mozilla.871:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.2o7 : Aucune action entreprise.
      :mozilla.87:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.2o7 : Aucune action entreprise.
      :mozilla.88:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.2o7 : Aucune action entreprise.
      E:\Documents and Settings\Clémence\Cookies\clémence@msnportal.112.2o7[2].txt -> TrackingCookie.2o7 : Aucune action entreprise.
      E:\Documents and Settings\Isabelle\Cookies\isabelle@opodo.122.2o7[1].txt -> TrackingCookie.2o7 : Aucune action entreprise.
      :mozilla.158:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Adbrite : Aucune action entreprise.
      :mozilla.159:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Adbrite : Aucune action entreprise.
      :mozilla.160:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Adbrite : Aucune action entreprise.
      :mozilla.891:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Adjuggler : Aucune action entreprise.
      :mozilla.892:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Adjuggler : Aucune action entreprise.
      :mozilla.335:C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\rnou062d.default\cookies.txt -> TrackingCookie.Adobe : Aucune action entreprise.
      :mozilla.838:E:\Documents and Settings\bigeon\Application Data\Mozilla\Firefox\Profiles\zm7poleo.default\cookies.txt -> TrackingCookie.Adobe : Aucune action entreprise.
      :mozilla.839:E:\Documents and Settings\bigeon\Application Data\Mozilla\Firefox\Profiles\zm7poleo.default\cookies.txt -> TrackingCookie.Adobe : Aucune action entreprise.
      :mozilla.551:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Adrevolver : Aucune action entreprise.
      :mozilla.425:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Adtech : Aucune action entreprise.
      :mozilla.426:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Adtech : Aucune action entreprise.
      E:\Documents and Settings\Isabelle\Cookies\isabelle@adtech[2].txt -> TrackingCookie.Adtech : Aucune action entreprise.
      :mozilla.313:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Advertising : Aucune action entreprise.
      :mozilla.315:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Advertising : Aucune action entreprise.
      :mozilla.317:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Advertising : Aucune action entreprise.
      :mozilla.318:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Advertising : Aucune action entreprise.
      :mozilla.319:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Advertising : Aucune action entreprise.
      :mozilla.724:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Adviva : Aucune action entreprise.
      :mozilla.26:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Atdmt : Aucune action entreprise.
      :mozilla.8:E:\Documents and Settings\Clem\Application Data\Mozilla\Firefox\Profiles\xu1fkkps.default\cookies.txt -> TrackingCookie.Atdmt : Aucune action entreprise.
      E:\Documents and Settings\Clémence\Cookies\clémence@atdmt[2].txt -> TrackingCookie.Atdmt : Aucune action entreprise.
      E:\Documents and Settings\Isabelle\Cookies\isabelle@atdmt[1].txt -> TrackingCookie.Atdmt : Aucune action entreprise.
      :mozilla.880:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Billboard : Aucune action entreprise.
      :mozilla.102:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Bluestreak : Aucune action entreprise.
      :mozilla.24:E:\Documents and Settings\Clem\Application Data\Mozilla\Firefox\Profiles\xu1fkkps.default\cookies.txt -> TrackingCookie.Bluestreak : Aucune action entreprise.
      :mozilla.958:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Bluestreak : Aucune action entreprise.
      E:\Documents and Settings\Clémence\Cookies\clémence@bluestreak[2].txt -> TrackingCookie.Bluestreak : Aucune action entreprise.
      :mozilla.530:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Casalemedia : Aucune action entreprise.
      :mozilla.531:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Casalemedia : Aucune action entreprise.
      :mozilla.532:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Casalemedia : Aucune action entreprise.
      :mozilla.533:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Casalemedia : Aucune action entreprise.
      E:\Documents and Settings\Clémence\Cookies\clémence@as.casalemedia[1].txt -> TrackingCookie.Casalemedia : Aucune action entreprise.
      E:\Documents and Settings\Clémence\Cookies\clémence@casalemedia[2].txt -> TrackingCookie.Casalemedia : Aucune action entreprise.
      :mozilla.414:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Clickbank : Aucune action entreprise.
      :mozilla.245:E:\Documents and Settings\bigeon\Application Data\Mozilla\Firefox\Profiles\zm7poleo.default\cookies.txt -> TrackingCookie.Cnn : Aucune action entreprise.
      E:\Documents and Settings\bigeon\Cookies\bigeon@ads.cnn[2].txt -> TrackingCookie.Cnn : Aucune action entreprise.
      :mozilla.881:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Cnw : Aucune action entreprise.
      :mozilla.334:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Com : Aucune action entreprise.
      :mozilla.297:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Comclick : Aucune action entreprise.
      :mozilla.298:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Comclick : Aucune action entreprise.
      :mozilla.299:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Comclick : Aucune action entreprise.
      :mozilla.708:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Cqcounter : Aucune action entreprise.
      E:\Documents and Settings\Clémence\Cookies\clémence@stat.dealtime[2].txt -> TrackingCookie.Dealtime : Aucune action entreprise.
      :mozilla.108:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Doubleclick : Aucune action entreprise.
      E:\Documents and Settings\Clémence\Cookies\clémence@doubleclick[1].txt -> TrackingCookie.Doubleclick : Aucune action entreprise.
      E:\Documents and Settings\Isabelle\Cookies\isabelle@doubleclick[1].txt -> TrackingCookie.Doubleclick : Aucune action entreprise.
      :mozilla.93:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Estat : Aucune action entreprise.
      E:\Documents and Settings\Clémence\Cookies\clémence@estat[1].txt -> TrackingCookie.Estat : Aucune action entreprise.
      :mozilla.161:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Fastclick : Aucune action entreprise.
      :mozilla.162:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Fastclick : Aucune action entreprise.
      :mozilla.163:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Fastclick : Aucune action entreprise.
      :mozilla.164:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Fastclick : Aucune action entreprise.
      :mozilla.256:C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\rnou062d.default\cookies.txt -> TrackingCookie.Gemius : Aucune action entreprise.
      :mozilla.257:C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\rnou062d.default\cookies.txt -> TrackingCookie.Gemius : Aucune action entreprise.
      :mozilla.258:C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\rnou062d.default\cookies.txt -> TrackingCookie.Gemius : Aucune action entreprise.
      :mozilla.678:E:\Documents and Settings\bigeon\Application Data\Mozilla\Firefox\Profiles\zm7poleo.default\cookies.txt -> TrackingCookie.Gemius : Aucune action entreprise.
      :mozilla.679:E:\Documents and Settings\bigeon\Application Data\Mozilla\Firefox\Profiles\zm7poleo.default\cookies.txt -> TrackingCookie.Gemius : Aucune action entreprise.
      :mozilla.865:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Gemius : Aucune action entreprise.
      :mozilla.866:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Gemius : Aucune action entreprise.
      :mozilla.116:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Hitbox : Aucune action entreprise.
      :mozilla.123:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Hitbox : Aucune action entreprise.
      :mozilla.124:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Hitbox : Aucune action entreprise.
      :mozilla.125:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Hitbox : Aucune action entreprise.
      :mozilla.285:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Hitbox : Aucune action entreprise.
      :mozilla.288:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Hitbox : Aucune action entreprise.
      :mozilla.289:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Hitbox : Aucune action entreprise.
      :mozilla.290:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Hitbox : Aucune action entreprise.
      :mozilla.291:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Hitbox : Aucune action entreprise.
      :mozilla.303:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Hitbox : Aucune action entreprise.
      :mozilla.713:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Hitbox : Aucune action entreprise.
      :mozilla.820:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Hitbox : Aucune action entreprise.
      :mozilla.821:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Hitbox : Aucune action entreprise.
      :mozilla.838:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Hitbox : Aucune action entreprise.
      :mozilla.839:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Hitbox : Aucune action entreprise.
      :mozilla.840:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Hitbox : Aucune action entreprise.
      E:\Documents and Settings\Isabelle\Cookies\isabelle@ehg-tiscover.hitbox[2].txt -> TrackingCookie.Hitbox : Aucune action entreprise.
      E:\Documents and Settings\Isabelle\Cookies\isabelle@hitbox[2].txt -> TrackingCookie.Hitbox : Aucune action entreprise.
      :mozilla.100:E:\RECYCLER\NPROTECT\00076972.MOZ -> TrackingCookie.Imrworldwide : Aucune action entreprise.
      :mozilla.101:E:\RECYCLER\NPROTECT\00076972.MOZ -> TrackingCookie.Imrworldwide : Aucune action entreprise.
      :mozilla.104:E:\RECYCLER\NPROTECT\00076995.MOZ -> TrackingCookie.Imrworldwide : Aucune action entreprise.
      :mozilla.104:E:\RECYCLER\NPROTECT\00077010.MOZ -> TrackingCookie.Imrworldwide : Aucune action entreprise.
      :mozilla.105:E:\RECYCLER\NPROTECT\00076978.MOZ -> TrackingCookie.Imrworldwide : Aucune action entreprise.
      :mozilla.105:E:\RECYCLER\NPROTECT\00076985.MOZ -> TrackingCookie.Imrworldwide : Aucune action entreprise.
      :mozilla.105:E:\RECYCLER\NPROTECT\00076995.MOZ -> TrackingCookie.Imrworldwide : Aucune action entreprise.
      :mozilla.105:E:\RECYCLER\NPROTECT\00077010.MOZ -> TrackingCookie.Imrworldwide : Aucune action entreprise.
      :mozilla.106:E:\RECYCLER\NPROTECT\00076978.MOZ -> TrackingCookie.Imrworldwide : Aucune action entreprise.
      :mozilla.106:E:\RECYCLER\NPROTECT\00076985.MOZ -> TrackingCookie.Imrworldwide : Aucune action entreprise.
      :mozilla.109:E:\RECYCLER\NPROTECT\00077449.MOZ -> TrackingCookie.Imrworldwide : Aucune action entreprise.
      :mozilla.110:E:\RECYCLER\NPROTECT\00077018.MOZ -> TrackingCookie.Imrworldwide : Aucune action entreprise.
      :mozilla.110:E:\RECYCLER\NPROTECT\00077436.MOZ -> TrackingCookie.Imrworldwide : Aucune action entreprise.
      :mozilla.110:E:\RECYCLER\NPROTECT\00077449.MOZ -> TrackingCookie.Imrworldwide : Aucune action entreprise.
      :mozilla.111:E:\RECYCLER\NPROTECT\00077018.MOZ -> TrackingCookie.Imrworldwide : Aucune action entreprise.
      :mozilla.111:E:\RECYCLER\NPROTECT\00077436.MOZ -> TrackingCookie.Imrworldwide : Aucune action entreprise.
      :mozilla.121:E:\RECYCLER\NPROTECT\00077580.MOZ -> TrackingCookie.Imrworldwide : Aucune action entreprise.
      :mozilla.122:E:\RECYCLER\NPROTECT\00077580.MOZ -> TrackingCookie.Imrworldwide : Aucune action entreprise.
      :mozilla.123:E:\RECYCLER\NPROTECT\00077581.MOZ -> TrackingCookie.Imrworldwide : Aucune action entreprise.
      :mozilla.124:E:\RECYCLER\NPROTECT\00077581.MOZ -> TrackingCookie.Imrworldwide : Aucune action entreprise.
      :mozilla.124:E:\RECYCLER\NPROTECT\00077583.MOZ -> TrackingCookie.Imrworldwide : Aucune action entreprise.
      :mozilla.125:E:\RECYCLER\NPROTECT\00077583.MOZ -> TrackingCookie.Imrworldwide : Aucune action entreprise.
      :mozilla.195:E:\Documents and Settings\bigeon\Application Data\Mozilla\Firefox\Profiles\zm7poleo.default\cookies.txt -> TrackingCookie.Imrworldwide : Aucune action entreprise.
      :mozilla.197:E:\Documents and Settings\bigeon\Application Data\Mozilla\Firefox\Profiles\zm7poleo.default\cookies.txt -> TrackingCookie.Imrworldwide : Aucune action entreprise.
      :mozilla.405:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Imrworldwide : Aucune action entreprise.
      :mozilla.406:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Imrworldwide : Aucune action entreprise.
      :mozilla.65:C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\rnou062d.default\cookies.txt -> TrackingCookie.Imrworldwide : Aucune action entreprise.
      :mozilla.66:C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\rnou062d.default\cookies.txt -> TrackingCookie.Imrworldwide : Aucune action entreprise.
      :mozilla.70:E:\Documents and Settings\Isabelle\Application Data\Mozilla\Firefox\Profiles\15i01mxe.default\cookies.txt -> TrackingCookie.Imrworldwide : Aucune action entreprise.
      :mozilla.71:E:\Documents and Settings\Isabelle\Application Data\Mozilla\Firefox\Profiles\15i01mxe.default\cookies.txt -> TrackingCookie.Imrworldwide : Aucune action entreprise.
      :mozilla.468:C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\rnou062d.default\cookies.txt -> TrackingCookie.Information : Aucune action entreprise.
      :mozilla.709:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Information : Aucune action entreprise.
      :mozilla.808:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Linksynergy : Aucune action entreprise.
      :mozilla.809:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Linksynergy : Aucune action entreprise.
      :mozilla.474:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Live : Aucune action entreprise.
      :mozilla.475:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Live : Aucune action entreprise.
      :mozilla.476:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Live : Aucune action entreprise.
      :mozilla.477:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Live : Aucune action entreprise.
      :mozilla.478:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Live : Aucune action entreprise.
      :mozilla.479:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Live : Aucune action entreprise.
      :mozilla.480:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Live : Aucune action entreprise.
      E:\Documents and Settings\Clémence\Cookies\clémence@search.live[2].txt -> TrackingCookie.Live : Aucune action entreprise.
      :mozilla.614:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Liveperson : Aucune action entreprise.
      :mozilla.615:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Liveperson : Aucune action entreprise.
      :mozilla.24:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Mediaplex : Aucune action entreprise.
      E:\Documents and Settings\Clémence\Cookies\clémence@mediaplex[1].txt -> TrackingCookie.Mediaplex : Aucune action entreprise.
      C:\Documents and Settings\Administrateur\Cookies\administrateur@search.msn[1].txt -> TrackingCookie.Msn : Aucune action entreprise.
      C:\Documents and Settings\Administrateur\Cookies\administrateur@search.msn[5].txt -> TrackingCookie.Msn : Aucune action entreprise.
      C:\Documents and Settings\jlouis\Cookies\jlouis@search.msn[3].txt -> TrackingCookie.Msn : Aucune action entreprise.
      :mozilla.589:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Onestat : Aucune action entreprise.
      :mozilla.590:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Onestat : Aucune action entreprise.
      :mozilla.89:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Overture : Aucune action entreprise.
      :mozilla.193:C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\rnou062d.default\cookies.txt -> TrackingCookie.Paypal : Aucune action entreprise.
      :mozilla.326:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Paypal : Aucune action entreprise.
      :mozilla.95:E:\Documents and Settings\bigeon\Application Data\Mozilla\Firefox\Profiles\zm7poleo.default\cookies.txt -> TrackingCookie.Paypal : Aucune action entreprise.
      :mozilla.528:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Questionmarket : Aucune action entreprise.
      :mozilla.529:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Questionmarket : Aucune action entreprise.
      :mozilla.866:E:\Documents and Settings\bigeon\Application Data\Mozilla\Firefox\Profiles\zm7poleo.default\cookies.txt -> TrackingCookie.Real : Aucune action entreprise.
      :mozilla.873:E:\Documents and Settings\bigeon\Application Data\Mozilla\Firefox\Profiles\zm7poleo.default\cookies.txt -> TrackingCookie.Real : Aucune action entreprise.
      C:\Documents and Settings\Administrateur\Cookies\administrateur@real[1].txt -> TrackingCookie.Real : Aucune action entreprise.
      E:\Documents and Settings\bigeon\Cookies\bigeon@real[2].txt -> TrackingCookie.Real : Aucune action entreprise.
      E:\Documents and Settings\bigeon\Cookies\bigeon@realguide.real[1].txt -> TrackingCookie.Real : Aucune action entreprise.
      :mozilla.308:C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\rnou062d.default\cookies.txt -> TrackingCookie.Realmedia : Aucune action entreprise.
      :mozilla.309:C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\rnou062d.default\cookies.txt -> TrackingCookie.Realmedia : Aucune action entreprise.
      :mozilla.310:C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\rnou062d.default\cookies.txt -> TrackingCookie.Realmedia : Aucune action entreprise.
      :mozilla.338:E:\Documents and Settings\bigeon\Application Data\Mozilla\Firefox\Profiles\zm7poleo.default\cookies.txt -> TrackingCookie.Realmedia : Aucune action entreprise.
      :mozilla.339:E:\Documents and Settings\bigeon\Application Data\Mozilla\Firefox\Profiles\zm7poleo.default\cookies.txt -> TrackingCookie.Realmedia : Aucune action entreprise.
      :mozilla.340:E:\Documents and Settings\bigeon\Application Data\Mozilla\Firefox\Profiles\zm7poleo.default\cookies.txt -> TrackingCookie.Realmedia : Aucune action entreprise.
      :mozilla.342:E:\Documents and Settings\bigeon\Application Data\Mozilla\Firefox\Profiles\zm7poleo.default\cookies.txt -> TrackingCookie.Realmedia : Aucune action entreprise.
      :mozilla.343:E:\Documents and Settings\bigeon\Application Data\Mozilla\Firefox\Profiles\zm7poleo.default\cookies.txt -> TrackingCookie.Realmedia : Aucune action entreprise.
      :mozilla.344:E:\Documents and Settings\bigeon\Application Data\Mozilla\Firefox\Profiles\zm7poleo.default\cookies.txt -> TrackingCookie.Realmedia : Aucune action entreprise.
      :mozilla.917:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Realmedia : Aucune action entreprise.
      :mozilla.286:E:\Documents and Settings\bigeon\Application Data\Mozilla\Firefox\Profiles\zm7poleo.default\cookies.txt -> TrackingCookie.Revsci : Aucune action entreprise.
      :mozilla.289:E:\Documents and Settings\bigeon\Application Data\Mozilla\Firefox\Profiles\zm7poleo.default\cookies.txt -> TrackingCookie.Revsci : Aucune action entreprise.
      :mozilla.290:E:\Documents and Settings\bigeon\Application Data\Mozilla\Firefox\Profiles\zm7poleo.default\cookies.txt -> TrackingCookie.Revsci : Aucune action entreprise.
      :mozilla.333:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Revsci : Aucune action entreprise.
      :mozilla.335:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Revsci : Aucune action entreprise.
      :mozilla.339:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Revsci : Aucune action entreprise.
      :mozilla.340:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Revsci : Aucune action entreprise.
      :mozilla.552:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Revsci : Aucune action entreprise.
      :mozilla.630:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Serving-sys : Aucune action entreprise.
      :mozilla.631:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Serving-sys : Aucune action entreprise.
      :mozilla.632:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Serving-sys : Aucune action entreprise.
      :mozilla.633:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Serving-sys : Aucune action entreprise.
      :mozilla.634:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Serving-sys : Aucune action entreprise.
      :mozilla.635:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Serving-sys : Aucune action entreprise.
      :mozilla.185:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Sitestat : Aucune action entreprise.
      :mozilla.186:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Sitestat : Aucune action entreprise.
      C:\Documents and Settings\jlouis\Cookies\jlouis@skype[1].txt -> TrackingCookie.Skype : Aucune action entreprise.
      C:\Documents and Settings\jlouis\Cookies\jlouis@skype[2].txt -> TrackingCookie.Skype : Aucune action entreprise.
      :mozilla.16:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Smartadserver : Aucune action entreprise.
      :mozilla.17:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Smartadserver : Aucune action entreprise.
      :mozilla.18:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Smartadserver : Aucune action entreprise.
      :mozilla.20:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Smartadserver : Aucune action entreprise.
      :mozilla.7:E:\Documents and Settings\Clem\Application Data\Mozilla\Firefox\Profiles\xu1fkkps.default\cookies.txt -> TrackingCookie.Smartadserver : Aucune action entreprise.
      E:\Documents and Settings\Clémence\Cookies\clémence@www.smartadserver[1].txt -> TrackingCookie.Smartadserver : Aucune action entreprise.
      :mozilla.790:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Starware : Aucune action entreprise.
      :mozilla.791:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Starware : Aucune action entreprise.
      :mozilla.792:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Starware : Aucune action entreprise.
      :mozilla.114:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Statcounter : Aucune action entreprise.
      :mozilla.115:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Statcounter : Aucune action entreprise.
      :mozilla.117:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Statcounter : Aucune action entreprise.
      :mozilla.118:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Statcounter : Aucune action entreprise.
      :mozilla.119:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Statcounter : Aucune action entreprise.
      :mozilla.120:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Statcounter : Aucune action entreprise.
      :mozilla.121:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Statcounter : Aucune action entreprise.
      :mozilla.122:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Statcounter : Aucune action entreprise.
      :mozilla.126:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Statcounter : Aucune action entreprise.
      :mozilla.127:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Statcounter : Aucune action entreprise.
      :mozilla.128:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Statcounter : Aucune action entreprise.
      :mozilla.129:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Statcounter : Aucune action entreprise.
      :mozilla.741:E:\Documents and Settings\bigeon\Application Data\Mozilla\Firefox\Profiles\zm7poleo.default\cookies.txt -> TrackingCookie.Statistik-gallup : Aucune action entreprise.
      :mozilla.931:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Targetnet : Aucune action entreprise.
      :mozilla.775:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Texttbnru : Aucune action entreprise.
      :mozilla.351:C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\rnou062d.default\cookies.txt -> TrackingCookie.Toplist : Aucune action entreprise.
      :mozilla.591:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Toplist : Aucune action entreprise.
      C:\Documents and Settings\jlouis\Cookies\jlouis@toplist[1].txt -> TrackingCookie.Toplist : Aucune action entreprise.
      :mozilla.95:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Tradedoubler : Aucune action entreprise.
      :mozilla.96:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Tradedoubler : Aucune action entreprise.
      :mozilla.97:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Tradedoubler : Aucune action entreprise.
      :mozilla.98:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Tradedoubler : Aucune action entreprise.
      E:\Documents and Settings\Clémence\Cookies\clémence@tradedoubler[1].txt -> TrackingCookie.Tradedoubler : Aucune action entreprise.
      E:\Documents and Settings\Isabelle\Cookies\isabelle@tradedoubler[1].txt -> TrackingCookie.Tradedoubler : Aucune action entreprise.
      :mozilla.832:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Trafficmp : Aucune action entreprise.
      :mozilla.833:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Trafficmp : Aucune action entreprise.
      E:\Documents and Settings\Clémence\Cookies\clémence@trafficmp[2].txt -> TrackingCookie.Trafficmp : Aucune action entreprise.
      :mozilla.338:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Tribalfusion : Aucune action entreprise.
      :mozilla.103:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Weborama : Aucune action entreprise.
      :mozilla.106:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Weborama : Aucune action entreprise.
      :mozilla.107:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Weborama : Aucune action entreprise.
      E:\Documents and Settings\Clémence\Cookies\clémence@weborama[2].txt -> TrackingCookie.Weborama : Aucune action entreprise.
      :mozilla.19:C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\rnou062d.default\cookies.txt -> TrackingCookie.Webtrends : Aucune action entreprise.
      :mozilla.513:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Webtrends : Aucune action entreprise.
      C:\Documents and Settings\Administrateur\Cookies\administrateur@m.webtrends[1].txt -> TrackingCookie.Webtrends : Aucune action entreprise.
      E:\Documents and Settings\Isabelle\Cookies\isabelle@m.webtrends[1].txt -> TrackingCookie.Webtrends : Aucune action entreprise.
      :mozilla.732:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Webtrendslive : Aucune action entreprise.
      E:\Documents and Settings\Clémence\Cookies\clémence@statse.webtrendslive[1].txt -> TrackingCookie.Webtrendslive : Aucune action entreprise.
      E:\Documents and Settings\Isabelle\Cookies\isabelle@statse.webtrendslive[2].txt -> TrackingCookie.Webtrendslive : Aucune action entreprise.
      :mozilla.666:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Yadro : Aucune action entreprise.
      :mozilla.146:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Yieldmanager : Aucune action entreprise.
      :mozilla.147:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Yieldmanager : Aucune action entreprise.
      :mozilla.148:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Yieldmanager : Aucune action entreprise.
      :mozilla.149:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Yieldmanager : Aucune action entreprise.
      E:\Documents and Settings\Clémence\Cookies\clémence@ad.yieldmanager[2].txt -> TrackingCookie.Yieldmanager : Aucune action entreprise.
      E:\Documents and Settings\Isabelle\Cookies\isabelle@ad.yieldmanager[1].txt -> TrackingCookie.Yieldmanager : Aucune action entreprise.
      :mozilla.538:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Zedo : Aucune action entreprise.
      :mozilla.539:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Zedo : Aucune action entreprise.
      :mozilla.540:E:\Documents and Settings\Clémence\Application Data\Mozilla\Firefox\Profiles\vr8lkt8a.default\cookies.txt -> TrackingCookie.Zedo : Aucune action entreprise.
      E:\Documents and Settings\Clémence\Cookies\clémence@zedo[2].txt -> TrackingCookie.Zedo : Aucune action entreprise.
      E:\Documents and Settings\Clémence\Application Data\Name Phone Sect\dmcuvvwa.exe -> Trojan.Obfuscated.bk : Aucune action entreprise.
      E:\Documents and Settings\Clémence\Application Data\Name Phone Sect\lmswvdrs.exe -> Trojan.Obfuscated.bk : Aucune action entreprise.
      E:\Documents and Settings\Clémence\Application Data\Name Phone Sect\ohlpkkit.exe -> Trojan.Obfuscated.bk : Aucune action entreprise.
      E:\Documents and Settings\Clémence\Application Data\Name Phone Sect\zbuxefkd.exe -> Trojan.Obfuscated.bk : Aucune action entreprise.
      E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP58\A0006838.exe -> Trojan.Obfuscated.bk : Aucune action entreprise.
      E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP58\A0006839.exe -> Trojan.Obfuscated.bk : Aucune action entreprise.
      E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP58\A0006840.exe -> Trojan.Obfuscated.bk : Aucune action entreprise.
      E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013129.exe -> Trojan.Obfuscated.bk : Aucune action entreprise.
      E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013130.exe -> Trojan.Obfuscated.bk : Aucune action entreprise.
      E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013131.exe -> Trojan.Obfuscated.bk : Aucune action entreprise.
      E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013132.exe -> Trojan.Obfuscated.bk : Aucune action entreprise.

      Fin du rapport
      0
      1. Modérateur
        Salut

        as tu supprimé ce qu'avg t'a trouvé ??

        ++
        0
        1. Oui, voici mon rapport HijackThis pour completer...

          -------------

          Logfile of Trend Micro HijackThis v2.0.0 (BETA)
          Scan saved at 20:37:53, on 20/04/2007
          Platform: Windows XP SP2 (WinNT 5.01.2600)
          Boot mode: Normal

          Running processes:
          E:\WINDOWS\System32\smss.exe
          E:\WINDOWS\system32\winlogon.exe
          E:\WINDOWS\system32\services.exe
          E:\WINDOWS\system32\lsass.exe
          E:\WINDOWS\system32\Ati2evxx.exe
          E:\WINDOWS\system32\svchost.exe
          E:\WINDOWS\System32\svchost.exe
          E:\WINDOWS\system32\spoolsv.exe
          e:\program files\fichiers communs\logitech\lvmvfm\LVPrcSrv.exe
          E:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
          E:\Program Files\Alwil Software\Avast4\ashServ.exe
          E:\Program Files\Belkin\Belkin Wireless Network Utility\WLService.exe
          E:\Program Files\Belkin\Belkin Wireless Network Utility\WLanCfgG.exe
          E:\WINDOWS\System32\svchost.exe
          E:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
          E:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
          E:\WINDOWS\system32\svchost.exe
          E:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\symlcsvc.exe
          E:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
          E:\Program Files\Alwil Software\Avast4\ashWebSv.exe
          E:\WINDOWS\system32\Ati2evxx.exe
          E:\WINDOWS\Explorer.EXE
          E:\WINDOWS\SOUNDMAN.EXE
          E:\WINDOWS\AGRSMMSG.exe
          E:\Program Files\Java\jre1.5.0_11\bin\jusched.exe
          E:\Program Files\Adobe\Photoshop Album Edition Découverte\3.0\Apps\apdproxy.exe
          E:\WINDOWS\system32\rundll32.exe
          E:\Program Files\Adobe\Adobe Version Cue\ControlPanel\VersionCueTray.exe
          E:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
          E:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
          E:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe
          E:\WINDOWS\system32\LVCOMSX.EXE
          E:\Program Files\Logitech\Video\LogiTray.exe
          E:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
          E:\Program Files\D-Link\Air USB Utility\AirCFG.exe
          E:\Program Files\D-Tools\daemon.exe
          E:\Program Files\QuickTime\qttask.exe
          E:\Program Files\iTunes\iTunesHelper.exe
          E:\WINDOWS\system32\ctfmon.exe
          E:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
          E:\Program Files\Logitech\Video\FxSvr2.exe
          E:\Program Files\Windows Media Player\WMPNSCFG.exe
          E:\Program Files\Adobe\Adobe Acrobat 6.0\Distillr\acrotray.exe
          E:\Program Files\iPod\bin\iPodService.exe
          E:\Program Files\Logitech\SetPoint\KEM.exe
          E:\Program Files\Logitech\SetPoint\KHALMNPR.EXE
          E:\Program Files\MSN Messenger\usnsvc.exe
          e:\progra~1\intern~1\iexplore.exe
          E:\Program Files\Internet Explorer\IEXPLORE.EXE
          E:\Program Files\Mozilla Firefox\firefox.exe
          E:\Program Files\iTunes\iTunes.exe
          E:\Program Files\MSN Messenger\msnmsgr.exe
          E:\WINDOWS\system32\NOTEPAD.EXE
          E:\Documents and Settings\Clémence\Bureau\HiJackThis_v2.exe

          R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer
          R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
          R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
          O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - E:\Program Files\Adobe\Adobe Acrobat 6.0\Acrobat\ActiveX\AcroIEHelper.dll
          O2 - BHO: EoRezoBHO - {64F56FC1-1272-44CD-BA6E-39723696E350} - (no file)
          O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - E:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
          O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
          O2 - BHO: AcroIEToolbarHelper Class - {AE7CD045-E861-484f-8273-0445EE161910} - E:\Program Files\Adobe\Adobe Acrobat 6.0\Acrobat\AcroIEFavClient.dll
          O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - E:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
          O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - E:\Program Files\Adobe\Adobe Acrobat 6.0\Acrobat\AcroIEFavClient.dll
          O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - E:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
          O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - E:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
          O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
          O4 - HKLM\..\Run: [SiSUSBRG] E:\WINDOWS\SiSUSBrg.exe
          O4 - HKLM\..\Run: [NeroFilterCheck] E:\WINDOWS\system32\NeroCheck.exe
          O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
          O4 - HKLM\..\Run: [SunJavaUpdateSched] "E:\Program Files\Java\jre1.5.0_11\bin\jusched.exe"
          O4 - HKLM\..\Run: [Adobe Photo Downloader] "E:\Program Files\Adobe\Photoshop Album Edition Découverte\3.0\Apps\apdproxy.exe"
          O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
          O4 - HKLM\..\Run: [AdobeVersionCue] E:\Program Files\Adobe\Adobe Version Cue\ControlPanel\VersionCueTray.exe
          O4 - HKLM\..\Run: [RemoteControl] "E:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
          O4 - HKLM\..\Run: [TkBellExe] "E:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
          O4 - HKLM\..\Run: [ANIWZCS2Service] E:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe
          O4 - HKLM\..\Run: [LVCOMSX] E:\WINDOWS\system32\LVCOMSX.EXE
          O4 - HKLM\..\Run: [LogitechVideoRepair] E:\Program Files\Logitech\Video\ISStart.exe
          O4 - HKLM\..\Run: [LogitechVideoTray] E:\Program Files\Logitech\Video\LogiTray.exe
          O4 - HKLM\..\Run: [avast!] E:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
          O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
          O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
          O4 - HKLM\..\Run: [EPSON Stylus DX5000 Series] E:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIBVE.EXE /FU "E:\WINDOWS\TEMP\E_S8D.tmp" /EF "HKLM"
          O4 - HKLM\..\Run: [D-Link Air USB Utility] E:\Program Files\D-Link\Air USB Utility\AirCFG.exe
          O4 - HKLM\..\Run: [DAEMON Tools-1033] "E:\Program Files\D-Tools\daemon.exe" -lang 1033
          O4 - HKLM\..\Run: [QuickTime Task] "E:\Program Files\QuickTime\qttask.exe" -atboottime
          O4 - HKLM\..\Run: [iTunesHelper] "E:\Program Files\iTunes\iTunesHelper.exe"
          O4 - HKLM\..\Run: [Mode Noun Stupid 64] E:\Documents and Settings\All Users\Application Data\Blehtimemodenoun\Inside Mp3.exe
          O4 - HKCU\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\ctfmon.exe
          O4 - HKCU\..\Run: [msnmsgr] "E:\Program Files\MSN Messenger\msnmsgr.exe" /background
          O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "E:\Program Files\Logitech\Video\ManifestEngine.exe" boot
          O4 - HKCU\..\Run: [LDM] E:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
          O4 - HKCU\..\Run: [Team Bias] E:\DOCUME~1\CLMENC~1\APPLIC~1\NAMEPH~1\chic bleh.exe
          O4 - HKCU\..\Run: [WMPNSCFG] E:\Program Files\Windows Media Player\WMPNSCFG.exe
          O4 - HKCU\..\Policies\Explorer\Run: [{D09D1879-07D2-1036-1202-040504100021}] "E:\Program Files\Fichiers communs\{D09D1879-07D2-1036-1202-040504100021}\Update.exe" mc-110-12-0001411
          O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
          O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
          O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
          O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
          O4 - Global Startup: Adobe Gamma Loader.lnk = E:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
          O4 - Global Startup: Assistant d'Acrobat.lnk = E:\Program Files\Adobe\Adobe Acrobat 6.0\Distillr\acrotray.exe
          O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = E:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
          O4 - Global Startup: Logitech Desktop Messenger.lnk = E:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
          O4 - Global Startup: Logitech SetPoint.lnk = E:\Program Files\Logitech\SetPoint\KEM.exe
          O4 - Global Startup: LUMIX Simple Viewer.lnk = ?
          O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://E:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
          O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - E:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
          O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - E:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
          O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
          O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
          O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - E:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
          O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
          O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
          O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - https://www.kaspersky.fr/?domain=webscanner.kaspersky.fr
          O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
          O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
          O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
          O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
          O22 - SharedTaskScheduler: Pré-chargeur Browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - E:\WINDOWS\system32\browseui.dll
          O22 - SharedTaskScheduler: Démon de cache des catégories de composant - {8C7461EF-2B13-11d2-BE35-3078302C2030} - E:\WINDOWS\system32\browseui.dll
          O23 - Service: Adobe LM Service - Unknown owner - E:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
          O23 - Service: AdobeVersionCue - Adobe Sytems - E:\Program Files\Adobe\Adobe Version Cue\service\VersionCue.exe
          O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - E:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
          O23 - Service: Ati HotKey Poller - Unknown owner - E:\WINDOWS\system32\Ati2evxx.exe
          O23 - Service: ATI Smart - Unknown owner - E:\WINDOWS\system32\ati2sgag.exe
          O23 - Service: avast! Antivirus - Unknown owner - E:\Program Files\Alwil Software\Avast4\ashServ.exe
          O23 - Service: avast! Mail Scanner - ALWIL Software - E:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
          O23 - Service: avast! Web Scanner - ALWIL Software - E:\Program Files\Alwil Software\Avast4\ashWebSv.exe
          O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - E:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
          O23 - Service: Belkin Wireless USB Network Adapter (Belkin Wireless USB Network Adapter Service) - Unknown owner - E:\Program Files\Belkin\Belkin Wireless Network Utility\WLService.exe
          O23 - Service: Boonty Games - BOONTY - E:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
          O23 - Service: Service d'administration du Gestionnaire de disque logique (dmadmin) - Unknown owner - E:\WINDOWS\System32\dmadmin.exe
          O23 - Service: Journal des événements (Eventlog) - Unknown owner - E:\WINDOWS\system32\services.exe
          O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - E:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
          O23 - Service: Service COM de gravage de CD IMAPI (ImapiService) - Unknown owner - E:\WINDOWS\system32\imapi.exe
          O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - E:\Program Files\iPod\bin\iPodService.exe
          O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Unknown owner - E:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
          O23 - Service: Logitech Process Monitor (LVPrcSrv) - Logitech Inc. - e:\program files\fichiers communs\logitech\lvmvfm\LVPrcSrv.exe
          O23 - Service: Partage de Bureau à distance NetMeeting (mnmsrvc) - Unknown owner - E:\WINDOWS\system32\mnmsrvc.exe
          O23 - Service: Planificateur LiveUpdate automatique - Unknown owner - E:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe (file missing)
          O23 - Service: Plug-and-Play (PlugPlay) - Unknown owner - E:\WINDOWS\system32\services.exe
          O23 - Service: Gestionnaire de session d'aide sur le Bureau à distance (RDSessMgr) - Unknown owner - E:\WINDOWS\system32\sessmgr.exe
          O23 - Service: Carte à puce (SCardSvr) - Unknown owner - E:\WINDOWS\System32\SCardSvr.exe
          O23 - Service: Symantec Core LC - Symantec Corporation - E:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\symlcsvc.exe
          O23 - Service: Journaux et alertes de performance (SysmonLog) - Unknown owner - E:\WINDOWS\system32\smlogsvc.exe
          O23 - Service: Cliché instantané de volume (VSS) - Unknown owner - E:\WINDOWS\System32\vssvc.exe
          O23 - Service: Service de lancement de WlanCfg (Wlancfg) - Unknown owner - E:\Program Files\Inventel\Gateway\wlancfg.exe
          O23 - Service: Carte de performance WMI (WmiApSrv) - Unknown owner - E:\WINDOWS\system32\wbem\wmiapsrv.exe
          O23 - Service: Service Partage réseau du Lecteur Windows Media (WMPNetworkSvc) - Unknown owner - E:\Program Files\Windows Media Player\wmpnetwk.exe
          O24 - Desktop Component 0: (no name) - file:///E:/DOCUME~1/CLMENC~1/LOCALS~1/Temp/msohtml1/01/clip_image002.jpg
          0
      2. Modérateur
        ok, fais le scan en ligne stp ;-)

        ++
        La sagesse, c'est d'avoir des rêves suffisamment grands pour ne pas les
        perdre de vue lorsqu'on les poursuit. (Oscar Wilde)
        0
        1. Voilà, BitDefender :
          C:\Documents and Settings\Administrateur\Bureau\MyImages\formatage5.zip=>ZARBI.EXE=>(RAR Sfx o)=>zarbi.exe

          Infected with: Joke.Apeldorn

          C:\Documents and Settings\Administrateur\Bureau\MyImages\formatage5.zip=>ZARBI.EXE=>(RAR Sfx o)=>zarbi.exe

          Disinfection failed

          C:\Documents and Settings\Administrateur\Bureau\MyImages\formatage5.zip=>ZARBI.EXE=>(RAR Sfx o)=>zarbi.exe

          Deleted

          C:\Documents and Settings\Administrateur\Bureau\MyImages\formatage5.zip=>ZARBI.EXE=>(RAR Sfx o)

          Update failed

          C:\Documents and Settings\Administrateur\Bureau\MyImages\jeu.zip=>blogueur.exe=>(RAR Sfx o)=>castet.exe

          Infected with: Trojan.Win32.DesktopPuzzle

          C:\Documents and Settings\Administrateur\Bureau\MyImages\jeu.zip=>blogueur.exe=>(RAR Sfx o)=>castet.exe

          Disinfection failed

          C:\Documents and Settings\Administrateur\Bureau\MyImages\jeu.zip=>blogueur.exe=>(RAR Sfx o)=>castet.exe

          Deleted

          C:\Documents and Settings\Administrateur\Bureau\MyImages\jeu.zip=>blogueur.exe=>(RAR Sfx o)

          Update failed

          C:\Documents and Settings\Administrateur\Bureau\MyImages\formatage2.zip=>formatge2.exe=>(RAR Sfx o)=>funpic.exe

          Infected with: Trojan.Multidropper.BG

          C:\Documents and Settings\Administrateur\Bureau\MyImages\formatage2.zip=>formatge2.exe=>(RAR Sfx o)=>funpic.exe

          Disinfection failed

          C:\Documents and Settings\Administrateur\Bureau\MyImages\formatage2.zip=>formatge2.exe=>(RAR Sfx o)=>funpic.exe

          Deleted

          C:\Documents and Settings\Administrateur\Bureau\MyImages\formatage2.zip=>formatge2.exe=>(RAR Sfx o)

          Update failed

          C:\Documents and Settings\Administrateur\Bureau\MyImages\californi.zip=>californi.exe=>(RAR Sfx o)=>caiforni.exe

          Infected with: Joke.Funny.A

          C:\Documents and Settings\Administrateur\Bureau\MyImages\californi.zip=>californi.exe=>(RAR Sfx o)=>caiforni.exe

          Disinfection failed

          C:\Documents and Settings\Administrateur\Bureau\MyImages\californi.zip=>californi.exe=>(RAR Sfx o)=>caiforni.exe

          Deleted

          C:\Documents and Settings\Administrateur\Bureau\MyImages\californi.zip=>californi.exe=>(RAR Sfx o)

          Update failed

          C:\Program Files\MyWebSearch\bar\3.bin\F3SHLLVW.DLL

          Detected with: Adware.Mywebsearch.G

          C:\Program Files\MyWebSearch\bar\3.bin\F3SHLLVW.DLL

          Disinfection failed

          C:\Program Files\MyWebSearch\bar\3.bin\F3SHLLVW.DLL

          Deleted

          C:\Program Files\MyWebSearch\bar\3.bin\M3SKIN.DLL

          Detected with: Adware.Mywebsearch.G

          C:\Program Files\MyWebSearch\bar\3.bin\M3SKIN.DLL

          Disinfection failed

          C:\Program Files\MyWebSearch\bar\3.bin\M3SKIN.DLL

          Deleted

          C:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013313.DLL

          Detected with: Adware.Mywebsearch.G

          C:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013313.DLL

          Disinfection failed

          C:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013313.DLL

          Deleted

          C:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013314.DLL

          Detected with: Adware.Mywebsearch.G

          C:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013314.DLL

          Disinfection failed

          C:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013314.DLL

          Deleted

          E:\Documents and Settings\All Users\Application Data\Blehtimemodenoun\Inside Mp3.exe

          Infected with: Trojan.FatObfus.Gen

          E:\Documents and Settings\All Users\Application Data\Blehtimemodenoun\Inside Mp3.exe

          Disinfection failed

          E:\Documents and Settings\All Users\Application Data\Blehtimemodenoun\Inside Mp3.exe

          Delete failed

          E:\Documents and Settings\bigeon\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\count33.jar-5b7ca364-375da1e2.zip=>Dummy.class

          Infected with: Java.Trojan.Exploit.Bytverify

          E:\Documents and Settings\bigeon\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\count33.jar-5b7ca364-375da1e2.zip=>Dummy.class

          Disinfection failed

          E:\Documents and Settings\bigeon\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\count33.jar-5b7ca364-375da1e2.zip=>Dummy.class

          Deleted

          E:\Documents and Settings\bigeon\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\count33.jar-5b7ca364-375da1e2.zip

          Updated

          E:\Documents and Settings\Clem\Bureau\ZiPs\californi.zip=>californi.exe=>(RAR Sfx o)=>caiforni.exe

          Infected with: Joke.Funny.A

          E:\Documents and Settings\Clem\Bureau\ZiPs\californi.zip=>californi.exe=>(RAR Sfx o)=>caiforni.exe

          Disinfection failed

          E:\Documents and Settings\Clem\Bureau\ZiPs\californi.zip=>californi.exe=>(RAR Sfx o)=>caiforni.exe

          Deleted

          E:\Documents and Settings\Clem\Bureau\ZiPs\californi.zip=>californi.exe=>(RAR Sfx o)

          Update failed

          E:\Documents and Settings\Clem\Bureau\ZiPs\formatage2.zip=>formatge2.exe=>(RAR Sfx o)=>funpic.exe

          Infected with: Trojan.Multidropper.BG

          E:\Documents and Settings\Clem\Bureau\ZiPs\formatage2.zip=>formatge2.exe=>(RAR Sfx o)=>funpic.exe

          Disinfection failed

          E:\Documents and Settings\Clem\Bureau\ZiPs\formatage2.zip=>formatge2.exe=>(RAR Sfx o)=>funpic.exe

          Deleted

          E:\Documents and Settings\Clem\Bureau\ZiPs\formatage2.zip=>formatge2.exe=>(RAR Sfx o)

          Update failed

          E:\Documents and Settings\Clem\Bureau\ZiPs\formatage5.zip=>ZARBI.EXE=>(RAR Sfx o)=>zarbi.exe

          Infected with: Joke.Apeldorn

          E:\Documents and Settings\Clem\Bureau\ZiPs\formatage5.zip=>ZARBI.EXE=>(RAR Sfx o)=>zarbi.exe

          Disinfection failed

          E:\Documents and Settings\Clem\Bureau\ZiPs\formatage5.zip=>ZARBI.EXE=>(RAR Sfx o)=>zarbi.exe

          Deleted

          E:\Documents and Settings\Clem\Bureau\ZiPs\formatage5.zip=>ZARBI.EXE=>(RAR Sfx o)

          Update failed

          E:\Documents and Settings\Clem\Bureau\ZiPs\jeu.zip=>blogueur.exe=>(RAR Sfx o)=>castet.exe

          Infected with: Trojan.Win32.DesktopPuzzle

          E:\Documents and Settings\Clem\Bureau\ZiPs\jeu.zip=>blogueur.exe=>(RAR Sfx o)=>castet.exe

          Disinfection failed

          E:\Documents and Settings\Clem\Bureau\ZiPs\jeu.zip=>blogueur.exe=>(RAR Sfx o)=>castet.exe

          Deleted

          E:\Documents and Settings\Clem\Bureau\ZiPs\jeu.zip=>blogueur.exe=>(RAR Sfx o)

          Update failed

          E:\Documents and Settings\Clémence\Application Data\Name Phone Sect\chic bleh.exe

          Infected with: Trojan.FatObfus.Gen

          E:\Documents and Settings\Clémence\Application Data\Name Phone Sect\chic bleh.exe

          Disinfection failed

          E:\Documents and Settings\Clémence\Application Data\Name Phone Sect\chic bleh.exe

          Deleted

          E:\Documents and Settings\Clémence\Application Data\Name Phone Sect\lite ball funk.exe

          Infected with: Trojan.FatObfus.Gen

          E:\Documents and Settings\Clémence\Application Data\Name Phone Sect\lite ball funk.exe

          Disinfection failed

          E:\Documents and Settings\Clémence\Application Data\Name Phone Sect\lite ball funk.exe

          Deleted

          E:\Documents and Settings\Clémence\Application Data\Name Phone Sect\ozjufwhp.exe

          Infected with: Trojan.FatObfus.Gen

          E:\Documents and Settings\Clémence\Application Data\Name Phone Sect\ozjufwhp.exe

          Disinfection failed

          E:\Documents and Settings\Clémence\Application Data\Name Phone Sect\ozjufwhp.exe

          Deleted

          E:\RECYCLER\NPROTECT\00077811.exe=>(Quarantine-2)=>(NSIS o)=>lzma_solid_nsis0002

          Detected with: Adware.Softomate.D

          E:\RECYCLER\NPROTECT\00077811.exe=>(Quarantine-2)=>(NSIS o)=>lzma_solid_nsis0002

          Disinfection failed

          E:\RECYCLER\NPROTECT\00077811.exe=>(Quarantine-2)=>(NSIS o)=>lzma_solid_nsis0002

          Deleted

          E:\RECYCLER\NPROTECT\00077811.exe=>(Quarantine-2)=>(NSIS o)

          Update failed

          E:\RECYCLER\NPROTECT\00077811.exe=>(Quarantine-2)=>(NSIS o)=>lzma_solid_nsis0006

          Detected with: Adware.Softomate.D

          E:\RECYCLER\NPROTECT\00077811.exe=>(Quarantine-2)=>(NSIS o)=>lzma_solid_nsis0006

          Disinfection failed

          E:\RECYCLER\NPROTECT\00077811.exe=>(Quarantine-2)=>(NSIS o)=>lzma_solid_nsis0006

          Deleted

          E:\RECYCLER\NPROTECT\00077811.exe=>(Quarantine-2)=>(NSIS o)

          Update failed

          E:\RECYCLER\NPROTECT\00077811.exe=>(Quarantine-2)=>(NSIS o)=>lzma_solid_nsis0008=>(NSIS g)=>lzma_solid_nsis0002

          Detected with: Adware.Softomate.D

          E:\RECYCLER\NPROTECT\00077811.exe=>(Quarantine-2)=>(NSIS o)=>lzma_solid_nsis0008=>(NSIS g)=>lzma_solid_nsis0002

          Disinfection failed

          E:\RECYCLER\NPROTECT\00077811.exe=>(Quarantine-2)=>(NSIS o)=>lzma_solid_nsis0008=>(NSIS g)=>lzma_solid_nsis0002

          Deleted

          E:\RECYCLER\NPROTECT\00077811.exe=>(Quarantine-2)=>(NSIS o)=>lzma_solid_nsis0008=>(NSIS g)

          Update failed

          E:\RECYCLER\NPROTECT\00077812.exe=>(Quarantine-2)

          Infected with: Trojan.Downloader.Agent.BCA

          E:\RECYCLER\NPROTECT\00077812.exe=>(Quarantine-2)

          Deleted

          E:\RECYCLER\NPROTECT\00077814.exe=>(Quarantine-2)

          Infected with: Trojan.Purityad.E

          E:\RECYCLER\NPROTECT\00077814.exe=>(Quarantine-2)

          Disinfection failed

          E:\RECYCLER\NPROTECT\00077814.exe=>(Quarantine-2)

          Deleted

          E:\RECYCLER\NPROTECT\00077816.exe=>(Quarantine-2)

          Infected with: Trojan.Muldrop.2.0.4

          E:\RECYCLER\NPROTECT\00077816.exe=>(Quarantine-2)

          Disinfection failed

          E:\RECYCLER\NPROTECT\00077816.exe=>(Quarantine-2)

          Deleted

          E:\RECYCLER\NPROTECT\00077821.exe=>(Quarantine-2)=>(NSIS o)=>lzma_solid_nsis0002

          Detected with: Adware.Softomate.D

          E:\RECYCLER\NPROTECT\00077821.exe=>(Quarantine-2)=>(NSIS o)=>lzma_solid_nsis0002

          Disinfection failed

          E:\RECYCLER\NPROTECT\00077821.exe=>(Quarantine-2)=>(NSIS o)=>lzma_solid_nsis0002

          Deleted

          E:\RECYCLER\NPROTECT\00077821.exe=>(Quarantine-2)=>(NSIS o)

          Update failed

          E:\RECYCLER\NPROTECT\00077821.exe=>(Quarantine-2)=>(NSIS o)=>lzma_solid_nsis0006

          Detected with: Adware.Softomate.D

          E:\RECYCLER\NPROTECT\00077821.exe=>(Quarantine-2)=>(NSIS o)=>lzma_solid_nsis0006

          Disinfection failed

          E:\RECYCLER\NPROTECT\00077821.exe=>(Quarantine-2)=>(NSIS o)=>lzma_solid_nsis0006

          Deleted

          E:\RECYCLER\NPROTECT\00077821.exe=>(Quarantine-2)=>(NSIS o)

          Update failed

          E:\RECYCLER\NPROTECT\00077821.exe=>(Quarantine-2)=>(NSIS o)=>lzma_solid_nsis0008=>(NSIS g)=>lzma_solid_nsis0002

          Detected with: Adware.Softomate.D

          E:\RECYCLER\NPROTECT\00077821.exe=>(Quarantine-2)=>(NSIS o)=>lzma_solid_nsis0008=>(NSIS g)=>lzma_solid_nsis0002

          Disinfection failed

          E:\RECYCLER\NPROTECT\00077821.exe=>(Quarantine-2)=>(NSIS o)=>lzma_solid_nsis0008=>(NSIS g)=>lzma_solid_nsis0002

          Deleted

          E:\RECYCLER\NPROTECT\00077821.exe=>(Quarantine-2)=>(NSIS o)=>lzma_solid_nsis0008=>(NSIS g)

          Update failed

          E:\RECYCLER\NPROTECT\00077824.exe=>(Quarantine-2)

          Infected with: Dropped:Trojan.Purityad.E

          E:\RECYCLER\NPROTECT\00077824.exe=>(Quarantine-2)

          Disinfection failed

          E:\RECYCLER\NPROTECT\00077824.exe=>(Quarantine-2)

          Deleted

          E:\RECYCLER\NPROTECT\00077827.exe=>(Quarantine-2)

          Infected with: Trojan.Downloader.Agent.BCA

          E:\RECYCLER\NPROTECT\00077827.exe=>(Quarantine-2)

          Deleted

          E:\RECYCLER\NPROTECT\00077830.exe=>(Quarantine-2)

          Infected with: Dropped:Trojan.Purityad.E

          E:\RECYCLER\NPROTECT\00077830.exe=>(Quarantine-2)

          Disinfection failed

          E:\RECYCLER\NPROTECT\00077830.exe=>(Quarantine-2)

          Deleted

          E:\RECYCLER\NPROTECT\00077833.exe=>(Quarantine-2)

          Infected with: Trojan.Downloader.Agent.BCA

          E:\RECYCLER\NPROTECT\00077833.exe=>(Quarantine-2)

          Deleted

          E:\RECYCLER\NPROTECT\00077835.dll=>(Quarantine-2)

          Infected with: Trojan.Click.AD

          E:\RECYCLER\NPROTECT\00077835.dll=>(Quarantine-2)

          Disinfection failed

          E:\RECYCLER\NPROTECT\00077835.dll=>(Quarantine-2)

          Deleted

          E:\RECYCLER\NPROTECT\00077837.dll=>(Quarantine-2)

          Infected with: Trojan.Click.AE

          E:\RECYCLER\NPROTECT\00077837.dll=>(Quarantine-2)

          Disinfection failed

          E:\RECYCLER\NPROTECT\00077837.dll=>(Quarantine-2)

          Deleted

          E:\RECYCLER\NPROTECT\00077839.IE5=>(Quarantine-2)

          Infected with: Trojan.Click.AE

          E:\RECYCLER\NPROTECT\00077839.IE5=>(Quarantine-2)

          Disinfection failed

          E:\RECYCLER\NPROTECT\00077839.IE5=>(Quarantine-2)

          Deleted

          E:\RECYCLER\NPROTECT\00077840.exe=>(Quarantine-2)

          Infected with: Trojan.Win.Parkin

          E:\RECYCLER\NPROTECT\00077840.exe=>(Quarantine-2)

          Disinfection failed

          E:\RECYCLER\NPROTECT\00077840.exe=>(Quarantine-2)

          Deleted

          E:\RECYCLER\NPROTECT\00077845.exe=>(Quarantine-2)

          Infected with: Dropped:Trojan.Purityad.E

          E:\RECYCLER\NPROTECT\00077845.exe=>(Quarantine-2)

          Disinfection failed

          E:\RECYCLER\NPROTECT\00077845.exe=>(Quarantine-2)

          Deleted

          E:\RECYCLER\NPROTECT\00077848.exe=>(Quarantine-2)

          Infected with: Backdoor.MSNMaker.AB

          E:\RECYCLER\NPROTECT\00077848.exe=>(Quarantine-2)

          Deleted

          E:\RECYCLER\NPROTECT\00077849.exe=>(Quarantine-2)

          Infected with: Joke.Apeldorn

          E:\RECYCLER\NPROTECT\00077849.exe=>(Quarantine-2)

          Disinfection failed

          E:\RECYCLER\NPROTECT\00077849.exe=>(Quarantine-2)

          Deleted

          E:\RECYCLER\NPROTECT\00077850.exe=>(Quarantine-2)

          Infected with: Joke.Funny.A

          E:\RECYCLER\NPROTECT\00077850.exe=>(Quarantine-2)

          Disinfection failed

          E:\RECYCLER\NPROTECT\00077850.exe=>(Quarantine-2)

          Deleted

          E:\RECYCLER\NPROTECT\00077854.exe=>(Quarantine-2)=>(NSIS o)=>lzma_solid_nsis0002

          Detected with: Adware.Softomate.D

          E:\RECYCLER\NPROTECT\00077854.exe=>(Quarantine-2)=>(NSIS o)=>lzma_solid_nsis0002

          Disinfection failed

          E:\RECYCLER\NPROTECT\00077854.exe=>(Quarantine-2)=>(NSIS o)=>lzma_solid_nsis0002

          Deleted

          E:\RECYCLER\NPROTECT\00077854.exe=>(Quarantine-2)=>(NSIS o)

          Update failed

          E:\RECYCLER\NPROTECT\00077854.exe=>(Quarantine-2)=>(NSIS o)=>lzma_solid_nsis0006

          Detected with: Adware.Softomate.D

          E:\RECYCLER\NPROTECT\00077854.exe=>(Quarantine-2)=>(NSIS o)=>lzma_solid_nsis0006

          Disinfection failed

          E:\RECYCLER\NPROTECT\00077854.exe=>(Quarantine-2)=>(NSIS o)=>lzma_solid_nsis0006

          Deleted

          E:\RECYCLER\NPROTECT\00077854.exe=>(Quarantine-2)=>(NSIS o)

          Update failed

          E:\RECYCLER\NPROTECT\00077854.exe=>(Quarantine-2)=>(NSIS o)=>lzma_solid_nsis0008=>(NSIS g)=>lzma_solid_nsis0002

          Detected with: Adware.Softomate.D

          E:\RECYCLER\NPROTECT\00077854.exe=>(Quarantine-2)=>(NSIS o)=>lzma_solid_nsis0008=>(NSIS g)=>lzma_solid_nsis0002

          Disinfection failed

          E:\RECYCLER\NPROTECT\00077854.exe=>(Quarantine-2)=>(NSIS o)=>lzma_solid_nsis0008=>(NSIS g)=>lzma_solid_nsis0002

          Deleted

          E:\RECYCLER\NPROTECT\00077854.exe=>(Quarantine-2)=>(NSIS o)=>lzma_solid_nsis0008=>(NSIS g)

          Update failed

          E:\RECYCLER\NPROTECT\00077855.exe=>(Quarantine-2)

          Infected with: Trojan.Downloader.Agent.BCA

          E:\RECYCLER\NPROTECT\00077855.exe=>(Quarantine-2)

          Deleted

          E:\RECYCLER\NPROTECT\00077856.exe=>(Quarantine-2)

          Infected with: Dropped:Trojan.Purityad.E

          E:\RECYCLER\NPROTECT\00077856.exe=>(Quarantine-2)

          Disinfection failed

          E:\RECYCLER\NPROTECT\00077856.exe=>(Quarantine-2)

          Deleted

          E:\RECYCLER\NPROTECT\00077857.exe=>(Quarantine-2)

          Infected with: Backdoor.MSNMaker.AB

          E:\RECYCLER\NPROTECT\00077857.exe=>(Quarantine-2)

          Deleted

          E:\RECYCLER\NPROTECT\00077864.exe=>(Quarantine-2)

          Infected with: Trojan.Win32.DesktopPuzzle

          E:\RECYCLER\NPROTECT\00077864.exe=>(Quarantine-2)

          Disinfection failed

          E:\RECYCLER\NPROTECT\00077864.exe=>(Quarantine-2)

          Deleted

          E:\RECYCLER\NPROTECT\00077865.exe=>(Quarantine-2)

          Infected with: Win32.Worm.VB.DW

          E:\RECYCLER\NPROTECT\00077865.exe=>(Quarantine-2)

          Deleted

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP58\A0006841.exe

          Infected with: Trojan.FatObfus.Gen

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP58\A0006841.exe

          Disinfection failed

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP58\A0006841.exe

          Deleted

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013140.exe

          Infected with: Trojan.FatObfus.Gen

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013140.exe

          Disinfection failed

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013140.exe

          Deleted

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013142.exe

          Infected with: Trojan.FatObfus.Gen

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013142.exe

          Disinfection failed

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013142.exe

          Deleted

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013306.exe

          Infected with: Trojan.FatObfus.Gen

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013306.exe

          Disinfection failed

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013306.exe

          Deleted

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013307.exe

          Infected with: Trojan.FatObfus.Gen

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013307.exe

          Disinfection failed

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013307.exe

          Deleted

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013308.exe

          Infected with: Trojan.FatObfus.Gen

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013308.exe

          Disinfection failed

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013308.exe

          Deleted

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013309.exe

          Infected with: Trojan.FatObfus.Gen

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013309.exe

          Disinfection failed

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013309.exe

          Deleted

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013311.exe

          Infected with: Trojan.FatObfus.Gen

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013311.exe

          Disinfection failed

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013311.exe

          Deleted

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013312.exe=>(NSIS o)=>zlib_nsis0001

          Infected with: Trojan.Hotbar.A

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013312.exe=>(NSIS o)=>zlib_nsis0001

          Disinfection failed

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013312.exe=>(NSIS o)=>zlib_nsis0001

          Deleted

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013312.exe=>(NSIS o)

          Update failed

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013315.exe=>(Quarantine-2)

          Infected with: Trojan.Downloader.Agent.BCA

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013315.exe=>(Quarantine-2)

          Deleted

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013316.exe=>(Quarantine-2)

          Infected with: Trojan.Purityad.E

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013316.exe=>(Quarantine-2)

          Disinfection failed

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013316.exe=>(Quarantine-2)

          Deleted

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013317.exe=>(Quarantine-2)

          Infected with: Trojan.Muldrop.2.0.4

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013317.exe=>(Quarantine-2)

          Disinfection failed

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013317.exe=>(Quarantine-2)

          Deleted

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013318.exe=>(Quarantine-2)

          Infected with: Dropped:Trojan.Purityad.E

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013318.exe=>(Quarantine-2)

          Disinfection failed

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013318.exe=>(Quarantine-2)

          Deleted

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013319.exe=>(Quarantine-2)

          Infected with: Trojan.Downloader.Agent.BCA

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013319.exe=>(Quarantine-2)

          Deleted

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013320.exe=>(Quarantine-2)

          Infected with: Dropped:Trojan.Purityad.E

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013320.exe=>(Quarantine-2)

          Disinfection failed

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013320.exe=>(Quarantine-2)

          Deleted

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013321.exe=>(Quarantine-2)

          Infected with: Trojan.Downloader.Agent.BCA

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013321.exe=>(Quarantine-2)

          Deleted

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013322.dll=>(Quarantine-2)

          Infected with: Trojan.Click.AD

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013322.dll=>(Quarantine-2)

          Disinfection failed

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013322.dll=>(Quarantine-2)

          Deleted

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013323.dll=>(Quarantine-2)

          Infected with: Trojan.Click.AE

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013323.dll=>(Quarantine-2)

          Disinfection failed

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013323.dll=>(Quarantine-2)

          Deleted

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013324.exe=>(Quarantine-2)

          Infected with: Trojan.Win.Parkin

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013324.exe=>(Quarantine-2)

          Disinfection failed

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013324.exe=>(Quarantine-2)

          Deleted

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013325.exe=>(Quarantine-2)

          Infected with: Dropped:Trojan.Purityad.E

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013325.exe=>(Quarantine-2)

          Disinfection failed

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013325.exe=>(Quarantine-2)

          Deleted

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013326.exe=>(Quarantine-2)

          Infected with: Backdoor.MSNMaker.AB

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013326.exe=>(Quarantine-2)

          Deleted

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013327.exe=>(Quarantine-2)

          Infected with: Joke.Apeldorn

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013327.exe=>(Quarantine-2)

          Disinfection failed

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013327.exe=>(Quarantine-2)

          Deleted

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013328.exe=>(Quarantine-2)

          Infected with: Joke.Funny.A

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013328.exe=>(Quarantine-2)

          Disinfection failed

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013328.exe=>(Quarantine-2)

          Deleted

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013329.exe=>(Quarantine-2)

          Infected with: Trojan.Downloader.Agent.BCA

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013329.exe=>(Quarantine-2)

          Deleted

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013330.exe=>(Quarantine-2)

          Infected with: Dropped:Trojan.Purityad.E

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013330.exe=>(Quarantine-2)

          Disinfection failed

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013330.exe=>(Quarantine-2)

          Deleted

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013331.exe=>(Quarantine-2)

          Infected with: Backdoor.MSNMaker.AB

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013331.exe=>(Quarantine-2)

          Deleted

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013332.exe=>(Quarantine-2)

          Infected with: Trojan.Win32.DesktopPuzzle

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013332.exe=>(Quarantine-2)

          Disinfection failed

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013332.exe=>(Quarantine-2)

          Deleted

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013333.exe=>(Quarantine-2)

          Infected with: Win32.Worm.VB.DW

          E:\System Volume Information\_restore{A369F056-54ED-4DCC-99CB-C4DDD48AC119}\RP90\A0013333.exe=>(Quarantine-2)

          Deleted
          0
          1. Modérateur
            ok,

            Télécharge clean.zip
            http://www.malekal.com/download/clean.zip
            Décompresse-le sur ton bureau (clic droit / extraire tout), tu dois obtenir un dossier clean.
            Ouvre le dossier Clean qui se trouve sur ton bureau.
            Double-clic sur clean.cmd.
            Une fenêtre noire va apparaître, choisis l'option 1
            Poste le rapport qui se trouve ici C:\rapport_clean.txt

            ensuite :

            # Démarre en mode sans échec :
            Pour cela, tu tapotes la touche F8 dès le début de l’allumage du pc sans t’arrêter
            Une fenêtre va s’ouvrir tu te déplaces avec les flèches du clavier sur démarrer en mode sans échec puis tape entrée.
            Une fois sur le bureau s’il n’y a pas toutes les couleurs et autres c’est normal !
            (Si F8 ne marche pas utilise la touche F5).
            - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -

            Double-clic sur clean.cmd.
            Une fenêtre noire va apparaître, choisis l'option 2
            Poste le rapport qui se trouve ici C:\rapport_clean.txt

            ++
            0
            1. Voilà ^^

              Option 1 :

              *** Recherche des fichiers dans E:
              E:\StubInstaller.exe FOUND

              *** Recherche des fichiers dans E:\WINDOWS\

              *** Recherche des fichiers dans E:\WINDOWS\system32
              "E:\Documents and Settings\Cl‚mence\Application Data\hbtools\" FOUND

              *** Recherche des fichiers dans E:\Program Files
              "E:\Program Files\HbTools\" FOUND
              "E:\Program Files\InetGet2\" FOUND
              "E:\Program Files\ipwins\" FOUND
              "E:\Program Files\MSN Messenger\msrr.exe" FOUND
              *** Fin du rapport

              Option 2 :

              Script execute en mode sans echec
              Rapport clean par Malekal_morte - http://www.malekal.com
              Script execute en mode sans echec 20/04/2007 a 23:10:53,48

              Microsoft Windows XP [version 5.1.2600]

              *** Suppression des fichiers dans E:
              tentative de suppression de E:\StubInstaller.exe

              *** Suppression des fichiers dans E:\WINDOWS\

              *** Suppression des fichiers dans E:\WINDOWS\system32
              tentative de suppression de "E:\Documents and Settings\Cl‚mence\Application Data\hbtools\"

              *** Suppression des fichiers dans E:\Program Files
              tentative de suppression de "E:\Program Files\HbTools\"
              tentative de suppression de "E:\Program Files\InetGet2\"
              tentative de suppression de "E:\Program Files\ipwins\"
              tentative de suppression de "E:\Program Files\MSN Messenger\msrr.exe"

              *** Suppression des clefs du registre effectuee..
              *** Fin du rapport !
              0
              1. Modérateur
                ok, remets un nouveau hijack stp

                ++
                0
                1. Logfile of Trend Micro HijackThis v2.0.0 (BETA)
                  Scan saved at 16:03:22, on 21/04/2007
                  Platform: Windows XP SP2 (WinNT 5.01.2600)
                  Boot mode: Normal

                  Running processes:
                  E:\WINDOWS\System32\smss.exe
                  E:\WINDOWS\system32\winlogon.exe
                  E:\WINDOWS\system32\services.exe
                  E:\WINDOWS\system32\lsass.exe
                  E:\WINDOWS\system32\Ati2evxx.exe
                  E:\WINDOWS\system32\svchost.exe
                  E:\WINDOWS\System32\svchost.exe
                  E:\WINDOWS\system32\spoolsv.exe
                  e:\program files\fichiers communs\logitech\lvmvfm\LVPrcSrv.exe
                  E:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
                  E:\Program Files\Alwil Software\Avast4\ashServ.exe
                  E:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
                  E:\Program Files\Belkin\Belkin Wireless Network Utility\WLService.exe
                  E:\Program Files\Belkin\Belkin Wireless Network Utility\WLanCfgG.exe
                  E:\WINDOWS\System32\svchost.exe
                  E:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
                  E:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
                  E:\WINDOWS\system32\svchost.exe
                  E:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\symlcsvc.exe
                  E:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
                  E:\Program Files\Alwil Software\Avast4\ashWebSv.exe
                  E:\WINDOWS\system32\Ati2evxx.exe
                  E:\WINDOWS\Explorer.EXE
                  E:\WINDOWS\SOUNDMAN.EXE
                  E:\WINDOWS\AGRSMMSG.exe
                  E:\Program Files\Java\jre1.5.0_11\bin\jusched.exe
                  E:\Program Files\Adobe\Photoshop Album Edition Découverte\3.0\Apps\apdproxy.exe
                  E:\WINDOWS\system32\rundll32.exe
                  E:\Program Files\Adobe\Adobe Version Cue\ControlPanel\VersionCueTray.exe
                  E:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
                  E:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
                  E:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe
                  E:\WINDOWS\system32\LVCOMSX.EXE
                  E:\Program Files\Logitech\Video\LogiTray.exe
                  E:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
                  E:\Program Files\D-Link\Air USB Utility\AirCFG.exe
                  E:\Program Files\D-Tools\daemon.exe
                  E:\Program Files\QuickTime\qttask.exe
                  E:\Program Files\iTunes\iTunesHelper.exe
                  E:\WINDOWS\system32\ctfmon.exe
                  E:\Program Files\MSN Messenger\msnmsgr.exe
                  E:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
                  E:\Program Files\Windows Media Player\WMPNSCFG.exe
                  E:\Program Files\Logitech\Video\FxSvr2.exe
                  E:\Program Files\Internet Explorer\IEXPLORE.EXE
                  E:\Program Files\Adobe\Adobe Acrobat 6.0\Distillr\acrotray.exe
                  E:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
                  E:\Program Files\iPod\bin\iPodService.exe
                  E:\Program Files\Logitech\SetPoint\KEM.exe
                  E:\Program Files\Logitech\SetPoint\KHALMNPR.EXE
                  E:\WINDOWS\system32\wuauclt.exe
                  E:\Program Files\MSN Messenger\usnsvc.exe
                  E:\Program Files\Mozilla Firefox\firefox.exe
                  E:\Documents and Settings\Clémence\Bureau\HiJackThis_v2.exe

                  R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer
                  R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
                  R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
                  O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - E:\Program Files\Adobe\Adobe Acrobat 6.0\Acrobat\ActiveX\AcroIEHelper.dll
                  O2 - BHO: EoRezoBHO - {64F56FC1-1272-44CD-BA6E-39723696E350} - (no file)
                  O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - E:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
                  O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
                  O2 - BHO: AcroIEToolbarHelper Class - {AE7CD045-E861-484f-8273-0445EE161910} - E:\Program Files\Adobe\Adobe Acrobat 6.0\Acrobat\AcroIEFavClient.dll
                  O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - E:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
                  O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - E:\Program Files\Adobe\Adobe Acrobat 6.0\Acrobat\AcroIEFavClient.dll
                  O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - E:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
                  O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - E:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
                  O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
                  O4 - HKLM\..\Run: [SiSUSBRG] E:\WINDOWS\SiSUSBrg.exe
                  O4 - HKLM\..\Run: [NeroFilterCheck] E:\WINDOWS\system32\NeroCheck.exe
                  O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
                  O4 - HKLM\..\Run: [SunJavaUpdateSched] "E:\Program Files\Java\jre1.5.0_11\bin\jusched.exe"
                  O4 - HKLM\..\Run: [Adobe Photo Downloader] "E:\Program Files\Adobe\Photoshop Album Edition Découverte\3.0\Apps\apdproxy.exe"
                  O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
                  O4 - HKLM\..\Run: [AdobeVersionCue] E:\Program Files\Adobe\Adobe Version Cue\ControlPanel\VersionCueTray.exe
                  O4 - HKLM\..\Run: [RemoteControl] "E:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
                  O4 - HKLM\..\Run: [TkBellExe] "E:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
                  O4 - HKLM\..\Run: [ANIWZCS2Service] E:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe
                  O4 - HKLM\..\Run: [LVCOMSX] E:\WINDOWS\system32\LVCOMSX.EXE
                  O4 - HKLM\..\Run: [LogitechVideoRepair] E:\Program Files\Logitech\Video\ISStart.exe
                  O4 - HKLM\..\Run: [LogitechVideoTray] E:\Program Files\Logitech\Video\LogiTray.exe
                  O4 - HKLM\..\Run: [avast!] E:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
                  O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
                  O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
                  O4 - HKLM\..\Run: [EPSON Stylus DX5000 Series] E:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIBVE.EXE /FU "E:\WINDOWS\TEMP\E_S8D.tmp" /EF "HKLM"
                  O4 - HKLM\..\Run: [D-Link Air USB Utility] E:\Program Files\D-Link\Air USB Utility\AirCFG.exe
                  O4 - HKLM\..\Run: [DAEMON Tools-1033] "E:\Program Files\D-Tools\daemon.exe" -lang 1033
                  O4 - HKLM\..\Run: [QuickTime Task] "E:\Program Files\QuickTime\qttask.exe" -atboottime
                  O4 - HKLM\..\Run: [iTunesHelper] "E:\Program Files\iTunes\iTunesHelper.exe"
                  O4 - HKLM\..\Run: [Mode Noun Stupid 64] E:\Documents and Settings\All Users\Application Data\Blehtimemodenoun\Inside Mp3.exe
                  O4 - HKCU\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\ctfmon.exe
                  O4 - HKCU\..\Run: [msnmsgr] "E:\Program Files\MSN Messenger\msnmsgr.exe" /background
                  O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "E:\Program Files\Logitech\Video\ManifestEngine.exe" boot
                  O4 - HKCU\..\Run: [LDM] E:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
                  O4 - HKCU\..\Run: [WMPNSCFG] E:\Program Files\Windows Media Player\WMPNSCFG.exe
                  O4 - HKCU\..\Run: [Team Bias] E:\DOCUME~1\CLMENC~1\APPLIC~1\NAMEPH~1\chic bleh.exe
                  O4 - HKCU\..\Policies\Explorer\Run: [{D09D1879-07D2-1036-1202-040504100021}] "E:\Program Files\Fichiers communs\{D09D1879-07D2-1036-1202-040504100021}\Update.exe" mc-110-12-0001411
                  O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
                  O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
                  O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
                  O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
                  O4 - Global Startup: Adobe Gamma Loader.lnk = E:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
                  O4 - Global Startup: Assistant d'Acrobat.lnk = E:\Program Files\Adobe\Adobe Acrobat 6.0\Distillr\acrotray.exe
                  O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = E:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
                  O4 - Global Startup: Logitech Desktop Messenger.lnk = E:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
                  O4 - Global Startup: Logitech SetPoint.lnk = E:\Program Files\Logitech\SetPoint\KEM.exe
                  O4 - Global Startup: LUMIX Simple Viewer.lnk = ?
                  O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://E:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
                  O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - E:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
                  O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - E:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
                  O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
                  O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
                  O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - E:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
                  O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
                  O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
                  O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - https://www.kaspersky.fr/?domain=webscanner.kaspersky.fr
                  O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
                  O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
                  O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
                  O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
                  O22 - SharedTaskScheduler: Pré-chargeur Browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - E:\WINDOWS\system32\browseui.dll
                  O22 - SharedTaskScheduler: Démon de cache des catégories de composant - {8C7461EF-2B13-11d2-BE35-3078302C2030} - E:\WINDOWS\system32\browseui.dll
                  O23 - Service: Adobe LM Service - Unknown owner - E:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
                  O23 - Service: AdobeVersionCue - Adobe Sytems - E:\Program Files\Adobe\Adobe Version Cue\service\VersionCue.exe
                  O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - E:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
                  O23 - Service: Ati HotKey Poller - Unknown owner - E:\WINDOWS\system32\Ati2evxx.exe
                  O23 - Service: ATI Smart - Unknown owner - E:\WINDOWS\system32\ati2sgag.exe
                  O23 - Service: avast! Antivirus - Unknown owner - E:\Program Files\Alwil Software\Avast4\ashServ.exe
                  O23 - Service: avast! Mail Scanner - ALWIL Software - E:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
                  O23 - Service: avast! Web Scanner - ALWIL Software - E:\Program Files\Alwil Software\Avast4\ashWebSv.exe
                  O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - E:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
                  O23 - Service: Belkin Wireless USB Network Adapter (Belkin Wireless USB Network Adapter Service) - Unknown owner - E:\Program Files\Belkin\Belkin Wireless Network Utility\WLService.exe
                  O23 - Service: Boonty Games - BOONTY - E:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
                  O23 - Service: Service d'administration du Gestionnaire de disque logique (dmadmin) - Unknown owner - E:\WINDOWS\System32\dmadmin.exe
                  O23 - Service: Journal des événements (Eventlog) - Unknown owner - E:\WINDOWS\system32\services.exe
                  O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - E:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
                  O23 - Service: Service COM de gravage de CD IMAPI (ImapiService) - Unknown owner - E:\WINDOWS\system32\imapi.exe
                  O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - E:\Program Files\iPod\bin\iPodService.exe
                  O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Unknown owner - E:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
                  O23 - Service: Logitech Process Monitor (LVPrcSrv) - Logitech Inc. - e:\program files\fichiers communs\logitech\lvmvfm\LVPrcSrv.exe
                  O23 - Service: Partage de Bureau à distance NetMeeting (mnmsrvc) - Unknown owner - E:\WINDOWS\system32\mnmsrvc.exe
                  O23 - Service: Planificateur LiveUpdate automatique - Unknown owner - E:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe (file missing)
                  O23 - Service: Plug-and-Play (PlugPlay) - Unknown owner - E:\WINDOWS\system32\services.exe
                  O23 - Service: Gestionnaire de session d'aide sur le Bureau à distance (RDSessMgr) - Unknown owner - E:\WINDOWS\system32\sessmgr.exe
                  O23 - Service: Carte à puce (SCardSvr) - Unknown owner - E:\WINDOWS\System32\SCardSvr.exe
                  O23 - Service: Symantec Core LC - Symantec Corporation - E:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\symlcsvc.exe
                  O23 - Service: Journaux et alertes de performance (SysmonLog) - Unknown owner - E:\WINDOWS\system32\smlogsvc.exe
                  O23 - Service: Cliché instantané de volume (VSS) - Unknown owner - E:\WINDOWS\System32\vssvc.exe
                  O23 - Service: Service de lancement de WlanCfg (Wlancfg) - Unknown owner - E:\Program Files\Inventel\Gateway\wlancfg.exe
                  O23 - Service: Carte de performance WMI (WmiApSrv) - Unknown owner - E:\WINDOWS\system32\wbem\wmiapsrv.exe
                  O23 - Service: Service Partage réseau du Lecteur Windows Media (WMPNetworkSvc) - Unknown owner - E:\Program Files\Windows Media Player\wmpnetwk.exe
                  O24 - Desktop Component 0: (no name) - file:///E:/DOCUME~1/CLMENC~1/LOCALS~1/Temp/msohtml1/01/clip_image002.jpg
                  0
                  1. Modérateur
                    ok,

                    # Désactiver la Restauration du système

                    * Cliquez sur le bouton Démarrer.
                    * Cliquez avec le bouton droit de la souris sur Poste de travail puis cliquez sur Propriétés.
                    * Dans l'onglet Restauration du système, sélectionnez l'option Désactiver la Restauration du système ou Désactiver la Restauration du système sur tous les lecteurs

                    ( tu pourras la réactivé à la fin de la manip )

                    # Relance HijackThis : choisis " do a scan only" coche la case devant les lignes ci-dessous et clique en bas sur "fix checked" :

                    O4 - HKLM\..\Run: [NeroFilterCheck] E:\WINDOWS\system32\NeroCheck.exe
                    O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
                    O4 - HKLM\..\Run: [SunJavaUpdateSched] "E:\Program Files\Java\jre1.5.0_11\bin\jusched.exe"
                    O4 - HKLM\..\Run: [Adobe Photo Downloader] "E:\Program Files\Adobe\Photoshop Album Edition Découverte\3.0\Apps\apdproxy.exe"

                    O4 - HKLM\..\Run: [RemoteControl] "E:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
                    O4 - HKLM\..\Run: [TkBellExe] "E:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot

                    O4 - HKLM\..\Run: [LVCOMSX] E:\WINDOWS\system32\LVCOMSX.EXE
                    O4 - HKLM\..\Run: [LogitechVideoRepair] E:\Program Files\Logitech\Video\ISStart.exe
                    O4 - HKLM\..\Run: [LogitechVideoTray] E:\Program Files\Logitech\Video\LogiTray.exe

                    O4 - HKLM\..\Run: [QuickTime Task] "E:\Program Files\QuickTime\qttask.exe" -atboottime
                    O4 - HKLM\..\Run: [iTunesHelper] "E:\Program Files\iTunes\iTunesHelper.exe"
                    O4 - HKLM\..\Run: [Mode Noun Stupid 64] E:\Documents and Settings\All Users\Application Data\Blehtimemodenoun\Inside Mp3.exe
                    O4 - HKCU\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\ctfmon.exe
                    O4 - HKCU\..\Run: [msnmsgr] "E:\Program Files\MSN Messenger\msnmsgr.exe" /background
                    O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "E:\Program Files\Logitech\Video\ManifestEngine.exe" boot
                    O4 - HKCU\..\Run: [LDM] E:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe

                    O4 - HKCU\..\Run: [Team Bias] E:\DOCUME~1\CLMENC~1\APPLIC~1\NAMEPH~1\chic bleh.exe

                    O4 - Global Startup: Adobe Gamma Loader.lnk = E:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
                    O4 - Global Startup: Assistant d'Acrobat.lnk = E:\Program Files\Adobe\Adobe Acrobat 6.0\Distillr\acrotray.exe
                    O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = E:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
                    O4 - Global Startup: Logitech Desktop Messenger.lnk = E:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
                    O4 - Global Startup: Logitech SetPoint.lnk = E:\Program Files\Logitech\SetPoint\KEM.exe
                    O4 - Global Startup: LUMIX Simple Viewer.lnk = ?

                    # repasse un coup de ccleaer !

                    # installe un parefeu ! je te laisse faire ton choix ici :

                    securite proteger un ordinateur contre les malwares d internet

                    precise tes soucis s'il en reste !

                    @+

                    La sagesse, c'est d'avoir des rêves suffisamment grands pour ne pas les
                    perdre de vue lorsqu'on les poursuit. (Oscar Wilde)
                    0
                    1. Super ^^, plus de problème apparent...

                      Merci Beaucoup Green Day ;)
                      0
                      1. Modérateur
                        Chouette :-))

                        pas d'quoi !

                        @+

                        ;-))
                        0