Analyse de mon HijackThis - Trojan.Win32.Delf
BUD038
Messages postés
51
Statut
Membre
-
moK´s@ Messages postés 4410 Statut Membre -
moK´s@ Messages postés 4410 Statut Membre -
Bonjour à tous,
je n'arrive pas à supprimer un trojan de mon pc : Trojan.Win32.Delf.zj
je possède Securitoo de wanadoo, spybot, ad-aware mais rien à faire.
J'ai essayé plusieurs programmes de scan en ligne. J'ai aussi téléchargé HighJackThis mais je ne sais évidemment pas quoi faire avec ca... :P
MON ANTIVIRUS A RECONNU 3 INFECTIONS :
C:\Documents and Settings\Bourdillon\Local Settings\Temp\zssnwujh.sys Infection: Trojan.Win32.Delf.zj Action : Supprimé.
C:\WINDOWS\system32\drivers\axvebyop.sys Infection: Trojan.Win32.Delf.zj Action : Supprimé.
C:\WINDOWS\Temp\zssnwujh.sys Infection: Trojan.Win32.Delf.zj Action : Supprimé.
AU REDEMARRAGE SUIVANT TOUJOURS LES MEMES SONT LA... HELP ME PLEASE ;-(
--------------------------
Logfile of HijackThis v1.99.1
Scan saved at 16:09:06, on 14/06/2007
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\SECURI~1\av_fw\backweb\8520111\Program\SERVIC~1.EXE
C:\WINDOWS\System32\CTsvcCDA.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\fsgk32st.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\FSGK32.EXE
C:\Program Files\Securitoo\av_fw\backweb\8520111\program\fsbwsys.exe
C:\Program Files\Securitoo\av_fw\Common\FSMA32.EXE
C:\Program Files\Securitoo\av_fw\Common\FSMB32.EXE
C:\Program Files\Securitoo\av_fw\Anti-Virus\fssm32.exe
C:\WINDOWS\System32\FTRTSVC.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Securitoo\av_fw\Common\FCH32.EXE
C:\WINDOWS\Explorer.EXE
C:\Program Files\Securitoo\av_fw\Common\FAMEH32.EXE
C:\Program Files\Securitoo\av_fw\FWES\Program\fsdfwd.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\PROGRA~1\Wanadoo\TaskbarIcon.exe
C:\Program Files\Winamp\winampa.exe
C:\Program Files\Caere\OmniPagePro90\opware32.exe
C:\WINDOWS\system32\ntvdm.exe
C:\Program Files\Securitoo\av_fw\Common\FSM32.EXE
C:\WINDOWS\System32\RUNDLL32.EXE
C:\Program Files\Samsung\Samsung Media Studio 5\SMSTray.exe
C:\Program Files\MarkAny\ContentSafer\MAAgent.exe
C:\WINDOWS\System32\WDBtnMgr.exe
C:\Program Files\Picasa2\PicasaMediaDetector.exe
C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe
C:\WINDOWS\System32\ctfmon.exe
C:\PROGRA~1\PANICW~1\POP-UP~1\PSFree.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\Program Files\Creative\Sync Manager Unicode\CTSyncU.exe
C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
C:\Program Files\My Book\WD Backup\uBBMonitor.exe
C:\Program Files\Caere\OmniPagePro90\EREG\REMIND32.EXE
C:\Program Files\Securitoo\av_fw\Anti-Virus\fsav32.exe
C:\Program Files\Securitoo\av_fw\FSGUI\fsguiexe.exe
C:\Program Files\Securitoo\av_fw\backweb\8520111\Program\fspex.exe
C:\Program Files\Wanadoo\EspaceWanadoo.exe
C:\Program Files\Wanadoo\ComComp.exe
C:\PROGRA~1\Wanadoo\Toaster.exe
C:\PROGRA~1\Wanadoo\Inactivity.exe
C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE
C:\PROGRA~1\Wanadoo\PollingModule.exe
C:\Program Files\Wanadoo\Watch.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\WINDOWS\System32\LVComsX.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
D:\UTILITAIRES\Hijackthis Version Française\VERSION TRADUITE ORIGINALE.EXE
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = \blank.htm
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {14CA48B8-28D9-49A2-9F8E-05AEF99CF6CE} - c:\windows\system32\xtzrvnld.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O2 - BHO: (no name) - {8D7ED48D-0228-4CEE-84A6-8855CC9D6837} - c:\windows\system32\jlhajlh.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\TaskbarIcon.exe
O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\System32\\NeroCheck.exe
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [OmniPage] C:\Program Files\Caere\OmniPagePro90\opware32.exe
O4 - HKLM\..\Run: [FSASWREG] "C:\Program Files\Securitoo\av_fw\Anti-Spyware\fsaswreg.exe"
O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\Securitoo\av_fw\Common\FSM32.EXE" /splash
O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\Securitoo\av_fw\TNB\TNBUtil.exe" /CHECKALL /WAITFORSW
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SMSTray] C:\Program Files\Samsung\Samsung Media Studio 5\SMSTray.exe
O4 - HKLM\..\Run: [MAAgent] C:\Program Files\MarkAny\ContentSafer\MAAgent.exe
O4 - HKLM\..\Run: [WD Button Manager] WDBtnMgr.exe
O4 - HKLM\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [PopUpStopperFreeEdition] "C:\PROGRA~1\PANICW~1\POP-UP~1\PSFree.exe"
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - HKCU\..\Run: [CTSyncU.exe] "C:\Program Files\Creative\Sync Manager Unicode\CTSyncU.exe"
O4 - Startup: reminder-Enregistrement du produit ScanSoft.lnk = C:\Program Files\Caere\OmniPagePro90\EREG\REMIND32.EXE
O4 - Global Startup: Adobe Gamma Loader.exe.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: DSLMON.lnk = C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O4 - Global Startup: WD Backup Monitor.lnk = C:\Program Files\My Book\WD Backup\uBBMonitor.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - https://www.kaspersky.fr/?domain=webscanner.kaspersky.fr
O16 - DPF: {2357B3CF-7F8D-4451-8D81-FD6097610AEE} (CamfrogWEB Advanced Unicode Control) - http://activex.camfrogweb.com/advanced/2.0.1.10/cfweb_activex.camfrogweb.com-advanced-2.0.1.10_instmodule.exe
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - https://www.trendmicro.com/en_us/forHome/products/housecall.html
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
O16 - DPF: {B1826A9F-4AA0-4510-BA77-9013E74E4B9B} - http://www.trendmicro.com/spyware-scan/as4web.cab
O16 - DPF: {CE69F98F-2AF3-4306-BAC6-A79070EDA1B4} (Zylom Loader Object) - http://eu.download.games.yahoo.com/zylom/activex/zylomloader.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{AF4A6BD4-E99B-413B-94DF-03E0B1AD7E79}: NameServer = 80.10.246.130 80.10.246.3
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: glxvhsjw - C:\WINDOWS\SYSTEM32\jlhajlh.dll
O23 - Service: Securitoo Antivirus Firewall (BackWeb Plug-in - 8520111) - Unknown owner - C:\PROGRA~1\SECURI~1\av_fw\backweb\8520111\Program\SERVIC~1.EXE
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTsvcCDA.exe
O23 - Service: F-Secure Gatekeeper Handler Starter - F-Secure Corp. - C:\Program Files\Securitoo\av_fw\Anti-Virus\fsgk32st.exe
O23 - Service: fsbwsys - F-Secure Corp. - C:\Program Files\Securitoo\av_fw\backweb\8520111\program\fsbwsys.exe
O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\Securitoo\av_fw\FWES\Program\fsdfwd.exe
O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\Securitoo\av_fw\Common\FSMA32.EXE
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
Merci par avance pour votre aide précieuse.
je n'arrive pas à supprimer un trojan de mon pc : Trojan.Win32.Delf.zj
je possède Securitoo de wanadoo, spybot, ad-aware mais rien à faire.
J'ai essayé plusieurs programmes de scan en ligne. J'ai aussi téléchargé HighJackThis mais je ne sais évidemment pas quoi faire avec ca... :P
MON ANTIVIRUS A RECONNU 3 INFECTIONS :
C:\Documents and Settings\Bourdillon\Local Settings\Temp\zssnwujh.sys Infection: Trojan.Win32.Delf.zj Action : Supprimé.
C:\WINDOWS\system32\drivers\axvebyop.sys Infection: Trojan.Win32.Delf.zj Action : Supprimé.
C:\WINDOWS\Temp\zssnwujh.sys Infection: Trojan.Win32.Delf.zj Action : Supprimé.
AU REDEMARRAGE SUIVANT TOUJOURS LES MEMES SONT LA... HELP ME PLEASE ;-(
--------------------------
Logfile of HijackThis v1.99.1
Scan saved at 16:09:06, on 14/06/2007
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\SECURI~1\av_fw\backweb\8520111\Program\SERVIC~1.EXE
C:\WINDOWS\System32\CTsvcCDA.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\fsgk32st.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\FSGK32.EXE
C:\Program Files\Securitoo\av_fw\backweb\8520111\program\fsbwsys.exe
C:\Program Files\Securitoo\av_fw\Common\FSMA32.EXE
C:\Program Files\Securitoo\av_fw\Common\FSMB32.EXE
C:\Program Files\Securitoo\av_fw\Anti-Virus\fssm32.exe
C:\WINDOWS\System32\FTRTSVC.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Securitoo\av_fw\Common\FCH32.EXE
C:\WINDOWS\Explorer.EXE
C:\Program Files\Securitoo\av_fw\Common\FAMEH32.EXE
C:\Program Files\Securitoo\av_fw\FWES\Program\fsdfwd.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\PROGRA~1\Wanadoo\TaskbarIcon.exe
C:\Program Files\Winamp\winampa.exe
C:\Program Files\Caere\OmniPagePro90\opware32.exe
C:\WINDOWS\system32\ntvdm.exe
C:\Program Files\Securitoo\av_fw\Common\FSM32.EXE
C:\WINDOWS\System32\RUNDLL32.EXE
C:\Program Files\Samsung\Samsung Media Studio 5\SMSTray.exe
C:\Program Files\MarkAny\ContentSafer\MAAgent.exe
C:\WINDOWS\System32\WDBtnMgr.exe
C:\Program Files\Picasa2\PicasaMediaDetector.exe
C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe
C:\WINDOWS\System32\ctfmon.exe
C:\PROGRA~1\PANICW~1\POP-UP~1\PSFree.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\Program Files\Creative\Sync Manager Unicode\CTSyncU.exe
C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
C:\Program Files\My Book\WD Backup\uBBMonitor.exe
C:\Program Files\Caere\OmniPagePro90\EREG\REMIND32.EXE
C:\Program Files\Securitoo\av_fw\Anti-Virus\fsav32.exe
C:\Program Files\Securitoo\av_fw\FSGUI\fsguiexe.exe
C:\Program Files\Securitoo\av_fw\backweb\8520111\Program\fspex.exe
C:\Program Files\Wanadoo\EspaceWanadoo.exe
C:\Program Files\Wanadoo\ComComp.exe
C:\PROGRA~1\Wanadoo\Toaster.exe
C:\PROGRA~1\Wanadoo\Inactivity.exe
C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE
C:\PROGRA~1\Wanadoo\PollingModule.exe
C:\Program Files\Wanadoo\Watch.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\WINDOWS\System32\LVComsX.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
D:\UTILITAIRES\Hijackthis Version Française\VERSION TRADUITE ORIGINALE.EXE
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = \blank.htm
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {14CA48B8-28D9-49A2-9F8E-05AEF99CF6CE} - c:\windows\system32\xtzrvnld.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O2 - BHO: (no name) - {8D7ED48D-0228-4CEE-84A6-8855CC9D6837} - c:\windows\system32\jlhajlh.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\TaskbarIcon.exe
O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\System32\\NeroCheck.exe
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [OmniPage] C:\Program Files\Caere\OmniPagePro90\opware32.exe
O4 - HKLM\..\Run: [FSASWREG] "C:\Program Files\Securitoo\av_fw\Anti-Spyware\fsaswreg.exe"
O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\Securitoo\av_fw\Common\FSM32.EXE" /splash
O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\Securitoo\av_fw\TNB\TNBUtil.exe" /CHECKALL /WAITFORSW
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SMSTray] C:\Program Files\Samsung\Samsung Media Studio 5\SMSTray.exe
O4 - HKLM\..\Run: [MAAgent] C:\Program Files\MarkAny\ContentSafer\MAAgent.exe
O4 - HKLM\..\Run: [WD Button Manager] WDBtnMgr.exe
O4 - HKLM\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [PopUpStopperFreeEdition] "C:\PROGRA~1\PANICW~1\POP-UP~1\PSFree.exe"
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - HKCU\..\Run: [CTSyncU.exe] "C:\Program Files\Creative\Sync Manager Unicode\CTSyncU.exe"
O4 - Startup: reminder-Enregistrement du produit ScanSoft.lnk = C:\Program Files\Caere\OmniPagePro90\EREG\REMIND32.EXE
O4 - Global Startup: Adobe Gamma Loader.exe.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: DSLMON.lnk = C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O4 - Global Startup: WD Backup Monitor.lnk = C:\Program Files\My Book\WD Backup\uBBMonitor.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - https://www.kaspersky.fr/?domain=webscanner.kaspersky.fr
O16 - DPF: {2357B3CF-7F8D-4451-8D81-FD6097610AEE} (CamfrogWEB Advanced Unicode Control) - http://activex.camfrogweb.com/advanced/2.0.1.10/cfweb_activex.camfrogweb.com-advanced-2.0.1.10_instmodule.exe
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - https://www.trendmicro.com/en_us/forHome/products/housecall.html
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
O16 - DPF: {B1826A9F-4AA0-4510-BA77-9013E74E4B9B} - http://www.trendmicro.com/spyware-scan/as4web.cab
O16 - DPF: {CE69F98F-2AF3-4306-BAC6-A79070EDA1B4} (Zylom Loader Object) - http://eu.download.games.yahoo.com/zylom/activex/zylomloader.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{AF4A6BD4-E99B-413B-94DF-03E0B1AD7E79}: NameServer = 80.10.246.130 80.10.246.3
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: glxvhsjw - C:\WINDOWS\SYSTEM32\jlhajlh.dll
O23 - Service: Securitoo Antivirus Firewall (BackWeb Plug-in - 8520111) - Unknown owner - C:\PROGRA~1\SECURI~1\av_fw\backweb\8520111\Program\SERVIC~1.EXE
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTsvcCDA.exe
O23 - Service: F-Secure Gatekeeper Handler Starter - F-Secure Corp. - C:\Program Files\Securitoo\av_fw\Anti-Virus\fsgk32st.exe
O23 - Service: fsbwsys - F-Secure Corp. - C:\Program Files\Securitoo\av_fw\backweb\8520111\program\fsbwsys.exe
O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\Securitoo\av_fw\FWES\Program\fsdfwd.exe
O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\Securitoo\av_fw\Common\FSMA32.EXE
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
Merci par avance pour votre aide précieuse.
A voir également:
- Analyse de mon HijackThis - Trojan.Win32.Delf
- Hijackthis - Télécharger - Antivirus & Antimalwares
- Analyse composant pc - Guide
- Analyse disque dur - Télécharger - Informations & Diagnostic
- Analyse performance pc - Guide
- Nouveau tag analysé - Forum Huawei
56 réponses
re,
j´suis encore la...
ok pour ccleaner...
moi j´ai le pack 2...
ie 6 a des failles de secu...
en faite tu pourrait telecharger firefox pour plus de sureté tout en gardant ie
fait juste un scan en ligne pas la peine de les faire tous, vu le temps que ca prend...
a demain alors...
ps bon courrage : 4h t´as pas peur toi lol
MoKsA
j´suis encore la...
ok pour ccleaner...
moi j´ai le pack 2...
ie 6 a des failles de secu...
en faite tu pourrait telecharger firefox pour plus de sureté tout en gardant ie
fait juste un scan en ligne pas la peine de les faire tous, vu le temps que ca prend...
a demain alors...
ps bon courrage : 4h t´as pas peur toi lol
MoKsA
Bonjour moK´s@ ;-)
Voici le rapport Bitedefender :
<HTML>
<HEAD>
<TITLE>BitDefender Online Scanner -Scan Report</TITLE>
<META HTTP-EQUIV="Content-Type" CONTENT="text/html; charset=iso-8859-1">
<meta name="generator" content="Namo WebEditor v5.0(Trial)">
</HEAD>
<BODY BGCOLOR=#FFFFFF leftmargin="10" marginwidth="0" topmargin="20" marginheight="0" >
<table align="center" border="0" cellpadding="0" cellspacing="0" width="90%">
<tr>
<td width="458">
<p><font face="Arial" color=red><span style="font-size:14pt;"><b>BitDefender
Online Scanner</b></span></font></p>
</td>
<td width="40%">
<p> </p>
</td>
<td width="10%">
<p> </p>
</td>
</tr>
<tr>
<td colspan="3" width="912">
<p><font face="Arial"><span style="font-size:11pt;"><B>Scan report generated
at: Fri, Jun 15, 2007 - 16:37:45</b></span></font></p>
</td>
</tr>
<tr>
<td width="458">
<p><font face="Arial"><span style="font-size:11pt;"><B> </b></span></font></p>
</td>
<td width="40%">
<p> </p>
</td>
<td width="10%">
<p> </p>
</td>
</tr>
<tr>
<td width="458">
<p><font face="Arial"><span style="font-size:11pt;"><B>Scan
path: </b></span><span style="font-size:10pt;">A:\;C:\;D:\;E:\;F:\;G:\;</span></font></p>
</td>
<td width="40%">
<p> </p>
</td>
<td width="10%">
<p> </p>
</td>
</tr>
<tr>
<td width="458">
<p><font face="Arial"><span style="font-size:11pt;"><B> </b></span></font></p>
</td>
<td width="40%">
<p> </p>
</td>
<td width="10%">
<p> </p>
</td>
</tr>
<tr>
<td width="458">
<table border="1" cellspacing="0" bordercolordark="white" bordercolorlight="black" width="100%">
<tr>
<td width="451" colspan="2" bgcolor="#CCCCCC">
<p><font face="Arial" size="2"><B>Statistics</b></font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">Time</font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2">01:12:56</font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">Files</font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2">299543</font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">Folders</font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2">5626</font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">Boot Sectors</font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2">4</font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">Archives</font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2">76846</font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">Packed Files</font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2">9647</font></p>
</td>
</tr>
</table>
</td>
<td width="40%">
<p> </p>
</td>
<td width="10%">
<p> </p>
</td>
</tr>
<tr>
<td width="458">
<table border="1" cellspacing="0" bordercolordark="white" bordercolorlight="black" width="100%">
<tr>
<td width="451" colspan="2" bgcolor="#CCCCCC">
<p><font face="Arial" size="2"><B>Results</b></font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">Identified Viruses </font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2">2</font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">Infected Files </font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2">4</font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">Suspect Files </font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2">0</font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">Warnings</font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2">0</font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">Disinfected</font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2">0</font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">Deleted Files</font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2">4</font></p>
</td>
</tr>
</table>
</td>
<td width="40%">
<p> </p>
</td>
<td width="10%">
<p> </p>
</td>
</tr>
<tr>
<td width="458">
<table border="1" cellspacing="0" bordercolordark="white" bordercolorlight="black" width="100%">
<tr>
<td width="451" colspan="2" bgcolor="#CCCCCC">
<p><font face="Arial" size="2"><B>Engines Info</b></font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">Virus Definitions</font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2">513812</font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">Engine build</font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2">AVCORE v1.0 (build 2410) (i386) (Jun 12 2007 21:08:27)</font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">Scan plugins</font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2">14</font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">Archive plugins</font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2">38</font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">Unpack plugins</font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2">6</font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">E-mail plugins</font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2">6</font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">System plugins</font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2">1</font></p>
</td>
</tr>
</table>
</td>
<td width="40%">
<p> </p>
</td>
<td width="10%">
<p> </p>
</td>
</tr>
<tr>
<td width="458">
<table border="1" cellspacing="0" bordercolordark="white" bordercolorlight="black" width="100%">
<tr>
<td width="451" colspan="2" bgcolor="#CCCCCC">
<p><font face="Arial" size="2"><B>Scan Settings</b></font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">First Action</font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2">Disinfect</font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">Second Action</font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2">Delete</font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">Heuristics</font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2">Yes</font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">Enable Warnings</font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2">Yes</font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">Scanned Extensions</font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2">*;</font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">Exclude Extensions</font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2"> </font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">Scan Emails</font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2">Yes</font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">Scan Archives</font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2">Yes</font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">Scan Packed</font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2">Yes</font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">Scan Files</font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2">Yes</font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">Scan Boot</font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2">Yes</font></p>
</td>
</tr>
</table>
</td>
<td width="40%">
<p> </p>
</td>
<td width="10%">
<p> </p>
</td>
</tr>
<tr>
<td colspan=2>
<table border="1" cellspacing="0" bordercolordark="white" bordercolorlight="black" width="100%">
<tr>
<td width="252" bgcolor="#CCCCCC">
<p><font face="Arial" size="2"><B>Scanned File</b></font></p>
</td>
<td width="195" bgcolor="#CCCCCC" align="right">
<p align="left"><b><font size="2" face="Arial"> Status</font></b></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\JAMAIS REFAIRE.dbx=>(message 49)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)=>document07_candidatures2.zip=>document.txt .exe</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Infected with: Win32.Netsky.P@mm</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\JAMAIS REFAIRE.dbx=>(message 49)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)=>document07_candidatures2.zip=>document.txt .exe</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Deleted</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\JAMAIS REFAIRE.dbx=>(message 49)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)=>document07_candidatures2.zip</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Updated</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\JAMAIS REFAIRE.dbx=>(message 49)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Updated</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\JAMAIS REFAIRE.dbx=>(message 49)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Updated</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\JAMAIS REFAIRE.dbx=>(message 49)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Updated</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\JAMAIS REFAIRE.dbx=>(message 49)</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Updated</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\JAMAIS REFAIRE.dbx</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Update failed</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\NE JAMAIS REFAIRE.dbx=>(message 36)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)=>document07_candidatures2.zip=>document.txt .exe</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Infected with: Win32.Netsky.P@mm</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\NE JAMAIS REFAIRE.dbx=>(message 36)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)=>document07_candidatures2.zip=>document.txt .exe</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Deleted</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\NE JAMAIS REFAIRE.dbx=>(message 36)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)=>document07_candidatures2.zip</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Updated</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\NE JAMAIS REFAIRE.dbx=>(message 36)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Updated</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\NE JAMAIS REFAIRE.dbx=>(message 36)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Updated</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\NE JAMAIS REFAIRE.dbx=>(message 36)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Updated</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\NE JAMAIS REFAIRE.dbx=>(message 36)</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Updated</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\NE JAMAIS REFAIRE.dbx</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Update failed</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">D:\Outlook Express\JAMAIS REFAIRE.dbx=>(message 48)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)=>document07_candidatures2.zip=>document.txt .exe</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Infected with: Win32.Netsky.P@mm</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">D:\Outlook Express\JAMAIS REFAIRE.dbx=>(message 48)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)=>document07_candidatures2.zip=>document.txt .exe</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Deleted</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">D:\Outlook Express\JAMAIS REFAIRE.dbx=>(message 48)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)=>document07_candidatures2.zip</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Updated</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">D:\Outlook Express\JAMAIS REFAIRE.dbx=>(message 48)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Updated</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">D:\Outlook Express\JAMAIS REFAIRE.dbx=>(message 48)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Updated</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">D:\Outlook Express\JAMAIS REFAIRE.dbx=>(message 48)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Updated</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">D:\Outlook Express\JAMAIS REFAIRE.dbx=>(message 48)</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Updated</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">D:\Outlook Express\JAMAIS REFAIRE.dbx</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Update failed</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">D:\Outlook Express\NE JAMAIS REFAIRE.dbx=>(message 36)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)=>document07_candidatures2.zip=>document.txt .exe</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Infected with: Win32.Netsky.P@mm</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">D:\Outlook Express\NE JAMAIS REFAIRE.dbx=>(message 36)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)=>document07_candidatures2.zip=>document.txt .exe</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Deleted</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">D:\Outlook Express\NE JAMAIS REFAIRE.dbx=>(message 36)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)=>document07_candidatures2.zip</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Updated</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">D:\Outlook Express\NE JAMAIS REFAIRE.dbx=>(message 36)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Updated</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">D:\Outlook Express\NE JAMAIS REFAIRE.dbx=>(message 36)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Updated</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">D:\Outlook Express\NE JAMAIS REFAIRE.dbx=>(message 36)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Updated</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">D:\Outlook Express\NE JAMAIS REFAIRE.dbx=>(message 36)</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Updated</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">D:\Outlook Express\NE JAMAIS REFAIRE.dbx</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Update failed</font></p>
</td>
</tr>
</table>
</td>
<td width="10%">
<p> </p>
</td>
</tr>
<tr>
<td width="458">
<p><font face="Arial"><span style="font-size:11pt;"><B> </b></span></font></p>
</td>
<td width="40%">
<p> </p>
</td>
<td width="10%">
<p> </p>
</td>
</tr>
<tr>
<td width="458">
<p><font face="Arial"><span style="font-size:11pt;"><B> </b></span></font></p>
</td>
<td width="40%">
<p> </p>
</td>
<td width="10%">
<p> </p>
</td>
</tr>
</table>
<p> </p>
</body>
</html>
RESTE JUSTE UN P'TIT QQCHOSE
Bud038.
Voici le rapport Bitedefender :
<HTML>
<HEAD>
<TITLE>BitDefender Online Scanner -Scan Report</TITLE>
<META HTTP-EQUIV="Content-Type" CONTENT="text/html; charset=iso-8859-1">
<meta name="generator" content="Namo WebEditor v5.0(Trial)">
</HEAD>
<BODY BGCOLOR=#FFFFFF leftmargin="10" marginwidth="0" topmargin="20" marginheight="0" >
<table align="center" border="0" cellpadding="0" cellspacing="0" width="90%">
<tr>
<td width="458">
<p><font face="Arial" color=red><span style="font-size:14pt;"><b>BitDefender
Online Scanner</b></span></font></p>
</td>
<td width="40%">
<p> </p>
</td>
<td width="10%">
<p> </p>
</td>
</tr>
<tr>
<td colspan="3" width="912">
<p><font face="Arial"><span style="font-size:11pt;"><B>Scan report generated
at: Fri, Jun 15, 2007 - 16:37:45</b></span></font></p>
</td>
</tr>
<tr>
<td width="458">
<p><font face="Arial"><span style="font-size:11pt;"><B> </b></span></font></p>
</td>
<td width="40%">
<p> </p>
</td>
<td width="10%">
<p> </p>
</td>
</tr>
<tr>
<td width="458">
<p><font face="Arial"><span style="font-size:11pt;"><B>Scan
path: </b></span><span style="font-size:10pt;">A:\;C:\;D:\;E:\;F:\;G:\;</span></font></p>
</td>
<td width="40%">
<p> </p>
</td>
<td width="10%">
<p> </p>
</td>
</tr>
<tr>
<td width="458">
<p><font face="Arial"><span style="font-size:11pt;"><B> </b></span></font></p>
</td>
<td width="40%">
<p> </p>
</td>
<td width="10%">
<p> </p>
</td>
</tr>
<tr>
<td width="458">
<table border="1" cellspacing="0" bordercolordark="white" bordercolorlight="black" width="100%">
<tr>
<td width="451" colspan="2" bgcolor="#CCCCCC">
<p><font face="Arial" size="2"><B>Statistics</b></font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">Time</font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2">01:12:56</font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">Files</font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2">299543</font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">Folders</font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2">5626</font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">Boot Sectors</font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2">4</font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">Archives</font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2">76846</font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">Packed Files</font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2">9647</font></p>
</td>
</tr>
</table>
</td>
<td width="40%">
<p> </p>
</td>
<td width="10%">
<p> </p>
</td>
</tr>
<tr>
<td width="458">
<table border="1" cellspacing="0" bordercolordark="white" bordercolorlight="black" width="100%">
<tr>
<td width="451" colspan="2" bgcolor="#CCCCCC">
<p><font face="Arial" size="2"><B>Results</b></font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">Identified Viruses </font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2">2</font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">Infected Files </font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2">4</font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">Suspect Files </font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2">0</font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">Warnings</font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2">0</font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">Disinfected</font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2">0</font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">Deleted Files</font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2">4</font></p>
</td>
</tr>
</table>
</td>
<td width="40%">
<p> </p>
</td>
<td width="10%">
<p> </p>
</td>
</tr>
<tr>
<td width="458">
<table border="1" cellspacing="0" bordercolordark="white" bordercolorlight="black" width="100%">
<tr>
<td width="451" colspan="2" bgcolor="#CCCCCC">
<p><font face="Arial" size="2"><B>Engines Info</b></font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">Virus Definitions</font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2">513812</font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">Engine build</font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2">AVCORE v1.0 (build 2410) (i386) (Jun 12 2007 21:08:27)</font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">Scan plugins</font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2">14</font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">Archive plugins</font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2">38</font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">Unpack plugins</font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2">6</font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">E-mail plugins</font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2">6</font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">System plugins</font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2">1</font></p>
</td>
</tr>
</table>
</td>
<td width="40%">
<p> </p>
</td>
<td width="10%">
<p> </p>
</td>
</tr>
<tr>
<td width="458">
<table border="1" cellspacing="0" bordercolordark="white" bordercolorlight="black" width="100%">
<tr>
<td width="451" colspan="2" bgcolor="#CCCCCC">
<p><font face="Arial" size="2"><B>Scan Settings</b></font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">First Action</font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2">Disinfect</font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">Second Action</font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2">Delete</font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">Heuristics</font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2">Yes</font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">Enable Warnings</font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2">Yes</font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">Scanned Extensions</font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2">*;</font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">Exclude Extensions</font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2"> </font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">Scan Emails</font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2">Yes</font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">Scan Archives</font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2">Yes</font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">Scan Packed</font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2">Yes</font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">Scan Files</font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2">Yes</font></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">Scan Boot</font></p>
</td>
<td width="43%" align="right">
<p><font face="Arial" size="2">Yes</font></p>
</td>
</tr>
</table>
</td>
<td width="40%">
<p> </p>
</td>
<td width="10%">
<p> </p>
</td>
</tr>
<tr>
<td colspan=2>
<table border="1" cellspacing="0" bordercolordark="white" bordercolorlight="black" width="100%">
<tr>
<td width="252" bgcolor="#CCCCCC">
<p><font face="Arial" size="2"><B>Scanned File</b></font></p>
</td>
<td width="195" bgcolor="#CCCCCC" align="right">
<p align="left"><b><font size="2" face="Arial"> Status</font></b></p>
</td>
</tr>
<tr>
<td width="57%">
<p><font face="Arial" size="2">C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\JAMAIS REFAIRE.dbx=>(message 49)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)=>document07_candidatures2.zip=>document.txt .exe</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Infected with: Win32.Netsky.P@mm</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\JAMAIS REFAIRE.dbx=>(message 49)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)=>document07_candidatures2.zip=>document.txt .exe</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Deleted</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\JAMAIS REFAIRE.dbx=>(message 49)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)=>document07_candidatures2.zip</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Updated</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\JAMAIS REFAIRE.dbx=>(message 49)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Updated</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\JAMAIS REFAIRE.dbx=>(message 49)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Updated</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\JAMAIS REFAIRE.dbx=>(message 49)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Updated</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\JAMAIS REFAIRE.dbx=>(message 49)</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Updated</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\JAMAIS REFAIRE.dbx</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Update failed</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\NE JAMAIS REFAIRE.dbx=>(message 36)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)=>document07_candidatures2.zip=>document.txt .exe</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Infected with: Win32.Netsky.P@mm</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\NE JAMAIS REFAIRE.dbx=>(message 36)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)=>document07_candidatures2.zip=>document.txt .exe</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Deleted</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\NE JAMAIS REFAIRE.dbx=>(message 36)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)=>document07_candidatures2.zip</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Updated</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\NE JAMAIS REFAIRE.dbx=>(message 36)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Updated</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\NE JAMAIS REFAIRE.dbx=>(message 36)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Updated</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\NE JAMAIS REFAIRE.dbx=>(message 36)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Updated</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\NE JAMAIS REFAIRE.dbx=>(message 36)</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Updated</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\NE JAMAIS REFAIRE.dbx</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Update failed</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">D:\Outlook Express\JAMAIS REFAIRE.dbx=>(message 48)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)=>document07_candidatures2.zip=>document.txt .exe</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Infected with: Win32.Netsky.P@mm</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">D:\Outlook Express\JAMAIS REFAIRE.dbx=>(message 48)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)=>document07_candidatures2.zip=>document.txt .exe</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Deleted</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">D:\Outlook Express\JAMAIS REFAIRE.dbx=>(message 48)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)=>document07_candidatures2.zip</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Updated</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">D:\Outlook Express\JAMAIS REFAIRE.dbx=>(message 48)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Updated</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">D:\Outlook Express\JAMAIS REFAIRE.dbx=>(message 48)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Updated</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">D:\Outlook Express\JAMAIS REFAIRE.dbx=>(message 48)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Updated</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">D:\Outlook Express\JAMAIS REFAIRE.dbx=>(message 48)</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Updated</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">D:\Outlook Express\JAMAIS REFAIRE.dbx</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Update failed</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">D:\Outlook Express\NE JAMAIS REFAIRE.dbx=>(message 36)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)=>document07_candidatures2.zip=>document.txt .exe</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Infected with: Win32.Netsky.P@mm</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">D:\Outlook Express\NE JAMAIS REFAIRE.dbx=>(message 36)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)=>document07_candidatures2.zip=>document.txt .exe</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Deleted</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">D:\Outlook Express\NE JAMAIS REFAIRE.dbx=>(message 36)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)=>document07_candidatures2.zip</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Updated</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">D:\Outlook Express\NE JAMAIS REFAIRE.dbx=>(message 36)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Updated</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">D:\Outlook Express\NE JAMAIS REFAIRE.dbx=>(message 36)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Updated</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">D:\Outlook Express\NE JAMAIS REFAIRE.dbx=>(message 36)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Updated</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">D:\Outlook Express\NE JAMAIS REFAIRE.dbx=>(message 36)</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Updated</font></p>
</td>
</tr><tr>
<td width="57%">
<p><font face="Arial" size="2">D:\Outlook Express\NE JAMAIS REFAIRE.dbx</font></p>
</td>
<td width="43%" align="left">
<p><font face="Arial" size="2">Update failed</font></p>
</td>
</tr>
</table>
</td>
<td width="10%">
<p> </p>
</td>
</tr>
<tr>
<td width="458">
<p><font face="Arial"><span style="font-size:11pt;"><B> </b></span></font></p>
</td>
<td width="40%">
<p> </p>
</td>
<td width="10%">
<p> </p>
</td>
</tr>
<tr>
<td width="458">
<p><font face="Arial"><span style="font-size:11pt;"><B> </b></span></font></p>
</td>
<td width="40%">
<p> </p>
</td>
<td width="10%">
<p> </p>
</td>
</tr>
</table>
<p> </p>
</body>
</html>
RESTE JUSTE UN P'TIT QQCHOSE
Bud038.
salut bud 38
bien dormi ;-)
je ne voie pas grand chose sur le rapport car il est en unicode!?!?!
tu dis il reste un petit quelque chose?!!
peut tu remettre le rapport en cochan en bas le code " Ainsi"
@+
bien dormi ;-)
je ne voie pas grand chose sur le rapport car il est en unicode!?!?!
tu dis il reste un petit quelque chose?!!
peut tu remettre le rapport en cochan en bas le code " Ainsi"
@+
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
Salut moK´s@,
j'ai trop compris non plus le rapport "text" de bitdefender, j'vais rebooter mon pc et recommencer une analyse pour voir, secutitoo de wanadoo n'a rien trouvé de suspect ; et ditdefender a choisi de supprimer quelques archives dans outlook (D:\Outlook Express\NE JAMAIS REFAIRE.dbx, C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\NE JAMAIS REFAIRE.dbx<)
je pense qu'y a plus rien de dangereux sur mon pc. je retente une analyse en ligne et je la reposte. seras-tu encore présent encore longtemps ?
@+
Bud038.
j'ai trop compris non plus le rapport "text" de bitdefender, j'vais rebooter mon pc et recommencer une analyse pour voir, secutitoo de wanadoo n'a rien trouvé de suspect ; et ditdefender a choisi de supprimer quelques archives dans outlook (D:\Outlook Express\NE JAMAIS REFAIRE.dbx, C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\NE JAMAIS REFAIRE.dbx<)
je pense qu'y a plus rien de dangereux sur mon pc. je retente une analyse en ligne et je la reposte. seras-tu encore présent encore longtemps ?
@+
Bud038.
@tout'
p.s : j'ai bien dormi merci (grace à toutes tes manip' magiques !!!).
j'ai mis en place firefox comme tu me l'as dis.
Bud038.
p.s : j'ai bien dormi merci (grace à toutes tes manip' magiques !!!).
j'ai mis en place firefox comme tu me l'as dis.
Bud038.
re,
voici le rapport bitdefender :
BitDefender Online Scanner
Scan report generated at: Fri, Jun 15, 2007 - 18:33:42
Scan path: A:\;C:\;D:\;E:\;F:\;G:\;
Statistics
Time
01:13:01
Files
299676
Folders
5627
Boot Sectors
4
Archives
76847
Packed Files
9652
Results
Identified Viruses
2
Infected Files
4
Suspect Files
0
Warnings
0
Disinfected
0
Deleted Files
4
Engines Info
Virus Definitions
513863
Engine build
AVCORE v1.0 (build 2410) (i386) (Jun 12 2007 21:08:27)
Scan plugins
14
Archive plugins
38
Unpack plugins
6
E-mail plugins
6
System plugins
1
Scan Settings
First Action
Disinfect
Second Action
Delete
Heuristics
Yes
Enable Warnings
Yes
Scanned Extensions
*;
Exclude Extensions
Scan Emails
Yes
Scan Archives
Yes
Scan Packed
Yes
Scan Files
Yes
Scan Boot
Yes
Scanned File
Status
C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\JAMAIS REFAIRE.dbx=>(message 49)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)=>document07_candidatures2.zip=>document.txt .exe
Infected with: Win32.Netsky.P@mm
C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\JAMAIS REFAIRE.dbx=>(message 49)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)=>document07_candidatures2.zip=>document.txt .exe
Deleted
C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\JAMAIS REFAIRE.dbx=>(message 49)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)=>document07_candidatures2.zip
Updated
C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\JAMAIS REFAIRE.dbx=>(message 49)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)
Updated
C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\JAMAIS REFAIRE.dbx=>(message 49)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)
Updated
C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\JAMAIS REFAIRE.dbx=>(message 49)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)
Updated
C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\JAMAIS REFAIRE.dbx=>(message 49)
Updated
C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\JAMAIS REFAIRE.dbx
Update failed
C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\NE JAMAIS REFAIRE.dbx=>(message 36)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)=>document07_candidatures2.zip=>document.txt .exe
Infected with: Win32.Netsky.P@mm
C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\NE JAMAIS REFAIRE.dbx=>(message 36)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)=>document07_candidatures2.zip=>document.txt .exe
Deleted
C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\NE JAMAIS REFAIRE.dbx=>(message 36)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)=>document07_candidatures2.zip
Updated
C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\NE JAMAIS REFAIRE.dbx=>(message 36)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)
Updated
C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\NE JAMAIS REFAIRE.dbx=>(message 36)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)
Updated
C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\NE JAMAIS REFAIRE.dbx=>(message 36)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)
Updated
C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\NE JAMAIS REFAIRE.dbx=>(message 36)
Updated
C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\NE JAMAIS REFAIRE.dbx
Update failed
D:\Outlook Express\JAMAIS REFAIRE.dbx=>(message 48)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)=>document07_candidatures2.zip=>document.txt .exe
Infected with: Win32.Netsky.P@mm
D:\Outlook Express\JAMAIS REFAIRE.dbx=>(message 48)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)=>document07_candidatures2.zip=>document.txt .exe
Deleted
D:\Outlook Express\JAMAIS REFAIRE.dbx=>(message 48)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)=>document07_candidatures2.zip
Updated
D:\Outlook Express\JAMAIS REFAIRE.dbx=>(message 48)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)
Updated
D:\Outlook Express\JAMAIS REFAIRE.dbx=>(message 48)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)
Updated
D:\Outlook Express\JAMAIS REFAIRE.dbx=>(message 48)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)
Updated
D:\Outlook Express\JAMAIS REFAIRE.dbx=>(message 48)
Updated
D:\Outlook Express\JAMAIS REFAIRE.dbx
Update failed
D:\Outlook Express\NE JAMAIS REFAIRE.dbx=>(message 36)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)=>document07_candidatures2.zip=>document.txt .exe
Infected with: Win32.Netsky.P@mm
D:\Outlook Express\NE JAMAIS REFAIRE.dbx=>(message 36)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)=>document07_candidatures2.zip=>document.txt .exe
Deleted
D:\Outlook Express\NE JAMAIS REFAIRE.dbx=>(message 36)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)=>document07_candidatures2.zip
Updated
D:\Outlook Express\NE JAMAIS REFAIRE.dbx=>(message 36)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)
Updated
D:\Outlook Express\NE JAMAIS REFAIRE.dbx=>(message 36)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)
Updated
D:\Outlook Express\NE JAMAIS REFAIRE.dbx=>(message 36)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)
Updated
D:\Outlook Express\NE JAMAIS REFAIRE.dbx=>(message 36)
Updated
D:\Outlook Express\NE JAMAIS REFAIRE.dbx
Update failed
C'EST GRAVE DOCTEUR ?
@+
Bud038.
voici le rapport bitdefender :
BitDefender Online Scanner
Scan report generated at: Fri, Jun 15, 2007 - 18:33:42
Scan path: A:\;C:\;D:\;E:\;F:\;G:\;
Statistics
Time
01:13:01
Files
299676
Folders
5627
Boot Sectors
4
Archives
76847
Packed Files
9652
Results
Identified Viruses
2
Infected Files
4
Suspect Files
0
Warnings
0
Disinfected
0
Deleted Files
4
Engines Info
Virus Definitions
513863
Engine build
AVCORE v1.0 (build 2410) (i386) (Jun 12 2007 21:08:27)
Scan plugins
14
Archive plugins
38
Unpack plugins
6
E-mail plugins
6
System plugins
1
Scan Settings
First Action
Disinfect
Second Action
Delete
Heuristics
Yes
Enable Warnings
Yes
Scanned Extensions
*;
Exclude Extensions
Scan Emails
Yes
Scan Archives
Yes
Scan Packed
Yes
Scan Files
Yes
Scan Boot
Yes
Scanned File
Status
C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\JAMAIS REFAIRE.dbx=>(message 49)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)=>document07_candidatures2.zip=>document.txt .exe
Infected with: Win32.Netsky.P@mm
C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\JAMAIS REFAIRE.dbx=>(message 49)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)=>document07_candidatures2.zip=>document.txt .exe
Deleted
C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\JAMAIS REFAIRE.dbx=>(message 49)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)=>document07_candidatures2.zip
Updated
C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\JAMAIS REFAIRE.dbx=>(message 49)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)
Updated
C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\JAMAIS REFAIRE.dbx=>(message 49)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)
Updated
C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\JAMAIS REFAIRE.dbx=>(message 49)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)
Updated
C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\JAMAIS REFAIRE.dbx=>(message 49)
Updated
C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\JAMAIS REFAIRE.dbx
Update failed
C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\NE JAMAIS REFAIRE.dbx=>(message 36)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)=>document07_candidatures2.zip=>document.txt .exe
Infected with: Win32.Netsky.P@mm
C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\NE JAMAIS REFAIRE.dbx=>(message 36)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)=>document07_candidatures2.zip=>document.txt .exe
Deleted
C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\NE JAMAIS REFAIRE.dbx=>(message 36)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)=>document07_candidatures2.zip
Updated
C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\NE JAMAIS REFAIRE.dbx=>(message 36)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)
Updated
C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\NE JAMAIS REFAIRE.dbx=>(message 36)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)
Updated
C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\NE JAMAIS REFAIRE.dbx=>(message 36)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)
Updated
C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\NE JAMAIS REFAIRE.dbx=>(message 36)
Updated
C:\Documents and Settings\Bourdillon\Local Settings\Application Data\Identities\{32C3FCE1-EF48-4683-BB62-4B2B3C6A5D63}\Microsoft\Outlook Express\NE JAMAIS REFAIRE.dbx
Update failed
D:\Outlook Express\JAMAIS REFAIRE.dbx=>(message 48)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)=>document07_candidatures2.zip=>document.txt .exe
Infected with: Win32.Netsky.P@mm
D:\Outlook Express\JAMAIS REFAIRE.dbx=>(message 48)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)=>document07_candidatures2.zip=>document.txt .exe
Deleted
D:\Outlook Express\JAMAIS REFAIRE.dbx=>(message 48)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)=>document07_candidatures2.zip
Updated
D:\Outlook Express\JAMAIS REFAIRE.dbx=>(message 48)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)
Updated
D:\Outlook Express\JAMAIS REFAIRE.dbx=>(message 48)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)
Updated
D:\Outlook Express\JAMAIS REFAIRE.dbx=>(message 48)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)
Updated
D:\Outlook Express\JAMAIS REFAIRE.dbx=>(message 48)
Updated
D:\Outlook Express\JAMAIS REFAIRE.dbx
Update failed
D:\Outlook Express\NE JAMAIS REFAIRE.dbx=>(message 36)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)=>document07_candidatures2.zip=>document.txt .exe
Infected with: Win32.Netsky.P@mm
D:\Outlook Express\NE JAMAIS REFAIRE.dbx=>(message 36)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)=>document07_candidatures2.zip=>document.txt .exe
Deleted
D:\Outlook Express\NE JAMAIS REFAIRE.dbx=>(message 36)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)=>document07_candidatures2.zip
Updated
D:\Outlook Express\NE JAMAIS REFAIRE.dbx=>(message 36)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)=>[Subject: Re: A!p$ghsa][Date: Thu, 21 Oct 2004 08:22:10 +0200]=>(MIME part)
Updated
D:\Outlook Express\NE JAMAIS REFAIRE.dbx=>(message 36)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)=>(message)
Updated
D:\Outlook Express\NE JAMAIS REFAIRE.dbx=>(message 36)=>[Subject: =?unicode-1-1-utf-7?Q?Notification__d'][Date: Thu, 21 Oct 2004 08:22:11 +0200]=>(MIME part)
Updated
D:\Outlook Express\NE JAMAIS REFAIRE.dbx=>(message 36)
Updated
D:\Outlook Express\NE JAMAIS REFAIRE.dbx
Update failed
C'EST GRAVE DOCTEUR ?
@+
Bud038.
re,
bon apparamment les saloperies ont été effacé par bitdefender....
post un nouveau hijack this stp,
@+
bon apparamment les saloperies ont été effacé par bitdefender....
post un nouveau hijack this stp,
@+
voici le new rapport :
Logfile of HijackThis v1.99.1
Scan saved at 19:04:11, on 15/06/2007
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\SECURI~1\av_fw\backweb\8520111\Program\SERVIC~1.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\System32\CTsvcCDA.exe
C:\PROGRA~1\Wanadoo\TaskbarIcon.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\fsgk32st.exe
C:\Program Files\Winamp\winampa.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\FSGK32.EXE
C:\Program Files\Caere\OmniPagePro90\opware32.exe
C:\Program Files\Securitoo\av_fw\backweb\8520111\Program\fspex.exe
C:\Program Files\Securitoo\av_fw\backweb\8520111\program\fsbwsys.exe
C:\WINDOWS\system32\ntvdm.exe
C:\Program Files\Securitoo\av_fw\Common\FSM32.EXE
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\Program Files\Securitoo\av_fw\Common\FSMA32.EXE
C:\Program Files\Securitoo\av_fw\Anti-Virus\fssm32.exe
C:\Program Files\Securitoo\av_fw\Common\FSMB32.EXE
C:\WINDOWS\System32\ctfmon.exe
C:\WINDOWS\System32\FTRTSVC.exe
C:\PROGRA~1\PANICW~1\POP-UP~1\PSFree.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
C:\Program Files\Securitoo\av_fw\Common\FCH32.EXE
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\Program Files\My Book\WD Backup\uBBMonitor.exe
C:\Program Files\Securitoo\av_fw\Common\FAMEH32.EXE
C:\Program Files\Caere\OmniPagePro90\EREG\REMIND32.EXE
C:\Program Files\Securitoo\av_fw\Anti-Virus\fsav32.exe
C:\Program Files\Wanadoo\EspaceWanadoo.exe
C:\Program Files\Wanadoo\ComComp.exe
C:\PROGRA~1\Wanadoo\Toaster.exe
C:\PROGRA~1\Wanadoo\Inactivity.exe
C:\PROGRA~1\Wanadoo\PollingModule.exe
C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE
C:\Program Files\Securitoo\av_fw\FWES\Program\fsdfwd.exe
C:\Program Files\Wanadoo\Watch.exe
C:\Program Files\Securitoo\av_fw\FSGUI\fsguiexe.exe
C:\Program Files\Mozilla Firefox\firefox.exe
D:\UTILITAIRES\Hijackthis Version Française\VERSION TRADUITE ORIGINALE.EXE
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\TaskbarIcon.exe
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [OmniPage] C:\Program Files\Caere\OmniPagePro90\opware32.exe
O4 - HKLM\..\Run: [FSASWREG] "C:\Program Files\Securitoo\av_fw\Anti-Spyware\fsaswreg.exe"
O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\Securitoo\av_fw\Common\FSM32.EXE" /splash
O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\Securitoo\av_fw\TNB\TNBUtil.exe" /CHECKALL /WAITFORSW
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [PopUpStopperFreeEdition] "C:\PROGRA~1\PANICW~1\POP-UP~1\PSFree.exe"
O4 - Startup: reminder-Enregistrement du produit ScanSoft.lnk = C:\Program Files\Caere\OmniPagePro90\EREG\REMIND32.EXE
O4 - Global Startup: Adobe Gamma Loader.exe.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: DSLMON.lnk = C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O4 - Global Startup: WD Backup Monitor.lnk = C:\Program Files\My Book\WD Backup\uBBMonitor.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - https://www.kaspersky.fr/?domain=webscanner.kaspersky.fr
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
O16 - DPF: {B1826A9F-4AA0-4510-BA77-9013E74E4B9B} - http://www.trendmicro.com/spyware-scan/as4web.cab
O16 - DPF: {CE69F98F-2AF3-4306-BAC6-A79070EDA1B4} (Zylom Loader Object) - http://eu.download.games.yahoo.com/zylom/activex/zylomloader.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{AF4A6BD4-E99B-413B-94DF-03E0B1AD7E79}: NameServer = 80.10.246.130 80.10.246.3
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: Securitoo Antivirus Firewall (BackWeb Plug-in - 8520111) - Unknown owner - C:\PROGRA~1\SECURI~1\av_fw\backweb\8520111\Program\SERVIC~1.EXE
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTsvcCDA.exe
O23 - Service: F-Secure Gatekeeper Handler Starter - F-Secure Corp. - C:\Program Files\Securitoo\av_fw\Anti-Virus\fsgk32st.exe
O23 - Service: fsbwsys - F-Secure Corp. - C:\Program Files\Securitoo\av_fw\backweb\8520111\program\fsbwsys.exe
O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\Securitoo\av_fw\FWES\Program\fsdfwd.exe
O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\Securitoo\av_fw\Common\FSMA32.EXE
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
ils les a détectés et supprimés mais le truc c'est que j'ai fait un premier scan en ligne, il me trouve ces bestioles, les supprimes puis je te poste le rapport (le truc illisible). donc je reboot mon pc et recommence un 2ème scan en ligne et là il trouve la meme chose. mais bon c'est toi le pro donc j'attends tes infos ;-)
Bud038.
Logfile of HijackThis v1.99.1
Scan saved at 19:04:11, on 15/06/2007
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\SECURI~1\av_fw\backweb\8520111\Program\SERVIC~1.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\System32\CTsvcCDA.exe
C:\PROGRA~1\Wanadoo\TaskbarIcon.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\fsgk32st.exe
C:\Program Files\Winamp\winampa.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\FSGK32.EXE
C:\Program Files\Caere\OmniPagePro90\opware32.exe
C:\Program Files\Securitoo\av_fw\backweb\8520111\Program\fspex.exe
C:\Program Files\Securitoo\av_fw\backweb\8520111\program\fsbwsys.exe
C:\WINDOWS\system32\ntvdm.exe
C:\Program Files\Securitoo\av_fw\Common\FSM32.EXE
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\Program Files\Securitoo\av_fw\Common\FSMA32.EXE
C:\Program Files\Securitoo\av_fw\Anti-Virus\fssm32.exe
C:\Program Files\Securitoo\av_fw\Common\FSMB32.EXE
C:\WINDOWS\System32\ctfmon.exe
C:\WINDOWS\System32\FTRTSVC.exe
C:\PROGRA~1\PANICW~1\POP-UP~1\PSFree.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
C:\Program Files\Securitoo\av_fw\Common\FCH32.EXE
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\Program Files\My Book\WD Backup\uBBMonitor.exe
C:\Program Files\Securitoo\av_fw\Common\FAMEH32.EXE
C:\Program Files\Caere\OmniPagePro90\EREG\REMIND32.EXE
C:\Program Files\Securitoo\av_fw\Anti-Virus\fsav32.exe
C:\Program Files\Wanadoo\EspaceWanadoo.exe
C:\Program Files\Wanadoo\ComComp.exe
C:\PROGRA~1\Wanadoo\Toaster.exe
C:\PROGRA~1\Wanadoo\Inactivity.exe
C:\PROGRA~1\Wanadoo\PollingModule.exe
C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE
C:\Program Files\Securitoo\av_fw\FWES\Program\fsdfwd.exe
C:\Program Files\Wanadoo\Watch.exe
C:\Program Files\Securitoo\av_fw\FSGUI\fsguiexe.exe
C:\Program Files\Mozilla Firefox\firefox.exe
D:\UTILITAIRES\Hijackthis Version Française\VERSION TRADUITE ORIGINALE.EXE
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\TaskbarIcon.exe
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [OmniPage] C:\Program Files\Caere\OmniPagePro90\opware32.exe
O4 - HKLM\..\Run: [FSASWREG] "C:\Program Files\Securitoo\av_fw\Anti-Spyware\fsaswreg.exe"
O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\Securitoo\av_fw\Common\FSM32.EXE" /splash
O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\Securitoo\av_fw\TNB\TNBUtil.exe" /CHECKALL /WAITFORSW
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [PopUpStopperFreeEdition] "C:\PROGRA~1\PANICW~1\POP-UP~1\PSFree.exe"
O4 - Startup: reminder-Enregistrement du produit ScanSoft.lnk = C:\Program Files\Caere\OmniPagePro90\EREG\REMIND32.EXE
O4 - Global Startup: Adobe Gamma Loader.exe.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: DSLMON.lnk = C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O4 - Global Startup: WD Backup Monitor.lnk = C:\Program Files\My Book\WD Backup\uBBMonitor.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - https://www.kaspersky.fr/?domain=webscanner.kaspersky.fr
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
O16 - DPF: {B1826A9F-4AA0-4510-BA77-9013E74E4B9B} - http://www.trendmicro.com/spyware-scan/as4web.cab
O16 - DPF: {CE69F98F-2AF3-4306-BAC6-A79070EDA1B4} (Zylom Loader Object) - http://eu.download.games.yahoo.com/zylom/activex/zylomloader.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{AF4A6BD4-E99B-413B-94DF-03E0B1AD7E79}: NameServer = 80.10.246.130 80.10.246.3
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: Securitoo Antivirus Firewall (BackWeb Plug-in - 8520111) - Unknown owner - C:\PROGRA~1\SECURI~1\av_fw\backweb\8520111\Program\SERVIC~1.EXE
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTsvcCDA.exe
O23 - Service: F-Secure Gatekeeper Handler Starter - F-Secure Corp. - C:\Program Files\Securitoo\av_fw\Anti-Virus\fsgk32st.exe
O23 - Service: fsbwsys - F-Secure Corp. - C:\Program Files\Securitoo\av_fw\backweb\8520111\program\fsbwsys.exe
O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\Securitoo\av_fw\FWES\Program\fsdfwd.exe
O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\Securitoo\av_fw\Common\FSMA32.EXE
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
ils les a détectés et supprimés mais le truc c'est que j'ai fait un premier scan en ligne, il me trouve ces bestioles, les supprimes puis je te poste le rapport (le truc illisible). donc je reboot mon pc et recommence un 2ème scan en ligne et là il trouve la meme chose. mais bon c'est toi le pro donc j'attends tes infos ;-)
Bud038.
re,
Imprime ces instructions, ou colle les dans un fichier texte.
Regarde bien l'indication en bas, avant de commencer la procédure.
Télécharge Look2Me-Destroyer.exe sur ton Bureau.
http://secubox.aldria.com/topic-518.html
. Ferme toutes les fenêtres actives.
. Lance l'outil Look2Me-Destroyer.exe.
. Coche Run this program as a task
. Un message s'affichera :
"Look2Me-Destroyer will close and re-open in approximately 1 minute"-> OK
. Il se relancera après la minute, puis appuie sur le bouton Scan for L2M.
. Les icônes de ton Bureau vont disparaître.
. Le scan termine, clique sur Remove L2M
. Un nouveau message Done Scanning apparaîtra, clique sur OK.
. Suivi de Done removing infected files! Look2Me-Destroyer will now shutdown your computer -> OK.
. Ton PC va s’éteindre.
. Démarre ton PC normalement.
. Colle le rapport généré, situé ici : C:\Look2Me-Destroyer.txt
Si Look2Me-Destroyer ne se relance pas automatiquement après la minute, redémarre et essaie à nouveau.
--------
1/ Si Look2Me-Destroyer ne se relance pas automatiquement après les 10 secondes, redémarre et essaie à nouveau.
2/ Si tu reçois un message de ton firewall disant que l'outil tente d'accéder à l'internet : Accepte ou desactive ton firewall
3/ Si un message runtime error '339' s'affiche : télécharge MSWINSCK.OCX et place-le dans le dossier C:\Windows\System32.
http://www.ascentive.com/support/n [...] WINSCK.OCX
Imprime ces instructions, ou colle les dans un fichier texte.
Regarde bien l'indication en bas, avant de commencer la procédure.
Télécharge Look2Me-Destroyer.exe sur ton Bureau.
http://secubox.aldria.com/topic-518.html
. Ferme toutes les fenêtres actives.
. Lance l'outil Look2Me-Destroyer.exe.
. Coche Run this program as a task
. Un message s'affichera :
"Look2Me-Destroyer will close and re-open in approximately 1 minute"-> OK
. Il se relancera après la minute, puis appuie sur le bouton Scan for L2M.
. Les icônes de ton Bureau vont disparaître.
. Le scan termine, clique sur Remove L2M
. Un nouveau message Done Scanning apparaîtra, clique sur OK.
. Suivi de Done removing infected files! Look2Me-Destroyer will now shutdown your computer -> OK.
. Ton PC va s’éteindre.
. Démarre ton PC normalement.
. Colle le rapport généré, situé ici : C:\Look2Me-Destroyer.txt
Si Look2Me-Destroyer ne se relance pas automatiquement après la minute, redémarre et essaie à nouveau.
--------
1/ Si Look2Me-Destroyer ne se relance pas automatiquement après les 10 secondes, redémarre et essaie à nouveau.
2/ Si tu reçois un message de ton firewall disant que l'outil tente d'accéder à l'internet : Accepte ou desactive ton firewall
3/ Si un message runtime error '339' s'affiche : télécharge MSWINSCK.OCX et place-le dans le dossier C:\Windows\System32.
http://www.ascentive.com/support/n [...] WINSCK.OCX
voici le rapport demandé :
Look2Me-Destroyer V1.0.12
Scanning for infected files.....
Scan started at 15/06/2007 20:19:12
Attempting to delete infected files...
Making registry repairs.
Restoring Windows certificates.
Replaced hosts file with default windows hosts file
Restoring SeDebugPrivilege for Administrateurs - Succeeded
@+ moK´s@
Bud038.
Look2Me-Destroyer V1.0.12
Scanning for infected files.....
Scan started at 15/06/2007 20:19:12
Attempting to delete infected files...
Making registry repairs.
Restoring Windows certificates.
Replaced hosts file with default windows hosts file
Restoring SeDebugPrivilege for Administrateurs - Succeeded
@+ moK´s@
Bud038.
re docteur ;-)
Ben écoute, je le trouve plus rapide au démarrage et plus fluide en terme de chargement de page internet (peut être firefox par rapport à explorer).
Suite à notre conversation d'hier au final tu me conseilles d'installer le service pack2 d'xp ou pas ?
tu me disais que tu l'avais mais tu as mis en place toutes les mises à jour car beaucoup d'internautes expliquaient que certaines étaient dangereuses, info, intox ?
Régulièrement j'utilise Spybot, ad-aware, ccleaner er reg cleaner, qu'en penses-tu ? as-tu des conseils à m'apporter ? je vais utiliser maintenant firefox ; dois-je utiliser régulièrement AVG Anti-Spyware ? et les autres applications style vundofix, look2me ?
Je vais continuer à surfer pour voir si tu as finis ton génocide des pb et bestioles de mon pc et te tiendrais au courant le cas échéant. Je tiens vraiment à te remercier pour ta disponibilité et ton savoir-faire dont tu as fait preuve à mon égard.
J'ai pu voir que tu réponds régulièrement à beaucoup d'entre nous, alors une nouvelle fois MERCI moK´s@ !!
@+ et bonne continuation...
(car si je reviens rapidement te voir, c'est que mon pc aura encore fait des siennes... lol)
Bud038.
Ben écoute, je le trouve plus rapide au démarrage et plus fluide en terme de chargement de page internet (peut être firefox par rapport à explorer).
Suite à notre conversation d'hier au final tu me conseilles d'installer le service pack2 d'xp ou pas ?
tu me disais que tu l'avais mais tu as mis en place toutes les mises à jour car beaucoup d'internautes expliquaient que certaines étaient dangereuses, info, intox ?
Régulièrement j'utilise Spybot, ad-aware, ccleaner er reg cleaner, qu'en penses-tu ? as-tu des conseils à m'apporter ? je vais utiliser maintenant firefox ; dois-je utiliser régulièrement AVG Anti-Spyware ? et les autres applications style vundofix, look2me ?
Je vais continuer à surfer pour voir si tu as finis ton génocide des pb et bestioles de mon pc et te tiendrais au courant le cas échéant. Je tiens vraiment à te remercier pour ta disponibilité et ton savoir-faire dont tu as fait preuve à mon égard.
J'ai pu voir que tu réponds régulièrement à beaucoup d'entre nous, alors une nouvelle fois MERCI moK´s@ !!
@+ et bonne continuation...
(car si je reviens rapidement te voir, c'est que mon pc aura encore fait des siennes... lol)
Bud038.
re,
oui je te conseil d´installer le pack 2... enfin je te dis ca car moi je l´ai...
oui c´est bien d´utiliser ad-aware, avg une fois par semais environ... n´utilise pas vudo et look2 2 me a tout va...
reg cleaner c´est quand tu desinstalle des programmes... et de temps en temps pour faire le ménage, c´est vrais ca aise...
ok, surf sur le net et dis moi si ca va, on se reparle dans quelques jours si tu veux...
@+
oui je te conseil d´installer le pack 2... enfin je te dis ca car moi je l´ai...
oui c´est bien d´utiliser ad-aware, avg une fois par semais environ... n´utilise pas vudo et look2 2 me a tout va...
reg cleaner c´est quand tu desinstalle des programmes... et de temps en temps pour faire le ménage, c´est vrais ca aise...
ok, surf sur le net et dis moi si ca va, on se reparle dans quelques jours si tu veux...
@+