Probleme cheval de troi ds registre

borep -  
 borep -
bonjour a tous
voila j ai un probleme, suite a une manipulation du registre pour supprimer la cle (...32) qui permet de supprimer les fichiers avi , deux jours plus tard: un cheval de troi est trouver par windows. c est ma copine est qui a ce moment la sur l ordi, ca indique qu il faut inserer le CD 2 du systeme windowz, mais une fois inserer, pas le bon CD. bref, ma copine ne s y connaissant pas elle clic sur : ignorer ce cheval: donc pas de nom...
j ai lancé Kaspersky a plusieurs reprises pr le retrouver: rien
maintenant l acces a regedit m est interdit car le fichier est introuvable sur ce nom!!!
que puis je faire? est ce grave??
merci
A voir également:

28 réponses

DarkN3tC0m
 
télécharge Spybot Search and destroy disponible ici, fait une mise a jour etc, et fait un scan!!!!!

https://www.01net.com/telecharger/windows/Securite/anti-spyware/fiches/26157.html <==spybot
0
!^^![ME] Messages postés 4767 Statut Contributeur 395
 
salut,
tente avec une analyse en ligne comme bitdefenderonline scanner ou kaspersky!!
@+
0
borep
 
j ai deja scanner avec spybot et rien du tout non plus
0
DarkN3tC0m
 
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
borep
 
pas au top de l informatique mais c est ce le arapport que tu veux voir?

Logfile of HijackThis v1.99.1
Scan saved at 12:30:47, on 1.7.2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16473)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\ATK0100\HControl.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\ASUS\Wireless Console 2\wcourier.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Progra~1\ASUS\WLAN Card Utilities\Center.exe
C:\Program Files\ASUSTek\ASUSDVD\PDVDServ.exe
C:\Program Files\ASUS\Power4 Gear\BatteryLife.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Winamp\winampa.exe
C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Hewlett-Packard\OrderReminder\OrderReminder.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\ASUS\Asus ChkMail\ChkMail.exe
C:\WINDOWS\system32\ASWLSVC.exe
C:\WINDOWS\ATKKBService.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\ATK0100\ATKOSD.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\Java\jre1.5.0_10\bin\jucheck.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\wuauclt.exe
C:\DOCUME~1\SAARAM~1\LOCALS~1\Temp\Tilapäinen kansio 1 hijackthis[1].zip\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fi/webhp?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Linkit
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - c:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: RXResultTracker Class - {59879FA4-4790-461c-A1CC-4EC4DE4CA483} - C:\Program Files\RXToolBar\sfcont.dll (file missing)
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O4 - HKLM\..\Run: [HControl] C:\WINDOWS\ATK0100\HControl.exe
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [High Definition Audio -ominaisuussivun pikakuvake] HDAShCut.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [AlcWzrd] ALCWZRD.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [Wireless Console 2] "C:\Program Files\ASUS\Wireless Console 2\wcourier.exe"
O4 - HKLM\..\Run: [SynTPEnh] "C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
O4 - HKLM\..\Run: [Control Center] "C:\Progra~1\ASUS\WLAN Card Utilities\Center.exe"
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\ASUSTek\ASUSDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [Power_Gear] "C:\Program Files\ASUS\Power4 Gear\BatteryLife.exe" 1
O4 - HKLM\..\Run: [CnxTrApp] "rundll32.exe" "C:\Program Files\TeleWell\ADSL USB Router\CnxTrApp.dll",AppEntry -REG "Conexant\Conexant USB Network"
O4 - HKLM\..\Run: [KAVPersonal50] C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\kav.exe /minimize
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\winampa.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [OrderReminder] "C:\Program Files\Hewlett-Packard\OrderReminder\OrderReminder.exe"
O4 - HKLM\..\Run: [Easy-PrintToolBox] "C:\Program Files\Canon\Easy-PrintToolBox\BJPSMAIN.EXE" /logon
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.0.720.3640\GoogleToolbarNotifier.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O4 - Global Startup: ASUS ChkMail.lnk = C:\Program Files\ASUS\Asus ChkMail\ChkMail.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)
O11 - Options group: [INTERNATIONAL] International*
O14 - IERESET.INF: START_PAGE_URL=http://www.asus.com
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
O16 - DPF: {17D72920-7A15-11D4-921E-0080C8DA7A5E} (AimSp32 Class) - http://makeover.ivillage.co.uk/save/makeover.cab
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab31267.cab
O16 - DPF: {4C833081-D026-4FF8-968F-7EAB660D2FBA} (TVAnts ActiveX Control) - http://download.tvants.com/pub/tvants/tvants1/win32/cab/tvants.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://pikkusaara.spaces.live.com//PhotoUpload/MsnPUpld.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan_fr/scan8/oscan8.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/...
O16 - DPF: {917623D1-D8E5-11D2-BE8B-00104B06BDE3} (CamImage Class) - http://webcamera.vaasa.fi:82/activex/AxisCamControl.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {B64F4A7C-97C9-11DA-8BDE-F66BAD1E3F3A} - http://locator1.cdn.imagesrvr.com/sites/errorsafe.com/www/download/2006/cabs/ErrorSafeFreeInstall_fi.cab
O16 - DPF: {CE3409C4-9E26-4F8E-83E4-778498F9E7B4} (PB_Uploader Class) - https://www.photobox.fr/?channel=1005
O16 - DPF: {D4323BF2-006A-4440-A2F5-27E3E7AB25F8} (Virtools WebPlayer Class) - http://a532.g.akamai.net/...
O16 - DPF: {DD3641E5-A9CF-11D1-9AA1-444553540000} (Surround Video V3.0 Control Object) - http://www.lanson.fr/svideo3.cab
O16 - DPF: {E1AF091A-9F23-4059-89D7-C05EE073285D} (Canal+ Active MSWAY) - https://www.canalplus.com/canalplay/
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Filter: text/html - {2AB289AE-4B90-4281-B2AE-1F4BB034B647} - C:\Program Files\RXToolBar\sfcont.dll
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxdev.dll
O20 - Winlogon Notify: NavLogon - C:\WINDOWS\
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O20 - Winlogon Notify: WRNotifier - WRLogonNTF.dll (file missing)
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: ASWLSVC - Unknown owner - C:\WINDOWS\system32\ASWLSVC.exe
O23 - Service: ATK Keyboard Service (ATKKeyboardService) - ASUSTeK COMPUTER INC. - C:\WINDOWS\ATKKBService.exe
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Common Files\BOONTY Shared\Service\Boonty.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: kavsvc - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\kavsvc.exe
0
DarkN3tC0m
 
oui c'est ca attend je cherche pasque, ya beaucoup ;)
0
DarkN3tC0m
 
A tu -essayer une restauration système a une date inférieur ou ta copine a eu le trojan?
0
borep
 
j ai fait une restauration un jour avant car mauvaise manip pour enlever la cle , mais pas apres avoir vu le cheval
0
borep
 
j ai du nouveau, apres un enieme verification, spybot vient de detecter cela:
Microsoft windows.ÍEFirewallBypass
reglages
HKEY-LOCAL-MACHINE...... ca peut venir de la?
0
DarkN3tC0m
 
oui je crois que tu a le trojan firewall by pass, supprime avec spybot et dit moi quoi ;)
0
DarkN3tC0m
 
http://pandasoftware.fr <=== fait un scan ici en ligne ;)
0
borep
 
j ai supprimer les 2 truc que spybot me donnait
mais l acces au registre m si tjs interdit, nom incorect.
maintenant je scanne avec totalscan, je te redit une fois sacnner
0
borep
 
voila le resultat de totalscan

Scan details
High danger level (0)

Medium danger level (1)
adware/rxtoolb... Adware Latent Show + Info
hkey_classes_root\clsid\{...0-4281-b2ae-1f4bb034b647}
hkey_classes_root\clsid\{...0-461c-a1cc-4ec4de4ca483}
hkey_local_machine\softwa...s\rxresult.rxresultfilter
hkey_local_machine\softwa...rxresult.rxresultfilter.1
hkey_local_machine\softwa...\rxresult.rxresulttracker
hkey_local_machine\softwa...xresult.rxresulttracker.1
HKEY_LOCAL_MACHINE\softwa...0-461c-A1CC-4EC4DE4CA483}
HKEY_LOCAL_MACHINE\softwa...0-4281-b2ae-1f4bb034b647}
HKEY_CURRENT_USER\Softwar...2-4B48-AE22-D659B8D835B0}

Low danger level (52)
Cookie/Overtur... Tracking Cookie Latent Show + Info
C:\Documents and Settings..._miettola@overture[2].txt
Cookie/Comclic... Tracking Cookie Latent Show + Info
C:\Documents and Settings...@fl01.ct2.comclick[1].txt
C:\Documents and Settings...@fl01.ct2.comclick[2].txt
Cookie/RealMed... Tracking Cookie Latent Show + Info
C:\Documents and Settings...miettola@realmedia[2].txt
application/al... Tracking Application Latent Show + Info
c:\documents and settings...ettings\temp\asmfiles.cab
c:\documents and settings...al settings\temp\admcache
hkey_local_machine\softwa...ersion\uninstall\altnetdm
hkey_classes_root\clsid\{...7-495d-80df-cdd5399d0ff8}
hkey_local_machine\software\classes\appid\adm.exe
hkey_local_machine\softwa...altnet signing module.exe
hkey_local_machine\softwa...5-4c0d-9110-131c14caaf62}
hkey_classes_root\appid\adm.exe
hkey_classes_root\appid\{...5-4c0d-9110-131c14caaf62}
hkey_local_machine\softwa...agement\arpcache\altnetdm
hkey_local_machine\software\classes\adm.adm
hkey_local_machine\softwa...gningmodule.signingmodule
hkey_local_machine\softwa...ingmodule.signingmodule.1
hkey_classes_root\adm.adm
hkey_classes_root\adm.adm.1
hkey_classes_root\signingmodule.signingmodule
hkey_classes_root\signingmodule.signingmodule.1
HKEY_CLASSES_ROOT\Interfa...0-4A2A-831F-D196D41F8438}
HKEY_LOCAL_MACHINE\softwa...7-495D-80DF-CDD5399D0FF8}
HKEY_CLASSES_ROOT\AppID\{...C-49F5-8377-8172DE975F75}
HKEY_CLASSES_ROOT\TypeLib...0-40CD-A453-9A0CAFDF3A64}
Cookie/Com.com Tracking Cookie Latent Show + Info
C:\Documents and Settings...saara_miettola@com[1].txt
Cookie/Toplist Tracking Cookie Latent Show + Info
C:\Documents and Settings...a_miettola@toplist[1].txt
adware/instafi... Adware Latent Show + Info
HKEY_CURRENT_USER\Softwar...D-469E-90F0-F66AB581A933}
Cookie/Cgi-bin Tracking Cookie Latent Show + Info
C:\Documents and Settings...@www6.addfreestats[1].txt
application/be... Tracking Application Latent Show + Info
c:\windows\smdat32m.sys
Cookie/Yadro Tracking Cookie Latent Show + Info
C:\Documents and Settings...ara_miettola@yadro[2].txt
Cookie/Cgi-bin Tracking Cookie Latent Show + Info
C:\Documents and Settings...@www1.addfreestats[1].txt
Cookie/Statcou... Tracking Cookie Latent Show + Info
C:\Documents and Settings...ettola@statcounter[2].txt
Cookie/Hbmedia... Tracking Cookie Latent Show + Info
C:\Documents and Settings...a@adopt.hbmediapro[1].txt
Cookie/Xiti Tracking Cookie Latent Show + Info
C:\Documents and Settings...aara_miettola@xiti[1].txt
C:\Documents and Settings...aara_miettola@xiti[2].txt
C:\Documents and Settings...aara_miettola@xiti[3].txt
Cookie/BurstNe... Tracking Cookie Latent Show + Info
C:\Documents and Settings..._miettola@burstnet[1].txt
Cookie/Tradedo... Tracking Cookie Latent Show + Info
C:\Documents and Settings...ttola@tradedoubler[2].txt
C:\Documents and Settings...ttola@tradedoubler[3].txt
Cookie/Adverti... Tracking Cookie Latent Show + Info
C:\Documents and Settings...ettola@advertising[1].txt
C:\Documents and Settings...ettola@advertising[3].txt
Cookie/Webtren... Tracking Cookie Latent Show + Info
C:\Documents and Settings...atse.webtrendslive[2].txt
Cookie/Searchp... Tracking Cookie Latent Show + Info
C:\Documents and Settings...portal.information[1].txt
Cookie/fe.lea.... Tracking Cookie Latent Show + Info
C:\Documents and Settings...ttola@fe.lea.lycos[1].txt
Cookie/Smartad... Tracking Cookie Latent Show + Info
C:\Documents and Settings...tola@smartadserver[2].txt
Cookie/Cgi-bin Tracking Cookie Latent Show + Info
C:\Documents and Settings...@www5.addfreestats[2].txt
C:\Documents and Settings...@www5.addfreestats[1].txt
Cookie/FastCli... Tracking Cookie Latent Show + Info
C:\Documents and Settings...miettola@fastclick[2].txt
Cookie/RealMed... Tracking Cookie Latent Show + Info
C:\Documents and Settings...ttola@247realmedia[1].txt
C:\Documents and Settings...ttola@247realmedia[2].txt
Cookie/Serving... Tracking Cookie Latent Show + Info
C:\Documents and Settings...ettola@serving-sys[1].txt
C:\Documents and Settings...ettola@serving-sys[3].txt
Cookie/Ccbill Tracking Cookie Latent Show + Info
C:\Documents and Settings...ra_miettola@ccbill[2].txt
Cookie/Maxserv... Tracking Cookie Latent Show + Info
C:\Documents and Settings...iettola@maxserving[1].txt
Cookie/2o7 Tracking Cookie Latent Show + Info
C:\Documents and Settings...saara_miettola@2o7[1].txt
Cookie/Go Tracking Cookie Latent Show + Info
C:\Documents and Settings...\saara_miettola@go[1].txt
Cookie/Researc... Tracking Cookie Latent Show + Info
C:\Documents and Settings...ttola@research-int[1].txt
Cookie/Serving... Tracking Cookie Latent Show + Info
C:\Documents and Settings...ola@bs.serving-sys[1].txt
C:\Documents and Settings...ola@bs.serving-sys[3].txt
Cookie/2o7 Tracking Cookie Latent Show + Info
C:\Documents and Settings...a_miettola@112.2o7[1].txt
Cookie/WUpd Tracking Cookie Latent Show + Info
C:\Documents and Settings...a_miettola@revenue[2].txt
Cookie/Tribalf... Tracking Cookie Latent Show + Info
C:\Documents and Settings...ttola@tribalfusion[1].txt
C:\Documents and Settings...ttola@tribalfusion[2].txt
Cookie/Screens... Tracking Cookie Latent Show + Info
C:\Documents and Settings...ola@i.screensavers[2].txt
Cookie/Falkag Tracking Cookie Latent Show + Info
C:\Documents and Settings...iettola@as1.falkag[1].txt
C:\Documents and Settings...iettola@as1.falkag[3].txt
Cookie/MetriWe... Tracking Cookie Latent Show + Info
C:\Documents and Settings..._miettola@metriweb[1].txt
Cookie/Casalem... Tracking Cookie Latent Show + Info
C:\Documents and Settings...ettola@casalemedia[2].txt
Cookie/Doublec... Tracking Cookie Latent Show + Info
C:\Documents and Settings...ettola@doubleclick[2].txt
Cookie/Weboram... Tracking Cookie Latent Show + Info
C:\Documents and Settings..._miettola@weborama[1].txt
C:\Documents and Settings..._miettola@weborama[3].txt
Cookie/cs.sexc... Tracking Cookie Latent Show + Info
C:\Documents and Settings...tola@cs.sexcounter[2].txt
Cookie/Adtech Tracking Cookie Latent Show + Info
C:\Documents and Settings...ra_miettola@adtech[2].txt
C:\Documents and Settings...ra_miettola@adtech[3].txt
Cookie/XXXCoun... Tracking Cookie Latent Show + Info
C:\Documents and Settings...iettola@xxxcounter[1].txt
application/ne... Tracking Application Latent Show + Info
c:\program files\need2find
hkey_current_user\software\need2find
hkey_local_machine\software\need2find
Cookie/Server.... Tracking Cookie Latent Show + Info
C:\Documents and Settings...ver.iad.liveperson[3].txt
C:\Documents and Settings...ver.iad.liveperson[4].txt
Cookie/PointRo... Tracking Cookie Latent Show + Info
C:\Documents and Settings...tola@ads.pointroll[2].txt
C:\Documents and Settings...tola@ads.pointroll[3].txt
Cookie/OfferOp... Tracking Cookie Latent Show + Info
C:\Documents and Settings...ola@offeroptimizer[1].txt
Cookie/Kazaa N... Tracking Cookie Latent Show + Info
C:\Documents and Settings...tola@desktop.kazaa[1].txt
Cookie/Questio... Tracking Cookie Latent Show + Info
C:\Documents and Settings...ola@questionmarket[2].txt
C:\Documents and Settings...ola@questionmarket[1].txt
Cookie/onestat... Tracking Cookie Latent Show + Info
C:\Documents and Settings...ttola@stat.onestat[2].txt
Cookie/PayCoun... Tracking Cookie Latent Show + Info
C:\Documents and Settings...iettola@paycounter[1].txt
Cookie/Bluestr... Tracking Cookie Latent Show + Info
C:\Documents and Settings...iettola@bluestreak[1].txt

<<
1
2
3
4
5
>>

Suspicious files (2)
C:\Documents and Settings...IE5\YZ1X2N1I\imgad[1].png
C:\Documents and Settings...e-troi-ds-registre[1].htm
0
darn3tcom
 
corrige moi tout ses erreurs la et dit moi quoi
0
borep
 
voila, apres plusieurs scan avec plusieurs antivirus en ligne, et plusieurs spybot, pas mal de truc enlevé, mais toujours le probleme pour le registre, impossible d y acceder car le nom est pas reconnu
une solution???
0
borep
 
comment acceder a mon "registre" autrement que regedit ??????
0
DaRKn3tc0m
 
http://home.tiscali.de/zdata/regcool_e.htm jai trouvez sa :)
0
borep
 
regcool marche pas, invalide, verifier updates :(
0
TazDevil Messages postés 993 Statut Membre 370
 
RegAlyzer (même éditeur que Spybot) : http://newpages.safer-networking.org/fr/regalyzer/index.html
0
borep
 
j ai telecharger un nouveau regcool qui lui marche et j ai maintenant acces aux clé
0