Pop up cid
dynastyworld
-
dynastyworld -
dynastyworld -
Bonjour,
voila j ai des pop up cid qui sortent on m adit demettre la alors voila:
Logfile of HijackThis v1.99.1
Scan saved at 20:10:32, on 14/03/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
H:\WINDOWS\System32\smss.exe
H:\WINDOWS\system32\winlogon.exe
H:\WINDOWS\system32\services.exe
H:\WINDOWS\system32\lsass.exe
H:\WINDOWS\system32\svchost.exe
H:\WINDOWS\System32\svchost.exe
H:\WINDOWS\Explorer.EXE
H:\WINDOWS\VM_STI.EXE
H:\WINDOWS\system32\ctfmon.exe
H:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
H:\Program Files\Internet Explorer\iexplore.exe
H:\Program Files\Messenger\MSMSGS.EXE
H:\Program Files\Gadwin Systems\PrintScreen\PrintScreen.exe
H:\Program Files\Philips\SPC 200NC PC Camera\TrayMin200.exe
H:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe
H:\Program Files\Internet Explorer\iexplore.exe
H:\WINDOWS\system32\spoolsv.exe
H:\WINDOWS\System32\svchost.exe
H:\WINDOWS\system32\wuauclt.exe
H:\WINDOWS\system32\msiexec.exe
H:\PROGRA~1\MOZILL~1\FIREFOX.EXE
H:\Documents and Settings\Adem\Bureau\LimeWire\LimeWire.exe
H:\WINDOWS\system32\wuauclt.exe
H:\Documents and Settings\Adem\Bureau\hijackthis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.118712.fr/sortir.html
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.search4top.net/040C/ie.asp
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: ASH Class - {014541E0-B57C-45E2-A24B-87A847C1E4A5} - H:\WINDOWS\system32\MSPCA32.DLL
O2 - BHO: SWEETIE - {1A0AADCD-3A72-4b5f-900F-E3BB5A838E2A} - H:\PROGRA~1\MACROG~1\SWEETI~1\toolbar.dll (file missing)
O2 - BHO: PU Class - {56EF9AEB-9F18-4CA9-9D41-60F24CEA4A80} - H:\WINDOWS\system32\MSPCA32.DLL
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - H:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - H:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O3 - Toolbar: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - H:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll (file missing)
O4 - HKLM\..\Run: [BigDogPath] H:\WINDOWS\VM_STI.EXE Philips SPC 200NC PC Camera
O4 - HKLM\..\Run: [1 mags 16 more] H:\Documents and Settings\All Users\Application Data\Admin Inter 1 Mags\ace four.exe
O4 - HKLM\..\Run: [LoadMSPCA] rundll32.exe H:\WINDOWS\system32\MSPCA32.DLL,MSPCA32
O4 - HKLM\..\Run: [SYSTEM] H:\WINDOWS\WIN16.vbs
O4 - HKLM\..\Run: [SunJavaUpdateSched] "H:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] H:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [WOOKIT] H:\PROGRA~1\Wanadoo\GestMaj.exe GestionnaireInternet.exe
O4 - HKCU\..\Run: [msnmsgr] "H:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [MSMSGS] "H:\Program Files\Messenger\MSMSGS.EXE" /background
O4 - HKCU\..\Run: [start active] H:\DOCUME~1\Adem\APPLIC~1\DEADPI~1\Sixth Bias.exe
O4 - HKCU\..\Run: [Gadwin PrintScreen] H:\Program Files\Gadwin Systems\PrintScreen\PrintScreen.exe /nosplash
O4 - Startup: RocketDock.lnk = H:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe
O4 - Global Startup: TrayMin300.exe.lnk = ?
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - H:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - H:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - H:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - H:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} (Office Genuine Advantage Validation Tool) - http://download.microsoft.com/download/C/B/F/CBF23A2C-3E55-4664-BC5C-762780D79BA0/OGAControl.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
O16 - DPF: {1E3F1348-4370-4BBE-A67A-CC7ED824CA85} (Microsoft Genuine Advantage Self Support Tool) - http://download.microsoft.com/download/7/4/9/749b0dc5-2175-4d5b-a6dd-9c4bc923683e/Selfhelpcontrol.cab
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
O16 - DPF: {5C051655-FCD5-4969-9182-770EA5AA5565} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab56986.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
O16 - DPF: {6F15128C-E66A-490C-B848-5000B5ABEEAC} (HP Download Manager) - https://h20436.www2.hp.com/ediags/dex/secure/HPDEXAXO.cab
O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} - http://charon777.free.fr/plugins/hardwaredetection_2_0_4_12.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://cdn2.zone.msn.com/binFramework/v10/ZIntro.cab56649.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {D4323BF2-006A-4440-A2F5-27E3E7AB25F8} - http://3dlifeplayer.dl.3dvia.com/player/install/installer.exe
O16 - DPF: {DA758BB1-5F89-4465-975F-8D7179A4BCF3} (WheelofFortune Object) - http://messenger.zone.msn.com/binary/WoF.cab57176.cab
O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab56986.cab
O16 - DPF: {F8C5C0F1-D884-43EB-A5A0-9E1C4A102FA8} (GoPetsWeb Control) - https://secure.gopetslive.com/dev/GoPetsWeb.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - H:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - H:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - H:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe
voila j ai des pop up cid qui sortent on m adit demettre la alors voila:
Logfile of HijackThis v1.99.1
Scan saved at 20:10:32, on 14/03/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
H:\WINDOWS\System32\smss.exe
H:\WINDOWS\system32\winlogon.exe
H:\WINDOWS\system32\services.exe
H:\WINDOWS\system32\lsass.exe
H:\WINDOWS\system32\svchost.exe
H:\WINDOWS\System32\svchost.exe
H:\WINDOWS\Explorer.EXE
H:\WINDOWS\VM_STI.EXE
H:\WINDOWS\system32\ctfmon.exe
H:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
H:\Program Files\Internet Explorer\iexplore.exe
H:\Program Files\Messenger\MSMSGS.EXE
H:\Program Files\Gadwin Systems\PrintScreen\PrintScreen.exe
H:\Program Files\Philips\SPC 200NC PC Camera\TrayMin200.exe
H:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe
H:\Program Files\Internet Explorer\iexplore.exe
H:\WINDOWS\system32\spoolsv.exe
H:\WINDOWS\System32\svchost.exe
H:\WINDOWS\system32\wuauclt.exe
H:\WINDOWS\system32\msiexec.exe
H:\PROGRA~1\MOZILL~1\FIREFOX.EXE
H:\Documents and Settings\Adem\Bureau\LimeWire\LimeWire.exe
H:\WINDOWS\system32\wuauclt.exe
H:\Documents and Settings\Adem\Bureau\hijackthis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.118712.fr/sortir.html
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.search4top.net/040C/ie.asp
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: ASH Class - {014541E0-B57C-45E2-A24B-87A847C1E4A5} - H:\WINDOWS\system32\MSPCA32.DLL
O2 - BHO: SWEETIE - {1A0AADCD-3A72-4b5f-900F-E3BB5A838E2A} - H:\PROGRA~1\MACROG~1\SWEETI~1\toolbar.dll (file missing)
O2 - BHO: PU Class - {56EF9AEB-9F18-4CA9-9D41-60F24CEA4A80} - H:\WINDOWS\system32\MSPCA32.DLL
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - H:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - H:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O3 - Toolbar: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - H:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll (file missing)
O4 - HKLM\..\Run: [BigDogPath] H:\WINDOWS\VM_STI.EXE Philips SPC 200NC PC Camera
O4 - HKLM\..\Run: [1 mags 16 more] H:\Documents and Settings\All Users\Application Data\Admin Inter 1 Mags\ace four.exe
O4 - HKLM\..\Run: [LoadMSPCA] rundll32.exe H:\WINDOWS\system32\MSPCA32.DLL,MSPCA32
O4 - HKLM\..\Run: [SYSTEM] H:\WINDOWS\WIN16.vbs
O4 - HKLM\..\Run: [SunJavaUpdateSched] "H:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] H:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [WOOKIT] H:\PROGRA~1\Wanadoo\GestMaj.exe GestionnaireInternet.exe
O4 - HKCU\..\Run: [msnmsgr] "H:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [MSMSGS] "H:\Program Files\Messenger\MSMSGS.EXE" /background
O4 - HKCU\..\Run: [start active] H:\DOCUME~1\Adem\APPLIC~1\DEADPI~1\Sixth Bias.exe
O4 - HKCU\..\Run: [Gadwin PrintScreen] H:\Program Files\Gadwin Systems\PrintScreen\PrintScreen.exe /nosplash
O4 - Startup: RocketDock.lnk = H:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe
O4 - Global Startup: TrayMin300.exe.lnk = ?
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - H:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - H:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - H:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - H:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} (Office Genuine Advantage Validation Tool) - http://download.microsoft.com/download/C/B/F/CBF23A2C-3E55-4664-BC5C-762780D79BA0/OGAControl.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
O16 - DPF: {1E3F1348-4370-4BBE-A67A-CC7ED824CA85} (Microsoft Genuine Advantage Self Support Tool) - http://download.microsoft.com/download/7/4/9/749b0dc5-2175-4d5b-a6dd-9c4bc923683e/Selfhelpcontrol.cab
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
O16 - DPF: {5C051655-FCD5-4969-9182-770EA5AA5565} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab56986.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
O16 - DPF: {6F15128C-E66A-490C-B848-5000B5ABEEAC} (HP Download Manager) - https://h20436.www2.hp.com/ediags/dex/secure/HPDEXAXO.cab
O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} - http://charon777.free.fr/plugins/hardwaredetection_2_0_4_12.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://cdn2.zone.msn.com/binFramework/v10/ZIntro.cab56649.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {D4323BF2-006A-4440-A2F5-27E3E7AB25F8} - http://3dlifeplayer.dl.3dvia.com/player/install/installer.exe
O16 - DPF: {DA758BB1-5F89-4465-975F-8D7179A4BCF3} (WheelofFortune Object) - http://messenger.zone.msn.com/binary/WoF.cab57176.cab
O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab56986.cab
O16 - DPF: {F8C5C0F1-D884-43EB-A5A0-9E1C4A102FA8} (GoPetsWeb Control) - https://secure.gopetslive.com/dev/GoPetsWeb.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - H:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - H:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - H:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe
A voir également:
- Pop up cid
- Pop up mcafee - Accueil - Piratage
- Pop corn time - Télécharger - TV & Vidéo
- Serveur pop - Guide
- Augmenter débit freebox pop fibre ✓ - Forum Freebox
- Youtube sur freebox pop - Forum Téléviseurs
1 réponse
# Rapport Lopxp fait le 14/03/2008 à 20:21:50
# Exécuté dans : H:\Program Files\Lopxp
# Version 3.06 - Maj du 05/02/2008
Killing 'iexplore.exe'
"H:\Program Files\Internet Explorer\iexplore.exe" (1472)
"H:\Program Files\Internet Explorer\iexplore.exe" (1648)
========== Listing des dossiers Application Data
+- H:\Documents and Settings\Adem\Application Data
2008-02-01 à 18:59:55 - Adobe
2008-01-21 à 21:04:14 - AdobeUM
2007-12-22 à 19:48:41 - Apple Computer
2008-03-11 à 17:54:40 - BearShare
2008-02-14 à 09:11:45 - DeadPingCast
2008-03-01 à 21:45:33 - Flock
2007-12-16 à 11:02:32 - Google
2007-12-06 à 15:17:01 - Help
2008-02-17 à 14:25:01 - Identities
2008-01-06 à 15:42:38 - Jasc
2008-02-17 à 09:30:24 - Leadertech
2008-03-14 à 19:04:13 - LimeWire
2007-12-05 à 18:37:56 - Macromedia
2007-12-30 à 19:13:00 - Microsoft
2007-12-16 à 11:42:31 - Mozilla
2008-02-13 à 16:17:22 - Sun
2007-12-16 à 11:42:38 - Talkback
2008-02-07 à 19:22:25 - WinRAR
+- H:\Documents and Settings\Adem\Local Settings\Application Data
2008-02-09 à 21:07:29 - Adobe
2007-12-22 à 19:32:37 - Apple
2007-12-22 à 19:31:47 - Apple Computer
2008-03-10 à 17:25:56 - ApplicationHistory
2008-03-01 à 21:45:33 - Flock
2007-12-16 à 11:02:32 - Google
2007-12-06 à 15:17:01 - Help
2008-02-17 à 14:25:01 - Identities
2008-03-11 à 21:58:33 - Microsoft
2007-12-16 à 11:42:31 - Mozilla
+- H:\Documents and Settings\All Users\Application Data
2008-02-16 à 08:20:15 - Admin Inter 1 Mags
2008-02-13 à 10:20:24 - Adobe
2008-01-21 à 21:07:56 - Apple Computer
2007-12-30 à 13:25:35 - BUDFEBRCYG
2008-02-13 à 10:13:46 - Google
2008-02-05 à 10:04:18 - Messenger Plus!
2008-02-05 à 09:53:00 - Microsoft
2007-12-14 à 18:23:50 - Mozilla
2007-12-31 à 11:26:22 - RJDFEBRCYG
2008-01-06 à 15:17:35 - TEMP
2008-01-27 à 18:24:45 - Trymedia
2007-12-16 à 17:18:23 - Windows Genuine Advantage
2007-12-05 à 19:32:49 - Windows Live Toolbar
2008-02-19 à 13:16:13 - WinZip
2008-02-28 à 15:49:06 - WLInstaller
+- H:\Documents and Settings\Ozlem\Application Data
2008-02-07 à 18:53:38 - Adobe
2008-02-21 à 16:45:23 - BearShare
2008-02-16 à 08:20:27 - DeadPingCast
2007-12-07 à 22:07:37 - Google
2007-12-05 à 20:55:48 - Identities
2008-01-06 à 14:54:22 - Jasc
2007-12-05 à 21:00:03 - Macromedia
2008-02-07 à 20:13:00 - Microsoft
2007-12-16 à 11:57:48 - Mozilla
2007-12-16 à 11:58:02 - Talkback
2008-02-07 à 18:19:49 - WinRAR
+- H:\Documents and Settings\Ozlem\Local Settings\Application Data
2008-02-07 à 18:53:56 - Adobe
2008-02-15 à 09:39:54 - Apple
2007-12-07 à 22:07:37 - Google
2007-12-09 à 16:09:18 - Identities
2008-03-11 à 18:11:08 - Microsoft
2007-12-16 à 11:57:48 - Mozilla
========== Listing du dossier Program Files
+- H:\Program Files
2008-02-17 à 09:30:33 - Adobe
2007-12-26 à 08:33:56 - BearShare Applications
2007-12-10 à 19:32:52 - BocekYazilim
2008-01-06 à 00:02:40 - Bodom-Child - RaBBi
2008-01-08 à 21:07:35 - C2Media
2007-12-05 à 18:12:37 - ComPlus Applications
2008-02-16 à 08:19:58 - DeadPingCast
2008-01-21 à 21:12:47 - Disc2Phone
2008-03-14 à 18:59:36 - Fichiers communs
2008-03-05 à 19:45:59 - Flock
2008-01-30 à 13:31:04 - Free
2008-03-11 à 10:25:03 - Gadwin Systems
2008-02-14 à 09:03:58 - Google
2008-02-15 à 09:41:06 - InstallShield Installation Information
2008-03-06 à 15:01:37 - Internet Explorer
2008-01-06 à 14:30:45 - Jasc Software Inc
2008-03-14 à 19:01:27 - Java
2008-03-11 à 20:03:57 - JvPseudo
2008-03-14 à 19:22:58 - Lopxp
2007-12-08 à 10:50:07 - Macrogaming
2007-12-31 à 12:49:23 - Messenger
2008-01-08 à 21:07:32 - Messenger Plus! 3
2008-03-07 à 12:56:06 - Micro Application
2007-12-05 à 18:14:56 - microsoft frontpage
2007-12-30 à 13:10:28 - Movie Maker
2008-03-14 à 19:10:20 - Mozilla Firefox
2007-12-07 à 18:48:59 - MSECache
2007-12-05 à 18:12:18 - MSN
2007-12-05 à 18:12:10 - MSN Gaming Zone
2007-12-31 à 11:33:00 - NeoCheat
2007-12-30 à 19:32:10 - NetMeeting
2007-12-31 à 12:48:56 - Outlook Express
2007-12-05 à 19:23:15 - Philips
2008-01-31 à 16:57:50 - QuickTime
2008-02-11 à 11:19:15 - ReflexiveArcade
2007-12-05 à 18:14:05 - Services en ligne
2007-12-05 à 18:20:25 - Uninstall Information
2008-02-28 à 15:52:36 - Windows Live
2008-02-05 à 09:55:18 - Windows Live Toolbar
2008-02-27 à 12:34:04 - Windows Media Player
2008-03-06 à 13:03:13 - Windows NT
2007-12-05 à 19:32:39 - WindowsUpdate
2008-02-20 à 09:46:48 - WinRAR
2007-12-05 à 18:14:56 - xerox
========== Tâches planifiées
A5DF68899184E389.job: h:\docume~1\ozlem\applic~1\deadpi~1\Locks mp3 find.exe
========== Clés registre
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"1 mags 16 more"="H:\Documents and Settings\All Users\Application Data\Admin Inter 1 Mags\ace four.exe"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"start active"="H:\DOCUME~1\Adem\APPLIC~1\DEADPI~1\Sixth Bias.exe"
========== Bloqueur popups Internet Explorer
zonenxt.msn-ppe.com
zone.msn.com
netbios-wait.com
www.netbios-wait.com
mysearchnow.com
www.mysearchnow.com
host-domain-lookup.com
www.host-domain-lookup.com
searchweb2.com
www.searchweb2.com
========== Suggestion ( /!\ Nécessite une interprétation.) ==========
H:\Documents and Settings\Adem\Application Data\DeadPingCast
H:\Documents and Settings\All Users\Application Data\Admin Inter 1 Mags
H:\Documents and Settings\Ozlem\Application Data\DeadPingCast
H:\Program Files\C2Media
H:\Program Files\DeadPingCast
H:\WINDOWS\tasks\A5DF68899184E389.job
+- Registre:
REGEDIT4
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"1 mags 16 more"=-
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"start active"=-
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\New Windows\Allow]
"netbios-wait.com"=-
"www.netbios-wait.com"=-
"mysearchnow.com"=-
"www.mysearchnow.com"=-
"host-domain-lookup.com"=-
"www.host-domain-lookup.com"=-
"searchweb2.com"=-
"www.searchweb2.com"=-
- Fin du rapport -
# Exécuté dans : H:\Program Files\Lopxp
# Version 3.06 - Maj du 05/02/2008
Killing 'iexplore.exe'
"H:\Program Files\Internet Explorer\iexplore.exe" (1472)
"H:\Program Files\Internet Explorer\iexplore.exe" (1648)
========== Listing des dossiers Application Data
+- H:\Documents and Settings\Adem\Application Data
2008-02-01 à 18:59:55 - Adobe
2008-01-21 à 21:04:14 - AdobeUM
2007-12-22 à 19:48:41 - Apple Computer
2008-03-11 à 17:54:40 - BearShare
2008-02-14 à 09:11:45 - DeadPingCast
2008-03-01 à 21:45:33 - Flock
2007-12-16 à 11:02:32 - Google
2007-12-06 à 15:17:01 - Help
2008-02-17 à 14:25:01 - Identities
2008-01-06 à 15:42:38 - Jasc
2008-02-17 à 09:30:24 - Leadertech
2008-03-14 à 19:04:13 - LimeWire
2007-12-05 à 18:37:56 - Macromedia
2007-12-30 à 19:13:00 - Microsoft
2007-12-16 à 11:42:31 - Mozilla
2008-02-13 à 16:17:22 - Sun
2007-12-16 à 11:42:38 - Talkback
2008-02-07 à 19:22:25 - WinRAR
+- H:\Documents and Settings\Adem\Local Settings\Application Data
2008-02-09 à 21:07:29 - Adobe
2007-12-22 à 19:32:37 - Apple
2007-12-22 à 19:31:47 - Apple Computer
2008-03-10 à 17:25:56 - ApplicationHistory
2008-03-01 à 21:45:33 - Flock
2007-12-16 à 11:02:32 - Google
2007-12-06 à 15:17:01 - Help
2008-02-17 à 14:25:01 - Identities
2008-03-11 à 21:58:33 - Microsoft
2007-12-16 à 11:42:31 - Mozilla
+- H:\Documents and Settings\All Users\Application Data
2008-02-16 à 08:20:15 - Admin Inter 1 Mags
2008-02-13 à 10:20:24 - Adobe
2008-01-21 à 21:07:56 - Apple Computer
2007-12-30 à 13:25:35 - BUDFEBRCYG
2008-02-13 à 10:13:46 - Google
2008-02-05 à 10:04:18 - Messenger Plus!
2008-02-05 à 09:53:00 - Microsoft
2007-12-14 à 18:23:50 - Mozilla
2007-12-31 à 11:26:22 - RJDFEBRCYG
2008-01-06 à 15:17:35 - TEMP
2008-01-27 à 18:24:45 - Trymedia
2007-12-16 à 17:18:23 - Windows Genuine Advantage
2007-12-05 à 19:32:49 - Windows Live Toolbar
2008-02-19 à 13:16:13 - WinZip
2008-02-28 à 15:49:06 - WLInstaller
+- H:\Documents and Settings\Ozlem\Application Data
2008-02-07 à 18:53:38 - Adobe
2008-02-21 à 16:45:23 - BearShare
2008-02-16 à 08:20:27 - DeadPingCast
2007-12-07 à 22:07:37 - Google
2007-12-05 à 20:55:48 - Identities
2008-01-06 à 14:54:22 - Jasc
2007-12-05 à 21:00:03 - Macromedia
2008-02-07 à 20:13:00 - Microsoft
2007-12-16 à 11:57:48 - Mozilla
2007-12-16 à 11:58:02 - Talkback
2008-02-07 à 18:19:49 - WinRAR
+- H:\Documents and Settings\Ozlem\Local Settings\Application Data
2008-02-07 à 18:53:56 - Adobe
2008-02-15 à 09:39:54 - Apple
2007-12-07 à 22:07:37 - Google
2007-12-09 à 16:09:18 - Identities
2008-03-11 à 18:11:08 - Microsoft
2007-12-16 à 11:57:48 - Mozilla
========== Listing du dossier Program Files
+- H:\Program Files
2008-02-17 à 09:30:33 - Adobe
2007-12-26 à 08:33:56 - BearShare Applications
2007-12-10 à 19:32:52 - BocekYazilim
2008-01-06 à 00:02:40 - Bodom-Child - RaBBi
2008-01-08 à 21:07:35 - C2Media
2007-12-05 à 18:12:37 - ComPlus Applications
2008-02-16 à 08:19:58 - DeadPingCast
2008-01-21 à 21:12:47 - Disc2Phone
2008-03-14 à 18:59:36 - Fichiers communs
2008-03-05 à 19:45:59 - Flock
2008-01-30 à 13:31:04 - Free
2008-03-11 à 10:25:03 - Gadwin Systems
2008-02-14 à 09:03:58 - Google
2008-02-15 à 09:41:06 - InstallShield Installation Information
2008-03-06 à 15:01:37 - Internet Explorer
2008-01-06 à 14:30:45 - Jasc Software Inc
2008-03-14 à 19:01:27 - Java
2008-03-11 à 20:03:57 - JvPseudo
2008-03-14 à 19:22:58 - Lopxp
2007-12-08 à 10:50:07 - Macrogaming
2007-12-31 à 12:49:23 - Messenger
2008-01-08 à 21:07:32 - Messenger Plus! 3
2008-03-07 à 12:56:06 - Micro Application
2007-12-05 à 18:14:56 - microsoft frontpage
2007-12-30 à 13:10:28 - Movie Maker
2008-03-14 à 19:10:20 - Mozilla Firefox
2007-12-07 à 18:48:59 - MSECache
2007-12-05 à 18:12:18 - MSN
2007-12-05 à 18:12:10 - MSN Gaming Zone
2007-12-31 à 11:33:00 - NeoCheat
2007-12-30 à 19:32:10 - NetMeeting
2007-12-31 à 12:48:56 - Outlook Express
2007-12-05 à 19:23:15 - Philips
2008-01-31 à 16:57:50 - QuickTime
2008-02-11 à 11:19:15 - ReflexiveArcade
2007-12-05 à 18:14:05 - Services en ligne
2007-12-05 à 18:20:25 - Uninstall Information
2008-02-28 à 15:52:36 - Windows Live
2008-02-05 à 09:55:18 - Windows Live Toolbar
2008-02-27 à 12:34:04 - Windows Media Player
2008-03-06 à 13:03:13 - Windows NT
2007-12-05 à 19:32:39 - WindowsUpdate
2008-02-20 à 09:46:48 - WinRAR
2007-12-05 à 18:14:56 - xerox
========== Tâches planifiées
A5DF68899184E389.job: h:\docume~1\ozlem\applic~1\deadpi~1\Locks mp3 find.exe
========== Clés registre
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"1 mags 16 more"="H:\Documents and Settings\All Users\Application Data\Admin Inter 1 Mags\ace four.exe"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"start active"="H:\DOCUME~1\Adem\APPLIC~1\DEADPI~1\Sixth Bias.exe"
========== Bloqueur popups Internet Explorer
zonenxt.msn-ppe.com
zone.msn.com
netbios-wait.com
www.netbios-wait.com
mysearchnow.com
www.mysearchnow.com
host-domain-lookup.com
www.host-domain-lookup.com
searchweb2.com
www.searchweb2.com
========== Suggestion ( /!\ Nécessite une interprétation.) ==========
H:\Documents and Settings\Adem\Application Data\DeadPingCast
H:\Documents and Settings\All Users\Application Data\Admin Inter 1 Mags
H:\Documents and Settings\Ozlem\Application Data\DeadPingCast
H:\Program Files\C2Media
H:\Program Files\DeadPingCast
H:\WINDOWS\tasks\A5DF68899184E389.job
+- Registre:
REGEDIT4
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"1 mags 16 more"=-
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"start active"=-
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\New Windows\Allow]
"netbios-wait.com"=-
"www.netbios-wait.com"=-
"mysearchnow.com"=-
"www.mysearchnow.com"=-
"host-domain-lookup.com"=-
"www.host-domain-lookup.com"=-
"searchweb2.com"=-
"www.searchweb2.com"=-
- Fin du rapport -