A voir également:
- VIRUS CID
- Virus mcafee - Accueil - Piratage
- Virus informatique - Guide
- Panda anti virus gratuit - Télécharger - Antivirus & Antimalwares
- Undisclosed-recipients virus - Guide
- Ordinateur bloqué virus - Accueil - Arnaque
6 réponses
CID est un Malware voici le lien pour le supprimer...
http://www.commentcamarche.net/faq/sujet 5996 comment bloquer les fenetres cid#1er methode de desinfection suppression manuelle
http://www.commentcamarche.net/faq/sujet 5996 comment bloquer les fenetres cid#1er methode de desinfection suppression manuelle
merci a toi voila mon rapport quelqu'un peut me dire quoi faire svp ? merci d'avance ;-)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:24:07, on 26/03/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16608)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\ehome\ehtray.exe
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\vsnp2std.exe
C:\WINDOWS\AGRSMMSG.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\System Control Manager\MGSysCtrl.exe
C:\Program Files\MSI\Live Update 3\LMonitor.exe
C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe
C:\Program Files\Club-Internet\SurfExpress\PxUi.exe
C:\Program Files\BroadJump\Client Foundation\CFD.exe
C:\Program Files\Club-Internet\Agent Wi-Fi V2.1\McciTrayApp.exe
C:\PROGRA~1\CLUB-I~1\LECOMP~1\SMARTB~1\MotiveSB.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Messenger\Msmsgs.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\System Control Manager\edd.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\o2flash.exe
C:\Program Files\CyberLink\Shared Files\RichVideo.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\eHome\ehmsas.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\WINDOWS\system32\wuauclt.exe
C:\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer fourni par Club Internet
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=proxy.club-internet.fr:8080
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O1 - Hosts: ::1 localhost
O1 - Hosts: 91.121.124.125 eu.logon.worldofwarcraft.com
O2 - BHO: btorbit.com - {000123B4-9B42-4900-B3F7-F4B073EFC214} - C:\Program Files\Orbitdownloader\orbitcth.dll
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O2 - BHO: ProxyConn Browser Helper Object - {7D9E713D-0388-4384-BDD8-2A42EB1C4F04} - C:\Program Files\Club-Internet\SurfExpress\PrxcnBrsrCtrl.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: (no name) - {fb0aab50-907e-4b23-9b35-8fd1a96578e3} - C:\WINDOWS\system32\mgmodc.dll (file missing)
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [snp2std] C:\WINDOWS\vsnp2std.exe
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [MGSysCtrl] C:\Program Files\System Control Manager\MGSysCtrl.exe
O4 - HKLM\..\Run: [LiveMonitor] C:\Program Files\MSI\Live Update 3\LMonitor.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"
O4 - HKLM\..\Run: [PxClient.exe] "C:\Program Files\Club-Internet\SurfExpress\PxUi.exe" /Automation
O4 - HKLM\..\Run: [BJCFD] C:\Program Files\BroadJump\Client Foundation\CFD.exe
O4 - HKLM\..\Run: [Club-Internet_McciTrayApp] C:\Program Files\Club-Internet\Agent Wi-Fi V2.1\McciTrayApp.exe
O4 - HKLM\..\Run: [Motive SmartBridge] C:\PROGRA~1\CLUB-I~1\LECOMP~1\SMARTB~1\MotiveSB.exe
O4 - HKLM\..\Run: [NI.UWAS6V_0001_N91M2208] "c:\documents and settings\david\application data\winantispyware2006freeinstall_fr[1].exe" -nag
O4 - HKLM\..\Run: [rtasks] C:\Program Files\ProtectionAssuree\rtasks.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [aizqlored] c:\windows\system32\aizqlored.exe aizqlored
O4 - HKLM\..\Run: [Flag Owns Live Grim] C:\Documents and Settings\All Users\Application Data\Software rule flag owns\Fast Intra.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Bind enc] C:\DOCUME~1\DAVID~1.AUD\APPLIC~1\ARMYLI~1\Delete Mfcd For.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\Msmsgs.exe" /background
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: LE COMPAGNON CLUB.lnk = C:\Program Files\Club-Internet\Le Compagnon Club\bin\matcli.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O4 - Global Startup: Orbit.lnk = C:\Program Files\Orbitdownloader\orbitdm.exe
O8 - Extra context menu item: &Download by Orbit - res://C:\Program Files\Orbitdownloader\orbitmxt.dll/201
O8 - Extra context menu item: &Grab video by Orbit - res://C:\Program Files\Orbitdownloader\orbitmxt.dll/204
O8 - Extra context menu item: Do&wnload selected by Orbit - res://C:\Program Files\Orbitdownloader\orbitmxt.dll/203
O8 - Extra context menu item: Down&load all by Orbit - res://C:\Program Files\Orbitdownloader\orbitmxt.dll/202
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: @C:\Program Files\Messenger\Msgslang.dll,-61144 - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files\Messenger\Msgslang.dll,-61144 - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - http://download.divx.com/webplayer/stage6/windows/AutoDLDivXWebPlayerInstaller.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://messenger.zone.msn.com/binary/ZIntro.cab56649.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {D4323BF2-006A-4440-A2F5-27E3E7AB25F8} (Virtools WebPlayer Class) - http://3dlifeplayer.dl.3dvia.com/player/install/installer.exe
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} - http://www.gamenext.fr/online/online2/peggle/popcaploader_v10_en.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{3D665656-1C19-4A76-8941-4A1767B74DA7}: NameServer = 194.117.200.10,194.117.200.15
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: c:\windows\system32\pmnlihg.dll C:\PROGRA~1\Google\GOOGLE~4\GOEC62~1.DLL
O20 - Winlogon Notify: mgmodc - mgmodc.dll (file missing)
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Firebird Server - MAGIX Instance (FirebirdServerMAGIXInstance) - Unknown owner - C:\Documents and Settings\David\Common\Database\bin\fbserver.exe (file missing)
O23 - Service: GoogleDesktopManager - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: SCM Driver Daemon (NishService) - Unknown owner - C:\Program Files\System Control Manager\edd.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: O2Micro Flash Memory (O2Flash) - Unknown owner - C:\WINDOWS\system32\o2flash.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Program Files\Spyware Doctor\svcntaux.exe
O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Program Files\Spyware Doctor\swdsvc.exe
O23 - Service: Service Messenger Sharing Folders USN Journal Reader (usnjsvc) - Unknown owner - C:\Program Files\Windows Live\Messenger\usnsvc.exe (file missing)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:24:07, on 26/03/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16608)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\ehome\ehtray.exe
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\vsnp2std.exe
C:\WINDOWS\AGRSMMSG.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\System Control Manager\MGSysCtrl.exe
C:\Program Files\MSI\Live Update 3\LMonitor.exe
C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe
C:\Program Files\Club-Internet\SurfExpress\PxUi.exe
C:\Program Files\BroadJump\Client Foundation\CFD.exe
C:\Program Files\Club-Internet\Agent Wi-Fi V2.1\McciTrayApp.exe
C:\PROGRA~1\CLUB-I~1\LECOMP~1\SMARTB~1\MotiveSB.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Messenger\Msmsgs.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\System Control Manager\edd.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\o2flash.exe
C:\Program Files\CyberLink\Shared Files\RichVideo.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\eHome\ehmsas.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\WINDOWS\system32\wuauclt.exe
C:\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer fourni par Club Internet
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=proxy.club-internet.fr:8080
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O1 - Hosts: ::1 localhost
O1 - Hosts: 91.121.124.125 eu.logon.worldofwarcraft.com
O2 - BHO: btorbit.com - {000123B4-9B42-4900-B3F7-F4B073EFC214} - C:\Program Files\Orbitdownloader\orbitcth.dll
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O2 - BHO: ProxyConn Browser Helper Object - {7D9E713D-0388-4384-BDD8-2A42EB1C4F04} - C:\Program Files\Club-Internet\SurfExpress\PrxcnBrsrCtrl.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: (no name) - {fb0aab50-907e-4b23-9b35-8fd1a96578e3} - C:\WINDOWS\system32\mgmodc.dll (file missing)
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [snp2std] C:\WINDOWS\vsnp2std.exe
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [MGSysCtrl] C:\Program Files\System Control Manager\MGSysCtrl.exe
O4 - HKLM\..\Run: [LiveMonitor] C:\Program Files\MSI\Live Update 3\LMonitor.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"
O4 - HKLM\..\Run: [PxClient.exe] "C:\Program Files\Club-Internet\SurfExpress\PxUi.exe" /Automation
O4 - HKLM\..\Run: [BJCFD] C:\Program Files\BroadJump\Client Foundation\CFD.exe
O4 - HKLM\..\Run: [Club-Internet_McciTrayApp] C:\Program Files\Club-Internet\Agent Wi-Fi V2.1\McciTrayApp.exe
O4 - HKLM\..\Run: [Motive SmartBridge] C:\PROGRA~1\CLUB-I~1\LECOMP~1\SMARTB~1\MotiveSB.exe
O4 - HKLM\..\Run: [NI.UWAS6V_0001_N91M2208] "c:\documents and settings\david\application data\winantispyware2006freeinstall_fr[1].exe" -nag
O4 - HKLM\..\Run: [rtasks] C:\Program Files\ProtectionAssuree\rtasks.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [aizqlored] c:\windows\system32\aizqlored.exe aizqlored
O4 - HKLM\..\Run: [Flag Owns Live Grim] C:\Documents and Settings\All Users\Application Data\Software rule flag owns\Fast Intra.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Bind enc] C:\DOCUME~1\DAVID~1.AUD\APPLIC~1\ARMYLI~1\Delete Mfcd For.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\Msmsgs.exe" /background
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: LE COMPAGNON CLUB.lnk = C:\Program Files\Club-Internet\Le Compagnon Club\bin\matcli.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O4 - Global Startup: Orbit.lnk = C:\Program Files\Orbitdownloader\orbitdm.exe
O8 - Extra context menu item: &Download by Orbit - res://C:\Program Files\Orbitdownloader\orbitmxt.dll/201
O8 - Extra context menu item: &Grab video by Orbit - res://C:\Program Files\Orbitdownloader\orbitmxt.dll/204
O8 - Extra context menu item: Do&wnload selected by Orbit - res://C:\Program Files\Orbitdownloader\orbitmxt.dll/203
O8 - Extra context menu item: Down&load all by Orbit - res://C:\Program Files\Orbitdownloader\orbitmxt.dll/202
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: @C:\Program Files\Messenger\Msgslang.dll,-61144 - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files\Messenger\Msgslang.dll,-61144 - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - http://download.divx.com/webplayer/stage6/windows/AutoDLDivXWebPlayerInstaller.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://messenger.zone.msn.com/binary/ZIntro.cab56649.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {D4323BF2-006A-4440-A2F5-27E3E7AB25F8} (Virtools WebPlayer Class) - http://3dlifeplayer.dl.3dvia.com/player/install/installer.exe
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} - http://www.gamenext.fr/online/online2/peggle/popcaploader_v10_en.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{3D665656-1C19-4A76-8941-4A1767B74DA7}: NameServer = 194.117.200.10,194.117.200.15
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: c:\windows\system32\pmnlihg.dll C:\PROGRA~1\Google\GOOGLE~4\GOEC62~1.DLL
O20 - Winlogon Notify: mgmodc - mgmodc.dll (file missing)
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Firebird Server - MAGIX Instance (FirebirdServerMAGIXInstance) - Unknown owner - C:\Documents and Settings\David\Common\Database\bin\fbserver.exe (file missing)
O23 - Service: GoogleDesktopManager - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: SCM Driver Daemon (NishService) - Unknown owner - C:\Program Files\System Control Manager\edd.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: O2Micro Flash Memory (O2Flash) - Unknown owner - C:\WINDOWS\system32\o2flash.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Program Files\Spyware Doctor\svcntaux.exe
O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Program Files\Spyware Doctor\swdsvc.exe
O23 - Service: Service Messenger Sharing Folders USN Journal Reader (usnjsvc) - Unknown owner - C:\Program Files\Windows Live\Messenger\usnsvc.exe (file missing)
O4 - HKCU\..\Run: [Bind enc] C:\DOCUME~1\DAVID~1.AUD\APPLIC~1\ARMYLI~1\Delete Mfcd For.exe
--O4 - HKLM\..\Run: [Flag Owns Live Grim] C:\Documents and Settings\All Users\Application Data\Software rule flag owns\Fast Intra.exe
Télécharge LopXp sur le net puis Supprimes ces 2 lignes avec hijackthis . Ensuite utilise LOPXP comme indiqué dans le lien... A+
A bien vouloir faire on fini parfois... par REUSSIR
--O4 - HKLM\..\Run: [Flag Owns Live Grim] C:\Documents and Settings\All Users\Application Data\Software rule flag owns\Fast Intra.exe
Télécharge LopXp sur le net puis Supprimes ces 2 lignes avec hijackthis . Ensuite utilise LOPXP comme indiqué dans le lien... A+
A bien vouloir faire on fini parfois... par REUSSIR
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
# Rapport Lopxp fait le 26/03/2008 à 19:18:32
# Exécuté dans : C:\Program Files\Lopxp
# Version 3.06 - Maj du 05/02/2008
Killing 'iexplore.exe'
"C:\Program Files\Internet Explorer\IEXPLORE.EXE" (1440)
"C:\Program Files\Internet Explorer\IEXPLORE.EXE" (2000)
"C:\Program Files\Internet Explorer\iexplore.exe" (3124)
========== Listing des dossiers Application Data
+- C:\Documents and Settings\Administrateur\Application Data
2006-11-07 à 09:41:35 - Identities
2006-11-07 à 13:17:42 - Microsoft
+- C:\Documents and Settings\Administrateur\Local Settings\Application Data
2006-11-07 à 13:43:45 - ApplicationHistory
2006-11-07 à 09:45:37 - Microsoft
+- C:\Documents and Settings\All Users\Application Data
2007-06-02 à 09:16:04 - Adobe
2007-10-12 à 19:41:30 - Apple
2007-10-03 à 20:49:18 - Apple Computer
2008-03-24 à 09:49:55 - AVS4YOU
2007-08-04 à 13:19:03 - CyberLink
2007-06-20 à 09:30:30 - Google
2007-05-06 à 20:08:01 - MAGIX
2008-03-17 à 17:38:16 - Messenger Plus!
2008-03-15 à 18:07:42 - Messenger Plus!(2)
2007-06-26 à 15:59:16 - Microsoft
2008-03-17 à 17:35:25 - Microsoft Corporation
2007-05-12 à 10:28:58 - Motive
2007-05-07 à 16:27:15 - nView_Profiles
2007-09-08 à 21:05:30 - POP3Profiles
2007-11-08 à 21:49:57 - PopCap
2007-11-21 à 16:06:16 - Skype
2008-02-14 à 16:31:08 - Software rule flag owns
2007-06-13 à 05:19:57 - Symantec
2008-03-17 à 17:33:59 - TEMP
2007-05-14 à 17:47:36 - Windows Genuine Advantage
2007-05-12 à 12:24:25 - Windows Live Toolbar
2008-03-17 à 17:38:15 - WindowsLiveInstaller
2008-03-19 à 17:50:38 - WLInstaller
2008-03-15 à 18:09:40 - WLInstaller(2)
2007-12-13 à 21:10:49 - Yahoo! Companion
+- C:\Documents and Settings\chlo‚\Application Data
2008-03-22 à 09:57:19 - Adobe
2008-03-22 à 09:55:02 - Google
2006-11-07 à 09:41:35 - Identities
2008-03-22 à 09:55:15 - Microsoft
2008-03-23 à 18:36:44 - Orbit
2008-03-22 à 09:55:01 - Real
2008-03-22 à 09:55:02 - Yahoo!
+- C:\Documents and Settings\chlo‚\Local Settings\Application Data
2006-11-07 à 13:43:45 - ApplicationHistory
2008-03-22 à 09:55:02 - Google
2008-03-22 à 09:47:55 - Microsoft
+- C:\Documents and Settings\David\Application Data
2007-06-01 à 18:53:44 - Adobe
2007-06-01 à 19:00:25 - AdobeUM
2007-06-06 à 09:38:35 - aMule
2007-10-03 à 20:50:00 - Apple Computer
2007-08-04 à 13:18:24 - CyberLink
2007-10-23 à 20:25:11 - Google
2006-11-07 à 09:41:35 - Identities
2007-11-23 à 06:38:57 - LimeWire
2007-05-25 à 19:30:29 - Macromedia
2007-05-07 à 16:46:46 - MAGIX
2008-01-10 à 18:56:47 - Microsoft
+- C:\Documents and Settings\David.AUDIRAC\Application Data
2008-01-30 à 18:32:08 - Adobe
2008-02-03 à 21:14:00 - AdobeUM
2008-02-14 à 16:31:19 - army lite meal
2008-03-24 à 09:49:54 - AVS4YOU
2008-02-15 à 16:39:41 - DivX
2008-02-16 à 20:46:12 - dvdcss
2008-01-04 à 20:09:43 - Google
2006-11-07 à 09:41:35 - Identities
2008-02-10 à 19:41:39 - iMesh
2008-03-19 à 18:26:20 - LimeWire
2007-11-24 à 19:33:41 - Macromedia
2008-03-21 à 20:06:12 - Microsoft
2007-11-24 à 11:46:47 - Motive
2007-11-24 à 15:43:35 - Mozilla
2008-03-26 à 18:14:31 - Orbit
2008-02-08 à 15:50:57 - PC Tools
2008-02-05 à 20:50:17 - Real
2008-03-25 à 17:11:35 - Skype
2008-03-24 à 15:01:24 - skypePM
2008-01-06 à 19:35:57 - Sun
2008-01-14 à 17:01:27 - teamspeak2
2007-11-24 à 12:45:29 - vlc
2007-12-13 à 21:10:49 - Yahoo!
+- C:\Documents and Settings\David.AUDIRAC\Local Settings\Application Data
2007-11-25 à 18:09:49 - Adobe
2007-12-31 à 15:36:07 - Apple Computer
2008-03-17 à 17:36:55 - ApplicationHistory
2008-02-05 à 20:33:55 - Google
2008-03-19 à 17:54:40 - Microsoft
2007-11-24 à 15:43:35 - Mozilla
2007-12-07 à 14:51:21 - PCHealth
========== Listing du dossier Program Files
+- C:\Program Files
2006-11-07 à 13:04:36 - Adobe
2007-06-11 à 18:48:59 - Alwil Software
2007-10-12 à 19:41:31 - Apple Software Update
2007-10-12 à 19:41:29 - Apple Software Update(2)
2008-02-14 à 16:30:43 - army lite meal
2008-03-24 à 09:49:35 - AVS4YOU
2007-05-12 à 10:12:46 - BroadJump
2007-11-07 à 10:08:03 - Club-Internet
2007-05-24 à 13:34:26 - Common Files
2006-11-07 à 09:37:38 - ComPlus Applications
2007-08-19 à 18:46:23 - CyberLink
2006-11-07 à 12:47:44 - DIFX
2008-02-16 à 11:17:44 - DivX
2008-03-14 à 08:54:24 - Fichiers communs
2008-02-16 à 20:55:28 - FusionSoft DVD Player XP
2008-02-17 à 20:55:48 - Golf Adventure Galaxy
2008-03-18 à 21:39:02 - Google
2008-03-20 à 20:26:55 - GUILD WARS
2008-02-02 à 20:24:16 - HHD Software
2008-02-10 à 19:41:12 - iMesh Applications
2008-02-24 à 15:16:14 - InstallShield Installation Information
2008-02-14 à 16:24:30 - Internet Explorer
2007-10-03 à 20:49:27 - iPod
2007-10-12 à 19:41:23 - iTunes
2008-03-17 à 18:16:01 - Java
2007-05-28 à 15:16:51 - Kazaa
2007-10-20 à 20:00:12 - KONAMI
2008-02-13 à 17:35:56 - LimeWire
2007-09-01 à 08:47:00 - LimeWire Download Accelerator
2008-03-26 à 18:18:40 - Lopxp
2008-03-21 à 20:05:32 - Messenger
2007-05-14 à 17:13:43 - Microsoft CAPICOM 2.1.0.2
2006-11-07 à 09:41:47 - microsoft frontpage
2007-05-03 à 10:25:20 - Microsoft Office
2008-03-15 à 18:12:19 - Microsoft SQL Server Compact Edition
2007-12-12 à 15:57:25 - Microsoft Visual Studio
2008-03-17 à 17:35:29 - Microsoft Windows Vista Upgrade Advisor
2007-05-12 à 11:26:20 - Motive
2006-11-07 à 09:39:06 - Movie Maker
2008-03-17 à 17:40:17 - Mozilla Firefox
2008-03-18 à 22:04:32 - MSECACHE
2006-11-07 à 14:06:14 - MSI
2008-03-17 à 17:34:56 - MSN
2006-11-07 à 09:36:32 - MSN Gaming Zone
2007-05-14 à 17:09:56 - MSXML 4.0
2008-02-17 à 20:56:13 - Naval Strike
2007-05-23 à 13:42:06 - NetMeeting
2008-02-01 à 14:00:01 - Norton Security Scan
2008-03-18 à 22:05:23 - Online Services
2008-03-26 à 06:47:19 - Orbitdownloader
2007-06-13 à 14:20:04 - Outlook Express
2008-03-17 à 17:40:03 - Philips
2008-03-21 à 21:38:26 - PhotoFiltre Studio
2008-02-06 à 11:43:48 - Picasa2
2007-09-22 à 18:09:39 - QuickTime
2008-02-05 à 20:44:43 - Real
2006-11-07 à 12:55:13 - Realtek
2008-02-17 à 20:55:34 - ReflexiveArcade
2006-11-07 à 09:39:31 - Services en ligne
2007-06-02 à 09:17:48 - Shareaza
2007-11-21 à 16:06:18 - Skype
2007-05-03 à 10:22:11 - Snapshot Viewer
2007-11-23 à 20:04:39 - SP2 Connection Patcher
2008-03-17 à 17:40:08 - Spyware Doctor
2008-03-17 à 17:40:18 - Sun
2006-11-07 à 13:01:24 - System Control Manager
2008-01-12 à 17:15:09 - Teamspeak2_RC2
2007-09-08 à 21:00:22 - Ubisoft
2006-11-07 à 09:45:23 - Uninstall Information
2008-02-13 à 17:37:02 - Veoh Networks
2007-08-19 à 18:51:31 - VideoLAN
2007-11-07 à 14:21:59 - Virtools
2008-01-12 à 19:08:21 - WebMediaPlayer
2007-11-07 à 17:37:51 - Windows Journal Viewer
2008-03-19 à 17:52:34 - Windows Live
2008-03-17 à 17:38:15 - Windows Live Safety Center
2007-12-12 à 17:51:14 - Windows Media Connect 2
2008-02-05 à 20:47:48 - Windows Media Player
2006-11-07 à 09:36:29 - Windows NT
2006-11-07 à 09:37:03 - Windows Plus
2006-11-07 à 09:39:36 - WindowsUpdate
2006-11-07 à 09:41:47 - xerox
2007-12-13 à 21:10:21 - Yahoo!
========== Tâches planifiées
A2B72ED99184A0C5.job: c:\docume~1\david~1.aud\applic~1\armyli~1\oozeflapbone.exe
AppleSoftwareUpdate.job: C:\Program Files\Apple Software Update\SoftwareUpdate.exe -task
Norton Security Scan.job: C:\Program Files\Norton Security Scan\Nss.exe /scan-full /scheduled
{5C03077C-726D-4410-B733-FA85ACFBC5B6}_AUDIRAC_REGINE.job: C:\WINDOWS\system32\mobsync.exe /Schedule="{5C03077C-726D-4410-B733-FA85ACFBC5B6}_AUDIRAC_REGINE"
========== Clés registre
========== Bloqueur popups Internet Explorer
zonenxt.msn-ppe.com
zone.msn.com
host-domain-lookup.com
www.host-domain-lookup.com
webmessenger.msn.com
========== Suggestion ( /!\ Nécessite une interprétation.) ==========
C:\Documents and Settings\All Users\Application Data\Software rule flag owns
C:\Documents and Settings\David.AUDIRAC\Application Data\army lite meal
C:\Program Files\army lite meal
C:\WINDOWS\tasks\A2B72ED99184A0C5.job
C:\Program Files\Orbitdownloader
+- Registre:
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\New Windows\Allow]
"host-domain-lookup.com"=-
"www.host-domain-lookup.com"=-
- Fin du rapport -
Voila ce que j'obtiens
# Exécuté dans : C:\Program Files\Lopxp
# Version 3.06 - Maj du 05/02/2008
Killing 'iexplore.exe'
"C:\Program Files\Internet Explorer\IEXPLORE.EXE" (1440)
"C:\Program Files\Internet Explorer\IEXPLORE.EXE" (2000)
"C:\Program Files\Internet Explorer\iexplore.exe" (3124)
========== Listing des dossiers Application Data
+- C:\Documents and Settings\Administrateur\Application Data
2006-11-07 à 09:41:35 - Identities
2006-11-07 à 13:17:42 - Microsoft
+- C:\Documents and Settings\Administrateur\Local Settings\Application Data
2006-11-07 à 13:43:45 - ApplicationHistory
2006-11-07 à 09:45:37 - Microsoft
+- C:\Documents and Settings\All Users\Application Data
2007-06-02 à 09:16:04 - Adobe
2007-10-12 à 19:41:30 - Apple
2007-10-03 à 20:49:18 - Apple Computer
2008-03-24 à 09:49:55 - AVS4YOU
2007-08-04 à 13:19:03 - CyberLink
2007-06-20 à 09:30:30 - Google
2007-05-06 à 20:08:01 - MAGIX
2008-03-17 à 17:38:16 - Messenger Plus!
2008-03-15 à 18:07:42 - Messenger Plus!(2)
2007-06-26 à 15:59:16 - Microsoft
2008-03-17 à 17:35:25 - Microsoft Corporation
2007-05-12 à 10:28:58 - Motive
2007-05-07 à 16:27:15 - nView_Profiles
2007-09-08 à 21:05:30 - POP3Profiles
2007-11-08 à 21:49:57 - PopCap
2007-11-21 à 16:06:16 - Skype
2008-02-14 à 16:31:08 - Software rule flag owns
2007-06-13 à 05:19:57 - Symantec
2008-03-17 à 17:33:59 - TEMP
2007-05-14 à 17:47:36 - Windows Genuine Advantage
2007-05-12 à 12:24:25 - Windows Live Toolbar
2008-03-17 à 17:38:15 - WindowsLiveInstaller
2008-03-19 à 17:50:38 - WLInstaller
2008-03-15 à 18:09:40 - WLInstaller(2)
2007-12-13 à 21:10:49 - Yahoo! Companion
+- C:\Documents and Settings\chlo‚\Application Data
2008-03-22 à 09:57:19 - Adobe
2008-03-22 à 09:55:02 - Google
2006-11-07 à 09:41:35 - Identities
2008-03-22 à 09:55:15 - Microsoft
2008-03-23 à 18:36:44 - Orbit
2008-03-22 à 09:55:01 - Real
2008-03-22 à 09:55:02 - Yahoo!
+- C:\Documents and Settings\chlo‚\Local Settings\Application Data
2006-11-07 à 13:43:45 - ApplicationHistory
2008-03-22 à 09:55:02 - Google
2008-03-22 à 09:47:55 - Microsoft
+- C:\Documents and Settings\David\Application Data
2007-06-01 à 18:53:44 - Adobe
2007-06-01 à 19:00:25 - AdobeUM
2007-06-06 à 09:38:35 - aMule
2007-10-03 à 20:50:00 - Apple Computer
2007-08-04 à 13:18:24 - CyberLink
2007-10-23 à 20:25:11 - Google
2006-11-07 à 09:41:35 - Identities
2007-11-23 à 06:38:57 - LimeWire
2007-05-25 à 19:30:29 - Macromedia
2007-05-07 à 16:46:46 - MAGIX
2008-01-10 à 18:56:47 - Microsoft
+- C:\Documents and Settings\David.AUDIRAC\Application Data
2008-01-30 à 18:32:08 - Adobe
2008-02-03 à 21:14:00 - AdobeUM
2008-02-14 à 16:31:19 - army lite meal
2008-03-24 à 09:49:54 - AVS4YOU
2008-02-15 à 16:39:41 - DivX
2008-02-16 à 20:46:12 - dvdcss
2008-01-04 à 20:09:43 - Google
2006-11-07 à 09:41:35 - Identities
2008-02-10 à 19:41:39 - iMesh
2008-03-19 à 18:26:20 - LimeWire
2007-11-24 à 19:33:41 - Macromedia
2008-03-21 à 20:06:12 - Microsoft
2007-11-24 à 11:46:47 - Motive
2007-11-24 à 15:43:35 - Mozilla
2008-03-26 à 18:14:31 - Orbit
2008-02-08 à 15:50:57 - PC Tools
2008-02-05 à 20:50:17 - Real
2008-03-25 à 17:11:35 - Skype
2008-03-24 à 15:01:24 - skypePM
2008-01-06 à 19:35:57 - Sun
2008-01-14 à 17:01:27 - teamspeak2
2007-11-24 à 12:45:29 - vlc
2007-12-13 à 21:10:49 - Yahoo!
+- C:\Documents and Settings\David.AUDIRAC\Local Settings\Application Data
2007-11-25 à 18:09:49 - Adobe
2007-12-31 à 15:36:07 - Apple Computer
2008-03-17 à 17:36:55 - ApplicationHistory
2008-02-05 à 20:33:55 - Google
2008-03-19 à 17:54:40 - Microsoft
2007-11-24 à 15:43:35 - Mozilla
2007-12-07 à 14:51:21 - PCHealth
========== Listing du dossier Program Files
+- C:\Program Files
2006-11-07 à 13:04:36 - Adobe
2007-06-11 à 18:48:59 - Alwil Software
2007-10-12 à 19:41:31 - Apple Software Update
2007-10-12 à 19:41:29 - Apple Software Update(2)
2008-02-14 à 16:30:43 - army lite meal
2008-03-24 à 09:49:35 - AVS4YOU
2007-05-12 à 10:12:46 - BroadJump
2007-11-07 à 10:08:03 - Club-Internet
2007-05-24 à 13:34:26 - Common Files
2006-11-07 à 09:37:38 - ComPlus Applications
2007-08-19 à 18:46:23 - CyberLink
2006-11-07 à 12:47:44 - DIFX
2008-02-16 à 11:17:44 - DivX
2008-03-14 à 08:54:24 - Fichiers communs
2008-02-16 à 20:55:28 - FusionSoft DVD Player XP
2008-02-17 à 20:55:48 - Golf Adventure Galaxy
2008-03-18 à 21:39:02 - Google
2008-03-20 à 20:26:55 - GUILD WARS
2008-02-02 à 20:24:16 - HHD Software
2008-02-10 à 19:41:12 - iMesh Applications
2008-02-24 à 15:16:14 - InstallShield Installation Information
2008-02-14 à 16:24:30 - Internet Explorer
2007-10-03 à 20:49:27 - iPod
2007-10-12 à 19:41:23 - iTunes
2008-03-17 à 18:16:01 - Java
2007-05-28 à 15:16:51 - Kazaa
2007-10-20 à 20:00:12 - KONAMI
2008-02-13 à 17:35:56 - LimeWire
2007-09-01 à 08:47:00 - LimeWire Download Accelerator
2008-03-26 à 18:18:40 - Lopxp
2008-03-21 à 20:05:32 - Messenger
2007-05-14 à 17:13:43 - Microsoft CAPICOM 2.1.0.2
2006-11-07 à 09:41:47 - microsoft frontpage
2007-05-03 à 10:25:20 - Microsoft Office
2008-03-15 à 18:12:19 - Microsoft SQL Server Compact Edition
2007-12-12 à 15:57:25 - Microsoft Visual Studio
2008-03-17 à 17:35:29 - Microsoft Windows Vista Upgrade Advisor
2007-05-12 à 11:26:20 - Motive
2006-11-07 à 09:39:06 - Movie Maker
2008-03-17 à 17:40:17 - Mozilla Firefox
2008-03-18 à 22:04:32 - MSECACHE
2006-11-07 à 14:06:14 - MSI
2008-03-17 à 17:34:56 - MSN
2006-11-07 à 09:36:32 - MSN Gaming Zone
2007-05-14 à 17:09:56 - MSXML 4.0
2008-02-17 à 20:56:13 - Naval Strike
2007-05-23 à 13:42:06 - NetMeeting
2008-02-01 à 14:00:01 - Norton Security Scan
2008-03-18 à 22:05:23 - Online Services
2008-03-26 à 06:47:19 - Orbitdownloader
2007-06-13 à 14:20:04 - Outlook Express
2008-03-17 à 17:40:03 - Philips
2008-03-21 à 21:38:26 - PhotoFiltre Studio
2008-02-06 à 11:43:48 - Picasa2
2007-09-22 à 18:09:39 - QuickTime
2008-02-05 à 20:44:43 - Real
2006-11-07 à 12:55:13 - Realtek
2008-02-17 à 20:55:34 - ReflexiveArcade
2006-11-07 à 09:39:31 - Services en ligne
2007-06-02 à 09:17:48 - Shareaza
2007-11-21 à 16:06:18 - Skype
2007-05-03 à 10:22:11 - Snapshot Viewer
2007-11-23 à 20:04:39 - SP2 Connection Patcher
2008-03-17 à 17:40:08 - Spyware Doctor
2008-03-17 à 17:40:18 - Sun
2006-11-07 à 13:01:24 - System Control Manager
2008-01-12 à 17:15:09 - Teamspeak2_RC2
2007-09-08 à 21:00:22 - Ubisoft
2006-11-07 à 09:45:23 - Uninstall Information
2008-02-13 à 17:37:02 - Veoh Networks
2007-08-19 à 18:51:31 - VideoLAN
2007-11-07 à 14:21:59 - Virtools
2008-01-12 à 19:08:21 - WebMediaPlayer
2007-11-07 à 17:37:51 - Windows Journal Viewer
2008-03-19 à 17:52:34 - Windows Live
2008-03-17 à 17:38:15 - Windows Live Safety Center
2007-12-12 à 17:51:14 - Windows Media Connect 2
2008-02-05 à 20:47:48 - Windows Media Player
2006-11-07 à 09:36:29 - Windows NT
2006-11-07 à 09:37:03 - Windows Plus
2006-11-07 à 09:39:36 - WindowsUpdate
2006-11-07 à 09:41:47 - xerox
2007-12-13 à 21:10:21 - Yahoo!
========== Tâches planifiées
A2B72ED99184A0C5.job: c:\docume~1\david~1.aud\applic~1\armyli~1\oozeflapbone.exe
AppleSoftwareUpdate.job: C:\Program Files\Apple Software Update\SoftwareUpdate.exe -task
Norton Security Scan.job: C:\Program Files\Norton Security Scan\Nss.exe /scan-full /scheduled
{5C03077C-726D-4410-B733-FA85ACFBC5B6}_AUDIRAC_REGINE.job: C:\WINDOWS\system32\mobsync.exe /Schedule="{5C03077C-726D-4410-B733-FA85ACFBC5B6}_AUDIRAC_REGINE"
========== Clés registre
========== Bloqueur popups Internet Explorer
zonenxt.msn-ppe.com
zone.msn.com
host-domain-lookup.com
www.host-domain-lookup.com
webmessenger.msn.com
========== Suggestion ( /!\ Nécessite une interprétation.) ==========
C:\Documents and Settings\All Users\Application Data\Software rule flag owns
C:\Documents and Settings\David.AUDIRAC\Application Data\army lite meal
C:\Program Files\army lite meal
C:\WINDOWS\tasks\A2B72ED99184A0C5.job
C:\Program Files\Orbitdownloader
+- Registre:
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\New Windows\Allow]
"host-domain-lookup.com"=-
"www.host-domain-lookup.com"=-
- Fin du rapport -
Voila ce que j'obtiens