Pop up cid!!
Résolu
mclamiss62
Messages postés
10
Statut
Membre
-
onemanchaud Messages postés 25 Statut Membre -
onemanchaud Messages postés 25 Statut Membre -
Bonjour,
j'ai des pbs ac les pop up cid ki s'affiche tt le tps c chi...
g besoin de votre aide g suivi vo conseil en ce ki concerne hijackthis et g obtenu le rapport suivant:
Logfile of HijackThis v1.99.1
Scan saved at 19:08:37, on 23/05/2008
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\windows\system\hpsysdrv.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\Unload\hpqcmon.exe
C:\WINDOWS\System32\hphmon05.exe
C:\HP\KBD\KBD.EXE
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Multimedia Card Reader\shwicon2k.exe
C:\WINDOWS\ALCXMNTR.EXE
C:\PROGRA~1\Lexmark\PHOTOC~1\LXBLKsk.exe
C:\Program Files\Fichiers communs\Microsoft Shared\Works
Shared\WkUFind.exe
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
C:\WINDOWS\System32\LVCOMSX.EXE
C:\Program Files\Logitech\Video\LogiTray.exe
C:\Program Files\Java\jre1.5.0_03\bin\jusched.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnf.exe
C:\PROGRA~1\MSNMES~1\msnmsgr.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\PROGRA~1\SECURI~1\Av_Fw\backweb\8520111\Program\SERVIC~1.EX
E
C:\Program Files\Securitoo\Av_Fw\Anti-Virus\fsgk32st.exe
C:\Program Files\Logitech\Video\FxSvr2.exe
C:\Program Files\Securitoo\Av_Fw\Anti-Virus\FSGK32.EXE
C:\Program Files\Securitoo\Av_Fw\backweb\8520111\program\fsbwsys.exe
C:\Program Files\Securitoo\Av_Fw\backweb\8520111\Program\fspex.exe
C:\Program Files\Securitoo\Av_Fw\Anti-Virus\fssm32.exe
C:\Program Files\Securitoo\Av_Fw\Common\FSMA32.EXE
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
C:\Program Files\Securitoo\Av_Fw\Common\FSMB32.EXE
C:\Program Files\Securitoo\Av_Fw\Common\FCH32.EXE
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Securitoo\Av_Fw\Common\FAMEH32.EXE
C:\Program Files\Securitoo\Av_Fw\FWES\Program\fsdfwd.exe
C:\Program Files\MSN Messenger\usnsvc.exe
C:\PROGRA~1\HEWLET~1\DIGITA~1\bin\hpqptc08.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqthb08.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\WinRAR\WinRAR.exe
C:\DOCUME~1\PROPRI~1\LOCALS~1\Temp\Rar$EX01.781\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL
= https://www.hpe.com/h41271/404D.aspx?cc=us&ll=en&url=http://domainredirects.ext.hpe.com/fr9.hpwis.com/
R1 - HKCU\Software\Microsoft\Internet
Explorer\Main,Default_Search_URL = http://srch-fr9.hpwis.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar =
http://www.pwengmlvihb.us/oEZikcwasd6j/fG_Y_DXss_CNis4fdUm/DzKoDt
QhraMDaQxGUqrLn1VeLu/eHgK.asp
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
https://www.orange.fr/portail
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
https://www.hpe.com/h41271/404D.aspx?cc=us&ll=en&url=http://domainredirects.ext.hpe.com/fr9.hpwis.com/
R0 - HKCU\Software\Microsoft\Internet
Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Aide pour le lien d'Adobe PDF Reader -
{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers
communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {0F7927B5-760F-0D5A-2379-ADE89535E2F0} -
C:\DOCUME~1\PROPRI~1\APPLIC~1\INFOBA~1\bias bin.exe (file missing)
O2 - BHO: Spybot-S&D IE Protection -
{53707962-6F74-2D53-2644-206D7942484F} -
C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no
file)
O3 - Toolbar: HP View - {B2847E28-5D7D-4DEB-8B67-05D28BCF79F5} -
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\HPDTLK02.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} -
C:\WINDOWS\System32\msdxm.ocx
O4 - HKLM\..\Run: [hpsysdrv] c:\windows\system\hpsysdrv.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
O4 - HKLM\..\Run: [CamMonitor] c:\Program Files\Hewlett-Packard\Digital
Imaging\Unload\hpqcmon.exe
O4 - HKLM\..\Run: [HPHUPD05] c:\Program
Files\Hewlett-Packard\{45B6180B-DCAB-4093-8EE8-6164457517F0}\hphup
d05.exe
O4 - HKLM\..\Run: [HPHmon05] C:\WINDOWS\System32\hphmon05.exe
O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KBD.EXE
O4 - HKLM\..\Run: [StorageGuard] "C:\Program Files\Fichiers
communs\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE
C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet /keeploaded /nodetect
O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI
Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [Sunkist2k] C:\Program Files\Multimedia Card
Reader\shwicon2k.exe
O4 - HKLM\..\Run: [AlcxMonitor] ALCXMNTR.EXE
O4 - HKLM\..\Run: [PS2] C:\WINDOWS\system32\ps2.exe
O4 - HKLM\..\Run: [LXBLKsk]
C:\PROGRA~1\Lexmark\PHOTOC~1\LXBLKsk.exe
O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Program
Files\Fichiers communs\Microsoft Shared\Works Shared\WkUFind.exe
O4 - HKLM\..\Run: [Share-to-Web Namespace Daemon] C:\Program
Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
O4 - HKLM\..\Run: [Microsoft TK3 Services] MStk32.exe
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\System32\LVCOMSX.EXE
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program
Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program
Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [HP Component Manager] "C:\Program
Files\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [NeroFilterCheck]
C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program
Files\Java\jre1.5.0_03\bin\jusched.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program
Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Stupid Data Dart Wave] C:\Documents and Settings\All
Users\Application Data\flag ace stupid data\Title Proxy.exe
O4 - HKLM\..\RunServices: [Microsoft TK3 Services] MStk32.exe
O4 - HKCU\..\Run: [NVIEW] rundll32.exe nview.dll,nViewLoadHook
O4 - HKCU\..\Run: [rdrtool]
C:\DOCUME~1\PROPRI~1\APPLIC~1\GRIMDE~1\Nurb Else.exe
O4 - HKCU\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus!
3\MsgPlus.exe" /WinStart
O4 - HKCU\..\Run: [WOOKIT] C:\Program Files\Wanadoo\Shell.exe
appLaunchClientZone.shl|PARAM= cnx
O4 - HKCU\..\Run: [msnmsgr] "C:\PROGRA~1\MSNMES~1\msnmsgr.exe"
/background
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search &
Destroy\TeaTimer.exe
O4 - HKCU\..\RunOnce: [FlashPlayerUpdate]
C:\WINDOWS\System32\Macromed\Flash\FlashUtil9b.exe
O4 - Global Startup: Adobe Reader Synchronizer.lnk = C:\Program
Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program
Files\Adobe\Reader 8.0\Reader\reader_sl.exe
O8 - Extra context menu item: E&xporter vers Microsoft Excel -
res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501}
- C:\WINDOWS\System32\msjava.dll (file missing)
O9 - Extra 'Tools' menuitem: Console Java (Sun) -
{08B0E5C0-4FCB-11CF-AAA5-00401C608501} -
C:\WINDOWS\System32\msjava.dll (file missing)
O9 - Extra button: Recherche -
{92780B25-18CC-41C8-B9BE-3C9C571A8263} -
C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} -
C:\WINDOWS\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links -
{c95fe080-8f5d-11d2-a20b-00aa003c157a} -
C:\WINDOWS\web\related.htm
O9 - Extra button: (no name) -
{DFB852A3-47F8-48C4-A200-58CAB36FD2A2} -
C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration -
{DFB852A3-47F8-48C4-A200-58CAB36FD2A2} -
C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) -
http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {2250C29C-C5E9-4F55-BE4E-01E45A40FCF1} (CMediaMix
Object) - http://musicmix.messenger.msn.com/Medialogic.CAB
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D}
(MessengerStatsClient Class) -
http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {9122D757-5A4F-4768-82C5-B4171D8556A7} (PhotoPickConvert
Class) -
http://appdirectory.messenger.msn.com/AppDirectory/P4Apps/PhotoSwap/P
htPkMSN.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF}
(MsnMessengerSetupDownloadControl Class) -
http://messenger.msn.com/download/msnmessengersetupdownloader.cab
O16 - DPF: {BD8667B7-38D8-4C77-B580-18C3E146372C} (Creative Toolbox
Plug-in) - http://bmm.imgag.com/imgag/cp/install/crusher-fr.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} -
C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} -
C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O23 - Service: Securitoo Antivirus Firewall (BackWeb Plug-in - 8520111) -
Unknown owner -
C:\PROGRA~1\SECURI~1\Av_Fw\backweb\8520111\Program\SERVIC~1.EX
E
O23 - Service: F-Secure Gatekeeper Handler Starter - F-Secure Corp. -
C:\Program Files\Securitoo\Av_Fw\Anti-Virus\fsgk32st.exe
O23 - Service: fsbwsys - F-Secure Corp. - C:\Program
Files\Securitoo\Av_Fw\backweb\8520111\program\fsbwsys.exe
O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure
Corporation - C:\Program
Files\Securitoo\Av_Fw\FWES\Program\fsdfwd.exe
O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation -
C:\Program Files\Securitoo\Av_Fw\Common\FSMA32.EXE
O23 - Service: LightScribeService Direct Disc Labeling Service
(LightScribeService) - Hewlett-Packard Company - C:\Program Files\Fichiers
communs\LightScribe\LSSrvc.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA
Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP -
C:\WINDOWS\System32\HPZipm12.exe
Serait-il possible que qqn m'aide et me dise ce kil fo faire ensuite..
merci d'avance
j'ai des pbs ac les pop up cid ki s'affiche tt le tps c chi...
g besoin de votre aide g suivi vo conseil en ce ki concerne hijackthis et g obtenu le rapport suivant:
Logfile of HijackThis v1.99.1
Scan saved at 19:08:37, on 23/05/2008
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\windows\system\hpsysdrv.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\Unload\hpqcmon.exe
C:\WINDOWS\System32\hphmon05.exe
C:\HP\KBD\KBD.EXE
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Multimedia Card Reader\shwicon2k.exe
C:\WINDOWS\ALCXMNTR.EXE
C:\PROGRA~1\Lexmark\PHOTOC~1\LXBLKsk.exe
C:\Program Files\Fichiers communs\Microsoft Shared\Works
Shared\WkUFind.exe
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
C:\WINDOWS\System32\LVCOMSX.EXE
C:\Program Files\Logitech\Video\LogiTray.exe
C:\Program Files\Java\jre1.5.0_03\bin\jusched.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnf.exe
C:\PROGRA~1\MSNMES~1\msnmsgr.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\PROGRA~1\SECURI~1\Av_Fw\backweb\8520111\Program\SERVIC~1.EX
E
C:\Program Files\Securitoo\Av_Fw\Anti-Virus\fsgk32st.exe
C:\Program Files\Logitech\Video\FxSvr2.exe
C:\Program Files\Securitoo\Av_Fw\Anti-Virus\FSGK32.EXE
C:\Program Files\Securitoo\Av_Fw\backweb\8520111\program\fsbwsys.exe
C:\Program Files\Securitoo\Av_Fw\backweb\8520111\Program\fspex.exe
C:\Program Files\Securitoo\Av_Fw\Anti-Virus\fssm32.exe
C:\Program Files\Securitoo\Av_Fw\Common\FSMA32.EXE
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
C:\Program Files\Securitoo\Av_Fw\Common\FSMB32.EXE
C:\Program Files\Securitoo\Av_Fw\Common\FCH32.EXE
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Securitoo\Av_Fw\Common\FAMEH32.EXE
C:\Program Files\Securitoo\Av_Fw\FWES\Program\fsdfwd.exe
C:\Program Files\MSN Messenger\usnsvc.exe
C:\PROGRA~1\HEWLET~1\DIGITA~1\bin\hpqptc08.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqthb08.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\WinRAR\WinRAR.exe
C:\DOCUME~1\PROPRI~1\LOCALS~1\Temp\Rar$EX01.781\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL
= https://www.hpe.com/h41271/404D.aspx?cc=us&ll=en&url=http://domainredirects.ext.hpe.com/fr9.hpwis.com/
R1 - HKCU\Software\Microsoft\Internet
Explorer\Main,Default_Search_URL = http://srch-fr9.hpwis.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar =
http://www.pwengmlvihb.us/oEZikcwasd6j/fG_Y_DXss_CNis4fdUm/DzKoDt
QhraMDaQxGUqrLn1VeLu/eHgK.asp
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
https://www.orange.fr/portail
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
https://www.hpe.com/h41271/404D.aspx?cc=us&ll=en&url=http://domainredirects.ext.hpe.com/fr9.hpwis.com/
R0 - HKCU\Software\Microsoft\Internet
Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Aide pour le lien d'Adobe PDF Reader -
{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers
communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {0F7927B5-760F-0D5A-2379-ADE89535E2F0} -
C:\DOCUME~1\PROPRI~1\APPLIC~1\INFOBA~1\bias bin.exe (file missing)
O2 - BHO: Spybot-S&D IE Protection -
{53707962-6F74-2D53-2644-206D7942484F} -
C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no
file)
O3 - Toolbar: HP View - {B2847E28-5D7D-4DEB-8B67-05D28BCF79F5} -
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\HPDTLK02.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} -
C:\WINDOWS\System32\msdxm.ocx
O4 - HKLM\..\Run: [hpsysdrv] c:\windows\system\hpsysdrv.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
O4 - HKLM\..\Run: [CamMonitor] c:\Program Files\Hewlett-Packard\Digital
Imaging\Unload\hpqcmon.exe
O4 - HKLM\..\Run: [HPHUPD05] c:\Program
Files\Hewlett-Packard\{45B6180B-DCAB-4093-8EE8-6164457517F0}\hphup
d05.exe
O4 - HKLM\..\Run: [HPHmon05] C:\WINDOWS\System32\hphmon05.exe
O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KBD.EXE
O4 - HKLM\..\Run: [StorageGuard] "C:\Program Files\Fichiers
communs\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE
C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet /keeploaded /nodetect
O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI
Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [Sunkist2k] C:\Program Files\Multimedia Card
Reader\shwicon2k.exe
O4 - HKLM\..\Run: [AlcxMonitor] ALCXMNTR.EXE
O4 - HKLM\..\Run: [PS2] C:\WINDOWS\system32\ps2.exe
O4 - HKLM\..\Run: [LXBLKsk]
C:\PROGRA~1\Lexmark\PHOTOC~1\LXBLKsk.exe
O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Program
Files\Fichiers communs\Microsoft Shared\Works Shared\WkUFind.exe
O4 - HKLM\..\Run: [Share-to-Web Namespace Daemon] C:\Program
Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
O4 - HKLM\..\Run: [Microsoft TK3 Services] MStk32.exe
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\System32\LVCOMSX.EXE
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program
Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program
Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [HP Component Manager] "C:\Program
Files\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [NeroFilterCheck]
C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program
Files\Java\jre1.5.0_03\bin\jusched.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program
Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Stupid Data Dart Wave] C:\Documents and Settings\All
Users\Application Data\flag ace stupid data\Title Proxy.exe
O4 - HKLM\..\RunServices: [Microsoft TK3 Services] MStk32.exe
O4 - HKCU\..\Run: [NVIEW] rundll32.exe nview.dll,nViewLoadHook
O4 - HKCU\..\Run: [rdrtool]
C:\DOCUME~1\PROPRI~1\APPLIC~1\GRIMDE~1\Nurb Else.exe
O4 - HKCU\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus!
3\MsgPlus.exe" /WinStart
O4 - HKCU\..\Run: [WOOKIT] C:\Program Files\Wanadoo\Shell.exe
appLaunchClientZone.shl|PARAM= cnx
O4 - HKCU\..\Run: [msnmsgr] "C:\PROGRA~1\MSNMES~1\msnmsgr.exe"
/background
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search &
Destroy\TeaTimer.exe
O4 - HKCU\..\RunOnce: [FlashPlayerUpdate]
C:\WINDOWS\System32\Macromed\Flash\FlashUtil9b.exe
O4 - Global Startup: Adobe Reader Synchronizer.lnk = C:\Program
Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program
Files\Adobe\Reader 8.0\Reader\reader_sl.exe
O8 - Extra context menu item: E&xporter vers Microsoft Excel -
res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501}
- C:\WINDOWS\System32\msjava.dll (file missing)
O9 - Extra 'Tools' menuitem: Console Java (Sun) -
{08B0E5C0-4FCB-11CF-AAA5-00401C608501} -
C:\WINDOWS\System32\msjava.dll (file missing)
O9 - Extra button: Recherche -
{92780B25-18CC-41C8-B9BE-3C9C571A8263} -
C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} -
C:\WINDOWS\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links -
{c95fe080-8f5d-11d2-a20b-00aa003c157a} -
C:\WINDOWS\web\related.htm
O9 - Extra button: (no name) -
{DFB852A3-47F8-48C4-A200-58CAB36FD2A2} -
C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration -
{DFB852A3-47F8-48C4-A200-58CAB36FD2A2} -
C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) -
http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {2250C29C-C5E9-4F55-BE4E-01E45A40FCF1} (CMediaMix
Object) - http://musicmix.messenger.msn.com/Medialogic.CAB
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D}
(MessengerStatsClient Class) -
http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {9122D757-5A4F-4768-82C5-B4171D8556A7} (PhotoPickConvert
Class) -
http://appdirectory.messenger.msn.com/AppDirectory/P4Apps/PhotoSwap/P
htPkMSN.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF}
(MsnMessengerSetupDownloadControl Class) -
http://messenger.msn.com/download/msnmessengersetupdownloader.cab
O16 - DPF: {BD8667B7-38D8-4C77-B580-18C3E146372C} (Creative Toolbox
Plug-in) - http://bmm.imgag.com/imgag/cp/install/crusher-fr.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} -
C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} -
C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O23 - Service: Securitoo Antivirus Firewall (BackWeb Plug-in - 8520111) -
Unknown owner -
C:\PROGRA~1\SECURI~1\Av_Fw\backweb\8520111\Program\SERVIC~1.EX
E
O23 - Service: F-Secure Gatekeeper Handler Starter - F-Secure Corp. -
C:\Program Files\Securitoo\Av_Fw\Anti-Virus\fsgk32st.exe
O23 - Service: fsbwsys - F-Secure Corp. - C:\Program
Files\Securitoo\Av_Fw\backweb\8520111\program\fsbwsys.exe
O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure
Corporation - C:\Program
Files\Securitoo\Av_Fw\FWES\Program\fsdfwd.exe
O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation -
C:\Program Files\Securitoo\Av_Fw\Common\FSMA32.EXE
O23 - Service: LightScribeService Direct Disc Labeling Service
(LightScribeService) - Hewlett-Packard Company - C:\Program Files\Fichiers
communs\LightScribe\LSSrvc.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA
Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP -
C:\WINDOWS\System32\HPZipm12.exe
Serait-il possible que qqn m'aide et me dise ce kil fo faire ensuite..
merci d'avance
A voir également:
- Pop up cid!!
- Pop up mcafee - Accueil - Piratage
- Pop corn time - Télécharger - TV & Vidéo
- Serveur pop - Guide
- Augmenter débit freebox pop fibre ✓ - Forum Freebox
- Youtube sur freebox pop - Forum Téléviseurs
9 réponses
télécharge lop S&D de eric71 et Angeldark
https://sites.google.com/site/eric71mespages/lop.sd.exe
choisis l'option 1
poste le rapport obtenu
https://sites.google.com/site/eric71mespages/lop.sd.exe
choisis l'option 1
poste le rapport obtenu
voila g téléchargé lop s&d
et le rappor indique ceci :
-----------------------[ Lop S&D 4.2.0-9 XP/Vista ]---------------------
[ Windows XP (NT 5.1) Build 2600, Service Pack 1 ]
[ USER : Propri‚taire ] [ "C:\Lop SD" ] [ Selection : 1 ]
[ 23/05/2008 | 20:04:13,23 ] [ PC : NOM-DOWNCO0B3WU ]
[ MAJ : 16-05-2008 | 23:35 ]
-------------[ Listing des dossiers dans Application Data ]------------
[19/05/2007|17:42] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[04/02/2007|18:22] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Ahead
[01/01/2003|15:41] C:\DOCUME~1\ALLUSE~1\APPLIC~1\desktop.ini
[02/05/2008|21:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\flag ace stupid data
[02/05/2008|21:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Fourtickskippile
[02/05/2006|16:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Hewlett-Packard
[18/06/2004|16:55] C:\DOCUME~1\ALLUSE~1\APPLIC~1\HP
[02/05/2006|16:58] C:\DOCUME~1\ALLUSE~1\APPLIC~1\hpzinstall.log
[01/01/2003|17:41] C:\DOCUME~1\ALLUSE~1\APPLIC~1\InterVideo
[15/09/2007|16:45] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Messenger Plus!
[08/03/2006|20:45] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[25/02/2004|17:49] C:\DOCUME~1\ALLUSE~1\APPLIC~1\MSN6
[27/10/2005|10:45] C:\DOCUME~1\ALLUSE~1\APPLIC~1\QuickTime
[01/01/2003|15:58] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SBSI
[10/04/2008|18:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy
[30/04/2007|14:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec
[12/05/2007|20:18] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Ulead Systems
[01/01/2003|17:42] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Adobe
[01/01/2003|15:41] C:\DOCUME~1\DEFAUL~1\APPLIC~1\desktop.ini
[01/01/2003|15:51] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities
[01/01/2003|17:42] C:\DOCUME~1\DEFAUL~1\APPLIC~1\InterTrust
[01/01/2003|17:17] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[01/01/2003|17:52] C:\DOCUME~1\DEFAUL~1\APPLIC~1\SampleView
[01/01/2003|17:33] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Sonic
[02/01/2003|00:39] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Symantec
[01/01/2003|17:42] C:\DOCUME~1\INVIT~1\APPLIC~1\Adobe
[01/01/2003|15:41] C:\DOCUME~1\INVIT~1\APPLIC~1\desktop.ini
[01/01/2003|15:51] C:\DOCUME~1\INVIT~1\APPLIC~1\Identities
[01/01/2003|17:42] C:\DOCUME~1\INVIT~1\APPLIC~1\InterTrust
[01/01/2003|17:17] C:\DOCUME~1\INVIT~1\APPLIC~1\Microsoft
[01/01/2003|17:52] C:\DOCUME~1\INVIT~1\APPLIC~1\SampleView
[01/01/2003|17:33] C:\DOCUME~1\INVIT~1\APPLIC~1\Sonic
[02/01/2003|00:39] C:\DOCUME~1\INVIT~1\APPLIC~1\Symantec
[27/01/2007|20:22] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[16/06/2007|14:11] C:\DOCUME~1\MAMANP~1\APPLIC~1\Adobe
[01/01/2003|15:41] C:\DOCUME~1\MAMANP~1\APPLIC~1\desktop.ini
[07/09/2004|15:16] C:\DOCUME~1\MAMANP~1\APPLIC~1\Dossier de t‚l‚chargement Share-to-Web
[21/01/2006|19:19] C:\DOCUME~1\MAMANP~1\APPLIC~1\Dossier de t‚l‚chargement Share-to-Web
[15/09/2007|17:06] C:\DOCUME~1\MAMANP~1\APPLIC~1\F-Secure
[02/05/2008|21:28] C:\DOCUME~1\MAMANP~1\APPLIC~1\grim deaf sect
[09/03/2005|12:55] C:\DOCUME~1\MAMANP~1\APPLIC~1\Help
[27/06/2007|16:50] C:\DOCUME~1\MAMANP~1\APPLIC~1\HP
[01/01/2003|15:51] C:\DOCUME~1\MAMANP~1\APPLIC~1\Identities
[01/01/2003|17:42] C:\DOCUME~1\MAMANP~1\APPLIC~1\InterTrust
[15/02/2006|13:33] C:\DOCUME~1\MAMANP~1\APPLIC~1\ispnews
[21/01/2006|19:19] C:\DOCUME~1\MAMANP~1\APPLIC~1\Macromedia
[13/01/2008|19:48] C:\DOCUME~1\MAMANP~1\APPLIC~1\Microsoft
[01/01/2003|17:52] C:\DOCUME~1\MAMANP~1\APPLIC~1\SampleView
[13/07/2007|20:37] C:\DOCUME~1\MAMANP~1\APPLIC~1\Sonic
[02/01/2003|00:39] C:\DOCUME~1\MAMANP~1\APPLIC~1\Symantec
[30/01/2007|19:01] C:\DOCUME~1\MAMANP~1\APPLIC~1\UseNeXT
[05/06/2007|18:35] C:\DOCUME~1\MAMANP~1\APPLIC~1\vlc
[01/01/2003|15:55] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
[19/05/2007|17:46] C:\DOCUME~1\PROPRI~1\APPLIC~1\Adobe
[01/01/2003|15:41] C:\DOCUME~1\PROPRI~1\APPLIC~1\desktop.ini
[09/06/2004|19:34] C:\DOCUME~1\PROPRI~1\APPLIC~1\Dossier de t‚l‚chargement Share-to-Web
[18/06/2004|17:50] C:\DOCUME~1\PROPRI~1\APPLIC~1\Dossier de t‚l‚chargement Share-to-Web
[11/02/2004|20:00] C:\DOCUME~1\PROPRI~1\APPLIC~1\GDIPFONTCACHEV1.DAT
[25/02/2008|13:45] C:\DOCUME~1\PROPRI~1\APPLIC~1\grim deaf sect
[08/08/2005|18:42] C:\DOCUME~1\PROPRI~1\APPLIC~1\Help
[18/06/2004|16:55] C:\DOCUME~1\PROPRI~1\APPLIC~1\HP
[01/01/2003|15:51] C:\DOCUME~1\PROPRI~1\APPLIC~1\Identities
[27/09/2006|21:38] C:\DOCUME~1\PROPRI~1\APPLIC~1\Info Bait Ford
[26/04/2004|19:56] C:\DOCUME~1\PROPRI~1\APPLIC~1\InterVideo
[14/02/2006|21:43] C:\DOCUME~1\PROPRI~1\APPLIC~1\ispnews
[06/01/2006|21:48] C:\DOCUME~1\PROPRI~1\APPLIC~1\Lavasoft
[12/05/2007|20:11] C:\DOCUME~1\PROPRI~1\APPLIC~1\LimeWire
[31/12/2004|17:13] C:\DOCUME~1\PROPRI~1\APPLIC~1\Macromedia
[10/02/2006|19:25] C:\DOCUME~1\PROPRI~1\APPLIC~1\Microsoft
[25/02/2004|17:49] C:\DOCUME~1\PROPRI~1\APPLIC~1\MSN6
[01/01/2003|17:52] C:\DOCUME~1\PROPRI~1\APPLIC~1\SampleView
[10/07/2007|14:48] C:\DOCUME~1\PROPRI~1\APPLIC~1\Shareaza
[27/12/2003|17:49] C:\DOCUME~1\PROPRI~1\APPLIC~1\Sonic
[02/01/2003|00:39] C:\DOCUME~1\PROPRI~1\APPLIC~1\Symantec
[27/01/2007|18:52] C:\DOCUME~1\PROPRI~1\APPLIC~1\UseNeXT
[12/12/2004|21:51] C:\DOCUME~1\PROPRI~1\APPLIC~1\ViewerApp.dat
[14/11/2005|20:30] C:\DOCUME~1\PROPRI~1\APPLIC~1\vlc
[01/03/2006|21:21] C:\DOCUME~1\PROPRI~1\APPLIC~1\Wannadoo
----------------[ Tâches planifiées dans C:\WINDOWS\tasks ]---------------
[19/05/2008 22:00][--ah-----] C:\WINDOWS\tasks\AB058FE3919A0513.job
[21/05/2008 17:16][--a------] C:\WINDOWS\tasks\Scheduled scanning task.job
[23/05/2008 16:00][--a------] C:\WINDOWS\tasks\HPpromotions psc 2350 series.job
[07/03/2005 22:12][--a------] C:\WINDOWS\tasks\Symantec NetDetect.job
[03/08/2003 12:17][-rah-----] C:\WINDOWS\tasks\desktop.ini
[23/05/2008 15:04][--ah-----] C:\WINDOWS\tasks\SA.DAT
AB058FE3919A0513.job <--> c:\docume~1\mamanp~1\applic~1\grimde~1\fragplandelete.exe
---------------[ Listing des dossiers dans C:\Program Files ]--------------
[19/05/2007|17:41] C:\Program Files\Adobe
[04/02/2007|18:50] C:\Program Files\Ahead
[25/03/2005|20:23] C:\Program Files\Alwil Software
[26/12/2003|17:59] C:\Program Files\ArcSoft
[26/12/2003|17:58] C:\Program Files\ATI Technologies
[01/01/2003|15:47] C:\Program Files\ComPlus Applications
[31/03/2007|17:36] C:\Program Files\Corel
[11/05/2006|15:20] C:\Program Files\DIFX
[21/03/2006|19:14] C:\Program Files\DivX
[26/04/2007|20:58] C:\Program Files\Easy Internet signup
[21/07/2004|15:18] C:\Program Files\Ediser
[10/07/2007|15:31] C:\Program Files\eMule
[10/04/2008|20:16] C:\Program Files\Fichiers communs
[02/05/2008|21:25] C:\Program Files\grim deaf sect
[21/01/2006|21:16] C:\Program Files\Harry Potter Creative CD
[02/05/2006|16:47] C:\Program Files\Hewlett-Packard
[10/09/2005|21:14] C:\Program Files\HP
[10/04/2008|18:28] C:\Program Files\InstallShield Installation Information
[28/12/2005|22:27] C:\Program Files\InterActual
[02/11/2003|03:54] C:\Program Files\Internet Explorer
[26/12/2003|18:00] C:\Program Files\InterVideo
[12/05/2007|19:52] C:\Program Files\Java
[09/12/2006|19:21] C:\Program Files\Java Web Start
[08/05/2006|19:33] C:\Program Files\JoWooD
[06/01/2006|21:47] C:\Program Files\Lavasoft
[12/05/2007|16:45] C:\Program Files\Lexmark
[12/05/2007|20:09] C:\Program Files\LimeWire
[27/10/2005|10:46] C:\Program Files\Logitech
[23/05/2008|18:45] C:\Program Files\Lopxpsetup
[24/03/2007|19:23] C:\Program Files\MaxiCompte
[01/05/2005|17:39] C:\Program Files\Micro Application
[01/01/2003|17:18] C:\Program Files\Microsoft Encarta
[01/01/2003|15:51] C:\Program Files\microsoft frontpage
[15/09/2007|16:45] C:\Program Files\Microsoft Office
[09/12/2006|19:21] C:\Program Files\Microsoft Picture It! 7
[01/01/2003|17:16] C:\Program Files\Microsoft Works
[01/01/2003|17:12] C:\Program Files\Microsoft Works Suite 2003
[01/05/2005|17:32] C:\Program Files\Microsoft.NET
[02/11/2003|03:54] C:\Program Files\Movie Maker
[01/01/2003|15:46] C:\Program Files\MSN
[01/01/2003|15:46] C:\Program Files\MSN Gaming Zone
[15/09/2007|16:42] C:\Program Files\MSN Messenger
[09/06/2006|18:17] C:\Program Files\MSN Messengerpr plus
[26/12/2003|17:58] C:\Program Files\Multimedia Card Reader
[09/01/2004|19:11] C:\Program Files\MVAPPS
[08/02/2005|19:41] C:\Program Files\NetMeeting
[26/04/2007|20:59] C:\Program Files\Outlook Express
[01/03/2008|00:12] C:\Program Files\PhotoFiltre
[21/07/2005|22:09] C:\Program Files\QuickTime
[01/01/2003|17:32] C:\Program Files\RecordNow!
[30/04/2007|13:32] C:\Program Files\SAGEM
[25/04/2007|21:24] C:\Program Files\Securitoo
[01/01/2003|18:04] C:\Program Files\Services en ligne
[10/07/2007|14:48] C:\Program Files\Shareaza
[15/09/2007|16:38] C:\Program Files\Solone
[10/04/2008|17:58] C:\Program Files\Spybot - Search & Destroy
[10/04/2008|17:52] C:\Program Files\spybotsd152.exe
[30/04/2007|14:45] C:\Program Files\Symantec
[02/05/2006|16:42] C:\Program Files\Uninstall Information
[19/05/2007|10:47] C:\Program Files\VideoLAN
[30/04/2007|14:27] C:\Program Files\Wanadoo
[10/04/2006|18:51] C:\Program Files\WinAntiVirus Pro 2006
[09/04/2006|18:35] C:\Program Files\WinAntiVirusPro2006FreeInstall_fr.exe
[31/05/2006|20:25] C:\Program Files\Windows Media Player
[02/11/2003|03:54] C:\Program Files\Windows NT
[01/02/2005|21:57] C:\Program Files\WindowsUpdate
[18/02/2006|18:17] C:\Program Files\WinRAR
[01/01/2003|15:51] C:\Program Files\xerox
[10/04/2008|18:31] C:\Program Files\Yahoo!
------[ Listing des dossiers dans C:\Program Files\Fichiers communs ]------
[19/05/2007|17:42] C:\Program Files\Fichiers communs\Adobe
[04/02/2007|18:21] C:\Program Files\Fichiers communs\Ahead
[01/05/2005|17:33] C:\Program Files\Fichiers communs\DESIGNER
[09/01/2004|19:13] C:\Program Files\Fichiers communs\docs
[09/01/2004|19:13] C:\Program Files\Fichiers communs\filter32
[09/06/2004|19:33] C:\Program Files\Fichiers communs\Hewlett-Packard
[01/01/2003|17:06] C:\Program Files\Fichiers communs\HP
[27/10/2005|10:45] C:\Program Files\Fichiers communs\InstallShield
[12/05/2007|19:50] C:\Program Files\Fichiers communs\Java
[09/01/2004|19:13] C:\Program Files\Fichiers communs\lang
[04/02/2007|18:48] C:\Program Files\Fichiers communs\LightScribe
[27/10/2005|10:46] C:\Program Files\Fichiers communs\Logitech
[23/05/2008|18:18] C:\Program Files\Fichiers communs\Microsoft Shared
[01/01/2003|15:47] C:\Program Files\Fichiers communs\MSSoap
[04/02/2007|18:33] C:\Program Files\Fichiers communs\Nero
[01/01/2003|15:41] C:\Program Files\Fichiers communs\ODBC
[02/11/2003|03:54] C:\Program Files\Fichiers communs\Services
[09/01/2004|19:13] C:\Program Files\Fichiers communs\setup.cfg
[01/01/2003|17:33] C:\Program Files\Fichiers communs\Sonic
[01/01/2003|15:41] C:\Program Files\Fichiers communs\SpeechEngines
[30/04/2007|14:46] C:\Program Files\Fichiers communs\Symantec Shared
[01/05/2005|17:32] C:\Program Files\Fichiers communs\System
[07/04/2007|19:12] C:\Program Files\Fichiers communs\Ulead Systems
[04/04/2006|17:55] C:\Program Files\Fichiers communs\Vbox
[24/01/2004|18:09] C:\Program Files\Fichiers communs\wewin
---------------------------[ Process ]--------------------------
... 56
IEXPLORE.EXE ~ [432]
IEXPLORE.EXE ~ [580]
IEXPLORE.EXE ~ [2600]
IEXPLORE.EXE ~ [1808]
IEXPLORE.EXE ~ [2608]
----------------------[ Recherche avec S_Lop ]---------------------
C:\DOCUME~1\PROPRI~1\LOCALS~1\Temp\bis110.exe
C:\DOCUME~1\PROPRI~1\LOCALS~1\Temp\bisEA.exe
-----------------[ Recherche de Fichiers / Dossiers Lop ]-----------------
C:\DOCUME~1\ALLUSE~1\APPLIC~1\flag ace stupid data
C:\DOCUME~1\ALLUSE~1\APPLIC~1\flag ace stupid data\HECK EXTRA.0XE
C:\DOCUME~1\ALLUSE~1\APPLIC~1\flag ace stupid data\Title Proxy.exe
C:\DOCUME~1\MAMANP~1\APPLIC~1\grimde~1
C:\DOCUME~1\MAMANP~1\APPLIC~1\grimde~1\czlljaab.exe
C:\DOCUME~1\MAMANP~1\APPLIC~1\grimde~1\DaleAnteTeamGram.exe
C:\DOCUME~1\MAMANP~1\APPLIC~1\grimde~1\frag plan delete.exe
C:\DOCUME~1\MAMANP~1\APPLIC~1\grimde~1\lrhldkod.exe
C:\DOCUME~1\MAMANP~1\APPLIC~1\grimde~1\ntyvcqad.exe
C:\DOCUME~1\MAMANP~1\APPLIC~1\grimde~1\Nurb Else.exe
C:\DOCUME~1\MAMANP~1\APPLIC~1\grimde~1\wddkxent.exe
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\bceugeng.exe
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\caxwqojf.0xe
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\cqsdwfmz.exe
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\DALEANTETEAMGRAM.0XE
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\DaleAnteTeamGram.1xe
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\DaleAnteTeamGram.exe
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\deudiysm.0xe
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\felneajq.0xe
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\ffqqsmqa.exe
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\FRAG PLAN DELETE.0XE
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\FRAG PLAN DELETE.1XE
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\FRAG PLAN DELETE.2XE
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\FRAG PLAN DELETE.3XE
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\frag plan delete.4xe
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\FRAG PLAN DELETE.5XE
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\GVUSAPRS.0XE
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\igaxchsl.exe
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\izgegvml.0xe
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\lwhksuab.exe
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\nofsaltb.exe
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\NURB ELSE.0XE
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\NURB ELSE.1XE
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\Nurb Else.exe
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\qkeajycb.0xe
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\qtgwxgcq.exe
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\ravajhdr.exe
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\rbinlvdk.exe
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\rbpvjhye.exe
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\rylbhdom.exe
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\ufxmjkiu.0xe
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\WCEBGCBJ.0XE
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\wpegvltf.0xe
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\xzuiadxm.exe
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\yuhetzvt.exe
C:\Program Files\grimde~1
C:\WINDOWS\Tasks\AB058FE3919A0513.job
----------------------[ Verification du Registre ]----------------------
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"rdrtool"="C:\\DOCUME~1\\PROPRI~1\\APPLIC~1\\GRIMDE~1\\Nurb Else.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Stupid Data Dart Wave"="C:\\Documents and Settings\\All Users\\Application Data\\flag ace stupid data\\Title Proxy.exe"
--------------------[ Verification du fichier Hosts ]---------------------
Fichier Hosts MODIFIE
127.0.0.1 bin.errorprotector.com ## added by CiD
127.0.0.1 br.errorsafe.com ## added by CiD
127.0.0.1 br.winantivirus.com ## added by CiD
127.0.0.1 br.winfixer.com ## added by CiD
127.0.0.1 de.errorsafe.com ## added by CiD
127.0.0.1 de.winantivirus.com ## added by CiD
127.0.0.1 download.cdn.winsoftware.com ## added by CiD
127.0.0.1 download.errorsafe.com ## added by CiD
127.0.0.1 download.systemdoctor.com ## added by CiD
127.0.0.1 download.winantispyware.com ## added by CiD
127.0.0.1 download.windrivecleaner.com ## added by CiD
127.0.0.1 download.winfixer.com ## added by CiD
127.0.0.1 drivecleaner.com ## added by CiD
127.0.0.1 dynamique.drivecleaner.com ## added by CiD
127.0.0.1 errorprotector.com ## added by CiD
127.0.0.1 errorsafe.com ## added by CiD
127.0.0.1 es.winantivirus.com ## added by CiD
127.0.0.1 fr.winantivirus.com ## added by CiD
127.0.0.1 fr.winfixer.com ## added by CiD
127.0.0.1 go.drivecleaner.com ## added by CiD
127.0.0.1 go.errorsafe.com ## added by CiD
127.0.0.1 go.winantispyware.com ## added by CiD
127.0.0.1 go.winantivirus.com ## added by CiD
127.0.0.1 hk.winantivirus.com ## added by CiD
127.0.0.1 instlog.errorsafe.com ## added by CiD
127.0.0.1 instlog.winantivirus.com ## added by CiD
127.0.0.1 jsp.drivecleaner.com ## added by CiD
127.0.0.1 kb.errorsafe.com ## added by CiD
127.0.0.1 kb.winantivirus.com ## added by CiD
127.0.0.1 nl.errorsafe.com ## added by CiD
127.0.0.1 se.errorsafe.com ## added by CiD
127.0.0.1 secure.drivecleaner.com ## added by CiD
127.0.0.1 secure.errorsafe.com ## added by CiD
127.0.0.1 secure.winantispam.com ## added by CiD
127.0.0.1 secure.winantispy.com ## added by CiD
127.0.0.1 secure.winantivirus.com ## added by CiD
127.0.0.1 support.winantivirus.com ## added by CiD
127.0.0.1 ulog.winantivirus.com ## added by CiD
127.0.0.1 utils.errorsafe.com ## added by CiD
127.0.0.1 utils.winantivirus.com ## added by CiD
127.0.0.1 winantispyware.com ## added by CiD
127.0.0.1 winantivirus.com ## added by CiD
127.0.0.1 winfixer.com ## added by CiD
127.0.0.1 [i]ww/iw.drivecleaner.com ## added by CiD
127.0.0.1 [i]ww/iw.errorprotector.com ## added by CiD
127.0.0.1 [i]ww/iw.errorsafe.com ## added by CiD
127.0.0.1 [i]ww/iw.systemdoctor.com ## added by CiD
127.0.0.1 [i]ww/iw.win-anti-virus-pro.com ## added by CiD
127.0.0.1 [i]ww/iw.win-virus-pro.com ## added by CiD
127.0.0.1 [i]ww/iw.winantispam.com ## added by CiD
127.0.0.1 [i]ww/iw.winantispy.com ## added by CiD
127.0.0.1 [i]ww/iw.winantispyware.com ## added by CiD
127.0.0.1 [i]ww/iw.winantivirus.com ## added by CiD
127.0.0.1 [i]ww/iw.winantiviruspro.com ## added by CiD
127.0.0.1 [i]ww/iw.windrivecleaner.com ## added by CiD
127.0.0.1 [i]ww/iw.windrivesafe.com ## added by CiD
127.0.0.1 [i]ww/iw.winfixer.com ## added by CiD
127.0.0.1 cdn.drivecleaner.com ## added by CiD
127.0.0.1 cdn.errorsafe.com ## added by CiD
127.0.0.1 cdn.winsoftware.com ## added by CiD
127.0.0.1 download.cdn.drivecleaner.com ## added by CiD
127.0.0.1 download.cdn.errorsafe.com ## added by CiD
127.0.0.1 instlog.winfixer.com ## added by CiD
127.0.0.1 trial.updates.winsoftware.com ## added by CiD
127.0.0.1 utils.winfixer.com ## added by CiD
127.0.0.1 winfixer2006.com ## added by CiD
127.0.0.1 winsoftware.com ## added by CiD
127.0.0.1 [i]ww/iw.utils.winfixer.com ## added by CiD
127.0.0.1 [i]ww/iw.winfixer2006.com ## added by CiD
127.0.0.1 [i]ww/iw.winsoftware.com ## added by CiD
-> 8070 ( 70 ## added by CiD )
/!\ 1 Not 127.0.0.1 !!
----------------[ Recherche de fichiers avec Catchme ]-----------------
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-05-23 20:06:41
Windows 5.1.2600 Service Pack 1 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 0
--------------------[ Recherche d'autres infections ]---------------------
Aucune autre infection trouvée !
[F:5329][D:92]-> C:\DOCUME~1\PROPRI~1\LOCALS~1\Temp
[F:221][D:0]-> C:\DOCUME~1\PROPRI~1\Cookies
[F:11817][D:16]-> C:\DOCUME~1\PROPRI~1\LOCALS~1\TEMPOR~1\content.IE5
--------------------[ Fin du rapport a 20:08:44,06 ]----------------------
et le rappor indique ceci :
-----------------------[ Lop S&D 4.2.0-9 XP/Vista ]---------------------
[ Windows XP (NT 5.1) Build 2600, Service Pack 1 ]
[ USER : Propri‚taire ] [ "C:\Lop SD" ] [ Selection : 1 ]
[ 23/05/2008 | 20:04:13,23 ] [ PC : NOM-DOWNCO0B3WU ]
[ MAJ : 16-05-2008 | 23:35 ]
-------------[ Listing des dossiers dans Application Data ]------------
[19/05/2007|17:42] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[04/02/2007|18:22] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Ahead
[01/01/2003|15:41] C:\DOCUME~1\ALLUSE~1\APPLIC~1\desktop.ini
[02/05/2008|21:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\flag ace stupid data
[02/05/2008|21:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Fourtickskippile
[02/05/2006|16:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Hewlett-Packard
[18/06/2004|16:55] C:\DOCUME~1\ALLUSE~1\APPLIC~1\HP
[02/05/2006|16:58] C:\DOCUME~1\ALLUSE~1\APPLIC~1\hpzinstall.log
[01/01/2003|17:41] C:\DOCUME~1\ALLUSE~1\APPLIC~1\InterVideo
[15/09/2007|16:45] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Messenger Plus!
[08/03/2006|20:45] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[25/02/2004|17:49] C:\DOCUME~1\ALLUSE~1\APPLIC~1\MSN6
[27/10/2005|10:45] C:\DOCUME~1\ALLUSE~1\APPLIC~1\QuickTime
[01/01/2003|15:58] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SBSI
[10/04/2008|18:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy
[30/04/2007|14:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec
[12/05/2007|20:18] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Ulead Systems
[01/01/2003|17:42] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Adobe
[01/01/2003|15:41] C:\DOCUME~1\DEFAUL~1\APPLIC~1\desktop.ini
[01/01/2003|15:51] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities
[01/01/2003|17:42] C:\DOCUME~1\DEFAUL~1\APPLIC~1\InterTrust
[01/01/2003|17:17] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[01/01/2003|17:52] C:\DOCUME~1\DEFAUL~1\APPLIC~1\SampleView
[01/01/2003|17:33] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Sonic
[02/01/2003|00:39] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Symantec
[01/01/2003|17:42] C:\DOCUME~1\INVIT~1\APPLIC~1\Adobe
[01/01/2003|15:41] C:\DOCUME~1\INVIT~1\APPLIC~1\desktop.ini
[01/01/2003|15:51] C:\DOCUME~1\INVIT~1\APPLIC~1\Identities
[01/01/2003|17:42] C:\DOCUME~1\INVIT~1\APPLIC~1\InterTrust
[01/01/2003|17:17] C:\DOCUME~1\INVIT~1\APPLIC~1\Microsoft
[01/01/2003|17:52] C:\DOCUME~1\INVIT~1\APPLIC~1\SampleView
[01/01/2003|17:33] C:\DOCUME~1\INVIT~1\APPLIC~1\Sonic
[02/01/2003|00:39] C:\DOCUME~1\INVIT~1\APPLIC~1\Symantec
[27/01/2007|20:22] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[16/06/2007|14:11] C:\DOCUME~1\MAMANP~1\APPLIC~1\Adobe
[01/01/2003|15:41] C:\DOCUME~1\MAMANP~1\APPLIC~1\desktop.ini
[07/09/2004|15:16] C:\DOCUME~1\MAMANP~1\APPLIC~1\Dossier de t‚l‚chargement Share-to-Web
[21/01/2006|19:19] C:\DOCUME~1\MAMANP~1\APPLIC~1\Dossier de t‚l‚chargement Share-to-Web
[15/09/2007|17:06] C:\DOCUME~1\MAMANP~1\APPLIC~1\F-Secure
[02/05/2008|21:28] C:\DOCUME~1\MAMANP~1\APPLIC~1\grim deaf sect
[09/03/2005|12:55] C:\DOCUME~1\MAMANP~1\APPLIC~1\Help
[27/06/2007|16:50] C:\DOCUME~1\MAMANP~1\APPLIC~1\HP
[01/01/2003|15:51] C:\DOCUME~1\MAMANP~1\APPLIC~1\Identities
[01/01/2003|17:42] C:\DOCUME~1\MAMANP~1\APPLIC~1\InterTrust
[15/02/2006|13:33] C:\DOCUME~1\MAMANP~1\APPLIC~1\ispnews
[21/01/2006|19:19] C:\DOCUME~1\MAMANP~1\APPLIC~1\Macromedia
[13/01/2008|19:48] C:\DOCUME~1\MAMANP~1\APPLIC~1\Microsoft
[01/01/2003|17:52] C:\DOCUME~1\MAMANP~1\APPLIC~1\SampleView
[13/07/2007|20:37] C:\DOCUME~1\MAMANP~1\APPLIC~1\Sonic
[02/01/2003|00:39] C:\DOCUME~1\MAMANP~1\APPLIC~1\Symantec
[30/01/2007|19:01] C:\DOCUME~1\MAMANP~1\APPLIC~1\UseNeXT
[05/06/2007|18:35] C:\DOCUME~1\MAMANP~1\APPLIC~1\vlc
[01/01/2003|15:55] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
[19/05/2007|17:46] C:\DOCUME~1\PROPRI~1\APPLIC~1\Adobe
[01/01/2003|15:41] C:\DOCUME~1\PROPRI~1\APPLIC~1\desktop.ini
[09/06/2004|19:34] C:\DOCUME~1\PROPRI~1\APPLIC~1\Dossier de t‚l‚chargement Share-to-Web
[18/06/2004|17:50] C:\DOCUME~1\PROPRI~1\APPLIC~1\Dossier de t‚l‚chargement Share-to-Web
[11/02/2004|20:00] C:\DOCUME~1\PROPRI~1\APPLIC~1\GDIPFONTCACHEV1.DAT
[25/02/2008|13:45] C:\DOCUME~1\PROPRI~1\APPLIC~1\grim deaf sect
[08/08/2005|18:42] C:\DOCUME~1\PROPRI~1\APPLIC~1\Help
[18/06/2004|16:55] C:\DOCUME~1\PROPRI~1\APPLIC~1\HP
[01/01/2003|15:51] C:\DOCUME~1\PROPRI~1\APPLIC~1\Identities
[27/09/2006|21:38] C:\DOCUME~1\PROPRI~1\APPLIC~1\Info Bait Ford
[26/04/2004|19:56] C:\DOCUME~1\PROPRI~1\APPLIC~1\InterVideo
[14/02/2006|21:43] C:\DOCUME~1\PROPRI~1\APPLIC~1\ispnews
[06/01/2006|21:48] C:\DOCUME~1\PROPRI~1\APPLIC~1\Lavasoft
[12/05/2007|20:11] C:\DOCUME~1\PROPRI~1\APPLIC~1\LimeWire
[31/12/2004|17:13] C:\DOCUME~1\PROPRI~1\APPLIC~1\Macromedia
[10/02/2006|19:25] C:\DOCUME~1\PROPRI~1\APPLIC~1\Microsoft
[25/02/2004|17:49] C:\DOCUME~1\PROPRI~1\APPLIC~1\MSN6
[01/01/2003|17:52] C:\DOCUME~1\PROPRI~1\APPLIC~1\SampleView
[10/07/2007|14:48] C:\DOCUME~1\PROPRI~1\APPLIC~1\Shareaza
[27/12/2003|17:49] C:\DOCUME~1\PROPRI~1\APPLIC~1\Sonic
[02/01/2003|00:39] C:\DOCUME~1\PROPRI~1\APPLIC~1\Symantec
[27/01/2007|18:52] C:\DOCUME~1\PROPRI~1\APPLIC~1\UseNeXT
[12/12/2004|21:51] C:\DOCUME~1\PROPRI~1\APPLIC~1\ViewerApp.dat
[14/11/2005|20:30] C:\DOCUME~1\PROPRI~1\APPLIC~1\vlc
[01/03/2006|21:21] C:\DOCUME~1\PROPRI~1\APPLIC~1\Wannadoo
----------------[ Tâches planifiées dans C:\WINDOWS\tasks ]---------------
[19/05/2008 22:00][--ah-----] C:\WINDOWS\tasks\AB058FE3919A0513.job
[21/05/2008 17:16][--a------] C:\WINDOWS\tasks\Scheduled scanning task.job
[23/05/2008 16:00][--a------] C:\WINDOWS\tasks\HPpromotions psc 2350 series.job
[07/03/2005 22:12][--a------] C:\WINDOWS\tasks\Symantec NetDetect.job
[03/08/2003 12:17][-rah-----] C:\WINDOWS\tasks\desktop.ini
[23/05/2008 15:04][--ah-----] C:\WINDOWS\tasks\SA.DAT
AB058FE3919A0513.job <--> c:\docume~1\mamanp~1\applic~1\grimde~1\fragplandelete.exe
---------------[ Listing des dossiers dans C:\Program Files ]--------------
[19/05/2007|17:41] C:\Program Files\Adobe
[04/02/2007|18:50] C:\Program Files\Ahead
[25/03/2005|20:23] C:\Program Files\Alwil Software
[26/12/2003|17:59] C:\Program Files\ArcSoft
[26/12/2003|17:58] C:\Program Files\ATI Technologies
[01/01/2003|15:47] C:\Program Files\ComPlus Applications
[31/03/2007|17:36] C:\Program Files\Corel
[11/05/2006|15:20] C:\Program Files\DIFX
[21/03/2006|19:14] C:\Program Files\DivX
[26/04/2007|20:58] C:\Program Files\Easy Internet signup
[21/07/2004|15:18] C:\Program Files\Ediser
[10/07/2007|15:31] C:\Program Files\eMule
[10/04/2008|20:16] C:\Program Files\Fichiers communs
[02/05/2008|21:25] C:\Program Files\grim deaf sect
[21/01/2006|21:16] C:\Program Files\Harry Potter Creative CD
[02/05/2006|16:47] C:\Program Files\Hewlett-Packard
[10/09/2005|21:14] C:\Program Files\HP
[10/04/2008|18:28] C:\Program Files\InstallShield Installation Information
[28/12/2005|22:27] C:\Program Files\InterActual
[02/11/2003|03:54] C:\Program Files\Internet Explorer
[26/12/2003|18:00] C:\Program Files\InterVideo
[12/05/2007|19:52] C:\Program Files\Java
[09/12/2006|19:21] C:\Program Files\Java Web Start
[08/05/2006|19:33] C:\Program Files\JoWooD
[06/01/2006|21:47] C:\Program Files\Lavasoft
[12/05/2007|16:45] C:\Program Files\Lexmark
[12/05/2007|20:09] C:\Program Files\LimeWire
[27/10/2005|10:46] C:\Program Files\Logitech
[23/05/2008|18:45] C:\Program Files\Lopxpsetup
[24/03/2007|19:23] C:\Program Files\MaxiCompte
[01/05/2005|17:39] C:\Program Files\Micro Application
[01/01/2003|17:18] C:\Program Files\Microsoft Encarta
[01/01/2003|15:51] C:\Program Files\microsoft frontpage
[15/09/2007|16:45] C:\Program Files\Microsoft Office
[09/12/2006|19:21] C:\Program Files\Microsoft Picture It! 7
[01/01/2003|17:16] C:\Program Files\Microsoft Works
[01/01/2003|17:12] C:\Program Files\Microsoft Works Suite 2003
[01/05/2005|17:32] C:\Program Files\Microsoft.NET
[02/11/2003|03:54] C:\Program Files\Movie Maker
[01/01/2003|15:46] C:\Program Files\MSN
[01/01/2003|15:46] C:\Program Files\MSN Gaming Zone
[15/09/2007|16:42] C:\Program Files\MSN Messenger
[09/06/2006|18:17] C:\Program Files\MSN Messengerpr plus
[26/12/2003|17:58] C:\Program Files\Multimedia Card Reader
[09/01/2004|19:11] C:\Program Files\MVAPPS
[08/02/2005|19:41] C:\Program Files\NetMeeting
[26/04/2007|20:59] C:\Program Files\Outlook Express
[01/03/2008|00:12] C:\Program Files\PhotoFiltre
[21/07/2005|22:09] C:\Program Files\QuickTime
[01/01/2003|17:32] C:\Program Files\RecordNow!
[30/04/2007|13:32] C:\Program Files\SAGEM
[25/04/2007|21:24] C:\Program Files\Securitoo
[01/01/2003|18:04] C:\Program Files\Services en ligne
[10/07/2007|14:48] C:\Program Files\Shareaza
[15/09/2007|16:38] C:\Program Files\Solone
[10/04/2008|17:58] C:\Program Files\Spybot - Search & Destroy
[10/04/2008|17:52] C:\Program Files\spybotsd152.exe
[30/04/2007|14:45] C:\Program Files\Symantec
[02/05/2006|16:42] C:\Program Files\Uninstall Information
[19/05/2007|10:47] C:\Program Files\VideoLAN
[30/04/2007|14:27] C:\Program Files\Wanadoo
[10/04/2006|18:51] C:\Program Files\WinAntiVirus Pro 2006
[09/04/2006|18:35] C:\Program Files\WinAntiVirusPro2006FreeInstall_fr.exe
[31/05/2006|20:25] C:\Program Files\Windows Media Player
[02/11/2003|03:54] C:\Program Files\Windows NT
[01/02/2005|21:57] C:\Program Files\WindowsUpdate
[18/02/2006|18:17] C:\Program Files\WinRAR
[01/01/2003|15:51] C:\Program Files\xerox
[10/04/2008|18:31] C:\Program Files\Yahoo!
------[ Listing des dossiers dans C:\Program Files\Fichiers communs ]------
[19/05/2007|17:42] C:\Program Files\Fichiers communs\Adobe
[04/02/2007|18:21] C:\Program Files\Fichiers communs\Ahead
[01/05/2005|17:33] C:\Program Files\Fichiers communs\DESIGNER
[09/01/2004|19:13] C:\Program Files\Fichiers communs\docs
[09/01/2004|19:13] C:\Program Files\Fichiers communs\filter32
[09/06/2004|19:33] C:\Program Files\Fichiers communs\Hewlett-Packard
[01/01/2003|17:06] C:\Program Files\Fichiers communs\HP
[27/10/2005|10:45] C:\Program Files\Fichiers communs\InstallShield
[12/05/2007|19:50] C:\Program Files\Fichiers communs\Java
[09/01/2004|19:13] C:\Program Files\Fichiers communs\lang
[04/02/2007|18:48] C:\Program Files\Fichiers communs\LightScribe
[27/10/2005|10:46] C:\Program Files\Fichiers communs\Logitech
[23/05/2008|18:18] C:\Program Files\Fichiers communs\Microsoft Shared
[01/01/2003|15:47] C:\Program Files\Fichiers communs\MSSoap
[04/02/2007|18:33] C:\Program Files\Fichiers communs\Nero
[01/01/2003|15:41] C:\Program Files\Fichiers communs\ODBC
[02/11/2003|03:54] C:\Program Files\Fichiers communs\Services
[09/01/2004|19:13] C:\Program Files\Fichiers communs\setup.cfg
[01/01/2003|17:33] C:\Program Files\Fichiers communs\Sonic
[01/01/2003|15:41] C:\Program Files\Fichiers communs\SpeechEngines
[30/04/2007|14:46] C:\Program Files\Fichiers communs\Symantec Shared
[01/05/2005|17:32] C:\Program Files\Fichiers communs\System
[07/04/2007|19:12] C:\Program Files\Fichiers communs\Ulead Systems
[04/04/2006|17:55] C:\Program Files\Fichiers communs\Vbox
[24/01/2004|18:09] C:\Program Files\Fichiers communs\wewin
---------------------------[ Process ]--------------------------
... 56
IEXPLORE.EXE ~ [432]
IEXPLORE.EXE ~ [580]
IEXPLORE.EXE ~ [2600]
IEXPLORE.EXE ~ [1808]
IEXPLORE.EXE ~ [2608]
----------------------[ Recherche avec S_Lop ]---------------------
C:\DOCUME~1\PROPRI~1\LOCALS~1\Temp\bis110.exe
C:\DOCUME~1\PROPRI~1\LOCALS~1\Temp\bisEA.exe
-----------------[ Recherche de Fichiers / Dossiers Lop ]-----------------
C:\DOCUME~1\ALLUSE~1\APPLIC~1\flag ace stupid data
C:\DOCUME~1\ALLUSE~1\APPLIC~1\flag ace stupid data\HECK EXTRA.0XE
C:\DOCUME~1\ALLUSE~1\APPLIC~1\flag ace stupid data\Title Proxy.exe
C:\DOCUME~1\MAMANP~1\APPLIC~1\grimde~1
C:\DOCUME~1\MAMANP~1\APPLIC~1\grimde~1\czlljaab.exe
C:\DOCUME~1\MAMANP~1\APPLIC~1\grimde~1\DaleAnteTeamGram.exe
C:\DOCUME~1\MAMANP~1\APPLIC~1\grimde~1\frag plan delete.exe
C:\DOCUME~1\MAMANP~1\APPLIC~1\grimde~1\lrhldkod.exe
C:\DOCUME~1\MAMANP~1\APPLIC~1\grimde~1\ntyvcqad.exe
C:\DOCUME~1\MAMANP~1\APPLIC~1\grimde~1\Nurb Else.exe
C:\DOCUME~1\MAMANP~1\APPLIC~1\grimde~1\wddkxent.exe
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\bceugeng.exe
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\caxwqojf.0xe
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\cqsdwfmz.exe
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\DALEANTETEAMGRAM.0XE
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\DaleAnteTeamGram.1xe
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\DaleAnteTeamGram.exe
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\deudiysm.0xe
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\felneajq.0xe
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\ffqqsmqa.exe
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\FRAG PLAN DELETE.0XE
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\FRAG PLAN DELETE.1XE
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\FRAG PLAN DELETE.2XE
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\FRAG PLAN DELETE.3XE
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\frag plan delete.4xe
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\FRAG PLAN DELETE.5XE
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\GVUSAPRS.0XE
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\igaxchsl.exe
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\izgegvml.0xe
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\lwhksuab.exe
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\nofsaltb.exe
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\NURB ELSE.0XE
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\NURB ELSE.1XE
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\Nurb Else.exe
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\qkeajycb.0xe
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\qtgwxgcq.exe
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\ravajhdr.exe
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\rbinlvdk.exe
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\rbpvjhye.exe
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\rylbhdom.exe
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\ufxmjkiu.0xe
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\WCEBGCBJ.0XE
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\wpegvltf.0xe
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\xzuiadxm.exe
C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\yuhetzvt.exe
C:\Program Files\grimde~1
C:\WINDOWS\Tasks\AB058FE3919A0513.job
----------------------[ Verification du Registre ]----------------------
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"rdrtool"="C:\\DOCUME~1\\PROPRI~1\\APPLIC~1\\GRIMDE~1\\Nurb Else.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Stupid Data Dart Wave"="C:\\Documents and Settings\\All Users\\Application Data\\flag ace stupid data\\Title Proxy.exe"
--------------------[ Verification du fichier Hosts ]---------------------
Fichier Hosts MODIFIE
127.0.0.1 bin.errorprotector.com ## added by CiD
127.0.0.1 br.errorsafe.com ## added by CiD
127.0.0.1 br.winantivirus.com ## added by CiD
127.0.0.1 br.winfixer.com ## added by CiD
127.0.0.1 de.errorsafe.com ## added by CiD
127.0.0.1 de.winantivirus.com ## added by CiD
127.0.0.1 download.cdn.winsoftware.com ## added by CiD
127.0.0.1 download.errorsafe.com ## added by CiD
127.0.0.1 download.systemdoctor.com ## added by CiD
127.0.0.1 download.winantispyware.com ## added by CiD
127.0.0.1 download.windrivecleaner.com ## added by CiD
127.0.0.1 download.winfixer.com ## added by CiD
127.0.0.1 drivecleaner.com ## added by CiD
127.0.0.1 dynamique.drivecleaner.com ## added by CiD
127.0.0.1 errorprotector.com ## added by CiD
127.0.0.1 errorsafe.com ## added by CiD
127.0.0.1 es.winantivirus.com ## added by CiD
127.0.0.1 fr.winantivirus.com ## added by CiD
127.0.0.1 fr.winfixer.com ## added by CiD
127.0.0.1 go.drivecleaner.com ## added by CiD
127.0.0.1 go.errorsafe.com ## added by CiD
127.0.0.1 go.winantispyware.com ## added by CiD
127.0.0.1 go.winantivirus.com ## added by CiD
127.0.0.1 hk.winantivirus.com ## added by CiD
127.0.0.1 instlog.errorsafe.com ## added by CiD
127.0.0.1 instlog.winantivirus.com ## added by CiD
127.0.0.1 jsp.drivecleaner.com ## added by CiD
127.0.0.1 kb.errorsafe.com ## added by CiD
127.0.0.1 kb.winantivirus.com ## added by CiD
127.0.0.1 nl.errorsafe.com ## added by CiD
127.0.0.1 se.errorsafe.com ## added by CiD
127.0.0.1 secure.drivecleaner.com ## added by CiD
127.0.0.1 secure.errorsafe.com ## added by CiD
127.0.0.1 secure.winantispam.com ## added by CiD
127.0.0.1 secure.winantispy.com ## added by CiD
127.0.0.1 secure.winantivirus.com ## added by CiD
127.0.0.1 support.winantivirus.com ## added by CiD
127.0.0.1 ulog.winantivirus.com ## added by CiD
127.0.0.1 utils.errorsafe.com ## added by CiD
127.0.0.1 utils.winantivirus.com ## added by CiD
127.0.0.1 winantispyware.com ## added by CiD
127.0.0.1 winantivirus.com ## added by CiD
127.0.0.1 winfixer.com ## added by CiD
127.0.0.1 [i]ww/iw.drivecleaner.com ## added by CiD
127.0.0.1 [i]ww/iw.errorprotector.com ## added by CiD
127.0.0.1 [i]ww/iw.errorsafe.com ## added by CiD
127.0.0.1 [i]ww/iw.systemdoctor.com ## added by CiD
127.0.0.1 [i]ww/iw.win-anti-virus-pro.com ## added by CiD
127.0.0.1 [i]ww/iw.win-virus-pro.com ## added by CiD
127.0.0.1 [i]ww/iw.winantispam.com ## added by CiD
127.0.0.1 [i]ww/iw.winantispy.com ## added by CiD
127.0.0.1 [i]ww/iw.winantispyware.com ## added by CiD
127.0.0.1 [i]ww/iw.winantivirus.com ## added by CiD
127.0.0.1 [i]ww/iw.winantiviruspro.com ## added by CiD
127.0.0.1 [i]ww/iw.windrivecleaner.com ## added by CiD
127.0.0.1 [i]ww/iw.windrivesafe.com ## added by CiD
127.0.0.1 [i]ww/iw.winfixer.com ## added by CiD
127.0.0.1 cdn.drivecleaner.com ## added by CiD
127.0.0.1 cdn.errorsafe.com ## added by CiD
127.0.0.1 cdn.winsoftware.com ## added by CiD
127.0.0.1 download.cdn.drivecleaner.com ## added by CiD
127.0.0.1 download.cdn.errorsafe.com ## added by CiD
127.0.0.1 instlog.winfixer.com ## added by CiD
127.0.0.1 trial.updates.winsoftware.com ## added by CiD
127.0.0.1 utils.winfixer.com ## added by CiD
127.0.0.1 winfixer2006.com ## added by CiD
127.0.0.1 winsoftware.com ## added by CiD
127.0.0.1 [i]ww/iw.utils.winfixer.com ## added by CiD
127.0.0.1 [i]ww/iw.winfixer2006.com ## added by CiD
127.0.0.1 [i]ww/iw.winsoftware.com ## added by CiD
-> 8070 ( 70 ## added by CiD )
/!\ 1 Not 127.0.0.1 !!
----------------[ Recherche de fichiers avec Catchme ]-----------------
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-05-23 20:06:41
Windows 5.1.2600 Service Pack 1 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 0
--------------------[ Recherche d'autres infections ]---------------------
Aucune autre infection trouvée !
[F:5329][D:92]-> C:\DOCUME~1\PROPRI~1\LOCALS~1\Temp
[F:221][D:0]-> C:\DOCUME~1\PROPRI~1\Cookies
[F:11817][D:16]-> C:\DOCUME~1\PROPRI~1\LOCALS~1\TEMPOR~1\content.IE5
--------------------[ Fin du rapport a 20:08:44,06 ]----------------------
c koi ton antivirus?
si c avast désinstalle le immédiatement et installe le et mé antivir qui et bocou mieu
si c avast désinstalle le immédiatement et installe le et mé antivir qui et bocou mieu
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
apres l'option 2 j'obtiens ça :
-----------------------[ Lop S&D 4.2.0-9 XP/Vista ]---------------------
[ Windows XP (NT 5.1) Build 2600, Service Pack 1 ]
[ USER : Propri‚taire ] [ "C:\Lop SD" ] [ Selection : 2 ]
[ 23/05/2008 | 20:17:50,43 ] [ PC : NOM-DOWNCO0B3WU ]
[ MAJ : 16-05-2008 | 23:35 ]
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ SUPPRESSION /////////////////////////////
Supprimé! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\flag ace stupid data\HECK EXTRA.0XE
Supprimé! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\flag ace stupid data\Title Proxy.exe
Supprimé! - C:\DOCUME~1\MAMANP~1\APPLIC~1\grimde~1\czlljaab.exe
Supprimé! - C:\DOCUME~1\MAMANP~1\APPLIC~1\grimde~1\DaleAnteTeamGram.exe
Supprimé! - C:\DOCUME~1\MAMANP~1\APPLIC~1\grimde~1\frag plan delete.exe
Supprimé! - C:\DOCUME~1\MAMANP~1\APPLIC~1\grimde~1\lrhldkod.exe
Supprimé! - C:\DOCUME~1\MAMANP~1\APPLIC~1\grimde~1\ntyvcqad.exe
Supprimé! - C:\DOCUME~1\MAMANP~1\APPLIC~1\grimde~1\Nurb Else.exe
Supprimé! - C:\DOCUME~1\MAMANP~1\APPLIC~1\grimde~1\wddkxent.exe
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\bceugeng.exe
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\caxwqojf.0xe
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\cqsdwfmz.exe
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\DALEANTETEAMGRAM.0XE
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\DaleAnteTeamGram.1xe
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\DaleAnteTeamGram.exe
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\deudiysm.0xe
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\felneajq.0xe
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\ffqqsmqa.exe
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\FRAG PLAN DELETE.0XE
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\FRAG PLAN DELETE.1XE
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\FRAG PLAN DELETE.2XE
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\FRAG PLAN DELETE.3XE
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\frag plan delete.4xe
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\FRAG PLAN DELETE.5XE
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\GVUSAPRS.0XE
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\igaxchsl.exe
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\izgegvml.0xe
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\lwhksuab.exe
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\nofsaltb.exe
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\NURB ELSE.0XE
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\NURB ELSE.1XE
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\Nurb Else.exe
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\qkeajycb.0xe
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\qtgwxgcq.exe
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\ravajhdr.exe
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\rbinlvdk.exe
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\rbpvjhye.exe
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\rylbhdom.exe
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\ufxmjkiu.0xe
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\WCEBGCBJ.0XE
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\wpegvltf.0xe
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\xzuiadxm.exe
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\yuhetzvt.exe
Supprimé! - C:\WINDOWS\Tasks\AB058FE3919A0513.job
Supprimé! - C:\DOCUME~1\PROPRI~1\LOCALS~1\Temp\bis110.exe
Supprimé! - C:\DOCUME~1\PROPRI~1\LOCALS~1\Temp\bisEA.exe
Supprimé! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\flag ace stupid data
Supprimé! - C:\DOCUME~1\MAMANP~1\APPLIC~1\grimde~1
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1
Supprimé! - C:\Program Files\grimde~1
Restauré! - Fichier Hosts
//////////////////////////////////////-\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\
Supprimé! - C:\Program Files\WinAntiVirus Pro 2006
//////////////////////////////////////-\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\
-------------[ Listing des dossiers dans Application Data ]------------
[19/05/2007|17:42] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[04/02/2007|18:22] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Ahead
[01/01/2003|15:41] C:\DOCUME~1\ALLUSE~1\APPLIC~1\desktop.ini
[02/05/2008|21:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Fourtickskippile
[02/05/2006|16:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Hewlett-Packard
[18/06/2004|16:55] C:\DOCUME~1\ALLUSE~1\APPLIC~1\HP
[02/05/2006|16:58] C:\DOCUME~1\ALLUSE~1\APPLIC~1\hpzinstall.log
[01/01/2003|17:41] C:\DOCUME~1\ALLUSE~1\APPLIC~1\InterVideo
[15/09/2007|16:45] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Messenger Plus!
[08/03/2006|20:45] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[25/02/2004|17:49] C:\DOCUME~1\ALLUSE~1\APPLIC~1\MSN6
[27/10/2005|10:45] C:\DOCUME~1\ALLUSE~1\APPLIC~1\QuickTime
[01/01/2003|15:58] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SBSI
[10/04/2008|18:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy
[30/04/2007|14:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec
[12/05/2007|20:18] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Ulead Systems
[01/01/2003|17:42] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Adobe
[01/01/2003|15:41] C:\DOCUME~1\DEFAUL~1\APPLIC~1\desktop.ini
[01/01/2003|15:51] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities
[01/01/2003|17:42] C:\DOCUME~1\DEFAUL~1\APPLIC~1\InterTrust
[01/01/2003|17:17] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[01/01/2003|17:52] C:\DOCUME~1\DEFAUL~1\APPLIC~1\SampleView
[01/01/2003|17:33] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Sonic
[02/01/2003|00:39] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Symantec
[01/01/2003|17:42] C:\DOCUME~1\INVIT~1\APPLIC~1\Adobe
[01/01/2003|15:41] C:\DOCUME~1\INVIT~1\APPLIC~1\desktop.ini
[01/01/2003|15:51] C:\DOCUME~1\INVIT~1\APPLIC~1\Identities
[01/01/2003|17:42] C:\DOCUME~1\INVIT~1\APPLIC~1\InterTrust
[01/01/2003|17:17] C:\DOCUME~1\INVIT~1\APPLIC~1\Microsoft
[01/01/2003|17:52] C:\DOCUME~1\INVIT~1\APPLIC~1\SampleView
[01/01/2003|17:33] C:\DOCUME~1\INVIT~1\APPLIC~1\Sonic
[02/01/2003|00:39] C:\DOCUME~1\INVIT~1\APPLIC~1\Symantec
[27/01/2007|20:22] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[16/06/2007|14:11] C:\DOCUME~1\MAMANP~1\APPLIC~1\Adobe
[01/01/2003|15:41] C:\DOCUME~1\MAMANP~1\APPLIC~1\desktop.ini
[07/09/2004|15:16] C:\DOCUME~1\MAMANP~1\APPLIC~1\Dossier de t‚l‚chargement Share-to-Web
[21/01/2006|19:19] C:\DOCUME~1\MAMANP~1\APPLIC~1\Dossier de t‚l‚chargement Share-to-Web
[15/09/2007|17:06] C:\DOCUME~1\MAMANP~1\APPLIC~1\F-Secure
[09/03/2005|12:55] C:\DOCUME~1\MAMANP~1\APPLIC~1\Help
[27/06/2007|16:50] C:\DOCUME~1\MAMANP~1\APPLIC~1\HP
[01/01/2003|15:51] C:\DOCUME~1\MAMANP~1\APPLIC~1\Identities
[01/01/2003|17:42] C:\DOCUME~1\MAMANP~1\APPLIC~1\InterTrust
[15/02/2006|13:33] C:\DOCUME~1\MAMANP~1\APPLIC~1\ispnews
[21/01/2006|19:19] C:\DOCUME~1\MAMANP~1\APPLIC~1\Macromedia
[13/01/2008|19:48] C:\DOCUME~1\MAMANP~1\APPLIC~1\Microsoft
[01/01/2003|17:52] C:\DOCUME~1\MAMANP~1\APPLIC~1\SampleView
[13/07/2007|20:37] C:\DOCUME~1\MAMANP~1\APPLIC~1\Sonic
[02/01/2003|00:39] C:\DOCUME~1\MAMANP~1\APPLIC~1\Symantec
[30/01/2007|19:01] C:\DOCUME~1\MAMANP~1\APPLIC~1\UseNeXT
[05/06/2007|18:35] C:\DOCUME~1\MAMANP~1\APPLIC~1\vlc
[01/01/2003|15:55] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
[19/05/2007|17:46] C:\DOCUME~1\PROPRI~1\APPLIC~1\Adobe
[01/01/2003|15:41] C:\DOCUME~1\PROPRI~1\APPLIC~1\desktop.ini
[09/06/2004|19:34] C:\DOCUME~1\PROPRI~1\APPLIC~1\Dossier de t‚l‚chargement Share-to-Web
[18/06/2004|17:50] C:\DOCUME~1\PROPRI~1\APPLIC~1\Dossier de t‚l‚chargement Share-to-Web
[11/02/2004|20:00] C:\DOCUME~1\PROPRI~1\APPLIC~1\GDIPFONTCACHEV1.DAT
[08/08/2005|18:42] C:\DOCUME~1\PROPRI~1\APPLIC~1\Help
[05/10/2007|19:30] C:\DOCUME~1\PROPRI~1\APPLIC~1\HP
[01/01/2003|15:51] C:\DOCUME~1\PROPRI~1\APPLIC~1\Identities
[27/09/2006|21:38] C:\DOCUME~1\PROPRI~1\APPLIC~1\Info Bait Ford
[26/04/2004|19:56] C:\DOCUME~1\PROPRI~1\APPLIC~1\InterVideo
[14/02/2006|21:43] C:\DOCUME~1\PROPRI~1\APPLIC~1\ispnews
[06/01/2006|21:48] C:\DOCUME~1\PROPRI~1\APPLIC~1\Lavasoft
[12/05/2007|20:11] C:\DOCUME~1\PROPRI~1\APPLIC~1\LimeWire
[31/12/2004|17:13] C:\DOCUME~1\PROPRI~1\APPLIC~1\Macromedia
[10/02/2006|19:25] C:\DOCUME~1\PROPRI~1\APPLIC~1\Microsoft
[25/02/2004|17:49] C:\DOCUME~1\PROPRI~1\APPLIC~1\MSN6
[01/01/2003|17:52] C:\DOCUME~1\PROPRI~1\APPLIC~1\SampleView
[10/07/2007|14:48] C:\DOCUME~1\PROPRI~1\APPLIC~1\Shareaza
[27/12/2003|17:49] C:\DOCUME~1\PROPRI~1\APPLIC~1\Sonic
[02/01/2003|00:39] C:\DOCUME~1\PROPRI~1\APPLIC~1\Symantec
[27/01/2007|18:52] C:\DOCUME~1\PROPRI~1\APPLIC~1\UseNeXT
[12/12/2004|21:51] C:\DOCUME~1\PROPRI~1\APPLIC~1\ViewerApp.dat
[14/11/2005|20:30] C:\DOCUME~1\PROPRI~1\APPLIC~1\vlc
[01/03/2006|21:21] C:\DOCUME~1\PROPRI~1\APPLIC~1\Wannadoo
----------------[ Tâches planifiées dans C:\WINDOWS\tasks ]---------------
[21/05/2008 17:16][--a------] C:\WINDOWS\tasks\Scheduled scanning task.job
[23/05/2008 16:00][--a------] C:\WINDOWS\tasks\HPpromotions psc 2350 series.job
[07/03/2005 22:12][--a------] C:\WINDOWS\tasks\Symantec NetDetect.job
[03/08/2003 12:17][-rah-----] C:\WINDOWS\tasks\desktop.ini
[23/05/2008 15:04][--ah-----] C:\WINDOWS\tasks\SA.DAT
---------------[ Listing des dossiers dans C:\Program Files ]--------------
[19/05/2007|17:41] C:\Program Files\Adobe
[04/02/2007|18:50] C:\Program Files\Ahead
[25/03/2005|20:23] C:\Program Files\Alwil Software
[26/12/2003|17:59] C:\Program Files\ArcSoft
[26/12/2003|17:58] C:\Program Files\ATI Technologies
[01/01/2003|15:47] C:\Program Files\ComPlus Applications
[31/03/2007|17:36] C:\Program Files\Corel
[11/05/2006|15:20] C:\Program Files\DIFX
[21/03/2006|19:14] C:\Program Files\DivX
[26/04/2007|20:58] C:\Program Files\Easy Internet signup
[21/07/2004|15:18] C:\Program Files\Ediser
[10/07/2007|15:31] C:\Program Files\eMule
[10/04/2008|20:16] C:\Program Files\Fichiers communs
[21/01/2006|21:16] C:\Program Files\Harry Potter Creative CD
[02/05/2006|16:47] C:\Program Files\Hewlett-Packard
[10/09/2005|21:14] C:\Program Files\HP
[10/04/2008|18:28] C:\Program Files\InstallShield Installation Information
[28/12/2005|22:27] C:\Program Files\InterActual
[02/11/2003|03:54] C:\Program Files\Internet Explorer
[26/12/2003|18:00] C:\Program Files\InterVideo
[12/05/2007|19:52] C:\Program Files\Java
[09/12/2006|19:21] C:\Program Files\Java Web Start
[08/05/2006|19:33] C:\Program Files\JoWooD
[06/01/2006|21:47] C:\Program Files\Lavasoft
[12/05/2007|16:45] C:\Program Files\Lexmark
[12/05/2007|20:09] C:\Program Files\LimeWire
[27/10/2005|10:46] C:\Program Files\Logitech
[23/05/2008|18:45] C:\Program Files\Lopxpsetup
[24/03/2007|19:23] C:\Program Files\MaxiCompte
[01/05/2005|17:39] C:\Program Files\Micro Application
[01/01/2003|17:18] C:\Program Files\Microsoft Encarta
[01/01/2003|15:51] C:\Program Files\microsoft frontpage
[15/09/2007|16:45] C:\Program Files\Microsoft Office
[09/12/2006|19:21] C:\Program Files\Microsoft Picture It! 7
[01/01/2003|17:16] C:\Program Files\Microsoft Works
[01/01/2003|17:12] C:\Program Files\Microsoft Works Suite 2003
[01/05/2005|17:32] C:\Program Files\Microsoft.NET
[02/11/2003|03:54] C:\Program Files\Movie Maker
[01/01/2003|15:46] C:\Program Files\MSN
[01/01/2003|15:46] C:\Program Files\MSN Gaming Zone
[15/09/2007|16:42] C:\Program Files\MSN Messenger
[09/06/2006|18:17] C:\Program Files\MSN Messengerpr plus
[26/12/2003|17:58] C:\Program Files\Multimedia Card Reader
[09/01/2004|19:11] C:\Program Files\MVAPPS
[08/02/2005|19:41] C:\Program Files\NetMeeting
[26/04/2007|20:59] C:\Program Files\Outlook Express
[01/03/2008|00:12] C:\Program Files\PhotoFiltre
[21/07/2005|22:09] C:\Program Files\QuickTime
[01/01/2003|17:32] C:\Program Files\RecordNow!
[30/04/2007|13:32] C:\Program Files\SAGEM
[25/04/2007|21:24] C:\Program Files\Securitoo
[01/01/2003|18:04] C:\Program Files\Services en ligne
[10/07/2007|14:48] C:\Program Files\Shareaza
[15/09/2007|16:38] C:\Program Files\Solone
[10/04/2008|17:58] C:\Program Files\Spybot - Search & Destroy
[10/04/2008|17:52] C:\Program Files\spybotsd152.exe
[30/04/2007|14:45] C:\Program Files\Symantec
[02/05/2006|16:42] C:\Program Files\Uninstall Information
[19/05/2007|10:47] C:\Program Files\VideoLAN
[30/04/2007|14:27] C:\Program Files\Wanadoo
[09/04/2006|18:35] C:\Program Files\WinAntiVirusPro2006FreeInstall_fr.exe
[31/05/2006|20:25] C:\Program Files\Windows Media Player
[02/11/2003|03:54] C:\Program Files\Windows NT
[01/02/2005|21:57] C:\Program Files\WindowsUpdate
[18/02/2006|18:17] C:\Program Files\WinRAR
[01/01/2003|15:51] C:\Program Files\xerox
[10/04/2008|18:31] C:\Program Files\Yahoo!
------[ Listing des dossiers dans C:\Program Files\Fichiers communs ]------
[19/05/2007|17:42] C:\Program Files\Fichiers communs\Adobe
[04/02/2007|18:21] C:\Program Files\Fichiers communs\Ahead
[01/05/2005|17:33] C:\Program Files\Fichiers communs\DESIGNER
[09/01/2004|19:13] C:\Program Files\Fichiers communs\docs
[09/01/2004|19:13] C:\Program Files\Fichiers communs\filter32
[09/06/2004|19:33] C:\Program Files\Fichiers communs\Hewlett-Packard
[01/01/2003|17:06] C:\Program Files\Fichiers communs\HP
[27/10/2005|10:45] C:\Program Files\Fichiers communs\InstallShield
[12/05/2007|19:50] C:\Program Files\Fichiers communs\Java
[09/01/2004|19:13] C:\Program Files\Fichiers communs\lang
[04/02/2007|18:48] C:\Program Files\Fichiers communs\LightScribe
[27/10/2005|10:46] C:\Program Files\Fichiers communs\Logitech
[23/05/2008|18:18] C:\Program Files\Fichiers communs\Microsoft Shared
[01/01/2003|15:47] C:\Program Files\Fichiers communs\MSSoap
[04/02/2007|18:33] C:\Program Files\Fichiers communs\Nero
[01/01/2003|15:41] C:\Program Files\Fichiers communs\ODBC
[02/11/2003|03:54] C:\Program Files\Fichiers communs\Services
[09/01/2004|19:13] C:\Program Files\Fichiers communs\setup.cfg
[01/01/2003|17:33] C:\Program Files\Fichiers communs\Sonic
[01/01/2003|15:41] C:\Program Files\Fichiers communs\SpeechEngines
[30/04/2007|14:46] C:\Program Files\Fichiers communs\Symantec Shared
[01/05/2005|17:32] C:\Program Files\Fichiers communs\System
[07/04/2007|19:12] C:\Program Files\Fichiers communs\Ulead Systems
[04/04/2006|17:55] C:\Program Files\Fichiers communs\Vbox
[24/01/2004|18:09] C:\Program Files\Fichiers communs\wewin
---------------------------[ Process ]--------------------------
... 51
... OK !
----------------------[ Recherche avec S_Lop ]---------------------
Aucun fichier / dossier Lop trouvé !
-----------------[ Recherche de Fichiers / Dossiers Lop ]-----------------
Aucun fichier / dossier Lop trouvé !
----------------------[ Verification du Registre ]----------------------
..... OK !
--------------------[ Verification du fichier Hosts ]---------------------
Fichier Hosts PROPRE
----------------[ Recherche de fichiers avec Catchme ]-----------------
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-05-23 20:20:40
Windows 5.1.2600 Service Pack 1 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 0
--------------------[ Recherche d'autres infections ]---------------------
Aucune autre infection trouvée !
[F:5327][D:92]-> C:\DOCUME~1\PROPRI~1\LOCALS~1\Temp
[F:221][D:0]-> C:\DOCUME~1\PROPRI~1\Cookies
[F:11856][D:16]-> C:\DOCUME~1\PROPRI~1\LOCALS~1\TEMPOR~1\content.IE5
--------------------[ Fin du rapport a 20:22:12,18 ]----------------------
-----------------------[ Lop S&D 4.2.0-9 XP/Vista ]---------------------
[ Windows XP (NT 5.1) Build 2600, Service Pack 1 ]
[ USER : Propri‚taire ] [ "C:\Lop SD" ] [ Selection : 2 ]
[ 23/05/2008 | 20:17:50,43 ] [ PC : NOM-DOWNCO0B3WU ]
[ MAJ : 16-05-2008 | 23:35 ]
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ SUPPRESSION /////////////////////////////
Supprimé! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\flag ace stupid data\HECK EXTRA.0XE
Supprimé! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\flag ace stupid data\Title Proxy.exe
Supprimé! - C:\DOCUME~1\MAMANP~1\APPLIC~1\grimde~1\czlljaab.exe
Supprimé! - C:\DOCUME~1\MAMANP~1\APPLIC~1\grimde~1\DaleAnteTeamGram.exe
Supprimé! - C:\DOCUME~1\MAMANP~1\APPLIC~1\grimde~1\frag plan delete.exe
Supprimé! - C:\DOCUME~1\MAMANP~1\APPLIC~1\grimde~1\lrhldkod.exe
Supprimé! - C:\DOCUME~1\MAMANP~1\APPLIC~1\grimde~1\ntyvcqad.exe
Supprimé! - C:\DOCUME~1\MAMANP~1\APPLIC~1\grimde~1\Nurb Else.exe
Supprimé! - C:\DOCUME~1\MAMANP~1\APPLIC~1\grimde~1\wddkxent.exe
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\bceugeng.exe
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\caxwqojf.0xe
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\cqsdwfmz.exe
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\DALEANTETEAMGRAM.0XE
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\DaleAnteTeamGram.1xe
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\DaleAnteTeamGram.exe
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\deudiysm.0xe
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\felneajq.0xe
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\ffqqsmqa.exe
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\FRAG PLAN DELETE.0XE
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\FRAG PLAN DELETE.1XE
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\FRAG PLAN DELETE.2XE
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\FRAG PLAN DELETE.3XE
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\frag plan delete.4xe
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\FRAG PLAN DELETE.5XE
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\GVUSAPRS.0XE
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\igaxchsl.exe
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\izgegvml.0xe
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\lwhksuab.exe
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\nofsaltb.exe
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\NURB ELSE.0XE
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\NURB ELSE.1XE
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\Nurb Else.exe
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\qkeajycb.0xe
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\qtgwxgcq.exe
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\ravajhdr.exe
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\rbinlvdk.exe
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\rbpvjhye.exe
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\rylbhdom.exe
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\ufxmjkiu.0xe
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\WCEBGCBJ.0XE
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\wpegvltf.0xe
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\xzuiadxm.exe
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1\yuhetzvt.exe
Supprimé! - C:\WINDOWS\Tasks\AB058FE3919A0513.job
Supprimé! - C:\DOCUME~1\PROPRI~1\LOCALS~1\Temp\bis110.exe
Supprimé! - C:\DOCUME~1\PROPRI~1\LOCALS~1\Temp\bisEA.exe
Supprimé! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\flag ace stupid data
Supprimé! - C:\DOCUME~1\MAMANP~1\APPLIC~1\grimde~1
Supprimé! - C:\DOCUME~1\PROPRI~1\APPLIC~1\grimde~1
Supprimé! - C:\Program Files\grimde~1
Restauré! - Fichier Hosts
//////////////////////////////////////-\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\
Supprimé! - C:\Program Files\WinAntiVirus Pro 2006
//////////////////////////////////////-\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\
-------------[ Listing des dossiers dans Application Data ]------------
[19/05/2007|17:42] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[04/02/2007|18:22] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Ahead
[01/01/2003|15:41] C:\DOCUME~1\ALLUSE~1\APPLIC~1\desktop.ini
[02/05/2008|21:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Fourtickskippile
[02/05/2006|16:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Hewlett-Packard
[18/06/2004|16:55] C:\DOCUME~1\ALLUSE~1\APPLIC~1\HP
[02/05/2006|16:58] C:\DOCUME~1\ALLUSE~1\APPLIC~1\hpzinstall.log
[01/01/2003|17:41] C:\DOCUME~1\ALLUSE~1\APPLIC~1\InterVideo
[15/09/2007|16:45] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Messenger Plus!
[08/03/2006|20:45] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[25/02/2004|17:49] C:\DOCUME~1\ALLUSE~1\APPLIC~1\MSN6
[27/10/2005|10:45] C:\DOCUME~1\ALLUSE~1\APPLIC~1\QuickTime
[01/01/2003|15:58] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SBSI
[10/04/2008|18:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy
[30/04/2007|14:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec
[12/05/2007|20:18] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Ulead Systems
[01/01/2003|17:42] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Adobe
[01/01/2003|15:41] C:\DOCUME~1\DEFAUL~1\APPLIC~1\desktop.ini
[01/01/2003|15:51] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities
[01/01/2003|17:42] C:\DOCUME~1\DEFAUL~1\APPLIC~1\InterTrust
[01/01/2003|17:17] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[01/01/2003|17:52] C:\DOCUME~1\DEFAUL~1\APPLIC~1\SampleView
[01/01/2003|17:33] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Sonic
[02/01/2003|00:39] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Symantec
[01/01/2003|17:42] C:\DOCUME~1\INVIT~1\APPLIC~1\Adobe
[01/01/2003|15:41] C:\DOCUME~1\INVIT~1\APPLIC~1\desktop.ini
[01/01/2003|15:51] C:\DOCUME~1\INVIT~1\APPLIC~1\Identities
[01/01/2003|17:42] C:\DOCUME~1\INVIT~1\APPLIC~1\InterTrust
[01/01/2003|17:17] C:\DOCUME~1\INVIT~1\APPLIC~1\Microsoft
[01/01/2003|17:52] C:\DOCUME~1\INVIT~1\APPLIC~1\SampleView
[01/01/2003|17:33] C:\DOCUME~1\INVIT~1\APPLIC~1\Sonic
[02/01/2003|00:39] C:\DOCUME~1\INVIT~1\APPLIC~1\Symantec
[27/01/2007|20:22] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[16/06/2007|14:11] C:\DOCUME~1\MAMANP~1\APPLIC~1\Adobe
[01/01/2003|15:41] C:\DOCUME~1\MAMANP~1\APPLIC~1\desktop.ini
[07/09/2004|15:16] C:\DOCUME~1\MAMANP~1\APPLIC~1\Dossier de t‚l‚chargement Share-to-Web
[21/01/2006|19:19] C:\DOCUME~1\MAMANP~1\APPLIC~1\Dossier de t‚l‚chargement Share-to-Web
[15/09/2007|17:06] C:\DOCUME~1\MAMANP~1\APPLIC~1\F-Secure
[09/03/2005|12:55] C:\DOCUME~1\MAMANP~1\APPLIC~1\Help
[27/06/2007|16:50] C:\DOCUME~1\MAMANP~1\APPLIC~1\HP
[01/01/2003|15:51] C:\DOCUME~1\MAMANP~1\APPLIC~1\Identities
[01/01/2003|17:42] C:\DOCUME~1\MAMANP~1\APPLIC~1\InterTrust
[15/02/2006|13:33] C:\DOCUME~1\MAMANP~1\APPLIC~1\ispnews
[21/01/2006|19:19] C:\DOCUME~1\MAMANP~1\APPLIC~1\Macromedia
[13/01/2008|19:48] C:\DOCUME~1\MAMANP~1\APPLIC~1\Microsoft
[01/01/2003|17:52] C:\DOCUME~1\MAMANP~1\APPLIC~1\SampleView
[13/07/2007|20:37] C:\DOCUME~1\MAMANP~1\APPLIC~1\Sonic
[02/01/2003|00:39] C:\DOCUME~1\MAMANP~1\APPLIC~1\Symantec
[30/01/2007|19:01] C:\DOCUME~1\MAMANP~1\APPLIC~1\UseNeXT
[05/06/2007|18:35] C:\DOCUME~1\MAMANP~1\APPLIC~1\vlc
[01/01/2003|15:55] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
[19/05/2007|17:46] C:\DOCUME~1\PROPRI~1\APPLIC~1\Adobe
[01/01/2003|15:41] C:\DOCUME~1\PROPRI~1\APPLIC~1\desktop.ini
[09/06/2004|19:34] C:\DOCUME~1\PROPRI~1\APPLIC~1\Dossier de t‚l‚chargement Share-to-Web
[18/06/2004|17:50] C:\DOCUME~1\PROPRI~1\APPLIC~1\Dossier de t‚l‚chargement Share-to-Web
[11/02/2004|20:00] C:\DOCUME~1\PROPRI~1\APPLIC~1\GDIPFONTCACHEV1.DAT
[08/08/2005|18:42] C:\DOCUME~1\PROPRI~1\APPLIC~1\Help
[05/10/2007|19:30] C:\DOCUME~1\PROPRI~1\APPLIC~1\HP
[01/01/2003|15:51] C:\DOCUME~1\PROPRI~1\APPLIC~1\Identities
[27/09/2006|21:38] C:\DOCUME~1\PROPRI~1\APPLIC~1\Info Bait Ford
[26/04/2004|19:56] C:\DOCUME~1\PROPRI~1\APPLIC~1\InterVideo
[14/02/2006|21:43] C:\DOCUME~1\PROPRI~1\APPLIC~1\ispnews
[06/01/2006|21:48] C:\DOCUME~1\PROPRI~1\APPLIC~1\Lavasoft
[12/05/2007|20:11] C:\DOCUME~1\PROPRI~1\APPLIC~1\LimeWire
[31/12/2004|17:13] C:\DOCUME~1\PROPRI~1\APPLIC~1\Macromedia
[10/02/2006|19:25] C:\DOCUME~1\PROPRI~1\APPLIC~1\Microsoft
[25/02/2004|17:49] C:\DOCUME~1\PROPRI~1\APPLIC~1\MSN6
[01/01/2003|17:52] C:\DOCUME~1\PROPRI~1\APPLIC~1\SampleView
[10/07/2007|14:48] C:\DOCUME~1\PROPRI~1\APPLIC~1\Shareaza
[27/12/2003|17:49] C:\DOCUME~1\PROPRI~1\APPLIC~1\Sonic
[02/01/2003|00:39] C:\DOCUME~1\PROPRI~1\APPLIC~1\Symantec
[27/01/2007|18:52] C:\DOCUME~1\PROPRI~1\APPLIC~1\UseNeXT
[12/12/2004|21:51] C:\DOCUME~1\PROPRI~1\APPLIC~1\ViewerApp.dat
[14/11/2005|20:30] C:\DOCUME~1\PROPRI~1\APPLIC~1\vlc
[01/03/2006|21:21] C:\DOCUME~1\PROPRI~1\APPLIC~1\Wannadoo
----------------[ Tâches planifiées dans C:\WINDOWS\tasks ]---------------
[21/05/2008 17:16][--a------] C:\WINDOWS\tasks\Scheduled scanning task.job
[23/05/2008 16:00][--a------] C:\WINDOWS\tasks\HPpromotions psc 2350 series.job
[07/03/2005 22:12][--a------] C:\WINDOWS\tasks\Symantec NetDetect.job
[03/08/2003 12:17][-rah-----] C:\WINDOWS\tasks\desktop.ini
[23/05/2008 15:04][--ah-----] C:\WINDOWS\tasks\SA.DAT
---------------[ Listing des dossiers dans C:\Program Files ]--------------
[19/05/2007|17:41] C:\Program Files\Adobe
[04/02/2007|18:50] C:\Program Files\Ahead
[25/03/2005|20:23] C:\Program Files\Alwil Software
[26/12/2003|17:59] C:\Program Files\ArcSoft
[26/12/2003|17:58] C:\Program Files\ATI Technologies
[01/01/2003|15:47] C:\Program Files\ComPlus Applications
[31/03/2007|17:36] C:\Program Files\Corel
[11/05/2006|15:20] C:\Program Files\DIFX
[21/03/2006|19:14] C:\Program Files\DivX
[26/04/2007|20:58] C:\Program Files\Easy Internet signup
[21/07/2004|15:18] C:\Program Files\Ediser
[10/07/2007|15:31] C:\Program Files\eMule
[10/04/2008|20:16] C:\Program Files\Fichiers communs
[21/01/2006|21:16] C:\Program Files\Harry Potter Creative CD
[02/05/2006|16:47] C:\Program Files\Hewlett-Packard
[10/09/2005|21:14] C:\Program Files\HP
[10/04/2008|18:28] C:\Program Files\InstallShield Installation Information
[28/12/2005|22:27] C:\Program Files\InterActual
[02/11/2003|03:54] C:\Program Files\Internet Explorer
[26/12/2003|18:00] C:\Program Files\InterVideo
[12/05/2007|19:52] C:\Program Files\Java
[09/12/2006|19:21] C:\Program Files\Java Web Start
[08/05/2006|19:33] C:\Program Files\JoWooD
[06/01/2006|21:47] C:\Program Files\Lavasoft
[12/05/2007|16:45] C:\Program Files\Lexmark
[12/05/2007|20:09] C:\Program Files\LimeWire
[27/10/2005|10:46] C:\Program Files\Logitech
[23/05/2008|18:45] C:\Program Files\Lopxpsetup
[24/03/2007|19:23] C:\Program Files\MaxiCompte
[01/05/2005|17:39] C:\Program Files\Micro Application
[01/01/2003|17:18] C:\Program Files\Microsoft Encarta
[01/01/2003|15:51] C:\Program Files\microsoft frontpage
[15/09/2007|16:45] C:\Program Files\Microsoft Office
[09/12/2006|19:21] C:\Program Files\Microsoft Picture It! 7
[01/01/2003|17:16] C:\Program Files\Microsoft Works
[01/01/2003|17:12] C:\Program Files\Microsoft Works Suite 2003
[01/05/2005|17:32] C:\Program Files\Microsoft.NET
[02/11/2003|03:54] C:\Program Files\Movie Maker
[01/01/2003|15:46] C:\Program Files\MSN
[01/01/2003|15:46] C:\Program Files\MSN Gaming Zone
[15/09/2007|16:42] C:\Program Files\MSN Messenger
[09/06/2006|18:17] C:\Program Files\MSN Messengerpr plus
[26/12/2003|17:58] C:\Program Files\Multimedia Card Reader
[09/01/2004|19:11] C:\Program Files\MVAPPS
[08/02/2005|19:41] C:\Program Files\NetMeeting
[26/04/2007|20:59] C:\Program Files\Outlook Express
[01/03/2008|00:12] C:\Program Files\PhotoFiltre
[21/07/2005|22:09] C:\Program Files\QuickTime
[01/01/2003|17:32] C:\Program Files\RecordNow!
[30/04/2007|13:32] C:\Program Files\SAGEM
[25/04/2007|21:24] C:\Program Files\Securitoo
[01/01/2003|18:04] C:\Program Files\Services en ligne
[10/07/2007|14:48] C:\Program Files\Shareaza
[15/09/2007|16:38] C:\Program Files\Solone
[10/04/2008|17:58] C:\Program Files\Spybot - Search & Destroy
[10/04/2008|17:52] C:\Program Files\spybotsd152.exe
[30/04/2007|14:45] C:\Program Files\Symantec
[02/05/2006|16:42] C:\Program Files\Uninstall Information
[19/05/2007|10:47] C:\Program Files\VideoLAN
[30/04/2007|14:27] C:\Program Files\Wanadoo
[09/04/2006|18:35] C:\Program Files\WinAntiVirusPro2006FreeInstall_fr.exe
[31/05/2006|20:25] C:\Program Files\Windows Media Player
[02/11/2003|03:54] C:\Program Files\Windows NT
[01/02/2005|21:57] C:\Program Files\WindowsUpdate
[18/02/2006|18:17] C:\Program Files\WinRAR
[01/01/2003|15:51] C:\Program Files\xerox
[10/04/2008|18:31] C:\Program Files\Yahoo!
------[ Listing des dossiers dans C:\Program Files\Fichiers communs ]------
[19/05/2007|17:42] C:\Program Files\Fichiers communs\Adobe
[04/02/2007|18:21] C:\Program Files\Fichiers communs\Ahead
[01/05/2005|17:33] C:\Program Files\Fichiers communs\DESIGNER
[09/01/2004|19:13] C:\Program Files\Fichiers communs\docs
[09/01/2004|19:13] C:\Program Files\Fichiers communs\filter32
[09/06/2004|19:33] C:\Program Files\Fichiers communs\Hewlett-Packard
[01/01/2003|17:06] C:\Program Files\Fichiers communs\HP
[27/10/2005|10:45] C:\Program Files\Fichiers communs\InstallShield
[12/05/2007|19:50] C:\Program Files\Fichiers communs\Java
[09/01/2004|19:13] C:\Program Files\Fichiers communs\lang
[04/02/2007|18:48] C:\Program Files\Fichiers communs\LightScribe
[27/10/2005|10:46] C:\Program Files\Fichiers communs\Logitech
[23/05/2008|18:18] C:\Program Files\Fichiers communs\Microsoft Shared
[01/01/2003|15:47] C:\Program Files\Fichiers communs\MSSoap
[04/02/2007|18:33] C:\Program Files\Fichiers communs\Nero
[01/01/2003|15:41] C:\Program Files\Fichiers communs\ODBC
[02/11/2003|03:54] C:\Program Files\Fichiers communs\Services
[09/01/2004|19:13] C:\Program Files\Fichiers communs\setup.cfg
[01/01/2003|17:33] C:\Program Files\Fichiers communs\Sonic
[01/01/2003|15:41] C:\Program Files\Fichiers communs\SpeechEngines
[30/04/2007|14:46] C:\Program Files\Fichiers communs\Symantec Shared
[01/05/2005|17:32] C:\Program Files\Fichiers communs\System
[07/04/2007|19:12] C:\Program Files\Fichiers communs\Ulead Systems
[04/04/2006|17:55] C:\Program Files\Fichiers communs\Vbox
[24/01/2004|18:09] C:\Program Files\Fichiers communs\wewin
---------------------------[ Process ]--------------------------
... 51
... OK !
----------------------[ Recherche avec S_Lop ]---------------------
Aucun fichier / dossier Lop trouvé !
-----------------[ Recherche de Fichiers / Dossiers Lop ]-----------------
Aucun fichier / dossier Lop trouvé !
----------------------[ Verification du Registre ]----------------------
..... OK !
--------------------[ Verification du fichier Hosts ]---------------------
Fichier Hosts PROPRE
----------------[ Recherche de fichiers avec Catchme ]-----------------
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-05-23 20:20:40
Windows 5.1.2600 Service Pack 1 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 0
--------------------[ Recherche d'autres infections ]---------------------
Aucune autre infection trouvée !
[F:5327][D:92]-> C:\DOCUME~1\PROPRI~1\LOCALS~1\Temp
[F:221][D:0]-> C:\DOCUME~1\PROPRI~1\Cookies
[F:11856][D:16]-> C:\DOCUME~1\PROPRI~1\LOCALS~1\TEMPOR~1\content.IE5
--------------------[ Fin du rapport a 20:22:12,18 ]----------------------
Télécharge ToolsCleaner (de A.Rothstein) sur ton Bureau.
http://a-rothstein.changelog.fr/TC/ToolsCleaner2.exe
Clique sur Recherche et laisse le Scan se terminer.
Clique sur Suppression pour finaliser.
Tu peux, si tu le souhaites, te servir des Options facultatives.
Clique sur Quitter, pour que le rapport puisse se créer.
Poste-moi le rapport (TCleaner.txt) qui se trouve à la racine de ton disque dur (C:\).
Faire un Scan antivirus en ligne avec Internet explorer et accepter l'ActiveX
poster le rapport ici ensuite
https://www.bitdefender.fr/
En bas, à gauche de la fenêtre, clique sur Bit Defender SCAN ONLINE
Dans la nouvelle fenêtre, clique sur j’accepte
La fenêtre change encore, clique sur Scanner
Les signatures se chargent, etc.
http://a-rothstein.changelog.fr/TC/ToolsCleaner2.exe
Clique sur Recherche et laisse le Scan se terminer.
Clique sur Suppression pour finaliser.
Tu peux, si tu le souhaites, te servir des Options facultatives.
Clique sur Quitter, pour que le rapport puisse se créer.
Poste-moi le rapport (TCleaner.txt) qui se trouve à la racine de ton disque dur (C:\).
Faire un Scan antivirus en ligne avec Internet explorer et accepter l'ActiveX
poster le rapport ici ensuite
https://www.bitdefender.fr/
En bas, à gauche de la fenêtre, clique sur Bit Defender SCAN ONLINE
Dans la nouvelle fenêtre, clique sur j’accepte
La fenêtre change encore, clique sur Scanner
Les signatures se chargent, etc.
Voici le rapport de Tcleaner
-->- Recherche:
C:\Lop SD: trouvé !
C:\HijackThis: trouvé !
C:\Documents and Settings\Propriétaire\Bureau\Lop S&D.lnk: trouvé !
C:\Documents and Settings\Propriétaire\Bureau\LopSD.exe: trouvé !
C:\Documents and Settings\Propriétaire\Local Settings\Temp\Rar$EX01.781\HijackThis.exe: trouvé !
C:\Documents and Settings\Propriétaire\Menu Démarrer\Programmes\Lop S&D: trouvé !
C:\Documents and Settings\Propriétaire\Recent\HijackThis.lnk: trouvé !
C:\Lop SD\Lop S&D.lnk: trouvé !
---------------------------------
-->- Suppression:
C:\Documents and Settings\Propriétaire\Bureau\Lop S&D.lnk: supprimé !
C:\Documents and Settings\Propriétaire\Bureau\LopSD.exe: supprimé !
C:\Documents and Settings\Propriétaire\Local Settings\Temp\Rar$EX01.781\HijackThis.exe: supprimé !
C:\Documents and Settings\Propriétaire\Recent\HijackThis.lnk: supprimé !
C:\Lop SD\Lop S&D.lnk: supprimé !
C:\Lop SD: ERREUR DE SUPPRESSION !!
C:\HijackThis: supprimé !
C:\Documents and Settings\Propriétaire\Menu Démarrer\Programmes\Lop S&D: supprimé !
Fichiers temporaires nettoyés !
-->- Recherche:
C:\Lop SD: trouvé !
C:\HijackThis: trouvé !
C:\Documents and Settings\Propriétaire\Bureau\Lop S&D.lnk: trouvé !
C:\Documents and Settings\Propriétaire\Bureau\LopSD.exe: trouvé !
C:\Documents and Settings\Propriétaire\Local Settings\Temp\Rar$EX01.781\HijackThis.exe: trouvé !
C:\Documents and Settings\Propriétaire\Menu Démarrer\Programmes\Lop S&D: trouvé !
C:\Documents and Settings\Propriétaire\Recent\HijackThis.lnk: trouvé !
C:\Lop SD\Lop S&D.lnk: trouvé !
---------------------------------
-->- Suppression:
C:\Documents and Settings\Propriétaire\Bureau\Lop S&D.lnk: supprimé !
C:\Documents and Settings\Propriétaire\Bureau\LopSD.exe: supprimé !
C:\Documents and Settings\Propriétaire\Local Settings\Temp\Rar$EX01.781\HijackThis.exe: supprimé !
C:\Documents and Settings\Propriétaire\Recent\HijackThis.lnk: supprimé !
C:\Lop SD\Lop S&D.lnk: supprimé !
C:\Lop SD: ERREUR DE SUPPRESSION !!
C:\HijackThis: supprimé !
C:\Documents and Settings\Propriétaire\Menu Démarrer\Programmes\Lop S&D: supprimé !
Fichiers temporaires nettoyés !
oui suivant ce que Bit Defender aura trouvé le nettoyage sera presque terminé!
Voila le rapport de bitdefender
BitDefender Online Scanner
Rapport d'analyse généré à: Sat, May 24, 2008 - 17:43:44
Voie d'analyse: A:\;C:\;D:\;E:\;F:\;H:\;I:\;J:\;K:\;
Statistiques
Temps
00:46:15
Fichiers
61015
Directoires
6456
Secteurs de boot
3
Archives
803
Paquets programmes
5193
Résultats
Virus identifiés
6
Fichiers infectés
14
Fichiers suspects
0
Avertissements
0
Désinfectés
0
Fichiers effacés
14
Info sur les moteurs
Définition virus
1206427
Version des moteurs
AVCORE v1.0 (build 2422) (i386) (Sep 25 2007 08:26:36)
Analyse des plugins
14
Archive des plugins
28
Unpack des plugins
5
E-mail plugins
5
Système plugins
4
Paramètres d'analyse
Première action
Désinfecté
Seconde Action
Supprimé
Heuristique
Oui
Acceptez les avertissements
Oui
Extensions analysées
exe;com;dll;ocx;scr;bin;dat;386;vxd;sys;wdm;cla;class;ovl;ole;hlp;doc;dot;xls;ppt;wbk;wiz;pot;ppa;xla;xlt;vbs;vbe;mdb;rtf;htm;hta;html;xml;xtp;php;asp;js;shs;chm;lnk;pif;prc;url;smm;pfd;msi;ini;csc;cmd;bas;
Excludez les extensions
Analyse d'emails
Oui
Analyse des Archives
Oui
Analyser paquets programmes
Oui
Analyse des fichiers
Oui
Analyse de boot
Oui
Fichier analysé
Statut
C:\Documents and Settings\All Users\Application Data\Fourtickskippile\flag axis.exe
Infecté par: GenPack:Trojan.Swizzor.BF
C:\Documents and Settings\All Users\Application Data\Fourtickskippile\flag axis.exe
Supprimé
C:\Documents and Settings\All Users\Application Data\Fourtickskippile\Heck Bend.exe
Infecté par: GenPack:Trojan.Swizzor.GI
C:\Documents and Settings\All Users\Application Data\Fourtickskippile\Heck Bend.exe
Supprimé
C:\Documents and Settings\Propriétaire\Mes documents\Ma musique\Chansons et films\(ANARCHY) lilireso (Release) [Techno.Remix]\Setup.exe
Détecté avec: Adware.Virtumonde.SG
C:\Documents and Settings\Propriétaire\Mes documents\Ma musique\Chansons et films\(ANARCHY) lilireso (Release) [Techno.Remix]\Setup.exe
Supprimé
C:\hp\bin\Terminator.exe
Détecté avec: Application.Prockill.B
C:\hp\bin\Terminator.exe
Echec de la désinfection
C:\hp\bin\Terminator.exe
Supprimé
C:\Program Files\WinAntiVirusPro2006FreeInstall_fr.exe
Infecté par: Trojan.Downloader.DMA
C:\Program Files\WinAntiVirusPro2006FreeInstall_fr.exe
Supprimé
C:\System Volume Information\_restore{BCBB538F-4B22-4C6E-BAFD-9A806D251BB2}\RP481\A0212513.dll
Détecté avec: Adware.Companion.A
C:\System Volume Information\_restore{BCBB538F-4B22-4C6E-BAFD-9A806D251BB2}\RP481\A0212513.dll
Supprimé
C:\System Volume Information\_restore{BCBB538F-4B22-4C6E-BAFD-9A806D251BB2}\RP487\A0217488.exe
Infecté par: GenPack:Trojan.Swizzor.BF
C:\System Volume Information\_restore{BCBB538F-4B22-4C6E-BAFD-9A806D251BB2}\RP487\A0217488.exe
Supprimé
C:\System Volume Information\_restore{BCBB538F-4B22-4C6E-BAFD-9A806D251BB2}\RP487\A0217490.exe
Infecté par: GenPack:Trojan.Swizzor.GI
C:\System Volume Information\_restore{BCBB538F-4B22-4C6E-BAFD-9A806D251BB2}\RP487\A0217490.exe
Supprimé
C:\System Volume Information\_restore{BCBB538F-4B22-4C6E-BAFD-9A806D251BB2}\RP490\A0219232.exe
Infecté par: GenPack:Trojan.Swizzor.GI
C:\System Volume Information\_restore{BCBB538F-4B22-4C6E-BAFD-9A806D251BB2}\RP490\A0219232.exe
Supprimé
C:\System Volume Information\_restore{BCBB538F-4B22-4C6E-BAFD-9A806D251BB2}\RP490\A0219235.exe
Infecté par: GenPack:Trojan.Swizzor.BF
C:\System Volume Information\_restore{BCBB538F-4B22-4C6E-BAFD-9A806D251BB2}\RP490\A0219235.exe
Supprimé
C:\System Volume Information\_restore{BCBB538F-4B22-4C6E-BAFD-9A806D251BB2}\RP490\A0219607.exe
Infecté par: GenPack:Trojan.Swizzor.BF
C:\System Volume Information\_restore{BCBB538F-4B22-4C6E-BAFD-9A806D251BB2}\RP490\A0219607.exe
Supprimé
C:\System Volume Information\_restore{BCBB538F-4B22-4C6E-BAFD-9A806D251BB2}\RP490\A0219608.exe
Infecté par: GenPack:Trojan.Swizzor.GI
C:\System Volume Information\_restore{BCBB538F-4B22-4C6E-BAFD-9A806D251BB2}\RP490\A0219608.exe
Supprimé
C:\System Volume Information\_restore{BCBB538F-4B22-4C6E-BAFD-9A806D251BB2}\RP490\A0219609.exe
Détecté avec: Application.Prockill.B
C:\System Volume Information\_restore{BCBB538F-4B22-4C6E-BAFD-9A806D251BB2}\RP490\A0219609.exe
Echec de la désinfection
C:\System Volume Information\_restore{BCBB538F-4B22-4C6E-BAFD-9A806D251BB2}\RP490\A0219609.exe
Supprimé
C:\System Volume Information\_restore{BCBB538F-4B22-4C6E-BAFD-9A806D251BB2}\RP490\A0219610.exe
Infecté par: Trojan.Downloader.DMA
C:\System Volume Information\_restore{BCBB538F-4B22-4C6E-BAFD-9A806D251BB2}\RP490\A0219610.exe
Supprimé
BitDefender Online Scanner
Rapport d'analyse généré à: Sat, May 24, 2008 - 17:43:44
Voie d'analyse: A:\;C:\;D:\;E:\;F:\;H:\;I:\;J:\;K:\;
Statistiques
Temps
00:46:15
Fichiers
61015
Directoires
6456
Secteurs de boot
3
Archives
803
Paquets programmes
5193
Résultats
Virus identifiés
6
Fichiers infectés
14
Fichiers suspects
0
Avertissements
0
Désinfectés
0
Fichiers effacés
14
Info sur les moteurs
Définition virus
1206427
Version des moteurs
AVCORE v1.0 (build 2422) (i386) (Sep 25 2007 08:26:36)
Analyse des plugins
14
Archive des plugins
28
Unpack des plugins
5
E-mail plugins
5
Système plugins
4
Paramètres d'analyse
Première action
Désinfecté
Seconde Action
Supprimé
Heuristique
Oui
Acceptez les avertissements
Oui
Extensions analysées
exe;com;dll;ocx;scr;bin;dat;386;vxd;sys;wdm;cla;class;ovl;ole;hlp;doc;dot;xls;ppt;wbk;wiz;pot;ppa;xla;xlt;vbs;vbe;mdb;rtf;htm;hta;html;xml;xtp;php;asp;js;shs;chm;lnk;pif;prc;url;smm;pfd;msi;ini;csc;cmd;bas;
Excludez les extensions
Analyse d'emails
Oui
Analyse des Archives
Oui
Analyser paquets programmes
Oui
Analyse des fichiers
Oui
Analyse de boot
Oui
Fichier analysé
Statut
C:\Documents and Settings\All Users\Application Data\Fourtickskippile\flag axis.exe
Infecté par: GenPack:Trojan.Swizzor.BF
C:\Documents and Settings\All Users\Application Data\Fourtickskippile\flag axis.exe
Supprimé
C:\Documents and Settings\All Users\Application Data\Fourtickskippile\Heck Bend.exe
Infecté par: GenPack:Trojan.Swizzor.GI
C:\Documents and Settings\All Users\Application Data\Fourtickskippile\Heck Bend.exe
Supprimé
C:\Documents and Settings\Propriétaire\Mes documents\Ma musique\Chansons et films\(ANARCHY) lilireso (Release) [Techno.Remix]\Setup.exe
Détecté avec: Adware.Virtumonde.SG
C:\Documents and Settings\Propriétaire\Mes documents\Ma musique\Chansons et films\(ANARCHY) lilireso (Release) [Techno.Remix]\Setup.exe
Supprimé
C:\hp\bin\Terminator.exe
Détecté avec: Application.Prockill.B
C:\hp\bin\Terminator.exe
Echec de la désinfection
C:\hp\bin\Terminator.exe
Supprimé
C:\Program Files\WinAntiVirusPro2006FreeInstall_fr.exe
Infecté par: Trojan.Downloader.DMA
C:\Program Files\WinAntiVirusPro2006FreeInstall_fr.exe
Supprimé
C:\System Volume Information\_restore{BCBB538F-4B22-4C6E-BAFD-9A806D251BB2}\RP481\A0212513.dll
Détecté avec: Adware.Companion.A
C:\System Volume Information\_restore{BCBB538F-4B22-4C6E-BAFD-9A806D251BB2}\RP481\A0212513.dll
Supprimé
C:\System Volume Information\_restore{BCBB538F-4B22-4C6E-BAFD-9A806D251BB2}\RP487\A0217488.exe
Infecté par: GenPack:Trojan.Swizzor.BF
C:\System Volume Information\_restore{BCBB538F-4B22-4C6E-BAFD-9A806D251BB2}\RP487\A0217488.exe
Supprimé
C:\System Volume Information\_restore{BCBB538F-4B22-4C6E-BAFD-9A806D251BB2}\RP487\A0217490.exe
Infecté par: GenPack:Trojan.Swizzor.GI
C:\System Volume Information\_restore{BCBB538F-4B22-4C6E-BAFD-9A806D251BB2}\RP487\A0217490.exe
Supprimé
C:\System Volume Information\_restore{BCBB538F-4B22-4C6E-BAFD-9A806D251BB2}\RP490\A0219232.exe
Infecté par: GenPack:Trojan.Swizzor.GI
C:\System Volume Information\_restore{BCBB538F-4B22-4C6E-BAFD-9A806D251BB2}\RP490\A0219232.exe
Supprimé
C:\System Volume Information\_restore{BCBB538F-4B22-4C6E-BAFD-9A806D251BB2}\RP490\A0219235.exe
Infecté par: GenPack:Trojan.Swizzor.BF
C:\System Volume Information\_restore{BCBB538F-4B22-4C6E-BAFD-9A806D251BB2}\RP490\A0219235.exe
Supprimé
C:\System Volume Information\_restore{BCBB538F-4B22-4C6E-BAFD-9A806D251BB2}\RP490\A0219607.exe
Infecté par: GenPack:Trojan.Swizzor.BF
C:\System Volume Information\_restore{BCBB538F-4B22-4C6E-BAFD-9A806D251BB2}\RP490\A0219607.exe
Supprimé
C:\System Volume Information\_restore{BCBB538F-4B22-4C6E-BAFD-9A806D251BB2}\RP490\A0219608.exe
Infecté par: GenPack:Trojan.Swizzor.GI
C:\System Volume Information\_restore{BCBB538F-4B22-4C6E-BAFD-9A806D251BB2}\RP490\A0219608.exe
Supprimé
C:\System Volume Information\_restore{BCBB538F-4B22-4C6E-BAFD-9A806D251BB2}\RP490\A0219609.exe
Détecté avec: Application.Prockill.B
C:\System Volume Information\_restore{BCBB538F-4B22-4C6E-BAFD-9A806D251BB2}\RP490\A0219609.exe
Echec de la désinfection
C:\System Volume Information\_restore{BCBB538F-4B22-4C6E-BAFD-9A806D251BB2}\RP490\A0219609.exe
Supprimé
C:\System Volume Information\_restore{BCBB538F-4B22-4C6E-BAFD-9A806D251BB2}\RP490\A0219610.exe
Infecté par: Trojan.Downloader.DMA
C:\System Volume Information\_restore{BCBB538F-4B22-4C6E-BAFD-9A806D251BB2}\RP490\A0219610.exe
Supprimé
Télécharge OTMoveIT (de Old_Timer) sur ton Bureau.
http://download.bleepingcomputer.com/oldtimer/OTMoveIt2.exe
Clique double sur OTMoveIT.exe pour le lancer.
copie la liste qui se trouve en citation ci-dessous,
et colle-la dans le cadre de gauche de OTMoveIT :
Paste List of Files/Folders to be moved.
C:\Documents and Settings\All Users\Application Data\Fourtickskippile
C:\Program Files\WinAntiVirusPro2006FreeInstall_fr.exe
Clique sur MoveIt! pour lancer la suppression.
le résultat apparaîtra dans le cadre Results.
Clique sur Exit pour fermer.
Poste le rapport situé dans C:\\\_OTMoveIT\MovedFiles.
Il te sera peut-être demandé de redémarrer le pc pour achever la suppression.
si c'est le cas accepte par Yes.
as encore des soucis?
http://download.bleepingcomputer.com/oldtimer/OTMoveIt2.exe
Clique double sur OTMoveIT.exe pour le lancer.
copie la liste qui se trouve en citation ci-dessous,
et colle-la dans le cadre de gauche de OTMoveIT :
Paste List of Files/Folders to be moved.
C:\Documents and Settings\All Users\Application Data\Fourtickskippile
C:\Program Files\WinAntiVirusPro2006FreeInstall_fr.exe
Clique sur MoveIt! pour lancer la suppression.
le résultat apparaîtra dans le cadre Results.
Clique sur Exit pour fermer.
Poste le rapport situé dans C:\\\_OTMoveIT\MovedFiles.
Il te sera peut-être demandé de redémarrer le pc pour achever la suppression.
si c'est le cas accepte par Yes.
as encore des soucis?
salut j ai le meme souci et je viens de terminer le scan bittdefender
BitDefender Online Scanner
Rapport d'analyse généré à: Wed, Jun 11, 2008 - 23:01:57
Voie d'analyse: C:\;D:\;E:\;
Statistiques
Temps
00:34:42
Fichiers
88218
Directoires
8528
Secteurs de boot
3
Archives
1510
Paquets programmes
6946
Résultats
Virus identifiés
0
Fichiers infectés
0
Fichiers suspects
0
Avertissements
0
Désinfectés
0
Fichiers effacés
0
Info sur les moteurs
Définition virus
1260435
Version des moteurs
AVCORE v1.0 (build 2422) (i386) (Sep 25 2007 08:26:36)
Analyse des plugins
16
Archive des plugins
42
Unpack des plugins
7
E-mail plugins
6
Système plugins
5
Paramètres d'analyse
Première action
Désinfecté
Seconde Action
Supprimé
Heuristique
Oui
Acceptez les avertissements
Oui
Extensions analysées
exe;com;dll;ocx;scr;bin;dat;386;vxd;sys;wdm;cla;class;ovl;ole;hlp;doc;dot;xls;ppt;wbk;wiz;pot;ppa;xla;xlt;vbs;vbe;mdb;rtf;htm;hta;html;xml;xtp;php;asp;js;shs;chm;lnk;pif;prc;url;smm;pfd;msi;ini;csc;cmd;bas;
Excludez les extensions
Analyse d'emails
Oui
Analyse des Archives
Oui
Analyser paquets programmes
Oui
Analyse des fichiers
Oui
Analyse de boot
Oui
Fichier analysé
Statut
Aucun virus trouvé.
BitDefender Online Scanner
Rapport d'analyse généré à: Wed, Jun 11, 2008 - 23:01:57
Voie d'analyse: C:\;D:\;E:\;
Statistiques
Temps
00:34:42
Fichiers
88218
Directoires
8528
Secteurs de boot
3
Archives
1510
Paquets programmes
6946
Résultats
Virus identifiés
0
Fichiers infectés
0
Fichiers suspects
0
Avertissements
0
Désinfectés
0
Fichiers effacés
0
Info sur les moteurs
Définition virus
1260435
Version des moteurs
AVCORE v1.0 (build 2422) (i386) (Sep 25 2007 08:26:36)
Analyse des plugins
16
Archive des plugins
42
Unpack des plugins
7
E-mail plugins
6
Système plugins
5
Paramètres d'analyse
Première action
Désinfecté
Seconde Action
Supprimé
Heuristique
Oui
Acceptez les avertissements
Oui
Extensions analysées
exe;com;dll;ocx;scr;bin;dat;386;vxd;sys;wdm;cla;class;ovl;ole;hlp;doc;dot;xls;ppt;wbk;wiz;pot;ppa;xla;xlt;vbs;vbe;mdb;rtf;htm;hta;html;xml;xtp;php;asp;js;shs;chm;lnk;pif;prc;url;smm;pfd;msi;ini;csc;cmd;bas;
Excludez les extensions
Analyse d'emails
Oui
Analyse des Archives
Oui
Analyser paquets programmes
Oui
Analyse des fichiers
Oui
Analyse de boot
Oui
Fichier analysé
Statut
Aucun virus trouvé.
il étai di ds le forum ke sa venai de live msnger et surtt du sponsor ms je ne lai pa ds le panno de configuration dc je ne c pa koi faire