Mon processeur

Fermé
Sismix84 Messages postés 83 Statut Membre -  
Sismix84 Messages postés 83 Statut Membre -
Bonsoir,

Je vous explique mon problème. Comme tout PC, le CPU ne devrais pas être actif si l'ordi n'est pas utilisé, mais le mien si. Grâce au gadget de Vista, je peut voir l'activité de mon processeur, et il atteins les 30% même plus, sans que je l'utilise. J'avais posté dans la section Windows et ont ma dit de venir poster mon problème ici avec un rapport HijackThis, le voici :

Logfile of HijackThis v1.99.1
Scan saved at 12:44:28, on 31/05/2008
Platform: Unknown Windows (WinNT 6.00.1905 SP1)
MSIE: Internet Explorer v7.00 (7.00.6001.18000)

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskeng.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\hp\support\hpsysdrv.exe
C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\Hewlett-Packard\HP Software Update\hpwuSchd2.exe
C:\Program Files\TortoiseSVN\bin\TSVNCache.exe
C:\Program Files\Alwil Software\Avast4\ashDisp.exe
C:\Windows\Pixart\Pac7302\Monitor.exe
C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Google\Web Accelerator\GoogleWebAccWarden.exe
C:\Windows\System32\mobsync.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\System32\rundll32.exe
C:\Windows\ehome\ehmsas.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Google\Web Accelerator\googlewebaccclient.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqSTE08.exe
C:\hp\kbd\kbd.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Users\João Filipe\Desktop\hijackthis_199\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://google.atcomet.com/b/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr?cobrand=hp-desktop.msn.com&ocid=HPDHP&pc=HPDTDF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.ustart.org
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigURL = http://localhost:9100/proxy.pac
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: BitComet Helper - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO_1.2.2.28.dll
O2 - BHO: &Google Web Accelerator Helper - {69A87B7D-DE56-4136-9655-716BA50C19C7} - C:\Program Files\Google\Web Accelerator\GoogleWebAccToolbar.dll
O2 - BHO: (no name) - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: (no name) - {FFFFFEF0-5B30-21D4-945D-000000000000} - C:\PROGRA~1\STARDO~1\SDIEInt.dll
O3 - Toolbar: &RoboForm - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll
O3 - Toolbar: Google Web Accelerator - {DB87BFA2-A2E3-451E-8E5A-C89982D87CBF} - C:\Program Files\Google\Web Accelerator\GoogleWebAccToolbar.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [hpsysdrv] c:\hp\support\hpsysdrv.exe
O4 - HKLM\..\Run: [OsdMaestro] "C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe"
O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KbdStub.EXE
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [Sony Ericsson PC Suite] "C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" /startoptions
O4 - HKLM\..\Run: [PAC7302_Monitor] C:\Windows\PixArt\PAC7302\Monitor.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\VistaCodecPack\QT\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Shim Fork] "C:\ProgramData\gram hold hold.4bgp1af"
O4 - HKLM\..\Run: [Frag Ooze Cash Scr] "C:\ProgramData\Trans Chic Drive.4gmje"
O4 - HKLM\..\RunOnce: [Launcher] %WINDIR%\SMINST\launcher.exe
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - Startup: Moteur du Planificateur de tâches SolidWorks.lnk = C:\Program Files\SolidWorks\swScheduler\swBOEngine.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Run Google Web Accelerator.lnk = C:\Program Files\Google\Web Accelerator\GoogleWebAccWarden.exe
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O8 - Extra context menu item: &D&ownload &with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm
O8 - Extra context menu item: &D&ownload all video with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddVideo.htm
O8 - Extra context menu item: &D&ownload all with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm
O8 - Extra context menu item: Barre RoboForm - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O8 - Extra context menu item: Enregistrer le formulaire - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O8 - Extra context menu item: Personnaliser le menu - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html
O8 - Extra context menu item: Remplir le formulaire - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O8 - Extra context menu item: Télécharger avec Star Downloader - C:\Program Files\Star Downloader\sdie.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
O9 - Extra button: Remplir - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O9 - Extra 'Tools' menuitem: Remplir le formulaire - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O9 - Extra button: Enregistrer - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O9 - Extra 'Tools' menuitem: Enregistrer le formulaire - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O9 - Extra button: Barre RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O9 - Extra 'Tools' menuitem: Barre RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O9 - Extra button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://C:\Program Files\BitComet\tools\BitCometBHO_1.2.2.28.dll/206 (file missing)
O10 - Unknown file in Winsock LSP: c:\windows\system32\nlaapi.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\napinsp.dll
O11 - Options group: [INTERNATIONAL] International*
O13 - Gopher Prefix:
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/flashplayer/current/swflash.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL
O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL
O18 - Protocol: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files\Windows Live\Mail\mailcomm.dll
O20 - Winlogon Notify: WBSrv - C:\PROGRA~1\Stardock\OBJECT~1\WINDOW~1\wbsrv.dll
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h ccCommon (file missing)
O23 - Service: @%SystemRoot%\ehome\ehstart.dll,-101 (ehstart) - Unknown owner - %windir%\system32\svchost.exe (file missing)
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - c:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: Maxtor Service (Maxtor Sync Service) - Seagate Technology LLC - C:\Program Files\Maxtor\Sync\SyncServices.exe
O23 - Service: MSSQL$SONY_MEDIAMGR - Unknown owner - C:\Program Files\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe (file missing)
O23 - Service: NMSAccessU - Unknown owner - C:\Program Files\CDBurnerXP\NMSAccessU.exe
O23 - Service: @%SystemRoot%\system32\qwave.dll,-1 (QWAVE) - Unknown owner - %windir%\system32\svchost.exe (file missing)
O23 - Service: @%SystemRoot%\system32\seclogon.dll,-7001 (seclogon) - Unknown owner - %windir%\system32\svchost.exe (file missing)
O23 - Service: SolidWorks Licensing Service - Unknown owner - C:\Program Files\Common Files\SolidWorks Shared\Service\SolidWorksLicensing.exe (file missing)
O23 - Service: SQLAgent$SONY_MEDIAMGR - Unknown owner - C:\Program Files\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlagent.EXE (file missing)
O23 - Service: StarWind AE Service (StarWindServiceAE) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 52\StarWind\StarWindServiceAE.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - c:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: @%SystemRoot%\System32\TuneUpDefragService.exe,-1 (TuneUp.Defrag) - TuneUp Software GmbH - C:\Windows\System32\TuneUpDefragService.exe
O23 - Service: Stardock WindowBlinds (WindowBlinds) - Stardock Corporation - C:\PROGRA~1\Stardock\OBJECT~1\WINDOW~1\VistaSrv.exe
O23 - Service: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - %ProgramFiles%\Windows Media Player\wmpnetwk.exe (file missing)

Merci d'avance.

26 réponses

papyber Messages postés 6430 Statut Contributeur sécurité 257
 
télécharge Lop S&D de Eric_71 & Angeldark
https://sites.google.com/site/eric71mespages/lop.sd.exe
scanne avec l'option1 et poste le rapport obtenu
0
Sismix84 Messages postés 83 Statut Membre 2
 
J'avais fait l'analyse y a pas longtemps (j'avais déjà ce problème) c'est pour ça que ça a été rapide.

-----------------------[ Lop S&D 4.2.0-8 XP/Vista ]---------------------

[ Windows 'Longhorn' (NT 6.0) Workstation Build 6001, Service Pack 1 ]
[ USER : JoÆo Filipe ] [ "C:\Lop SD" ] [ Selection : 1 ]
[ 11/05/2008 | 19:58:45,74 ] [ PC : HP-PAVILLION ]
[ MAJ : 11-05-2008 | 18:25 ]
[ UAC => 0 ]

-------------[ Listing des dossiers dans Application Data ]------------

[11/05/2008|14:25] C:\Users\JOOFIL~1\AppData\Roaming\.googlewebacchosts\.googlewebacchosts

[26/04/2008|14:47] C:\Users\JOOFIL~1\AppData\Roaming\Adobe\Linguistics
[26/04/2008|14:47] C:\Users\JOOFIL~1\AppData\Roaming\Adobe\Acrobat
[07/02/2008|17:06] C:\Users\JOOFIL~1\AppData\Roaming\Adobe\Flash Player
[15/05/2007|00:14] C:\Users\JOOFIL~1\AppData\Roaming\Adobe\ESD

[07/05/2007|16:45] C:\Users\JOOFIL~1\AppData\Roaming\Ahead\NeroShowTime.bmk
[03/05/2007|16:34] C:\Users\JOOFIL~1\AppData\Roaming\Ahead\Nero BackItUp
[30/04/2007|12:17] C:\Users\JOOFIL~1\AppData\Roaming\Ahead\Nero Burning ROM
[29/04/2007|19:20] C:\Users\JOOFIL~1\AppData\Roaming\Ahead\NeroVision

[05/04/2008|18:47] C:\Users\JOOFIL~1\AppData\Roaming\aicon\aicon.ini

[24/03/2008|15:40] C:\Users\JOOFIL~1\AppData\Roaming\Apple Computer\Safari
[11/10/2007|17:56] C:\Users\JOOFIL~1\AppData\Roaming\Apple Computer\iTunes

[18/10/2007|09:41] C:\Users\JOOFIL~1\AppData\Roaming\AVSMedia\AVSVideoConverter

[15/04/2008|15:27] C:\Users\JOOFIL~1\AppData\Roaming\CDBurnerXP_Soft\cdbxpp.exe_Url_nfryvllqiqb1hla4nzefaejvhwflc2o0

[13/05/2007|15:31] C:\Users\JOOFIL~1\AppData\Roaming\DWGeditor\DWGeditorPerformance.log

[21/04/2008|20:14] C:\Users\JOOFIL~1\AppData\Roaming\Google\GoogleEarth
[18/05/2007|11:21] C:\Users\JOOFIL~1\AppData\Roaming\Google\Local Search History

[08/04/2008|10:17] C:\Users\JOOFIL~1\AppData\Roaming\gtopala\SIW

[26/04/2007|20:42] C:\Users\JOOFIL~1\AppData\Roaming\Hewlett-Packard\HP Software UI

[11/05/2008|12:45] C:\Users\JOOFIL~1\AppData\Roaming\HP\CRMLogs
[19/10/2007|18:35] C:\Users\JOOFIL~1\AppData\Roaming\HP\Digital Imaging

[26/04/2007|21:04] C:\Users\JOOFIL~1\AppData\Roaming\Identities\{4D07DDE0-BE7B-43FB-8960-D81F03F07F4A}

[20/04/2008|19:32] C:\Users\JOOFIL~1\AppData\Roaming\Image Zone Express\thumbnail.db
[20/04/2008|19:32] C:\Users\JOOFIL~1\AppData\Roaming\Image Zone Express\layouts.db
[20/04/2008|19:32] C:\Users\JOOFIL~1\AppData\Roaming\Image Zone Express\thumbnailSel.db
[20/10/2007|17:16] C:\Users\JOOFIL~1\AppData\Roaming\Image Zone Express\assets.yos
[20/10/2007|17:16] C:\Users\JOOFIL~1\AppData\Roaming\Image Zone Express\asset.yos
[19/10/2007|18:32] C:\Users\JOOFIL~1\AppData\Roaming\Image Zone Express\FolderList.yos

[11/04/2008|12:33] C:\Users\JOOFIL~1\AppData\Roaming\InstallShield\ISEngine12.0

[26/04/2007|21:30] C:\Users\JOOFIL~1\AppData\Roaming\Macromedia\Flash Player

[08/04/2008|13:40] C:\Users\JOOFIL~1\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware

[22/04/2008|20:49] C:\Users\JOOFIL~1\AppData\Roaming\Microsoft\Windows Photo Gallery
[14/04/2008|22:26] C:\Users\JOOFIL~1\AppData\Roaming\Microsoft\Installer
[01/04/2008|18:24] C:\Users\JOOFIL~1\AppData\Roaming\Microsoft\MSN Messenger
[01/03/2008|17:21] C:\Users\JOOFIL~1\AppData\Roaming\Microsoft\Windows
[26/02/2008|13:42] C:\Users\JOOFIL~1\AppData\Roaming\Microsoft\VCExpress
[26/02/2008|13:41] C:\Users\JOOFIL~1\AppData\Roaming\Microsoft\MSDN
[21/01/2008|19:25] C:\Users\JOOFIL~1\AppData\Roaming\Microsoft\Media Player
[13/12/2007|15:55] C:\Users\JOOFIL~1\AppData\Roaming\Microsoft\CLR Security Config
[16/08/2007|11:13] C:\Users\JOOFIL~1\AppData\Roaming\Microsoft\Crypto
[19/06/2007|11:52] C:\Users\JOOFIL~1\AppData\Roaming\Microsoft\eHome
[06/06/2007|14:44] C:\Users\JOOFIL~1\AppData\Roaming\Microsoft\Virtual PC
[19/05/2007|20:58] C:\Users\JOOFIL~1\AppData\Roaming\Microsoft\Speech
[12/05/2007|14:14] C:\Users\JOOFIL~1\AppData\Roaming\Microsoft\Office
[01/05/2007|22:41] C:\Users\JOOFIL~1\AppData\Roaming\Microsoft\HTML Help
[01/05/2007|15:01] C:\Users\JOOFIL~1\AppData\Roaming\Microsoft\Internet Explorer
[29/04/2007|18:34] C:\Users\JOOFIL~1\AppData\Roaming\Microsoft\IdentityCRL
[28/04/2007|19:03] C:\Users\JOOFIL~1\AppData\Roaming\Microsoft\MMC
[27/04/2007|16:20] C:\Users\JOOFIL~1\AppData\Roaming\Microsoft\preuve
[27/04/2007|15:07] C:\Users\JOOFIL~1\AppData\Roaming\Microsoft\Credentials
[26/04/2007|21:04] C:\Users\JOOFIL~1\AppData\Roaming\Microsoft\Protect
[26/04/2007|21:03] C:\Users\JOOFIL~1\AppData\Roaming\Microsoft\SystemCertificates
[26/04/2007|20:50] C:\Users\JOOFIL~1\AppData\Roaming\Microsoft\Network

[03/03/2008|18:50] C:\Users\JOOFIL~1\AppData\Roaming\Microsoft Game Studios\Halo2

[01/03/2008|17:32] C:\Users\JOOFIL~1\AppData\Roaming\Microsoft Games\Zoo Tycoon 2

[29/04/2007|15:53] C:\Users\JOOFIL~1\AppData\Roaming\Mozilla\Firefox

[15/12/2007|15:58] C:\Users\JOOFIL~1\AppData\Roaming\OpenOffice.org2\user

[23/06/2007|19:23] C:\Users\JOOFIL~1\AppData\Roaming\pcouffin.cat\pcouffin.cat

[23/06/2007|19:23] C:\Users\JOOFIL~1\AppData\Roaming\pcouffin.inf\pcouffin.inf

[23/06/2007|19:24] C:\Users\JOOFIL~1\AppData\Roaming\pcouffin.log\pcouffin.log

[23/06/2007|19:23] C:\Users\JOOFIL~1\AppData\Roaming\pcouffin.sys\pcouffin.sys

[20/04/2008|19:32] C:\Users\JOOFIL~1\AppData\Roaming\Printer Info Cache\HP PSC 1500 series 1536.xml
[19/10/2007|18:32] C:\Users\JOOFIL~1\AppData\Roaming\Printer Info Cache\Microsoft XPS Document Writer 1536.xml

[30/04/2008|10:58] C:\Users\JOOFIL~1\AppData\Roaming\Real\RealPlayer
[25/04/2008|19:07] C:\Users\JOOFIL~1\AppData\Roaming\Real\Msg
[08/04/2008|09:11] C:\Users\JOOFIL~1\AppData\Roaming\Real\RealMediaSDK
[08/04/2008|09:09] C:\Users\JOOFIL~1\AppData\Roaming\Real\rnadmin

[29/04/2007|15:07] C:\Users\JOOFIL~1\AppData\Roaming\Roxio\RoxioCentral
[29/04/2007|15:06] C:\Users\JOOFIL~1\AppData\Roaming\Roxio\RoxioCentral33

[13/05/2007|12:11] C:\Users\JOOFIL~1\AppData\Roaming\SecuROM\UserData

[12/03/2008|22:59] C:\Users\JOOFIL~1\AppData\Roaming\Sony\Vegas Pro
[18/09/2007|22:19] C:\Users\JOOFIL~1\AppData\Roaming\Sony\Vegas
[18/09/2007|22:08] C:\Users\JOOFIL~1\AppData\Roaming\Sony\Media Manager

[24/10/2007|14:10] C:\Users\JOOFIL~1\AppData\Roaming\Sony Ericsson\Teleca

[19/11/2007|11:15] C:\Users\JOOFIL~1\AppData\Roaming\Steinberg\myMP3

[18/05/2007|22:15] C:\Users\JOOFIL~1\AppData\Roaming\Sun\Java

[29/09/2007|14:36] C:\Users\JOOFIL~1\AppData\Roaming\SystemRequirementsLab\SRLProxyL.dll
[29/09/2007|14:36] C:\Users\JOOFIL~1\AppData\Roaming\SystemRequirementsLab\SRLProxyK.dll
[29/09/2007|14:36] C:\Users\JOOFIL~1\AppData\Roaming\SystemRequirementsLab\SRLProxyJ.dll
[29/09/2007|14:36] C:\Users\JOOFIL~1\AppData\Roaming\SystemRequirementsLab\SRLProxyI.dll
[29/09/2007|14:36] C:\Users\JOOFIL~1\AppData\Roaming\SystemRequirementsLab\srlproxy.dll.gz

[27/04/2007|15:20] C:\Users\JOOFIL~1\AppData\Roaming\Talkback\MozillaOrg

[24/10/2007|14:14] C:\Users\JOOFIL~1\AppData\Roaming\Teleca\DM

[17/02/2005|09:07] C:\Users\JOOFIL~1\AppData\Roaming\Template\Normal.wpt

[19/02/2008|22:08] C:\Users\JOOFIL~1\AppData\Roaming\TomTom\HOME

[11/04/2008|12:39] C:\Users\JOOFIL~1\AppData\Roaming\TuneUp Software\TuneUp Utilities

[01/05/2008|00:01] C:\Users\JOOFIL~1\AppData\Roaming\vlc\vlcrc
[10/05/2007|17:08] C:\Users\JOOFIL~1\AppData\Roaming\vlc\cache

[01/04/2008|11:54] C:\Users\JOOFIL~1\AppData\Roaming\WinBatch\Settings

[06/05/2008|11:30] C:\Users\JOOFIL~1\AppData\Roaming\wklnhst.dat\wklnhst.dat

[12/05/2007|16:21] C:\Users\JOOFIL~1\AppData\Roaming\???????sAppData\???????sAppData

----------------[ Tâches planifiées dans C:\Windows\tasks ]---------------

[10/05/2008 22:19][--ah-----] C:\Windows\tasks\User_Feed_Synchronization-{3D51593A-22C3-4D80-99D6-689FFDE3FA9A}.job
[11/05/2008 19:43][--ah-----] C:\Windows\tasks\SA.DAT
[11/05/2008 19:43][--a------] C:\Windows\tasks\SCHEDLGU.TXT

------[ Listing des dossiers dans C:\ProgramData ]------

[30/04/2008|09:50] C:\ProgramData\Adminidlebeep
[25/04/2008|20:37] C:\ProgramData\Adobe
[11/10/2007|15:00] C:\ProgramData\Apple
[13/04/2008|23:22] C:\ProgramData\Apple Computer
[02/11/2006|15:02] C:\ProgramData\Application Data
[13/02/2008|17:41] C:\ProgramData\Autodesk
[26/04/2007|20:36] C:\ProgramData\Bureau
[13/09/2007|14:36] C:\ProgramData\BVRP Software
[30/04/2008|09:50] C:\ProgramData\close poke frag ooze
[12/05/2007|12:43] C:\ProgramData\DassaultSystemes
[02/11/2006|15:02] C:\ProgramData\Desktop
[02/11/2006|15:02] C:\ProgramData\Documents
[26/04/2007|20:36] C:\ProgramData\Favoris
[02/11/2006|15:02] C:\ProgramData\Favorites
[26/04/2007|21:48] C:\ProgramData\fssg
[18/05/2007|11:21] C:\ProgramData\Google
[06/05/2008|13:23] C:\ProgramData\gram hold hold.003gqze
[04/05/2008|13:45] C:\ProgramData\gram hold hold.0462y5e
[04/05/2008|18:07] C:\ProgramData\gram hold hold.0ajyf1
[03/05/2008|09:26] C:\ProgramData\gram hold hold.0fukddt
[03/05/2008|11:59] C:\ProgramData\gram hold hold.0j1q0
[08/05/2008|20:57] C:\ProgramData\gram hold hold.0nz73
[30/04/2008|12:46] C:\ProgramData\gram hold hold.0s5fmy
[06/05/2008|17:01] C:\ProgramData\gram hold hold.0yzn4v
[06/05/2008|10:06] C:\ProgramData\gram hold hold.19jvo
[07/05/2008|19:36] C:\ProgramData\gram hold hold.19uitve
[03/05/2008|11:37] C:\ProgramData\gram hold hold.1bt7b
[03/05/2008|21:06] C:\ProgramData\gram hold hold.1eg0b
[02/05/2008|20:46] C:\ProgramData\gram hold hold.1fq7gv9
[30/04/2008|21:25] C:\ProgramData\gram hold hold.1h5jd9
[02/05/2008|21:08] C:\ProgramData\gram hold hold.1mgito9
[09/05/2008|18:32] C:\ProgramData\gram hold hold.1uz3c3
[30/04/2008|11:18] C:\ProgramData\gram hold hold.22vq1n
[02/05/2008|18:13] C:\ProgramData\gram hold hold.27diom9
[07/05/2008|14:30] C:\ProgramData\gram hold hold.2c30jb
[03/05/2008|15:38] C:\ProgramData\gram hold hold.2uupo
[30/04/2008|14:57] C:\ProgramData\gram hold hold.2w03n7
[02/05/2008|17:51] C:\ProgramData\gram hold hold.3b0i22o
[06/05/2008|08:16] C:\ProgramData\gram hold hold.3bm9g1
[01/05/2008|20:55] C:\ProgramData\gram hold hold.3mkys
[08/05/2008|22:02] C:\ProgramData\gram hold hold.42l6ckh
[01/05/2008|15:09] C:\ProgramData\gram hold hold.42n4e7
[30/04/2008|13:29] C:\ProgramData\gram hold hold.435lwi
[08/05/2008|22:46] C:\ProgramData\gram hold hold.4b72p
[11/05/2008|14:56] C:\ProgramData\gram hold hold.4bgp1af
[09/05/2008|19:38] C:\ProgramData\gram hold hold.4bt3a
[07/05/2008|13:24] C:\ProgramData\gram hold hold.4exqggo
[05/05/2008|18:56] C:\ProgramData\gram hold hold.4f2lhn
[03/05/2008|17:49] C:\ProgramData\gram hold hold.4jv4c
[07/05/2008|15:35] C:\ProgramData\gram hold hold.4lfg97g
[30/04/2008|23:36] C:\ProgramData\gram hold hold.50anfzx
[06/05/2008|07:54] C:\ProgramData\gram hold hold.50nf4j
[02/05/2008|19:41] C:\ProgramData\gram hold hold.5lqlkoc
[01/05/2008|16:59] C:\ProgramData\gram hold hold.5nlxnhh
[08/05/2008|20:13] C:\ProgramData\gram hold hold.63up8
[30/04/2008|22:52] C:\ProgramData\gram hold hold.65dtjq
[08/05/2008|20:35] C:\ProgramData\gram hold hold.65myk
[06/05/2008|15:12] C:\ProgramData\gram hold hold.6xhkrt
[30/04/2008|15:19] C:\ProgramData\gram hold hold.6xj2c2
[03/05/2008|12:21] C:\ProgramData\gram hold hold.7q7igfp
[11/05/2008|14:34] C:\ProgramData\gram hold hold.7tk43y9
[30/04/2008|09:50] C:\ProgramData\gram hold hold.83ioz
[07/05/2008|11:35] C:\ProgramData\gram hold hold.8g8pk
[02/05/2008|21:30] C:\ProgramData\gram hold hold.8peyh
[07/05/2008|11:57] C:\ProgramData\gram hold hold.8wn0wr4
[07/05/2008|18:30] C:\ProgramData\gram hold hold.91roc
[04/05/2008|11:12] C:\ProgramData\gram hold hold.97aac
[02/05/2008|16:45] C:\ProgramData\gram hold hold.9cx2i2e
[09/05/2008|21:27] C:\ProgramData\gram hold hold.9dm22ji
[07/05/2008|13:02] C:\ProgramData\gram hold hold.9zmhhm
[06/05/2008|12:39] C:\ProgramData\gram hold hold.a6fxf
[06/05/2008|09:43] C:\ProgramData\gram hold hold.a7qu13
[01/05/2008|21:39] C:\ProgramData\gram hold hold.akp7fx
[07/05/2008|13:46] C:\ProgramData\gram hold hold.apxde
[04/05/2008|17:23] C:\ProgramData\gram hold hold.axwvfh
[06/05/2008|13:01] C:\ProgramData\gram hold hold.b02xdu
[30/04/2008|13:07] C:\ProgramData\gram hold hold.bi6wixl
[01/05/2008|14:48] C:\ProgramData\gram hold hold.blc6yr
[11/05/2008|13:28] C:\ProgramData\gram hold hold.bxp2fbc
[08/05/2008|23:08] C:\ProgramData\gram hold hold.byilo
[03/05/2008|09:48] C:\ProgramData\gram hold hold.byxkj
[01/05/2008|22:00] C:\ProgramData\gram hold hold.c2zunfz
[30/04/2008|16:25] C:\ProgramData\gram hold hold.c3e8d
[06/05/2008|11:33] C:\ProgramData\gram hold hold.c578zn
[06/05/2008|21:24] C:\ProgramData\gram hold hold.c9diegn
[30/04/2008|17:09] C:\ProgramData\gram hold hold.cdphq1v
[03/05/2008|10:10] C:\ProgramData\gram hold hold.cewziw
[07/05/2008|17:47] C:\ProgramData\gram hold hold.cge4d0
[07/05/2008|14:08] C:\ProgramData\gram hold hold.chejg5
[06/05/2008|20:40] C:\ProgramData\gram hold hold.clnro
[30/04/2008|11:40] C:\ProgramData\gram hold hold.clu6014
[04/05/2008|14:51] C:\ProgramData\gram hold hold.cy98z
[09/05/2008|20:43] C:\ProgramData\gram hold hold.defeh
[06/05/2008|13:44] C:\ProgramData\gram hold hold.dkv7y90
[04/05/2008|16:18] C:\ProgramData\gram hold hold.dnfun
[04/05/2008|10:50] C:\ProgramData\gram hold hold.dvhbavu
[02/05/2008|17:07] C:\ProgramData\gram hold hold.e0f4i
[06/05/2008|18:51] C:\ProgramData\gram hold hold.e6sdi
[07/05/2008|16:19] C:\ProgramData\gram hold hold.e85w8t
[01/05/2008|19:49] C:\ProgramData\gram hold hold.ek9vc
[03/05/2008|18:54] C:\ProgramData\gram hold hold.emlm8
[07/05/2008|18:09] C:\ProgramData\gram hold hold.epgzpsh
[04/05/2008|18:52] C:\ProgramData\gram hold hold.er7cg1g
[06/05/2008|10:28] C:\ProgramData\gram hold hold.exp5a
[30/04/2008|17:31] C:\ProgramData\gram hold hold.exz8rf
[06/05/2008|15:34] C:\ProgramData\gram hold hold.ey12bs
[01/05/2008|13:42] C:\ProgramData\gram hold hold.eyz1r
[01/05/2008|20:11] C:\ProgramData\gram hold hold.f0nj2
[03/05/2008|13:48] C:\ProgramData\gram hold hold.f0qf9b7
[04/05/2008|19:58] C:\ProgramData\gram hold hold.f45hshp
[26/02/2008|17:09] C:\ProgramData\gram hold hold.f75c9
[01/05/2008|19:06] C:\ProgramData\gram hold hold.fd46bf7
[03/05/2008|15:59] C:\ProgramData\gram hold hold.fkg3a
[06/05/2008|09:21] C:\ProgramData\gram hold hold.fmfray
[06/05/2008|16:39] C:\ProgramData\gram hold hold.fn2f5v0
[03/05/2008|10:53] C:\ProgramData\gram hold hold.fogikq
[02/05/2008|18:57] C:\ProgramData\gram hold hold.fqck0fd
[09/05/2008|18:54] C:\ProgramData\gram hold hold.fqvvxm
[04/05/2008|15:34] C:\ProgramData\gram hold hold.ftcpx1k
[07/05/2008|17:03] C:\ProgramData\gram hold hold.fubrcpt
[04/05/2008|19:14] C:\ProgramData\gram hold hold.fw3pvc0
[03/05/2008|12:43] C:\ProgramData\gram hold hold.fxliwt
[03/05/2008|22:33] C:\ProgramData\gram hold hold.fzghk4y
[03/05/2008|11:15] C:\ProgramData\gram hold hold.g0qmnu
[03/05/2008|09:04] C:\ProgramData\gram hold hold.g7wt2m
[03/05/2008|15:16] C:\ProgramData\gram hold hold.g95me
[04/05/2008|15:56] C:\ProgramData\gram hold hold.gj7x6h
[03/05/2008|19:16] C:\ProgramData\gram hold hold.gkhgn7
[06/05/2008|09:00] C:\ProgramData\gram hold hold.h0fpv
[08/05/2008|19:08] C:\ProgramData\gram hold hold.hx2vp
[11/05/2008|13:06] C:\ProgramData\gram hold hold.i1de9w
[04/05/2008|12:39] C:\ProgramData\gram hold hold.i4jcqb9
[03/05/2008|20:22] C:\ProgramData\gram hold hold.ib6s9nk
[03/05/2008|14:10] C:\ProgramData\gram hold hold.ie00o
[02/05/2008|20:24] C:\ProgramData\gram hold hold.ifcbc
[07/05/2008|18:52] C:\ProgramData\gram hold hold.ifpeegr
[08/05/2008|17:40] C:\ProgramData\gram hold hold.ivve2tn
[05/05/2008|19:40] C:\ProgramData\gram hold hold.j7af5i
[03/05/2008|22:55] C:\ProgramData\gram hold hold.jjnlq
[05/05/2008|18:34] C:\ProgramData\gram hold hold.jrerkl1
[02/05/2008|18:35] C:\ProgramData\gram hold hold.jufujku
[08/05/2008|18:02] C:\ProgramData\gram hold hold.k37brg
[30/04/2008|14:13] C:\ProgramData\gram hold hold.k40ip
[09/05/2008|21:05] C:\ProgramData\gram hold hold.kf3k0h
[06/05/2008|16:17] C:\ProgramData\gram hold hold.kmhxf
[09/05/2008|19:16] C:\ProgramData\gram hold hold.kqxck4
[01/05/2008|14:26] C:\ProgramData\gram hold hold.ks6vlk
[30/04/2008|10:34] C:\ProgramData\gram hold hold.kt1et
[30/04/2008|18:16] C:\ProgramData\gram hold hold.kuvx77
[09/01/2008|20:32] C:\ProgramData\gram hold hold.kuzne
[09/05/2008|18:10] C:\ProgramData\gram hold hold.l1vbwr
[08/05/2008|21:41] C:\ProgramData\gram hold hold.l9he2
[06/05/2008|17:23] C:\ProgramData\gram hold hold.lix61b
[04/05/2008|11:56] C:\ProgramData\gram hold hold.lnkbq53
[11/05/2008|13:50] C:\ProgramData\gram hold hold.lv99ohg
[04/05/2008|20:20] C:\ProgramData\gram hold hold.lz9o7
[18/01/2008|13:34] C:\ProgramData\gram hold hold.m4wvolg
[09/05/2008|20:21] C:\ProgramData\gram hold hold.mayew
[04/05/2008|19:36] C:\ProgramData\gram hold hold.mg8ctt
[06/05/2008|19:35] C:\ProgramData\gram hold hold.mkxo2y4
[08/05/2008|21:19] C:\ProgramData\gram hold hold.ml86vhr
[08/05/2008|19:29] C:\ProgramData\gram hold hold.mloli3
[30/04/2008|19:14] C:\ProgramData\gram hold hold.n0h59
[04/05/2008|13:23] C:\ProgramData\gram hold hold.n5echaq
[30/04/2008|23:14] C:\ProgramData\gram hold hold.n606220
[06/05/2008|17:45] C:\ProgramData\gram hold hold.naibmii
[07/05/2008|19:14] C:\ProgramData\gram hold hold.nhovg3
[06/05/2008|14:28] C:\ProgramData\gram hold hold.nijj4
[06/05/2008|21:02] C:\ProgramData\gram hold hold.nkvc7z1
[30/04/2008|17:54] C:\ProgramData\gram hold hold.nruec
[30/04/2008|15:41] C:\ProgramData\gram hold hold.nrwnb8
[04/05/2008|17:45] C:\ProgramData\gram hold hold.nst1xb4
[30/04/2008|09:50] C:\ProgramData\gram hold hold.ntjzn
[03/05/2008|16:21] C:\ProgramData\gram hold hold.nw4wn
[06/05/2008|11:11] C:\ProgramData\gram hold hold.nyl7enl
[03/05/2008|21:27] C:\ProgramData\gram hold hold.o1wumc
[09/05/2008|19:59] C:\ProgramData\gram hold hold.obdlr
[03/05/2008|21:49] C:\ProgramData\gram hold hold.obuyr0u
[06/05/2008|08:38] C:\ProgramData\gram hold hold.oc2pw
[03/05/2008|20:00] C:\ProgramData\gram hold hold.oedjkem
[01/05/2008|19:27] C:\ProgramData\gram hold hold.oiby7
[04/05/2008|11:34] C:\ProgramData\gram hold hold.ok5hat
[30/04/2008|22:31] C:\ProgramData\gram hold hold.olccx
[04/05/2008|12:18] C:\ProgramData\gram hold hold.ouwhs
[03/05/2008|18:11] C:\ProgramData\gram hold hold.p7tfc
[06/01/2008|14:14] C:\ProgramData\gram hold hold.pb8t7pl
[30/04/2008|16:03] C:\ProgramData\gram hold hold.pel9a3
[04/05/2008|15:12] C:\ProgramData\gram hold hold.pnwgyd
[30/04/2008|13:51] C:\ProgramData\gram hold hold.prdc1
[04/05/2008|14:07] C:\ProgramData\gram hold hold.ptfv8
[07/05/2008|16:41] C:\ProgramData\gram hold hold.pwiy8m
[04/05/2008|14:29] C:\ProgramData\gram hold hold.pxkyih
[09/05/2008|22:10] C:\ProgramData\gram hold hold.pyuo7ha
[01/05/2008|20:33] C:\ProgramData\gram hold hold.pzh92xl
[05/05/2008|19:18] C:\ProgramData\gram hold hold.q3jbh
[07/05/2008|12:40] C:\ProgramData\gram hold hold.qde2s
[03/05/2008|19:38] C:\ProgramData\gram hold hold.qe5zf2x
[01/05/2008|16:15] C:\ProgramData\gram hold hold.qhysqm2
[30/04/2008|18:37] C:\ProgramData\gram hold hold.qy0rl9t
[30/04/2008|12:02] C:\ProgramData\gram hold hold.r0q4e
[02/05/2008|21:52] C:\ProgramData\gram hold hold.r1vugfl
[06/05/2008|19:56] C:\ProgramData\gram hold hold.rex5da
[02/05/2008|20:02] C:\ProgramData\gram hold hold.rlcfps9
[01/05/2008|15:31] C:\ProgramData\gram hold hold.rm1gb1p
[06/05/2008|20:18] C:\ProgramData\gram hold hold.ryjufb2
[07/05/2008|15:13] C:\ProgramData\gram hold hold.s28585
[04/05/2008|17:02] C:\ProgramData\gram hold hold.s9sky
[02/05/2008|17:29] C:\ProgramData\gram hold hold.scj2v4
[03/05/2008|08:42] C:\ProgramData\gram hold hold.sfbwh5k
[01/05/2008|16:37] C:\ProgramData\gram hold hold.sntl4
[08/05/2008|22:24] C:\ProgramData\gram hold hold.ssqrtf
[08/05/2008|18:24] C:\ProgramData\gram hold hold.t1dqg
[06/05/2008|18:29] C:\ProgramData\gram hold hold.t86wv
[30/04/2008|23:58] C:\ProgramData\gram hold hold.ta10c
[07/05/2008|15:57] C:\ProgramData\gram hold hold.tb08b
[04/05/2008|16:40] C:\ProgramData\gram hold hold.tceyn
[30/04/2008|12:24] C:\ProgramData\gram hold hold.tec0hx
[06/05/2008|14:50] C:\ProgramData\gram hold hold.txutxc
[30/04/2008|10:56] C:\ProgramData\gram hold hold.tzo8u
[06/05/2008|18:07] C:\ProgramData\gram hold hold.u1qtx
[30/04/2008|21:03] C:\ProgramData\gram hold hold.u74m0
[30/04/2008|20:41] C:\ProgramData\gram hold hold.u9jws1
[03/05/2008|18:33] C:\ProgramData\gram hold hold.uex9k
[30/04/2008|19:57] C:\ProgramData\gram hold hold.ukrol89
[03/05/2008|16:43] C:\ProgramData\gram hold hold.uo9fwn
[03/05/2008|10:31] C:\ProgramData\gram hold hold.uobkx
[30/04/2008|14:35] C:\ProgramData\gram hold hold.uvk2jjt
[30/04/2008|10:12] C:\ProgramData\gram hold hold.uyy8hd
[06/05/2008|15:56] C:\ProgramData\gram hold hold.vd4vkmr
[06/05/2008|12:17] C:\ProgramData\gram hold hold.vx55ep
[08/05/2008|18:46] C:\ProgramData\gram hold hold.w12miu
[06/05/2008|10:49] C:\ProgramData\gram hold hold.w8oco7b
[09/05/2008|21:49] C:\ProgramData\gram hold hold.wdkpm
[18/12/2007|12:49] C:\ProgramData\gram hold hold.wh8ok
[03/05/2008|13:26] C:\ProgramData\gram hold hold.wnsq6wk
[03/05/2008|13:04] C:\ProgramData\gram hold hold.wqp5s
[30/04/2008|16:48] C:\ProgramData\gram hold hold.ww5p5
[30/04/2008|19:35] C:\ProgramData\gram hold hold.wzr77uo
[01/05/2008|21:17] C:\ProgramData\gram hold hold.xiv0rj
[08/05/2008|19:51] C:\ProgramData\gram hold hold.xmh6u7
[06/05/2008|19:13] C:\ProgramData\gram hold hold.xo0ympw
[03/05/2008|22:11] C:\ProgramData\gram hold hold.xoq4tbc
[30/04/2008|20:19] C:\ProgramData\gram hold hold.xpwqjv
[30/04/2008|22:09] C:\ProgramData\gram hold hold.xr8ly0y
[07/05/2008|12:19] C:\ProgramData\gram hold hold.xtco0p
[03/05/2008|20:44] C:\ProgramData\gram hold hold.xtrzu
[06/05/2008|11:55] C:\ProgramData\gram hold hold.y04f7
[02/05/2008|19:19] C:\ProgramData\gram hold hold.y3edpz
[01/05/2008|15:53] C:\ProgramData\gram hold hold.y4cp3
[07/05/2008|17:25] C:\ProgramData\gram hold hold.y5nl1w
[01/05/2008|14:04] C:\ProgramData\gram hold hold.yd1hep
[09/05/2008|22:32] C:\ProgramData\gram hold hold.yfdgc
[30/04/2008|21:47] C:\ProgramData\gram hold hold.yhecl97
[03/05/2008|14:54] C:\ProgramData\gram hold hold.ykk45
[03/05/2008|17:05] C:\ProgramData\gram hold hold.ynh8733
[07/05/2008|14:52] C:\ProgramData\gram hold hold.yo2be3
[03/05/2008|14:32] C:\ProgramData\gram hold hold.yonie6b
[03/05/2008|17:27] C:\ProgramData\gram hold hold.yz0grz
[04/05/2008|13:01] C:\ProgramData\gram hold hold.yzfme0
[11/05/2008|14:12] C:\ProgramData\gram hold hold.yzy1ku1
[04/05/2008|18:30] C:\ProgramData\gram hold hold.znr5s1
[06/05/2008|14:06] C:\ProgramData\gram hold hold.zyjpqob
[15/02/2007|02:04] C:\ProgramData\Hewlett-Packard
[20/05/2007|10:20] C:\ProgramData\HP
[01/04/2008|12:00] C:\ProgramData\hpzinstall.log
[15/02/2007|01:47] C:\ProgramData\InstallShield
[08/04/2008|13:39] C:\ProgramData\Malwarebytes
[23/02/2008|17:28] C:\ProgramData\Maxtor
[25/08/2007|15:52] C:\ProgramData\Media Center Programs
[26/04/2007|20:36] C:\ProgramData\Menu D‚marrer
[29/03/2008|10:37] C:\ProgramData\Messenger Plus!
[07/05/2008|16:21] C:\ProgramData\Microsoft
[01/03/2008|17:32] C:\ProgramData\Microsoft Games
[26/02/2008|13:43] C:\ProgramData\Microsoft Help
[26/04/2007|20:36] C:\ProgramData\ModŠles
[30/09/2007|00:56] C:\ProgramData\NVIDIA
[02/06/2007|12:00] C:\ProgramData\RoboForm
[29/04/2008|15:57] C:\ProgramData\Roxio
[07/05/2008|17:05] C:\ProgramData\Skyline
[29/04/2007|15:06] C:\ProgramData\Sonic
[12/03/2008|22:52] C:\ProgramData\Sony
[24/10/2007|14:09] C:\ProgramData\Sony Ericsson
[02/11/2006|15:02] C:\ProgramData\Start Menu
[24/10/2007|14:10] C:\ProgramData\Teleca
[05/09/2007|20:15] C:\ProgramData\TEMP
[02/11/2006|15:02] C:\ProgramData\Templates
[03/05/2008|22:50] C:\ProgramData\TrackMania
[30/04/2008|09:50] C:\ProgramData\Trans Chic Drive.4gmje
[11/04/2008|11:00] C:\ProgramData\TuneUp Software
[19/05/2007|11:42] C:\ProgramData\WEBREG
[02/12/2007|12:26] C:\ProgramData\WLInstaller

---------------[ Listing des dossiers dans C:\Program Files ]--------------

[01/05/2007|18:31] C:\Program Files\7-Zip
[30/04/2008|09:50] C:\Program Files\Adminidlebeep
[25/04/2008|20:35] C:\Program Files\Adobe
[05/04/2008|18:45] C:\Program Files\aicon
[09/06/2007|21:00] C:\Program Files\Alcohol Soft
[01/05/2007|20:49] C:\Program Files\Alwil Software
[20/04/2008|21:19] C:\Program Files\Apple Software Update
[07/05/2008|16:24] C:\Program Files\Autodesk
[26/06/2007|15:28] C:\Program Files\Avanquest update
[11/12/2007|19:51] C:\Program Files\Beneton Movie GIF
[22/08/2007|23:48] C:\Program Files\CamStudio
[15/04/2008|15:26] C:\Program Files\CDBurnerXP
[07/05/2008|16:24] C:\Program Files\Common Files
[14/05/2007|18:26] C:\Program Files\CyberLink
[14/05/2007|18:26] C:\Program Files\CyberLink DVD Solution
[22/03/2008|18:31] C:\Program Files\desktop.ini
[18/08/2007|11:42] C:\Program Files\EA GAMES
[03/07/2007|19:35] C:\Program Files\EA SPORTS
[10/03/2008|22:50] C:\Program Files\Easy Video Downloader
[13/02/2008|20:28] C:\Program Files\eddi's Tools
[16/05/2007|19:17] C:\Program Files\Eidos
[11/04/2008|10:42] C:\Program Files\Electronic Arts
[26/04/2007|20:36] C:\Program Files\Fichiers communs [C:\Program Files\Common Files]
[20/10/2007|16:24] C:\Program Files\Fraps 2.9.1
[21/04/2008|20:04] C:\Program Files\Google
[01/04/2008|12:00] C:\Program Files\Hewlett-Packard
[01/04/2008|12:00] C:\Program Files\HP
[29/04/2007|14:33] C:\Program Files\illiminable
[01/05/2008|13:22] C:\Program Files\InstallShield Installation Information
[22/03/2008|18:20] C:\Program Files\Internet Explorer
[13/04/2008|23:23] C:\Program Files\iPod
[13/04/2008|23:23] C:\Program Files\iTunes
[25/04/2008|19:03] C:\Program Files\Java
[14/04/2008|20:16] C:\Program Files\Loonies
[08/04/2008|13:39] C:\Program Files\Malwarebytes' Anti-Malware
[11/02/2008|19:16] C:\Program Files\Maxtor
[11/04/2008|10:38] C:\Program Files\MediaCoder
[29/03/2008|09:13] C:\Program Files\Messenger Plus! Live
[21/11/2007|00:09] C:\Program Files\Microsoft Baseline Security Analyzer 2
[22/11/2007|11:08] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[01/03/2008|17:23] C:\Program Files\Microsoft Games
[06/03/2008|16:18] C:\Program Files\Microsoft Office
[26/02/2008|13:34] C:\Program Files\Microsoft SDKs
[21/03/2008|19:46] C:\Program Files\Microsoft Silverlight
[18/09/2007|22:06] C:\Program Files\Microsoft SQL Server
[26/02/2008|13:39] C:\Program Files\Microsoft Visual Studio 9.0
[15/02/2007|01:44] C:\Program Files\Microsoft Works
[26/02/2008|13:37] C:\Program Files\Microsoft.NET
[17/04/2008|19:57] C:\Program Files\Mindscape
[24/10/2007|12:30] C:\Program Files\Motorola
[22/03/2008|18:20] C:\Program Files\Movie Maker
[11/05/2008|12:44] C:\Program Files\Mozilla Firefox
[29/04/2008|15:11] C:\Program Files\mp3DirectCut
[02/11/2006|14:37] C:\Program Files\MSBuild
[06/03/2008|16:17] C:\Program Files\MSECache
[10/10/2007|12:44] C:\Program Files\MSXML 4.0
[18/04/2008|15:37] C:\Program Files\MTA San Andreas
[21/11/2007|00:17] C:\Program Files\NCH Software
[29/04/2007|19:07] C:\Program Files\Nero
[02/11/2007|18:12] C:\Program Files\No-IP
[05/05/2008|18:56] C:\Program Files\NRJ
[15/12/2007|15:51] C:\Program Files\OpenOffice.org 2.3
[26/04/2007|20:50] C:\Program Files\Orange
[15/02/2007|01:59] C:\Program Files\PC-Doctor 5 for Windows
[15/04/2008|14:27] C:\Program Files\PhotoFiltre 6.3.1
[07/04/2008|22:53] C:\Program Files\PhotoFiltre Studio
[27/06/2007|21:35] C:\Program Files\Pinnacle
[28/03/2008|20:46] C:\Program Files\Piratrax
[26/06/2007|19:12] C:\Program Files\PIXELA
[23/07/2007|16:39] C:\Program Files\Project64 1.6
[09/05/2008|17:52] C:\Program Files\Project64 1.7 Beta
[20/07/2007|13:03] C:\Program Files\Project64 v1.5
[03/07/2007|19:31] C:\Program Files\RADVideo
[08/04/2008|09:08] C:\Program Files\Real
[01/04/2008|11:54] C:\Program Files\Realtek
[02/11/2006|14:37] C:\Program Files\Reference Assemblies
[18/04/2008|15:44] C:\Program Files\Rockstar Games
[15/02/2007|01:41] C:\Program Files\Roxio
[17/01/2008|20:34] C:\Program Files\SAGEM
[27/05/2007|17:12] C:\Program Files\Services en ligne
[02/06/2007|11:29] C:\Program Files\Siber Systems
[29/04/2008|14:19] C:\Program Files\SnIco Edit
[05/05/2008|18:52] C:\Program Files\SolidWorks
[12/03/2008|22:51] C:\Program Files\Sony
[24/10/2007|14:09] C:\Program Files\Sony Ericsson
[12/03/2008|22:48] C:\Program Files\Sony Setup
[08/04/2008|13:38] C:\Program Files\Spamihilator
[07/04/2008|19:40] C:\Program Files\Star Downloader
[16/08/2007|13:23] C:\Program Files\Stardock
[11/05/2008|14:51] C:\Program Files\Steam
[29/09/2007|14:39] C:\Program Files\SystemRequirementsLab
[19/02/2008|22:07] C:\Program Files\TomTom HOME 2
[04/12/2007|14:13] C:\Program Files\Trust
[27/04/2008|17:20] C:\Program Files\TuneUp Utilities 2008
[05/05/2008|18:55] C:\Program Files\Ubisoft
[05/09/2007|12:36] C:\Program Files\Uninstall Information
[14/02/2008|23:07] C:\Program Files\Valve Hammer Editor
[09/05/2007|21:15] C:\Program Files\VideoLAN
[24/05/2007|21:25] C:\Program Files\VistaCodecPack
[27/06/2007|21:35] C:\Program Files\VOB
[12/03/2008|22:52] C:\Program Files\Vstplugins
[18/01/2008|08:15] C:\Program Files\Wanadoo
[22/03/2008|18:20] C:\Program Files\Windows Calendar
[22/03/2008|18:20] C:\Program Files\Windows Collaboration
[22/03/2008|18:20] C:\Program Files\Windows Defender
[22/03/2008|18:20] C:\Program Files\Windows Journal
[02/12/2007|12:37] C:\Program Files\Windows Live
[09/04/2008|17:11] C:\Program Files\Windows Mail
[16/02/2008|13:57] C:\Program Files\Windows Media Components
[22/03/2008|18:20] C:\Program Files\Windows Media Player
[26/04/2007|20:36] C:\Program Files\Windows NT
[22/03/2008|18:20] C:\Program Files\Windows Photo Gallery
[22/03/2008|18:20] C:\Program Files\Windows Sidebar

------[ Listing des dossiers dans C:\Program Files\Common Files ]------

[25/04/2008|20:36] C:\Program Files\Common Files\Adobe
[11/10/2007|15:11] C:\Program Files\Common Files\Apple
[22/10/2007|07:39] C:\Program Files\Common Files\AVSMedia
[19/05/2007|11:39] C:\Program Files\Common Files\Hewlett-Packard
[19/05/2007|11:41] C:\Program Files\Common Files\HP
[17/01/2008|20:33] C:\Program Files\Common Files\InstallShield
[15/05/2007|16:45] C:\Program Files\Common Files\Java
[11/04/2008|11:08] C:\Program Files\Common Files\LightScribe
[15/02/2007|01:42] C:\Program Files\Common Files\LS Getting Started
[26/02/2008|13:38] C:\Program Files\Common Files\Merge Modules
[03/05/2007|17:04] C:\Program Files\Common Files\Microsoft Games
[05/05/2008|18:52] C:\Program Files\Common Files\microsoft shared
[26/06/2007|15:49] C:\Program Files\Common Files\Motorola Shared
[24/10/2007|12:30] C:\Program Files\Common Files\MSSoap
[25/04/2008|19:06] C:\Program Files\Common Files\Real
[15/02/2007|01:41] C:\Program Files\Common Files\Roxio Shared
[02/11/2006|13:18] C:\Program Files\Common Files\Services
[05/05/2008|18:49] C:\Program Files\Common Files\SolidWorks Shared
[15/02/2007|01:41] C:\Program Files\Common Files\Sonic Shared
[24/10/2007|14:09] C:\Program Files\Common Files\Sony Ericsson Shared
[02/11/2006|13:18] C:\Program Files\Common Files\SpeechEngines
[08/05/2008|17:20] C:\Program Files\Common Files\Steam
[15/02/2007|01:41] C:\Program Files\Common Files\SureThing Shared
[22/03/2008|18:20] C:\Program Files\Common Files\System
[24/10/2007|14:09] C:\Program Files\Common Files\Teleca Shared
[02/12/2007|12:30] C:\Program Files\Common Files\WindowsLiveInstaller
[07/05/2008|16:22] C:\Program Files\Common Files\Wise Installation Wizard
[25/04/2008|19:07] C:\Program Files\Common Files\xing shared

---------------------------[ Process ]--------------------------

... 25

... OK !

----------------------[ Recherche avec S_Lop ]---------------------

C:\ProgramData\gram hold hold.003gqze
C:\ProgramData\gram hold hold.0462y5e
C:\ProgramData\gram hold hold.0ajyf1
C:\ProgramData\gram hold hold.0fukddt
C:\ProgramData\gram hold hold.0j1q0
C:\ProgramData\gram hold hold.0nz73
C:\ProgramData\gram hold hold.0s5fmy
C:\ProgramData\gram hold hold.0yzn4v
C:\ProgramData\gram hold hold.19jvo
C:\ProgramData\gram hold hold.19uitve
C:\ProgramData\gram hold hold.1bt7b
C:\ProgramData\gram hold hold.1eg0b
C:\ProgramData\gram hold hold.1fq7gv9
C:\ProgramData\gram hold hold.1h5jd9
C:\ProgramData\gram hold hold.1mgito9
C:\ProgramData\gram hold hold.1uz3c3
C:\ProgramData\gram hold hold.22vq1n
C:\ProgramData\gram hold hold.27diom9
C:\ProgramData\gram hold hold.2c30jb
C:\ProgramData\gram hold hold.2uupo
C:\ProgramData\gram hold hold.2w03n7
C:\ProgramData\gram hold hold.3b0i22o
C:\ProgramData\gram hold hold.3bm9g1
C:\ProgramData\gram hold hold.3mkys
C:\ProgramData\gram hold hold.42l6ckh
C:\ProgramData\gram hold hold.42n4e7
C:\ProgramData\gram hold hold.435lwi
C:\ProgramData\gram hold hold.4b72p
C:\ProgramData\gram hold hold.4bgp1af
C:\ProgramData\gram hold hold.4bt3a
C:\ProgramData\gram hold hold.4exqggo
C:\ProgramData\gram hold hold.4f2lhn
C:\ProgramData\gram hold hold.4jv4c
C:\ProgramData\gram hold hold.4lfg97g
C:\ProgramData\gram hold hold.50anfzx
C:\ProgramData\gram hold hold.50nf4j
C:\ProgramData\gram hold hold.5lqlkoc
C:\ProgramData\gram hold hold.5nlxnhh
C:\ProgramData\gram hold hold.63up8
C:\ProgramData\gram hold hold.65dtjq
C:\ProgramData\gram hold hold.65myk
C:\ProgramData\gram hold hold.6xhkrt
C:\ProgramData\gram hold hold.6xj2c2
C:\ProgramData\gram hold hold.7q7igfp
C:\ProgramData\gram hold hold.7tk43y9
C:\ProgramData\gram hold hold.83ioz
C:\ProgramData\gram hold hold.8g8pk
C:\ProgramData\gram hold hold.8peyh
C:\ProgramData\gram hold hold.8wn0wr4
C:\ProgramData\gram hold hold.91roc
C:\ProgramData\gram hold hold.97aac
C:\ProgramData\gram hold hold.9cx2i2e
C:\ProgramData\gram hold hold.9dm22ji
C:\ProgramData\gram hold hold.9zmhhm
C:\ProgramData\gram hold hold.a6fxf
C:\ProgramData\gram hold hold.a7qu13
C:\ProgramData\gram hold hold.akp7fx
C:\ProgramData\gram hold hold.apxde
C:\ProgramData\gram hold hold.axwvfh
C:\ProgramData\gram hold hold.b02xdu
C:\ProgramData\gram hold hold.bi6wixl
C:\ProgramData\gram hold hold.blc6yr
C:\ProgramData\gram hold hold.bxp2fbc
C:\ProgramData\gram hold hold.byilo
C:\ProgramData\gram hold hold.byxkj
C:\ProgramData\gram hold hold.c2zunfz
C:\ProgramData\gram hold hold.c3e8d
C:\ProgramData\gram hold hold.c578zn
C:\ProgramData\gram hold hold.c9diegn
C:\ProgramData\gram hold hold.cdphq1v
C:\ProgramData\gram hold hold.cewziw
C:\ProgramData\gram hold hold.cge4d0
C:\ProgramData\gram hold hold.chejg5
C:\ProgramData\gram hold hold.clnro
C:\ProgramData\gram hold hold.clu6014
C:\ProgramData\gram hold hold.cy98z
C:\ProgramData\gram hold hold.defeh
C:\ProgramData\gram hold hold.dkv7y90
C:\ProgramData\gram hold hold.dnfun
C:\ProgramData\gram hold hold.dvhbavu
C:\ProgramData\gram hold hold.e0f4i
C:\ProgramData\gram hold hold.e6sdi
C:\ProgramData\gram hold hold.e85w8t
C:\ProgramData\gram hold hold.ek9vc
C:\ProgramData\gram hold hold.emlm8
C:\ProgramData\gram hold hold.epgzpsh
C:\ProgramData\gram hold hold.er7cg1g
C:\ProgramData\gram hold hold.exp5a
C:\ProgramData\gram hold hold.exz8rf
C:\ProgramData\gram hold hold.ey12bs
C:\ProgramData\gram hold hold.eyz1r
C:\ProgramData\gram hold hold.f0nj2
C:\ProgramData\gram hold hold.f0qf9b7
C:\ProgramData\gram hold hold.f45hshp
C:\ProgramData\gram hold hold.f75c9
C:\ProgramData\gram hold hold.fd46bf7
C:\ProgramData\gram hold hold.fkg3a
C:\ProgramData\gram hold hold.fmfray
C:\ProgramData\gram hold hold.fn2f5v0
C:\ProgramData\gram hold hold.fogikq
C:\ProgramData\gram hold hold.fqck0fd
C:\ProgramData\gram hold hold.fqvvxm
C:\ProgramData\gram hold hold.ftcpx1k
C:\ProgramData\gram hold hold.fubrcpt
C:\ProgramData\gram hold hold.fw3pvc0
C:\ProgramData\gram hold hold.fxliwt
C:\ProgramData\gram hold hold.fzghk4y
C:\ProgramData\gram hold hold.g0qmnu
C:\ProgramData\gram hold hold.g7wt2m
C:\ProgramData\gram hold hold.g95me
C:\ProgramData\gram hold hold.gj7x6h
C:\ProgramData\gram hold hold.gkhgn7
C:\ProgramData\gram hold hold.h0fpv
C:\ProgramData\gram hold hold.hx2vp
C:\ProgramData\gram hold hold.i1de9w
C:\ProgramData\gram hold hold.i4jcqb9
C:\ProgramData\gram hold hold.ib6s9nk
C:\ProgramData\gram hold hold.ie00o
C:\ProgramData\gram hold hold.ifcbc
C:\ProgramData\gram hold hold.ifpeegr
C:\ProgramData\gram hold hold.ivve2tn
C:\ProgramData\gram hold hold.j7af5i
C:\ProgramData\gram hold hold.jjnlq
C:\ProgramData\gram hold hold.jrerkl1
C:\ProgramData\gram hold hold.jufujku
C:\ProgramData\gram hold hold.k37brg
C:\ProgramData\gram hold hold.k40ip
C:\ProgramData\gram hold hold.kf3k0h
C:\ProgramData\gram hold hold.kmhxf
C:\ProgramData\gram hold hold.kqxck4
C:\ProgramData\gram hold hold.ks6vlk
C:\ProgramData\gram hold hold.kt1et
C:\ProgramData\gram hold hold.kuvx77
C:\ProgramData\gram hold hold.kuzne
C:\ProgramData\gram hold hold.l1vbwr
C:\ProgramData\gram hold hold.l9he2
C:\ProgramData\gram hold hold.lix61b
C:\ProgramData\gram hold hold.lnkbq53
C:\ProgramData\gram hold hold.lv99ohg
C:\ProgramData\gram hold hold.lz9o7
C:\ProgramData\gram hold hold.m4wvolg
C:\ProgramData\gram hold hold.mayew
C:\ProgramData\gram hold hold.mg8ctt
C:\ProgramData\gram hold hold.mkxo2y4
C:\ProgramData\gram hold hold.ml86vhr
C:\ProgramData\gram hold hold.mloli3
C:\ProgramData\gram hold hold.n0h59
C:\ProgramData\gram hold hold.n5echaq
C:\ProgramData\gram hold hold.n606220
C:\ProgramData\gram hold hold.naibmii
C:\ProgramData\gram hold hold.nhovg3
C:\ProgramData\gram hold hold.nijj4
C:\ProgramData\gram hold hold.nkvc7z1
C:\ProgramData\gram hold hold.nruec
C:\ProgramData\gram hold hold.nrwnb8
C:\ProgramData\gram hold hold.nst1xb4
C:\ProgramData\gram hold hold.ntjzn
C:\ProgramData\gram hold hold.nw4wn
C:\ProgramData\gram hold hold.nyl7enl
C:\ProgramData\gram hold hold.o1wumc
C:\ProgramData\gram hold hold.obdlr
C:\ProgramData\gram hold hold.obuyr0u
C:\ProgramData\gram hold hold.oc2pw
C:\ProgramData\gram hold hold.oedjkem
C:\ProgramData\gram hold hold.oiby7
C:\ProgramData\gram hold hold.ok5hat
C:\ProgramData\gram hold hold.olccx
C:\ProgramData\gram hold hold.ouwhs
C:\ProgramData\gram hold hold.p7tfc
C:\ProgramData\gram hold hold.pb8t7pl
C:\ProgramData\gram hold hold.pel9a3
C:\ProgramData\gram hold hold.pnwgyd
C:\ProgramData\gram hold hold.prdc1
C:\ProgramData\gram hold hold.ptfv8
C:\ProgramData\gram hold hold.pwiy8m
C:\ProgramData\gram hold hold.pxkyih
C:\ProgramData\gram hold hold.pyuo7ha
C:\ProgramData\gram hold hold.pzh92xl
C:\ProgramData\gram hold hold.q3jbh
C:\ProgramData\gram hold hold.qde2s
C:\ProgramData\gram hold hold.qe5zf2x
C:\ProgramData\gram hold hold.qhysqm2
C:\ProgramData\gram hold hold.qy0rl9t
C:\ProgramData\gram hold hold.r0q4e
C:\ProgramData\gram hold hold.r1vugfl
C:\ProgramData\gram hold hold.rex5da
C:\ProgramData\gram hold hold.rlcfps9
C:\ProgramData\gram hold hold.rm1gb1p
C:\ProgramData\gram hold hold.ryjufb2
C:\ProgramData\gram hold hold.s28585
C:\ProgramData\gram hold hold.s9sky
C:\ProgramData\gram hold hold.scj2v4
C:\ProgramData\gram hold hold.sfbwh5k
C:\ProgramData\gram hold hold.sntl4
C:\ProgramData\gram hold hold.ssqrtf
C:\ProgramData\gram hold hold.t1dqg
C:\ProgramData\gram hold hold.t86wv
C:\ProgramData\gram hold hold.ta10c
C:\ProgramData\gram hold hold.tb08b
C:\ProgramData\gram hold hold.tceyn
C:\ProgramData\gram hold hold.tec0hx
C:\ProgramData\gram hold hold.txutxc
C:\ProgramData\gram hold hold.tzo8u
C:\ProgramData\gram hold hold.u1qtx
C:\ProgramData\gram hold hold.u74m0
C:\ProgramData\gram hold hold.u9jws1
C:\ProgramData\gram hold hold.uex9k
C:\ProgramData\gram hold hold.ukrol89
C:\ProgramData\gram hold hold.uo9fwn
C:\ProgramData\gram hold hold.uobkx
C:\ProgramData\gram hold hold.uvk2jjt
C:\ProgramData\gram hold hold.uyy8hd
C:\ProgramData\gram hold hold.vd4vkmr
C:\ProgramData\gram hold hold.vx55ep
C:\ProgramData\gram hold hold.w12miu
C:\ProgramData\gram hold hold.w8oco7b
C:\ProgramData\gram hold hold.wdkpm
C:\ProgramData\gram hold hold.wh8ok
C:\ProgramData\gram hold hold.wnsq6wk
C:\ProgramData\gram hold hold.wqp5s
C:\ProgramData\gram hold hold.ww5p5
C:\ProgramData\gram hold hold.wzr77uo
C:\ProgramData\gram hold hold.xiv0rj
C:\ProgramData\gram hold hold.xmh6u7
C:\ProgramData\gram hold hold.xo0ympw
C:\ProgramData\gram hold hold.xoq4tbc
C:\ProgramData\gram hold hold.xpwqjv
C:\ProgramData\gram hold hold.xr8ly0y
C:\ProgramData\gram hold hold.xtco0p
C:\ProgramData\gram hold hold.xtrzu
C:\ProgramData\gram hold hold.y04f7
C:\ProgramData\gram hold hold.y3edpz
C:\ProgramData\gram hold hold.y4cp3
C:\ProgramData\gram hold hold.y5nl1w
C:\ProgramData\gram hold hold.yd1hep
C:\ProgramData\gram hold hold.yfdgc
C:\ProgramData\gram hold hold.yhecl97
C:\ProgramData\gram hold hold.ykk45
C:\ProgramData\gram hold hold.ynh8733
C:\ProgramData\gram hold hold.yo2be3
C:\ProgramData\gram hold hold.yonie6b
C:\ProgramData\gram hold hold.yz0grz
C:\ProgramData\gram hold hold.yzfme0
C:\ProgramData\gram hold hold.yzy1ku1
C:\ProgramData\gram hold hold.znr5s1
C:\ProgramData\gram hold hold.zyjpqob
C:\ProgramData\Trans Chic Drive.4gmje
C:\ProgramData\gram hold hold.003gqze
C:\ProgramData\gram hold hold.0462y5e
C:\ProgramData\gram hold hold.0j1q0
C:\ProgramData\gram hold hold.0nz73
C:\ProgramData\gram hold hold.0s5fmy
C:\ProgramData\gram hold hold.0yzn4v
C:\ProgramData\gram hold hold.19uitve
C:\ProgramData\gram hold hold.1bt7b
C:\ProgramData\gram hold hold.1mgito9
C:\ProgramData\gram hold hold.1uz3c3
C:\ProgramData\gram hold hold.22vq1n
C:\ProgramData\gram hold hold.27diom9
C:\ProgramData\gram hold hold.2c30jb
C:\ProgramData\gram hold hold.2uupo
C:\ProgramData\gram hold hold.2w03n7
C:\ProgramData\gram hold hold.3b0i22o
C:\ProgramData\gram hold hold.3bm9g1
C:\ProgramData\gram hold hold.3mkys
C:\ProgramData\gram hold hold.42l6ckh
C:\ProgramData\gram hold hold.42n4e7
C:\ProgramData\gram hold hold.435lwi
C:\ProgramData\gram hold hold.4b72p
C:\ProgramData\gram hold hold.4bt3a
C:\ProgramData\gram hold hold.4f2lhn
C:\ProgramData\gram hold hold.4jv4c
C:\ProgramData\gram hold hold.50nf4j
C:\ProgramData\gram hold hold.65dtjq
C:\ProgramData\gram hold hold.65myk
C:\ProgramData\gram hold hold.7tk43y9
C:\ProgramData\gram hold hold.83ioz
C:\ProgramData\gram hold hold.8peyh
C:\ProgramData\gram hold hold.8wn0wr4
C:\ProgramData\gram hold hold.91roc
C:\ProgramData\gram hold hold.97aac
C:\ProgramData\gram hold hold.9cx2i2e
C:\ProgramData\gram hold hold.9dm22ji
C:\ProgramData\gram hold hold.9zmhhm
C:\ProgramData\gram hold hold.a6fxf
C:\ProgramData\gram hold hold.akp7fx
C:\ProgramData\gram hold hold.bi6wixl
C:\ProgramData\gram hold hold.blc6yr
C:\ProgramData\gram hold hold.byilo
C:\ProgramData\gram hold hold.byxkj
C:\ProgramData\gram hold hold.c2zunfz
C:\ProgramData\gram hold hold.c578zn
C:\ProgramData\gram hold hold.c9diegn
C:\ProgramData\gram hold hold.cge4d0
C:\ProgramData\gram hold hold.chejg5
C:\ProgramData\gram hold hold.clnro
C:\ProgramData\gram hold hold.clu6014
C:\ProgramData\gram hold hold.dvhbavu
C:\ProgramData\gram hold hold.e6sdi
C:\ProgramData\gram hold hold.e85w8t
C:\ProgramData\gram hold hold.ek9vc
C:\ProgramData\gram hold hold.emlm8
C:\ProgramData\gram hold hold.epgzpsh
C:\ProgramData\gram hold hold.er7cg1g
C:\ProgramData\gram hold hold.exp5a
C:\ProgramData\gram hold hold.ey12bs
C:\ProgramData\gram hold hold.f0nj2
C:\ProgramData\gram hold hold.f0qf9b7
C:\ProgramData\gram hold hold.f75c9
C:\ProgramData\gram hold hold.fqvvxm
C:\ProgramData\gram hold hold.ftcpx1k
C:\ProgramData\gram hold hold.fw3pvc0
C:\ProgramData\gram hold hold.fxliwt
C:\ProgramData\gram hold hold.fzghk4y
C:\ProgramData\gram hold hold.g0qmnu
C:\ProgramData\gram hold hold.g7wt2m
C:\ProgramData\gram hold hold.g95me
C:\ProgramData\gram hold hold.gkhgn7
C:\ProgramData\gram hold hold.h0fpv
C:\ProgramData\gram hold hold.hx2vp
C:\ProgramData\gram hold hold.ie00o
C:\ProgramData\gram hold hold.ifpeegr
C:\ProgramData\gram hold hold.ivve2tn
C:\ProgramData\gram hold hold.jufujku
C:\ProgramData\gram hold hold.k40ip
C:\ProgramData\gram hold hold.kf3k0h
C:\ProgramData\gram hold hold.kqxck4
C:\ProgramData\gram hold hold.kuvx77
C:\ProgramData\gram hold hold.kuzne
C:\ProgramData\gram hold hold.l1vbwr
C:\ProgramData\gram hold hold.l9he2
C:\ProgramData\gram hold hold.lnkbq53
C:\ProgramData\gram hold hold.lv99ohg
C:\ProgramData\gram hold hold.lz9o7
C:\ProgramData\gram hold hold.m4wvolg
C:\ProgramData\gram hold hold.mkxo2y4
C:\ProgramData\gram hold hold.ml86vhr
C:\ProgramData\gram hold hold.n0h59
C:\ProgramData\gram hold hold.n5echaq
C:\ProgramData\gram hold hold.n606220
C:\ProgramData\gram hold hold.naibmii
C:\ProgramData\gram hold hold.nhovg3
C:\ProgramData\gram hold hold.nkvc7z1
C:\ProgramData\gram hold hold.nst1xb4
C:\ProgramData\gram hold hold.nw4wn
C:\ProgramData\gram hold hold.nyl7enl
C:\ProgramData\gram hold hold.obuyr0u
C:\ProgramData\gram hold hold.oiby7
C:\ProgramData\gram hold hold.ouwhs
C:\ProgramData\gram hold hold.pb8t7pl
C:\ProgramData\gram hold hold.pel9a3
C:\ProgramData\gram hold hold.pnwgyd
C:\ProgramData\gram hold hold.prdc1
C:\ProgramData\gram hold hold.ptfv8
C:\ProgramData\gram hold hold.pxkyih
C:\ProgramData\gram hold hold.pyuo7ha
C:\ProgramData\gram hold hold.pzh92xl
C:\ProgramData\gram hold hold.q3jbh
C:\ProgramData\gram hold hold.qe5zf2x
C:\ProgramData\gram hold hold.qy0rl9t
C:\ProgramData\gram hold hold.r0q4e
C:\ProgramData\gram hold hold.r1vugfl
C:\ProgramData\gram hold hold.rex5da
C:\ProgramData\gram hold hold.rlcfps9
C:\ProgramData\gram hold hold.ryjufb2
C:\ProgramData\gram hold hold.s9sky
C:\ProgramData\gram hold hold.scj2v4
C:\ProgramData\gram hold hold.sfbwh5k
C:\ProgramData\gram hold hold.sntl4
C:\ProgramData\gram hold hold.ssqrtf
C:\ProgramData\gram hold hold.ta10c
C:\ProgramData\gram hold hold.tb08b
C:\ProgramData\gram hold hold.tceyn
C:\ProgramData\gram hold hold.tzo8u
C:\ProgramData\gram hold hold.u1qtx
C:\ProgramData\gram hold hold.u74m0
C:\ProgramData\gram hold hold.uex9k
C:\ProgramData\gram hold hold.ukrol89
C:\ProgramData\gram hold hold.uo9fwn
C:\ProgramData\gram hold hold.uobkx
C:\ProgramData\gram hold hold.uyy8hd
C:\ProgramData\gram hold hold.w12miu
C:\ProgramData\gram hold hold.w8oco7b
C:\ProgramData\gram hold hold.wdkpm
C:\ProgramData\gram hold hold.wh8ok
C:\ProgramData\gram hold hold.wzr77uo
C:\ProgramData\gram hold hold.xmh6u7
C:\ProgramData\gram hold hold.xo0ympw
C:\ProgramData\gram hold hold.xoq4tbc
C:\ProgramData\gram hold hold.xpwqjv
C:\ProgramData\gram hold hold.xtco0p
C:\ProgramData\gram hold hold.y04f7
C:\ProgramData\gram hold hold.y4cp3
C:\ProgramData\gram hold hold.yd1hep
C:\ProgramData\gram hold hold.yfdgc
C:\ProgramData\gram hold hold.ykk45
C:\ProgramData\gram hold hold.ynh8733
C:\ProgramData\gram hold hold.yo2be3
C:\ProgramData\gram hold hold.yzfme0
C:\ProgramData\gram hold hold.yzy1ku1
C:\ProgramData\gram hold hold.znr5s1
C:\ProgramData\gram hold hold.zyjpqob

-----------------[ Recherche de Fichiers / Dossiers Lop ]-----------------

C:\ProgramData\close poke frag ooze
C:\ProgramData\close poke frag ooze\team link.exe

----------------------[ Verification du Registre ]----------------------

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

..... OK !

--------------------[ Verification du fichier Hosts ]---------------------

Fichier Hosts PROPRE

----------------[ Recherche de fichiers avec Catchme ]-----------------

catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-05-11 20:00:20
Windows 6.0.6001 Service Pack 1 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 0

--------------------[ Recherche d'autres infections ]---------------------

=> C:\Users\JoÆo Filipe\Documents\GTA mods\patch french et american
=> C:\Users\JoÆo Filipe\Documents\GTA mods\Maps\58434@argenpoussebeta0_4\ArgenpousseVersionBeta0.4\Argenpousse Country\Vrai Data\data\Decision\Craig\crack1.ped
=> C:\Users\JoÆo Filipe\Documents\GTA mods\patch french et american\code gta2.doc
=> C:\Users\JoÆo Filipe\Documents\GTA mods\patch french et american\code gta.doc
=> C:\Users\JoÆo Filipe\Documents\GTA mods\patch french et american\Patch_american
=> C:\Users\JoÆo Filipe\Documents\GTA mods\patch french et american\Patch_french
=> C:\Users\JoÆo Filipe\Documents\GTA mods\patch french et american\sauvegarde
=> C:\Users\JoÆo Filipe\Documents\GTA mods\patch french et american\SA_Euro_1.01_COLD
=> C:\Users\JoÆo Filipe\Documents\GTA mods\patch french et american\gta_sa.nfo
=> C:\Users\JoÆo Filipe\Documents\GTA mods\patch french et american\hoodlum.nfo
=> C:\Users\JoÆo Filipe\Documents\GTA mods\patch french et american\ShadowCast.nfo
=> C:\Users\JoÆo Filipe\Documents\GTA mods\patch french et american\Patch_american\american.gxt
=> C:\Users\JoÆo Filipe\Documents\GTA mods\patch french et american\Patch_french\american.gxt
=> C:\Users\JoÆo Filipe\Documents\GTA mods\patch french et american\Patch_french\Lisez-moi.txt
=> C:\Users\JoÆo Filipe\Documents\GTA mods\patch french et american\sauvegarde\GTASAsf3.b
=> C:\Users\JoÆo Filipe\Documents\GTA mods\patch french et american\SA_Euro_1.01_COLD\SA 1.01 changes.txt
=> C:\Users\JoÆo Filipe\Documents\GTA mods\patch french et american\SA_Euro_1.01_COLD\SA 1.01 FAQs.txt
=> C:\Users\JoÆo Filipe\Documents\GTA mods\patch french et american\SA_Euro_1.01_COLD\SA_Euro_upd.exe
=> C:\Users\JoÆo Filipe\Documents\Mes fichiers re‡us\Fraps v2.8.2
=> C:\Users\JoÆo Filipe\Documents\Mes fichiers re‡us\Fraps v2.8.2\Fraps v2.8.2.exe

/!\ [Fich:151][Doss:3] C:\Users\JOOFIL~1\AppData\Local\Temp
/!\ [Fich:416][Doss:1] C:\Users\JOOFIL~1\AppData\Roaming\MICROS~1\Windows\Cookies
/!\ [Fich:839][Doss:10] C:\Users\JOOFIL~1\AppData\Local\MICROS~1\Windows\TEMPOR~1\content.IE5

[ UAC => 1 ]

--------------------[ Fin du rapport a 20:01:48,40 ]----------------------
0
papyber Messages postés 6430 Statut Contributeur sécurité 257
 
dans ce cas tu connais la suite
relance Lop S&D option3

puis
Télécharge MalwareByte
http://www.malwarebytes.org/mbam/program/mbam-setup.exe
Installe-le

Télécharge MSNFix.zip (de !aur3n7 et Regis59) sur le Bureau :
http://sosvirus.changelog.fr/MSNFix.zip

un tutoriel pour l'utiliser
http://sosvirus.changelog.fr/

Conseil : il faut toujours télécharger avant utilisation pour profiter des dernières mises à jour.

Remarque 1: Il est possible que l'antivirus détecte un virus au téléchargement, il s'agit de Process.exe.
Process.exe est un programme légitime mais potentiellement dangereux, et il est normal qu'un antivirus/antispyware digne de ce nom le détecte.
Remarque 2: MSNFix peut parfois rencontrer des problèmes avec les sessions comportant des caractères spéciaux. Si un message d'erreur s'affiche il conviendra donc de déplacer le dossier complet à la racine du disque dur (généralement c:\)

Décompresse-le (clic droit : Extraire ici).

Ouvre MSNFix et double clique sur le fichier MSNFix.bat (MSNFix)
Choisis l'option R
valide avec Entrée

L'analyse démarre, pendant ce temps, ne lancer aucune application afin de ne pas perturber son fonctionnement.
Si l'infection est détectée, il te suffit d'appuyer sur une touche du clavier. Un redémarrage du PC peut être demandé.
Le rapport est enregistré par défaut dans le dossier MSNFix et se présente sous la forme date_heure.txt.
Recommande à tes contacts d'appliquer la même procédure MSNFix, pour freiner la propagation et indique si l'éradication est réussie. S'ils ont le moindre souci, ils viennent sur le forum et postent leur rapport pour lecture et conseils...
A l'échelle mondiale, chaque jour, des milliers de personnes sont infectées. Pour apporter des solutions rapides contre ce fléau, veuillez s'il vous plaît faire parvenir l'adresse contenue dans le message MSN que vous avez reçu.
Pour cela, cliquez ici:
http://secubox.gateweb.org/notify/
Saisissez le lien contenu dans les messages MSN puis cliquez sur [Notifier]. Merci.

Télécharge clean.zip, de Malekal
http://www.malekal.com/download/clean.zip

décompresse-le sur ton Bureau (clic droit / extraire tout), tu dois obtenir un dossier clean.
Ouvre le dossier clean qui se trouve sur ton Bureau, et double-clic sur clean.cmd, une fenêtre noire va apparaître pendant un instant, laisse la ouverte.
Choisis l'option 1 puis patiente
Poste le rapport obtenu
S’il te demande d’up loader un fichier, tu le fais…

1) Redémarre ton ordi
2) Tapote la touche F8 immédiatement, (F5 sur certains PC) juste après le "Bip"
3) Tu verras un écran avec options de démarrage apparaître
4) Choisis la première option : Sans Échec, et valide avec "Entrée"
5) Choisis ton compte habituel, et non Administrateur

Redémarre en mode sans échec, copie ou imprime ce qui suit car tu n'auras pas accès à Internet

Lance MalwareByte
Dans l'onglet Recherche, clique sur Exécuter un examen complet puis sur Rechercher.
Sélectionne ton (tes) disques durs.
Lance l'examen, supprime tout ce qu’il trouve
Clique sur Enregistrer le rapport et choisis ton Bureau

si quelque chose a été trouvé avec clean.malekal , cela devrait être le cas...
Ouvre le dossier jaune nommé clean sur ton Bureau.
Double-clique sur clean.cmd
Choisis l'option 2 et copie sur le Bureau le rapport généré.
Si une fenêtre s'ouvre, laisse-la.
Clique sur Q pour quitter le programme.

Redémarre normalement et poste-moi les rapports obtenus

Lop S&D
MSNFix
MalwareByte
Clean .txt
ainsi qu'un Scan Hijack ThisThis.

0
Sismix84 Messages postés 83 Statut Membre 2
 
Merci beaucoup pour ton dévouement. aujourd'hui je n'ai pas le temps de faire toute ces manipulations, pourra tu revenir demain après-midi, ça devrais être fait normalement ?
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
papyber Messages postés 6430 Statut Contributeur sécurité 257
 
je pense être là si pas d'imprévu!
0
Sismix84 Messages postés 83 Statut Membre 2
 
Ok merci de ton aide.
0
papyber Messages postés 6430 Statut Contributeur sécurité 257
 
à demain donc!
0
Sismix84 Messages postés 83 Statut Membre 2
 
Salut,

j'ai un problème, j'ai télécharger clean.zip, je l'ai extrait et j'ai lancer la recherche mais l'accé est refusé a chaque fois. je l'ai lancer en tant qu'administrateur mais cette fois c'est le logiciel qui ne fonctionne pas.
0
papyber Messages postés 6430 Statut Contributeur sécurité 257
 
laisse tomber clean et fais la suite
0
Sismix84 Messages postés 83 Statut Membre 2
 
Bonsoir, désolé pour ce retard, je n'ai pas pu venir plus tôt. Je poste les rapport dans l'ordre :

1) Lop S&D
2) MSNFix
3) MalwareByte
4) HijackThis

NB : je n'est pas celui de clean, je n'ai pas réussi à le faire marché. Je vais essayer en mode sans echec.

-----------------------[ Lop S&D 4.2.1-1 XP/Vista ]---------------------

[ Windows 'Longhorn' (NT 6.0) Workstation Build 6001, Service Pack 1 ]
[ USER : JoÆo Filipe ] [ "C:\Lop SD" ] [ Selection : 2 ]
[ 01/06/2008 | 16:00:45,96 ] [ PC : HP-PAVILLION ]
[ MAJ : 31-05-2008 | 14:12 ]
[ UAC => 0 ]

\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ SUPPRESSION /////////////////////////////

Supprimé! - C:\Users\JOOFIL~1\AppData\Local\Temp\bis9923.exe
Restauré! - Fichier Hosts

//////////////////////////////////////-\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\

-------------[ Listing des dossiers dans Application Data ]------------

[26/04/2008|14:47] C:\Users\JOOFIL~1\AppData\Roaming\Adobe\Linguistics
[26/04/2008|14:47] C:\Users\JOOFIL~1\AppData\Roaming\Adobe\Acrobat
[07/02/2008|17:06] C:\Users\JOOFIL~1\AppData\Roaming\Adobe\Flash Player
[15/05/2007|00:14] C:\Users\JOOFIL~1\AppData\Roaming\Adobe\ESD

[03/05/2007|16:34] C:\Users\JOOFIL~1\AppData\Roaming\Ahead\Nero BackItUp
[30/04/2007|12:17] C:\Users\JOOFIL~1\AppData\Roaming\Ahead\Nero Burning ROM
[29/04/2007|19:20] C:\Users\JOOFIL~1\AppData\Roaming\Ahead\NeroVision

[24/03/2008|15:40] C:\Users\JOOFIL~1\AppData\Roaming\Apple Computer\Safari
[11/10/2007|17:56] C:\Users\JOOFIL~1\AppData\Roaming\Apple Computer\iTunes

[18/10/2007|09:41] C:\Users\JOOFIL~1\AppData\Roaming\AVSMedia\AVSVideoConverter

[15/04/2008|15:27] C:\Users\JOOFIL~1\AppData\Roaming\CDBurnerXP_Soft\cdbxpp.exe_Url_nfryvllqiqb1hla4nzefaejvhwflc2o0

[21/04/2008|20:14] C:\Users\JOOFIL~1\AppData\Roaming\Google\GoogleEarth
[18/05/2007|11:21] C:\Users\JOOFIL~1\AppData\Roaming\Google\Local Search History

[08/04/2008|10:17] C:\Users\JOOFIL~1\AppData\Roaming\gtopala\SIW

[26/04/2007|20:42] C:\Users\JOOFIL~1\AppData\Roaming\Hewlett-Packard\HP Software UI

[01/06/2008|16:01] C:\Users\JOOFIL~1\AppData\Roaming\HP\CRMLogs
[19/10/2007|18:35] C:\Users\JOOFIL~1\AppData\Roaming\HP\Digital Imaging

[26/04/2007|21:04] C:\Users\JOOFIL~1\AppData\Roaming\Identities\{4D07DDE0-BE7B-43FB-8960-D81F03F07F4A}

[11/04/2008|12:33] C:\Users\JOOFIL~1\AppData\Roaming\InstallShield\ISEngine12.0

[26/04/2007|21:30] C:\Users\JOOFIL~1\AppData\Roaming\Macromedia\Flash Player

[08/04/2008|13:40] C:\Users\JOOFIL~1\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware

[22/04/2008|20:49] C:\Users\JOOFIL~1\AppData\Roaming\Microsoft\Windows Photo Gallery
[14/04/2008|22:26] C:\Users\JOOFIL~1\AppData\Roaming\Microsoft\Installer
[01/04/2008|18:24] C:\Users\JOOFIL~1\AppData\Roaming\Microsoft\MSN Messenger
[01/03/2008|17:21] C:\Users\JOOFIL~1\AppData\Roaming\Microsoft\Windows
[26/02/2008|13:42] C:\Users\JOOFIL~1\AppData\Roaming\Microsoft\VCExpress
[26/02/2008|13:41] C:\Users\JOOFIL~1\AppData\Roaming\Microsoft\MSDN
[21/01/2008|19:25] C:\Users\JOOFIL~1\AppData\Roaming\Microsoft\Media Player
[13/12/2007|15:55] C:\Users\JOOFIL~1\AppData\Roaming\Microsoft\CLR Security Config
[16/08/2007|11:13] C:\Users\JOOFIL~1\AppData\Roaming\Microsoft\Crypto
[19/06/2007|11:52] C:\Users\JOOFIL~1\AppData\Roaming\Microsoft\eHome
[19/05/2007|20:58] C:\Users\JOOFIL~1\AppData\Roaming\Microsoft\Speech
[12/05/2007|14:14] C:\Users\JOOFIL~1\AppData\Roaming\Microsoft\Office
[01/05/2007|22:41] C:\Users\JOOFIL~1\AppData\Roaming\Microsoft\HTML Help
[01/05/2007|15:01] C:\Users\JOOFIL~1\AppData\Roaming\Microsoft\Internet Explorer
[29/04/2007|18:34] C:\Users\JOOFIL~1\AppData\Roaming\Microsoft\IdentityCRL
[28/04/2007|19:03] C:\Users\JOOFIL~1\AppData\Roaming\Microsoft\MMC
[27/04/2007|16:20] C:\Users\JOOFIL~1\AppData\Roaming\Microsoft\preuve
[27/04/2007|15:07] C:\Users\JOOFIL~1\AppData\Roaming\Microsoft\Credentials
[26/04/2007|21:04] C:\Users\JOOFIL~1\AppData\Roaming\Microsoft\Protect
[26/04/2007|21:03] C:\Users\JOOFIL~1\AppData\Roaming\Microsoft\SystemCertificates
[26/04/2007|20:50] C:\Users\JOOFIL~1\AppData\Roaming\Microsoft\Network

[03/03/2008|18:50] C:\Users\JOOFIL~1\AppData\Roaming\Microsoft Game Studios\Halo2

[01/03/2008|17:32] C:\Users\JOOFIL~1\AppData\Roaming\Microsoft Games\Zoo Tycoon 2

[29/04/2007|15:53] C:\Users\JOOFIL~1\AppData\Roaming\Mozilla\Firefox

[24/05/2008|15:13] C:\Users\JOOFIL~1\AppData\Roaming\OpenOffice.org2\user

[31/05/2008|18:44] C:\Users\JOOFIL~1\AppData\Roaming\Real\RealPlayer
[25/04/2008|19:07] C:\Users\JOOFIL~1\AppData\Roaming\Real\Msg
[08/04/2008|09:11] C:\Users\JOOFIL~1\AppData\Roaming\Real\RealMediaSDK
[08/04/2008|09:09] C:\Users\JOOFIL~1\AppData\Roaming\Real\rnadmin

[29/04/2007|15:07] C:\Users\JOOFIL~1\AppData\Roaming\Roxio\RoxioCentral
[29/04/2007|15:06] C:\Users\JOOFIL~1\AppData\Roaming\Roxio\RoxioCentral33

[13/05/2007|12:11] C:\Users\JOOFIL~1\AppData\Roaming\SecuROM\UserData

[12/03/2008|22:59] C:\Users\JOOFIL~1\AppData\Roaming\Sony\Vegas Pro
[18/09/2007|22:19] C:\Users\JOOFIL~1\AppData\Roaming\Sony\Vegas
[18/09/2007|22:08] C:\Users\JOOFIL~1\AppData\Roaming\Sony\Media Manager

[24/10/2007|14:10] C:\Users\JOOFIL~1\AppData\Roaming\Sony Ericsson\Teleca

[19/11/2007|11:15] C:\Users\JOOFIL~1\AppData\Roaming\Steinberg\myMP3

[23/05/2008|09:09] C:\Users\JOOFIL~1\AppData\Roaming\Subversion\auth

[18/05/2007|22:15] C:\Users\JOOFIL~1\AppData\Roaming\Sun\Java

[27/04/2007|15:20] C:\Users\JOOFIL~1\AppData\Roaming\Talkback\MozillaOrg

[24/10/2007|14:14] C:\Users\JOOFIL~1\AppData\Roaming\Teleca\DM

[19/02/2008|22:08] C:\Users\JOOFIL~1\AppData\Roaming\TomTom\HOME

[11/04/2008|12:39] C:\Users\JOOFIL~1\AppData\Roaming\TuneUp Software\TuneUp Utilities

[10/05/2007|17:08] C:\Users\JOOFIL~1\AppData\Roaming\vlc\cache

[01/04/2008|11:54] C:\Users\JOOFIL~1\AppData\Roaming\WinBatch\Settings

[12/05/2007|16:21] C:\Users\JOOFIL~1\AppData\Roaming\???????sAppData\???????sAppData

----------------[ Tâches planifiées dans C:\Windows\tasks ]---------------

[01/06/2008 16:00][--ah-----] C:\Windows\tasks\User_Feed_Synchronization-{3D51593A-22C3-4D80-99D6-689FFDE3FA9A}.job
[01/06/2008 15:59][--ah-----] C:\Windows\tasks\SA.DAT
[01/06/2008 15:58][--a------] C:\Windows\tasks\SCHEDLGU.TXT

------[ Listing des dossiers dans C:\ProgramData ]------

[25/04/2008|20:37] C:\ProgramData\Adobe
[11/10/2007|15:00] C:\ProgramData\Apple
[13/04/2008|23:22] C:\ProgramData\Apple Computer
[02/11/2006|15:02] C:\ProgramData\Application Data
[13/02/2008|17:41] C:\ProgramData\Autodesk
[26/04/2007|20:36] C:\ProgramData\Bureau
[13/09/2007|14:36] C:\ProgramData\BVRP Software
[12/05/2007|12:43] C:\ProgramData\DassaultSystemes
[02/11/2006|15:02] C:\ProgramData\Desktop
[02/11/2006|15:02] C:\ProgramData\Documents
[26/04/2007|20:36] C:\ProgramData\Favoris
[02/11/2006|15:02] C:\ProgramData\Favorites
[26/04/2007|21:48] C:\ProgramData\fssg
[18/05/2007|11:21] C:\ProgramData\Google
[15/02/2007|02:04] C:\ProgramData\Hewlett-Packard
[20/05/2007|10:20] C:\ProgramData\HP
[01/04/2008|12:00] C:\ProgramData\hpzinstall.log
[15/02/2007|01:47] C:\ProgramData\InstallShield
[08/04/2008|13:39] C:\ProgramData\Malwarebytes
[23/02/2008|17:28] C:\ProgramData\Maxtor
[25/08/2007|15:52] C:\ProgramData\Media Center Programs
[26/04/2007|20:36] C:\ProgramData\Menu D‚marrer
[29/03/2008|10:37] C:\ProgramData\Messenger Plus!
[07/05/2008|16:21] C:\ProgramData\Microsoft
[01/03/2008|17:32] C:\ProgramData\Microsoft Games
[26/02/2008|13:43] C:\ProgramData\Microsoft Help
[26/04/2007|20:36] C:\ProgramData\ModŠles
[30/09/2007|00:56] C:\ProgramData\NVIDIA
[02/06/2007|12:00] C:\ProgramData\RoboForm
[29/04/2008|15:57] C:\ProgramData\Roxio
[07/05/2008|17:05] C:\ProgramData\Skyline
[29/04/2007|15:06] C:\ProgramData\Sonic
[17/05/2008|22:05] C:\ProgramData\Sony
[24/10/2007|14:09] C:\ProgramData\Sony Ericsson
[02/11/2006|15:02] C:\ProgramData\Start Menu
[24/10/2007|14:10] C:\ProgramData\Teleca
[05/09/2007|20:15] C:\ProgramData\TEMP
[02/11/2006|15:02] C:\ProgramData\Templates
[03/05/2008|22:50] C:\ProgramData\TrackMania
[11/04/2008|11:00] C:\ProgramData\TuneUp Software
[19/05/2007|11:42] C:\ProgramData\WEBREG
[02/12/2007|12:26] C:\ProgramData\WLInstaller

---------------[ Listing des dossiers dans C:\Program Files ]--------------

[01/05/2007|18:31] C:\Program Files\7-Zip
[30/04/2008|09:50] C:\Program Files\Adminidlebeep
[25/04/2008|20:35] C:\Program Files\Adobe
[05/04/2008|18:45] C:\Program Files\aicon
[09/06/2007|21:00] C:\Program Files\Alcohol Soft
[01/05/2007|20:49] C:\Program Files\Alwil Software
[20/04/2008|21:19] C:\Program Files\Apple Software Update
[07/05/2008|16:24] C:\Program Files\Autodesk
[26/06/2007|15:28] C:\Program Files\Avanquest update
[11/12/2007|19:51] C:\Program Files\Beneton Movie GIF
[22/08/2007|23:48] C:\Program Files\CamStudio
[15/04/2008|15:26] C:\Program Files\CDBurnerXP
[30/05/2008|18:35] C:\Program Files\Common Files
[14/05/2007|18:26] C:\Program Files\CyberLink
[14/05/2007|18:26] C:\Program Files\CyberLink DVD Solution
[22/03/2008|18:31] C:\Program Files\desktop.ini
[18/08/2007|11:42] C:\Program Files\EA GAMES
[03/07/2007|19:35] C:\Program Files\EA SPORTS
[13/02/2008|20:28] C:\Program Files\eddi's Tools
[16/05/2007|19:17] C:\Program Files\Eidos
[11/04/2008|10:42] C:\Program Files\Electronic Arts
[26/04/2007|20:36] C:\Program Files\Fichiers communs [C:\Program Files\Common Files]
[20/10/2007|16:24] C:\Program Files\Fraps 2.9.1
[21/04/2008|20:04] C:\Program Files\Google
[01/04/2008|12:00] C:\Program Files\Hewlett-Packard
[01/04/2008|12:00] C:\Program Files\HP
[29/04/2007|14:33] C:\Program Files\illiminable
[21/05/2008|19:45] C:\Program Files\InstallShield Installation Information
[22/03/2008|18:20] C:\Program Files\Internet Explorer
[13/04/2008|23:23] C:\Program Files\iPod
[13/04/2008|23:23] C:\Program Files\iTunes
[24/05/2008|15:20] C:\Program Files\Java
[14/04/2008|20:16] C:\Program Files\Loonies
[08/04/2008|13:39] C:\Program Files\Malwarebytes' Anti-Malware
[11/02/2008|19:16] C:\Program Files\Maxtor
[11/04/2008|10:38] C:\Program Files\MediaCoder
[14/05/2008|16:35] C:\Program Files\Messenger Plus! Live
[21/11/2007|00:09] C:\Program Files\Microsoft Baseline Security Analyzer 2
[22/11/2007|11:08] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[01/03/2008|17:23] C:\Program Files\Microsoft Games
[06/03/2008|16:18] C:\Program Files\Microsoft Office
[26/02/2008|13:34] C:\Program Files\Microsoft SDKs
[20/05/2008|08:01] C:\Program Files\Microsoft Silverlight
[18/09/2007|22:06] C:\Program Files\Microsoft SQL Server
[26/02/2008|13:39] C:\Program Files\Microsoft Visual Studio 9.0
[15/02/2007|01:44] C:\Program Files\Microsoft Works
[26/02/2008|13:37] C:\Program Files\Microsoft.NET
[17/04/2008|19:57] C:\Program Files\Mindscape
[24/10/2007|12:30] C:\Program Files\Motorola
[22/03/2008|18:20] C:\Program Files\Movie Maker
[01/06/2008|16:00] C:\Program Files\Mozilla Firefox
[29/04/2008|15:11] C:\Program Files\mp3DirectCut
[02/11/2006|14:37] C:\Program Files\MSBuild
[06/03/2008|16:17] C:\Program Files\MSECache
[10/10/2007|12:44] C:\Program Files\MSXML 4.0
[18/04/2008|15:37] C:\Program Files\MTA San Andreas
[21/11/2007|00:17] C:\Program Files\NCH Software
[29/04/2007|19:07] C:\Program Files\Nero
[02/11/2007|18:12] C:\Program Files\No-IP
[05/05/2008|18:56] C:\Program Files\NRJ
[24/05/2008|15:27] C:\Program Files\OpenOffice.org 2.3
[24/05/2008|15:28] C:\Program Files\OpenOffice.org 2.4
[26/04/2007|20:50] C:\Program Files\Orange
[15/02/2007|01:59] C:\Program Files\PC-Doctor 5 for Windows
[15/04/2008|14:27] C:\Program Files\PhotoFiltre 6.3.1
[07/04/2008|22:53] C:\Program Files\PhotoFiltre Studio
[27/06/2007|21:35] C:\Program Files\Pinnacle
[28/03/2008|20:46] C:\Program Files\Piratrax
[26/06/2007|19:12] C:\Program Files\PIXELA
[23/07/2007|16:39] C:\Program Files\Project64 1.6
[09/05/2008|17:52] C:\Program Files\Project64 1.7 Beta
[20/07/2007|13:03] C:\Program Files\Project64 v1.5
[03/07/2007|19:31] C:\Program Files\RADVideo
[08/04/2008|09:08] C:\Program Files\Real
[01/04/2008|11:54] C:\Program Files\Realtek
[02/11/2006|14:37] C:\Program Files\Reference Assemblies
[18/04/2008|15:44] C:\Program Files\Rockstar Games
[15/02/2007|01:41] C:\Program Files\Roxio
[17/01/2008|20:34] C:\Program Files\SAGEM
[27/05/2007|17:12] C:\Program Files\Services en ligne
[02/06/2007|11:29] C:\Program Files\Siber Systems
[29/04/2008|14:19] C:\Program Files\SnIco Edit
[27/05/2008|18:27] C:\Program Files\SoftwareClub.ws
[05/05/2008|18:52] C:\Program Files\SolidWorks
[17/05/2008|22:06] C:\Program Files\Sony
[24/10/2007|14:09] C:\Program Files\Sony Ericsson
[12/03/2008|22:48] C:\Program Files\Sony Setup
[07/04/2008|19:40] C:\Program Files\Star Downloader
[16/08/2007|13:23] C:\Program Files\Stardock
[27/05/2008|11:56] C:\Program Files\Steam
[29/09/2007|14:39] C:\Program Files\SystemRequirementsLab
[19/02/2008|22:07] C:\Program Files\TomTom HOME 2
[23/05/2008|09:04] C:\Program Files\TortoiseSVN
[04/12/2007|14:13] C:\Program Files\Trust
[27/04/2008|17:20] C:\Program Files\TuneUp Utilities 2008
[05/05/2008|18:55] C:\Program Files\Ubisoft
[05/09/2007|12:36] C:\Program Files\Uninstall Information
[14/02/2008|23:07] C:\Program Files\Valve Hammer Editor
[09/05/2007|21:15] C:\Program Files\VideoLAN
[24/05/2007|21:25] C:\Program Files\VistaCodecPack
[27/06/2007|21:35] C:\Program Files\VOB
[18/01/2008|08:15] C:\Program Files\Wanadoo
[22/03/2008|18:20] C:\Program Files\Windows Calendar
[22/03/2008|18:20] C:\Program Files\Windows Collaboration
[22/03/2008|18:20] C:\Program Files\Windows Defender
[22/03/2008|18:20] C:\Program Files\Windows Journal
[02/12/2007|12:37] C:\Program Files\Windows Live
[14/05/2008|16:01] C:\Program Files\Windows Mail
[16/02/2008|13:57] C:\Program Files\Windows Media Components
[22/03/2008|18:20] C:\Program Files\Windows Media Player
[26/04/2007|20:36] C:\Program Files\Windows NT
[22/03/2008|18:20] C:\Program Files\Windows Photo Gallery
[22/03/2008|18:20] C:\Program Files\Windows Sidebar

------[ Listing des dossiers dans C:\Program Files\Common Files ]------

[25/04/2008|20:36] C:\Program Files\Common Files\Adobe
[11/10/2007|15:11] C:\Program Files\Common Files\Apple
[22/10/2007|07:39] C:\Program Files\Common Files\AVSMedia
[19/05/2007|11:39] C:\Program Files\Common Files\Hewlett-Packard
[19/05/2007|11:41] C:\Program Files\Common Files\HP
[17/01/2008|20:33] C:\Program Files\Common Files\InstallShield
[15/05/2007|16:45] C:\Program Files\Common Files\Java
[11/04/2008|11:08] C:\Program Files\Common Files\LightScribe
[15/02/2007|01:42] C:\Program Files\Common Files\LS Getting Started
[26/02/2008|13:38] C:\Program Files\Common Files\Merge Modules
[03/05/2007|17:04] C:\Program Files\Common Files\Microsoft Games
[05/05/2008|18:52] C:\Program Files\Common Files\microsoft shared
[26/06/2007|15:49] C:\Program Files\Common Files\Motorola Shared
[17/05/2008|22:01] C:\Program Files\Common Files\MSSoap
[25/04/2008|19:06] C:\Program Files\Common Files\Real
[15/02/2007|01:41] C:\Program Files\Common Files\Roxio Shared
[02/11/2006|13:18] C:\Program Files\Common Files\Services
[15/02/2007|01:41] C:\Program Files\Common Files\Sonic Shared
[24/10/2007|14:09] C:\Program Files\Common Files\Sony Ericsson Shared
[02/11/2006|13:18] C:\Program Files\Common Files\SpeechEngines
[08/05/2008|17:20] C:\Program Files\Common Files\Steam
[15/02/2007|01:41] C:\Program Files\Common Files\SureThing Shared
[22/03/2008|18:20] C:\Program Files\Common Files\System
[24/10/2007|14:09] C:\Program Files\Common Files\Teleca Shared
[02/12/2007|12:30] C:\Program Files\Common Files\WindowsLiveInstaller
[07/05/2008|16:22] C:\Program Files\Common Files\Wise Installation Wizard
[25/04/2008|19:07] C:\Program Files\Common Files\xing shared

---------------------------[ Process ]--------------------------

... 76

... OK !

----------------------[ Recherche avec S_Lop ]---------------------

Aucun fichier / dossier Lop trouvé !

-----------------[ Recherche de Fichiers / Dossiers Lop ]-----------------

Aucun fichier / dossier Lop trouvé !

----------------------[ Verification du Registre ]----------------------

..... OK !

--------------------[ Verification du fichier Hosts ]---------------------

Fichier Hosts PROPRE

----------------[ Recherche de fichiers avec Catchme ]-----------------

catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-06-01 16:01:37
Windows 6.0.6001 Service Pack 1 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 0

--------------------[ Recherche d'autres infections ]---------------------

=> C:\Users\JoÆo Filipe\Desktop\Garry's mod mod\phoenix-storms_2(1)\phx2\sound\phx\eggcrack.wav
=> C:\Users\JoÆo Filipe\Documents\GTA mods\patch french et american+crack+sauvegarde 100%+update1.01
=> C:\Users\JoÆo Filipe\Documents\GTA mods\Maps\58434@argenpoussebeta0_4\ArgenpousseVersionBeta0.4\Argenpousse Country\Vrai Data\data\Decision\Craig\crack1.ped
=> C:\Users\JoÆo Filipe\Documents\GTA mods\patch french et american+crack+sauvegarde 100%+update1.01\CRACK
=> C:\Users\JoÆo Filipe\Documents\GTA mods\patch french et american+crack+sauvegarde 100%+update1.01\GAGNER DE L'ARGENT SUR INTERNET !!!!!!!!!!CA MARCHE VRAIMENT.doc
=> C:\Users\JoÆo Filipe\Documents\GTA mods\patch french et american+crack+sauvegarde 100%+update1.01\Patch_american
=> C:\Users\JoÆo Filipe\Documents\GTA mods\patch french et american+crack+sauvegarde 100%+update1.01\Patch_french
=> C:\Users\JoÆo Filipe\Documents\GTA mods\patch french et american+crack+sauvegarde 100%+update1.01\sauvegarde
=> C:\Users\JoÆo Filipe\Documents\GTA mods\patch french et american+crack+sauvegarde 100%+update1.01\SA_Euro_1.01_COLD
=> C:\Users\JoÆo Filipe\Documents\GTA mods\patch french et american+crack+sauvegarde 100%+update1.01\CRACK\gta_sa.exe
=> C:\Users\JoÆo Filipe\Documents\GTA mods\patch french et american+crack+sauvegarde 100%+update1.01\CRACK\hoodlum.nfo
=> C:\Users\JoÆo Filipe\Documents\GTA mods\patch french et american+crack+sauvegarde 100%+update1.01\CRACK\ShadowCast.nfo
=> C:\Users\JoÆo Filipe\Documents\GTA mods\patch french et american+crack+sauvegarde 100%+update1.01\Patch_american\american.gxt
=> C:\Users\JoÆo Filipe\Documents\GTA mods\patch french et american+crack+sauvegarde 100%+update1.01\Patch_french\american.gxt
=> C:\Users\JoÆo Filipe\Documents\GTA mods\patch french et american+crack+sauvegarde 100%+update1.01\Patch_french\Lisez-moi.txt
=> C:\Users\JoÆo Filipe\Documents\GTA mods\patch french et american+crack+sauvegarde 100%+update1.01\sauvegarde\GTASAsf3.b
=> C:\Users\JoÆo Filipe\Documents\GTA mods\patch french et american+crack+sauvegarde 100%+update1.01\SA_Euro_1.01_COLD\SA 1.01 changes.txt
=> C:\Users\JoÆo Filipe\Documents\GTA mods\patch french et american+crack+sauvegarde 100%+update1.01\SA_Euro_1.01_COLD\SA 1.01 FAQs.txt
=> C:\Users\JoÆo Filipe\Documents\GTA mods\patch french et american+crack+sauvegarde 100%+update1.01\SA_Euro_1.01_COLD\SA_Euro_upd.exe
=> C:\Users\JoÆo Filipe\Documents\Mes fichiers re‡us\Fraps v2.8.2 Cracked
=> C:\Users\JoÆo Filipe\Documents\Mes fichiers re‡us\Fraps v2.8.2 Cracked\Fraps v2.8.2.exe

[F:482][D:38]-> C:\Users\JOOFIL~1\AppData\Local\Temp
[F:54][D:1]-> C:\Users\JOOFIL~1\AppData\Roaming\MICROS~1\Windows\Cookies
[F:30][D:4]-> C:\Users\JOOFIL~1\AppData\Local\MICROS~1\Windows\TEMPOR~1\content.IE5
[F:301][D:24]-> C:\$Recycle.Bin

[ UAC => 1 ]

--------------------[ Fin du rapport a 16:03:18,78 ]----------------------

MSNFix 1.719

C:\Users\JoÆo Filipe\Desktop\MSNFix\MSNFix
Fix exécuté le 31/05/2008 - 21:15:14,59 By JoÆo Filipe
mode normal

************************ Recherche les fichiers présents

... C:\Users\JOOFIL~1\AppData\Local\Temp\Setup.exe
... C:\Windows\system32\drivers\oreans32.sys

************************ Recherche les dossiers présents

Aucun dossier trouvé

************************ Suppression des fichiers

.. OK ... C:\Users\JOOFIL~1\AppData\Local\Temp\Setup.exe
.. OK ... C:\Windows\system32\drivers\oreans32.sys

************************ Nettoyage du registre

Les fichiers encore présents seront supprimés au prochain redémarrage

Aucun Fichier trouvé

************************ Fichiers suspects

/!\ ces fichiers nécessitent un avis expérimenté avant toute intervention

[C:\Users\JOOFIL~1\AppData\Local\Temp\4vawq6ax.zip] 6397BCBE4323E530FBBFA6A53A8C4FAB
[C:\Users\JOOFIL~1\AppData\Local\Temp\nfz5qp4j.zip] 2F7931156BB3E54E88479C1F16ED6928
[C:\Users\JOOFIL~1\AppData\Local\Temp\oq2cq4ci.zip] 0E1473CA3CB909B0A6C681DE261419AC

[color=#FF0000][b]==>/b/color SVP merci d'envoyer le fichier [b] C:\Users\JOOFIL~1\Desktop\Upload_Me.zip /b sur http://upload.changelog.fr

Les fichiers et clés de registre supprimés ont été sauvegardés dans le fichier 01062008_ 0062131.zip

************************ HKLM\...\Winlogon\Userinit

Userinit = C:\Windows\system32\userinit.exe,

------------------------------------------------------------------------
Auteur : !aur3n7 Contact: https://www.ionos.fr/
------------------------------------------------------------------------

--------------------------------------------- END ---------------------------------------------

Malwarebytes' Anti-Malware 1.11
Version de la base de données: 599

Type de recherche: Examen complet (C:\|D:\|F:\|G:\|H:\|I:\|J:\|K:\|)
Eléments examinés: 257583
Temps écoulé: 46 minute(s), 14 second(s)

Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 0
Valeur(s) du Registre infectée(s): 0
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 0

Processus mémoire infecté(s):
(Aucun élément nuisible détecté)

Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)

Clé(s) du Registre infectée(s):
(Aucun élément nuisible détecté)

Valeur(s) du Registre infectée(s):
(Aucun élément nuisible détecté)

Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)

Dossier(s) infecté(s):
(Aucun élément nuisible détecté)

Fichier(s) infecté(s):
(Aucun élément nuisible détecté)

Logfile of HijackThis v1.99.1
Scan saved at 12:44:28, on 31/05/2008
Platform: Unknown Windows (WinNT 6.00.1905 SP1)
MSIE: Internet Explorer v7.00 (7.00.6001.18000)

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskeng.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\hp\support\hpsysdrv.exe
C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\Hewlett-Packard\HP Software Update\hpwuSchd2.exe
C:\Program Files\TortoiseSVN\bin\TSVNCache.exe
C:\Program Files\Alwil Software\Avast4\ashDisp.exe
C:\Windows\Pixart\Pac7302\Monitor.exe
C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Google\Web Accelerator\GoogleWebAccWarden.exe
C:\Windows\System32\mobsync.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\System32\rundll32.exe
C:\Windows\ehome\ehmsas.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Google\Web Accelerator\googlewebaccclient.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqSTE08.exe
C:\hp\kbd\kbd.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Users\João Filipe\Desktop\hijackthis_199\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://google.atcomet.com/b/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr?cobrand=hp-desktop.msn.com&ocid=HPDHP&pc=HPDTDF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.ustart.org
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigURL = http://localhost:9100/proxy.pac
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: BitComet Helper - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO_1.2.2.28.dll
O2 - BHO: &Google Web Accelerator Helper - {69A87B7D-DE56-4136-9655-716BA50C19C7} - C:\Program Files\Google\Web Accelerator\GoogleWebAccToolbar.dll
O2 - BHO: (no name) - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: (no name) - {FFFFFEF0-5B30-21D4-945D-000000000000} - C:\PROGRA~1\STARDO~1\SDIEInt.dll
O3 - Toolbar: &RoboForm - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll
O3 - Toolbar: Google Web Accelerator - {DB87BFA2-A2E3-451E-8E5A-C89982D87CBF} - C:\Program Files\Google\Web Accelerator\GoogleWebAccToolbar.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [hpsysdrv] c:\hp\support\hpsysdrv.exe
O4 - HKLM\..\Run: [OsdMaestro] "C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe"
O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KbdStub.EXE
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [Sony Ericsson PC Suite] "C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" /startoptions
O4 - HKLM\..\Run: [PAC7302_Monitor] C:\Windows\PixArt\PAC7302\Monitor.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\VistaCodecPack\QT\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Shim Fork] "C:\ProgramData\gram hold hold.4bgp1af"
O4 - HKLM\..\Run: [Frag Ooze Cash Scr] "C:\ProgramData\Trans Chic Drive.4gmje"
O4 - HKLM\..\RunOnce: [Launcher] %WINDIR%\SMINST\launcher.exe
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - Startup: Moteur du Planificateur de tâches SolidWorks.lnk = C:\Program Files\SolidWorks\swScheduler\swBOEngine.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Run Google Web Accelerator.lnk = C:\Program Files\Google\Web Accelerator\GoogleWebAccWarden.exe
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O8 - Extra context menu item: &D&ownload &with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm
O8 - Extra context menu item: &D&ownload all video with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddVideo.htm
O8 - Extra context menu item: &D&ownload all with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm
O8 - Extra context menu item: Barre RoboForm - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O8 - Extra context menu item: Enregistrer le formulaire - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O8 - Extra context menu item: Personnaliser le menu - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html
O8 - Extra context menu item: Remplir le formulaire - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O8 - Extra context menu item: Télécharger avec Star Downloader - C:\Program Files\Star Downloader\sdie.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
O9 - Extra button: Remplir - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O9 - Extra 'Tools' menuitem: Remplir le formulaire - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O9 - Extra button: Enregistrer - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O9 - Extra 'Tools' menuitem: Enregistrer le formulaire - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O9 - Extra button: Barre RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O9 - Extra 'Tools' menuitem: Barre RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O9 - Extra button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://C:\Program Files\BitComet\tools\BitCometBHO_1.2.2.28.dll/206 (file missing)
O10 - Unknown file in Winsock LSP: c:\windows\system32\nlaapi.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\napinsp.dll
O11 - Options group: [INTERNATIONAL] International*
O13 - Gopher Prefix:
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/flashplayer/current/swflash.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL
O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL
O18 - Protocol: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files\Windows Live\Mail\mailcomm.dll
O20 - Winlogon Notify: WBSrv - C:\PROGRA~1\Stardock\OBJECT~1\WINDOW~1\wbsrv.dll
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h ccCommon (file missing)
O23 - Service: @%SystemRoot%\ehome\ehstart.dll,-101 (ehstart) - Unknown owner - %windir%\system32\svchost.exe (file missing)
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - c:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: Maxtor Service (Maxtor Sync Service) - Seagate Technology LLC - C:\Program Files\Maxtor\Sync\SyncServices.exe
O23 - Service: MSSQL$SONY_MEDIAMGR - Unknown owner - C:\Program Files\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe (file missing)
O23 - Service: NMSAccessU - Unknown owner - C:\Program Files\CDBurnerXP\NMSAccessU.exe
O23 - Service: @%SystemRoot%\system32\qwave.dll,-1 (QWAVE) - Unknown owner - %windir%\system32\svchost.exe (file missing)
O23 - Service: @%SystemRoot%\system32\seclogon.dll,-7001 (seclogon) - Unknown owner - %windir%\system32\svchost.exe (file missing)
O23 - Service: SolidWorks Licensing Service - Unknown owner - C:\Program Files\Common Files\SolidWorks Shared\Service\SolidWorksLicensing.exe (file missing)
O23 - Service: SQLAgent$SONY_MEDIAMGR - Unknown owner - C:\Program Files\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlagent.EXE (file missing)
O23 - Service: StarWind AE Service (StarWindServiceAE) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 52\StarWind\StarWindServiceAE.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - c:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: @%SystemRoot%\System32\TuneUpDefragService.exe,-1 (TuneUp.Defrag) - TuneUp Software GmbH - C:\Windows\System32\TuneUpDefragService.exe
O23 - Service: Stardock WindowBlinds (WindowBlinds) - Stardock Corporation - C:\PROGRA~1\Stardock\OBJECT~1\WINDOW~1\VistaSrv.exe
O23 - Service: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - %ProgramFiles%\Windows Media Player\wmpnetwk.exe (file missing)

Voilà, je vais voir si clean marche en mode sans echec.
0
papyber Messages postés 6430 Statut Contributeur sécurité 257
 
relance hijack this et coche ces lignes
O4 - HKLM\..\Run: [Shim Fork] "C:\ProgramData\gram hold hold.4bgp1af"
O4 - HKLM\..\Run: [Frag Ooze Cash Scr] "C:\ProgramData\Trans Chic Drive.4gmje"
ferme toutes tes applications y compris internet et clique sur fix checked

Fais un Scan en ligne avec
https://www.kaspersky.fr/?domain=webscanner.kaspersky.fr

NOTE: le Scan est à faire avec Internet Explorer
Dans la nouvelle fenêtre qui s'affiche clique sur J'accepte

On va te demander de télécharger des contrôles ActiveX, accepte.
Laisse le faire les mises à jour puis quand il aura fini, clique sur Suivant

Dans le menu Choisissez la cible de l'analyse, sélectionne Poste de travail.
Le Scan va commencer.

Reviens avec le rapport de Scan obtenu
0
Sismix84 Messages postés 83 Statut Membre 2
 
L'installation ne marche pas, certain composant ne fonctionnent pas. Ça doit être à cause de vista, le site indique que la version pour vista n'est pas encore sortie.
0
papyber Messages postés 6430 Statut Contributeur sécurité 257
 
en principe il fonctionne pourtant avec vista
essaie celui ci
http://support.f-secure.com/enu/home/ols.shtml
avec internet explorer
0
Sismix84 Messages postés 83 Statut Membre 2
 
Ca y est j'ai fait le scan. J'en ai fait 2, le premier j'ai dû l'arrêter car il étais trop long et j'ai dû éteindre le PC. Donc je poste les 2 rapport :

Scanning Report
Wednesday, June 04, 2008 20:55:48 - 21:35:42

Computer name: HP-PAVILLION
Scanning type: Scan system for malware, rootkits
Target: C:\ D:\ E:\
Result: 4 malware found
IM-Worm.Win32.Pykse (virus)

* System

PSWTool.Win32.RAS (spyware)

* System

Tracking Cookie (spyware)

* System

Trojan-Downloader.Win32.Agent (virus)

* System

Statistics
Scanned:

* Files: 12919
* System: 9357
* Not scanned: 2

Actions:

* Disinfected: 0
* Renamed: 0
* Deleted: 0
* None: 4
* Submitted: 0

Files not scanned:

* C:\HIBERFIL.SYS
* C:\PAGEFILE.SYS

Options
Scanning engines:

* F-Secure USS: 2.30.0
* F-Secure Hydra: 2.8.8110, 2008-06-04
* F-Secure AVP: 7.0.171, 2008-06-04
* F-Secure Pegasus: 1.20.0, 2008-04-15

Scanning options:

* Scan defined files: COM EXE SYS OV? BIN SCR DLL SHS HTM HTML HTT VBS JS INF VXD DO? XL? RTF CPL WIZ HTA PP? PWZ P?T MSO PIF . ACM ASP AX CNV CSC DRV INI MDB MPD MPP MPT OBD OBT OCX PCI TLB TSP WBK WBT WPC WSH VWP WML BOO HLP TD0 TT6 MSG ASD JSE VBE WSC CHM EML PRC SHB LNK WSF {* PDF ZL? XML ZIP XXX ANI AVB BAT CMD JPG LSP MAP MHT MIF PHP POT SWF WMF NWS TAR
* Use Advanced heuristics

Copyright © 1998-2007 Product support |Send virus sample to F-Secure
F-Secure assumes no responsibility for material created or published by third parties that F-Secure World Wide Web pages have a link to. Unless you have clearly stated otherwise, by submitting material to any of our servers, for example by E-mail or via our F-Secure's CGI E-mail, you agree that the material you make available may be published in the F-Secure World Wide Pages or hard-copy publications. You will reach F-Secure public web site by clicking on underlined links. While doing this, your access will be logged to our private access statistics with your domain name.This information will not be given to any third party. You agree not to take action against us in relation to material that you submit. Unless you have clearly stated otherwise, by submitting material you warrant that F-Secure may incorporate any concepts described in it in the F-Secure products/publications without liability.

Scanning Report
Thursday, June 05, 2008 11:43:08 - 13:33:33

Computer name: HP-PAVILLION
Scanning type: Scan system for malware, rootkits
Target: C:\ D:\ E:\
Result: 4 malware found
Backdoor.Win32.Rbot.fhl (virus)

* E:\DISQUE DUR XP\INCOMING\SONY VEGAS PRO V8 KEYGEN\CRACK.DLL (Renamed & Submitted)

Suspicious_F.gen (virus)

* C:\PROGRAM FILES\FRAPS 2.9.1\FRAPS.EXE (Submitted)
* E:\DISQUE DUR XP\INCOMING\FRAPS 2.9.1 CRCKED\CRACK\FRAPS.EXE (Submitted)

Trojan.Win32.KillAV.pp (virus)

* C:\USERS\JO�O FILIPE\DOCUMENTS\DIVERS\XTREME ADMIN 2.1 REL1\XTREME ADMINISTRATION UPDATER.EXE (Renamed & Submitted)

Statistics
Scanned:

* Files: 62930
* System: 9354
* Not scanned: 23

Actions:

* Disinfected: 0
* Renamed: 2
* Deleted: 0
* None: 2
* Submitted: 4

Files not scanned:

* C:\HIBERFIL.SYS
* C:\PAGEFILE.SYS
* C:\WINDOWS\SYSTEM32\DRIVERS\SPTD.SYS
* C:\WINDOWS\SYSTEM32\CONFIG\COMPONENTS
* C:\WINDOWS\SYSTEM32\CONFIG\DEFAULT
* C:\WINDOWS\SYSTEM32\CONFIG\SAM
* C:\WINDOWS\SYSTEM32\CONFIG\SECURITY
* C:\WINDOWS\SYSTEM32\CONFIG\SOFTWARE
* C:\WINDOWS\SYSTEM32\CONFIG\SYSTEM
* C:\WINDOWS\SYSTEM32\CONFIG\REGBACK\COMPONENTS
* C:\WINDOWS\SYSTEM32\CONFIG\REGBACK\DEFAULT
* C:\WINDOWS\SYSTEM32\CONFIG\REGBACK\SAM
* C:\WINDOWS\SYSTEM32\CONFIG\REGBACK\SECURITY
* C:\WINDOWS\SYSTEM32\CONFIG\REGBACK\SOFTWARE
* C:\WINDOWS\SYSTEM32\CONFIG\REGBACK\SYSTEM
* C:\WINDOWS\SYSTEM32\CATROOT2\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\CATDB
* C:\WINDOWS\SYSTEM32\CATROOT2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}\CATDB
* C:\WINDOWS\SOFTWAREDISTRIBUTION\EVENTCACHE\{93B15B6C-F50D-42A8-8FD0-197120D2FBB9}.BIN
* C:\USERS\ALL USERS\MICROSOFT\CRYPTO\RSA\MACHINEKEYS\F30DBA13E0608E2F777CDBCB26AEC271_671F13D8-C85E-42D8-89F6-9C538D93EB32
* C:\USERS\ALL USERS\MICROSOFT\CRYPTO\RSA\MACHINEKEYS\FC1E3851F429EA606D6FF1E01A5229F1_671F13D8-C85E-42D8-89F6-9C538D93EB32
* C:\PROGRAMDATA\MICROSOFT\CRYPTO\RSA\MACHINEKEYS\F30DBA13E0608E2F777CDBCB26AEC271_671F13D8-C85E-42D8-89F6-9C538D93EB32
* C:\PROGRAMDATA\MICROSOFT\CRYPTO\RSA\MACHINEKEYS\FC1E3851F429EA606D6FF1E01A5229F1_671F13D8-C85E-42D8-89F6-9C538D93EB32
* C:\BOOT\BCD

Options
Scanning engines:

* F-Secure USS: 2.30.0
* F-Secure Hydra: 2.8.8110, 2008-06-05
* F-Secure AVP: 7.0.171, 2008-06-05
* F-Secure Pegasus: 1.20.0, 2008-04-15

Scanning options:

* Scan defined files: COM EXE SYS OV? BIN SCR DLL SHS HTM HTML HTT VBS JS INF VXD DO? XL? RTF CPL WIZ HTA PP? PWZ P?T MSO PIF . ACM ASP AX CNV CSC DRV INI MDB MPD MPP MPT OBD OBT OCX PCI TLB TSP WBK WBT WPC WSH VWP WML BOO HLP TD0 TT6 MSG ASD JSE VBE WSC CHM EML PRC SHB LNK WSF {* PDF ZL? XML ZIP XXX ANI AVB BAT CMD JPG LSP MAP MHT MIF PHP POT SWF WMF NWS TAR
* Use Advanced heuristics

Copyright © 1998-2007 Product support |Send virus sample to F-Secure
F-Secure assumes no responsibility for material created or published by third parties that F-Secure World Wide Web pages have a link to. Unless you have clearly stated otherwise, by submitting material to any of our servers, for example by E-mail or via our F-Secure's CGI E-mail, you agree that the material you make available may be published in the F-Secure World Wide Pages or hard-copy publications. You will reach F-Secure public web site by clicking on underlined links. While doing this, your access will be logged to our private access statistics with your domain name.This information will not be given to any third party. You agree not to take action against us in relation to material that you submit. Unless you have clearly stated otherwise, by submitting material you warrant that F-Secure may incorporate any concepts described in it in the F-Secure products/publications without liability.
0
papyber Messages postés 6430 Statut Contributeur sécurité 257
 
* E:\DISQUE DUR XP\INCOMING\SONY VEGAS PRO V8 KEYGEN\CRACK.DLL (Renamed & Submitted)

Suspicious_F.gen (virus)

* C:\PROGRAM FILES\FRAPS 2.9.1\FRAPS.EXE (Submitted)
* E:\DISQUE DUR XP\INCOMING\FRAPS 2.9.1 CRCKED\CRACK\FRAPS.EXE (Submitted)

Trojan.Win32.KillAV.pp (virus)

* C:\USERS\JO�O FILIPE\DOCUMENTS\DIVERS\XTREME ADMIN 2.1 REL1\XTREME ADMINISTRATION UPDATER.EXE (Renamed & Submitted)
vérifie que ces fichiers n'existent plus, si encore présents, supprime les

et dis moi si tu as encore des soucis
0
Sismix84 Messages postés 83 Statut Membre 2
 
Bonjour, ces fichiers, je les ai supprimé, l'antivirus ne l'avait pas fait. Mais mon problème de processeur est toujours là, il atteins toujours les 30%.
0
papyber Messages postés 6430 Statut Contributeur sécurité 257
 
Télécharge Deckard's System Scanner (DSS) (ou DSS) sur ton Bureau.
http://www.techsupportforum.com/sectools/Deckard/dss.exe

NB : Tu dois être connecté avec des droits d'Administrateur.
1. ferme toutes les applications et fenêtres
2. double-clique sur dss.exe pour le lancer et suis les instructions ci-dessous
Attention, il est conseillé de stopper temporairement les logiciels résidents de protection (pare-feu, antivirus, etc.)
3. s'il s'agit d'une première utilisation ou d'une nouvelle version de DSS :
o tu devras cliquer 2 fois sur le OK des boîtes de Dialogue
Attention, si tu tardes trop, la réponse Abandon sera automatiquement validée
o quand le traitement est terminé (clique sur OK), deux fichiers texte s'affichent :
main.txt - ouvert en premier plan et en plein écran
extra.txt - ouvert en second plan et en fenêtré (regarde la barre des taches)
S'il s'agit d'une utilisation supplémentaire de DSS :
o tu n'auras pas de boîte de Dialogue (pas de OK)
o quand le traitement est terminé, un fichier texte s'affiche :
main.txt - ouvert en premier plan et en plein écran
4. copie (Ctrl+A puis Ctrl+C) et colle (Ctrl+V) le contenu de main.txt dans ton prochain post
5. copie de même le contenu de extra.txt dans ton prochain post, si tu as ce fichier (première utilisation)
6. n'oublie pas de réactiver les protections si elles ont été stoppées
0
Sismix84 Messages postés 83 Statut Membre 2
 
Salut,

le fichier main.txt :

Deckard's System Scanner v20071014.68
Run by João Filipe on 2008-06-09 18:53:42
Computer is in Normal Mode.
--------------------------------------------------------------------------------

-- Last 5 Restore Point(s) --
15: 2008-06-08 15:01:20 UTC - RP725 - Point de contrôle planifié
14: 2008-06-07 11:02:25 UTC - RP724 - Point de contrôle planifié
13: 2008-06-06 17:37:34 UTC - RP723 - Installé GTA San Andreas
12: 2008-06-06 17:30:51 UTC - RP721 - Supprimé GTA San Andreas
11: 2008-06-06 06:54:57 UTC - RP719 - Windows Update

-- First Restore Point --
1: 2008-05-28 09:31:11 UTC - RP705 - Windows Update

Backed up registry hives.
Performed disk cleanup.

[color=red]Percentage of Memory in Use: 79% (more than 75%).[/color]
[color=red]Total Physical Memory: 894 MiB (1024 MiB recommended).[/color]

-- HijackThis Clone ------------------------------------------------------------

Emulating logfile of Trend Micro HijackThis v2.0.2
Scan saved at 2008-06-09 19:00:27
Platform: Windows Vista Service Pack 1 (6.00.6001)
MSIE: Internet Explorer (7.00.6000.16386)
Boot mode: Normal

Running processes:
C:\Windows\System32\taskeng.exe
C:\Windows\System32\dwm.exe
C:\Windows\explorer.exe
C:\hp\support\hpsysdrv.exe
C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\Hewlett-Packard\HP Software Update\hpwuSchd2.exe
C:\Program Files\TortoiseSVN\bin\TSVNCache.exe
C:\Windows\Pixart\Pac7302\Monitor.exe
C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\Windows\System32\wpcumi.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Google\Web Accelerator\GoogleWebAccWarden.exe
C:\Windows\System32\mobsync.exe
C:\Windows\System32\wbem\unsecapp.exe
C:\Windows\ehome\ehmsas.exe
C:\Program Files\Google\Web Accelerator\GoogleWebAccClient.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqste08.exe
C:\hp\KBD\kbd.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Users\João Filipe\Desktop\dss.exe
C:\Windows\System32\conime.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://google.atcomet.com/b/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr?cobrand=hp-desktop.msn.com&ocid=HPDHP&pc=HPDTDF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: BitComet Helper - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - E:\Program Files\BitComet\tools\BitCometBHO_1.2.2.28.dll
O2 - BHO: &Google Web Accelerator Helper - {69A87B7D-DE56-4136-9655-716BA50C19C7} - C:\Program Files\Google\Web Accelerator\GoogleWebAccToolbar.dll
O2 - BHO: (no name) - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: (no name) - {FFFFFEF0-5B30-21D4-945D-000000000000} - C:\Program Files\Star Downloader\SDIEInt.dll
O3 - Toolbar: &RoboForm - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll
O3 - Toolbar: Google Web Accelerator - {DB87BFA2-A2E3-451E-8E5A-C89982D87CBF} - C:\Program Files\Google\Web Accelerator\GoogleWebAccToolbar.dll
O4 - HKLM\..\Run: [hpsysdrv] c:\hp\support\hpsysdrv.exe
O4 - HKLM\..\Run: [OsdMaestro] "C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe"
O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KbdStub.EXE
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [Sony Ericsson PC Suite] "C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" /startoptions
O4 - HKLM\..\Run: [PAC7302_Monitor] C:\Windows\PixArt\PAC7302\Monitor.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\VistaCodecPack\QT\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Shim Fork] "C:\ProgramData\gram hold hold.4bgp1af"
O4 - HKLM\..\Run: [Frag Ooze Cash Scr] "C:\ProgramData\Trans Chic Drive.4gmje"
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min /nosplash
O4 - HKLM\..\Run: [WPCUMI] C:\Windows\system32\WpcUmi.exe
O4 - HKLM\..\RunOnce: [Launcher] %WINDIR%\SMINST\launcher.exe
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'NETWORK SERVICE')
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Run Google Web Accelerator.lnk = C:\Program Files\Google\Web Accelerator\GoogleWebAccWarden.exe
O8 - Extra context menu item: &D&ownload &with BitComet - res://E:\Program Files\BitComet\BitComet.exe/AddLink.htm
O8 - Extra context menu item: &D&ownload all video with BitComet - res://E:\Program Files\BitComet\BitComet.exe/AddVideo.htm
O8 - Extra context menu item: &D&ownload all with BitComet - res://E:\Program Files\BitComet\BitComet.exe/AddAllLink.htm
O8 - Extra context menu item: Barre RoboForm - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O8 - Extra context menu item: Enregistrer le formulaire - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O8 - Extra context menu item: Personnaliser le menu - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html
O8 - Extra context menu item: Remplir le formulaire - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O8 - Extra context menu item: Télécharger avec Star Downloader - C:\Program Files\Star Downloader\sdie.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
O9 - Extra button: Remplir - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html (file missing)
O9 - Extra 'Tools' menuitem: Remplir le formulaire - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html (file missing)
O9 - Extra button: Enregistrer - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html (file missing)
O9 - Extra 'Tools' menuitem: Enregistrer le formulaire - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html (file missing)
O9 - Extra button: Barre RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html (file missing)
O9 - Extra 'Tools' menuitem: Barre RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html (file missing)
O9 - Extra button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://E:\Program Files\BitComet\tools\BitCometBHO_1.2.2.28.dll/206 (file missing)
O10 - Unknown file in Winsock LSP: C:\Windows\System32\wpclsp.dll
O10 - Unknown file in Winsock LSP: C:\Windows\System32\wpclsp.dll
O10 - Unknown file in Winsock LSP: C:\Windows\System32\wpclsp.dll
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - https://www.kaspersky.fr/?domain=webscanner.kaspersky.fr
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx1.hotmail.com/mail/w2/resources/VistaMSNPUpldfr-fr.cab
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} () - http://fpdownload.macromedia.com/get/flashplayer/current/ultrashim.cab
O16 - DPF: {BDBDE413-7B1C-4C68-A8FF-C5B2B4090876} (F-Secure Online Scanner 3.3) - https://www.f-secure.com/en/home/support
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/flashplayer/current/swflash.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.8.5.1302.1018.dll
O18 - Protocol: ms-help - {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\microsoft shared\Help\hxds.dll
O18 - Protocol: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\microsoft shared\Information Retrieval\msitss.dll
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.8.5.1302.1018.dll
O18 - Protocol: mso-offdap11 - {32505114-5902-49B2-880A-1F7738E5A384} - C:\Program Files\Common Files\microsoft shared\Web Components\11\OWC11.DLL
O18 - Protocol: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files\Windows Live\Mail\mailcomm.dll
O23 - Service: Avira AntiVir Personal – Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: Avira AntiVir Personal – Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: Maxtor Service (Maxtor Sync Service) - Seagate Technology LLC - C:\Program Files\Maxtor\Sync\SyncServices.exe
O23 - Service: NMIndexingService - Unknown owner - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: NMSAccessU - Unknown owner - C:\Program Files\CDBurnerXP\NMSAccessU.exe
O23 - Service: SolidWorks Licensing Service - Unknown owner - C:\Program Files\Common Files\SolidWorks Shared\Service\SolidWorksLicensing.exe
O23 - Service: StarWind AE Service (StarWindServiceAE) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 52\StarWind\StarWindServiceAE.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: TeamViewer 3 (TeamViewer) - TeamViewer GmbH - C:\Program Files\TeamViewer3\TeamViewer_Host.exe
O23 - Service: @%SystemRoot%\System32\TuneUpDefragService.exe,-1 (TuneUp.Defrag) - TuneUp Software GmbH - C:\Windows\System32\TuneUpDefragService.exe
O23 - Service: Stardock WindowBlinds (WindowBlinds) - Stardock Corporation - C:\Program Files\Stardock\Object Desktop\WindowBlinds\VistaSrv.exe

0
papyber Messages postés 6430 Statut Contributeur sécurité 257
 
Télécharge ComboFix.exe (par sUBs) sur ton Bureau
http://download.bleepingcomputer.com/sUBs/ComboFix.exe
Tutoriel officiel de ComboFix, afin de l’utiliser correctement
https://www.bleepingcomputer.com/combofix/fr/comment-utiliser-combofix
Désactive ton antivirus, antispyware, et Spybot-S&D (résident) durant l'utilisation de ComboFix. Merci. Tu le réactiveras ensuite, en fin de désinfection.
Voir ici comment désactiver tes protections
https://forum.pcastuces.com/default.asp
Double clique sur ComboFix.exe (ComboFix)
Tape 1 puis tape sur Entrée
A noter: une fois que ComboFix est lancé, il ne faut pas cliquer dans la fenêtre de ComboFix car cela pourrait entraîner un plantage du programme.
Il est recommandé de laisser l'outil analyser et nettoyer le PC sans utiliser quoi que ce soit d'autre...
A la fin de l’analyse, un rapport apparaîtra. Copie/colle ce rapport dans ta prochaine réponse
Si le rapport n'apparaît pas, tu le trouves ici, à la racine de ton Système, en principe : C:\ComboFix.txt (C:\ComboFix)
0
Sismix84 Messages postés 83 Statut Membre 2
 
Bonsoir,

Je suis désolé pour l'énorme retard, j'ai eu un problème avec internet. Pour la suite de la procédure je vais devoir attendre, j'ai emmené mon PC en réparation (bout de carte mémoire coincé à l'intérieur -_-). Si ça ne te dérange pas d'attendre, ça serais sympa.
0