PROBLEME POPUPS CID

Résolu
Bonjour, j'ai un probléme depuis 3 jours des fenetres popups cid s'ouvrent toutes les 30 secondes j'ai téléchargé le rapport Lopxp et HijackThis mais je comprends rien.Si quelqu'un s'y connait et pourrait m'aider sa serrait sympa.
Merci d'avance
Configuration: Windows XP
Internet Explorer 7.0

36 réponses

Résumé de la discussion

Problème récurrent des fenêtres popup se produit toutes les 30 secondes sur Windows XP avec Internet Explorer 7 et est décrit avec les rapports Lopxp et HijackThis. Des utilisateurs encouragent à analyser les rapports et proposent des nettoyages, une progression est décrite après l'exécution du rapport Lopxp et le redémarrage, sans popup. Le rapport Lopxp détaillé contient des suppressions acceptées, des fichiers déplacés avec succès et des nettoyages du registre et des fichiers temporaires, avec une liste longue de répertoires concernés. Autre fait utile: la présence de plusieurs éléments listés sous D:\Documents and Settings et Program Files, reflétant les emplacements susceptibles d'être affectés par des logiciels indésirables.

Bobot (l’IA à votre service)
  1. salut ,

    Télécharge ceci: (by Moe) :
    http://sosvirus.changelog.fr/Green_day/Lopxpsetup.exe

    Double clic sur Lopxpsetup.exe pour lancer l'installation
    Au menu, choisir l'option 1
    Patienter jusqu'à que l'on demande d'appuyer sur une touche, appuyer !
    Une rapport sera alors crée, à copie/colle en entier sur le forum.

    1. Modérateur
      Salut,

      ---> Désactive l'UAC (si tu as Vista) :
      https://www.zebulon.fr/astuces/pratique/220-desactiver-l-uac-dans-vista.html
      ---> Désactive l'antivirus
      ---> Télécharge Lop S&D sur ton Bureau
      https://77b4795d-a-62cb3a1a-s-sites.googlegroups.com/site/eric71mespages/LopSD.exe?attachauth=ANoY7co3ntqUavpZ3q1BG-h4pc13vqDZmhcNeEPChtsyrgAykRbhE8bZzhk979EfQD4AgwtQUHCaQ7ZQwNYMo3_0kA8htAspckDJtu2K5t6J9z6dLW4fpZyH4FpFL1tVMBZ8H-KnN7afZ5vt-WxZRpnynk-a0XmV_Y0C0q6DxGEDKie1TnPT7gFoZnoCnspzBmbW6ZzxA4fNr3oEDlbelNZON-LjF8nOmQ%3D%3D&attredirects=2
      ---> Double-clique dessus pour lancer l'installation
      ---> Puis double-clique sur le raccourci Lop S&D présent sur ton Bureau
      ---> Séléctionne la langue souhaitée, puis choisis l'option 1 (Recherche)
      ---> Patiente jusqu'à la fin du scan
      ---> Poste le rapport généré (C:\lopR.txt)

      (Si le Bureau ne réapparait pas, presse Ctrl+Alt+Suppr, Onglet Fichier, Nouvelle tâche, tape explorer.exe et valide)

      Si tu as un problème pour utiliser Lop S&D, regarde dans le tutorial :
      http://bibou0007.com/outils-specifiques-f78/tutorial-lop-sd-t956.htm#11431
      1. Ok merci voici le rapport

        # Rapport Lopxp fait le 16/06/2008 à 13:08:56
        # Exécuté dans : C:\Program Files\Lopxp
        # Version 3.06 - Maj du 05/02/2008

        Killing 'iexplore.exe'
        "C:\Program Files\Internet Explorer\IEXPLORE.EXE" (2068)
        "C:\Program Files\Internet Explorer\IEXPLORE.EXE" (3112)
        "C:\Program Files\Internet Explorer\iexplore.exe" (2288)

        ========== Listing des dossiers Application Data

        +- D:\Documents and Settings\All Users\Application Data

        2006-03-16 à 11:19:58 - Adobe
        2007-09-20 à 13:56:12 - Ahead
        2007-10-25 à 17:17:06 - AOL
        2007-08-29 à 18:57:57 - AOL Downloads
        2007-08-29 à 18:59:47 - AOL OCP
        2007-08-18 à 15:54:49 - Ball Shim Dupe Tick
        2006-04-23 à 19:17:23 - Ciel
        2006-03-16 à 11:29:56 - CyberLink
        2007-09-20 à 12:30:11 - Droppix
        2007-04-19 à 11:34:52 - element5
        2007-04-03 à 15:54:31 - Emjysoft
        2007-05-11 à 13:13:16 - ESTsoft
        2007-03-23 à 23:56:20 - Google
        2008-05-29 à 15:31:15 - HP
        2007-10-26 à 15:58:14 - IconTweaker
        2007-04-23 à 18:19:29 - LightScribe
        2008-06-04 à 16:56:13 - LogiShrd
        2008-06-04 à 16:56:12 - Logitech
        2008-06-15 à 17:34:13 - Messenger Plus!
        2008-03-07 à 21:08:34 - Microsoft
        2007-10-26 à 13:30:43 - Microsoft Corporation
        2007-09-03 à 13:42:27 - Mozilla
        2006-04-09 à 14:00:36 - nView_Profiles
        2007-06-07 à 22:00:54 - Office Genuine Advantage
        2007-12-01 à 14:03:14 - PlayFirst
        2006-03-16 à 11:20:56 - QuickTime
        2006-04-15 à 18:13:51 - Samsung
        2004-08-17 à 01:28:48 - SBSI
        2007-09-08 à 21:33:18 - Skype
        2008-06-11 à 16:43:08 - SweetIM
        2007-12-03 à 13:58:35 - Symantec
        2007-10-29 à 10:16:26 - TEMP
        2008-06-13 à 13:15:16 - Tick Find Close Surf
        2006-03-16 à 11:27:22 - Ulead Systems
        2007-10-25 à 17:18:53 - VadeRetro
        2006-03-16 à 11:21:02 - Viewpoint
        2007-03-22 à 09:53:23 - Windows Genuine Advantage
        2007-03-22 à 19:24:18 - Windows Live Toolbar
        2007-07-04 à 08:45:03 - WindowsLiveInstaller
        2007-08-16 à 12:30:22 - Winferno
        2007-10-26 à 14:19:34 - WinZip
        2008-06-15 à 19:51:24 - WLInstaller
        2007-09-26 à 10:26:15 - Zylom

        +- D:\Documents and Settings\Fred et Mimi\Application Data

        2007-09-20 à 15:11:03 - Adobe
        2007-09-19 à 09:05:50 - AdobeUM
        2007-09-20 à 16:50:22 - Ahead
        2007-09-15 à 12:22:01 - BitTorrent
        2007-09-15 à 16:01:06 - CamfrogWEB
        2007-09-20 à 12:29:28 - Droppix
        2007-10-25 à 11:23:44 - EoRezo
        2007-09-11 à 12:35:30 - EPSON
        2007-10-22 à 15:53:05 - FileZilla
        2007-09-08 à 22:43:09 - Google
        2007-09-08 à 22:36:30 - Help
        2007-10-12 à 10:53:45 - Identities
        2007-09-10 à 16:08:53 - InterTrust
        2007-10-21 à 16:17:59 - ItsLabel
        2007-09-20 à 14:37:19 - Leadertech
        2007-10-20 à 09:51:36 - LimeWire
        2007-09-08 à 22:38:40 - Macromedia
        2007-10-12 à 10:43:49 - Microsoft
        2007-09-15 à 02:53:45 - MSNInstaller
        2007-09-11 à 14:21:46 - Real
        2007-09-09 à 21:31:51 - SecuROM
        2007-09-08 à 21:32:16 - Skype
        2007-09-20 à 14:37:49 - Sonic
        2007-09-08 à 21:32:46 - Sun
        2007-09-08 à 21:30:35 - Symantec
        2007-10-12 à 14:12:52 - teamspeak2
        2007-10-06 à 11:11:47 - Ulead Systems
        2007-09-11 à 14:54:17 - VadeRetro
        2007-10-12 à 11:14:23 - Windows Desktop Search
        2007-10-24 à 10:37:02 - Windows Live Writer
        2007-10-02 à 18:30:35 - WinRAR
        2007-09-09 à 05:17:03 - You've Got Pictures Screensaver
        2007-09-26 à 12:38:12 - Zylom

        +- D:\Documents and Settings\Fred et Mimi\Local Settings\Application Data

        2007-09-20 à 15:13:48 - Adobe
        2007-09-20 à 16:24:10 - Ahead
        2007-10-24 à 10:38:00 - ApplicationHistory
        2007-10-24 à 10:43:18 - Google
        2007-09-08 à 22:36:30 - Help
        2007-10-12 à 10:53:45 - Identities
        2007-10-21 à 16:01:52 - Microsoft
        2007-09-19 à 17:17:50 - PCHealth
        2007-09-09 à 05:17:03 - PowerCinema
        2007-09-13 à 14:55:36 - Steam
        2007-10-24 à 10:37:02 - Windows Live Writer
        2007-09-09 à 05:17:03 - {3248F0A6-6813-11D6-A77B-00B0D0150040}

        +- D:\Documents and Settings\Fred‚rique\Application Data

        2007-12-15 à 09:51:13 - Acreon
        2007-11-05 à 15:15:48 - Adobe
        2007-12-26 à 16:45:25 - EPSON
        2007-12-14 à 15:44:12 - FileZilla
        2007-10-27 à 06:43:09 - Google
        2007-10-31 à 10:47:42 - Hamachi
        2007-12-31 à 00:53:32 - Help
        2007-10-26 à 15:58:14 - IconTweaker
        2007-12-01 à 14:03:11 - Identities
        2007-10-29 à 13:03:59 - LimeWire
        2007-10-25 à 18:21:07 - Macromedia
        2007-12-26 à 12:54:14 - Microsoft
        2007-12-01 à 14:03:33 - PlayFirst
        2007-10-27 à 11:47:54 - Real
        2007-10-25 à 18:02:26 - Sun
        2007-10-25 à 17:59:45 - Symantec
        2007-10-30 à 08:40:25 - teamspeak2
        2007-11-01 à 11:41:12 - VadeRetro
        2007-10-26 à 14:57:57 - Windows Desktop Search
        2007-11-09 à 17:24:46 - WinRAR
        2007-12-31 à 02:46:35 - Xfire
        2007-10-25 à 17:17:50 - You've Got Pictures Screensaver
        2007-12-01 à 14:03:11 - Zylom

        +- D:\Documents and Settings\Fred‚rique\Local Settings\Application Data

        2007-11-05 à 15:16:08 - Adobe
        2007-12-30 à 16:00:37 - ApplicationHistory
        2007-11-16 à 21:17:06 - Google
        2007-10-30 à 09:11:40 - Help
        2007-11-01 à 13:28:02 - Identities
        2007-12-26 à 12:54:11 - Microsoft
        2007-10-25 à 17:27:23 - PowerCinema
        2007-12-22 à 17:30:07 - SM
        2007-10-25 à 19:01:22 - Steam
        2007-10-25 à 17:10:45 - {3248F0A6-6813-11D6-A77B-00B0D0150040}

        +- D:\Documents and Settings\Fred‚rique.FRED\Application Data

        2008-06-16 à 10:41:56 - Adobe
        2008-01-22 à 14:45:09 - CyberLink
        2008-01-11 à 14:54:10 - EPSON
        2007-12-31 à 04:16:26 - Google
        2007-12-31 à 04:17:56 - Help
        2008-05-29 à 15:31:27 - HP
        2008-01-01 à 22:11:43 - IconTweaker
        2007-10-26 à 01:38:48 - Identities
        2008-06-11 à 09:40:35 - Image Zone Express
        2008-05-29 à 15:48:55 - InstallShield
        2008-06-13 à 12:48:48 - LimeWire
        2008-05-29 à 15:52:02 - Logitech
        2007-12-31 à 04:26:16 - Macromedia
        2008-05-29 à 15:49:02 - Microsoft
        2008-03-20 à 22:29:32 - Norman
        2008-06-13 à 13:15:39 - Program The
        2008-01-02 à 15:55:48 - Real
        2008-06-11 à 22:47:12 - Sun
        2007-10-25 à 17:19:51 - Symantec
        2007-12-31 à 04:28:53 - VadeRetro
        2007-12-31 à 04:09:56 - Windows Desktop Search
        2007-12-31 à 17:11:23 - WinRAR
        2007-10-25 à 17:17:50 - You've Got Pictures Screensaver

        +- D:\Documents and Settings\Fred‚rique.FRED\Local Settings\Application Data

        2008-01-02 à 10:58:35 - Adobe
        2008-05-29 à 15:37:52 - ApplicationHistory
        2008-01-26 à 15:52:13 - Google
        2007-12-31 à 04:17:56 - Help
        2007-12-31 à 04:09:58 - Identities
        2008-06-10 à 14:00:51 - Microsoft
        2008-01-10 à 11:11:58 - PCHealth
        2008-01-22 à 15:14:29 - PowerCinema
        2008-05-01 à 14:17:39 - Steam
        2008-03-04 à 14:52:39 - WMTools Downloaded Files
        2007-10-25 à 17:10:45 - {3248F0A6-6813-11D6-A77B-00B0D0150040}

        +- D:\Documents and Settings\LESNE Fr‚d‚rique\Application Data

        2007-06-06 à 22:17:00 - Adobe
        2007-06-06 à 21:28:47 - AOL
        2007-06-06 à 21:18:20 - Google
        2007-06-06 à 21:13:24 - Help
        2007-06-07 à 05:14:38 - Identities
        2007-06-06 à 22:17:00 - InterTrust
        2007-06-07 à 05:14:38 - Macromedia
        2007-09-08 à 19:30:23 - Microsoft

        +- D:\Documents and Settings\LocalService.AUTORITE NT\Application Data

        2006-05-14 à 13:43:52 - Microsoft

        +- D:\Documents and Settings\LocalService.AUTORITE NT\Local Settings\Application Data

        2006-05-14 à 13:43:52 - Microsoft

        +- D:\Documents and Settings\LocalService.AUTORITE NT.000\Application Data

        2006-11-03 à 18:12:30 - Microsoft

        +- D:\Documents and Settings\LocalService.AUTORITE NT.000\Local Settings\Application Data

        2006-11-03 à 18:12:30 - Microsoft

        +- D:\Documents and Settings\LocalService.AUTORITE NT.001\Application Data

        2007-03-25 à 20:02:42 - Microsoft

        +- D:\Documents and Settings\LocalService.AUTORITE NT.001\Local Settings\Application Data

        2007-03-25 à 20:02:42 - Microsoft

        +- D:\Documents and Settings\LocalService.AUTORITE NT.003\Application Data

        2007-04-03 à 13:11:15 - Microsoft

        +- D:\Documents and Settings\LocalService.AUTORITE NT.003\Local Settings\Application Data

        2007-04-03 à 13:11:15 - Microsoft

        +- D:\Documents and Settings\LocalService.AUTORITE NT.004\Application Data

        2007-06-19 à 14:03:15 - Microsoft

        +- D:\Documents and Settings\LocalService.AUTORITE NT.004\Local Settings\Application Data

        2007-06-19 à 14:03:15 - Microsoft

        +- D:\Documents and Settings\NetworkService.AUTORITE NT\Application Data

        2006-05-14 à 13:43:52 - Microsoft

        +- D:\Documents and Settings\NetworkService.AUTORITE NT\Local Settings\Application Data

        2006-05-14 à 13:43:52 - Microsoft

        +- D:\Documents and Settings\NetworkService.AUTORITE NT.000\Application Data

        2006-11-03 à 18:12:30 - Microsoft

        +- D:\Documents and Settings\NetworkService.AUTORITE NT.000\Local Settings\Application Data

        2006-11-03 à 18:12:30 - Microsoft

        +- D:\Documents and Settings\NetworkService.AUTORITE NT.001\Application Data

        2007-03-25 à 20:02:43 - Microsoft

        +- D:\Documents and Settings\NetworkService.AUTORITE NT.001\Local Settings\Application Data

        2007-03-25 à 20:02:43 - Microsoft

        +- D:\Documents and Settings\NetworkService.AUTORITE NT.003\Application Data

        2007-04-03 à 13:11:15 - Microsoft

        +- D:\Documents and Settings\NetworkService.AUTORITE NT.003\Local Settings\Application Data

        2007-04-03 à 13:11:15 - Microsoft

        +- D:\Documents and Settings\NetworkService.AUTORITE NT.004\Application Data

        2007-06-19 à 14:03:15 - Microsoft

        +- D:\Documents and Settings\NetworkService.AUTORITE NT.004\Local Settings\Application Data

        2007-06-19 à 14:03:15 - Microsoft

        ========== Listing du dossier Program Files

        +- C:\Program Files

        2008-06-13 à 14:14:35 - Adobe
        2007-12-03 à 14:19:52 - Alwil Software
        2007-12-16 à 13:37:54 - AOL 9.0
        2007-10-25 à 17:17:51 - AOL Compagnon
        2004-08-16 à 16:05:16 - ComPlus Applications
        2007-10-25 à 17:26:57 - CyberLink
        2007-10-30 à 19:18:12 - darweb-dyndnsclient
        2007-11-06 à 11:25:18 - directx
        2008-01-04 à 17:52:45 - DivX
        2008-06-10 à 13:58:33 - Fichiers communs
        2008-05-01 à 15:13:58 - FileZilla Client
        2007-10-25 à 17:22:26 - GMixon
        2008-01-04 à 17:55:44 - Google
        2007-10-25 à 17:18:53 - Goto Software
        2008-05-29 à 15:28:23 - Hewlett-Packard
        2008-05-29 à 15:30:47 - HP
        2007-10-26 à 15:58:14 - IconTweaker
        2008-06-10 à 12:09:49 - InstallShield Installation Information
        2008-06-10 à 23:02:15 - Internet Explorer
        2008-06-16 à 10:58:23 - InternetGameBox
        2007-10-25 à 17:11:12 - Java
        2007-12-26 à 12:47:40 - Labtec
        2007-10-25 à 17:17:50 - Learn2.com
        2007-10-27 à 13:37:00 - Learning Essentials
        2008-06-10 à 16:41:41 - LimeWire
        2008-06-04 à 16:55:40 - Logitech
        2008-06-16 à 11:08:59 - Lopxp
        2007-10-26 à 15:52:24 - Macrogaming
        2008-01-09 à 12:17:11 - Messenger
        2008-06-14 à 10:29:05 - Messenger Plus! Live
        2007-10-26 à 11:32:06 - MGI
        2007-10-26 à 12:57:52 - Microsoft CAPICOM 2.1.0.2
        2007-10-26 à 12:08:45 - Microsoft Carioca
        2004-08-16 à 16:11:16 - microsoft frontpage
        2007-10-26 à 11:08:47 - Microsoft Office
        2007-10-26 à 13:50:27 - Microsoft SQL Server Compact Edition
        2007-10-26 à 10:32:17 - Microsoft Visual Studio
        2007-10-26 à 13:00:01 - Microsoft Works
        2007-10-26 à 10:31:31 - Microsoft.NET
        2008-06-16 à 10:42:47 - Mise à jour PREMIO PVR D80
        2008-01-01 à 22:29:11 - Movie Maker
        2007-10-29 à 10:01:38 - Mozilla Firefox
        2007-11-01 à 17:53:43 - MSN
        2004-08-16 à 16:03:38 - MSN Gaming Zone
        2007-10-25 à 19:14:15 - MSXML 4.0
        2004-08-16 à 16:06:14 - NetMeeting
        2007-12-30 à 19:48:35 - No-IP
        2007-10-25 à 17:18:47 - Norman
        2008-06-13 à 13:00:01 - Norton Security Scan
        2004-08-16 à 16:03:54 - Online Services
        2008-06-10 à 12:15:08 - Orange
        2008-01-01 à 22:29:11 - Outlook Express
        2007-10-26 à 12:05:20 - Photo Story 3 for Windows
        2007-10-29 à 09:50:25 - Picasa2
        2008-06-13 à 13:14:00 - Program The
        2007-10-25 à 17:17:48 - QuickTime
        2007-10-25 à 17:17:33 - Real
        2007-10-25 à 17:06:22 - Realtek
        2007-12-30 à 19:47:46 - S2SaTstrat
        2008-06-10 à 12:09:50 - SAGEM
        2007-12-31 à 00:37:02 - Samsung
        2008-06-10 à 12:09:40 - Securitoo
        2007-10-30 à 08:06:23 - Services en ligne
        2007-10-25 à 17:22:42 - ShowTime
        2007-12-30 à 19:49:17 - SM
        2007-10-25 à 17:27:44 - Sonic
        2008-06-10 à 18:19:44 - SystemRequirementsLab
        2008-06-15 à 20:29:07 - Trend Micro
        2007-12-01 à 12:46:42 - Ubisoft
        2007-10-25 à 17:26:16 - Ulead Systems
        2004-08-16 à 16:19:06 - Uninstall Information
        2007-10-25 à 17:17:49 - Viewpoint
        2008-01-04 à 17:53:34 - Wanadoo
        2007-10-26 à 13:28:55 - Windows Defender
        2007-10-26 à 13:49:49 - Windows Desktop Search
        2008-06-15 à 19:45:11 - Windows Live
        2008-05-01 à 14:15:35 - Windows Live Toolbar
        2007-10-25 à 17:25:36 - Windows Media Components
        2007-10-26 à 11:58:56 - Windows Media Connect 2
        2007-10-26 à 11:58:55 - Windows Media Player
        2004-08-16 à 16:03:06 - Windows NT
        2004-08-16 à 16:07:42 - WindowsUpdate
        2008-05-01 à 14:19:54 - World of Warcraft
        2004-08-16 à 16:11:16 - xerox

        ========== Tâches planifiées

        AD9AD06F91997C33.job: d:\docume~1\fredri~1.fre\applic~1\progra~1\Debug Base Loud.exe
        Extension de garantie.job: C:\APPS\SMP\PBCARNOT.EXE
        MP Scheduled Scan.job: C:\Program Files\Windows Defender\MpCmdRun.exe Scan -RestrictPrivileges
        Norton Security Scan.job: C:\Program Files\Norton Security Scan\Nss.exe /scan-full /scheduled

        ========== Clés registre

        [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
        "Eq Seek"="D:\DOCUME~1\FREDRI~1.FRE\APPLIC~1\PROGRA~1\MESS BOOB.exe"

        ========== Bloqueur popups Internet Explorer

        www.packardbell.co.uk
        www.packardbell.at
        www.packardbell.dk
        www.packardbell.fi
        www.packardbell.fr
        www.packardbell.de
        www.packardbell.it
        www.packardbell.no
        www.packardbell.es
        www.packardbell.se
        www.packardbell.ch
        www.packardbell.nl
        fr.packardbell.be
        nl.packardbell.be
        cid-5971bcf5ec4f3805.spaces.live.com
        cid-96d1bcd3fe6826ed.spaces.live.com

        ========== Suggestion ( /!\ Nécessite une interprétation.) ==========

        D:\Documents and Settings\All Users\Application Data\Ball Shim Dupe Tick
        D:\Documents and Settings\All Users\Application Data\Tick Find Close Surf
        D:\Documents and Settings\Fredérique.FRED\Application Data\Program The
        C:\Program Files\Program The
        C:\WINDOWS\tasks\AD9AD06F91997C33.job
        C:\WINDOWS\tasks\AD9AD06F91997C33.job

        +- Registre:

        REGEDIT4

        [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
        "Eq Seek"=-

        - Fin du rapport -
        1. ouvre la commande executer :

          demarrer executer

          ou touche windows + r

          ensuite copie/colle ce texte avec les guillemets c est important :

          "%programfiles%\Lopxp\Lopxp.bat" /Fixme

          clic sur ok

          Répond oui si on te demande la confirmation de la suppression d'un fichier.

          Poste le rapport.
          1. et si on me demande plusieurs suppression je le fais pour tout les fichiers?
            1. c fait il m'ont donné un nouveau rapport si c ok dis moi c bon

              # Rapport Lopxp fait le 16/06/2008 à 13:17:18
              # Exécuté dans : C:\Program Files\Lopxp
              # Version 3.06 - Maj du 05/02/2008

              ========== FixLog ==========

              +- D:\Documents and Settings\All Users\Application Data\Ball Shim Dupe Tick
              Choix utilisateur : Suppression acceptée.
              /!\ N'a pas pu être déplacé : D:\Documents and Settings\All Users\Application Data\Ball Shim Dupe Tick

              +- D:\Documents and Settings\All Users\Application Data\Tick Find Close Surf
              Choix utilisateur : Suppression acceptée.
              /!\ N'a pas pu être déplacé : D:\Documents and Settings\All Users\Application Data\Tick Find Close Surf

              +- D:\Documents and Settings\Fredérique.FRED\Application Data\Program The
              Choix utilisateur : Suppression acceptée.
              /!\ Opération annulée, le fichier ou dossier selectionné n'exite pas.

              +- C:\Program Files\Program The
              Choix utilisateur : Suppression acceptée.
              Déplacé avec succès.

              +- C:\WINDOWS\tasks\AD9AD06F91997C33.job
              Choix utilisateur : Suppression acceptée.
              Déplacé avec succès.

              +- C:\WINDOWS\tasks\AD9AD06F91997C33.job
              Choix utilisateur : Suppression acceptée.
              /!\ Opération annulée, le fichier ou dossier selectionné n'exite pas.

              +- Registre :
              Nettoyage effectué.

              +- Fichiers temporaires :
              Nettoyage effectué.

              ========== Listing des dossiers Application Data

              +- D:\Documents and Settings\All Users\Application Data

              2006-03-16 à 11:19:58 - Adobe
              2007-09-20 à 13:56:12 - Ahead
              2007-10-25 à 17:17:06 - AOL
              2007-08-29 à 18:57:57 - AOL Downloads
              2007-08-29 à 18:59:47 - AOL OCP
              2007-08-18 à 15:54:49 - Ball Shim Dupe Tick
              2006-04-23 à 19:17:23 - Ciel
              2006-03-16 à 11:29:56 - CyberLink
              2007-09-20 à 12:30:11 - Droppix
              2007-04-19 à 11:34:52 - element5
              2007-04-03 à 15:54:31 - Emjysoft
              2007-05-11 à 13:13:16 - ESTsoft
              2007-03-23 à 23:56:20 - Google
              2008-05-29 à 15:31:15 - HP
              2007-10-26 à 15:58:14 - IconTweaker
              2007-04-23 à 18:19:29 - LightScribe
              2008-06-04 à 16:56:13 - LogiShrd
              2008-06-04 à 16:56:12 - Logitech
              2008-06-15 à 17:34:13 - Messenger Plus!
              2008-03-07 à 21:08:34 - Microsoft
              2007-10-26 à 13:30:43 - Microsoft Corporation
              2007-09-03 à 13:42:27 - Mozilla
              2006-04-09 à 14:00:36 - nView_Profiles
              2007-06-07 à 22:00:54 - Office Genuine Advantage
              2007-12-01 à 14:03:14 - PlayFirst
              2006-03-16 à 11:20:56 - QuickTime
              2006-04-15 à 18:13:51 - Samsung
              2004-08-17 à 01:28:48 - SBSI
              2007-09-08 à 21:33:18 - Skype
              2008-06-11 à 16:43:08 - SweetIM
              2007-12-03 à 13:58:35 - Symantec
              2007-10-29 à 10:16:26 - TEMP
              2008-06-13 à 13:15:16 - Tick Find Close Surf
              2006-03-16 à 11:27:22 - Ulead Systems
              2007-10-25 à 17:18:53 - VadeRetro
              2006-03-16 à 11:21:02 - Viewpoint
              2007-03-22 à 09:53:23 - Windows Genuine Advantage
              2007-03-22 à 19:24:18 - Windows Live Toolbar
              2007-07-04 à 08:45:03 - WindowsLiveInstaller
              2007-08-16 à 12:30:22 - Winferno
              2007-10-26 à 14:19:34 - WinZip
              2008-06-15 à 19:51:24 - WLInstaller
              2007-09-26 à 10:26:15 - Zylom

              +- D:\Documents and Settings\Fred et Mimi\Application Data

              2007-09-20 à 15:11:03 - Adobe
              2007-09-19 à 09:05:50 - AdobeUM
              2007-09-20 à 16:50:22 - Ahead
              2007-09-15 à 12:22:01 - BitTorrent
              2007-09-15 à 16:01:06 - CamfrogWEB
              2007-09-20 à 12:29:28 - Droppix
              2007-10-25 à 11:23:44 - EoRezo
              2007-09-11 à 12:35:30 - EPSON
              2007-10-22 à 15:53:05 - FileZilla
              2007-09-08 à 22:43:09 - Google
              2007-09-08 à 22:36:30 - Help
              2007-10-12 à 10:53:45 - Identities
              2007-09-10 à 16:08:53 - InterTrust
              2007-10-21 à 16:17:59 - ItsLabel
              2007-09-20 à 14:37:19 - Leadertech
              2007-10-20 à 09:51:36 - LimeWire
              2007-09-08 à 22:38:40 - Macromedia
              2007-10-12 à 10:43:49 - Microsoft
              2007-09-15 à 02:53:45 - MSNInstaller
              2007-09-11 à 14:21:46 - Real
              2007-09-09 à 21:31:51 - SecuROM
              2007-09-08 à 21:32:16 - Skype
              2007-09-20 à 14:37:49 - Sonic
              2007-09-08 à 21:32:46 - Sun
              2007-09-08 à 21:30:35 - Symantec
              2007-10-12 à 14:12:52 - teamspeak2
              2007-10-06 à 11:11:47 - Ulead Systems
              2007-09-11 à 14:54:17 - VadeRetro
              2007-10-12 à 11:14:23 - Windows Desktop Search
              2007-10-24 à 10:37:02 - Windows Live Writer
              2007-10-02 à 18:30:35 - WinRAR
              2007-09-09 à 05:17:03 - You've Got Pictures Screensaver
              2007-09-26 à 12:38:12 - Zylom

              +- D:\Documents and Settings\Fred et Mimi\Local Settings\Application Data

              2007-09-20 à 15:13:48 - Adobe
              2007-09-20 à 16:24:10 - Ahead
              2007-10-24 à 10:38:00 - ApplicationHistory
              2007-10-24 à 10:43:18 - Google
              2007-09-08 à 22:36:30 - Help
              2007-10-12 à 10:53:45 - Identities
              2007-10-21 à 16:01:52 - Microsoft
              2007-09-19 à 17:17:50 - PCHealth
              2007-09-09 à 05:17:03 - PowerCinema
              2007-09-13 à 14:55:36 - Steam
              2007-10-24 à 10:37:02 - Windows Live Writer
              2007-09-09 à 05:17:03 - {3248F0A6-6813-11D6-A77B-00B0D0150040}

              +- D:\Documents and Settings\Fred‚rique\Application Data

              2007-12-15 à 09:51:13 - Acreon
              2007-11-05 à 15:15:48 - Adobe
              2007-12-26 à 16:45:25 - EPSON
              2007-12-14 à 15:44:12 - FileZilla
              2007-10-27 à 06:43:09 - Google
              2007-10-31 à 10:47:42 - Hamachi
              2007-12-31 à 00:53:32 - Help
              2007-10-26 à 15:58:14 - IconTweaker
              2007-12-01 à 14:03:11 - Identities
              2007-10-29 à 13:03:59 - LimeWire
              2007-10-25 à 18:21:07 - Macromedia
              2007-12-26 à 12:54:14 - Microsoft
              2007-12-01 à 14:03:33 - PlayFirst
              2007-10-27 à 11:47:54 - Real
              2007-10-25 à 18:02:26 - Sun
              2007-10-25 à 17:59:45 - Symantec
              2007-10-30 à 08:40:25 - teamspeak2
              2007-11-01 à 11:41:12 - VadeRetro
              2007-10-26 à 14:57:57 - Windows Desktop Search
              2007-11-09 à 17:24:46 - WinRAR
              2007-12-31 à 02:46:35 - Xfire
              2007-10-25 à 17:17:50 - You've Got Pictures Screensaver
              2007-12-01 à 14:03:11 - Zylom

              +- D:\Documents and Settings\Fred‚rique\Local Settings\Application Data

              2007-11-05 à 15:16:08 - Adobe
              2007-12-30 à 16:00:37 - ApplicationHistory
              2007-11-16 à 21:17:06 - Google
              2007-10-30 à 09:11:40 - Help
              2007-11-01 à 13:28:02 - Identities
              2007-12-26 à 12:54:11 - Microsoft
              2007-10-25 à 17:27:23 - PowerCinema
              2007-12-22 à 17:30:07 - SM
              2007-10-25 à 19:01:22 - Steam
              2007-10-25 à 17:10:45 - {3248F0A6-6813-11D6-A77B-00B0D0150040}

              +- D:\Documents and Settings\Fred‚rique.FRED\Application Data

              2008-06-16 à 10:41:56 - Adobe
              2008-01-22 à 14:45:09 - CyberLink
              2008-01-11 à 14:54:10 - EPSON
              2007-12-31 à 04:16:26 - Google
              2007-12-31 à 04:17:56 - Help
              2008-05-29 à 15:31:27 - HP
              2008-01-01 à 22:11:43 - IconTweaker
              2007-10-26 à 01:38:48 - Identities
              2008-06-11 à 09:40:35 - Image Zone Express
              2008-05-29 à 15:48:55 - InstallShield
              2008-06-13 à 12:48:48 - LimeWire
              2008-05-29 à 15:52:02 - Logitech
              2007-12-31 à 04:26:16 - Macromedia
              2008-05-29 à 15:49:02 - Microsoft
              2008-03-20 à 22:29:32 - Norman
              2008-06-13 à 13:15:39 - Program The
              2008-01-02 à 15:55:48 - Real
              2008-06-11 à 22:47:12 - Sun
              2007-10-25 à 17:19:51 - Symantec
              2007-12-31 à 04:28:53 - VadeRetro
              2007-12-31 à 04:09:56 - Windows Desktop Search
              2007-12-31 à 17:11:23 - WinRAR
              2007-10-25 à 17:17:50 - You've Got Pictures Screensaver

              +- D:\Documents and Settings\Fred‚rique.FRED\Local Settings\Application Data

              2008-01-02 à 10:58:35 - Adobe
              2008-05-29 à 15:37:52 - ApplicationHistory
              2008-01-26 à 15:52:13 - Google
              2007-12-31 à 04:17:56 - Help
              2007-12-31 à 04:09:58 - Identities
              2008-06-10 à 14:00:51 - Microsoft
              2008-01-10 à 11:11:58 - PCHealth
              2008-01-22 à 15:14:29 - PowerCinema
              2008-05-01 à 14:17:39 - Steam
              2008-03-04 à 14:52:39 - WMTools Downloaded Files
              2007-10-25 à 17:10:45 - {3248F0A6-6813-11D6-A77B-00B0D0150040}

              +- D:\Documents and Settings\LESNE Fr‚d‚rique\Application Data

              2007-06-06 à 22:17:00 - Adobe
              2007-06-06 à 21:28:47 - AOL
              2007-06-06 à 21:18:20 - Google
              2007-06-06 à 21:13:24 - Help
              2007-06-07 à 05:14:38 - Identities
              2007-06-06 à 22:17:00 - InterTrust
              2007-06-07 à 05:14:38 - Macromedia
              2007-09-08 à 19:30:23 - Microsoft

              +- D:\Documents and Settings\LocalService.AUTORITE NT\Application Data

              2006-05-14 à 13:43:52 - Microsoft

              +- D:\Documents and Settings\LocalService.AUTORITE NT\Local Settings\Application Data

              2006-05-14 à 13:43:52 - Microsoft

              +- D:\Documents and Settings\LocalService.AUTORITE NT.000\Application Data

              2006-11-03 à 18:12:30 - Microsoft

              +- D:\Documents and Settings\LocalService.AUTORITE NT.000\Local Settings\Application Data

              2006-11-03 à 18:12:30 - Microsoft

              +- D:\Documents and Settings\LocalService.AUTORITE NT.001\Application Data

              2007-03-25 à 20:02:42 - Microsoft

              +- D:\Documents and Settings\LocalService.AUTORITE NT.001\Local Settings\Application Data

              2007-03-25 à 20:02:42 - Microsoft

              +- D:\Documents and Settings\LocalService.AUTORITE NT.003\Application Data

              2007-04-03 à 13:11:15 - Microsoft

              +- D:\Documents and Settings\LocalService.AUTORITE NT.003\Local Settings\Application Data

              2007-04-03 à 13:11:15 - Microsoft

              +- D:\Documents and Settings\LocalService.AUTORITE NT.004\Application Data

              2007-06-19 à 14:03:15 - Microsoft

              +- D:\Documents and Settings\LocalService.AUTORITE NT.004\Local Settings\Application Data

              2007-06-19 à 14:03:15 - Microsoft

              +- D:\Documents and Settings\NetworkService.AUTORITE NT\Application Data

              2006-05-14 à 13:43:52 - Microsoft

              +- D:\Documents and Settings\NetworkService.AUTORITE NT\Local Settings\Application Data

              2006-05-14 à 13:43:52 - Microsoft

              +- D:\Documents and Settings\NetworkService.AUTORITE NT.000\Application Data

              2006-11-03 à 18:12:30 - Microsoft

              +- D:\Documents and Settings\NetworkService.AUTORITE NT.000\Local Settings\Application Data

              2006-11-03 à 18:12:30 - Microsoft

              +- D:\Documents and Settings\NetworkService.AUTORITE NT.001\Application Data

              2007-03-25 à 20:02:43 - Microsoft

              +- D:\Documents and Settings\NetworkService.AUTORITE NT.001\Local Settings\Application Data

              2007-03-25 à 20:02:43 - Microsoft

              +- D:\Documents and Settings\NetworkService.AUTORITE NT.003\Application Data

              2007-04-03 à 13:11:15 - Microsoft

              +- D:\Documents and Settings\NetworkService.AUTORITE NT.003\Local Settings\Application Data

              2007-04-03 à 13:11:15 - Microsoft

              +- D:\Documents and Settings\NetworkService.AUTORITE NT.004\Application Data

              2007-06-19 à 14:03:15 - Microsoft

              +- D:\Documents and Settings\NetworkService.AUTORITE NT.004\Local Settings\Application Data

              2007-06-19 à 14:03:15 - Microsoft

              ========== Listing du dossier Program Files

              +- C:\Program Files

              2008-06-13 à 14:14:35 - Adobe
              2007-12-03 à 14:19:52 - Alwil Software
              2007-12-16 à 13:37:54 - AOL 9.0
              2007-10-25 à 17:17:51 - AOL Compagnon
              2004-08-16 à 16:05:16 - ComPlus Applications
              2007-10-25 à 17:26:57 - CyberLink
              2007-10-30 à 19:18:12 - darweb-dyndnsclient
              2007-11-06 à 11:25:18 - directx
              2008-01-04 à 17:52:45 - DivX
              2008-06-10 à 13:58:33 - Fichiers communs
              2008-05-01 à 15:13:58 - FileZilla Client
              2007-10-25 à 17:22:26 - GMixon
              2008-01-04 à 17:55:44 - Google
              2007-10-25 à 17:18:53 - Goto Software
              2008-05-29 à 15:28:23 - Hewlett-Packard
              2008-05-29 à 15:30:47 - HP
              2007-10-26 à 15:58:14 - IconTweaker
              2008-06-10 à 12:09:49 - InstallShield Installation Information
              2008-06-10 à 23:02:15 - Internet Explorer
              2008-06-16 à 10:58:23 - InternetGameBox
              2007-10-25 à 17:11:12 - Java
              2007-12-26 à 12:47:40 - Labtec
              2007-10-25 à 17:17:50 - Learn2.com
              2007-10-27 à 13:37:00 - Learning Essentials
              2008-06-10 à 16:41:41 - LimeWire
              2008-06-04 à 16:55:40 - Logitech
              2008-06-16 à 11:17:57 - Lopxp
              2007-10-26 à 15:52:24 - Macrogaming
              2008-01-09 à 12:17:11 - Messenger
              2008-06-14 à 10:29:05 - Messenger Plus! Live
              2007-10-26 à 11:32:06 - MGI
              2007-10-26 à 12:57:52 - Microsoft CAPICOM 2.1.0.2
              2007-10-26 à 12:08:45 - Microsoft Carioca
              2004-08-16 à 16:11:16 - microsoft frontpage
              2007-10-26 à 11:08:47 - Microsoft Office
              2007-10-26 à 13:50:27 - Microsoft SQL Server Compact Edition
              2007-10-26 à 10:32:17 - Microsoft Visual Studio
              2007-10-26 à 13:00:01 - Microsoft Works
              2007-10-26 à 10:31:31 - Microsoft.NET
              2008-06-16 à 10:42:47 - Mise à jour PREMIO PVR D80
              2008-01-01 à 22:29:11 - Movie Maker
              2007-10-29 à 10:01:38 - Mozilla Firefox
              2007-11-01 à 17:53:43 - MSN
              2004-08-16 à 16:03:38 - MSN Gaming Zone
              2007-10-25 à 19:14:15 - MSXML 4.0
              2004-08-16 à 16:06:14 - NetMeeting
              2007-12-30 à 19:48:35 - No-IP
              2007-10-25 à 17:18:47 - Norman
              2008-06-13 à 13:00:01 - Norton Security Scan
              2004-08-16 à 16:03:54 - Online Services
              2008-06-10 à 12:15:08 - Orange
              2008-01-01 à 22:29:11 - Outlook Express
              2007-10-26 à 12:05:20 - Photo Story 3 for Windows
              2007-10-29 à 09:50:25 - Picasa2
              2007-10-25 à 17:17:48 - QuickTime
              2007-10-25 à 17:17:33 - Real
              2007-10-25 à 17:06:22 - Realtek
              2007-12-30 à 19:47:46 - S2SaTstrat
              2008-06-10 à 12:09:50 - SAGEM
              2007-12-31 à 00:37:02 - Samsung
              2008-06-10 à 12:09:40 - Securitoo
              2007-10-30 à 08:06:23 - Services en ligne
              2007-10-25 à 17:22:42 - ShowTime
              2007-12-30 à 19:49:17 - SM
              2007-10-25 à 17:27:44 - Sonic
              2008-06-10 à 18:19:44 - SystemRequirementsLab
              2008-06-15 à 20:29:07 - Trend Micro
              2007-12-01 à 12:46:42 - Ubisoft
              2007-10-25 à 17:26:16 - Ulead Systems
              2004-08-16 à 16:19:06 - Uninstall Information
              2007-10-25 à 17:17:49 - Viewpoint
              2008-01-04 à 17:53:34 - Wanadoo
              2007-10-26 à 13:28:55 - Windows Defender
              2007-10-26 à 13:49:49 - Windows Desktop Search
              2008-06-15 à 19:45:11 - Windows Live
              2008-05-01 à 14:15:35 - Windows Live Toolbar
              2007-10-25 à 17:25:36 - Windows Media Components
              2007-10-26 à 11:58:56 - Windows Media Connect 2
              2007-10-26 à 11:58:55 - Windows Media Player
              2004-08-16 à 16:03:06 - Windows NT
              2004-08-16 à 16:07:42 - WindowsUpdate
              2008-05-01 à 14:19:54 - World of Warcraft
              2004-08-16 à 16:11:16 - xerox

              ========== Tâches planifiées

              Extension de garantie.job: C:\APPS\SMP\PBCARNOT.EXE
              MP Scheduled Scan.job: C:\Program Files\Windows Defender\MpCmdRun.exe Scan -RestrictPrivileges
              Norton Security Scan.job: C:\Program Files\Norton Security Scan\Nss.exe /scan-full /scheduled

              ========== Clés registre

              ========== Bloqueur popups Internet Explorer

              www.packardbell.co.uk
              www.packardbell.at
              www.packardbell.dk
              www.packardbell.fi
              www.packardbell.fr
              www.packardbell.de
              www.packardbell.it
              www.packardbell.no
              www.packardbell.es
              www.packardbell.se
              www.packardbell.ch
              www.packardbell.nl
              fr.packardbell.be
              nl.packardbell.be
              cid-5971bcf5ec4f3805.spaces.live.com
              cid-96d1bcd3fe6826ed.spaces.live.com

              ========== Suggestion ( /!\ Nécessite une interprétation.) ==========

              D:\Documents and Settings\All Users\Application Data\Ball Shim Dupe Tick
              D:\Documents and Settings\All Users\Application Data\Tick Find Close Surf
              D:\Documents and Settings\Fredérique.FRED\Application Data\Program The

              +- Registre : Aucune suggestion.

              - Fin du rapport -
              1. non c pas bon

                télécharge OTMoveIt http://download.bleepingcomputer.com/oldtimer/OTMoveIt2.exe (de Old_Timer) sur ton Bureau.
                double-clique sur OTMoveIt.exe pour le lancer.
                copie la liste qui se trouve en gras ci-dessous,
                et colle-la dans le cadre de gauche de OTMoveIt :Paste List of Files/Folders to be moved.

                D:\Documents and Settings\All Users\Application Data\Ball Shim Dupe Tick
                D:\Documents and Settings\All Users\Application Data\Tick Find Close Surf
                D:\Documents and Settings\Fredérique.FRED\Application Data\Program The


                clique sur MoveIt! pour lancer la suppression.
                le résultat apparaitra dans le cadre "Results".
                clique sur Exit pour fermer.
                poste le rapport situé dans C:\_OTMoveIt\MovedFiles.

                il te sera peut-être demander de redémarrer le pc pour achever la suppression.si c'est le cas accepte par Yes.

                1. voici le nouveau rapport

                  # Rapport Lopxp fait le 16/06/2008 à 13:27:35
                  # Exécuté dans : C:\Program Files\Lopxp
                  # Version 3.06 - Maj du 05/02/2008

                  Killing 'iexplore.exe'
                  "C:\Program Files\Internet Explorer\iexplore.exe" (12944)

                  ========== Listing des dossiers Application Data

                  +- D:\Documents and Settings\All Users\Application Data

                  2006-03-16 à 11:19:58 - Adobe
                  2007-09-20 à 13:56:12 - Ahead
                  2007-10-25 à 17:17:06 - AOL
                  2007-08-29 à 18:57:57 - AOL Downloads
                  2007-08-29 à 18:59:47 - AOL OCP
                  2006-04-23 à 19:17:23 - Ciel
                  2006-03-16 à 11:29:56 - CyberLink
                  2007-09-20 à 12:30:11 - Droppix
                  2007-04-19 à 11:34:52 - element5
                  2007-04-03 à 15:54:31 - Emjysoft
                  2007-05-11 à 13:13:16 - ESTsoft
                  2007-03-23 à 23:56:20 - Google
                  2008-05-29 à 15:31:15 - HP
                  2007-10-26 à 15:58:14 - IconTweaker
                  2007-04-23 à 18:19:29 - LightScribe
                  2008-06-04 à 16:56:13 - LogiShrd
                  2008-06-04 à 16:56:12 - Logitech
                  2008-06-15 à 17:34:13 - Messenger Plus!
                  2008-03-07 à 21:08:34 - Microsoft
                  2007-10-26 à 13:30:43 - Microsoft Corporation
                  2007-09-03 à 13:42:27 - Mozilla
                  2006-04-09 à 14:00:36 - nView_Profiles
                  2007-06-07 à 22:00:54 - Office Genuine Advantage
                  2007-12-01 à 14:03:14 - PlayFirst
                  2006-03-16 à 11:20:56 - QuickTime
                  2006-04-15 à 18:13:51 - Samsung
                  2004-08-17 à 01:28:48 - SBSI
                  2007-09-08 à 21:33:18 - Skype
                  2008-06-11 à 16:43:08 - SweetIM
                  2007-12-03 à 13:58:35 - Symantec
                  2007-10-29 à 10:16:26 - TEMP
                  2006-03-16 à 11:27:22 - Ulead Systems
                  2007-10-25 à 17:18:53 - VadeRetro
                  2006-03-16 à 11:21:02 - Viewpoint
                  2007-03-22 à 09:53:23 - Windows Genuine Advantage
                  2007-03-22 à 19:24:18 - Windows Live Toolbar
                  2007-07-04 à 08:45:03 - WindowsLiveInstaller
                  2007-08-16 à 12:30:22 - Winferno
                  2007-10-26 à 14:19:34 - WinZip
                  2008-06-15 à 19:51:24 - WLInstaller
                  2007-09-26 à 10:26:15 - Zylom

                  +- D:\Documents and Settings\Fred et Mimi\Application Data

                  2007-09-20 à 15:11:03 - Adobe
                  2007-09-19 à 09:05:50 - AdobeUM
                  2007-09-20 à 16:50:22 - Ahead
                  2007-09-15 à 12:22:01 - BitTorrent
                  2007-09-15 à 16:01:06 - CamfrogWEB
                  2007-09-20 à 12:29:28 - Droppix
                  2007-10-25 à 11:23:44 - EoRezo
                  2007-09-11 à 12:35:30 - EPSON
                  2007-10-22 à 15:53:05 - FileZilla
                  2007-09-08 à 22:43:09 - Google
                  2007-09-08 à 22:36:30 - Help
                  2007-10-12 à 10:53:45 - Identities
                  2007-09-10 à 16:08:53 - InterTrust
                  2007-10-21 à 16:17:59 - ItsLabel
                  2007-09-20 à 14:37:19 - Leadertech
                  2007-10-20 à 09:51:36 - LimeWire
                  2007-09-08 à 22:38:40 - Macromedia
                  2007-10-12 à 10:43:49 - Microsoft
                  2007-09-15 à 02:53:45 - MSNInstaller
                  2007-09-11 à 14:21:46 - Real
                  2007-09-09 à 21:31:51 - SecuROM
                  2007-09-08 à 21:32:16 - Skype
                  2007-09-20 à 14:37:49 - Sonic
                  2007-09-08 à 21:32:46 - Sun
                  2007-09-08 à 21:30:35 - Symantec
                  2007-10-12 à 14:12:52 - teamspeak2
                  2007-10-06 à 11:11:47 - Ulead Systems
                  2007-09-11 à 14:54:17 - VadeRetro
                  2007-10-12 à 11:14:23 - Windows Desktop Search
                  2007-10-24 à 10:37:02 - Windows Live Writer
                  2007-10-02 à 18:30:35 - WinRAR
                  2007-09-09 à 05:17:03 - You've Got Pictures Screensaver
                  2007-09-26 à 12:38:12 - Zylom

                  +- D:\Documents and Settings\Fred et Mimi\Local Settings\Application Data

                  2007-09-20 à 15:13:48 - Adobe
                  2007-09-20 à 16:24:10 - Ahead
                  2007-10-24 à 10:38:00 - ApplicationHistory
                  2007-10-24 à 10:43:18 - Google
                  2007-09-08 à 22:36:30 - Help
                  2007-10-12 à 10:53:45 - Identities
                  2007-10-21 à 16:01:52 - Microsoft
                  2007-09-19 à 17:17:50 - PCHealth
                  2007-09-09 à 05:17:03 - PowerCinema
                  2007-09-13 à 14:55:36 - Steam
                  2007-10-24 à 10:37:02 - Windows Live Writer
                  2007-09-09 à 05:17:03 - {3248F0A6-6813-11D6-A77B-00B0D0150040}

                  +- D:\Documents and Settings\Fred‚rique\Application Data

                  2007-12-15 à 09:51:13 - Acreon
                  2007-11-05 à 15:15:48 - Adobe
                  2007-12-26 à 16:45:25 - EPSON
                  2007-12-14 à 15:44:12 - FileZilla
                  2007-10-27 à 06:43:09 - Google
                  2007-10-31 à 10:47:42 - Hamachi
                  2007-12-31 à 00:53:32 - Help
                  2007-10-26 à 15:58:14 - IconTweaker
                  2007-12-01 à 14:03:11 - Identities
                  2007-10-29 à 13:03:59 - LimeWire
                  2007-10-25 à 18:21:07 - Macromedia
                  2007-12-26 à 12:54:14 - Microsoft
                  2007-12-01 à 14:03:33 - PlayFirst
                  2007-10-27 à 11:47:54 - Real
                  2007-10-25 à 18:02:26 - Sun
                  2007-10-25 à 17:59:45 - Symantec
                  2007-10-30 à 08:40:25 - teamspeak2
                  2007-11-01 à 11:41:12 - VadeRetro
                  2007-10-26 à 14:57:57 - Windows Desktop Search
                  2007-11-09 à 17:24:46 - WinRAR
                  2007-12-31 à 02:46:35 - Xfire
                  2007-10-25 à 17:17:50 - You've Got Pictures Screensaver
                  2007-12-01 à 14:03:11 - Zylom

                  +- D:\Documents and Settings\Fred‚rique\Local Settings\Application Data

                  2007-11-05 à 15:16:08 - Adobe
                  2007-12-30 à 16:00:37 - ApplicationHistory
                  2007-11-16 à 21:17:06 - Google
                  2007-10-30 à 09:11:40 - Help
                  2007-11-01 à 13:28:02 - Identities
                  2007-12-26 à 12:54:11 - Microsoft
                  2007-10-25 à 17:27:23 - PowerCinema
                  2007-12-22 à 17:30:07 - SM
                  2007-10-25 à 19:01:22 - Steam
                  2007-10-25 à 17:10:45 - {3248F0A6-6813-11D6-A77B-00B0D0150040}

                  +- D:\Documents and Settings\Fred‚rique.FRED\Application Data

                  2008-06-16 à 10:41:56 - Adobe
                  2008-01-22 à 14:45:09 - CyberLink
                  2008-01-11 à 14:54:10 - EPSON
                  2007-12-31 à 04:16:26 - Google
                  2007-12-31 à 04:17:56 - Help
                  2008-05-29 à 15:31:27 - HP
                  2008-01-01 à 22:11:43 - IconTweaker
                  2007-10-26 à 01:38:48 - Identities
                  2008-06-11 à 09:40:35 - Image Zone Express
                  2008-05-29 à 15:48:55 - InstallShield
                  2008-06-13 à 12:48:48 - LimeWire
                  2008-05-29 à 15:52:02 - Logitech
                  2007-12-31 à 04:26:16 - Macromedia
                  2008-05-29 à 15:49:02 - Microsoft
                  2008-03-20 à 22:29:32 - Norman
                  2008-01-02 à 15:55:48 - Real
                  2008-06-11 à 22:47:12 - Sun
                  2007-10-25 à 17:19:51 - Symantec
                  2007-12-31 à 04:28:53 - VadeRetro
                  2007-12-31 à 04:09:56 - Windows Desktop Search
                  2007-12-31 à 17:11:23 - WinRAR
                  2007-10-25 à 17:17:50 - You've Got Pictures Screensaver

                  +- D:\Documents and Settings\Fred‚rique.FRED\Local Settings\Application Data

                  2008-01-02 à 10:58:35 - Adobe
                  2008-05-29 à 15:37:52 - ApplicationHistory
                  2008-01-26 à 15:52:13 - Google
                  2007-12-31 à 04:17:56 - Help
                  2007-12-31 à 04:09:58 - Identities
                  2008-06-10 à 14:00:51 - Microsoft
                  2008-01-10 à 11:11:58 - PCHealth
                  2008-01-22 à 15:14:29 - PowerCinema
                  2008-05-01 à 14:17:39 - Steam
                  2008-03-04 à 14:52:39 - WMTools Downloaded Files
                  2007-10-25 à 17:10:45 - {3248F0A6-6813-11D6-A77B-00B0D0150040}

                  +- D:\Documents and Settings\LESNE Fr‚d‚rique\Application Data

                  2007-06-06 à 22:17:00 - Adobe
                  2007-06-06 à 21:28:47 - AOL
                  2007-06-06 à 21:18:20 - Google
                  2007-06-06 à 21:13:24 - Help
                  2007-06-07 à 05:14:38 - Identities
                  2007-06-06 à 22:17:00 - InterTrust
                  2007-06-07 à 05:14:38 - Macromedia
                  2007-09-08 à 19:30:23 - Microsoft

                  +- D:\Documents and Settings\LocalService.AUTORITE NT\Application Data

                  2006-05-14 à 13:43:52 - Microsoft

                  +- D:\Documents and Settings\LocalService.AUTORITE NT\Local Settings\Application Data

                  2006-05-14 à 13:43:52 - Microsoft

                  +- D:\Documents and Settings\LocalService.AUTORITE NT.000\Application Data

                  2006-11-03 à 18:12:30 - Microsoft

                  +- D:\Documents and Settings\LocalService.AUTORITE NT.000\Local Settings\Application Data

                  2006-11-03 à 18:12:30 - Microsoft

                  +- D:\Documents and Settings\LocalService.AUTORITE NT.001\Application Data

                  2007-03-25 à 20:02:42 - Microsoft

                  +- D:\Documents and Settings\LocalService.AUTORITE NT.001\Local Settings\Application Data

                  2007-03-25 à 20:02:42 - Microsoft

                  +- D:\Documents and Settings\LocalService.AUTORITE NT.003\Application Data

                  2007-04-03 à 13:11:15 - Microsoft

                  +- D:\Documents and Settings\LocalService.AUTORITE NT.003\Local Settings\Application Data

                  2007-04-03 à 13:11:15 - Microsoft

                  +- D:\Documents and Settings\LocalService.AUTORITE NT.004\Application Data

                  2007-06-19 à 14:03:15 - Microsoft

                  +- D:\Documents and Settings\LocalService.AUTORITE NT.004\Local Settings\Application Data

                  2007-06-19 à 14:03:15 - Microsoft

                  +- D:\Documents and Settings\NetworkService.AUTORITE NT\Application Data

                  2006-05-14 à 13:43:52 - Microsoft

                  +- D:\Documents and Settings\NetworkService.AUTORITE NT\Local Settings\Application Data

                  2006-05-14 à 13:43:52 - Microsoft

                  +- D:\Documents and Settings\NetworkService.AUTORITE NT.000\Application Data

                  2006-11-03 à 18:12:30 - Microsoft

                  +- D:\Documents and Settings\NetworkService.AUTORITE NT.000\Local Settings\Application Data

                  2006-11-03 à 18:12:30 - Microsoft

                  +- D:\Documents and Settings\NetworkService.AUTORITE NT.001\Application Data

                  2007-03-25 à 20:02:43 - Microsoft

                  +- D:\Documents and Settings\NetworkService.AUTORITE NT.001\Local Settings\Application Data

                  2007-03-25 à 20:02:43 - Microsoft

                  +- D:\Documents and Settings\NetworkService.AUTORITE NT.003\Application Data

                  2007-04-03 à 13:11:15 - Microsoft

                  +- D:\Documents and Settings\NetworkService.AUTORITE NT.003\Local Settings\Application Data

                  2007-04-03 à 13:11:15 - Microsoft

                  +- D:\Documents and Settings\NetworkService.AUTORITE NT.004\Application Data

                  2007-06-19 à 14:03:15 - Microsoft

                  +- D:\Documents and Settings\NetworkService.AUTORITE NT.004\Local Settings\Application Data

                  2007-06-19 à 14:03:15 - Microsoft

                  ========== Listing du dossier Program Files

                  +- C:\Program Files

                  2008-06-13 à 14:14:35 - Adobe
                  2007-12-03 à 14:19:52 - Alwil Software
                  2007-12-16 à 13:37:54 - AOL 9.0
                  2007-10-25 à 17:17:51 - AOL Compagnon
                  2004-08-16 à 16:05:16 - ComPlus Applications
                  2007-10-25 à 17:26:57 - CyberLink
                  2007-10-30 à 19:18:12 - darweb-dyndnsclient
                  2007-11-06 à 11:25:18 - directx
                  2008-01-04 à 17:52:45 - DivX
                  2008-06-10 à 13:58:33 - Fichiers communs
                  2008-05-01 à 15:13:58 - FileZilla Client
                  2007-10-25 à 17:22:26 - GMixon
                  2008-01-04 à 17:55:44 - Google
                  2007-10-25 à 17:18:53 - Goto Software
                  2008-05-29 à 15:28:23 - Hewlett-Packard
                  2008-05-29 à 15:30:47 - HP
                  2007-10-26 à 15:58:14 - IconTweaker
                  2008-06-10 à 12:09:49 - InstallShield Installation Information
                  2008-06-10 à 23:02:15 - Internet Explorer
                  2008-06-16 à 10:58:23 - InternetGameBox
                  2007-10-25 à 17:11:12 - Java
                  2007-12-26 à 12:47:40 - Labtec
                  2007-10-25 à 17:17:50 - Learn2.com
                  2007-10-27 à 13:37:00 - Learning Essentials
                  2008-06-10 à 16:41:41 - LimeWire
                  2008-06-04 à 16:55:40 - Logitech
                  2008-06-16 à 11:27:37 - Lopxp
                  2007-10-26 à 15:52:24 - Macrogaming
                  2008-01-09 à 12:17:11 - Messenger
                  2008-06-14 à 10:29:05 - Messenger Plus! Live
                  2007-10-26 à 11:32:06 - MGI
                  2007-10-26 à 12:57:52 - Microsoft CAPICOM 2.1.0.2
                  2007-10-26 à 12:08:45 - Microsoft Carioca
                  2004-08-16 à 16:11:16 - microsoft frontpage
                  2007-10-26 à 11:08:47 - Microsoft Office
                  2007-10-26 à 13:50:27 - Microsoft SQL Server Compact Edition
                  2007-10-26 à 10:32:17 - Microsoft Visual Studio
                  2007-10-26 à 13:00:01 - Microsoft Works
                  2007-10-26 à 10:31:31 - Microsoft.NET
                  2008-06-16 à 10:42:47 - Mise à jour PREMIO PVR D80
                  2008-01-01 à 22:29:11 - Movie Maker
                  2007-10-29 à 10:01:38 - Mozilla Firefox
                  2007-11-01 à 17:53:43 - MSN
                  2004-08-16 à 16:03:38 - MSN Gaming Zone
                  2007-10-25 à 19:14:15 - MSXML 4.0
                  2004-08-16 à 16:06:14 - NetMeeting
                  2007-12-30 à 19:48:35 - No-IP
                  2007-10-25 à 17:18:47 - Norman
                  2008-06-13 à 13:00:01 - Norton Security Scan
                  2004-08-16 à 16:03:54 - Online Services
                  2008-06-10 à 12:15:08 - Orange
                  2008-01-01 à 22:29:11 - Outlook Express
                  2007-10-26 à 12:05:20 - Photo Story 3 for Windows
                  2007-10-29 à 09:50:25 - Picasa2
                  2007-10-25 à 17:17:48 - QuickTime
                  2007-10-25 à 17:17:33 - Real
                  2007-10-25 à 17:06:22 - Realtek
                  2007-12-30 à 19:47:46 - S2SaTstrat
                  2008-06-10 à 12:09:50 - SAGEM
                  2007-12-31 à 00:37:02 - Samsung
                  2008-06-10 à 12:09:40 - Securitoo
                  2007-10-30 à 08:06:23 - Services en ligne
                  2007-10-25 à 17:22:42 - ShowTime
                  2007-12-30 à 19:49:17 - SM
                  2007-10-25 à 17:27:44 - Sonic
                  2008-06-10 à 18:19:44 - SystemRequirementsLab
                  2008-06-15 à 20:29:07 - Trend Micro
                  2007-12-01 à 12:46:42 - Ubisoft
                  2007-10-25 à 17:26:16 - Ulead Systems
                  2004-08-16 à 16:19:06 - Uninstall Information
                  2007-10-25 à 17:17:49 - Viewpoint
                  2008-01-04 à 17:53:34 - Wanadoo
                  2007-10-26 à 13:28:55 - Windows Defender
                  2007-10-26 à 13:49:49 - Windows Desktop Search
                  2008-06-15 à 19:45:11 - Windows Live
                  2008-05-01 à 14:15:35 - Windows Live Toolbar
                  2007-10-25 à 17:25:36 - Windows Media Components
                  2007-10-26 à 11:58:56 - Windows Media Connect 2
                  2007-10-26 à 11:58:55 - Windows Media Player
                  2004-08-16 à 16:03:06 - Windows NT
                  2004-08-16 à 16:07:42 - WindowsUpdate
                  2008-05-01 à 14:19:54 - World of Warcraft
                  2004-08-16 à 16:11:16 - xerox

                  ========== Tâches planifiées

                  Extension de garantie.job: C:\APPS\SMP\PBCARNOT.EXE
                  MP Scheduled Scan.job: C:\Program Files\Windows Defender\MpCmdRun.exe Scan -RestrictPrivileges
                  Norton Security Scan.job: C:\Program Files\Norton Security Scan\Nss.exe /scan-full /scheduled

                  ========== Clés registre

                  ========== Bloqueur popups Internet Explorer

                  www.packardbell.co.uk
                  www.packardbell.at
                  www.packardbell.dk
                  www.packardbell.fi
                  www.packardbell.fr
                  www.packardbell.de
                  www.packardbell.it
                  www.packardbell.no
                  www.packardbell.es
                  www.packardbell.se
                  www.packardbell.ch
                  www.packardbell.nl
                  fr.packardbell.be
                  nl.packardbell.be
                  cid-5971bcf5ec4f3805.spaces.live.com
                  cid-96d1bcd3fe6826ed.spaces.live.com

                  ========== Suggestion ( /!\ Nécessite une interprétation.) ==========

                  +- Registre : Aucune suggestion.

                  - Fin du rapport -
                  1. t as le rapport otmove it

                    poste le rapport situé dans C:\_OTMoveIt\MovedFiles.
                    1. OK

                      Toujours des pubs ??

                      Télécharge HijackThis ici :

                      -> https://www.01net.com/telecharger/windows/Securite/anti-spyware/fiches/29061.html

                      Tutoriel d´instalation : (Merci a Balltrap34 pour cette réalisation)

                      -> http://pageperso.aol.fr/balltrap34/Hijenr.gif

                      Tutoriel d´utilisation (video) : (Merci a Balltrap34 pour cette réalisation)

                      -> http://perso.orange.fr/rginformatique/section%20virus/demohijack.htm

                      Post le rapport généré ici stp...
                      1. Logfile of Trend Micro HijackThis v2.0.2
                        Scan saved at 13:42:22, on 16/06/2008
                        Platform: Windows XP SP2 (WinNT 5.01.2600)
                        MSIE: Internet Explorer v7.00 (7.00.6000.16674)
                        Boot mode: Normal

                        Running processes:
                        C:\WINDOWS\System32\smss.exe
                        C:\WINDOWS\system32\winlogon.exe
                        C:\WINDOWS\system32\services.exe
                        C:\WINDOWS\system32\lsass.exe
                        C:\WINDOWS\system32\svchost.exe
                        C:\Program Files\Windows Defender\MsMpEng.exe
                        C:\WINDOWS\System32\svchost.exe
                        C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
                        C:\Program Files\Alwil Software\Avast4\ashServ.exe
                        C:\WINDOWS\Explorer.EXE
                        C:\WINDOWS\system32\spoolsv.exe
                        C:\Program Files\Fichiers communs\LogiShrd\LVMVFM\LVPrcSrv.exe
                        C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
                        C:\WINDOWS\RTHDCPL.EXE
                        C:\PROGRA~1\GOTOSO~1\VADERE~1\Vaderetro_oe.exe
                        C:\Program Files\Fichiers communs\Ulead Systems\AutoDetector\monitor.exe
                        C:\Apps\Powercinema\PCMService.exe
                        C:\apps\ABoard\ABoard.exe
                        C:\Program Files\Windows Defender\MSASCui.exe
                        C:\apps\ABoard\AOSD.exe
                        C:\WINDOWS\system32\RUNDLL32.EXE
                        C:\Program Files\QuickTime\qttask.exe
                        C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
                        C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
                        C:\Program Files\Fichiers communs\LogiShrd\LComMgr\Communications_Helper.exe
                        C:\Program Files\Logitech\QuickCam\Quickcam.exe
                        C:\Program Files\Orange\Systray\SystrayApp.exe
                        C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
                        C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
                        C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\AlertModule\0\AlertModule.exe
                        C:\Program Files\Orange\Launcher\Launcher.exe
                        C:\WINDOWS\system32\ctfmon.exe
                        D:\documents and settings\fredérique.fred\local settings\application data\msapvcci.exe
                        C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
                        c:\APPS\Powercinema\Kernel\TV\CLCapSvc.exe
                        C:\Program Files\CyberLink\Shared Files\CLML_NTService\CLMLServer.exe
                        C:\Program Files\CyberLink\Shared Files\CLML_NTService\CLMLService.exe
                        C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
                        c:\APPS\HIDSERVICE\HIDSERVICE.exe
                        C:\Program Files\Fichiers communs\LogiShrd\LVCOMSER\LVComSer.exe
                        C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
                        C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
                        C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
                        C:\Program Files\Logitech\SetPoint\SetPoint.exe
                        C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe
                        C:\WINDOWS\BricoPacks\Vista Inspirat 2\UberIcon\UberIcon Manager.exe
                        C:\WINDOWS\BricoPacks\Vista Inspirat 2\YzShadow\YzShadow.exe
                        C:\WINDOWS\system32\nvsvc32.exe
                        C:\WINDOWS\system32\svchost.exe
                        C:\Program Files\Fichiers communs\Ulead Systems\DVD\ULCDRSvr.exe
                        c:\APPS\Powercinema\Kernel\TV\CLSched.exe
                        C:\Program Files\Fichiers communs\Logitech\KhalShared\KHALMNPR.EXE
                        C:\WINDOWS\system32\SearchIndexer.exe
                        C:\Program Files\Fichiers communs\LogiShrd\LVCOMSER\LVComSer.exe
                        C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
                        C:\Program Files\Orange\Deskboard\deskboard.exe
                        C:\Program Files\Orange\connectivity\connectivitymanager.exe
                        C:\Program Files\Orange\connectivity\CoreCom\CoreCom.exe
                        C:\WINDOWS\System32\svchost.exe
                        C:\Program Files\Orange\connectivity\CoreCom\OraConfigRecover.exe
                        C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTCOMModule\0\FTCOMModule.exe
                        C:\Program Files\Fichiers communs\Logishrd\LQCVFX\COCIManager.exe
                        C:\Program Files\Windows Live\Messenger\usnsvc.exe
                        C:\Program Files\Windows Live\Messenger\msnmsgr.exe
                        C:\Program Files\Windows Live\Messenger\msnmsgr.exe
                        C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
                        D:\Documents and Settings\Fredérique.FRED\Local Settings\Temporary Internet Files\Content.IE5\22T7HT5E\OTMoveIt2[1].exe
                        C:\Program Files\Internet Explorer\iexplore.exe
                        C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

                        R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = www.orange.fr
                        R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
                        R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
                        R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
                        R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://home.sweetim.com/
                        R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
                        R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
                        R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\Program Files\Orange\SearchURLHook\SearchPageURL.dll
                        R3 - URLSearchHook: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll
                        O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
                        O2 - BHO: SWEETIE - {1A0AADCD-3A72-4b5f-900F-E3BB5A838E2A} - C:\PROGRA~1\MACROG~1\SWEETI~1\toolbar.dll
                        O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
                        O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
                        O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
                        O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.615.5858\swg.dll
                        O3 - Toolbar: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll
                        O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
                        O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
                        O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
                        O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
                        O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
                        O4 - HKLM\..\Run: [High Definition Audio Property Page Shortcut] HDAShCut.exe
                        O4 - HKLM\..\Run: [AzMixerSel] C:\Program Files\Realtek\InstallShield\AzMixerSel.exe
                        O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
                        O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
                        O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
                        O4 - HKLM\..\Run: [Vade Retro Outlook Express] "C:\PROGRA~1\GOTOSO~1\VADERE~1\Vaderetro_oe.exe"
                        O4 - HKLM\..\Run: [Ulead AutoDetector v2] C:\Program Files\Fichiers communs\Ulead Systems\AutoDetector\monitor.exe
                        O4 - HKLM\..\Run: [PCMService] "c:\Apps\Powercinema\PCMService.exe"
                        O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE /Spoil /RemAdvDef /Migration32"
                        O4 - HKLM\..\Run: [ACTIVBOARD] c:\apps\ABoard\ABoard.exe
                        O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
                        O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
                        O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
                        O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
                        O4 - HKLM\..\Run: [FLMOFFICE4DMOUSE] C:\Program Files\Labtec\Desktop\V5.1\moffice.exe
                        O4 - HKLM\..\Run: [OFFICEKB] C:\Program Files\Labtec\Desktop\V5.1\kbdap32a.exe
                        O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
                        O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
                        O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
                        O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Program Files\Fichiers communs\LogiShrd\LComMgr\Communications_Helper.exe"
                        O4 - HKLM\..\Run: [LogitechQuickCamRibbon] "C:\Program Files\Logitech\QuickCam\Quickcam.exe" /hide
                        O4 - HKLM\..\Run: [SystrayORAHSS] "C:\Program Files\Orange\Systray\SystrayApp.exe"
                        O4 - HKLM\..\Run: [ORAHSSSessionManager] C:\Program Files\Orange\SessionManager\SessionManager.exe
                        O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
                        O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
                        O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\Shell.exe appLaunchClientZone.shl|PARAM= cnx
                        O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
                        O4 - HKCU\..\Run: [msapvcci] d:\documents and settings\fredérique.fred\local settings\application data\msapvcci.exe msapvcci
                        O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
                        O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (User 'SERVICE LOCAL')
                        O4 - HKUS\S-1-5-19\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background (User 'SERVICE LOCAL')
                        O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (User 'SERVICE RÉSEAU')
                        O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
                        O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
                        O4 - Startup: RocketDock.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe
                        O4 - Startup: TransBar.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat 2\TransBar\TransBar.exe
                        O4 - Startup: UberIcon.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat 2\UberIcon\UberIcon Manager.exe
                        O4 - Startup: Y'z Shadow.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat 2\YzShadow\YzShadow.exe
                        O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
                        O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
                        O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
                        O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
                        O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
                        O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
                        O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
                        O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
                        O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
                        O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
                        O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
                        O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
                        O14 - IERESET.INF: START_PAGE_URL=file://C:\APPS\IE\offline\fr.htm
                        O15 - Trusted Zone: https://www.orange.fr/portail
                        O16 - DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} (Office Genuine Advantage Validation Tool) - http://download.microsoft.com/download/C/B/F/CBF23A2C-3E55-4664-BC5C-762780D79BA0/OGAControl.cab
                        O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
                        O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262E} (System Requirements Lab) - http://dev.srtest.com/srl_bin/sysreqlab3.cab
                        O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} - http://download.divx.com/player/DivXBrowserPlugin.cab
                        O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/...
                        O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
                        O17 - HKLM\System\CCS\Services\Tcpip\..\{EEE962D8-CA09-4A74-A830-CEBF5CFC35DC}: NameServer = 81.253.149.9,80.10.246.3
                        O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
                        O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
                        O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
                        O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
                        O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
                        O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
                        O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLCapSvc.exe
                        O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLSched.exe
                        O23 - Service: CyberLink Media Library Service - Cyberlink - C:\Program Files\CyberLink\Shared Files\CLML_NTService\CLMLServer.exe
                        O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom SA - C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
                        O23 - Service: Generic Service for HID Keyboard Input Collections (GenericHidService) - Unknown owner - c:\APPS\HIDSERVICE\HIDSERVICE.exe
                        O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
                        O23 - Service: LVCOMSer - Logitech Inc. - C:\Program Files\Fichiers communs\LogiShrd\LVCOMSER\LVComSer.exe
                        O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - C:\Program Files\Fichiers communs\LogiShrd\LVMVFM\LVPrcSrv.exe
                        O23 - Service: LVSrvLauncher - Logitech Inc. - C:\Program Files\Fichiers communs\LogiShrd\SrvLnch\SrvLnch.exe
                        O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
                        O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
                        O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Fichiers communs\Ulead Systems\DVD\ULCDRSvr.exe
                        1. Préalable
                          • Vider la corbeille
                          • Fermer toutes les applications

                          ================NAVILOG====================

                          Télécharge ceci http://il.mafioso.pagesperso-orange.fr/Navifix/download.htm

                          prend navilog1.exe

                          Choisir option 1 uniquement

                          Ensuite suit ce tutorial :http://www.commentcamarche.net/faq/sujet 2490 popups ouverture de fenetres internet publicitaires pop up#premiere methode utiliser navilog d il mafioso sous xp

                          Et enfin post le rapport du scan navilog
                          1. Le voila

                            Search Navipromo version 3.5.8 commencé le 16/06/2008 à 13:48:11,78

                            !!! Attention,ce rapport peut indiquer des fichiers/programmes légitimes!!!
                            !!! Postez ce rapport sur le forum pour le faire analyser !!!
                            !!! Ne lancez pas la partie désinfection sans l'avis d'un spécialiste !!!

                            Outil exécuté depuis C:\Program Files\navilog1
                            Session actuelle : "Fredérique"

                            Mise à jour le 06.06.2008 à 18h00 par IL-MAFIOSO

                            Microsoft Windows XP [version 5.1.2600]
                            Internet Explorer : 7.0.5730.13
                            Système de fichiers : NTFS

                            Recherche executé en mode normal

                            *** Recherche Programmes installés ***

                            Favorit

                            *** Recherche dossiers dans "C:\WINDOWS" ***

                            *** Recherche dossiers dans "C:\Program Files" ***

                            C:\Program Files\InternetGameBox trouvé !

                            *** Recherche dossiers dans "d:\docume~1\alluse~1\applic~1" ***

                            *** Recherche dossiers dans "d:\docume~1\alluse~1\menudÉ~1\progra~1" ***

                            *** Recherche dossiers dans "D:\Documents and Settings\Fredérique.FRED\applic~1" ***

                            *** Recherche dossiers dans "D:\Documents and Settings\Fredérique.FRED\locals~1\applic~1" ***

                            *** Recherche dossiers dans "D:\Documents and Settings\Fredérique.FRED\menudm~1\progra~1" ***

                            *** Recherche avec Catchme-rootkit/stealth malware detector par gmer ***
                            pour + d'infos : http://www.gmer.net

                            Aucun Fichier trouvé

                            *** Recherche avec GenericNaviSearch ***
                            !!! Tous ces résultats peuvent révéler des fichiers légitimes !!!
                            !!! A vérifier impérativement avant toute suppression manuelle !!!

                            * Recherche dans "C:\WINDOWS\system32" *

                            * Recherche dans "D:\Documents and Settings\Fredérique.FRED\locals~1\applic~1" *

                            Fichiers trouvés :

                            msapvcci.exe trouvé !
                            msapvcci.dat trouvé !
                            msapvcci_nav.dat trouvé !
                            msapvcci_navps.dat trouvé !

                            *** Recherche fichiers ***

                            C:\WINDOWS\system32\nvs2.inf trouvé !

                            *** Recherche clés spécifiques dans le Registre ***

                            HKEY_CURRENT_USER\Software\Lanconfig trouvé !

                            *** Module de Recherche complémentaire ***
                            (Recherche fichiers spécifiques)

                            1)Recherche nouveaux fichiers Instant Access :

                            2)Recherche Heuristique :

                            * Dans "C:\WINDOWS\system32" :

                            * Dans "D:\Documents and Settings\Fredérique.FRED\locals~1\applic~1" :

                            msapvcci.dat trouvé !
                            msapvcci_nav.dat trouvé !
                            msapvcci_navps.dat trouvé !

                            3)Recherche Certificats :

                            Certificat Egroup trouvé !
                            Certificat Electronic-Group trouvé !
                            Certificat OOO-Favorit trouvé !
                            Certificat Sunny-Day-Design-Ltd absent !

                            4)Recherche fichiers connus :

                            *** Analyse terminée le 16/06/2008 à 13:50:43,43 ***
                            1. t as toutes les variantes lol

                              Double cliques sur le raccourci Navilog1 présent sur le bureau et laisse-toi guider.
                              Au menu principal, choisis 2 et valides.
                              (ne fais pas le choix 3 ou 4 sans notre avis/accord)

                              Le fix va t'informer qu'il va alors redémarrer ton PC
                              Fermes toutes les fenêtres ouvertes et enregistre tes documents personnels ouverts
                              Appuies sur une touche comme demandé.
                              (si ton Pc ne redémarre pas automatiquement, fais le toi même)
                              Au redémarrage de ton PC, choisis ta session habituelle.

                              Patiente jusqu'au message :
                              *** Nettoyage Termine le ..... ***
                              Le bloc-notes va s'ouvrir.
                              Sauvegarde le rapport de manière à le retrouver
                              Referme le bloc-notes. Ton bureau va réapparaitre

                              PS:Si ton bureau ne réapparait pas, fais CTRL+ALT+SUPP pour ouvrir le gestionnaire de tâches.
                              Puis rends-toi à l'onglet "processus". Clique en haut à gauche sur fichiers et choisis "exécuter"
                              Tape explorer et valide. Celà te fera apparaitre ton bureau.

                              Postes le rapport içi.
                              1. Clean Navipromo version 3.5.8 commencé le 16/06/2008 à 13:59:44,14

                                Outil exécuté depuis C:\Program Files\navilog1
                                Session actuelle : "Fredérique"

                                Mise à jour le 06.06.2008 à 18h00 par IL-MAFIOSO

                                Microsoft Windows XP [version 5.1.2600]
                                Internet Explorer : 7.0.5730.13
                                Système de fichiers : NTFS

                                Mode suppression automatique
                                avec prise en charge résultats Catchme et GNS

                                Nettoyage exécuté au redémarrage de l'ordinateur

                                *** fsbl1.txt non trouvé ***
                                (Assurez-vous que Catchme n'avait rien trouvé lors de la recherche)

                                *** Suppression avec sauvegardes résultats GenericNaviSearch ***

                                * Suppression dans "C:\WINDOWS\System32" *

                                * Suppression dans "D:\Documents and Settings\Fredérique.FRED\locals~1\applic~1" *

                                msapvcci.exe trouvé !
                                Copie msapvcci.exe réalisée avec succès !
                                msapvcci.exe supprimé !

                                msapvcci.dat trouvé !
                                Copie msapvcci.dat réalisée avec succès !
                                msapvcci.dat supprimé !

                                msapvcci_nav.dat trouvé !
                                Copie msapvcci_nav.dat réalisée avec succès !
                                msapvcci_nav.dat supprimé !

                                msapvcci_navps.dat trouvé !
                                Copie msapvcci_navps.dat réalisée avec succès !
                                msapvcci_navps.dat supprimé !

                                *** Suppression dossiers dans "C:\WINDOWS" ***

                                *** Suppression dossiers dans "C:\Program Files" ***

                                C:\Program Files\InternetGamebox ...suppression...
                                C:\Program Files\InternetGamebox supprimé !

                                *** Suppression dossiers dans "d:\docume~1\alluse~1\applic~1" ***

                                *** Suppression dossiers dans "d:\docume~1\alluse~1\menudÉ~1\progra~1" ***

                                *** Suppression dossiers dans "D:\Documents and Settings\Fredérique.FRED\applic~1" ***

                                *** Suppression dossiers dans "D:\Documents and Settings\Fredérique.FRED\locals~1\applic~1" ***

                                *** Suppression dossiers dans "D:\Documents and Settings\Fredérique.FRED\menudm~1\progra~1" ***

                                *** Suppression fichiers ***

                                C:\WINDOWS\system32\nvs2.inf supprimé !

                                *** Suppression fichiers temporaires ***

                                Nettoyage contenu C:\WINDOWS\Temp effectué !
                                Nettoyage contenu D:\Documents and Settings\Fred‚rique.FRED\locals~1\Temp effectué !

                                *** Traitement Recherche complémentaire ***
                                (Recherche fichiers spécifiques)

                                1)Suppression avec sauvegardes nouveaux fichiers Instant Access :

                                2)Recherche, création sauvegardes et suppression Heuristique :

                                * Dans "C:\WINDOWS\system32" *

                                * Dans "D:\Documents and Settings\Fredérique.FRED\locals~1\applic~1" *

                                *** Sauvegarde du Registre vers dossier Safebackup ***

                                sauvegarde du Registre réalisée avec succès !

                                *** Nettoyage Registre ***

                                Nettoyage Registre Ok

                                *** Certificats ***

                                Certificat Egroup supprimé !
                                Certificat Electronic-Group supprimé !
                                Certificat OOO-Favorit supprimé !
                                Certificat Sunny-Day-Design-Ltdt absent !

                                *** Nettoyage terminé le 16/06/2008 à 14:02:45,62 ***
                                1. ou en es tu depuis sur ce problème; j'ai depuis qq temps la m^me problématique et je lis les forums pour trouver la solution pour éradiquer cette sal..
                              2. Telecharge malwarebytes

                                -> https://www.malekal.com/tutoriel-malwarebyte-anti-malware/

                                Tu l´instale; le programme va se mettre automatiquement a jour.

                                Une fois a jour, le programme va se lancer; click sur l´onglet parametre, et coche la case : "Arreter internet explorer pendant la suppression".

                                Click maintenant sur l´onglet recherche et coche la case : "executer un examen complet".

                                Puis click sur "rechercher".

                                Laisse le scanner le pc...

                                Si des elements on ete trouvés > click sur supprimer la selection.

                                si il t´es demandé de redemarrer > click sur "yes".

                                A la fin un rapport va s´ouvrir; sauvegarde le de maniere a le retrouver en vu de le poster sur le forum.

                                Copie et colle le rapport stp.

                                ps : les rapport sont aussi rangé dans l onglet rapport/log
                                • 1
                                • 2