Help, virus dans mon pc bagle et virtumond ?

YALANG Messages postés 39 Statut Membre -  
YALANG Messages postés 39 Statut Membre -
Bonjour,

Aidez moi, mon ordi rame comme jamais depuis que j'ai "enlevé" le virus bagle et trojan.

Voilà le dernier rapport de malwarebytes :

Malwarebytes' Anti-Malware 1.17
Version de la base de données: 857

19:18:09 15/06/2008
mbam-log-6-15-2008 (19-18-09).txt

Type de recherche: Examen complet (C:\|)
Eléments examinés: 109497
Temps écoulé: 2 hour(s), 44 minute(s), 29 second(s)

Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 3
Valeur(s) du Registre infectée(s): 0
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 6

Processus mémoire infecté(s):
(Aucun élément nuisible détecté)

Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)

Clé(s) du Registre infectée(s):
HKEY_CURRENT_USER\Software\Microsoft\affri (Malware.Trace) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\affri (Malware.Trace) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MS Juan (Malware.Trace) -> Quarantined and deleted successfully.

Valeur(s) du Registre infectée(s):
(Aucun élément nuisible détecté)

Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)

Dossier(s) infecté(s):
(Aucun élément nuisible détecté)

Fichier(s) infecté(s):
C:\System Volume Information\_restore{C75D780B-5CD4-494E-AB96-5DA2A6677439}\RP478\A0073640.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{C75D780B-5CD4-494E-AB96-5DA2A6677439}\RP478\A0073775.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{C75D780B-5CD4-494E-AB96-5DA2A6677439}\RP478\A0073779.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{C75D780B-5CD4-494E-AB96-5DA2A6677439}\RP478\A0073781.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{C75D780B-5CD4-494E-AB96-5DA2A6677439}\RP478\A0073783.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\clkcnt.txt (Trojan.Vundo) -> Quarantined and deleted successfully.

Pouvez-vous m'aider, s'il vous plait ?
A voir également:

15 réponses

routedeserte Messages postés 191 Statut Membre 8
 
fais une reparation de ton systeme si le virus etait dans le volume information
0
Utilisateur anonyme
 
faux le virus se trouve DANS la restauration systeme. Pour l'eradiquer il faut désactiver puis relancer la restauration systeme mais avant ça quelque question.

Comment as tu enlevé le virus bagle?par quel moyen ?
0
YALANG Messages postés 39 Statut Membre
 
J'ai d'abord utiliser elibagla, puis combofix et enfin malwarebytes
0
YALANG Messages postés 39 Statut Membre
 
Ah et pour info, la restauration du système ne me propose pas de date avant l'infection par le ou les virus.
0
Utilisateur anonyme
 
peux tu me poster les rapport de elibagla, combofix et MBAM ?
il est important que je les vois. Qui plus est combofix est un outil extremement dangereux, une fausse manipulation et ton ordi peut se mettre à bugguer énormément.
0
YALANG Messages postés 39 Statut Membre
 
Merci de répondre, j'ai utiliser combofix sur les conseils d'un internaute. Voilà les post :

ComboFix 08-06-10.3 - yann 2008-06-15 16:17:36.4 - NTFSx86 MINIMAL

Endroit: C:\Documents and Settings\yann\Bureau\ComboFix.exe

[color=red][b]AVERTISSEMENT - LA CONSOLE DE RÉCUPÉRATION N'EST PAS INSTALLÉE SUR CETTE MACHINE !![/b][/color]
.

((((((((((((((((((((((((((((( Fichiers cr‚‚s 2008-05-15 to 2008-06-15 ))))))))))))))))))))))))))))))))))))
.

2008-06-15 16:02 . 2008-06-15 16:02 <REP> d-------- C:\WINDOWS\LastGood
2008-06-11 12:52 . 2008-04-14 17:52 272,768 --------- C:\WINDOWS\system32\drivers\bthport.sys
2008-06-11 12:52 . 2008-04-14 17:52 272,768 --------- C:\WINDOWS\system32\dllcache\bthport.sys
2008-06-03 23:53 . 2008-06-08 15:45 <REP> d-------- C:\Program Files\Malwarebytes' Anti-Malware
2008-06-03 23:53 . 2008-06-03 23:53 <REP> d-------- C:\Documents and Settings\yann\Application Data\Malwarebytes
2008-06-03 23:53 . 2008-06-03 23:53 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2008-06-03 23:53 . 2008-06-05 16:04 34,296 --a------ C:\WINDOWS\system32\drivers\mbamcatchme.sys
2008-06-03 23:53 . 2008-06-05 16:04 15,864 --a------ C:\WINDOWS\system32\drivers\mbam.sys
2008-06-03 23:19 . 2008-06-03 23:19 <REP> d-------- C:\Program Files\Spybot - Search & Destroy
2008-06-03 23:19 . 2008-06-03 23:45 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
2008-06-03 22:39 . 2008-06-03 22:39 <REP> d-------- C:\Program Files\Sony Ericsson
2008-06-03 22:39 . 2008-06-03 22:39 <REP> d-------- C:\Program Files\Fichiers communs\Sony Ericsson Shared
2008-06-03 22:39 . 2008-06-03 22:39 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Teleca
2008-06-03 22:39 . 2008-06-03 22:39 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Sony Ericsson
2008-05-30 18:08 . 2008-05-30 18:19 <REP> d-------- C:\Program Files\Trend Micro
2008-05-30 17:21 . 2008-05-30 17:21 <REP> d-------- C:\!KillBox
2008-05-29 18:50 . 2008-05-29 18:50 <REP> d-------- C:\Program Files\Alwil Software
2008-05-27 19:41 . 2008-05-27 19:41 0 --a------ C:\WINDOWS\mngui.INI
2008-05-27 19:37 . 2007-06-19 09:51 97,704 -ra------ C:\WINDOWS\system32\drivers\s816unic.sys
2008-05-27 19:37 . 2007-06-19 09:51 21,928 -ra------ C:\WINDOWS\system32\drivers\s816nd5.sys
2008-05-27 19:37 . 2007-06-19 09:51 9,768 -ra------ C:\WINDOWS\system32\drivers\s816cr.sys
2008-05-27 19:36 . 2007-06-19 09:51 107,304 -ra------ C:\WINDOWS\system32\drivers\s816mdm.sys
2008-05-27 19:36 . 2007-06-19 09:51 99,112 -ra------ C:\WINDOWS\system32\drivers\s816mgmt.sys
2008-05-27 19:36 . 2007-06-19 09:51 97,320 -ra------ C:\WINDOWS\system32\drivers\s816obex.sys
2008-05-27 19:36 . 2007-06-19 09:51 81,832 -ra------ C:\WINDOWS\system32\drivers\s816bus.sys
2008-05-27 19:36 . 2007-06-19 09:51 13,864 -ra------ C:\WINDOWS\system32\drivers\s816mdfl.sys
2008-05-27 19:36 . 2007-06-19 09:51 11,176 -ra------ C:\WINDOWS\system32\drivers\s816whnt.sys
2008-05-27 19:36 . 2007-06-19 09:51 11,176 -ra------ C:\WINDOWS\system32\drivers\s816wh.sys
2008-05-27 19:36 . 2007-06-19 09:51 11,176 -ra------ C:\WINDOWS\system32\drivers\s816cmnt.sys
2008-05-27 19:36 . 2007-06-19 09:51 11,176 -ra------ C:\WINDOWS\system32\drivers\s816cm.sys
2008-05-27 19:35 . 2008-05-28 00:29 <REP> d-------- C:\Documents and Settings\yann\Application Data\Teleca
2008-05-27 19:32 . 2008-06-03 22:39 <REP> d-------- C:\Program Files\Fichiers communs\Teleca Shared
2008-05-27 19:32 . 2008-05-27 19:32 <REP> d-------- C:\Documents and Settings\yann\Application Data\Sony Ericsson

.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-06-15 14:09 --------- d-----w C:\Program Files\eMule
2008-06-15 13:57 --------- d---a-w C:\Documents and Settings\All Users\Application Data\TEMP
2008-06-08 21:48 --------- d-----w C:\Program Files\Windows Media Connect 2
2008-06-03 21:04 --------- d-----w C:\Documents and Settings\All Users\Application Data\McAfee
2008-06-03 21:03 --------- d-----w C:\Program Files\McAfee.com
2008-06-03 20:59 --------- d-----w C:\Documents and Settings\All Users\Application Data\SiteAdvisor
2008-06-03 20:24 --------- d-----w C:\Program Files\PokerStars
2008-06-01 13:09 --------- d-----w C:\Program Files\WinamaxPoker
2008-05-27 22:18 --------- d-----w C:\Program Files\Fichiers communs\Adobe
2008-05-08 12:28 202,752 ----a-w C:\WINDOWS\system32\drivers\rmcast.sys
2008-04-16 17:45 --------- d-----w C:\Program Files\Java
2007-06-12 07:56 47,360 -c--a-w C:\Documents and Settings\yann\Application Data\pcouffin.sys
2007-04-15 10:37 0 -c--a-w C:\Documents and Settings\yann\Application Data\wklnhst.dat
2007-03-19 23:40 168 --sh--r C:\WINDOWS\system32\F15F4D1295.sys
2007-11-10 17:04 88 --sh--r C:\WINDOWS\system32\F15F677C15.sys
2007-11-10 17:07 5,902 --sha-w C:\WINDOWS\system32\KGyGaAvL.sys
.

------- Sigcheck -------

2004-08-10 14:00 14336 1bd6c2f707a275cb7c16fd99fe0f31ca C:\WINDOWS\system32\svchost.exe

2005-03-02 20:20 578048 c34920eb988ce98910bd6b0417f334eb C:\WINDOWS\$hf_mig$\KB890859\SP2QFE\user32.dll
2007-03-08 17:50 579072 4d88aaf39adabfe45958ea1384e2c4ff C:\WINDOWS\$hf_mig$\KB925902\SP2QFE\user32.dll
2004-08-10 14:00 578048 e46fb493e3b33704f0715020cf52106b C:\WINDOWS\$NtUninstallKB890859$\user32.dll
2005-03-02 20:10 578048 0df75fb73f705b011630159a43d7c354 C:\WINDOWS\$NtUninstallKB925902$\user32.dll
2007-03-08 17:37 578560 753354f594809a9b96f73999b435a533 C:\WINDOWS\system32\user32.dll
2007-03-08 17:37 578560 753354f594809a9b96f73999b435a533 C:\WINDOWS\system32\dllcache\user32.dll

2004-08-10 14:00 82944 bc41f51a39d3b255805fdb759b7814ae C:\WINDOWS\system32\ws2_32.dll

2008-04-21 08:43 670208 7af7d7d178f2863e7e7c880b55c88b76 C:\WINDOWS\$hf_mig$\KB950759\SP3GDR\wininet.dll
2008-04-21 08:30 670720 82b3264706b9921c67b196319fda51de C:\WINDOWS\$hf_mig$\KB950759\SP3QFE\wininet.dll
2006-05-10 07:26 667648 44fcc339191adb8892520dfa473c455f C:\WINDOWS\$NtUninstallKB922760$\wininet.dll
2006-09-14 10:38 668672 b8b6f05885a6f42724e8d6bfede6bd3f C:\WINDOWS\$NtUninstallKB925454$\wininet.dll
2006-10-23 17:34 668672 efa0c2870cba1747809a13e09f35bf82 C:\WINDOWS\$NtUninstallKB928090$\wininet.dll
2007-01-04 16:02 669184 114342601ac7ea73b0d2a0ed8505b8b9 C:\WINDOWS\$NtUninstallKB931768$\wininet.dll
2007-02-19 17:23 669696 1bde6d5dba35797eca8db8fcb80fc015 C:\WINDOWS\$NtUninstallKB933566$\wininet.dll
2007-04-18 14:44 669696 a3bf56a786b277e881fd9137f55f0b4b C:\WINDOWS\$NtUninstallKB937143$\wininet.dll
2007-06-26 16:36 669696 19058fbdc72f7bae085369c6d0a7d074 C:\WINDOWS\$NtUninstallKB939653$\wininet.dll
2007-08-22 14:57 669696 4f6a45b54d26708e2c2bf2c43d83edea C:\WINDOWS\$NtUninstallKB942615$\wininet.dll
2007-12-07 02:47 670208 c057d734b1951393fd07e2607513d4d9 C:\WINDOWS\$NtUninstallKB947864$\wininet.dll
2008-02-16 11:32 670208 dcb8a9f102663d962be60cde38a6c1d7 C:\WINDOWS\$NtUninstallKB950759$\wininet.dll
2006-10-23 17:34 668672 efa0c2870cba1747809a13e09f35bf82 C:\WINDOWS\ie7\wininet.dll
2008-04-21 08:57 670720 f2f343d7ed0223645ba773b840eb4993 C:\WINDOWS\SoftwareDistribution\Download\f13b1130c899601342787d172211ab01\sp2qfe\wininet.dll
2008-04-21 08:43 670208 7af7d7d178f2863e7e7c880b55c88b76 C:\WINDOWS\SoftwareDistribution\Download\f13b1130c899601342787d172211ab01\sp3gdr\wininet.dll
2008-04-21 08:30 670720 82b3264706b9921c67b196319fda51de C:\WINDOWS\SoftwareDistribution\Download\f13b1130c899601342787d172211ab01\sp3qfe\wininet.dll
2008-02-16 11:32 670208 dcb8a9f102663d962be60cde38a6c1d7 C:\WINDOWS\system32\wininet.dll
2008-04-21 08:57 670720 f2f343d7ed0223645ba773b840eb4993 C:\WINDOWS\system32\dllcache\wininet.dll

2006-04-20 14:18 360576 b2220c618b42a2212a59d91ebd6fc4b4 C:\WINDOWS\$hf_mig$\KB917953\SP2QFE\tcpip.sys
2007-10-30 18:53 360832 64798ecfa43d78c7178375fcdd16d8c8 C:\WINDOWS\$hf_mig$\KB941644\SP2QFE\tcpip.sys
2004-08-10 14:00 359040 9f4b36614a0fc234525ba224957de55c C:\WINDOWS\$NtUninstallKB917953$\tcpip.sys
2006-12-18 13:14 359808 b4e29943b4b04bd5e7381546848e6669 C:\WINDOWS\$NtUninstallKB941644$\tcpip.sys
2007-10-30 19:20 360064 90caff4b094573449a0872a0f919b178 C:\WINDOWS\system32\dllcache\tcpip.sys
2007-10-30 19:20 360064 90caff4b094573449a0872a0f919b178 C:\WINDOWS\system32\drivers\tcpip.sys

2004-08-10 14:00 506368 d2de785aeab0bb8ca4c14a8a199dbe4e C:\WINDOWS\system32\winlogon.exe

2004-08-10 14:00 182912 558635d3af1c7546d26067d5d9b6959e C:\WINDOWS\system32\dllcache\ndis.sys
2004-08-10 14:00 182912 558635d3af1c7546d26067d5d9b6959e C:\WINDOWS\system32\drivers\ndis.sys

2004-08-10 14:00 29056 4448006b6bc60e6c027932cfc38d6855 C:\WINDOWS\system32\dllcache\ip6fw.sys
2004-08-10 14:00 29056 4448006b6bc60e6c027932cfc38d6855 C:\WINDOWS\system32\drivers\ip6fw.sys

2005-03-02 20:13 2059008 5311776074b6c13f983dc75baeac9c0c C:\WINDOWS\$hf_mig$\KB890859\SP2QFE\ntkrnlpa.exe
2005-10-12 20:23 2017280 8b0a9b799f4c49cbd11bd52717ac9f76 C:\WINDOWS\$NtUninstallKB929338$\ntkrnlpa.exe
2006-12-19 20:45 2019328 c46168890982d41fb8accdbac8e0a56c C:\WINDOWS\$NtUninstallKB931784$\ntkrnlpa.exe
2007-02-28 18:08 2061440 7a56a64eb50399613587e90292dd2aab C:\WINDOWS\Driver Cache\i386\ntkrnlpa.exe
2007-02-28 18:08 2019328 3e3df9f5d56b719f055e7d652e79f96b C:\WINDOWS\system32\ntkrnlpa.exe
2007-02-28 18:08 2061440 7a56a64eb50399613587e90292dd2aab C:\WINDOWS\system32\dllcache\ntkrnlpa.exe

2005-03-02 20:13 2181632 3e2a0a4a0c0b19fc113618a9562a3b2a C:\WINDOWS\$hf_mig$\KB890859\SP2QFE\ntoskrnl.exe
2005-10-12 20:22 2138112 6d658af0b1a9803f6bea45d62436bacb C:\WINDOWS\$NtUninstallKB929338$\ntoskrnl.exe
2006-12-19 20:45 2139648 d9f5291648962a1733f8d3e59da47bee C:\WINDOWS\$NtUninstallKB931784$\ntoskrnl.exe
2007-02-28 18:08 2184192 8e244108562e0e452eb68dff64cb08a9 C:\WINDOWS\Driver Cache\i386\ntoskrnl.exe
2007-02-28 18:08 2139648 de41f3b43b9f15e08ccd4b98a7bb2ca3 C:\WINDOWS\system32\ntoskrnl.exe
2007-02-28 18:08 2184192 8e244108562e0e452eb68dff64cb08a9 C:\WINDOWS\system32\dllcache\ntoskrnl.exe

2007-06-13 15:22 1037312 d0288319660edcfed07c7e74c4ea38a5 C:\WINDOWS\explorer.exe
2007-06-13 15:10 1037312 b795475444d6d57a572c14b9e1a29839 C:\WINDOWS\$hf_mig$\KB938828\SP2QFE\explorer.exe
2004-08-10 14:00 1036288 4c33e5b9a6197b6ed215f6cfba0a2daa C:\WINDOWS\$NtUninstallKB938828$\explorer.exe
2007-06-13 15:22 1037312 d0288319660edcfed07c7e74c4ea38a5 C:\WINDOWS\system32\dllcache\explorer.exe

2004-08-10 14:00 108544 732e0b1abaace15d80ec19056b0a2af9 C:\WINDOWS\system32\services.exe

2004-08-10 14:00 13312 9f3744a5c6f49291a7a685040a013399 C:\WINDOWS\system32\lsass.exe

2004-08-10 14:00 15360 5584247b568c2e53934873f4b655fe6a C:\WINDOWS\system32\ctfmon.exe
.
((((((((((((((((((((((((((((( snapshot_2008-06-11_13.16.55.95 )))))))))))))))))))))))))))))))))))))))))
.
+ 2008-04-21 06:43:36 3,087,872 ----a-w C:\WINDOWS\$hf_mig$\KB950759\SP3GDR\mshtml.dll
+ 2008-04-21 06:43:36 670,208 ----a-w C:\WINDOWS\$hf_mig$\KB950759\SP3GDR\wininet.dll
+ 2008-04-21 06:30:24 3,088,384 ----a-w C:\WINDOWS\$hf_mig$\KB950759\SP3QFE\mshtml.dll
+ 2008-04-21 06:30:24 670,720 ----a-w C:\WINDOWS\$hf_mig$\KB950759\SP3QFE\wininet.dll
+ 2007-11-30 11:19:06 18,296 ----a-w C:\WINDOWS\$hf_mig$\KB950759\spmsg.dll
+ 2007-11-30 11:19:06 234,872 ----a-w C:\WINDOWS\$hf_mig$\KB950759\spuninst.exe
+ 2007-11-30 11:19:06 26,488 ----a-w C:\WINDOWS\$hf_mig$\KB950759\update\spcustom.dll
+ 2007-11-30 12:39:29 767,352 ----a-w C:\WINDOWS\$hf_mig$\KB950759\update\update.exe
+ 2007-11-30 12:39:31 406,392 ----a-w C:\WINDOWS\$hf_mig$\KB950759\update\updspapi.dll
- 2008-06-11 11:05:39 2,048 --s-a-w C:\WINDOWS\bootstat.dat
+ 2008-06-15 14:23:53 2,048 --s-a-w C:\WINDOWS\bootstat.dat
+ 2008-04-14 15:52:45 272,768 ------w C:\WINDOWS\Driver Cache\i386\bthport.sys
- 2008-02-16 09:31:57 152,064 ----a-w C:\WINDOWS\system32\cdfview.dll
+ 2008-04-21 06:57:16 152,064 ----a-w C:\WINDOWS\system32\cdfview.dll
- 2008-02-16 09:31:58 1,056,768 ----a-w C:\WINDOWS\system32\danim.dll
+ 2008-04-21 06:57:17 1,056,768 ----a-w C:\WINDOWS\system32\danim.dll
- 2008-02-16 09:31:57 1,024,512 ------w C:\WINDOWS\system32\dllcache\browseui.dll
+ 2008-04-21 06:57:16 1,024,512 ------w C:\WINDOWS\system32\dllcache\browseui.dll
- 2008-02-16 09:31:57 152,064 ------w C:\WINDOWS\system32\dllcache\cdfview.dll
+ 2008-04-21 06:57:16 152,064 ------w C:\WINDOWS\system32\dllcache\cdfview.dll
- 2008-02-16 09:31:58 1,056,768 ------w C:\WINDOWS\system32\dllcache\danim.dll
+ 2008-04-21 06:57:17 1,056,768 ------w C:\WINDOWS\system32\dllcache\danim.dll
- 2008-02-16 09:31:58 357,888 ------w C:\WINDOWS\system32\dllcache\dxtmsft.dll
+ 2008-04-21 06:57:17 357,888 ------w C:\WINDOWS\system32\dllcache\dxtmsft.dll
- 2008-02-16 09:31:58 205,312 ------w C:\WINDOWS\system32\dllcache\dxtrans.dll
+ 2008-04-21 06:57:18 205,312 ------w C:\WINDOWS\system32\dllcache\dxtrans.dll
- 2008-02-16 09:31:58 55,808 ------w C:\WINDOWS\system32\dllcache\extmgr.dll
+ 2008-04-21 06:57:18 55,808 ------w C:\WINDOWS\system32\dllcache\extmgr.dll
- 2008-02-15 09:07:53 18,432 ------w C:\WINDOWS\system32\dllcache\iedw.exe
+ 2008-04-17 10:46:59 18,432 ------w C:\WINDOWS\system32\dllcache\iedw.exe
- 2008-02-16 09:31:58 251,904 ------w C:\WINDOWS\system32\dllcache\iepeers.dll
+ 2008-04-21 06:57:18 251,904 ------w C:\WINDOWS\system32\dllcache\iepeers.dll
- 2008-02-16 09:31:58 96,768 ------w C:\WINDOWS\system32\dllcache\inseng.dll
+ 2008-04-21 06:57:18 96,768 ------w C:\WINDOWS\system32\dllcache\inseng.dll
- 2008-02-16 09:31:58 16,384 ------w C:\WINDOWS\system32\dllcache\jsproxy.dll
+ 2008-04-21 06:57:18 16,384 ------w C:\WINDOWS\system32\dllcache\jsproxy.dll
- 2008-02-16 09:31:59 3,087,872 ------w C:\WINDOWS\system32\dllcache\mshtml.dll
+ 2008-04-21 06:57:22 3,087,872 ------w C:\WINDOWS\system32\dllcache\mshtml.dll
- 2008-02-16 09:31:59 449,024 ------w C:\WINDOWS\system32\dllcache\mshtmled.dll
+ 2008-04-21 06:57:22 449,024 ------w C:\WINDOWS\system32\dllcache\mshtmled.dll
- 2008-02-16 09:31:59 146,432 ------w C:\WINDOWS\system32\dllcache\msrating.dll
+ 2008-04-21 06:57:23 146,432 ------w C:\WINDOWS\system32\dllcache\msrating.dll
- 2008-02-16 09:31:59 532,480 ------w C:\WINDOWS\system32\dllcache\mstime.dll
+ 2008-04-21 06:57:23 532,480 ------w C:\WINDOWS\system32\dllcache\mstime.dll
- 2008-02-16 09:31:59 39,424 ------w C:\WINDOWS\system32\dllcache\pngfilt.dll
+ 2008-04-21 06:57:23 39,424 ------w C:\WINDOWS\system32\dllcache\pngfilt.dll
- 2006-07-13 08:48:58 202,240 -c--a-w C:\WINDOWS\system32\dllcache\rmcast.sys
+ 2008-05-08 12:28:49 202,752 ----a-w C:\WINDOWS\system32\dllcache\rmcast.sys
- 2008-02-16 09:32:00 1,499,648 ------w C:\WINDOWS\system32\dllcache\shdocvw.dll
+ 2008-04-21 06:57:25 1,499,648 ------w C:\WINDOWS\system32\dllcache\shdocvw.dll
- 2008-02-16 09:32:00 474,624 ------w C:\WINDOWS\system32\dllcache\shlwapi.dll
+ 2008-04-21 06:57:26 474,624 ------w C:\WINDOWS\system32\dllcache\shlwapi.dll
- 2008-02-16 09:32:00 620,544 ------w C:\WINDOWS\system32\dllcache\urlmon.dll
+ 2008-04-21 06:57:26 620,544 ------w C:\WINDOWS\system32\dllcache\urlmon.dll
- 2008-02-16 09:31:58 357,888 ----a-w C:\WINDOWS\system32\dxtmsft.dll
+ 2008-04-21 06:57:17 357,888 ----a-w C:\WINDOWS\system32\dxtmsft.dll
- 2008-02-16 09:31:58 205,312 ----a-w C:\WINDOWS\system32\dxtrans.dll
+ 2008-04-21 06:57:18 205,312 ----a-w C:\WINDOWS\system32\dxtrans.dll
- 2008-02-16 09:31:58 55,808 ----a-w C:\WINDOWS\system32\extmgr.dll
+ 2008-04-21 06:57:18 55,808 ----a-w C:\WINDOWS\system32\extmgr.dll
- 2008-02-16 09:31:58 251,904 ----a-w C:\WINDOWS\system32\iepeers.dll
+ 2008-04-21 06:57:18 251,904 ----a-w C:\WINDOWS\system32\iepeers.dll
- 2008-02-16 09:31:58 96,768 ----a-w C:\WINDOWS\system32\inseng.dll
+ 2008-04-21 06:57:18 96,768 ----a-w C:\WINDOWS\system32\inseng.dll
- 2008-05-09 21:35:04 16,863,864 ----a-w C:\WINDOWS\system32\MRT.exe
+ 2008-05-29 23:35:11 17,486,968 ----a-w C:\WINDOWS\system32\MRT.exe
- 2008-02-16 09:31:59 449,024 ----a-w C:\WINDOWS\system32\mshtmled.dll
+ 2008-04-21 06:57:22 449,024 ----a-w C:\WINDOWS\system32\mshtmled.dll
- 2008-02-16 09:31:59 146,432 ----a-w C:\WINDOWS\system32\msrating.dll
+ 2008-04-21 06:57:23 146,432 ----a-w C:\WINDOWS\system32\msrating.dll
- 2008-02-16 09:31:59 532,480 ----a-w C:\WINDOWS\system32\mstime.dll
+ 2008-04-21 06:57:23 532,480 ----a-w C:\WINDOWS\system32\mstime.dll
- 2008-02-16 09:31:59 39,424 ----a-w C:\WINDOWS\system32\pngfilt.dll
+ 2008-04-21 06:57:23 39,424 ----a-w C:\WINDOWS\system32\pngfilt.dll
- 2008-03-20 12:41:20 14,640 ------w C:\WINDOWS\system32\spmsg.dll
+ 2007-11-30 12:39:29 18,296 ------w C:\WINDOWS\system32\spmsg.dll
.
-- Snapshot reset to current date --
.
((((((((((((((((((((((((((((((((( Point de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
REGEDIT4
*Note* les ‚l‚ments vides & les ‚l‚ments initiaux l‚gitimes ne sont pas list‚s

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DellSupport"="C:\PROGRA~1\DELLSU~1\DSAgnt.exe" [2006-07-16 23:29 389120]
"SpybotSD TeaTimer"="C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe" [2008-01-28 11:43 2097488]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DLCFCATS"="C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\DLCFtime.dll" [2005-09-08 08:55 73728]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe" [2008-02-22 04:25 144784]
"SigmatelSysTrayApp"="stsystra.exe" [2006-03-25 01:30 282624 C:\WINDOWS\stsystra.exe]
"ISUSScheduler"="C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe" [2004-07-27 18:50 81920]
"ISUSPM Startup"="c:\PROGRA~1\FICHIE~1\INSTAL~1\UPDATE~1\isuspm.exe" [2004-07-27 18:50 221184]
"IntelZeroConfig"="C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe" [2006-05-01 11:28 667718]
"IntelWireless"="C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe" [2006-05-01 11:28 602182]
"ehTray"="C:\WINDOWS\ehome\ehtray.exe" [2005-09-29 16:01 67584]
"dla"="C:\WINDOWS\system32\dla\tfswctrl.exe" [2005-05-31 06:33 122941]
"CTSVolFE.exe"="C:\Program Files\Creative\Mixer\CTSVolFE.exe" [2005-02-23 17:57 57344]
"NvCplDaemon"="C:\WINDOWS\system32\NvCpl.dll" [2006-03-21 14:03 7557120]
"nwiz"="nwiz.exe" [2006-03-21 14:03 1519616 C:\WINDOWS\system32\nwiz.exe]
"NVHotkey"="nvHotkey.dll" [2006-03-21 14:03 73728 C:\WINDOWS\system32\nvhotkey.dll]
"Dell QuickSet"="C:\Program Files\Dell\QuickSet\Quickset.exe" [2006-08-03 20:51 1032192]
"NvMediaCenter"="C:\WINDOWS\system32\NvMcTray.dll" [2006-03-21 14:03 86016]
"avast!"="C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe" [2008-05-16 01:19 79224]
"Sony Ericsson PC Suite"="C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" [2007-06-13 08:16 528384]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE" [2004-08-10 14:00 15360]
"Picasa Media Detector"="C:\Program Files\Picasa2\PicasaMediaDetector.exe" [2007-10-23 23:18 443968]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"InstallVisualStyle"= C:\WINDOWS\Resources\Themes\Royale\Royale.msstyles
"InstallTheme"= C:\WINDOWS\Resources\Themes\Royale.theme

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"msacm.l3acm"= l3codecp.acm
"VIDC.YV12"= yv12vfw.dll

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Authentication Packages REG_MULTI_SZ msv1_0 nwprovau

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sglfb.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\tga.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CTFMON.EXE]
--a------ 2004-08-10 14:00 15360 C:\WINDOWS\system32\ctfmon.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MessagerStarter Wanadoo]
--a------ 2003-04-11 18:06 32768 C:\PROGRA~1\MESSAG~1\StartMessager.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PCMService]
--------- 2006-08-22 17:32 184320 C:\Program Files\Dell\MediaDirect\PCMService.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SiteAdvisor]
C:\Program Files\SiteAdvisor\6253\SiteAdv.exe

[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusDisableNotify"=dword:00000001

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"C:\\Program Files\\Dell\\MediaDirect\\PCMService.exe"=
"C:\\Program Files\\Messenger\\msmsgs.exe"=
"C:\\Program Files\\eMule\\emule.exe"=
"C:\\Documents and Settings\\yann\\Bureau\\yannig\\jeux\\blobby\\volley.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"C:\\Program Files\\MSN Messenger\\msnmsgr.exe"=
"C:\\Program Files\\MSN Messenger\\livecall.exe"=
"C:\\Program Files\\Skype\\Phone\\Skype.exe"=
"C:\\Program Files\\Dell Network Assistant\\ezi_hnm2.exe"=

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"10421:UDP"= 10421:UDP:SingleClick Discovery Protocol
"10426:UDP"= 10426:UDP:SingleClick ICC


[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{c3e837ee-9cba-11db-9a7a-0015c5583dab}]
\Shell\AutoRun\command - E:\Launch.exe

.
**************************************************************************

catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-06-15 16:24:40
Windows 5.1.2600 Service Pack 2 NTFS

Balayage processus cach‚s ...

Balayage cach‚ autostart entries ...

Balayage des fichiers cach‚s ...

Scan termin‚ avec succŠs
Les fichiers cach‚s: 0

**************************************************************************
.
Temps d'accomplissement: 2008-06-15 16:30:08 - machine was rebooted
ComboFix-quarantined-files.txt 2008-06-15 14:30:02
ComboFix2.txt 2008-06-11 11:17:26
ComboFix3.txt 2008-05-30 21:02:06

Pre-Run: 72,578,154,496 octets libres
Post-Run: 72,530,415,616 octets libres

283 --- E O F --- 2008-06-15 14:12:29

et eilbagla :

Fri May 30 17:50:21 2008
EliBagle v11.44 (c)2008 S.G.H. / Satinfo S.L. (Modificado el 29 de Mayo del 2008)
----------------------------------------------
Lista de Acciones (por Acción Directa):
C:\WINDOWS\SYSTEM32\WINTEMS.EXE --> Bagle Acceso Denegado.
C:\WINDOWS\SYSTEM32\BAN_LIST.TXT --> Eliminado Bagle
C:\WINDOWS\SYSTEM32\DRIVERS\SROSA.SYS --> Bagle (rootkit) Acceso Denegado.
C:\WINDOWS\SYSTEM32\DRIVERS\HLDRRR.EXE --> Bagle.dldr Acceso Denegado.
C:\DOCUMENTS AND SETTINGS\YANN\APPLICATION DATA\M\FLEC006.EXE --> Bagle Acceso Denegado.
C:\DOCUMENTS AND SETTINGS\YANN\APPLICATION DATA\M\LIST.OCT --> Eliminado Bagle
Restaurada Clave: "SafeBoot\Minimal y Network"
Reinicie para Completar la Limpieza.

Fri May 30 17:50:40 2008
EliBagle v11.44 (c)2008 S.G.H. / Satinfo S.L. (Modificado el 29 de Mayo del 2008)
----------------------------------------------
Lista de Acciones (por Exploración):
Explorando Unidad C:\
C:\Program Files\Synaptics\SynTP\SYNTPENH.EXE --> Eliminado Bagle.dldr

Nº Total de Directorios: 6938
Nº Total de Ficheros: 67824
Nº de Ficheros Analizados: 12726
Nº de Ficheros Infectados: 1
Nº de Ficheros Limpiados: 1

Fri May 30 21:16:12 2008
EliBagle v11.44 (c)2008 S.G.H. / Satinfo S.L. (Modificado el 29 de Mayo del 2008)
----------------------------------------------
Lista de Acciones (por Acción Directa):
C:\WINDOWS\SYSTEM32\WINTEMS.EXE --> Eliminado Bagle
C:\WINDOWS\SYSTEM32\BAN_LIST.TXT --> Eliminado Bagle
C:\WINDOWS\SYSTEM32\DRIVERS\SROSA.SYS --> Eliminado Bagle (rootkit)
C:\WINDOWS\SYSTEM32\DRIVERS\HLDRRR.EXE --> Eliminado Bagle.dldr
C:\DOCUMENTS AND SETTINGS\YANN\APPLICATION DATA\M\FLEC006.EXE --> Eliminado Bagle

Fri May 30 21:16:28 2008
EliBagle v11.44 (c)2008 S.G.H. / Satinfo S.L. (Modificado el 29 de Mayo del 2008)
----------------------------------------------
Lista de Acciones (por Exploración):
Explorando Unidad C:\
C:\RECYCLER\S-1-5-21-1018709393-2274406115-1937433724-1005\Dc1\WINTEMS.EXE --> Eliminado Bagle
C:\WINDOWS\system32\MDELK.EXE --> Eliminado Bagle
C:\WINDOWS\system32\drivers\MDELK.EXE --> Eliminado Bagle.dldr
C:\WINDOWS\system32\drivers\downld\13837546.EXE --> Eliminado Bagle
C:\WINDOWS\system32\drivers\downld\180296.EXE --> Eliminado Bagle
C:\WINDOWS\system32\drivers\downld\205703.EXE --> Eliminado Bagle
C:\WINDOWS\system32\drivers\downld\229968.EXE --> Eliminado Bagle
C:\WINDOWS\system32\drivers\downld\254203.EXE --> Eliminado Bagle

Nº Total de Directorios: 6961
Nº Total de Ficheros: 68333
Nº de Ficheros Analizados: 12750
Nº de Ficheros Infectados: 8
Nº de Ficheros Limpiados: 8

Fri May 30 21:38:07 2008
EliBagle v11.44 (c)2008 S.G.H. / Satinfo S.L. (Modificado el 29 de Mayo del 2008)
----------------------------------------------
Lista de Acciones (por Acción Directa):
Eliminada Carpeta "%AppData%\M"

Fri May 30 23:18:12 2008
EliBagle v11.44 (c)2008 S.G.H. / Satinfo S.L. (Modificado el 29 de Mayo del 2008)
----------------------------------------------
Lista de Acciones (por Acción Directa):

Fri May 30 23:18:15 2008
EliBagle v11.44 (c)2008 S.G.H. / Satinfo S.L. (Modificado el 29 de Mayo del 2008)
----------------------------------------------
Lista de Acciones (por Exploración):
Explorando Unidad C:\

Nº Total de Directorios: 6953
Nº Total de Ficheros: 67994
Nº de Ficheros Analizados: 12753
Nº de Ficheros Infectados: 0
Nº de Ficheros Limpiados: 0

Sun Jun 08 21:59:34 2008
EliBagle v11.44 (c)2008 S.G.H. / Satinfo S.L. (Modificado el 29 de Mayo del 2008)
----------------------------------------------
Lista de Acciones (por Acción Directa):

Sun Jun 08 21:59:36 2008
EliBagle v11.44 (c)2008 S.G.H. / Satinfo S.L. (Modificado el 29 de Mayo del 2008)
----------------------------------------------
Lista de Acciones (por Exploración):
Explorando Unidad C:\

Nº Total de Directorios: 6735
Nº Total de Ficheros: 67889
Nº de Ficheros Analizados: 12870
Nº de Ficheros Infectados: 0
Nº de Ficheros Limpiados: 0
0
YALANG Messages postés 39 Statut Membre > YALANG Messages postés 39 Statut Membre
 
Désolé je ne pourrais pas répondre immédiatement pour la suite mais, je pourrais me reconnecter jeudi ou vendredi, laisser la marche à suivre et les instructions et je donneriais les infos demandées.

Merci beaucoup de m'aider.
0
Utilisateur anonyme
 
repass un coup de MBAM et poste moi le rapport.

Quel internaute si ce n'est pas indiscret ?

télécharge HijackThis ici:
http://telechargement.zebulon.fr/138-hijackthis-1991.html
Dézippe le dans un dossier prévu à cet effet.
Par exemple C:\hijackthis < Enregistre le bien dans c : !
Démo : (Merci a Balltrap34 pour cette réalisation)
http://pageperso.aol.fr/balltrap34/Hijenr.gif

Lance le puis:
clique sur "do a system scan and save logfile" (cf démo)
faire un copier coller du log entier sur le forum
Démo : (Merci a Balltrap34 pour cette réalisation)
http://pageperso.aol.fr/balltrap34/demohijack.htm
http://www.tutoriaux-excalibur.com/hijackthis.htm
https://leblogdeclaude.blogspot.com/2006/10/informatique-section-hijackthis.html
0
YALANG Messages postés 39 Statut Membre
 
Voilà le rapport de HIjack :

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 23:26:37, on 18/06/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\DRIVERS\CDANTSRV.EXE
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\PSIService.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe
C:\WINDOWS\stsystra.exe
C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe
C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\WINDOWS\ehome\ehtray.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\Creative\Mixer\CTSVolFE.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Dell\QuickSet\Quickset.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\PROGRA~1\DELLSU~1\DSAgnt.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\Dell Network Assistant\ezi_hnm2.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\system32\dllhost.exe
C:\Program Files\Fichiers communs\Teleca Shared\Generic.exe
C:\PROGRA~1\Intel\Wireless\Bin\Dot1XCfg.exe
C:\Program Files\Sony Ericsson\Mobile2\Mobile Phone Monitor\epmworker.exe
C:\WINDOWS\eHome\ehmsas.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\yann\Bureau\HiJackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Page_URL = www.google.fr/ig/dell?hl=fr&client=dell-row&channel=fr&ibd=6061116
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - (no file)
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O3 - Toolbar: (no name) - {0BF43445-2F28-4351-9252-17FE6E806AA0} - (no file)
O4 - HKLM\..\Run: [DLCFCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\DLCFtime.dll,_RunDLLEntry@16
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"
O4 - HKLM\..\Run: [SigmatelSysTrayApp] stsystra.exe
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [ISUSPM Startup] c:\PROGRA~1\FICHIE~1\INSTAL~1\UPDATE~1\isuspm.exe -startup
O4 - HKLM\..\Run: [IntelZeroConfig] "C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe"
O4 - HKLM\..\Run: [IntelWireless] "C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe" /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [CTSVolFE.exe] "C:\Program Files\Creative\Mixer\CTSVolFE.exe" /r
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet
O4 - HKLM\..\Run: [NVHotkey] rundll32.exe nvHotkey.dll,Start
O4 - HKLM\..\Run: [Dell QuickSet] C:\Program Files\Dell\QuickSet\Quickset.exe
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [Sony Ericsson PC Suite] "C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" /startoptions
O4 - HKCU\..\Run: [DellSupport] "C:\PROGRA~1\DELLSU~1\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: BTTray.lnk = ?
O4 - Global Startup: Dell Network Assistant.lnk = ?
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Envoyer au périphérique &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O9 - Extra button: PokerStars - -{3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files\PokerStars\PokerStarsUpdate.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
O15 - Trusted Zone: http://*.mcafee.com
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} - http://download.mcafee.com/molbin/shared/mcinsctl/4,0,0,101/mcinsctl.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: C-DillaSrv - C-Dilla Ltd - C:\WINDOWS\system32\DRIVERS\CDANTSRV.EXE
O23 - Service: dlcf_device - - C:\WINDOWS\system32\dlcfcoms.exe
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Advanced Networking Service (hnmsvc) - SingleClick Systems - C:\Program Files\Dell Network Assistant\hnm_svc.exe
O23 - Service: Service de l'iPod (iPod Service) - Unknown owner - C:\Program Files\iPod\bin\iPodService.exe (file missing)
O23 - Service: McAfee Real-time Scanner (McShield) - Unknown owner - C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe (file missing)
O23 - Service: McAfee SystemGuards (McSysmon) - Unknown owner - C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe (file missing)
O23 - Service: NICCONFIGSVC - Dell Inc. - C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
O23 - Service: NMIndexingService - Unknown owner - C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingService.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: ProtexisLicensing - Unknown owner - C:\WINDOWS\system32\PSIService.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Intel(R) PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: Intel(R) PROSet/Wireless SSO Service (WLANKEEPER) - Intel(R) Corporation - C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
Utilisateur anonyme
 
poste moi le rapport hijackthis pour que je puisse te donner les prochaines instructions ^^
0
YALANG Messages postés 39 Statut Membre
 
Ce n'est pas le bon rapport ?
0
Utilisateur anonyme
 
a si excuse moi j'avais pas vu le message ;)
0
YALANG Messages postés 39 Statut Membre
 
Pas de soucis c'est déjà sympa de prendre du temps pour m'aider.
0
Utilisateur anonyme
 
relance hijackthis, coches les cases devant ces lignes puis clique sur fix checked et post un nouveau log :

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Page_URL = www.google.fr/ig/dell?hl=fr&client=dell-row&channel=fr&ibd=6061116
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - (no file)

O3 - Toolbar: (no name) - {0BF43445-2F28-4351-9252-17FE6E806AA0} - (no file)

O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')

O4 - Global Startup: BTTray.lnk = ?
O4 - Global Startup: Dell Network Assistant.lnk = ?
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe

O23 - Service: Service de l'iPod (iPod Service) - Unknown owner - C:\Program Files\iPod\bin\iPodService.exe (file missing)
O23 - Service: McAfee Real-time Scanner (McShield) - Unknown owner - C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe (file missing)
O23 - Service: McAfee SystemGuards (McSysmon) - Unknown owner - C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe (file missing)

O23 - Service: NMIndexingService - Unknown owner - C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingService.exe (file missing)

----------------

ensuite :

Téléchargement :
https://www.01net.com/telecharger/windows/Utilitaire/nettoyeurs_et_installeurs/fiches/32599.html
Tuto :
https://www.vulgarisation-informatique.com/nettoyer-windows-ccleaner.php

Lors de l’installation, [décoche] l’option qui t’installerait la barre Yahoo !

¤ Lance CCleaner.

Suppression des fichiers temporaires

Va dans la section "Options" situé dans la marge gauche. Décoche Avancé. Retourne ensuite dans la section "Nettoyeur"
Fais bien attention de cocher toutes ces cases dans la marge gauche (Internet Explorer/Windows Explorer/Système)
• Clique sur Analyse
• Patiente le temps du scan, qui peut prendre un peu de temps si c'est la première fois.
• Une fois le scan terminé, clique sur Lancer le Nettoyage
(n'hésite pas à le lancer plusieurs fois)

Suppression des incohérence du registre

• Clique sur l'icône Erreurs situés dans la marge à gauche.
• Puis clique sur Analyser les erreurs
• Patiente pendant que CCleaner scan ton registre.
• Une fois le scan terminé, coche toutes les entrèes qu'il t'aura trouvée.
• Tu peux cliquer ensuite sur Corriger les erreurs.

Si tu n'est pas sur de ce que tu fais, tu peux choisir de sauvegarder les entrées cochées pour les restaurer ultérieurement

Tu fais redémarrer l'ordi.

-------------

1) Désactivation / suppression de BOONTY

Demarrer/ executer Tape sc stop BOONTY

Demarrer/ executer Tape sc delete BOONTY

Demarrer/ executer Tape sc stop "Boonty Games"

Demarrer/ executer Tape sc delete "Boonty Games"

Utilises tu des jeux de boonty games depuis longtemps ?
Voici une petite information sur Boonty games

Leur politique :
"Il se peut que nous partageons aussi des informations payantes avec des tiers
qui fournissent ds services payants et partage des données regroupées montrant le type
et le nombre de jeux videos que vous téléchargez, votre age, votre sexe, vos occupations,
niveau d'éducation, localité géographique, données sur l'équipement de votre ordinateur,
internet et intérêts pour les jeux vidéos, activités et entrainement des jeux édités.
De plus, nous partageons les adresses email avec des tiers fournisseurs de compte mails
qui nous assistent en envoyant nos mails a de nombreux clients en même temps..."
0
YALANG Messages postés 39 Statut Membre
 
Après avoir effectuer toutes les opérations, voilà le rapport hijack :

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 00:11:29, on 19/06/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
C:\WINDOWS\system32\DRIVERS\CDANTSRV.EXE
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\PSIService.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe
C:\WINDOWS\stsystra.exe
C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe
C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\WINDOWS\ehome\ehtray.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\Creative\Mixer\CTSVolFE.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Dell\QuickSet\Quickset.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\PROGRA~1\DELLSU~1\DSAgnt.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\eHome\ehmsas.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Fichiers communs\Teleca Shared\Generic.exe
C:\PROGRA~1\Intel\Wireless\Bin\Dot1XCfg.exe
C:\Program Files\Sony Ericsson\Mobile2\Mobile Phone Monitor\epmworker.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\yann\Bureau\HiJackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O4 - HKLM\..\Run: [DLCFCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\DLCFtime.dll,_RunDLLEntry@16
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"
O4 - HKLM\..\Run: [SigmatelSysTrayApp] stsystra.exe
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [ISUSPM Startup] c:\PROGRA~1\FICHIE~1\INSTAL~1\UPDATE~1\isuspm.exe -startup
O4 - HKLM\..\Run: [IntelZeroConfig] "C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe"
O4 - HKLM\..\Run: [IntelWireless] "C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe" /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [CTSVolFE.exe] "C:\Program Files\Creative\Mixer\CTSVolFE.exe" /r
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet
O4 - HKLM\..\Run: [NVHotkey] rundll32.exe nvHotkey.dll,Start
O4 - HKLM\..\Run: [Dell QuickSet] C:\Program Files\Dell\QuickSet\Quickset.exe
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [Sony Ericsson PC Suite] "C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" /startoptions
O4 - HKCU\..\Run: [DellSupport] "C:\PROGRA~1\DELLSU~1\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKUS\S-1-5-18\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe (User 'Default user')
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Envoyer au périphérique &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O9 - Extra button: PokerStars - -{3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files\PokerStars\PokerStarsUpdate.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
O15 - Trusted Zone: [http://]*.mcafee.com
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} - http://download.mcafee.com/molbin/shared/mcinsctl/4,0,0,101/mcinsctl.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: C-DillaSrv - C-Dilla Ltd - C:\WINDOWS\system32\DRIVERS\CDANTSRV.EXE
O23 - Service: dlcf_device - - C:\WINDOWS\system32\dlcfcoms.exe
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Advanced Networking Service (hnmsvc) - SingleClick Systems - C:\Program Files\Dell Network Assistant\hnm_svc.exe
O23 - Service: Service de l'iPod (iPod Service) - Unknown owner - C:\Program Files\iPod\bin\iPodService.exe (file missing)
O23 - Service: McAfee Real-time Scanner (McShield) - Unknown owner - C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe (file missing)
O23 - Service: McAfee SystemGuards (McSysmon) - Unknown owner - C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe (file missing)
O23 - Service: NICCONFIGSVC - Dell Inc. - C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
O23 - Service: NMIndexingService - Unknown owner - C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingService.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: ProtexisLicensing - Unknown owner - C:\WINDOWS\system32\PSIService.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Intel(R) PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: Intel(R) PROSet/Wireless SSO Service (WLANKEEPER) - Intel(R) Corporation - C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
0
Utilisateur anonyme
 
as tu lancer Ccleaner ? il reste des lignes à fixé relis bien mon post ;)
0
YALANG Messages postés 39 Statut Membre
 
Effectivement j'en avais raté, voilà le nouveau post :

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 00:29:32, on 19/06/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\DRIVERS\CDANTSRV.EXE
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\PSIService.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe
C:\WINDOWS\stsystra.exe
C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe
C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\WINDOWS\ehome\ehtray.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\Creative\Mixer\CTSVolFE.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Dell\QuickSet\Quickset.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\PROGRA~1\DELLSU~1\DSAgnt.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\eHome\ehmsas.exe
C:\Program Files\Fichiers communs\Teleca Shared\Generic.exe
C:\WINDOWS\system32\wuauclt.exe
C:\PROGRA~1\Intel\Wireless\Bin\Dot1XCfg.exe
C:\Program Files\Sony Ericsson\Mobile2\Mobile Phone Monitor\epmworker.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\yann\Bureau\HiJackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O4 - HKLM\..\Run: [DLCFCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\DLCFtime.dll,_RunDLLEntry@16
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"
O4 - HKLM\..\Run: [SigmatelSysTrayApp] stsystra.exe
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [ISUSPM Startup] c:\PROGRA~1\FICHIE~1\INSTAL~1\UPDATE~1\isuspm.exe -startup
O4 - HKLM\..\Run: [IntelZeroConfig] "C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe"
O4 - HKLM\..\Run: [IntelWireless] "C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe" /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [CTSVolFE.exe] "C:\Program Files\Creative\Mixer\CTSVolFE.exe" /r
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet
O4 - HKLM\..\Run: [NVHotkey] rundll32.exe nvHotkey.dll,Start
O4 - HKLM\..\Run: [Dell QuickSet] C:\Program Files\Dell\QuickSet\Quickset.exe
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [Sony Ericsson PC Suite] "C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" /startoptions
O4 - HKCU\..\Run: [DellSupport] "C:\PROGRA~1\DELLSU~1\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Envoyer au périphérique &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O9 - Extra button: PokerStars - -{3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files\PokerStars\PokerStarsUpdate.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
O15 - Trusted Zone: http://*.mcafee.com
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} - http://download.mcafee.com/molbin/shared/mcinsctl/4,0,0,101/mcinsctl.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: C-DillaSrv - C-Dilla Ltd - C:\WINDOWS\system32\DRIVERS\CDANTSRV.EXE
O23 - Service: dlcf_device - - C:\WINDOWS\system32\dlcfcoms.exe
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Advanced Networking Service (hnmsvc) - SingleClick Systems - C:\Program Files\Dell Network Assistant\hnm_svc.exe
O23 - Service: Service de l'iPod (iPod Service) - Unknown owner - C:\Program Files\iPod\bin\iPodService.exe (file missing)
O23 - Service: McAfee Real-time Scanner (McShield) - Unknown owner - C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe (file missing)
O23 - Service: McAfee SystemGuards (McSysmon) - Unknown owner - C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe (file missing)
O23 - Service: NICCONFIGSVC - Dell Inc. - C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: ProtexisLicensing - Unknown owner - C:\WINDOWS\system32\PSIService.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Intel(R) PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: Intel(R) PROSet/Wireless SSO Service (WLANKEEPER) - Intel(R) Corporation - C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
0
Utilisateur anonyme
 
et en ce qui concerne Ccleaner ?
0
YALANG Messages postés 39 Statut Membre
 
Fait également. plusieurs fois.
0
Utilisateur anonyme
 
désinstalle avast et met antivir ?

https://www.01net.com/telecharger/windows/Securite/antivirus-antitrojan/fiches/13198.html

tuto pour le configurer ; https://www.malekal.com/avira-free-security-antivirus-gratuit/

antivir est beaucoup plus léger que avast on verra ce que ça donne

Sinon defragmente tu ton ordi ? si non fais une défragmentation
0
YALANG Messages postés 39 Statut Membre
 
Pour répondre à ta question, oui je défragmentes.

J'ai fait un scan avec antivir, voilà le rapport :



Avira AntiVir Personal
Report file date: jeudi 19 juin 2008 19:44

Scanning for 1348509 virus strains and unwanted programs.

Licensed to: Avira AntiVir PersonalEdition Classic
Serial number: 0000149996-ADJIE-0001
Platform: Windows XP
Windows version: (Service Pack 2) [5.1.2600]
Boot mode: Save mode
Username: yann
Computer name: YANNIG

Version information:
BUILD.DAT : 8.1.00.295 16479 Bytes 09/04/2008 16:24:00
AVSCAN.EXE : 8.1.2.12 311553 Bytes 18/03/2008 09:02:56
AVSCAN.DLL : 8.1.1.0 53505 Bytes 07/02/2008 08:43:37
LUKE.DLL : 8.1.2.9 151809 Bytes 28/02/2008 08:41:23
LUKERES.DLL : 8.1.2.1 12033 Bytes 21/02/2008 08:28:40
ANTIVIR0.VDF : 6.40.0.0 11030528 Bytes 18/07/2007 10:33:34
ANTIVIR1.VDF : 7.0.3.2 5447168 Bytes 07/03/2008 13:08:58
ANTIVIR2.VDF : 7.0.4.195 2546176 Bytes 14/06/2008 17:35:28
ANTIVIR3.VDF : 7.0.4.224 226816 Bytes 19/06/2008 17:35:31
Engineversion : 8.1.0.55
AEVDF.DLL : 8.1.0.5 102772 Bytes 25/02/2008 09:58:21
AESCRIPT.DLL : 8.1.0.40 266618 Bytes 19/06/2008 17:35:48
AESCN.DLL : 8.1.0.21 119156 Bytes 19/06/2008 17:35:47
AERDL.DLL : 8.1.0.20 418165 Bytes 19/06/2008 17:35:45
AEPACK.DLL : 8.1.1.5 364918 Bytes 19/06/2008 17:35:44
AEOFFICE.DLL : 8.1.0.18 192890 Bytes 19/06/2008 17:35:42
AEHEUR.DLL : 8.1.0.30 1253750 Bytes 19/06/2008 17:35:41
AEHELP.DLL : 8.1.0.15 115063 Bytes 19/06/2008 17:35:38
AEGEN.DLL : 8.1.0.28 307572 Bytes 19/06/2008 17:35:37
AEEMU.DLL : 8.1.0.6 430451 Bytes 19/06/2008 17:35:34
AECORE.DLL : 8.1.0.31 168310 Bytes 19/06/2008 17:35:32
AVWINLL.DLL : 1.0.0.7 14593 Bytes 23/01/2008 17:07:53
AVPREF.DLL : 8.0.0.1 25857 Bytes 18/02/2008 10:37:50
AVREP.DLL : 7.0.0.1 155688 Bytes 16/04/2007 13:26:47
AVREG.DLL : 8.0.0.0 30977 Bytes 23/01/2008 17:07:49
AVARKT.DLL : 1.0.0.23 307457 Bytes 12/02/2008 08:29:23
AVEVTLOG.DLL : 8.0.0.11 114945 Bytes 28/02/2008 08:31:31
SQLITE3.DLL : 3.3.17.1 339968 Bytes 22/01/2008 17:28:02
SMTPLIB.DLL : 1.2.0.19 28929 Bytes 23/01/2008 17:08:39
NETNT.DLL : 8.0.0.1 7937 Bytes 25/01/2008 12:05:10
RCIMAGE.DLL : 8.0.0.35 2371841 Bytes 10/03/2008 14:37:25
RCTEXT.DLL : 8.0.32.0 86273 Bytes 06/03/2008 12:02:11

Configuration settings for the scan:
Jobname..........................: Local Drives
Configuration file...............: c:\program files\avira\antivir personaledition classic\alldrives.avp
Logging..........................: low
Primary action...................: interactive
Secondary action.................: ignore
Scan master boot sector..........: on
Scan boot sector.................: on
Boot sectors.....................: C:, D:,
Scan memory......................: on
Process scan.....................: on
Scan registry....................: on
Search for rootkits..............: off
Scan all files...................: Intelligent file selection
Scan archives....................: on
Recursion depth..................: 20
Smart extensions.................: on
Macro heuristic..................: on
File heuristic...................: medium

Start of the scan: jeudi 19 juin 2008 19:44

The scan of running processes will be started
Scan process 'avscan.exe' - '1' Module(s) have been scanned
Scan process 'avcenter.exe' - '1' Module(s) have been scanned
Scan process 'explorer.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'lsass.exe' - '1' Module(s) have been scanned
Scan process 'services.exe' - '1' Module(s) have been scanned
Scan process 'winlogon.exe' - '1' Module(s) have been scanned
Scan process 'csrss.exe' - '1' Module(s) have been scanned
Scan process 'smss.exe' - '1' Module(s) have been scanned
10 processes with 10 modules were scanned

Starting master boot sector scan:
Master boot sector HD0
[INFO] No virus was found!

Start scanning boot sectors:
Boot sector 'C:\'
[INFO] No virus was found!

Starting to scan the registry.
The registry was scanned ( '34' files ).


Starting the file scan:

Begin scan in 'C:\'
C:\pagefile.sys
[WARNING] The file could not be opened!
C:\Documents and Settings\yann\Bureau\yannig\logiciels\(ES) DFX 8\install\RealPlayer RealOne\keygen\Key.exe
[DETECTION] Is the Trojan horse TR/Small.142336.B
[NOTE] The file was moved to '48d39ec5.qua'!
C:\Documents and Settings\yann\Bureau\yannig\logiciels\(ES) DFX 8\install\Windows Media Player\keygen\Key.exe
[DETECTION] Is the Trojan horse TR/Small.142336.C
[NOTE] The file was moved to '48d39eca.qua'!
C:\QooBox\Quarantine\catchme2008-05-30_225430,34.zip
[0] Archive type: ZIP
--> jkkjh.dll
[DETECTION] Is the Trojan horse TR/Vundo.Gen
--> khfefda.dll
[DETECTION] Is the Trojan horse TR/Vundo.Gen
[NOTE] The file was moved to '48ceb4e2.qua'!
C:\QooBox\Quarantine\C\WINDOWS\system32\aylnriha.dll.vir
[DETECTION] Is the Trojan horse TR/Vundo.Gen
[NOTE] The file was moved to '48c6b4fe.qua'!
C:\QooBox\Quarantine\C\WINDOWS\system32\cqjafnnf.exe.vir
[DETECTION] Is the Trojan horse TR/Lowzones.SG
[NOTE] The file was moved to '48c4b4f8.qua'!
C:\QooBox\Quarantine\C\WINDOWS\system32\exevlcem.exe.vir
[DETECTION] Is the Trojan horse TR/Lowzones.SG
[NOTE] The file was moved to '48bfb502.qua'!
C:\QooBox\Quarantine\C\WINDOWS\system32\jkkjh.dll.vir
[DETECTION] Is the Trojan horse TR/Trash.Gen
[NOTE] The file was moved to '48c5b4f8.qua'!
C:\QooBox\Quarantine\C\WINDOWS\system32\khfefda.dll.vir
[DETECTION] Is the Trojan horse TR/Trash.Gen
[NOTE] The file was moved to '48c0b4f8.qua'!
C:\QooBox\Quarantine\C\WINDOWS\system32\nutlcojr.dll.vir
[DETECTION] Is the Trojan horse TR/Monder.MA
[NOTE] The file was moved to '48ceb507.qua'!
C:\QooBox\Quarantine\C\WINDOWS\system32\ptwhmtrp.dll.vir
[DETECTION] Is the Trojan horse TR/Vundo.Gen
[NOTE] The file was moved to '48d1b508.qua'!
C:\QooBox\Quarantine\C\WINDOWS\system32\ruhurxti.dll.vir
[DETECTION] Is the Trojan horse TR/Monder.LH
[NOTE] The file was moved to '48c2b50c.qua'!
C:\QooBox\Quarantine\C\WINDOWS\system32\sjaqhbnh.exe.vir
[DETECTION] Is the Trojan horse TR/Lowzones.SG
[NOTE] The file was moved to '48bbb503.qua'!
C:\QooBox\Quarantine\C\WINDOWS\system32\xcjltlmv.dll.vir
[DETECTION] Is the Trojan horse TR/Vundo.HB
[NOTE] TR/Vundo.HB:[HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN]:<DLCFCATS>=sz:
[NOTE] TR/Vundo.HB:[HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN]:<SigmatelSysTrayApp>=sz:
[NOTE] TR/Vundo.HB:[HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN]:<ISUSPM Startup>=sz:
[NOTE] TR/Vundo.HB:[HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN]:<IntelWireless>=sz:
[NOTE] TR/Vundo.HB:[HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN]:<dla>=sz:
[NOTE] TR/Vundo.HB:[HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN]:<NvCplDaemon>=sz:
[NOTE] TR/Vundo.HB:[HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN]:<NVHotkey>=sz:
[NOTE] TR/Vundo.HB:[HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN]:<NvMediaCenter>=sz:
[NOTE] TR/Vundo.HB:[HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN]:<avgnt>=sz:
[NOTE] The file was moved to '48c4b4fe.qua'!
C:\QooBox\Quarantine\C\WINDOWS\system32\xofqdqdh.dll.vir
[DETECTION] Is the Trojan horse TR/Monder.LO
[NOTE] The file was deleted!
C:\WINDOWS\system32\drivers\sptd.sys
[WARNING] The file could not be opened!
Begin scan in 'D:\'
Search path D:\ could not be opened!
Le périphérique n'est pas prêt.



End of the scan: jeudi 19 juin 2008 22:11
Used time: 2:26:51 min

The scan has been done completely.

6697 Scanning directories
434299 Files were scanned
15 viruses and/or unwanted programs were found
0 Files were classified as suspicious:
1 files were deleted
0 files were repaired
13 files were moved to quarantine
0 files were renamed
2 Files cannot be scanned
434284 Files not concerned
7299 Archives were scanned
2 Warnings
14 Notes


Dois-je supprimer ou laisser en qurantaine ?
Mon ordi es toujours aussi lent.


Par ailleurs, je suis sur wampoker es-ce ça un boonty ?
0
Utilisateur anonyme
 
Bonsoir,
Peux tu supprimer ces keygens s'il te plait ^^
C:\Documents and Settings\yann\Bureau\yannig\logiciels\(ES) DFX 8\install\RealPlayer RealOne\keygen\Key.exe
C:\Documents and Settings\yann\Bureau\yannig\logiciels\(ES) DFX 8\install\Windows Media Player\keygen\Key.exe

Comme tu as pu le voir se sont principalement les fichiers cracké, keygen, etc qui entraine une infection :)

Ensuite relance un scan avec MBAM parsqu'il reste des traces de vundo. Pense à bien supprimé à la fin.

tutoriel en image :D

https://forum.pcastuces.com/malwarebytes_antimalwares___tutoriel-f31s3.htm

-----------------

En ce qui concerne Bonnty je ne croit pas

------------------

SInon supprime ce qu'il y a en quarantaine.
0
YALANG Messages postés 39 Statut Membre
 
désolé je ne trouve pas ces fichiers à partir de l'explorateur
0
YALANG Messages postés 39 Statut Membre
 
et je relance MBAM en mode sans echecs je suppose ?
0
YALANG Messages postés 39 Statut Membre
 
Du coup j'ai supprimé les fichiers keygen dans Realplayer one et dans windows...

Je lance MBAM

A plus tard et encore merci
0
YALANG Messages postés 39 Statut Membre
 
Voilà le rapport de MBAM :

Malwarebytes' Anti-Malware 1.17
Version de la base de données: 857

03:57:00 20/06/2008
mbam-log-6-20-2008 (03-57-00).txt

Type de recherche: Examen complet (C:\|)
Eléments examinés: 101789
Temps écoulé: 2 hour(s), 30 minute(s), 21 second(s)

Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 0
Valeur(s) du Registre infectée(s): 0
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 0

Processus mémoire infecté(s):
(Aucun élément nuisible détecté)

Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)

Clé(s) du Registre infectée(s):
(Aucun élément nuisible détecté)

Valeur(s) du Registre infectée(s):
(Aucun élément nuisible détecté)

Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)

Dossier(s) infecté(s):
(Aucun élément nuisible détecté)

Fichier(s) infecté(s):
(Aucun élément nuisible détecté)

A priori il n'y a plus rien, mais mon ordi rame toujours autant au démarrage et j'ai perdu des éléments de démarrage.
0
Utilisateur anonyme
 
Télécharge Clean.zip de Malekal.

Comment l'utiliser : http://mickael.barroux.free.fr/securite/clean.php
https://www.malekal.com/supprimer-virus-desinfecter-pc/#mozTocId711944

Dézippe-le sur ton bureau (clic droit / extraire tout), tu dois obtenir un dossier clean.
Ouvre le dossier clean qui se trouve sur ton bureau, et double-clic sur clean.cmd
une fenêtre noire va apparaître pendant un instant, laisse la ouverte.
Choisis l'option 1 puis patiente
Poste le rapport obtenu

S’il te demande d’uploader un fichier, tu le fais…
pour retrouver le rapport : double clique sur => C => double clique sur " rapport_clean txt.
et copie/colle le sur ta prochaine réponse .

puis repost un rapport hijack aussi.

quel élément as tu perdu ?

peux tu me donner la configuration matériel de ton ordi (processeur, ram, espace libre)
0
YALANG Messages postés 39 Statut Membre
 
Rapoort de clean :

20/06/2008 a 10:28:27,32

*** Recherche des fichiers dans C:

*** Recherche des fichiers dans C:\WINDOWS\

*** Recherche des fichiers dans C:\WINDOWS\system32

*** Recherche des fichiers dans C:\Program Files
"C:\Program Files\PokerStars\" FOUND
*** Fin du rapport !


Rapport de hijack :

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 10:28:13, on 20/06/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\DRIVERS\CDANTSRV.EXE
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\PSIService.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe
C:\WINDOWS\ehome\ehtray.exe
C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe
C:\PROGRA~1\DELLSU~1\DSAgnt.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\eHome\ehmsas.exe
C:\Program Files\Fichiers communs\Teleca Shared\Generic.exe
C:\Program Files\Sony Ericsson\Mobile2\Mobile Phone Monitor\epmworker.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\notepad.exe
C:\Documents and Settings\yann\Bureau\HiJackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet
O4 - HKLM\..\Run: [Sony Ericsson PC Suite] "C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" /startoptions
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKCU\..\Run: [DellSupport] "C:\PROGRA~1\DELLSU~1\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Envoyer au périphérique &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O9 - Extra button: PokerStars - -{3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files\PokerStars\PokerStarsUpdate.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
O15 - Trusted Zone: http://*.mcafee.com
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} - http://download.mcafee.com/molbin/shared/mcinsctl/4,0,0,101/mcinsctl.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O23 - Service: Avira AntiVir Personal – Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: Avira AntiVir Personal – Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: C-DillaSrv - C-Dilla Ltd - C:\WINDOWS\system32\DRIVERS\CDANTSRV.EXE
O23 - Service: dlcf_device - - C:\WINDOWS\system32\dlcfcoms.exe
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Advanced Networking Service (hnmsvc) - SingleClick Systems - C:\Program Files\Dell Network Assistant\hnm_svc.exe
O23 - Service: Service de l'iPod (iPod Service) - Unknown owner - C:\Program Files\iPod\bin\iPodService.exe (file missing)
O23 - Service: McAfee Real-time Scanner (McShield) - Unknown owner - C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe (file missing)
O23 - Service: McAfee SystemGuards (McSysmon) - Unknown owner - C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe (file missing)
O23 - Service: NICCONFIGSVC - Dell Inc. - C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: ProtexisLicensing - Unknown owner - C:\WINDOWS\system32\PSIService.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Intel(R) PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: Intel(R) PROSet/Wireless SSO Service (WLANKEEPER) - Intel(R) Corporation - C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
0
Utilisateur anonyme
 
Bonjour ok c'est pas normal.

après avoir nettoyer avec clean (ci dessous)

télécharge tune up puis effectue toute les options et donne moi des nouvelles :)

https://www.01net.com/telecharger/windows/Utilitaire/optimiseurs_et_tests/fiches/26913.html

NETTOYAGE :

1) Redémarre en mode sans échec

Au redémarrage de l'ordinateur, une fois le chargement du BIOS terminé, il y a un écran noir qui apparaît rapidement, appuyer sur la touche [F8] ou [F5] jusqu'à l'affichage du menu des options avancées de Windows.
Sélectionner "Mode sans échec" et appuyer sur [Entrée]
Il te faudra choisir ta session habituelle, pas le compte "Administrateur" ou une autre.

2) Cleanzip

_ Ouvre le dossier Clean qui se trouve sur ton bureau.
_ Double-clique sur clean.cmd.
Une fenêtre noire va apparaître,

choisis l'option 2.
Clean va maintenant supprimer les fichiers infectés,

3) Rapport
_ Appuis sur la touche ENTREE du clavier pour ouvrir le rapport. tu l'enregistrer si besoin.
(menu Edition / Enregistrer sous).
Sans quoi le rapport sera quand même sauvegardé dans le fichier suivant :
"rapport_clean.txt" à la racine de votre disque dur (ex : C:\rapport_clean.txt).

Comment faire :Tuto
http://mickael.barroux.free.fr/securite/clean.php

Redémarre en mode normal et poste le rapport qui se trouve ici C:\rapport_clean.txt et un nouvel HJT's stp !
0
YALANG Messages postés 39 Statut Membre
 
Désolé de ne pas avoir répondu plus rapidement, mais je passe un concours en ce moment.

De plus j'ai utilisé tune up qui a réglé pas mal de problèmes, mais la defrag ne fonctionne pas, elle bloque très rapidement.

Promis dans mon prochain post, j'envoie le rapport de cleanzip.

Merci encore.
0
YALANG Messages postés 39 Statut Membre
 
voilà les deux rapports :

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 14:25:21, on 25/06/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
C:\WINDOWS\system32\DRIVERS\CDANTSRV.EXE
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Dell Network Assistant\hnm_svc.exe
C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\PSIService.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe
C:\WINDOWS\ehome\ehtray.exe
C:\PROGRA~1\DELLSU~1\DSAgnt.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avcenter.exe
C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\update.exe
C:\WINDOWS\eHome\ehmsas.exe
C:\Documents and Settings\yann\Bureau\HiJackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet
O4 - HKCU\..\Run: [DellSupport] "C:\PROGRA~1\DELLSU~1\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [Antivirus Control Center] C:\Program Files\Avira\AntiVir PersonalEdition Classic\avcenter.exe
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Envoyer au périphérique &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O9 - Extra button: PokerStars - -{3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files\PokerStars\PokerStarsUpdate.exe (file missing)
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
O15 - Trusted Zone: http://*.mcafee.com
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} - http://download.mcafee.com/molbin/shared/mcinsctl/4,0,0,101/mcinsctl.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O23 - Service: Avira AntiVir Personal – Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: Avira AntiVir Personal – Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: C-DillaSrv - C-Dilla Ltd - C:\WINDOWS\system32\DRIVERS\CDANTSRV.EXE
O23 - Service: dlcf_device - - C:\WINDOWS\system32\dlcfcoms.exe
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Advanced Networking Service (hnmsvc) - SingleClick Systems - C:\Program Files\Dell Network Assistant\hnm_svc.exe
O23 - Service: Service de l'iPod (iPod Service) - Unknown owner - C:\Program Files\iPod\bin\iPodService.exe (file missing)
O23 - Service: McAfee Real-time Scanner (McShield) - Unknown owner - C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe (file missing)
O23 - Service: McAfee SystemGuards (McSysmon) - Unknown owner - C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe (file missing)
O23 - Service: NICCONFIGSVC - Dell Inc. - C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: ProtexisLicensing - Unknown owner - C:\WINDOWS\system32\PSIService.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Intel(R) PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - C:\WINDOWS\System32\TuneUpDefragService.exe
O23 - Service: Intel(R) PROSet/Wireless SSO Service (WLANKEEPER) - Intel(R) Corporation - C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
0
Utilisateur anonyme
 
Salut
il reste des traces de mcafee fais ceci :

Désinstallation manuelle de VirusScan

Veuillez suivre les instructions ci-dessous pour exécuter l'outil de suppression de VirusScan. Cette action supprimera complètement VirusScan de votre ordinateur.

1. Téléchargez le fichier VSCleanupTool.exe sur votre bureau.
2. Localisez le fichier VSCleanupTool.exe sur votre bureau et cliquez deux fois dessus pour l'exécuter.
3. L'outil de suppression planifiera et affichera l'heure du lancement de la désinstallation.
Remarque : l'heure affichée doit être dans les une minute de l'heure système actuelle affichée dans le coin inférieur droit de l'écran.
4. La suppression commencera à l'heure affichée.
5. Pendant ce processus, plusieurs icônes seront créées sur votre bureau. A l'exception d'une seule, toutes ces icônes seront supprimées au terme de la désinstallation et l'ordinateur sera redémarré. Le fichier mccleanup.log restera sur votre bureau. Après avoir établi la réussite de la désinstallation, vous pourrez supprimer ce fichier.
6. Au terme de l'opération, le message suivant sera affiché : L'ordinateur doit être redémarré pour conclure la désinstallation. Souhaitez-vous redémarrer maintenant ?
7. Appuyez sur la touche "O" de votre clavier pour redémarrer l'ordinateur et terminer la désinstallation.

Si VirusScan est le seul service McAfee installé sur votre ordinateur, désinstallez SecurityCenter.

--------------------------

Ensuite comment ce porte ton ordi ?
0
YALANG Messages postés 39 Statut Membre
 
MCAFEE PRODUCT CLEANUP TOOL
June 29, 2008 18:47:53
INFO Product mcvs to be removed from system.
INFO Task Scheduler service started.
PASS Command line command successful
INFO Cleanup should start at 18:48.

MCAFEE PRODUCT CLEANUP TOOL
June 29, 2008 18:48:00
INFO Cleanup is being run as scheduled task.
INFO Product mcvs to be removed from system.
INFO Removing product mcvs...
INFO Removing files...
PASS C:\Program Files\McAfee.com\VSO\ediskimg.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\804mbd1.chk does not exist
PASS C:\Program Files\McAfee.com\VSO\804mbd1.IMG does not exist
PASS C:\Program Files\McAfee.com\VSO\ediskimg.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\804mbd1.chk does not exist
PASS C:\Program Files\McAfee.com\VSO\804mbd1.IMG does not exist
PASS C:\Program Files\McAfee.com\Shared\mccomctl.dll does not exist
PASS C:\Program Files\McAfee.com\Shared\mccomctl.inf does not exist
PASS C:\Program Files\McAfee.com\Shared\mccomctl.dll does not exist
PASS C:\Program Files\McAfee.com\Shared\mccomctl.inf does not exist
PASS C:\Documents and Settings\yann\Bureau\McAfee.com Scan For Viruses.lnk does not exist
PASS C:\Documents and Settings\yann\Bureau\McAfee ±½´y¯f¬r.lnk does not exist
PASS C:\Documents and Settings\yann\Bureau\McAfee Auf Viren überprüfen.lnk does not exist
PASS C:\Documents and Settings\yann\Bureau\McAfee Scan.lnk does not exist
PASS C:\Documents and Settings\yann\Bureau\McAfee Scan For Viruses.lnk does not exist
PASS C:\Documents and Settings\yann\Bureau\McAfee Detectar virus does not exist
PASS C:\Documents and Settings\yann\Bureau\McAfee Analyse antivirus does not exist
PASS C:\Documents and Settings\yann\Bureau\McAfee Ricerca virus does not exist
PASS C:\Documents and Settings\yann\Bureau\McAfee ƒEƒCƒ‹ƒX‚̃XƒLƒƒƒ“.lnk does not exist
PASS C:\Documents and Settings\yann\Bureau\McAfee ƒEƒCƒ‹ƒX ƒXƒLƒƒƒ“.lnk does not exist
PASS C:\Documents and Settings\yann\Bureau\McAfee Scannen op virussen does not exist
PASS C:\Documents and Settings\yann\Bureau\McAfee Verificar a Existência de Vírus does not exist
PASS C:\Documents and Settings\All Users\Bureau\McAfee.com Scan For Viruses.lnk does not exist
PASS C:\Documents and Settings\All Users\Bureau\McAfee ±½´y¯f¬r.lnk does not exist
PASS C:\Documents and Settings\All Users\Bureau\McAfee Auf Viren überprüfen.lnk does not exist
PASS C:\Documents and Settings\All Users\Bureau\McAfee Scan.lnk does not exist
PASS C:\Documents and Settings\All Users\Bureau\McAfee Scan For Viruses.lnk does not exist
PASS C:\Documents and Settings\All Users\Bureau\McAfee Detectar virus does not exist
PASS C:\Documents and Settings\All Users\Bureau\McAfee Analyse antivirus does not exist
PASS C:\Documents and Settings\All Users\Bureau\McAfee Ricerca virus does not exist
PASS C:\Documents and Settings\All Users\Bureau\McAfee ƒEƒCƒ‹ƒX‚̃XƒLƒƒƒ“.lnk does not exist
PASS C:\Documents and Settings\All Users\Bureau\McAfee ƒEƒCƒ‹ƒX ƒXƒLƒƒƒ“.lnk does not exist
PASS C:\Documents and Settings\All Users\Bureau\McAfee Scannen op virussen does not exist
PASS C:\Documents and Settings\All Users\Bureau\McAfee Verificar a Existência de Vírus does not exist
PASS C:\Documents and Settings\yann\Modèles\McAfee\McAfee VirusScan does not exist
PASS C:\Documents and Settings\All Users\Menu Démarrer\Programmes\McAfee\McAfee VirusScan does not exist
PASS C:\Program Files\McAfee.com\VSO\unicows.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\redist.txt does not exist
PASS C:\Program Files\McAfee.com\VSO\license.txt does not exist
PASS C:\Program Files\McAfee.com\VSO\oasres.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\emscnres.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\emlscres.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\McVSEscn.exe does not exist
PASS C:\Program Files\McAfee.com\VSO\McVSSkt.Dll does not exist
PASS C:\Program Files\McAfee.com\VSO\emlscbin.inf%PROGRAMFILES%\McAfee.com\VSO\emlscbin.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\emlscres.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\emscnres.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\license.txt does not exist
PASS C:\Program Files\McAfee.com\VSO\McVSEscn.exe does not exist
PASS C:\Program Files\McAfee.com\VSO\McVSSkt.Dll does not exist
PASS C:\Program Files\McAfee.com\VSO\naiavf5x.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\redist.txt does not exist
PASS C:\Program Files\McAfee.com\VSO\unicows.dll%PROGRAMFILES%\McAfee.com\VSO\emscnres.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\emlscres.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\McVSEscn.exe does not exist
PASS C:\Program Files\McAfee.com\VSO\McVSSkt.Dll does not exist
PASS C:\Program Files\McAfee.com\VSO\emlscbin.inf%PROGRAMFILES%\McAfee.com\VSO\emlscbin.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\emlscres.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\emscnres.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\McVSEscn.exe does not exist
PASS C:\Program Files\McAfee.com\VSO\McVSSkt.Dll%WINDIR%\system32\drivers\naiavf5x.sys%WINDIR%\system32\drivers\NaiFiltr.sys;[DefaultUninstall] does not exist
PASS C:\Program Files\Mcafee.com\VSO\mcscan32.dll does not exist
PASS C:\Program Files\Mcafee.com\VSO\vsoeng.inf does not exist
PASS C:\Program Files\Mcafee.com\VSO\signlic.txt does not exist
PASS C:\WINDOWS\system\MCSCAN32.VXD does not exist
PASS C:\Program Files\Mcafee.com\VSO\RWABS16.DLL does not exist
PASS C:\Program Files\Mcafee.com\VSO\RWABS32.DLL does not exist
PASS C:\Program Files\Mcafee.com\VSO\mcscan32.dll does not exist
PASS C:\Program Files\Mcafee.com\VSO\vsoeng.inf does not exist
PASS C:\Program Files\Mcafee.com\VSO\signlic.txt does not exist
PASS C:\Program Files\McAfee.com\VSO\mcscan32.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\vsoeng.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\signlic.txt does not exist
PASS C:\WINDOWS\system\MCSCAN32.VXD does not exist
PASS C:\Program Files\McAfee.com\VSO\mcscan32.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\vsoeng.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\signlic.txt does not exist
PASS C:\Program Files\McAfee.com\VSO\mytilus.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\oasbin.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\vsengver.dll does not exist
PASS C:\WINDOWS\system\vshinit.vxd does not exist
PASS C:\WINDOWS\system\vshield.vxd does not exist
PASS C:\WINDOWS\system\mcutil.vxd does not exist
PASS C:\WINDOWS\system\mckrnl.vxd does not exist
PASS C:\Program Files\McAfee.com\VSO\mytilus.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\oasbin.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\vsengver.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\naiavfin.exe does not exist
PASS C:\Program Files\McAfee.com\VSO\naiavf5a.sys does not exist
PASS C:\Program Files\McAfee.com\VSO\naiavf5i.sys does not exist
PASS C:\Program Files\McAfee.com\VSO\naiavf5x.sys does not exist
PASS C:\Program Files\McAfee.com\VSO\naiavf5x.cat does not exist
PASS C:\Program Files\McAfee.com\VSO\McShield.exe does not exist
PASS C:\Program Files\McAfee.com\VSO\ftl.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\oasbin.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\vsengver.dll does not exist
PASS C:\WINDOWS\system\vshinit.vxd does not exist
PASS C:\WINDOWS\system\vshield.vxd does not exist
PASS C:\WINDOWS\system\mcutil.vxd does not exist
PASS C:\WINDOWS\system\mckrnl.vxd does not exist
PASS C:\Program Files\McAfee.com\VSO\client9x.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\oasbin.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\vsengver.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\McShield.exe does not exist
PASS C:\Program Files\McAfee.com\VSO\naiann.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\ntclient.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\ScanServ.dll does not exist
PASS C:\WINDOWS\system32\drivers\NaiFsRec.sys does not exist
PASS C:\WINDOWS\system32\drivers\NaiFiltr.sys does not exist
PASS C:\Program Files\McAfee.com\VSO\NaiFiltr.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\Naifiltr.cat does not exist
PASS C:\Program Files\McAfee.com\VSO\McShield.exe does not exist
PASS C:\Program Files\McAfee.com\VSO\naiann.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\ntclient.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\ScanServ.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\oasres.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\Res00\McShield.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\NAIEvent.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\oasres.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\NaiEvent.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\Res00\McShield.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\Res09\McShield.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\Res11\McShield.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\naiann.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\naiannps.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\mcvsps.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\oasclnt.exe does not exist
PASS C:\Program Files\McAfee.com\VSO\mcvsshld.exe does not exist
PASS C:\Program Files\McAfee.com\VSO\mcvsctl.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\edisk.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\vsoupd.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\mcmnhdlr.exe does not exist
PASS C:\Program Files\McAfee.com\VSO\mcvsmap.exe does not exist
PASS C:\Program Files\McAfee.com\VSO\mcavtsub.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\mcvsdiag.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\vso.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\mcshld9x.exe does not exist
PASS C:\Program Files\McAfee.com\VSO\naiann.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\naiannps.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\mcvsps.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\oasclnt.exe does not exist
PASS C:\Program Files\McAfee.com\VSO\mcvsshld.exe does not exist
PASS C:\Program Files\McAfee.com\VSO\mcvsctl.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\edisk.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\vsoupd.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\mcmnhdlr.exe does not exist
PASS C:\Program Files\McAfee.com\VSO\mcvsmap.exe does not exist
PASS C:\Program Files\McAfee.com\VSO\mcavtsub.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\mcvsdiag.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\vso.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\mcvsrte.exe does not exist
PASS C:\Program Files\McAfee.com\VSO\mcvsshld.exe does not exist
PASS C:\Program Files\McAfee.com\VSO\mcvsctl.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\edisk.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\vsoupd.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\mcmnhdlr.exe does not exist
PASS C:\Program Files\McAfee.com\VSO\mcvsmap.exe does not exist
PASS C:\Program Files\McAfee.com\VSO\mcurial.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\PATCHW32.DLL does not exist
PASS C:\Program Files\McAfee.com\VSO\vso.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\mcavtsub.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\scan.dat does not exist
PASS C:\Program Files\McAfee.com\VSO\extra.dat does not exist
PASS C:\Program Files\McAfee.com\VSO\Names.dat does not exist
PASS C:\Program Files\McAfee.com\VSO\clean.dat does not exist
PASS C:\Program Files\McAfee.com\VSO\vsodat.inf does not exist
PASS C:\Program Files\McAfee.com\Agent\uninst\vsoremui.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\vsocfg.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\ashldres.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\vsoui.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\mvsuicfg.dat does not exist
PASS C:\Program Files\McAfee.com\VSO\config.ini does not exist
PASS C:\Program Files\McAfee.com\VSO\vsezres.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\vsez.adf does not exist
PASS C:\Program Files\McAfee.com\VSO\mcvso.ui does not exist
PASS C:\Program Files\McAfee.com\VSO\vsoagnt.ui does not exist
PASS C:\Program Files\McAfee.com\Agent\uninst\vsorem.ui does not exist
PASS C:\Program Files\McAfee.com\VSO\config.ini does not exist
PASS C:\Program Files\McAfee.com\VSO\vsezres.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\vsez.adf does not exist
PASS C:\Program Files\McAfee.com\VSO\mcvso.ui does not exist
PASS C:\Program Files\McAfee.com\VSO\vsoagnt.ui does not exist
PASS C:\Program Files\McAfee.com\Agent\uninst\vsorem.ui does not exist
PASS C:\Program Files\McAfee.com\VSO\vsocfg.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\ashldres.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\vsoui.dll does not exist
PASS C:\Program Files\McAfee.com\Agent\uninst\vsoremui.dll does not exist
PASS C:\Program Files\McAfee.com\Agent\app\vso.adf does not exist
PASS C:\Program Files\McAfee.com\VSO\vscfgui.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\vsowow.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\vso.chm does not exist
PASS C:\Program Files\McAfee.com\VSO\readme.txt does not exist
PASS C:\Program Files\McAfee.com\VSO\vscfgui.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\vscfgw32.dll does not exist
PASS C:\Program Files\McAfee.com\Agent\uninst\vscfgui.dll does not exist
PASS C:\Program Files\McAfee.com\Agent\app\vso.adf does not exist
PASS C:\Program Files\McAfee.com\VSO\vscfgui.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\vsowow.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\vso.chm does not exist
PASS C:\Program Files\McAfee.com\VSO\readme.txt does not exist
PASS C:\Program Files\McAfee.com\VSO\vscfgui.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\vscfgw32.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\vsagntui.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\vsagntui.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\vsagntui.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\vsagntui.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\mcinsupd.exe does not exist
PASS C:\Program Files\McAfee.com\VSO\mcinsupd.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\mcurial.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\PATCHW32.DLL does not exist
PASS C:\Program Files\McAfee.com\VSO\outscan.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\vsolplg.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\vsolui.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\oscnbin.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\outscan.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\oscnbin.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\outscres.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\oscnres.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\outscres.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\oscnres.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\mcvsftsn.exe does not exist
PASS C:\Program Files\McAfee.com\VSO\imscnbin.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\mcvsftsn.exe does not exist
PASS C:\Program Files\McAfee.com\VSO\imscnbin.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\ftscnres.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\appinit.ini does not exist
PASS C:\Program Files\McAfee.com\VSO\imscnres.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\ftscnres.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\appinit.ini does not exist
PASS C:\Program Files\McAfee.com\VSO\imscnres.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\mcvsscrp.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\scrpsbin.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\mcvsscrp.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\scrpsbin.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\scrpres.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\scrstres.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\scrpres.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\scrstres.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\wormres.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\wrmstres.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\wormres.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\wrmstres.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\mcvsworm.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\wrmstbin.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\mcvsworm.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\wrmstbin.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\shlres.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\shextres.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\shlres.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\shextres.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\mcvsshl.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\shextbin.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\mcvsshl.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\shextbin.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\emscnres.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\emlscres.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\emscnres.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\emlscres.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\McVSEscn.exe does not exist
PASS C:\Program Files\McAfee.com\VSO\McVSSkt.Dll does not exist
PASS C:\Program Files\McAfee.com\VSO\emlscbin.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\McVSEscn.exe does not exist
PASS C:\Program Files\McAfee.com\VSO\McVSSkt.Dll does not exist
PASS C:\Program Files\McAfee.com\VSO\emlscbin.inf does not exist
INFO Removing registry keys...
PASS HKCR\Mccomctl.McDrives.1 does not exist
PASS HKCR\Mccomctl.McDrives does not exist
PASS HKCR\CLSID\{28E74E8D-7B99-4486-AE32-11B67F93B54B} does not exist
PASS HKCR\McComCtlLib.ListView.1 does not exist
PASS HKCR\McComCtlLib.ListView does not exist
PASS HKCR\CLSID\{B02F4EEB-78D3-414D-8814-7E88F4828C28} does not exist
PASS HKCR\McComCtlLib.ListItem.1 does not exist
PASS HKCR\McComCtlLib.ListItem does not exist
PASS HKCR\CLSID\{21DB24D5-9DD7-4F6F-993A-5FB0980EC5DB} does not exist
PASS HKCR\McComCtlLib.ListItems.1 does not exist
PASS HKCR\McComCtlLib.ListItems does not exist
PASS HKCR\CLSID\{3ED232B4-0346-4A74-A883-B85B69ADA6A4} does not exist
PASS HKCR\McComCtlLib.ColumnHeader.1 does not exist
PASS HKCR\McComCtlLib.ColumnHeader does not exist
PASS HKCR\CLSID\{C657669A-754D-4E13-BB96-B7269F2078F0} does not exist
PASS HKCR\McComCtlLib.ColumnHeaders.1 does not exist
PASS HKCR\McComCtlLib.ColumnHeaders does not exist
PASS HKCR\CLSID\{BF4C25B5-CD0A-4770-B2F5-750A4407957F} does not exist
PASS HKCR\McComCtlLib.ListItemsEnum.1 does not exist
PASS HKCR\McComCtlLib.ListItemsEnum does not exist
PASS HKCR\CLSID\{78D0C657-22F0-4E19-A34A-757B14A30344} does not exist
PASS HKCR\McComCtlLib.CheckedItems.1 does not exist
PASS HKCR\McComCtlLib.CheckedItems does not exist
PASS HKCR\CLSID\{0025F2F6-5458-478E-997C-76BBB056B3D6} does not exist
PASS HKCR\TypeLib\{6883B133-1B30-45E1-842F-B8670389559D} does not exist
PASS HKCR\Interface\{E4FB5840-B8F7-4F93-9760-FAD9327FF7BD} does not exist
PASS HKCR\Interface\{C5CDA713-B707-4F57-B9FA-CA0260B3CD26} does not exist
PASS HKCR\Interface\{2F9F27BF-E312-4FB4-A40D-BB132AFC9B19} does not exist
PASS HKCR\Interface\{7AD4839A-8823-4609-9112-CC8BA32E784B} does not exist
PASS HKCR\Interface\{DACD5044-3A96-49B2-8CB6-67FE1BE4FE01} does not exist
PASS HKCR\Interface\{15BA3DBA-E8F3-4C46-B362-871CF2E519D0} does not exist
PASS HKCR\Interface\{AA50CEBD-A503-4A3A-AAA9-DF6692792030} does not exist
PASS HKCR\Interface\{B3CF9F69-D365-4502-BA10-7123BB677F1A} does not exist
PASS HKCR\Interface\{9749CEC5-FD85-470F-9500-4B2FC431C816} does not exist
PASS HKCR\Interface\{66338027-0A5A-4BA2-B481-195A8CFB66F0} does not exist
PASS HKCR\Mccomctl.McDrives.1 does not exist
PASS HKCR\Mccomctl.McDrives does not exist
PASS HKCR\CLSID\{28E74E8D-7B99-4486-AE32-11B67F93B54B} does not exist
PASS HKCR\McComCtlLib.ListView.1 does not exist
PASS HKCR\McComCtlLib.ListView does not exist
PASS HKCR\CLSID\{B02F4EEB-78D3-414D-8814-7E88F4828C28} does not exist
PASS HKCR\McComCtlLib.ListItem.1 does not exist
PASS HKCR\McComCtlLib.ListItem does not exist
PASS HKCR\CLSID\{21DB24D5-9DD7-4F6F-993A-5FB0980EC5DB} does not exist
PASS HKCR\McComCtlLib.ListItems.1 does not exist
PASS HKCR\McComCtlLib.ListItems does not exist
PASS HKCR\CLSID\{3ED232B4-0346-4A74-A883-B85B69ADA6A4} does not exist
PASS HKCR\McComCtlLib.ColumnHeader.1 does not exist
PASS HKCR\McComCtlLib.ColumnHeader does not exist
PASS HKCR\CLSID\{C657669A-754D-4E13-BB96-B7269F2078F0} does not exist
PASS HKCR\McComCtlLib.ColumnHeaders.1 does not exist
PASS HKCR\McComCtlLib.ColumnHeaders does not exist
PASS HKCR\CLSID\{BF4C25B5-CD0A-4770-B2F5-750A4407957F} does not exist
PASS HKCR\McComCtlLib.ListItemsEnum.1 does not exist
PASS HKCR\McComCtlLib.ListItemsEnum does not exist
PASS HKCR\CLSID\{78D0C657-22F0-4E19-A34A-757B14A30344} does not exist
PASS HKCR\McComCtlLib.CheckedItems.1 does not exist
PASS HKCR\McComCtlLib.CheckedItems does not exist
PASS HKCR\CLSID\{0025F2F6-5458-478E-997C-76BBB056B3D6} does not exist
PASS HKCR\TypeLib\{6883B133-1B30-45E1-842F-B8670389559D} does not exist
PASS HKCR\Interface\{E4FB5840-B8F7-4F93-9760-FAD9327FF7BD} does not exist
PASS HKCR\Interface\{C5CDA713-B707-4F57-B9FA-CA0260B3CD26} does not exist
PASS HKCR\Interface\{2F9F27BF-E312-4FB4-A40D-BB132AFC9B19} does not exist
PASS HKCR\Interface\{7AD4839A-8823-4609-9112-CC8BA32E784B} does not exist
PASS HKCR\Interface\{DACD5044-3A96-49B2-8CB6-67FE1BE4FE01} does not exist
PASS HKCR\Interface\{15BA3DBA-E8F3-4C46-B362-871CF2E519D0} does not exist
PASS HKCR\Interface\{AA50CEBD-A503-4A3A-AAA9-DF6692792030} does not exist
PASS HKCR\Interface\{B3CF9F69-D365-4502-BA10-7123BB677F1A} does not exist
PASS HKCR\Interface\{9749CEC5-FD85-470F-9500-4B2FC431C816} does not exist
PASS HKCR\Interface\{66338027-0A5A-4BA2-B481-195A8CFB66F0} does not exist
PASS HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\VirusScan Online does not exist
PASS HKLM\SOFTWARE\McAfee\McAfee Internet Security\CurrentVersion\Setup\Features\VSO does not exist
PASS HKLM\Software\Microsoft\Windows\CurrentVersion\Run\VirusScan OnlineHKLM\SOFTWARE\Network Associates\TVD does not exist
PASS HKLM\SOFTWARE\McAfee.com\VirusScan Online does not exist
PASS HKLM\Software\McAfee.com\Agent\Apps\VSO does not exist
PASS HKLM\Software\Microsoft\Windows\CurrentVersion\Run\VSOCheckTask does not exist
PASS HKLM\Software\Microsoft\Windows\CurrentVersion\RunServices\McVsRte;mcvsshld.exe does not exist
PASS HKCR\CLSID\{692E988D-1057-4c57-8078-26CF7AE54263} does not exist
PASS HKCR\AppID\{E35C5833-F723-4e16-84B0-2A036F264495} does not exist
PASS HKCR\AppID\mcvsshld.exe removed successfully
PASS HKCR\TypeLib\{767880B0-68B8-4BF2-B360-3B8FF576C9C0} does not exist
PASS HKCR\Interface\{782234D2-8554-469F-8325-DE801192DE8B} does not exist
PASS HKCR\Interface\{C0F40D16-DC87-49E1-98AF-5A325B753AB1} does not exist
PASS HKCR\CLSID\{b3326110-966a-4609-b3ca-c98a2a8016d9} does not exist
PASS HKCR\AppID\{046a85cb-74fd-4569-b65c-42f698d27951} does not exist
PASS HKCR\AppID\MCVSESCN.EXE does not exist
PASS HKCR\TypeLib\{6CDE43F1-0F87-48A5-AE6D-092AEF09D254} does not exist
PASS HKCR\Interface\{97238F26-7083-47CB-A493-26D9BB5C39A6} does not exist
PASS HKCR\Interface\{52EF1B22-46F2-4B32-8B21-1A8FCB934A08} does not exist
PASS HKCR\CLSID\{0fe38286-7e18-44c5-902e-df07775bb705} does not exist
PASS HKCR\AppID\{{F96E8AC6-24BF-4cff-9311-D66BD50677C7}} does not exist
PASS HKCR\AppID\MCVSIMSN.EXE does not exist
PASS HKCR\CLSID\{000209FF-0000-0000-C000-000000000046} does not exist
PASS HKCR\CLSID\{0006F033-0000-0000-C000-000000000046} does not exist
PASS HKCR\CLSID\{0006F03A-0000-0000-C000-000000000046} does not exist
PASS HKLM\Software\Microsoft\Internet Explorer\Toolbar removed successfully
PASS HKCR\McVsShl.VSCContextMenu.1 does not exist
PASS HKCR\McVsShl.VSCContextMenu does not exist
PASS HKCR\CLSID\{CFC7205E-2792-4378-9591-3879CC6C9022} does not exist
PASS HKCR\*\shellex\ContextMenuHandlers\{CFC7205E-2792-4378-9591-3879CC6C9022} does not exist
PASS HKCR\Drive\shellex\ContextMenuHandlers\{CFC7205E-2792-4378-9591-3879CC6C9022} does not exist
PASS HKCR\file\Shellex removed successfully
PASS HKCR\Folder\shellex\ContextMenuHandlers\{CFC7205E-2792-4378-9591-3879CC6C9022} does not exist
PASS HKCR\McVsShl.VSCDeskBand.1 does not exist
PASS HKCR\McVsShl.VSCDeskBand does not exist
PASS HKCR\CLSID\{BA52B914-B692-46c4-B683-905236F6F655} does not exist
PASS HKCR\TypeLib\{FD5D5AC2-8415-4936-B4AC-114101229161} does not exist
PASS HKCR\Interface\{4E79FFAF-E07C-4F62-936D-04B02BA0250C} does not exist
PASS HKLM\SOFTWARE\Microsoft\Exchange\Client\Extensions\McAfee VirusScan Outlook Email Scanner does not exist
PASS HKCR\CLSID\{B5CD01E6-C55C-4070-B823-C4A4FBACF0BE}HKLM\Software\Microsoft\Exchange\Client\Extensions\McAfee VirusScan Outlook Email Scanner does not exist
PASS HKLM\SYSTEM\CurrentControlSet\Services\NaiAvFilter1 does not exist
PASS HKLM\SYSTEM\CurrentControlSet\Services\NaiFiltr does not exist
PASS HKLM\System\CurrentControlSet\Services\EventLog\System\NaiFiltr does not exist
PASS HKLM\SOFTWARE\Network Associates\TVD\Shared Components\VirusScan Engine\4.0.xx does not exist
PASS HKLM\SOFTWARE\Network Associates\TVD\Shared Components\VirusScan Engine\4.0.xx does not exist
PASS HKLM\SYSTEM\CurrentControlSet\Services\VxD\VshInit does not exist
PASS HKLM\Software\McAfee\VSCore does not exist
PASS HKLM\Software\Network Associates\TVD does not exist
PASS HKLM\SYSTEM\CurrentControlSet\Services\VxD\VshInit does not exist
PASS HKLM\Software\McAfee\VSCore does not exist
PASS HKLM\Software\Network Associates\TVD does not exist
PASS HKLM\SYSTEM\CurrentControlSet\Services\NaiFsRec does not exist
PASS HKLM\SYSTEM\CurrentControlSet\Services\VxD\VshInit does not exist
PASS HKLM\SYSTEM\CurrentControlSet\Services\NaiFsRec does not exist
PASS HKLM\SYSTEM\CurrentControlSet\Services\VxD\VshInit does not exist
PASS HKLM\SYSTEM\CurrentControlSet\Services\McShield\Performance does not exist
PASS HKLM\SOFTWARE\Network Associates\TVD\Shared Components\On Access Scanner\McShield\Configuration does not exist
PASS HKLM\System\CurrentControlSet\Services\EventLog\Application\McLogEvent removed successfully
PASS HKLM\Software\Microsoft\Windows\CurrentVersion\Run\VSOCheckTask does not exist
PASS HKLM\Software\Microsoft\Windows\CurrentVersion\RunServices\VirusScan Online does not exist
PASS HKLM\Software\Microsoft\Windows\CurrentVersion\RunServices\McShld9x does not exist
PASS HKLM\Software\Microsoft\Windows\CurrentVersion\RunServices\OASClnt does not exist
PASS HKLM\SOFTWARE\McAfee.com\VirusScan Online does not exist
PASS HKLM\Software\McAfee.com\Agent\Apps\VSO does not exist
PASS HKCR\AppID\{DECBF619-9830-47CD-870E-975F7FBC28BC} does not exist
PASS HKCR\AppID\McShield.exe does not exist
PASS HKCR\CLSID\{1363FF65-F4D7-4A35-8DFD-BA9AFAAE6855} does not exist
PASS HKCR\Interface\{1363FF65-F4D7-4A35-8DFD-BA9AFAAE6855} does not exist
PASS HKCR\Interface\{DEC2F66D-C505-40D2-B574-AA04FB57F312} does not exist
PASS HKCR\TypeLib\{A591F293-0DB9-4241-B82A-FD754A9370C4} does not exist
PASS HKCR\Interface\{678EB2A8-C6EB-44E4-A069-029008E82E33} does not exist
PASS HKCR\Interface\{69434B5E-9D4B-4F40-8CBF-5400AA81D43A} does not exist
PASS HKCR\Interface\{38183A1A-D279-4DB5-8C80-2535070CED16} does not exist
PASS HKCR\Interface\{90FD3C81-2B44-43DD-B93C-80CC798F10EB} does not exist
PASS HKCR\CLSID\{A448CD02-4566-442F-BDA8-70FCF9FEAF66} removed successfully
PASS HKCR\Interface\{A448CD02-4566-442F-BDA8-70FCF9FEAF66} removed successfully
PASS HKCR\Interface\{B9932C12-8820-4079-8810-8A3472FD8B77} does not exist
PASS HKCR\Interface\{03984113-B497-4649-AEA1-9686D77639F0} does not exist
PASS HKCR\Interface\{38183A1A-D279-4DB5-8C80-2535070CED16} does not exist
PASS HKCR\Interface\{E2094A26-2FE1-41D3-A250-075ED30C94B9} removed successfully
PASS HKCR\Interface\{F281EC2B-3A72-48C9-B1F0-EDB9F757F066} does not exist
PASS HKCR\Interface\{14ADF94F-AF37-42A2-A385-77408F0D56CB} does not exist
PASS HKCR\Interface\{EDB2A953-DD1A-4CB9-8083-C025746803BE} removed successfully
PASS HKCR\Interface\{69434B5E-9D4B-4F40-8CBF-5400AA81D43A} does not exist
PASS HKCR\Interface\{B1B03581-70F8-4017-9731-D25A84DDD501} removed successfully
PASS HKCR\Interface\{90FD3C81-2B44-43DD-B93C-80CC798F10EB} does not exist
PASS HKCR\Interface\{7B39DC96-AF1A-4DDA-B6B3-2F93E993FD1F} does not exist
PASS HKCR\Interface\{678EB2A8-C6EB-44E4-A069-029008E82E33} does not exist
PASS HKCR\CLSID\{692E988D-1057-4c57-8078-26CF7AE54263} does not exist
PASS HKCR\AppID\{E35C5833-F723-4e16-84B0-2A036F264495} does not exist
PASS HKCR\AppID\mcvsshld.exe does not exist
PASS HKCR\TypeLib\{DFF46858-8BA5-495C-90F4-D84307D53B73} does not exist
PASS HKCR\Interface\{BCB840C7-0A91-4EBB-B068-77DCC6DC0484} does not exist
PASS HKCR\Interface\{2AF95700-C640-4EAF-97D1-EF8F9C89947D} does not exist
PASS HKCR\Interface\{A4020C1D-5C61-40DE-B7F7-E81C5F07EDF5} does not exist
PASS HKCR\Interface\{A047BA7D-4CE7-4106-941F-8867DC3D1AEE} does not exist
PASS HKCR\Interface\{64B40203-AB55-48A4-852A-522A6C756B8E} does not exist
PASS HKCR\Interface\{84288364-C325-40D3-B421-54EE8F9437DB} does not exist
PASS HKCR\Interface\{65CC00CD-7083-4E72-88FD-3EACB4C1BE36} does not exist
PASS HKCR\Interface\{64970E7D-9860-45F2-892C-830956ADC7E1} does not exist
PASS HKCR\McAfee.com.MCVSScan.1 does not exist
PASS HKCR\McAfee.MCVSScan does not exist
PASS HKCR\CLSID\{B793DE5F-29C9-440c-A9E2-4644145DDD3D} does not exist
PASS HKCR\McAfee.com.MCVSQTColl.1 does not exist
PASS HKCR\McAfee.MCVSScan does not exist
PASS HKCR\CLSID\{7DC23152-6B5E-4A65-B42E-AE5AC4199577} does not exist
PASS HKLM\SOFTWARE\McAfee.com\VirusScan Online does not exist
PASS HKCR\Vsoupd.MCVSProperties.1 does not exist
PASS HKCR\Vsoupd.MCVSProperties does not exist
PASS HKCR\CLSID\{510C5313-D85C-4307-95FB-AC87A2D3743F} does not exist
PASS HKCR\Vsoupd.MCVSPropNotify does not exist
PASS HKCR\CLSID\{55F94612-19DD-4C2E-9E1F-E26624933DAD} does not exist
PASS HKCR\Vsoupd.MCVSUpdate.1 does not exist
PASS HKCR\Vsoupd.MCVSUpdate does not exist
PASS HKCR\CLSID\{6950611A-E2CF-421f-88C3-61C27A3832C5} does not exist
PASS HKCR\Vsoupd.VSOInfoObject.1 does not exist
PASS HKCR\Vsoupd.VSOInfoObject does not exist
PASS HKCR\CLSID\{1BCD38AE-A539-40D6-B448-04F20D47433F} does not exist
PASS HKCR\TypeLib\{16D183F4-86B7-40A0-944C-A70D5E94B2C4} does not exist
PASS HKCR\Interface\{7580CD96-1075-4ECC-A67C-5D339D94B089} does not exist
PASS HKCR\Interface\{88CC8C77-D7DB-411D-83BC-9DD12DBBB77B} does not exist
PASS HKLM\SOFTWARE\McAfee.com\VirusScan Online does not exist
PASS HKCR\Vsoupd.MCVSProperties.1 does not exist
PASS HKCR\Vsoupd.MCVSProperties does not exist
PASS HKCR\CLSID\{510C5313-D85C-4307-95FB-AC87A2D3743F} does not exist
PASS HKCR\Vsoupd.MCVSPropNotify.1 does not exist
PASS HKCR\Vsoupd.MCVSPropNotify does not exist
PASS HKCR\CLSID\{55F94612-19DD-4C2E-9E1F-E26624933DAD} does not exist
PASS HKCR\Vsoupd.MCVSUpdate.1 does not exist
PASS HKCR\Vsoupd.MCVSUpdate does not exist
PASS HKCR\CLSID\{6950611A-E2CF-421f-88C3-61C27A3832C5} does not exist
PASS HKCR\Vsoupd.VSOInfoObject.1 does not exist
PASS HKCR\Vsoupd.VSOInfoObject does not exist
PASS HKCR\CLSID\{1BCD38AE-A539-40D6-B448-04F20D47433F} does not exist
PASS HKCR\TypeLib\{16D183F4-86B7-40A0-944C-A70D5E94B2C4} does not exist
PASS HKCR\Interface\{7580CD96-1075-4ECC-A67C-5D339D94B089} does not exist
PASS HKCR\Interface\{88CC8C77-D7DB-411D-83BC-9DD12DBBB77B} does not exist
PASS HKCR\CLSID\{B83E7402-2227-403a-BEBC-773F5E0D1F1B} does not exist
PASS HKCR\AppID\{CCB622E5-5327-4a2b-A020-D90DCF82676A} does not exist
PASS HKCR\TypeLib\{2A1AFECE-5CDC-4636-A582-8BD2D060C322} does not exist
PASS HKCR\Interface\{7C4BCFA8-7668-4592-BDBE-28776C0881B9} does not exist
PASS HKCR\Interface\{5C0ED3BD-00BC-4BCF-B2A2-95D4F5A3DA81} does not exist
PASS HKCR\CLSID\{4B00087D-8CDC-4b77-A9D5-4C50150FEDF4} does not exist
PASS HKCR\AppID\{716B6046-3784-4bc0-94AB-EA18030F1116} does not exist
PASS HKCR\AppID\MCVSMAP.EXE does not exist
PASS HKLM\Software\Microsoft\Windows\CurrentVersion\Run\VSOCheckTask does not exist
PASS HKLM\Software\Microsoft\Windows\CurrentVersion\Run\VirusScan Online does not exist
PASS HKLM\Software\Microsoft\Windows\CurrentVersion\Run\OASClnt does not exist
PASS HKLM\SOFTWARE\McAfee.com\VirusScan Online does not exist
PASS HKLM\SOFTWARE\McAfee\VirusScan Online does not exist
PASS HKLM\Software\McAfee.com\Agent\Apps\VSO does not exist
PASS HKCR\AppID\{DECBF619-9830-47CD-870E-975F7FBC28BC} does not exist
PASS HKCR\AppID\McShield.exe does not exist
PASS HKCR\CLSID\{1363FF65-F4D7-4A35-8DFD-BA9AFAAE6855} does not exist
PASS HKCR\Interface\{1363FF65-F4D7-4A35-8DFD-BA9AFAAE6855} does not exist
PASS HKCR\Interface\{DEC2F66D-C505-40D2-B574-AA04FB57F312} does not exist
PASS HKCR\TypeLib\{A591F293-0DB9-4241-B82A-FD754A9370C4} does not exist
PASS HKCR\Interface\{678EB2A8-C6EB-44E4-A069-029008E82E33} does not exist
PASS HKCR\Interface\{69434B5E-9D4B-4F40-8CBF-5400AA81D43A} does not exist
PASS HKCR\Interface\{38183A1A-D279-4DB5-8C80-2535070CED16} does not exist
PASS HKCR\Interface\{90FD3C81-2B44-43DD-B93C-80CC798F10EB} does not exist
PASS HKCR\CLSID\{A448CD02-4566-442F-BDA8-70FCF9FEAF66} does not exist
PASS HKCR\Interface\{A448CD02-4566-442F-BDA8-70FCF9FEAF66} does not exist
PASS HKCR\Interface\{B9932C12-8820-4079-8810-8A3472FD8B77} does not exist
PASS HKCR\Interface\{03984113-B497-4649-AEA1-9686D77639F0} does not exist
PASS HKCR\Interface\{38183A1A-D279-4DB5-8C80-2535070CED16} does not exist
PASS HKCR\Interface\{E2094A26-2FE1-41D3-A250-075ED30C94B9} does not exist
PASS HKCR\Interface\{F281EC2B-3A72-48C9-B1F0-EDB9F757F066} does not exist
PASS HKCR\Interface\{14ADF94F-AF37-42A2-A385-77408F0D56CB} does not exist
PASS HKCR\Interface\{EDB2A953-DD1A-4CB9-8083-C025746803BE} does not exist
PASS HKCR\Interface\{69434B5E-9D4B-4F40-8CBF-5400AA81D43A} does not exist
PASS HKCR\Interface\{B1B03581-70F8-4017-9731-D25A84DDD501} does not exist
PASS HKCR\Interface\{90FD3C81-2B44-43DD-B93C-80CC798F10EB} does not exist
PASS HKCR\Interface\{7B39DC96-AF1A-4DDA-B6B3-2F93E993FD1F} does not exist
PASS HKCR\Interface\{678EB2A8-C6EB-44E4-A069-029008E82E33} does not exist
PASS HKCR\CLSID\{692E988D-1057-4c57-8078-26CF7AE54263} does not exist
PASS HKCR\AppID\{E35C5833-F723-4e16-84B0-2A036F264495} does not exist
PASS HKCR\AppID\mcvsshld.exe does not exist
PASS HKCR\TypeLib\{DFF46858-8BA5-495C-90F4-D84307D53B73} does not exist
PASS HKCR\Interface\{BCB840C7-0A91-4EBB-B068-77DCC6DC0484} does not exist
PASS HKCR\Interface\{2AF95700-C640-4EAF-97D1-EF8F9C89947D} does not exist
PASS HKCR\Interface\{A4020C1D-5C61-40DE-B7F7-E81C5F07EDF5} does not exist
PASS HKCR\Interface\{A047BA7D-4CE7-4106-941F-8867DC3D1AEE} does not exist
PASS HKCR\Interface\{64B40203-AB55-48A4-852A-522A6C756B8E} does not exist
PASS HKCR\Interface\{84288364-C325-40D3-B421-54EE8F9437DB} does not exist
PASS HKCR\Interface\{65CC00CD-7083-4E72-88FD-3EACB4C1BE36} does not exist
PASS HKCR\Interface\{64970E7D-9860-45F2-892C-830956ADC7E1} does not exist
PASS HKCR\McAfee.com.MCVSScan.1 does not exist
PASS HKCR\McAfee.MCVSScan does not exist
PASS HKCR\CLSID\{B793DE5F-29C9-440c-A9E2-4644145DDD3D} does not exist
PASS HKCR\McAfee.com.MCVSQTColl.1 does not exist
PASS HKCR\McAfee.MCVSScan does not exist
PASS HKCR\CLSID\{7DC23152-6B5E-4A65-B42E-AE5AC4199577} does not exist
PASS HKLM\SOFTWARE\McAfee.com\VirusScan Online does not exist
PASS HKCR\Vsoupd.MCVSProperties.1 does not exist
PASS HKCR\Vsoupd.MCVSProperties does not exist
PASS HKCR\CLSID\{510C5313-D85C-4307-95FB-AC87A2D3743F} does not exist
PASS HKCR\Vsoupd.MCVSPropNotify does not exist
PASS HKCR\CLSID\{55F94612-19DD-4C2E-9E1F-E26624933DAD} does not exist
PASS HKCR\Vsoupd.MCVSUpdate.1 does not exist
PASS HKCR\Vsoupd.MCVSUpdate does not exist
PASS HKCR\CLSID\{6950611A-E2CF-421f-88C3-61C27A3832C5} does not exist
PASS HKCR\Vsoupd.VSOInfoObject.1 does not exist
PASS HKCR\Vsoupd.VSOInfoObject does not exist
PASS HKCR\CLSID\{1BCD38AE-A539-40D6-B448-04F20D47433F} does not exist
PASS HKCR\TypeLib\{16D183F4-86B7-40A0-944C-A70D5E94B2C4} does not exist
PASS HKCR\Interface\{7580CD96-1075-4ECC-A67C-5D339D94B089} does not exist
PASS HKCR\Interface\{88CC8C77-D7DB-411D-83BC-9DD12DBBB77B} does not exist
PASS HKLM\SOFTWARE\McAfee.com\VirusScan Online does not exist
PASS HKCR\Vsoupd.MCVSProperties.1 does not exist
PASS HKCR\Vsoupd.MCVSProperties does not exist
PASS HKCR\CLSID\{510C5313-D85C-4307-95FB-AC87A2D3743F} does not exist
PASS HKCR\Vsoupd.MCVSPropNotify.1 does not exist
PASS HKCR\Vsoupd.MCVSPropNotify does not exist
PASS HKCR\CLSID\{55F94612-19DD-4C2E-9E1F-E26624933DAD} does not exist
PASS HKCR\Vsoupd.MCVSUpdate.1 does not exist
PASS HKCR\Vsoupd.MCVSUpdate does not exist
PASS HKCR\CLSID\{6950611A-E2CF-421f-88C3-61C27A3832C5} does not exist
PASS HKCR\Vsoupd.VSOInfoObject.1 does not exist
PASS HKCR\Vsoupd.VSOInfoObject does not exist
PASS HKCR\CLSID\{1BCD38AE-A539-40D6-B448-04F20D47433F} does not exist
PASS HKCR\TypeLib\{16D183F4-86B7-40A0-944C-A70D5E94B2C4} does not exist
PASS HKCR\Interface\{7580CD96-1075-4ECC-A67C-5D339D94B089} does not exist
PASS HKCR\Interface\{88CC8C77-D7DB-411D-83BC-9DD12DBBB77B} does not exist
PASS HKCR\CLSID\{B83E7402-2227-403a-BEBC-773F5E0D1F1B} does not exist
PASS HKCR\AppID\{CCB622E5-5327-4a2b-A020-D90DCF82676A} does not exist
PASS HKCR\TypeLib\{2A1AFECE-5CDC-4636-A582-8BD2D060C322} does not exist
PASS HKCR\Interface\{7C4BCFA8-7668-4592-BDBE-28776C0881B9} does not exist
PASS HKCR\Interface\{5C0ED3BD-00BC-4BCF-B2A2-95D4F5A3DA81} does not exist
PASS HKCR\CLSID\{4B00087D-8CDC-4b77-A9D5-4C50150FEDF4} does not exist
PASS HKCR\AppID\{716B6046-3784-4bc0-94AB-EA18030F1116} does not exist
PASS HKCR\AppID\MCVSMAP.EXE does not exist
PASS HKCR\TypeLib\{D65DE395-1306-4892-BF78-627C7E15B678} does not exist
PASS HKCR\Interface\{33401868-5E15-4E85-B4CF-F5F38760859E} does not exist
PASS HKCR\Interface\{CF5BF0B6-AC09-4013-AB73-C2CB19E3C052} does not exist
PASS HKCR\Interface\{4B1CEC4A-70A9-4DDE-A458-AD6087D9E994} does not exist
PASS HKCR\Interface\{E713D51C-48DA-4FF0-BD42-80867A053464} does not exist
PASS HKCR\CLSID\{305F5F49-F5B1-4501-BDDF-712C5E67154A} does not exist
PASS HKCR\AppID\{B39A807E-9ED1-48b9-BF0D-2FADE4302288} does not exist
PASS HKCR\AppID\MCVSRTE.EXE does not exist
PASS HKLM\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NAIFILTR does not exist
PASS HKLM\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_NAIFSREC does not exist
PASS HKLM\SYSTEM\ControlSet001\Enum\ROOT\LEGACY_MCSHIELD removed successfully
PASS HKCR\TypeLib\{DFF46858-8BA5-495C-90F4-D84307D53B73} does not exist
PASS HKCR\Interface\{BCB840C7-0A91-4EBB-B068-77DCC6DC0484} does not exist
PASS HKCR\Interface\{2AF95700-C640-4EAF-97D1-EF8F9C89947D} does not exist
PASS HKCR\Interface\{A4020C1D-5C61-40DE-B7F7-E81C5F07EDF5} does not exist
PASS HKCR\Interface\{A047BA7D-4CE7-4106-941F-8867DC3D1AEE} does not exist
PASS HKCR\Interface\{64B40203-AB55-48A4-852A-522A6C756B8E} does not exist
PASS HKCR\Interface\{84288364-C325-40D3-B421-54EE8F9437DB} does not exist
PASS HKCR\Interface\{65CC00CD-7083-4E72-88FD-3EACB4C1BE36} does not exist
PASS HKCR\Interface\{64970E7D-9860-45F2-892C-830956ADC7E1} does not exist
PASS HKCR\McAfee.com.MCVSScan.1 does not exist
PASS HKCR\McAfee.MCVSScan does not exist
PASS HKCR\CLSID\{B793DE5F-29C9-440c-A9E2-4644145DDD3D} does not exist
PASS HKCR\McAfee.com.MCVSQTColl.1 does not exist
PASS HKCR\CLSID\{7DC23152-6B5E-4A65-B42E-AE5AC4199577} does not exist
PASS HKCR\EDisk2.MgEdisk.1 does not exist
PASS HKCR\EDisk2.MgEdisk does not exist
PASS HKCR\CLSID\{340A0150-9DC7-11D3-9A01-005004677EF4} does not exist
PASS HKCR\TypeLib\{340A0143-9DC7-11D3-9A01-005004677EF4} does not exist
PASS HKCR\Interface\{340A0151-9DC7-11D3-9A01-005004677EF4} does not exist
PASS HKCR\Interface\{340A014F-9DC7-11D3-9A01-005004677EF4} does not exist
PASS HKLM\SOFTWARE\McAfee.com\VirusScan Online does not exist
PASS HKCR\Vsoupd.MCVSProperties.1 does not exist
PASS HKCR\Vsoupd.MCVSProperties does not exist
PASS HKCR\CLSID\{510C5313-D85C-4307-95FB-AC87A2D3743F} does not exist
PASS HKCR\Vsoupd.MCVSPropNotify.1 does not exist
PASS HKCR\Vsoupd.MCVSPropNotify does not exist
PASS HKCR\CLSID\{55F94612-19DD-4C2E-9E1F-E26624933DAD} does not exist
PASS HKCR\Vsoupd.MCVSUpdate.1 does not exist
PASS HKCR\Vsoupd.MCVSUpdate does not exist
PASS HKCR\CLSID\{6950611A-E2CF-421f-88C3-61C27A3832C5} does not exist
PASS HKCR\Vsoupd.VSOInfoObject.1 does not exist
PASS HKCR\Vsoupd.VSOInfoObject does not exist
PASS HKCR\CLSID\{1BCD38AE-A539-40D6-B448-04F20D47433F} does not exist
PASS HKCR\TypeLib\{16D183F4-86B7-40A0-944C-A70D5E94B2C4} does not exist
PASS HKCR\Interface\{7580CD96-1075-4ECC-A67C-5D339D94B089} does not exist
PASS HKCR\Interface\{88CC8C77-D7DB-411D-83BC-9DD12DBBB77B} does not exist
PASS HKCR\CLSID\{B83E7402-2227-403a-BEBC-773F5E0D1F1B} does not exist
PASS HKCR\AppID\{CCB622E5-5327-4a2b-A020-D90DCF82676A} does not exist
PASS HKCR\TypeLib\{2A1AFECE-5CDC-4636-A582-8BD2D060C322} does not exist
PASS HKCR\Interface\{7C4BCFA8-7668-4592-BDBE-28776C0881B9} does not exist
PASS HKCR\Interface\{5C0ED3BD-00BC-4BCF-B2A2-95D4F5A3DA81} does not exist
PASS HKCR\CLSID\{4B00087D-8CDC-4b77-A9D5-4C50150FEDF4} does not exist
PASS HKCR\AppID\{716B6046-3784-4bc0-94AB-EA18030F1116} does not exist
PASS HKCR\AppID\MCVSMAP.EXE does not exist
PASS HKLM\Software\McAfee\VSCore\Email Scanner\Outlook does not exist
INFO Removing directory...
PASS C:\Documents and Settings\All Users\Menu Démarrer\Programmes\McAfee\McAfee VirusScan does not exist
INFO Removing directory...
PASS C:\Program Files\McAfee.com\VSO does not exist
INFO Removing directory...
PASS C:\Documents and Settings\All Users\Application Data\McAfee.com\VSO does not exist
INFO Removing files...
PASS C:\Program Files\McAfee.com\VSO\ediskimg.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\804mbd1.chk does not exist
PASS C:\Program Files\McAfee.com\VSO\804mbd1.IMG does not exist
PASS C:\Program Files\McAfee.com\VSO\ediskimg.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\804mbd1.chk does not exist
PASS C:\Program Files\McAfee.com\VSO\804mbd1.IMG does not exist
PASS C:\Program Files\McAfee.com\Shared\mccomctl.dll does not exist
PASS C:\Program Files\McAfee.com\Shared\mccomctl.inf does not exist
PASS C:\Program Files\McAfee.com\Shared\mccomctl.dll does not exist
PASS C:\Program Files\McAfee.com\Shared\mccomctl.inf does not exist
PASS C:\Documents and Settings\yann\Bureau\McAfee.com Scan For Viruses.lnk does not exist
PASS C:\Documents and Settings\yann\Bureau\McAfee ±½´y¯f¬r.lnk does not exist
PASS C:\Documents and Settings\yann\Bureau\McAfee Auf Viren überprüfen.lnk does not exist
PASS C:\Documents and Settings\yann\Bureau\McAfee Scan.lnk does not exist
PASS C:\Documents and Settings\yann\Bureau\McAfee Scan For Viruses.lnk does not exist
PASS C:\Documents and Settings\yann\Bureau\McAfee Detectar virus does not exist
PASS C:\Documents and Settings\yann\Bureau\McAfee Analyse antivirus does not exist
PASS C:\Documents and Settings\yann\Bureau\McAfee Ricerca virus does not exist
PASS C:\Documents and Settings\yann\Bureau\McAfee ƒEƒCƒ‹ƒX‚̃XƒLƒƒƒ“.lnk does not exist
PASS C:\Documents and Settings\yann\Bureau\McAfee ƒEƒCƒ‹ƒX ƒXƒLƒƒƒ“.lnk does not exist
PASS C:\Documents and Settings\yann\Bureau\McAfee Scannen op virussen does not exist
PASS C:\Documents and Settings\yann\Bureau\McAfee Verificar a Existência de Vírus does not exist
PASS C:\Documents and Settings\All Users\Bureau\McAfee.com Scan For Viruses.lnk does not exist
PASS C:\Documents and Settings\All Users\Bureau\McAfee ±½´y¯f¬r.lnk does not exist
PASS C:\Documents and Settings\All Users\Bureau\McAfee Auf Viren überprüfen.lnk does not exist
PASS C:\Documents and Settings\All Users\Bureau\McAfee Scan.lnk does not exist
PASS C:\Documents and Settings\All Users\Bureau\McAfee Scan For Viruses.lnk does not exist
PASS C:\Documents and Settings\All Users\Bureau\McAfee Detectar virus does not exist
PASS C:\Documents and Settings\All Users\Bureau\McAfee Analyse antivirus does not exist
PASS C:\Documents and Settings\All Users\Bureau\McAfee Ricerca virus does not exist
PASS C:\Documents and Settings\All Users\Bureau\McAfee ƒEƒCƒ‹ƒX‚̃XƒLƒƒƒ“.lnk does not exist
PASS C:\Documents and Settings\All Users\Bureau\McAfee ƒEƒCƒ‹ƒX ƒXƒLƒƒƒ“.lnk does not exist
PASS C:\Documents and Settings\All Users\Bureau\McAfee Scannen op virussen does not exist
PASS C:\Documents and Settings\All Users\Bureau\McAfee Verificar a Existência de Vírus does not exist
PASS C:\Documents and Settings\yann\Modèles\McAfee\McAfee VirusScan does not exist
PASS C:\Documents and Settings\All Users\Menu Démarrer\Programmes\McAfee\McAfee VirusScan does not exist
PASS C:\Program Files\McAfee.com\VSO\unicows.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\redist.txt does not exist
PASS C:\Program Files\McAfee.com\VSO\license.txt does not exist
PASS C:\Program Files\McAfee.com\VSO\oasres.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\emscnres.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\emlscres.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\McVSEscn.exe does not exist
PASS C:\Program Files\McAfee.com\VSO\McVSSkt.Dll does not exist
PASS C:\Program Files\McAfee.com\VSO\emlscbin.inf%PROGRAMFILES%\McAfee.com\VSO\emlscbin.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\emlscres.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\emscnres.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\license.txt does not exist
PASS C:\Program Files\McAfee.com\VSO\McVSEscn.exe does not exist
PASS C:\Program Files\McAfee.com\VSO\McVSSkt.Dll does not exist
PASS C:\Program Files\McAfee.com\VSO\naiavf5x.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\redist.txt does not exist
PASS C:\Program Files\McAfee.com\VSO\unicows.dll%PROGRAMFILES%\McAfee.com\VSO\emscnres.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\emlscres.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\McVSEscn.exe does not exist
PASS C:\Program Files\McAfee.com\VSO\McVSSkt.Dll does not exist
PASS C:\Program Files\McAfee.com\VSO\emlscbin.inf%PROGRAMFILES%\McAfee.com\VSO\emlscbin.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\emlscres.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\emscnres.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\McVSEscn.exe does not exist
PASS C:\Program Files\McAfee.com\VSO\McVSSkt.Dll%WINDIR%\system32\drivers\naiavf5x.sys%WINDIR%\system32\drivers\NaiFiltr.sys;[DefaultUninstall] does not exist
PASS C:\Program Files\Mcafee.com\VSO\mcscan32.dll does not exist
PASS C:\Program Files\Mcafee.com\VSO\vsoeng.inf does not exist
PASS C:\Program Files\Mcafee.com\VSO\signlic.txt does not exist
PASS C:\WINDOWS\system\MCSCAN32.VXD does not exist
PASS C:\Program Files\Mcafee.com\VSO\RWABS16.DLL does not exist
PASS C:\Program Files\Mcafee.com\VSO\RWABS32.DLL does not exist
PASS C:\Program Files\Mcafee.com\VSO\mcscan32.dll does not exist
PASS C:\Program Files\Mcafee.com\VSO\vsoeng.inf does not exist
PASS C:\Program Files\Mcafee.com\VSO\signlic.txt does not exist
PASS C:\Program Files\McAfee.com\VSO\mcscan32.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\vsoeng.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\signlic.txt does not exist
PASS C:\WINDOWS\system\MCSCAN32.VXD does not exist
PASS C:\Program Files\McAfee.com\VSO\mcscan32.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\vsoeng.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\signlic.txt does not exist
PASS C:\Program Files\McAfee.com\VSO\mytilus.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\oasbin.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\vsengver.dll does not exist
PASS C:\WINDOWS\system\vshinit.vxd does not exist
PASS C:\WINDOWS\system\vshield.vxd does not exist
PASS C:\WINDOWS\system\mcutil.vxd does not exist
PASS C:\WINDOWS\system\mckrnl.vxd does not exist
PASS C:\Program Files\McAfee.com\VSO\mytilus.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\oasbin.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\vsengver.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\naiavfin.exe does not exist
PASS C:\Program Files\McAfee.com\VSO\naiavf5a.sys does not exist
PASS C:\Program Files\McAfee.com\VSO\naiavf5i.sys does not exist
PASS C:\Program Files\McAfee.com\VSO\naiavf5x.sys does not exist
PASS C:\Program Files\McAfee.com\VSO\naiavf5x.cat does not exist
PASS C:\Program Files\McAfee.com\VSO\McShield.exe does not exist
PASS C:\Program Files\McAfee.com\VSO\ftl.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\oasbin.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\vsengver.dll does not exist
PASS C:\WINDOWS\system\vshinit.vxd does not exist
PASS C:\WINDOWS\system\vshield.vxd does not exist
PASS C:\WINDOWS\system\mcutil.vxd does not exist
PASS C:\WINDOWS\system\mckrnl.vxd does not exist
PASS C:\Program Files\McAfee.com\VSO\client9x.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\oasbin.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\vsengver.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\McShield.exe does not exist
PASS C:\Program Files\McAfee.com\VSO\naiann.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\ntclient.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\ScanServ.dll does not exist
PASS C:\WINDOWS\system32\drivers\NaiFsRec.sys does not exist
PASS C:\WINDOWS\system32\drivers\NaiFiltr.sys does not exist
PASS C:\Program Files\McAfee.com\VSO\NaiFiltr.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\Naifiltr.cat does not exist
PASS C:\Program Files\McAfee.com\VSO\McShield.exe does not exist
PASS C:\Program Files\McAfee.com\VSO\naiann.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\ntclient.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\ScanServ.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\oasres.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\Res00\McShield.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\NAIEvent.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\oasres.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\NaiEvent.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\Res00\McShield.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\Res09\McShield.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\Res11\McShield.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\naiann.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\naiannps.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\mcvsps.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\oasclnt.exe does not exist
PASS C:\Program Files\McAfee.com\VSO\mcvsshld.exe does not exist
PASS C:\Program Files\McAfee.com\VSO\mcvsctl.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\edisk.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\vsoupd.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\mcmnhdlr.exe does not exist
PASS C:\Program Files\McAfee.com\VSO\mcvsmap.exe does not exist
PASS C:\Program Files\McAfee.com\VSO\mcavtsub.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\mcvsdiag.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\vso.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\mcshld9x.exe does not exist
PASS C:\Program Files\McAfee.com\VSO\naiann.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\naiannps.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\mcvsps.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\oasclnt.exe does not exist
PASS C:\Program Files\McAfee.com\VSO\mcvsshld.exe does not exist
PASS C:\Program Files\McAfee.com\VSO\mcvsctl.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\edisk.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\vsoupd.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\mcmnhdlr.exe does not exist
PASS C:\Program Files\McAfee.com\VSO\mcvsmap.exe does not exist
PASS C:\Program Files\McAfee.com\VSO\mcavtsub.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\mcvsdiag.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\vso.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\mcvsrte.exe does not exist
PASS C:\Program Files\McAfee.com\VSO\mcvsshld.exe does not exist
PASS C:\Program Files\McAfee.com\VSO\mcvsctl.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\edisk.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\vsoupd.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\mcmnhdlr.exe does not exist
PASS C:\Program Files\McAfee.com\VSO\mcvsmap.exe does not exist
PASS C:\Program Files\McAfee.com\VSO\mcurial.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\PATCHW32.DLL does not exist
PASS C:\Program Files\McAfee.com\VSO\vso.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\mcavtsub.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\scan.dat does not exist
PASS C:\Program Files\McAfee.com\VSO\extra.dat does not exist
PASS C:\Program Files\McAfee.com\VSO\Names.dat does not exist
PASS C:\Program Files\McAfee.com\VSO\clean.dat does not exist
PASS C:\Program Files\McAfee.com\VSO\vsodat.inf does not exist
PASS C:\Program Files\McAfee.com\Agent\uninst\vsoremui.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\vsocfg.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\ashldres.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\vsoui.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\mvsuicfg.dat does not exist
PASS C:\Program Files\McAfee.com\VSO\config.ini does not exist
PASS C:\Program Files\McAfee.com\VSO\vsezres.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\vsez.adf does not exist
PASS C:\Program Files\McAfee.com\VSO\mcvso.ui does not exist
PASS C:\Program Files\McAfee.com\VSO\vsoagnt.ui does not exist
PASS C:\Program Files\McAfee.com\Agent\uninst\vsorem.ui does not exist
PASS C:\Program Files\McAfee.com\VSO\config.ini does not exist
PASS C:\Program Files\McAfee.com\VSO\vsezres.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\vsez.adf does not exist
PASS C:\Program Files\McAfee.com\VSO\mcvso.ui does not exist
PASS C:\Program Files\McAfee.com\VSO\vsoagnt.ui does not exist
PASS C:\Program Files\McAfee.com\Agent\uninst\vsorem.ui does not exist
PASS C:\Program Files\McAfee.com\VSO\vsocfg.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\ashldres.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\vsoui.dll does not exist
PASS C:\Program Files\McAfee.com\Agent\uninst\vsoremui.dll does not exist
PASS C:\Program Files\McAfee.com\Agent\app\vso.adf does not exist
PASS C:\Program Files\McAfee.com\VSO\vscfgui.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\vsowow.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\vso.chm does not exist
PASS C:\Program Files\McAfee.com\VSO\readme.txt does not exist
PASS C:\Program Files\McAfee.com\VSO\vscfgui.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\vscfgw32.dll does not exist
PASS C:\Program Files\McAfee.com\Agent\uninst\vscfgui.dll does not exist
PASS C:\Program Files\McAfee.com\Agent\app\vso.adf does not exist
PASS C:\Program Files\McAfee.com\VSO\vscfgui.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\vsowow.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\vso.chm does not exist
PASS C:\Program Files\McAfee.com\VSO\readme.txt does not exist
PASS C:\Program Files\McAfee.com\VSO\vscfgui.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\vscfgw32.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\vsagntui.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\vsagntui.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\vsagntui.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\vsagntui.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\mcinsupd.exe does not exist
PASS C:\Program Files\McAfee.com\VSO\mcinsupd.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\mcurial.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\PATCHW32.DLL does not exist
PASS C:\Program Files\McAfee.com\VSO\outscan.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\vsolplg.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\vsolui.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\oscnbin.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\outscan.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\oscnbin.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\outscres.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\oscnres.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\outscres.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\oscnres.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\mcvsftsn.exe does not exist
PASS C:\Program Files\McAfee.com\VSO\imscnbin.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\mcvsftsn.exe does not exist
PASS C:\Program Files\McAfee.com\VSO\imscnbin.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\ftscnres.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\appinit.ini does not exist
PASS C:\Program Files\McAfee.com\VSO\imscnres.inf does not exist
PASS C:\Program Files\McAfee.com\VSO\ftscnres.dll does not exist
PASS C:\Program Files\McAfee.com\VSO\appinit.ini does not exist
PASS C:\Program Files\McAfee.com\VSO\imscnres.inf d
0