Amokboltbolt.q8kc4u
Fermé
crocmitel
Messages postés
41
Date d'inscription
samedi 29 mars 2008
Statut
Membre
Dernière intervention
31 mai 2009
-
18 juil. 2008 à 22:49
crocmitel Messages postés 41 Date d'inscription samedi 29 mars 2008 Statut Membre Dernière intervention 31 mai 2009 - 9 août 2008 à 16:50
crocmitel Messages postés 41 Date d'inscription samedi 29 mars 2008 Statut Membre Dernière intervention 31 mai 2009 - 9 août 2008 à 16:50
7 réponses
Lyonnais92
Messages postés
25159
Date d'inscription
vendredi 23 juin 2006
Statut
Contributeur sécurité
Dernière intervention
16 septembre 2016
1 537
19 juil. 2008 à 12:34
19 juil. 2008 à 12:34
Bonjour,
il m'étonnerait beaucoup que ce soit une bonne chose d'arriver à ouvrir ce fichier.
Est ce que tu aurais son nom complet (le répertoire où il se trouve) ? Si oui, donne le moi. Sinon, on le trouvera autrement.
Clique sur ce lien
http://www.trendsecure.com/portal/en-US/threat_analytics/HJTInstall.exe
pour télécharger le fichier d'installation d'HijackThis.
Enregistre HJTInstall.exe sur ton bureau.
Double-clique sur HJTInstall.exe pour lancer le programme
Par défaut, il s'installera là :
C:\Program Files\Trend Micro\HijackThis
Accepte la license en cliquant sur le bouton "I Accept"
Ferme Hijackthis en cliquant sur la croix-rouge.
Télécharge DSS (Deckard's System Scanner de Deckard) sur ton Bureau à partir de ce lien :
http://www.techsupportforum.com/sectools/Deckard/dss.exe
Choisis "Enregistrer" et "Bureau" comme emplacement.
Ferme toutes les applications en cours (très important, sinon l'ordi peut planter).
Double-clique sur DSS.exe pour lancer l'outil.
S'il ne trouve pas HijackThis, clique sur Oui.
Clique sur OK à chaque fois que cela sera demandé.
L'analyse finie, un fichier texte s'affichera. Poste son contenu dans ta réponse.
Le rapport se trouve ici : C:\Deckard\System Scanner\main.txt.
il m'étonnerait beaucoup que ce soit une bonne chose d'arriver à ouvrir ce fichier.
Est ce que tu aurais son nom complet (le répertoire où il se trouve) ? Si oui, donne le moi. Sinon, on le trouvera autrement.
Clique sur ce lien
http://www.trendsecure.com/portal/en-US/threat_analytics/HJTInstall.exe
pour télécharger le fichier d'installation d'HijackThis.
Enregistre HJTInstall.exe sur ton bureau.
Double-clique sur HJTInstall.exe pour lancer le programme
Par défaut, il s'installera là :
C:\Program Files\Trend Micro\HijackThis
Accepte la license en cliquant sur le bouton "I Accept"
Ferme Hijackthis en cliquant sur la croix-rouge.
Télécharge DSS (Deckard's System Scanner de Deckard) sur ton Bureau à partir de ce lien :
http://www.techsupportforum.com/sectools/Deckard/dss.exe
Choisis "Enregistrer" et "Bureau" comme emplacement.
Ferme toutes les applications en cours (très important, sinon l'ordi peut planter).
Double-clique sur DSS.exe pour lancer l'outil.
S'il ne trouve pas HijackThis, clique sur Oui.
Clique sur OK à chaque fois que cela sera demandé.
L'analyse finie, un fichier texte s'affichera. Poste son contenu dans ta réponse.
Le rapport se trouve ici : C:\Deckard\System Scanner\main.txt.
crocmitel
Messages postés
41
Date d'inscription
samedi 29 mars 2008
Statut
Membre
Dernière intervention
31 mai 2009
20 juil. 2008 à 17:51
20 juil. 2008 à 17:51
bonjour lyonnais 92
d'abors merci pour ton aide, j'ai suivis les étapes j'ai eu de bloc-notes main.txt et extra.txt.
main.txt :
Deckard's System Scanner v20071014.68
Run by CLIENT on 2008-07-20 16:25:51
Computer is in Normal Mode.
--------------------------------------------------------------------------------
-- Last 5 Restore Point(s) --
12: 2008-07-19 09:52:15 UTC - RP483 - DirectX est installé
11: 2008-07-19 09:21:31 UTC - RP481 - Installé Call of Duty(R) 4 - Modern Warfare(TM)
10: 2008-07-19 09:20:31 UTC - RP479 - Installé Call of Duty(R) 4 - Modern Warfare(TM)
9: 2008-07-15 20:02:27 UTC - RP477 - Windows Update
8: 2008-07-12 20:04:26 UTC - RP476 - Windows Update
-- First Restore Point --
1: 2008-07-02 22:19:35 UTC - RP469 - Installed Nero 8 Trial. Available with Windows Installer version 1.2 and later.
Backed up registry hives.
Performed disk cleanup.
[color=red]Total Physical Memory: 1022 MiB (1024 MiB recommended)./color
-- HijackThis (run as CLIENT.exe) ----------------------------------------------
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 16:41:13, on 20/07/2008
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18000)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskeng.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe
C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Alwil Software\Avast4\ashDisp.exe
C:\Program Files\TOSHIBA\ConfigFree\NDSTray.exe
C:\Program Files\TOSHIBA\Utilities\VolControl.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Windows\System32\rundll32.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\TOSHIBA\TOSCDSPD\TOSCDSPD.exe
C:\Program Files\Synaptics\SynTP\SynToshiba.exe
C:\Windows\ehome\ehmsas.exe
C:\Program Files\TOSHIBA\ConfigFree\CFSwMgr.exe
C:\Windows\system32\taskeng.exe
C:\Users\CLIENT\Desktop\dss.exe
C:\Windows\system32\conime.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files\Internet Explorer\ieuser.exe
C:\PROGRA~1\TRENDM~1\HIJACK~1\CLIENT.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://home.sweetim.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://fr.rd.yahoo.com/customize/ie/defaults/su/msgr8/*https://fr.search.yahoo.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: SWEETIE - {1A0AADCD-3A72-4b5f-900F-E3BB5A838E2A} - (no file)
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: (no name) - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - (no file)
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [TPwrMain] %ProgramFiles%\TOSHIBA\Power Saver\TPwrMain.EXE
O4 - HKLM\..\Run: [HSON] %ProgramFiles%\TOSHIBA\TBS\HSON.exe
O4 - HKLM\..\Run: [00TCrdMain] %ProgramFiles%\TOSHIBA\FlashCards\TCrdMain.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [NDSTray.exe] NDSTray.exe
O4 - HKLM\..\Run: [TOSHIBA Volume Indicator] "C:\Program Files\Toshiba\Utilities\VolControl.exe"
O4 - HKLM\..\Run: [Toshiba Registration] C:\Program Files\Toshiba\Registration\ToshibaRegistration.exe
O4 - HKLM\..\Run: [topi] C:\Program Files\TOSHIBA\Toshiba Online Product Information\topi.exe -startup
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [SmoothView] %ProgramFiles%\Toshiba\SmoothView\SmoothView.exe
O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [NBKeyScan] "C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe"
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [ROAD ITCH AMOK PING] "C:\ProgramData\eggs bike enc.s63rl"
O4 - HKCU\..\Run: [TOSCDSPD] TOSCDSPD.EXE
O4 - HKCU\..\Run: [Amen curb] "C:\ProgramData\amokboltbolt.q8kc4u"
O4 - HKCU\..\Run: [ares] "C:\Program Files\Ares\Ares.exe" -h
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [Nokia.PCSync] "C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe" /NoDialog (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [Nokia.PCSync] "C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe" /NoDialog (User 'Default user')
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\npjpi160.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\npjpi160.dll
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: Barre de recherche Encarta - {B205A35E-1FC4-4CE3-818B-899DBBB3388C} - C:\Program Files\Common Files\Microsoft Shared\Encarta Search Bar\ENCSBAR.DLL
O9 - Extra button: eBay - {C08CAF1D-C0A3-40D5-9970-06D067EAC017} - http://www.webtip.ch/cgi-bin/toshiba/tracker_url.pl?FR (file missing)
O13 - Gopher Prefix:
O16 - DPF: {149E45D8-163E-4189-86FC-45022AB2B6C9} (SpinTop DRM Control) - file:///C:/Program%20Files/Zuma/Images/stg_drm.ocx
O16 - DPF: {CC450D71-CC90-424C-8638-1F2DBAC87A54} (ArmHelper Control) - file:///C:/Program%20Files/Zuma/Images/armhelper.ocx
O17 - HKLM\System\CCS\Services\Tcpip\..\{835EA7DD-8798-425B-BC77-649EA6DC009C}: NameServer = 208.67.220.220,208.67.222.222
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 208.67.220.220,208.67.222.222
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: NameServer = 208.67.220.220,208.67.222.222
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 208.67.220.220,208.67.222.222
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Ares Chatroom server (AresChatServer) - Ares Development Group - C:\Program Files\Ares\chatServer.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Common Files\BOONTY Shared\Service\Boonty.exe
O23 - Service: ConfigFree Service (CFSvcs) - TOSHIBA CORPORATION - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing)
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\Windows\system32\IoctlSvc.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv) - TOSHIBA Corporation - C:\Windows\system32\TODDSrv.exe
O23 - Service: TOSHIBA Power Saver (TosCoSrv) - TOSHIBA Corporation - C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe
O23 - Service: TOSHIBA Bluetooth Service - TOSHIBA CORPORATION - c:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe
d'abors merci pour ton aide, j'ai suivis les étapes j'ai eu de bloc-notes main.txt et extra.txt.
main.txt :
Deckard's System Scanner v20071014.68
Run by CLIENT on 2008-07-20 16:25:51
Computer is in Normal Mode.
--------------------------------------------------------------------------------
-- Last 5 Restore Point(s) --
12: 2008-07-19 09:52:15 UTC - RP483 - DirectX est installé
11: 2008-07-19 09:21:31 UTC - RP481 - Installé Call of Duty(R) 4 - Modern Warfare(TM)
10: 2008-07-19 09:20:31 UTC - RP479 - Installé Call of Duty(R) 4 - Modern Warfare(TM)
9: 2008-07-15 20:02:27 UTC - RP477 - Windows Update
8: 2008-07-12 20:04:26 UTC - RP476 - Windows Update
-- First Restore Point --
1: 2008-07-02 22:19:35 UTC - RP469 - Installed Nero 8 Trial. Available with Windows Installer version 1.2 and later.
Backed up registry hives.
Performed disk cleanup.
[color=red]Total Physical Memory: 1022 MiB (1024 MiB recommended)./color
-- HijackThis (run as CLIENT.exe) ----------------------------------------------
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 16:41:13, on 20/07/2008
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18000)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskeng.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe
C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Alwil Software\Avast4\ashDisp.exe
C:\Program Files\TOSHIBA\ConfigFree\NDSTray.exe
C:\Program Files\TOSHIBA\Utilities\VolControl.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Windows\System32\rundll32.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\TOSHIBA\TOSCDSPD\TOSCDSPD.exe
C:\Program Files\Synaptics\SynTP\SynToshiba.exe
C:\Windows\ehome\ehmsas.exe
C:\Program Files\TOSHIBA\ConfigFree\CFSwMgr.exe
C:\Windows\system32\taskeng.exe
C:\Users\CLIENT\Desktop\dss.exe
C:\Windows\system32\conime.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files\Internet Explorer\ieuser.exe
C:\PROGRA~1\TRENDM~1\HIJACK~1\CLIENT.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://home.sweetim.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://fr.rd.yahoo.com/customize/ie/defaults/su/msgr8/*https://fr.search.yahoo.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: SWEETIE - {1A0AADCD-3A72-4b5f-900F-E3BB5A838E2A} - (no file)
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: (no name) - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - (no file)
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [TPwrMain] %ProgramFiles%\TOSHIBA\Power Saver\TPwrMain.EXE
O4 - HKLM\..\Run: [HSON] %ProgramFiles%\TOSHIBA\TBS\HSON.exe
O4 - HKLM\..\Run: [00TCrdMain] %ProgramFiles%\TOSHIBA\FlashCards\TCrdMain.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [NDSTray.exe] NDSTray.exe
O4 - HKLM\..\Run: [TOSHIBA Volume Indicator] "C:\Program Files\Toshiba\Utilities\VolControl.exe"
O4 - HKLM\..\Run: [Toshiba Registration] C:\Program Files\Toshiba\Registration\ToshibaRegistration.exe
O4 - HKLM\..\Run: [topi] C:\Program Files\TOSHIBA\Toshiba Online Product Information\topi.exe -startup
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [SmoothView] %ProgramFiles%\Toshiba\SmoothView\SmoothView.exe
O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [NBKeyScan] "C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe"
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [ROAD ITCH AMOK PING] "C:\ProgramData\eggs bike enc.s63rl"
O4 - HKCU\..\Run: [TOSCDSPD] TOSCDSPD.EXE
O4 - HKCU\..\Run: [Amen curb] "C:\ProgramData\amokboltbolt.q8kc4u"
O4 - HKCU\..\Run: [ares] "C:\Program Files\Ares\Ares.exe" -h
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [Nokia.PCSync] "C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe" /NoDialog (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [Nokia.PCSync] "C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe" /NoDialog (User 'Default user')
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\npjpi160.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\npjpi160.dll
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: Barre de recherche Encarta - {B205A35E-1FC4-4CE3-818B-899DBBB3388C} - C:\Program Files\Common Files\Microsoft Shared\Encarta Search Bar\ENCSBAR.DLL
O9 - Extra button: eBay - {C08CAF1D-C0A3-40D5-9970-06D067EAC017} - http://www.webtip.ch/cgi-bin/toshiba/tracker_url.pl?FR (file missing)
O13 - Gopher Prefix:
O16 - DPF: {149E45D8-163E-4189-86FC-45022AB2B6C9} (SpinTop DRM Control) - file:///C:/Program%20Files/Zuma/Images/stg_drm.ocx
O16 - DPF: {CC450D71-CC90-424C-8638-1F2DBAC87A54} (ArmHelper Control) - file:///C:/Program%20Files/Zuma/Images/armhelper.ocx
O17 - HKLM\System\CCS\Services\Tcpip\..\{835EA7DD-8798-425B-BC77-649EA6DC009C}: NameServer = 208.67.220.220,208.67.222.222
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 208.67.220.220,208.67.222.222
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: NameServer = 208.67.220.220,208.67.222.222
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 208.67.220.220,208.67.222.222
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Ares Chatroom server (AresChatServer) - Ares Development Group - C:\Program Files\Ares\chatServer.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Common Files\BOONTY Shared\Service\Boonty.exe
O23 - Service: ConfigFree Service (CFSvcs) - TOSHIBA CORPORATION - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing)
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\Windows\system32\IoctlSvc.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv) - TOSHIBA Corporation - C:\Windows\system32\TODDSrv.exe
O23 - Service: TOSHIBA Power Saver (TosCoSrv) - TOSHIBA Corporation - C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe
O23 - Service: TOSHIBA Bluetooth Service - TOSHIBA CORPORATION - c:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe
crocmitel
Messages postés
41
Date d'inscription
samedi 29 mars 2008
Statut
Membre
Dernière intervention
31 mai 2009
20 juil. 2008 à 17:52
20 juil. 2008 à 17:52
bonjour lyonnais 92
d'abors merci pour ton aide, j'ai suivis les étapes j'ai eu de bloc-notes main.txt et extra.txt.
main.txt :
Deckard's System Scanner v20071014.68
Run by CLIENT on 2008-07-20 16:25:51
Computer is in Normal Mode.
--------------------------------------------------------------------------------
-- Last 5 Restore Point(s) --
12: 2008-07-19 09:52:15 UTC - RP483 - DirectX est installé
11: 2008-07-19 09:21:31 UTC - RP481 - Installé Call of Duty(R) 4 - Modern Warfare(TM)
10: 2008-07-19 09:20:31 UTC - RP479 - Installé Call of Duty(R) 4 - Modern Warfare(TM)
9: 2008-07-15 20:02:27 UTC - RP477 - Windows Update
8: 2008-07-12 20:04:26 UTC - RP476 - Windows Update
-- First Restore Point --
1: 2008-07-02 22:19:35 UTC - RP469 - Installed Nero 8 Trial. Available with Windows Installer version 1.2 and later.
Backed up registry hives.
Performed disk cleanup.
[color=red]Total Physical Memory: 1022 MiB (1024 MiB recommended)./color
-- HijackThis (run as CLIENT.exe) ----------------------------------------------
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 16:41:13, on 20/07/2008
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18000)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskeng.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe
C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Alwil Software\Avast4\ashDisp.exe
C:\Program Files\TOSHIBA\ConfigFree\NDSTray.exe
C:\Program Files\TOSHIBA\Utilities\VolControl.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Windows\System32\rundll32.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\TOSHIBA\TOSCDSPD\TOSCDSPD.exe
C:\Program Files\Synaptics\SynTP\SynToshiba.exe
C:\Windows\ehome\ehmsas.exe
C:\Program Files\TOSHIBA\ConfigFree\CFSwMgr.exe
C:\Windows\system32\taskeng.exe
C:\Users\CLIENT\Desktop\dss.exe
C:\Windows\system32\conime.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files\Internet Explorer\ieuser.exe
C:\PROGRA~1\TRENDM~1\HIJACK~1\CLIENT.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://home.sweetim.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://fr.rd.yahoo.com/customize/ie/defaults/su/msgr8/*https://fr.search.yahoo.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: SWEETIE - {1A0AADCD-3A72-4b5f-900F-E3BB5A838E2A} - (no file)
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: (no name) - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - (no file)
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [TPwrMain] %ProgramFiles%\TOSHIBA\Power Saver\TPwrMain.EXE
O4 - HKLM\..\Run: [HSON] %ProgramFiles%\TOSHIBA\TBS\HSON.exe
O4 - HKLM\..\Run: [00TCrdMain] %ProgramFiles%\TOSHIBA\FlashCards\TCrdMain.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [NDSTray.exe] NDSTray.exe
O4 - HKLM\..\Run: [TOSHIBA Volume Indicator] "C:\Program Files\Toshiba\Utilities\VolControl.exe"
O4 - HKLM\..\Run: [Toshiba Registration] C:\Program Files\Toshiba\Registration\ToshibaRegistration.exe
O4 - HKLM\..\Run: [topi] C:\Program Files\TOSHIBA\Toshiba Online Product Information\topi.exe -startup
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [SmoothView] %ProgramFiles%\Toshiba\SmoothView\SmoothView.exe
O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [NBKeyScan] "C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe"
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [ROAD ITCH AMOK PING] "C:\ProgramData\eggs bike enc.s63rl"
O4 - HKCU\..\Run: [TOSCDSPD] TOSCDSPD.EXE
O4 - HKCU\..\Run: [Amen curb] "C:\ProgramData\amokboltbolt.q8kc4u"
O4 - HKCU\..\Run: [ares] "C:\Program Files\Ares\Ares.exe" -h
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [Nokia.PCSync] "C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe" /NoDialog (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [Nokia.PCSync] "C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe" /NoDialog (User 'Default user')
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\npjpi160.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\npjpi160.dll
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: Barre de recherche Encarta - {B205A35E-1FC4-4CE3-818B-899DBBB3388C} - C:\Program Files\Common Files\Microsoft Shared\Encarta Search Bar\ENCSBAR.DLL
O9 - Extra button: eBay - {C08CAF1D-C0A3-40D5-9970-06D067EAC017} - http://www.webtip.ch/cgi-bin/toshiba/tracker_url.pl?FR (file missing)
O13 - Gopher Prefix:
O16 - DPF: {149E45D8-163E-4189-86FC-45022AB2B6C9} (SpinTop DRM Control) - file:///C:/Program%20Files/Zuma/Images/stg_drm.ocx
O16 - DPF: {CC450D71-CC90-424C-8638-1F2DBAC87A54} (ArmHelper Control) - file:///C:/Program%20Files/Zuma/Images/armhelper.ocx
O17 - HKLM\System\CCS\Services\Tcpip\..\{835EA7DD-8798-425B-BC77-649EA6DC009C}: NameServer = 208.67.220.220,208.67.222.222
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 208.67.220.220,208.67.222.222
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: NameServer = 208.67.220.220,208.67.222.222
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 208.67.220.220,208.67.222.222
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Ares Chatroom server (AresChatServer) - Ares Development Group - C:\Program Files\Ares\chatServer.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Common Files\BOONTY Shared\Service\Boonty.exe
O23 - Service: ConfigFree Service (CFSvcs) - TOSHIBA CORPORATION - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing)
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\Windows\system32\IoctlSvc.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv) - TOSHIBA Corporation - C:\Windows\system32\TODDSrv.exe
O23 - Service: TOSHIBA Power Saver (TosCoSrv) - TOSHIBA Corporation - C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe
O23 - Service: TOSHIBA Bluetooth Service - TOSHIBA CORPORATION - c:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe
d'abors merci pour ton aide, j'ai suivis les étapes j'ai eu de bloc-notes main.txt et extra.txt.
main.txt :
Deckard's System Scanner v20071014.68
Run by CLIENT on 2008-07-20 16:25:51
Computer is in Normal Mode.
--------------------------------------------------------------------------------
-- Last 5 Restore Point(s) --
12: 2008-07-19 09:52:15 UTC - RP483 - DirectX est installé
11: 2008-07-19 09:21:31 UTC - RP481 - Installé Call of Duty(R) 4 - Modern Warfare(TM)
10: 2008-07-19 09:20:31 UTC - RP479 - Installé Call of Duty(R) 4 - Modern Warfare(TM)
9: 2008-07-15 20:02:27 UTC - RP477 - Windows Update
8: 2008-07-12 20:04:26 UTC - RP476 - Windows Update
-- First Restore Point --
1: 2008-07-02 22:19:35 UTC - RP469 - Installed Nero 8 Trial. Available with Windows Installer version 1.2 and later.
Backed up registry hives.
Performed disk cleanup.
[color=red]Total Physical Memory: 1022 MiB (1024 MiB recommended)./color
-- HijackThis (run as CLIENT.exe) ----------------------------------------------
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 16:41:13, on 20/07/2008
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18000)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskeng.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe
C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Alwil Software\Avast4\ashDisp.exe
C:\Program Files\TOSHIBA\ConfigFree\NDSTray.exe
C:\Program Files\TOSHIBA\Utilities\VolControl.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Windows\System32\rundll32.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\TOSHIBA\TOSCDSPD\TOSCDSPD.exe
C:\Program Files\Synaptics\SynTP\SynToshiba.exe
C:\Windows\ehome\ehmsas.exe
C:\Program Files\TOSHIBA\ConfigFree\CFSwMgr.exe
C:\Windows\system32\taskeng.exe
C:\Users\CLIENT\Desktop\dss.exe
C:\Windows\system32\conime.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files\Internet Explorer\ieuser.exe
C:\PROGRA~1\TRENDM~1\HIJACK~1\CLIENT.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://home.sweetim.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://fr.rd.yahoo.com/customize/ie/defaults/su/msgr8/*https://fr.search.yahoo.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: SWEETIE - {1A0AADCD-3A72-4b5f-900F-E3BB5A838E2A} - (no file)
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: (no name) - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - (no file)
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [TPwrMain] %ProgramFiles%\TOSHIBA\Power Saver\TPwrMain.EXE
O4 - HKLM\..\Run: [HSON] %ProgramFiles%\TOSHIBA\TBS\HSON.exe
O4 - HKLM\..\Run: [00TCrdMain] %ProgramFiles%\TOSHIBA\FlashCards\TCrdMain.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [NDSTray.exe] NDSTray.exe
O4 - HKLM\..\Run: [TOSHIBA Volume Indicator] "C:\Program Files\Toshiba\Utilities\VolControl.exe"
O4 - HKLM\..\Run: [Toshiba Registration] C:\Program Files\Toshiba\Registration\ToshibaRegistration.exe
O4 - HKLM\..\Run: [topi] C:\Program Files\TOSHIBA\Toshiba Online Product Information\topi.exe -startup
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [SmoothView] %ProgramFiles%\Toshiba\SmoothView\SmoothView.exe
O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [NBKeyScan] "C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe"
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [ROAD ITCH AMOK PING] "C:\ProgramData\eggs bike enc.s63rl"
O4 - HKCU\..\Run: [TOSCDSPD] TOSCDSPD.EXE
O4 - HKCU\..\Run: [Amen curb] "C:\ProgramData\amokboltbolt.q8kc4u"
O4 - HKCU\..\Run: [ares] "C:\Program Files\Ares\Ares.exe" -h
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [Nokia.PCSync] "C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe" /NoDialog (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [Nokia.PCSync] "C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe" /NoDialog (User 'Default user')
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\npjpi160.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\npjpi160.dll
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: Barre de recherche Encarta - {B205A35E-1FC4-4CE3-818B-899DBBB3388C} - C:\Program Files\Common Files\Microsoft Shared\Encarta Search Bar\ENCSBAR.DLL
O9 - Extra button: eBay - {C08CAF1D-C0A3-40D5-9970-06D067EAC017} - http://www.webtip.ch/cgi-bin/toshiba/tracker_url.pl?FR (file missing)
O13 - Gopher Prefix:
O16 - DPF: {149E45D8-163E-4189-86FC-45022AB2B6C9} (SpinTop DRM Control) - file:///C:/Program%20Files/Zuma/Images/stg_drm.ocx
O16 - DPF: {CC450D71-CC90-424C-8638-1F2DBAC87A54} (ArmHelper Control) - file:///C:/Program%20Files/Zuma/Images/armhelper.ocx
O17 - HKLM\System\CCS\Services\Tcpip\..\{835EA7DD-8798-425B-BC77-649EA6DC009C}: NameServer = 208.67.220.220,208.67.222.222
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 208.67.220.220,208.67.222.222
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: NameServer = 208.67.220.220,208.67.222.222
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 208.67.220.220,208.67.222.222
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Ares Chatroom server (AresChatServer) - Ares Development Group - C:\Program Files\Ares\chatServer.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Common Files\BOONTY Shared\Service\Boonty.exe
O23 - Service: ConfigFree Service (CFSvcs) - TOSHIBA CORPORATION - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing)
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\Windows\system32\IoctlSvc.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv) - TOSHIBA Corporation - C:\Windows\system32\TODDSrv.exe
O23 - Service: TOSHIBA Power Saver (TosCoSrv) - TOSHIBA Corporation - C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe
O23 - Service: TOSHIBA Bluetooth Service - TOSHIBA CORPORATION - c:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe
Lyonnais92
Messages postés
25159
Date d'inscription
vendredi 23 juin 2006
Statut
Contributeur sécurité
Dernière intervention
16 septembre 2016
1 537
20 juil. 2008 à 18:34
20 juil. 2008 à 18:34
Bonjour,
3 infections dont 2 anciennes (début mai).
Télécharge Lop S&D ici :
https://77b4795d-a-62cb3a1a-s-sites.googlegroups.com/site/eric71mespages/LopSD.exe?attachauth=ANoY7co3ntqUavpZ3q1BG-h4pc13vqDZmhcNeEPChtsyrgAykRbhE8bZzhk979EfQD4AgwtQUHCaQ7ZQwNYMo3_0kA8htAspckDJtu2K5t6J9z6dLW4fpZyH4FpFL1tVMBZ8H-KnN7afZ5vt-WxZRpnynk-a0XmV_Y0C0q6DxGEDKie1TnPT7gFoZnoCnspzBmbW6ZzxA4fNr3oEDlbelNZON-LjF8nOmQ%3D%3D&attredirects=2
Double-clique dessus pour lancer l'installation
Puis double-clique [b]sur le raccourci Lop S&D/b présent sur ton bureau
Séléctionne la langue souhaitée , puis choisis [b]l'Option 1/b ( Recherche )
Patiente jusqu'à la fin du scan
Poste le rapport généré ( C:lopR.txt )
( Si le Bureau ne réapparaît pas presse Ctrl + Alt + Suppr , Onglet Fichier ,
Nouvelle tâche , tape explorer.exe et valide )
3 infections dont 2 anciennes (début mai).
Télécharge Lop S&D ici :
https://77b4795d-a-62cb3a1a-s-sites.googlegroups.com/site/eric71mespages/LopSD.exe?attachauth=ANoY7co3ntqUavpZ3q1BG-h4pc13vqDZmhcNeEPChtsyrgAykRbhE8bZzhk979EfQD4AgwtQUHCaQ7ZQwNYMo3_0kA8htAspckDJtu2K5t6J9z6dLW4fpZyH4FpFL1tVMBZ8H-KnN7afZ5vt-WxZRpnynk-a0XmV_Y0C0q6DxGEDKie1TnPT7gFoZnoCnspzBmbW6ZzxA4fNr3oEDlbelNZON-LjF8nOmQ%3D%3D&attredirects=2
Double-clique dessus pour lancer l'installation
Puis double-clique [b]sur le raccourci Lop S&D/b présent sur ton bureau
Séléctionne la langue souhaitée , puis choisis [b]l'Option 1/b ( Recherche )
Patiente jusqu'à la fin du scan
Poste le rapport généré ( C:lopR.txt )
( Si le Bureau ne réapparaît pas presse Ctrl + Alt + Suppr , Onglet Fichier ,
Nouvelle tâche , tape explorer.exe et valide )
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
crocmitel
Messages postés
41
Date d'inscription
samedi 29 mars 2008
Statut
Membre
Dernière intervention
31 mai 2009
9 août 2008 à 16:48
9 août 2008 à 16:48
dsl pour le retard lyennais,on m'a coupé la connexion,g suivi les étapes et voila le lopR.txt:
--------------------\\ Lop S&D 4.2.2-5 XP/Vista
[ USER : CLIENT ] [ "C:\Windows\system32" ] [ Selection : 1 ]
[ 09/08/2008 | 15:42:47,98 ] [ PC : PC-DE-CLIENT ]
[ MAJ : 01-08-2008 | 01:40 ]
[ UAC => 1 !! ]
--------------------\\
--------------------\\
[09/08/2008 15:09][--a------] C:\Windows\tasks\V‚rifier les mises … jour de Windows Live Toolbar.job
[09/08/2008 15:41][--ah-----] C:\Windows\tasks\SA.DAT
[09/08/2008 15:39][--a------] C:\Windows\tasks\SCHEDLGU.TXT
[09/08/2008 15:05][--ah-----] C:\Windows\tasks\User_Feed_Synchronization-{D9B30BB4-63C0-47D4-A444-A174F9308500}.job
--------------------\\
[26/05/2008|18:43] C:\ProgramData\Adobe
[09/05/2008|18:47] C:\ProgramData\amokboltbolt.2h5hsk
[24/04/2008|20:38] C:\ProgramData\amokboltbolt.8t5vn1
[26/05/2008|18:33] C:\ProgramData\amokboltbolt.e4ly0
[22/06/2008|16:24] C:\ProgramData\amokboltbolt.kzsesz5
[22/06/2008|16:24] C:\ProgramData\amokboltbolt.q8kc4u
[14/01/2008|18:29] C:\ProgramData\Apple Computer
[02/11/2006|14:02] C:\ProgramData\Application Data
[19/01/2008|23:02] C:\ProgramData\Armagetron
[26/05/2008|18:34] C:\ProgramData\Bits Real Thunk.78eqn74
[29/02/2008|18:42] C:\ProgramData\BOONTY
[01/07/2006|16:03] C:\ProgramData\Bureau
[08/07/2008|00:30] C:\ProgramData\Cash lies default
[02/11/2006|14:02] C:\ProgramData\Desktop
[02/11/2006|14:02] C:\ProgramData\Documents
[22/12/2007|18:03] C:\ProgramData\Downloaded Installations
[22/06/2008|16:24] C:\ProgramData\eggs bike enc.s63rl
[30/06/2008|20:15] C:\ProgramData\eMule
[25/11/2007|15:47] C:\ProgramData\ezsid.dat
[01/07/2006|16:03] C:\ProgramData\Favoris
[02/11/2006|14:02] C:\ProgramData\Favorites
[05/11/2007|18:35] C:\ProgramData\Google
[19/01/2008|18:03] C:\ProgramData\Installations
[09/05/2008|19:02] C:\ProgramData\Kaspersky Lab
[14/06/2008|20:41] C:\ProgramData\LauncherAccess.dt
[06/02/2008|19:47] C:\ProgramData\LDM
[22/06/2008|16:24] C:\ProgramData\Long slow road itch
[21/02/2008|20:44] C:\ProgramData\MAGIX
[28/05/2008|21:57] C:\ProgramData\Malwarebytes
[04/04/2008|19:15] C:\ProgramData\Media Center Programs
[01/07/2006|16:03] C:\ProgramData\Menu D‚marrer
[24/04/2008|21:01] C:\ProgramData\Messenger Plus!
[18/04/2008|19:36] C:\ProgramData\Microsoft
[11/07/2008|21:28] C:\ProgramData\Microsoft Help
[01/07/2006|16:03] C:\ProgramData\ModŠles
[03/07/2008|20:22] C:\ProgramData\Nero
[09/08/2008|15:39] C:\ProgramData\ntuser.pol
[20/12/2006|13:47] C:\ProgramData\NVIDIA
[22/12/2007|18:16] C:\ProgramData\PC Suite
[02/11/2007|20:03] C:\ProgramData\PlayFirst
[09/06/2008|22:36] C:\ProgramData\PopCap Games
[25/11/2007|15:44] C:\ProgramData\Skype
[09/08/2008|15:42] C:\ProgramData\Spybot - Search & Destroy
[02/11/2006|14:02] C:\ProgramData\Start Menu
[02/07/2006|11:04] C:\ProgramData\Symantec
[28/07/2008|16:50] C:\ProgramData\TEMP
[02/11/2006|14:02] C:\ProgramData\Templates
[09/05/2008|18:48] C:\ProgramData\tick web each.6cfncj
[20/12/2006|11:22] C:\ProgramData\Toshiba
[01/07/2006|16:07] C:\ProgramData\ToshibaEurope
[22/11/2007|22:54] C:\ProgramData\Ubisoft
[05/11/2007|21:28] C:\ProgramData\UDL
[13/06/2008|18:59] C:\ProgramData\UIB
[20/12/2006|12:17] C:\ProgramData\Ulead Systems
[24/04/2008|20:39] C:\ProgramData\View Wave Proxy.u72ch
[07/07/2008|19:06] C:\ProgramData\WindowsSearch
[14/03/2008|20:26] C:\ProgramData\WLInstaller
[31/10/2007|18:26] C:\ProgramData\Xerox
[24/10/2007|18:07] C:\ProgramData\Yahoo!
--------------------\\
[19/07/2008|10:23] C:\Program Files\Activision
[05/11/2007|18:37] C:\Program Files\Adobe
[15/03/2008|18:20] C:\Program Files\ÇÖá€Æ € ÒÞ‘¡Ø
[28/02/2008|20:23] C:\Program Files\Alwil Software
[06/07/2008|16:37] C:\Program Files\Ares
[26/01/2008|14:25] C:\Program Files\bin
[11/06/2008|21:36] C:\Program Files\BoontyGames
[26/01/2008|14:11] C:\Program Files\Borland
[25/01/2008|19:27] C:\Program Files\CCleaner
[28/05/2008|19:21] C:\Program Files\Circle Developement
[27/06/2008|22:36] C:\Program Files\Common Files
[13/06/2008|18:32] C:\Program Files\CONEXANT
[14/06/2008|23:15] C:\Program Files\desktop.ini
[30/04/2008|23:15] C:\Program Files\DivX
[02/06/2008|19:03] C:\Program Files\EA Games
[30/06/2008|20:11] C:\Program Files\eMule
[11/01/2008|23:09] C:\Program Files\EPSON
[01/07/2006|16:03] C:\Program Files\Fichiers communs [C:\Program Files\Common Files]
[03/04/2008|17:57] C:\Program Files\Grand Theft Auto III
[11/06/2008|21:36] C:\Program Files\Gunner 2
[26/01/2008|14:25] C:\Program Files\HtmlRef
[26/01/2008|14:25] C:\Program Files\ib_install.log
[22/10/2003|20:55] C:\Program Files\ibuninst.exe
[19/07/2008|10:50] C:\Program Files\InstallShield Installation Information
[22/10/2003|22:49] C:\Program Files\interbase.msg
[14/06/2008|23:03] C:\Program Files\Internet Explorer
[20/12/2006|12:18] C:\Program Files\InterVideo
[20/12/2006|08:52] C:\Program Files\Java
[15/11/2007|19:40] C:\Program Files\JPEG PC Camera
[18/04/2008|19:31] C:\Program Files\Learning Essentials
[22/10/2003|22:49] C:\Program Files\license.txt
[07/07/2008|18:21] C:\Program Files\LimeWire
[19/11/2007|20:25] C:\Program Files\Macrogaming
[19/07/2008|00:32] C:\Program Files\Malwarebytes' Anti-Malware
[24/04/2008|20:37] C:\Program Files\Messenger Plus! Live
[14/01/2008|17:34] C:\Program Files\Micro Application
[25/10/2007|18:51] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[18/04/2008|19:36] C:\Program Files\Microsoft Etudes
[02/11/2006|13:37] C:\Program Files\Microsoft Games
[26/01/2008|13:38] C:\Program Files\Microsoft Office
[19/05/2008|20:59] C:\Program Files\Microsoft Silverlight
[14/03/2008|21:04] C:\Program Files\Microsoft SQL Server Compact Edition
[01/07/2006|16:23] C:\Program Files\Microsoft Visual Studio
[26/01/2008|13:38] C:\Program Files\Microsoft Visual Studio .NET 2003
[01/07/2006|16:16] C:\Program Files\Microsoft Visual Studio 8
[01/07/2006|16:24] C:\Program Files\Microsoft Works
[26/01/2008|13:38] C:\Program Files\Microsoft.NET
[14/06/2008|23:03] C:\Program Files\Movie Maker
[01/07/2006|16:23] C:\Program Files\MSBuild
[01/07/2006|16:26] C:\Program Files\MSECache
[05/11/2007|19:40] C:\Program Files\MSN
[25/10/2007|18:32] C:\Program Files\MSXML 4.0
[21/05/2008|00:09] C:\Program Files\Neoact
[02/07/2008|23:23] C:\Program Files\Nero
[03/05/2008|17:58] C:\Program Files\NeroInstall.bak
[22/12/2007|18:03] C:\Program Files\Nokia
[22/12/2007|17:57] C:\Program Files\PC Connectivity Solution
[01/02/2008|21:45] C:\Program Files\Pro Evolution Soccer 5
[14/01/2008|17:34] C:\Program Files\QuickTime
[11/11/2007|19:00] C:\Program Files\Real
[02/11/2006|13:37] C:\Program Files\Reference Assemblies
[31/05/2008|14:03] C:\Program Files\ReflexiveArcade
[22/10/2003|22:49] C:\Program Files\ReleaseNotes.pdf
[23/01/2008|21:59] C:\Program Files\Samsung
[04/04/2008|19:40] C:\Program Files\skins
[17/01/2008|21:01] C:\Program Files\Skype
[25/11/2007|15:43] C:\Program Files\SkypeSetup.exe
[01/08/2006|22:49] C:\Program Files\Sony
[09/08/2008|15:37] C:\Program Files\Spybot - Search & Destroy
[20/12/2006|09:08] C:\Program Files\Synaptics
[26/06/2008|20:07] C:\Program Files\SystemRequirementsLab
[20/12/2006|15:01] C:\Program Files\TOSHIBA
[20/07/2008|16:40] C:\Program Files\Trend Micro
[14/12/2007|18:26] C:\Program Files\Ubisoft
[20/12/2006|12:15] C:\Program Files\Ulead Systems
[26/01/2008|14:25] C:\Program Files\Uninst
[02/11/2006|14:01] C:\Program Files\Uninstall Information
[13/11/2007|19:58] C:\Program Files\USB Vibration
[27/05/2008|22:06] C:\Program Files\usenext_client.exe
[30/04/2008|22:24] C:\Program Files\uTorrent
[19/01/2008|18:22] C:\Program Files\VideoLAN
[03/06/2008|22:39] C:\Program Files\vlc
[03/02/2008|00:32] C:\Program Files\Winamp
[14/06/2008|23:03] C:\Program Files\Windows Calendar
[14/06/2008|23:03] C:\Program Files\Windows Collaboration
[14/06/2008|23:03] C:\Program Files\Windows Defender
[14/06/2008|23:03] C:\Program Files\Windows Journal
[04/04/2008|19:25] C:\Program Files\Windows Live
[30/10/2007|20:47] C:\Program Files\Windows Live Toolbar
[10/07/2008|01:34] C:\Program Files\Windows Mail
[20/12/2006|12:18] C:\Program Files\Windows Media Components
[14/06/2008|23:03] C:\Program Files\Windows Media Player
[01/07/2006|16:03] C:\Program Files\Windows NT
[14/06/2008|23:03] C:\Program Files\Windows Photo Gallery
[14/06/2008|23:03] C:\Program Files\Windows Sidebar
[13/11/2007|18:41] C:\Program Files\WinRAR
[26/01/2008|14:27] C:\Program Files\Wise Owl, Inc
[26/10/2007|12:08] C:\Program Files\Yahoo!
[28/07/2008|16:51] C:\Program Files\Zuma
--------------------\\
[26/05/2008|18:43] C:\Program Files\Common Files\Adobe
[29/02/2008|18:42] C:\Program Files\Common Files\BOONTY Shared
[29/05/2008|21:09] C:\Program Files\Common Files\Borland Shared
[01/07/2006|16:23] C:\Program Files\Common Files\DESIGNER
[05/11/2007|21:31] C:\Program Files\Common Files\InstallShield
[20/12/2006|08:52] C:\Program Files\Common Files\Java
[21/02/2008|20:43] C:\Program Files\Common Files\MAGIX Shared
[18/04/2008|19:36] C:\Program Files\Common Files\microsoft shared
[03/07/2008|20:29] C:\Program Files\Common Files\Nero
[22/12/2007|18:03] C:\Program Files\Common Files\Nokia
[22/12/2007|18:03] C:\Program Files\Common Files\PCSuite
[07/11/2007|20:23] C:\Program Files\Common Files\PX Storage Engine
[01/12/2007|22:26] C:\Program Files\Common Files\Real
[02/11/2006|12:18] C:\Program Files\Common Files\Services
[27/06/2008|22:36] C:\Program Files\Common Files\Skype
[02/11/2006|12:18] C:\Program Files\Common Files\SpeechEngines
[02/07/2006|11:06] C:\Program Files\Common Files\Symantec Shared
[14/06/2008|23:03] C:\Program Files\Common Files\System
[20/12/2006|12:18] C:\Program Files\Common Files\Ulead Systems
[02/02/2008|15:26] C:\Program Files\Common Files\WindowsLiveInstaller
[01/12/2007|22:26] C:\Program Files\Common Files\xing shared
--------------------\\ Process
... OK !
--------------------\\
Commande ECHO d‚sactiv‚e.
--------------------\\
Commande ECHO d‚sactiv‚e.
--------------------\\
..... OK !
--------------------\\
Commande ECHO d‚sactiv‚e.
--------------------\\
--------------------\\
Commande ECHO d‚sactiv‚e.
[F:26][D:16]-> C:\Users\CLIENT\AppData\Local\Temp
[F:42][D:6]-> C:\$Recycle.Bin
--------------------\\ 15:42:54,62
[ UAC => 1 ]
--------------------\\ Lop S&D 4.2.2-5 XP/Vista
[ USER : CLIENT ] [ "C:\Windows\system32" ] [ Selection : 1 ]
[ 09/08/2008 | 15:42:47,98 ] [ PC : PC-DE-CLIENT ]
[ MAJ : 01-08-2008 | 01:40 ]
[ UAC => 1 !! ]
--------------------\\
--------------------\\
[09/08/2008 15:09][--a------] C:\Windows\tasks\V‚rifier les mises … jour de Windows Live Toolbar.job
[09/08/2008 15:41][--ah-----] C:\Windows\tasks\SA.DAT
[09/08/2008 15:39][--a------] C:\Windows\tasks\SCHEDLGU.TXT
[09/08/2008 15:05][--ah-----] C:\Windows\tasks\User_Feed_Synchronization-{D9B30BB4-63C0-47D4-A444-A174F9308500}.job
--------------------\\
[26/05/2008|18:43] C:\ProgramData\Adobe
[09/05/2008|18:47] C:\ProgramData\amokboltbolt.2h5hsk
[24/04/2008|20:38] C:\ProgramData\amokboltbolt.8t5vn1
[26/05/2008|18:33] C:\ProgramData\amokboltbolt.e4ly0
[22/06/2008|16:24] C:\ProgramData\amokboltbolt.kzsesz5
[22/06/2008|16:24] C:\ProgramData\amokboltbolt.q8kc4u
[14/01/2008|18:29] C:\ProgramData\Apple Computer
[02/11/2006|14:02] C:\ProgramData\Application Data
[19/01/2008|23:02] C:\ProgramData\Armagetron
[26/05/2008|18:34] C:\ProgramData\Bits Real Thunk.78eqn74
[29/02/2008|18:42] C:\ProgramData\BOONTY
[01/07/2006|16:03] C:\ProgramData\Bureau
[08/07/2008|00:30] C:\ProgramData\Cash lies default
[02/11/2006|14:02] C:\ProgramData\Desktop
[02/11/2006|14:02] C:\ProgramData\Documents
[22/12/2007|18:03] C:\ProgramData\Downloaded Installations
[22/06/2008|16:24] C:\ProgramData\eggs bike enc.s63rl
[30/06/2008|20:15] C:\ProgramData\eMule
[25/11/2007|15:47] C:\ProgramData\ezsid.dat
[01/07/2006|16:03] C:\ProgramData\Favoris
[02/11/2006|14:02] C:\ProgramData\Favorites
[05/11/2007|18:35] C:\ProgramData\Google
[19/01/2008|18:03] C:\ProgramData\Installations
[09/05/2008|19:02] C:\ProgramData\Kaspersky Lab
[14/06/2008|20:41] C:\ProgramData\LauncherAccess.dt
[06/02/2008|19:47] C:\ProgramData\LDM
[22/06/2008|16:24] C:\ProgramData\Long slow road itch
[21/02/2008|20:44] C:\ProgramData\MAGIX
[28/05/2008|21:57] C:\ProgramData\Malwarebytes
[04/04/2008|19:15] C:\ProgramData\Media Center Programs
[01/07/2006|16:03] C:\ProgramData\Menu D‚marrer
[24/04/2008|21:01] C:\ProgramData\Messenger Plus!
[18/04/2008|19:36] C:\ProgramData\Microsoft
[11/07/2008|21:28] C:\ProgramData\Microsoft Help
[01/07/2006|16:03] C:\ProgramData\ModŠles
[03/07/2008|20:22] C:\ProgramData\Nero
[09/08/2008|15:39] C:\ProgramData\ntuser.pol
[20/12/2006|13:47] C:\ProgramData\NVIDIA
[22/12/2007|18:16] C:\ProgramData\PC Suite
[02/11/2007|20:03] C:\ProgramData\PlayFirst
[09/06/2008|22:36] C:\ProgramData\PopCap Games
[25/11/2007|15:44] C:\ProgramData\Skype
[09/08/2008|15:42] C:\ProgramData\Spybot - Search & Destroy
[02/11/2006|14:02] C:\ProgramData\Start Menu
[02/07/2006|11:04] C:\ProgramData\Symantec
[28/07/2008|16:50] C:\ProgramData\TEMP
[02/11/2006|14:02] C:\ProgramData\Templates
[09/05/2008|18:48] C:\ProgramData\tick web each.6cfncj
[20/12/2006|11:22] C:\ProgramData\Toshiba
[01/07/2006|16:07] C:\ProgramData\ToshibaEurope
[22/11/2007|22:54] C:\ProgramData\Ubisoft
[05/11/2007|21:28] C:\ProgramData\UDL
[13/06/2008|18:59] C:\ProgramData\UIB
[20/12/2006|12:17] C:\ProgramData\Ulead Systems
[24/04/2008|20:39] C:\ProgramData\View Wave Proxy.u72ch
[07/07/2008|19:06] C:\ProgramData\WindowsSearch
[14/03/2008|20:26] C:\ProgramData\WLInstaller
[31/10/2007|18:26] C:\ProgramData\Xerox
[24/10/2007|18:07] C:\ProgramData\Yahoo!
--------------------\\
[19/07/2008|10:23] C:\Program Files\Activision
[05/11/2007|18:37] C:\Program Files\Adobe
[15/03/2008|18:20] C:\Program Files\ÇÖá€Æ € ÒÞ‘¡Ø
[28/02/2008|20:23] C:\Program Files\Alwil Software
[06/07/2008|16:37] C:\Program Files\Ares
[26/01/2008|14:25] C:\Program Files\bin
[11/06/2008|21:36] C:\Program Files\BoontyGames
[26/01/2008|14:11] C:\Program Files\Borland
[25/01/2008|19:27] C:\Program Files\CCleaner
[28/05/2008|19:21] C:\Program Files\Circle Developement
[27/06/2008|22:36] C:\Program Files\Common Files
[13/06/2008|18:32] C:\Program Files\CONEXANT
[14/06/2008|23:15] C:\Program Files\desktop.ini
[30/04/2008|23:15] C:\Program Files\DivX
[02/06/2008|19:03] C:\Program Files\EA Games
[30/06/2008|20:11] C:\Program Files\eMule
[11/01/2008|23:09] C:\Program Files\EPSON
[01/07/2006|16:03] C:\Program Files\Fichiers communs [C:\Program Files\Common Files]
[03/04/2008|17:57] C:\Program Files\Grand Theft Auto III
[11/06/2008|21:36] C:\Program Files\Gunner 2
[26/01/2008|14:25] C:\Program Files\HtmlRef
[26/01/2008|14:25] C:\Program Files\ib_install.log
[22/10/2003|20:55] C:\Program Files\ibuninst.exe
[19/07/2008|10:50] C:\Program Files\InstallShield Installation Information
[22/10/2003|22:49] C:\Program Files\interbase.msg
[14/06/2008|23:03] C:\Program Files\Internet Explorer
[20/12/2006|12:18] C:\Program Files\InterVideo
[20/12/2006|08:52] C:\Program Files\Java
[15/11/2007|19:40] C:\Program Files\JPEG PC Camera
[18/04/2008|19:31] C:\Program Files\Learning Essentials
[22/10/2003|22:49] C:\Program Files\license.txt
[07/07/2008|18:21] C:\Program Files\LimeWire
[19/11/2007|20:25] C:\Program Files\Macrogaming
[19/07/2008|00:32] C:\Program Files\Malwarebytes' Anti-Malware
[24/04/2008|20:37] C:\Program Files\Messenger Plus! Live
[14/01/2008|17:34] C:\Program Files\Micro Application
[25/10/2007|18:51] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[18/04/2008|19:36] C:\Program Files\Microsoft Etudes
[02/11/2006|13:37] C:\Program Files\Microsoft Games
[26/01/2008|13:38] C:\Program Files\Microsoft Office
[19/05/2008|20:59] C:\Program Files\Microsoft Silverlight
[14/03/2008|21:04] C:\Program Files\Microsoft SQL Server Compact Edition
[01/07/2006|16:23] C:\Program Files\Microsoft Visual Studio
[26/01/2008|13:38] C:\Program Files\Microsoft Visual Studio .NET 2003
[01/07/2006|16:16] C:\Program Files\Microsoft Visual Studio 8
[01/07/2006|16:24] C:\Program Files\Microsoft Works
[26/01/2008|13:38] C:\Program Files\Microsoft.NET
[14/06/2008|23:03] C:\Program Files\Movie Maker
[01/07/2006|16:23] C:\Program Files\MSBuild
[01/07/2006|16:26] C:\Program Files\MSECache
[05/11/2007|19:40] C:\Program Files\MSN
[25/10/2007|18:32] C:\Program Files\MSXML 4.0
[21/05/2008|00:09] C:\Program Files\Neoact
[02/07/2008|23:23] C:\Program Files\Nero
[03/05/2008|17:58] C:\Program Files\NeroInstall.bak
[22/12/2007|18:03] C:\Program Files\Nokia
[22/12/2007|17:57] C:\Program Files\PC Connectivity Solution
[01/02/2008|21:45] C:\Program Files\Pro Evolution Soccer 5
[14/01/2008|17:34] C:\Program Files\QuickTime
[11/11/2007|19:00] C:\Program Files\Real
[02/11/2006|13:37] C:\Program Files\Reference Assemblies
[31/05/2008|14:03] C:\Program Files\ReflexiveArcade
[22/10/2003|22:49] C:\Program Files\ReleaseNotes.pdf
[23/01/2008|21:59] C:\Program Files\Samsung
[04/04/2008|19:40] C:\Program Files\skins
[17/01/2008|21:01] C:\Program Files\Skype
[25/11/2007|15:43] C:\Program Files\SkypeSetup.exe
[01/08/2006|22:49] C:\Program Files\Sony
[09/08/2008|15:37] C:\Program Files\Spybot - Search & Destroy
[20/12/2006|09:08] C:\Program Files\Synaptics
[26/06/2008|20:07] C:\Program Files\SystemRequirementsLab
[20/12/2006|15:01] C:\Program Files\TOSHIBA
[20/07/2008|16:40] C:\Program Files\Trend Micro
[14/12/2007|18:26] C:\Program Files\Ubisoft
[20/12/2006|12:15] C:\Program Files\Ulead Systems
[26/01/2008|14:25] C:\Program Files\Uninst
[02/11/2006|14:01] C:\Program Files\Uninstall Information
[13/11/2007|19:58] C:\Program Files\USB Vibration
[27/05/2008|22:06] C:\Program Files\usenext_client.exe
[30/04/2008|22:24] C:\Program Files\uTorrent
[19/01/2008|18:22] C:\Program Files\VideoLAN
[03/06/2008|22:39] C:\Program Files\vlc
[03/02/2008|00:32] C:\Program Files\Winamp
[14/06/2008|23:03] C:\Program Files\Windows Calendar
[14/06/2008|23:03] C:\Program Files\Windows Collaboration
[14/06/2008|23:03] C:\Program Files\Windows Defender
[14/06/2008|23:03] C:\Program Files\Windows Journal
[04/04/2008|19:25] C:\Program Files\Windows Live
[30/10/2007|20:47] C:\Program Files\Windows Live Toolbar
[10/07/2008|01:34] C:\Program Files\Windows Mail
[20/12/2006|12:18] C:\Program Files\Windows Media Components
[14/06/2008|23:03] C:\Program Files\Windows Media Player
[01/07/2006|16:03] C:\Program Files\Windows NT
[14/06/2008|23:03] C:\Program Files\Windows Photo Gallery
[14/06/2008|23:03] C:\Program Files\Windows Sidebar
[13/11/2007|18:41] C:\Program Files\WinRAR
[26/01/2008|14:27] C:\Program Files\Wise Owl, Inc
[26/10/2007|12:08] C:\Program Files\Yahoo!
[28/07/2008|16:51] C:\Program Files\Zuma
--------------------\\
[26/05/2008|18:43] C:\Program Files\Common Files\Adobe
[29/02/2008|18:42] C:\Program Files\Common Files\BOONTY Shared
[29/05/2008|21:09] C:\Program Files\Common Files\Borland Shared
[01/07/2006|16:23] C:\Program Files\Common Files\DESIGNER
[05/11/2007|21:31] C:\Program Files\Common Files\InstallShield
[20/12/2006|08:52] C:\Program Files\Common Files\Java
[21/02/2008|20:43] C:\Program Files\Common Files\MAGIX Shared
[18/04/2008|19:36] C:\Program Files\Common Files\microsoft shared
[03/07/2008|20:29] C:\Program Files\Common Files\Nero
[22/12/2007|18:03] C:\Program Files\Common Files\Nokia
[22/12/2007|18:03] C:\Program Files\Common Files\PCSuite
[07/11/2007|20:23] C:\Program Files\Common Files\PX Storage Engine
[01/12/2007|22:26] C:\Program Files\Common Files\Real
[02/11/2006|12:18] C:\Program Files\Common Files\Services
[27/06/2008|22:36] C:\Program Files\Common Files\Skype
[02/11/2006|12:18] C:\Program Files\Common Files\SpeechEngines
[02/07/2006|11:06] C:\Program Files\Common Files\Symantec Shared
[14/06/2008|23:03] C:\Program Files\Common Files\System
[20/12/2006|12:18] C:\Program Files\Common Files\Ulead Systems
[02/02/2008|15:26] C:\Program Files\Common Files\WindowsLiveInstaller
[01/12/2007|22:26] C:\Program Files\Common Files\xing shared
--------------------\\ Process
... OK !
--------------------\\
Commande ECHO d‚sactiv‚e.
--------------------\\
Commande ECHO d‚sactiv‚e.
--------------------\\
..... OK !
--------------------\\
Commande ECHO d‚sactiv‚e.
--------------------\\
--------------------\\
Commande ECHO d‚sactiv‚e.
[F:26][D:16]-> C:\Users\CLIENT\AppData\Local\Temp
[F:42][D:6]-> C:\$Recycle.Bin
--------------------\\ 15:42:54,62
[ UAC => 1 ]
crocmitel
Messages postés
41
Date d'inscription
samedi 29 mars 2008
Statut
Membre
Dernière intervention
31 mai 2009
9 août 2008 à 16:50
9 août 2008 à 16:50
dsl pour le retard lyennais,on m'a coupé la connexion,g suivi les étapes et voila le lopR.txt:
--------------------\\ Lop S&D 4.2.2-5 XP/Vista
[ USER : CLIENT ] [ "C:\Windows\system32" ] [ Selection : 1 ]
[ 09/08/2008 | 15:42:47,98 ] [ PC : PC-DE-CLIENT ]
[ MAJ : 01-08-2008 | 01:40 ]
[ UAC => 1 !! ]
--------------------\\
--------------------\\
[09/08/2008 15:09][--a------] C:\Windows\tasks\V‚rifier les mises … jour de Windows Live Toolbar.job
[09/08/2008 15:41][--ah-----] C:\Windows\tasks\SA.DAT
[09/08/2008 15:39][--a------] C:\Windows\tasks\SCHEDLGU.TXT
[09/08/2008 15:05][--ah-----] C:\Windows\tasks\User_Feed_Synchronization-{D9B30BB4-63C0-47D4-A444-A174F9308500}.job
--------------------\\
[26/05/2008|18:43] C:\ProgramData\Adobe
[09/05/2008|18:47] C:\ProgramData\amokboltbolt.2h5hsk
[24/04/2008|20:38] C:\ProgramData\amokboltbolt.8t5vn1
[26/05/2008|18:33] C:\ProgramData\amokboltbolt.e4ly0
[22/06/2008|16:24] C:\ProgramData\amokboltbolt.kzsesz5
[22/06/2008|16:24] C:\ProgramData\amokboltbolt.q8kc4u
[14/01/2008|18:29] C:\ProgramData\Apple Computer
[02/11/2006|14:02] C:\ProgramData\Application Data
[19/01/2008|23:02] C:\ProgramData\Armagetron
[26/05/2008|18:34] C:\ProgramData\Bits Real Thunk.78eqn74
[29/02/2008|18:42] C:\ProgramData\BOONTY
[01/07/2006|16:03] C:\ProgramData\Bureau
[08/07/2008|00:30] C:\ProgramData\Cash lies default
[02/11/2006|14:02] C:\ProgramData\Desktop
[02/11/2006|14:02] C:\ProgramData\Documents
[22/12/2007|18:03] C:\ProgramData\Downloaded Installations
[22/06/2008|16:24] C:\ProgramData\eggs bike enc.s63rl
[30/06/2008|20:15] C:\ProgramData\eMule
[25/11/2007|15:47] C:\ProgramData\ezsid.dat
[01/07/2006|16:03] C:\ProgramData\Favoris
[02/11/2006|14:02] C:\ProgramData\Favorites
[05/11/2007|18:35] C:\ProgramData\Google
[19/01/2008|18:03] C:\ProgramData\Installations
[09/05/2008|19:02] C:\ProgramData\Kaspersky Lab
[14/06/2008|20:41] C:\ProgramData\LauncherAccess.dt
[06/02/2008|19:47] C:\ProgramData\LDM
[22/06/2008|16:24] C:\ProgramData\Long slow road itch
[21/02/2008|20:44] C:\ProgramData\MAGIX
[28/05/2008|21:57] C:\ProgramData\Malwarebytes
[04/04/2008|19:15] C:\ProgramData\Media Center Programs
[01/07/2006|16:03] C:\ProgramData\Menu D‚marrer
[24/04/2008|21:01] C:\ProgramData\Messenger Plus!
[18/04/2008|19:36] C:\ProgramData\Microsoft
[11/07/2008|21:28] C:\ProgramData\Microsoft Help
[01/07/2006|16:03] C:\ProgramData\ModŠles
[03/07/2008|20:22] C:\ProgramData\Nero
[09/08/2008|15:39] C:\ProgramData\ntuser.pol
[20/12/2006|13:47] C:\ProgramData\NVIDIA
[22/12/2007|18:16] C:\ProgramData\PC Suite
[02/11/2007|20:03] C:\ProgramData\PlayFirst
[09/06/2008|22:36] C:\ProgramData\PopCap Games
[25/11/2007|15:44] C:\ProgramData\Skype
[09/08/2008|15:42] C:\ProgramData\Spybot - Search & Destroy
[02/11/2006|14:02] C:\ProgramData\Start Menu
[02/07/2006|11:04] C:\ProgramData\Symantec
[28/07/2008|16:50] C:\ProgramData\TEMP
[02/11/2006|14:02] C:\ProgramData\Templates
[09/05/2008|18:48] C:\ProgramData\tick web each.6cfncj
[20/12/2006|11:22] C:\ProgramData\Toshiba
[01/07/2006|16:07] C:\ProgramData\ToshibaEurope
[22/11/2007|22:54] C:\ProgramData\Ubisoft
[05/11/2007|21:28] C:\ProgramData\UDL
[13/06/2008|18:59] C:\ProgramData\UIB
[20/12/2006|12:17] C:\ProgramData\Ulead Systems
[24/04/2008|20:39] C:\ProgramData\View Wave Proxy.u72ch
[07/07/2008|19:06] C:\ProgramData\WindowsSearch
[14/03/2008|20:26] C:\ProgramData\WLInstaller
[31/10/2007|18:26] C:\ProgramData\Xerox
[24/10/2007|18:07] C:\ProgramData\Yahoo!
--------------------\\
[19/07/2008|10:23] C:\Program Files\Activision
[05/11/2007|18:37] C:\Program Files\Adobe
[15/03/2008|18:20] C:\Program Files\ÇÖá€Æ € ÒÞ‘¡Ø
[28/02/2008|20:23] C:\Program Files\Alwil Software
[06/07/2008|16:37] C:\Program Files\Ares
[26/01/2008|14:25] C:\Program Files\bin
[11/06/2008|21:36] C:\Program Files\BoontyGames
[26/01/2008|14:11] C:\Program Files\Borland
[25/01/2008|19:27] C:\Program Files\CCleaner
[28/05/2008|19:21] C:\Program Files\Circle Developement
[27/06/2008|22:36] C:\Program Files\Common Files
[13/06/2008|18:32] C:\Program Files\CONEXANT
[14/06/2008|23:15] C:\Program Files\desktop.ini
[30/04/2008|23:15] C:\Program Files\DivX
[02/06/2008|19:03] C:\Program Files\EA Games
[30/06/2008|20:11] C:\Program Files\eMule
[11/01/2008|23:09] C:\Program Files\EPSON
[01/07/2006|16:03] C:\Program Files\Fichiers communs [C:\Program Files\Common Files]
[03/04/2008|17:57] C:\Program Files\Grand Theft Auto III
[11/06/2008|21:36] C:\Program Files\Gunner 2
[26/01/2008|14:25] C:\Program Files\HtmlRef
[26/01/2008|14:25] C:\Program Files\ib_install.log
[22/10/2003|20:55] C:\Program Files\ibuninst.exe
[19/07/2008|10:50] C:\Program Files\InstallShield Installation Information
[22/10/2003|22:49] C:\Program Files\interbase.msg
[14/06/2008|23:03] C:\Program Files\Internet Explorer
[20/12/2006|12:18] C:\Program Files\InterVideo
[20/12/2006|08:52] C:\Program Files\Java
[15/11/2007|19:40] C:\Program Files\JPEG PC Camera
[18/04/2008|19:31] C:\Program Files\Learning Essentials
[22/10/2003|22:49] C:\Program Files\license.txt
[07/07/2008|18:21] C:\Program Files\LimeWire
[19/11/2007|20:25] C:\Program Files\Macrogaming
[19/07/2008|00:32] C:\Program Files\Malwarebytes' Anti-Malware
[24/04/2008|20:37] C:\Program Files\Messenger Plus! Live
[14/01/2008|17:34] C:\Program Files\Micro Application
[25/10/2007|18:51] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[18/04/2008|19:36] C:\Program Files\Microsoft Etudes
[02/11/2006|13:37] C:\Program Files\Microsoft Games
[26/01/2008|13:38] C:\Program Files\Microsoft Office
[19/05/2008|20:59] C:\Program Files\Microsoft Silverlight
[14/03/2008|21:04] C:\Program Files\Microsoft SQL Server Compact Edition
[01/07/2006|16:23] C:\Program Files\Microsoft Visual Studio
[26/01/2008|13:38] C:\Program Files\Microsoft Visual Studio .NET 2003
[01/07/2006|16:16] C:\Program Files\Microsoft Visual Studio 8
[01/07/2006|16:24] C:\Program Files\Microsoft Works
[26/01/2008|13:38] C:\Program Files\Microsoft.NET
[14/06/2008|23:03] C:\Program Files\Movie Maker
[01/07/2006|16:23] C:\Program Files\MSBuild
[01/07/2006|16:26] C:\Program Files\MSECache
[05/11/2007|19:40] C:\Program Files\MSN
[25/10/2007|18:32] C:\Program Files\MSXML 4.0
[21/05/2008|00:09] C:\Program Files\Neoact
[02/07/2008|23:23] C:\Program Files\Nero
[03/05/2008|17:58] C:\Program Files\NeroInstall.bak
[22/12/2007|18:03] C:\Program Files\Nokia
[22/12/2007|17:57] C:\Program Files\PC Connectivity Solution
[01/02/2008|21:45] C:\Program Files\Pro Evolution Soccer 5
[14/01/2008|17:34] C:\Program Files\QuickTime
[11/11/2007|19:00] C:\Program Files\Real
[02/11/2006|13:37] C:\Program Files\Reference Assemblies
[31/05/2008|14:03] C:\Program Files\ReflexiveArcade
[22/10/2003|22:49] C:\Program Files\ReleaseNotes.pdf
[23/01/2008|21:59] C:\Program Files\Samsung
[04/04/2008|19:40] C:\Program Files\skins
[17/01/2008|21:01] C:\Program Files\Skype
[25/11/2007|15:43] C:\Program Files\SkypeSetup.exe
[01/08/2006|22:49] C:\Program Files\Sony
[09/08/2008|15:37] C:\Program Files\Spybot - Search & Destroy
[20/12/2006|09:08] C:\Program Files\Synaptics
[26/06/2008|20:07] C:\Program Files\SystemRequirementsLab
[20/12/2006|15:01] C:\Program Files\TOSHIBA
[20/07/2008|16:40] C:\Program Files\Trend Micro
[14/12/2007|18:26] C:\Program Files\Ubisoft
[20/12/2006|12:15] C:\Program Files\Ulead Systems
[26/01/2008|14:25] C:\Program Files\Uninst
[02/11/2006|14:01] C:\Program Files\Uninstall Information
[13/11/2007|19:58] C:\Program Files\USB Vibration
[27/05/2008|22:06] C:\Program Files\usenext_client.exe
[30/04/2008|22:24] C:\Program Files\uTorrent
[19/01/2008|18:22] C:\Program Files\VideoLAN
[03/06/2008|22:39] C:\Program Files\vlc
[03/02/2008|00:32] C:\Program Files\Winamp
[14/06/2008|23:03] C:\Program Files\Windows Calendar
[14/06/2008|23:03] C:\Program Files\Windows Collaboration
[14/06/2008|23:03] C:\Program Files\Windows Defender
[14/06/2008|23:03] C:\Program Files\Windows Journal
[04/04/2008|19:25] C:\Program Files\Windows Live
[30/10/2007|20:47] C:\Program Files\Windows Live Toolbar
[10/07/2008|01:34] C:\Program Files\Windows Mail
[20/12/2006|12:18] C:\Program Files\Windows Media Components
[14/06/2008|23:03] C:\Program Files\Windows Media Player
[01/07/2006|16:03] C:\Program Files\Windows NT
[14/06/2008|23:03] C:\Program Files\Windows Photo Gallery
[14/06/2008|23:03] C:\Program Files\Windows Sidebar
[13/11/2007|18:41] C:\Program Files\WinRAR
[26/01/2008|14:27] C:\Program Files\Wise Owl, Inc
[26/10/2007|12:08] C:\Program Files\Yahoo!
[28/07/2008|16:51] C:\Program Files\Zuma
--------------------\\
[26/05/2008|18:43] C:\Program Files\Common Files\Adobe
[29/02/2008|18:42] C:\Program Files\Common Files\BOONTY Shared
[29/05/2008|21:09] C:\Program Files\Common Files\Borland Shared
[01/07/2006|16:23] C:\Program Files\Common Files\DESIGNER
[05/11/2007|21:31] C:\Program Files\Common Files\InstallShield
[20/12/2006|08:52] C:\Program Files\Common Files\Java
[21/02/2008|20:43] C:\Program Files\Common Files\MAGIX Shared
[18/04/2008|19:36] C:\Program Files\Common Files\microsoft shared
[03/07/2008|20:29] C:\Program Files\Common Files\Nero
[22/12/2007|18:03] C:\Program Files\Common Files\Nokia
[22/12/2007|18:03] C:\Program Files\Common Files\PCSuite
[07/11/2007|20:23] C:\Program Files\Common Files\PX Storage Engine
[01/12/2007|22:26] C:\Program Files\Common Files\Real
[02/11/2006|12:18] C:\Program Files\Common Files\Services
[27/06/2008|22:36] C:\Program Files\Common Files\Skype
[02/11/2006|12:18] C:\Program Files\Common Files\SpeechEngines
[02/07/2006|11:06] C:\Program Files\Common Files\Symantec Shared
[14/06/2008|23:03] C:\Program Files\Common Files\System
[20/12/2006|12:18] C:\Program Files\Common Files\Ulead Systems
[02/02/2008|15:26] C:\Program Files\Common Files\WindowsLiveInstaller
[01/12/2007|22:26] C:\Program Files\Common Files\xing shared
--------------------\\ Process
... OK !
--------------------\\
Commande ECHO d‚sactiv‚e.
--------------------\\
Commande ECHO d‚sactiv‚e.
--------------------\\
..... OK !
--------------------\\
Commande ECHO d‚sactiv‚e.
--------------------\\
--------------------\\
Commande ECHO d‚sactiv‚e.
[F:26][D:16]-> C:\Users\CLIENT\AppData\Local\Temp
[F:42][D:6]-> C:\$Recycle.Bin
--------------------\\ 15:42:54,62
[ UAC => 1 ]
--------------------\\ Lop S&D 4.2.2-5 XP/Vista
[ USER : CLIENT ] [ "C:\Windows\system32" ] [ Selection : 1 ]
[ 09/08/2008 | 15:42:47,98 ] [ PC : PC-DE-CLIENT ]
[ MAJ : 01-08-2008 | 01:40 ]
[ UAC => 1 !! ]
--------------------\\
--------------------\\
[09/08/2008 15:09][--a------] C:\Windows\tasks\V‚rifier les mises … jour de Windows Live Toolbar.job
[09/08/2008 15:41][--ah-----] C:\Windows\tasks\SA.DAT
[09/08/2008 15:39][--a------] C:\Windows\tasks\SCHEDLGU.TXT
[09/08/2008 15:05][--ah-----] C:\Windows\tasks\User_Feed_Synchronization-{D9B30BB4-63C0-47D4-A444-A174F9308500}.job
--------------------\\
[26/05/2008|18:43] C:\ProgramData\Adobe
[09/05/2008|18:47] C:\ProgramData\amokboltbolt.2h5hsk
[24/04/2008|20:38] C:\ProgramData\amokboltbolt.8t5vn1
[26/05/2008|18:33] C:\ProgramData\amokboltbolt.e4ly0
[22/06/2008|16:24] C:\ProgramData\amokboltbolt.kzsesz5
[22/06/2008|16:24] C:\ProgramData\amokboltbolt.q8kc4u
[14/01/2008|18:29] C:\ProgramData\Apple Computer
[02/11/2006|14:02] C:\ProgramData\Application Data
[19/01/2008|23:02] C:\ProgramData\Armagetron
[26/05/2008|18:34] C:\ProgramData\Bits Real Thunk.78eqn74
[29/02/2008|18:42] C:\ProgramData\BOONTY
[01/07/2006|16:03] C:\ProgramData\Bureau
[08/07/2008|00:30] C:\ProgramData\Cash lies default
[02/11/2006|14:02] C:\ProgramData\Desktop
[02/11/2006|14:02] C:\ProgramData\Documents
[22/12/2007|18:03] C:\ProgramData\Downloaded Installations
[22/06/2008|16:24] C:\ProgramData\eggs bike enc.s63rl
[30/06/2008|20:15] C:\ProgramData\eMule
[25/11/2007|15:47] C:\ProgramData\ezsid.dat
[01/07/2006|16:03] C:\ProgramData\Favoris
[02/11/2006|14:02] C:\ProgramData\Favorites
[05/11/2007|18:35] C:\ProgramData\Google
[19/01/2008|18:03] C:\ProgramData\Installations
[09/05/2008|19:02] C:\ProgramData\Kaspersky Lab
[14/06/2008|20:41] C:\ProgramData\LauncherAccess.dt
[06/02/2008|19:47] C:\ProgramData\LDM
[22/06/2008|16:24] C:\ProgramData\Long slow road itch
[21/02/2008|20:44] C:\ProgramData\MAGIX
[28/05/2008|21:57] C:\ProgramData\Malwarebytes
[04/04/2008|19:15] C:\ProgramData\Media Center Programs
[01/07/2006|16:03] C:\ProgramData\Menu D‚marrer
[24/04/2008|21:01] C:\ProgramData\Messenger Plus!
[18/04/2008|19:36] C:\ProgramData\Microsoft
[11/07/2008|21:28] C:\ProgramData\Microsoft Help
[01/07/2006|16:03] C:\ProgramData\ModŠles
[03/07/2008|20:22] C:\ProgramData\Nero
[09/08/2008|15:39] C:\ProgramData\ntuser.pol
[20/12/2006|13:47] C:\ProgramData\NVIDIA
[22/12/2007|18:16] C:\ProgramData\PC Suite
[02/11/2007|20:03] C:\ProgramData\PlayFirst
[09/06/2008|22:36] C:\ProgramData\PopCap Games
[25/11/2007|15:44] C:\ProgramData\Skype
[09/08/2008|15:42] C:\ProgramData\Spybot - Search & Destroy
[02/11/2006|14:02] C:\ProgramData\Start Menu
[02/07/2006|11:04] C:\ProgramData\Symantec
[28/07/2008|16:50] C:\ProgramData\TEMP
[02/11/2006|14:02] C:\ProgramData\Templates
[09/05/2008|18:48] C:\ProgramData\tick web each.6cfncj
[20/12/2006|11:22] C:\ProgramData\Toshiba
[01/07/2006|16:07] C:\ProgramData\ToshibaEurope
[22/11/2007|22:54] C:\ProgramData\Ubisoft
[05/11/2007|21:28] C:\ProgramData\UDL
[13/06/2008|18:59] C:\ProgramData\UIB
[20/12/2006|12:17] C:\ProgramData\Ulead Systems
[24/04/2008|20:39] C:\ProgramData\View Wave Proxy.u72ch
[07/07/2008|19:06] C:\ProgramData\WindowsSearch
[14/03/2008|20:26] C:\ProgramData\WLInstaller
[31/10/2007|18:26] C:\ProgramData\Xerox
[24/10/2007|18:07] C:\ProgramData\Yahoo!
--------------------\\
[19/07/2008|10:23] C:\Program Files\Activision
[05/11/2007|18:37] C:\Program Files\Adobe
[15/03/2008|18:20] C:\Program Files\ÇÖá€Æ € ÒÞ‘¡Ø
[28/02/2008|20:23] C:\Program Files\Alwil Software
[06/07/2008|16:37] C:\Program Files\Ares
[26/01/2008|14:25] C:\Program Files\bin
[11/06/2008|21:36] C:\Program Files\BoontyGames
[26/01/2008|14:11] C:\Program Files\Borland
[25/01/2008|19:27] C:\Program Files\CCleaner
[28/05/2008|19:21] C:\Program Files\Circle Developement
[27/06/2008|22:36] C:\Program Files\Common Files
[13/06/2008|18:32] C:\Program Files\CONEXANT
[14/06/2008|23:15] C:\Program Files\desktop.ini
[30/04/2008|23:15] C:\Program Files\DivX
[02/06/2008|19:03] C:\Program Files\EA Games
[30/06/2008|20:11] C:\Program Files\eMule
[11/01/2008|23:09] C:\Program Files\EPSON
[01/07/2006|16:03] C:\Program Files\Fichiers communs [C:\Program Files\Common Files]
[03/04/2008|17:57] C:\Program Files\Grand Theft Auto III
[11/06/2008|21:36] C:\Program Files\Gunner 2
[26/01/2008|14:25] C:\Program Files\HtmlRef
[26/01/2008|14:25] C:\Program Files\ib_install.log
[22/10/2003|20:55] C:\Program Files\ibuninst.exe
[19/07/2008|10:50] C:\Program Files\InstallShield Installation Information
[22/10/2003|22:49] C:\Program Files\interbase.msg
[14/06/2008|23:03] C:\Program Files\Internet Explorer
[20/12/2006|12:18] C:\Program Files\InterVideo
[20/12/2006|08:52] C:\Program Files\Java
[15/11/2007|19:40] C:\Program Files\JPEG PC Camera
[18/04/2008|19:31] C:\Program Files\Learning Essentials
[22/10/2003|22:49] C:\Program Files\license.txt
[07/07/2008|18:21] C:\Program Files\LimeWire
[19/11/2007|20:25] C:\Program Files\Macrogaming
[19/07/2008|00:32] C:\Program Files\Malwarebytes' Anti-Malware
[24/04/2008|20:37] C:\Program Files\Messenger Plus! Live
[14/01/2008|17:34] C:\Program Files\Micro Application
[25/10/2007|18:51] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[18/04/2008|19:36] C:\Program Files\Microsoft Etudes
[02/11/2006|13:37] C:\Program Files\Microsoft Games
[26/01/2008|13:38] C:\Program Files\Microsoft Office
[19/05/2008|20:59] C:\Program Files\Microsoft Silverlight
[14/03/2008|21:04] C:\Program Files\Microsoft SQL Server Compact Edition
[01/07/2006|16:23] C:\Program Files\Microsoft Visual Studio
[26/01/2008|13:38] C:\Program Files\Microsoft Visual Studio .NET 2003
[01/07/2006|16:16] C:\Program Files\Microsoft Visual Studio 8
[01/07/2006|16:24] C:\Program Files\Microsoft Works
[26/01/2008|13:38] C:\Program Files\Microsoft.NET
[14/06/2008|23:03] C:\Program Files\Movie Maker
[01/07/2006|16:23] C:\Program Files\MSBuild
[01/07/2006|16:26] C:\Program Files\MSECache
[05/11/2007|19:40] C:\Program Files\MSN
[25/10/2007|18:32] C:\Program Files\MSXML 4.0
[21/05/2008|00:09] C:\Program Files\Neoact
[02/07/2008|23:23] C:\Program Files\Nero
[03/05/2008|17:58] C:\Program Files\NeroInstall.bak
[22/12/2007|18:03] C:\Program Files\Nokia
[22/12/2007|17:57] C:\Program Files\PC Connectivity Solution
[01/02/2008|21:45] C:\Program Files\Pro Evolution Soccer 5
[14/01/2008|17:34] C:\Program Files\QuickTime
[11/11/2007|19:00] C:\Program Files\Real
[02/11/2006|13:37] C:\Program Files\Reference Assemblies
[31/05/2008|14:03] C:\Program Files\ReflexiveArcade
[22/10/2003|22:49] C:\Program Files\ReleaseNotes.pdf
[23/01/2008|21:59] C:\Program Files\Samsung
[04/04/2008|19:40] C:\Program Files\skins
[17/01/2008|21:01] C:\Program Files\Skype
[25/11/2007|15:43] C:\Program Files\SkypeSetup.exe
[01/08/2006|22:49] C:\Program Files\Sony
[09/08/2008|15:37] C:\Program Files\Spybot - Search & Destroy
[20/12/2006|09:08] C:\Program Files\Synaptics
[26/06/2008|20:07] C:\Program Files\SystemRequirementsLab
[20/12/2006|15:01] C:\Program Files\TOSHIBA
[20/07/2008|16:40] C:\Program Files\Trend Micro
[14/12/2007|18:26] C:\Program Files\Ubisoft
[20/12/2006|12:15] C:\Program Files\Ulead Systems
[26/01/2008|14:25] C:\Program Files\Uninst
[02/11/2006|14:01] C:\Program Files\Uninstall Information
[13/11/2007|19:58] C:\Program Files\USB Vibration
[27/05/2008|22:06] C:\Program Files\usenext_client.exe
[30/04/2008|22:24] C:\Program Files\uTorrent
[19/01/2008|18:22] C:\Program Files\VideoLAN
[03/06/2008|22:39] C:\Program Files\vlc
[03/02/2008|00:32] C:\Program Files\Winamp
[14/06/2008|23:03] C:\Program Files\Windows Calendar
[14/06/2008|23:03] C:\Program Files\Windows Collaboration
[14/06/2008|23:03] C:\Program Files\Windows Defender
[14/06/2008|23:03] C:\Program Files\Windows Journal
[04/04/2008|19:25] C:\Program Files\Windows Live
[30/10/2007|20:47] C:\Program Files\Windows Live Toolbar
[10/07/2008|01:34] C:\Program Files\Windows Mail
[20/12/2006|12:18] C:\Program Files\Windows Media Components
[14/06/2008|23:03] C:\Program Files\Windows Media Player
[01/07/2006|16:03] C:\Program Files\Windows NT
[14/06/2008|23:03] C:\Program Files\Windows Photo Gallery
[14/06/2008|23:03] C:\Program Files\Windows Sidebar
[13/11/2007|18:41] C:\Program Files\WinRAR
[26/01/2008|14:27] C:\Program Files\Wise Owl, Inc
[26/10/2007|12:08] C:\Program Files\Yahoo!
[28/07/2008|16:51] C:\Program Files\Zuma
--------------------\\
[26/05/2008|18:43] C:\Program Files\Common Files\Adobe
[29/02/2008|18:42] C:\Program Files\Common Files\BOONTY Shared
[29/05/2008|21:09] C:\Program Files\Common Files\Borland Shared
[01/07/2006|16:23] C:\Program Files\Common Files\DESIGNER
[05/11/2007|21:31] C:\Program Files\Common Files\InstallShield
[20/12/2006|08:52] C:\Program Files\Common Files\Java
[21/02/2008|20:43] C:\Program Files\Common Files\MAGIX Shared
[18/04/2008|19:36] C:\Program Files\Common Files\microsoft shared
[03/07/2008|20:29] C:\Program Files\Common Files\Nero
[22/12/2007|18:03] C:\Program Files\Common Files\Nokia
[22/12/2007|18:03] C:\Program Files\Common Files\PCSuite
[07/11/2007|20:23] C:\Program Files\Common Files\PX Storage Engine
[01/12/2007|22:26] C:\Program Files\Common Files\Real
[02/11/2006|12:18] C:\Program Files\Common Files\Services
[27/06/2008|22:36] C:\Program Files\Common Files\Skype
[02/11/2006|12:18] C:\Program Files\Common Files\SpeechEngines
[02/07/2006|11:06] C:\Program Files\Common Files\Symantec Shared
[14/06/2008|23:03] C:\Program Files\Common Files\System
[20/12/2006|12:18] C:\Program Files\Common Files\Ulead Systems
[02/02/2008|15:26] C:\Program Files\Common Files\WindowsLiveInstaller
[01/12/2007|22:26] C:\Program Files\Common Files\xing shared
--------------------\\ Process
... OK !
--------------------\\
Commande ECHO d‚sactiv‚e.
--------------------\\
Commande ECHO d‚sactiv‚e.
--------------------\\
..... OK !
--------------------\\
Commande ECHO d‚sactiv‚e.
--------------------\\
--------------------\\
Commande ECHO d‚sactiv‚e.
[F:26][D:16]-> C:\Users\CLIENT\AppData\Local\Temp
[F:42][D:6]-> C:\$Recycle.Bin
--------------------\\ 15:42:54,62
[ UAC => 1 ]
crocmitel
Messages postés
41
Date d'inscription
samedi 29 mars 2008
Statut
Membre
Dernière intervention
31 mai 2009
9 août 2008 à 16:50
9 août 2008 à 16:50
dsl pour le retard lyennais,on m'a coupé la connexion,g suivi les étapes et voila le lopR.txt:
--------------------\\ Lop S&D 4.2.2-5 XP/Vista
[ USER : CLIENT ] [ "C:\Windows\system32" ] [ Selection : 1 ]
[ 09/08/2008 | 15:42:47,98 ] [ PC : PC-DE-CLIENT ]
[ MAJ : 01-08-2008 | 01:40 ]
[ UAC => 1 !! ]
--------------------\\
--------------------\\
[09/08/2008 15:09][--a------] C:\Windows\tasks\V‚rifier les mises … jour de Windows Live Toolbar.job
[09/08/2008 15:41][--ah-----] C:\Windows\tasks\SA.DAT
[09/08/2008 15:39][--a------] C:\Windows\tasks\SCHEDLGU.TXT
[09/08/2008 15:05][--ah-----] C:\Windows\tasks\User_Feed_Synchronization-{D9B30BB4-63C0-47D4-A444-A174F9308500}.job
--------------------\\
[26/05/2008|18:43] C:\ProgramData\Adobe
[09/05/2008|18:47] C:\ProgramData\amokboltbolt.2h5hsk
[24/04/2008|20:38] C:\ProgramData\amokboltbolt.8t5vn1
[26/05/2008|18:33] C:\ProgramData\amokboltbolt.e4ly0
[22/06/2008|16:24] C:\ProgramData\amokboltbolt.kzsesz5
[22/06/2008|16:24] C:\ProgramData\amokboltbolt.q8kc4u
[14/01/2008|18:29] C:\ProgramData\Apple Computer
[02/11/2006|14:02] C:\ProgramData\Application Data
[19/01/2008|23:02] C:\ProgramData\Armagetron
[26/05/2008|18:34] C:\ProgramData\Bits Real Thunk.78eqn74
[29/02/2008|18:42] C:\ProgramData\BOONTY
[01/07/2006|16:03] C:\ProgramData\Bureau
[08/07/2008|00:30] C:\ProgramData\Cash lies default
[02/11/2006|14:02] C:\ProgramData\Desktop
[02/11/2006|14:02] C:\ProgramData\Documents
[22/12/2007|18:03] C:\ProgramData\Downloaded Installations
[22/06/2008|16:24] C:\ProgramData\eggs bike enc.s63rl
[30/06/2008|20:15] C:\ProgramData\eMule
[25/11/2007|15:47] C:\ProgramData\ezsid.dat
[01/07/2006|16:03] C:\ProgramData\Favoris
[02/11/2006|14:02] C:\ProgramData\Favorites
[05/11/2007|18:35] C:\ProgramData\Google
[19/01/2008|18:03] C:\ProgramData\Installations
[09/05/2008|19:02] C:\ProgramData\Kaspersky Lab
[14/06/2008|20:41] C:\ProgramData\LauncherAccess.dt
[06/02/2008|19:47] C:\ProgramData\LDM
[22/06/2008|16:24] C:\ProgramData\Long slow road itch
[21/02/2008|20:44] C:\ProgramData\MAGIX
[28/05/2008|21:57] C:\ProgramData\Malwarebytes
[04/04/2008|19:15] C:\ProgramData\Media Center Programs
[01/07/2006|16:03] C:\ProgramData\Menu D‚marrer
[24/04/2008|21:01] C:\ProgramData\Messenger Plus!
[18/04/2008|19:36] C:\ProgramData\Microsoft
[11/07/2008|21:28] C:\ProgramData\Microsoft Help
[01/07/2006|16:03] C:\ProgramData\ModŠles
[03/07/2008|20:22] C:\ProgramData\Nero
[09/08/2008|15:39] C:\ProgramData\ntuser.pol
[20/12/2006|13:47] C:\ProgramData\NVIDIA
[22/12/2007|18:16] C:\ProgramData\PC Suite
[02/11/2007|20:03] C:\ProgramData\PlayFirst
[09/06/2008|22:36] C:\ProgramData\PopCap Games
[25/11/2007|15:44] C:\ProgramData\Skype
[09/08/2008|15:42] C:\ProgramData\Spybot - Search & Destroy
[02/11/2006|14:02] C:\ProgramData\Start Menu
[02/07/2006|11:04] C:\ProgramData\Symantec
[28/07/2008|16:50] C:\ProgramData\TEMP
[02/11/2006|14:02] C:\ProgramData\Templates
[09/05/2008|18:48] C:\ProgramData\tick web each.6cfncj
[20/12/2006|11:22] C:\ProgramData\Toshiba
[01/07/2006|16:07] C:\ProgramData\ToshibaEurope
[22/11/2007|22:54] C:\ProgramData\Ubisoft
[05/11/2007|21:28] C:\ProgramData\UDL
[13/06/2008|18:59] C:\ProgramData\UIB
[20/12/2006|12:17] C:\ProgramData\Ulead Systems
[24/04/2008|20:39] C:\ProgramData\View Wave Proxy.u72ch
[07/07/2008|19:06] C:\ProgramData\WindowsSearch
[14/03/2008|20:26] C:\ProgramData\WLInstaller
[31/10/2007|18:26] C:\ProgramData\Xerox
[24/10/2007|18:07] C:\ProgramData\Yahoo!
--------------------\\
[19/07/2008|10:23] C:\Program Files\Activision
[05/11/2007|18:37] C:\Program Files\Adobe
[15/03/2008|18:20] C:\Program Files\ÇÖá€Æ € ÒÞ‘¡Ø
[28/02/2008|20:23] C:\Program Files\Alwil Software
[06/07/2008|16:37] C:\Program Files\Ares
[26/01/2008|14:25] C:\Program Files\bin
[11/06/2008|21:36] C:\Program Files\BoontyGames
[26/01/2008|14:11] C:\Program Files\Borland
[25/01/2008|19:27] C:\Program Files\CCleaner
[28/05/2008|19:21] C:\Program Files\Circle Developement
[27/06/2008|22:36] C:\Program Files\Common Files
[13/06/2008|18:32] C:\Program Files\CONEXANT
[14/06/2008|23:15] C:\Program Files\desktop.ini
[30/04/2008|23:15] C:\Program Files\DivX
[02/06/2008|19:03] C:\Program Files\EA Games
[30/06/2008|20:11] C:\Program Files\eMule
[11/01/2008|23:09] C:\Program Files\EPSON
[01/07/2006|16:03] C:\Program Files\Fichiers communs [C:\Program Files\Common Files]
[03/04/2008|17:57] C:\Program Files\Grand Theft Auto III
[11/06/2008|21:36] C:\Program Files\Gunner 2
[26/01/2008|14:25] C:\Program Files\HtmlRef
[26/01/2008|14:25] C:\Program Files\ib_install.log
[22/10/2003|20:55] C:\Program Files\ibuninst.exe
[19/07/2008|10:50] C:\Program Files\InstallShield Installation Information
[22/10/2003|22:49] C:\Program Files\interbase.msg
[14/06/2008|23:03] C:\Program Files\Internet Explorer
[20/12/2006|12:18] C:\Program Files\InterVideo
[20/12/2006|08:52] C:\Program Files\Java
[15/11/2007|19:40] C:\Program Files\JPEG PC Camera
[18/04/2008|19:31] C:\Program Files\Learning Essentials
[22/10/2003|22:49] C:\Program Files\license.txt
[07/07/2008|18:21] C:\Program Files\LimeWire
[19/11/2007|20:25] C:\Program Files\Macrogaming
[19/07/2008|00:32] C:\Program Files\Malwarebytes' Anti-Malware
[24/04/2008|20:37] C:\Program Files\Messenger Plus! Live
[14/01/2008|17:34] C:\Program Files\Micro Application
[25/10/2007|18:51] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[18/04/2008|19:36] C:\Program Files\Microsoft Etudes
[02/11/2006|13:37] C:\Program Files\Microsoft Games
[26/01/2008|13:38] C:\Program Files\Microsoft Office
[19/05/2008|20:59] C:\Program Files\Microsoft Silverlight
[14/03/2008|21:04] C:\Program Files\Microsoft SQL Server Compact Edition
[01/07/2006|16:23] C:\Program Files\Microsoft Visual Studio
[26/01/2008|13:38] C:\Program Files\Microsoft Visual Studio .NET 2003
[01/07/2006|16:16] C:\Program Files\Microsoft Visual Studio 8
[01/07/2006|16:24] C:\Program Files\Microsoft Works
[26/01/2008|13:38] C:\Program Files\Microsoft.NET
[14/06/2008|23:03] C:\Program Files\Movie Maker
[01/07/2006|16:23] C:\Program Files\MSBuild
[01/07/2006|16:26] C:\Program Files\MSECache
[05/11/2007|19:40] C:\Program Files\MSN
[25/10/2007|18:32] C:\Program Files\MSXML 4.0
[21/05/2008|00:09] C:\Program Files\Neoact
[02/07/2008|23:23] C:\Program Files\Nero
[03/05/2008|17:58] C:\Program Files\NeroInstall.bak
[22/12/2007|18:03] C:\Program Files\Nokia
[22/12/2007|17:57] C:\Program Files\PC Connectivity Solution
[01/02/2008|21:45] C:\Program Files\Pro Evolution Soccer 5
[14/01/2008|17:34] C:\Program Files\QuickTime
[11/11/2007|19:00] C:\Program Files\Real
[02/11/2006|13:37] C:\Program Files\Reference Assemblies
[31/05/2008|14:03] C:\Program Files\ReflexiveArcade
[22/10/2003|22:49] C:\Program Files\ReleaseNotes.pdf
[23/01/2008|21:59] C:\Program Files\Samsung
[04/04/2008|19:40] C:\Program Files\skins
[17/01/2008|21:01] C:\Program Files\Skype
[25/11/2007|15:43] C:\Program Files\SkypeSetup.exe
[01/08/2006|22:49] C:\Program Files\Sony
[09/08/2008|15:37] C:\Program Files\Spybot - Search & Destroy
[20/12/2006|09:08] C:\Program Files\Synaptics
[26/06/2008|20:07] C:\Program Files\SystemRequirementsLab
[20/12/2006|15:01] C:\Program Files\TOSHIBA
[20/07/2008|16:40] C:\Program Files\Trend Micro
[14/12/2007|18:26] C:\Program Files\Ubisoft
[20/12/2006|12:15] C:\Program Files\Ulead Systems
[26/01/2008|14:25] C:\Program Files\Uninst
[02/11/2006|14:01] C:\Program Files\Uninstall Information
[13/11/2007|19:58] C:\Program Files\USB Vibration
[27/05/2008|22:06] C:\Program Files\usenext_client.exe
[30/04/2008|22:24] C:\Program Files\uTorrent
[19/01/2008|18:22] C:\Program Files\VideoLAN
[03/06/2008|22:39] C:\Program Files\vlc
[03/02/2008|00:32] C:\Program Files\Winamp
[14/06/2008|23:03] C:\Program Files\Windows Calendar
[14/06/2008|23:03] C:\Program Files\Windows Collaboration
[14/06/2008|23:03] C:\Program Files\Windows Defender
[14/06/2008|23:03] C:\Program Files\Windows Journal
[04/04/2008|19:25] C:\Program Files\Windows Live
[30/10/2007|20:47] C:\Program Files\Windows Live Toolbar
[10/07/2008|01:34] C:\Program Files\Windows Mail
[20/12/2006|12:18] C:\Program Files\Windows Media Components
[14/06/2008|23:03] C:\Program Files\Windows Media Player
[01/07/2006|16:03] C:\Program Files\Windows NT
[14/06/2008|23:03] C:\Program Files\Windows Photo Gallery
[14/06/2008|23:03] C:\Program Files\Windows Sidebar
[13/11/2007|18:41] C:\Program Files\WinRAR
[26/01/2008|14:27] C:\Program Files\Wise Owl, Inc
[26/10/2007|12:08] C:\Program Files\Yahoo!
[28/07/2008|16:51] C:\Program Files\Zuma
--------------------\\
[26/05/2008|18:43] C:\Program Files\Common Files\Adobe
[29/02/2008|18:42] C:\Program Files\Common Files\BOONTY Shared
[29/05/2008|21:09] C:\Program Files\Common Files\Borland Shared
[01/07/2006|16:23] C:\Program Files\Common Files\DESIGNER
[05/11/2007|21:31] C:\Program Files\Common Files\InstallShield
[20/12/2006|08:52] C:\Program Files\Common Files\Java
[21/02/2008|20:43] C:\Program Files\Common Files\MAGIX Shared
[18/04/2008|19:36] C:\Program Files\Common Files\microsoft shared
[03/07/2008|20:29] C:\Program Files\Common Files\Nero
[22/12/2007|18:03] C:\Program Files\Common Files\Nokia
[22/12/2007|18:03] C:\Program Files\Common Files\PCSuite
[07/11/2007|20:23] C:\Program Files\Common Files\PX Storage Engine
[01/12/2007|22:26] C:\Program Files\Common Files\Real
[02/11/2006|12:18] C:\Program Files\Common Files\Services
[27/06/2008|22:36] C:\Program Files\Common Files\Skype
[02/11/2006|12:18] C:\Program Files\Common Files\SpeechEngines
[02/07/2006|11:06] C:\Program Files\Common Files\Symantec Shared
[14/06/2008|23:03] C:\Program Files\Common Files\System
[20/12/2006|12:18] C:\Program Files\Common Files\Ulead Systems
[02/02/2008|15:26] C:\Program Files\Common Files\WindowsLiveInstaller
[01/12/2007|22:26] C:\Program Files\Common Files\xing shared
--------------------\\ Process
... OK !
--------------------\\
Commande ECHO d‚sactiv‚e.
--------------------\\
Commande ECHO d‚sactiv‚e.
--------------------\\
..... OK !
--------------------\\
Commande ECHO d‚sactiv‚e.
--------------------\\
--------------------\\
Commande ECHO d‚sactiv‚e.
[F:26][D:16]-> C:\Users\CLIENT\AppData\Local\Temp
[F:42][D:6]-> C:\$Recycle.Bin
--------------------\\ 15:42:54,62
[ UAC => 1 ]
--------------------\\ Lop S&D 4.2.2-5 XP/Vista
[ USER : CLIENT ] [ "C:\Windows\system32" ] [ Selection : 1 ]
[ 09/08/2008 | 15:42:47,98 ] [ PC : PC-DE-CLIENT ]
[ MAJ : 01-08-2008 | 01:40 ]
[ UAC => 1 !! ]
--------------------\\
--------------------\\
[09/08/2008 15:09][--a------] C:\Windows\tasks\V‚rifier les mises … jour de Windows Live Toolbar.job
[09/08/2008 15:41][--ah-----] C:\Windows\tasks\SA.DAT
[09/08/2008 15:39][--a------] C:\Windows\tasks\SCHEDLGU.TXT
[09/08/2008 15:05][--ah-----] C:\Windows\tasks\User_Feed_Synchronization-{D9B30BB4-63C0-47D4-A444-A174F9308500}.job
--------------------\\
[26/05/2008|18:43] C:\ProgramData\Adobe
[09/05/2008|18:47] C:\ProgramData\amokboltbolt.2h5hsk
[24/04/2008|20:38] C:\ProgramData\amokboltbolt.8t5vn1
[26/05/2008|18:33] C:\ProgramData\amokboltbolt.e4ly0
[22/06/2008|16:24] C:\ProgramData\amokboltbolt.kzsesz5
[22/06/2008|16:24] C:\ProgramData\amokboltbolt.q8kc4u
[14/01/2008|18:29] C:\ProgramData\Apple Computer
[02/11/2006|14:02] C:\ProgramData\Application Data
[19/01/2008|23:02] C:\ProgramData\Armagetron
[26/05/2008|18:34] C:\ProgramData\Bits Real Thunk.78eqn74
[29/02/2008|18:42] C:\ProgramData\BOONTY
[01/07/2006|16:03] C:\ProgramData\Bureau
[08/07/2008|00:30] C:\ProgramData\Cash lies default
[02/11/2006|14:02] C:\ProgramData\Desktop
[02/11/2006|14:02] C:\ProgramData\Documents
[22/12/2007|18:03] C:\ProgramData\Downloaded Installations
[22/06/2008|16:24] C:\ProgramData\eggs bike enc.s63rl
[30/06/2008|20:15] C:\ProgramData\eMule
[25/11/2007|15:47] C:\ProgramData\ezsid.dat
[01/07/2006|16:03] C:\ProgramData\Favoris
[02/11/2006|14:02] C:\ProgramData\Favorites
[05/11/2007|18:35] C:\ProgramData\Google
[19/01/2008|18:03] C:\ProgramData\Installations
[09/05/2008|19:02] C:\ProgramData\Kaspersky Lab
[14/06/2008|20:41] C:\ProgramData\LauncherAccess.dt
[06/02/2008|19:47] C:\ProgramData\LDM
[22/06/2008|16:24] C:\ProgramData\Long slow road itch
[21/02/2008|20:44] C:\ProgramData\MAGIX
[28/05/2008|21:57] C:\ProgramData\Malwarebytes
[04/04/2008|19:15] C:\ProgramData\Media Center Programs
[01/07/2006|16:03] C:\ProgramData\Menu D‚marrer
[24/04/2008|21:01] C:\ProgramData\Messenger Plus!
[18/04/2008|19:36] C:\ProgramData\Microsoft
[11/07/2008|21:28] C:\ProgramData\Microsoft Help
[01/07/2006|16:03] C:\ProgramData\ModŠles
[03/07/2008|20:22] C:\ProgramData\Nero
[09/08/2008|15:39] C:\ProgramData\ntuser.pol
[20/12/2006|13:47] C:\ProgramData\NVIDIA
[22/12/2007|18:16] C:\ProgramData\PC Suite
[02/11/2007|20:03] C:\ProgramData\PlayFirst
[09/06/2008|22:36] C:\ProgramData\PopCap Games
[25/11/2007|15:44] C:\ProgramData\Skype
[09/08/2008|15:42] C:\ProgramData\Spybot - Search & Destroy
[02/11/2006|14:02] C:\ProgramData\Start Menu
[02/07/2006|11:04] C:\ProgramData\Symantec
[28/07/2008|16:50] C:\ProgramData\TEMP
[02/11/2006|14:02] C:\ProgramData\Templates
[09/05/2008|18:48] C:\ProgramData\tick web each.6cfncj
[20/12/2006|11:22] C:\ProgramData\Toshiba
[01/07/2006|16:07] C:\ProgramData\ToshibaEurope
[22/11/2007|22:54] C:\ProgramData\Ubisoft
[05/11/2007|21:28] C:\ProgramData\UDL
[13/06/2008|18:59] C:\ProgramData\UIB
[20/12/2006|12:17] C:\ProgramData\Ulead Systems
[24/04/2008|20:39] C:\ProgramData\View Wave Proxy.u72ch
[07/07/2008|19:06] C:\ProgramData\WindowsSearch
[14/03/2008|20:26] C:\ProgramData\WLInstaller
[31/10/2007|18:26] C:\ProgramData\Xerox
[24/10/2007|18:07] C:\ProgramData\Yahoo!
--------------------\\
[19/07/2008|10:23] C:\Program Files\Activision
[05/11/2007|18:37] C:\Program Files\Adobe
[15/03/2008|18:20] C:\Program Files\ÇÖá€Æ € ÒÞ‘¡Ø
[28/02/2008|20:23] C:\Program Files\Alwil Software
[06/07/2008|16:37] C:\Program Files\Ares
[26/01/2008|14:25] C:\Program Files\bin
[11/06/2008|21:36] C:\Program Files\BoontyGames
[26/01/2008|14:11] C:\Program Files\Borland
[25/01/2008|19:27] C:\Program Files\CCleaner
[28/05/2008|19:21] C:\Program Files\Circle Developement
[27/06/2008|22:36] C:\Program Files\Common Files
[13/06/2008|18:32] C:\Program Files\CONEXANT
[14/06/2008|23:15] C:\Program Files\desktop.ini
[30/04/2008|23:15] C:\Program Files\DivX
[02/06/2008|19:03] C:\Program Files\EA Games
[30/06/2008|20:11] C:\Program Files\eMule
[11/01/2008|23:09] C:\Program Files\EPSON
[01/07/2006|16:03] C:\Program Files\Fichiers communs [C:\Program Files\Common Files]
[03/04/2008|17:57] C:\Program Files\Grand Theft Auto III
[11/06/2008|21:36] C:\Program Files\Gunner 2
[26/01/2008|14:25] C:\Program Files\HtmlRef
[26/01/2008|14:25] C:\Program Files\ib_install.log
[22/10/2003|20:55] C:\Program Files\ibuninst.exe
[19/07/2008|10:50] C:\Program Files\InstallShield Installation Information
[22/10/2003|22:49] C:\Program Files\interbase.msg
[14/06/2008|23:03] C:\Program Files\Internet Explorer
[20/12/2006|12:18] C:\Program Files\InterVideo
[20/12/2006|08:52] C:\Program Files\Java
[15/11/2007|19:40] C:\Program Files\JPEG PC Camera
[18/04/2008|19:31] C:\Program Files\Learning Essentials
[22/10/2003|22:49] C:\Program Files\license.txt
[07/07/2008|18:21] C:\Program Files\LimeWire
[19/11/2007|20:25] C:\Program Files\Macrogaming
[19/07/2008|00:32] C:\Program Files\Malwarebytes' Anti-Malware
[24/04/2008|20:37] C:\Program Files\Messenger Plus! Live
[14/01/2008|17:34] C:\Program Files\Micro Application
[25/10/2007|18:51] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[18/04/2008|19:36] C:\Program Files\Microsoft Etudes
[02/11/2006|13:37] C:\Program Files\Microsoft Games
[26/01/2008|13:38] C:\Program Files\Microsoft Office
[19/05/2008|20:59] C:\Program Files\Microsoft Silverlight
[14/03/2008|21:04] C:\Program Files\Microsoft SQL Server Compact Edition
[01/07/2006|16:23] C:\Program Files\Microsoft Visual Studio
[26/01/2008|13:38] C:\Program Files\Microsoft Visual Studio .NET 2003
[01/07/2006|16:16] C:\Program Files\Microsoft Visual Studio 8
[01/07/2006|16:24] C:\Program Files\Microsoft Works
[26/01/2008|13:38] C:\Program Files\Microsoft.NET
[14/06/2008|23:03] C:\Program Files\Movie Maker
[01/07/2006|16:23] C:\Program Files\MSBuild
[01/07/2006|16:26] C:\Program Files\MSECache
[05/11/2007|19:40] C:\Program Files\MSN
[25/10/2007|18:32] C:\Program Files\MSXML 4.0
[21/05/2008|00:09] C:\Program Files\Neoact
[02/07/2008|23:23] C:\Program Files\Nero
[03/05/2008|17:58] C:\Program Files\NeroInstall.bak
[22/12/2007|18:03] C:\Program Files\Nokia
[22/12/2007|17:57] C:\Program Files\PC Connectivity Solution
[01/02/2008|21:45] C:\Program Files\Pro Evolution Soccer 5
[14/01/2008|17:34] C:\Program Files\QuickTime
[11/11/2007|19:00] C:\Program Files\Real
[02/11/2006|13:37] C:\Program Files\Reference Assemblies
[31/05/2008|14:03] C:\Program Files\ReflexiveArcade
[22/10/2003|22:49] C:\Program Files\ReleaseNotes.pdf
[23/01/2008|21:59] C:\Program Files\Samsung
[04/04/2008|19:40] C:\Program Files\skins
[17/01/2008|21:01] C:\Program Files\Skype
[25/11/2007|15:43] C:\Program Files\SkypeSetup.exe
[01/08/2006|22:49] C:\Program Files\Sony
[09/08/2008|15:37] C:\Program Files\Spybot - Search & Destroy
[20/12/2006|09:08] C:\Program Files\Synaptics
[26/06/2008|20:07] C:\Program Files\SystemRequirementsLab
[20/12/2006|15:01] C:\Program Files\TOSHIBA
[20/07/2008|16:40] C:\Program Files\Trend Micro
[14/12/2007|18:26] C:\Program Files\Ubisoft
[20/12/2006|12:15] C:\Program Files\Ulead Systems
[26/01/2008|14:25] C:\Program Files\Uninst
[02/11/2006|14:01] C:\Program Files\Uninstall Information
[13/11/2007|19:58] C:\Program Files\USB Vibration
[27/05/2008|22:06] C:\Program Files\usenext_client.exe
[30/04/2008|22:24] C:\Program Files\uTorrent
[19/01/2008|18:22] C:\Program Files\VideoLAN
[03/06/2008|22:39] C:\Program Files\vlc
[03/02/2008|00:32] C:\Program Files\Winamp
[14/06/2008|23:03] C:\Program Files\Windows Calendar
[14/06/2008|23:03] C:\Program Files\Windows Collaboration
[14/06/2008|23:03] C:\Program Files\Windows Defender
[14/06/2008|23:03] C:\Program Files\Windows Journal
[04/04/2008|19:25] C:\Program Files\Windows Live
[30/10/2007|20:47] C:\Program Files\Windows Live Toolbar
[10/07/2008|01:34] C:\Program Files\Windows Mail
[20/12/2006|12:18] C:\Program Files\Windows Media Components
[14/06/2008|23:03] C:\Program Files\Windows Media Player
[01/07/2006|16:03] C:\Program Files\Windows NT
[14/06/2008|23:03] C:\Program Files\Windows Photo Gallery
[14/06/2008|23:03] C:\Program Files\Windows Sidebar
[13/11/2007|18:41] C:\Program Files\WinRAR
[26/01/2008|14:27] C:\Program Files\Wise Owl, Inc
[26/10/2007|12:08] C:\Program Files\Yahoo!
[28/07/2008|16:51] C:\Program Files\Zuma
--------------------\\
[26/05/2008|18:43] C:\Program Files\Common Files\Adobe
[29/02/2008|18:42] C:\Program Files\Common Files\BOONTY Shared
[29/05/2008|21:09] C:\Program Files\Common Files\Borland Shared
[01/07/2006|16:23] C:\Program Files\Common Files\DESIGNER
[05/11/2007|21:31] C:\Program Files\Common Files\InstallShield
[20/12/2006|08:52] C:\Program Files\Common Files\Java
[21/02/2008|20:43] C:\Program Files\Common Files\MAGIX Shared
[18/04/2008|19:36] C:\Program Files\Common Files\microsoft shared
[03/07/2008|20:29] C:\Program Files\Common Files\Nero
[22/12/2007|18:03] C:\Program Files\Common Files\Nokia
[22/12/2007|18:03] C:\Program Files\Common Files\PCSuite
[07/11/2007|20:23] C:\Program Files\Common Files\PX Storage Engine
[01/12/2007|22:26] C:\Program Files\Common Files\Real
[02/11/2006|12:18] C:\Program Files\Common Files\Services
[27/06/2008|22:36] C:\Program Files\Common Files\Skype
[02/11/2006|12:18] C:\Program Files\Common Files\SpeechEngines
[02/07/2006|11:06] C:\Program Files\Common Files\Symantec Shared
[14/06/2008|23:03] C:\Program Files\Common Files\System
[20/12/2006|12:18] C:\Program Files\Common Files\Ulead Systems
[02/02/2008|15:26] C:\Program Files\Common Files\WindowsLiveInstaller
[01/12/2007|22:26] C:\Program Files\Common Files\xing shared
--------------------\\ Process
... OK !
--------------------\\
Commande ECHO d‚sactiv‚e.
--------------------\\
Commande ECHO d‚sactiv‚e.
--------------------\\
..... OK !
--------------------\\
Commande ECHO d‚sactiv‚e.
--------------------\\
--------------------\\
Commande ECHO d‚sactiv‚e.
[F:26][D:16]-> C:\Users\CLIENT\AppData\Local\Temp
[F:42][D:6]-> C:\$Recycle.Bin
--------------------\\ 15:42:54,62
[ UAC => 1 ]