Fenêtres intempestives
Utilisateur anonyme
-
E..T Messages postés 6565 Statut Contributeur -
E..T Messages postés 6565 Statut Contributeur -
Bonjour,
depuis 2 semaine j'ai des fenêtres Product Software avec une erreur 2343 qui s'ouvre à chaque fois que j'allume mon ordi et je suis obligé de faire un ctrl alt suppr pour l'annuler je ne m'en sort plus et mon gestionaire de materiel et vide bizarre c'est un virus ou pas?
merci de votre aide
depuis 2 semaine j'ai des fenêtres Product Software avec une erreur 2343 qui s'ouvre à chaque fois que j'allume mon ordi et je suis obligé de faire un ctrl alt suppr pour l'annuler je ne m'en sort plus et mon gestionaire de materiel et vide bizarre c'est un virus ou pas?
merci de votre aide
A voir également:
- Fenêtres intempestives
- Fermer toutes les fenetres windows - Guide
- Afficher toutes les fenetres ouvertes windows 11 - Guide
- Comment ouvrir deux fenetres sur pc - Guide
- Des fenêtres s'ouvrent toutes seules ✓ - Forum Virus
- Mon pc ouvre des fenetres tout seul ✓ - Forum Antivirus
24 réponses
Bonsoir,
Clique sur ce lien
http://www.trendsecure.com/portal/en-US/threat_analytics/HJTInstall.exe
pour télécharger le fichier d'installation d'HijackThis.
Enregistre HJTInstall.exe sur ton bureau.
-Une fois installé, le renommer HJT.exe pour contrer une éventuelle infection de vundo
Double-clique sur HJT.exe pour lancer le programme
Accepte en cliquant sur le bouton "I Accept"
Ensuite clique sur "do a system scan and save a logfile" et postes le rapport obtenu ici.
@++
Clique sur ce lien
http://www.trendsecure.com/portal/en-US/threat_analytics/HJTInstall.exe
pour télécharger le fichier d'installation d'HijackThis.
Enregistre HJTInstall.exe sur ton bureau.
-Une fois installé, le renommer HJT.exe pour contrer une éventuelle infection de vundo
Double-clique sur HJT.exe pour lancer le programme
Accepte en cliquant sur le bouton "I Accept"
Ensuite clique sur "do a system scan and save a logfile" et postes le rapport obtenu ici.
@++
merci voila le rapport:
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 21:38:27, on 28/07/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16674)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\SYSTEM32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccSvcHst.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\WINDOWS\system32\CTsvcCDA.EXE
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Nikon\Wireless Camera Setup Utility\NkPtpEnum.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Fichiers communs\Roxio Shared\SharedCOM8\RoxMediaDB.exe
C:\Program Files\Fichiers communs\Roxio Shared\SharedCOM8\RoxWatch.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\VTTimer.exe
C:\Program Files\VIAudioi\SBADeck\ADeck.exe
C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe
C:\WINDOWS\system32\LVCOMSX.EXE
C:\Program Files\Logitech\Video\LogiTray.exe
C:\Program Files\Microsoft IntelliType Pro\type32.exe
C:\Program Files\Microsoft IntelliPoint\point32.exe
C:\Program Files\Roxio\Easy Media Creator 8\Drag to Disc\DrgToDsc.exe
C:\Program Files\Fichiers communs\Roxio Shared\SharedCOM8\RoxWatchTray.exe
C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe
C:\Program Files\Fichiers communs\Real\Update_OB\RealOneMessageCenter.exe
C:\Program Files\TomTom HOME\TomTomHOME.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccSvcHst.exe
C:\Program Files\QuickTime\QTTask.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
C:\Program Files\Logitech\Video\FxSvr2.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
C:\Program Files\Fichiers communs\Roxio Shared\SharedCOM8\CPSHelpRunner.exe
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnf.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\Program Files\Creative\MediaSource\Detector\CTDetect.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Windows Media Player\WMPNSCFG.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Nikon\PictureProject\NkbMonitor.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hposol08.exe
C:\Program Files\Google\Google Updater\GoogleUpdater.exe
C:\Program Files\ArcSoft\PhotoImpression 5\PI Monitor.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\WINDOWS\system32\msiexec.exe
C:\PROGRA~1\INCRED~1\bin\IMApp.exe
C:\Program Files\Wanadoo\EspaceWanadoo.exe
C:\Program Files\Wanadoo\ComComp.exe
C:\Program Files\Wanadoo\Watch.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\WINDOWS\system32\MsiExec.exe
C:\Program Files\Trend Micro\hjcherch\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.orange.fr/portail
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,C:\WINDOWS\regedit C:\WINDOWS\system32\userinit.exe,
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: (no name) - {64F56FC1-1272-44CD-BA6E-39723696E350} - (no file)
O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\PROGRA~1\FICHIE~1\SYMANT~1\IDS\IPSBHO.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.0.1225.9868\swg.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O2 - BHO: (no name) - {BDF3E430-B101-42AD-A544-FADC6B084872} - (no file)
O3 - Toolbar: (no name) - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - (no file)
O3 - Toolbar: (no name) - {D3028143-6145-4318-99D3-3EDCE54A95A9} - (no file)
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
O4 - HKLM\..\Run: [AudioDeck] C:\Program Files\VIAudioi\SBADeck\ADeck.exe 1
O4 - HKLM\..\Run: [SpeedTouch USB Diagnostics] "C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe" /icon
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [type32] "C:\Program Files\Microsoft IntelliType Pro\type32.exe"
O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\point32.exe"
O4 - HKLM\..\Run: [RoxioDragToDisc] "C:\Program Files\Roxio\Easy Media Creator 8\Drag to Disc\DrgToDsc.exe"
O4 - HKLM\..\Run: [RoxWatchTray] "C:\Program Files\Fichiers communs\Roxio Shared\SharedCOM8\RoxWatchTray.exe"
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\FICHIE~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [MsgCenterExe] "C:\Program Files\Fichiers communs\Real\Update_OB\RealOneMessageCenter.exe" -osboot
O4 - HKLM\..\Run: [TomTomHOME.exe] "C:\Program Files\TomTom HOME\TomTomHOME.exe" -s
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [osCheck] "C:\Program Files\Norton AntiVirus\osCheck.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [TrayServer] C:\Program Files\MAGIX\Video_deluxe_2008_e-version\TrayServer.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKLM\..\Run: [Share-to-Web Namespace Daemon] C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\TaskbarIcon.exe
O4 - HKLM\..\Run: [WooCnxMon] C:\PROGRA~1\Wanadoo\CnxMon.exe
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink DVD Solution\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe"
O4 - HKLM\..\RunOnce: [SymLnch] "C:\Documents and Settings\Fernande\Application Data\Symantec\Layouts\Norton AntiVirus\15.0\SymAllLanguages\NAVCD_RETAIL\20070828\Support\SymLnch\SymLnch.exe" "C:\Documents and Settings\Fernande\Application Data\Symantec\Layouts\Norton AntiVirus\15.0\SymAllLanguages\NAVCD_RETAIL\20070828\Setup.exe" "/SCANUPREBOOT /temp /patched"
O4 - HKCU\..\Run: [IncrediMail] C:\Program Files\IncrediMail\bin\IncMail.exe /c
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - HKCU\..\Run: [Creative Detector] C:\Program Files\Creative\MediaSource\Detector\CTDetect.exe /R
O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
O4 - HKCU\..\Run: [NBJ] "C:\Program Files\Ahead\Nero BackItUp\NBJ.exe"
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Event Reminder.lnk = C:\Program Files\Broderbund\PrintMaster\PMremind.exe
O4 - Global Startup: hp psc 2000 Series.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpobnz08.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - Global Startup: NkbMonitor.exe.lnk = C:\Program Files\Nikon\PictureProject\NkbMonitor.exe
O4 - Global Startup: officejet 6100.lnk = ?
O4 - Global Startup: Outil de mise à jour Google.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe
O4 - Global Startup: PI Monitor.lnk = C:\Program Files\ArcSoft\PhotoImpression 5\PI Monitor.exe
O4 - Global Startup: VIA RAID TOOL.lnk = C:\Program Files\VIA\RAID\raid_tool.exe
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
O16 - DPF: {2250C29C-C5E9-4F55-BE4E-01E45A40FCF1} (CMediaMix Object) - http://musicmix.messenger.msn.com/Medialogic.CAB
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab31267.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {31E68DE2-5548-4B23-88F0-C51E6A0F695E} (Microsoft PID Sniffer) - https://support.serviceshub.microsoft.com/supportforbusiness/create
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by103fd.bay103.hotmail.msn.com/resources/MsnPUpld.cab
O16 - DPF: {54BE6B6F-3056-470B-97E1-BB92E051B6C4} - http://h20264.www2.hp.com/ediags/dd/install/HPDriverDiagnosticsxp2k.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan_fr/scan8/oscan8.cab
O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety Center Base Module) - http://cdn.scan.onecare.live.com/resource/download/scanner/wlscbase9563.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/...
O16 - DPF: {6B75345B-AA36-438A-BBE6-4078B4C6984D} - http://h20270.www2.hp.com/ediags/gmn2/install/HPProductDetection.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/...
O16 - DPF: {6F15128C-E66A-490C-B848-5000B5ABEEAC} (HP Download Manager) - https://h20436.www2.hp.com/ediags/dex/secure/HPDEXAXO.cab
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.6.0) - http://dl8-cdn-01.sun.com/s/ESD44/JSCDL/jdk/6u7/jinstall-6u7-windows-i586-jc.cab?e=1216572316012&h=90c19d49f7a00ffd60bd2648e9c7dd39/&filename=jinstall-6u7-windows-i586-jc.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {9122D757-5A4F-4768-82C5-B4171D8556A7} (PhotoPickConvert Class) - http://appdirectory.messenger.msn.com/AppDirectory/P4Apps/PhotoSwap/PhtPkMSN.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab47946.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} -
O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) - http://download.mcafee.com/molbin/iss-loc/mcfscan/2,2,0,5262/mcfscan.cab
O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab31267.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{3E673ED4-A32E-428D-A90A-3CBCBE08EFDB}: NameServer = 80.10.246.1 81.253.149.2
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Filter hijack: text/html - (no CLSID) - (no file)
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Planificateur LiveUpdate automatique (Automatic LiveUpdate Scheduler) - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSvcHst.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSvcHst.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSvcHst.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.EXE
O23 - Service: Firebird Server - MAGIX Instance (FirebirdServerMAGIXInstance) - MAGIX® - C:\Program Files\MAGIX\Common\Database\bin\fbserver.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\LuComServer_3_4.EXE
O23 - Service: LiveUpdate Notice - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSvcHst.exe
O23 - Service: NkPtpEnumP2 - Nikon Corporation - C:\Program Files\Nikon\Wireless Camera Setup Utility\NkPtpEnum.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: LiveShare P2P Server (RoxLiveShare) - Sonic Solutions - C:\Program Files\Fichiers communs\Roxio Shared\SharedCOM8\RoxLiveShare.exe
O23 - Service: RoxMediaDB - Sonic Solutions - C:\Program Files\Fichiers communs\Roxio Shared\SharedCOM8\RoxMediaDB.exe
O23 - Service: RoxUpnpRenderer (RoxUPnPRenderer) - Sonic Solutions - C:\Program Files\Fichiers communs\Roxio Shared\SharedCom\RoxUpnpRenderer.exe
O23 - Service: RoxUpnpServer - Sonic Solutions - C:\Program Files\Roxio\Easy Media Creator 8\Digital Home\RoxUpnpServer.exe
O23 - Service: Roxio Hard Drive Watcher (RoxWatch) - Sonic Solutions - C:\Program Files\Fichiers communs\Roxio Shared\SharedCOM8\RoxWatch.exe
O23 - Service: SiSoftware Database Agent Service (SandraDataSrv) - SiSoftware - C:\Program Files\SiSoftware\SiSoftware Sandra Lite XIb\Win32\RpcDataSrv.exe
O23 - Service: SiSoftware Sandra Agent Service (SandraTheSrv) - SiSoftware - C:\Program Files\SiSoftware\SiSoftware Sandra Lite XIb\RpcSandraSrv.exe
O23 - Service: Symantec Core LC - Unknown owner - C:\PROGRA~1\FICHIE~1\SYMANT~1\CCPD-LC\symlcsvc.exe
O24 - Desktop Component 0: (no name) - http://papieralettre.free.fr/nospal/divers/pal117.jpg
O24 - Desktop Component 1: (no name) - file:///C:/DOCUME~1/Fernande/LOCALS~1/APPLIC~1/IM/Runtime/Image/764E77~1/DSC_22~1.JPG
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 21:38:27, on 28/07/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16674)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\SYSTEM32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccSvcHst.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\WINDOWS\system32\CTsvcCDA.EXE
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Nikon\Wireless Camera Setup Utility\NkPtpEnum.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Fichiers communs\Roxio Shared\SharedCOM8\RoxMediaDB.exe
C:\Program Files\Fichiers communs\Roxio Shared\SharedCOM8\RoxWatch.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\VTTimer.exe
C:\Program Files\VIAudioi\SBADeck\ADeck.exe
C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe
C:\WINDOWS\system32\LVCOMSX.EXE
C:\Program Files\Logitech\Video\LogiTray.exe
C:\Program Files\Microsoft IntelliType Pro\type32.exe
C:\Program Files\Microsoft IntelliPoint\point32.exe
C:\Program Files\Roxio\Easy Media Creator 8\Drag to Disc\DrgToDsc.exe
C:\Program Files\Fichiers communs\Roxio Shared\SharedCOM8\RoxWatchTray.exe
C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe
C:\Program Files\Fichiers communs\Real\Update_OB\RealOneMessageCenter.exe
C:\Program Files\TomTom HOME\TomTomHOME.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccSvcHst.exe
C:\Program Files\QuickTime\QTTask.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
C:\Program Files\Logitech\Video\FxSvr2.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
C:\Program Files\Fichiers communs\Roxio Shared\SharedCOM8\CPSHelpRunner.exe
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnf.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\Program Files\Creative\MediaSource\Detector\CTDetect.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Windows Media Player\WMPNSCFG.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Nikon\PictureProject\NkbMonitor.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hposol08.exe
C:\Program Files\Google\Google Updater\GoogleUpdater.exe
C:\Program Files\ArcSoft\PhotoImpression 5\PI Monitor.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\WINDOWS\system32\msiexec.exe
C:\PROGRA~1\INCRED~1\bin\IMApp.exe
C:\Program Files\Wanadoo\EspaceWanadoo.exe
C:\Program Files\Wanadoo\ComComp.exe
C:\Program Files\Wanadoo\Watch.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\WINDOWS\system32\MsiExec.exe
C:\Program Files\Trend Micro\hjcherch\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.orange.fr/portail
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,C:\WINDOWS\regedit C:\WINDOWS\system32\userinit.exe,
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: (no name) - {64F56FC1-1272-44CD-BA6E-39723696E350} - (no file)
O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\PROGRA~1\FICHIE~1\SYMANT~1\IDS\IPSBHO.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.0.1225.9868\swg.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O2 - BHO: (no name) - {BDF3E430-B101-42AD-A544-FADC6B084872} - (no file)
O3 - Toolbar: (no name) - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - (no file)
O3 - Toolbar: (no name) - {D3028143-6145-4318-99D3-3EDCE54A95A9} - (no file)
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
O4 - HKLM\..\Run: [AudioDeck] C:\Program Files\VIAudioi\SBADeck\ADeck.exe 1
O4 - HKLM\..\Run: [SpeedTouch USB Diagnostics] "C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe" /icon
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [type32] "C:\Program Files\Microsoft IntelliType Pro\type32.exe"
O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\point32.exe"
O4 - HKLM\..\Run: [RoxioDragToDisc] "C:\Program Files\Roxio\Easy Media Creator 8\Drag to Disc\DrgToDsc.exe"
O4 - HKLM\..\Run: [RoxWatchTray] "C:\Program Files\Fichiers communs\Roxio Shared\SharedCOM8\RoxWatchTray.exe"
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\FICHIE~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [MsgCenterExe] "C:\Program Files\Fichiers communs\Real\Update_OB\RealOneMessageCenter.exe" -osboot
O4 - HKLM\..\Run: [TomTomHOME.exe] "C:\Program Files\TomTom HOME\TomTomHOME.exe" -s
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [osCheck] "C:\Program Files\Norton AntiVirus\osCheck.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [TrayServer] C:\Program Files\MAGIX\Video_deluxe_2008_e-version\TrayServer.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKLM\..\Run: [Share-to-Web Namespace Daemon] C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\TaskbarIcon.exe
O4 - HKLM\..\Run: [WooCnxMon] C:\PROGRA~1\Wanadoo\CnxMon.exe
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink DVD Solution\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe"
O4 - HKLM\..\RunOnce: [SymLnch] "C:\Documents and Settings\Fernande\Application Data\Symantec\Layouts\Norton AntiVirus\15.0\SymAllLanguages\NAVCD_RETAIL\20070828\Support\SymLnch\SymLnch.exe" "C:\Documents and Settings\Fernande\Application Data\Symantec\Layouts\Norton AntiVirus\15.0\SymAllLanguages\NAVCD_RETAIL\20070828\Setup.exe" "/SCANUPREBOOT /temp /patched"
O4 - HKCU\..\Run: [IncrediMail] C:\Program Files\IncrediMail\bin\IncMail.exe /c
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - HKCU\..\Run: [Creative Detector] C:\Program Files\Creative\MediaSource\Detector\CTDetect.exe /R
O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
O4 - HKCU\..\Run: [NBJ] "C:\Program Files\Ahead\Nero BackItUp\NBJ.exe"
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Event Reminder.lnk = C:\Program Files\Broderbund\PrintMaster\PMremind.exe
O4 - Global Startup: hp psc 2000 Series.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpobnz08.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - Global Startup: NkbMonitor.exe.lnk = C:\Program Files\Nikon\PictureProject\NkbMonitor.exe
O4 - Global Startup: officejet 6100.lnk = ?
O4 - Global Startup: Outil de mise à jour Google.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe
O4 - Global Startup: PI Monitor.lnk = C:\Program Files\ArcSoft\PhotoImpression 5\PI Monitor.exe
O4 - Global Startup: VIA RAID TOOL.lnk = C:\Program Files\VIA\RAID\raid_tool.exe
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
O16 - DPF: {2250C29C-C5E9-4F55-BE4E-01E45A40FCF1} (CMediaMix Object) - http://musicmix.messenger.msn.com/Medialogic.CAB
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab31267.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {31E68DE2-5548-4B23-88F0-C51E6A0F695E} (Microsoft PID Sniffer) - https://support.serviceshub.microsoft.com/supportforbusiness/create
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by103fd.bay103.hotmail.msn.com/resources/MsnPUpld.cab
O16 - DPF: {54BE6B6F-3056-470B-97E1-BB92E051B6C4} - http://h20264.www2.hp.com/ediags/dd/install/HPDriverDiagnosticsxp2k.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan_fr/scan8/oscan8.cab
O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety Center Base Module) - http://cdn.scan.onecare.live.com/resource/download/scanner/wlscbase9563.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/...
O16 - DPF: {6B75345B-AA36-438A-BBE6-4078B4C6984D} - http://h20270.www2.hp.com/ediags/gmn2/install/HPProductDetection.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/...
O16 - DPF: {6F15128C-E66A-490C-B848-5000B5ABEEAC} (HP Download Manager) - https://h20436.www2.hp.com/ediags/dex/secure/HPDEXAXO.cab
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.6.0) - http://dl8-cdn-01.sun.com/s/ESD44/JSCDL/jdk/6u7/jinstall-6u7-windows-i586-jc.cab?e=1216572316012&h=90c19d49f7a00ffd60bd2648e9c7dd39/&filename=jinstall-6u7-windows-i586-jc.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {9122D757-5A4F-4768-82C5-B4171D8556A7} (PhotoPickConvert Class) - http://appdirectory.messenger.msn.com/AppDirectory/P4Apps/PhotoSwap/PhtPkMSN.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab47946.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} -
O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) - http://download.mcafee.com/molbin/iss-loc/mcfscan/2,2,0,5262/mcfscan.cab
O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab31267.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{3E673ED4-A32E-428D-A90A-3CBCBE08EFDB}: NameServer = 80.10.246.1 81.253.149.2
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Filter hijack: text/html - (no CLSID) - (no file)
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Planificateur LiveUpdate automatique (Automatic LiveUpdate Scheduler) - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSvcHst.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSvcHst.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSvcHst.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.EXE
O23 - Service: Firebird Server - MAGIX Instance (FirebirdServerMAGIXInstance) - MAGIX® - C:\Program Files\MAGIX\Common\Database\bin\fbserver.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\LuComServer_3_4.EXE
O23 - Service: LiveUpdate Notice - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSvcHst.exe
O23 - Service: NkPtpEnumP2 - Nikon Corporation - C:\Program Files\Nikon\Wireless Camera Setup Utility\NkPtpEnum.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: LiveShare P2P Server (RoxLiveShare) - Sonic Solutions - C:\Program Files\Fichiers communs\Roxio Shared\SharedCOM8\RoxLiveShare.exe
O23 - Service: RoxMediaDB - Sonic Solutions - C:\Program Files\Fichiers communs\Roxio Shared\SharedCOM8\RoxMediaDB.exe
O23 - Service: RoxUpnpRenderer (RoxUPnPRenderer) - Sonic Solutions - C:\Program Files\Fichiers communs\Roxio Shared\SharedCom\RoxUpnpRenderer.exe
O23 - Service: RoxUpnpServer - Sonic Solutions - C:\Program Files\Roxio\Easy Media Creator 8\Digital Home\RoxUpnpServer.exe
O23 - Service: Roxio Hard Drive Watcher (RoxWatch) - Sonic Solutions - C:\Program Files\Fichiers communs\Roxio Shared\SharedCOM8\RoxWatch.exe
O23 - Service: SiSoftware Database Agent Service (SandraDataSrv) - SiSoftware - C:\Program Files\SiSoftware\SiSoftware Sandra Lite XIb\Win32\RpcDataSrv.exe
O23 - Service: SiSoftware Sandra Agent Service (SandraTheSrv) - SiSoftware - C:\Program Files\SiSoftware\SiSoftware Sandra Lite XIb\RpcSandraSrv.exe
O23 - Service: Symantec Core LC - Unknown owner - C:\PROGRA~1\FICHIE~1\SYMANT~1\CCPD-LC\symlcsvc.exe
O24 - Desktop Component 0: (no name) - http://papieralettre.free.fr/nospal/divers/pal117.jpg
O24 - Desktop Component 1: (no name) - file:///C:/DOCUME~1/Fernande/LOCALS~1/APPLIC~1/IM/Runtime/Image/764E77~1/DSC_22~1.JPG
Ouep,
Ton PC doit être long au démarrage non ?
Télécharge maintenant Navilog1 depuis-ce lien :
http://perso.orange.fr/il.mafioso/Navifix/Navilog1.exe
Enregistrer la cible (du lien) sous... et enregistre-le sur ton bureau.
Ensuite double clique sur navilog1.exe pour lancer l'installation.
Une fois l'installation terminée, Fais un Clic-droit sur le raccourci Navilog présent sur ton bureau et choisis "Exécuter en tant qu'administrateur".
Au menu principal, Fais le choix 1
Laisse toi guider et patiente.
Patiente jusqu'au message :
*** Analyse Termine le ..... ***
Appuie sur une touche le bloc note va s'ouvrir.
Copie-colle l'intégralité du rapport ici.
@++
Ton PC doit être long au démarrage non ?
Télécharge maintenant Navilog1 depuis-ce lien :
http://perso.orange.fr/il.mafioso/Navifix/Navilog1.exe
Enregistrer la cible (du lien) sous... et enregistre-le sur ton bureau.
Ensuite double clique sur navilog1.exe pour lancer l'installation.
Une fois l'installation terminée, Fais un Clic-droit sur le raccourci Navilog présent sur ton bureau et choisis "Exécuter en tant qu'administrateur".
Au menu principal, Fais le choix 1
Laisse toi guider et patiente.
Patiente jusqu'au message :
*** Analyse Termine le ..... ***
Appuie sur une touche le bloc note va s'ouvrir.
Copie-colle l'intégralité du rapport ici.
@++
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
BONJOUR,
oui mon pc rame il est très lent, je ne peux rien te cacher.Est-ce que tu npeux juste m'expliquer ce que tu as vu dans le rapport et ce qu'on va faire par la suite svp.
A+
Search Navipromo version 3.6.1 commencé le 29/07/2008 à 14:31:28,39
!!! Attention,ce rapport peut indiquer des fichiers/programmes légitimes!!!
!!! Postez ce rapport sur le forum pour le faire analyser !!!
!!! Ne lancez pas la partie désinfection sans l'avis d'un spécialiste !!!
Outil exécuté depuis C:\Program Files\navilog1
Session actuelle : "Fernande"
Mise à jour le 19.07.2008 à 20h00 par IL-MAFIOSO
Microsoft Windows XP [version 5.1.2600]
Internet Explorer : 7.0.5730.13
Système de fichiers : NTFS
Recherche executé en mode normal
*** Recherche Programmes installés ***
*** Recherche dossiers dans "C:\WINDOWS" ***
*** Recherche dossiers dans "C:\Program Files" ***
*** Recherche dossiers dans "C:\Documents and Settings\All Users\menudm~1\progra~1" ***
*** Recherche dossiers dans "C:\Documents and Settings\All Users\menudm~1" ***
*** Recherche dossiers dans "c:\docume~1\alluse~1\applic~1" ***
*** Recherche dossiers dans "C:\Documents and Settings\Fernande\applic~1" ***
*** Recherche dossiers dans "C:\DOCUME~1\ADMINI~1\applic~1" ***
*** Recherche dossiers dans "C:\Documents and Settings\Fernande\locals~1\applic~1" ***
*** Recherche dossiers dans "C:\DOCUME~1\ADMINI~1\locals~1\applic~1" ***
*** Recherche dossiers dans "C:\Documents and Settings\Fernande\menudm~1\progra~1" ***
*** Recherche dossiers dans "C:\DOCUME~1\ADMINI~1\menudm~1\progra~1" ***
*** Recherche avec Catchme-rootkit/stealth malware detector par gmer ***
pour + d'infos : http://www.gmer.net
Aucun Fichier Navipromo trouvé
*** Recherche avec GenericNaviSearch ***
!!! Tous ces résultats peuvent révéler des fichiers légitimes !!!
!!! A vérifier impérativement avant toute suppression manuelle !!!
* Recherche dans "C:\WINDOWS\system32" *
* Recherche dans "C:\Documents and Settings\Fernande\locals~1\applic~1" *
* Recherche dans "C:\DOCUME~1\ADMINI~1\locals~1\applic~1" *
*** Recherche fichiers ***
*** Recherche clés spécifiques dans le Registre ***
*** Module de Recherche complémentaire ***
(Recherche fichiers spécifiques)
1)Recherche nouveaux fichiers Instant Access :
2)Recherche Heuristique :
* Dans "C:\WINDOWS\system32" :
* Dans "C:\Documents and Settings\Fernande\locals~1\applic~1" :
* Dans "C:\DOCUME~1\ADMINI~1\locals~1\applic~1" :
3)Recherche Certificats :
Certificat Egroup absent !
Certificat Electronic-Group absent !
Certificat OOO-Favorit absent !
Certificat Sunny-Day-Design-Ltd absent !
4)Recherche fichiers connus :
*** Analyse terminée le 29/07/2008 à 14:40:24,56 ***
oui mon pc rame il est très lent, je ne peux rien te cacher.Est-ce que tu npeux juste m'expliquer ce que tu as vu dans le rapport et ce qu'on va faire par la suite svp.
A+
Search Navipromo version 3.6.1 commencé le 29/07/2008 à 14:31:28,39
!!! Attention,ce rapport peut indiquer des fichiers/programmes légitimes!!!
!!! Postez ce rapport sur le forum pour le faire analyser !!!
!!! Ne lancez pas la partie désinfection sans l'avis d'un spécialiste !!!
Outil exécuté depuis C:\Program Files\navilog1
Session actuelle : "Fernande"
Mise à jour le 19.07.2008 à 20h00 par IL-MAFIOSO
Microsoft Windows XP [version 5.1.2600]
Internet Explorer : 7.0.5730.13
Système de fichiers : NTFS
Recherche executé en mode normal
*** Recherche Programmes installés ***
*** Recherche dossiers dans "C:\WINDOWS" ***
*** Recherche dossiers dans "C:\Program Files" ***
*** Recherche dossiers dans "C:\Documents and Settings\All Users\menudm~1\progra~1" ***
*** Recherche dossiers dans "C:\Documents and Settings\All Users\menudm~1" ***
*** Recherche dossiers dans "c:\docume~1\alluse~1\applic~1" ***
*** Recherche dossiers dans "C:\Documents and Settings\Fernande\applic~1" ***
*** Recherche dossiers dans "C:\DOCUME~1\ADMINI~1\applic~1" ***
*** Recherche dossiers dans "C:\Documents and Settings\Fernande\locals~1\applic~1" ***
*** Recherche dossiers dans "C:\DOCUME~1\ADMINI~1\locals~1\applic~1" ***
*** Recherche dossiers dans "C:\Documents and Settings\Fernande\menudm~1\progra~1" ***
*** Recherche dossiers dans "C:\DOCUME~1\ADMINI~1\menudm~1\progra~1" ***
*** Recherche avec Catchme-rootkit/stealth malware detector par gmer ***
pour + d'infos : http://www.gmer.net
Aucun Fichier Navipromo trouvé
*** Recherche avec GenericNaviSearch ***
!!! Tous ces résultats peuvent révéler des fichiers légitimes !!!
!!! A vérifier impérativement avant toute suppression manuelle !!!
* Recherche dans "C:\WINDOWS\system32" *
* Recherche dans "C:\Documents and Settings\Fernande\locals~1\applic~1" *
* Recherche dans "C:\DOCUME~1\ADMINI~1\locals~1\applic~1" *
*** Recherche fichiers ***
*** Recherche clés spécifiques dans le Registre ***
*** Module de Recherche complémentaire ***
(Recherche fichiers spécifiques)
1)Recherche nouveaux fichiers Instant Access :
2)Recherche Heuristique :
* Dans "C:\WINDOWS\system32" :
* Dans "C:\Documents and Settings\Fernande\locals~1\applic~1" :
* Dans "C:\DOCUME~1\ADMINI~1\locals~1\applic~1" :
3)Recherche Certificats :
Certificat Egroup absent !
Certificat Electronic-Group absent !
Certificat OOO-Favorit absent !
Certificat Sunny-Day-Design-Ltd absent !
4)Recherche fichiers connus :
*** Analyse terminée le 29/07/2008 à 14:40:24,56 ***
C'est normal que ton pc rame voici les programmes qui tourne sur ta machine :
O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
O4 - HKLM\..\Run: [AudioDeck] C:\Program Files\VIAudioi\SBADeck\ADeck.exe 1
O4 - HKLM\..\Run: [SpeedTouch USB Diagnostics] "C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe" /icon
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [type32] "C:\Program Files\Microsoft IntelliType Pro\type32.exe"
O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\point32.exe"
O4 - HKLM\..\Run: [RoxioDragToDisc] "C:\Program Files\Roxio\Easy Media Creator 8\Drag to Disc\DrgToDsc.exe"
O4 - HKLM\..\Run: [RoxWatchTray] "C:\Program Files\Fichiers communs\Roxio Shared\SharedCOM8\RoxWatchTray.exe"
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\FICHIE~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [MsgCenterExe] "C:\Program Files\Fichiers communs\Real\Update_OB\RealOneMessageCenter.exe" -osboot
O4 - HKLM\..\Run: [TomTomHOME.exe] "C:\Program Files\TomTom HOME\TomTomHOME.exe" -s
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [osCheck] "C:\Program Files\Norton AntiVirus\osCheck.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [TrayServer] C:\Program Files\MAGIX\Video_deluxe_2008_e-version\TrayServer.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKLM\..\Run: [Share-to-Web Namespace Daemon] C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\TaskbarIcon.exe
O4 - HKLM\..\Run: [WooCnxMon] C:\PROGRA~1\Wanadoo\CnxMon.exe
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink DVD Solution\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe"
O4 - HKLM\..\RunOnce: [SymLnch] "C:\Documents and Settings\Fernande\Application Data\Symantec\Layouts\Norton AntiVirus\15.0\SymAllLanguages\NAVCD_RETAIL\20070828\Support\SymLnch\SymLnch.exe" "C:\Documents and Settings\Fernande\Application Data\Symantec\Layouts\Norton AntiVirus\15.0\SymAllLanguages\NAVCD_RETAIL\20070828\Setup.exe" "/SCANUPREBOOT /temp /patched"
O4 - HKCU\..\Run: [IncrediMail] C:\Program Files\IncrediMail\bin\IncMail.exe /c
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - HKCU\..\Run: [Creative Detector] C:\Program Files\Creative\MediaSource\Detector\CTDetect.exe /R
O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
O4 - HKCU\..\Run: [NBJ] "C:\Program Files\Ahead\Nero BackItUp\NBJ.exe"
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Event Reminder.lnk = C:\Program Files\Broderbund\PrintMaster\PMremind.exe
O4 - Global Startup: hp psc 2000 Series.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpobnz08.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - Global Startup: NkbMonitor.exe.lnk = C:\Program Files\Nikon\PictureProject\NkbMonitor.exe
O4 - Global Startup: officejet 6100.lnk = ?
O4 - Global Startup: Outil de mise à jour Google.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe
O4 - Global Startup: PI Monitor.lnk = C:\Program Files\ArcSoft\PhotoImpression 5\PI Monitor.exe
O4 - Global Startup: VIA RAID TOOL.lnk = C:\Program Files\VIA\RAID\raid_tool.exe
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
Bon on va regarder un truc avant
Fais ce qui suit :
* Télécharge MalwareByte's Anti-Malware (by RubbeR DuckY) :
*http://www.commentcamarche.net/telecharger/telecharger 34055379 malwarebyte s anti malware
* Installe le programme sur le bureau :
o S'il manque le fichier COMCTL32.OCX, télécharge le ici
* Fais les mises à jour (clic sur Mises à jour puis Recherche de mises à jour)
* Démarre en mode sans échec
Pour faire l'analyse :
* Démarre en mode sans échec
Comment faire :
Redémarres l’ordinateur
Dès le chargement du BIOS, commences à appuyer sur la touche F8 de ton clavier,i jusqu'au ou le menu des options avancées de Windows apparait.
Sélectionne "Mode sans échec" dans le menu puis appuyez sur Entrée.
* Lance le MalwareByte's Anti-Malware, clique sur Exécuter un examen complet puis Rechercher et sélectionnez tous tes disques durs
* Une fois le scan terminé, clique sur supprimer (si un message te demande de redémarrer le PC, accepte.)
* Un rapport sera généré, enregistre le de manière à le retrouver sur ton bureau par exemple et poste le ici.
@++
O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
O4 - HKLM\..\Run: [AudioDeck] C:\Program Files\VIAudioi\SBADeck\ADeck.exe 1
O4 - HKLM\..\Run: [SpeedTouch USB Diagnostics] "C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe" /icon
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [type32] "C:\Program Files\Microsoft IntelliType Pro\type32.exe"
O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\point32.exe"
O4 - HKLM\..\Run: [RoxioDragToDisc] "C:\Program Files\Roxio\Easy Media Creator 8\Drag to Disc\DrgToDsc.exe"
O4 - HKLM\..\Run: [RoxWatchTray] "C:\Program Files\Fichiers communs\Roxio Shared\SharedCOM8\RoxWatchTray.exe"
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\FICHIE~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [MsgCenterExe] "C:\Program Files\Fichiers communs\Real\Update_OB\RealOneMessageCenter.exe" -osboot
O4 - HKLM\..\Run: [TomTomHOME.exe] "C:\Program Files\TomTom HOME\TomTomHOME.exe" -s
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [osCheck] "C:\Program Files\Norton AntiVirus\osCheck.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [TrayServer] C:\Program Files\MAGIX\Video_deluxe_2008_e-version\TrayServer.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKLM\..\Run: [Share-to-Web Namespace Daemon] C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\TaskbarIcon.exe
O4 - HKLM\..\Run: [WooCnxMon] C:\PROGRA~1\Wanadoo\CnxMon.exe
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink DVD Solution\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe"
O4 - HKLM\..\RunOnce: [SymLnch] "C:\Documents and Settings\Fernande\Application Data\Symantec\Layouts\Norton AntiVirus\15.0\SymAllLanguages\NAVCD_RETAIL\20070828\Support\SymLnch\SymLnch.exe" "C:\Documents and Settings\Fernande\Application Data\Symantec\Layouts\Norton AntiVirus\15.0\SymAllLanguages\NAVCD_RETAIL\20070828\Setup.exe" "/SCANUPREBOOT /temp /patched"
O4 - HKCU\..\Run: [IncrediMail] C:\Program Files\IncrediMail\bin\IncMail.exe /c
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - HKCU\..\Run: [Creative Detector] C:\Program Files\Creative\MediaSource\Detector\CTDetect.exe /R
O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
O4 - HKCU\..\Run: [NBJ] "C:\Program Files\Ahead\Nero BackItUp\NBJ.exe"
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Event Reminder.lnk = C:\Program Files\Broderbund\PrintMaster\PMremind.exe
O4 - Global Startup: hp psc 2000 Series.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpobnz08.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - Global Startup: NkbMonitor.exe.lnk = C:\Program Files\Nikon\PictureProject\NkbMonitor.exe
O4 - Global Startup: officejet 6100.lnk = ?
O4 - Global Startup: Outil de mise à jour Google.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe
O4 - Global Startup: PI Monitor.lnk = C:\Program Files\ArcSoft\PhotoImpression 5\PI Monitor.exe
O4 - Global Startup: VIA RAID TOOL.lnk = C:\Program Files\VIA\RAID\raid_tool.exe
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
Bon on va regarder un truc avant
Fais ce qui suit :
* Télécharge MalwareByte's Anti-Malware (by RubbeR DuckY) :
*http://www.commentcamarche.net/telecharger/telecharger 34055379 malwarebyte s anti malware
* Installe le programme sur le bureau :
o S'il manque le fichier COMCTL32.OCX, télécharge le ici
* Fais les mises à jour (clic sur Mises à jour puis Recherche de mises à jour)
* Démarre en mode sans échec
Pour faire l'analyse :
* Démarre en mode sans échec
Comment faire :
Redémarres l’ordinateur
Dès le chargement du BIOS, commences à appuyer sur la touche F8 de ton clavier,i jusqu'au ou le menu des options avancées de Windows apparait.
Sélectionne "Mode sans échec" dans le menu puis appuyez sur Entrée.
* Lance le MalwareByte's Anti-Malware, clique sur Exécuter un examen complet puis Rechercher et sélectionnez tous tes disques durs
* Une fois le scan terminé, clique sur supprimer (si un message te demande de redémarrer le PC, accepte.)
* Un rapport sera généré, enregistre le de manière à le retrouver sur ton bureau par exemple et poste le ici.
@++
bonjour l'ami
je reconnais que j'ai pas mal de programmes qui tournent tu as raison en attendant la suite voici le rapport malwarebytes:
Malwarebytes' Anti-Malware 1.23
Version de la base de données: 1008
Windows 5.1.2600 Service Pack 3
11:24:18 30/07/2008
mbam-log-7-30-2008 (11-24-18).txt
Type de recherche: Examen complet (C:\|D:\|)
Eléments examinés: 151029
Temps écoulé: 1 hour(s), 18 minute(s), 15 second(s)
Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 0
Valeur(s) du Registre infectée(s): 0
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 0
Processus mémoire infecté(s):
(Aucun élément nuisible détecté)
Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)
Clé(s) du Registre infectée(s):
(Aucun élément nuisible détecté)
Valeur(s) du Registre infectée(s):
(Aucun élément nuisible détecté)
Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)
Dossier(s) infecté(s):
(Aucun élément nuisible détecté)
Fichier(s) infecté(s):
(Aucun élément nuisible détecté)
à bientôt
je reconnais que j'ai pas mal de programmes qui tournent tu as raison en attendant la suite voici le rapport malwarebytes:
Malwarebytes' Anti-Malware 1.23
Version de la base de données: 1008
Windows 5.1.2600 Service Pack 3
11:24:18 30/07/2008
mbam-log-7-30-2008 (11-24-18).txt
Type de recherche: Examen complet (C:\|D:\|)
Eléments examinés: 151029
Temps écoulé: 1 hour(s), 18 minute(s), 15 second(s)
Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 0
Valeur(s) du Registre infectée(s): 0
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 0
Processus mémoire infecté(s):
(Aucun élément nuisible détecté)
Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)
Clé(s) du Registre infectée(s):
(Aucun élément nuisible détecté)
Valeur(s) du Registre infectée(s):
(Aucun élément nuisible détecté)
Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)
Dossier(s) infecté(s):
(Aucun élément nuisible détecté)
Fichier(s) infecté(s):
(Aucun élément nuisible détecté)
à bientôt
Regarde les liens pour ton erreur
http://www.commentcamarche.net/forum/affich 2031832 message au demarrage erreur interne 2343
http://forum.telecharger.01net.com/forum/high-tech/PRODUITS/Peripheriques/erreur-2343-resolu-sujet_100091_1.htm
https://support.microsoft.com/fr-fr/help/469643
Sinon il faut faire le tri au niveau des programmes qui tourne sur le pc.
@++
http://www.commentcamarche.net/forum/affich 2031832 message au demarrage erreur interne 2343
http://forum.telecharger.01net.com/forum/high-tech/PRODUITS/Peripheriques/erreur-2343-resolu-sujet_100091_1.htm
https://support.microsoft.com/fr-fr/help/469643
Sinon il faut faire le tri au niveau des programmes qui tourne sur le pc.
@++
merci pour liens mais ça ne va toujours pas j'ai tjrs l'erreur 2343 en boucle vraiment penible et quand je demarre le pc j'ai une fenêtre qui me demande à chaque fois si je veux enregistrer au registre windows/systeme32:userinit-exe au registre c'est le bordel au niveau de mon editeur de registre je crois si tu peux m'aider à remettre un peu d'ordre la dedans ça serais génial.pour les programmes qui tournent qu'est ce qu'on fait.
A+
A+
mon erreur 2343 à disparu après avoir suppr des clefs de registre en suivant le lien que tu m'as donné mais j'en ai tjrs un autre une seule fois à chaque démar de l'ordi qui me demande si je veux ajouté les informations contenues dans C
windows system 32 userinit exe au registre.
Par contre monimprimante scanner psc hp 2210 tout en un ne marche pas et en plug in play pas de detection alors ue le logiciel d'installation est installé voila.
sinon pour mes programmes comment on fait le tri
merci et à+
windows system 32 userinit exe au registre.
Par contre monimprimante scanner psc hp 2210 tout en un ne marche pas et en plug in play pas de detection alors ue le logiciel d'installation est installé voila.
sinon pour mes programmes comment on fait le tri
merci et à+
je te remercie pour le tutto mais que dois je faire pour mon gestionnaire de périphérique qui est vide.
merci encore et A+
merci encore et A+
Essaye ça :
Télécharge >> Lop S&D.exe << puis enregistres-le sur ton Bureau .
double-clic sur le fichier LopSD.exe suffira à lancer l'installation
Accepte le contat de licence
Il va t'être de demandé de créer le répertoire de destination accepte en cliquant sur oui
Un raccourci sera créé sur ton Bureau.
Double clic sur le raccourci du bureau
Choisis la langue f pour Français puis validez par Entrée.
Choisis l'option Recherche en saisissant 1 valides par Entrée.
Patiente le temps du scan
A la fin du scan un rapport sera généré et s'ouvrira automatiquement dans le Bloc-Notes.Copies-colles le
contenu de ce rapport ici.
>>On le trouve aussi en %systemdrive%\LopR.txt
@++
Télécharge >> Lop S&D.exe << puis enregistres-le sur ton Bureau .
double-clic sur le fichier LopSD.exe suffira à lancer l'installation
Accepte le contat de licence
Il va t'être de demandé de créer le répertoire de destination accepte en cliquant sur oui
Un raccourci sera créé sur ton Bureau.
Double clic sur le raccourci du bureau
Choisis la langue f pour Français puis validez par Entrée.
Choisis l'option Recherche en saisissant 1 valides par Entrée.
Patiente le temps du scan
A la fin du scan un rapport sera généré et s'ouvrira automatiquement dans le Bloc-Notes.Copies-colles le
contenu de ce rapport ici.
>>On le trouve aussi en %systemdrive%\LopR.txt
@++
Bonjour,
voici le rapport
Dans l'attente je te remerie pour ton aide
A+
--------------------\\ Lop S&D 4.2.4-2 XP/Vista
Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Uniprocessor Free : AMD Sempron(tm) 2400+ )
BIOS : Phoenix - AwardBIOS v6.00PG
USER : Fernande ( Administrator )
BOOT : Normal boot
Antivirus : Norton AntiVirus 15.0.0.58 (Activated)
Firewall : Norton AntiVirus 15.0.0.58 (Activated)
"C:\Lop SD" ( MAJ : 08-09-2008|21:40 )
Option : [1] ( 14/09/2008|17:15 )
--------------------\\ Listing des dossiers dans APPLIC~1
[30/07/2008|09:57] C:\DOCUME~1\ADMINI~1\APPLIC~1\Malwarebytes
[14/04/2005|21:01] C:\DOCUME~1\ADMINI~1\APPLIC~1\Microsoft
[20/07/2008|19:16] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[27/03/2008|18:01] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple
[28/03/2008|17:03] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer
[15/04/2005|14:53] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Broderbund Software
[15/04/2005|14:34] C:\DOCUME~1\ALLUSE~1\APPLIC~1\CyberLink
[20/03/2006|19:05] C:\DOCUME~1\ALLUSE~1\APPLIC~1\DVD Shrink
[18/03/2006|18:58] C:\DOCUME~1\ALLUSE~1\APPLIC~1\EnterNHelp
[29/03/2008|15:20] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
[14/09/2008|14:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google Updater
[22/03/2008|18:14] C:\DOCUME~1\ALLUSE~1\APPLIC~1\great coal love default
[20/07/2008|19:30] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Grisoft
[18/03/2006|16:30] C:\DOCUME~1\ALLUSE~1\APPLIC~1\InstallShield
[11/08/2007|21:23] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Internet debug mess great
[20/06/2008|18:52] C:\DOCUME~1\ALLUSE~1\APPLIC~1\MAGIX
[21/07/2008|13:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Malwarebytes
[31/12/2007|16:15] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Messenger Plus!
[05/06/2008|18:31] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[18/03/2006|19:04] C:\DOCUME~1\ALLUSE~1\APPLIC~1\muvee Technologies
[21/07/2008|07:48] C:\DOCUME~1\ALLUSE~1\APPLIC~1\NOS
[25/12/2005|17:43] C:\DOCUME~1\ALLUSE~1\APPLIC~1\OD2
[18/03/2006|19:28] C:\DOCUME~1\ALLUSE~1\APPLIC~1\QuickTime
[18/03/2006|16:34] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Roxio
[23/04/2005|11:16] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Softdisk LLC
[18/03/2006|16:28] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Sonic
[02/08/2008|18:19] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy
[03/09/2008|19:01] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec
[25/02/2007|11:16] C:\DOCUME~1\ALLUSE~1\APPLIC~1\time web five cool
[21/02/2008|15:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TomTom
[18/03/2006|18:58] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Ultima_T15
[22/01/2006|23:32] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[15/10/2006|15:30] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Live Toolbar
[08/06/2008|17:11] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
[22/07/2008|23:15] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Yahoo! Companion
[31/03/2008|20:04] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Apple Computer
[14/04/2005|21:01] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[31/07/2008|20:41] C:\DOCUME~1\Fernande\APPLIC~1\$CUERoot$
[28/03/2008|17:00] C:\DOCUME~1\Fernande\APPLIC~1\1dvd
[31/10/2007|18:34] C:\DOCUME~1\Fernande\APPLIC~1\Adobe
[04/04/2007|20:34] C:\DOCUME~1\Fernande\APPLIC~1\AdobeUM
[05/03/2006|17:39] C:\DOCUME~1\Fernande\APPLIC~1\Ahead
[23/03/2007|22:26] C:\DOCUME~1\Fernande\APPLIC~1\Anuman Interactive
[29/03/2008|10:46] C:\DOCUME~1\Fernande\APPLIC~1\Apple Computer
[10/03/2007|21:40] C:\DOCUME~1\Fernande\APPLIC~1\ArcSoft
[25/12/2005|18:22] C:\DOCUME~1\Fernande\APPLIC~1\Creative
[15/04/2005|14:39] C:\DOCUME~1\Fernande\APPLIC~1\CyberLink
[03/12/2006|23:35] C:\DOCUME~1\Fernande\APPLIC~1\Dossier de t‚l‚chargement Share-to-Web
[30/04/2006|15:35] C:\DOCUME~1\Fernande\APPLIC~1\Dossier de t‚l‚chargement Share-to-Web
[23/06/2005|21:27] C:\DOCUME~1\Fernande\APPLIC~1\eConf
[22/03/2008|16:49] C:\DOCUME~1\Fernande\APPLIC~1\EoRezo
[20/04/2005|11:27] C:\DOCUME~1\Fernande\APPLIC~1\FotoWire
[27/05/2006|16:46] C:\DOCUME~1\Fernande\APPLIC~1\Google
[20/07/2008|19:31] C:\DOCUME~1\Fernande\APPLIC~1\Grisoft
[27/04/2005|21:08] C:\DOCUME~1\Fernande\APPLIC~1\Help
[12/09/2008|16:06] C:\DOCUME~1\Fernande\APPLIC~1\Hemera
[26/04/2005|15:41] C:\DOCUME~1\Fernande\APPLIC~1\Identities
[10/07/2007|21:05] C:\DOCUME~1\Fernande\APPLIC~1\Image Zone Express
[21/10/2007|11:38] C:\DOCUME~1\Fernande\APPLIC~1\InstallShield
[14/08/2008|22:35] C:\DOCUME~1\Fernande\APPLIC~1\InterTrust
[05/06/2008|18:31] C:\DOCUME~1\Fernande\APPLIC~1\Lavasoft
[04/11/2005|18:04] C:\DOCUME~1\Fernande\APPLIC~1\Macromedia
[20/06/2008|18:54] C:\DOCUME~1\Fernande\APPLIC~1\MAGIX
[21/07/2008|13:52] C:\DOCUME~1\Fernande\APPLIC~1\Malwarebytes
[31/07/2008|15:28] C:\DOCUME~1\Fernande\APPLIC~1\Microsoft
[03/04/2007|13:36] C:\DOCUME~1\Fernande\APPLIC~1\Mozilla
[17/04/2005|20:34] C:\DOCUME~1\Fernande\APPLIC~1\MSNInstaller
[18/03/2006|19:05] C:\DOCUME~1\Fernande\APPLIC~1\muvee Technologies
[07/04/2006|21:12] C:\DOCUME~1\Fernande\APPLIC~1\Nikon
[25/12/2005|18:10] C:\DOCUME~1\Fernande\APPLIC~1\OD2
[03/04/2007|13:36] C:\DOCUME~1\Fernande\APPLIC~1\Real
[20/06/2008|18:44] C:\DOCUME~1\Fernande\APPLIC~1\Roxio
[04/04/2007|21:41] C:\DOCUME~1\Fernande\APPLIC~1\Screenshot Sender
[18/03/2006|16:49] C:\DOCUME~1\Fernande\APPLIC~1\Sonic
[20/07/2008|18:48] C:\DOCUME~1\Fernande\APPLIC~1\Sun
[22/03/2008|16:52] C:\DOCUME~1\Fernande\APPLIC~1\Symantec
[03/04/2007|13:37] C:\DOCUME~1\Fernande\APPLIC~1\Talkback
[30/10/2005|16:23] C:\DOCUME~1\Fernande\APPLIC~1\Template
[10/03/2007|22:02] C:\DOCUME~1\Fernande\APPLIC~1\vlc
[19/12/2007|23:06] C:\DOCUME~1\Fernande\APPLIC~1\Windows Live Writer
[04/02/2006|18:45] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[18/03/2006|16:34] C:\DOCUME~1\LOCALS~1\APPLIC~1\Roxio
[26/04/2005|16:05] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks
[21/07/2008 13:11][--a------] C:\WINDOWS\tasks\Norton AntiVirus - Effectuer une analyse complŠte du systŠme - Fernande.job
[14/09/2008 17:01][--a------] C:\WINDOWS\tasks\V‚rifier les mises … jour de Windows Live Toolbar.job
[14/09/2008 14:37][--ah-----] C:\WINDOWS\tasks\SA.DAT
[05/08/2004 14:00][-r-h-----] C:\WINDOWS\tasks\desktop.ini
--------------------\\ Listing des dossiers dans C:\Program Files
[21/02/2008|15:20] C:\Program Files\1dvd
[18/06/2005|12:50] C:\Program Files\3D Arctic Bear
[14/08/2008|22:35] C:\Program Files\Adobe
[15/04/2005|14:35] C:\Program Files\Ahead
[20/07/2008|17:07] C:\Program Files\AlerteGPS
[05/02/2007|20:29] C:\Program Files\Alwil Software
[23/03/2007|22:17] C:\Program Files\Anuman Interactive
[28/07/2008|14:52] C:\Program Files\Apple Software Update
[10/03/2007|21:37] C:\Program Files\ArcSoft
[13/01/2007|16:31] C:\Program Files\AutoGK
[13/01/2007|16:31] C:\Program Files\AviSynth 2.5
[18/08/2008|17:31] C:\Program Files\Broderbund
[22/07/2008|22:54] C:\Program Files\CCleaner
[10/09/2008|20:51] C:\Program Files\Circle Developement
[10/03/2007|22:59] C:\Program Files\Cobian Backup 8
[15/04/2005|15:19] C:\Program Files\Common Files
[14/04/2005|20:58] C:\Program Files\ComPlus Applications
[25/12/2005|17:46] C:\Program Files\Creative
[15/04/2005|14:34] C:\Program Files\CyberLink
[15/04/2005|14:34] C:\Program Files\CyberLink DVD Solution
[27/05/2006|22:44] C:\Program Files\DIFX
[10/07/2007|21:08] C:\Program Files\Documalis Free
[20/03/2006|19:05] C:\Program Files\DVD Shrink
[23/04/2005|09:02] C:\Program Files\ecrans2veille
[22/03/2008|16:49] C:\Program Files\EoRezo
[18/08/2008|16:59] C:\Program Files\Fichiers communs
[18/06/2005|12:56] C:\Program Files\FileSubmit
[25/06/2006|16:26] C:\Program Files\Free Offers from RI Soft Systems
[24/02/2007|21:37] C:\Program Files\FreeLaunchBar
[04/12/2006|16:41] C:\Program Files\Gabest
[28/07/2008|14:49] C:\Program Files\Google
[20/07/2008|19:30] C:\Program Files\Grisoft
[31/07/2008|16:57] C:\Program Files\Hewlett-Packard
[23/01/2006|16:47] C:\Program Files\HighMAT CD Writing Wizard
[31/07/2008|15:29] C:\Program Files\HP
[03/07/2005|10:39] C:\Program Files\ImaginationX
[19/01/2007|22:32] C:\Program Files\IncrediMail
[12/09/2008|16:05] C:\Program Files\InstallShield Installation Information
[13/08/2008|18:47] C:\Program Files\Internet Explorer
[28/03/2008|17:04] C:\Program Files\iPod
[28/03/2008|17:05] C:\Program Files\iTunes
[03/02/2007|12:14] C:\Program Files\IZArc
[20/07/2008|18:48] C:\Program Files\Java
[09/02/2006|17:32] C:\Program Files\Logitech
[27/02/2008|22:50] C:\Program Files\Magentic
[20/06/2008|18:52] C:\Program Files\MAGIX
[30/07/2008|09:53] C:\Program Files\Malwarebytes' Anti-Malware
[08/07/2007|17:17] C:\Program Files\MaxTV
[13/08/2008|18:52] C:\Program Files\Messenger
[10/09/2008|20:51] C:\Program Files\Messenger Plus! Live
[31/12/2007|16:14] C:\Program Files\MessengerPlus! 3
[12/09/2008|16:01] C:\Program Files\Micro Application
[08/05/2007|20:12] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[29/05/2005|15:30] C:\Program Files\microsoft frontpage
[08/02/2007|21:47] C:\Program Files\Microsoft IntelliPoint
[08/02/2007|21:47] C:\Program Files\Microsoft IntelliType Pro
[19/02/2006|17:35] C:\Program Files\Microsoft Office
[16/12/2007|21:00] C:\Program Files\Microsoft SQL Server Compact Edition
[28/09/2006|21:44] C:\Program Files\Microsoft Works
[19/02/2006|17:35] C:\Program Files\Microsoft.NET
[10/05/2008|23:23] C:\Program Files\Movie Maker
[08/06/2008|17:21] C:\Program Files\Mozilla Firefox
[01/06/2005|15:41] C:\Program Files\MSN
[26/11/2006|10:24] C:\Program Files\MSN Apps(2)
[14/04/2005|20:57] C:\Program Files\MSN Gaming Zone
[16/12/2007|20:57] C:\Program Files\MSN Messenger
[26/11/2006|12:13] C:\Program Files\MSXML 4.0
[28/12/2006|14:56] C:\Program Files\Music Manager
[29/07/2008|14:40] C:\Program Files\Navilog1
[10/05/2008|23:19] C:\Program Files\NetMeeting
[23/03/2007|19:56] C:\Program Files\Nikon
[22/03/2008|18:53] C:\Program Files\Norton AntiVirus
[22/03/2008|18:02] C:\Program Files\Norton SystemWorks
[21/07/2008|07:48] C:\Program Files\NOS
[23/02/2006|17:37] C:\Program Files\OfficeUpdate11
[14/04/2005|20:57] C:\Program Files\Online Services
[10/05/2008|23:19] C:\Program Files\Outlook Express
[04/12/2006|16:58] C:\Program Files\PC Inspector File Recovery
[14/03/2008|22:46] C:\Program Files\PhotoFiltre
[06/06/2008|18:58] C:\Program Files\Picasa2
[22/04/2005|21:54] C:\Program Files\Plus!
[28/03/2008|17:03] C:\Program Files\QuickTime
[30/07/2008|22:03] C:\Program Files\ReadIris
[03/04/2007|13:31] C:\Program Files\Real
[15/04/2005|15:19] C:\Program Files\Reflex Express
[18/03/2006|16:30] C:\Program Files\Roxio
[14/04/2005|21:12] C:\Program Files\S3Inc
[28/03/2008|17:14] C:\Program Files\Safari
[14/04/2005|20:59] C:\Program Files\Services en ligne
[04/12/2006|15:52] C:\Program Files\SiSoftware
[20/03/2006|19:29] C:\Program Files\SlySoft
[24/02/2007|20:31] C:\Program Files\Softwin
[18/03/2006|16:30] C:\Program Files\Sonic
[08/06/2008|17:30] C:\Program Files\Spybot - Search & Destroy
[08/06/2008|20:18] C:\Program Files\Symantec
[15/04/2005|13:55] C:\Program Files\Thomson
[01/11/2007|10:42] C:\Program Files\TomTom HOME
[28/07/2008|21:37] C:\Program Files\Trend Micro
[16/06/2008|13:33] C:\Program Files\UltraVNC
[26/04/2005|15:09] C:\Program Files\Uninstall Information
[14/04/2005|21:21] C:\Program Files\VIA
[03/12/2006|11:58] C:\Program Files\VIAudioi
[15/04/2005|15:19] C:\Program Files\ViaVoice
[10/03/2007|22:01] C:\Program Files\VideoLAN
[14/09/2008|16:56] C:\Program Files\Wanadoo
[26/11/2006|10:29] C:\Program Files\Winamp
[08/06/2008|17:11] C:\Program Files\Windows Live
[16/06/2008|11:47] C:\Program Files\Windows Live Safety Center
[10/01/2008|12:42] C:\Program Files\Windows Live Toolbar
[04/12/2006|20:48] C:\Program Files\Windows Media Bonus Pack for Windows XP
[04/12/2006|00:15] C:\Program Files\Windows Media Connect 2
[10/05/2008|23:19] C:\Program Files\Windows Media Player
[10/05/2008|23:19] C:\Program Files\Windows NT
[22/03/2008|18:20] C:\Program Files\Windows Sidebar
[14/04/2005|20:59] C:\Program Files\WindowsUpdate
[23/02/2007|23:28] C:\Program Files\WinRAR
[10/03/2007|21:51] C:\Program Files\WinZip
[14/04/2005|21:01] C:\Program Files\xerox
[22/07/2008|22:53] C:\Program Files\Yahoo!
--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs
[14/08/2008|22:35] C:\Program Files\Fichiers communs\Adobe
[15/04/2005|14:35] C:\Program Files\Fichiers communs\Ahead
[28/03/2008|17:00] C:\Program Files\Fichiers communs\Apple
[18/08/2008|17:26] C:\Program Files\Fichiers communs\Broderbund
[23/04/2005|08:47] C:\Program Files\Fichiers communs\DESIGNER
[20/04/2005|11:27] C:\Program Files\Fichiers communs\FotoWire
[15/04/2005|13:43] C:\Program Files\Fichiers communs\Hewlett-Packard
[18/03/2006|16:26] C:\Program Files\Fichiers communs\InstallShield
[20/07/2008|18:44] C:\Program Files\Fichiers communs\Java
[18/06/2005|11:16] C:\Program Files\Fichiers communs\Logitech
[20/06/2008|18:52] C:\Program Files\Fichiers communs\MAGIX Shared
[08/06/2008|17:14] C:\Program Files\Fichiers communs\Microsoft Shared
[14/04/2005|20:59] C:\Program Files\Fichiers communs\MSSoap
[15/04/2006|21:22] C:\Program Files\Fichiers communs\muvee Technologies
[15/04/2006|21:22] C:\Program Files\Fichiers communs\Nikon
[15/04/2005|07:42] C:\Program Files\Fichiers communs\ODBC
[10/03/2007|19:23] C:\Program Files\Fichiers communs\Panda Software
[20/04/2008|15:52] C:\Program Files\Fichiers communs\Real
[18/03/2006|16:29] C:\Program Files\Fichiers communs\Roxio Shared
[14/04/2005|20:59] C:\Program Files\Fichiers communs\Services
[10/03/2007|21:20] C:\Program Files\Fichiers communs\Softwin
[18/03/2006|16:30] C:\Program Files\Fichiers communs\Sonic Shared
[15/04/2005|07:42] C:\Program Files\Fichiers communs\SpeechEngines
[04/09/2008|14:44] C:\Program Files\Fichiers communs\Symantec Shared
[10/05/2008|23:19] C:\Program Files\Fichiers communs\System
[16/12/2007|20:53] C:\Program Files\Fichiers communs\WindowsLiveInstaller
[20/04/2008|15:52] C:\Program Files\Fichiers communs\xing shared
[15/04/2005|15:19] C:\Program Files\Fichiers communs\YDP
--------------------\\ Process
( 78 Processes )
IEXPLORE.EXE ~ [PID:2496]
--------------------\\ Recherche avec S_Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Recherche de Fichiers / Dossiers Lop
C:\DOCUME~1\ALLUSE~1\APPLIC~1\great coal love default
C:\DOCUME~1\ALLUSE~1\APPLIC~1\Internet debug mess great
C:\Program Files\Circle Developement
C:\Program Files\Circle Developement\Uninstall.exe
C:\DOCUME~1\Fernande\Cookies\fernande@advertstream[2].txt
--------------------\\ Verification du Registre
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
..... OK !
--------------------\\ Verification du fichier Hosts
Fichier Hosts MODIFIE
127.0.0.1 bin.errorprotector.com ## added by CiD
127.0.0.1 br.errorsafe.com ## added by CiD
127.0.0.1 br.winantivirus.com ## added by CiD
127.0.0.1 br.winfixer.com ## added by CiD
127.0.0.1 cdn.drivecleaner.com ## added by CiD
127.0.0.1 cdn.errorsafe.com ## added by CiD
127.0.0.1 cdn.winsoftware.com ## added by CiD
127.0.0.1 de.errorsafe.com ## added by CiD
127.0.0.1 de.winantivirus.com ## added by CiD
127.0.0.1 download.cdn.drivecleaner.com ## added by CiD
127.0.0.1 download.cdn.errorsafe.com ## added by CiD
127.0.0.1 download.cdn.winsoftware.com ## added by CiD
127.0.0.1 download.errorsafe.com ## added by CiD
127.0.0.1 download.systemdoctor.com ## added by CiD
127.0.0.1 download.winantispyware.com ## added by CiD
127.0.0.1 download.windrivecleaner.com ## added by CiD
127.0.0.1 download.winfixer.com ## added by CiD
127.0.0.1 drivecleaner.com ## added by CiD
127.0.0.1 dynamique.drivecleaner.com ## added by CiD
127.0.0.1 errorprotector.com ## added by CiD
127.0.0.1 errorsafe.com ## added by CiD
127.0.0.1 es.winantivirus.com ## added by CiD
127.0.0.1 fr.winantivirus.com ## added by CiD
127.0.0.1 fr.winfixer.com ## added by CiD
127.0.0.1 go.drivecleaner.com ## added by CiD
127.0.0.1 go.errorsafe.com ## added by CiD
127.0.0.1 go.winantispyware.com ## added by CiD
127.0.0.1 go.winantivirus.com ## added by CiD
127.0.0.1 hk.winantivirus.com ## added by CiD
127.0.0.1 instlog.errorsafe.com ## added by CiD
127.0.0.1 instlog.winantivirus.com ## added by CiD
127.0.0.1 instlog.winfixer.com ## added by CiD
127.0.0.1 jsp.drivecleaner.com ## added by CiD
127.0.0.1 kb.errorsafe.com ## added by CiD
127.0.0.1 kb.winantivirus.com ## added by CiD
127.0.0.1 nl.errorsafe.com ## added by CiD
127.0.0.1 se.errorsafe.com ## added by CiD
127.0.0.1 secure.drivecleaner.com ## added by CiD
127.0.0.1 secure.errorsafe.com ## added by CiD
127.0.0.1 secure.winantispam.com ## added by CiD
127.0.0.1 secure.winantispy.com ## added by CiD
127.0.0.1 secure.winantivirus.com ## added by CiD
127.0.0.1 support.winantivirus.com ## added by CiD
127.0.0.1 trial.updates.winsoftware.com ## added by CiD
127.0.0.1 ulog.winantivirus.com ## added by CiD
127.0.0.1 utils.errorsafe.com ## added by CiD
127.0.0.1 utils.winantivirus.com ## added by CiD
127.0.0.1 utils.winfixer.com ## added by CiD
127.0.0.1 winantispyware.com ## added by CiD
127.0.0.1 winantivirus.com ## added by CiD
127.0.0.1 winfixer.com ## added by CiD
127.0.0.1 winfixer2006.com ## added by CiD
127.0.0.1 winsoftware.com ## added by CiD
127.0.0.1 [i]ww/iw.drivecleaner.com ## added by CiD
127.0.0.1 [i]ww/iw.errorprotector.com ## added by CiD
127.0.0.1 [i]ww/iw.errorsafe.com ## added by CiD
127.0.0.1 [i]ww/iw.systemdoctor.com ## added by CiD
127.0.0.1 [i]ww/iw.utils.winfixer.com ## added by CiD
127.0.0.1 [i]ww/iw.win-anti-virus-pro.com ## added by CiD
127.0.0.1 [i]ww/iw.win-virus-pro.com ## added by CiD
127.0.0.1 [i]ww/iw.winantispam.com ## added by CiD
127.0.0.1 [i]ww/iw.winantispy.com ## added by CiD
127.0.0.1 [i]ww/iw.winantispyware.com ## added by CiD
127.0.0.1 [i]ww/iw.winantivirus.com ## added by CiD
127.0.0.1 [i]ww/iw.winantiviruspro.com ## added by CiD
127.0.0.1 [i]ww/iw.windrivecleaner.com ## added by CiD
127.0.0.1 [i]ww/iw.windrivesafe.com ## added by CiD
127.0.0.1 [i]ww/iw.winfixer.com ## added by CiD
127.0.0.1 [i]ww/iw.winfixer2006.com ## added by CiD
127.0.0.1 [i]ww/iw.winsoftware.com ## added by CiD
-> 8836 [ 70 ## added by CiD ]
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-09-14 17:17:43
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 5
--------------------\\ Recherche d'autres infections
--------------------\\ Cracks & Keygens ..
C:\DOCUME~1\Fernande\Mes documents\ImagecopieXP PRO\Windows XP\utils\compression\WinAce v2.04 & v2.xx Reg Crack For win9x,xp,2k.zip
C:\DOCUME~1\Fernande\Mes documents\ImagecopieXP PRO\Windows XP\utils\gravure\WinISO_v4.5_Crack.zip
C:\DOCUME~1\Fernande\Mes documents\ImagecopieXP PRO\Windows XP\utils\internet\crackffxp1.4.txt
[F:1416][D:26]-> C:\DOCUME~1\Fernande\LOCALS~1\Temp
[F:297][D:0]-> C:\DOCUME~1\Fernande\Cookies
[F:13103][D:20]-> C:\DOCUME~1\Fernande\LOCALS~1\TEMPOR~1\content.IE5
1 - "C:\Lop SD\LopR_1.txt" - 14/09/2008|17:21 - Option : [1]
--------------------\\ Fin du rapport a 17:21:03
voici le rapport
Dans l'attente je te remerie pour ton aide
A+
--------------------\\ Lop S&D 4.2.4-2 XP/Vista
Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Uniprocessor Free : AMD Sempron(tm) 2400+ )
BIOS : Phoenix - AwardBIOS v6.00PG
USER : Fernande ( Administrator )
BOOT : Normal boot
Antivirus : Norton AntiVirus 15.0.0.58 (Activated)
Firewall : Norton AntiVirus 15.0.0.58 (Activated)
"C:\Lop SD" ( MAJ : 08-09-2008|21:40 )
Option : [1] ( 14/09/2008|17:15 )
--------------------\\ Listing des dossiers dans APPLIC~1
[30/07/2008|09:57] C:\DOCUME~1\ADMINI~1\APPLIC~1\Malwarebytes
[14/04/2005|21:01] C:\DOCUME~1\ADMINI~1\APPLIC~1\Microsoft
[20/07/2008|19:16] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[27/03/2008|18:01] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple
[28/03/2008|17:03] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer
[15/04/2005|14:53] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Broderbund Software
[15/04/2005|14:34] C:\DOCUME~1\ALLUSE~1\APPLIC~1\CyberLink
[20/03/2006|19:05] C:\DOCUME~1\ALLUSE~1\APPLIC~1\DVD Shrink
[18/03/2006|18:58] C:\DOCUME~1\ALLUSE~1\APPLIC~1\EnterNHelp
[29/03/2008|15:20] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
[14/09/2008|14:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google Updater
[22/03/2008|18:14] C:\DOCUME~1\ALLUSE~1\APPLIC~1\great coal love default
[20/07/2008|19:30] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Grisoft
[18/03/2006|16:30] C:\DOCUME~1\ALLUSE~1\APPLIC~1\InstallShield
[11/08/2007|21:23] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Internet debug mess great
[20/06/2008|18:52] C:\DOCUME~1\ALLUSE~1\APPLIC~1\MAGIX
[21/07/2008|13:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Malwarebytes
[31/12/2007|16:15] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Messenger Plus!
[05/06/2008|18:31] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[18/03/2006|19:04] C:\DOCUME~1\ALLUSE~1\APPLIC~1\muvee Technologies
[21/07/2008|07:48] C:\DOCUME~1\ALLUSE~1\APPLIC~1\NOS
[25/12/2005|17:43] C:\DOCUME~1\ALLUSE~1\APPLIC~1\OD2
[18/03/2006|19:28] C:\DOCUME~1\ALLUSE~1\APPLIC~1\QuickTime
[18/03/2006|16:34] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Roxio
[23/04/2005|11:16] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Softdisk LLC
[18/03/2006|16:28] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Sonic
[02/08/2008|18:19] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy
[03/09/2008|19:01] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec
[25/02/2007|11:16] C:\DOCUME~1\ALLUSE~1\APPLIC~1\time web five cool
[21/02/2008|15:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TomTom
[18/03/2006|18:58] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Ultima_T15
[22/01/2006|23:32] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[15/10/2006|15:30] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Live Toolbar
[08/06/2008|17:11] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
[22/07/2008|23:15] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Yahoo! Companion
[31/03/2008|20:04] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Apple Computer
[14/04/2005|21:01] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[31/07/2008|20:41] C:\DOCUME~1\Fernande\APPLIC~1\$CUERoot$
[28/03/2008|17:00] C:\DOCUME~1\Fernande\APPLIC~1\1dvd
[31/10/2007|18:34] C:\DOCUME~1\Fernande\APPLIC~1\Adobe
[04/04/2007|20:34] C:\DOCUME~1\Fernande\APPLIC~1\AdobeUM
[05/03/2006|17:39] C:\DOCUME~1\Fernande\APPLIC~1\Ahead
[23/03/2007|22:26] C:\DOCUME~1\Fernande\APPLIC~1\Anuman Interactive
[29/03/2008|10:46] C:\DOCUME~1\Fernande\APPLIC~1\Apple Computer
[10/03/2007|21:40] C:\DOCUME~1\Fernande\APPLIC~1\ArcSoft
[25/12/2005|18:22] C:\DOCUME~1\Fernande\APPLIC~1\Creative
[15/04/2005|14:39] C:\DOCUME~1\Fernande\APPLIC~1\CyberLink
[03/12/2006|23:35] C:\DOCUME~1\Fernande\APPLIC~1\Dossier de t‚l‚chargement Share-to-Web
[30/04/2006|15:35] C:\DOCUME~1\Fernande\APPLIC~1\Dossier de t‚l‚chargement Share-to-Web
[23/06/2005|21:27] C:\DOCUME~1\Fernande\APPLIC~1\eConf
[22/03/2008|16:49] C:\DOCUME~1\Fernande\APPLIC~1\EoRezo
[20/04/2005|11:27] C:\DOCUME~1\Fernande\APPLIC~1\FotoWire
[27/05/2006|16:46] C:\DOCUME~1\Fernande\APPLIC~1\Google
[20/07/2008|19:31] C:\DOCUME~1\Fernande\APPLIC~1\Grisoft
[27/04/2005|21:08] C:\DOCUME~1\Fernande\APPLIC~1\Help
[12/09/2008|16:06] C:\DOCUME~1\Fernande\APPLIC~1\Hemera
[26/04/2005|15:41] C:\DOCUME~1\Fernande\APPLIC~1\Identities
[10/07/2007|21:05] C:\DOCUME~1\Fernande\APPLIC~1\Image Zone Express
[21/10/2007|11:38] C:\DOCUME~1\Fernande\APPLIC~1\InstallShield
[14/08/2008|22:35] C:\DOCUME~1\Fernande\APPLIC~1\InterTrust
[05/06/2008|18:31] C:\DOCUME~1\Fernande\APPLIC~1\Lavasoft
[04/11/2005|18:04] C:\DOCUME~1\Fernande\APPLIC~1\Macromedia
[20/06/2008|18:54] C:\DOCUME~1\Fernande\APPLIC~1\MAGIX
[21/07/2008|13:52] C:\DOCUME~1\Fernande\APPLIC~1\Malwarebytes
[31/07/2008|15:28] C:\DOCUME~1\Fernande\APPLIC~1\Microsoft
[03/04/2007|13:36] C:\DOCUME~1\Fernande\APPLIC~1\Mozilla
[17/04/2005|20:34] C:\DOCUME~1\Fernande\APPLIC~1\MSNInstaller
[18/03/2006|19:05] C:\DOCUME~1\Fernande\APPLIC~1\muvee Technologies
[07/04/2006|21:12] C:\DOCUME~1\Fernande\APPLIC~1\Nikon
[25/12/2005|18:10] C:\DOCUME~1\Fernande\APPLIC~1\OD2
[03/04/2007|13:36] C:\DOCUME~1\Fernande\APPLIC~1\Real
[20/06/2008|18:44] C:\DOCUME~1\Fernande\APPLIC~1\Roxio
[04/04/2007|21:41] C:\DOCUME~1\Fernande\APPLIC~1\Screenshot Sender
[18/03/2006|16:49] C:\DOCUME~1\Fernande\APPLIC~1\Sonic
[20/07/2008|18:48] C:\DOCUME~1\Fernande\APPLIC~1\Sun
[22/03/2008|16:52] C:\DOCUME~1\Fernande\APPLIC~1\Symantec
[03/04/2007|13:37] C:\DOCUME~1\Fernande\APPLIC~1\Talkback
[30/10/2005|16:23] C:\DOCUME~1\Fernande\APPLIC~1\Template
[10/03/2007|22:02] C:\DOCUME~1\Fernande\APPLIC~1\vlc
[19/12/2007|23:06] C:\DOCUME~1\Fernande\APPLIC~1\Windows Live Writer
[04/02/2006|18:45] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[18/03/2006|16:34] C:\DOCUME~1\LOCALS~1\APPLIC~1\Roxio
[26/04/2005|16:05] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks
[21/07/2008 13:11][--a------] C:\WINDOWS\tasks\Norton AntiVirus - Effectuer une analyse complŠte du systŠme - Fernande.job
[14/09/2008 17:01][--a------] C:\WINDOWS\tasks\V‚rifier les mises … jour de Windows Live Toolbar.job
[14/09/2008 14:37][--ah-----] C:\WINDOWS\tasks\SA.DAT
[05/08/2004 14:00][-r-h-----] C:\WINDOWS\tasks\desktop.ini
--------------------\\ Listing des dossiers dans C:\Program Files
[21/02/2008|15:20] C:\Program Files\1dvd
[18/06/2005|12:50] C:\Program Files\3D Arctic Bear
[14/08/2008|22:35] C:\Program Files\Adobe
[15/04/2005|14:35] C:\Program Files\Ahead
[20/07/2008|17:07] C:\Program Files\AlerteGPS
[05/02/2007|20:29] C:\Program Files\Alwil Software
[23/03/2007|22:17] C:\Program Files\Anuman Interactive
[28/07/2008|14:52] C:\Program Files\Apple Software Update
[10/03/2007|21:37] C:\Program Files\ArcSoft
[13/01/2007|16:31] C:\Program Files\AutoGK
[13/01/2007|16:31] C:\Program Files\AviSynth 2.5
[18/08/2008|17:31] C:\Program Files\Broderbund
[22/07/2008|22:54] C:\Program Files\CCleaner
[10/09/2008|20:51] C:\Program Files\Circle Developement
[10/03/2007|22:59] C:\Program Files\Cobian Backup 8
[15/04/2005|15:19] C:\Program Files\Common Files
[14/04/2005|20:58] C:\Program Files\ComPlus Applications
[25/12/2005|17:46] C:\Program Files\Creative
[15/04/2005|14:34] C:\Program Files\CyberLink
[15/04/2005|14:34] C:\Program Files\CyberLink DVD Solution
[27/05/2006|22:44] C:\Program Files\DIFX
[10/07/2007|21:08] C:\Program Files\Documalis Free
[20/03/2006|19:05] C:\Program Files\DVD Shrink
[23/04/2005|09:02] C:\Program Files\ecrans2veille
[22/03/2008|16:49] C:\Program Files\EoRezo
[18/08/2008|16:59] C:\Program Files\Fichiers communs
[18/06/2005|12:56] C:\Program Files\FileSubmit
[25/06/2006|16:26] C:\Program Files\Free Offers from RI Soft Systems
[24/02/2007|21:37] C:\Program Files\FreeLaunchBar
[04/12/2006|16:41] C:\Program Files\Gabest
[28/07/2008|14:49] C:\Program Files\Google
[20/07/2008|19:30] C:\Program Files\Grisoft
[31/07/2008|16:57] C:\Program Files\Hewlett-Packard
[23/01/2006|16:47] C:\Program Files\HighMAT CD Writing Wizard
[31/07/2008|15:29] C:\Program Files\HP
[03/07/2005|10:39] C:\Program Files\ImaginationX
[19/01/2007|22:32] C:\Program Files\IncrediMail
[12/09/2008|16:05] C:\Program Files\InstallShield Installation Information
[13/08/2008|18:47] C:\Program Files\Internet Explorer
[28/03/2008|17:04] C:\Program Files\iPod
[28/03/2008|17:05] C:\Program Files\iTunes
[03/02/2007|12:14] C:\Program Files\IZArc
[20/07/2008|18:48] C:\Program Files\Java
[09/02/2006|17:32] C:\Program Files\Logitech
[27/02/2008|22:50] C:\Program Files\Magentic
[20/06/2008|18:52] C:\Program Files\MAGIX
[30/07/2008|09:53] C:\Program Files\Malwarebytes' Anti-Malware
[08/07/2007|17:17] C:\Program Files\MaxTV
[13/08/2008|18:52] C:\Program Files\Messenger
[10/09/2008|20:51] C:\Program Files\Messenger Plus! Live
[31/12/2007|16:14] C:\Program Files\MessengerPlus! 3
[12/09/2008|16:01] C:\Program Files\Micro Application
[08/05/2007|20:12] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[29/05/2005|15:30] C:\Program Files\microsoft frontpage
[08/02/2007|21:47] C:\Program Files\Microsoft IntelliPoint
[08/02/2007|21:47] C:\Program Files\Microsoft IntelliType Pro
[19/02/2006|17:35] C:\Program Files\Microsoft Office
[16/12/2007|21:00] C:\Program Files\Microsoft SQL Server Compact Edition
[28/09/2006|21:44] C:\Program Files\Microsoft Works
[19/02/2006|17:35] C:\Program Files\Microsoft.NET
[10/05/2008|23:23] C:\Program Files\Movie Maker
[08/06/2008|17:21] C:\Program Files\Mozilla Firefox
[01/06/2005|15:41] C:\Program Files\MSN
[26/11/2006|10:24] C:\Program Files\MSN Apps(2)
[14/04/2005|20:57] C:\Program Files\MSN Gaming Zone
[16/12/2007|20:57] C:\Program Files\MSN Messenger
[26/11/2006|12:13] C:\Program Files\MSXML 4.0
[28/12/2006|14:56] C:\Program Files\Music Manager
[29/07/2008|14:40] C:\Program Files\Navilog1
[10/05/2008|23:19] C:\Program Files\NetMeeting
[23/03/2007|19:56] C:\Program Files\Nikon
[22/03/2008|18:53] C:\Program Files\Norton AntiVirus
[22/03/2008|18:02] C:\Program Files\Norton SystemWorks
[21/07/2008|07:48] C:\Program Files\NOS
[23/02/2006|17:37] C:\Program Files\OfficeUpdate11
[14/04/2005|20:57] C:\Program Files\Online Services
[10/05/2008|23:19] C:\Program Files\Outlook Express
[04/12/2006|16:58] C:\Program Files\PC Inspector File Recovery
[14/03/2008|22:46] C:\Program Files\PhotoFiltre
[06/06/2008|18:58] C:\Program Files\Picasa2
[22/04/2005|21:54] C:\Program Files\Plus!
[28/03/2008|17:03] C:\Program Files\QuickTime
[30/07/2008|22:03] C:\Program Files\ReadIris
[03/04/2007|13:31] C:\Program Files\Real
[15/04/2005|15:19] C:\Program Files\Reflex Express
[18/03/2006|16:30] C:\Program Files\Roxio
[14/04/2005|21:12] C:\Program Files\S3Inc
[28/03/2008|17:14] C:\Program Files\Safari
[14/04/2005|20:59] C:\Program Files\Services en ligne
[04/12/2006|15:52] C:\Program Files\SiSoftware
[20/03/2006|19:29] C:\Program Files\SlySoft
[24/02/2007|20:31] C:\Program Files\Softwin
[18/03/2006|16:30] C:\Program Files\Sonic
[08/06/2008|17:30] C:\Program Files\Spybot - Search & Destroy
[08/06/2008|20:18] C:\Program Files\Symantec
[15/04/2005|13:55] C:\Program Files\Thomson
[01/11/2007|10:42] C:\Program Files\TomTom HOME
[28/07/2008|21:37] C:\Program Files\Trend Micro
[16/06/2008|13:33] C:\Program Files\UltraVNC
[26/04/2005|15:09] C:\Program Files\Uninstall Information
[14/04/2005|21:21] C:\Program Files\VIA
[03/12/2006|11:58] C:\Program Files\VIAudioi
[15/04/2005|15:19] C:\Program Files\ViaVoice
[10/03/2007|22:01] C:\Program Files\VideoLAN
[14/09/2008|16:56] C:\Program Files\Wanadoo
[26/11/2006|10:29] C:\Program Files\Winamp
[08/06/2008|17:11] C:\Program Files\Windows Live
[16/06/2008|11:47] C:\Program Files\Windows Live Safety Center
[10/01/2008|12:42] C:\Program Files\Windows Live Toolbar
[04/12/2006|20:48] C:\Program Files\Windows Media Bonus Pack for Windows XP
[04/12/2006|00:15] C:\Program Files\Windows Media Connect 2
[10/05/2008|23:19] C:\Program Files\Windows Media Player
[10/05/2008|23:19] C:\Program Files\Windows NT
[22/03/2008|18:20] C:\Program Files\Windows Sidebar
[14/04/2005|20:59] C:\Program Files\WindowsUpdate
[23/02/2007|23:28] C:\Program Files\WinRAR
[10/03/2007|21:51] C:\Program Files\WinZip
[14/04/2005|21:01] C:\Program Files\xerox
[22/07/2008|22:53] C:\Program Files\Yahoo!
--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs
[14/08/2008|22:35] C:\Program Files\Fichiers communs\Adobe
[15/04/2005|14:35] C:\Program Files\Fichiers communs\Ahead
[28/03/2008|17:00] C:\Program Files\Fichiers communs\Apple
[18/08/2008|17:26] C:\Program Files\Fichiers communs\Broderbund
[23/04/2005|08:47] C:\Program Files\Fichiers communs\DESIGNER
[20/04/2005|11:27] C:\Program Files\Fichiers communs\FotoWire
[15/04/2005|13:43] C:\Program Files\Fichiers communs\Hewlett-Packard
[18/03/2006|16:26] C:\Program Files\Fichiers communs\InstallShield
[20/07/2008|18:44] C:\Program Files\Fichiers communs\Java
[18/06/2005|11:16] C:\Program Files\Fichiers communs\Logitech
[20/06/2008|18:52] C:\Program Files\Fichiers communs\MAGIX Shared
[08/06/2008|17:14] C:\Program Files\Fichiers communs\Microsoft Shared
[14/04/2005|20:59] C:\Program Files\Fichiers communs\MSSoap
[15/04/2006|21:22] C:\Program Files\Fichiers communs\muvee Technologies
[15/04/2006|21:22] C:\Program Files\Fichiers communs\Nikon
[15/04/2005|07:42] C:\Program Files\Fichiers communs\ODBC
[10/03/2007|19:23] C:\Program Files\Fichiers communs\Panda Software
[20/04/2008|15:52] C:\Program Files\Fichiers communs\Real
[18/03/2006|16:29] C:\Program Files\Fichiers communs\Roxio Shared
[14/04/2005|20:59] C:\Program Files\Fichiers communs\Services
[10/03/2007|21:20] C:\Program Files\Fichiers communs\Softwin
[18/03/2006|16:30] C:\Program Files\Fichiers communs\Sonic Shared
[15/04/2005|07:42] C:\Program Files\Fichiers communs\SpeechEngines
[04/09/2008|14:44] C:\Program Files\Fichiers communs\Symantec Shared
[10/05/2008|23:19] C:\Program Files\Fichiers communs\System
[16/12/2007|20:53] C:\Program Files\Fichiers communs\WindowsLiveInstaller
[20/04/2008|15:52] C:\Program Files\Fichiers communs\xing shared
[15/04/2005|15:19] C:\Program Files\Fichiers communs\YDP
--------------------\\ Process
( 78 Processes )
IEXPLORE.EXE ~ [PID:2496]
--------------------\\ Recherche avec S_Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Recherche de Fichiers / Dossiers Lop
C:\DOCUME~1\ALLUSE~1\APPLIC~1\great coal love default
C:\DOCUME~1\ALLUSE~1\APPLIC~1\Internet debug mess great
C:\Program Files\Circle Developement
C:\Program Files\Circle Developement\Uninstall.exe
C:\DOCUME~1\Fernande\Cookies\fernande@advertstream[2].txt
--------------------\\ Verification du Registre
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
..... OK !
--------------------\\ Verification du fichier Hosts
Fichier Hosts MODIFIE
127.0.0.1 bin.errorprotector.com ## added by CiD
127.0.0.1 br.errorsafe.com ## added by CiD
127.0.0.1 br.winantivirus.com ## added by CiD
127.0.0.1 br.winfixer.com ## added by CiD
127.0.0.1 cdn.drivecleaner.com ## added by CiD
127.0.0.1 cdn.errorsafe.com ## added by CiD
127.0.0.1 cdn.winsoftware.com ## added by CiD
127.0.0.1 de.errorsafe.com ## added by CiD
127.0.0.1 de.winantivirus.com ## added by CiD
127.0.0.1 download.cdn.drivecleaner.com ## added by CiD
127.0.0.1 download.cdn.errorsafe.com ## added by CiD
127.0.0.1 download.cdn.winsoftware.com ## added by CiD
127.0.0.1 download.errorsafe.com ## added by CiD
127.0.0.1 download.systemdoctor.com ## added by CiD
127.0.0.1 download.winantispyware.com ## added by CiD
127.0.0.1 download.windrivecleaner.com ## added by CiD
127.0.0.1 download.winfixer.com ## added by CiD
127.0.0.1 drivecleaner.com ## added by CiD
127.0.0.1 dynamique.drivecleaner.com ## added by CiD
127.0.0.1 errorprotector.com ## added by CiD
127.0.0.1 errorsafe.com ## added by CiD
127.0.0.1 es.winantivirus.com ## added by CiD
127.0.0.1 fr.winantivirus.com ## added by CiD
127.0.0.1 fr.winfixer.com ## added by CiD
127.0.0.1 go.drivecleaner.com ## added by CiD
127.0.0.1 go.errorsafe.com ## added by CiD
127.0.0.1 go.winantispyware.com ## added by CiD
127.0.0.1 go.winantivirus.com ## added by CiD
127.0.0.1 hk.winantivirus.com ## added by CiD
127.0.0.1 instlog.errorsafe.com ## added by CiD
127.0.0.1 instlog.winantivirus.com ## added by CiD
127.0.0.1 instlog.winfixer.com ## added by CiD
127.0.0.1 jsp.drivecleaner.com ## added by CiD
127.0.0.1 kb.errorsafe.com ## added by CiD
127.0.0.1 kb.winantivirus.com ## added by CiD
127.0.0.1 nl.errorsafe.com ## added by CiD
127.0.0.1 se.errorsafe.com ## added by CiD
127.0.0.1 secure.drivecleaner.com ## added by CiD
127.0.0.1 secure.errorsafe.com ## added by CiD
127.0.0.1 secure.winantispam.com ## added by CiD
127.0.0.1 secure.winantispy.com ## added by CiD
127.0.0.1 secure.winantivirus.com ## added by CiD
127.0.0.1 support.winantivirus.com ## added by CiD
127.0.0.1 trial.updates.winsoftware.com ## added by CiD
127.0.0.1 ulog.winantivirus.com ## added by CiD
127.0.0.1 utils.errorsafe.com ## added by CiD
127.0.0.1 utils.winantivirus.com ## added by CiD
127.0.0.1 utils.winfixer.com ## added by CiD
127.0.0.1 winantispyware.com ## added by CiD
127.0.0.1 winantivirus.com ## added by CiD
127.0.0.1 winfixer.com ## added by CiD
127.0.0.1 winfixer2006.com ## added by CiD
127.0.0.1 winsoftware.com ## added by CiD
127.0.0.1 [i]ww/iw.drivecleaner.com ## added by CiD
127.0.0.1 [i]ww/iw.errorprotector.com ## added by CiD
127.0.0.1 [i]ww/iw.errorsafe.com ## added by CiD
127.0.0.1 [i]ww/iw.systemdoctor.com ## added by CiD
127.0.0.1 [i]ww/iw.utils.winfixer.com ## added by CiD
127.0.0.1 [i]ww/iw.win-anti-virus-pro.com ## added by CiD
127.0.0.1 [i]ww/iw.win-virus-pro.com ## added by CiD
127.0.0.1 [i]ww/iw.winantispam.com ## added by CiD
127.0.0.1 [i]ww/iw.winantispy.com ## added by CiD
127.0.0.1 [i]ww/iw.winantispyware.com ## added by CiD
127.0.0.1 [i]ww/iw.winantivirus.com ## added by CiD
127.0.0.1 [i]ww/iw.winantiviruspro.com ## added by CiD
127.0.0.1 [i]ww/iw.windrivecleaner.com ## added by CiD
127.0.0.1 [i]ww/iw.windrivesafe.com ## added by CiD
127.0.0.1 [i]ww/iw.winfixer.com ## added by CiD
127.0.0.1 [i]ww/iw.winfixer2006.com ## added by CiD
127.0.0.1 [i]ww/iw.winsoftware.com ## added by CiD
-> 8836 [ 70 ## added by CiD ]
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-09-14 17:17:43
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 5
--------------------\\ Recherche d'autres infections
--------------------\\ Cracks & Keygens ..
C:\DOCUME~1\Fernande\Mes documents\ImagecopieXP PRO\Windows XP\utils\compression\WinAce v2.04 & v2.xx Reg Crack For win9x,xp,2k.zip
C:\DOCUME~1\Fernande\Mes documents\ImagecopieXP PRO\Windows XP\utils\gravure\WinISO_v4.5_Crack.zip
C:\DOCUME~1\Fernande\Mes documents\ImagecopieXP PRO\Windows XP\utils\internet\crackffxp1.4.txt
[F:1416][D:26]-> C:\DOCUME~1\Fernande\LOCALS~1\Temp
[F:297][D:0]-> C:\DOCUME~1\Fernande\Cookies
[F:13103][D:20]-> C:\DOCUME~1\Fernande\LOCALS~1\TEMPOR~1\content.IE5
1 - "C:\Lop SD\LopR_1.txt" - 14/09/2008|17:21 - Option : [1]
--------------------\\ Fin du rapport a 17:21:03
Salut,
Refais la même chose mais la tu choisis le choix 2
Laisse travailler le pc
Une fois le nettoyage fini ,une recherche sera relancée et un rapport
s'ouvrira automatiquement dans le Bloc-Notes.
Copies-colles le contenu de ce rapport sur le forum.
Puis met un nouveau rapport hijack this.
@+
Refais la même chose mais la tu choisis le choix 2
Laisse travailler le pc
Une fois le nettoyage fini ,une recherche sera relancée et un rapport
s'ouvrira automatiquement dans le Bloc-Notes.
Copies-colles le contenu de ce rapport sur le forum.
Puis met un nouveau rapport hijack this.
@+
Bonjour,
voici le rapport avec le choix 2
--------------------\\ Lop S&D 4.2.4-2 XP/Vista
Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Uniprocessor Free : AMD Sempron(tm) 2400+ )
BIOS : Phoenix - AwardBIOS v6.00PG
USER : Fernande ( Administrator )
BOOT : Normal boot
Antivirus : Norton AntiVirus 15.0.0.58 (Activated)
Firewall : Norton AntiVirus 15.0.0.58 (Activated)
"C:\Lop SD" ( MAJ : 08-09-2008|21:40 )
Option : [2] ( 02/11/2008|16:11 )
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ SUPPRESSION
Supprime! - C:\DOCUME~1\Fernande\Cookies\fernande@advertstream[2].txt
Supprime! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\great coal love default
Supprime! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\Internet debug mess great
Supprime! - C:\Program Files\Circle Developement
-
[ Fichier Hosts ] .. Restaure!
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\
--------------------\\ Listing des dossiers dans APPLIC~1
[30/07/2008|08:57] C:\DOCUME~1\ADMINI~1\APPLIC~1\Malwarebytes
[14/04/2005|20:01] C:\DOCUME~1\ADMINI~1\APPLIC~1\Microsoft
[20/07/2008|18:16] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[27/03/2008|17:01] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple
[28/03/2008|16:03] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer
[15/04/2005|13:53] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Broderbund Software
[15/04/2005|13:34] C:\DOCUME~1\ALLUSE~1\APPLIC~1\CyberLink
[20/03/2006|18:05] C:\DOCUME~1\ALLUSE~1\APPLIC~1\DVD Shrink
[18/03/2006|17:58] C:\DOCUME~1\ALLUSE~1\APPLIC~1\EnterNHelp
[29/03/2008|14:20] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
[01/11/2008|16:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google Updater
[20/07/2008|18:30] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Grisoft
[18/03/2006|15:30] C:\DOCUME~1\ALLUSE~1\APPLIC~1\InstallShield
[20/06/2008|17:52] C:\DOCUME~1\ALLUSE~1\APPLIC~1\MAGIX
[21/07/2008|12:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Malwarebytes
[31/12/2007|15:15] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Messenger Plus!
[05/06/2008|17:31] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[18/03/2006|18:04] C:\DOCUME~1\ALLUSE~1\APPLIC~1\muvee Technologies
[21/07/2008|06:48] C:\DOCUME~1\ALLUSE~1\APPLIC~1\NOS
[25/12/2005|16:43] C:\DOCUME~1\ALLUSE~1\APPLIC~1\OD2
[18/03/2006|18:28] C:\DOCUME~1\ALLUSE~1\APPLIC~1\QuickTime
[18/03/2006|15:34] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Roxio
[23/04/2005|10:16] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Softdisk LLC
[18/03/2006|15:28] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Sonic
[23/09/2008|17:59] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy
[14/10/2008|16:30] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec
[25/02/2007|10:16] C:\DOCUME~1\ALLUSE~1\APPLIC~1\time web five cool
[21/02/2008|14:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TomTom
[18/03/2006|17:58] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Ultima_T15
[22/01/2006|22:32] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[15/10/2006|14:30] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Live Toolbar
[08/06/2008|16:11] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
[22/07/2008|22:15] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Yahoo! Companion
[31/03/2008|19:04] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Apple Computer
[14/04/2005|20:01] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[31/07/2008|19:41] C:\DOCUME~1\Fernande\APPLIC~1\$CUERoot$
[28/03/2008|16:00] C:\DOCUME~1\Fernande\APPLIC~1\1dvd
[31/10/2007|17:34] C:\DOCUME~1\Fernande\APPLIC~1\Adobe
[04/04/2007|19:34] C:\DOCUME~1\Fernande\APPLIC~1\AdobeUM
[05/03/2006|16:39] C:\DOCUME~1\Fernande\APPLIC~1\Ahead
[23/03/2007|21:26] C:\DOCUME~1\Fernande\APPLIC~1\Anuman Interactive
[29/03/2008|09:46] C:\DOCUME~1\Fernande\APPLIC~1\Apple Computer
[10/03/2007|20:40] C:\DOCUME~1\Fernande\APPLIC~1\ArcSoft
[25/12/2005|17:22] C:\DOCUME~1\Fernande\APPLIC~1\Creative
[15/04/2005|13:39] C:\DOCUME~1\Fernande\APPLIC~1\CyberLink
[03/12/2006|22:35] C:\DOCUME~1\Fernande\APPLIC~1\Dossier de t‚l‚chargement Share-to-Web
[30/04/2006|14:35] C:\DOCUME~1\Fernande\APPLIC~1\Dossier de t‚l‚chargement Share-to-Web
[23/06/2005|20:27] C:\DOCUME~1\Fernande\APPLIC~1\eConf
[22/03/2008|15:49] C:\DOCUME~1\Fernande\APPLIC~1\EoRezo
[20/04/2005|10:27] C:\DOCUME~1\Fernande\APPLIC~1\FotoWire
[27/05/2006|15:46] C:\DOCUME~1\Fernande\APPLIC~1\Google
[20/07/2008|18:31] C:\DOCUME~1\Fernande\APPLIC~1\Grisoft
[27/04/2005|20:08] C:\DOCUME~1\Fernande\APPLIC~1\Help
[12/09/2008|15:06] C:\DOCUME~1\Fernande\APPLIC~1\Hemera
[26/04/2005|14:41] C:\DOCUME~1\Fernande\APPLIC~1\Identities
[10/07/2007|20:05] C:\DOCUME~1\Fernande\APPLIC~1\Image Zone Express
[21/10/2007|10:38] C:\DOCUME~1\Fernande\APPLIC~1\InstallShield
[14/08/2008|21:35] C:\DOCUME~1\Fernande\APPLIC~1\InterTrust
[05/06/2008|17:31] C:\DOCUME~1\Fernande\APPLIC~1\Lavasoft
[04/11/2005|17:04] C:\DOCUME~1\Fernande\APPLIC~1\Macromedia
[20/06/2008|17:54] C:\DOCUME~1\Fernande\APPLIC~1\MAGIX
[21/07/2008|12:52] C:\DOCUME~1\Fernande\APPLIC~1\Malwarebytes
[25/09/2008|20:29] C:\DOCUME~1\Fernande\APPLIC~1\Microsoft
[03/04/2007|12:36] C:\DOCUME~1\Fernande\APPLIC~1\Mozilla
[17/04/2005|19:34] C:\DOCUME~1\Fernande\APPLIC~1\MSNInstaller
[18/03/2006|18:05] C:\DOCUME~1\Fernande\APPLIC~1\muvee Technologies
[07/04/2006|20:12] C:\DOCUME~1\Fernande\APPLIC~1\Nikon
[25/12/2005|17:10] C:\DOCUME~1\Fernande\APPLIC~1\OD2
[03/04/2007|12:36] C:\DOCUME~1\Fernande\APPLIC~1\Real
[20/06/2008|17:44] C:\DOCUME~1\Fernande\APPLIC~1\Roxio
[04/04/2007|20:41] C:\DOCUME~1\Fernande\APPLIC~1\Screenshot Sender
[18/03/2006|15:49] C:\DOCUME~1\Fernande\APPLIC~1\Sonic
[20/07/2008|17:48] C:\DOCUME~1\Fernande\APPLIC~1\Sun
[22/03/2008|15:52] C:\DOCUME~1\Fernande\APPLIC~1\Symantec
[03/04/2007|12:37] C:\DOCUME~1\Fernande\APPLIC~1\Talkback
[30/10/2005|15:23] C:\DOCUME~1\Fernande\APPLIC~1\Template
[10/03/2007|21:02] C:\DOCUME~1\Fernande\APPLIC~1\vlc
[19/12/2007|22:06] C:\DOCUME~1\Fernande\APPLIC~1\Windows Live Writer
[04/02/2006|17:45] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[18/03/2006|15:34] C:\DOCUME~1\LOCALS~1\APPLIC~1\Roxio
[26/04/2005|15:05] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks
[21/07/2008 12:11][--a------] C:\WINDOWS\tasks\Norton AntiVirus - Effectuer une analyse complŠte du systŠme - Fernande.job
[02/11/2008 16:01][--a------] C:\WINDOWS\tasks\V‚rifier les mises … jour de Windows Live Toolbar.job
[02/11/2008 11:52][--ah-----] C:\WINDOWS\tasks\SA.DAT
[05/08/2004 13:00][-r-h-----] C:\WINDOWS\tasks\desktop.ini
--------------------\\ Listing des dossiers dans C:\Program Files
[21/02/2008|14:20] C:\Program Files\1dvd
[18/06/2005|11:50] C:\Program Files\3D Arctic Bear
[14/08/2008|21:35] C:\Program Files\Adobe
[15/04/2005|13:35] C:\Program Files\Ahead
[20/07/2008|16:07] C:\Program Files\AlerteGPS
[05/02/2007|19:29] C:\Program Files\Alwil Software
[23/03/2007|21:17] C:\Program Files\Anuman Interactive
[28/07/2008|13:52] C:\Program Files\Apple Software Update
[10/03/2007|20:37] C:\Program Files\ArcSoft
[13/01/2007|15:31] C:\Program Files\AutoGK
[13/01/2007|15:31] C:\Program Files\AviSynth 2.5
[18/08/2008|16:31] C:\Program Files\Broderbund
[22/07/2008|21:54] C:\Program Files\CCleaner
[10/03/2007|21:59] C:\Program Files\Cobian Backup 8
[15/04/2005|14:19] C:\Program Files\Common Files
[14/04/2005|19:58] C:\Program Files\ComPlus Applications
[25/12/2005|16:46] C:\Program Files\Creative
[15/04/2005|13:34] C:\Program Files\CyberLink
[15/04/2005|13:34] C:\Program Files\CyberLink DVD Solution
[27/05/2006|21:44] C:\Program Files\DIFX
[10/07/2007|20:08] C:\Program Files\Documalis Free
[20/03/2006|18:05] C:\Program Files\DVD Shrink
[23/04/2005|08:02] C:\Program Files\ecrans2veille
[22/03/2008|15:49] C:\Program Files\EoRezo
[13/10/2008|21:03] C:\Program Files\Fichiers communs
[18/06/2005|11:56] C:\Program Files\FileSubmit
[25/06/2006|15:26] C:\Program Files\Free Offers from RI Soft Systems
[24/02/2007|20:37] C:\Program Files\FreeLaunchBar
[04/12/2006|15:41] C:\Program Files\Gabest
[28/07/2008|13:49] C:\Program Files\Google
[20/07/2008|18:30] C:\Program Files\Grisoft
[31/07/2008|15:57] C:\Program Files\Hewlett-Packard
[23/01/2006|15:47] C:\Program Files\HighMAT CD Writing Wizard
[31/07/2008|14:29] C:\Program Files\HP
[03/07/2005|09:39] C:\Program Files\ImaginationX
[19/01/2007|21:32] C:\Program Files\IncrediMail
[13/10/2008|21:03] C:\Program Files\InstallShield Installation Information
[16/10/2008|13:46] C:\Program Files\Internet Explorer
[28/03/2008|16:04] C:\Program Files\iPod
[28/03/2008|16:05] C:\Program Files\iTunes
[03/02/2007|11:14] C:\Program Files\IZArc
[20/07/2008|17:48] C:\Program Files\Java
[09/02/2006|16:32] C:\Program Files\Logitech
[27/02/2008|21:50] C:\Program Files\Magentic
[20/06/2008|17:52] C:\Program Files\MAGIX
[30/07/2008|08:53] C:\Program Files\Malwarebytes' Anti-Malware
[08/07/2007|16:17] C:\Program Files\MaxTV
[13/08/2008|17:52] C:\Program Files\Messenger
[10/09/2008|19:51] C:\Program Files\Messenger Plus! Live
[31/12/2007|15:14] C:\Program Files\MessengerPlus! 3
[13/10/2008|21:03] C:\Program Files\Micro Application
[08/05/2007|19:12] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[29/05/2005|14:30] C:\Program Files\microsoft frontpage
[08/02/2007|20:47] C:\Program Files\Microsoft IntelliPoint
[08/02/2007|20:47] C:\Program Files\Microsoft IntelliType Pro
[19/02/2006|16:35] C:\Program Files\Microsoft Office
[16/12/2007|20:00] C:\Program Files\Microsoft SQL Server Compact Edition
[28/09/2006|20:44] C:\Program Files\Microsoft Works
[19/02/2006|16:35] C:\Program Files\Microsoft.NET
[10/05/2008|22:23] C:\Program Files\Movie Maker
[08/06/2008|16:21] C:\Program Files\Mozilla Firefox
[01/06/2005|14:41] C:\Program Files\MSN
[26/11/2006|09:24] C:\Program Files\MSN Apps(2)
[14/04/2005|19:57] C:\Program Files\MSN Gaming Zone
[16/12/2007|19:57] C:\Program Files\MSN Messenger
[26/11/2006|11:13] C:\Program Files\MSXML 4.0
[28/12/2006|13:56] C:\Program Files\Music Manager
[29/07/2008|13:40] C:\Program Files\Navilog1
[10/05/2008|22:19] C:\Program Files\NetMeeting
[23/03/2007|18:56] C:\Program Files\Nikon
[22/03/2008|17:53] C:\Program Files\Norton AntiVirus
[22/03/2008|17:02] C:\Program Files\Norton SystemWorks
[21/07/2008|06:48] C:\Program Files\NOS
[23/02/2006|16:37] C:\Program Files\OfficeUpdate11
[14/04/2005|19:57] C:\Program Files\Online Services
[10/05/2008|22:19] C:\Program Files\Outlook Express
[04/12/2006|15:58] C:\Program Files\PC Inspector File Recovery
[14/03/2008|21:46] C:\Program Files\PhotoFiltre
[04/10/2008|19:18] C:\Program Files\Picasa2
[22/04/2005|20:54] C:\Program Files\Plus!
[28/03/2008|16:03] C:\Program Files\QuickTime
[27/09/2008|16:06] C:\Program Files\ReadIris
[03/04/2007|12:31] C:\Program Files\Real
[15/04/2005|14:19] C:\Program Files\Reflex Express
[18/03/2006|15:30] C:\Program Files\Roxio
[14/04/2005|20:12] C:\Program Files\S3Inc
[28/03/2008|16:14] C:\Program Files\Safari
[14/04/2005|19:59] C:\Program Files\Services en ligne
[04/12/2006|14:52] C:\Program Files\SiSoftware
[20/03/2006|18:29] C:\Program Files\SlySoft
[24/02/2007|19:31] C:\Program Files\Softwin
[18/03/2006|15:30] C:\Program Files\Sonic
[02/11/2008|14:08] C:\Program Files\Spybot - Search & Destroy
[08/06/2008|19:18] C:\Program Files\Symantec
[15/04/2005|12:55] C:\Program Files\Thomson
[01/11/2007|09:42] C:\Program Files\TomTom HOME
[28/07/2008|20:37] C:\Program Files\Trend Micro
[16/06/2008|12:33] C:\Program Files\UltraVNC
[26/04/2005|14:09] C:\Program Files\Uninstall Information
[14/04/2005|20:21] C:\Program Files\VIA
[03/12/2006|10:58] C:\Program Files\VIAudioi
[15/04/2005|14:19] C:\Program Files\ViaVoice
[10/03/2007|21:01] C:\Program Files\VideoLAN
[02/11/2008|12:00] C:\Program Files\Wanadoo
[26/11/2006|09:29] C:\Program Files\Winamp
[08/06/2008|16:11] C:\Program Files\Windows Live
[16/06/2008|10:47] C:\Program Files\Windows Live Safety Center
[10/01/2008|11:42] C:\Program Files\Windows Live Toolbar
[04/12/2006|19:48] C:\Program Files\Windows Media Bonus Pack for Windows XP
[03/12/2006|23:15] C:\Program Files\Windows Media Connect 2
[10/05/2008|22:19] C:\Program Files\Windows Media Player
[10/05/2008|22:19] C:\Program Files\Windows NT
[22/03/2008|17:20] C:\Program Files\Windows Sidebar
[14/04/2005|19:59] C:\Program Files\WindowsUpdate
[23/02/2007|22:28] C:\Program Files\WinRAR
[10/03/2007|20:51] C:\Program Files\WinZip
[14/04/2005|20:01] C:\Program Files\xerox
[22/07/2008|21:53] C:\Program Files\Yahoo!
--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs
[14/08/2008|21:35] C:\Program Files\Fichiers communs\Adobe
[15/04/2005|13:35] C:\Program Files\Fichiers communs\Ahead
[28/03/2008|16:00] C:\Program Files\Fichiers communs\Apple
[18/08/2008|16:26] C:\Program Files\Fichiers communs\Broderbund
[23/04/2005|07:47] C:\Program Files\Fichiers communs\DESIGNER
[20/04/2005|10:27] C:\Program Files\Fichiers communs\FotoWire
[15/04/2005|12:43] C:\Program Files\Fichiers communs\Hewlett-Packard
[18/03/2006|15:26] C:\Program Files\Fichiers communs\InstallShield
[20/07/2008|17:44] C:\Program Files\Fichiers communs\Java
[18/06/2005|10:16] C:\Program Files\Fichiers communs\Logitech
[20/06/2008|17:52] C:\Program Files\Fichiers communs\MAGIX Shared
[14/10/2008|18:52] C:\Program Files\Fichiers communs\Micro Application Shared
[08/06/2008|16:14] C:\Program Files\Fichiers communs\Microsoft Shared
[14/04/2005|19:59] C:\Program Files\Fichiers communs\MSSoap
[15/04/2006|20:22] C:\Program Files\Fichiers communs\muvee Technologies
[15/04/2006|20:22] C:\Program Files\Fichiers communs\Nikon
[15/04/2005|06:42] C:\Program Files\Fichiers communs\ODBC
[10/03/2007|18:23] C:\Program Files\Fichiers communs\Panda Software
[20/04/2008|14:52] C:\Program Files\Fichiers communs\Real
[18/03/2006|15:29] C:\Program Files\Fichiers communs\Roxio Shared
[14/04/2005|19:59] C:\Program Files\Fichiers communs\Services
[10/03/2007|20:20] C:\Program Files\Fichiers communs\Softwin
[18/03/2006|15:30] C:\Program Files\Fichiers communs\Sonic Shared
[15/04/2005|06:42] C:\Program Files\Fichiers communs\SpeechEngines
[16/10/2008|13:31] C:\Program Files\Fichiers communs\Symantec Shared
[10/05/2008|22:19] C:\Program Files\Fichiers communs\System
[16/12/2007|19:53] C:\Program Files\Fichiers communs\WindowsLiveInstaller
[20/04/2008|14:52] C:\Program Files\Fichiers communs\xing shared
[15/04/2005|14:19] C:\Program Files\Fichiers communs\YDP
--------------------\\ Process
( 74 Processes )
... OK !
--------------------\\ Recherche avec S_Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Recherche de Fichiers / Dossiers Lop
C:\DOCUME~1\Fernande\Cookies\fernande@advertising[2].txt
C:\DOCUME~1\Fernande\Cookies\fernande@adopt.euroclick[1].txt
--------------------\\ Verification du Registre
..... OK !
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-11-02 16:13:15
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 5
--------------------\\ Recherche d'autres infections
--------------------\\ Cracks & Keygens ..
C:\DOCUME~1\Fernande\Mes documents\ImagecopieXP PRO\Windows XP\utils\compression\WinAce v2.04 & v2.xx Reg Crack For win9x,xp,2k.zip
C:\DOCUME~1\Fernande\Mes documents\ImagecopieXP PRO\Windows XP\utils\gravure\WinISO_v4.5_Crack.zip
C:\DOCUME~1\Fernande\Mes documents\ImagecopieXP PRO\Windows XP\utils\internet\crackffxp1.4.txt
[F:2019][D:31]-> C:\DOCUME~1\Fernande\LOCALS~1\Temp
[F:373][D:0]-> C:\DOCUME~1\Fernande\Cookies
[F:15147][D:23]-> C:\DOCUME~1\Fernande\LOCALS~1\TEMPOR~1\content.IE5
1 - "C:\Lop SD\LopR_1.txt" - 14/09/2008|17:21 - Option : [1]
2 - "C:\Lop SD\LopR_2.txt" - 02/11/2008|16:17 - Option : [2]
--------------------\\ Fin du rapport a 16:17:06
voici le rapport avec le choix 2
--------------------\\ Lop S&D 4.2.4-2 XP/Vista
Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Uniprocessor Free : AMD Sempron(tm) 2400+ )
BIOS : Phoenix - AwardBIOS v6.00PG
USER : Fernande ( Administrator )
BOOT : Normal boot
Antivirus : Norton AntiVirus 15.0.0.58 (Activated)
Firewall : Norton AntiVirus 15.0.0.58 (Activated)
"C:\Lop SD" ( MAJ : 08-09-2008|21:40 )
Option : [2] ( 02/11/2008|16:11 )
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ SUPPRESSION
Supprime! - C:\DOCUME~1\Fernande\Cookies\fernande@advertstream[2].txt
Supprime! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\great coal love default
Supprime! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\Internet debug mess great
Supprime! - C:\Program Files\Circle Developement
-
[ Fichier Hosts ] .. Restaure!
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\
--------------------\\ Listing des dossiers dans APPLIC~1
[30/07/2008|08:57] C:\DOCUME~1\ADMINI~1\APPLIC~1\Malwarebytes
[14/04/2005|20:01] C:\DOCUME~1\ADMINI~1\APPLIC~1\Microsoft
[20/07/2008|18:16] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[27/03/2008|17:01] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple
[28/03/2008|16:03] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer
[15/04/2005|13:53] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Broderbund Software
[15/04/2005|13:34] C:\DOCUME~1\ALLUSE~1\APPLIC~1\CyberLink
[20/03/2006|18:05] C:\DOCUME~1\ALLUSE~1\APPLIC~1\DVD Shrink
[18/03/2006|17:58] C:\DOCUME~1\ALLUSE~1\APPLIC~1\EnterNHelp
[29/03/2008|14:20] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
[01/11/2008|16:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google Updater
[20/07/2008|18:30] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Grisoft
[18/03/2006|15:30] C:\DOCUME~1\ALLUSE~1\APPLIC~1\InstallShield
[20/06/2008|17:52] C:\DOCUME~1\ALLUSE~1\APPLIC~1\MAGIX
[21/07/2008|12:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Malwarebytes
[31/12/2007|15:15] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Messenger Plus!
[05/06/2008|17:31] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[18/03/2006|18:04] C:\DOCUME~1\ALLUSE~1\APPLIC~1\muvee Technologies
[21/07/2008|06:48] C:\DOCUME~1\ALLUSE~1\APPLIC~1\NOS
[25/12/2005|16:43] C:\DOCUME~1\ALLUSE~1\APPLIC~1\OD2
[18/03/2006|18:28] C:\DOCUME~1\ALLUSE~1\APPLIC~1\QuickTime
[18/03/2006|15:34] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Roxio
[23/04/2005|10:16] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Softdisk LLC
[18/03/2006|15:28] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Sonic
[23/09/2008|17:59] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy
[14/10/2008|16:30] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec
[25/02/2007|10:16] C:\DOCUME~1\ALLUSE~1\APPLIC~1\time web five cool
[21/02/2008|14:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TomTom
[18/03/2006|17:58] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Ultima_T15
[22/01/2006|22:32] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[15/10/2006|14:30] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Live Toolbar
[08/06/2008|16:11] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
[22/07/2008|22:15] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Yahoo! Companion
[31/03/2008|19:04] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Apple Computer
[14/04/2005|20:01] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[31/07/2008|19:41] C:\DOCUME~1\Fernande\APPLIC~1\$CUERoot$
[28/03/2008|16:00] C:\DOCUME~1\Fernande\APPLIC~1\1dvd
[31/10/2007|17:34] C:\DOCUME~1\Fernande\APPLIC~1\Adobe
[04/04/2007|19:34] C:\DOCUME~1\Fernande\APPLIC~1\AdobeUM
[05/03/2006|16:39] C:\DOCUME~1\Fernande\APPLIC~1\Ahead
[23/03/2007|21:26] C:\DOCUME~1\Fernande\APPLIC~1\Anuman Interactive
[29/03/2008|09:46] C:\DOCUME~1\Fernande\APPLIC~1\Apple Computer
[10/03/2007|20:40] C:\DOCUME~1\Fernande\APPLIC~1\ArcSoft
[25/12/2005|17:22] C:\DOCUME~1\Fernande\APPLIC~1\Creative
[15/04/2005|13:39] C:\DOCUME~1\Fernande\APPLIC~1\CyberLink
[03/12/2006|22:35] C:\DOCUME~1\Fernande\APPLIC~1\Dossier de t‚l‚chargement Share-to-Web
[30/04/2006|14:35] C:\DOCUME~1\Fernande\APPLIC~1\Dossier de t‚l‚chargement Share-to-Web
[23/06/2005|20:27] C:\DOCUME~1\Fernande\APPLIC~1\eConf
[22/03/2008|15:49] C:\DOCUME~1\Fernande\APPLIC~1\EoRezo
[20/04/2005|10:27] C:\DOCUME~1\Fernande\APPLIC~1\FotoWire
[27/05/2006|15:46] C:\DOCUME~1\Fernande\APPLIC~1\Google
[20/07/2008|18:31] C:\DOCUME~1\Fernande\APPLIC~1\Grisoft
[27/04/2005|20:08] C:\DOCUME~1\Fernande\APPLIC~1\Help
[12/09/2008|15:06] C:\DOCUME~1\Fernande\APPLIC~1\Hemera
[26/04/2005|14:41] C:\DOCUME~1\Fernande\APPLIC~1\Identities
[10/07/2007|20:05] C:\DOCUME~1\Fernande\APPLIC~1\Image Zone Express
[21/10/2007|10:38] C:\DOCUME~1\Fernande\APPLIC~1\InstallShield
[14/08/2008|21:35] C:\DOCUME~1\Fernande\APPLIC~1\InterTrust
[05/06/2008|17:31] C:\DOCUME~1\Fernande\APPLIC~1\Lavasoft
[04/11/2005|17:04] C:\DOCUME~1\Fernande\APPLIC~1\Macromedia
[20/06/2008|17:54] C:\DOCUME~1\Fernande\APPLIC~1\MAGIX
[21/07/2008|12:52] C:\DOCUME~1\Fernande\APPLIC~1\Malwarebytes
[25/09/2008|20:29] C:\DOCUME~1\Fernande\APPLIC~1\Microsoft
[03/04/2007|12:36] C:\DOCUME~1\Fernande\APPLIC~1\Mozilla
[17/04/2005|19:34] C:\DOCUME~1\Fernande\APPLIC~1\MSNInstaller
[18/03/2006|18:05] C:\DOCUME~1\Fernande\APPLIC~1\muvee Technologies
[07/04/2006|20:12] C:\DOCUME~1\Fernande\APPLIC~1\Nikon
[25/12/2005|17:10] C:\DOCUME~1\Fernande\APPLIC~1\OD2
[03/04/2007|12:36] C:\DOCUME~1\Fernande\APPLIC~1\Real
[20/06/2008|17:44] C:\DOCUME~1\Fernande\APPLIC~1\Roxio
[04/04/2007|20:41] C:\DOCUME~1\Fernande\APPLIC~1\Screenshot Sender
[18/03/2006|15:49] C:\DOCUME~1\Fernande\APPLIC~1\Sonic
[20/07/2008|17:48] C:\DOCUME~1\Fernande\APPLIC~1\Sun
[22/03/2008|15:52] C:\DOCUME~1\Fernande\APPLIC~1\Symantec
[03/04/2007|12:37] C:\DOCUME~1\Fernande\APPLIC~1\Talkback
[30/10/2005|15:23] C:\DOCUME~1\Fernande\APPLIC~1\Template
[10/03/2007|21:02] C:\DOCUME~1\Fernande\APPLIC~1\vlc
[19/12/2007|22:06] C:\DOCUME~1\Fernande\APPLIC~1\Windows Live Writer
[04/02/2006|17:45] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[18/03/2006|15:34] C:\DOCUME~1\LOCALS~1\APPLIC~1\Roxio
[26/04/2005|15:05] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks
[21/07/2008 12:11][--a------] C:\WINDOWS\tasks\Norton AntiVirus - Effectuer une analyse complŠte du systŠme - Fernande.job
[02/11/2008 16:01][--a------] C:\WINDOWS\tasks\V‚rifier les mises … jour de Windows Live Toolbar.job
[02/11/2008 11:52][--ah-----] C:\WINDOWS\tasks\SA.DAT
[05/08/2004 13:00][-r-h-----] C:\WINDOWS\tasks\desktop.ini
--------------------\\ Listing des dossiers dans C:\Program Files
[21/02/2008|14:20] C:\Program Files\1dvd
[18/06/2005|11:50] C:\Program Files\3D Arctic Bear
[14/08/2008|21:35] C:\Program Files\Adobe
[15/04/2005|13:35] C:\Program Files\Ahead
[20/07/2008|16:07] C:\Program Files\AlerteGPS
[05/02/2007|19:29] C:\Program Files\Alwil Software
[23/03/2007|21:17] C:\Program Files\Anuman Interactive
[28/07/2008|13:52] C:\Program Files\Apple Software Update
[10/03/2007|20:37] C:\Program Files\ArcSoft
[13/01/2007|15:31] C:\Program Files\AutoGK
[13/01/2007|15:31] C:\Program Files\AviSynth 2.5
[18/08/2008|16:31] C:\Program Files\Broderbund
[22/07/2008|21:54] C:\Program Files\CCleaner
[10/03/2007|21:59] C:\Program Files\Cobian Backup 8
[15/04/2005|14:19] C:\Program Files\Common Files
[14/04/2005|19:58] C:\Program Files\ComPlus Applications
[25/12/2005|16:46] C:\Program Files\Creative
[15/04/2005|13:34] C:\Program Files\CyberLink
[15/04/2005|13:34] C:\Program Files\CyberLink DVD Solution
[27/05/2006|21:44] C:\Program Files\DIFX
[10/07/2007|20:08] C:\Program Files\Documalis Free
[20/03/2006|18:05] C:\Program Files\DVD Shrink
[23/04/2005|08:02] C:\Program Files\ecrans2veille
[22/03/2008|15:49] C:\Program Files\EoRezo
[13/10/2008|21:03] C:\Program Files\Fichiers communs
[18/06/2005|11:56] C:\Program Files\FileSubmit
[25/06/2006|15:26] C:\Program Files\Free Offers from RI Soft Systems
[24/02/2007|20:37] C:\Program Files\FreeLaunchBar
[04/12/2006|15:41] C:\Program Files\Gabest
[28/07/2008|13:49] C:\Program Files\Google
[20/07/2008|18:30] C:\Program Files\Grisoft
[31/07/2008|15:57] C:\Program Files\Hewlett-Packard
[23/01/2006|15:47] C:\Program Files\HighMAT CD Writing Wizard
[31/07/2008|14:29] C:\Program Files\HP
[03/07/2005|09:39] C:\Program Files\ImaginationX
[19/01/2007|21:32] C:\Program Files\IncrediMail
[13/10/2008|21:03] C:\Program Files\InstallShield Installation Information
[16/10/2008|13:46] C:\Program Files\Internet Explorer
[28/03/2008|16:04] C:\Program Files\iPod
[28/03/2008|16:05] C:\Program Files\iTunes
[03/02/2007|11:14] C:\Program Files\IZArc
[20/07/2008|17:48] C:\Program Files\Java
[09/02/2006|16:32] C:\Program Files\Logitech
[27/02/2008|21:50] C:\Program Files\Magentic
[20/06/2008|17:52] C:\Program Files\MAGIX
[30/07/2008|08:53] C:\Program Files\Malwarebytes' Anti-Malware
[08/07/2007|16:17] C:\Program Files\MaxTV
[13/08/2008|17:52] C:\Program Files\Messenger
[10/09/2008|19:51] C:\Program Files\Messenger Plus! Live
[31/12/2007|15:14] C:\Program Files\MessengerPlus! 3
[13/10/2008|21:03] C:\Program Files\Micro Application
[08/05/2007|19:12] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[29/05/2005|14:30] C:\Program Files\microsoft frontpage
[08/02/2007|20:47] C:\Program Files\Microsoft IntelliPoint
[08/02/2007|20:47] C:\Program Files\Microsoft IntelliType Pro
[19/02/2006|16:35] C:\Program Files\Microsoft Office
[16/12/2007|20:00] C:\Program Files\Microsoft SQL Server Compact Edition
[28/09/2006|20:44] C:\Program Files\Microsoft Works
[19/02/2006|16:35] C:\Program Files\Microsoft.NET
[10/05/2008|22:23] C:\Program Files\Movie Maker
[08/06/2008|16:21] C:\Program Files\Mozilla Firefox
[01/06/2005|14:41] C:\Program Files\MSN
[26/11/2006|09:24] C:\Program Files\MSN Apps(2)
[14/04/2005|19:57] C:\Program Files\MSN Gaming Zone
[16/12/2007|19:57] C:\Program Files\MSN Messenger
[26/11/2006|11:13] C:\Program Files\MSXML 4.0
[28/12/2006|13:56] C:\Program Files\Music Manager
[29/07/2008|13:40] C:\Program Files\Navilog1
[10/05/2008|22:19] C:\Program Files\NetMeeting
[23/03/2007|18:56] C:\Program Files\Nikon
[22/03/2008|17:53] C:\Program Files\Norton AntiVirus
[22/03/2008|17:02] C:\Program Files\Norton SystemWorks
[21/07/2008|06:48] C:\Program Files\NOS
[23/02/2006|16:37] C:\Program Files\OfficeUpdate11
[14/04/2005|19:57] C:\Program Files\Online Services
[10/05/2008|22:19] C:\Program Files\Outlook Express
[04/12/2006|15:58] C:\Program Files\PC Inspector File Recovery
[14/03/2008|21:46] C:\Program Files\PhotoFiltre
[04/10/2008|19:18] C:\Program Files\Picasa2
[22/04/2005|20:54] C:\Program Files\Plus!
[28/03/2008|16:03] C:\Program Files\QuickTime
[27/09/2008|16:06] C:\Program Files\ReadIris
[03/04/2007|12:31] C:\Program Files\Real
[15/04/2005|14:19] C:\Program Files\Reflex Express
[18/03/2006|15:30] C:\Program Files\Roxio
[14/04/2005|20:12] C:\Program Files\S3Inc
[28/03/2008|16:14] C:\Program Files\Safari
[14/04/2005|19:59] C:\Program Files\Services en ligne
[04/12/2006|14:52] C:\Program Files\SiSoftware
[20/03/2006|18:29] C:\Program Files\SlySoft
[24/02/2007|19:31] C:\Program Files\Softwin
[18/03/2006|15:30] C:\Program Files\Sonic
[02/11/2008|14:08] C:\Program Files\Spybot - Search & Destroy
[08/06/2008|19:18] C:\Program Files\Symantec
[15/04/2005|12:55] C:\Program Files\Thomson
[01/11/2007|09:42] C:\Program Files\TomTom HOME
[28/07/2008|20:37] C:\Program Files\Trend Micro
[16/06/2008|12:33] C:\Program Files\UltraVNC
[26/04/2005|14:09] C:\Program Files\Uninstall Information
[14/04/2005|20:21] C:\Program Files\VIA
[03/12/2006|10:58] C:\Program Files\VIAudioi
[15/04/2005|14:19] C:\Program Files\ViaVoice
[10/03/2007|21:01] C:\Program Files\VideoLAN
[02/11/2008|12:00] C:\Program Files\Wanadoo
[26/11/2006|09:29] C:\Program Files\Winamp
[08/06/2008|16:11] C:\Program Files\Windows Live
[16/06/2008|10:47] C:\Program Files\Windows Live Safety Center
[10/01/2008|11:42] C:\Program Files\Windows Live Toolbar
[04/12/2006|19:48] C:\Program Files\Windows Media Bonus Pack for Windows XP
[03/12/2006|23:15] C:\Program Files\Windows Media Connect 2
[10/05/2008|22:19] C:\Program Files\Windows Media Player
[10/05/2008|22:19] C:\Program Files\Windows NT
[22/03/2008|17:20] C:\Program Files\Windows Sidebar
[14/04/2005|19:59] C:\Program Files\WindowsUpdate
[23/02/2007|22:28] C:\Program Files\WinRAR
[10/03/2007|20:51] C:\Program Files\WinZip
[14/04/2005|20:01] C:\Program Files\xerox
[22/07/2008|21:53] C:\Program Files\Yahoo!
--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs
[14/08/2008|21:35] C:\Program Files\Fichiers communs\Adobe
[15/04/2005|13:35] C:\Program Files\Fichiers communs\Ahead
[28/03/2008|16:00] C:\Program Files\Fichiers communs\Apple
[18/08/2008|16:26] C:\Program Files\Fichiers communs\Broderbund
[23/04/2005|07:47] C:\Program Files\Fichiers communs\DESIGNER
[20/04/2005|10:27] C:\Program Files\Fichiers communs\FotoWire
[15/04/2005|12:43] C:\Program Files\Fichiers communs\Hewlett-Packard
[18/03/2006|15:26] C:\Program Files\Fichiers communs\InstallShield
[20/07/2008|17:44] C:\Program Files\Fichiers communs\Java
[18/06/2005|10:16] C:\Program Files\Fichiers communs\Logitech
[20/06/2008|17:52] C:\Program Files\Fichiers communs\MAGIX Shared
[14/10/2008|18:52] C:\Program Files\Fichiers communs\Micro Application Shared
[08/06/2008|16:14] C:\Program Files\Fichiers communs\Microsoft Shared
[14/04/2005|19:59] C:\Program Files\Fichiers communs\MSSoap
[15/04/2006|20:22] C:\Program Files\Fichiers communs\muvee Technologies
[15/04/2006|20:22] C:\Program Files\Fichiers communs\Nikon
[15/04/2005|06:42] C:\Program Files\Fichiers communs\ODBC
[10/03/2007|18:23] C:\Program Files\Fichiers communs\Panda Software
[20/04/2008|14:52] C:\Program Files\Fichiers communs\Real
[18/03/2006|15:29] C:\Program Files\Fichiers communs\Roxio Shared
[14/04/2005|19:59] C:\Program Files\Fichiers communs\Services
[10/03/2007|20:20] C:\Program Files\Fichiers communs\Softwin
[18/03/2006|15:30] C:\Program Files\Fichiers communs\Sonic Shared
[15/04/2005|06:42] C:\Program Files\Fichiers communs\SpeechEngines
[16/10/2008|13:31] C:\Program Files\Fichiers communs\Symantec Shared
[10/05/2008|22:19] C:\Program Files\Fichiers communs\System
[16/12/2007|19:53] C:\Program Files\Fichiers communs\WindowsLiveInstaller
[20/04/2008|14:52] C:\Program Files\Fichiers communs\xing shared
[15/04/2005|14:19] C:\Program Files\Fichiers communs\YDP
--------------------\\ Process
( 74 Processes )
... OK !
--------------------\\ Recherche avec S_Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Recherche de Fichiers / Dossiers Lop
C:\DOCUME~1\Fernande\Cookies\fernande@advertising[2].txt
C:\DOCUME~1\Fernande\Cookies\fernande@adopt.euroclick[1].txt
--------------------\\ Verification du Registre
..... OK !
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-11-02 16:13:15
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 5
--------------------\\ Recherche d'autres infections
--------------------\\ Cracks & Keygens ..
C:\DOCUME~1\Fernande\Mes documents\ImagecopieXP PRO\Windows XP\utils\compression\WinAce v2.04 & v2.xx Reg Crack For win9x,xp,2k.zip
C:\DOCUME~1\Fernande\Mes documents\ImagecopieXP PRO\Windows XP\utils\gravure\WinISO_v4.5_Crack.zip
C:\DOCUME~1\Fernande\Mes documents\ImagecopieXP PRO\Windows XP\utils\internet\crackffxp1.4.txt
[F:2019][D:31]-> C:\DOCUME~1\Fernande\LOCALS~1\Temp
[F:373][D:0]-> C:\DOCUME~1\Fernande\Cookies
[F:15147][D:23]-> C:\DOCUME~1\Fernande\LOCALS~1\TEMPOR~1\content.IE5
1 - "C:\Lop SD\LopR_1.txt" - 14/09/2008|17:21 - Option : [1]
2 - "C:\Lop SD\LopR_2.txt" - 02/11/2008|16:17 - Option : [2]
--------------------\\ Fin du rapport a 16:17:06
Salut,
Peux tu nous dire comment va le pc?
Envoi un nouveau rapport hijack this.
@+
Peux tu nous dire comment va le pc?
Envoi un nouveau rapport hijack this.
@+
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 10:40:50, on 14/11/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16735)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\SYSTEM32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccSvcHst.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\WINDOWS\system32\CTsvcCDA.EXE
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Nikon\Wireless Camera Setup Utility\NkPtpEnum.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\PROGRA~1\Wanadoo\TaskbarIcon.exe
C:\PROGRA~1\Wanadoo\CnxMon.exe
C:\WINDOWS\system32\VTTimer.exe
C:\Program Files\Microsoft IntelliType Pro\type32.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
C:\Program Files\Roxio\Easy Media Creator 8\Drag to Disc\DrgToDsc.exe
C:\Program Files\CyberLink DVD Solution\PowerDVD\PDVDServ.exe
C:\Program Files\QuickTime\QTTask.exe
C:\Program Files\Fichiers communs\Real\Update_OB\RealOneMessageCenter.exe
C:\WINDOWS\system32\LVCOMSX.EXE
C:\Program Files\Logitech\Video\LogiTray.exe
C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe
C:\Program Files\Microsoft IntelliPoint\point32.exe
C:\Program Files\VIAudioi\SBADeck\ADeck.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\Program Files\TomTom HOME\TomTomHOME.exe
C:\Program Files\Fichiers communs\Roxio Shared\SharedCOM8\RoxWatchTray.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Windows Media Player\WMPNSCFG.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\Program Files\Creative\MediaSource\Detector\CTDetect.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpobnz08.exe
C:\Program Files\Nikon\PictureProject\NkbMonitor.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hposol08.exe
C:\Program Files\ArcSoft\PhotoImpression 5\PI Monitor.exe
C:\Program Files\VIA\RAID\raid_tool.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\Program Files\Fichiers communs\Symantec Shared\ccSvcHst.exe
C:\Program Files\Fichiers communs\Roxio Shared\SharedCOM8\RoxMediaDB.exe
C:\Program Files\Fichiers communs\Roxio Shared\SharedCOM8\RoxWatch.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnf.exe
C:\Program Files\Logitech\Video\FxSvr2.exe
C:\PROGRA~1\INCRED~1\bin\IMApp.exe
C:\Program Files\Fichiers communs\Roxio Shared\SharedCOM8\CPSHelpRunner.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Wanadoo\EspaceWanadoo.exe
C:\Program Files\Wanadoo\ComComp.exe
C:\Program Files\Wanadoo\Watch.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\PROGRA~1\FICHIE~1\SYMANT~1\CCPD-LC\symlcsvc.exe
C:\Program Files\Trend Micro\hjcherch\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.orange.fr/portail
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,C:\WINDOWS\regedit C:\WINDOWS\system32\userinit.exe,
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: (no name) - {64F56FC1-1272-44CD-BA6E-39723696E350} - (no file)
O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\PROGRA~1\FICHIE~1\SYMANT~1\IDS\IPSBHO.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\4.1.805.4472\swg.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O2 - BHO: (no name) - {BDF3E430-B101-42AD-A544-FADC6B084872} - (no file)
O3 - Toolbar: (no name) - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - (no file)
O3 - Toolbar: (no name) - {D3028143-6145-4318-99D3-3EDCE54A95A9} - (no file)
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\TaskbarIcon.exe
O4 - HKLM\..\Run: [WooCnxMon] C:\PROGRA~1\Wanadoo\CnxMon.exe
O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
O4 - HKLM\..\Run: [type32] "C:\Program Files\Microsoft IntelliType Pro\type32.exe"
O4 - HKLM\..\Run: [TrayServer] C:\Program Files\MAGIX\Video_deluxe_2008_e-version\TrayServer.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
O4 - HKLM\..\Run: [SpeedTouch USB Diagnostics] "C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe" /icon
O4 - HKLM\..\Run: [Share-to-Web Namespace Daemon] C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
O4 - HKLM\..\Run: [RoxioDragToDisc] "C:\Program Files\Roxio\Easy Media Creator 8\Drag to Disc\DrgToDsc.exe"
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink DVD Solution\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [osCheck] "C:\Program Files\Norton AntiVirus\osCheck.exe"
O4 - HKLM\..\Run: [MsgCenterExe] "C:\Program Files\Fichiers communs\Real\Update_OB\RealOneMessageCenter.exe" -osboot
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\FICHIE~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\point32.exe"
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [AudioDeck] C:\Program Files\VIAudioi\SBADeck\ADeck.exe 1
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKLM\..\Run: [TomTomHOME.exe] "C:\Program Files\TomTom HOME\TomTomHOME.exe" -s
O4 - HKLM\..\Run: [RoxWatchTray] "C:\Program Files\Fichiers communs\Roxio Shared\SharedCOM8\RoxWatchTray.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\RunOnce: [SymLnch] "C:\Documents and Settings\Fernande\Application Data\Symantec\Layouts\Norton AntiVirus\15.0\SymAllLanguages\NAVCD_RETAIL\20070828\Support\SymLnch\SymLnch.exe" "C:\Documents and Settings\Fernande\Application Data\Symantec\Layouts\Norton AntiVirus\15.0\SymAllLanguages\NAVCD_RETAIL\20070828\Setup.exe" "/SCANUPREBOOT /temp /patched"
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [NBJ] "C:\Program Files\Ahead\Nero BackItUp\NBJ.exe"
O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - HKCU\..\Run: [IncrediMail] C:\Program Files\IncrediMail\bin\IncMail.exe /c
O4 - HKCU\..\Run: [Creative Detector] C:\Program Files\Creative\MediaSource\Detector\CTDetect.exe /R
O4 - HKCU\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe
O4 - HKCU\..\RunOnce: [FlashPlayerUpdate] C:\WINDOWS\system32\Macromed\Flash\FlashUtil9f.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Event Reminder.lnk = C:\Program Files\Broderbund\PrintMaster\PMremind.exe
O4 - Global Startup: hp psc 2000 Series.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpobnz08.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - Global Startup: NkbMonitor.exe.lnk = C:\Program Files\Nikon\PictureProject\NkbMonitor.exe
O4 - Global Startup: officejet 6100.lnk = ?
O4 - Global Startup: PI Monitor.lnk = C:\Program Files\ArcSoft\PhotoImpression 5\PI Monitor.exe
O4 - Global Startup: VIA RAID TOOL.lnk = C:\Program Files\VIA\RAID\raid_tool.exe
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
O16 - DPF: {2250C29C-C5E9-4F55-BE4E-01E45A40FCF1} (CMediaMix Object) - http://musicmix.messenger.msn.com/Medialogic.CAB
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab31267.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {31E68DE2-5548-4B23-88F0-C51E6A0F695E} (Microsoft PID Sniffer) - https://support.serviceshub.microsoft.com/supportforbusiness/create
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by103fd.bay103.hotmail.msn.com/resources/MsnPUpld.cab
O16 - DPF: {54BE6B6F-3056-470B-97E1-BB92E051B6C4} (DeviceEnum Class) - http://h20264.www2.hp.com/ediags/dd/install/HPDriverDiagnosticsxp2k.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan_fr/scan8/oscan8.cab
O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety Center Base Module) - http://cdn.scan.onecare.live.com/resource/download/scanner/wlscbase9563.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/...
O16 - DPF: {6B75345B-AA36-438A-BBE6-4078B4C6984D} (HpProductDetection Class) - http://h20270.www2.hp.com/ediags/gmn2/install/HPProductDetection.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/...
O16 - DPF: {6F15128C-E66A-490C-B848-5000B5ABEEAC} (HP Download Manager) - https://h20436.www2.hp.com/ediags/dex/secure/HPDEXAXO.cab
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.6.0) - http://dl8-cdn-01.sun.com/s/ESD44/JSCDL/jdk/6u7/jinstall-6u7-windows-i586-jc.cab?e=1216572316012&h=90c19d49f7a00ffd60bd2648e9c7dd39/&filename=jinstall-6u7-windows-i586-jc.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {9122D757-5A4F-4768-82C5-B4171D8556A7} (PhotoPickConvert Class) - http://appdirectory.messenger.msn.com/AppDirectory/P4Apps/PhotoSwap/PhtPkMSN.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab47946.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} -
O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) - http://download.mcafee.com/molbin/iss-loc/mcfscan/2,2,0,5262/mcfscan.cab
O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab31267.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{3E673ED4-A32E-428D-A90A-3CBCBE08EFDB}: NameServer = 81.253.149.1 80.10.246.3
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Filter hijack: text/html - (no CLSID) - (no file)
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Planificateur LiveUpdate automatique (Automatic LiveUpdate Scheduler) - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSvcHst.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSvcHst.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSvcHst.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.EXE
O23 - Service: Firebird Server - MAGIX Instance (FirebirdServerMAGIXInstance) - MAGIX® - C:\Program Files\MAGIX\Common\Database\bin\fbserver.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\LuComServer_3_4.EXE
O23 - Service: LiveUpdate Notice - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSvcHst.exe
O23 - Service: NkPtpEnumP2 - Nikon Corporation - C:\Program Files\Nikon\Wireless Camera Setup Utility\NkPtpEnum.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: LiveShare P2P Server (RoxLiveShare) - Sonic Solutions - C:\Program Files\Fichiers communs\Roxio Shared\SharedCOM8\RoxLiveShare.exe
O23 - Service: RoxMediaDB - Sonic Solutions - C:\Program Files\Fichiers communs\Roxio Shared\SharedCOM8\RoxMediaDB.exe
O23 - Service: RoxUpnpRenderer (RoxUPnPRenderer) - Sonic Solutions - C:\Program Files\Fichiers communs\Roxio Shared\SharedCom\RoxUpnpRenderer.exe
O23 - Service: RoxUpnpServer - Sonic Solutions - C:\Program Files\Roxio\Easy Media Creator 8\Digital Home\RoxUpnpServer.exe
O23 - Service: Roxio Hard Drive Watcher (RoxWatch) - Sonic Solutions - C:\Program Files\Fichiers communs\Roxio Shared\SharedCOM8\RoxWatch.exe
O23 - Service: SiSoftware Database Agent Service (SandraDataSrv) - SiSoftware - C:\Program Files\SiSoftware\SiSoftware Sandra Lite XIb\Win32\RpcDataSrv.exe
O23 - Service: SiSoftware Sandra Agent Service (SandraTheSrv) - SiSoftware - C:\Program Files\SiSoftware\SiSoftware Sandra Lite XIb\RpcSandraSrv.exe
O23 - Service: Symantec Core LC - Unknown owner - C:\PROGRA~1\FICHIE~1\SYMANT~1\CCPD-LC\symlcsvc.exe
O24 - Desktop Component 0: (no name) - http://papieralettre.free.fr/nospal/divers/pal117.jpg
O24 - Desktop Component 1: (no name) - file:///C:/DOCUME~1/Fernande/LOCALS~1/APPLIC~1/IM/Runtime/Image/764E77~1/DSC_22~1.JPG
Scan saved at 10:40:50, on 14/11/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16735)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\SYSTEM32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccSvcHst.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\WINDOWS\system32\CTsvcCDA.EXE
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Nikon\Wireless Camera Setup Utility\NkPtpEnum.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\PROGRA~1\Wanadoo\TaskbarIcon.exe
C:\PROGRA~1\Wanadoo\CnxMon.exe
C:\WINDOWS\system32\VTTimer.exe
C:\Program Files\Microsoft IntelliType Pro\type32.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
C:\Program Files\Roxio\Easy Media Creator 8\Drag to Disc\DrgToDsc.exe
C:\Program Files\CyberLink DVD Solution\PowerDVD\PDVDServ.exe
C:\Program Files\QuickTime\QTTask.exe
C:\Program Files\Fichiers communs\Real\Update_OB\RealOneMessageCenter.exe
C:\WINDOWS\system32\LVCOMSX.EXE
C:\Program Files\Logitech\Video\LogiTray.exe
C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe
C:\Program Files\Microsoft IntelliPoint\point32.exe
C:\Program Files\VIAudioi\SBADeck\ADeck.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\Program Files\TomTom HOME\TomTomHOME.exe
C:\Program Files\Fichiers communs\Roxio Shared\SharedCOM8\RoxWatchTray.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Windows Media Player\WMPNSCFG.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\Program Files\Creative\MediaSource\Detector\CTDetect.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpobnz08.exe
C:\Program Files\Nikon\PictureProject\NkbMonitor.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hposol08.exe
C:\Program Files\ArcSoft\PhotoImpression 5\PI Monitor.exe
C:\Program Files\VIA\RAID\raid_tool.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\Program Files\Fichiers communs\Symantec Shared\ccSvcHst.exe
C:\Program Files\Fichiers communs\Roxio Shared\SharedCOM8\RoxMediaDB.exe
C:\Program Files\Fichiers communs\Roxio Shared\SharedCOM8\RoxWatch.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnf.exe
C:\Program Files\Logitech\Video\FxSvr2.exe
C:\PROGRA~1\INCRED~1\bin\IMApp.exe
C:\Program Files\Fichiers communs\Roxio Shared\SharedCOM8\CPSHelpRunner.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Wanadoo\EspaceWanadoo.exe
C:\Program Files\Wanadoo\ComComp.exe
C:\Program Files\Wanadoo\Watch.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\PROGRA~1\FICHIE~1\SYMANT~1\CCPD-LC\symlcsvc.exe
C:\Program Files\Trend Micro\hjcherch\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.orange.fr/portail
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,C:\WINDOWS\regedit C:\WINDOWS\system32\userinit.exe,
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: (no name) - {64F56FC1-1272-44CD-BA6E-39723696E350} - (no file)
O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\PROGRA~1\FICHIE~1\SYMANT~1\IDS\IPSBHO.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\4.1.805.4472\swg.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O2 - BHO: (no name) - {BDF3E430-B101-42AD-A544-FADC6B084872} - (no file)
O3 - Toolbar: (no name) - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - (no file)
O3 - Toolbar: (no name) - {D3028143-6145-4318-99D3-3EDCE54A95A9} - (no file)
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\TaskbarIcon.exe
O4 - HKLM\..\Run: [WooCnxMon] C:\PROGRA~1\Wanadoo\CnxMon.exe
O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
O4 - HKLM\..\Run: [type32] "C:\Program Files\Microsoft IntelliType Pro\type32.exe"
O4 - HKLM\..\Run: [TrayServer] C:\Program Files\MAGIX\Video_deluxe_2008_e-version\TrayServer.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
O4 - HKLM\..\Run: [SpeedTouch USB Diagnostics] "C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe" /icon
O4 - HKLM\..\Run: [Share-to-Web Namespace Daemon] C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
O4 - HKLM\..\Run: [RoxioDragToDisc] "C:\Program Files\Roxio\Easy Media Creator 8\Drag to Disc\DrgToDsc.exe"
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink DVD Solution\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [osCheck] "C:\Program Files\Norton AntiVirus\osCheck.exe"
O4 - HKLM\..\Run: [MsgCenterExe] "C:\Program Files\Fichiers communs\Real\Update_OB\RealOneMessageCenter.exe" -osboot
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\FICHIE~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\point32.exe"
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [AudioDeck] C:\Program Files\VIAudioi\SBADeck\ADeck.exe 1
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKLM\..\Run: [TomTomHOME.exe] "C:\Program Files\TomTom HOME\TomTomHOME.exe" -s
O4 - HKLM\..\Run: [RoxWatchTray] "C:\Program Files\Fichiers communs\Roxio Shared\SharedCOM8\RoxWatchTray.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\RunOnce: [SymLnch] "C:\Documents and Settings\Fernande\Application Data\Symantec\Layouts\Norton AntiVirus\15.0\SymAllLanguages\NAVCD_RETAIL\20070828\Support\SymLnch\SymLnch.exe" "C:\Documents and Settings\Fernande\Application Data\Symantec\Layouts\Norton AntiVirus\15.0\SymAllLanguages\NAVCD_RETAIL\20070828\Setup.exe" "/SCANUPREBOOT /temp /patched"
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [NBJ] "C:\Program Files\Ahead\Nero BackItUp\NBJ.exe"
O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - HKCU\..\Run: [IncrediMail] C:\Program Files\IncrediMail\bin\IncMail.exe /c
O4 - HKCU\..\Run: [Creative Detector] C:\Program Files\Creative\MediaSource\Detector\CTDetect.exe /R
O4 - HKCU\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe
O4 - HKCU\..\RunOnce: [FlashPlayerUpdate] C:\WINDOWS\system32\Macromed\Flash\FlashUtil9f.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Event Reminder.lnk = C:\Program Files\Broderbund\PrintMaster\PMremind.exe
O4 - Global Startup: hp psc 2000 Series.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpobnz08.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - Global Startup: NkbMonitor.exe.lnk = C:\Program Files\Nikon\PictureProject\NkbMonitor.exe
O4 - Global Startup: officejet 6100.lnk = ?
O4 - Global Startup: PI Monitor.lnk = C:\Program Files\ArcSoft\PhotoImpression 5\PI Monitor.exe
O4 - Global Startup: VIA RAID TOOL.lnk = C:\Program Files\VIA\RAID\raid_tool.exe
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
O16 - DPF: {2250C29C-C5E9-4F55-BE4E-01E45A40FCF1} (CMediaMix Object) - http://musicmix.messenger.msn.com/Medialogic.CAB
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab31267.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {31E68DE2-5548-4B23-88F0-C51E6A0F695E} (Microsoft PID Sniffer) - https://support.serviceshub.microsoft.com/supportforbusiness/create
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by103fd.bay103.hotmail.msn.com/resources/MsnPUpld.cab
O16 - DPF: {54BE6B6F-3056-470B-97E1-BB92E051B6C4} (DeviceEnum Class) - http://h20264.www2.hp.com/ediags/dd/install/HPDriverDiagnosticsxp2k.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan_fr/scan8/oscan8.cab
O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety Center Base Module) - http://cdn.scan.onecare.live.com/resource/download/scanner/wlscbase9563.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/...
O16 - DPF: {6B75345B-AA36-438A-BBE6-4078B4C6984D} (HpProductDetection Class) - http://h20270.www2.hp.com/ediags/gmn2/install/HPProductDetection.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/...
O16 - DPF: {6F15128C-E66A-490C-B848-5000B5ABEEAC} (HP Download Manager) - https://h20436.www2.hp.com/ediags/dex/secure/HPDEXAXO.cab
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.6.0) - http://dl8-cdn-01.sun.com/s/ESD44/JSCDL/jdk/6u7/jinstall-6u7-windows-i586-jc.cab?e=1216572316012&h=90c19d49f7a00ffd60bd2648e9c7dd39/&filename=jinstall-6u7-windows-i586-jc.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {9122D757-5A4F-4768-82C5-B4171D8556A7} (PhotoPickConvert Class) - http://appdirectory.messenger.msn.com/AppDirectory/P4Apps/PhotoSwap/PhtPkMSN.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab47946.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} -
O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) - http://download.mcafee.com/molbin/iss-loc/mcfscan/2,2,0,5262/mcfscan.cab
O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab31267.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{3E673ED4-A32E-428D-A90A-3CBCBE08EFDB}: NameServer = 81.253.149.1 80.10.246.3
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Filter hijack: text/html - (no CLSID) - (no file)
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Planificateur LiveUpdate automatique (Automatic LiveUpdate Scheduler) - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSvcHst.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSvcHst.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSvcHst.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.EXE
O23 - Service: Firebird Server - MAGIX Instance (FirebirdServerMAGIXInstance) - MAGIX® - C:\Program Files\MAGIX\Common\Database\bin\fbserver.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\LuComServer_3_4.EXE
O23 - Service: LiveUpdate Notice - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSvcHst.exe
O23 - Service: NkPtpEnumP2 - Nikon Corporation - C:\Program Files\Nikon\Wireless Camera Setup Utility\NkPtpEnum.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: LiveShare P2P Server (RoxLiveShare) - Sonic Solutions - C:\Program Files\Fichiers communs\Roxio Shared\SharedCOM8\RoxLiveShare.exe
O23 - Service: RoxMediaDB - Sonic Solutions - C:\Program Files\Fichiers communs\Roxio Shared\SharedCOM8\RoxMediaDB.exe
O23 - Service: RoxUpnpRenderer (RoxUPnPRenderer) - Sonic Solutions - C:\Program Files\Fichiers communs\Roxio Shared\SharedCom\RoxUpnpRenderer.exe
O23 - Service: RoxUpnpServer - Sonic Solutions - C:\Program Files\Roxio\Easy Media Creator 8\Digital Home\RoxUpnpServer.exe
O23 - Service: Roxio Hard Drive Watcher (RoxWatch) - Sonic Solutions - C:\Program Files\Fichiers communs\Roxio Shared\SharedCOM8\RoxWatch.exe
O23 - Service: SiSoftware Database Agent Service (SandraDataSrv) - SiSoftware - C:\Program Files\SiSoftware\SiSoftware Sandra Lite XIb\Win32\RpcDataSrv.exe
O23 - Service: SiSoftware Sandra Agent Service (SandraTheSrv) - SiSoftware - C:\Program Files\SiSoftware\SiSoftware Sandra Lite XIb\RpcSandraSrv.exe
O23 - Service: Symantec Core LC - Unknown owner - C:\PROGRA~1\FICHIE~1\SYMANT~1\CCPD-LC\symlcsvc.exe
O24 - Desktop Component 0: (no name) - http://papieralettre.free.fr/nospal/divers/pal117.jpg
O24 - Desktop Component 1: (no name) - file:///C:/DOCUME~1/Fernande/LOCALS~1/APPLIC~1/IM/Runtime/Image/764E77~1/DSC_22~1.JPG