Infectee - Supprime et plusieurs rapports
Dark_Nacco
Messages postés
222
Statut
Membre
-
Dark_Nacco Messages postés 222 Statut Membre -
Dark_Nacco Messages postés 222 Statut Membre -
Bonjour,
J'ai été infectée récament mais j'ai supprimé le virus, j'ai plusieur scan : Hijackthis(renommée HJT), DSS(renommée Comboscan) De Deckard et Diaghelp, en voici les different rapport :
Hijackthis :
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 09:31:47, on 23/08/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16674)
Boot mode: Normal
Running processes:
D:\WINDOWS\System32\smss.exe
D:\WINDOWS\system32\winlogon.exe
D:\WINDOWS\system32\services.exe
D:\WINDOWS\system32\lsass.exe
D:\WINDOWS\system32\svchost.exe
D:\WINDOWS\System32\svchost.exe
D:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
D:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
D:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
D:\WINDOWS\system32\spoolsv.exe
D:\WINDOWS\Explorer.EXE
D:\Program Files\Norton Save and Restore\Agent\NSRTray.exe
D:\WINDOWS\system32\ctfmon.exe
D:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
D:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
D:\Program Files\Bonjour\mDNSResponder.exe
D:\PROGRA~1\COMMON~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
D:\WINDOWS\System32\svchost.exe
D:\Program Files\Norton Save and Restore\Agent\VProSvc.exe
D:\WINDOWS\System32\svchost.exe
D:\WINDOWS\system32\svchost.exe
D:\WINDOWS\System32\svchost.exe
D:\Program Files\Internet Explorer\iexplore.exe
D:\Program Files\HP\Smart Web Printing\hpswp_clipbook.exe
D:\Documents and Settings\Dima.SERGE\Desktop\HJT.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Orange
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - D:\Program Files\Orange\SearchURLHook\SearchPageURL.dll
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - D:\Program Files\HP\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: HP Print Clips - {053F9267-DC04-4294-A72C-58F732D338C0} - D:\Program Files\HP\Smart Web Printing\hpswp_framework.dll
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - D:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - D:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: NCO 2.0 IE BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - D:\Program Files\Common Files\Symantec Shared\coShared\Browser\2.0\coIEPlg.dll
O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - D:\PROGRA~1\COMMON~1\SYMANT~1\IDS\IPSBHO.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - D:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O3 - Toolbar: Afficher Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - D:\Program Files\Common Files\Symantec Shared\coShared\Browser\2.0\CoIEPlg.dll
O4 - HKLM\..\Run: [Norton Save and Restore] "D:\Program Files\Norton Save and Restore\Agent\NSRTray.exe"
O4 - HKLM\..\Run: [osCheck] "D:\Program Files\Norton Internet Security\osCheck.exe"
O4 - HKLM\..\Run: [ccApp] D:\Program Files\Common Files\Symantec Shared\ccApp.exe
O4 - HKCU\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Steam] "d:\program files\valve\steam\steam.exe" -silent
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RESEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://D:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - D:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - D:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: Aeuaii eeeiia HP - {58ECB495-38F0-49cb-A538-10282ABF65E7} - D:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll
O9 - Extra button: ?anoe?aiiue auai? HP - {700259D7-1666-479a-93B1-3250410481E8} - D:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - D:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - D:\WINDOWS\bdoscandel.exe
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - D:\WINDOWS\bdoscandel.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - D:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - D:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Object) - http://a1540.g.akamai.net/7/1540/52/20070711/qtinstall.info.apple.com/qtactivex/qtplugin.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} - http://www.bitdefender.fr/scan_fr/scan8/oscan8.cab
O16 - DPF: {69EF49E5-FE46-4B92-B5FA-2193AB7A6B8A} - http://www.acclaim.com/cabs/acclaim_v4.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - D:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft - D:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: Autodesk Licensing Service - Autodesk - D:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - D:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - D:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - D:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - D:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Symantec Corporation - D:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: COM Host (comHost) - Symantec Corporation - D:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - D:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom SA - D:\PROGRA~1\COMMON~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - D:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: LiveUpdate - Symantec Corporation - D:\Program Files\Symantec\LiveUpdate\LuComServer_3_4.EXE
O23 - Service: LiveUpdate Notice - Symantec Corporation - D:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: NBService - Nero AG - D:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - D:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
DSS de Dickard :
Deckard's System Scanner v20071014.68
Run by Dima on 2008-08-23 09:33:28
Computer is in Normal Mode.
--------------------------------------------------------------------------------
-- HijackThis (run as Dima.exe) ------------------------------------------------
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 09:33:32, on 23/08/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16674)
Boot mode: Normal
Running processes:
D:\WINDOWS\System32\smss.exe
D:\WINDOWS\system32\winlogon.exe
D:\WINDOWS\system32\services.exe
D:\WINDOWS\system32\lsass.exe
D:\WINDOWS\system32\svchost.exe
D:\WINDOWS\System32\svchost.exe
D:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
D:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
D:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
D:\WINDOWS\system32\spoolsv.exe
D:\WINDOWS\Explorer.EXE
D:\Program Files\Norton Save and Restore\Agent\NSRTray.exe
D:\WINDOWS\system32\ctfmon.exe
D:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
D:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
D:\Program Files\Bonjour\mDNSResponder.exe
D:\PROGRA~1\COMMON~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
D:\WINDOWS\System32\svchost.exe
D:\Program Files\Norton Save and Restore\Agent\VProSvc.exe
D:\WINDOWS\System32\svchost.exe
D:\WINDOWS\system32\svchost.exe
D:\WINDOWS\System32\svchost.exe
D:\Documents and Settings\Dima.SERGE\Desktop\Desinfection du pc\comboscan.exe
D:\DOCUME~1\DIMA~1.SER\Desktop\Dima.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Orange
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - D:\Program Files\Orange\SearchURLHook\SearchPageURL.dll
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - D:\Program Files\HP\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: HP Print Clips - {053F9267-DC04-4294-A72C-58F732D338C0} - D:\Program Files\HP\Smart Web Printing\hpswp_framework.dll
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - D:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - D:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: NCO 2.0 IE BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - D:\Program Files\Common Files\Symantec Shared\coShared\Browser\2.0\coIEPlg.dll
O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - D:\PROGRA~1\COMMON~1\SYMANT~1\IDS\IPSBHO.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - D:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O3 - Toolbar: Afficher Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - D:\Program Files\Common Files\Symantec Shared\coShared\Browser\2.0\CoIEPlg.dll
O4 - HKLM\..\Run: [Norton Save and Restore] "D:\Program Files\Norton Save and Restore\Agent\NSRTray.exe"
O4 - HKLM\..\Run: [osCheck] "D:\Program Files\Norton Internet Security\osCheck.exe"
O4 - HKLM\..\Run: [ccApp] D:\Program Files\Common Files\Symantec Shared\ccApp.exe
O4 - HKCU\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Steam] "d:\program files\valve\steam\steam.exe" -silent
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RESEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://D:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - D:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - D:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: Aeuaii eeeiia HP - {58ECB495-38F0-49cb-A538-10282ABF65E7} - D:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll
O9 - Extra button: ?anoe?aiiue auai? HP - {700259D7-1666-479a-93B1-3250410481E8} - D:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - D:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - D:\WINDOWS\bdoscandel.exe
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - D:\WINDOWS\bdoscandel.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - D:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - D:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Object) - http://a1540.g.akamai.net/7/1540/52/20070711/qtinstall.info.apple.com/qtactivex/qtplugin.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} - http://www.bitdefender.fr/scan_fr/scan8/oscan8.cab
O16 - DPF: {69EF49E5-FE46-4B92-B5FA-2193AB7A6B8A} - http://www.acclaim.com/cabs/acclaim_v4.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - D:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft - D:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: Autodesk Licensing Service - Autodesk - D:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - D:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - D:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - D:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - D:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Symantec Corporation - D:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: COM Host (comHost) - Symantec Corporation - D:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - D:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom SA - D:\PROGRA~1\COMMON~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - D:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: LiveUpdate - Symantec Corporation - D:\Program Files\Symantec\LiveUpdate\LuComServer_3_4.EXE
O23 - Service: LiveUpdate Notice - Symantec Corporation - D:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: NBService - Nero AG - D:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - D:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: Norton Save and Restore - Symantec Corporation - D:\Program Files\Norton Save and Restore\Agent\VProSvc.exe
O23 - Service: Orange Controle Parental (OPTENET_FILTER) - Orange - D:\Program Files\Controle Parental\bin\optproxy.exe
O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - D:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: Symantec Core LC - Unknown owner - D:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
--
End of file - 9307 bytes
-- Files created between 2008-07-23 and 2008-08-23 -----------------------------
2008-08-23 09:04:04 0 d-------- D:\WINDOWS\LastGood
-- Find3M Report ---------------------------------------------------------------
2008-08-23 09:17:45 0 d-------- D:\Program Files\Common Files\Symantec Shared
2008-07-22 15:20:08 0 d-------- D:\Documents and Settings\Dima.SERGE\Application Data\Real
2008-07-22 14:00:11 0 d-------- D:\Program Files\AMD
2008-07-22 13:14:15 0 d-------- D:\Program Files\Lavalys
2008-07-22 11:52:17 0 d-------- D:\Program Files\Panda Security
2008-07-22 11:51:58 0 d-------- D:\Program Files\Navilog1
2008-07-22 08:12:01 0 d-------- D:\Program Files\CCleaner
2008-07-21 17:04:53 0 d-------- D:\Program Files\Nouveau dossier (3)
2008-07-21 17:04:44 0 d-------- D:\Program Files\SBox FreeWare
2008-07-21 17:04:44 0 d-------- D:\Program Files\Renex3
2008-07-21 17:04:44 0 d-------- D:\Program Files\PDFStudio
2008-07-21 17:04:42 0 d-------- D:\Program Files\Palm
2008-07-21 17:04:40 0 d-------- D:\Program Files\AutoCAD 2008
2008-07-21 17:04:39 0 d-------- D:\Program Files\FlashGet
2008-07-21 16:32:17 0 d-------- D:\Program Files\Microsoft Games
2008-07-21 15:14:52 0 d-------- D:\Program Files\Common Files\Wise Installation Wizard
2008-07-21 15:14:22 0 d-------- D:\Program Files\HyCam2
2008-07-21 15:10:00 0 d--h----- D:\Program Files\InstallShield Installation Information
2008-07-21 15:02:18 0 d-------- D:\Documents and Settings\Dima.SERGE\Application Data\Notepad++
2008-07-21 14:54:20 0 d-------- D:\Documents and Settings\Dima.SERGE\Application Data\MSNInstaller
2008-07-21 14:53:32 0 d-------- D:\Program Files\Common Files
2008-07-21 14:51:16 0 d-------- D:\Program Files\Labtec
2008-07-05 14:27:51 35712 --a------ D:\WINDOWS\DIIUnin.dat
2008-07-05 14:09:01 21840 --a-----t D:\WINDOWS\system32\SIntfNT.dll
2008-07-05 14:09:01 17212 --a-----t D:\WINDOWS\system32\SIntf32.dll
2008-07-05 14:09:01 12067 --a-----t D:\WINDOWS\system32\SIntf16.dll
2008-07-05 13:56:06 2829 --a------ D:\WINDOWS\DIIUnin.pif
2008-07-05 13:56:06 102400 --a------ D:\WINDOWS\DIIUnin.exe <Not Verified; Blizzard Entertainment; Desinstallation de Diablo II>
2008-07-04 09:20:55 0 d-------- D:\Program Files\Freelancer Mod Manager
2008-07-02 11:05:46 0 d-------- D:\Documents and Settings\Dima.SERGE\Application Data\HPAppData
2008-06-26 14:36:32 0 d-------- D:\Program Files\Common Files\Real
2008-06-26 14:36:04 0 d-------- D:\Program Files\Common Files\Logitech
2008-06-22 08:08:06 5552 --a------ D:\WINDOWS\unins000.dat
2008-06-22 08:06:30 691545 --a------ D:\WINDOWS\unins000.exe
2008-06-19 13:36:22 56 --ah----- D:\WINDOWS\system32\ezsidmv.dat
-- Registry Dump ---------------------------------------------------------------
*Note* empty entries & legit default entries are not shown
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{0347C33E-8762-4905-BF09-768834316C61}]
02/03/2007 16:52 1298024 -ra------ D:\Program Files\HP\Smart Web Printing\hpswp_printenhancer.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{053F9267-DC04-4294-A72C-58F732D338C0}]
02/03/2007 16:52 177768 -ra------ D:\Program Files\HP\Smart Web Printing\hpswp_framework.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}]
24/08/2007 21:51 316784 --a------ D:\Program Files\Common Files\Symantec Shared\coShared\Browser\2.0\coIEPlg.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}]
31/01/2008 09:18 116088 --a------ D:\PROGRA~1\COMMON~1\SYMANT~1\IDS\IPSBHO.dll
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser]
"{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA}"= D:\Program Files\Common Files\Symantec Shared\coShared\Browser\2.0\CoIEPlg.dll [24/08/2007 21:51 316784]
[-HKEY_CLASSES_ROOT\CLSID\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA}]
[HKEY_CLASSES_ROOT\CoIEPlg.CoToolbar.1]
[HKEY_CLASSES_ROOT\CoIEPlg.CoToolbar]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Norton Save and Restore"="D:\Program Files\Norton Save and Restore\Agent\NSRTray.exe" [03/03/2006 20:36]
"osCheck"="D:\Program Files\Norton Internet Security\osCheck.exe" [24/08/2007 22:53]
"ccApp"="D:\Program Files\Common Files\Symantec Shared\ccApp.exe" [31/01/2008 14:15]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="D:\WINDOWS\system32\ctfmon.exe" [04/08/2004 14:00]
"Steam"="d:\program files\valve\steam\steam.exe" [28/03/2008 17:06]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aawservice]
@="Service"
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
HPZ12 Pml Driver HPZ12 Net Driver HPZ12
hpdevmgmt hpqcxs08
*Newly Created Service* - COMHOST
*Newly Created Service* - ERASERUTILDRV10821
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{2bf41070-b2b1-21d1-b5c1-0305f4055515}]
C:\windows\svcr.exe
End of Deckard's System Scanner: finished at 2008-08-23 09:33:53 ------------
Rapport DiegHelp :
atchme 0.3.1351 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-08-23 10:11:55
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden services & system hive ...
scanning hidden registry entries ...
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Adobe\xae Photoshop\xae Album Edition D9couverte 3.2]
"SlowInfoCache"=hex:28,02,00,00,01,00,00,00,00,10,07,01,00,00,00,00,64,bc,2b,d7,53,..
"Changed"=dword:00000000
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\3.2\Apps\"="1"
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\3.2\"="1"
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\"="1"
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\3.2\Shared_Assets\locales\"="1"
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\3.2\Shared_Assets\"="1"
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\3.2\Shared_Assets\locales\fr_fr\"=""
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\3.2\Apps\Legal\"=""
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\3.2\Shared_Assets\caticons\"=""
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\3.2\Shared_Assets\locales\fr_fr\bitmaps\"=""
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\3.2\Shared_Assets\layouts\"=""
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\3.2\Apps\AMT\"=""
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\3.2\Apps\tools\"=""
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\3.2\Shared_Assets\locales\fr_fr\upsell\"=""
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\3.2\Shared_Assets\locales\fr_fr\upsell\images\"=""
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\3.2\Shared_Assets\database\odbc\"=""
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\3.2\Shared_Assets\database\"=""
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\3.2\Shared_Assets\combined_bitmaps\"=""
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\3.2\Shared_Assets\combined_bitmaps\authoring_wiz\"=""
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\3.2\Shared_Assets\combined_bitmaps\custom_window\"=""
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\3.2\Shared_Assets\combined_bitmaps\main_window\"=""
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\3.2\Shared_Assets\combined_bitmaps\tag_palette\"=""
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\3.2\Shared_Assets\combined_bitmaps\widgets\"=""
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\3.2\Shared_Assets\combined_bitmaps\workflow_icons\"=""
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\3.2\Apps\moxplugins\"=""
"D:\Program Files\Microsoft Office\Templates\Mod8les de conception 97\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Modules externes\Filtres\Styles d'9clairage\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Modules externes\Images de r9f9rence\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Bichromie\3 encres\Gris\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Bichromie\3 encres\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Bichromie\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Bichromie\3 encres\PANTONE(R)\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Bichromie\3 encres\Primaires\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Bichromie\4 encres\Gris\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Bichromie\4 encres\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Bichromie\4 encres\PANTONE(R)\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Bichromie\4 encres\Primaires\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Bichromie\Bichromie\Gris-Noir\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Bichromie\Bichromie\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Bichromie\Bichromie\PANTONE(R)\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Bichromie\Bichromie\Primaires\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Catalogues de couleurs\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Contours\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Couleurs optimis9es\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Courbes\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Dispositions\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\D9grad9s\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Espaces de travail\1-Espaces de travail standard\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Espaces de travail\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Espaces de travail\2-Espaces de travail bas9s sur les t2ches\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Formes\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Formes personnalis9es\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Bordure pointill9e - Blanc-noir\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Bordure pointill9e - Blanc-noir\images\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Bordure pointill9e - Noir-blanc\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Bordure pointill9e - Noir-blanc\images\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Cadre centr9 1 - Base\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Cadre centr9 1 - Base\images\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Cadre centr9 1 - Infos seules\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Cadre centr9 1 - Infos seules\images\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Cadre centr9 1 - Retour\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Cadre centr9 1 - Retour\images\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Cadre centr9 2 - Retour\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Cadre centr9 2 - Retour\images\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Flash - Galerie 1\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Flash - Galerie 2\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Horizontale - Retour\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Horizontale - Retour\images\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Horizontale grise\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Horizontale grise\images\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Horizontale neutre\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Horizontale neutre\images\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Horizontale 0 diaporama\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Horizontale 0 diaporama\images\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Simple\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Simple - Tableau de vignettes\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Simple - Tableau de vignettes\images\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Simple - Vignettes horizontales\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Simple - Vignettes horizontales\images\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Simple - Vignettes verticales\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Simple - Vignettes verticales\images\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Tableau - Minimal\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Tableau - Minimal\images\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Tableau 1\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Tableau 1\images\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Tableau 2\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Tableau 2\images\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Vignettes grises\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Vignettes grises\images\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Motifs\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Motifs\Motifs PostScript\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\M9langeur de couches\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Noir et blanc\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Nuanciers\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Outils\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Param8tres de sortie optimis9s\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Param8tres optimis9s\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Personnalisation de menus\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Raccourcis clavier\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Scripts\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Scripts\Adapter l'image\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Scripts\Changer mode conditionnel\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Scripts\Chargement des fichiers dans la pile\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Scripts\Chargement DICOM\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Scripts\Comp. de calques en fichiers\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Scripts\Comp. de calques en GWP\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Scripts\Comp. de calques en PDF\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Scripts\Event Scripts Only\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Scripts\Event Scripts Only\Afficher le fabricant de l'appareil\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Scripts\Event Scripts Only\Avertir si RVB\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Scripts\Event Scripts Only\Bienvenue\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Scripts\Event Scripts Only\Enregistrer JPEG suppl9mentaire\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Scripts\Event Scripts Only\Mettre 0 jour les informations\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Scripts\Event Scripts Only\Redimensionner\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Scripts\Exporter les calques en fichiers\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Scripts\Fusion HDR\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Scripts\Gestionnaire d'9v9nements de script\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Scripts\Photomerge\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Scripts\Processeur d'images\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Scripts\Stack Scripts Only\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Scripts\Stack Scripts Only\CreateImageStack\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Scripts\Stack Scripts Only\LatteUI\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Scripts\Statistiques\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Scripts Photoshop\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Styles\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Textures\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Zoomify\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Exemples\Fusion HDR\R9sultat\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Exemples\Photomerge\R9sultat\"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\3.2\Apps\AdobeUpdater.dll"=dword:00000001
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\3.2\Apps\AMT\AUMProduct.cer"=dword:00000001
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\3.2\Apps\Discwriter.dll"=dword:00000001
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\3.2\Apps\tools\backup.pln"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\StillImage\Registered Applications]
"Photoshop Album Edition D9couverte 3.2"="D:\Program Files\Adobe\Photoshop Album Edition Dйcouverte\3.2\Apps\psaproxy.exe /StiDevice:%1 /StiEvent:%2"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Adobe\xae Photoshop\xae Album Edition D9couverte 3.2]
"DisplayName"="Adobe\xae Photoshop\xae Album Edition Dйcouverte 3.2"
"URLUpdateInfo"="https://www.adobe.com/products/photoshop-elements.html"
"URLInfoAbout"="https://www.adobe.com/fr/"
"UninstallString"=str(2):"MsiExec.exe /I{A654A805-41D9-40C7-AA46-4AF04F044D61}"
"Size"=""
"Readme"=str(2):"D:\Program Files\Adobe\Photoshop Album Starter Edition\3.2\readme.txt"
"Publisher"="https://www.adobe.com/fr/"
"InstallDate"=""
"HelpTelephone"=""
"HelpLink"=""
"DisplayVersion"="3.2.0"
"Contact"=""
"Comments"=""
"AuthorizedCDFPrefix"=""
"RegEulaAccepted"="0"
"PSASEVersion"="3.2.0"
"SEOEMName"=""
"PSASEVersionUpdate"="0"
"DisplayIcon"="D:\Program Files\Adobe\Photoshop Album Edition Dйcouverte\3.2\Apps\Photoshop Album Starter Edition.exe,-111"
"InstallLocation"="D:\Program Files\Adobe\Photoshop Album Edition Dйcouverte\"
"InstallPath"="D:\Program Files\Adobe\Photoshop Album Edition Dйcouverte\3.2\Apps"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Prefetcher]
"TracesProcessed"=dword:0000057f
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\ContrDle Parental]
"Order"=hex:08,00,00,00,02,00,00,00,aa,02,00,00,01,00,00,00,05,00,00,00,86,..
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\Nero 7 Premium\donn9es]
"Order"=hex:08,00,00,00,02,00,00,00,9c,01,00,00,01,00,00,00,03,00,00,00,84,..
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\Nero 7 Premium\Photo et vid9o]
"Order"=hex:08,00,00,00,02,00,00,00,26,02,00,00,01,00,00,00,04,00,00,00,86,..
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\Nero 7 Premium\tiquettes]
"Order"=hex:08,00,00,00,02,00,00,00,9a,00,00,00,01,00,00,00,01,00,00,00,8e,..
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache]
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\3.2\Apps\ComponentLauncher.exe"="Adobe Photoshop Album Starter Edition 3.2 (Viewer)"
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\3.2\Apps\Photoshop Album Starter Edition.exe"="Adobe Photoshop Album Starter Edition 3.2"
"D:\Program Files\Securitoo\ContrDle Parental\securitoo_controle_parental_orange_r7.exe"="InstallShield (R) Setup Launcher"
"D:\Documents and Settings\Dima.SERGE\Desktop\D9sinfection du pc\comboscan.exe"="comboscan"
"D:\Documents and Settings\Dima.SERGE\Desktop\D9sinfection du pc\DiagHelp\go.cmd"="go"
"D:\Documents and Settings\Dima.SERGE\Desktop\D9sinfection du pc\DiagHelp\catchme.exe"="catchme"
scanning hidden files ...
scan completed successfully
hidden services: 0
hidden files: 0
Je dois preciser que mon Norton 2008 na rien detecte et que je nai pas envie de faire un scan panda ou bit defender qui dure ~24 h (deja essayer et ne dites pas non jai 1,7 million de fichier :p)
Voila dites moi si il ya quelque chose danormal et merci pour votres futures aides ))
@+
--
Comment savoire si un des tes copains est accro à WoW :
-Si t'a copine le drague, il te dit "Eh !! Reprends l'aggro*.
(*Aggro : Etre pousuivis par un PNJ ou être attaquer par celui-ci, reprendre l'aggro veut dire attirer l'attention sur sois)
J'ai été infectée récament mais j'ai supprimé le virus, j'ai plusieur scan : Hijackthis(renommée HJT), DSS(renommée Comboscan) De Deckard et Diaghelp, en voici les different rapport :
Hijackthis :
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 09:31:47, on 23/08/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16674)
Boot mode: Normal
Running processes:
D:\WINDOWS\System32\smss.exe
D:\WINDOWS\system32\winlogon.exe
D:\WINDOWS\system32\services.exe
D:\WINDOWS\system32\lsass.exe
D:\WINDOWS\system32\svchost.exe
D:\WINDOWS\System32\svchost.exe
D:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
D:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
D:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
D:\WINDOWS\system32\spoolsv.exe
D:\WINDOWS\Explorer.EXE
D:\Program Files\Norton Save and Restore\Agent\NSRTray.exe
D:\WINDOWS\system32\ctfmon.exe
D:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
D:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
D:\Program Files\Bonjour\mDNSResponder.exe
D:\PROGRA~1\COMMON~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
D:\WINDOWS\System32\svchost.exe
D:\Program Files\Norton Save and Restore\Agent\VProSvc.exe
D:\WINDOWS\System32\svchost.exe
D:\WINDOWS\system32\svchost.exe
D:\WINDOWS\System32\svchost.exe
D:\Program Files\Internet Explorer\iexplore.exe
D:\Program Files\HP\Smart Web Printing\hpswp_clipbook.exe
D:\Documents and Settings\Dima.SERGE\Desktop\HJT.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Orange
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - D:\Program Files\Orange\SearchURLHook\SearchPageURL.dll
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - D:\Program Files\HP\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: HP Print Clips - {053F9267-DC04-4294-A72C-58F732D338C0} - D:\Program Files\HP\Smart Web Printing\hpswp_framework.dll
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - D:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - D:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: NCO 2.0 IE BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - D:\Program Files\Common Files\Symantec Shared\coShared\Browser\2.0\coIEPlg.dll
O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - D:\PROGRA~1\COMMON~1\SYMANT~1\IDS\IPSBHO.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - D:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O3 - Toolbar: Afficher Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - D:\Program Files\Common Files\Symantec Shared\coShared\Browser\2.0\CoIEPlg.dll
O4 - HKLM\..\Run: [Norton Save and Restore] "D:\Program Files\Norton Save and Restore\Agent\NSRTray.exe"
O4 - HKLM\..\Run: [osCheck] "D:\Program Files\Norton Internet Security\osCheck.exe"
O4 - HKLM\..\Run: [ccApp] D:\Program Files\Common Files\Symantec Shared\ccApp.exe
O4 - HKCU\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Steam] "d:\program files\valve\steam\steam.exe" -silent
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RESEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://D:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - D:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - D:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: Aeuaii eeeiia HP - {58ECB495-38F0-49cb-A538-10282ABF65E7} - D:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll
O9 - Extra button: ?anoe?aiiue auai? HP - {700259D7-1666-479a-93B1-3250410481E8} - D:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - D:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - D:\WINDOWS\bdoscandel.exe
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - D:\WINDOWS\bdoscandel.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - D:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - D:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Object) - http://a1540.g.akamai.net/7/1540/52/20070711/qtinstall.info.apple.com/qtactivex/qtplugin.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} - http://www.bitdefender.fr/scan_fr/scan8/oscan8.cab
O16 - DPF: {69EF49E5-FE46-4B92-B5FA-2193AB7A6B8A} - http://www.acclaim.com/cabs/acclaim_v4.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - D:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft - D:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: Autodesk Licensing Service - Autodesk - D:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - D:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - D:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - D:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - D:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Symantec Corporation - D:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: COM Host (comHost) - Symantec Corporation - D:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - D:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom SA - D:\PROGRA~1\COMMON~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - D:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: LiveUpdate - Symantec Corporation - D:\Program Files\Symantec\LiveUpdate\LuComServer_3_4.EXE
O23 - Service: LiveUpdate Notice - Symantec Corporation - D:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: NBService - Nero AG - D:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - D:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
DSS de Dickard :
Deckard's System Scanner v20071014.68
Run by Dima on 2008-08-23 09:33:28
Computer is in Normal Mode.
--------------------------------------------------------------------------------
-- HijackThis (run as Dima.exe) ------------------------------------------------
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 09:33:32, on 23/08/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16674)
Boot mode: Normal
Running processes:
D:\WINDOWS\System32\smss.exe
D:\WINDOWS\system32\winlogon.exe
D:\WINDOWS\system32\services.exe
D:\WINDOWS\system32\lsass.exe
D:\WINDOWS\system32\svchost.exe
D:\WINDOWS\System32\svchost.exe
D:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
D:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
D:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
D:\WINDOWS\system32\spoolsv.exe
D:\WINDOWS\Explorer.EXE
D:\Program Files\Norton Save and Restore\Agent\NSRTray.exe
D:\WINDOWS\system32\ctfmon.exe
D:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
D:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
D:\Program Files\Bonjour\mDNSResponder.exe
D:\PROGRA~1\COMMON~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
D:\WINDOWS\System32\svchost.exe
D:\Program Files\Norton Save and Restore\Agent\VProSvc.exe
D:\WINDOWS\System32\svchost.exe
D:\WINDOWS\system32\svchost.exe
D:\WINDOWS\System32\svchost.exe
D:\Documents and Settings\Dima.SERGE\Desktop\Desinfection du pc\comboscan.exe
D:\DOCUME~1\DIMA~1.SER\Desktop\Dima.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Orange
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - D:\Program Files\Orange\SearchURLHook\SearchPageURL.dll
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - D:\Program Files\HP\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: HP Print Clips - {053F9267-DC04-4294-A72C-58F732D338C0} - D:\Program Files\HP\Smart Web Printing\hpswp_framework.dll
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - D:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - D:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: NCO 2.0 IE BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - D:\Program Files\Common Files\Symantec Shared\coShared\Browser\2.0\coIEPlg.dll
O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - D:\PROGRA~1\COMMON~1\SYMANT~1\IDS\IPSBHO.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - D:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O3 - Toolbar: Afficher Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - D:\Program Files\Common Files\Symantec Shared\coShared\Browser\2.0\CoIEPlg.dll
O4 - HKLM\..\Run: [Norton Save and Restore] "D:\Program Files\Norton Save and Restore\Agent\NSRTray.exe"
O4 - HKLM\..\Run: [osCheck] "D:\Program Files\Norton Internet Security\osCheck.exe"
O4 - HKLM\..\Run: [ccApp] D:\Program Files\Common Files\Symantec Shared\ccApp.exe
O4 - HKCU\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Steam] "d:\program files\valve\steam\steam.exe" -silent
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RESEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://D:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - D:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - D:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: Aeuaii eeeiia HP - {58ECB495-38F0-49cb-A538-10282ABF65E7} - D:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll
O9 - Extra button: ?anoe?aiiue auai? HP - {700259D7-1666-479a-93B1-3250410481E8} - D:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - D:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - D:\WINDOWS\bdoscandel.exe
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - D:\WINDOWS\bdoscandel.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - D:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - D:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Object) - http://a1540.g.akamai.net/7/1540/52/20070711/qtinstall.info.apple.com/qtactivex/qtplugin.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} - http://www.bitdefender.fr/scan_fr/scan8/oscan8.cab
O16 - DPF: {69EF49E5-FE46-4B92-B5FA-2193AB7A6B8A} - http://www.acclaim.com/cabs/acclaim_v4.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - D:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft - D:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: Autodesk Licensing Service - Autodesk - D:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - D:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - D:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - D:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - D:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Symantec Corporation - D:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: COM Host (comHost) - Symantec Corporation - D:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - D:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom SA - D:\PROGRA~1\COMMON~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - D:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: LiveUpdate - Symantec Corporation - D:\Program Files\Symantec\LiveUpdate\LuComServer_3_4.EXE
O23 - Service: LiveUpdate Notice - Symantec Corporation - D:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: NBService - Nero AG - D:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - D:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: Norton Save and Restore - Symantec Corporation - D:\Program Files\Norton Save and Restore\Agent\VProSvc.exe
O23 - Service: Orange Controle Parental (OPTENET_FILTER) - Orange - D:\Program Files\Controle Parental\bin\optproxy.exe
O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - D:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: Symantec Core LC - Unknown owner - D:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
--
End of file - 9307 bytes
-- Files created between 2008-07-23 and 2008-08-23 -----------------------------
2008-08-23 09:04:04 0 d-------- D:\WINDOWS\LastGood
-- Find3M Report ---------------------------------------------------------------
2008-08-23 09:17:45 0 d-------- D:\Program Files\Common Files\Symantec Shared
2008-07-22 15:20:08 0 d-------- D:\Documents and Settings\Dima.SERGE\Application Data\Real
2008-07-22 14:00:11 0 d-------- D:\Program Files\AMD
2008-07-22 13:14:15 0 d-------- D:\Program Files\Lavalys
2008-07-22 11:52:17 0 d-------- D:\Program Files\Panda Security
2008-07-22 11:51:58 0 d-------- D:\Program Files\Navilog1
2008-07-22 08:12:01 0 d-------- D:\Program Files\CCleaner
2008-07-21 17:04:53 0 d-------- D:\Program Files\Nouveau dossier (3)
2008-07-21 17:04:44 0 d-------- D:\Program Files\SBox FreeWare
2008-07-21 17:04:44 0 d-------- D:\Program Files\Renex3
2008-07-21 17:04:44 0 d-------- D:\Program Files\PDFStudio
2008-07-21 17:04:42 0 d-------- D:\Program Files\Palm
2008-07-21 17:04:40 0 d-------- D:\Program Files\AutoCAD 2008
2008-07-21 17:04:39 0 d-------- D:\Program Files\FlashGet
2008-07-21 16:32:17 0 d-------- D:\Program Files\Microsoft Games
2008-07-21 15:14:52 0 d-------- D:\Program Files\Common Files\Wise Installation Wizard
2008-07-21 15:14:22 0 d-------- D:\Program Files\HyCam2
2008-07-21 15:10:00 0 d--h----- D:\Program Files\InstallShield Installation Information
2008-07-21 15:02:18 0 d-------- D:\Documents and Settings\Dima.SERGE\Application Data\Notepad++
2008-07-21 14:54:20 0 d-------- D:\Documents and Settings\Dima.SERGE\Application Data\MSNInstaller
2008-07-21 14:53:32 0 d-------- D:\Program Files\Common Files
2008-07-21 14:51:16 0 d-------- D:\Program Files\Labtec
2008-07-05 14:27:51 35712 --a------ D:\WINDOWS\DIIUnin.dat
2008-07-05 14:09:01 21840 --a-----t D:\WINDOWS\system32\SIntfNT.dll
2008-07-05 14:09:01 17212 --a-----t D:\WINDOWS\system32\SIntf32.dll
2008-07-05 14:09:01 12067 --a-----t D:\WINDOWS\system32\SIntf16.dll
2008-07-05 13:56:06 2829 --a------ D:\WINDOWS\DIIUnin.pif
2008-07-05 13:56:06 102400 --a------ D:\WINDOWS\DIIUnin.exe <Not Verified; Blizzard Entertainment; Desinstallation de Diablo II>
2008-07-04 09:20:55 0 d-------- D:\Program Files\Freelancer Mod Manager
2008-07-02 11:05:46 0 d-------- D:\Documents and Settings\Dima.SERGE\Application Data\HPAppData
2008-06-26 14:36:32 0 d-------- D:\Program Files\Common Files\Real
2008-06-26 14:36:04 0 d-------- D:\Program Files\Common Files\Logitech
2008-06-22 08:08:06 5552 --a------ D:\WINDOWS\unins000.dat
2008-06-22 08:06:30 691545 --a------ D:\WINDOWS\unins000.exe
2008-06-19 13:36:22 56 --ah----- D:\WINDOWS\system32\ezsidmv.dat
-- Registry Dump ---------------------------------------------------------------
*Note* empty entries & legit default entries are not shown
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{0347C33E-8762-4905-BF09-768834316C61}]
02/03/2007 16:52 1298024 -ra------ D:\Program Files\HP\Smart Web Printing\hpswp_printenhancer.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{053F9267-DC04-4294-A72C-58F732D338C0}]
02/03/2007 16:52 177768 -ra------ D:\Program Files\HP\Smart Web Printing\hpswp_framework.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}]
24/08/2007 21:51 316784 --a------ D:\Program Files\Common Files\Symantec Shared\coShared\Browser\2.0\coIEPlg.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}]
31/01/2008 09:18 116088 --a------ D:\PROGRA~1\COMMON~1\SYMANT~1\IDS\IPSBHO.dll
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser]
"{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA}"= D:\Program Files\Common Files\Symantec Shared\coShared\Browser\2.0\CoIEPlg.dll [24/08/2007 21:51 316784]
[-HKEY_CLASSES_ROOT\CLSID\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA}]
[HKEY_CLASSES_ROOT\CoIEPlg.CoToolbar.1]
[HKEY_CLASSES_ROOT\CoIEPlg.CoToolbar]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Norton Save and Restore"="D:\Program Files\Norton Save and Restore\Agent\NSRTray.exe" [03/03/2006 20:36]
"osCheck"="D:\Program Files\Norton Internet Security\osCheck.exe" [24/08/2007 22:53]
"ccApp"="D:\Program Files\Common Files\Symantec Shared\ccApp.exe" [31/01/2008 14:15]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="D:\WINDOWS\system32\ctfmon.exe" [04/08/2004 14:00]
"Steam"="d:\program files\valve\steam\steam.exe" [28/03/2008 17:06]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aawservice]
@="Service"
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
HPZ12 Pml Driver HPZ12 Net Driver HPZ12
hpdevmgmt hpqcxs08
*Newly Created Service* - COMHOST
*Newly Created Service* - ERASERUTILDRV10821
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{2bf41070-b2b1-21d1-b5c1-0305f4055515}]
C:\windows\svcr.exe
End of Deckard's System Scanner: finished at 2008-08-23 09:33:53 ------------
Rapport DiegHelp :
atchme 0.3.1351 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-08-23 10:11:55
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden services & system hive ...
scanning hidden registry entries ...
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Adobe\xae Photoshop\xae Album Edition D9couverte 3.2]
"SlowInfoCache"=hex:28,02,00,00,01,00,00,00,00,10,07,01,00,00,00,00,64,bc,2b,d7,53,..
"Changed"=dword:00000000
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\3.2\Apps\"="1"
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\3.2\"="1"
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\"="1"
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\3.2\Shared_Assets\locales\"="1"
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\3.2\Shared_Assets\"="1"
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\3.2\Shared_Assets\locales\fr_fr\"=""
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\3.2\Apps\Legal\"=""
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\3.2\Shared_Assets\caticons\"=""
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\3.2\Shared_Assets\locales\fr_fr\bitmaps\"=""
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\3.2\Shared_Assets\layouts\"=""
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\3.2\Apps\AMT\"=""
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\3.2\Apps\tools\"=""
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\3.2\Shared_Assets\locales\fr_fr\upsell\"=""
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\3.2\Shared_Assets\locales\fr_fr\upsell\images\"=""
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\3.2\Shared_Assets\database\odbc\"=""
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\3.2\Shared_Assets\database\"=""
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\3.2\Shared_Assets\combined_bitmaps\"=""
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\3.2\Shared_Assets\combined_bitmaps\authoring_wiz\"=""
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\3.2\Shared_Assets\combined_bitmaps\custom_window\"=""
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\3.2\Shared_Assets\combined_bitmaps\main_window\"=""
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\3.2\Shared_Assets\combined_bitmaps\tag_palette\"=""
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\3.2\Shared_Assets\combined_bitmaps\widgets\"=""
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\3.2\Shared_Assets\combined_bitmaps\workflow_icons\"=""
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\3.2\Apps\moxplugins\"=""
"D:\Program Files\Microsoft Office\Templates\Mod8les de conception 97\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Modules externes\Filtres\Styles d'9clairage\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Modules externes\Images de r9f9rence\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Bichromie\3 encres\Gris\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Bichromie\3 encres\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Bichromie\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Bichromie\3 encres\PANTONE(R)\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Bichromie\3 encres\Primaires\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Bichromie\4 encres\Gris\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Bichromie\4 encres\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Bichromie\4 encres\PANTONE(R)\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Bichromie\4 encres\Primaires\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Bichromie\Bichromie\Gris-Noir\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Bichromie\Bichromie\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Bichromie\Bichromie\PANTONE(R)\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Bichromie\Bichromie\Primaires\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Catalogues de couleurs\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Contours\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Couleurs optimis9es\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Courbes\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Dispositions\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\D9grad9s\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Espaces de travail\1-Espaces de travail standard\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Espaces de travail\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Espaces de travail\2-Espaces de travail bas9s sur les t2ches\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Formes\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Formes personnalis9es\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Bordure pointill9e - Blanc-noir\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Bordure pointill9e - Blanc-noir\images\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Bordure pointill9e - Noir-blanc\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Bordure pointill9e - Noir-blanc\images\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Cadre centr9 1 - Base\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Cadre centr9 1 - Base\images\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Cadre centr9 1 - Infos seules\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Cadre centr9 1 - Infos seules\images\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Cadre centr9 1 - Retour\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Cadre centr9 1 - Retour\images\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Cadre centr9 2 - Retour\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Cadre centr9 2 - Retour\images\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Flash - Galerie 1\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Flash - Galerie 2\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Horizontale - Retour\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Horizontale - Retour\images\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Horizontale grise\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Horizontale grise\images\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Horizontale neutre\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Horizontale neutre\images\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Horizontale 0 diaporama\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Horizontale 0 diaporama\images\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Simple\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Simple - Tableau de vignettes\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Simple - Tableau de vignettes\images\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Simple - Vignettes horizontales\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Simple - Vignettes horizontales\images\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Simple - Vignettes verticales\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Simple - Vignettes verticales\images\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Tableau - Minimal\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Tableau - Minimal\images\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Tableau 1\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Tableau 1\images\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Tableau 2\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Tableau 2\images\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Vignettes grises\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Galerie Web Photo\Vignettes grises\images\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Motifs\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Motifs\Motifs PostScript\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\M9langeur de couches\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Noir et blanc\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Nuanciers\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Outils\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Param8tres de sortie optimis9s\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Param8tres optimis9s\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Personnalisation de menus\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Raccourcis clavier\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Scripts\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Scripts\Adapter l'image\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Scripts\Changer mode conditionnel\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Scripts\Chargement des fichiers dans la pile\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Scripts\Chargement DICOM\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Scripts\Comp. de calques en fichiers\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Scripts\Comp. de calques en GWP\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Scripts\Comp. de calques en PDF\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Scripts\Event Scripts Only\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Scripts\Event Scripts Only\Afficher le fabricant de l'appareil\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Scripts\Event Scripts Only\Avertir si RVB\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Scripts\Event Scripts Only\Bienvenue\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Scripts\Event Scripts Only\Enregistrer JPEG suppl9mentaire\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Scripts\Event Scripts Only\Mettre 0 jour les informations\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Scripts\Event Scripts Only\Redimensionner\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Scripts\Exporter les calques en fichiers\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Scripts\Fusion HDR\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Scripts\Gestionnaire d'9v9nements de script\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Scripts\Photomerge\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Scripts\Processeur d'images\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Scripts\Stack Scripts Only\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Scripts\Stack Scripts Only\CreateImageStack\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Scripts\Stack Scripts Only\LatteUI\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Scripts\Statistiques\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Scripts Photoshop\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Styles\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Textures\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Param8tres pr9d9finis\Zoomify\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Exemples\Fusion HDR\R9sultat\"=""
"C:\Program Files\Adobe\Adobe Photoshop CS3\Exemples\Photomerge\R9sultat\"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\3.2\Apps\AdobeUpdater.dll"=dword:00000001
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\3.2\Apps\AMT\AUMProduct.cer"=dword:00000001
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\3.2\Apps\Discwriter.dll"=dword:00000001
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\3.2\Apps\tools\backup.pln"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\StillImage\Registered Applications]
"Photoshop Album Edition D9couverte 3.2"="D:\Program Files\Adobe\Photoshop Album Edition Dйcouverte\3.2\Apps\psaproxy.exe /StiDevice:%1 /StiEvent:%2"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Adobe\xae Photoshop\xae Album Edition D9couverte 3.2]
"DisplayName"="Adobe\xae Photoshop\xae Album Edition Dйcouverte 3.2"
"URLUpdateInfo"="https://www.adobe.com/products/photoshop-elements.html"
"URLInfoAbout"="https://www.adobe.com/fr/"
"UninstallString"=str(2):"MsiExec.exe /I{A654A805-41D9-40C7-AA46-4AF04F044D61}"
"Size"=""
"Readme"=str(2):"D:\Program Files\Adobe\Photoshop Album Starter Edition\3.2\readme.txt"
"Publisher"="https://www.adobe.com/fr/"
"InstallDate"=""
"HelpTelephone"=""
"HelpLink"=""
"DisplayVersion"="3.2.0"
"Contact"=""
"Comments"=""
"AuthorizedCDFPrefix"=""
"RegEulaAccepted"="0"
"PSASEVersion"="3.2.0"
"SEOEMName"=""
"PSASEVersionUpdate"="0"
"DisplayIcon"="D:\Program Files\Adobe\Photoshop Album Edition Dйcouverte\3.2\Apps\Photoshop Album Starter Edition.exe,-111"
"InstallLocation"="D:\Program Files\Adobe\Photoshop Album Edition Dйcouverte\"
"InstallPath"="D:\Program Files\Adobe\Photoshop Album Edition Dйcouverte\3.2\Apps"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Prefetcher]
"TracesProcessed"=dword:0000057f
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\ContrDle Parental]
"Order"=hex:08,00,00,00,02,00,00,00,aa,02,00,00,01,00,00,00,05,00,00,00,86,..
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\Nero 7 Premium\donn9es]
"Order"=hex:08,00,00,00,02,00,00,00,9c,01,00,00,01,00,00,00,03,00,00,00,84,..
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\Nero 7 Premium\Photo et vid9o]
"Order"=hex:08,00,00,00,02,00,00,00,26,02,00,00,01,00,00,00,04,00,00,00,86,..
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\Nero 7 Premium\tiquettes]
"Order"=hex:08,00,00,00,02,00,00,00,9a,00,00,00,01,00,00,00,01,00,00,00,8e,..
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache]
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\3.2\Apps\ComponentLauncher.exe"="Adobe Photoshop Album Starter Edition 3.2 (Viewer)"
"D:\Program Files\Adobe\Photoshop Album Edition D9couverte\3.2\Apps\Photoshop Album Starter Edition.exe"="Adobe Photoshop Album Starter Edition 3.2"
"D:\Program Files\Securitoo\ContrDle Parental\securitoo_controle_parental_orange_r7.exe"="InstallShield (R) Setup Launcher"
"D:\Documents and Settings\Dima.SERGE\Desktop\D9sinfection du pc\comboscan.exe"="comboscan"
"D:\Documents and Settings\Dima.SERGE\Desktop\D9sinfection du pc\DiagHelp\go.cmd"="go"
"D:\Documents and Settings\Dima.SERGE\Desktop\D9sinfection du pc\DiagHelp\catchme.exe"="catchme"
scanning hidden files ...
scan completed successfully
hidden services: 0
hidden files: 0
Je dois preciser que mon Norton 2008 na rien detecte et que je nai pas envie de faire un scan panda ou bit defender qui dure ~24 h (deja essayer et ne dites pas non jai 1,7 million de fichier :p)
Voila dites moi si il ya quelque chose danormal et merci pour votres futures aides ))
@+
--
Comment savoire si un des tes copains est accro à WoW :
-Si t'a copine le drague, il te dit "Eh !! Reprends l'aggro*.
(*Aggro : Etre pousuivis par un PNJ ou être attaquer par celui-ci, reprendre l'aggro veut dire attirer l'attention sur sois)
Configuration: Windows XP Internet Explorer 7.0
A voir également:
- Infectee - Supprime et plusieurs rapports
- Recuperer message whatsapp supprimé - Guide
- Voir message supprimé whatsapp - Guide
- Comment savoir si une clé usb est infectée - Guide
- Comment supprimer un fichier qui refuse d'être supprimé - Guide
- Retrouver un ami supprimé sur snapchat ✓ - Forum Snapchat
2 réponses
slt
rien de spécial dans les rapports
norton c'est pas terrible...
pour ad aware il est dépassé surtout qu'il exite la version 2008 sortie il y a plusieurs mois
mets malwarebyte antimalware a la place de ad aware ou en complément
https://www.malekal.com/tutoriel-malwarebyte-anti-malware/
quand au scan en ligne si tu as encore des soucis c'est ce qu'il faudra faire ....
rien de spécial dans les rapports
norton c'est pas terrible...
pour ad aware il est dépassé surtout qu'il exite la version 2008 sortie il y a plusieurs mois
mets malwarebyte antimalware a la place de ad aware ou en complément
https://www.malekal.com/tutoriel-malwarebyte-anti-malware/
quand au scan en ligne si tu as encore des soucis c'est ce qu'il faudra faire ....