Probleme config du a un virus
christ19200
Messages postés
125
Date d'inscription
Statut
Membre
Dernière intervention
-
christ19200 Messages postés 125 Date d'inscription Statut Membre Dernière intervention -
christ19200 Messages postés 125 Date d'inscription Statut Membre Dernière intervention -
Bonjour,depuis quelque temps pas mal de probleme j ai chopé un virus pas moyen de m en debarraser probleme de config de vitesse de connection voila un rapport.Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 12:47:48, on 10/09/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16705)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\WINDOWS\arservice.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\drivers\CDAC11BA.EXE
C:\WINDOWS\system32\CTsvcCDA.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
c:\PROGRA~1\FICHIE~1\mcafee\mna\mcnasvc.exe
c:\PROGRA~1\FICHIE~1\mcafee\mcproxy\mcproxy.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
C:\Program Files\MioNet\MioNetManager.exe
C:\Program Files\McAfee\MPF\MPFSrv.exe
C:\Program Files\McAfee\MSK\MskSrver.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\MioNet\jvm\bin\MioNet.exe
C:\Program Files\Fichiers communs\New Boundary\PrismXL\PRISMXL.SYS
C:\Program Files\SiteAdvisor\6261\SAService.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\ehome\mcrdsvc.exe
C:\WINDOWS\system32\SearchIndexer.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\System32\svchost.exe
c:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
C:\Program Files\Unlocker\UnlockerAssistant.exe
C:\Program Files\Orange\Systray\SystrayApp.exe
C:\WINDOWS\VM_STI.EXE
C:\Program Files\SweetIM\Messenger\SweetIM.exe
C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe
C:\Program Files\Creative\Sync Manager Unicode\CTSyncU.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\BigFix\bigfix.exe
C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\AlertModule\0\AlertModule.exe
C:\Program Files\Philips\Philips SPC210NC Webcam\TrayMin210.exe
C:\Program Files\Windows Desktop Search\WindowsSearch.exe
C:\Documents and Settings\sudrie\Menu Démarrer\Programmes\Démarrage\Msecal.exe
C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
C:\Program Files\Sun\StarOffice 8\program\soffice.exe
C:\Program Files\Sun\StarOffice 8\program\soffice.BIN
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
C:\Program Files\Orange\Launcher\Launcher.exe
C:\Program Files\Orange\connectivity\connectivitymanager.exe
C:\Program Files\Orange\connectivity\CoreCom\CoreCom.exe
C:\Program Files\Orange\connectivity\CoreCom\OraConfigRecover.exe
C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTCOMModule\0\FTCOMModule.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\SiteAdvisor\6261\SiteAdv.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = SOS Connexion - Le web en toute simplicité
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\Program Files\Orange\SearchURLHook\SearchPageURL.dll
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: (no name) - {089FD14D-132B-48FC-8861-0048AE113215} - C:\Program Files\SiteAdvisor\6261\SiteAdv.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: McAfee Phishing Filter - {377C180E-6F0E-4D4C-980F-F45BD3D40CF4} - c:\PROGRA~1\mcafee\msk\mcapbho.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\McAfee\VirusScan\scriptsn.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\4.1.509.6972\swg.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O2 - BHO: CBrowserHelperObject Object - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - c:\windows\system32\BAE.dll
O3 - Toolbar: McAfee SiteAdvisor - {0BF43445-2F28-4351-9252-17FE6E806AA0} - C:\Program Files\SiteAdvisor\6261\SiteAdv.dll
O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [UnlockerAssistant] "C:\Program Files\Unlocker\UnlockerAssistant.exe"
O4 - HKLM\..\Run: [SystrayORAHSS] "C:\Program Files\Orange\Systray\SystrayApp.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [BigDogPath] C:\WINDOWS\VM_STI.EXE Philips SPC210NC Webcam
O4 - HKLM\..\Run: [Mode Load Mpeg Less] C:\Documents and Settings\All Users\Application Data\two setup mode load\find hole.exe
O4 - HKLM\..\Run: [SweetIM] C:\Program Files\SweetIM\Messenger\SweetIM.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [CTSyncU.exe] "C:\Program Files\Creative\Sync Manager Unicode\CTSyncU.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [pokeonline] C:\DOCUME~1\sudrie\APPLIC~1\GLUEFI~1\Dvd mags.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\RunOnce: [NeroHomeFirstStart] C:\Program Files\Fichiers communs\Ahead\Lib\NMFirstStart.exe (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-20\..\RunOnce: [NeroHomeFirstStart] C:\Program Files\Fichiers communs\Ahead\Lib\NMFirstStart.exe (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: Msecal.exe
O4 - Startup: StarOffice 8.lnk = C:\Program Files\Sun\StarOffice 8\program\quickstart.exe
O4 - Global Startup: BigFix.lnk = C:\Program Files\BigFix\bigfix.exe
O4 - Global Startup: TrayMin210.exe.lnk = C:\Program Files\Philips\Philips SPC210NC Webcam\TrayMin210.exe
O4 - Global Startup: Windows Search.lnk = C:\Program Files\Windows Desktop Search\WindowsSearch.exe
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: Add to Windows &Live Favorites - https://onedrive.live.com/?id=favorites
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Translate with &Babylon - res://C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll/Translate.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O15 - Trusted Zone: https://www.orange.fr/portail
O16 - DPF: {7FC1B346-83E6-4774-8D20-1A6B09B0E737} (Windows Live Photo Upload Control) - http://cid-1330b6ced0ff2fa5.spaces.live.com/PhotoUpload/MsnPUpld.cab
O16 - DPF: {D0C0F75C-683A-4390-A791-1ACFD5599AB8} (Oberon Flash Game Host) - http://jeuxmultijoueurs.orange.fr/Gameshell/GameHost/1.0/OberonGameHost.cab
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\system32\drivers\CDAC11BA.EXE
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.exe
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom SA - C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - c:\PROGRA~1\FICHIE~1\mcafee\mna\mcnasvc.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - c:\PROGRA~1\FICHIE~1\mcafee\mcproxy\mcproxy.exe
O23 - Service: McAfee Real-time Scanner (McShield) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
O23 - Service: McAfee SystemGuards (McSysmon) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
O23 - Service: MioNet Service (MioNet) - Unknown owner - C:\Program Files\MioNet\MioNetManager.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee, Inc. - C:\Program Files\McAfee\MPF\MPFSrv.exe
O23 - Service: McAfee Anti-Spam Service (MSK80Service) - McAfee, Inc. - C:\Program Files\McAfee\MSK\MskSrver.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Orange Contrôle Parental (OPTENET_FILTER) - Orange - C:\Program Files\Controle Parental\bin\optproxy.exe
O23 - Service: PrismXL - New Boundary Technologies, Inc. - C:\Program Files\Fichiers communs\New Boundary\PrismXL\PRISMXL.SYS
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Service SiteAdvisor (SiteAdvisor Service) - Unknown owner - C:\Program Files\SiteAdvisor\6261\SAService.exe
Scan saved at 12:47:48, on 10/09/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16705)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\WINDOWS\arservice.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\drivers\CDAC11BA.EXE
C:\WINDOWS\system32\CTsvcCDA.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
c:\PROGRA~1\FICHIE~1\mcafee\mna\mcnasvc.exe
c:\PROGRA~1\FICHIE~1\mcafee\mcproxy\mcproxy.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
C:\Program Files\MioNet\MioNetManager.exe
C:\Program Files\McAfee\MPF\MPFSrv.exe
C:\Program Files\McAfee\MSK\MskSrver.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\MioNet\jvm\bin\MioNet.exe
C:\Program Files\Fichiers communs\New Boundary\PrismXL\PRISMXL.SYS
C:\Program Files\SiteAdvisor\6261\SAService.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\ehome\mcrdsvc.exe
C:\WINDOWS\system32\SearchIndexer.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\System32\svchost.exe
c:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
C:\Program Files\Unlocker\UnlockerAssistant.exe
C:\Program Files\Orange\Systray\SystrayApp.exe
C:\WINDOWS\VM_STI.EXE
C:\Program Files\SweetIM\Messenger\SweetIM.exe
C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe
C:\Program Files\Creative\Sync Manager Unicode\CTSyncU.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\BigFix\bigfix.exe
C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\AlertModule\0\AlertModule.exe
C:\Program Files\Philips\Philips SPC210NC Webcam\TrayMin210.exe
C:\Program Files\Windows Desktop Search\WindowsSearch.exe
C:\Documents and Settings\sudrie\Menu Démarrer\Programmes\Démarrage\Msecal.exe
C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
C:\Program Files\Sun\StarOffice 8\program\soffice.exe
C:\Program Files\Sun\StarOffice 8\program\soffice.BIN
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
C:\Program Files\Orange\Launcher\Launcher.exe
C:\Program Files\Orange\connectivity\connectivitymanager.exe
C:\Program Files\Orange\connectivity\CoreCom\CoreCom.exe
C:\Program Files\Orange\connectivity\CoreCom\OraConfigRecover.exe
C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTCOMModule\0\FTCOMModule.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\SiteAdvisor\6261\SiteAdv.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = SOS Connexion - Le web en toute simplicité
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\Program Files\Orange\SearchURLHook\SearchPageURL.dll
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: (no name) - {089FD14D-132B-48FC-8861-0048AE113215} - C:\Program Files\SiteAdvisor\6261\SiteAdv.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: McAfee Phishing Filter - {377C180E-6F0E-4D4C-980F-F45BD3D40CF4} - c:\PROGRA~1\mcafee\msk\mcapbho.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\McAfee\VirusScan\scriptsn.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\4.1.509.6972\swg.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O2 - BHO: CBrowserHelperObject Object - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - c:\windows\system32\BAE.dll
O3 - Toolbar: McAfee SiteAdvisor - {0BF43445-2F28-4351-9252-17FE6E806AA0} - C:\Program Files\SiteAdvisor\6261\SiteAdv.dll
O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [UnlockerAssistant] "C:\Program Files\Unlocker\UnlockerAssistant.exe"
O4 - HKLM\..\Run: [SystrayORAHSS] "C:\Program Files\Orange\Systray\SystrayApp.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [BigDogPath] C:\WINDOWS\VM_STI.EXE Philips SPC210NC Webcam
O4 - HKLM\..\Run: [Mode Load Mpeg Less] C:\Documents and Settings\All Users\Application Data\two setup mode load\find hole.exe
O4 - HKLM\..\Run: [SweetIM] C:\Program Files\SweetIM\Messenger\SweetIM.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [CTSyncU.exe] "C:\Program Files\Creative\Sync Manager Unicode\CTSyncU.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [pokeonline] C:\DOCUME~1\sudrie\APPLIC~1\GLUEFI~1\Dvd mags.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\RunOnce: [NeroHomeFirstStart] C:\Program Files\Fichiers communs\Ahead\Lib\NMFirstStart.exe (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-20\..\RunOnce: [NeroHomeFirstStart] C:\Program Files\Fichiers communs\Ahead\Lib\NMFirstStart.exe (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: Msecal.exe
O4 - Startup: StarOffice 8.lnk = C:\Program Files\Sun\StarOffice 8\program\quickstart.exe
O4 - Global Startup: BigFix.lnk = C:\Program Files\BigFix\bigfix.exe
O4 - Global Startup: TrayMin210.exe.lnk = C:\Program Files\Philips\Philips SPC210NC Webcam\TrayMin210.exe
O4 - Global Startup: Windows Search.lnk = C:\Program Files\Windows Desktop Search\WindowsSearch.exe
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: Add to Windows &Live Favorites - https://onedrive.live.com/?id=favorites
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Translate with &Babylon - res://C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll/Translate.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O15 - Trusted Zone: https://www.orange.fr/portail
O16 - DPF: {7FC1B346-83E6-4774-8D20-1A6B09B0E737} (Windows Live Photo Upload Control) - http://cid-1330b6ced0ff2fa5.spaces.live.com/PhotoUpload/MsnPUpld.cab
O16 - DPF: {D0C0F75C-683A-4390-A791-1ACFD5599AB8} (Oberon Flash Game Host) - http://jeuxmultijoueurs.orange.fr/Gameshell/GameHost/1.0/OberonGameHost.cab
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\system32\drivers\CDAC11BA.EXE
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.exe
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom SA - C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - c:\PROGRA~1\FICHIE~1\mcafee\mna\mcnasvc.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - c:\PROGRA~1\FICHIE~1\mcafee\mcproxy\mcproxy.exe
O23 - Service: McAfee Real-time Scanner (McShield) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
O23 - Service: McAfee SystemGuards (McSysmon) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
O23 - Service: MioNet Service (MioNet) - Unknown owner - C:\Program Files\MioNet\MioNetManager.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee, Inc. - C:\Program Files\McAfee\MPF\MPFSrv.exe
O23 - Service: McAfee Anti-Spam Service (MSK80Service) - McAfee, Inc. - C:\Program Files\McAfee\MSK\MskSrver.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Orange Contrôle Parental (OPTENET_FILTER) - Orange - C:\Program Files\Controle Parental\bin\optproxy.exe
O23 - Service: PrismXL - New Boundary Technologies, Inc. - C:\Program Files\Fichiers communs\New Boundary\PrismXL\PRISMXL.SYS
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Service SiteAdvisor (SiteAdvisor Service) - Unknown owner - C:\Program Files\SiteAdvisor\6261\SAService.exe
A voir également:
- Probleme config du a un virus
- Ms config - Guide
- Connaitre sa config pc - Guide
- Virus mcafee - Accueil - Piratage
- Virus facebook demande d'amis - Accueil - Facebook
- Easywifi config - Forum WiFi
79 réponses
excuse je rame je sais suis nul,
[b]SDFix: Version 1.223 [/b]
Run by sudrie on 10/09/2008 at 16:14
Microsoft Windows XP [version 5.1.2600]
Running From: C:\SDFix
[b]Checking Services [/b]:
Restoring Default Security Values
Restoring Default Hosts File
Rebooting
[b]Checking Files [/b]:
Trojan Files Found:
C:\WINDOWS\update.exe - Deleted
Removing Temp Files
[b]ADS Check [/b]:
[b]Final Check [/b]:
catchme 0.3.1361.2 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-09-10 16:19:15
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden services & system hive ...
scanning hidden registry entries ...
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL"
"DeviceNotSelectedTimeout"="15"
"GDIProcessHandleQuota"=dword:00002710
"Spooler"="yes"
"swapdisk"=""
"TransmissionRetryTimeout"="90"
"USERProcessHandleQuota"=dword:00002710
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden services: 0
hidden files: 0
[b]Remaining Services [/b]:
Authorized Application Key Export:
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\Orange\\Connectivity\\ConnectivityManager.exe"="C:\\Program Files\\Orange\\Connectivity\\ConnectivityManager.exe:*:enabled:CSS"
"C:\\Program Files\\GameSpy Arcade\\Aphex.exe"="C:\\Program Files\\GameSpy Arcade\\Aphex.exe:*:Enabled:GameSpy Arcade"
"C:\\Program Files\\Atari\\Deer Hunter 2005 Demo\\DH2005Demo.exe"="C:\\Program Files\\Atari\\Deer Hunter 2005 Demo\\DH2005Demo.exe:*:Disabled:DH2005Demo"
"C:\\Program Files\\Artefacts Studio\\PetanqueDemo\\bin\\releaseDemo\\Petanque.exe"="C:\\Program Files\\Artefacts Studio\\PetanqueDemo\\bin\\releaseDemo\\Petanque.exe:*:Enabled:Petanque"
"C:\\Program Files\\LimeWire\\LimeWire.exe"="C:\\Program Files\\LimeWire\\LimeWire.exe:*:Enabled:LimeWire"
"C:\\Program Files\\BitDownload\\BitDownload.exe"="C:\\Program Files\\BitDownload\\BitDownload.exe:*:Enabled:BitDownload"
"C:\\Program Files\\Wyzo\\wyzo.exe"="C:\\Program Files\\Wyzo\\wyzo.exe:*:Enabled:Wyzo"
"C:\\Program Files\\Skype\\Phone\\Skype.exe"="C:\\Program Files\\Skype\\Phone\\Skype.exe:*:Enabled:Skype. Take a deep breath "
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"="C:\\Program Files\\Windows Live\\Messenger\\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"
"C:\\Program Files\\Nokia\\Nokia Software Updater\\nsu_ui_client.exe"="C:\\Program Files\\Nokia\\Nokia Software Updater\\nsu_ui_client.exe:*:Enabled:Nokia Software Updater"
"C:\\Program Files\\Fichiers communs\\Nokia\\Service Layer\\A\\nsl_host_process.exe"="C:\\Program Files\\Fichiers communs\\Nokia\\Service Layer\\A\\nsl_host_process.exe:*:Enabled:Nokia Service Layer Host Process "
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"="C:\\Program Files\\Windows Live\\Messenger\\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"
[b]Remaining Files [/b]:
File Backups: - C:\SDFix\backups\backups.zip
[b]Files with Hidden Attributes [/b]:
Fri 29 Aug 2008 6,108,728 A..H. --- "C:\Program Files\Picasa2\setup.exe"
Mon 7 Jul 2008 1,429,840 A.SHR --- "C:\Program Files\Spybot - Search & Destroy\SDUpdate.exe"
Mon 7 Jul 2008 4,891,472 A.SHR --- "C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe"
Mon 18 Aug 2008 1,832,272 A.SHR --- "C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe"
Mon 14 Apr 2008 55,629 ...H. --- "C:\WINDOWS\CONFIG\Update.exe"
Wed 13 Aug 2008 4,348 A.SH. --- "C:\Documents and Settings\All Users\DRM\DRMv1.bak"
Wed 30 Jul 2008 20,487 A.SHR --- "C:\Program Files\McAfee\MQC\MRU.bak"
Wed 30 Jul 2008 265 A.SHR --- "C:\Program Files\McAfee\MQC\qcconf.bak"
Wed 22 Mar 2006 4,348 A..H. --- "C:\Program Files\Windows Media Player\Sauvegarde de la licence\drmv1key.bak"
Fri 20 Oct 2006 401 A..H. --- "C:\Program Files\Windows Media Player\Sauvegarde de la licence\drmv1lic.bak"
Tue 14 Mar 2006 312 A.SH. --- "C:\Program Files\Windows Media Player\Sauvegarde de la licence\drmv2key.bak"
Thu 7 Aug 2008 0 A.SH. --- "C:\Documents and Settings\All Users\DRM\Cache\Indiv01.tmp"
Mon 14 Apr 2008 55,629 ...H. --- "C:\Documents and Settings\sudrie\Application Data\CONFIG\Update.exe"
Thu 31 Jul 2008 0 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\f7db876e78b88fd8276fd7d29cb7e4eb\BIT9.tmp"
Fri 8 Aug 2008 885 ...HR --- "C:\Documents and Settings\sudrie\Application Data\SecuROM\UserData\securom_v7_01.bak"
Wed 10 Sep 2008 5,686 A.SH. --- "C:\Documents and Settings\All Users\Documents\TV enregistr‚e\TempRec\TempSBE\SBE1.tmp"
Wed 10 Sep 2008 5,940 A.SH. --- "C:\Documents and Settings\All Users\Documents\TV enregistr‚e\TempRec\TempSBE\SBE2.tmp"
[b]Finished![/b]
[b]SDFix: Version 1.223 [/b]
Run by sudrie on 10/09/2008 at 16:14
Microsoft Windows XP [version 5.1.2600]
Running From: C:\SDFix
[b]Checking Services [/b]:
Restoring Default Security Values
Restoring Default Hosts File
Rebooting
[b]Checking Files [/b]:
Trojan Files Found:
C:\WINDOWS\update.exe - Deleted
Removing Temp Files
[b]ADS Check [/b]:
[b]Final Check [/b]:
catchme 0.3.1361.2 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-09-10 16:19:15
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden services & system hive ...
scanning hidden registry entries ...
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL"
"DeviceNotSelectedTimeout"="15"
"GDIProcessHandleQuota"=dword:00002710
"Spooler"="yes"
"swapdisk"=""
"TransmissionRetryTimeout"="90"
"USERProcessHandleQuota"=dword:00002710
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden services: 0
hidden files: 0
[b]Remaining Services [/b]:
Authorized Application Key Export:
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\Orange\\Connectivity\\ConnectivityManager.exe"="C:\\Program Files\\Orange\\Connectivity\\ConnectivityManager.exe:*:enabled:CSS"
"C:\\Program Files\\GameSpy Arcade\\Aphex.exe"="C:\\Program Files\\GameSpy Arcade\\Aphex.exe:*:Enabled:GameSpy Arcade"
"C:\\Program Files\\Atari\\Deer Hunter 2005 Demo\\DH2005Demo.exe"="C:\\Program Files\\Atari\\Deer Hunter 2005 Demo\\DH2005Demo.exe:*:Disabled:DH2005Demo"
"C:\\Program Files\\Artefacts Studio\\PetanqueDemo\\bin\\releaseDemo\\Petanque.exe"="C:\\Program Files\\Artefacts Studio\\PetanqueDemo\\bin\\releaseDemo\\Petanque.exe:*:Enabled:Petanque"
"C:\\Program Files\\LimeWire\\LimeWire.exe"="C:\\Program Files\\LimeWire\\LimeWire.exe:*:Enabled:LimeWire"
"C:\\Program Files\\BitDownload\\BitDownload.exe"="C:\\Program Files\\BitDownload\\BitDownload.exe:*:Enabled:BitDownload"
"C:\\Program Files\\Wyzo\\wyzo.exe"="C:\\Program Files\\Wyzo\\wyzo.exe:*:Enabled:Wyzo"
"C:\\Program Files\\Skype\\Phone\\Skype.exe"="C:\\Program Files\\Skype\\Phone\\Skype.exe:*:Enabled:Skype. Take a deep breath "
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"="C:\\Program Files\\Windows Live\\Messenger\\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"
"C:\\Program Files\\Nokia\\Nokia Software Updater\\nsu_ui_client.exe"="C:\\Program Files\\Nokia\\Nokia Software Updater\\nsu_ui_client.exe:*:Enabled:Nokia Software Updater"
"C:\\Program Files\\Fichiers communs\\Nokia\\Service Layer\\A\\nsl_host_process.exe"="C:\\Program Files\\Fichiers communs\\Nokia\\Service Layer\\A\\nsl_host_process.exe:*:Enabled:Nokia Service Layer Host Process "
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"="C:\\Program Files\\Windows Live\\Messenger\\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"
[b]Remaining Files [/b]:
File Backups: - C:\SDFix\backups\backups.zip
[b]Files with Hidden Attributes [/b]:
Fri 29 Aug 2008 6,108,728 A..H. --- "C:\Program Files\Picasa2\setup.exe"
Mon 7 Jul 2008 1,429,840 A.SHR --- "C:\Program Files\Spybot - Search & Destroy\SDUpdate.exe"
Mon 7 Jul 2008 4,891,472 A.SHR --- "C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe"
Mon 18 Aug 2008 1,832,272 A.SHR --- "C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe"
Mon 14 Apr 2008 55,629 ...H. --- "C:\WINDOWS\CONFIG\Update.exe"
Wed 13 Aug 2008 4,348 A.SH. --- "C:\Documents and Settings\All Users\DRM\DRMv1.bak"
Wed 30 Jul 2008 20,487 A.SHR --- "C:\Program Files\McAfee\MQC\MRU.bak"
Wed 30 Jul 2008 265 A.SHR --- "C:\Program Files\McAfee\MQC\qcconf.bak"
Wed 22 Mar 2006 4,348 A..H. --- "C:\Program Files\Windows Media Player\Sauvegarde de la licence\drmv1key.bak"
Fri 20 Oct 2006 401 A..H. --- "C:\Program Files\Windows Media Player\Sauvegarde de la licence\drmv1lic.bak"
Tue 14 Mar 2006 312 A.SH. --- "C:\Program Files\Windows Media Player\Sauvegarde de la licence\drmv2key.bak"
Thu 7 Aug 2008 0 A.SH. --- "C:\Documents and Settings\All Users\DRM\Cache\Indiv01.tmp"
Mon 14 Apr 2008 55,629 ...H. --- "C:\Documents and Settings\sudrie\Application Data\CONFIG\Update.exe"
Thu 31 Jul 2008 0 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\f7db876e78b88fd8276fd7d29cb7e4eb\BIT9.tmp"
Fri 8 Aug 2008 885 ...HR --- "C:\Documents and Settings\sudrie\Application Data\SecuROM\UserData\securom_v7_01.bak"
Wed 10 Sep 2008 5,686 A.SH. --- "C:\Documents and Settings\All Users\Documents\TV enregistr‚e\TempRec\TempSBE\SBE1.tmp"
Wed 10 Sep 2008 5,940 A.SH. --- "C:\Documents and Settings\All Users\Documents\TV enregistr‚e\TempRec\TempSBE\SBE2.tmp"
[b]Finished![/b]
j espere que c est sa
[b]SDFix: Version 1.223 [/b]
Run by sudrie on 10/09/2008 at 16:14
Microsoft Windows XP [version 5.1.2600]
Running From: C:\SDFix
[b]Checking Services [/b]:
Restoring Default Security Values
Restoring Default Hosts File
Rebooting
[b]Checking Files [/b]:
Trojan Files Found:
C:\WINDOWS\update.exe - Deleted
Removing Temp Files
[b]ADS Check [/b]:
[b]Final Check [/b]:
catchme 0.3.1361.2 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-09-10 16:19:15
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden services & system hive ...
scanning hidden registry entries ...
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL"
"DeviceNotSelectedTimeout"="15"
"GDIProcessHandleQuota"=dword:00002710
"Spooler"="yes"
"swapdisk"=""
"TransmissionRetryTimeout"="90"
"USERProcessHandleQuota"=dword:00002710
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden services: 0
hidden files: 0
[b]Remaining Services [/b]:
Authorized Application Key Export:
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\Orange\\Connectivity\\ConnectivityManager.exe"="C:\\Program Files\\Orange\\Connectivity\\ConnectivityManager.exe:*:enabled:CSS"
"C:\\Program Files\\GameSpy Arcade\\Aphex.exe"="C:\\Program Files\\GameSpy Arcade\\Aphex.exe:*:Enabled:GameSpy Arcade"
"C:\\Program Files\\Atari\\Deer Hunter 2005 Demo\\DH2005Demo.exe"="C:\\Program Files\\Atari\\Deer Hunter 2005 Demo\\DH2005Demo.exe:*:Disabled:DH2005Demo"
"C:\\Program Files\\Artefacts Studio\\PetanqueDemo\\bin\\releaseDemo\\Petanque.exe"="C:\\Program Files\\Artefacts Studio\\PetanqueDemo\\bin\\releaseDemo\\Petanque.exe:*:Enabled:Petanque"
"C:\\Program Files\\LimeWire\\LimeWire.exe"="C:\\Program Files\\LimeWire\\LimeWire.exe:*:Enabled:LimeWire"
"C:\\Program Files\\BitDownload\\BitDownload.exe"="C:\\Program Files\\BitDownload\\BitDownload.exe:*:Enabled:BitDownload"
"C:\\Program Files\\Wyzo\\wyzo.exe"="C:\\Program Files\\Wyzo\\wyzo.exe:*:Enabled:Wyzo"
"C:\\Program Files\\Skype\\Phone\\Skype.exe"="C:\\Program Files\\Skype\\Phone\\Skype.exe:*:Enabled:Skype. Take a deep breath "
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"="C:\\Program Files\\Windows Live\\Messenger\\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"
"C:\\Program Files\\Nokia\\Nokia Software Updater\\nsu_ui_client.exe"="C:\\Program Files\\Nokia\\Nokia Software Updater\\nsu_ui_client.exe:*:Enabled:Nokia Software Updater"
"C:\\Program Files\\Fichiers communs\\Nokia\\Service Layer\\A\\nsl_host_process.exe"="C:\\Program Files\\Fichiers communs\\Nokia\\Service Layer\\A\\nsl_host_process.exe:*:Enabled:Nokia Service Layer Host Process "
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"="C:\\Program Files\\Windows Live\\Messenger\\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"
[b]Remaining Files [/b]:
File Backups: - C:\SDFix\backups\backups.zip
[b]Files with Hidden Attributes [/b]:
Fri 29 Aug 2008 6,108,728 A..H. --- "C:\Program Files\Picasa2\setup.exe"
Mon 7 Jul 2008 1,429,840 A.SHR --- "C:\Program Files\Spybot - Search & Destroy\SDUpdate.exe"
Mon 7 Jul 2008 4,891,472 A.SHR --- "C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe"
Mon 18 Aug 2008 1,832,272 A.SHR --- "C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe"
Mon 14 Apr 2008 55,629 ...H. --- "C:\WINDOWS\CONFIG\Update.exe"
Wed 13 Aug 2008 4,348 A.SH. --- "C:\Documents and Settings\All Users\DRM\DRMv1.bak"
Wed 30 Jul 2008 20,487 A.SHR --- "C:\Program Files\McAfee\MQC\MRU.bak"
Wed 30 Jul 2008 265 A.SHR --- "C:\Program Files\McAfee\MQC\qcconf.bak"
Wed 22 Mar 2006 4,348 A..H. --- "C:\Program Files\Windows Media Player\Sauvegarde de la licence\drmv1key.bak"
Fri 20 Oct 2006 401 A..H. --- "C:\Program Files\Windows Media Player\Sauvegarde de la licence\drmv1lic.bak"
Tue 14 Mar 2006 312 A.SH. --- "C:\Program Files\Windows Media Player\Sauvegarde de la licence\drmv2key.bak"
Thu 7 Aug 2008 0 A.SH. --- "C:\Documents and Settings\All Users\DRM\Cache\Indiv01.tmp"
Mon 14 Apr 2008 55,629 ...H. --- "C:\Documents and Settings\sudrie\Application Data\CONFIG\Update.exe"
Thu 31 Jul 2008 0 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\f7db876e78b88fd8276fd7d29cb7e4eb\BIT9.tmp"
Fri 8 Aug 2008 885 ...HR --- "C:\Documents and Settings\sudrie\Application Data\SecuROM\UserData\securom_v7_01.bak"
Wed 10 Sep 2008 5,686 A.SH. --- "C:\Documents and Settings\All Users\Documents\TV enregistr‚e\TempRec\TempSBE\SBE1.tmp"
Wed 10 Sep 2008 5,940 A.SH. --- "C:\Documents and Settings\All Users\Documents\TV enregistr‚e\TempRec\TempSBE\SBE2.tmp"
[b]Finished![/b]
[b]SDFix: Version 1.223 [/b]
Run by sudrie on 10/09/2008 at 16:14
Microsoft Windows XP [version 5.1.2600]
Running From: C:\SDFix
[b]Checking Services [/b]:
Restoring Default Security Values
Restoring Default Hosts File
Rebooting
[b]Checking Files [/b]:
Trojan Files Found:
C:\WINDOWS\update.exe - Deleted
Removing Temp Files
[b]ADS Check [/b]:
[b]Final Check [/b]:
catchme 0.3.1361.2 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-09-10 16:19:15
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden services & system hive ...
scanning hidden registry entries ...
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL"
"DeviceNotSelectedTimeout"="15"
"GDIProcessHandleQuota"=dword:00002710
"Spooler"="yes"
"swapdisk"=""
"TransmissionRetryTimeout"="90"
"USERProcessHandleQuota"=dword:00002710
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden services: 0
hidden files: 0
[b]Remaining Services [/b]:
Authorized Application Key Export:
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\Orange\\Connectivity\\ConnectivityManager.exe"="C:\\Program Files\\Orange\\Connectivity\\ConnectivityManager.exe:*:enabled:CSS"
"C:\\Program Files\\GameSpy Arcade\\Aphex.exe"="C:\\Program Files\\GameSpy Arcade\\Aphex.exe:*:Enabled:GameSpy Arcade"
"C:\\Program Files\\Atari\\Deer Hunter 2005 Demo\\DH2005Demo.exe"="C:\\Program Files\\Atari\\Deer Hunter 2005 Demo\\DH2005Demo.exe:*:Disabled:DH2005Demo"
"C:\\Program Files\\Artefacts Studio\\PetanqueDemo\\bin\\releaseDemo\\Petanque.exe"="C:\\Program Files\\Artefacts Studio\\PetanqueDemo\\bin\\releaseDemo\\Petanque.exe:*:Enabled:Petanque"
"C:\\Program Files\\LimeWire\\LimeWire.exe"="C:\\Program Files\\LimeWire\\LimeWire.exe:*:Enabled:LimeWire"
"C:\\Program Files\\BitDownload\\BitDownload.exe"="C:\\Program Files\\BitDownload\\BitDownload.exe:*:Enabled:BitDownload"
"C:\\Program Files\\Wyzo\\wyzo.exe"="C:\\Program Files\\Wyzo\\wyzo.exe:*:Enabled:Wyzo"
"C:\\Program Files\\Skype\\Phone\\Skype.exe"="C:\\Program Files\\Skype\\Phone\\Skype.exe:*:Enabled:Skype. Take a deep breath "
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"="C:\\Program Files\\Windows Live\\Messenger\\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"
"C:\\Program Files\\Nokia\\Nokia Software Updater\\nsu_ui_client.exe"="C:\\Program Files\\Nokia\\Nokia Software Updater\\nsu_ui_client.exe:*:Enabled:Nokia Software Updater"
"C:\\Program Files\\Fichiers communs\\Nokia\\Service Layer\\A\\nsl_host_process.exe"="C:\\Program Files\\Fichiers communs\\Nokia\\Service Layer\\A\\nsl_host_process.exe:*:Enabled:Nokia Service Layer Host Process "
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"="C:\\Program Files\\Windows Live\\Messenger\\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"
[b]Remaining Files [/b]:
File Backups: - C:\SDFix\backups\backups.zip
[b]Files with Hidden Attributes [/b]:
Fri 29 Aug 2008 6,108,728 A..H. --- "C:\Program Files\Picasa2\setup.exe"
Mon 7 Jul 2008 1,429,840 A.SHR --- "C:\Program Files\Spybot - Search & Destroy\SDUpdate.exe"
Mon 7 Jul 2008 4,891,472 A.SHR --- "C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe"
Mon 18 Aug 2008 1,832,272 A.SHR --- "C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe"
Mon 14 Apr 2008 55,629 ...H. --- "C:\WINDOWS\CONFIG\Update.exe"
Wed 13 Aug 2008 4,348 A.SH. --- "C:\Documents and Settings\All Users\DRM\DRMv1.bak"
Wed 30 Jul 2008 20,487 A.SHR --- "C:\Program Files\McAfee\MQC\MRU.bak"
Wed 30 Jul 2008 265 A.SHR --- "C:\Program Files\McAfee\MQC\qcconf.bak"
Wed 22 Mar 2006 4,348 A..H. --- "C:\Program Files\Windows Media Player\Sauvegarde de la licence\drmv1key.bak"
Fri 20 Oct 2006 401 A..H. --- "C:\Program Files\Windows Media Player\Sauvegarde de la licence\drmv1lic.bak"
Tue 14 Mar 2006 312 A.SH. --- "C:\Program Files\Windows Media Player\Sauvegarde de la licence\drmv2key.bak"
Thu 7 Aug 2008 0 A.SH. --- "C:\Documents and Settings\All Users\DRM\Cache\Indiv01.tmp"
Mon 14 Apr 2008 55,629 ...H. --- "C:\Documents and Settings\sudrie\Application Data\CONFIG\Update.exe"
Thu 31 Jul 2008 0 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\f7db876e78b88fd8276fd7d29cb7e4eb\BIT9.tmp"
Fri 8 Aug 2008 885 ...HR --- "C:\Documents and Settings\sudrie\Application Data\SecuROM\UserData\securom_v7_01.bak"
Wed 10 Sep 2008 5,686 A.SH. --- "C:\Documents and Settings\All Users\Documents\TV enregistr‚e\TempRec\TempSBE\SBE1.tmp"
Wed 10 Sep 2008 5,940 A.SH. --- "C:\Documents and Settings\All Users\Documents\TV enregistr‚e\TempRec\TempSBE\SBE2.tmp"
[b]Finished![/b]
j espere que c est sa
Télécharge ToolbarS&D à l'adresse ci-dessous :
https://www.malekal.com/adwcleaner-supprimer-virus-adwares-pup/
1) Double clique dessus pour l'installer.
2) Lances-le et choisis l'option F (français)
3) Choisis l'option 1 et appuies sur la touche Enter.
4) Une fois l'analyse terminé, colles le rapport.
https://www.malekal.com/adwcleaner-supprimer-virus-adwares-pup/
1) Double clique dessus pour l'installer.
2) Lances-le et choisis l'option F (français)
3) Choisis l'option 1 et appuies sur la touche Enter.
4) Une fois l'analyse terminé, colles le rapport.
voila le rapport,
-----------\\ ToolBar S&D 1.1.8 XP/Vista
Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 3
X86-based PC ( Multiprocessor Free : AMD Athlon(tm) 64 X2 Dual Core Processor 5000+ )
BIOS : )Phoenix - Award WorkstationBIOS v6.00PG
USER : sudrie ( Administrator )
BOOT : Normal boot
Antivirus : McAfee VirusScan (Activated)
Firewall : McAfee Personal Firewall (Activated)
"C:\ToolBar SD" ( MAJ : 07-09-2008|12:20 )
Option : [1] ( 10/09/2008|17:40 )
-----------\\ Recherche de Fichiers / Dossiers ...
-----------\\ Extensions
(19audrey) - {635abd67-4fe9-1b23-4f01-e679fa7484c1} => ytoolbar
(sudrie) - {1018e4d6-728f-4b20-ad56-37578a4de76b} => flagfox
(sudrie) - {3112ca9c-de6d-4884-a869-9855de68056c} => google-toolbar
(sudrie) - {635abd67-4fe9-1b23-4f01-e679fa7484c1} => ytoolbar
(sudrie) - {64161300-e22b-11db-8314-0800200c9a66} => speeddial
(sudrie) - {d9284e50-81fc-11da-a72b-0800200c9a66} => yoono
(sudrie) - {d9284e50-81fc-11da-a72b-0800200c9a66} => sidebar
(sudrie) - {EEE6C361-6118-11DC-9C72-001320C79847} => sweetim-toolbar
-----------\\ [..\Internet Explorer\Main]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Search Bar"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
"Local Page"="C:\\WINDOWS\\system32\\blank.htm"
"Start Page"="https://www.msn.com/fr-fr/"
"Search Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
"SearchMigratedDefaultURL"="https://www.google.com/webhp?gws_rd=ssl{searchTerms}"
"Start Page Restore"="https://www.google.fr/webhp?sourceid=navclient&hl=fr&ie=UTF-8&gws_rd=ssl"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Start Page"="https://www.msn.com/fr-fr/"
--------------------\\ Recherche d'autres infections
--------------------\\ Cracks & Keygens ..
C:\DOCUME~1\sudrie\Application Data\Microsoft\Office\R‚cent\Pro Cycling Manager 2006.CRACK-NOCD..FR.lnk
C:\DOCUME~1\sudrie\Bureau\conneries\MOHAA_DISK2\Crack
C:\DOCUME~1\sudrie\Bureau\conneries\MOHAA_DISK2\Crack\MOHAA.EXE
C:\DOCUME~1\sudrie\Bureau\conneries\MOHAA_DISK2\Crack\sm.001
C:\DOCUME~1\sudrie\Bureau\conneries\MOHAA_DISK2\Crack\sm.002
C:\DOCUME~1\sudrie\Bureau\conneries\office\MICROSOFT_OFFICE_XP_PRO_FR\CRACK
C:\DOCUME~1\sudrie\Bureau\conneries\office\MICROSOFT_OFFICE_XP_PRO_FR\CRACK.EXE
C:\DOCUME~1\sudrie\Bureau\conneries\office\MICROSOFT_OFFICE_XP_PRO_FR\CRACK\CRACK.EXE
C:\DOCUME~1\sudrie\Bureau\conneries\office\MICROSOFT_OFFICE_XP_PRO_FR\CRACK\FILE_ID.DIZ
1 - "C:\ToolBar SD\TB_1.txt" - 10/09/2008|17:41 - Option : [1]
-----------\\ Fin du rapport a 17:41:53,37
-----------\\ ToolBar S&D 1.1.8 XP/Vista
Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 3
X86-based PC ( Multiprocessor Free : AMD Athlon(tm) 64 X2 Dual Core Processor 5000+ )
BIOS : )Phoenix - Award WorkstationBIOS v6.00PG
USER : sudrie ( Administrator )
BOOT : Normal boot
Antivirus : McAfee VirusScan (Activated)
Firewall : McAfee Personal Firewall (Activated)
"C:\ToolBar SD" ( MAJ : 07-09-2008|12:20 )
Option : [1] ( 10/09/2008|17:40 )
-----------\\ Recherche de Fichiers / Dossiers ...
-----------\\ Extensions
(19audrey) - {635abd67-4fe9-1b23-4f01-e679fa7484c1} => ytoolbar
(sudrie) - {1018e4d6-728f-4b20-ad56-37578a4de76b} => flagfox
(sudrie) - {3112ca9c-de6d-4884-a869-9855de68056c} => google-toolbar
(sudrie) - {635abd67-4fe9-1b23-4f01-e679fa7484c1} => ytoolbar
(sudrie) - {64161300-e22b-11db-8314-0800200c9a66} => speeddial
(sudrie) - {d9284e50-81fc-11da-a72b-0800200c9a66} => yoono
(sudrie) - {d9284e50-81fc-11da-a72b-0800200c9a66} => sidebar
(sudrie) - {EEE6C361-6118-11DC-9C72-001320C79847} => sweetim-toolbar
-----------\\ [..\Internet Explorer\Main]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Search Bar"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
"Local Page"="C:\\WINDOWS\\system32\\blank.htm"
"Start Page"="https://www.msn.com/fr-fr/"
"Search Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
"SearchMigratedDefaultURL"="https://www.google.com/webhp?gws_rd=ssl{searchTerms}"
"Start Page Restore"="https://www.google.fr/webhp?sourceid=navclient&hl=fr&ie=UTF-8&gws_rd=ssl"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Start Page"="https://www.msn.com/fr-fr/"
--------------------\\ Recherche d'autres infections
--------------------\\ Cracks & Keygens ..
C:\DOCUME~1\sudrie\Application Data\Microsoft\Office\R‚cent\Pro Cycling Manager 2006.CRACK-NOCD..FR.lnk
C:\DOCUME~1\sudrie\Bureau\conneries\MOHAA_DISK2\Crack
C:\DOCUME~1\sudrie\Bureau\conneries\MOHAA_DISK2\Crack\MOHAA.EXE
C:\DOCUME~1\sudrie\Bureau\conneries\MOHAA_DISK2\Crack\sm.001
C:\DOCUME~1\sudrie\Bureau\conneries\MOHAA_DISK2\Crack\sm.002
C:\DOCUME~1\sudrie\Bureau\conneries\office\MICROSOFT_OFFICE_XP_PRO_FR\CRACK
C:\DOCUME~1\sudrie\Bureau\conneries\office\MICROSOFT_OFFICE_XP_PRO_FR\CRACK.EXE
C:\DOCUME~1\sudrie\Bureau\conneries\office\MICROSOFT_OFFICE_XP_PRO_FR\CRACK\CRACK.EXE
C:\DOCUME~1\sudrie\Bureau\conneries\office\MICROSOFT_OFFICE_XP_PRO_FR\CRACK\FILE_ID.DIZ
1 - "C:\ToolBar SD\TB_1.txt" - 10/09/2008|17:41 - Option : [1]
-----------\\ Fin du rapport a 17:41:53,37
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
Télécharges ComboFix à l'adresse ci-dessous :
https://www.bleepingcomputer.com/combofix/fr/comment-utiliser-combofix
1) Désactives ton antivirus !!
2) Lances-le
3) Après la fin de la sauvegarde du Registre Windows, ComboFix va déconnecter ton pc d'internet. Donc ne sois pas surpris, ta connexion sera totalement rétablie après.
4) Post le rapport qui s'ouvrira à la fin, ainsi qu'un nouveau log Hijackthis.
https://www.bleepingcomputer.com/combofix/fr/comment-utiliser-combofix
1) Désactives ton antivirus !!
2) Lances-le
3) Après la fin de la sauvegarde du Registre Windows, ComboFix va déconnecter ton pc d'internet. Donc ne sois pas surpris, ta connexion sera totalement rétablie après.
4) Post le rapport qui s'ouvrira à la fin, ainsi qu'un nouveau log Hijackthis.
C'est en français :-s (mon lien en tout cas)
lances-le et tapes la touche 1 puis tu appuies sur Enter
lances-le et tapes la touche 1 puis tu appuies sur Enter
didishnikov : Je ne l'ai pas loupé, c'est juste que je m'occupe d'autre chose pour le moment. Je fais les services, souvent du moins, après les autres lignes.
bon alors supprime les fichiers et dossiers a la main ;)
C:\DOCUME~1\sudrie\Application Data\Microsoft\Office\R‚cent\Pro Cycling Manager 2006.CRACK-NOCD..FR.lnk
C:\DOCUME~1\sudrie\Bureau\conneries\MOHAA_DISK2\Crack
C:\DOCUME~1\sudrie\Bureau\conneries\office\MICROSOFT_OFFICE_XP_PRO_FR\CRACK
puis passe lopsd
@+
C:\DOCUME~1\sudrie\Application Data\Microsoft\Office\R‚cent\Pro Cycling Manager 2006.CRACK-NOCD..FR.lnk
C:\DOCUME~1\sudrie\Bureau\conneries\MOHAA_DISK2\Crack
C:\DOCUME~1\sudrie\Bureau\conneries\office\MICROSOFT_OFFICE_XP_PRO_FR\CRACK
puis passe lopsd
@+
bah elle est dessus; tu vas ou sont les fichiers
par exemple :
C:\DOCUME~1\sudrie\Application Data\Microsoft\Office\R‚cent\Pro Cycling Manager 2006.CRACK-NOCD..FR.lnk
c´est le chemin qui mene au fichier infecté...
par exemple :
C:\DOCUME~1\sudrie\Application Data\Microsoft\Office\R‚cent\Pro Cycling Manager 2006.CRACK-NOCD..FR.lnk
c´est le chemin qui mene au fichier infecté...
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 19:18:53, on 10/09/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16705)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\WINDOWS\arservice.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\drivers\CDAC11BA.EXE
C:\WINDOWS\system32\CTsvcCDA.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
c:\PROGRA~1\FICHIE~1\mcafee\mna\mcnasvc.exe
c:\PROGRA~1\FICHIE~1\mcafee\mcproxy\mcproxy.exe
C:\Program Files\McAfee\VirusScan\McShield.exe
C:\Program Files\MioNet\MioNetManager.exe
C:\Program Files\McAfee\MPF\MPFSrv.exe
C:\Program Files\McAfee\MSK\MskSrver.exe
C:\Program Files\MioNet\jvm\bin\MioNet.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Fichiers communs\New Boundary\PrismXL\PRISMXL.SYS
C:\Program Files\SiteAdvisor\6261\SAService.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
c:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\WINDOWS\system32\SearchIndexer.exe
C:\WINDOWS\ehome\mcrdsvc.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\System32\svchost.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
C:\Program Files\Unlocker\UnlockerAssistant.exe
C:\Program Files\Orange\Systray\SystrayApp.exe
C:\WINDOWS\VM_STI.EXE
C:\Program Files\SweetIM\Messenger\SweetIM.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe
C:\Program Files\Creative\Sync Manager Unicode\CTSyncU.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\AlertModule\0\AlertModule.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\BigFix\bigfix.exe
C:\Program Files\Philips\Philips SPC210NC Webcam\TrayMin210.exe
C:\Program Files\Windows Desktop Search\WindowsSearch.exe
C:\Documents and Settings\sudrie\Menu Démarrer\Programmes\Démarrage\Msecal.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Sun\StarOffice 8\program\soffice.exe
C:\Program Files\Sun\StarOffice 8\program\soffice.BIN
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\Program Files\Orange\SearchURLHook\SearchPageURL.dll
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: McAfee Phishing Filter - {377C180E-6F0E-4D4C-980F-F45BD3D40CF4} - c:\PROGRA~1\mcafee\msk\mcapbho.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\McAfee\VirusScan\scriptsn.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\4.1.509.6972\swg.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O2 - BHO: CBrowserHelperObject Object - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - c:\windows\system32\BAE.dll
O3 - Toolbar: McAfee SiteAdvisor - {0BF43445-2F28-4351-9252-17FE6E806AA0} - C:\Program Files\SiteAdvisor\6261\SiteAdv.dll
O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [UnlockerAssistant] "C:\Program Files\Unlocker\UnlockerAssistant.exe"
O4 - HKLM\..\Run: [SystrayORAHSS] "C:\Program Files\Orange\Systray\SystrayApp.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [BigDogPath] C:\WINDOWS\VM_STI.EXE Philips SPC210NC Webcam
O4 - HKLM\..\Run: [Mode Load Mpeg Less] C:\Documents and Settings\All Users\Application Data\two setup mode load\find hole.exe
O4 - HKLM\..\Run: [SweetIM] C:\Program Files\SweetIM\Messenger\SweetIM.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [CTSyncU.exe] "C:\Program Files\Creative\Sync Manager Unicode\CTSyncU.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [pokeonline] C:\DOCUME~1\sudrie\APPLIC~1\GLUEFI~1\Dvd mags.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\RunOnce: [NeroHomeFirstStart] C:\Program Files\Fichiers communs\Ahead\Lib\NMFirstStart.exe (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-20\..\RunOnce: [NeroHomeFirstStart] C:\Program Files\Fichiers communs\Ahead\Lib\NMFirstStart.exe (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: Msecal.exe
O4 - Startup: StarOffice 8.lnk = C:\Program Files\Sun\StarOffice 8\program\quickstart.exe
O4 - Global Startup: BigFix.lnk = C:\Program Files\BigFix\bigfix.exe
O4 - Global Startup: TrayMin210.exe.lnk = C:\Program Files\Philips\Philips SPC210NC Webcam\TrayMin210.exe
O4 - Global Startup: Windows Search.lnk = C:\Program Files\Windows Desktop Search\WindowsSearch.exe
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: Add to Windows &Live Favorites - https://onedrive.live.com/?id=favorites
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Translate with &Babylon - res://C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll/Translate.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O15 - Trusted Zone: https://www.orange.fr/portail
O16 - DPF: {7FC1B346-83E6-4774-8D20-1A6B09B0E737} (Windows Live Photo Upload Control) - http://cid-1330b6ced0ff2fa5.spaces.live.com/PhotoUpload/MsnPUpld.cab
O16 - DPF: {D0C0F75C-683A-4390-A791-1ACFD5599AB8} (Oberon Flash Game Host) - http://jeuxmultijoueurs.orange.fr/Gameshell/GameHost/1.0/OberonGameHost.cab
O23 - Service: McAfee Application Installer Cleanup (0180281221056766) (0180281221056766mcinstcleanup) - McAfee, Inc. - C:\WINDOWS\TEMP\018028~1.EXE
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\system32\drivers\CDAC11BA.EXE
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.exe
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom SA - C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - c:\PROGRA~1\FICHIE~1\mcafee\mna\mcnasvc.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - c:\PROGRA~1\FICHIE~1\mcafee\mcproxy\mcproxy.exe
O23 - Service: McAfee Real-time Scanner (McShield) - McAfee, Inc. - C:\Program Files\McAfee\VirusScan\McShield.exe
O23 - Service: McAfee SystemGuards (McSysmon) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
O23 - Service: MioNet Service (MioNet) - Unknown owner - C:\Program Files\MioNet\MioNetManager.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee, Inc. - C:\Program Files\McAfee\MPF\MPFSrv.exe
O23 - Service: McAfee Anti-Spam Service (MSK80Service) - McAfee, Inc. - C:\Program Files\McAfee\MSK\MskSrver.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Orange Contrôle Parental (OPTENET_FILTER) - Orange - C:\Program Files\Controle Parental\bin\optproxy.exe
O23 - Service: PrismXL - New Boundary Technologies, Inc. - C:\Program Files\Fichiers communs\New Boundary\PrismXL\PRISMXL.SYS
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Service SiteAdvisor (SiteAdvisor Service) - Unknown owner - C:\Program Files\SiteAdvisor\6261\SAService.exe
Scan saved at 19:18:53, on 10/09/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16705)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\WINDOWS\arservice.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\drivers\CDAC11BA.EXE
C:\WINDOWS\system32\CTsvcCDA.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
c:\PROGRA~1\FICHIE~1\mcafee\mna\mcnasvc.exe
c:\PROGRA~1\FICHIE~1\mcafee\mcproxy\mcproxy.exe
C:\Program Files\McAfee\VirusScan\McShield.exe
C:\Program Files\MioNet\MioNetManager.exe
C:\Program Files\McAfee\MPF\MPFSrv.exe
C:\Program Files\McAfee\MSK\MskSrver.exe
C:\Program Files\MioNet\jvm\bin\MioNet.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Fichiers communs\New Boundary\PrismXL\PRISMXL.SYS
C:\Program Files\SiteAdvisor\6261\SAService.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
c:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\WINDOWS\system32\SearchIndexer.exe
C:\WINDOWS\ehome\mcrdsvc.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\System32\svchost.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
C:\Program Files\Unlocker\UnlockerAssistant.exe
C:\Program Files\Orange\Systray\SystrayApp.exe
C:\WINDOWS\VM_STI.EXE
C:\Program Files\SweetIM\Messenger\SweetIM.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe
C:\Program Files\Creative\Sync Manager Unicode\CTSyncU.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\AlertModule\0\AlertModule.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\BigFix\bigfix.exe
C:\Program Files\Philips\Philips SPC210NC Webcam\TrayMin210.exe
C:\Program Files\Windows Desktop Search\WindowsSearch.exe
C:\Documents and Settings\sudrie\Menu Démarrer\Programmes\Démarrage\Msecal.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Sun\StarOffice 8\program\soffice.exe
C:\Program Files\Sun\StarOffice 8\program\soffice.BIN
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\Program Files\Orange\SearchURLHook\SearchPageURL.dll
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: McAfee Phishing Filter - {377C180E-6F0E-4D4C-980F-F45BD3D40CF4} - c:\PROGRA~1\mcafee\msk\mcapbho.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\McAfee\VirusScan\scriptsn.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\4.1.509.6972\swg.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O2 - BHO: CBrowserHelperObject Object - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - c:\windows\system32\BAE.dll
O3 - Toolbar: McAfee SiteAdvisor - {0BF43445-2F28-4351-9252-17FE6E806AA0} - C:\Program Files\SiteAdvisor\6261\SiteAdv.dll
O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [UnlockerAssistant] "C:\Program Files\Unlocker\UnlockerAssistant.exe"
O4 - HKLM\..\Run: [SystrayORAHSS] "C:\Program Files\Orange\Systray\SystrayApp.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [BigDogPath] C:\WINDOWS\VM_STI.EXE Philips SPC210NC Webcam
O4 - HKLM\..\Run: [Mode Load Mpeg Less] C:\Documents and Settings\All Users\Application Data\two setup mode load\find hole.exe
O4 - HKLM\..\Run: [SweetIM] C:\Program Files\SweetIM\Messenger\SweetIM.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [CTSyncU.exe] "C:\Program Files\Creative\Sync Manager Unicode\CTSyncU.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [pokeonline] C:\DOCUME~1\sudrie\APPLIC~1\GLUEFI~1\Dvd mags.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\RunOnce: [NeroHomeFirstStart] C:\Program Files\Fichiers communs\Ahead\Lib\NMFirstStart.exe (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-20\..\RunOnce: [NeroHomeFirstStart] C:\Program Files\Fichiers communs\Ahead\Lib\NMFirstStart.exe (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: Msecal.exe
O4 - Startup: StarOffice 8.lnk = C:\Program Files\Sun\StarOffice 8\program\quickstart.exe
O4 - Global Startup: BigFix.lnk = C:\Program Files\BigFix\bigfix.exe
O4 - Global Startup: TrayMin210.exe.lnk = C:\Program Files\Philips\Philips SPC210NC Webcam\TrayMin210.exe
O4 - Global Startup: Windows Search.lnk = C:\Program Files\Windows Desktop Search\WindowsSearch.exe
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: Add to Windows &Live Favorites - https://onedrive.live.com/?id=favorites
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Translate with &Babylon - res://C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll/Translate.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O15 - Trusted Zone: https://www.orange.fr/portail
O16 - DPF: {7FC1B346-83E6-4774-8D20-1A6B09B0E737} (Windows Live Photo Upload Control) - http://cid-1330b6ced0ff2fa5.spaces.live.com/PhotoUpload/MsnPUpld.cab
O16 - DPF: {D0C0F75C-683A-4390-A791-1ACFD5599AB8} (Oberon Flash Game Host) - http://jeuxmultijoueurs.orange.fr/Gameshell/GameHost/1.0/OberonGameHost.cab
O23 - Service: McAfee Application Installer Cleanup (0180281221056766) (0180281221056766mcinstcleanup) - McAfee, Inc. - C:\WINDOWS\TEMP\018028~1.EXE
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\system32\drivers\CDAC11BA.EXE
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.exe
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom SA - C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - c:\PROGRA~1\FICHIE~1\mcafee\mna\mcnasvc.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - c:\PROGRA~1\FICHIE~1\mcafee\mcproxy\mcproxy.exe
O23 - Service: McAfee Real-time Scanner (McShield) - McAfee, Inc. - C:\Program Files\McAfee\VirusScan\McShield.exe
O23 - Service: McAfee SystemGuards (McSysmon) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
O23 - Service: MioNet Service (MioNet) - Unknown owner - C:\Program Files\MioNet\MioNetManager.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee, Inc. - C:\Program Files\McAfee\MPF\MPFSrv.exe
O23 - Service: McAfee Anti-Spam Service (MSK80Service) - McAfee, Inc. - C:\Program Files\McAfee\MSK\MskSrver.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Orange Contrôle Parental (OPTENET_FILTER) - Orange - C:\Program Files\Controle Parental\bin\optproxy.exe
O23 - Service: PrismXL - New Boundary Technologies, Inc. - C:\Program Files\Fichiers communs\New Boundary\PrismXL\PRISMXL.SYS
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Service SiteAdvisor (SiteAdvisor Service) - Unknown owner - C:\Program Files\SiteAdvisor\6261\SAService.exe
bon t´as rien supprimé de tes cracks ?
supprime tout ca :
C:\DOCUME~1\sudrie\Application Data\Microsoft\Office\R‚cent\Pro Cycling Manager 2006.CRACK-NOCD..FR.lnk
C:\DOCUME~1\sudrie\Bureau\conneries\office\MICROSOFT_OFFICE_XP_PRO_FR\CRACK
C:\DOCUME~1\sudrie\Bureau\conneries\office\MICROSOFT_OFFICE_XP_PRO_FR\CRACK.EXE
C:\DOCUME~1\sudrie\Bureau\conneries\office\MICROSOFT_OFFICE_XP_PRO_FR\CRACK\CRACK.EXE
C:\DOCUME~1\sudrie\Bureau\conneries\office\MICROSOFT_OFFICE_XP_PRO_FR\CRACK\FILE_ID.DIZ
puis passe l´option 2 de lop sd et post un nouveau rapport hijack this stp
@+
supprime tout ca :
C:\DOCUME~1\sudrie\Application Data\Microsoft\Office\R‚cent\Pro Cycling Manager 2006.CRACK-NOCD..FR.lnk
C:\DOCUME~1\sudrie\Bureau\conneries\office\MICROSOFT_OFFICE_XP_PRO_FR\CRACK
C:\DOCUME~1\sudrie\Bureau\conneries\office\MICROSOFT_OFFICE_XP_PRO_FR\CRACK.EXE
C:\DOCUME~1\sudrie\Bureau\conneries\office\MICROSOFT_OFFICE_XP_PRO_FR\CRACK\CRACK.EXE
C:\DOCUME~1\sudrie\Bureau\conneries\office\MICROSOFT_OFFICE_XP_PRO_FR\CRACK\FILE_ID.DIZ
puis passe l´option 2 de lop sd et post un nouveau rapport hijack this stp
@+
voila l option deux,
--------------------\\ Lop S&D 4.2.4-2 XP/Vista
Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 3
X86-based PC ( Multiprocessor Free : AMD Athlon(tm) 64 X2 Dual Core Processor 5000+ )
BIOS : )Phoenix - Award WorkstationBIOS v6.00PG
USER : sudrie ( Administrator )
BOOT : Normal boot
Antivirus : McAfee VirusScan (Activated)
Firewall : McAfee Personal Firewall (Activated)
"C:\Lop SD" ( MAJ : 08-09-2008|21:40 )
Option : [2] ( 10/09/2008|19:47 )
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ SUPPRESSION
Supprime! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\two setup mode load\find hole.exe
Supprime! - C:\DOCUME~1\sudrie\APPLIC~1\gluefi~1\City Type 01.exe
Supprime! - C:\DOCUME~1\sudrie\APPLIC~1\gluefi~1\Dvd mags.exe
Supprime! - C:\DOCUME~1\sudrie\APPLIC~1\gluefi~1\nxnwwxpm.exe
Supprime! - C:\DOCUME~1\sudrie\APPLIC~1\gluefi~1\qidngkkm.exe
Supprime! - C:\DOCUME~1\sudrie\APPLIC~1\gluefi~1\ymxhobpi.exe
Supprime! - C:\DOCUME~1\sudrie\MENUDM~1\PROGRA~1\BitDownload\BitDownload Downloads.lnk
Supprime! - C:\DOCUME~1\sudrie\Cookies\sudrie@www.adserver5[1].txt
Supprime! - C:\DOCUME~1\sudrie\Cookies\sudrie@adopt.euroclick[1].txt
Supprime! - C:\DOCUME~1\sudrie\Cookies\sudrie@partypoker[2].txt
Supprime! - C:\DOCUME~1\sudrie\Cookies\sudrie@32vegas[1].txt
Supprime! - C:\DOCUME~1\sudrie\Cookies\sudrie@banner.32vegas[2].txt
Supprime! - C:\WINDOWS\Tasks\AF24AD8A937F20EE.job
Supprime! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\two setup mode load
Supprime! - C:\DOCUME~1\19audrey\APPLIC~1\gluefi~1
Supprime! - C:\DOCUME~1\sudrie\APPLIC~1\gluefi~1
Supprime! - C:\Program Files\gluefi~1
Supprime! - C:\DOCUME~1\sudrie\MENUDM~1\PROGRA~1\BitDownload
-
[ Fichier Hosts ] .. Restaure!
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\
--------------------\\ Listing des dossiers dans APPLIC~1
[02/09/2008|20:08] C:\DOCUME~1\19audrey\APPLIC~1\.wyzo
[28/08/2008|01:05] C:\DOCUME~1\19audrey\APPLIC~1\Adobe
[26/08/2008|14:09] C:\DOCUME~1\19audrey\APPLIC~1\Google
[28/08/2008|01:05] C:\DOCUME~1\19audrey\APPLIC~1\Identities
[23/08/2008|19:27] C:\DOCUME~1\19audrey\APPLIC~1\Macromedia
[30/08/2008|13:05] C:\DOCUME~1\19audrey\APPLIC~1\Malwarebytes
[06/09/2008|11:15] C:\DOCUME~1\19audrey\APPLIC~1\Microsoft
[28/08/2008|01:04] C:\DOCUME~1\19audrey\APPLIC~1\Mozilla
[23/08/2008|19:39] C:\DOCUME~1\19audrey\APPLIC~1\PC Suite
[28/08/2008|01:07] C:\DOCUME~1\19audrey\APPLIC~1\Real
[28/08/2008|01:05] C:\DOCUME~1\19audrey\APPLIC~1\SampleView
[25/08/2008|12:46] C:\DOCUME~1\19audrey\APPLIC~1\SiteAdvisor
[09/09/2008|21:00] C:\DOCUME~1\19audrey\APPLIC~1\StarOffice8
[28/08/2008|01:05] C:\DOCUME~1\19audrey\APPLIC~1\Windows Desktop Search
[02/09/2008|20:08] C:\DOCUME~1\19audrey\APPLIC~1\Wyzo
[27/01/2006|06:25] C:\DOCUME~1\ADMINI~1\APPLIC~1\Identities
[25/08/2006|08:01] C:\DOCUME~1\ADMINI~1\APPLIC~1\Microsoft
[25/08/2006|08:02] C:\DOCUME~1\ADMINI~1\APPLIC~1\SampleView
[31/08/2008|23:26] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[30/11/2007|22:38] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple
[30/11/2007|22:39] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer
[13/08/2008|15:25] C:\DOCUME~1\ALLUSE~1\APPLIC~1\AVS4YOU
[16/08/2008|02:12] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Babylon
[30/07/2008|21:26] C:\DOCUME~1\ALLUSE~1\APPLIC~1\BOONTY
[28/08/2008|01:06] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
[10/09/2008|16:45] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google Updater
[08/09/2008|19:35] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Installations
[31/07/2008|23:34] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Macrovision
[05/08/2008|20:38] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Malwarebytes
[30/07/2008|13:59] C:\DOCUME~1\ALLUSE~1\APPLIC~1\McAfee
[30/07/2008|14:01] C:\DOCUME~1\ALLUSE~1\APPLIC~1\McAfee.com
[08/09/2008|19:18] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[10/09/2008|11:32] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft Help
[31/07/2008|19:49] C:\DOCUME~1\ALLUSE~1\APPLIC~1\MumboJumbo
[08/09/2008|19:42] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Nokia
[28/08/2008|23:21] C:\DOCUME~1\ALLUSE~1\APPLIC~1\NOS
[12/11/2006|20:51] C:\DOCUME~1\ALLUSE~1\APPLIC~1\nView_Profiles
[08/09/2008|18:45] C:\DOCUME~1\ALLUSE~1\APPLIC~1\PC Suite
[25/08/2006|07:50] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Prism Deploy
[02/09/2008|15:42] C:\DOCUME~1\ALLUSE~1\APPLIC~1\services
[30/07/2008|13:59] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SiteAdvisor
[03/09/2008|19:52] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Skype
[10/09/2008|11:30] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy
[09/09/2008|18:56] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SweetIM
[28/08/2008|01:07] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TEMP
[07/08/2008|15:49] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[02/09/2008|20:07] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
[04/08/2008|18:55] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Yahoo! Companion
[19/08/2008|19:19] C:\DOCUME~1\audrey\APPLIC~1\Adobe
[20/08/2008|12:09] C:\DOCUME~1\audrey\APPLIC~1\Google
[27/01/2006|06:25] C:\DOCUME~1\audrey\APPLIC~1\Identities
[19/08/2008|19:19] C:\DOCUME~1\audrey\APPLIC~1\Macromedia
[19/08/2008|19:24] C:\DOCUME~1\audrey\APPLIC~1\Microsoft
[25/08/2006|08:02] C:\DOCUME~1\audrey\APPLIC~1\SampleView
[20/08/2008|11:06] C:\DOCUME~1\audrey\APPLIC~1\SiteAdvisor
[18/08/2008|22:16] C:\DOCUME~1\audrey\APPLIC~1\Windows Desktop Search
[28/08/2008|01:05] C:\DOCUME~1\audrey19\APPLIC~1\Adobe
[28/08/2008|01:05] C:\DOCUME~1\audrey19\APPLIC~1\Google
[28/08/2008|01:05] C:\DOCUME~1\audrey19\APPLIC~1\Identities
[23/08/2008|16:22] C:\DOCUME~1\audrey19\APPLIC~1\Macromedia
[28/08/2008|01:05] C:\DOCUME~1\audrey19\APPLIC~1\Microsoft
[23/08/2008|19:34] C:\DOCUME~1\audrey19\APPLIC~1\PC Suite
[28/08/2008|01:05] C:\DOCUME~1\audrey19\APPLIC~1\SampleView
[28/08/2008|01:05] C:\DOCUME~1\audrey19\APPLIC~1\SiteAdvisor
[28/08/2008|01:05] C:\DOCUME~1\audrey19\APPLIC~1\Windows Desktop Search
[27/01/2006|06:25] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities
[25/08/2008|14:28] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Macromedia
[25/08/2006|08:01] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[25/08/2006|08:02] C:\DOCUME~1\DEFAUL~1\APPLIC~1\SampleView
[27/01/2006|06:25] C:\DOCUME~1\INVIT~1\APPLIC~1\Identities
[20/08/2008|13:47] C:\DOCUME~1\INVIT~1\APPLIC~1\Microsoft
[25/08/2006|08:02] C:\DOCUME~1\INVIT~1\APPLIC~1\SampleView
[20/08/2008|13:47] C:\DOCUME~1\INVIT~1\APPLIC~1\Windows Desktop Search
[02/09/2008|18:16] C:\DOCUME~1\LOCALS~1\APPLIC~1\.wyzo
[02/09/2008|18:16] C:\DOCUME~1\LOCALS~1\APPLIC~1\Adobe
[02/09/2008|18:16] C:\DOCUME~1\LOCALS~1\APPLIC~1\Macromedia
[10/08/2008|19:37] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[30/08/2008|19:00] C:\DOCUME~1\LOCALS~1\APPLIC~1\Mozilla
[30/07/2008|13:59] C:\DOCUME~1\LOCALS~1\APPLIC~1\SiteAdvisor
[02/09/2008|18:17] C:\DOCUME~1\LOCALS~1\APPLIC~1\Wyzo
[18/08/2008|12:13] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
[18/08/2008|12:07] C:\DOCUME~1\NETWOR~1\APPLIC~1\SiteAdvisor
[15/08/2008|19:31] C:\DOCUME~1\sudrie\APPLIC~1\.wyzo
[06/09/2008|02:31] C:\DOCUME~1\sudrie\APPLIC~1\Adobe
[10/10/2006|22:43] C:\DOCUME~1\sudrie\APPLIC~1\AdobeUM
[07/10/2006|14:53] C:\DOCUME~1\sudrie\APPLIC~1\Ahead
[19/08/2008|11:23] C:\DOCUME~1\sudrie\APPLIC~1\Apple Computer
[13/08/2008|15:25] C:\DOCUME~1\sudrie\APPLIC~1\AVS4YOU
[07/08/2008|19:05] C:\DOCUME~1\sudrie\APPLIC~1\Babylon
[14/04/2008|04:34] C:\DOCUME~1\sudrie\APPLIC~1\CONFIG
[11/08/2007|01:04] C:\DOCUME~1\sudrie\APPLIC~1\Creative
[10/10/2006|22:25] C:\DOCUME~1\sudrie\APPLIC~1\CyberLink
[28/08/2008|14:34] C:\DOCUME~1\sudrie\APPLIC~1\Desktopicon
[27/08/2008|18:47] C:\DOCUME~1\sudrie\APPLIC~1\EoRezo
[12/08/2008|17:21] C:\DOCUME~1\sudrie\APPLIC~1\Google
[12/08/2008|17:57] C:\DOCUME~1\sudrie\APPLIC~1\Grammatica
[10/08/2007|20:46] C:\DOCUME~1\sudrie\APPLIC~1\Help
[27/01/2006|06:25] C:\DOCUME~1\sudrie\APPLIC~1\Identities
[28/08/2008|02:28] C:\DOCUME~1\sudrie\APPLIC~1\InstallShield
[24/01/2007|17:54] C:\DOCUME~1\sudrie\APPLIC~1\InterTrust
[30/07/2008|16:22] C:\DOCUME~1\sudrie\APPLIC~1\ItsLabel
[21/04/2007|17:31] C:\DOCUME~1\sudrie\APPLIC~1\La Bataille pour la Terre du Milieu
[02/09/2008|02:40] C:\DOCUME~1\sudrie\APPLIC~1\LimeWire
[06/09/2008|02:31] C:\DOCUME~1\sudrie\APPLIC~1\Macromedia
[05/08/2008|20:38] C:\DOCUME~1\sudrie\APPLIC~1\Malwarebytes
[18/08/2008|02:30] C:\DOCUME~1\sudrie\APPLIC~1\Microsoft
[28/08/2008|01:04] C:\DOCUME~1\sudrie\APPLIC~1\Mozilla
[30/07/2008|13:24] C:\DOCUME~1\sudrie\APPLIC~1\MSNInstaller
[07/04/2008|19:04] C:\DOCUME~1\sudrie\APPLIC~1\Nokia
[08/09/2008|20:24] C:\DOCUME~1\sudrie\APPLIC~1\Nokia Multimedia Player
[08/09/2008|18:46] C:\DOCUME~1\sudrie\APPLIC~1\PC Suite
[15/06/2008|10:58] C:\DOCUME~1\sudrie\APPLIC~1\PCSuiteMMSTemp
[01/09/2008|02:43] C:\DOCUME~1\sudrie\APPLIC~1\Real
[25/08/2006|08:02] C:\DOCUME~1\sudrie\APPLIC~1\SampleView
[12/08/2008|16:31] C:\DOCUME~1\sudrie\APPLIC~1\SecondLife
[08/08/2008|00:16] C:\DOCUME~1\sudrie\APPLIC~1\SecuROM
[27/08/2008|18:14] C:\DOCUME~1\sudrie\APPLIC~1\SiteAdvisor
[03/09/2008|19:46] C:\DOCUME~1\sudrie\APPLIC~1\skypePM
[10/09/2008|16:22] C:\DOCUME~1\sudrie\APPLIC~1\StarOffice8
[08/04/2007|14:00] C:\DOCUME~1\sudrie\APPLIC~1\Sun
[26/06/2007|18:34] C:\DOCUME~1\sudrie\APPLIC~1\Template
[07/10/2006|13:59] C:\DOCUME~1\sudrie\APPLIC~1\vlc
[31/07/2008|14:08] C:\DOCUME~1\sudrie\APPLIC~1\Windows Desktop Search
[20/08/2008|14:26] C:\DOCUME~1\sudrie\APPLIC~1\Windows Live Writer
[31/07/2008|14:08] C:\DOCUME~1\sudrie\APPLIC~1\Windows Search
[02/09/2008|16:35] C:\DOCUME~1\toto19\APPLIC~1\.wyzo
[04/09/2008|01:50] C:\DOCUME~1\toto19\APPLIC~1\Adobe
[04/09/2008|03:05] C:\DOCUME~1\toto19\APPLIC~1\Google
[27/01/2006|06:25] C:\DOCUME~1\toto19\APPLIC~1\Identities
[25/08/2008|14:28] C:\DOCUME~1\toto19\APPLIC~1\Macromedia
[08/09/2008|14:22] C:\DOCUME~1\toto19\APPLIC~1\Malwarebytes
[10/09/2008|02:21] C:\DOCUME~1\toto19\APPLIC~1\Microsoft
[05/09/2008|13:14] C:\DOCUME~1\toto19\APPLIC~1\Mozilla
[08/09/2008|23:08] C:\DOCUME~1\toto19\APPLIC~1\PC Suite
[02/09/2008|16:33] C:\DOCUME~1\toto19\APPLIC~1\Real
[25/08/2006|08:02] C:\DOCUME~1\toto19\APPLIC~1\SampleView
[04/09/2008|03:05] C:\DOCUME~1\toto19\APPLIC~1\SiteAdvisor
[09/09/2008|01:40] C:\DOCUME~1\toto19\APPLIC~1\Sun
[02/09/2008|16:33] C:\DOCUME~1\toto19\APPLIC~1\Windows Desktop Search
[02/09/2008|16:39] C:\DOCUME~1\toto19\APPLIC~1\Wyzo
--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks
[10/09/2008 19:29][--a------] C:\WINDOWS\tasks\V‚rifier les mises … jour de Windows Live Toolbar.job
[05/09/2008 13:58][--a------] C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[10/09/2008 18:00][--a------] C:\WINDOWS\tasks\Norton Security Scan.job
[15/08/2008 01:25][--a------] C:\WINDOWS\tasks\McDefragTask.job
[01/09/2008 01:06][--a------] C:\WINDOWS\tasks\McQcTask.job
[10/09/2008 16:17][--ah-----] C:\WINDOWS\tasks\SA.DAT
[10/08/2004 21:00][-r-h-----] C:\WINDOWS\tasks\desktop.ini
--------------------\\ Listing des dossiers dans C:\Program Files
[15/08/2008|11:08] C:\Program Files\_uninstallation_info
[01/09/2008|02:54] C:\Program Files\Adobe
[25/08/2006|08:01] C:\Program Files\AMD Live!
[15/08/2008|10:43] C:\Program Files\Apple Software Update
[01/09/2008|23:12] C:\Program Files\Artefacts Studio
[30/08/2008|14:58] C:\Program Files\Atari
[27/06/2007|20:00] C:\Program Files\Audible
[25/08/2006|08:01] C:\Program Files\BigFix
[14/08/2008|15:19] C:\Program Files\Bonjour
[01/09/2008|15:11] C:\Program Files\Boonty
[03/09/2008|19:51] C:\Program Files\BoontyGames
[04/08/2008|18:44] C:\Program Files\CCleaner
[22/09/2007|17:43] C:\Program Files\Codemasters
[28/08/2008|01:07] C:\Program Files\Controle Parental
[08/12/2007|11:43] C:\Program Files\Creative
[27/06/2007|19:57] C:\Program Files\Creative Installation Information
[28/08/2008|01:01] C:\Program Files\Cyanide
[28/08/2008|01:04] C:\Program Files\CyberLink
[28/08/2008|02:21] C:\Program Files\Diablo II
[25/08/2006|07:50] C:\Program Files\DIFX
[25/08/2006|07:53] C:\Program Files\Digital Media Reader
[07/10/2006|14:51] C:\Program Files\directx
[16/08/2008|11:45] C:\Program Files\DNA
[28/08/2008|01:01] C:\Program Files\EA GAMES
[28/08/2008|01:04] C:\Program Files\EA SPORTS
[28/08/2008|01:07] C:\Program Files\Eidos
[24/08/2008|21:36] C:\Program Files\eMule
[03/09/2008|19:52] C:\Program Files\Fichiers communs
[21/10/2006|16:20] C:\Program Files\GameShadow
[30/08/2008|15:02] C:\Program Files\GameSpy Arcade
[28/08/2008|01:06] C:\Program Files\Google
[25/08/2006|08:01] C:\Program Files\gtw_logo
[30/08/2008|18:44] C:\Program Files\InstallShield Installation Information
[28/08/2008|01:06] C:\Program Files\Internet Explorer
[14/08/2008|15:20] C:\Program Files\iPod
[14/08/2008|15:20] C:\Program Files\iTunes
[29/08/2008|02:26] C:\Program Files\Java
[09/09/2008|12:20] C:\Program Files\JkDefrag
[28/08/2008|01:04] C:\Program Files\L'EntraŒneur 2006
[30/07/2008|14:11] C:\Program Files\LimeWire
[03/09/2008|20:02] C:\Program Files\Malwarebytes' Anti-Malware
[18/01/2008|19:21] C:\Program Files\MC2
[10/09/2008|16:26] C:\Program Files\McAfee
[30/07/2008|14:01] C:\Program Files\McAfee.com
[25/08/2006|07:59] C:\Program Files\Microsoft Digital Image 2006
[27/01/2006|06:21] C:\Program Files\microsoft frontpage
[24/11/2007|13:48] C:\Program Files\Microsoft Games
[09/07/2007|18:24] C:\Program Files\Microsoft Office
[09/07/2007|18:24] C:\Program Files\Microsoft Visual Studio
[09/07/2007|18:20] C:\Program Files\Microsoft Visual Studio 8
[10/09/2008|11:29] C:\Program Files\Microsoft Works
[09/07/2007|18:23] C:\Program Files\Microsoft.NET
[09/09/2008|22:45] C:\Program Files\MioNet
[07/08/2008|03:44] C:\Program Files\Movie Maker
[10/09/2008|17:17] C:\Program Files\Mozilla Firefox
[09/07/2007|18:24] C:\Program Files\MSBuild
[27/01/2006|06:15] C:\Program Files\MSN Gaming Zone
[31/07/2008|19:02] C:\Program Files\MSXML 4.0
[08/09/2008|19:37] C:\Program Files\MSXML 6.0
[21/01/2007|01:46] C:\Program Files\neodivx2006
[07/10/2006|14:03] C:\Program Files\Nero
[07/08/2008|03:41] C:\Program Files\NetMeeting
[08/09/2008|19:38] C:\Program Files\Nokia
[10/09/2008|18:00] C:\Program Files\Norton Security Scan
[07/10/2006|14:34] C:\Program Files\Norton SystemWorks
[28/08/2008|23:21] C:\Program Files\NOS
[27/01/2006|06:16] C:\Program Files\Online Services
[28/08/2008|01:05] C:\Program Files\Orange
[07/08/2008|12:01] C:\Program Files\Outlook Express
[16/03/2008|18:50] C:\Program Files\PC Connectivity Solution
[30/08/2008|18:44] C:\Program Files\Philips
[29/08/2008|17:43] C:\Program Files\Picasa2
[14/08/2008|15:18] C:\Program Files\QuickTime
[25/08/2008|16:15] C:\Program Files\Real
[25/08/2006|07:58] C:\Program Files\Realtek
[14/08/2008|15:05] C:\Program Files\Safari
[28/08/2008|02:28] C:\Program Files\SAGEM
[28/08/2008|01:05] C:\Program Files\SAGEM(2)
[03/09/2008|15:30] C:\Program Files\scrabbleproB1.0.8
[27/01/2006|06:19] C:\Program Files\Services en ligne
[31/07/2008|19:21] C:\Program Files\SiteAdvisor
[02/09/2008|17:58] C:\Program Files\Spybot - Search & Destroy
[07/08/2008|18:45] C:\Program Files\StofWare
[25/08/2008|17:02] C:\Program Files\Sun
[09/09/2008|18:56] C:\Program Files\SweetIM
[27/08/2008|12:13] C:\Program Files\Trend Micro
[28/08/2008|01:04] C:\Program Files\Ubisoft
[27/01/2006|06:25] C:\Program Files\Uninstall Information
[31/08/2008|00:34] C:\Program Files\Unlocker
[07/10/2006|13:59] C:\Program Files\VideoLAN
[31/07/2008|14:01] C:\Program Files\Windows Desktop Search
[28/08/2008|01:06] C:\Program Files\Windows Live
[28/08/2008|01:06] C:\Program Files\Windows Live Favorites
[28/08/2008|01:06] C:\Program Files\Windows Live Toolbar
[09/08/2008|09:57] C:\Program Files\Windows Media Connect 2
[07/08/2008|15:37] C:\Program Files\Windows Media Player
[07/08/2008|03:41] C:\Program Files\Windows NT
[27/01/2006|06:16] C:\Program Files\Windows Plus
[27/01/2006|06:19] C:\Program Files\WindowsUpdate
[27/01/2006|06:21] C:\Program Files\xerox
[04/08/2008|18:44] C:\Program Files\Yahoo!
--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs
[31/08/2008|23:26] C:\Program Files\Fichiers communs\Adobe
[07/10/2006|14:03] C:\Program Files\Fichiers communs\Ahead
[30/11/2007|22:38] C:\Program Files\Fichiers communs\Apple
[28/08/2008|01:06] C:\Program Files\Fichiers communs\AVSMedia
[01/09/2008|21:27] C:\Program Files\Fichiers communs\BOONTY Shared
[27/06/2007|19:57] C:\Program Files\Fichiers communs\Creative
[09/07/2007|18:24] C:\Program Files\Fichiers communs\DESIGNER
[30/07/2008|12:16] C:\Program Files\Fichiers communs\France Telecom
[25/08/2006|07:55] C:\Program Files\Fichiers communs\InstallShield
[25/08/2008|13:31] C:\Program Files\Fichiers communs\Java
[31/07/2008|23:34] C:\Program Files\Fichiers communs\Macrovision Shared
[30/07/2008|13:56] C:\Program Files\Fichiers communs\McAfee
[28/08/2008|00:58] C:\Program Files\Fichiers communs\Microsoft Shared
[27/01/2006|06:18] C:\Program Files\Fichiers communs\MSSoap
[25/08/2006|07:50] C:\Program Files\Fichiers communs\New Boundary
[08/09/2008|19:36] C:\Program Files\Fichiers communs\Nokia
[26/01/2006|22:10] C:\Program Files\Fichiers communs\ODBC
[16/03/2008|18:50] C:\Program Files\Fichiers communs\PCSuite
[28/08/2008|01:04] C:\Program Files\Fichiers communs\Real
[25/08/2008|12:07] C:\Program Files\Fichiers communs\Services
[26/01/2006|22:10] C:\Program Files\Fichiers communs\SpeechEngines
[03/09/2008|18:00] C:\Program Files\Fichiers communs\Symantec Shared
[07/08/2008|12:01] C:\Program Files\Fichiers communs\System
[14/08/2008|14:22] C:\Program Files\Fichiers communs\WindowsLiveInstaller
[28/08/2008|01:06] C:\Program Files\Fichiers communs\xing shared
--------------------\\ Process
( 68 Processes )
... OK !
--------------------\\ Recherche avec S_Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Recherche de Fichiers / Dossiers Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Verification du Registre
..... OK !
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-09-10 19:49:08
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 311
--------------------\\ Recherche d'autres infections
--------------------\\ Cracks & Keygens ..
C:\DOCUME~1\sudrie\Application Data\Microsoft\Office\R‚cent\Pro Cycling Manager 2006.CRACK-NOCD..FR.lnk
[F:20][D:12]-> C:\DOCUME~1\sudrie\LOCALS~1\Temp
[F:60][D:0]-> C:\DOCUME~1\sudrie\Cookies
[F:690][D:8]-> C:\DOCUME~1\sudrie\LOCALS~1\TEMPOR~1\content.IE5
1 - "C:\Lop SD\LopR_1.txt" - 10/09/2008|19:17 - Option : [1]
2 - "C:\Lop SD\LopR_2.txt" - 10/09/2008|19:49 - Option : [2]
--------------------\\ Fin du rapport a 19:49:54
--------------------\\ Lop S&D 4.2.4-2 XP/Vista
Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 3
X86-based PC ( Multiprocessor Free : AMD Athlon(tm) 64 X2 Dual Core Processor 5000+ )
BIOS : )Phoenix - Award WorkstationBIOS v6.00PG
USER : sudrie ( Administrator )
BOOT : Normal boot
Antivirus : McAfee VirusScan (Activated)
Firewall : McAfee Personal Firewall (Activated)
"C:\Lop SD" ( MAJ : 08-09-2008|21:40 )
Option : [2] ( 10/09/2008|19:47 )
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ SUPPRESSION
Supprime! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\two setup mode load\find hole.exe
Supprime! - C:\DOCUME~1\sudrie\APPLIC~1\gluefi~1\City Type 01.exe
Supprime! - C:\DOCUME~1\sudrie\APPLIC~1\gluefi~1\Dvd mags.exe
Supprime! - C:\DOCUME~1\sudrie\APPLIC~1\gluefi~1\nxnwwxpm.exe
Supprime! - C:\DOCUME~1\sudrie\APPLIC~1\gluefi~1\qidngkkm.exe
Supprime! - C:\DOCUME~1\sudrie\APPLIC~1\gluefi~1\ymxhobpi.exe
Supprime! - C:\DOCUME~1\sudrie\MENUDM~1\PROGRA~1\BitDownload\BitDownload Downloads.lnk
Supprime! - C:\DOCUME~1\sudrie\Cookies\sudrie@www.adserver5[1].txt
Supprime! - C:\DOCUME~1\sudrie\Cookies\sudrie@adopt.euroclick[1].txt
Supprime! - C:\DOCUME~1\sudrie\Cookies\sudrie@partypoker[2].txt
Supprime! - C:\DOCUME~1\sudrie\Cookies\sudrie@32vegas[1].txt
Supprime! - C:\DOCUME~1\sudrie\Cookies\sudrie@banner.32vegas[2].txt
Supprime! - C:\WINDOWS\Tasks\AF24AD8A937F20EE.job
Supprime! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\two setup mode load
Supprime! - C:\DOCUME~1\19audrey\APPLIC~1\gluefi~1
Supprime! - C:\DOCUME~1\sudrie\APPLIC~1\gluefi~1
Supprime! - C:\Program Files\gluefi~1
Supprime! - C:\DOCUME~1\sudrie\MENUDM~1\PROGRA~1\BitDownload
-
[ Fichier Hosts ] .. Restaure!
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\
--------------------\\ Listing des dossiers dans APPLIC~1
[02/09/2008|20:08] C:\DOCUME~1\19audrey\APPLIC~1\.wyzo
[28/08/2008|01:05] C:\DOCUME~1\19audrey\APPLIC~1\Adobe
[26/08/2008|14:09] C:\DOCUME~1\19audrey\APPLIC~1\Google
[28/08/2008|01:05] C:\DOCUME~1\19audrey\APPLIC~1\Identities
[23/08/2008|19:27] C:\DOCUME~1\19audrey\APPLIC~1\Macromedia
[30/08/2008|13:05] C:\DOCUME~1\19audrey\APPLIC~1\Malwarebytes
[06/09/2008|11:15] C:\DOCUME~1\19audrey\APPLIC~1\Microsoft
[28/08/2008|01:04] C:\DOCUME~1\19audrey\APPLIC~1\Mozilla
[23/08/2008|19:39] C:\DOCUME~1\19audrey\APPLIC~1\PC Suite
[28/08/2008|01:07] C:\DOCUME~1\19audrey\APPLIC~1\Real
[28/08/2008|01:05] C:\DOCUME~1\19audrey\APPLIC~1\SampleView
[25/08/2008|12:46] C:\DOCUME~1\19audrey\APPLIC~1\SiteAdvisor
[09/09/2008|21:00] C:\DOCUME~1\19audrey\APPLIC~1\StarOffice8
[28/08/2008|01:05] C:\DOCUME~1\19audrey\APPLIC~1\Windows Desktop Search
[02/09/2008|20:08] C:\DOCUME~1\19audrey\APPLIC~1\Wyzo
[27/01/2006|06:25] C:\DOCUME~1\ADMINI~1\APPLIC~1\Identities
[25/08/2006|08:01] C:\DOCUME~1\ADMINI~1\APPLIC~1\Microsoft
[25/08/2006|08:02] C:\DOCUME~1\ADMINI~1\APPLIC~1\SampleView
[31/08/2008|23:26] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[30/11/2007|22:38] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple
[30/11/2007|22:39] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer
[13/08/2008|15:25] C:\DOCUME~1\ALLUSE~1\APPLIC~1\AVS4YOU
[16/08/2008|02:12] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Babylon
[30/07/2008|21:26] C:\DOCUME~1\ALLUSE~1\APPLIC~1\BOONTY
[28/08/2008|01:06] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
[10/09/2008|16:45] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google Updater
[08/09/2008|19:35] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Installations
[31/07/2008|23:34] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Macrovision
[05/08/2008|20:38] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Malwarebytes
[30/07/2008|13:59] C:\DOCUME~1\ALLUSE~1\APPLIC~1\McAfee
[30/07/2008|14:01] C:\DOCUME~1\ALLUSE~1\APPLIC~1\McAfee.com
[08/09/2008|19:18] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[10/09/2008|11:32] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft Help
[31/07/2008|19:49] C:\DOCUME~1\ALLUSE~1\APPLIC~1\MumboJumbo
[08/09/2008|19:42] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Nokia
[28/08/2008|23:21] C:\DOCUME~1\ALLUSE~1\APPLIC~1\NOS
[12/11/2006|20:51] C:\DOCUME~1\ALLUSE~1\APPLIC~1\nView_Profiles
[08/09/2008|18:45] C:\DOCUME~1\ALLUSE~1\APPLIC~1\PC Suite
[25/08/2006|07:50] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Prism Deploy
[02/09/2008|15:42] C:\DOCUME~1\ALLUSE~1\APPLIC~1\services
[30/07/2008|13:59] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SiteAdvisor
[03/09/2008|19:52] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Skype
[10/09/2008|11:30] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy
[09/09/2008|18:56] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SweetIM
[28/08/2008|01:07] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TEMP
[07/08/2008|15:49] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[02/09/2008|20:07] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
[04/08/2008|18:55] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Yahoo! Companion
[19/08/2008|19:19] C:\DOCUME~1\audrey\APPLIC~1\Adobe
[20/08/2008|12:09] C:\DOCUME~1\audrey\APPLIC~1\Google
[27/01/2006|06:25] C:\DOCUME~1\audrey\APPLIC~1\Identities
[19/08/2008|19:19] C:\DOCUME~1\audrey\APPLIC~1\Macromedia
[19/08/2008|19:24] C:\DOCUME~1\audrey\APPLIC~1\Microsoft
[25/08/2006|08:02] C:\DOCUME~1\audrey\APPLIC~1\SampleView
[20/08/2008|11:06] C:\DOCUME~1\audrey\APPLIC~1\SiteAdvisor
[18/08/2008|22:16] C:\DOCUME~1\audrey\APPLIC~1\Windows Desktop Search
[28/08/2008|01:05] C:\DOCUME~1\audrey19\APPLIC~1\Adobe
[28/08/2008|01:05] C:\DOCUME~1\audrey19\APPLIC~1\Google
[28/08/2008|01:05] C:\DOCUME~1\audrey19\APPLIC~1\Identities
[23/08/2008|16:22] C:\DOCUME~1\audrey19\APPLIC~1\Macromedia
[28/08/2008|01:05] C:\DOCUME~1\audrey19\APPLIC~1\Microsoft
[23/08/2008|19:34] C:\DOCUME~1\audrey19\APPLIC~1\PC Suite
[28/08/2008|01:05] C:\DOCUME~1\audrey19\APPLIC~1\SampleView
[28/08/2008|01:05] C:\DOCUME~1\audrey19\APPLIC~1\SiteAdvisor
[28/08/2008|01:05] C:\DOCUME~1\audrey19\APPLIC~1\Windows Desktop Search
[27/01/2006|06:25] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities
[25/08/2008|14:28] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Macromedia
[25/08/2006|08:01] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[25/08/2006|08:02] C:\DOCUME~1\DEFAUL~1\APPLIC~1\SampleView
[27/01/2006|06:25] C:\DOCUME~1\INVIT~1\APPLIC~1\Identities
[20/08/2008|13:47] C:\DOCUME~1\INVIT~1\APPLIC~1\Microsoft
[25/08/2006|08:02] C:\DOCUME~1\INVIT~1\APPLIC~1\SampleView
[20/08/2008|13:47] C:\DOCUME~1\INVIT~1\APPLIC~1\Windows Desktop Search
[02/09/2008|18:16] C:\DOCUME~1\LOCALS~1\APPLIC~1\.wyzo
[02/09/2008|18:16] C:\DOCUME~1\LOCALS~1\APPLIC~1\Adobe
[02/09/2008|18:16] C:\DOCUME~1\LOCALS~1\APPLIC~1\Macromedia
[10/08/2008|19:37] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[30/08/2008|19:00] C:\DOCUME~1\LOCALS~1\APPLIC~1\Mozilla
[30/07/2008|13:59] C:\DOCUME~1\LOCALS~1\APPLIC~1\SiteAdvisor
[02/09/2008|18:17] C:\DOCUME~1\LOCALS~1\APPLIC~1\Wyzo
[18/08/2008|12:13] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
[18/08/2008|12:07] C:\DOCUME~1\NETWOR~1\APPLIC~1\SiteAdvisor
[15/08/2008|19:31] C:\DOCUME~1\sudrie\APPLIC~1\.wyzo
[06/09/2008|02:31] C:\DOCUME~1\sudrie\APPLIC~1\Adobe
[10/10/2006|22:43] C:\DOCUME~1\sudrie\APPLIC~1\AdobeUM
[07/10/2006|14:53] C:\DOCUME~1\sudrie\APPLIC~1\Ahead
[19/08/2008|11:23] C:\DOCUME~1\sudrie\APPLIC~1\Apple Computer
[13/08/2008|15:25] C:\DOCUME~1\sudrie\APPLIC~1\AVS4YOU
[07/08/2008|19:05] C:\DOCUME~1\sudrie\APPLIC~1\Babylon
[14/04/2008|04:34] C:\DOCUME~1\sudrie\APPLIC~1\CONFIG
[11/08/2007|01:04] C:\DOCUME~1\sudrie\APPLIC~1\Creative
[10/10/2006|22:25] C:\DOCUME~1\sudrie\APPLIC~1\CyberLink
[28/08/2008|14:34] C:\DOCUME~1\sudrie\APPLIC~1\Desktopicon
[27/08/2008|18:47] C:\DOCUME~1\sudrie\APPLIC~1\EoRezo
[12/08/2008|17:21] C:\DOCUME~1\sudrie\APPLIC~1\Google
[12/08/2008|17:57] C:\DOCUME~1\sudrie\APPLIC~1\Grammatica
[10/08/2007|20:46] C:\DOCUME~1\sudrie\APPLIC~1\Help
[27/01/2006|06:25] C:\DOCUME~1\sudrie\APPLIC~1\Identities
[28/08/2008|02:28] C:\DOCUME~1\sudrie\APPLIC~1\InstallShield
[24/01/2007|17:54] C:\DOCUME~1\sudrie\APPLIC~1\InterTrust
[30/07/2008|16:22] C:\DOCUME~1\sudrie\APPLIC~1\ItsLabel
[21/04/2007|17:31] C:\DOCUME~1\sudrie\APPLIC~1\La Bataille pour la Terre du Milieu
[02/09/2008|02:40] C:\DOCUME~1\sudrie\APPLIC~1\LimeWire
[06/09/2008|02:31] C:\DOCUME~1\sudrie\APPLIC~1\Macromedia
[05/08/2008|20:38] C:\DOCUME~1\sudrie\APPLIC~1\Malwarebytes
[18/08/2008|02:30] C:\DOCUME~1\sudrie\APPLIC~1\Microsoft
[28/08/2008|01:04] C:\DOCUME~1\sudrie\APPLIC~1\Mozilla
[30/07/2008|13:24] C:\DOCUME~1\sudrie\APPLIC~1\MSNInstaller
[07/04/2008|19:04] C:\DOCUME~1\sudrie\APPLIC~1\Nokia
[08/09/2008|20:24] C:\DOCUME~1\sudrie\APPLIC~1\Nokia Multimedia Player
[08/09/2008|18:46] C:\DOCUME~1\sudrie\APPLIC~1\PC Suite
[15/06/2008|10:58] C:\DOCUME~1\sudrie\APPLIC~1\PCSuiteMMSTemp
[01/09/2008|02:43] C:\DOCUME~1\sudrie\APPLIC~1\Real
[25/08/2006|08:02] C:\DOCUME~1\sudrie\APPLIC~1\SampleView
[12/08/2008|16:31] C:\DOCUME~1\sudrie\APPLIC~1\SecondLife
[08/08/2008|00:16] C:\DOCUME~1\sudrie\APPLIC~1\SecuROM
[27/08/2008|18:14] C:\DOCUME~1\sudrie\APPLIC~1\SiteAdvisor
[03/09/2008|19:46] C:\DOCUME~1\sudrie\APPLIC~1\skypePM
[10/09/2008|16:22] C:\DOCUME~1\sudrie\APPLIC~1\StarOffice8
[08/04/2007|14:00] C:\DOCUME~1\sudrie\APPLIC~1\Sun
[26/06/2007|18:34] C:\DOCUME~1\sudrie\APPLIC~1\Template
[07/10/2006|13:59] C:\DOCUME~1\sudrie\APPLIC~1\vlc
[31/07/2008|14:08] C:\DOCUME~1\sudrie\APPLIC~1\Windows Desktop Search
[20/08/2008|14:26] C:\DOCUME~1\sudrie\APPLIC~1\Windows Live Writer
[31/07/2008|14:08] C:\DOCUME~1\sudrie\APPLIC~1\Windows Search
[02/09/2008|16:35] C:\DOCUME~1\toto19\APPLIC~1\.wyzo
[04/09/2008|01:50] C:\DOCUME~1\toto19\APPLIC~1\Adobe
[04/09/2008|03:05] C:\DOCUME~1\toto19\APPLIC~1\Google
[27/01/2006|06:25] C:\DOCUME~1\toto19\APPLIC~1\Identities
[25/08/2008|14:28] C:\DOCUME~1\toto19\APPLIC~1\Macromedia
[08/09/2008|14:22] C:\DOCUME~1\toto19\APPLIC~1\Malwarebytes
[10/09/2008|02:21] C:\DOCUME~1\toto19\APPLIC~1\Microsoft
[05/09/2008|13:14] C:\DOCUME~1\toto19\APPLIC~1\Mozilla
[08/09/2008|23:08] C:\DOCUME~1\toto19\APPLIC~1\PC Suite
[02/09/2008|16:33] C:\DOCUME~1\toto19\APPLIC~1\Real
[25/08/2006|08:02] C:\DOCUME~1\toto19\APPLIC~1\SampleView
[04/09/2008|03:05] C:\DOCUME~1\toto19\APPLIC~1\SiteAdvisor
[09/09/2008|01:40] C:\DOCUME~1\toto19\APPLIC~1\Sun
[02/09/2008|16:33] C:\DOCUME~1\toto19\APPLIC~1\Windows Desktop Search
[02/09/2008|16:39] C:\DOCUME~1\toto19\APPLIC~1\Wyzo
--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks
[10/09/2008 19:29][--a------] C:\WINDOWS\tasks\V‚rifier les mises … jour de Windows Live Toolbar.job
[05/09/2008 13:58][--a------] C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[10/09/2008 18:00][--a------] C:\WINDOWS\tasks\Norton Security Scan.job
[15/08/2008 01:25][--a------] C:\WINDOWS\tasks\McDefragTask.job
[01/09/2008 01:06][--a------] C:\WINDOWS\tasks\McQcTask.job
[10/09/2008 16:17][--ah-----] C:\WINDOWS\tasks\SA.DAT
[10/08/2004 21:00][-r-h-----] C:\WINDOWS\tasks\desktop.ini
--------------------\\ Listing des dossiers dans C:\Program Files
[15/08/2008|11:08] C:\Program Files\_uninstallation_info
[01/09/2008|02:54] C:\Program Files\Adobe
[25/08/2006|08:01] C:\Program Files\AMD Live!
[15/08/2008|10:43] C:\Program Files\Apple Software Update
[01/09/2008|23:12] C:\Program Files\Artefacts Studio
[30/08/2008|14:58] C:\Program Files\Atari
[27/06/2007|20:00] C:\Program Files\Audible
[25/08/2006|08:01] C:\Program Files\BigFix
[14/08/2008|15:19] C:\Program Files\Bonjour
[01/09/2008|15:11] C:\Program Files\Boonty
[03/09/2008|19:51] C:\Program Files\BoontyGames
[04/08/2008|18:44] C:\Program Files\CCleaner
[22/09/2007|17:43] C:\Program Files\Codemasters
[28/08/2008|01:07] C:\Program Files\Controle Parental
[08/12/2007|11:43] C:\Program Files\Creative
[27/06/2007|19:57] C:\Program Files\Creative Installation Information
[28/08/2008|01:01] C:\Program Files\Cyanide
[28/08/2008|01:04] C:\Program Files\CyberLink
[28/08/2008|02:21] C:\Program Files\Diablo II
[25/08/2006|07:50] C:\Program Files\DIFX
[25/08/2006|07:53] C:\Program Files\Digital Media Reader
[07/10/2006|14:51] C:\Program Files\directx
[16/08/2008|11:45] C:\Program Files\DNA
[28/08/2008|01:01] C:\Program Files\EA GAMES
[28/08/2008|01:04] C:\Program Files\EA SPORTS
[28/08/2008|01:07] C:\Program Files\Eidos
[24/08/2008|21:36] C:\Program Files\eMule
[03/09/2008|19:52] C:\Program Files\Fichiers communs
[21/10/2006|16:20] C:\Program Files\GameShadow
[30/08/2008|15:02] C:\Program Files\GameSpy Arcade
[28/08/2008|01:06] C:\Program Files\Google
[25/08/2006|08:01] C:\Program Files\gtw_logo
[30/08/2008|18:44] C:\Program Files\InstallShield Installation Information
[28/08/2008|01:06] C:\Program Files\Internet Explorer
[14/08/2008|15:20] C:\Program Files\iPod
[14/08/2008|15:20] C:\Program Files\iTunes
[29/08/2008|02:26] C:\Program Files\Java
[09/09/2008|12:20] C:\Program Files\JkDefrag
[28/08/2008|01:04] C:\Program Files\L'EntraŒneur 2006
[30/07/2008|14:11] C:\Program Files\LimeWire
[03/09/2008|20:02] C:\Program Files\Malwarebytes' Anti-Malware
[18/01/2008|19:21] C:\Program Files\MC2
[10/09/2008|16:26] C:\Program Files\McAfee
[30/07/2008|14:01] C:\Program Files\McAfee.com
[25/08/2006|07:59] C:\Program Files\Microsoft Digital Image 2006
[27/01/2006|06:21] C:\Program Files\microsoft frontpage
[24/11/2007|13:48] C:\Program Files\Microsoft Games
[09/07/2007|18:24] C:\Program Files\Microsoft Office
[09/07/2007|18:24] C:\Program Files\Microsoft Visual Studio
[09/07/2007|18:20] C:\Program Files\Microsoft Visual Studio 8
[10/09/2008|11:29] C:\Program Files\Microsoft Works
[09/07/2007|18:23] C:\Program Files\Microsoft.NET
[09/09/2008|22:45] C:\Program Files\MioNet
[07/08/2008|03:44] C:\Program Files\Movie Maker
[10/09/2008|17:17] C:\Program Files\Mozilla Firefox
[09/07/2007|18:24] C:\Program Files\MSBuild
[27/01/2006|06:15] C:\Program Files\MSN Gaming Zone
[31/07/2008|19:02] C:\Program Files\MSXML 4.0
[08/09/2008|19:37] C:\Program Files\MSXML 6.0
[21/01/2007|01:46] C:\Program Files\neodivx2006
[07/10/2006|14:03] C:\Program Files\Nero
[07/08/2008|03:41] C:\Program Files\NetMeeting
[08/09/2008|19:38] C:\Program Files\Nokia
[10/09/2008|18:00] C:\Program Files\Norton Security Scan
[07/10/2006|14:34] C:\Program Files\Norton SystemWorks
[28/08/2008|23:21] C:\Program Files\NOS
[27/01/2006|06:16] C:\Program Files\Online Services
[28/08/2008|01:05] C:\Program Files\Orange
[07/08/2008|12:01] C:\Program Files\Outlook Express
[16/03/2008|18:50] C:\Program Files\PC Connectivity Solution
[30/08/2008|18:44] C:\Program Files\Philips
[29/08/2008|17:43] C:\Program Files\Picasa2
[14/08/2008|15:18] C:\Program Files\QuickTime
[25/08/2008|16:15] C:\Program Files\Real
[25/08/2006|07:58] C:\Program Files\Realtek
[14/08/2008|15:05] C:\Program Files\Safari
[28/08/2008|02:28] C:\Program Files\SAGEM
[28/08/2008|01:05] C:\Program Files\SAGEM(2)
[03/09/2008|15:30] C:\Program Files\scrabbleproB1.0.8
[27/01/2006|06:19] C:\Program Files\Services en ligne
[31/07/2008|19:21] C:\Program Files\SiteAdvisor
[02/09/2008|17:58] C:\Program Files\Spybot - Search & Destroy
[07/08/2008|18:45] C:\Program Files\StofWare
[25/08/2008|17:02] C:\Program Files\Sun
[09/09/2008|18:56] C:\Program Files\SweetIM
[27/08/2008|12:13] C:\Program Files\Trend Micro
[28/08/2008|01:04] C:\Program Files\Ubisoft
[27/01/2006|06:25] C:\Program Files\Uninstall Information
[31/08/2008|00:34] C:\Program Files\Unlocker
[07/10/2006|13:59] C:\Program Files\VideoLAN
[31/07/2008|14:01] C:\Program Files\Windows Desktop Search
[28/08/2008|01:06] C:\Program Files\Windows Live
[28/08/2008|01:06] C:\Program Files\Windows Live Favorites
[28/08/2008|01:06] C:\Program Files\Windows Live Toolbar
[09/08/2008|09:57] C:\Program Files\Windows Media Connect 2
[07/08/2008|15:37] C:\Program Files\Windows Media Player
[07/08/2008|03:41] C:\Program Files\Windows NT
[27/01/2006|06:16] C:\Program Files\Windows Plus
[27/01/2006|06:19] C:\Program Files\WindowsUpdate
[27/01/2006|06:21] C:\Program Files\xerox
[04/08/2008|18:44] C:\Program Files\Yahoo!
--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs
[31/08/2008|23:26] C:\Program Files\Fichiers communs\Adobe
[07/10/2006|14:03] C:\Program Files\Fichiers communs\Ahead
[30/11/2007|22:38] C:\Program Files\Fichiers communs\Apple
[28/08/2008|01:06] C:\Program Files\Fichiers communs\AVSMedia
[01/09/2008|21:27] C:\Program Files\Fichiers communs\BOONTY Shared
[27/06/2007|19:57] C:\Program Files\Fichiers communs\Creative
[09/07/2007|18:24] C:\Program Files\Fichiers communs\DESIGNER
[30/07/2008|12:16] C:\Program Files\Fichiers communs\France Telecom
[25/08/2006|07:55] C:\Program Files\Fichiers communs\InstallShield
[25/08/2008|13:31] C:\Program Files\Fichiers communs\Java
[31/07/2008|23:34] C:\Program Files\Fichiers communs\Macrovision Shared
[30/07/2008|13:56] C:\Program Files\Fichiers communs\McAfee
[28/08/2008|00:58] C:\Program Files\Fichiers communs\Microsoft Shared
[27/01/2006|06:18] C:\Program Files\Fichiers communs\MSSoap
[25/08/2006|07:50] C:\Program Files\Fichiers communs\New Boundary
[08/09/2008|19:36] C:\Program Files\Fichiers communs\Nokia
[26/01/2006|22:10] C:\Program Files\Fichiers communs\ODBC
[16/03/2008|18:50] C:\Program Files\Fichiers communs\PCSuite
[28/08/2008|01:04] C:\Program Files\Fichiers communs\Real
[25/08/2008|12:07] C:\Program Files\Fichiers communs\Services
[26/01/2006|22:10] C:\Program Files\Fichiers communs\SpeechEngines
[03/09/2008|18:00] C:\Program Files\Fichiers communs\Symantec Shared
[07/08/2008|12:01] C:\Program Files\Fichiers communs\System
[14/08/2008|14:22] C:\Program Files\Fichiers communs\WindowsLiveInstaller
[28/08/2008|01:06] C:\Program Files\Fichiers communs\xing shared
--------------------\\ Process
( 68 Processes )
... OK !
--------------------\\ Recherche avec S_Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Recherche de Fichiers / Dossiers Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Verification du Registre
..... OK !
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-09-10 19:49:08
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 311
--------------------\\ Recherche d'autres infections
--------------------\\ Cracks & Keygens ..
C:\DOCUME~1\sudrie\Application Data\Microsoft\Office\R‚cent\Pro Cycling Manager 2006.CRACK-NOCD..FR.lnk
[F:20][D:12]-> C:\DOCUME~1\sudrie\LOCALS~1\Temp
[F:60][D:0]-> C:\DOCUME~1\sudrie\Cookies
[F:690][D:8]-> C:\DOCUME~1\sudrie\LOCALS~1\TEMPOR~1\content.IE5
1 - "C:\Lop SD\LopR_1.txt" - 10/09/2008|19:17 - Option : [1]
2 - "C:\Lop SD\LopR_2.txt" - 10/09/2008|19:49 - Option : [2]
--------------------\\ Fin du rapport a 19:49:54
g!rly : c'est quoi qui t'a mis la puce à l'oreille pour la lop ?
j en suis ou? je rame comprend rien a ce que je fait je commence a avoir des visions VOUS FAITE DES COURT DU SOIR VOUS?j en é besoin je crois
ok
regarde
tu vas dans application data
tu trouve le dossier microsoft
tu l´ouvres
tu trouve le dossier office et l´ouvre
tu ouvre le dossier recent
et la tu as Pro Cycling Manager 2006.CRACK-NOCD..FR.lnk
@+
regarde
tu vas dans application data
tu trouve le dossier microsoft
tu l´ouvres
tu trouve le dossier office et l´ouvre
tu ouvre le dossier recent
et la tu as Pro Cycling Manager 2006.CRACK-NOCD..FR.lnk
@+
merci g!rly.
christ19200 : tu n'apprendras jamais mieux que par toi-même. Bien sûr les bases tu dois les apprendre par des gens qui sont qualifiés, mais pour le reste, si tu es fan de l'informatique ça rentre sans problème. Hijackthis je l'ai appris tout seul par exemple. Il m'arrive de poser des questions mais ça devient de plus en plus rare, et c'est pareil pour tous les helpers. Au début on est tous un peu perdu, mais les meilleurs informaticiens sont souvent ceux qui testent tout et qui font beaucoup de chose en autodidacte. Je suis pas prétentieux quand je dis ça, que ce soit clair. J'ai fait des bourdes énormes au début, à force de tout tester, mais en revanche je sais où je ne dois plus aller. Exemple : j'ai demandé quelque chose à g!rly, lui/elle m'a répondu, et tu peux être sûr que j'oublierai plus. C'est comme ça que tu avance.
christ19200 : tu n'apprendras jamais mieux que par toi-même. Bien sûr les bases tu dois les apprendre par des gens qui sont qualifiés, mais pour le reste, si tu es fan de l'informatique ça rentre sans problème. Hijackthis je l'ai appris tout seul par exemple. Il m'arrive de poser des questions mais ça devient de plus en plus rare, et c'est pareil pour tous les helpers. Au début on est tous un peu perdu, mais les meilleurs informaticiens sont souvent ceux qui testent tout et qui font beaucoup de chose en autodidacte. Je suis pas prétentieux quand je dis ça, que ce soit clair. J'ai fait des bourdes énormes au début, à force de tout tester, mais en revanche je sais où je ne dois plus aller. Exemple : j'ai demandé quelque chose à g!rly, lui/elle m'a répondu, et tu peux être sûr que j'oublierai plus. C'est comme ça que tu avance.
Pour épargner tes yeux ;)
Telecharges Killbox :
http://www.downloads.subratam.org/KillBox.exe
Doubles clique sur killbox.exe (Pocket Killbox)
Copie la ligne ci dessous :
C:\DOCUME~1\sudrie\Application Data\Microsoft\Office\R‚cent\Pro Cycling Manager 2006.CRACK-NOCD..FR.lnk
-> Sur PocketKillBox --> menu "File" --> "Paste from Clipboard"
Tu peux vérifier dans le menu déroulant que le fichier est bien présent.
- coche la case "Unregister dll before deleting" (si tu en as la possibilité)
- click sur le bouton "All files"
- click ensuite sur la croix rouge
Au deux messages qui vont s'afficher, tu réponds par "YES"
L'ordinateur doit redémarrer, sinon, fais le toi-même, quoiqu'il arrive.
Après redémarrage, relance Killbox puis clic sur l'onglet "fichier" -> Log -> Actions History Log
Poste le rapport ici
Bonne fin de soirée
pour ma part je repasse demain
@+
Telecharges Killbox :
http://www.downloads.subratam.org/KillBox.exe
Doubles clique sur killbox.exe (Pocket Killbox)
Copie la ligne ci dessous :
C:\DOCUME~1\sudrie\Application Data\Microsoft\Office\R‚cent\Pro Cycling Manager 2006.CRACK-NOCD..FR.lnk
-> Sur PocketKillBox --> menu "File" --> "Paste from Clipboard"
Tu peux vérifier dans le menu déroulant que le fichier est bien présent.
- coche la case "Unregister dll before deleting" (si tu en as la possibilité)
- click sur le bouton "All files"
- click ensuite sur la croix rouge
Au deux messages qui vont s'afficher, tu réponds par "YES"
L'ordinateur doit redémarrer, sinon, fais le toi-même, quoiqu'il arrive.
Après redémarrage, relance Killbox puis clic sur l'onglet "fichier" -> Log -> Actions History Log
Poste le rapport ici
Bonne fin de soirée
pour ma part je repasse demain
@+
ok bonne nuit j ai enfin trouvé pas eu besoin de ton logiciel ct devant mon nez ce fichue dossier j ai supprimé on dirai que il y a du mieux par contre j ai tjr c probleme de resolution au demarage il c met en640par480 automatique obligé de le reconfiguré a chaque fois je vais allez gratté dans les parametres vais voir a demain é merci merci merci merci merci et encore merci
tiens le rapport ,
--------------------\\ Lop S&D 4.2.4-2 XP/Vista
Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 3
X86-based PC ( Multiprocessor Free : AMD Athlon(tm) 64 X2 Dual Core Processor 5000+ )
BIOS : )Phoenix - Award WorkstationBIOS v6.00PG
USER : sudrie ( Administrator )
BOOT : Normal boot
Antivirus : McAfee VirusScan (Activated)
Firewall : McAfee Personal Firewall (Activated)
"C:\Lop SD" ( MAJ : 08-09-2008|21:40 )
Option : [2] ( 11/09/2008| 0:30 )
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\
--------------------\\ Listing des dossiers dans APPLIC~1
[02/09/2008|20:08] C:\DOCUME~1\19audrey\APPLIC~1\.wyzo
[28/08/2008|01:05] C:\DOCUME~1\19audrey\APPLIC~1\Adobe
[26/08/2008|14:09] C:\DOCUME~1\19audrey\APPLIC~1\Google
[28/08/2008|01:05] C:\DOCUME~1\19audrey\APPLIC~1\Identities
[23/08/2008|19:27] C:\DOCUME~1\19audrey\APPLIC~1\Macromedia
[30/08/2008|13:05] C:\DOCUME~1\19audrey\APPLIC~1\Malwarebytes
[06/09/2008|11:15] C:\DOCUME~1\19audrey\APPLIC~1\Microsoft
[28/08/2008|01:04] C:\DOCUME~1\19audrey\APPLIC~1\Mozilla
[23/08/2008|19:39] C:\DOCUME~1\19audrey\APPLIC~1\PC Suite
[28/08/2008|01:07] C:\DOCUME~1\19audrey\APPLIC~1\Real
[28/08/2008|01:05] C:\DOCUME~1\19audrey\APPLIC~1\SampleView
[25/08/2008|12:46] C:\DOCUME~1\19audrey\APPLIC~1\SiteAdvisor
[09/09/2008|21:00] C:\DOCUME~1\19audrey\APPLIC~1\StarOffice8
[28/08/2008|01:05] C:\DOCUME~1\19audrey\APPLIC~1\Windows Desktop Search
[02/09/2008|20:08] C:\DOCUME~1\19audrey\APPLIC~1\Wyzo
[27/01/2006|06:25] C:\DOCUME~1\ADMINI~1\APPLIC~1\Identities
[25/08/2006|08:01] C:\DOCUME~1\ADMINI~1\APPLIC~1\Microsoft
[25/08/2006|08:02] C:\DOCUME~1\ADMINI~1\APPLIC~1\SampleView
[31/08/2008|23:26] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[30/11/2007|22:38] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple
[30/11/2007|22:39] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer
[13/08/2008|15:25] C:\DOCUME~1\ALLUSE~1\APPLIC~1\AVS4YOU
[16/08/2008|02:12] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Babylon
[30/07/2008|21:26] C:\DOCUME~1\ALLUSE~1\APPLIC~1\BOONTY
[28/08/2008|01:06] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
[10/09/2008|16:45] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google Updater
[08/09/2008|19:35] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Installations
[31/07/2008|23:34] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Macrovision
[05/08/2008|20:38] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Malwarebytes
[30/07/2008|13:59] C:\DOCUME~1\ALLUSE~1\APPLIC~1\McAfee
[30/07/2008|14:01] C:\DOCUME~1\ALLUSE~1\APPLIC~1\McAfee.com
[08/09/2008|19:18] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[10/09/2008|11:32] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft Help
[31/07/2008|19:49] C:\DOCUME~1\ALLUSE~1\APPLIC~1\MumboJumbo
[08/09/2008|19:42] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Nokia
[28/08/2008|23:21] C:\DOCUME~1\ALLUSE~1\APPLIC~1\NOS
[12/11/2006|20:51] C:\DOCUME~1\ALLUSE~1\APPLIC~1\nView_Profiles
[08/09/2008|18:45] C:\DOCUME~1\ALLUSE~1\APPLIC~1\PC Suite
[25/08/2006|07:50] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Prism Deploy
[02/09/2008|15:42] C:\DOCUME~1\ALLUSE~1\APPLIC~1\services
[30/07/2008|13:59] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SiteAdvisor
[03/09/2008|19:52] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Skype
[10/09/2008|21:17] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy
[09/09/2008|18:56] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SweetIM
[28/08/2008|01:07] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TEMP
[07/08/2008|15:49] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[02/09/2008|20:07] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
[04/08/2008|18:55] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Yahoo! Companion
[19/08/2008|19:19] C:\DOCUME~1\audrey\APPLIC~1\Adobe
[20/08/2008|12:09] C:\DOCUME~1\audrey\APPLIC~1\Google
[27/01/2006|06:25] C:\DOCUME~1\audrey\APPLIC~1\Identities
[19/08/2008|19:19] C:\DOCUME~1\audrey\APPLIC~1\Macromedia
[19/08/2008|19:24] C:\DOCUME~1\audrey\APPLIC~1\Microsoft
[25/08/2006|08:02] C:\DOCUME~1\audrey\APPLIC~1\SampleView
[20/08/2008|11:06] C:\DOCUME~1\audrey\APPLIC~1\SiteAdvisor
[18/08/2008|22:16] C:\DOCUME~1\audrey\APPLIC~1\Windows Desktop Search
[28/08/2008|01:05] C:\DOCUME~1\audrey19\APPLIC~1\Adobe
[28/08/2008|01:05] C:\DOCUME~1\audrey19\APPLIC~1\Google
[28/08/2008|01:05] C:\DOCUME~1\audrey19\APPLIC~1\Identities
[23/08/2008|16:22] C:\DOCUME~1\audrey19\APPLIC~1\Macromedia
[28/08/2008|01:05] C:\DOCUME~1\audrey19\APPLIC~1\Microsoft
[23/08/2008|19:34] C:\DOCUME~1\audrey19\APPLIC~1\PC Suite
[28/08/2008|01:05] C:\DOCUME~1\audrey19\APPLIC~1\SampleView
[28/08/2008|01:05] C:\DOCUME~1\audrey19\APPLIC~1\SiteAdvisor
[28/08/2008|01:05] C:\DOCUME~1\audrey19\APPLIC~1\Windows Desktop Search
[27/01/2006|06:25] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities
[25/08/2008|14:28] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Macromedia
[25/08/2006|08:01] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[25/08/2006|08:02] C:\DOCUME~1\DEFAUL~1\APPLIC~1\SampleView
[27/01/2006|06:25] C:\DOCUME~1\INVIT~1\APPLIC~1\Identities
[20/08/2008|13:47] C:\DOCUME~1\INVIT~1\APPLIC~1\Microsoft
[25/08/2006|08:02] C:\DOCUME~1\INVIT~1\APPLIC~1\SampleView
[20/08/2008|13:47] C:\DOCUME~1\INVIT~1\APPLIC~1\Windows Desktop Search
[02/09/2008|18:16] C:\DOCUME~1\LOCALS~1\APPLIC~1\Adobe
[02/09/2008|18:16] C:\DOCUME~1\LOCALS~1\APPLIC~1\Macromedia
[10/08/2008|19:37] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[30/08/2008|19:00] C:\DOCUME~1\LOCALS~1\APPLIC~1\Mozilla
[30/07/2008|13:59] C:\DOCUME~1\LOCALS~1\APPLIC~1\SiteAdvisor
[02/09/2008|18:17] C:\DOCUME~1\LOCALS~1\APPLIC~1\Wyzo
[18/08/2008|12:13] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
[18/08/2008|12:07] C:\DOCUME~1\NETWOR~1\APPLIC~1\SiteAdvisor
[06/09/2008|02:31] C:\DOCUME~1\sudrie\APPLIC~1\Adobe
[10/10/2006|22:43] C:\DOCUME~1\sudrie\APPLIC~1\AdobeUM
[07/10/2006|14:53] C:\DOCUME~1\sudrie\APPLIC~1\Ahead
[19/08/2008|11:23] C:\DOCUME~1\sudrie\APPLIC~1\Apple Computer
[13/08/2008|15:25] C:\DOCUME~1\sudrie\APPLIC~1\AVS4YOU
[07/08/2008|19:05] C:\DOCUME~1\sudrie\APPLIC~1\Babylon
[14/04/2008|04:34] C:\DOCUME~1\sudrie\APPLIC~1\CONFIG
[11/08/2007|01:04] C:\DOCUME~1\sudrie\APPLIC~1\Creative
[10/10/2006|22:25] C:\DOCUME~1\sudrie\APPLIC~1\CyberLink
[28/08/2008|14:34] C:\DOCUME~1\sudrie\APPLIC~1\Desktopicon
[27/08/2008|18:47] C:\DOCUME~1\sudrie\APPLIC~1\EoRezo
[12/08/2008|17:21] C:\DOCUME~1\sudrie\APPLIC~1\Google
[12/08/2008|17:57] C:\DOCUME~1\sudrie\APPLIC~1\Grammatica
[10/08/2007|20:46] C:\DOCUME~1\sudrie\APPLIC~1\Help
[27/01/2006|06:25] C:\DOCUME~1\sudrie\APPLIC~1\Identities
[28/08/2008|02:28] C:\DOCUME~1\sudrie\APPLIC~1\InstallShield
[24/01/2007|17:54] C:\DOCUME~1\sudrie\APPLIC~1\InterTrust
[30/07/2008|16:22] C:\DOCUME~1\sudrie\APPLIC~1\ItsLabel
[21/04/2007|17:31] C:\DOCUME~1\sudrie\APPLIC~1\La Bataille pour la Terre du Milieu
[02/09/2008|02:40] C:\DOCUME~1\sudrie\APPLIC~1\LimeWire
[06/09/2008|02:31] C:\DOCUME~1\sudrie\APPLIC~1\Macromedia
[05/08/2008|20:38] C:\DOCUME~1\sudrie\APPLIC~1\Malwarebytes
[18/08/2008|02:30] C:\DOCUME~1\sudrie\APPLIC~1\Microsoft
[28/08/2008|01:04] C:\DOCUME~1\sudrie\APPLIC~1\Mozilla
[30/07/2008|13:24] C:\DOCUME~1\sudrie\APPLIC~1\MSNInstaller
[07/04/2008|19:04] C:\DOCUME~1\sudrie\APPLIC~1\Nokia
[08/09/2008|20:24] C:\DOCUME~1\sudrie\APPLIC~1\Nokia Multimedia Player
[08/09/2008|18:46] C:\DOCUME~1\sudrie\APPLIC~1\PC Suite
[15/06/2008|10:58] C:\DOCUME~1\sudrie\APPLIC~1\PCSuiteMMSTemp
[01/09/2008|02:43] C:\DOCUME~1\sudrie\APPLIC~1\Real
[25/08/2006|08:02] C:\DOCUME~1\sudrie\APPLIC~1\SampleView
[08/08/2008|00:16] C:\DOCUME~1\sudrie\APPLIC~1\SecuROM
[27/08/2008|18:14] C:\DOCUME~1\sudrie\APPLIC~1\SiteAdvisor
[03/09/2008|19:46] C:\DOCUME~1\sudrie\APPLIC~1\skypePM
[10/09/2008|23:48] C:\DOCUME~1\sudrie\APPLIC~1\StarOffice8
[08/04/2007|14:00] C:\DOCUME~1\sudrie\APPLIC~1\Sun
[26/06/2007|18:34] C:\DOCUME~1\sudrie\APPLIC~1\Template
[07/10/2006|13:59] C:\DOCUME~1\sudrie\APPLIC~1\vlc
[31/07/2008|14:08] C:\DOCUME~1\sudrie\APPLIC~1\Windows Desktop Search
[20/08/2008|14:26] C:\DOCUME~1\sudrie\APPLIC~1\Windows Live Writer
[31/07/2008|14:08] C:\DOCUME~1\sudrie\APPLIC~1\Windows Search
[02/09/2008|16:35] C:\DOCUME~1\toto19\APPLIC~1\.wyzo
[04/09/2008|01:50] C:\DOCUME~1\toto19\APPLIC~1\Adobe
[04/09/2008|03:05] C:\DOCUME~1\toto19\APPLIC~1\Google
[27/01/2006|06:25] C:\DOCUME~1\toto19\APPLIC~1\Identities
[25/08/2008|14:28] C:\DOCUME~1\toto19\APPLIC~1\Macromedia
[08/09/2008|14:22] C:\DOCUME~1\toto19\APPLIC~1\Malwarebytes
[10/09/2008|02:21] C:\DOCUME~1\toto19\APPLIC~1\Microsoft
[05/09/2008|13:14] C:\DOCUME~1\toto19\APPLIC~1\Mozilla
[08/09/2008|23:08] C:\DOCUME~1\toto19\APPLIC~1\PC Suite
[02/09/2008|16:33] C:\DOCUME~1\toto19\APPLIC~1\Real
[25/08/2006|08:02] C:\DOCUME~1\toto19\APPLIC~1\SampleView
[04/09/2008|03:05] C:\DOCUME~1\toto19\APPLIC~1\SiteAdvisor
[09/09/2008|01:40] C:\DOCUME~1\toto19\APPLIC~1\Sun
[02/09/2008|16:33] C:\DOCUME~1\toto19\APPLIC~1\Windows Desktop Search
[02/09/2008|16:39] C:\DOCUME~1\toto19\APPLIC~1\Wyzo
--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks
[11/09/2008 00:29][--a------] C:\WINDOWS\tasks\V‚rifier les mises … jour de Windows Live Toolbar.job
[05/09/2008 13:58][--a------] C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[10/09/2008 18:00][--a------] C:\WINDOWS\tasks\Norton Security Scan.job
[15/08/2008 01:25][--a------] C:\WINDOWS\tasks\McDefragTask.job
[01/09/2008 01:06][--a------] C:\WINDOWS\tasks\McQcTask.job
[10/09/2008 23:47][--ah-----] C:\WINDOWS\tasks\SA.DAT
[10/08/2004 21:00][-r-h-----] C:\WINDOWS\tasks\desktop.ini
--------------------\\ Listing des dossiers dans C:\Program Files
[15/08/2008|11:08] C:\Program Files\_uninstallation_info
[01/09/2008|02:54] C:\Program Files\Adobe
[25/08/2006|08:01] C:\Program Files\AMD Live!
[15/08/2008|10:43] C:\Program Files\Apple Software Update
[01/09/2008|23:12] C:\Program Files\Artefacts Studio
[30/08/2008|14:58] C:\Program Files\Atari
[27/06/2007|20:00] C:\Program Files\Audible
[25/08/2006|08:01] C:\Program Files\BigFix
[14/08/2008|15:19] C:\Program Files\Bonjour
[01/09/2008|15:11] C:\Program Files\Boonty
[03/09/2008|19:51] C:\Program Files\BoontyGames
[04/08/2008|18:44] C:\Program Files\CCleaner
[22/09/2007|17:43] C:\Program Files\Codemasters
[28/08/2008|01:07] C:\Program Files\Controle Parental
[08/12/2007|11:43] C:\Program Files\Creative
[27/06/2007|19:57] C:\Program Files\Creative Installation Information
[28/08/2008|01:01] C:\Program Files\Cyanide
[28/08/2008|01:04] C:\Program Files\CyberLink
[28/08/2008|02:21] C:\Program Files\Diablo II
[25/08/2006|07:50] C:\Program Files\DIFX
[25/08/2006|07:53] C:\Program Files\Digital Media Reader
[07/10/2006|14:51] C:\Program Files\directx
[16/08/2008|11:45] C:\Program Files\DNA
[28/08/2008|01:01] C:\Program Files\EA GAMES
[28/08/2008|01:04] C:\Program Files\EA SPORTS
[28/08/2008|01:07] C:\Program Files\Eidos
[24/08/2008|21:36] C:\Program Files\eMule
[03/09/2008|19:52] C:\Program Files\Fichiers communs
[21/10/2006|16:20] C:\Program Files\GameShadow
[30/08/2008|15:02] C:\Program Files\GameSpy Arcade
[28/08/2008|01:06] C:\Program Files\Google
[25/08/2006|08:01] C:\Program Files\gtw_logo
[30/08/2008|18:44] C:\Program Files\InstallShield Installation Information
[28/08/2008|01:06] C:\Program Files\Internet Explorer
[14/08/2008|15:20] C:\Program Files\iPod
[14/08/2008|15:20] C:\Program Files\iTunes
[29/08/2008|02:26] C:\Program Files\Java
[09/09/2008|12:20] C:\Program Files\JkDefrag
[28/08/2008|01:04] C:\Program Files\L'EntraŒneur 2006
[30/07/2008|14:11] C:\Program Files\LimeWire
[03/09/2008|20:02] C:\Program Files\Malwarebytes' Anti-Malware
[18/01/2008|19:21] C:\Program Files\MC2
[10/09/2008|23:38] C:\Program Files\McAfee
[30/07/2008|14:01] C:\Program Files\McAfee.com
[25/08/2006|07:59] C:\Program Files\Microsoft Digital Image 2006
[27/01/2006|06:21] C:\Program Files\microsoft frontpage
[24/11/2007|13:48] C:\Program Files\Microsoft Games
[09/07/2007|18:24] C:\Program Files\Microsoft Office
[09/07/2007|18:24] C:\Program Files\Microsoft Visual Studio
[09/07/2007|18:20] C:\Program Files\Microsoft Visual Studio 8
[10/09/2008|11:29] C:\Program Files\Microsoft Works
[09/07/2007|18:23] C:\Program Files\Microsoft.NET
[10/09/2008|23:47] C:\Program Files\MioNet
[07/08/2008|03:44] C:\Program Files\Movie Maker
[10/09/2008|23:50] C:\Program Files\Mozilla Firefox
[09/07/2007|18:24] C:\Program Files\MSBuild
[27/01/2006|06:15] C:\Program Files\MSN Gaming Zone
[31/07/2008|19:02] C:\Program Files\MSXML 4.0
[08/09/2008|19:37] C:\Program Files\MSXML 6.0
[21/01/2007|01:46] C:\Program Files\neodivx2006
[07/10/2006|14:03] C:\Program Files\Nero
[07/08/2008|03:41] C:\Program Files\NetMeeting
[08/09/2008|19:38] C:\Program Files\Nokia
[10/09/2008|18:00] C:\Program Files\Norton Security Scan
[07/10/2006|14:34] C:\Program Files\Norton SystemWorks
[28/08/2008|23:21] C:\Program Files\NOS
[27/01/2006|06:16] C:\Program Files\Online Services
[28/08/2008|01:05] C:\Program Files\Orange
[07/08/2008|12:01] C:\Program Files\Outlook Express
[16/03/2008|18:50] C:\Program Files\PC Connectivity Solution
[30/08/2008|18:44] C:\Program Files\Philips
[29/08/2008|17:43] C:\Program Files\Picasa2
[14/08/2008|15:18] C:\Program Files\QuickTime
[25/08/2008|16:15] C:\Program Files\Real
[25/08/2006|07:58] C:\Program Files\Realtek
[14/08/2008|15:05] C:\Program Files\Safari
[28/08/2008|02:28] C:\Program Files\SAGEM
[28/08/2008|01:05] C:\Program Files\SAGEM(2)
[03/09/2008|15:30] C:\Program Files\scrabbleproB1.0.8
[27/01/2006|06:19] C:\Program Files\Services en ligne
[31/07/2008|19:21] C:\Program Files\SiteAdvisor
[02/09/2008|17:58] C:\Program Files\Spybot - Search & Destroy
[07/08/2008|18:45] C:\Program Files\StofWare
[25/08/2008|17:02] C:\Program Files\Sun
[09/09/2008|18:56] C:\Program Files\SweetIM
[27/08/2008|12:13] C:\Program Files\Trend Micro
[28/08/2008|01:04] C:\Program Files\Ubisoft
[27/01/2006|06:25] C:\Program Files\Uninstall Information
[31/08/2008|00:34] C:\Program Files\Unlocker
[07/10/2006|13:59] C:\Program Files\VideoLAN
[31/07/2008|14:01] C:\Program Files\Windows Desktop Search
[28/08/2008|01:06] C:\Program Files\Windows Live
[28/08/2008|01:06] C:\Program Files\Windows Live Favorites
[28/08/2008|01:06] C:\Program Files\Windows Live Toolbar
[09/08/2008|09:57] C:\Program Files\Windows Media Connect 2
[07/08/2008|15:37] C:\Program Files\Windows Media Player
[07/08/2008|03:41] C:\Program Files\Windows NT
[27/01/2006|06:16] C:\Program Files\Windows Plus
[27/01/2006|06:19] C:\Program Files\WindowsUpdate
[27/01/2006|06:21] C:\Program Files\xerox
[04/08/2008|18:44] C:\Program Files\Yahoo!
--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs
[31/08/2008|23:26] C:\Program Files\Fichiers communs\Adobe
[07/10/2006|14:03] C:\Program Files\Fichiers communs\Ahead
[30/11/2007|22:38] C:\Program Files\Fichiers communs\Apple
[28/08/2008|01:06] C:\Program Files\Fichiers communs\AVSMedia
[01/09/2008|21:27] C:\Program Files\Fichiers communs\BOONTY Shared
[27/06/2007|19:57] C:\Program Files\Fichiers communs\Creative
[09/07/2007|18:24] C:\Program Files\Fichiers communs\DESIGNER
[30/07/2008|12:16] C:\Program Files\Fichiers communs\France Telecom
[25/08/2006|07:55] C:\Program Files\Fichiers communs\InstallShield
[25/08/2008|13:31] C:\Program Files\Fichiers communs\Java
[31/07/2008|23:34] C:\Program Files\Fichiers communs\Macrovision Shared
[30/07/2008|13:56] C:\Program Files\Fichiers communs\McAfee
[28/08/2008|00:58] C:\Program Files\Fichiers communs\Microsoft Shared
[27/01/2006|06:18] C:\Program Files\Fichiers communs\MSSoap
[25/08/2006|07:50] C:\Program Files\Fichiers communs\New Boundary
[08/09/2008|19:36] C:\Program Files\Fichiers communs\Nokia
[26/01/2006|22:10] C:\Program Files\Fichiers communs\ODBC
[16/03/2008|18:50] C:\Program Files\Fichiers communs\PCSuite
[28/08/2008|01:04] C:\Program Files\Fichiers communs\Real
[25/08/2008|12:07] C:\Program Files\Fichiers communs\Services
[26/01/2006|22:10] C:\Program Files\Fichiers communs\SpeechEngines
[03/09/2008|18:00] C:\Program Files\Fichiers communs\Symantec Shared
[07/08/2008|12:01] C:\Program Files\Fichiers communs\System
[14/08/2008|14:22] C:\Program Files\Fichiers communs\WindowsLiveInstaller
[28/08/2008|01:06] C:\Program Files\Fichiers communs\xing shared
--------------------\\ Process
( 68 Processes )
... OK !
--------------------\\ Recherche avec S_Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Recherche de Fichiers / Dossiers Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Verification du Registre
..... OK !
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-09-11 00:32:29
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 317
--------------------\\ Recherche d'autres infections
Aucune autre infection trouvée !
[F:37][D:10]-> C:\DOCUME~1\sudrie\LOCALS~1\Temp
[F:19][D:0]-> C:\DOCUME~1\sudrie\Cookies
[F:682][D:5]-> C:\DOCUME~1\sudrie\LOCALS~1\TEMPOR~1\content.IE5
1 - "C:\Lop SD\LopR_1.txt" - 10/09/2008|19:17 - Option : [1]
2 - "C:\Lop SD\LopR_2.txt" - 10/09/2008|19:49 - Option : [2]
3 - "C:\Lop SD\LopR_3.txt" - 11/09/2008| 0:33 - Option : [2]
--------------------\\ Fin du rapport a 0:33:28
--------------------\\ Lop S&D 4.2.4-2 XP/Vista
Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 3
X86-based PC ( Multiprocessor Free : AMD Athlon(tm) 64 X2 Dual Core Processor 5000+ )
BIOS : )Phoenix - Award WorkstationBIOS v6.00PG
USER : sudrie ( Administrator )
BOOT : Normal boot
Antivirus : McAfee VirusScan (Activated)
Firewall : McAfee Personal Firewall (Activated)
"C:\Lop SD" ( MAJ : 08-09-2008|21:40 )
Option : [2] ( 11/09/2008| 0:30 )
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\
--------------------\\ Listing des dossiers dans APPLIC~1
[02/09/2008|20:08] C:\DOCUME~1\19audrey\APPLIC~1\.wyzo
[28/08/2008|01:05] C:\DOCUME~1\19audrey\APPLIC~1\Adobe
[26/08/2008|14:09] C:\DOCUME~1\19audrey\APPLIC~1\Google
[28/08/2008|01:05] C:\DOCUME~1\19audrey\APPLIC~1\Identities
[23/08/2008|19:27] C:\DOCUME~1\19audrey\APPLIC~1\Macromedia
[30/08/2008|13:05] C:\DOCUME~1\19audrey\APPLIC~1\Malwarebytes
[06/09/2008|11:15] C:\DOCUME~1\19audrey\APPLIC~1\Microsoft
[28/08/2008|01:04] C:\DOCUME~1\19audrey\APPLIC~1\Mozilla
[23/08/2008|19:39] C:\DOCUME~1\19audrey\APPLIC~1\PC Suite
[28/08/2008|01:07] C:\DOCUME~1\19audrey\APPLIC~1\Real
[28/08/2008|01:05] C:\DOCUME~1\19audrey\APPLIC~1\SampleView
[25/08/2008|12:46] C:\DOCUME~1\19audrey\APPLIC~1\SiteAdvisor
[09/09/2008|21:00] C:\DOCUME~1\19audrey\APPLIC~1\StarOffice8
[28/08/2008|01:05] C:\DOCUME~1\19audrey\APPLIC~1\Windows Desktop Search
[02/09/2008|20:08] C:\DOCUME~1\19audrey\APPLIC~1\Wyzo
[27/01/2006|06:25] C:\DOCUME~1\ADMINI~1\APPLIC~1\Identities
[25/08/2006|08:01] C:\DOCUME~1\ADMINI~1\APPLIC~1\Microsoft
[25/08/2006|08:02] C:\DOCUME~1\ADMINI~1\APPLIC~1\SampleView
[31/08/2008|23:26] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[30/11/2007|22:38] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple
[30/11/2007|22:39] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer
[13/08/2008|15:25] C:\DOCUME~1\ALLUSE~1\APPLIC~1\AVS4YOU
[16/08/2008|02:12] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Babylon
[30/07/2008|21:26] C:\DOCUME~1\ALLUSE~1\APPLIC~1\BOONTY
[28/08/2008|01:06] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
[10/09/2008|16:45] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google Updater
[08/09/2008|19:35] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Installations
[31/07/2008|23:34] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Macrovision
[05/08/2008|20:38] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Malwarebytes
[30/07/2008|13:59] C:\DOCUME~1\ALLUSE~1\APPLIC~1\McAfee
[30/07/2008|14:01] C:\DOCUME~1\ALLUSE~1\APPLIC~1\McAfee.com
[08/09/2008|19:18] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[10/09/2008|11:32] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft Help
[31/07/2008|19:49] C:\DOCUME~1\ALLUSE~1\APPLIC~1\MumboJumbo
[08/09/2008|19:42] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Nokia
[28/08/2008|23:21] C:\DOCUME~1\ALLUSE~1\APPLIC~1\NOS
[12/11/2006|20:51] C:\DOCUME~1\ALLUSE~1\APPLIC~1\nView_Profiles
[08/09/2008|18:45] C:\DOCUME~1\ALLUSE~1\APPLIC~1\PC Suite
[25/08/2006|07:50] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Prism Deploy
[02/09/2008|15:42] C:\DOCUME~1\ALLUSE~1\APPLIC~1\services
[30/07/2008|13:59] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SiteAdvisor
[03/09/2008|19:52] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Skype
[10/09/2008|21:17] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy
[09/09/2008|18:56] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SweetIM
[28/08/2008|01:07] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TEMP
[07/08/2008|15:49] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[02/09/2008|20:07] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
[04/08/2008|18:55] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Yahoo! Companion
[19/08/2008|19:19] C:\DOCUME~1\audrey\APPLIC~1\Adobe
[20/08/2008|12:09] C:\DOCUME~1\audrey\APPLIC~1\Google
[27/01/2006|06:25] C:\DOCUME~1\audrey\APPLIC~1\Identities
[19/08/2008|19:19] C:\DOCUME~1\audrey\APPLIC~1\Macromedia
[19/08/2008|19:24] C:\DOCUME~1\audrey\APPLIC~1\Microsoft
[25/08/2006|08:02] C:\DOCUME~1\audrey\APPLIC~1\SampleView
[20/08/2008|11:06] C:\DOCUME~1\audrey\APPLIC~1\SiteAdvisor
[18/08/2008|22:16] C:\DOCUME~1\audrey\APPLIC~1\Windows Desktop Search
[28/08/2008|01:05] C:\DOCUME~1\audrey19\APPLIC~1\Adobe
[28/08/2008|01:05] C:\DOCUME~1\audrey19\APPLIC~1\Google
[28/08/2008|01:05] C:\DOCUME~1\audrey19\APPLIC~1\Identities
[23/08/2008|16:22] C:\DOCUME~1\audrey19\APPLIC~1\Macromedia
[28/08/2008|01:05] C:\DOCUME~1\audrey19\APPLIC~1\Microsoft
[23/08/2008|19:34] C:\DOCUME~1\audrey19\APPLIC~1\PC Suite
[28/08/2008|01:05] C:\DOCUME~1\audrey19\APPLIC~1\SampleView
[28/08/2008|01:05] C:\DOCUME~1\audrey19\APPLIC~1\SiteAdvisor
[28/08/2008|01:05] C:\DOCUME~1\audrey19\APPLIC~1\Windows Desktop Search
[27/01/2006|06:25] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities
[25/08/2008|14:28] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Macromedia
[25/08/2006|08:01] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[25/08/2006|08:02] C:\DOCUME~1\DEFAUL~1\APPLIC~1\SampleView
[27/01/2006|06:25] C:\DOCUME~1\INVIT~1\APPLIC~1\Identities
[20/08/2008|13:47] C:\DOCUME~1\INVIT~1\APPLIC~1\Microsoft
[25/08/2006|08:02] C:\DOCUME~1\INVIT~1\APPLIC~1\SampleView
[20/08/2008|13:47] C:\DOCUME~1\INVIT~1\APPLIC~1\Windows Desktop Search
[02/09/2008|18:16] C:\DOCUME~1\LOCALS~1\APPLIC~1\Adobe
[02/09/2008|18:16] C:\DOCUME~1\LOCALS~1\APPLIC~1\Macromedia
[10/08/2008|19:37] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[30/08/2008|19:00] C:\DOCUME~1\LOCALS~1\APPLIC~1\Mozilla
[30/07/2008|13:59] C:\DOCUME~1\LOCALS~1\APPLIC~1\SiteAdvisor
[02/09/2008|18:17] C:\DOCUME~1\LOCALS~1\APPLIC~1\Wyzo
[18/08/2008|12:13] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
[18/08/2008|12:07] C:\DOCUME~1\NETWOR~1\APPLIC~1\SiteAdvisor
[06/09/2008|02:31] C:\DOCUME~1\sudrie\APPLIC~1\Adobe
[10/10/2006|22:43] C:\DOCUME~1\sudrie\APPLIC~1\AdobeUM
[07/10/2006|14:53] C:\DOCUME~1\sudrie\APPLIC~1\Ahead
[19/08/2008|11:23] C:\DOCUME~1\sudrie\APPLIC~1\Apple Computer
[13/08/2008|15:25] C:\DOCUME~1\sudrie\APPLIC~1\AVS4YOU
[07/08/2008|19:05] C:\DOCUME~1\sudrie\APPLIC~1\Babylon
[14/04/2008|04:34] C:\DOCUME~1\sudrie\APPLIC~1\CONFIG
[11/08/2007|01:04] C:\DOCUME~1\sudrie\APPLIC~1\Creative
[10/10/2006|22:25] C:\DOCUME~1\sudrie\APPLIC~1\CyberLink
[28/08/2008|14:34] C:\DOCUME~1\sudrie\APPLIC~1\Desktopicon
[27/08/2008|18:47] C:\DOCUME~1\sudrie\APPLIC~1\EoRezo
[12/08/2008|17:21] C:\DOCUME~1\sudrie\APPLIC~1\Google
[12/08/2008|17:57] C:\DOCUME~1\sudrie\APPLIC~1\Grammatica
[10/08/2007|20:46] C:\DOCUME~1\sudrie\APPLIC~1\Help
[27/01/2006|06:25] C:\DOCUME~1\sudrie\APPLIC~1\Identities
[28/08/2008|02:28] C:\DOCUME~1\sudrie\APPLIC~1\InstallShield
[24/01/2007|17:54] C:\DOCUME~1\sudrie\APPLIC~1\InterTrust
[30/07/2008|16:22] C:\DOCUME~1\sudrie\APPLIC~1\ItsLabel
[21/04/2007|17:31] C:\DOCUME~1\sudrie\APPLIC~1\La Bataille pour la Terre du Milieu
[02/09/2008|02:40] C:\DOCUME~1\sudrie\APPLIC~1\LimeWire
[06/09/2008|02:31] C:\DOCUME~1\sudrie\APPLIC~1\Macromedia
[05/08/2008|20:38] C:\DOCUME~1\sudrie\APPLIC~1\Malwarebytes
[18/08/2008|02:30] C:\DOCUME~1\sudrie\APPLIC~1\Microsoft
[28/08/2008|01:04] C:\DOCUME~1\sudrie\APPLIC~1\Mozilla
[30/07/2008|13:24] C:\DOCUME~1\sudrie\APPLIC~1\MSNInstaller
[07/04/2008|19:04] C:\DOCUME~1\sudrie\APPLIC~1\Nokia
[08/09/2008|20:24] C:\DOCUME~1\sudrie\APPLIC~1\Nokia Multimedia Player
[08/09/2008|18:46] C:\DOCUME~1\sudrie\APPLIC~1\PC Suite
[15/06/2008|10:58] C:\DOCUME~1\sudrie\APPLIC~1\PCSuiteMMSTemp
[01/09/2008|02:43] C:\DOCUME~1\sudrie\APPLIC~1\Real
[25/08/2006|08:02] C:\DOCUME~1\sudrie\APPLIC~1\SampleView
[08/08/2008|00:16] C:\DOCUME~1\sudrie\APPLIC~1\SecuROM
[27/08/2008|18:14] C:\DOCUME~1\sudrie\APPLIC~1\SiteAdvisor
[03/09/2008|19:46] C:\DOCUME~1\sudrie\APPLIC~1\skypePM
[10/09/2008|23:48] C:\DOCUME~1\sudrie\APPLIC~1\StarOffice8
[08/04/2007|14:00] C:\DOCUME~1\sudrie\APPLIC~1\Sun
[26/06/2007|18:34] C:\DOCUME~1\sudrie\APPLIC~1\Template
[07/10/2006|13:59] C:\DOCUME~1\sudrie\APPLIC~1\vlc
[31/07/2008|14:08] C:\DOCUME~1\sudrie\APPLIC~1\Windows Desktop Search
[20/08/2008|14:26] C:\DOCUME~1\sudrie\APPLIC~1\Windows Live Writer
[31/07/2008|14:08] C:\DOCUME~1\sudrie\APPLIC~1\Windows Search
[02/09/2008|16:35] C:\DOCUME~1\toto19\APPLIC~1\.wyzo
[04/09/2008|01:50] C:\DOCUME~1\toto19\APPLIC~1\Adobe
[04/09/2008|03:05] C:\DOCUME~1\toto19\APPLIC~1\Google
[27/01/2006|06:25] C:\DOCUME~1\toto19\APPLIC~1\Identities
[25/08/2008|14:28] C:\DOCUME~1\toto19\APPLIC~1\Macromedia
[08/09/2008|14:22] C:\DOCUME~1\toto19\APPLIC~1\Malwarebytes
[10/09/2008|02:21] C:\DOCUME~1\toto19\APPLIC~1\Microsoft
[05/09/2008|13:14] C:\DOCUME~1\toto19\APPLIC~1\Mozilla
[08/09/2008|23:08] C:\DOCUME~1\toto19\APPLIC~1\PC Suite
[02/09/2008|16:33] C:\DOCUME~1\toto19\APPLIC~1\Real
[25/08/2006|08:02] C:\DOCUME~1\toto19\APPLIC~1\SampleView
[04/09/2008|03:05] C:\DOCUME~1\toto19\APPLIC~1\SiteAdvisor
[09/09/2008|01:40] C:\DOCUME~1\toto19\APPLIC~1\Sun
[02/09/2008|16:33] C:\DOCUME~1\toto19\APPLIC~1\Windows Desktop Search
[02/09/2008|16:39] C:\DOCUME~1\toto19\APPLIC~1\Wyzo
--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks
[11/09/2008 00:29][--a------] C:\WINDOWS\tasks\V‚rifier les mises … jour de Windows Live Toolbar.job
[05/09/2008 13:58][--a------] C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[10/09/2008 18:00][--a------] C:\WINDOWS\tasks\Norton Security Scan.job
[15/08/2008 01:25][--a------] C:\WINDOWS\tasks\McDefragTask.job
[01/09/2008 01:06][--a------] C:\WINDOWS\tasks\McQcTask.job
[10/09/2008 23:47][--ah-----] C:\WINDOWS\tasks\SA.DAT
[10/08/2004 21:00][-r-h-----] C:\WINDOWS\tasks\desktop.ini
--------------------\\ Listing des dossiers dans C:\Program Files
[15/08/2008|11:08] C:\Program Files\_uninstallation_info
[01/09/2008|02:54] C:\Program Files\Adobe
[25/08/2006|08:01] C:\Program Files\AMD Live!
[15/08/2008|10:43] C:\Program Files\Apple Software Update
[01/09/2008|23:12] C:\Program Files\Artefacts Studio
[30/08/2008|14:58] C:\Program Files\Atari
[27/06/2007|20:00] C:\Program Files\Audible
[25/08/2006|08:01] C:\Program Files\BigFix
[14/08/2008|15:19] C:\Program Files\Bonjour
[01/09/2008|15:11] C:\Program Files\Boonty
[03/09/2008|19:51] C:\Program Files\BoontyGames
[04/08/2008|18:44] C:\Program Files\CCleaner
[22/09/2007|17:43] C:\Program Files\Codemasters
[28/08/2008|01:07] C:\Program Files\Controle Parental
[08/12/2007|11:43] C:\Program Files\Creative
[27/06/2007|19:57] C:\Program Files\Creative Installation Information
[28/08/2008|01:01] C:\Program Files\Cyanide
[28/08/2008|01:04] C:\Program Files\CyberLink
[28/08/2008|02:21] C:\Program Files\Diablo II
[25/08/2006|07:50] C:\Program Files\DIFX
[25/08/2006|07:53] C:\Program Files\Digital Media Reader
[07/10/2006|14:51] C:\Program Files\directx
[16/08/2008|11:45] C:\Program Files\DNA
[28/08/2008|01:01] C:\Program Files\EA GAMES
[28/08/2008|01:04] C:\Program Files\EA SPORTS
[28/08/2008|01:07] C:\Program Files\Eidos
[24/08/2008|21:36] C:\Program Files\eMule
[03/09/2008|19:52] C:\Program Files\Fichiers communs
[21/10/2006|16:20] C:\Program Files\GameShadow
[30/08/2008|15:02] C:\Program Files\GameSpy Arcade
[28/08/2008|01:06] C:\Program Files\Google
[25/08/2006|08:01] C:\Program Files\gtw_logo
[30/08/2008|18:44] C:\Program Files\InstallShield Installation Information
[28/08/2008|01:06] C:\Program Files\Internet Explorer
[14/08/2008|15:20] C:\Program Files\iPod
[14/08/2008|15:20] C:\Program Files\iTunes
[29/08/2008|02:26] C:\Program Files\Java
[09/09/2008|12:20] C:\Program Files\JkDefrag
[28/08/2008|01:04] C:\Program Files\L'EntraŒneur 2006
[30/07/2008|14:11] C:\Program Files\LimeWire
[03/09/2008|20:02] C:\Program Files\Malwarebytes' Anti-Malware
[18/01/2008|19:21] C:\Program Files\MC2
[10/09/2008|23:38] C:\Program Files\McAfee
[30/07/2008|14:01] C:\Program Files\McAfee.com
[25/08/2006|07:59] C:\Program Files\Microsoft Digital Image 2006
[27/01/2006|06:21] C:\Program Files\microsoft frontpage
[24/11/2007|13:48] C:\Program Files\Microsoft Games
[09/07/2007|18:24] C:\Program Files\Microsoft Office
[09/07/2007|18:24] C:\Program Files\Microsoft Visual Studio
[09/07/2007|18:20] C:\Program Files\Microsoft Visual Studio 8
[10/09/2008|11:29] C:\Program Files\Microsoft Works
[09/07/2007|18:23] C:\Program Files\Microsoft.NET
[10/09/2008|23:47] C:\Program Files\MioNet
[07/08/2008|03:44] C:\Program Files\Movie Maker
[10/09/2008|23:50] C:\Program Files\Mozilla Firefox
[09/07/2007|18:24] C:\Program Files\MSBuild
[27/01/2006|06:15] C:\Program Files\MSN Gaming Zone
[31/07/2008|19:02] C:\Program Files\MSXML 4.0
[08/09/2008|19:37] C:\Program Files\MSXML 6.0
[21/01/2007|01:46] C:\Program Files\neodivx2006
[07/10/2006|14:03] C:\Program Files\Nero
[07/08/2008|03:41] C:\Program Files\NetMeeting
[08/09/2008|19:38] C:\Program Files\Nokia
[10/09/2008|18:00] C:\Program Files\Norton Security Scan
[07/10/2006|14:34] C:\Program Files\Norton SystemWorks
[28/08/2008|23:21] C:\Program Files\NOS
[27/01/2006|06:16] C:\Program Files\Online Services
[28/08/2008|01:05] C:\Program Files\Orange
[07/08/2008|12:01] C:\Program Files\Outlook Express
[16/03/2008|18:50] C:\Program Files\PC Connectivity Solution
[30/08/2008|18:44] C:\Program Files\Philips
[29/08/2008|17:43] C:\Program Files\Picasa2
[14/08/2008|15:18] C:\Program Files\QuickTime
[25/08/2008|16:15] C:\Program Files\Real
[25/08/2006|07:58] C:\Program Files\Realtek
[14/08/2008|15:05] C:\Program Files\Safari
[28/08/2008|02:28] C:\Program Files\SAGEM
[28/08/2008|01:05] C:\Program Files\SAGEM(2)
[03/09/2008|15:30] C:\Program Files\scrabbleproB1.0.8
[27/01/2006|06:19] C:\Program Files\Services en ligne
[31/07/2008|19:21] C:\Program Files\SiteAdvisor
[02/09/2008|17:58] C:\Program Files\Spybot - Search & Destroy
[07/08/2008|18:45] C:\Program Files\StofWare
[25/08/2008|17:02] C:\Program Files\Sun
[09/09/2008|18:56] C:\Program Files\SweetIM
[27/08/2008|12:13] C:\Program Files\Trend Micro
[28/08/2008|01:04] C:\Program Files\Ubisoft
[27/01/2006|06:25] C:\Program Files\Uninstall Information
[31/08/2008|00:34] C:\Program Files\Unlocker
[07/10/2006|13:59] C:\Program Files\VideoLAN
[31/07/2008|14:01] C:\Program Files\Windows Desktop Search
[28/08/2008|01:06] C:\Program Files\Windows Live
[28/08/2008|01:06] C:\Program Files\Windows Live Favorites
[28/08/2008|01:06] C:\Program Files\Windows Live Toolbar
[09/08/2008|09:57] C:\Program Files\Windows Media Connect 2
[07/08/2008|15:37] C:\Program Files\Windows Media Player
[07/08/2008|03:41] C:\Program Files\Windows NT
[27/01/2006|06:16] C:\Program Files\Windows Plus
[27/01/2006|06:19] C:\Program Files\WindowsUpdate
[27/01/2006|06:21] C:\Program Files\xerox
[04/08/2008|18:44] C:\Program Files\Yahoo!
--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs
[31/08/2008|23:26] C:\Program Files\Fichiers communs\Adobe
[07/10/2006|14:03] C:\Program Files\Fichiers communs\Ahead
[30/11/2007|22:38] C:\Program Files\Fichiers communs\Apple
[28/08/2008|01:06] C:\Program Files\Fichiers communs\AVSMedia
[01/09/2008|21:27] C:\Program Files\Fichiers communs\BOONTY Shared
[27/06/2007|19:57] C:\Program Files\Fichiers communs\Creative
[09/07/2007|18:24] C:\Program Files\Fichiers communs\DESIGNER
[30/07/2008|12:16] C:\Program Files\Fichiers communs\France Telecom
[25/08/2006|07:55] C:\Program Files\Fichiers communs\InstallShield
[25/08/2008|13:31] C:\Program Files\Fichiers communs\Java
[31/07/2008|23:34] C:\Program Files\Fichiers communs\Macrovision Shared
[30/07/2008|13:56] C:\Program Files\Fichiers communs\McAfee
[28/08/2008|00:58] C:\Program Files\Fichiers communs\Microsoft Shared
[27/01/2006|06:18] C:\Program Files\Fichiers communs\MSSoap
[25/08/2006|07:50] C:\Program Files\Fichiers communs\New Boundary
[08/09/2008|19:36] C:\Program Files\Fichiers communs\Nokia
[26/01/2006|22:10] C:\Program Files\Fichiers communs\ODBC
[16/03/2008|18:50] C:\Program Files\Fichiers communs\PCSuite
[28/08/2008|01:04] C:\Program Files\Fichiers communs\Real
[25/08/2008|12:07] C:\Program Files\Fichiers communs\Services
[26/01/2006|22:10] C:\Program Files\Fichiers communs\SpeechEngines
[03/09/2008|18:00] C:\Program Files\Fichiers communs\Symantec Shared
[07/08/2008|12:01] C:\Program Files\Fichiers communs\System
[14/08/2008|14:22] C:\Program Files\Fichiers communs\WindowsLiveInstaller
[28/08/2008|01:06] C:\Program Files\Fichiers communs\xing shared
--------------------\\ Process
( 68 Processes )
... OK !
--------------------\\ Recherche avec S_Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Recherche de Fichiers / Dossiers Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Verification du Registre
..... OK !
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-09-11 00:32:29
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 317
--------------------\\ Recherche d'autres infections
Aucune autre infection trouvée !
[F:37][D:10]-> C:\DOCUME~1\sudrie\LOCALS~1\Temp
[F:19][D:0]-> C:\DOCUME~1\sudrie\Cookies
[F:682][D:5]-> C:\DOCUME~1\sudrie\LOCALS~1\TEMPOR~1\content.IE5
1 - "C:\Lop SD\LopR_1.txt" - 10/09/2008|19:17 - Option : [1]
2 - "C:\Lop SD\LopR_2.txt" - 10/09/2008|19:49 - Option : [2]
3 - "C:\Lop SD\LopR_3.txt" - 11/09/2008| 0:33 - Option : [2]
--------------------\\ Fin du rapport a 0:33:28