PUB abondantes

Résolu
sisoko Messages postés 19 Date d'inscription   Statut Membre Dernière intervention   -  
jacques.gache Messages postés 33461 Date d'inscription   Statut Contributeur sécurité Dernière intervention   -
Bonjour,depuis au moins 3 semaines j'ai des pub incessantes [CiD:...]des que je vais sur internet ou mon jeu (css) et je beug fortement ^^ et je voulai savoir si il y avait une solution car j'ai deja instalé plusieur antivirus ou (spyware) mai sans resultat
merci
a bientot
A voir également:

23 réponses

jacques.gache Messages postés 33461 Date d'inscription   Statut Contributeur sécurité Dernière intervention   1 617
 
uo
-1
jacques.gache Messages postés 33461 Date d'inscription   Statut Contributeur sécurité Dernière intervention   1 617
 
j'essais de coller nos discution par PM ici et ça passe pas
-1
aquarelle Messages postés 7181 Date d'inscription   Statut Modérateur Dernière intervention   1 304
 
Bonsoir,
Voici ce que tu n'arrivais pas à poster. J'espère qu'il y a bien tout.
Bonne continuation


bonjour, comme hière plus rien ne passais sur la discution et que nous avons continué par MP je colles ceux ci pour que l'on puisse continuer sur le forum , merci de reposter ici

1-jacques.gache, le mardi 16 septembre 2008 à 20:56:45
bon comme ça merde sur le forum je te fais un copier coller de ce que je t'ais mis

je viens de poster et rien sur la discution donc je recommence , je me suis permis d'essayer de coller le rapport lop pour que tout le monde en profite , perso je ne vois pas grand chose si ce n'est tes cracks je te mets ça plus bas

bonjour voila le rapport (LOP)
--------------------\\ Lop S&D 4.2.4-2 XP/Vista

Microsoft® Windows Vista™ Édition Familiale Premium ( v6.0.6000 )
X86-based PC ( Multiprocessor Free : Intel(R) Pentium(R) Dual CPU E2140 @ 1.60GHz )
BIOS : Phoenix - AwardBIOS v6.00PG
USER : morgan ( Administrator )
BOOT : Normal boot
Antivirus : Windows Live OneCare 1.0.0 (Activated)
Firewall : Norton 360 2007 (Activated)

"C:\Lop SD" ( MAJ : 08-09-2008|21:40 )
Option : [1] ( 16/09/2008| 9:42 )

[ UAC => 0 ]

--------------------\\ Listing des dossiers dans Local

[23/02/2008|20:24] C:\Users\morgan\AppData\Local\Adobe
[10/01/2008|16:20] C:\Users\morgan\AppData\Local\Application Data
[16/09/2008|09:24] C:\Users\morgan\AppData\Local\ApplicationHistory
[20/08/2008|20:38] C:\Users\morgan\AppData\Local\CyberLink
[12/09/2008|17:09] C:\Users\morgan\AppData\Local\d3d9caps.dat
[15/09/2008|12:36] C:\Users\morgan\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[10/01/2008|16:29] C:\Users\morgan\AppData\Local\fusioncache.dat
[10/01/2008|16:28] C:\Users\morgan\AppData\Local\GDIPFONTCACHEV1.DAT
[10/01/2008|16:28] C:\Users\morgan\AppData\Local\Google
[10/01/2008|16:20] C:\Users\morgan\AppData\Local\Historique
[15/09/2008|21:31] C:\Users\morgan\AppData\Local\IconCache.db
[20/08/2008|20:38] C:\Users\morgan\AppData\Local\MagicSports
[13/09/2008|20:35] C:\Users\morgan\AppData\Local\Microsoft
[05/08/2008|21:02] C:\Users\morgan\AppData\Local\Microsoft Games
[10/01/2008|16:35] C:\Users\morgan\AppData\Local\Mozilla
[20/08/2008|20:37] C:\Users\morgan\AppData\Local\PowerCinema
[23/02/2008|20:33] C:\Users\morgan\AppData\Local\Steam
[16/09/2008|09:41] C:\Users\morgan\AppData\Local\Temp
[10/01/2008|16:20] C:\Users\morgan\AppData\Local\Temporary Internet Files
[10/01/2008|16:29] C:\Users\morgan\AppData\Local\VirtualStore

--------------------\\ Tâches planifiées dans C:\Windows\tasks

[16/09/2008 09:30][--a------] C:\Windows\tasks\Extension de garantie.job
[16/09/2008 09:30][--a------] C:\Windows\tasks\Recovery DVD Creator.job
[16/09/2008 09:23][--ah-----] C:\Windows\tasks\SA.DAT
[15/09/2008 21:31][--a------] C:\Windows\tasks\SCHEDLGU.TXT

--------------------\\ Listing des dossiers dans C:\ProgramData

[08/08/2007|18:54] C:\ProgramData\{174892B1-CBE7-44F5-86FF-AB555EFD73A3}
[23/02/2008|20:34] C:\ProgramData\Adobe
[02/11/2006|15:02] C:\ProgramData\Application Data
[06/09/2008|12:32] C:\ProgramData\Avira
[03/09/2008|12:02] C:\ProgramData\Axis Readme Second Bat
[10/01/2008|16:15] C:\ProgramData\Bureau
[20/08/2008|20:38] C:\ProgramData\CyberLink
[02/11/2006|15:02] C:\ProgramData\Desktop
[02/11/2006|15:02] C:\ProgramData\Documents
[10/01/2008|16:15] C:\ProgramData\Favoris
[02/11/2006|15:02] C:\ProgramData\Favorites
[14/01/2008|20:15] C:\ProgramData\Google
[08/08/2007|18:43] C:\ProgramData\InstallShield
[08/09/2008|12:54] C:\ProgramData\LUUnInstall.LiveUpdate
[10/01/2008|16:15] C:\ProgramData\Menu D‚marrer
[12/09/2008|19:49] C:\ProgramData\Messenger Plus!
[08/09/2008|17:12] C:\ProgramData\Microsoft
[11/09/2008|12:12] C:\ProgramData\Microsoft Help
[10/01/2008|16:15] C:\ProgramData\ModŠles
[03/09/2008|12:02] C:\ProgramData\Once Log Deaf.r8o2a
[08/08/2007|18:57] C:\ProgramData\Roxio
[24/02/2008|13:15] C:\ProgramData\Sonic
[06/09/2008|12:58] C:\ProgramData\Spybot - Search & Destroy
[12/09/2008|12:00] C:\ProgramData\Spyware Terminator
[02/11/2006|15:02] C:\ProgramData\Start Menu
[07/09/2008|20:16] C:\ProgramData\start peak peak.2hev37
[07/09/2008|19:32] C:\ProgramData\start peak peak.360e4
[07/09/2008|19:11] C:\ProgramData\start peak peak.3ebef
[07/09/2008|18:05] C:\ProgramData\start peak peak.7kj674
[07/09/2008|21:00] C:\ProgramData\start peak peak.9e8wwh
[07/09/2008|20:38] C:\ProgramData\start peak peak.9xgf4b
[07/09/2008|21:22] C:\ProgramData\start peak peak.a2ciyu7
[03/09/2008|12:02] C:\ProgramData\start peak peak.a92082z
[07/09/2008|19:54] C:\ProgramData\start peak peak.cnvqg9
[07/09/2008|21:44] C:\ProgramData\start peak peak.di83w
[07/09/2008|18:49] C:\ProgramData\start peak peak.firnot
[07/09/2008|17:43] C:\ProgramData\start peak peak.lncbn
[03/09/2008|12:02] C:\ProgramData\start peak peak.sv6py5
[07/09/2008|17:21] C:\ProgramData\start peak peak.wxlyce
[07/09/2008|18:27] C:\ProgramData\start peak peak.xygcph
[08/09/2008|17:06] C:\ProgramData\Symantec
[11/09/2008|20:57] C:\ProgramData\TEMP
[02/11/2006|15:02] C:\ProgramData\Templates
[03/09/2008|13:00] C:\ProgramData\WAITDRIVEHIDE
[14/09/2008|10:44] C:\ProgramData\WLInstaller

--------------------\\ Listing des dossiers dans C:\Program Files

[08/08/2007|18:54] C:\Program Files\Activation Assistant for the 2007 Microsoft Office suites
[14/09/2008|10:09] C:\Program Files\Adobe
[02/04/2008|12:13] C:\Program Files\Alwil Software
[08/09/2008|12:53] C:\Program Files\Common Files
[11/09/2008|21:25] C:\Program Files\Crawler
[08/08/2007|18:44] C:\Program Files\CyberLink
[10/01/2008|16:15] C:\Program Files\Fichiers communs [C:\Program Files\Common Files]
[25/07/2008|22:07] C:\Program Files\FileZilla FTP Client
[09/03/2008|21:49] C:\Program Files\GameSpy Arcade
[15/01/2008|17:58] C:\Program Files\Google
[08/08/2007|18:36] C:\Program Files\HDReg
[09/03/2008|21:42] C:\Program Files\InstallShield Installation Information
[19/08/2008|18:01] C:\Program Files\Internet Explorer
[14/09/2008|10:16] C:\Program Files\Java
[27/02/2008|12:26] C:\Program Files\LimeWire
[12/09/2008|18:23] C:\Program Files\Messenger Plus! Live
[02/11/2006|14:37] C:\Program Files\Microsoft Games
[08/08/2007|18:52] C:\Program Files\Microsoft Office
[16/09/2008|09:25] C:\Program Files\Microsoft Windows OneCare Live
[08/08/2007|18:52] C:\Program Files\Microsoft Works
[08/08/2007|18:52] C:\Program Files\Microsoft.NET
[09/08/2007|03:50] C:\Program Files\Movie Maker
[14/01/2008|20:14] C:\Program Files\Mozilla Firefox
[02/11/2006|14:37] C:\Program Files\MSBuild
[02/11/2006|14:37] C:\Program Files\MSN
[23/02/2008|21:47] C:\Program Files\MSN Toolbar
[23/02/2008|20:51] C:\Program Files\MSXML 4.0
[13/09/2008|20:35] C:\Program Files\Navilog1
[08/09/2008|12:54] C:\Program Files\Norton 360
[25/02/2008|13:48] C:\Program Files\Orange HSS
[16/01/2008|18:10] C:\Program Files\Packard Bell
[05/03/2008|14:22] C:\Program Files\PhotoFiltre
[10/01/2008|18:16] C:\Program Files\RALINK
[08/08/2007|18:31] C:\Program Files\Realtek
[02/11/2006|14:37] C:\Program Files\Reference Assemblies
[08/08/2007|18:43] C:\Program Files\Roxio
[25/02/2008|12:40] C:\Program Files\SAGEM
[09/03/2008|21:42] C:\Program Files\Sierra
[08/08/2007|18:54] C:\Program Files\Skype
[06/09/2008|13:00] C:\Program Files\Spybot - Search & Destroy
[11/09/2008|21:34] C:\Program Files\Spyware Terminator
[16/09/2008|09:38] C:\Program Files\Steam
[14/09/2008|10:17] C:\Program Files\Sun
[08/09/2008|12:53] C:\Program Files\Symantec
[02/03/2008|16:00] C:\Program Files\Teamspeak2_RC2
[13/09/2008|21:36] C:\Program Files\Trend Micro
[02/11/2006|15:01] C:\Program Files\Uninstall Information
[27/02/2008|15:19] C:\Program Files\VideoLAN
[11/09/2008|21:30] C:\Program Files\WinClamAVShield
[24/02/2008|02:07] C:\Program Files\Windows Calendar
[09/08/2007|03:50] C:\Program Files\Windows Collaboration
[09/08/2007|03:59] C:\Program Files\Windows Defender
[09/08/2007|03:50] C:\Program Files\Windows Journal
[23/02/2008|21:51] C:\Program Files\Windows Live
[07/09/2008|17:34] C:\Program Files\Windows Live Safety Center
[19/08/2008|18:01] C:\Program Files\Windows Mail
[24/02/2008|17:40] C:\Program Files\Windows Media Player
[10/01/2008|16:15] C:\Program Files\Windows NT
[09/08/2007|03:50] C:\Program Files\Windows Photo Gallery
[24/02/2008|02:07] C:\Program Files\Windows Sidebar
[06/09/2008|12:32] C:\Program Files\WinRAR

--------------------\\ Listing des dossiers dans C:\Program Files\Common Files

[23/02/2008|20:34] C:\Program Files\Common Files\Adobe
[08/08/2007|18:52] C:\Program Files\Common Files\DESIGNER
[25/02/2008|13:46] C:\Program Files\Common Files\France Telecom
[08/08/2007|18:44] C:\Program Files\Common Files\InstallShield
[27/02/2008|12:23] C:\Program Files\Common Files\Java
[23/08/2008|11:22] C:\Program Files\Common Files\microsoft shared
[08/09/2008|12:46] C:\Program Files\Common Files\PX Storage Engine
[08/08/2007|18:42] C:\Program Files\Common Files\Roxio Shared
[02/11/2006|13:18] C:\Program Files\Common Files\Services
[08/08/2007|18:42] C:\Program Files\Common Files\Sonic Shared
[02/11/2006|13:18] C:\Program Files\Common Files\SpeechEngines
[16/09/2008|09:26] C:\Program Files\Common Files\Steam
[08/08/2007|18:43] C:\Program Files\Common Files\SureThing Shared
[08/09/2008|17:06] C:\Program Files\Common Files\Symantec Shared
[09/08/2007|04:10] C:\Program Files\Common Files\System
[14/09/2008|10:46] C:\Program Files\Common Files\WindowsLiveInstaller

--------------------\\ Process

( 79 Processes )

iexplore.exe ~ [PID:3228]
iexplore.exe ~ [PID:5456]
IEXPLORE.EXE ~ [PID:4100]

--------------------\\ Recherche avec S_Lop

C:\ProgramData\Once Log Deaf.r8o2a
C:\ProgramData\start peak peak.360e4
C:\ProgramData\start peak peak.3ebef
C:\ProgramData\start peak peak.di83w
C:\ProgramData\start peak peak.lncbn
C:\ProgramData\start peak peak.2hev37
C:\ProgramData\start peak peak.7kj674
C:\ProgramData\start peak peak.9e8wwh
C:\ProgramData\start peak peak.9xgf4b
C:\ProgramData\start peak peak.cnvqg9
C:\ProgramData\start peak peak.firnot
C:\ProgramData\start peak peak.sv6py5
C:\ProgramData\start peak peak.wxlyce
C:\ProgramData\start peak peak.xygcph
C:\ProgramData\start peak peak.a2ciyu7
C:\ProgramData\start peak peak.a92082z

--------------------\\ Recherche de Fichiers / Dossiers Lop

C:\ProgramData\Axis Readme Second Bat
C:\ProgramData\Axis Readme Second Bat\axis dent.exe
C:\Users\morgan\AppData\Roaming\MICROS~1\Windows\Cookies\morgan@advertising[2].txt
C:\Users\morgan\AppData\Roaming\MICROS~1\Windows\Cookies\morgan@adin.bigpoint[1].txt
C:\Users\morgan\AppData\Roaming\MICROS~1\Windows\Cookies\morgan@bigpoint[1].txt
C:\Users\morgan\AppData\Roaming\MICROS~1\Windows\Cookies\morgan@fr.xblaster.bigpoint[1].txt
C:\Users\morgan\AppData\Roaming\MICROS~1\Windows\Cookies\morgan@banner.cotedazurpalace[2].txt
C:\Users\morgan\AppData\Roaming\MICROS~1\Windows\Cookies\morgan@cotedazurpalace[1].txt
C:\Users\morgan\AppData\Roaming\MICROS~1\Windows\Cookies\morgan@adopt.euroclick[1].txt
C:\Users\morgan\AppData\Roaming\MICROS~1\Windows\Cookies\morgan@pacificpoker[1].txt
C:\Users\morgan\AppData\Roaming\MICROS~1\Windows\Cookies\morgan@fr1.seafight[1].txt
C:\Users\morgan\AppData\Roaming\MICROS~1\Windows\Cookies\morgan@seafight[1].txt
C:\Users\morgan\AppData\Roaming\MICROS~1\Windows\Cookies\morgan@32vegas[1].txt
C:\Users\morgan\AppData\Roaming\MICROS~1\Windows\Cookies\morgan@banner.32vegas[2].txt

--------------------\\ Verification du Registre

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Second bat creative peak"="\"C:\\ProgramData\\Once Log Deaf.r8o2a\""
"doesidle"="\"C:\\ProgramData\\start peak peak.di83w\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

--------------------\\ Verification du fichier Hosts

Fichier Hosts PROPRE


--------------------\\ Recherche de fichiers avec Catchme

catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-09-16 09:43:00
Windows 6.0.6000 NTFS
scanning hidden processes ...
scanning hidden files ...
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\2XNGN2EY\300x250_ccm_emploi_V2[1].swf 4815 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\2XNGN2EY\32vegas_com[1].htm 20504 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\2XNGN2EY\7cardstud_h_l[1].gif 3225 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\2XNGN2EY\payments_new[1].gif 7820 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\2XNGN2EY\promo_certification_alice[1].gif 12742 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\2XNGN2EY\promo_contrat[1].gif 13707 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\2XNGN2EY\puzzle-sign[1].png 2499 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\2XNGN2EY\top_hp[1].gif 12271 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\2XNGN2EY\aceUAC[1].js 11904 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\2XNGN2EY\fond[1].jpg 3841 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\2XNGN2EY\GamblingTherapyIcon[1].gif 676 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\2XNGN2EY\icons_up[1].gif 119 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\2XNGN2EY\jackpot_letf[1].gif 206 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\33KHT3R2\icons_down[1].gif 118 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\33KHT3R2\main[1].css 9882 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\33KHT3R2\favicon[2].ico 149814 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\33KHT3R2\footer_frame_down[1].gif 229 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\33KHT3R2\bullet[1].gif 502 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\33KHT3R2\buttom_frame_casino[1].gif 211 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\33KHT3R2\casino_logo[1].gif 4784 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\33KHT3R2\poker_bonus_400[1].gif 2832 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\33KHT3R2\promo_tvpremium[1].gif 16217 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\33KHT3R2\888_right_part[1].gif 507 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\FB0B9B7A\jackpot_right[1].gif 83 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\FB0B9B7A\no_dld_right[1].gif 113 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\FB0B9B7A\888_logo[1].gif 3545 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\FB0B9B7A\bg_ml[1].gif 3063 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\FB0B9B7A\space[1].gif 49 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\FB0B9B7A\support[1].gif 3051 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\FB0B9B7A\casino_icons1[1].gif 7588 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\FB0B9B7A\coreg_131[1].gif 1221 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\FB0B9B7A\evecdark[1].gif 2233 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QPFVSLHJ\logo_32hp[1].gif
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QPFVSLHJ\picto_tv[1].gif
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QPFVSLHJ\preview[1].js
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QPFVSLHJ\pwc_logo_new[1].gif 1311 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QPFVSLHJ\functions[2].js
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QPFVSLHJ\home[1].js
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QPFVSLHJ\888_flash_low[1].gif 15465 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QPFVSLHJ\888_flash_up[1].jpg 123 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QPFVSLHJ\AC_RunActiveContent[1].js
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QPFVSLHJ\astuconso_com[1].htm
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QPFVSLHJ\style[1].css
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QPFVSLHJ\util[1].js
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QPFVSLHJ\vip[1].gif 1691 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QPFVSLHJ\casino_bonus[1].gif 2029 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QPFVSLHJ\champs[1].gif
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QPFVSLHJ\download_poker[1].gif 3843 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QZZO1KTF\300x250_genSky2-2pdt[1].gif 15914 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QZZO1KTF\ga_logo[1].gif 1566 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QZZO1KTF\poker_school[1].gif 2933 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QZZO1KTF\rsb_title_frame[1].gif 252 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QZZO1KTF\InitiateCall2[1].php
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QZZO1KTF\logo_cote[1].gif
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QZZO1KTF\no_download_casino[1].gif 819 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QZZO1KTF\888_flash_mid[1].gif
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QZZO1KTF\concours_cadeau_3[1].jpg 18584 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QZZO1KTF\coreg_129[1].gif 20822 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QZZO1KTF\bloc_abo[1].png
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\QZZO1KTF\cadeaux_gratuits[1].jpg 17168 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\SQNXWXOY\poker_logo[1].gif 4970 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\SQNXWXOY\bonus_dld_up[1].gif 103 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\SQNXWXOY\buttom_frame_poker[1].gif 211 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\SQNXWXOY\videoslots[1].gif 16478 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\SQNXWXOY\default[1].htm
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\SQNXWXOY\dhtml[1].js 6195 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\SQNXWXOY\favicon[1].ico 1406 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\SQNXWXOY\favicon[2].ico 1078 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\SQNXWXOY\footer_frame_up[1].gif 287 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\YG4YTLEY\logo_astuconso[1].jpg 19434 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\YG4YTLEY\menu_break[1].gif
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\YG4YTLEY\menu_right_cor[1].gif
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\YG4YTLEY\btn[1].gif
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\YG4YTLEY\adictel[1].gif 4370 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\YG4YTLEY\download_casino[1].gif
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\YG4YTLEY\favicon[1].ico 7358 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\YG4YTLEY\flash_embed2[1].js 2439 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\YG4YTLEY\frlog13[1].gif
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\YG4YTLEY\fr_lemboo_com[1].htm 29239 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\YG4YTLEY\poker_icons1[1].gif 9317 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\YG4YTLEY\signup[1].htm
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\YG4YTLEY\style_IE5_pc[1].css
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\YG4YTLEY\video_poker[1].gif
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\YG4YTLEY\zass[1].htm
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\YG4YTLEY\18_new[1].gif 611 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\YG4YTLEY\32vegas_latest_fr[1].gif
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\ZAQC426Q\no_dld_left[1].gif
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\ZAQC426Q\ntpagetag[1].js
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\ZAQC426Q\picto_music[1].gif
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\ZAQC426Q\igc_new[1].gif 739 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\ZAQC426Q\menu_gradient[1].gif
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\ZAQC426Q\menu_red_line[1].gif
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\ZAQC426Q\new[1].png
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\ZAQC426Q\rsb_buttom[1].gif 174 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\ZAQC426Q\concours_cadeau_1[1].jpg 28159 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\ZAQC426Q\concours_cadeau_2[1].jpg 19248 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\ZAQC426Q\bonus_dld_down[1].gif
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\ZAQC426Q\7cardstud[1].gif 2791 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\ZAQC426Q\affutd[1].js 3869 bytes
C:\Users\morgan\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\ZAQC426Q\Alice_churn_trade_300x250[1].swf 31294 bytes
scan completed successfully
hidden processes: 0
hidden files: 1183

--------------------\\ Recherche d'autres infections

--------------------\\ Cracks & Keygens ..

C:\Users\morgan\AppData\Local\Microsoft\Messenger\momosissoko76@hotmail.fr\Sharing Folders\tracymcgrady76@hotmail.fr\AV Voice Changer Diamond v6.0.10\keygen
C:\Users\morgan\AppData\Local\Microsoft\Messenger\momosissoko76@hotmail.fr\Sharing Folders\tracymcgrady76@hotmail.fr\AV Voice Changer Diamond v6.0.10\keygen\file_id.diz
C:\Users\morgan\AppData\Local\Microsoft\Messenger\momosissoko76@hotmail.fr\Sharing Folders\tracymcgrady76@hotmail.fr\AV Voice Changer Diamond v6.0.10\keygen\virility.nfo


[F:113][D:6]-> C:\Users\morgan\AppData\Local\Temp
[F:1666][D:1]-> C:\Users\morgan\AppData\Roaming\MICROS~1\Windows\Cookies
[F:403][D:4]-> C:\Users\morgan\AppData\Local\MICROS~1\Windows\TEMPOR~1\content.IE5
[F:6][D:3]-> C:\$Recycle.Bin

1 - "C:\Lop SD\LopR_1.txt" - 14/09/2008|11:24 - Option : [1]
2 - "C:\Lop SD\LopR_2.txt" - 16/09/2008| 9:44 - Option : [1]

--------------------\\ Fin du rapport a 9:44:53
[ UAC => 1 ]
mercii a bientot

*****************************************************************************************

si tu supprime tout tes cracks ton pc ne s'en portera que mieux

--------------------\\ Cracks & Keygens ..

C:\Users\morgan\AppData\Local\Microsoft\Messenger\momosissoko76@hotmail.fr\Sharing Folders\tracymcgrady76@hotmail.fr\AV Voice Changer Diamond v6.0.10\keygen
C:\Users\morgan\AppData\Local\Microsoft\Messenger\momosissoko76@hotmail.fr\Sharing Folders\tracymcgrady76@hotmail.fr\AV Voice Changer Diamond v6.0.10\keygen\file_id.diz
C:\Users\morgan\AppData\Local\Microsoft\Messenger\momosissoko76@hotmail.fr\Sharing Folders\tracymcgrady76@hotmail.fr\AV Voice Changer Diamond v6.0.10\keygen\virility.nfo

************************************************************************************-

Assures toi que l'UAC est désactivé Relances Lop S&D
· Choisis cette fois ci l'Option 2 ( Suppression )
· Ne ferme pas la fenêtre lors de la suppression !
· Poste le rapport généré ( C:\lopR.txt )

( Si le Bureau ne réapparît pas presse Ctrl + Alt + Suppr , Onglet Fichier , Nouvelle tâche , tape explorer.exe et valide )

******************************************************************************************
passes toolbar S&D et postes le rapport merci

Télécharge ToolBar-S&D ( Merci à Eric_71, Angeldark, Sham_Rock et XmichouX )
https://77b4795d-a-62cb3a1a-s-sites.googlegroups.com/site/eric71mespages/ToolBarSD.exe?attachauth=ANoY7cqJWPphpudyTqv7TRo5RQ3nm_Sx8JluVMO59X5E9cyE3j3LqKlmStIqiDqJdIgMJLi7MXn2nKVajQfoWuVvZZ2wIx_vkqO4k4P0K9jh-ra9jaKPXdZcoaVF2UqJZNH8ubL_42uIwh6f35xJ2GJMuzddVj2Qth1DgZ839lxEIFGkgWz3TdfvNMy-YtxfA3gqBUrj4U4LFeAPiWr3ClmjIP0t_Xs5PQ%3D%3D&attredirects=2

Lances l'installation du programme en exécutant le fichier téléchargé.
Double-clique maintenant sur le raccourci de Toolbar-S&D.
Sélectionnes la langue souhaitée en tapant la lettre de ton choix puis en validant avec la touche Entrée.
Choisis maintenant l'option 1 (Recherche). Patiente jusqu'à la fin de la recherche.
Postes le rapport généré. (C:\TB.txt)


Attention !! la surmultiplication de logiciel de sécurité ne
protège pas mieux voir peut engendrer des conflits voir
des plantages. " mais chacun reste maître de son PC "
Répondre à jacques.gache

2-sisoko, le mardi 16 septembre 2008 à 21:43:31
mercii je ferai sa demain car la je peut pas demain j'ai cour ^^ merci a demain
Répondre à sisoko

3- jacques.gache, le mardi 16 septembre 2008 à 21:56:20


ok @+

Attention !! la surmultiplication de logiciel de sécurité ne­
protège pas mieux voir peut engendrer des conflits voir
des plantages. " mais chacun reste maître de son PC "
Répondre à jacques.gache

4-sisoko, le mercredi 17 septembre 2008 à 19:00:37

je n'est pas compri se ke je devé suprimé !!!!!! ^^
dsl
Répondre à sisoko

5-jacques.gache, le mercredi 17 septembre 2008 à 21:06:02

tu as du télécharger ou on t'as envoyé des cracks ou keygens pour Diamond v6.0.10 qui est à première vu un outil de déformation de voie en temps réel , connais tu c'es adresses "momosissoko76@hotmail.fr" et "tracymcgrady76@hotmail.fr" car c'est lié avec elle si tu utilise des cracks sois pas surpris d'être infecté tu joues au pirate !!!!!

Attention !! la surmultiplication de logiciel de sécurité ne
protège pas mieux voir peut engendrer des conflits voir
des plantages. " mais chacun reste maître de son PC "
Répondre à jacques.gache

--
Attention !! la surmultiplication de logiciel de sécurité ne
protège pas mieux voir peut engendrer des conflits voir
des plantages. " mais chacun reste maître de son PC "
-1