Besoin d aide infecté par yure.exe
Résolu
stefou38
Messages postés
81
Statut
Membre
-
stefou38 Messages postés 81 Statut Membre -
stefou38 Messages postés 81 Statut Membre -
Bonjour,
mon systeme a ete infecte par plusieur trojan....donc yure.exe.Apres 2 jours a passer avg anti virus, anti rootkit,anti spyware,cccleaner,ad-aware,spy bot et reg seeker me voila enfin reconnecte a internet.
Est-ce que qqun pourrais regarder mon systeme et voir si il reste encore des traces de ces satanées cochonneries.
Merci!
Voici mon hi jack
Logfile of HijackThis v1.99.1
Scan saved at 19:48: VIRUS ALERT!, on 2008-09-11
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16705)
Running processes:
C:\WINDOWS.0\System32\smss.exe
C:\WINDOWS.0\system32\winlogon.exe
C:\WINDOWS.0\system32\services.exe
C:\WINDOWS.0\system32\lsass.exe
C:\WINDOWS.0\system32\svchost.exe
C:\WINDOWS.0\System32\svchost.exe
C:\WINDOWS.0\system32\svchost.exe
C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
C:\WINDOWS.0\Explorer.EXE
C:\WINDOWS.0\system32\spoolsv.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS.0\system32\nvsvc32.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
C:\WINDOWS.0\system32\svchost.exe
C:\Program Files\Canon\CAL\CALMAIN.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
C:\PROGRA~1\Grisoft\AVG7\avgcc.exe
C:\WINDOWS.0\SOUNDMAN.EXE
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\DAEMON Tools\daemon.exe
C:\WINDOWS.0\system32\RUNDLL32.EXE
C:\WINDOWS.0\system32\ctfmon.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
C:\Program Files\SanDisk\SanDisk TransferMate\SD Monitor.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS.0\system32\wuauclt.exe
C:\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.canoe.qc.ca
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: (no name) - {02ABB69E-5A1F-499A-9E65-31D8CE97FD7B} - (no file)
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: (no name) - {6AFB6F98-289C-442E-B577-5E5125C742E2} - C:\WINDOWS.0\system32\khfGaBQg.dll (file missing)
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: (no name) - {F0DBB0F1-BBA9-47B8-86BB-BB822B61FF09} - C:\WINDOWS.0\system32\iifgdETL.dll (file missing)
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\FICHIE~1\INSTAL~1\UPDATE~1\isuspm.exe -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS.0\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS.0\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS.0\system32\NeroCheck.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS.0\system32\ctfmon.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [AlcoholAutomount] "C:\Program Files\Alcohol Soft\Alcohol 120\axcmd.exe" /automount
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Monitor.lnk = C:\Program Files\SanDisk\SanDisk TransferMate\SD Monitor.exe
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - (no file)
O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - (no file)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: Run IMVU - {d9288080-1baa-4bc4-9cf8-a92d743db949} - C:\WINDOWS.0\system32\shdocvw.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\program files\bonjour\mdnsnsp.dll
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {5D637FAD-E202-48D1-8F18-5B9C459BD1E3} (Image Uploader Control) - http://www.comboost.com/Drivers/ImageUploader5.cab
O16 - DPF: {67A5F8DC-1A4B-4D66-9F24-A704AD929EEE} (System Requirements Lab) - https://www.nvidia.com/content/DriverDownload/srl/2.0.0.1/sysreqlab2.cab
O16 - DPF: {6E5E167B-1566-4316-B27F-0DDAB3484CF7} (Image Uploader Control) - http://www.comboost.com/Drivers/ImageUploader4.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - C:\Program Files\Fichiers communs\Microsoft Shared\Help\hxds.dll
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Filter hijack: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~1\FICHIE~1\MICROS~1\OFFICE12\MSOXMLMF.DLL
O20 - AppInit_DLLs: rwmvok.dll
O20 - Winlogon Notify: khfGaBQg - khfGaBQg.dll (file missing)
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS.0\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - (no file)
O21 - SSODL: mgxfebsq - {6C288283-48FC-47A2-91D6-77E14C148FEF} - (no file)
O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Fichiers communs\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS.0\system32\nvsvc32.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Sunbelt Personal Firewall 4 (SPF4) - Sunbelt Software - C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
O23 - Service: StarWind AE Service (StarWindServiceAE) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exeConfiguration: Windows XP sp2
Internet Explorer 8.0
merci!
mon systeme a ete infecte par plusieur trojan....donc yure.exe.Apres 2 jours a passer avg anti virus, anti rootkit,anti spyware,cccleaner,ad-aware,spy bot et reg seeker me voila enfin reconnecte a internet.
Est-ce que qqun pourrais regarder mon systeme et voir si il reste encore des traces de ces satanées cochonneries.
Merci!
Voici mon hi jack
Logfile of HijackThis v1.99.1
Scan saved at 19:48: VIRUS ALERT!, on 2008-09-11
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16705)
Running processes:
C:\WINDOWS.0\System32\smss.exe
C:\WINDOWS.0\system32\winlogon.exe
C:\WINDOWS.0\system32\services.exe
C:\WINDOWS.0\system32\lsass.exe
C:\WINDOWS.0\system32\svchost.exe
C:\WINDOWS.0\System32\svchost.exe
C:\WINDOWS.0\system32\svchost.exe
C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
C:\WINDOWS.0\Explorer.EXE
C:\WINDOWS.0\system32\spoolsv.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS.0\system32\nvsvc32.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
C:\WINDOWS.0\system32\svchost.exe
C:\Program Files\Canon\CAL\CALMAIN.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
C:\PROGRA~1\Grisoft\AVG7\avgcc.exe
C:\WINDOWS.0\SOUNDMAN.EXE
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\DAEMON Tools\daemon.exe
C:\WINDOWS.0\system32\RUNDLL32.EXE
C:\WINDOWS.0\system32\ctfmon.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
C:\Program Files\SanDisk\SanDisk TransferMate\SD Monitor.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS.0\system32\wuauclt.exe
C:\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.canoe.qc.ca
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: (no name) - {02ABB69E-5A1F-499A-9E65-31D8CE97FD7B} - (no file)
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: (no name) - {6AFB6F98-289C-442E-B577-5E5125C742E2} - C:\WINDOWS.0\system32\khfGaBQg.dll (file missing)
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: (no name) - {F0DBB0F1-BBA9-47B8-86BB-BB822B61FF09} - C:\WINDOWS.0\system32\iifgdETL.dll (file missing)
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\FICHIE~1\INSTAL~1\UPDATE~1\isuspm.exe -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS.0\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS.0\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS.0\system32\NeroCheck.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS.0\system32\ctfmon.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [AlcoholAutomount] "C:\Program Files\Alcohol Soft\Alcohol 120\axcmd.exe" /automount
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Monitor.lnk = C:\Program Files\SanDisk\SanDisk TransferMate\SD Monitor.exe
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - (no file)
O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - (no file)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: Run IMVU - {d9288080-1baa-4bc4-9cf8-a92d743db949} - C:\WINDOWS.0\system32\shdocvw.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\program files\bonjour\mdnsnsp.dll
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {5D637FAD-E202-48D1-8F18-5B9C459BD1E3} (Image Uploader Control) - http://www.comboost.com/Drivers/ImageUploader5.cab
O16 - DPF: {67A5F8DC-1A4B-4D66-9F24-A704AD929EEE} (System Requirements Lab) - https://www.nvidia.com/content/DriverDownload/srl/2.0.0.1/sysreqlab2.cab
O16 - DPF: {6E5E167B-1566-4316-B27F-0DDAB3484CF7} (Image Uploader Control) - http://www.comboost.com/Drivers/ImageUploader4.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - C:\Program Files\Fichiers communs\Microsoft Shared\Help\hxds.dll
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Filter hijack: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~1\FICHIE~1\MICROS~1\OFFICE12\MSOXMLMF.DLL
O20 - AppInit_DLLs: rwmvok.dll
O20 - Winlogon Notify: khfGaBQg - khfGaBQg.dll (file missing)
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS.0\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - (no file)
O21 - SSODL: mgxfebsq - {6C288283-48FC-47A2-91D6-77E14C148FEF} - (no file)
O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Fichiers communs\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS.0\system32\nvsvc32.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Sunbelt Personal Firewall 4 (SPF4) - Sunbelt Software - C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
O23 - Service: StarWind AE Service (StarWindServiceAE) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exeConfiguration: Windows XP sp2
Internet Explorer 8.0
merci!
A voir également:
- Besoin d aide infecté par yure.exe
- Alerte windows ordinateur infecté - Accueil - Arnaque
- L'ordinateur de simon a été infecté par un virus répertorié récemment ✓ - Forum Virus
- L'ordinateur de mustapha a été infecté par un virus répertorié récemment - Forum Virus
- Mustapha - Forum Windows
- L'ordinateur de samantha a ete infecte par un virus - Forum Virus
63 réponses
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 22:31:02, on 2008-09-12
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16705)
Boot mode: Normal
Running processes:
C:\WINDOWS.0\System32\smss.exe
C:\WINDOWS.0\system32\winlogon.exe
C:\WINDOWS.0\system32\services.exe
C:\WINDOWS.0\system32\lsass.exe
C:\WINDOWS.0\system32\svchost.exe
C:\WINDOWS.0\System32\svchost.exe
C:\WINDOWS.0\system32\svchost.exe
C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
C:\WINDOWS.0\Explorer.EXE
C:\WINDOWS.0\system32\spoolsv.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\DAEMON Tools\daemon.exe
C:\WINDOWS.0\system32\RUNDLL32.EXE
C:\PROGRA~1\AVG\AVG8\avgtray.exe
C:\WINDOWS.0\system32\ctfmon.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\DNA\btdna.exe
C:\Program Files\SanDisk\SanDisk TransferMate\SD Monitor.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS.0\system32\nvsvc32.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
C:\WINDOWS.0\system32\svchost.exe
C:\Program Files\Canon\CAL\CALMAIN.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
C:\Program Files\Trend Micro\HijackThis\HJT.exe
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\PROGRA~1\AVG\AVG8\avgemc.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.canoe.qc.ca
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = C:\windows\system32\blank.htm
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\windows\system32\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS.0\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS.0\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS.0\system32\NeroCheck.exe
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS.0\system32\ctfmon.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [AlcoholAutomount] "C:\Program Files\Alcohol Soft\Alcohol 120\axcmd.exe" /automount
O4 - HKCU\..\Run: [BitTorrent DNA] "C:\Program Files\DNA\btdna.exe"
O4 - HKUS\S-1-5-18\..\Run: [Nokia.PCSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [Nokia.PCSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog (User 'Default user')
O4 - Global Startup: Monitor.lnk = C:\Program Files\SanDisk\SanDisk TransferMate\SD Monitor.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - (no file)
O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - (no file)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: Run IMVU - {d9288080-1baa-4bc4-9cf8-a92d743db949} - C:\WINDOWS.0\system32\shdocvw.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {67A5F8DC-1A4B-4D66-9F24-A704AD929EEE} (System Requirements Lab) - https://www.nvidia.com/content/DriverDownload/srl/2.0.0.1/sysreqlab2.cab
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: AVG8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgemc.exe
O23 - Service: AVG8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Fichiers communs\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS.0\system32\nvsvc32.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Sunbelt Personal Firewall 4 (SPF4) - Sunbelt Software - C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
O23 - Service: StarWind AE Service (StarWindServiceAE) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
Scan saved at 22:31:02, on 2008-09-12
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16705)
Boot mode: Normal
Running processes:
C:\WINDOWS.0\System32\smss.exe
C:\WINDOWS.0\system32\winlogon.exe
C:\WINDOWS.0\system32\services.exe
C:\WINDOWS.0\system32\lsass.exe
C:\WINDOWS.0\system32\svchost.exe
C:\WINDOWS.0\System32\svchost.exe
C:\WINDOWS.0\system32\svchost.exe
C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
C:\WINDOWS.0\Explorer.EXE
C:\WINDOWS.0\system32\spoolsv.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\DAEMON Tools\daemon.exe
C:\WINDOWS.0\system32\RUNDLL32.EXE
C:\PROGRA~1\AVG\AVG8\avgtray.exe
C:\WINDOWS.0\system32\ctfmon.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\DNA\btdna.exe
C:\Program Files\SanDisk\SanDisk TransferMate\SD Monitor.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS.0\system32\nvsvc32.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
C:\WINDOWS.0\system32\svchost.exe
C:\Program Files\Canon\CAL\CALMAIN.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
C:\Program Files\Trend Micro\HijackThis\HJT.exe
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\PROGRA~1\AVG\AVG8\avgemc.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.canoe.qc.ca
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = C:\windows\system32\blank.htm
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\windows\system32\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS.0\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS.0\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS.0\system32\NeroCheck.exe
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS.0\system32\ctfmon.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [AlcoholAutomount] "C:\Program Files\Alcohol Soft\Alcohol 120\axcmd.exe" /automount
O4 - HKCU\..\Run: [BitTorrent DNA] "C:\Program Files\DNA\btdna.exe"
O4 - HKUS\S-1-5-18\..\Run: [Nokia.PCSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [Nokia.PCSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog (User 'Default user')
O4 - Global Startup: Monitor.lnk = C:\Program Files\SanDisk\SanDisk TransferMate\SD Monitor.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - (no file)
O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - (no file)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: Run IMVU - {d9288080-1baa-4bc4-9cf8-a92d743db949} - C:\WINDOWS.0\system32\shdocvw.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {67A5F8DC-1A4B-4D66-9F24-A704AD929EEE} (System Requirements Lab) - https://www.nvidia.com/content/DriverDownload/srl/2.0.0.1/sysreqlab2.cab
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: AVG8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgemc.exe
O23 - Service: AVG8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Fichiers communs\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS.0\system32\nvsvc32.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Sunbelt Personal Firewall 4 (SPF4) - Sunbelt Software - C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
O23 - Service: StarWind AE Service (StarWindServiceAE) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
j y ai pensé apràs avoir poster le scan voici
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 22:35:29, on 2008-09-12
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16705)
Boot mode: Normal
Running processes:
C:\WINDOWS.0\System32\smss.exe
C:\WINDOWS.0\system32\winlogon.exe
C:\WINDOWS.0\system32\services.exe
C:\WINDOWS.0\system32\lsass.exe
C:\WINDOWS.0\system32\svchost.exe
C:\WINDOWS.0\System32\svchost.exe
C:\WINDOWS.0\system32\svchost.exe
C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
C:\WINDOWS.0\Explorer.EXE
C:\WINDOWS.0\system32\spoolsv.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\DAEMON Tools\daemon.exe
C:\WINDOWS.0\system32\RUNDLL32.EXE
C:\WINDOWS.0\system32\ctfmon.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\DNA\btdna.exe
C:\Program Files\SanDisk\SanDisk TransferMate\SD Monitor.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS.0\system32\nvsvc32.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
C:\WINDOWS.0\system32\svchost.exe
C:\Program Files\Canon\CAL\CALMAIN.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\WINDOWS.0\system32\wuauclt.exe
C:\WINDOWS.0\system32\wscntfy.exe
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\PROGRA~1\AVG\AVG8\avgemc.exe
C:\Program Files\AVG\AVG8\avgtray.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Trend Micro\HijackThis\HJT.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.canoe.qc.ca
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = C:\windows\system32\blank.htm
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\windows\system32\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS.0\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS.0\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS.0\system32\NeroCheck.exe
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS.0\system32\ctfmon.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [AlcoholAutomount] "C:\Program Files\Alcohol Soft\Alcohol 120\axcmd.exe" /automount
O4 - HKCU\..\Run: [BitTorrent DNA] "C:\Program Files\DNA\btdna.exe"
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKUS\S-1-5-18\..\Run: [Nokia.PCSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [Nokia.PCSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog (User 'Default user')
O4 - Global Startup: Monitor.lnk = C:\Program Files\SanDisk\SanDisk TransferMate\SD Monitor.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - (no file)
O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - (no file)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: Run IMVU - {d9288080-1baa-4bc4-9cf8-a92d743db949} - C:\WINDOWS.0\system32\shdocvw.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {67A5F8DC-1A4B-4D66-9F24-A704AD929EEE} (System Requirements Lab) - https://www.nvidia.com/content/DriverDownload/srl/2.0.0.1/sysreqlab2.cab
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O20 - AppInit_DLLs: avgrsstx.dll
O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: AVG8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgemc.exe
O23 - Service: AVG8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Fichiers communs\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS.0\system32\nvsvc32.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Sunbelt Personal Firewall 4 (SPF4) - Sunbelt Software - C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
O23 - Service: StarWind AE Service (StarWindServiceAE) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 22:35:29, on 2008-09-12
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16705)
Boot mode: Normal
Running processes:
C:\WINDOWS.0\System32\smss.exe
C:\WINDOWS.0\system32\winlogon.exe
C:\WINDOWS.0\system32\services.exe
C:\WINDOWS.0\system32\lsass.exe
C:\WINDOWS.0\system32\svchost.exe
C:\WINDOWS.0\System32\svchost.exe
C:\WINDOWS.0\system32\svchost.exe
C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
C:\WINDOWS.0\Explorer.EXE
C:\WINDOWS.0\system32\spoolsv.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\DAEMON Tools\daemon.exe
C:\WINDOWS.0\system32\RUNDLL32.EXE
C:\WINDOWS.0\system32\ctfmon.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\DNA\btdna.exe
C:\Program Files\SanDisk\SanDisk TransferMate\SD Monitor.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS.0\system32\nvsvc32.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
C:\WINDOWS.0\system32\svchost.exe
C:\Program Files\Canon\CAL\CALMAIN.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\WINDOWS.0\system32\wuauclt.exe
C:\WINDOWS.0\system32\wscntfy.exe
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\PROGRA~1\AVG\AVG8\avgemc.exe
C:\Program Files\AVG\AVG8\avgtray.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Trend Micro\HijackThis\HJT.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.canoe.qc.ca
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = C:\windows\system32\blank.htm
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\windows\system32\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS.0\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS.0\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS.0\system32\NeroCheck.exe
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS.0\system32\ctfmon.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [AlcoholAutomount] "C:\Program Files\Alcohol Soft\Alcohol 120\axcmd.exe" /automount
O4 - HKCU\..\Run: [BitTorrent DNA] "C:\Program Files\DNA\btdna.exe"
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKUS\S-1-5-18\..\Run: [Nokia.PCSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [Nokia.PCSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog (User 'Default user')
O4 - Global Startup: Monitor.lnk = C:\Program Files\SanDisk\SanDisk TransferMate\SD Monitor.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - (no file)
O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - (no file)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: Run IMVU - {d9288080-1baa-4bc4-9cf8-a92d743db949} - C:\WINDOWS.0\system32\shdocvw.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {67A5F8DC-1A4B-4D66-9F24-A704AD929EEE} (System Requirements Lab) - https://www.nvidia.com/content/DriverDownload/srl/2.0.0.1/sysreqlab2.cab
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O20 - AppInit_DLLs: avgrsstx.dll
O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: AVG8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgemc.exe
O23 - Service: AVG8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Fichiers communs\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS.0\system32\nvsvc32.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Sunbelt Personal Firewall 4 (SPF4) - Sunbelt Software - C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
O23 - Service: StarWind AE Service (StarWindServiceAE) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
Bonjour,
Tous semble aller bien depuis hier, ce matin avg à trouver un virus type PUP Potentially harmful program tool.FF
sinon tous est ok.
Tous semble aller bien depuis hier, ce matin avg à trouver un virus type PUP Potentially harmful program tool.FF
sinon tous est ok.
le scan est fait 3 virus win32/themida et un trojan horse lop et 2 spyware adware generic2.ok
il reste plein de warning ...des adware.* (point qque chose) et des tracking cookies
il reste plein de warning ...des adware.* (point qque chose) et des tracking cookies
Il n'y a pas possibilité d'avoir le rapport ?
---> Télécharge Lop S&D sur ton Bureau
https://77b4795d-a-62cb3a1a-s-sites.googlegroups.com/site/eric71mespages/LopSD.exe?attachauth=ANoY7co3ntqUavpZ3q1BG-h4pc13vqDZmhcNeEPChtsyrgAykRbhE8bZzhk979EfQD4AgwtQUHCaQ7ZQwNYMo3_0kA8htAspckDJtu2K5t6J9z6dLW4fpZyH4FpFL1tVMBZ8H-KnN7afZ5vt-WxZRpnynk-a0XmV_Y0C0q6DxGEDKie1TnPT7gFoZnoCnspzBmbW6ZzxA4fNr3oEDlbelNZON-LjF8nOmQ%3D%3D&attredirects=2
---> Double-clique dessus pour lancer l'installation
---> Puis double-clique sur le raccourci Lop S&D présent sur ton Bureau
---> Séléctionne la langue souhaitée, puis choisis l'option 1 (Recherche)
---> Patiente jusqu'à la fin du scan
---> Poste le rapport généré (C:\lopR.txt)
---> Télécharge Lop S&D sur ton Bureau
https://77b4795d-a-62cb3a1a-s-sites.googlegroups.com/site/eric71mespages/LopSD.exe?attachauth=ANoY7co3ntqUavpZ3q1BG-h4pc13vqDZmhcNeEPChtsyrgAykRbhE8bZzhk979EfQD4AgwtQUHCaQ7ZQwNYMo3_0kA8htAspckDJtu2K5t6J9z6dLW4fpZyH4FpFL1tVMBZ8H-KnN7afZ5vt-WxZRpnynk-a0XmV_Y0C0q6DxGEDKie1TnPT7gFoZnoCnspzBmbW6ZzxA4fNr3oEDlbelNZON-LjF8nOmQ%3D%3D&attredirects=2
---> Double-clique dessus pour lancer l'installation
---> Puis double-clique sur le raccourci Lop S&D présent sur ton Bureau
---> Séléctionne la langue souhaitée, puis choisis l'option 1 (Recherche)
---> Patiente jusqu'à la fin du scan
---> Poste le rapport généré (C:\lopR.txt)
voila j'ai trouvé
Scan "Scan whole computer" was finished.
Infections found:;"4"
Infected objects removed or healed;"4"
Not removed or healed.;"0"
Spyware found:;"2"
Spyware removed:;"2"
Not removed:;"0"
Warnings count:;"61"
Information count:;"0"
Scan started:;"13 septembre 2008, 13:21:29"
Total object scanned:;"1078990"
Time needed:;"2 hour(s) 29 minute(s) 5 second(s) "
Errors encountered:;"0"
Infections
File;"Infection";"Result"
C:\Documents and Settings\proprietaire\Mes documents\Azureus Downloads\Adobe Photoshop CS 3 keygen+activator\Adobe Photoshop CS 3Activator.exe:\Kas_keygen.exe:\KAS_KE~1.EXE;"Virus identified Win32/Themida";"Moved to Virus Vault"
C:\Documents and Settings\proprietaire\Mes documents\Azureus Downloads\Adobe Photoshop CS 3 keygen+activator\Adobe Photoshop CS 3Activator.exe:\Kas_keygen.exe;"Virus identified Win32/Themida";"Moved to Virus Vault"
C:\Documents and Settings\proprietaire\Mes documents\Azureus Downloads\Adobe Photoshop CS 3 keygen+activator\Adobe Photoshop CS 3Activator.exe;"Virus identified Win32/Themida";"Moved to Virus Vault"
C:\WINDOWS\system32\vvebyeqv.dll;"Trojan horse Lop.3.AT";"Moved to Virus Vault"
Spyware
File;"Infection";"Result"
C:\WINDOWS\system32\hgjpiqap.dll;"Adware Generic2.OK";"Moved to Virus Vault"
C:\WINDOWS\system32\whbgtgkn.dll;"Adware Generic2.OK";"Moved to Virus Vault"
Warnings
File;"Infection";"Result"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{00110011-4B0B-44D5-9718-90C88817369B};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{01E69986-A054-4C52-ABE8-EF63DF1C5211};"Found Adware.CramToolbar";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{086AE192-23A6-48D6-96EC-715F53797E85};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{0EDC6C20-A31C-11DB-8AB9-0800200C9A66};"Found Adware.RogueSuspect";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{11904CE8-632A-4856-A7CC-00B33FE71BD8};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{150FA160-130D-451F-B863-B655061432BA};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{17DA0C9E-4A27-4ac5-BB75-5D24B8CDB972};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{1C4DA27D-4D52-4465-A089-98E01BB725CA};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{1C78AB3F-A857-482e-80C0-3A1E5238A565};"Found Adware.Isearch";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{1F48AA48-C53A-4E21-85E7-AC7CC6B5FFB1};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{1F48AA48-C53A-4E21-85E7-AC7CC6B5FFB2};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{20929603-21DB-477C-BA6F-0B8E70B3C8A0};"Found Adware.CramToolbar";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{2D38A51A-23C9-48a1-A33C-48675AA2B494};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{2E9CAFF6-30C7-4208-8807-E79D4EC6F806};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{364B6276-C6C1-40B6-A6D7-6C48871FD707};"Found Adware.Accoona";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{3AAC4C68-AFC8-11DB-80EF-8AF955D89593};"Found Adware.RogueSuspect";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{3CEFF6CD-6F08-4E4D-BCCD-FF7415288C3B};"Found Adware.TitanShieldAntispyware";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{3D782BB3-F2A5-11D3-BF4C-000000000000};"Found Adware.ActivShopper";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{4A2AACF3-ADF6-11D5-98A9-00E018981B9E};"Found Adware.NewDotNet";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{4E7BD74F-2B8D-469E-C0FF-FD67B79CAF2C};"Found Adware.NewDotNet";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{4E7BD74F-2B8D-469E-DEFF-ED65A486AA28};"Found Adware.UpSpiralBar";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{5345A7A9-805A-4923-B505-86B2FEBA3FE0};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{6B035665-6C0D-4388-AD11-B28314DCA59B};"Found Adware.EZ-Tracks";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{736b5468-bdad-41be-92d0-22ae2ddf7bcb};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{74CC49F7-EB32-4A08-B204-948962A6E3DB};"Found Adware.RogueSuspect";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{77B2F8DE-CB3F-4b6b-839B-807DD1ADBA1C};"Found Adware.SearchMaid";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{7FD44536-9DF0-4034-939F-5BD4D98E3187};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{804DB5C7-31E6-4885-850A-F1941B58A4C7};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{8333C319-0669-4893-A418-F56D9249FCA6};"Found Adware.TitanShieldAntispyware";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{88D758A3-D33B-45FD-91E3-67749B4057FA};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{8DFD5077-FB25-4397-8D9F-ACFB8CC7E34B};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{98A7C97A-4FFF-4F6E-A313-D21BC759DD99};"Found Adware.SearchIT";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{9C691A33-7DDA-4C2F-BE4C-C176083F35CF};"Found Adware.TitanShieldAntispyware";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{a19ef336-01d4-48e6-926a-fe7e1c747aed};"Found Adware.MWSearch";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{A20CC53E-61FE-4788-85FF-A0F9C9B4C2A9};"Found Adware.CommanderNET";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{A6F42CAD-2559-48DF-AF30-89E480AF5DFA};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{A8FB8EB3-183B-4598-924D-86F0E5E37085};"Found Adware.WhyPPC";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{AC3AEF75-0A6B-4AB8-82B5-2C9BA8396644};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{C95FE080-8F5D-11D2-A20B-00AA003C157A};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{CE7C3CF0-4B15-11D1-ABED-709549C10000};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{CF021F40-3E14-23A5-CBA2-717765721306};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{E2B2B5A1-B48C-4886-A318-723916A01024};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{E2DDF680-9905-4dee-8C64-0A5DE7FE133C};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{E3EEBBE8-9CAB-4C76-B26A-747E25EBB4C6};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{E6D5237D-A6C7-4C83-A67F-F9F15586FA62};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{E7AFFF2A-1B57-49C7-BF6B-E5123394C970};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{E8EDB60C-951E-4130-93DC-FAF1AD25F8E7};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{EA0D26BD-9029-431A-86E0-83152D67828A};"Found Adware.180Solutions";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{F1FABE79-25FC-46de-8C5A-2C6DB9D64333};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{F43BD772-ABDD-43B7-A96A-3E9E61946EC0};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{FCADDC14-BD46-408A-9842-CDBE1C6D37EB};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{FD9BC004-8331-4457-B830-4759FF704C22};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{FF1BF4C7-4E08-4A28-A43F-9D60A9F7A880};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{FFD2825E-0785-40C5-9A41-518F53A8261F};"Found Adware.TitanShieldAntispyware";"Potentially dangerous object"
C:\Documents and Settings\proprietaire\Cookies\proprietaire@2o7[2].txt:\2o7.net.e7e7d917;"Found Tracking cookie.2o7";"Potentially dangerous object"
C:\Documents and Settings\proprietaire\Cookies\proprietaire@2o7[2].txt:\2o7.net.bf62af4f;"Found Tracking cookie.2o7";"Potentially dangerous object"
C:\Documents and Settings\proprietaire\Cookies\proprietaire@2o7[2].txt;"Found Tracking cookie.2o7";"Potentially dangerous object"
C:\Documents and Settings\proprietaire\Cookies\proprietaire@smartadserver[2].txt:\smartadserver.com.c5827141;"Found Tracking cookie.Smartadserver";"Potentially dangerous object"
C:\Documents and Settings\proprietaire\Cookies\proprietaire@smartadserver[2].txt:\smartadserver.com.321a5cf8;"Found Tracking cookie.Smartadserver";"Potentially dangerous object"
C:\Documents and Settings\proprietaire\Cookies\proprietaire@smartadserver[2].txt:\smartadserver.com.5550c4ed;"Found Tracking cookie.Smartadserver";"Potentially dangerous object"
C:\Documents and Settings\proprietaire\Cookies\proprietaire@smartadserver[2].txt;"Found Tracking cookie.Smartadserver";"Potentially dangerous object"
Scan "Scan whole computer" was finished.
Infections found:;"4"
Infected objects removed or healed;"4"
Not removed or healed.;"0"
Spyware found:;"2"
Spyware removed:;"2"
Not removed:;"0"
Warnings count:;"61"
Information count:;"0"
Scan started:;"13 septembre 2008, 13:21:29"
Total object scanned:;"1078990"
Time needed:;"2 hour(s) 29 minute(s) 5 second(s) "
Errors encountered:;"0"
Infections
File;"Infection";"Result"
C:\Documents and Settings\proprietaire\Mes documents\Azureus Downloads\Adobe Photoshop CS 3 keygen+activator\Adobe Photoshop CS 3Activator.exe:\Kas_keygen.exe:\KAS_KE~1.EXE;"Virus identified Win32/Themida";"Moved to Virus Vault"
C:\Documents and Settings\proprietaire\Mes documents\Azureus Downloads\Adobe Photoshop CS 3 keygen+activator\Adobe Photoshop CS 3Activator.exe:\Kas_keygen.exe;"Virus identified Win32/Themida";"Moved to Virus Vault"
C:\Documents and Settings\proprietaire\Mes documents\Azureus Downloads\Adobe Photoshop CS 3 keygen+activator\Adobe Photoshop CS 3Activator.exe;"Virus identified Win32/Themida";"Moved to Virus Vault"
C:\WINDOWS\system32\vvebyeqv.dll;"Trojan horse Lop.3.AT";"Moved to Virus Vault"
Spyware
File;"Infection";"Result"
C:\WINDOWS\system32\hgjpiqap.dll;"Adware Generic2.OK";"Moved to Virus Vault"
C:\WINDOWS\system32\whbgtgkn.dll;"Adware Generic2.OK";"Moved to Virus Vault"
Warnings
File;"Infection";"Result"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{00110011-4B0B-44D5-9718-90C88817369B};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{01E69986-A054-4C52-ABE8-EF63DF1C5211};"Found Adware.CramToolbar";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{086AE192-23A6-48D6-96EC-715F53797E85};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{0EDC6C20-A31C-11DB-8AB9-0800200C9A66};"Found Adware.RogueSuspect";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{11904CE8-632A-4856-A7CC-00B33FE71BD8};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{150FA160-130D-451F-B863-B655061432BA};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{17DA0C9E-4A27-4ac5-BB75-5D24B8CDB972};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{1C4DA27D-4D52-4465-A089-98E01BB725CA};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{1C78AB3F-A857-482e-80C0-3A1E5238A565};"Found Adware.Isearch";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{1F48AA48-C53A-4E21-85E7-AC7CC6B5FFB1};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{1F48AA48-C53A-4E21-85E7-AC7CC6B5FFB2};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{20929603-21DB-477C-BA6F-0B8E70B3C8A0};"Found Adware.CramToolbar";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{2D38A51A-23C9-48a1-A33C-48675AA2B494};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{2E9CAFF6-30C7-4208-8807-E79D4EC6F806};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{364B6276-C6C1-40B6-A6D7-6C48871FD707};"Found Adware.Accoona";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{3AAC4C68-AFC8-11DB-80EF-8AF955D89593};"Found Adware.RogueSuspect";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{3CEFF6CD-6F08-4E4D-BCCD-FF7415288C3B};"Found Adware.TitanShieldAntispyware";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{3D782BB3-F2A5-11D3-BF4C-000000000000};"Found Adware.ActivShopper";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{4A2AACF3-ADF6-11D5-98A9-00E018981B9E};"Found Adware.NewDotNet";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{4E7BD74F-2B8D-469E-C0FF-FD67B79CAF2C};"Found Adware.NewDotNet";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{4E7BD74F-2B8D-469E-DEFF-ED65A486AA28};"Found Adware.UpSpiralBar";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{5345A7A9-805A-4923-B505-86B2FEBA3FE0};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{6B035665-6C0D-4388-AD11-B28314DCA59B};"Found Adware.EZ-Tracks";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{736b5468-bdad-41be-92d0-22ae2ddf7bcb};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{74CC49F7-EB32-4A08-B204-948962A6E3DB};"Found Adware.RogueSuspect";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{77B2F8DE-CB3F-4b6b-839B-807DD1ADBA1C};"Found Adware.SearchMaid";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{7FD44536-9DF0-4034-939F-5BD4D98E3187};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{804DB5C7-31E6-4885-850A-F1941B58A4C7};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{8333C319-0669-4893-A418-F56D9249FCA6};"Found Adware.TitanShieldAntispyware";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{88D758A3-D33B-45FD-91E3-67749B4057FA};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{8DFD5077-FB25-4397-8D9F-ACFB8CC7E34B};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{98A7C97A-4FFF-4F6E-A313-D21BC759DD99};"Found Adware.SearchIT";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{9C691A33-7DDA-4C2F-BE4C-C176083F35CF};"Found Adware.TitanShieldAntispyware";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{a19ef336-01d4-48e6-926a-fe7e1c747aed};"Found Adware.MWSearch";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{A20CC53E-61FE-4788-85FF-A0F9C9B4C2A9};"Found Adware.CommanderNET";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{A6F42CAD-2559-48DF-AF30-89E480AF5DFA};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{A8FB8EB3-183B-4598-924D-86F0E5E37085};"Found Adware.WhyPPC";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{AC3AEF75-0A6B-4AB8-82B5-2C9BA8396644};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{C95FE080-8F5D-11D2-A20B-00AA003C157A};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{CE7C3CF0-4B15-11D1-ABED-709549C10000};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{CF021F40-3E14-23A5-CBA2-717765721306};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{E2B2B5A1-B48C-4886-A318-723916A01024};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{E2DDF680-9905-4dee-8C64-0A5DE7FE133C};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{E3EEBBE8-9CAB-4C76-B26A-747E25EBB4C6};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{E6D5237D-A6C7-4C83-A67F-F9F15586FA62};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{E7AFFF2A-1B57-49C7-BF6B-E5123394C970};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{E8EDB60C-951E-4130-93DC-FAF1AD25F8E7};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{EA0D26BD-9029-431A-86E0-83152D67828A};"Found Adware.180Solutions";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{F1FABE79-25FC-46de-8C5A-2C6DB9D64333};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{F43BD772-ABDD-43B7-A96A-3E9E61946EC0};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{FCADDC14-BD46-408A-9842-CDBE1C6D37EB};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{FD9BC004-8331-4457-B830-4759FF704C22};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{FF1BF4C7-4E08-4A28-A43F-9D60A9F7A880};"Found Adware.Generic";"Potentially dangerous object"
HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{FFD2825E-0785-40C5-9A41-518F53A8261F};"Found Adware.TitanShieldAntispyware";"Potentially dangerous object"
C:\Documents and Settings\proprietaire\Cookies\proprietaire@2o7[2].txt:\2o7.net.e7e7d917;"Found Tracking cookie.2o7";"Potentially dangerous object"
C:\Documents and Settings\proprietaire\Cookies\proprietaire@2o7[2].txt:\2o7.net.bf62af4f;"Found Tracking cookie.2o7";"Potentially dangerous object"
C:\Documents and Settings\proprietaire\Cookies\proprietaire@2o7[2].txt;"Found Tracking cookie.2o7";"Potentially dangerous object"
C:\Documents and Settings\proprietaire\Cookies\proprietaire@smartadserver[2].txt:\smartadserver.com.c5827141;"Found Tracking cookie.Smartadserver";"Potentially dangerous object"
C:\Documents and Settings\proprietaire\Cookies\proprietaire@smartadserver[2].txt:\smartadserver.com.321a5cf8;"Found Tracking cookie.Smartadserver";"Potentially dangerous object"
C:\Documents and Settings\proprietaire\Cookies\proprietaire@smartadserver[2].txt:\smartadserver.com.5550c4ed;"Found Tracking cookie.Smartadserver";"Potentially dangerous object"
C:\Documents and Settings\proprietaire\Cookies\proprietaire@smartadserver[2].txt;"Found Tracking cookie.Smartadserver";"Potentially dangerous object"
--------------------\\ Lop S&D 4.2.4-2 XP/Vista
Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 2
X86-based PC ( Uniprocessor Free : AMD Athlon(tm) 64 Processor 3200+ )
BIOS : Version 07.00T
USER : proprietaire ( Administrator )
BOOT : Normal boot
Antivirus : AVG Anti-Virus Free 8.0 (Activated)
Firewall : Sunbelt Personal Firewall 4.5.916 T (Activated)
"C:\Lop SD" ( MAJ : 08-09-2008|21:40 )
Option : [1] ( 2008-09-13|16:51 )
--------------------\\ Listing des dossiers dans APPLIC~1
[2007-05-11|21:42] C:\DOCUME~1\ADMINI~1\APPLIC~1\Identities
[2008-09-10|20:10] C:\DOCUME~1\ADMINI~1\APPLIC~1\Microsoft
[2007-05-06|10:41] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[2006-12-27|16:01] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer
[2007-05-09|08:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\avg7
[2006-06-12|14:52] C:\DOCUME~1\ALLUSE~1\APPLIC~1\BOONTY
[2006-06-03|15:39] C:\DOCUME~1\ALLUSE~1\APPLIC~1\CyberLink
[2006-12-01|10:13] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Firefly Studios
[2007-04-11|20:58] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
[2006-06-03|14:34] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Grisoft
[2006-06-03|14:00] C:\DOCUME~1\ALLUSE~1\APPLIC~1\HP
[2007-01-09|15:08] C:\DOCUME~1\ALLUSE~1\APPLIC~1\InstallShield
[2006-06-12|15:07] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Macrovision
[2007-02-10|16:07] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[2006-06-02|18:16] C:\DOCUME~1\ALLUSE~1\APPLIC~1\nView_Profiles
[2006-06-03|19:32] C:\DOCUME~1\ALLUSE~1\APPLIC~1\OLYMPUS
[2006-06-03|14:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\QuickTime
[2006-06-03|15:03] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Sony Corporation
[2007-05-05|18:16] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy
[2007-04-15|12:57] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TEMP
[2006-06-02|18:16] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[2007-02-10|16:07] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Live Toolbar
[2008-08-10|10:03] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\Adobe
[2007-08-13|20:13] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\Ahead
[2007-09-14|16:42] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\Apple
[2007-05-21|18:29] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\Apple Computer
[2008-09-12|22:34] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\avg8
[2007-05-13|10:17] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\Azureus
[2007-11-09|23:39] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\CanonBJ
[2007-09-09|20:58] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\FLEXnet
[2007-05-16|19:34] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\Google
[2008-09-12|22:02] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\Grisoft
[2007-05-13|17:45] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\HP
[2008-03-07|14:03] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\Installations
[2007-06-06|18:53] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\InstallShield
[2008-08-19|20:35] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\Lavasoft
[2008-09-11|21:20] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\Malwarebytes
[2008-08-19|20:34] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\Microsoft
[2007-12-15|15:29] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\Microsoft Corporation
[2008-09-11|11:58] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\Microsoft Help
[2008-07-01|08:40] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\Nero
[2007-09-12|15:36] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\NVIDIA
[2008-01-27|22:37] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\nView_Profiles
[2008-01-20|13:34] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\Office Genuine Advantage
[2007-05-13|20:32] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\OLYMPUS
[2008-03-07|14:05] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\PC Suite
[2007-05-13|20:29] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\QuickTime
[2008-09-12|14:22] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\Spybot - Search & Destroy
[2007-12-28|14:35] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\Trymedia
[2007-08-13|21:52] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\vsosdk
[2007-05-13|09:55] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\Windows Genuine Advantage
[2008-09-12|14:42] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\ZoomBrowser
[2006-06-02|17:54] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities
[2006-06-02|17:57] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[2007-03-21|20:25] C:\DOCUME~1\INVIT~1\APPLIC~1\Adobe
[2006-06-16|10:23] C:\DOCUME~1\INVIT~1\APPLIC~1\AVG7
[2007-04-12|14:08] C:\DOCUME~1\INVIT~1\APPLIC~1\Google
[2006-06-02|17:54] C:\DOCUME~1\INVIT~1\APPLIC~1\Identities
[2007-03-09|15:03] C:\DOCUME~1\INVIT~1\APPLIC~1\Macromedia
[2007-03-08|16:10] C:\DOCUME~1\INVIT~1\APPLIC~1\Microsoft
[2006-09-25|15:12] C:\DOCUME~1\INVIT~1\APPLIC~1\Sun
[2008-07-01|08:23] C:\DOCUME~1\INVIT~1.SEA\APPLIC~1\Adobe
[2008-03-07|08:47] C:\DOCUME~1\INVIT~1.SEA\APPLIC~1\Google
[2008-03-28|19:06] C:\DOCUME~1\INVIT~1.SEA\APPLIC~1\Macromedia
[2008-03-28|19:04] C:\DOCUME~1\INVIT~1.SEA\APPLIC~1\Real
[2006-09-16|18:48] C:\DOCUME~1\laurie\APPLIC~1\Adobe
[2006-09-15|19:32] C:\DOCUME~1\laurie\APPLIC~1\AdobeUM
[2006-12-27|16:01] C:\DOCUME~1\laurie\APPLIC~1\Apple Computer
[2006-06-05|19:18] C:\DOCUME~1\laurie\APPLIC~1\AVG7
[2007-04-13|16:47] C:\DOCUME~1\laurie\APPLIC~1\Google
[2006-06-02|17:54] C:\DOCUME~1\laurie\APPLIC~1\Identities
[2006-09-15|20:49] C:\DOCUME~1\laurie\APPLIC~1\IMVU
[2007-05-06|19:30] C:\DOCUME~1\laurie\APPLIC~1\LimeWire
[2006-09-22|16:47] C:\DOCUME~1\laurie\APPLIC~1\Lionhead Studios
[2006-06-10|13:51] C:\DOCUME~1\laurie\APPLIC~1\Macromedia
[2007-03-26|09:14] C:\DOCUME~1\laurie\APPLIC~1\Microsoft
[2006-09-04|11:22] C:\DOCUME~1\laurie\APPLIC~1\SecuROM
[2006-06-09|21:30] C:\DOCUME~1\laurie\APPLIC~1\Sony Corporation
[2006-07-06|11:13] C:\DOCUME~1\laurie\APPLIC~1\Sun
[2008-06-07|20:26] C:\DOCUME~1\LAURIE~1.SEA\APPLIC~1\Adobe
[2008-03-24|10:46] C:\DOCUME~1\LAURIE~1.SEA\APPLIC~1\AVG7
[2008-03-24|10:52] C:\DOCUME~1\LAURIE~1.SEA\APPLIC~1\Google
[2008-03-24|10:52] C:\DOCUME~1\LAURIE~1.SEA\APPLIC~1\Macromedia
[2008-03-24|10:46] C:\DOCUME~1\LAURIE~1.SEA\APPLIC~1\Microsoft
[2008-03-30|11:40] C:\DOCUME~1\LAURIE~1.SEA\APPLIC~1\WinRAR
[2007-04-26|08:00] C:\DOCUME~1\LOCALS~1\APPLIC~1\AVG7
[2006-11-03|14:19] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[2008-03-19|12:07] C:\DOCUME~1\LOCALS~1.AUT\APPLIC~1\Google
[2008-03-19|12:09] C:\DOCUME~1\LOCALS~1.AUT\APPLIC~1\Macromedia
[2008-03-19|12:06] C:\DOCUME~1\LOCALS~1.AUT\APPLIC~1\Microsoft
[2006-12-24|08:53] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
[2007-05-12|19:41] C:\DOCUME~1\NETWOR~1.AUT\APPLIC~1\Microsoft
[2008-05-14|19:17] C:\DOCUME~1\PROPRI~3\APPLIC~1\Adobe
[2008-08-24|20:39] C:\DOCUME~1\PROPRI~3\APPLIC~1\AdobeUM
[2007-08-13|20:15] C:\DOCUME~1\PROPRI~3\APPLIC~1\Ahead
[2007-05-21|18:30] C:\DOCUME~1\PROPRI~3\APPLIC~1\Apple Computer
[2008-02-14|19:36] C:\DOCUME~1\PROPRI~3\APPLIC~1\ArcSoft
[2007-12-25|16:23] C:\DOCUME~1\PROPRI~3\APPLIC~1\Atari
[2008-09-12|14:00] C:\DOCUME~1\PROPRI~3\APPLIC~1\Azureus
[2008-09-12|21:17] C:\DOCUME~1\PROPRI~3\APPLIC~1\BitTorrent
[2007-07-16|20:17] C:\DOCUME~1\PROPRI~3\APPLIC~1\Canon
[2007-10-11|15:53] C:\DOCUME~1\PROPRI~3\APPLIC~1\DataCast
[2007-06-30|12:18] C:\DOCUME~1\PROPRI~3\APPLIC~1\DivX
[2008-09-13|16:45] C:\DOCUME~1\PROPRI~3\APPLIC~1\DNA
[2007-05-16|21:00] C:\DOCUME~1\PROPRI~3\APPLIC~1\Google
[2007-05-13|20:11] C:\DOCUME~1\PROPRI~3\APPLIC~1\HP
[2008-09-07|20:22] C:\DOCUME~1\PROPRI~3\APPLIC~1\Identities
[2007-05-24|18:45] C:\DOCUME~1\PROPRI~3\APPLIC~1\Image Zone Express
[2008-06-13|20:31] C:\DOCUME~1\PROPRI~3\APPLIC~1\IPC
[2008-08-19|20:34] C:\DOCUME~1\PROPRI~3\APPLIC~1\Lavasoft
[2007-07-30|21:34] C:\DOCUME~1\PROPRI~3\APPLIC~1\Leadertech
[2008-07-13|09:43] C:\DOCUME~1\PROPRI~3\APPLIC~1\Lionhead Studios
[2007-05-12|22:16] C:\DOCUME~1\PROPRI~3\APPLIC~1\Macromedia
[2008-09-11|21:20] C:\DOCUME~1\PROPRI~3\APPLIC~1\Malwarebytes
[2008-05-16|15:14] C:\DOCUME~1\PROPRI~3\APPLIC~1\Microsoft
[2008-06-04|23:09] C:\DOCUME~1\PROPRI~3\APPLIC~1\Nero
[2008-03-07|14:08] C:\DOCUME~1\PROPRI~3\APPLIC~1\Nokia
[2008-03-07|14:04] C:\DOCUME~1\PROPRI~3\APPLIC~1\PC Suite
[2007-05-21|18:17] C:\DOCUME~1\PROPRI~3\APPLIC~1\Real
[2007-05-18|14:08] C:\DOCUME~1\PROPRI~3\APPLIC~1\SecuROM
[2007-05-18|14:08] C:\DOCUME~1\PROPRI~3\APPLIC~1\Sony Corporation
[2007-05-13|21:15] C:\DOCUME~1\PROPRI~3\APPLIC~1\Sun
[2007-05-18|14:08] C:\DOCUME~1\PROPRI~3\APPLIC~1\Uniblue
[2007-11-04|22:45] C:\DOCUME~1\PROPRI~3\APPLIC~1\Vso
[2007-06-06|19:16] C:\DOCUME~1\PROPRI~3\APPLIC~1\WinRAR
[2008-09-12|14:43] C:\DOCUME~1\PROPRI~3\APPLIC~1\ZoomBrowser EX
[2007-05-06|10:41] C:\DOCUME~1\PROPRI~1\APPLIC~1\Adobe
[2007-01-17|13:40] C:\DOCUME~1\PROPRI~1\APPLIC~1\AdobeUM
[2006-07-27|19:13] C:\DOCUME~1\PROPRI~1\APPLIC~1\Ahead
[2006-12-27|20:01] C:\DOCUME~1\PROPRI~1\APPLIC~1\Apple Computer
[2007-05-09|20:15] C:\DOCUME~1\PROPRI~1\APPLIC~1\AVG7
[2007-04-04|19:12] C:\DOCUME~1\PROPRI~1\APPLIC~1\Azureus
[2006-08-10|11:59] C:\DOCUME~1\PROPRI~1\APPLIC~1\BitTorrent
[2006-06-03|16:06] C:\DOCUME~1\PROPRI~1\APPLIC~1\CyberLink
[2006-10-03|13:46] C:\DOCUME~1\PROPRI~1\APPLIC~1\Firaxis Games
[2006-06-03|14:22] C:\DOCUME~1\PROPRI~1\APPLIC~1\FotoWire
[2006-06-12|15:08] C:\DOCUME~1\PROPRI~1\APPLIC~1\funkitron
[2007-04-11|20:58] C:\DOCUME~1\PROPRI~1\APPLIC~1\Google
[2006-08-02|17:51] C:\DOCUME~1\PROPRI~1\APPLIC~1\Help
[2006-07-05|19:36] C:\DOCUME~1\PROPRI~1\APPLIC~1\HP
[2006-06-02|17:54] C:\DOCUME~1\PROPRI~1\APPLIC~1\Identities
[2006-06-18|15:11] C:\DOCUME~1\PROPRI~1\APPLIC~1\IMVU
[2006-10-10|20:22] C:\DOCUME~1\PROPRI~1\APPLIC~1\InstallShield
[2006-12-01|10:42] C:\DOCUME~1\PROPRI~1\APPLIC~1\InstallShield Installation Information
[2007-05-12|20:00] C:\DOCUME~1\PROPRI~1\APPLIC~1\Lavasoft
[2006-12-25|13:43] C:\DOCUME~1\PROPRI~1\APPLIC~1\Lionhead Studios
[2006-06-02|18:06] C:\DOCUME~1\PROPRI~1\APPLIC~1\Macromedia
[2007-04-15|14:10] C:\DOCUME~1\PROPRI~1\APPLIC~1\Microsoft
[2007-02-24|18:52] C:\DOCUME~1\PROPRI~1\APPLIC~1\Microsoft Games
[2007-04-15|13:11] C:\DOCUME~1\PROPRI~1\APPLIC~1\MSNInstaller
[2006-12-01|10:42] C:\DOCUME~1\PROPRI~1\APPLIC~1\My Games
[2006-06-23|14:18] C:\DOCUME~1\PROPRI~1\APPLIC~1\Raptisoft
[2006-09-03|20:11] C:\DOCUME~1\PROPRI~1\APPLIC~1\SecuROM
[2007-02-09|14:10] C:\DOCUME~1\Virginie\APPLIC~1\Adobe
[2006-09-16|12:09] C:\DOCUME~1\Virginie\APPLIC~1\AdobeUM
[2007-04-06|20:18] C:\DOCUME~1\Virginie\APPLIC~1\Apple Computer
[2007-04-14|11:08] C:\DOCUME~1\Virginie\APPLIC~1\AVG7
[2007-04-13|19:08] C:\DOCUME~1\Virginie\APPLIC~1\Google
[2006-06-02|17:54] C:\DOCUME~1\Virginie\APPLIC~1\Identities
[2007-04-13|21:19] C:\DOCUME~1\Virginie\APPLIC~1\LimeWire
[2006-07-13|22:03] C:\DOCUME~1\Virginie\APPLIC~1\Macromedia
[2007-03-25|15:12] C:\DOCUME~1\Virginie\APPLIC~1\Microsoft
[2007-02-24|13:21] C:\DOCUME~1\Virginie\APPLIC~1\Microsoft Games
[2006-06-30|21:21] C:\DOCUME~1\Virginie\APPLIC~1\Sony Corporation
[2007-01-03|22:23] C:\DOCUME~1\Virginie\APPLIC~1\Sun
--------------------\\ Tâches planifiées dans C:\WINDOWS.0\tasks
[2008-09-12 22:37][--a------] C:\WINDOWS.0\tasks\SCHEDLGU.TXT
[2008-05-20 11:07][--a------] C:\WINDOWS.0\tasks\AppleSoftwareUpdate.job
[2008-09-13 09:04][--ah-----] C:\WINDOWS.0\tasks\SA.DAT
[2004-08-05 00:00][-r-h-----] C:\WINDOWS.0\tasks\desktop.ini
--------------------\\ Listing des dossiers dans C:\Program Files
[2008-04-09|20:21] C:\Program Files\Adobe
[2008-01-20|15:44] C:\Program Files\AGEIA Technologies
[2008-01-20|13:10] C:\Program Files\AGEIA Technologies(2)
[2008-07-13|20:21] C:\Program Files\Ahead
[2006-06-04|20:50] C:\Program Files\Alcohol Soft
[2008-08-24|20:43] C:\Program Files\Anno 1701
[2007-09-14|16:42] C:\Program Files\Apple Software Update
[2008-09-12|22:02] C:\Program Files\AVG
[2008-09-01|09:35] C:\Program Files\Azureus
[2008-09-12|13:51] C:\Program Files\BitTorrent
[2007-09-07|19:34] C:\Program Files\Bonjour
[2007-07-16|19:37] C:\Program Files\Canon
[2007-05-12|19:54] C:\Program Files\CCleaner
[2007-05-11|21:40] C:\Program Files\ComPlus Applications
[2007-05-03|20:34] C:\Program Files\DAEMON Tools
[2008-03-07|14:05] C:\Program Files\DIFX
[2008-01-20|13:14] C:\Program Files\Diskeeper Corporation
[2008-01-13|17:37] C:\Program Files\DivX
[2008-09-12|16:14] C:\Program Files\DNA
[2007-12-08|11:46] C:\Program Files\EA GAMES
[2008-03-21|13:26] C:\Program Files\Electronic Arts
[2008-09-12|20:39] C:\Program Files\Encore
[2008-03-21|13:13] C:\Program Files\eXperience112
[2008-09-12|21:24] C:\Program Files\Fichiers communs
[2007-03-18|19:10] C:\Program Files\Fujifilm
[2007-05-16|19:34] C:\Program Files\Google
[2008-09-12|22:02] C:\Program Files\Grisoft
[2007-03-23|20:50] C:\Program Files\Hitman Blood Money
[2008-07-22|15:38] C:\Program Files\IKEA HomePlanner
[2008-08-24|20:18] C:\Program Files\InstallShield Installation Information
[2008-08-15|13:19] C:\Program Files\Internet Explorer
[2007-09-14|16:45] C:\Program Files\iPod
[2007-09-14|16:45] C:\Program Files\iTunes
[2006-11-06|22:09] C:\Program Files\iWin
[2008-07-13|20:26] C:\Program Files\Java
[2008-01-20|16:11] C:\Program Files\K-Lite Codec Pack
[2007-10-11|15:13] C:\Program Files\Lame MP3 Codec
[2008-08-19|20:34] C:\Program Files\Lavasoft
[2007-10-11|15:45] C:\Program Files\LimeWire
[2006-12-04|12:28] C:\Program Files\Logitech
[2008-09-11|21:20] C:\Program Files\Malwarebytes' Anti-Malware
[2008-08-15|13:21] C:\Program Files\Messenger
[2006-09-16|11:25] C:\Program Files\Microsoft ActiveSync
[2007-06-03|22:08] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[2006-06-02|17:54] C:\Program Files\microsoft frontpage
[2007-05-13|13:32] C:\Program Files\Microsoft Office
[2008-08-19|10:42] C:\Program Files\Microsoft Silverlight
[2007-05-13|13:32] C:\Program Files\Microsoft Visual Studio
[2007-08-19|10:15] C:\Program Files\Microsoft Visual Studio 8
[2007-05-13|13:32] C:\Program Files\Microsoft Works
[2006-09-16|11:24] C:\Program Files\Microsoft.NET
[2006-10-17|16:35] C:\Program Files\MindArk
[2006-06-02|17:53] C:\Program Files\Movie Maker
[2007-05-18|18:37] C:\Program Files\MSN
[2006-06-02|17:52] C:\Program Files\MSN Gaming Zone
[2008-01-17|20:29] C:\Program Files\MSN Messenger
[2006-11-16|18:46] C:\Program Files\MSXML 4.0
[2007-12-15|15:04] C:\Program Files\MyFree Codec
[2008-06-04|23:06] C:\Program Files\Nero
[2006-06-02|17:53] C:\Program Files\NetMeeting
[2008-03-07|14:04] C:\Program Files\Nokia
[2006-06-03|14:48] C:\Program Files\OLYMPUS
[2008-01-20|15:25] C:\Program Files\Online Services
[2007-06-12|22:32] C:\Program Files\Outlook Express
[2007-03-11|14:19] C:\Program Files\Paradox Interactive
[2008-03-07|14:04] C:\Program Files\PC Connectivity Solution
[2008-01-13|16:51] C:\Program Files\PowerISO
[2008-01-13|17:01] C:\Program Files\QuickTime
[2007-05-16|19:34] C:\Program Files\Real
[2008-01-20|16:16] C:\Program Files\Reality Pump
[2007-08-17|21:08] C:\Program Files\RegSeeker
[2008-03-28|17:33] C:\Program Files\RivaTuner v2.08
[2007-10-11|15:12] C:\Program Files\Samsung
[2008-02-14|19:33] C:\Program Files\SanDisk
[2006-06-02|17:53] C:\Program Files\Services en ligne
[2006-10-10|20:23] C:\Program Files\Sierra
[2006-06-03|15:04] C:\Program Files\Sony
[2006-06-03|15:04] C:\Program Files\Sony Corporation
[2008-08-24|19:54] C:\Program Files\Spybot - Search & Destroy
[2008-07-13|20:26] C:\Program Files\Sun
[2007-05-05|16:50] C:\Program Files\Sunbelt Software
[2008-01-20|13:21] C:\Program Files\SystemRequirementsLab
[2007-11-28|21:55] C:\Program Files\THQ
[2008-09-11|21:25] C:\Program Files\Trend Micro
[2006-10-15|21:06] C:\Program Files\Trymedia
[2007-05-03|18:39] C:\Program Files\Uniblue
[2006-06-02|17:57] C:\Program Files\Uninstall Information
[2007-11-04|22:45] C:\Program Files\VSO
[2007-09-29|20:45] C:\Program Files\Warcraft III
[2007-05-03|20:56] C:\Program Files\Windows Defender
[2007-04-15|13:34] C:\Program Files\Windows Live Toolbar
[2008-01-20|14:52] C:\Program Files\Windows Media Components
[2008-01-20|14:30] C:\Program Files\Windows Media Connect 2
[2008-01-20|15:17] C:\Program Files\Windows Media Player
[2008-01-20|15:25] C:\Program Files\Windows NT
[2006-06-02|17:53] C:\Program Files\WindowsUpdate
[2007-06-06|19:15] C:\Program Files\WinRAR
[2006-06-02|17:54] C:\Program Files\xerox
[2006-07-05|19:22] C:\Program Files\Yahoo!
Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 2
X86-based PC ( Uniprocessor Free : AMD Athlon(tm) 64 Processor 3200+ )
BIOS : Version 07.00T
USER : proprietaire ( Administrator )
BOOT : Normal boot
Antivirus : AVG Anti-Virus Free 8.0 (Activated)
Firewall : Sunbelt Personal Firewall 4.5.916 T (Activated)
"C:\Lop SD" ( MAJ : 08-09-2008|21:40 )
Option : [1] ( 2008-09-13|16:51 )
--------------------\\ Listing des dossiers dans APPLIC~1
[2007-05-11|21:42] C:\DOCUME~1\ADMINI~1\APPLIC~1\Identities
[2008-09-10|20:10] C:\DOCUME~1\ADMINI~1\APPLIC~1\Microsoft
[2007-05-06|10:41] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[2006-12-27|16:01] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer
[2007-05-09|08:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\avg7
[2006-06-12|14:52] C:\DOCUME~1\ALLUSE~1\APPLIC~1\BOONTY
[2006-06-03|15:39] C:\DOCUME~1\ALLUSE~1\APPLIC~1\CyberLink
[2006-12-01|10:13] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Firefly Studios
[2007-04-11|20:58] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
[2006-06-03|14:34] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Grisoft
[2006-06-03|14:00] C:\DOCUME~1\ALLUSE~1\APPLIC~1\HP
[2007-01-09|15:08] C:\DOCUME~1\ALLUSE~1\APPLIC~1\InstallShield
[2006-06-12|15:07] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Macrovision
[2007-02-10|16:07] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[2006-06-02|18:16] C:\DOCUME~1\ALLUSE~1\APPLIC~1\nView_Profiles
[2006-06-03|19:32] C:\DOCUME~1\ALLUSE~1\APPLIC~1\OLYMPUS
[2006-06-03|14:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\QuickTime
[2006-06-03|15:03] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Sony Corporation
[2007-05-05|18:16] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy
[2007-04-15|12:57] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TEMP
[2006-06-02|18:16] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[2007-02-10|16:07] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Live Toolbar
[2008-08-10|10:03] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\Adobe
[2007-08-13|20:13] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\Ahead
[2007-09-14|16:42] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\Apple
[2007-05-21|18:29] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\Apple Computer
[2008-09-12|22:34] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\avg8
[2007-05-13|10:17] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\Azureus
[2007-11-09|23:39] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\CanonBJ
[2007-09-09|20:58] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\FLEXnet
[2007-05-16|19:34] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\Google
[2008-09-12|22:02] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\Grisoft
[2007-05-13|17:45] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\HP
[2008-03-07|14:03] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\Installations
[2007-06-06|18:53] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\InstallShield
[2008-08-19|20:35] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\Lavasoft
[2008-09-11|21:20] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\Malwarebytes
[2008-08-19|20:34] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\Microsoft
[2007-12-15|15:29] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\Microsoft Corporation
[2008-09-11|11:58] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\Microsoft Help
[2008-07-01|08:40] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\Nero
[2007-09-12|15:36] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\NVIDIA
[2008-01-27|22:37] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\nView_Profiles
[2008-01-20|13:34] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\Office Genuine Advantage
[2007-05-13|20:32] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\OLYMPUS
[2008-03-07|14:05] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\PC Suite
[2007-05-13|20:29] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\QuickTime
[2008-09-12|14:22] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\Spybot - Search & Destroy
[2007-12-28|14:35] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\Trymedia
[2007-08-13|21:52] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\vsosdk
[2007-05-13|09:55] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\Windows Genuine Advantage
[2008-09-12|14:42] C:\DOCUME~1\ALLUSE~1.0\APPLIC~1\ZoomBrowser
[2006-06-02|17:54] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities
[2006-06-02|17:57] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[2007-03-21|20:25] C:\DOCUME~1\INVIT~1\APPLIC~1\Adobe
[2006-06-16|10:23] C:\DOCUME~1\INVIT~1\APPLIC~1\AVG7
[2007-04-12|14:08] C:\DOCUME~1\INVIT~1\APPLIC~1\Google
[2006-06-02|17:54] C:\DOCUME~1\INVIT~1\APPLIC~1\Identities
[2007-03-09|15:03] C:\DOCUME~1\INVIT~1\APPLIC~1\Macromedia
[2007-03-08|16:10] C:\DOCUME~1\INVIT~1\APPLIC~1\Microsoft
[2006-09-25|15:12] C:\DOCUME~1\INVIT~1\APPLIC~1\Sun
[2008-07-01|08:23] C:\DOCUME~1\INVIT~1.SEA\APPLIC~1\Adobe
[2008-03-07|08:47] C:\DOCUME~1\INVIT~1.SEA\APPLIC~1\Google
[2008-03-28|19:06] C:\DOCUME~1\INVIT~1.SEA\APPLIC~1\Macromedia
[2008-03-28|19:04] C:\DOCUME~1\INVIT~1.SEA\APPLIC~1\Real
[2006-09-16|18:48] C:\DOCUME~1\laurie\APPLIC~1\Adobe
[2006-09-15|19:32] C:\DOCUME~1\laurie\APPLIC~1\AdobeUM
[2006-12-27|16:01] C:\DOCUME~1\laurie\APPLIC~1\Apple Computer
[2006-06-05|19:18] C:\DOCUME~1\laurie\APPLIC~1\AVG7
[2007-04-13|16:47] C:\DOCUME~1\laurie\APPLIC~1\Google
[2006-06-02|17:54] C:\DOCUME~1\laurie\APPLIC~1\Identities
[2006-09-15|20:49] C:\DOCUME~1\laurie\APPLIC~1\IMVU
[2007-05-06|19:30] C:\DOCUME~1\laurie\APPLIC~1\LimeWire
[2006-09-22|16:47] C:\DOCUME~1\laurie\APPLIC~1\Lionhead Studios
[2006-06-10|13:51] C:\DOCUME~1\laurie\APPLIC~1\Macromedia
[2007-03-26|09:14] C:\DOCUME~1\laurie\APPLIC~1\Microsoft
[2006-09-04|11:22] C:\DOCUME~1\laurie\APPLIC~1\SecuROM
[2006-06-09|21:30] C:\DOCUME~1\laurie\APPLIC~1\Sony Corporation
[2006-07-06|11:13] C:\DOCUME~1\laurie\APPLIC~1\Sun
[2008-06-07|20:26] C:\DOCUME~1\LAURIE~1.SEA\APPLIC~1\Adobe
[2008-03-24|10:46] C:\DOCUME~1\LAURIE~1.SEA\APPLIC~1\AVG7
[2008-03-24|10:52] C:\DOCUME~1\LAURIE~1.SEA\APPLIC~1\Google
[2008-03-24|10:52] C:\DOCUME~1\LAURIE~1.SEA\APPLIC~1\Macromedia
[2008-03-24|10:46] C:\DOCUME~1\LAURIE~1.SEA\APPLIC~1\Microsoft
[2008-03-30|11:40] C:\DOCUME~1\LAURIE~1.SEA\APPLIC~1\WinRAR
[2007-04-26|08:00] C:\DOCUME~1\LOCALS~1\APPLIC~1\AVG7
[2006-11-03|14:19] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[2008-03-19|12:07] C:\DOCUME~1\LOCALS~1.AUT\APPLIC~1\Google
[2008-03-19|12:09] C:\DOCUME~1\LOCALS~1.AUT\APPLIC~1\Macromedia
[2008-03-19|12:06] C:\DOCUME~1\LOCALS~1.AUT\APPLIC~1\Microsoft
[2006-12-24|08:53] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
[2007-05-12|19:41] C:\DOCUME~1\NETWOR~1.AUT\APPLIC~1\Microsoft
[2008-05-14|19:17] C:\DOCUME~1\PROPRI~3\APPLIC~1\Adobe
[2008-08-24|20:39] C:\DOCUME~1\PROPRI~3\APPLIC~1\AdobeUM
[2007-08-13|20:15] C:\DOCUME~1\PROPRI~3\APPLIC~1\Ahead
[2007-05-21|18:30] C:\DOCUME~1\PROPRI~3\APPLIC~1\Apple Computer
[2008-02-14|19:36] C:\DOCUME~1\PROPRI~3\APPLIC~1\ArcSoft
[2007-12-25|16:23] C:\DOCUME~1\PROPRI~3\APPLIC~1\Atari
[2008-09-12|14:00] C:\DOCUME~1\PROPRI~3\APPLIC~1\Azureus
[2008-09-12|21:17] C:\DOCUME~1\PROPRI~3\APPLIC~1\BitTorrent
[2007-07-16|20:17] C:\DOCUME~1\PROPRI~3\APPLIC~1\Canon
[2007-10-11|15:53] C:\DOCUME~1\PROPRI~3\APPLIC~1\DataCast
[2007-06-30|12:18] C:\DOCUME~1\PROPRI~3\APPLIC~1\DivX
[2008-09-13|16:45] C:\DOCUME~1\PROPRI~3\APPLIC~1\DNA
[2007-05-16|21:00] C:\DOCUME~1\PROPRI~3\APPLIC~1\Google
[2007-05-13|20:11] C:\DOCUME~1\PROPRI~3\APPLIC~1\HP
[2008-09-07|20:22] C:\DOCUME~1\PROPRI~3\APPLIC~1\Identities
[2007-05-24|18:45] C:\DOCUME~1\PROPRI~3\APPLIC~1\Image Zone Express
[2008-06-13|20:31] C:\DOCUME~1\PROPRI~3\APPLIC~1\IPC
[2008-08-19|20:34] C:\DOCUME~1\PROPRI~3\APPLIC~1\Lavasoft
[2007-07-30|21:34] C:\DOCUME~1\PROPRI~3\APPLIC~1\Leadertech
[2008-07-13|09:43] C:\DOCUME~1\PROPRI~3\APPLIC~1\Lionhead Studios
[2007-05-12|22:16] C:\DOCUME~1\PROPRI~3\APPLIC~1\Macromedia
[2008-09-11|21:20] C:\DOCUME~1\PROPRI~3\APPLIC~1\Malwarebytes
[2008-05-16|15:14] C:\DOCUME~1\PROPRI~3\APPLIC~1\Microsoft
[2008-06-04|23:09] C:\DOCUME~1\PROPRI~3\APPLIC~1\Nero
[2008-03-07|14:08] C:\DOCUME~1\PROPRI~3\APPLIC~1\Nokia
[2008-03-07|14:04] C:\DOCUME~1\PROPRI~3\APPLIC~1\PC Suite
[2007-05-21|18:17] C:\DOCUME~1\PROPRI~3\APPLIC~1\Real
[2007-05-18|14:08] C:\DOCUME~1\PROPRI~3\APPLIC~1\SecuROM
[2007-05-18|14:08] C:\DOCUME~1\PROPRI~3\APPLIC~1\Sony Corporation
[2007-05-13|21:15] C:\DOCUME~1\PROPRI~3\APPLIC~1\Sun
[2007-05-18|14:08] C:\DOCUME~1\PROPRI~3\APPLIC~1\Uniblue
[2007-11-04|22:45] C:\DOCUME~1\PROPRI~3\APPLIC~1\Vso
[2007-06-06|19:16] C:\DOCUME~1\PROPRI~3\APPLIC~1\WinRAR
[2008-09-12|14:43] C:\DOCUME~1\PROPRI~3\APPLIC~1\ZoomBrowser EX
[2007-05-06|10:41] C:\DOCUME~1\PROPRI~1\APPLIC~1\Adobe
[2007-01-17|13:40] C:\DOCUME~1\PROPRI~1\APPLIC~1\AdobeUM
[2006-07-27|19:13] C:\DOCUME~1\PROPRI~1\APPLIC~1\Ahead
[2006-12-27|20:01] C:\DOCUME~1\PROPRI~1\APPLIC~1\Apple Computer
[2007-05-09|20:15] C:\DOCUME~1\PROPRI~1\APPLIC~1\AVG7
[2007-04-04|19:12] C:\DOCUME~1\PROPRI~1\APPLIC~1\Azureus
[2006-08-10|11:59] C:\DOCUME~1\PROPRI~1\APPLIC~1\BitTorrent
[2006-06-03|16:06] C:\DOCUME~1\PROPRI~1\APPLIC~1\CyberLink
[2006-10-03|13:46] C:\DOCUME~1\PROPRI~1\APPLIC~1\Firaxis Games
[2006-06-03|14:22] C:\DOCUME~1\PROPRI~1\APPLIC~1\FotoWire
[2006-06-12|15:08] C:\DOCUME~1\PROPRI~1\APPLIC~1\funkitron
[2007-04-11|20:58] C:\DOCUME~1\PROPRI~1\APPLIC~1\Google
[2006-08-02|17:51] C:\DOCUME~1\PROPRI~1\APPLIC~1\Help
[2006-07-05|19:36] C:\DOCUME~1\PROPRI~1\APPLIC~1\HP
[2006-06-02|17:54] C:\DOCUME~1\PROPRI~1\APPLIC~1\Identities
[2006-06-18|15:11] C:\DOCUME~1\PROPRI~1\APPLIC~1\IMVU
[2006-10-10|20:22] C:\DOCUME~1\PROPRI~1\APPLIC~1\InstallShield
[2006-12-01|10:42] C:\DOCUME~1\PROPRI~1\APPLIC~1\InstallShield Installation Information
[2007-05-12|20:00] C:\DOCUME~1\PROPRI~1\APPLIC~1\Lavasoft
[2006-12-25|13:43] C:\DOCUME~1\PROPRI~1\APPLIC~1\Lionhead Studios
[2006-06-02|18:06] C:\DOCUME~1\PROPRI~1\APPLIC~1\Macromedia
[2007-04-15|14:10] C:\DOCUME~1\PROPRI~1\APPLIC~1\Microsoft
[2007-02-24|18:52] C:\DOCUME~1\PROPRI~1\APPLIC~1\Microsoft Games
[2007-04-15|13:11] C:\DOCUME~1\PROPRI~1\APPLIC~1\MSNInstaller
[2006-12-01|10:42] C:\DOCUME~1\PROPRI~1\APPLIC~1\My Games
[2006-06-23|14:18] C:\DOCUME~1\PROPRI~1\APPLIC~1\Raptisoft
[2006-09-03|20:11] C:\DOCUME~1\PROPRI~1\APPLIC~1\SecuROM
[2007-02-09|14:10] C:\DOCUME~1\Virginie\APPLIC~1\Adobe
[2006-09-16|12:09] C:\DOCUME~1\Virginie\APPLIC~1\AdobeUM
[2007-04-06|20:18] C:\DOCUME~1\Virginie\APPLIC~1\Apple Computer
[2007-04-14|11:08] C:\DOCUME~1\Virginie\APPLIC~1\AVG7
[2007-04-13|19:08] C:\DOCUME~1\Virginie\APPLIC~1\Google
[2006-06-02|17:54] C:\DOCUME~1\Virginie\APPLIC~1\Identities
[2007-04-13|21:19] C:\DOCUME~1\Virginie\APPLIC~1\LimeWire
[2006-07-13|22:03] C:\DOCUME~1\Virginie\APPLIC~1\Macromedia
[2007-03-25|15:12] C:\DOCUME~1\Virginie\APPLIC~1\Microsoft
[2007-02-24|13:21] C:\DOCUME~1\Virginie\APPLIC~1\Microsoft Games
[2006-06-30|21:21] C:\DOCUME~1\Virginie\APPLIC~1\Sony Corporation
[2007-01-03|22:23] C:\DOCUME~1\Virginie\APPLIC~1\Sun
--------------------\\ Tâches planifiées dans C:\WINDOWS.0\tasks
[2008-09-12 22:37][--a------] C:\WINDOWS.0\tasks\SCHEDLGU.TXT
[2008-05-20 11:07][--a------] C:\WINDOWS.0\tasks\AppleSoftwareUpdate.job
[2008-09-13 09:04][--ah-----] C:\WINDOWS.0\tasks\SA.DAT
[2004-08-05 00:00][-r-h-----] C:\WINDOWS.0\tasks\desktop.ini
--------------------\\ Listing des dossiers dans C:\Program Files
[2008-04-09|20:21] C:\Program Files\Adobe
[2008-01-20|15:44] C:\Program Files\AGEIA Technologies
[2008-01-20|13:10] C:\Program Files\AGEIA Technologies(2)
[2008-07-13|20:21] C:\Program Files\Ahead
[2006-06-04|20:50] C:\Program Files\Alcohol Soft
[2008-08-24|20:43] C:\Program Files\Anno 1701
[2007-09-14|16:42] C:\Program Files\Apple Software Update
[2008-09-12|22:02] C:\Program Files\AVG
[2008-09-01|09:35] C:\Program Files\Azureus
[2008-09-12|13:51] C:\Program Files\BitTorrent
[2007-09-07|19:34] C:\Program Files\Bonjour
[2007-07-16|19:37] C:\Program Files\Canon
[2007-05-12|19:54] C:\Program Files\CCleaner
[2007-05-11|21:40] C:\Program Files\ComPlus Applications
[2007-05-03|20:34] C:\Program Files\DAEMON Tools
[2008-03-07|14:05] C:\Program Files\DIFX
[2008-01-20|13:14] C:\Program Files\Diskeeper Corporation
[2008-01-13|17:37] C:\Program Files\DivX
[2008-09-12|16:14] C:\Program Files\DNA
[2007-12-08|11:46] C:\Program Files\EA GAMES
[2008-03-21|13:26] C:\Program Files\Electronic Arts
[2008-09-12|20:39] C:\Program Files\Encore
[2008-03-21|13:13] C:\Program Files\eXperience112
[2008-09-12|21:24] C:\Program Files\Fichiers communs
[2007-03-18|19:10] C:\Program Files\Fujifilm
[2007-05-16|19:34] C:\Program Files\Google
[2008-09-12|22:02] C:\Program Files\Grisoft
[2007-03-23|20:50] C:\Program Files\Hitman Blood Money
[2008-07-22|15:38] C:\Program Files\IKEA HomePlanner
[2008-08-24|20:18] C:\Program Files\InstallShield Installation Information
[2008-08-15|13:19] C:\Program Files\Internet Explorer
[2007-09-14|16:45] C:\Program Files\iPod
[2007-09-14|16:45] C:\Program Files\iTunes
[2006-11-06|22:09] C:\Program Files\iWin
[2008-07-13|20:26] C:\Program Files\Java
[2008-01-20|16:11] C:\Program Files\K-Lite Codec Pack
[2007-10-11|15:13] C:\Program Files\Lame MP3 Codec
[2008-08-19|20:34] C:\Program Files\Lavasoft
[2007-10-11|15:45] C:\Program Files\LimeWire
[2006-12-04|12:28] C:\Program Files\Logitech
[2008-09-11|21:20] C:\Program Files\Malwarebytes' Anti-Malware
[2008-08-15|13:21] C:\Program Files\Messenger
[2006-09-16|11:25] C:\Program Files\Microsoft ActiveSync
[2007-06-03|22:08] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[2006-06-02|17:54] C:\Program Files\microsoft frontpage
[2007-05-13|13:32] C:\Program Files\Microsoft Office
[2008-08-19|10:42] C:\Program Files\Microsoft Silverlight
[2007-05-13|13:32] C:\Program Files\Microsoft Visual Studio
[2007-08-19|10:15] C:\Program Files\Microsoft Visual Studio 8
[2007-05-13|13:32] C:\Program Files\Microsoft Works
[2006-09-16|11:24] C:\Program Files\Microsoft.NET
[2006-10-17|16:35] C:\Program Files\MindArk
[2006-06-02|17:53] C:\Program Files\Movie Maker
[2007-05-18|18:37] C:\Program Files\MSN
[2006-06-02|17:52] C:\Program Files\MSN Gaming Zone
[2008-01-17|20:29] C:\Program Files\MSN Messenger
[2006-11-16|18:46] C:\Program Files\MSXML 4.0
[2007-12-15|15:04] C:\Program Files\MyFree Codec
[2008-06-04|23:06] C:\Program Files\Nero
[2006-06-02|17:53] C:\Program Files\NetMeeting
[2008-03-07|14:04] C:\Program Files\Nokia
[2006-06-03|14:48] C:\Program Files\OLYMPUS
[2008-01-20|15:25] C:\Program Files\Online Services
[2007-06-12|22:32] C:\Program Files\Outlook Express
[2007-03-11|14:19] C:\Program Files\Paradox Interactive
[2008-03-07|14:04] C:\Program Files\PC Connectivity Solution
[2008-01-13|16:51] C:\Program Files\PowerISO
[2008-01-13|17:01] C:\Program Files\QuickTime
[2007-05-16|19:34] C:\Program Files\Real
[2008-01-20|16:16] C:\Program Files\Reality Pump
[2007-08-17|21:08] C:\Program Files\RegSeeker
[2008-03-28|17:33] C:\Program Files\RivaTuner v2.08
[2007-10-11|15:12] C:\Program Files\Samsung
[2008-02-14|19:33] C:\Program Files\SanDisk
[2006-06-02|17:53] C:\Program Files\Services en ligne
[2006-10-10|20:23] C:\Program Files\Sierra
[2006-06-03|15:04] C:\Program Files\Sony
[2006-06-03|15:04] C:\Program Files\Sony Corporation
[2008-08-24|19:54] C:\Program Files\Spybot - Search & Destroy
[2008-07-13|20:26] C:\Program Files\Sun
[2007-05-05|16:50] C:\Program Files\Sunbelt Software
[2008-01-20|13:21] C:\Program Files\SystemRequirementsLab
[2007-11-28|21:55] C:\Program Files\THQ
[2008-09-11|21:25] C:\Program Files\Trend Micro
[2006-10-15|21:06] C:\Program Files\Trymedia
[2007-05-03|18:39] C:\Program Files\Uniblue
[2006-06-02|17:57] C:\Program Files\Uninstall Information
[2007-11-04|22:45] C:\Program Files\VSO
[2007-09-29|20:45] C:\Program Files\Warcraft III
[2007-05-03|20:56] C:\Program Files\Windows Defender
[2007-04-15|13:34] C:\Program Files\Windows Live Toolbar
[2008-01-20|14:52] C:\Program Files\Windows Media Components
[2008-01-20|14:30] C:\Program Files\Windows Media Connect 2
[2008-01-20|15:17] C:\Program Files\Windows Media Player
[2008-01-20|15:25] C:\Program Files\Windows NT
[2006-06-02|17:53] C:\Program Files\WindowsUpdate
[2007-06-06|19:15] C:\Program Files\WinRAR
[2006-06-02|17:54] C:\Program Files\xerox
[2006-07-05|19:22] C:\Program Files\Yahoo!
un autre bout
--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs
[2008-08-10|10:03] C:\Program Files\Fichiers communs\Adobe
[2006-09-16|18:23] C:\Program Files\Fichiers communs\Adobe Systems Shared
[2008-06-03|20:14] C:\Program Files\Fichiers communs\Ahead
[2007-09-14|16:44] C:\Program Files\Fichiers communs\Apple
[2006-06-12|14:52] C:\Program Files\Fichiers communs\BOONTY Shared
[2007-07-15|21:46] C:\Program Files\Fichiers communs\Canon
[2006-09-16|11:25] C:\Program Files\Fichiers communs\DESIGNER
[2006-06-03|14:22] C:\Program Files\Fichiers communs\FotoWire
[2006-06-03|14:01] C:\Program Files\Fichiers communs\HP
[2007-01-09|15:08] C:\Program Files\Fichiers communs\InstallShield
[2006-06-03|14:55] C:\Program Files\Fichiers communs\Java
[2006-06-03|14:21] C:\Program Files\Fichiers communs\Logitech
[2007-09-07|19:26] C:\Program Files\Fichiers communs\Macrovision Shared
[2007-05-13|13:32] C:\Program Files\Fichiers communs\Microsoft Shared
[2006-06-02|17:53] C:\Program Files\Fichiers communs\MSSoap
[2008-07-01|08:40] C:\Program Files\Fichiers communs\Nero
[2008-03-07|14:04] C:\Program Files\Fichiers communs\Nokia
[2006-06-02|13:49] C:\Program Files\Fichiers communs\ODBC
[2008-03-07|14:04] C:\Program Files\Fichiers communs\PCSuite
[2007-05-16|19:34] C:\Program Files\Fichiers communs\Real
[2006-06-02|17:53] C:\Program Files\Fichiers communs\Services
[2006-06-03|15:04] C:\Program Files\Fichiers communs\Sony Shared
[2006-06-02|13:49] C:\Program Files\Fichiers communs\SpeechEngines
[2007-06-12|22:32] C:\Program Files\Fichiers communs\System
[2008-08-19|20:33] C:\Program Files\Fichiers communs\Wise Installation Wizard
[2007-05-16|19:34] C:\Program Files\Fichiers communs\xing shared
--------------------\\ Process
( 48 Processes )
IEXPLORE.EXE ~ [PID:3260]
iexplore.exe ~ [PID:1320]
--------------------\\ Recherche avec S_Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Recherche de Fichiers / Dossiers Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Verification du Registre
..... OK !
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-09-13 16:56:25
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden files ...
C:\DOCUME~1\PROPRI~3\LOCALS~1\APPLIC~1\Microsoft\Windows\GameExplorer\{DFEF49D9-FC95-4301-99B9-2FB91C6ABA06}\PlayTasks\1\Les Sims™ 2 : Boit@Look.lnk 1010 bytes hidden from API
scan completed successfully
hidden processes: 0
hidden files: 1
--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs
[2008-08-10|10:03] C:\Program Files\Fichiers communs\Adobe
[2006-09-16|18:23] C:\Program Files\Fichiers communs\Adobe Systems Shared
[2008-06-03|20:14] C:\Program Files\Fichiers communs\Ahead
[2007-09-14|16:44] C:\Program Files\Fichiers communs\Apple
[2006-06-12|14:52] C:\Program Files\Fichiers communs\BOONTY Shared
[2007-07-15|21:46] C:\Program Files\Fichiers communs\Canon
[2006-09-16|11:25] C:\Program Files\Fichiers communs\DESIGNER
[2006-06-03|14:22] C:\Program Files\Fichiers communs\FotoWire
[2006-06-03|14:01] C:\Program Files\Fichiers communs\HP
[2007-01-09|15:08] C:\Program Files\Fichiers communs\InstallShield
[2006-06-03|14:55] C:\Program Files\Fichiers communs\Java
[2006-06-03|14:21] C:\Program Files\Fichiers communs\Logitech
[2007-09-07|19:26] C:\Program Files\Fichiers communs\Macrovision Shared
[2007-05-13|13:32] C:\Program Files\Fichiers communs\Microsoft Shared
[2006-06-02|17:53] C:\Program Files\Fichiers communs\MSSoap
[2008-07-01|08:40] C:\Program Files\Fichiers communs\Nero
[2008-03-07|14:04] C:\Program Files\Fichiers communs\Nokia
[2006-06-02|13:49] C:\Program Files\Fichiers communs\ODBC
[2008-03-07|14:04] C:\Program Files\Fichiers communs\PCSuite
[2007-05-16|19:34] C:\Program Files\Fichiers communs\Real
[2006-06-02|17:53] C:\Program Files\Fichiers communs\Services
[2006-06-03|15:04] C:\Program Files\Fichiers communs\Sony Shared
[2006-06-02|13:49] C:\Program Files\Fichiers communs\SpeechEngines
[2007-06-12|22:32] C:\Program Files\Fichiers communs\System
[2008-08-19|20:33] C:\Program Files\Fichiers communs\Wise Installation Wizard
[2007-05-16|19:34] C:\Program Files\Fichiers communs\xing shared
--------------------\\ Process
( 48 Processes )
IEXPLORE.EXE ~ [PID:3260]
iexplore.exe ~ [PID:1320]
--------------------\\ Recherche avec S_Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Recherche de Fichiers / Dossiers Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Verification du Registre
..... OK !
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-09-13 16:56:25
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden files ...
C:\DOCUME~1\PROPRI~3\LOCALS~1\APPLIC~1\Microsoft\Windows\GameExplorer\{DFEF49D9-FC95-4301-99B9-2FB91C6ABA06}\PlayTasks\1\Les Sims™ 2 : Boit@Look.lnk 1010 bytes hidden from API
scan completed successfully
hidden processes: 0
hidden files: 1
[F:2][D:4]-> C:\DOCUME~1\PROPRI~3\LOCALS~1\Temp
[F:36][D:0]-> C:\DOCUME~1\PROPRI~3\Cookies
[F:2616][D:6]-> C:\DOCUME~1\PROPRI~3\LOCALS~1\TEMPOR~1\content.IE5
1 - "C:\Lop SD\LopR_1.txt" - 2008-09-13|16:59 - Option : [1]
--------------------\\ Fin du rapport a 16:59:30
[F:36][D:0]-> C:\DOCUME~1\PROPRI~3\Cookies
[F:2616][D:6]-> C:\DOCUME~1\PROPRI~3\LOCALS~1\TEMPOR~1\content.IE5
1 - "C:\Lop SD\LopR_1.txt" - 2008-09-13|16:59 - Option : [1]
--------------------\\ Fin du rapport a 16:59:30